Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Prosím o preventívnu kontrolu,ďakujem.

Nemáte v tuto chvíli žádný problém s pc a chcete se jen ujistit, že je vše v pořádku?
Vložte log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zpráva
Autor
Romchi
Návštěvník
Návštěvník
Příspěvky: 13
Registrován: 23 úno 2015 15:01

Prosím o preventívnu kontrolu,ďakujem.

#1 Příspěvek od Romchi »

Výstup logu:

A samozrejme, za odpoveď ďakujem.

Logfile of random's system information tool 1.10 (written by random/random)
Run by Roman at 2015-02-23 14:46:18
Microsoft Windows 7 Ultimate Service Pack 1
System drive C: has 241 GB (51%) free of 477 GB
Total RAM: 3951 MB (60% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 14:52:32, on 23. 2. 2015
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17631)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Users\Roman\AppData\Roaming\Dropbox\bin\Dropbox.exe
C:\Program Files\trend micro\Roman.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_31\bin\ssv.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_31\bin\jp2ssv.dll
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [HydraVisionDesktopManager] "C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM.exe"
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\RunOnce: [SPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\RunOnce: [SPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'Default user')
O4 - Startup: Dropbox.lnk = C:\Users\Roman\AppData\Roaming\Dropbox\bin\Dropbox.exe
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: HP Service (hpsrv) - Unknown owner - C:\Windows\system32\Hpservice.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: OpenVPN Service (OpenVPNService) - The OpenVPN Project - C:\Program Files\OpenVPN\bin\openvpnserv.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 6820 bytes

======Listing Processes======



\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
"c:\Program Files\Microsoft Security Client\MsMpEng.exe"
C:\Windows\system32\atiesrxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs

C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\system32\Hpservice.exe
C:\Windows\system32\svchost.exe -k NetworkService
atieclxx
C:\Windows\system32\WLANExt.exe 30893152
\??\C:\Windows\system32\conhost.exe "-8019123491214771235-535550764274877207-5307278-149957435732064848-1681834892
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
C:\Windows\system32\svchost.exe -k imgsvc
"c:\Program Files\Microsoft Security Client\NisSrv.exe"
C:\Windows\system32\svchost.exe -k bthsvcs
"taskhost.exe"
taskeng.exe {F2F1BFD1-B53E-4A2D-978C-AB8DC255924C}
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
"C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /c
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
"C:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey
"C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM.exe"
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
"C:\Users\Roman\AppData\Roaming\Dropbox\bin\Dropbox.exe" /systemstartup
HydraDM64.exe -h:131098 "Maximize to full desktop" "Maximize to window corners" "Restore desktop"
"C:\Program Files\Synaptics\SynTP\SynTPHelper.exe"
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Users\Roman\Downloads\RSITx64.exe"
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM" PriorityLow
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe" 0
taskhost.exe $(Arg0)

======Scheduled tasks folder======

C:\Windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\Windows\tasks\GoogleUpdateTaskMachineUA1cf6b112b9cb779.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\Windows\tasks\MATLAB R2014b Startup Accelerator.job - C:\Program Files\MATLAB\R2014b\bin\win64\MATLABStartupAccelerator.exe

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_31\bin\ssv.dll [2015-02-23 460712]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_31\bin\jp2ssv.dll [2015-02-23 172968]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2010-06-04 2174760]
"MSC"=c:\Program Files\Microsoft Security Client\msseces.exe [2015-01-30 1332296]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"HydraVisionDesktopManager"=C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM.exe [2014-04-17 1967616]
""= []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite]
C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2014-03-04 3696912]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GarenaPlus]
C:\Program Files (x86)\Garena Plus\GarenaMessenger.exe [2014-04-29 9936176]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\InstallShieldSetup]
C:\PROGRA~2\INSTAL~1\{B7666~1\Setup.exe [2014-09-27 455600]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Raptr]
C:\PROGRA~2\Raptr\raptrstub.exe [2014-08-20 55568]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skype]
C:\Program Files (x86)\Skype\Phone\Skype.exe [2014-10-01 22065760]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\uTorrent]
C:\Users\Roman\AppData\Roaming\uTorrent\uTorrent.exe [2015-01-28 1374032]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [2014-04-17 767200]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2014-12-17 508800]

C:\Users\Roman\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Dropbox.lnk - C:\Users\Roman\AppData\Roaming\Dropbox\bin\Dropbox.exe

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsMpSvc]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2015-02-23 14:46:20 ----D---- C:\Program Files\trend micro
2015-02-23 14:46:18 ----D---- C:\rsit
2015-02-23 11:13:13 ----D---- C:\ProgramData\Sun
2015-02-23 11:13:08 ----A---- C:\Windows\SYSWOW64\WindowsAccessBridge-32.dll
2015-02-23 11:12:27 ----D---- C:\ProgramData\Oracle
2015-02-23 11:12:17 ----D---- C:\Program Files (x86)\Java
2015-02-12 12:13:15 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2015-02-12 12:13:14 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2015-02-12 12:13:14 ----A---- C:\Windows\system32\jscript9diag.dll
2015-02-12 12:13:14 ----A---- C:\Windows\system32\jscript9.dll
2015-02-11 13:15:40 ----A---- C:\Windows\system32\invagent.dll
2015-02-11 13:15:40 ----A---- C:\Windows\system32\generaltel.dll
2015-02-11 13:15:40 ----A---- C:\Windows\system32\devinv.dll
2015-02-11 13:15:40 ----A---- C:\Windows\system32\appraiser.dll
2015-02-11 13:15:40 ----A---- C:\Windows\system32\aeinv.dll
2015-02-11 13:15:39 ----A---- C:\Windows\system32\aitstatic.exe
2015-02-11 13:15:39 ----A---- C:\Windows\system32\aepdu.dll
2015-02-11 13:15:38 ----A---- C:\Windows\system32\aepic.dll
2015-02-11 13:15:35 ----A---- C:\Windows\system32\schannel.dll
2015-02-11 13:15:34 ----A---- C:\Windows\SYSWOW64\schannel.dll
2015-02-11 13:15:34 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2015-02-11 13:15:34 ----A---- C:\Windows\system32\kerberos.dll
2015-02-11 13:15:33 ----A---- C:\Windows\SYSWOW64\wdigest.dll
2015-02-11 13:15:33 ----A---- C:\Windows\SYSWOW64\TSpkg.dll
2015-02-11 13:15:33 ----A---- C:\Windows\SYSWOW64\ncrypt.dll
2015-02-11 13:15:33 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2015-02-11 13:15:33 ----A---- C:\Windows\system32\wdigest.dll
2015-02-11 13:15:33 ----A---- C:\Windows\system32\TSpkg.dll
2015-02-11 13:15:33 ----A---- C:\Windows\system32\ncrypt.dll
2015-02-11 13:15:33 ----A---- C:\Windows\system32\msv1_0.dll
2015-02-11 13:15:32 ----A---- C:\Windows\SYSWOW64\credssp.dll
2015-02-11 13:15:32 ----A---- C:\Windows\system32\credssp.dll
2015-02-11 13:15:25 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2015-02-11 13:15:25 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2015-02-11 13:15:25 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2015-02-11 13:15:25 ----A---- C:\Windows\system32\ieetwproxystub.dll
2015-02-11 13:15:25 ----A---- C:\Windows\system32\ieetwcollector.exe
2015-02-11 13:15:24 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2015-02-11 13:15:24 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2015-02-11 13:15:24 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2015-02-11 13:15:24 ----A---- C:\Windows\system32\iernonce.dll
2015-02-11 13:15:24 ----A---- C:\Windows\system32\ie4uinit.exe
2015-02-11 13:15:23 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2015-02-11 13:15:23 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2015-02-11 13:15:23 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2015-02-11 13:15:23 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2015-02-11 13:15:23 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2015-02-11 13:15:22 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2015-02-11 13:15:22 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2015-02-11 13:15:21 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2015-02-11 13:15:21 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2015-02-11 13:15:21 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2015-02-11 13:15:21 ----A---- C:\Windows\system32\urlmon.dll
2015-02-11 13:15:21 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2015-02-11 13:15:21 ----A---- C:\Windows\system32\iedkcs32.dll
2015-02-11 13:15:20 ----A---- C:\Windows\SYSWOW64\ieui.dll
2015-02-11 13:15:20 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2015-02-11 13:15:20 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2015-02-11 13:15:20 ----A---- C:\Windows\system32\msfeeds.dll
2015-02-11 13:15:20 ----A---- C:\Windows\system32\dxtrans.dll
2015-02-11 13:15:19 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2015-02-11 13:15:19 ----A---- C:\Windows\system32\iesetup.dll
2015-02-11 13:15:19 ----A---- C:\Windows\system32\ieapfltr.dll
2015-02-11 13:15:18 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2015-02-11 13:15:18 ----A---- C:\Windows\system32\iertutil.dll
2015-02-11 13:15:17 ----A---- C:\Windows\SYSWOW64\wininet.dll
2015-02-11 13:15:17 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2015-02-11 13:15:17 ----A---- C:\Windows\SYSWOW64\msrating.dll
2015-02-11 13:15:17 ----A---- C:\Windows\system32\jsproxy.dll
2015-02-11 13:15:17 ----A---- C:\Windows\system32\ieUnatt.exe
2015-02-11 13:15:16 ----A---- C:\Windows\system32\ieui.dll
2015-02-11 13:15:16 ----A---- C:\Windows\system32\ieframe.dll
2015-02-11 13:15:16 ----A---- C:\Windows\system32\dxtmsft.dll
2015-02-11 13:15:15 ----A---- C:\Windows\system32\vbscript.dll
2015-02-11 13:15:15 ----A---- C:\Windows\system32\mshtmlmedia.dll
2015-02-11 13:15:15 ----A---- C:\Windows\system32\mshtmled.dll
2015-02-11 13:15:14 ----A---- C:\Windows\system32\wininet.dll
2015-02-11 13:15:14 ----A---- C:\Windows\system32\msrating.dll
2015-02-11 13:15:14 ----A---- C:\Windows\system32\MshtmlDac.dll
2015-02-11 13:15:13 ----A---- C:\Windows\system32\mshtml.dll
2015-02-11 13:13:27 ----A---- C:\Windows\system32\WindowsCodecs.dll
2015-02-11 13:13:26 ----A---- C:\Windows\SYSWOW64\WindowsCodecs.dll
2015-02-11 13:13:19 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2015-02-11 13:13:19 ----A---- C:\Windows\SYSWOW64\secur32.dll
2015-02-11 13:13:19 ----A---- C:\Windows\SYSWOW64\msobjs.dll
2015-02-11 13:13:19 ----A---- C:\Windows\SYSWOW64\auditpol.exe
2015-02-11 13:13:19 ----A---- C:\Windows\SYSWOW64\adtschema.dll
2015-02-11 13:13:19 ----A---- C:\Windows\system32\sspisrv.dll
2015-02-11 13:13:19 ----A---- C:\Windows\system32\sspicli.dll
2015-02-11 13:13:19 ----A---- C:\Windows\system32\secur32.dll
2015-02-11 13:13:19 ----A---- C:\Windows\system32\msobjs.dll
2015-02-11 13:13:19 ----A---- C:\Windows\system32\lsass.exe
2015-02-11 13:13:19 ----A---- C:\Windows\system32\lsasrv.dll
2015-02-11 13:13:19 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2015-02-11 13:13:19 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2015-02-11 13:13:19 ----A---- C:\Windows\system32\drivers\cng.sys
2015-02-11 13:13:19 ----A---- C:\Windows\system32\auditpol.exe
2015-02-11 13:13:19 ----A---- C:\Windows\system32\adtschema.dll
2015-02-11 13:13:18 ----A---- C:\Windows\SYSWOW64\msaudite.dll
2015-02-11 13:13:18 ----A---- C:\Windows\system32\msaudite.dll
2015-02-11 13:13:14 ----A---- C:\Windows\system32\crypt32.dll
2015-02-11 13:13:13 ----A---- C:\Windows\SYSWOW64\crypt32.dll
2015-02-11 13:13:10 ----A---- C:\Windows\system32\oleaut32.dll
2015-02-11 13:13:09 ----A---- C:\Windows\SYSWOW64\oleaut32.dll
2015-02-11 13:12:56 ----A---- C:\Windows\system32\scesrv.dll
2015-02-11 13:12:55 ----A---- C:\Windows\SYSWOW64\scesrv.dll
2015-02-11 13:12:50 ----A---- C:\Windows\system32\ntoskrnl.exe
2015-02-11 13:12:47 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2015-02-11 13:12:47 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2015-02-11 13:12:45 ----A---- C:\Windows\system32\srcore.dll
2015-02-11 13:12:45 ----A---- C:\Windows\system32\rstrui.exe
2015-02-11 13:12:44 ----A---- C:\Windows\SYSWOW64\srclient.dll
2015-02-11 13:12:44 ----A---- C:\Windows\system32\srclient.dll
2015-02-11 13:12:16 ----A---- C:\Windows\system32\win32k.sys
2015-01-29 20:38:53 ----D---- C:\Program Files (x86)\GOG.com

======List of files/folders modified in the last 1 month======

2015-02-23 14:52:32 ----D---- C:\Windows\Temp
2015-02-23 14:46:33 ----D---- C:\Windows\Prefetch
2015-02-23 14:46:20 ----RD---- C:\Program Files
2015-02-23 14:44:59 ----D---- C:\Users\Roman\AppData\Roaming\Dropbox
2015-02-23 12:10:08 ----D---- C:\Windows\system32\config
2015-02-23 11:49:18 ----D---- C:\Windows\Minidump
2015-02-23 11:48:59 ----D---- C:\Windows
2015-02-23 11:13:13 ----SHD---- C:\Windows\Installer
2015-02-23 11:13:13 ----SHD---- C:\Config.Msi
2015-02-23 11:13:13 ----HD---- C:\ProgramData
2015-02-23 11:13:12 ----D---- C:\Program Files (x86)\Common Files
2015-02-23 11:13:08 ----D---- C:\Windows\SysWOW64
2015-02-23 11:12:17 ----RD---- C:\Program Files (x86)
2015-02-23 00:23:38 ----D---- C:\Program Files (x86)\Steam
2015-02-22 17:47:49 ----D---- C:\Windows\system32\catroot2
2015-02-22 12:23:22 ----D---- C:\Users\Roman\AppData\Roaming\uTorrent
2015-02-21 12:40:36 ----SHD---- C:\System Volume Information
2015-02-16 14:12:30 ----D---- C:\Windows\system32\NDF
2015-02-13 11:16:08 ----D---- C:\Windows\rescache
2015-02-13 02:59:30 ----D---- C:\Windows\winsxs
2015-02-13 02:59:22 ----D---- C:\Windows\SYSWOW64\en-US
2015-02-13 02:59:21 ----D---- C:\Windows\system32\en-US
2015-02-13 02:59:21 ----D---- C:\Windows\System32
2015-02-12 23:58:44 ----D---- C:\Program Files (x86)\Hearthstone
2015-02-12 12:07:12 ----D---- C:\Windows\inf
2015-02-12 12:07:12 ----A---- C:\Windows\system32\PerfStringBackup.INI
2015-02-12 03:38:44 ----D---- C:\Windows\system32\catroot
2015-02-12 03:38:24 ----SD---- C:\Windows\system32\CompatTel
2015-02-12 03:38:24 ----D---- C:\Windows\system32\appraiser
2015-02-12 03:38:23 ----D---- C:\Program Files\Internet Explorer
2015-02-12 03:38:22 ----D---- C:\Program Files (x86)\Internet Explorer
2015-02-12 03:38:21 ----D---- C:\Windows\system32\drivers
2015-02-12 03:38:20 ----D---- C:\Windows\PolicyDefinitions
2015-02-12 03:15:37 ----D---- C:\ProgramData\Package Cache
2015-02-12 03:10:12 ----D---- C:\Program Files\Microsoft Security Client
2015-02-12 03:10:11 ----D---- C:\Program Files (x86)\Microsoft Security Client
2015-02-12 03:09:31 ----D---- C:\Windows\system32\MRT
2015-02-12 03:03:23 ----D---- C:\Windows\debug
2015-02-12 03:03:20 ----A---- C:\Windows\system32\MRT.exe
2015-02-07 17:59:58 ----D---- C:\Users\Roman\AppData\Roaming\Skype
2015-02-06 02:20:28 ----D---- C:\Program Files (x86)\Battle.net
2015-02-04 18:23:32 ----D---- C:\Windows\Tasks
2015-02-04 01:17:19 ----D---- C:\Warcraft III
2015-01-26 13:58:08 ----D---- C:\Users\Roman\AppData\Roaming\gretl

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 hpdskflt;HP Filter; C:\Windows\system32\DRIVERS\hpdskflt.sys [2011-05-13 30008]
R0 MpFilter;Microsoft Malware Protection Driver; C:\Windows\system32\DRIVERS\MpFilter.sys [2014-11-15 274696]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R0 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\Windows\system32\drivers\vmbus.sys [2010-11-20 199552]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-20 514560]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2014-09-27 283064]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 NisDrv;Microsoft Network Inspection System; C:\Windows\system32\DRIVERS\NisDrvWFP.sys [2014-11-15 124560]
R3 Accelerometer;HP Mobile Data Protection Sensor; C:\Windows\system32\DRIVERS\Accelerometer.sys [2011-05-13 43320]
R3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2014-04-18 15376384]
R3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2014-04-18 638976]
R3 AtiHDAudioService;AMD Function Driver for HD Audio Service; C:\Windows\system32\drivers\AtihdW76.sys [2013-12-19 94720]
R3 BCM43XX;Broadcom 802.11 Network Adapter Driver; C:\Windows\system32\DRIVERS\bcmwl664.sys [2010-09-01 3065408]
R3 BthEnum;Bluetooth Request Block Driver; C:\Windows\system32\drivers\BthEnum.sys [2009-07-14 41984]
R3 BthPan;Bluetooth Device (Personal Area Network); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
R3 BTHUSB;Bluetooth Radio USB Driver; C:\Windows\System32\Drivers\BTHUSB.sys [2011-04-28 80384]
R3 HECIx64;Intel(R) Management Engine Interface; C:\Windows\system32\DRIVERS\HECIx64.sys [2009-09-17 56344]
R3 RFCOMM;Bluetooth Device (RFCOMM Protocol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2011-06-10 539240]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2010-06-04 1379376]
R3 tap0901;TAP-Windows Adapter V9; C:\Windows\system32\DRIVERS\tap0901.sys [2013-08-22 40664]
R3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\Windows\system32\DRIVERS\vwifimp.sys [2009-07-14 17920]
S3 AtiHdmiService;ATI Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\AtiHdmi.sys [2011-03-16 125456]
S3 BTHPORT;Bluetooth Port Driver; C:\Windows\System32\Drivers\BTHport.sys [2012-07-06 552960]
S3 GGSAFERDriver;GGSAFER Driver; \??\C:\Program Files (x86)\Garena Plus\Room\safedrv.sys []
S3 KMWDFILTER;Eastern Times KM DRIVER; C:\Windows\system32\DRIVERS\KMWDFILTER.sys [2009-12-04 20992]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-20 165888]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 19456]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-20 6656]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-20 34688]
S3 Synth3dVsc;Synth3dVsc; C:\Windows\System32\drivers\synth3dvsc.sys []
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2013-10-02 56832]
S3 tsusbhub;@%SystemRoot%\system32\drivers\tsusbhub.sys,-1; C:\Windows\system32\drivers\tsusbhub.sys []
S3 VGPU;VGPU; C:\Windows\System32\drivers\rdvgkmd.sys []
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-20 21760]
S3 WDC_SAM;WD SCSI Pass Thru driver; C:\Windows\system32\DRIVERS\wdcsam64.sys [2008-05-06 14464]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2014-12-19 81088]
R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2014-04-18 239616]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 hpsrv;HP Service; C:\Windows\system32\Hpservice.exe [2011-05-13 30520]
R2 MsMpSvc;Microsoft Antimalware Service; c:\Program Files\Microsoft Security Client\MsMpEng.exe [2015-01-30 23784]
R3 NisSrv;@c:\Program Files\Microsoft Security Client\MpAsDesc.dll,-243; c:\Program Files\Microsoft Security Client\NisSrv.exe [2015-01-30 366512]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2013-09-11 105144]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2013-09-11 124088]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-04-08 116648]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 27136]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-04-08 116648]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2015-01-12 114688]
S3 OpenVPNService;OpenVPN Service; C:\Program Files\OpenVPN\bin\openvpnserv.exe [2013-08-22 37176]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2015-02-19 835776]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2014-04-08 1255736]
S4 aspnet_state;ASP.NET State Service; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2013-09-11 51808]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]

-----------------EOF-----------------

altrok
Moderátor
Moderátor
Příspěvky: 7317
Registrován: 15 lis 2012 22:26
Bydliště: Znojmo

Re: Prosím o preventívnu kontrolu,ďakujem.

#2 Příspěvek od altrok »

Zdravim :bye:

:arrow: Ulozte na plochu OTL http://oldtimer.geekstogo.com/OTL.exe
  • kliknete pravym na ikonu OTL a vyberte Spustit jako spravce (v pripade Win XP spustte obycejne dvojklikem)
  • zatrhnete moznosti Pro vsechny uzivatele, Kontrola na havet "LOP", Kontrola na havěť "Purity"
  • do okna dole (Custom Scans/Fixes) zkopirujte script, ktery je nize
  • zbytek ponechte, jak je a kliknete na Prohledat
  • vysledne logy (OTL.txt a Extras.txt) budou dlouhe, takze je rozdelte do vice prispevku (odpovedi)

Kód: Vybrat vše

CREATERESTOREPOINT

netsvcs
drivers32
savembr:0

/md5start
adp3132.sys
AGP440.sys
ahcix86.sys
ahcix86s.sys
atapi.sys
autochk.exe
cdrom.sys
cngaudit.dll
cryptsvc.dll
eNetHook.dll
eventlog.dll
explorer.exe
hal.dll
Changer.sys
iaStor.sys
iastorv.sys
IdeChnDr.sys
isapnp.sys
JakNDis.sys
KR10N.sys
logevent.dll
lsass.exe
mv61xx.sys
ndis.sys
netlogon.dll
ntelogon.dll
nvata.sys
nvatabus.sys
nvgts.sys
nvraid.sys
nvrd32.sys
nvstor.sys
nvstor32.sys
scecli.dll
sceclt.dll
smss.exe
svchost.exe
symmpi.sys
tcpip.sys
userinit.exe
vaxscsi.sys
viamraid.sys
viasraid.sys
ViPrt.sys
winlogon.exe
ws2_32.dll
/md5stop

%systemroot%*.* /U /s
%SYSTEMDRIVE%\*.exe
%ALLUSERSPROFILE%\Application Data\*.
%ALLUSERSPROFILE%\Application Data\*.exe /s
%APPDATA%\*.
%APPDATA%\*.exe /s
%systemroot%\*. /mp /s
%systemroot%\system32\*.dll /lockedfiles
%systemroot%\Tasks\*.job /lockedfiles
%systemroot%\system32\drivers\*.sys /lockedfiles
%systemroot%\System32\config\*.sav
%systemroot%\system32\*.dll /lockedfiles
%systemroot%\system32\drivers\*.sys /3
%systemroot%\system32\*.* /3
%SYSTEMDRIVE%\*.exe

HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /s
reg query "HKLM\Software\Microsoft\Windows NT\CurrentVersion\winlogon" /v GinaDLL /c
reg query "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\wuauserv" /v ImagePath /c
reg query "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\BITS" /v ImagePath /c

type c:\boot.ini >> test.txt /c
%SystemDrive%\PhysicalMBR.bin /md5

*crack* /s
*keygen* /s
*AntiWPA* /s
*loader* /s
*minodlogin* /s
*tnod* /s
*AutoKMS* /s
*activator* /s
*serial* /s
*w7lxe* /s
Pokud je cokoliv nejasného, ihned se ptej.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.

Romchi
Návštěvník
Návštěvník
Příspěvky: 13
Registrován: 23 úno 2015 15:01

Re: Prosím o preventívnu kontrolu,ďakujem.

#3 Příspěvek od Romchi »

Zdravím,


už niekoľko minút to stojí na "HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /s"
mám to pustiť odznova alebo je to bežné?

Okrem toho som obdržal chybovú hlášku o tom, že nie je možný vytvoriť nejaký .bat súbor.

altrok
Moderátor
Moderátor
Příspěvky: 7317
Registrován: 15 lis 2012 22:26
Bydliště: Znojmo

Re: Prosím o preventívnu kontrolu,ďakujem.

#4 Příspěvek od altrok »

:arrow: Obcas se skript operacnimu systemu nelibi, takze OTL ukoncete a pouzijte tento upraveny skript. Pro uplnost davam cely navod znovu.

:arrow: Ulozte na plochu OTL http://oldtimer.geekstogo.com/OTL.exe
  • kliknete pravym na ikonu OTL a vyberte Spustit jako spravce (v pripade Win XP spustte obycejne dvojklikem)
  • zatrhnete moznosti Pro vsechny uzivatele, Kontrola na havet "LOP", Kontrola na havěť "Purity"
  • do okna dole (Custom Scans/Fixes) zkopirujte script, ktery je nize
  • zbytek ponechte, jak je a kliknete na Prohledat
  • vysledne logy (OTL.txt a Extras.txt) budou dlouhe, takze je rozdelte do vice prispevku (odpovedi)

Kód: Vybrat vše

CREATERESTOREPOINT

netsvcs
drivers32
savembr:0

/md5start
atapi.sys
autochk.exe
cdrom.sys
explorer.exe
hal.dll
scecli.dll
svchost.exe
tcpip.sys
userinit.exe
winlogon.exe
/md5stop

%systemroot%*.* /U /s
%SYSTEMDRIVE%\*.exe
%ALLUSERSPROFILE%\Application Data\*.
%ALLUSERSPROFILE%\Application Data\*.exe /s
%APPDATA%\*.
%APPDATA%\*.exe /s
%systemroot%\*. /mp /s
%systemroot%\system32\*.dll /lockedfiles
%systemroot%\Tasks\*.job
%systemroot%\system32\drivers\*.sys /lockedfiles
%systemroot%\System32\config\*.sav
%systemroot%\system32\*.dll /lockedfiles
%systemroot%\system32\drivers\*.sys /3
%systemroot%\system32\*.* /3
%SYSTEMDRIVE%\*.exe

*crack* /s
*keygen* /s
*AntiWPA* /s
*loader* /s
*minodlogin* /s
*tnod* /s
*AutoKMS* /s
*activator* /s
*serial* /s
*w7lxe* /s
Pokud je cokoliv nejasného, ihned se ptej.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.

Romchi
Návštěvník
Návštěvník
Příspěvky: 13
Registrován: 23 úno 2015 15:01

Re: Prosím o preventívnu kontrolu,ďakujem.

#5 Příspěvek od Romchi »

Tentokrát už to šlapalo :)

OTL logfile created on: 23. 2. 2015 20:16:29 - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Roman\Desktop
64bit- Ultimate Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.11.9600.17633)
Locale: 0000041b | Country: Slovenská republika | Language: SKY | Date Format: d. M. yyyy

3,86 Gb Total Physical Memory | 1,84 Gb Available Physical Memory | 47,60% Memory free
7,72 Gb Paging File | 5,55 Gb Available in Paging File | 71,93% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 465,66 Gb Total Space | 234,87 Gb Free Space | 50,44% Space Free | Partition Type: NTFS

Computer Name: ROMAN-PC | User Name: Roman | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

========== Processes (SafeList) ==========

PRC - [2015/02/23 18:48:36 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\Roman\Desktop\OTL.exe
PRC - [2015/02/17 23:45:00 | 000,843,592 | ---- | M] (Google Inc.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
PRC - [2014/12/19 08:48:18 | 000,081,088 | ---- | M] (Adobe Systems Incorporated) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
PRC - [2014/04/17 21:14:26 | 001,967,616 | ---- | M] (AMD) -- C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM.exe


========== Modules (No Company Name) ==========

MOD - [2015/02/17 23:44:58 | 014,965,064 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\40.0.2214.115\PepperFlash\pepflashplayer.dll
MOD - [2015/02/17 23:44:57 | 009,171,272 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\40.0.2214.115\pdf.dll
MOD - [2015/02/17 23:44:53 | 001,117,512 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\40.0.2214.115\libglesv2.dll
MOD - [2015/02/17 23:44:51 | 000,211,272 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\40.0.2214.115\libegl.dll


========== Services (SafeList) ==========

SRV:64bit: - [2015/01/30 03:15:10 | 000,366,512 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- c:\Program Files\Microsoft Security Client\NisSrv.exe -- (NisSrv)
SRV:64bit: - [2015/01/30 03:15:10 | 000,023,784 | ---- | M] (Microsoft Corporation) [Auto | Running] -- c:\Program Files\Microsoft Security Client\MsMpEng.exe -- (MsMpSvc)
SRV:64bit: - [2015/01/12 03:34:30 | 000,114,688 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\IEEtwCollector.exe -- (IEEtwCollectorService)
SRV:64bit: - [2014/04/18 02:29:24 | 000,239,616 | ---- | M] (AMD) [Auto | Running] -- C:\Windows\SysNative\atiesrxx.exe -- (AMD External Events Utility)
SRV:64bit: - [2013/08/22 14:25:08 | 000,037,176 | ---- | M] (The OpenVPN Project) [On_Demand | Stopped] -- C:\Program Files\OpenVPN\bin\openvpnserv.exe -- (OpenVPNService)
SRV:64bit: - [2013/05/27 06:50:47 | 001,011,712 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV:64bit: - [2011/05/13 17:58:10 | 000,030,520 | ---- | M] (Hewlett-Packard Company) [Auto | Running] -- C:\Windows\SysNative\hpservice.exe -- (hpsrv)
SRV:64bit: - [2009/07/14 02:40:01 | 000,193,536 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\appmgmts.dll -- (AppMgmt)
SRV - [2015/02/19 00:51:18 | 000,835,776 | ---- | M] (Valve Corporation) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Steam\SteamService.exe -- (Steam Client Service)
SRV - [2014/12/19 08:48:18 | 000,081,088 | ---- | M] (Adobe Systems Incorporated) [Auto | Running] -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe -- (AdobeARMservice)
SRV - [2014/03/20 23:49:18 | 000,067,224 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)
SRV - [2013/09/11 20:21:54 | 000,105,144 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)


========== Driver Services (SafeList) ==========

DRV:64bit: - [2014/11/15 14:46:08 | 000,124,560 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\NisDrvWFP.sys -- (NisDrv)
DRV:64bit: - [2014/09/27 13:40:50 | 000,283,064 | ---- | M] (Disc Soft Ltd) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\dtsoftbus01.sys -- (dtsoftbus01)
DRV:64bit: - [2014/04/18 03:36:46 | 015,376,384 | ---- | M] (Advanced Micro Devices, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\atikmdag.sys -- (amdkmdag)
DRV:64bit: - [2014/04/18 02:07:06 | 000,638,976 | ---- | M] (Advanced Micro Devices, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\atikmpag.sys -- (amdkmdap)
DRV:64bit: - [2013/12/19 17:45:50 | 000,094,720 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\AtihdW76.sys -- (AtiHDAudioService)
DRV:64bit: - [2013/10/02 03:22:20 | 000,056,832 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt)
DRV:64bit: - [2013/08/22 13:40:24 | 000,040,664 | ---- | M] (The OpenVPN Project) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\tap0901.sys -- (tap0901)
DRV:64bit: - [2012/08/23 15:10:20 | 000,019,456 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\rdpvideominiport.sys -- (RdpVideoMiniport)
DRV:64bit: - [2012/03/01 07:46:16 | 000,023,408 | ---- | M] (Microsoft Corporation) [Recognizer | Boot | Unknown] -- C:\Windows\SysNative\drivers\fs_rec.sys -- (Fs_Rec)
DRV:64bit: - [2011/06/10 05:34:52 | 000,539,240 | ---- | M] (Realtek ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Rt64win7.sys -- (RTL8167)
DRV:64bit: - [2011/05/13 17:58:16 | 000,030,008 | ---- | M] (Hewlett-Packard Company) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\hpdskflt.sys -- (hpdskflt)
DRV:64bit: - [2011/05/13 17:57:58 | 000,043,320 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Accelerometer.sys -- (Accelerometer)
DRV:64bit: - [2011/03/16 08:41:00 | 000,125,456 | ---- | M] (ATI Technologies, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\AtiHdmi.sys -- (AtiHdmiService)
DRV:64bit: - [2011/03/11 07:41:12 | 000,107,904 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
DRV:64bit: - [2011/03/11 07:41:12 | 000,027,008 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
DRV:64bit: - [2010/11/20 14:33:35 | 000,078,720 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
DRV:64bit: - [2010/09/01 23:52:50 | 003,065,408 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\BCMWL664.SYS -- (BCM43XX)
DRV:64bit: - [2010/06/04 01:18:56 | 001,379,376 | ---- | M] (Synaptics Incorporated) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\SynTP.sys -- (SynTP)
DRV:64bit: - [2009/12/04 00:35:14 | 000,020,992 | ---- | M] (Windows (R) Codename Longhorn DDK provider) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\KMWDFILTER.sys -- (KMWDFILTER)
DRV:64bit: - [2009/09/17 18:54:54 | 000,056,344 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\HECIx64.sys -- (HECIx64)
DRV:64bit: - [2009/07/14 02:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
DRV:64bit: - [2009/07/14 02:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
DRV:64bit: - [2009/07/14 02:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
DRV:64bit: - [2009/06/10 21:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
DRV:64bit: - [2009/06/10 21:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
DRV:64bit: - [2009/06/10 21:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)
DRV:64bit: - [2009/06/10 21:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)
DRV:64bit: - [2008/05/06 15:06:00 | 000,014,464 | ---- | M] (Western Digital Technologies) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\wdcsam64.sys -- (WDC_SAM)
DRV - [2009/07/14 02:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount)


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========

IE:64bit: - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE:64bit: - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC


IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0



IE - HKU\S-1-5-21-1778754102-3392175034-3567333730-1000\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKU\S-1-5-21-1778754102-3392175034-3567333730-1000\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTer ... ORM=IE11SR
IE - HKU\S-1-5-21-1778754102-3392175034-3567333730-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0


========== FireFox ==========

FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=11.31.2: C:\Program Files (x86)\Java\jre1.8.0_31\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=11.31.2: C:\Program Files (x86)\Java\jre1.8.0_31\bin\plugin2\npjp2.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@t.garena.com/garenatalk: C:\Program Files (x86)\Garena Plus\bbtalk\plugins\npPlugin\npGarenaTalkPlugin.dll ( Garena)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=2.1.3: C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)

64bit-FF - HKEY_LOCAL_MACHINE\software\mozilla\Thunderbird\Extensions\\eplgTb@eset.com: C:\PROGRAM FILES\ESET\ESET NOD32 ANTIVIRUS\MOZILLA THUNDERBIRD
FF - HKEY_LOCAL_MACHINE\software\mozilla\Thunderbird\Extensions\\eplgTb@eset.com: C:\Program Files\ESET\ESET NOD32 Antivirus\Mozilla Thunderbird


========== Chrome ==========

CHR - default_search_provider: (Enabled)
CHR - default_search_provider: search_url =
CHR - default_search_provider: suggest_url =
CHR - plugin: Error reading preferences file
CHR - Extension: No name found = C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\
CHR - Extension: No name found = C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\
CHR - Extension: No name found = C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.7_0\
CHR - Extension: No name found = C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\
CHR - Extension: No name found = C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.18_0\
CHR - Extension: No name found = C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\
CHR - Extension: No name found = C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1\

O1 HOSTS File: ([2009/06/10 22:00:26 | 000,000,824 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_31\bin\ssv.dll (Oracle Corporation)
O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_31\bin\jp2ssv.dll (Oracle Corporation)
O4:64bit: - HKLM..\Run: [MSC] c:\Program Files\Microsoft Security Client\msseces.exe (Microsoft Corporation)
O4 - HKLM..\Run: [StartCCC] C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe (Advanced Micro Devices, Inc.)
O4 - HKU\S-1-5-19..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
O4 - HKU\S-1-5-20..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
O4 - HKU\S-1-5-21-1778754102-3392175034-3567333730-1000..\Run: [] File not found
O4 - HKU\S-1-5-21-1778754102-3392175034-3567333730-1000..\Run: [HydraVisionDesktopManager] C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM.exe (AMD)
O4 - HKU\.DEFAULT..\RunOnce: [SPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 File not found
O4 - HKU\S-1-5-18..\RunOnce: [SPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 File not found
O4 - HKU\S-1-5-19..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found
O4 - HKU\S-1-5-20..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found
O4 - Startup: C:\Users\Roman\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk = C:\Users\Roman\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O1364bit: - gopher Prefix: missing
O13 - gopher Prefix: missing
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 10.0.0.138
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{78D2FF85-1041-4635-9A6B-4CF4D7A9EAEF}: DhcpNameServer = 147.251.6.10 147.251.4.33
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{8DAA5DB0-0823-495F-B103-BF66C6EA48ED}: DhcpNameServer = 10.0.0.138
O18:64bit: - Protocol\Handler\skype4com - No CLSID value found
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O20:64bit: - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (userinit.exe) - C:\Windows\SysWow64\userinit.exe (Microsoft Corporation)
O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O32 - HKLM CDRom: AutoRun - 1
O33 - MountPoints2\{c1ab86ae-4623-11e4-b8e6-cc52af20698b}\Shell - "" = AutoRun
O33 - MountPoints2\{c1ab86ae-4623-11e4-b8e6-cc52af20698b}\Shell\AutoRun\command - "" = E:\setup.exe
O34 - HKLM BootExecute: (autocheck autochk *)
O35:64bit: - HKLM\..comfile [open] -- "%1" %*
O35:64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:64bit: - HKLM\...com [@ = comfile] -- "%1" %*
O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)

CREATERESTOREPOINT
Restore point Set: OTL Restore Point

NetSvcs:64bit: AppMgmt - C:\Windows\SysNative\appmgmts.dll (Microsoft Corporation)

Drivers32:64bit: msacm.l3acm - C:\Windows\System32\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: msacm.l3acm - C:\Windows\SysWOW64\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: vidc.cvid - C:\Windows\SysWow64\iccvid.dll (Radius Inc.)
PhysicalDisk0 MBR saved to C:\PhysicalMBR.bin

========== Files/Folders - Created Within 30 Days ==========

[2015/02/23 18:48:29 | 000,602,112 | ---- | C] (OldTimer Tools) -- C:\Users\Roman\Desktop\OTL.exe
[2015/02/23 14:46:20 | 000,000,000 | ---D | C] -- C:\Program Files\trend micro
[2015/02/23 14:46:18 | 000,000,000 | ---D | C] -- C:\rsit
[2015/02/23 11:13:13 | 000,000,000 | ---D | C] -- C:\ProgramData\Sun
[2015/02/23 11:13:12 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Java
[2015/02/23 11:13:08 | 000,098,216 | ---- | C] (Oracle Corporation) -- C:\Windows\SysWow64\WindowsAccessBridge-32.dll
[2015/02/23 11:12:44 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
[2015/02/23 11:12:27 | 000,000,000 | ---D | C] -- C:\ProgramData\Oracle
[2015/02/23 11:12:17 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Java
[2015/02/20 16:17:14 | 000,000,000 | ---D | C] -- C:\Users\Roman\AppData\Local\Steam
[2015/02/13 15:04:25 | 000,000,000 | ---D | C] -- C:\Users\Roman\Desktop\SHIELD
[2015/02/12 12:13:15 | 000,620,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\jscript9diag.dll
[2015/02/12 12:13:14 | 006,041,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\jscript9.dll
[2015/02/12 12:13:14 | 000,814,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\jscript9diag.dll
[2015/02/11 13:15:40 | 001,098,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\aeinv.dll
[2015/02/11 13:15:40 | 000,894,976 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\appraiser.dll
[2015/02/11 13:15:40 | 000,762,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\invagent.dll
[2015/02/11 13:15:40 | 000,609,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\generaltel.dll
[2015/02/11 13:15:40 | 000,414,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\devinv.dll
[2015/02/11 13:15:39 | 001,239,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\aitstatic.exe
[2015/02/11 13:15:39 | 000,227,328 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\aepdu.dll
[2015/02/11 13:15:38 | 000,192,000 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\aepic.dll
[2015/02/11 13:15:33 | 000,309,760 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ncrypt.dll
[2015/02/11 13:15:25 | 000,114,688 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieetwcollector.exe
[2015/02/11 13:15:25 | 000,076,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mshtmled.dll
[2015/02/11 13:15:25 | 000,048,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieetwproxystub.dll
[2015/02/11 13:15:25 | 000,047,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieetwproxystub.dll
[2015/02/11 13:15:25 | 000,030,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iernonce.dll
[2015/02/11 13:15:24 | 000,718,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ie4uinit.exe
[2015/02/11 13:15:24 | 000,064,000 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\MshtmlDac.dll
[2015/02/11 13:15:24 | 000,034,304 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iernonce.dll
[2015/02/11 13:15:23 | 000,077,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\JavaScriptCollectionAgent.dll
[2015/02/11 13:15:23 | 000,060,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\JavaScriptCollectionAgent.dll
[2015/02/11 13:15:22 | 000,710,144 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieapfltr.dll
[2015/02/11 13:15:22 | 000,062,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iesetup.dll
[2015/02/11 13:15:21 | 002,052,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\inetcpl.cpl
[2015/02/11 13:15:21 | 000,115,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieUnatt.exe
[2015/02/11 13:15:21 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieetwcollectorres.dll
[2015/02/11 13:15:20 | 000,968,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\MsSpellCheckingFacility.exe
[2015/02/11 13:15:20 | 000,801,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msfeeds.dll
[2015/02/11 13:15:20 | 000,478,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieui.dll
[2015/02/11 13:15:20 | 000,316,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dxtrans.dll
[2015/02/11 13:15:19 | 000,800,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieapfltr.dll
[2015/02/11 13:15:19 | 000,066,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iesetup.dll
[2015/02/11 13:15:18 | 002,125,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\inetcpl.cpl
[2015/02/11 13:15:18 | 001,155,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mshtmlmedia.dll
[2015/02/11 13:15:17 | 000,168,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msrating.dll
[2015/02/11 13:15:17 | 000,144,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieUnatt.exe
[2015/02/11 13:15:16 | 000,633,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieui.dll
[2015/02/11 13:15:16 | 000,490,496 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dxtmsft.dll
[2015/02/11 13:15:15 | 001,359,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mshtmlmedia.dll
[2015/02/11 13:15:15 | 000,584,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\vbscript.dll
[2015/02/11 13:15:15 | 000,092,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mshtmled.dll
[2015/02/11 13:15:14 | 000,199,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msrating.dll
[2015/02/11 13:15:14 | 000,088,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\MshtmlDac.dll
[2015/02/11 13:13:27 | 001,424,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WindowsCodecs.dll
[2015/02/11 13:13:19 | 001,461,760 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\lsasrv.dll
[2015/02/11 13:13:19 | 000,686,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\adtschema.dll
[2015/02/11 13:13:19 | 000,686,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\adtschema.dll
[2015/02/11 13:13:19 | 000,136,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sspicli.dll
[2015/02/11 13:13:19 | 000,064,000 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\auditpol.exe
[2015/02/11 13:13:19 | 000,060,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msobjs.dll
[2015/02/11 13:13:19 | 000,060,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msobjs.dll
[2015/02/11 13:13:19 | 000,050,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\auditpol.exe
[2015/02/11 13:13:19 | 000,029,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sspisrv.dll
[2015/02/11 13:13:19 | 000,028,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\secur32.dll
[2015/02/11 13:13:18 | 000,146,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msaudite.dll
[2015/02/11 13:13:18 | 000,146,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msaudite.dll
[2015/02/11 13:13:14 | 001,480,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\crypt32.dll
[2015/02/11 13:13:10 | 000,861,696 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\oleaut32.dll
[2015/02/11 13:12:56 | 000,406,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\scesrv.dll
[2015/02/11 13:12:55 | 000,308,224 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\scesrv.dll
[2015/02/11 13:12:50 | 005,554,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ntoskrnl.exe
[2015/02/11 13:12:47 | 003,972,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ntkrnlpa.exe
[2015/02/11 13:12:47 | 003,917,760 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ntoskrnl.exe
[2015/02/11 13:12:45 | 000,503,808 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\srcore.dll
[2015/02/11 13:12:45 | 000,296,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rstrui.exe
[2015/02/11 13:12:44 | 000,050,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\srclient.dll
[2015/01/29 20:43:40 | 000,000,000 | ---D | C] -- C:\Users\Roman\Documents\My Games
[2015/01/29 20:38:53 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\GOG.com
[2015/01/25 22:07:55 | 000,000,000 | ---D | C] -- C:\Users\Roman\Desktop\BAAN_projekt

========== Files - Modified Within 30 Days ==========

[2015/02/23 20:17:55 | 000,000,512 | ---- | M] () -- C:\PhysicalMBR.bin
[2015/02/23 18:48:36 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\Roman\Desktop\OTL.exe
[2015/02/23 18:28:00 | 000,000,932 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2015/02/23 18:21:16 | 000,001,238 | ---- | M] () -- C:\Users\Roman\AppData\Local\recently-used.xbel
[2015/02/23 16:31:50 | 000,018,704 | ---- | M] () -- C:\Users\Roman\uloha 2 priklad 1.gretl
[2015/02/23 14:48:06 | 000,023,504 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2015/02/23 14:48:06 | 000,023,504 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2015/02/23 14:47:03 | 000,000,546 | ---- | M] () -- C:\Windows\tasks\MATLAB R2014b Startup Accelerator.job
[2015/02/23 14:42:46 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2015/02/23 14:42:40 | 3107,528,704 | -HS- | M] () -- C:\hiberfil.sys
[2015/02/23 11:54:59 | 000,000,226 | ---- | M] () -- C:\Users\Roman\Desktop\hwmonitorw.ini
[2015/02/23 11:48:59 | 399,671,656 | ---- | M] () -- C:\Windows\MEMORY.DMP
[2015/02/23 11:12:38 | 000,098,216 | ---- | M] (Oracle Corporation) -- C:\Windows\SysWow64\WindowsAccessBridge-32.dll
[2015/02/21 17:48:13 | 002,356,304 | ---- | M] () -- C:\Users\Roman\Documents\01_Data.pdf
[2015/02/17 20:29:06 | 000,069,690 | ---- | M] () -- C:\Users\Roman\Documents\.RData
[2015/02/17 20:29:06 | 000,020,769 | ---- | M] () -- C:\Users\Roman\Documents\.Rhistory
[2015/02/12 12:07:12 | 000,782,470 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2015/02/12 12:07:12 | 000,654,464 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2015/02/12 12:07:12 | 000,122,336 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2015/02/12 12:07:08 | 000,001,097 | ---- | M] () -- C:\Users\Roman\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk
[2015/02/12 12:06:29 | 000,000,979 | ---- | M] () -- C:\Users\Roman\Desktop\Dropbox.lnk
[2015/02/12 12:00:01 | 000,315,624 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT
[2015/02/12 03:10:41 | 000,001,945 | ---- | M] () -- C:\Windows\epplauncher.mif
[2015/02/04 18:23:32 | 000,000,936 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA1cf6b112b9cb779.job
[2015/02/04 04:16:29 | 000,609,280 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\generaltel.dll
[2015/02/04 04:16:20 | 000,762,368 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\invagent.dll
[2015/02/04 04:16:16 | 000,414,720 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\devinv.dll
[2015/02/04 04:16:14 | 000,894,976 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\appraiser.dll
[2015/02/04 04:16:13 | 000,227,328 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\aepdu.dll
[2015/02/04 04:16:13 | 000,192,000 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\aepic.dll
[2015/02/04 04:13:28 | 001,098,752 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\aeinv.dll
[2015/02/03 17:04:34 | 000,201,932 | ---- | M] () -- C:\Users\Roman\Documents\rozvrh jar 2015.jpg
[2015/01/29 20:42:50 | 000,002,463 | ---- | M] () -- C:\Users\Public\Desktop\Heroes of Might and Magic V.lnk
[2015/01/29 20:42:47 | 000,002,496 | ---- | M] () -- C:\Users\Public\Desktop\Tribes of the East.lnk
[2015/01/29 20:42:47 | 000,002,491 | ---- | M] () -- C:\Users\Public\Desktop\Hammers of Fate.lnk
[2015/01/28 00:36:21 | 001,239,720 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\aitstatic.exe
[2015/01/26 02:53:31 | 001,902,105 | ---- | M] () -- C:\Users\Roman\Documents\BayesianskaAnalyza (1).pdf
[2015/01/25 22:21:51 | 000,019,224 | ---- | M] () -- C:\Users\Roman\Desktop\BAAN_projekt.rar

========== Files Created - No Company Name ==========

[2015/02/23 18:52:21 | 000,000,512 | ---- | C] () -- C:\PhysicalMBR.bin
[2015/02/23 18:21:16 | 000,001,238 | ---- | C] () -- C:\Users\Roman\AppData\Local\recently-used.xbel
[2015/02/23 16:31:50 | 000,018,704 | ---- | C] () -- C:\Users\Roman\uloha 2 priklad 1.gretl
[2015/02/23 11:48:59 | 399,671,656 | ---- | C] () -- C:\Windows\MEMORY.DMP
[2015/02/21 17:48:13 | 002,356,304 | ---- | C] () -- C:\Users\Roman\Documents\01_Data.pdf
[2015/02/17 20:29:06 | 000,069,690 | ---- | C] () -- C:\Users\Roman\Documents\.RData
[2015/02/03 17:04:34 | 000,201,932 | ---- | C] () -- C:\Users\Roman\Documents\rozvrh jar 2015.jpg
[2015/01/29 20:42:50 | 000,002,463 | ---- | C] () -- C:\Users\Public\Desktop\Heroes of Might and Magic V.lnk
[2015/01/29 20:42:47 | 000,002,496 | ---- | C] () -- C:\Users\Public\Desktop\Tribes of the East.lnk
[2015/01/29 20:42:47 | 000,002,491 | ---- | C] () -- C:\Users\Public\Desktop\Hammers of Fate.lnk
[2015/01/26 02:53:26 | 001,902,105 | ---- | C] () -- C:\Users\Roman\Documents\BayesianskaAnalyza (1).pdf
[2015/01/25 22:10:54 | 000,019,224 | ---- | C] () -- C:\Users\Roman\Desktop\BAAN_projekt.rar
[2014/11/24 18:33:32 | 000,000,000 | -HS- | C] () -- C:\Users\Roman\AppData\Local\LumaEmu
[2014/11/13 19:21:28 | 000,000,044 | ---- | C] () -- C:\Windows\wawx_dumpreg64.dll
[2014/11/13 19:21:28 | 000,000,044 | ---- | C] () -- C:\Users\Roman\AppData\Roaming\twow_sysprepdt.dat
[2014/04/26 15:21:29 | 000,000,600 | ---- | C] () -- C:\Users\Roman\AppData\Local\PUTTY.RND
[2014/04/18 03:22:56 | 000,995,342 | ---- | C] () -- C:\Windows\SysWow64\amdocl_as32.exe
[2014/04/18 03:22:56 | 000,798,734 | ---- | C] () -- C:\Windows\SysWow64\amdocl_ld32.exe
[2014/04/18 02:25:52 | 000,157,144 | ---- | C] () -- C:\Windows\SysWow64\ativvsva.dat
[2014/04/18 02:25:50 | 000,204,952 | ---- | C] () -- C:\Windows\SysWow64\ativvsvl.dat
[2014/04/17 21:28:30 | 000,038,912 | ---- | C] () -- C:\Windows\SysWow64\kdbsdk32.dll
[2014/04/14 00:54:36 | 000,766,780 | ---- | C] () -- C:\Windows\SysWow64\PerfStringBackup.INI
[2014/04/12 22:28:59 | 000,000,095 | -H-- | C] () -- C:\Users\Roman\.~lock.bakalárska práca 6.odt#
[2014/04/08 16:42:18 | 000,045,270 | ---- | C] () -- C:\Users\Roman\AppData\Roaming\room_v3.dat
[2014/04/08 16:37:23 | 000,046,984 | ---- | C] () -- C:\Users\Roman\.jmulti_laststate
[2014/04/08 16:37:23 | 000,001,056 | ---- | C] () -- C:\Users\Roman\.jmulti_settings
[2014/04/08 15:19:38 | 000,218,200 | ---- | C] () -- C:\Windows\SysWow64\unrar.dll
[2014/04/08 11:59:42 | 000,000,000 | ---- | C] () -- C:\Windows\ativpsrm.bin

========== ZeroAccess Check ==========

[2009/07/14 05:55:00 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini

[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64

[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]

[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64

[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
"" = C:\Windows\SysNative\shell32.dll -- [2014/06/25 03:05:42 | 014,175,744 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shell32.dll -- [2014/06/25 02:41:30 | 012,874,240 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\fastprox.dll -- [2009/07/14 02:40:51 | 000,909,312 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2010/11/20 13:19:02 | 000,606,208 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\wbemess.dll -- [2009/07/14 02:41:56 | 000,505,856 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]

========== LOP Check ==========

[2014/05/23 09:54:46 | 000,000,000 | ---D | M] -- C:\Users\Roman\AppData\Roaming\Battle.net
[2015/01/18 13:33:37 | 000,000,000 | ---D | M] -- C:\Users\Roman\AppData\Roaming\DAEMON Tools Lite
[2015/02/23 14:44:59 | 000,000,000 | ---D | M] -- C:\Users\Roman\AppData\Roaming\Dropbox
[2014/08/28 11:07:02 | 000,000,000 | ---D | M] -- C:\Users\Roman\AppData\Roaming\Eurobattle.net
[2014/05/29 14:21:55 | 000,000,000 | ---D | M] -- C:\Users\Roman\AppData\Roaming\GarenaPlus
[2015/02/23 18:21:17 | 000,000,000 | ---D | M] -- C:\Users\Roman\AppData\Roaming\gretl
[2014/09/10 11:36:31 | 000,000,000 | ---D | M] -- C:\Users\Roman\AppData\Roaming\library_dir
[2014/04/08 15:56:57 | 000,000,000 | ---D | M] -- C:\Users\Roman\AppData\Roaming\LibreOffice
[2014/04/08 22:52:25 | 000,000,000 | ---D | M] -- C:\Users\Roman\AppData\Roaming\MPC-HC
[2014/04/12 19:10:19 | 000,000,000 | ---D | M] -- C:\Users\Roman\AppData\Roaming\OpenOffice
[2014/09/10 16:00:56 | 000,000,000 | ---D | M] -- C:\Users\Roman\AppData\Roaming\Raptr
[2014/04/12 19:24:05 | 000,000,000 | ---D | M] -- C:\Users\Roman\AppData\Roaming\RStudio
[2015/01/16 16:57:48 | 000,000,000 | ---D | M] -- C:\Users\Roman\AppData\Roaming\Subversion
[2015/01/20 19:19:55 | 000,000,000 | ---D | M] -- C:\Users\Roman\AppData\Roaming\TS3Client
[2015/02/22 12:23:22 | 000,000,000 | ---D | M] -- C:\Users\Roman\AppData\Roaming\uTorrent

========== Purity Check ==========



========== Custom Scans ==========

< >
[2009/07/14 06:08:49 | 000,000,006 | -H-- | C] () -- C:\Windows\Tasks\SA.DAT
[2009/07/14 06:08:49 | 000,032,548 | ---- | C] () -- C:\Windows\Tasks\SCHEDLGU.TXT
[2014/04/08 11:48:29 | 000,000,932 | ---- | C] () -- C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
[2014/05/08 23:59:30 | 000,000,936 | ---- | C] () -- C:\Windows\Tasks\GoogleUpdateTaskMachineUA1cf6b112b9cb779.job
[2015/01/16 16:48:15 | 000,000,546 | ---- | C] () -- C:\Windows\Tasks\MATLAB R2014b Startup Accelerator.job

< >

< MD5 for: ATAPI.SYS >
[2009/07/14 02:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\SysNative\drivers\atapi.sys
[2009/07/14 02:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\SysNative\DriverStore\FileRepository\mshdc.inf_amd64_neutral_552ea5111ec825a6\atapi.sys
[2009/07/14 02:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\SysNative\DriverStore\FileRepository\mshdc.inf_amd64_neutral_aad30bdeec04ea5e\atapi.sys
[2009/07/14 02:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\winsxs\amd64_mshdc.inf_31bf3856ad364e35_6.1.7600.16385_none_392d19c13b3ad543\atapi.sys
[2009/07/14 02:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\winsxs\amd64_mshdc.inf_31bf3856ad364e35_6.1.7601.17514_none_3b5e2d89382958dd\atapi.sys
[2009/07/14 02:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\winsxs\amd64_mshdc.inf_31bf3856ad364e35_6.1.7601.18231_none_3b457059383c66e6\atapi.sys
[2009/07/14 02:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\winsxs\amd64_mshdc.inf_31bf3856ad364e35_6.1.7601.22414_none_3be7afc0514717fa\atapi.sys

< MD5 for: AUTOCHK.EXE >
[2010/11/20 14:24:26 | 000,777,728 | ---- | M] (Microsoft Corporation) MD5=3B536A8BEC3B4F23FFDFD78B11A2AB93 -- C:\Windows\SysNative\autochk.exe
[2010/11/20 14:24:26 | 000,777,728 | ---- | M] (Microsoft Corporation) MD5=3B536A8BEC3B4F23FFDFD78B11A2AB93 -- C:\Windows\winsxs\amd64_microsoft-windows-autochk_31bf3856ad364e35_6.1.7601.17514_none_4019f2b8d860ad30\autochk.exe
[2009/07/14 02:14:12 | 000,668,160 | ---- | M] (Microsoft Corporation) MD5=41E4C8EBA464E7D6A5BA5E8827732AEB -- C:\Windows\winsxs\x86_microsoft-windows-autochk_31bf3856ad364e35_6.1.7600.16385_none_e1ca436d2314b860\autochk.exe
[2009/07/14 02:38:56 | 000,777,728 | ---- | M] (Microsoft Corporation) MD5=8B7F8E882A649D81CEA1EDE9BBB68FFF -- C:\Windows\winsxs\amd64_microsoft-windows-autochk_31bf3856ad364e35_6.1.7600.16385_none_3de8def0db722996\autochk.exe
[2010/11/20 13:16:54 | 000,668,160 | ---- | M] (Microsoft Corporation) MD5=F88A52EB62019D6A62FDD9E08034DBD8 -- C:\Windows\SysWOW64\autochk.exe
[2010/11/20 13:16:54 | 000,668,160 | ---- | M] (Microsoft Corporation) MD5=F88A52EB62019D6A62FDD9E08034DBD8 -- C:\Windows\winsxs\x86_microsoft-windows-autochk_31bf3856ad364e35_6.1.7601.17514_none_e3fb573520033bfa\autochk.exe

< MD5 for: CDROM.SYS >
[2009/07/14 00:19:54 | 000,147,456 | ---- | M] (Microsoft Corporation) MD5=83D2D75E1EFB81B3450C18131443F7DB -- C:\Windows\winsxs\amd64_cdrom.inf_31bf3856ad364e35_6.1.7600.16385_none_bb9e4d89bd7870f1\cdrom.sys
[2010/11/20 10:19:21 | 000,147,456 | ---- | M] (Microsoft Corporation) MD5=F036CE71586E93D94DAB220D7BDF4416 -- C:\Windows\SysNative\drivers\cdrom.sys
[2010/11/20 10:19:21 | 000,147,456 | ---- | M] (Microsoft Corporation) MD5=F036CE71586E93D94DAB220D7BDF4416 -- C:\Windows\SysNative\DriverStore\FileRepository\cdrom.inf_amd64_neutral_0b3d0d1942ab684b\cdrom.sys
[2010/11/20 10:19:21 | 000,147,456 | ---- | M] (Microsoft Corporation) MD5=F036CE71586E93D94DAB220D7BDF4416 -- C:\Windows\winsxs\amd64_cdrom.inf_31bf3856ad364e35_6.1.7601.17514_none_bdcf6151ba66f48b\cdrom.sys

< MD5 for: EXPLORER.EXE >
[2011/02/26 07:23:14 | 002,870,272 | ---- | M] (Microsoft Corporation) MD5=0862495E0C825893DB75EF44FAEA8E93 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16768_none_adc24107935a7e25\explorer.exe
[2011/02/26 06:19:21 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=0FB9C74046656D1579A64660AD67B746 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.21669_none_ba87e574ddfe652d\explorer.exe
[2009/07/14 02:14:20 | 002,613,248 | ---- | M] (Microsoft Corporation) MD5=15BC38A7492BEFE831966ADB477CF76F -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16385_none_b7fe430bc7ce3761\explorer.exe
[2011/02/26 06:51:13 | 002,614,784 | ---- | M] (Microsoft Corporation) MD5=255CF508D7CFB10E0794D6AC93280BD8 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20910_none_b8ce9756e0b786a4\explorer.exe
[2009/10/31 06:45:39 | 002,614,272 | ---- | M] (Microsoft Corporation) MD5=2626FC9755BE22F805D3CFA0CE3EE727 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16450_none_b819b343c7ba6202\explorer.exe
[2011/02/26 06:33:07 | 002,614,784 | ---- | M] (Microsoft Corporation) MD5=2AF58D15EDC06EC6FDACCE1F19482BBF -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16768_none_b816eb59c7bb4020\explorer.exe
[2011/02/25 07:19:30 | 002,871,808 | ---- | M] (Microsoft Corporation) MD5=332FEAB1435662FC6C672E25BEB37BE3 -- C:\Windows\explorer.exe
[2011/02/25 07:19:30 | 002,871,808 | ---- | M] (Microsoft Corporation) MD5=332FEAB1435662FC6C672E25BEB37BE3 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17567_none_afa79dc39081d0ba\explorer.exe
[2011/02/26 07:14:34 | 002,871,808 | ---- | M] (Microsoft Corporation) MD5=3B69712041F3D63605529BD66DC00C48 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.21669_none_b0333b22a99da332\explorer.exe
[2010/11/20 13:17:09 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=40D777B7A95E00593EB1568C68514493 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17514_none_ba2f56d3c4bcbafb\explorer.exe
[2009/08/03 07:19:07 | 002,868,224 | ---- | M] (Microsoft Corporation) MD5=700073016DAC1C3D2E7E2CE4223334B6 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20500_none_ae84b558ac4eb41c\explorer.exe
[2011/02/25 06:30:54 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=8B88EBBB05A0E56B7DCC708498C02B3E -- C:\Windows\SysWOW64\explorer.exe
[2011/02/25 06:30:54 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=8B88EBBB05A0E56B7DCC708498C02B3E -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17567_none_b9fc4815c4e292b5\explorer.exe
[2009/10/31 07:34:59 | 002,870,272 | ---- | M] (Microsoft Corporation) MD5=9AAAEC8DAC27AA17B053E6352AD233AE -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16450_none_adc508f19359a007\explorer.exe
[2009/08/03 06:49:47 | 002,613,248 | ---- | M] (Microsoft Corporation) MD5=9FF6C4C91A3711C0A3B18F87B08B518D -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20500_none_b8d95faae0af7617\explorer.exe
[2010/11/20 14:24:45 | 002,872,320 | ---- | M] (Microsoft Corporation) MD5=AC4C51EB24AA95B77F705AB159189E24 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17514_none_afdaac81905bf900\explorer.exe
[2009/10/31 07:38:38 | 002,870,272 | ---- | M] (Microsoft Corporation) MD5=B8EC4BD49CE8F6FC457721BFC210B67F -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20563_none_ae46d6aeac7ca7c7\explorer.exe
[2009/08/03 06:35:50 | 002,613,248 | ---- | M] (Microsoft Corporation) MD5=B95EEB0F4E5EFBF1038A35B3351CF047 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16404_none_b853c407c78e3ba9\explorer.exe
[2009/07/14 02:39:10 | 002,868,224 | ---- | M] (Microsoft Corporation) MD5=C235A51CB740E45FFA0EBFB9BAFCDA64 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16385_none_ada998b9936d7566\explorer.exe
[2009/10/31 07:00:51 | 002,614,272 | ---- | M] (Microsoft Corporation) MD5=C76153C7ECA00FA852BB0C193378F917 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20563_none_b89b8100e0dd69c2\explorer.exe
[2011/02/26 07:26:45 | 002,870,784 | ---- | M] (Microsoft Corporation) MD5=E38899074D4951D31B4040E994DD7C8D -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20910_none_ae79ed04ac56c4a9\explorer.exe
[2009/08/03 07:17:37 | 002,868,224 | ---- | M] (Microsoft Corporation) MD5=F170B4A061C9E026437B193B4D571799 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16404_none_adff19b5932d79ae\explorer.exe

< MD5 for: HAL.DLL >
[2009/07/14 02:47:48 | 000,263,232 | ---- | M] (Microsoft Corporation) MD5=C0A6F6E05E14FBCAEDE7796C8590B7AC -- C:\Windows\winsxs\amd64_microsoft-windows-hal_31bf3856ad364e35_6.1.7600.16385_none_071de44b735b3dfc\hal.dll
[2010/11/20 14:33:34 | 000,263,040 | ---- | M] (Microsoft Corporation) MD5=CFB8C673F9188F99466E76C6972191E0 -- C:\Windows\SysNative\hal.dll
[2010/11/20 14:33:34 | 000,263,040 | ---- | M] (Microsoft Corporation) MD5=CFB8C673F9188F99466E76C6972191E0 -- C:\Windows\winsxs\amd64_microsoft-windows-hal_31bf3856ad364e35_6.1.7601.17514_none_094ef8137049c196\hal.dll

< MD5 for: SCECLI.DLL >
[2009/07/14 02:16:13 | 000,175,616 | ---- | M] (Microsoft Corporation) MD5=26073302DAEA83CC5B944C546D6B47D2 -- C:\Windows\winsxs\wow64_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.1.7600.16385_none_9e577e55272d37b4\scecli.dll
[2009/07/14 02:41:53 | 000,232,448 | ---- | M] (Microsoft Corporation) MD5=398712DDDAEFB85EDF61DF6A07B65C79 -- C:\Windows\winsxs\amd64_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.1.7600.16385_none_9402d402f2cc75b9\scecli.dll
[2010/11/20 13:21:04 | 000,175,616 | ---- | M] (Microsoft Corporation) MD5=8124944EC89D6A1815E4E53F5B96AAF4 -- C:\Windows\SysWOW64\scecli.dll
[2010/11/20 13:21:04 | 000,175,616 | ---- | M] (Microsoft Corporation) MD5=8124944EC89D6A1815E4E53F5B96AAF4 -- C:\Windows\winsxs\wow64_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.1.7601.17514_none_a088921d241bbb4e\scecli.dll
[2010/11/20 14:27:25 | 000,232,960 | ---- | M] (Microsoft Corporation) MD5=ED78427259134C63ED69804D2132B86C -- C:\Windows\SysNative\scecli.dll
[2010/11/20 14:27:25 | 000,232,960 | ---- | M] (Microsoft Corporation) MD5=ED78427259134C63ED69804D2132B86C -- C:\Windows\winsxs\amd64_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.1.7601.17514_none_9633e7caefbaf953\scecli.dll

< MD5 for: SVCHOST.EXE >
[2009/07/14 02:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) MD5=54A47F6B5E09A77E61649109C6A08866 -- C:\Windows\SysWOW64\svchost.exe
[2009/07/14 02:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) MD5=54A47F6B5E09A77E61649109C6A08866 -- C:\Windows\winsxs\x86_microsoft-windows-services-svchost_31bf3856ad364e35_6.1.7600.16385_none_b591afc466a15356\svchost.exe
[2009/07/14 02:39:46 | 000,027,136 | ---- | M] (Microsoft Corporation) MD5=C78655BC80301D76ED4FEF1C1EA40A7D -- C:\Windows\SysNative\svchost.exe
[2009/07/14 02:39:46 | 000,027,136 | ---- | M] (Microsoft Corporation) MD5=C78655BC80301D76ED4FEF1C1EA40A7D -- C:\Windows\winsxs\amd64_microsoft-windows-services-svchost_31bf3856ad364e35_6.1.7600.16385_none_11b04b481efec48c\svchost.exe

< MD5 for: TCPIP.SYS >
[2014/04/05 03:47:20 | 001,903,552 | ---- | M] (Microsoft Corporation) MD5=04ADD18EE5CC9FBEDAEC1DD1CD0CB45E -- C:\Windows\SysNative\drivers\tcpip.sys
[2014/04/05 03:47:20 | 001,903,552 | ---- | M] (Microsoft Corporation) MD5=04ADD18EE5CC9FBEDAEC1DD1CD0CB45E -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.18438_none_113260637d1284ef\tcpip.sys
[2012/10/03 18:56:54 | 001,914,248 | ---- | M] (Microsoft Corporation) MD5=37608401DFDB388CAF66917F6B2D6FB0 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.17964_none_110e0fbd7d2e4b88\tcpip.sys
[2013/09/08 03:30:37 | 001,903,552 | ---- | M] (Microsoft Corporation) MD5=40AF23633D197905F03AB5628C558C51 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.18254_none_1118bb977d265d27\tcpip.sys
[2014/04/05 03:37:43 | 001,897,408 | ---- | M] (Microsoft Corporation) MD5=4F80944B03112F486212DC20BE166079 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.22648_none_11b12f2896383dd1\tcpip.sys
[2010/11/20 14:33:57 | 001,924,480 | ---- | M] (Microsoft Corporation) MD5=509383E505C973ED7534A06B3D19688D -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.17514_none_114417c17d05cb37\tcpip.sys
[2013/01/04 06:41:01 | 001,893,224 | ---- | M] (Microsoft Corporation) MD5=5CFB7AB8F9524D1A1E14369DE63B83CC -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.17206_none_0f6a6af57fd59de6\tcpip.sys
[2013/01/03 06:57:12 | 001,876,824 | ---- | M] (Microsoft Corporation) MD5=692969AB90BDA19F56E27BF89A9260E2 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.21415_none_0fe8397098fc3d71\tcpip.sys
[2013/09/07 03:27:48 | 001,896,896 | ---- | M] (Microsoft Corporation) MD5=75F9106B74585D38C8FF6BB5CAD262D7 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.22444_none_11ad2a34963bde27\tcpip.sys
[2009/07/14 02:45:55 | 001,898,576 | ---- | M] (Microsoft Corporation) MD5=912107716BAB424C7870E8E6AF5E07E1 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.16385_none_0f1303f98017479d\tcpip.sys
[2013/07/06 06:20:38 | 001,900,992 | ---- | M] (Microsoft Corporation) MD5=B27F13153343BC37A27EAE01634D94E1 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.22378_none_1190b9b296509a2f\tcpip.sys
[2013/01/03 07:00:54 | 001,913,192 | ---- | M] (Microsoft Corporation) MD5=B62A953F2BF3922C8764A29C34A22899 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.18042_none_112187237d20143a\tcpip.sys
[2013/01/04 06:47:43 | 001,901,416 | ---- | M] (Microsoft Corporation) MD5=B8C1AAC0523E1C33AEB0EF7572144BA2 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.22209_none_11dd678a9616f2c8\tcpip.sys
[2012/10/03 18:44:29 | 001,902,472 | ---- | M] (Microsoft Corporation) MD5=D5707FC2300AA5B04B7BFE86D40C0133 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.22124_none_11c2c45a962baed0\tcpip.sys
[2013/07/06 07:03:53 | 001,910,208 | ---- | M] (Microsoft Corporation) MD5=DB74544B75566C974815E79A62433F29 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.18203_none_114dcae97cfeb81b\tcpip.sys
[2013/11/26 12:34:34 | 001,897,408 | ---- | M] (Microsoft Corporation) MD5=F55B41AA6114568AC558ADBABDA85620 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.22525_none_11c3cc3c962abcc3\tcpip.sys

< MD5 for: USERINIT.EXE >
[2010/11/20 13:17:48 | 000,026,624 | ---- | M] (Microsoft Corporation) MD5=61AC3EFDFACFDD3F0F11DD4FD4044223 -- C:\Windows\SysWOW64\userinit.exe
[2010/11/20 13:17:48 | 000,026,624 | ---- | M] (Microsoft Corporation) MD5=61AC3EFDFACFDD3F0F11DD4FD4044223 -- C:\Windows\winsxs\x86_microsoft-windows-userinit_31bf3856ad364e35_6.1.7601.17514_none_de3024012ff21116\userinit.exe
[2009/07/14 02:14:43 | 000,026,112 | ---- | M] (Microsoft Corporation) MD5=6DE80F60D7DE9CE6B8C2DDFDF79EF175 -- C:\Windows\winsxs\x86_microsoft-windows-userinit_31bf3856ad364e35_6.1.7600.16385_none_dbff103933038d7c\userinit.exe
[2009/07/14 02:39:48 | 000,030,208 | ---- | M] (Microsoft Corporation) MD5=6F8F1376A13114CC10C0E69274F5A4DE -- C:\Windows\winsxs\amd64_microsoft-windows-userinit_31bf3856ad364e35_6.1.7600.16385_none_381dabbceb60feb2\userinit.exe
[2010/11/20 14:25:24 | 000,030,720 | ---- | M] (Microsoft Corporation) MD5=BAFE84E637BF7388C96EF48D4D3FDD53 -- C:\Windows\SysNative\userinit.exe
[2010/11/20 14:25:24 | 000,030,720 | ---- | M] (Microsoft Corporation) MD5=BAFE84E637BF7388C96EF48D4D3FDD53 -- C:\Windows\winsxs\amd64_microsoft-windows-userinit_31bf3856ad364e35_6.1.7601.17514_none_3a4ebf84e84f824c\userinit.exe

< MD5 for: WINLOGON.EXE >
[2010/11/20 14:25:30 | 000,390,656 | ---- | M] (Microsoft Corporation) MD5=1151B1BAA6F350B1DB6598E0FEA7C457 -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7601.17514_none_cde90685eb910636\winlogon.exe
[2009/07/14 02:39:52 | 000,389,120 | ---- | M] (Microsoft Corporation) MD5=132328DF455B0028F13BF0ABEE51A63A -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7600.16385_none_cbb7f2bdeea2829c\winlogon.exe
[2014/03/04 12:08:14 | 000,455,680 | ---- | M] (Microsoft Corporation) MD5=6CE2AE073BD21C542FC2C707CAE944CC -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7601.22616_none_ce748d1d04acf24f\winlogon.exe
[2014/03/04 10:43:50 | 000,455,168 | ---- | M] (Microsoft Corporation) MD5=88AB9B72B4BF3963A0DE0820B4B0B06C -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7601.18409_none_cdf8bf35eb848572\winlogon.exe
[2014/07/17 03:07:24 | 000,455,168 | ---- | M] (Microsoft Corporation) MD5=8CEBD9D0A0A879CDE9F36F4383B7CAEA -- C:\Windows\SysNative\winlogon.exe
[2014/07/17 03:07:24 | 000,455,168 | ---- | M] (Microsoft Corporation) MD5=8CEBD9D0A0A879CDE9F36F4383B7CAEA -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7601.18540_none_cdc47ed1ebad0e4e\winlogon.exe
[2014/07/16 04:23:23 | 000,455,680 | ---- | M] (Microsoft Corporation) MD5=98AA0BFEE089C7E5DADB94190D93456C -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7601.22750_none_ce434d9704d2c730\winlogon.exe
[2009/10/28 08:01:57 | 000,389,632 | ---- | M] (Microsoft Corporation) MD5=A93D41A4D4B0D91C072D11DD8AF266DE -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7600.20560_none_cc522fd507b468f8\winlogon.exe
[2009/10/28 07:24:40 | 000,389,632 | ---- | M] (Microsoft Corporation) MD5=DA3E2A6FA9660CC75B471530CE88453A -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7600.16447_none_cbe534e7ee8042ad\winlogon.exe

< >

< %systemroot%*.* /U /s >
[5 C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp files -> C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp -> ]
[10 C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\*.tmp files -> C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\*.tmp -> ]
[3 C:\Windows\Temp\*.tmp files -> C:\Windows\Temp\*.tmp -> ]

< %SYSTEMDRIVE%\*.exe >

< %ALLUSERSPROFILE%\Application Data\*. >

< %ALLUSERSPROFILE%\Application Data\*.exe /s >

< %APPDATA%\*. >
[2014/04/08 22:33:35 | 000,000,000 | ---D | M] -- C:\Users\Roman\AppData\Roaming\Adobe
[2014/04/08 12:01:19 | 000,000,000 | ---D | M] -- C:\Users\Roman\AppData\Roaming\ATI
[2014/05/23 09:54:46 | 000,000,000 | ---D | M] -- C:\Users\Roman\AppData\Roaming\Battle.net
[2015/01/18 13:33:37 | 000,000,000 | ---D | M] -- C:\Users\Roman\AppData\Roaming\DAEMON Tools Lite
[2015/02/23 14:44:59 | 000,000,000 | ---D | M] -- C:\Users\Roman\AppData\Roaming\Dropbox
[2014/08/28 11:07:02 | 000,000,000 | ---D | M] -- C:\Users\Roman\AppData\Roaming\Eurobattle.net
[2014/05/29 14:21:55 | 000,000,000 | ---D | M] -- C:\Users\Roman\AppData\Roaming\GarenaPlus
[2015/02/23 18:21:17 | 000,000,000 | ---D | M] -- C:\Users\Roman\AppData\Roaming\gretl
[2014/04/08 10:57:05 | 000,000,000 | ---D | M] -- C:\Users\Roman\AppData\Roaming\Identities
[2014/09/27 13:43:55 | 000,000,000 | ---D | M] -- C:\Users\Roman\AppData\Roaming\InstallShield
[2014/09/10 11:36:31 | 000,000,000 | ---D | M] -- C:\Users\Roman\AppData\Roaming\library_dir
[2014/04/08 15:56:57 | 000,000,000 | ---D | M] -- C:\Users\Roman\AppData\Roaming\LibreOffice
[2015/01/16 16:57:08 | 000,000,000 | ---D | M] -- C:\Users\Roman\AppData\Roaming\MathWorks
[2009/07/14 08:45:14 | 000,000,000 | ---D | M] -- C:\Users\Roman\AppData\Roaming\Media Center Programs
[2014/11/24 18:34:02 | 000,000,000 | --SD | M] -- C:\Users\Roman\AppData\Roaming\Microsoft
[2014/04/08 22:52:25 | 000,000,000 | ---D | M] -- C:\Users\Roman\AppData\Roaming\MPC-HC
[2014/04/12 19:10:19 | 000,000,000 | ---D | M] -- C:\Users\Roman\AppData\Roaming\OpenOffice
[2014/09/10 16:00:56 | 000,000,000 | ---D | M] -- C:\Users\Roman\AppData\Roaming\Raptr
[2014/04/12 19:24:05 | 000,000,000 | ---D | M] -- C:\Users\Roman\AppData\Roaming\RStudio
[2015/02/07 17:59:58 | 000,000,000 | ---D | M] -- C:\Users\Roman\AppData\Roaming\Skype
[2015/01/16 16:57:48 | 000,000,000 | ---D | M] -- C:\Users\Roman\AppData\Roaming\Subversion
[2015/01/20 19:19:55 | 000,000,000 | ---D | M] -- C:\Users\Roman\AppData\Roaming\TS3Client
[2015/02/22 12:23:22 | 000,000,000 | ---D | M] -- C:\Users\Roman\AppData\Roaming\uTorrent
[2015/01/14 02:35:05 | 000,000,000 | ---D | M] -- C:\Users\Roman\AppData\Roaming\vlc
[2014/04/08 12:08:30 | 000,000,000 | ---D | M] -- C:\Users\Roman\AppData\Roaming\WinRAR

< %APPDATA%\*.exe /s >
[2015/02/11 02:12:26 | 042,555,824 | ---- | M] (Dropbox, Inc.) -- C:\Users\Roman\AppData\Roaming\Dropbox\bin\Dropbox.exe
[2015/02/11 02:15:08 | 000,262,760 | ---- | M] (Dropbox, Inc.) -- C:\Users\Roman\AppData\Roaming\Dropbox\bin\DropboxUninstaller.exe
[2015/02/11 02:12:28 | 000,257,696 | ---- | M] (Dropbox, Inc.) -- C:\Users\Roman\AppData\Roaming\Dropbox\bin\DropboxUpdateHelper.exe
[2015/01/28 10:31:41 | 001,374,032 | ---- | M] (BitTorrent Inc.) -- C:\Users\Roman\AppData\Roaming\uTorrent\uTorrent.exe
[2014/04/30 08:12:41 | 001,270,352 | ---- | M] (BitTorrent Inc.) -- C:\Users\Roman\AppData\Roaming\uTorrent\updates\3.4.1_30888.exe
[2014/07/14 13:52:25 | 001,272,400 | ---- | M] (BitTorrent Inc.) -- C:\Users\Roman\AppData\Roaming\uTorrent\updates\3.4.1_31139.exe
[2014/07/14 13:52:53 | 001,322,832 | ---- | M] (BitTorrent Inc.) -- C:\Users\Roman\AppData\Roaming\uTorrent\updates\3.4.2_32126.exe
[2014/09/21 10:59:49 | 001,416,016 | ---- | M] (BitTorrent Inc.) -- C:\Users\Roman\AppData\Roaming\uTorrent\updates\3.4.2_34024.exe
[2014/10/12 10:53:17 | 001,385,808 | ---- | M] (BitTorrent Inc.) -- C:\Users\Roman\AppData\Roaming\uTorrent\updates\3.4.2_34309.exe
[2014/10/27 18:44:48 | 001,385,808 | ---- | M] (BitTorrent Inc.) -- C:\Users\Roman\AppData\Roaming\uTorrent\updates\3.4.2_34944.exe
[2014/11/21 09:29:22 | 001,385,808 | ---- | M] (BitTorrent Inc.) -- C:\Users\Roman\AppData\Roaming\uTorrent\updates\3.4.2_35702.exe
[2015/01/28 10:31:41 | 001,374,032 | ---- | M] (BitTorrent Inc.) -- C:\Users\Roman\AppData\Roaming\uTorrent\updates\3.4.2_37754.exe

< %systemroot%\*. /mp /s >

< %systemroot%\system32\*.dll /lockedfiles >

< %systemroot%\Tasks\*.job >
[2015/02/23 18:28:00 | 000,000,932 | ---- | M] () -- C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
[2015/02/04 18:23:32 | 000,000,936 | ---- | M] () -- C:\Windows\Tasks\GoogleUpdateTaskMachineUA1cf6b112b9cb779.job
[2015/02/23 14:47:03 | 000,000,546 | ---- | M] () -- C:\Windows\Tasks\MATLAB R2014b Startup Accelerator.job

< %systemroot%\system32\drivers\*.sys /lockedfiles >

< %systemroot%\System32\config\*.sav >

< %systemroot%\system32\*.dll /lockedfiles >

< %systemroot%\system32\drivers\*.sys /3 >

< %systemroot%\system32\*.* /3 >
[2015/02/23 11:12:38 | 000,098,216 | ---- | M] (Oracle Corporation) -- C:\Windows\system32\WindowsAccessBridge-32.dll

< %SYSTEMDRIVE%\*.exe >

< >

< *crack* /s >
[2007/03/20 18:58:32 | 000,017,493 | ---- | M] () -- \Program Files (x86)\GOG.com\Heroes of Might and Magic V\Hammers of Fate\Editor\IconCache\AdvMapObjectLink\MapObjects\_(AdvMapObjectLink)\Objects-Lava\Lavacracks\Lavacrack3x2_1
[2007/03/20 18:58:30 | 000,017,493 | ---- | M] () -- \Program Files (x86)\GOG.com\Heroes of Might and Magic V\Hammers of Fate\Editor\IconCache\AdvMapObjectLink\MapObjects\_(AdvMapObjectLink)\Objects-Lava\Lavacracks\Lavacrack3x2_2
[2007/03/20 18:58:34 | 000,017,493 | ---- | M] () -- \Program Files (x86)\GOG.com\Heroes of Might and Magic V\Hammers of Fate\Editor\IconCache\AdvMapObjectLink\MapObjects\_(AdvMapObjectLink)\Objects-Lava\Lavacracks\Lavacrack3x2_3
[2007/03/20 18:58:34 | 000,017,493 | ---- | M] () -- \Program Files (x86)\GOG.com\Heroes of Might and Magic V\Hammers of Fate\Editor\IconCache\AdvMapObjectLink\MapObjects\_(AdvMapObjectLink)\Objects-Lava\Lavacracks\Lavacrack3x2_4
[2007/03/20 18:58:34 | 000,017,493 | ---- | M] () -- \Program Files (x86)\GOG.com\Heroes of Might and Magic V\Hammers of Fate\Editor\IconCache\AdvMapObjectLink\MapObjects\_(AdvMapObjectLink)\Objects-Lava\Lavacracks\Lavacrack5x3_1
[2007/03/20 18:58:32 | 000,017,493 | ---- | M] () -- \Program Files (x86)\GOG.com\Heroes of Might and Magic V\Hammers of Fate\Editor\IconCache\AdvMapObjectLink\MapObjects\_(AdvMapObjectLink)\Objects-Lava\Lavacracks\Lavacrack5x3_2
[2007/03/20 18:58:30 | 000,017,493 | ---- | M] () -- \Program Files (x86)\GOG.com\Heroes of Might and Magic V\Hammers of Fate\Editor\IconCache\AdvMapObjectLink\MapObjects\_(AdvMapObjectLink)\Objects-Lava\Lavacracks\Lavacrack5x3_3
[2007/03/20 18:58:34 | 000,017,493 | ---- | M] () -- \Program Files (x86)\GOG.com\Heroes of Might and Magic V\Hammers of Fate\Editor\IconCache\AdvMapObjectLink\MapObjects\_(AdvMapObjectLink)\Objects-Lava\Lavacracks\Lavacrack5x3_4
[2007/03/20 18:58:30 | 000,017,493 | ---- | M] () -- \Program Files (x86)\GOG.com\Heroes of Might and Magic V\Hammers of Fate\Editor\IconCache\AdvMapObjectLink\MapObjects\_(AdvMapObjectLink)\Objects-Lava\Lavacracks\Lavacrack7x2_1
[2007/03/20 18:58:30 | 000,017,493 | ---- | M] () -- \Program Files (x86)\GOG.com\Heroes of Might and Magic V\Hammers of Fate\Editor\IconCache\AdvMapObjectLink\MapObjects\_(AdvMapObjectLink)\Objects-Lava\Lavacracks\Lavacrack7x4_1
[2007/03/20 18:58:32 | 000,017,493 | ---- | M] () -- \Program Files (x86)\GOG.com\Heroes of Might and Magic V\Hammers of Fate\Editor\IconCache\AdvMapObjectLink\MapObjects\_(AdvMapObjectLink)\Objects-Lava\Lavacracks\Lavacrack7x5_1
[2006/09/21 15:29:28 | 000,017,494 | ---- | M] () -- \Program Files (x86)\GOG.com\Heroes of Might and Magic V\Hammers of Fate\Editor\IconCache\AdvMapObjectLink\MapObjects\_(AdvMapObjectLink)\Objects-Snow\Trees\CrackedSpruce01
[2006/09/21 15:29:32 | 000,017,494 | ---- | M] () -- \Program Files (x86)\GOG.com\Heroes of Might and Magic V\Hammers of Fate\Editor\IconCache\AdvMapObjectLink\MapObjects\_(AdvMapObjectLink)\Objects-Snow\Trees\CrackedSpruce02
[2006/09/21 15:29:40 | 000,017,494 | ---- | M] () -- \Program Files (x86)\GOG.com\Heroes of Might and Magic V\Hammers of Fate\Editor\IconCache\AdvMapObjectLink\MapObjects\_(AdvMapObjectLink)\Objects-Snow\Trees\CrackedSpruce03
[2006/09/21 15:29:28 | 000,017,494 | ---- | M] () -- \Program Files (x86)\GOG.com\Heroes of Might and Magic V\Hammers of Fate\Editor\IconCache\AdvMapObjectLink\MapObjects\_(AdvMapObjectLink)\Objects-Snow\Trees\CrackedSpruce04
[2006/09/21 15:29:28 | 000,017,494 | ---- | M] () -- \Program Files (x86)\GOG.com\Heroes of Might and Magic V\Hammers of Fate\Editor\IconCache\AdvMapObjectLink\MapObjects\_(AdvMapObjectLink)\Objects-Snow\Trees\CrackedSpruce05
[2006/09/21 15:29:38 | 000,017,490 | ---- | M] () -- \Program Files (x86)\GOG.com\Heroes of Might and Magic V\Hammers of Fate\Editor\IconCache\AdvMapObjectLink\MapObjects\_(AdvMapObjectLink)\Objects-Snow\Trees\CrackedTree
[2007/06/13 17:10:44 | 000,017,491 | ---- | M] () -- \Program Files (x86)\GOG.com\Heroes of Might and Magic V\Hammers of Fate\Editor\IconCache\AdvMapTile\MapObjects\_(AdvMapTile)\Sand\Sand_Cracked
[2007/10/10 16:34:00 | 000,017,493 | ---- | M] () -- \Program Files (x86)\GOG.com\Heroes of Might and Magic V\Tribes of the East\Editor\IconCache\AdvMapObjectLink\MapObjects\_(AdvMapObjectLink)\Objects-Lava\Lavacracks\Lavacrack3x2_1
[2007/10/10 16:34:00 | 000,017,493 | ---- | M] () -- \Program Files (x86)\GOG.com\Heroes of Might and Magic V\Tribes of the East\Editor\IconCache\AdvMapObjectLink\MapObjects\_(AdvMapObjectLink)\Objects-Lava\Lavacracks\Lavacrack3x2_2
[2007/10/10 16:34:02 | 000,017,493 | ---- | M] () -- \Program Files (x86)\GOG.com\Heroes of Might and Magic V\Tribes of the East\Editor\IconCache\AdvMapObjectLink\MapObjects\_(AdvMapObjectLink)\Objects-Lava\Lavacracks\Lavacrack3x2_3
[2007/10/10 16:34:02 | 000,017,493 | ---- | M] () -- \Program Files (x86)\GOG.com\Heroes of Might and Magic V\Tribes of the East\Editor\IconCache\AdvMapObjectLink\MapObjects\_(AdvMapObjectLink)\Objects-Lava\Lavacracks\Lavacrack3x2_4
[2007/10/10 16:34:02 | 000,017,493 | ---- | M] () -- \Program Files (x86)\GOG.com\Heroes of Might and Magic V\Tribes of the East\Editor\IconCache\AdvMapObjectLink\MapObjects\_(AdvMapObjectLink)\Objects-Lava\Lavacracks\Lavacrack5x3_1
[2007/10/10 16:34:00 | 000,017,493 | ---- | M] () -- \Program Files (x86)\GOG.com\Heroes of Might and Magic V\Tribes of the East\Editor\IconCache\AdvMapObjectLink\MapObjects\_(AdvMapObjectLink)\Objects-Lava\Lavacracks\Lavacrack5x3_2
[2007/10/10 16:34:00 | 000,017,493 | ---- | M] () -- \Program Files (x86)\GOG.com\Heroes of Might and Magic V\Tribes of the East\Editor\IconCache\AdvMapObjectLink\MapObjects\_(AdvMapObjectLink)\Objects-Lava\Lavacracks\Lavacrack5x3_3
[2007/10/10 16:34:02 | 000,017,493 | ---- | M] () -- \Program Files (x86)\GOG.com\Heroes of Might and Magic V\Tribes of the East\Editor\IconCache\AdvMapObjectLink\MapObjects\_(AdvMapObjectLink)\Objects-Lava\Lavacracks\Lavacrack5x3_4
[2007/10/10 16:33:58 | 000,017,493 | ---- | M] () -- \Program Files (x86)\GOG.com\Heroes of Might and Magic V\Tribes of the East\Editor\IconCache\AdvMapObjectLink\MapObjects\_(AdvMapObjectLink)\Objects-Lava\Lavacracks\Lavacrack7x2_1
[2007/10/10 16:33:58 | 000,017,493 | ---- | M] () -- \Program Files (x86)\GOG.com\Heroes of Might and Magic V\Tribes of the East\Editor\IconCache\AdvMapObjectLink\MapObjects\_(AdvMapObjectLink)\Objects-Lava\Lavacracks\Lavacrack7x4_1
[2007/10/10 16:34:00 | 000,017,493 | ---- | M] () -- \Program Files (x86)\GOG.com\Heroes of Might and Magic V\Tribes of the East\Editor\IconCache\AdvMapObjectLink\MapObjects\_(AdvMapObjectLink)\Objects-Lava\Lavacracks\Lavacrack7x5_1
[2007/10/10 16:33:32 | 000,017,494 | ---- | M] () -- \Program Files (x86)\GOG.com\Heroes of Might and Magic V\Tribes of the East\Editor\IconCache\AdvMapObjectLink\MapObjects\_(AdvMapObjectLink)\Objects-Snow\Trees\CrackedSpruce01
[2007/10/10 16:33:34 | 000,017,494 | ---- | M] () -- \Program Files (x86)\GOG.com\Heroes of Might and Magic V\Tribes of the East\Editor\IconCache\AdvMapObjectLink\MapObjects\_(AdvMapObjectLink)\Objects-Snow\Trees\CrackedSpruce02
[2007/10/10 16:33:32 | 000,017,494 | ---- | M] () -- \Program Files (x86)\GOG.com\Heroes of Might and Magic V\Tribes of the East\Editor\IconCache\AdvMapObjectLink\MapObjects\_(AdvMapObjectLink)\Objects-Snow\Trees\CrackedSpruce03
[2007/10/10 16:33:34 | 000,017,494 | ---- | M] () -- \Program Files (x86)\GOG.com\Heroes of Might and Magic V\Tribes of the East\Editor\IconCache\AdvMapObjectLink\MapObjects\_(AdvMapObjectLink)\Objects-Snow\Trees\CrackedSpruce04
[2007/10/10 16:33:32 | 000,017,494 | ---- | M] () -- \Program Files (x86)\GOG.com\Heroes of Might and Magic V\Tribes of the East\Editor\IconCache\AdvMapObjectLink\MapObjects\_(AdvMapObjectLink)\Objects-Snow\Trees\CrackedSpruce05
[2007/10/10 16:33:32 | 000,017,490 | ---- | M] () -- \Program Files (x86)\GOG.com\Heroes of Might and Magic V\Tribes of the East\Editor\IconCache\AdvMapObjectLink\MapObjects\_(AdvMapObjectLink)\Objects-Snow\Trees\CrackedTree
[2007/06/13 17:10:44 | 000,017,491 | ---- | M] () -- \Program Files (x86)\GOG.com\Heroes of Might and Magic V\Tribes of the East\Editor\IconCache\AdvMapTile\MapObjects\_(AdvMapTile)\Sand\Sand_Cracked
[2014/03/06 11:55:42 | 000,000,127 | ---- | M] () -- \Program Files\R\R-3.0.3\library\survival\tests\data.cracks
[2015/01/26 02:45:52 | 000,003,072 | ---- | M] () -- \Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.cracked.com_0.localstorage
[2015/01/26 02:45:52 | 000,003,608 | ---- | M] () -- \Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.cracked.com_0.localstorage-journal
[2007/01/31 22:25:40 | 000,000,149 | ---- | M] () -- \Users\Roman\Desktop\Half Life Source Deathmatch\Half Life Source Deathmatch\hl1\materials\decals\{crack2.vmt
[2007/01/31 22:25:40 | 000,011,088 | ---- | M] () -- \Users\Roman\Desktop\Half Life Source Deathmatch\Half Life Source Deathmatch\hl1\materials\decals\{crack2.vtf

Romchi
Návštěvník
Návštěvník
Příspěvky: 13
Registrován: 23 úno 2015 15:01

Re: Prosím o preventívnu kontrolu,ďakujem.

#6 Příspěvek od Romchi »

< *keygen* /s >
[2011/12/06 12:59:30 | 000,109,056 | ---- | M] () -- \Program Files\RStudio\bin\msys_ssh\ssh-keygen.exe

< *AntiWPA* /s >

< *loader* /s >
[2014/04/03 09:33:26 | 000,051,504 | ---- | M] () -- \Program Files (x86)\Garena Plus\FileLoader.dll
[2014/04/03 09:33:30 | 002,941,232 | ---- | M] () -- \Program Files (x86)\Garena Plus\ggdownloader.dll
[2014/04/03 08:48:54 | 000,255,280 | ---- | M] () -- \Program Files (x86)\Garena Plus\bbtalk\GarenaTalkLoader.exe
[2014/02/01 00:15:50 | 000,006,866 | ---- | M] () -- \Program Files (x86)\LibreOffice 4\program\pythonloader.py
[2014/02/27 15:22:32 | 000,000,171 | ---- | M] () -- \Program Files (x86)\LibreOffice 4\program\pythonloader.uno.ini
[2014/02/27 15:21:14 | 000,037,904 | ---- | M] () -- \Program Files (x86)\LibreOffice 4\program\pythonloaderlo.dll
[2014/02/26 22:48:28 | 000,124,248 | ---- | M] () -- \Program Files (x86)\LibreOffice 4\program\classes\libloader-1.1.6.jar
[2014/02/27 04:59:10 | 000,013,883 | ---- | M] () -- \Program Files (x86)\LibreOffice 4\program\python-core-3.3.3\lib\unittest\loader.py
[2014/02/27 04:59:14 | 000,050,275 | ---- | M] () -- \Program Files (x86)\LibreOffice 4\program\python-core-3.3.3\lib\unittest\test\test_loader.py
[2014/02/27 15:19:40 | 000,077,328 | ---- | M] () -- \Program Files (x86)\LibreOffice 4\URE\bin\javaloaderlo.dll
[2014/02/26 22:41:48 | 000,004,757 | ---- | M] () -- \Program Files (x86)\LibreOffice 4\URE\java\unoloader.jar
[2013/09/17 03:57:36 | 000,005,813 | ---- | M] () -- \Program Files (x86)\OpenOffice 4\program\pythonloader.py
[2013/09/20 12:39:02 | 000,003,868 | ---- | M] () -- \Program Files (x86)\OpenOffice 4\program\classes\unoloader.jar
[2013/09/16 21:10:56 | 000,013,420 | ---- | M] () -- \Program Files (x86)\OpenOffice 4\program\python-core-2.7.5\lib\unittest\loader.py
[2010/11/22 23:57:34 | 000,009,216 | ---- | M] () -- \Program Files (x86)\Raptr\_win32sysloader.pyd
[2014/12/10 02:28:04 | 000,001,701 | ---- | M] () -- \Program Files (x86)\Steam\friends\broadcastuploaderrornotification.res
[2014/11/11 19:48:42 | 000,007,825 | ---- | M] () -- \Program Files (x86)\Steam\remoteui\static\libs\images\ajax-loader.gif
[2015/01/16 16:48:59 | 000,000,592 | ---- | M] () -- \Program Files\MATLAB\R2014b\appdata\components\preloader_win64 1406361817 6234987368631298533.xml
[2015/01/16 16:49:04 | 000,000,170 | ---- | M] () -- \Program Files\MATLAB\R2014b\appdata\files\preloader_win64 1406361817_manifest.bin
[2014/08/04 19:07:38 | 000,000,816 | ---- | M] () -- \Program Files\MATLAB\R2014b\bin\registry\dotnetcli_loader.xml
[2014/08/11 20:44:34 | 000,038,912 | ---- | M] () -- \Program Files\MATLAB\R2014b\bin\win64\dotnetcli_loader.dll
[2014/08/11 15:36:00 | 000,013,100 | ---- | M] () -- \Program Files\MATLAB\R2014b\help\javabuilder\MWArrayAPI\com\mathworks\toolbox\javabuilder\MWCtfClassLoaderSource.html
[2014/08/29 14:24:22 | 000,002,084 | ---- | M] () -- \Program Files\MATLAB\R2014b\mcr\toolbox\matlab\datastoreio\+matlab\+io\+datastore\+internal\hadoopLoader.m
[2014/08/04 18:58:16 | 000,016,670 | ---- | M] () -- \Program Files\MATLAB\R2014b\mcr\toolbox\matlab\uitools\uicomponents\web\release\gbt\images\Loader_Blue_32px.gif
[2014/04/14 08:16:44 | 000,000,236 | ---- | M] () -- \Program Files\MATLAB\R2014b\resources\images\en\ImageLoader.xml
[2014/07/31 14:39:32 | 000,000,438 | ---- | M] () -- \Program Files\MATLAB\R2014b\resources\images\ja_JP\ImageLoader.xml
[2014/08/04 16:01:30 | 000,000,969 | ---- | M] () -- \Program Files\MATLAB\R2014b\resources\MATLAB\en\datastoreio\hadooploader.xml
[2014/08/04 16:15:08 | 000,001,288 | ---- | M] () -- \Program Files\MATLAB\R2014b\resources\MATLAB\ja_JP\datastoreio\hadooploader.xml
[2009/09/21 06:46:08 | 000,015,003 | ---- | M] () -- \Program Files\MATLAB\R2014b\sys\perl\win32\lib\AutoLoader.pm
[2005/09/12 13:21:36 | 000,000,727 | ---- | M] () -- \Program Files\MATLAB\R2014b\sys\perl\win32\lib\ByteLoader.pm
[2010/01/26 22:16:30 | 000,027,274 | ---- | M] () -- \Program Files\MATLAB\R2014b\sys\perl\win32\lib\DynaLoader.pm
[2008/10/25 14:58:38 | 000,017,776 | ---- | M] () -- \Program Files\MATLAB\R2014b\sys\perl\win32\lib\SelfLoader.pm
[2010/01/26 22:16:30 | 000,010,882 | ---- | M] () -- \Program Files\MATLAB\R2014b\sys\perl\win32\lib\XSLoader.pm
[2010/01/26 22:18:04 | 000,032,875 | ---- | M] () -- \Program Files\MATLAB\R2014b\sys\perl\win32\lib\auto\ByteLoader\ByteLoader.dll
[2008/06/07 07:04:56 | 000,001,378 | ---- | M] () -- \Program Files\MATLAB\R2014b\sys\perl\win32\lib\Locale\Maketext\GutsLoader.pm
[2013/11/07 11:28:32 | 000,020,463 | ---- | M] () -- \Program Files\MATLAB\R2014b\sys\tomcat\webapps\docs\class-loader-howto.html
[2013/11/07 11:28:32 | 000,016,547 | ---- | M] () -- \Program Files\MATLAB\R2014b\sys\tomcat\webapps\docs\config\loader.html
[2014/05/19 09:16:00 | 000,001,800 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\compiler\mlhadoop\+matlab\+compiler\+mlhadoop\+internal\serializerLoader.m
[2014/04/23 08:51:32 | 000,003,574 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\images\imuitools\+iptui\+internal\ImageLoaderBW.m
[2014/04/23 08:51:50 | 000,003,144 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\images\imuitools\+iptui\+internal\ImageLoaderRGB.m
[2014/04/22 15:53:58 | 000,098,816 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\imaq\imaqextern\drivers\win64\genicam\GenICam_v2_3\bin\Win64_x64\GenApi\Generic\XMLLoader_MD_VC80_v2_3.dll
[2013/10/22 23:06:34 | 000,011,324 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\instrument\instrument\private\privateIviComLoader.m
[2013/03/07 03:25:16 | 000,000,317 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\local\classloader.txt
[2014/09/15 19:58:22 | 000,000,848 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\matlab\connector\connector\+connector\+internal\initClassLoader.p
[2014/08/04 16:01:36 | 000,008,629 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\matlab\datastoreio\+matlab\+io\+datastore\+internal\hadoopLoader.m
[2014/08/04 18:59:18 | 000,016,670 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\shared\dastudio\seqdiagram\web\release\SD\images\Loader_Blue_32px.gif
[2014/08/04 18:57:58 | 000,016,670 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\shared\dastudio\web\matlabeditor\release\matlabeditor\images\Loader_Blue_32px.gif
[2014/08/04 19:58:22 | 000,016,670 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\shared\sdi\web\ImportDialog\release\SDI2ImportDataDialog\images\Loader_Blue_32px.gif
[2014/09/15 20:02:38 | 000,016,670 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\shared\sdi\web\MainView\release\SDI2\images\Loader_Blue_32px.gif
[2014/08/04 19:59:36 | 000,016,670 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\shared\sdi\web\RunConfigDialog\release\SDI2RunConfigDialog\images\Loader_Blue_32px.gif
[2014/08/29 16:18:48 | 000,016,670 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\simulink\hmi\web\Dialogs\ParameterDialog\release\HMIParameterDialog\images\Loader_Blue_32px.gif
[2014/08/29 16:17:30 | 000,016,670 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\simulink\hmi\web\Dialogs\ScopeDialog\release\HMIScopeDialog\images\Loader_Blue_32px.gif
[2014/08/29 16:19:56 | 000,016,670 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\simulink\hmi\web\Dialogs\SignalDialog\release\HMISignalDialog\images\Loader_Blue_32px.gif
[2014/09/15 20:04:36 | 000,000,539 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\simulink\sdi\+Simulink\+sdi\@SimulinkModelLoader\SimulinkModelLoader.p
[2014/08/11 21:12:16 | 000,016,670 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\simulink\simulink\slmsgviewer\release\slmsgviewer\images\Loader_Blue_32px.gif
[2014/08/04 20:38:16 | 000,016,670 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\simulink\sltemplate\web\ExportToTemplate\release\ExportToTemplate\images\Loader_Blue_32px.gif
[2014/08/04 20:38:16 | 000,016,670 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\simulink\sltemplate\web\GalleryView\release\GalleryView\images\Loader_Blue_32px.gif
[2014/08/29 16:19:14 | 000,016,670 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\simulink\sta\web\release\SigAuth\images\Loader_Blue_32px.gif
[2014/08/04 21:43:36 | 000,016,670 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\stateflow\stateflow\+Stateflow\+Debug\web\release\SFDebugger\images\Loader_Blue_32px.gif
[2014/08/04 21:42:48 | 000,016,670 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\stateflow\stateflow\+Stateflow\+STT\+Views\html\stm\release\STM\images\Loader_Blue_32px.gif
[2014/08/05 03:58:30 | 000,015,360 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\symbolic\symbolic\mupadmexunloader.mexw64
[2013/03/05 23:02:44 | 000,001,056 | ---- | M] () -- \Program Files\R\R-3.0.3\share\R\nspackloader.R
[2014/04/07 22:02:21 | 000,061,528 | ---- | M] () -- \Program Files\WinRAR\Ace32Loader.exe
[2014/08/13 13:14:30 | 000,009,418 | ---- | M] () -- \Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.18_0\img\gifloader.gif
[2014/09/27 13:42:17 | 000,057,728 | ---- | M] () -- \Users\Roman\AppData\Local\Microsoft\Windows Sidebar\Gadgets\DT.gadget\img\dt_dadget_loader.png
[2014/09/27 13:42:17 | 000,057,728 | ---- | M] () -- \Users\Roman\AppData\Local\Microsoft\Windows Sidebar\Gadgets\DT.gadget\skins\skin1\dt_dadget_loader.png
[2014/09/27 13:42:17 | 000,057,728 | ---- | M] () -- \Users\Roman\AppData\Local\Microsoft\Windows Sidebar\Gadgets\DT.gadget\skins\skin2\dt_dadget_loader.png
[2014/09/27 13:42:17 | 000,057,728 | ---- | M] () -- \Users\Roman\AppData\Local\Microsoft\Windows Sidebar\Gadgets\DT.gadget\skins\skin3\dt_dadget_loader.png
[2014/09/27 13:42:17 | 000,057,728 | ---- | M] () -- \Users\Roman\AppData\Local\Microsoft\Windows Sidebar\Gadgets\DT.gadget\skins\skin4\dt_dadget_loader.png
[2014/09/27 13:42:18 | 000,061,770 | ---- | M] () -- \Users\Roman\AppData\Local\Microsoft\Windows Sidebar\Gadgets\DT.gadget\skins\skin5\dt_dadget_loader.png
[2014/09/27 13:42:18 | 000,061,770 | ---- | M] () -- \Users\Roman\AppData\Local\Microsoft\Windows Sidebar\Gadgets\DT.gadget\skins\skin6\dt_dadget_loader.png
[2015/01/20 12:29:12 | 000,001,980 | ---- | M] () -- \Users\Roman\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\0RU4DVQT\AdLoader[1].htm
[2015/01/20 12:29:12 | 000,019,121 | ---- | M] () -- \Users\Roman\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4CDRFB6O\AdLoader-288a31a04e1398b1a794975bf93ce9a4.min[1].js
[2014/07/24 14:53:16 | 000,072,638 | ---- | M] () -- \Users\Roman\AppData\Local\Skype\Apps\login\images\loader.gif
[2014/07/24 14:53:16 | 000,003,032 | ---- | M] () -- \Users\Roman\AppData\Local\Skype\Apps\login\images\loader.png
[2014/07/24 14:53:16 | 000,006,012 | ---- | M] () -- \Users\Roman\AppData\Local\Skype\Apps\login\images\normal\loader_15fps.gif
[2014/07/24 14:53:16 | 000,021,956 | ---- | M] () -- \Users\Roman\AppData\Local\Skype\Apps\login\images\normal\loader_30fps.gif
[2014/07/24 14:53:16 | 000,009,772 | ---- | M] () -- \Users\Roman\AppData\Local\Skype\Apps\login\images\retina\loader@2x.png
[2014/10/02 19:09:31 | 000,001,022 | ---- | M] () -- \Users\Roman\AppData\Local\Sports Interactive\Football Manager 2014\Preferences\version 103\channel-WORKSHOP_DOWNLOADER_CHANNEL.xml
[2003/09/26 07:15:26 | 000,169,384 | ---- | M] () -- \Users\Roman\Desktop\cs16\cstrike\models\qloader.mdl
[2003/09/26 13:19:52 | 000,352,548 | ---- | M] () -- \Users\Roman\Desktop\cs16\valve\models\loader.mdl
[2003/09/26 13:24:16 | 000,012,764 | ---- | M] () -- \Users\Roman\Desktop\cs16\valve\sound\ambience\loader_hydra1.wav
[2003/09/26 13:24:16 | 000,012,164 | ---- | M] () -- \Users\Roman\Desktop\cs16\valve\sound\ambience\loader_step1.wav
[2014/09/05 00:14:39 | 000,891,224 | ---- | M] () -- \Users\Roman\Downloads\amddriverdownloader.exe
[2013/08/02 02:48:15 | 000,003,584 | -H-- | M] () -- \Windows\System32\api-ms-win-core-libraryloader-l1-1-0.dll
[2009/07/14 02:15:12 | 000,038,400 | ---- | M] () -- \Windows\System32\dmloader.dll
[2013/08/02 02:48:15 | 000,003,584 | -H-- | M] () -- \Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
[2009/07/14 02:15:12 | 000,038,400 | ---- | M] () -- \Windows\SysWOW64\dmloader.dll
[2009/07/14 02:40:31 | 000,047,616 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-audio-dmusic_31bf3856ad364e35_6.1.7600.16385_none_a1e90d98a953d601\dmloader.dll
[2009/07/14 02:24:53 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16385_none_66a6e19d9580f9e3\api-ms-win-core-libraryloader-l1-1-0.dll
[2012/10/04 18:28:57 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.17135_none_66dcd6a595588d81\api-ms-win-core-libraryloader-l1-1-0.dll
[2012/11/30 06:41:11 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.17179_none_66b5981d957562a1\api-ms-win-core-libraryloader-l1-1-0.dll
[2013/01/04 06:26:58 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.17206_none_66fe4899953f502c\api-ms-win-core-libraryloader-l1-1-0.dll
[2012/10/04 18:26:17 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.21335_none_67667556ae762a72\api-ms-win-core-libraryloader-l1-1-0.dll
[2012/11/30 06:36:06 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.21386_none_67316604ae9dcf7e\api-ms-win-core-libraryloader-l1-1-0.dll
[2013/01/04 15:12:39 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.21416_none_677d175eae65090e\api-ms-win-core-libraryloader-l1-1-0.dll
[2012/10/04 18:38:48 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.17965_none_68a2edab92971725\api-ms-win-core-libraryloader-l1-1-0.dll
[2012/11/30 06:38:44 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.18015_none_68d8d569926ebeb2\api-ms-win-core-libraryloader-l1-1-0.dll
[2013/08/02 03:12:19 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.18229_none_68d20a7192733a4d\api-ms-win-core-libraryloader-l1-1-0.dll
[2012/10/04 18:35:00 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22125_none_6957a248ab947a6d\api-ms-win-core-libraryloader-l1-1-0.dll
[2012/11/30 06:39:37 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22177_none_69239340abbb38d0\api-ms-win-core-libraryloader-l1-1-0.dll
[2013/01/04 06:32:07 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22209_none_6971452eab80a50e\api-ms-win-core-libraryloader-l1-1-0.dll
[2013/08/02 07:20:45 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22411_none_695e76beab8ff095\api-ms-win-core-libraryloader-l1-1-0.dll
[2013/08/29 03:18:31 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22436_none_694dd858ab9ba72a\api-ms-win-core-libraryloader-l1-1-0.dll
[2014/03/04 12:03:17 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22616_none_69637bfcab8b6996\api-ms-win-core-libraryloader-l1-1-0.dll
[2014/04/12 03:28:21 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22653_none_69353b6eabae8d55\api-ms-win-core-libraryloader-l1-1-0.dll
[2014/10/15 19:58:23 | 000,004,141 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7601.18526_en-us_d4b5d954faa9c8f4.manifest
[2014/10/15 19:58:23 | 000,033,360 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7601.18526_en-us_d4b5d954faa9c8f4_winload.efi.mui_35ee487d
[2014/10/15 19:58:23 | 000,033,344 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7601.18526_en-us_d4b5d954faa9c8f4_winload.exe.mui_3bc5b827
[2014/10/15 19:58:23 | 000,029,776 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7601.18526_en-us_d4b5d954faa9c8f4_winresume.efi.mui_f412814e
[2014/10/15 19:58:23 | 000,029,760 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7601.18526_en-us_d4b5d954faa9c8f4_winresume.exe.mui_ff8b5358
[2014/10/15 19:58:26 | 000,005,744 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.18574_none_b90bc95183772bd0.manifest
[2014/10/15 19:58:26 | 000,693,176 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.18574_none_b90bc95183772bd0_winload.efi_75834aa0
[2014/10/15 19:58:27 | 000,619,056 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.18574_none_b90bc95183772bd0_winload.exe_75835076
[2014/10/15 19:58:27 | 000,616,352 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.18574_none_b90bc95183772bd0_winresume.efi_85cd069f
[2014/10/15 19:58:27 | 000,532,176 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.18574_none_b90bc95183772bd0_winresume.exe_85cd1215
[2009/07/14 03:57:50 | 000,002,896 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-s..ive-blackbox-loader_31bf3856ad364e35_6.1.7600.16385_none_c72819e06acceb59.manifest
[2009/07/14 03:57:50 | 000,019,008 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-s..ive-blackbox-loader_31bf3856ad364e35_6.1.7600.16385_none_c72819e06acceb59_spldr.sys_98bd87a0
[2009/07/14 03:44:20 | 000,004,431 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_en-us_d28dabacfdb4dd1a.manifest
[2014/07/08 22:52:01 | 000,004,141 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7601.18526_en-us_d4b5d954faa9c8f4.manifest
[2014/07/08 22:52:05 | 000,004,141 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7601.22736_en-us_d534a81a13cf81d6.manifest
[2014/12/13 02:58:08 | 000,004,141 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7601.22908_en-us_d5571c3e13b55aff.manifest
[2015/01/12 23:17:17 | 000,004,141 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7601.22921_en-us_d53a7a6013cbe180.manifest
[2015/01/16 07:36:33 | 000,004,141 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7601.22923_en-us_d53c7af413ca142e.manifest
[2009/07/14 03:13:42 | 000,005,745 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7600.16385_none_b71babd98657e6ef.manifest
[2011/02/05 14:09:31 | 000,005,745 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7600.16757_none_b73e23c9863dba66.manifest
[2011/02/05 14:04:44 | 000,005,745 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7600.20897_none_b79c80e49f7bc9f4.manifest
[2010/11/20 05:12:44 | 000,005,745 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17514_none_b94cbfa183466a89.manifest
[2011/02/05 18:34:23 | 000,005,745 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17556_none_b923808583650cfb.manifest
[2014/08/19 04:35:45 | 000,005,744 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.18574_none_b90bc95183772bd0.manifest
[2011/02/05 14:09:57 | 000,005,745 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.21655_none_b9ac1d069c83936e.manifest
[2014/08/19 04:26:49 | 000,005,744 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.22780_none_b98696ee9ca07f56.manifest
[2014/12/12 07:29:00 | 000,005,744 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.22908_none_b9e51c6a9c5864d4.manifest
[2015/01/12 04:50:53 | 000,005,744 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.22921_none_b9c87a8c9c6eeb55.manifest
[2015/01/16 07:37:02 | 000,005,511 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.22923_none_b9ca7b209c6d1e03.manifest
[2009/07/14 03:18:27 | 000,002,896 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-s..ive-blackbox-loader_31bf3856ad364e35_6.1.7600.16385_none_c72819e06acceb59.manifest
[2009/07/14 02:15:12 | 000,038,400 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-audio-dmusic_31bf3856ad364e35_6.1.7600.16385_none_45ca7214f0f664cb\dmloader.dll
[2009/07/14 02:03:49 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16385_none_0a884619dd2388ad\api-ms-win-core-libraryloader-l1-1-0.dll
[2012/10/04 17:45:38 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.17135_none_0abe3b21dcfb1c4b\api-ms-win-core-libraryloader-l1-1-0.dll
[2012/11/30 05:56:23 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.17179_none_0a96fc99dd17f16b\api-ms-win-core-libraryloader-l1-1-0.dll
[2013/01/04 05:43:53 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.17206_none_0adfad15dce1def6\api-ms-win-core-libraryloader-l1-1-0.dll
[2012/10/04 17:48:05 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.21335_none_0b47d9d2f618b93c\api-ms-win-core-libraryloader-l1-1-0.dll
[2012/11/30 05:44:10 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.21386_none_0b12ca80f6405e48\api-ms-win-core-libraryloader-l1-1-0.dll
[2013/01/04 05:39:49 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.21416_none_0b5e7bdaf60797d8\api-ms-win-core-libraryloader-l1-1-0.dll
[2012/10/04 17:40:37 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.17965_none_0c845227da39a5ef\api-ms-win-core-libraryloader-l1-1-0.dll
[2012/11/30 05:45:15 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.18015_none_0cba39e5da114d7c\api-ms-win-core-libraryloader-l1-1-0.dll
[2013/08/02 02:48:15 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.18229_none_0cb36eedda15c917\api-ms-win-core-libraryloader-l1-1-0.dll
[2012/10/04 17:29:45 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22125_none_0d3906c4f3370937\api-ms-win-core-libraryloader-l1-1-0.dll
[2012/11/30 05:46:37 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22177_none_0d04f7bcf35dc79a\api-ms-win-core-libraryloader-l1-1-0.dll
[2013/01/04 05:43:16 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22209_none_0d52a9aaf32333d8\api-ms-win-core-libraryloader-l1-1-0.dll
[2013/08/02 06:53:29 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22411_none_0d3fdb3af3327f5f\api-ms-win-core-libraryloader-l1-1-0.dll
[2013/08/29 02:54:48 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22436_none_0d2f3cd4f33e35f4\api-ms-win-core-libraryloader-l1-1-0.dll
[2014/03/04 11:35:49 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22616_none_0d44e078f32df860\api-ms-win-core-libraryloader-l1-1-0.dll
[2014/04/12 03:03:37 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22653_none_0d169feaf3511c1f\api-ms-win-core-libraryloader-l1-1-0.dll

< *minodlogin* /s >

< *tnod* /s >
[2014/06/20 08:50:58 | 000,091,444 | ---- | M] () -- \Program Files\MATLAB\R2014b\help\simulink\ug\projectnode.png
[2012/02/17 12:43:24 | 000,000,653 | ---- | M] () -- \Program Files\MATLAB\R2014b\resources\MATLAB\en\timeseries\tsguis\tshistnode.xml
[2013/05/10 10:30:38 | 000,002,931 | ---- | M] () -- \Program Files\MATLAB\R2014b\resources\MATLAB\en\timeseries\tsguis\tsparentnode.xml
[2011/06/30 16:45:06 | 000,000,252 | ---- | M] () -- \Program Files\MATLAB\R2014b\resources\MATLAB\en\tsguis\tsparentnode\tsparentnode.xml
[2014/07/26 01:04:24 | 000,000,846 | ---- | M] () -- \Program Files\MATLAB\R2014b\resources\MATLAB\ja_JP\timeseries\tsguis\tshistnode.xml
[2014/07/26 01:04:24 | 000,003,563 | ---- | M] () -- \Program Files\MATLAB\R2014b\resources\MATLAB\ja_JP\timeseries\tsguis\tsparentnode.xml
[2014/07/26 01:04:30 | 000,000,454 | ---- | M] () -- \Program Files\MATLAB\R2014b\resources\MATLAB\ja_JP\tsguis\tsparentnode\tsparentnode.xml
[2014/09/15 20:01:22 | 000,000,208 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\coder\foundation\tfl\gui\@TflDesigner\getselectedlistnodes.p
[2014/09/15 20:01:22 | 000,000,233 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\coder\foundation\tfl\gui\@TflDesigner\setcurrentlistnode.p
[2014/09/15 20:01:24 | 000,000,090 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\coder\foundation\tfl\gui\@TflDesigner\@abstractnode\abstractnode.p
[2014/09/15 20:01:22 | 000,000,219 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\coder\foundation\tfl\gui\@TflDesigner\@root\insertnode.p
[2014/09/15 20:01:24 | 000,000,088 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\coder\foundation\tfl\gui\@TflDesigner\@widgetnode\widgetnode.p
[2013/10/22 22:17:02 | 000,000,260 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\control\ctrlguis\@controlnodes\@DesignSnapshot\getDefaultNodes.m
[2013/10/22 22:17:06 | 000,000,361 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\control\ctrlguis\@controlnodes\@SISODesignTask\getDefaultNodes.m
[2013/10/22 22:20:58 | 000,000,978 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\control\ctrlguis\@sisogui\@sisotool\getNode.m
[2013/10/22 22:21:06 | 000,000,139 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\control\ctrlguis\@sisogui\@sisotool\setNode.m
[2013/10/30 15:01:32 | 000,001,725 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\curvefit\sftoolgui\+sftoolgui\@FitFigure\setNoDataVisible.m
[2013/09/04 13:02:48 | 000,000,192 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\fixedpoint\fixedpointtool\@fxptui\@abstractnode\abstractnode.m
[2013/09/04 13:02:46 | 000,000,317 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\fixedpoint\fixedpointtool\@fxptui\@BAExplorer\selectNode.m
[2013/08/08 17:52:06 | 000,000,334 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\fixedpoint\fixedpointtool\@fxptui\@explorer\getSelectedListNodes.m
[2013/08/08 17:52:08 | 000,000,444 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\fixedpoint\fixedpointtool\@fxptui\@explorer\getUDDListNodeFromME.m
[2013/08/08 17:52:10 | 000,000,356 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\fixedpoint\fixedpointtool\@fxptui\@explorer\hilightListNode.m
[2013/11/08 03:22:00 | 000,002,631 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\fixedpoint\fixedpointtool\@fxptui\@explorer\selectnode.m
[2014/01/14 17:41:46 | 000,004,662 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\fixedpoint\fixedpointtool\+fxptui\StateflowChartNodeActions.m
[2014/02/25 13:21:02 | 000,002,844 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\fixedpoint\fixedpointtool\+fxptui\StateflowObjectNode.m
[2014/01/14 17:41:46 | 000,002,735 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\fixedpoint\fixedpointtool\+fxptui\StateflowObjectNodeActions.m
[2014/02/25 13:21:00 | 000,003,180 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\fixedpoint\fixedpointtool\+fxptui\@StateflowChartNode\StateflowChartNode.m
[2014/09/15 20:03:40 | 000,000,200 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\imaq\imaq\@iatbrowser\@FormatNodeInfoDisplay\FormatNodeInfoDisplay.p
[2014/09/15 20:03:40 | 000,000,259 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\imaq\imaq\@iatbrowser\@HardwareTree\hardwareFormatNodeAddedCallback.p
[2014/09/15 20:03:40 | 000,000,174 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\imaq\imaq\@iatbrowser\@HardwareTree\resetCurrentNode.p
[2014/09/15 20:03:40 | 000,000,448 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\imaq\imaq\@iatbrowser\@HardwareTree\selectNode.p
[2014/09/15 20:03:40 | 000,000,323 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\imaq\imaq\@iatbrowser\@HardwareTree\updateFormatNodesDisplay.p
[2014/09/15 20:03:40 | 000,000,195 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\imaq\imaq\@iatbrowser\@InfoPanelController\updateFormatNodeInfoDisplay.p
[2014/09/15 20:03:40 | 000,000,198 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\imaq\imaq\@iatbrowser\@RootNodeInfoDisplay\RootNodeInfoDisplay.p
[2013/05/10 11:55:56 | 000,015,229 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\imaq\imaq\+iatbrowser\FormatNode.m
[2013/10/22 22:54:56 | 000,001,543 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\imaq\imaq\+iatbrowser\FormatNodeAddedEventData.m
[2013/10/22 22:55:02 | 000,004,879 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\imaq\imaq\+iatbrowser\RootNode.m
[2013/10/23 11:31:50 | 000,000,724 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\shared\controllib\engine\+ltipack\utNoDelaySupport.m
[2014/09/15 19:58:36 | 000,000,225 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\shared\rptgen\@rpt_xml\@document\createTextNode.p
[2013/12/28 02:41:10 | 000,000,236 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\shared\spcuilib\@extmgr\@Property\getNodeInfo.m
[2014/09/15 20:03:22 | 000,000,436 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\simulink\simulink\@BusEditor\getnodefrompath.p
[2014/09/15 20:03:22 | 000,000,206 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\simulink\simulink\@BusEditor\getselectedlistnodes.p
[2014/09/15 20:03:22 | 000,000,238 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\simulink\simulink\@BusEditor\setcurrentlistnode.p
[2014/09/15 20:03:22 | 000,000,088 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\simulink\simulink\@BusEditor\@abstractnode\abstractnode.p
[2014/09/15 20:03:24 | 000,000,344 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\simulink\simulink\@BusEditor\@root\getNodeName.p
[2014/09/15 20:03:24 | 000,000,538 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\simulink\simulink\@BusEditor\@root\insertnode.p
[2014/09/15 20:05:38 | 000,000,164 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\simulink\simulink\@dependencies\xmltextnode.p
[2014/06/02 15:39:32 | 000,003,740 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\simulink\simulink\@DeploymentDiagram\resources\dtNoDirection.svg
[2010/09/10 15:29:56 | 000,000,312 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\simulink\simulink\@SigLogSelector\@AbstractNode\AbstractNode.m
[2010/09/10 15:30:12 | 000,002,393 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\simulink\simulink\@SigLogSelector\@explorer\selectNode.m
[2012/07/05 18:37:30 | 000,000,938 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\simulink\simulink\@SigLogSelector\@SubSysNode\getNodeIsVisible.m
[2014/09/15 20:14:34 | 000,000,585 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\target\foundation\utils\resource_config\@RTWConfiguration\@Target\connectNodeToActiveList.p
[2014/09/15 20:14:34 | 000,000,181 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\target\foundation\utils\resource_config\@RTWConfiguration\@Target\connectNodeToInactiveList.p
[2014/09/15 20:14:34 | 000,000,210 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\target\foundation\utils\resource_config\@RTWConfiguration\@Target\getFirstNode.p
[2014/09/15 20:14:34 | 000,000,296 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\target\foundation\utils\resource_config\@RTWConfiguration\@Target\getNodes.p

< *AutoKMS* /s >

< *activator* /s >
[2006/12/01 14:08:08 | 000,003,928 | R--- | M] () -- \Program Files (x86)\Sierra\Caesar IV\Data\db\dbbuildingactivators.dat

< *serial* /s >
[2014/02/26 22:48:28 | 000,021,754 | ---- | M] () -- \Program Files (x86)\LibreOffice 4\program\classes\libserializer-1.1.6.jar
[2014/07/10 23:24:10 | 000,970,752 | ---- | M] () -- \Program Files (x86)\Reference Assemblies\Microsoft\Framework\v3.0\System.Runtime.Serialization.dll
[2015/01/16 16:49:01 | 000,000,601 | ---- | M] () -- \Program Files\MATLAB\R2014b\appdata\components\hdserializer_win64 1410830502 1158311441877734080.xml
[2015/01/16 16:49:01 | 000,000,742 | ---- | M] () -- \Program Files\MATLAB\R2014b\appdata\components\matlab_serial_resources_common 1406354341 8564266720568987289.xml
[2015/01/16 16:48:59 | 000,000,710 | ---- | M] () -- \Program Files\MATLAB\R2014b\appdata\components\rs232_serial_common 1406358158 535963813989802537.xml
[2015/01/16 16:48:58 | 000,000,602 | ---- | M] () -- \Program Files\MATLAB\R2014b\appdata\components\rs232_serial_win64 1336789980 8945565551403566016.xml
[2015/01/16 16:49:03 | 000,000,724 | ---- | M] () -- \Program Files\MATLAB\R2014b\appdata\files\hdserializer_win64 1410830502_manifest.bin
[2015/01/16 16:49:04 | 000,003,416 | ---- | M] () -- \Program Files\MATLAB\R2014b\appdata\files\matlab_serial_resources_common 1406354341_manifest.bin
[2015/01/16 16:49:05 | 000,002,140 | ---- | M] () -- \Program Files\MATLAB\R2014b\appdata\files\rs232_serial_common 1406358158_manifest.bin
[2015/01/16 16:49:03 | 000,002,347 | ---- | M] () -- \Program Files\MATLAB\R2014b\appdata\files\rs232_serial_win64 1336789980_manifest.bin
[2014/07/26 03:01:34 | 000,267,776 | ---- | M] () -- \Program Files\MATLAB\R2014b\bin\win64\boost_serialization-vc110-mt-1_49.dll
[2014/07/26 03:01:34 | 000,178,176 | ---- | M] () -- \Program Files\MATLAB\R2014b\bin\win64\boost_wserialization-vc110-mt-1_49.dll
[2014/08/04 19:29:32 | 000,058,880 | ---- | M] () -- \Program Files\MATLAB\R2014b\bin\win64\libmwhadoopserializer.dll
[2014/08/05 00:48:38 | 000,012,288 | ---- | M] () -- \Program Files\MATLAB\R2014b\bin\win64\libmwrtiostreamserial.dll
[2014/07/26 03:00:04 | 000,193,024 | ---- | M] () -- \Program Files\MATLAB\R2014b\bin\win64\rxtxSerial.dll
[2014/07/26 03:00:06 | 000,018,944 | ---- | M] () -- \Program Files\MATLAB\R2014b\bin\win64\sundials_nvecserial.dll
[2014/08/29 18:18:46 | 000,014,562 | ---- | M] () -- \Program Files\MATLAB\R2014b\help\daq\output-digital-data-serially-using-a-software-clock.html
[2006/07/16 23:56:38 | 000,002,568 | ---- | M] () -- \Program Files\MATLAB\R2014b\help\instrument\ch_serial2.gif
[2006/07/16 23:56:38 | 000,001,283 | ---- | M] () -- \Program Files\MATLAB\R2014b\help\instrument\ch_serial3.gif
[2006/07/16 23:56:38 | 000,002,661 | ---- | M] () -- \Program Files\MATLAB\R2014b\help\instrument\ch_serial5.gif
[2006/07/16 23:56:38 | 000,004,787 | ---- | M] () -- \Program Files\MATLAB\R2014b\help\instrument\ch_serial6.gif
[2006/07/16 23:56:40 | 000,001,938 | ---- | M] () -- \Program Files\MATLAB\R2014b\help\instrument\ch_seriala.gif
[2014/08/11 23:11:56 | 000,029,983 | ---- | M] () -- \Program Files\MATLAB\R2014b\help\instrument\serial-polls.html
[2014/08/11 23:13:24 | 000,031,520 | ---- | M] () -- \Program Files\MATLAB\R2014b\help\instrument\serial-port-instrument-communication.html
[2014/08/11 23:13:24 | 000,033,232 | ---- | M] () -- \Program Files\MATLAB\R2014b\help\instrument\serial-port-interface.html
[2014/08/11 23:11:56 | 000,031,736 | ---- | M] () -- \Program Files\MATLAB\R2014b\help\instrument\serial-port-object.html
[2014/08/11 23:12:00 | 000,054,792 | ---- | M] () -- \Program Files\MATLAB\R2014b\help\instrument\serial-port-overview.html
[2014/08/11 23:12:00 | 000,031,653 | ---- | M] () -- \Program Files\MATLAB\R2014b\help\instrument\serial.html
[2007/11/22 10:56:54 | 000,002,574 | ---- | M] () -- \Program Files\MATLAB\R2014b\help\instrument\serial1port.gif
[2007/12/26 14:01:58 | 000,002,719 | ---- | M] () -- \Program Files\MATLAB\R2014b\help\instrument\serial2ports.gif
[2014/08/11 23:12:00 | 000,027,488 | ---- | M] () -- \Program Files\MATLAB\R2014b\help\instrument\serialbreak.html
[2007/12/26 14:02:00 | 000,002,419 | ---- | M] () -- \Program Files\MATLAB\R2014b\help\instrument\serialconfigblock.gif
[2014/08/11 23:12:00 | 000,029,753 | ---- | M] () -- \Program Files\MATLAB\R2014b\help\instrument\serialconfiguration.html
[2014/08/04 16:01:18 | 000,021,447 | ---- | M] () -- \Program Files\MATLAB\R2014b\help\instrument\serialhcv2.gif
[2014/08/11 23:12:00 | 000,011,978 | ---- | M] () -- \Program Files\MATLAB\R2014b\help\instrument\serialnumber.html
[2006/07/17 10:39:22 | 000,009,380 | ---- | M] () -- \Program Files\MATLAB\R2014b\help\instrument\serialport.gif
[2007/12/26 14:02:00 | 000,002,253 | ---- | M] () -- \Program Files\MATLAB\R2014b\help\instrument\serialrecblock.gif
[2014/08/11 23:11:58 | 000,033,085 | ---- | M] () -- \Program Files\MATLAB\R2014b\help\instrument\serialreceive.html
[2007/11/22 10:56:58 | 000,010,609 | ---- | M] () -- \Program Files\MATLAB\R2014b\help\instrument\serialrecmask.gif
[2014/08/11 23:12:00 | 000,029,205 | ---- | M] () -- \Program Files\MATLAB\R2014b\help\instrument\serialsend.html
[2007/12/26 14:02:00 | 000,002,238 | ---- | M] () -- \Program Files\MATLAB\R2014b\help\instrument\serialsendblock.gif
[2007/11/22 10:57:00 | 000,007,525 | ---- | M] () -- \Program Files\MATLAB\R2014b\help\instrument\serialsendmask.gif
[2014/08/11 23:11:58 | 000,037,085 | ---- | M] () -- \Program Files\MATLAB\R2014b\help\instrument\working-with-the-serial-port-interface.html
[2014/08/11 23:14:42 | 000,004,509 | ---- | M] () -- \Program Files\MATLAB\R2014b\help\instrument\tmtool_csh\_serial.html
[2014/08/11 23:14:42 | 000,009,287 | ---- | M] () -- \Program Files\MATLAB\R2014b\help\instrument\tmtool_csh\_serial_instrument.html
[2014/08/11 15:36:00 | 000,017,055 | ---- | M] () -- \Program Files\MATLAB\R2014b\help\javabuilder\MWArrayAPI\serialized-form.html
[2014/09/04 00:12:24 | 000,047,364 | ---- | M] () -- \Program Files\MATLAB\R2014b\help\matlab\serial-port-devices.html
[2005/07/01 20:34:20 | 000,004,170 | ---- | M] () -- \Program Files\MATLAB\R2014b\help\matlab\matlab_external\ch_serialtut10.gif
[2005/07/01 20:34:20 | 000,001,139 | ---- | M] () -- \Program Files\MATLAB\R2014b\help\matlab\matlab_external\ch_serialtut12.gif
[2005/07/01 20:34:22 | 000,002,231 | ---- | M] () -- \Program Files\MATLAB\R2014b\help\matlab\matlab_external\ch_serialtut13.gif
[2005/07/01 20:34:22 | 000,004,914 | ---- | M] () -- \Program Files\MATLAB\R2014b\help\matlab\matlab_external\ch_serialtut14.gif
[2005/07/01 20:34:24 | 000,000,855 | ---- | M] () -- \Program Files\MATLAB\R2014b\help\matlab\matlab_external\ch_serialtut15.gif
[2005/07/01 20:34:24 | 000,002,990 | ---- | M] () -- \Program Files\MATLAB\R2014b\help\matlab\matlab_external\ch_serialtut16.gif
[2005/07/01 20:34:26 | 000,003,878 | ---- | M] () -- \Program Files\MATLAB\R2014b\help\matlab\matlab_external\ch_serialtut2.gif
[2014/09/04 01:15:22 | 000,006,826 | ---- | M] () -- \Program Files\MATLAB\R2014b\help\matlab\matlab_external\ch_serialtut3.gif
[2005/07/01 20:34:28 | 000,003,502 | ---- | M] () -- \Program Files\MATLAB\R2014b\help\matlab\matlab_external\ch_serialtut4.gif
[2005/07/01 20:34:28 | 000,000,830 | ---- | M] () -- \Program Files\MATLAB\R2014b\help\matlab\matlab_external\ch_serialtut5.gif
[2005/07/01 20:34:30 | 000,001,763 | ---- | M] () -- \Program Files\MATLAB\R2014b\help\matlab\matlab_external\ch_serialtut6.gif
[2005/07/01 20:34:30 | 000,004,523 | ---- | M] () -- \Program Files\MATLAB\R2014b\help\matlab\matlab_external\ch_serialtut9.gif
[2005/07/01 20:34:32 | 000,002,025 | ---- | M] () -- \Program Files\MATLAB\R2014b\help\matlab\matlab_external\ch_serialtuta.gif
[2014/09/04 01:20:22 | 000,042,712 | ---- | M] () -- \Program Files\MATLAB\R2014b\help\matlab\matlab_external\creating-a-serial-port-object.html
[2014/09/04 01:20:12 | 000,045,110 | ---- | M] () -- \Program Files\MATLAB\R2014b\help\matlab\matlab_external\getting-started-with-serial-i-o.html
[2014/09/04 01:20:16 | 000,061,447 | ---- | M] () -- \Program Files\MATLAB\R2014b\help\matlab\matlab_external\overview-of-the-serial-port.html
[2014/09/04 01:15:22 | 000,020,309 | ---- | M] () -- \Program Files\MATLAB\R2014b\help\matlab\matlab_external\serialhc.gif
[2014/09/04 01:15:22 | 000,012,905 | ---- | M] () -- \Program Files\MATLAB\R2014b\help\matlab\matlab_external\serialport.gif
[2014/07/08 10:12:16 | 000,033,093 | ---- | M] () -- \Program Files\MATLAB\R2014b\help\matlab\ref\property_inspector_serial.png
[2014/09/04 01:02:40 | 000,038,043 | ---- | M] () -- \Program Files\MATLAB\R2014b\help\matlab\ref\serial.clear.html
[2014/09/04 01:02:32 | 000,037,717 | ---- | M] () -- \Program Files\MATLAB\R2014b\help\matlab\ref\serial.delete.html
[2014/09/04 01:02:36 | 000,036,344 | ---- | M] () -- \Program Files\MATLAB\R2014b\help\matlab\ref\serial.disp.html
[2014/09/04 01:02:32 | 000,038,254 | ---- | M] () -- \Program Files\MATLAB\R2014b\help\matlab\ref\serial.fclose.html
[2014/09/04 01:02:26 | 000,040,863 | ---- | M] () -- \Program Files\MATLAB\R2014b\help\matlab\ref\serial.fgetl.html
[2014/09/04 01:02:44 | 000,040,802 | ---- | M] () -- \Program Files\MATLAB\R2014b\help\matlab\ref\serial.fgets.html
[2014/09/04 01:02:32 | 000,038,809 | ---- | M] () -- \Program Files\MATLAB\R2014b\help\matlab\ref\serial.fopen.html
[2014/09/04 01:02:40 | 000,044,110 | ---- | M] () -- \Program Files\MATLAB\R2014b\help\matlab\ref\serial.fprintf.html
[2014/09/04 01:02:34 | 000,043,693 | ---- | M] () -- \Program Files\MATLAB\R2014b\help\matlab\ref\serial.fread.html
[2014/09/04 01:02:28 | 000,043,278 | ---- | M] () -- \Program Files\MATLAB\R2014b\help\matlab\ref\serial.fscanf.html
[2014/09/04 01:02:38 | 000,045,023 | ---- | M] () -- \Program Files\MATLAB\R2014b\help\matlab\ref\serial.fwrite.html
[2014/09/04 01:02:30 | 000,037,784 | ---- | M] () -- \Program Files\MATLAB\R2014b\help\matlab\ref\serial.get.html
[2014/09/04 01:02:34 | 000,040,807 | ---- | M] () -- \Program Files\MATLAB\R2014b\help\matlab\ref\serial.html
[2014/09/04 01:02:42 | 000,037,189 | ---- | M] () -- \Program Files\MATLAB\R2014b\help\matlab\ref\serial.isvalid.html
[2014/09/04 01:02:38 | 000,035,285 | ---- | M] () -- \Program Files\MATLAB\R2014b\help\matlab\ref\serial.length.html
[2014/09/04 01:02:36 | 000,038,565 | ---- | M] () -- \Program Files\MATLAB\R2014b\help\matlab\ref\serial.load.html
[2014/09/04 01:02:28 | 000,038,380 | ---- | M] () -- \Program Files\MATLAB\R2014b\help\matlab\ref\serial.save.html
[2014/09/04 01:02:42 | 000,039,295 | ---- | M] () -- \Program Files\MATLAB\R2014b\help\matlab\ref\serial.set.html
[2014/09/04 01:02:40 | 000,036,018 | ---- | M] () -- \Program Files\MATLAB\R2014b\help\matlab\ref\serial.size.html
[2014/09/04 01:02:42 | 000,037,272 | ---- | M] () -- \Program Files\MATLAB\R2014b\help\matlab\ref\serialbreak.html
[2014/09/04 05:03:16 | 000,029,626 | ---- | M] () -- \Program Files\MATLAB\R2014b\help\simulink\slref\deserializer1d.html
[2014/06/09 10:23:52 | 000,004,992 | ---- | M] () -- \Program Files\MATLAB\R2014b\help\simulink\slref\deserializer1d.png
[2014/06/02 13:06:16 | 000,021,587 | ---- | M] () -- \Program Files\MATLAB\R2014b\help\simulink\slref\deserializer1d_dialog.png
[2014/06/02 13:49:14 | 000,019,931 | ---- | M] () -- \Program Files\MATLAB\R2014b\help\simulink\slref\deserializer1d_dialog2.png
[2014/06/27 09:05:40 | 000,046,298 | ---- | M] () -- \Program Files\MATLAB\R2014b\help\simulink\slref\deserializer_signal_diagram.png
[2014/06/24 16:00:56 | 000,037,245 | ---- | M] () -- \Program Files\MATLAB\R2014b\help\simulink\slref\deserializer_signal_diagram2.png
[2014/09/04 05:03:14 | 000,027,370 | ---- | M] () -- \Program Files\MATLAB\R2014b\help\simulink\slref\serializer1d.html
[2014/06/09 10:24:30 | 000,005,280 | ---- | M] () -- \Program Files\MATLAB\R2014b\help\simulink\slref\serializer1d.png
[2014/06/02 13:07:28 | 000,021,467 | ---- | M] () -- \Program Files\MATLAB\R2014b\help\simulink\slref\serializer1d_dialog.png
[2014/06/02 13:48:48 | 000,019,677 | ---- | M] () -- \Program Files\MATLAB\R2014b\help\simulink\slref\serializer1d_dialog2.png
[2014/06/27 09:44:10 | 000,032,025 | ---- | M] () -- \Program Files\MATLAB\R2014b\help\simulink\slref\serializer_signal_diagram.png
[2014/08/29 14:24:34 | 000,000,824 | ---- | M] () -- \Program Files\MATLAB\R2014b\mcr\toolbox\matlab\datamanager\@datamanager\deserializeBrushDataStruct.m
[2014/08/29 14:24:34 | 000,000,794 | ---- | M] () -- \Program Files\MATLAB\R2014b\mcr\toolbox\matlab\datamanager\@datamanager\serializeBrushDataStruct.m
[2014/08/29 14:24:34 | 000,000,794 | ---- | M] () -- \Program Files\MATLAB\R2014b\mcr\toolbox\matlab\datamanager\@datamanager\@scattergroup\serializeBrushDataStruct.m
[2014/08/29 14:24:34 | 000,000,659 | ---- | M] () -- \Program Files\MATLAB\R2014b\mcr\toolbox\matlab\datamanager\@datamanager\@series\serializeBrushDataStruct.m
[2014/09/15 19:59:36 | 000,000,734 | ---- | M] () -- \Program Files\MATLAB\R2014b\mcr\toolbox\matlab\graphics\+matlab\+graphics\+internal\deserializeAnnotationStruct.p
[2014/09/08 16:31:34 | 000,001,649 | ---- | M] () -- \Program Files\MATLAB\R2014b\mcr\toolbox\matlab\hardware\supportpackages\arduinoio\+arduinoio\+internal\SerialHostTransportLayer.m
[2014/08/29 14:25:52 | 000,000,794 | ---- | M] () -- \Program Files\MATLAB\R2014b\mcr\toolbox\matlab\hardware\supportpackages\arduinoio\+arduinoio\+internal\serialPCLayer.m
[2014/08/29 14:25:52 | 000,000,794 | ---- | M] () -- \Program Files\MATLAB\R2014b\mcr\toolbox\matlab\hardware\supportpackages\arduinoio\+arduinoio\+internal\serialRaspiLayer.m
[2014/09/08 16:31:34 | 000,000,869 | ---- | M] () -- \Program Files\MATLAB\R2014b\mcr\toolbox\matlab\hardware\supportpackages\arduinoio\+arduinoio\+internal\SerialRaspiTransportLayer.m
[2014/08/29 14:25:22 | 000,001,334 | ---- | M] () -- \Program Files\MATLAB\R2014b\mcr\toolbox\matlab\iofun\@serial\serial.m
[2014/08/29 14:25:22 | 000,000,794 | ---- | M] () -- \Program Files\MATLAB\R2014b\mcr\toolbox\matlab\iofun\@serial\serialbreak.m
[2014/08/29 14:24:22 | 000,002,819 | ---- | M] () -- \Program Files\MATLAB\R2014b\mcr\toolbox\matlab\mapreduceio\+matlab\+mapreduce\SerialMapReducer.m
[2014/08/29 14:24:22 | 000,000,689 | ---- | M] () -- \Program Files\MATLAB\R2014b\mcr\toolbox\matlab\mapreduceio\+matlab\+mapreduce\+internal\AbstractKVSerializer.m
[2014/08/29 14:24:22 | 000,000,929 | ---- | M] () -- \Program Files\MATLAB\R2014b\mcr\toolbox\matlab\mapreduceio\+matlab\+mapreduce\+internal\MapKVSerializer.m
[2014/08/29 14:24:22 | 000,001,604 | ---- | M] () -- \Program Files\MATLAB\R2014b\mcr\toolbox\matlab\mapreduceio\+matlab\+mapreduce\+internal\ReduceKVSerializer.m
[2014/08/29 14:24:22 | 000,001,559 | ---- | M] () -- \Program Files\MATLAB\R2014b\mcr\toolbox\matlab\mapreduceio\+matlab\+mapreduce\+internal\ReduceTextKVSerializer.m
[2014/08/29 14:24:32 | 000,000,779 | ---- | M] () -- \Program Files\MATLAB\R2014b\mcr\toolbox\matlab\scribe\private\colorbarpostdeserialize.m
[2014/08/29 14:24:32 | 000,001,064 | ---- | M] () -- \Program Files\MATLAB\R2014b\mcr\toolbox\matlab\scribe\private\legendpostdeserialize.m
[2012/04/16 13:49:16 | 000,000,645 | ---- | M] () -- \Program Files\MATLAB\R2014b\resources\hdlcoder\en\filters\validateSerialPartition.xml
[2014/07/26 00:55:08 | 000,000,935 | ---- | M] () -- \Program Files\MATLAB\R2014b\resources\hdlcoder\ja_JP\filters\validateSerialPartition.xml
[2010/10/04 18:03:36 | 000,000,190 | ---- | M] () -- \Program Files\MATLAB\R2014b\resources\MATLAB\en\Serialize.xml
[2014/04/19 23:55:06 | 000,000,251 | ---- | M] () -- \Program Files\MATLAB\R2014b\resources\MATLAB\en\mapreduceio\reducetextkvserializer.xml
[2014/08/04 16:01:30 | 000,000,964 | ---- | M] () -- \Program Files\MATLAB\R2014b\resources\MATLAB\en\mapreduceio\serialmapreducer.xml
[2011/05/10 14:39:20 | 000,000,493 | ---- | M] () -- \Program Files\MATLAB\R2014b\resources\MATLAB\en\serial\serial.xml
[2011/05/10 14:39:20 | 000,000,426 | ---- | M] () -- \Program Files\MATLAB\R2014b\resources\MATLAB\en\serial\serialbreak.xml
[2014/07/26 01:03:34 | 000,000,405 | ---- | M] () -- \Program Files\MATLAB\R2014b\resources\MATLAB\ja_JP\Serialize.xml
[2014/07/26 00:53:30 | 000,000,439 | ---- | M] () -- \Program Files\MATLAB\R2014b\resources\MATLAB\ja_JP\mapreduceio\reducetextkvserializer.xml
[2014/08/04 16:15:08 | 000,001,223 | ---- | M] () -- \Program Files\MATLAB\R2014b\resources\MATLAB\ja_JP\mapreduceio\serialmapreducer.xml
[2014/07/26 00:58:58 | 000,000,788 | ---- | M] () -- \Program Files\MATLAB\R2014b\resources\MATLAB\ja_JP\serial\serial.xml
[2014/07/26 00:58:58 | 000,000,749 | ---- | M] () -- \Program Files\MATLAB\R2014b\resources\MATLAB\ja_JP\serial\serialbreak.xml
[2013/06/30 09:24:20 | 000,015,573 | ---- | M] () -- \Program Files\MATLAB\R2014b\rtw\c\src\ext_mode\serial\ext_serial_pkt.c
[2013/09/04 10:41:12 | 000,002,793 | ---- | M] () -- \Program Files\MATLAB\R2014b\rtw\c\src\ext_mode\serial\ext_serial_pkt.h
[2012/11/09 00:59:30 | 000,001,484 | ---- | M] () -- \Program Files\MATLAB\R2014b\rtw\c\src\ext_mode\serial\ext_serial_port.h
[2013/06/30 09:24:22 | 000,019,906 | ---- | M] () -- \Program Files\MATLAB\R2014b\rtw\c\src\ext_mode\serial\ext_serial_utils.c
[2013/06/30 09:24:22 | 000,012,097 | ---- | M] () -- \Program Files\MATLAB\R2014b\rtw\c\src\ext_mode\serial\ext_svr_serial_transport.c
[2013/06/30 09:24:22 | 000,009,795 | ---- | M] () -- \Program Files\MATLAB\R2014b\rtw\c\src\ext_mode\serial\rtiostream_serial_interface.c
[2014/04/30 17:03:20 | 000,030,762 | ---- | M] () -- \Program Files\MATLAB\R2014b\rtw\c\src\rtiostream\rtiostreamserial\rtiostream_serial.c
[2014/09/15 20:02:46 | 000,000,289 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\coder\coder\private\emcCopySerializer.p
[2010/09/10 15:18:12 | 000,004,389 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\coder\coder\rtw\c\src\rt_serialize.c
[2010/09/10 15:18:12 | 000,001,097 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\coder\coder\rtw\c\src\rt_serialize.h
[2012/09/21 02:43:58 | 000,001,900 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\coder\connectivity\+coder\+rtiostreamtest\ParametersSerial.m
[2014/08/05 15:17:24 | 000,035,840 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\coder\simulinkcoder_core\ext_serial_win32_comm.mexw64
[2014/08/05 15:17:34 | 000,029,696 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\coder\simulinkcoder_core\ext_serial_win32_comm_no_acks.mexw64
[2014/08/04 16:37:00 | 000,015,573 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\coder\simulinkcoder_core\ext_mode\host\serial\ext_serial_pkt.c
[2013/04/17 02:29:26 | 000,008,880 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\coder\simulinkcoder_core\ext_mode\host\serial\ext_serial_transport.c
[2014/08/04 16:37:00 | 000,019,906 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\coder\simulinkcoder_core\ext_mode\host\serial\ext_serial_utils.c
[2014/08/04 16:37:00 | 000,024,263 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\coder\simulinkcoder_core\ext_mode\host\serial\ext_serial_win32_comm.c
[2013/11/08 03:20:52 | 000,010,148 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\coder\simulinkcoder_core\ext_mode\host\serial\rtiostream_serial_interface.c
[2014/05/19 09:16:00 | 000,001,800 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\compiler\mlhadoop\+matlab\+compiler\+mlhadoop\+internal\serializerLoader.m
[2010/03/02 09:17:00 | 000,001,541 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\ECONOMETRICS\spatial\panel\demoserialspat.m
[2010/01/14 07:18:50 | 000,001,190 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\ECONOMETRICS\spatial\panel\f2_serialspat.m
[2010/03/02 09:00:08 | 000,001,175 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\ECONOMETRICS\spatial\panel\f_serialspat.m
[2010/01/14 07:18:52 | 000,004,948 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\ECONOMETRICS\spatial\panel\serialspatial.m
[2014/09/15 19:56:46 | 000,001,965 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\hdlcoder\hdllib\ml_lib\+hdl\deserializer1D.p
[2014/09/15 19:56:46 | 000,001,759 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\hdlcoder\hdllib\ml_lib\+hdl\serializer1D.p
[2013/05/10 11:52:48 | 000,000,635 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\hdlcoder\hdllib\sl_lib\hdlblkmask_deserializer.m
[2014/03/27 15:26:24 | 000,006,269 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\hdlcoder\hdllib\sl_lib\hdlblkmask_deserializer1D.m
[2013/12/07 14:46:28 | 000,001,952 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\hdlcoder\hdllib\sl_lib\hdlblkmask_serializer.m
[2014/03/27 15:26:26 | 000,006,221 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\hdlcoder\hdllib\sl_lib\hdlblkmask_serializer1D.m
[2013/05/31 15:18:58 | 000,001,021 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\idelink\extensions\ticcs\+ticcsext\+pil\TargetApplicationFrameworkSerial.m
[2014/09/15 20:13:52 | 000,001,608 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\idelink\extensions\ticcs\+ticcsext\+pil\@ConnectivityConfigSerial\ConnectivityConfigSerial.p
[2014/09/15 20:00:28 | 000,000,195 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\idelink\foundation\+linkfoundation\+pil\isSerialPILEnabled.p
[2014/09/15 20:00:28 | 000,000,344 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\idelink\foundation\+linkfoundation\+pil\@LauncherSerial\LauncherSerial.p
[2014/04/22 15:53:58 | 000,052,224 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\imaq\imaqextern\drivers\win64\genicam\GenICam_v2_3\bin\Win64_x64\CLAllSerial_MD_VC80_v2_3.dll
[2014/09/15 20:10:14 | 000,000,297 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\instrument\instrumentblks\instrumentblks\@instrumentdialog\@serialcb\serialcb.p
[2014/09/15 20:10:14 | 000,000,342 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\instrument\instrumentblks\instrumentblks\@instrumentdialog\@serialrb\serialrb.p
[2014/09/15 20:10:14 | 000,000,276 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\instrument\instrumentblks\instrumentblks\@instrumentdialog\@serialsb\serialsb.p
[2013/10/22 23:07:10 | 000,001,873 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\instrument\instrumentblks\instrumentmasks\private\privatesladdserialconfig.m
[2013/10/22 23:07:20 | 000,000,933 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\instrument\instrumentblks\instrumentmasks\private\privateslserialparsehwinfo.m
[2013/10/22 23:07:20 | 000,001,349 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\instrument\instrumentblks\instrumentmasks\private\privateslserialsetup.m
[2013/10/22 23:07:06 | 000,005,855 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\instrument\instrumentblks\instrumentmex\sserialcb.m
[2013/10/22 23:07:06 | 000,014,972 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\instrument\instrumentblks\instrumentmex\sserialrb.m
[2014/08/04 16:01:36 | 000,008,838 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\instrument\instrumentblks\instrumentmex\sserialsb.m
[2013/03/26 19:13:30 | 000,000,965 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\matlab\datamanager\@datamanager\deserializeBrushDataStruct.m
[2013/03/26 19:13:30 | 000,001,100 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\matlab\datamanager\@datamanager\serializeBrushDataStruct.m
[2013/03/26 19:13:30 | 000,000,727 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\matlab\datamanager\@datamanager\@scattergroup\serializeBrushDataStruct.m
[2013/03/26 19:13:30 | 000,000,381 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\matlab\datamanager\@datamanager\@series\serializeBrushDataStruct.m
[2014/09/15 19:57:20 | 000,000,155 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\matlab\graphics\+matlab\+graphics\+internal\deserializeAnnotationStruct.p
[2011/05/10 15:05:16 | 000,006,485 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\matlab\iofun\@serial\serial.m
[2013/10/18 15:45:08 | 000,001,673 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\matlab\iofun\@serial\serialbreak.m
[2004/12/29 13:00:58 | 000,001,613 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\matlab\iofun\@serial\ja\serial.m
[2004/12/29 13:00:58 | 000,001,182 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\matlab\iofun\@serial\ja\serialbreak.m
[2014/08/04 16:01:36 | 000,010,584 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\matlab\mapreduceio\+matlab\+mapreduce\SerialMapReducer.m
[2014/03/17 23:20:50 | 000,000,570 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\matlab\mapreduceio\+matlab\+mapreduce\+internal\AbstractKVSerializer.m
[2014/06/10 10:12:48 | 000,001,454 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\matlab\mapreduceio\+matlab\+mapreduce\+internal\MapKVSerializer.m
[2014/06/10 10:12:48 | 000,004,507 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\matlab\mapreduceio\+matlab\+mapreduce\+internal\ReduceKVSerializer.m
[2014/07/08 11:15:26 | 000,004,050 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\matlab\mapreduceio\+matlab\+mapreduce\+internal\ReduceTextKVSerializer.m
[2005/09/12 14:00:38 | 000,000,796 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\matlab\scribe\private\colorbarpostdeserialize.m
[2014/02/11 09:50:14 | 000,001,800 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\matlab\scribe\private\legendpostdeserialize.m
[2014/09/04 06:01:32 | 000,036,352 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\realtime\realtime\ext_serial_win32_comm_leonardo.mexw64
[2014/09/04 06:01:36 | 000,029,696 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\realtime\realtime\ext_serial_win32_comm_no_acks_leonardo.mexw64
[2014/09/04 06:01:00 | 000,029,696 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\realtime\realtime\ext_serial_win32_comm_no_acks_rtt.mexw64
[2014/09/04 06:01:14 | 000,030,208 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\realtime\realtime\ext_serial_win32_comm_no_acks_rtt_byteswap.mexw64
[2014/09/04 06:01:04 | 000,035,840 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\realtime\realtime\ext_serial_win32_comm_rtt.mexw64
[2014/09/04 06:01:16 | 000,036,352 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\realtime\realtime\ext_serial_win32_comm_rtt_byteswap.mexw64
[2014/07/26 02:36:50 | 000,015,573 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\realtime\realtime\rtw\ext_mode\serial_internal\ext_serial_pkt.c
[2014/07/26 02:36:50 | 000,008,880 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\realtime\realtime\rtw\ext_mode\serial_internal\ext_serial_transport.c
[2014/07/26 02:36:50 | 000,019,906 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\realtime\realtime\rtw\ext_mode\serial_internal\ext_serial_utils.c
[2014/07/26 02:36:50 | 000,024,263 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\realtime\realtime\rtw\ext_mode\serial_internal\ext_serial_win32_comm_no_acks_rtt.c
[2014/07/26 02:36:50 | 000,024,263 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\realtime\realtime\rtw\ext_mode\serial_internal\ext_serial_win32_comm_no_acks_rtt_byteswap.c
[2014/07/26 02:36:50 | 000,024,263 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\realtime\realtime\rtw\ext_mode\serial_internal\ext_serial_win32_comm_rtt.c
[2014/07/26 02:36:50 | 000,024,263 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\realtime\realtime\rtw\ext_mode\serial_internal\ext_serial_win32_comm_rtt_byteswap.c
[2014/07/26 02:36:50 | 000,010,148 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\realtime\realtime\rtw\ext_mode\serial_internal\rtiostream_serial_interface.c
[2014/07/26 02:36:50 | 000,015,573 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\realtime\realtime\rtw\ext_mode\serial_leonardo_internal\ext_serial_pkt.c
[2014/07/26 02:36:50 | 000,008,880 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\realtime\realtime\rtw\ext_mode\serial_leonardo_internal\ext_serial_transport.c
[2014/07/26 02:36:50 | 000,019,906 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\realtime\realtime\rtw\ext_mode\serial_leonardo_internal\ext_serial_utils.c
[2014/07/26 02:36:50 | 000,024,263 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\realtime\realtime\rtw\ext_mode\serial_leonardo_internal\ext_serial_win32_comm_leonardo.c
[2014/07/26 02:36:50 | 000,024,263 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\realtime\realtime\rtw\ext_mode\serial_leonardo_internal\ext_serial_win32_comm_no_acks_leonardo.c
[2014/07/26 02:36:50 | 000,010,148 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\realtime\realtime\rtw\ext_mode\serial_leonardo_internal\rtiostream_serial_interface.c
[2014/09/15 20:00:52 | 000,000,268 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\rtw\rtw\+rtw\Serializer.p
[2014/09/15 20:00:54 | 000,001,189 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\rtw\rtw\+rtw\SerializerForSLX.p
[2014/07/26 10:27:46 | 000,006,030 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\shared\hadoopserializer\jar\a1.2.1\win64\hadoopserializer.jar
[2014/07/26 10:27:48 | 000,006,030 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\shared\hadoopserializer\jar\a2.2.0\win64\hadoopserializer.jar
[2013/10/23 12:47:58 | 000,000,559 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\shared\slcontrollib\@checkpack\@SrcSLEvent\isSerializable.m
[2013/09/04 13:32:54 | 000,000,568 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\shared\spcuilib\@scopeextensions\@SrcMLStreaming\isSerializable.m
[2013/09/04 13:33:08 | 000,000,290 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\shared\spcuilib\@scopeextensions\@SrcSL\isSerializable.m
[2013/09/04 13:33:24 | 000,000,564 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\shared\spcuilib\@scopeextensions\@SrcWiredSL\isSerializable.m
[2013/09/04 13:33:34 | 000,001,042 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\shared\spcuilib\@scopeextensions\@SrcWksp\isSerializable.m
[2013/09/04 13:35:42 | 000,000,676 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\shared\spcuilib\@uiscopes\@AbstractSource\isSerializable.m
[2014/01/14 17:45:06 | 000,000,045 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\shared\spcuilib\+matlabshared\+scopes\@ScopeSpecification\isSerializable.m
[2014/01/14 17:44:20 | 000,000,610 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\shared\spcuilib\+matlabshared\+scopes\+source\@Source\isSerializable.m
[2014/01/14 17:45:12 | 000,000,759 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\shared\spcuilib\+scopeextensions\@Displayable\deserializeDisplay.m
[2014/01/14 17:45:12 | 000,000,598 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\shared\spcuilib\+scopeextensions\@Displayable\deserializeLayoutGrid.m
[2014/01/14 17:45:12 | 000,000,821 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\shared\spcuilib\+scopeextensions\@Displayable\serialize.m
[2014/01/14 17:44:00 | 000,000,497 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\shared\spcuilib\+Simulink\+scopes\+source\@WiredSource\isSerializable.m
[2014/09/15 20:09:26 | 000,000,794 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\simulink\simulink\+legacycode\@LCT\writeMkCfgGetSerializedInfo.p
[2013/10/23 14:40:00 | 000,006,719 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\target\extensions\processor\tic2000\src\pil\rtiostream_serial_c28x.c
[2011/03/09 13:13:32 | 000,674,508 | ---- | M] () -- \Program Files\MATLAB\R2014b\toolbox\target\targetdemos\html\beagleboard_c4_serial_connection.png
[2014/07/10 23:24:01 | 000,847,872 | ---- | M] () -- \Program Files\Reference Assemblies\Microsoft\Framework\v3.0\System.Runtime.Serialization.dll
[2014/07/26 03:01:34 | 000,267,776 | ---- | M] () -- \ProgramData\MathWorks\R2014b\ShellExtensions\bin\win64\boost_serialization-vc110-mt-1_49.dll
[2014/07/26 03:01:34 | 000,267,776 | ---- | M] () -- \Users\All Users\MathWorks\R2014b\ShellExtensions\bin\win64\boost_serialization-vc110-mt-1_49.dll
[2007/01/31 21:03:32 | 000,200,704 | ---- | M] () -- \Users\Roman\Desktop\Half Life Source Deathmatch\Half Life Source Deathmatch\bin\dmserializers.dll
[2014/10/03 12:12:06 | 000,057,344 | ---- | M] () -- \Users\Roman\Desktop\Rust-Revolution.cz KLIENT\rust_Data\Managed\Google.ProtocolBuffers.Serialization.dll
[2014/06/24 00:43:20 | 000,131,072 | ---- | M] () -- \Windows\assembly\GAC_MSIL\System.Runtime.Serialization.Formatters.Soap\2.0.0.0__b03f5f7f11d50a3a\System.Runtime.Serialization.Formatters.Soap.dll
[2014/07/10 23:24:10 | 000,970,752 | ---- | M] () -- \Windows\assembly\GAC_MSIL\System.Runtime.Serialization\3.0.0.0__b77a5c561934e089\System.Runtime.Serialization.dll
[2014/10/15 23:01:44 | 000,310,784 | ---- | M] () -- \Windows\assembly\NativeImages_v2.0.50727_32\System.Runtime.Seri#\91eb4f41130c65ef17f0fee1d3ab48fb\System.Runtime.Serialization.Formatters.Soap.ni.dll
[2014/10/16 15:04:04 | 002,347,008 | ---- | M] () -- \Windows\assembly\NativeImages_v2.0.50727_32\System.Runtime.Seri#\b1e0939384cc320d6ac7b8921ccc2877\System.Runtime.Serialization.ni.dll
[2014/10/15 22:59:03 | 000,396,288 | ---- | M] () -- \Windows\assembly\NativeImages_v2.0.50727_64\System.Runtime.Seri#\2a07bf9a29a64827bf06e7853214fc0f\System.Runtime.Serialization.Formatters.Soap.ni.dll
[2014/10/16 15:11:56 | 003,073,536 | ---- | M] () -- \Windows\assembly\NativeImages_v2.0.50727_64\System.Runtime.Seri#\5015b90fbd31c9ba4fff989b2c79711b\System.Runtime.Serialization.ni.dll
[2014/09/10 12:11:21 | 000,309,760 | ---- | M] () -- \Windows\assembly\NativeImages_v4.0.30319_32\System.Runt9064068c#\e67230bbca0858b6ff4caccfb4595fa8\System.Runtime.Serialization.Formatters.Soap.ni.dll
[2014/09/10 12:11:21 | 000,000,580 | ---- | M] () -- \Windows\assembly\NativeImages_v4.0.30319_32\System.Runt9064068c#\e67230bbca0858b6ff4caccfb4595fa8\System.Runtime.Serialization.Formatters.Soap.ni.dll.aux
[2014/10/15 20:01:55 | 002,822,144 | ---- | M] () -- \Windows\assembly\NativeImages_v4.0.30319_32\System.Runteb92aa12#\f9f13cd8fe1cefaad78579a7c3a41464\System.Runtime.Serialization.ni.dll
[2014/10/15 20:01:55 | 000,001,308 | ---- | M] () -- \Windows\assembly\NativeImages_v4.0.30319_32\System.Runteb92aa12#\f9f13cd8fe1cefaad78579a7c3a41464\System.Runtime.Serialization.ni.dll.aux
[2014/04/15 08:55:55 | 000,026,624 | ---- | M] () -- \Windows\assembly\NativeImages_v4.0.30319_32\System.Xml.84e525b7#\94ce7a3b39b335283a0087f9964e9099\System.Xml.Serialization.ni.dll
[2014/04/15 08:55:55 | 000,000,376 | ---- | M] () -- \Windows\assembly\NativeImages_v4.0.30319_32\System.Xml.84e525b7#\94ce7a3b39b335283a0087f9964e9099\System.Xml.Serialization.ni.dll.aux
[2014/09/10 12:16:04 | 000,376,832 | ---- | M] () -- \Windows\assembly\NativeImages_v4.0.30319_64\System.Runt9064068c#\10cfe6422504c1beb7abe4f8f26aa6a8\System.Runtime.Serialization.Formatters.Soap.ni.dll
[2014/09/10 12:16:04 | 000,000,580 | ---- | M] () -- \Windows\assembly\NativeImages_v4.0.30319_64\System.Runt9064068c#\10cfe6422504c1beb7abe4f8f26aa6a8\System.Runtime.Serialization.Formatters.Soap.ni.dll.aux
[2014/10/17 17:11:45 | 003,638,272 | ---- | M] () -- \Windows\assembly\NativeImages_v4.0.30319_64\System.Runteb92aa12#\6d9b2d977435904b70f2e1571f7cf026\System.Runtime.Serialization.ni.dll
[2014/10/17 17:11:45 | 000,001,308 | ---- | M] () -- \Windows\assembly\NativeImages_v4.0.30319_64\System.Runteb92aa12#\6d9b2d977435904b70f2e1571f7cf026\System.Runtime.Serialization.ni.dll.aux
[2014/04/15 09:02:00 | 000,028,672 | ---- | M] () -- \Windows\assembly\NativeImages_v4.0.30319_64\System.Xml.84e525b7#\7c4a5c747f2dcdac0329022b43a7be6b\System.Xml.Serialization.ni.dll
[2014/04/15 09:02:00 | 000,000,376 | ---- | M] () -- \Windows\assembly\NativeImages_v4.0.30319_64\System.Xml.84e525b7#\7c4a5c747f2dcdac0329022b43a7be6b\System.Xml.Serialization.ni.dll.aux
[2013/09/11 21:33:38 | 001,052,320 | R--- | M] () -- \Windows\Installer\$PatchCache$\Managed\BE4EBED704B66673BB53C5BB3C58AD73\4.5.50938\System.Runtime.Serialization.dll.amd64
[2013/09/11 21:33:38 | 001,052,320 | R--- | M] () -- \Windows\Installer\$PatchCache$\Managed\BE4EBED704B66673BB53C5BB3C58AD73\4.5.50938\System.Runtime.Serialization.dll.x86
[2013/09/11 21:33:38 | 001,052,320 | R--- | M] () -- \Windows\Installer\$PatchCache$\Managed\BE4EBED704B66673BB53C5BB3C58AD73\4.5.50938\System.Runtime.Serialization.dll_gac_x86
[2013/09/11 21:33:38 | 000,133,344 | ---- | M] () -- \Windows\Microsoft.NET\assembly\GAC_MSIL\System.Runtime.Serialization.Formatters.Soap\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Runtime.Serialization.Formatters.Soap.dll
[2013/09/11 20:21:54 | 000,022,176 | ---- | M] () -- \Windows\Microsoft.NET\assembly\GAC_MSIL\System.Runtime.Serialization.Json\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Runtime.Serialization.Json.dll
[2013/09/11 20:21:54 | 000,022,208 | ---- | M] () -- \Windows\Microsoft.NET\assembly\GAC_MSIL\System.Runtime.Serialization.Primitives\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Runtime.Serialization.Primitives.dll
[2013/09/11 20:21:54 | 000,022,176 | ---- | M] () -- \Windows\Microsoft.NET\assembly\GAC_MSIL\System.Runtime.Serialization.Xml\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Runtime.Serialization.Xml.dll
[2014/07/23 00:17:44 | 001,050,840 | ---- | M] () -- \Windows\Microsoft.NET\assembly\GAC_MSIL\System.Runtime.Serialization\v4.0_4.0.0.0__b77a5c561934e089\System.Runtime.Serialization.dll
[2013/09/11 20:21:54 | 000,036,480 | ---- | M] () -- \Windows\Microsoft.NET\assembly\GAC_MSIL\System.Xml.Serialization\v4.0_4.0.0.0__b77a5c561934e089\System.Xml.Serialization.dll
[2013/09/11 20:21:54 | 000,022,656 | ---- | M] () -- \Windows\Microsoft.NET\assembly\GAC_MSIL\System.Xml.XmlSerializer\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Xml.XmlSerializer.dll
[2014/06/24 00:43:20 | 000,131,072 | ---- | M] () -- \Windows\Microsoft.NET\Framework\v2.0.50727\System.Runtime.Serialization.Formatters.Soap.dll
[2014/07/10 23:24:11 | 000,970,752 | ---- | M] () -- \Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\System.Runtime.Serialization.dll
[2014/07/23 00:17:44 | 001,050,840 | ---- | M] () -- \Windows\Microsoft.NET\Framework\v4.0.30319\System.Runtime.Serialization.dll
[2013/09/11 21:33:38 | 000,133,344 | ---- | M] () -- \Windows\Microsoft.NET\Framework\v4.0.30319\System.Runtime.Serialization.Formatters.Soap.dll
[2013/09/11 20:21:54 | 000,022,176 | ---- | M] () -- \Windows\Microsoft.NET\Framework\v4.0.30319\System.Runtime.Serialization.Json.dll
[2013/09/11 20:21:54 | 000,022,208 | ---- | M] () -- \Windows\Microsoft.NET\Framework\v4.0.30319\System.Runtime.Serialization.Primitives.dll
[2013/09/11 20:21:54 | 000,022,176 | ---- | M] () -- \Windows\Microsoft.NET\Framework\v4.0.30319\System.Runtime.Serialization.Xml.dll
[2013/09/11 20:21:54 | 000,036,480 | ---- | M] () -- \Windows\Microsoft.NET\Framework\v4.0.30319\System.Xml.Serialization.dll
[2013/09/11 20:21:54 | 000,022,656 | ---- | M] () -- \Windows\Microsoft.NET\Framework\v4.0.30319\System.Xml.XmlSerializer.dll
[2014/06/24 00:43:09 | 000,131,072 | ---- | M] () -- \Windows\Microsoft.NET\Framework64\v2.0.50727\System.Runtime.Serialization.Formatters.Soap.dll
[2014/07/10 23:24:02 | 000,847,872 | ---- | M] () -- \Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\System.Runtime.Serialization.dll
[2014/07/23 00:17:44 | 001,050,840 | ---- | M] () -- \Windows\Microsoft.NET\Framework64\v4.0.30319\System.Runtime.Serialization.dll
[2013/09/11 21:33:38 | 000,133,344 | ---- | M] () -- \Windows\Microsoft.NET\Framework64\v4.0.30319\System.Runtime.Serialization.Formatters.Soap.dll
[2013/09/11 20:21:54 | 000,022,176 | ---- | M] () -- \Windows\Microsoft.NET\Framework64\v4.0.30319\System.Runtime.Serialization.Json.dll
[2013/09/11 20:21:54 | 000,022,208 | ---- | M] () -- \Windows\Microsoft.NET\Framework64\v4.0.30319\System.Runtime.Serialization.Primitives.dll
[2013/09/11 20:21:54 | 000,022,176 | ---- | M] () -- \Windows\Microsoft.NET\Framework64\v4.0.30319\System.Runtime.Serialization.Xml.dll
[2013/09/11 20:21:54 | 000,036,480 | ---- | M] () -- \Windows\Microsoft.NET\Framework64\v4.0.30319\System.Xml.Serialization.dll
[2013/09/11 20:21:54 | 000,022,656 | ---- | M] () -- \Windows\Microsoft.NET\Framework64\v4.0.30319\System.Xml.XmlSerializer.dll
[2009/07/14 02:16:13 | 000,015,360 | ---- | M] () -- \Windows\System32\serialui.dll
[2009/07/14 01:00:40 | 000,094,208 | ---- | M] () -- \Windows\System32\DriverStore\FileRepository\msports.inf_amd64_neutral_fdcfb86ce78678d1\serial.sys
[2009/06/10 21:37:50 | 000,038,400 | ---- | M] () -- \Windows\System32\DriverStore\FileRepository\smartcrd.inf_amd64_neutral_6fb75ea318f84fe5\grserial.sys
[2009/07/14 03:10:04 | 000,005,120 | ---- | M] () -- \Windows\System32\en-US\serialui.dll.mui
[2009/07/13 17:29:14 | 000,005,120 | ---- | M] () -- \Windows\System32\sk-SK\serialui.dll.mui
[2009/07/14 02:16:13 | 000,015,360 | ---- | M] () -- \Windows\SysWOW64\serialui.dll
[2009/07/14 03:10:04 | 000,005,120 | ---- | M] () -- \Windows\SysWOW64\en-US\serialui.dll.mui
[2009/07/13 17:29:14 | 000,005,120 | ---- | M] () -- \Windows\SysWOW64\sk-SK\serialui.dll.mui
[2009/07/14 03:26:50 | 000,005,120 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-u..em-config.resources_31bf3856ad364e35_6.1.7600.16385_en-us_edb61e94e4562781\serialui.dll.mui
[2009/07/13 17:47:16 | 000,005,120 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-u..em-config.resources_31bf3856ad364e35_6.1.7600.16385_sk-sk_d5f23af62a751552\serialui.dll.mui
[2009/07/14 02:41:54 | 000,017,920 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-unimodem-config_31bf3856ad364e35_6.1.7600.16385_none_50f69335385bc360\serialui.dll
[2009/07/14 03:30:28 | 000,010,240 | ---- | M] () -- \Windows\winsxs\amd64_msports.inf.resources_31bf3856ad364e35_6.1.7600.16385_en-us_64015f894ce7c72a\serial.sys.mui
[2009/07/14 01:00:40 | 000,094,208 | ---- | M] () -- \Windows\winsxs\amd64_msports.inf_31bf3856ad364e35_6.1.7600.16385_none_548ca258d20f4ada\serial.sys
[2009/06/10 21:40:06 | 000,131,072 | ---- | M] () -- \Windows\winsxs\amd64_netfx-system.runtim..ion.formatters.soap_b03f5f7f11d50a3a_6.1.7600.16385_none_a9d1bee515273f56\System.Runtime.Serialization.Formatters.Soap.dll
[2014/06/24 00:43:09 | 000,131,072 | ---- | M] () -- \Windows\winsxs\amd64_netfx-system.runtim..ion.formatters.soap_b03f5f7f11d50a3a_6.1.7601.18523_none_a9a7e561157d82e9\System.Runtime.Serialization.Formatters.Soap.dll
[2014/06/24 00:43:05 | 000,131,072 | ---- | M] () -- \Windows\winsxs\amd64_netfx-system.runtim..ion.formatters.soap_b03f5f7f11d50a3a_6.1.7601.22733_none_92db3ec72f23fc97\System.Runtime.Serialization.Formatters.Soap.dll
[2009/06/10 21:37:50 | 000,038,400 | ---- | M] () -- \Windows\winsxs\amd64_smartcrd.inf_31bf3856ad364e35_6.1.7600.16385_none_ce9ed3064deed3aa\grserial.sys
[2009/06/10 21:30:46 | 000,847,872 | ---- | M] () -- \Windows\winsxs\amd64_wcf-system.runtime.serialization.ref_b03f5f7f11d50a3a_6.1.7600.16385_none_5943b25a748cb06c\System.Runtime.Serialization.dll
[2012/10/06 11:53:01 | 000,847,872 | ---- | M] () -- \Windows\winsxs\amd64_wcf-system.runtime.serialization.ref_b03f5f7f11d50a3a_6.1.7600.17136_none_593e9c4e749147df\System.Runtime.Serialization.dll
[2012/10/06 11:56:09 | 000,847,872 | ---- | M] () -- \Windows\winsxs\amd64_wcf-system.runtime.serialization.ref_b03f5f7f11d50a3a_6.1.7600.21337_none_4270dea28e38c1d7\System.Runtime.Serialization.dll
[2010/11/05 02:52:16 | 000,847,872 | ---- | M] () -- \Windows\winsxs\amd64_wcf-system.runtime.serialization.ref_b03f5f7f11d50a3a_6.1.7601.17514_none_5918bfde74e3f722\System.Runtime.Serialization.dll
[2012/10/05 11:52:38 | 000,847,872 | ---- | M] () -- \Windows\winsxs\amd64_wcf-system.runtime.serialization.ref_b03f5f7f11d50a3a_6.1.7601.17966_none_591d933074dfaa5b\System.Runtime.Serialization.dll
[2014/03/09 22:48:51 | 000,847,872 | ---- | M] () -- \Windows\winsxs\amd64_wcf-system.runtime.serialization.ref_b03f5f7f11d50a3a_6.1.7601.18523_none_5919d8d674e2f3ff\System.Runtime.Serialization.dll
[2014/07/10 23:24:02 | 000,847,872 | ---- | M] () -- \Windows\winsxs\amd64_wcf-system.runtime.serialization.ref_b03f5f7f11d50a3a_6.1.7601.18532_none_591aefe874e1f3b5\System.Runtime.Serialization.dll
[2012/10/06 11:56:09 | 000,847,872 | ---- | M] () -- \Windows\winsxs\amd64_wcf-system.runtime.serialization.ref_b03f5f7f11d50a3a_6.1.7601.22126_none_424bee728e8a9f53\System.Runtime.Serialization.dll
[2014/03/17 15:38:51 | 000,847,872 | ---- | M] () -- \Windows\winsxs\amd64_wcf-system.runtime.serialization.ref_b03f5f7f11d50a3a_6.1.7601.22733_none_424d323c8e896dad\System.Runtime.Serialization.dll
[2014/07/08 00:36:29 | 000,847,872 | ---- | M] () -- \Windows\winsxs\amd64_wcf-system.runtime.serialization.ref_b03f5f7f11d50a3a_6.1.7601.22743_none_424e32868e888704\System.Runtime.Serialization.dll
[2009/06/10 21:30:43 | 000,847,872 | ---- | M] () -- \Windows\winsxs\amd64_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7600.16385_none_941abf24c884ab05\System.Runtime.Serialization.dll
[2012/10/06 11:53:00 | 000,847,872 | ---- | M] () -- \Windows\winsxs\amd64_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7600.17136_none_9415a918c8894278\System.Runtime.Serialization.dll
[2012/10/06 11:56:08 | 000,847,872 | ---- | M] () -- \Windows\winsxs\amd64_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7600.21337_none_7d47eb6ce230bc70\System.Runtime.Serialization.dll
[2010/11/05 02:52:08 | 000,847,872 | ---- | M] () -- \Windows\winsxs\amd64_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.17514_none_93efcca8c8dbf1bb\System.Runtime.Serialization.dll
[2012/10/05 11:52:37 | 000,847,872 | ---- | M] () -- \Windows\winsxs\amd64_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.17966_none_93f49ffac8d7a4f4\System.Runtime.Serialization.dll
[2014/03/09 22:48:50 | 000,847,872 | ---- | M] () -- \Windows\winsxs\amd64_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.18523_none_93f0e5a0c8daee98\System.Runtime.Serialization.dll
[2014/07/10 23:24:01 | 000,847,872 | ---- | M] () -- \Windows\winsxs\amd64_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.18532_none_93f1fcb2c8d9ee4e\System.Runtime.Serialization.dll
[2012/10/06 11:56:08 | 000,847,872 | ---- | M] () -- \Windows\winsxs\amd64_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.22126_none_7d22fb3ce28299ec\System.Runtime.Serialization.dll
[2014/03/17 15:38:51 | 000,847,872 | ---- | M] () -- \Windows\winsxs\amd64_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.22733_none_7d243f06e2816846\System.Runtime.Serialization.dll
[2014/07/08 00:36:29 | 000,847,872 | ---- | M] () -- \Windows\winsxs\amd64_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.22743_none_7d253f50e280819d\System.Runtime.Serialization.dll
[2014/04/13 01:02:23 | 000,002,766 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..gertransport-serial_31bf3856ad364e35_6.1.7601.17556_none_6fb25371c3691bc8.manifest
[2014/04/13 01:02:23 | 000,017,792 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..gertransport-serial_31bf3856ad364e35_6.1.7601.17556_none_6fb25371c3691bc8_kdcom.dll_db5e7744
[2009/07/14 06:37:34 | 000,005,120 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-u..em-config.resources_31bf3856ad364e35_6.1.7600.16385_en-us_edb61e94e4562781_serialui.dll.mui_7d29d2a3
[2014/09/10 11:59:09 | 000,005,120 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-u..em-config.resources_31bf3856ad364e35_6.1.7600.16385_sk-sk_d5f23af62a751552_serialui.dll.mui_7d29d2a3
[2009/07/14 03:57:29 | 000,017,920 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-unimodem-config_31bf3856ad364e35_6.1.7600.16385_none_50f69335385bc360_serialui.dll_bea29328
[2009/07/14 06:37:35 | 000,005,120 | ---- | M] () -- \Windows\winsxs\Backup\x86_microsoft-windows-u..em-config.resources_31bf3856ad364e35_6.1.7600.16385_en-us_919783112bf8b64b_serialui.dll.mui_7d29d2a3
[2014/09/10 11:59:07 | 000,005,120 | ---- | M] () -- \Windows\winsxs\Backup\x86_microsoft-windows-u..em-config.resources_31bf3856ad364e35_6.1.7600.16385_sk-sk_79d39f727217a41c_serialui.dll.mui_7d29d2a3
[2009/07/14 03:58:37 | 000,015,360 | ---- | M] () -- \Windows\winsxs\Backup\x86_microsoft-windows-unimodem-config_31bf3856ad364e35_6.1.7600.16385_none_f4d7f7b17ffe522a_serialui.dll_bea29328
[2009/07/14 03:15:17 | 000,002,766 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..gertransport-serial_31bf3856ad364e35_6.1.7600.16385_none_6daa7ec5c65bf5bc.manifest
[2011/02/05 14:10:43 | 000,002,766 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..gertransport-serial_31bf3856ad364e35_6.1.7600.16757_none_6dccf6b5c641c933.manifest
[2011/02/05 14:05:47 | 000,002,766 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..gertransport-serial_31bf3856ad364e35_6.1.7600.20897_none_6e2b53d0df7fd8c1.manifest
[2011/02/05 18:35:45 | 000,002,766 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..gertransport-serial_31bf3856ad364e35_6.1.7601.17556_none_6fb25371c3691bc8.manifest
[2011/02/05 14:11:05 | 000,002,766 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..gertransport-serial_31bf3856ad364e35_6.1.7601.21655_none_703aeff2dc87a23b.manifest
[2009/07/14 03:11:30 | 000,000,868 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft.windows.h..tserial-driverclass_31bf3856ad364e35_6.1.7600.16385_none_88b1c48f2026fe3f.manifest
[2009/07/14 03:26:23 | 000,002,237 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_wcf-system.runtime.serialization.ref_b03f5f7f11d50a3a_6.1.7600.16385_none_5943b25a748cb06c.manifest
[2012/10/06 19:44:48 | 000,002,237 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_wcf-system.runtime.serialization.ref_b03f5f7f11d50a3a_6.1.7600.17136_none_593e9c4e749147df.manifest
[2012/10/06 20:00:33 | 000,002,237 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_wcf-system.runtime.serialization.ref_b03f5f7f11d50a3a_6.1.7600.21337_none_4270dea28e38c1d7.manifest
[2010/11/20 05:21:24 | 000,002,237 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_wcf-system.runtime.serialization.ref_b03f5f7f11d50a3a_6.1.7601.17514_none_5918bfde74e3f722.manifest
[2012/10/05 19:18:30 | 000,002,237 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_wcf-system.runtime.serialization.ref_b03f5f7f11d50a3a_6.1.7601.17966_none_591d933074dfaa5b.manifest
[2014/07/02 07:30:52 | 000,002,237 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_wcf-system.runtime.serialization.ref_b03f5f7f11d50a3a_6.1.7601.18523_none_5919d8d674e2f3ff.manifest
[2014/07/14 03:24:48 | 000,002,237 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_wcf-system.runtime.serialization.ref_b03f5f7f11d50a3a_6.1.7601.18532_none_591aefe874e1f3b5.manifest
[2012/10/05 19:10:31 | 000,002,237 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_wcf-system.runtime.serialization.ref_b03f5f7f11d50a3a_6.1.7601.22126_none_424bee728e8a9f53.manifest
[2014/07/02 07:30:44 | 000,002,237 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_wcf-system.runtime.serialization.ref_b03f5f7f11d50a3a_6.1.7601.22733_none_424d323c8e896dad.manifest
[2014/07/14 03:13:57 | 000,002,237 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_wcf-system.runtime.serialization.ref_b03f5f7f11d50a3a_6.1.7601.22743_none_424e32868e888704.manifest
[2009/07/14 03:27:09 | 000,002,262 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7600.16385_none_941abf24c884ab05.manifest
[2012/10/06 19:46:10 | 000,002,262 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7600.17136_none_9415a918c8894278.manifest
[2012/10/06 20:01:29 | 000,002,262 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7600.21337_none_7d47eb6ce230bc70.manifest
[2010/11/20 05:22:10 | 000,002,262 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.17514_none_93efcca8c8dbf1bb.manifest
[2012/10/05 19:19:07 | 000,002,262 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.17966_none_93f49ffac8d7a4f4.manifest
[2014/07/02 07:31:00 | 000,002,262 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.18523_none_93f0e5a0c8daee98.manifest
[2014/07/14 03:24:58 | 000,002,262 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.18532_none_93f1fcb2c8d9ee4e.manifest
[2012/10/05 19:11:10 | 000,002,262 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.22126_none_7d22fb3ce28299ec.manifest
[2014/07/02 07:30:53 | 000,002,262 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.22733_none_7d243f06e2816846.manifest
[2014/07/14 03:14:06 | 000,002,262 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.22743_none_7d253f50e280819d.manifest
[2009/07/14 02:52:33 | 000,002,226 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization.ref_b77a5c561934e089_6.1.7600.16385_none_a6aa149474833896.manifest
[2012/10/06 19:07:20 | 000,002,226 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization.ref_b77a5c561934e089_6.1.7600.17136_none_a6a4fe887487d009.manifest
[2012/10/06 19:58:54 | 000,002,226 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization.ref_b77a5c561934e089_6.1.7600.21337_none_8fd740dc8e2f4a01.manifest
[2010/11/20 04:06:16 | 000,002,226 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization.ref_b77a5c561934e089_6.1.7601.17514_none_a67f221874da7f4c.manifest
[2012/10/05 18:15:39 | 000,002,226 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization.ref_b77a5c561934e089_6.1.7601.17966_none_a683f56a74d63285.manifest
[2014/07/02 06:57:49 | 000,002,226 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization.ref_b77a5c561934e089_6.1.7601.18523_none_a6803b1074d97c29.manifest
[2014/07/14 03:04:09 | 000,002,226 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization.ref_b77a5c561934e089_6.1.7601.18532_none_a681522274d87bdf.manifest
[2012/10/05 18:17:50 | 000,002,226 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization.ref_b77a5c561934e089_6.1.7601.22126_none_8fb250ac8e81277d.manifest
[2014/07/02 07:07:46 | 000,002,226 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization.ref_b77a5c561934e089_6.1.7601.22733_none_8fb394768e7ff5d7.manifest
[2014/07/14 03:04:27 | 000,002,226 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization.ref_b77a5c561934e089_6.1.7601.22743_none_8fb494c08e7f0f2e.manifest
[2009/07/14 03:42:40 | 000,000,531 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7600.16385_en-us_8f71d563bf7aa3c2.manifest
[2012/10/06 19:17:26 | 000,000,531 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7600.17136_en-us_8f6cbf57bf7f3b35.manifest
[2012/10/06 19:18:44 | 000,000,531 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7600.21337_en-us_789f01abd926b52d.manifest
[2012/10/05 19:09:41 | 000,000,531 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.17966_en-us_8f4bb639bfcd9db1.manifest
[2014/07/02 07:12:55 | 000,000,531 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.18523_en-us_8f47fbdfbfd0e755.manifest
[2014/07/14 03:07:18 | 000,000,531 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.18532_en-us_8f4912f1bfcfe70b.manifest
[2012/10/05 18:57:17 | 000,000,531 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.22126_en-us_787a117bd97892a9.manifest
[2014/07/02 07:12:12 | 000,000,531 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.22733_en-us_787b5545d9776103.manifest
[2014/07/14 02:56:59 | 000,000,531 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization.resources_b77a5c561934e089_6.1.7601.22743_en-us_787c558fd9767a5a.manifest
[2009/07/14 02:51:52 | 000,001,985 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization_b77a5c561934e089_6.1.7600.16385_none_d6ed4a2e9c2a39c9.manifest
[2012/10/06 19:11:48 | 000,001,985 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization_b77a5c561934e089_6.1.7600.17136_none_d6e834229c2ed13c.manifest
[2012/10/06 20:03:01 | 000,001,985 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization_b77a5c561934e089_6.1.7600.21337_none_c01a7676b5d64b34.manifest
[2010/11/20 04:05:38 | 000,001,985 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization_b77a5c561934e089_6.1.7601.17514_none_d6c257b29c81807f.manifest
[2012/10/05 18:15:03 | 000,001,985 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization_b77a5c561934e089_6.1.7601.17966_none_d6c72b049c7d33b8.manifest
[2014/07/02 07:00:03 | 000,001,985 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization_b77a5c561934e089_6.1.7601.18523_none_d6c370aa9c807d5c.manifest

Romchi
Návštěvník
Návštěvník
Příspěvky: 13
Registrován: 23 úno 2015 15:01

Re: Prosím o preventívnu kontrolu,ďakujem.

#7 Příspěvek od Romchi »

posledný kúsok OTL:

[2014/07/14 03:06:40 | 000,001,985 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization_b77a5c561934e089_6.1.7601.18532_none_d6c487bc9c7f7d12.manifest
[2012/10/05 18:17:15 | 000,001,985 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization_b77a5c561934e089_6.1.7601.22126_none_bff58646b62828b0.manifest
[2014/07/02 07:10:04 | 000,001,985 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization_b77a5c561934e089_6.1.7601.22733_none_bff6ca10b626f70a.manifest
[2014/07/14 03:06:53 | 000,001,985 | ---- | M] () -- \Windows\winsxs\Manifests\msil_system.runtime.serialization_b77a5c561934e089_6.1.7601.22743_none_bff7ca5ab6261061.manifest
[2009/07/14 02:57:53 | 000,002,260 | ---- | M] () -- \Windows\winsxs\Manifests\x86_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7600.16385_none_dbc7f5fbdd00d40b.manifest
[2012/10/06 19:09:38 | 000,002,260 | ---- | M] () -- \Windows\winsxs\Manifests\x86_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7600.17136_none_dbc2dfefdd056b7e.manifest
[2012/10/06 20:00:53 | 000,002,260 | ---- | M] () -- \Windows\winsxs\Manifests\x86_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7600.21337_none_c4f52243f6ace576.manifest
[2010/11/20 04:10:46 | 000,002,260 | ---- | M] () -- \Windows\winsxs\Manifests\x86_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.17514_none_db9d037fdd581ac1.manifest
[2012/10/05 18:19:53 | 000,002,260 | ---- | M] () -- \Windows\winsxs\Manifests\x86_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.17966_none_dba1d6d1dd53cdfa.manifest
[2014/07/02 06:58:58 | 000,002,260 | ---- | M] () -- \Windows\winsxs\Manifests\x86_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.18523_none_db9e1c77dd57179e.manifest
[2014/07/14 03:05:25 | 000,002,260 | ---- | M] () -- \Windows\winsxs\Manifests\x86_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.18532_none_db9f3389dd561754.manifest
[2012/10/05 18:22:10 | 000,002,260 | ---- | M] () -- \Windows\winsxs\Manifests\x86_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.22126_none_c4d03213f6fec2f2.manifest
[2014/07/02 07:08:55 | 000,002,260 | ---- | M] () -- \Windows\winsxs\Manifests\x86_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.22733_none_c4d175ddf6fd914c.manifest
[2014/07/14 03:05:41 | 000,002,260 | ---- | M] () -- \Windows\winsxs\Manifests\x86_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.22743_none_c4d27627f6fcaaa3.manifest
[2009/06/10 22:23:19 | 000,131,072 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.seri..ion.formatters.soap_b03f5f7f11d50a3a_6.1.7600.16385_none_1c9a3ec1e01c684b\System.Runtime.Serialization.Formatters.Soap.dll
[2014/06/24 00:43:20 | 000,131,072 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.seri..ion.formatters.soap_b03f5f7f11d50a3a_6.1.7601.18523_none_1c70653de072abde\System.Runtime.Serialization.Formatters.Soap.dll
[2014/06/24 00:43:36 | 000,131,072 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.seri..ion.formatters.soap_b03f5f7f11d50a3a_6.1.7601.22733_none_05a3bea3fa19258c\System.Runtime.Serialization.Formatters.Soap.dll
[2009/06/10 22:14:06 | 000,970,752 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization.ref_b77a5c561934e089_6.1.7600.16385_none_a6aa149474833896\System.Runtime.Serialization.dll
[2012/10/06 11:54:26 | 000,970,752 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization.ref_b77a5c561934e089_6.1.7600.17136_none_a6a4fe887487d009\System.Runtime.Serialization.dll
[2012/10/06 11:57:06 | 000,970,752 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization.ref_b77a5c561934e089_6.1.7600.21337_none_8fd740dc8e2f4a01\System.Runtime.Serialization.dll
[2010/11/05 02:52:39 | 000,970,752 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization.ref_b77a5c561934e089_6.1.7601.17514_none_a67f221874da7f4c\System.Runtime.Serialization.dll
[2012/10/05 11:53:24 | 000,970,752 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization.ref_b77a5c561934e089_6.1.7601.17966_none_a683f56a74d63285\System.Runtime.Serialization.dll
[2014/03/09 22:47:42 | 000,970,752 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization.ref_b77a5c561934e089_6.1.7601.18523_none_a6803b1074d97c29\System.Runtime.Serialization.dll
[2014/07/10 23:24:11 | 000,970,752 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization.ref_b77a5c561934e089_6.1.7601.18532_none_a681522274d87bdf\System.Runtime.Serialization.dll
[2012/10/06 11:57:06 | 000,970,752 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization.ref_b77a5c561934e089_6.1.7601.22126_none_8fb250ac8e81277d\System.Runtime.Serialization.dll
[2014/03/17 15:38:28 | 000,970,752 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization.ref_b77a5c561934e089_6.1.7601.22733_none_8fb394768e7ff5d7\System.Runtime.Serialization.dll
[2014/07/08 00:27:52 | 000,970,752 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization.ref_b77a5c561934e089_6.1.7601.22743_none_8fb494c08e7f0f2e\System.Runtime.Serialization.dll
[2009/06/10 22:13:54 | 000,970,752 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization_b77a5c561934e089_6.1.7600.16385_none_d6ed4a2e9c2a39c9\System.Runtime.Serialization.dll
[2012/10/06 11:54:25 | 000,970,752 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization_b77a5c561934e089_6.1.7600.17136_none_d6e834229c2ed13c\System.Runtime.Serialization.dll
[2012/10/06 11:57:05 | 000,970,752 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization_b77a5c561934e089_6.1.7600.21337_none_c01a7676b5d64b34\System.Runtime.Serialization.dll
[2010/11/05 02:52:27 | 000,970,752 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization_b77a5c561934e089_6.1.7601.17514_none_d6c257b29c81807f\System.Runtime.Serialization.dll
[2012/10/05 11:53:23 | 000,970,752 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization_b77a5c561934e089_6.1.7601.17966_none_d6c72b049c7d33b8\System.Runtime.Serialization.dll
[2014/03/09 22:47:42 | 000,970,752 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization_b77a5c561934e089_6.1.7601.18523_none_d6c370aa9c807d5c\System.Runtime.Serialization.dll
[2014/07/10 23:24:10 | 000,970,752 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization_b77a5c561934e089_6.1.7601.18532_none_d6c487bc9c7f7d12\System.Runtime.Serialization.dll
[2012/10/06 11:57:05 | 000,970,752 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization_b77a5c561934e089_6.1.7601.22126_none_bff58646b62828b0\System.Runtime.Serialization.dll
[2014/03/17 15:38:27 | 000,970,752 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization_b77a5c561934e089_6.1.7601.22733_none_bff6ca10b626f70a\System.Runtime.Serialization.dll
[2014/07/08 00:27:52 | 000,970,752 | ---- | M] () -- \Windows\winsxs\msil_system.runtime.serialization_b77a5c561934e089_6.1.7601.22743_none_bff7ca5ab6261061\System.Runtime.Serialization.dll
[2009/07/14 03:10:04 | 000,005,120 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-u..em-config.resources_31bf3856ad364e35_6.1.7600.16385_en-us_919783112bf8b64b\serialui.dll.mui
[2009/07/13 17:29:14 | 000,005,120 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-u..em-config.resources_31bf3856ad364e35_6.1.7600.16385_sk-sk_79d39f727217a41c\serialui.dll.mui
[2009/07/14 02:16:13 | 000,015,360 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-unimodem-config_31bf3856ad364e35_6.1.7600.16385_none_f4d7f7b17ffe522a\serialui.dll
[2009/06/10 22:13:54 | 000,970,752 | ---- | M] () -- \Windows\winsxs\x86_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7600.16385_none_dbc7f5fbdd00d40b\System.Runtime.Serialization.dll
[2012/10/06 11:54:25 | 000,970,752 | ---- | M] () -- \Windows\winsxs\x86_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7600.17136_none_dbc2dfefdd056b7e\System.Runtime.Serialization.dll
[2012/10/06 11:57:05 | 000,970,752 | ---- | M] () -- \Windows\winsxs\x86_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7600.21337_none_c4f52243f6ace576\System.Runtime.Serialization.dll
[2010/11/05 02:52:27 | 000,970,752 | ---- | M] () -- \Windows\winsxs\x86_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.17514_none_db9d037fdd581ac1\System.Runtime.Serialization.dll
[2012/10/05 11:53:23 | 000,970,752 | ---- | M] () -- \Windows\winsxs\x86_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.17966_none_dba1d6d1dd53cdfa\System.Runtime.Serialization.dll
[2014/03/09 22:47:42 | 000,970,752 | ---- | M] () -- \Windows\winsxs\x86_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.18523_none_db9e1c77dd57179e\System.Runtime.Serialization.dll
[2014/07/10 23:24:10 | 000,970,752 | ---- | M] () -- \Windows\winsxs\x86_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.18532_none_db9f3389dd561754\System.Runtime.Serialization.dll
[2012/10/06 11:57:05 | 000,970,752 | ---- | M] () -- \Windows\winsxs\x86_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.22126_none_c4d03213f6fec2f2\System.Runtime.Serialization.dll
[2014/03/17 15:38:27 | 000,970,752 | ---- | M] () -- \Windows\winsxs\x86_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.22733_none_c4d175ddf6fd914c\System.Runtime.Serialization.dll
[2014/07/08 00:27:52 | 000,970,752 | ---- | M] () -- \Windows\winsxs\x86_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.1.7601.22743_none_c4d27627f6fcaaa3\System.Runtime.Serialization.dll

< *w7lxe* /s >

< End of report >

Romchi
Návštěvník
Návštěvník
Příspěvky: 13
Registrován: 23 úno 2015 15:01

Re: Prosím o preventívnu kontrolu,ďakujem.

#8 Příspěvek od Romchi »

Extras:

OTL Extras logfile created on: 23. 2. 2015 20:16:29 - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Roman\Desktop
64bit- Ultimate Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.11.9600.17633)
Locale: 0000041b | Country: Slovenská republika | Language: SKY | Date Format: d. M. yyyy

3,86 Gb Total Physical Memory | 1,84 Gb Available Physical Memory | 47,60% Memory free
7,72 Gb Paging File | 5,55 Gb Available in Paging File | 71,93% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 465,66 Gb Total Space | 234,87 Gb Free Space | 50,44% Space Free | Partition Type: NTFS

Computer Name: ROMAN-PC | User Name: Roman | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

========== Extra Registry (SafeList) ==========


========== File Associations ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.html[@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
.url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation)
.html [@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)

[HKEY_USERS\S-1-5-21-1778754102-3392175034-3567333730-1000\SOFTWARE\Classes\<extension>]
.html [@ = ChromeHTML] -- Reg Error: Key error. File not found

========== Shell Spawning ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [edit] -- Reg Error: Key error.
htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [print] -- "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1"
http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation)
InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [AddToPlaylistVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" (VideoLAN)
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" (VideoLAN)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [edit] -- Reg Error: Key error.
htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [print] -- "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1"
http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [AddToPlaylistVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" (VideoLAN)
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" (VideoLAN)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Value error.

========== Security Center Settings ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data]
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]

========== Firewall Settings ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

========== Authorized Applications List ==========


========== Vista Active Open Ports Exception List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{0EBF31DE-687D-43CC-81A4-ADABFE911235}" = rport=139 | protocol=6 | dir=out | app=system |
"{1DEAAC43-D83E-4EC5-95C4-EF1FF243503D}" = lport=138 | protocol=17 | dir=in | app=system |
"{1E24455D-2E9B-4160-ADA1-FABD4AD93FF1}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 |
"{2C80642B-114E-4F40-9B19-49D34E091876}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{6547EEB5-F62C-48AE-A072-7F24A1C59D8D}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{6B718C01-E039-4F6D-965E-436A30BBDBCE}" = lport=5353 | protocol=17 | dir=in | app=c:\program files (x86)\google\chrome\application\chrome.exe |
"{74C7BCEA-36DE-4CBC-93B4-1D98FE952D46}" = rport=138 | protocol=17 | dir=out | app=system |
"{7DF330D6-1C8A-4952-9F12-03B87D13A371}" = lport=137 | protocol=17 | dir=in | app=system |
"{A059E445-A10A-4374-BF9E-E351AF6F6A49}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe |
"{A6547A42-E4C3-4EF9-BFDD-DC87D49E344E}" = rport=445 | protocol=6 | dir=out | app=system |
"{C2091272-790F-4E61-9774-D539B8198DDC}" = lport=139 | protocol=6 | dir=in | app=system |
"{C4A39AF7-E81A-403D-A15B-0D3CC333EB36}" = lport=445 | protocol=6 | dir=in | app=system |
"{E82B366D-72D5-4053-A236-348F06649C6C}" = rport=137 | protocol=17 | dir=out | app=system |

========== Vista Active Application Exception List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{0352810F-021E-4A18-A17E-FB5B395E20CC}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.3454\agent.exe |
"{056D9736-93B0-48C6-993A-9493A4344855}" = dir=in | app=c:\program files (x86)\garena plus\room\garena_room.exe |
"{07FC7E09-F968-4BA9-B090-C358CB75010C}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\left 4 dead 2\left4dead2.exe |
"{0BAC317D-8027-4A4F-85DF-B3217905929E}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.3346\agent.exe |
"{115A6642-2063-498C-8ABC-49B4312F90D8}" = protocol=17 | dir=in | app=c:\program files (x86)\hearthstone\hearthstone.exe |
"{1540435F-A814-4598-9ABB-679D3A4701B9}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 |
"{2E00B665-F0DC-4FCB-9B82-CA84AB6CA5B3}" = protocol=6 | dir=in | app=c:\program files (x86)\raptr\raptr_im.exe |
"{312DC981-9D35-43AA-AC8E-B563011DF92A}" = protocol=17 | dir=in | app=c:\program files (x86)\fifa 14\game\fifa14.exe |
"{31D39D3D-9001-4675-87E2-E1B1A4A89A30}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.3632\agent.exe |
"{3238CCED-E265-4067-8A00-EF2D2EEDD64E}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 |
"{35BA04D5-B9E2-448F-8E40-1CEF522EBBFE}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{382B4BBC-0EFF-481C-9260-78C9DB0CAFD2}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.3478\agent.exe |
"{3D69583F-DAAF-449A-B554-4D91D589DF3A}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.3688\agent.exe |
"{42A1D60A-B317-4EC2-9ED6-8A34AB1B51E0}" = protocol=17 | dir=in | app=c:\program files (x86)\raptr\raptr.exe |
"{44098D30-A6C7-4133-919E-F773E5CF4101}" = protocol=6 | dir=in | app=c:\program files (x86)\hearthstone\hearthstone.exe |
"{4A1CC53E-8E14-44F9-BF1D-9FCB6CFA1433}" = protocol=6 | dir=in | app=c:\users\roman\appdata\roaming\utorrent\utorrent.exe |
"{4AEA45B3-4E6D-488E-8A2F-FB9AE9479101}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\left 4 dead 2\left4dead2.exe |
"{6CF09320-D759-4DC9-B251-51F9DDBD97A9}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.3526\agent.exe |
"{75A72000-8C81-437A-B0E0-E48B61782EB3}" = protocol=6 | dir=in | app=c:\users\roman\appdata\roaming\dropbox\bin\dropbox.exe |
"{77582D0A-3607-4CE8-B2A4-8B1A4DE35E8A}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.3526\agent.exe |
"{7BA8FE09-9218-43DA-9979-073E734F9D33}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steam.exe |
"{7C434C3A-5499-4AAE-9D06-59574C43B761}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.3715\agent.exe |
"{7CD8FF89-A6A7-4428-8AA3-E6905972FBD7}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.3478\agent.exe |
"{80D06826-2813-4458-9A1C-B71A9D4A30FB}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.3669\agent.exe |
"{8225813D-F8B7-4CE2-957D-75762841303D}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\bin\steamwebhelper.exe |
"{852B0F18-C428-453F-9DCE-AC9DB532D1EE}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.3427\agent.exe |
"{87FBB00D-7002-427D-B4DD-BBC4D5F1B099}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.3372\agent.exe |
"{916AD206-4F10-4771-A7E2-FA853C706538}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.3689\agent.exe |
"{975F7A2A-1CB1-4543-BFC1-C59026111CFE}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.3507\agent.exe |
"{9BB630FF-D413-4BF7-A193-7A8BBC0576E5}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\bin\steamwebhelper.exe |
"{9E3B6F37-1617-4760-BD37-3DAC8E01BCB4}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\dota.exe |
"{A7D00D6E-808B-4A06-9218-01BF99757C6F}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\dota.exe |
"{ABE5026F-742A-4878-8D1A-9F388D4E2031}" = protocol=6 | dir=in | app=c:\program files (x86)\battle.net\battle.net.exe |
"{B1B8DE92-544F-435B-9245-846C40F6BA3F}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.3634\agent.exe |
"{B3A102EE-BF79-4E50-A38C-9568C091B677}" = protocol=17 | dir=in | app=c:\program files (x86)\raptr\raptr_im.exe |
"{B3A2E911-D4A0-4712-B7FF-BC272609C767}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.3346\agent.exe |
"{B3CCFF3D-253D-4251-9114-2B72F53AA830}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.3634\agent.exe |
"{B4483F38-3B6E-4665-A0C4-EB25C2E6593D}" = dir=in | app=c:\program files (x86)\garena plus\ggdllhost.exe |
"{B74587C9-F9AC-48C2-8B42-E75387A8D527}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.3372\agent.exe |
"{B8591D89-C03E-4869-8D5C-49594C726289}" = protocol=6 | dir=in | app=c:\program files (x86)\eurobattle.net\xpam.exe |
"{B933D3D7-8F1B-48F0-A9EB-54302E81F54B}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.3427\agent.exe |
"{C4C61986-AFE3-47C9-A31A-B56D1C687DBE}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.3632\agent.exe |
"{CB9C4259-0C34-4DB8-A27C-81BDA0E84E68}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steam.exe |
"{CD995790-A147-4356-B84F-BC1F4500F537}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.3715\agent.exe |
"{CDCF556A-C1B1-4794-BD47-F962AAAD0539}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 |
"{D1237EAF-D0D7-4594-9D8A-FFEB8A79BC43}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.3669\agent.exe |
"{D2BE9978-3F95-44B5-A6C9-FAC9C62D5D67}" = protocol=17 | dir=in | app=c:\users\roman\appdata\roaming\utorrent\utorrent.exe |
"{D2F9DE9F-EC8A-4BFD-B1D1-B685C394ADC4}" = protocol=17 | dir=in | app=c:\program files (x86)\battle.net\battle.net.exe |
"{DC0E86A9-DA17-4044-A39D-A2726786B00F}" = protocol=6 | dir=in | app=c:\program files (x86)\raptr\raptr.exe |
"{E251B9C0-0B51-407B-B418-9393F6EEEFE3}" = protocol=6 | dir=in | app=c:\program files (x86)\fifa 14\game\fifa14.exe |
"{E2AEA404-6439-473B-9E0D-C345961EBD53}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.3689\agent.exe |
"{E3EC5BCD-62A3-4262-86B1-E470FC760792}" = protocol=17 | dir=in | app=c:\program files (x86)\eurobattle.net\xpam.exe |
"{EAAFBEBF-1265-4291-A86E-4CE6F29C93AF}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.3688\agent.exe |
"{F99F35CA-30F3-466B-AD4C-5ABB4FF8BA18}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.3454\agent.exe |
"{FB6B336C-46BC-480E-B809-B7A401D66398}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.3507\agent.exe |
"{FB9042C1-595D-4562-B7B7-9919AD2CD17D}" = protocol=17 | dir=in | app=c:\users\roman\appdata\roaming\dropbox\bin\dropbox.exe |
"{FE6544D4-D47B-40A9-BE11-5B64AEF18E2B}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 |
"TCP Query User{39D58E3E-D62E-4FD2-B3E8-E4435C07C837}C:\users\roman\desktop\half life source deathmatch\half life source deathmatch\hl2.exe" = protocol=6 | dir=in | app=c:\users\roman\desktop\half life source deathmatch\half life source deathmatch\hl2.exe |
"TCP Query User{3ABA9260-8C61-4EAD-AA2D-6CACF633B132}C:\program files (x86)\libreoffice 4\program\soffice.bin" = protocol=6 | dir=in | app=c:\program files (x86)\libreoffice 4\program\soffice.bin |
"TCP Query User{472F38EE-3D6B-49FC-BA8C-145FF0C5B4B3}C:\program files (x86)\eurobattle.net\gproxy.exe" = protocol=6 | dir=in | app=c:\program files (x86)\eurobattle.net\gproxy.exe |
"TCP Query User{53FDC7C9-3674-45EF-8151-30FD0D4F3E14}C:\users\roman\appdata\roaming\dropbox\bin\dropbox.exe" = protocol=6 | dir=in | app=c:\users\roman\appdata\roaming\dropbox\bin\dropbox.exe |
"TCP Query User{777CCB99-F43E-42B7-9664-51118C3FF527}C:\warcraft iii\war3.exe" = protocol=6 | dir=in | app=c:\warcraft iii\war3.exe |
"TCP Query User{7EEBF856-20F6-4030-B4CF-729698074A42}C:\program files (x86)\half-life 2 deathmatch\hl2.exe" = protocol=6 | dir=in | app=c:\program files (x86)\half-life 2 deathmatch\hl2.exe |
"TCP Query User{8B7ACF81-5813-4689-A2A3-56AEBBF7F12E}C:\program files (x86)\fifa 14\game\fifa14.exe" = protocol=6 | dir=in | app=c:\program files (x86)\fifa 14\game\fifa14.exe |
"TCP Query User{9BDF3196-3C4F-487F-B22E-7E46C68496F4}C:\warcraft iii\war3.exe" = protocol=6 | dir=in | app=c:\warcraft iii\war3.exe |
"TCP Query User{AA36177D-94A9-45E2-AA76-2C30A5D21F94}C:\program files\matlab\r2014b\bin\win64\matlab.exe" = protocol=6 | dir=in | app=c:\program files\matlab\r2014b\bin\win64\matlab.exe |
"TCP Query User{AB1797D7-80C7-4500-A498-8A0CE2314D69}C:\program files (x86)\hearthstone\hearthstone.exe" = protocol=6 | dir=in | app=c:\program files (x86)\hearthstone\hearthstone.exe |
"TCP Query User{B46E57A1-D47F-4334-94AC-9CA3FFF80AC8}C:\users\roman\desktop\cs16\hl.exe" = protocol=6 | dir=in | app=c:\users\roman\desktop\cs16\hl.exe |
"TCP Query User{BA1FC47D-5CD5-4A20-91C9-FA840D11FA4A}C:\users\roman\desktop\cs16\hl.exe" = protocol=6 | dir=in | app=c:\users\roman\desktop\cs16\hl.exe |
"UDP Query User{0DA926C4-84AE-443A-86D0-3E59876B122F}C:\users\roman\desktop\cs16\hl.exe" = protocol=17 | dir=in | app=c:\users\roman\desktop\cs16\hl.exe |
"UDP Query User{14D4C7E1-F51E-4ABD-9308-EC66CBAD3F87}C:\program files (x86)\half-life 2 deathmatch\hl2.exe" = protocol=17 | dir=in | app=c:\program files (x86)\half-life 2 deathmatch\hl2.exe |
"UDP Query User{1C6F3F6C-D2F0-407F-B8D2-650A2FFF3D44}C:\warcraft iii\war3.exe" = protocol=17 | dir=in | app=c:\warcraft iii\war3.exe |
"UDP Query User{22D037CB-BA62-4947-ACF5-B6E11B8C9A7C}C:\program files (x86)\eurobattle.net\gproxy.exe" = protocol=17 | dir=in | app=c:\program files (x86)\eurobattle.net\gproxy.exe |
"UDP Query User{23667A31-A4EC-47E8-9349-57998B6D09B3}C:\program files (x86)\hearthstone\hearthstone.exe" = protocol=17 | dir=in | app=c:\program files (x86)\hearthstone\hearthstone.exe |
"UDP Query User{606A6C7F-983D-4185-8269-9B990BEFCE10}C:\program files (x86)\libreoffice 4\program\soffice.bin" = protocol=17 | dir=in | app=c:\program files (x86)\libreoffice 4\program\soffice.bin |
"UDP Query User{82EE7617-EF92-4EAE-B5BF-2E7BDE034879}C:\warcraft iii\war3.exe" = protocol=17 | dir=in | app=c:\warcraft iii\war3.exe |
"UDP Query User{8B5D3401-60A9-40BA-97BE-09C25B7FD4BD}C:\users\roman\desktop\cs16\hl.exe" = protocol=17 | dir=in | app=c:\users\roman\desktop\cs16\hl.exe |
"UDP Query User{93F708F6-2B63-4383-976A-234987515ECF}C:\program files (x86)\fifa 14\game\fifa14.exe" = protocol=17 | dir=in | app=c:\program files (x86)\fifa 14\game\fifa14.exe |
"UDP Query User{9B38994F-E0F7-41D6-A2A2-4B3F0B5E5F64}C:\users\roman\appdata\roaming\dropbox\bin\dropbox.exe" = protocol=17 | dir=in | app=c:\users\roman\appdata\roaming\dropbox\bin\dropbox.exe |
"UDP Query User{E0D54322-18A5-47FA-8AE1-96F99CA15AF6}C:\users\roman\desktop\half life source deathmatch\half life source deathmatch\hl2.exe" = protocol=17 | dir=in | app=c:\users\roman\desktop\half life source deathmatch\half life source deathmatch\hl2.exe |
"UDP Query User{F973A3A8-F61D-447F-BE66-9BE8C96EEE68}C:\program files\matlab\r2014b\bin\win64\matlab.exe" = protocol=17 | dir=in | app=c:\program files\matlab\r2014b\bin\win64\matlab.exe |

========== HKEY_LOCAL_MACHINE Uninstall List ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{37B8F9C7-03FB-3253-8781-2517C99D7C00}" = Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030
"{3FAEEEBE-48F4-84C1-2B49-96AE73E67E3E}" = AMD Catalyst Install Manager
"{41F22D89-7F71-E83A-08E7-7E7473F4A55D}" = AMD Accelerated Video Transcoding
"{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148
"{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161
"{69F860CB-69A0-991D-C0A7-2967286A8DDC}" = ccc-utility64
"{7DEBE4EB-6B40-3766-BB35-5CBBC385DA37}" = Microsoft .NET Framework 4.5.1
"{8E02B34C-F793-43AE-B860-09BCB0CB9FFC}" = OpenVPN 64-bit
"{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033" = Microsoft .NET Framework 4.5.1
"{996D32B6-F629-4764-894B-CB24D9C19051}" = Microsoft Security Client
"{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}" = Microsoft Visual C++ 2005 Redistributable (x64)
"{C3ECDE27-BD89-71E3-254D-DF32AF7C389D}" = AMD Wireless Display v3.0
"{CB8EC858-84C9-5A45-F786-86929EE4298B}" = AMD Drag and Drop Transcoding
"{CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97}" = Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030
"{DA5E371C-6333-3D8A-93A4-6FD5B20BCC6E}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.30319
"Broadcom 802.11 Wireless LAN Adapter" = Broadcom 802.11 Wireless LAN Adapter
"CCleaner" = CCleaner
"Matlab R2014b" = MATLAB R2014b
"Microsoft Security Client" = Microsoft Security Essentials
"OpenVPN" = OpenVPN 2.3.2-I003
"R for Windows 3.0.3_is1" = R for Windows 3.0.3
"SynTPDeinstKey" = Synaptics Pointing Device Driver
"TAP-Windows" = TAP-Windows 9.9.2
"TeamSpeak 3 Client" = TeamSpeak 3 Client
"WinRAR archiver" = WinRAR 5.10 beta 2 (64-bit)

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{001296EA-6321-1D93-6D07-C56469336B6F}" = CCC Help Chinese Traditional
"{08BF5606-B92B-91D9-550E-45C40EF82146}" = CCC Help Swedish
"{0ECDB550-79ED-4E9E-851B-19A8B2B4EBFA}" = LibreOffice 4.2.2.1
"{11960C5F-F2A2-1A1C-F884-2579A22E70BA}" = CCC Help Finnish
"{1D968C74-5200-4331-F74D-83E30797B736}" = CCC Help Italian
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{1F2B6EDD-9374-B327-8F8E-E31AF6A805B0}" = CCC Help German
"{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}" = Skype™ 6.21
"{26A24AE4-039D-4CA4-87B4-2F83218031F0}" = Java 8 Update 31
"{285722F0-59D5-9468-BA6F-72985A2CE931}" = CCC Help Czech
"{2B68CAC1-5B99-3465-8982-E4FAB2AE036A}" = CCC Help Russian
"{31AC9515-5F70-41D1-F740-B1978B8D48EA}" = CCC Help Greek
"{3AE82D96-752D-1505-8F07-FF9504D6D0E5}" = Catalyst Control Center Localization All
"{3D2E0EFF-7E27-ED90-809A-7E59FB05AE63}" = CCC Help Portuguese
"{481C8C2A-D764-E7B9-8155-316540E71082}" = Catalyst Control Center InstallProxy
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{51C7AD07-C3F6-4635-8E8A-231306D810FE}" = Cisco LEAP Module
"{565B9F3F-3617-6859-B821-6F103537489D}" = CCC Help Danish
"{59F0E916-7B87-4F09-888B-850F3F0700B5}" = Catalyst Control Center - Branding
"{6049054B-DB11-48E1-A583-9A565D5C8856}_is1" = "FIFA 14"
"{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}" = Google Update Helper
"{64BF0187-F3D2-498B-99EA-163AF9AE6EC9}" = Cisco EAP-FAST Module
"{6EB5B377-BD22-2E2E-772F-4A993EAC38FD}" = Catalyst Control Center Graphics Previews Common
"{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
"{76BAD284-3559-25EE-AB8C-FBAA8042B24B}" = CCC Help English
"{777C7020-402D-4F73-D4C8-B375AFB5CFF7}" = CCC Help Polish
"{7E090AA3-1AA3-749F-4C2F-16CDB816651F}" = CCC Help Turkish
"{8162B13E-896E-40DF-EB30-5252BF25CC03}" = CCC Help Norwegian
"{89CE7F9B-B4DF-8585-638B-6BD807ADE9C7}" = HydraVision
"{8A17260E-6572-1DE2-6E73-C297A31093C1}" = CCC Help Chinese Standard
"{8E0AFE95-5099-1CB1-A3D1-1BFB2546F1F1}" = CCC Help Thai
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
"{A83F6EE0-A42E-66D8-88B6-90A475602565}" = CCC Help Hungarian
"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
"{AC76BA86-0804-1033-1959-001802114130}" = Adobe Refresh Manager
"{AC76BA86-7AD7-1051-7B44-AB0000000001}" = Adobe Reader XI (11.0.10) - Slovak
"{B7666229-351B-47D9-AA6F-DF777CF04BBF}" = Caesar IV
"{C086E8FA-7445-4E07-1310-4616EC120EE7}" = CCC Help Dutch
"{C2F88EE6-D343-F986-E8F1-F012B294CEA7}" = CCC Help Korean
"{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}" = Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030
"{D37C1AFD-4B44-12B5-B833-1AA7725C32A4}" = AMD Catalyst Control Center
"{D8735515-0DB5-DCBD-C303-37D32DE4363F}" = CCC Help Japanese
"{E4F406B9-319B-2C33-54CE-84A46DA47BFB}" = CCC Help French
"{EC58A9C9-22D8-FA14-785E-37B8C290AA8D}" = CCC Help Spanish
"{ED5776D5-59B4-46B7-AF81-5F2D94D7C640}" = Cisco PEAP Module
"{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219
"Battle.net" = Battle.net
"DAEMON Tools Lite" = DAEMON Tools Lite
"Eurobattle.net" = Eurobattle.net
"GOGPACKHOMM4COMPLETE_is1" = Heroes of Might and Magic 4 Complete
"Google Chrome" = Google Chrome
"Hearthstone" = Hearthstone
"Heroes of Might and Magic V Bundle_is1" = Heroes of Might and Magic V Bundle
"im" = Garena Plus
"KLiteCodecPack_is1" = K-Lite Codec Pack 10.4.0 Full
"Raptr" = Raptr
"Rm9vdGJhbGxNYW5hZ2VyMjAxNA==_is1" = Football Manager 2014
"RStudio" = RStudio
"Steam" = Steam
"Steam App 550" = Left 4 Dead 2
"Steam App 570" = Dota 2
"VLC media player" = VLC media player 2.1.3

========== HKEY_USERS Uninstall List ==========

[HKEY_USERS\S-1-5-21-1778754102-3392175034-3567333730-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"Dropbox" = Dropbox
"uTorrent" = µTorrent

========== Last 20 Event Log Errors ==========

[ Application Events ]
Error - 13. 2. 2015 6:14:58 | Computer Name = Roman-PC | Source = SideBySide | ID = 16842815
Description = Activation context generation failed for "c:\program files\R\r-3.0.3\Tcl\bin64\tk85.dll".Error
in manifest or policy file "c:\program files\R\r-3.0.3\Tcl\bin64\tk85.dll" on line
9. The value "x64" of attribute "processorArchitecture" in element "assemblyIdentity"
is invalid.

Error - 13. 2. 2015 6:17:35 | Computer Name = Roman-PC | Source = SideBySide | ID = 16842815
Description = Activation context generation failed for "c:\program files\R\r-3.0.3\Tcl\bin64\tk85.dll".Error
in manifest or policy file "c:\program files\R\r-3.0.3\Tcl\bin64\tk85.dll" on line
9. The value "x64" of attribute "processorArchitecture" in element "assemblyIdentity"
is invalid.

Error - 14. 2. 2015 12:49:22 | Computer Name = Roman-PC | Source = SideBySide | ID = 16842815
Description = Activation context generation failed for "c:\program files\R\r-3.0.3\Tcl\bin64\tk85.dll".Error
in manifest or policy file "c:\program files\R\r-3.0.3\Tcl\bin64\tk85.dll" on line
9. The value "x64" of attribute "processorArchitecture" in element "assemblyIdentity"
is invalid.

Error - 15. 2. 2015 8:28:39 | Computer Name = Roman-PC | Source = SideBySide | ID = 16842815
Description = Activation context generation failed for "c:\program files\R\r-3.0.3\Tcl\bin64\tk85.dll".Error
in manifest or policy file "c:\program files\R\r-3.0.3\Tcl\bin64\tk85.dll" on line
9. The value "x64" of attribute "processorArchitecture" in element "assemblyIdentity"
is invalid.

Error - 17. 2. 2015 10:50:55 | Computer Name = Roman-PC | Source = SideBySide | ID = 16842815
Description = Activation context generation failed for "c:\program files\R\r-3.0.3\Tcl\bin64\tk85.dll".Error
in manifest or policy file "c:\program files\R\r-3.0.3\Tcl\bin64\tk85.dll" on line
9. The value "x64" of attribute "processorArchitecture" in element "assemblyIdentity"
is invalid.

Error - 19. 2. 2015 7:45:10 | Computer Name = Roman-PC | Source = SideBySide | ID = 16842815
Description = Activation context generation failed for "c:\program files\R\r-3.0.3\Tcl\bin64\tk85.dll".Error
in manifest or policy file "c:\program files\R\r-3.0.3\Tcl\bin64\tk85.dll" on line
9. The value "x64" of attribute "processorArchitecture" in element "assemblyIdentity"
is invalid.

Error - 20. 2. 2015 7:35:02 | Computer Name = Roman-PC | Source = SideBySide | ID = 16842815
Description = Activation context generation failed for "c:\program files\R\r-3.0.3\Tcl\bin64\tk85.dll".Error
in manifest or policy file "c:\program files\R\r-3.0.3\Tcl\bin64\tk85.dll" on line
9. The value "x64" of attribute "processorArchitecture" in element "assemblyIdentity"
is invalid.

Error - 20. 2. 2015 8:18:27 | Computer Name = Roman-PC | Source = SideBySide | ID = 16842815
Description = Activation context generation failed for "c:\program files\R\r-3.0.3\Tcl\bin64\tk85.dll".Error
in manifest or policy file "c:\program files\R\r-3.0.3\Tcl\bin64\tk85.dll" on line
9. The value "x64" of attribute "processorArchitecture" in element "assemblyIdentity"
is invalid.

Error - 21. 2. 2015 8:01:41 | Computer Name = Roman-PC | Source = SideBySide | ID = 16842815
Description = Activation context generation failed for "c:\program files\R\r-3.0.3\Tcl\bin64\tk85.dll".Error
in manifest or policy file "c:\program files\R\r-3.0.3\Tcl\bin64\tk85.dll" on line
9. The value "x64" of attribute "processorArchitecture" in element "assemblyIdentity"
is invalid.

Error - 22. 2. 2015 6:28:24 | Computer Name = Roman-PC | Source = SideBySide | ID = 16842815
Description = Activation context generation failed for "c:\program files\R\r-3.0.3\Tcl\bin64\tk85.dll".Error
in manifest or policy file "c:\program files\R\r-3.0.3\Tcl\bin64\tk85.dll" on line
9. The value "x64" of attribute "processorArchitecture" in element "assemblyIdentity"
is invalid.

[ System Events ]
Error - 16. 2. 2015 8:44:32 | Computer Name = Roman-PC | Source = Service Control Manager | ID = 7006
Description = The ScRegSetValueExW call failed for Start with the following error:
%%5

Error - 16. 2. 2015 8:54:28 | Computer Name = Roman-PC | Source = Service Control Manager | ID = 7006
Description = The ScRegSetValueExW call failed for Start with the following error:
%%5

Error - 16. 2. 2015 8:54:31 | Computer Name = Roman-PC | Source = Service Control Manager | ID = 7006
Description = The ScRegSetValueExW call failed for FailureCommand with the following
error: %%5

Error - 18. 2. 2015 11:51:08 | Computer Name = Roman-PC | Source = Service Control Manager | ID = 7006
Description = The ScRegSetValueExW call failed for Start with the following error:
%%5

Error - 18. 2. 2015 11:51:17 | Computer Name = Roman-PC | Source = Service Control Manager | ID = 7006
Description = The ScRegSetValueExW call failed for FailureCommand with the following
error: %%5

Error - 20. 2. 2015 11:17:16 | Computer Name = Roman-PC | Source = Service Control Manager | ID = 7009
Description = A timeout was reached (30000 milliseconds) while waiting for the Steam
Client Service service to connect.

Error - 20. 2. 2015 11:17:16 | Computer Name = Roman-PC | Source = Service Control Manager | ID = 7000
Description = The Steam Client Service service failed to start due to the following
error: %%1053

Error - 22. 2. 2015 12:56:35 | Computer Name = Roman-PC | Source = Microsoft Antimalware | ID = 2001
Description = %%860 has encountered an error trying to update signatures. New Signature
Version: Previous Signature Version: 1.193.545.0 Update Source: %%859 Update Stage:
%%852 Source Path: http://www.microsoft.com Signature Type: %%800 Update Type: %%803

User:
NT AUTHORITY\SYSTEM Current Engine Version: Previous Engine Version: 1.1.11400.0

Error
code: 0x8024402c Error description: An unexpected problem occurred while checking
for updates. For information on installing or troubleshooting updates, see Help
and Support.

Error - 23. 2. 2015 6:49:21 | Computer Name = Roman-PC | Source = EventLog | ID = 6008
Description = The previous system shutdown at 11:46:30 on ?23. ?2. ?2015 was unexpected.

Error - 23. 2. 2015 6:49:36 | Computer Name = ROMAN-PC | Source = BugCheck | ID = 1001
Description =

< End of report >

altrok
Moderátor
Moderátor
Příspěvky: 7317
Registrován: 15 lis 2012 22:26
Bydliště: Znojmo

Re: Prosím o preventívnu kontrolu,ďakujem.

#9 Příspěvek od altrok »

:arrow: Je tento OS legalni? Opravdu neni bezne, ze by si bezny domaci uzivatel kupoval nejvyssi licenci, ktera zacina na 5.000 Kc s funkcemi, ktere nevyuzije, misto obycejne licence Home Premium, ktera stoji polovic :shock:
Pokud je cokoliv nejasného, ihned se ptej.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.

Romchi
Návštěvník
Návštěvník
Příspěvky: 13
Registrován: 23 úno 2015 15:01

Re: Prosím o preventívnu kontrolu,ďakujem.

#10 Příspěvek od Romchi »

Je to univerzitná licencia. Keď (resp. kým ešte) to mám zadarmo, už som si vybral to najlepšie :D

altrok
Moderátor
Moderátor
Příspěvky: 7317
Registrován: 15 lis 2012 22:26
Bydliště: Znojmo

Re: Prosím o preventívnu kontrolu,ďakujem.

#11 Příspěvek od altrok »

:arrow: Ulozte na plochu AdwCleaner https://toolslib.net/downloads/viewdown ... dwcleaner/ (nebo http://www.bleepingcomputer.com/download/adwcleaner/ )
  • ukoncete vsechny programy
  • kliknete pravym na ikonu AdwCleaneru a vyberte Spustit jako spravce (v pripade Win XP spustte obycejne dvojklikem)
  • kliknete na Scan, pote na Cleaning
  • po restartu na Vas vyskoci log (pripadne jej najdete v C:\AdwCleaner\AdwCleaner [Sx].txt), jehoz obsah mi zkopirujte do pristi odpovedi
Pokud je cokoliv nejasného, ihned se ptej.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.

Romchi
Návštěvník
Návštěvník
Příspěvky: 13
Registrován: 23 úno 2015 15:01

Re: Prosím o preventívnu kontrolu,ďakujem.

#12 Příspěvek od Romchi »

Nech sa páči :)

# AdwCleaner v4.111 - Logfile created 23/02/2015 at 22:02:30
# Updated 18/02/2015 by Xplode
# Database : 2015-02-18.3 [Server]
# Operating system : Windows 7 Ultimate Service Pack 1 (x64)
# Username : Roman - ROMAN-PC
# Running from : C:\Users\Roman\Desktop\AdwCleaner.exe
# Option : Cleaning

***** [ Services ] *****


***** [ Files / Folders ] *****

Folder Deleted : C:\ProgramData\Trymedia
File Deleted : C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_static.olark.com_0.localstorage-journal
File Deleted : C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_static.olark.com_0.localstorage

***** [ Scheduled tasks ] *****


***** [ Shortcuts ] *****


***** [ Registry ] *****

Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{DE9028D0-5FFA-4E69-94E3-89EE8741F468}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{9C049BA6-EA47-4AC3-AED6-A66D8DC9E1D8}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\IM

***** [ Web browsers ] *****

-\\ Internet Explorer v11.0.9600.17631


-\\ Google Chrome v40.0.2214.115


-\\ Chromium v


*************************

AdwCleaner[R0].txt - [1727 bytes] - [23/02/2015 22:00:11]
AdwCleaner[S0].txt - [1668 bytes] - [23/02/2015 22:02:30]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [1727 bytes] ##########

altrok
Moderátor
Moderátor
Příspěvky: 7317
Registrován: 15 lis 2012 22:26
Bydliště: Znojmo

Re: Prosím o preventívnu kontrolu,ďakujem.

#13 Příspěvek od altrok »

:arrow: Dejte log FRST.txt, prilozte i Addition.txt - http://forum.viry.cz/viewtopic.php?f=30&t=133101
Pokud je cokoliv nejasného, ihned se ptej.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.

Romchi
Návštěvník
Návštěvník
Příspěvky: 13
Registrován: 23 úno 2015 15:01

Re: Prosím o preventívnu kontrolu,ďakujem.

#14 Příspěvek od Romchi »

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 23-02-2015
Ran by Roman (administrator) on ROMAN-PC on 23-02-2015 22:34:28
Running from C:\Users\Roman\Desktop
Loaded Profiles: Roman (Available profiles: Roman)
Platform: Windows 7 Ultimate Service Pack 1 (X64) OS Language: English (United States)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Microsoft Corporation) C:\Program Files\Microsoft Security Client\MsMpEng.exe
(AMD) C:\Windows\System32\atiesrxx.exe
(Hewlett-Packard Company) C:\Windows\System32\hpservice.exe
(AMD) C:\Windows\System32\atieclxx.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe
(AMD) C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(AMD) C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM64.exe
(Dropbox, Inc.) C:\Users\Roman\AppData\Roaming\Dropbox\bin\Dropbox.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\NisSrv.exe
(forum.viry.cz) C:\Users\Roman\Desktop\FRSTLauncher.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2174760 2010-06-04] (Synaptics Incorporated)
HKLM\...\Run: [MSC] => c:\Program Files\Microsoft Security Client\msseces.exe [1332296 2015-01-30] (Microsoft Corporation)
HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [767200 2014-04-17] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [508800 2014-12-17] (Oracle Corporation)
HKU\S-1-5-21-1778754102-3392175034-3567333730-1000\...\Run: [HydraVisionDesktopManager] => C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM.exe [1967616 2014-04-17] (AMD)
HKU\S-1-5-21-1778754102-3392175034-3567333730-1000\...\Run: [] => [X]
HKU\S-1-5-21-1778754102-3392175034-3567333730-1000\...\MountPoints2: {c1ab86ae-4623-11e4-b8e6-cc52af20698b} - E:\setup.exe
HKU\S-1-5-18\...\RunOnce: [SPReview] => C:\Windows\System32\SPReview\SPReview.exe [301568 2014-04-13] (Microsoft Corporation)
Startup: C:\Users\Roman\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk
ShortcutTarget: Dropbox.lnk -> C:\Users\Roman\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Roman\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Roman\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [DropboxExt3] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Roman\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [DropboxExt4] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Roman\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Roman\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Roman\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [DropboxExt3] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Roman\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll (Dropbox, Inc.)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_31\bin\ssv.dll (Oracle Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_31\bin\jp2ssv.dll (Oracle Corporation)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 10.0.0.138

FireFox:
========
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin-x32: @java.com/DTPlugin,version=11.31.2 -> C:\Program Files (x86)\Java\jre1.8.0_31\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.31.2 -> C:\Program Files (x86)\Java\jre1.8.0_31\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File
FF Plugin-x32: @t.garena.com/garenatalk -> C:\Program Files (x86)\Garena Plus\bbtalk\plugins\npPlugin\npGarenaTalkPlugin.dll ( Garena)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.1.3 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF HKLM\...\Thunderbird\Extensions: [eplgTb@eset.com] - C:\Program Files\ESET\ESET NOD32 Antivirus\Mozilla Thunderbird
FF HKLM-x32\...\Thunderbird\Extensions: [eplgTb@eset.com] - C:\Program Files\ESET\ESET NOD32 Antivirus\Mozilla Thunderbird

Chrome:
=======
CHR HomePage: Default -> hxxp://google.sk/
CHR StartupUrls: Default -> "hxxp://google.sk/"
CHR Profile: C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Docs) - C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-04-08]
CHR Extension: (Google Drive) - C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-04-08]
CHR Extension: (YouTube) - C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-04-08]
CHR Extension: (Google Search) - C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-04-08]
CHR Extension: (AdBlock) - C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2014-04-09]
CHR Extension: (Google Wallet) - C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-04-08]
CHR Extension: (Gmail) - C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-04-08]

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 MsMpSvc; c:\Program Files\Microsoft Security Client\MsMpEng.exe [23784 2015-01-30] (Microsoft Corporation)
R3 NisSrv; c:\Program Files\Microsoft Security Client\NisSrv.exe [366512 2015-01-30] (Microsoft Corporation)
S3 OpenVPNService; C:\Program Files\OpenVPN\bin\openvpnserv.exe [37176 2013-08-22] (The OpenVPN Project)
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283064 2014-09-27] (Disc Soft Ltd)
R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [274696 2014-11-15] (Microsoft Corporation)
R2 NisDrv; C:\Windows\System32\DRIVERS\NisDrvWFP.sys [124560 2014-11-15] (Microsoft Corporation)
S3 GGSAFERDriver; \??\C:\Program Files (x86)\Garena Plus\Room\safedrv.sys [X]
S3 Synth3dVsc; System32\drivers\synth3dvsc.sys [X]
S3 tsusbhub; system32\drivers\tsusbhub.sys [X]
S3 VGPU; System32\drivers\rdvgkmd.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-02-23 22:34 - 2015-02-23 22:34 - 00010297 _____ () C:\Users\Roman\Desktop\FRST.txt
2015-02-23 22:32 - 2015-02-23 22:33 - 00112640 _____ (forum.viry.cz) C:\Users\Roman\Desktop\FRSTLauncher.exe
2015-02-23 22:32 - 2015-02-23 22:32 - 00000000 __SHD () C:\Users\Roman\AppData\Local\EmieBrowserModeList
2015-02-23 22:29 - 2015-02-23 22:34 - 00000000 ____D () C:\FRST
2015-02-23 22:29 - 2015-02-23 22:29 - 02087424 _____ (Farbar) C:\Users\Roman\Desktop\FRST64.exe
2015-02-23 22:00 - 2015-02-23 22:02 - 00000000 ____D () C:\AdwCleaner
2015-02-23 21:59 - 2015-02-23 21:59 - 02126848 _____ () C:\Users\Roman\Desktop\AdwCleaner.exe
2015-02-23 20:38 - 2015-02-23 20:38 - 00066650 _____ () C:\Users\Roman\Desktop\Extras.Txt
2015-02-23 20:36 - 2015-02-23 20:36 - 00345694 _____ () C:\Users\Roman\Desktop\OTL.Txt
2015-02-23 18:52 - 2015-02-23 20:17 - 00000512 _____ () C:\PhysicalMBR.bin
2015-02-23 18:48 - 2015-02-23 18:48 - 00602112 _____ (OldTimer Tools) C:\Users\Roman\Desktop\OTL.exe
2015-02-23 18:21 - 2015-02-23 18:21 - 00001238 _____ () C:\Users\Roman\AppData\Local\recently-used.xbel
2015-02-23 16:31 - 2015-02-23 16:31 - 00018704 _____ () C:\Users\Roman\uloha 2 priklad 1.gretl
2015-02-23 16:27 - 2015-02-23 16:27 - 00079913 _____ () C:\Users\Roman\Downloads\Cviceni_01.zip
2015-02-23 14:46 - 2015-02-23 14:52 - 00000000 ____D () C:\rsit
2015-02-23 14:46 - 2015-02-23 14:52 - 00000000 ____D () C:\Program Files\trend micro
2015-02-23 12:09 - 2015-02-23 12:09 - 01222144 _____ () C:\Users\Roman\Downloads\RSITx64.exe
2015-02-23 11:49 - 2015-02-23 11:49 - 00274664 _____ () C:\Windows\Minidump\022315-31933-01.dmp
2015-02-23 11:48 - 2015-02-23 11:48 - 399671656 _____ () C:\Windows\MEMORY.DMP
2015-02-23 11:13 - 2015-02-23 11:13 - 00000000 ____D () C:\ProgramData\Sun
2015-02-23 11:13 - 2015-02-23 11:12 - 00098216 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2015-02-23 11:12 - 2015-02-23 11:12 - 00000000 ____D () C:\ProgramData\Oracle
2015-02-23 11:12 - 2015-02-23 11:12 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2015-02-23 11:12 - 2015-02-23 11:12 - 00000000 ____D () C:\Program Files (x86)\Java
2015-02-21 18:40 - 2015-02-21 19:05 - 78072484 _____ () C:\Users\Roman\Downloads\Makro-2-cvičení-KOMPLET.rar
2015-02-20 16:17 - 2015-02-20 16:17 - 00000000 ____D () C:\Users\Roman\AppData\Local\Steam
2015-02-17 20:29 - 2015-02-17 20:29 - 00069690 _____ () C:\Users\Roman\Documents\.RData
2015-02-13 15:04 - 2015-02-22 12:23 - 00000000 ____D () C:\Users\Roman\Desktop\SHIELD
2015-02-12 12:13 - 2015-01-23 05:42 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2015-02-12 12:13 - 2015-01-23 05:41 - 06041600 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2015-02-12 12:13 - 2015-01-23 04:43 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2015-02-12 12:13 - 2015-01-23 04:17 - 04300800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2015-02-11 13:15 - 2015-02-04 04:16 - 00894976 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll
2015-02-11 13:15 - 2015-02-04 04:16 - 00762368 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll
2015-02-11 13:15 - 2015-02-04 04:16 - 00609280 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2015-02-11 13:15 - 2015-02-04 04:16 - 00414720 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll
2015-02-11 13:15 - 2015-02-04 04:16 - 00227328 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2015-02-11 13:15 - 2015-02-04 04:16 - 00192000 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll
2015-02-11 13:15 - 2015-02-04 04:13 - 01098752 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2015-02-11 13:15 - 2015-01-28 00:36 - 01239720 _____ (Microsoft Corporation) C:\Windows\system32\aitstatic.exe
2015-02-11 13:15 - 2015-01-14 06:47 - 00389808 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2015-02-11 13:15 - 2015-01-14 06:09 - 00342712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2015-02-11 13:15 - 2015-01-12 04:09 - 25056256 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2015-02-11 13:15 - 2015-01-12 04:05 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2015-02-11 13:15 - 2015-01-12 04:05 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2015-02-11 13:15 - 2015-01-12 03:49 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2015-02-11 13:15 - 2015-01-12 03:48 - 02885632 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2015-02-11 13:15 - 2015-01-12 03:48 - 00584192 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2015-02-11 13:15 - 2015-01-12 03:48 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2015-02-11 13:15 - 2015-01-12 03:47 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2015-02-11 13:15 - 2015-01-12 03:40 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2015-02-11 13:15 - 2015-01-12 03:39 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2015-02-11 13:15 - 2015-01-12 03:36 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2015-02-11 13:15 - 2015-01-12 03:34 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2015-02-11 13:15 - 2015-01-12 03:34 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2015-02-11 13:15 - 2015-01-12 03:25 - 19740160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2015-02-11 13:15 - 2015-01-12 03:25 - 00968704 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2015-02-11 13:15 - 2015-01-12 03:21 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2015-02-11 13:15 - 2015-01-12 03:21 - 00490496 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2015-02-11 13:15 - 2015-01-12 03:13 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2015-02-11 13:15 - 2015-01-12 03:08 - 00503296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2015-02-11 13:15 - 2015-01-12 03:08 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2015-02-11 13:15 - 2015-01-12 03:07 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2015-02-11 13:15 - 2015-01-12 03:07 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2015-02-11 13:15 - 2015-01-12 03:07 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2015-02-11 13:15 - 2015-01-12 03:05 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2015-02-11 13:15 - 2015-01-12 03:04 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2015-02-11 13:15 - 2015-01-12 03:02 - 02277888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2015-02-11 13:15 - 2015-01-12 03:00 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2015-02-11 13:15 - 2015-01-12 02:59 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2015-02-11 13:15 - 2015-01-12 02:57 - 00478208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2015-02-11 13:15 - 2015-01-12 02:55 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2015-02-11 13:15 - 2015-01-12 02:48 - 00801280 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2015-02-11 13:15 - 2015-01-12 02:48 - 00718848 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2015-02-11 13:15 - 2015-01-12 02:46 - 02125824 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2015-02-11 13:15 - 2015-01-12 02:46 - 01359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2015-02-11 13:15 - 2015-01-12 02:45 - 00418304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2015-02-11 13:15 - 2015-01-12 02:43 - 14401024 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2015-02-11 13:15 - 2015-01-12 02:40 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2015-02-11 13:15 - 2015-01-12 02:36 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2015-02-11 13:15 - 2015-01-12 02:35 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2015-02-11 13:15 - 2015-01-12 02:33 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2015-02-11 13:15 - 2015-01-12 02:27 - 02358272 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2015-02-11 13:15 - 2015-01-12 02:23 - 02052608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2015-02-11 13:15 - 2015-01-12 02:23 - 00688640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2015-02-11 13:15 - 2015-01-12 02:22 - 01155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2015-02-11 13:15 - 2015-01-12 02:14 - 12829184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2015-02-11 13:15 - 2015-01-12 02:14 - 01548288 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2015-02-11 13:15 - 2015-01-12 02:02 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2015-02-11 13:15 - 2015-01-12 02:00 - 01888256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2015-02-11 13:15 - 2015-01-12 01:56 - 01307136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2015-02-11 13:15 - 2015-01-12 01:55 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2015-02-11 13:15 - 2015-01-10 07:48 - 00728064 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2015-02-11 13:15 - 2015-01-10 07:48 - 00341504 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2015-02-11 13:15 - 2015-01-10 07:48 - 00314880 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2015-02-11 13:15 - 2015-01-10 07:48 - 00309760 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2015-02-11 13:15 - 2015-01-10 07:48 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2015-02-11 13:15 - 2015-01-10 07:48 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2015-02-11 13:15 - 2015-01-10 07:48 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2015-02-11 13:15 - 2015-01-10 07:27 - 00550912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2015-02-11 13:15 - 2015-01-10 07:27 - 00259584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2015-02-11 13:15 - 2015-01-10 07:27 - 00248832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2015-02-11 13:15 - 2015-01-10 07:27 - 00221184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll
2015-02-11 13:15 - 2015-01-10 07:27 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll
2015-02-11 13:15 - 2015-01-10 07:27 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll
2015-02-11 13:15 - 2015-01-10 07:27 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll
2015-02-11 13:13 - 2015-01-15 09:14 - 00155072 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2015-02-11 13:13 - 2015-01-15 09:14 - 00095680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2015-02-11 13:13 - 2015-01-15 09:09 - 01461760 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2015-02-11 13:13 - 2015-01-15 09:09 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2015-02-11 13:13 - 2015-01-15 09:09 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2015-02-11 13:13 - 2015-01-15 09:09 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2015-02-11 13:13 - 2015-01-15 09:09 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2015-02-11 13:13 - 2015-01-15 09:08 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe
2015-02-11 13:13 - 2015-01-15 09:06 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2015-02-11 13:13 - 2015-01-15 09:06 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll
2015-02-11 13:13 - 2015-01-15 09:04 - 00686080 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2015-02-11 13:13 - 2015-01-15 08:42 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\auditpol.exe
2015-02-11 13:13 - 2015-01-15 08:42 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2015-02-11 13:13 - 2015-01-15 08:41 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2015-02-11 13:13 - 2015-01-15 08:39 - 00146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll
2015-02-11 13:13 - 2015-01-15 08:39 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msobjs.dll
2015-02-11 13:13 - 2015-01-15 08:37 - 00686080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll
2015-02-11 13:13 - 2015-01-15 05:22 - 00458824 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys
2015-02-11 13:13 - 2015-01-13 04:10 - 01424384 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll
2015-02-11 13:13 - 2015-01-13 03:49 - 01230336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll
2015-02-11 13:13 - 2014-12-12 06:31 - 01480192 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll
2015-02-11 13:13 - 2014-12-12 06:07 - 01174528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll
2015-02-11 13:13 - 2014-11-26 04:53 - 00861696 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll
2015-02-11 13:13 - 2014-11-26 04:32 - 00571904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll
2015-02-11 13:12 - 2015-01-14 07:09 - 05554112 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2015-02-11 13:12 - 2015-01-14 07:05 - 00503808 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
2015-02-11 13:12 - 2015-01-14 07:05 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll
2015-02-11 13:12 - 2015-01-14 07:04 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe
2015-02-11 13:12 - 2015-01-14 06:44 - 03972544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2015-02-11 13:12 - 2015-01-14 06:44 - 03917760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2015-02-11 13:12 - 2015-01-14 06:41 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll
2015-02-11 13:12 - 2015-01-09 03:03 - 03201536 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2015-02-11 13:12 - 2014-12-08 04:09 - 00406528 _____ (Microsoft Corporation) C:\Windows\system32\scesrv.dll
2015-02-11 13:12 - 2014-12-08 03:46 - 00308224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scesrv.dll
2015-02-06 13:26 - 2015-02-06 13:27 - 25026364 _____ () C:\Users\Roman\Downloads\MUNI2015.zip
2015-02-05 14:20 - 2015-02-06 02:31 - 00000000 ____D () C:\Users\Roman\Downloads\The.Originals.S02E11.HDTV.x264-LOL[ettv]
2015-01-29 20:43 - 2015-02-03 17:58 - 00000000 ____D () C:\Users\Roman\Documents\My Games
2015-01-29 20:42 - 2015-01-29 20:42 - 00002496 _____ () C:\Users\Public\Desktop\Tribes of the East.lnk
2015-01-29 20:42 - 2015-01-29 20:42 - 00002491 _____ () C:\Users\Public\Desktop\Hammers of Fate.lnk
2015-01-29 20:42 - 2015-01-29 20:42 - 00002463 _____ () C:\Users\Public\Desktop\Heroes of Might and Magic V.lnk
2015-01-29 20:38 - 2015-01-29 20:38 - 00000000 ____D () C:\Program Files (x86)\GOG.com
2015-01-29 16:19 - 2015-01-29 17:08 - 00000000 ____D () C:\Users\Roman\Downloads\Heroes of Might and Magic 5 Bundle [GoG]
2015-01-28 10:32 - 2015-01-28 10:38 - 00000000 ____D () C:\Users\Roman\Downloads\The.Originals.S02E10.HDTV.x264-LOL[ettv]

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-02-23 22:15 - 2014-04-08 10:50 - 01165974 _____ () C:\Windows\WindowsUpdate.log
2015-02-23 22:13 - 2014-04-09 23:13 - 00000000 ____D () C:\Users\Roman\MAEK
2015-02-23 22:12 - 2014-08-23 16:25 - 00000000 ____D () C:\Users\Roman\Desktop\Doctor Who
2015-02-23 22:08 - 2009-07-14 05:45 - 00023504 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-02-23 22:08 - 2009-07-14 05:45 - 00023504 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-02-23 22:07 - 2015-01-16 16:48 - 00000546 _____ () C:\Windows\Tasks\MATLAB R2014b Startup Accelerator.job
2015-02-23 22:05 - 2014-04-08 15:15 - 00000000 ___RD () C:\Users\Roman\Dropbox
2015-02-23 22:05 - 2014-04-08 15:13 - 00000000 ____D () C:\Users\Roman\AppData\Roaming\Dropbox
2015-02-23 22:04 - 2014-04-08 11:48 - 00000932 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-02-23 22:03 - 2015-01-19 00:53 - 00003954 _____ () C:\Windows\setupact.log
2015-02-23 22:03 - 2009-07-14 06:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2015-02-23 21:58 - 2014-10-02 19:35 - 00000000 ____D () C:\Program Files (x86)\Steam
2015-02-23 21:52 - 2014-05-23 09:50 - 00000000 ____D () C:\Users\Roman\AppData\Local\Battle.net
2015-02-23 18:21 - 2014-04-08 22:20 - 00000000 ____D () C:\Users\Roman\AppData\Roaming\gretl
2015-02-23 16:31 - 2014-04-08 22:20 - 00000000 ____D () C:\Users\Roman\AppData\Local\gtk-2.0
2015-02-23 16:31 - 2014-04-08 10:56 - 00000000 ____D () C:\Users\Roman
2015-02-23 16:22 - 2014-04-08 22:20 - 00000000 ____D () C:\Users\Roman\Documents\gretl
2015-02-23 11:54 - 2014-09-07 22:31 - 00000226 _____ () C:\Users\Roman\Desktop\hwmonitorw.ini
2015-02-23 11:49 - 2014-09-10 11:23 - 00000000 ____D () C:\Windows\Minidump
2015-02-22 12:23 - 2014-04-12 18:00 - 00000000 ____D () C:\Users\Roman\AppData\Roaming\uTorrent
2015-02-16 14:12 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\NDF
2015-02-13 11:16 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\rescache
2015-02-12 23:58 - 2014-05-23 09:54 - 00000000 ____D () C:\Program Files (x86)\Hearthstone
2015-02-12 12:07 - 2009-07-14 06:13 - 00782470 _____ () C:\Windows\system32\PerfStringBackup.INI
2015-02-12 12:06 - 2014-04-08 15:15 - 00000979 _____ () C:\Users\Roman\Desktop\Dropbox.lnk
2015-02-12 12:06 - 2014-04-08 15:14 - 00000000 ____D () C:\Users\Roman\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox
2015-02-12 12:00 - 2009-07-14 05:45 - 00315624 _____ () C:\Windows\system32\FNTCACHE.DAT
2015-02-12 03:38 - 2014-12-11 11:35 - 00000000 ____D () C:\Windows\system32\appraiser
2015-02-12 03:38 - 2014-04-30 15:27 - 00000000 ___SD () C:\Windows\system32\CompatTel
2015-02-12 03:38 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\PolicyDefinitions
2015-02-12 03:30 - 2014-04-09 23:14 - 00000000 ____D () C:\Users\Roman\Bakalárka
2015-02-12 03:15 - 2014-09-10 11:18 - 00000000 ____D () C:\ProgramData\Package Cache
2015-02-12 03:10 - 2014-09-10 10:59 - 00001945 _____ () C:\Windows\epplauncher.mif
2015-02-12 03:10 - 2014-09-10 10:58 - 00002117 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Security Essentials.lnk
2015-02-12 03:10 - 2014-09-10 10:58 - 00000000 ____D () C:\Program Files\Microsoft Security Client
2015-02-12 03:10 - 2014-09-10 10:58 - 00000000 ____D () C:\Program Files (x86)\Microsoft Security Client
2015-02-12 03:09 - 2014-04-09 00:17 - 00000000 ____D () C:\Windows\system32\MRT
2015-02-12 03:03 - 2014-04-09 00:17 - 116773704 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2015-02-08 13:25 - 2014-06-30 19:00 - 00000654 _____ () C:\Users\Roman\Desktop\New Text Document.txt
2015-02-07 17:59 - 2014-04-08 15:06 - 00000000 ____D () C:\Users\Roman\AppData\Roaming\Skype
2015-02-06 10:12 - 2014-04-08 12:08 - 00000000 ____D () C:\Users\Roman\Downloads\Windows Loader 2.2.2
2015-02-06 02:20 - 2014-05-23 09:50 - 00000000 ____D () C:\Program Files (x86)\Battle.net
2015-02-04 23:08 - 2014-10-18 18:47 - 00000000 ____D () C:\Users\Roman\Desktop\cs16
2015-02-04 18:23 - 2014-05-08 23:59 - 00003932 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA1cf6b112b9cb779
2015-02-04 18:23 - 2014-05-08 23:59 - 00000936 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA1cf6b112b9cb779.job
2015-02-04 18:23 - 2014-04-08 11:48 - 00003680 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2015-02-04 01:17 - 2014-04-08 12:23 - 00000000 ____D () C:\Warcraft III
2015-02-01 13:03 - 2009-07-14 06:08 - 00032548 _____ () C:\Windows\Tasks\SCHEDLGU.TXT
2015-01-29 20:43 - 2014-04-08 15:54 - 00000000 ____D () C:\Users\Roman\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games
2015-01-29 20:42 - 2014-08-22 20:18 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GOG.com
2015-01-25 22:53 - 2015-01-16 16:57 - 00000000 ____D () C:\Users\Roman\Documents\MATLAB

==================== Files in the root of some directories =======

2014-04-08 16:42 - 2014-05-27 16:41 - 0045270 _____ () C:\Users\Roman\AppData\Roaming\room_v3.dat
2014-11-13 19:21 - 2014-11-13 19:21 - 0000044 _____ () C:\Users\Roman\AppData\Roaming\twow_sysprepdt.dat
2014-11-24 18:33 - 2014-11-24 18:33 - 0000000 ___SH () C:\Users\Roman\AppData\Local\LumaEmu
2014-04-26 15:21 - 2014-05-08 20:34 - 0000600 _____ () C:\Users\Roman\AppData\Local\PUTTY.RND
2015-02-23 18:21 - 2015-02-23 18:21 - 0001238 _____ () C:\Users\Roman\AppData\Local\recently-used.xbel

Some content of TEMP:
====================
C:\Users\Roman\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpcnyr58.dll
C:\Users\Roman\AppData\Local\Temp\FirewallAPI.dll
C:\Users\Roman\AppData\Local\Temp\Quarantine.exe
C:\Users\Roman\AppData\Local\Temp\sqlite3.dll


==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2015-02-13 11:06




===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===

==================== Drive and Memory info ===================

Drive c: () (Fixed) (Total:465.66 GB) (Free:247.9 GB) NTFS

Available physical RAM: 2218.16 MB
Total physical RAM: 3951.43 MB
Percentage of memory in use: 43%

==================== MBR and Partition Table ==================

Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: 6F18553E)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=465.7 GB) - (Type=07 NTFS)

==================== Scheduled Tasks (whitelisted) ==================

Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA1cf6b112b9cb779.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\MATLAB R2014b Startup Accelerator.job => C:\Program Files\MATLAB\R2014b\bin\win64\MATLABStartupAccelerator.exe

==================== Alternate Data Streams (whitelisted) ==================


==================== Security Center ==================

AV: Microsoft Security Essentials (Enabled - Up to date) {B7ECF8CD-0188-6703-DBA4-AA65C6ACFB0A}
AS: Microsoft Security Essentials (Enabled - Up to date) {0C8D1929-27B2-688D-E114-9117BD2BB1B7}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}



===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)


***** Velikost "Plochy" *****

Velikost slozky "C:\Users\Roman\Desktop" je 77215 MB.


***** Startup Programs *****

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite
"C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GarenaPlus
"C:\Program Files (x86)\Garena Plus\GarenaMessenger.exe" -autolaunch [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\InstallShieldSetup
C:\PROGRA~2\INSTAL~1\{B7666~1\Setup.exe -rebootC:\PROGRA~2\INSTAL~1\{B7666~1\reboot.ini -l0x9 [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Raptr
C:\PROGRA~2\Raptr\raptrstub.exe --startup [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skype
"C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\uTorrent
"C:\Users\Roman\AppData\Roaming\uTorrent\uTorrent.exe" /MINIMIZED [x]


***** Firewall rules *****

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]


***** System Restore *****

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"Generalize_DisableSR"=dword:00000000


==================== End Of Log ==============================
Přílohy
Addition.rar
(5.96 KiB) Staženo 29 x

altrok
Moderátor
Moderátor
Příspěvky: 7317
Registrován: 15 lis 2012 22:26
Bydliště: Znojmo

Re: Prosím o preventívnu kontrolu,ďakujem.

#15 Příspěvek od altrok »

:arrow: Zacnu doporucenim - vymenit MSE. Z bezplatnych antiviru srovnavacimi testy velice dobre prochazi avast! Free nebo Avira (ve free verzi anglicky). U MSE (Microsoft Security Essentials) hlavne drive platilo, ze je nejlepe vyladen pro chod OS (nejmensi HW naroky), ale to platilo pred nekolika lety... ted uz se i ostatni reseni velice zlepsila. MSE je ve srovnavacich testech, co se urovne detekce tyce, nedostatecny... Kouknete na srovnavaci testy - Tatry03 nam je serviruje az pod nos ;)
http://forum.viry.cz/viewtopic.php?f=14 ... 8#p1367808
http://forum.viry.cz/viewtopic.php?f=29 ... 6#p1353406

:arrow: Velikost plochy by nemela presahovat 200 MB. Zpomaluje se pak start i samotny chod celeho PC.

:arrow: Otestujte na virustotal.com C:\Users\Roman\AppData\Roaming\room_v3.dat - pokud uz byl soubor otestovany, zvolte Reanalyse. Do pristiho prispevku dejte link (odkaz) s vysledky analyzy.

:arrow: Jak casto Vam pocitac do modre smrti (BSOD) pada? Zabalte slozku C:\Windows\Minidump do zipu/raru a upnete ji na leteckou postu.


  • Do Poznamkoveho bloku (Start -> spustit -> notepad) zkopirujte obsah bileho pole
  • ulozte na plochu jako fixlist (Typ souboru: Textovy dokument)
  • znovu spustte FRST a kliknete na Fix
  • po restartu na Vas vyskoci fixlog (pripadne bude ulozen na Plose), jehoz obsah mi vlozte do pristi odpovedi

    Kód: Vybrat vše

    Start
    CloseProcesses:
    HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [508800 2014-12-17] (Oracle Corporation)
    HKU\S-1-5-21-1778754102-3392175034-3567333730-1000\...\Run: [] => [X]
    HKU\S-1-5-21-1778754102-3392175034-3567333730-1000\...\MountPoints2: {c1ab86ae-4623-11e4-b8e6-cc52af20698b} - E:\setup.exe
    SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
    SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
    SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
    FF Plugin: @microsoft.com/GENUINE -> disabled No File
    FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File
    
    2015-02-23 22:32 - 2015-02-23 22:33 - 00112640 _____ (forum.viry.cz) C:\Users\Roman\Desktop\FRSTLauncher.exe
    2015-02-23 22:00 - 2015-02-23 22:02 - 00000000 ____D () C:\AdwCleaner
    2015-02-23 21:59 - 2015-02-23 21:59 - 02126848 _____ () C:\Users\Roman\Desktop\AdwCleaner.exe
    2015-02-23 20:38 - 2015-02-23 20:38 - 00066650 _____ () C:\Users\Roman\Desktop\Extras.Txt
    2015-02-23 20:36 - 2015-02-23 20:36 - 00345694 _____ () C:\Users\Roman\Desktop\OTL.Txt
    2015-02-23 14:46 - 2015-02-23 14:52 - 00000000 ____D () C:\rsit
    2015-02-23 14:46 - 2015-02-23 14:52 - 00000000 ____D () C:\Program Files\trend micro
    2015-02-23 12:09 - 2015-02-23 12:09 - 01222144 _____ () C:\Users\Roman\Downloads\RSITx64.exe
    
    [-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite]
    Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
    Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA1cf6b112b9cb779.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
    EmptyTemp:
    End
    
Pokud je cokoliv nejasného, ihned se ptej.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.

Odpovědět