Stránka 1 z 2

Poprosim o kontrolu logu - Pomalsi notebook, pomalsi chrome

Napsal: 16 bře 2015 12:37
od lukasjanra
Logfile of random's system information tool 1.10 (written by random/random)
Run by Lukas at 2015-03-16 09:27:12
Microsoft Windows 7 Ultimate Service Pack 1
System drive C: has 12 GB (21%) free of 57 GB
Total RAM: 3323 MB (48% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 9:27:17, on 16. 3. 2015
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17689)
Boot mode: Normal

Running processes:
C:\Windows\system32\taskeng.exe
C:\Windows\system32\Dwm.exe
C:\Windows\system32\taskhost.exe
C:\Windows\explorer.exe
D:\Prevzaté súbory\CoreTemp32\Core Temp.exe
C:\Program Files\Realtek\Audio\HDA\RtkNGUI.exe
C:\Program Files\ESET\ESET Smart Security\egui.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\Bloody5\Bloody5\Bloody5.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
C:\Windows\system32\taskhost.exe
C:\Program Files\TeamViewer\Version9\TeamViewer.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
D:\Prevzaté súbory\IObitUninstallerPortable\IObitUninstallerPortable.exe
D:\Prevzaté súbory\IObitUninstallerPortable\IObitUninstallerPortable.exe
D:\Prevzaté súbory\IObitUninstallerPortable\App\uninstaller\IObitUninstaler.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
D:\Prevzaté súbory\RSIT.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Program Files\trend micro\Lukas.exe
C:\Windows\system32\DllHost.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - D:\Program Files\Java\jre1.8.0_25\bin\ssv.dll
O2 - BHO: IESpeakDoc - {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} - C:\Program Files\Bluetooth Suite\IEPlugIn.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - D:\Program Files\Java\jre1.8.0_25\bin\jp2ssv.dll
O2 - BHO: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll
O4 - HKLM\..\Run: [SynTPEnh] "%ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe"
O4 - HKLM\..\Run: [RTHDVCPL] "C:\Program Files\Realtek\Audio\HDA\RtkNGUI.exe" -s
O4 - HKLM\..\Run: [egui] "C:\Program Files\ESET\ESET Smart Security\egui.exe" /hide /waitservice
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [Bloody2] "C:\Program Files\Bloody5\Bloody5\Bloody5.exe" Minimum
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: @C:\Program Files\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-103 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O9 - Extra 'Tools' menuitem: @C:\Program Files\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-102 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: (no name) - {7815BE26-237D-41A8-A98F-F7BD75F71086} - C:\Program Files\Bluetooth Suite\IEPlugIn.dll
O9 - Extra 'Tools' menuitem: Send by Bluetooth to - {7815BE26-237D-41A8-A98F-F7BD75F71086} - C:\Program Files\Bluetooth Suite\IEPlugIn.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - ESC Trusted Zone: http://*.connectify.me
O15 - ESC Trusted Zone: http://*.fastspring.com
O15 - ESC Trusted Zone: http://*.connectify.me (HKLM)
O15 - ESC Trusted Zone: http://*.fastspring.com (HKLM)
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: Andrea RT Filters Service (AERTFilters) - Andrea Electronics Corporation - C:\Program Files\Realtek\Audio\HDA\AERTSrv.exe
O23 - Service: AMD External Events Utility - AMD - C:\Windows\system32\atiesrxx.exe
O23 - Service: AMD FUEL Service - Advanced Micro Devices, Inc. - C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
O23 - Service: Atheros Bt&Wlan Coex Agent - Atheros - C:\Program Files\Bluetooth Suite\Ath_CoexAgent.exe
O23 - Service: AtherosSvc - Atheros Commnucations - C:\Program Files\Bluetooth Suite\adminservice.exe
O23 - Service: Autodesk Licensing Service - Autodesk - C:\Program Files\Common Files\Autodesk Shared\Service\AdskScSrv.exe
O23 - Service: Connectify - Connectify - C:\Program Files\Connectify\ConnectifyService.exe
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET Smart Security\ekrn.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: HP Support Assistant Service - Hewlett-Packard Company - C:\Program Files\Hewlett-Packard\HP Support Framework\hpsa_service.exe
O23 - Service: HP Software Framework Service (hpqwmiex) - Hewlett-Packard Company - C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe
O23 - Service: IconMan_R - Realsil Microelectronics Inc. - C:\Program Files\Realtek\Realtek PCIE Card Reader\RIconMan.exe
O23 - Service: Lookout Citadel Server (LkCitadelServer) - National Instruments, Inc. - C:\Windows\system32\lkcitdl.exe
O23 - Service: National Instruments PSP Server Locator (lkClassAds) - National Instruments Corporation - C:\Windows\system32\lkads.exe
O23 - Service: National Instruments Time Synchronization (lkTimeSync) - National Instruments Corporation - C:\Windows\system32\lktsrv.exe
O23 - Service: National Instruments Domain Service (NIDomainService) - National Instruments Corporation - D:\Program Files\National Instruments\Shared\Security\nidmsrv.exe
O23 - Service: NI Service Locator (niSvcLoc) - National Instruments Corporation - C:\Windows\system32\nisvcloc.exe
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - Riverbed Technology, Inc. - C:\Program Files\WinPcap\rpcapd.exe
O23 - Service: Realtek Audio Service (RtkAudioService) - Realtek Semiconductor - C:\Program Files\Realtek\Audio\HDA\RtkAudioService.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe
O23 - Service: TeamViewer 9 (TeamViewer9) - TeamViewer GmbH - C:\Program Files\TeamViewer\Version9\TeamViewer_Service.exe
O23 - Service: TunngleService - Tunngle.net GmbH - C:\Program Files\Tunngle\TnglCtrl.exe

--
End of file - 8891 bytes

======Scheduled tasks folder======

C:\Windows\tasks\GlaryInitialize 4.job - D:\Program Files\Glary Utilities 4\Initialize.exe
C:\Windows\tasks\GlaryUpdate 4.job - D:\Program Files\Glary Utilities 4\CheckUpdate.exe /schedulestart
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files\Google\Update\GoogleUpdate.exe /c
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\Windows\tasks\HPCeeScheduleForLukas.job - C:\Program Files\Hewlett-Packard\HP Ceement\HPCEE.exe HPCeeScheduleForLukas (null)

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - D:\Program Files\Java\jre1.8.0_25\bin\ssv.dll [2014-11-08 460712]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8D10F6C4-0E01-4BD4-8601-11AC1FDF8126}]
CIESpeechBHO Class - C:\Program Files\Bluetooth Suite\IEPlugIn.dll [2011-05-09 60576]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - D:\Program Files\Java\jre1.8.0_25\bin\jp2ssv.dll [2014-11-08 172968]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E76FD755-C1BA-4DCB-9F13-99BD91223ADE}]
HP Network Check Helper - C:\Program Files\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2013-08-28 286520]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2011-10-14 2299176]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RtkNGUI.exe [2014-05-14 6688472]
"egui"=C:\Program Files\ESET\ESET Smart Security\egui.exe [2014-10-01 5088456]
"StartCCC"=C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2011-08-10 343168]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2010-11-20 1174016]
"Bloody2"=C:\Program Files\Bloody5\Bloody5\Bloody5.exe [2014-09-13 13969920]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AdobeAAMUpdater-1.0]
C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AthBtTray]
C:\Program Files\Bluetooth Suite\AthBtTray.exe [2011-05-09 302240]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AtherosBtStack]
C:\Program Files\Bluetooth Suite\BtvStack.exe [2011-05-09 498848]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Connectify Dispatch]
C:\Program Files\Connectify\DispatchUI.exe [2013-11-05 1656608]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Connectify Hotspot]
C:\Program Files\Connectify\Connectify.exe [2013-12-27 3816960]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GrooveMonitor]
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [2009-02-26 30040]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Monitor]
C:\Windows\PixArt\PAC207\Monitor.exe [2006-11-03 319488]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\StartCCC]
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2011-08-10 343168]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
C:\Program Files\Common Files\Java\Java Update\jusched.exe [2014-10-07 507776]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\tvncontrol]
C:\Program Files\TightVNC\tvnserver.exe -controlservice -slave []

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableLinkedConnections"=1
"SoftwareSASGeneration"=1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.cvid"=iccvid.dll
"MSVideo8"=VfWWDM32.dll
"wave2"=wdmaud.drv
"mixer2"=wdmaud.drv
"midi2"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave3"=wdmaud.drv
"mixer3"=wdmaud.drv
"midi3"=wdmaud.drv
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"aux2"=wdmaud.drv
"VIDC.FPS1"=frapsvid.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave5"=wdmaud.drv
"mixer5"=wdmaud.drv
"wave6"=wdmaud.drv
"mixer6"=wdmaud.drv
"wave7"=wdmaud.drv
"mixer7"=wdmaud.drv
"wave8"=wdmaud.drv
"midi5"=wdmaud.drv
"mixer8"=wdmaud.drv
"aux3"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
.scr - open - C:\Windows\system32\notepad.exe "%1"
.scr - install -
.scr - config -

======List of files/folders created in the last 1 month======

2015-03-16 09:27:12 ----D---- C:\rsit
2015-03-16 09:27:12 ----D---- C:\Program Files\trend micro
2015-03-15 21:46:19 ----D---- C:\Program Files\Enigma Software Group
2015-03-15 21:45:51 ----D---- C:\Windows\AF54923662584AC6A0435B5B89C6EB61.TMP
2015-03-15 21:45:50 ----D---- C:\Program Files\Common Files\Wise Installation Wizard
2015-03-15 21:40:28 ----A---- C:\Windows\wininit.ini
2015-03-15 21:20:32 ----D---- C:\ProgramData\Spybot - Search & Destroy
2015-03-14 13:19:42 ----D---- C:\Program Files\Auto-diagnostika
2015-03-12 08:57:11 ----A---- C:\Windows\system32\ubpm.dll
2015-03-12 08:57:06 ----A---- C:\Windows\system32\shell32.dll
2015-03-12 08:57:02 ----A---- C:\Windows\system32\msctf.dll
2015-03-12 08:56:40 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2015-03-12 08:56:39 ----A---- C:\Windows\system32\wdigest.dll
2015-03-12 08:56:39 ----A---- C:\Windows\system32\TSpkg.dll
2015-03-12 08:56:39 ----A---- C:\Windows\system32\schannel.dll
2015-03-12 08:56:39 ----A---- C:\Windows\system32\ncrypt.dll
2015-03-12 08:56:39 ----A---- C:\Windows\system32\msv1_0.dll
2015-03-12 08:56:39 ----A---- C:\Windows\system32\lsasrv.dll
2015-03-12 08:56:39 ----A---- C:\Windows\system32\kerberos.dll
2015-03-12 08:56:39 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2015-03-12 08:56:39 ----A---- C:\Windows\system32\auditpol.exe
2015-03-12 08:56:38 ----A---- C:\Windows\system32\sspisrv.dll
2015-03-12 08:56:38 ----A---- C:\Windows\system32\sspicli.dll
2015-03-12 08:56:38 ----A---- C:\Windows\system32\secur32.dll
2015-03-12 08:56:38 ----A---- C:\Windows\system32\msobjs.dll
2015-03-12 08:56:38 ----A---- C:\Windows\system32\msaudite.dll
2015-03-12 08:56:38 ----A---- C:\Windows\system32\lsass.exe
2015-03-12 08:56:38 ----A---- C:\Windows\system32\credssp.dll
2015-03-12 08:56:38 ----A---- C:\Windows\system32\adtschema.dll
2015-03-12 08:56:13 ----A---- C:\Windows\system32\win32k.sys
2015-03-12 08:56:10 ----A---- C:\Windows\system32\rdpudd.dll
2015-03-12 08:56:10 ----A---- C:\Windows\system32\RdpGroupPolicyExtension.dll
2015-03-12 08:56:10 ----A---- C:\Windows\system32\rdpcorets.dll
2015-03-12 08:56:03 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2015-03-12 08:56:03 ----A---- C:\Windows\system32\iernonce.dll
2015-03-12 08:56:03 ----A---- C:\Windows\system32\ieetwproxystub.dll
2015-03-12 08:56:03 ----A---- C:\Windows\system32\ieetwcollector.exe
2015-03-12 08:56:03 ----A---- C:\Windows\system32\ie4uinit.exe
2015-03-12 08:56:02 ----A---- C:\Windows\system32\urlmon.dll
2015-03-12 08:56:02 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2015-03-12 08:56:02 ----A---- C:\Windows\system32\jsproxy.dll
2015-03-12 08:56:02 ----A---- C:\Windows\system32\jscript9diag.dll
2015-03-12 08:56:02 ----A---- C:\Windows\system32\ieUnatt.exe
2015-03-12 08:56:02 ----A---- C:\Windows\system32\iedkcs32.dll
2015-03-12 08:56:02 ----A---- C:\Windows\system32\ieapfltr.dll
2015-03-12 08:56:02 ----A---- C:\Windows\system32\dxtmsft.dll
2015-03-12 08:56:01 ----A---- C:\Windows\system32\msfeeds.dll
2015-03-12 08:56:00 ----A---- C:\Windows\system32\msrating.dll
2015-03-12 08:56:00 ----A---- C:\Windows\system32\iesetup.dll
2015-03-12 08:55:59 ----A---- C:\Windows\system32\wininet.dll
2015-03-12 08:55:59 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2015-03-12 08:55:58 ----A---- C:\Windows\system32\ieui.dll
2015-03-12 08:55:58 ----A---- C:\Windows\system32\dxtrans.dll
2015-03-12 08:55:57 ----A---- C:\Windows\system32\ieframe.dll
2015-03-12 08:55:56 ----A---- C:\Windows\system32\mshtmlmedia.dll
2015-03-12 08:55:56 ----A---- C:\Windows\system32\mshtmled.dll
2015-03-12 08:55:55 ----A---- C:\Windows\system32\MshtmlDac.dll
2015-03-12 08:55:55 ----A---- C:\Windows\system32\iertutil.dll
2015-03-12 08:55:53 ----A---- C:\Windows\system32\mshtml.dll
2015-03-12 08:55:52 ----A---- C:\Windows\system32\vbscript.dll
2015-03-12 08:55:52 ----A---- C:\Windows\system32\jscript9.dll
2015-03-12 08:54:05 ----A---- C:\Windows\system32\WindowsCodecs.dll
2015-03-12 08:54:01 ----A---- C:\Windows\system32\lpk.dll
2015-03-12 08:54:01 ----A---- C:\Windows\system32\fontsub.dll
2015-03-12 08:54:01 ----A---- C:\Windows\system32\dciman32.dll
2015-03-12 08:54:01 ----A---- C:\Windows\system32\atmlib.dll
2015-03-12 08:54:01 ----A---- C:\Windows\system32\atmfd.dll
2015-03-12 08:52:46 ----A---- C:\Windows\system32\WMPhoto.dll
2015-03-12 08:51:41 ----A---- C:\Windows\system32\wmp.dll
2015-03-12 08:51:41 ----A---- C:\Windows\system32\mf.dll
2015-03-12 08:51:40 ----A---- C:\Windows\system32\ntkrnlpa.exe
2015-03-12 08:51:40 ----A---- C:\Windows\system32\crypt32.dll
2015-03-12 08:51:39 ----A---- C:\Windows\system32\ntoskrnl.exe
2015-03-12 08:51:39 ----A---- C:\Windows\system32\drivers\cng.sys
2015-03-12 08:51:38 ----A---- C:\Windows\system32\winload.exe
2015-03-12 08:51:38 ----A---- C:\Windows\system32\srcore.dll
2015-03-12 08:51:38 ----A---- C:\Windows\system32\drivers\mountmgr.sys
2015-03-12 08:51:37 ----A---- C:\Windows\system32\rstrui.exe
2015-03-12 08:51:37 ----A---- C:\Windows\system32\quartz.dll
2015-03-12 08:51:37 ----A---- C:\Windows\system32\qdvd.dll
2015-03-12 08:51:37 ----A---- C:\Windows\system32\drmv2clt.dll
2015-03-12 08:51:37 ----A---- C:\Windows\system32\cryptui.dll
2015-03-12 08:51:37 ----A---- C:\Windows\system32\blackbox.dll
2015-03-12 08:51:36 ----A---- C:\Windows\system32\wmdrmsdk.dll
2015-03-12 08:51:36 ----A---- C:\Windows\system32\wintrust.dll
2015-03-12 08:51:36 ----A---- C:\Windows\system32\pcasvc.dll
2015-03-12 08:51:36 ----A---- C:\Windows\system32\mfplat.dll
2015-03-12 08:51:36 ----A---- C:\Windows\system32\evr.dll
2015-03-12 08:51:36 ----A---- C:\Windows\system32\drmmgrtn.dll
2015-03-12 08:51:36 ----A---- C:\Windows\system32\cryptnet.dll
2015-03-12 08:51:35 ----A---- C:\Windows\system32\msscp.dll
2015-03-12 08:51:35 ----A---- C:\Windows\system32\cryptsvc.dll
2015-03-12 08:51:35 ----A---- C:\Windows\system32\audiosrv.dll
2015-03-12 08:51:35 ----A---- C:\Windows\system32\audiodg.exe
2015-03-12 08:51:34 ----A---- C:\Windows\system32\smss.exe
2015-03-12 08:51:34 ----A---- C:\Windows\system32\rrinstaller.exe
2015-03-12 08:51:34 ----A---- C:\Windows\system32\pcadm.dll
2015-03-12 08:51:34 ----A---- C:\Windows\system32\msnetobj.dll
2015-03-12 08:51:34 ----A---- C:\Windows\system32\drivers\PEAuth.sys
2015-03-12 08:51:34 ----A---- C:\Windows\system32\AUDIOKSE.dll
2015-03-12 08:51:34 ----A---- C:\Windows\system32\AudioEng.dll
2015-03-12 08:51:33 ----A---- C:\Windows\system32\srclient.dll
2015-03-12 08:51:33 ----A---- C:\Windows\system32\pcawrk.exe
2015-03-12 08:51:33 ----A---- C:\Windows\system32\mfps.dll
2015-03-12 08:51:33 ----A---- C:\Windows\system32\mfpmp.exe
2015-03-12 08:51:33 ----A---- C:\Windows\system32\cryptsp.dll
2015-03-12 08:51:33 ----A---- C:\Windows\system32\AudioSes.dll
2015-03-12 08:51:33 ----A---- C:\Windows\system32\appidsvc.dll
2015-03-12 08:51:33 ----A---- C:\Windows\system32\appidpolicyconverter.exe
2015-03-12 08:51:33 ----A---- C:\Windows\system32\appidapi.dll
2015-03-12 08:51:32 ----A---- C:\Windows\system32\setbcdlocale.dll
2015-03-12 08:51:32 ----A---- C:\Windows\system32\pcalua.exe
2015-03-12 08:51:32 ----A---- C:\Windows\system32\msmmsp.dll
2015-03-12 08:51:32 ----A---- C:\Windows\system32\EncDump.dll
2015-03-12 08:51:32 ----A---- C:\Windows\system32\drivers\appid.sys
2015-03-12 08:51:32 ----A---- C:\Windows\system32\csrsrv.dll
2015-03-12 08:51:32 ----A---- C:\Windows\system32\appidcertstorecheck.exe
2015-03-12 08:51:31 ----A---- C:\Windows\system32\spwmp.dll
2015-03-12 08:51:31 ----A---- C:\Windows\system32\pcaevts.dll
2015-03-12 08:51:31 ----A---- C:\Windows\system32\dxmasf.dll
2015-03-12 08:51:31 ----A---- C:\Windows\system32\apisetschema.dll
2015-03-12 08:51:30 ----A---- C:\Windows\system32\wmploc.DLL
2015-03-12 08:51:29 ----A---- C:\Windows\system32\mferror.dll
2015-03-06 14:24:18 ----D---- C:\Fraps
2015-03-04 12:06:16 ----A---- C:\Windows\system32\%InstallDir%speclean.exe
2015-02-28 07:24:34 ----D---- C:\Users\Lukas\AppData\Roaming\raidcall
2015-02-28 07:23:38 ----D---- C:\Program Files\RaidCall
2015-02-26 18:45:07 ----SHD---- C:\found.000
2015-02-25 13:09:07 ----D---- C:\Program Files\Qualcomm Atheros
2015-02-25 13:08:31 ----N---- C:\Windows\system32\athwb.sys
2015-02-25 13:08:31 ----N---- C:\Windows\system32\athr.sys
2015-02-25 13:08:31 ----A---- C:\Windows\system32\drivers\athr.sys
2015-02-24 18:39:33 ----D---- C:\Program Files\SkypeWebPlugin
2015-02-23 20:31:21 ----D---- C:\Users\Lukas\AppData\Roaming\Wireshark
2015-02-23 20:21:09 ----D---- C:\Program Files\WinPcap
2015-02-23 20:20:51 ----D---- C:\Program Files\Wireshark
2015-02-18 07:41:30 ----A---- C:\Windows\system32\wdi.dll
2015-02-18 07:41:30 ----A---- C:\Windows\system32\powertracker.dll
2015-02-18 07:41:30 ----A---- C:\Windows\system32\perftrack.dll
2015-02-17 16:04:46 ----A---- C:\Windows\system32\FM20.DLL
2015-02-17 12:39:14 ----D---- C:\Users\Lukas\AppData\Roaming\Hewlett-Packard
2015-02-17 12:38:11 ----D---- C:\System.sav
2015-02-17 12:37:06 ----D---- C:\ProgramData\{65AB91D4-DDD0-48D4-804D-C24E1FC90D44}
2015-02-17 12:34:11 ----D---- C:\HP

======List of files/folders modified in the last 1 month======

2015-03-16 09:27:14 ----D---- C:\Windows\Temp
2015-03-16 09:27:12 ----RD---- C:\Program Files
2015-03-16 09:26:46 ----SHD---- C:\Windows\Installer
2015-03-16 09:26:43 ----D---- C:\Windows\System32
2015-03-16 09:23:31 ----D---- C:\Windows\system32\drivers
2015-03-16 09:23:26 ----SHD---- C:\System Volume Information
2015-03-16 09:23:11 ----D---- C:\ProgramData\IObit
2015-03-16 09:23:08 ----D---- C:\Windows\system32\Tasks
2015-03-16 09:23:07 ----D---- C:\Users\Lukas\AppData\Roaming\IObit
2015-03-16 09:23:06 ----D---- C:\ProgramData\ProductData
2015-03-16 07:58:28 ----D---- C:\Windows\system32\config
2015-03-16 07:51:52 ----D---- C:\Users\Lukas\AppData\Roaming\TS3Client
2015-03-15 21:45:58 ----D---- C:\Users\Lukas\AppData\Roaming\uTorrent
2015-03-15 21:45:51 ----D---- C:\Windows
2015-03-15 21:45:50 ----D---- C:\Program Files\Common Files
2015-03-15 21:40:30 ----SD---- C:\ProgramData\Microsoft
2015-03-15 21:20:32 ----HD---- C:\ProgramData
2015-03-15 16:43:25 ----D---- C:\Users\Lukas\AppData\Roaming\FileZilla
2015-03-14 15:42:37 ----D---- C:\Windows\inf
2015-03-14 15:42:37 ----A---- C:\Windows\system32\PerfStringBackup.INI
2015-03-14 14:42:28 ----D---- C:\Users\Lukas\AppData\Roaming\Skype
2015-03-14 06:37:03 ----D---- C:\Users\Lukas\AppData\Roaming\vlc
2015-03-13 17:25:31 ----SHD---- C:\Boot
2015-03-13 17:25:31 ----D---- C:\Windows\winsxs
2015-03-13 17:24:32 ----D---- C:\Windows\system32\en-US
2015-03-13 17:24:32 ----D---- C:\Program Files\Internet Explorer
2015-03-13 17:24:31 ----D---- C:\Windows\system32\sk-SK
2015-03-13 17:24:31 ----D---- C:\Windows\system32\Dism
2015-03-13 17:24:31 ----D---- C:\Program Files\Windows Media Player
2015-03-13 17:24:30 ----D---- C:\Windows\system32\Boot
2015-03-13 17:24:28 ----D---- C:\Users\Lukas\AppData\Roaming\DiskDefrag
2015-03-12 09:12:32 ----D---- C:\ProgramData\Microsoft Help
2015-03-12 09:11:18 ----D---- C:\Windows\system32\MRT
2015-03-12 09:03:07 ----A---- C:\Windows\system32\MRT.exe
2015-03-12 08:52:58 ----D---- C:\Windows\system32\catroot2
2015-03-11 10:14:12 ----D---- C:\Windows\Tasks
2015-03-10 16:50:03 ----D---- C:\Windows\system32\wdi
2015-03-09 12:14:47 ----D---- C:\Windows\system32\NDF
2015-03-07 17:29:16 ----D---- C:\Users\Lukas\AppData\Roaming\TeamViewer
2015-03-03 20:49:45 ----D---- C:\Users\Lukas\AppData\Roaming\Mozilla
2015-02-25 13:08:46 ----D---- C:\Windows\system32\DriverStore
2015-02-25 13:08:29 ----HD---- C:\Program Files\InstallShield Installation Information
2015-02-25 13:08:08 ----D---- C:\ProgramData\Qualcomm Atheros
2015-02-24 03:23:36 ----N---- C:\Windows\system32\MpSigStub.exe
2015-02-23 16:15:54 ----D---- C:\Windows\Hewlett-Packard
2015-02-23 16:14:57 ----D---- C:\swsetup
2015-02-19 16:56:38 ----D---- C:\Windows\Microsoft.NET
2015-02-19 16:55:14 ----RSD---- C:\Windows\assembly
2015-02-19 06:16:50 ----D---- C:\Windows\tracing
2015-02-18 18:04:43 ----D---- C:\Program Files\Common Files\microsoft shared
2015-02-18 17:58:46 ----D---- C:\Program Files\MSBuild
2015-02-18 17:55:12 ----D---- C:\Program Files\Common Files\Merge Modules
2015-02-18 17:46:52 ----SD---- C:\Users\Lukas\AppData\Roaming\Microsoft
2015-02-17 12:38:17 ----D---- C:\Windows\Help
2015-02-17 12:37:31 ----D---- C:\ProgramData\Hewlett-Packard
2015-02-17 12:37:31 ----D---- C:\Program Files\Hewlett-Packard
2015-02-17 12:37:19 ----D---- C:\Users\Lukas\AppData\Roaming\hpqLog

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 amd_sata;amd_sata; C:\Windows\system32\DRIVERS\amd_sata.sys [2013-11-06 71400]
R0 amd_xata;amd_xata; C:\Windows\system32\DRIVERS\amd_xata.sys [2013-11-06 35560]
R0 AtiPcie;AMD PCI Express (3GIO) Filter; C:\Windows\system32\DRIVERS\AtiPcie.sys [2010-06-17 14392]
R0 epfwwfp;epfwwfp; C:\Windows\system32\DRIVERS\epfwwfp.sys [2014-10-10 51288]
R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12368]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 173440]
R1 cnnctfy3;Connectify LightWeight Filter; C:\Windows\system32\DRIVERS\cnnctfy3.sys [2015-02-05 29672]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-20 388096]
R1 eamonm;eamonm; C:\Windows\system32\DRIVERS\eamonm.sys [2014-10-10 191928]
R1 ehdrv;ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [2014-10-10 135296]
R1 EpfwLWF;Epfw NDIS LightWeight Filter; C:\Windows\system32\DRIVERS\EpfwLWF.sys [2014-10-10 37928]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 48128]
R2 cvintdrv;cvintdrv; C:\Windows\system32\drivers\cvintdrv.sys [2009-05-29 4096]
R2 epfw;epfw; C:\Windows\system32\DRIVERS\epfw.sys [2014-10-10 176448]
R2 NPF;NetGroup Packet Filter Driver; C:\Windows\system32\drivers\npf.sys [2013-03-01 36600]
R3 ALSysIO;ALSysIO; \??\C:\Users\Lukas\AppData\Local\Temp\ALSysIO.sys []
R3 amdiox86;AMD IO Driver; C:\Windows\system32\DRIVERS\amdiox86.sys [2010-02-18 37944]
R3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2011-07-05 7800832]
R3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2011-07-05 245760]
R3 AmdLLD;AMD Low Level Device Driver; C:\Windows\system32\DRIVERS\AmdLLD.sys [2007-06-29 34304]
R3 AthBTPort;Atheros Virtual Bluetooth Class; C:\Windows\system32\DRIVERS\btath_flt.sys [2011-05-09 34976]
R3 athr;Qualcomm Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athr.sys [2014-11-09 3310592]
R3 AtiHDAudioService;ATI Function Driver for HD Audio Service; C:\Windows\system32\drivers\AtihdW73.sys [2011-07-14 100880]
R3 BTATH_A2DP;Bluetooth A2DP Audio Driver; C:\Windows\system32\drivers\btath_a2dp.sys [2011-05-09 259232]
R3 BTATH_BUS;Atheros Bluetooth Bus; C:\Windows\system32\DRIVERS\btath_bus.sys [2011-05-09 24736]
R3 BTATH_HCRP;Bluetooth HCRP Server driver; C:\Windows\system32\DRIVERS\btath_hcrp.sys [2011-05-09 175776]
R3 BTATH_LWFLT;Bluetooth LWFLT Device; C:\Windows\system32\DRIVERS\btath_lwflt.sys [2011-05-09 49312]
R3 BTATH_RCP;Bluetooth AVRCP Device; C:\Windows\system32\DRIVERS\btath_rcp.sys [2011-05-09 141088]
R3 BtFilter;BtFilter; C:\Windows\system32\DRIVERS\btfilter.sys [2011-05-09 243872]
R3 BthEnum;Bluetooth Enumerator Service; C:\Windows\system32\DRIVERS\BthEnum.sys [2009-07-14 34816]
R3 BthPan;Bluetooth Device (Personal Area Network); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 93696]
R3 BTHUSB;Bluetooth Radio USB Driver; C:\Windows\System32\Drivers\BTHUSB.sys [2011-04-28 60416]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2014-05-14 3086040]
R3 RFCOMM;Bluetooth Device (RFCOMM Protocol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 129536]
R3 RSPCIESTOR;Realtek PCIE CardReader Driver; C:\Windows\system32\DRIVERS\RtsPStor.sys [2000-01-01 254608]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt86win7.sys [2013-12-18 683736]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2011-10-14 299312]
R3 tap0901t;TAP-Win32 Adapter V9 (Tunngle); C:\Windows\system32\DRIVERS\tap0901t.sys [2009-09-16 27136]
R3 usbfilter;AMD USB Filter Driver; C:\Windows\system32\DRIVERS\usbfilter.sys [2000-01-01 35968]
S0 BootDefragDriver;BootDefragDriver; C:\Windows\System32\drivers\BootDefragDriver.sys []
S2 Parvdm;Parvdm; C:\Windows\system32\drivers\parvdm.sys [2009-07-14 8704]
S3 aic78xx;aic78xx; C:\Windows\system32\drivers\djsvs.sys [2009-07-14 70720]
S3 amdagp;AMD AGP Bus Filter Driver; C:\Windows\system32\drivers\amdagp.sys [2009-07-14 53312]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2009-07-13 229888]
S3 BTHPORT;Bluetooth Port Driver; C:\Windows\System32\Drivers\BTHport.sys [2012-07-06 393728]
S3 dmvsc;dmvsc; C:\Windows\system32\drivers\dmvsc.sys [2010-11-20 62464]
S3 FTDIBUS;USB Serial Converter Driver; C:\Windows\system32\drivers\ftdibus.sys [2014-01-31 77808]
S3 FTSER2K;USB Serial Port Driver; C:\Windows\system32\drivers\ftser2k.sys [2014-09-10 74096]
S3 hamachi;Hamachi Network Interface; C:\Windows\system32\DRIVERS\hamachi.sys [2009-03-18 26176]
S3 InputFilter_Hid_FlexDef2b;Siliten HID Devices(FlexDef2b) Driver Service; C:\Windows\system32\DRIVERS\InputFilter_FlexDef2b.sys [2010-06-18 14848]
S3 PAC207;SoC PC-Camera; C:\Windows\system32\DRIVERS\PFC027.SYS [2006-12-05 507136]
S3 pwdrvio;pwdrvio; \??\C:\Windows\system32\pwdrvio.sys [2013-09-30 15688]
S3 pwdspio;pwdspio; \??\C:\Windows\system32\pwdspio.sys [2013-09-30 10320]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-20 133632]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 14848]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-20 5632]
S3 Ser2plx86;Prolific Serial port WDF driver; C:\Windows\system32\DRIVERS\ser2pl.sys [2013-10-17 139776]
S3 sisagp;SIS AGP Bus Filter; C:\Windows\system32\drivers\sisagp.sys [2009-07-14 52304]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-20 28032]
S3 Synth3dVsc;Synth3dVsc; C:\Windows\System32\drivers\synth3dvsc.sys [2010-11-20 77184]
S3 terminpt;Microsoft Remote Desktop Input Driver; C:\Windows\system32\drivers\terminpt.sys [2012-08-23 24064]
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2013-10-02 49152]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2010-11-20 27264]
S3 tsusbhub;@%SystemRoot%\system32\drivers\tsusbhub.sys,-1; C:\Windows\system32\drivers\tsusbhub.sys [2010-11-20 112640]
S3 VGPU;VGPU; C:\Windows\System32\drivers\rdvgkmd.sys []
S3 viaagp;VIA AGP Bus Filter; C:\Windows\system32\drivers\viaagp.sys [2009-07-14 53328]
S3 ViaC7;VIA C7 Processor Driver; C:\Windows\system32\drivers\viac7.sys [2009-07-14 52736]
S3 vmbus;vmbus; C:\Windows\system32\drivers\vmbus.sys [2010-11-20 175360]
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-20 17920]
S3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\Windows\system32\DRIVERS\vwifimp.sys [2009-07-14 14336]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AERTFilters;Andrea RT Filters Service; C:\Program Files\Realtek\Audio\HDA\AERTSrv.exe [2009-11-17 87968]
R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2011-07-05 176128]
R2 AMD FUEL Service;AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [2011-07-05 294400]
R2 Atheros Bt&Wlan Coex Agent;Atheros Bt&Wlan Coex Agent; C:\Program Files\Bluetooth Suite\Ath_CoexAgent.exe [2011-05-09 146592]
R2 AtherosSvc;AtherosSvc; C:\Program Files\Bluetooth Suite\adminservice.exe [2011-05-09 76960]
R2 Connectify;Connectify; C:\Program Files\Connectify\ConnectifyService.exe [2013-11-05 487936]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET Smart Security\ekrn.exe [2014-10-01 1349576]
R2 HP Support Assistant Service;HP Support Assistant Service; C:\Program Files\Hewlett-Packard\HP Support Framework\hpsa_service.exe [2014-08-21 93184]
R2 IconMan_R;IconMan_R; C:\Program Files\Realtek\Realtek PCIE Card Reader\RIconMan.exe [2000-01-01 1816064]
R2 LkCitadelServer;Lookout Citadel Server; C:\Windows\system32\lkcitdl.exe [2009-09-29 695136]
R2 lkClassAds;National Instruments PSP Server Locator; C:\Windows\system32\lkads.exe [2010-03-10 43056]
R2 lkTimeSync;National Instruments Time Synchronization; C:\Windows\system32\lktsrv.exe [2010-03-10 53808]
R2 NIDomainService;National Instruments Domain Service; D:\Program Files\National Instruments\Shared\Security\nidmsrv.exe [2010-03-10 358448]
R2 niSvcLoc;NI Service Locator; C:\Windows\system32\nisvcloc.exe [2009-10-20 13896]
R2 NovaPdfServer;novaPDF Server; C:\Program Files\Softland\novaPDF 8\Server\novapdfs.exe [2014-08-01 204576]
R2 PnkBstrA;PnkBstrA; C:\Windows\system32\PnkBstrA.exe [2015-01-10 66872]
R2 RtkAudioService;Realtek Audio Service; C:\Program Files\Realtek\Audio\HDA\RtkAudioService.exe [2014-01-08 251096]
R2 TeamViewer9;TeamViewer 9; C:\Program Files\TeamViewer\Version9\TeamViewer_Service.exe [2015-02-09 5249808]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2014-04-11 103608]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2014-06-06 116648]
S2 SkypeUpdate;Skype Updater; C:\Program Files\Skype\Updater\Updater.exe [2014-12-11 315496]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 Autodesk Licensing Service;Autodesk Licensing Service; C:\Program Files\Common Files\Autodesk Shared\Service\AdskScSrv.exe [2014-06-10 79360]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2014-06-06 116648]
S3 hpqwmiex;HP Software Framework Service; C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe [2013-05-13 1129760]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2015-02-20 102912]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe [2009-02-26 64856]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 rpcapd;Remote Packet Capture Protocol v.0 (experimental); C:\Program Files\WinPcap\rpcapd.exe [2013-03-01 118520]
S3 TunngleService;TunngleService; C:\Program Files\Tunngle\TnglCtrl.exe [2014-11-04 762320]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2014-06-19 1343400]
S4 aspnet_state;ASP.NET State Service; C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2014-04-11 45744]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
S4 NILM License Manager;NILM License Manager; D:\Program Files\National Instruments\Shared\License Manager\Bin\lmgrd.exe [2010-05-17 1007616]

-----------------EOF-----------------



Dakujem

Re: Poprosim o kontrolu logu - Pomalsi notebook, pomalsi chr

Napsal: 16 bře 2015 17:34
od Rudy
Zdravím!
Jak je na tom váš oper. systém s legalitou?

Re: Poprosim o kontrolu logu - Pomalsi notebook, pomalsi chr

Napsal: 16 bře 2015 17:36
od lukasjanra
No viete co je to HP notebook a zo spodu mam nalepku, ale viac vam neviem povedat

Re: Poprosim o kontrolu logu - Pomalsi notebook, pomalsi chr

Napsal: 16 bře 2015 17:46
od Rudy
lukasjanra píše:No viete co je to HP notebook a zo spodu mam nalepku, ale viac vam neviem povedat
Pokud má ta nálepka text:
Microsoft Windows 7 Ultimate Service Pack 1
pak je to v pořádku. V opačném případě je systém nelegální.

Re: Poprosim o kontrolu logu - Pomalsi notebook, pomalsi chr

Napsal: 16 bře 2015 17:51
od lukasjanra
Vaša stránka mi bola odporucena z toho dôvodu že viete perfektne poradiť. Zatiaľ to tak nevidim a ja mam vazny problem

Re: Poprosim o kontrolu logu - Pomalsi notebook, pomalsi chr

Napsal: 16 bře 2015 18:12
od Rudy
Já vám to věřím, ale mám důvodné podezření, že váš OS není zcela v pořádku a na takových podle pravidel fóra: http://forum.viry.cz/viewtopic.php?f=12&t=115512 podporu neposkytujeme. Až mi popravdě odpovíte na otázku, učiním závěr a dále se na legalitu ptát nebudu. Takže asi tak.

Re: Poprosim o kontrolu logu - Pomalsi notebook, pomalsi chr

Napsal: 16 bře 2015 18:23
od lukasjanra
Je tam Ultimate ano

Re: Poprosim o kontrolu logu - Pomalsi notebook, pomalsi chr

Napsal: 16 bře 2015 19:17
od Rudy
OK. Zkusíme tento postup:

Stáhněte a spusťte OTL: http://oldtimer.geekstogo.com/OTL.exe . Spusťte, zaškrněte "Pro všechny uživatele", Kontrola na havěť LOP" a Kontrola na hvěť PURITY" a do dolního bílého okna zkopírujte:
CREATERESTOREPOINT

netsvcs
drivers32
savembr:0

/md5start
atapi.sys
autochk.exe
cdrom.sys
explorer.exe
hal.dll
scecli.dll
services.exe
svchost.exe
tcpip.sys
userinit.exe
winlogon.exe
/md5stop

%systemroot%*.* /U /s
%SYSTEMDRIVE%\*.exe
%ALLUSERSPROFILE%\Application Data\*.
%ALLUSERSPROFILE%\Application Data\*.exe /s
%APPDATA%\*.
%APPDATA%\*.exe /s
%systemroot%\*. /mp /s
%systemroot%\system32\*.dll /lockedfiles
%systemroot%\Tasks\*.job
%systemroot%\system32\drivers\*.sys /lockedfiles
%systemroot%\System32\config\*.sav
%systemroot%\system32\*.dll /lockedfiles
%systemroot%\system32\drivers\*.sys /3
%systemroot%\system32\*.* /3
%SYSTEMDRIVE%\*.exe

HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /s

%PROGRAMFILES%\Mozilla Firefox\firefox.exe /md5
%PROGRAMFILES%\Internet Explorer\iexplore.exe /md5
%PROGRAMFILES%\Opera\opera.exe /md5
%PROGRAMFILES%\Google\Chrome\Application\chrome.exe /md5

%SystemDrive%\PhysicalMBR.bin /md5

*crack* /s
*keygen* /s
*loader* /s
a klikněte na >Prohledat<. Dejte oba logy.

Re: Poprosim o kontrolu logu - Pomalsi notebook, pomalsi chr

Napsal: 16 bře 2015 20:09
od lukasjanra
OTL Extras logfile created on: 16. 3. 2015 19:42:40 - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = D:\Prevzaté súbory
Enterprise Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.11.9600.17691)
Locale: 0000041b | Country: Slovenská republika | Language: SKY | Date Format: d. M. yyyy

3,25 Gb Total Physical Memory | 1,69 Gb Available Physical Memory | 51,97% Memory free
6,49 Gb Paging File | 4,78 Gb Available in Paging File | 73,66% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 55,90 Gb Total Space | 11,73 Gb Free Space | 20,98% Space Free | Partition Type: NTFS
Drive D: | 380,39 Gb Total Space | 322,91 Gb Free Space | 84,89% Space Free | Partition Type: NTFS
Drive F: | 85,37 Gb Total Space | 70,07 Gb Free Space | 82,08% Space Free | Partition Type: NTFS

Computer Name: LUKAS-PC | User Name: Lukas | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

========== Extra Registry (SafeList) ==========


========== File Associations ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\Windows\System32\control.exe (Microsoft Corporation)
.hlp [@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation)

[HKEY_USERS\S-1-5-21-3686303566-3769288024-1234635627-1000\SOFTWARE\Classes\<extension>]
.html [@ = ChromeHTML] -- Reg Error: Key error. File not found

========== Shell Spawning ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [AddToPlaylistVLC] -- "D:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" (VideoLAN)
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithVLC] -- "D:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" (VideoLAN)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

========== Security Center Settings ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1
"FirewallDisableNotify" = 0
"AntiVirusDisableNotify" = 0
"UpdatesDisableNotify" = 0

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = Reg Error: Unknown registry data type -- File not found
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]

========== System Restore Settings ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR" = 0

========== Firewall Settings ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile]

[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0

========== Authorized Applications List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]


========== Vista Active Open Ports Exception List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{0D6A22E9-22CD-48AC-B903-7636C47A1C48}" = rport=1900 | protocol=17 | dir=out | app=c:\windows\system32\svchost.exe |
"{0F2F4088-3085-486D-BFC1-41FBC8EA35F6}" = lport=2987 | protocol=6 | dir=in | app=c:\program files\connectify\connectify.exe |
"{166D8FDC-14FB-415D-963A-2B3974FDA462}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{1B4A610D-70F0-45B8-B364-34092256D60D}" = rport=138 | protocol=17 | dir=out | app=system |
"{213531CB-DBAB-4FE0-8F9C-CE1C22A44268}" = lport=67 | protocol=17 | dir=in | app=c:\program files\connectify\connectifynetservices.exe |
"{21FDEEAE-D4C2-4B60-8EE3-F99FCF661627}" = lport=5353 | protocol=17 | dir=in | app=c:\program files\google\chrome\application\chrome.exe |
"{5EBFC82E-B9B1-4836-9C01-504B50F4AD81}" = rport=2869 | protocol=6 | dir=out | app=system |
"{70C53E7B-FD4B-4D61-87D0-2CA4FB05E272}" = lport=67 | protocol=17 | dir=in | app=c:\program files\connectify\connectifynetservices.exe |
"{7AC787C0-A283-4911-9C55-99752CEFD8C9}" = lport=138 | protocol=17 | dir=in | app=system |
"{87051843-3C65-4039-AEFA-75CCAB30F263}" = rport=139 | protocol=6 | dir=out | app=system |
"{8E582012-5A19-4F6A-A22C-B8AC60F9617C}" = lport=1900 | protocol=17 | dir=in | app=c:\windows\system32\svchost.exe |
"{9975EF54-740B-482B-BB63-04BBD60C3692}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 |
"{9F2593E4-5E1A-4472-9359-0536784C6374}" = lport=53 | protocol=17 | dir=in | app=c:\program files\connectify\connectifynetservices.exe |
"{B1F192F3-B52F-4259-9A39-176ECA338560}" = lport=6004 | protocol=17 | dir=in | app=c:\program files\microsoft office\office12\outlook.exe |
"{C335E42D-5CD7-4ABB-B14A-1989ED2112AF}" = lport=68 | protocol=17 | dir=in | app=c:\program files\connectify\connectifynetservices.exe |
"{C4F8CAB5-5AEB-4884-A043-25213C8F36EB}" = lport=139 | protocol=6 | dir=in | app=system |
"{CAE535F3-B527-4264-B654-60FB31C03833}" = lport=53 | protocol=17 | dir=in | app=c:\program files\connectify\connectifynetservices.exe |
"{CFA31E14-715F-455E-862F-35F8D61C4A7D}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{D1A400D3-9156-4FEB-B381-BDC312136B14}" = lport=137 | protocol=17 | dir=in | app=system |
"{D46CF124-EAE6-46DF-BF0F-EC1833080680}" = lport=445 | protocol=6 | dir=in | app=system |
"{DD3D9359-FF41-43BE-997F-392ED727E6EE}" = lport=547 | protocol=17 | dir=in | app=c:\windows\system32\svchost.exe |
"{E22DDA26-A2BB-4DA4-98BD-B5BF846E7986}" = rport=445 | protocol=6 | dir=out | app=system |
"{E45B1B25-2DFB-4658-97FB-6EF23E3DFE4D}" = lport=2869 | protocol=6 | dir=in | app=system |
"{E85B48E2-EE71-4514-A267-10A5A82283BA}" = rport=137 | protocol=17 | dir=out | app=system |
"{FA79C3E0-CD2E-4A01-B435-84C54288E5D6}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe |

========== Vista Active Application Exception List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{033174D2-FE89-487E-9AE9-89A7ED1F371E}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.2880\agent.exe |
"{0C0A623F-3820-4F22-8D91-D9F912B9A85E}" = protocol=6 | dir=in | app=c:\program files\tunngle\tunngle.exe |
"{23FBD7CF-82DD-4FF6-86FB-99BB7C050C72}" = protocol=6 | dir=in | app=c:\program files\microsoft office\office12\onenote.exe |
"{273B01EC-610D-4914-87AA-22362845D6F3}" = protocol=17 | dir=in | app=c:\program files\microsoft office\office12\groove.exe |
"{2DA24050-5B4C-4CB0-9E94-0B640E285D30}" = protocol=6 | dir=in | app=c:\program files\common files\acronis\syncagent\syncagentsrv.exe |
"{2DD587FB-BCD7-48C4-AD68-C373739E4D6A}" = protocol=17 | dir=in | app=c:\program files\teamviewer\version9\teamviewer.exe |
"{2FCCA26C-3850-4036-AAB8-CA6B01F7183A}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 |
"{3F18522D-6EF0-41F1-9860-906FCFBC5435}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.2880\agent.exe |
"{42118372-67FF-4205-BE10-E65F22F29963}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.3182\agent.exe |
"{464EB45D-21ED-4C83-995C-4260D0E5FE0F}" = protocol=17 | dir=in | app=c:\program files\microsoft office\office12\onenote.exe |
"{4EA46DB6-402B-4F5B-A434-6495FA2627A0}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.3023\agent.exe |
"{5BB1674B-42E4-42E4-B306-6C6D194DFE9C}" = protocol=6 | dir=in | app=c:\windows\system32\pnkbstrb.exe |
"{5D058E34-AE63-4BE2-9D2E-AA40CFB6CB8D}" = protocol=6 | dir=in | app=d:\program files\battle.net\battle.net.exe |
"{63D2E5AB-190F-446C-BDA8-C25650734307}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.3023\agent.exe |
"{6B0053D7-A4C7-4463-9AD8-A42A35A1B313}" = protocol=17 | dir=in | app=c:\program files\tunngle\tnglctrl.exe |
"{6B1CAFA6-AF9F-43F0-B90B-7E35DA09B7BC}" = dir=in | app=c:\program files\skypewebplugin\3.2.0.23388\skypewebplugin.exe |
"{6B8D9AAE-4478-4F1E-A194-221ED5565ECC}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 |
"{71356F47-4464-48B7-A3F7-36870032A9A0}" = dir=out | app=c:\windows\system32\svchost.exe |
"{7ABC6596-8D00-44BD-A690-993BF5393601}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.3182\agent.exe |
"{7F63503C-E9F7-4702-BDAD-87802288F6E7}" = protocol=58 | dir=in | name=internet connection sharing (router solicitation-in) |
"{803F543C-DEC5-4587-BF51-B9D396BD59AF}" = protocol=17 | dir=in | app=c:\windows\system32\pnkbstrb.exe |
"{8B06C54C-859C-4256-8D92-F87536FD7E01}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 |
"{93C8E33F-5B8B-4ED0-8235-02119612AE1E}" = protocol=17 | dir=in | app=c:\program files\teamviewer\version9\teamviewer_service.exe |
"{94109B9F-5CB3-4566-95D0-367A31776FF4}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.2880\agent.exe |
"{9CC213CC-764C-4984-8AAF-96DB97779546}" = protocol=6 | dir=in | app=c:\program files\tunngle\tnglctrl.exe |
"{A32F3BAF-7444-46CF-80A5-31C9A95B201E}" = protocol=6 | dir=in | app=c:\windows\system32\pnkbstra.exe |
"{AAF19A68-3C98-464D-94EA-C3555E599BE5}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.2880\agent.exe |
"{AB49B28E-93A1-4E43-ADB9-7AC1EFC9A094}" = protocol=17 | dir=in | app=d:\program files\battle.net\battle.net.exe |
"{AF53CA64-84AE-4705-A4BE-0C48CD2A0936}" = protocol=6 | dir=out | app=c:\windows\system32\svchost.exe |
"{B273568F-D017-42B5-B13F-90ADDBF53EF5}" = protocol=17 | dir=in | app=c:\program files\tunngle\tunngle.exe |
"{BD944687-E657-46BB-8E6B-033625710780}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{BF98ED78-40FE-425B-B2EC-D2441F559088}" = protocol=17 | dir=in | app=c:\program files\common files\acronis\syncagent\syncagentsrv.exe |
"{C2DBBE7E-4F41-46F0-A80C-717167250124}" = protocol=6 | dir=in | app=c:\program files\teamviewer\version9\teamviewer_service.exe |
"{C5B9E1EB-A740-4E67-BCA7-0C385126FD6C}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 |
"{CC453AAD-AE23-4258-849D-6D88E63D1952}" = protocol=6 | dir=in | app=c:\program files\teamviewer\version9\teamviewer.exe |
"{CDEF51AC-C9FC-465C-B9C7-6278AACEAC9C}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.3235\agent.exe |
"{D29CC165-B7C9-41BA-883F-3673B7FC52BB}" = protocol=6 | dir=in | app=c:\users\lukas\appdata\roaming\utorrent\utorrent.exe |
"{DEE0FEB3-B24B-4E3A-9851-521C16EAD455}" = protocol=17 | dir=in | app=c:\users\lukas\appdata\roaming\utorrent\utorrent.exe |
"{E2D4A983-B1DD-4FA3-9309-077CE682BDEB}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.3235\agent.exe |
"{EAD8ACF9-714A-4F35-9055-88A120C364DE}" = protocol=17 | dir=in | app=c:\windows\system32\pnkbstra.exe |
"{EB8DEA5F-5FB3-4714-8ED7-E145BC46BB9F}" = protocol=6 | dir=in | app=c:\program files\microsoft office\office12\groove.exe |

========== HKEY_LOCAL_MACHINE Uninstall List ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{02B6E651-686D-4BCD-8A93-C07B01761745}" = NI Logos 5.1.3
"{0331D93B-CC3A-4935-AD74-1FA9406F9525}" = ESET Smart Security
"{05273A09-55BF-AB2D-DD22-D98690309C28}" = CCC Help Portuguese
"{0612A263-0976-324B-BEA9-82F01CA7370F}" = CCC Help Finnish
"{07FA4960-B038-49EB-891B-9F95930AA544}" = HP Customer Experience Enhancements
"{0AAB121C-8EA7-49F5-B37C-DF117FB46771}" = NI LabVIEW Run-Time Engine 2009 SP1
"{0FCE0BA9-8AD4-4622-9ADF-EFF0355EEAE7}" = NI LabVIEW Run-Time Engine Interop 2009
"{0FD812C9-3BBE-4CC5-A43C-B7304E3EC581}" = NI Web Pipeline 2.0.1
"{101A497C-7EF6-4001-834D-E5FA1C70FEFA}" = Bluetooth Win7 Suite
"{1110A014-1471-4B66-BFDC-E8EED120CC59}" = System Requirements Lab CYRI
"{1224BA43-5B3D-56EB-DFFF-B564C759AD2D}" = ccc-utility
"{13AD0436-E893-E726-0CBB-33FCF35A2F29}" = ATI Catalyst Install Manager
"{15AF46DB-9EBA-4662-AA52-29EF23585035}" = Skype Web Plugin
"{200927E3-5E45-493A-9343-508613BC59CE}" = NI LabVIEW Web Services Runtime
"{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}" = Skype™ 7.0
"{26A24AE4-039D-4CA4-87B4-2F83218025F0}" = Java 8 Update 25
"{276ABF19-EB0A-49DA-9C17-72A99384596C}_is1" = WiFi Channel Scanner
"{28006915-2739-4EBE-B5E8-49B25D32EB33}" = Qualcomm Atheros Client Installation Program
"{281A7FBF-9E98-4639-AC73-D205BBF979AA}" = USB Serial Port Driver
"{2991A446-D356-44EC-930A-42E8B02A67C0}_is1" = MiniTool Partition Wizard Professional Edition 8.1.1
"{2A4F281E-2161-405B-B090-4487F505BDDE}" = AOEMView 2009
"{2CC34925-D47D-BD10-AA1E-FAA76F3B5D82}" = AMD Wireless Display v3.0
"{318EAFB5-2019-4A09-811D-33A45A4E71D5}_is1" = Call Of Duty Modern Warfare 2 verze 1.2 CZ
"{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}" = Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030
"{34866446-F784-B458-40BA-672A7D546591}" = CCC Help German
"{3911CF56-9EF2-39BA-846A-C27BD3CD0685}" = Microsoft .NET Framework 4.5.2
"{391E468C-D459-7278-D506-01A5CA340E97}" = CCC Help Swedish
"{39B1BCF0-5D12-A5F8-616F-F31B3355C913}" = CCC Help Danish
"{3F71B6A1-B563-0FC9-12A0-D9897AC6BE45}" = CCC Help Czech
"{41A0986C-CED7-4C93-AFF2-DC8566253B7B}" = NI MetaSuite Installer
"{438DE441-C9B0-AEBB-907E-3D09E620FE62}" = CCC Help Japanese
"{450063AA-643B-417C-8CF5-405BA3F4EF40}" = Autodesk Design Review 2009
"{45E31E25-3F02-AFF2-EBC8-ACECE264E126}" = CCC Help Hungarian
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{4FFBBF14-D82E-483D-8C1D-FCECAABD399E}" = NI LabWindows/CVI 9.0.1 Run-Time Engine
"{51C7AD07-C3F6-4635-8E8A-231306D810FE}" = Cisco LEAP Module
"{5545EEE1-FA36-4F76-B6BE-5696E7F4E2D6}" = VBA (2627.01)
"{5783F2D6-7028-0409-0000-0060B0CE6BBA}" = DWG TrueView 2009
"{5783F2D7-7005-0405-0002-0060B0CE6BBA}" = AutoCAD Mechanical 2009
"{57B77060-04B4-468E-89A9-F68EEE466F57}" = NI USI 1.7.0
"{584413CB-336A-EC10-BDA1-210DC882895D}" = CCC Help Russian
"{5C0BBD9F-2D3F-4093-AD7B-3F7377E0EDCA}" = NI LabVIEW Real-Time NBFifo
"{604D1BD4-7EE3-4704-8D53-0675FA94AE57}" = NI MDF Support
"{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}" = Google Update Helper
"{63E19B33-DD24-4EAB-9E77-6735C2171CE4}" = NI VC2005MSMs x86
"{644DAD90-2083-4871-BD49-721BF8FAE295}" = NI LabVIEW Run-Time Engine 8.6.1
"{64BF0187-F3D2-498B-99EA-163AF9AE6EC9}" = Cisco EAP-FAST Module
"{65246CE4-17F2-4896-8828-696086BED5F6}" = NI TDMS
"{6A86554B-8928-30E4-A53C-D7337689134D}" = Microsoft Visual C++ 2010 x86 Runtime - 10.0.30319
"{6C520D64-E109-4A73-82A3-7808592051BC}" = NI Circuit Design Suite 11.0.1 Core
"{6ED37A91-7710-3183-BE50-AB043FF6689E}" = Microsoft Team Foundation Server 2010 Object Model - ENU
"{6F340107-F9AA-47C6-B54C-C3A19F11553F}" = Hewlett-Packard ACLM.NET v1.2.2.3
"{6F7D11DC-DE87-45C8-A37E-A35B724FC771}" = NI Help Assistant
"{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
"{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
"{729A3000-BC8A-3B74-BA5D-5068FE12D70C}" = Microsoft Visual F# 2.0 Runtime
"{741F5171-235B-F5B0-6590-F4BB53B76D36}" = CCC Help Dutch
"{7971B0A3-2A0E-C212-257C-DF308908E62E}" = CCC Help English
"{7ACFB216-29F7-4331-A5ED-2563AEB51F21}" = NI Trace Engine
"{7B6DB690-4552-9EDC-40F3-4F73B2B98EB1}" = AMD Wireless Display v3.0
"{7BE5AA0C-E564-430F-B297-2B01121A1C5A}" = NI LabVIEW Real-Time NBFifo
"{7CD0F3A4-AA2F-4F6E-84F4-BFC2905D4BA3}" = NI EULA Depot
"{7DDBDDCD-651C-F923-DED6-7DA7049F06CA}" = Catalyst Control Center InstallProxy
"{7E799992-5DA0-4A1A-9443-B1836B063FEC}" = HP Power Manager
"{7F4DD591-1300-0409-0000-7107D70F3DB4}" = Autodesk Inventor Professional 2009
"{83772A97-05A6-3528-897E-097CE0A92BFF}" = CCC Help Greek
"{83B3CCC5-4C76-9873-66AD-08FF11723C90}" = CCC Help Spanish
"{84FAE06F-A199-4991-8526-AF57A2A0D779}" = NI Circuit Design Suite 11.0.1 Pro
"{8833FFB6-5B0C-4764-81AA-06DFEED9A476}" = Realtek Ethernet Controller Driver
"{8ADD5526-3DEC-4151-AC39-DEE5CADBCFDC}" = WinUSB Compatible ID Drivers
"{90120000-0015-0405-0000-0000000FF1CE}" = Microsoft Office Access MUI (Czech) 2007
"{90120000-0015-0405-0000-0000000FF1CE}_ENTERPRISE_{3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0016-0405-0000-0000000FF1CE}" = Microsoft Office Excel MUI (Czech) 2007
"{90120000-0016-0405-0000-0000000FF1CE}_ENTERPRISE_{3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0018-0405-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Czech) 2007
"{90120000-0018-0405-0000-0000000FF1CE}_ENTERPRISE_{3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0019-0405-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (Czech) 2007
"{90120000-0019-0405-0000-0000000FF1CE}_ENTERPRISE_{3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-001A-0405-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (Czech) 2007
"{90120000-001A-0405-0000-0000000FF1CE}_ENTERPRISE_{3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-001B-0405-0000-0000000FF1CE}" = Microsoft Office Word MUI (Czech) 2007
"{90120000-001B-0405-0000-0000000FF1CE}_ENTERPRISE_{3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-001F-0405-0000-0000000FF1CE}" = Microsoft Office Proof (Czech) 2007
"{90120000-001F-0405-0000-0000000FF1CE}_ENTERPRISE_{0B7A4B67-2A38-42B1-9857-662FAB361E08}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
"{90120000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2007
"{90120000-001F-0407-0000-0000000FF1CE}_ENTERPRISE_{928D7B99-2BEA-49F9-83B8-20FA57860643}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
"{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007
"{90120000-001F-0409-0000-0000000FF1CE}_ENTERPRISE_{1FF96026-A04A-4C3E-B50A-BB7022654D0F}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
"{90120000-001F-041B-0000-0000000FF1CE}" = Microsoft Office Proof (Slovak) 2007
"{90120000-001F-041B-0000-0000000FF1CE}_ENTERPRISE_{FDF9A959-241A-4662-A8DE-7DED9C22D160}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
"{90120000-002C-0405-0000-0000000FF1CE}" = Microsoft Office Proofing (Czech) 2007
"{90120000-0030-0000-0000-0000000FF1CE}" = Microsoft Office Enterprise 2007
"{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0044-0405-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (Czech) 2007
"{90120000-0044-0405-0000-0000000FF1CE}_ENTERPRISE_{3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-006E-0405-0000-0000000FF1CE}" = Microsoft Office Shared MUI (Czech) 2007
"{90120000-006E-0405-0000-0000000FF1CE}_ENTERPRISE_{A0AAD4D5-9F9C-49BB-AB64-0FD4695424E8}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-00A1-0405-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (Czech) 2007
"{90120000-00A1-0405-0000-0000000FF1CE}_ENTERPRISE_{3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-00BA-0405-0000-0000000FF1CE}" = Microsoft Office Groove MUI (Czech) 2007
"{90120000-00BA-0405-0000-0000000FF1CE}_ENTERPRISE_{3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90140000-2005-0000-0000-0000000FF1CE}" = Microsoft Office File Validation Add-In
"{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033" = Microsoft .NET Framework 4.5.2
"{95120000-00B9-0409-0000-0000000FF1CE}" = Microsoft Application Error Reporting
"{96964F94-91D3-B017-3808-7D1EC0867EB9}" = AMD Media Foundation Decoders
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{9BCE0A8E-F915-A665-7780-F5A32B4DE81F}" = AMD Fuel
"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
"{9ED72246-E35D-4B03-8369-605E82465A29}" = Emergency Download Driver
"{9EF417DB-7CAE-E311-06EE-DB828439677C}" = Catalyst Control Center Localization All
"{A0B1E1BF-BEF5-4748-800B-E54ED9CDF8CE}" = WinUSB Drivers ext
"{A25FF1C0-80B6-4B8B-A551-DC525697A408}" = AMD APP SDK Runtime
"{A3DFAD3C-B56A-AB74-7772-D7B42D4BE04D}" = Catalyst Control Center InstallProxy
"{ABD79E99-F9E3-413B-8D18-11070754355F}" = NI Math Kernel Libraries
"{ac474156-361a-4a7b-8b6e-977781b92565}" = Microsoft Visual C++ 2005 Redistributable
"{AD7B5622-C999-C9C8-26E4-6EEAFEC3065C}" = Catalyst Control Center Graphics Previews Common
"{B175520C-86A2-35A7-8619-86DC379688B9}" = Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030
"{B18BEB15-A9DA-43D7-BAE1-C6C67484C2C0}" = ESU for Microsoft Windows 7 SP1
"{B1BC0AC7-EFC8-930E-474E-6EE4FAD46367}" = CCC Help Chinese Standard
"{B1E51748-B432-20BF-D875-5BE7FCB9DD0C}" = CCC Help Polish
"{B226F936-42E3-402E-8CF8-C1D92F255A17}" = NI Uninstaller
"{B4013E5D-C833-4C8D-A942-AD7BBDFD9389}" = Autodesk Vault 2009 (Client)
"{B7D4B08A-9D89-4369-B51C-92CF8C03D2F8}" = WinUsb CoInstallers
"{B86CCC49-ED61-F1C2-47E2-9A817FAAABC8}" = CCC Help Thai
"{BD95A8CD-1D9F-35AD-981A-3E7925026EBB}" = Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030
"{BE95841B-D741-4B72-B79B-1EC61240F10E}" = NI Service Locator
"{C0FF3C38-FC96-4575-8A7B-89DDA3F9C79D}" = NI Update Service
"{C1594429-8296-4652-BF54-9DBE4932A44C}" = Realtek PCIE Card Reader
"{C376EBB6-4079-197E-1A15-005FDA8CACB3}" = CCC Help Chinese Traditional
"{C3A32068-8AB1-4327-BB16-BED9C6219DC7}" = Qualcomm Atheros Driver Installation Program
"{CC2422C9-F7B5-4175-B295-5EC2283AA674}" = Command & Conquer™ 3: Kane's Wrath
"{CC5878A9-FB51-90A0-633E-65123F136283}" = AMD VISION Engine Control Center
"{CCF298AF-9CE1-4B26-B251-486E98A34789}" = Windows 7 USB/DVD Download Tool
"{CDC1661D-4EEC-E4A8-4B57-96C89E97DAD7}" = CCC Help Norwegian
"{CFB4E432-A339-1D85-1B5D-98572E65DE95}" = CCC Help French
"{CFEF48A8-BFB8-3EAC-8BA5-DE4F8AA267CE}" = Microsoft .NET Framework 4 Multi-Targeting Pack
"{CFF55EAB-5A2F-4A95-99D4-EF3E585F03FD}" = NI Logos XT Support
"{D265C4DB-8F68-4264-BA9C-BCEFF134A8B8}" = NI Circuit Design Suite 11.0.1 Pro Licenses
"{D361B9E5-E918-48CB-BEC3-8E44A5F6E624}" = NI LabVIEW 2009 SP1 Run-Time Engine Web Services
"{D581FB60-4827-4AB0-9BF0-A1159C1D0579}" = NI License Manager
"{DB2C5648-700D-4AEF-83E1-70C72F0C34FA}" = NI Math Kernel Libraries
"{DDEDAF6C-488E-4CDA-8276-1CCF5F3C5C32}" = Command & Conquer 3
"{DF901456-7160-49DB-977B-0E91858CA2CB}" = Project My Screen App
"{E37CCD6C-56C1-43C7-B2FA-24A32B6B09F7}" = NI Example Finder 9.0
"{E3E71D07-CD27-46CB-8448-16D4FB29AA13}" = Microsoft WSE 3.0 Runtime
"{E60E35BD-8A1F-3CF9-5EB7-49DF5FACE9AD}" = CCC Help Korean
"{EB4CD629-A912-6D02-B562-C43EFED96680}" = CCC Help Turkish
"{EC8BF669-EFEA-40D9-8894-9074E407FC07}" = NI VC2008MSMs x86
"{ECC3713C-08A4-40E3-95F1-7D0704F1CE5E}" = PL-2303 USB-to-Serial
"{ED5776D5-59B4-46B7-AF81-5F2D94D7C640}" = Cisco PEAP Module
"{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219
"{F11F2CA2-F45F-4CC2-8962-28A0F5DC625A}" = NI Update Service Full
"{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver
"{F28D6E4E-EA52-49F5-B5E8-EDA4F380F83A}" = NI DN 2.0 installer
"{F30403FF-0146-4633-AAC5-D5CD5C50AE70}" = Catalyst Control Center - Branding
"{F3E9C243-122E-4D6B-ACC1-E1FEC02F6CA1}" = Command and ConquerTM Generals Zero Hour
"{F4F82474-C548-2814-32FD-34D372AC189E}" = CCC Help Italian
"{F543B0F9-D1F9-25D1-993C-8430BEC9D889}" = Catalyst Control Center InstallProxy
"{FE24BCDF-9231-450D-AA08-D3550B81EE41}" = NI LabVIEW Web Server for Run-Time Engine
"{FEFA778A-05D2-4D0F-80A3-7AE24B8161C0}" = NI LabVIEW Web Server for Run-Time Engine
"{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022
"9E24492CE9279512BD465F61DB8523641BB7BBFC" = Windows Driver Package - FTDI CDM Driver Package - Bus/D2XX Driver (01/18/2013 2.08.28)
"AOEMView 2009" = AOEMView 2009
"Arduino" = Arduino
"AutoCAD Mechanical 2009" = AutoCAD Mechanical 2009
"Autodesk Design Review 2009" = Autodesk Design Review 2009
"Autodesk Inventor Professional 2009" = Autodesk Inventor Professional 2009
"Autodesk Vault 2009 (Client)" = Autodesk Vault 2009 (Client)
"Battle.net" = Battle.net
"Bloody3" = Bloody5
"Connectify" = Connectify
"Driver Magician_is1" = Driver Magician 4.1
"DWG TrueView 2009" = DWG TrueView 2009
"E61B77ECE57113AE1CA028BC7A8AD6C137BD13DD" = Windows Driver Package - FTDI CDM Driver Package - VCP Driver (01/18/2013 2.08.28)
"EAGLE 5.3.0" = EAGLE 5.3.0
"Ego-n Asistent 2_is1" = Ego-n Asistent 2.1.20
"ENTERPRISE" = Microsoft Office Enterprise 2007
"Foxit Reader_is1" = Foxit Reader
"Glary Utilities 4" = Glary Utilities PRO 4.10
"Google Chrome" = Google Chrome
"HC51 9.60PL0" = HI-TECH C51-lite V9.60PL0
"Malwarebytes Anti-Malware_is1" = Malwarebytes Anti-Malware verze 2.0.4.1028
"Microsoft Team Foundation Server 2010 Object Model - ENU" = Microsoft Team Foundation Server 2010 Object Model - ENU
"Modena_is1" = Modena 4.1.55.0
"NI Uninstaller" = National Instruments Software
"PDF Editor 4" = PDF Editor 4
"PICC 9.60PL0" = HI-TECH PICC lite V9.60PL0
"PingPlotter Pro" = PingPlotter Pro 3.20p
"PremiumSoft Navicat Lite_is1" = PremiumSoft Navicat Lite 10.0
"PunkBusterSvc" = PunkBuster Services
"RaidCall" = RaidCall
"SynTPDeinstKey" = Synaptics TouchPad Driver
"TeamSpeak 3 Client" = TeamSpeak 3 Client
"TeamViewer 9" = TeamViewer 9
"Tunngle_is1" = Tunngle version Tunngle
"VLC media player" = VLC media player 2.1.3
"WinPcapInst" = WinPcap 4.1.3
"WinRAR archiver" = WinRAR 5.00 (32-bitová verzia)
"Wireshark" = Wireshark 1.12.3 (32-bit)

========== Last 20 Event Log Errors ==========

[ Application Events ]
Error - 17. 2. 2015 2:29:02 | Computer Name = Lukas-PC | Source = WinMgmt | ID = 10
Description =

Error - 17. 2. 2015 2:31:51 | Computer Name = Lukas-PC | Source = Microsoft-Windows-LoadPerf | ID = 3006
Description = Unable to read the performance counter strings defined for the 01B
language ID. The first DWORD in the Data section contains the Win32 error code.

Error - 17. 2. 2015 2:31:51 | Computer Name = Lukas-PC | Source = Microsoft-Windows-LoadPerf | ID = 3006
Description = Unable to read the performance counter strings defined for the 01B
language ID. The first DWORD in the Data section contains the Win32 error code.

Error - 17. 2. 2015 6:51:23 | Computer Name = Lukas-PC | Source = Application Error | ID = 1000
Description = Názov chybovej aplikácie: AUDIODG.EXE, verzia: 6.1.7601.17514, časová
značka: 0x4ce7a278 Názov chybového modulu: ntdll.dll, verzia: 6.1.7601.18247, časová
značka: 0x521ea91c Kód výnimky: 0xc0000005 Odstup chyby: 0x00035ad6 Identifikácia
chybného procesu: 0x4c8 Čas spustenia chybnej aplikácie: 0x01d04a7ac7b6ddde Cesta
chybnej aplikácie: C:\Windows\system32\AUDIODG.EXE Cesta chybného modulu: C:\Windows\SYSTEM32\ntdll.dll
Identifikácia
hlásenia: e9592f93-b692-11e4-92d3-9cb70d07ed4b

Error - 17. 2. 2015 7:14:25 | Computer Name = Lukas-PC | Source = Microsoft-Windows-LoadPerf | ID = 3006
Description = Unable to read the performance counter strings defined for the 01B
language ID. The first DWORD in the Data section contains the Win32 error code.

Error - 17. 2. 2015 7:14:25 | Computer Name = Lukas-PC | Source = Microsoft-Windows-LoadPerf | ID = 3006
Description = Unable to read the performance counter strings defined for the 01B
language ID. The first DWORD in the Data section contains the Win32 error code.

Error - 17. 2. 2015 7:31:13 | Computer Name = Lukas-PC | Source = Winlogon | ID = 4103
Description = Aktivácia licencie systému Windows zlyhala. Chyba: 0x80070005.

Error - 17. 2. 2015 7:32:50 | Computer Name = Lukas-PC | Source = WinMgmt | ID = 10
Description =

Error - 17. 2. 2015 7:37:02 | Computer Name = Lukas-PC | Source = Microsoft-Windows-LoadPerf | ID = 3006
Description = Unable to read the performance counter strings defined for the 01B
language ID. The first DWORD in the Data section contains the Win32 error code.

Error - 17. 2. 2015 7:37:02 | Computer Name = Lukas-PC | Source = Microsoft-Windows-LoadPerf | ID = 3006
Description = Unable to read the performance counter strings defined for the 01B
language ID. The first DWORD in the Data section contains the Win32 error code.

[ System Events ]
Error - 16. 3. 2015 13:21:06 | Computer Name = Lukas-PC | Source = DCOM | ID = 10010
Description =

Error - 16. 3. 2015 13:21:51 | Computer Name = Lukas-PC | Source = Service Control Manager | ID = 7026
Description = Nasledujúce ovládače pre spustenie zavedenia alebo spustenie systému
zlyhali pri načítaní: cdrom

Error - 16. 3. 2015 13:22:46 | Computer Name = Lukas-PC | Source = DCOM | ID = 10001
Description =

Error - 16. 3. 2015 13:36:08 | Computer Name = Lukas-PC | Source = DCOM | ID = 10010
Description =

Error - 16. 3. 2015 13:36:58 | Computer Name = Lukas-PC | Source = Service Control Manager | ID = 7026
Description = Nasledujúce ovládače pre spustenie zavedenia alebo spustenie systému
zlyhali pri načítaní: cdrom

Error - 16. 3. 2015 14:09:25 | Computer Name = Lukas-PC | Source = Service Control Manager | ID = 7031
Description = Služba Connectify sa neočakávane ukončila. Služba sa týmto spôsobom
ukončila už 1 krát. O 10000 ms bude vykonaná nasledujúca opravná akcia: Reštartovať
službu.

Error - 16. 3. 2015 14:23:07 | Computer Name = Lukas-PC | Source = Service Control Manager | ID = 7030
Description = Služba PEVSystemStart je označená ako interaktívna služba. Systém
je však nakonfigurovaný tak, aby nepovolil interaktívne služby. Služba pravdepodobne
nebude pracovať správne.

Error - 16. 3. 2015 14:26:31 | Computer Name = Lukas-PC | Source = Service Control Manager | ID = 7030
Description = Služba PEVSystemStart je označená ako interaktívna služba. Systém
je však nakonfigurovaný tak, aby nepovolil interaktívne služby. Služba pravdepodobne
nebude pracovať správne.

Error - 16. 3. 2015 14:31:04 | Computer Name = Lukas-PC | Source = EventLog | ID = 6008
Description = The previous system shutdown at 19:29:38 on ?16. ?3. ?2015 was unexpected.

Error - 16. 3. 2015 14:31:15 | Computer Name = Lukas-PC | Source = Service Control Manager | ID = 7026
Description = Nasledujúce ovládače pre spustenie zavedenia alebo spustenie systému
zlyhali pri načítaní: cdrom


< End of report >

Re: Poprosim o kontrolu logu - Pomalsi notebook, pomalsi chr

Napsal: 16 bře 2015 20:10
od lukasjanra
OTL logfile created on: 16. 3. 2015 19:42:40 - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = D:\Prevzaté súbory
Enterprise Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.11.9600.17691)
Locale: 0000041b | Country: Slovenská republika | Language: SKY | Date Format: d. M. yyyy

3,25 Gb Total Physical Memory | 1,69 Gb Available Physical Memory | 51,97% Memory free
6,49 Gb Paging File | 4,78 Gb Available in Paging File | 73,66% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 55,90 Gb Total Space | 11,73 Gb Free Space | 20,98% Space Free | Partition Type: NTFS
Drive D: | 380,39 Gb Total Space | 322,91 Gb Free Space | 84,89% Space Free | Partition Type: NTFS
Drive F: | 85,37 Gb Total Space | 70,07 Gb Free Space | 82,08% Space Free | Partition Type: NTFS

Computer Name: LUKAS-PC | User Name: Lukas | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

========== Processes (SafeList) ==========

PRC - [2015/03/16 19:41:16 | 000,602,112 | ---- | M] (OldTimer Tools) -- D:\Prevzaté súbory\OTL.exe
PRC - [2015/03/07 07:13:08 | 000,809,288 | ---- | M] (Google Inc.) -- C:\Program Files\Google\Chrome\Application\chrome.exe
PRC - [2015/02/09 18:56:21 | 005,249,808 | ---- | M] (TeamViewer GmbH) -- C:\Program Files\TeamViewer\Version9\TeamViewer_Service.exe
PRC - [2015/02/03 04:11:35 | 000,100,864 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\audiodg.exe
PRC - [2014/10/01 14:40:28 | 001,349,576 | ---- | M] (ESET) -- C:\Program Files\ESET\ESET Smart Security\ekrn.exe
PRC - [2014/10/01 14:40:14 | 005,088,456 | ---- | M] (ESET) -- C:\Program Files\ESET\ESET Smart Security\egui.exe
PRC - [2014/09/13 16:30:35 | 013,969,920 | ---- | M] () -- C:\Program Files\Bloody5\Bloody5\Bloody5.exe
PRC - [2014/08/21 20:42:40 | 000,093,184 | ---- | M] (Hewlett-Packard Company) -- C:\Program Files\Hewlett-Packard\HP Support Framework\HPSA_Service.exe
PRC - [2014/08/17 17:02:37 | 009,238,472 | ---- | M] (TeamSpeak Systems GmbH) -- D:\Program Files\TeamSpeak 3 Client\ts3client_win32.exe
PRC - [2014/08/01 10:38:18 | 000,204,576 | ---- | M] (Microsoft) -- C:\Program Files\Softland\novaPDF 8\Server\novapdfs.exe
PRC - [2014/06/06 14:23:17 | 000,049,152 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\taskhost.exe
PRC - [2014/05/14 13:05:44 | 006,688,472 | ---- | M] (Realtek Semiconductor) -- C:\Program Files\Realtek\Audio\HDA\RtkNGUI.exe
PRC - [2014/05/13 19:25:28 | 001,013,616 | ---- | M] (Realtek Semiconductor) -- C:\Program Files\Realtek\Audio\HDA\RtHDVBg.exe
PRC - [2014/01/08 13:12:54 | 000,251,096 | ---- | M] (Realtek Semiconductor) -- C:\Program Files\Realtek\Audio\HDA\RtkAudioService.exe
PRC - [2013/11/05 21:07:42 | 002,770,208 | ---- | M] (Connectify) -- C:\Program Files\Connectify\Connectifyd.exe
PRC - [2013/11/05 21:07:02 | 000,487,936 | ---- | M] (Connectify) -- C:\Program Files\Connectify\ConnectifyService.exe
PRC - [2013/10/08 12:22:04 | 000,794,272 | ---- | M] () -- D:\Prevzaté súbory\CoreTemp32\Core Temp.exe
PRC - [2013/08/02 01:52:57 | 000,271,360 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\conhost.exe
PRC - [2011/07/05 23:08:40 | 000,401,408 | ---- | M] (AMD) -- C:\Windows\System32\atieclxx.exe
PRC - [2011/07/05 23:08:16 | 000,176,128 | ---- | M] (AMD) -- C:\Windows\System32\atiesrxx.exe
PRC - [2011/07/05 11:26:02 | 000,294,400 | ---- | M] (Advanced Micro Devices, Inc.) -- C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
PRC - [2011/05/09 17:28:38 | 000,146,592 | ---- | M] (Atheros) -- C:\Program Files\Bluetooth Suite\Ath_CoexAgent.exe
PRC - [2011/05/09 17:27:06 | 000,076,960 | ---- | M] (Atheros Commnucations) -- C:\Program Files\Bluetooth Suite\AdminService.exe
PRC - [2011/02/25 06:30:54 | 002,616,320 | ---- | M] (Microsoft Corporation) -- C:\Windows\explorer.exe
PRC - [2010/03/10 09:17:10 | 000,358,448 | ---- | M] (National Instruments Corporation) -- D:\Program Files\National Instruments\Shared\Security\nidmsrv.exe
PRC - [2010/03/10 09:17:04 | 000,053,808 | ---- | M] (National Instruments Corporation) -- C:\Windows\System32\lktsrv.exe
PRC - [2010/03/10 09:17:02 | 000,043,056 | ---- | M] (National Instruments Corporation) -- C:\Windows\System32\lkads.exe
PRC - [2009/11/17 17:15:08 | 000,087,968 | ---- | M] (Andrea Electronics Corporation) -- C:\Program Files\Realtek\Audio\HDA\AERTSrv.exe
PRC - [2009/10/20 09:00:22 | 000,013,896 | ---- | M] (National Instruments Corporation) -- C:\Windows\System32\nisvcloc.exe
PRC - [2009/09/29 11:56:52 | 000,695,136 | ---- | M] (National Instruments, Inc.) -- C:\Windows\System32\lkcitdl.exe
PRC - [2009/07/14 02:14:24 | 000,157,184 | ---- | M] (Microsoft Corporation) -- c:\Program Files\Windows Defender\MpCmdRun.exe
PRC - [2000/01/01 01:00:00 | 001,816,064 | ---- | M] (Realsil Microelectronics Inc.) -- C:\Program Files\Realtek\Realtek PCIE Card Reader\RIconMan.exe


========== Modules (No Company Name) ==========

MOD - [2015/03/07 07:13:04 | 009,279,304 | ---- | M] () -- C:\Program Files\Google\Chrome\Application\41.0.2272.89\pdf.dll
MOD - [2015/03/07 07:12:59 | 001,174,856 | ---- | M] () -- C:\Program Files\Google\Chrome\Application\41.0.2272.89\libglesv2.dll
MOD - [2015/03/07 07:12:57 | 000,080,200 | ---- | M] () -- C:\Program Files\Google\Chrome\Application\41.0.2272.89\libegl.dll
MOD - [2015/01/14 06:34:10 | 017,207,296 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\mscorlib\d1265d6159ea876f9d63ea4c1361b587\mscorlib.ni.dll
MOD - [2014/11/12 18:31:42 | 000,774,144 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Runtime.Remo#\875c35969785fa170d186e7ca546ac9e\System.Runtime.Remoting.ni.dll
MOD - [2014/10/18 10:07:24 | 000,240,128 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\WindowsFormsIntegra#\b20319dfb7dd671d2de2f383cd2551ce\WindowsFormsIntegration.ni.dll
MOD - [2014/10/18 10:04:14 | 002,297,344 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Core\e3641fa3359f37ad12c84183ce765093\System.Core.ni.dll
MOD - [2014/10/15 09:49:21 | 000,368,128 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\7b22741531a2850c807656d0298a96bd\PresentationFramework.Aero.ni.dll
MOD - [2014/10/15 09:49:06 | 011,922,944 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Web\b248199be3dcc29e409648fb3d59b93d\System.Web.ni.dll
MOD - [2014/10/15 09:48:21 | 014,340,096 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\1f539baa94516139240877cb6afd72c2\PresentationFramework.ni.dll
MOD - [2014/10/15 09:47:57 | 012,435,968 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\1453d9e9a4989833ef3db4b22549ba1a\System.Windows.Forms.ni.dll
MOD - [2014/10/15 09:47:49 | 001,593,344 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Drawing\836e10dfd0811b303553216f5cb092ef\System.Drawing.ni.dll
MOD - [2014/10/15 09:47:44 | 005,467,648 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Xml\d49908aa93a23c84847b1f8b1b667860\System.Xml.ni.dll
MOD - [2014/10/15 09:47:41 | 000,978,432 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Configuration\237d509a79aeef6e4635b09450d98f2a\System.Configuration.ni.dll
MOD - [2014/10/15 09:47:39 | 012,236,800 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\PresentationCore\3d4f835b8078dacc8d5da623e2c3f0ee\PresentationCore.ni.dll
MOD - [2014/10/15 09:47:28 | 003,348,480 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\WindowsBase\d97a5aa0eb7697aca7c6e90ae471af2b\WindowsBase.ni.dll
MOD - [2014/10/15 09:47:22 | 007,991,808 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System\908ba9e296e92b4e14bdc2437edac603\System.ni.dll
MOD - [2014/09/13 16:30:35 | 013,969,920 | ---- | M] () -- C:\Program Files\Bloody5\Bloody5\Bloody5.exe
MOD - [2014/09/11 08:56:08 | 000,060,928 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\UIAutomationProvider\999c911e76788a9129049c062707dcec\UIAutomationProvider.ni.dll
MOD - [2014/09/11 08:55:29 | 011,497,984 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dll
MOD - [2014/08/17 17:02:37 | 000,484,808 | ---- | M] () -- D:\Program Files\TeamSpeak 3 Client\plugins\teamspeak_control_plugin.dll
MOD - [2014/08/17 17:02:37 | 000,477,128 | ---- | M] () -- D:\Program Files\TeamSpeak 3 Client\plugins\clientquery_plugin.dll
MOD - [2014/08/17 17:02:37 | 000,105,416 | ---- | M] () -- D:\Program Files\TeamSpeak 3 Client\soundbackends\windowsaudiosession_win32.dll
MOD - [2014/08/17 17:02:37 | 000,092,104 | ---- | M] () -- D:\Program Files\TeamSpeak 3 Client\soundbackends\directsound_win32.dll
MOD - [2014/06/06 19:16:35 | 000,007,680 | ---- | M] () -- C:\Users\Lukas\AppData\Local\Microsoft\Windows Sidebar\Gadgets\CoreTempGadget2.7.gadget\SystemInfo.dll
MOD - [2014/06/06 19:16:34 | 000,008,704 | ---- | M] () -- C:\Users\Lukas\AppData\Local\Microsoft\Windows Sidebar\Gadgets\CoreTempGadget2.7.gadget\GetCoreTempInfoNET.dll
MOD - [2014/06/06 19:16:34 | 000,006,144 | ---- | M] () -- C:\Users\Lukas\AppData\Local\Microsoft\Windows Sidebar\Gadgets\CoreTempGadget2.7.gadget\CoreTempReader.dll
MOD - [2014/02/28 14:33:58 | 000,148,480 | ---- | M] () -- D:\Program Files\TeamSpeak 3 Client\quazip.dll
MOD - [2014/02/27 14:46:38 | 000,864,768 | ---- | M] () -- D:\Program Files\TeamSpeak 3 Client\platforms\qwindows.dll
MOD - [2014/02/27 14:46:16 | 000,123,904 | ---- | M] () -- D:\Program Files\TeamSpeak 3 Client\accessible\qtaccessiblewidgets.dll
MOD - [2014/02/27 14:46:12 | 000,025,600 | ---- | M] () -- D:\Program Files\TeamSpeak 3 Client\imageformats\qgif.dll
MOD - [2014/02/27 14:46:02 | 000,242,688 | ---- | M] () -- D:\Program Files\TeamSpeak 3 Client\imageformats\qjpeg.dll
MOD - [2014/02/27 14:45:52 | 000,677,376 | ---- | M] () -- D:\Program Files\TeamSpeak 3 Client\sqldrivers\qsqlite.dll
MOD - [2014/01/10 17:48:41 | 004,260,352 | ---- | M] () -- C:\Program Files\Bloody5\Bloody5\Data\RES\Forms\Internet_Advertisement\Internet_Advertisement_DLL.dll
MOD - [2013/10/08 12:22:04 | 000,794,272 | ---- | M] () -- D:\Prevzaté súbory\CoreTemp32\Core Temp.exe
MOD - [2013/04/03 18:29:03 | 000,085,504 | ---- | M] () -- C:\Program Files\Bloody5\Bloody5\Dll\DLL_ZoomControl.dll
MOD - [2011/07/11 11:26:15 | 000,096,768 | ---- | M] () -- D:\Program Files\TeamSpeak 3 Client\plugins\TS3_AntiMove.dll
MOD - [2011/07/05 11:26:08 | 000,095,232 | ---- | M] () -- C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Proxy.Native.dll
MOD - [2011/07/05 11:13:56 | 000,243,712 | ---- | M] () -- C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLI.Aspect.CrossDisplay.Graphics.Dashboard.dll
MOD - [2011/06/17 13:42:56 | 000,016,384 | ---- | M] () -- C:\Program Files\ATI Technologies\ATI.ACE\Branding\Branding.dll
MOD - [2009/07/14 02:15:45 | 000,364,544 | ---- | M] () -- C:\Windows\System32\msjetoledb40.dll


========== Services (SafeList) ==========

SRV - [2015/02/20 02:56:53 | 000,102,912 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\IEEtwCollector.exe -- (IEEtwCollectorService)
SRV - [2015/02/09 18:56:21 | 005,249,808 | ---- | M] (TeamViewer GmbH) [Auto | Running] -- C:\Program Files\TeamViewer\Version9\TeamViewer_Service.exe -- (TeamViewer9)
SRV - [2014/12/11 10:30:48 | 000,315,496 | R--- | M] (Skype Technologies) [Auto | Stopped] -- C:\Program Files\Skype\Updater\Updater.exe -- (SkypeUpdate)
SRV - [2014/11/04 12:09:24 | 000,762,320 | ---- | M] (Tunngle.net GmbH) [On_Demand | Stopped] -- C:\Program Files\Tunngle\TnglCtrl.exe -- (TunngleService)
SRV - [2014/10/01 14:40:28 | 001,349,576 | ---- | M] (ESET) [Auto | Running] -- C:\Program Files\ESET\ESET Smart Security\ekrn.exe -- (ekrn)
SRV - [2014/08/21 20:42:40 | 000,093,184 | ---- | M] (Hewlett-Packard Company) [Auto | Running] -- C:\Program Files\Hewlett-Packard\HP Support Framework\HPSA_Service.exe -- (HP Support Assistant Service)
SRV - [2014/08/01 10:38:18 | 000,204,576 | ---- | M] (Microsoft) [Auto | Running] -- C:\Program Files\Softland\novaPDF 8\Server\novapdfs.exe -- (NovaPdfServer)
SRV - [2014/06/19 17:56:09 | 001,343,400 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\Wat\WatAdminSvc.exe -- (WatAdminSvc)
SRV - [2014/06/10 07:17:02 | 000,079,360 | ---- | M] (Autodesk) [On_Demand | Stopped] -- C:\Program Files\Common Files\Autodesk Shared\Service\AdskScSrv.exe -- (Autodesk Licensing Service)
SRV - [2014/01/08 13:12:54 | 000,251,096 | ---- | M] (Realtek Semiconductor) [Auto | Running] -- C:\Program Files\Realtek\Audio\HDA\RtkAudioService.exe -- (RtkAudioService)
SRV - [2013/11/05 21:07:02 | 000,487,936 | ---- | M] (Connectify) [Auto | Running] -- C:\Program Files\Connectify\ConnectifyService.exe -- (Connectify)
SRV - [2013/05/27 05:57:27 | 000,680,960 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV - [2013/03/01 02:48:58 | 000,118,520 | ---- | M] (Riverbed Technology, Inc.) [On_Demand | Stopped] -- C:\Program Files\WinPcap\rpcapd.exe -- (rpcapd)
SRV - [2011/07/05 23:08:16 | 000,176,128 | ---- | M] (AMD) [Auto | Running] -- C:\Windows\System32\atiesrxx.exe -- (AMD External Events Utility)
SRV - [2011/07/05 11:26:02 | 000,294,400 | ---- | M] (Advanced Micro Devices, Inc.) [Auto | Running] -- C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe -- (AMD FUEL Service)
SRV - [2011/05/09 17:28:38 | 000,146,592 | ---- | M] (Atheros) [Auto | Running] -- C:\Program Files\Bluetooth Suite\Ath_CoexAgent.exe -- (Atheros Bt&Wlan Coex Agent)
SRV - [2011/05/09 17:27:06 | 000,076,960 | ---- | M] (Atheros Commnucations) [Auto | Running] -- C:\Program Files\Bluetooth Suite\AdminService.exe -- (AtherosSvc)
SRV - [2010/05/17 17:18:44 | 001,007,616 | ---- | M] (Macrovision Corporation) [Disabled | Stopped] -- D:\Program Files\National Instruments\Shared\License Manager\Bin\lmgrd.exe -- (NILM License Manager)
SRV - [2010/03/10 09:17:10 | 000,358,448 | ---- | M] (National Instruments Corporation) [Auto | Running] -- D:\Program Files\National Instruments\Shared\Security\nidmsrv.exe -- (NIDomainService)
SRV - [2010/03/10 09:17:04 | 000,053,808 | ---- | M] (National Instruments Corporation) [Auto | Running] -- C:\Windows\System32\lktsrv.exe -- (lkTimeSync)
SRV - [2010/03/10 09:17:02 | 000,043,056 | ---- | M] (National Instruments Corporation) [Auto | Running] -- C:\Windows\System32\lkads.exe -- (lkClassAds)
SRV - [2009/11/17 17:15:08 | 000,087,968 | ---- | M] (Andrea Electronics Corporation) [Auto | Running] -- C:\Program Files\Realtek\Audio\HDA\AERTSrv.exe -- (AERTFilters)
SRV - [2009/10/20 09:00:22 | 000,013,896 | ---- | M] (National Instruments Corporation) [Auto | Running] -- C:\Windows\System32\nisvcloc.exe -- (niSvcLoc)
SRV - [2009/09/29 11:56:52 | 000,695,136 | ---- | M] (National Instruments, Inc.) [Auto | Running] -- C:\Windows\System32\lkcitdl.exe -- (LkCitadelServer)
SRV - [2009/07/14 02:16:13 | 000,025,088 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\sensrsvc.dll -- (SensrSvc)
SRV - [2009/07/14 02:16:12 | 001,004,544 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\PeerDistSvc.dll -- (PeerDistSvc)
SRV - [2000/01/01 01:00:00 | 001,816,064 | ---- | M] (Realsil Microelectronics Inc.) [Auto | Running] -- C:\Program Files\Realtek\Realtek PCIE Card Reader\RIconMan.exe -- (IconMan_R)


========== Driver Services (SafeList) ==========

DRV - File not found [Kernel | On_Demand | Stopped] -- System32\drivers\rdvgkmd.sys -- (VGPU)
DRV - File not found [Kernel | On_Demand | Unknown] -- C:\Users\Lukas\AppData\Local\Temp\mbr.sys -- (mbr)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\Users\Lukas\AppData\Local\Temp\catchme.sys -- (catchme)
DRV - File not found [Kernel | Boot | Stopped] -- System32\drivers\BootDefragDriver.sys -- (BootDefragDriver)
DRV - File not found [Kernel | On_Demand | Running] -- C:\Users\Lukas\AppData\Local\Temp\ALSysIO.sys -- (ALSysIO)
DRV - [2015/02/05 12:34:58 | 000,029,672 | ---- | M] (Connectify) [Kernel | System | Running] -- C:\Windows\System32\drivers\cnnctfy3.sys -- (cnnctfy3)
DRV - [2014/11/09 19:10:20 | 003,310,592 | ---- | M] (Qualcomm Atheros Communications, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\athr.sys -- (athr)
DRV - [2014/10/10 08:59:12 | 000,191,928 | ---- | M] (ESET) [File_System | System | Running] -- C:\Windows\System32\drivers\eamonm.sys -- (eamonm)
DRV - [2014/10/10 08:59:12 | 000,176,448 | ---- | M] (ESET) [Kernel | Auto | Running] -- C:\Windows\System32\drivers\epfw.sys -- (epfw)
DRV - [2014/10/10 08:59:12 | 000,135,296 | ---- | M] (ESET) [Kernel | System | Running] -- C:\Windows\System32\drivers\ehdrv.sys -- (ehdrv)
DRV - [2014/10/10 08:59:12 | 000,051,288 | ---- | M] (ESET) [Kernel | Boot | Running] -- C:\Windows\System32\drivers\epfwwfp.sys -- (epfwwfp)
DRV - [2014/10/10 08:59:12 | 000,037,928 | ---- | M] (ESET) [Kernel | System | Running] -- C:\Windows\System32\drivers\EpfwLWF.sys -- (EpfwLWF)
DRV - [2014/09/10 14:19:12 | 000,074,096 | ---- | M] (FTDI Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\ftser2k.sys -- (FTSER2K)
DRV - [2014/01/31 16:22:16 | 000,077,808 | ---- | M] (FTDI Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\ftdibus.sys -- (FTDIBUS)
DRV - [2013/11/06 04:40:46 | 000,071,400 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\System32\drivers\amd_sata.sys -- (amd_sata)
DRV - [2013/11/06 04:40:46 | 000,035,560 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\System32\drivers\amd_xata.sys -- (amd_xata)
DRV - [2013/10/17 18:02:20 | 000,139,776 | ---- | M] (Prolific Technology Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\ser2pl.sys -- (Ser2plx86)
DRV - [2013/10/02 01:42:31 | 000,049,152 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\TsUsbFlt.sys -- (TsUsbFlt)
DRV - [2013/09/30 15:26:52 | 000,015,688 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\System32\pwdrvio.sys -- (pwdrvio)
DRV - [2013/09/30 15:26:52 | 000,010,320 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\System32\pwdspio.sys -- (pwdspio)
DRV - [2013/03/01 02:48:42 | 000,036,600 | ---- | M] (Riverbed Technology, Inc.) [Kernel | Auto | Running] -- C:\Windows\System32\drivers\npf.sys -- (NPF)
DRV - [2012/08/23 15:46:55 | 000,024,064 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\terminpt.sys -- (terminpt)
DRV - [2012/08/23 15:44:32 | 000,014,848 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\rdpvideominiport.sys -- (RdpVideoMiniport)
DRV - [2011/07/14 06:06:30 | 000,100,880 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\AtihdW73.sys -- (AtiHDAudioService)
DRV - [2011/07/05 23:49:20 | 007,800,832 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\atikmdag.sys -- (amdkmdag)
DRV - [2011/07/05 22:32:02 | 000,245,760 | ---- | M] (Advanced Micro Devices, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\atikmpag.sys -- (amdkmdap)
DRV - [2011/05/09 17:27:18 | 000,243,872 | ---- | M] (Atheros) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\btfilter.sys -- (BtFilter)
DRV - [2011/05/09 17:27:18 | 000,141,088 | ---- | M] (Atheros) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\btath_rcp.sys -- (BTATH_RCP)
DRV - [2011/05/09 17:27:16 | 000,259,232 | ---- | M] (Atheros) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\btath_a2dp.sys -- (BTATH_A2DP)
DRV - [2011/05/09 17:27:16 | 000,175,776 | ---- | M] (Atheros) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\btath_hcrp.sys -- (BTATH_HCRP)
DRV - [2011/05/09 17:27:16 | 000,049,312 | ---- | M] (Atheros) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\btath_lwflt.sys -- (BTATH_LWFLT)
DRV - [2011/05/09 17:27:16 | 000,034,976 | ---- | M] (Atheros) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\btath_flt.sys -- (AthBTPort)
DRV - [2011/05/09 17:27:16 | 000,024,736 | ---- | M] (Atheros) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\btath_bus.sys -- (BTATH_BUS)
DRV - [2010/11/20 22:29:03 | 000,175,360 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\vmbus.sys -- (vmbus)
DRV - [2010/11/20 22:29:03 | 000,112,640 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\tsusbhub.sys -- (tsusbhub)
DRV - [2010/11/20 22:29:03 | 000,077,184 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\Synth3dVsc.sys -- (Synth3dVsc)
DRV - [2010/11/20 22:29:03 | 000,062,464 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\dmvsc.sys -- (dmvsc)
DRV - [2010/11/20 22:29:03 | 000,040,704 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\System32\drivers\vmstorfl.sys -- (storflt)
DRV - [2010/11/20 22:29:03 | 000,035,968 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\winusb.sys -- (WinUsb)
DRV - [2010/11/20 22:29:03 | 000,028,032 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\storvsc.sys -- (storvsc)
DRV - [2010/11/20 22:29:03 | 000,027,264 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\TsUsbGD.sys -- (TsUsbGD)
DRV - [2010/11/20 22:29:03 | 000,017,920 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\VMBusHID.sys -- (VMBusHID)
DRV - [2010/11/20 22:29:03 | 000,005,632 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\vms3cap.sys -- (s3cap)
DRV - [2010/06/18 23:30:12 | 000,014,848 | ---- | M] (Siliten) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\InputFilter_FlexDef2b.sys -- (InputFilter_Hid_FlexDef2b)
DRV - [2010/06/17 16:15:36 | 000,014,392 | ---- | M] (Advanced Micro Devices Inc.) [Kernel | Boot | Running] -- C:\Windows\System32\drivers\AtiPcie.sys -- (AtiPcie)
DRV - [2010/02/18 08:18:22 | 000,037,944 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\amdiox86.sys -- (amdiox86)
DRV - [2009/09/16 07:02:40 | 000,027,136 | ---- | M] (Tunngle.net) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\tap0901t.sys -- (tap0901t)
DRV - [2009/07/14 01:18:07 | 000,017,920 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\WSDPrint.sys -- (WSDPrintDevice)
DRV - [2009/07/14 00:52:10 | 000,014,336 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\vwifimp.sys -- (vwifimp)
DRV - [2009/05/29 09:00:00 | 000,004,096 | ---- | M] () [Kernel | Auto | Running] -- C:\Windows\System32\drivers\cvintdrv.sys -- (cvintdrv)
DRV - [2009/03/18 18:35:40 | 000,026,176 | -H-- | M] (LogMeIn, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\hamachi.sys -- (hamachi)
DRV - [2007/06/29 13:47:34 | 000,034,304 | ---- | M] (AMD, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\AmdLLD.sys -- (AmdLLD)
DRV - [2006/12/05 11:34:42 | 000,507,136 | ---- | M] (PixArt Imaging Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\PFC027.SYS -- (PAC207)
DRV - [2000/01/01 01:00:00 | 000,254,608 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\RtsPStor.sys -- (RSPCIESTOR)
DRV - [2000/01/01 01:00:00 | 000,035,968 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\usbfilter.sys -- (usbfilter)


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========

IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC


IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-19\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}

IE - HKU\S-1-5-20\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}

IE - HKU\S-1-5-21-3686303566-3769288024-1234635627-1000\SOFTWARE\Microsoft\Internet Explorer\Main,DefaultNetProfile = 89547049
IE - HKU\S-1-5-21-3686303566-3769288024-1234635627-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 30 35 65 18 91 81 CF 01 [binary data]
IE - HKU\S-1-5-21-3686303566-3769288024-1234635627-1000\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKU\S-1-5-21-3686303566-3769288024-1234635627-1000\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTer ... ORM=IE8SRC
IE - HKU\S-1-5-21-3686303566-3769288024-1234635627-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

========== FireFox ==========

FF - user.js - File not found

FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=11.25.2: D:\Program Files\Java\jre1.8.0_25\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=11.25.2: D:\Program Files\Java\jre1.8.0_25\bin\plugin2\npjp2.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@raidcall.en/RCplugin: C:\Users\Lukas\AppData\Roaming\raidcall\plugins\nprcplugin.dll (Raidcall)
FF - HKLM\Software\MozillaPlugins\@Skype Technologies S.A..com/Skype Web Plugin: C:\Program Files\SkypeWebPlugin\3.2.0.23388\npSkypeWebPlugin.dll (Skype)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.26.9\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.26.9\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=2.1.3: D:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)

FF - HKEY_LOCAL_MACHINE\software\mozilla\Thunderbird\Extensions\\eplgTb@eset.com: C:\Program Files\ESET\ESET Smart Security\Mozilla Thunderbird

[2014/06/16 20:28:30 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Lukas\AppData\Roaming\mozilla\Extensions
[2015/03/16 19:15:14 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Lukas\AppData\Roaming\mozilla\Firefox\Profiles\nv4lxfal.default\extensions
File not found (No name found) -- C:\USERS\LUKAS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NV4LXFAL.DEFAULT\EXTENSIONS\ADREMOVEEXT@ADREMOVEEXT.NET

========== Chrome ==========

CHR - default_search_provider: (Enabled)
CHR - default_search_provider: search_url =
CHR - default_search_provider: suggest_url =
CHR - plugin: Error reading preferences file
CHR - Extension: No name found = C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.7_0\
CHR - Extension: No name found = C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.12_0\
CHR - Extension: No name found = C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_1\
CHR - Extension: No name found = C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\ecpgkdflcnofdbbkiggklcfmgbnbabhh\1.0_1\
CHR - Extension: No name found = C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\mihcahmgecmbnbcchbopgniflfhgnkff\4.4.0_1\
CHR - Extension: No name found = C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\
CHR - Extension: No name found = C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\pfhpcfcmdcgnfihpggodafhcpghkeagi\1.6_0\
CHR - Extension: No name found = C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\8_0\

O1 HOSTS File: ([2015/03/16 19:31:25 | 000,000,027 | ---- | M]) - C:\Windows\System32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - D:\Program Files\Java\jre1.8.0_25\bin\ssv.dll (Oracle Corporation)
O2 - BHO: (CIESpeechBHO Class) - {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} - C:\Program Files\Bluetooth Suite\IEPlugIn.dll (Atheros Commnucations)
O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - D:\Program Files\Java\jre1.8.0_25\bin\jp2ssv.dll (Oracle Corporation)
O2 - BHO: (HP Network Check Helper) - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll (Hewlett-Packard)
O4 - HKLM..\Run: [egui] C:\Program Files\ESET\ESET Smart Security\egui.exe (ESET)
O4 - HKLM..\Run: [RTHDVCPL] C:\Program Files\Realtek\Audio\HDA\RtkNGUI.exe (Realtek Semiconductor)
O4 - HKLM..\Run: [StartCCC] C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe (Advanced Micro Devices, Inc.)
O4 - HKU\S-1-5-21-3686303566-3769288024-1234635627-1000..\Run: [Bloody2] C:\Program Files\Bloody5\Bloody5\Bloody5.exe ()
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLinkedConnections = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: SoftwareSASGeneration = 1
O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-21-3686303566-3769288024-1234635627-1000\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-21-3686303566-3769288024-1234635627-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O9 - Extra Button: @C:\Program Files\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-103 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe (Hewlett-Packard)
O9 - Extra 'Tools' menuitem : @C:\Program Files\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-102 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe (Hewlett-Packard)
O9 - Extra 'Tools' menuitem : Send by Bluetooth to - {7815BE26-237D-41A8-A98F-F7BD75F71086} - C:\Program Files\Bluetooth Suite\IEPlugIn.dll (Atheros Commnucations)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{79E1F925-4B05-4A5E-BF15-F31F5B24B2F3}: DhcpNameServer = 193.87.174.2 147.175.111.80
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{F4D8337B-723E-46AB-841B-13438E18214F}: DhcpNameServer = 192.168.0.1
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\System32\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\System32\SystemPropertiesPerformance.exe (Microsoft Corporation)
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2009/06/10 22:42:20 | 000,000,024 | ---- | M] () - C:\autoexec.bat -- [ NTFS ]
O32 - AutoRun File - [2015/01/20 10:30:47 | 000,000,024 | ---- | M] () - F:\autoexec.bat -- [ NTFS ]
O34 - HKLM BootExecute: (autocheck autochk *)
O34 - HKLM BootExecute: (BootDefrag.exe)
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = ComFile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)

CREATERESTOREPOINT
Restore point Set: OTL Restore Point

NetSvcs: FastUserSwitchingCompatibility - File not found
NetSvcs: Ias - C:\Windows\System32\ias.dll (Microsoft Corporation)
NetSvcs: Nla - File not found
NetSvcs: Ntmssvc - File not found
NetSvcs: NWCWorkstation - File not found
NetSvcs: Nwsapagent - File not found
NetSvcs: SRService - File not found
NetSvcs: WmdmPmSp - File not found
NetSvcs: LogonHours - File not found
NetSvcs: PCAudit - File not found
NetSvcs: helpsvc - File not found
NetSvcs: uploadmgr - File not found

Drivers32: msacm.l3acm - C:\Windows\System32\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: MSVideo8 - C:\Windows\System32\vfwwdm32.dll (Microsoft Corporation)
Drivers32: vidc.cvid - C:\Windows\System32\iccvid.dll (Radius Inc.)
Drivers32: VIDC.FPS1 - C:\Windows\System32\frapsvid.dll (Beepa P/L)
PhysicalDisk0 MBR saved to C:\PhysicalMBR.bin

========== Files/Folders - Created Within 30 Days ==========

[2015/03/16 19:33:24 | 000,000,000 | ---D | C] -- C:\Windows\temp
[2015/03/16 19:31:27 | 000,000,000 | ---D | C] -- C:\$RECYCLE.BIN
[2015/03/16 19:30:17 | 000,000,000 | ---D | C] -- C:\Users\Lukas\AppData\Local\temp
[2015/03/16 19:21:27 | 000,518,144 | ---- | C] (SteelWerX) -- C:\Windows\SWREG.exe
[2015/03/16 19:21:27 | 000,406,528 | ---- | C] (SteelWerX) -- C:\Windows\SWSC.exe
[2015/03/16 19:21:27 | 000,060,416 | ---- | C] (NirSoft) -- C:\Windows\NIRCMD.exe
[2015/03/16 19:19:55 | 000,000,000 | ---D | C] -- C:\Windows\ERDNT
[2015/03/16 19:18:42 | 000,000,000 | ---D | C] -- C:\Qoobox
[2015/03/16 19:04:38 | 000,000,000 | ---D | C] -- C:\Program Files\IObit
[2015/03/16 15:07:05 | 000,000,000 | ---D | C] -- C:\Users\Lukas\Desktop\LOG MALWARE
[2015/03/16 15:05:17 | 000,114,904 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\MBAMSwissArmy.sys
[2015/03/16 15:05:09 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
[2015/03/16 15:05:04 | 000,075,480 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbamchameleon.sys
[2015/03/16 15:05:04 | 000,051,928 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mwac.sys
[2015/03/16 15:05:04 | 000,023,256 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbam.sys
[2015/03/16 15:05:04 | 000,000,000 | ---D | C] -- C:\Program Files\Malwarebytes Anti-Malware
[2015/03/16 15:05:04 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes
[2015/03/16 09:27:12 | 000,000,000 | ---D | C] -- C:\Program Files\trend micro
[2015/03/15 21:46:19 | 000,000,000 | ---D | C] -- C:\Program Files\Enigma Software Group
[2015/03/15 21:45:50 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Wise Installation Wizard
[2015/03/15 21:20:32 | 000,000,000 | ---D | C] -- C:\ProgramData\Spybot - Search & Destroy
[2015/03/14 13:19:42 | 000,000,000 | ---D | C] -- C:\Program Files\Auto-diagnostika
[2015/03/12 08:57:11 | 000,171,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ubpm.dll
[2015/03/12 08:56:39 | 000,221,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ncrypt.dll
[2015/03/12 08:56:39 | 000,050,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\auditpol.exe
[2015/03/12 08:56:38 | 000,686,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\adtschema.dll
[2015/03/12 08:56:38 | 000,146,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msaudite.dll
[2015/03/12 08:56:38 | 000,060,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msobjs.dll
[2015/03/12 08:56:38 | 000,015,872 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\sspisrv.dll
[2015/03/12 08:56:13 | 002,381,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\win32k.sys
[2015/03/12 08:56:10 | 002,744,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\rdpcorets.dll
[2015/03/12 08:56:10 | 000,221,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\rdpudd.dll
[2015/03/12 08:56:10 | 000,013,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\RdpGroupPolicyExtension.dll
[2015/03/12 08:56:03 | 000,684,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ie4uinit.exe
[2015/03/12 08:56:03 | 000,102,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ieetwcollector.exe
[2015/03/12 08:56:03 | 000,060,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\JavaScriptCollectionAgent.dll
[2015/03/12 08:56:03 | 000,047,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ieetwproxystub.dll
[2015/03/12 08:56:03 | 000,030,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iernonce.dll
[2015/03/12 08:56:02 | 000,710,144 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ieapfltr.dll
[2015/03/12 08:56:02 | 000,667,648 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\MsSpellCheckingFacility.exe
[2015/03/12 08:56:02 | 000,620,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\jscript9diag.dll
[2015/03/12 08:56:02 | 000,418,304 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\dxtmsft.dll
[2015/03/12 08:56:02 | 000,342,696 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iedkcs32.dll
[2015/03/12 08:56:02 | 000,115,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ieUnatt.exe
[2015/03/12 08:56:02 | 000,047,104 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\jsproxy.dll
[2015/03/12 08:56:01 | 002,724,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mshtml.tlb
[2015/03/12 08:56:01 | 000,689,152 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msfeeds.dll
[2015/03/12 08:56:00 | 002,052,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\inetcpl.cpl
[2015/03/12 08:56:00 | 000,168,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msrating.dll
[2015/03/12 08:56:00 | 000,062,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iesetup.dll
[2015/03/12 08:55:59 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ieetwcollectorres.dll
[2015/03/12 08:55:58 | 000,478,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ieui.dll
[2015/03/12 08:55:58 | 000,285,696 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\dxtrans.dll
[2015/03/12 08:55:56 | 001,155,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mshtmlmedia.dll
[2015/03/12 08:55:55 | 000,064,000 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\MshtmlDac.dll
[2015/03/12 08:55:52 | 004,300,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\jscript9.dll
[2015/03/12 08:54:01 | 000,299,008 | ---- | C] (Adobe Systems Incorporated) -- C:\Windows\System32\atmfd.dll
[2015/03/12 08:54:01 | 000,070,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\fontsub.dll
[2015/03/12 08:54:01 | 000,034,304 | ---- | C] (Adobe Systems) -- C:\Windows\System32\atmlib.dll
[2015/03/12 08:54:01 | 000,010,240 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\dciman32.dll
[2015/03/12 08:52:46 | 000,417,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\WMPhoto.dll
[2015/03/12 08:51:41 | 003,209,728 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mf.dll
[2015/03/12 08:51:40 | 003,973,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ntkrnlpa.exe
[2015/03/12 08:51:39 | 003,917,760 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ntoskrnl.exe
[2015/03/12 08:51:38 | 000,521,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\winload.exe
[2015/03/12 08:51:38 | 000,400,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\srcore.dll
[2015/03/12 08:51:37 | 001,329,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\quartz.dll
[2015/03/12 08:51:37 | 000,988,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drmv2clt.dll
[2015/03/12 08:51:37 | 000,744,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\blackbox.dll
[2015/03/12 08:51:37 | 000,519,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\qdvd.dll
[2015/03/12 08:51:37 | 000,262,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\rstrui.exe
[2015/03/12 08:51:36 | 000,617,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wmdrmsdk.dll
[2015/03/12 08:51:36 | 000,489,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\evr.dll
[2015/03/12 08:51:36 | 000,406,016 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drmmgrtn.dll
[2015/03/12 08:51:36 | 000,354,816 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mfplat.dll
[2015/03/12 08:51:35 | 000,504,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msscp.dll
[2015/03/12 08:51:35 | 000,100,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\audiodg.exe
[2015/03/12 08:51:34 | 000,442,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\AUDIOKSE.dll
[2015/03/12 08:51:34 | 000,374,784 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\AudioEng.dll
[2015/03/12 08:51:34 | 000,265,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msnetobj.dll
[2015/03/12 08:51:34 | 000,050,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\rrinstaller.exe
[2015/03/12 08:51:34 | 000,028,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\pcadm.dll
[2015/03/12 08:51:33 | 000,195,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\AudioSes.dll
[2015/03/12 08:51:33 | 000,103,424 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mfps.dll
[2015/03/12 08:51:33 | 000,096,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\appidpolicyconverter.exe
[2015/03/12 08:51:33 | 000,050,688 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\appidapi.dll
[2015/03/12 08:51:33 | 000,023,040 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mfpmp.exe
[2015/03/12 08:51:33 | 000,009,728 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\pcawrk.exe
[2015/03/12 08:51:32 | 000,275,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\EncDump.dll
[2015/03/12 08:51:32 | 000,050,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\setbcdlocale.dll
[2015/03/12 08:51:32 | 000,038,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\csrsrv.dll
[2015/03/12 08:51:32 | 000,016,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\appidcertstorecheck.exe
[2015/03/12 08:51:32 | 000,010,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msmmsp.dll
[2015/03/12 08:51:32 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\pcalua.exe
[2015/03/12 08:51:31 | 000,008,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\pcaevts.dll
[2015/03/12 08:51:31 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\spwmp.dll
[2015/03/12 08:51:31 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\apisetschema.dll
[2015/03/12 08:51:31 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msdxm.ocx
[2015/03/12 08:51:31 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\dxmasf.dll
[2015/03/12 08:51:30 | 012,625,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wmploc.DLL
[2015/03/12 08:51:29 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mferror.dll
[2015/03/04 12:06:16 | 003,711,896 | ---- | C] (ESET) -- C:\Windows\System32\%InstallDir%speclean.exe
[2015/02/28 07:24:34 | 000,000,000 | ---D | C] -- C:\Users\Lukas\AppData\Roaming\raidcall
[2015/02/28 07:23:49 | 000,000,000 | ---D | C] -- C:\Users\Lukas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\RaidCall
[2015/02/28 07:23:49 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RaidCall
[2015/02/28 07:23:38 | 000,000,000 | ---D | C] -- C:\Program Files\RaidCall
[2015/02/26 18:45:07 | 000,000,000 | ---D | C] -- C:\found.000
[2015/02/26 09:30:38 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EAGLE Layout Editor 5.3.0
[2015/02/25 13:09:07 | 000,000,000 | ---D | C] -- C:\Program Files\Qualcomm Atheros
[2015/02/25 13:08:31 | 003,310,592 | ---- | C] (Qualcomm Atheros Communications, Inc.) -- C:\Windows\System32\drivers\athr.sys
[2015/02/25 13:08:31 | 003,310,592 | ---- | C] (Qualcomm Atheros Communications, Inc.) -- C:\Windows\System32\athr.sys
[2015/02/25 13:08:31 | 003,247,104 | ---- | C] (Qualcomm Atheros Communications, Inc.) -- C:\Windows\System32\athwb.sys
[2015/02/24 18:40:39 | 000,000,000 | ---D | C] -- C:\Users\Lukas\AppData\Local\SkypeWebPlugin
[2015/02/24 18:39:33 | 000,000,000 | ---D | C] -- C:\Program Files\SkypeWebPlugin
[2015/02/24 08:01:22 | 000,000,000 | ---D | C] -- C:\Users\Lukas\AppData\Local\gtk-2.0
[2015/02/23 20:31:21 | 000,000,000 | ---D | C] -- C:\Users\Lukas\AppData\Roaming\Wireshark
[2015/02/23 20:21:09 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinPcap
[2015/02/23 20:21:09 | 000,000,000 | ---D | C] -- C:\Program Files\WinPcap
[2015/02/23 20:20:51 | 000,000,000 | ---D | C] -- C:\Program Files\Wireshark
[2015/02/18 17:46:52 | 000,000,000 | ---D | C] -- C:\Users\Lukas\Documents\Visual Studio 2008
[2015/02/18 17:46:22 | 000,000,000 | ---D | C] -- C:\Users\Lukas\Documents\Visual Studio 2010
[2015/02/18 07:41:30 | 000,635,904 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\perftrack.dll
[2015/02/18 07:41:30 | 000,027,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\powertracker.dll
[2015/02/17 16:04:46 | 001,202,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\FM20.DLL
[2015/02/17 12:39:23 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP Help and Support
[2015/02/17 12:39:14 | 000,000,000 | ---D | C] -- C:\Users\Lukas\AppData\Roaming\Hewlett-Packard
[2015/02/17 12:38:11 | 000,000,000 | ---D | C] -- C:\System.sav
[2015/02/17 12:37:06 | 000,000,000 | ---D | C] -- C:\ProgramData\{65AB91D4-DDD0-48D4-804D-C24E1FC90D44}
[2015/02/17 12:34:11 | 000,000,000 | ---D | C] -- C:\HP
[2015/02/15 21:31:55 | 000,000,000 | ---D | C] -- C:\Users\Lukas\AppData\Local\Aquila_Technology
[2015/02/15 21:31:55 | 000,000,000 | ---D | C] -- C:\ProgramData\Aquila Technology
[1 C:\Program Files\*.tmp files -> C:\Program Files\*.tmp -> ]

========== Files - Modified Within 30 Days ==========

[2015/03/16 19:45:26 | 000,000,512 | ---- | M] () -- C:\PhysicalMBR.bin
[2015/03/16 19:35:24 | 000,653,724 | ---- | M] () -- C:\Windows\System32\perfh009.dat
[2015/03/16 19:35:24 | 000,121,596 | ---- | M] () -- C:\Windows\System32\perfc009.dat
[2015/03/16 19:32:23 | 000,000,318 | ---- | M] () -- C:\Windows\tasks\GlaryInitialize 4.job
[2015/03/16 19:31:25 | 000,000,027 | ---- | M] () -- C:\Windows\System32\drivers\etc\hosts
[2015/03/16 19:31:21 | 000,000,920 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2015/03/16 19:31:03 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2015/03/16 19:26:25 | 000,000,924 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2015/03/16 18:43:23 | 000,114,904 | ---- | M] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\MBAMSwissArmy.sys
[2015/03/16 17:15:22 | 000,000,600 | ---- | M] () -- C:\Users\Lukas\AppData\Roaming\winscp.rnd
[2015/03/16 17:14:54 | 000,000,600 | ---- | M] () -- C:\Users\Lukas\AppData\Local\PUTTY.RND
[2015/03/16 15:05:09 | 000,001,064 | ---- | M] () -- C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
[2015/03/16 12:38:54 | 000,030,960 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2015/03/16 12:38:54 | 000,030,960 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2015/03/15 10:14:04 | 000,000,320 | ---- | M] () -- C:\Windows\tasks\HPCeeScheduleForLukas.job
[2015/03/13 17:25:13 | 000,534,712 | ---- | M] () -- C:\Windows\System32\FNTCACHE.DAT
[2015/03/10 17:14:25 | 000,749,871 | ---- | M] () -- C:\Users\Lukas\Desktop\Snímka.PNG
[2015/03/06 06:10:29 | 000,015,872 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\sspisrv.dll
[2015/03/06 06:10:22 | 000,221,184 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\ncrypt.dll
[2015/03/06 06:09:31 | 000,050,176 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\auditpol.exe
[2015/03/06 06:07:50 | 000,060,416 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\msobjs.dll
[2015/03/06 06:07:43 | 000,146,432 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\msaudite.dll
[2015/03/06 06:06:20 | 000,686,080 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\adtschema.dll
[2015/03/04 12:06:16 | 003,711,896 | ---- | M] (ESET) -- C:\Windows\System32\%InstallDir%speclean.exe
[2015/02/28 22:56:41 | 000,261,010 | ---- | M] () -- C:\Users\Lukas\Documents\ts3_clientui-win32-1407159763-2015-02-28 22_56_41.068439.dmp
[2015/02/28 07:23:49 | 000,000,969 | ---- | M] () -- C:\Users\Lukas\Desktop\RaidCall.lnk
[2015/02/26 04:11:26 | 002,381,312 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\win32k.sys
[2015/02/24 08:45:46 | 000,000,218 | ---- | M] () -- C:\Users\Lukas\AppData\Local\recently-used.xbel
[2015/02/24 03:32:46 | 000,342,696 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\iedkcs32.dll
[2015/02/24 03:23:36 | 000,246,920 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\MpSigStub.exe
[2015/02/21 01:27:59 | 000,418,304 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\dxtmsft.dll
[2015/02/21 01:27:55 | 000,285,696 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\dxtrans.dll
[2015/02/20 23:31:35 | 000,007,606 | ---- | M] () -- C:\Users\Lukas\AppData\Local\resmon.resmoncfg
[2015/02/20 05:13:49 | 000,070,656 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\fontsub.dll
[2015/02/20 05:13:46 | 000,010,240 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\dciman32.dll
[2015/02/20 05:13:43 | 000,034,304 | ---- | M] (Adobe Systems) -- C:\Windows\System32\atmlib.dll
[2015/02/20 04:09:16 | 000,299,008 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\System32\atmfd.dll
[2015/02/20 03:22:35 | 002,724,864 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\mshtml.tlb
[2015/02/20 03:22:20 | 000,004,096 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\ieetwcollectorres.dll
[2015/02/20 03:08:59 | 000,062,464 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\iesetup.dll
[2015/02/20 03:08:13 | 000,047,616 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\ieetwproxystub.dll
[2015/02/20 03:06:44 | 000,064,000 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\MshtmlDac.dll
[2015/02/20 03:01:22 | 000,047,104 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\jsproxy.dll
[2015/02/20 03:00:34 | 000,030,720 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\iernonce.dll
[2015/02/20 02:58:14 | 000,478,208 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\ieui.dll
[2015/02/20 02:56:54 | 000,115,712 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\ieUnatt.exe
[2015/02/20 02:56:53 | 000,102,912 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\ieetwcollector.exe
[2015/02/20 02:56:07 | 000,620,032 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\jscript9diag.dll
[2015/02/20 02:50:00 | 000,667,648 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\MsSpellCheckingFacility.exe
[2015/02/20 02:41:52 | 000,060,416 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\JavaScriptCollectionAgent.dll
[2015/02/20 02:37:46 | 000,168,960 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\msrating.dll
[2015/02/20 02:30:39 | 004,300,288 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\jscript9.dll
[2015/02/20 02:24:56 | 000,689,152 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\msfeeds.dll
[2015/02/20 02:24:32 | 000,684,544 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\ie4uinit.exe
[2015/02/20 02:24:21 | 002,052,608 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\inetcpl.cpl
[2015/02/20 02:23:19 | 001,155,072 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\mshtmlmedia.dll
[2015/02/20 01:55:38 | 000,710,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\ieapfltr.dll
[2015/02/17 16:04:46 | 001,202,848 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\FM20.DLL
[2015/02/17 12:39:23 | 000,002,167 | ---- | M] () -- C:\Users\Lukas\Desktop\HP Support Assistant.lnk
[2015/02/16 08:56:45 | 000,001,048 | ---- | M] () -- C:\Users\Public\Desktop\TeamViewer 9.lnk
[1 C:\Program Files\*.tmp files -> C:\Program Files\*.tmp -> ]

========== Files Created - No Company Name ==========

[2015/03/16 19:45:26 | 000,000,512 | ---- | C] () -- C:\PhysicalMBR.bin
[2015/03/16 19:21:27 | 000,256,000 | ---- | C] () -- C:\Windows\PEV.exe
[2015/03/16 19:21:27 | 000,208,896 | ---- | C] () -- C:\Windows\MBR.exe
[2015/03/16 19:21:27 | 000,098,816 | ---- | C] () -- C:\Windows\sed.exe
[2015/03/16 19:21:27 | 000,080,412 | ---- | C] () -- C:\Windows\grep.exe
[2015/03/16 19:21:27 | 000,068,096 | ---- | C] () -- C:\Windows\zip.exe
[2015/03/16 15:05:09 | 000,001,064 | ---- | C] () -- C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
[2015/02/28 22:56:41 | 000,261,010 | ---- | C] () -- C:\Users\Lukas\Documents\ts3_clientui-win32-1407159763-2015-02-28 22_56_41.068439.dmp
[2015/02/28 07:23:49 | 000,000,969 | ---- | C] () -- C:\Users\Lukas\Desktop\RaidCall.lnk
[2015/02/25 13:08:31 | 000,643,925 | ---- | C] () -- C:\Windows\System32\netathr.inf
[2015/02/25 13:08:31 | 000,422,026 | ---- | C] () -- C:\Windows\System32\athwb.inf
[2015/02/25 13:08:31 | 000,094,371 | ---- | C] () -- C:\Windows\System32\athwb.cat
[2015/02/25 13:08:31 | 000,092,290 | ---- | C] () -- C:\Windows\System32\athrext.cat
[2015/02/24 08:45:46 | 000,000,218 | ---- | C] () -- C:\Users\Lukas\AppData\Local\recently-used.xbel
[2015/02/23 20:21:00 | 000,001,700 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wireshark.lnk
[2015/02/18 18:11:25 | 000,000,320 | ---- | C] () -- C:\Windows\tasks\HPCeeScheduleForLukas.job
[2015/02/17 12:39:23 | 000,002,167 | ---- | C] () -- C:\Users\Lukas\Desktop\HP Support Assistant.lnk
[2015/01/10 12:17:12 | 000,022,328 | ---- | C] () -- C:\Windows\System32\drivers\PnkBstrK.sys
[2015/01/10 12:17:12 | 000,022,328 | ---- | C] () -- C:\Users\Lukas\AppData\Roaming\PnkBstrK.sys
[2015/01/10 12:16:53 | 000,103,736 | ---- | C] () -- C:\Windows\System32\PnkBstrB.exe
[2015/01/10 12:16:52 | 000,669,184 | ---- | C] () -- C:\Windows\System32\pbsvc.exe
[2015/01/10 12:16:52 | 000,066,872 | ---- | C] () -- C:\Windows\System32\PnkBstrA.exe
[2014/12/26 18:51:39 | 000,000,000 | ---- | C] () -- C:\Windows\System32\Access.dat
[2014/12/03 12:45:04 | 000,000,040 | ---- | C] () -- C:\ProgramData\ra3.ini
[2014/12/01 20:49:09 | 000,007,606 | ---- | C] () -- C:\Users\Lukas\AppData\Local\resmon.resmoncfg
[2014/11/21 03:33:10 | 000,203,776 | ---- | C] () -- C:\Windows\System32\clinfo.exe
[2014/09/24 07:36:56 | 000,765,851 | ---- | C] () -- C:\Windows\System32\amdicdxx.dat
[2014/09/18 17:22:30 | 000,238,144 | ---- | C] () -- C:\Windows\System32\ativvaxy_cz_nd.dat
[2014/09/14 16:35:49 | 000,538,126 | --S- | C] () -- C:\Windows\System32\libcurl-4.dll
[2014/09/14 16:35:49 | 000,192,512 | --S- | C] () -- C:\Windows\System32\libidn-11.dll
[2014/09/14 16:35:49 | 000,133,632 | --S- | C] () -- C:\Windows\System32\librtmp.dll
[2014/09/14 16:35:49 | 000,100,864 | --S- | C] () -- C:\Windows\System32\zlib1.dll
[2014/09/14 16:29:39 | 000,082,072 | ---- | C] () -- C:\Windows\cadkasdeinst01e.exe
[2014/09/03 20:26:44 | 000,323,252 | ---- | C] () -- C:\Windows\System32\ativvaxy_vi.dat
[2014/09/03 19:40:08 | 000,321,712 | ---- | C] () -- C:\Windows\System32\ativvaxy_vi_nd.dat
[2014/08/29 16:43:10 | 000,158,944 | ---- | C] () -- C:\Windows\System32\ativce03.dat
[2014/08/29 15:08:02 | 000,157,248 | ---- | C] () -- C:\Windows\System32\amde31a.dat
[2014/08/22 13:19:10 | 000,000,981 | ---- | C] () -- C:\Windows\eReg.dat
[2014/08/20 20:35:16 | 000,234,292 | ---- | C] () -- C:\Windows\System32\ativvaxy_cik.dat
[2014/08/20 20:33:04 | 000,232,624 | ---- | C] () -- C:\Windows\System32\ativvaxy_cik_nd.dat
[2014/08/14 18:54:30 | 000,083,312 | ---- | C] () -- C:\Windows\System32\ativce02.dat
[2014/07/13 06:00:20 | 001,589,248 | ---- | C] () -- C:\Windows\System32\libmysql_d.dll
[2014/07/12 18:37:25 | 000,000,600 | ---- | C] () -- C:\Users\Lukas\AppData\Roaming\winscp.rnd
[2014/07/12 18:22:22 | 000,000,600 | ---- | C] () -- C:\Users\Lukas\AppData\Local\PUTTY.RND
[2014/06/29 10:20:26 | 001,099,203 | ---- | C] () -- C:\Windows\System32\drivers\RTAIODAT.DAT
[2014/06/29 09:14:07 | 000,916,480 | ---- | C] () -- C:\Windows\expstart.exe
[2014/06/29 09:06:29 | 000,110,602 | ---- | C] () -- C:\Windows\System32\xcdsfx32.bin
[2014/06/08 20:09:36 | 002,881,848 | ---- | C] () -- C:\Windows\System32\pwNative.exe
[2014/06/08 20:09:36 | 000,015,688 | ---- | C] () -- C:\Windows\System32\pwdrvio.sys
[2014/06/08 20:09:35 | 000,010,320 | ---- | C] () -- C:\Windows\System32\pwdspio.sys
[2014/06/07 08:50:57 | 000,000,000 | -H-- | C] () -- C:\Windows\msds.dat
[2014/06/06 19:51:43 | 000,000,712 | ---- | C] () -- C:\Windows\System32\drivers\RTEQEX0.dat
[2014/06/06 19:51:43 | 000,000,176 | ---- | C] () -- C:\Windows\System32\drivers\RTHDAEQ0.dat
[2014/06/06 16:19:23 | 000,000,000 | ---- | C] () -- C:\Windows\ativpsrm.bin
[2014/04/18 03:22:56 | 000,995,342 | ---- | C] () -- C:\Windows\System32\amdocl_as32.exe
[2014/04/18 03:22:56 | 000,798,734 | ---- | C] () -- C:\Windows\System32\amdocl_ld32.exe
[2013/04/30 03:30:54 | 000,204,952 | ---- | C] () -- C:\Windows\System32\ativvsvl.dat
[2013/04/30 03:30:54 | 000,157,144 | ---- | C] () -- C:\Windows\System32\ativvsva.dat

========== ZeroAccess Check ==========

[2009/07/14 05:42:31 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini

[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]

[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shell32.dll -- [2015/02/13 06:26:18 | 012,875,264 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2010/11/20 22:29:20 | 000,606,208 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
"" = %systemroot%\system32\wbem\wbemess.dll -- [2009/07/14 02:16:17 | 000,342,528 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both

========== LOP Check ==========

[2014/06/11 17:36:00 | 000,000,000 | ---D | M] -- C:\Users\Lukas\AppData\Roaming\Acronis
[2014/06/25 07:25:42 | 000,000,000 | ---D | M] -- C:\Users\Lukas\AppData\Roaming\ActiveDossierUploader
[2014/06/10 07:31:47 | 000,000,000 | ---D | M] -- C:\Users\Lukas\AppData\Roaming\Ansys
[2014/10/13 12:54:06 | 000,000,000 | ---D | M] -- C:\Users\Lukas\AppData\Roaming\Arduino
[2014/06/18 07:59:21 | 000,000,000 | ---D | M] -- C:\Users\Lukas\AppData\Roaming\Autodesk
[2014/08/28 18:20:00 | 000,000,000 | ---D | M] -- C:\Users\Lukas\AppData\Roaming\Awesomium
[2014/08/06 07:19:25 | 000,000,000 | ---D | M] -- C:\Users\Lukas\AppData\Roaming\BatteryBar
[2014/06/20 05:44:30 | 000,000,000 | ---D | M] -- C:\Users\Lukas\AppData\Roaming\Battle.net
[2014/06/07 12:17:04 | 000,000,000 | ---D | M] -- C:\Users\Lukas\AppData\Roaming\C-Free
[2014/09/14 16:29:45 | 000,000,000 | ---D | M] -- C:\Users\Lukas\AppData\Roaming\CAD-KAS
[2015/01/22 12:28:20 | 000,000,000 | ---D | M] -- C:\Users\Lukas\AppData\Roaming\CadSoft
[2014/07/16 21:14:19 | 000,000,000 | ---D | M] -- C:\Users\Lukas\AppData\Roaming\Cargas
[2014/12/11 15:02:15 | 000,000,000 | ---D | M] -- C:\Users\Lukas\AppData\Roaming\Command & Conquer 3 Kane's Wrath
[2014/12/13 17:22:11 | 000,000,000 | ---D | M] -- C:\Users\Lukas\AppData\Roaming\DarknessII
[2015/03/13 17:24:28 | 000,000,000 | ---D | M] -- C:\Users\Lukas\AppData\Roaming\DiskDefrag
[2014/06/16 20:19:14 | 000,000,000 | ---D | M] -- C:\Users\Lukas\AppData\Roaming\Downloaded Installations
[2014/06/29 09:06:29 | 000,000,000 | ---D | M] -- C:\Users\Lukas\AppData\Roaming\Driver Magician
[2014/10/15 17:50:07 | 000,000,000 | ---D | M] -- C:\Users\Lukas\AppData\Roaming\Duplicati
[2014/09/24 09:57:07 | 000,000,000 | ---D | M] -- C:\Users\Lukas\AppData\Roaming\Egon
[2014/06/06 18:59:42 | 000,000,000 | ---D | M] -- C:\Users\Lukas\AppData\Roaming\ESET
[2015/03/15 16:43:25 | 000,000,000 | ---D | M] -- C:\Users\Lukas\AppData\Roaming\FileZilla
[2014/07/28 19:41:45 | 000,000,000 | ---D | M] -- C:\Users\Lukas\AppData\Roaming\Foxit Software
[2014/06/06 14:27:53 | 000,000,000 | ---D | M] -- C:\Users\Lukas\AppData\Roaming\GlarySoft
[2014/09/11 16:19:59 | 000,000,000 | ---D | M] -- C:\Users\Lukas\AppData\Roaming\Internet Explorer
[2015/03/16 19:15:39 | 000,000,000 | ---D | M] -- C:\Users\Lukas\AppData\Roaming\IObit
[2014/06/08 08:21:03 | 000,000,000 | ---D | M] -- C:\Users\Lukas\AppData\Roaming\LolClient
[2014/06/06 20:46:51 | 000,000,000 | ---D | M] -- C:\Users\Lukas\AppData\Roaming\National Instruments
[2014/12/01 21:00:31 | 000,000,000 | ---D | M] -- C:\Users\Lukas\AppData\Roaming\PingPlotter
[2014/11/30 17:48:11 | 000,000,000 | ---D | M] -- C:\Users\Lukas\AppData\Roaming\PowerISO
[2015/02/28 07:24:34 | 000,000,000 | ---D | M] -- C:\Users\Lukas\AppData\Roaming\raidcall
[2014/12/07 16:58:45 | 000,000,000 | ---D | M] -- C:\Users\Lukas\AppData\Roaming\Red Alert 3
[2014/09/14 16:04:25 | 000,000,000 | ---D | M] -- C:\Users\Lukas\AppData\Roaming\Softland
[2014/06/06 18:49:23 | 000,000,000 | ---D | M] -- C:\Users\Lukas\AppData\Roaming\Synaptics
[2015/03/07 17:29:16 | 000,000,000 | ---D | M] -- C:\Users\Lukas\AppData\Roaming\TeamViewer
[2014/10/10 07:28:04 | 000,000,000 | ---D | M] -- C:\Users\Lukas\AppData\Roaming\TightVNC
[2015/03/16 19:39:37 | 000,000,000 | ---D | M] -- C:\Users\Lukas\AppData\Roaming\TS3Client
[2014/12/26 19:08:14 | 000,000,000 | ---D | M] -- C:\Users\Lukas\AppData\Roaming\Tunngle
[2014/09/11 16:23:26 | 000,000,000 | ---D | M] -- C:\Users\Lukas\AppData\Roaming\Universal SQL Editor
[2015/03/15 21:45:58 | 000,000,000 | ---D | M] -- C:\Users\Lukas\AppData\Roaming\uTorrent
[2014/06/06 19:58:53 | 000,000,000 | ---D | M] -- C:\Users\Lukas\AppData\Roaming\WinBatch
[2015/02/24 07:42:23 | 000,000,000 | ---D | M] -- C:\Users\Lukas\AppData\Roaming\Wireshark
[2014/07/13 21:38:47 | 000,000,000 | ---D | M] -- C:\Users\Lukas\AppData\Roaming\YaTQA

========== Purity Check ==========



========== Custom Scans ==========

< >
[2009/07/14 05:53:46 | 000,032,608 | ---- | C] () -- C:\Windows\Tasks\SCHEDLGU.TXT
[2009/07/14 05:53:47 | 000,000,006 | -H-- | C] () -- C:\Windows\Tasks\SA.DAT
[2014/06/06 14:27:53 | 000,000,318 | ---- | C] () -- C:\Windows\Tasks\GlaryInitialize 4.job
[2014/06/06 15:10:57 | 000,000,920 | ---- | C] () -- C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
[2014/06/06 15:10:58 | 000,000,924 | ---- | C] () -- C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
[2014/06/07 12:07:08 | 000,000,378 | ---- | C] () -- C:\Windows\Tasks\GlaryUpdate 4.job
[2015/02/18 18:11:25 | 000,000,320 | ---- | C] () -- C:\Windows\Tasks\HPCeeScheduleForLukas.job

< >

< MD5 for: ATAPI.SYS >
[2009/07/14 02:26:15 | 000,021,584 | ---- | M] (Microsoft Corporation) MD5=338C86357871C167A96AB976519BF59E -- C:\Windows\ERDNT\cache\atapi.sys
[2009/07/14 02:26:15 | 000,021,584 | ---- | M] (Microsoft Corporation) MD5=338C86357871C167A96AB976519BF59E -- C:\Windows\System32\drivers\atapi.sys
[2009/07/14 02:26:15 | 000,021,584 | ---- | M] (Microsoft Corporation) MD5=338C86357871C167A96AB976519BF59E -- C:\Windows\System32\DriverStore\FileRepository\mshdc.inf_x86_neutral_a5025d31bee4647c\atapi.sys
[2009/07/14 02:26:15 | 000,021,584 | ---- | M] (Microsoft Corporation) MD5=338C86357871C167A96AB976519BF59E -- C:\Windows\System32\DriverStore\FileRepository\mshdc.inf_x86_neutral_fab873f3e8a3315c\atapi.sys
[2009/07/14 02:26:15 | 000,021,584 | ---- | M] (Microsoft Corporation) MD5=338C86357871C167A96AB976519BF59E -- C:\Windows\winsxs\x86_mshdc.inf_31bf3856ad364e35_6.1.7601.17514_none_df3f92057fcbe7a7\atapi.sys
[2009/07/14 02:26:15 | 000,021,584 | ---- | M] (Microsoft Corporation) MD5=338C86357871C167A96AB976519BF59E -- C:\Windows\winsxs\x86_mshdc.inf_31bf3856ad364e35_6.1.7601.18231_none_df26d4d57fdef5b0\atapi.sys
[2009/07/14 02:26:15 | 000,021,584 | ---- | M] (Microsoft Corporation) MD5=338C86357871C167A96AB976519BF59E -- C:\Windows\winsxs\x86_mshdc.inf_31bf3856ad364e35_6.1.7601.22414_none_dfc9143c98e9a6c4\atapi.sys

< MD5 for: AUTOCHK.EXE >
[2010/11/20 22:29:06 | 000,668,160 | ---- | M] (Microsoft Corporation) MD5=F88A52EB62019D6A62FDD9E08034DBD8 -- C:\Windows\System32\autochk.exe
[2010/11/20 22:29:06 | 000,668,160 | ---- | M] (Microsoft Corporation) MD5=F88A52EB62019D6A62FDD9E08034DBD8 -- C:\Windows\winsxs\x86_microsoft-windows-autochk_31bf3856ad364e35_6.1.7601.17514_none_e3fb573520033bfa\autochk.exe

< MD5 for: CDROM.SYS >
[2010/11/20 22:29:03 | 000,108,544 | ---- | M] (Microsoft Corporation) MD5=BE167ED0FDB9C1FA1133953C18D5A6C9 -- C:\Windows\System32\drivers\cdrom.sys
[2010/11/20 22:29:03 | 000,108,544 | ---- | M] (Microsoft Corporation) MD5=BE167ED0FDB9C1FA1133953C18D5A6C9 -- C:\Windows\System32\DriverStore\FileRepository\cdrom.inf_x86_neutral_6381e09675524225\cdrom.sys
[2010/11/20 22:29:03 | 000,108,544 | ---- | M] (Microsoft Corporation) MD5=BE167ED0FDB9C1FA1133953C18D5A6C9 -- C:\Windows\winsxs\x86_cdrom.inf_31bf3856ad364e35_6.1.7601.17514_none_61b0c5ce02098355\cdrom.sys

< MD5 for: EXPLORER.EXE >
[2011/02/26 06:19:21 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=0FB9C74046656D1579A64660AD67B746 -- C:\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.21669_none_54149f9ef14031fc\explorer.exe
[2010/11/20 22:29:20 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=40D777B7A95E00593EB1568C68514493 -- C:\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17514_none_53bc10fdd7fe87ca\explorer.exe
[2011/02/25 06:30:54 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=8B88EBBB05A0E56B7DCC708498C02B3E -- C:\Windows\ERDNT\cache\explorer.exe
[2011/02/25 06:30:54 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=8B88EBBB05A0E56B7DCC708498C02B3E -- C:\Windows\explorer.exe
[2011/02/25 06:30:54 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=8B88EBBB05A0E56B7DCC708498C02B3E -- C:\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17567_none_5389023fd8245f84\explorer.exe

< MD5 for: HAL.DLL >
[2010/11/20 22:29:19 | 000,194,432 | ---- | M] (Microsoft Corporation) MD5=1BF0D4727FDB437D513CFF8A9359C050 -- C:\Windows\System32\hal.dll
[2010/11/20 22:29:19 | 000,194,432 | ---- | M] (Microsoft Corporation) MD5=1BF0D4727FDB437D513CFF8A9359C050 -- C:\Windows\winsxs\x86_microsoft-windows-hal_31bf3856ad364e35_6.1.7601.17514_none_ad305c8fb7ec5060\hal.dll

< MD5 for: SCECLI.DLL >
[2010/11/20 22:29:07 | 000,175,616 | ---- | M] (Microsoft Corporation) MD5=8124944EC89D6A1815E4E53F5B96AAF4 -- C:\Windows\ERDNT\cache\scecli.dll
[2010/11/20 22:29:07 | 000,175,616 | ---- | M] (Microsoft Corporation) MD5=8124944EC89D6A1815E4E53F5B96AAF4 -- C:\Windows\System32\scecli.dll
[2010/11/20 22:29:07 | 000,175,616 | ---- | M] (Microsoft Corporation) MD5=8124944EC89D6A1815E4E53F5B96AAF4 -- C:\Windows\winsxs\x86_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.1.7601.17514_none_3a154c47375d881d\scecli.dll

< MD5 for: SERVICES.EXE >
[2009/07/14 02:14:36 | 000,259,072 | ---- | M] (Microsoft Corporation) MD5=5F1B6A9C35D3D5CA72D6D6FDEF9747D6 -- C:\Windows\ERDNT\cache\services.exe
[2009/07/14 02:14:36 | 000,259,072 | ---- | M] (Microsoft Corporation) MD5=5F1B6A9C35D3D5CA72D6D6FDEF9747D6 -- C:\Windows\System32\services.exe
[2009/07/14 02:14:36 | 000,259,072 | ---- | M] (Microsoft Corporation) MD5=5F1B6A9C35D3D5CA72D6D6FDEF9747D6 -- C:\Windows\winsxs\x86_microsoft-windows-s..s-servicecontroller_31bf3856ad364e35_6.1.7600.16385_none_cf36168b2e9c967b\services.exe

< MD5 for: SVCHOST.EXE >
[2009/07/14 02:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) MD5=54A47F6B5E09A77E61649109C6A08866 -- C:\Windows\ERDNT\cache\svchost.exe
[2009/07/14 02:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) MD5=54A47F6B5E09A77E61649109C6A08866 -- C:\Windows\System32\svchost.exe
[2009/07/14 02:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) MD5=54A47F6B5E09A77E61649109C6A08866 -- C:\Windows\winsxs\x86_microsoft-windows-services-svchost_31bf3856ad364e35_6.1.7600.16385_none_b591afc466a15356\svchost.exe
[2014/11/21 06:12:42 | 000,761,656 | ---- | M] (MalwareBytes) MD5=625BB08813743947985B0DEEFC35ED12 -- C:\Program Files\Malwarebytes Anti-Malware\Chameleon\Windows\svchost.exe

< MD5 for: TCPIP.SYS >
[2010/11/20 22:29:20 | 001,290,112 | ---- | M] (Microsoft Corporation) MD5=37E8FA3779668837CA9E2C36D2415949 -- C:\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.17514_none_b5257c3dc4a85a01\tcpip.sys
[2014/04/05 03:25:01 | 001,294,272 | ---- | M] (Microsoft Corporation) MD5=5579DD18546999F5D0EC39D018726C6B -- C:\Windows\ERDNT\cache\tcpip.sys
[2014/04/05 03:25:01 | 001,294,272 | ---- | M] (Microsoft Corporation) MD5=5579DD18546999F5D0EC39D018726C6B -- C:\Windows\System32\drivers\tcpip.sys
[2014/04/05 03:25:01 | 001,294,272 | ---- | M] (Microsoft Corporation) MD5=5579DD18546999F5D0EC39D018726C6B -- C:\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.18438_none_b513c4dfc4b513b9\tcpip.sys
[2014/06/06 14:23:25 | 001,309,120 | ---- | M] (Microsoft Corporation) MD5=6C4F3D92764FFA22D28061A4D9235446 -- C:\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.22444_none_b58e8eb0ddde6cf1\tcpip.sys
[2014/06/06 14:23:25 | 001,294,272 | ---- | M] (Microsoft Corporation) MD5=CA59F7C570AF70BC174F477CFE2D9EE3 -- C:\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.18254_none_b4fa2013c4c8ebf1\tcpip.sys
[2012/10/03 17:44:01 | 001,308,040 | ---- | M] (Microsoft Corporation) MD5=D490DD0A91B4EAC3B4EE08D11EE37C31 -- C:\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.22124_none_b5a428d6ddce3d9a\tcpip.sys
[2013/11/26 12:07:37 | 001,309,632 | ---- | M] (Microsoft Corporation) MD5=DC08335B30D83FB61E9EFE6FDD09D40D -- C:\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.22525_none_b5a530b8ddcd4b8d\tcpip.sys
[2012/10/03 17:58:30 | 001,293,680 | ---- | M] (Microsoft Corporation) MD5=E23A56F843E2AEBBB209D0ACCA73C640 -- C:\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.17964_none_b4ef7439c4d0da52\tcpip.sys
[2014/04/05 03:16:21 | 001,310,144 | ---- | M] (Microsoft Corporation) MD5=EA47AB18E289333AB94397D77CA6E3A1 -- C:\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.22648_none_b59293a4dddacc9b\tcpip.sys

< MD5 for: USERINIT.EXE >
[2010/11/20 22:29:06 | 000,026,624 | ---- | M] (Microsoft Corporation) MD5=61AC3EFDFACFDD3F0F11DD4FD4044223 -- C:\Windows\ERDNT\cache\userinit.exe
[2010/11/20 22:29:06 | 000,026,624 | ---- | M] (Microsoft Corporation) MD5=61AC3EFDFACFDD3F0F11DD4FD4044223 -- C:\Windows\System32\userinit.exe
[2010/11/20 22:29:06 | 000,026,624 | ---- | M] (Microsoft Corporation) MD5=61AC3EFDFACFDD3F0F11DD4FD4044223 -- C:\Windows\winsxs\x86_microsoft-windows-userinit_31bf3856ad364e35_6.1.7601.17514_none_de3024012ff21116\userinit.exe

< MD5 for: WINLOGON.EXE >
[2014/07/16 03:56:14 | 000,304,640 | ---- | M] (Microsoft Corporation) MD5=4F37B93C14AEE313BEC52A23AFB15C2E -- C:\Windows\winsxs\x86_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7601.22750_none_7224b2134c7555fa\winlogon.exe
[2014/07/17 02:39:27 | 000,304,128 | ---- | M] (Microsoft Corporation) MD5=52449FD429D6053B78AE564DEF303870 -- C:\Windows\ERDNT\cache\winlogon.exe
[2014/07/17 02:39:27 | 000,304,128 | ---- | M] (Microsoft Corporation) MD5=52449FD429D6053B78AE564DEF303870 -- C:\Windows\System32\winlogon.exe
[2014/07/17 02:39:27 | 000,304,128 | ---- | M] (Microsoft Corporation) MD5=52449FD429D6053B78AE564DEF303870 -- C:\Windows\winsxs\x86_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7601.18540_none_71a5e34e334f9d18\winlogon.exe
[2014/11/21 06:12:42 | 000,761,656 | ---- | M] (MalwareBytes) MD5=625BB08813743947985B0DEEFC35ED12 -- C:\Program Files\Malwarebytes Anti-Malware\Chameleon\Windows\winlogon.exe
[2010/11/20 22:29:06 | 000,286,720 | ---- | M] (Microsoft Corporation) MD5=6D13E1406F50C66E2A95D97F22C47560 -- C:\Windows\winsxs\x86_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7601.17514_none_71ca6b0233339500\winlogon.exe
[2014/03/04 10:17:02 | 000,304,128 | ---- | M] (Microsoft Corporation) MD5=998507B046BA314CE8245364C686FA67 -- C:\Windows\winsxs\x86_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7601.18409_none_71da23b23327143c\winlogon.exe
[2014/03/04 11:39:02 | 000,304,640 | ---- | M] (Microsoft Corporation) MD5=D53972F87D850CD2EB4B29B60CAFDD77 -- C:\Windows\winsxs\x86_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7601.22616_none_7255f1994c4f8119\winlogon.exe

< >

< %systemroot%*.* /U /s >
[11 C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp files -> C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp -> ]
[6 C:\Windows\Installer\*.tmp files -> C:\Windows\Installer\*.tmp -> ]
[2 C:\Windows\ServiceProfiles\LocalService\AppData\Local\Temp\*.tmp files -> C:\Windows\ServiceProfiles\LocalService\AppData\Local\Temp\*.tmp -> ]
[1 C:\Windows\System32\catroot\*.tmp files -> C:\Windows\System32\catroot\*.tmp -> ]

< %SYSTEMDRIVE%\*.exe >

< %ALLUSERSPROFILE%\Application Data\*. >

< %ALLUSERSPROFILE%\Application Data\*.exe /s >

< %APPDATA%\*. >
[2014/06/11 17:36:00 | 000,000,000 | ---D | M] -- C:\Users\Lukas\AppData\Roaming\Acronis
[2014/06/25 07:25:42 | 000,000,000 | ---D | M] -- C:\Users\Lukas\AppData\Roaming\ActiveDossierUploader
[2015/02/12 12:44:59 | 000,000,000 | ---D | M] -- C:\Users\Lukas\AppData\Roaming\Adobe
[2014/06/10 07:31:47 | 000,000,000 | ---D | M] -- C:\Users\Lukas\AppData\Roaming\Ansys
[2014/10/13 12:54:06 | 000,000,000 | ---D | M] -- C:\Users\Lukas\AppData\Roaming\Arduino
[2014/06/06 14:50:45 | 000,000,000 | ---D | M] -- C:\Users\Lukas\AppData\Roaming\ATI
[2014/06/18 07:59:21 | 000,000,000 | ---D | M] -- C:\Users\Lukas\AppData\Roaming\Autodesk
[2014/08/28 18:20:00 | 000,000,000 | ---D | M] -- C:\Users\Lukas\AppData\Roaming\Awesomium
[2014/08/06 07:19:25 | 000,000,000 | ---D | M] -- C:\Users\Lukas\AppData\Roaming\BatteryBar
[2014/06/20 05:44:30 | 000,000,000 | ---D | M] -- C:\Users\Lukas\AppData\Roaming\Battle.net
[2014/06/07 12:17:04 | 000,000,000 | ---D | M] -- C:\Users\Lukas\AppData\Roaming\C-Free
[2014/09/14 16:29:45 | 000,000,000 | ---D | M] -- C:\Users\Lukas\AppData\Roaming\CAD-KAS
[2015/01/22 12:28:20 | 000,000,000 | ---D | M] -- C:\Users\Lukas\AppData\Roaming\CadSoft
[2014/07/16 21:14:19 | 000,000,000 | ---D | M] -- C:\Users\Lukas\AppData\Roaming\Cargas
[2014/12/11 15:02:15 | 000,000,000 | ---D | M] -- C:\Users\Lukas\AppData\Roaming\Command & Conquer 3 Kane's Wrath
[2014/12/13 17:22:11 | 000,000,000 | ---D | M] -- C:\Users\Lukas\AppData\Roaming\DarknessII
[2015/03/13 17:24:28 | 000,000,000 | ---D | M] -- C:\Users\Lukas\AppData\Roaming\DiskDefrag
[2014/06/16 20:19:14 | 000,000,000 | ---D | M] -- C:\Users\Lukas\AppData\Roaming\Downloaded Installations
[2014/06/29 09:06:29 | 000,000,000 | ---D | M] -- C:\Users\Lukas\AppData\Roaming\Driver Magician
[2014/10/15 17:50:07 | 000,000,000 | ---D | M] -- C:\Users\Lukas\AppData\Roaming\Duplicati
[2014/09/24 09:57:07 | 000,000,000 | ---D | M] -- C:\Users\Lukas\AppData\Roaming\Egon
[2014/06/06 18:59:42 | 000,000,000 | ---D | M] -- C:\Users\Lukas\AppData\Roaming\ESET
[2015/03/15 16:43:25 | 000,000,000 | ---D | M] -- C:\Users\Lukas\AppData\Roaming\FileZilla
[2014/07/28 19:41:45 | 000,000,000 | ---D | M] -- C:\Users\Lukas\AppData\Roaming\Foxit Software
[2014/06/06 14:27:53 | 000,000,000 | ---D | M] -- C:\Users\Lukas\AppData\Roaming\GlarySoft
[2015/02/23 16:16:06 | 000,000,000 | ---D | M] -- C:\Users\Lukas\AppData\Roaming\Hewlett-Packard
[2015/02/17 12:37:19 | 000,000,000 | ---D | M] -- C:\Users\Lukas\AppData\Roaming\hpqLog
[2014/09/11 16:19:59 | 000,000,000 | ---D | M] -- C:\Users\Lukas\AppData\Roaming\Identities
[2014/09/11 16:19:59 | 000,000,000 | ---D | M] -- C:\Users\Lukas\AppData\Roaming\Internet Explorer
[2015/03/16 19:15:39 | 000,000,000 | ---D | M] -- C:\Users\Lukas\AppData\Roaming\IObit
[2014/06/08 08:21:03 | 000,000,000 | ---D | M] -- C:\Users\Lukas\AppData\Roaming\LolClient
[2014/06/08 08:20:59 | 000,000,000 | ---D | M] -- C:\Users\Lukas\AppData\Roaming\Macromedia
[2011/04/12 07:45:45 | 000,000,000 | ---D | M] -- C:\Users\Lukas\AppData\Roaming\Media Center Programs
[2015/02/18 17:46:52 | 000,000,000 | --SD | M] -- C:\Users\Lukas\AppData\Roaming\Microsoft
[2015/03/03 20:49:45 | 000,000,000 | ---D | M] -- C:\Users\Lukas\AppData\Roaming\Mozilla
[2014/06/06 20:46:51 | 000,000,000 | ---D | M] -- C:\Users\Lukas\AppData\Roaming\National Instruments
[2014/12/01 21:00:31 | 000,000,000 | ---D | M] -- C:\Users\Lukas\AppData\Roaming\PingPlotter
[2014/11/30 17:48:11 | 000,000,000 | ---D | M] -- C:\Users\Lukas\AppData\Roaming\PowerISO
[2015/02/28 07:24:34 | 000,000,000 | ---D | M] -- C:\Users\Lukas\AppData\Roaming\raidcall
[2014/12/07 16:58:45 | 000,000,000 | ---D | M] -- C:\Users\Lukas\AppData\Roaming\Red Alert 3
[2014/12/03 12:48:19 | 000,000,000 | RH-D | M] -- C:\Users\Lukas\AppData\Roaming\SecuROM
[2015/03/14 14:42:28 | 000,000,000 | ---D | M] -- C:\Users\Lukas\AppData\Roaming\Skype
[2014/09/14 16:04:25 | 000,000,000 | ---D | M] -- C:\Users\Lukas\AppData\Roaming\Softland
[2014/06/06 18:49:23 | 000,000,000 | ---D | M] -- C:\Users\Lukas\AppData\Roaming\Synaptics
[2015/03/07 17:29:16 | 000,000,000 | ---D | M] -- C:\Users\Lukas\AppData\Roaming\TeamViewer
[2014/10/10 07:28:04 | 000,000,000 | ---D | M] -- C:\Users\Lukas\AppData\Roaming\TightVNC
[2015/03/16 19:39:37 | 000,000,000 | ---D | M] -- C:\Users\Lukas\AppData\Roaming\TS3Client
[2014/12/26 19:08:14 | 000,000,000 | ---D | M] -- C:\Users\Lukas\AppData\Roaming\Tunngle
[2014/09/11 16:23:26 | 000,000,000 | ---D | M] -- C:\Users\Lukas\AppData\Roaming\Universal SQL Editor
[2015/03/15 21:45:58 | 000,000,000 | ---D | M] -- C:\Users\Lukas\AppData\Roaming\uTorrent
[2015/03/14 06:37:03 | 000,000,000 | ---D | M] -- C:\Users\Lukas\AppData\Roaming\vlc
[2014/06/06 19:58:53 | 000,000,000 | ---D | M] -- C:\Users\Lukas\AppData\Roaming\WinBatch
[2014/06/06 14:31:49 | 000,000,000 | ---D | M] -- C:\Users\Lukas\AppData\Roaming\WinRAR
[2015/02/24 07:42:23 | 000,000,000 | ---D | M] -- C:\Users\Lukas\AppData\Roaming\Wireshark
[2014/07/13 21:38:47 | 000,000,000 | ---D | M] -- C:\Users\Lukas\AppData\Roaming\YaTQA

< %APPDATA%\*.exe /s >
[2014/09/11 11:03:14 | 011,231,456 | ---- | M] (Foxit Corporation) -- C:\Users\Lukas\AppData\Roaming\Foxit Software\Addon\Foxit Reader\FoxitReaderUpdater.exe
[2014/10/08 18:17:47 | 000,119,808 | R--- | M] () -- C:\Users\Lukas\AppData\Roaming\Microsoft\Installer\{CCF298AF-9CE1-4B26-B251-486E98A34789}\icons.exe
[2014/06/10 07:12:16 | 000,010,134 | R--- | M] () -- C:\Users\Lukas\AppData\Roaming\Microsoft\Installer\{E3E71D07-CD27-46CB-8448-16D4FB29AA13}\ARPPRODUCTICON.exe
[2014/04/13 23:00:00 | 000,042,496 | ---- | M] () -- C:\Users\Lukas\AppData\Roaming\uTorrent\uninstall.exe
[2014/06/11 08:44:40 | 000,000,679 | ---- | M] () -- C:\Users\Lukas\AppData\Roaming\uTorrent\uTorrent 2.2.0.23235.exe
[2014/04/13 23:00:00 | 000,398,760 | ---- | M] (BitTorrent, Inc.) -- C:\Users\Lukas\AppData\Roaming\uTorrent\utorrent.exe

< %systemroot%\*. /mp /s >

< %systemroot%\system32\*.dll /lockedfiles >
[2011/07/05 23:09:10 | 000,462,848 | ---- | M] (Advanced Micro Devices, Inc.) Unable to obtain MD5 -- C:\Windows\system32\ATIDEMGX.dll

< %systemroot%\Tasks\*.job >
[2015/03/16 19:32:23 | 000,000,318 | ---- | M] () -- C:\Windows\Tasks\GlaryInitialize 4.job
[2015/01/28 10:00:18 | 000,000,378 | ---- | M] () -- C:\Windows\Tasks\GlaryUpdate 4.job
[2015/03/16 19:31:21 | 000,000,920 | ---- | M] () -- C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
[2015/03/16 19:26:25 | 000,000,924 | ---- | M] () -- C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
[2015/03/15 10:14:04 | 000,000,320 | ---- | M] () -- C:\Windows\Tasks\HPCeeScheduleForLukas.job

< %systemroot%\system32\drivers\*.sys /lockedfiles >
[2014/10/10 08:59:12 | 000,191,928 | ---- | M] (ESET) Unable to obtain MD5 -- C:\Windows\system32\drivers\eamonm.sys
[2014/10/10 08:59:12 | 000,135,296 | ---- | M] (ESET) Unable to obtain MD5 -- C:\Windows\system32\drivers\ehdrv.sys
[2014/10/10 08:59:12 | 000,176,448 | ---- | M] (ESET) Unable to obtain MD5 -- C:\Windows\system32\drivers\epfw.sys
[2014/10/10 08:59:12 | 000,037,928 | ---- | M] (ESET) Unable to obtain MD5 -- C:\Windows\system32\drivers\EpfwLWF.sys
[2014/10/10 08:59:12 | 000,051,288 | ---- | M] (ESET) Unable to obtain MD5 -- C:\Windows\system32\drivers\epfwwfp.sys

< %systemroot%\System32\config\*.sav >

< %systemroot%\system32\*.dll /lockedfiles >
[2011/07/05 23:09:10 | 000,462,848 | ---- | M] (Advanced Micro Devices, Inc.) Unable to obtain MD5 -- C:\Windows\system32\ATIDEMGX.dll

< %systemroot%\system32\drivers\*.sys /3 >
[2015/03/16 18:43:23 | 000,114,904 | ---- | M] (Malwarebytes Corporation) -- C:\Windows\system32\drivers\MBAMSwissArmy.sys

< %systemroot%\system32\*.* /3 >
[2015/03/16 12:38:54 | 000,030,960 | -H-- | M] () -- C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2015/03/16 12:38:54 | 000,030,960 | -H-- | M] () -- C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2015/03/16 19:35:24 | 000,121,596 | ---- | M] () -- C:\Windows\system32\perfc009.dat
[2015/03/16 19:35:24 | 000,653,724 | ---- | M] () -- C:\Windows\system32\perfh009.dat
[2015/03/16 19:35:24 | 000,781,298 | ---- | M] () -- C:\Windows\system32\PerfStringBackup.INI

< %SYSTEMDRIVE%\*.exe >

< >

< HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /s >
"Sidebar" = C:\Program Files\Windows Sidebar\sidebar.exe /autoRun -- [2010/11/20 22:29:41 | 001,174,016 | ---- | M] (Microsoft Corporation)
"Bloody2" = "C:\Program Files\Bloody5\Bloody5\Bloody5.exe" Minimum -- [2014/09/13 16:30:35 | 013,969,920 | ---- | M] ()

< >

< %PROGRAMFILES%\Mozilla Firefox\firefox.exe /md5 >

< %PROGRAMFILES%\Internet Explorer\iexplore.exe /md5 >
[2015/02/24 03:32:46 | 000,815,272 | ---- | M] (Microsoft Corporation) MD5=E931C01E7DD7CEC0BD26CD1B9DA967A3 -- C:\Program Files\Internet Explorer\iexplore.exe

< %PROGRAMFILES%\Opera\opera.exe /md5 >

< %PROGRAMFILES%\Google\Chrome\Application\chrome.exe /md5 >
[2015/03/07 07:13:08 | 000,809,288 | ---- | M] (Google Inc.) MD5=9201E92771F3D536DA4A53FDCC4B976B -- C:\Program Files\Google\Chrome\Application\chrome.exe

< >

< %SystemDrive%\PhysicalMBR.bin /md5 >
[2015/03/16 19:45:26 | 000,000,512 | ---- | M] () MD5=388A71790E1CF7DB248735DF46779919 -- C:\PhysicalMBR.bin

< >

< *crack* /s >
[2001/08/24 09:13:18 | 000,006,043 | ---- | M] () -- \Prevzaté súbory\TvorbaWWWstranok\Xara Webstyle 2\WSTemplates\Backgrounds\Exotic\Cracket.jpg
[2001/08/24 09:13:18 | 000,014,320 | ---- | M] () -- \Prevzaté súbory\TvorbaWWWstranok\Xara Webstyle 2\WSTemplates\Backgrounds\Exotic\Cracket.wix
[2001/08/24 09:21:42 | 000,001,627 | ---- | M] () -- \Prevzaté súbory\TvorbaWWWstranok\Xara Webstyle 2\WSTemplates\Backgrounds\Exotic\Cracket.xws

< *keygen* /s >
[2003/11/23 00:00:00 | 000,049,152 | ---- | M] () -- \Prevzaté súbory\VAG-IHR-3040\VagComKeyGen.exe

< *loader* /s >
[2014/07/09 17:12:54 | 000,006,995 | ---- | M] () -- \found.000\dir0054.chk\loader.pyc
[2013/07/10 15:23:47 | 000,000,404 | ---- | M] () -- \League of Legends\League of Legends\RADS\projects\lol_air_client\releases\0.0.1.131\deploy\assets\storeImages\layout\small_loader.gif
[2008/12/04 17:28:20 | 000,000,020 | ---- | M] () -- \Program Files\Arduino\hardware\tools\avr\doc\avr-libc\man\man3\BOOTLOADER_SECTION.3
[2008/01/30 15:30:18 | 000,027,488 | ---- | M] () -- \Program Files\Autodesk\ACADM 2009\AecLoader.arx
[2008/02/22 04:42:10 | 000,036,827 | ---- | M] () -- \Program Files\Autodesk\ACADM 2009\Setup\SetupRes\Infotainment\Images\A039-Krupp_-_Canada__Shiploader_Photo.jpg
[2014/09/11 11:04:10 | 001,915,104 | ---- | M] () -- \Program Files\Foxit Software\Foxit Reader\plugins\PlgDynLoader.fpi
[2011/11/20 16:15:10 | 002,172,400 | ---- | M] () -- \WoW twinstar 3.3.5a\BackgroundDownloader.exe
[2011/11/20 16:15:28 | 000,003,026 | ---- | M] () -- \WoW twinstar 3.3.5a\Data\enGB\Documentation\Troubleshooting\(Mac)BlizzardDownloaderProblems.html
[2011/11/20 16:15:28 | 000,004,261 | ---- | M] () -- \WoW twinstar 3.3.5a\Data\enGB\Documentation\Troubleshooting\(PC)BlizzardDownloaderProblems.html

< End of report >

Dakujem

Re: Poprosim o kontrolu logu - Pomalsi notebook, pomalsi chr

Napsal: 16 bře 2015 20:40
od Rudy
Znovu spustte OTL jako spravce
Do spodniho okna vlozte nasledujici text:
:OTL
IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKU\S-1-5-19\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKU\S-1-5-20\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKU\S-1-5-21-3686303566-3769288024-1234635627-1000\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKU\S-1-5-21-3686303566-3769288024-1234635627-1000\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTer ... ORM=IE8SRC
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
[2014/06/16 20:28:30 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Lukas\AppData\Roaming\mozilla\Extensions
[2015/03/16 19:15:14 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Lukas\AppData\Roaming\mozilla\Firefox\Profiles\nv4lxfal.default\extensions
File not found (No name found) -- C:\USERS\LUKAS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\NV4LXFAL.DEFAULT\EXTENSIONS\ADREMOVEEXT@ADREMOVEEXT.NET
HR - Extension: No name found = C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.7_0\
CHR - Extension: No name found = C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.12_0\
CHR - Extension: No name found = C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_1\
CHR - Extension: No name found = C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\ecpgkdflcnofdbbkiggklcfmgbnbabhh\1.0_1\
CHR - Extension: No name found = C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\mihcahmgecmbnbcchbopgniflfhgnkff\4.4.0_1\
CHR - Extension: No name found = C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\
CHR - Extension: No name found = C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\pfhpcfcmdcgnfihpggodafhcpghkeagi\1.6_0\
CHR - Extension: No name found = C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\8_0\

:files
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
C:\Users\Lukas\AppData\Roaming\YaTQA
%windir%\system32\*.tmp.dll /s
%windir%\system32\SET*.tmp /s
%windir%\*.tmp

:commands
[EMPTYTEMP]
[EMPTYFLASH]
[Purity]
[CreateRestorePoint]
Kliknete na Opravit a nechte program pracovat. Pri otazce na restart souhlaste.
Po restartu se objevi novy log, ten sem dejte.

Re: Poprosim o kontrolu logu - Pomalsi notebook, pomalsi chr

Napsal: 16 bře 2015 21:03
od lukasjanra
All processes killed
========== OTL ==========
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope| /E : value set successfully!
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ not found.
HKEY_USERS\S-1-5-19\Software\Microsoft\Internet Explorer\SearchScopes\\DefaultScope| /E : value set successfully!
HKEY_USERS\S-1-5-20\Software\Microsoft\Internet Explorer\SearchScopes\\DefaultScope| /E : value set successfully!
HKEY_USERS\S-1-5-21-3686303566-3769288024-1234635627-1000\Software\Microsoft\Internet Explorer\SearchScopes\\DefaultScope| /E : value set successfully!
Registry key HKEY_USERS\S-1-5-21-3686303566-3769288024-1234635627-1000\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ not found.
Registry key HKEY_LOCAL_MACHINE\Software\MozillaPlugins\@microsoft.com/GENUINE\ deleted successfully.
C:\Users\Lukas\AppData\Roaming\mozilla\Extensions folder moved successfully.
C:\Users\Lukas\AppData\Roaming\mozilla\Firefox\Profiles\nv4lxfal.default\extensions folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.12_0\_metadata folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.12_0\_locales\zh_TW folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.12_0\_locales\zh_CN folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.12_0\_locales\vi folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.12_0\_locales\uk folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.12_0\_locales\tr folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.12_0\_locales\th folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.12_0\_locales\te folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.12_0\_locales\ta folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.12_0\_locales\sv folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.12_0\_locales\sr folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.12_0\_locales\sl folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.12_0\_locales\sk folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.12_0\_locales\ru folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.12_0\_locales\ro folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.12_0\_locales\pt_PT folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.12_0\_locales\pt_BR folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.12_0\_locales\pl folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.12_0\_locales\nl folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.12_0\_locales\nb folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.12_0\_locales\ms folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.12_0\_locales\ml folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.12_0\_locales\lv folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.12_0\_locales\lt folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.12_0\_locales\ko folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.12_0\_locales\ja folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.12_0\_locales\it folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.12_0\_locales\id folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.12_0\_locales\hu folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.12_0\_locales\hr folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.12_0\_locales\hi folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.12_0\_locales\he folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.12_0\_locales\gu folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.12_0\_locales\fr folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.12_0\_locales\fil folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.12_0\_locales\fi folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.12_0\_locales\fa folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.12_0\_locales\et folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.12_0\_locales\es_419 folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.12_0\_locales\es folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.12_0\_locales\en_US folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.12_0\_locales\en_GB folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.12_0\_locales\el folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.12_0\_locales\de folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.12_0\_locales\da folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.12_0\_locales\cs folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.12_0\_locales\ca folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.12_0\_locales\bn folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.12_0\_locales\bg folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.12_0\_locales\ar folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.12_0\_locales folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.12_0\skin\social folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.12_0\skin\fonts folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.12_0\skin\features folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.12_0\skin folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.12_0\lib folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.12_0\jquery-ui\js folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.12_0\jquery-ui\css\smoothness\images folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.12_0\jquery-ui\css\smoothness folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.12_0\jquery-ui\css folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.12_0\jquery-ui folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.12_0\icons\detailed folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.12_0\icons folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.12_0\ext folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.12_0 folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_1\_locales\zh_TW folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_1\_locales\zh_CN folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_1\_locales\vi folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_1\_locales\uk folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_1\_locales\tr folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_1\_locales\th folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_1\_locales\sv folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_1\_locales\sr folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_1\_locales\sl folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_1\_locales\sk folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_1\_locales\ru folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_1\_locales\ro folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_1\_locales\pt_PT folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_1\_locales\pt_BR folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_1\_locales\pl folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_1\_locales\no folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_1\_locales\nl folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_1\_locales\lv folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_1\_locales\lt folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_1\_locales\ko folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_1\_locales\ja folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_1\_locales\it folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_1\_locales\id folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_1\_locales\hu folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_1\_locales\hr folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_1\_locales\hi folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_1\_locales\he folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_1\_locales\fr folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_1\_locales\fil folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_1\_locales\fi folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_1\_locales\et folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_1\_locales\es_419 folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_1\_locales\es folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_1\_locales\en_US folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_1\_locales\en_GB folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_1\_locales\en folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_1\_locales\el folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_1\_locales\de folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_1\_locales\da folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_1\_locales\cs folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_1\_locales\ca folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_1\_locales\bg folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_1\_locales\ar folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_1\_locales folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_1 folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\ecpgkdflcnofdbbkiggklcfmgbnbabhh\1.0_1\_metadata folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\ecpgkdflcnofdbbkiggklcfmgbnbabhh\1.0_1 folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\mihcahmgecmbnbcchbopgniflfhgnkff\4.4.0_1\_metadata folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\mihcahmgecmbnbcchbopgniflfhgnkff\4.4.0_1\_locales\zh_TW folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\mihcahmgecmbnbcchbopgniflfhgnkff\4.4.0_1\_locales\zh_CN folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\mihcahmgecmbnbcchbopgniflfhgnkff\4.4.0_1\_locales\vi folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\mihcahmgecmbnbcchbopgniflfhgnkff\4.4.0_1\_locales\uk folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\mihcahmgecmbnbcchbopgniflfhgnkff\4.4.0_1\_locales\tr folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\mihcahmgecmbnbcchbopgniflfhgnkff\4.4.0_1\_locales\th folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\mihcahmgecmbnbcchbopgniflfhgnkff\4.4.0_1\_locales\sv folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\mihcahmgecmbnbcchbopgniflfhgnkff\4.4.0_1\_locales\sr folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\mihcahmgecmbnbcchbopgniflfhgnkff\4.4.0_1\_locales\sl folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\mihcahmgecmbnbcchbopgniflfhgnkff\4.4.0_1\_locales\sk folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\mihcahmgecmbnbcchbopgniflfhgnkff\4.4.0_1\_locales\ru folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\mihcahmgecmbnbcchbopgniflfhgnkff\4.4.0_1\_locales\ro folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\mihcahmgecmbnbcchbopgniflfhgnkff\4.4.0_1\_locales\pt_PT folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\mihcahmgecmbnbcchbopgniflfhgnkff\4.4.0_1\_locales\pt_BR folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\mihcahmgecmbnbcchbopgniflfhgnkff\4.4.0_1\_locales\pl folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\mihcahmgecmbnbcchbopgniflfhgnkff\4.4.0_1\_locales\nl folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\mihcahmgecmbnbcchbopgniflfhgnkff\4.4.0_1\_locales\nb folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\mihcahmgecmbnbcchbopgniflfhgnkff\4.4.0_1\_locales\lv folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\mihcahmgecmbnbcchbopgniflfhgnkff\4.4.0_1\_locales\lt folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\mihcahmgecmbnbcchbopgniflfhgnkff\4.4.0_1\_locales\ko folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\mihcahmgecmbnbcchbopgniflfhgnkff\4.4.0_1\_locales\ja folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\mihcahmgecmbnbcchbopgniflfhgnkff\4.4.0_1\_locales\it folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\mihcahmgecmbnbcchbopgniflfhgnkff\4.4.0_1\_locales\id folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\mihcahmgecmbnbcchbopgniflfhgnkff\4.4.0_1\_locales\hu folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\mihcahmgecmbnbcchbopgniflfhgnkff\4.4.0_1\_locales\hr folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\mihcahmgecmbnbcchbopgniflfhgnkff\4.4.0_1\_locales\hi folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\mihcahmgecmbnbcchbopgniflfhgnkff\4.4.0_1\_locales\he folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\mihcahmgecmbnbcchbopgniflfhgnkff\4.4.0_1\_locales\fr folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\mihcahmgecmbnbcchbopgniflfhgnkff\4.4.0_1\_locales\fil folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\mihcahmgecmbnbcchbopgniflfhgnkff\4.4.0_1\_locales\fi folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\mihcahmgecmbnbcchbopgniflfhgnkff\4.4.0_1\_locales\et folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\mihcahmgecmbnbcchbopgniflfhgnkff\4.4.0_1\_locales\es_419 folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\mihcahmgecmbnbcchbopgniflfhgnkff\4.4.0_1\_locales\es folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\mihcahmgecmbnbcchbopgniflfhgnkff\4.4.0_1\_locales\en_GB folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\mihcahmgecmbnbcchbopgniflfhgnkff\4.4.0_1\_locales\en folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\mihcahmgecmbnbcchbopgniflfhgnkff\4.4.0_1\_locales\el folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\mihcahmgecmbnbcchbopgniflfhgnkff\4.4.0_1\_locales\de folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\mihcahmgecmbnbcchbopgniflfhgnkff\4.4.0_1\_locales\da folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\mihcahmgecmbnbcchbopgniflfhgnkff\4.4.0_1\_locales\cs folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\mihcahmgecmbnbcchbopgniflfhgnkff\4.4.0_1\_locales\ca folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\mihcahmgecmbnbcchbopgniflfhgnkff\4.4.0_1\_locales\bg folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\mihcahmgecmbnbcchbopgniflfhgnkff\4.4.0_1\_locales\ar folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\mihcahmgecmbnbcchbopgniflfhgnkff\4.4.0_1\_locales folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\mihcahmgecmbnbcchbopgniflfhgnkff\4.4.0_1 folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_metadata folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\zh_TW folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\zh_CN folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\vi folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\uk folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\tr folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\th folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\sv folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\sr folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\sl folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\sk folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\ru folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\ro folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\pt_PT folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\pt_BR folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\pl folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\nl folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\nb folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\lv folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\lt folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\ko folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\ja folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\it folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\id folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\hu folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\hr folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\hi folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\fr folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\fil folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\fi folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\et folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\es_419 folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\es folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\en_GB folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\en folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\el folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\de folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\da folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\cs folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\ca folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\bg folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\images folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\html folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\css folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0 folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\pfhpcfcmdcgnfihpggodafhcpghkeagi\1.6_0\_metadata folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\pfhpcfcmdcgnfihpggodafhcpghkeagi\1.6_0 folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\8_0\__MACOSX\_locales folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\8_0\__MACOSX folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\8_0\_metadata folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\8_0\_locales\zh_TW folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\8_0\_locales\zh_CN folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\8_0\_locales\vi folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\8_0\_locales\uk folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\8_0\_locales\tr folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\8_0\_locales\th folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\8_0\_locales\sr folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\8_0\_locales\sl folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\8_0\_locales\sk folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\8_0\_locales\se folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\8_0\_locales\ru folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\8_0\_locales\ro folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\8_0\_locales\pt_PT folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\8_0\_locales\pt_BR folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\8_0\_locales\pl folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\8_0\_locales\no folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\8_0\_locales\nl folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\8_0\_locales\lv folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\8_0\_locales\lt folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\8_0\_locales\ko folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\8_0\_locales\ja folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\8_0\_locales\it folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\8_0\_locales\id folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\8_0\_locales\hu folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\8_0\_locales\hr folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\8_0\_locales\hi folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\8_0\_locales\fr folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\8_0\_locales\fil folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\8_0\_locales\fi folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\8_0\_locales\es folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\8_0\_locales\en folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\8_0\_locales\el folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\8_0\_locales\de folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\8_0\_locales\da folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\8_0\_locales\cs folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\8_0\_locales\ca folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\8_0\_locales\bg folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\8_0\_locales\ar folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\8_0\_locales folder moved successfully.
C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\8_0 folder moved successfully.
========== FILES ==========
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job moved successfully.
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job moved successfully.
C:\Users\Lukas\AppData\Roaming\YaTQA folder moved successfully.
File/Folder C:\Windows\system32\*.tmp.dll not found.
File/Folder C:\Windows\system32\SET*.tmp not found.
File/Folder C:\Windows\*.tmp not found.
========== COMMANDS ==========

[EMPTYTEMP]

User: All Users

User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: Lukas
->Temp folder emptied: 37688 bytes
->Temporary Internet Files folder emptied: 15769695 bytes
->Java cache emptied: 0 bytes
->FireFox cache emptied: 0 bytes
->Google Chrome cache emptied: 116256050 bytes
->Flash cache emptied: 0 bytes

User: Public
->Temp folder emptied: 0 bytes

%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 832 bytes
RecycleBin emptied: 0 bytes

Total Files Cleaned = 126,00 mb


[EMPTYFLASH]

User: All Users

User: Default

User: Default User

User: Lukas
->Flash cache emptied: 0 bytes

User: Public

Total Flash Files Cleaned = 0,00 mb

Restore point Set: OTL Restore Point

OTL by OldTimer - Version 3.2.69.0 log created on 03162015_205922

Files\Folders moved on Reboot...
File move failed. C:\Users\Lukas\AppData\Local\Microsoft\Windows\Temporary Internet Files\counters.dat scheduled to be moved on reboot.

PendingFileRenameOperations files...

Registry entries deleted on Reboot...

Re: Poprosim o kontrolu logu - Pomalsi notebook, pomalsi chr

Napsal: 16 bře 2015 21:55
od Rudy
Smazáno. Nastala nějaká změna?

Re: Poprosim o kontrolu logu - Pomalsi notebook, pomalsi chr

Napsal: 16 bře 2015 22:05
od lukasjanra
Tak nemozem povedat ze nie, zda sa taky rychlejsi. Takze by to malo byt v poho uz?

Re: Poprosim o kontrolu logu - Pomalsi notebook, pomalsi chr

Napsal: 16 bře 2015 22:32
od Rudy
Ano, pokud není jiný problém.