Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:27-09-2015 01
Ran by Admin (administrator) on ZALMANR1 (27-09-2015 21:08:10)
Running from C:\Users\Admin\Downloads
Loaded Profiles: Admin (Available Profiles: Admin & Baruška & MSSQL$ADK)
Platform: Windows 10 Pro (X64) Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool:
http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(AMD) C:\Windows\System32\atiesrxx.exe
(AMD) C:\Windows\System32\atieclxx.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\sched.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avguard.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe
() C:\Program Files (x86)\ASUS\AXSP\1.02.00\atkexComSvc.exe
() C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.22\AsSysCtrlService.exe
(COMODO) C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
(LogMeIn Inc.) C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe
(IObit) C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe
(LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Exploit\mbae-svc.exe
(Bitdefender) C:\Program Files\Bitdefender\Bitdefender Safepay\obksvc.exe
(Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
(Bitdefender) C:\Program Files\Bitdefender\Bitdefender Safepay\updatesrv.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Exploit\mbae64.exe
(COMODO) C:\Program Files\COMODO\COMODO Internet Security\cavwp.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avshadow.exe
(COMODO) C:\Program Files\COMODO\COMODO Internet Security\CisTray.exe
(Bitdefender) C:\Program Files\Bitdefender\Bitdefender Safepay\obkagent.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avgnt.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Exploit\mbae.exe
(Microsoft Corporation) C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe
(Microsoft Corporation) C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe
(COMODO) C:\Program Files\COMODO\COMODO Internet Security\cis.exe
(IObit) C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallMonitor.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Launcher\Avira.Systray.exe
(Microsoft Corporation) C:\Windows\System32\schtasks.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_19_0_0_185.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_19_0_0_185.exe
(Microsoft Corporation) C:\Windows\System32\Taskmgr.exe
==================== Registry (Whitelisted) ===========================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [8483032 2015-05-28] (Realtek Semiconductor)
HKLM\...\Run: [COMODO Autostart {D5EFF3B3-E126-4AF6-BCE9-852A72129E10}] => C:\Program Files\COMODO\COMODO Internet Security\cistray.exe [1427648 2015-08-05] (COMODO)
HKLM\...\Run: [obkagent] => C:\Program Files\Bitdefender\Bitdefender Safepay\obkagent.exe [1234816 2014-11-11] (Bitdefender)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [597552 2015-08-04] (Oracle Corporation)
HKLM-x32\...\Run: [LogMeIn Hamachi Ui] => C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe [5579624 2015-08-03] (LogMeIn Inc.)
HKLM-x32\...\Run: [Avira SystrayStartTrigger] => C:\Program Files (x86)\Avira\Launcher\Avira.SystrayStartTrigger.exe [66936 2015-08-13] (Avira Operations GmbH & Co. KG)
HKLM-x32\...\Run: [avgnt] => C:\Program Files (x86)\Avira\Antivirus\avgnt.exe [782520 2015-09-23] (Avira Operations GmbH & Co. KG)
HKLM-x32\...\Run: [Malwarebytes Anti-Exploit] => C:\Program Files (x86)\Malwarebytes Anti-Exploit\mbae.exe [2620728 2015-09-27] (Malwarebytes Corporation)
Winlogon\Notify\SDWinLogon-x32: SDWinLogon.dll [X]
HKU\S-1-5-21-2560372422-2021965399-549226919-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [8461224 2015-09-26] (Piriform Ltd)
HKU\S-1-5-21-2560372422-2021965399-549226919-1001\...\Run: [BingSvc] => C:\Users\Admin\AppData\Local\Microsoft\BingSvc\BingSvc.exe [144008 2015-04-07] (© 2015 Microsoft Corporation)
HKU\S-1-5-21-2560372422-2021965399-549226919-1001\...\Run: [SpybotPostWindows10UpgradeReInstall] => C:\Program Files\Common Files\AV\Spybot - Search and Destroy\Test.exe [1011200 2015-07-28] (Safer-Networking Ltd.)
HKU\S-1-5-21-2560372422-2021965399-549226919-1001\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [55349888 2015-09-04] (Skype Technologies S.A.)
HKU\S-1-5-21-2560372422-2021965399-549226919-1001\...\MountPoints2: {4d8048c2-e02f-11e4-be8b-f07959613533} - "E:\LG_PC_Programs.exe"
ShellIconOverlayIdentifiers: [###MegaShellExtPending] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => C:\Users\Admin\AppData\Local\MEGAsync\ShellExtX64.dll [2014-05-01] ()
ShellIconOverlayIdentifiers: [###MegaShellExtSynced] -> {05B38830-F4E9-4329-978B-1DD28605D202} => C:\Users\Admin\AppData\Local\MEGAsync\ShellExtX64.dll [2014-05-01] ()
ShellIconOverlayIdentifiers: [###MegaShellExtSyncing] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => C:\Users\Admin\AppData\Local\MEGAsync\ShellExtX64.dll [2014-05-01] ()
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => No File
ShellIconOverlayIdentifiers-x32: [###MegaShellExtPending] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => C:\Users\Admin\AppData\Local\MEGAsync\ShellExtX32.dll [2014-05-01] ()
ShellIconOverlayIdentifiers-x32: [###MegaShellExtSynced] -> {05B38830-F4E9-4329-978B-1DD28605D202} => C:\Users\Admin\AppData\Local\MEGAsync\ShellExtX32.dll [2014-05-01] ()
ShellIconOverlayIdentifiers-x32: [###MegaShellExtSyncing] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => C:\Users\Admin\AppData\Local\MEGAsync\ShellExtX32.dll [2014-05-01] ()
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\..\Interfaces\{93cd84c0-9c28-42cf-8441-bbe6616bf76d}: [DhcpNameServer] 10.0.0.138
Internet Explorer:
==================
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <======= ATTENTION
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://safesearch.avira.com/#web/result?source=art&q=
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxps://safesearch.avira.com/#web/result?source=art&q=
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxps://safesearch.avira.com/#web/result?source=art&q=
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = hxxps://safesearch.avira.com/#web/result?source=art&q=
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxps://safesearch.avira.com/#web/result?source=art&q=
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxps://safesearch.avira.com/#web/result?source=art&q=
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxps://safesearch.avira.com/#web/result?source=art&q=
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxps://safesearch.avira.com/#web/result?source=art&q=
HKU\S-1-5-21-2560372422-2021965399-549226919-1001\Software\Microsoft\Internet Explorer\Main,Search Page = hxxps://safesearch.avira.com/#web/result?source=art&q=
HKU\S-1-5-21-2560372422-2021965399-549226919-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://safesearch.avira.com/#web/result?source=art&q=
HKU\S-1-5-21-2560372422-2021965399-549226919-1001\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxps://safesearch.avira.com/#web/result?source=art&q=
HKU\S-1-5-21-2560372422-2021965399-549226919-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxps://safesearch.avira.com/#web/result?source=art&q=
SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-2560372422-2021965399-549226919-1001 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
BHO: ExplorerWnd Helper -> {10921475-03CE-4E04-90CE-E2E7EF20C814} -> C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallExplorer.dll [2015-08-25] (IObit)
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2015-08-12] (Microsoft Corporation)
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL [2015-07-14] (Microsoft Corporation)
BHO: Bitdefender Safepay™ for Internet Explorer 64-bit -> {ED858D4C-395F-4623-987B-B420994790C9} -> C:\Program Files\Bitdefender\Bitdefender Safepay\x64\spbxie64.dll [2014-11-11] (Bitdefender)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2015-08-12] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_60\bin\ssv.dll [2015-09-07] (Oracle Corporation)
BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL [2015-07-14] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_60\bin\jp2ssv.dll [2015-09-07] (Oracle Corporation)
BHO-x32: Bitdefender Safepay™ for Internet Explorer -> {ED858D4C-395F-4623-987B-B420994790C9} -> C:\Program Files\Bitdefender\Bitdefender Safepay\spbxie.dll [2014-11-11] (Bitdefender)
Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL [2015-02-17] (Microsoft Corporation)
FireFox:
========
FF ProfilePath: C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\cnxnxv4l.default
FF DefaultSearchEngine: Bing
FF SearchEngineOrder.3: Bing
FF SelectedSearchEngine: Bing
FF Homepage: about:home
FF Keyword.URL: hxxp://
www.bing.com/search?FORM=SK2MDF&PC=SK2M&q=
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_19_0_0_185.dll [2015-09-23] ()
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.40728.0\npctrl.dll [2015-07-28] ( Microsoft Corporation)
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~2\Office15\NPSPWRAP.DLL [2014-01-23] (Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_19_0_0_185.dll [2015-09-23] ()
FF Plugin-x32: @java.com/DTPlugin,version=11.60.2 -> C:\Program Files (x86)\Java\jre1.8.0_60\bin\dtplugin\npDeployJava1.dll [2015-09-07] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.60.2 -> C:\Program Files (x86)\Java\jre1.8.0_60\bin\plugin2\npjp2.dll [2015-09-07] (Oracle Corporation)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2015-05-19] (Microsoft Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.40728.0\npctrl.dll [2015-07-28] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~3\Office15\NPSPWRAP.DLL [2014-01-22] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.28.15\npGoogleUpdate3.dll [2015-09-15] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.28.15\npGoogleUpdate3.dll [2015-09-15] (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.2.0 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.2.1 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2015-07-03] (Adobe Systems Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npMeetingJoinPluginOC.dll [2015-05-19] (Microsoft Corporation)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nppdf32.dll [2015-07-03] (Adobe Systems Inc.)
FF SearchPlugin: C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\cnxnxv4l.default\searchplugins\avira-safesearch.xml [2015-09-21]
FF SearchPlugin: C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\cnxnxv4l.default\searchplugins\peklada-google.xml [2015-09-09]
FF SearchPlugin: C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\cnxnxv4l.default\searchplugins\vyhledvn-vide-ve-slub-youtube.xml [2015-05-29]
FF SearchPlugin: C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\cnxnxv4l.default\searchplugins\wikiskripta-cs.xml [2015-05-07]
FF Extension: Avira Browser Safety - C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\cnxnxv4l.default\Extensions\
abs@avira.com [2015-09-20]
FF Extension: Bing Search - C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\cnxnxv4l.default\Extensions\
bingsearch.full@microsoft.com [2015-09-09]
FF Extension: Advanced SystemCare Surfing Protection - C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\cnxnxv4l.default\Extensions\
iobitascsurfingprotection@iobit.com [2015-09-19]
FF Extension: Avira SafeSearch Plus - C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\cnxnxv4l.default\Extensions\
safesearchplus@avira.com [2015-09-20]
FF Extension: WOT - C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\cnxnxv4l.default\Extensions\{a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7} [2015-07-10]
FF Extension: MEGA - C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\cnxnxv4l.default\Extensions\
firefox@mega.co.nz.xpi [2015-04-30]
FF Extension: Adblock Plus - C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\cnxnxv4l.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2015-04-30]
FF Extension: Disable Anti-Adblock - C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\cnxnxv4l.default\Extensions\{d49a148e-817e-4025-bee3-5d541376de3b}.xpi [2015-04-30]
FF HKLM-x32\...\Firefox\Extensions: [{a171a864-424e-4d77-be5a-1ee220deccd3}] - C:\Program Files\Bitdefender\Bitdefender Safepay\spbxff
FF Extension: Bitdefender Safepay - C:\Program Files\Bitdefender\Bitdefender Safepay\spbxff [2015-09-27]
Chrome:
=======
CHR DefaultSearchURL: Default -> hxxp://
www.bing.com/search?FORM=__PARAM__DF&PC ... earchTerms}
CHR DefaultSearchKeyword: Default -> bing.com
CHR DefaultSuggestURL: Default -> hxxps://safesearch.avira.com/suggestions?q={searchTerms}&li=ff&hl=en
CHR Profile: C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Disk Google) - C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-05-22]
CHR Extension: (YouTube) - C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-05-22]
CHR Extension: (Vyhledávání Google) - C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-05-22]
CHR Extension: (Avira SafeSearch) - C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\khjilmcjipkeokomeekfnhkpbnhmgaje [2015-09-20]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-05-22]
CHR Extension: (Gmail) - C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-05-22]
CHR HKLM\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM\...\Chrome\Extension: [hhgfkbnifcfibjflcgibdmabmcgmjdco] - C:\Program Files\Bitdefender\Bitdefender Safepay\spbxcr.crx [2015-09-27]
CHR HKLM\...\Chrome\Extension: [khjilmcjipkeokomeekfnhkpbnhmgaje] - hxxps://clients2.google.com/service/update2/crx
CHR HKU\S-1-5-21-2560372422-2021965399-549226919-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [bmkckgpgekmanipelfidlhmkfcjicion] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [hhgfkbnifcfibjflcgibdmabmcgmjdco] - C:\Program Files\Bitdefender\Bitdefender Safepay\spbxcr.crx [2015-09-27]
CHR HKLM-x32\...\Chrome\Extension: [khjilmcjipkeokomeekfnhkpbnhmgaje] - hxxps://clients2.google.com/service/update2/crx
==================== Services (Whitelisted) ========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S2 AntiVirMailService; C:\Program Files (x86)\Avira\Antivirus\avmailc7.exe [932912 2015-09-23] (Avira Operations GmbH & Co. KG)
R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\Antivirus\sched.exe [461672 2015-09-23] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files (x86)\Avira\Antivirus\avguard.exe [461672 2015-09-23] (Avira Operations GmbH & Co. KG)
S2 AntiVirWebService; C:\Program Files (x86)\Avira\Antivirus\avwebg7.exe [1148688 2015-09-23] (Avira Operations GmbH & Co. KG)
S4 appdrvrem01; C:\WINDOWS\System32\appdrvrem01.exe [551896 2015-04-11] (Protection Technology)
R2 asComSvc; C:\Program Files (x86)\ASUS\AXSP\1.02.00\atkexComSvc.exe [936728 2014-01-28] ()
R2 AsSysCtrlService; C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.22\AsSysCtrlService.exe [1360016 2014-04-24] () [File not signed]
R2 Avira.ServiceHost; C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe [228104 2015-08-13] (Avira Operations GmbH & Co. KG)
R2 CmdAgent; C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe [5542472 2015-09-03] (COMODO)
S3 cmdvirth; C:\Program Files\COMODO\COMODO Internet Security\cmdvirth.exe [2265792 2015-08-05] (COMODO)
R2 LiveUpdateSvc; C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe [2909472 2015-08-25] (IObit)
R2 LMIGuardianSvc; C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe [417552 2015-08-03] (LogMeIn, Inc.)
R2 MbaeSvc; C:\Program Files (x86)\Malwarebytes Anti-Exploit\mbae-svc.exe [713016 2015-09-27] (Malwarebytes Corporation)
S4 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [1133880 2015-06-18] (Malwarebytes Corporation)
S2 MSSQL$ADK; c:\Program Files (x86)\Microsoft SQL Server\MSSQL11.ADK\MSSQL\Binn\sqlservr.exe [163008 2015-07-16] (Microsoft Corporation)
R2 Net Driver HPZ12; C:\Windows\System32\HPZinw12.dll [71680 2010-08-06] (Hewlett-Packard) [File not signed]
R2 OBKSvc; C:\Program Files\Bitdefender\Bitdefender Safepay\OBKSvc.exe [1242568 2014-11-11] (Bitdefender)
R2 Pml Driver HPZ12; C:\Windows\System32\HPZipm12.dll [89600 2010-08-06] (Hewlett-Packard) [File not signed]
S4 SQLAgent$ADK; c:\Program Files (x86)\Microsoft SQL Server\MSSQL11.ADK\MSSQL\Binn\SQLAGENT.EXE [448704 2015-07-16] (Microsoft Corporation)
R2 UPDATESRV_SAFEPAY; C:\Program Files\Bitdefender\Bitdefender Safepay\updatesrv.exe [66784 2014-10-28] (Bitdefender)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [362928 2015-07-10] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [24864 2015-07-10] (Microsoft Corporation)
===================== Drivers (Whitelisted) ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S0 amdkmafd; C:\Windows\System32\drivers\amdkmafd.sys [31992 2015-06-03] (Advanced Micro Devices, Inc.)
S3 AndnetBus; C:\Windows\System32\drivers\lgandnetbus64.sys [20992 2015-04-20] (LG Electronics Inc.)
S3 AndNetDiag; C:\Windows\system32\DRIVERS\lgandnetdiag64.sys [30720 2015-04-20] (LG Electronics Inc.)
S3 ANDNetModem; C:\Windows\system32\DRIVERS\lgandnetmodem64.sys [37376 2015-04-20] (LG Electronics Inc.)
R2 AODDriver4.2.0; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys [59616 2014-02-11] (Advanced Micro Devices)
R1 appdrv01; C:\Windows\System32\Drivers\appdrv01.sys [2715824 2015-04-12] (Protection Technology)
R1 AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [13440 2015-07-27] ()
R3 AtiHDAudioService; C:\Windows\system32\drivers\AtihdWT6.sys [102912 2015-07-22] (Advanced Micro Devices)
S3 AU8168; C:\Windows\system32\DRIVERS\au630x64.sys [792648 2013-09-23] (Realtek )
S0 Avgboota; C:\Windows\System32\DRIVERS\avgboota.sys [21152 2015-03-27] (AVG Technologies CZ, s.r.o.)
R1 Avgdiska; C:\Windows\System32\DRIVERS\avgdiska.sys [162784 2015-03-11] (AVG Technologies CZ, s.r.o.)
R1 Avgfwfd; C:\Windows\system32\DRIVERS\avgfwd6a.sys [77760 2015-07-09] (AVG Technologies CZ, s.r.o.)
R1 AVGIDSDriver; C:\Windows\System32\DRIVERS\avgidsdrivera.sys [313264 2015-08-19] (AVG Technologies CZ, s.r.o.)
S1 Avgldx64; C:\Windows\System32\DRIVERS\avgldx64.sys [259040 2015-06-16] (AVG Technologies CZ, s.r.o.)
R0 Avgloga; C:\Windows\System32\DRIVERS\avgloga.sys [378336 2015-05-07] (AVG Technologies CZ, s.r.o.)
R0 Avgmfx64; C:\Windows\System32\DRIVERS\avgmfx64.sys [250800 2015-08-04] (AVG Technologies CZ, s.r.o.)
R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [137800 2015-09-23] (Avira Operations GmbH & Co. KG)
R0 Avgrkx64; C:\Windows\System32\DRIVERS\avgrkx64.sys [40928 2015-03-20] (AVG Technologies CZ, s.r.o.)
R1 Avgwfpa; C:\Windows\system32\DRIVERS\avgwfpa.sys [304560 2015-08-04] (AVG Technologies CZ, s.r.o.)
R1 avipbb; C:\Windows\system32\DRIVERS\avipbb.sys [148632 2015-08-06] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\system32\DRIVERS\avkmgr.sys [28600 2015-08-06] (Avira Operations GmbH & Co. KG)
R2 avnetflt; C:\Windows\system32\DRIVERS\avnetflt.sys [74440 2015-09-23] (Avira Operations GmbH & Co. KG)
R1 CFRMD; C:\Windows\System32\DRIVERS\CFRMD.sys [40224 2014-06-26] (Windows (R) Win 7 DDK provider)
R1 cmderd; C:\Windows\System32\DRIVERS\cmderd.sys [21720 2015-08-05] (COMODO)
R1 cmdGuard; C:\Windows\System32\DRIVERS\cmdguard.sys [827632 2015-08-05] (COMODO)
R1 cmdhlp; C:\Windows\system32\DRIVERS\cmdhlp.sys [35056 2015-08-05] (COMODO)
S3 dot4; C:\Windows\system32\DRIVERS\Dot4.sys [151968 2015-04-02] (Windows (R) Win 7 DDK provider)
S3 Dot4Print; C:\Windows\System32\drivers\Dot4Prt.sys [27040 2015-04-02] (Windows (R) Win 7 DDK provider)
R1 epp64; C:\Windows\System32\DRIVERS\epp64.sys [135800 2015-06-18] (Emsisoft GmbH)
R1 ESProtectionDriver; C:\Program Files (x86)\Malwarebytes Anti-Exploit\mbae64.sys [63064 2015-09-27] ()
R0 gzflt; C:\Windows\System32\DRIVERS\gzflt.sys [146720 2012-09-05] (BitDefender LLC)
R3 Hamachi; C:\Windows\system32\DRIVERS\Hamdrv.sys [45680 2015-07-14] (LogMeIn Inc.)
R1 HWiNFO32; C:\WINDOWS\SysWOW64\drivers\HWiNFO64A.SYS [26528 2015-03-23] (REALiX(tm))
R1 inspect; C:\Windows\system32\DRIVERS\inspect.sys [127232 2015-08-05] (COMODO)
S3 MBAMProtector; C:\WINDOWS\system32\drivers\mbam.sys [25816 2015-06-18] (Malwarebytes Corporation)
S3 MBAMWebAccessControl; C:\WINDOWS\system32\drivers\mwac.sys [64216 2015-06-18] (Malwarebytes Corporation)
R0 pwdrvio; C:\Windows\System32\pwdrvio.sys [19152 2015-06-13] ()
S3 pwdspio; C:\WINDOWS\system32\pwdspio.sys [12504 2015-06-13] ()
R3 rt640x64; C:\Windows\System32\drivers\rt640x64.sys [895256 2015-06-23] (Realtek )
S3 UdeCx; C:\Windows\System32\drivers\udecx.sys [44032 2015-07-10] ()
S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [44568 2015-07-10] (Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [291680 2015-07-10] (Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [119648 2015-07-10] (Microsoft Corporation)
S3 MFE_RR; \??\C:\Users\Admin\AppData\Local\Temp\mfe_rr.sys [X]
S3 wfpcapture; \SystemRoot\System32\drivers\wfpcapture.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2015-09-27 21:08 - 2015-09-27 21:09 - 00025389 _____ C:\Users\Admin\Downloads\FRST.txt
2015-09-27 21:07 - 2015-09-27 21:08 - 00000000 ____D C:\FRST
2015-09-27 21:07 - 2015-09-27 21:07 - 02192384 _____ (Farbar) C:\Users\Admin\Downloads\FRST64.exe
2015-09-27 20:58 - 2015-09-27 20:58 - 00016148 _____ C:\WINDOWS\system32\ZALMANR1_Admin_HistoryPrediction.bin
2015-09-27 20:52 - 2015-09-27 20:53 - 00000000 ____D C:\Users\Admin\Desktop\Nová složka
2015-09-27 20:22 - 2015-09-27 20:22 - 00201499 _____ C:\ProgramData\1443378030.bdinstall.bin
2015-09-27 20:21 - 2015-09-27 20:21 - 00002180 _____ C:\Users\Public\Desktop\Bitdefender Safepay.lnk
2015-09-27 20:21 - 2015-09-27 20:21 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bitdefender Safepay
2015-09-27 20:21 - 2015-09-27 20:21 - 00000000 ____D C:\ProgramData\Bitdefender
2015-09-27 20:21 - 2012-09-05 16:30 - 00146720 _____ (BitDefender LLC) C:\WINDOWS\system32\Drivers\gzflt.sys
2015-09-27 20:20 - 2015-09-27 20:21 - 00000000 ____D C:\ProgramData\Bitdefender Safepay
2015-09-27 20:20 - 2015-09-27 20:20 - 00000000 ____D C:\Users\Admin\AppData\Roaming\Bitdefender Safepay
2015-09-27 20:19 - 2015-09-27 20:19 - 01941256 _____ C:\Users\Admin\Downloads\bitdefender_safepay.exe
2015-09-27 17:31 - 2015-09-27 18:01 - 00000000 ____D C:\Users\Admin\Desktop\Fotky (prodej)
2015-09-27 15:25 - 2015-09-27 15:27 - 00000000 ____D C:\ProgramData\Malwarebytes Anti-Exploit
2015-09-27 15:25 - 2015-09-27 15:25 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Exploit
2015-09-27 15:25 - 2015-09-27 15:25 - 00000000 ____D C:\Program Files (x86)\Malwarebytes Anti-Exploit
2015-09-27 15:21 - 2015-09-27 15:21 - 06130064 _____ (WiseCleaner.com ) C:\Users\Admin\Downloads\WiseCare365.exe
2015-09-27 14:48 - 2015-09-27 20:57 - 00001856 _____ C:\WINDOWS\PFRO.log
2015-09-27 14:16 - 2015-09-27 14:43 - 00000000 ____D C:\Program Files (x86)\Vuze
2015-09-27 14:16 - 2015-09-27 14:40 - 00000000 ____D C:\Users\Admin\AppData\Roaming\Azureus
2015-09-27 14:16 - 2015-09-27 14:16 - 00000000 ____D C:\Users\Admin\.swt
2015-09-27 13:40 - 2015-09-27 13:42 - 130426640 _____ (Microsoft Corporation) C:\Users\Admin\Downloads\msert.exe
2015-09-27 13:37 - 2015-09-27 13:37 - 00931338 _____ C:\Users\Admin\Downloads\Vuze.Plus.5.1.0.0.keygen.by.FFF.exe.zip
2015-09-27 13:30 - 2015-09-27 13:30 - 00072016 _____ (Azureus Software, Inc.) C:\Users\Admin\Downloads\Vuze_Installer.exe
2015-09-27 13:29 - 2015-09-27 13:29 - 00072496 _____ (Azureus Software, Inc.) C:\Users\Admin\Downloads\VuzeBittorrentClientInstaller.exe
2015-09-27 12:52 - 2015-09-27 12:52 - 00000000 ____D C:\Users\Admin\Downloads\Vuze 5.6.0.0
2015-09-27 02:40 - 2015-09-27 02:44 - 73990610 _____ C:\Users\Admin\Downloads\Vuze-4.9.0.0---BitTorrent-Client.zip
2015-09-27 02:39 - 2015-09-27 02:39 - 00378747 _____ C:\Users\Admin\Downloads\Vuze-2015.rar
2015-09-27 02:06 - 2015-09-27 02:06 - 00000000 ____D C:\Users\Admin\AppData\Roaming\Crystal Security
2015-09-27 02:01 - 2015-09-27 02:01 - 00513906 _____ C:\Users\Admin\Downloads\crystal_security_3.5.0.143.zip
2015-09-27 01:51 - 2015-09-27 20:57 - 00000275 _____ C:\WINDOWS\WindowsUpdate.log
2015-09-27 01:51 - 2015-09-27 17:34 - 00001070 _____ C:\WINDOWS\setupact.log
2015-09-27 01:51 - 2015-09-27 01:51 - 00000000 _____ C:\WINDOWS\setuperr.log
2015-09-27 01:45 - 2015-09-27 16:48 - 00000000 ____D C:\Users\Admin\AppData\Local\NPE
2015-09-27 01:45 - 2015-09-27 01:45 - 00000000 ____D C:\ProgramData\Norton
2015-09-27 01:12 - 2015-09-27 01:12 - 02865192 _____ (Malwarebytes ) C:\Users\Admin\Downloads\mbae-setup-1.07.1.1015.exe
2015-09-27 01:12 - 2015-09-27 01:12 - 00204496 _____ (Malwarebytes) C:\Users\Admin\Downloads\startuplite-setup-1.07.exe
2015-09-27 01:12 - 2015-09-27 01:12 - 00065232 _____ (Malwarebytes) C:\Users\Admin\Downloads\regassassin-setup-1.03.exe
2015-09-27 01:09 - 2015-09-27 01:09 - 00950649 _____ (DriverIdentifier ) C:\Users\Admin\Downloads\driveridentifier_setup.exe
2015-09-27 01:07 - 2015-09-27 01:08 - 10107368 _____ (Symantec Corporation) C:\Users\Admin\Downloads\NPE.exe
2015-09-27 01:02 - 2015-09-27 01:02 - 00202611 _____ C:\Users\Admin\Downloads\CCEnhancer-4.3.2-multilingual.zip
2015-09-26 22:36 - 2015-09-26 22:36 - 06582016 _____ (COMODO) C:\Users\Admin\Downloads\APTAT.exe
2015-09-26 21:53 - 2015-09-26 21:53 - 00676349 _____ (PortableAppZ.blogspot.com) C:\Users\Admin\Downloads\CCleaner_Portable_MultiVersion_32-64-bit_Multilingual_Online.exe
2015-09-26 14:19 - 2015-09-26 14:19 - 06677440 _____ (Piriform Ltd) C:\Users\Admin\Downloads\ccsetup510.exe
2015-09-26 01:52 - 2015-09-27 14:48 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2015-09-26 01:05 - 2015-09-26 01:05 - 03076418 _____ C:\Users\Admin\Downloads\AutoHotkey112206_Install.exe
2015-09-25 23:35 - 2015-09-25 23:35 - 00000000 ____D C:\Users\Admin\Downloads\Malwarebytes Anti-Exploit Premium 1.07.1.1010 Final
2015-09-25 23:33 - 2015-09-26 23:51 - 00000000 ____D C:\Users\Admin\Downloads\Microsoft Office 2016 16.0.4266.1003
2015-09-25 14:12 - 2015-09-25 14:12 - 03462676 _____ C:\Users\Admin\Downloads\50516700(1).rar
2015-09-25 14:11 - 2015-09-25 14:11 - 03462676 _____ C:\Users\Admin\Downloads\50516700.rar
2015-09-25 12:39 - 2015-09-25 12:40 - 186267648 _____ C:\Users\Admin\Downloads\012.Teorie.velkeho.tresku.S01E12.Jeruzalemska.dualita.WEBrip.CZ.avi
2015-09-25 12:38 - 2015-09-25 12:42 - 186615808 _____ C:\Users\Admin\Downloads\Teorie velkeho tresku s01e11 Livancova anomalie.avi
2015-09-24 16:34 - 2015-09-24 16:36 - 186284032 _____ C:\Users\Admin\Downloads\Teorie velkeho tresku s01e10 Loobenfelduv rozpad.avi.part
2015-09-23 22:48 - 2015-09-23 22:48 - 00001886 _____ C:\Users\Public\Desktop\COMODO Firewall.lnk
2015-09-23 22:48 - 2015-09-23 22:48 - 00000000 ____D C:\WINDOWS\System32\Tasks\COMODO
2015-09-23 22:48 - 2015-09-23 22:48 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\COMODO
2015-09-23 22:32 - 2015-09-23 22:32 - 05075834 _____ C:\Users\Admin\Downloads\Setup.zip
2015-09-23 22:28 - 2015-09-23 22:32 - 225688096 _____ (COMODO) C:\Users\Admin\Downloads\cispremium_installer(1).exe
2015-09-23 22:25 - 2015-09-23 22:48 - 00000000 ____D C:\ProgramData\Comodo
2015-09-23 22:19 - 2015-09-23 22:23 - 225688096 _____ (COMODO) C:\Users\Admin\Downloads\cispremium_installer.exe
2015-09-23 21:04 - 2015-09-23 21:18 - 00000000 ____D C:\Users\Admin\Documents\Fax
2015-09-23 21:02 - 2015-09-23 21:02 - 00003584 _____ C:\Users\Admin\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2015-09-20 19:43 - 2015-09-20 19:43 - 00000000 ____D C:\Users\Admin\AppData\Roaming\Avira
2015-09-20 19:35 - 2015-09-23 13:48 - 00137800 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avgntflt.sys
2015-09-20 19:35 - 2015-09-23 13:48 - 00074440 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avnetflt.sys
2015-09-20 19:35 - 2015-08-06 20:58 - 00148632 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avipbb.sys
2015-09-20 19:35 - 2015-08-06 20:58 - 00028600 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avkmgr.sys
2015-09-20 19:31 - 2015-09-20 19:35 - 00000000 ____D C:\ProgramData\Avira
2015-09-20 19:31 - 2015-09-20 19:31 - 00001279 _____ C:\Users\Public\Desktop\Avira Launcher.lnk
2015-09-20 19:17 - 2015-09-20 19:17 - 04772888 _____ (Avira Operations GmbH & Co. KG) C:\Users\Admin\Downloads\avira_en_av_55feea09a52db__ws.exe
2015-09-20 16:06 - 2015-09-20 16:06 - 00003186 _____ C:\WINDOWS\System32\Tasks\Origin
2015-09-20 16:06 - 2015-09-20 16:06 - 00000000 ____D C:\Users\Admin\AppData\Roaming\Origin
2015-09-20 15:46 - 2015-09-20 15:46 - 00000000 ____D C:\Program Files (x86)\Mad Max
2015-09-20 12:34 - 2015-09-20 12:38 - 429256938 _____ C:\Users\Admin\Downloads\001.bmp
2015-09-20 00:20 - 2015-09-20 00:30 - 1460520960 ____R C:\Users\Admin\Downloads\Insidious 3 Počátek.avi
2015-09-19 23:50 - 2015-09-20 00:02 - 1319640782 _____ C:\Users\Admin\Downloads\SINISTER-2-2015-Horor-by-Becker.avi
2015-09-19 23:21 - 2015-09-19 23:21 - 00000000 ____D C:\Program Files (x86)\Kaspersky Lab
2015-09-19 10:56 - 2015-09-19 10:56 - 00000000 ____D C:\Program Files\Common Files\AV
2015-09-19 10:54 - 2015-09-19 10:54 - 00000000 ____D C:\ProgramData\{BAF091CA-86C4-4627-ADA1-897E2621C1B0}
2015-09-19 10:54 - 2015-01-10 15:32 - 00128288 _____ (IObit) C:\WINDOWS\SysWOW64\IObitSmartDefragExtension.dll20150919154659.dll
2015-09-19 10:47 - 2015-09-20 17:12 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot - Search & Destroy 2
2015-09-19 10:47 - 2015-09-20 14:29 - 00000000 ____D C:\WINDOWS\System32\Tasks\Safer-Networking
2015-09-19 10:47 - 2013-09-20 10:49 - 00021040 _____ (Safer Networking Limited) C:\WINDOWS\system32\sdnclean64.exe
2015-09-18 23:43 - 2015-09-18 23:44 - 01506832 _____ (Skype Technologies S.A.) C:\Users\Admin\Downloads\SkypeSetup(2).exe
2015-09-18 23:43 - 2015-09-18 23:44 - 01506832 _____ (Skype Technologies S.A.) C:\Users\Admin\Downloads\SkypeSetup(1).exe
2015-09-18 23:21 - 2015-09-19 16:10 - 00000000 ____D C:\Program Files (x86)\Lavasoft
2015-09-18 23:21 - 2015-09-18 23:21 - 00000000 ____D C:\Users\Admin\AppData\Roaming\Lavasoft
2015-09-18 22:55 - 2015-09-18 22:56 - 29619504 _____ (IObit ) C:\Users\Admin\Downloads\IObit-Malware-Fighter-Setup.exe
2015-09-18 22:53 - 2015-09-18 22:54 - 23442496 _____ (SUPERAntiSpyware) C:\Users\Admin\Downloads\SUPERAntiSpyware.exe
2015-09-18 22:52 - 2015-09-18 22:52 - 46525608 _____ (Safer-Networking Ltd. ) C:\Users\Admin\Downloads\spybot-2.4.exe
2015-09-18 22:51 - 2015-09-18 22:51 - 02726024 _____ (Lavasoft Limited ) C:\Users\Admin\Downloads\driver_updater.exe
2015-09-09 23:44 - 2015-09-09 23:44 - 03058696 _____ (Dominik Reichl ) C:\Users\Admin\Downloads\KeePass-2.30-Setup.exe
2015-09-09 23:21 - 2015-09-10 15:00 - 00002087 _____ C:\Users\Admin\Desktop\FileHippo App Manager.lnk
2015-09-09 23:21 - 2015-09-09 23:21 - 00002117 _____ C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FileHippo App Manager.lnk
2015-09-09 23:21 - 2015-09-09 23:21 - 00000000 ____D C:\Program Files (x86)\FileHippo.com
2015-09-09 23:19 - 2015-09-09 23:19 - 02190552 _____ C:\Users\Admin\Downloads\appmanagersetup_2.0_b4_292.exe
2015-09-09 23:18 - 2015-09-09 23:20 - 39399424 _____ C:\Users\Admin\Downloads\SkypeSetup.msi
2015-09-09 23:13 - 2015-09-09 23:13 - 00021712 _____ (Phoenix Technologies) C:\WINDOWS\SysWOW64\Drivers\DrvAgent64.SYS
2015-09-09 23:13 - 2015-09-09 23:13 - 00000000 ____D C:\Users\Admin\AppData\Local\eSupport.com
2015-09-09 23:01 - 2015-09-09 23:01 - 04195288 _____ C:\Users\Admin\Downloads\majorgeeks_software_updates_and_news_setup.exe
2015-09-09 22:52 - 2015-09-27 14:48 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2015-09-09 22:32 - 2015-09-09 22:32 - 05490752 _____ (Secunia) C:\Users\Admin\Downloads\PSISetup.exe
2015-09-09 22:30 - 2015-09-09 22:31 - 01384064 _____ (Skype Technologies S.A.) C:\Users\Admin\Downloads\SkypeSetup.exe
2015-09-08 22:28 - 2015-09-02 02:25 - 03586560 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2015-09-08 22:28 - 2015-08-27 08:04 - 21874688 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2015-09-08 22:28 - 2015-08-27 07:55 - 24594944 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2015-09-08 22:28 - 2015-08-27 07:47 - 12503552 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2015-09-08 22:28 - 2015-08-27 07:23 - 19324416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2015-09-08 22:28 - 2015-08-27 07:16 - 18806272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2015-09-08 22:28 - 2015-08-27 07:09 - 11262464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2015-09-08 22:27 - 2015-09-02 03:20 - 00077400 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll
2015-09-08 22:27 - 2015-09-02 02:25 - 01382912 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2015-09-08 22:27 - 2015-08-27 08:36 - 03620736 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2015-09-08 22:27 - 2015-08-27 08:32 - 00608936 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe
2015-09-08 22:27 - 2015-08-27 07:59 - 02880032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2015-09-08 22:27 - 2015-08-27 07:54 - 00541248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe
2015-09-08 22:27 - 2015-08-27 07:54 - 00365568 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\atmfd.dll
2015-09-08 22:27 - 2015-08-27 07:51 - 02350592 _____ (Microsoft Corporation) C:\WINDOWS\system32\authui.dll
2015-09-08 22:27 - 2015-08-27 07:51 - 01774592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Immersive.dll
2015-09-08 22:27 - 2015-08-27 07:49 - 01008640 _____ (Microsoft Corporation) C:\WINDOWS\system32\schedsvc.dll
2015-09-08 22:27 - 2015-08-27 07:43 - 00826880 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2015-09-08 22:27 - 2015-08-27 07:43 - 00576000 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2015-09-08 22:27 - 2015-08-27 07:42 - 00596480 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSync.dll
2015-09-08 22:27 - 2015-08-27 07:42 - 00578560 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe
2015-09-08 22:27 - 2015-08-27 07:42 - 00187904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.PicturePassword.dll
2015-09-08 22:27 - 2015-08-27 07:42 - 00184320 _____ (Microsoft Corporation) C:\WINDOWS\system32\shacct.dll
2015-09-08 22:27 - 2015-08-27 07:39 - 00045568 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll
2015-09-08 22:27 - 2015-08-27 07:23 - 00303104 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\atmfd.dll
2015-09-08 22:27 - 2015-08-27 07:16 - 02153472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\authui.dll
2015-09-08 22:27 - 2015-08-27 07:16 - 01612288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Immersive.dll
2015-09-08 22:27 - 2015-08-27 07:12 - 00650752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
2015-09-08 22:27 - 2015-08-27 07:12 - 00504320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2015-09-08 22:27 - 2015-08-27 07:11 - 00484352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSync.dll
2015-09-08 22:27 - 2015-08-27 07:11 - 00139776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shacct.dll
2015-09-08 22:27 - 2015-08-27 07:08 - 00037376 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll
2015-09-07 21:53 - 2015-09-07 21:53 - 00000000 ____D C:\Users\Admin\AppData\Roaming\AVG2015
2015-09-07 21:52 - 2015-09-20 16:58 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG
2015-09-07 21:51 - 2015-09-21 16:12 - 00000000 ____D C:\Program Files (x86)\AVG
2015-09-07 21:51 - 2015-09-19 23:10 - 00000000 ___HD C:\$AVG
2015-09-07 21:45 - 2015-09-07 21:45 - 00000000 _____ C:\WINDOWS\system32\REN586E.tmp
2015-09-07 21:44 - 2015-09-07 21:44 - 00243595 _____ C:\ProgramData\1441654844.bdinstall.bin
2015-09-07 19:05 - 2015-09-07 19:04 - 00097888 _____ (Oracle Corporation) C:\WINDOWS\SysWOW64\WindowsAccessBridge-32.dll
2015-09-07 18:35 - 2015-09-09 20:44 - 00001802 _____ C:\Users\Admin\Desktop\Word 2013.lnk
2015-09-07 17:48 - 2015-09-25 13:55 - 00000000 ____D C:\Users\Admin\Desktop\Čtenářský deník
2015-09-07 17:45 - 2015-09-19 23:12 - 00000000 ____D C:\Users\Admin\AppData\Local\Avg2015
2015-09-07 17:28 - 2015-04-29 17:18 - 00000000 ____D C:\Users\Admin\Desktop\GTA V - Exclusive content DLC Unlocker
2015-09-05 20:15 - 2015-09-05 20:15 - 00000220 _____ C:\Users\Admin\Desktop\Garry's Mod.url
2015-09-05 18:19 - 2015-09-27 20:58 - 00000974 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2015-09-05 18:19 - 2015-09-27 20:30 - 00000978 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2015-09-05 18:19 - 2015-09-15 17:25 - 00004036 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA
2015-09-05 18:19 - 2015-09-15 17:25 - 00003804 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore
2015-09-05 14:11 - 2015-09-05 14:11 - 00000000 ____D C:\Users\Admin\AppData\Temp
2015-09-05 02:16 - 2015-09-05 02:16 - 00000385 _____ C:\Users\Admin\AppData\Roaminguser_gensett.xml
2015-09-05 02:15 - 2015-09-05 02:15 - 00000385 _____ C:\WINDOWS\system32\user_gensett.xml
2015-09-05 02:13 - 2015-09-20 14:33 - 00000000 ____D C:\WINDOWS\Minidump
2015-09-05 01:46 - 2015-09-05 01:46 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_Kernel_avchv_01009.Wdf
2015-09-05 01:46 - 2015-05-29 09:50 - 01730304 _____ (Microsoft Corporation) C:\WINDOWS\system32\WdfCoInstaller01009.dll
2015-09-05 01:46 - 2007-04-11 11:11 - 00511328 _____ (Microsoft Corporation) C:\WINDOWS\capicom.dll
2015-09-03 23:47 - 2015-09-03 23:47 - 00162816 _____ C:\Users\Admin\Downloads\pecivo-Kaufland-slozeni.xls
2015-09-03 20:42 - 2015-09-03 20:42 - 00000000 ____D C:\Users\Admin\Desktop\Tor Browser
2015-09-03 18:29 - 2015-09-03 18:29 - 00065736 _____ (Prevx) C:\WINDOWS\system32\Drivers\pxrts.sys
2015-09-03 18:29 - 2015-09-03 18:29 - 00036384 _____ (Prevx) C:\WINDOWS\system32\Drivers\pxscan.sys
2015-09-03 18:29 - 2015-09-03 18:29 - 00024024 _____ (Prevx) C:\WINDOWS\system32\Drivers\pxkbf.sys
2015-09-03 18:23 - 2015-09-04 21:32 - 00000000 ____D C:\Program Files (x86)\NoVirusThanks
2015-09-03 18:18 - 2015-09-27 20:56 - 00000296 _____ C:\WINDOWS\Tasks\Uninstaller_SkipUac_Admin.job
2015-09-03 18:18 - 2015-09-27 20:54 - 00002482 _____ C:\WINDOWS\System32\Tasks\Uninstaller_SkipUac_Admin
2015-09-03 18:03 - 2015-09-03 18:04 - 00000000 _____ C:\Users\Admin\Downloads\DWS.log
2015-09-03 17:20 - 2015-09-03 17:20 - 00945272 _____ (Prevx) C:\Users\Admin\Downloads\prevxcsifree.exe
2015-09-03 12:52 - 2015-09-03 12:52 - 00579408 _____ (COMODO) C:\WINDOWS\system32\guard64.dll
2015-09-03 12:52 - 2015-09-03 12:52 - 00445472 _____ (COMODO) C:\WINDOWS\SysWOW64\guard32.dll
2015-09-02 23:43 - 2015-09-02 23:43 - 00174592 _____ (WZT) C:\Users\Admin\Downloads\DWS_Lite.exe
2015-09-02 23:14 - 2015-06-23 04:37 - 00091272 _____ (Realtek Semiconductor Corporation) C:\WINDOWS\system32\RtNicProp64.dll
2015-09-02 22:54 - 2015-09-02 22:54 - 00000000 ____D C:\Program Files\Realtek
2015-09-02 22:53 - 2015-06-02 12:48 - 04477656 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\Drivers\RTKVHD64.sys
2015-09-02 22:53 - 2015-06-02 12:15 - 02088737 _____ C:\WINDOWS\system32\Drivers\RTAIODAT.DAT
2015-09-02 22:53 - 2015-06-02 11:15 - 01747160 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RCoInstII64.dll
2015-09-02 22:53 - 2015-06-02 08:57 - 02847960 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RltkAPO64.dll
2015-09-02 22:53 - 2015-06-02 08:57 - 02531544 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\SysWOW64\RltkAPO.dll
2015-09-02 22:53 - 2015-05-27 12:51 - 02461016 _____ (Dolby Laboratories) C:\WINDOWS\system32\DolbyDAX2APOv211.dll
2015-09-02 22:53 - 2015-05-27 12:51 - 00944984 _____ (Dolby Laboratories) C:\WINDOWS\system32\DolbyDAX2APOProp.dll
2015-09-02 22:53 - 2015-05-26 05:59 - 00166616 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtkCfg64.dll
2015-09-02 22:53 - 2015-05-25 09:18 - 03195416 _____ (Fortemedia Corporation) C:\WINDOWS\system32\FMAPO64.dll
2015-09-02 22:53 - 2015-05-20 10:14 - 03234520 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtkApi64.dll
2015-09-02 22:53 - 2015-05-18 08:47 - 02702040 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RTSnMg64.cpl
2015-09-02 22:53 - 2015-05-15 13:27 - 02918104 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtPgEx64.dll
2015-09-02 22:53 - 2015-05-15 10:32 - 01316056 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RTCOM64.dll
2015-09-02 22:53 - 2015-04-28 04:52 - 05706688 _____ (Nahimic Inc) C:\WINDOWS\system32\NAHIMICV2apo.dll
2015-09-02 22:53 - 2015-04-27 10:09 - 00328816 _____ (ICEpower a/s) C:\WINDOWS\system32\ICEsoundAPO64.dll
2015-09-02 22:53 - 2015-04-23 23:42 - 00858256 _____ (Sound Research, Corp.) C:\WINDOWS\system32\SEHDRA64.dll
2015-09-02 22:53 - 2015-04-23 23:42 - 00684176 _____ (Sound Research, Corp.) C:\WINDOWS\system32\SECOMN64.dll
2015-09-02 22:53 - 2015-04-23 23:42 - 00435856 _____ (Sound Research, Corp.) C:\WINDOWS\system32\SEAPO64.dll
2015-09-02 22:53 - 2015-04-23 23:41 - 00555664 _____ (Sound Research, Corp.) C:\WINDOWS\SysWOW64\SECOMN32.DLL
2015-09-02 22:53 - 2015-04-13 10:25 - 03262184 _____ (Yamaha Corporation) C:\WINDOWS\system32\YamahaAE2.dll
2015-09-02 22:53 - 2015-04-09 09:23 - 01559744 _____ (Conexant Systems Inc.) C:\WINDOWS\system32\CX64APO.dll
2015-09-02 22:53 - 2015-04-03 07:24 - 01365768 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioAPO6064.dll
2015-09-02 22:53 - 2015-02-05 11:48 - 12834736 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxVoiceAPO4064.dll
2015-09-02 22:53 - 2015-02-05 11:48 - 02789808 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioAPO7064.dll
2015-09-02 22:53 - 2015-02-03 18:38 - 01413776 _____ (Synopsys, Inc.) C:\WINDOWS\system32\SRRPTR64.dll
2015-09-02 22:53 - 2015-02-03 18:38 - 00454288 _____ (Synopsys, Inc.) C:\WINDOWS\system32\SRAPO64.dll
2015-09-02 22:53 - 2015-02-03 18:38 - 00369296 _____ (Synopsys, Inc.) C:\WINDOWS\system32\SRCOM64.dll
2015-09-02 22:53 - 2015-02-03 18:38 - 00329360 _____ (Synopsys, Inc.) C:\WINDOWS\SysWOW64\SRCOM.dll
2015-09-02 22:53 - 2015-02-03 18:38 - 00329360 _____ (Synopsys, Inc.) C:\WINDOWS\system32\SRCOM.dll
2015-09-02 22:53 - 2015-01-23 12:16 - 00213432 _____ (TOSHIBA Corporation) C:\WINDOWS\system32\tossaemaxapo64.dll
2015-09-02 22:53 - 2015-01-19 12:10 - 72113152 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RCoRes64.dat
2015-09-02 22:53 - 2015-01-19 03:08 - 12975360 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxVoiceAPO3064.dll
2015-09-02 22:53 - 2014-12-11 02:10 - 01104040 _____ (SRS Labs, Inc.) C:\WINDOWS\system32\slcnt64.dll
2015-09-02 22:53 - 2014-12-11 02:10 - 00943784 _____ (DTS, Inc.) C:\WINDOWS\system32\sl3apo64.dll
2015-09-02 22:53 - 2014-12-11 02:10 - 00734376 _____ (DTS, Inc.) C:\WINDOWS\system32\sltech64.dll
2015-09-02 22:53 - 2014-12-11 02:10 - 00250536 _____ (TODO: <Company name>) C:\WINDOWS\system32\slprp64.dll
2015-09-02 22:53 - 2014-11-11 07:44 - 00631000 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtDataProc64.dll
2015-09-02 22:53 - 2014-11-04 07:42 - 06242576 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPP64AF3.dll
2015-09-02 22:53 - 2014-11-04 07:42 - 01933584 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPD64AF3.dll
2015-09-02 22:53 - 2014-11-04 07:42 - 00336144 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPO64AF3.dll
2015-09-02 22:53 - 2014-11-04 07:42 - 00284944 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPA64F3.dll
2015-09-02 22:53 - 2014-10-24 04:12 - 05234952 _____ (Nahimic Inc) C:\WINDOWS\system32\NAHIMICAPOlfx.dll
2015-09-02 22:53 - 2014-10-24 04:12 - 00995120 _____ (Nahimic Inc) C:\WINDOWS\system32\NahimicAPONSControl.dll
2015-09-02 22:53 - 2014-09-24 05:31 - 07087448 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPP64A.dll
2015-09-02 22:53 - 2014-09-24 05:31 - 01939800 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPD64A.dll
2015-09-02 22:53 - 2014-09-24 05:31 - 00315736 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPO64A.dll
2015-09-02 22:53 - 2014-09-24 05:31 - 00261464 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPA64.dll
2015-09-02 22:53 - 2014-08-14 13:16 - 05804772 _____ C:\WINDOWS\system32\Drivers\rtvienna.dat
2015-09-02 22:53 - 2014-07-03 08:44 - 01499984 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioAPO5064.dll
2015-09-02 22:53 - 2014-07-03 08:44 - 00979280 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxVoiceAPO2064.dll
2015-09-02 22:53 - 2014-06-17 13:17 - 00856992 _____ (TOSHIBA Corporation) C:\WINDOWS\system32\tadefxapo264.dll
2015-09-02 22:53 - 2014-06-09 04:59 - 00560328 _____ (Andrea Electronics Corporation) C:\WINDOWS\system32\AERTAC64.dll
2015-09-02 22:53 - 2014-05-22 10:24 - 00096568 _____ C:\WINDOWS\system32\audioLibVc.dll
2015-09-02 22:53 - 2014-04-17 11:42 - 01136728 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioAPO4064.dll
2015-09-02 22:53 - 2014-04-14 11:52 - 00003008 _____ C:\WINDOWS\system32\Drivers\DTSU2P.DAT
2015-09-02 22:53 - 2014-04-10 06:19 - 02101848 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\WavesGUILib64.dll
2015-09-02 22:53 - 2014-04-10 06:19 - 02041432 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioEQ64.dll
2015-09-02 22:53 - 2014-02-27 14:02 - 02162992 _____ (Yamaha Corporation) C:\WINDOWS\system32\YamahaAE.dll
2015-09-02 22:53 - 2014-01-31 11:27 - 01313904 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxSpeechAPO64.dll
2015-09-02 22:53 - 2013-10-11 06:47 - 00113576 _____ (Real Sound Lab SIA) C:\WINDOWS\system32\CONEQMSAPOGUILibrary.dll
2015-09-02 22:53 - 2013-10-11 05:31 - 00947760 _____ (Sony Corporation) C:\WINDOWS\system32\SFSS_APO.dll
2015-09-02 22:53 - 2013-10-06 18:26 - 00501184 _____ (DTS) C:\WINDOWS\system32\DTSU2PLFX64.dll
2015-09-02 22:53 - 2013-10-06 18:26 - 00487360 _____ (DTS) C:\WINDOWS\system32\DTSU2PGFX64.dll
2015-09-02 22:53 - 2013-10-06 18:26 - 00415680 _____ (DTS) C:\WINDOWS\system32\DTSU2PREC64.dll
2015-09-02 22:53 - 2013-08-14 09:36 - 00662784 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxVolumeSDAPO.dll
2015-09-02 22:53 - 2013-08-14 09:35 - 00663296 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioAPO30.dll
2015-09-02 22:53 - 2013-07-23 09:39 - 14048512 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioRealtek64.dll
2015-09-02 22:53 - 2013-07-23 09:39 - 00922880 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioAPOShell64.dll
2015-09-02 22:53 - 2013-06-25 06:47 - 00871856 _____ (TOSHIBA Corporation) C:\WINDOWS\system32\tossaeapo64.dll
2015-09-02 22:53 - 2013-06-25 06:47 - 00162224 _____ (TOSHIBA Corporation) C:\WINDOWS\system32\toseaeapo64.dll
2015-09-02 22:53 - 2013-06-25 06:46 - 00582056 _____ (TOSHIBA Corporation) C:\WINDOWS\system32\tosasfapo64.dll
2015-09-02 22:53 - 2013-06-21 05:01 - 00109848 _____ C:\WINDOWS\system32\AcpiServiceVnA64.dll
2015-09-02 22:53 - 2013-04-03 08:13 - 00906800 _____ (Sony Corporation) C:\WINDOWS\system32\MISS_APO.dll
2015-09-02 22:53 - 2012-08-31 13:18 - 07164176 _____ (Dolby Laboratories) C:\WINDOWS\system32\R4EEP64A.dll
2015-09-02 22:53 - 2012-08-31 13:17 - 00434960 _____ (Dolby Laboratories) C:\WINDOWS\system32\R4EED64A.dll
2015-09-02 22:53 - 2012-08-31 13:17 - 00141584 _____ (Dolby Laboratories) C:\WINDOWS\system32\R4EEL64A.dll
2015-09-02 22:53 - 2012-08-31 13:17 - 00124176 _____ (Dolby Laboratories) C:\WINDOWS\system32\R4EEA64A.dll
2015-09-02 22:53 - 2012-08-31 13:17 - 00075024 _____ (Dolby Laboratories) C:\WINDOWS\system32\R4EEG64A.dll
2015-09-02 22:53 - 2012-03-08 05:47 - 00108640 _____ (Andrea Electronics Corporation) C:\WINDOWS\system32\AERTAR64.dll
2015-09-02 22:53 - 2012-01-10 04:20 - 00065944 _____ (TOSHIBA CORPORATION.) C:\WINDOWS\system32\tepeqapo64.dll
2015-09-02 22:53 - 2011-12-20 09:32 - 00331880 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtlCPAPI64.dll
2015-09-02 22:53 - 2011-11-22 10:28 - 00014952 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtkCoLDR64.dll
2015-09-02 22:53 - 2011-09-02 08:21 - 00221024 _____ (Synopsys, Inc.) C:\WINDOWS\system32\SFNHK64.dll
2015-09-02 22:53 - 2011-09-02 08:21 - 00081248 _____ (Synopsys, Inc.) C:\WINDOWS\system32\SFCOM64.dll
2015-09-02 22:53 - 2011-09-02 08:21 - 00078688 _____ (Synopsys, Inc.) C:\WINDOWS\system32\SFAPO64.dll
2015-09-02 22:53 - 2011-08-23 11:00 - 00603984 _____ (Knowles Acoustics ) C:\WINDOWS\system32\KAAPORT64.dll
2015-09-02 22:53 - 2011-05-31 03:42 - 01756264 _____ (DTS) C:\WINDOWS\system32\DTSS2SpeakerDLL64.dll
2015-09-02 22:53 - 2011-05-31 03:42 - 01568360 _____ (DTS) C:\WINDOWS\system32\DTSS2HeadphoneDLL64.dll
2015-09-02 22:53 - 2011-05-31 03:42 - 01486952 _____ (DTS) C:\WINDOWS\system32\DTSBoostDLL64.dll
2015-09-02 22:53 - 2011-05-31 03:42 - 00728680 _____ (DTS) C:\WINDOWS\system32\DTSBassEnhancementDLL64.dll
2015-09-02 22:53 - 2011-05-31 03:42 - 00712296 _____ (DTS) C:\WINDOWS\system32\DTSSymmetryDLL64.dll
2015-09-02 22:53 - 2011-05-31 03:42 - 00693352 _____ (DTS) C:\WINDOWS\system32\DTSVoiceClarityDLL64.dll
2015-09-02 22:53 - 2011-05-31 03:42 - 00491112 _____ (DTS) C:\WINDOWS\system32\DTSNeoPCDLL64.dll
2015-09-02 22:53 - 2011-05-31 03:42 - 00432744 _____ (DTS) C:\WINDOWS\system32\DTSLimiterDLL64.dll
2015-09-02 22:53 - 2011-05-31 03:42 - 00428648 _____ (DTS) C:\WINDOWS\system32\DTSGainCompensatorDLL64.dll
2015-09-02 22:53 - 2011-05-31 03:42 - 00242792 _____ (DTS) C:\WINDOWS\system32\DTSLFXAPO64.dll
2015-09-02 22:53 - 2011-05-31 03:42 - 00242792 _____ (DTS) C:\WINDOWS\system32\DTSGFXAPO64.dll
2015-09-02 22:53 - 2011-05-31 03:42 - 00241768 _____ (DTS) C:\WINDOWS\system32\DTSGFXAPONS64.dll
2015-09-02 22:53 - 2011-03-17 06:17 - 01361336 _____ (TOSHIBA Corporation) C:\WINDOWS\system32\tosade.dll
2015-09-02 22:53 - 2011-03-07 11:11 - 00148416 _____ (TOSHIBA Corporation) C:\WINDOWS\system32\tadefxapo.dll
2015-09-02 22:53 - 2010-11-08 01:31 - 00375128 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RTEEP64A.dll
2015-09-02 22:53 - 2010-11-08 01:31 - 00310104 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RP3DHT64.dll
2015-09-02 22:53 - 2010-11-08 01:31 - 00310104 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RP3DAA64.dll
2015-09-02 22:53 - 2010-11-08 01:31 - 00204120 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RTEED64A.dll
2015-09-02 22:53 - 2010-11-08 01:31 - 00101208 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RTEEL64A.dll
2015-09-02 22:53 - 2010-11-08 01:31 - 00078680 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RTEEG64A.dll
2015-09-02 22:53 - 2010-09-27 03:34 - 00318808 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioAPO20.dll
2015-09-02 22:53 - 2010-07-22 10:48 - 00074064 _____ (Virage Logic Corporation / Sonic Focus) C:\WINDOWS\SysWOW64\SFCOM.dll
2015-09-02 22:53 - 2009-11-24 03:55 - 00518896 _____ (SRS Labs, Inc.) C:\WINDOWS\system32\SRSTSX64.dll
2015-09-02 22:53 - 2009-11-24 03:55 - 00211184 _____ (SRS Labs, Inc.) C:\WINDOWS\system32\SRSTSH64.dll
2015-09-02 22:53 - 2009-11-24 03:55 - 00198896 _____ (SRS Labs, Inc.) C:\WINDOWS\system32\SRSHP64.dll
2015-09-02 22:53 - 2009-11-24 03:55 - 00155888 _____ (SRS Labs, Inc.) C:\WINDOWS\system32\SRSWOW64.dll
2015-09-02 22:10 - 2015-09-02 22:10 - 00638836 _____ C:\Users\Admin\Downloads\ePSXe190.zip
2015-09-02 16:19 - 2015-09-02 16:19 - 00060821 _____ C:\WINDOWS\SysWOW64\CCCInstall_201509021619462401.log
2015-09-02 15:04 - 2015-09-19 10:38 - 00000000 ____D C:\Users\Admin\AppData\Roaming\Apple Computer
2015-09-02 15:04 - 2015-09-02 15:04 - 00000000 ____D C:\Users\Admin\AppData\Local\Apple Computer
2015-09-01 19:37 - 2015-09-01 19:37 - 00000222 _____ C:\Users\Admin\Desktop\Terraria.url
2015-09-01 16:00 - 2015-09-01 16:01 - 00000000 ____D C:\Users\Admin\Desktop\Fotky (dovolená)
2015-08-31 14:13 - 2015-09-01 20:28 - 00000000 ____D C:\ftb
2015-08-31 14:06 - 2015-09-01 20:50 - 00000000 ____D C:\Users\Admin\AppData\Local\ftblauncher
2015-08-31 14:06 - 2015-08-31 14:14 - 00000000 ____D C:\Users\Admin\AppData\Roaming\ftblauncher
2015-08-30 18:55 - 2015-08-30 18:55 - 00000000 ___RD C:\Sandbox
2015-08-30 14:23 - 2015-09-09 20:44 - 00002144 _____ C:\Users\Admin\Desktop\VirusTotal Uploader 2.2.lnk
2015-08-30 14:23 - 2015-08-30 14:23 - 00000000 ____D C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\VirusTotal Uploader 2.2
2015-08-30 14:23 - 2015-08-30 14:23 - 00000000 ____D C:\Program Files (x86)\VirusTotalUploader2
2015-08-30 14:02 - 2015-08-30 14:02 - 00000000 ____D C:\Users\Admin\AppData\Roaming\CCleaner
2015-08-29 21:55 - 2015-08-29 21:55 - 00000000 ____D C:\Users\Admin\AppData\Local\O&O
2015-08-29 21:54 - 2015-08-30 01:50 - 00000000 ____D C:\WINDOWS\system32\oodag
2015-08-29 21:51 - 2015-08-29 21:51 - 00000000 ____D C:\ProgramData\OO Software
2015-08-29 20:17 - 2015-09-09 20:44 - 00001665 _____ C:\Users\Public\Desktop\Grand Theft Auto V.lnk
2015-08-29 20:17 - 2015-08-29 20:17 - 00000000 ____D C:\ProgramData\Socialclub
2015-08-29 11:27 - 2015-08-20 08:07 - 08019296 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2015-08-29 11:27 - 2015-08-20 08:06 - 00609592 _____ (Microsoft Corporation) C:\WINDOWS\system32\ci.dll
2015-08-29 11:27 - 2015-08-20 08:02 - 22324656 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2015-08-29 11:27 - 2015-08-20 07:26 - 00168960 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgent.exe
2015-08-29 11:27 - 2015-08-20 07:21 - 00193024 _____ (Microsoft Corporation) C:\WINDOWS\system32\EnterpriseModernAppMgmtCSP.dll
2015-08-29 11:27 - 2015-08-20 07:16 - 20857848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2015-08-29 11:27 - 2015-08-20 07:13 - 02235904 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2015-08-29 11:27 - 2015-08-18 09:56 - 02498808 _____ C:\WINDOWS\system32\CoreUIComponents.dll
2015-08-29 11:27 - 2015-08-18 09:55 - 00373072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBXHCI.SYS
2015-08-29 11:27 - 2015-08-18 09:54 - 01396064 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll
2015-08-29 11:27 - 2015-08-18 09:27 - 01771592 _____ C:\WINDOWS\SysWOW64\CoreUIComponents.dll
2015-08-29 11:27 - 2015-08-18 09:24 - 00963920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicenseManager.dll
2015-08-29 11:27 - 2015-08-18 09:13 - 00497664 _____ (Microsoft Corporation) C:\WINDOWS\system32\WlanMediaManager.dll
2015-08-29 11:27 - 2015-08-18 09:13 - 00387584 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupShim.dll
2015-08-29 11:27 - 2015-08-18 09:12 - 02225664 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkMobileSettings.dll
2015-08-29 11:27 - 2015-08-18 09:07 - 02226688 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll
2015-08-29 11:27 - 2015-08-18 09:04 - 01234944 _____ (Microsoft Corporation) C:\WINDOWS\system32\aitstatic.exe
2015-08-29 11:27 - 2015-08-18 09:04 - 00859136 _____ (Microsoft Corporation) C:\WINDOWS\system32\modernexecserver.dll
2015-08-29 11:27 - 2015-08-18 08:59 - 01294336 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcnwiz.dll
2015-08-29 11:27 - 2015-08-18 08:59 - 00140288 _____ (Microsoft Corporation) C:\WINDOWS\system32\WcnApi.dll
2015-08-29 11:27 - 2015-08-18 08:58 - 00187392 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupSvc.dll
2015-08-29 11:27 - 2015-08-18 08:58 - 00117760 _____ (Microsoft Corporation) C:\WINDOWS\system32\dafWCN.dll
2015-08-29 11:27 - 2015-08-18 08:58 - 00112640 _____ (Microsoft Corporation) C:\WINDOWS\system32\fdWCN.dll
2015-08-29 11:27 - 2015-08-18 08:58 - 00050176 _____ (Microsoft Corporation) C:\WINDOWS\system32\WcnNetsh.dll
2015-08-29 11:27 - 2015-08-18 08:57 - 00045568 _____ (Microsoft Corporation) C:\WINDOWS\system32\wfdprov.dll
2015-08-29 11:27 - 2015-08-18 08:56 - 00079872 _____ (Microsoft Corporation) C:\WINDOWS\system32\BthRadioMedia.dll
2015-08-29 11:27 - 2015-08-18 08:55 - 02178560 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2015-08-29 11:27 - 2015-08-18 08:54 - 00322048 _____ (Microsoft Corporation) C:\WINDOWS\system32\vaultsvc.dll
2015-08-29 11:27 - 2015-08-18 08:54 - 00247296 _____ C:\WINDOWS\system32\facecredentialprovider.dll
2015-08-29 11:27 - 2015-08-18 08:52 - 01888768 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2015-08-29 11:27 - 2015-08-18 08:50 - 01795072 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2015-08-29 11:27 - 2015-08-18 08:49 - 01061888 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll
2015-08-29 11:27 - 2015-08-18 08:49 - 00274432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupShim.dll
2015-08-29 11:27 - 2015-08-18 08:49 - 00246272 _____ (Microsoft Corporation) C:\WINDOWS\system32\PackageStateRoaming.dll
2015-08-29 11:27 - 2015-08-18 08:36 - 01226752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wcnwiz.dll
2015-08-29 11:27 - 2015-08-18 08:35 - 00100352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WcnApi.dll
2015-08-29 11:27 - 2015-08-18 08:35 - 00095744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fdWCN.dll
2015-08-29 11:27 - 2015-08-18 08:34 - 00037376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wfdprov.dll
2015-08-29 11:27 - 2015-08-18 08:29 - 01593344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll
2015-08-29 11:27 - 2015-08-18 08:26 - 00195584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PackageStateRoaming.dll
2015-08-29 11:27 - 2015-08-18 06:44 - 00008847 _____ C:\WINDOWS\system32\ResPriHMImageList
2015-08-29 00:20 - 2015-09-09 20:45 - 00001439 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IObit Uninstaller.lnk
2015-08-29 00:20 - 2015-09-09 20:44 - 00001427 _____ C:\Users\Public\Desktop\IObit Uninstaller.lnk
2015-08-28 13:52 - 2015-09-26 21:36 - 00000000 ___RD C:\Program Files (x86)\Skype
2015-08-28 13:50 - 2015-08-28 13:50 - 00000000 ____D C:\Users\Admin\AppData\Roaming\Sun
2015-08-28 13:50 - 2015-08-28 13:50 - 00000000 ____D C:\Users\Admin\.oracle_jre_usage
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2015-09-27 21:00 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\AppReadiness
2015-09-27 20:57 - 2015-07-10 14:21 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2015-09-27 20:57 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\sru
2015-09-27 20:57 - 2015-07-10 11:05 - 00262144 ___SH C:\WINDOWS\system32\config\BBI
2015-09-27 20:57 - 2015-03-23 20:12 - 00000000 ____D C:\Hry
2015-09-27 20:54 - 2015-03-25 17:21 - 00000000 ____D C:\Users\Admin\AppData\Roaming\vlc
2015-09-27 20:21 - 2015-06-15 02:00 - 00000000 ____D C:\Program Files\Bitdefender
2015-09-27 20:15 - 2015-05-18 21:06 - 00000914 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2015-09-27 17:38 - 2015-04-03 20:23 - 00000000 ____D C:\Users\Admin\AppData\Local\CrashDumps
2015-09-27 15:40 - 2015-07-15 00:01 - 00113880 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys
2015-09-27 14:56 - 2015-07-31 16:49 - 02342644 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2015-09-27 14:56 - 2015-07-10 18:02 - 01072426 _____ C:\WINDOWS\system32\perfh005.dat
2015-09-27 14:56 - 2015-07-10 18:02 - 00270474 _____ C:\WINDOWS\system32\perfc005.dat
2015-09-27 14:51 - 2015-04-21 22:08 - 00000000 ____D C:\Users\Admin\AppData\Local\LogMeIn Hamachi
2015-09-27 14:48 - 2015-05-22 01:43 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2015-09-27 14:48 - 2015-03-30 21:14 - 00230416 _____ C:\WINDOWS\system32\Drivers\fvstore.dat
2015-09-27 14:47 - 2015-03-23 20:01 - 00000000 ____D C:\Program Files (x86)\Steam
2015-09-27 14:16 - 2015-07-31 16:33 - 00000000 ____D C:\Users\Admin
2015-09-27 01:50 - 2015-03-21 21:10 - 00007602 _____ C:\Users\Admin\AppData\Local\Resmon.ResmonCfg
2015-09-26 21:52 - 2015-04-02 01:41 - 00000000 ____D C:\Users\Admin\AppData\Roaming\Skype
2015-09-26 21:36 - 2015-04-02 01:41 - 00000000 ____D C:\ProgramData\Skype
2015-09-26 14:22 - 2015-04-01 23:27 - 00000863 _____ C:\Users\Public\Desktop\CCleaner.lnk
2015-09-26 14:22 - 2015-03-23 23:15 - 00000000 ____D C:\Program Files\CCleaner
2015-09-26 12:37 - 2015-03-23 20:13 - 00000000 ____D C:\ProgramData\ProductData
2015-09-25 17:33 - 2015-08-02 18:52 - 00000693 _____ C:\Users\Admin\Desktop\Touhou.lnk
2015-09-23 22:48 - 2015-07-15 02:53 - 00000000 ____D C:\Program Files\COMODO
2015-09-23 21:50 - 2015-07-10 12:55 - 00000000 ____D C:\WINDOWS\CbsTemp
2015-09-23 21:17 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\FxsTmp
2015-09-23 14:15 - 2015-03-23 21:37 - 00003900 _____ C:\WINDOWS\System32\Tasks\adobe flash player updater
2015-09-23 13:49 - 2015-07-16 01:22 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira
2015-09-22 11:37 - 2015-03-21 09:51 - 00000000 ____D C:\Users\Admin\AppData\Local\Packages
2015-09-21 22:33 - 2015-08-02 02:45 - 11790493 _____ C:\Users\Admin\Desktop\Nový textový dokument.txt
2015-09-20 19:35 - 2015-07-16 01:22 - 00000000 ____D C:\Program Files (x86)\Avira
2015-09-20 19:31 - 2015-07-31 16:29 - 00000000 ____D C:\ProgramData\Package Cache
2015-09-20 17:12 - 2015-06-14 23:27 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kholat
2015-09-20 17:12 - 2015-06-09 15:12 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Repacky od tomi2k9
2015-09-20 16:39 - 2015-03-21 20:58 - 00000000 ____D C:\ProgramData\MFAData
2015-09-20 14:34 - 2015-07-10 13:04 - 00000000 ____D C:\Program Files\Windows Defender
2015-09-20 14:33 - 2015-07-31 19:33 - 00000000 ____D C:\Users\Baruška
2015-09-20 14:33 - 2015-07-31 16:44 - 00000000 ____D C:\Users\MSSQL$ADK
2015-09-20 14:33 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\WinMetadata
2015-09-20 14:33 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\ELAMBKUP
2015-09-20 14:33 - 2015-05-22 17:42 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
2015-09-20 14:33 - 2015-03-23 23:35 - 00000000 ____D C:\Users\Admin\AppData\Roaming\ProductData
2015-09-20 14:29 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\registration
2015-09-20 14:28 - 2015-05-22 17:40 - 00000000 ____D C:\Program Files (x86)\Google
2015-09-19 23:21 - 2015-07-10 11:05 - 00065536 ___SH C:\WINDOWS\system32\config\ELAM
2015-09-19 23:21 - 2013-08-22 15:36 - 00000000 ____D C:\Users\Default.migrated
2015-09-19 16:08 - 2015-03-23 20:13 - 00000000 ____D C:\Users\Admin\AppData\Roaming\IObit
2015-09-19 16:08 - 2015-03-23 20:13 - 00000000 ____D C:\ProgramData\IObit
2015-09-19 16:08 - 2015-03-23 20:13 - 00000000 ____D C:\Program Files (x86)\IObit
2015-09-15 21:16 - 2015-03-24 22:05 - 00001128 _____ C:\Users\Admin\Desktop\League of Legends.lnk
2015-09-15 18:12 - 2015-07-10 13:06 - 00812008 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2015-09-15 18:12 - 2015-07-10 13:06 - 00178152 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2015-09-13 00:26 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\System
2015-09-12 23:40 - 2015-08-05 05:27 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LogMeIn Hamachi
2015-09-12 23:40 - 2015-08-05 05:27 - 00000000 ____D C:\Program Files (x86)\LogMeIn Hamachi
2015-09-12 23:40 - 2015-04-21 22:07 - 00000842 _____ C:\Users\Public\Desktop\LogMeIn Hamachi.lnk
2015-09-12 11:28 - 2015-05-22 17:40 - 00000000 ____D C:\Users\Admin\AppData\Local\Google
2015-09-11 08:18 - 2015-07-10 14:20 - 00350584 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2015-09-11 08:16 - 2015-07-10 18:05 - 00000000 ____D C:\Program Files\Windows Journal
2015-09-11 08:16 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\appraiser
2015-09-11 08:14 - 2015-07-10 13:04 - 00000000 ___RD C:\WINDOWS\PurchaseDialog
2015-09-11 08:14 - 2015-03-21 21:39 - 00000000 ____D C:\Program Files\Microsoft Silverlight
2015-09-11 08:14 - 2015-03-21 21:39 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight
2015-09-10 17:01 - 2015-03-23 23:37 - 00000000 ____D C:\Program Files (x86)\Secunia
2015-09-09 23:48 - 2015-04-01 23:32 - 00001186 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\KeePass 2.lnk
2015-09-09 23:48 - 2015-04-01 23:32 - 00000000 ____D C:\Program Files (x86)\KeePass Password Safe 2
2015-09-09 23:48 - 2015-04-01 23:23 - 00000000 ____D C:\Users\Admin\AppData\Roaming\KeePass
2015-09-09 20:45 - 2015-07-31 16:40 - 00001552 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk
2015-09-09 20:45 - 2015-06-29 19:00 - 00002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2015-09-09 20:45 - 2015-05-22 01:43 - 00001171 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2015-09-09 20:44 - 2015-08-22 19:52 - 00000727 _____ C:\Users\Admin\Desktop\ZOMBI.lnk
2015-09-09 20:44 - 2015-07-31 18:20 - 00002358 _____ C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2015-09-09 20:44 - 2015-07-15 00:01 - 00001114 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2015-09-09 20:44 - 2015-05-26 22:20 - 00000755 _____ C:\Users\Admin\Desktop\Start Tor Browser.lnk
2015-09-09 20:44 - 2015-05-22 01:43 - 00001159 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk
2015-09-09 20:44 - 2015-04-22 22:01 - 00001714 _____ C:\Users\Public\Desktop\Recuva.lnk
2015-09-09 20:44 - 2015-04-19 00:25 - 00001377 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Centrum řešení HP.lnk
2015-09-09 20:44 - 2015-04-02 21:00 - 00002046 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Zoner Photo Studio 17.lnk
2015-09-09 20:44 - 2015-03-25 23:52 - 00000990 _____ C:\Users\Public\Desktop\CPUID HWMonitor.lnk
2015-09-09 20:44 - 2015-03-25 17:21 - 00001082 _____ C:\Users\Public\Desktop\VLC media player.lnk
2015-09-09 20:44 - 2015-03-24 00:50 - 00001032 _____ C:\Users\Public\Desktop\PWGen.lnk
2015-09-09 20:44 - 2015-03-24 00:26 - 00000931 _____ C:\Users\Admin\Desktop\TrueCrypt.lnk
2015-09-09 20:44 - 2015-03-23 23:59 - 00001190 _____ C:\Users\Admin\Desktop\Telegram.lnk
2015-09-09 20:44 - 2015-03-23 20:45 - 00001656 _____ C:\Users\Public\Desktop\Far Cry 4.lnk
2015-09-09 20:44 - 2015-03-23 20:01 - 00000975 _____ C:\Users\Public\Desktop\Steam.lnk
2015-09-09 20:43 - 2015-08-23 17:53 - 00001125 _____ C:\Users\Admin\Desktop\MEGAsync.lnk
2015-09-09 20:43 - 2015-06-23 18:28 - 00000833 _____ C:\Users\Admin\Desktop\Serious Sam 2.lnk
2015-09-09 20:43 - 2015-04-30 01:36 - 00001113 _____ C:\Users\Admin\Desktop\Fallout 3.lnk
2015-09-09 20:43 - 2015-04-05 01:24 - 00000679 _____ C:\Users\Admin\Desktop\Movies.lnk
2015-09-09 20:43 - 2015-04-04 23:58 - 00002206 _____ C:\Users\Admin\Desktop\GTA IV.lnk
2015-09-09 20:43 - 2015-03-26 10:20 - 00001603 _____ C:\Users\Admin\Desktop\Dying Light.lnk
2015-09-09 16:05 - 2015-03-26 00:15 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013
2015-09-09 16:05 - 2015-03-26 00:12 - 00000000 ____D C:\ProgramData\Microsoft Help
2015-09-09 16:04 - 2013-08-22 15:25 - 00000202 _____ C:\WINDOWS\win.ini
2015-09-09 15:46 - 2015-03-21 10:54 - 00000000 ____D C:\WINDOWS\system32\MRT
2015-09-07 21:44 - 2015-06-15 01:55 - 00000000 ____D C:\Program Files\Common Files\Bitdefender
2015-09-07 19:07 - 2015-03-29 17:42 - 00000000 ____D C:\ProgramData\Oracle
2015-09-07 19:06 - 2015-04-02 01:21 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2015-09-07 19:04 - 2015-04-02 01:21 - 00000000 ____D C:\Program Files (x86)\Java
2015-09-07 17:54 - 2015-03-21 21:03 - 00000000 ____D C:\Users\Admin\AppData\Local\Adobe
2015-09-07 17:52 - 2015-07-10 13:04 - 00000000 ___RD C:\WINDOWS\Offline Web Pages
2015-09-06 23:31 - 2015-03-23 20:00 - 00000000 ____D C:\Program Files\WinRAR
2015-09-06 12:25 - 2015-03-24 00:50 - 00000000 ____D C:\Users\Admin\AppData\Roaming\PWGen
2015-09-05 20:04 - 2015-03-21 21:40 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
2015-09-05 18:58 - 2015-03-24 00:50 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PWGen
2015-09-05 18:58 - 2015-03-24 00:50 - 00000000 ____D C:\Program Files (x86)\PWGen
2015-09-05 14:16 - 2015-06-15 02:00 - 00000000 ____D C:\ProgramData\BDLogging
2015-09-05 01:23 - 2015-08-05 14:17 - 00000000 ____D C:\avast! sandbox
2015-09-05 01:23 - 2015-03-23 19:38 - 00000000 ____D C:\ProgramData\AVAST Software
2015-09-03 19:44 - 2015-03-28 00:49 - 00000000 ____D C:\ProgramData\Malwarebytes' Anti-Malware (portable)
2015-09-03 18:54 - 2015-07-15 00:01 - 00109272 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamchameleon.sys
2015-09-03 00:29 - 2015-07-27 21:19 - 00000000 ____D C:\Program Files (x86)\ASUS
2015-09-02 23:22 - 2015-07-31 16:29 - 00000000 ____D C:\Program Files\AMD
2015-09-02 23:14 - 2015-05-18 21:53 - 00000000 ____D C:\Program Files (x86)\Realtek
2015-09-02 23:14 - 2015-03-30 20:57 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2015-09-02 23:01 - 2015-05-18 21:52 - 00000000 ___HD C:\Program Files (x86)\Temp
2015-09-02 22:54 - 2015-07-31 16:28 - 00000000 ____D C:\WINDOWS\SysWOW64\RTCOM
2015-09-02 22:33 - 2015-08-22 20:18 - 00000000 ____D C:\AMD
2015-09-02 17:10 - 2015-07-31 16:28 - 00000000 ____D C:\WINDOWS\system32\DAX2
2015-09-02 16:57 - 2015-04-01 23:27 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2015-09-02 16:20 - 2015-07-31 16:30 - 00000000 ____D C:\ProgramData\AMD
2015-09-02 16:15 - 2015-03-30 22:21 - 00000000 ____D C:\Users\Admin\AppData\Local\Rockstar Games
2015-09-02 15:31 - 2015-03-21 10:00 - 00002878 _____ C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-2560372422-2021965399-549226919-1001
2015-09-01 15:55 - 2015-04-01 23:51 - 00209518 _____ C:\Users\Admin\Desktop\DTBS.kdbx
2015-08-31 11:18 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\rescache
2015-08-30 03:27 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\oobe
2015-08-30 01:58 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\NDF
2015-08-29 20:20 - 2015-04-15 12:41 - 00000000 ____D C:\Program Files\Rockstar Games
2015-08-29 20:20 - 2015-04-15 12:41 - 00000000 ____D C:\Program Files (x86)\Rockstar Games
2015-08-29 20:17 - 2015-07-31 16:35 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hry
2015-08-29 01:35 - 2015-04-04 21:36 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Rockstar Games
==================== Files in the root of some directories =======
2015-09-23 21:02 - 2015-09-23 21:02 - 0003584 _____ () C:\Users\Admin\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2015-03-24 00:36 - 2015-03-24 00:36 - 0000218 _____ () C:\Users\Admin\AppData\Local\recently-used.xbel
2015-03-21 21:10 - 2015-09-27 01:50 - 0007602 _____ () C:\Users\Admin\AppData\Local\Resmon.ResmonCfg
2015-09-07 21:44 - 2015-09-07 21:44 - 0243595 _____ () C:\ProgramData\1441654844.bdinstall.bin
2015-09-27 20:22 - 2015-09-27 20:22 - 0201499 _____ () C:\ProgramData\1443378030.bdinstall.bin
2015-07-15 22:06 - 2015-07-15 22:06 - 0000000 _____ () C:\ProgramData\cis20E3.exe
2015-05-15 00:13 - 2015-05-15 00:13 - 0000000 _____ () C:\ProgramData\cis2AD1.exe
2015-05-15 18:59 - 2015-05-15 18:59 - 0000000 _____ () C:\ProgramData\cisE1C7.exe
2015-05-15 00:21 - 2015-05-15 00:21 - 0000000 _____ () C:\ProgramData\cisE73A.exe
2015-05-15 00:11 - 2015-05-15 00:11 - 0000000 _____ () C:\ProgramData\cisF5EB.exe
2015-05-15 00:43 - 2015-05-15 00:43 - 0000000 _____ () C:\ProgramData\cisFFC2.exe
2015-07-31 16:29 - 2015-07-31 16:29 - 0000000 ____H () C:\ProgramData\DP45977C.lfl
2015-04-19 00:23 - 2015-07-14 02:23 - 0009270 _____ () C:\ProgramData\hpzinstall.log
Files to move or delete:
====================
C:\Users\Admin\AppData\Roaming\Origin\update.vbe
C:\ProgramData\cis20E3.exe
C:\ProgramData\cis2AD1.exe
C:\ProgramData\cisE1C7.exe
C:\ProgramData\cisE73A.exe
C:\ProgramData\cisF5EB.exe
C:\ProgramData\cisFFC2.exe
Some files in TEMP:
====================
C:\Users\Admin\AppData\Local\Temp\avgnt.exe
C:\Users\Admin\AppData\Local\Temp\i4jdel0.exe
C:\Users\Admin\AppData\Local\Temp\SkypeSetup.exe
C:\Users\Admin\AppData\Local\Temp\unins000.exe
==================== Bamital & volsnap =================
(There is no automatic fix for files that do not pass verification.)
C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\wininit.exe => File is digitally signed
C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\SysWOW64\explorer.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\SysWOW64\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\SysWOW64\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\SysWOW64\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
C:\WINDOWS\SysWOW64\dnsapi.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2015-09-24 15:15
==================== End of FRST.txt ============================