Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

prosím o kontrolu logu

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zamčeno
Zpráva
Autor
Rybiz
Návštěvník
Návštěvník
Příspěvky: 36
Registrován: 13 zář 2007 20:40

prosím o kontrolu logu

#1 Příspěvek od Rybiz »

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:17-01-2015
Ran by CPadmin (administrator) on PC-ZALOHA1 (17-01-2016 20:13:15)
Running from C:\Users\CPadmin.CC_PRACOVISTE6\Desktop
Loaded Profiles: CPadmin (Available Profiles: CPadmin & test & Administrator)
Platform: Windows 7 Professional Service Pack 1 (X64) Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\MsMpEng.exe
(AMD) C:\Windows\System32\atiesrxx.exe
(Creative Technology Ltd) C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe
(AMD) C:\Windows\System32\atieclxx.exe
(Hi-Rez Studios) C:\Hry\Smite\HiPatchService.exe
() C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\gmsd_re_021010207\upgmsd_re_021010207.exe
(Microsoft Corporation) C:\Program Files (x86)\Common Files\microsoft shared\VS7DEBUG\mdm.exe
() C:\Windows\SysWOW64\PnkBstrA.exe
(Fujitsu Technology Solutions) C:\Program Files (x86)\Fujitsu\SystemDiagnostics\OnlineDiagnostic\TestManager\TestHandler.exe
(TFuns LIMITED) C:\ProgramData\FWdMF\WdMan.exe
(Microsoft Corporation) C:\Windows\System32\GWX\GWX.exe
(RealVNC Ltd.) C:\Program Files (x86)\RealVNC\VNC4\winvnc4.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\NisSrv.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe
(Logitech Inc.) C:\Program Files\Logitech\Gaming Software\LWEMon.exe
(Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe
() C:\Program Files (x86)\BloodyToneMaker\BloodyToneMaker\Bloody ToneMaker1.exe
(Advanced Micro Devices Inc.) C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\MOM.exe
(Raptr, Inc) C:\Program Files (x86)\Raptr\raptr.exe
() C:\Program Files (x86)\BloodyToneMaker\BloodyToneMaker\SDK\CM_LibraryIO.exe
(Raptr, Inc) C:\Program Files (x86)\Raptr\raptr_im.exe
(Raptr Inc.) C:\Program Files (x86)\Raptr\raptr_ep64.exe
(Advanced Micro Devices Inc.) C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\CCC.exe
(Sysinternals process Explorer) C:\ProgramData\Tmp0x0x\ProtectWindowsManager.exe
() C:\Hry\Smite\HirezLauncherUI.exe
() C:\Hry\Smite\HirezLauncherUI.exe
() C:\Hry\Smite\HirezLauncherUI.exe
(Valve Corporation) C:\Program Files (x86)\Steam\Steam.exe
(Valve Corporation) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
(Valve Corporation) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Google Inc.) C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe


==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [8060960 2009-08-05] (Realtek Semiconductor)
HKLM\...\Run: [MSC] => c:\Program Files\Microsoft Security Client\msseces.exe [1337000 2015-04-30] (Microsoft Corporation)
HKLM\...\Run: [Start WingMan Profiler] => C:\Program Files\Logitech\Gaming Software\LWEMon.exe [190536 2010-06-14] (Logitech Inc.)
HKLM-x32\...\Run: [Raptr] => C:\Program Files (x86)\Raptr\raptrstub.exe [56080 2015-12-11] (Raptr, Inc)
HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\amd64\CLIStart.exe [767176 2015-08-04] (Advanced Micro Devices, Inc.)
HKLM-x32\...\RunOnce: [upgmsd_re_021010207.exe] => C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\gmsd_re_021010207\upgmsd_re_021010207.exe [3281072 2016-01-14] ()
HKLM-x32\...\RunOnce: [Malwarebytes Anti-Malware (cleanup)] => C:\ProgramData\Malwarebytes\Malwarebytes Anti-Malware\mbamdor.exe [54072 2015-10-05] (Malwarebytes)
HKU\S-1-5-21-3730321190-864032766-3096031451-1004\...\Run: [Google Update] => C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Google\Update\GoogleUpdate.exe [144200 2015-08-29] (Google Inc.)
HKU\S-1-5-21-3730321190-864032766-3096031451-1004\...\Run: [Pando Media Booster] => C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe [3093624 2013-01-04] ()
HKU\S-1-5-21-3730321190-864032766-3096031451-1004\...\Run: [SystemProc] => C:\Users\Public\Other\run_shc.lnk
HKU\S-1-5-21-3730321190-864032766-3096031451-1004\...\Run: [DAEMON Tools Pro Agent] => C:\Program Files (x86)\DAEMON Tools Pro\DTAgent.exe [3108480 2012-10-23] (DT Soft Ltd)
HKU\S-1-5-21-3730321190-864032766-3096031451-1004\...\Run: [GarenaPlus] => "C:\Program Files (x86)\Garena Plus\GarenaMessenger.exe" -autolaunch
HKU\S-1-5-21-3730321190-864032766-3096031451-1004\...\Run: [BloodyToneMaker] => C:\Program Files (x86)\BloodyToneMaker\BloodyToneMaker\Bloody ToneMaker1.exe [8472576 2015-12-04] ()
HKU\S-1-5-21-3730321190-864032766-3096031451-1004\...\MountPoints2: D - D:\Autorun\autorun.exe
Startup: C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\startup\LaunchCenter.lnk [2012-09-25]
ShortcutTarget: LaunchCenter.lnk -> C:\Program Files (x86)\Fujitsu\LaunchCenter\LaunchCenter.exe (Fujitsu Technology Solutions)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Adobe Reader Speed Launch.lnk [2016-01-15]
ShortcutTarget: Adobe Reader Speed Launch.lnk -> C:\Program Files (x86)\Adobe\Acrobat 7.0\Reader\reader_sl.exe (Adobe Systems Incorporated)
Startup: C:\Users\cc2001\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\startup\LaunchCenter.lnk [2011-10-25]
ShortcutTarget: LaunchCenter.lnk -> C:\Program Files (x86)\Fujitsu\LaunchCenter\LaunchCenter.exe (Fujitsu Technology Solutions)
Startup: C:\Users\cc2003\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\startup\LaunchCenter.lnk [2011-07-04]
ShortcutTarget: LaunchCenter.lnk -> C:\Program Files (x86)\Fujitsu\LaunchCenter\LaunchCenter.exe (Fujitsu Technology Solutions)
Startup: C:\Users\cc2006\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\startup\LaunchCenter.lnk [2010-09-24]
ShortcutTarget: LaunchCenter.lnk -> C:\Program Files (x86)\Fujitsu\LaunchCenter\LaunchCenter.exe (Fujitsu Technology Solutions)
Startup: C:\Users\cc2007\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\startup\LaunchCenter.lnk [2011-02-17]
ShortcutTarget: LaunchCenter.lnk -> C:\Program Files (x86)\Fujitsu\LaunchCenter\LaunchCenter.exe (Fujitsu Technology Solutions)
Startup: C:\Users\cc2009\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\startup\LaunchCenter.lnk [2010-10-21]
ShortcutTarget: LaunchCenter.lnk -> C:\Program Files (x86)\Fujitsu\LaunchCenter\LaunchCenter.exe (Fujitsu Technology Solutions)
Startup: C:\Users\cc2010\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\startup\LaunchCenter.lnk [2011-12-13]
ShortcutTarget: LaunchCenter.lnk -> C:\Program Files (x86)\Fujitsu\LaunchCenter\LaunchCenter.exe (Fujitsu Technology Solutions)
Startup: C:\Users\cc2011\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\startup\LaunchCenter.lnk [2011-03-22]
ShortcutTarget: LaunchCenter.lnk -> C:\Program Files (x86)\Fujitsu\LaunchCenter\LaunchCenter.exe (Fujitsu Technology Solutions)
Startup: C:\Users\cc2013\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\startup\LaunchCenter.lnk [2012-03-30]
ShortcutTarget: LaunchCenter.lnk -> C:\Program Files (x86)\Fujitsu\LaunchCenter\LaunchCenter.exe (Fujitsu Technology Solutions)
Startup: C:\Users\cc2016\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\startup\LaunchCenter.lnk [2011-06-22]
ShortcutTarget: LaunchCenter.lnk -> C:\Program Files (x86)\Fujitsu\LaunchCenter\LaunchCenter.exe (Fujitsu Technology Solutions)
Startup: C:\Users\cc2017\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\startup\LaunchCenter.lnk [2010-10-21]
ShortcutTarget: LaunchCenter.lnk -> C:\Program Files (x86)\Fujitsu\LaunchCenter\LaunchCenter.exe (Fujitsu Technology Solutions)
Startup: C:\Users\cc2018\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\startup\LaunchCenter.lnk [2011-06-16]
ShortcutTarget: LaunchCenter.lnk -> C:\Program Files (x86)\Fujitsu\LaunchCenter\LaunchCenter.exe (Fujitsu Technology Solutions)
Startup: C:\Users\cc2021\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\startup\LaunchCenter.lnk [2011-03-22]
ShortcutTarget: LaunchCenter.lnk -> C:\Program Files (x86)\Fujitsu\LaunchCenter\LaunchCenter.exe (Fujitsu Technology Solutions)
Startup: C:\Users\cc2022\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\startup\LaunchCenter.lnk [2011-01-17]
ShortcutTarget: LaunchCenter.lnk -> C:\Program Files (x86)\Fujitsu\LaunchCenter\LaunchCenter.exe (Fujitsu Technology Solutions)
Startup: C:\Users\cc2023\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\startup\LaunchCenter.lnk [2011-11-22]
ShortcutTarget: LaunchCenter.lnk -> C:\Program Files (x86)\Fujitsu\LaunchCenter\LaunchCenter.exe (Fujitsu Technology Solutions)
Startup: C:\Users\cc2024\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\startup\LaunchCenter.lnk [2011-05-30]
ShortcutTarget: LaunchCenter.lnk -> C:\Program Files (x86)\Fujitsu\LaunchCenter\LaunchCenter.exe (Fujitsu Technology Solutions)
Startup: C:\Users\cc2026\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\startup\LaunchCenter.lnk [2011-04-05]
ShortcutTarget: LaunchCenter.lnk -> C:\Program Files (x86)\Fujitsu\LaunchCenter\LaunchCenter.exe (Fujitsu Technology Solutions)
Startup: C:\Users\cc2027\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\startup\LaunchCenter.lnk [2011-10-24]
ShortcutTarget: LaunchCenter.lnk -> C:\Program Files (x86)\Fujitsu\LaunchCenter\LaunchCenter.exe (Fujitsu Technology Solutions)
Startup: C:\Users\cc2028\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\startup\LaunchCenter.lnk [2011-07-12]
ShortcutTarget: LaunchCenter.lnk -> C:\Program Files (x86)\Fujitsu\LaunchCenter\LaunchCenter.exe (Fujitsu Technology Solutions)
Startup: C:\Users\cc2030\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\startup\LaunchCenter.lnk [2011-04-06]
ShortcutTarget: LaunchCenter.lnk -> C:\Program Files (x86)\Fujitsu\LaunchCenter\LaunchCenter.exe (Fujitsu Technology Solutions)
Startup: C:\Users\cc2031\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\startup\LaunchCenter.lnk [2011-04-08]
ShortcutTarget: LaunchCenter.lnk -> C:\Program Files (x86)\Fujitsu\LaunchCenter\LaunchCenter.exe (Fujitsu Technology Solutions)
Startup: C:\Users\cpadmin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\startup\LaunchCenter.lnk [2012-11-07]
ShortcutTarget: LaunchCenter.lnk -> C:\Program Files (x86)\Fujitsu\LaunchCenter\LaunchCenter.exe (Fujitsu Technology Solutions)
Startup: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\startup\LaunchCenter.lnk [2009-03-11]
ShortcutTarget: LaunchCenter.lnk -> C:\Program Files (x86)\Fujitsu\LaunchCenter\LaunchCenter.exe (Fujitsu Technology Solutions)
Startup: C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\startup\LaunchCenter.lnk [2009-03-11]
ShortcutTarget: LaunchCenter.lnk -> C:\Program Files (x86)\Fujitsu\LaunchCenter\LaunchCenter.exe (Fujitsu Technology Solutions)
Startup: C:\Users\koutsky\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\startup\LaunchCenter.lnk [2011-09-13]
ShortcutTarget: LaunchCenter.lnk -> C:\Program Files (x86)\Fujitsu\LaunchCenter\LaunchCenter.exe (Fujitsu Technology Solutions)
Startup: C:\Users\krob\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\startup\LaunchCenter.lnk [2010-09-09]
ShortcutTarget: LaunchCenter.lnk -> C:\Program Files (x86)\Fujitsu\LaunchCenter\LaunchCenter.exe (Fujitsu Technology Solutions)
Startup: C:\Users\suk\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\startup\LaunchCenter.lnk [2012-09-25]
ShortcutTarget: LaunchCenter.lnk -> C:\Program Files (x86)\Fujitsu\LaunchCenter\LaunchCenter.exe (Fujitsu Technology Solutions)
Startup: C:\Users\test\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\startup\LaunchCenter.lnk [2012-11-07]
ShortcutTarget: LaunchCenter.lnk -> C:\Program Files (x86)\Fujitsu\LaunchCenter\LaunchCenter.exe (Fujitsu Technology Solutions)
Startup: C:\Users\vonka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\startup\LaunchCenter.lnk [2012-11-07]
ShortcutTarget: LaunchCenter.lnk -> C:\Program Files (x86)\Fujitsu\LaunchCenter\LaunchCenter.exe (Fujitsu Technology Solutions)
GroupPolicyScripts: Restriction <======= ATTENTION
GroupPolicyScripts\User: Restriction <======= ATTENTION

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 109.202.72.93 109.202.73.93
Tcpip\..\Interfaces\{1E3F151F-3CA6-437F-97FD-6A3FD388F7E4}: [DhcpNameServer] 109.202.72.93 109.202.73.93
Tcpip\..\Interfaces\{B6470AC7-9C2C-47C9-8218-F7E1A7282CE6}: [DhcpNameServer] 7.254.254.254

Internet Explorer:
==================
HKU\S-1-5-21-3730321190-864032766-3096031451-1004\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.seznam.cz/
HKU\S-1-5-21-3730321190-864032766-3096031451-1004\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.ts.fujitsu.com/index2
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-3730321190-864032766-3096031451-1004 -> DefaultScope {12666C0B-8139-438A-B6AF-952D2FBA7A23} URL =
SearchScopes: HKU\S-1-5-21-3730321190-864032766-3096031451-1004 -> {0B2EF93F-AB35-4219-8907-C545E94FC90A} URL =
SearchScopes: HKU\S-1-5-21-3730321190-864032766-3096031451-1004 -> {12666C0B-8139-438A-B6AF-952D2FBA7A23} URL =
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre7\bin\ssv.dll [2012-11-18] (Oracle Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre7\bin\jp2ssv.dll [2012-11-18] (Oracle Corporation)
BHO-x32: AcroIEHlprObj Class -> {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} -> C:\Program Files (x86)\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll [2004-12-14] (Adobe Systems Incorporated)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2012-11-08] (Oracle Corporation)
BHO-x32: ArcPluginIEBHO Class -> {84BFE29A-8139-402a-B2A4-C23AE9E1A75F} -> C:\Program Files (x86)\Arc\Plugins\ArcPluginIE.dll [2015-12-16] (Perfect World Entertainment Inc)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2012-11-08] (Oracle Corporation)
DPF: HKLM-x32 {D4B68B83-8710-488B-A692-D74B50BA558E} hxxp://ccfiles.creative.com/Web/softwareupdate/ocx/15113/CTPIDPDE.cab
DPF: HKLM-x32 {F6ACF75C-C32C-447B-9BEF-46B766368D29} hxxp://ccfiles.creative.com/Web/softwareupdate/ocx/130321/CTPID.cab
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll [2014-05-02] (Skype Technologies)
StartMenuInternet: IEXPLORE.EXE - iexplore.exe

FireFox:
========
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_20_0_0_267.dll [2015-12-29] ()
FF Plugin: @java.com/DTPlugin,version=10.9.2 -> C:\Windows\system32\npDeployJava1.dll [2012-11-18] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.9.2 -> C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll [2012-11-18] (Oracle Corporation)
FF Plugin: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.41212.0\npctrl.dll [2015-12-11] ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_20_0_0_267.dll [2015-12-29] ()
FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\Windows\SysWOW64\Adobe\Director\np32dsw_1168638.dll [2012-10-04] (Adobe Systems, Inc.)
FF Plugin-x32: @java.com/DTPlugin,version=10.9.2 -> C:\Windows\SysWOW64\npDeployJava1.dll [2012-11-08] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.9.2 -> C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll [2012-11-08] (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.41212.0\npctrl.dll [2015-12-11] ( Microsoft Corporation)
FF Plugin-x32: @pandonetworks.com/PandoWebPlugin -> C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll [2013-01-04] (Pando Networks)
FF Plugin-x32: @perfectworld.com/npArcPlayNowPlugin -> C:\Program Files (x86)\Arc\Plugins\npArcPluginFF.dll [2015-12-16] (Perfect World Entertainment Inc)
FF Plugin-x32: @t.garena.com/garenatalk -> C:\Program Files (x86)\Garena Plus\bbtalk\plugins\npPlugin\npGarenaTalkPlugin.dll [No File]
FF Plugin-x32: @videolan.org/vlc,version=2.0.3 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2012-07-19] (VideoLAN)
FF Plugin HKU\S-1-5-21-3730321190-864032766-3096031451-1004: @powerchallenge.com/PowerLoader -> C:\Users\CPADMI~1.CC_\AppData\LocalLow\POWERC~1\nppowerloader.dll [2011-03-15] (Power Challenge Sweden AB)
FF Plugin HKU\S-1-5-21-3730321190-864032766-3096031451-1004: @tools.google.com/Google Update;version=3 -> C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Google\Update\1.3.29.1\npGoogleUpdate3.dll [2015-12-05] (Google Inc.)
FF Plugin HKU\S-1-5-21-3730321190-864032766-3096031451-1004: @tools.google.com/Google Update;version=9 -> C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Google\Update\1.3.29.1\npGoogleUpdate3.dll [2015-12-05] (Google Inc.)
FF Plugin HKU\S-1-5-21-3730321190-864032766-3096031451-1004: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\CPadmin.CC_PRACOVISTE6\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2014-09-04] (Unity Technologies ApS)
FF Plugin HKU\S-1-5-21-3730321190-864032766-3096031451-1004: pandonetworks.com/PandoWebPlugin -> C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll [2013-01-04] (Pando Networks)
FF HKLM-x32\...\Thunderbird\Extensions: [eplgTb@eset.com] - C:\Program Files\ESET\ESET NOD32 Antivirus\Mozilla Thunderbird => not found

Chrome:
=======
CHR HomePage: Default -> hxxp://www.seznam.cz/
CHR StartupUrls: Default -> "hxxp://www.seznam.cz/"
CHR DefaultSearchURL: Default -> hxxp://search.seznam.cz/?q={searchTerms}
CHR DefaultSearchKeyword: Default -> seznam.cz
CHR DefaultSuggestURL: Default -> hxxp://suggest.fulltext.seznam.cz/fulltext_ff?phrase={searchTerms}
CHR Plugin: (Shockwave Flash) - C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Google\Chrome\Application\47.0.2526.111\PepperFlash\pepflashplayer.dll ()
CHR Plugin: (Native Client) - C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Google\Chrome\Application\47.0.2526.111\ppGoogleNaClPluginChrome.dll => No File
CHR Plugin: (Chrome PDF Viewer) - C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Google\Chrome\Application\47.0.2526.111\pdf.dll => No File
CHR Plugin: (Java(TM) Platform SE 7 U9) - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
CHR Plugin: (Pando Web Plugin) - C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
CHR Plugin: (VLC Web Plugin) - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
CHR Plugin: (Google Update) - C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Google\Update\1.3.21.135\npGoogleUpdate3.dll => No File
CHR Plugin: (Shockwave for Director) - C:\Windows\SysWOW64\Adobe\Director\np32dsw_1168638.dll (Adobe Systems, Inc.)
CHR Plugin: (Java Deployment Toolkit 7.0.90.5) - C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation)
CHR Plugin: (Silverlight Plug-In) - c:\Program Files (x86)\Microsoft Silverlight\4.1.10329.0\npctrl.dll => No File
CHR Profile: C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Disk Google) - C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-10-22]
CHR Extension: (YouTube) - C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-09-24]
CHR Extension: (Vyhledávání Google) - C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-10-27]
CHR Extension: (Dokumenty Google offline) - C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2015-11-18]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-07-24]
CHR Extension: (Gmail) - C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-03-28]
StartMenuInternet: Google Chrome.OG7XH6VBY2XXKMQYR5KPKCMWB4 - C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Google\Chrome\Application\chrome.exe hxxp://www.mysites123.com/?type=sc&ts=14528870 ... 4_8202DE86

==================== Services (Whitelisted) ========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S3 ArcService; C:\Program Files (x86)\Arc\ArcService.exe [88400 2015-12-16] (Perfect World Entertainment Inc)
S3 Creative ALchemy AL6 Licensing Service; C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\AL6Licensing.exe [79360 2013-07-15] (Creative Labs) [File not signed]
S3 Creative Audio Engine Licensing Service; C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\CTAELicensing.exe [79360 2013-07-15] (Creative Labs) [File not signed]
R2 CTAudSvcService; C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe [423424 2011-10-19] (Creative Technology Ltd) [File not signed]
S3 EasyAntiCheat; C:\Windows\SysWOW64\EasyAntiCheat.exe [182304 2014-12-02] (EasyAntiCheat Ltd)
R2 HiPatchService; C:\Hry\Smite\HiPatchService.exe [9728 2015-12-30] (Hi-Rez Studios) [File not signed]
S3 IDriverT; C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [69632 2005-04-04] (Macrovision Corporation) [File not signed]
R2 MDM; C:\Program Files (x86)\Common Files\Microsoft Shared\VS7DEBUG\mdm.exe [335872 2006-10-26] (Microsoft Corporation) [File not signed]
R2 MsMpSvc; C:\Program Files\Microsoft Security Client\MsMpEng.exe [23816 2015-04-30] (Microsoft Corporation)
R3 NisSrv; C:\Program Files\Microsoft Security Client\NisSrv.exe [366544 2015-04-30] (Microsoft Corporation)
R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [76152 2015-11-04] ()
R2 TestHandler; C:\Program Files (x86)\Fujitsu\SystemDiagnostics\OnlineDiagnostic\TestManager\TestHandler.exe [341264 2009-02-19] (Fujitsu Technology Solutions)
S3 TunngleService; C:\Program Files (x86)\Tunngle\TnglCtrl.exe [792016 2015-02-09] (Tunngle.net GmbH) [File not signed]
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)
R2 WindowsMangerProtect; C:\ProgramData\Tmp0x0x\ProtectWindowsManager.exe [340136 2016-01-15] (Sysinternals process Explorer) <==== ATTENTION
R2 WinVNC4; C:\Program Files (x86)\RealVNC\VNC4\WinVNC4.exe [439632 2008-10-15] (RealVNC Ltd.)
S3 BRSptStub; "C:\ProgramData\BitRaider\BRSptStub.exe" [X]

===================== Drivers (Whitelisted) ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 CMUAC; C:\Windows\System32\DRIVERS\Headset6400x1.SYS [386560 2013-10-03] (A4Tech Inc.)
S3 DFU; C:\Windows\System32\drivers\MassDfu.sys [14592 2012-11-30] (Philips PTCL) [File not signed]
S3 DFU; C:\Windows\SysWOW64\drivers\MassDfu.sys [14592 2012-11-30] (Philips PTCL) [File not signed]
R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283200 2015-03-26] (DT Soft Ltd)
S3 ebdrv; C:\Windows\system32\DRIVERS\evbda.sys [3286016 2009-06-10] (Broadcom Corporation)
R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [280376 2015-03-04] (Microsoft Corporation)
U0 ndubw; C:\Windows\System32\drivers\wdhstj.sys [79064 2016-01-15] (Malwarebytes)
R2 NisDrv; C:\Windows\System32\DRIVERS\NisDrvWFP.sys [124568 2015-03-04] (Microsoft Corporation)
S3 skfiltv; C:\Windows\System32\drivers\skfiltv.sys [24064 2008-08-14] (Creative Technology Ltd.)
R0 sptd; C:\Windows\System32\Drivers\sptd.sys [564824 2015-03-26] (Duplex Secure Ltd.)
R3 tap0901t; C:\Windows\System32\DRIVERS\tap0901t.sys [31232 2009-09-16] (Tunngle.net)
S3 XENfiltv; C:\Windows\System32\drivers\XENfiltv.sys [25600 2009-07-31] (Creative Technology Ltd.)
U3 aoa1t0d2; C:\Windows\System32\Drivers\aoa1t0d2.sys [0 ] (NVIDIA Corporation) <==== ATTENTION (zero byte File/Folder)
S3 BRDriver64_1_3_3_E02B25FC; \??\C:\ProgramData\BitRaider\support\1.3.3\E02B25FC\BRDriver64.sys [X]
S3 xhunter1; \??\C:\Windows\xhunter1.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2016-01-17 20:12 - 2016-01-17 20:12 - 00024628 _____ C:\Users\CPadmin.CC_PRACOVISTE6\Desktop\Addition.txt
2016-01-17 20:09 - 2016-01-17 20:13 - 00026120 _____ C:\Users\CPadmin.CC_PRACOVISTE6\Desktop\FRST.txt
2016-01-17 20:09 - 2016-01-17 20:13 - 00000000 ____D C:\FRST
2016-01-17 20:04 - 2016-01-17 20:04 - 02370560 _____ (Farbar) C:\Users\CPadmin.CC_PRACOVISTE6\Desktop\FRST64.exe
2016-01-15 20:44 - 2016-01-15 20:44 - 00000000 ____D C:\ProgramData\Tmp0x0x
2016-01-15 20:43 - 2016-01-15 20:44 - 00000000 ____D C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Roaming\mysites123
2016-01-15 20:11 - 2016-01-15 20:12 - 00000080 _____ C:\Users\Public\Desktop\uTorrent.lnk
2016-01-15 20:11 - 2016-01-15 20:11 - 00000080 _____ C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Roaming\Microsoft\Windows\Start Menu\uTorrent.lnk
2016-01-15 20:11 - 2016-01-15 20:11 - 00000080 _____ C:\ProgramData\Microsoft\Windows\Start Menu\uTorrent.lnk
2016-01-15 20:10 - 2016-01-15 20:10 - 00079064 _____ (Malwarebytes) C:\Windows\system32\Drivers\wdhstj.sys
2016-01-15 18:20 - 2016-01-15 18:20 - 00192216 _____ (Malwarebytes) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2016-01-15 18:19 - 2016-01-15 20:12 - 00001102 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2016-01-15 18:19 - 2016-01-15 18:19 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2016-01-15 18:19 - 2016-01-15 18:19 - 00000000 ____D C:\Program Files (x86)\Malwarebytes Anti-Malware
2016-01-15 18:19 - 2015-10-05 09:50 - 00109272 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbamchameleon.sys
2016-01-15 18:19 - 2015-10-05 09:50 - 00063704 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2016-01-15 18:19 - 2015-10-05 09:50 - 00025816 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbam.sys
2016-01-15 18:18 - 2016-01-15 18:18 - 22908888 _____ (Malwarebytes ) C:\Users\CPadmin.CC_PRACOVISTE6\Downloads\mbam-setup-2.2.0.1024.exe
2016-01-15 06:14 - 2016-01-15 20:26 - 00000000 ____D C:\ProgramData\FWdMF
2016-01-15 06:14 - 2016-01-15 06:14 - 00000074 _____ C:\ProgramData\{262E20B8-6E20-4CEF-B1FD-D022AB1085F5}.dat
2016-01-15 06:09 - 2016-01-17 19:35 - 00000000 ____D C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\gmsd_re_021010207
2016-01-15 01:37 - 2016-01-15 20:12 - 00001605 _____ C:\Users\Public\Desktop\Hi-Rez Diagnostics and Support.lnk
2016-01-15 01:37 - 2016-01-15 20:12 - 00001556 _____ C:\Users\Public\Desktop\Smite.lnk
2016-01-15 01:37 - 2016-01-15 01:37 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hi-Rez Studios
2016-01-15 01:36 - 2016-01-15 01:36 - 50699928 _____ (Hi-Rez Studios) C:\Users\CPadmin.CC_PRACOVISTE6\Downloads\InstallSmite (1).exe
2016-01-15 01:31 - 2016-01-15 01:31 - 50699928 _____ (Hi-Rez Studios) C:\Users\CPadmin.CC_PRACOVISTE6\Downloads\InstallSmite.exe
2016-01-13 16:59 - 2015-12-11 19:57 - 01164800 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2016-01-13 16:59 - 2015-12-08 22:54 - 02285056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmpeg2vdec.dll
2016-01-13 16:59 - 2015-12-08 22:54 - 01620992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVDECOD.DLL
2016-01-13 16:59 - 2015-12-08 22:54 - 01568768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVENCOD.DLL
2016-01-13 16:59 - 2015-12-08 22:54 - 01325056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMSPDMOE.DLL
2016-01-13 16:59 - 2015-12-08 22:54 - 00902144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMADMOD.DLL
2016-01-13 16:59 - 2015-12-08 22:54 - 00815616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMADMOE.DLL
2016-01-13 16:59 - 2015-12-08 22:54 - 00740352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmpmde.dll
2016-01-13 16:59 - 2015-12-08 22:54 - 00739328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMSPDMOD.DLL
2016-01-13 16:59 - 2015-12-08 22:54 - 00665088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVXENCD.DLL
2016-01-13 16:59 - 2015-12-08 22:54 - 00541184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVSDECD.DLL
2016-01-13 16:59 - 2015-12-08 22:54 - 00358400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVSENCD.DLL
2016-01-13 16:59 - 2015-12-08 22:54 - 00154112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\VIDRESZR.DLL
2016-01-13 16:59 - 2015-12-08 22:53 - 03209728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mf.dll
2016-01-13 16:59 - 2015-12-08 22:53 - 01329664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\quartz.dll
2016-01-13 16:59 - 2015-12-08 22:53 - 00970240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmpeg2adec.dll
2016-01-13 16:59 - 2015-12-08 22:53 - 00829952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSMPEG2ENC.DLL
2016-01-13 16:59 - 2015-12-08 22:53 - 00609280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFWMAAEC.DLL
2016-01-13 16:59 - 2015-12-08 22:53 - 00519680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qdvd.dll
2016-01-13 16:59 - 2015-12-08 22:53 - 00509952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qedit.dll
2016-01-13 16:59 - 2015-12-08 22:53 - 00489984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\evr.dll
2016-01-13 16:59 - 2015-12-08 22:53 - 00415744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MP4SDECD.DLL
2016-01-13 16:59 - 2015-12-08 22:53 - 00354816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfplat.dll
2016-01-13 16:59 - 2015-12-08 22:53 - 00241152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MPG4DECD.DLL
2016-01-13 16:59 - 2015-12-08 22:53 - 00241152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MP43DECD.DLL
2016-01-13 16:59 - 2015-12-08 22:53 - 00206848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RESAMPLEDMO.DLL
2016-01-13 16:59 - 2015-12-08 22:53 - 00206848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qasf.dll
2016-01-13 16:59 - 2015-12-08 22:53 - 00193536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ksproxy.ax
2016-01-13 16:59 - 2015-12-08 22:53 - 00153600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\COLORCNV.DLL
2016-01-13 16:59 - 2015-12-08 22:53 - 00103424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfps.dll
2016-01-13 16:59 - 2015-12-08 22:53 - 00079872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MP3DMOD.DLL
2016-01-13 16:59 - 2015-12-08 22:53 - 00067584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\devenum.dll
2016-01-13 16:59 - 2015-12-08 22:53 - 00053248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfvdsp.dll
2016-01-13 16:59 - 2015-12-08 22:53 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rrinstaller.exe
2016-01-13 16:59 - 2015-12-08 22:53 - 00023040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfpmp.exe
2016-01-13 16:59 - 2015-12-08 22:53 - 00004608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ksuser.dll
2016-01-13 16:59 - 2015-12-08 22:50 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mferror.dll
2016-01-13 16:59 - 2015-12-08 20:07 - 04121600 _____ (Microsoft Corporation) C:\Windows\system32\mf.dll
2016-01-13 16:59 - 2015-12-08 20:07 - 02777088 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll
2016-01-13 16:59 - 2015-12-08 20:07 - 01955328 _____ (Microsoft Corporation) C:\Windows\system32\WMVENCOD.DLL
2016-01-13 16:59 - 2015-12-08 20:07 - 01888768 _____ (Microsoft Corporation) C:\Windows\system32\WMVDECOD.DLL
2016-01-13 16:59 - 2015-12-08 20:07 - 01575424 _____ (Microsoft Corporation) C:\Windows\system32\WMSPDMOE.DLL
2016-01-13 16:59 - 2015-12-08 20:07 - 01573888 _____ (Microsoft Corporation) C:\Windows\system32\quartz.dll
2016-01-13 16:59 - 2015-12-08 20:07 - 01393152 _____ (Microsoft Corporation) C:\Windows\system32\WMALFXGFXDSP.dll
2016-01-13 16:59 - 2015-12-08 20:07 - 01307136 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2adec.dll
2016-01-13 16:59 - 2015-12-08 20:07 - 01232896 _____ (Microsoft Corporation) C:\Windows\system32\WMADMOD.DLL
2016-01-13 16:59 - 2015-12-08 20:07 - 01160192 _____ (Microsoft Corporation) C:\Windows\system32\MSMPEG2ENC.DLL
2016-01-13 16:59 - 2015-12-08 20:07 - 01153024 _____ (Microsoft Corporation) C:\Windows\system32\WMADMOE.DLL
2016-01-13 16:59 - 2015-12-08 20:07 - 01026048 _____ (Microsoft Corporation) C:\Windows\system32\wmpmde.dll
2016-01-13 16:59 - 2015-12-08 20:07 - 01010688 _____ (Microsoft Corporation) C:\Windows\system32\mcmde.dll
2016-01-13 16:59 - 2015-12-08 20:07 - 00978944 _____ (Microsoft Corporation) C:\Windows\system32\WMSPDMOD.DLL
2016-01-13 16:59 - 2015-12-08 20:07 - 00666112 _____ (Microsoft Corporation) C:\Windows\system32\WMVSDECD.DLL
2016-01-13 16:59 - 2015-12-08 20:07 - 00653824 _____ (Microsoft Corporation) C:\Windows\system32\MP4SDECD.DLL
2016-01-13 16:59 - 2015-12-08 20:07 - 00642048 _____ (Microsoft Corporation) C:\Windows\system32\WMVXENCD.DLL
2016-01-13 16:59 - 2015-12-08 20:07 - 00632320 _____ (Microsoft Corporation) C:\Windows\system32\evr.dll
2016-01-13 16:59 - 2015-12-08 20:07 - 00624640 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll
2016-01-13 16:59 - 2015-12-08 20:07 - 00484864 _____ (Microsoft Corporation) C:\Windows\system32\MFWMAAEC.DLL
2016-01-13 16:59 - 2015-12-08 20:07 - 00447488 _____ (Microsoft Corporation) C:\Windows\system32\WMVSENCD.DLL
2016-01-13 16:59 - 2015-12-08 20:07 - 00432128 _____ (Microsoft Corporation) C:\Windows\system32\mfplat.dll
2016-01-13 16:59 - 2015-12-08 20:07 - 00378880 _____ (Microsoft Corporation) C:\Windows\system32\SysFxUI.dll
2016-01-13 16:59 - 2015-12-08 20:07 - 00371712 _____ (Microsoft Corporation) C:\Windows\system32\qdvd.dll
2016-01-13 16:59 - 2015-12-08 20:07 - 00292352 _____ (Microsoft Corporation) C:\Windows\system32\VIDRESZR.DLL
2016-01-13 16:59 - 2015-12-08 20:07 - 00254464 _____ (Microsoft Corporation) C:\Windows\system32\qasf.dll
2016-01-13 16:59 - 2015-12-08 20:07 - 00225792 _____ (Microsoft Corporation) C:\Windows\system32\RESAMPLEDMO.DLL
2016-01-13 16:59 - 2015-12-08 20:07 - 00224768 _____ (Microsoft Corporation) C:\Windows\system32\MPG4DECD.DLL
2016-01-13 16:59 - 2015-12-08 20:07 - 00223744 _____ (Microsoft Corporation) C:\Windows\system32\MP43DECD.DLL
2016-01-13 16:59 - 2015-12-08 20:07 - 00206848 _____ (Microsoft Corporation) C:\Windows\system32\mfps.dll
2016-01-13 16:59 - 2015-12-08 20:07 - 00189952 _____ (Microsoft Corporation) C:\Windows\system32\COLORCNV.DLL
2016-01-13 16:59 - 2015-12-08 20:07 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\MP3DMOD.DLL
2016-01-13 16:59 - 2015-12-08 20:07 - 00076288 _____ (Microsoft Corporation) C:\Windows\system32\devenum.dll
2016-01-13 16:59 - 2015-12-08 20:07 - 00070144 _____ (Microsoft Corporation) C:\Windows\system32\mfvdsp.dll
2016-01-13 16:59 - 2015-12-08 20:07 - 00055808 _____ (Microsoft Corporation) C:\Windows\system32\rrinstaller.exe
2016-01-13 16:59 - 2015-12-08 20:07 - 00005120 _____ (Microsoft Corporation) C:\Windows\system32\ksuser.dll
2016-01-13 16:59 - 2015-12-08 20:06 - 00250880 _____ (Microsoft Corporation) C:\Windows\system32\ksproxy.ax
2016-01-13 16:59 - 2015-12-08 20:06 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\mfpmp.exe
2016-01-13 16:59 - 2015-12-08 20:04 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\mferror.dll
2016-01-13 16:59 - 2015-12-08 19:54 - 00116736 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\drmk.sys
2016-01-13 16:59 - 2015-12-08 19:12 - 00230400 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\portcls.sys
2016-01-13 16:59 - 2015-12-08 19:11 - 00005632 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\drmkaud.sys
2016-01-13 16:59 - 2015-12-08 18:58 - 03211264 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2016-01-13 16:59 - 2015-11-17 02:11 - 00025024 _____ (Microsoft Corporation) C:\Windows\system32\CompatTelRunner.exe
2016-01-13 16:59 - 2015-11-17 02:08 - 01381376 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll
2016-01-13 16:59 - 2015-11-17 02:08 - 00792064 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2016-01-13 16:59 - 2015-11-17 02:08 - 00705536 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll
2016-01-13 16:59 - 2015-11-17 02:08 - 00505856 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll
2016-01-13 16:59 - 2015-11-17 02:08 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll
2016-01-13 16:59 - 2015-11-16 21:17 - 00210432 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll
2016-01-13 16:59 - 2015-11-14 00:09 - 00091648 _____ (Microsoft Corporation) C:\Windows\system32\mapistub.dll
2016-01-13 16:59 - 2015-11-14 00:09 - 00091648 _____ (Microsoft Corporation) C:\Windows\system32\mapi32.dll
2016-01-13 16:59 - 2015-11-14 00:08 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\fixmapi.exe
2016-01-13 16:59 - 2015-11-13 23:50 - 00076800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mapistub.dll
2016-01-13 16:59 - 2015-11-13 23:50 - 00076800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mapi32.dll
2016-01-13 16:59 - 2015-11-13 23:49 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fixmapi.exe
2016-01-13 16:58 - 2015-12-24 00:13 - 00387784 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2016-01-13 16:58 - 2015-12-23 23:52 - 00341192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2016-01-13 16:58 - 2015-12-12 19:54 - 25837568 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2016-01-13 16:58 - 2015-12-12 19:31 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2016-01-13 16:58 - 2015-12-12 19:30 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2016-01-13 16:58 - 2015-12-12 19:16 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2016-01-13 16:58 - 2015-12-12 19:15 - 02887168 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2016-01-13 16:58 - 2015-12-12 19:15 - 00571904 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2016-01-13 16:58 - 2015-12-12 19:15 - 00417792 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2016-01-13 16:58 - 2015-12-12 19:15 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2016-01-13 16:58 - 2015-12-12 19:14 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2016-01-13 16:58 - 2015-12-12 19:07 - 06051328 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2016-01-13 16:58 - 2015-12-12 19:07 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2016-01-13 16:58 - 2015-12-12 19:07 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2016-01-13 16:58 - 2015-12-12 19:03 - 00615936 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2016-01-13 16:58 - 2015-12-12 19:02 - 20367360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2016-01-13 16:58 - 2015-12-12 19:02 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2016-01-13 16:58 - 2015-12-12 19:02 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2016-01-13 16:58 - 2015-12-12 19:02 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2016-01-13 16:58 - 2015-12-12 19:02 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2016-01-13 16:58 - 2015-12-12 18:55 - 00968704 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2016-01-13 16:58 - 2015-12-12 18:51 - 00489984 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2016-01-13 16:58 - 2015-12-12 18:49 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2016-01-13 16:58 - 2015-12-12 18:44 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2016-01-13 16:58 - 2015-12-12 18:40 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2016-01-13 16:58 - 2015-12-12 18:39 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2016-01-13 16:58 - 2015-12-12 18:37 - 00496640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2016-01-13 16:58 - 2015-12-12 18:37 - 00315392 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2016-01-13 16:58 - 2015-12-12 18:37 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2016-01-13 16:58 - 2015-12-12 18:37 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2016-01-13 16:58 - 2015-12-12 18:36 - 00341504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2016-01-13 16:58 - 2015-12-12 18:36 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2016-01-13 16:58 - 2015-12-12 18:35 - 00152064 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll
2016-01-13 16:58 - 2015-12-12 18:33 - 02280448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2016-01-13 16:58 - 2015-12-12 18:31 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2016-01-13 16:58 - 2015-12-12 18:30 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2016-01-13 16:58 - 2015-12-12 18:28 - 00476160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2016-01-13 16:58 - 2015-12-12 18:27 - 00663552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2016-01-13 16:58 - 2015-12-12 18:27 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2016-01-13 16:58 - 2015-12-12 18:27 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2016-01-13 16:58 - 2015-12-12 18:25 - 00262144 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2016-01-13 16:58 - 2015-12-12 18:23 - 00798208 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2016-01-13 16:58 - 2015-12-12 18:22 - 00718336 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2016-01-13 16:58 - 2015-12-12 18:21 - 01359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2016-01-13 16:58 - 2015-12-12 18:20 - 02123264 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2016-01-13 16:58 - 2015-12-12 18:19 - 00416256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2016-01-13 16:58 - 2015-12-12 18:18 - 14457856 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2016-01-13 16:58 - 2015-12-12 18:14 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2016-01-13 16:58 - 2015-12-12 18:12 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2016-01-13 16:58 - 2015-12-12 18:10 - 00279040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2016-01-13 16:58 - 2015-12-12 18:10 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2016-01-13 16:58 - 2015-12-12 18:09 - 04610560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2016-01-13 16:58 - 2015-12-12 18:08 - 00130048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll
2016-01-13 16:58 - 2015-12-12 18:06 - 02487808 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2016-01-13 16:58 - 2015-12-12 18:02 - 00230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2016-01-13 16:58 - 2015-12-12 18:00 - 12856320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2016-01-13 16:58 - 2015-12-12 18:00 - 02050560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2016-01-13 16:58 - 2015-12-12 18:00 - 01155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2016-01-13 16:58 - 2015-12-12 18:00 - 00687104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2016-01-13 16:58 - 2015-12-12 17:54 - 01546752 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2016-01-13 16:58 - 2015-12-12 17:42 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2016-01-13 16:58 - 2015-12-12 17:41 - 02011136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2016-01-13 16:58 - 2015-12-12 17:38 - 01311744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2016-01-13 16:58 - 2015-12-12 17:36 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2016-01-13 16:58 - 2015-12-08 22:53 - 00641536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll
2016-01-13 16:58 - 2015-12-08 22:52 - 00312320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll
2016-01-13 16:58 - 2015-12-08 20:07 - 00879104 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll
2016-01-13 16:58 - 2015-12-08 20:07 - 00405504 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2016-01-13 16:57 - 2015-12-30 20:08 - 05572544 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2016-01-13 16:57 - 2015-12-30 20:08 - 00154560 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2016-01-13 16:57 - 2015-12-30 20:08 - 00095680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2016-01-13 16:57 - 2015-12-30 20:05 - 01730496 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2016-01-13 16:57 - 2015-12-30 20:02 - 00362496 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll
2016-01-13 16:57 - 2015-12-30 20:02 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll
2016-01-13 16:57 - 2015-12-30 20:02 - 00215040 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll
2016-01-13 16:57 - 2015-12-30 20:02 - 00210432 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2016-01-13 16:57 - 2015-12-30 20:02 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2016-01-13 16:57 - 2015-12-30 20:02 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll
2016-01-13 16:57 - 2015-12-30 20:01 - 01214464 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2016-01-13 16:57 - 2015-12-30 20:01 - 00503808 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
2016-01-13 16:57 - 2015-12-30 20:01 - 00344064 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2016-01-13 16:57 - 2015-12-30 20:01 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2016-01-13 16:57 - 2015-12-30 20:01 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll
2016-01-13 16:57 - 2015-12-30 20:01 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2016-01-13 16:57 - 2015-12-30 20:01 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2016-01-13 16:57 - 2015-12-30 20:00 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll
2016-01-13 16:57 - 2015-12-30 19:59 - 00315392 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2016-01-13 16:57 - 2015-12-30 19:59 - 00312320 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2016-01-13 16:57 - 2015-12-30 19:59 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll
2016-01-13 16:57 - 2015-12-30 19:58 - 01461248 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2016-01-13 16:57 - 2015-12-30 19:58 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2016-01-13 16:57 - 2015-12-30 19:57 - 01163264 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
2016-01-13 16:57 - 2015-12-30 19:57 - 00729600 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2016-01-13 16:57 - 2015-12-30 19:57 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2016-01-13 16:57 - 2015-12-30 19:55 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll
2016-01-13 16:57 - 2015-12-30 19:55 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\cryptbase.dll
2016-01-13 16:57 - 2015-12-30 19:55 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2016-01-13 16:57 - 2015-12-30 19:54 - 00686080 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2016-01-13 16:57 - 2015-12-30 19:54 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll
2016-01-13 16:57 - 2015-12-30 19:54 - 00006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2016-01-13 16:57 - 2015-12-30 19:54 - 00005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2016-01-13 16:57 - 2015-12-30 19:54 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2016-01-13 16:57 - 2015-12-30 19:54 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2016-01-13 16:57 - 2015-12-30 19:54 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2016-01-13 16:57 - 2015-12-30 19:54 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2016-01-13 16:57 - 2015-12-30 19:54 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2016-01-13 16:57 - 2015-12-30 19:54 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2016-01-13 16:57 - 2015-12-30 19:54 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2016-01-13 16:57 - 2015-12-30 19:54 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2016-01-13 16:57 - 2015-12-30 19:54 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2016-01-13 16:57 - 2015-12-30 19:54 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2016-01-13 16:57 - 2015-12-30 19:54 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2016-01-13 16:57 - 2015-12-30 19:54 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2016-01-13 16:57 - 2015-12-30 19:54 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2016-01-13 16:57 - 2015-12-30 19:54 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2016-01-13 16:57 - 2015-12-30 19:54 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2016-01-13 16:57 - 2015-12-30 19:54 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2016-01-13 16:57 - 2015-12-30 19:54 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2016-01-13 16:57 - 2015-12-30 19:54 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2016-01-13 16:57 - 2015-12-30 19:54 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2016-01-13 16:57 - 2015-12-30 19:54 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2016-01-13 16:57 - 2015-12-30 19:54 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2016-01-13 16:57 - 2015-12-30 19:54 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2016-01-13 16:57 - 2015-12-30 19:54 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2016-01-13 16:57 - 2015-12-30 19:54 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2016-01-13 16:57 - 2015-12-30 19:54 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2016-01-13 16:57 - 2015-12-30 19:54 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2016-01-13 16:57 - 2015-12-30 19:47 - 03993536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2016-01-13 16:57 - 2015-12-30 19:47 - 03938240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2016-01-13 16:57 - 2015-12-30 19:44 - 01311768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2016-01-13 16:57 - 2015-12-30 19:41 - 01114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll
2016-01-13 16:57 - 2015-12-30 19:41 - 00665088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll
2016-01-13 16:57 - 2015-12-30 19:41 - 00274944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
2016-01-13 16:57 - 2015-12-30 19:41 - 00171520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll
2016-01-13 16:57 - 2015-12-30 19:41 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2016-01-13 16:57 - 2015-12-30 19:41 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll
2016-01-13 16:57 - 2015-12-30 19:41 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll
2016-01-13 16:57 - 2015-12-30 19:41 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll
2016-01-13 16:57 - 2015-12-30 19:40 - 00251392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2016-01-13 16:57 - 2015-12-30 19:40 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2016-01-13 16:57 - 2015-12-30 19:39 - 00259584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2016-01-13 16:57 - 2015-12-30 19:39 - 00223232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll
2016-01-13 16:57 - 2015-12-30 19:39 - 00146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll
2016-01-13 16:57 - 2015-12-30 19:39 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msobjs.dll
2016-01-13 16:57 - 2015-12-30 19:38 - 00552960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2016-01-13 16:57 - 2015-12-30 19:38 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll
2016-01-13 16:57 - 2015-12-30 19:37 - 00686080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll
2016-01-13 16:57 - 2015-12-30 19:37 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apisetschema.dll
2016-01-13 16:57 - 2015-12-30 19:37 - 00005120 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll
2016-01-13 16:57 - 2015-12-30 19:37 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2016-01-13 16:57 - 2015-12-30 19:37 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2016-01-13 16:57 - 2015-12-30 19:37 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll
2016-01-13 16:57 - 2015-12-30 19:37 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll
2016-01-13 16:57 - 2015-12-30 19:37 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2016-01-13 16:57 - 2015-12-30 19:37 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll
2016-01-13 16:57 - 2015-12-30 19:37 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2016-01-13 16:57 - 2015-12-30 19:37 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2016-01-13 16:57 - 2015-12-30 19:37 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll
2016-01-13 16:57 - 2015-12-30 19:37 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2016-01-13 16:57 - 2015-12-30 19:37 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2016-01-13 16:57 - 2015-12-30 19:37 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll
2016-01-13 16:57 - 2015-12-30 19:37 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll
2016-01-13 16:57 - 2015-12-30 19:37 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2016-01-13 16:57 - 2015-12-30 19:37 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll
2016-01-13 16:57 - 2015-12-30 19:37 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll
2016-01-13 16:57 - 2015-12-30 19:37 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll
2016-01-13 16:57 - 2015-12-30 19:37 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll
2016-01-13 16:57 - 2015-12-30 19:37 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2016-01-13 16:57 - 2015-12-30 19:37 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll
2016-01-13 16:57 - 2015-12-30 19:37 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll
2016-01-13 16:57 - 2015-12-30 19:37 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll
2016-01-13 16:57 - 2015-12-30 19:37 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll
2016-01-13 16:57 - 2015-12-30 18:57 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe
2016-01-13 16:57 - 2015-12-30 18:50 - 00338432 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe
2016-01-13 16:57 - 2015-12-30 18:49 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe
2016-01-13 16:57 - 2015-12-30 18:44 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\auditpol.exe
2016-01-13 16:57 - 2015-12-30 18:43 - 00159232 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
2016-01-13 16:57 - 2015-12-30 18:42 - 00290816 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys
2016-01-13 16:57 - 2015-12-30 18:42 - 00129024 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
2016-01-13 16:57 - 2015-12-30 18:41 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
2016-01-13 16:57 - 2015-12-30 18:41 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2016-01-13 16:57 - 2015-12-30 18:32 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe
2016-01-13 16:57 - 2015-12-30 18:32 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll
2016-01-13 16:57 - 2015-12-30 18:32 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe
2016-01-13 16:57 - 2015-12-30 18:32 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe
2016-01-13 16:57 - 2015-12-30 18:30 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptbase.dll
2016-01-13 16:57 - 2015-12-30 18:30 - 00006144 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll
2016-01-13 16:57 - 2015-12-30 18:30 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2016-01-13 16:57 - 2015-12-30 18:30 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll
2016-01-13 16:57 - 2015-12-30 18:30 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll
2016-01-09 21:49 - 2016-01-09 21:49 - 01303880 _____ (Perfect World Entertainment) C:\Users\CPadmin.CC_PRACOVISTE6\Downloads\Swordsman_ArcSetup.exe
2016-01-03 01:29 - 2016-01-03 01:29 - 00001398 _____ C:\Users\CPadmin.CC_PRACOVISTE6\Desktop\eu4 – zástupce.lnk
2015-12-27 00:34 - 2015-12-27 00:36 - 00000000 ____D C:\Users\CPadmin.CC_PRACOVISTE6\AppData\LocalLow\Daybreak Game Company
2015-12-27 00:34 - 2015-12-27 00:34 - 00000000 ____D C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Daybreak Game Company
2015-12-27 00:33 - 2016-01-15 20:11 - 00001603 _____ C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PlanetSide 2.lnk
2015-12-27 00:32 - 2015-12-27 00:32 - 33097848 _____ C:\Users\CPadmin.CC_PRACOVISTE6\Downloads\PS2_setup.exe
2015-12-26 23:37 - 2015-12-26 23:38 - 00000000 ____D C:\Users\CPadmin.CC_PRACOVISTE6\AppData\LocalLow\PowerChallenge
2015-12-26 23:37 - 2015-12-26 23:37 - 00000000 ____D C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\PowerChallenge
2015-12-26 23:36 - 2015-12-26 23:36 - 00494968 _____ C:\Users\CPadmin.CC_PRACOVISTE6\Downloads\powersetup.exe
2015-12-19 10:24 - 2016-01-15 20:12 - 00002249 _____ C:\Users\Public\Desktop\ToneMaker 1.lnk
2015-12-19 10:24 - 2015-12-19 10:24 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bloody
2015-12-19 10:24 - 2015-12-19 10:24 - 00000000 ____D C:\Program Files (x86)\BloodyToneMaker
2015-12-19 10:24 - 2013-10-03 09:06 - 00386560 _____ (A4Tech Inc.) C:\Windows\system32\Drivers\Headset6400x1.SYS
2015-12-19 10:24 - 2013-08-28 15:05 - 01965312 _____ (C-Media Electronics Inc.) C:\Windows\system32\CMXearSurr.dll
2015-12-19 10:24 - 2013-08-28 15:05 - 00961616 _____ (C-Media Electronics Inc.) C:\Windows\system32\CMAPOMain.dll
2015-12-19 10:24 - 2013-08-28 15:05 - 00841624 _____ (C-Media Electronics Inc.) C:\Windows\system32\CMXearLiving10.dll
2015-12-19 10:24 - 2013-08-28 15:05 - 00809664 _____ (C-Media Electronics Inc.) C:\Windows\system32\CMXearVoClear.dll
2015-12-19 10:24 - 2013-08-28 15:05 - 00720584 _____ (C-Media Electronics Inc.) C:\Windows\system32\CMXearSingFX.dll
2015-12-19 10:24 - 2013-08-28 15:05 - 00129864 _____ (C-Media Electronics Inc.) C:\Windows\system32\CMXearSonic.dll
2015-12-19 10:24 - 2013-08-28 15:05 - 00080896 _____ (C-Media Electronics Inc.) C:\Windows\system32\CMEffectPropPage.dll
2015-12-19 10:24 - 2013-08-28 15:05 - 00074304 _____ (C-Media Electronics Inc.) C:\Windows\system32\CMEffectGFX.dll
2015-12-19 10:24 - 2013-08-28 15:05 - 00070184 _____ (C-Media Electronics Inc.) C:\Windows\system32\CMEffectLFX.dll
2015-12-19 10:24 - 2013-08-28 15:05 - 00064528 _____ (C-Media Electronics Inc.) C:\Windows\system32\CMMicEffectLFX.dll

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2016-01-17 20:12 - 2010-10-01 07:02 - 00000966 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3404362962-4107995047-1605947123-1981UA.job
2016-01-17 20:12 - 2009-07-14 04:20 - 00000000 ____D C:\Windows
2016-01-17 20:06 - 2011-06-03 13:01 - 00000966 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3404362962-4107995047-1605947123-1886UA.job
2016-01-17 20:04 - 2010-10-21 07:59 - 00000966 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3404362962-4107995047-1605947123-2004UA.job
2016-01-17 20:01 - 2012-11-17 22:45 - 00001000 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3730321190-864032766-3096031451-1004UA.job
2016-01-17 19:46 - 2011-06-13 07:41 - 00000966 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3404362962-4107995047-1605947123-2005UA.job
2016-01-17 19:37 - 2011-10-25 11:32 - 00000972 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3404362962-4107995047-1605947123-1883UA.job
2016-01-17 19:33 - 2012-11-18 11:55 - 00000914 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2016-01-17 19:31 - 2011-04-29 10:21 - 00000966 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3404362962-4107995047-1605947123-2075UA.job
2016-01-17 18:08 - 2009-07-14 05:45 - 00021680 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2016-01-17 18:08 - 2009-07-14 05:45 - 00021680 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2016-01-17 18:02 - 2011-06-03 13:01 - 00000914 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3404362962-4107995047-1605947123-1886Core.job
2016-01-17 12:37 - 2011-10-25 11:32 - 00000920 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3404362962-4107995047-1605947123-1883Core.job
2016-01-17 12:33 - 2012-11-17 22:45 - 00000948 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3730321190-864032766-3096031451-1004Core.job
2016-01-17 12:28 - 2011-06-13 07:41 - 00000914 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3404362962-4107995047-1605947123-2005Core.job
2016-01-17 12:28 - 2011-04-29 10:21 - 00000914 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3404362962-4107995047-1605947123-2075Core.job
2016-01-17 12:28 - 2010-10-21 07:59 - 00000914 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3404362962-4107995047-1605947123-2004Core.job
2016-01-17 08:18 - 2010-10-01 07:02 - 00000914 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3404362962-4107995047-1605947123-1981Core.job
2016-01-16 23:39 - 2012-11-17 22:55 - 00000000 ____D C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Roaming\Skype
2016-01-16 22:58 - 2012-11-25 22:51 - 00000000 ____D C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Roaming\TS3Client
2016-01-16 22:52 - 2014-06-05 20:12 - 00000000 ____D C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Roaming\Raptr
2016-01-16 01:33 - 2014-06-15 19:37 - 00000000 ____D C:\Program Files (x86)\Steam
2016-01-15 20:44 - 2014-03-28 20:41 - 00000000 ____D C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WarThunder_Nightly
2016-01-15 20:44 - 2013-02-12 19:41 - 00000000 ____D C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\War Thunder
2016-01-15 20:44 - 2012-11-17 22:45 - 00000000 ____D C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome
2016-01-15 20:43 - 2014-06-06 02:06 - 00001096 _____ C:\Users\Public\Desktop\Star Wars - The Old Republic.lnk
2016-01-15 20:43 - 2014-04-01 20:43 - 00001000 _____ C:\Users\CPadmin.CC_PRACOVISTE6\Desktop\Launcher – zástupce.lnk
2016-01-15 20:43 - 2013-02-12 19:41 - 00001835 _____ C:\Users\Public\Desktop\War Thunder.lnk
2016-01-15 20:43 - 2012-11-17 22:45 - 00002727 _____ C:\Users\CPadmin.CC_PRACOVISTE6\Desktop\Google Chrome.lnk
2016-01-15 20:12 - 2015-12-11 17:52 - 00002725 _____ C:\Users\Public\Desktop\Skype.lnk
2016-01-15 20:12 - 2015-03-26 11:24 - 00001932 _____ C:\Users\Public\Desktop\DAEMON Tools Pro.lnk
2016-01-15 20:12 - 2015-02-27 00:13 - 00001811 _____ C:\Users\Public\Desktop\Champions Online.lnk
2016-01-15 20:12 - 2015-02-27 00:04 - 00001582 _____ C:\Users\Public\Desktop\Arc.lnk
2016-01-15 20:12 - 2014-11-11 20:17 - 00000991 _____ C:\Users\Public\Desktop\Tunngle.lnk
2016-01-15 20:12 - 2014-10-21 01:35 - 00001686 _____ C:\Users\Public\Desktop\Path of Exile.lnk
2016-01-15 20:12 - 2014-06-15 19:37 - 00000963 _____ C:\Users\Public\Desktop\Steam.lnk
2016-01-15 20:12 - 2014-03-23 01:35 - 00000751 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Southpark Stick of Truth.lnk
2016-01-15 20:12 - 2013-08-24 23:57 - 00000562 _____ C:\Users\Public\Desktop\Fraps.lnk
2016-01-15 20:12 - 2013-08-13 15:35 - 00000979 _____ C:\Users\Public\Desktop\Origin.lnk
2016-01-15 20:12 - 2013-07-17 21:36 - 00000686 _____ C:\Users\Public\Desktop\4GF Game Client.lnk
2016-01-15 20:12 - 2013-07-15 11:28 - 00002271 _____ C:\Users\Public\Desktop\Creative Product Registration.lnk
2016-01-15 20:12 - 2013-07-13 19:23 - 00001870 _____ C:\Users\Public\Desktop\Tour de France 2010 - Der offizielle Radsport-Manager.lnk
2016-01-15 20:12 - 2013-04-06 13:26 - 00001273 _____ C:\Users\Public\Desktop\Media Player Classic.lnk
2016-01-15 20:12 - 2013-03-17 01:35 - 00002447 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader 7.0.lnk
2016-01-15 20:12 - 2013-03-17 01:35 - 00002025 _____ C:\Users\Public\Desktop\Adobe Reader 7.0.lnk
2016-01-15 20:12 - 2013-01-10 19:25 - 00001610 _____ C:\Users\Public\Desktop\Race Injection.lnk
2016-01-15 20:12 - 2012-12-17 19:49 - 00002567 _____ C:\Users\Public\Desktop\Six Updater.lnk
2016-01-15 20:12 - 2012-12-17 19:49 - 00002567 _____ C:\Users\Public\Desktop\Six Launcher.lnk
2016-01-15 20:12 - 2012-12-03 18:00 - 00000646 _____ C:\Users\Public\Desktop\Total Commander 64 bit.lnk
2016-01-15 20:12 - 2012-12-02 21:39 - 00000945 _____ C:\Users\Public\Desktop\hamachi.lnk
2016-01-15 20:12 - 2012-11-30 19:13 - 00002111 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Security Essentials.lnk
2016-01-15 20:12 - 2012-11-17 23:23 - 00000967 _____ C:\Users\Public\Desktop\WinRAR.lnk
2016-01-15 20:12 - 2012-09-25 09:44 - 00001066 _____ C:\Users\Public\Desktop\VLC media player.lnk
2016-01-15 20:12 - 2012-09-25 09:44 - 00001031 _____ C:\Users\Public\Desktop\PDFCreator.lnk
2016-01-15 20:12 - 2010-08-02 07:56 - 00001738 _____ C:\Users\Public\Desktop\Výběr prohlížeče.lnk
2016-01-15 20:12 - 2010-03-12 14:07 - 00002047 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LaunchCenter.lnk
2016-01-15 20:12 - 2009-08-10 16:06 - 00001333 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Media Center.lnk
2016-01-15 20:12 - 2009-08-10 16:06 - 00001314 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows DVD Maker.lnk
2016-01-15 20:12 - 2009-07-14 06:32 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
2016-01-15 20:12 - 2009-07-14 05:57 - 00001511 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk
2016-01-15 20:12 - 2009-07-14 05:57 - 00001340 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Anytime Upgrade.lnk
2016-01-15 20:12 - 2009-07-14 05:57 - 00001292 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sidebar.lnk
2016-01-15 20:12 - 2009-07-14 05:57 - 00001234 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\XPS Viewer.lnk
2016-01-15 20:12 - 2009-07-14 05:54 - 00001198 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Fax and Scan.lnk
2016-01-15 20:12 - 2005-02-27 19:45 - 00001011 _____ C:\Users\Public\Desktop\TeamSpeak 3 Client.lnk
2016-01-15 20:11 - 2015-02-02 17:23 - 00000926 _____ C:\Users\CPadmin.CC_PRACOVISTE6\Desktop\Wargame Red Dragon.lnk
2016-01-15 20:11 - 2014-10-27 00:06 - 00001541 _____ C:\Users\CPadmin.CC_PRACOVISTE6\Desktop\Blitzkrieg Mod.lnk
2016-01-15 20:11 - 2014-06-15 19:37 - 00000852 _____ C:\Users\CPadmin.CC_PRACOVISTE6\Desktop\Spintires.lnk
2016-01-15 20:11 - 2014-02-21 19:14 - 00001612 _____ C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PlanetSide 2 PSG.lnk
2016-01-15 20:11 - 2013-09-22 14:38 - 00001355 _____ C:\Users\CPadmin.CC_PRACOVISTE6\Desktop\The Elder Scrolls Online Beta.lnk
2016-01-15 20:11 - 2013-08-27 13:15 - 00001204 _____ C:\Users\CPadmin.CC_PRACOVISTE6\Desktop\Format Factory.lnk
2016-01-15 20:11 - 2013-07-17 21:58 - 00001845 _____ C:\Users\CPadmin.CC_PRACOVISTE6\Desktop\Play COD4 SinglePlayer.lnk
2016-01-15 20:11 - 2013-07-17 21:58 - 00001845 _____ C:\Users\CPadmin.CC_PRACOVISTE6\Desktop\Play COD4 MultiPlayer.lnk
2016-01-15 20:11 - 2013-05-14 11:47 - 00000630 _____ C:\Users\CPadmin.CC_PRACOVISTE6\Desktop\LFS.lnk
2016-01-15 20:11 - 2013-05-11 19:54 - 00000000 ____D C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games
2016-01-15 20:11 - 2013-04-06 13:28 - 00001041 _____ C:\Users\CPadmin.CC_PRACOVISTE6\Desktop\KMPlayer.lnk
2016-01-15 20:11 - 2012-11-23 18:39 - 00000779 _____ C:\Users\CPadmin.CC_PRACOVISTE6\Desktop\Football Superstars.lnk
2016-01-15 20:11 - 2012-11-17 23:23 - 00000979 _____ C:\ProgramData\Microsoft\Windows\Start Menu\WinRAR.lnk
2016-01-15 20:11 - 2012-09-25 09:55 - 00001399 _____ C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2016-01-15 20:11 - 2009-07-14 06:01 - 00001218 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Default Programs.lnk
2016-01-15 20:11 - 2009-07-14 05:49 - 00001246 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Windows Update.lnk
2016-01-15 07:11 - 2012-11-17 23:04 - 00000000 ____D C:\Hry
2016-01-15 06:54 - 2013-01-04 03:46 - 00000000 ____D C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\PMB Files
2016-01-15 06:23 - 2009-07-14 06:09 - 00000000 ____D C:\Windows\System32\Tasks\WPD
2016-01-15 06:21 - 2009-07-14 06:08 - 00032618 _____ C:\Windows\Tasks\SCHEDLGU.TXT
2016-01-15 06:21 - 2009-07-14 06:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2016-01-15 06:06 - 2012-11-18 17:33 - 00000000 ____D C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Roaming\uTorrent
2016-01-15 02:11 - 2005-02-24 19:04 - 00000000 ____D C:\Users\CPadmin.CC_PRACOVISTE6\Documents\My Games
2016-01-15 02:07 - 2014-06-05 20:05 - 00000000 ____D C:\ProgramData\Package Cache
2016-01-15 01:37 - 2012-11-28 17:10 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2016-01-15 01:33 - 2012-12-26 01:18 - 00000000 ____D C:\ProgramData\Hi-Rez Studios
2016-01-15 01:30 - 2015-02-27 00:04 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Perfect World Entertainment
2016-01-15 00:37 - 2014-03-14 00:25 - 00000000 ___HD C:\ArcTemp
2016-01-15 00:36 - 2015-02-27 00:04 - 00000000 ____D C:\Program Files (x86)\Arc
2016-01-14 04:26 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\rescache
2016-01-14 03:53 - 2009-08-10 17:18 - 00668882 _____ C:\Windows\system32\perfh005.dat
2016-01-14 03:53 - 2009-08-10 17:18 - 00141542 _____ C:\Windows\system32\perfc005.dat
2016-01-14 03:53 - 2009-07-14 06:13 - 01584626 _____ C:\Windows\system32\PerfStringBackup.INI
2016-01-14 03:53 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\inf
2016-01-14 03:48 - 2013-03-15 01:14 - 00000000 ____D C:\Program Files\Microsoft Silverlight
2016-01-14 03:48 - 2009-07-14 05:45 - 00430112 _____ C:\Windows\system32\FNTCACHE.DAT
2016-01-14 03:47 - 2013-03-15 01:14 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight
2016-01-14 03:45 - 2014-12-12 09:43 - 00000000 ____D C:\Windows\system32\appraiser
2016-01-14 03:45 - 2014-05-06 16:44 - 00000000 ___SD C:\Windows\system32\CompatTel
2016-01-14 03:28 - 2013-03-15 01:15 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
2016-01-14 03:27 - 2013-08-15 16:47 - 00000000 ____D C:\Windows\system32\MRT
2016-01-14 03:08 - 2011-04-19 18:02 - 143671360 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2016-01-09 21:50 - 2015-02-27 00:05 - 00000000 ____D C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Roaming\Arc
2016-01-09 17:45 - 2014-12-02 21:33 - 00000000 ____D C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2016-01-09 17:44 - 2015-04-18 19:14 - 00000000 ____D C:\Program Files\Rockstar Games
2016-01-09 17:44 - 2015-04-18 19:14 - 00000000 ____D C:\Program Files (x86)\Rockstar Games
2016-01-09 17:43 - 2012-12-11 20:45 - 00000000 ____D C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Roaming\.minecraft
2016-01-09 17:40 - 2015-04-18 19:15 - 00000000 ____D C:\Users\CPadmin.CC_PRACOVISTE6\Documents\Rockstar Games
2016-01-09 17:40 - 2015-04-18 19:15 - 00000000 ____D C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Rockstar Games
2016-01-09 17:27 - 2011-01-07 11:11 - 00000000 ____D C:\ProgramData\Skype
2016-01-02 17:48 - 2012-11-18 11:55 - 00796864 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2016-01-02 17:48 - 2012-11-18 11:55 - 00142528 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2016-01-02 17:48 - 2012-11-18 11:55 - 00003852 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2015-12-27 02:55 - 2014-09-30 14:34 - 00001105 _____ C:\Users\CPadmin.CC_PRACOVISTE6\Desktop\rust.txt
2015-12-27 00:34 - 2012-12-09 19:54 - 00000000 ____D C:\Windows\SysWOW64\directx
2015-12-27 00:33 - 2012-12-09 19:54 - 00000000 ___HD C:\Windows\msdownld.tmp
2015-12-20 10:00 - 2015-04-05 02:02 - 00000000 ___SD C:\Windows\SysWOW64\GWX
2015-12-20 10:00 - 2015-04-05 02:02 - 00000000 ___SD C:\Windows\system32\GWX
2015-12-19 10:38 - 2014-06-05 20:12 - 00000000 ____D C:\Program Files (x86)\Raptr

==================== Files in the root of some directories =======

2014-09-30 13:50 - 2014-09-30 13:50 - 0000000 ___SH () C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\LumaEmu
2012-11-30 19:39 - 2012-11-30 19:39 - 0000017 _____ () C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\resmon.resmoncfg
2015-11-04 21:59 - 2015-11-04 21:59 - 0000000 ___SH () C:\ProgramData\.rdata
2011-01-07 11:16 - 2011-01-07 11:16 - 0000056 ____H () C:\ProgramData\ezsidmv.dat
2013-08-28 14:59 - 2013-08-28 15:00 - 0001135 _____ () C:\ProgramData\HirezPipeError.txt
2016-01-15 06:14 - 2016-01-15 06:14 - 0000074 _____ () C:\ProgramData\{262E20B8-6E20-4CEF-B1FD-D022AB1085F5}.dat

Files to move or delete:
====================
C:\ProgramData\{262E20B8-6E20-4CEF-B1FD-D022AB1085F5}.dat


Some files in TEMP:
====================
C:\Users\cc2001\AppData\Local\Temp\install_flashplayer11x64ax_gtba_aih[1].exe
C:\Users\cc2001\AppData\Local\Temp\install_flashplayer11x64ax_gtba_aih[1]_1.exe
C:\Users\cc2014\AppData\Local\Temp\SkypeSetup.exe
C:\Users\cc2024\AppData\Local\Temp\SkypeSetup.exe
C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Temp\64f952b7b636024e2b75718e594a9857.dll
C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Temp\8bd177235c9c2ac30426f441bce65432.dll
C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Temp\BRSVC_418876396_hlp.exe
C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Temp\c5e33b6d8db822b10eec8b5666f64a1d.dll
C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Temp\c8db5fbf345041a75bcc6e2aad3db252.dll
C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Temp\detectionapi_rd.dll
C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Temp\detectionui_r.exe
C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Temp\directx10tests_rd.dll
C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Temp\directx11tests_rd.dll
C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Temp\directx9tests_rd.dll
C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Temp\drm_dialogs.dll
C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Temp\drm_dyndata_7300015.dll
C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Temp\drm_dyndata_7330012.dll
C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Temp\Gw2.exe
C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Temp\hcuninstaller_20150320_124640_4092.exe
C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Temp\install_flashplayer11x32au_mssa_aih.exe
C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Temp\local.dll
C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Temp\raptrpatch.exe
C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Temp\raptr_stub.exe
C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Temp\riftuninstall.exe
C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Temp\SkypeSetup.exe
C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Temp\su-setup.exe
C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Temp\swt-win32-3740.dll
C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Temp\tmp1DDE.exe
C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Temp\tmp39AD.exe
C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Temp\tmp7196.exe
C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Temp\tmp8870.exe
C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Temp\Uninstall.exe
C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Temp\Uninstaller-2068.exe
C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Temp\Uninstaller-3760.exe
C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Temp\utt6366.tmp.exe
C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Temp\vlc-2.1.5-win32.exe
C:\Users\matous\AppData\Local\Temp\12-10_vista_win7_win8_64_dd_ccc_whql_net4.exe


==================== Bamital & volsnap =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2016-01-14 04:18

==================== End of FRST.txt ============================

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119673
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: prosím o kontrolu logu

#2 Příspěvek od Rudy »

Zdravím!
Spusťte tuto utilitu:
Stáhněte AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
Uložte na plochu
Ukončete všechny programy
Klikněte nejprve na >Scan< a pak na >Clean<.
Proběhne skenováni a pak se objeví log, který sem vložte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Rybiz
Návštěvník
Návštěvník
Příspěvky: 36
Registrován: 13 zář 2007 20:40

Re: prosím o kontrolu logu

#3 Příspěvek od Rybiz »

# AdwCleaner v5.029 - Logfile created 17/01/2016 at 20:26:49
# Updated 11/01/2016 by Xplode
# Database : 2016-01-15.2 [Server]
# Operating system : Windows 7 Professional Service Pack 1 (x64)
# Username : CPadmin - PC-ZALOHA1
# Running from : C:\Users\CPadmin.CC_PRACOVISTE6\Downloads\adwcleaner_5.029.exe
# Option : Cleaning
# Support : http://toolslib.net/forum

***** [ Services ] *****

[-] Service Deleted : WindowsMangerProtect
[-] Service Deleted : WdMan

***** [ Folders ] *****

[-] Folder Deleted : C:\ProgramData\Tmp0x0x
[-] Folder Deleted : C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\PackageAware
[-] Folder Deleted : C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\gmsd_re_021010207
[-] Folder Deleted : C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Roaming\mysites123

***** [ Files ] *****

[-] File Deleted : C:\ProgramData\{262E20B8-6E20-4CEF-B1FD-D022AB1085F5}.dat

***** [ DLLs ] *****


***** [ Shortcuts ] *****


***** [ Scheduled tasks ] *****


***** [ Registry ] *****

[-] Key Deleted : HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application\WindowsMangerProtect
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3CCC052E-BDEE-408A-BEA7-90914EF2964B}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{61F47056-E400-43D3-AF1E-AB7DFFD4C4AD}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{E2B98EEA-EE55-4E9B-A8C1-6E5288DF785A}
[-] Key Deleted : HKCU\Software\APN PIP
[-] Key Deleted : HKCU\Software\Tutorials
[-] Key Deleted : HKCU\Software\TutoTag
[-] Key Deleted : HKCU\Software\GAMESDESKTOP
[-] Key Deleted : HKCU\Software\Microsoft\Tinstalls
[-] Key Deleted : HKLM\SOFTWARE\PIP
[-] Key Deleted : HKLM\SOFTWARE\Tutorials
[-] Key Deleted : HKLM\SOFTWARE\mysites123Software
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{7ADF667E-E14D-4D2C-827C-B0108F0D93BC}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\mysites123 uninstall

***** [ Web browsers ] *****

[-] [C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] [Default_Search_Provider] Deleted : hxxp://mysites123.com/wefavicon.ico

*************************

:: "Tracing" keys removed
:: Winsock settings cleared

########## EOF - C:\AdwCleaner\AdwCleaner[C1].txt - [2249 bytes] ##########

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119673
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: prosím o kontrolu logu

#4 Příspěvek od Rudy »

Dejte nový log FRST.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Rybiz
Návštěvník
Návštěvník
Příspěvky: 36
Registrován: 13 zář 2007 20:40

Re: prosím o kontrolu logu

#5 Příspěvek od Rybiz »

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:17-01-2015
Ran by CPadmin (administrator) on PC-ZALOHA1 (17-01-2016 21:16:11)
Running from C:\Users\CPadmin.CC_PRACOVISTE6\Desktop
Loaded Profiles: CPadmin (Available Profiles: CPadmin & test & Administrator)
Platform: Windows 7 Professional Service Pack 1 (X64) Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\MsMpEng.exe
(AMD) C:\Windows\System32\atiesrxx.exe
(Creative Technology Ltd) C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe
(AMD) C:\Windows\System32\atieclxx.exe
(Hi-Rez Studios) C:\Hry\Smite\HiPatchService.exe
(Microsoft Corporation) C:\Program Files (x86)\Common Files\microsoft shared\VS7DEBUG\mdm.exe
() C:\Windows\SysWOW64\PnkBstrA.exe
(Fujitsu Technology Solutions) C:\Program Files (x86)\Fujitsu\SystemDiagnostics\OnlineDiagnostic\TestManager\TestHandler.exe
(RealVNC Ltd.) C:\Program Files (x86)\RealVNC\VNC4\winvnc4.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\NisSrv.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe
(Logitech Inc.) C:\Program Files\Logitech\Gaming Software\LWEMon.exe
(Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe
() C:\Program Files (x86)\BloodyToneMaker\BloodyToneMaker\Bloody ToneMaker1.exe
(Advanced Micro Devices Inc.) C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\MOM.exe
(Google Inc.) C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Google\Chrome\Application\chrome.exe
(Raptr, Inc) C:\Program Files (x86)\Raptr\raptr.exe
(Advanced Micro Devices Inc.) C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\CCC.exe
() C:\Program Files (x86)\BloodyToneMaker\BloodyToneMaker\SDK\CM_LibraryIO.exe
(Google Inc.) C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Google\Chrome\Application\chrome.exe
(Raptr, Inc) C:\Program Files (x86)\Raptr\raptr_im.exe
(Google Inc.) C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Google\Chrome\Application\chrome.exe
(Raptr Inc.) C:\Program Files (x86)\Raptr\raptr_ep64.exe
(Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe
() C:\Hry\War Thunder\aces.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe


==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [8060960 2009-08-05] (Realtek Semiconductor)
HKLM\...\Run: [MSC] => c:\Program Files\Microsoft Security Client\msseces.exe [1337000 2015-04-30] (Microsoft Corporation)
HKLM\...\Run: [Start WingMan Profiler] => C:\Program Files\Logitech\Gaming Software\LWEMon.exe [190536 2010-06-14] (Logitech Inc.)
HKLM-x32\...\Run: [Raptr] => C:\Program Files (x86)\Raptr\raptrstub.exe [56080 2015-12-11] (Raptr, Inc)
HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\amd64\CLIStart.exe [767176 2015-08-04] (Advanced Micro Devices, Inc.)
HKU\S-1-5-21-3730321190-864032766-3096031451-1004\...\Run: [Google Update] => C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Google\Update\GoogleUpdate.exe [144200 2015-08-29] (Google Inc.)
HKU\S-1-5-21-3730321190-864032766-3096031451-1004\...\Run: [Pando Media Booster] => C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe [3093624 2013-01-04] ()
HKU\S-1-5-21-3730321190-864032766-3096031451-1004\...\Run: [SystemProc] => C:\Users\Public\Other\run_shc.lnk
HKU\S-1-5-21-3730321190-864032766-3096031451-1004\...\Run: [DAEMON Tools Pro Agent] => C:\Program Files (x86)\DAEMON Tools Pro\DTAgent.exe [3108480 2012-10-23] (DT Soft Ltd)
HKU\S-1-5-21-3730321190-864032766-3096031451-1004\...\Run: [GarenaPlus] => "C:\Program Files (x86)\Garena Plus\GarenaMessenger.exe" -autolaunch
HKU\S-1-5-21-3730321190-864032766-3096031451-1004\...\Run: [BloodyToneMaker] => C:\Program Files (x86)\BloodyToneMaker\BloodyToneMaker\Bloody ToneMaker1.exe [8472576 2015-12-04] ()
HKU\S-1-5-21-3730321190-864032766-3096031451-1004\...\MountPoints2: D - D:\Autorun\autorun.exe
Startup: C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\startup\LaunchCenter.lnk [2012-09-25]
ShortcutTarget: LaunchCenter.lnk -> C:\Program Files (x86)\Fujitsu\LaunchCenter\LaunchCenter.exe (Fujitsu Technology Solutions)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Adobe Reader Speed Launch.lnk [2016-01-17]
ShortcutTarget: Adobe Reader Speed Launch.lnk -> C:\Program Files (x86)\Adobe\Acrobat 7.0\Reader\reader_sl.exe (Adobe Systems Incorporated)
Startup: C:\Users\cc2001\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\startup\LaunchCenter.lnk [2011-10-25]
ShortcutTarget: LaunchCenter.lnk -> C:\Program Files (x86)\Fujitsu\LaunchCenter\LaunchCenter.exe (Fujitsu Technology Solutions)
Startup: C:\Users\cc2003\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\startup\LaunchCenter.lnk [2011-07-04]
ShortcutTarget: LaunchCenter.lnk -> C:\Program Files (x86)\Fujitsu\LaunchCenter\LaunchCenter.exe (Fujitsu Technology Solutions)
Startup: C:\Users\cc2006\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\startup\LaunchCenter.lnk [2010-09-24]
ShortcutTarget: LaunchCenter.lnk -> C:\Program Files (x86)\Fujitsu\LaunchCenter\LaunchCenter.exe (Fujitsu Technology Solutions)
Startup: C:\Users\cc2007\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\startup\LaunchCenter.lnk [2011-02-17]
ShortcutTarget: LaunchCenter.lnk -> C:\Program Files (x86)\Fujitsu\LaunchCenter\LaunchCenter.exe (Fujitsu Technology Solutions)
Startup: C:\Users\cc2009\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\startup\LaunchCenter.lnk [2010-10-21]
ShortcutTarget: LaunchCenter.lnk -> C:\Program Files (x86)\Fujitsu\LaunchCenter\LaunchCenter.exe (Fujitsu Technology Solutions)
Startup: C:\Users\cc2010\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\startup\LaunchCenter.lnk [2011-12-13]
ShortcutTarget: LaunchCenter.lnk -> C:\Program Files (x86)\Fujitsu\LaunchCenter\LaunchCenter.exe (Fujitsu Technology Solutions)
Startup: C:\Users\cc2011\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\startup\LaunchCenter.lnk [2011-03-22]
ShortcutTarget: LaunchCenter.lnk -> C:\Program Files (x86)\Fujitsu\LaunchCenter\LaunchCenter.exe (Fujitsu Technology Solutions)
Startup: C:\Users\cc2013\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\startup\LaunchCenter.lnk [2012-03-30]
ShortcutTarget: LaunchCenter.lnk -> C:\Program Files (x86)\Fujitsu\LaunchCenter\LaunchCenter.exe (Fujitsu Technology Solutions)
Startup: C:\Users\cc2016\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\startup\LaunchCenter.lnk [2011-06-22]
ShortcutTarget: LaunchCenter.lnk -> C:\Program Files (x86)\Fujitsu\LaunchCenter\LaunchCenter.exe (Fujitsu Technology Solutions)
Startup: C:\Users\cc2017\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\startup\LaunchCenter.lnk [2010-10-21]
ShortcutTarget: LaunchCenter.lnk -> C:\Program Files (x86)\Fujitsu\LaunchCenter\LaunchCenter.exe (Fujitsu Technology Solutions)
Startup: C:\Users\cc2018\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\startup\LaunchCenter.lnk [2011-06-16]
ShortcutTarget: LaunchCenter.lnk -> C:\Program Files (x86)\Fujitsu\LaunchCenter\LaunchCenter.exe (Fujitsu Technology Solutions)
Startup: C:\Users\cc2021\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\startup\LaunchCenter.lnk [2011-03-22]
ShortcutTarget: LaunchCenter.lnk -> C:\Program Files (x86)\Fujitsu\LaunchCenter\LaunchCenter.exe (Fujitsu Technology Solutions)
Startup: C:\Users\cc2022\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\startup\LaunchCenter.lnk [2011-01-17]
ShortcutTarget: LaunchCenter.lnk -> C:\Program Files (x86)\Fujitsu\LaunchCenter\LaunchCenter.exe (Fujitsu Technology Solutions)
Startup: C:\Users\cc2023\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\startup\LaunchCenter.lnk [2011-11-22]
ShortcutTarget: LaunchCenter.lnk -> C:\Program Files (x86)\Fujitsu\LaunchCenter\LaunchCenter.exe (Fujitsu Technology Solutions)
Startup: C:\Users\cc2024\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\startup\LaunchCenter.lnk [2011-05-30]
ShortcutTarget: LaunchCenter.lnk -> C:\Program Files (x86)\Fujitsu\LaunchCenter\LaunchCenter.exe (Fujitsu Technology Solutions)
Startup: C:\Users\cc2026\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\startup\LaunchCenter.lnk [2011-04-05]
ShortcutTarget: LaunchCenter.lnk -> C:\Program Files (x86)\Fujitsu\LaunchCenter\LaunchCenter.exe (Fujitsu Technology Solutions)
Startup: C:\Users\cc2027\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\startup\LaunchCenter.lnk [2011-10-24]
ShortcutTarget: LaunchCenter.lnk -> C:\Program Files (x86)\Fujitsu\LaunchCenter\LaunchCenter.exe (Fujitsu Technology Solutions)
Startup: C:\Users\cc2028\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\startup\LaunchCenter.lnk [2011-07-12]
ShortcutTarget: LaunchCenter.lnk -> C:\Program Files (x86)\Fujitsu\LaunchCenter\LaunchCenter.exe (Fujitsu Technology Solutions)
Startup: C:\Users\cc2030\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\startup\LaunchCenter.lnk [2011-04-06]
ShortcutTarget: LaunchCenter.lnk -> C:\Program Files (x86)\Fujitsu\LaunchCenter\LaunchCenter.exe (Fujitsu Technology Solutions)
Startup: C:\Users\cc2031\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\startup\LaunchCenter.lnk [2011-04-08]
ShortcutTarget: LaunchCenter.lnk -> C:\Program Files (x86)\Fujitsu\LaunchCenter\LaunchCenter.exe (Fujitsu Technology Solutions)
Startup: C:\Users\cpadmin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\startup\LaunchCenter.lnk [2012-11-07]
ShortcutTarget: LaunchCenter.lnk -> C:\Program Files (x86)\Fujitsu\LaunchCenter\LaunchCenter.exe (Fujitsu Technology Solutions)
Startup: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\startup\LaunchCenter.lnk [2009-03-11]
ShortcutTarget: LaunchCenter.lnk -> C:\Program Files (x86)\Fujitsu\LaunchCenter\LaunchCenter.exe (Fujitsu Technology Solutions)
Startup: C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\startup\LaunchCenter.lnk [2009-03-11]
ShortcutTarget: LaunchCenter.lnk -> C:\Program Files (x86)\Fujitsu\LaunchCenter\LaunchCenter.exe (Fujitsu Technology Solutions)
Startup: C:\Users\koutsky\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\startup\LaunchCenter.lnk [2011-09-13]
ShortcutTarget: LaunchCenter.lnk -> C:\Program Files (x86)\Fujitsu\LaunchCenter\LaunchCenter.exe (Fujitsu Technology Solutions)
Startup: C:\Users\krob\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\startup\LaunchCenter.lnk [2010-09-09]
ShortcutTarget: LaunchCenter.lnk -> C:\Program Files (x86)\Fujitsu\LaunchCenter\LaunchCenter.exe (Fujitsu Technology Solutions)
Startup: C:\Users\suk\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\startup\LaunchCenter.lnk [2012-09-25]
ShortcutTarget: LaunchCenter.lnk -> C:\Program Files (x86)\Fujitsu\LaunchCenter\LaunchCenter.exe (Fujitsu Technology Solutions)
Startup: C:\Users\test\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\startup\LaunchCenter.lnk [2012-11-07]
ShortcutTarget: LaunchCenter.lnk -> C:\Program Files (x86)\Fujitsu\LaunchCenter\LaunchCenter.exe (Fujitsu Technology Solutions)
Startup: C:\Users\vonka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\startup\LaunchCenter.lnk [2012-11-07]
ShortcutTarget: LaunchCenter.lnk -> C:\Program Files (x86)\Fujitsu\LaunchCenter\LaunchCenter.exe (Fujitsu Technology Solutions)
GroupPolicyScripts: Restriction <======= ATTENTION
GroupPolicyScripts\User: Restriction <======= ATTENTION

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 109.202.72.93 109.202.73.93
Tcpip\..\Interfaces\{1E3F151F-3CA6-437F-97FD-6A3FD388F7E4}: [DhcpNameServer] 109.202.72.93 109.202.73.93
Tcpip\..\Interfaces\{B6470AC7-9C2C-47C9-8218-F7E1A7282CE6}: [DhcpNameServer] 7.254.254.254

Internet Explorer:
==================
HKU\S-1-5-21-3730321190-864032766-3096031451-1004\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.seznam.cz/
HKU\S-1-5-21-3730321190-864032766-3096031451-1004\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.ts.fujitsu.com/index2
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-3730321190-864032766-3096031451-1004 -> DefaultScope {12666C0B-8139-438A-B6AF-952D2FBA7A23} URL =
SearchScopes: HKU\S-1-5-21-3730321190-864032766-3096031451-1004 -> {0B2EF93F-AB35-4219-8907-C545E94FC90A} URL =
SearchScopes: HKU\S-1-5-21-3730321190-864032766-3096031451-1004 -> {12666C0B-8139-438A-B6AF-952D2FBA7A23} URL =
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre7\bin\ssv.dll [2012-11-18] (Oracle Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre7\bin\jp2ssv.dll [2012-11-18] (Oracle Corporation)
BHO-x32: AcroIEHlprObj Class -> {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} -> C:\Program Files (x86)\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll [2004-12-14] (Adobe Systems Incorporated)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2012-11-08] (Oracle Corporation)
BHO-x32: ArcPluginIEBHO Class -> {84BFE29A-8139-402a-B2A4-C23AE9E1A75F} -> C:\Program Files (x86)\Arc\Plugins\ArcPluginIE.dll [2015-12-16] (Perfect World Entertainment Inc)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2012-11-08] (Oracle Corporation)
DPF: HKLM-x32 {D4B68B83-8710-488B-A692-D74B50BA558E} hxxp://ccfiles.creative.com/Web/softwareupdate/ocx/15113/CTPIDPDE.cab
DPF: HKLM-x32 {F6ACF75C-C32C-447B-9BEF-46B766368D29} hxxp://ccfiles.creative.com/Web/softwareupdate/ocx/130321/CTPID.cab
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll [2014-05-02] (Skype Technologies)
StartMenuInternet: IEXPLORE.EXE - iexplore.exe

FireFox:
========
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_20_0_0_267.dll [2015-12-29] ()
FF Plugin: @java.com/DTPlugin,version=10.9.2 -> C:\Windows\system32\npDeployJava1.dll [2012-11-18] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.9.2 -> C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll [2012-11-18] (Oracle Corporation)
FF Plugin: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.41212.0\npctrl.dll [2015-12-11] ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_20_0_0_267.dll [2015-12-29] ()
FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\Windows\SysWOW64\Adobe\Director\np32dsw_1168638.dll [2012-10-04] (Adobe Systems, Inc.)
FF Plugin-x32: @java.com/DTPlugin,version=10.9.2 -> C:\Windows\SysWOW64\npDeployJava1.dll [2012-11-08] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.9.2 -> C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll [2012-11-08] (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.41212.0\npctrl.dll [2015-12-11] ( Microsoft Corporation)
FF Plugin-x32: @pandonetworks.com/PandoWebPlugin -> C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll [2013-01-04] (Pando Networks)
FF Plugin-x32: @perfectworld.com/npArcPlayNowPlugin -> C:\Program Files (x86)\Arc\Plugins\npArcPluginFF.dll [2015-12-16] (Perfect World Entertainment Inc)
FF Plugin-x32: @t.garena.com/garenatalk -> C:\Program Files (x86)\Garena Plus\bbtalk\plugins\npPlugin\npGarenaTalkPlugin.dll [No File]
FF Plugin-x32: @videolan.org/vlc,version=2.0.3 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2012-07-19] (VideoLAN)
FF Plugin HKU\S-1-5-21-3730321190-864032766-3096031451-1004: @powerchallenge.com/PowerLoader -> C:\Users\CPADMI~1.CC_\AppData\LocalLow\POWERC~1\nppowerloader.dll [2011-03-15] (Power Challenge Sweden AB)
FF Plugin HKU\S-1-5-21-3730321190-864032766-3096031451-1004: @tools.google.com/Google Update;version=3 -> C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Google\Update\1.3.29.1\npGoogleUpdate3.dll [2015-12-05] (Google Inc.)
FF Plugin HKU\S-1-5-21-3730321190-864032766-3096031451-1004: @tools.google.com/Google Update;version=9 -> C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Google\Update\1.3.29.1\npGoogleUpdate3.dll [2015-12-05] (Google Inc.)
FF Plugin HKU\S-1-5-21-3730321190-864032766-3096031451-1004: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\CPadmin.CC_PRACOVISTE6\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2014-09-04] (Unity Technologies ApS)
FF Plugin HKU\S-1-5-21-3730321190-864032766-3096031451-1004: pandonetworks.com/PandoWebPlugin -> C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll [2013-01-04] (Pando Networks)
FF HKLM-x32\...\Thunderbird\Extensions: [eplgTb@eset.com] - C:\Program Files\ESET\ESET NOD32 Antivirus\Mozilla Thunderbird => not found

Chrome:
=======
CHR HomePage: Default -> hxxp://www.seznam.cz/
CHR StartupUrls: Default -> "hxxp://www.seznam.cz/"
CHR DefaultSearchURL: Default -> hxxp://search.seznam.cz/?q={searchTerms}
CHR DefaultSearchKeyword: Default -> seznam.cz
CHR DefaultSuggestURL: Default -> hxxp://suggest.fulltext.seznam.cz/fulltext_ff?phrase={searchTerms}
CHR Plugin: (Shockwave Flash) - C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Google\Chrome\Application\47.0.2526.111\PepperFlash\pepflashplayer.dll ()
CHR Plugin: (Native Client) - C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Google\Chrome\Application\47.0.2526.111\ppGoogleNaClPluginChrome.dll => No File
CHR Plugin: (Chrome PDF Viewer) - C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Google\Chrome\Application\47.0.2526.111\pdf.dll => No File
CHR Plugin: (Java(TM) Platform SE 7 U9) - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
CHR Plugin: (Pando Web Plugin) - C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
CHR Plugin: (VLC Web Plugin) - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
CHR Plugin: (Google Update) - C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Google\Update\1.3.21.135\npGoogleUpdate3.dll => No File
CHR Plugin: (Shockwave for Director) - C:\Windows\SysWOW64\Adobe\Director\np32dsw_1168638.dll (Adobe Systems, Inc.)
CHR Plugin: (Java Deployment Toolkit 7.0.90.5) - C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation)
CHR Plugin: (Silverlight Plug-In) - c:\Program Files (x86)\Microsoft Silverlight\4.1.10329.0\npctrl.dll => No File
CHR Profile: C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Disk Google) - C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-10-22]
CHR Extension: (YouTube) - C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-09-24]
CHR Extension: (Vyhledávání Google) - C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-10-27]
CHR Extension: (Dokumenty Google offline) - C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2015-11-18]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-07-24]
CHR Extension: (Gmail) - C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-03-28]
StartMenuInternet: Google Chrome.OG7XH6VBY2XXKMQYR5KPKCMWB4 - C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Google\Chrome\Application\chrome.exe hxxp://www.mysites123.com/?type=sc&ts=14528870 ... 4_8202DE86

==================== Services (Whitelisted) ========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S3 ArcService; C:\Program Files (x86)\Arc\ArcService.exe [88400 2015-12-16] (Perfect World Entertainment Inc)
S3 Creative ALchemy AL6 Licensing Service; C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\AL6Licensing.exe [79360 2013-07-15] (Creative Labs) [File not signed]
S3 Creative Audio Engine Licensing Service; C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\CTAELicensing.exe [79360 2013-07-15] (Creative Labs) [File not signed]
R2 CTAudSvcService; C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe [423424 2011-10-19] (Creative Technology Ltd) [File not signed]
S3 EasyAntiCheat; C:\Windows\SysWOW64\EasyAntiCheat.exe [182304 2014-12-02] (EasyAntiCheat Ltd)
U2 HiPatchService; C:\Hry\Smite\HiPatchService.exe [9728 2015-12-30] (Hi-Rez Studios) [File not signed]
S3 IDriverT; C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [69632 2005-04-04] (Macrovision Corporation) [File not signed]
R2 MDM; C:\Program Files (x86)\Common Files\Microsoft Shared\VS7DEBUG\mdm.exe [335872 2006-10-26] (Microsoft Corporation) [File not signed]
R2 MsMpSvc; C:\Program Files\Microsoft Security Client\MsMpEng.exe [23816 2015-04-30] (Microsoft Corporation)
R3 NisSrv; C:\Program Files\Microsoft Security Client\NisSrv.exe [366544 2015-04-30] (Microsoft Corporation)
R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [76152 2015-11-04] ()
R2 TestHandler; C:\Program Files (x86)\Fujitsu\SystemDiagnostics\OnlineDiagnostic\TestManager\TestHandler.exe [341264 2009-02-19] (Fujitsu Technology Solutions)
S3 TunngleService; C:\Program Files (x86)\Tunngle\TnglCtrl.exe [792016 2015-02-09] (Tunngle.net GmbH) [File not signed]
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)
R2 WinVNC4; C:\Program Files (x86)\RealVNC\VNC4\WinVNC4.exe [439632 2008-10-15] (RealVNC Ltd.)
S3 BRSptStub; "C:\ProgramData\BitRaider\BRSptStub.exe" [X]

===================== Drivers (Whitelisted) ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 CMUAC; C:\Windows\System32\DRIVERS\Headset6400x1.SYS [386560 2013-10-03] (A4Tech Inc.)
S3 DFU; C:\Windows\System32\drivers\MassDfu.sys [14592 2012-11-30] (Philips PTCL) [File not signed]
S3 DFU; C:\Windows\SysWOW64\drivers\MassDfu.sys [14592 2012-11-30] (Philips PTCL) [File not signed]
R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283200 2015-03-26] (DT Soft Ltd)
S3 ebdrv; C:\Windows\system32\DRIVERS\evbda.sys [3286016 2009-06-10] (Broadcom Corporation)
R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [280376 2015-03-04] (Microsoft Corporation)
R2 NisDrv; C:\Windows\System32\DRIVERS\NisDrvWFP.sys [124568 2015-03-04] (Microsoft Corporation)
S3 skfiltv; C:\Windows\System32\drivers\skfiltv.sys [24064 2008-08-14] (Creative Technology Ltd.)
R0 sptd; C:\Windows\System32\Drivers\sptd.sys [564824 2015-03-26] (Duplex Secure Ltd.)
R3 tap0901t; C:\Windows\System32\DRIVERS\tap0901t.sys [31232 2009-09-16] (Tunngle.net)
S3 XENfiltv; C:\Windows\System32\drivers\XENfiltv.sys [25600 2009-07-31] (Creative Technology Ltd.)
U3 anjhmyzt; C:\Windows\System32\Drivers\anjhmyzt.sys [0 ] (NVIDIA Corporation) <==== ATTENTION (zero byte File/Folder)
S3 BRDriver64_1_3_3_E02B25FC; \??\C:\ProgramData\BitRaider\support\1.3.3\E02B25FC\BRDriver64.sys [X]
S3 xhunter1; \??\C:\Windows\xhunter1.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2016-01-17 21:16 - 2016-01-17 21:17 - 00025015 _____ C:\Users\CPadmin.CC_PRACOVISTE6\Desktop\FRST.txt
2016-01-17 20:25 - 2016-01-17 20:26 - 00000000 ____D C:\AdwCleaner
2016-01-17 20:24 - 2016-01-17 20:24 - 01754112 _____ C:\Users\CPadmin.CC_PRACOVISTE6\Downloads\adwcleaner_5.029.exe
2016-01-17 20:19 - 2016-01-17 20:19 - 00000000 ____D C:\rsit
2016-01-17 20:19 - 2016-01-17 20:19 - 00000000 ____D C:\Program Files\trend micro
2016-01-17 20:18 - 2016-01-17 20:18 - 01222144 _____ C:\Users\CPadmin.CC_PRACOVISTE6\Downloads\RSITx64.exe
2016-01-17 20:09 - 2016-01-17 21:16 - 00000000 ____D C:\FRST
2016-01-17 20:04 - 2016-01-17 20:04 - 02370560 _____ (Farbar) C:\Users\CPadmin.CC_PRACOVISTE6\Desktop\FRST64.exe
2016-01-15 20:11 - 2016-01-17 20:30 - 00000080 _____ C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Roaming\Microsoft\Windows\Start Menu\uTorrent.lnk
2016-01-15 20:11 - 2016-01-17 20:30 - 00000080 _____ C:\ProgramData\Microsoft\Windows\Start Menu\uTorrent.lnk
2016-01-15 18:20 - 2016-01-15 18:20 - 00192216 _____ (Malwarebytes) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2016-01-15 18:19 - 2016-01-17 20:31 - 00001102 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2016-01-15 18:19 - 2016-01-15 18:19 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2016-01-15 18:19 - 2016-01-15 18:19 - 00000000 ____D C:\Program Files (x86)\Malwarebytes Anti-Malware
2016-01-15 18:19 - 2015-10-05 09:50 - 00109272 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbamchameleon.sys
2016-01-15 18:19 - 2015-10-05 09:50 - 00063704 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2016-01-15 18:19 - 2015-10-05 09:50 - 00025816 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbam.sys
2016-01-15 18:18 - 2016-01-15 18:18 - 22908888 _____ (Malwarebytes ) C:\Users\CPadmin.CC_PRACOVISTE6\Downloads\mbam-setup-2.2.0.1024.exe
2016-01-15 01:37 - 2016-01-17 20:31 - 00001605 _____ C:\Users\Public\Desktop\Hi-Rez Diagnostics and Support.lnk
2016-01-15 01:37 - 2016-01-17 20:31 - 00001556 _____ C:\Users\Public\Desktop\Smite.lnk
2016-01-15 01:37 - 2016-01-15 01:37 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hi-Rez Studios
2016-01-15 01:36 - 2016-01-15 01:36 - 50699928 _____ (Hi-Rez Studios) C:\Users\CPadmin.CC_PRACOVISTE6\Downloads\InstallSmite (1).exe
2016-01-15 01:31 - 2016-01-15 01:31 - 50699928 _____ (Hi-Rez Studios) C:\Users\CPadmin.CC_PRACOVISTE6\Downloads\InstallSmite.exe
2016-01-13 16:59 - 2015-12-11 19:57 - 01164800 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2016-01-13 16:59 - 2015-12-08 22:54 - 02285056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmpeg2vdec.dll
2016-01-13 16:59 - 2015-12-08 22:54 - 01620992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVDECOD.DLL
2016-01-13 16:59 - 2015-12-08 22:54 - 01568768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVENCOD.DLL
2016-01-13 16:59 - 2015-12-08 22:54 - 01325056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMSPDMOE.DLL
2016-01-13 16:59 - 2015-12-08 22:54 - 00902144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMADMOD.DLL
2016-01-13 16:59 - 2015-12-08 22:54 - 00815616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMADMOE.DLL
2016-01-13 16:59 - 2015-12-08 22:54 - 00740352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmpmde.dll
2016-01-13 16:59 - 2015-12-08 22:54 - 00739328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMSPDMOD.DLL
2016-01-13 16:59 - 2015-12-08 22:54 - 00665088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVXENCD.DLL
2016-01-13 16:59 - 2015-12-08 22:54 - 00541184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVSDECD.DLL
2016-01-13 16:59 - 2015-12-08 22:54 - 00358400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVSENCD.DLL
2016-01-13 16:59 - 2015-12-08 22:54 - 00154112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\VIDRESZR.DLL
2016-01-13 16:59 - 2015-12-08 22:53 - 03209728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mf.dll
2016-01-13 16:59 - 2015-12-08 22:53 - 01329664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\quartz.dll
2016-01-13 16:59 - 2015-12-08 22:53 - 00970240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmpeg2adec.dll
2016-01-13 16:59 - 2015-12-08 22:53 - 00829952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSMPEG2ENC.DLL
2016-01-13 16:59 - 2015-12-08 22:53 - 00609280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFWMAAEC.DLL
2016-01-13 16:59 - 2015-12-08 22:53 - 00519680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qdvd.dll
2016-01-13 16:59 - 2015-12-08 22:53 - 00509952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qedit.dll
2016-01-13 16:59 - 2015-12-08 22:53 - 00489984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\evr.dll
2016-01-13 16:59 - 2015-12-08 22:53 - 00415744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MP4SDECD.DLL
2016-01-13 16:59 - 2015-12-08 22:53 - 00354816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfplat.dll
2016-01-13 16:59 - 2015-12-08 22:53 - 00241152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MPG4DECD.DLL
2016-01-13 16:59 - 2015-12-08 22:53 - 00241152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MP43DECD.DLL
2016-01-13 16:59 - 2015-12-08 22:53 - 00206848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RESAMPLEDMO.DLL
2016-01-13 16:59 - 2015-12-08 22:53 - 00206848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qasf.dll
2016-01-13 16:59 - 2015-12-08 22:53 - 00193536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ksproxy.ax
2016-01-13 16:59 - 2015-12-08 22:53 - 00153600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\COLORCNV.DLL
2016-01-13 16:59 - 2015-12-08 22:53 - 00103424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfps.dll
2016-01-13 16:59 - 2015-12-08 22:53 - 00079872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MP3DMOD.DLL
2016-01-13 16:59 - 2015-12-08 22:53 - 00067584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\devenum.dll
2016-01-13 16:59 - 2015-12-08 22:53 - 00053248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfvdsp.dll
2016-01-13 16:59 - 2015-12-08 22:53 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rrinstaller.exe
2016-01-13 16:59 - 2015-12-08 22:53 - 00023040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfpmp.exe
2016-01-13 16:59 - 2015-12-08 22:53 - 00004608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ksuser.dll
2016-01-13 16:59 - 2015-12-08 22:50 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mferror.dll
2016-01-13 16:59 - 2015-12-08 20:07 - 04121600 _____ (Microsoft Corporation) C:\Windows\system32\mf.dll
2016-01-13 16:59 - 2015-12-08 20:07 - 02777088 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll
2016-01-13 16:59 - 2015-12-08 20:07 - 01955328 _____ (Microsoft Corporation) C:\Windows\system32\WMVENCOD.DLL
2016-01-13 16:59 - 2015-12-08 20:07 - 01888768 _____ (Microsoft Corporation) C:\Windows\system32\WMVDECOD.DLL
2016-01-13 16:59 - 2015-12-08 20:07 - 01575424 _____ (Microsoft Corporation) C:\Windows\system32\WMSPDMOE.DLL
2016-01-13 16:59 - 2015-12-08 20:07 - 01573888 _____ (Microsoft Corporation) C:\Windows\system32\quartz.dll
2016-01-13 16:59 - 2015-12-08 20:07 - 01393152 _____ (Microsoft Corporation) C:\Windows\system32\WMALFXGFXDSP.dll
2016-01-13 16:59 - 2015-12-08 20:07 - 01307136 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2adec.dll
2016-01-13 16:59 - 2015-12-08 20:07 - 01232896 _____ (Microsoft Corporation) C:\Windows\system32\WMADMOD.DLL
2016-01-13 16:59 - 2015-12-08 20:07 - 01160192 _____ (Microsoft Corporation) C:\Windows\system32\MSMPEG2ENC.DLL
2016-01-13 16:59 - 2015-12-08 20:07 - 01153024 _____ (Microsoft Corporation) C:\Windows\system32\WMADMOE.DLL
2016-01-13 16:59 - 2015-12-08 20:07 - 01026048 _____ (Microsoft Corporation) C:\Windows\system32\wmpmde.dll
2016-01-13 16:59 - 2015-12-08 20:07 - 01010688 _____ (Microsoft Corporation) C:\Windows\system32\mcmde.dll
2016-01-13 16:59 - 2015-12-08 20:07 - 00978944 _____ (Microsoft Corporation) C:\Windows\system32\WMSPDMOD.DLL
2016-01-13 16:59 - 2015-12-08 20:07 - 00666112 _____ (Microsoft Corporation) C:\Windows\system32\WMVSDECD.DLL
2016-01-13 16:59 - 2015-12-08 20:07 - 00653824 _____ (Microsoft Corporation) C:\Windows\system32\MP4SDECD.DLL
2016-01-13 16:59 - 2015-12-08 20:07 - 00642048 _____ (Microsoft Corporation) C:\Windows\system32\WMVXENCD.DLL
2016-01-13 16:59 - 2015-12-08 20:07 - 00632320 _____ (Microsoft Corporation) C:\Windows\system32\evr.dll
2016-01-13 16:59 - 2015-12-08 20:07 - 00624640 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll
2016-01-13 16:59 - 2015-12-08 20:07 - 00484864 _____ (Microsoft Corporation) C:\Windows\system32\MFWMAAEC.DLL
2016-01-13 16:59 - 2015-12-08 20:07 - 00447488 _____ (Microsoft Corporation) C:\Windows\system32\WMVSENCD.DLL
2016-01-13 16:59 - 2015-12-08 20:07 - 00432128 _____ (Microsoft Corporation) C:\Windows\system32\mfplat.dll
2016-01-13 16:59 - 2015-12-08 20:07 - 00378880 _____ (Microsoft Corporation) C:\Windows\system32\SysFxUI.dll
2016-01-13 16:59 - 2015-12-08 20:07 - 00371712 _____ (Microsoft Corporation) C:\Windows\system32\qdvd.dll
2016-01-13 16:59 - 2015-12-08 20:07 - 00292352 _____ (Microsoft Corporation) C:\Windows\system32\VIDRESZR.DLL
2016-01-13 16:59 - 2015-12-08 20:07 - 00254464 _____ (Microsoft Corporation) C:\Windows\system32\qasf.dll
2016-01-13 16:59 - 2015-12-08 20:07 - 00225792 _____ (Microsoft Corporation) C:\Windows\system32\RESAMPLEDMO.DLL
2016-01-13 16:59 - 2015-12-08 20:07 - 00224768 _____ (Microsoft Corporation) C:\Windows\system32\MPG4DECD.DLL
2016-01-13 16:59 - 2015-12-08 20:07 - 00223744 _____ (Microsoft Corporation) C:\Windows\system32\MP43DECD.DLL
2016-01-13 16:59 - 2015-12-08 20:07 - 00206848 _____ (Microsoft Corporation) C:\Windows\system32\mfps.dll
2016-01-13 16:59 - 2015-12-08 20:07 - 00189952 _____ (Microsoft Corporation) C:\Windows\system32\COLORCNV.DLL
2016-01-13 16:59 - 2015-12-08 20:07 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\MP3DMOD.DLL
2016-01-13 16:59 - 2015-12-08 20:07 - 00076288 _____ (Microsoft Corporation) C:\Windows\system32\devenum.dll
2016-01-13 16:59 - 2015-12-08 20:07 - 00070144 _____ (Microsoft Corporation) C:\Windows\system32\mfvdsp.dll
2016-01-13 16:59 - 2015-12-08 20:07 - 00055808 _____ (Microsoft Corporation) C:\Windows\system32\rrinstaller.exe
2016-01-13 16:59 - 2015-12-08 20:07 - 00005120 _____ (Microsoft Corporation) C:\Windows\system32\ksuser.dll
2016-01-13 16:59 - 2015-12-08 20:06 - 00250880 _____ (Microsoft Corporation) C:\Windows\system32\ksproxy.ax
2016-01-13 16:59 - 2015-12-08 20:06 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\mfpmp.exe
2016-01-13 16:59 - 2015-12-08 20:04 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\mferror.dll
2016-01-13 16:59 - 2015-12-08 19:54 - 00116736 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\drmk.sys
2016-01-13 16:59 - 2015-12-08 19:12 - 00230400 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\portcls.sys
2016-01-13 16:59 - 2015-12-08 19:11 - 00005632 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\drmkaud.sys
2016-01-13 16:59 - 2015-12-08 18:58 - 03211264 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2016-01-13 16:59 - 2015-11-17 02:11 - 00025024 _____ (Microsoft Corporation) C:\Windows\system32\CompatTelRunner.exe
2016-01-13 16:59 - 2015-11-17 02:08 - 01381376 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll
2016-01-13 16:59 - 2015-11-17 02:08 - 00792064 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2016-01-13 16:59 - 2015-11-17 02:08 - 00705536 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll
2016-01-13 16:59 - 2015-11-17 02:08 - 00505856 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll
2016-01-13 16:59 - 2015-11-17 02:08 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll
2016-01-13 16:59 - 2015-11-16 21:17 - 00210432 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll
2016-01-13 16:59 - 2015-11-14 00:09 - 00091648 _____ (Microsoft Corporation) C:\Windows\system32\mapistub.dll
2016-01-13 16:59 - 2015-11-14 00:09 - 00091648 _____ (Microsoft Corporation) C:\Windows\system32\mapi32.dll
2016-01-13 16:59 - 2015-11-14 00:08 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\fixmapi.exe
2016-01-13 16:59 - 2015-11-13 23:50 - 00076800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mapistub.dll
2016-01-13 16:59 - 2015-11-13 23:50 - 00076800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mapi32.dll
2016-01-13 16:59 - 2015-11-13 23:49 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fixmapi.exe
2016-01-13 16:58 - 2015-12-24 00:13 - 00387784 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2016-01-13 16:58 - 2015-12-23 23:52 - 00341192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2016-01-13 16:58 - 2015-12-12 19:54 - 25837568 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2016-01-13 16:58 - 2015-12-12 19:31 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2016-01-13 16:58 - 2015-12-12 19:30 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2016-01-13 16:58 - 2015-12-12 19:16 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2016-01-13 16:58 - 2015-12-12 19:15 - 02887168 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2016-01-13 16:58 - 2015-12-12 19:15 - 00571904 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2016-01-13 16:58 - 2015-12-12 19:15 - 00417792 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2016-01-13 16:58 - 2015-12-12 19:15 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2016-01-13 16:58 - 2015-12-12 19:14 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2016-01-13 16:58 - 2015-12-12 19:07 - 06051328 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2016-01-13 16:58 - 2015-12-12 19:07 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2016-01-13 16:58 - 2015-12-12 19:07 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2016-01-13 16:58 - 2015-12-12 19:03 - 00615936 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2016-01-13 16:58 - 2015-12-12 19:02 - 20367360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2016-01-13 16:58 - 2015-12-12 19:02 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2016-01-13 16:58 - 2015-12-12 19:02 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2016-01-13 16:58 - 2015-12-12 19:02 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2016-01-13 16:58 - 2015-12-12 19:02 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2016-01-13 16:58 - 2015-12-12 18:55 - 00968704 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2016-01-13 16:58 - 2015-12-12 18:51 - 00489984 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2016-01-13 16:58 - 2015-12-12 18:49 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2016-01-13 16:58 - 2015-12-12 18:44 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2016-01-13 16:58 - 2015-12-12 18:40 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2016-01-13 16:58 - 2015-12-12 18:39 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2016-01-13 16:58 - 2015-12-12 18:37 - 00496640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2016-01-13 16:58 - 2015-12-12 18:37 - 00315392 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2016-01-13 16:58 - 2015-12-12 18:37 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2016-01-13 16:58 - 2015-12-12 18:37 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2016-01-13 16:58 - 2015-12-12 18:36 - 00341504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2016-01-13 16:58 - 2015-12-12 18:36 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2016-01-13 16:58 - 2015-12-12 18:35 - 00152064 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll
2016-01-13 16:58 - 2015-12-12 18:33 - 02280448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2016-01-13 16:58 - 2015-12-12 18:31 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2016-01-13 16:58 - 2015-12-12 18:30 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2016-01-13 16:58 - 2015-12-12 18:28 - 00476160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2016-01-13 16:58 - 2015-12-12 18:27 - 00663552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2016-01-13 16:58 - 2015-12-12 18:27 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2016-01-13 16:58 - 2015-12-12 18:27 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2016-01-13 16:58 - 2015-12-12 18:25 - 00262144 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2016-01-13 16:58 - 2015-12-12 18:23 - 00798208 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2016-01-13 16:58 - 2015-12-12 18:22 - 00718336 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2016-01-13 16:58 - 2015-12-12 18:21 - 01359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2016-01-13 16:58 - 2015-12-12 18:20 - 02123264 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2016-01-13 16:58 - 2015-12-12 18:19 - 00416256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2016-01-13 16:58 - 2015-12-12 18:18 - 14457856 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2016-01-13 16:58 - 2015-12-12 18:14 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2016-01-13 16:58 - 2015-12-12 18:12 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2016-01-13 16:58 - 2015-12-12 18:10 - 00279040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2016-01-13 16:58 - 2015-12-12 18:10 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2016-01-13 16:58 - 2015-12-12 18:09 - 04610560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2016-01-13 16:58 - 2015-12-12 18:08 - 00130048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll
2016-01-13 16:58 - 2015-12-12 18:06 - 02487808 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2016-01-13 16:58 - 2015-12-12 18:02 - 00230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2016-01-13 16:58 - 2015-12-12 18:00 - 12856320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2016-01-13 16:58 - 2015-12-12 18:00 - 02050560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2016-01-13 16:58 - 2015-12-12 18:00 - 01155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2016-01-13 16:58 - 2015-12-12 18:00 - 00687104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2016-01-13 16:58 - 2015-12-12 17:54 - 01546752 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2016-01-13 16:58 - 2015-12-12 17:42 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2016-01-13 16:58 - 2015-12-12 17:41 - 02011136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2016-01-13 16:58 - 2015-12-12 17:38 - 01311744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2016-01-13 16:58 - 2015-12-12 17:36 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2016-01-13 16:58 - 2015-12-08 22:53 - 00641536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll
2016-01-13 16:58 - 2015-12-08 22:52 - 00312320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll
2016-01-13 16:58 - 2015-12-08 20:07 - 00879104 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll
2016-01-13 16:58 - 2015-12-08 20:07 - 00405504 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2016-01-13 16:57 - 2015-12-30 20:08 - 05572544 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2016-01-13 16:57 - 2015-12-30 20:08 - 00154560 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2016-01-13 16:57 - 2015-12-30 20:08 - 00095680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2016-01-13 16:57 - 2015-12-30 20:05 - 01730496 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2016-01-13 16:57 - 2015-12-30 20:02 - 00362496 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll
2016-01-13 16:57 - 2015-12-30 20:02 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll
2016-01-13 16:57 - 2015-12-30 20:02 - 00215040 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll
2016-01-13 16:57 - 2015-12-30 20:02 - 00210432 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2016-01-13 16:57 - 2015-12-30 20:02 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2016-01-13 16:57 - 2015-12-30 20:02 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll
2016-01-13 16:57 - 2015-12-30 20:01 - 01214464 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2016-01-13 16:57 - 2015-12-30 20:01 - 00503808 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
2016-01-13 16:57 - 2015-12-30 20:01 - 00344064 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2016-01-13 16:57 - 2015-12-30 20:01 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2016-01-13 16:57 - 2015-12-30 20:01 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll
2016-01-13 16:57 - 2015-12-30 20:01 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2016-01-13 16:57 - 2015-12-30 20:01 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2016-01-13 16:57 - 2015-12-30 20:00 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll
2016-01-13 16:57 - 2015-12-30 19:59 - 00315392 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2016-01-13 16:57 - 2015-12-30 19:59 - 00312320 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2016-01-13 16:57 - 2015-12-30 19:59 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll
2016-01-13 16:57 - 2015-12-30 19:58 - 01461248 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2016-01-13 16:57 - 2015-12-30 19:58 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2016-01-13 16:57 - 2015-12-30 19:57 - 01163264 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
2016-01-13 16:57 - 2015-12-30 19:57 - 00729600 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2016-01-13 16:57 - 2015-12-30 19:57 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2016-01-13 16:57 - 2015-12-30 19:55 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll
2016-01-13 16:57 - 2015-12-30 19:55 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\cryptbase.dll
2016-01-13 16:57 - 2015-12-30 19:55 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2016-01-13 16:57 - 2015-12-30 19:54 - 00686080 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2016-01-13 16:57 - 2015-12-30 19:54 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll
2016-01-13 16:57 - 2015-12-30 19:54 - 00006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2016-01-13 16:57 - 2015-12-30 19:54 - 00005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2016-01-13 16:57 - 2015-12-30 19:54 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2016-01-13 16:57 - 2015-12-30 19:54 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2016-01-13 16:57 - 2015-12-30 19:54 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2016-01-13 16:57 - 2015-12-30 19:54 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2016-01-13 16:57 - 2015-12-30 19:54 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2016-01-13 16:57 - 2015-12-30 19:54 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2016-01-13 16:57 - 2015-12-30 19:54 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2016-01-13 16:57 - 2015-12-30 19:54 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2016-01-13 16:57 - 2015-12-30 19:54 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2016-01-13 16:57 - 2015-12-30 19:54 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2016-01-13 16:57 - 2015-12-30 19:54 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2016-01-13 16:57 - 2015-12-30 19:54 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2016-01-13 16:57 - 2015-12-30 19:54 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2016-01-13 16:57 - 2015-12-30 19:54 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2016-01-13 16:57 - 2015-12-30 19:54 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2016-01-13 16:57 - 2015-12-30 19:54 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2016-01-13 16:57 - 2015-12-30 19:54 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2016-01-13 16:57 - 2015-12-30 19:54 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2016-01-13 16:57 - 2015-12-30 19:54 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2016-01-13 16:57 - 2015-12-30 19:54 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2016-01-13 16:57 - 2015-12-30 19:54 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2016-01-13 16:57 - 2015-12-30 19:54 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2016-01-13 16:57 - 2015-12-30 19:54 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2016-01-13 16:57 - 2015-12-30 19:54 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2016-01-13 16:57 - 2015-12-30 19:54 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2016-01-13 16:57 - 2015-12-30 19:54 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2016-01-13 16:57 - 2015-12-30 19:47 - 03993536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2016-01-13 16:57 - 2015-12-30 19:47 - 03938240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2016-01-13 16:57 - 2015-12-30 19:44 - 01311768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2016-01-13 16:57 - 2015-12-30 19:41 - 01114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll
2016-01-13 16:57 - 2015-12-30 19:41 - 00665088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll
2016-01-13 16:57 - 2015-12-30 19:41 - 00274944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
2016-01-13 16:57 - 2015-12-30 19:41 - 00171520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll
2016-01-13 16:57 - 2015-12-30 19:41 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2016-01-13 16:57 - 2015-12-30 19:41 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll
2016-01-13 16:57 - 2015-12-30 19:41 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll
2016-01-13 16:57 - 2015-12-30 19:41 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll
2016-01-13 16:57 - 2015-12-30 19:40 - 00251392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2016-01-13 16:57 - 2015-12-30 19:40 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2016-01-13 16:57 - 2015-12-30 19:39 - 00259584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2016-01-13 16:57 - 2015-12-30 19:39 - 00223232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll
2016-01-13 16:57 - 2015-12-30 19:39 - 00146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll
2016-01-13 16:57 - 2015-12-30 19:39 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msobjs.dll
2016-01-13 16:57 - 2015-12-30 19:38 - 00552960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2016-01-13 16:57 - 2015-12-30 19:38 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll
2016-01-13 16:57 - 2015-12-30 19:37 - 00686080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll
2016-01-13 16:57 - 2015-12-30 19:37 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apisetschema.dll
2016-01-13 16:57 - 2015-12-30 19:37 - 00005120 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll
2016-01-13 16:57 - 2015-12-30 19:37 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2016-01-13 16:57 - 2015-12-30 19:37 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2016-01-13 16:57 - 2015-12-30 19:37 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll
2016-01-13 16:57 - 2015-12-30 19:37 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll
2016-01-13 16:57 - 2015-12-30 19:37 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2016-01-13 16:57 - 2015-12-30 19:37 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll
2016-01-13 16:57 - 2015-12-30 19:37 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2016-01-13 16:57 - 2015-12-30 19:37 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2016-01-13 16:57 - 2015-12-30 19:37 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll
2016-01-13 16:57 - 2015-12-30 19:37 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2016-01-13 16:57 - 2015-12-30 19:37 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2016-01-13 16:57 - 2015-12-30 19:37 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll
2016-01-13 16:57 - 2015-12-30 19:37 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll
2016-01-13 16:57 - 2015-12-30 19:37 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2016-01-13 16:57 - 2015-12-30 19:37 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll
2016-01-13 16:57 - 2015-12-30 19:37 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll
2016-01-13 16:57 - 2015-12-30 19:37 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll
2016-01-13 16:57 - 2015-12-30 19:37 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll
2016-01-13 16:57 - 2015-12-30 19:37 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2016-01-13 16:57 - 2015-12-30 19:37 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll
2016-01-13 16:57 - 2015-12-30 19:37 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll
2016-01-13 16:57 - 2015-12-30 19:37 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll
2016-01-13 16:57 - 2015-12-30 19:37 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll
2016-01-13 16:57 - 2015-12-30 18:57 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe
2016-01-13 16:57 - 2015-12-30 18:50 - 00338432 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe
2016-01-13 16:57 - 2015-12-30 18:49 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe
2016-01-13 16:57 - 2015-12-30 18:44 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\auditpol.exe
2016-01-13 16:57 - 2015-12-30 18:43 - 00159232 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
2016-01-13 16:57 - 2015-12-30 18:42 - 00290816 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys
2016-01-13 16:57 - 2015-12-30 18:42 - 00129024 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
2016-01-13 16:57 - 2015-12-30 18:41 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
2016-01-13 16:57 - 2015-12-30 18:41 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2016-01-13 16:57 - 2015-12-30 18:32 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe
2016-01-13 16:57 - 2015-12-30 18:32 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll
2016-01-13 16:57 - 2015-12-30 18:32 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe
2016-01-13 16:57 - 2015-12-30 18:32 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe
2016-01-13 16:57 - 2015-12-30 18:30 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptbase.dll
2016-01-13 16:57 - 2015-12-30 18:30 - 00006144 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll
2016-01-13 16:57 - 2015-12-30 18:30 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2016-01-13 16:57 - 2015-12-30 18:30 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll
2016-01-13 16:57 - 2015-12-30 18:30 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll
2016-01-09 21:49 - 2016-01-09 21:49 - 01303880 _____ (Perfect World Entertainment) C:\Users\CPadmin.CC_PRACOVISTE6\Downloads\Swordsman_ArcSetup.exe
2016-01-03 01:29 - 2016-01-03 01:29 - 00001398 _____ C:\Users\CPadmin.CC_PRACOVISTE6\Desktop\eu4 – zástupce.lnk
2015-12-27 00:34 - 2015-12-27 00:36 - 00000000 ____D C:\Users\CPadmin.CC_PRACOVISTE6\AppData\LocalLow\Daybreak Game Company
2015-12-27 00:34 - 2015-12-27 00:34 - 00000000 ____D C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Daybreak Game Company
2015-12-27 00:33 - 2016-01-17 20:30 - 00001603 _____ C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PlanetSide 2.lnk
2015-12-27 00:32 - 2015-12-27 00:32 - 33097848 _____ C:\Users\CPadmin.CC_PRACOVISTE6\Downloads\PS2_setup.exe
2015-12-26 23:37 - 2015-12-26 23:38 - 00000000 ____D C:\Users\CPadmin.CC_PRACOVISTE6\AppData\LocalLow\PowerChallenge
2015-12-26 23:37 - 2015-12-26 23:37 - 00000000 ____D C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\PowerChallenge
2015-12-26 23:36 - 2015-12-26 23:36 - 00494968 _____ C:\Users\CPadmin.CC_PRACOVISTE6\Downloads\powersetup.exe
2015-12-19 10:24 - 2016-01-17 20:31 - 00002249 _____ C:\Users\Public\Desktop\ToneMaker 1.lnk
2015-12-19 10:24 - 2015-12-19 10:24 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bloody
2015-12-19 10:24 - 2015-12-19 10:24 - 00000000 ____D C:\Program Files (x86)\BloodyToneMaker
2015-12-19 10:24 - 2013-10-03 09:06 - 00386560 _____ (A4Tech Inc.) C:\Windows\system32\Drivers\Headset6400x1.SYS
2015-12-19 10:24 - 2013-08-28 15:05 - 01965312 _____ (C-Media Electronics Inc.) C:\Windows\system32\CMXearSurr.dll
2015-12-19 10:24 - 2013-08-28 15:05 - 00961616 _____ (C-Media Electronics Inc.) C:\Windows\system32\CMAPOMain.dll
2015-12-19 10:24 - 2013-08-28 15:05 - 00841624 _____ (C-Media Electronics Inc.) C:\Windows\system32\CMXearLiving10.dll
2015-12-19 10:24 - 2013-08-28 15:05 - 00809664 _____ (C-Media Electronics Inc.) C:\Windows\system32\CMXearVoClear.dll
2015-12-19 10:24 - 2013-08-28 15:05 - 00720584 _____ (C-Media Electronics Inc.) C:\Windows\system32\CMXearSingFX.dll
2015-12-19 10:24 - 2013-08-28 15:05 - 00129864 _____ (C-Media Electronics Inc.) C:\Windows\system32\CMXearSonic.dll
2015-12-19 10:24 - 2013-08-28 15:05 - 00080896 _____ (C-Media Electronics Inc.) C:\Windows\system32\CMEffectPropPage.dll
2015-12-19 10:24 - 2013-08-28 15:05 - 00074304 _____ (C-Media Electronics Inc.) C:\Windows\system32\CMEffectGFX.dll
2015-12-19 10:24 - 2013-08-28 15:05 - 00070184 _____ (C-Media Electronics Inc.) C:\Windows\system32\CMEffectLFX.dll
2015-12-19 10:24 - 2013-08-28 15:05 - 00064528 _____ (C-Media Electronics Inc.) C:\Windows\system32\CMMicEffectLFX.dll

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2016-01-17 21:12 - 2010-10-01 07:02 - 00000966 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3404362962-4107995047-1605947123-1981UA.job
2016-01-17 21:08 - 2012-11-17 22:55 - 00000000 ____D C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Roaming\Skype
2016-01-17 21:06 - 2011-06-03 13:01 - 00000966 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3404362962-4107995047-1605947123-1886UA.job
2016-01-17 21:04 - 2010-10-21 07:59 - 00000966 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3404362962-4107995047-1605947123-2004UA.job
2016-01-17 21:02 - 2013-01-04 03:46 - 00000000 ____D C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\PMB Files
2016-01-17 21:01 - 2012-11-17 22:45 - 00001000 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3730321190-864032766-3096031451-1004UA.job
2016-01-17 20:46 - 2011-06-13 07:41 - 00000966 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3404362962-4107995047-1605947123-2005UA.job
2016-01-17 20:38 - 2012-11-25 22:51 - 00000000 ____D C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Roaming\TS3Client
2016-01-17 20:37 - 2011-10-25 11:32 - 00000972 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3404362962-4107995047-1605947123-1883UA.job
2016-01-17 20:37 - 2009-07-14 05:45 - 00021680 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2016-01-17 20:37 - 2009-07-14 05:45 - 00021680 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2016-01-17 20:34 - 2014-06-05 20:12 - 00000000 ____D C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Roaming\Raptr
2016-01-17 20:33 - 2012-11-18 11:55 - 00000914 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2016-01-17 20:31 - 2015-12-11 17:52 - 00002725 _____ C:\Users\Public\Desktop\Skype.lnk
2016-01-17 20:31 - 2015-03-26 11:24 - 00001932 _____ C:\Users\Public\Desktop\DAEMON Tools Pro.lnk
2016-01-17 20:31 - 2015-02-27 00:13 - 00001811 _____ C:\Users\Public\Desktop\Champions Online.lnk
2016-01-17 20:31 - 2015-02-27 00:04 - 00001582 _____ C:\Users\Public\Desktop\Arc.lnk
2016-01-17 20:31 - 2014-11-11 20:17 - 00000991 _____ C:\Users\Public\Desktop\Tunngle.lnk
2016-01-17 20:31 - 2014-10-21 01:35 - 00001686 _____ C:\Users\Public\Desktop\Path of Exile.lnk
2016-01-17 20:31 - 2014-06-15 19:37 - 00000963 _____ C:\Users\Public\Desktop\Steam.lnk
2016-01-17 20:31 - 2014-06-06 02:06 - 00000822 _____ C:\Users\Public\Desktop\Star Wars - The Old Republic.lnk
2016-01-17 20:31 - 2014-03-23 01:35 - 00000751 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Southpark Stick of Truth.lnk
2016-01-17 20:31 - 2013-08-24 23:57 - 00000562 _____ C:\Users\Public\Desktop\Fraps.lnk
2016-01-17 20:31 - 2013-08-13 15:35 - 00000979 _____ C:\Users\Public\Desktop\Origin.lnk
2016-01-17 20:31 - 2013-07-17 21:36 - 00000686 _____ C:\Users\Public\Desktop\4GF Game Client.lnk
2016-01-17 20:31 - 2013-07-15 11:28 - 00002271 _____ C:\Users\Public\Desktop\Creative Product Registration.lnk
2016-01-17 20:31 - 2013-07-13 19:23 - 00001870 _____ C:\Users\Public\Desktop\Tour de France 2010 - Der offizielle Radsport-Manager.lnk
2016-01-17 20:31 - 2013-04-06 13:26 - 00001273 _____ C:\Users\Public\Desktop\Media Player Classic.lnk
2016-01-17 20:31 - 2013-03-17 01:35 - 00002447 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader 7.0.lnk
2016-01-17 20:31 - 2013-03-17 01:35 - 00002025 _____ C:\Users\Public\Desktop\Adobe Reader 7.0.lnk
2016-01-17 20:31 - 2013-02-12 19:41 - 00001561 _____ C:\Users\Public\Desktop\War Thunder.lnk
2016-01-17 20:31 - 2013-01-10 19:25 - 00001610 _____ C:\Users\Public\Desktop\Race Injection.lnk
2016-01-17 20:31 - 2012-12-17 19:49 - 00002567 _____ C:\Users\Public\Desktop\Six Updater.lnk
2016-01-17 20:31 - 2012-12-17 19:49 - 00002567 _____ C:\Users\Public\Desktop\Six Launcher.lnk
2016-01-17 20:31 - 2012-12-03 18:00 - 00000646 _____ C:\Users\Public\Desktop\Total Commander 64 bit.lnk
2016-01-17 20:31 - 2012-12-02 21:39 - 00000945 _____ C:\Users\Public\Desktop\hamachi.lnk
2016-01-17 20:31 - 2012-11-30 19:13 - 00002111 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Security Essentials.lnk
2016-01-17 20:31 - 2012-11-17 23:23 - 00000967 _____ C:\Users\Public\Desktop\WinRAR.lnk
2016-01-17 20:31 - 2012-09-25 09:44 - 00001066 _____ C:\Users\Public\Desktop\VLC media player.lnk
2016-01-17 20:31 - 2012-09-25 09:44 - 00001031 _____ C:\Users\Public\Desktop\PDFCreator.lnk
2016-01-17 20:31 - 2011-04-29 10:21 - 00000966 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3404362962-4107995047-1605947123-2075UA.job
2016-01-17 20:31 - 2010-08-02 07:56 - 00001738 _____ C:\Users\Public\Desktop\Výběr prohlížeče.lnk
2016-01-17 20:31 - 2010-03-12 14:07 - 00002047 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LaunchCenter.lnk
2016-01-17 20:31 - 2009-08-10 16:06 - 00001333 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Media Center.lnk
2016-01-17 20:31 - 2009-08-10 16:06 - 00001314 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows DVD Maker.lnk
2016-01-17 20:31 - 2009-07-14 05:57 - 00001511 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk
2016-01-17 20:31 - 2009-07-14 05:57 - 00001340 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Anytime Upgrade.lnk
2016-01-17 20:31 - 2009-07-14 05:57 - 00001292 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sidebar.lnk
2016-01-17 20:31 - 2009-07-14 05:57 - 00001234 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\XPS Viewer.lnk
2016-01-17 20:31 - 2009-07-14 05:54 - 00001198 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Fax and Scan.lnk
2016-01-17 20:31 - 2005-02-27 19:45 - 00001011 _____ C:\Users\Public\Desktop\TeamSpeak 3 Client.lnk
2016-01-17 20:30 - 2014-02-21 19:14 - 00001612 _____ C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PlanetSide 2 PSG.lnk
2016-01-17 20:30 - 2012-11-17 23:23 - 00000979 _____ C:\ProgramData\Microsoft\Windows\Start Menu\WinRAR.lnk
2016-01-17 20:30 - 2012-09-25 09:55 - 00001399 _____ C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2016-01-17 20:30 - 2009-07-14 06:01 - 00001218 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Default Programs.lnk
2016-01-17 20:30 - 2009-07-14 05:49 - 00001246 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Windows Update.lnk
2016-01-17 20:29 - 2015-02-02 17:23 - 00000926 _____ C:\Users\CPadmin.CC_PRACOVISTE6\Desktop\Wargame Red Dragon.lnk
2016-01-17 20:29 - 2014-10-27 00:06 - 00001541 _____ C:\Users\CPadmin.CC_PRACOVISTE6\Desktop\Blitzkrieg Mod.lnk
2016-01-17 20:29 - 2014-06-15 19:37 - 00000852 _____ C:\Users\CPadmin.CC_PRACOVISTE6\Desktop\Spintires.lnk
2016-01-17 20:29 - 2013-09-22 14:38 - 00001355 _____ C:\Users\CPadmin.CC_PRACOVISTE6\Desktop\The Elder Scrolls Online Beta.lnk
2016-01-17 20:29 - 2013-08-27 13:15 - 00001204 _____ C:\Users\CPadmin.CC_PRACOVISTE6\Desktop\Format Factory.lnk
2016-01-17 20:29 - 2013-07-17 21:58 - 00001845 _____ C:\Users\CPadmin.CC_PRACOVISTE6\Desktop\Play COD4 SinglePlayer.lnk
2016-01-17 20:29 - 2013-07-17 21:58 - 00001845 _____ C:\Users\CPadmin.CC_PRACOVISTE6\Desktop\Play COD4 MultiPlayer.lnk
2016-01-17 20:29 - 2013-05-14 11:47 - 00000630 _____ C:\Users\CPadmin.CC_PRACOVISTE6\Desktop\LFS.lnk
2016-01-17 20:29 - 2013-04-06 13:28 - 00001041 _____ C:\Users\CPadmin.CC_PRACOVISTE6\Desktop\KMPlayer.lnk
2016-01-17 20:29 - 2012-11-23 18:39 - 00000779 _____ C:\Users\CPadmin.CC_PRACOVISTE6\Desktop\Football Superstars.lnk
2016-01-17 20:29 - 2012-11-17 22:45 - 00002459 _____ C:\Users\CPadmin.CC_PRACOVISTE6\Desktop\Google Chrome.lnk
2016-01-17 20:28 - 2009-07-14 06:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2016-01-17 20:12 - 2009-07-14 04:20 - 00000000 ____D C:\Windows
2016-01-17 18:02 - 2011-06-03 13:01 - 00000914 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3404362962-4107995047-1605947123-1886Core.job
2016-01-17 12:37 - 2011-10-25 11:32 - 00000920 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3404362962-4107995047-1605947123-1883Core.job
2016-01-17 12:33 - 2012-11-17 22:45 - 00000948 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3730321190-864032766-3096031451-1004Core.job
2016-01-17 12:28 - 2011-06-13 07:41 - 00000914 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3404362962-4107995047-1605947123-2005Core.job
2016-01-17 12:28 - 2011-04-29 10:21 - 00000914 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3404362962-4107995047-1605947123-2075Core.job
2016-01-17 12:28 - 2010-10-21 07:59 - 00000914 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3404362962-4107995047-1605947123-2004Core.job
2016-01-17 08:18 - 2010-10-01 07:02 - 00000914 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3404362962-4107995047-1605947123-1981Core.job
2016-01-16 01:33 - 2014-06-15 19:37 - 00000000 ____D C:\Program Files (x86)\Steam
2016-01-15 20:44 - 2014-03-28 20:41 - 00000000 ____D C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WarThunder_Nightly
2016-01-15 20:44 - 2013-02-12 19:41 - 00000000 ____D C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\War Thunder
2016-01-15 20:44 - 2012-11-17 22:45 - 00000000 ____D C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome
2016-01-15 20:43 - 2014-04-01 20:43 - 00001000 _____ C:\Users\CPadmin.CC_PRACOVISTE6\Desktop\Launcher – zástupce.lnk
2016-01-15 20:12 - 2009-07-14 06:32 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
2016-01-15 20:11 - 2013-05-11 19:54 - 00000000 ____D C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games
2016-01-15 07:11 - 2012-11-17 23:04 - 00000000 ____D C:\Hry
2016-01-15 06:23 - 2009-07-14 06:09 - 00000000 ____D C:\Windows\System32\Tasks\WPD
2016-01-15 06:21 - 2009-07-14 06:08 - 00032618 _____ C:\Windows\Tasks\SCHEDLGU.TXT
2016-01-15 06:06 - 2012-11-18 17:33 - 00000000 ____D C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Roaming\uTorrent
2016-01-15 02:11 - 2005-02-24 19:04 - 00000000 ____D C:\Users\CPadmin.CC_PRACOVISTE6\Documents\My Games
2016-01-15 02:07 - 2014-06-05 20:05 - 00000000 ____D C:\ProgramData\Package Cache
2016-01-15 01:37 - 2012-11-28 17:10 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2016-01-15 01:33 - 2012-12-26 01:18 - 00000000 ____D C:\ProgramData\Hi-Rez Studios
2016-01-15 01:30 - 2015-02-27 00:04 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Perfect World Entertainment
2016-01-15 00:37 - 2014-03-14 00:25 - 00000000 ___HD C:\ArcTemp
2016-01-15 00:36 - 2015-02-27 00:04 - 00000000 ____D C:\Program Files (x86)\Arc
2016-01-14 04:26 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\rescache
2016-01-14 03:53 - 2009-08-10 17:18 - 00668882 _____ C:\Windows\system32\perfh005.dat
2016-01-14 03:53 - 2009-08-10 17:18 - 00141542 _____ C:\Windows\system32\perfc005.dat
2016-01-14 03:53 - 2009-07-14 06:13 - 01584626 _____ C:\Windows\system32\PerfStringBackup.INI
2016-01-14 03:53 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\inf
2016-01-14 03:48 - 2013-03-15 01:14 - 00000000 ____D C:\Program Files\Microsoft Silverlight
2016-01-14 03:48 - 2009-07-14 05:45 - 00430112 _____ C:\Windows\system32\FNTCACHE.DAT
2016-01-14 03:47 - 2013-03-15 01:14 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight
2016-01-14 03:45 - 2014-12-12 09:43 - 00000000 ____D C:\Windows\system32\appraiser
2016-01-14 03:45 - 2014-05-06 16:44 - 00000000 ___SD C:\Windows\system32\CompatTel
2016-01-14 03:28 - 2013-03-15 01:15 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
2016-01-14 03:27 - 2013-08-15 16:47 - 00000000 ____D C:\Windows\system32\MRT
2016-01-14 03:08 - 2011-04-19 18:02 - 143671360 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2016-01-09 21:50 - 2015-02-27 00:05 - 00000000 ____D C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Roaming\Arc
2016-01-09 17:45 - 2014-12-02 21:33 - 00000000 ____D C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2016-01-09 17:44 - 2015-04-18 19:14 - 00000000 ____D C:\Program Files\Rockstar Games
2016-01-09 17:44 - 2015-04-18 19:14 - 00000000 ____D C:\Program Files (x86)\Rockstar Games
2016-01-09 17:43 - 2012-12-11 20:45 - 00000000 ____D C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Roaming\.minecraft
2016-01-09 17:40 - 2015-04-18 19:15 - 00000000 ____D C:\Users\CPadmin.CC_PRACOVISTE6\Documents\Rockstar Games
2016-01-09 17:40 - 2015-04-18 19:15 - 00000000 ____D C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Rockstar Games
2016-01-09 17:27 - 2011-01-07 11:11 - 00000000 ____D C:\ProgramData\Skype
2016-01-02 17:48 - 2012-11-18 11:55 - 00796864 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2016-01-02 17:48 - 2012-11-18 11:55 - 00142528 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2016-01-02 17:48 - 2012-11-18 11:55 - 00003852 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2015-12-27 02:55 - 2014-09-30 14:34 - 00001105 _____ C:\Users\CPadmin.CC_PRACOVISTE6\Desktop\rust.txt
2015-12-27 00:34 - 2012-12-09 19:54 - 00000000 ____D C:\Windows\SysWOW64\directx
2015-12-27 00:33 - 2012-12-09 19:54 - 00000000 ___HD C:\Windows\msdownld.tmp
2015-12-20 10:00 - 2015-04-05 02:02 - 00000000 ___SD C:\Windows\SysWOW64\GWX
2015-12-20 10:00 - 2015-04-05 02:02 - 00000000 ___SD C:\Windows\system32\GWX
2015-12-19 10:38 - 2014-06-05 20:12 - 00000000 ____D C:\Program Files (x86)\Raptr

==================== Files in the root of some directories =======

2014-09-30 13:50 - 2014-09-30 13:50 - 0000000 ___SH () C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\LumaEmu
2012-11-30 19:39 - 2012-11-30 19:39 - 0000017 _____ () C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\resmon.resmoncfg
2015-11-04 21:59 - 2015-11-04 21:59 - 0000000 ___SH () C:\ProgramData\.rdata
2011-01-07 11:16 - 2011-01-07 11:16 - 0000056 ____H () C:\ProgramData\ezsidmv.dat
2013-08-28 14:59 - 2013-08-28 15:00 - 0001135 _____ () C:\ProgramData\HirezPipeError.txt

Some files in TEMP:
====================
C:\Users\cc2001\AppData\Local\Temp\install_flashplayer11x64ax_gtba_aih[1].exe
C:\Users\cc2001\AppData\Local\Temp\install_flashplayer11x64ax_gtba_aih[1]_1.exe
C:\Users\cc2014\AppData\Local\Temp\SkypeSetup.exe
C:\Users\cc2024\AppData\Local\Temp\SkypeSetup.exe
C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Temp\64f952b7b636024e2b75718e594a9857.dll
C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Temp\8bd177235c9c2ac30426f441bce65432.dll
C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Temp\BRSVC_418876396_hlp.exe
C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Temp\c5e33b6d8db822b10eec8b5666f64a1d.dll
C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Temp\c8db5fbf345041a75bcc6e2aad3db252.dll
C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Temp\detectionapi_rd.dll
C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Temp\detectionui_r.exe
C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Temp\directx10tests_rd.dll
C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Temp\directx11tests_rd.dll
C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Temp\directx9tests_rd.dll
C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Temp\drm_dialogs.dll
C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Temp\drm_dyndata_7300015.dll
C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Temp\drm_dyndata_7330012.dll
C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Temp\Gw2.exe
C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Temp\hcuninstaller_20150320_124640_4092.exe
C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Temp\install_flashplayer11x32au_mssa_aih.exe
C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Temp\local.dll
C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Temp\raptrpatch.exe
C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Temp\raptr_stub.exe
C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Temp\riftuninstall.exe
C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Temp\SkypeSetup.exe
C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Temp\sqlite3.dll
C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Temp\su-setup.exe
C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Temp\swt-win32-3740.dll
C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Temp\tmp1DDE.exe
C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Temp\tmp39AD.exe
C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Temp\tmp7196.exe
C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Temp\tmp8870.exe
C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Temp\Uninstall.exe
C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Temp\Uninstaller-2068.exe
C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Temp\Uninstaller-3760.exe
C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Temp\utt6366.tmp.exe
C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Temp\vlc-2.1.5-win32.exe
C:\Users\matous\AppData\Local\Temp\12-10_vista_win7_win8_64_dd_ccc_whql_net4.exe


==================== Bamital & volsnap =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2016-01-14 04:18

==================== End of FRST.txt ============================

Rybiz
Návštěvník
Návštěvník
Příspěvky: 36
Registrován: 13 zář 2007 20:40

Re: prosím o kontrolu logu

#6 Příspěvek od Rybiz »

Additional scan result of Farbar Recovery Scan Tool (x64) Version:17-01-2015
Ran by CPadmin (2016-01-17 21:19:22)
Running from C:\Users\CPadmin.CC_PRACOVISTE6\Desktop
Windows 7 Professional Service Pack 1 (X64) (2010-03-12 13:11:43)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-3730321190-864032766-3096031451-500 - Administrator - Disabled) => C:\Users\Administrator
CPadmin (S-1-5-21-3730321190-864032766-3096031451-1004 - Administrator - Enabled) => C:\Users\CPadmin.CC_PRACOVISTE6
Guest (S-1-5-21-3730321190-864032766-3096031451-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-3730321190-864032766-3096031451-1008 - Limited - Enabled)
test (S-1-5-21-3730321190-864032766-3096031451-1006 - Limited - Enabled) => C:\Users\test

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Microsoft Security Essentials (Enabled - Out of date) {B7ECF8CD-0188-6703-DBA4-AA65C6ACFB0A}
AS: Microsoft Security Essentials (Enabled - Out of date) {0C8D1929-27B2-688D-E114-9117BD2BB1B7}
AS: Windows Defender (Enabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

µTorrent (HKU\S-1-5-21-3730321190-864032766-3096031451-1004\...\uTorrent) (Version: 3.4.5.41372 - BitTorrent Inc.)
4GF Game Client (HKLM-x32\...\{D55A3366-7745-422B-AB58-7ED52CDB8A7C}) (Version: 1.0.1 - 4GF.CZ)
7-Zip 9.20 (x64 edition) (HKLM\...\{23170F69-40C1-2702-0920-000001000000}) (Version: 9.20.00.0 - Igor Pavlov)
Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 3.5.0.600 - Adobe Systems Incorporated)
Adobe Flash Player 20 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 20.0.0.270 - Adobe Systems Incorporated)
Adobe Flash Player 20 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 20.0.0.267 - Adobe Systems Incorporated)
Adobe Reader 7.0 (HKLM-x32\...\{AC76BA86-7AD7-1033-7B44-A70000000000}) (Version: 7.0.0 - Adobe Systems Incorporated)
Adobe Shockwave Player 11.6 (HKLM-x32\...\Adobe Shockwave Player) (Version: 11.6.8.638 - Adobe Systems, Inc.)
AMD Catalyst Install Manager (HKLM\...\{7E5DC2C5-115A-322B-976C-219237FAED66}) (Version: 8.0.916.0 - Advanced Micro Devices, Inc.)
Arc (HKLM-x32\...\{CED8E25B-122A-4E80-B612-7F99B93284B3}) (Version: 1.0.0.9668 - Perfect World Entertainment)
BattlEye for OA Uninstall (HKLM-x32\...\BattlEye for OA) (Version: - )
Blitzkrieg Mod (HKLM-x32\...\Blitzkrieg) (Version: 4.6.2.0 - Blitzkrieg Mod Team)
Creative System Information (HKLM-x32\...\SysInfo) (Version: 1.10 - Creative Technology Limited)
DAEMON Tools Pro (HKLM-x32\...\DAEMON Tools Pro) (Version: 5.2.0.0348 - DT Soft Ltd)
Eastern Front (HKLM-x32\...\Eastern Front) (Version: 1.7.1.0 - )
Fallout New Vegas - Ultimate Edition (HKLM-x32\...\Fallout New Vegas - Ultimate Edition_is1) (Version: - )
Football Superstars (HKLM-x32\...\Football Superstars_is1) (Version: - CyberSports Ltd)
FormatFactory 2.60 (HKLM-x32\...\FormatFactory) (Version: 2.60 - Free Time)
Fraps (remove only) (HKLM-x32\...\Fraps) (Version: - )
Google Chrome (HKU\S-1-5-21-3730321190-864032766-3096031451-1004\...\Google Chrome) (Version: 47.0.2526.111 - Google Inc.)
Hamachi 1.0.2.5 (HKLM-x32\...\Hamachi) (Version: - )
Hi-Rez Studios Authenticate and Update Service (HKLM-x32\...\{3C87E0FF-BC0A-4F5E-951B-68DC3F8DF1FC}) (Version: 3.0.0.0 - Hi-Rez Studios)
Java 7 Update 9 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86417009FF}) (Version: 7.0.90 - Oracle)
Java 7 Update 9 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83217009FF}) (Version: 7.0.90 - Oracle)
Java(TM) 6 Update 12 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83216012FF}) (Version: 6.0.120 - Sun Microsystems, Inc.)
K-Lite Codec Pack 9.8.5 (64-bit) (HKLM\...\KLiteCodecPack64_is1) (Version: 9.8.5 - )
K-Lite Codec Pack 9.8.5 (Full) (HKLM-x32\...\KLiteCodecPack_is1) (Version: 9.8.5 - )
Logitech Gaming Software 5.10 (HKLM\...\{1444D2EE-C7AD-44A8-844F-2634B49353D1}) (Version: 5.10.127 - Logitech)
Malwarebytes Anti-Malware verze 2.2.0.1024 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.2.0.1024 - Malwarebytes)
Microsoft .NET Framework 4.5.2 (čeština) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1029) (Version: 4.5.51209 - Microsoft Corporation)
Microsoft .NET Framework 4.5.2 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.51209 - Microsoft Corporation)
Microsoft Games for Windows - LIVE (HKLM-x32\...\{A1C962E2-2426-49C6-A38B-9A07E40D607C}) (Version: 3.2.217.0 - Microsoft Corporation)
Microsoft Games for Windows - LIVE Redistributable (HKLM-x32\...\{00C5F4F4-62F9-40D7-8000-AD8A9CD0C669}) (Version: 3.1.99.0 - Microsoft Corporation)
Microsoft Security Essentials (HKLM\...\Microsoft Security Client) (Version: 4.8.204.0 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.41212.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft WSE 3.0 Runtime (HKLM-x32\...\{E3E71D07-CD27-46CB-8448-16D4FB29AA13}) (Version: 3.0.5305.0 - Microsoft Corp.)
NVIDIA Display Control Panel (HKLM\...\NVIDIA Display Control Panel) (Version: 6.14.12.5896 - NVIDIA Corporation)
NVIDIA Drivers (HKLM\...\NVIDIA Drivers) (Version: 1.10.62.40 - NVIDIA Corporation)
NVIDIA PhysX (HKLM-x32\...\{80407BA7-7763-4395-AB98-5233F1B34E65}) (Version: 9.13.1220 - NVIDIA Corporation)
Origin (HKLM-x32\...\Origin) (Version: 9.1.15.109 - Electronic Arts, Inc.)
Pando Media Booster (HKLM-x32\...\{980A182F-E0A2-4A40-94C1-AE0C1235902E}) (Version: 2.6.0.8 - Pando Networks Inc.)
Path of Exile (HKLM-x32\...\{90A4562F-D4A1-4B65-906D-41F236CF6902}) (Version: 1.2.3.36532 - Grinding Gear Games)
PDFCreator (HKLM-x32\...\{0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}) (Version: 1.5.0 - Frank Heindörfer, Philip Chinery)
Power Challenge Game Plugin (HKU\S-1-5-21-3730321190-864032766-3096031451-1004\...\Power Loader) (Version: - )
PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.994 - Even Balance, Inc.)
PVSonyDll (Version: 1.00.0001 - NVIDIA Corporation) Hidden
Race Injection (HKLM-x32\...\Race Injection_is1) (Version: - )
Race Injection 1.00 (HKLM-x32\...\Race Injection 1.00) (Version: - )
Raptr (HKLM-x32\...\Raptr) (Version: - )
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.5911 - Realtek Semiconductor Corp.)
Six Updater (HKLM-x32\...\{2D8CED57-CCDB-4D86-9087-3BBCAE8F8F22}) (Version: 2.09.7016 - Six Projects)
Skype™ 7.17 (HKLM-x32\...\{FC965A47-4839-40CA-B618-18F486F042C6}) (Version: 7.17.105 - Skype Technologies S.A.)
Smite (HKLM-x32\...\{3C87E0FF-BC0A-4F5E-951B-68DC3F8DF017}) (Version: 2.21.3183.0 - Hi-Rez Studios)
Sound Blaster Tactic(3D) Alpha (HKLM-x32\...\{2226247D-9846-4370-A1EF-FAA6958F7632}) (Version: 1.0 - Creative Technology Limited)
Spintires (HKLM-x32\...\Spintires_is1) (Version: - )
Star Wars: The Old Republic (HKLM-x32\...\{3B11D799-48E0-48ED-BFD7-EA655676D8BB}) (Version: 1.00 - Electronic Arts, Inc.)
Steam (HKLM-x32\...\Steam) (Version: - Valve Corporation)
swMSM (x32 Version: 12.0.0.1 - Adobe Systems, Inc) Hidden
SystemDiagnostics (HKLM-x32\...\{EF59DB7F-7426-426E-B862-7031F83ED304}) (Version: 2.04.0006 - Fujitsu Technology Solutions)
TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.0.16 - TeamSpeak Systems GmbH)
Test Drive Unlimited (HKLM-x32\...\{C37A0BC1-52EE-4F97-8223-5CA9FC0357B0}) (Version: 0.10.0000 - Atari)
The Elder Scrolls Online Beta (HKLM-x32\...\The Elder Scrolls Online Beta_is1) (Version: 0.3.4 - )
The KMPlayer (remove only) (HKLM-x32\...\The KMPlayer) (Version: 3.5.0.81 - KMP Media co., Ltd)
The Mighty Quest For Epic Loot verze 1.233773 (HKLM-x32\...\The Mighty Quest For Epic Loot_is1) (Version: 1.233773 - )
ToneMaker 1 (HKLM-x32\...\BloodyToneMaker) (Version: 15.12.0001 - Bloody)
Total Commander 64-bit (Remove or Repair) (HKLM\...\Totalcmd64) (Version: 8.01 - Ghisler Software GmbH)
Tunngle (HKLM-x32\...\Tunngle_is1) (Version: 5.2 - Tunngle.net GmbH)
Ubisoft Game Launcher (HKLM-x32\...\{888F1505-C2B3-4FDE-835D-36353EBD4754}) (Version: 1.0.0.0 - UBISOFT)
Unity Web Player (HKU\S-1-5-21-3730321190-864032766-3096031451-1004\...\UnityWebPlayer) (Version: - Unity Technologies ApS)
VLC media player 2.0.3 (HKLM-x32\...\VLC media player) (Version: 2.0.3 - VideoLAN)
VNC Free Edition 4.1.3 (HKLM-x32\...\RealVNC_is1) (Version: 4.1.3 - RealVNC Ltd.)
War Thunder CDK 0.1 (HKLM-x32\...\{ed8deea4-29fe-1932-9612-e2122d8a62d9}}_is1) (Version: - Gaijin Entertainment)
War Thunder Launcher 1.0.1.148 (HKLM-x32\...\{ed8deea4-29fa-3932-9612-e2122d8a62d9}}_is1) (Version: - 2012 Gaijin Entertainment Corporation)
War Thunder Launcher 1.0.1.336 (HKLM-x32\...\{ed8deea4-29fa-3932-9612-e2122d8b72e9}}_is1) (Version: - Gaijin Entertainment)
Wargame Red Dragon (HKLM-x32\...\Wargame Red Dragon_is1) (Version: - )
WinRAR 4.20 (64-bit) (HKLM\...\WinRAR archiver) (Version: 4.20.0 - win.rar GmbH)

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-3730321190-864032766-3096031451-1004_Classes\CLSID\{0F22A205-CFB0-4679-8499-A6F44A80A208}\InprocServer32 -> C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Google\Update\1.3.25.5\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3730321190-864032766-3096031451-1004_Classes\CLSID\{1423F872-3F7F-4E57-B621-8B1A9D49B448}\InprocServer32 -> C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Google\Update\1.3.27.5\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3730321190-864032766-3096031451-1004_Classes\CLSID\{355EC88A-02E2-4547-9DEE-F87426484BD1}\InprocServer32 -> C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Google\Update\1.3.23.9\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3730321190-864032766-3096031451-1004_Classes\CLSID\{5C8C2A98-6133-4EBA-BBCC-34D9EA01FC2E}\InprocServer32 -> C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Google\Update\1.3.28.1\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3730321190-864032766-3096031451-1004_Classes\CLSID\{78550997-5DEF-4A8A-BAF9-D5774E87AC98}\InprocServer32 -> C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Google\Update\1.3.28.13\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3730321190-864032766-3096031451-1004_Classes\CLSID\{90B3DFBF-AF6A-4EA0-8899-F332194690F8}\InprocServer32 -> C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Google\Update\1.3.24.15\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3730321190-864032766-3096031451-1004_Classes\CLSID\{C3BC25C0-FCD3-4F01-AFDD-41373F017C9A}\InprocServer32 -> C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Google\Update\1.3.26.9\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3730321190-864032766-3096031451-1004_Classes\CLSID\{CC182BE1-84CE-4A57-B85C-FD4BBDF78CB2}\InprocServer32 -> C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Google\Update\1.3.29.1\psuser_64.dll (Google Inc.)
CustomCLSID: HKU\S-1-5-21-3730321190-864032766-3096031451-1004_Classes\CLSID\{D0336C0B-7919-4C04-8CCE-2EBAE2ECE8C9}\InprocServer32 -> C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Google\Update\1.3.25.11\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3730321190-864032766-3096031451-1004_Classes\CLSID\{D1EDC4F5-7F4D-4B12-906A-614ECF66DDAF}\InprocServer32 -> C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Google\Update\1.3.28.15\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3730321190-864032766-3096031451-1004_Classes\CLSID\{E8CF3E55-F919-49D9-ABC0-948E6CB34B9F}\InprocServer32 -> C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Google\Update\1.3.29.1\psuser_64.dll (Google Inc.)
CustomCLSID: HKU\S-1-5-21-3730321190-864032766-3096031451-1004_Classes\CLSID\{FE498BAB-CB4C-4F88-AC3F-3641AAAF5E9E}\InprocServer32 -> C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Google\Update\1.3.24.7\psuser_64.dll => No File

==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {06080B1B-D4CF-441D-AFEC-A262D28E3531} - System32\Tasks\{BF273C57-8B24-426B-A909-077A06A090E7} => C:\Hry\MC\Minecraft 1.4.5\Minecraft launcher.exe
Task: {0937AE4E-6DD9-45B5-A345-F7B9C629CC58} - System32\Tasks\{CFED3E2F-D9A0-431F-8E58-9EEAB87C2067} => C:\Hry\MC\Minecraft 1.4.5\Minecraft launcher.exe
Task: {0BE7032A-7770-447C-AF66-F3D6F933F003} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-01-02] (Adobe Systems Incorporated)
Task: {10CA6DF9-F04D-4E1C-8CC4-FD17C008C8E7} - System32\Tasks\{8C0F303B-7960-4847-A561-52B044F74AC6} => C:\Hry\MC\Minecraft 1.4.5\Minecraft launcher.exe
Task: {12B59A81-7544-4683-829A-4D442BE3C2D3} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3404362962-4107995047-1605947123-2005UA => C:\Users\cc2018\AppData\Local\Google\Update\GoogleUpdate.exe [2011-06-13] (Google Inc.)
Task: {204F2191-0BE1-47A2-A3D2-A1FC6C98A69A} - System32\Tasks\{FBB49FB4-4F27-4DD3-A471-6BB7DC94E6FC} => C:\Program Files (x86)\Skype\Phone\Skype.exe [2015-12-17] (Skype Technologies S.A.)
Task: {21452041-D1B7-4D27-8193-F8E51A49B4D2} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3730321190-864032766-3096031451-1004Core => C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Google\Update\GoogleUpdate.exe [2015-08-29] (Google Inc.)
Task: {29CBA10B-3858-4462-B50C-3D5B25B9C80D} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3404362962-4107995047-1605947123-2005Core => C:\Users\cc2018\AppData\Local\Google\Update\GoogleUpdate.exe [2011-06-13] (Google Inc.)
Task: {2E7506E9-C894-4F99-8496-BA44AC56A42D} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3730321190-864032766-3096031451-1004UA => C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Google\Update\GoogleUpdate.exe [2015-08-29] (Google Inc.)
Task: {306877C7-BE37-4351-AB1D-AF6C2BEACF6C} - System32\Tasks\{691E93AE-C8F8-4FE6-ACC8-3855AF618CCC} => C:\Hry\SimCity5\Start.exe
Task: {41F9ADA8-C50B-4B40-A933-8E346205419C} - System32\Tasks\Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeReminderTime => C:\Windows\system32\GWX\GWXUXWorker.exe [2015-12-05] (Microsoft Corporation)
Task: {4BF94F87-1BD1-4F33-B193-4AB54FB60765} - System32\Tasks\{F32A73F4-B890-4D10-94EE-0025CDD9E6F2} => C:\Hry\MC\Minecraft 1.4.5\Minecraft launcher.exe
Task: {55DF872E-9CCC-4A84-9707-E7AC6592345B} - System32\Tasks\{AB49EE53-5D9A-4375-9F6A-786BE6E8C74C} => C:\Hry\MC\Minecraft 1.4.5\Minecraft launcher.exe
Task: {5A40E926-9E86-4B89-9CFD-B12311724371} - System32\Tasks\Microsoft\Windows\UPnP\UPnPHostConfig => config upnphost start= auto
Task: {5BEA5C20-CC16-4E14-A1F9-8BAC319E83EE} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3404362962-4107995047-1605947123-1886UA => C:\Users\cc2004\AppData\Local\Google\Update\GoogleUpdate.exe [2011-06-03] (Google Inc.)
Task: {5D3EFAD0-FD12-4407-8835-2C48AD4B023E} - System32\Tasks\Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeTime => C:\Windows\system32\GWX\GWXUXWorker.exe [2015-12-05] (Microsoft Corporation)
Task: {683BF77E-C638-4AE8-9F7B-9BBD304F4CA7} - System32\Tasks\{57805453-F851-4095-BCE0-362EC2F873BE} => C:\Hry\MC\Minecraft 1.4.5\Minecraft launcher.exe
Task: {6ABE54B0-3401-4A1B-A7B1-57A702FFFD40} - System32\Tasks\{261D0157-B2B5-49EC-884B-198D0CC3CBDC} => C:\Hry\MC\Minecraft 1.4.5\Minecraft launcher.exe
Task: {76B2C60C-2EE3-4130-9837-B7103233F8E8} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3404362962-4107995047-1605947123-2004Core => C:\Users\cc2017\AppData\Local\Google\Update\GoogleUpdate.exe [2010-10-21] (Google Inc.)
Task: {7D315757-13F2-4F6C-9996-54FFF9083AFE} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3404362962-4107995047-1605947123-2075UA => C:\Users\cc2024\AppData\Local\Google\Update\GoogleUpdate.exe [2011-04-29] (Google Inc.)
Task: {828BF384-3DC0-4192-BFFD-4AA9D214A5E3} - System32\Tasks\{41008640-C4BA-4D88-906C-E8DB01C1D711} => C:\Hry\Hitman Absolution\HMA.exe
Task: {82EC336C-435E-4014-A8CB-A8ABB8327C01} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3404362962-4107995047-1605947123-1883Core => C:\Users\cc2001\AppData\Local\Google\Update\GoogleUpdate.exe [2011-10-25] (Google Inc.)
Task: {87AC503C-DEC2-4FCB-B8CF-F17863AAA7A4} - System32\Tasks\{CEDA468C-5B6F-4879-94D7-7488CD41F887} => pcalua.exe -a D:\install.exe -d D:\
Task: {8D868BE6-E295-4783-AE3C-7F22EBE33F63} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3404362962-4107995047-1605947123-2075Core => C:\Users\cc2024\AppData\Local\Google\Update\GoogleUpdate.exe [2011-04-29] (Google Inc.)
Task: {AC135FC9-4DF9-441F-A352-727EF0C265C5} - System32\Tasks\{225801E0-B93E-4FBC-AC3D-60F88CD4D927} => C:\Hry\MC\Minecraft 1.4.5\Minecraft launcher.exe
Task: {AEF5AA9F-99C3-474F-BCD0-D28592A8A21A} - System32\Tasks\{F41E28A8-B596-4B18-9F01-C83F85F92F40} => C:\Hry\MC\Minecraft 1.4.5\Minecraft launcher.exe
Task: {B3CF7A98-E809-447C-8EF8-C291A7E913F1} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3404362962-4107995047-1605947123-1883UA => C:\Users\cc2001\AppData\Local\Google\Update\GoogleUpdate.exe [2011-10-25] (Google Inc.)
Task: {B694A2ED-E29D-4058-9199-E7921CC36A07} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3404362962-4107995047-1605947123-1886Core => C:\Users\cc2004\AppData\Local\Google\Update\GoogleUpdate.exe [2011-06-03] (Google Inc.)
Task: {C2654DB7-9FB1-4170-9416-4DA73680CF06} - System32\Tasks\{C1C5F18D-9C9A-41BD-8459-CACFBAD3F9A3} => C:\Hry\MC\Minecraft 1.4.5\Minecraft launcher.exe
Task: {C2CC44B2-0893-406E-ADA9-26F96B64A441} - System32\Tasks\{283E485B-A72A-4CCC-8701-61AD6FEE4119} => C:\Hry\MC\Minecraft 1.4.5\Minecraft launcher.exe
Task: {D08CDAD6-2524-4732-97F3-DD999D2A8707} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3404362962-4107995047-1605947123-1981Core => C:\Users\cc2014\AppData\Local\Google\Update\GoogleUpdate.exe [2010-10-01] (Google Inc.)
Task: {DB624C21-E634-43CA-8C28-007F830792E3} - System32\Tasks\{9007CB74-D655-45D1-A331-642F2F5CBCF9} => C:\Hry\MC\Minecraft 1.4.5\Minecraft launcher.exe
Task: {DD9F510C-95F4-499A-90C8-BAC5BC372FF4} - System32\Tasks\Microsoft\Windows\SoftwareProtectionPlatform\SvcRestartTask => start sppsvc
Task: {E0AB0E58-8DAE-418D-B553-D6481A7F99D4} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3404362962-4107995047-1605947123-2004UA => C:\Users\cc2017\AppData\Local\Google\Update\GoogleUpdate.exe [2010-10-21] (Google Inc.)
Task: {F2967D4C-0038-4808-BC6D-8B237FDACF38} - System32\Tasks\{1BFF127E-136F-432A-A95F-9000A8A2907A} => C:\Hry\MC\Minecraft 1.4.5\Minecraft launcher.exe
Task: {FA48691D-99EB-43BC-984C-75F46007E902} - System32\Tasks\{6742D68E-6EB4-4FB6-AE5D-B9F7990CEEC5} => C:\Hry\MC\Minecraft 1.4.5\Minecraft launcher.exe
Task: {FDFBF62C-9060-4402-922F-4868CC1CB1C5} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3404362962-4107995047-1605947123-1981UA => C:\Users\cc2014\AppData\Local\Google\Update\GoogleUpdate.exe [2010-10-01] (Google Inc.)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3404362962-4107995047-1605947123-1883Core.job => C:\Users\cc2001\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3404362962-4107995047-1605947123-1883UA.job => C:\Users\cc2001\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3404362962-4107995047-1605947123-1886Core.job => C:\Users\cc2004\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3404362962-4107995047-1605947123-1886UA.job => C:\Users\cc2004\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3404362962-4107995047-1605947123-1981Core.job => C:\Users\cc2014\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3404362962-4107995047-1605947123-1981UA.job => C:\Users\cc2014\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3404362962-4107995047-1605947123-2004Core.job => C:\Users\cc2017\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3404362962-4107995047-1605947123-2004UA.job => C:\Users\cc2017\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3404362962-4107995047-1605947123-2005Core.job => C:\Users\cc2018\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3404362962-4107995047-1605947123-2005UA.job => C:\Users\cc2018\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3404362962-4107995047-1605947123-2075Core.job => C:\Users\cc2024\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3404362962-4107995047-1605947123-2075UA.job => C:\Users\cc2024\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3730321190-864032766-3096031451-1004Core.job => C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3730321190-864032766-3096031451-1004UA.job => C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Google\Update\GoogleUpdate.exe

==================== Shortcuts =============================

(The entries could be listed to be restored or removed.)

==================== Loaded Modules (Whitelisted) ==============

2012-11-06 16:53 - 2010-01-27 12:59 - 00015360 _____ () C:\Windows\System32\KOBJUJ_L.dll
2012-10-29 15:46 - 2012-10-29 14:20 - 00015360 _____ () C:\Windows\System32\KOAYQJ_L.DLL
2012-12-09 19:57 - 2015-11-04 21:56 - 00076152 _____ () C:\Windows\SysWOW64\PnkBstrA.exe
2015-12-19 10:24 - 2015-12-04 09:33 - 08472576 _____ () C:\Program Files (x86)\BloodyToneMaker\BloodyToneMaker\Bloody ToneMaker1.exe
2015-12-19 10:24 - 2013-11-06 10:09 - 10891783 _____ () C:\Program Files (x86)\BloodyToneMaker\BloodyToneMaker\SDK\CM_LibraryIO.exe
2016-01-15 01:37 - 2015-12-30 21:46 - 02531272 _____ () C:\Hry\Smite\HirezLauncherUI.exe
2009-07-13 22:03 - 2009-07-14 02:15 - 00364544 _____ () C:\Windows\SysWOW64\msjetoledb40.dll
2015-12-19 10:24 - 2014-01-10 17:48 - 04260352 _____ () C:\Program Files (x86)\BloodyToneMaker\BloodyToneMaker\Data\RES\Forms\Internet_Advertisement\Internet_Advertisement_DLL.dll
2010-11-22 23:56 - 2010-11-22 23:56 - 00087040 _____ () C:\Program Files (x86)\Raptr\_ctypes.pyd
2010-11-22 23:56 - 2010-11-22 23:56 - 00043008 _____ () C:\Program Files (x86)\Raptr\_socket.pyd
2010-11-22 23:56 - 2010-11-22 23:56 - 00805376 _____ () C:\Program Files (x86)\Raptr\_ssl.pyd
2014-05-14 00:26 - 2014-05-14 00:26 - 05812736 _____ () C:\Program Files (x86)\Raptr\PyQt4.QtGui.pyd
2014-05-14 00:26 - 2014-05-14 00:26 - 00067584 _____ () C:\Program Files (x86)\Raptr\sip.pyd
2014-05-14 00:26 - 2014-05-14 00:26 - 01662464 _____ () C:\Program Files (x86)\Raptr\PyQt4.QtCore.pyd
2014-05-14 00:26 - 2014-05-14 00:26 - 00494592 _____ () C:\Program Files (x86)\Raptr\PyQt4.QtNetwork.pyd
2010-11-22 23:57 - 2010-11-22 23:57 - 00096256 _____ () C:\Program Files (x86)\Raptr\win32api.pyd
2010-11-22 23:56 - 2010-11-22 23:56 - 00110592 _____ () C:\Program Files (x86)\Raptr\pywintypes26.dll
2010-11-22 23:56 - 2010-11-22 23:56 - 00010240 _____ () C:\Program Files (x86)\Raptr\select.pyd
2010-11-22 23:56 - 2010-11-22 23:56 - 00356864 _____ () C:\Program Files (x86)\Raptr\_hashlib.pyd
2010-11-22 23:57 - 2010-11-22 23:57 - 00036352 _____ () C:\Program Files (x86)\Raptr\win32process.pyd
2010-11-22 23:57 - 2010-11-22 23:57 - 00111104 _____ () C:\Program Files (x86)\Raptr\win32file.pyd
2010-11-22 23:56 - 2010-11-22 23:56 - 00044544 _____ () C:\Program Files (x86)\Raptr\_sqlite3.pyd
2011-02-15 19:17 - 2011-02-15 19:17 - 00417501 _____ () C:\Program Files (x86)\Raptr\sqlite3.dll
2010-11-22 23:57 - 2010-11-22 23:57 - 00167936 _____ () C:\Program Files (x86)\Raptr\win32gui.pyd
2014-05-14 00:26 - 2014-05-14 00:26 - 00313856 _____ () C:\Program Files (x86)\Raptr\PyQt4.QtWebKit.pyd
2010-11-22 23:56 - 2010-11-22 23:56 - 00127488 _____ () C:\Program Files (x86)\Raptr\pyexpat.pyd
2010-11-22 23:56 - 2010-11-22 23:56 - 00009216 _____ () C:\Program Files (x86)\Raptr\winsound.pyd
2015-10-21 21:29 - 2015-10-21 21:29 - 00113171 _____ () C:\Program Files (x86)\Raptr\libvlc.dll
2015-10-21 21:29 - 2015-10-21 21:29 - 02396691 _____ () C:\Program Files (x86)\Raptr\libvlccore.dll
2010-11-22 23:56 - 2010-11-22 23:56 - 00583680 _____ () C:\Program Files (x86)\Raptr\unicodedata.pyd
2010-11-22 23:56 - 2010-11-22 23:56 - 00354304 _____ () C:\Program Files (x86)\Raptr\pythoncom26.dll
2010-11-22 23:57 - 2010-11-22 23:57 - 00263168 _____ () C:\Program Files (x86)\Raptr\win32com.shell.shell.pyd
2010-11-22 23:56 - 2010-11-22 23:56 - 00324608 _____ () C:\Program Files (x86)\Raptr\PIL._imaging.pyd
2015-06-27 00:09 - 2015-06-27 00:09 - 00271872 _____ () C:\Program Files (x86)\Raptr\amd_ags.dll
2015-12-11 23:20 - 2015-12-11 23:20 - 02610944 _____ () C:\Program Files (x86)\Raptr\ltc_host_ex.DLL
2015-10-21 21:29 - 2015-10-21 21:29 - 00027667 _____ () C:\Program Files (x86)\Raptr\plugins\audio_output\libdirectsound_plugin.dll
2015-10-21 21:29 - 2015-10-21 21:29 - 00031251 _____ () C:\Program Files (x86)\Raptr\plugins\audio_output\libwaveout_plugin.dll
2015-10-21 21:29 - 2015-10-21 21:29 - 00066579 _____ () C:\Program Files (x86)\Raptr\plugins\video_output\libdirectdraw_plugin.dll
2010-11-22 23:57 - 2010-11-22 23:57 - 00141312 _____ () C:\Program Files (x86)\Raptr\gobject._gobject.pyd
2014-06-18 01:56 - 2014-06-18 01:56 - 02717595 _____ () C:\Program Files (x86)\Raptr\heliotrope._purple.pyd
2011-02-15 19:17 - 2011-02-15 19:17 - 01213633 _____ () C:\Program Files (x86)\Raptr\libxml2-2.dll
2010-11-23 00:06 - 2010-11-23 00:06 - 00055808 _____ () C:\Program Files (x86)\Raptr\zlib1.dll
2013-05-10 00:52 - 2013-05-10 00:52 - 00495680 _____ () C:\Program Files (x86)\Raptr\plugins\libaim.dll
2013-05-10 00:52 - 2013-05-10 00:52 - 01183699 _____ () C:\Program Files (x86)\Raptr\liboscar.dll
2013-05-10 00:52 - 2013-05-10 00:52 - 00483306 _____ () C:\Program Files (x86)\Raptr\plugins\libicq.dll
2013-05-03 19:57 - 2013-05-03 19:57 - 00655356 _____ () C:\Program Files (x86)\Raptr\plugins\libirc.dll
2013-05-03 19:56 - 2013-05-03 19:56 - 01306387 _____ () C:\Program Files (x86)\Raptr\plugins\libmsn.dll
2013-05-03 19:56 - 2013-05-03 19:56 - 00565461 _____ () C:\Program Files (x86)\Raptr\plugins\libxmpp.dll
2013-05-03 19:57 - 2013-05-03 19:57 - 01640221 _____ () C:\Program Files (x86)\Raptr\libjabber.dll
2013-05-03 19:56 - 2013-05-03 19:56 - 00506276 _____ () C:\Program Files (x86)\Raptr\plugins\libyahoo.dll
2013-05-03 19:57 - 2013-05-03 19:57 - 01053730 _____ () C:\Program Files (x86)\Raptr\libymsg.dll
2013-05-03 19:57 - 2013-05-03 19:57 - 00497782 _____ () C:\Program Files (x86)\Raptr\plugins\libyahoojp.dll
2013-05-03 19:57 - 2013-05-03 19:57 - 00603326 _____ () C:\Program Files (x86)\Raptr\plugins\ssl-nss.dll
2013-05-03 19:57 - 2013-05-03 19:57 - 00474199 _____ () C:\Program Files (x86)\Raptr\plugins\ssl.dll
2016-01-15 01:37 - 2015-12-30 21:43 - 00072704 _____ () C:\Hry\Smite\HiManagedBridge.dll
2014-06-15 19:38 - 2015-11-10 20:55 - 00778752 _____ () C:\Program Files (x86)\Steam\SDL2.dll
2015-04-18 17:07 - 2015-07-03 17:12 - 04962816 _____ () C:\Program Files (x86)\Steam\v8.dll
2015-04-18 17:07 - 2015-07-03 17:12 - 01556992 _____ () C:\Program Files (x86)\Steam\icui18n.dll
2015-04-18 17:07 - 2015-07-03 17:12 - 01187840 _____ () C:\Program Files (x86)\Steam\icuuc.dll
2014-06-15 19:38 - 2015-12-14 21:01 - 02547280 _____ () C:\Program Files (x86)\Steam\video.dll
2015-03-09 23:34 - 2015-09-24 01:33 - 02549248 _____ () C:\Program Files (x86)\Steam\libavcodec-56.dll
2015-03-09 23:34 - 2015-09-24 01:33 - 00442880 _____ () C:\Program Files (x86)\Steam\libavutil-54.dll
2015-03-09 23:34 - 2015-09-24 01:33 - 00491008 _____ () C:\Program Files (x86)\Steam\libavformat-56.dll
2015-03-09 23:34 - 2015-09-24 01:33 - 00332800 _____ () C:\Program Files (x86)\Steam\libavresample-2.dll
2015-03-09 23:34 - 2015-09-24 01:33 - 00485888 _____ () C:\Program Files (x86)\Steam\libswscale-3.dll
2014-06-15 19:38 - 2015-12-14 21:01 - 00804432 _____ () C:\Program Files (x86)\Steam\bin\chromehtml.DLL
2015-08-03 22:44 - 2015-11-03 23:00 - 00201728 _____ () C:\Program Files (x86)\Steam\bin\openvr_api.dll
2014-06-15 19:38 - 2015-11-17 01:31 - 47846176 _____ () C:\Program Files (x86)\Steam\bin\libcef.dll
2015-04-18 17:07 - 2015-09-25 00:56 - 00119208 _____ () C:\Program Files (x86)\Steam\winh264.dll
2016-01-15 04:04 - 2016-01-12 17:35 - 01590088 _____ () C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Google\Chrome\Application\47.0.2526.111\libglesv2.dll
2016-01-15 04:04 - 2016-01-12 17:35 - 00087880 _____ () C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Google\Chrome\Application\47.0.2526.111\libegl.dll
2016-01-17 05:49 - 2016-01-17 05:49 - 23428632 _____ () C:\Hry\War Thunder\aces.exe
2015-12-05 10:21 - 2015-12-05 10:21 - 00933056 ____R () C:\Program Files (x86)\Skype\Phone\ssScreenVVS2.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)

AlternateDataStreams: C:\ProgramData\.rdata:X

==================== Safe Mode (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)


==================== EXE Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)

IE trusted site: HKU\.DEFAULT\...\clonewarsadventures.com -> clonewarsadventures.com
IE trusted site: HKU\.DEFAULT\...\freerealms.com -> freerealms.com
IE trusted site: HKU\.DEFAULT\...\soe.com -> soe.com
IE trusted site: HKU\.DEFAULT\...\sony.com -> sony.com
IE trusted site: HKU\S-1-5-19\...\clonewarsadventures.com -> clonewarsadventures.com
IE trusted site: HKU\S-1-5-19\...\freerealms.com -> freerealms.com
IE trusted site: HKU\S-1-5-19\...\soe.com -> soe.com
IE trusted site: HKU\S-1-5-19\...\sony.com -> sony.com
IE trusted site: HKU\S-1-5-20\...\clonewarsadventures.com -> clonewarsadventures.com
IE trusted site: HKU\S-1-5-20\...\freerealms.com -> freerealms.com
IE trusted site: HKU\S-1-5-20\...\soe.com -> soe.com
IE trusted site: HKU\S-1-5-20\...\sony.com -> sony.com
IE trusted site: HKU\S-1-5-21-3730321190-864032766-3096031451-1004\...\clonewarsadventures.com -> clonewarsadventures.com
IE trusted site: HKU\S-1-5-21-3730321190-864032766-3096031451-1004\...\freerealms.com -> freerealms.com
IE trusted site: HKU\S-1-5-21-3730321190-864032766-3096031451-1004\...\soe.com -> soe.com
IE trusted site: HKU\S-1-5-21-3730321190-864032766-3096031451-1004\...\sony.com -> sony.com

==================== Hosts content: ==========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2011-09-13 06:42 - 2013-08-13 15:31 - 00001487 ___RA C:\Windows\system32\Drivers\etc\hosts

127.0.0.1 csc3-2010-crl.verisign.com
127.0.0.1 ocsp.verisign.com
127.0.0.1 crl.verisign.com
127.0.0.1 download.dm.origin.com
127.0.0.1 secure.download.dm.origin.com
127.0.0.1 loginregistration.dm.origin.com
127.0.0.1 achievements.gameservices.ea.com
127.0.0.1 friends.dm.origin.com
127.0.0.1 avatar.dm.origin.com
127.0.0.1 ecommerce.dm.origin.com
127.0.0.1 static.cdn.ea.com
127.0.0.1 tealium.hs.llnwd.net
127.0.0.1 heartbeat.dm.origin.com
127.0.0.1 web.dm.origin.com
127.0.0.1 store.origin.com
127.0.0.1 ec2-54-243-231-82.compute-1.amazonaws.com
127.0.0.1 eaassets-a.akamaihd.net
127.0.0.1 ssl.resources.ea.com
127.0.0.1 akamai.cdn.ea.com
127.0.0.1 novafusion.ea.com
127.0.0.1 proxy.novafusion.ea.com
127.0.0.1 ec2-23-23-167-200.compute-1.amazonaws.com
127.0.0.1 dirtybits.dm.origin.com
127.0.0.1 chat.dm.origin.com
127.0.0.1 easo.ea.com
127.0.0.1 ea.com
127.0.0.1 telemetry.simcity.com
127.0.0.1 ec2-54-228-227-181.eu-west-1.compute.amazonaws.com
127.0.0.1 ec2-46-137-177-16.eu-west-1.compute.amazonaws.com
127.0.0.1 s3-1-w.amazonaws.com

There are 10 more lines.


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-3730321190-864032766-3096031451-1004\Control Panel\Desktop\\Wallpaper -> C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
DNS Servers: 109.202.72.93 - 109.202.73.93
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 3) (EnableLUA: 0)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

(Currently there is no automatic fix for this section.)


==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [SPPSVC-In-TCP] => (Allow) %SystemRoot%\system32\sppsvc.exe
FirewallRules: [SPPSVC-In-TCP-NoScope] => (Allow) %SystemRoot%\system32\sppsvc.exe
FirewallRules: [TCP Query User{8A630623-285B-47AF-811D-5AB55F833363}C:\program files (x86)\internet explorer\iexplore.exe] => (Block) C:\program files (x86)\internet explorer\iexplore.exe
FirewallRules: [UDP Query User{25241400-E9F6-49CE-849D-2FD2989B1B99}C:\program files (x86)\internet explorer\iexplore.exe] => (Block) C:\program files (x86)\internet explorer\iexplore.exe
FirewallRules: [TCP Query User{06C6905B-0BD2-429F-8506-946D057B54EF}C:\program files (x86)\microsoft office\office12\outlook.exe] => (Block) C:\program files (x86)\microsoft office\office12\outlook.exe
FirewallRules: [TCP Query User{8E8D6EDC-1D55-458D-9529-D9545CC60EDF}C:\users\cpadmin.cc_pracoviste6\appdata\local\temp\gw2.exe] => (Allow) C:\users\cpadmin.cc_pracoviste6\appdata\local\temp\gw2.exe
FirewallRules: [UDP Query User{5849633C-E38D-4977-8121-3B33E28CDE43}C:\users\cpadmin.cc_pracoviste6\appdata\local\temp\gw2.exe] => (Allow) C:\users\cpadmin.cc_pracoviste6\appdata\local\temp\gw2.exe
FirewallRules: [TCP Query User{C0E4CDC5-6E59-4AFD-B0C7-4C5B1216CA88}C:\hry\guild wars 2\gw2.exe] => (Allow) C:\hry\guild wars 2\gw2.exe
FirewallRules: [UDP Query User{23BC8E2C-B515-478B-8E91-0523A978A029}C:\hry\guild wars 2\gw2.exe] => (Allow) C:\hry\guild wars 2\gw2.exe
FirewallRules: [{1ECF0282-B4B3-44F5-A335-A9C8D0BBD18A}] => (Allow) C:\Program Files (x86)\uTorrent\uTorrent.exe
FirewallRules: [{04B089C3-7BDD-4426-B9A5-977BE3F84BB3}] => (Allow) C:\Program Files (x86)\uTorrent\uTorrent.exe
FirewallRules: [{D35D481B-09C5-48F5-B044-5BC7737D6DE7}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe
FirewallRules: [TCP Query User{7A70F68B-0CEB-412F-B308-DD4F7BC43AE5}C:\hry\borderlands 2\binaries\win32\borderlands2.exe] => (Block) C:\hry\borderlands 2\binaries\win32\borderlands2.exe
FirewallRules: [UDP Query User{D49C7625-E5A5-469E-8342-C1B5A790E20A}C:\hry\borderlands 2\binaries\win32\borderlands2.exe] => (Block) C:\hry\borderlands 2\binaries\win32\borderlands2.exe
FirewallRules: [TCP Query User{DA0D1FFC-5543-4170-B101-1304F963C887}C:\hry\borderlands 2\binaries\win32\borderlands2.exe] => (Block) C:\hry\borderlands 2\binaries\win32\borderlands2.exe
FirewallRules: [UDP Query User{4318388E-F79C-4496-BC4F-DEEB2370B235}C:\hry\borderlands 2\binaries\win32\borderlands2.exe] => (Block) C:\hry\borderlands 2\binaries\win32\borderlands2.exe
FirewallRules: [TCP Query User{40EED998-FFAE-4BA9-809B-4811ED8EAA33}C:\hry\rbr\rbrnet2.0.exe] => (Allow) C:\hry\rbr\rbrnet2.0.exe
FirewallRules: [UDP Query User{929E4295-E42E-4DF0-AB31-D1957F44DC6A}C:\hry\rbr\rbrnet2.0.exe] => (Allow) C:\hry\rbr\rbrnet2.0.exe
FirewallRules: [TCP Query User{E6241DF2-5D9A-47DB-A223-F9D9FBED6EFF}C:\windows\syswow64\dpnsvr.exe] => (Allow) C:\windows\syswow64\dpnsvr.exe
FirewallRules: [UDP Query User{4E82E0E0-077A-4F92-AC25-633198B2DA05}C:\windows\syswow64\dpnsvr.exe] => (Allow) C:\windows\syswow64\dpnsvr.exe
FirewallRules: [TCP Query User{4619814D-BBCB-4BBE-84E6-A321CA7A4462}C:\hry\rfactor\rfactor\rfactor.exe] => (Allow) C:\hry\rfactor\rfactor\rfactor.exe
FirewallRules: [UDP Query User{58EFE01D-1C3A-4CA9-8812-88BEA655F737}C:\hry\rfactor\rfactor\rfactor.exe] => (Allow) C:\hry\rfactor\rfactor\rfactor.exe
FirewallRules: [{B6E766E4-C664-4BAF-B17B-6B8EE91229B2}] => (Block) C:\hry\rfactor\rfactor\rfactor.exe
FirewallRules: [{1EC3AD79-2002-4549-977F-72FF396CFCCC}] => (Block) C:\hry\rfactor\rfactor\rfactor.exe
FirewallRules: [TCP Query User{DF02D5B8-4DAC-4336-83A2-505A928A4ACF}C:\hry\rfactor222\rfactor\rfactor.exe] => (Allow) C:\hry\rfactor222\rfactor\rfactor.exe
FirewallRules: [UDP Query User{C37464B3-AE17-4037-B93E-9E3C6122A713}C:\hry\rfactor222\rfactor\rfactor.exe] => (Allow) C:\hry\rfactor222\rfactor\rfactor.exe
FirewallRules: [{8D26BD9F-E9C6-4E1B-A97E-2E56FB2C61B3}] => (Block) C:\hry\rfactor222\rfactor\rfactor.exe
FirewallRules: [{B06F8651-063A-44B7-8975-9B9604AB6046}] => (Block) C:\hry\rfactor222\rfactor\rfactor.exe
FirewallRules: [TCP Query User{1C88A51C-8D4C-4944-9BF7-E156F973F829}C:\hry\far cry 3\bin\farcry3_d3d11.exe] => (Allow) C:\hry\far cry 3\bin\farcry3_d3d11.exe
FirewallRules: [UDP Query User{E5F8DA75-F43D-4E51-BDD7-C531A0ED4DF2}C:\hry\far cry 3\bin\farcry3_d3d11.exe] => (Allow) C:\hry\far cry 3\bin\farcry3_d3d11.exe
FirewallRules: [{1D7B581D-CBBE-4D75-9D98-AEFB73D4B319}] => (Block) C:\hry\far cry 3\bin\farcry3_d3d11.exe
FirewallRules: [{247D55D8-77CB-4FCD-8439-784B84D3FEE9}] => (Block) C:\hry\far cry 3\bin\farcry3_d3d11.exe
FirewallRules: [TCP Query User{58CD2304-6D60-4014-B244-B0B2350E029A}C:\windows\syswow64\javaw.exe] => (Allow) C:\windows\syswow64\javaw.exe
FirewallRules: [UDP Query User{5A4AFA0E-55DC-49EC-9B03-F067BAF272A9}C:\windows\syswow64\javaw.exe] => (Allow) C:\windows\syswow64\javaw.exe
FirewallRules: [{88BB1289-F1C8-41A3-8525-8BAF4664FC03}] => (Block) C:\windows\syswow64\javaw.exe
FirewallRules: [{F5EB8B48-1F9C-4E62-B3AE-4FFF0BCD34C7}] => (Block) C:\windows\syswow64\javaw.exe
FirewallRules: [TCP Query User{A95BF1FE-FB50-4D6C-97DD-E8CACEEC066E}C:\hry\world_of_tanks\wotlauncher.exe] => (Allow) C:\hry\world_of_tanks\wotlauncher.exe
FirewallRules: [UDP Query User{4CFAD0F8-F501-46C3-99CD-4EF8B68A6749}C:\hry\world_of_tanks\wotlauncher.exe] => (Allow) C:\hry\world_of_tanks\wotlauncher.exe
FirewallRules: [{9F309369-FA2A-4392-AD41-184B591E779E}] => (Block) C:\hry\world_of_tanks\wotlauncher.exe
FirewallRules: [{CDF9BB17-F524-4509-81EB-239357CBEDF4}] => (Block) C:\hry\world_of_tanks\wotlauncher.exe
FirewallRules: [TCP Query User{18992B5F-0876-4ABE-90B0-81FFB07252F6}C:\hry\world_of_tanks\worldoftanks.exe] => (Allow) C:\hry\world_of_tanks\worldoftanks.exe
FirewallRules: [UDP Query User{5C064890-D190-421C-803A-88AA0D2AF0A2}C:\hry\world_of_tanks\worldoftanks.exe] => (Allow) C:\hry\world_of_tanks\worldoftanks.exe
FirewallRules: [{ABF8392B-B0DF-44C1-8D77-D8FDD106B954}] => (Block) C:\hry\world_of_tanks\worldoftanks.exe
FirewallRules: [{006E6773-93B5-4D62-8DFB-3AB1A7FB2D22}] => (Block) C:\hry\world_of_tanks\worldoftanks.exe
FirewallRules: [TCP Query User{9550243A-5B3D-4E23-A383-14BC8BA2F784}C:\hry\arma2\arma2oa.exe] => (Allow) C:\hry\arma2\arma2oa.exe
FirewallRules: [UDP Query User{59D8F346-448C-4A7B-AFA6-2A4CAF794D55}C:\hry\arma2\arma2oa.exe] => (Allow) C:\hry\arma2\arma2oa.exe
FirewallRules: [{28AC7B5F-BDD8-48BD-A704-87FD83B1001F}] => (Block) C:\hry\arma2\arma2oa.exe
FirewallRules: [{4E616BC1-2B24-490E-9C28-583024874D0C}] => (Block) C:\hry\arma2\arma2oa.exe
FirewallRules: [TCP Query User{DC61EA17-2734-485D-81B3-6A835E658425}C:\hry\arma2\6launcher\tools\bin\rsync.exe] => (Allow) C:\hry\arma2\6launcher\tools\bin\rsync.exe
FirewallRules: [UDP Query User{D21B4723-164F-4DB2-8AEB-38AE5E7F84D8}C:\hry\arma2\6launcher\tools\bin\rsync.exe] => (Allow) C:\hry\arma2\6launcher\tools\bin\rsync.exe
FirewallRules: [{2F47AF17-36F1-4F39-BCA5-6142692F396B}] => (Block) C:\hry\arma2\6launcher\tools\bin\rsync.exe
FirewallRules: [{14B3C47D-17A3-4B85-B8CE-2494B61DEB45}] => (Block) C:\hry\arma2\6launcher\tools\bin\rsync.exe
FirewallRules: [{DE466EE4-B03C-4136-BBAD-9F62096B4364}] => (Allow) C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe
FirewallRules: [{A9B6164A-A0C3-4B21-BF04-EDD54436CC28}] => (Allow) C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe
FirewallRules: [{D8462687-C140-4E7B-805B-8149CD501CA2}] => (Allow) C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe
FirewallRules: [{EC83DE13-EFDF-44A2-B80B-54AFBE63A6BF}] => (Allow) C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe
FirewallRules: [{479E845D-4D6D-47B4-8912-5894330B0C9D}] => (Allow) LPort=57293
FirewallRules: [{3EF1260C-8687-488C-834C-9258803738E1}] => (Allow) LPort=57293
FirewallRules: [{721D4A8B-C40E-4180-A4DB-C63DF5DD4B2B}] => (Allow) LPort=57293
FirewallRules: [{3805B7BB-7EEB-4A18-AA0D-CF951B3BFF88}] => (Allow) LPort=57293
FirewallRules: [{C4A1A2C5-0C63-43AF-AB76-332AB9A4AD2F}] => (Allow) C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe
FirewallRules: [TCP Query User{7B2B7970-ED98-4E60-9750-D5F1E65378C1}C:\hry\race injection\race_steam.exe] => (Allow) C:\hry\race injection\race_steam.exe
FirewallRules: [UDP Query User{CB8B2AB9-76BD-463E-B3CA-021D478DEEBB}C:\hry\race injection\race_steam.exe] => (Allow) C:\hry\race injection\race_steam.exe
FirewallRules: [{AE806D2D-1128-4CD4-A229-1E2ACC0733B9}] => (Block) C:\hry\race injection\race_steam.exe
FirewallRules: [{848FBF66-7716-4D8A-A95F-8F9C0A02F898}] => (Block) C:\hry\race injection\race_steam.exe
FirewallRules: [TCP Query User{CF1D2875-6A28-4CFB-9B3D-2862A02CF540}C:\hry\ironfront\iron front\ironfront.exe] => (Allow) C:\hry\ironfront\iron front\ironfront.exe
FirewallRules: [UDP Query User{004B668A-FC56-447C-A0C1-F1F3A3B52280}C:\hry\ironfront\iron front\ironfront.exe] => (Allow) C:\hry\ironfront\iron front\ironfront.exe
FirewallRules: [{0C93C04F-466C-4C85-A84C-40F2C2D19FAC}] => (Block) C:\hry\ironfront\iron front\ironfront.exe
FirewallRules: [{C10D11BD-F262-4EA7-9738-4005711945A9}] => (Block) C:\hry\ironfront\iron front\ironfront.exe
FirewallRules: [{67DD523F-35C1-4387-86DD-55DF2CFA251B}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{1D6FF7D7-B5A5-4743-BD61-FD5C45AB2333}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{E93D423B-9508-4F82-95EE-B29532465B55}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\raceroom racing experience\RRRELauncher.exe
FirewallRules: [{D4836E6C-5681-46FD-8649-81A780F68BE9}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\raceroom racing experience\RRRELauncher.exe
FirewallRules: [{56AA9AA9-3730-4671-B0E6-F1A25A2D04F7}] => (Allow) C:\Hry\War Thunder\launcher.exe
FirewallRules: [{EB6C791A-711C-42F3-A16B-D94DC387D391}] => (Allow) C:\Hry\War Thunder\launcher.exe
FirewallRules: [{7571AB43-4702-4F68-97C7-81A664FF4D34}] => (Allow) C:\Hry\War Thunder\launcher.exe
FirewallRules: [{829CB94A-CBD7-416E-B040-C35BB9821F98}] => (Allow) C:\Hry\War Thunder\launcher.exe
FirewallRules: [{7E1FF0CB-E23B-4656-9B4D-DBA55A984309}] => (Allow) LPort=80
FirewallRules: [{B74C0F6F-8C0F-4640-AB13-21018E0CF36E}] => (Allow) LPort=80
FirewallRules: [{AD187E9A-E4E9-4D5D-B5B0-3BD3F52D02DB}] => (Allow) LPort=443
FirewallRules: [{9EFF0418-2CAF-497A-9068-D59D6D0B164D}] => (Allow) LPort=443
FirewallRules: [{E0EE1039-4B6F-42F7-B8B7-EC0560C8B76C}] => (Allow) LPort=20010
FirewallRules: [{A806CE01-AEED-4086-9F69-0F50387A6297}] => (Allow) LPort=20010
FirewallRules: [{C550AD79-D843-4E3B-A081-D2C3EDF2AF2C}] => (Allow) LPort=3478
FirewallRules: [{7DB77230-2503-4A99-B001-920B33D3C314}] => (Allow) LPort=3478
FirewallRules: [{FC060088-2051-4015-BF5A-DD3E3881AF33}] => (Allow) LPort=7850
FirewallRules: [{6AC4386D-A6CF-4B18-8AAF-B994B2ACABB7}] => (Allow) LPort=7850
FirewallRules: [{A5A5A087-E664-4CF0-BD89-05B555A03DF1}] => (Allow) LPort=27022
FirewallRules: [{A954A2FD-BF39-4A64-B640-C8B47786CEA6}] => (Allow) LPort=27022
FirewallRules: [{80E47C42-5046-456F-AA65-4C3E3995BDE0}] => (Allow) LPort=6881
FirewallRules: [{F3684080-48D8-47E3-A80E-9793E02AEA20}] => (Allow) LPort=6881
FirewallRules: [{21259BFE-2D8D-48A3-9105-9A644FE3E5DE}] => (Allow) LPort=33333
FirewallRules: [{6B94234F-57B8-4891-AE27-A4F0F602F845}] => (Allow) LPort=33333
FirewallRules: [{0F9B0A90-FA8D-45A2-869A-69A94880F065}] => (Allow) LPort=20443
FirewallRules: [{2FD71847-C7E6-4698-9878-0F7D16ECD28C}] => (Allow) LPort=20443
FirewallRules: [{CE037CD2-E59A-4B6E-98D2-A9990A831243}] => (Allow) LPort=8090
FirewallRules: [{73AB53FF-B80A-439A-9E72-00A58A56F34A}] => (Allow) LPort=8090
FirewallRules: [{169165A3-3094-4A76-8392-2C88B1A86B90}] => (Allow) C:\Program Files (x86)\Teamviewer\Version7\TeamViewer.exe
FirewallRules: [{0F18F953-CE81-4AE2-BFB9-9831BAA6BBA1}] => (Allow) C:\Program Files (x86)\Teamviewer\Version7\TeamViewer.exe
FirewallRules: [{8527C291-9046-47FB-BCDA-9346CB2797D1}] => (Allow) C:\Program Files (x86)\Teamviewer\Version7\TeamViewer_Service.exe
FirewallRules: [{693F55D2-EDC0-46EE-AAD6-CCD53D1690FC}] => (Allow) C:\Program Files (x86)\Teamviewer\Version7\TeamViewer_Service.exe
FirewallRules: [{24AC715E-D0E2-4BBD-8482-E72186CCF973}] => (Allow) C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\UbisoftGameLauncher.exe
FirewallRules: [{BAF2923F-813C-4553-A387-78F28BA28F84}] => (Allow) C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\UbisoftGameLauncher.exe
FirewallRules: [{3DA695A2-58F9-41F6-8205-6CCA32D60102}] => (Allow) C:\Program Files (x86)\Tunngle\TnglCtrl.exe
FirewallRules: [{9B099AD8-E3A0-417A-8A8C-7159875847DB}] => (Allow) C:\Program Files (x86)\Tunngle\TnglCtrl.exe
FirewallRules: [{8D8883F8-F921-46E5-A9E6-A3DA8D97EF9F}] => (Allow) C:\Program Files (x86)\Tunngle\Tunngle.exe
FirewallRules: [{28AF8500-F8C2-49A8-B5C0-DC27D4A89F5A}] => (Allow) C:\Program Files (x86)\Tunngle\Tunngle.exe
FirewallRules: [{1E64E819-4FF2-4C24-8505-5C7E6710634A}] => (Allow) C:\Hry\Heroes & Generals\live\hng.exe
FirewallRules: [{2CD5C47C-59DA-4658-AEBE-F59C1FA37FEE}] => (Allow) C:\Hry\Heroes & Generals\live\hng.exe
FirewallRules: [TCP Query User{1302997A-078C-4508-9585-EEDB84D9F8EA}C:\hry\race injection\racededicatedserver_steam.exe] => (Allow) C:\hry\race injection\racededicatedserver_steam.exe
FirewallRules: [UDP Query User{29B02DCE-9C71-4542-951B-061ECDFC1B81}C:\hry\race injection\racededicatedserver_steam.exe] => (Allow) C:\hry\race injection\racededicatedserver_steam.exe
FirewallRules: [{E5D1C954-C35A-421B-8034-0D210823FE05}] => (Block) C:\hry\race injection\racededicatedserver_steam.exe
FirewallRules: [{605E4B71-E36B-4343-B5AB-46C81CEAA621}] => (Block) C:\hry\race injection\racededicatedserver_steam.exe
FirewallRules: [TCP Query User{5C883087-19FF-40B8-8C61-1898A707A63C}C:\hry\war thunder\aces.exe] => (Allow) C:\hry\war thunder\aces.exe
FirewallRules: [UDP Query User{8AAA0BAE-B152-4219-9930-90E2B9A4E86F}C:\hry\war thunder\aces.exe] => (Allow) C:\hry\war thunder\aces.exe
FirewallRules: [{1A1B651C-92D1-4AD8-A299-EBF86CCA39B8}] => (Block) C:\hry\war thunder\aces.exe
FirewallRules: [{D12CC1F9-B2D9-45CB-BA14-1BF98558BE30}] => (Block) C:\hry\war thunder\aces.exe
FirewallRules: [TCP Query User{D2CA4B3D-3C99-495F-A044-DB8F01224030}C:\users\cpadmin.cc_pracoviste6\downloads\neverwinter_nw.1.20130416a.6.exe] => (Allow) C:\users\cpadmin.cc_pracoviste6\downloads\neverwinter_nw.1.20130416a.6.exe
FirewallRules: [UDP Query User{736E3E41-85DA-40A1-B07B-E00D529C2D14}C:\users\cpadmin.cc_pracoviste6\downloads\neverwinter_nw.1.20130416a.6.exe] => (Allow) C:\users\cpadmin.cc_pracoviste6\downloads\neverwinter_nw.1.20130416a.6.exe
FirewallRules: [{E9BAFD16-8C18-4884-BBBD-DF5C6A1B24F3}] => (Block) C:\users\cpadmin.cc_pracoviste6\downloads\neverwinter_nw.1.20130416a.6.exe
FirewallRules: [{282B5117-22F5-40DC-A46C-34B5B2253CF4}] => (Block) C:\users\cpadmin.cc_pracoviste6\downloads\neverwinter_nw.1.20130416a.6.exe
FirewallRules: [TCP Query User{B8CAC7F4-F43C-4431-815C-3897FF68ED6A}C:\hry\neverwinter\cryptic studios\neverwinter\live\gameclient.exe] => (Allow) C:\hry\neverwinter\cryptic studios\neverwinter\live\gameclient.exe
FirewallRules: [UDP Query User{2041CE9C-C920-4D13-A9F1-D37BAF88424D}C:\hry\neverwinter\cryptic studios\neverwinter\live\gameclient.exe] => (Allow) C:\hry\neverwinter\cryptic studios\neverwinter\live\gameclient.exe
FirewallRules: [{8F3DCF45-61C9-45D0-97FF-5456F6188B3B}] => (Block) C:\hry\neverwinter\cryptic studios\neverwinter\live\gameclient.exe
FirewallRules: [{F621A603-3376-4828-8B87-99D8BD017427}] => (Block) C:\hry\neverwinter\cryptic studios\neverwinter\live\gameclient.exe
FirewallRules: [TCP Query User{33B5BA61-B695-46A3-8E31-2095B0C676F6}C:\hry\lfs\lfs.exe] => (Allow) C:\hry\lfs\lfs.exe
FirewallRules: [UDP Query User{259474EF-5CD5-44AF-A019-5D5B1B58D30B}C:\hry\lfs\lfs.exe] => (Allow) C:\hry\lfs\lfs.exe
FirewallRules: [{780721DB-FEFD-4A2D-B0DD-971686D24E1E}] => (Block) C:\hry\lfs\lfs.exe
FirewallRules: [{A32FC491-4BF9-4FBB-9D54-B597D55A97CC}] => (Block) C:\hry\lfs\lfs.exe
FirewallRules: [{7FC4001F-2F1B-4B0B-940C-F882DB3EE9E5}] => (Allow) C:\Hry\Pro Cycling Manager\PCM.exe
FirewallRules: [{8143D995-766F-41A2-823B-80381A05B593}] => (Allow) C:\Hry\Pro Cycling Manager\PCM.exe
FirewallRules: [{CFF9516C-EC7F-4671-8E09-68C5CC06AEBB}] => (Allow) C:\Hry\Pro Cycling Manager\Autorun\Exe\Autorun.exe
FirewallRules: [{7CC67630-AD4D-4270-9A4B-37CF8DC042D8}] => (Allow) C:\Hry\Pro Cycling Manager\Autorun\Exe\Autorun.exe
FirewallRules: [{B88F3481-0F0A-4FA1-9A63-9A3495494557}] => (Allow) C:\Program Files (x86)\Cyanide\GameCenter\GameCenter.exe
FirewallRules: [{6B28DAA4-B6E5-4700-807E-9985E3EBEB8F}] => (Allow) C:\Program Files (x86)\Cyanide\GameCenter\GameCenter.exe
FirewallRules: [{EABD8596-11DD-43B6-A022-BD0A00C6B009}] => (Allow) C:\Hry\Tour de France 2010\PCM.exe
FirewallRules: [{BF82E653-B68F-45CC-B72F-F41E9C8F2542}] => (Allow) C:\Hry\Tour de France 2010\PCM.exe
FirewallRules: [{1F8CF378-A451-4681-A501-75C7E42C8A80}] => (Allow) C:\Hry\Tour de France 2010\Autorun\Exe\Autorun.exe
FirewallRules: [{FBB38DF0-5BF6-44D6-9C63-C8413562FC27}] => (Allow) C:\Hry\Tour de France 2010\Autorun\Exe\Autorun.exe
FirewallRules: [TCP Query User{B03D6409-2E2D-4C55-8FBE-1E0360C81243}C:\hry\cod4\call of duty modern warfare\iw3mp.exe] => (Allow) C:\hry\cod4\call of duty modern warfare\iw3mp.exe
FirewallRules: [UDP Query User{1A3296CC-E4C4-4D19-98C3-23CFDE3E3956}C:\hry\cod4\call of duty modern warfare\iw3mp.exe] => (Allow) C:\hry\cod4\call of duty modern warfare\iw3mp.exe
FirewallRules: [{5692C503-D515-400F-B91E-D88BE44A9CE3}] => (Block) C:\hry\cod4\call of duty modern warfare\iw3mp.exe
FirewallRules: [{CA179425-10C0-4B6A-80EA-59BB9F8AAA41}] => (Block) C:\hry\cod4\call of duty modern warfare\iw3mp.exe
FirewallRules: [{C89AB52C-8A9E-4CE7-986A-35315EEBD84E}] => (Allow) C:\Hry\cod4\client.exe
FirewallRules: [{95AE4D0F-B0A0-4AA7-B6BC-46740E0EFA7D}] => (Allow) LPort=50088
FirewallRules: [{B3F8F5A9-2EA8-4A10-94F6-DD4857A1B446}] => (Allow) C:\Hry\cod4\core.exe
FirewallRules: [TCP Query User{3C668036-4774-4334-A300-A30FC659F023}C:\hry\simcity 5 - update v1.6\start.exe] => (Allow) C:\hry\simcity 5 - update v1.6\start.exe
FirewallRules: [UDP Query User{25398B97-BC16-4FB3-A60A-CF40CA14F5E4}C:\hry\simcity 5 - update v1.6\start.exe] => (Allow) C:\hry\simcity 5 - update v1.6\start.exe
FirewallRules: [{EC11C55A-2C6A-4421-82DF-B567235DBDB8}] => (Block) C:\hry\simcity 5 - update v1.6\start.exe
FirewallRules: [{91A35BAF-35BB-4942-81EA-4607C7E44CD8}] => (Block) C:\hry\simcity 5 - update v1.6\start.exe
FirewallRules: [TCP Query User{1CE465AB-DC94-412D-B948-A62A380E59E6}C:\hry\simcity 5\start.exe] => (Allow) C:\hry\simcity 5\start.exe
FirewallRules: [UDP Query User{69105A51-0357-4DAB-ACF1-7AAF76E2C8B5}C:\hry\simcity 5\start.exe] => (Allow) C:\hry\simcity 5\start.exe
FirewallRules: [{08F774FA-20ED-4F54-AC49-323B1C8CC533}] => (Block) C:\hry\simcity 5\start.exe
FirewallRules: [{F59CE7CF-9034-4C96-97F6-55B70EF384EA}] => (Block) C:\hry\simcity 5\start.exe
FirewallRules: [TCP Query User{89C4B038-219E-4215-9737-5E2F640AF4A0}C:\hry\simcity5\start.exe] => (Allow) C:\hry\simcity5\start.exe
FirewallRules: [UDP Query User{8A92D051-F95B-4E7B-A37B-FAC511051DC4}C:\hry\simcity5\start.exe] => (Allow) C:\hry\simcity5\start.exe
FirewallRules: [{32E89CD3-52F3-455E-B53B-0A9B1AA0931D}] => (Block) C:\hry\simcity5\start.exe
FirewallRules: [{135A756A-F163-4247-A099-CFE525B14735}] => (Block) C:\hry\simcity5\start.exe
FirewallRules: [TCP Query User{D24C7C5D-137F-4F5E-93BE-A4DFD6060079}C:\hry\simcity\start.exe] => (Allow) C:\hry\simcity\start.exe
FirewallRules: [UDP Query User{548D1B03-CD42-4D82-B948-1718A0CAFE16}C:\hry\simcity\start.exe] => (Allow) C:\hry\simcity\start.exe
FirewallRules: [{6F7E63FE-188E-46EC-9066-D551AF50F066}] => (Block) C:\hry\simcity\start.exe
FirewallRules: [{34AF5C75-4B79-44DF-BFE0-1A504DC0C045}] => (Block) C:\hry\simcity\start.exe
FirewallRules: [TCP Query User{2A758C95-F941-48E5-9BBA-3BC828B62007}C:\hry\simcity2\start.exe] => (Allow) C:\hry\simcity2\start.exe
FirewallRules: [UDP Query User{AEDE8C77-B3F0-4193-9239-E812F8D46985}C:\hry\simcity2\start.exe] => (Allow) C:\hry\simcity2\start.exe
FirewallRules: [TCP Query User{00D6ABF4-14F8-415B-9E01-B43C4D05DFBD}C:\users\cpadmin.cc_pracoviste6\desktop\simcity\start.exe] => (Allow) C:\users\cpadmin.cc_pracoviste6\desktop\simcity\start.exe
FirewallRules: [UDP Query User{56A81F0C-0515-43AE-BD62-8F797556C1BD}C:\users\cpadmin.cc_pracoviste6\desktop\simcity\start.exe] => (Allow) C:\users\cpadmin.cc_pracoviste6\desktop\simcity\start.exe
FirewallRules: [TCP Query User{6093B81B-12B6-47AC-B915-2F7D3C391F91}C:\users\cpadmin.cc_pracoviste6\appdata\roaming\ubisoft\mmdoc-pdclive\launcher.exe] => (Allow) C:\users\cpadmin.cc_pracoviste6\appdata\roaming\ubisoft\mmdoc-pdclive\launcher.exe
FirewallRules: [UDP Query User{152FD99D-AE77-4B83-9A22-80253F1D26CE}C:\users\cpadmin.cc_pracoviste6\appdata\roaming\ubisoft\mmdoc-pdclive\launcher.exe] => (Allow) C:\users\cpadmin.cc_pracoviste6\appdata\roaming\ubisoft\mmdoc-pdclive\launcher.exe
FirewallRules: [TCP Query User{2D36FB4F-45BB-446E-A55D-8EF2606B2960}C:\users\cpadmin.cc_pracoviste6\appdata\roaming\ubisoft\mmdoc-pdclive\gamedata\game.exe] => (Allow) C:\users\cpadmin.cc_pracoviste6\appdata\roaming\ubisoft\mmdoc-pdclive\gamedata\game.exe
FirewallRules: [UDP Query User{D83AFA22-E605-43EF-BEE7-A8D28848B3EF}C:\users\cpadmin.cc_pracoviste6\appdata\roaming\ubisoft\mmdoc-pdclive\gamedata\game.exe] => (Allow) C:\users\cpadmin.cc_pracoviste6\appdata\roaming\ubisoft\mmdoc-pdclive\gamedata\game.exe
FirewallRules: [{7712D7FE-0345-4196-BEF5-01D7E25BFF25}] => (Allow) C:\Hry\WOW\WoW-x.x.x.x-4.0.0.12911-Downloader.exe
FirewallRules: [{B2BB3DA3-F056-48F8-A7C5-5702362BB35D}] => (Allow) C:\Hry\WOW\WoW-x.x.x.x-4.0.0.12911-Downloader.exe
FirewallRules: [TCP Query User{09FAAB20-66BE-474E-AF66-575DD351BEF5}C:\windows\system32\java.exe] => (Allow) C:\windows\system32\java.exe
FirewallRules: [UDP Query User{96873C27-2E04-4131-B734-9B229A9DDBA4}C:\windows\system32\java.exe] => (Allow) C:\windows\system32\java.exe
FirewallRules: [TCP Query User{958D1AD4-48FF-426B-BB9C-83ADE6A04FCE}C:\program files\java\jre7\bin\javaw.exe] => (Allow) C:\program files\java\jre7\bin\javaw.exe
FirewallRules: [UDP Query User{4C150032-F93F-4E09-99CD-E5470FE5E293}C:\program files\java\jre7\bin\javaw.exe] => (Allow) C:\program files\java\jre7\bin\javaw.exe
FirewallRules: [TCP Query User{AFACF48B-1383-4446-A400-5ED2FEEA9AC6}C:\hry\swat\swat 4\contentexpansion\system\swat4x.exe] => (Allow) C:\hry\swat\swat 4\contentexpansion\system\swat4x.exe
FirewallRules: [UDP Query User{E72EDC03-46D2-43AC-ABC6-E51CA86A0EB9}C:\hry\swat\swat 4\contentexpansion\system\swat4x.exe] => (Allow) C:\hry\swat\swat 4\contentexpansion\system\swat4x.exe
FirewallRules: [TCP Query User{8EF12C82-79C2-481B-AE17-6B46FCE9E8DF}C:\hry\planetside2\planetside2.exe] => (Allow) C:\hry\planetside2\planetside2.exe
FirewallRules: [UDP Query User{63963F17-9EAF-4568-AB84-84273DB09FD6}C:\hry\planetside2\planetside2.exe] => (Allow) C:\hry\planetside2\planetside2.exe
FirewallRules: [{BD1BF59F-6738-48A1-AC3D-A2C219C6D674}] => (Allow) C:\Hry\Nová složka\Downloaded\Public\Warframe.exe
FirewallRules: [{7BD31479-82BE-4F54-9431-64F09AF8A54C}] => (Allow) C:\Hry\Nová složka\Downloaded\Public\Warframe.x64.exe
FirewallRules: [{D52CDCE8-75D6-4C93-A39C-C76844BC1CA8}] => (Allow) C:\Hry\Nová složka\Downloaded\Public\Warframe.exe
FirewallRules: [{DA2DAB97-F388-4E68-A148-C1C18B52D9BC}] => (Allow) C:\Hry\Nová složka\Downloaded\Public\Warframe.x64.exe
FirewallRules: [{AEFDBB31-9A0E-40E3-825C-D9555D9656AC}] => (Allow) C:\Hry\Nová složka\Downloaded\Public\Warframe.exe
FirewallRules: [{8D46625A-255A-44D3-A156-1395EE08BDD7}] => (Allow) C:\Hry\Nová složka\Downloaded\Public\Warframe.x64.exe
FirewallRules: [{74C6F709-70F6-4AA3-B09A-8838E45827DE}] => (Allow) C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Warframe\Downloaded\Public\Tools\Launcher.exe
FirewallRules: [{C1AC711B-D0B6-4969-A8CC-B644E7B4C01D}] => (Allow) C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Warframe\Downloaded\Public\Tools\RemoteCrashSender.exe
FirewallRules: [TCP Query User{3EF08A2A-2762-405F-AD3B-F47CC08BC117}C:\hry\neverwinter\neverwinter_en\neverwinter\live\gameclient.exe] => (Allow) C:\hry\neverwinter\neverwinter_en\neverwinter\live\gameclient.exe
FirewallRules: [UDP Query User{4D74F9BB-9098-48E1-B886-DAF50D9C0D6E}C:\hry\neverwinter\neverwinter_en\neverwinter\live\gameclient.exe] => (Allow) C:\hry\neverwinter\neverwinter_en\neverwinter\live\gameclient.exe
FirewallRules: [{8B0C4811-21E8-4157-9AA5-E805D7D5B7C0}] => (Allow) C:\Hry\simcity\SimCity 2013 Offline\SimCity\SimCity.exe
FirewallRules: [{BDC683F5-8B84-4C4C-BE42-C5366E288857}] => (Allow) C:\Hry\simcity\SimCity 2013 Offline\SimCity\SimCity.exe
FirewallRules: [{9016B3D6-C3D0-4346-A193-F777219FF606}] => (Allow) C:\Hry\WarThunder_Nightly\launcher.exe
FirewallRules: [{B8392F5A-FA36-4625-907A-1A24A1D6F38F}] => (Allow) C:\Hry\WarThunder_Nightly\launcher.exe
FirewallRules: [{8C2ECA3E-C784-4795-A3B3-D4FE3D1026F9}] => (Allow) LPort=7852
FirewallRules: [{B90AC3D9-2490-4D98-A0E3-3FD7C528070C}] => (Allow) LPort=7853
FirewallRules: [TCP Query User{0C987CCC-2BA4-4658-908A-BA01730A3705}C:\hry\warthunder_nightly\aces.exe] => (Allow) C:\hry\warthunder_nightly\aces.exe
FirewallRules: [UDP Query User{52706254-8E3C-4460-BBC9-ADCA402CC001}C:\hry\warthunder_nightly\aces.exe] => (Allow) C:\hry\warthunder_nightly\aces.exe
FirewallRules: [TCP Query User{C6CD5E4C-7558-4B8F-90BF-9A7E03FE759C}C:\hry\marvel heroes game\unrealengine3\binaries\win32\marvelheroes2015.exe] => (Allow) C:\hry\marvel heroes game\unrealengine3\binaries\win32\marvelheroes2015.exe
FirewallRules: [UDP Query User{7F0E6E82-20A7-4A02-89DE-8352804A27D4}C:\hry\marvel heroes game\unrealengine3\binaries\win32\marvelheroes2015.exe] => (Allow) C:\hry\marvel heroes game\unrealengine3\binaries\win32\marvelheroes2015.exe
FirewallRules: [{4E41D855-9489-40E2-B921-07C60151A8AE}] => (Allow) C:\Hry\Star Wars-The Old Republic\launcher.exe
FirewallRules: [{E478FBAF-68AF-430C-A1E9-AEDECC36259F}] => (Allow) C:\Hry\Star Wars-The Old Republic\launcher.exe
FirewallRules: [{D65D3821-73EB-4E2F-ADC5-CF3D3BF66F25}] => (Allow) C:\Hry\Star Wars-The Old Republic\launcher.exe
FirewallRules: [{E2460046-15E6-4FE0-8B4E-4B32D6EAE3B7}] => (Allow) C:\Hry\Star Wars-The Old Republic\launcher.exe
FirewallRules: [{C77401EB-0706-46CB-AB98-4D268CD38C2E}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{5FFE3F21-EEEC-4C16-9D33-8819011A64B8}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{3D9766E0-F79B-4491-8E73-B3ED4A05161E}] => (Allow) C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{FD54994E-8660-424E-A9CD-3A3371F12153}] => (Allow) C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [TCP Query User{4291F807-554A-4AEC-8E0E-15E845779E56}C:\hry\rust\rust_server.exe] => (Allow) C:\hry\rust\rust_server.exe
FirewallRules: [UDP Query User{8DBA78FE-2D17-4472-9E76-ADF6C157373C}C:\hry\rust\rust_server.exe] => (Allow) C:\hry\rust\rust_server.exe
FirewallRules: [{853BA83C-95CC-4838-A2E5-B73E24F7829D}] => (Allow) C:\ProgramData\HappyCloud\Cache\TERA\TERA-Launcher.exe
FirewallRules: [{0AFF73B8-6783-499D-AC97-DE7957D385C3}] => (Allow) C:\ProgramData\HappyCloud\Cache\TERA\TERA-Launcher.exe
FirewallRules: [{50CA59AD-8598-45AD-91D4-EFFBD8EBE063}] => (Allow) C:\ProgramData\HappyCloud\Cache\TERA\Client\TL.exe
FirewallRules: [{290010BE-26BA-470F-8D13-9FF41AE2E247}] => (Allow) C:\ProgramData\HappyCloud\Cache\TERA\Client\TL.exe
FirewallRules: [{3276BF1C-7690-4910-924E-DA556BFE996B}] => (Allow) C:\ProgramData\HappyCloud\Cache\TERA\Client\Binaries\TERA.exe
FirewallRules: [{AAEA974B-D786-4CE9-8696-4C05AC6D1BE7}] => (Allow) C:\ProgramData\HappyCloud\Cache\TERA\Client\Binaries\TERA.exe
FirewallRules: [TCP Query User{CE473455-0540-4FB7-BEF7-ECF901328974}C:\hry\champions online_en\champions online\live\gameclient.exe] => (Allow) C:\hry\champions online_en\champions online\live\gameclient.exe
FirewallRules: [UDP Query User{E16FF2A1-AD1C-481E-9170-59147F0F11B9}C:\hry\champions online_en\champions online\live\gameclient.exe] => (Allow) C:\hry\champions online_en\champions online\live\gameclient.exe
FirewallRules: [{051C72BC-5507-4179-AACC-992DD0BA693B}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
FirewallRules: [{312E8EAC-CDD8-4984-96CC-6603AB533AB3}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
FirewallRules: [TCP Query User{99690524-06D2-4513-8435-C38E7629460A}C:\hry\marvel heroes game\unrealengine3\binaries\win64\marvelheroes2015.exe] => (Allow) C:\hry\marvel heroes game\unrealengine3\binaries\win64\marvelheroes2015.exe
FirewallRules: [UDP Query User{9F5C9105-7791-4B6F-A2D3-914049B101BB}C:\hry\marvel heroes game\unrealengine3\binaries\win64\marvelheroes2015.exe] => (Allow) C:\hry\marvel heroes game\unrealengine3\binaries\win64\marvelheroes2015.exe
FirewallRules: [TCP Query User{737C2E66-B901-4664-956D-57D7C9CCEC83}C:\hry\tdu\testdriveunlimited.exe] => (Allow) C:\hry\tdu\testdriveunlimited.exe
FirewallRules: [UDP Query User{BAA1F2CD-52DD-42D3-A244-1D1922AB1D37}C:\hry\tdu\testdriveunlimited.exe] => (Allow) C:\hry\tdu\testdriveunlimited.exe
FirewallRules: [{5E96A88B-9B5B-4E7F-BFB0-7657527C7172}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe
FirewallRules: [TCP Query User{EEE2281A-0541-47C1-9B8B-CE40F0905ECC}C:\hry\záloha tdu\testdriveunlimited.exe] => (Block) C:\hry\záloha tdu\testdriveunlimited.exe
FirewallRules: [UDP Query User{0189DDA6-56DC-42A9-A435-B326ED864B9C}C:\hry\záloha tdu\testdriveunlimited.exe] => (Block) C:\hry\záloha tdu\testdriveunlimited.exe
FirewallRules: [TCP Query User{AF4395FD-67AA-4A2C-B514-B315C0D775D6}C:\hry\grand theft auto v\gta5.exe] => (Block) C:\hry\grand theft auto v\gta5.exe
FirewallRules: [UDP Query User{6D73FD5E-89C3-4CCA-8D8C-0CAB33E62903}C:\hry\grand theft auto v\gta5.exe] => (Block) C:\hry\grand theft auto v\gta5.exe
FirewallRules: [TCP Query User{5B0C843A-D1E8-4F40-9D9F-920B7AACA4B8}C:\hry\grand theft auto v\gta5.exe] => (Block) C:\hry\grand theft auto v\gta5.exe
FirewallRules: [UDP Query User{3EEC68E5-36AD-4799-AE89-4DFF7C38EC68}C:\hry\grand theft auto v\gta5.exe] => (Block) C:\hry\grand theft auto v\gta5.exe
FirewallRules: [{12BEB985-706C-462C-9C40-615D7D4BD5A6}] => (Allow) C:\Program Files (x86)\Tunngle\TnglCtrl.exe
FirewallRules: [{67A2C6F4-44CE-462E-ABAC-23DBB91AF09B}] => (Allow) C:\Program Files (x86)\Tunngle\TnglCtrl.exe
FirewallRules: [{9AE6225A-5DE0-4FD6-8062-2DF47A813034}] => (Allow) C:\Program Files (x86)\Tunngle\Tunngle.exe
FirewallRules: [{76BB90D3-D15C-43ED-A94F-8E7E51D9EC2F}] => (Allow) C:\Program Files (x86)\Tunngle\Tunngle.exe
FirewallRules: [TCP Query User{C7412887-5649-4693-B5B2-616F3121FA64}C:\program files (x86)\steam\steamapps\common\total war arena\arena.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\total war arena\arena.exe
FirewallRules: [UDP Query User{CBA8941E-0E6D-4EC8-AE13-D983328DF651}C:\program files (x86)\steam\steamapps\common\total war arena\arena.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\total war arena\arena.exe
FirewallRules: [{BB755FBE-4671-4F96-AEC4-C93619084CF5}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Total War Arena\launcher\launcher.exe
FirewallRules: [{28C27B60-5765-4207-9D59-0C41EA98FDC8}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Total War Arena\launcher\launcher.exe
FirewallRules: [TCP Query User{4342AAE9-4499-4F79-BB8E-6AFB8BD9C669}C:\hry\empyrion\empyrion.galactic.survival.v2.0.2\empyrion.exe] => (Allow) C:\hry\empyrion\empyrion.galactic.survival.v2.0.2\empyrion.exe
FirewallRules: [UDP Query User{9072057B-CA35-4919-A1FB-1EC0D93EA2E9}C:\hry\empyrion\empyrion.galactic.survival.v2.0.2\empyrion.exe] => (Allow) C:\hry\empyrion\empyrion.galactic.survival.v2.0.2\empyrion.exe
FirewallRules: [{FE52C123-E8DB-43F9-BDCB-5C077F657796}] => (Allow) C:\Users\CPadmin.CC_PRACOVISTE6\Downloads\fo3Installer.exe
FirewallRules: [{D7B2EE05-4F49-4CD6-9FA2-8D0007C3478C}] => (Allow) C:\Users\CPadmin.CC_PRACOVISTE6\Downloads\fo3Installer.exe
FirewallRules: [{94645AB7-84C9-42B4-BF0A-6C6A9AA07296}] => (Allow) C:\Windows\SysWOW64\rundll32.exe
FirewallRules: [{7A8053A1-783F-40AD-9D64-C27F2D703D17}] => (Allow) C:\Program Files (x86)\Garena Plus\ggdllhost.exe
FirewallRules: [{59EE655F-ED59-4544-A7DC-5B4BC7D13A25}] => (Allow) C:\GarenaDownload\Games\fo3th\fo3thInstaller.exe
FirewallRules: [{C2DC91AC-BFBF-4AC1-AB1A-3361CCD48D21}] => (Allow) C:\GarenaDownload\Games\fo3th\fo3thInstaller.exe
FirewallRules: [{5F36CB87-36AD-4C9A-84EA-CF46210A1889}] => (Allow) C:\Hry\fifa online3\GameData\Apps\FO3TH\fifazf.exe
FirewallRules: [{B4701706-A3D5-4B70-8B96-53EA45294528}] => (Allow) C:\Hry\fifa online3\GameData\Apps\FO3TH\fifazf.exe
FirewallRules: [{1C064EAD-5025-4655-ABE0-E7D7426B8CF7}] => (Allow) C:\GarenaDownload\Games\fo3\fo3Installer.exe
FirewallRules: [{6B3F21A7-D3DF-42F2-A7F3-E8F06A03896C}] => (Allow) C:\GarenaDownload\Games\fo3\fo3Installer.exe
FirewallRules: [{DCE2E4F9-10F9-4C0E-9439-753164D5CD6F}] => (Allow) C:\Hry\fifa online3\GameData\Apps\FO3\fifazf.exe
FirewallRules: [{A3CFEA64-0558-4452-92D9-2436B62DCB00}] => (Allow) C:\Hry\fifa online3\GameData\Apps\FO3\fifazf.exe
FirewallRules: [{2FCEBB11-6B01-439D-8869-63AABB35E132}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe
FirewallRules: [{4BE75540-CB4F-4DA2-A1B7-CD42EC765AC6}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe
FirewallRules: [{C41806DC-B176-409E-8AE4-F0416DC5F7C2}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe
FirewallRules: [{862492A3-CF60-4B79-B965-E1181BEE761A}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe
FirewallRules: [{C1B9337F-299C-4CE4-A5AC-AFE3C5D42E7B}] => (Allow) C:\Hry\Project Reality BF2\prbf2.exe
FirewallRules: [{95301FEB-14E1-41AB-BD84-FF43DB8FE87C}] => (Allow) C:\Hry\Project Reality BF2\mods\pr\bin\PRLauncher.exe
FirewallRules: [{375CA497-7C2E-4F74-9695-75CD05EFC692}] => (Allow) C:\Hry\Project Reality BF2\mods\pr\bin\PRUpdater.exe
FirewallRules: [{13626C57-DB19-4966-8E8E-0744D528299B}] => (Allow) C:\Hry\Project Reality BF2\mods\pr\bin\PRMumble\PRMumble.exe
FirewallRules: [{5A4DED4C-B3EA-48ED-994B-8FA3F165E9D2}] => (Allow) C:\Program Files (x86)\Raptr\raptr.exe
FirewallRules: [{06E6C01E-0BA0-4F7C-84E1-38CACA0A1445}] => (Allow) C:\Program Files (x86)\Raptr\raptr.exe
FirewallRules: [{F16BE4D9-F149-4DC6-A415-DD33285539C5}] => (Allow) C:\Program Files (x86)\Raptr\raptr_im.exe
FirewallRules: [{191E6C31-8F73-4EAB-B563-8588479399E4}] => (Allow) C:\Program Files (x86)\Raptr\raptr_im.exe
FirewallRules: [TCP Query User{8B7FEAFA-01BD-4045-ABB2-CDCF0329B543}C:\hry\planetside\planetside2_x64.exe] => (Allow) C:\hry\planetside\planetside2_x64.exe
FirewallRules: [UDP Query User{9BA9CF75-28FD-42FA-A5D6-E40B2013DA8F}C:\hry\planetside\planetside2_x64.exe] => (Allow) C:\hry\planetside\planetside2_x64.exe
FirewallRules: [{75C751E9-1728-4675-9384-D9023BE39DEF}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Robocraft\Robocraft.exe
FirewallRules: [{922C7B8C-25CB-4FBA-B7BE-28A6D2C06988}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Robocraft\Robocraft.exe
FirewallRules: [TCP Query User{B3FCF513-4F1F-4527-B22A-EE16F53A630D}C:\hry\neverwinter_en\neverwinter\live\gameclient.exe] => (Allow) C:\hry\neverwinter_en\neverwinter\live\gameclient.exe
FirewallRules: [UDP Query User{A1D16BBF-28B3-4EBA-9E29-99CB30DB6695}C:\hry\neverwinter_en\neverwinter\live\gameclient.exe] => (Allow) C:\hry\neverwinter_en\neverwinter\live\gameclient.exe
FirewallRules: [TCP Query User{75D0A0E9-71E8-42B8-A453-7D9C88FA8F74}C:\hry\smite\hirezgames\smite\binaries\win32\smite.exe] => (Allow) C:\hry\smite\hirezgames\smite\binaries\win32\smite.exe
FirewallRules: [UDP Query User{057F9493-3EA7-4EA6-B3DB-33575EADC934}C:\hry\smite\hirezgames\smite\binaries\win32\smite.exe] => (Allow) C:\hry\smite\hirezgames\smite\binaries\win32\smite.exe
FirewallRules: [{E45701AF-9D69-4BE6-B3F6-77F4CDC105E7}] => (Allow) C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Google\Chrome\Application\chrome.exe

==================== Restore Points =========================

15-01-2016 01:32:48 Installed Hi-Rez Studios Games
15-01-2016 01:37:17 Installed Hi-Rez Studios Games
15-01-2016 02:04:02 Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030
15-01-2016 02:04:31 Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727
15-01-2016 02:05:36 Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030
15-01-2016 02:06:56 Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727
15-01-2016 02:08:14 Nainstalováno rozhraní DirectX
17-01-2016 04:24:09 Windows Update
17-01-2016 19:00:27 Windows Zálohování

==================== Faulty Device Manager Devices =============

Name: Hamachi Network Interface
Description: Hamachi Network Interface
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: LogMeIn, Inc.
Service: hamachi
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.


==================== Event log errors: =========================

Application errors:
==================
Error: (01/17/2016 08:13:04 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program FRST64.exe verze 3.3.14.2 přestal spolupracovat se systémem Windows a byl ukončen. Chcete-li zjistit, zda je k dispozici více informací o tomto problému, vyhledejte historii problému v ovládacím panelu Centrum akcí.

ID procesu: 1cc

Čas spuštění: 01d1515a98e50f30

Čas ukončení: 4

Cesta k aplikaci: C:\Users\CPadmin.CC_PRACOVISTE6\Desktop\FRST64.exe

ID hlášení:

Error: (01/17/2016 07:00:29 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: )
Description: Služba Šifrování selhala při volání OnIdentity() v objektu System Writer.

Details:
AddWin32ServiceFiles: Unable to back up image of service WdMan Service since QueryServiceConfig API failed

System Error:
Systém nemůže nalézt uvedený soubor.
.

Error: (01/17/2016 04:36:03 AM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program majmp_gentlerow.tmp verze 51.52.0.0 přestal spolupracovat se systémem Windows a byl ukončen. Chcete-li zjistit, zda je k dispozici více informací o tomto problému, vyhledejte historii problému v ovládacím panelu Centrum akcí.

ID procesu: 1430

Čas spuštění: 01d150d7fe00efc0

Čas ukončení: 0

Cesta k aplikaci: C:\Users\CPADMI~1.CC_\AppData\Local\Temp\is-63REP.tmp\majmp_gentlerow.tmp

ID hlášení:

Error: (01/17/2016 04:24:44 AM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: )
Description: Služba Šifrování selhala při volání OnIdentity() v objektu System Writer.

Details:
AddWin32ServiceFiles: Unable to back up image of service WdMan Service since QueryServiceConfig API failed

System Error:
Systém nemůže nalézt uvedený soubor.
.

Error: (01/15/2016 05:41:20 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program dlmgn.exe verze 3.1.50.0 přestal spolupracovat se systémem Windows a byl ukončen. Chcete-li zjistit, zda je k dispozici více informací o tomto problému, vyhledejte historii problému v ovládacím panelu Centrum akcí.

ID procesu: e6c

Čas spuštění: 01d14fb377d3e210

Čas ukončení: 6

Cesta k aplikaci: C:\Users\CPADMI~1.CC_\AppData\Local\Temp\nslF18C.tmp\dlmgn.exe

ID hlášení:

Error: (01/15/2016 05:41:04 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program gentlemjmp_irow.tmp verze 51.52.0.0 přestal spolupracovat se systémem Windows a byl ukončen. Chcete-li zjistit, zda je k dispozici více informací o tomto problému, vyhledejte historii problému v ovládacím panelu Centrum akcí.

ID procesu: bb0

Čas spuštění: 01d14fb362f41a40

Čas ukončení: 5

Cesta k aplikaci: C:\Users\CPADMI~1.CC_\AppData\Local\Temp\is-BKQB3.tmp\gentlemjmp_irow.tmp

ID hlášení:

Error: (01/15/2016 05:41:04 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program majmp_gentlerow.tmp verze 51.52.0.0 přestal spolupracovat se systémem Windows a byl ukončen. Chcete-li zjistit, zda je k dispozici více informací o tomto problému, vyhledejte historii problému v ovládacím panelu Centrum akcí.

ID procesu: 16c4

Čas spuštění: 01d14fb353dc93c0

Čas ukončení: 6

Cesta k aplikaci: C:\Users\CPADMI~1.CC_\AppData\Local\Temp\is-JJP0E.tmp\majmp_gentlerow.tmp

ID hlášení:

Error: (01/15/2016 06:23:05 AM) (Source: ESENT) (EventID: 215) (User: )
Description: WinMail (3480) WindowsMail0: Zálohování bylo ukončeno, protože bylo zastaveno klientem nebo protože se nezdařilo připojení ke klientovi.

Error: (01/15/2016 06:11:16 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: Setup.exe_Punch3.0.0.1340Club3.0.0.1340Deluxe3.0.0.1340Edition3.0.0.1340v1.0, verze: 3.0.0.134, časové razítko: 0x56987f5e
Název chybujícího modulu: KERNELBASE.dll, verze: 6.1.7601.19110, časové razítko: 0x56842600
Kód výjimky: 0xe06d7363
Posun chyby: 0x0000c42d
ID chybujícího procesu: 0xa94
Čas spuštění chybující aplikace: 0xSetup.exe_Punch3.0.0.1340Club3.0.0.1340Deluxe3.0.0.1340Edition3.0.0.1340v1.00
Cesta k chybující aplikaci: Setup.exe_Punch3.0.0.1340Club3.0.0.1340Deluxe3.0.0.1340Edition3.0.0.1340v1.01
Cesta k chybujícímu modulu: Setup.exe_Punch3.0.0.1340Club3.0.0.1340Deluxe3.0.0.1340Edition3.0.0.1340v1.02
ID zprávy: Setup.exe_Punch3.0.0.1340Club3.0.0.1340Deluxe3.0.0.1340Edition3.0.0.1340v1.03

Error: (01/15/2016 01:36:23 AM) (Source: HiRezSoftwareManagerSvc) (EventID: 0) (User: )
Description: Službu nelze spustit. Proces služby se nemohl připojit k síťovému řadiči


System errors:
=============
Error: (01/17/2016 08:27:13 PM) (Source: Service Control Manager) (EventID: 7032) (User: )
Description: Správce služeb se pokusil o opravnou akci (Restartovat službu) po nečekaném ukončení služby Windows Search, ale tato akce selhala kvůli následující chybě:
%%1056

Error: (01/17/2016 08:26:48 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba Stínová kopie svazku byla neočekávaně ukončena. Tento stav nastal již 1krát.

Error: (01/17/2016 08:26:46 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba WindowsMangerProtect Service byla neočekávaně ukončena. Tento stav nastal již 1krát.

Error: (01/17/2016 08:26:44 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Služba Windows Media Player Network Sharing byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 30000 milisekund: Restartovat službu.

Error: (01/17/2016 08:26:43 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Windows Search byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 30000 milisekund: Restartovat službu.

Error: (01/17/2016 08:26:42 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Instalační služba modulů systému Windows byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 120000 milisekund: Restartovat službu.

Error: (01/17/2016 08:26:42 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba VNC Server Version 4 byla neočekávaně ukončena. Tento stav nastal již 1krát.

Error: (01/17/2016 08:26:41 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba WdMan Service byla neočekávaně ukončena. Tento stav nastal již 1krát.

Error: (01/17/2016 08:26:41 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba Fujitsu Diagnostic Testhandler byla neočekávaně ukončena. Tento stav nastal již 1krát.

Error: (01/17/2016 08:26:41 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba PnkBstrA byla neočekávaně ukončena. Tento stav nastal již 1krát.


CodeIntegrity:
===================================
Date: 2012-11-30 19:38:10.648
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\MassDfu.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2012-11-30 19:38:10.554
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\MassDfu.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2012-11-30 19:32:59.470
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\MassDfu.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2012-11-30 19:32:59.361
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\MassDfu.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2012-11-12 15:49:51.754
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\l3codeca.acm because the set of per-page image hashes could not be found on the system.

Date: 2012-11-11 17:25:52.623
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\l3codeca.acm because the set of per-page image hashes could not be found on the system.

Date: 2012-11-11 16:19:21.811
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\l3codeca.acm because the set of per-page image hashes could not be found on the system.

Date: 2012-11-11 16:08:51.082
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\l3codeca.acm because the set of per-page image hashes could not be found on the system.

Date: 2012-11-11 16:03:09.604
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\l3codeca.acm because the set of per-page image hashes could not be found on the system.

Date: 2012-11-09 09:09:56.872
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\l3codeca.acm because the set of per-page image hashes could not be found on the system.


==================== Memory info ===========================

Processor: Intel(R) Core(TM)2 Quad CPU Q8300 @ 2.50GHz
Percentage of memory in use: 64%
Total physical RAM: 4094.42 MB
Available physical RAM: 1444.99 MB
Total Virtual: 8187.05 MB
Available Virtual: 4456.92 MB

==================== Drives ================================

Drive c: (System) (Fixed) (Total:463.75 GB) (Free:145.78 GB) NTFS ==>[system with boot components (obtained from drive)]

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: 27987793)
Partition 1: (Active) - (Size=2 GB) - (Type=27)
Partition 2: (Not Active) - (Size=463.8 GB) - (Type=07 NTFS)

==================== End of Addition.txt ============================

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119673
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: prosím o kontrolu logu

#7 Příspěvek od Rudy »

Otevřte poznámkový blok a zkopírujte do něj:
Start
CustomCLSID: HKU\S-1-5-21-3730321190-864032766-3096031451-1004_Classes\CLSID\{0F22A205-CFB0-4679-8499-A6F44A80A208}\InprocServer32 -> C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Google\Update\1.3.25.5\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3730321190-864032766-3096031451-1004_Classes\CLSID\{1423F872-3F7F-4E57-B621-8B1A9D49B448}\InprocServer32 -> C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Google\Update\1.3.27.5\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3730321190-864032766-3096031451-1004_Classes\CLSID\{355EC88A-02E2-4547-9DEE-F87426484BD1}\InprocServer32 -> C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Google\Update\1.3.23.9\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3730321190-864032766-3096031451-1004_Classes\CLSID\{5C8C2A98-6133-4EBA-BBCC-34D9EA01FC2E}\InprocServer32 -> C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Google\Update\1.3.28.1\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3730321190-864032766-3096031451-1004_Classes\CLSID\{78550997-5DEF-4A8A-BAF9-D5774E87AC98}\InprocServer32 -> C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Google\Update\1.3.28.13\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3730321190-864032766-3096031451-1004_Classes\CLSID\{90B3DFBF-AF6A-4EA0-8899-F332194690F8}\InprocServer32 -> C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Google\Update\1.3.24.15\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3730321190-864032766-3096031451-1004_Classes\CLSID\{C3BC25C0-FCD3-4F01-AFDD-41373F017C9A}\InprocServer32 -> C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Google\Update\1.3.26.9\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3730321190-864032766-3096031451-1004_Classes\CLSID\{CC182BE1-84CE-4A57-B85C-FD4BBDF78CB2}\InprocServer32 -> C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Google\Update\1.3.29.1\psuser_64.dll (Google Inc.)
CustomCLSID: HKU\S-1-5-21-3730321190-864032766-3096031451-1004_Classes\CLSID\{D0336C0B-7919-4C04-8CCE-2EBAE2ECE8C9}\InprocServer32 -> C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Google\Update\1.3.25.11\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3730321190-864032766-3096031451-1004_Classes\CLSID\{D1EDC4F5-7F4D-4B12-906A-614ECF66DDAF}\InprocServer32 -> C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Google\Update\1.3.28.15\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3730321190-864032766-3096031451-1004_Classes\CLSID\{E8CF3E55-F919-49D9-ABC0-948E6CB34B9F}\InprocServer32 -> C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Google\Update\1.3.29.1\psuser_64.dll (Google Inc.)
CustomCLSID: HKU\S-1-5-21-3730321190-864032766-3096031451-1004_Classes\CLSID\{FE498BAB-CB4C-4F88-AC3F-3641AAAF5E9E}\InprocServer32 -> C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Google\Update\1.3.24.7\psuser_64.dll => No File
Task: {12B59A81-7544-4683-829A-4D442BE3C2D3} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3404362962-4107995047-1605947123-2005UA => C:\Users\cc2018\AppData\Local\Google\Update\GoogleUpdate.exe [2011-06-13] (Google Inc.)
Task: {29CBA10B-3858-4462-B50C-3D5B25B9C80D} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3404362962-4107995047-1605947123-2005Core => C:\Users\cc2018\AppData\Local\Google\Update\GoogleUpdate.exe [2011-06-13] (Google Inc.)
Task: {2E7506E9-C894-4F99-8496-BA44AC56A42D} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3730321190-864032766-3096031451-1004UA => C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Google\Update\GoogleUpdate.exe [2015-08-29] (Google Inc.)
Task: {76B2C60C-2EE3-4130-9837-B7103233F8E8} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3404362962-4107995047-1605947123-2004Core => C:\Users\cc2017\AppData\Local\Google\Update\GoogleUpdate.exe [2010-10-21] (Google Inc.)
Task: {7D315757-13F2-4F6C-9996-54FFF9083AFE} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3404362962-4107995047-1605947123-2075UA => C:\Users\cc2024\AppData\Local\Google\Update\GoogleUpdate.exe [2011-04-29] (Google Inc.)
Task: {82EC336C-435E-4014-A8CB-A8ABB8327C01} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3404362962-4107995047-1605947123-1883Core => C:\Users\cc2001\AppData\Local\Google\Update\GoogleUpdate.exe [2011-10-25] (Google Inc.)
Task: {87AC503C-DEC2-4FCB-B8CF-F17863AAA7A4} - System32\Tasks\{CEDA468C-5B6F-4879-94D7-7488CD41F887} => pcalua.exe -a D:\install.exe -d D:\
Task: {B3CF7A98-E809-447C-8EF8-C291A7E913F1} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3404362962-4107995047-1605947123-1883UA => C:\Users\cc2001\AppData\Local\Google\Update\GoogleUpdate.exe [2011-10-25] (Google Inc.)
Task: {B694A2ED-E29D-4058-9199-E7921CC36A07} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3404362962-4107995047-1605947123-1886Core => C:\Users\cc2004\AppData\Local\Google\Update\GoogleUpdate.exe [2011-06-03] (Google Inc.)
Task: {D08CDAD6-2524-4732-97F3-DD999D2A8707} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3404362962-4107995047-1605947123-1981Core => C:\Users\cc2014\AppData\Local\Google\Update\GoogleUpdate.exe [2010-10-01] (Google Inc.)
Task: {E0AB0E58-8DAE-418D-B553-D6481A7F99D4} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3404362962-4107995047-1605947123-2004UA => C:\Users\cc2017\AppData\Local\Google\Update\GoogleUpdate.exe [2010-10-21] (Google Inc.)
Task: {FDFBF62C-9060-4402-922F-4868CC1CB1C5} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3404362962-4107995047-1605947123-1981UA => C:\Users\cc2014\AppData\Local\Google\Update\GoogleUpdate.exe [2010-10-01] (Google Inc.)
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3404362962-4107995047-1605947123-1883Core.job => C:\Users\cc2001\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3404362962-4107995047-1605947123-1883UA.job => C:\Users\cc2001\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3404362962-4107995047-1605947123-1886Core.job => C:\Users\cc2004\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3404362962-4107995047-1605947123-1886UA.job => C:\Users\cc2004\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3404362962-4107995047-1605947123-1981Core.job => C:\Users\cc2014\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3404362962-4107995047-1605947123-1981UA.job => C:\Users\cc2014\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3404362962-4107995047-1605947123-2004Core.job => C:\Users\cc2017\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3404362962-4107995047-1605947123-2004UA.job => C:\Users\cc2017\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3404362962-4107995047-1605947123-2005Core.job => C:\Users\cc2018\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3404362962-4107995047-1605947123-2005UA.job => C:\Users\cc2018\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3404362962-4107995047-1605947123-2075Core.job => C:\Users\cc2024\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3404362962-4107995047-1605947123-2075UA.job => C:\Users\cc2024\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3730321190-864032766-3096031451-1004Core.job => C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3730321190-864032766-3096031451-1004UA.job => C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Google\Update\GoogleUpdate.exe
AlternateDataStreams: C:\ProgramData\.rdata:X
HKU\S-1-5-21-3730321190-864032766-3096031451-1004\...\MountPoints2: D - D:\Autorun\autorun.exe
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-3730321190-864032766-3096031451-1004 -> DefaultScope {12666C0B-8139-438A-B6AF-952D2FBA7A23} URL =
SearchScopes: HKU\S-1-5-21-3730321190-864032766-3096031451-1004 -> {0B2EF93F-AB35-4219-8907-C545E94FC90A} URL =
SearchScopes: HKU\S-1-5-21-3730321190-864032766-3096031451-1004 -> {12666C0B-8139-438A-B6AF-952D2FBA7A23} URL =
FF Plugin: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin-x32: @microsoft.com/GENUINE -> disabled [No File]
FF HKLM-x32\...\Thunderbird\Extensions: [eplgTb@eset.com] - C:\Program Files\ESET\ESET NOD32 Antivirus\Mozilla Thunderbird => not found
CHR Plugin: (Native Client) - C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Google\Chrome\Application\47.0.2526.111\ppGoogleNaClPluginChrome.dll => No File
CHR Plugin: (Chrome PDF Viewer) - C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Google\Chrome\Application\47.0.2526.111\pdf.dll => No File
CHR Plugin: (Google Update) - C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Google\Update\1.3.21.135\npGoogleUpdate3.dll => No File
CHR Plugin: (Silverlight Plug-In) - c:\Program Files (x86)\Microsoft Silverlight\4.1.10329.0\npctrl.dll => No File
StartMenuInternet: Google Chrome.OG7XH6VBY2XXKMQYR5KPKCMWB4 - C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Google\Chrome\Application\chrome.exe hxxp://www.mysites123.com/?type=sc&ts=1 ... 4_8202DE86
U3 anjhmyzt; C:\Windows\System32\Drivers\anjhmyzt.sys [0 ] (NVIDIA Corporation) <==== ATTENTION (zero byte File/Folder)
C:\Users\cc2001\AppData\Local\Temp
End
Uložte na plochu jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Rybiz
Návštěvník
Návštěvník
Příspěvky: 36
Registrován: 13 zář 2007 20:40

Re: prosím o kontrolu logu

#8 Příspěvek od Rybiz »

Fix result of Farbar Recovery Scan Tool (x64) Version:17-01-2015
Ran by CPadmin (2016-01-17 22:09:16) Run:1
Running from C:\Users\CPadmin.CC_PRACOVISTE6\Desktop
Loaded Profiles: CPadmin (Available Profiles: CPadmin & test & Administrator)
Boot Mode: Normal
==============================================

fixlist content:
*****************
Start
CustomCLSID: HKU\S-1-5-21-3730321190-864032766-3096031451-1004_Classes\CLSID\{0F22A205-CFB0-4679-8499-A6F44A80A208}\InprocServer32 -> C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Google\Update\1.3.25.5\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3730321190-864032766-3096031451-1004_Classes\CLSID\{1423F872-3F7F-4E57-B621-8B1A9D49B448}\InprocServer32 -> C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Google\Update\1.3.27.5\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3730321190-864032766-3096031451-1004_Classes\CLSID\{355EC88A-02E2-4547-9DEE-F87426484BD1}\InprocServer32 -> C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Google\Update\1.3.23.9\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3730321190-864032766-3096031451-1004_Classes\CLSID\{5C8C2A98-6133-4EBA-BBCC-34D9EA01FC2E}\InprocServer32 -> C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Google\Update\1.3.28.1\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3730321190-864032766-3096031451-1004_Classes\CLSID\{78550997-5DEF-4A8A-BAF9-D5774E87AC98}\InprocServer32 -> C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Google\Update\1.3.28.13\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3730321190-864032766-3096031451-1004_Classes\CLSID\{90B3DFBF-AF6A-4EA0-8899-F332194690F8}\InprocServer32 -> C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Google\Update\1.3.24.15\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3730321190-864032766-3096031451-1004_Classes\CLSID\{C3BC25C0-FCD3-4F01-AFDD-41373F017C9A}\InprocServer32 -> C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Google\Update\1.3.26.9\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3730321190-864032766-3096031451-1004_Classes\CLSID\{CC182BE1-84CE-4A57-B85C-FD4BBDF78CB2}\InprocServer32 -> C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Google\Update\1.3.29.1\psuser_64.dll (Google Inc.)
CustomCLSID: HKU\S-1-5-21-3730321190-864032766-3096031451-1004_Classes\CLSID\{D0336C0B-7919-4C04-8CCE-2EBAE2ECE8C9}\InprocServer32 -> C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Google\Update\1.3.25.11\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3730321190-864032766-3096031451-1004_Classes\CLSID\{D1EDC4F5-7F4D-4B12-906A-614ECF66DDAF}\InprocServer32 -> C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Google\Update\1.3.28.15\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3730321190-864032766-3096031451-1004_Classes\CLSID\{E8CF3E55-F919-49D9-ABC0-948E6CB34B9F}\InprocServer32 -> C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Google\Update\1.3.29.1\psuser_64.dll (Google Inc.)
CustomCLSID: HKU\S-1-5-21-3730321190-864032766-3096031451-1004_Classes\CLSID\{FE498BAB-CB4C-4F88-AC3F-3641AAAF5E9E}\InprocServer32 -> C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Google\Update\1.3.24.7\psuser_64.dll => No File
Task: {12B59A81-7544-4683-829A-4D442BE3C2D3} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3404362962-4107995047-1605947123-2005UA => C:\Users\cc2018\AppData\Local\Google\Update\GoogleUpdate.exe [2011-06-13] (Google Inc.)
Task: {29CBA10B-3858-4462-B50C-3D5B25B9C80D} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3404362962-4107995047-1605947123-2005Core => C:\Users\cc2018\AppData\Local\Google\Update\GoogleUpdate.exe [2011-06-13] (Google Inc.)
Task: {2E7506E9-C894-4F99-8496-BA44AC56A42D} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3730321190-864032766-3096031451-1004UA => C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Google\Update\GoogleUpdate.exe [2015-08-29] (Google Inc.)
Task: {76B2C60C-2EE3-4130-9837-B7103233F8E8} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3404362962-4107995047-1605947123-2004Core => C:\Users\cc2017\AppData\Local\Google\Update\GoogleUpdate.exe [2010-10-21] (Google Inc.)
Task: {7D315757-13F2-4F6C-9996-54FFF9083AFE} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3404362962-4107995047-1605947123-2075UA => C:\Users\cc2024\AppData\Local\Google\Update\GoogleUpdate.exe [2011-04-29] (Google Inc.)
Task: {82EC336C-435E-4014-A8CB-A8ABB8327C01} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3404362962-4107995047-1605947123-1883Core => C:\Users\cc2001\AppData\Local\Google\Update\GoogleUpdate.exe [2011-10-25] (Google Inc.)
Task: {87AC503C-DEC2-4FCB-B8CF-F17863AAA7A4} - System32\Tasks\{CEDA468C-5B6F-4879-94D7-7488CD41F887} => pcalua.exe -a D:\install.exe -d D:\
Task: {B3CF7A98-E809-447C-8EF8-C291A7E913F1} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3404362962-4107995047-1605947123-1883UA => C:\Users\cc2001\AppData\Local\Google\Update\GoogleUpdate.exe [2011-10-25] (Google Inc.)
Task: {B694A2ED-E29D-4058-9199-E7921CC36A07} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3404362962-4107995047-1605947123-1886Core => C:\Users\cc2004\AppData\Local\Google\Update\GoogleUpdate.exe [2011-06-03] (Google Inc.)
Task: {D08CDAD6-2524-4732-97F3-DD999D2A8707} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3404362962-4107995047-1605947123-1981Core => C:\Users\cc2014\AppData\Local\Google\Update\GoogleUpdate.exe [2010-10-01] (Google Inc.)
Task: {E0AB0E58-8DAE-418D-B553-D6481A7F99D4} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3404362962-4107995047-1605947123-2004UA => C:\Users\cc2017\AppData\Local\Google\Update\GoogleUpdate.exe [2010-10-21] (Google Inc.)
Task: {FDFBF62C-9060-4402-922F-4868CC1CB1C5} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3404362962-4107995047-1605947123-1981UA => C:\Users\cc2014\AppData\Local\Google\Update\GoogleUpdate.exe [2010-10-01] (Google Inc.)
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3404362962-4107995047-1605947123-1883Core.job => C:\Users\cc2001\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3404362962-4107995047-1605947123-1883UA.job => C:\Users\cc2001\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3404362962-4107995047-1605947123-1886Core.job => C:\Users\cc2004\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3404362962-4107995047-1605947123-1886UA.job => C:\Users\cc2004\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3404362962-4107995047-1605947123-1981Core.job => C:\Users\cc2014\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3404362962-4107995047-1605947123-1981UA.job => C:\Users\cc2014\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3404362962-4107995047-1605947123-2004Core.job => C:\Users\cc2017\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3404362962-4107995047-1605947123-2004UA.job => C:\Users\cc2017\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3404362962-4107995047-1605947123-2005Core.job => C:\Users\cc2018\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3404362962-4107995047-1605947123-2005UA.job => C:\Users\cc2018\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3404362962-4107995047-1605947123-2075Core.job => C:\Users\cc2024\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3404362962-4107995047-1605947123-2075UA.job => C:\Users\cc2024\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3730321190-864032766-3096031451-1004Core.job => C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3730321190-864032766-3096031451-1004UA.job => C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Google\Update\GoogleUpdate.exe
AlternateDataStreams: C:\ProgramData\.rdata:X
HKU\S-1-5-21-3730321190-864032766-3096031451-1004\...\MountPoints2: D - D:\Autorun\autorun.exe
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-3730321190-864032766-3096031451-1004 -> DefaultScope {12666C0B-8139-438A-B6AF-952D2FBA7A23} URL =
SearchScopes: HKU\S-1-5-21-3730321190-864032766-3096031451-1004 -> {0B2EF93F-AB35-4219-8907-C545E94FC90A} URL =
SearchScopes: HKU\S-1-5-21-3730321190-864032766-3096031451-1004 -> {12666C0B-8139-438A-B6AF-952D2FBA7A23} URL =
FF Plugin: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin-x32: @microsoft.com/GENUINE -> disabled [No File]
FF HKLM-x32\...\Thunderbird\Extensions: [eplgTb@eset.com] - C:\Program Files\ESET\ESET NOD32 Antivirus\Mozilla Thunderbird => not found
CHR Plugin: (Native Client) - C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Google\Chrome\Application\47.0.2526.111\ppGoogleNaClPluginChrome.dll => No File
CHR Plugin: (Chrome PDF Viewer) - C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Google\Chrome\Application\47.0.2526.111\pdf.dll => No File
CHR Plugin: (Google Update) - C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Google\Update\1.3.21.135\npGoogleUpdate3.dll => No File
CHR Plugin: (Silverlight Plug-In) - c:\Program Files (x86)\Microsoft Silverlight\4.1.10329.0\npctrl.dll => No File
StartMenuInternet: Google Chrome.OG7XH6VBY2XXKMQYR5KPKCMWB4 - C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Google\Chrome\Application\chrome.exe hxxp://www.mysites123.com/?type=sc&ts=1 ... 4_8202DE86
U3 anjhmyzt; C:\Windows\System32\Drivers\anjhmyzt.sys [0 ] (NVIDIA Corporation) <==== ATTENTION (zero byte File/Folder)
C:\Users\cc2001\AppData\Local\Temp
End
*****************

"HKU\S-1-5-21-3730321190-864032766-3096031451-1004_Classes\CLSID\{0F22A205-CFB0-4679-8499-A6F44A80A208}" => key removed successfully
"HKU\S-1-5-21-3730321190-864032766-3096031451-1004_Classes\CLSID\{1423F872-3F7F-4E57-B621-8B1A9D49B448}" => key removed successfully
"HKU\S-1-5-21-3730321190-864032766-3096031451-1004_Classes\CLSID\{355EC88A-02E2-4547-9DEE-F87426484BD1}" => key removed successfully
"HKU\S-1-5-21-3730321190-864032766-3096031451-1004_Classes\CLSID\{5C8C2A98-6133-4EBA-BBCC-34D9EA01FC2E}" => key removed successfully
"HKU\S-1-5-21-3730321190-864032766-3096031451-1004_Classes\CLSID\{78550997-5DEF-4A8A-BAF9-D5774E87AC98}" => key removed successfully
"HKU\S-1-5-21-3730321190-864032766-3096031451-1004_Classes\CLSID\{90B3DFBF-AF6A-4EA0-8899-F332194690F8}" => key removed successfully
"HKU\S-1-5-21-3730321190-864032766-3096031451-1004_Classes\CLSID\{C3BC25C0-FCD3-4F01-AFDD-41373F017C9A}" => key removed successfully
"HKU\S-1-5-21-3730321190-864032766-3096031451-1004_Classes\CLSID\{CC182BE1-84CE-4A57-B85C-FD4BBDF78CB2}" => key removed successfully
"HKU\S-1-5-21-3730321190-864032766-3096031451-1004_Classes\CLSID\{D0336C0B-7919-4C04-8CCE-2EBAE2ECE8C9}" => key removed successfully
"HKU\S-1-5-21-3730321190-864032766-3096031451-1004_Classes\CLSID\{D1EDC4F5-7F4D-4B12-906A-614ECF66DDAF}" => key removed successfully
"HKU\S-1-5-21-3730321190-864032766-3096031451-1004_Classes\CLSID\{E8CF3E55-F919-49D9-ABC0-948E6CB34B9F}" => key removed successfully
"HKU\S-1-5-21-3730321190-864032766-3096031451-1004_Classes\CLSID\{FE498BAB-CB4C-4F88-AC3F-3641AAAF5E9E}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{12B59A81-7544-4683-829A-4D442BE3C2D3}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{12B59A81-7544-4683-829A-4D442BE3C2D3}" => key removed successfully
C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3404362962-4107995047-1605947123-2005UA => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskUserS-1-5-21-3404362962-4107995047-1605947123-2005UA" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{29CBA10B-3858-4462-B50C-3D5B25B9C80D}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{29CBA10B-3858-4462-B50C-3D5B25B9C80D}" => key removed successfully
C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3404362962-4107995047-1605947123-2005Core => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskUserS-1-5-21-3404362962-4107995047-1605947123-2005Core" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{2E7506E9-C894-4F99-8496-BA44AC56A42D}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{2E7506E9-C894-4F99-8496-BA44AC56A42D}" => key removed successfully
C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3730321190-864032766-3096031451-1004UA => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskUserS-1-5-21-3730321190-864032766-3096031451-1004UA" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{76B2C60C-2EE3-4130-9837-B7103233F8E8}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{76B2C60C-2EE3-4130-9837-B7103233F8E8}" => key removed successfully
C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3404362962-4107995047-1605947123-2004Core => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskUserS-1-5-21-3404362962-4107995047-1605947123-2004Core" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{7D315757-13F2-4F6C-9996-54FFF9083AFE}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{7D315757-13F2-4F6C-9996-54FFF9083AFE}" => key removed successfully
C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3404362962-4107995047-1605947123-2075UA => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskUserS-1-5-21-3404362962-4107995047-1605947123-2075UA" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{82EC336C-435E-4014-A8CB-A8ABB8327C01}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{82EC336C-435E-4014-A8CB-A8ABB8327C01}" => key removed successfully
C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3404362962-4107995047-1605947123-1883Core => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskUserS-1-5-21-3404362962-4107995047-1605947123-1883Core" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{87AC503C-DEC2-4FCB-B8CF-F17863AAA7A4}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{87AC503C-DEC2-4FCB-B8CF-F17863AAA7A4}" => key removed successfully
C:\Windows\System32\Tasks\{CEDA468C-5B6F-4879-94D7-7488CD41F887} => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{CEDA468C-5B6F-4879-94D7-7488CD41F887}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{B3CF7A98-E809-447C-8EF8-C291A7E913F1}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B3CF7A98-E809-447C-8EF8-C291A7E913F1}" => key removed successfully
C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3404362962-4107995047-1605947123-1883UA => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskUserS-1-5-21-3404362962-4107995047-1605947123-1883UA" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{B694A2ED-E29D-4058-9199-E7921CC36A07}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B694A2ED-E29D-4058-9199-E7921CC36A07}" => key removed successfully
C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3404362962-4107995047-1605947123-1886Core => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskUserS-1-5-21-3404362962-4107995047-1605947123-1886Core" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{D08CDAD6-2524-4732-97F3-DD999D2A8707}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{D08CDAD6-2524-4732-97F3-DD999D2A8707}" => key removed successfully
C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3404362962-4107995047-1605947123-1981Core => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskUserS-1-5-21-3404362962-4107995047-1605947123-1981Core" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{E0AB0E58-8DAE-418D-B553-D6481A7F99D4}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{E0AB0E58-8DAE-418D-B553-D6481A7F99D4}" => key removed successfully
C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3404362962-4107995047-1605947123-2004UA => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskUserS-1-5-21-3404362962-4107995047-1605947123-2004UA" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{FDFBF62C-9060-4402-922F-4868CC1CB1C5}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{FDFBF62C-9060-4402-922F-4868CC1CB1C5}" => key removed successfully
C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3404362962-4107995047-1605947123-1981UA => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskUserS-1-5-21-3404362962-4107995047-1605947123-1981UA" => key removed successfully
C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3404362962-4107995047-1605947123-1883Core.job => moved successfully
C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3404362962-4107995047-1605947123-1883UA.job => moved successfully
C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3404362962-4107995047-1605947123-1886Core.job => moved successfully
C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3404362962-4107995047-1605947123-1886UA.job => moved successfully
C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3404362962-4107995047-1605947123-1981Core.job => moved successfully
C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3404362962-4107995047-1605947123-1981UA.job => moved successfully
C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3404362962-4107995047-1605947123-2004Core.job => moved successfully
C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3404362962-4107995047-1605947123-2004UA.job => moved successfully
C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3404362962-4107995047-1605947123-2005Core.job => moved successfully
C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3404362962-4107995047-1605947123-2005UA.job => moved successfully
C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3404362962-4107995047-1605947123-2075Core.job => moved successfully
C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3404362962-4107995047-1605947123-2075UA.job => moved successfully
C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3730321190-864032766-3096031451-1004Core.job => moved successfully
C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3730321190-864032766-3096031451-1004UA.job => moved successfully
C:\ProgramData\.rdata => ":X" ADS removed successfully.
"HKU\S-1-5-21-3730321190-864032766-3096031451-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\D" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" => key removed successfully
HKCR\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} => key not found.
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" => key removed successfully
HKCR\Wow6432Node\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} => key not found.
HKU\S-1-5-21-3730321190-864032766-3096031451-1004\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value removed successfully
"HKU\S-1-5-21-3730321190-864032766-3096031451-1004\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0B2EF93F-AB35-4219-8907-C545E94FC90A}" => key removed successfully
HKCR\CLSID\{0B2EF93F-AB35-4219-8907-C545E94FC90A} => key not found.
"HKU\S-1-5-21-3730321190-864032766-3096031451-1004\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{12666C0B-8139-438A-B6AF-952D2FBA7A23}" => key removed successfully
HKCR\CLSID\{12666C0B-8139-438A-B6AF-952D2FBA7A23} => key not found.
"HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE" => key removed successfully
"HKLM\Software\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE" => key removed successfully
HKLM\Software\Wow6432Node\Mozilla\Thunderbird\Extensions\\eplgTb@eset.com => value removed successfully
C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Google\Chrome\Application\47.0.2526.111\ppGoogleNaClPluginChrome.dll => not found.
C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Google\Chrome\Application\47.0.2526.111\pdf.dll => not found.
C:\Users\CPadmin.CC_PRACOVISTE6\AppData\Local\Google\Update\1.3.21.135\npGoogleUpdate3.dll => not found.
c:\Program Files (x86)\Microsoft Silverlight\4.1.10329.0\npctrl.dll => not found.
HKLM\SOFTWARE\Clients\StartMenuInternet\Google Chrome.OG7XH6VBY2XXKMQYR5KPKCMWB4\shell\open\command\\Default => value restored successfully
anjhmyzt => service removed successfully
C:\Users\cc2001\AppData\Local\Temp => moved successfully

==== End of Fixlog 22:09:19 ====

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119673
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: prosím o kontrolu logu

#9 Příspěvek od Rudy »

Smazáno. Log by již měl být OK.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Rybiz
Návštěvník
Návštěvník
Příspěvky: 36
Registrován: 13 zář 2007 20:40

Re: prosím o kontrolu logu

#10 Příspěvek od Rybiz »

Mockráte děkuji, jste poslední hradbou mezi havětí a mojím PC. :thumbsup:

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119673
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: prosím o kontrolu logu

#11 Příspěvek od Rudy »

Rádo se stalo! :)
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Zamčeno