Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:13-04-2016
Ran by Lada (administrator) on LADA-PC (16-04-2016 17:04:00)
Running from C:\Users\Lada\Desktop
Loaded Profiles: Lada (Available Profiles: Lada)
Platform: Windows 10 Home Version 1511 (X64) Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: Edge)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool:
http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(AMD) C:\Windows\System32\atiesrxx.exe
(AMD) C:\Windows\System32\atieclxx.exe
(ASUSTeK Computer Inc.) C:\Windows\System32\FBAgent.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
(ASUS) C:\Windows\AsScrPro.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe
(Advanced Micro Devices, Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
() C:\Program Files (x86)\Canon\IJPLM\ijplmsvc.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDService.exe
(Microsoft Corporation) C:\Windows\System32\mqsvc.exe
(TomTom) C:\Program Files (x86)\TomTom HOME 2\TomTomHOMEService.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft\BingBar\SeaPort.EXE
(Plays.tv, LLC) C:\Program Files (x86)\Raptr Inc\PlaysTV\plays_service.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe
(CyberLink) C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe
() C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeHost.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
(Microsoft Corporation) C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE
(ASUS) C:\Program Files (x86)\ASUS\Splendid\ACMON.exe
(ASUS) C:\Program Files\ASUS\P4G\BatteryLife.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\ASUS Live Update\LiveUpdate.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\NisSrv.exe
(ASUSTeK) C:\Windows\SysWOW64\ACEngSvr.exe
(Samsung Electronics Co., Ltd.) C:\Program Files (x86)\Samsung\AllShare\AllShareDMS\AllShareDMS.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
() C:\Program Files\WindowsApps\Microsoft.Windows.Photos_16.325.12390.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
==================== Registry (Whitelisted) ===========================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [ETDCtrl] => C:\Program Files\Elantech\ETDCtrl.exe [3242696 2015-10-07] (ELAN Microelectronics Corp.)
HKLM\...\Run: [RtHDVBg] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2264168 2011-07-28] (Realtek Semiconductor)
HKLM\...\Run: [Zune Launcher] => C:\Program Files\Zune\ZuneLauncher.exe [163552 2011-08-05] (Microsoft Corporation)
HKLM\...\Run: [CanonMyPrinter] => C:\Program Files\Canon\MyPrinter\BJMyPrt.exe [2184520 2009-07-27] (CANON INC.)
HKLM\...\Run: [CanonSolutionMenu] => C:\Program Files (x86)\Canon\SolutionMenu\CNSLMAIN.exe [767312 2009-03-18] (CANON INC.)
HKLM-x32\...\Run: [Nuance PDF Reader-reminder] => "C:\Program Files (x86)\Nuance\PDF Reader\Ereg\Ereg.exe" -r "C:\ProgramData\Nuance\PDF Reader\Ereg\Ereg.ini"
HKLM-x32\...\Run: [ASUSPRP] => C:\Program Files (x86)\ASUS\APRP\APRP.EXE [2018032 2011-04-01] (ASUSTek Computer Inc.)
HKLM-x32\...\Run: [ASUSWebStorage] => C:\Program Files (x86)\ASUS\ASUS WebStorage\3.0.84.161\AsusWSPanel.exe [731472 2011-02-23] (ecareme)
HKLM-x32\...\Run: [SonicMasterTray] => C:\Program Files (x86)\ASUS\Sonic Focus\SonicFocusTray.exe [984400 2010-07-10] (Virage Logic Corporation / Sonic Focus)
HKLM-x32\...\Run: [ATKOSD2] => C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe [5732992 2010-08-17] (ASUS)
HKLM-x32\...\Run: [ATKMEDIA] => C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe [170624 2010-10-07] (ASUS)
HKLM-x32\...\Run: [HControlUser] => C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe [105016 2009-06-19] (ASUS)
HKLM-x32\...\Run: [Wireless Console 3] => C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe [2255360 2011-06-10] (ASUS)
HKLM-x32\...\Run: [UpdateLBPShortCut] => C:\Program Files (x86)\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe [222504 2009-05-20] (CyberLink Corp.)
HKLM-x32\...\Run: [UpdateP2GoShortCut] => C:\Program Files (x86)\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe [222504 2009-05-20] (CyberLink Corp.)
HKLM-x32\...\Run: [KiesTrayAgent] => C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe [311152 2013-09-04] (Samsung Electronics Co., Ltd.)
HKLM-x32\...\Run: [AllShareAgent] => C:\Program Files (x86)\Samsung\AllShare\AllShareAgent.exe [285072 2012-03-02] (Samsung Electronics Co., Ltd.)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [597040 2015-10-06] (Oracle Corporation)
HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [767176 2015-08-21] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [PlaysTV] => C:\Program Files (x86)\Raptr Inc\PlaysTV\playstv_launcher.exe [71440 2016-04-01] (Plays.tv, LLC)
HKLM-x32\...\Run: [Raptr] => C:\Program Files (x86)\Raptr Inc\Raptr\raptrstub.exe [58640 2016-04-01] (Raptr, Inc)
HKU\S-1-5-21-1691599488-178746545-566213100-1001\...\Run: [] => C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe [844656 2013-09-04] (Samsung)
ShellIconOverlayIdentifiers: [AsusWSShellExt_B] -> {6D4133E5-0742-4ADC-8A8C-9303440F7190} => C:\Program Files (x86)\ASUS\ASUS WebStorage\3.0.84.161\ASUSWSShellExt64.dll [2010-09-02] (eCareme Technologies, Inc.)
ShellIconOverlayIdentifiers: [AsusWSShellExt_O] -> {64174815-8D98-4CE6-8646-4C039977D808} => C:\Program Files (x86)\ASUS\ASUS WebStorage\3.0.84.161\ASUSWSShellExt64.dll [2010-09-02] (eCareme Technologies, Inc.)
GroupPolicy: Restriction - Chrome <======= ATTENTION
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
ProxyServer: [S-1-5-21-1691599488-178746545-566213100-1001] => :
AutoConfigURL: [S-1-5-21-1691599488-178746545-566213100-1001] => hxxp://un-stop.com/wpad.dat?74c5a5368f8c4de087567570f4449eb27064475
Winsock: Catalog5 01 C:\WINDOWS\SysWOW64\NLAapi.dll [65024 2015-10-30] (Microsoft Corporation)ATTENTION: LibraryPath should be "%SystemRoot%\system32\NLAapi.dll"
Winsock: Catalog5 02 C:\WINDOWS\SysWOW64\napinsp.dll [55808 2015-10-30] (Microsoft Corporation)ATTENTION: LibraryPath should be "%SystemRoot%\system32\napinsp.dll"
Winsock: Catalog5 03 C:\WINDOWS\SysWOW64\pnrpnsp.dll [70656 2015-10-30] (Microsoft Corporation)ATTENTION: LibraryPath should be "%SystemRoot%\system32\pnrpnsp.dll"
Winsock: Catalog5 04 C:\WINDOWS\SysWOW64\pnrpnsp.dll [70656 2015-10-30] (Microsoft Corporation)ATTENTION: LibraryPath should be "%SystemRoot%\system32\pnrpnsp.dll"
Winsock: Catalog5 05 C:\WINDOWS\SysWOW64\mswsock.dll [312160 2015-10-30] (Microsoft Corporation)ATTENTION: LibraryPath should be "%SystemRoot%\System32\mswsock.dll"
Winsock: Catalog5 06 C:\WINDOWS\SysWOW64\winrnr.dll [23552 2015-10-30] (Microsoft Corporation)ATTENTION: LibraryPath should be "%SystemRoot%\System32\winrnr.dll"
Tcpip\Parameters: [DhcpNameServer] 10.0.0.138
Tcpip\..\Interfaces\{153be4d6-b290-46d6-bb7e-9538aad6f89f}: [DhcpNameServer] 10.0.0.138
ManualProxies: 0hxxp://un-stop.com/wpad.dat?74c5a5368f8c4de087567570f4449eb27064475
Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://go.microsoft.com/fwlink/?LinkID=617910&ResetID=131032879753048623&GUID=E1FF96E4-FF41-46BC-89B3-A40AFF3178D3
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://go.microsoft.com/fwlink/?LinkID=617910&ResetID=131032879753223217&GUID=E1FF96E4-FF41-46BC-89B3-A40AFF3178D3
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://
www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = hxxp://
www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://
www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://
www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://
www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://
www.google.com
HKU\S-1-5-21-1691599488-178746545-566213100-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://go.microsoft.com/fwlink/?LinkID=617910&ResetID=131032879753244195&GUID=E1FF96E4-FF41-46BC-89B3-A40AFF3178D3
URLSearchHook: [S-1-5-21-1691599488-178746545-566213100-1001] ATTENTION => Default URLSearchHook is missing
SearchScopes: HKLM -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://
www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://
www.bing.com/search?q={searchTerms}&for ... -SearchBox
SearchScopes: HKLM -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://
www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1
SearchScopes: HKLM-x32 -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://
www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1
SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://
www.bing.com/search?q={searchTerms}&for ... -SearchBox
SearchScopes: HKLM-x32 -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://
www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1
SearchScopes: HKLM-x32 -> {67A2568C-7A0A-4EED-AECC-B5405DE63B64} URL = hxxp://
www.google.com/search?sourceid=ie7&q={s ... lz=1I7ASUT
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_65\bin\ssv.dll [2015-10-22] (Oracle Corporation)
BHO: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2011-04-01] (Google Inc.)
BHO: Google Toolbar Notifier BHO -> {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} -> C:\Program Files\Google\GoogleToolbarNotifier\5.2.4204.1700\swg64.dll [2011-04-01] (Google Inc.)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_65\bin\jp2ssv.dll [2015-10-22] (Oracle Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_65\bin\ssv.dll [2015-10-22] (Oracle Corporation)
BHO-x32: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2011-04-01] (Google Inc.)
BHO-x32: Google Toolbar Notifier BHO -> {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} -> C:\Program Files (x86)\Google\GoogleToolbarNotifier\5.2.4204.1700\swg.dll [2011-04-01] (Google Inc.)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation)
BHO-x32: Google Dictionary Compression sdch -> {C84D72FE-E17D-4195-BB24-76C02E2E7C4E} -> C:\Program Files (x86)\Google\Google Toolbar\Component\fastsearch_B7C5AC242193BB3E.dll [2011-04-01] (Google Inc.)
BHO-x32: Bing Bar Helper -> {d2ce3e00-f94a-4740-988e-03dc2f38c34f} -> C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll [2011-03-02] (Microsoft Corporation.)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_65\bin\jp2ssv.dll [2015-10-22] (Oracle Corporation)
BHO-x32: Lištička -> {EA837F48-5AD1-443E-AE34-FFE03CBF3099} -> C:\Program Files (x86)\Seznam.cz\bin\listicka.dll [2012-04-16] ()
Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2011-04-01] (Google Inc.)
Toolbar: HKLM-x32 - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2011-04-01] (Google Inc.)
Toolbar: HKLM-x32 - Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll [2011-03-02] (Microsoft Corporation.)
Toolbar: HKLM-x32 - Nástroje Lištičky - {1EA00BE1-6E54-4E2A-8099-680300BF23E1} - C:\Program Files (x86)\Seznam.cz\bin\toolbar\toolbar.dll [2012-04-16] ()
Edge:
======
Edge HomeButtonPage: HKU\S-1-5-21-1691599488-178746545-566213100-1001 -> hxxp://
www.yoursites123.com/?type=hp&ts=145881 ... M1384M1384
FireFox:
========
FF ProfilePath: C:\Users\Lada\AppData\Roaming\Mozilla\Firefox\Profiles\nihisk6t.default-1457467314724
FF Homepage: about:home
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_21_0_0_213.dll [2016-04-09] ()
FF Plugin: @java.com/DTPlugin,version=11.65.2 -> C:\Program Files\Java\jre1.8.0_65\bin\dtplugin\npDeployJava1.dll [2015-10-22] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.65.2 -> C:\Program Files\Java\jre1.8.0_65\bin\plugin2\npjp2.dll [2015-10-22] (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.41212.0\npctrl.dll [2015-12-12] ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_21_0_0_213.dll [2016-04-09] ()
FF Plugin-x32: @canon.com/EPPEX -> C:\Program Files (x86)\Canon\Easy-PhotoPrint EX\NPEZFFPI.DLL [2009-09-07] (CANON INC.)
FF Plugin-x32: @Google.com/GoogleEarthPlugin -> C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll [2015-05-21] (Google)
FF Plugin-x32: @java.com/DTPlugin,version=11.65.2 -> C:\Program Files (x86)\Java\jre1.8.0_65\bin\dtplugin\npDeployJava1.dll [2015-10-22] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.65.2 -> C:\Program Files (x86)\Java\jre1.8.0_65\bin\plugin2\npjp2.dll [2015-10-22] (Oracle Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.41212.0\npctrl.dll [2015-12-12] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2010-11-10] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3508.1109 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2010-11-10] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-02-02] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-02-02] (Google Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2015-12-18] (Adobe Systems Inc.)
FF Plugin-x32: ZEON/PDF,version=2.0 -> C:\Program Files (x86)\Nuance\PDF Reader\bin\nppdf.dll [2010-01-23] (Zeon Corporation)
FF Plugin HKU\S-1-5-21-1691599488-178746545-566213100-1001: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Lada\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2015-06-11] (Unity Technologies ApS)
FF SearchPlugin: C:\Users\Lada\AppData\Roaming\Mozilla\Firefox\Profiles\nihisk6t.default-1457467314724\searchplugins\so-v.xml [2016-03-29]
FF SearchPlugin: C:\Users\Lada\AppData\Roaming\Mozilla\Firefox\Profiles\nihisk6t.default-1457467314724\searchplugins\yoursites123.xml [2016-03-24]
FF Extension: Adblock Plus - C:\Users\Lada\AppData\Roaming\Mozilla\Firefox\Profiles\nihisk6t.default-1457467314724\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2016-03-16]
Chrome:
=======
CHR HomePage: Default -> hxxp://
www.yoursearching.com/?type=hp&ts=14570 ... m1384m1384
CHR StartupUrls: Default -> "hxxp://
www.yoursearching.com/?type=hp&ts=14570 ... m1384m1384"
CHR DefaultSearchURL: Default -> hxxp://search.so-v.com/web?type=ds&x=fqvsjzvxkk-b260cb90&uid=956aec92-29bd-432a-8d6d-3ef65978451e&q={searchTerms}
CHR DefaultSearchKeyword: Default -> so-v
CHR Plugin: (Native Client) - C:\Program Files (x86)\Google\Chrome\Application\49.0.2623.87\ppGoogleNaClPluginChrome.dll => No File
CHR Plugin: (Chrome PDF Viewer) - C:\Program Files (x86)\Google\Chrome\Application\49.0.2623.87\pdf.dll => No File
CHR Plugin: (Shockwave Flash) - C:\Program Files (x86)\Google\Chrome\Application\49.0.2623.87\gcswf32.dll => No File
CHR Plugin: (Shockwave Flash) - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll => No File
CHR Plugin: (Adobe Acrobat) - C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll => No File
CHR Plugin: (Microsoft Office 2010) - C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation)
CHR Plugin: (Google Update) - C:\Program Files (x86)\Google\Update\1.3.21.111\npGoogleUpdate3.dll => No File
CHR Plugin: (Silverlight Plug-In) - C:\Program Files (x86)\Microsoft Silverlight\4.1.10329.0\npctrl.dll => No File
CHR Plugin: (Zeon Plus) - C:\Program Files (x86)\Nuance\PDF Reader\bin\nppdf.dll (Zeon Corporation)
CHR Plugin: (Windows Live Photo Gallery) - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
CHR Profile: C:\Users\Lada\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Seznam Lištička - Email) - C:\Users\Lada\AppData\Local\Google\Chrome\User Data\Default\Extensions\bgjpfhpjcgdppjbgnpnjllokbmcdllig [2015-03-02]
CHR Extension: (Seznam Lištička - Slovník) - C:\Users\Lada\AppData\Local\Google\Chrome\User Data\Default\Extensions\blmojkbhnkkphngknkmgccmlenfaelkd [2016-02-29]
CHR Extension: (YouTube) - C:\Users\Lada\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-10-06]
CHR Extension: (Vyhledávání Google) - C:\Users\Lada\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-11-10]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Lada\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-08-14]
CHR Extension: (Seznam Lištička - Rychlá volba) - C:\Users\Lada\AppData\Local\Google\Chrome\User Data\Default\Extensions\olfeabkoenfaoljndfecamgilllcpiak [2015-11-10]
CHR Extension: (Gmail) - C:\Users\Lada\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-04-28]
StartMenuInternet: Google Chrome - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe hxxp://
www.so-v.com/?type=ll&uid=956aec92-29bd ... f65978451e
==================== Services (Whitelisted) ========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [344064 2015-08-21] (Advanced Micro Devices, Inc.) [File not signed]
S2 DeskTop_F; C:\ProgramData\desktopfind\desktop293.exe [236728 2016-03-16] (DeskTopService)
R2 ETDService; C:\Program Files\Elantech\ETDService.exe [144072 2015-10-07] (ELAN Microelectronics Corp.)
R2 IJPLMSVC; C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE [116104 2009-02-10] ()
R2 PlaysService; C:\Program Files (x86)\Raptr Inc\PlaysTV\plays_service.exe [32528 2016-04-01] (Plays.tv, LLC)
R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [364464 2015-10-30] (Microsoft Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [24864 2015-10-30] (Microsoft Corporation)
===================== Drivers (Whitelisted) ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R0 amdkmpfd; C:\Windows\System32\drivers\amdkmpfd.sys [82664 2015-12-16] (Advanced Micro Devices, Inc.)
R3 athr; C:\Windows\System32\drivers\athwnx.sys [4207104 2015-10-30] (Qualcomm Atheros Communications, Inc.)
R3 AtiHDAudioService; C:\Windows\system32\drivers\AtihdWT6.sys [111120 2016-03-01] (Advanced Micro Devices)
S3 EsgScanner; C:\Windows\System32\DRIVERS\EsgScanner.sys [22704 2016-01-20] ()
R3 kbfiltr; C:\Windows\System32\drivers\kbfiltr.sys [15416 2009-07-20] ( )
R3 rt640x64; C:\Windows\System32\drivers\rt640x64.sys [589824 2015-10-30] (Realtek )
S0 WdBoot; C:\Windows\System32\drivers\WdBoot.sys [44568 2015-10-30] (Microsoft Corporation)
R0 WdFilter; C:\Windows\System32\drivers\WdFilter.sys [293216 2015-10-30] (Microsoft Corporation)
R3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [118112 2015-10-30] (Microsoft Corporation)
U3 idsvc; no ImagePath
U3 wpcsvc; no ImagePath
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2016-04-16 17:04 - 2016-04-16 17:04 - 00023006 ____C C:\Users\Lada\Desktop\FRST.txt
2016-04-16 11:35 - 2016-04-16 11:43 - 00000000 ___DC C:\AdwCleaner
2016-04-16 11:34 - 2016-04-16 11:35 - 03668992 _____ C:\Users\Lada\Desktop\adwcleaner_5.111.exe
2016-04-16 00:14 - 2016-04-16 00:16 - 00060394 ____C C:\Users\Lada\Desktop\Addition.txt
2016-04-16 00:14 - 2016-04-16 00:14 - 00074235 ____C C:\Users\Lada\Desktop\FRST3.txt
2016-04-15 22:13 - 2016-04-15 22:13 - 00112640 _____ (forum.viry.cz) C:\Users\Lada\Desktop\FRSTLauncher.exe
2016-04-15 22:11 - 2016-04-16 17:03 - 00000000 ___DC C:\FRST
2016-04-15 22:09 - 2016-04-15 22:09 - 02375168 _____ (Farbar) C:\Users\Lada\Desktop\FRST64.exe
2016-04-15 20:39 - 2016-04-15 20:39 - 00388608 _____ (Trend Micro Inc.) C:\Users\Lada\Downloads\hijackthis(1).exe
2016-04-15 14:33 - 2016-04-15 14:33 - 00388608 _____ (Trend Micro Inc.) C:\Users\Lada\Downloads\hijackthis.exe
2016-04-14 19:33 - 2016-04-16 11:47 - 00000000 ___DC C:\Program Files (x86)\Mozilla Firefox
2016-04-13 04:33 - 2016-03-29 12:20 - 07474016 ____C (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2016-04-13 04:33 - 2016-03-29 12:18 - 02152280 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys
2016-04-13 04:33 - 2016-03-29 11:37 - 01862008 ____C C:\WINDOWS\SysWOW64\CoreUIComponents.dll
2016-04-13 04:33 - 2016-03-29 10:41 - 00630632 ____C (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe
2016-04-13 04:33 - 2016-03-29 10:06 - 00045568 ____C (Adobe Systems) C:\WINDOWS\system32\atmlib.dll
2016-04-13 04:33 - 2016-03-29 10:01 - 00541304 ____C (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe
2016-04-13 04:33 - 2016-03-29 09:58 - 00069632 ____C (Microsoft Corporation) C:\WINDOWS\system32\wininetlui.dll
2016-04-13 04:33 - 2016-03-29 09:58 - 00052224 ____C (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll
2016-04-13 04:33 - 2016-03-29 09:46 - 00365568 ____C (Adobe Systems Incorporated) C:\WINDOWS\system32\atmfd.dll
2016-04-13 04:33 - 2016-03-29 09:36 - 00209408 ____C (Microsoft Corporation) C:\WINDOWS\system32\storewuauth.dll
2016-04-13 04:33 - 2016-03-29 09:19 - 00037376 ____C (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll
2016-04-13 04:33 - 2016-03-29 09:15 - 00970752 ____C (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2016-04-13 04:33 - 2016-03-29 09:12 - 00065536 ____C (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininetlui.dll
2016-04-13 04:33 - 2016-03-29 09:12 - 00045568 ____C (Microsoft Corporation) C:\WINDOWS\SysWOW64\jsproxy.dll
2016-04-13 04:33 - 2016-03-29 09:07 - 01213440 ____C (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll
2016-04-13 04:33 - 2016-03-29 09:02 - 00303104 ____C (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\atmfd.dll
2016-04-13 04:33 - 2016-03-29 08:42 - 03592704 ____C (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2016-04-13 04:33 - 2016-03-29 08:37 - 00792064 ____C (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll
2016-04-13 04:33 - 2016-03-29 08:32 - 01731584 ____C (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2016-04-13 04:33 - 2016-03-29 08:31 - 02275328 ____C (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2016-04-13 04:33 - 2016-03-29 08:26 - 02755584 ____C (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2016-04-13 04:33 - 2016-03-29 08:05 - 01500672 ____C (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2016-04-13 04:33 - 2016-03-29 08:02 - 02229760 ____C (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2016-04-13 04:33 - 2016-03-29 07:51 - 22378496 ____C (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2016-04-13 04:33 - 2016-03-29 07:41 - 12125184 ____C (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2016-04-13 04:33 - 2016-03-29 07:39 - 13382656 ____C (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2016-04-13 04:33 - 2016-03-29 07:38 - 18673664 ____C (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2016-04-13 04:33 - 2016-03-29 07:37 - 19340800 ____C (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2016-04-13 04:32 - 2016-03-29 12:20 - 02656952 ____C C:\WINDOWS\system32\CoreUIComponents.dll
2016-04-13 04:32 - 2016-03-29 09:15 - 01714688 ____C (Microsoft Corporation) C:\WINDOWS\system32\SRHInproc.dll
2016-04-13 04:32 - 2016-03-29 09:14 - 00965632 ____C (Microsoft Corporation) C:\WINDOWS\system32\SRH.dll
2016-04-13 04:32 - 2016-03-29 09:10 - 01388544 ____C (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2016-04-13 04:32 - 2016-03-29 08:37 - 01444352 ____C (Microsoft Corporation) C:\WINDOWS\SysWOW64\SRHInproc.dll
2016-04-13 04:32 - 2016-03-29 08:37 - 00799744 ____C (Microsoft Corporation) C:\WINDOWS\SysWOW64\SRH.dll
2016-04-13 04:32 - 2016-03-29 08:05 - 01388032 ____C (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2016-04-13 04:32 - 2016-03-29 07:56 - 16985600 ____C (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2016-04-13 04:32 - 2016-03-29 07:41 - 24602112 ____C (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2016-04-13 04:31 - 2016-04-02 05:14 - 03994624 ____C (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll
2016-04-13 04:31 - 2016-03-29 11:11 - 00605440 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2016-04-13 04:31 - 2016-03-29 10:02 - 00118272 ____C (Microsoft Corporation) C:\WINDOWS\system32\fontsub.dll
2016-04-13 04:31 - 2016-03-29 09:20 - 00948736 ____C (Microsoft Corporation) C:\WINDOWS\system32\XblAuthManager.dll
2016-04-13 04:31 - 2016-03-29 09:02 - 02624512 ____C (Microsoft Corporation) C:\WINDOWS\system32\InputService.dll
2016-04-13 04:31 - 2016-03-29 09:00 - 00345600 ____C (Microsoft Corporation) C:\WINDOWS\system32\TextInputFramework.dll
2016-04-13 04:31 - 2016-03-29 08:28 - 01944576 ____C (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputService.dll
2016-04-13 04:31 - 2016-03-29 08:27 - 00245760 ____C (Microsoft Corporation) C:\WINDOWS\SysWOW64\TextInputFramework.dll
2016-04-13 04:31 - 2016-03-29 08:19 - 02635776 ____C (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Logon.dll
2016-04-13 04:31 - 2016-03-29 08:01 - 13018624 ____C (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2016-04-13 04:31 - 2016-03-29 07:58 - 01799680 ____C (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Logon.dll
2016-04-13 04:31 - 2016-03-29 07:52 - 11545600 ____C (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2016-04-13 04:31 - 2016-03-29 07:51 - 09918976 ____C (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2016-04-13 04:31 - 2016-03-29 07:49 - 05202944 ____C (Microsoft Corporation) C:\WINDOWS\SysWOW64\BingMaps.dll
2016-04-13 04:31 - 2016-03-29 07:43 - 03428864 ____C (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll
2016-04-13 04:31 - 2016-03-29 07:38 - 02798080 ____C (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll
2016-04-13 04:31 - 2016-03-29 07:27 - 07836160 ____C (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2016-04-13 04:31 - 2016-03-29 07:27 - 05662208 ____C (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2016-04-13 04:30 - 2016-04-02 06:13 - 00369912 ____C (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe
2016-04-13 04:30 - 2016-04-02 05:26 - 00630272 ____C (Microsoft Corporation) C:\WINDOWS\system32\PhoneProviders.dll
2016-04-13 04:30 - 2016-04-02 05:21 - 00498688 ____C (Microsoft Corporation) C:\WINDOWS\system32\tileobjserver.dll
2016-04-13 04:30 - 2016-04-02 05:19 - 01054208 ____C (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2016-04-13 04:30 - 2016-04-02 05:18 - 00988160 ____C (Microsoft Corporation) C:\WINDOWS\system32\SharedStartModel.dll
2016-04-13 04:30 - 2016-04-02 05:15 - 01090048 ____C (Microsoft Corporation) C:\WINDOWS\system32\RDXService.dll
2016-04-13 04:30 - 2016-04-02 05:09 - 01832448 ____C (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2016-04-13 04:30 - 2016-04-02 05:07 - 03575296 ____C (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsThresholdAdminFlowUI.dll
2016-04-13 04:30 - 2016-04-02 05:07 - 02158592 ____C (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2016-04-13 04:30 - 2016-04-02 05:00 - 01390080 ____C (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Shell.dll
2016-04-13 04:30 - 2016-03-29 12:22 - 01030416 ____C (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2016-04-13 04:30 - 2016-03-29 12:22 - 00874968 ____C (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2016-04-13 04:30 - 2016-03-29 12:20 - 01317640 ____C (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2016-04-13 04:30 - 2016-03-29 12:20 - 01141504 ____C (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2016-04-13 04:30 - 2016-03-29 12:02 - 00989536 ____C (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi
2016-04-13 04:30 - 2016-03-29 11:56 - 01297752 ____C (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll
2016-04-13 04:30 - 2016-03-29 11:28 - 00696664 ____C (Microsoft Corporation) C:\WINDOWS\system32\NetSetupEngine.dll
2016-04-13 04:30 - 2016-03-29 11:17 - 00300104 ____C (Microsoft Corporation) C:\WINDOWS\system32\LockAppHost.exe
2016-04-13 04:30 - 2016-03-29 11:13 - 00986976 ____C (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicenseManager.dll
2016-04-13 04:30 - 2016-03-29 10:44 - 00502104 ____C (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupEngine.dll
2016-04-13 04:30 - 2016-03-29 10:26 - 01089888 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\http.sys
2016-04-13 04:30 - 2016-03-29 09:39 - 00550912 ____C (Microsoft Corporation) C:\WINDOWS\system32\StoreAgent.dll
2016-04-13 04:30 - 2016-03-29 09:38 - 00207360 ____C (Microsoft Corporation) C:\WINDOWS\system32\NetSetupSvc.dll
2016-04-13 04:30 - 2016-03-29 09:37 - 00617984 ____C (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll
2016-04-13 04:30 - 2016-03-29 09:34 - 00641536 ____C (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll
2016-04-13 04:30 - 2016-03-29 09:28 - 00460288 ____C (Microsoft Corporation) C:\WINDOWS\system32\MapConfiguration.dll
2016-04-13 04:30 - 2016-03-29 09:27 - 00339968 ____C (Microsoft Corporation) C:\WINDOWS\system32\SensorService.dll
2016-04-13 04:30 - 2016-03-29 09:22 - 00438784 ____C (Microsoft Corporation) C:\WINDOWS\system32\AccountsRt.dll
2016-04-13 04:30 - 2016-03-29 09:19 - 00556032 ____C (Microsoft Corporation) C:\WINDOWS\system32\PsmServiceExtHost.dll
2016-04-13 04:30 - 2016-03-29 09:16 - 00852480 ____C (Microsoft Corporation) C:\WINDOWS\system32\MapsStore.dll
2016-04-13 04:30 - 2016-03-29 09:16 - 00093696 ____C (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontsub.dll
2016-04-13 04:30 - 2016-03-29 09:14 - 00859136 ____C (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2016-04-13 04:30 - 2016-03-29 09:13 - 00587776 ____C (Microsoft Corporation) C:\WINDOWS\system32\bisrv.dll
2016-04-13 04:30 - 2016-03-29 09:12 - 00471552 ____C (Microsoft Corporation) C:\WINDOWS\system32\NetSetupShim.dll
2016-04-13 04:30 - 2016-03-29 09:11 - 00988160 ____C (Microsoft Corporation) C:\WINDOWS\system32\NMAA.dll
2016-04-13 04:30 - 2016-03-29 09:10 - 00938496 ____C (Microsoft Corporation) C:\WINDOWS\system32\MapControlCore.dll
2016-04-13 04:30 - 2016-03-29 09:06 - 01575936 ____C (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Speech.dll
2016-04-13 04:30 - 2016-03-29 09:05 - 01395712 ____C (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCore.dll
2016-04-13 04:30 - 2016-03-29 09:02 - 01211904 ____C (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Cred.dll
2016-04-13 04:30 - 2016-03-29 09:00 - 00175616 ____C (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2016-04-13 04:30 - 2016-03-29 08:59 - 00108544 ____C (Microsoft Corporation) C:\WINDOWS\system32\InputLocaleManager.dll
2016-04-13 04:30 - 2016-03-29 08:56 - 00821760 ____C (Microsoft Corporation) C:\WINDOWS\system32\TokenBroker.dll
2016-04-13 04:30 - 2016-03-29 08:56 - 00415232 ____C (Microsoft Corporation) C:\WINDOWS\SysWOW64\StoreAgent.dll
2016-04-13 04:30 - 2016-03-29 08:48 - 00346624 ____C (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapConfiguration.dll
2016-04-13 04:30 - 2016-03-29 08:44 - 00498176 ____C (Microsoft Corporation) C:\WINDOWS\SysWOW64\MessagingDataModel2.dll
2016-04-13 04:30 - 2016-03-29 08:43 - 00358400 ____C (Microsoft Corporation) C:\WINDOWS\SysWOW64\AccountsRt.dll
2016-04-13 04:30 - 2016-03-29 08:36 - 00649728 ____C (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.dll
2016-04-13 04:30 - 2016-03-29 08:35 - 00354304 ____C (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupShim.dll
2016-04-13 04:30 - 2016-03-29 08:34 - 00711680 ____C (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapControlCore.dll
2016-04-13 04:30 - 2016-03-29 08:34 - 00418304 ____C (Microsoft Corporation) C:\WINDOWS\system32\dmenrollengine.dll
2016-04-13 04:30 - 2016-03-29 08:32 - 01098240 ____C (Microsoft Corporation) C:\WINDOWS\system32\dosvc.dll
2016-04-13 04:30 - 2016-03-29 08:31 - 01946112 ____C (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2016-04-13 04:30 - 2016-03-29 08:30 - 01139712 ____C (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIAutomationCore.dll
2016-04-13 04:30 - 2016-03-29 08:27 - 00133632 ____C (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Core.TextInput.dll
2016-04-13 04:30 - 2016-03-29 08:17 - 00765952 ____C (Microsoft Corporation) C:\WINDOWS\system32\fveapi.dll
2016-04-13 04:30 - 2016-03-29 08:14 - 01072128 ____C (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Web.Http.dll
2016-04-13 04:30 - 2016-03-29 08:05 - 07199232 ____C (Microsoft Corporation) C:\WINDOWS\system32\BingMaps.dll
2016-04-13 04:30 - 2016-03-29 08:05 - 01626624 ____C (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll
2016-04-13 04:30 - 2016-03-29 07:45 - 03078144 ____C (Microsoft Corporation) C:\WINDOWS\system32\esent.dll
2016-04-13 04:30 - 2016-03-29 07:36 - 02722816 ____C (Microsoft Corporation) C:\WINDOWS\SysWOW64\esent.dll
2016-04-13 04:30 - 2016-03-29 07:26 - 00958976 ____C (Microsoft Corporation) C:\WINDOWS\system32\RemoteNaturalLanguage.dll
2016-04-13 04:29 - 2016-04-02 06:10 - 00770640 ____C (Microsoft Corporation) C:\WINDOWS\system32\iuilp.dll
2016-04-13 04:29 - 2016-04-02 06:10 - 00730344 ____C (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Shell.Broker.dll
2016-04-13 04:29 - 2016-04-02 06:10 - 00374008 ____C (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlows.exe
2016-04-13 04:29 - 2016-04-02 05:29 - 00127488 ____C (Microsoft Corporation) C:\WINDOWS\system32\VEDataLayerHelpers.dll
2016-04-13 04:29 - 2016-04-02 05:29 - 00083968 ____C (Microsoft Corporation) C:\WINDOWS\SysWOW64\VEDataLayerHelpers.dll
2016-04-13 04:29 - 2016-03-29 12:23 - 00277856 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdbus.sys
2016-04-13 04:29 - 2016-03-29 12:15 - 00100232 ____C (Microsoft Corporation) C:\WINDOWS\system32\omadmapi.dll
2016-04-13 04:29 - 2016-03-29 12:11 - 00686976 ____C (Microsoft Corporation) C:\WINDOWS\system32\dnsapi.dll
2016-04-13 04:29 - 2016-03-29 12:05 - 01152864 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys
2016-04-13 04:29 - 2016-03-29 12:02 - 00334736 ____C (Microsoft Corporation) C:\WINDOWS\system32\policymanager.dll
2016-04-13 04:29 - 2016-03-29 11:28 - 00535080 ____C (Microsoft Corporation) C:\WINDOWS\SysWOW64\dnsapi.dll
2016-04-13 04:29 - 2016-03-29 11:28 - 00115040 ____C (Microsoft Corporation) C:\WINDOWS\system32\NetSetupApi.dll
2016-04-13 04:29 - 2016-03-29 11:25 - 00258912 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ufx01000.sys
2016-04-13 04:29 - 2016-03-29 11:19 - 00296488 ____C (Microsoft Corporation) C:\WINDOWS\SysWOW64\policymanager.dll
2016-04-13 04:29 - 2016-03-29 11:10 - 00110584 ____C (Microsoft Corporation) C:\WINDOWS\system32\srvcli.dll
2016-04-13 04:29 - 2016-03-29 11:09 - 00078040 ____C (Microsoft Corporation) C:\WINDOWS\system32\wkscli.dll
2016-04-13 04:29 - 2016-03-29 11:08 - 00358752 ____C (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll
2016-04-13 04:29 - 2016-03-29 11:08 - 00261376 ____C (Microsoft Corporation) C:\WINDOWS\system32\LsaIso.exe
2016-04-13 04:29 - 2016-03-29 11:07 - 00081144 ____C (Microsoft Corporation) C:\WINDOWS\system32\netapi32.dll
2016-04-13 04:29 - 2016-03-29 10:44 - 00084832 ____C (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupApi.dll
2016-04-13 04:29 - 2016-03-29 10:32 - 00253088 ____C (Microsoft Corporation) C:\WINDOWS\SysWOW64\LockAppHost.exe
2016-04-13 04:29 - 2016-03-29 10:26 - 02403680 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys
2016-04-13 04:29 - 2016-03-29 10:26 - 00073872 ____C (Microsoft Corporation) C:\WINDOWS\SysWOW64\srvcli.dll
2016-04-13 04:29 - 2016-03-29 10:25 - 00056320 ____C (Microsoft Corporation) C:\WINDOWS\SysWOW64\wkscli.dll
2016-04-13 04:29 - 2016-03-29 10:24 - 00294752 ____C (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll
2016-04-13 04:29 - 2016-03-29 10:23 - 00069744 ____C (Microsoft Corporation) C:\WINDOWS\SysWOW64\netapi32.dll
2016-04-13 04:29 - 2016-03-29 10:21 - 00378208 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBXHCI.SYS
2016-04-13 04:29 - 2016-03-29 10:16 - 00026112 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\xinputhid.sys
2016-04-13 04:29 - 2016-03-29 10:07 - 00092160 ____C (Microsoft Corporation) C:\WINDOWS\system32\policymanagerprecheck.dll
2016-04-13 04:29 - 2016-03-29 09:57 - 00074752 ____C (Microsoft Corporation) C:\WINDOWS\system32\MosStorage.dll
2016-04-13 04:29 - 2016-03-29 09:51 - 00167936 ____C (Microsoft Corporation) C:\WINDOWS\system32\dafBth.dll
2016-04-13 04:29 - 2016-03-29 09:50 - 00088576 ____C (Microsoft Corporation) C:\WINDOWS\system32\AppxSysprep.dll
2016-04-13 04:29 - 2016-03-29 09:48 - 00144896 ____C (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Devices.dll
2016-04-13 04:29 - 2016-03-29 09:42 - 00269824 ____C (Microsoft Corporation) C:\WINDOWS\system32\moshostcore.dll
2016-04-13 04:29 - 2016-03-29 09:36 - 00530432 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\nwifi.sys
2016-04-13 04:29 - 2016-03-29 09:30 - 00328192 ____C (Microsoft Corporation) C:\WINDOWS\system32\profsvc.dll
2016-04-13 04:29 - 2016-03-29 09:30 - 00161792 ____C (Microsoft Corporation) C:\WINDOWS\SysWOW64\msorcl32.dll
2016-04-13 04:29 - 2016-03-29 09:26 - 00169472 ____C (Microsoft Corporation) C:\WINDOWS\system32\mdmmigrator.dll
2016-04-13 04:29 - 2016-03-29 09:23 - 00628736 ____C (Microsoft Corporation) C:\WINDOWS\system32\MessagingDataModel2.dll
2016-04-13 04:29 - 2016-03-29 09:23 - 00324608 ____C (Microsoft Corporation) C:\WINDOWS\system32\RDXTaskFactory.dll
2016-04-13 04:29 - 2016-03-29 09:20 - 00166400 ____C (Microsoft Corporation) C:\WINDOWS\system32\AboveLockAppHost.dll
2016-04-13 04:29 - 2016-03-29 09:17 - 01056256 ____C (Microsoft Corporation) C:\WINDOWS\system32\JpMapControl.dll
2016-04-13 04:29 - 2016-03-29 09:17 - 00708608 ____C (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.Web.Core.dll
2016-04-13 04:29 - 2016-03-29 09:17 - 00440320 ____C (Microsoft Corporation) C:\WINDOWS\system32\CredProvDataModel.dll
2016-04-13 04:29 - 2016-03-29 09:11 - 00881664 ____C (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Input.Inking.dll
2016-04-13 04:29 - 2016-03-29 09:11 - 00059904 ____C (Microsoft Corporation) C:\WINDOWS\SysWOW64\MosStorage.dll
2016-04-13 04:29 - 2016-03-29 09:09 - 01239552 ____C (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Bluetooth.dll
2016-04-13 04:29 - 2016-03-29 09:08 - 00888320 ____C (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.dll
2016-04-13 04:29 - 2016-03-29 09:07 - 01902592 ____C (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll
2016-04-13 04:29 - 2016-03-29 09:06 - 00848896 ____C (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll
2016-04-13 04:29 - 2016-03-29 09:04 - 00103936 ____C (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Devices.dll
2016-04-13 04:29 - 2016-03-29 09:03 - 00148480 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dfsc.sys
2016-04-13 04:29 - 2016-03-29 08:59 - 00119808 ____C (Microsoft Corporation) C:\WINDOWS\system32\BitLockerDeviceEncryption.exe
2016-04-13 04:29 - 2016-03-29 08:55 - 01052160 ____C (Microsoft Corporation) C:\WINDOWS\system32\MsSpellCheckingFacility.dll
2016-04-13 04:29 - 2016-03-29 08:49 - 00288256 ____C (Microsoft Corporation) C:\WINDOWS\system32\fveui.dll
2016-04-13 04:29 - 2016-03-29 08:42 - 01410560 ____C (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.Http.dll
2016-04-13 04:29 - 2016-03-29 08:41 - 00129024 ____C (Microsoft Corporation) C:\WINDOWS\SysWOW64\AboveLockAppHost.dll
2016-04-13 04:29 - 2016-03-29 08:40 - 00787456 ____C (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.dll
2016-04-13 04:29 - 2016-03-29 08:39 - 00350720 ____C (Microsoft Corporation) C:\WINDOWS\SysWOW64\CredProvDataModel.dll
2016-04-13 04:29 - 2016-03-29 08:38 - 00800768 ____C (Microsoft Corporation) C:\WINDOWS\SysWOW64\JpMapControl.dll
2016-04-13 04:29 - 2016-03-29 08:36 - 03351040 ____C (Microsoft Corporation) C:\WINDOWS\system32\msi.dll
2016-04-13 04:29 - 2016-03-29 08:34 - 00682496 ____C (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Input.Inking.dll
2016-04-13 04:29 - 2016-03-29 08:32 - 01588224 ____C (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml3.dll
2016-04-13 04:29 - 2016-03-29 08:32 - 00854528 ____C (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Bluetooth.dll
2016-04-13 04:29 - 2016-03-29 08:32 - 00176640 ____C (Microsoft Corporation) C:\WINDOWS\system32\mdmregistration.dll
2016-04-13 04:29 - 2016-03-29 08:32 - 00162816 ____C (Microsoft Corporation) C:\WINDOWS\system32\enrollmentapi.dll
2016-04-13 04:29 - 2016-03-29 08:31 - 01117184 ____C (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Speech.dll
2016-04-13 04:29 - 2016-03-29 08:31 - 00705536 ____C (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll
2016-04-13 04:29 - 2016-03-29 08:29 - 00555520 ____C (Microsoft Corporation) C:\WINDOWS\system32\SyncController.dll
2016-04-13 04:29 - 2016-03-29 08:29 - 00256000 ____C (Microsoft Corporation) C:\WINDOWS\system32\accountaccessor.dll
2016-04-13 04:29 - 2016-03-29 08:28 - 00764928 ____C (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Cred.dll
2016-04-13 04:29 - 2016-03-29 08:27 - 00083456 ____C (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputLocaleManager.dll
2016-04-13 04:29 - 2016-03-29 08:23 - 00777728 ____C (Microsoft Corporation) C:\WINDOWS\SysWOW64\MsSpellCheckingFacility.dll
2016-04-13 04:29 - 2016-03-29 08:22 - 00638464 ____C (Microsoft Corporation) C:\WINDOWS\SysWOW64\TokenBroker.dll
2016-04-13 04:29 - 2016-03-29 08:13 - 00592384 ____C (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Web.dll
2016-04-13 04:29 - 2016-03-29 08:10 - 03671040 ____C (Microsoft Corporation) C:\WINDOWS\SysWOW64\msi.dll
2016-04-13 04:29 - 2016-03-29 08:06 - 00151040 ____C (Microsoft Corporation) C:\WINDOWS\SysWOW64\mdmregistration.dll
2016-04-13 04:29 - 2016-03-29 08:05 - 00361472 ____C (Microsoft Corporation) C:\WINDOWS\system32\bdesvc.dll
2016-04-13 04:29 - 2016-03-29 08:04 - 00848896 ____C (Microsoft Corporation) C:\WINDOWS\system32\samsrv.dll
2016-04-13 04:29 - 2016-03-29 08:04 - 00688640 ____C (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.Connectivity.dll
2016-04-13 04:29 - 2016-03-29 07:45 - 00338432 ____C (Microsoft Corporation) C:\WINDOWS\system32\ncbservice.dll
2016-04-13 04:29 - 2016-03-29 07:43 - 00521728 ____C (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.Connectivity.dll
2016-04-13 04:29 - 2016-03-29 07:25 - 00712704 ____C (Microsoft Corporation) C:\WINDOWS\SysWOW64\RemoteNaturalLanguage.dll
2016-04-13 04:28 - 2016-04-02 05:30 - 00151040 ____C (Microsoft Corporation) C:\WINDOWS\system32\VEStoreEventHandlers.dll
2016-04-13 04:28 - 2016-04-02 05:25 - 00278528 ____C (Microsoft Corporation) C:\WINDOWS\system32\NotificationObjFactory.dll
2016-04-13 04:28 - 2016-04-02 05:25 - 00239104 ____C (Microsoft Corporation) C:\WINDOWS\SysWOW64\NotificationObjFactory.dll
2016-04-13 04:28 - 2016-04-02 05:23 - 00285696 ____C (Microsoft Corporation) C:\WINDOWS\system32\VEEventDispatcher.dll
2016-04-13 04:28 - 2016-04-02 05:23 - 00219648 ____C (Microsoft Corporation) C:\WINDOWS\SysWOW64\VEEventDispatcher.dll
2016-04-13 04:28 - 2016-04-02 05:08 - 02193408 ____C (Microsoft Corporation) C:\WINDOWS\SysWOW64\actxprxy.dll
2016-04-13 04:28 - 2016-04-02 05:03 - 04774912 ____C (Microsoft Corporation) C:\WINDOWS\system32\actxprxy.dll
2016-04-13 04:28 - 2016-03-29 11:25 - 00058400 ____C (Microsoft Corporation) C:\WINDOWS\system32\SensorsNativeApi.dll
2016-04-13 04:28 - 2016-03-29 11:18 - 00185184 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpsd.sys
2016-04-13 04:28 - 2016-03-29 11:11 - 00074424 ____C (Microsoft Corporation) C:\WINDOWS\system32\easinvoker.exe
2016-04-13 04:28 - 2016-03-29 10:41 - 00051128 ____C (Microsoft Corporation) C:\WINDOWS\SysWOW64\SensorsNativeApi.dll
2016-04-13 04:28 - 2016-03-29 10:17 - 00089088 ____C (Microsoft Corporation) C:\WINDOWS\system32\MapsCSP.dll
2016-04-13 04:28 - 2016-03-29 10:07 - 00092160 ____C (Microsoft Corporation) C:\WINDOWS\system32\SensorsNativeApi.V2.dll
2016-04-13 04:28 - 2016-03-29 10:07 - 00048128 ____C (Microsoft Corporation) C:\WINDOWS\system32\wups.dll
2016-04-13 04:28 - 2016-03-29 10:07 - 00034816 ____C (Microsoft Corporation) C:\WINDOWS\system32\dmenterprisediagnostics.dll
2016-04-13 04:28 - 2016-03-29 10:07 - 00031232 ____C (Microsoft Corporation) C:\WINDOWS\system32\wsdchngr.dll
2016-04-13 04:28 - 2016-03-29 10:06 - 00012800 ____C (Microsoft Corporation) C:\WINDOWS\system32\oleacchooks.dll
2016-04-13 04:28 - 2016-03-29 10:00 - 00076800 ____C (Microsoft Corporation) C:\WINDOWS\system32\NetCfgNotifyObjectHost.exe
2016-04-13 04:28 - 2016-03-29 10:00 - 00069632 ____C (Microsoft Corporation) C:\WINDOWS\system32\fveskybackup.dll
2016-04-13 04:28 - 2016-03-29 10:00 - 00028672 ____C (Microsoft Corporation) C:\WINDOWS\system32\mapsupdatetask.dll
2016-04-13 04:28 - 2016-03-29 09:59 - 00027648 ____C (Microsoft Corporation) C:\WINDOWS\system32\LicenseManagerShellext.exe
2016-04-13 04:28 - 2016-03-29 09:57 - 00095744 ____C (Microsoft Corporation) C:\WINDOWS\system32\samlib.dll
2016-04-13 04:28 - 2016-03-29 09:57 - 00058368 ____C (Microsoft Corporation) C:\WINDOWS\system32\browcli.dll
2016-04-13 04:28 - 2016-03-29 09:55 - 00120320 ____C (Microsoft Corporation) C:\WINDOWS\system32\MapsBtSvc.dll
2016-04-13 04:28 - 2016-03-29 09:55 - 00083968 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\serial.sys
2016-04-13 04:28 - 2016-03-29 09:55 - 00036352 ____C (Microsoft Corporation) C:\WINDOWS\system32\tbauth.dll
2016-04-13 04:28 - 2016-03-29 09:54 - 00147456 ____C (Microsoft Corporation) C:\WINDOWS\system32\mtxoci.dll
2016-04-13 04:28 - 2016-03-29 09:53 - 00116224 ____C (Microsoft Corporation) C:\WINDOWS\system32\FontProvider.dll
2016-04-13 04:28 - 2016-03-29 09:52 - 00026112 ____C (Microsoft Corporation) C:\WINDOWS\system32\TokenBrokerCookies.exe
2016-04-13 04:28 - 2016-03-29 09:51 - 00087040 ____C (Microsoft Corporation) C:\WINDOWS\system32\tzautoupdate.dll
2016-04-13 04:28 - 2016-03-29 09:50 - 00107520 ____C (Microsoft Corporation) C:\WINDOWS\system32\BdeHdCfgLib.dll
2016-04-13 04:28 - 2016-03-29 09:50 - 00066560 ____C (Microsoft Corporation) C:\WINDOWS\system32\moshost.dll
2016-04-13 04:28 - 2016-03-29 09:50 - 00066048 ____C (Microsoft Corporation) C:\WINDOWS\system32\OnDemandConnRouteHelper.dll
2016-04-13 04:28 - 2016-03-29 09:50 - 00033280 ____C (Microsoft Corporation) C:\WINDOWS\system32\wuautoappupdate.dll
2016-04-13 04:28 - 2016-03-29 09:49 - 00091136 ____C (Microsoft Corporation) C:\WINDOWS\system32\browserbroker.dll
2016-04-13 04:28 - 2016-03-29 09:46 - 00134656 ____C (Microsoft Corporation) C:\WINDOWS\system32\browser.dll
2016-04-13 04:28 - 2016-03-29 09:44 - 00230400 ____C (Microsoft Corporation) C:\WINDOWS\system32\DAFWSD.dll
2016-04-13 04:28 - 2016-03-29 09:35 - 00411648 ____C (Microsoft Corporation) C:\WINDOWS\system32\oleacc.dll
2016-04-13 04:28 - 2016-03-29 09:35 - 00239616 ____C (Microsoft Corporation) C:\WINDOWS\system32\credprovhost.dll
2016-04-13 04:28 - 2016-03-29 09:34 - 00686592 ____C (Microsoft Corporation) C:\WINDOWS\system32\ieproxy.dll
2016-04-13 04:28 - 2016-03-29 09:34 - 00333824 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\portcls.sys
2016-04-13 04:28 - 2016-03-29 09:34 - 00284672 ____C (Microsoft Corporation) C:\WINDOWS\system32\dnsrslvr.dll
2016-04-13 04:28 - 2016-03-29 09:33 - 00174592 ____C (Microsoft Corporation) C:\WINDOWS\system32\easwrt.dll
2016-04-13 04:28 - 2016-03-29 09:23 - 00694784 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdiWiFi.sys
2016-04-13 04:28 - 2016-03-29 09:21 - 00330240 ____C (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2016-04-13 04:28 - 2016-03-29 09:20 - 00080384 ____C (Microsoft Corporation) C:\WINDOWS\SysWOW64\SensorsNativeApi.V2.dll
2016-04-13 04:28 - 2016-03-29 09:20 - 00026112 ____C (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsdchngr.dll
2016-04-13 04:28 - 2016-03-29 09:19 - 00010240 ____C (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleacchooks.dll
2016-04-13 04:28 - 2016-03-29 09:18 - 00676352 ____C (Microsoft Corporation) C:\WINDOWS\system32\WSDApi.dll
2016-04-13 04:28 - 2016-03-29 09:11 - 00061440 ____C (Microsoft Corporation) C:\WINDOWS\SysWOW64\samlib.dll
2016-04-13 04:28 - 2016-03-29 09:11 - 00043520 ____C (Microsoft Corporation) C:\WINDOWS\SysWOW64\browcli.dll
2016-04-13 04:28 - 2016-03-29 09:09 - 00030208 ____C (Microsoft Corporation) C:\WINDOWS\SysWOW64\tbauth.dll
2016-04-13 04:28 - 2016-03-29 09:08 - 00841216 ____C (Microsoft Corporation) C:\WINDOWS\system32\win32spl.dll
2016-04-13 04:28 - 2016-03-29 09:08 - 00118272 ____C (Microsoft Corporation) C:\WINDOWS\SysWOW64\mtxoci.dll
2016-04-13 04:28 - 2016-03-29 09:06 - 00022528 ____C (Microsoft Corporation) C:\WINDOWS\SysWOW64\TokenBrokerCookies.exe
2016-04-13 04:28 - 2016-03-29 09:05 - 00052736 ____C (Microsoft Corporation) C:\WINDOWS\SysWOW64\OnDemandConnRouteHelper.dll
2016-04-13 04:28 - 2016-03-29 09:00 - 00176128 ____C (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.DeviceEncryptionHandlers.dll
2016-04-13 04:28 - 2016-03-29 08:59 - 00223232 ____C (Microsoft Corporation) C:\WINDOWS\system32\fveapibase.dll
2016-04-13 04:28 - 2016-03-29 08:53 - 00323072 ____C (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleacc.dll
2016-04-13 04:28 - 2016-03-29 08:53 - 00193024 ____C (Microsoft Corporation) C:\WINDOWS\SysWOW64\credprovhost.dll
2016-04-13 04:28 - 2016-03-29 08:52 - 00306176 ____C (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieproxy.dll
2016-04-13 04:28 - 2016-03-29 08:52 - 00141824 ____C (Microsoft Corporation) C:\WINDOWS\SysWOW64\easwrt.dll
2016-04-13 04:28 - 2016-03-29 08:42 - 00250880 ____C (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2016-04-13 04:28 - 2016-03-29 08:39 - 00564224 ____C (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSDApi.dll
2016-04-13 04:28 - 2016-03-29 08:39 - 00496128 ____C (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.Web.Core.dll
2016-04-13 04:28 - 2016-03-29 08:34 - 00784896 ____C (Microsoft Corporation) C:\WINDOWS\SysWOW64\NMAA.dll
2016-04-13 04:28 - 2016-03-29 08:32 - 00638464 ____C (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.dll
2016-04-13 04:28 - 2016-03-29 08:32 - 00128512 ____C (Microsoft Corporation) C:\WINDOWS\system32\dmcsps.dll
2016-04-13 04:28 - 2016-03-29 08:27 - 07979008 ____C (Microsoft Corporation) C:\WINDOWS\system32\mos.dll
2016-04-13 04:28 - 2016-03-29 08:05 - 00450560 ____C (Microsoft Corporation) C:\WINDOWS\SysWOW64\SyncController.dll
2016-04-13 04:28 - 2016-03-29 08:01 - 00957952 ____C (Microsoft Corporation) C:\WINDOWS\system32\IKEEXT.DLL
2016-04-13 04:28 - 2016-03-29 08:00 - 06297088 ____C (Microsoft Corporation) C:\WINDOWS\SysWOW64\mos.dll
2016-04-13 04:28 - 2016-03-29 07:35 - 00821248 ____C (Microsoft Corporation) C:\WINDOWS\system32\fvewiz.dll
2016-04-13 04:28 - 2016-03-29 07:28 - 00324608 ____C (Microsoft Corporation) C:\WINDOWS\system32\fvecpl.dll
2016-04-13 04:28 - 2016-03-29 07:27 - 00794112 ____C (Microsoft Corporation) C:\WINDOWS\system32\BFE.DLL
2016-04-13 04:28 - 2016-03-29 07:26 - 00402432 ____C (Microsoft Corporation) C:\WINDOWS\system32\FWPUCLNT.DLL
2016-04-13 04:28 - 2016-03-29 07:25 - 00269824 ____C (Microsoft Corporation) C:\WINDOWS\SysWOW64\FWPUCLNT.DLL
2016-04-13 04:28 - 2016-03-29 07:21 - 00065536 ____C (Microsoft Corporation) C:\WINDOWS\system32\basesrv.dll
2016-04-13 04:27 - 2016-03-29 09:57 - 00199168 ____C (Microsoft Corporation) C:\WINDOWS\system32\InstallAgent.exe
2016-04-13 04:27 - 2016-03-29 09:48 - 00086528 ____C (Microsoft Corporation) C:\WINDOWS\system32\AppCapture.dll
2016-04-13 04:27 - 2016-03-29 09:32 - 00764928 ____C (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll
2016-04-13 04:27 - 2016-03-29 09:32 - 00414720 ____C (Microsoft Corporation) C:\WINDOWS\system32\bcastdvr.exe
2016-04-13 04:27 - 2016-03-29 09:11 - 00161280 ____C (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallAgent.exe
2016-04-13 04:27 - 2016-03-29 09:09 - 00087040 ____C (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapsBtSvc.dll
2016-04-13 04:27 - 2016-03-29 09:00 - 00235008 ____C C:\WINDOWS\system32\MTF.dll
2016-04-13 04:27 - 2016-03-29 08:27 - 00162816 ____C C:\WINDOWS\SysWOW64\MTF.dll
2016-04-09 04:10 - 2016-04-09 04:10 - 05934784 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerInstaller.exe
2016-04-08 20:34 - 2016-04-08 20:34 - 00000001 _____ C:\WINDOWS\SysWOW64\en.html
2016-04-04 00:37 - 2016-04-04 00:37 - 00000000 ___HD C:\ProgramData\CanonIJSolutionMenu
2016-04-03 23:32 - 2016-04-03 23:32 - 00000000 ____D C:\ProgramData\CanonIJ
2016-04-03 23:30 - 2016-04-14 04:01 - 00000000 ____D C:\ProgramData\CanonIJPLM
2016-04-03 23:30 - 2016-04-03 23:30 - 00000000 ___HD C:\ProgramData\CanonIJMyPrinter
2016-04-03 23:26 - 2016-04-03 23:26 - 00002133 ____C C:\Users\Public\Desktop\Registrace uživatele zařízení Canon MP250 series.LNK
2016-04-03 23:26 - 2016-04-03 23:26 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Registrace uživatele zařízení Canon MP250 series
2016-04-03 23:26 - 2009-02-26 19:32 - 00038224 ____N (CANON INC.) C:\WINDOWS\SysWOW64\IJRMF.exe
2016-04-03 22:23 - 2016-04-03 22:23 - 00002168 ____C C:\Users\Public\Desktop\Canon Easy-PhotoPrint EX.lnk
2016-04-03 22:23 - 2016-04-03 22:23 - 00002114 ____C C:\Users\Public\Desktop\Canon Solution Menu.lnk
2016-04-03 22:22 - 2016-04-03 22:22 - 00002170 ____C C:\Users\Public\Desktop\Canon MP Navigator EX 3.0.lnk
2016-04-03 22:21 - 2016-04-03 22:23 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon Utilities
2016-04-03 22:21 - 2016-04-03 22:21 - 00001851 ____C C:\Users\Public\Desktop\Canon My Printer.lnk
2016-04-03 22:20 - 2016-04-03 22:20 - 00000000 ____D C:\Program Files\Canon
2016-04-03 22:19 - 2016-04-03 22:19 - 00002429 ____C C:\Users\Public\Desktop\Canon MP250 series Příručka online.lnk
2016-04-03 22:11 - 2016-04-03 22:11 - 00000000 ___HD C:\WINDOWS\system32\CanonIJ Uninstaller Information
2016-04-03 22:11 - 2016-04-03 22:11 - 00000000 ___HD C:\ProgramData\CanonBJ
2016-04-03 22:11 - 2016-04-03 22:11 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon MP250 series
2016-04-03 22:11 - 2009-04-03 16:01 - 01321984 _____ (CANON INC.) C:\WINDOWS\system32\CNC250C.dll
2016-04-03 22:11 - 2009-04-03 16:00 - 00092672 _____ (CANON INC.) C:\WINDOWS\system32\CNC250I.dll
2016-04-03 22:11 - 2009-04-03 15:57 - 00106496 _____ (CANON INC.) C:\WINDOWS\SysWOW64\CNC250U.dll
2016-04-03 22:11 - 2009-03-11 11:36 - 00328192 _____ (CANON INC.) C:\WINDOWS\system32\CNC250L.dll
2016-04-03 22:11 - 2009-03-11 11:34 - 00303104 _____ (CANON INC.) C:\WINDOWS\SysWOW64\CNC250L.dll
2016-04-03 22:10 - 2016-04-03 22:10 - 00000000 ___HD C:\Program Files\CanonBJ
2016-04-03 22:10 - 2009-03-18 11:10 - 00244736 _____ (CANON INC.) C:\WINDOWS\system32\CNMIU9W.DLL
2016-04-03 22:10 - 2009-03-17 05:00 - 00336896 _____ (CANON INC.) C:\WINDOWS\system32\CNMLM9W.DLL
2016-04-03 22:10 - 2009-02-04 15:18 - 00104960 _____ (Canon Inc.) C:\WINDOWS\system32\CNC250O.dll
2016-04-03 21:58 - 2016-04-03 21:58 - 00000000 ___DC C:\Users\Lada\AppData\LocalLow\Temp
2016-04-03 21:18 - 2016-04-03 21:18 - 00004296 _____ C:\WINDOWS\System32\Tasks\AMD Updater
2016-04-03 21:18 - 2016-04-03 21:18 - 00002094 ____C C:\Users\Public\Desktop\Raptr.lnk
2016-04-03 21:18 - 2016-04-03 21:18 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Raptr
2016-04-03 21:17 - 2016-04-14 04:00 - 00000000 ____D C:\Users\Lada\AppData\Roaming\PlaysTV
2016-04-03 21:17 - 2016-04-03 21:17 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Gaming Evolved
2016-04-03 21:15 - 2016-04-03 21:15 - 00000000 ____D C:\Users\Lada\AppData\Roaming\library_dir
2016-04-03 21:14 - 2016-04-03 21:15 - 00000000 ____D C:\Program Files (x86)\Raptr Inc
2016-04-03 21:13 - 2016-04-14 04:00 - 00000000 ____D C:\Users\Lada\AppData\Roaming\Raptr
2016-04-03 21:13 - 2016-04-03 21:15 - 00000000 ____D C:\Program Files (x86)\Raptr
2016-04-03 19:42 - 2016-04-07 18:00 - 00000000 ___DC C:\Users\Lada\Desktop\plot
2016-03-29 20:21 - 2016-03-29 20:21 - 00000000 ____D C:\ProgramData\desktopfind
2016-03-29 20:20 - 2016-03-29 20:20 - 00000270 __RSH C:\ProgramData\ntuser.pol
2016-03-27 18:20 - 2016-03-27 18:21 - 00000000 ___DC C:\Users\Lada\Desktop\zmrzlina
2016-03-24 12:11 - 2016-03-24 12:11 - 00000384 _____ C:\WINDOWS\SysWOW64\data.bin
2016-03-24 12:10 - 2016-03-24 12:12 - 00000072 _____ C:\WINDOWS\SysWOW64\123.html
2016-03-20 17:21 - 2016-03-20 17:21 - 00000000 ___RD C:\Users\Lada\3D Objects
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2016-04-16 16:10 - 2012-07-16 23:13 - 00000914 ____C C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2016-04-16 14:30 - 2011-04-01 10:58 - 00000952 ____C C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2016-04-16 12:03 - 2015-10-30 09:24 - 00000000 ___HD C:\Program Files\WindowsApps
2016-04-16 12:03 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\AppReadiness
2016-04-16 11:58 - 2016-03-15 03:16 - 02041222 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2016-04-16 11:58 - 2015-10-30 20:31 - 00845390 _____ C:\WINDOWS\system32\perfh005.dat
2016-04-16 11:58 - 2015-10-30 20:31 - 00193110 _____ C:\WINDOWS\system32\perfc005.dat
2016-04-16 11:58 - 2015-10-30 09:21 - 00000000 ____D C:\WINDOWS\INF
2016-04-16 11:49 - 2011-04-01 10:58 - 00000948 ____C C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2016-04-16 11:48 - 2016-03-15 03:46 - 00000006 ___HC C:\WINDOWS\Tasks\SA.DAT
2016-04-16 11:47 - 2012-07-24 18:22 - 00000000 ___DC C:\Program Files (x86)\Mozilla Maintenance Service
2016-04-16 11:46 - 2016-03-15 03:17 - 00000000 ____D C:\Users\Lada
2016-04-16 11:46 - 2015-10-30 08:28 - 00524288 ___SH C:\WINDOWS\system32\config\BBI
2016-04-15 18:03 - 2015-08-02 21:23 - 00000000 ___DC C:\Users\Lada\Desktop\Vaneska
2016-04-14 23:13 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\rescache
2016-04-14 19:24 - 2015-10-30 09:11 - 00000000 ____D C:\WINDOWS\CbsTemp
2016-04-14 04:12 - 2011-10-29 01:30 - 00001436 ____C C:\WINDOWS\system32\ServiceFilter.ini
2016-04-14 04:08 - 2016-03-15 03:06 - 00339856 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2016-04-14 04:04 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2016-04-14 04:04 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\appraiser
2016-04-14 04:04 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\PolicyDefinitions
2016-04-14 04:04 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\bcastdvr
2016-04-14 01:45 - 2012-02-19 18:11 - 00453280 ____C (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe
2016-04-13 10:36 - 2013-08-14 03:05 - 00000000 ___DC C:\WINDOWS\system32\MRT
2016-04-13 05:15 - 2012-01-25 14:52 - 135176864 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2016-04-13 03:52 - 2016-03-15 08:02 - 00000000 ____D C:\Users\Lada\AppData\Local\Packages
2016-04-06 20:32 - 2015-10-30 09:26 - 00829944 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2016-04-06 20:32 - 2015-10-30 09:26 - 00176632 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2016-04-05 11:00 - 2016-03-15 08:19 - 00000000 ___DC C:\AMD
2016-04-04 00:36 - 2013-03-30 07:45 - 00000000 __HDC C:\ProgramData\CanonIJScan
2016-04-04 00:36 - 2013-02-12 14:49 - 00000000 ___DC C:\Users\Lada\AppData\Roaming\Canon
2016-04-03 23:30 - 2013-02-12 14:34 - 00000000 ___DC C:\Program Files (x86)\Canon
2016-04-03 22:15 - 2011-10-29 01:30 - 00002396 ____C C:\WINDOWS\system32\AutoRunFilter.ini
2016-04-03 21:20 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\FxsTmp
2016-04-03 21:13 - 2016-03-15 08:19 - 00000000 ____D C:\Program Files\AMD
2016-04-03 21:12 - 2016-03-15 08:20 - 00000000 ____D C:\ProgramData\Package Cache
2016-03-29 20:21 - 2013-02-19 01:23 - 00002325 ____C C:\Users\Public\Desktop\Google Chrome.lnk
2016-03-29 20:21 - 2012-07-24 18:22 - 00001284 ____C C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2016-03-29 20:21 - 2012-07-24 18:22 - 00001272 ____C C:\Users\Public\Desktop\Mozilla Firefox.lnk
2016-03-29 20:21 - 2011-04-01 10:58 - 00002414 ____C C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2016-03-29 20:20 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\SysWOW64\GroupPolicy
2016-03-29 20:20 - 2009-07-14 05:20 - 00000000 __HDC C:\WINDOWS\system32\GroupPolicy
2016-03-29 12:07 - 2009-07-29 08:03 - 00400302 __RSH C:\bootmgr
2016-03-24 13:10 - 2012-07-16 23:13 - 00003888 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater
==================== Files in the root of some directories =======
2014-06-24 04:24 - 2015-11-30 06:28 - 0005120 ____C () C:\Users\Lada\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2013-06-29 16:03 - 2013-06-29 16:03 - 0007601 ____C () C:\Users\Lada\AppData\Local\Resmon.ResmonCfg
2011-04-01 11:21 - 2010-07-07 01:10 - 0131472 ____C () C:\ProgramData\FullRemove.exe
2011-10-29 01:37 - 2011-10-29 01:39 - 0000105 ____C () C:\ProgramData\{40BF1E83-20EB-11D8-97C5-0009C5020658}.log
2011-10-29 01:36 - 2011-10-29 01:36 - 0000107 ____C () C:\ProgramData\{C59C179C-668D-49A9-B6EA-0121CCFC1243}.log
Some files in TEMP:
====================
C:\Users\Lada\AppData\Local\Temp\libeay32.dll
C:\Users\Lada\AppData\Local\Temp\MSETUP4.EXE
C:\Users\Lada\AppData\Local\Temp\msvcr120.dll
C:\Users\Lada\AppData\Local\Temp\playstv_patch.exe
C:\Users\Lada\AppData\Local\Temp\raptrpatch.exe
C:\Users\Lada\AppData\Local\Temp\raptr_stub.exe
C:\Users\Lada\AppData\Local\Temp\sqlite3.dll
C:\Users\Lada\AppData\Local\Temp\tmp3A6B.exe
==================== Bamital & volsnap =================
(There is no automatic fix for files that do not pass verification.)
C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\wininit.exe => File is digitally signed
C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\SysWOW64\explorer.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\SysWOW64\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\SysWOW64\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\SysWOW64\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
C:\WINDOWS\SysWOW64\dnsapi.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2016-04-09 10:08
==================== End of FRST.txt ============================