Stránka 1 z 2

The NTVDM CPU has encountered an illegal instruction

Napsal: 15 črc 2016 23:24
od Radek.Juracak
Dobrý den,

prosím o kontrolu, mám problém s PC, viz název tématu...

Logfile of random's system information tool 1.10 (written by random/random)
Run by home at 2016-07-16 00:18:19
Microsoft Windows 10 Pro
System drive C: has 38 GB (46%) free of 83 GB
Total RAM: 3548 MB (64% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 0:18:29, on 16.7.2016
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.10586.0494)
Boot mode: Normal

Running processes:
C:\WINDOWS\system32\sihost.exe
C:\WINDOWS\system32\taskhostw.exe
C:\Windows\System32\RuntimeBroker.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkypeHost.exe
C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe
C:\WINDOWS\system32\ntvdm.exe
C:\WINDOWS\system32\conhost.exe
C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe
C:\WINDOWS\system32\ntvdm.exe
C:\WINDOWS\system32\conhost.exe
C:\Windows\VM305_STI.EXE
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files\HP\HP Software Update\hpwuschd2.exe
C:\Users\home\AppData\Roaming\Spotify\SpotifyWebHelper.exe
C:\Users\home\AppData\Roaming\Spotify\Spotify.exe
C:\Users\home\AppData\Local\Microsoft\OneDrive\OneDrive.exe
C:\WINDOWS\system32\RunDll32.exe
C:\Users\home\AppData\Roaming\Spotify\SpotifyCrashService.exe
C:\Users\home\AppData\Roaming\Spotify\Spotify.exe
C:\Users\home\AppData\Roaming\Spotify\Spotify.exe
C:\WINDOWS\system32\wbem\unsecapp.exe
C:\WINDOWS\system32\ntvdm.exe
C:\WINDOWS\system32\conhost.exe
C:\WINDOWS\system32\ntvdm.exe
C:\WINDOWS\system32\conhost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\ntvdm.exe
C:\WINDOWS\system32\conhost.exe
C:\WINDOWS\system32\ntvdm.exe
C:\WINDOWS\system32\conhost.exe
C:\WINDOWS\system32\ntvdm.exe
C:\WINDOWS\system32\conhost.exe
C:\WINDOWS\system32\ntvdm.exe
C:\WINDOWS\system32\conhost.exe
C:\WINDOWS\system32\ntvdm.exe
C:\WINDOWS\system32\conhost.exe
C:\WINDOWS\system32\ntvdm.exe
C:\WINDOWS\system32\conhost.exe
C:\WINDOWS\system32\ntvdm.exe
C:\WINDOWS\system32\conhost.exe
C:\WINDOWS\system32\ntvdm.exe
C:\WINDOWS\system32\conhost.exe
C:\WINDOWS\system32\ApplicationFrameHost.exe
C:\Program Files\WindowsApps\Microsoft.Windows.Photos_16.526.11220.0_x86__8wekyb3d8bbwe\Microsoft.Photos.exe
C:\WINDOWS\ImmersiveControlPanel\SystemSettings.exe
C:\Program Files\WindowsApps\Microsoft.ZuneVideo_3.6.21441.0_x86__8wekyb3d8bbwe\Video.UI.exe
C:\WINDOWS\system32\ntvdm.exe
C:\WINDOWS\system32\conhost.exe
C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.1605.1582.0_x86__8wekyb3d8bbwe\Calculator.exe
C:\WINDOWS\system32\ntvdm.exe
C:\WINDOWS\system32\conhost.exe
C:\WINDOWS\system32\ntvdm.exe
C:\WINDOWS\system32\conhost.exe
C:\WINDOWS\system32\ntvdm.exe
C:\WINDOWS\system32\conhost.exe
C:\Program Files\totalcmd\TOTALCMD.EXE
D:\RSIT.exe
C:\Program Files\trend micro\home.exe
C:\Program Files\Mozilla Firefox\firefox.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~1\MICROS~1\Office14\GROOVEEX.DLL
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~1\MICROS~1\Office14\URLREDIR.DLL
O4 - HKLM\..\Run: [BigDog305] C:\WINDOWS\VM305_STI.EXE VIMICRO USB PC Camera (ZC0305)
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [BCSSync] "C:\Program Files\Microsoft Office\Office14\BCSSync.exe" /DelayServices
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe
O4 - HKCU\..\Run: [Spotify Web Helper] "C:\Users\home\AppData\Roaming\Spotify\SpotifyWebHelper.exe"
O4 - HKCU\..\Run: [Spotify] "C:\Users\home\AppData\Roaming\Spotify\Spotify.exe" -autostart -minimized
O4 - HKCU\..\Run: [OneDrive] "C:\Users\home\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\System32\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\System32\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O4 - Startup: Sledovat výstrahy inkoustu - HP Deskjet 1510 series.lnk = ?
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\Program Files\Microsoft Office\Office14\EXCEL.EXE/3000
O9 - Extra button: HP Smart Print - {22CC3EBD-C286-43aa-B8E6-06B115F74162} - C:\Program Files\Hewlett-Packard\Smart Print\SmartPrintSetup.exe
O9 - Extra 'Tools' menuitem: HP Smart Print - {22CC3EBD-C286-43aa-B8E6-06B115F74162} - C:\Program Files\Hewlett-Packard\Smart Print\SmartPrintSetup.exe
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\System32\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\System32\tbauth.dll
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: @comres.dll,-947 (COMSysApp) - Unknown owner - C:\WINDOWS\system32\dllhost.exe
O23 - Service: HP Support Solutions Framework Service (HPSupportSolutionsFrameworkService) - Hewlett-Packard Company - C:\Program Files\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: Nero Update (NAUpdate) - Nero AG - C:\Program Files\Nero\Update\NASvc.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe

--
End of file - 6876 bytes

======Scheduled tasks folder======

C:\WINDOWS\tasks\Adobe Flash Player Updater.job - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
C:\WINDOWS\tasks\AutoKMS.job - C:\Windows\AutoKMS\AutoKMS.exe /Application

=========Mozilla firefox=========

ProfilePath - C:\Users\home\AppData\Roaming\Mozilla\Firefox\Profiles\gz1bebt5.default

prefs.js - "browser.startup.homepage" - "https://www.seznam.cz/"

"wrc@avast.com"=C:\Program Files\AVAST Software\Avast\WebRep\FF
"sp@avast.com"=C:\Program Files\AVAST Software\Avast\SafePrice\FF


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 22.0.0.209 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF32_22_0_0_209.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@checkpoint.com/FFApi]
"Description"=ZoneAlarm LTD Toolbar Api
"Path"=C:\Program Files\CheckPoint\ZAForceField\TrustChecker\bin\npFFApi.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0]
"Description"=Office Authorization plug-in for NPAPI browsers
"Path"=C:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=C:\PROGRA~1\MICROS~1\Office14\NPSPWRAP.DLL

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@videolan.org/vlc,version=2.2.1]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll


======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~1\MICROS~1\Office14\GROOVEEX.DLL [2013-12-19 4171480]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~1\Office14\URLREDIR.DLL [2013-03-06 562904]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"BigDog305"=C:\WINDOWS\VM305_STI.EXE [2007-04-09 57344]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2016-07-15 8900328]
"BCSSync"=C:\Program Files\Microsoft Office\Office14\BCSSync.exe [2012-11-05 89184]
"HP Software Update"=C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe [2013-05-30 96056]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Spotify Web Helper"=C:\Users\home\AppData\Roaming\Spotify\SpotifyWebHelper.exe [2016-07-10 1554032]
"Spotify"=C:\Users\home\AppData\Roaming\Spotify\Spotify.exe [2016-07-10 6913648]
"OneDrive"=C:\Users\home\AppData\Local\Microsoft\OneDrive\OneDrive.exe [2016-07-06 554184]

C:\Users\home\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Sledovat výstrahy inkoustu - HP Deskjet 1510 series.lnk - C:\WINDOWS\system32\RunDll32.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~1\MICROS~1\Office14\GROOVEEX.DLL [2013-12-19 4171480]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iai2c.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iaioi2c.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SpbCx.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TileDataModelSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\uefi.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SpbCx.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TileDataModelSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\uefi.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DSCAutomationHostEnabled"=2
"SoftwareSASGeneration"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.cvid"=iccvid.dll
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2016-07-16 00:18:19 ----D---- C:\rsit
2016-07-16 00:18:19 ----D---- C:\Program Files\trend micro
2016-07-15 23:32:28 ----A---- C:\WINDOWS\ucrtbase.dll
2016-07-15 23:32:28 ----A---- C:\WINDOWS\system32\aswBoot.exe
2016-07-15 23:32:08 ----A---- C:\WINDOWS\avastSS.scr
2016-07-15 22:56:16 ----D---- C:\Program Files\CMAK
2016-07-13 13:33:24 ----A---- C:\WINDOWS\system32\win32kbase.sys
2016-07-13 13:33:23 ----A---- C:\WINDOWS\system32\win32kfull.sys
2016-07-13 13:33:23 ----A---- C:\WINDOWS\system32\sppsvc.exe
2016-07-13 13:33:23 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2016-07-13 13:33:22 ----A---- C:\WINDOWS\system32\urlmon.dll
2016-07-13 13:33:22 ----A---- C:\WINDOWS\system32\iertutil.dll
2016-07-13 13:33:22 ----A---- C:\WINDOWS\system32\AppXDeploymentServer.dll
2016-07-13 13:33:21 ----A---- C:\WINDOWS\system32\WWAHost.exe
2016-07-13 13:33:21 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2016-07-13 13:33:20 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.dll
2016-07-13 13:33:18 ----A---- C:\WINDOWS\system32\wininet.dll
2016-07-13 13:33:18 ----A---- C:\WINDOWS\system32\mos.dll
2016-07-13 13:33:17 ----A---- C:\WINDOWS\system32\d3d11.dll
2016-07-13 13:33:17 ----A---- C:\WINDOWS\system32\BingMaps.dll
2016-07-13 13:33:16 ----A---- C:\WINDOWS\system32\sppobjs.dll
2016-07-13 13:33:16 ----A---- C:\WINDOWS\system32\d2d1.dll
2016-07-13 13:33:15 ----A---- C:\WINDOWS\system32\msftedit.dll
2016-07-13 13:33:15 ----A---- C:\WINDOWS\system32\drivers\dxgkrnl.sys
2016-07-13 13:33:15 ----A---- C:\WINDOWS\system32\CertEnroll.dll
2016-07-13 13:33:14 ----A---- C:\WINDOWS\system32\MapControlCore.dll
2016-07-13 13:33:14 ----A---- C:\WINDOWS\system32\dxgi.dll
2016-07-13 13:33:14 ----A---- C:\WINDOWS\system32\dwmcore.dll
2016-07-13 13:33:13 ----A---- C:\WINDOWS\system32\WpcMon.exe
2016-07-13 13:33:13 ----A---- C:\WINDOWS\system32\MapsStore.dll
2016-07-13 13:33:13 ----A---- C:\WINDOWS\system32\MapConfiguration.dll
2016-07-13 13:33:12 ----A---- C:\WINDOWS\system32\dcomp.dll
2016-07-13 13:33:11 ----A---- C:\WINDOWS\system32\Wpc.dll
2016-07-13 13:33:11 ----A---- C:\WINDOWS\system32\Windows.Networking.UX.EapRequestHandler.dll
2016-07-13 13:33:11 ----A---- C:\WINDOWS\system32\drivers\dxgmms2.sys
2016-07-13 13:33:10 ----A---- C:\WINDOWS\system32\UIRibbon.dll
2016-07-13 13:33:10 ----A---- C:\WINDOWS\system32\sppwinob.dll
2016-07-13 13:33:10 ----A---- C:\WINDOWS\system32\JpMapControl.dll
2016-07-13 13:33:10 ----A---- C:\WINDOWS\system32\d3d9.dll
2016-07-13 13:33:09 ----A---- C:\WINDOWS\system32\Windows.StateRepository.dll
2016-07-13 13:33:09 ----A---- C:\WINDOWS\system32\crypt32.dll
2016-07-13 13:33:08 ----A---- C:\WINDOWS\system32\wmpmde.dll
2016-07-13 13:33:08 ----A---- C:\WINDOWS\system32\WindowsCodecs.dll
2016-07-13 13:33:08 ----A---- C:\WINDOWS\system32\Windows.Globalization.dll
2016-07-13 13:33:08 ----A---- C:\WINDOWS\system32\MusNotification.exe
2016-07-13 13:33:08 ----A---- C:\WINDOWS\system32\moshostcore.dll
2016-07-13 13:33:08 ----A---- C:\WINDOWS\system32\aadtb.dll
2016-07-13 13:33:07 ----A---- C:\WINDOWS\system32\samsrv.dll
2016-07-13 13:33:07 ----A---- C:\WINDOWS\system32\moshost.dll
2016-07-13 13:33:07 ----A---- C:\WINDOWS\system32\DWrite.dll
2016-07-13 13:33:07 ----A---- C:\WINDOWS\system32\drivers\pci.sys
2016-07-13 13:33:07 ----A---- C:\WINDOWS\system32\drivers\ksecpkg.sys
2016-07-13 13:33:06 ----A---- C:\WINDOWS\system32\SimCfg.dll
2016-07-13 13:33:06 ----A---- C:\WINDOWS\system32\pnidui.dll
2016-07-13 13:33:06 ----A---- C:\WINDOWS\system32\ole32.dll
2016-07-13 13:33:06 ----A---- C:\WINDOWS\system32\MosHostClient.dll
2016-07-13 13:33:05 ----A---- C:\WINDOWS\system32\werconcpl.dll
2016-07-13 13:33:05 ----A---- C:\WINDOWS\system32\MosStorage.dll
2016-07-13 13:33:05 ----A---- C:\WINDOWS\system32\GdiPlus.dll
2016-07-13 13:33:05 ----A---- C:\WINDOWS\system32\dui70.dll
2016-07-13 13:33:04 ----A---- C:\WINDOWS\system32\WpcWebSync.dll
2016-07-13 13:33:04 ----A---- C:\WINDOWS\system32\netshell.dll
2016-07-13 13:33:04 ----A---- C:\WINDOWS\system32\MusNotificationUx.exe
2016-07-13 13:33:04 ----A---- C:\WINDOWS\system32\drivers\cng.sys
2016-07-13 13:33:03 ----A---- C:\WINDOWS\system32\wwanconn.dll
2016-07-13 13:33:03 ----A---- C:\WINDOWS\system32\Windows.Graphics.Printing.dll
2016-07-13 13:33:03 ----A---- C:\WINDOWS\system32\TokenBroker.dll
2016-07-13 13:33:03 ----A---- C:\WINDOWS\system32\olepro32.dll
2016-07-13 13:33:03 ----A---- C:\WINDOWS\system32\ClipUp.exe
2016-07-13 13:33:02 ----A---- C:\WINDOWS\system32\Windows.Graphics.Printing.3D.dll
2016-07-13 13:33:01 ----A---- C:\WINDOWS\system32\rpcrt4.dll
2016-07-13 13:33:01 ----A---- C:\WINDOWS\system32\qdvd.dll
2016-07-13 13:33:01 ----A---- C:\WINDOWS\system32\eappcfg.dll
2016-07-13 13:33:01 ----A---- C:\WINDOWS\system32\drivers\dxgmms1.sys
2016-07-13 13:33:00 ----A---- C:\WINDOWS\system32\SimAuth.dll
2016-07-13 13:33:00 ----A---- C:\WINDOWS\system32\ProximityCommon.dll
2016-07-13 13:33:00 ----A---- C:\WINDOWS\system32\modernexecserver.dll
2016-07-13 13:33:00 ----A---- C:\WINDOWS\system32\drivers\nwifi.sys
2016-07-13 13:33:00 ----A---- C:\WINDOWS\system32\D3DCompiler_47.dll
2016-07-13 13:32:59 ----A---- C:\WINDOWS\system32\WindowsCodecsExt.dll
2016-07-13 13:32:59 ----A---- C:\WINDOWS\system32\duser.dll
2016-07-13 13:32:59 ----A---- C:\WINDOWS\system32\cdd.dll
2016-07-13 13:32:59 ----A---- C:\WINDOWS\system32\audiosrv.dll
2016-07-13 13:32:58 ----A---- C:\WINDOWS\system32\StikyNot.exe
2016-07-13 13:32:58 ----A---- C:\WINDOWS\system32\cdpsvc.dll
2016-07-13 13:32:58 ----A---- C:\WINDOWS\system32\apprepapi.dll
2016-07-13 13:32:57 ----A---- C:\WINDOWS\system32\wwanmm.dll
2016-07-13 13:32:57 ----A---- C:\WINDOWS\system32\Windows.Security.Authentication.Web.Core.dll
2016-07-13 13:32:57 ----A---- C:\WINDOWS\system32\wcnwiz.dll
2016-07-13 13:32:57 ----A---- C:\WINDOWS\system32\rasgcw.dll
2016-07-13 13:32:56 ----A---- C:\WINDOWS\system32\WlanMediaManager.dll
2016-07-13 13:32:56 ----A---- C:\WINDOWS\system32\tzautoupdate.dll
2016-07-13 13:32:56 ----A---- C:\WINDOWS\system32\eappprxy.dll
2016-07-13 13:32:56 ----A---- C:\WINDOWS\system32\certcli.dll
2016-07-13 13:32:55 ----A---- C:\WINDOWS\system32\WLanConn.dll
2016-07-13 13:32:55 ----A---- C:\WINDOWS\system32\Windows.StateRepositoryClient.dll
2016-07-13 13:32:55 ----A---- C:\WINDOWS\system32\msra.exe
2016-07-13 13:32:54 ----A---- C:\WINDOWS\system32\eapphost.dll
2016-07-13 13:32:54 ----A---- C:\WINDOWS\system32\eapp3hst.dll
2016-07-13 13:32:53 ----A---- C:\WINDOWS\system32\WmpDui.dll
2016-07-13 13:32:53 ----A---- C:\WINDOWS\system32\winsrv.dll
2016-07-13 13:32:53 ----A---- C:\WINDOWS\system32\Windows.StateRepositoryBroker.dll
2016-07-13 13:32:53 ----A---- C:\WINDOWS\system32\GlobCollationHost.dll
2016-07-13 13:32:53 ----A---- C:\WINDOWS\system32\eappgnui.dll
2016-07-13 13:32:53 ----A---- C:\WINDOWS\system32\dot3ui.dll
2016-07-13 13:32:53 ----A---- C:\WINDOWS\system32\apprepsync.dll
2016-07-13 13:32:53 ----A---- C:\WINDOWS\system32\aadcloudap.dll
2016-07-13 13:32:52 ----A---- C:\WINDOWS\system32\WpcWebFilter.dll
2016-07-13 13:32:52 ----A---- C:\WINDOWS\system32\UIRibbonRes.dll
2016-07-13 13:32:52 ----A---- C:\WINDOWS\system32\NMAA.dll
2016-07-13 13:32:52 ----A---- C:\WINDOWS\system32\mapsupdatetask.dll
2016-07-13 13:32:52 ----A---- C:\WINDOWS\system32\MapsCSP.dll
2016-07-13 13:32:52 ----A---- C:\WINDOWS\system32\MapsBtSvc.dll
2016-07-13 13:32:51 ----A---- C:\WINDOWS\system32\SettingsHandlers_nt.dll
2016-07-13 13:32:51 ----A---- C:\WINDOWS\system32\cdpreference.exe
2016-07-13 13:32:50 ----A---- C:\WINDOWS\system32\twinui.dll
2016-07-13 13:32:48 ----A---- C:\WINDOWS\system32\wmp.dll
2016-07-13 13:32:45 ----A---- C:\WINDOWS\system32\windows.storage.dll
2016-07-13 13:32:44 ----A---- C:\WINDOWS\system32\wuaueng.dll
2016-07-13 13:32:44 ----A---- C:\WINDOWS\system32\AppCapture.dll
2016-07-13 13:32:43 ----A---- C:\WINDOWS\system32\shell32.dll
2016-07-13 13:32:43 ----A---- C:\WINDOWS\system32\bcastdvr.exe
2016-07-13 13:32:41 ----A---- C:\WINDOWS\system32\Windows.UI.Logon.dll
2016-07-13 13:32:41 ----A---- C:\WINDOWS\system32\NetworkMobileSettings.dll
2016-07-13 13:32:41 ----A---- C:\WINDOWS\explorer.exe
2016-07-13 13:32:38 ----A---- C:\WINDOWS\system32\ExplorerFrame.dll
2016-07-13 13:32:37 ----A---- C:\WINDOWS\system32\SharedStartModel.dll
2016-07-13 13:32:36 ----A---- C:\WINDOWS\system32\Windows.UI.Search.dll
2016-07-13 13:32:35 ----A---- C:\WINDOWS\system32\localspl.dll
2016-07-13 13:32:35 ----A---- C:\WINDOWS\system32\CoreUIComponents.dll
2016-07-13 13:32:35 ----A---- C:\WINDOWS\system32\authui.dll
2016-07-13 13:32:34 ----A---- C:\WINDOWS\system32\SystemSettingsThresholdAdminFlowUI.dll
2016-07-13 13:32:34 ----A---- C:\WINDOWS\system32\dosvc.dll
2016-07-13 13:32:33 ----A---- C:\WINDOWS\system32\Windows.UI.Shell.dll
2016-07-13 13:32:33 ----A---- C:\WINDOWS\system32\Windows.UI.Immersive.dll
2016-07-13 13:32:33 ----A---- C:\WINDOWS\system32\propsys.dll
2016-07-13 13:32:33 ----A---- C:\WINDOWS\system32\PlayToManager.dll
2016-07-13 13:32:32 ----A---- C:\WINDOWS\system32\winmde.dll
2016-07-13 13:32:32 ----A---- C:\WINDOWS\system32\usocore.dll
2016-07-13 13:32:32 ----A---- C:\WINDOWS\system32\LogonController.dll
2016-07-13 13:32:31 ----A---- C:\WINDOWS\system32\Windows.Internal.Shell.Broker.dll
2016-07-13 13:32:31 ----A---- C:\WINDOWS\system32\updatehandlers.dll
2016-07-13 13:32:31 ----A---- C:\WINDOWS\system32\twinapi.dll
2016-07-13 13:32:31 ----A---- C:\WINDOWS\system32\SpeechPal.dll
2016-07-13 13:32:30 ----A---- C:\WINDOWS\system32\Windows.UI.Cred.dll
2016-07-13 13:32:30 ----A---- C:\WINDOWS\system32\PrintDialogs3D.dll
2016-07-13 13:32:30 ----A---- C:\WINDOWS\system32\LockAppBroker.dll
2016-07-13 13:32:29 ----A---- C:\WINDOWS\system32\SettingsHandlers_Maps.dll
2016-07-13 13:32:29 ----A---- C:\WINDOWS\system32\RDXService.dll
2016-07-13 13:32:29 ----A---- C:\WINDOWS\system32\gameux.dll
2016-07-13 13:32:29 ----A---- C:\WINDOWS\system32\EnterpriseAppMgmtSvc.dll
2016-07-13 13:32:28 ----A---- C:\WINDOWS\system32\WSShared.dll
2016-07-13 13:32:28 ----A---- C:\WINDOWS\system32\winipcsecproc.dll
2016-07-13 13:32:28 ----A---- C:\WINDOWS\system32\shutdownux.dll
2016-07-13 13:32:28 ----A---- C:\WINDOWS\system32\SHCore.dll
2016-07-13 13:32:28 ----A---- C:\WINDOWS\system32\SearchFolder.dll
2016-07-13 13:32:27 ----A---- C:\WINDOWS\system32\wuauclt.exe
2016-07-13 13:32:27 ----A---- C:\WINDOWS\system32\WSService.dll
2016-07-13 13:32:27 ----A---- C:\WINDOWS\system32\Windows.Cortana.Desktop.dll
2016-07-13 13:32:27 ----A---- C:\WINDOWS\system32\SettingsHandlers_Bluetooth.dll
2016-07-13 13:32:27 ----A---- C:\WINDOWS\system32\RDXTaskFactory.dll
2016-07-13 13:32:27 ----A---- C:\WINDOWS\system32\ntshrui.dll
2016-07-13 13:32:27 ----A---- C:\WINDOWS\system32\ClipSVC.dll
2016-07-13 13:32:27 ----A---- C:\WINDOWS\system32\Clipc.dll
2016-07-13 13:32:26 ----A---- C:\WINDOWS\system32\win32spl.dll
2016-07-13 13:32:26 ----A---- C:\WINDOWS\system32\wiaaut.dll
2016-07-13 13:32:26 ----A---- C:\WINDOWS\system32\musdialoghandlers.dll
2016-07-13 13:32:26 ----A---- C:\WINDOWS\system32\hgcpl.dll
2016-07-13 13:32:25 ----A---- C:\WINDOWS\system32\Windows.Networking.BackgroundTransfer.dll
2016-07-13 13:32:25 ----A---- C:\WINDOWS\system32\msxml3.dll
2016-07-13 13:32:25 ----A---- C:\WINDOWS\system32\inetpp.dll
2016-07-13 13:32:25 ----A---- C:\WINDOWS\system32\ApplicationFrame.dll
2016-07-13 13:32:24 ----A---- C:\WINDOWS\system32\WMPhoto.dll
2016-07-13 13:32:24 ----A---- C:\WINDOWS\system32\UserLanguagesCpl.dll
2016-07-13 13:32:24 ----A---- C:\WINDOWS\system32\themecpl.dll
2016-07-13 13:32:23 ----A---- C:\WINDOWS\system32\WSSync.dll
2016-07-13 13:32:23 ----A---- C:\WINDOWS\system32\winipcfile.dll
2016-07-13 13:32:23 ----A---- C:\WINDOWS\system32\sbe.dll
2016-07-13 13:32:23 ----A---- C:\WINDOWS\system32\licensingdiag.exe
2016-07-13 13:32:23 ----A---- C:\WINDOWS\system32\IdCtrls.dll
2016-07-13 13:32:23 ----A---- C:\WINDOWS\HelpPane.exe
2016-07-13 13:32:22 ----A---- C:\WINDOWS\system32\Windows.UI.BlockedShutdown.dll
2016-07-13 13:32:22 ----A---- C:\WINDOWS\system32\SystemSettings.UserAccountsHandlers.dll
2016-07-13 13:32:22 ----A---- C:\WINDOWS\system32\ntprint.dll
2016-07-13 13:32:21 ----A---- C:\WINDOWS\system32\Windows.Speech.Pal.dll
2016-07-13 13:32:21 ----A---- C:\WINDOWS\system32\OneBackupHandler.dll
2016-07-13 13:32:21 ----A---- C:\WINDOWS\system32\oemlicense.dll
2016-07-13 13:32:21 ----A---- C:\WINDOWS\system32\msieftp.dll
2016-07-13 13:32:20 ----A---- C:\WINDOWS\system32\WSClient.dll
2016-07-13 13:32:20 ----A---- C:\WINDOWS\system32\mspaint.exe
2016-07-13 13:32:20 ----A---- C:\WINDOWS\system32\DevicePairing.dll
2016-07-13 13:32:19 ----A---- C:\WINDOWS\system32\winmsipc.dll
2016-07-13 13:32:19 ----A---- C:\WINDOWS\system32\ieui.dll
2016-07-13 13:32:19 ----A---- C:\WINDOWS\system32\GamePanel.exe
2016-07-13 13:32:18 ----A---- C:\WINDOWS\system32\Windows.Shell.Search.UriHandler.dll
2016-07-13 13:32:16 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2016-07-13 13:32:12 ----A---- C:\WINDOWS\system32\ieframe.dll
2016-07-13 13:32:11 ----A---- C:\WINDOWS\system32\edgehtml.dll
2016-07-13 13:32:08 ----A---- C:\WINDOWS\system32\mshtml.dll
2016-07-13 13:32:07 ----A---- C:\WINDOWS\system32\Chakra.dll
2016-07-13 13:32:06 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll
2016-07-13 13:32:06 ----A---- C:\WINDOWS\system32\jscript9.dll
2016-07-13 13:32:05 ----A---- C:\WINDOWS\system32\Windows.Data.Pdf.dll
2016-07-13 13:32:05 ----A---- C:\WINDOWS\system32\invagent.dll
2016-07-13 13:32:05 ----A---- C:\WINDOWS\system32\aeinv.dll
2016-07-13 13:32:04 ----A---- C:\WINDOWS\system32\Windows.Media.dll
2016-07-13 13:32:04 ----A---- C:\WINDOWS\system32\twinui.appcore.dll
2016-07-13 13:32:04 ----A---- C:\WINDOWS\system32\devinv.dll
2016-07-13 13:32:04 ----A---- C:\WINDOWS\system32\appraiser.dll
2016-07-13 13:32:04 ----A---- C:\WINDOWS\system32\acmigration.dll
2016-07-13 13:32:03 ----A---- C:\WINDOWS\system32\mfnetsrc.dll
2016-07-13 13:32:02 ----A---- C:\WINDOWS\system32\tquery.dll
2016-07-13 13:32:02 ----A---- C:\WINDOWS\system32\SettingSyncCore.dll
2016-07-13 13:32:02 ----A---- C:\WINDOWS\system32\mfsvr.dll
2016-07-13 13:32:02 ----A---- C:\WINDOWS\system32\mfplat.dll
2016-07-13 13:32:02 ----A---- C:\WINDOWS\system32\generaltel.dll
2016-07-13 13:32:02 ----A---- C:\WINDOWS\system32\DeviceCensus.exe
2016-07-13 13:32:02 ----A---- C:\WINDOWS\system32\CompatTelRunner.exe
2016-07-13 13:32:01 ----A---- C:\WINDOWS\system32\vbscript.dll
2016-07-13 13:32:01 ----A---- C:\WINDOWS\system32\SettingSync.dll
2016-07-13 13:32:01 ----A---- C:\WINDOWS\system32\msfeeds.dll
2016-07-13 13:32:01 ----A---- C:\WINDOWS\system32\aepic.dll
2016-07-13 13:32:00 ----A---- C:\WINDOWS\system32\provengine.dll
2016-07-13 13:32:00 ----A---- C:\WINDOWS\system32\MusUpdateHandlers.dll
2016-07-13 13:32:00 ----A---- C:\WINDOWS\system32\mssrch.dll
2016-07-13 13:32:00 ----A---- C:\WINDOWS\system32\mf.dll
2016-07-13 13:32:00 ----A---- C:\WINDOWS\system32\dbgeng.dll
2016-07-13 13:31:59 ----A---- C:\WINDOWS\system32\twinapi.appcore.dll
2016-07-13 13:31:59 ----A---- C:\WINDOWS\system32\provhandlers.dll
2016-07-13 13:31:58 ----A---- C:\WINDOWS\system32\xpsrchvw.exe
2016-07-13 13:31:58 ----A---- C:\WINDOWS\system32\Taskmgr.exe
2016-07-13 13:31:58 ----A---- C:\WINDOWS\system32\SearchIndexer.exe
2016-07-13 13:31:58 ----A---- C:\WINDOWS\system32\provops.dll
2016-07-13 13:31:57 ----A---- C:\WINDOWS\system32\WindowsCodecsRaw.dll
2016-07-13 13:31:57 ----A---- C:\WINDOWS\system32\ShareHost.dll
2016-07-13 13:31:57 ----A---- C:\WINDOWS\system32\MsSpellCheckingFacility.dll
2016-07-13 13:31:57 ----A---- C:\WINDOWS\system32\KernelBase.dll
2016-07-13 13:31:55 ----A---- C:\WINDOWS\system32\wpncore.dll
2016-07-13 13:31:54 ----A---- C:\WINDOWS\system32\Windows.Media.Speech.dll
2016-07-13 13:31:54 ----A---- C:\WINDOWS\system32\SettingSyncHost.exe
2016-07-13 13:31:54 ----A---- C:\WINDOWS\system32\drivers\tcpip.sys
2016-07-13 13:31:54 ----A---- C:\WINDOWS\system32\DMRServer.dll
2016-07-13 13:31:53 ----A---- C:\WINDOWS\system32\wldp.dll
2016-07-13 13:31:53 ----A---- C:\WINDOWS\system32\Windows.Media.Streaming.dll
2016-07-13 13:31:53 ----A---- C:\WINDOWS\system32\TpmTasks.dll
2016-07-13 13:31:53 ----A---- C:\WINDOWS\system32\NotificationController.dll
2016-07-13 13:31:53 ----A---- C:\WINDOWS\system32\mfpmp.exe
2016-07-13 13:31:52 ----A---- C:\WINDOWS\system32\workfolderssvc.dll
2016-07-13 13:31:52 ----A---- C:\WINDOWS\system32\webio.dll
2016-07-13 13:31:52 ----A---- C:\WINDOWS\system32\mssphtb.dll
2016-07-13 13:31:52 ----A---- C:\WINDOWS\system32\dxtrans.dll
2016-07-13 13:31:51 ----A---- C:\WINDOWS\system32\Windows.Media.Editing.dll
2016-07-13 13:31:51 ----A---- C:\WINDOWS\system32\usercpl.dll
2016-07-13 13:31:51 ----A---- C:\WINDOWS\system32\OneDriveSettingSyncProvider.dll
2016-07-13 13:31:51 ----A---- C:\WINDOWS\system32\mssph.dll
2016-07-13 13:31:51 ----A---- C:\WINDOWS\system32\ieapfltr.dll
2016-07-13 13:31:50 ----A---- C:\WINDOWS\system32\wpdshext.dll
2016-07-13 13:31:50 ----A---- C:\WINDOWS\system32\Windows.Cortana.OneCore.dll
2016-07-13 13:31:50 ----A---- C:\WINDOWS\system32\WebcamUi.dll
2016-07-13 13:31:50 ----A---- C:\WINDOWS\system32\mbsmsapi.dll
2016-07-13 13:31:50 ----A---- C:\WINDOWS\system32\fhsettingsprovider.dll
2016-07-13 13:31:49 ----A---- C:\WINDOWS\system32\webcheck.dll
2016-07-13 13:31:49 ----A---- C:\WINDOWS\system32\reseteng.dll
2016-07-13 13:31:49 ----A---- C:\WINDOWS\system32\fhcfg.dll
2016-07-13 13:31:49 ----A---- C:\WINDOWS\system32\bdechangepin.exe
2016-07-13 13:31:48 ----A---- C:\WINDOWS\system32\WPDShServiceObj.dll
2016-07-13 13:31:48 ----A---- C:\WINDOWS\system32\SearchProtocolHost.exe
2016-07-13 13:31:48 ----A---- C:\WINDOWS\system32\Search.ProtocolHandler.MAPI2.dll
2016-07-13 13:31:48 ----A---- C:\WINDOWS\system32\PlayToReceiver.dll
2016-07-13 13:31:48 ----A---- C:\WINDOWS\system32\msscntrs.dll
2016-07-13 13:31:48 ----A---- C:\WINDOWS\system32\fhengine.dll
2016-07-13 13:31:47 ----A---- C:\WINDOWS\system32\NFCProvisioningPlugin.dll
2016-07-13 13:31:47 ----A---- C:\WINDOWS\system32\IKEEXT.DLL
2016-07-13 13:31:47 ----A---- C:\WINDOWS\system32\AzureSettingSyncProvider.dll
2016-07-13 13:31:44 ----A---- C:\WINDOWS\system32\WMPDMC.exe
2016-07-13 13:31:44 ----A---- C:\WINDOWS\system32\schedsvc.dll
2016-07-13 13:31:44 ----A---- C:\WINDOWS\system32\mstscax.dll
2016-07-13 13:31:44 ----A---- C:\WINDOWS\system32\enterprisecsps.dll
2016-07-13 13:31:43 ----A---- C:\WINDOWS\system32\wuuhext.dll
2016-07-13 13:31:43 ----A---- C:\WINDOWS\system32\rdpcorets.dll
2016-07-13 13:31:42 ----A---- C:\WINDOWS\system32\taskeng.exe
2016-07-13 13:31:42 ----A---- C:\WINDOWS\system32\drivers\sdbus.sys
2016-07-13 13:31:42 ----A---- C:\WINDOWS\system32\dmcsps.dll
2016-07-13 13:31:41 ----A---- C:\WINDOWS\system32\wmicmiplugin.dll
2016-07-13 13:31:41 ----A---- C:\WINDOWS\system32\winresume.exe
2016-07-13 13:31:41 ----A---- C:\WINDOWS\system32\winload.exe
2016-07-13 13:31:41 ----A---- C:\WINDOWS\system32\schtasks.exe
2016-07-13 13:31:40 ----A---- C:\WINDOWS\system32\Windows.Storage.Search.dll
2016-07-13 13:31:40 ----A---- C:\WINDOWS\system32\browserbroker.dll
2016-07-13 13:31:39 ----A---- C:\WINDOWS\system32\Windows.AccountsControl.dll
2016-07-13 13:31:39 ----A---- C:\WINDOWS\system32\rdpudd.dll
2016-07-13 13:31:39 ----A---- C:\WINDOWS\system32\pmcsnap.dll
2016-07-13 13:31:39 ----A---- C:\WINDOWS\system32\dlnashext.dll
2016-07-13 13:31:38 ----A---- C:\WINDOWS\system32\WUDFPlatform.dll
2016-07-13 13:31:38 ----A---- C:\WINDOWS\system32\LegacyNetUXHost.exe
2016-07-13 13:31:38 ----A---- C:\WINDOWS\system32\LegacyNetUX.dll
2016-07-13 10:06:09 ----RASH---- C:\MSDOS.SYS
2016-07-13 10:06:09 ----RASH---- C:\IO.SYS
2016-07-08 03:28:44 ----D---- C:\WINDOWS\Minidump
2016-07-07 12:02:18 ----D---- C:\WINDOWS\system32\SleepStudy
2016-07-06 20:24:04 ----A---- C:\WINDOWS\system32\prm0009.dll
2016-07-06 20:24:04 ----A---- C:\WINDOWS\system32\NlsLexicons0009.dll
2016-07-06 20:24:04 ----A---- C:\WINDOWS\system32\NlsData0009.dll
2016-07-06 19:07:35 ----DC---- C:\WINDOWS\Panther
2016-07-06 19:05:06 ----D---- C:\Windows.old
2016-07-06 19:04:00 ----A---- C:\WINDOWS\system32\wpdbusenum.dll
2016-07-06 19:04:00 ----A---- C:\WINDOWS\system32\Windows.Media.Devices.dll
2016-07-06 19:04:00 ----A---- C:\WINDOWS\system32\SystemSettings.DeviceEncryptionHandlers.dll
2016-07-06 19:04:00 ----A---- C:\WINDOWS\system32\PsmServiceExtHost.dll
2016-07-06 19:04:00 ----A---- C:\WINDOWS\system32\NetSetupSvc.dll
2016-07-06 19:04:00 ----A---- C:\WINDOWS\system32\NetSetupEngine.dll
2016-07-06 19:04:00 ----A---- C:\WINDOWS\system32\NetSetupApi.dll
2016-07-06 19:04:00 ----A---- C:\WINDOWS\system32\MPSSVC.dll
2016-07-06 19:04:00 ----A---- C:\WINDOWS\system32\MFCaptureEngine.dll
2016-07-06 19:04:00 ----A---- C:\WINDOWS\system32\ListSvc.dll
2016-07-06 19:04:00 ----A---- C:\WINDOWS\system32\FWPUCLNT.DLL
2016-07-06 19:04:00 ----A---- C:\WINDOWS\system32\fvewiz.dll
2016-07-06 19:04:00 ----A---- C:\WINDOWS\system32\fveui.dll
2016-07-06 19:04:00 ----A---- C:\WINDOWS\system32\fveskybackup.dll
2016-07-06 19:04:00 ----A---- C:\WINDOWS\system32\fvecpl.dll
2016-07-06 19:04:00 ----A---- C:\WINDOWS\system32\fveapibase.dll
2016-07-06 19:04:00 ----A---- C:\WINDOWS\system32\fveapi.dll
2016-07-06 19:04:00 ----A---- C:\WINDOWS\system32\drivers\srv.sys
2016-07-06 19:04:00 ----A---- C:\WINDOWS\system32\drivers\fvevol.sys
2016-07-06 19:04:00 ----A---- C:\WINDOWS\system32\drivers\dumpsdport.sys
2016-07-06 19:04:00 ----A---- C:\WINDOWS\system32\BrowserSettingSync.dll
2016-07-06 19:04:00 ----A---- C:\WINDOWS\system32\BitLockerDeviceEncryption.exe
2016-07-06 19:04:00 ----A---- C:\WINDOWS\system32\BFE.DLL
2016-07-06 19:04:00 ----A---- C:\WINDOWS\system32\bdesvc.dll
2016-07-06 19:04:00 ----A---- C:\WINDOWS\system32\BdeHdCfgLib.dll
2016-07-06 19:04:00 ----A---- C:\WINDOWS\system32\audiodg.exe
2016-07-06 19:03:59 ----A---- C:\WINDOWS\system32\ws2_32.dll
2016-07-06 19:03:59 ----A---- C:\WINDOWS\system32\ntdll.dll
2016-07-06 19:03:59 ----A---- C:\WINDOWS\system32\ncbservice.dll
2016-07-06 19:03:59 ----A---- C:\WINDOWS\system32\LocationFramework.dll
2016-07-06 19:03:59 ----A---- C:\WINDOWS\system32\jscript.dll
2016-07-06 19:03:59 ----A---- C:\WINDOWS\system32\ieproxy.dll
2016-07-06 19:03:59 ----A---- C:\WINDOWS\system32\gpscript.dll
2016-07-06 19:03:59 ----A---- C:\WINDOWS\system32\gpprefcl.dll
2016-07-06 19:03:59 ----A---- C:\WINDOWS\system32\GnssAdapter.dll
2016-07-06 19:03:59 ----A---- C:\WINDOWS\system32\drivers\partmgr.sys
2016-07-06 19:03:59 ----A---- C:\WINDOWS\system32\drivers\ntfs.sys
2016-07-06 19:03:59 ----A---- C:\WINDOWS\system32\drivers\ndis.sys
2016-07-06 19:03:59 ----A---- C:\WINDOWS\system32\bcryptprimitives.dll
2016-07-06 19:03:59 ----A---- C:\WINDOWS\system32\basesrv.dll
2016-07-06 19:03:54 ----A---- C:\WINDOWS\system32\wwansvc.dll
2016-07-06 19:03:54 ----A---- C:\WINDOWS\system32\wsdchngr.dll
2016-07-06 19:03:54 ----A---- C:\WINDOWS\system32\wlanapi.dll
2016-07-06 19:03:54 ----A---- C:\WINDOWS\system32\Windows.UI.dll
2016-07-06 19:03:54 ----A---- C:\WINDOWS\system32\wifitask.exe
2016-07-06 19:03:54 ----A---- C:\WINDOWS\system32\wifinetworkmanager.dll
2016-07-06 19:03:54 ----A---- C:\WINDOWS\system32\wificonnapi.dll
2016-07-06 19:03:54 ----A---- C:\WINDOWS\system32\wcmsvc.dll
2016-07-06 19:03:54 ----A---- C:\WINDOWS\system32\wcmcsp.dll
2016-07-06 19:03:54 ----A---- C:\WINDOWS\system32\vpnike.dll
2016-07-06 19:03:54 ----A---- C:\WINDOWS\system32\SystemSettingsAdminFlows.exe
2016-07-06 19:03:54 ----A---- C:\WINDOWS\system32\SubscriptionMgr.dll
2016-07-06 19:03:54 ----A---- C:\WINDOWS\system32\shacct.dll
2016-07-06 19:03:54 ----A---- C:\WINDOWS\system32\SettingsHandlers_Privacy.dll
2016-07-06 19:03:54 ----A---- C:\WINDOWS\system32\rastls.dll
2016-07-06 19:03:54 ----A---- C:\WINDOWS\system32\polstore.dll
2016-07-06 19:03:54 ----A---- C:\WINDOWS\system32\PhoneProviders.dll
2016-07-06 19:03:54 ----A---- C:\WINDOWS\system32\oleacchooks.dll
2016-07-06 19:03:54 ----A---- C:\WINDOWS\system32\oleacc.dll
2016-07-06 19:03:54 ----A---- C:\WINDOWS\system32\NetSetupShim.dll
2016-07-06 19:03:54 ----A---- C:\WINDOWS\system32\LockAppHost.exe
2016-07-06 19:03:54 ----A---- C:\WINDOWS\system32\iuilp.dll
2016-07-06 19:03:54 ----A---- C:\WINDOWS\system32\IPSECSVC.DLL
2016-07-06 19:03:54 ----A---- C:\WINDOWS\system32\iphlpsvc.dll
2016-07-06 19:03:54 ----A---- C:\WINDOWS\system32\httpprxp.dll
2016-07-06 19:03:54 ----A---- C:\WINDOWS\system32\httpprxm.dll
2016-07-06 19:03:54 ----A---- C:\WINDOWS\system32\halmacpi.dll
2016-07-06 19:03:54 ----A---- C:\WINDOWS\system32\hal.dll
2016-07-06 19:03:54 ----A---- C:\WINDOWS\system32\FwRemoteSvr.dll
2016-07-06 19:03:54 ----A---- C:\WINDOWS\system32\fontsub.dll
2016-07-06 19:03:54 ----A---- C:\WINDOWS\system32\fontdrvhost.exe
2016-07-06 19:03:54 ----A---- C:\WINDOWS\system32\dwminit.dll
2016-07-06 19:03:54 ----A---- C:\WINDOWS\system32\drivers\WdiWiFi.sys
2016-07-06 19:03:54 ----A---- C:\WINDOWS\system32\drivers\srvnet.sys
2016-07-06 19:03:54 ----A---- C:\WINDOWS\system32\drivers\srv2.sys
2016-07-06 19:03:54 ----A---- C:\WINDOWS\system32\drivers\dfsc.sys
2016-07-06 19:03:54 ----A---- C:\WINDOWS\system32\DataSenseHandlers.dll
2016-07-06 19:03:54 ----A---- C:\WINDOWS\system32\d3d10warp.dll
2016-07-06 19:03:54 ----A---- C:\WINDOWS\system32\credprovhost.dll
2016-07-06 19:03:54 ----A---- C:\WINDOWS\system32\CredProvDataModel.dll
2016-07-06 19:03:54 ----A---- C:\WINDOWS\system32\CloudDomainJoinDataModelServer.dll
2016-07-06 19:03:54 ----A---- C:\WINDOWS\system32\atmlib.dll
2016-07-06 19:03:54 ----A---- C:\WINDOWS\system32\atmfd.dll
2016-07-06 19:03:54 ----A---- C:\WINDOWS\system32\AppxPackaging.dll
2016-07-06 19:03:54 ----A---- C:\WINDOWS\system32\adhsvc.dll
2016-07-06 19:03:54 ----A---- C:\WINDOWS\system32\AboveLockAppHost.dll
2016-07-06 19:03:53 ----A---- C:\WINDOWS\system32\WSDApi.dll
2016-07-06 19:03:53 ----A---- C:\WINDOWS\system32\wscsvc.dll
2016-07-06 19:03:53 ----A---- C:\WINDOWS\system32\winlogon.exe
2016-07-06 19:03:53 ----A---- C:\WINDOWS\system32\wininetlui.dll
2016-07-06 19:03:53 ----A---- C:\WINDOWS\system32\Windows.Internal.Management.dll
2016-07-06 19:03:53 ----A---- C:\WINDOWS\system32\SystemEventsBrokerServer.dll
2016-07-06 19:03:53 ----A---- C:\WINDOWS\system32\SyncController.dll
2016-07-06 19:03:53 ----A---- C:\WINDOWS\system32\StorSvc.dll
2016-07-06 19:03:53 ----A---- C:\WINDOWS\system32\SRHInproc.dll
2016-07-06 19:03:53 ----A---- C:\WINDOWS\system32\SRH.dll
2016-07-06 19:03:53 ----A---- C:\WINDOWS\system32\setupapi.dll
2016-07-06 19:03:53 ----A---- C:\WINDOWS\system32\policymanagerprecheck.dll
2016-07-06 19:03:53 ----A---- C:\WINDOWS\system32\policymanager.dll
2016-07-06 19:03:53 ----A---- C:\WINDOWS\system32\omadmclient.exe
2016-07-06 19:03:53 ----A---- C:\WINDOWS\system32\omadmapi.dll
2016-07-06 19:03:53 ----A---- C:\WINDOWS\system32\newdev.dll
2016-07-06 19:03:53 ----A---- C:\WINDOWS\system32\netapi32.dll
2016-07-06 19:03:53 ----A---- C:\WINDOWS\system32\mtxoci.dll
2016-07-06 19:03:53 ----A---- C:\WINDOWS\system32\MTF.dll
2016-07-06 19:03:53 ----A---- C:\WINDOWS\system32\msorcl32.dll
2016-07-06 19:03:53 ----A---- C:\WINDOWS\system32\msi.dll
2016-07-06 19:03:53 ----A---- C:\WINDOWS\system32\mdmregistration.dll
2016-07-06 19:03:53 ----A---- C:\WINDOWS\system32\mdmmigrator.dll
2016-07-06 19:03:53 ----A---- C:\WINDOWS\system32\MDMAppInstaller.exe
2016-07-06 19:03:53 ----A---- C:\WINDOWS\system32\jsproxy.dll
2016-07-06 19:03:53 ----A---- C:\WINDOWS\system32\internetmail.dll
2016-07-06 19:03:53 ----A---- C:\WINDOWS\system32\gpsvc.dll
2016-07-06 19:03:53 ----A---- C:\WINDOWS\system32\gpapi.dll
2016-07-06 19:03:53 ----A---- C:\WINDOWS\system32\EnterpriseDesktopAppMgmtCSP.dll
2016-07-06 19:03:53 ----A---- C:\WINDOWS\system32\enrollmentapi.dll
2016-07-06 19:03:53 ----A---- C:\WINDOWS\system32\easwrt.dll
2016-07-06 19:03:53 ----A---- C:\WINDOWS\system32\easinvoker.exe
2016-07-06 19:03:53 ----A---- C:\WINDOWS\system32\drivers\netbt.sys
2016-07-06 19:03:53 ----A---- C:\WINDOWS\system32\drivers\http.sys
2016-07-06 19:03:53 ----A---- C:\WINDOWS\system32\drivers\filecrypt.sys
2016-07-06 19:03:53 ----A---- C:\WINDOWS\system32\dmenterprisediagnostics.dll
2016-07-06 19:03:53 ----A---- C:\WINDOWS\system32\dmenrollengine.dll
2016-07-06 19:03:53 ----A---- C:\WINDOWS\system32\dmcertinst.exe
2016-07-06 19:03:53 ----A---- C:\WINDOWS\system32\DeviceEnroller.exe
2016-07-06 19:03:53 ----A---- C:\WINDOWS\system32\DAFWSD.dll
2016-07-06 19:03:53 ----A---- C:\WINDOWS\system32\browser.dll
2016-07-06 19:03:53 ----A---- C:\WINDOWS\system32\BrokerLib.dll
2016-07-06 19:03:53 ----A---- C:\WINDOWS\system32\bisrv.dll
2016-07-06 19:03:53 ----A---- C:\WINDOWS\system32\AppxSysprep.dll
2016-07-06 19:03:53 ----A---- C:\WINDOWS\system32\AppxAllUserStore.dll
2016-07-06 19:03:53 ----A---- C:\WINDOWS\system32\ActiveSyncProvider.dll
2016-07-06 19:03:53 ----A---- C:\WINDOWS\system32\AccountsRt.dll
2016-07-06 19:03:53 ----A---- C:\WINDOWS\system32\accountaccessor.dll
2016-07-06 19:03:51 ----A---- C:\WINDOWS\system32\XblAuthManager.dll
2016-07-06 19:03:51 ----A---- C:\WINDOWS\system32\wups.dll
2016-07-06 19:03:51 ----A---- C:\WINDOWS\system32\wuautoappupdate.dll
2016-07-06 19:03:51 ----A---- C:\WINDOWS\system32\wuapi.dll
2016-07-06 19:03:51 ----A---- C:\WINDOWS\system32\wshbth.dll
2016-07-06 19:03:51 ----A---- C:\WINDOWS\system32\wkscli.dll
2016-07-06 19:03:51 ----A---- C:\WINDOWS\system32\wininit.exe
2016-07-06 19:03:51 ----A---- C:\WINDOWS\system32\winhttp.dll
2016-07-06 19:03:51 ----A---- C:\WINDOWS\system32\Windows.Web.Http.dll
2016-07-06 19:03:51 ----A---- C:\WINDOWS\system32\Windows.Web.dll
2016-07-06 19:03:51 ----A---- C:\WINDOWS\system32\Windows.UI.Input.Inking.dll
2016-07-06 19:03:51 ----A---- C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2016-07-06 19:03:51 ----A---- C:\WINDOWS\system32\Windows.Networking.dll
2016-07-06 19:03:51 ----A---- C:\WINDOWS\system32\Windows.Networking.Connectivity.dll
2016-07-06 19:03:51 ----A---- C:\WINDOWS\system32\Windows.Devices.Bluetooth.dll
2016-07-06 19:03:51 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2016-07-06 19:03:51 ----A---- C:\WINDOWS\system32\VEStoreEventHandlers.dll
2016-07-06 19:03:51 ----A---- C:\WINDOWS\system32\VEEventDispatcher.dll
2016-07-06 19:03:51 ----A---- C:\WINDOWS\system32\VEDataLayerHelpers.dll
2016-07-06 19:03:51 ----A---- C:\WINDOWS\system32\user32.dll
2016-07-06 19:03:51 ----A---- C:\WINDOWS\system32\updatepolicy.dll
2016-07-06 19:03:51 ----A---- C:\WINDOWS\system32\UIAutomationCore.dll
2016-07-06 19:03:51 ----A---- C:\WINDOWS\system32\TokenBrokerCookies.exe
2016-07-06 19:03:51 ----A---- C:\WINDOWS\system32\tileobjserver.dll
2016-07-06 19:03:51 ----A---- C:\WINDOWS\system32\TextInputFramework.dll
2016-07-06 19:03:51 ----A---- C:\WINDOWS\system32\tetheringservice.dll
2016-07-06 19:03:51 ----A---- C:\WINDOWS\system32\tdlrecover.exe
2016-07-06 19:03:51 ----A---- C:\WINDOWS\system32\tbauth.dll
2016-07-06 19:03:51 ----A---- C:\WINDOWS\system32\StructuredQuery.dll
2016-07-06 19:03:51 ----A---- C:\WINDOWS\system32\storewuauth.dll
2016-07-06 19:03:51 ----A---- C:\WINDOWS\system32\StoreAgent.dll
2016-07-06 19:03:51 ----A---- C:\WINDOWS\system32\srvcli.dll
2016-07-06 19:03:51 ----A---- C:\WINDOWS\system32\schannel.dll
2016-07-06 19:03:51 ----A---- C:\WINDOWS\system32\SensorsNativeApi.V2.dll
2016-07-06 19:03:51 ----A---- C:\WINDOWS\system32\SensorsNativeApi.dll
2016-07-06 19:03:51 ----A---- C:\WINDOWS\system32\SensorService.dll
2016-07-06 19:03:51 ----A---- C:\WINDOWS\system32\samlib.dll
2016-07-06 19:03:51 ----A---- C:\WINDOWS\system32\rsaenh.dll
2016-07-06 19:03:51 ----A---- C:\WINDOWS\system32\RemoteNaturalLanguage.dll
2016-07-06 19:03:51 ----A---- C:\WINDOWS\system32\profsvc.dll
2016-07-06 19:03:51 ----A---- C:\WINDOWS\system32\OnDemandConnRouteHelper.dll
2016-07-06 19:03:51 ----A---- C:\WINDOWS\system32\NotificationObjFactory.dll
2016-07-06 19:03:51 ----A---- C:\WINDOWS\system32\ngcsvc.dll
2016-07-06 19:03:51 ----A---- C:\WINDOWS\system32\ngcpopkeysrv.dll
2016-07-06 19:03:51 ----A---- C:\WINDOWS\system32\NgcCtnrSvc.dll
2016-07-06 19:03:51 ----A---- C:\WINDOWS\system32\NgcCtnr.dll
2016-07-06 19:03:51 ----A---- C:\WINDOWS\system32\ngccredprov.dll
2016-07-06 19:03:51 ----A---- C:\WINDOWS\system32\NetworkUXBroker.exe
2016-07-06 19:03:51 ----A---- C:\WINDOWS\system32\ncryptsslp.dll
2016-07-06 19:03:51 ----A---- C:\WINDOWS\system32\mswsock.dll
2016-07-06 19:03:51 ----A---- C:\WINDOWS\system32\msv1_0.dll
2016-07-06 19:03:51 ----A---- C:\WINDOWS\system32\MessagingDataModel2.dll
2016-07-06 19:03:51 ----A---- C:\WINDOWS\system32\MBMediaManager.dll
2016-07-06 19:03:51 ----A---- C:\WINDOWS\system32\lsasrv.dll
2016-07-06 19:03:51 ----A---- C:\WINDOWS\system32\LicenseManagerShellext.exe
2016-07-06 19:03:51 ----A---- C:\WINDOWS\system32\LicenseManager.dll
2016-07-06 19:03:51 ----A---- C:\WINDOWS\system32\kerberos.dll
2016-07-06 19:03:51 ----A---- C:\WINDOWS\system32\InstallAgent.exe
2016-07-06 19:03:51 ----A---- C:\WINDOWS\system32\InputService.dll
2016-07-06 19:03:51 ----A---- C:\WINDOWS\system32\InputLocaleManager.dll
2016-07-06 19:03:51 ----A---- C:\WINDOWS\system32\hmkd.dll
2016-07-06 19:03:51 ----A---- C:\WINDOWS\system32\gdi32.dll
2016-07-06 19:03:51 ----A---- C:\WINDOWS\system32\FontProvider.dll
2016-07-06 19:03:51 ----A---- C:\WINDOWS\system32\esent.dll
2016-07-06 19:03:51 ----A---- C:\WINDOWS\system32\drivers\xinputhid.sys
2016-07-06 19:03:51 ----A---- C:\WINDOWS\system32\drivers\USBXHCI.SYS
2016-07-06 19:03:51 ----A---- C:\WINDOWS\system32\drivers\usbser.sys
2016-07-06 19:03:51 ----A---- C:\WINDOWS\system32\drivers\USBHUB3.SYS
2016-07-06 19:03:51 ----A---- C:\WINDOWS\system32\drivers\ufxsynopsys.sys
2016-07-06 19:03:51 ----A---- C:\WINDOWS\system32\drivers\ufx01000.sys
2016-07-06 19:03:51 ----A---- C:\WINDOWS\system32\drivers\UcmCx.sys
2016-07-06 19:03:51 ----A---- C:\WINDOWS\system32\drivers\tpm.sys
2016-07-06 19:03:51 ----A---- C:\WINDOWS\system32\drivers\serial.sys
2016-07-06 19:03:51 ----A---- C:\WINDOWS\system32\drivers\sdport.sys
2016-07-06 19:03:51 ----A---- C:\WINDOWS\system32\drivers\portcls.sys
2016-07-06 19:03:51 ----A---- C:\WINDOWS\system32\drivers\pdc.sys
2016-07-06 19:03:51 ----A---- C:\WINDOWS\system32\drivers\Ndu.sys
2016-07-06 19:03:51 ----A---- C:\WINDOWS\system32\drivers\hidclass.sys
2016-07-06 19:03:51 ----A---- C:\WINDOWS\system32\drivers\fastfat.sys
2016-07-06 19:03:51 ----A---- C:\WINDOWS\system32\drivers\dumpsd.sys
2016-07-06 19:03:51 ----A---- C:\WINDOWS\system32\dnsrslvr.dll
2016-07-06 19:03:51 ----A---- C:\WINDOWS\system32\dnsapi.dll
2016-07-06 19:03:51 ----A---- C:\WINDOWS\system32\directmanipulation.dll
2016-07-06 19:03:51 ----A---- C:\WINDOWS\system32\dhcpcsvc6.dll
2016-07-06 19:03:51 ----A---- C:\WINDOWS\system32\dhcpcsvc.dll
2016-07-06 19:03:51 ----A---- C:\WINDOWS\system32\dhcpcore6.dll
2016-07-06 19:03:51 ----A---- C:\WINDOWS\system32\dhcpcore.dll
2016-07-06 19:03:51 ----A---- C:\WINDOWS\system32\dafBth.dll
2016-07-06 19:03:51 ----A---- C:\WINDOWS\system32\d3d10level9.dll
2016-07-06 19:03:51 ----A---- C:\WINDOWS\system32\cryptsvc.dll
2016-07-06 19:03:51 ----A---- C:\WINDOWS\system32\cryptngc.dll
2016-07-06 19:03:51 ----A---- C:\WINDOWS\system32\CoreMessaging.dll
2016-07-06 19:03:51 ----A---- C:\WINDOWS\system32\ByteCodeGenerator.exe
2016-07-06 19:03:51 ----A---- C:\WINDOWS\system32\browcli.dll
2016-07-06 19:03:51 ----A---- C:\WINDOWS\system32\BluetoothApis.dll
2016-07-06 19:03:51 ----A---- C:\WINDOWS\system32\AppXDeploymentClient.dll
2016-07-06 19:03:51 ----A---- C:\WINDOWS\system32\AppContracts.dll
2016-07-06 19:03:51 ----A---- C:\WINDOWS\system32\actxprxy.dll
2016-07-06 19:03:51 ----A---- C:\WINDOWS\system32\ActivationManager.dll
2016-07-06 18:58:13 ----D---- C:\WINDOWS\system32\XPSViewer
2016-07-06 18:58:13 ----D---- C:\WINDOWS\system32\msmq
2016-07-06 18:58:13 ----D---- C:\WINDOWS\system32\BestPractices
2016-07-06 18:58:13 ----D---- C:\Program Files\Reference Assemblies
2016-07-06 18:58:13 ----D---- C:\Program Files\MSBuild
2016-07-06 18:58:13 ----D---- C:\inetpub
2016-07-06 18:57:28 ----A---- C:\WINDOWS\system32\TsWpfWrp.exe
2016-07-06 18:57:28 ----A---- C:\WINDOWS\system32\PresentationNative_v0300.dll
2016-07-06 18:57:27 ----A---- C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2016-07-06 18:23:52 ----SHD---- C:\Recovery
2016-07-06 18:22:18 ----A---- C:\WINDOWS\system32\emptyregdb.dat
2016-07-06 18:14:18 ----D---- C:\Program Files\Common Files\SpeechEngines
2016-07-06 18:12:37 ----SD---- C:\Users\home\AppData\Roaming\Microsoft
2016-07-06 18:12:01 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2016-07-06 18:09:39 ----D---- C:\WINDOWS\EffectResources
2016-07-06 18:09:06 ----D---- C:\WINDOWS\Prefetch
2016-07-06 18:08:17 ----ASH---- C:\swapfile.sys

======List of files/folders modified in the last 1 month======

2016-07-16 00:18:19 ----RD---- C:\Program Files
2016-07-16 00:16:36 ----D---- C:\WINDOWS\Temp
2016-07-16 00:01:29 ----D---- C:\Users\home\AppData\Roaming\Spotify
2016-07-15 23:58:44 ----D---- C:\WINDOWS\System32
2016-07-15 23:58:44 ----D---- C:\WINDOWS\INF
2016-07-15 23:53:28 ----D---- C:\WINDOWS\Tasks
2016-07-15 23:53:17 ----D---- C:\Windows
2016-07-15 23:53:17 ----A---- C:\WINDOWS\KMSEmulator.exe
2016-07-15 23:41:14 ----D---- C:\WINDOWS\system32\WDI
2016-07-15 23:36:29 ----D---- C:\WINDOWS\system32\Tasks
2016-07-15 23:36:02 ----D---- C:\WINDOWS\system32\drivers
2016-07-15 23:35:29 ----D---- C:\WINDOWS\system32\sru
2016-07-15 23:32:39 ----D---- C:\WINDOWS\WinSxS
2016-07-15 23:10:23 ----D---- C:\WINDOWS\Microsoft.NET
2016-07-15 23:10:17 ----RD---- C:\WINDOWS\assembly
2016-07-15 23:02:07 ----D---- C:\WINDOWS\system32\config
2016-07-15 22:59:00 ----D---- C:\WINDOWS\system32\DriverStore
2016-07-15 22:56:20 ----D---- C:\WINDOWS\system32\wbem
2016-07-15 22:56:20 ----D---- C:\WINDOWS\system32\oobe
2016-07-15 22:56:20 ----D---- C:\WINDOWS\system32\migration
2016-07-15 22:56:20 ----D---- C:\WINDOWS\system32\en-US
2016-07-15 22:56:20 ----D---- C:\WINDOWS\system32\drivers\cs-CZ
2016-07-15 22:56:20 ----D---- C:\WINDOWS\system32\cs-CZ
2016-07-15 22:56:20 ----D---- C:\WINDOWS\system32\appraiser
2016-07-15 22:56:17 ----RD---- C:\WINDOWS\PrintDialog
2016-07-15 22:56:17 ----RD---- C:\WINDOWS\ImmersiveControlPanel
2016-07-15 22:56:17 ----RD---- C:\WINDOWS\DevicesFlow
2016-07-15 22:56:17 ----D---- C:\WINDOWS\Provisioning
2016-07-15 22:56:17 ----D---- C:\WINDOWS\PolicyDefinitions
2016-07-15 22:56:17 ----D---- C:\WINDOWS\bcastdvr
2016-07-15 22:56:17 ----D---- C:\WINDOWS\apppatch
2016-07-15 22:56:17 ----D---- C:\Program Files\Windows Photo Viewer
2016-07-15 22:56:17 ----D---- C:\Program Files\Windows Mail
2016-07-15 22:56:17 ----D---- C:\Program Files\Windows Journal
2016-07-15 22:56:17 ----D---- C:\Program Files\Windows Defender
2016-07-15 22:56:16 ----D---- C:\WINDOWS\system32\Boot
2016-07-15 22:56:16 ----D---- C:\Program Files\Internet Explorer
2016-07-15 21:21:15 ----SHD---- C:\WINDOWS\Installer
2016-07-15 21:21:14 ----D---- C:\ProgramData\Microsoft Help
2016-07-15 21:20:39 ----D---- C:\WINDOWS\CbsTemp
2016-07-15 21:20:33 ----D---- C:\WINDOWS\system32\MRT
2016-07-15 21:17:46 ----D---- C:\WINDOWS\debug
2016-07-15 21:17:41 ----A---- C:\WINDOWS\system32\MRT.exe
2016-07-15 20:37:59 ----D---- C:\WINDOWS\AppReadiness
2016-07-15 20:37:52 ----HD---- C:\Program Files\WindowsApps
2016-07-13 22:10:41 ----SHD---- C:\$Recycle.Bin
2016-07-13 12:21:50 ----D---- C:\WINDOWS\system32\catroot2
2016-07-13 11:15:06 ----D---- C:\WINDOWS\Logs
2016-07-13 11:00:46 ----D---- C:\Users\home\AppData\Roaming\vlc
2016-07-13 10:42:35 ----HD---- C:\WINDOWS\system32\GroupPolicy
2016-07-12 17:38:03 ----D---- C:\WINDOWS\System
2016-07-12 17:38:02 ----A---- C:\WINDOWS\system32\typelib.dll
2016-07-12 17:38:02 ----A---- C:\WINDOWS\system32\storage.dll
2016-07-12 17:38:02 ----A---- C:\WINDOWS\system32\ole2nls.dll
2016-07-12 17:38:02 ----A---- C:\WINDOWS\system32\ole2disp.dll
2016-07-12 17:38:02 ----A---- C:\WINDOWS\system32\ole2.dll
2016-07-12 17:38:02 ----A---- C:\WINDOWS\system32\compobj.dll
2016-07-12 17:38:01 ----A---- C:\WINDOWS\winhelp.exe
2016-07-12 17:38:01 ----A---- C:\WINDOWS\system32\win.com
2016-07-12 17:38:01 ----A---- C:\WINDOWS\system32\WIFEMAN.DLL
2016-07-12 17:38:01 ----A---- C:\WINDOWS\system32\ver.dll
2016-07-12 17:38:01 ----A---- C:\WINDOWS\system32\USER.EXE
2016-07-12 17:38:01 ----A---- C:\WINDOWS\system32\TOOLHELP.DLL
2016-07-12 17:38:01 ----A---- C:\WINDOWS\system32\sysedit.exe
2016-07-12 17:38:01 ----A---- C:\WINDOWS\system32\SHELL.DLL
2016-07-12 17:38:01 ----A---- C:\WINDOWS\system32\setver.exe
2016-07-12 17:38:01 ----A---- C:\WINDOWS\system32\pmspl.dll
2016-07-12 17:38:01 ----A---- C:\WINDOWS\system32\OLESVR.DLL
2016-07-12 17:38:01 ----A---- C:\WINDOWS\system32\ntvdmd.dll
2016-07-12 17:38:01 ----A---- C:\WINDOWS\system32\ntvdm.exe
2016-07-12 17:38:01 ----A---- C:\WINDOWS\system32\mem.exe
2016-07-12 17:38:01 ----A---- C:\WINDOWS\system32\lzexpand.dll
2016-07-12 17:38:01 ----A---- C:\WINDOWS\system32\KB16.COM
2016-07-12 17:38:01 ----A---- C:\WINDOWS\system32\GRAPHICS.COM
2016-07-12 17:38:01 ----A---- C:\WINDOWS\system32\graftabl.com
2016-07-12 17:38:01 ----A---- C:\WINDOWS\system32\GDI.EXE
2016-07-12 17:38:01 ----A---- C:\WINDOWS\system32\edit.com
2016-07-12 17:38:01 ----A---- C:\WINDOWS\system32\DRWATSON.EXE
2016-07-12 17:38:01 ----A---- C:\WINDOWS\system32\debug.exe
2016-07-12 17:38:01 ----A---- C:\WINDOWS\system32\DDEML.DLL
2016-07-12 17:38:01 ----A---- C:\WINDOWS\system32\COMMDLG.DLL
2016-07-12 17:38:01 ----A---- C:\WINDOWS\system32\COMMAND.COM
2016-07-12 17:38:00 ----A---- C:\WINDOWS\system32\WINNLS.DLL
2016-07-12 17:38:00 ----A---- C:\WINDOWS\system32\win87em.dll
2016-07-12 17:38:00 ----A---- C:\WINDOWS\system32\vdmredir.dll
2016-07-12 17:38:00 ----A---- C:\WINDOWS\system32\olecli.dll
2016-07-12 17:38:00 ----A---- C:\WINDOWS\system32\nlsfunc.exe
2016-07-12 17:38:00 ----A---- C:\WINDOWS\system32\netapi.dll
2016-07-12 17:38:00 ----A---- C:\WINDOWS\system32\MMSYSTEM.DLL
2016-07-12 17:38:00 ----A---- C:\WINDOWS\system32\krnl386.exe
2016-07-12 17:38:00 ----A---- C:\WINDOWS\system32\exe2bin.exe
2016-07-12 17:38:00 ----A---- C:\WINDOWS\system32\edlin.exe
2016-07-12 17:38:00 ----A---- C:\WINDOWS\system32\dosx.exe
2016-07-12 17:38:00 ----A---- C:\WINDOWS\system32\ctl3dv2.dll
2016-07-12 17:38:00 ----A---- C:\WINDOWS\system32\append.exe
2016-07-12 16:30:22 ----HD---- C:\ProgramData
2016-07-12 12:39:09 ----D---- C:\WINDOWS\system32\Macromed
2016-07-11 04:47:47 ----D---- C:\Users\home\AppData\Roaming\Skype
2016-07-08 04:05:25 ----D---- C:\WINDOWS\system32\drivers\UMDF
2016-07-07 13:03:20 ----RD---- C:\Users
2016-07-06 20:39:42 ----SHD---- C:\System Volume Information
2016-07-06 20:29:03 ----SD---- C:\ProgramData\Microsoft
2016-07-06 20:24:09 ----D---- C:\WINDOWS\OCR
2016-07-06 20:23:41 ----D---- C:\WINDOWS\system32\LogFiles
2016-07-06 20:19:42 ----D---- C:\WINDOWS\AppCompat
2016-07-06 19:04:42 ----SD---- C:\WINDOWS\system32\DiagSvcs
2016-07-06 19:04:42 ----D---- C:\WINDOWS\system32\WinBioPlugIns
2016-07-06 19:04:42 ----D---- C:\WINDOWS\system32\SystemResetPlatform
2016-07-06 18:59:18 ----SD---- C:\WINDOWS\system32\Microsoft
2016-07-06 18:58:13 ----D---- C:\WINDOWS\system32\MUI
2016-07-06 18:58:13 ----D---- C:\WINDOWS\system32\inetsrv
2016-07-06 18:58:09 ----A---- C:\WINDOWS\system32\mqsnap.dll
2016-07-06 18:58:09 ----A---- C:\WINDOWS\system32\mqcertui.dll
2016-07-06 18:58:05 ----A---- C:\WINDOWS\system32\mqoa.dll
2016-07-06 18:58:04 ----A---- C:\WINDOWS\system32\mqqm.dll
2016-07-06 18:57:57 ----A---- C:\WINDOWS\system32\mqsvc.exe
2016-07-06 18:57:57 ----A---- C:\WINDOWS\system32\mqbkup.exe
2016-07-06 18:57:54 ----A---- C:\WINDOWS\system32\wamregps.dll
2016-07-06 18:57:54 ----A---- C:\WINDOWS\system32\iisRtl.dll
2016-07-06 18:57:54 ----A---- C:\WINDOWS\system32\iisrstap.dll
2016-07-06 18:57:54 ----A---- C:\WINDOWS\system32\iisreset.exe
2016-07-06 18:57:54 ----A---- C:\WINDOWS\system32\ahadmin.dll
2016-07-06 18:57:54 ----A---- C:\WINDOWS\system32\admwprox.dll
2016-07-06 18:57:52 ----A---- C:\WINDOWS\system32\mqrt.dll
2016-07-06 18:57:49 ----A---- C:\WINDOWS\system32\mqlogmgr.dll
2016-07-06 18:57:47 ----A---- C:\WINDOWS\system32\mqutil.dll
2016-07-06 18:24:48 ----D---- C:\WINDOWS\rescache
2016-07-06 18:24:41 ----D---- C:\WINDOWS\SoftwareDistribution
2016-07-06 18:23:53 ----D---- C:\Program Files\Windows NT
2016-07-06 18:23:50 ----D---- C:\WINDOWS\Registration
2016-07-06 18:23:47 ----D---- C:\WINDOWS\system32\WinBioDatabase
2016-07-06 18:22:10 ----D---- C:\WINDOWS\system32\drivers\etc
2016-07-06 18:22:03 ----RSD---- C:\WINDOWS\Media
2016-07-06 18:17:38 ----D---- C:\WINDOWS\system32\CodeIntegrity
2016-07-06 18:17:38 ----D---- C:\WINDOWS\ShellNew
2016-07-06 18:17:37 ----RSD---- C:\WINDOWS\Fonts
2016-07-06 18:15:36 ----D---- C:\WINDOWS\twain_32
2016-07-06 18:15:36 ----D---- C:\WINDOWS\system32\zh-TW
2016-07-06 18:15:36 ----D---- C:\WINDOWS\system32\zh-HK
2016-07-06 18:15:36 ----D---- C:\WINDOWS\system32\zh-CN
2016-07-06 18:15:35 ----D---- C:\WINDOWS\system32\tr-TR
2016-07-06 18:15:35 ----D---- C:\WINDOWS\system32\sv-SE
2016-07-06 18:15:35 ----D---- C:\WINDOWS\system32\SPReview
2016-07-06 18:15:31 ----D---- C:\WINDOWS\system32\ru-RU
2016-07-06 18:15:31 ----D---- C:\WINDOWS\system32\pt-PT
2016-07-06 18:15:31 ----D---- C:\WINDOWS\system32\pt-BR
2016-07-06 18:15:31 ----D---- C:\WINDOWS\system32\pl-PL
2016-07-06 18:15:31 ----D---- C:\WINDOWS\system32\oem
2016-07-06 18:15:31 ----D---- C:\WINDOWS\system32\nl-NL
2016-07-06 18:15:31 ----D---- C:\WINDOWS\system32\nb-NO
2016-07-06 18:15:31 ----D---- C:\WINDOWS\system32\ko-KR
2016-07-06 18:15:31 ----D---- C:\WINDOWS\system32\ja-JP
2016-07-06 18:15:31 ----D---- C:\WINDOWS\system32\it-IT
2016-07-06 18:15:31 ----D---- C:\WINDOWS\system32\IME
2016-07-06 18:15:31 ----D---- C:\WINDOWS\system32\hu-HU
2016-07-06 18:15:30 ----D---- C:\WINDOWS\system32\fr-FR
2016-07-06 18:15:30 ----D---- C:\WINDOWS\system32\fi-FI
2016-07-06 18:15:30 ----D---- C:\WINDOWS\system32\EventProviders
2016-07-06 18:15:29 ----D---- C:\WINDOWS\system32\es-ES
2016-07-06 18:15:29 ----D---- C:\WINDOWS\system32\el-GR
2016-07-06 18:15:28 ----D---- C:\WINDOWS\system32\de-DE
2016-07-06 18:15:28 ----D---- C:\WINDOWS\system32\da-DK
2016-07-06 18:14:40 ----D---- C:\WINDOWS\system32\appmgmt
2016-07-06 18:14:36 ----D---- C:\WINDOWS\schemas
2016-07-06 18:14:35 ----D---- C:\WINDOWS\LiveKernelReports
2016-07-06 18:14:28 ----D---- C:\WINDOWS\ehome
2016-07-06 18:14:19 ----SHD---- C:\Program Files\Windows Sidebar
2016-07-06 18:14:19 ----D---- C:\Program Files\Microsoft.NET
2016-07-06 18:14:18 ----D---- C:\Program Files\DVD Maker
2016-07-06 18:14:18 ----D---- C:\Program Files\Common Files
2016-07-06 18:14:18 ----AD---- C:\Program Files\Common Files\microsoft shared
2016-07-06 18:13:27 ----D---- C:\WINDOWS\system32\Recovery
2016-07-06 18:11:32 ----D---- C:\WINDOWS\system32\Sysprep
2016-07-06 17:43:56 ----HD---- C:\$WINDOWS.~BT
2016-07-06 12:47:55 ----D---- C:\ProgramData\Skype
2016-07-02 06:37:58 ----A---- C:\WINDOWS\system32\FlashPlayerApp.exe
2016-06-22 20:34:18 ----D---- C:\Users\home\AppData\Roaming\HpUpdate
2016-06-18 12:43:04 ----RD---- C:\Program Files\Skype

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 aswRvrt;avast! Revert; C:\WINDOWS\system32\drivers\aswRvrt.sys [2016-07-15 60424]
R0 aswVmm;avast! VM Monitor; C:\WINDOWS\system32\drivers\aswVmm.sys [2016-07-15 222056]
R1 aswKbd;aswKbd; C:\WINDOWS\system32\drivers\aswKbd.sys [2016-07-15 35096]
R1 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr2.sys [2016-07-15 91232]
R1 aswSnx;aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [2016-07-15 816304]
R1 aswSP;aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [2016-07-15 438296]
R1 FileCrypt;@%systemroot%\system32\drivers\filecrypt.sys,-100; C:\WINDOWS\system32\drivers\filecrypt.sys [2016-07-06 76288]
R1 GpuEnergyDrv;@%SystemRoot%\system32\drivers\gpuenergydrv.sys,-100; C:\WINDOWS\System32\drivers\gpuenergydrv.sys [2015-10-30 7680]
R2 aswHwid;avast! HardwareID; C:\WINDOWS\system32\drivers\aswHwid.sys [2016-07-15 34008]
R2 aswMonFlt;aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [2016-07-15 91680]
R2 aswStm;aswStm; C:\WINDOWS\system32\drivers\aswStm.sys [2016-07-15 118152]
R2 MMCSS;@%systemroot%\system32\drivers\mmcss.sys,-100; C:\WINDOWS\system32\drivers\mmcss.sys [2015-10-30 36864]
R2 storqosflt;@%SystemRoot%\System32\drivers\storqosflt.sys,-101; C:\WINDOWS\system32\drivers\storqosflt.sys [2015-10-30 62464]
R3 e1iexpress;@net1i32.inf,%e1iExpress.Service.DispName%;Intel(R) PRO/1000 PCI Express Network Connection Driver I; C:\WINDOWS\System32\drivers\e1i6332.sys [2015-10-30 387584]
R3 igfx;igfx; C:\WINDOWS\system32\DRIVERS\igdkmd32.sys [2012-03-23 9036288]
R3 MQAC;@mqutil.dll,-6101; C:\WINDOWS\system32\drivers\mqac.sys [2016-07-06 130560]
S0 LSI_SAS2i;LSI_SAS2i; C:\WINDOWS\System32\drivers\lsi_sas2i.sys [2015-10-30 88928]
S0 LSI_SAS3i;LSI_SAS3i; C:\WINDOWS\System32\drivers\lsi_sas3i.sys [2015-10-30 83288]
S0 percsas2i;percsas2i; C:\WINDOWS\System32\drivers\percsas2i.sys [2015-10-30 51040]
S0 percsas3i;percsas3i; C:\WINDOWS\System32\drivers\percsas3i.sys [2015-10-30 51552]
S0 storufs;@storufs.inf,%UfsServiceDesc%;Microsoft Universal Flash Storage (UFS) Driver; C:\WINDOWS\System32\drivers\storufs.sys [2015-10-30 27992]
S3 bcmfn;@bcmfn.inf,%bcmfn.SVCDESC%;bcmfn Service; C:\WINDOWS\System32\drivers\bcmfn.sys [2015-10-30 8192]
S3 buttonconverter;@buttonconverter.inf,%btnconv.SvcDesc%;Service for Portable Device Control devices; C:\WINDOWS\System32\drivers\buttonconverter.sys [2015-10-30 26624]
S3 CapImg;@capimg.inf,%CapImgHid_Service%;HID driver for CapImg touch screen; C:\WINDOWS\System32\drivers\capimg.sys [2016-04-27 96768]
S3 genericusbfn;@genericusbfn.inf,%genericusbfn.ServiceName%;Generic USB Function Class; C:\WINDOWS\System32\drivers\genericusbfn.sys [2015-10-30 17408]
S3 GPIO;@iaiogpio.inf,%GPIO.SVCDESC%;Intel SoC GPIO Controller Driver; C:\WINDOWS\System32\drivers\iaiogpio.sys [2015-10-30 22016]
S3 hidinterrupt;@hidinterrupt.inf,%HID_Interrupt.SvcDesc%;Common Driver for HID Buttons implemented with interrupts; C:\WINDOWS\System32\drivers\hidinterrupt.sys [2015-10-30 38240]
S3 iai2c;@iai2c.inf,%iai2c.SVCDESC%;Intel(R) Serial IO I2C Host Controller; C:\WINDOWS\System32\drivers\iai2c.sys [2015-10-30 66048]
S3 iaioi2c;@iaioi2c.inf,%Driver_Service.Desc%;Intel(R) Atom(TM) Processor I2C Controller Service; C:\WINDOWS\System32\drivers\iaioi2c.sys [2015-10-30 61936]
S3 IoQos;@%SystemRoot%\system32\drivers\ioqos.sys,-100; C:\WINDOWS\system32\drivers\ioqos.sys [2015-10-30 23040]
S3 UcmCx0101;USB Connector Manager KMDF Class Extension; C:\WINDOWS\System32\Drivers\UcmCx.sys [2016-07-06 46080]
S3 UcmUcsi;@UcmUcsi.inf,%UcmUcsi.ServiceName%;USB Connector Manager UCSI Client; C:\WINDOWS\System32\drivers\UcmUcsi.sys [2015-10-30 33792]
S3 UdeCx;USB Device Emulation Support Library; C:\WINDOWS\system32\drivers\udecx.sys [2015-10-30 32768]
S3 Ufx01000;USB Function Class Extension; C:\WINDOWS\system32\drivers\ufx01000.sys [2016-07-06 203104]
S3 UfxChipidea;@ufxchipidea.inf,%UfxChipidea.ServiceName%;USB Chipidea Controller; C:\WINDOWS\System32\drivers\UfxChipidea.sys [2015-10-30 74080]
S3 ufxsynopsys;@ufxsynopsys.inf,%ufxsynopsys.ServiceName%;USB Synopsys Controller; C:\WINDOWS\System32\drivers\ufxsynopsys.sys [2016-07-06 104800]
S3 UrsCx01000;USB Role-Switch Support Library; C:\WINDOWS\system32\drivers\urscx01000.sys [2015-10-30 42840]
S3 UrsChipidea;@urschipidea.inf,%UrsChipidea.ServiceName%;Chipidea USB Role-Switch Driver; C:\WINDOWS\System32\drivers\urschipidea.sys [2015-10-30 21856]
S3 UrsSynopsys;@urssynopsys.inf,%UrsSynopsys.ServiceName%;Synopsys USB Role-Switch Driver; C:\WINDOWS\System32\drivers\urssynopsys.sys [2015-10-30 21856]
S3 usbscan;@sti.inf,%usbscan.SvcDesc%;Ovladač skeneru USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2015-10-30 37888]
S3 usbser;@usbser.inf,%UsbSerial.DriverDesc%;Microsoft USB Serial Driver; C:\WINDOWS\System32\drivers\usbser.sys [2016-07-06 48640]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [2016-06-25 82128]
R2 AppHostSvc;@%windir%\system32\inetsrv\iisres.dll,-30011; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
R2 avast! Antivirus;Avast Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2016-07-15 197128]
R2 CoreMessagingRegistrar;@%SystemRoot%\system32\coremessaging.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
R2 DiagTrack;@%SystemRoot%\system32\diagtrack.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-10-30 37256]
R2 DoSvc;@%systemroot%\system32\dosvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
R2 HPSupportSolutionsFrameworkService;HP Support Solutions Framework Service; C:\Program Files\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe [2016-04-26 28552]
R2 MSMQ;@mqutil.dll,-6102; C:\WINDOWS\system32\mqsvc.exe [2016-07-06 25088]
R2 NAUpdate;Nero Update; C:\Program Files\Nero\Update\NASvc.exe [2010-05-04 503080]
R2 NetMsmqActivator;@%systemroot%\Microsoft.NET\Framework\v4.0.30319\ServiceModelInstallRC.dll,-8195; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2015-10-30 135848]
R2 NetPipeActivator;@%systemroot%\Microsoft.NET\Framework\v4.0.30319\ServiceModelInstallRC.dll,-8197; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2015-10-30 135848]
R2 OneSyncSvc_522ff;Hostitel synchronizace_522ff; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
R2 tiledatamodelsvc;@%SystemRoot%\system32\tileobjserver.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
R2 UserManager;@%systemroot%\system32\usermgr.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
R3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4640000]
R3 StateRepository;@%SystemRoot%\system32\windows.staterepository.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S2 MapsBroker;@%SystemRoot%\System32\moshost.dll,-100; C:\WINDOWS\System32\svchost.exe [2015-10-30 37256]
S2 NetTcpActivator;@%systemroot%\Microsoft.NET\Framework\v4.0.30319\ServiceModelInstallRC.dll,-8199; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2015-10-30 135848]
S2 OneSyncSvc;@%SystemRoot%\system32\APHostRes.dll,-10002; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S2 OneSyncSvc_4241e;Hostitel synchronizace_4241e; C:\Windows\system32\svchost.exe [2015-10-30 37256]
S2 SkypeUpdate;Skype Updater; C:\Program Files\Skype\Updater\Updater.exe [2016-05-23 324224]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2016-07-12 270016]
S3 AJRouter;@%SystemRoot%\system32\AJRouter.dll,-2; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-10-30 37256]
S3 ClipSVC;@%SystemRoot%\system32\ClipSVC.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-10-30 37256]
S3 DcpSvc;@%SystemRoot%\system32\dcpsvc.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-10-30 37256]
S3 DevQueryBroker;@%SystemRoot%\system32\DevQueryBroker.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 diagnosticshub.standardcollector.service;@%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000; C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe [2015-10-30 26112]
S3 DmEnrollmentSvc;@%systemroot%\system32\Windows.Internal.Management.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 dmwappushservice;@%SystemRoot%\system32\dmwappushsvc.dll,-200; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 DsSvc;@%SystemRoot%\system32\dssvc.dll,-10003; C:\WINDOWS\System32\svchost.exe [2015-10-30 37256]
S3 embeddedmode;@%SystemRoot%\system32\embeddedmodesvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 37256]
S3 EntAppSvc;@EnterpriseAppMgmtSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe [2015-10-23 43696]
S3 icssvc;@%SystemRoot%\System32\tetheringservice.dll,-4097; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 LicenseManager;@%SystemRoot%\system32\licensemanagersvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 37256]
S3 MessagingService;@%SystemRoot%\system32\MessagingService.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 MessagingService_522ff;Služba zasílání zpráv_522ff; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 Microsoft SharePoint Workspace Audit Service;Microsoft SharePoint Workspace Audit Service; C:\Program Files\Microsoft Office\Office14\GROOVE.EXE [2013-12-19 30814400]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe [2016-06-14 146888]
S3 NetSetupSvc;@%SystemRoot%\system32\NetSetupSvc.dll,-3; C:\WINDOWS\System32\svchost.exe [2015-10-30 37256]
S3 NgcCtnrSvc;@%SystemRoot%\System32\NgcCtnrSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 NgcSvc;@%SystemRoot%\System32\ngcsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352]
S3 PhoneSvc;@%SystemRoot%\system32\PhoneserviceRes.dll,-10000; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 PimIndexMaintenanceSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-15001; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 PimIndexMaintenanceSvc_522ff;Data kontaktů_522ff; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 RetailDemo;@%SystemRoot%\System32\RDXService.dll,-256; C:\WINDOWS\System32\svchost.exe [2015-10-30 37256]
S3 SensorDataService;@%SystemRoot%\system32\SensorDataService.exe,-101; C:\WINDOWS\System32\SensorDataService.exe [2015-10-30 900096]
S3 SensorService;@%SystemRoot%\System32\sensorservice.dll,-1000; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 SmsRouter;@%SystemRoot%\System32\SmsRouterSvc.dll,-10001; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 TieringEngineService;@%SystemRoot%\system32\TieringEngineService.exe,-702; C:\WINDOWS\system32\TieringEngineService.exe [2015-10-30 256512]
S3 UnistoreSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-10003; C:\WINDOWS\System32\svchost.exe [2015-10-30 37256]
S3 UnistoreSvc_522ff;Úložiště uživatelských dat_522ff; C:\WINDOWS\System32\svchost.exe [2015-10-30 37256]
S3 UserDataSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-14001; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 UserDataSvc_522ff;Přístup k uživatelským datům_522ff; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 UsoSvc;@%systemroot%\system32\usocore.dll,-102; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S4 aspnet_state;@%SystemRoot%\Microsoft.NET\Framework\v4.0.30319\aspnet_rc.dll,-1; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2015-10-30 45752]
S4 CDPSvc;@%SystemRoot%\system32\cdpsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S4 tzautoupdate;@%SystemRoot%\system32\tzautoupdate.dll,-200; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]

-----------------EOF-----------------

Děkuji

Re: The NTVDM CPU has encountered an illegal instruction

Napsal: 16 črc 2016 10:20
od Rudy
Zdravím!
Udělejte kompletní sken MBAM (vč skenu na rootkit): http://www.malwarebytes.org/mbam.php . Dejte log, předem nic nemažte.

Re: The NTVDM CPU has encountered an illegal instruction

Napsal: 16 črc 2016 12:48
od Radek.Juracak
Dobrý den, zde je:

Malwarebytes Anti-Malware
www.malwarebytes.org

Datum skenování: 16.7.2016
Čas skenování: 13:31
Protokol:
Správce: Ano

Verze: 2.2.1.1043
Databáze malwaru: v2016.07.16.03
Databáze rootkitů: v2016.05.27.01
Licence: Zkušební verze
Ochrana proti malwaru: Zapnuto
Ochrana proti škodlivým webovým stránkám: Zapnuto
Ochrana programu: Vypnuto

OS: Windows 10
CPU: x86
Souborový systém: NTFS
Uživatel: home

Typ skenu: Sken hrozeb
Výsledek: Dokončeno
Prohledaných objektů: 318147
Uplynulý čas: 9 min, 15 sek

Paměť: Zapnuto
Po spuštění: Zapnuto
Souborový systém: Zapnuto
Archivy: Zapnuto
Rootkity: Vypnuto
Heuristika: Zapnuto
PUP: Zapnuto
PUM: Zapnuto

Procesy: 0
(Nenalezeny žádné škodlivé položky)

Moduly: 0
(Nenalezeny žádné škodlivé položky)

Klíče registru: 0
(Nenalezeny žádné škodlivé položky)

Hodnoty registru: 0
(Nenalezeny žádné škodlivé položky)

Data registru: 0
(Nenalezeny žádné škodlivé položky)

Složky: 1
PUP.Optional.MindSpark, C:\Users\home\AppData\Roaming\Mozilla\Firefox\Profiles\gz1bebt5.default\GoUnzip_dm, , [3f740a1a9bff9f97064a6842956e956b],

Soubory: 1
PUP.Optional.MindSpark, C:\Users\home\AppData\Roaming\Mozilla\Firefox\Profiles\gz1bebt5.default\GoUnzip_dm\B5C2F1EF-762C-4549-92A0-1405F3397416.sqlite, , [3f740a1a9bff9f97064a6842956e956b],

Fyzické sektory: 0
(Nenalezeny žádné škodlivé položky)


(end)


Děkuji

Re: The NTVDM CPU has encountered an illegal instruction

Napsal: 16 črc 2016 17:16
od Rudy
Nálezy smažte.

Re: The NTVDM CPU has encountered an illegal instruction

Napsal: 16 črc 2016 20:35
od Radek.Juracak
Děkuji, smazáno, stále se však objevuje....

Re: The NTVDM CPU has encountered an illegal instruction

Napsal: 16 črc 2016 20:37
od Rudy
Spusťte tuto utilitu:
Stáhněte AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
Uložte na plochu
Ukončete všechny programy
Klikněte nejprve na >Scan< a pak na >Clean<.
Proběhne skenováni a pak se objeví log, který sem vložte.

Re: The NTVDM CPU has encountered an illegal instruction

Napsal: 16 črc 2016 20:39
od Radek.Juracak
příloha

Re: The NTVDM CPU has encountered an illegal instruction

Napsal: 16 črc 2016 21:05
od Radek.Juracak
Zde je log...
Nicméně problém přetrvává.
Děkuji


# AdwCleaner v5.201 - Log vytvořen 16/07/2016 v 21:43:29
# Aktualizováno 30/06/2016 by ToolsLib
# Databáze : 2016-07-16.1 [Server]
# Operační system : Windows 10 Pro (X86)
# Uživatelské jméno : home - HOME-PC
# Spuštěno z : C:\Users\home\Desktop\adwcleaner_5.201.exe
# Nastavení : Čištění
# Podpora : https://toolslib.net/forum

***** [ Služby ] *****


***** [ Složky ] *****

[-] Složka Smazáno : C:\Users\home\AppData\Roaming\CheckPoint\ZoneAlarm LTD Toolbar

***** [ Soubory ] *****


***** [ DLLs ] *****


***** [ WMI ] *****


***** [ Zástupci ] *****


***** [ Naplánované úlohy ] *****


***** [ Registry ] *****

[-] Klíč Smazáno : HKLM\SOFTWARE\MozillaPlugins\@checkpoint.com/FFApi
[-] Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ZoneAlarm LTD Toolbar

***** [ Prohlížeče ] *****

[-] [C:\Users\home\AppData\Roaming\Mozilla\Firefox\Profiles\gz1bebt5.default\prefs.js] Smazáno : user_pref("extensions.toolbar.mindspark._dmMembers_.BUTTON_STRUCTURE", "[{\"b\":224341181,\"c\":\"mindspark.magnify\",\"p\":\"L.0\"},{\"b\":224341182,\"c\":\"mindspark.entersearchterms\",\"p\":\"L.0.0[...]
[-] [C:\Users\home\AppData\Roaming\Mozilla\Firefox\Profiles\gz1bebt5.default\prefs.js] Smazáno : user_pref("extensions.toolbar.mindspark._dmMembers_.browser.startup.homepage.prev", "hxxps://www.seznam.cz/");
[-] [C:\Users\home\AppData\Roaming\Mozilla\Firefox\Profiles\gz1bebt5.default\prefs.js] Smazáno : user_pref("extensions.toolbar.mindspark._dmMembers_.browser.startup.homepage.savedPrev", "true");
[-] [C:\Users\home\AppData\Roaming\Mozilla\Firefox\Profiles\gz1bebt5.default\prefs.js] Smazáno : user_pref("extensions.toolbar.mindspark._dmMembers_.browser.startup.homepage.tb", "hxxp://hp.myway.com/gounzip/ttab02/index.html?coId=6d7b29062f3b4a7c8e47bbea832a27e5&subId=cze&ln=cs&n=782ace8f&ptb=B5[...]
[-] [C:\Users\home\AppData\Roaming\Mozilla\Firefox\Profiles\gz1bebt5.default\prefs.js] Smazáno : user_pref("extensions.toolbar.mindspark._dmMembers_.browser.startup.page.savedPrev", 1);
[-] [C:\Users\home\AppData\Roaming\Mozilla\Firefox\Profiles\gz1bebt5.default\prefs.js] Smazáno : user_pref("extensions.toolbar.mindspark._dmMembers_.browser.startup.page.tb", 1);
[-] [C:\Users\home\AppData\Roaming\Mozilla\Firefox\Profiles\gz1bebt5.default\prefs.js] Smazáno : user_pref("extensions.toolbar.mindspark._dmMembers_.browser.version.last", "47.0");
[-] [C:\Users\home\AppData\Roaming\Mozilla\Firefox\Profiles\gz1bebt5.default\prefs.js] Smazáno : user_pref("extensions.toolbar.mindspark._dmMembers_.coId", "6d7b29062f3b4a7c8e47bbea832a27e5");
[-] [C:\Users\home\AppData\Roaming\Mozilla\Firefox\Profiles\gz1bebt5.default\prefs.js] Smazáno : user_pref("extensions.toolbar.mindspark._dmMembers_.firstKnownVersion", "7.102.10.4277");
[-] [C:\Users\home\AppData\Roaming\Mozilla\Firefox\Profiles\gz1bebt5.default\prefs.js] Smazáno : user_pref("extensions.toolbar.mindspark._dmMembers_.homepage", "hxxp://hp.myway.com/gounzip/ttab02/index.html?coId=6d7b29062f3b4a7c8e47bbea832a27e5&subId=cze&ln=cs&n=782ace8f&ptb=B5C2F1EF-762C-4549-92[...]
[-] [C:\Users\home\AppData\Roaming\Mozilla\Firefox\Profiles\gz1bebt5.default\prefs.js] Smazáno : user_pref("extensions.toolbar.mindspark._dmMembers_.hp.enabled", true);
[-] [C:\Users\home\AppData\Roaming\Mozilla\Firefox\Profiles\gz1bebt5.default\prefs.js] Smazáno : user_pref("extensions.toolbar.mindspark._dmMembers_.hp.guardType", "HPR");
[-] [C:\Users\home\AppData\Roaming\Mozilla\Firefox\Profiles\gz1bebt5.default\prefs.js] Smazáno : user_pref("extensions.toolbar.mindspark._dmMembers_.hp.user.defined", false);
[-] [C:\Users\home\AppData\Roaming\Mozilla\Firefox\Profiles\gz1bebt5.default\prefs.js] Smazáno : user_pref("extensions.toolbar.mindspark._dmMembers_.initialized", true);
[-] [C:\Users\home\AppData\Roaming\Mozilla\Firefox\Profiles\gz1bebt5.default\prefs.js] Smazáno : user_pref("extensions.toolbar.mindspark._dmMembers_.installType", "XPI");
[-] [C:\Users\home\AppData\Roaming\Mozilla\Firefox\Profiles\gz1bebt5.default\prefs.js] Smazáno : user_pref("extensions.toolbar.mindspark._dmMembers_.installation.dlpCountryCode", "CZ");
[-] [C:\Users\home\AppData\Roaming\Mozilla\Firefox\Profiles\gz1bebt5.default\prefs.js] Smazáno : user_pref("extensions.toolbar.mindspark._dmMembers_.installation.installDate", "2016071311");
[-] [C:\Users\home\AppData\Roaming\Mozilla\Firefox\Profiles\gz1bebt5.default\prefs.js] Smazáno : user_pref("extensions.toolbar.mindspark._dmMembers_.installation.partnerId", "^BYI^xdm122^TTAB02^cz");
[-] [C:\Users\home\AppData\Roaming\Mozilla\Firefox\Profiles\gz1bebt5.default\prefs.js] Smazáno : user_pref("extensions.toolbar.mindspark._dmMembers_.installation.partnerSubId", "cze");
[-] [C:\Users\home\AppData\Roaming\Mozilla\Firefox\Profiles\gz1bebt5.default\prefs.js] Smazáno : user_pref("extensions.toolbar.mindspark._dmMembers_.installation.pixelUrl", "hxxp://free.gounzip.com/install_pixels.jhtml?partner=^BYI^xdm122^TTAB02^cz&sub_id=cze&coId=6d7b29062f3b4a7c8e47bbea832a27e5[...]
[-] [C:\Users\home\AppData\Roaming\Mozilla\Firefox\Profiles\gz1bebt5.default\prefs.js] Smazáno : user_pref("extensions.toolbar.mindspark._dmMembers_.installation.success", true);
[-] [C:\Users\home\AppData\Roaming\Mozilla\Firefox\Profiles\gz1bebt5.default\prefs.js] Smazáno : user_pref("extensions.toolbar.mindspark._dmMembers_.installation.toolbarId", "B5C2F1EF-762C-4549-92A0-1405F3397416");
[-] [C:\Users\home\AppData\Roaming\Mozilla\Firefox\Profiles\gz1bebt5.default\prefs.js] Smazáno : user_pref("extensions.toolbar.mindspark._dmMembers_.lastActivePing", "1468444849661");
[-] [C:\Users\home\AppData\Roaming\Mozilla\Firefox\Profiles\gz1bebt5.default\prefs.js] Smazáno : user_pref("extensions.toolbar.mindspark._dmMembers_.lastKnownVersion", "7.102.10.4277");
[-] [C:\Users\home\AppData\Roaming\Mozilla\Firefox\Profiles\gz1bebt5.default\prefs.js] Smazáno : user_pref("extensions.toolbar.mindspark._dmMembers_.lssState", "{\"previousLocales\":[\"cs\",\"en-US\",\"en\"],\"supportedLocales\":[\"de\",\"es\",\"pt\",\"ja\",\"en\"],\"defaultLocale\":\"en\",\"supp[...]
[-] [C:\Users\home\AppData\Roaming\Mozilla\Firefox\Profiles\gz1bebt5.default\prefs.js] Smazáno : user_pref("extensions.toolbar.mindspark._dmMembers_.options.defaultSearch", false);
[-] [C:\Users\home\AppData\Roaming\Mozilla\Firefox\Profiles\gz1bebt5.default\prefs.js] Smazáno : user_pref("extensions.toolbar.mindspark._dmMembers_.options.homePageEnabled", true);
[-] [C:\Users\home\AppData\Roaming\Mozilla\Firefox\Profiles\gz1bebt5.default\prefs.js] Smazáno : user_pref("extensions.toolbar.mindspark._dmMembers_.options.keywordEnabled", false);
[-] [C:\Users\home\AppData\Roaming\Mozilla\Firefox\Profiles\gz1bebt5.default\prefs.js] Smazáno : user_pref("extensions.toolbar.mindspark._dmMembers_.options.tabEnabled", true);
[-] [C:\Users\home\AppData\Roaming\Mozilla\Firefox\Profiles\gz1bebt5.default\prefs.js] Smazáno : user_pref("extensions.toolbar.mindspark._dmMembers_.partnerPixelFired", true);
[-] [C:\Users\home\AppData\Roaming\Mozilla\Firefox\Profiles\gz1bebt5.default\prefs.js] Smazáno : user_pref("extensions.toolbar.mindspark._dmMembers_.productDeliveryOption.language", "cs");
[-] [C:\Users\home\AppData\Roaming\Mozilla\Firefox\Profiles\gz1bebt5.default\prefs.js] Smazáno : user_pref("extensions.toolbar.mindspark._dmMembers_.productDeliveryOption.newTabURL", "hxxp://hp.myway.com/gounzip/ttab02/index.html?p2=${partnerID}&n=${installDateHex}&st=tab&ptb=${toolbarID}&si=${pa[...]
[-] [C:\Users\home\AppData\Roaming\Mozilla\Firefox\Profiles\gz1bebt5.default\prefs.js] Smazáno : user_pref("extensions.toolbar.mindspark._dmMembers_.productDeliveryOption.type", "ToolTab");
[-] [C:\Users\home\AppData\Roaming\Mozilla\Firefox\Profiles\gz1bebt5.default\prefs.js] Smazáno : user_pref("extensions.toolbar.mindspark._dmMembers_.successUrl", "hxxp://free.gounzip.com/installComplete.jhtml");
[-] [C:\Users\home\AppData\Roaming\Mozilla\Firefox\Profiles\gz1bebt5.default\prefs.js] Smazáno : user_pref("extensions.toolbar.mindspark._dmMembers_.toolbarCollapsed", false);
[-] [C:\Users\home\AppData\Roaming\Mozilla\Firefox\Profiles\gz1bebt5.default\prefs.js] Smazáno : user_pref("extensions.toolbar.mindspark._dmMembers_.uninstallSurveyUrl", "hxxp://www.research.net/r/HYSCVNM?CBID=<!--cob ... oolbarID-->");
[-] [C:\Users\home\AppData\Roaming\Mozilla\Firefox\Profiles\gz1bebt5.default\prefs.js] Smazáno : user_pref("extensions.toolbar.mindspark._dmMembers_.uninstallTasks", "{\"prefBranchesToDelete\":[\"extensions.toolbar.mindspark._dmMembers_.\"],\"filesToDelete\":[\"C:\\\\Users\\\\home\\\\AppData\\\\R[...]
[-] [C:\Users\home\AppData\Roaming\Mozilla\Firefox\Profiles\gz1bebt5.default\prefs.js] Smazáno : user_pref("extensions.toolbar.mindspark.hp.enabled", true);
[-] [C:\Users\home\AppData\Roaming\Mozilla\Firefox\Profiles\gz1bebt5.default\prefs.js] Smazáno : user_pref("extensions.toolbar.mindspark.hp.enabled.guid", "gounzip@mindspark.com");
[-] [C:\Users\home\AppData\Roaming\Mozilla\Firefox\Profiles\gz1bebt5.default\prefs.js] Smazáno : user_pref("extensions.toolbar.mindspark.lastInstalled", "gounzip@mindspark.com");

*************************

:: "Tracing" klíče smazány
:: Nastavení Winsock vyčištěno

*************************

C:\AdwCleaner\AdwCleaner[C1].txt - [9364 bytů] - [16/07/2016 21:43:29]
C:\AdwCleaner\AdwCleaner[S1].txt - [9238 bytů] - [16/07/2016 21:40:18]

########## EOF - C:\AdwCleaner\AdwCleaner[C1].txt - [9510 bytů] ##########

Re: The NTVDM CPU has encountered an illegal instruction

Napsal: 16 črc 2016 21:40
od Rudy

Re: The NTVDM CPU has encountered an illegal instruction

Napsal: 16 črc 2016 22:13
od Radek.Juracak
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 17-07-2016
Ran by home (administrator) on HOME-PC (16-07-2016 23:06:44)
Running from C:\Users\home\Desktop
Loaded Profiles: home (Available Profiles: home & DefaultAppPool)
Platform: Microsoft Windows 10 Pro Version 1511 (X86) Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Malwarebytes) C:\Program Files\Malwarebytes Anti-Malware\mbamscheduler.exe
(Malwarebytes) C:\Program Files\Malwarebytes Anti-Malware\mbamservice.exe
(Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
(Malwarebytes) C:\Program Files\Malwarebytes Anti-Malware\mbam.exe
(Hewlett-Packard Company) C:\Program Files\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe
(Nero AG) C:\Program Files\Nero\Update\NASvc.exe
() C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkypeHost.exe
(VM305SNAP) C:\Windows\VM305_STI.EXE
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Hewlett-Packard) C:\Program Files\HP\HP Software Update\hpwuschd2.exe
(Spotify Ltd) C:\Users\home\AppData\Roaming\Spotify\SpotifyWebHelper.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Microsoft Corporation) C:\Windows\System32\wbem\unsecapp.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
() C:\Program Files\WindowsApps\Microsoft.Windows.Photos_16.526.11220.0_x86__8wekyb3d8bbwe\Microsoft.Photos.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.ZuneVideo_3.6.22501.0_x86__8wekyb3d8bbwe\Video.UI.exe
(Ghisler Software GmbH) C:\Program Files\totalcmd\TOTALCMD.EXE


==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [BigDog305] => C:\WINDOWS\VM305_STI.EXE [57344 2007-04-09] (VM305SNAP)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [8900328 2016-07-15] (AVAST Software)
HKLM\...\Run: [BCSSync] => C:\Program Files\Microsoft Office\Office14\BCSSync.exe [89184 2012-11-05] (Microsoft Corporation)
HKLM\...\Run: [HP Software Update] => C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe [96056 2013-05-30] (Hewlett-Packard)
HKU\S-1-5-21-841674414-3561358831-3126363696-1000\...\Run: [Spotify Web Helper] => C:\Users\home\AppData\Roaming\Spotify\SpotifyWebHelper.exe [1554032 2016-07-10] (Spotify Ltd)
HKU\S-1-5-21-841674414-3561358831-3126363696-1000\...\Run: [Spotify] => C:\Users\home\AppData\Roaming\Spotify\Spotify.exe [6913648 2016-07-10] (Spotify Ltd)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2016-07-15] (AVAST Software)
Startup: C:\Users\home\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Sledovat výstrahy inkoustu - HP Deskjet 1510 series.lnk [2016-07-16]
ShortcutTarget: Sledovat výstrahy inkoustu - HP Deskjet 1510 series.lnk -> C:\Program Files\HP\HP Deskjet 1510 series\Bin\HPStatusBL.dll (Hewlett-Packard Co.)
GroupPolicyScripts: Restriction <======= ATTENTION

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{5ab7dbbb-987f-4a52-b46c-74af69f360fd}: [DhcpNameServer] 192.168.1.1

Internet Explorer:
==================
BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL [2013-12-19] (Microsoft Corporation)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation)
Toolbar: HKU\S-1-5-21-841674414-3561358831-3126363696-1000 -> No Name - {EE2AC4E5-B0B0-4EC6-88A9-BCA1A32AB107} - No File

FireFox:
========
FF ProfilePath: C:\Users\home\AppData\Roaming\Mozilla\Firefox\Profiles\gz1bebt5.default
FF Homepage: hxxps://www.seznam.cz/
FF NetworkProxy: "type", 0
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF32_22_0_0_209.dll [2016-07-12] ()
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~1\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation)
FF Plugin: @videolan.org/vlc,version=2.2.1 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2016-06-30] (Adobe Systems Inc.)
FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2016-07-15]
FF HKLM\...\Firefox\Extensions: [sp@avast.com] - C:\Program Files\AVAST Software\Avast\SafePrice\FF
FF Extension: Avast SafePrice - C:\Program Files\AVAST Software\Avast\SafePrice\FF [2016-07-15]

Chrome:
=======
CHR HKLM\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2016-03-19]

==================== Services (Whitelisted) ========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [197128 2016-07-15] (AVAST Software)
R2 HPSupportSolutionsFrameworkService; C:\Program Files\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe [28552 2016-04-26] (Hewlett-Packard Company)
R2 MBAMScheduler; C:\Program Files\Malwarebytes Anti-Malware\mbamscheduler.exe [1514464 2016-03-10] (Malwarebytes)
R2 MBAMService; C:\Program Files\Malwarebytes Anti-Malware\mbamservice.exe [1136608 2016-03-10] (Malwarebytes)
R2 NAUpdate; C:\Program Files\Nero\Update\NASvc.exe [503080 2010-05-04] (Nero AG)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [280376 2015-10-30] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23264 2016-07-01] (Microsoft Corporation)

===================== Drivers (Whitelisted) ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 aswHwid; C:\WINDOWS\system32\drivers\aswHwid.sys [34008 2016-07-15] (AVAST Software)
R1 aswKbd; C:\WINDOWS\system32\drivers\aswKbd.sys [35096 2016-07-15] (AVAST Software)
R2 aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [91680 2016-07-15] (AVAST Software)
R1 aswRdr; C:\WINDOWS\system32\drivers\aswRdr2.sys [91232 2016-07-15] (AVAST Software)
R0 aswRvrt; C:\WINDOWS\system32\Drivers\aswRvrt.sys [60424 2016-07-15] (AVAST Software)
R1 aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [816304 2016-07-15] (AVAST Software)
R1 aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [438296 2016-07-15] (AVAST Software)
S2 aswStm; C:\WINDOWS\system32\drivers\aswStm.sys [118152 2016-07-15] (AVAST Software)
R0 aswVmm; C:\WINDOWS\system32\Drivers\aswVmm.sys [222056 2016-07-15] (AVAST Software)
R3 MBAMProtector; C:\WINDOWS\system32\drivers\mbam.sys [24448 2016-03-10] (Malwarebytes)
R3 MBAMSwissArmy; C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys [170200 2016-07-16] (Malwarebytes)
R3 MBAMWebAccessControl; C:\WINDOWS\system32\drivers\mwac.sys [53120 2016-03-10] (Malwarebytes Corporation)
S3 vvftav; C:\WINDOWS\system32\drivers\vvftav.sys [474368 2007-06-23] (Vimicro Corporation)
S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [37400 2015-10-30] (Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [246104 2015-10-30] (Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [98648 2015-10-30] (Microsoft Corporation)
S3 ZSMC0305; C:\WINDOWS\System32\Drivers\usbVM305.sys [1466624 2007-03-08] (Vimicro Corporation)
U3 idsvc; no ImagePath
U3 wpcsvc; no ImagePath

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2016-07-16 23:06 - 2016-07-16 23:07 - 00008920 _____ C:\Users\home\Desktop\FRST.txt
2016-07-16 23:06 - 2016-07-16 23:06 - 00000000 ____D C:\FRST
2016-07-16 22:55 - 2016-07-16 22:55 - 00000017 _____ C:\Users\home\AppData\Local\resmon.resmoncfg
2016-07-16 22:50 - 2016-07-16 22:52 - 01741824 _____ (Farbar) C:\Users\home\Desktop\FRST.exe
2016-07-16 21:40 - 2016-07-16 21:43 - 00000000 ____D C:\AdwCleaner
2016-07-16 21:36 - 2016-07-16 21:37 - 03712064 _____ C:\Users\home\Desktop\adwcleaner_5.201.exe
2016-07-16 13:30 - 2016-07-16 22:23 - 00170200 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys
2016-07-16 13:30 - 2016-07-16 13:30 - 00001129 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2016-07-16 13:30 - 2016-07-16 13:30 - 00000000 ____D C:\ProgramData\Malwarebytes
2016-07-16 13:30 - 2016-07-16 13:30 - 00000000 ____D C:\Program Files\Malwarebytes Anti-Malware
2016-07-16 13:30 - 2016-03-10 14:09 - 00053120 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mwac.sys
2016-07-16 13:30 - 2016-03-10 14:08 - 00126336 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamchameleon.sys
2016-07-16 13:30 - 2016-03-10 14:08 - 00024448 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbam.sys
2016-07-16 00:18 - 2016-07-16 23:04 - 00000000 ____D C:\Program Files\trend micro
2016-07-16 00:18 - 2016-07-16 00:18 - 00000000 ____D C:\rsit
2016-07-15 23:46 - 2016-07-15 23:46 - 01107968 _____ C:\Users\home\Desktop\RSIT.exe
2016-07-15 23:33 - 2016-07-15 23:33 - 00002088 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast Free Antivirus.lnk
2016-07-15 23:32 - 2016-07-15 23:32 - 00921280 _____ (Microsoft Corporation) C:\WINDOWS\ucrtbase.dll
2016-07-15 23:32 - 2016-07-15 23:32 - 00319248 _____ (AVAST Software) C:\WINDOWS\system32\aswBoot.exe
2016-07-15 23:32 - 2016-07-15 23:32 - 00053208 _____ (AVAST Software) C:\WINDOWS\avastSS.scr
2016-07-15 22:56 - 2016-07-15 22:56 - 00000000 ____D C:\Program Files\CMAK
2016-07-13 13:33 - 2016-07-01 06:39 - 05793632 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2016-07-13 13:33 - 2016-07-01 06:35 - 00792328 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcrt4.dll
2016-07-13 13:33 - 2016-07-01 06:23 - 01334680 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpmde.dll
2016-07-13 13:33 - 2016-07-01 06:21 - 02921880 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2016-07-13 13:33 - 2016-07-01 06:21 - 00957608 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll
2016-07-13 13:33 - 2016-07-01 06:21 - 00703840 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWAHost.exe
2016-07-13 13:33 - 2016-07-01 06:21 - 00260448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pci.sys
2016-07-13 13:33 - 2016-07-01 06:20 - 01300016 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcMon.exe
2016-07-13 13:33 - 2016-07-01 06:19 - 05598832 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe
2016-07-13 13:33 - 2016-07-01 06:19 - 01337680 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll
2016-07-13 13:33 - 2016-07-01 06:19 - 00633192 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppwinob.dll
2016-07-13 13:33 - 2016-07-01 06:18 - 00995296 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipUp.exe
2016-07-13 13:33 - 2016-07-01 06:18 - 00505136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2016-07-13 13:33 - 2016-07-01 06:18 - 00139616 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys
2016-07-13 13:33 - 2016-07-01 06:17 - 01536600 _____ (Microsoft Corporation) C:\WINDOWS\system32\crypt32.dll
2016-07-13 13:33 - 2016-07-01 06:12 - 02186864 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll
2016-07-13 13:33 - 2016-07-01 06:12 - 01866104 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d9.dll
2016-07-13 13:33 - 2016-07-01 06:11 - 01712480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2016-07-13 13:33 - 2016-07-01 06:11 - 01522160 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecs.dll
2016-07-13 13:33 - 2016-07-01 06:11 - 00521152 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll
2016-07-13 13:33 - 2016-07-01 06:11 - 00484192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2016-07-13 13:33 - 2016-07-01 06:11 - 00336224 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2016-07-13 13:33 - 2016-07-01 06:10 - 00727752 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcomp.dll
2016-07-13 13:33 - 2016-07-01 05:45 - 00088576 _____ (Microsoft Corporation) C:\WINDOWS\system32\olepro32.dll
2016-07-13 13:33 - 2016-07-01 05:41 - 00050176 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosHostClient.dll
2016-07-13 13:33 - 2016-07-01 05:39 - 13018112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2016-07-13 13:33 - 2016-07-01 05:38 - 00145920 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe
2016-07-13 13:33 - 2016-07-01 05:37 - 00059904 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosStorage.dll
2016-07-13 13:33 - 2016-07-01 05:35 - 00054784 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshost.dll
2016-07-13 13:33 - 2016-07-01 05:35 - 00049152 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotificationUx.exe
2016-07-13 13:33 - 2016-07-01 05:33 - 00203776 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshostcore.dll
2016-07-13 13:33 - 2016-07-01 05:32 - 00157696 _____ (Microsoft Corporation) C:\WINDOWS\system32\SimCfg.dll
2016-07-13 13:33 - 2016-07-01 05:31 - 00424448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\nwifi.sys
2016-07-13 13:33 - 2016-07-01 05:31 - 00129024 _____ (Microsoft Corporation) C:\WINDOWS\system32\SimAuth.dll
2016-07-13 13:33 - 2016-07-01 05:30 - 00123392 _____ (Microsoft Corporation) C:\WINDOWS\system32\ProximityCommon.dll
2016-07-13 13:33 - 2016-07-01 05:29 - 00569856 _____ (Microsoft Corporation) C:\WINDOWS\system32\qdvd.dll
2016-07-13 13:33 - 2016-07-01 05:29 - 00349696 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapConfiguration.dll
2016-07-13 13:33 - 2016-07-01 05:28 - 00439296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.UX.EapRequestHandler.dll
2016-07-13 13:33 - 2016-07-01 05:27 - 01764864 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnidui.dll
2016-07-13 13:33 - 2016-07-01 05:27 - 00385024 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanconn.dll
2016-07-13 13:33 - 2016-07-01 05:27 - 00284160 _____ (Microsoft Corporation) C:\WINDOWS\system32\eappcfg.dll
2016-07-13 13:33 - 2016-07-01 05:26 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\system32\JpMapControl.dll
2016-07-13 13:33 - 2016-07-01 05:26 - 00612352 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsStore.dll
2016-07-13 13:33 - 2016-07-01 05:25 - 01228800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Globalization.dll
2016-07-13 13:33 - 2016-07-01 05:25 - 01152000 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2016-07-13 13:33 - 2016-07-01 05:25 - 00711680 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapControlCore.dll
2016-07-13 13:33 - 2016-07-01 05:25 - 00689152 _____ (Microsoft Corporation) C:\WINDOWS\system32\modernexecserver.dll
2016-07-13 13:33 - 2016-07-01 05:24 - 01467392 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll
2016-07-13 13:33 - 2016-07-01 05:24 - 01448960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Printing.3D.dll
2016-07-13 13:33 - 2016-07-01 05:24 - 00673280 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadtb.dll
2016-07-13 13:33 - 2016-07-01 05:24 - 00468992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Printing.dll
2016-07-13 13:33 - 2016-07-01 05:23 - 03695104 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_47.dll
2016-07-13 13:33 - 2016-07-01 05:23 - 01166848 _____ (Microsoft Corporation) C:\WINDOWS\system32\werconcpl.dll
2016-07-13 13:33 - 2016-07-01 05:22 - 06295552 _____ (Microsoft Corporation) C:\WINDOWS\system32\mos.dll
2016-07-13 13:33 - 2016-07-01 05:22 - 00639488 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBroker.dll
2016-07-13 13:33 - 2016-07-01 05:19 - 01987072 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWrite.dll
2016-07-13 13:33 - 2016-07-01 05:18 - 05205504 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingMaps.dll
2016-07-13 13:33 - 2016-07-01 05:18 - 02973696 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2016-07-13 13:33 - 2016-07-01 05:18 - 01448960 _____ (Microsoft Corporation) C:\WINDOWS\system32\dui70.dll
2016-07-13 13:33 - 2016-07-01 05:16 - 01896960 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2016-07-13 13:33 - 2016-07-01 05:16 - 01635840 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcWebSync.dll
2016-07-13 13:33 - 2016-07-01 05:15 - 03459584 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIRibbon.dll
2016-07-13 13:33 - 2016-07-01 05:15 - 02679808 _____ (Microsoft Corporation) C:\WINDOWS\system32\netshell.dll
2016-07-13 13:33 - 2016-07-01 05:15 - 02604032 _____ (Microsoft Corporation) C:\WINDOWS\system32\CertEnroll.dll
2016-07-13 13:33 - 2016-07-01 05:15 - 02501632 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2016-07-13 13:33 - 2016-07-01 05:15 - 02217984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Wpc.dll
2016-07-13 13:33 - 2016-07-01 05:15 - 01733632 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2016-07-13 13:33 - 2016-07-01 05:15 - 01626112 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2016-07-13 13:33 - 2016-07-01 05:14 - 04759040 _____ (Microsoft Corporation) C:\WINDOWS\system32\d2d1.dll
2016-07-13 13:33 - 2016-07-01 05:14 - 02680320 _____ (Microsoft Corporation) C:\WINDOWS\system32\msftedit.dll
2016-07-13 13:33 - 2016-07-01 05:14 - 01498624 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2016-07-13 13:33 - 2016-07-01 05:14 - 00705024 _____ (Microsoft Corporation) C:\WINDOWS\system32\samsrv.dll
2016-07-13 13:33 - 2016-07-01 05:12 - 02179584 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepository.dll
2016-07-13 13:32 - 2016-07-01 07:14 - 01303744 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll
2016-07-13 13:32 - 2016-07-01 07:14 - 01020096 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll
2016-07-13 13:32 - 2016-07-01 07:14 - 00484544 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll
2016-07-13 13:32 - 2016-07-01 07:14 - 00476864 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll
2016-07-13 13:32 - 2016-07-01 07:14 - 00266944 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll
2016-07-13 13:32 - 2016-07-01 07:14 - 00227008 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCensus.exe
2016-07-13 13:32 - 2016-07-01 07:14 - 00081088 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll
2016-07-13 13:32 - 2016-07-01 07:14 - 00045760 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompatTelRunner.exe
2016-07-13 13:32 - 2016-07-01 06:38 - 01862008 _____ C:\WINDOWS\system32\CoreUIComponents.dll
2016-07-13 13:32 - 2016-07-01 06:32 - 02885680 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSService.dll
2016-07-13 13:32 - 2016-07-01 06:31 - 00023776 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
2016-07-13 13:32 - 2016-07-01 06:23 - 01349640 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmde.dll
2016-07-13 13:32 - 2016-07-01 06:23 - 01118208 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfnetsrc.dll
2016-07-13 13:32 - 2016-07-01 06:23 - 00925576 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll
2016-07-13 13:32 - 2016-07-01 06:23 - 00709176 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll
2016-07-13 13:32 - 2016-07-01 06:23 - 00511320 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf.dll
2016-07-13 13:32 - 2016-07-01 06:20 - 21123320 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2016-07-13 13:32 - 2016-07-01 06:20 - 00613120 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Shell.Broker.dll
2016-07-13 13:32 - 2016-07-01 06:19 - 05240960 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2016-07-13 13:32 - 2016-07-01 06:19 - 04074160 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2016-07-13 13:32 - 2016-07-01 06:19 - 01355336 _____ (Microsoft Corporation) C:\WINDOWS\system32\propsys.dll
2016-07-13 13:32 - 2016-07-01 06:19 - 00569752 _____ (Microsoft Corporation) C:\WINDOWS\system32\SHCore.dll
2016-07-13 13:32 - 2016-07-01 06:18 - 00510880 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipSVC.dll
2016-07-13 13:32 - 2016-07-01 06:18 - 00064584 _____ (Microsoft Corporation) C:\WINDOWS\system32\Clipc.dll
2016-07-13 13:32 - 2016-07-01 05:45 - 00074752 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsCSP.dll
2016-07-13 13:32 - 2016-07-01 05:41 - 00572928 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcWebFilter.dll
2016-07-13 13:32 - 2016-07-01 05:40 - 00034304 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Speech.Pal.dll
2016-07-13 13:32 - 2016-07-01 05:39 - 00049152 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdpreference.exe
2016-07-13 13:32 - 2016-07-01 05:38 - 00036352 _____ (Microsoft Corporation) C:\WINDOWS\system32\musdialoghandlers.dll
2016-07-13 13:32 - 2016-07-01 05:38 - 00023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\mapsupdatetask.dll
2016-07-13 13:32 - 2016-07-01 05:37 - 00584704 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIRibbonRes.dll
2016-07-13 13:32 - 2016-07-01 05:37 - 00055808 _____ (Microsoft Corporation) C:\WINDOWS\system32\eappprxy.dll
2016-07-13 13:32 - 2016-07-01 05:36 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsBtSvc.dll
2016-07-13 13:32 - 2016-07-01 05:36 - 00048640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryClient.dll
2016-07-13 13:32 - 2016-07-01 05:36 - 00048128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryBroker.dll
2016-07-13 13:32 - 2016-07-01 05:35 - 00066560 _____ (Microsoft Corporation) C:\WINDOWS\system32\tzautoupdate.dll
2016-07-13 13:32 - 2016-07-01 05:34 - 09919488 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2016-07-13 13:32 - 2016-07-01 05:34 - 00205312 _____ (Microsoft Corporation) C:\WINDOWS\system32\oemlicense.dll
2016-07-13 13:32 - 2016-07-01 05:34 - 00180736 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdd.dll
2016-07-13 13:32 - 2016-07-01 05:34 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppCapture.dll
2016-07-13 13:32 - 2016-07-01 05:34 - 00040960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Shell.Search.UriHandler.dll
2016-07-13 13:32 - 2016-07-01 05:33 - 00326144 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll
2016-07-13 13:32 - 2016-07-01 05:33 - 00309760 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntprint.dll
2016-07-13 13:32 - 2016-07-01 05:33 - 00267776 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocore.dll
2016-07-13 13:32 - 2016-07-01 05:32 - 00183808 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Maps.dll
2016-07-13 13:32 - 2016-07-01 05:32 - 00138240 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetpp.dll
2016-07-13 13:32 - 2016-07-01 05:32 - 00096256 _____ (Microsoft Corporation) C:\WINDOWS\system32\eappgnui.dll
2016-07-13 13:32 - 2016-07-01 05:32 - 00092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\IdCtrls.dll
2016-07-13 13:32 - 2016-07-01 05:31 - 19347968 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2016-07-13 13:32 - 2016-07-01 05:31 - 06529024 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanmm.dll
2016-07-13 13:32 - 2016-07-01 05:31 - 00542720 _____ (Microsoft Corporation) C:\WINDOWS\system32\msra.exe
2016-07-13 13:32 - 2016-07-01 05:31 - 00290304 _____ (Microsoft Corporation) C:\WINDOWS\system32\WmpDui.dll
2016-07-13 13:32 - 2016-07-01 05:31 - 00260096 _____ (Microsoft Corporation) C:\WINDOWS\system32\apprepsync.dll
2016-07-13 13:32 - 2016-07-01 05:31 - 00238592 _____ (Microsoft Corporation) C:\WINDOWS\system32\eapphost.dll
2016-07-13 13:32 - 2016-07-01 05:31 - 00164352 _____ (Microsoft Corporation) C:\WINDOWS\system32\winsrv.dll
2016-07-13 13:32 - 2016-07-01 05:30 - 00339968 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMPhoto.dll
2016-07-13 13:32 - 2016-07-01 05:30 - 00334336 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvr.exe
2016-07-13 13:32 - 2016-07-01 05:30 - 00292864 _____ (Microsoft Corporation) C:\WINDOWS\system32\dot3ui.dll
2016-07-13 13:32 - 2016-07-01 05:30 - 00261632 _____ (Microsoft Corporation) C:\WINDOWS\system32\EnterpriseAppMgmtSvc.dll
2016-07-13 13:32 - 2016-07-01 05:30 - 00248320 _____ (Microsoft Corporation) C:\WINDOWS\system32\eapp3hst.dll
2016-07-13 13:32 - 2016-07-01 05:30 - 00246784 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadcloudap.dll
2016-07-13 13:32 - 2016-07-01 05:30 - 00207872 _____ (Microsoft Corporation) C:\WINDOWS\system32\provengine.dll
2016-07-13 13:32 - 2016-07-01 05:30 - 00190464 _____ (Microsoft Corporation) C:\WINDOWS\system32\apprepapi.dll
2016-07-13 13:32 - 2016-07-01 05:30 - 00151552 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSClient.dll
2016-07-13 13:32 - 2016-07-01 05:30 - 00140800 _____ (Microsoft Corporation) C:\WINDOWS\system32\shutdownux.dll
2016-07-13 13:32 - 2016-07-01 05:29 - 00541184 _____ (Microsoft Corporation) C:\WINDOWS\system32\GamePanel.exe
2016-07-13 13:32 - 2016-07-01 05:29 - 00395776 _____ (Microsoft Corporation) C:\WINDOWS\system32\WlanMediaManager.dll
2016-07-13 13:32 - 2016-07-01 05:29 - 00315904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.BlockedShutdown.dll
2016-07-13 13:32 - 2016-07-01 05:29 - 00199680 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdpsvc.dll
2016-07-13 13:32 - 2016-07-01 05:28 - 00578048 _____ (Microsoft Corporation) C:\WINDOWS\system32\wiaaut.dll
2016-07-13 13:32 - 2016-07-01 05:28 - 00282624 _____ (Microsoft Corporation) C:\WINDOWS\system32\msieftp.dll
2016-07-13 13:32 - 2016-07-01 05:28 - 00238592 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecsExt.dll
2016-07-13 13:32 - 2016-07-01 05:28 - 00230912 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXTaskFactory.dll
2016-07-13 13:32 - 2016-07-01 05:27 - 01226752 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcnwiz.dll
2016-07-13 13:32 - 2016-07-01 05:27 - 00846336 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasgcw.dll
2016-07-13 13:32 - 2016-07-01 05:27 - 00496128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.Web.Core.dll
2016-07-13 13:32 - 2016-07-01 05:27 - 00373248 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.UserAccountsHandlers.dll
2016-07-13 13:32 - 2016-07-01 05:27 - 00330752 _____ (Microsoft Corporation) C:\WINDOWS\system32\winipcfile.dll
2016-07-13 13:32 - 2016-07-01 05:27 - 00253440 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneBackupHandler.dll
2016-07-13 13:32 - 2016-07-01 05:27 - 00250880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2016-07-13 13:32 - 2016-07-01 05:26 - 18674176 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2016-07-13 13:32 - 2016-07-01 05:26 - 01746944 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Bluetooth.dll
2016-07-13 13:32 - 2016-07-01 05:26 - 00779264 _____ (Microsoft Corporation) C:\WINDOWS\system32\sbe.dll
2016-07-13 13:32 - 2016-07-01 05:26 - 00502272 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevicePairing.dll
2016-07-13 13:32 - 2016-07-01 05:26 - 00417280 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Cortana.Desktop.dll
2016-07-13 13:32 - 2016-07-01 05:26 - 00413696 _____ (Microsoft Corporation) C:\WINDOWS\system32\WLanConn.dll
2016-07-13 13:32 - 2016-07-01 05:26 - 00372224 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppBroker.dll
2016-07-13 13:32 - 2016-07-01 05:26 - 00153088 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSSync.dll
2016-07-13 13:32 - 2016-07-01 05:25 - 01508352 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmsipc.dll
2016-07-13 13:32 - 2016-07-01 05:25 - 01035776 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplicationFrame.dll
2016-07-13 13:32 - 2016-07-01 05:25 - 00826368 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2016-07-13 13:32 - 2016-07-01 05:25 - 00784896 _____ (Microsoft Corporation) C:\WINDOWS\system32\NMAA.dll
2016-07-13 13:32 - 2016-07-01 05:25 - 00740352 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedStartModel.dll
2016-07-13 13:32 - 2016-07-01 05:25 - 00738816 _____ (Microsoft Corporation) C:\WINDOWS\system32\appwiz.cpl
2016-07-13 13:32 - 2016-07-01 05:25 - 00687616 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
2016-07-13 13:32 - 2016-07-01 05:25 - 00502784 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2016-07-13 13:32 - 2016-07-01 05:25 - 00482816 _____ (Microsoft Corporation) C:\WINDOWS\system32\duser.dll
2016-07-13 13:32 - 2016-07-01 05:25 - 00477184 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieui.dll
2016-07-13 13:32 - 2016-07-01 05:24 - 12586496 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmp.dll
2016-07-13 13:32 - 2016-07-01 05:24 - 04404736 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Search.dll
2016-07-13 13:32 - 2016-07-01 05:24 - 01588224 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll
2016-07-13 13:32 - 2016-07-01 05:24 - 01484800 _____ (Microsoft Corporation) C:\WINDOWS\system32\PrintDialogs3D.dll
2016-07-13 13:32 - 2016-07-01 05:24 - 00601600 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32spl.dll
2016-07-13 13:32 - 2016-07-01 05:24 - 00434688 _____ (Microsoft Corporation) C:\WINDOWS\system32\LogonController.dll
2016-07-13 13:32 - 2016-07-01 05:23 - 02578432 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameux.dll
2016-07-13 13:32 - 2016-07-01 05:23 - 00805888 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSShared.dll
2016-07-13 13:32 - 2016-07-01 05:23 - 00764928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Cred.dll
2016-07-13 13:32 - 2016-07-01 05:23 - 00460800 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFolder.dll
2016-07-13 13:32 - 2016-07-01 05:23 - 00207872 _____ (Microsoft Corporation) C:\WINDOWS\system32\licensingdiag.exe
2016-07-13 13:32 - 2016-07-01 05:22 - 00783872 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXService.dll
2016-07-13 13:32 - 2016-07-01 05:22 - 00231936 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatehandlers.dll
2016-07-13 13:32 - 2016-07-01 05:21 - 04078080 _____ (Microsoft Corporation) C:\WINDOWS\system32\dbgeng.dll
2016-07-13 13:32 - 2016-07-01 05:21 - 00980480 _____ (Microsoft Corporation) C:\WINDOWS\system32\winipcsecproc.dll
2016-07-13 13:32 - 2016-07-01 05:20 - 12128256 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2016-07-13 13:32 - 2016-07-01 05:20 - 03196928 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll
2016-07-13 13:32 - 2016-07-01 05:20 - 02798080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll
2016-07-13 13:32 - 2016-07-01 05:19 - 06471168 _____ (Microsoft Corporation) C:\WINDOWS\system32\mspaint.exe
2016-07-13 13:32 - 2016-07-01 05:19 - 01582080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Immersive.dll
2016-07-13 13:32 - 2016-07-01 05:19 - 00581632 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.dll
2016-07-13 13:32 - 2016-07-01 05:19 - 00503296 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSync.dll
2016-07-13 13:32 - 2016-07-01 05:19 - 00401920 _____ (Microsoft Corporation) C:\WINDOWS\system32\StikyNot.exe
2016-07-13 13:32 - 2016-07-01 05:18 - 03663360 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2016-07-13 13:32 - 2016-07-01 05:18 - 00683008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.BackgroundTransfer.dll
2016-07-13 13:32 - 2016-07-01 05:17 - 05323776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll
2016-07-13 13:32 - 2016-07-01 05:17 - 02155008 _____ (Microsoft Corporation) C:\WINDOWS\system32\authui.dll
2016-07-13 13:32 - 2016-07-01 05:17 - 01800704 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkMobileSettings.dll
2016-07-13 13:32 - 2016-07-01 05:16 - 02771968 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll
2016-07-13 13:32 - 2016-07-01 05:16 - 02062336 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll
2016-07-13 13:32 - 2016-07-01 05:16 - 01984000 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll
2016-07-13 13:32 - 2016-07-01 05:16 - 00925184 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll
2016-07-13 13:32 - 2016-07-01 05:16 - 00898048 _____ (Microsoft Corporation) C:\WINDOWS\HelpPane.exe
2016-07-13 13:32 - 2016-07-01 05:15 - 04413440 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExplorerFrame.dll
2016-07-13 13:32 - 2016-07-01 05:15 - 02880512 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsThresholdAdminFlowUI.dll
2016-07-13 13:32 - 2016-07-01 05:15 - 01799680 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Logon.dll
2016-07-13 13:32 - 2016-07-01 05:15 - 00574976 _____ (Microsoft Corporation) C:\WINDOWS\system32\hgcpl.dll
2016-07-13 13:32 - 2016-07-01 05:15 - 00573440 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserLanguagesCpl.dll
2016-07-13 13:32 - 2016-07-01 05:14 - 05660672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2016-07-13 13:32 - 2016-07-01 05:14 - 00802816 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntshrui.dll
2016-07-13 13:32 - 2016-07-01 05:13 - 02519552 _____ (Microsoft Corporation) C:\WINDOWS\system32\themecpl.dll
2016-07-13 13:32 - 2016-07-01 05:13 - 02000896 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll
2016-07-13 13:32 - 2016-07-01 05:13 - 01900032 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2016-07-13 13:32 - 2016-07-01 05:13 - 00813056 _____ (Microsoft Corporation) C:\WINDOWS\system32\dosvc.dll
2016-07-13 13:32 - 2016-07-01 05:12 - 00339456 _____ (Microsoft Corporation) C:\WINDOWS\system32\certcli.dll
2016-07-13 13:32 - 2016-07-01 05:11 - 01106944 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpeechPal.dll
2016-07-13 13:32 - 2016-07-01 05:11 - 01075200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Shell.dll
2016-07-13 13:32 - 2016-07-01 05:11 - 00754176 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncCore.dll
2016-07-13 13:32 - 2016-07-01 05:08 - 00517632 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToManager.dll
2016-07-13 13:32 - 2016-07-01 05:08 - 00199680 _____ (Microsoft Corporation) C:\WINDOWS\system32\GlobCollationHost.dll
2016-07-13 13:32 - 2016-06-18 02:22 - 00179712 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepic.dll
2016-07-13 13:31 - 2016-07-01 06:40 - 00228704 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdbus.sys
2016-07-13 13:31 - 2016-07-01 06:39 - 01561392 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2016-07-13 13:31 - 2016-07-01 06:39 - 01051584 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2016-07-13 13:31 - 2016-07-01 06:39 - 00927080 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2016-07-13 13:31 - 2016-07-01 06:39 - 00875992 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2016-07-13 13:31 - 2016-07-01 06:39 - 00771120 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2016-07-13 13:31 - 2016-07-01 06:38 - 01083656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Taskmgr.exe
2016-07-13 13:31 - 2016-07-01 06:38 - 00032552 _____ (Microsoft Corporation) C:\WINDOWS\system32\wldp.dll
2016-07-13 13:31 - 2016-07-01 06:23 - 00032040 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfpmp.exe
2016-07-13 13:31 - 2016-07-01 06:20 - 00465760 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncHost.exe
2016-07-13 13:31 - 2016-07-01 06:19 - 00836760 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll
2016-07-13 13:31 - 2016-07-01 06:07 - 28083144 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecsRaw.dll
2016-07-13 13:31 - 2016-07-01 06:06 - 01861984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys
2016-07-13 13:31 - 2016-07-01 06:06 - 00403920 _____ (Microsoft Corporation) C:\WINDOWS\system32\DMRServer.dll
2016-07-13 13:31 - 2016-07-01 05:46 - 00072192 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpudd.dll
2016-07-13 13:31 - 2016-07-01 05:39 - 00066560 _____ (Microsoft Corporation) C:\WINDOWS\system32\NFCProvisioningPlugin.dll
2016-07-13 13:31 - 2016-07-01 05:38 - 00056832 _____ (Microsoft Corporation) C:\WINDOWS\system32\LegacyNetUX.dll
2016-07-13 13:31 - 2016-07-01 05:35 - 00039424 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmTasks.dll
2016-07-13 13:31 - 2016-07-01 05:35 - 00032768 _____ (Microsoft Corporation) C:\WINDOWS\system32\msscntrs.dll
2016-07-13 13:31 - 2016-07-01 05:34 - 00350208 _____ (Microsoft Corporation) C:\WINDOWS\system32\bdechangepin.exe
2016-07-13 13:31 - 2016-07-01 05:34 - 00074240 _____ (Microsoft Corporation) C:\WINDOWS\system32\browserbroker.dll
2016-07-13 13:31 - 2016-07-01 05:33 - 00057344 _____ (Microsoft Corporation) C:\WINDOWS\system32\WPDShServiceObj.dll
2016-07-13 13:31 - 2016-07-01 05:32 - 00268800 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtrans.dll
2016-07-13 13:31 - 2016-07-01 05:32 - 00159232 _____ (Microsoft Corporation) C:\WINDOWS\system32\LegacyNetUXHost.exe
2016-07-13 13:31 - 2016-07-01 05:31 - 00465408 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll
2016-07-13 13:31 - 2016-07-01 05:31 - 00190976 _____ (Microsoft Corporation) C:\WINDOWS\system32\fhengine.dll
2016-07-13 13:31 - 2016-07-01 05:31 - 00186880 _____ (Microsoft Corporation) C:\WINDOWS\system32\schtasks.exe
2016-07-13 13:31 - 2016-07-01 05:31 - 00173056 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUDFPlatform.dll
2016-07-13 13:31 - 2016-07-01 05:30 - 00282624 _____ (Microsoft Corporation) C:\WINDOWS\system32\Search.ProtocolHandler.MAPI2.dll
2016-07-13 13:31 - 2016-07-01 05:30 - 00199680 _____ (Microsoft Corporation) C:\WINDOWS\system32\provhandlers.dll
2016-07-13 13:31 - 2016-07-01 05:30 - 00120832 _____ (Microsoft Corporation) C:\WINDOWS\system32\provops.dll
2016-07-13 13:31 - 2016-07-01 05:29 - 00334848 _____ (Microsoft Corporation) C:\WINDOWS\system32\fhsettingsprovider.dll
2016-07-13 13:31 - 2016-07-01 05:29 - 00272384 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmicmiplugin.dll
2016-07-13 13:31 - 2016-07-01 05:28 - 00442368 _____ (Microsoft Corporation) C:\WINDOWS\system32\dlnashext.dll
2016-07-13 13:31 - 2016-07-01 05:28 - 00320000 _____ (Microsoft Corporation) C:\WINDOWS\system32\fhcfg.dll
2016-07-13 13:31 - 2016-07-01 05:28 - 00248320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Cortana.OneCore.dll
2016-07-13 13:31 - 2016-07-01 05:28 - 00119296 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssph.dll
2016-07-13 13:31 - 2016-07-01 05:27 - 00282624 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchProtocolHost.exe
2016-07-13 13:31 - 2016-07-01 05:27 - 00244736 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssphtb.dll
2016-07-13 13:31 - 2016-07-01 05:27 - 00216576 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToReceiver.dll
2016-07-13 13:31 - 2016-07-01 05:26 - 01063936 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Editing.dll
2016-07-13 13:31 - 2016-07-01 05:26 - 00585216 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.AccountsControl.dll
2016-07-13 13:31 - 2016-07-01 05:26 - 00489984 _____ (Microsoft Corporation) C:\WINDOWS\system32\mbsmsapi.dll
2016-07-13 13:31 - 2016-07-01 05:26 - 00413184 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationController.dll
2016-07-13 13:31 - 2016-07-01 05:26 - 00400896 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneDriveSettingSyncProvider.dll
2016-07-13 13:31 - 2016-07-01 05:25 - 02050048 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2016-07-13 13:31 - 2016-07-01 05:25 - 01117184 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Speech.dll
2016-07-13 13:31 - 2016-07-01 05:25 - 00814080 _____ (Microsoft Corporation) C:\WINDOWS\system32\schedsvc.dll
2016-07-13 13:31 - 2016-07-01 05:25 - 00645632 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Storage.Search.dll
2016-07-13 13:31 - 2016-07-01 05:25 - 00240640 _____ (Microsoft Corporation) C:\WINDOWS\system32\taskeng.exe
2016-07-13 13:31 - 2016-07-01 05:25 - 00230400 _____ (Microsoft Corporation) C:\WINDOWS\system32\webcheck.dll
2016-07-13 13:31 - 2016-07-01 05:24 - 01497088 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMPDMC.exe
2016-07-13 13:31 - 2016-07-01 05:24 - 00405504 _____ (Microsoft Corporation) C:\WINDOWS\system32\webio.dll
2016-07-13 13:31 - 2016-07-01 05:23 - 01526272 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll
2016-07-13 13:31 - 2016-07-01 05:23 - 01401856 _____ (Microsoft Corporation) C:\WINDOWS\system32\workfolderssvc.dll
2016-07-13 13:31 - 2016-07-01 05:23 - 00760320 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchIndexer.exe
2016-07-13 13:31 - 2016-07-01 05:23 - 00667648 _____ (Microsoft Corporation) C:\WINDOWS\system32\AzureSettingSyncProvider.dll
2016-07-13 13:31 - 2016-07-01 05:23 - 00489984 _____ (Microsoft Corporation) C:\WINDOWS\system32\ShareHost.dll
2016-07-13 13:31 - 2016-07-01 05:23 - 00291840 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhext.dll
2016-07-13 13:31 - 2016-07-01 05:20 - 03555840 _____ (Microsoft Corporation) C:\WINDOWS\system32\xpsrchvw.exe
2016-07-13 13:31 - 2016-07-01 05:20 - 00777728 _____ (Microsoft Corporation) C:\WINDOWS\system32\MsSpellCheckingFacility.dll
2016-07-13 13:31 - 2016-07-01 05:16 - 00742400 _____ (Microsoft Corporation) C:\WINDOWS\system32\IKEEXT.DLL
2016-07-13 13:31 - 2016-07-01 05:15 - 00748032 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpncore.dll
2016-07-13 13:31 - 2016-07-01 05:15 - 00105472 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmcsps.dll
2016-07-13 13:31 - 2016-07-01 05:14 - 00737792 _____ (Microsoft Corporation) C:\WINDOWS\system32\pmcsnap.dll
2016-07-13 13:31 - 2016-07-01 05:13 - 06740992 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
2016-07-13 13:31 - 2016-07-01 05:13 - 01249280 _____ (Microsoft Corporation) C:\WINDOWS\system32\usercpl.dll
2016-07-13 13:31 - 2016-07-01 05:13 - 00835072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Streaming.dll
2016-07-13 13:31 - 2016-07-01 05:12 - 03483648 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll
2016-07-13 13:31 - 2016-07-01 05:08 - 01976832 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpdshext.dll
2016-07-13 13:31 - 2016-07-01 05:08 - 00942592 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll
2016-07-13 13:31 - 2016-07-01 05:08 - 00879616 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebcamUi.dll
2016-07-13 10:06 - 2016-07-13 10:06 - 00000000 __RSH C:\MSDOS.SYS
2016-07-13 10:06 - 2016-07-13 10:06 - 00000000 __RSH C:\IO.SYS
2016-07-08 04:28 - 2016-07-08 04:28 - 00001955 _____ C:\Users\home\Desktop\Microsoft PowerPoint 2010.lnk
2016-07-08 04:26 - 2016-07-08 04:26 - 00002107 _____ C:\Users\home\Desktop\Microsoft Office Picture Manager.lnk
2016-07-08 04:26 - 2016-07-08 04:26 - 00001589 _____ C:\Users\home\Desktop\Kalkulačka.lnk
2016-07-08 04:05 - 2016-07-08 04:05 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf
2016-07-08 03:28 - 2016-07-08 03:31 - 00151892 _____ C:\WINDOWS\Minidump\070816-24000-01.dmp
2016-07-08 03:28 - 2016-07-08 03:28 - 408284665 _____ C:\WINDOWS\MEMORY.DMP
2016-07-08 03:28 - 2016-07-08 03:28 - 00000000 ____D C:\WINDOWS\Minidump
2016-07-07 13:03 - 2016-07-16 07:15 - 00000000 ____D C:\Users\DefaultAppPool
2016-07-07 13:03 - 2016-07-07 13:03 - 00000020 ___SH C:\Users\DefaultAppPool\ntuser.ini
2016-07-07 13:03 - 2016-07-07 13:03 - 00000000 _SHDL C:\Users\DefaultAppPool\Šablony
2016-07-07 13:03 - 2016-07-07 13:03 - 00000000 _SHDL C:\Users\DefaultAppPool\Soubory cookie
2016-07-07 13:03 - 2016-07-07 13:03 - 00000000 _SHDL C:\Users\DefaultAppPool\Poslední
2016-07-07 13:03 - 2016-07-07 13:03 - 00000000 _SHDL C:\Users\DefaultAppPool\Okolní tiskárny
2016-07-07 13:03 - 2016-07-07 13:03 - 00000000 _SHDL C:\Users\DefaultAppPool\Okolní síť
2016-07-07 13:03 - 2016-07-07 13:03 - 00000000 _SHDL C:\Users\DefaultAppPool\Nabídka Start
2016-07-07 13:03 - 2016-07-07 13:03 - 00000000 _SHDL C:\Users\DefaultAppPool\Dokumenty
2016-07-07 13:03 - 2016-07-07 13:03 - 00000000 _SHDL C:\Users\DefaultAppPool\Documents\Obrázky
2016-07-07 13:03 - 2016-07-07 13:03 - 00000000 _SHDL C:\Users\DefaultAppPool\Documents\Hudba
2016-07-07 13:03 - 2016-07-07 13:03 - 00000000 _SHDL C:\Users\DefaultAppPool\Documents\Filmy
2016-07-07 13:03 - 2016-07-07 13:03 - 00000000 _SHDL C:\Users\DefaultAppPool\Data aplikací
2016-07-07 13:03 - 2016-07-07 13:03 - 00000000 _SHDL C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2016-07-07 13:03 - 2016-07-07 13:03 - 00000000 _SHDL C:\Users\DefaultAppPool\AppData\Local\Data aplikací
2016-07-07 13:03 - 2016-07-06 18:16 - 00000000 ____D C:\Users\DefaultAppPool\AppData\Roaming\Media Center Programs
2016-07-07 13:03 - 2016-07-06 18:16 - 00000000 ____D C:\Users\DefaultAppPool\AppData\Local\Microsoft Help
2016-07-07 12:02 - 2016-07-07 12:02 - 00000000 ____D C:\WINDOWS\system32\SleepStudy
2016-07-06 20:55 - 2016-07-06 20:55 - 00000000 ____D C:\Users\home\AppData\Local\PeerDistRepub
2016-07-06 20:39 - 2016-07-06 20:39 - 00000000 ____D C:\Users\home\AppData\Local\Comms
2016-07-06 20:25 - 2016-07-06 20:25 - 00002421 _____ C:\Users\home\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2016-07-06 20:25 - 2016-07-06 20:25 - 00000000 ___RD C:\Users\home\OneDrive
2016-07-06 20:24 - 2016-07-08 04:20 - 00000000 ____D C:\Users\home\AppData\Local\MicrosoftEdge
2016-07-06 20:24 - 2015-10-29 19:42 - 05739520 _____ (Microsoft Corporation) C:\WINDOWS\system32\prm0009.dll
2016-07-06 20:24 - 2015-10-29 19:41 - 02629632 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsLexicons0009.dll
2016-07-06 20:24 - 2015-10-29 19:24 - 04847616 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData0009.dll
2016-07-06 20:23 - 2016-07-06 20:23 - 00001047 _____ C:\Users\home\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Volitelné funkce.lnk
2016-07-06 20:21 - 2016-07-06 20:21 - 00000000 ____D C:\Users\home\AppData\Local\Publishers
2016-07-06 20:21 - 2016-07-06 20:21 - 00000000 ____D C:\Users\home\AppData\Local\ActiveSync
2016-07-06 20:19 - 2016-07-06 23:50 - 00000000 ____D C:\Users\home\AppData\Local\Packages
2016-07-06 20:19 - 2016-07-06 20:19 - 00000020 ___SH C:\Users\home\ntuser.ini
2016-07-06 20:19 - 2016-07-06 20:19 - 00000000 ____D C:\Users\home\AppData\Local\TileDataLayer
2016-07-06 19:07 - 2016-07-06 20:19 - 00000000 ___DC C:\WINDOWS\Panther
2016-07-06 19:05 - 2016-07-06 19:05 - 00000000 ____D C:\Windows.old
2016-07-06 19:04 - 2016-07-06 19:04 - 00856928 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi
2016-07-06 19:04 - 2016-07-06 19:04 - 00782336 _____ (Microsoft Corporation) C:\WINDOWS\system32\fvewiz.dll
2016-07-06 19:04 - 2016-07-06 19:04 - 00673280 _____ (Microsoft Corporation) C:\WINDOWS\system32\MPSSVC.dll
2016-07-06 19:04 - 2016-07-06 19:04 - 00614912 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapi.dll
2016-07-06 19:04 - 2016-07-06 19:04 - 00554496 _____ (Microsoft Corporation) C:\WINDOWS\system32\BFE.DLL
2016-07-06 19:04 - 2016-07-06 19:04 - 00550240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fvevol.sys
2016-07-06 19:04 - 2016-07-06 19:04 - 00501600 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupEngine.dll
2016-07-06 19:04 - 2016-07-06 19:04 - 00451928 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFCaptureEngine.dll
2016-07-06 19:04 - 2016-07-06 19:04 - 00445952 _____ (Microsoft Corporation) C:\WINDOWS\system32\PsmServiceExtHost.dll
2016-07-06 19:04 - 2016-07-06 19:04 - 00340480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv.sys
2016-07-06 19:04 - 2016-07-06 19:04 - 00310272 _____ (Microsoft Corporation) C:\WINDOWS\system32\fvecpl.dll
2016-07-06 19:04 - 2016-07-06 19:04 - 00307712 _____ (Microsoft Corporation) C:\WINDOWS\system32\bdesvc.dll
2016-07-06 19:04 - 2016-07-06 19:04 - 00297072 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe
2016-07-06 19:04 - 2016-07-06 19:04 - 00269824 _____ (Microsoft Corporation) C:\WINDOWS\system32\FWPUCLNT.DLL
2016-07-06 19:04 - 2016-07-06 19:04 - 00265216 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveui.dll
2016-07-06 19:04 - 2016-07-06 19:04 - 00227328 _____ (Microsoft Corporation) C:\WINDOWS\system32\ListSvc.dll
2016-07-06 19:04 - 2016-07-06 19:04 - 00192512 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapibase.dll
2016-07-06 19:04 - 2016-07-06 19:04 - 00154112 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.DeviceEncryptionHandlers.dll
2016-07-06 19:04 - 2016-07-06 19:04 - 00142336 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupSvc.dll
2016-07-06 19:04 - 2016-07-06 19:04 - 00140800 _____ (Microsoft Corporation) C:\WINDOWS\system32\BrowserSettingSync.dll
2016-07-06 19:04 - 2016-07-06 19:04 - 00110080 _____ (Microsoft Corporation) C:\WINDOWS\system32\BitLockerDeviceEncryption.exe
2016-07-06 19:04 - 2016-07-06 19:04 - 00103936 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Devices.dll
2016-07-06 19:04 - 2016-07-06 19:04 - 00088576 _____ (Microsoft Corporation) C:\WINDOWS\system32\BdeHdCfgLib.dll
2016-07-06 19:04 - 2016-07-06 19:04 - 00084832 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupApi.dll
2016-07-06 19:04 - 2016-07-06 19:04 - 00073216 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpdbusenum.dll
2016-07-06 19:04 - 2016-07-06 19:04 - 00059904 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveskybackup.dll
2016-07-06 19:04 - 2016-07-06 19:04 - 00023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpsdport.sys
2016-07-06 19:03 - 2016-07-06 19:03 - 04268880 _____ (Microsoft Corporation) C:\WINDOWS\system32\setupapi.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 03671040 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 02722816 _____ (Microsoft Corporation) C:\WINDOWS\system32\esent.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 02195632 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d10warp.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 02193408 _____ (Microsoft Corporation) C:\WINDOWS\system32\actxprxy.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 01944576 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputService.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 01820512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys
2016-07-06 19:03 - 2016-07-06 19:03 - 01707520 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActiveSyncProvider.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 01541792 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 01445888 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRHInproc.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 01396592 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 01273720 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 01193984 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpsvc.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 01185280 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationFramework.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 01139712 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCore.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 01085952 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 01072128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.Http.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 01028608 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifinetworkmanager.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00986976 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00951808 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00922456 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys
2016-07-06 19:03 - 2016-07-06 19:03 - 00890368 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxPackaging.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00854528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Bluetooth.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00846336 _____ (Microsoft Corporation) C:\WINDOWS\system32\iphlpsvc.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00799744 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRH.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00792064 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00771424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\http.sys
2016-07-06 19:03 - 2016-07-06 19:03 - 00757192 _____ (Microsoft Corporation) C:\WINDOWS\system32\iuilp.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00712704 _____ (Microsoft Corporation) C:\WINDOWS\system32\RemoteNaturalLanguage.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00705536 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00682496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Input.Inking.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00649728 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00647680 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00638464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00614400 _____ (Microsoft Corporation) C:\WINDOWS\system32\winhttp.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00604672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys
2016-07-06 19:03 - 2016-07-06 19:03 - 00592384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00579072 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpprefcl.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00564224 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSDApi.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00558080 _____ (Microsoft Corporation) C:\WINDOWS\system32\internetmail.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00546456 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe
2016-07-06 19:03 - 2016-07-06 19:03 - 00545432 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreMessaging.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00538624 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblAuthManager.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00535080 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsapi.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00535040 _____ (Microsoft Corporation) C:\WINDOWS\system32\rastls.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00527872 _____ (Microsoft Corporation) C:\WINDOWS\system32\vpnike.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00527360 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneProviders.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00521728 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.Connectivity.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00521728 _____ (Microsoft Corporation) C:\WINDOWS\system32\StructuredQuery.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00513368 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d10level9.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00499712 _____ (Microsoft Corporation) C:\WINDOWS\system32\MessagingDataModel2.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00498176 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcsvc.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00497664 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00497152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdiWiFi.sys
2016-07-06 19:03 - 2016-07-06 19:03 - 00494592 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe
2016-07-06 19:03 - 2016-07-06 19:03 - 00489984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00487936 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngccredprov.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00485888 _____ (Microsoft Corporation) C:\WINDOWS\system32\newdev.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00484864 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00467456 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppContracts.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00453632 _____ (Microsoft Corporation) C:\WINDOWS\system32\bisrv.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00453472 _____ (Microsoft Corporation) C:\WINDOWS\system32\directmanipulation.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00450560 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncController.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00442368 _____ (Microsoft Corporation) C:\WINDOWS\system32\MBMediaManager.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00430432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBHUB3.SYS
2016-07-06 19:03 - 2016-07-06 19:03 - 00415232 _____ (Microsoft Corporation) C:\WINDOWS\system32\StoreAgent.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00393728 _____ (Microsoft Corporation) C:\WINDOWS\system32\tileobjserver.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00388608 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00388384 _____ (Microsoft Corporation) C:\WINDOWS\system32\ws2_32.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00365056 _____ (Microsoft Corporation) C:\WINDOWS\system32\DataSenseHandlers.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00360480 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcryptprimitives.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00359936 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenrollengine.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00358400 _____ (Microsoft Corporation) C:\WINDOWS\system32\AccountsRt.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00354656 _____ (Microsoft Corporation) C:\WINDOWS\system32\halmacpi.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00354656 _____ (Microsoft Corporation) C:\WINDOWS\system32\hal.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00354304 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupShim.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00348672 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredProvDataModel.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00342528 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00323072 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleacc.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00317280 _____ (Microsoft Corporation) C:\WINDOWS\system32\mswsock.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00316256 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\atmfd.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00310112 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifitask.exe
2016-07-06 19:03 - 2016-07-06 19:03 - 00309248 _____ (Microsoft Corporation) C:\WINDOWS\system32\IPSECSVC.DLL
2016-07-06 19:03 - 2016-07-06 19:03 - 00307200 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieproxy.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00306832 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanapi.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00305296 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlows.exe
2016-07-06 19:03 - 2016-07-06 19:03 - 00296488 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanager.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00294912 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncbservice.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00294752 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00293888 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcore.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00291328 _____ (Microsoft Corporation) C:\WINDOWS\system32\polstore.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00289792 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActivationManager.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00287072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBXHCI.SYS
2016-07-06 19:03 - 2016-07-06 19:03 - 00278368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fastfat.sys
2016-07-06 19:03 - 2016-07-06 19:03 - 00274432 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemEventsBrokerServer.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00272384 _____ (Microsoft Corporation) C:\WINDOWS\system32\NgcCtnr.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00254656 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppHost.exe
2016-07-06 19:03 - 2016-07-06 19:03 - 00246272 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvc.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00245760 _____ (Microsoft Corporation) C:\WINDOWS\system32\TextInputFramework.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00241664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\portcls.sys
2016-07-06 19:03 - 2016-07-06 19:03 - 00241664 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptngc.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00239616 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorService.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00239104 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationObjFactory.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00230400 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcore6.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00222720 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsrslvr.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00221184 _____ (Microsoft Corporation) C:\WINDOWS\system32\NgcCtnrSvc.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00219136 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEEventDispatcher.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00211456 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netbt.sys
2016-07-06 19:03 - 2016-07-06 19:03 - 00204800 _____ (Microsoft Corporation) C:\WINDOWS\system32\accountaccessor.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00203104 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ufx01000.sys
2016-07-06 19:03 - 2016-07-06 19:03 - 00200192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Management.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00193536 _____ (Microsoft Corporation) C:\WINDOWS\system32\DAFWSD.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00193024 _____ (Microsoft Corporation) C:\WINDOWS\system32\credprovhost.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00192704 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininit.exe
2016-07-06 19:03 - 2016-07-06 19:03 - 00188256 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00186880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srvnet.sys
2016-07-06 19:03 - 2016-07-06 19:03 - 00183904 _____ (Microsoft Corporation) C:\WINDOWS\system32\rsaenh.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00173920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tpm.sys
2016-07-06 19:03 - 2016-07-06 19:03 - 00168448 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmcsp.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00162816 _____ C:\WINDOWS\system32\MTF.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00161792 _____ (Microsoft Corporation) C:\WINDOWS\system32\msorcl32.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00161792 _____ (Microsoft Corporation) C:\WINDOWS\system32\BrokerLib.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00161280 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgent.exe
2016-07-06 19:03 - 2016-07-06 19:03 - 00160768 _____ (Microsoft Corporation) C:\WINDOWS\system32\GnssAdapter.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00153952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpsd.sys
2016-07-06 19:03 - 2016-07-06 19:03 - 00151040 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmregistration.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00150016 _____ (Microsoft Corporation) C:\WINDOWS\system32\storewuauth.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00144384 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscsvc.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00141824 _____ (Microsoft Corporation) C:\WINDOWS\system32\enrollmentapi.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00141824 _____ (Microsoft Corporation) C:\WINDOWS\system32\easwrt.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00137728 _____ (Microsoft Corporation) C:\WINDOWS\system32\shacct.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00137728 _____ (Microsoft Corporation) C:\WINDOWS\system32\dafBth.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00136032 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkUXBroker.exe
2016-07-06 19:03 - 2016-07-06 19:03 - 00133632 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00133120 _____ (Microsoft Corporation) C:\WINDOWS\system32\SubscriptionMgr.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00133120 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmmigrator.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00132096 _____ (Microsoft Corporation) C:\WINDOWS\system32\tetheringservice.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00129024 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Privacy.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00129024 _____ (Microsoft Corporation) C:\WINDOWS\system32\AboveLockAppHost.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00122368 _____ (Microsoft Corporation) C:\WINDOWS\system32\omadmclient.exe
2016-07-06 19:03 - 2016-07-06 19:03 - 00118784 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEStoreEventHandlers.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00118272 _____ (Microsoft Corporation) C:\WINDOWS\system32\mtxoci.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00116224 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmcertinst.exe
2016-07-06 19:03 - 2016-07-06 19:03 - 00114688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidclass.sys
2016-07-06 19:03 - 2016-07-06 19:03 - 00114176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dfsc.sys
2016-07-06 19:03 - 2016-07-06 19:03 - 00111608 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpapi.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00109056 _____ (Microsoft Corporation) C:\WINDOWS\system32\httpprxm.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00107520 _____ (Microsoft Corporation) C:\WINDOWS\system32\browser.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00104960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Ndu.sys
2016-07-06 19:03 - 2016-07-06 19:03 - 00104800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ufxsynopsys.sys
2016-07-06 19:03 - 2016-07-06 19:03 - 00103424 _____ (Microsoft Corporation) C:\WINDOWS\system32\wificonnapi.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00103424 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatepolicy.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00097792 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudDomainJoinDataModelServer.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00097096 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncryptsslp.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00096096 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\partmgr.sys
2016-07-06 19:03 - 2016-07-06 19:03 - 00093696 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontsub.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00091648 _____ (Microsoft Corporation) C:\WINDOWS\system32\tdlrecover.exe
2016-07-06 19:03 - 2016-07-06 19:03 - 00085504 _____ (Microsoft Corporation) C:\WINDOWS\system32\FontProvider.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00084480 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEDataLayerHelpers.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00084216 _____ (Microsoft Corporation) C:\WINDOWS\system32\omadmapi.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00083808 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pdc.sys
2016-07-06 19:03 - 2016-07-06 19:03 - 00083456 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputLocaleManager.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00080896 _____ (Microsoft Corporation) C:\WINDOWS\system32\BluetoothApis.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00080384 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsNativeApi.V2.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00079360 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceEnroller.exe
2016-07-06 19:03 - 2016-07-06 19:03 - 00077824 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\serial.sys
2016-07-06 19:03 - 2016-07-06 19:03 - 00077664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdport.sys
2016-07-06 19:03 - 2016-07-06 19:03 - 00076288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\filecrypt.sys
2016-07-06 19:03 - 2016-07-06 19:03 - 00073872 _____ (Microsoft Corporation) C:\WINDOWS\system32\srvcli.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00073728 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanagerprecheck.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00071680 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxSysprep.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00070144 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAppInstaller.exe
2016-07-06 19:03 - 2016-07-06 19:03 - 00069744 _____ (Microsoft Corporation) C:\WINDOWS\system32\netapi32.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00065536 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininetlui.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00065024 _____ (Microsoft Corporation) C:\WINDOWS\system32\adhsvc.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00064000 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcsvc.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00063488 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcpopkeysrv.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00063488 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptsvc.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00063008 _____ (Microsoft Corporation) C:\WINDOWS\system32\easinvoker.exe
2016-07-06 19:03 - 2016-07-06 19:03 - 00061440 _____ (Microsoft Corporation) C:\WINDOWS\system32\samlib.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00057856 _____ (Microsoft Corporation) C:\WINDOWS\system32\EnterpriseDesktopAppMgmtCSP.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00057344 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcsvc6.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00056320 _____ (Microsoft Corporation) C:\WINDOWS\system32\wkscli.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00055808 _____ (Microsoft Corporation) C:\WINDOWS\system32\basesrv.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00053760 _____ (Microsoft Corporation) C:\WINDOWS\system32\FwRemoteSvr.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00052736 _____ (Microsoft Corporation) C:\WINDOWS\system32\OnDemandConnRouteHelper.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00051712 _____ (Microsoft Corporation) C:\WINDOWS\system32\wshbth.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00051128 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsNativeApi.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00049504 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwminit.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00048640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbser.sys
2016-07-06 19:03 - 2016-07-06 19:03 - 00047104 _____ (Microsoft Corporation) C:\WINDOWS\system32\hmkd.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00046080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\UcmCx.sys
2016-07-06 19:03 - 2016-07-06 19:03 - 00045568 _____ (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00043520 _____ (Microsoft Corporation) C:\WINDOWS\system32\browcli.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00042496 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpscript.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00037376 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenterprisediagnostics.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\system32\ByteCodeGenerator.exe
2016-07-06 19:03 - 2016-07-06 19:03 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\tbauth.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00028160 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuautoappupdate.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsdchngr.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00022528 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBrokerCookies.exe
2016-07-06 19:03 - 2016-07-06 19:03 - 00022528 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManagerShellext.exe
2016-07-06 19:03 - 2016-07-06 19:03 - 00018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\xinputhid.sys
2016-07-06 19:03 - 2016-07-06 19:03 - 00016896 _____ (Microsoft Corporation) C:\WINDOWS\system32\httpprxp.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleacchooks.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00002186 _____ C:\WINDOWS\system32\AppxProvisioning.xml
2016-07-06 18:59 - 2016-07-06 18:59 - 00008192 _____ C:\WINDOWS\system32\config\userdiff
2016-07-06 18:58 - 2016-07-06 18:58 - 00000000 ____D C:\WINDOWS\system32\XPSViewer
2016-07-06 18:58 - 2016-07-06 18:58 - 00000000 ____D C:\WINDOWS\system32\msmq
2016-07-06 18:58 - 2016-07-06 18:58 - 00000000 ____D C:\WINDOWS\system32\BestPractices
2016-07-06 18:58 - 2016-07-06 18:58 - 00000000 ____D C:\Program Files\Reference Assemblies
2016-07-06 18:58 - 2016-07-06 18:58 - 00000000 ____D C:\Program Files\MSBuild
2016-07-06 18:58 - 2016-07-06 18:58 - 00000000 ____D C:\inetpub
2016-07-06 18:57 - 2015-10-23 18:47 - 00778936 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationNative_v0300.dll
2016-07-06 18:57 - 2015-10-23 18:47 - 00103120 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2016-07-06 18:57 - 2015-10-23 18:47 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\system32\TsWpfWrp.exe
2016-07-06 18:23 - 2016-07-06 18:23 - 00000000 _SHDL C:\Users\Default\Šablony
2016-07-06 18:23 - 2016-07-06 18:23 - 00000000 _SHDL C:\Users\Default\Soubory cookie
2016-07-06 18:23 - 2016-07-06 18:23 - 00000000 _SHDL C:\Users\Default\Poslední
2016-07-06 18:23 - 2016-07-06 18:23 - 00000000 _SHDL C:\Users\Default\Okolní tiskárny
2016-07-06 18:23 - 2016-07-06 18:23 - 00000000 _SHDL C:\Users\Default\Okolní síť
2016-07-06 18:23 - 2016-07-06 18:23 - 00000000 _SHDL C:\Users\Default\Nabídka Start
2016-07-06 18:23 - 2016-07-06 18:23 - 00000000 _SHDL C:\Users\Default\Dokumenty
2016-07-06 18:23 - 2016-07-06 18:23 - 00000000 _SHDL C:\Users\Default\Documents\Obrázky
2016-07-06 18:23 - 2016-07-06 18:23 - 00000000 _SHDL C:\Users\Default\Documents\Hudba
2016-07-06 18:23 - 2016-07-06 18:23 - 00000000 _SHDL C:\Users\Default\Documents\Filmy
2016-07-06 18:23 - 2016-07-06 18:23 - 00000000 _SHDL C:\Users\Default\Data aplikací
2016-07-06 18:23 - 2016-07-06 18:23 - 00000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2016-07-06 18:23 - 2016-07-06 18:23 - 00000000 _SHDL C:\Users\Default\AppData\Local\Data aplikací
2016-07-06 18:23 - 2016-07-06 18:23 - 00000000 _SHDL C:\Users\Default User\Documents\Obrázky
2016-07-06 18:23 - 2016-07-06 18:23 - 00000000 _SHDL C:\Users\Default User\Documents\Hudba
2016-07-06 18:23 - 2016-07-06 18:23 - 00000000 _SHDL C:\Users\Default User\Documents\Filmy
2016-07-06 18:23 - 2016-07-06 18:23 - 00000000 _SHDL C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2016-07-06 18:23 - 2016-07-06 18:23 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Data aplikací
2016-07-06 18:22 - 2016-07-06 18:22 - 00021496 _____ C:\WINDOWS\system32\emptyregdb.dat
2016-07-06 18:16 - 2016-07-06 18:16 - 00001544 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk
2016-07-06 18:16 - 2016-07-06 18:16 - 00000000 ____D C:\Users\Default\AppData\Roaming\Media Center Programs
2016-07-06 18:16 - 2016-07-06 18:16 - 00000000 ____D C:\Users\Default\AppData\Local\Microsoft Help
2016-07-06 18:16 - 2016-07-06 18:16 - 00000000 ____D C:\Users\Default User\AppData\Roaming\Media Center Programs
2016-07-06 18:16 - 2016-07-06 18:16 - 00000000 ____D C:\Users\Default User\AppData\Local\Microsoft Help
2016-07-06 18:14 - 2016-07-06 18:14 - 00000000 ____D C:\Program Files\Common Files\SpeechEngines
2016-07-06 18:12 - 2016-07-16 21:50 - 01996112 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2016-07-06 18:12 - 2016-07-16 00:26 - 00000000 ____D C:\Users\home
2016-07-06 18:12 - 2016-07-06 18:12 - 00000000 _SHDL C:\Users\home\Šablony
2016-07-06 18:12 - 2016-07-06 18:12 - 00000000 _SHDL C:\Users\home\Soubory cookie
2016-07-06 18:12 - 2016-07-06 18:12 - 00000000 _SHDL C:\Users\home\Poslední
2016-07-06 18:12 - 2016-07-06 18:12 - 00000000 _SHDL C:\Users\home\Okolní tiskárny
2016-07-06 18:12 - 2016-07-06 18:12 - 00000000 _SHDL C:\Users\home\Okolní síť
2016-07-06 18:12 - 2016-07-06 18:12 - 00000000 _SHDL C:\Users\home\Nabídka Start
2016-07-06 18:12 - 2016-07-06 18:12 - 00000000 _SHDL C:\Users\home\Dokumenty
2016-07-06 18:12 - 2016-07-06 18:12 - 00000000 _SHDL C:\Users\home\Documents\Obrázky
2016-07-06 18:12 - 2016-07-06 18:12 - 00000000 _SHDL C:\Users\home\Documents\Hudba
2016-07-06 18:12 - 2016-07-06 18:12 - 00000000 _SHDL C:\Users\home\Documents\Filmy
2016-07-06 18:12 - 2016-07-06 18:12 - 00000000 _SHDL C:\Users\home\Data aplikací
2016-07-06 18:12 - 2016-07-06 18:12 - 00000000 _SHDL C:\Users\home\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2016-07-06 18:12 - 2016-07-06 18:12 - 00000000 _SHDL C:\Users\home\AppData\Local\Data aplikací
2016-07-06 18:09 - 2016-07-06 18:09 - 00000000 ____D C:\WINDOWS\EffectResources
2016-07-06 17:43 - 2016-07-06 18:23 - 00010447 _____ C:\WINDOWS\diagerr.xml
2016-07-06 17:43 - 2016-07-06 18:23 - 00009528 _____ C:\WINDOWS\diagwrn.xml
2016-06-22 21:06 - 2016-07-04 21:35 - 00028672 _____ C:\Users\home\Desktop\můj rozvrh 2016-17.xls

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2016-07-16 22:39 - 2015-11-14 20:58 - 00000914 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2016-07-16 22:03 - 2016-02-04 05:00 - 00000000 ____D C:\Users\home\AppData\Local\Spotify
2016-07-16 22:03 - 2015-11-09 17:50 - 00000359 _____ C:\Users\home\Desktop\Počítač – zástupce.lnk
2016-07-16 21:53 - 2016-02-04 04:59 - 00000000 ____D C:\Users\home\AppData\Roaming\Spotify
2016-07-16 21:50 - 2016-04-27 06:10 - 00829308 _____ C:\WINDOWS\system32\perfh005.dat
2016-07-16 21:50 - 2016-04-27 06:10 - 00185116 _____ C:\WINDOWS\system32\perfc005.dat
2016-07-16 21:50 - 2015-10-30 07:47 - 00000000 ____D C:\WINDOWS\INF
2016-07-16 21:45 - 2015-11-11 21:55 - 00000316 _____ C:\WINDOWS\Tasks\AutoKMS.job
2016-07-16 21:45 - 2015-11-11 21:54 - 00151552 _____ C:\WINDOWS\KMSEmulator.exe
2016-07-16 21:44 - 2016-04-27 06:25 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2016-07-16 21:44 - 2015-10-30 07:13 - 00262144 ___SH C:\WINDOWS\system32\config\BBI
2016-07-16 21:43 - 2015-11-11 22:35 - 00000000 ____D C:\Users\home\AppData\Roaming\CheckPoint
2016-07-16 20:58 - 2015-10-30 07:48 - 00000000 ___HD C:\Program Files\WindowsApps
2016-07-16 20:58 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\AppReadiness
2016-07-16 07:20 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\rescache
2016-07-15 23:36 - 2016-03-24 13:13 - 00001191 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast SafeZone Browser.lnk
2016-07-15 23:33 - 2015-11-11 22:47 - 00438296 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswsp.sys
2016-07-15 23:32 - 2015-11-11 22:47 - 00222056 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswVmm.sys
2016-07-15 23:32 - 2015-11-11 22:47 - 00118152 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswStm.sys
2016-07-15 23:32 - 2015-11-11 22:47 - 00091680 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswMonFlt.sys
2016-07-15 23:32 - 2015-11-11 22:47 - 00091232 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRdr2.sys
2016-07-15 23:32 - 2015-11-11 22:47 - 00060424 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRvrt.sys
2016-07-15 23:32 - 2015-11-11 22:47 - 00034008 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswHwid.sys
2016-07-15 23:31 - 2016-03-24 13:13 - 00035096 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswKbd.sys
2016-07-15 23:31 - 2015-11-11 22:46 - 00816304 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSnx.sys
2016-07-15 23:02 - 2016-04-27 06:29 - 00000000 __RHD C:\Users\Public\AccountPictures
2016-07-15 22:56 - 2016-04-27 06:19 - 00000000 ____D C:\Program Files\Windows Journal
2016-07-15 22:56 - 2015-10-30 07:48 - 00000000 ___RD C:\WINDOWS\PrintDialog
2016-07-15 22:56 - 2015-10-30 07:48 - 00000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2016-07-15 22:56 - 2015-10-30 07:48 - 00000000 ___RD C:\WINDOWS\DevicesFlow
2016-07-15 22:56 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\system32\oobe
2016-07-15 22:56 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\system32\appraiser
2016-07-15 22:56 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\Provisioning
2016-07-15 22:56 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\PolicyDefinitions
2016-07-15 22:56 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\bcastdvr
2016-07-15 22:56 - 2015-10-30 07:48 - 00000000 ____D C:\Program Files\Windows Photo Viewer
2016-07-15 22:56 - 2015-10-30 07:48 - 00000000 ____D C:\Program Files\Windows Defender
2016-07-15 21:20 - 2015-11-14 13:30 - 00000000 ____D C:\WINDOWS\system32\MRT
2016-07-15 21:20 - 2015-10-30 07:39 - 00000000 ____D C:\WINDOWS\CbsTemp
2016-07-15 21:17 - 2015-11-14 13:30 - 141983760 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2016-07-13 22:22 - 2016-02-20 21:28 - 00002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2016-07-13 11:00 - 2015-11-12 18:39 - 00000000 ____D C:\Users\home\AppData\Roaming\vlc
2016-07-13 10:54 - 2015-11-12 18:36 - 00000000 ____D C:\Users\home\AppData\Local\ElevatedDiagnostics
2016-07-13 10:42 - 2009-07-14 04:37 - 00000000 ___HD C:\WINDOWS\system32\GroupPolicy
2016-07-12 17:38 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\System
2016-07-12 17:38 - 2015-10-30 07:44 - 00534016 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntvdm.exe
2016-07-12 17:38 - 2015-10-30 07:44 - 00256192 _____ (Microsoft Corporation) C:\WINDOWS\winhelp.exe
2016-07-12 17:38 - 2015-10-30 07:44 - 00221600 _____ (Microsoft Corporation) C:\WINDOWS\system32\lanman.drv
2016-07-12 17:38 - 2015-10-30 07:44 - 00177856 _____ (Microsoft Corporation) C:\WINDOWS\system32\typelib.dll
2016-07-12 17:38 - 2015-10-30 07:44 - 00169520 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole2disp.dll
2016-07-12 17:38 - 2015-10-30 07:44 - 00153008 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole2nls.dll
2016-07-12 17:38 - 2015-10-30 07:44 - 00127213 _____ C:\WINDOWS\system32\ega.cpi
2016-07-12 17:38 - 2015-10-30 07:44 - 00108464 _____ (Microsoft Corporation) C:\WINDOWS\system32\netapi.dll
2016-07-12 17:38 - 2015-10-30 07:44 - 00092320 _____ (Microsoft Corporation) C:\WINDOWS\system32\krnl386.exe
2016-07-12 17:38 - 2015-10-30 07:44 - 00082944 _____ (Microsoft Corporation) C:\WINDOWS\system32\olecli.dll
2016-07-12 17:38 - 2015-10-30 07:44 - 00069886 _____ C:\WINDOWS\system32\edit.com
2016-07-12 17:38 - 2015-10-30 07:44 - 00068992 _____ (Microsoft Corporation) C:\WINDOWS\system32\MMSYSTEM.DLL
2016-07-12 17:38 - 2015-10-30 07:44 - 00058880 _____ (Microsoft Corporation) C:\WINDOWS\system32\graftabl.com
2016-07-12 17:38 - 2015-10-30 07:44 - 00053600 _____ C:\WINDOWS\system32\dosx.exe
2016-07-12 17:38 - 2015-10-30 07:44 - 00050648 _____ C:\WINDOWS\system32\COMMAND.COM
2016-07-12 17:38 - 2015-10-30 07:44 - 00047840 _____ (Microsoft Corporation) C:\WINDOWS\system32\USER.EXE
2016-07-12 17:38 - 2015-10-30 07:44 - 00046592 _____ (Microsoft Corporation) C:\WINDOWS\system32\pmspl.dll
2016-07-12 17:38 - 2015-10-30 07:44 - 00042809 _____ C:\WINDOWS\system32\KEY01.SYS
2016-07-12 17:38 - 2015-10-30 07:44 - 00042592 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole2.dll
2016-07-12 17:38 - 2015-10-30 07:44 - 00042537 _____ C:\WINDOWS\system32\KEYBOARD.SYS
2016-07-12 17:38 - 2015-10-30 07:44 - 00039424 _____ (Microsoft Corporation) C:\WINDOWS\system32\DDEML.DLL
2016-07-12 17:38 - 2015-10-30 07:44 - 00039274 _____ C:\WINDOWS\system32\mem.exe
2016-07-12 17:38 - 2015-10-30 07:44 - 00035776 _____ C:\WINDOWS\system32\NTIO411.SYS
2016-07-12 17:38 - 2015-10-30 07:44 - 00035552 _____ C:\WINDOWS\system32\NTIO412.SYS
2016-07-12 17:38 - 2015-10-30 07:44 - 00034688 _____ C:\WINDOWS\system32\NTIO804.SYS
2016-07-12 17:38 - 2015-10-30 07:44 - 00034688 _____ C:\WINDOWS\system32\NTIO404.SYS
2016-07-12 17:38 - 2015-10-30 07:44 - 00033968 _____ C:\WINDOWS\system32\NTIO.SYS
2016-07-12 17:38 - 2015-10-30 07:44 - 00032816 _____ (Microsoft Corporation) C:\WINDOWS\system32\COMMDLG.DLL
2016-07-12 17:38 - 2015-10-30 07:44 - 00032816 _____ (Microsoft Corporation) C:\WINDOWS\system\COMMDLG.DLL
2016-07-12 17:38 - 2015-10-30 07:44 - 00029370 _____ C:\WINDOWS\system32\NTDOS411.SYS
2016-07-12 17:38 - 2015-10-30 07:44 - 00029274 _____ C:\WINDOWS\system32\NTDOS412.SYS
2016-07-12 17:38 - 2015-10-30 07:44 - 00029146 _____ C:\WINDOWS\system32\NTDOS804.SYS
2016-07-12 17:38 - 2015-10-30 07:44 - 00029146 _____ C:\WINDOWS\system32\NTDOS404.SYS
2016-07-12 17:38 - 2015-10-30 07:44 - 00028420 _____ C:\WINDOWS\system32\bios1.rom
2016-07-12 17:38 - 2015-10-30 07:44 - 00028112 _____ (Microsoft Corporation) C:\WINDOWS\system32\DRWATSON.EXE
2016-07-12 17:38 - 2015-10-30 07:44 - 00027866 _____ C:\WINDOWS\system32\NTDOS.SYS
2016-07-12 17:38 - 2015-10-30 07:44 - 00027792 _____ (Microsoft Corporation) C:\WINDOWS\system32\compobj.dll
2016-07-12 17:38 - 2015-10-30 07:44 - 00027200 _____ (Microsoft Corporation) C:\WINDOWS\system32\ctl3dv2.dll
2016-07-12 17:38 - 2015-10-30 07:44 - 00027097 _____ C:\WINDOWS\system32\country.sys
2016-07-12 17:38 - 2015-10-30 07:44 - 00024576 _____ (Microsoft Corporation) C:\WINDOWS\system32\GDI.EXE
2016-07-12 17:38 - 2015-10-30 07:44 - 00024064 _____ (Microsoft Corporation) C:\WINDOWS\system32\OLESVR.DLL
2016-07-12 17:38 - 2015-10-30 07:44 - 00024064 _____ (Microsoft Corporation) C:\WINDOWS\system\OLESVR.DLL
2016-07-12 17:38 - 2015-10-30 07:44 - 00021504 _____ (Microsoft Corporation) C:\WINDOWS\system32\vdmredir.dll
2016-07-12 17:38 - 2015-10-30 07:44 - 00021232 _____ C:\WINDOWS\system32\graphics.pro
2016-07-12 17:38 - 2015-10-30 07:44 - 00020634 _____ C:\WINDOWS\system32\debug.exe
2016-07-12 17:38 - 2015-10-30 07:44 - 00019694 _____ C:\WINDOWS\system32\GRAPHICS.COM
2016-07-12 17:38 - 2015-10-30 07:44 - 00018896 _____ (Microsoft Corporation) C:\WINDOWS\system32\sysedit.exe
2016-07-12 17:38 - 2015-10-30 07:44 - 00018832 _____ C:\WINDOWS\system32\v7vga.rom
2016-07-12 17:38 - 2015-10-30 07:44 - 00016384 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntvdmd.dll
2016-07-12 17:38 - 2015-10-30 07:44 - 00014710 _____ C:\WINDOWS\system32\KB16.COM
2016-07-12 17:38 - 2015-10-30 07:44 - 00013888 _____ (Microsoft Corporation) C:\WINDOWS\system32\TOOLHELP.DLL
2016-07-12 17:38 - 2015-10-30 07:44 - 00013312 _____ C:\WINDOWS\system32\win87em.dll
2016-07-12 17:38 - 2015-10-30 07:44 - 00012704 _____ (Microsoft Corporation) C:\WINDOWS\system32\WFWNET.DRV
2016-07-12 17:38 - 2015-10-30 07:44 - 00012642 _____ C:\WINDOWS\system32\edlin.exe
2016-07-12 17:38 - 2015-10-30 07:44 - 00012498 _____ C:\WINDOWS\system32\append.exe
2016-07-12 17:38 - 2015-10-30 07:44 - 00011753 _____ C:\WINDOWS\system32\setver.exe
2016-07-12 17:38 - 2015-10-30 07:44 - 00010790 _____ C:\WINDOWS\system32\EDIT.HLP
2016-07-12 17:38 - 2015-10-30 07:44 - 00010544 _____ (Microsoft Corporation) C:\WINDOWS\system32\COMM.drv
2016-07-12 17:38 - 2015-10-30 07:44 - 00009936 _____ (Microsoft Corporation) C:\WINDOWS\system32\lzexpand.dll
2016-07-12 17:38 - 2015-10-30 07:44 - 00009936 _____ (Microsoft Corporation) C:\WINDOWS\system\lzexpand.dll
2016-07-12 17:38 - 2015-10-30 07:44 - 00009216 _____ (Microsoft Corporation) C:\WINDOWS\system32\WIFEMAN.DLL
2016-07-12 17:38 - 2015-10-30 07:44 - 00009029 _____ C:\WINDOWS\system32\ANSI.SYS
2016-07-12 17:38 - 2015-10-30 07:44 - 00009008 _____ (Microsoft Corporation) C:\WINDOWS\system32\ver.dll
2016-07-12 17:38 - 2015-10-30 07:44 - 00009008 _____ (Microsoft Corporation) C:\WINDOWS\system\ver.dll
2016-07-12 17:38 - 2015-10-30 07:44 - 00008424 _____ C:\WINDOWS\system32\exe2bin.exe
2016-07-12 17:38 - 2015-10-30 07:44 - 00008191 _____ C:\WINDOWS\system32\bios4.rom
2016-07-12 17:38 - 2015-10-30 07:44 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\win.com
2016-07-12 17:38 - 2015-10-30 07:44 - 00007052 _____ C:\WINDOWS\system32\nlsfunc.exe
2016-07-12 17:38 - 2015-10-30 07:44 - 00005532 _____ (Microsoft Corporation) C:\WINDOWS\system\stdole.tlb
2016-07-12 17:38 - 2015-10-30 07:44 - 00005120 _____ (Microsoft Corporation) C:\WINDOWS\system32\WINNLS.DLL
2016-07-12 17:38 - 2015-10-30 07:44 - 00005120 _____ (Microsoft Corporation) C:\WINDOWS\system32\SHELL.DLL
2016-07-12 17:38 - 2015-10-30 07:44 - 00005120 _____ (Microsoft Corporation) C:\WINDOWS\system\SHELL.DLL
2016-07-12 17:38 - 2015-10-30 07:44 - 00004768 _____ C:\WINDOWS\system32\HIMEM.SYS
2016-07-12 17:38 - 2015-10-30 07:44 - 00004208 _____ (Microsoft Corporation) C:\WINDOWS\system32\storage.dll
2016-07-12 17:37 - 2015-10-30 07:44 - 00082944 _____ (Microsoft Corporation) C:\WINDOWS\system\olecli.dll
2016-07-12 17:37 - 2015-10-30 07:44 - 00068992 _____ (Microsoft Corporation) C:\WINDOWS\system\MMSYSTEM.DLL
2016-07-12 17:37 - 2015-10-30 07:44 - 00012704 _____ (Microsoft Corporation) C:\WINDOWS\system\WFWNET.DRV
2016-07-12 12:39 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\system32\Macromed
2016-07-11 04:47 - 2015-11-11 22:34 - 00000000 ____D C:\Users\home\AppData\Roaming\Skype
2016-07-06 20:24 - 2016-04-27 06:12 - 00000000 ____D C:\WINDOWS\OCR
2016-07-06 20:19 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\AppCompat
2016-07-06 19:07 - 2015-10-30 07:48 - 00028672 _____ C:\WINDOWS\system32\config\BCD-Template
2016-07-06 19:04 - 2015-10-30 07:48 - 00015703 _____ C:\WINDOWS\system32\OEMDefaultAssociations.xml
2016-07-06 19:04 - 2015-10-30 07:48 - 00000000 ___SD C:\WINDOWS\system32\DiagSvcs
2016-07-06 19:04 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2016-07-06 19:04 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\system32\SystemResetPlatform
2016-07-06 18:58 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\system32\MUI
2016-07-06 18:58 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\system32\inetsrv
2016-07-06 18:58 - 2015-10-30 07:45 - 01014272 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqqm.dll
2016-07-06 18:58 - 2015-10-30 07:45 - 00635904 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqsnap.dll
2016-07-06 18:58 - 2015-10-30 07:45 - 00266240 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqoa.dll
2016-07-06 18:58 - 2015-10-30 07:45 - 00096768 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqoa.tlb
2016-07-06 18:58 - 2015-10-30 07:45 - 00091136 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqoa30.tlb
2016-07-06 18:58 - 2015-10-30 07:45 - 00055808 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqoa20.tlb
2016-07-06 18:58 - 2015-10-30 07:45 - 00037376 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqoa10.tlb
2016-07-06 18:58 - 2015-10-30 07:45 - 00014848 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqcertui.dll
2016-07-06 18:58 - 2015-10-30 07:45 - 00009096 _____ C:\WINDOWS\system32\msmqtrc.mof
2016-07-06 18:57 - 2015-10-30 07:45 - 00562176 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqutil.dll
2016-07-06 18:57 - 2015-10-30 07:45 - 00168960 _____ (Microsoft Corporation) C:\WINDOWS\system32\iisRtl.dll
2016-07-06 18:57 - 2015-10-30 07:45 - 00161792 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqrt.dll
2016-07-06 18:57 - 2015-10-30 07:45 - 00130560 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mqac.sys
2016-07-06 18:57 - 2015-10-30 07:45 - 00104960 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqlogmgr.dll
2016-07-06 18:57 - 2015-10-30 07:45 - 00051200 _____ (Microsoft Corporation) C:\WINDOWS\system32\admwprox.dll
2016-07-06 18:57 - 2015-10-30 07:45 - 00044544 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqbkup.exe
2016-07-06 18:57 - 2015-10-30 07:45 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\ahadmin.dll
2016-07-06 18:57 - 2015-10-30 07:45 - 00025088 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqsvc.exe
2016-07-06 18:57 - 2015-10-30 07:45 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\system32\iisreset.exe
2016-07-06 18:57 - 2015-10-30 07:45 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\system32\wamregps.dll
2016-07-06 18:57 - 2015-10-30 07:45 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\iisrstap.dll
2016-07-06 18:23 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\system32\WinBioDatabase
2016-07-06 18:23 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\Registration
2016-07-06 18:23 - 2015-10-30 07:48 - 00000000 ____D C:\Program Files\Windows NT
2016-07-06 18:22 - 2015-10-30 07:48 - 00000000 __RSD C:\WINDOWS\Media
2016-07-06 18:21 - 2015-10-30 07:48 - 00000000 __RHD C:\Users\Public\Libraries
2016-07-06 18:18 - 2016-04-26 21:23 - 00274048 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2016-07-06 18:17 - 2016-04-27 06:19 - 00000000 ____D C:\WINDOWS\ShellNew
2016-07-06 18:17 - 2015-12-05 15:05 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP
2016-07-06 18:17 - 2015-11-11 22:48 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
2016-07-06 18:17 - 2015-11-11 22:47 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software
2016-07-06 18:17 - 2015-11-11 21:58 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\A4 TECH PC Camera V
2016-07-06 18:17 - 2015-11-11 21:56 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Zoner Photo Studio 14
2016-07-06 18:17 - 2015-11-11 21:42 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office
2016-07-06 18:17 - 2015-10-30 07:13 - 00032768 ___SH C:\WINDOWS\system32\config\ELAM
2016-07-06 18:16 - 2009-07-14 04:37 - 00000000 ____D C:\Users\Default.migrated
2016-07-06 18:15 - 2015-11-14 10:52 - 00000000 ____D C:\WINDOWS\system32\SPReview
2016-07-06 18:15 - 2015-11-14 10:52 - 00000000 ____D C:\WINDOWS\system32\EventProviders
2016-07-06 18:15 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\system32\IME
2016-07-06 18:14 - 2016-04-12 21:29 - 00000000 ____D C:\WINDOWS\system32\appmgmt
2016-07-06 18:14 - 2016-01-18 20:10 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2016-07-06 18:14 - 2015-11-11 22:56 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nero
2016-07-06 18:14 - 2015-10-30 07:48 - 00000000 __SHD C:\Program Files\Windows Sidebar
2016-07-06 18:14 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\schemas
2016-07-06 18:14 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\LiveKernelReports
2016-07-06 18:14 - 2015-10-30 07:48 - 00000000 ____D C:\Program Files\Common Files\microsoft shared
2016-07-06 18:14 - 2009-07-14 09:49 - 00000000 ___RD C:\Users\Public\Recorded TV
2016-07-06 18:14 - 2009-07-14 06:52 - 00000000 ____D C:\Program Files\DVD Maker
2016-07-06 18:11 - 2015-10-30 07:13 - 00000000 ____D C:\WINDOWS\system32\Sysprep
2016-07-06 17:48 - 2009-07-14 06:34 - 00014032 ____H C:\WINDOWS\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2016-07-06 17:48 - 2009-07-14 06:34 - 00014032 ____H C:\WINDOWS\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2016-07-06 17:43 - 2016-04-27 07:17 - 00000000 ___HD C:\$WINDOWS.~BT
2016-07-06 12:47 - 2015-11-11 22:34 - 00000000 ____D C:\ProgramData\Skype
2016-07-02 06:37 - 2015-10-30 07:49 - 00828408 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerApp.exe
2016-07-02 06:37 - 2015-10-30 07:49 - 00176632 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerCPLApp.cpl
2016-06-22 20:34 - 2015-12-05 15:06 - 00000000 ____D C:\Users\home\AppData\Roaming\HpUpdate
2016-06-18 12:43 - 2016-01-18 20:10 - 00000000 ___RD C:\Program Files\Skype

==================== Files in the root of some directories =======

2016-07-16 22:55 - 2016-07-16 22:55 - 0000017 _____ () C:\Users\home\AppData\Local\resmon.resmoncfg
2015-12-05 15:05 - 2015-12-05 15:05 - 0000057 _____ () C:\ProgramData\Ament.ini

Some files in TEMP:
====================
C:\Users\home\AppData\Local\Temp\libeay32.dll
C:\Users\home\AppData\Local\Temp\msvcr120.dll
C:\Users\home\AppData\Local\Temp\sqlite3.dll


==================== Bamital & volsnap =================

(There is no automatic fix for files that do not pass verification.)

C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\wininit.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2016-07-07 11:53

==================== End of FRST.txt ============================

Re: The NTVDM CPU has encountered an illegal instruction

Napsal: 16 črc 2016 22:14
od Radek.Juracak
Addition:


Additional scan result of Farbar Recovery Scan Tool (x86) Version: 17-07-2016
Ran by home (2016-07-16 23:07:42)
Running from C:\Users\home\Desktop
Microsoft Windows 10 Pro Version 1511 (X86) (2016-07-06 18:19:41)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-841674414-3561358831-3126363696-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-841674414-3561358831-3126363696-503 - Limited - Disabled)
Guest (S-1-5-21-841674414-3561358831-3126363696-501 - Limited - Disabled)
home (S-1-5-21-841674414-3561358831-3126363696-1000 - Administrator - Enabled) => C:\Users\home
HomeGroupUser$ (S-1-5-21-841674414-3561358831-3126363696-1003 - Limited - Enabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: avast! Antivirus (Disabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: avast! Antivirus (Disabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

A4 TECH PC Camera V (HKLM\...\{8AD824A5-1CCC-4BB7-82C9-E6FB25CC0479}) (Version: 2007.07.30 - A4)
Adobe Acrobat Reader DC - Czech (HKLM\...\{AC76BA86-7AD7-1029-7B44-AC0F074E4100}) (Version: 15.017.20050 - Adobe Systems Incorporated)
Adobe Flash Player 22 NPAPI (HKLM\...\Adobe Flash Player NPAPI) (Version: 22.0.0.209 - Adobe Systems Incorporated)
Avast Free Antivirus (HKLM\...\Avast) (Version: 12.1.2272 - AVAST Software)
HP Deskjet 1510 series Nápověda (HKLM\...\{FB815CBF-148E-42A4-8741-4924C28C118F}) (Version: 30.0.0 - Hewlett Packard)
HP Photo Creations (HKLM\...\HP Photo Creations) (Version: 1.0.0.7702 - HP)
HP Support Solutions Framework (HKLM\...\{79CA8D8A-8371-4146-8920-C1405318E65E}) (Version: 12.4.18.7 - Hewlett-Packard Company)
HP Update (HKLM\...\{912D30CF-F39E-4B31-AD9A-123C6B794EE2}) (Version: 5.005.002.002 - Hewlett-Packard)
Malwarebytes Anti-Malware verze 2.2.1.1043 (HKLM\...\Malwarebytes Anti-Malware_is1) (Version: 2.2.1.1043 - Malwarebytes)
Microsoft Office Professional Plus 2010 (HKLM\...\Office14.PROPLUSR) (Version: 14.0.7015.1000 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x86) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x86)) (Version: 10.0.50903 - Microsoft Corporation)
Mozilla Firefox 47.0 (x86 cs) (HKLM\...\Mozilla Firefox 47.0 (x86 cs)) (Version: 47.0 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 47.0.0.5999 - Mozilla)
Nero Burning ROM 10 (HKLM\...\{7A5D731D-B4B3-490E-B339-75685712BAAB}) (Version: 10.2.11000.12.100 - Nero AG)
Nero Burning ROM 10 (HKLM\...\{FE83F463-7E61-4B18-9FA0-B94B90A0B6B9}) (Version: 10.5.10300 - Nero AG)
Nero BurnRights 10 (HKLM\...\{943CFD7D-5336-47AF-9418-E02473A5A517}) (Version: 4.2.10300.0.102 - Nero AG)
Nero Update (HKLM\...\{65BB0407-4CC8-4DC7-952E-3EEFDF05602A}) (Version: 1.0.0018 - Nero AG)
SafeZone Stable 1.48.2066.114 (Version: 1.48.2066.114 - Avast Software) Hidden
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM\...\{91140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUSR_{DE28B448-32E8-4E8F-84F0-A52B21A49B5B}) (Version: - Microsoft)
Skype™ 7.25 (HKLM\...\{FC965A47-4839-40CA-B618-18F486F042C6}) (Version: 7.25.106 - Skype Technologies S.A.)
Spotify (HKU\S-1-5-21-841674414-3561358831-3126363696-1000\...\Spotify) (Version: 1.0.33.106.g60b5d1f0 - Spotify AB)
Studie vylepšování produktu HP Deskjet 1510 series (HKLM\...\{0A0B1D91-0716-4D99-AEA6-1D6651428EAC}) (Version: 32.2.188.47710 - Hewlett-Packard Co.)
USB PC Camera VC305 (HKLM\...\{ADE16A9D-FBDC-4ECC-B6BD-9C31E51D0305}) (Version: - )
VC 9.0 Runtime (Version: 1.0.0 - Check Point Software Technologies Ltd) Hidden
VLC media player (HKLM\...\VLC media player) (Version: 2.2.1 - VideoLAN)
Základní software zařízení HP Deskjet 1510 series (HKLM\...\{9A3DA7C7-F74F-4B29-9082-C7C01D2E465B}) (Version: 32.2.188.47710 - Hewlett-Packard Co.)
Zoner Photo Studio 14 (HKLM\...\ZonerPhotoStudio14_CZ_is1) (Version: 14.0.1.1 - ZONER software)

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {17E4E1CF-A304-478D-8736-1DED4FEF7D87} - System32\Tasks\Microsoft\Windows\Media Center\DispatchRecoveryTasks => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {1FD1BCCC-5550-4E07-91CC-9BB40EE2C37B} - System32\Tasks\Microsoft\Windows\Media Center\OCURDiscovery => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {2211EBBF-96B6-4534-8872-53D9CDD60E67} - \Microsoft\Windows\Setup\GWXTriggers\OnIdle-5d -> No File <==== ATTENTION
Task: {254943BD-B759-4AA0-B38E-A67CBB486FD4} - System32\Tasks\AutoKMS => C:\Windows\AutoKMS\AutoKMS.exe [2015-11-11] ()
Task: {26C917AA-30E4-4DDB-84C5-324C9286A99A} - System32\Tasks\Microsoft\Windows\Media Center\ReindexSearchRoot => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {294D6986-07C3-425D-8B82-D5D57C7B4A93} - System32\Tasks\Microsoft\Windows\Media Center\InstallPlayReady => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {2C0FEA06-DA9E-42E0-BC5D-48805961FFD1} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater => C:\Program Files\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe [2016-05-04] (Hewlett-Packard)
Task: {32649B9C-DE47-4FD4-963E-D2C12F8460B4} - System32\Tasks\Microsoft\Windows\Media Center\ConfigureInternetTimeService => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {38BE5B6E-10AA-42D8-94D8-06BC706DFF38} - \Microsoft\Windows\Setup\GWXTriggers\Time-Weekend -> No File <==== ATTENTION
Task: {3932192D-04E3-442A-B8DD-2C3BE479D785} - System32\Tasks\Microsoft\Windows\Media Center\RegisterSearch => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {422C2352-2DAD-4E73-A119-9B368E920438} - System32\Tasks\Microsoft\Windows\Media Center\ehDRMInit => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {49CB7EE8-C6B9-48FF-920E-B34E3ADA4FF3} - System32\Tasks\Microsoft\Windows\Media Center\MediaCenterRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe
Task: {522D1304-A7F9-414B-B01A-D52F26D6506B} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> No File <==== ATTENTION
Task: {56EAE376-695F-445A-8419-AA58552416CA} - System32\Tasks\Microsoft\Windows\Media Center\ObjectStoreRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe
Task: {62D24AD1-6E24-42FA-A109-B339EA40B168} - \Microsoft\Windows\Setup\gwx\rundetector -> No File <==== ATTENTION
Task: {6662D788-2AF8-49C8-9A3B-3F063CB2EEE7} - \Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeReminderTime -> No File <==== ATTENTION
Task: {6990C950-B775-4298-97F9-1916098FD70D} - System32\Tasks\Microsoft\Windows\Media Center\PvrScheduleTask => C:\WINDOWS\ehome\mcupdate.exe
Task: {6B82FB78-379C-42A2-B18D-B134D78B2A53} - System32\Tasks\Microsoft\Windows\Media Center\SqlLiteRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe
Task: {6BCDF63E-72B1-42C1-8E22-192F3CEA9E1B} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate_scheduled => C:\WINDOWS\ehome\mcupdate.exe
Task: {7063956E-0CB5-4E36-882C-7C4B2CA3C798} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Report => C:\Program Files\Hewlett-Packard\HP Support Solutions\Modules\HPSFReport.exe [2016-05-09] (Hewlett-Packard)
Task: {798A5F13-8959-415C-8CE3-EE39BFC6DAB4} - System32\Tasks\{CC95174B-0F4C-4058-8EC5-98468C7ADD27} => C:\Program Files\HP\HP Deskjet 1510 series\Bin\HP Deskjet 1510 series.exe [2014-03-06] (Hewlett-Packard Co.)
Task: {8156407C-4514-4333-9C38-41B61AC9AC02} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> No File <==== ATTENTION
Task: {87069487-9146-4BC1-BAA3-8A8DB8CD142C} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> No File <==== ATTENTION
Task: {88B15734-E51A-4320-98A6-74C9E8A59C7B} - System32\Tasks\SafeZone scheduled Autoupdate 1458818016 => C:\Program Files\AVAST Software\SZBrowser\launcher.exe [2016-06-17] (Avast Software)
Task: {91359B3F-619B-4A3A-8D7B-7774362EAFC0} - System32\Tasks\Microsoft\Windows\Media Center\StartRecording => C:\WINDOWS\ehome\ehrec.exe
Task: {92585DA6-B712-4035-BD56-C6D94F36349C} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> No File <==== ATTENTION
Task: {925AD007-962E-4DEF-A6E6-F5ED19E28D8F} - System32\Tasks\Microsoft\Windows\Media Center\ActivateWindowsSearch => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {947F60EE-08A8-4B27-B772-83D818754C7F} - System32\Tasks\Microsoft\Windows\Media Center\PvrRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe
Task: {9C150BE3-FD8A-4288-8D2A-AA36516BE368} - \Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeTime -> No File <==== ATTENTION
Task: {9E1CD2F4-30C2-47F8-B412-6BC8C4E41F2C} - System32\Tasks\AVAST Software\Avast settings backup => C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe [2016-06-04] (AVAST Software)
Task: {A55513F1-F8D5-4305-BEFA-2E19AD60C037} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2016-07-15] (AVAST Software)
Task: {B7960579-B8D0-4903-983A-8C0CCF7D7CA8} - System32\Tasks\Microsoft\Windows\Media Center\OCURActivate => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {BE3301BA-6EAD-417E-89EE-B77056879688} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2016-06-25] (Adobe Systems Incorporated)
Task: {C02937D1-4DC4-4D43-A73D-8A044C984C38} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate => C:\WINDOWS\ehome\mcupdate.exe
Task: {C17097A3-7F0D-4CFA-A29A-60D498401115} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> No File <==== ATTENTION
Task: {C2697C1F-557C-48CE-A205-32C5A3B7C7D4} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2016-07-12] (Adobe Systems Incorporated)
Task: {C5E6B319-E406-4DC6-BC6E-264FC8DF09CA} - System32\Tasks\HPCustParticipation HP Deskjet 1510 series => C:\Program Files\HP\HP Deskjet 1510 series\Bin\HPCustPartic.exe [2014-03-06] (Hewlett-Packard Co.)
Task: {C81C9ED2-01B3-4BA6-BA55-8FC99786BD91} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW2 => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {D37BC954-7683-47AC-98EB-BEBC72E14BE6} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscovery => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {D55FAF99-8D91-44E1-8F8C-126A3290ED8E} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> No File <==== ATTENTION
Task: {DE35C737-F507-4A74-83E8-59D1CFA319EF} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW1 => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {E33A809F-A6E6-49AA-9232-6C10139F65F4} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> No File <==== ATTENTION
Task: {E4D169DE-E4F2-48C3-B8A8-DF57CF426CF1} - System32\Tasks\Microsoft\Windows\Media Center\RecordingRestart => C:\WINDOWS\ehome\ehrec.exe
Task: {EEE52045-B6E1-4769-962A-B2D6B9EBB9ED} - System32\Tasks\Microsoft\Windows\Media Center\PeriodicScanRetry => C:\WINDOWS\ehome\MCUpdate.exe
Task: {F19D0CD3-F7B7-4004-88FD-9854E2635CF8} - System32\Tasks\Microsoft\Windows\Media Center\UpdateRecordPath => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {F859A041-A07C-40F1-A25C-645EB463F90C} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> No File <==== ATTENTION
Task: {F8CAE268-B27B-4202-855F-94959F07DB53} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> No File <==== ATTENTION
Task: {FBE59E6E-B8DE-432D-BEF4-E82B7C1DFFAC} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> No File <==== ATTENTION

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\WINDOWS\Tasks\AutoKMS.job => C:\Windows\AutoKMS\AutoKMS.exe

==================== Shortcuts =============================

(The entries could be listed to be restored or removed.)

==================== Loaded Modules (Whitelisted) ==============

2015-10-30 07:44 - 2015-10-30 07:44 - 00149504 _____ () C:\WINDOWS\SYSTEM32\ism32k.dll
2016-07-15 23:32 - 2016-07-15 23:32 - 00146232 _____ () C:\Program Files\AVAST Software\Avast\JsonRpcServer.dll
2016-07-16 13:22 - 2016-07-16 13:22 - 03000832 _____ () C:\Program Files\AVAST Software\Avast\defs\16071600\algo.dll
2016-07-15 23:32 - 2016-07-15 23:32 - 00479288 _____ () C:\Program Files\AVAST Software\Avast\ffl2.dll
2013-09-05 01:14 - 2013-09-05 01:14 - 04300456 _____ () C:\Program Files\Common Files\microsoft shared\OFFICE14\Cultures\OFFICE.ODF
2016-07-13 13:32 - 2016-07-01 06:38 - 01862008 _____ () C:\WINDOWS\system32\CoreUIComponents.dll
2016-07-13 13:32 - 2016-07-01 06:38 - 01862008 _____ () C:\WINDOWS\System32\CoreUIComponents.dll
2016-07-06 20:25 - 2016-07-06 20:25 - 00679624 _____ () C:\Users\home\AppData\Local\Microsoft\OneDrive\17.3.6390.0509\ClientTelemetry.dll
2016-07-06 21:05 - 2016-07-06 21:06 - 00144384 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkypeHost.exe
2016-07-06 21:05 - 2016-07-06 21:06 - 00141312 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkypeBackgroundTasks.dll
2016-07-06 21:05 - 2016-07-06 21:06 - 22284800 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkyWrap.dll
2016-04-27 06:12 - 2016-04-27 06:12 - 00070656 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\Windows.UI.Shell.SharedUtilities.dll
2016-07-13 13:32 - 2016-07-01 05:31 - 00316416 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\QuickActions.dll
2016-07-13 13:32 - 2016-07-01 05:13 - 05340160 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll
2016-07-13 13:32 - 2016-07-01 05:08 - 00471552 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
2016-07-13 13:32 - 2016-07-01 05:08 - 02366976 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll
2016-07-13 13:32 - 2016-07-01 05:11 - 02656768 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll
2016-07-15 23:32 - 2016-07-15 23:32 - 48936448 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll
2016-07-06 21:10 - 2016-07-06 21:11 - 00018432 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_16.526.11220.0_x86__8wekyb3d8bbwe\Microsoft.Photos.exe
2016-07-06 21:10 - 2016-07-06 21:11 - 11082240 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_16.526.11220.0_x86__8wekyb3d8bbwe\Microsoft.Photos.dll
2016-07-06 21:10 - 2016-07-06 21:11 - 00541696 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_16.526.11220.0_x86__8wekyb3d8bbwe\Microsoft.DesignCore.dll
2016-07-06 21:04 - 2016-07-06 21:04 - 00180224 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_16.526.11220.0_x86__8wekyb3d8bbwe\StoreRatingPromotion.dll
2015-10-30 07:45 - 2015-10-30 07:45 - 00164224 _____ () c:\windows\system32\WerEtw.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)


==================== Safe Mode (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" value will be restored.)


==================== Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)


==================== Hosts content: ===============================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2009-07-14 04:04 - 2009-06-10 23:39 - 00000824 ____A C:\WINDOWS\system32\Drivers\etc\hosts


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-841674414-3561358831-3126363696-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\home\AppData\Local\Packages\Microsoft.Windows.Photos_8wekyb3d8bbwe\LocalState\PhotosAppBackground\{ef08e3ce-54b5-4fcb-8a54-2a4de0f7bc16}.jpg
DNS Servers: 192.168.1.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

(Currently there is no automatic fix for this section.)


==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139
FirewallRules: [MSMQ-In-TCP] => (Allow) %systemroot%\system32\mqsvc.exe
FirewallRules: [MSMQ-Out-TCP] => (Allow) %systemroot%\system32\mqsvc.exe
FirewallRules: [MSMQ-In-UDP] => (Allow) %systemroot%\system32\mqsvc.exe
FirewallRules: [MSMQ-Out-UDP] => (Allow) %systemroot%\system32\mqsvc.exe
FirewallRules: [WCF-NetTcpActivator-In-TCP-32bit] => (Allow) LPort=808
FirewallRules: [UDP Query User{3C83CC3B-AFC0-4AB7-8521-991AAD4E0523}C:\users\home\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\home\appdata\roaming\spotify\spotify.exe
FirewallRules: [TCP Query User{C9CC714D-718A-4E2C-A20C-84D06B1D6C40}C:\users\home\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\home\appdata\roaming\spotify\spotify.exe
FirewallRules: [{9C422059-F11D-4EFB-98F0-40E9BA9DFC48}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe
FirewallRules: [{D8B0398B-0F9A-4AE5-B339-7F3A44305327}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe
FirewallRules: [{D5CCFF54-1918-4CD6-B54E-024FCA738296}] => (Allow) C:\Program Files\HP\HP Deskjet 1510 series\Bin\HPNetworkCommunicatorCom.exe
FirewallRules: [{BA15C534-2BF5-419A-8552-3A85699352BA}] => (Allow) C:\Program Files\HP\HP Deskjet 1510 series\Bin\USBSetup.exe
FirewallRules: [{656FCFA4-6BDA-4ED1-8B05-2DCF62AEFDB2}] => (Allow) C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
FirewallRules: [{7451495D-C012-4221-B97C-4BB62FBE1F59}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe
FirewallRules: [{63B9C784-23A0-4BF9-98D7-31F8C73A32AD}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe
FirewallRules: [{D7955C33-6E06-4F2A-A426-3C125F4AE69F}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe
FirewallRules: [UDP Query User{00C28921-C255-407C-A055-7AE38DCC213C}C:\windows\kmsemulator.exe] => (Allow) C:\windows\kmsemulator.exe
FirewallRules: [TCP Query User{5CFE15F0-2D79-4430-890E-FF28E25CBB2A}C:\windows\kmsemulator.exe] => (Allow) C:\windows\kmsemulator.exe
FirewallRules: [TCP Query User{85D305FF-E698-432F-B281-EE95E6CF9B44}C:\users\home\appdata\roaming\spotify\spotify.exe] => (Block) C:\users\home\appdata\roaming\spotify\spotify.exe
FirewallRules: [UDP Query User{4A40517C-EB01-4B59-AA79-2838F9637839}C:\users\home\appdata\roaming\spotify\spotify.exe] => (Block) C:\users\home\appdata\roaming\spotify\spotify.exe

==================== Restore Points =========================

ATTENTION: System Restore is disabled
Check "winmgmt" service or repair WMI.


==================== Faulty Device Manager Devices =============


==================== Event log errors: =========================

Application errors:
==================
Error: (07/16/2016 11:06:27 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: ntvdm.exe, verze: 10.0.10586.0, časové razítko: 0x5632d9ea
Název chybujícího modulu: unknown, verze: 0.0.0.0, časové razítko: 0x00000000
Kód výjimky: 0xc0000005
Posun chyby: 0x00000000
ID chybujícího procesu: 0x1490
Čas spuštění chybující aplikace: 0xntvdm.exe0
Cesta k chybující aplikaci: ntvdm.exe1
Cesta k chybujícímu modulu: ntvdm.exe2
ID zprávy: ntvdm.exe3
Úplný název chybujícího balíčku: ntvdm.exe4
ID aplikace související s chybujícím balíčkem: ntvdm.exe5

Error: (07/16/2016 09:48:06 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: ntvdm.exe, verze: 10.0.10586.0, časové razítko: 0x5632d9ea
Název chybujícího modulu: unknown, verze: 0.0.0.0, časové razítko: 0x00000000
Kód výjimky: 0xc0000005
Posun chyby: 0x0000ffff
ID chybujícího procesu: 0x1728
Čas spuštění chybující aplikace: 0xntvdm.exe0
Cesta k chybující aplikaci: ntvdm.exe1
Cesta k chybujícímu modulu: ntvdm.exe2
ID zprávy: ntvdm.exe3
Úplný název chybujícího balíčku: ntvdm.exe4
ID aplikace související s chybujícím balíčkem: ntvdm.exe5

Error: (07/16/2016 09:33:49 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: ntvdm.exe, verze: 10.0.10586.0, časové razítko: 0x5632d9ea
Název chybujícího modulu: unknown, verze: 0.0.0.0, časové razítko: 0x00000000
Kód výjimky: 0xc0000005
Posun chyby: 0x00000000
ID chybujícího procesu: 0x1c94
Čas spuštění chybující aplikace: 0xntvdm.exe0
Cesta k chybující aplikaci: ntvdm.exe1
Cesta k chybujícímu modulu: ntvdm.exe2
ID zprávy: ntvdm.exe3
Úplný název chybujícího balíčku: ntvdm.exe4
ID aplikace související s chybujícím balíčkem: ntvdm.exe5

Error: (07/16/2016 09:33:49 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: ntvdm.exe, verze: 10.0.10586.0, časové razítko: 0x5632d9ea
Název chybujícího modulu: unknown, verze: 0.0.0.0, časové razítko: 0x00000000
Kód výjimky: 0xc0000005
Posun chyby: 0x00000000
ID chybujícího procesu: 0x14c8
Čas spuštění chybující aplikace: 0xntvdm.exe0
Cesta k chybující aplikaci: ntvdm.exe1
Cesta k chybujícímu modulu: ntvdm.exe2
ID zprávy: ntvdm.exe3
Úplný název chybujícího balíčku: ntvdm.exe4
ID aplikace související s chybujícím balíčkem: ntvdm.exe5

Error: (07/16/2016 01:44:13 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: ntvdm.exe, verze: 10.0.10586.0, časové razítko: 0x5632d9ea
Název chybujícího modulu: unknown, verze: 0.0.0.0, časové razítko: 0x00000000
Kód výjimky: 0xc0000005
Posun chyby: 0x00000000
ID chybujícího procesu: 0xfcc
Čas spuštění chybující aplikace: 0xntvdm.exe0
Cesta k chybující aplikaci: ntvdm.exe1
Cesta k chybujícímu modulu: ntvdm.exe2
ID zprávy: ntvdm.exe3
Úplný název chybujícího balíčku: ntvdm.exe4
ID aplikace související s chybujícím balíčkem: ntvdm.exe5

Error: (07/16/2016 01:44:08 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: ntvdm.exe, verze: 10.0.10586.0, časové razítko: 0x5632d9ea
Název chybujícího modulu: unknown, verze: 0.0.0.0, časové razítko: 0x00000000
Kód výjimky: 0xc0000005
Posun chyby: 0x00000000
ID chybujícího procesu: 0x1c38
Čas spuštění chybující aplikace: 0xntvdm.exe0
Cesta k chybující aplikaci: ntvdm.exe1
Cesta k chybujícímu modulu: ntvdm.exe2
ID zprávy: ntvdm.exe3
Úplný název chybujícího balíčku: ntvdm.exe4
ID aplikace související s chybujícím balíčkem: ntvdm.exe5

Error: (07/16/2016 01:43:52 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: ntvdm.exe, verze: 10.0.10586.0, časové razítko: 0x5632d9ea
Název chybujícího modulu: unknown, verze: 0.0.0.0, časové razítko: 0x00000000
Kód výjimky: 0xc0000005
Posun chyby: 0x00000000
ID chybujícího procesu: 0x1080
Čas spuštění chybující aplikace: 0xntvdm.exe0
Cesta k chybující aplikaci: ntvdm.exe1
Cesta k chybujícímu modulu: ntvdm.exe2
ID zprávy: ntvdm.exe3
Úplný název chybujícího balíčku: ntvdm.exe4
ID aplikace související s chybujícím balíčkem: ntvdm.exe5

Error: (07/16/2016 01:43:52 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: ntvdm.exe, verze: 10.0.10586.0, časové razítko: 0x5632d9ea
Název chybujícího modulu: unknown, verze: 0.0.0.0, časové razítko: 0x00000000
Kód výjimky: 0xc0000005
Posun chyby: 0x00000000
ID chybujícího procesu: 0x1480
Čas spuštění chybující aplikace: 0xntvdm.exe0
Cesta k chybující aplikaci: ntvdm.exe1
Cesta k chybujícímu modulu: ntvdm.exe2
ID zprávy: ntvdm.exe3
Úplný název chybujícího balíčku: ntvdm.exe4
ID aplikace související s chybujícím balíčkem: ntvdm.exe5

Error: (07/16/2016 01:43:52 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: ntvdm.exe, verze: 10.0.10586.0, časové razítko: 0x5632d9ea
Název chybujícího modulu: unknown, verze: 0.0.0.0, časové razítko: 0x00000000
Kód výjimky: 0xc0000005
Posun chyby: 0x00000000
ID chybujícího procesu: 0x125c
Čas spuštění chybující aplikace: 0xntvdm.exe0
Cesta k chybující aplikaci: ntvdm.exe1
Cesta k chybujícímu modulu: ntvdm.exe2
ID zprávy: ntvdm.exe3
Úplný název chybujícího balíčku: ntvdm.exe4
ID aplikace související s chybujícím balíčkem: ntvdm.exe5

Error: (07/16/2016 01:43:52 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: ntvdm.exe, verze: 10.0.10586.0, časové razítko: 0x5632d9ea
Název chybujícího modulu: unknown, verze: 0.0.0.0, časové razítko: 0x00000000
Kód výjimky: 0xc0000005
Posun chyby: 0x00000000
ID chybujícího procesu: 0x1654
Čas spuštění chybující aplikace: 0xntvdm.exe0
Cesta k chybující aplikaci: ntvdm.exe1
Cesta k chybujícímu modulu: ntvdm.exe2
ID zprávy: ntvdm.exe3
Úplný název chybujícího balíčku: ntvdm.exe4
ID aplikace související s chybujícím balíčkem: ntvdm.exe5


System errors:
=============
Error: (07/16/2016 11:09:15 PM) (Source: DCOM) (EventID: 10010) (User: home-PC)
Description: {F32D97DF-E3E5-4CB9-9E3E-0EB5B4E49801}

Error: (07/16/2016 11:09:14 PM) (Source: DCOM) (EventID: 10010) (User: home-PC)
Description: {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5}

Error: (07/16/2016 11:08:15 PM) (Source: DCOM) (EventID: 10010) (User: home-PC)
Description: {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5}

Error: (07/16/2016 11:06:40 PM) (Source: DCOM) (EventID: 10010) (User: NT AUTHORITY)
Description: {7006698D-2974-4091-A424-85DD0B909E23}

Error: (07/16/2016 11:06:27 PM) (Source: DCOM) (EventID: 10010) (User: NT AUTHORITY)
Description: {E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}

Error: (07/16/2016 11:06:27 PM) (Source: DCOM) (EventID: 10010) (User: NT AUTHORITY)
Description: {E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}

Error: (07/16/2016 10:59:09 PM) (Source: DCOM) (EventID: 10010) (User: NT AUTHORITY)
Description: {E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}

Error: (07/16/2016 10:57:39 PM) (Source: DCOM) (EventID: 10010) (User: NT AUTHORITY)
Description: {E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}

Error: (07/16/2016 10:55:39 PM) (Source: DCOM) (EventID: 10010) (User: NT AUTHORITY)
Description: {E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}

Error: (07/16/2016 10:54:51 PM) (Source: DCOM) (EventID: 10010) (User: home-PC)
Description: {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5}


CodeIntegrity:
===================================
Date: 2016-07-16 13:40:28.317
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.

Date: 2016-07-16 07:17:52.322
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume2\Windows\assembly\GAC\Microsoft.StdFormat\7.0.3300.0__b03f5f7f11d50a3a\Microsoft.StdFormat.dll that did not meet the Microsoft signing level requirements.

Date: 2016-07-16 07:17:52.288
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume2\Windows\assembly\GAC\ADODB\7.0.3300.0__b03f5f7f11d50a3a\ADODB.dll that did not meet the Microsoft signing level requirements.

Date: 2016-07-16 07:17:52.222
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume2\Windows\assembly\GAC\MSDATASRC\7.0.3300.0__b03f5f7f11d50a3a\MSDATASRC.dll that did not meet the Microsoft signing level requirements.

Date: 2016-07-16 07:17:52.149
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume2\Windows\assembly\GAC\Microsoft.StdFormat\7.0.3300.0__b03f5f7f11d50a3a\Microsoft.StdFormat.dll that did not meet the Microsoft signing level requirements.

Date: 2016-07-16 07:17:52.096
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume2\Windows\assembly\GAC\ADODB\7.0.3300.0__b03f5f7f11d50a3a\ADODB.dll that did not meet the Microsoft signing level requirements.

Date: 2016-07-16 07:17:52.023
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume2\Windows\assembly\GAC\MSDATASRC\7.0.3300.0__b03f5f7f11d50a3a\MSDATASRC.dll that did not meet the Microsoft signing level requirements.

Date: 2016-07-16 07:17:50.609
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume2\Windows\assembly\GAC\stdole\7.0.3300.0__b03f5f7f11d50a3a\stdole.dll that did not meet the Microsoft signing level requirements.

Date: 2016-07-16 07:17:50.281
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume2\Windows\assembly\GAC\stdole\7.0.3300.0__b03f5f7f11d50a3a\stdole.dll that did not meet the Microsoft signing level requirements.

Date: 2016-07-15 22:59:15.150
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.


==================== Memory info ===========================

Processor: Intel(R) Core(TM)2 Duo CPU E7500 @ 2.93GHz
Percentage of memory in use: 45%
Total physical RAM: 3547.59 MB
Available physical RAM: 1918.15 MB
Total Virtual: 7131.59 MB
Available Virtual: 5476.82 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:80.98 GB) (Free:38.74 GB) NTFS
Drive d: (Disk_D) (Fixed) (Total:151.37 GB) (Free:96.41 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 232.9 GB) (Disk ID: 96982FD6)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=81 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=450 MB) - (Type=27)
Partition 4: (Not Active) - (Size=151.4 GB) - (Type=07 NTFS)

==================== End of Addition.txt ============================

Re: The NTVDM CPU has encountered an illegal instruction

Napsal: 16 črc 2016 22:22
od Radek.Juracak
Omlouvám se, možná to není dobře...LAUNCHER NEJDE STÁHNOUT, PRÝ MŮŽE JÍT O VIR...

Re: The NTVDM CPU has encountered an illegal instruction

Napsal: 17 črc 2016 10:13
od Rudy
Vir to není. Pokud vám to hlásí antivir, vypněte ho, pokud prohlížeč, stáhněte přes IE.

Re: The NTVDM CPU has encountered an illegal instruction

Napsal: 17 črc 2016 11:36
od Radek.Juracak
Log připravím, jen chviličku. Děkuji moc

Re: The NTVDM CPU has encountered an illegal instruction

Napsal: 17 črc 2016 11:49
od Radek.Juracak
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 17-07-2016 01
Ran by home (administrator) on HOME-PC (17-07-2016 12:42:03)
Running from C:\Users\home\Desktop
Loaded Profiles: home (Available Profiles: home & DefaultAppPool)
Platform: Microsoft Windows 10 Pro Version 1511 (X86) Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Malwarebytes) C:\Program Files\Malwarebytes Anti-Malware\mbamscheduler.exe
(Malwarebytes) C:\Program Files\Malwarebytes Anti-Malware\mbamservice.exe
(Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
(Hewlett-Packard Company) C:\Program Files\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe
(Nero AG) C:\Program Files\Nero\Update\NASvc.exe
(Malwarebytes) C:\Program Files\Malwarebytes Anti-Malware\mbam.exe
(VM305SNAP) C:\Windows\VM305_STI.EXE
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Hewlett-Packard) C:\Program Files\HP\HP Software Update\hpwuschd2.exe
(Spotify Ltd) C:\Users\home\AppData\Roaming\Spotify\SpotifyWebHelper.exe
(Spotify Ltd) C:\Users\home\AppData\Roaming\Spotify\Spotify.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Microsoft Corporation) C:\Windows\System32\wbem\unsecapp.exe
(Spotify Ltd) C:\Users\home\AppData\Roaming\Spotify\SpotifyCrashService.exe
(Spotify Ltd) C:\Users\home\AppData\Roaming\Spotify\Spotify.exe
(Spotify Ltd) C:\Users\home\AppData\Roaming\Spotify\Spotify.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
() C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkypeHost.exe
(Ghisler Software GmbH) C:\Program Files\totalcmd\TOTALCMD.EXE
(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe
(Microsoft Corporation) C:\Windows\System32\browser_broker.exe
(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe
(forum.viry.cz) C:\Users\home\Desktop\FRST-OlderVersion\FRSTLauncher.exe


==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [BigDog305] => C:\WINDOWS\VM305_STI.EXE [57344 2007-04-09] (VM305SNAP)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [8900328 2016-07-15] (AVAST Software)
HKLM\...\Run: [BCSSync] => C:\Program Files\Microsoft Office\Office14\BCSSync.exe [89184 2012-11-05] (Microsoft Corporation)
HKLM\...\Run: [HP Software Update] => C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe [96056 2013-05-30] (Hewlett-Packard)
HKU\S-1-5-21-841674414-3561358831-3126363696-1000\...\Run: [Spotify Web Helper] => C:\Users\home\AppData\Roaming\Spotify\SpotifyWebHelper.exe [1554032 2016-07-10] (Spotify Ltd)
HKU\S-1-5-21-841674414-3561358831-3126363696-1000\...\Run: [Spotify] => C:\Users\home\AppData\Roaming\Spotify\Spotify.exe [6913648 2016-07-10] (Spotify Ltd)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2016-07-15] (AVAST Software)
Startup: C:\Users\home\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Sledovat výstrahy inkoustu - HP Deskjet 1510 series.lnk [2016-07-17]
ShortcutTarget: Sledovat výstrahy inkoustu - HP Deskjet 1510 series.lnk -> C:\Program Files\HP\HP Deskjet 1510 series\Bin\HPStatusBL.dll (Hewlett-Packard Co.)
GroupPolicyScripts: Restriction <======= ATTENTION

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{5ab7dbbb-987f-4a52-b46c-74af69f360fd}: [DhcpNameServer] 192.168.1.1

Internet Explorer:
==================
BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL [2013-12-19] (Microsoft Corporation)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation)
Toolbar: HKU\S-1-5-21-841674414-3561358831-3126363696-1000 -> No Name - {EE2AC4E5-B0B0-4EC6-88A9-BCA1A32AB107} - No File

FireFox:
========
FF ProfilePath: C:\Users\home\AppData\Roaming\Mozilla\Firefox\Profiles\gz1bebt5.default
FF Homepage: hxxps://www.seznam.cz/
FF NetworkProxy: "type", 0
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF32_22_0_0_209.dll [2016-07-12] ()
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~1\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation)
FF Plugin: @videolan.org/vlc,version=2.2.1 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2016-06-30] (Adobe Systems Inc.)
FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2016-07-15]
FF HKLM\...\Firefox\Extensions: [sp@avast.com] - C:\Program Files\AVAST Software\Avast\SafePrice\FF
FF Extension: Avast SafePrice - C:\Program Files\AVAST Software\Avast\SafePrice\FF [2016-07-15]

Chrome:
=======
CHR HKLM\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2016-03-19]

==================== Services (Whitelisted) ========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [197128 2016-07-15] (AVAST Software)
R2 HPSupportSolutionsFrameworkService; C:\Program Files\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe [28552 2016-04-26] (Hewlett-Packard Company)
R2 MBAMScheduler; C:\Program Files\Malwarebytes Anti-Malware\mbamscheduler.exe [1514464 2016-03-10] (Malwarebytes)
R2 MBAMService; C:\Program Files\Malwarebytes Anti-Malware\mbamservice.exe [1136608 2016-03-10] (Malwarebytes)
R2 NAUpdate; C:\Program Files\Nero\Update\NASvc.exe [503080 2010-05-04] (Nero AG)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [280376 2015-10-30] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23264 2016-07-01] (Microsoft Corporation)

===================== Drivers (Whitelisted) ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 aswHwid; C:\WINDOWS\system32\drivers\aswHwid.sys [34008 2016-07-15] (AVAST Software)
R1 aswKbd; C:\WINDOWS\system32\drivers\aswKbd.sys [35096 2016-07-15] (AVAST Software)
R2 aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [91680 2016-07-15] (AVAST Software)
R1 aswRdr; C:\WINDOWS\system32\drivers\aswRdr2.sys [91232 2016-07-15] (AVAST Software)
R0 aswRvrt; C:\WINDOWS\system32\Drivers\aswRvrt.sys [60424 2016-07-15] (AVAST Software)
R1 aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [816304 2016-07-15] (AVAST Software)
R1 aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [438296 2016-07-15] (AVAST Software)
S2 aswStm; C:\WINDOWS\system32\drivers\aswStm.sys [118152 2016-07-15] (AVAST Software)
R0 aswVmm; C:\WINDOWS\system32\Drivers\aswVmm.sys [222056 2016-07-15] (AVAST Software)
R3 MBAMProtector; C:\WINDOWS\system32\drivers\mbam.sys [24448 2016-03-10] (Malwarebytes)
R3 MBAMSwissArmy; C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys [170200 2016-07-17] (Malwarebytes)
R3 MBAMWebAccessControl; C:\WINDOWS\system32\drivers\mwac.sys [53120 2016-03-10] (Malwarebytes Corporation)
S3 vvftav; C:\WINDOWS\system32\drivers\vvftav.sys [474368 2007-06-23] (Vimicro Corporation)
S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [37400 2015-10-30] (Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [246104 2015-10-30] (Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [98648 2015-10-30] (Microsoft Corporation)
S3 ZSMC0305; C:\WINDOWS\System32\Drivers\usbVM305.sys [1466624 2007-03-08] (Vimicro Corporation)
U3 idsvc; no ImagePath
U3 wpcsvc; no ImagePath

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2016-07-17 12:42 - 2016-07-17 12:42 - 00009363 _____ C:\Users\home\Desktop\FRST.txt
2016-07-17 12:40 - 2016-07-17 12:40 - 00000000 ____D C:\Users\home\Desktop\FRST-OlderVersion
2016-07-16 23:06 - 2016-07-17 12:42 - 00000000 ____D C:\FRST
2016-07-16 22:55 - 2016-07-16 22:55 - 00000017 _____ C:\Users\home\AppData\Local\resmon.resmoncfg
2016-07-16 22:50 - 2016-07-17 12:40 - 01741824 _____ (Farbar) C:\Users\home\Desktop\FRST.exe
2016-07-16 21:40 - 2016-07-16 21:43 - 00000000 ____D C:\AdwCleaner
2016-07-16 21:36 - 2016-07-16 21:37 - 03712064 _____ C:\Users\home\Desktop\adwcleaner_5.201.exe
2016-07-16 13:30 - 2016-07-17 12:30 - 00170200 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys
2016-07-16 13:30 - 2016-07-16 13:30 - 00001129 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2016-07-16 13:30 - 2016-07-16 13:30 - 00000000 ____D C:\ProgramData\Malwarebytes
2016-07-16 13:30 - 2016-07-16 13:30 - 00000000 ____D C:\Program Files\Malwarebytes Anti-Malware
2016-07-16 13:30 - 2016-03-10 14:09 - 00053120 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mwac.sys
2016-07-16 13:30 - 2016-03-10 14:08 - 00126336 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamchameleon.sys
2016-07-16 13:30 - 2016-03-10 14:08 - 00024448 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbam.sys
2016-07-16 00:18 - 2016-07-16 23:04 - 00000000 ____D C:\Program Files\trend micro
2016-07-16 00:18 - 2016-07-16 00:18 - 00000000 ____D C:\rsit
2016-07-15 23:33 - 2016-07-15 23:33 - 00002088 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast Free Antivirus.lnk
2016-07-15 23:32 - 2016-07-15 23:32 - 00921280 _____ (Microsoft Corporation) C:\WINDOWS\ucrtbase.dll
2016-07-15 23:32 - 2016-07-15 23:32 - 00319248 _____ (AVAST Software) C:\WINDOWS\system32\aswBoot.exe
2016-07-15 23:32 - 2016-07-15 23:32 - 00053208 _____ (AVAST Software) C:\WINDOWS\avastSS.scr
2016-07-15 22:56 - 2016-07-15 22:56 - 00000000 ____D C:\Program Files\CMAK
2016-07-13 13:33 - 2016-07-01 06:39 - 05793632 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2016-07-13 13:33 - 2016-07-01 06:35 - 00792328 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcrt4.dll
2016-07-13 13:33 - 2016-07-01 06:23 - 01334680 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpmde.dll
2016-07-13 13:33 - 2016-07-01 06:21 - 02921880 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2016-07-13 13:33 - 2016-07-01 06:21 - 00957608 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll
2016-07-13 13:33 - 2016-07-01 06:21 - 00703840 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWAHost.exe
2016-07-13 13:33 - 2016-07-01 06:21 - 00260448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pci.sys
2016-07-13 13:33 - 2016-07-01 06:20 - 01300016 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcMon.exe
2016-07-13 13:33 - 2016-07-01 06:19 - 05598832 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe
2016-07-13 13:33 - 2016-07-01 06:19 - 01337680 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll
2016-07-13 13:33 - 2016-07-01 06:19 - 00633192 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppwinob.dll
2016-07-13 13:33 - 2016-07-01 06:18 - 00995296 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipUp.exe
2016-07-13 13:33 - 2016-07-01 06:18 - 00505136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2016-07-13 13:33 - 2016-07-01 06:18 - 00139616 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys
2016-07-13 13:33 - 2016-07-01 06:17 - 01536600 _____ (Microsoft Corporation) C:\WINDOWS\system32\crypt32.dll
2016-07-13 13:33 - 2016-07-01 06:12 - 02186864 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll
2016-07-13 13:33 - 2016-07-01 06:12 - 01866104 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d9.dll
2016-07-13 13:33 - 2016-07-01 06:11 - 01712480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2016-07-13 13:33 - 2016-07-01 06:11 - 01522160 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecs.dll
2016-07-13 13:33 - 2016-07-01 06:11 - 00521152 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll
2016-07-13 13:33 - 2016-07-01 06:11 - 00484192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2016-07-13 13:33 - 2016-07-01 06:11 - 00336224 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2016-07-13 13:33 - 2016-07-01 06:10 - 00727752 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcomp.dll
2016-07-13 13:33 - 2016-07-01 05:45 - 00088576 _____ (Microsoft Corporation) C:\WINDOWS\system32\olepro32.dll
2016-07-13 13:33 - 2016-07-01 05:41 - 00050176 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosHostClient.dll
2016-07-13 13:33 - 2016-07-01 05:39 - 13018112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2016-07-13 13:33 - 2016-07-01 05:38 - 00145920 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe
2016-07-13 13:33 - 2016-07-01 05:37 - 00059904 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosStorage.dll
2016-07-13 13:33 - 2016-07-01 05:35 - 00054784 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshost.dll
2016-07-13 13:33 - 2016-07-01 05:35 - 00049152 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotificationUx.exe
2016-07-13 13:33 - 2016-07-01 05:33 - 00203776 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshostcore.dll
2016-07-13 13:33 - 2016-07-01 05:32 - 00157696 _____ (Microsoft Corporation) C:\WINDOWS\system32\SimCfg.dll
2016-07-13 13:33 - 2016-07-01 05:31 - 00424448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\nwifi.sys
2016-07-13 13:33 - 2016-07-01 05:31 - 00129024 _____ (Microsoft Corporation) C:\WINDOWS\system32\SimAuth.dll
2016-07-13 13:33 - 2016-07-01 05:30 - 00123392 _____ (Microsoft Corporation) C:\WINDOWS\system32\ProximityCommon.dll
2016-07-13 13:33 - 2016-07-01 05:29 - 00569856 _____ (Microsoft Corporation) C:\WINDOWS\system32\qdvd.dll
2016-07-13 13:33 - 2016-07-01 05:29 - 00349696 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapConfiguration.dll
2016-07-13 13:33 - 2016-07-01 05:28 - 00439296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.UX.EapRequestHandler.dll
2016-07-13 13:33 - 2016-07-01 05:27 - 01764864 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnidui.dll
2016-07-13 13:33 - 2016-07-01 05:27 - 00385024 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanconn.dll
2016-07-13 13:33 - 2016-07-01 05:27 - 00284160 _____ (Microsoft Corporation) C:\WINDOWS\system32\eappcfg.dll
2016-07-13 13:33 - 2016-07-01 05:26 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\system32\JpMapControl.dll
2016-07-13 13:33 - 2016-07-01 05:26 - 00612352 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsStore.dll
2016-07-13 13:33 - 2016-07-01 05:25 - 01228800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Globalization.dll
2016-07-13 13:33 - 2016-07-01 05:25 - 01152000 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2016-07-13 13:33 - 2016-07-01 05:25 - 00711680 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapControlCore.dll
2016-07-13 13:33 - 2016-07-01 05:25 - 00689152 _____ (Microsoft Corporation) C:\WINDOWS\system32\modernexecserver.dll
2016-07-13 13:33 - 2016-07-01 05:24 - 01467392 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll
2016-07-13 13:33 - 2016-07-01 05:24 - 01448960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Printing.3D.dll
2016-07-13 13:33 - 2016-07-01 05:24 - 00673280 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadtb.dll
2016-07-13 13:33 - 2016-07-01 05:24 - 00468992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Printing.dll
2016-07-13 13:33 - 2016-07-01 05:23 - 03695104 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_47.dll
2016-07-13 13:33 - 2016-07-01 05:23 - 01166848 _____ (Microsoft Corporation) C:\WINDOWS\system32\werconcpl.dll
2016-07-13 13:33 - 2016-07-01 05:22 - 06295552 _____ (Microsoft Corporation) C:\WINDOWS\system32\mos.dll
2016-07-13 13:33 - 2016-07-01 05:22 - 00639488 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBroker.dll
2016-07-13 13:33 - 2016-07-01 05:19 - 01987072 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWrite.dll
2016-07-13 13:33 - 2016-07-01 05:18 - 05205504 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingMaps.dll
2016-07-13 13:33 - 2016-07-01 05:18 - 02973696 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2016-07-13 13:33 - 2016-07-01 05:18 - 01448960 _____ (Microsoft Corporation) C:\WINDOWS\system32\dui70.dll
2016-07-13 13:33 - 2016-07-01 05:16 - 01896960 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2016-07-13 13:33 - 2016-07-01 05:16 - 01635840 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcWebSync.dll
2016-07-13 13:33 - 2016-07-01 05:15 - 03459584 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIRibbon.dll
2016-07-13 13:33 - 2016-07-01 05:15 - 02679808 _____ (Microsoft Corporation) C:\WINDOWS\system32\netshell.dll
2016-07-13 13:33 - 2016-07-01 05:15 - 02604032 _____ (Microsoft Corporation) C:\WINDOWS\system32\CertEnroll.dll
2016-07-13 13:33 - 2016-07-01 05:15 - 02501632 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2016-07-13 13:33 - 2016-07-01 05:15 - 02217984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Wpc.dll
2016-07-13 13:33 - 2016-07-01 05:15 - 01733632 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2016-07-13 13:33 - 2016-07-01 05:15 - 01626112 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2016-07-13 13:33 - 2016-07-01 05:14 - 04759040 _____ (Microsoft Corporation) C:\WINDOWS\system32\d2d1.dll
2016-07-13 13:33 - 2016-07-01 05:14 - 02680320 _____ (Microsoft Corporation) C:\WINDOWS\system32\msftedit.dll
2016-07-13 13:33 - 2016-07-01 05:14 - 01498624 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2016-07-13 13:33 - 2016-07-01 05:14 - 00705024 _____ (Microsoft Corporation) C:\WINDOWS\system32\samsrv.dll
2016-07-13 13:33 - 2016-07-01 05:12 - 02179584 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepository.dll
2016-07-13 13:32 - 2016-07-01 07:14 - 01303744 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll
2016-07-13 13:32 - 2016-07-01 07:14 - 01020096 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll
2016-07-13 13:32 - 2016-07-01 07:14 - 00484544 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll
2016-07-13 13:32 - 2016-07-01 07:14 - 00476864 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll
2016-07-13 13:32 - 2016-07-01 07:14 - 00266944 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll
2016-07-13 13:32 - 2016-07-01 07:14 - 00227008 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCensus.exe
2016-07-13 13:32 - 2016-07-01 07:14 - 00081088 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll
2016-07-13 13:32 - 2016-07-01 07:14 - 00045760 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompatTelRunner.exe
2016-07-13 13:32 - 2016-07-01 06:38 - 01862008 _____ C:\WINDOWS\system32\CoreUIComponents.dll
2016-07-13 13:32 - 2016-07-01 06:32 - 02885680 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSService.dll
2016-07-13 13:32 - 2016-07-01 06:31 - 00023776 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
2016-07-13 13:32 - 2016-07-01 06:23 - 01349640 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmde.dll
2016-07-13 13:32 - 2016-07-01 06:23 - 01118208 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfnetsrc.dll
2016-07-13 13:32 - 2016-07-01 06:23 - 00925576 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll
2016-07-13 13:32 - 2016-07-01 06:23 - 00709176 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll
2016-07-13 13:32 - 2016-07-01 06:23 - 00511320 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf.dll
2016-07-13 13:32 - 2016-07-01 06:20 - 21123320 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2016-07-13 13:32 - 2016-07-01 06:20 - 00613120 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Shell.Broker.dll
2016-07-13 13:32 - 2016-07-01 06:19 - 05240960 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2016-07-13 13:32 - 2016-07-01 06:19 - 04074160 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2016-07-13 13:32 - 2016-07-01 06:19 - 01355336 _____ (Microsoft Corporation) C:\WINDOWS\system32\propsys.dll
2016-07-13 13:32 - 2016-07-01 06:19 - 00569752 _____ (Microsoft Corporation) C:\WINDOWS\system32\SHCore.dll
2016-07-13 13:32 - 2016-07-01 06:18 - 00510880 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipSVC.dll
2016-07-13 13:32 - 2016-07-01 06:18 - 00064584 _____ (Microsoft Corporation) C:\WINDOWS\system32\Clipc.dll
2016-07-13 13:32 - 2016-07-01 05:45 - 00074752 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsCSP.dll
2016-07-13 13:32 - 2016-07-01 05:41 - 00572928 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcWebFilter.dll
2016-07-13 13:32 - 2016-07-01 05:40 - 00034304 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Speech.Pal.dll
2016-07-13 13:32 - 2016-07-01 05:39 - 00049152 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdpreference.exe
2016-07-13 13:32 - 2016-07-01 05:38 - 00036352 _____ (Microsoft Corporation) C:\WINDOWS\system32\musdialoghandlers.dll
2016-07-13 13:32 - 2016-07-01 05:38 - 00023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\mapsupdatetask.dll
2016-07-13 13:32 - 2016-07-01 05:37 - 00584704 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIRibbonRes.dll
2016-07-13 13:32 - 2016-07-01 05:37 - 00055808 _____ (Microsoft Corporation) C:\WINDOWS\system32\eappprxy.dll
2016-07-13 13:32 - 2016-07-01 05:36 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsBtSvc.dll
2016-07-13 13:32 - 2016-07-01 05:36 - 00048640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryClient.dll
2016-07-13 13:32 - 2016-07-01 05:36 - 00048128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryBroker.dll
2016-07-13 13:32 - 2016-07-01 05:35 - 00066560 _____ (Microsoft Corporation) C:\WINDOWS\system32\tzautoupdate.dll
2016-07-13 13:32 - 2016-07-01 05:34 - 09919488 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2016-07-13 13:32 - 2016-07-01 05:34 - 00205312 _____ (Microsoft Corporation) C:\WINDOWS\system32\oemlicense.dll
2016-07-13 13:32 - 2016-07-01 05:34 - 00180736 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdd.dll
2016-07-13 13:32 - 2016-07-01 05:34 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppCapture.dll
2016-07-13 13:32 - 2016-07-01 05:34 - 00040960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Shell.Search.UriHandler.dll
2016-07-13 13:32 - 2016-07-01 05:33 - 00326144 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll
2016-07-13 13:32 - 2016-07-01 05:33 - 00309760 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntprint.dll
2016-07-13 13:32 - 2016-07-01 05:33 - 00267776 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocore.dll
2016-07-13 13:32 - 2016-07-01 05:32 - 00183808 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Maps.dll
2016-07-13 13:32 - 2016-07-01 05:32 - 00138240 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetpp.dll
2016-07-13 13:32 - 2016-07-01 05:32 - 00096256 _____ (Microsoft Corporation) C:\WINDOWS\system32\eappgnui.dll
2016-07-13 13:32 - 2016-07-01 05:32 - 00092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\IdCtrls.dll
2016-07-13 13:32 - 2016-07-01 05:31 - 19347968 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2016-07-13 13:32 - 2016-07-01 05:31 - 06529024 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanmm.dll
2016-07-13 13:32 - 2016-07-01 05:31 - 00542720 _____ (Microsoft Corporation) C:\WINDOWS\system32\msra.exe
2016-07-13 13:32 - 2016-07-01 05:31 - 00290304 _____ (Microsoft Corporation) C:\WINDOWS\system32\WmpDui.dll
2016-07-13 13:32 - 2016-07-01 05:31 - 00260096 _____ (Microsoft Corporation) C:\WINDOWS\system32\apprepsync.dll
2016-07-13 13:32 - 2016-07-01 05:31 - 00238592 _____ (Microsoft Corporation) C:\WINDOWS\system32\eapphost.dll
2016-07-13 13:32 - 2016-07-01 05:31 - 00164352 _____ (Microsoft Corporation) C:\WINDOWS\system32\winsrv.dll
2016-07-13 13:32 - 2016-07-01 05:30 - 00339968 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMPhoto.dll
2016-07-13 13:32 - 2016-07-01 05:30 - 00334336 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvr.exe
2016-07-13 13:32 - 2016-07-01 05:30 - 00292864 _____ (Microsoft Corporation) C:\WINDOWS\system32\dot3ui.dll
2016-07-13 13:32 - 2016-07-01 05:30 - 00261632 _____ (Microsoft Corporation) C:\WINDOWS\system32\EnterpriseAppMgmtSvc.dll
2016-07-13 13:32 - 2016-07-01 05:30 - 00248320 _____ (Microsoft Corporation) C:\WINDOWS\system32\eapp3hst.dll
2016-07-13 13:32 - 2016-07-01 05:30 - 00246784 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadcloudap.dll
2016-07-13 13:32 - 2016-07-01 05:30 - 00207872 _____ (Microsoft Corporation) C:\WINDOWS\system32\provengine.dll
2016-07-13 13:32 - 2016-07-01 05:30 - 00190464 _____ (Microsoft Corporation) C:\WINDOWS\system32\apprepapi.dll
2016-07-13 13:32 - 2016-07-01 05:30 - 00151552 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSClient.dll
2016-07-13 13:32 - 2016-07-01 05:30 - 00140800 _____ (Microsoft Corporation) C:\WINDOWS\system32\shutdownux.dll
2016-07-13 13:32 - 2016-07-01 05:29 - 00541184 _____ (Microsoft Corporation) C:\WINDOWS\system32\GamePanel.exe
2016-07-13 13:32 - 2016-07-01 05:29 - 00395776 _____ (Microsoft Corporation) C:\WINDOWS\system32\WlanMediaManager.dll
2016-07-13 13:32 - 2016-07-01 05:29 - 00315904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.BlockedShutdown.dll
2016-07-13 13:32 - 2016-07-01 05:29 - 00199680 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdpsvc.dll
2016-07-13 13:32 - 2016-07-01 05:28 - 00578048 _____ (Microsoft Corporation) C:\WINDOWS\system32\wiaaut.dll
2016-07-13 13:32 - 2016-07-01 05:28 - 00282624 _____ (Microsoft Corporation) C:\WINDOWS\system32\msieftp.dll
2016-07-13 13:32 - 2016-07-01 05:28 - 00238592 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecsExt.dll
2016-07-13 13:32 - 2016-07-01 05:28 - 00230912 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXTaskFactory.dll
2016-07-13 13:32 - 2016-07-01 05:27 - 01226752 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcnwiz.dll
2016-07-13 13:32 - 2016-07-01 05:27 - 00846336 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasgcw.dll
2016-07-13 13:32 - 2016-07-01 05:27 - 00496128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.Web.Core.dll
2016-07-13 13:32 - 2016-07-01 05:27 - 00373248 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.UserAccountsHandlers.dll
2016-07-13 13:32 - 2016-07-01 05:27 - 00330752 _____ (Microsoft Corporation) C:\WINDOWS\system32\winipcfile.dll
2016-07-13 13:32 - 2016-07-01 05:27 - 00253440 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneBackupHandler.dll
2016-07-13 13:32 - 2016-07-01 05:27 - 00250880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2016-07-13 13:32 - 2016-07-01 05:26 - 18674176 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2016-07-13 13:32 - 2016-07-01 05:26 - 01746944 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Bluetooth.dll
2016-07-13 13:32 - 2016-07-01 05:26 - 00779264 _____ (Microsoft Corporation) C:\WINDOWS\system32\sbe.dll
2016-07-13 13:32 - 2016-07-01 05:26 - 00502272 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevicePairing.dll
2016-07-13 13:32 - 2016-07-01 05:26 - 00417280 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Cortana.Desktop.dll
2016-07-13 13:32 - 2016-07-01 05:26 - 00413696 _____ (Microsoft Corporation) C:\WINDOWS\system32\WLanConn.dll
2016-07-13 13:32 - 2016-07-01 05:26 - 00372224 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppBroker.dll
2016-07-13 13:32 - 2016-07-01 05:26 - 00153088 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSSync.dll
2016-07-13 13:32 - 2016-07-01 05:25 - 01508352 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmsipc.dll
2016-07-13 13:32 - 2016-07-01 05:25 - 01035776 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplicationFrame.dll
2016-07-13 13:32 - 2016-07-01 05:25 - 00826368 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2016-07-13 13:32 - 2016-07-01 05:25 - 00784896 _____ (Microsoft Corporation) C:\WINDOWS\system32\NMAA.dll
2016-07-13 13:32 - 2016-07-01 05:25 - 00740352 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedStartModel.dll
2016-07-13 13:32 - 2016-07-01 05:25 - 00738816 _____ (Microsoft Corporation) C:\WINDOWS\system32\appwiz.cpl
2016-07-13 13:32 - 2016-07-01 05:25 - 00687616 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
2016-07-13 13:32 - 2016-07-01 05:25 - 00502784 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2016-07-13 13:32 - 2016-07-01 05:25 - 00482816 _____ (Microsoft Corporation) C:\WINDOWS\system32\duser.dll
2016-07-13 13:32 - 2016-07-01 05:25 - 00477184 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieui.dll
2016-07-13 13:32 - 2016-07-01 05:24 - 12586496 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmp.dll
2016-07-13 13:32 - 2016-07-01 05:24 - 04404736 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Search.dll
2016-07-13 13:32 - 2016-07-01 05:24 - 01588224 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll
2016-07-13 13:32 - 2016-07-01 05:24 - 01484800 _____ (Microsoft Corporation) C:\WINDOWS\system32\PrintDialogs3D.dll
2016-07-13 13:32 - 2016-07-01 05:24 - 00601600 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32spl.dll
2016-07-13 13:32 - 2016-07-01 05:24 - 00434688 _____ (Microsoft Corporation) C:\WINDOWS\system32\LogonController.dll
2016-07-13 13:32 - 2016-07-01 05:23 - 02578432 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameux.dll
2016-07-13 13:32 - 2016-07-01 05:23 - 00805888 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSShared.dll
2016-07-13 13:32 - 2016-07-01 05:23 - 00764928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Cred.dll
2016-07-13 13:32 - 2016-07-01 05:23 - 00460800 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFolder.dll
2016-07-13 13:32 - 2016-07-01 05:23 - 00207872 _____ (Microsoft Corporation) C:\WINDOWS\system32\licensingdiag.exe
2016-07-13 13:32 - 2016-07-01 05:22 - 00783872 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXService.dll
2016-07-13 13:32 - 2016-07-01 05:22 - 00231936 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatehandlers.dll
2016-07-13 13:32 - 2016-07-01 05:21 - 04078080 _____ (Microsoft Corporation) C:\WINDOWS\system32\dbgeng.dll
2016-07-13 13:32 - 2016-07-01 05:21 - 00980480 _____ (Microsoft Corporation) C:\WINDOWS\system32\winipcsecproc.dll
2016-07-13 13:32 - 2016-07-01 05:20 - 12128256 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2016-07-13 13:32 - 2016-07-01 05:20 - 03196928 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll
2016-07-13 13:32 - 2016-07-01 05:20 - 02798080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll
2016-07-13 13:32 - 2016-07-01 05:19 - 06471168 _____ (Microsoft Corporation) C:\WINDOWS\system32\mspaint.exe
2016-07-13 13:32 - 2016-07-01 05:19 - 01582080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Immersive.dll
2016-07-13 13:32 - 2016-07-01 05:19 - 00581632 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.dll
2016-07-13 13:32 - 2016-07-01 05:19 - 00503296 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSync.dll
2016-07-13 13:32 - 2016-07-01 05:19 - 00401920 _____ (Microsoft Corporation) C:\WINDOWS\system32\StikyNot.exe
2016-07-13 13:32 - 2016-07-01 05:18 - 03663360 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2016-07-13 13:32 - 2016-07-01 05:18 - 00683008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.BackgroundTransfer.dll
2016-07-13 13:32 - 2016-07-01 05:17 - 05323776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll
2016-07-13 13:32 - 2016-07-01 05:17 - 02155008 _____ (Microsoft Corporation) C:\WINDOWS\system32\authui.dll
2016-07-13 13:32 - 2016-07-01 05:17 - 01800704 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkMobileSettings.dll
2016-07-13 13:32 - 2016-07-01 05:16 - 02771968 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll
2016-07-13 13:32 - 2016-07-01 05:16 - 02062336 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll
2016-07-13 13:32 - 2016-07-01 05:16 - 01984000 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll
2016-07-13 13:32 - 2016-07-01 05:16 - 00925184 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll
2016-07-13 13:32 - 2016-07-01 05:16 - 00898048 _____ (Microsoft Corporation) C:\WINDOWS\HelpPane.exe
2016-07-13 13:32 - 2016-07-01 05:15 - 04413440 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExplorerFrame.dll
2016-07-13 13:32 - 2016-07-01 05:15 - 02880512 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsThresholdAdminFlowUI.dll
2016-07-13 13:32 - 2016-07-01 05:15 - 01799680 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Logon.dll
2016-07-13 13:32 - 2016-07-01 05:15 - 00574976 _____ (Microsoft Corporation) C:\WINDOWS\system32\hgcpl.dll
2016-07-13 13:32 - 2016-07-01 05:15 - 00573440 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserLanguagesCpl.dll
2016-07-13 13:32 - 2016-07-01 05:14 - 05660672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2016-07-13 13:32 - 2016-07-01 05:14 - 00802816 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntshrui.dll
2016-07-13 13:32 - 2016-07-01 05:13 - 02519552 _____ (Microsoft Corporation) C:\WINDOWS\system32\themecpl.dll
2016-07-13 13:32 - 2016-07-01 05:13 - 02000896 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll
2016-07-13 13:32 - 2016-07-01 05:13 - 01900032 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2016-07-13 13:32 - 2016-07-01 05:13 - 00813056 _____ (Microsoft Corporation) C:\WINDOWS\system32\dosvc.dll
2016-07-13 13:32 - 2016-07-01 05:12 - 00339456 _____ (Microsoft Corporation) C:\WINDOWS\system32\certcli.dll
2016-07-13 13:32 - 2016-07-01 05:11 - 01106944 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpeechPal.dll
2016-07-13 13:32 - 2016-07-01 05:11 - 01075200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Shell.dll
2016-07-13 13:32 - 2016-07-01 05:11 - 00754176 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncCore.dll
2016-07-13 13:32 - 2016-07-01 05:08 - 00517632 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToManager.dll
2016-07-13 13:32 - 2016-07-01 05:08 - 00199680 _____ (Microsoft Corporation) C:\WINDOWS\system32\GlobCollationHost.dll
2016-07-13 13:32 - 2016-06-18 02:22 - 00179712 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepic.dll
2016-07-13 13:31 - 2016-07-01 06:40 - 00228704 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdbus.sys
2016-07-13 13:31 - 2016-07-01 06:39 - 01561392 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2016-07-13 13:31 - 2016-07-01 06:39 - 01051584 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2016-07-13 13:31 - 2016-07-01 06:39 - 00927080 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2016-07-13 13:31 - 2016-07-01 06:39 - 00875992 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2016-07-13 13:31 - 2016-07-01 06:39 - 00771120 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2016-07-13 13:31 - 2016-07-01 06:38 - 01083656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Taskmgr.exe
2016-07-13 13:31 - 2016-07-01 06:38 - 00032552 _____ (Microsoft Corporation) C:\WINDOWS\system32\wldp.dll
2016-07-13 13:31 - 2016-07-01 06:23 - 00032040 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfpmp.exe
2016-07-13 13:31 - 2016-07-01 06:20 - 00465760 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncHost.exe
2016-07-13 13:31 - 2016-07-01 06:19 - 00836760 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll
2016-07-13 13:31 - 2016-07-01 06:07 - 28083144 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecsRaw.dll
2016-07-13 13:31 - 2016-07-01 06:06 - 01861984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys
2016-07-13 13:31 - 2016-07-01 06:06 - 00403920 _____ (Microsoft Corporation) C:\WINDOWS\system32\DMRServer.dll
2016-07-13 13:31 - 2016-07-01 05:46 - 00072192 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpudd.dll
2016-07-13 13:31 - 2016-07-01 05:39 - 00066560 _____ (Microsoft Corporation) C:\WINDOWS\system32\NFCProvisioningPlugin.dll
2016-07-13 13:31 - 2016-07-01 05:38 - 00056832 _____ (Microsoft Corporation) C:\WINDOWS\system32\LegacyNetUX.dll
2016-07-13 13:31 - 2016-07-01 05:35 - 00039424 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmTasks.dll
2016-07-13 13:31 - 2016-07-01 05:35 - 00032768 _____ (Microsoft Corporation) C:\WINDOWS\system32\msscntrs.dll
2016-07-13 13:31 - 2016-07-01 05:34 - 00350208 _____ (Microsoft Corporation) C:\WINDOWS\system32\bdechangepin.exe
2016-07-13 13:31 - 2016-07-01 05:34 - 00074240 _____ (Microsoft Corporation) C:\WINDOWS\system32\browserbroker.dll
2016-07-13 13:31 - 2016-07-01 05:33 - 00057344 _____ (Microsoft Corporation) C:\WINDOWS\system32\WPDShServiceObj.dll
2016-07-13 13:31 - 2016-07-01 05:32 - 00268800 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtrans.dll
2016-07-13 13:31 - 2016-07-01 05:32 - 00159232 _____ (Microsoft Corporation) C:\WINDOWS\system32\LegacyNetUXHost.exe
2016-07-13 13:31 - 2016-07-01 05:31 - 00465408 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll
2016-07-13 13:31 - 2016-07-01 05:31 - 00190976 _____ (Microsoft Corporation) C:\WINDOWS\system32\fhengine.dll
2016-07-13 13:31 - 2016-07-01 05:31 - 00186880 _____ (Microsoft Corporation) C:\WINDOWS\system32\schtasks.exe
2016-07-13 13:31 - 2016-07-01 05:31 - 00173056 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUDFPlatform.dll
2016-07-13 13:31 - 2016-07-01 05:30 - 00282624 _____ (Microsoft Corporation) C:\WINDOWS\system32\Search.ProtocolHandler.MAPI2.dll
2016-07-13 13:31 - 2016-07-01 05:30 - 00199680 _____ (Microsoft Corporation) C:\WINDOWS\system32\provhandlers.dll
2016-07-13 13:31 - 2016-07-01 05:30 - 00120832 _____ (Microsoft Corporation) C:\WINDOWS\system32\provops.dll
2016-07-13 13:31 - 2016-07-01 05:29 - 00334848 _____ (Microsoft Corporation) C:\WINDOWS\system32\fhsettingsprovider.dll
2016-07-13 13:31 - 2016-07-01 05:29 - 00272384 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmicmiplugin.dll
2016-07-13 13:31 - 2016-07-01 05:28 - 00442368 _____ (Microsoft Corporation) C:\WINDOWS\system32\dlnashext.dll
2016-07-13 13:31 - 2016-07-01 05:28 - 00320000 _____ (Microsoft Corporation) C:\WINDOWS\system32\fhcfg.dll
2016-07-13 13:31 - 2016-07-01 05:28 - 00248320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Cortana.OneCore.dll
2016-07-13 13:31 - 2016-07-01 05:28 - 00119296 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssph.dll
2016-07-13 13:31 - 2016-07-01 05:27 - 00282624 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchProtocolHost.exe
2016-07-13 13:31 - 2016-07-01 05:27 - 00244736 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssphtb.dll
2016-07-13 13:31 - 2016-07-01 05:27 - 00216576 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToReceiver.dll
2016-07-13 13:31 - 2016-07-01 05:26 - 01063936 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Editing.dll
2016-07-13 13:31 - 2016-07-01 05:26 - 00585216 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.AccountsControl.dll
2016-07-13 13:31 - 2016-07-01 05:26 - 00489984 _____ (Microsoft Corporation) C:\WINDOWS\system32\mbsmsapi.dll
2016-07-13 13:31 - 2016-07-01 05:26 - 00413184 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationController.dll
2016-07-13 13:31 - 2016-07-01 05:26 - 00400896 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneDriveSettingSyncProvider.dll
2016-07-13 13:31 - 2016-07-01 05:25 - 02050048 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2016-07-13 13:31 - 2016-07-01 05:25 - 01117184 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Speech.dll
2016-07-13 13:31 - 2016-07-01 05:25 - 00814080 _____ (Microsoft Corporation) C:\WINDOWS\system32\schedsvc.dll
2016-07-13 13:31 - 2016-07-01 05:25 - 00645632 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Storage.Search.dll
2016-07-13 13:31 - 2016-07-01 05:25 - 00240640 _____ (Microsoft Corporation) C:\WINDOWS\system32\taskeng.exe
2016-07-13 13:31 - 2016-07-01 05:25 - 00230400 _____ (Microsoft Corporation) C:\WINDOWS\system32\webcheck.dll
2016-07-13 13:31 - 2016-07-01 05:24 - 01497088 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMPDMC.exe
2016-07-13 13:31 - 2016-07-01 05:24 - 00405504 _____ (Microsoft Corporation) C:\WINDOWS\system32\webio.dll
2016-07-13 13:31 - 2016-07-01 05:23 - 01526272 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll
2016-07-13 13:31 - 2016-07-01 05:23 - 01401856 _____ (Microsoft Corporation) C:\WINDOWS\system32\workfolderssvc.dll
2016-07-13 13:31 - 2016-07-01 05:23 - 00760320 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchIndexer.exe
2016-07-13 13:31 - 2016-07-01 05:23 - 00667648 _____ (Microsoft Corporation) C:\WINDOWS\system32\AzureSettingSyncProvider.dll
2016-07-13 13:31 - 2016-07-01 05:23 - 00489984 _____ (Microsoft Corporation) C:\WINDOWS\system32\ShareHost.dll
2016-07-13 13:31 - 2016-07-01 05:23 - 00291840 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhext.dll
2016-07-13 13:31 - 2016-07-01 05:20 - 03555840 _____ (Microsoft Corporation) C:\WINDOWS\system32\xpsrchvw.exe
2016-07-13 13:31 - 2016-07-01 05:20 - 00777728 _____ (Microsoft Corporation) C:\WINDOWS\system32\MsSpellCheckingFacility.dll
2016-07-13 13:31 - 2016-07-01 05:16 - 00742400 _____ (Microsoft Corporation) C:\WINDOWS\system32\IKEEXT.DLL
2016-07-13 13:31 - 2016-07-01 05:15 - 00748032 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpncore.dll
2016-07-13 13:31 - 2016-07-01 05:15 - 00105472 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmcsps.dll
2016-07-13 13:31 - 2016-07-01 05:14 - 00737792 _____ (Microsoft Corporation) C:\WINDOWS\system32\pmcsnap.dll
2016-07-13 13:31 - 2016-07-01 05:13 - 06740992 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
2016-07-13 13:31 - 2016-07-01 05:13 - 01249280 _____ (Microsoft Corporation) C:\WINDOWS\system32\usercpl.dll
2016-07-13 13:31 - 2016-07-01 05:13 - 00835072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Streaming.dll
2016-07-13 13:31 - 2016-07-01 05:12 - 03483648 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll
2016-07-13 13:31 - 2016-07-01 05:08 - 01976832 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpdshext.dll
2016-07-13 13:31 - 2016-07-01 05:08 - 00942592 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll
2016-07-13 13:31 - 2016-07-01 05:08 - 00879616 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebcamUi.dll
2016-07-13 10:06 - 2016-07-13 10:06 - 00000000 __RSH C:\MSDOS.SYS
2016-07-13 10:06 - 2016-07-13 10:06 - 00000000 __RSH C:\IO.SYS
2016-07-08 04:28 - 2016-07-08 04:28 - 00001955 _____ C:\Users\home\Desktop\Microsoft PowerPoint 2010.lnk
2016-07-08 04:26 - 2016-07-08 04:26 - 00002107 _____ C:\Users\home\Desktop\Microsoft Office Picture Manager.lnk
2016-07-08 04:26 - 2016-07-08 04:26 - 00001589 _____ C:\Users\home\Desktop\Kalkulačka.lnk
2016-07-08 04:05 - 2016-07-08 04:05 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf
2016-07-08 03:28 - 2016-07-08 03:31 - 00151892 _____ C:\WINDOWS\Minidump\070816-24000-01.dmp
2016-07-08 03:28 - 2016-07-08 03:28 - 408284665 _____ C:\WINDOWS\MEMORY.DMP
2016-07-08 03:28 - 2016-07-08 03:28 - 00000000 ____D C:\WINDOWS\Minidump
2016-07-07 13:03 - 2016-07-16 07:15 - 00000000 ____D C:\Users\DefaultAppPool
2016-07-07 13:03 - 2016-07-07 13:03 - 00000020 ___SH C:\Users\DefaultAppPool\ntuser.ini
2016-07-07 13:03 - 2016-07-07 13:03 - 00000000 _SHDL C:\Users\DefaultAppPool\Šablony
2016-07-07 13:03 - 2016-07-07 13:03 - 00000000 _SHDL C:\Users\DefaultAppPool\Soubory cookie
2016-07-07 13:03 - 2016-07-07 13:03 - 00000000 _SHDL C:\Users\DefaultAppPool\Poslední
2016-07-07 13:03 - 2016-07-07 13:03 - 00000000 _SHDL C:\Users\DefaultAppPool\Okolní tiskárny
2016-07-07 13:03 - 2016-07-07 13:03 - 00000000 _SHDL C:\Users\DefaultAppPool\Okolní síť
2016-07-07 13:03 - 2016-07-07 13:03 - 00000000 _SHDL C:\Users\DefaultAppPool\Nabídka Start
2016-07-07 13:03 - 2016-07-07 13:03 - 00000000 _SHDL C:\Users\DefaultAppPool\Dokumenty
2016-07-07 13:03 - 2016-07-07 13:03 - 00000000 _SHDL C:\Users\DefaultAppPool\Documents\Obrázky
2016-07-07 13:03 - 2016-07-07 13:03 - 00000000 _SHDL C:\Users\DefaultAppPool\Documents\Hudba
2016-07-07 13:03 - 2016-07-07 13:03 - 00000000 _SHDL C:\Users\DefaultAppPool\Documents\Filmy
2016-07-07 13:03 - 2016-07-07 13:03 - 00000000 _SHDL C:\Users\DefaultAppPool\Data aplikací
2016-07-07 13:03 - 2016-07-07 13:03 - 00000000 _SHDL C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2016-07-07 13:03 - 2016-07-07 13:03 - 00000000 _SHDL C:\Users\DefaultAppPool\AppData\Local\Data aplikací
2016-07-07 13:03 - 2016-07-06 18:16 - 00000000 ____D C:\Users\DefaultAppPool\AppData\Roaming\Media Center Programs
2016-07-07 13:03 - 2016-07-06 18:16 - 00000000 ____D C:\Users\DefaultAppPool\AppData\Local\Microsoft Help
2016-07-07 12:02 - 2016-07-07 12:02 - 00000000 ____D C:\WINDOWS\system32\SleepStudy
2016-07-06 20:55 - 2016-07-06 20:55 - 00000000 ____D C:\Users\home\AppData\Local\PeerDistRepub
2016-07-06 20:39 - 2016-07-06 20:39 - 00000000 ____D C:\Users\home\AppData\Local\Comms
2016-07-06 20:25 - 2016-07-06 20:25 - 00002421 _____ C:\Users\home\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2016-07-06 20:25 - 2016-07-06 20:25 - 00000000 ___RD C:\Users\home\OneDrive
2016-07-06 20:24 - 2016-07-08 04:20 - 00000000 ____D C:\Users\home\AppData\Local\MicrosoftEdge
2016-07-06 20:24 - 2015-10-29 19:42 - 05739520 _____ (Microsoft Corporation) C:\WINDOWS\system32\prm0009.dll
2016-07-06 20:24 - 2015-10-29 19:41 - 02629632 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsLexicons0009.dll
2016-07-06 20:24 - 2015-10-29 19:24 - 04847616 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData0009.dll
2016-07-06 20:23 - 2016-07-06 20:23 - 00001047 _____ C:\Users\home\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Volitelné funkce.lnk
2016-07-06 20:21 - 2016-07-06 20:21 - 00000000 ____D C:\Users\home\AppData\Local\Publishers
2016-07-06 20:21 - 2016-07-06 20:21 - 00000000 ____D C:\Users\home\AppData\Local\ActiveSync
2016-07-06 20:19 - 2016-07-06 23:50 - 00000000 ____D C:\Users\home\AppData\Local\Packages
2016-07-06 20:19 - 2016-07-06 20:19 - 00000020 ___SH C:\Users\home\ntuser.ini
2016-07-06 20:19 - 2016-07-06 20:19 - 00000000 ____D C:\Users\home\AppData\Local\TileDataLayer
2016-07-06 19:07 - 2016-07-06 20:19 - 00000000 ___DC C:\WINDOWS\Panther
2016-07-06 19:05 - 2016-07-06 19:05 - 00000000 ____D C:\Windows.old
2016-07-06 19:04 - 2016-07-06 19:04 - 00856928 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi
2016-07-06 19:04 - 2016-07-06 19:04 - 00782336 _____ (Microsoft Corporation) C:\WINDOWS\system32\fvewiz.dll
2016-07-06 19:04 - 2016-07-06 19:04 - 00673280 _____ (Microsoft Corporation) C:\WINDOWS\system32\MPSSVC.dll
2016-07-06 19:04 - 2016-07-06 19:04 - 00614912 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapi.dll
2016-07-06 19:04 - 2016-07-06 19:04 - 00554496 _____ (Microsoft Corporation) C:\WINDOWS\system32\BFE.DLL
2016-07-06 19:04 - 2016-07-06 19:04 - 00550240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fvevol.sys
2016-07-06 19:04 - 2016-07-06 19:04 - 00501600 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupEngine.dll
2016-07-06 19:04 - 2016-07-06 19:04 - 00451928 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFCaptureEngine.dll
2016-07-06 19:04 - 2016-07-06 19:04 - 00445952 _____ (Microsoft Corporation) C:\WINDOWS\system32\PsmServiceExtHost.dll
2016-07-06 19:04 - 2016-07-06 19:04 - 00340480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv.sys
2016-07-06 19:04 - 2016-07-06 19:04 - 00310272 _____ (Microsoft Corporation) C:\WINDOWS\system32\fvecpl.dll
2016-07-06 19:04 - 2016-07-06 19:04 - 00307712 _____ (Microsoft Corporation) C:\WINDOWS\system32\bdesvc.dll
2016-07-06 19:04 - 2016-07-06 19:04 - 00297072 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe
2016-07-06 19:04 - 2016-07-06 19:04 - 00269824 _____ (Microsoft Corporation) C:\WINDOWS\system32\FWPUCLNT.DLL
2016-07-06 19:04 - 2016-07-06 19:04 - 00265216 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveui.dll
2016-07-06 19:04 - 2016-07-06 19:04 - 00227328 _____ (Microsoft Corporation) C:\WINDOWS\system32\ListSvc.dll
2016-07-06 19:04 - 2016-07-06 19:04 - 00192512 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapibase.dll
2016-07-06 19:04 - 2016-07-06 19:04 - 00154112 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.DeviceEncryptionHandlers.dll
2016-07-06 19:04 - 2016-07-06 19:04 - 00142336 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupSvc.dll
2016-07-06 19:04 - 2016-07-06 19:04 - 00140800 _____ (Microsoft Corporation) C:\WINDOWS\system32\BrowserSettingSync.dll
2016-07-06 19:04 - 2016-07-06 19:04 - 00110080 _____ (Microsoft Corporation) C:\WINDOWS\system32\BitLockerDeviceEncryption.exe
2016-07-06 19:04 - 2016-07-06 19:04 - 00103936 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Devices.dll
2016-07-06 19:04 - 2016-07-06 19:04 - 00088576 _____ (Microsoft Corporation) C:\WINDOWS\system32\BdeHdCfgLib.dll
2016-07-06 19:04 - 2016-07-06 19:04 - 00084832 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupApi.dll
2016-07-06 19:04 - 2016-07-06 19:04 - 00073216 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpdbusenum.dll
2016-07-06 19:04 - 2016-07-06 19:04 - 00059904 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveskybackup.dll
2016-07-06 19:04 - 2016-07-06 19:04 - 00023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpsdport.sys
2016-07-06 19:03 - 2016-07-06 19:03 - 04268880 _____ (Microsoft Corporation) C:\WINDOWS\system32\setupapi.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 03671040 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 02722816 _____ (Microsoft Corporation) C:\WINDOWS\system32\esent.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 02195632 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d10warp.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 02193408 _____ (Microsoft Corporation) C:\WINDOWS\system32\actxprxy.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 01944576 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputService.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 01820512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys
2016-07-06 19:03 - 2016-07-06 19:03 - 01707520 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActiveSyncProvider.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 01541792 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 01445888 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRHInproc.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 01396592 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 01273720 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 01193984 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpsvc.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 01185280 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationFramework.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 01139712 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCore.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 01085952 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 01072128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.Http.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 01028608 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifinetworkmanager.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00986976 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00951808 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00922456 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys
2016-07-06 19:03 - 2016-07-06 19:03 - 00890368 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxPackaging.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00854528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Bluetooth.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00846336 _____ (Microsoft Corporation) C:\WINDOWS\system32\iphlpsvc.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00799744 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRH.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00792064 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00771424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\http.sys
2016-07-06 19:03 - 2016-07-06 19:03 - 00757192 _____ (Microsoft Corporation) C:\WINDOWS\system32\iuilp.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00712704 _____ (Microsoft Corporation) C:\WINDOWS\system32\RemoteNaturalLanguage.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00705536 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00682496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Input.Inking.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00649728 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00647680 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00638464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00614400 _____ (Microsoft Corporation) C:\WINDOWS\system32\winhttp.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00604672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys
2016-07-06 19:03 - 2016-07-06 19:03 - 00592384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00579072 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpprefcl.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00564224 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSDApi.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00558080 _____ (Microsoft Corporation) C:\WINDOWS\system32\internetmail.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00546456 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe
2016-07-06 19:03 - 2016-07-06 19:03 - 00545432 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreMessaging.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00538624 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblAuthManager.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00535080 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsapi.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00535040 _____ (Microsoft Corporation) C:\WINDOWS\system32\rastls.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00527872 _____ (Microsoft Corporation) C:\WINDOWS\system32\vpnike.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00527360 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneProviders.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00521728 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.Connectivity.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00521728 _____ (Microsoft Corporation) C:\WINDOWS\system32\StructuredQuery.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00513368 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d10level9.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00499712 _____ (Microsoft Corporation) C:\WINDOWS\system32\MessagingDataModel2.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00498176 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcsvc.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00497664 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00497152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdiWiFi.sys
2016-07-06 19:03 - 2016-07-06 19:03 - 00494592 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe
2016-07-06 19:03 - 2016-07-06 19:03 - 00489984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00487936 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngccredprov.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00485888 _____ (Microsoft Corporation) C:\WINDOWS\system32\newdev.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00484864 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00467456 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppContracts.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00453632 _____ (Microsoft Corporation) C:\WINDOWS\system32\bisrv.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00453472 _____ (Microsoft Corporation) C:\WINDOWS\system32\directmanipulation.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00450560 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncController.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00442368 _____ (Microsoft Corporation) C:\WINDOWS\system32\MBMediaManager.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00430432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBHUB3.SYS
2016-07-06 19:03 - 2016-07-06 19:03 - 00415232 _____ (Microsoft Corporation) C:\WINDOWS\system32\StoreAgent.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00393728 _____ (Microsoft Corporation) C:\WINDOWS\system32\tileobjserver.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00388608 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00388384 _____ (Microsoft Corporation) C:\WINDOWS\system32\ws2_32.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00365056 _____ (Microsoft Corporation) C:\WINDOWS\system32\DataSenseHandlers.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00360480 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcryptprimitives.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00359936 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenrollengine.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00358400 _____ (Microsoft Corporation) C:\WINDOWS\system32\AccountsRt.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00354656 _____ (Microsoft Corporation) C:\WINDOWS\system32\halmacpi.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00354656 _____ (Microsoft Corporation) C:\WINDOWS\system32\hal.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00354304 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupShim.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00348672 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredProvDataModel.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00342528 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00323072 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleacc.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00317280 _____ (Microsoft Corporation) C:\WINDOWS\system32\mswsock.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00316256 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\atmfd.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00310112 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifitask.exe
2016-07-06 19:03 - 2016-07-06 19:03 - 00309248 _____ (Microsoft Corporation) C:\WINDOWS\system32\IPSECSVC.DLL
2016-07-06 19:03 - 2016-07-06 19:03 - 00307200 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieproxy.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00306832 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanapi.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00305296 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlows.exe
2016-07-06 19:03 - 2016-07-06 19:03 - 00296488 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanager.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00294912 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncbservice.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00294752 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00293888 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcore.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00291328 _____ (Microsoft Corporation) C:\WINDOWS\system32\polstore.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00289792 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActivationManager.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00287072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBXHCI.SYS
2016-07-06 19:03 - 2016-07-06 19:03 - 00278368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fastfat.sys
2016-07-06 19:03 - 2016-07-06 19:03 - 00274432 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemEventsBrokerServer.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00272384 _____ (Microsoft Corporation) C:\WINDOWS\system32\NgcCtnr.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00254656 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppHost.exe
2016-07-06 19:03 - 2016-07-06 19:03 - 00246272 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvc.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00245760 _____ (Microsoft Corporation) C:\WINDOWS\system32\TextInputFramework.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00241664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\portcls.sys
2016-07-06 19:03 - 2016-07-06 19:03 - 00241664 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptngc.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00239616 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorService.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00239104 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationObjFactory.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00230400 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcore6.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00222720 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsrslvr.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00221184 _____ (Microsoft Corporation) C:\WINDOWS\system32\NgcCtnrSvc.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00219136 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEEventDispatcher.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00211456 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netbt.sys
2016-07-06 19:03 - 2016-07-06 19:03 - 00204800 _____ (Microsoft Corporation) C:\WINDOWS\system32\accountaccessor.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00203104 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ufx01000.sys
2016-07-06 19:03 - 2016-07-06 19:03 - 00200192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Management.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00193536 _____ (Microsoft Corporation) C:\WINDOWS\system32\DAFWSD.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00193024 _____ (Microsoft Corporation) C:\WINDOWS\system32\credprovhost.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00192704 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininit.exe
2016-07-06 19:03 - 2016-07-06 19:03 - 00188256 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00186880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srvnet.sys
2016-07-06 19:03 - 2016-07-06 19:03 - 00183904 _____ (Microsoft Corporation) C:\WINDOWS\system32\rsaenh.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00173920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tpm.sys
2016-07-06 19:03 - 2016-07-06 19:03 - 00168448 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmcsp.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00162816 _____ C:\WINDOWS\system32\MTF.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00161792 _____ (Microsoft Corporation) C:\WINDOWS\system32\msorcl32.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00161792 _____ (Microsoft Corporation) C:\WINDOWS\system32\BrokerLib.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00161280 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgent.exe
2016-07-06 19:03 - 2016-07-06 19:03 - 00160768 _____ (Microsoft Corporation) C:\WINDOWS\system32\GnssAdapter.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00153952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpsd.sys
2016-07-06 19:03 - 2016-07-06 19:03 - 00151040 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmregistration.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00150016 _____ (Microsoft Corporation) C:\WINDOWS\system32\storewuauth.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00144384 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscsvc.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00141824 _____ (Microsoft Corporation) C:\WINDOWS\system32\enrollmentapi.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00141824 _____ (Microsoft Corporation) C:\WINDOWS\system32\easwrt.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00137728 _____ (Microsoft Corporation) C:\WINDOWS\system32\shacct.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00137728 _____ (Microsoft Corporation) C:\WINDOWS\system32\dafBth.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00136032 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkUXBroker.exe
2016-07-06 19:03 - 2016-07-06 19:03 - 00133632 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00133120 _____ (Microsoft Corporation) C:\WINDOWS\system32\SubscriptionMgr.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00133120 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmmigrator.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00132096 _____ (Microsoft Corporation) C:\WINDOWS\system32\tetheringservice.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00129024 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Privacy.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00129024 _____ (Microsoft Corporation) C:\WINDOWS\system32\AboveLockAppHost.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00122368 _____ (Microsoft Corporation) C:\WINDOWS\system32\omadmclient.exe
2016-07-06 19:03 - 2016-07-06 19:03 - 00118784 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEStoreEventHandlers.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00118272 _____ (Microsoft Corporation) C:\WINDOWS\system32\mtxoci.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00116224 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmcertinst.exe
2016-07-06 19:03 - 2016-07-06 19:03 - 00114688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidclass.sys
2016-07-06 19:03 - 2016-07-06 19:03 - 00114176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dfsc.sys
2016-07-06 19:03 - 2016-07-06 19:03 - 00111608 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpapi.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00109056 _____ (Microsoft Corporation) C:\WINDOWS\system32\httpprxm.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00107520 _____ (Microsoft Corporation) C:\WINDOWS\system32\browser.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00104960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Ndu.sys
2016-07-06 19:03 - 2016-07-06 19:03 - 00104800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ufxsynopsys.sys
2016-07-06 19:03 - 2016-07-06 19:03 - 00103424 _____ (Microsoft Corporation) C:\WINDOWS\system32\wificonnapi.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00103424 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatepolicy.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00097792 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudDomainJoinDataModelServer.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00097096 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncryptsslp.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00096096 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\partmgr.sys
2016-07-06 19:03 - 2016-07-06 19:03 - 00093696 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontsub.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00091648 _____ (Microsoft Corporation) C:\WINDOWS\system32\tdlrecover.exe
2016-07-06 19:03 - 2016-07-06 19:03 - 00085504 _____ (Microsoft Corporation) C:\WINDOWS\system32\FontProvider.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00084480 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEDataLayerHelpers.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00084216 _____ (Microsoft Corporation) C:\WINDOWS\system32\omadmapi.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00083808 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pdc.sys
2016-07-06 19:03 - 2016-07-06 19:03 - 00083456 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputLocaleManager.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00080896 _____ (Microsoft Corporation) C:\WINDOWS\system32\BluetoothApis.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00080384 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsNativeApi.V2.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00079360 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceEnroller.exe
2016-07-06 19:03 - 2016-07-06 19:03 - 00077824 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\serial.sys
2016-07-06 19:03 - 2016-07-06 19:03 - 00077664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdport.sys
2016-07-06 19:03 - 2016-07-06 19:03 - 00076288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\filecrypt.sys
2016-07-06 19:03 - 2016-07-06 19:03 - 00073872 _____ (Microsoft Corporation) C:\WINDOWS\system32\srvcli.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00073728 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanagerprecheck.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00071680 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxSysprep.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00070144 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAppInstaller.exe
2016-07-06 19:03 - 2016-07-06 19:03 - 00069744 _____ (Microsoft Corporation) C:\WINDOWS\system32\netapi32.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00065536 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininetlui.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00065024 _____ (Microsoft Corporation) C:\WINDOWS\system32\adhsvc.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00064000 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcsvc.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00063488 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcpopkeysrv.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00063488 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptsvc.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00063008 _____ (Microsoft Corporation) C:\WINDOWS\system32\easinvoker.exe
2016-07-06 19:03 - 2016-07-06 19:03 - 00061440 _____ (Microsoft Corporation) C:\WINDOWS\system32\samlib.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00057856 _____ (Microsoft Corporation) C:\WINDOWS\system32\EnterpriseDesktopAppMgmtCSP.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00057344 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcsvc6.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00056320 _____ (Microsoft Corporation) C:\WINDOWS\system32\wkscli.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00055808 _____ (Microsoft Corporation) C:\WINDOWS\system32\basesrv.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00053760 _____ (Microsoft Corporation) C:\WINDOWS\system32\FwRemoteSvr.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00052736 _____ (Microsoft Corporation) C:\WINDOWS\system32\OnDemandConnRouteHelper.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00051712 _____ (Microsoft Corporation) C:\WINDOWS\system32\wshbth.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00051128 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsNativeApi.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00049504 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwminit.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00048640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbser.sys
2016-07-06 19:03 - 2016-07-06 19:03 - 00047104 _____ (Microsoft Corporation) C:\WINDOWS\system32\hmkd.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00046080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\UcmCx.sys
2016-07-06 19:03 - 2016-07-06 19:03 - 00045568 _____ (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00043520 _____ (Microsoft Corporation) C:\WINDOWS\system32\browcli.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00042496 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpscript.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00037376 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenterprisediagnostics.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\system32\ByteCodeGenerator.exe
2016-07-06 19:03 - 2016-07-06 19:03 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\tbauth.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00028160 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuautoappupdate.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsdchngr.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00022528 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBrokerCookies.exe
2016-07-06 19:03 - 2016-07-06 19:03 - 00022528 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManagerShellext.exe
2016-07-06 19:03 - 2016-07-06 19:03 - 00018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\xinputhid.sys
2016-07-06 19:03 - 2016-07-06 19:03 - 00016896 _____ (Microsoft Corporation) C:\WINDOWS\system32\httpprxp.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleacchooks.dll
2016-07-06 19:03 - 2016-07-06 19:03 - 00002186 _____ C:\WINDOWS\system32\AppxProvisioning.xml
2016-07-06 18:59 - 2016-07-06 18:59 - 00008192 _____ C:\WINDOWS\system32\config\userdiff
2016-07-06 18:58 - 2016-07-06 18:58 - 00000000 ____D C:\WINDOWS\system32\XPSViewer
2016-07-06 18:58 - 2016-07-06 18:58 - 00000000 ____D C:\WINDOWS\system32\msmq
2016-07-06 18:58 - 2016-07-06 18:58 - 00000000 ____D C:\WINDOWS\system32\BestPractices
2016-07-06 18:58 - 2016-07-06 18:58 - 00000000 ____D C:\Program Files\Reference Assemblies
2016-07-06 18:58 - 2016-07-06 18:58 - 00000000 ____D C:\Program Files\MSBuild
2016-07-06 18:58 - 2016-07-06 18:58 - 00000000 ____D C:\inetpub
2016-07-06 18:57 - 2015-10-23 18:47 - 00778936 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationNative_v0300.dll
2016-07-06 18:57 - 2015-10-23 18:47 - 00103120 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2016-07-06 18:57 - 2015-10-23 18:47 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\system32\TsWpfWrp.exe
2016-07-06 18:23 - 2016-07-06 18:23 - 00000000 _SHDL C:\Users\Default\Šablony
2016-07-06 18:23 - 2016-07-06 18:23 - 00000000 _SHDL C:\Users\Default\Soubory cookie
2016-07-06 18:23 - 2016-07-06 18:23 - 00000000 _SHDL C:\Users\Default\Poslední
2016-07-06 18:23 - 2016-07-06 18:23 - 00000000 _SHDL C:\Users\Default\Okolní tiskárny
2016-07-06 18:23 - 2016-07-06 18:23 - 00000000 _SHDL C:\Users\Default\Okolní síť
2016-07-06 18:23 - 2016-07-06 18:23 - 00000000 _SHDL C:\Users\Default\Nabídka Start
2016-07-06 18:23 - 2016-07-06 18:23 - 00000000 _SHDL C:\Users\Default\Dokumenty
2016-07-06 18:23 - 2016-07-06 18:23 - 00000000 _SHDL C:\Users\Default\Documents\Obrázky
2016-07-06 18:23 - 2016-07-06 18:23 - 00000000 _SHDL C:\Users\Default\Documents\Hudba
2016-07-06 18:23 - 2016-07-06 18:23 - 00000000 _SHDL C:\Users\Default\Documents\Filmy
2016-07-06 18:23 - 2016-07-06 18:23 - 00000000 _SHDL C:\Users\Default\Data aplikací
2016-07-06 18:23 - 2016-07-06 18:23 - 00000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2016-07-06 18:23 - 2016-07-06 18:23 - 00000000 _SHDL C:\Users\Default\AppData\Local\Data aplikací
2016-07-06 18:23 - 2016-07-06 18:23 - 00000000 _SHDL C:\Users\Default User\Documents\Obrázky
2016-07-06 18:23 - 2016-07-06 18:23 - 00000000 _SHDL C:\Users\Default User\Documents\Hudba
2016-07-06 18:23 - 2016-07-06 18:23 - 00000000 _SHDL C:\Users\Default User\Documents\Filmy
2016-07-06 18:23 - 2016-07-06 18:23 - 00000000 _SHDL C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2016-07-06 18:23 - 2016-07-06 18:23 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Data aplikací
2016-07-06 18:22 - 2016-07-06 18:22 - 00021496 _____ C:\WINDOWS\system32\emptyregdb.dat
2016-07-06 18:16 - 2016-07-06 18:16 - 00001544 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk
2016-07-06 18:16 - 2016-07-06 18:16 - 00000000 ____D C:\Users\Default\AppData\Roaming\Media Center Programs
2016-07-06 18:16 - 2016-07-06 18:16 - 00000000 ____D C:\Users\Default\AppData\Local\Microsoft Help
2016-07-06 18:16 - 2016-07-06 18:16 - 00000000 ____D C:\Users\Default User\AppData\Roaming\Media Center Programs
2016-07-06 18:16 - 2016-07-06 18:16 - 00000000 ____D C:\Users\Default User\AppData\Local\Microsoft Help
2016-07-06 18:14 - 2016-07-06 18:14 - 00000000 ____D C:\Program Files\Common Files\SpeechEngines
2016-07-06 18:12 - 2016-07-16 21:50 - 01996112 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2016-07-06 18:12 - 2016-07-16 00:26 - 00000000 ____D C:\Users\home
2016-07-06 18:12 - 2016-07-06 18:12 - 00000000 _SHDL C:\Users\home\Šablony
2016-07-06 18:12 - 2016-07-06 18:12 - 00000000 _SHDL C:\Users\home\Soubory cookie
2016-07-06 18:12 - 2016-07-06 18:12 - 00000000 _SHDL C:\Users\home\Poslední
2016-07-06 18:12 - 2016-07-06 18:12 - 00000000 _SHDL C:\Users\home\Okolní tiskárny
2016-07-06 18:12 - 2016-07-06 18:12 - 00000000 _SHDL C:\Users\home\Okolní síť
2016-07-06 18:12 - 2016-07-06 18:12 - 00000000 _SHDL C:\Users\home\Nabídka Start
2016-07-06 18:12 - 2016-07-06 18:12 - 00000000 _SHDL C:\Users\home\Dokumenty
2016-07-06 18:12 - 2016-07-06 18:12 - 00000000 _SHDL C:\Users\home\Documents\Obrázky
2016-07-06 18:12 - 2016-07-06 18:12 - 00000000 _SHDL C:\Users\home\Documents\Hudba
2016-07-06 18:12 - 2016-07-06 18:12 - 00000000 _SHDL C:\Users\home\Documents\Filmy
2016-07-06 18:12 - 2016-07-06 18:12 - 00000000 _SHDL C:\Users\home\Data aplikací
2016-07-06 18:12 - 2016-07-06 18:12 - 00000000 _SHDL C:\Users\home\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2016-07-06 18:12 - 2016-07-06 18:12 - 00000000 _SHDL C:\Users\home\AppData\Local\Data aplikací
2016-07-06 18:09 - 2016-07-06 18:09 - 00000000 ____D C:\WINDOWS\EffectResources
2016-07-06 17:43 - 2016-07-06 18:23 - 00010447 _____ C:\WINDOWS\diagerr.xml
2016-07-06 17:43 - 2016-07-06 18:23 - 00009528 _____ C:\WINDOWS\diagwrn.xml
2016-06-22 21:06 - 2016-07-04 21:35 - 00028672 _____ C:\Users\home\Desktop\můj rozvrh 2016-17.xls

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2016-07-17 12:39 - 2015-11-14 20:58 - 00000914 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2016-07-17 12:37 - 2016-02-04 04:59 - 00000000 ____D C:\Users\home\AppData\Roaming\Spotify
2016-07-17 12:32 - 2016-02-04 05:00 - 00000000 ____D C:\Users\home\AppData\Local\Spotify
2016-07-16 22:03 - 2015-11-09 17:50 - 00000359 _____ C:\Users\home\Desktop\Počítač – zástupce.lnk
2016-07-16 21:50 - 2016-04-27 06:10 - 00829308 _____ C:\WINDOWS\system32\perfh005.dat
2016-07-16 21:50 - 2016-04-27 06:10 - 00185116 _____ C:\WINDOWS\system32\perfc005.dat
2016-07-16 21:50 - 2015-10-30 07:47 - 00000000 ____D C:\WINDOWS\INF
2016-07-16 21:45 - 2015-11-11 21:55 - 00000316 _____ C:\WINDOWS\Tasks\AutoKMS.job
2016-07-16 21:45 - 2015-11-11 21:54 - 00151552 _____ C:\WINDOWS\KMSEmulator.exe
2016-07-16 21:44 - 2016-04-27 06:25 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2016-07-16 21:44 - 2015-10-30 07:13 - 00262144 ___SH C:\WINDOWS\system32\config\BBI
2016-07-16 21:43 - 2015-11-11 22:35 - 00000000 ____D C:\Users\home\AppData\Roaming\CheckPoint
2016-07-16 20:58 - 2015-10-30 07:48 - 00000000 ___HD C:\Program Files\WindowsApps
2016-07-16 20:58 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\AppReadiness
2016-07-16 07:20 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\rescache
2016-07-15 23:36 - 2016-03-24 13:13 - 00001191 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast SafeZone Browser.lnk
2016-07-15 23:33 - 2015-11-11 22:47 - 00438296 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswsp.sys
2016-07-15 23:32 - 2015-11-11 22:47 - 00222056 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswVmm.sys
2016-07-15 23:32 - 2015-11-11 22:47 - 00118152 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswStm.sys
2016-07-15 23:32 - 2015-11-11 22:47 - 00091680 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswMonFlt.sys
2016-07-15 23:32 - 2015-11-11 22:47 - 00091232 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRdr2.sys
2016-07-15 23:32 - 2015-11-11 22:47 - 00060424 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRvrt.sys
2016-07-15 23:32 - 2015-11-11 22:47 - 00034008 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswHwid.sys
2016-07-15 23:31 - 2016-03-24 13:13 - 00035096 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswKbd.sys
2016-07-15 23:31 - 2015-11-11 22:46 - 00816304 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSnx.sys
2016-07-15 23:02 - 2016-04-27 06:29 - 00000000 __RHD C:\Users\Public\AccountPictures
2016-07-15 22:56 - 2016-04-27 06:19 - 00000000 ____D C:\Program Files\Windows Journal
2016-07-15 22:56 - 2015-10-30 07:48 - 00000000 ___RD C:\WINDOWS\PrintDialog
2016-07-15 22:56 - 2015-10-30 07:48 - 00000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2016-07-15 22:56 - 2015-10-30 07:48 - 00000000 ___RD C:\WINDOWS\DevicesFlow
2016-07-15 22:56 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\system32\oobe
2016-07-15 22:56 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\system32\appraiser
2016-07-15 22:56 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\Provisioning
2016-07-15 22:56 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\PolicyDefinitions
2016-07-15 22:56 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\bcastdvr
2016-07-15 22:56 - 2015-10-30 07:48 - 00000000 ____D C:\Program Files\Windows Photo Viewer
2016-07-15 22:56 - 2015-10-30 07:48 - 00000000 ____D C:\Program Files\Windows Defender
2016-07-15 21:20 - 2015-11-14 13:30 - 00000000 ____D C:\WINDOWS\system32\MRT
2016-07-15 21:20 - 2015-10-30 07:39 - 00000000 ____D C:\WINDOWS\CbsTemp
2016-07-15 21:17 - 2015-11-14 13:30 - 141983760 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2016-07-13 22:22 - 2016-02-20 21:28 - 00002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2016-07-13 11:00 - 2015-11-12 18:39 - 00000000 ____D C:\Users\home\AppData\Roaming\vlc
2016-07-13 10:54 - 2015-11-12 18:36 - 00000000 ____D C:\Users\home\AppData\Local\ElevatedDiagnostics
2016-07-13 10:42 - 2009-07-14 04:37 - 00000000 ___HD C:\WINDOWS\system32\GroupPolicy
2016-07-12 17:38 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\System
2016-07-12 17:38 - 2015-10-30 07:44 - 00534016 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntvdm.exe
2016-07-12 17:38 - 2015-10-30 07:44 - 00256192 _____ (Microsoft Corporation) C:\WINDOWS\winhelp.exe
2016-07-12 17:38 - 2015-10-30 07:44 - 00221600 _____ (Microsoft Corporation) C:\WINDOWS\system32\lanman.drv
2016-07-12 17:38 - 2015-10-30 07:44 - 00177856 _____ (Microsoft Corporation) C:\WINDOWS\system32\typelib.dll
2016-07-12 17:38 - 2015-10-30 07:44 - 00169520 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole2disp.dll
2016-07-12 17:38 - 2015-10-30 07:44 - 00153008 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole2nls.dll
2016-07-12 17:38 - 2015-10-30 07:44 - 00127213 _____ C:\WINDOWS\system32\ega.cpi
2016-07-12 17:38 - 2015-10-30 07:44 - 00108464 _____ (Microsoft Corporation) C:\WINDOWS\system32\netapi.dll
2016-07-12 17:38 - 2015-10-30 07:44 - 00092320 _____ (Microsoft Corporation) C:\WINDOWS\system32\krnl386.exe
2016-07-12 17:38 - 2015-10-30 07:44 - 00082944 _____ (Microsoft Corporation) C:\WINDOWS\system32\olecli.dll
2016-07-12 17:38 - 2015-10-30 07:44 - 00069886 _____ C:\WINDOWS\system32\edit.com
2016-07-12 17:38 - 2015-10-30 07:44 - 00068992 _____ (Microsoft Corporation) C:\WINDOWS\system32\MMSYSTEM.DLL
2016-07-12 17:38 - 2015-10-30 07:44 - 00058880 _____ (Microsoft Corporation) C:\WINDOWS\system32\graftabl.com
2016-07-12 17:38 - 2015-10-30 07:44 - 00053600 _____ C:\WINDOWS\system32\dosx.exe
2016-07-12 17:38 - 2015-10-30 07:44 - 00050648 _____ C:\WINDOWS\system32\COMMAND.COM
2016-07-12 17:38 - 2015-10-30 07:44 - 00047840 _____ (Microsoft Corporation) C:\WINDOWS\system32\USER.EXE
2016-07-12 17:38 - 2015-10-30 07:44 - 00046592 _____ (Microsoft Corporation) C:\WINDOWS\system32\pmspl.dll
2016-07-12 17:38 - 2015-10-30 07:44 - 00042809 _____ C:\WINDOWS\system32\KEY01.SYS
2016-07-12 17:38 - 2015-10-30 07:44 - 00042592 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole2.dll
2016-07-12 17:38 - 2015-10-30 07:44 - 00042537 _____ C:\WINDOWS\system32\KEYBOARD.SYS
2016-07-12 17:38 - 2015-10-30 07:44 - 00039424 _____ (Microsoft Corporation) C:\WINDOWS\system32\DDEML.DLL
2016-07-12 17:38 - 2015-10-30 07:44 - 00039274 _____ C:\WINDOWS\system32\mem.exe
2016-07-12 17:38 - 2015-10-30 07:44 - 00035776 _____ C:\WINDOWS\system32\NTIO411.SYS
2016-07-12 17:38 - 2015-10-30 07:44 - 00035552 _____ C:\WINDOWS\system32\NTIO412.SYS
2016-07-12 17:38 - 2015-10-30 07:44 - 00034688 _____ C:\WINDOWS\system32\NTIO804.SYS
2016-07-12 17:38 - 2015-10-30 07:44 - 00034688 _____ C:\WINDOWS\system32\NTIO404.SYS
2016-07-12 17:38 - 2015-10-30 07:44 - 00033968 _____ C:\WINDOWS\system32\NTIO.SYS
2016-07-12 17:38 - 2015-10-30 07:44 - 00032816 _____ (Microsoft Corporation) C:\WINDOWS\system32\COMMDLG.DLL
2016-07-12 17:38 - 2015-10-30 07:44 - 00032816 _____ (Microsoft Corporation) C:\WINDOWS\system\COMMDLG.DLL
2016-07-12 17:38 - 2015-10-30 07:44 - 00029370 _____ C:\WINDOWS\system32\NTDOS411.SYS
2016-07-12 17:38 - 2015-10-30 07:44 - 00029274 _____ C:\WINDOWS\system32\NTDOS412.SYS
2016-07-12 17:38 - 2015-10-30 07:44 - 00029146 _____ C:\WINDOWS\system32\NTDOS804.SYS
2016-07-12 17:38 - 2015-10-30 07:44 - 00029146 _____ C:\WINDOWS\system32\NTDOS404.SYS
2016-07-12 17:38 - 2015-10-30 07:44 - 00028420 _____ C:\WINDOWS\system32\bios1.rom
2016-07-12 17:38 - 2015-10-30 07:44 - 00028112 _____ (Microsoft Corporation) C:\WINDOWS\system32\DRWATSON.EXE
2016-07-12 17:38 - 2015-10-30 07:44 - 00027866 _____ C:\WINDOWS\system32\NTDOS.SYS
2016-07-12 17:38 - 2015-10-30 07:44 - 00027792 _____ (Microsoft Corporation) C:\WINDOWS\system32\compobj.dll
2016-07-12 17:38 - 2015-10-30 07:44 - 00027200 _____ (Microsoft Corporation) C:\WINDOWS\system32\ctl3dv2.dll
2016-07-12 17:38 - 2015-10-30 07:44 - 00027097 _____ C:\WINDOWS\system32\country.sys
2016-07-12 17:38 - 2015-10-30 07:44 - 00024576 _____ (Microsoft Corporation) C:\WINDOWS\system32\GDI.EXE
2016-07-12 17:38 - 2015-10-30 07:44 - 00024064 _____ (Microsoft Corporation) C:\WINDOWS\system32\OLESVR.DLL
2016-07-12 17:38 - 2015-10-30 07:44 - 00024064 _____ (Microsoft Corporation) C:\WINDOWS\system\OLESVR.DLL
2016-07-12 17:38 - 2015-10-30 07:44 - 00021504 _____ (Microsoft Corporation) C:\WINDOWS\system32\vdmredir.dll
2016-07-12 17:38 - 2015-10-30 07:44 - 00021232 _____ C:\WINDOWS\system32\graphics.pro
2016-07-12 17:38 - 2015-10-30 07:44 - 00020634 _____ C:\WINDOWS\system32\debug.exe
2016-07-12 17:38 - 2015-10-30 07:44 - 00019694 _____ C:\WINDOWS\system32\GRAPHICS.COM
2016-07-12 17:38 - 2015-10-30 07:44 - 00018896 _____ (Microsoft Corporation) C:\WINDOWS\system32\sysedit.exe
2016-07-12 17:38 - 2015-10-30 07:44 - 00018832 _____ C:\WINDOWS\system32\v7vga.rom
2016-07-12 17:38 - 2015-10-30 07:44 - 00016384 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntvdmd.dll
2016-07-12 17:38 - 2015-10-30 07:44 - 00014710 _____ C:\WINDOWS\system32\KB16.COM
2016-07-12 17:38 - 2015-10-30 07:44 - 00013888 _____ (Microsoft Corporation) C:\WINDOWS\system32\TOOLHELP.DLL
2016-07-12 17:38 - 2015-10-30 07:44 - 00013312 _____ C:\WINDOWS\system32\win87em.dll
2016-07-12 17:38 - 2015-10-30 07:44 - 00012704 _____ (Microsoft Corporation) C:\WINDOWS\system32\WFWNET.DRV
2016-07-12 17:38 - 2015-10-30 07:44 - 00012642 _____ C:\WINDOWS\system32\edlin.exe
2016-07-12 17:38 - 2015-10-30 07:44 - 00012498 _____ C:\WINDOWS\system32\append.exe
2016-07-12 17:38 - 2015-10-30 07:44 - 00011753 _____ C:\WINDOWS\system32\setver.exe
2016-07-12 17:38 - 2015-10-30 07:44 - 00010790 _____ C:\WINDOWS\system32\EDIT.HLP
2016-07-12 17:38 - 2015-10-30 07:44 - 00010544 _____ (Microsoft Corporation) C:\WINDOWS\system32\COMM.drv
2016-07-12 17:38 - 2015-10-30 07:44 - 00009936 _____ (Microsoft Corporation) C:\WINDOWS\system32\lzexpand.dll
2016-07-12 17:38 - 2015-10-30 07:44 - 00009936 _____ (Microsoft Corporation) C:\WINDOWS\system\lzexpand.dll
2016-07-12 17:38 - 2015-10-30 07:44 - 00009216 _____ (Microsoft Corporation) C:\WINDOWS\system32\WIFEMAN.DLL
2016-07-12 17:38 - 2015-10-30 07:44 - 00009029 _____ C:\WINDOWS\system32\ANSI.SYS
2016-07-12 17:38 - 2015-10-30 07:44 - 00009008 _____ (Microsoft Corporation) C:\WINDOWS\system32\ver.dll
2016-07-12 17:38 - 2015-10-30 07:44 - 00009008 _____ (Microsoft Corporation) C:\WINDOWS\system\ver.dll
2016-07-12 17:38 - 2015-10-30 07:44 - 00008424 _____ C:\WINDOWS\system32\exe2bin.exe
2016-07-12 17:38 - 2015-10-30 07:44 - 00008191 _____ C:\WINDOWS\system32\bios4.rom
2016-07-12 17:38 - 2015-10-30 07:44 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\win.com
2016-07-12 17:38 - 2015-10-30 07:44 - 00007052 _____ C:\WINDOWS\system32\nlsfunc.exe
2016-07-12 17:38 - 2015-10-30 07:44 - 00005532 _____ (Microsoft Corporation) C:\WINDOWS\system\stdole.tlb
2016-07-12 17:38 - 2015-10-30 07:44 - 00005120 _____ (Microsoft Corporation) C:\WINDOWS\system32\WINNLS.DLL
2016-07-12 17:38 - 2015-10-30 07:44 - 00005120 _____ (Microsoft Corporation) C:\WINDOWS\system32\SHELL.DLL
2016-07-12 17:38 - 2015-10-30 07:44 - 00005120 _____ (Microsoft Corporation) C:\WINDOWS\system\SHELL.DLL
2016-07-12 17:38 - 2015-10-30 07:44 - 00004768 _____ C:\WINDOWS\system32\HIMEM.SYS
2016-07-12 17:38 - 2015-10-30 07:44 - 00004208 _____ (Microsoft Corporation) C:\WINDOWS\system32\storage.dll
2016-07-12 17:37 - 2015-10-30 07:44 - 00082944 _____ (Microsoft Corporation) C:\WINDOWS\system\olecli.dll
2016-07-12 17:37 - 2015-10-30 07:44 - 00068992 _____ (Microsoft Corporation) C:\WINDOWS\system\MMSYSTEM.DLL
2016-07-12 17:37 - 2015-10-30 07:44 - 00012704 _____ (Microsoft Corporation) C:\WINDOWS\system\WFWNET.DRV
2016-07-12 12:39 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\system32\Macromed
2016-07-11 04:47 - 2015-11-11 22:34 - 00000000 ____D C:\Users\home\AppData\Roaming\Skype
2016-07-06 20:24 - 2016-04-27 06:12 - 00000000 ____D C:\WINDOWS\OCR
2016-07-06 20:19 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\AppCompat
2016-07-06 19:07 - 2015-10-30 07:48 - 00028672 _____ C:\WINDOWS\system32\config\BCD-Template
2016-07-06 19:04 - 2015-10-30 07:48 - 00015703 _____ C:\WINDOWS\system32\OEMDefaultAssociations.xml
2016-07-06 19:04 - 2015-10-30 07:48 - 00000000 ___SD C:\WINDOWS\system32\DiagSvcs
2016-07-06 19:04 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2016-07-06 19:04 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\system32\SystemResetPlatform
2016-07-06 18:58 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\system32\MUI
2016-07-06 18:58 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\system32\inetsrv
2016-07-06 18:58 - 2015-10-30 07:45 - 01014272 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqqm.dll
2016-07-06 18:58 - 2015-10-30 07:45 - 00635904 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqsnap.dll
2016-07-06 18:58 - 2015-10-30 07:45 - 00266240 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqoa.dll
2016-07-06 18:58 - 2015-10-30 07:45 - 00096768 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqoa.tlb
2016-07-06 18:58 - 2015-10-30 07:45 - 00091136 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqoa30.tlb
2016-07-06 18:58 - 2015-10-30 07:45 - 00055808 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqoa20.tlb
2016-07-06 18:58 - 2015-10-30 07:45 - 00037376 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqoa10.tlb
2016-07-06 18:58 - 2015-10-30 07:45 - 00014848 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqcertui.dll
2016-07-06 18:58 - 2015-10-30 07:45 - 00009096 _____ C:\WINDOWS\system32\msmqtrc.mof
2016-07-06 18:57 - 2015-10-30 07:45 - 00562176 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqutil.dll
2016-07-06 18:57 - 2015-10-30 07:45 - 00168960 _____ (Microsoft Corporation) C:\WINDOWS\system32\iisRtl.dll
2016-07-06 18:57 - 2015-10-30 07:45 - 00161792 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqrt.dll
2016-07-06 18:57 - 2015-10-30 07:45 - 00130560 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mqac.sys
2016-07-06 18:57 - 2015-10-30 07:45 - 00104960 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqlogmgr.dll
2016-07-06 18:57 - 2015-10-30 07:45 - 00051200 _____ (Microsoft Corporation) C:\WINDOWS\system32\admwprox.dll
2016-07-06 18:57 - 2015-10-30 07:45 - 00044544 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqbkup.exe
2016-07-06 18:57 - 2015-10-30 07:45 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\ahadmin.dll
2016-07-06 18:57 - 2015-10-30 07:45 - 00025088 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqsvc.exe
2016-07-06 18:57 - 2015-10-30 07:45 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\system32\iisreset.exe
2016-07-06 18:57 - 2015-10-30 07:45 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\system32\wamregps.dll
2016-07-06 18:57 - 2015-10-30 07:45 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\iisrstap.dll
2016-07-06 18:23 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\system32\WinBioDatabase
2016-07-06 18:23 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\Registration
2016-07-06 18:23 - 2015-10-30 07:48 - 00000000 ____D C:\Program Files\Windows NT
2016-07-06 18:22 - 2015-10-30 07:48 - 00000000 __RSD C:\WINDOWS\Media
2016-07-06 18:21 - 2015-10-30 07:48 - 00000000 __RHD C:\Users\Public\Libraries
2016-07-06 18:18 - 2016-04-26 21:23 - 00274048 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2016-07-06 18:17 - 2016-04-27 06:19 - 00000000 ____D C:\WINDOWS\ShellNew
2016-07-06 18:17 - 2015-12-05 15:05 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP
2016-07-06 18:17 - 2015-11-11 22:48 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
2016-07-06 18:17 - 2015-11-11 22:47 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software
2016-07-06 18:17 - 2015-11-11 21:58 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\A4 TECH PC Camera V
2016-07-06 18:17 - 2015-11-11 21:56 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Zoner Photo Studio 14
2016-07-06 18:17 - 2015-11-11 21:42 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office
2016-07-06 18:17 - 2015-10-30 07:13 - 00032768 ___SH C:\WINDOWS\system32\config\ELAM
2016-07-06 18:16 - 2009-07-14 04:37 - 00000000 ____D C:\Users\Default.migrated
2016-07-06 18:15 - 2015-11-14 10:52 - 00000000 ____D C:\WINDOWS\system32\SPReview
2016-07-06 18:15 - 2015-11-14 10:52 - 00000000 ____D C:\WINDOWS\system32\EventProviders
2016-07-06 18:15 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\system32\IME
2016-07-06 18:14 - 2016-04-12 21:29 - 00000000 ____D C:\WINDOWS\system32\appmgmt
2016-07-06 18:14 - 2016-01-18 20:10 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2016-07-06 18:14 - 2015-11-11 22:56 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nero
2016-07-06 18:14 - 2015-10-30 07:48 - 00000000 __SHD C:\Program Files\Windows Sidebar
2016-07-06 18:14 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\schemas
2016-07-06 18:14 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\LiveKernelReports
2016-07-06 18:14 - 2015-10-30 07:48 - 00000000 ____D C:\Program Files\Common Files\microsoft shared
2016-07-06 18:14 - 2009-07-14 09:49 - 00000000 ___RD C:\Users\Public\Recorded TV
2016-07-06 18:14 - 2009-07-14 06:52 - 00000000 ____D C:\Program Files\DVD Maker
2016-07-06 18:11 - 2015-10-30 07:13 - 00000000 ____D C:\WINDOWS\system32\Sysprep
2016-07-06 17:48 - 2009-07-14 06:34 - 00014032 ____H C:\WINDOWS\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2016-07-06 17:48 - 2009-07-14 06:34 - 00014032 ____H C:\WINDOWS\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2016-07-06 17:43 - 2016-04-27 07:17 - 00000000 ___HD C:\$WINDOWS.~BT
2016-07-06 12:47 - 2015-11-11 22:34 - 00000000 ____D C:\ProgramData\Skype
2016-07-02 06:37 - 2015-10-30 07:49 - 00828408 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerApp.exe
2016-07-02 06:37 - 2015-10-30 07:49 - 00176632 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerCPLApp.cpl
2016-06-22 20:34 - 2015-12-05 15:06 - 00000000 ____D C:\Users\home\AppData\Roaming\HpUpdate
2016-06-18 12:43 - 2016-01-18 20:10 - 00000000 ___RD C:\Program Files\Skype

==================== Files in the root of some directories =======

2016-07-16 22:55 - 2016-07-16 22:55 - 0000017 _____ () C:\Users\home\AppData\Local\resmon.resmoncfg
2015-12-05 15:05 - 2015-12-05 15:05 - 0000057 _____ () C:\ProgramData\Ament.ini

Some files in TEMP:
====================
C:\Users\home\AppData\Local\Temp\libeay32.dll
C:\Users\home\AppData\Local\Temp\msvcr120.dll
C:\Users\home\AppData\Local\Temp\sqlite3.dll