Stránka 1 z 1

Vyskakující hláška Js/ProxyChanger.CW/Trojský kůň

Napsal: 18 pro 2016 10:38
od jahoner
Dobrý den,Jsem zde nový a tak nevím jestli píšu dobře.Můj problém je takový mám ESS 10 který mě čas od času v různých intervalech hlásí nalezena hrozba Js/ProxyChanger.CW/Trojský kůň přerušeno spojení.Zkoušel jsem Pc projet snad vším možným a nepodařilo se mě toho zbavit Prosím poradíte.Děkuji. :?:

Re: Vyskakující hláška Js/ProxyChanger.CW/Trojský kůň

Napsal: 18 pro 2016 11:16
od Rudy
Zdravím!
To je hláška antiviru, že ho nepustil do PC. Dejte log FRST: http://forum.viry.cz/viewtopic.php?f=13&t=133100 .

Re: Vyskakující hláška Js/ProxyChanger.CW/Trojský kůň

Napsal: 18 pro 2016 13:35
od jahoner
Dobrý den omlouvám se za pozdní odpověď snad jsem to udělal vše dobře zde posílám Logy.Předem děkuji za pomoc.
[/b]FRST LOG:
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 17-12-2016
Ran by Michal (administrator) on ACER (18-12-2016 13:14:59)
Running from C:\Users\Michal\Desktop
Loaded Profiles: Michal (Available Profiles: Michal)
Platform: Windows 8.1 (Update) (X64) Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: Opera)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(ESET) C:\Program Files\ESET\ESET Smart Security\ekrn.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(Microsoft Corporation) C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Microsoft Corporation) C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe
(Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe
(Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe
(Intel Corporation) C:\Windows\System32\ibtsiva.exe
(Nero AG) C:\Program Files (x86)\Nero\Nero 2014\Nero BackItUp\NBService\NBService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\nvwirelesscontroller.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe
(StarWind Software) C:\Program Files (x86)\Alcohol 120% 2.0.2.5629\StarWind\StarWindServiceAE.exe
(Safer Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy\SDWinSec.exe
(ESET) C:\Program Files\ESET\ESET Smart Security\egui.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvContainer\nvcontainer.exe
(Microsoft Corporation) C:\Windows\SysWOW64\rundll32.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel Corporation) C:\Windows\System32\igfxHK.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe
(Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
(Nero AG) C:\Program Files (x86)\Nero\Update\NASvc.exe
(Opera Software) C:\Program Files (x86)\Opera\42.0.2393.85\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\42.0.2393.85\opera_crashreporter.exe
(Opera Software) C:\Program Files (x86)\Opera\42.0.2393.85\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\42.0.2393.85\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\42.0.2393.85\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\42.0.2393.85\opera.exe
(Adobe Systems Inc.) C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\acrotray.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(emc) C:\Users\Michal\AppData\Roaming\uTorrent\uninstall.exe
(BitTorrent, Inc.) C:\Users\Michal\AppData\Roaming\uTorrent\utorrent.exe
(Opera Software) C:\Program Files (x86)\Opera\42.0.2393.85\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\42.0.2393.85\opera.exe
(GridinSoft LLC) C:\Program Files\Trojan Killer\tk64.exe
(Opera Software) C:\Program Files (x86)\Opera\42.0.2393.85\opera.exe
(forum.viry.cz) C:\Users\Michal\Desktop\FRSTLauncher.exe

==================== Registry (Whitelisted) ====================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [ShadowPlay] => "C:\Windows\system32\rundll32.exe" C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [16776704 2016-12-12] (Realtek Semiconductor)
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [NBAgent] => C:\Program Files (x86)\Nero\Nero 2014\Nero BackItUp\NBAgent.exe [2451792 2014-01-22] (Nero AG)
Winlogon\Notify\LBTWlgn: c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll (Logitech, Inc.)
HKU\S-1-5-21-1363994568-2854874814-1274703555-1001\...\Run: [uTorrent] => C:\Users\Michal\AppData\Roaming\uTorrent\utorrent.exe [416168 2015-02-22] (BitTorrent, Inc.)
HKU\S-1-5-21-1363994568-2854874814-1274703555-1001\...\Run: [SpybotSD TeaTimer] => C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe [2260480 2009-03-05] (Safer-Networking Ltd.)
HKU\S-1-5-21-1363994568-2854874814-1274703555-1001\...\Run: [AlcoholAutomount] => C:\Program Files (x86)\Alcohol 120% 2.0.2.5629\AxAutoMntSrv.exe [75624 2012-01-05] (Alcohol Soft Development Team)
HKU\S-1-5-21-1363994568-2854874814-1274703555-1001\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [27226072 2016-11-15] (Skype Technologies S.A.)
HKU\S-1-5-21-1363994568-2854874814-1274703555-1001\...\Policies\Explorer: [NolowDiskSpaceChecks] 1
HKU\S-1-5-21-1363994568-2854874814-1274703555-1001\...\MountPoints2: {74b601ab-b57f-11e6-82c5-f406693114aa} - "E:\setup.exe"
HKU\S-1-5-21-1363994568-2854874814-1274703555-1001\...\MountPoints2: {751224b8-b934-11e6-82cb-f406693114aa} - "E:\autorun.exe"

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

AutoConfigURL: [.DEFAULT] => hxxp://none-stops.com/wpad.dat?22f8cbf3db0d6a3c493e5395c32273a119428593
AutoConfigURL: [S-1-5-21-1363994568-2854874814-1274703555-1001] => hxxp://none-stops.com/wpad.dat?22f8cbf3db0d6a3c493e5395c32273a119428593
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 213.46.172.36 213.46.172.37
Tcpip\..\Interfaces\{60FDC5E4-84CA-484B-B12B-B17FCD7F8901}: [DhcpNameServer] 213.46.172.36 213.46.172.37
Tcpip\..\Interfaces\{BD2ECBA1-8081-46F5-B47E-5443A819670A}: [DhcpNameServer] 213.46.172.36 213.46.172.37

Internet Explorer:
==================
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <======= ATTENTION
BHO: Adobe Acrobat Create PDF Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\x64\AcroIEFavStub.dll [2016-10-27] (Adobe Systems Incorporated)
BHO: Logitech SetPoint -> {AF949550-9094-4807-95EC-D1C317803333} -> C:\Program Files\Logitech\SetPointP\SetPointSmooth.dll [2015-08-26] (Logitech, Inc.)
BHO: Adobe Acrobat Create PDF from Selection -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\x64\AcroIEFavStub.dll [2016-10-27] (Adobe Systems Incorporated)
BHO-x32: Spybot-S&D IE Protection -> {53707962-6F74-2D53-2644-206D7942484F} -> C:\Program Files (x86)\Spybot - Search & Destroy\SDHelper.dll [2009-01-26] (Safer Networking Limited)
BHO-x32: Adobe Acrobat Create PDF Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll [2016-10-27] (Adobe Systems Incorporated)
BHO-x32: Logitech SetPoint -> {AF949550-9094-4807-95EC-D1C317803333} -> C:\Program Files\Logitech\SetPointP\32-bit\SetPointSmooth.dll [2015-08-26] (Logitech, Inc.)
BHO-x32: Adobe Acrobat Create PDF from Selection -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll [2016-10-27] (Adobe Systems Incorporated)
Toolbar: HKLM - Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\x64\AcroIEFavStub.dll [2016-10-27] (Adobe Systems Incorporated)
Toolbar: HKLM-x32 - Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll [2016-10-27] (Adobe Systems Incorporated)
Toolbar: HKU\S-1-5-21-1363994568-2854874814-1274703555-1001 -> Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\x64\AcroIEFavStub.dll [2016-10-27] (Adobe Systems Incorporated)

FireFox:
========
FF HKLM-x32\...\Firefox\Extensions: [{F003DA68-8256-4b37-A6C4-350FA04494DF}] - C:\Program Files\Logitech\SetPointP\LogiSmoothFirefoxExt
FF Extension: (Logitech SetPoint) - C:\Program Files\Logitech\SetPointP\LogiSmoothFirefoxExt [2016-10-03] [not signed]
FF HKLM-x32\...\Firefox\Extensions: [web2pdfextension.15@web2pdf.adobedotcom] - C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Browser\WCFirefoxExtn
FF Extension: (Adobe Acrobat DC - Create PDF) - C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Browser\WCFirefoxExtn [2016-11-28]
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.50901.0\npctrl.dll [2016-08-31] ( Microsoft Corporation)
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll [2015-07-29] (Adobe Systems)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.50901.0\npctrl.dll [2016-08-31] ( Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.32.7\npGoogleUpdate3.dll [2016-12-16] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.32.7\npGoogleUpdate3.dll [2016-12-16] (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.2.4 -> C:\Program Files (x86)\VLC media player\npvlc.dll [2016-06-01] (VideoLAN)
FF Plugin-x32: Adobe Acrobat -> C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2016-10-27] (Adobe Systems Inc.)
FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll [2015-07-29] (Adobe Systems)

Chrome:
=======
CHR Profile: C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default [2016-12-16]
CHR Extension: (Prezentace Google) - C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2016-10-03]
CHR Extension: (Dokumenty Google) - C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2016-10-03]
CHR Extension: (Disk Google) - C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-10-03]
CHR Extension: (YouTube) - C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-10-03]
CHR Extension: (Adobe Acrobat) - C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2016-12-06]
CHR Extension: (Tabulky Google) - C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2016-10-03]
CHR Extension: (Dokumenty Google offline) - C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-10-03]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-10-03]
CHR Extension: (Gmail) - C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2016-10-03]
CHR Extension: (Chrome Media Router) - C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2016-10-30]
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - hxxps://clients2.google.com/service/update2/crx

==================== Services (Whitelisted) ====================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2207960 2016-09-26] (Adobe Systems, Incorporated)
S2 AxAutoMntSrv; C:\Program Files (x86)\Alcohol 120% 2.0.2.5629\AxAutoMntSrv.exe [75624 2012-01-05] (Alcohol Soft Development Team)
R2 ekrn; C:\Program Files\ESET\ESET Smart Security\ekrn.exe [2815520 2016-11-28] (ESET)
R2 HPSLPSVC; C:\Program Files (x86)\HP\Digital Imaging\bin\HPSLPSVC64.DLL [1039360 2011-08-18] (Hewlett-Packard Co.) [File not signed]
S3 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [18504 2016-04-28] (Intel Corporation)
R2 igfxCUIService2.0.0.0; C:\Windows\system32\igfxCUIService.exe [365048 2016-10-06] (Intel Corporation)
R2 NBService; C:\Program Files (x86)\Nero\Nero 2014\Nero BackItUp\NBService\NBService.exe [268112 2014-01-22] (Nero AG)
R2 Net Driver HPZ12; C:\Windows\System32\HPZinw12.dll [71680 2010-08-06] (Hewlett-Packard) [File not signed]
R2 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [462784 2016-12-13] (NVIDIA Corporation)
S3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [462784 2016-12-13] (NVIDIA Corporation)
R2 NVDisplay.ContainerLocalSystem; C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe [459832 2016-12-11] (NVIDIA Corporation)
R2 NVIDIA Wireless Controller Service; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\nvwirelesscontroller.exe [1163712 2016-12-13] (NVIDIA Corporation)
R2 NvTelemetryContainer; C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe [425408 2016-12-13] (NVIDIA Corporation)
R2 Pml Driver HPZ12; C:\Windows\System32\HPZipm12.dll [89600 2010-08-06] (Hewlett-Packard) [File not signed]
R2 SBSDWSCService; C:\Program Files (x86)\Spybot - Search & Destroy\SDWinSec.exe [1153368 2009-01-26] (Safer Networking Ltd.)
R2 StarWindServiceAE; C:\Program Files (x86)\Alcohol 120% 2.0.2.5629\StarWind\StarWindServiceAE.exe [370688 2009-12-23] (StarWind Software) [File not signed]
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [366552 2015-07-07] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23824 2015-07-07] (Microsoft Corporation)
R2 ibtsiva; %SystemRoot%\system32\ibtsiva [X]

===================== Drivers (Whitelisted) ======================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

U3 axscsidrv; C:\Windows\System32\Drivers\axscsidrv.sys [293888 2016-12-03] (Alcohol Soft Development Team)
S3 dot4; C:\Windows\system32\DRIVERS\Dot4.sys [151968 2012-09-25] (Windows (R) Win 7 DDK provider)
S3 Dot4Print; C:\Windows\System32\drivers\Dot4Prt.sys [27040 2012-09-25] (Windows (R) Win 7 DDK provider)
R1 eamonm; C:\Windows\System32\DRIVERS\eamonm.sys [232072 2016-11-28] (ESET)
R0 edevmon; C:\Windows\System32\DRIVERS\edevmon.sys [212096 2016-11-28] (ESET)
S0 eelam; C:\Windows\System32\DRIVERS\eelam.sys [15488 2016-08-08] (ESET)
R1 ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [177792 2016-11-28] (ESET)
R2 ekbdflt; C:\Windows\system32\DRIVERS\ekbdflt.sys [48768 2016-11-28] (ESET)
R1 epfw; C:\Windows\system32\DRIVERS\epfw.sys [76416 2016-11-28] (ESET)
R1 epfwwfp; C:\Windows\system32\DRIVERS\epfwwfp.sys [91784 2016-11-28] (ESET)
S3 ESETCleanersDriver; C:\Windows\system32\Drivers\ESETCleanersDriver.sys [181160 2016-10-03] (ESET)
R1 HWiNFO32; C:\Windows\SysWOW64\drivers\HWiNFO64A.SYS [27552 2016-09-29] (REALiX(tm))
R3 iaLPSS_GPIO; C:\Windows\System32\drivers\iaLPSS_GPIO.sys [35320 2016-11-28] (Intel Corporation)
R3 iaLPSS_I2C; C:\Windows\System32\drivers\iaLPSS_I2C.sys [120312 2016-09-29] (Intel Corporation)
R3 ibtusb; C:\Windows\system32\DRIVERS\ibtusb.sys [228624 2016-12-02] (Intel Corporation)
R1 ISODrive; C:\Program Files (x86)\UltraISO 9.6.5\drivers\ISODrv64.sys [115448 2013-11-21] (EZB Systems, Inc.)
R3 NETwNb64; C:\Windows\system32\DRIVERS\Netwbw02.sys [3517200 2016-11-28] (Intel Corporation)
S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [27584 2016-12-13] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [46016 2016-12-13] (NVIDIA Corporation)
R3 RTSPER; C:\Windows\system32\DRIVERS\RtsPer.sys [779232 2016-12-18] (Realsil Semiconductor Corporation)
S3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [42600 2016-10-08] (Synaptics Incorporated)
R0 sptd; C:\Windows\System32\Drivers\sptd.sys [394296 2016-11-28] (Duplex Secure Ltd.)
R3 SynRMIHID; C:\Windows\system32\DRIVERS\SynRMIHID.sys [43176 2015-01-14] (Synaptics Incorporated)
R3 TrojanKillerDriver; C:\Windows\System32\DRIVERS\gtkdrv.sys [16640 2013-11-13] (Windows (R) Win 7 DDK provider)
S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [44560 2015-07-07] (Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [270168 2015-07-07] (Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114520 2015-07-07] (Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2016-12-18 13:14 - 2016-12-18 13:16 - 00017819 _____ C:\Users\Michal\Desktop\FRST.txt
2016-12-18 13:13 - 2016-12-18 13:14 - 00000000 ____D C:\FRST
2016-12-18 13:12 - 2016-12-18 13:12 - 00112640 _____ (forum.viry.cz) C:\Users\Michal\Desktop\FRSTLauncher.exe
2016-12-18 13:11 - 2016-12-18 13:11 - 02420224 _____ (Farbar) C:\Users\Michal\Desktop\FRST64.exe
2016-12-18 09:36 - 2016-12-18 09:36 - 00000972 _____ C:\Users\Michal\Desktop\Trojan Killer.lnk
2016-12-18 09:36 - 2016-12-18 09:36 - 00000000 ____D C:\Program Files\Trojan Killer
2016-12-18 00:17 - 2016-12-18 00:17 - 04332032 _____ (Realtek Semiconductor Corp.) C:\Windows\RtCRU64.exe
2016-12-18 00:16 - 2016-12-18 00:16 - 09891328 _____ (Realtek Semiconductor Corp.) C:\Windows\SysWOW64\RsCRIcon.dll
2016-12-18 00:16 - 2016-12-18 00:16 - 00779232 _____ (Realsil Semiconductor Corporation) C:\Windows\system32\Drivers\RtsPer.sys
2016-12-17 22:12 - 2016-12-17 22:12 - 01811408 _____ (GridinSoft LLC) C:\Users\Michal\Downloads\TrojanKiller-Setup.exe
2016-12-17 22:07 - 2016-12-17 22:07 - 65091536 _____ C:\Users\Michal\Downloads\gsam-3.0.67-setup.exe
2016-12-17 22:05 - 2016-12-18 09:28 - 00000000 ____D C:\Program Files\GridinSoft Trojan Killer
2016-12-17 22:05 - 2016-12-17 22:05 - 00000980 _____ C:\Users\Public\Desktop\Trojan Killer.lnk
2016-12-17 22:05 - 2016-12-17 22:05 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GridinSoft Trojan Killer
2016-12-17 21:27 - 2016-12-17 21:58 - 00000000 ____D C:\Program Files\GridinSoft Anti-Malware
2016-12-17 21:21 - 2016-12-17 21:21 - 00000000 ____D C:\Users\Michal\Downloads\GridinSoft-Trojan-Killer-2.2.0.6+Crack+Key[Krish]
2016-12-17 21:18 - 2016-12-17 21:21 - 64513551 _____ C:\Users\Michal\Downloads\GridinSoft-Trojan-Killer-2.2.0.6+Crack+Key[Krish].rar
2016-12-17 21:14 - 2016-12-17 22:02 - 00000000 ____D C:\ProgramData\GridinSoft
2016-12-17 21:13 - 2016-12-17 21:14 - 50689016 _____ (GridinSoft LLC) C:\Users\Michal\Downloads\gtk-2.2.4.4-setup.exe
2016-12-17 21:03 - 2016-12-17 21:03 - 00011804 _____ C:\Users\Michal\Downloads\[CzT]GridinSoft_Trojan_Killer_v2_2_3_4.torrent
2016-12-17 20:45 - 2016-12-17 20:45 - 00017123 _____ C:\Users\Michal\Downloads\[CzT]Trojan_Remover_v6_9_4_Build_2943_2016_.torrent
2016-12-17 20:11 - 2016-12-17 20:10 - 00453007 ____R C:\Windows\system32\Drivers\etc\hosts.20161217-201134.backup
2016-12-17 20:07 - 2016-12-17 20:07 - 00419840 _____ (Creative Labs) C:\Windows\system32\wrap_oal.dll
2016-12-17 20:07 - 2016-12-17 20:07 - 00413696 _____ (Creative Labs) C:\Windows\SysWOW64\wrap_oal.dll
2016-12-17 20:07 - 2016-12-17 20:07 - 00133632 _____ (Portions (C) Creative Labs Inc. and NVIDIA Corp.) C:\Windows\system32\OpenAL32.dll
2016-12-17 20:07 - 2016-12-17 20:07 - 00110592 _____ (Portions (C) Creative Labs Inc. and NVIDIA Corp.) C:\Windows\SysWOW64\OpenAL32.dll
2016-12-17 17:27 - 2016-12-17 17:27 - 00000000 ____D C:\ProgramData\Orbit
2016-12-17 17:09 - 2016-12-17 17:09 - 00000000 ____D C:\Users\Michal\AppData\Local\kaneandlynch
2016-12-17 17:08 - 2016-12-17 17:08 - 00000000 __RHD C:\Users\Michal\AppData\Roaming\SecuROM
2016-12-17 16:53 - 2016-12-17 16:53 - 00000000 ____D C:\Program Files (x86)\OpenAL
2016-12-17 16:45 - 2016-12-17 16:45 - 00000000 ____D C:\Windows\SysWOW64\xlive
2016-12-17 16:06 - 2016-12-17 16:06 - 00000000 ____D C:\Users\Michal\AppData\Roaming\Steam
2016-12-17 16:03 - 2016-12-17 16:03 - 00020955 _____ C:\Users\Michal\Downloads\[CzT]Kane_and_Lynch_Dead_Men_CZ.torrent
2016-12-17 15:42 - 2016-12-17 15:42 - 00040023 _____ C:\Users\Michal\Downloads\kane.and.lynch.dead.men.full.game.torrent
2016-12-17 15:31 - 2016-12-17 15:31 - 00000000 ____D C:\Users\Michal\AppData\Local\ElevatedDiagnostics
2016-12-17 15:02 - 2016-12-17 15:02 - 00000000 ____D C:\Users\Michal\AppData\Local\76561197960270647
2016-12-17 15:01 - 2016-12-17 15:01 - 00000000 ____D C:\ProgramData\Steam
2016-12-17 14:12 - 2016-12-17 17:03 - 00000495 _____ C:\Users\Michal\Documents\ax_files.xml
2016-12-17 07:37 - 2016-12-17 07:37 - 00000180 _____ C:\Windows\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2016-12-16 23:08 - 2016-12-16 23:08 - 00003384 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2016-12-16 23:08 - 2016-12-16 23:08 - 00003256 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2016-12-16 13:06 - 2016-12-16 13:06 - 00003838 _____ C:\Windows\System32\Tasks\Opera scheduled Autoupdate 1475165997
2016-12-16 13:05 - 2016-12-16 13:05 - 00001067 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Opera.lnk
2016-12-16 07:48 - 2016-12-17 16:07 - 00000000 ____D C:\Users\Michal\AppData\Roaming\NVIDIA
2016-12-16 06:48 - 2016-12-12 00:00 - 00835576 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2016-12-16 06:48 - 2016-12-12 00:00 - 00177656 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2016-12-16 06:47 - 2016-12-17 07:34 - 00005701 _____ C:\ProgramData\NvTelemetryContainer.log_backup1
2016-12-16 06:35 - 2016-12-16 06:35 - 00000000 ____D C:\Users\Michal\AppData\Local\A
2016-12-16 06:27 - 2016-12-01 15:13 - 00869576 _____ (Microsoft Corporation) C:\Windows\system32\msvcr120_clr0400.dll
2016-12-16 06:27 - 2016-12-01 15:13 - 00678592 _____ (Microsoft Corporation) C:\Windows\system32\msvcp120_clr0400.dll
2016-12-16 06:27 - 2016-12-01 15:11 - 00875720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcr120_clr0400.dll
2016-12-16 06:27 - 2016-12-01 15:11 - 00536768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcp120_clr0400.dll
2016-12-16 01:54 - 2016-12-16 01:54 - 00000000 ____D C:\Program Files (x86)\VulkanRT
2016-12-16 01:54 - 2016-09-09 19:25 - 00269600 _____ C:\Windows\SysWOW64\vulkan-1.dll
2016-12-16 01:54 - 2016-09-09 19:25 - 00261920 _____ C:\Windows\system32\vulkan-1.dll
2016-12-16 01:54 - 2016-09-09 19:25 - 00110880 _____ C:\Windows\SysWOW64\vulkaninfo.exe
2016-12-16 01:54 - 2016-09-09 19:24 - 00125216 _____ C:\Windows\system32\vulkaninfo.exe
2016-12-16 01:53 - 2016-12-11 19:47 - 06384576 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll
2016-12-16 01:53 - 2016-12-11 19:47 - 02475968 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll
2016-12-16 01:53 - 2016-12-11 19:47 - 01764408 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll
2016-12-16 01:53 - 2016-12-11 19:47 - 00548408 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshext.dll
2016-12-16 01:53 - 2016-12-11 19:47 - 00392128 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll
2016-12-16 01:53 - 2016-12-11 19:47 - 00081856 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshextr.dll
2016-12-16 01:53 - 2016-12-11 19:47 - 00071224 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll
2016-12-16 01:53 - 2016-12-11 19:47 - 00001951 _____ C:\Windows\NvContainerRecovery.bat
2016-12-16 01:53 - 2016-12-09 09:52 - 07639617 _____ C:\Windows\system32\nvcoproc.bin
2016-12-16 01:46 - 2016-12-12 03:37 - 40125496 _____ C:\Windows\system32\nvcompiler.dll
2016-12-16 01:46 - 2016-12-12 03:37 - 35222976 _____ C:\Windows\SysWOW64\nvcompiler.dll
2016-12-16 01:46 - 2016-12-12 03:37 - 34703416 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll
2016-12-16 01:46 - 2016-12-12 03:37 - 28138432 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll
2016-12-16 01:46 - 2016-12-12 03:37 - 19947472 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll
2016-12-16 01:46 - 2016-12-12 03:37 - 17436808 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll
2016-12-16 01:46 - 2016-12-12 03:37 - 17376896 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll
2016-12-16 01:46 - 2016-12-12 03:37 - 14410472 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll
2016-12-16 01:46 - 2016-12-12 03:37 - 14073400 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys
2016-12-16 01:46 - 2016-12-12 03:37 - 10912744 _____ (NVIDIA Corporation) C:\Windows\system32\nvptxJitCompiler.dll
2016-12-16 01:46 - 2016-12-12 03:37 - 10795312 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll
2016-12-16 01:46 - 2016-12-12 03:37 - 10345696 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
2016-12-16 01:46 - 2016-12-12 03:37 - 09151216 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll
2016-12-16 01:46 - 2016-12-12 03:37 - 08913328 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvptxJitCompiler.dll
2016-12-16 01:46 - 2016-12-12 03:37 - 08753832 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2016-12-16 01:46 - 2016-12-12 03:37 - 03941536 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll
2016-12-16 01:46 - 2016-12-12 03:37 - 03640376 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
2016-12-16 01:46 - 2016-12-12 03:37 - 03479744 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll
2016-12-16 01:46 - 2016-12-12 03:37 - 03206080 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2016-12-16 01:46 - 2016-12-12 03:37 - 01953336 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6437633.dll
2016-12-16 01:46 - 2016-12-12 03:37 - 01586744 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6437633.dll
2016-12-16 01:46 - 2016-12-12 03:37 - 01036224 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll
2016-12-16 01:46 - 2016-12-12 03:37 - 00975416 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
2016-12-16 01:46 - 2016-12-12 03:37 - 00944184 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll
2016-12-16 01:46 - 2016-12-12 03:37 - 00896056 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
2016-12-16 01:46 - 2016-12-12 03:37 - 00683640 _____ (NVIDIA Corporation) C:\Windows\system32\nvfatbinaryLoader.dll
2016-12-16 01:46 - 2016-12-12 03:37 - 00572888 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvfatbinaryLoader.dll
2016-12-16 01:46 - 2016-12-12 03:37 - 00521096 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll
2016-12-16 01:46 - 2016-12-12 03:37 - 00438208 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFROpenGL.dll
2016-12-16 01:46 - 2016-12-12 03:37 - 00435904 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll
2016-12-16 01:46 - 2016-12-12 03:37 - 00388544 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFROpenGL.dll
2016-12-16 01:46 - 2016-12-12 03:37 - 00170688 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll
2016-12-16 01:46 - 2016-12-12 03:37 - 00148016 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll
2016-12-16 01:46 - 2016-12-12 03:37 - 00041334 _____ C:\Windows\system32\nvinfo.pb
2016-12-16 01:46 - 2016-12-12 03:37 - 00000669 _____ C:\Windows\SysWOW64\nv-vk32.json
2016-12-16 01:46 - 2016-12-12 03:37 - 00000669 _____ C:\Windows\system32\nv-vk64.json
2016-12-16 01:41 - 2016-12-16 01:41 - 00000000 ____D C:\Users\Michal\AppData\Local\Chromium
2016-12-16 01:40 - 2016-12-16 01:40 - 00003830 _____ C:\Windows\System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2016-12-16 01:39 - 2016-12-16 01:39 - 00004234 _____ C:\Windows\System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2016-12-16 01:38 - 2016-12-16 01:38 - 00003826 _____ C:\Windows\System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2016-12-16 01:38 - 2016-12-16 01:38 - 00003826 _____ C:\Windows\System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2016-12-16 01:38 - 2016-12-16 01:38 - 00003818 _____ C:\Windows\System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2016-12-16 01:38 - 2016-12-16 01:38 - 00003642 _____ C:\Windows\System32\Tasks\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2016-12-16 01:38 - 2016-12-16 01:38 - 00003582 _____ C:\Windows\System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2016-12-16 01:38 - 2016-12-12 15:36 - 00001951 _____ C:\Windows\NvTelemetryContainerRecovery.bat
2016-12-16 01:37 - 2016-12-13 00:36 - 00156096 _____ (NVIDIA Corporation) C:\Windows\system32\nvaudcap64v.dll
2016-12-16 01:37 - 2016-12-13 00:36 - 00123840 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvaudcap32v.dll
2016-12-16 01:37 - 2016-12-13 00:36 - 00046016 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvad64v.sys
2016-12-14 09:47 - 2016-11-19 22:24 - 00567152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys
2016-12-14 09:47 - 2016-11-19 22:24 - 00152856 _____ (Microsoft Corporation) C:\Windows\system32\bcrypt.dll
2016-12-14 09:47 - 2016-11-19 20:29 - 00401408 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
2016-12-14 09:47 - 2016-11-19 19:44 - 00445440 _____ (Microsoft Corporation) C:\Windows\system32\certcli.dll
2016-12-14 09:47 - 2016-11-19 18:53 - 00324096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certcli.dll
2016-12-14 09:47 - 2016-11-19 18:22 - 00111104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bcrypt.dll
2016-12-14 09:47 - 2016-11-16 22:49 - 00377176 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\clfs.sys
2016-12-14 09:47 - 2016-11-12 22:06 - 00738104 _____ (Microsoft Corporation) C:\Windows\system32\d3d10level9.dll
2016-12-14 09:47 - 2016-11-12 20:38 - 00613632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10level9.dll
2016-12-14 09:47 - 2016-11-12 20:25 - 00576000 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2016-12-14 09:47 - 2016-11-12 20:08 - 25759744 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2016-12-14 09:47 - 2016-11-12 20:07 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2016-12-14 09:47 - 2016-11-12 19:53 - 06049280 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2016-12-14 09:47 - 2016-11-12 19:29 - 00498688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2016-12-14 09:47 - 2016-11-12 19:23 - 01033216 _____ (Microsoft Corporation) C:\Windows\system32\inetcomm.dll
2016-12-14 09:47 - 2016-11-12 19:17 - 20302848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2016-12-14 09:47 - 2016-11-12 19:14 - 00663552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2016-12-14 09:47 - 2016-11-12 19:10 - 00806912 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2016-12-14 09:47 - 2016-11-12 18:45 - 00880640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcomm.dll
2016-12-14 09:47 - 2016-11-12 18:41 - 15257088 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2016-12-14 09:47 - 2016-11-12 18:38 - 00693248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2016-12-14 09:47 - 2016-11-12 18:37 - 04608000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2016-12-14 09:47 - 2016-11-12 18:35 - 02920960 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2016-12-14 09:47 - 2016-11-12 18:21 - 13653504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2016-12-14 09:47 - 2016-11-12 18:20 - 01543680 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2016-12-14 09:47 - 2016-11-12 18:11 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2016-12-14 09:47 - 2016-11-12 18:05 - 02444800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2016-12-14 09:47 - 2016-11-12 18:02 - 01312256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2016-12-14 09:47 - 2016-11-12 18:02 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2016-12-14 09:47 - 2016-11-11 03:33 - 01541240 _____ (Microsoft Corporation) C:\Windows\system32\user32.dll
2016-12-14 09:47 - 2016-11-09 18:25 - 01376768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user32.dll
2016-12-14 09:47 - 2016-11-05 19:35 - 04169216 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2016-12-14 09:47 - 2016-11-05 18:57 - 03320320 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
2016-12-14 09:47 - 2016-11-05 18:11 - 03606528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll
2016-12-14 09:47 - 2016-11-05 16:56 - 02778624 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll
2016-12-14 09:47 - 2016-11-05 16:46 - 02463744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll
2016-12-14 09:47 - 2016-10-28 03:56 - 01380048 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2016-12-14 09:47 - 2016-10-27 15:28 - 01097728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll
2016-12-13 00:44 - 2016-12-13 00:44 - 00416504 _____ (Harman) C:\Windows\system32\HMUI.dll
2016-12-13 00:44 - 2016-12-13 00:44 - 00366120 _____ (Windows (R) Win 7 DDK provider) C:\Windows\system32\HMAPO.dll
2016-12-13 00:44 - 2016-12-13 00:44 - 00154360 _____ (Harman) C:\Windows\system32\HarmanAudioInterface.dll
2016-12-13 00:43 - 2016-12-13 00:44 - 00190928 _____ (Harman) C:\Windows\system32\HMEQ_Voice.dll
2016-12-13 00:43 - 2016-12-13 00:43 - 00360344 _____ (Harman) C:\Windows\system32\HMClariFi.dll
2016-12-13 00:43 - 2016-12-13 00:43 - 00203840 _____ (Harman) C:\Windows\system32\HMHVS.dll
2016-12-13 00:43 - 2016-12-13 00:43 - 00190928 _____ (Harman) C:\Windows\system32\HMEQ.dll
2016-12-13 00:43 - 2016-12-13 00:43 - 00179592 _____ (Harman) C:\Windows\system32\HMLimiter.dll
2016-12-13 00:42 - 2016-12-13 00:43 - 01920919 _____ C:\Windows\system32\Drivers\rtkSSTsetting.dat
2016-12-13 00:41 - 2016-12-13 00:42 - 01186832 _____ (Intel Corporation) C:\Windows\system32\IntelSstCApoPropPage.dll
2016-12-13 00:37 - 2016-12-13 00:41 - 10531584 _____ (Intel Corporation) C:\Windows\system32\IntelSSTAPO.dll
2016-12-13 00:34 - 2016-12-13 00:34 - 00378384 _____ (Dolby Laboratories) C:\Windows\system32\HiFiDAX2API.dll
2016-12-13 00:33 - 2016-12-13 00:34 - 01133584 _____ (Dolby Laboratories) C:\Windows\system32\DolbyDAX2APOProp.dll
2016-12-13 00:32 - 2016-12-13 00:33 - 05347000 _____ (Dolby Laboratories) C:\Windows\system32\DolbyDAX2APOv211.dll
2016-12-13 00:32 - 2016-12-13 00:32 - 02444688 _____ (Dolby Laboratories) C:\Windows\system32\DolbyDAX2APOv201.dll
2016-12-13 00:28 - 2016-12-13 00:32 - 12988336 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVoiceAPO4064.dll
2016-12-13 00:27 - 2016-12-13 00:28 - 02291304 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO7064.dll
2016-12-13 00:26 - 2016-12-13 00:27 - 00865912 _____ (Sound Research, Corp.) C:\Windows\SysWOW64\SEHDHF32.dll
2016-12-13 00:26 - 2016-12-13 00:26 - 00859216 _____ (Sound Research, Corp.) C:\Windows\system32\SEHDRA64.dll
2016-12-13 00:26 - 2016-12-13 00:26 - 00721800 _____ (Sound Research, Corp.) C:\Windows\SysWOW64\SECOMN32.dll
2016-12-13 00:25 - 2016-12-13 00:26 - 01003328 _____ (Sound Research, Corp.) C:\Windows\system32\SEHDHF64.dll
2016-12-13 00:25 - 2016-12-13 00:25 - 00850408 _____ (Sound Research, Corp.) C:\Windows\system32\SECOMN64.dll
2016-12-13 00:25 - 2016-12-13 00:25 - 00499152 _____ (Sound Research, Corp.) C:\Windows\system32\SEAPO64.dll
2016-12-13 00:24 - 2016-12-13 00:25 - 00601136 _____ (Toshiba Client Solutions Co., Ltd.) C:\Windows\system32\tossaemaxapo64.dll
2016-12-13 00:22 - 2016-12-13 00:24 - 06198136 _____ (Nahimic Inc) C:\Windows\system32\NAHIMICV3apo.dll
2016-12-13 00:20 - 2016-12-13 00:22 - 05793520 _____ (Nahimic Inc) C:\Windows\system32\NAHIMICV2apo.dll
2016-12-13 00:19 - 2016-12-13 00:20 - 06264632 _____ (Dolby Laboratories) C:\Windows\system32\DDPP64AF3.dll
2016-12-13 00:19 - 2016-12-13 00:19 - 00362048 _____ (Dolby Laboratories) C:\Windows\system32\DDPO64AF3.dll
2016-12-13 00:18 - 2016-12-13 00:19 - 01959600 _____ (Dolby Laboratories) C:\Windows\system32\DDPD64AF3.dll
2016-12-13 00:18 - 2016-12-13 00:18 - 00310416 _____ (Dolby Laboratories) C:\Windows\system32\DDPA64F3.dll
2016-12-13 00:17 - 2016-12-13 00:18 - 02828432 _____ (Realtek Semiconductor Corp.) C:\Windows\SysWOW64\RltkAPO.dll
2016-12-13 00:17 - 2016-12-13 00:17 - 01435136 _____ (Synopsys, Inc.) C:\Windows\system32\SRRPTR64.dll
2016-12-13 00:17 - 2016-12-13 00:17 - 00341144 _____ (Synopsys, Inc.) C:\Windows\SysWOW64\SRCOM.dll
2016-12-13 00:17 - 2016-12-13 00:17 - 00341144 _____ (Synopsys, Inc.) C:\Windows\system32\SRCOM.dll
2016-12-13 00:16 - 2016-12-13 00:17 - 00381408 _____ (Synopsys, Inc.) C:\Windows\system32\SRCOM64.dll
2016-12-13 00:16 - 2016-12-13 00:16 - 00467152 _____ (Synopsys, Inc.) C:\Windows\system32\SRAPO64.dll
2016-12-13 00:15 - 2016-12-13 00:15 - 01529136 _____ (Conexant Systems Inc.) C:\Windows\system32\CX64Proxy.dll
2016-12-13 00:14 - 2016-12-13 00:15 - 01615656 _____ (Conexant Systems Inc.) C:\Windows\system32\CX64APO.dll
2016-12-13 00:13 - 2016-12-13 00:14 - 00588032 _____ (ICEpower a/s) C:\Windows\system32\ICEsoundAPO64.dll
2016-12-13 00:09 - 2016-12-13 00:13 - 13122576 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVoiceAPO3064.dll
2016-12-13 00:08 - 2016-12-13 00:09 - 01422920 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO6064.dll
2016-12-13 00:06 - 2016-12-13 00:08 - 03299816 _____ (Yamaha Corporation) C:\Windows\system32\YamahaAE2.dll
2016-12-13 00:05 - 2016-12-13 00:06 - 02190976 _____ (Yamaha Corporation) C:\Windows\system32\YamahaAE.dll
2016-12-13 00:01 - 2016-12-13 00:05 - 07096184 _____ (Dolby Laboratories) C:\Windows\system32\DDPP64A.dll
2016-12-13 00:01 - 2016-12-13 00:01 - 01965808 _____ (Dolby Laboratories) C:\Windows\system32\DDPD64A.dll
2016-12-13 00:01 - 2016-12-13 00:01 - 00327448 _____ (Dolby Laboratories) C:\Windows\system32\DDPO64A.dll
2016-12-13 00:00 - 2016-12-13 00:01 - 00272712 _____ (Dolby Laboratories) C:\Windows\system32\DDPA64.dll
2016-12-13 00:00 - 2016-12-13 00:00 - 00118592 _____ C:\Windows\system32\AcpiServiceVnA64.dll
2016-12-13 00:00 - 2016-12-13 00:00 - 00105304 _____ C:\Windows\system32\audioLibVc.dll
2016-12-12 23:59 - 2016-12-13 00:00 - 01334376 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxSpeechAPO64.dll
2016-12-12 23:59 - 2016-12-12 23:59 - 01003856 _____ (Nahimic Inc) C:\Windows\system32\NahimicAPONSControl.dll
2016-12-12 23:57 - 2016-12-12 23:59 - 05593608 _____ (Nahimic Inc) C:\Windows\system32\NAHIMICAPOlfx.dll
2016-12-12 23:57 - 2016-12-12 23:57 - 00923736 _____ (Sony Corporation) C:\Windows\system32\MISS_APO.dll
2016-12-12 23:56 - 2016-12-12 23:57 - 00689880 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtDataProc64.dll
2016-12-12 23:55 - 2016-12-12 23:56 - 01337632 _____ (Toshiba Client Solutions Co., Ltd.) C:\Windows\system32\tossaeapo64.dll
2016-12-12 23:55 - 2016-12-12 23:55 - 00447176 _____ (Toshiba Client Solutions Co., Ltd.) C:\Windows\system32\toseaeapo64.dll
2016-12-12 23:54 - 2016-12-12 23:55 - 00962120 _____ (Toshiba Client Solutions Co., Ltd.) C:\Windows\system32\tosasfapo64.dll
2016-12-12 23:54 - 2016-12-12 23:54 - 00122320 _____ (Real Sound Lab SIA) C:\Windows\system32\CONEQMSAPOGUILibrary.dll
2016-12-12 23:50 - 2016-12-12 23:51 - 02706856 _____ (DTS, Inc.) C:\Windows\system32\sltech64.dll
2016-12-12 23:47 - 2016-12-12 23:49 - 02995000 _____ (DTS, Inc.) C:\Windows\system32\slcnt64.dll
2016-12-12 23:47 - 2016-12-12 23:47 - 00258864 _____ (TODO: <Company name>) C:\Windows\system32\slprp64.dll
2016-12-12 23:46 - 2016-12-12 23:47 - 00984912 _____ (DTS, Inc.) C:\Windows\system32\sl3apo64.dll
2016-12-12 23:41 - 2016-12-12 23:41 - 00999848 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVoiceAPO2064.dll
2016-12-12 23:40 - 2016-12-12 23:41 - 01213656 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO5064.dll
2016-12-12 23:39 - 2016-12-12 23:40 - 01166152 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO4064.dll
2016-12-12 23:36 - 2016-12-12 23:39 - 07890895 _____ C:\Windows\system32\Drivers\RTAIODAT.DAT
2016-12-12 23:36 - 2016-12-12 23:36 - 00075536 _____ (TOSHIBA CORPORATION.) C:\Windows\system32\tepeqapo64.dll
2016-12-12 23:35 - 2016-12-12 23:36 - 00873456 _____ (TOSHIBA Corporation) C:\Windows\system32\tadefxapo264.dll
2016-12-12 23:34 - 2016-12-12 23:35 - 00158688 _____ (TOSHIBA Corporation) C:\Windows\system32\tadefxapo.dll
2016-12-12 23:34 - 2016-12-12 23:34 - 01382232 _____ (TOSHIBA Corporation) C:\Windows\system32\tosade.dll
2016-12-12 23:33 - 2016-12-12 23:33 - 00428224 _____ (DTS) C:\Windows\system32\DTSU2PREC64.dll
2016-12-12 23:32 - 2016-12-12 23:33 - 00514520 _____ (DTS) C:\Windows\system32\DTSU2PLFX64.dll
2016-12-12 23:32 - 2016-12-12 23:32 - 00618176 _____ (Knowles Acoustics ) C:\Windows\system32\KAAPORT64.dll
2016-12-12 23:32 - 2016-12-12 23:32 - 00500552 _____ (DTS) C:\Windows\system32\DTSU2PGFX64.dll
2016-12-12 23:17 - 2016-12-12 23:17 - 00134192 _____ (Dolby Laboratories) C:\Windows\system32\R4EEA64A.dll
2016-12-12 23:10 - 2016-12-12 23:17 - 07172912 _____ (Dolby Laboratories) C:\Windows\system32\R4EEP64A.dll
2016-12-12 23:10 - 2016-12-12 23:10 - 00447712 _____ (Dolby Laboratories) C:\Windows\system32\R4EED64A.dll
2016-12-12 23:09 - 2016-12-12 23:10 - 00084608 _____ (Dolby Laboratories) C:\Windows\system32\R4EEG64A.dll
2016-12-12 23:09 - 2016-12-12 23:09 - 00151784 _____ (Dolby Laboratories) C:\Windows\system32\R4EEL64A.dll
2016-12-12 23:08 - 2016-12-12 23:09 - 00965024 _____ (Sony Corporation) C:\Windows\system32\SFSS_APO.dll
2016-12-12 23:07 - 2016-12-12 23:08 - 00727432 _____ (DTS) C:\Windows\system32\DTSSymmetryDLL64.dll
2016-12-12 23:07 - 2016-12-12 23:07 - 00441264 _____ (DTS) C:\Windows\system32\DTSGainCompensatorDLL64.dll
2016-12-12 23:06 - 2016-12-12 23:07 - 00445392 _____ (DTS) C:\Windows\system32\DTSLimiterDLL64.dll
2016-12-12 23:05 - 2016-12-12 23:06 - 01508928 _____ (DTS) C:\Windows\system32\DTSBoostDLL64.dll
2016-12-12 23:04 - 2016-12-12 23:05 - 00743960 _____ (DTS) C:\Windows\system32\DTSBassEnhancementDLL64.dll
2016-12-12 23:03 - 2016-12-12 23:04 - 01591056 _____ (DTS) C:\Windows\system32\DTSS2HeadphoneDLL64.dll
2016-12-12 23:01 - 2016-12-12 23:03 - 01780616 _____ (DTS) C:\Windows\system32\DTSS2SpeakerDLL64.dll
2016-12-12 23:00 - 2016-12-12 23:01 - 00708304 _____ (DTS) C:\Windows\system32\DTSVoiceClarityDLL64.dll
2016-12-12 23:00 - 2016-12-12 23:00 - 00504304 _____ (DTS) C:\Windows\system32\DTSNeoPCDLL64.dll
2016-12-12 22:59 - 2016-12-12 23:00 - 00253856 _____ (DTS) C:\Windows\system32\DTSLFXAPO64.dll
2016-12-12 22:59 - 2016-12-12 22:59 - 00253896 _____ (DTS) C:\Windows\system32\DTSGFXAPO64.dll
2016-12-12 22:59 - 2016-12-12 22:59 - 00252872 _____ (DTS) C:\Windows\system32\DTSGFXAPONS64.dll
2016-12-12 22:58 - 2016-12-12 22:59 - 00387312 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEP64A.dll
2016-12-12 22:58 - 2016-12-12 22:58 - 00214824 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEED64A.dll
2016-12-12 22:58 - 2016-12-12 22:58 - 00110976 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEL64A.dll
2016-12-12 22:58 - 2016-12-12 22:58 - 00088344 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEG64A.dll
2016-12-12 22:56 - 2016-12-12 22:56 - 00231912 _____ (Synopsys, Inc.) C:\Windows\system32\SFNHK64.dll
2016-12-12 22:56 - 2016-12-12 22:56 - 00090912 _____ (Synopsys, Inc.) C:\Windows\system32\SFCOM64.dll
2016-12-12 22:56 - 2016-12-12 22:56 - 00083624 _____ (Virage Logic Corporation / Sonic Focus) C:\Windows\SysWOW64\SFCOM.dll
2016-12-12 22:55 - 2016-12-12 22:56 - 00088312 _____ (Synopsys, Inc.) C:\Windows\system32\SFAPO64.dll
2016-12-12 22:55 - 2016-12-12 22:55 - 00321712 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DHT64.dll
2016-12-12 22:55 - 2016-12-12 22:55 - 00321712 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DAA64.dll
2016-12-12 22:45 - 2016-12-12 22:54 - 14057248 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioRealtek64.dll
2016-12-12 22:44 - 2016-12-12 22:45 - 00677664 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVolumeSDAPO.dll
2016-12-12 22:44 - 2016-12-12 22:44 - 00678176 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO30.dll
2016-12-12 22:42 - 2016-12-12 22:44 - 02110592 _____ (Waves Audio Ltd.) C:\Windows\system32\WavesGUILib64.dll
2016-12-12 22:41 - 2016-12-12 22:42 - 02050176 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioEQ64.dll
2016-12-12 22:40 - 2016-12-12 22:41 - 00330552 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO20.dll
2016-12-12 22:40 - 2016-12-12 22:40 - 00931616 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPOShell64.dll
2016-12-12 22:35 - 2016-12-12 22:38 - 03295064 _____ (Fortemedia Corporation) C:\Windows\system32\FMAPO64.dll
2016-12-12 22:35 - 2016-12-12 22:35 - 00118584 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAR64.dll
2016-12-12 22:34 - 2016-12-12 22:35 - 00574752 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAC64.dll
2016-12-12 22:34 - 2016-12-12 22:34 - 00343704 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtlCPAPI64.dll
2016-12-12 22:34 - 2016-12-12 22:34 - 00192976 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCfg64.dll
2016-12-12 22:32 - 2016-12-12 22:34 - 01360512 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTCOM64.dll
2016-12-12 22:30 - 2016-12-12 22:32 - 03503048 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkApi64.dll
2016-12-12 22:29 - 2016-12-12 22:30 - 00209528 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSHP64.dll
2016-12-12 22:29 - 2016-12-12 22:29 - 00221960 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSH64.dll
2016-12-12 22:29 - 2016-12-12 22:29 - 00166200 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSWOW64.dll
2016-12-12 22:28 - 2016-12-12 22:29 - 00532376 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSX64.dll
2016-12-12 21:37 - 2016-12-12 22:28 - 72520712 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoRes64.dat
2016-12-12 21:35 - 2016-12-12 21:37 - 02201600 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoInstII64.dll
2016-12-12 21:35 - 2016-12-12 21:35 - 00023688 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCoLDR64.dll
2016-12-12 21:33 - 2016-12-12 21:35 - 03204096 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtPgEx64.dll
2016-12-12 21:31 - 2016-12-12 21:33 - 03201368 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RltkAPO64.dll
2016-12-12 21:13 - 2016-12-12 21:15 - 03014144 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTSnMg64.cpl
2016-12-12 21:05 - 2016-12-12 21:10 - 05539328 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RTKVHD64.sys
2016-12-11 17:49 - 2016-12-16 07:11 - 00000000 ____D C:\Users\Michal\AppData\Roaming\Skype
2016-12-11 17:49 - 2016-12-11 17:49 - 00002777 _____ C:\Users\Public\Desktop\Skype.lnk
2016-12-11 17:49 - 2016-12-11 17:49 - 00000000 ___RD C:\Program Files (x86)\Skype
2016-12-11 17:49 - 2016-12-11 17:49 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2016-12-11 17:48 - 2016-12-11 17:49 - 00000000 ____D C:\ProgramData\Skype
2016-12-11 10:52 - 2016-12-11 12:35 - 00000000 ____D C:\Users\Michal\Downloads\TOMCDIVCk
2016-12-10 00:02 - 2016-12-10 00:02 - 00000000 ____D C:\Users\Michal\AppData\Local\Radek Chalupa
2016-12-09 18:51 - 2016-12-11 10:08 - 00000000 ____D C:\Users\Michal\Desktop\Karel Programy
2016-12-09 16:13 - 2016-12-09 16:13 - 00000000 ____D C:\Users\Michal\Documents\Ubisoft
2016-12-09 11:40 - 2016-12-09 11:40 - 00001609 _____ C:\Users\Public\Desktop\Splinter Cell - Blacklist.lnk
2016-12-09 11:40 - 2016-12-09 11:40 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\hry
2016-12-09 11:09 - 2016-12-16 18:16 - 00000000 ____D C:\Program Files (x86)\Ubisoft
2016-12-08 00:44 - 2016-12-08 00:51 - 00000000 ____D C:\Users\Michal\AppData\Local\Clipboarder
2016-12-08 00:43 - 2016-12-08 01:03 - 00000000 ____D C:\Users\Michal\AppData\Local\Sidebar7
2016-12-08 00:24 - 2016-12-08 00:24 - 00000000 ____D C:\Users\Michal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2016-12-08 00:24 - 2016-12-08 00:24 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2016-12-07 23:16 - 2016-12-07 23:16 - 00000000 ____D C:\Users\Michal\Documents\Nero BackItUp Device Backup
2016-12-07 20:01 - 2016-12-07 20:01 - 00002020 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Music Recorder.lnk
2016-12-07 20:01 - 2016-12-07 20:01 - 00002008 _____ C:\Users\Public\Desktop\Music Recorder.lnk
2016-12-07 20:00 - 2016-12-07 20:00 - 00000000 ____D C:\Program Files (x86)\Music Recorder
2016-12-07 07:40 - 2016-12-17 07:51 - 00000000 ____D C:\Users\Michal\AppData\Roaming\dvdcss
2016-12-07 00:53 - 2016-12-07 08:46 - 00000000 ____D C:\Users\Michal\AppData\Local\Nero
2016-12-07 00:01 - 2016-12-07 00:01 - 00002999 _____ C:\Users\Public\Desktop\Nero 2017.lnk
2016-12-06 23:58 - 2016-12-07 20:06 - 00000000 ____D C:\Users\Michal\AppData\Roaming\Nero
2016-12-06 23:54 - 2016-12-06 23:54 - 00000000 ____D C:\Windows\System32\Tasks\Nero
2016-12-06 23:51 - 2016-12-07 00:01 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nero 2017
2016-12-06 23:50 - 2016-12-07 18:11 - 00000000 ____D C:\ProgramData\Nero
2016-12-06 23:50 - 2016-12-07 18:11 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nero
2016-12-06 23:50 - 2016-12-07 18:11 - 00000000 ____D C:\Program Files (x86)\Nero
2016-12-06 23:00 - 2016-12-06 23:00 - 00000000 ____D C:\Users\Michal\AppData\Roaming\Obsidium
2016-12-06 22:40 - 2016-12-06 22:40 - 00003550 _____ C:\Windows\System32\Tasks\BackItUp_Launch
2016-12-06 22:15 - 2016-12-06 22:15 - 00000000 ____D C:\Users\Michal\AppData\Local\CrashRpt
2016-12-06 22:14 - 2016-12-07 20:00 - 00000000 ____D C:\ProgramData\RapidSolution
2016-12-06 22:13 - 2016-12-06 22:13 - 00000000 ____D C:\Users\Michal\AppData\Local\RapidSolution
2016-12-06 17:01 - 2016-12-06 23:08 - 00000000 ____D C:\Users\Michal\Downloads\C0D_BO_Update_5-6
2016-12-05 22:29 - 2016-12-07 08:27 - 00000000 ____D C:\Users\Michal\AppData\Local\Nero_AG
2016-12-05 17:46 - 2016-12-06 14:27 - 00000000 ____D C:\Users\Michal\Downloads\CoD-BO_CZv1.2
2016-12-05 14:02 - 2016-12-05 14:55 - 00000433 _____ C:\Windows\system32\Drivers\etc\hosts.ics
2016-12-05 10:01 - 2016-12-05 10:01 - 00000000 ____D C:\Users\Michal\AppData\Local\Activision
2016-12-05 09:57 - 2016-12-05 09:57 - 00000716 _____ C:\Users\Michal\Desktop\BlackOps.lnk
2016-12-04 23:49 - 2016-12-04 23:49 - 00001186 _____ C:\Users\Michal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MediaInfo.lnk
2016-12-04 23:00 - 2016-12-04 23:00 - 00000000 ____D C:\Users\Michal\AppData\Roaming\MediaInfo
2016-12-04 22:58 - 2016-12-04 22:58 - 00000957 _____ C:\Users\Michal\Desktop\MediaInfo.lnk
2016-12-04 22:58 - 2016-12-04 22:58 - 00000000 ____D C:\Program Files\MediaInfo0.7.88
2016-12-04 22:57 - 2016-12-04 23:57 - 00000000 ____D C:\Users\Michal\AppData\Roaming\MPC-HC
2016-12-04 22:56 - 2016-12-04 22:56 - 00001720 _____ C:\Users\Michal\Desktop\MPC-HC x64.lnk
2016-12-04 22:56 - 2016-12-04 22:56 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MPC-HC x64
2016-12-04 22:56 - 2016-12-04 22:56 - 00000000 ____D C:\Program Files\MPC-HC
2016-12-04 19:04 - 2016-12-04 19:04 - 00001204 _____ C:\Users\Michal\Desktop\Any Video Converter Ultimate.lnk
2016-12-04 19:04 - 2016-12-04 19:04 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Any Video Converter Ultimate
2016-12-04 19:03 - 2016-12-04 19:04 - 00000000 ____D C:\Program Files (x86)\Any Video Converter Ultimate
2016-12-04 18:12 - 2016-12-04 18:25 - 00000000 ____D C:\ProgramData\DVD Shrink
2016-12-04 18:12 - 2016-12-04 18:21 - 00000000 ____D C:\Program Files (x86)\DVD Shrink
2016-12-04 18:12 - 2016-12-04 18:12 - 00001011 _____ C:\Users\Michal\Desktop\DVD Shrink 3.2.lnk
2016-12-04 18:12 - 2016-12-04 18:12 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVD Shrink
2016-12-04 17:02 - 2016-12-04 17:02 - 00001291 _____ C:\Users\Michal\Desktop\Games for Windows - LIVE.lnk
2016-12-04 16:58 - 2016-12-04 16:58 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Games for Windows - LIVE
2016-12-04 16:58 - 2016-12-04 16:58 - 00000000 ____D C:\Program Files (x86)\Microsoft Games for Windows - LIVE
2016-12-04 09:21 - 2016-12-16 20:19 - 00000000 ____D C:\Users\Michal\AppData\Roaming\Anvsoft
2016-12-03 15:22 - 2016-12-03 15:22 - 00293888 _____ (Alcohol Soft Development Team) C:\Windows\system32\Drivers\axscsidrv.sys
2016-12-03 15:07 - 2016-12-03 15:22 - 00000000 ____D C:\Program Files (x86)\Alcohol 120% 2.0.2.5629
2016-12-03 15:07 - 2016-12-03 15:07 - 00001139 _____ C:\Users\Public\Desktop\Alcohol 120%.lnk
2016-12-03 15:07 - 2016-12-03 15:07 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Alcohol 120%
2016-12-02 17:11 - 2016-12-02 17:11 - 00183568 _____ (Intel Corporation) C:\Windows\system32\ibtsiva.exe
2016-12-02 17:10 - 2016-12-02 17:11 - 00379152 _____ (Intel Corporation) C:\Windows\system32\ibtproppage.dll
2016-12-02 17:10 - 2016-12-02 17:10 - 00228624 _____ (Intel Corporation) C:\Windows\system32\Drivers\ibtusb.sys
2016-12-02 17:10 - 2016-12-02 17:10 - 00204896 _____ (Intel Corporation) C:\Windows\system32\Drivers\TeeDriverW8x64.sys
2016-11-30 07:43 - 2016-11-30 07:43 - 00001783 _____ C:\Users\Michal\Desktop\RevoUninPro.lnk
2016-11-30 07:41 - 2009-12-30 11:21 - 00031800 _____ (VS Revo Group) C:\Windows\system32\Drivers\revoflt.sys
2016-11-30 07:35 - 2016-11-30 07:41 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller Pro
2016-11-30 07:35 - 2016-11-30 07:35 - 00000000 ____D C:\ProgramData\VS Revo Group
2016-11-30 07:35 - 2016-11-30 07:35 - 00000000 ____D C:\Program Files\VS Revo Group
2016-11-29 22:58 - 2016-11-29 22:58 - 00000000 ____D C:\Users\Michal\AppData\Local\VS Revo Group
2016-11-29 15:42 - 2016-12-13 00:37 - 01452480 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll
2016-11-29 10:35 - 2016-11-29 10:35 - 00000000 ____D C:\Users\Public\Documents\My Games
2016-11-29 06:57 - 2016-11-29 06:57 - 00000000 ____D C:\Program Files\Synaptics
2016-11-28 22:15 - 2016-12-16 18:12 - 00000000 ____D C:\ProgramData\ProductData
2016-11-28 21:36 - 2016-11-28 21:36 - 00000738 _____ C:\Users\Michal\Desktop\iw5sp.lnk
2016-11-28 15:31 - 2016-11-28 15:31 - 00002089 _____ C:\Users\Public\Desktop\MyPhoneExplorer.lnk
2016-11-28 15:31 - 2016-11-28 15:31 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MyPhoneExplorer
2016-11-28 13:34 - 2016-11-28 13:34 - 00000981 _____ C:\Users\Public\Desktop\DriverNavigator.lnk
2016-11-28 13:34 - 2016-11-28 13:34 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DriverNavigator
2016-11-28 13:34 - 2016-11-28 13:34 - 00000000 ____D C:\Program Files\DriverNavigator3.6.8.0
2016-11-28 11:40 - 2016-11-28 11:40 - 00002501 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat DC.lnk
2016-11-28 11:40 - 2016-11-28 11:40 - 00002063 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat Distiller DC.lnk
2016-11-28 11:37 - 2016-11-28 11:37 - 00004476 _____ C:\Windows\System32\Tasks\Adobe Acrobat Update Task
2016-11-28 11:31 - 2016-11-28 11:31 - 00002040 _____ C:\Users\Public\Desktop\Adobe Acrobat DC.lnk
2016-11-28 08:17 - 2016-12-11 10:17 - 00000000 ____D C:\Users\Public\Documents\AdobeGC
2016-11-28 07:17 - 2016-11-28 11:33 - 00000000 ____D C:\ProgramData\regid.1986-12.com.adobe
2016-11-28 07:14 - 2016-11-28 11:29 - 00000000 ____D C:\Program Files (x86)\Adobe
2016-11-28 07:00 - 2016-12-16 06:46 - 00365480 _____ C:\Windows\system32\FNTCACHE.DAT
2016-11-28 01:23 - 2016-11-28 01:24 - 10719648 _____ C:\Windows\system32\Drivers\Netwfw02.dat
2016-11-28 01:23 - 2016-11-28 01:23 - 03517200 _____ (Intel Corporation) C:\Windows\system32\Drivers\Netwbw02.sys
2016-11-28 01:22 - 2016-11-28 01:22 - 00946696 _____ (Realtek ) C:\Windows\system32\Drivers\Rt630x64.sys
2016-11-28 01:22 - 2016-11-28 01:22 - 00082544 _____ (Realtek Semiconductor Corporation) C:\Windows\system32\RtNicProp64.dll
2016-11-28 01:15 - 2016-11-28 01:15 - 00035320 _____ (Intel Corporation) C:\Windows\system32\Drivers\iaLPSS_GPIO.sys
2016-11-28 00:45 - 2016-11-28 00:47 - 00000000 ____D C:\Program Files\CCleaner
2016-11-28 00:45 - 2016-11-28 00:45 - 00002784 _____ C:\Windows\System32\Tasks\CCleanerSkipUAC
2016-11-28 00:45 - 2016-11-28 00:45 - 00000840 _____ C:\Users\Public\Desktop\CCleaner.lnk
2016-11-28 00:45 - 2016-11-28 00:45 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2016-11-27 12:28 - 2016-12-17 17:25 - 00000000 ____D C:\Hry
2016-11-26 10:10 - 2016-11-26 10:10 - 00001091 _____ C:\Users\Public\Desktop\Black Mesa Source.lnk
2016-11-26 10:10 - 2016-11-26 10:10 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Black Mesa Source
2016-11-25 20:42 - 2016-12-05 10:01 - 00000000 ____D C:\Users\Michal\AppData\Local\SKIDROW
2016-11-25 18:56 - 2016-12-09 16:50 - 00000000 ____D C:\Users\Michal\Desktop\Hudba
2016-11-22 09:00 - 2016-11-28 00:55 - 00001569 _____ C:\Users\Michal\Desktop\UltraPDFMerger_V1_3.lnk
2016-11-20 22:08 - 2016-11-05 21:46 - 00422744 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\spaceport.sys
2016-11-20 22:08 - 2016-10-12 22:49 - 00379224 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storport.sys
2016-11-20 22:08 - 2016-10-12 22:11 - 00922968 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\refs.sys
2016-11-20 22:08 - 2016-10-11 17:45 - 00175104 _____ (Microsoft Corporation) C:\Windows\system32\TpmTasks.dll
2016-11-20 22:08 - 2016-10-11 00:31 - 00990040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\http.sys
2016-11-20 22:08 - 2016-10-10 19:18 - 00069976 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll
2016-11-20 22:08 - 2016-10-10 19:18 - 00022360 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cmimcext.sys
2016-11-20 22:08 - 2016-10-09 15:17 - 00229888 _____ (Microsoft Corporation) C:\Windows\system32\ActionQueue.dll
2016-11-20 22:08 - 2016-10-09 15:08 - 00116224 _____ (Microsoft Corporation) C:\Windows\system32\shsetup.dll
2016-11-20 22:08 - 2016-10-09 15:08 - 00095232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shsetup.dll
2016-11-20 22:08 - 2016-10-08 23:24 - 00658432 _____ (Microsoft Corporation) C:\Windows\system32\dnsapi.dll
2016-11-20 22:08 - 2016-10-08 22:31 - 00498688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dnsapi.dll
2016-11-20 22:08 - 2016-10-08 22:10 - 03547648 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll
2016-11-20 22:08 - 2016-10-05 15:01 - 01200128 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Globalization.dll
2016-11-20 22:08 - 2016-10-05 15:00 - 00868864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Globalization.dll
2016-11-20 22:08 - 2016-10-05 15:00 - 00323072 _____ (Microsoft Corporation) C:\Windows\system32\GlobCollationHost.dll
2016-11-20 22:08 - 2016-10-05 14:52 - 00513456 _____ C:\Windows\SysWOW64\locale.nls
2016-11-20 22:08 - 2016-10-05 14:52 - 00513456 _____ C:\Windows\system32\locale.nls
2016-11-20 22:08 - 2016-10-05 05:15 - 01969944 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll
2016-11-20 22:08 - 2016-10-05 05:15 - 01613528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll
2016-11-20 22:08 - 2016-10-05 05:15 - 00324896 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll
2016-11-20 22:08 - 2016-10-05 05:15 - 00245320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll
2016-11-20 22:08 - 2016-09-27 21:16 - 00445873 _____ C:\Windows\system32\ApnDatabase.xml
2016-11-20 22:08 - 2016-09-20 23:30 - 02462040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2016-11-20 16:05 - 2016-11-20 16:05 - 00001280 _____ C:\Users\Michal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Správce zvuku HD.lnk
2016-11-20 16:01 - 2016-12-13 07:21 - 00000000 ____D C:\Windows\SysWOW64\RTCOM
2016-11-20 16:01 - 2016-11-20 16:01 - 00000000 ____D C:\Program Files\Realtek
2016-11-20 16:00 - 2016-11-10 11:20 - 05804772 _____ C:\Windows\system32\Drivers\rtvienna.dat
2016-11-20 14:40 - 2016-11-20 19:12 - 00000000 ____D C:\Users\Michal\Desktop\Cara 8G

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2016-12-18 13:17 - 2016-09-29 17:23 - 00000000 ____D C:\Users\Michal\AppData\Roaming\uTorrent
2016-12-18 13:01 - 2016-11-09 00:01 - 00000914 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2016-12-18 12:25 - 2016-10-10 06:26 - 00000000 ____D C:\ProgramData\NVIDIA
2016-12-18 09:47 - 2016-09-29 17:39 - 00000000 ____D C:\Users\Michal\Downloads\Stažené torrenty
2016-12-18 05:16 - 2016-09-29 11:14 - 00003600 _____ C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-1363994568-2854874814-1274703555-1001
2016-12-18 01:51 - 2016-11-09 00:01 - 00000958 _____ C:\Windows\Tasks\Adobe Flash Player PPAPI Notifier.job
2016-12-18 00:17 - 2016-09-29 12:56 - 00000000 ____D C:\Windows\SysWOW64\sda
2016-12-18 00:17 - 2013-08-22 14:36 - 00000000 ____D C:\Windows\Inf
2016-12-17 20:08 - 2016-11-04 17:25 - 00000000 ____D C:\ProgramData\Spybot - Search & Destroy
2016-12-17 20:06 - 2016-09-29 12:56 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2016-12-17 17:11 - 2016-10-03 09:38 - 00000000 ____D C:\Users\Michal\AppData\Local\CrashDumps
2016-12-17 14:55 - 2016-10-26 22:29 - 00000000 ____D C:\Windows\SysWOW64\directx
2016-12-17 14:54 - 2016-10-26 22:29 - 00000000 ___HD C:\Windows\msdownld.tmp
2016-12-17 13:57 - 2016-09-29 17:40 - 00000000 ____D C:\Users\Michal\Downloads\Torrenty CZT
2016-12-17 09:02 - 2016-09-29 20:03 - 00000000 ____D C:\Users\Michal\Desktop\Hry
2016-12-17 09:00 - 2016-10-20 18:35 - 00000000 ____D C:\Users\Michal\Desktop\Moje Torrenty
2016-12-17 08:44 - 2016-09-29 11:08 - 00000000 ____D C:\Users\Michal
2016-12-17 08:03 - 2016-10-03 19:33 - 00000000 ____D C:\Users\Michal\AppData\Roaming\vlc
2016-12-17 07:38 - 2016-10-03 16:19 - 00000000 ____D C:\Users\Michal\Desktop\Programy
2016-12-17 07:37 - 2016-09-29 13:17 - 00000000 __SHD C:\Users\Michal\IntelGraphicsProfiles
2016-12-17 07:35 - 2013-08-22 15:45 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2016-12-17 07:34 - 2013-08-22 14:25 - 00262144 ___SH C:\Windows\system32\config\BBI
2016-12-16 20:43 - 2013-08-22 16:36 - 00000000 ____D C:\Windows\AppReadiness
2016-12-16 18:14 - 2016-09-29 13:01 - 00000000 ____D C:\Users\Michal\AppData\Roaming\IObit
2016-12-16 13:06 - 2016-09-29 17:19 - 00000000 ____D C:\Program Files (x86)\Opera
2016-12-16 09:53 - 2013-08-22 16:36 - 00000000 ____D C:\Windows\rescache
2016-12-16 06:38 - 2013-08-22 16:20 - 00000000 ____D C:\Windows\CbsTemp
2016-12-16 06:35 - 2016-09-29 13:49 - 00000000 ____D C:\Windows\system32\MRT
2016-12-16 06:30 - 2016-09-29 13:49 - 135632432 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2016-12-16 01:55 - 2016-09-29 13:22 - 00000000 ____D C:\Program Files\NVIDIA Corporation
2016-12-16 01:53 - 2016-09-29 17:19 - 00000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2016-12-16 01:53 - 2016-09-29 13:22 - 00000000 ____D C:\ProgramData\NVIDIA Corporation
2016-12-16 01:53 - 2013-08-22 16:36 - 00000000 ____D C:\Windows\Help
2016-12-16 01:41 - 2016-10-20 22:32 - 00001468 _____ C:\Users\Public\Desktop\GeForce Experience.lnk
2016-12-16 01:38 - 2016-10-03 09:08 - 00000000 ____D C:\Users\Michal\AppData\Local\NVIDIA Corporation
2016-12-16 01:37 - 2016-10-03 09:08 - 00000000 ____D C:\Users\Michal\AppData\Local\NVIDIA
2016-12-14 23:39 - 2016-11-04 00:01 - 00002221 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2016-12-14 23:39 - 2016-11-04 00:01 - 00002209 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2016-12-13 21:01 - 2016-10-02 20:31 - 00003916 _____ C:\Windows\System32\Tasks\Adobe Flash Player PPAPI Notifier
2016-12-13 21:01 - 2016-10-02 20:31 - 00003802 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2016-12-13 21:01 - 2013-08-22 16:36 - 00000000 ____D C:\Windows\SysWOW64\Macromed
2016-12-13 21:01 - 2013-08-22 16:36 - 00000000 ____D C:\Windows\system32\Macromed
2016-12-13 07:23 - 2016-09-29 13:16 - 02074494 _____ C:\Windows\system32\Drivers\rtkhdasetting.zip
2016-12-13 07:22 - 2016-09-29 13:16 - 00000000 ____D C:\Windows\system32\DAX2
2016-12-13 01:05 - 2016-11-13 01:05 - 00000412 _____ C:\Windows\Tasks\DriverNavigator Scheduled Scan.job
2016-12-13 00:37 - 2016-10-20 22:32 - 01853376 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll
2016-12-13 00:37 - 2016-10-20 22:32 - 01755072 _____ (NVIDIA Corporation) C:\Windows\system32\nvspbridge64.dll
2016-12-13 00:37 - 2016-10-20 22:32 - 01317312 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspbridge.dll
2016-12-13 00:37 - 2016-10-20 22:32 - 00120256 _____ C:\Windows\system32\NvRtmpStreamer64.dll
2016-12-11 22:09 - 2016-09-29 13:23 - 00000000 ____D C:\ProgramData\Package Cache
2016-12-11 19:01 - 2016-09-29 20:38 - 00000000 ____D C:\Users\Michal\Desktop\Filmy
2016-12-11 19:01 - 2016-09-29 20:05 - 00000000 ____D C:\Users\Michal\Desktop\Dokumenty
2016-12-09 18:55 - 2016-10-17 05:09 - 00000000 ____D C:\Users\Michal\AppData\Roaming\YouTubeByClick
2016-12-09 18:51 - 2016-10-17 05:08 - 00000000 ____D C:\Program Files (x86)\YouTubeByClick
2016-12-09 18:46 - 2016-10-07 16:07 - 00018960 _____ (Logitech, Inc.) C:\Windows\system32\Drivers\LNonPnP.sys
2016-12-08 01:18 - 2016-10-07 21:11 - 00000000 ____D C:\Users\Michal\Downloads\Torrenty Trezzor
2016-12-08 00:24 - 2016-09-29 12:59 - 00001022 _____ C:\ProgramData\Microsoft\Windows\Start Menu\WinRAR.lnk
2016-12-07 22:43 - 2014-11-21 05:53 - 01749406 _____ C:\Windows\system32\PerfStringBackup.INI
2016-12-07 22:43 - 2014-11-21 05:10 - 00740962 _____ C:\Windows\system32\perfh005.dat
2016-12-07 22:43 - 2014-11-21 05:10 - 00152146 _____ C:\Windows\system32\perfc005.dat
2016-12-07 17:56 - 2016-09-29 17:40 - 00000000 ____D C:\Users\Michal\Downloads\Acer Tapety
2016-12-07 08:30 - 2016-10-22 19:21 - 00000000 ____D C:\Users\Michal\Documents\My Games
2016-12-05 21:32 - 2013-08-22 16:36 - 00000000 ____D C:\Windows\system32\NDF
2016-12-04 21:15 - 2016-11-12 18:56 - 00000000 ____D C:\Program Files (x86)\Call of Duty Infinite Warfare
2016-12-03 13:10 - 2013-08-22 16:36 - 00000000 ____D C:\Windows\LiveKernelReports
2016-11-29 17:21 - 2016-11-16 06:48 - 00000000 ____D C:\Users\Michal\Desktop\Sony Ericsson K530i
2016-11-29 10:25 - 2016-10-03 07:56 - 00000000 ___HD C:\Program Files (x86)\Temp
2016-11-28 16:27 - 2016-08-08 09:19 - 00232072 _____ (ESET) C:\Windows\system32\Drivers\eamonm.sys
2016-11-28 16:27 - 2016-08-08 09:19 - 00212096 _____ (ESET) C:\Windows\system32\Drivers\edevmon.sys
2016-11-28 16:27 - 2016-08-08 09:19 - 00177792 _____ (ESET) C:\Windows\system32\Drivers\ehdrv.sys
2016-11-28 16:27 - 2016-08-08 09:19 - 00091784 _____ (ESET) C:\Windows\system32\Drivers\epfwwfp.sys
2016-11-28 16:27 - 2016-08-08 09:19 - 00076416 _____ (ESET) C:\Windows\system32\Drivers\epfw.sys
2016-11-28 16:27 - 2016-08-08 09:19 - 00048768 _____ (ESET) C:\Windows\system32\Drivers\ekbdflt.sys
2016-11-28 16:03 - 2016-09-29 18:05 - 00394296 _____ (Duplex Secure Ltd.) C:\Windows\system32\Drivers\sptd.sys
2016-11-28 15:31 - 2016-11-15 13:06 - 00000000 ____D C:\Users\Michal\AppData\Roaming\MyPhoneExplorer
2016-11-28 15:31 - 2016-11-15 13:06 - 00000000 ____D C:\Program Files (x86)\MyPhoneExplorer
2016-11-28 11:29 - 2016-10-10 08:18 - 00000000 ____D C:\ProgramData\Adobe
2016-11-28 08:16 - 2016-10-02 20:30 - 00000000 ____D C:\Users\Michal\AppData\Local\Adobe
2016-11-28 07:37 - 2016-09-29 11:08 - 00000000 ____D C:\Users\Michal\AppData\Roaming\Adobe
2016-11-28 00:56 - 2016-10-03 12:15 - 00001278 _____ C:\Users\Michal\Desktop\Wolf NewOrder.lnk
2016-11-27 15:32 - 2016-10-15 20:44 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sniper Elite
2016-11-24 06:02 - 2013-08-22 16:36 - 00000000 ___HD C:\Program Files\WindowsApps
2016-11-21 02:14 - 2013-08-22 14:36 - 00000000 ____D C:\Windows\system32\oobe

==================== Files in the root of some directories =======

2016-12-17 07:35 - 2016-12-18 01:57 - 0003135 _____ () C:\ProgramData\NvTelemetryContainer.log
2016-12-16 06:47 - 2016-12-17 07:34 - 0005701 _____ () C:\ProgramData\NvTelemetryContainer.log_backup1

Some files in TEMP:
====================
C:\Users\Michal\AppData\Local\Temp\drm_dialogs.dll
C:\Users\Michal\AppData\Local\Temp\drm_dyndata_7340016.dll
C:\Users\Michal\AppData\Local\Temp\DSETUP.dll
C:\Users\Michal\AppData\Local\Temp\dsetup32.dll
C:\Users\Michal\AppData\Local\Temp\DXSETUP.exe
C:\Users\Michal\AppData\Local\Temp\tmp751B.exe


==================== Bamital & volsnap ======================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed



===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===

==================== Drive and Memory info ===================



==================== MBR and Partition Table ==================


==================== Scheduled Tasks (whitelisted) ==================

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\Windows\Tasks\Adobe Flash Player PPAPI Notifier.job => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_24_0_0_186_pepper.exe
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\DriverNavigator Scheduled Scan.job => C:\Program Files\DriverNavigator\DriverNavigator.exe

==================== Alternate Data Streams (whitelisted) ==================


==================== Security Center ==================

AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: ESET Smart Security 10.0.369.1 (Enabled - Up to date) {EC1D6F37-E411-475A-DF50-12FF7FE4AC70}
AS: ESET Smart Security 10.0.369.1 (Enabled - Up to date) {577C8ED3-C22B-48D4-E5E0-298D0463E6CD}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
FW: ESET Personální firewall (Enabled) {D426EE12-AE7E-4602-F40F-BBCA8137EB0B}



===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)


***** Velikost "Plochy" *****

Velikost slozky "C:\Users\Michal\Desktop" je 21505 MB.


***** Startup Programs *****


***** Firewall rules *****

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]


***** System Restore *****

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"Generalize_DisableSR"=dword:00000000


==================== End Of Log ==============================

Adittion LOG:
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 17-12-2016
Ran by Michal (18-12-2016 13:17:30)
Running from C:\Users\Michal\Desktop
Windows 8.1 (Update) (X64) (2016-09-29 10:08:40)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-1363994568-2854874814-1274703555-500 - Administrator - Disabled)
Guest (S-1-5-21-1363994568-2854874814-1274703555-501 - Limited - Disabled)
Michal (S-1-5-21-1363994568-2854874814-1274703555-1001 - Administrator - Enabled) => C:\Users\Michal

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: ESET Smart Security 10.0.369.1 (Enabled - Up to date) {EC1D6F37-E411-475A-DF50-12FF7FE4AC70}
AS: ESET Smart Security 10.0.369.1 (Enabled - Up to date) {577C8ED3-C22B-48D4-E5E0-298D0463E6CD}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
FW: ESET Personální firewall (Enabled) {D426EE12-AE7E-4602-F40F-BBCA8137EB0B}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

1310 (x32 Version: 140.0.425.000 - Hewlett-Packard) Hidden
1310_Help (x32 Version: 82.0.58.000 - Hewlett-Packard) Hidden
1310Trb (x32 Version: 82.0.242.000 - Hewlett-Packard) Hidden
64 Bit HP CIO Components Installer (Version: 7.2.8 - Hewlett-Packard) Hidden
Adobe Acrobat DC (HKLM-x32\...\{AC76BA86-1033-FFFF-7760-0C0F074E4100}) (Version: 15.020.20042 - Adobe Systems Incorporated)
Adobe Flash Player 24 PPAPI (HKLM-x32\...\Adobe Flash Player PPAPI) (Version: 24.0.0.186 - Adobe Systems Incorporated)
AIO_CDB_ProductContext (x32 Version: 140.0.425.000 - Hewlett-Packard) Hidden
AIO_CDB_Software (x32 Version: 140.0.428.000 - Hewlett-Packard) Hidden
AIO_Scan (x32 Version: 130.0.421.000 - Hewlett-Packard) Hidden
Aktualizace NVIDIA 23.1.0.0 (Version: 23.1.0.0 - NVIDIA Corporation) Hidden
Ansel (Version: 376.33 - NVIDIA Corporation) Hidden
Any Video Converter Ultimate 5.8.3 (HKLM-x32\...\Any Video Converter Ultimate_is1) (Version: - Any-Video-Converter.com)
BufferChm (x32 Version: 140.0.298.000 - Hewlett-Packard) Hidden
Call of Duty Infinite Warfare (HKLM-x32\...\Call of Duty Infinite Warfare_is1) (Version: 1.0.0.0 - Activision Blizzard)
Call of Duty Modern Warfare 2 (CZ) version 1.0.0 (HKLM-x32\...\Call of Duty Modern Warfare 2 (CZ)_is1) (Version: 1.0.0 - Activision)
CCleaner (HKLM\...\CCleaner) (Version: 5.24 - Piriform)
Copy (x32 Version: 140.0.298.000 - Hewlett-Packard) Hidden
Destinations (x32 Version: 140.0.253.000 - Hewlett-Packard) Hidden
DeviceDiscovery (x32 Version: 140.0.298.000 - Hewlett-Packard) Hidden
DocProc (x32 Version: 140.0.185.000 - Hewlett-Packard) Hidden
DriverNavigator 3.6.8 (HKLM\...\DriverNavigator_is1) (Version: 3.6.8.0 - Easeware)
DVD Shrink 3.2 (HKLM-x32\...\DVD Shrink_is1) (Version: - DVD Shrink)
ESET Smart Security (HKLM\...\{6062BB8B-D726-4E80-B731-739E961ED834}) (Version: 10.0.359.1 - ESET, spol. s r.o.)
Fax (x32 Version: 140.0.307.000 - Hewlett-Packard) Hidden
FEAR (HKLM-x32\...\{2B653229-9854-4989-B780-D978F5F13EAB}) (Version: 1.00.0000 - Vivendi Universal Games, Inc.)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 55.0.2883.87 - Google Inc.)
Google Update Helper (x32 Version: 1.3.32.7 - Google Inc.) Hidden
GPBaseService2 (x32 Version: 140.0.297.000 - Hewlett-Packard) Hidden
HP Imaging Device Functions 14.0 (HKLM\...\HP Imaging Device Functions) (Version: 14.0 - HP)
HP Photosmart Officejet and Deskjet All-In-One Driver Software (HKLM\...\{6F5B70F0-EA6C-4A5B-BB16-8390BD66B251}) (Version: 14.0 - HP)
HP Solution Center 14.0 (HKLM\...\HP Solution Center & Imaging Support Tools) (Version: 14.0 - HP)
HP Update (HKLM-x32\...\{912D30CF-F39E-4B31-AD9A-123C6B794EE2}) (Version: 5.005.002.002 - Hewlett-Packard)
HPPhotoGadget (x32 Version: 140.0.524.000 - Hewlett-Packard) Hidden
HPProductAssistant (x32 Version: 140.0.298.000 - Hewlett-Packard) Hidden
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 20.19.15.4531 - Intel Corporation)
Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 14.8.9.1053 - Intel Corporation)
Intel(R) Wireless Bluetooth(R) (HKLM-x32\...\{8BD648D4-64BD-4F92-8EAD-D64354DC7AD4}) (Version: 19.10.1635.0483 - Intel Corporation)
Logitech SetPoint 6.67 (HKLM\...\sp6) (Version: 6.67.83 - Logitech)
MediaInfo 0.7.91 (HKLM\...\MediaInfo) (Version: 0.7.91 - MediaArea.net)
Microsoft ASP.NET MVC 4 Runtime (HKLM-x32\...\{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}) (Version: 4.0.40804.0 - Microsoft Corporation)
Microsoft Games for Windows - LIVE (HKLM-x32\...\{F97E3841-CA9D-4964-9D64-26066241D26F}) (Version: 3.3.24.0 - Microsoft Corporation)
Microsoft Games for Windows - LIVE Redistributable (HKLM-x32\...\{D1B01DC9-CBAF-45F9-A387-7D00C11B630E}) (Version: 1.2.0238 - Microsoft Corporation)
Microsoft Mouse and Keyboard Center (HKLM\...\Microsoft Mouse and Keyboard Center) (Version: 2.3.188.0 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50901.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{a1909659-0a08-4554-8af1-2175904903a1}) (Version: 11.0.60610.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (HKLM-x32\...\{95716cce-fc71-413f-8ad5-56c2892d4b3a}) (Version: 11.0.60610.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24210 (HKLM-x32\...\{f144e08f-9cbe-4f09-9a8c-f2b858b7ee7f}) (Version: 14.0.24210.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24210 (HKLM-x32\...\{23658c02-145e-483d-ba6b-1eb82c580529}) (Version: 14.0.24210.0 - Microsoft Corporation)
MPC-HC 1.7.10 (64-bit) (HKLM\...\{2ACBF1FA-F5C3-4B19-A774-B22A31F231B9}_is1) (Version: 1.7.10 - MPC-HC Team)
Music Recorder (HKLM-x32\...\{F3570612-8403-45C2-92DD-2A261CA54BBC}) (Version: 14.1.7200.0 - Audials AG)
Music Recorder (x32 Version: 18.009.0 - Nero AG) Hidden
MyPhoneExplorer (HKLM-x32\...\MPE) (Version: 1.8.7 - F.J. Wechselberger)
Nero 2017 (HKLM-x32\...\{6B81BDC4-3368-4898-8F16-48962F789221}) (Version: 18.0.06100 - Nero AG)
Nero 2017 Content Pack (HKLM-x32\...\{4E6D3A36-4558-466D-83CC-AE2DCAC06C53}) (Version: 18.0.00600 - Nero AG)
Nero BackItUp 2014 (HKLM-x32\...\{62A5C265-D6B8-456E-8458-3F1AD3471AB9}) (Version: 15.0.02900 - Nero AG)
Nero Core Components (HKLM-x32\...\{BEBEE34D-84A2-4EDD-8BEA-96CC54371263}) (Version: - )
Nero Info (HKLM-x32\...\{F030BFE8-8476-4C08-A553-233DE80A2BE1}) (Version: 18.0.0014 - Nero AG)
Nero SoundTrax (HKLM-x32\...\{8D987B21-A33F-4023-9A50-CE782CD41BB9}) (Version: 15.0.00500 - Nero AG)
Nero WaveEditor (HKLM-x32\...\{0D3990C0-2F2F-4D0F-BD10-9103F5C63B85}) (Version: 15.0.00500 - Nero AG)
Network64 (Version: 140.0.306.000 - Hewlett-Packard) Hidden
NVIDIA GeForce Experience 3.2.0.96 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.2.0.96 - NVIDIA Corporation)
NVIDIA Ovladače grafiky 376.33 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 376.33 - NVIDIA Corporation)
NVIDIA Systémový software PhysX 9.16.0318 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.16.0318 - NVIDIA Corporation)
NvNodejs (Version: 3.2.0.96 - NVIDIA Corporation) Hidden
NvTelemetry (Version: 2.0.0.0 - NVIDIA Corporation) Hidden
OCR Software by I.R.I.S. 14.0 (HKLM\...\HPOCR) (Version: 14.0 - HP)
OpenAL (HKLM-x32\...\OpenAL) (Version: - )
OpenOffice 4.1.2 (HKLM-x32\...\{69D27D4C-36CE-4CB2-A290-C38B0A990955}) (Version: 4.12.9782 - Apache Software Foundation)
Opera Stable 42.0.2393.85 (HKLM-x32\...\Opera 42.0.2393.85) (Version: 42.0.2393.85 - Opera Software)
Ovládací panel NVIDIA 376.33 (Version: 376.33 - NVIDIA Corporation) Hidden
Prerequisite installer (x32 Version: 15.0.0005 - Nero AG) Hidden
Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 10.0.14393.21292 - Realtek Semiconductor Corp.)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 8.47.714.2016 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.8010 - Realtek Semiconductor Corp.)
Revo Uninstaller Pro 3.1.7 (HKLM\...\{67579783-0FB7-4F7B-B881-E5BE47C9DBE0}_is1) (Version: 3.1.7 - VS Revo Group, Ltd.)
Scan (x32 Version: 140.0.253.000 - Hewlett-Packard) Hidden
SHIELD Streaming (Version: 7.1.0350 - NVIDIA Corporation) Hidden
SHIELD Wireless Controller Driver (Version: 3.2.0.96 - NVIDIA Corporation) Hidden
Skype™ 7.30 (HKLM-x32\...\{FC965A47-4839-40CA-B618-18F486F042C6}) (Version: 7.30.105 - Skype Technologies S.A.)
SolutionCenter (x32 Version: 140.0.299.000 - Hewlett-Packard) Hidden
Splinter Cell - Blacklist 1.01 (HKLM-x32\...\{A6356F2F-D3E1-4D83-9AA2-72871DD0C298}_is1) (Version: - )
Spybot - Search & Destroy (HKLM-x32\...\{B4092C6D-E886-4CB2-BA68-FE5A88D31DE6}_is1) (Version: 1.6.2 - Safer Networking Limited)
Status (x32 Version: 140.0.342.000 - Hewlett-Packard) Hidden
Tom Clancy's Splinter Cell® Blacklist™ (HKLM-x32\...\{A6356F2F-D3E1-4D83-9AA2-72871DD0C298}) (Version: 1.01 - Ubisoft)
Toolbox (x32 Version: 140.0.596.000 - Hewlett-Packard) Hidden
TrayApp (x32 Version: 140.0.297.000 - Hewlett-Packard) Hidden
Trojan Killer (HKLM-x32\...\GridinSoft Trojan Killer) (Version: 2.2.0.6 - Gridinsoft LLC)
UltraISO Premium V9.65 (HKLM-x32\...\UltraISO_is1) (Version: - )
VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.4 - VideoLAN)
Vulkan Run Time Libraries 1.0.26.0 (HKLM\...\VulkanRT1.0.26.0) (Version: 1.0.26.0 - LunarG, Inc.)
WebReg (x32 Version: 140.0.297.017 - Hewlett-Packard) Hidden
WinRAR (HKLM\...\WinRAR archiver) (Version: - )
YouTubeByClick (HKLM-x32\...\{72FCC524-F5F2-453A-BA8C-3447E9F05869}) (Version: 2.2.45 - YouTubeByClick.com)

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {1B86B10D-7015-4AD7-B7C2-C17EA686EE6F} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-12-13] (Adobe Systems Incorporated)
Task: {1BF14570-BAF5-4F99-999A-6036FF5BEFB2} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-10-03] (Google Inc.)
Task: {219018AB-0919-4364-A4C1-A9AECAAB35E1} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2016-12-13] (NVIDIA Corporation)
Task: {34A6E0F4-F72A-41CC-9369-F6E93B6FBAF0} - System32\Tasks\Microsoft_Hardware_Launch_itype_exe => c:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe [2014-03-19] (Microsoft Corporation)
Task: {37C33FC2-BC3F-4342-9C72-0BBE6CA98295} - System32\Tasks\Nero\Nero Info => C:\Program Files (x86)\Common Files\Nero\Nero Info\NeroInfo.exe [2016-11-14] (Nero AG)
Task: {4F251CB0-3DE1-48E2-982B-9A00B225BEC2} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2016-12-13] (NVIDIA Corporation)
Task: {56D797BB-4484-41EB-81A5-AF4CCB481155} - System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2016-12-13] (NVIDIA Corporation)
Task: {5AAEF0A3-161C-4E55-BCED-F17A053150D0} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2016-10-21] (Adobe Systems Incorporated)
Task: {5C82FAC2-39FA-440F-A088-55E5667BF06B} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-10-03] (Google Inc.)
Task: {8203AA34-AA90-46FC-867B-541A3895ECF8} - System32\Tasks\DriverNavigator Scheduled Scan => C:\Program Files\DriverNavigator\DriverNavigator.exe
Task: {8B8F8309-33EC-4235-9F83-ED8CEED67EC1} - System32\Tasks\Microsoft_MKC_Logon_Task_itype.exe => c:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe [2014-03-19] (Microsoft Corporation)
Task: {ACE210CC-4C2F-42BF-918C-B4243BB25360} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2016-11-15] (Piriform Ltd)
Task: {B6F18F24-38DC-4EA4-9A37-1DFB1D092C64} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [2016-12-13] (NVIDIA Corporation)
Task: {B88CF924-754A-4241-AF2F-203344924A18} - System32\Tasks\Microsoft_Hardware_Launch_mousekeyboardcenter_exe => c:\Program Files\Microsoft Mouse and Keyboard Center\mousekeyboardcenter.exe [2014-03-19] (Microsoft)
Task: {BBB2B70E-F5A7-49C5-8FDE-F0C99ED36BA1} - System32\Tasks\Opera scheduled Autoupdate 1475165997 => C:\Program Files (x86)\Opera\launcher.exe [2016-12-09] (Opera Software)
Task: {BC047134-0396-4B8B-B6CA-E250DA37F7CB} - System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmMon.exe [2016-12-13] (NVIDIA Corporation)
Task: {CE2DB598-9720-4B3C-A57C-5EB8B316DDC0} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [2016-12-13] (NVIDIA Corporation)
Task: {CE4E6472-E922-4625-92D2-BF7D0BE7F7C2} - System32\Tasks\BackItUp_Launch => C:\Program Files (x86)\Nero\Nero BackItUp\BackItUp.exe
Task: {D284ABA4-B2FE-4FE4-A090-359289F2DC48} - System32\Tasks\Microsoft_MKC_Logon_Task_ipoint.exe => c:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe [2014-03-19] (Microsoft Corporation)
Task: {ED26C270-BE07-4D60-941A-9BCCE53C34C4} - System32\Tasks\Adobe Flash Player PPAPI Notifier => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_24_0_0_186_pepper.exe [2016-12-13] (Adobe Systems Incorporated)
Task: {ED6CD9A6-E709-4976-B742-38BFD01C080A} - System32\Tasks\Microsoft_Hardware_Launch_ipoint_exe => c:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe [2014-03-19] (Microsoft Corporation)
Task: {F215FC31-10C0-4DE0-A89A-11E21FCBF2B3} - System32\Tasks\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2016-12-13] (NVIDIA Corporation)
Task: {F89FCE2A-522A-47B7-9BD3-F906A800B4F7} - \Driver Booster SkipUAC (Michal) -> No File <==== ATTENTION

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\Windows\Tasks\Adobe Flash Player PPAPI Notifier.job => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_24_0_0_186_pepper.exe
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\DriverNavigator Scheduled Scan.job => C:\Program Files\DriverNavigator\DriverNavigator.exe

==================== Shortcuts =============================

(The entries could be listed to be restored or removed.)

==================== Loaded Modules (Whitelisted) ==============


Re: Vyskakující hláška Js/ProxyChanger.CW/Trojský kůň

Napsal: 18 pro 2016 14:32
od Rudy
Spusťte tuto utilitu:
Stáhněte AdwCleaner https://toolslib.net/downloads/viewdown ... dwcleaner/
Uložte na plochu
Ukončete všechny programy
Klikněte nejprve na >Scan<(hledání) a pak na >Clean< (mazání).
Proběhne skenováni a pak se objeví log, který sem vložte.

Re: Vyskakující hláška Js/ProxyChanger.CW/Trojský kůň

Napsal: 18 pro 2016 15:10
od jahoner
Zdravím zde posílám LOG AdwancedCleaner.
# AdwCleaner v6.041 - Log vytvořen 18/12/2016 v 14:54:28
# Aktualizováno dne 16/12/2016 z Malwarebytes
# Databáze : 2016-12-18.1 [Server]
# Operační systém : Windows 8.1 (X64)
# Uživatelské jméno : Michal - ACER
# Spuštěno z : C:\Users\Michal\Desktop\adwcleaner_6.041.exe
# Mod: Čištění
# Podpora : https://www.malwarebytes.com/support



***** [ Služby ] *****



***** [ Složky ] *****

[-] Složka smazána: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DriverNavigator


***** [ Soubory ] *****



***** [ DLL ] *****



***** [ WMI ] *****



***** [ Zástupci ] *****



***** [ Naplánované úlohy ] *****



***** [ Registry ] *****



***** [ Prohlížeče ] *****



*************************

:: "Tracing" klíče smazány
:: Winsock nastavení vyčištěno

*************************

C:\AdwCleaner\AdwCleaner[C0].txt - [878 Bajty] - [18/12/2016 14:54:28]
C:\AdwCleaner\AdwCleaner[S0].txt - [1399 Bajty] - [18/12/2016 14:53:44]

########## EOF - C:\AdwCleaner\AdwCleaner[C0].txt - [1023 Bajty] ##########
Jen podotknu že ihned po restartu ta hláška opět vyskočila a ještě jedna na víc kterou vidím poprvé?Nebo jestli jsem vás pochopil dobře že ESS zabránil spojení není problém v Pc ale třeba v Routeru??

Re: Vyskakující hláška Js/ProxyChanger.CW/Trojský kůň

Napsal: 18 pro 2016 16:10
od Rudy
Dejte nový log FRST.

Re: Vyskakující hláška Js/ProxyChanger.CW/Trojský kůň

Napsal: 18 pro 2016 16:44
od jahoner
Zde Je Nový LOG FRST:
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 17-12-2016
Ran by Michal (administrator) on ACER (18-12-2016 16:40:27)
Running from C:\Users\Michal\Desktop
Loaded Profiles: Michal (Available Profiles: Michal)
Platform: Windows 8.1 (Update) (X64) Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: Opera)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(ESET) C:\Program Files\ESET\ESET Smart Security\ekrn.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe
(Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe
(Intel Corporation) C:\Windows\System32\ibtsiva.exe
(Nero AG) C:\Program Files (x86)\Nero\Nero 2014\Nero BackItUp\NBService\NBService.exe
(Microsoft Corporation) C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe
(Microsoft Corporation) C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\nvwirelesscontroller.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvContainer\nvcontainer.exe
(StarWind Software) C:\Program Files (x86)\Alcohol 120% 2.0.2.5629\StarWind\StarWindServiceAE.exe
(ESET) C:\Program Files\ESET\ESET Smart Security\egui.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel Corporation) C:\Windows\System32\igfxHK.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
(Adobe Systems Inc.) C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\acrotray.exe
(Nero AG) C:\Program Files (x86)\Nero\Update\NASvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Opera Software) C:\Program Files (x86)\Opera\42.0.2393.85\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\42.0.2393.85\opera_crashreporter.exe
(Opera Software) C:\Program Files (x86)\Opera\42.0.2393.85\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\42.0.2393.85\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\42.0.2393.85\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\42.0.2393.85\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\42.0.2393.85\opera.exe
(Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.3.9600.18384_none_fa1d93c39b41b41a\TiWorker.exe
(forum.viry.cz) C:\Users\Michal\Desktop\FRSTLauncher.exe

==================== Registry (Whitelisted) ====================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [ShadowPlay] => "C:\Windows\system32\rundll32.exe" C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [16776704 2016-12-12] (Realtek Semiconductor)
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [NBAgent] => C:\Program Files (x86)\Nero\Nero 2014\Nero BackItUp\NBAgent.exe [2451792 2014-01-22] (Nero AG)
Winlogon\Notify\LBTWlgn: c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll (Logitech, Inc.)
HKU\S-1-5-21-1363994568-2854874814-1274703555-1001\...\Run: [uTorrent] => C:\Users\Michal\AppData\Roaming\uTorrent\utorrent.exe [416168 2015-02-22] (BitTorrent, Inc.)
HKU\S-1-5-21-1363994568-2854874814-1274703555-1001\...\Run: [AlcoholAutomount] => C:\Program Files (x86)\Alcohol 120% 2.0.2.5629\AxAutoMntSrv.exe [75624 2012-01-05] (Alcohol Soft Development Team)
HKU\S-1-5-21-1363994568-2854874814-1274703555-1001\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [27226072 2016-11-15] (Skype Technologies S.A.)
HKU\S-1-5-21-1363994568-2854874814-1274703555-1001\...\Policies\Explorer: [NolowDiskSpaceChecks] 1
HKU\S-1-5-21-1363994568-2854874814-1274703555-1001\...\MountPoints2: {74b601ab-b57f-11e6-82c5-f406693114aa} - "E:\setup.exe"
HKU\S-1-5-21-1363994568-2854874814-1274703555-1001\...\MountPoints2: {751224b8-b934-11e6-82cb-f406693114aa} - "E:\KaneandLynch.part01.exe"

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

AutoConfigURL: [.DEFAULT] => hxxp://none-stops.com/wpad.dat?22f8cbf3db0d6a3c493e5395c32273a119428593
AutoConfigURL: [S-1-5-21-1363994568-2854874814-1274703555-1001] => hxxp://none-stops.com/wpad.dat?22f8cbf3db0d6a3c493e5395c32273a119428593
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 213.46.172.36 213.46.172.37
Tcpip\..\Interfaces\{60FDC5E4-84CA-484B-B12B-B17FCD7F8901}: [DhcpNameServer] 213.46.172.36 213.46.172.37
Tcpip\..\Interfaces\{BD2ECBA1-8081-46F5-B47E-5443A819670A}: [DhcpNameServer] 213.46.172.36 213.46.172.37

Internet Explorer:
==================
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <======= ATTENTION
BHO: Adobe Acrobat Create PDF Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\x64\AcroIEFavStub.dll [2016-10-27] (Adobe Systems Incorporated)
BHO: Logitech SetPoint -> {AF949550-9094-4807-95EC-D1C317803333} -> C:\Program Files\Logitech\SetPointP\SetPointSmooth.dll [2015-08-26] (Logitech, Inc.)
BHO: Adobe Acrobat Create PDF from Selection -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\x64\AcroIEFavStub.dll [2016-10-27] (Adobe Systems Incorporated)
BHO-x32: Adobe Acrobat Create PDF Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll [2016-10-27] (Adobe Systems Incorporated)
BHO-x32: Logitech SetPoint -> {AF949550-9094-4807-95EC-D1C317803333} -> C:\Program Files\Logitech\SetPointP\32-bit\SetPointSmooth.dll [2015-08-26] (Logitech, Inc.)
BHO-x32: Adobe Acrobat Create PDF from Selection -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll [2016-10-27] (Adobe Systems Incorporated)
Toolbar: HKLM - Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\x64\AcroIEFavStub.dll [2016-10-27] (Adobe Systems Incorporated)
Toolbar: HKLM-x32 - Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll [2016-10-27] (Adobe Systems Incorporated)
Toolbar: HKU\S-1-5-21-1363994568-2854874814-1274703555-1001 -> Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\x64\AcroIEFavStub.dll [2016-10-27] (Adobe Systems Incorporated)

FireFox:
========
FF HKLM-x32\...\Firefox\Extensions: [{F003DA68-8256-4b37-A6C4-350FA04494DF}] - C:\Program Files\Logitech\SetPointP\LogiSmoothFirefoxExt
FF Extension: (Logitech SetPoint) - C:\Program Files\Logitech\SetPointP\LogiSmoothFirefoxExt [2016-10-03] [not signed]
FF HKLM-x32\...\Firefox\Extensions: [web2pdfextension.15@web2pdf.adobedotcom] - C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Browser\WCFirefoxExtn
FF Extension: (Adobe Acrobat DC - Create PDF) - C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Browser\WCFirefoxExtn [2016-11-28]
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.50901.0\npctrl.dll [2016-08-31] ( Microsoft Corporation)
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll [2015-07-29] (Adobe Systems)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.50901.0\npctrl.dll [2016-08-31] ( Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.32.7\npGoogleUpdate3.dll [2016-12-16] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.32.7\npGoogleUpdate3.dll [2016-12-16] (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.2.4 -> C:\Program Files (x86)\VLC media player\npvlc.dll [2016-06-01] (VideoLAN)
FF Plugin-x32: Adobe Acrobat -> C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2016-10-27] (Adobe Systems Inc.)
FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll [2015-07-29] (Adobe Systems)

Chrome:
=======
CHR Profile: C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default [2016-12-18]
CHR Extension: (Prezentace Google) - C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2016-10-03]
CHR Extension: (Dokumenty Google) - C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2016-10-03]
CHR Extension: (Disk Google) - C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-10-03]
CHR Extension: (YouTube) - C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-10-03]
CHR Extension: (Adobe Acrobat) - C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2016-12-06]
CHR Extension: (Tabulky Google) - C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2016-10-03]
CHR Extension: (Dokumenty Google offline) - C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-10-03]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-10-03]
CHR Extension: (Gmail) - C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2016-10-03]
CHR Extension: (Chrome Media Router) - C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2016-10-30]
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - hxxps://clients2.google.com/service/update2/crx

==================== Services (Whitelisted) ====================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2207960 2016-09-26] (Adobe Systems, Incorporated)
S2 AxAutoMntSrv; C:\Program Files (x86)\Alcohol 120% 2.0.2.5629\AxAutoMntSrv.exe [75624 2012-01-05] (Alcohol Soft Development Team)
R2 ekrn; C:\Program Files\ESET\ESET Smart Security\ekrn.exe [2815520 2016-11-28] (ESET)
R2 HPSLPSVC; C:\Program Files (x86)\HP\Digital Imaging\bin\HPSLPSVC64.DLL [1039360 2011-08-18] (Hewlett-Packard Co.) [File not signed]
S3 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [18504 2016-04-28] (Intel Corporation)
R2 igfxCUIService2.0.0.0; C:\Windows\system32\igfxCUIService.exe [365048 2016-10-06] (Intel Corporation)
R2 NBService; C:\Program Files (x86)\Nero\Nero 2014\Nero BackItUp\NBService\NBService.exe [268112 2014-01-22] (Nero AG)
R2 Net Driver HPZ12; C:\Windows\System32\HPZinw12.dll [71680 2010-08-06] (Hewlett-Packard) [File not signed]
R2 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [462784 2016-12-13] (NVIDIA Corporation)
S3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [462784 2016-12-13] (NVIDIA Corporation)
R2 NVDisplay.ContainerLocalSystem; C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe [459832 2016-12-11] (NVIDIA Corporation)
R2 NVIDIA Wireless Controller Service; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\nvwirelesscontroller.exe [1163712 2016-12-13] (NVIDIA Corporation)
R2 NvTelemetryContainer; C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe [425408 2016-12-13] (NVIDIA Corporation)
R2 Pml Driver HPZ12; C:\Windows\System32\HPZipm12.dll [89600 2010-08-06] (Hewlett-Packard) [File not signed]
R2 StarWindServiceAE; C:\Program Files (x86)\Alcohol 120% 2.0.2.5629\StarWind\StarWindServiceAE.exe [370688 2009-12-23] (StarWind Software) [File not signed]
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [366552 2015-07-07] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23824 2015-07-07] (Microsoft Corporation)
R2 ibtsiva; %SystemRoot%\system32\ibtsiva [X]

===================== Drivers (Whitelisted) ======================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

U3 axscsidrv; C:\Windows\System32\Drivers\axscsidrv.sys [293888 2016-12-03] (Alcohol Soft Development Team)
S3 dot4; C:\Windows\system32\DRIVERS\Dot4.sys [151968 2012-09-25] (Windows (R) Win 7 DDK provider)
S3 Dot4Print; C:\Windows\System32\drivers\Dot4Prt.sys [27040 2012-09-25] (Windows (R) Win 7 DDK provider)
R1 eamonm; C:\Windows\System32\DRIVERS\eamonm.sys [232072 2016-11-28] (ESET)
R0 edevmon; C:\Windows\System32\DRIVERS\edevmon.sys [212096 2016-11-28] (ESET)
S0 eelam; C:\Windows\System32\DRIVERS\eelam.sys [15488 2016-08-08] (ESET)
R1 ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [177792 2016-11-28] (ESET)
R2 ekbdflt; C:\Windows\system32\DRIVERS\ekbdflt.sys [48768 2016-11-28] (ESET)
R1 epfw; C:\Windows\system32\DRIVERS\epfw.sys [76416 2016-11-28] (ESET)
R1 epfwwfp; C:\Windows\system32\DRIVERS\epfwwfp.sys [91784 2016-11-28] (ESET)
S3 ESETCleanersDriver; C:\Windows\system32\Drivers\ESETCleanersDriver.sys [181160 2016-10-03] (ESET)
R1 HWiNFO32; C:\Windows\SysWOW64\drivers\HWiNFO64A.SYS [27552 2016-09-29] (REALiX(tm))
R3 iaLPSS_GPIO; C:\Windows\System32\drivers\iaLPSS_GPIO.sys [35320 2016-11-28] (Intel Corporation)
R3 iaLPSS_I2C; C:\Windows\System32\drivers\iaLPSS_I2C.sys [120312 2016-09-29] (Intel Corporation)
R3 ibtusb; C:\Windows\system32\DRIVERS\ibtusb.sys [228624 2016-12-02] (Intel Corporation)
R1 ISODrive; C:\Program Files (x86)\UltraISO 9.6.5\drivers\ISODrv64.sys [115448 2013-11-21] (EZB Systems, Inc.)
R3 NETwNb64; C:\Windows\system32\DRIVERS\Netwbw02.sys [3517200 2016-11-28] (Intel Corporation)
S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [27584 2016-12-13] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [46016 2016-12-13] (NVIDIA Corporation)
R3 RTSPER; C:\Windows\system32\DRIVERS\RtsPer.sys [779232 2016-12-18] (Realsil Semiconductor Corporation)
S3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [42600 2016-10-08] (Synaptics Incorporated)
R0 sptd; C:\Windows\System32\Drivers\sptd.sys [394296 2016-11-28] (Duplex Secure Ltd.)
R3 SynRMIHID; C:\Windows\system32\DRIVERS\SynRMIHID.sys [43176 2015-01-14] (Synaptics Incorporated)
S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [44560 2015-07-07] (Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [270168 2015-07-07] (Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114520 2015-07-07] (Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2016-12-18 16:40 - 2016-12-18 16:40 - 00016681 _____ C:\Users\Michal\Desktop\FRST.txt
2016-12-18 16:40 - 2016-12-18 16:40 - 00000000 ____D C:\FRST
2016-12-18 15:54 - 2016-12-18 15:54 - 00000180 _____ C:\Windows\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2016-12-18 15:03 - 2016-12-18 15:03 - 128605432 _____ C:\Users\Michal\Downloads\Apache_OpenOffice_4.1.3_Win_x86_install_cs.exe
2016-12-18 14:57 - 2016-12-18 15:52 - 00005110 _____ C:\ProgramData\NvTelemetryContainer.log_backup1
2016-12-18 14:54 - 2016-12-18 14:58 - 00001105 _____ C:\Users\Michal\Desktop\AdwCleaner[C0].txt
2016-12-18 14:50 - 2016-12-18 14:50 - 03977168 _____ C:\Users\Michal\Desktop\adwcleaner_6.041.exe
2016-12-18 14:25 - 2016-12-18 14:25 - 00424624 _____ (Creative Labs) C:\Windows\system32\wrap_oal.dll
2016-12-18 14:25 - 2016-12-18 14:25 - 00418480 _____ (Creative Labs) C:\Windows\SysWOW64\wrap_oal.dll
2016-12-18 14:25 - 2016-12-18 14:25 - 00138472 _____ (Portions (C) Creative Labs Inc. and NVIDIA Corp.) C:\Windows\system32\OpenAL32.dll
2016-12-18 14:25 - 2016-12-18 14:25 - 00115432 _____ (Portions (C) Creative Labs Inc. and NVIDIA Corp.) C:\Windows\SysWOW64\OpenAL32.dll
2016-12-18 13:12 - 2016-12-18 13:12 - 00112640 _____ (forum.viry.cz) C:\Users\Michal\Desktop\FRSTLauncher.exe
2016-12-18 13:11 - 2016-12-18 13:11 - 02420224 _____ (Farbar) C:\Users\Michal\Desktop\FRST64.exe
2016-12-18 00:17 - 2016-12-18 00:17 - 04332032 _____ (Realtek Semiconductor Corp.) C:\Windows\RtCRU64.exe
2016-12-18 00:16 - 2016-12-18 00:16 - 09891328 _____ (Realtek Semiconductor Corp.) C:\Windows\SysWOW64\RsCRIcon.dll
2016-12-18 00:16 - 2016-12-18 00:16 - 00779232 _____ (Realsil Semiconductor Corporation) C:\Windows\system32\Drivers\RtsPer.sys
2016-12-17 22:12 - 2016-12-17 22:12 - 01811408 _____ (GridinSoft LLC) C:\Users\Michal\Downloads\TrojanKiller-Setup.exe
2016-12-17 21:21 - 2016-12-17 21:21 - 00000000 ____D C:\Users\Michal\Downloads\GridinSoft-Trojan-Killer-2.2.0.6+Crack+Key[Krish]
2016-12-17 21:18 - 2016-12-17 21:21 - 64513551 _____ C:\Users\Michal\Downloads\GridinSoft-Trojan-Killer-2.2.0.6+Crack+Key[Krish].rar
2016-12-17 21:14 - 2016-12-17 22:02 - 00000000 ____D C:\ProgramData\GridinSoft
2016-12-17 21:13 - 2016-12-17 21:14 - 50689016 _____ (GridinSoft LLC) C:\Users\Michal\Downloads\gtk-2.2.4.4-setup.exe
2016-12-17 21:03 - 2016-12-17 21:03 - 00011804 _____ C:\Users\Michal\Downloads\[CzT]GridinSoft_Trojan_Killer_v2_2_3_4.torrent
2016-12-17 20:45 - 2016-12-17 20:45 - 00017123 _____ C:\Users\Michal\Downloads\[CzT]Trojan_Remover_v6_9_4_Build_2943_2016_.torrent
2016-12-17 20:11 - 2016-12-17 20:10 - 00453007 ____R C:\Windows\system32\Drivers\etc\hosts.20161217-201134.backup
2016-12-17 17:27 - 2016-12-17 17:27 - 00000000 ____D C:\ProgramData\Orbit
2016-12-17 17:09 - 2016-12-17 17:09 - 00000000 ____D C:\Users\Michal\AppData\Local\kaneandlynch
2016-12-17 17:08 - 2016-12-17 17:08 - 00000000 __RHD C:\Users\Michal\AppData\Roaming\SecuROM
2016-12-17 16:53 - 2016-12-17 16:53 - 00000000 ____D C:\Program Files (x86)\OpenAL
2016-12-17 16:45 - 2016-12-17 16:45 - 00000000 ____D C:\Windows\SysWOW64\xlive
2016-12-17 16:06 - 2016-12-17 16:06 - 00000000 ____D C:\Users\Michal\AppData\Roaming\Steam
2016-12-17 16:03 - 2016-12-17 16:03 - 00020955 _____ C:\Users\Michal\Downloads\[CzT]Kane_and_Lynch_Dead_Men_CZ.torrent
2016-12-17 15:42 - 2016-12-17 15:42 - 00040023 _____ C:\Users\Michal\Downloads\kane.and.lynch.dead.men.full.game.torrent
2016-12-17 15:02 - 2016-12-17 15:02 - 00000000 ____D C:\Users\Michal\AppData\Local\76561197960270647
2016-12-17 15:01 - 2016-12-17 15:01 - 00000000 ____D C:\ProgramData\Steam
2016-12-17 14:12 - 2016-12-18 14:51 - 00000288 _____ C:\Users\Michal\Documents\ax_files.xml
2016-12-16 23:08 - 2016-12-16 23:08 - 00003384 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2016-12-16 23:08 - 2016-12-16 23:08 - 00003256 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2016-12-16 13:06 - 2016-12-16 13:06 - 00003838 _____ C:\Windows\System32\Tasks\Opera scheduled Autoupdate 1475165997
2016-12-16 13:05 - 2016-12-16 13:05 - 00001067 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Opera.lnk
2016-12-16 07:48 - 2016-12-17 16:07 - 00000000 ____D C:\Users\Michal\AppData\Roaming\NVIDIA
2016-12-16 06:48 - 2016-12-12 00:00 - 00835576 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2016-12-16 06:48 - 2016-12-12 00:00 - 00177656 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2016-12-16 06:35 - 2016-12-16 06:35 - 00000000 ____D C:\Users\Michal\AppData\Local\A
2016-12-16 06:27 - 2016-12-01 15:13 - 00869576 _____ (Microsoft Corporation) C:\Windows\system32\msvcr120_clr0400.dll
2016-12-16 06:27 - 2016-12-01 15:13 - 00678592 _____ (Microsoft Corporation) C:\Windows\system32\msvcp120_clr0400.dll
2016-12-16 06:27 - 2016-12-01 15:11 - 00875720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcr120_clr0400.dll
2016-12-16 06:27 - 2016-12-01 15:11 - 00536768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcp120_clr0400.dll
2016-12-16 01:54 - 2016-12-16 01:54 - 00000000 ____D C:\Program Files (x86)\VulkanRT
2016-12-16 01:54 - 2016-09-09 19:25 - 00269600 _____ C:\Windows\SysWOW64\vulkan-1.dll
2016-12-16 01:54 - 2016-09-09 19:25 - 00261920 _____ C:\Windows\system32\vulkan-1.dll
2016-12-16 01:54 - 2016-09-09 19:25 - 00110880 _____ C:\Windows\SysWOW64\vulkaninfo.exe
2016-12-16 01:54 - 2016-09-09 19:24 - 00125216 _____ C:\Windows\system32\vulkaninfo.exe
2016-12-16 01:53 - 2016-12-11 19:47 - 06384576 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll
2016-12-16 01:53 - 2016-12-11 19:47 - 02475968 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll
2016-12-16 01:53 - 2016-12-11 19:47 - 01764408 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll
2016-12-16 01:53 - 2016-12-11 19:47 - 00548408 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshext.dll
2016-12-16 01:53 - 2016-12-11 19:47 - 00392128 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll
2016-12-16 01:53 - 2016-12-11 19:47 - 00081856 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshextr.dll
2016-12-16 01:53 - 2016-12-11 19:47 - 00071224 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll
2016-12-16 01:53 - 2016-12-11 19:47 - 00001951 _____ C:\Windows\NvContainerRecovery.bat
2016-12-16 01:53 - 2016-12-09 09:52 - 07639617 _____ C:\Windows\system32\nvcoproc.bin
2016-12-16 01:46 - 2016-12-12 03:37 - 40125496 _____ C:\Windows\system32\nvcompiler.dll
2016-12-16 01:46 - 2016-12-12 03:37 - 35222976 _____ C:\Windows\SysWOW64\nvcompiler.dll
2016-12-16 01:46 - 2016-12-12 03:37 - 34703416 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll
2016-12-16 01:46 - 2016-12-12 03:37 - 28138432 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll
2016-12-16 01:46 - 2016-12-12 03:37 - 19947472 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll
2016-12-16 01:46 - 2016-12-12 03:37 - 17436808 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll
2016-12-16 01:46 - 2016-12-12 03:37 - 17376896 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll
2016-12-16 01:46 - 2016-12-12 03:37 - 14410472 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll
2016-12-16 01:46 - 2016-12-12 03:37 - 14073400 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys
2016-12-16 01:46 - 2016-12-12 03:37 - 10912744 _____ (NVIDIA Corporation) C:\Windows\system32\nvptxJitCompiler.dll
2016-12-16 01:46 - 2016-12-12 03:37 - 10795312 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll
2016-12-16 01:46 - 2016-12-12 03:37 - 10345696 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
2016-12-16 01:46 - 2016-12-12 03:37 - 09151216 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll
2016-12-16 01:46 - 2016-12-12 03:37 - 08913328 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvptxJitCompiler.dll
2016-12-16 01:46 - 2016-12-12 03:37 - 08753832 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2016-12-16 01:46 - 2016-12-12 03:37 - 03941536 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll
2016-12-16 01:46 - 2016-12-12 03:37 - 03640376 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
2016-12-16 01:46 - 2016-12-12 03:37 - 03479744 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll
2016-12-16 01:46 - 2016-12-12 03:37 - 03206080 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2016-12-16 01:46 - 2016-12-12 03:37 - 01953336 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6437633.dll
2016-12-16 01:46 - 2016-12-12 03:37 - 01586744 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6437633.dll
2016-12-16 01:46 - 2016-12-12 03:37 - 01036224 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll
2016-12-16 01:46 - 2016-12-12 03:37 - 00975416 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
2016-12-16 01:46 - 2016-12-12 03:37 - 00944184 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll
2016-12-16 01:46 - 2016-12-12 03:37 - 00896056 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
2016-12-16 01:46 - 2016-12-12 03:37 - 00683640 _____ (NVIDIA Corporation) C:\Windows\system32\nvfatbinaryLoader.dll
2016-12-16 01:46 - 2016-12-12 03:37 - 00572888 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvfatbinaryLoader.dll
2016-12-16 01:46 - 2016-12-12 03:37 - 00521096 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll
2016-12-16 01:46 - 2016-12-12 03:37 - 00438208 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFROpenGL.dll
2016-12-16 01:46 - 2016-12-12 03:37 - 00435904 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll
2016-12-16 01:46 - 2016-12-12 03:37 - 00388544 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFROpenGL.dll
2016-12-16 01:46 - 2016-12-12 03:37 - 00170688 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll
2016-12-16 01:46 - 2016-12-12 03:37 - 00148016 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll
2016-12-16 01:46 - 2016-12-12 03:37 - 00041334 _____ C:\Windows\system32\nvinfo.pb
2016-12-16 01:46 - 2016-12-12 03:37 - 00000669 _____ C:\Windows\SysWOW64\nv-vk32.json
2016-12-16 01:46 - 2016-12-12 03:37 - 00000669 _____ C:\Windows\system32\nv-vk64.json
2016-12-16 01:41 - 2016-12-16 01:41 - 00000000 ____D C:\Users\Michal\AppData\Local\Chromium
2016-12-16 01:40 - 2016-12-16 01:40 - 00003830 _____ C:\Windows\System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2016-12-16 01:39 - 2016-12-16 01:39 - 00004234 _____ C:\Windows\System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2016-12-16 01:38 - 2016-12-16 01:38 - 00003826 _____ C:\Windows\System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2016-12-16 01:38 - 2016-12-16 01:38 - 00003826 _____ C:\Windows\System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2016-12-16 01:38 - 2016-12-16 01:38 - 00003818 _____ C:\Windows\System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2016-12-16 01:38 - 2016-12-16 01:38 - 00003642 _____ C:\Windows\System32\Tasks\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2016-12-16 01:38 - 2016-12-16 01:38 - 00003582 _____ C:\Windows\System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2016-12-16 01:38 - 2016-12-12 15:36 - 00001951 _____ C:\Windows\NvTelemetryContainerRecovery.bat
2016-12-16 01:37 - 2016-12-13 00:36 - 00156096 _____ (NVIDIA Corporation) C:\Windows\system32\nvaudcap64v.dll
2016-12-16 01:37 - 2016-12-13 00:36 - 00123840 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvaudcap32v.dll
2016-12-16 01:37 - 2016-12-13 00:36 - 00046016 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvad64v.sys
2016-12-14 09:47 - 2016-11-19 22:24 - 00567152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys
2016-12-14 09:47 - 2016-11-19 22:24 - 00152856 _____ (Microsoft Corporation) C:\Windows\system32\bcrypt.dll
2016-12-14 09:47 - 2016-11-19 20:29 - 00401408 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
2016-12-14 09:47 - 2016-11-19 19:44 - 00445440 _____ (Microsoft Corporation) C:\Windows\system32\certcli.dll
2016-12-14 09:47 - 2016-11-19 18:53 - 00324096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certcli.dll
2016-12-14 09:47 - 2016-11-19 18:22 - 00111104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bcrypt.dll
2016-12-14 09:47 - 2016-11-16 22:49 - 00377176 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\clfs.sys
2016-12-14 09:47 - 2016-11-12 22:06 - 00738104 _____ (Microsoft Corporation) C:\Windows\system32\d3d10level9.dll
2016-12-14 09:47 - 2016-11-12 20:38 - 00613632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10level9.dll
2016-12-14 09:47 - 2016-11-12 20:25 - 00576000 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2016-12-14 09:47 - 2016-11-12 20:08 - 25759744 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2016-12-14 09:47 - 2016-11-12 20:07 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2016-12-14 09:47 - 2016-11-12 19:53 - 06049280 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2016-12-14 09:47 - 2016-11-12 19:29 - 00498688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2016-12-14 09:47 - 2016-11-12 19:23 - 01033216 _____ (Microsoft Corporation) C:\Windows\system32\inetcomm.dll
2016-12-14 09:47 - 2016-11-12 19:17 - 20302848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2016-12-14 09:47 - 2016-11-12 19:14 - 00663552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2016-12-14 09:47 - 2016-11-12 19:10 - 00806912 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2016-12-14 09:47 - 2016-11-12 18:45 - 00880640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcomm.dll
2016-12-14 09:47 - 2016-11-12 18:41 - 15257088 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2016-12-14 09:47 - 2016-11-12 18:38 - 00693248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2016-12-14 09:47 - 2016-11-12 18:37 - 04608000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2016-12-14 09:47 - 2016-11-12 18:35 - 02920960 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2016-12-14 09:47 - 2016-11-12 18:21 - 13653504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2016-12-14 09:47 - 2016-11-12 18:20 - 01543680 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2016-12-14 09:47 - 2016-11-12 18:11 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2016-12-14 09:47 - 2016-11-12 18:05 - 02444800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2016-12-14 09:47 - 2016-11-12 18:02 - 01312256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2016-12-14 09:47 - 2016-11-12 18:02 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2016-12-14 09:47 - 2016-11-11 03:33 - 01541240 _____ (Microsoft Corporation) C:\Windows\system32\user32.dll
2016-12-14 09:47 - 2016-11-09 18:25 - 01376768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user32.dll
2016-12-14 09:47 - 2016-11-05 19:35 - 04169216 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2016-12-14 09:47 - 2016-11-05 18:57 - 03320320 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
2016-12-14 09:47 - 2016-11-05 18:11 - 03606528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll
2016-12-14 09:47 - 2016-11-05 16:56 - 02778624 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll
2016-12-14 09:47 - 2016-11-05 16:46 - 02463744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll
2016-12-14 09:47 - 2016-10-28 03:56 - 01380048 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2016-12-14 09:47 - 2016-10-27 15:28 - 01097728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll
2016-12-13 00:44 - 2016-12-13 00:44 - 00416504 _____ (Harman) C:\Windows\system32\HMUI.dll
2016-12-13 00:44 - 2016-12-13 00:44 - 00366120 _____ (Windows (R) Win 7 DDK provider) C:\Windows\system32\HMAPO.dll
2016-12-13 00:44 - 2016-12-13 00:44 - 00154360 _____ (Harman) C:\Windows\system32\HarmanAudioInterface.dll
2016-12-13 00:43 - 2016-12-13 00:44 - 00190928 _____ (Harman) C:\Windows\system32\HMEQ_Voice.dll
2016-12-13 00:43 - 2016-12-13 00:43 - 00360344 _____ (Harman) C:\Windows\system32\HMClariFi.dll
2016-12-13 00:43 - 2016-12-13 00:43 - 00203840 _____ (Harman) C:\Windows\system32\HMHVS.dll
2016-12-13 00:43 - 2016-12-13 00:43 - 00190928 _____ (Harman) C:\Windows\system32\HMEQ.dll
2016-12-13 00:43 - 2016-12-13 00:43 - 00179592 _____ (Harman) C:\Windows\system32\HMLimiter.dll
2016-12-13 00:42 - 2016-12-13 00:43 - 01920919 _____ C:\Windows\system32\Drivers\rtkSSTsetting.dat
2016-12-13 00:41 - 2016-12-13 00:42 - 01186832 _____ (Intel Corporation) C:\Windows\system32\IntelSstCApoPropPage.dll
2016-12-13 00:37 - 2016-12-13 00:41 - 10531584 _____ (Intel Corporation) C:\Windows\system32\IntelSSTAPO.dll
2016-12-13 00:34 - 2016-12-13 00:34 - 00378384 _____ (Dolby Laboratories) C:\Windows\system32\HiFiDAX2API.dll
2016-12-13 00:33 - 2016-12-13 00:34 - 01133584 _____ (Dolby Laboratories) C:\Windows\system32\DolbyDAX2APOProp.dll
2016-12-13 00:32 - 2016-12-13 00:33 - 05347000 _____ (Dolby Laboratories) C:\Windows\system32\DolbyDAX2APOv211.dll
2016-12-13 00:32 - 2016-12-13 00:32 - 02444688 _____ (Dolby Laboratories) C:\Windows\system32\DolbyDAX2APOv201.dll
2016-12-13 00:28 - 2016-12-13 00:32 - 12988336 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVoiceAPO4064.dll
2016-12-13 00:27 - 2016-12-13 00:28 - 02291304 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO7064.dll
2016-12-13 00:26 - 2016-12-13 00:27 - 00865912 _____ (Sound Research, Corp.) C:\Windows\SysWOW64\SEHDHF32.dll
2016-12-13 00:26 - 2016-12-13 00:26 - 00859216 _____ (Sound Research, Corp.) C:\Windows\system32\SEHDRA64.dll
2016-12-13 00:26 - 2016-12-13 00:26 - 00721800 _____ (Sound Research, Corp.) C:\Windows\SysWOW64\SECOMN32.dll
2016-12-13 00:25 - 2016-12-13 00:26 - 01003328 _____ (Sound Research, Corp.) C:\Windows\system32\SEHDHF64.dll
2016-12-13 00:25 - 2016-12-13 00:25 - 00850408 _____ (Sound Research, Corp.) C:\Windows\system32\SECOMN64.dll
2016-12-13 00:25 - 2016-12-13 00:25 - 00499152 _____ (Sound Research, Corp.) C:\Windows\system32\SEAPO64.dll
2016-12-13 00:24 - 2016-12-13 00:25 - 00601136 _____ (Toshiba Client Solutions Co., Ltd.) C:\Windows\system32\tossaemaxapo64.dll
2016-12-13 00:22 - 2016-12-13 00:24 - 06198136 _____ (Nahimic Inc) C:\Windows\system32\NAHIMICV3apo.dll
2016-12-13 00:20 - 2016-12-13 00:22 - 05793520 _____ (Nahimic Inc) C:\Windows\system32\NAHIMICV2apo.dll
2016-12-13 00:19 - 2016-12-13 00:20 - 06264632 _____ (Dolby Laboratories) C:\Windows\system32\DDPP64AF3.dll
2016-12-13 00:19 - 2016-12-13 00:19 - 00362048 _____ (Dolby Laboratories) C:\Windows\system32\DDPO64AF3.dll
2016-12-13 00:18 - 2016-12-13 00:19 - 01959600 _____ (Dolby Laboratories) C:\Windows\system32\DDPD64AF3.dll
2016-12-13 00:18 - 2016-12-13 00:18 - 00310416 _____ (Dolby Laboratories) C:\Windows\system32\DDPA64F3.dll
2016-12-13 00:17 - 2016-12-13 00:18 - 02828432 _____ (Realtek Semiconductor Corp.) C:\Windows\SysWOW64\RltkAPO.dll
2016-12-13 00:17 - 2016-12-13 00:17 - 01435136 _____ (Synopsys, Inc.) C:\Windows\system32\SRRPTR64.dll
2016-12-13 00:17 - 2016-12-13 00:17 - 00341144 _____ (Synopsys, Inc.) C:\Windows\SysWOW64\SRCOM.dll
2016-12-13 00:17 - 2016-12-13 00:17 - 00341144 _____ (Synopsys, Inc.) C:\Windows\system32\SRCOM.dll
2016-12-13 00:16 - 2016-12-13 00:17 - 00381408 _____ (Synopsys, Inc.) C:\Windows\system32\SRCOM64.dll
2016-12-13 00:16 - 2016-12-13 00:16 - 00467152 _____ (Synopsys, Inc.) C:\Windows\system32\SRAPO64.dll
2016-12-13 00:15 - 2016-12-13 00:15 - 01529136 _____ (Conexant Systems Inc.) C:\Windows\system32\CX64Proxy.dll
2016-12-13 00:14 - 2016-12-13 00:15 - 01615656 _____ (Conexant Systems Inc.) C:\Windows\system32\CX64APO.dll
2016-12-13 00:13 - 2016-12-13 00:14 - 00588032 _____ (ICEpower a/s) C:\Windows\system32\ICEsoundAPO64.dll
2016-12-13 00:09 - 2016-12-13 00:13 - 13122576 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVoiceAPO3064.dll
2016-12-13 00:08 - 2016-12-13 00:09 - 01422920 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO6064.dll
2016-12-13 00:06 - 2016-12-13 00:08 - 03299816 _____ (Yamaha Corporation) C:\Windows\system32\YamahaAE2.dll
2016-12-13 00:05 - 2016-12-13 00:06 - 02190976 _____ (Yamaha Corporation) C:\Windows\system32\YamahaAE.dll
2016-12-13 00:01 - 2016-12-13 00:05 - 07096184 _____ (Dolby Laboratories) C:\Windows\system32\DDPP64A.dll
2016-12-13 00:01 - 2016-12-13 00:01 - 01965808 _____ (Dolby Laboratories) C:\Windows\system32\DDPD64A.dll
2016-12-13 00:01 - 2016-12-13 00:01 - 00327448 _____ (Dolby Laboratories) C:\Windows\system32\DDPO64A.dll
2016-12-13 00:00 - 2016-12-13 00:01 - 00272712 _____ (Dolby Laboratories) C:\Windows\system32\DDPA64.dll
2016-12-13 00:00 - 2016-12-13 00:00 - 00118592 _____ C:\Windows\system32\AcpiServiceVnA64.dll
2016-12-13 00:00 - 2016-12-13 00:00 - 00105304 _____ C:\Windows\system32\audioLibVc.dll
2016-12-12 23:59 - 2016-12-13 00:00 - 01334376 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxSpeechAPO64.dll
2016-12-12 23:59 - 2016-12-12 23:59 - 01003856 _____ (Nahimic Inc) C:\Windows\system32\NahimicAPONSControl.dll
2016-12-12 23:57 - 2016-12-12 23:59 - 05593608 _____ (Nahimic Inc) C:\Windows\system32\NAHIMICAPOlfx.dll
2016-12-12 23:57 - 2016-12-12 23:57 - 00923736 _____ (Sony Corporation) C:\Windows\system32\MISS_APO.dll
2016-12-12 23:56 - 2016-12-12 23:57 - 00689880 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtDataProc64.dll
2016-12-12 23:55 - 2016-12-12 23:56 - 01337632 _____ (Toshiba Client Solutions Co., Ltd.) C:\Windows\system32\tossaeapo64.dll
2016-12-12 23:55 - 2016-12-12 23:55 - 00447176 _____ (Toshiba Client Solutions Co., Ltd.) C:\Windows\system32\toseaeapo64.dll
2016-12-12 23:54 - 2016-12-12 23:55 - 00962120 _____ (Toshiba Client Solutions Co., Ltd.) C:\Windows\system32\tosasfapo64.dll
2016-12-12 23:54 - 2016-12-12 23:54 - 00122320 _____ (Real Sound Lab SIA) C:\Windows\system32\CONEQMSAPOGUILibrary.dll
2016-12-12 23:50 - 2016-12-12 23:51 - 02706856 _____ (DTS, Inc.) C:\Windows\system32\sltech64.dll
2016-12-12 23:47 - 2016-12-12 23:49 - 02995000 _____ (DTS, Inc.) C:\Windows\system32\slcnt64.dll
2016-12-12 23:47 - 2016-12-12 23:47 - 00258864 _____ (TODO: <Company name>) C:\Windows\system32\slprp64.dll
2016-12-12 23:46 - 2016-12-12 23:47 - 00984912 _____ (DTS, Inc.) C:\Windows\system32\sl3apo64.dll
2016-12-12 23:41 - 2016-12-12 23:41 - 00999848 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVoiceAPO2064.dll
2016-12-12 23:40 - 2016-12-12 23:41 - 01213656 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO5064.dll
2016-12-12 23:39 - 2016-12-12 23:40 - 01166152 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO4064.dll
2016-12-12 23:36 - 2016-12-12 23:39 - 07890895 _____ C:\Windows\system32\Drivers\RTAIODAT.DAT
2016-12-12 23:36 - 2016-12-12 23:36 - 00075536 _____ (TOSHIBA CORPORATION.) C:\Windows\system32\tepeqapo64.dll
2016-12-12 23:35 - 2016-12-12 23:36 - 00873456 _____ (TOSHIBA Corporation) C:\Windows\system32\tadefxapo264.dll
2016-12-12 23:34 - 2016-12-12 23:35 - 00158688 _____ (TOSHIBA Corporation) C:\Windows\system32\tadefxapo.dll
2016-12-12 23:34 - 2016-12-12 23:34 - 01382232 _____ (TOSHIBA Corporation) C:\Windows\system32\tosade.dll
2016-12-12 23:33 - 2016-12-12 23:33 - 00428224 _____ (DTS) C:\Windows\system32\DTSU2PREC64.dll
2016-12-12 23:32 - 2016-12-12 23:33 - 00514520 _____ (DTS) C:\Windows\system32\DTSU2PLFX64.dll
2016-12-12 23:32 - 2016-12-12 23:32 - 00618176 _____ (Knowles Acoustics ) C:\Windows\system32\KAAPORT64.dll
2016-12-12 23:32 - 2016-12-12 23:32 - 00500552 _____ (DTS) C:\Windows\system32\DTSU2PGFX64.dll
2016-12-12 23:17 - 2016-12-12 23:17 - 00134192 _____ (Dolby Laboratories) C:\Windows\system32\R4EEA64A.dll
2016-12-12 23:10 - 2016-12-12 23:17 - 07172912 _____ (Dolby Laboratories) C:\Windows\system32\R4EEP64A.dll
2016-12-12 23:10 - 2016-12-12 23:10 - 00447712 _____ (Dolby Laboratories) C:\Windows\system32\R4EED64A.dll
2016-12-12 23:09 - 2016-12-12 23:10 - 00084608 _____ (Dolby Laboratories) C:\Windows\system32\R4EEG64A.dll
2016-12-12 23:09 - 2016-12-12 23:09 - 00151784 _____ (Dolby Laboratories) C:\Windows\system32\R4EEL64A.dll
2016-12-12 23:08 - 2016-12-12 23:09 - 00965024 _____ (Sony Corporation) C:\Windows\system32\SFSS_APO.dll
2016-12-12 23:07 - 2016-12-12 23:08 - 00727432 _____ (DTS) C:\Windows\system32\DTSSymmetryDLL64.dll
2016-12-12 23:07 - 2016-12-12 23:07 - 00441264 _____ (DTS) C:\Windows\system32\DTSGainCompensatorDLL64.dll
2016-12-12 23:06 - 2016-12-12 23:07 - 00445392 _____ (DTS) C:\Windows\system32\DTSLimiterDLL64.dll
2016-12-12 23:05 - 2016-12-12 23:06 - 01508928 _____ (DTS) C:\Windows\system32\DTSBoostDLL64.dll
2016-12-12 23:04 - 2016-12-12 23:05 - 00743960 _____ (DTS) C:\Windows\system32\DTSBassEnhancementDLL64.dll
2016-12-12 23:03 - 2016-12-12 23:04 - 01591056 _____ (DTS) C:\Windows\system32\DTSS2HeadphoneDLL64.dll
2016-12-12 23:01 - 2016-12-12 23:03 - 01780616 _____ (DTS) C:\Windows\system32\DTSS2SpeakerDLL64.dll
2016-12-12 23:00 - 2016-12-12 23:01 - 00708304 _____ (DTS) C:\Windows\system32\DTSVoiceClarityDLL64.dll
2016-12-12 23:00 - 2016-12-12 23:00 - 00504304 _____ (DTS) C:\Windows\system32\DTSNeoPCDLL64.dll
2016-12-12 22:59 - 2016-12-12 23:00 - 00253856 _____ (DTS) C:\Windows\system32\DTSLFXAPO64.dll
2016-12-12 22:59 - 2016-12-12 22:59 - 00253896 _____ (DTS) C:\Windows\system32\DTSGFXAPO64.dll
2016-12-12 22:59 - 2016-12-12 22:59 - 00252872 _____ (DTS) C:\Windows\system32\DTSGFXAPONS64.dll
2016-12-12 22:58 - 2016-12-12 22:59 - 00387312 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEP64A.dll
2016-12-12 22:58 - 2016-12-12 22:58 - 00214824 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEED64A.dll
2016-12-12 22:58 - 2016-12-12 22:58 - 00110976 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEL64A.dll
2016-12-12 22:58 - 2016-12-12 22:58 - 00088344 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEG64A.dll
2016-12-12 22:56 - 2016-12-12 22:56 - 00231912 _____ (Synopsys, Inc.) C:\Windows\system32\SFNHK64.dll
2016-12-12 22:56 - 2016-12-12 22:56 - 00090912 _____ (Synopsys, Inc.) C:\Windows\system32\SFCOM64.dll
2016-12-12 22:56 - 2016-12-12 22:56 - 00083624 _____ (Virage Logic Corporation / Sonic Focus) C:\Windows\SysWOW64\SFCOM.dll
2016-12-12 22:55 - 2016-12-12 22:56 - 00088312 _____ (Synopsys, Inc.) C:\Windows\system32\SFAPO64.dll
2016-12-12 22:55 - 2016-12-12 22:55 - 00321712 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DHT64.dll
2016-12-12 22:55 - 2016-12-12 22:55 - 00321712 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DAA64.dll
2016-12-12 22:45 - 2016-12-12 22:54 - 14057248 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioRealtek64.dll
2016-12-12 22:44 - 2016-12-12 22:45 - 00677664 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVolumeSDAPO.dll
2016-12-12 22:44 - 2016-12-12 22:44 - 00678176 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO30.dll
2016-12-12 22:42 - 2016-12-12 22:44 - 02110592 _____ (Waves Audio Ltd.) C:\Windows\system32\WavesGUILib64.dll
2016-12-12 22:41 - 2016-12-12 22:42 - 02050176 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioEQ64.dll
2016-12-12 22:40 - 2016-12-12 22:41 - 00330552 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO20.dll
2016-12-12 22:40 - 2016-12-12 22:40 - 00931616 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPOShell64.dll
2016-12-12 22:35 - 2016-12-12 22:38 - 03295064 _____ (Fortemedia Corporation) C:\Windows\system32\FMAPO64.dll
2016-12-12 22:35 - 2016-12-12 22:35 - 00118584 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAR64.dll
2016-12-12 22:34 - 2016-12-12 22:35 - 00574752 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAC64.dll
2016-12-12 22:34 - 2016-12-12 22:34 - 00343704 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtlCPAPI64.dll
2016-12-12 22:34 - 2016-12-12 22:34 - 00192976 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCfg64.dll
2016-12-12 22:32 - 2016-12-12 22:34 - 01360512 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTCOM64.dll
2016-12-12 22:30 - 2016-12-12 22:32 - 03503048 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkApi64.dll
2016-12-12 22:29 - 2016-12-12 22:30 - 00209528 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSHP64.dll
2016-12-12 22:29 - 2016-12-12 22:29 - 00221960 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSH64.dll
2016-12-12 22:29 - 2016-12-12 22:29 - 00166200 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSWOW64.dll
2016-12-12 22:28 - 2016-12-12 22:29 - 00532376 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSX64.dll
2016-12-12 21:37 - 2016-12-12 22:28 - 72520712 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoRes64.dat
2016-12-12 21:35 - 2016-12-12 21:37 - 02201600 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoInstII64.dll
2016-12-12 21:35 - 2016-12-12 21:35 - 00023688 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCoLDR64.dll
2016-12-12 21:33 - 2016-12-12 21:35 - 03204096 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtPgEx64.dll
2016-12-12 21:31 - 2016-12-12 21:33 - 03201368 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RltkAPO64.dll
2016-12-12 21:13 - 2016-12-12 21:15 - 03014144 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTSnMg64.cpl
2016-12-12 21:05 - 2016-12-12 21:10 - 05539328 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RTKVHD64.sys
2016-12-11 17:49 - 2016-12-16 07:11 - 00000000 ____D C:\Users\Michal\AppData\Roaming\Skype
2016-12-11 17:49 - 2016-12-11 17:49 - 00002777 _____ C:\Users\Public\Desktop\Skype.lnk
2016-12-11 17:49 - 2016-12-11 17:49 - 00000000 ___RD C:\Program Files (x86)\Skype
2016-12-11 17:49 - 2016-12-11 17:49 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2016-12-11 17:48 - 2016-12-11 17:49 - 00000000 ____D C:\ProgramData\Skype
2016-12-11 10:52 - 2016-12-11 12:35 - 00000000 ____D C:\Users\Michal\Downloads\TOMCDIVCk
2016-12-10 00:02 - 2016-12-10 00:02 - 00000000 ____D C:\Users\Michal\AppData\Local\Radek Chalupa
2016-12-09 18:51 - 2016-12-11 10:08 - 00000000 ____D C:\Users\Michal\Desktop\Karel Programy
2016-12-09 16:13 - 2016-12-09 16:13 - 00000000 ____D C:\Users\Michal\Documents\Ubisoft
2016-12-09 11:40 - 2016-12-09 11:40 - 00001609 _____ C:\Users\Public\Desktop\Splinter Cell - Blacklist.lnk
2016-12-09 11:40 - 2016-12-09 11:40 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\hry
2016-12-08 00:44 - 2016-12-08 00:51 - 00000000 ____D C:\Users\Michal\AppData\Local\Clipboarder
2016-12-08 00:43 - 2016-12-08 01:03 - 00000000 ____D C:\Users\Michal\AppData\Local\Sidebar7
2016-12-08 00:24 - 2016-12-08 00:24 - 00000000 ____D C:\Users\Michal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2016-12-08 00:24 - 2016-12-08 00:24 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2016-12-07 23:16 - 2016-12-07 23:16 - 00000000 ____D C:\Users\Michal\Documents\Nero BackItUp Device Backup
2016-12-07 20:01 - 2016-12-07 20:01 - 00002020 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Music Recorder.lnk
2016-12-07 20:01 - 2016-12-07 20:01 - 00002008 _____ C:\Users\Public\Desktop\Music Recorder.lnk
2016-12-07 20:00 - 2016-12-07 20:00 - 00000000 ____D C:\Program Files (x86)\Music Recorder
2016-12-07 07:40 - 2016-12-17 07:51 - 00000000 ____D C:\Users\Michal\AppData\Roaming\dvdcss
2016-12-07 00:53 - 2016-12-07 08:46 - 00000000 ____D C:\Users\Michal\AppData\Local\Nero
2016-12-07 00:01 - 2016-12-07 00:01 - 00002999 _____ C:\Users\Public\Desktop\Nero 2017.lnk
2016-12-06 23:58 - 2016-12-07 20:06 - 00000000 ____D C:\Users\Michal\AppData\Roaming\Nero
2016-12-06 23:54 - 2016-12-06 23:54 - 00000000 ____D C:\Windows\System32\Tasks\Nero
2016-12-06 23:51 - 2016-12-07 00:01 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nero 2017
2016-12-06 23:50 - 2016-12-07 18:11 - 00000000 ____D C:\ProgramData\Nero
2016-12-06 23:50 - 2016-12-07 18:11 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nero
2016-12-06 23:50 - 2016-12-07 18:11 - 00000000 ____D C:\Program Files (x86)\Nero
2016-12-06 23:00 - 2016-12-06 23:00 - 00000000 ____D C:\Users\Michal\AppData\Roaming\Obsidium
2016-12-06 22:40 - 2016-12-06 22:40 - 00003550 _____ C:\Windows\System32\Tasks\BackItUp_Launch
2016-12-06 22:15 - 2016-12-06 22:15 - 00000000 ____D C:\Users\Michal\AppData\Local\CrashRpt
2016-12-06 22:14 - 2016-12-07 20:00 - 00000000 ____D C:\ProgramData\RapidSolution
2016-12-06 22:13 - 2016-12-06 22:13 - 00000000 ____D C:\Users\Michal\AppData\Local\RapidSolution
2016-12-06 17:01 - 2016-12-06 23:08 - 00000000 ____D C:\Users\Michal\Downloads\C0D_BO_Update_5-6
2016-12-05 22:29 - 2016-12-07 08:27 - 00000000 ____D C:\Users\Michal\AppData\Local\Nero_AG
2016-12-05 17:46 - 2016-12-06 14:27 - 00000000 ____D C:\Users\Michal\Downloads\CoD-BO_CZv1.2
2016-12-05 14:02 - 2016-12-05 14:55 - 00000433 _____ C:\Windows\system32\Drivers\etc\hosts.ics
2016-12-05 10:01 - 2016-12-05 10:01 - 00000000 ____D C:\Users\Michal\AppData\Local\Activision
2016-12-05 09:57 - 2016-12-05 09:57 - 00000716 _____ C:\Users\Michal\Desktop\BlackOps.lnk
2016-12-04 23:49 - 2016-12-04 23:49 - 00001186 _____ C:\Users\Michal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MediaInfo.lnk
2016-12-04 23:00 - 2016-12-04 23:00 - 00000000 ____D C:\Users\Michal\AppData\Roaming\MediaInfo
2016-12-04 22:58 - 2016-12-04 22:58 - 00000957 _____ C:\Users\Michal\Desktop\MediaInfo.lnk
2016-12-04 22:58 - 2016-12-04 22:58 - 00000000 ____D C:\Program Files\MediaInfo0.7.88
2016-12-04 22:57 - 2016-12-04 23:57 - 00000000 ____D C:\Users\Michal\AppData\Roaming\MPC-HC
2016-12-04 22:56 - 2016-12-04 22:56 - 00001720 _____ C:\Users\Michal\Desktop\MPC-HC x64.lnk
2016-12-04 22:56 - 2016-12-04 22:56 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MPC-HC x64
2016-12-04 22:56 - 2016-12-04 22:56 - 00000000 ____D C:\Program Files\MPC-HC
2016-12-04 19:04 - 2016-12-04 19:04 - 00001204 _____ C:\Users\Michal\Desktop\Any Video Converter Ultimate.lnk
2016-12-04 19:04 - 2016-12-04 19:04 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Any Video Converter Ultimate
2016-12-04 19:03 - 2016-12-04 19:04 - 00000000 ____D C:\Program Files (x86)\Any Video Converter Ultimate
2016-12-04 18:12 - 2016-12-04 18:25 - 00000000 ____D C:\ProgramData\DVD Shrink
2016-12-04 18:12 - 2016-12-04 18:21 - 00000000 ____D C:\Program Files (x86)\DVD Shrink
2016-12-04 18:12 - 2016-12-04 18:12 - 00001011 _____ C:\Users\Michal\Desktop\DVD Shrink 3.2.lnk
2016-12-04 18:12 - 2016-12-04 18:12 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVD Shrink
2016-12-04 09:21 - 2016-12-16 20:19 - 00000000 ____D C:\Users\Michal\AppData\Roaming\Anvsoft
2016-12-03 15:22 - 2016-12-03 15:22 - 00293888 _____ (Alcohol Soft Development Team) C:\Windows\system32\Drivers\axscsidrv.sys
2016-12-03 15:07 - 2016-12-03 15:22 - 00000000 ____D C:\Program Files (x86)\Alcohol 120% 2.0.2.5629
2016-12-03 15:07 - 2016-12-03 15:07 - 00001139 _____ C:\Users\Public\Desktop\Alcohol 120%.lnk
2016-12-03 15:07 - 2016-12-03 15:07 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Alcohol 120%
2016-12-02 17:11 - 2016-12-02 17:11 - 00183568 _____ (Intel Corporation) C:\Windows\system32\ibtsiva.exe
2016-12-02 17:10 - 2016-12-02 17:11 - 00379152 _____ (Intel Corporation) C:\Windows\system32\ibtproppage.dll
2016-12-02 17:10 - 2016-12-02 17:10 - 00228624 _____ (Intel Corporation) C:\Windows\system32\Drivers\ibtusb.sys
2016-12-02 17:10 - 2016-12-02 17:10 - 00204896 _____ (Intel Corporation) C:\Windows\system32\Drivers\TeeDriverW8x64.sys
2016-11-30 07:43 - 2016-11-30 07:43 - 00001783 _____ C:\Users\Michal\Desktop\RevoUninPro.lnk
2016-11-30 07:41 - 2009-12-30 11:21 - 00031800 _____ (VS Revo Group) C:\Windows\system32\Drivers\revoflt.sys
2016-11-30 07:35 - 2016-11-30 07:41 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller Pro
2016-11-30 07:35 - 2016-11-30 07:35 - 00000000 ____D C:\ProgramData\VS Revo Group
2016-11-30 07:35 - 2016-11-30 07:35 - 00000000 ____D C:\Program Files\VS Revo Group
2016-11-29 22:58 - 2016-11-29 22:58 - 00000000 ____D C:\Users\Michal\AppData\Local\VS Revo Group
2016-11-29 15:42 - 2016-12-13 00:37 - 01452480 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll
2016-11-29 10:35 - 2016-11-29 10:35 - 00000000 ____D C:\Users\Public\Documents\My Games
2016-11-29 06:57 - 2016-11-29 06:57 - 00000000 ____D C:\Program Files\Synaptics
2016-11-28 22:15 - 2016-12-16 18:12 - 00000000 ____D C:\ProgramData\ProductData
2016-11-28 21:36 - 2016-11-28 21:36 - 00000738 _____ C:\Users\Michal\Desktop\iw5sp.lnk
2016-11-28 15:31 - 2016-11-28 15:31 - 00002089 _____ C:\Users\Public\Desktop\MyPhoneExplorer.lnk
2016-11-28 15:31 - 2016-11-28 15:31 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MyPhoneExplorer
2016-11-28 13:34 - 2016-11-28 13:34 - 00000981 _____ C:\Users\Public\Desktop\DriverNavigator.lnk
2016-11-28 13:34 - 2016-11-28 13:34 - 00000000 ____D C:\Program Files\DriverNavigator3.6.8.0
2016-11-28 11:40 - 2016-11-28 11:40 - 00002501 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat DC.lnk
2016-11-28 11:40 - 2016-11-28 11:40 - 00002063 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat Distiller DC.lnk
2016-11-28 11:37 - 2016-11-28 11:37 - 00004476 _____ C:\Windows\System32\Tasks\Adobe Acrobat Update Task
2016-11-28 11:31 - 2016-11-28 11:31 - 00002040 _____ C:\Users\Public\Desktop\Adobe Acrobat DC.lnk
2016-11-28 08:17 - 2016-12-11 10:17 - 00000000 ____D C:\Users\Public\Documents\AdobeGC
2016-11-28 07:17 - 2016-11-28 11:33 - 00000000 ____D C:\ProgramData\regid.1986-12.com.adobe
2016-11-28 07:14 - 2016-11-28 11:29 - 00000000 ____D C:\Program Files (x86)\Adobe
2016-11-28 07:00 - 2016-12-16 06:46 - 00365480 _____ C:\Windows\system32\FNTCACHE.DAT
2016-11-28 01:23 - 2016-11-28 01:24 - 10719648 _____ C:\Windows\system32\Drivers\Netwfw02.dat
2016-11-28 01:23 - 2016-11-28 01:23 - 03517200 _____ (Intel Corporation) C:\Windows\system32\Drivers\Netwbw02.sys
2016-11-28 01:22 - 2016-11-28 01:22 - 00946696 _____ (Realtek ) C:\Windows\system32\Drivers\Rt630x64.sys
2016-11-28 01:22 - 2016-11-28 01:22 - 00082544 _____ (Realtek Semiconductor Corporation) C:\Windows\system32\RtNicProp64.dll
2016-11-28 01:15 - 2016-11-28 01:15 - 00035320 _____ (Intel Corporation) C:\Windows\system32\Drivers\iaLPSS_GPIO.sys
2016-11-28 00:45 - 2016-12-18 15:57 - 00000000 ____D C:\Program Files\CCleaner
2016-11-28 00:45 - 2016-11-28 00:45 - 00002784 _____ C:\Windows\System32\Tasks\CCleanerSkipUAC
2016-11-28 00:45 - 2016-11-28 00:45 - 00000840 _____ C:\Users\Public\Desktop\CCleaner.lnk
2016-11-28 00:45 - 2016-11-28 00:45 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2016-11-27 12:28 - 2016-12-18 15:39 - 00000000 ____D C:\Hry
2016-11-26 10:10 - 2016-11-26 10:10 - 00001091 _____ C:\Users\Public\Desktop\Black Mesa Source.lnk
2016-11-26 10:10 - 2016-11-26 10:10 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Black Mesa Source
2016-11-25 20:42 - 2016-12-05 10:01 - 00000000 ____D C:\Users\Michal\AppData\Local\SKIDROW
2016-11-25 18:56 - 2016-12-09 16:50 - 00000000 ____D C:\Users\Michal\Desktop\Hudba
2016-11-22 09:00 - 2016-11-28 00:55 - 00001569 _____ C:\Users\Michal\Desktop\UltraPDFMerger_V1_3.lnk
2016-11-20 22:08 - 2016-11-05 21:46 - 00422744 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\spaceport.sys
2016-11-20 22:08 - 2016-10-12 22:49 - 00379224 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storport.sys
2016-11-20 22:08 - 2016-10-12 22:11 - 00922968 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\refs.sys
2016-11-20 22:08 - 2016-10-11 17:45 - 00175104 _____ (Microsoft Corporation) C:\Windows\system32\TpmTasks.dll
2016-11-20 22:08 - 2016-10-11 00:31 - 00990040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\http.sys
2016-11-20 22:08 - 2016-10-10 19:18 - 00069976 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll
2016-11-20 22:08 - 2016-10-10 19:18 - 00022360 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cmimcext.sys
2016-11-20 22:08 - 2016-10-09 15:17 - 00229888 _____ (Microsoft Corporation) C:\Windows\system32\ActionQueue.dll
2016-11-20 22:08 - 2016-10-09 15:08 - 00116224 _____ (Microsoft Corporation) C:\Windows\system32\shsetup.dll
2016-11-20 22:08 - 2016-10-09 15:08 - 00095232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shsetup.dll
2016-11-20 22:08 - 2016-10-08 23:24 - 00658432 _____ (Microsoft Corporation) C:\Windows\system32\dnsapi.dll
2016-11-20 22:08 - 2016-10-08 22:31 - 00498688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dnsapi.dll
2016-11-20 22:08 - 2016-10-08 22:10 - 03547648 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll
2016-11-20 22:08 - 2016-10-05 15:01 - 01200128 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Globalization.dll
2016-11-20 22:08 - 2016-10-05 15:00 - 00868864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Globalization.dll
2016-11-20 22:08 - 2016-10-05 15:00 - 00323072 _____ (Microsoft Corporation) C:\Windows\system32\GlobCollationHost.dll
2016-11-20 22:08 - 2016-10-05 14:52 - 00513456 _____ C:\Windows\SysWOW64\locale.nls
2016-11-20 22:08 - 2016-10-05 14:52 - 00513456 _____ C:\Windows\system32\locale.nls
2016-11-20 22:08 - 2016-10-05 05:15 - 01969944 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll
2016-11-20 22:08 - 2016-10-05 05:15 - 01613528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll
2016-11-20 22:08 - 2016-10-05 05:15 - 00324896 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll
2016-11-20 22:08 - 2016-10-05 05:15 - 00245320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll
2016-11-20 22:08 - 2016-09-27 21:16 - 00445873 _____ C:\Windows\system32\ApnDatabase.xml
2016-11-20 22:08 - 2016-09-20 23:30 - 02462040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2016-11-20 16:05 - 2016-11-20 16:05 - 00001280 _____ C:\Users\Michal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Správce zvuku HD.lnk
2016-11-20 16:01 - 2016-12-13 07:21 - 00000000 ____D C:\Windows\SysWOW64\RTCOM
2016-11-20 16:01 - 2016-11-20 16:01 - 00000000 ____D C:\Program Files\Realtek
2016-11-20 16:00 - 2016-11-10 11:20 - 05804772 _____ C:\Windows\system32\Drivers\rtvienna.dat
2016-11-20 14:40 - 2016-11-20 19:12 - 00000000 ____D C:\Users\Michal\Desktop\Cara 8G

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2016-12-18 16:11 - 2016-09-29 11:14 - 00003600 _____ C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-1363994568-2854874814-1274703555-1001
2016-12-18 16:01 - 2016-11-09 00:01 - 00000914 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2016-12-18 16:00 - 2016-10-03 09:38 - 00000000 ____D C:\Users\Michal\AppData\Local\CrashDumps
2016-12-18 16:00 - 2013-08-22 14:36 - 00000000 ____D C:\Windows\Inf
2016-12-18 15:56 - 2016-10-10 06:26 - 00000000 ____D C:\ProgramData\NVIDIA
2016-12-18 15:55 - 2016-09-29 17:23 - 00000000 ____D C:\Users\Michal\AppData\Roaming\uTorrent
2016-12-18 15:54 - 2016-09-29 13:17 - 00000000 __SHD C:\Users\Michal\IntelGraphicsProfiles
2016-12-18 15:53 - 2013-08-22 15:45 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2016-12-18 15:53 - 2013-08-22 14:25 - 00262144 ___SH C:\Windows\system32\config\BBI
2016-12-18 15:52 - 2013-08-22 16:36 - 00000000 ____D C:\Windows\AppReadiness
2016-12-18 14:37 - 2016-10-17 05:07 - 00000000 ____D C:\Users\Michal\AppData\Local\Downloaded Installations
2016-12-18 09:47 - 2016-09-29 17:39 - 00000000 ____D C:\Users\Michal\Downloads\Stažené torrenty
2016-12-18 01:51 - 2016-11-09 00:01 - 00000958 _____ C:\Windows\Tasks\Adobe Flash Player PPAPI Notifier.job
2016-12-18 00:17 - 2016-09-29 12:56 - 00000000 ____D C:\Windows\SysWOW64\sda
2016-12-17 20:06 - 2016-09-29 12:56 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2016-12-17 14:55 - 2016-10-26 22:29 - 00000000 ____D C:\Windows\SysWOW64\directx
2016-12-17 14:54 - 2016-10-26 22:29 - 00000000 ___HD C:\Windows\msdownld.tmp
2016-12-17 13:57 - 2016-09-29 17:40 - 00000000 ____D C:\Users\Michal\Downloads\Torrenty CZT
2016-12-17 09:02 - 2016-09-29 20:03 - 00000000 ____D C:\Users\Michal\Desktop\Hry
2016-12-17 09:00 - 2016-10-20 18:35 - 00000000 ____D C:\Users\Michal\Desktop\Moje Torrenty
2016-12-17 08:44 - 2016-09-29 11:08 - 00000000 ____D C:\Users\Michal
2016-12-17 08:03 - 2016-10-03 19:33 - 00000000 ____D C:\Users\Michal\AppData\Roaming\vlc
2016-12-17 07:38 - 2016-10-03 16:19 - 00000000 ____D C:\Users\Michal\Desktop\Programy
2016-12-16 18:14 - 2016-09-29 13:01 - 00000000 ____D C:\Users\Michal\AppData\Roaming\IObit
2016-12-16 13:06 - 2016-09-29 17:19 - 00000000 ____D C:\Program Files (x86)\Opera
2016-12-16 09:53 - 2013-08-22 16:36 - 00000000 ____D C:\Windows\rescache
2016-12-16 06:38 - 2013-08-22 16:20 - 00000000 ____D C:\Windows\CbsTemp
2016-12-16 06:35 - 2016-09-29 13:49 - 00000000 ____D C:\Windows\system32\MRT
2016-12-16 06:30 - 2016-09-29 13:49 - 135632432 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2016-12-16 01:55 - 2016-09-29 13:22 - 00000000 ____D C:\Program Files\NVIDIA Corporation
2016-12-16 01:53 - 2016-09-29 17:19 - 00000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2016-12-16 01:53 - 2016-09-29 13:22 - 00000000 ____D C:\ProgramData\NVIDIA Corporation
2016-12-16 01:53 - 2013-08-22 16:36 - 00000000 ____D C:\Windows\Help
2016-12-16 01:41 - 2016-10-20 22:32 - 00001468 _____ C:\Users\Public\Desktop\GeForce Experience.lnk
2016-12-16 01:38 - 2016-10-03 09:08 - 00000000 ____D C:\Users\Michal\AppData\Local\NVIDIA Corporation
2016-12-16 01:37 - 2016-10-03 09:08 - 00000000 ____D C:\Users\Michal\AppData\Local\NVIDIA
2016-12-14 23:39 - 2016-11-04 00:01 - 00002221 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2016-12-14 23:39 - 2016-11-04 00:01 - 00002209 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2016-12-13 21:01 - 2016-10-02 20:31 - 00003916 _____ C:\Windows\System32\Tasks\Adobe Flash Player PPAPI Notifier
2016-12-13 21:01 - 2016-10-02 20:31 - 00003802 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2016-12-13 21:01 - 2013-08-22 16:36 - 00000000 ____D C:\Windows\SysWOW64\Macromed
2016-12-13 21:01 - 2013-08-22 16:36 - 00000000 ____D C:\Windows\system32\Macromed
2016-12-13 07:23 - 2016-09-29 13:16 - 02074494 _____ C:\Windows\system32\Drivers\rtkhdasetting.zip
2016-12-13 07:22 - 2016-09-29 13:16 - 00000000 ____D C:\Windows\system32\DAX2
2016-12-13 01:05 - 2016-11-13 01:05 - 00000412 _____ C:\Windows\Tasks\DriverNavigator Scheduled Scan.job
2016-12-13 00:37 - 2016-10-20 22:32 - 01853376 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll
2016-12-13 00:37 - 2016-10-20 22:32 - 01755072 _____ (NVIDIA Corporation) C:\Windows\system32\nvspbridge64.dll
2016-12-13 00:37 - 2016-10-20 22:32 - 01317312 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspbridge.dll
2016-12-13 00:37 - 2016-10-20 22:32 - 00120256 _____ C:\Windows\system32\NvRtmpStreamer64.dll
2016-12-11 22:09 - 2016-09-29 13:23 - 00000000 ____D C:\ProgramData\Package Cache
2016-12-11 19:01 - 2016-09-29 20:38 - 00000000 ____D C:\Users\Michal\Desktop\Filmy
2016-12-11 19:01 - 2016-09-29 20:05 - 00000000 ____D C:\Users\Michal\Desktop\Dokumenty
2016-12-09 18:55 - 2016-10-17 05:09 - 00000000 ____D C:\Users\Michal\AppData\Roaming\YouTubeByClick
2016-12-09 18:51 - 2016-10-17 05:08 - 00000000 ____D C:\Program Files (x86)\YouTubeByClick
2016-12-09 18:46 - 2016-10-07 16:07 - 00018960 _____ (Logitech, Inc.) C:\Windows\system32\Drivers\LNonPnP.sys
2016-12-08 01:18 - 2016-10-07 21:11 - 00000000 ____D C:\Users\Michal\Downloads\Torrenty Trezzor
2016-12-08 00:24 - 2016-09-29 12:59 - 00001022 _____ C:\ProgramData\Microsoft\Windows\Start Menu\WinRAR.lnk
2016-12-07 22:43 - 2014-11-21 05:53 - 01749406 _____ C:\Windows\system32\PerfStringBackup.INI
2016-12-07 22:43 - 2014-11-21 05:10 - 00740962 _____ C:\Windows\system32\perfh005.dat
2016-12-07 22:43 - 2014-11-21 05:10 - 00152146 _____ C:\Windows\system32\perfc005.dat
2016-12-07 17:56 - 2016-09-29 17:40 - 00000000 ____D C:\Users\Michal\Downloads\Acer Tapety
2016-12-07 08:30 - 2016-10-22 19:21 - 00000000 ____D C:\Users\Michal\Documents\My Games
2016-12-05 21:32 - 2013-08-22 16:36 - 00000000 ____D C:\Windows\system32\NDF
2016-12-04 21:15 - 2016-11-12 18:56 - 00000000 ____D C:\Program Files (x86)\Call of Duty Infinite Warfare
2016-12-03 13:10 - 2013-08-22 16:36 - 00000000 ____D C:\Windows\LiveKernelReports
2016-11-29 17:21 - 2016-11-16 06:48 - 00000000 ____D C:\Users\Michal\Desktop\Sony Ericsson K530i
2016-11-29 10:25 - 2016-10-03 07:56 - 00000000 ___HD C:\Program Files (x86)\Temp
2016-11-28 16:27 - 2016-08-08 09:19 - 00232072 _____ (ESET) C:\Windows\system32\Drivers\eamonm.sys
2016-11-28 16:27 - 2016-08-08 09:19 - 00212096 _____ (ESET) C:\Windows\system32\Drivers\edevmon.sys
2016-11-28 16:27 - 2016-08-08 09:19 - 00177792 _____ (ESET) C:\Windows\system32\Drivers\ehdrv.sys
2016-11-28 16:27 - 2016-08-08 09:19 - 00091784 _____ (ESET) C:\Windows\system32\Drivers\epfwwfp.sys
2016-11-28 16:27 - 2016-08-08 09:19 - 00076416 _____ (ESET) C:\Windows\system32\Drivers\epfw.sys
2016-11-28 16:27 - 2016-08-08 09:19 - 00048768 _____ (ESET) C:\Windows\system32\Drivers\ekbdflt.sys
2016-11-28 16:03 - 2016-09-29 18:05 - 00394296 _____ (Duplex Secure Ltd.) C:\Windows\system32\Drivers\sptd.sys
2016-11-28 15:31 - 2016-11-15 13:06 - 00000000 ____D C:\Users\Michal\AppData\Roaming\MyPhoneExplorer
2016-11-28 15:31 - 2016-11-15 13:06 - 00000000 ____D C:\Program Files (x86)\MyPhoneExplorer
2016-11-28 11:29 - 2016-10-10 08:18 - 00000000 ____D C:\ProgramData\Adobe
2016-11-28 08:16 - 2016-10-02 20:30 - 00000000 ____D C:\Users\Michal\AppData\Local\Adobe
2016-11-28 07:37 - 2016-09-29 11:08 - 00000000 ____D C:\Users\Michal\AppData\Roaming\Adobe
2016-11-28 00:56 - 2016-10-03 12:15 - 00001278 _____ C:\Users\Michal\Desktop\Wolf NewOrder.lnk
2016-11-27 15:32 - 2016-10-15 20:44 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sniper Elite
2016-11-24 06:02 - 2013-08-22 16:36 - 00000000 ___HD C:\Program Files\WindowsApps
2016-11-21 02:14 - 2013-08-22 14:36 - 00000000 ____D C:\Windows\system32\oobe

==================== Files in the root of some directories =======

2016-12-18 15:53 - 2016-12-18 15:55 - 0002938 _____ () C:\ProgramData\NvTelemetryContainer.log
2016-12-18 14:57 - 2016-12-18 15:52 - 0005110 _____ () C:\ProgramData\NvTelemetryContainer.log_backup1

==================== Bamital & volsnap ======================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed



===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===

==================== Drive and Memory info ===================



==================== MBR and Partition Table ==================


==================== Scheduled Tasks (whitelisted) ==================

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\Windows\Tasks\Adobe Flash Player PPAPI Notifier.job => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_24_0_0_186_pepper.exe
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\DriverNavigator Scheduled Scan.job => C:\Program Files\DriverNavigator\DriverNavigator.exe

==================== Alternate Data Streams (whitelisted) ==================


==================== Security Center ==================

AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: ESET Smart Security 10.0.369.1 (Enabled - Up to date) {EC1D6F37-E411-475A-DF50-12FF7FE4AC70}
AS: ESET Smart Security 10.0.369.1 (Enabled - Up to date) {577C8ED3-C22B-48D4-E5E0-298D0463E6CD}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
FW: ESET Personální firewall (Enabled) {D426EE12-AE7E-4602-F40F-BBCA8137EB0B}



===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)


***** Velikost "Plochy" *****

Velikost slozky "C:\Users\Michal\Desktop" je 21509 MB.


***** Startup Programs *****


***** Firewall rules *****

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]


***** System Restore *****

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"Generalize_DisableSR"=dword:00000000


==================== End Of Log ==============================
Nevíte čím to je??

Re: Vyskakující hláška Js/ProxyChanger.CW/Trojský kůň

Napsal: 18 pro 2016 17:33
od jahoner
Ještě mě napadlo že bych mohl poslat Screen pro identifikaci

Re: Vyskakující hláška Js/ProxyChanger.CW/Trojský kůň

Napsal: 18 pro 2016 17:47
od Rudy
Toto je hláška antiviru, že přerušil spojení a vir se nedostal do PC. Svědčí to o jeho správné funkci.
Otevřte poznámkový blok a zkopírujte do něj:
Start
HKLM-x32\...\Run: [] => [X]
HKU\S-1-5-21-1363994568-2854874814-1274703555-1001\...\MountPoints2: {74b601ab-b57f-11e6-82c5-f406693114aa} - "E:\setup.exe"
HKU\S-1-5-21-1363994568-2854874814-1274703555-1001\...\MountPoints2: {751224b8-b934-11e6-82cb-f406693114aa} - "E:\KaneandLynch.part01.exe"
C:\Windows\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore

EmptyTemp:
End
Uložte na plochu jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.

Z logu:
Velikost slozky "C:\Users\Michal\Desktop" je 21509 MB.
To je příliš mnoho a může to zpomalovat start systému. Vytvořte v C:\Users\Michal novou složku, do které přesuňte všechna data z plochy (kromě zástupců). Na plochu si pak pro snazší přístup dejte zástupce té složky.

Re: Vyskakující hláška Js/ProxyChanger.CW/Trojský kůň

Napsal: 18 pro 2016 18:07
od jahoner
[/b]Udělal jsem ten Fix Log zde
Fix result of Farbar Recovery Scan Tool (x64) Version: 17-12-2016
Ran by Michal (18-12-2016 17:52:11) Run:1
Running from C:\Users\Michal\Desktop
Loaded Profiles: Michal (Available Profiles: Michal)
Boot Mode: Normal
==============================================

fixlist content:
*****************
Start
HKLM-x32\...\Run: [] => [X]
HKU\S-1-5-21-1363994568-2854874814-1274703555-1001\...\MountPoints2: {74b601ab-b57f-11e6-82c5-f406693114aa} - "E:\setup.exe"
HKU\S-1-5-21-1363994568-2854874814-1274703555-1001\...\MountPoints2: {751224b8-b934-11e6-82cb-f406693114aa} - "E:\KaneandLynch.part01.exe"
C:\Windows\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore

EmptyTemp:
End

*****************

HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\ => value removed successfully
"HKU\S-1-5-21-1363994568-2854874814-1274703555-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{74b601ab-b57f-11e6-82c5-f406693114aa}" => key removed successfully
HKCR\CLSID\{74b601ab-b57f-11e6-82c5-f406693114aa} => key not found.
"HKU\S-1-5-21-1363994568-2854874814-1274703555-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{751224b8-b934-11e6-82cb-f406693114aa}" => key removed successfully
HKCR\CLSID\{751224b8-b934-11e6-82cb-f406693114aa} => key not found.
C:\Windows\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat => moved successfully
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA => moved successfully
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore => moved successfully

=========== EmptyTemp: ==========

BITS transfer queue => 8388608 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 8651834 B
Java, Flash, Steam htmlcache => 492 B
Windows/system/drivers => 8664 B
Edge => 0 B
Chrome => 232448 B
Firefox => 0 B
Opera => 10313974 B

Temp, IE cache, history, cookies, recent:
Default => 110 B
Users => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 128 B
systemprofile32 => 128 B
LocalService => 0 B
NetworkService => 0 B
Michal => 80877 B
NeroMediaHomeUser.4 => 0 B

RecycleBin => 0 B
EmptyTemp: => 26.4 MB temporary data Removed.

================================


The system needed a reboot.

==== End of Fixlog 17:52:12 ====

Po provedení FIXU hláška stále přetrvává.Jinak děkuji za dodatečnou radu ohledně plochy to jsem netušil udělám pořádek jestli nebudu muset dělat Reinstal.

Re: Vyskakující hláška Js/ProxyChanger.CW/Trojský kůň

Napsal: 18 pro 2016 19:03
od Rudy
Udělejte ještě kompletní sken MBAM: http://www.malwarebytes.org/mbam.php a dejte log. Předem nic nemažte.