Nakažení počítače Malwarem? Firefox se chová nestandardně.
Napsal: 31 kvě 2017 10:53
Dobrý den, chtěl bych vás požádat o pomoc při řešení problému se svým notebookem. Včera vše běželo bez problému, dnes po zapnutí sleduji u prohlížeče (Firefox) zvláštní chování. Při prvním zapnutí mi otevřel divnou stránku, která se snažila vypadat jako dlaždice při otevření nového panelu. Při vyhledávání přes adresní řádek mi občas výsledky z googlu přeskočí na jiný zvláštní vyhledávač. Antivir (ESET) mi každou chvíli vyhazuje zprávu o zablokování určité adresy.
Když jsem spustil AdwCleaner, našlo mi to pár chyb, které se již po "vyléčení" v tomto programu znovu nezobrazují. (první výsledný log přikládám jako txt)
Mohu tedy poprosit o kontrolu a případně radu, co v tomto případě dělat?
Zde ještě log z RSIT:
Logfile of random's system information tool 1.16 (written by random/random)
Run by Jiří at 2017-05-31 11:35:54
Microsoft Windows 8.1
System drive C: has 44 GB (52%) free of 85 GB
Total RAM: 6030 MB (61% free)
X64
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 11:35:55, on 31. 5. 2017
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.18123)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\ASUS\Splendid\ACMON.exe
C:\Program Files (x86)\ASUS\Splendid\ColorUService.exe
C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe
C:\Program Files (x86)\ASUS\ASUS Smart Gesture\QuickGesture\x86\QuickGesture.exe
C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe
C:\WINDOWS\SysWOW64\RunDll32.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
D:\World_of_Tanks\WoTLauncher.exe
C:\Program Files\trend micro\Jiří_RSITx64.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://asus13.msn.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: Skype for Business Click to Call BHO - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\Office15\OCHelper.dll
O2 - BHO: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [ASUSPRP] "C:\Program Files (x86)\ASUS\APRP\APRP.EXE"
O4 - HKLM\..\Run: [ASUSWebStorage] C:\Program Files (x86)\ASUS\WebStorage Sync Agent\1.1.18.159\AsusWSPanel.exe /S
O4 - HKLM\..\Run: [RemoteControl10] "C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe"
O4 - HKUS\S-1-5-21-1196467569-3603037678-3961814420-1001\..\RunOnce: [WAB Migrate] %ProgramFiles%\Windows Mail\wab.exe /Upgrade (User 'UpdatusUser')
O4 - Global Startup: Bluetooth.lnk = ?
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\Program Files\Microsoft Office 15\Root\Office15\EXCEL.EXE/3000
O8 - Extra context menu item: Se&nd to OneNote - res://C:\Program Files\Microsoft Office 15\Root\Office15\ONBttnIE.dll/105
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIE.dll
O9 - Extra button: Skype for Business Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\Office15\OCHelper.dll
O9 - Extra 'Tools' menuitem: Skype for Business Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\Office15\OCHelper.dll
O9 - Extra button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIELinkedNotes.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - Trusted Zone: http://help.eset.com (HKLM)
O15 - ESC Trusted Zone: http://help.eset.com (HKLM)
O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: ASLDR Service (ASLDRService) - ASUSTek Computer Inc. - C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe
O23 - Service: ASUS InstantOn Service (ASUS InstantOn) - ASUS - C:\Program Files (x86)\ASUS\ASUS InstantOn\InsOnSrv.exe
O23 - Service: ATKGFNEX Service (ATKGFNEXSrv) - ASUS - C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
O23 - Service: @oem10.inf,%BlueBcmBtRSupport.SVCNAME%;Bluetooth Driver Management Service (BcmBtRSupport) - Unknown owner - C:\WINDOWS\system32\BtwRSupportService.exe (file missing)
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET Security\ekrn.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
O23 - Service: IconMan_R - Realsil Microelectronics Inc. - C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) ME Service - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 10556 bytes
====== Enumerating Processes ======
C:\WINDOWS\system32\wininit.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
C:\WINDOWS\system32\dwm.exe
"C:\Windows\system32\nvvsvc.exe"
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalService
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\WINDOWS\system32\nvvsvc.exe -session
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k NetworkService
"C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe"
C:\WINDOWS\system32\WLANExt.exe 613912941776
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe"
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\WINDOWS\system32\taskhostex.exe
"C:\Program Files (x86)\ASUS\Splendid\ACMON.exe"
"C:\Program Files\ASUS\P4G\BatteryLife.exe"
"C:\Program Files (x86)\ASUS\Splendid\ColorUService.exe"
"C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe"
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\KBFiltr.exe
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files (x86)\ASUS\ASUS InstantOn\InsOnSrv.exe"
"C:\Program Files (x86)\ASUS\ASUS InstantOn\InsOnWMI.exe"
"C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe"
"C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe" /service
C:\WINDOWS\System32\svchost.exe -k utcsvc
"C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe"
C:\WINDOWS\system32\dashost.exe
"C:\Program Files\Intel\iCLS Client\HeciServer.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe"
C:\WINDOWS\system32\svchost.exe -k imgsvc
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\Program Files\ESET\ESET Security\egui.exe" /hide
C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
"C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPLoader.exe"
"C:\Program Files (x86)\ASUS\ASUS Smart Gesture\QuickGesture\x64\QuickGesture64.exe"
"C:\Program Files (x86)\ASUS\ASUS Smart Gesture\QuickGesture\x86\QuickGesture.exe"
"C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPCenter.exe"
C:\Windows\system32\igfxpers.exe
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
"C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe"
C:\WINDOWS\system32\svchost.exe -k NetworkServiceNetworkRestricted
"C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe"
"C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPHelper.exe"
"C:\Windows\System32\hkcmd.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /MAXX3
"C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe"
"C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe"
"C:\Program Files\WIDCOMM\Bluetooth Software\BtStackServer.exe" -Embedding
"C:\WINDOWS\system32\igfxsrvc.exe" -Embedding
"C:\WINDOWS\SysWOW64\RunDll32.exe" "C:\Program Files\WIDCOMM\Bluetooth Software\SysWOW64\BtMmHook.dll",SetAndWaitBtMmHook
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe"
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe" -contentproc --channel="1272.0.1858147329\1306753492" -greomni "C:\Program Files (x86)\Mozilla Firefox\omni.ja" -appomni "C:\Program Files (x86)\Mozilla Firefox\browser\omni.ja" -appdir "C:\Program Files (x86)\Mozilla Firefox\browser" 1272 "\\.\pipe\gecko-crash-server-pipe.1272" gpu
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe" -contentproc --channel="1272.11.1232464394\1853151054" -greomni "C:\Program Files (x86)\Mozilla Firefox\omni.ja" -appomni "C:\Program Files (x86)\Mozilla Firefox\browser\omni.ja" -appdir "C:\Program Files (x86)\Mozilla Firefox\browser" 1272 "\\.\pipe\gecko-crash-server-pipe.1272" tab
"D:\World_of_Tanks\WoTLauncher.exe"
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\system32\DllHost.exe /Processid:{B366DEBE-645B-43A5-B865-DDD82C345492}
C:\WINDOWS\servicing\TrustedInstaller.exe
C:\WINDOWS\winsxs\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.3.9600.18384_none_fa1d93c39b41b41a\TiWorker.exe -Embedding
C:\WINDOWS\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
C:\WINDOWS\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
"F:\Stáhnuté\RSITx64.exe"
====== Scheduled tasks folder ======
C:\WINDOWS\system32\tasks\Adobe Acrobat Update Task - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
C:\WINDOWS\system32\tasks\Adobe Flash Player Updater - C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\WINDOWS\system32\tasks\ASUS InstantOn Config - C:\Program Files (x86)\ASUS\ASUS InstantOn\InsOnCfg.exe
C:\WINDOWS\system32\tasks\ASUS Live Update1 - C:\Program Files (x86)\ASUS\ASUS Live Update\LiveUpdate.exe -critical
C:\WINDOWS\system32\tasks\ASUS Live Update2 - C:\Program Files (x86)\ASUS\ASUS Live Update\LiveUpdate.exe -check
C:\WINDOWS\system32\tasks\ASUS P4G - C:\Program Files\ASUS\P4G\BatteryLife.exe
C:\WINDOWS\system32\tasks\ASUS Smart Gesture Launcher - C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPLauncher.exe
C:\WINDOWS\system32\tasks\ASUS Splendid ACMON - C:\Program Files (x86)\ASUS\Splendid\ACMON.exe
C:\WINDOWS\system32\tasks\ASUS Splendid ColorU - C:\Program Files (x86)\ASUS\Splendid\ColorUService.exe
C:\WINDOWS\system32\tasks\ASUS USB Charger Plus - "C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe"
C:\WINDOWS\system32\tasks\AsusVibeSchedule - "C:\Program Files (x86)\Asus\AsusVibe\AsusVibeLauncher.exe" /start
C:\WINDOWS\system32\tasks\GoogleUpdateTaskMachineCore - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\system32\tasks\GoogleUpdateTaskMachineUA - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\WINDOWS\system32\tasks\SafeZone scheduled Autoupdate 1494279331 - D:\Programy\SZBrowser\launcher.exe --scheduledautoupdate $(Arg0)
C:\WINDOWS\system32\tasks\Update Checker - C:\Program Files (x86)\ASUS\ASUS Live Update\UpdateChecker.exe
C:\WINDOWS\system32\tasks\WPD\SqmUpload_S-1-5-21-1196467569-3603037678-3961814420-1002 - %windir%\system32\rundll32.exe portabledeviceapi.dll,#1
C:\WINDOWS\system32\tasks\Microsoft\Windows\WS\License Validation - rundll32.exe WSClient.dll,WSpTLR licensing
C:\WINDOWS\system32\tasks\Microsoft\Windows\WS\WSRefreshBannedAppsListTask - rundll32.exe WSClient.dll,RefreshBannedAppsList
C:\WINDOWS\system32\tasks\Microsoft\Windows\Workplace Join\Automatic-Workplace-Join - %SystemRoot%\System32\AutoWorkplace.exe join
C:\WINDOWS\system32\tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start - C:\WINDOWS\system32\sc.exe start wuauserv
C:\WINDOWS\system32\tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start With Network - C:\WINDOWS\system32\sc.exe start wuauserv
C:\WINDOWS\system32\tasks\Microsoft\Windows\WindowsBackup\ConfigNotification - %systemroot%\System32\sdclt.exe /CONFIGNOTIFICATION
C:\WINDOWS\system32\tasks\Microsoft\Windows\Windows Media Sharing\UpdateLibrary - "%ProgramFiles%\Windows Media Player\wmpnscfg.exe"
C:\WINDOWS\system32\tasks\Microsoft\Windows\Windows Filtering Platform\BfeOnServiceStartTypeChange - %windir%\system32\rundll32.exe bfe.dll,BfeOnServiceStartTypeChange
C:\WINDOWS\system32\tasks\Microsoft\Windows\Windows Error Reporting\QueueReporting - %windir%\system32\wermgr.exe -queuereporting
C:\WINDOWS\system32\tasks\Microsoft\Windows\UPnP\UPnPHostConfig - sc.exe config upnphost start= auto
C:\WINDOWS\system32\tasks\Microsoft\Windows\Time Zone\SynchronizeTimeZone - %windir%\system32\tzsync.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Time Synchronization\SynchronizeTime - %windir%\system32\sc.exe start w32time task_started
C:\WINDOWS\system32\tasks\Microsoft\Windows\SystemRestore\SR - %windir%\system32\srtasks.exe ExecuteScheduledSPPCreation
C:\WINDOWS\system32\tasks\Microsoft\Windows\Sysmain\WsSwapAssessmentTask - %windir%\system32\rundll32.exe sysmain.dll,PfSvWsSwapAssessmentTask
C:\WINDOWS\system32\tasks\Microsoft\Windows\SpacePort\SpaceAgentTask - %windir%\system32\SpaceAgent.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Shell\FamilySafetyMonitor - %windir%\System32\wpcmon.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\RemoteAssistance\RemoteAssistanceTask - %windir%\system32\RAServer.exe /offerraupdate
C:\WINDOWS\system32\tasks\Microsoft\Windows\Plug and Play\Sysprep Generalize Drivers - %SystemRoot%\System32\drvinst.exe 6
C:\WINDOWS\system32\tasks\Microsoft\Windows\NetTrace\GatherNetworkInfo - %windir%\system32\gatherNetworkInfo.vbs
C:\WINDOWS\system32\tasks\Microsoft\Windows\MUI\Lpksetup - C:\WINDOWS\System32\lpksetup.exe -v
C:\WINDOWS\system32\tasks\Microsoft\Windows\MUI\LPRemove - %windir%\system32\lpremove.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser - %SystemRoot%\System32\MbaeParserTask.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Location\Notifications - %windir%\System32\LocationNotifications.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticDataCollector - %windir%\system32\rundll32.exe dfdts.dll,DfdGetDefaultPolicyAndSMART
C:\WINDOWS\system32\tasks\Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticResolver - %windir%\system32\DFDWiz.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\DiskCleanup\SilentCleanup - %windir%\system32\cleanmgr.exe /autoclean /d %systemdrive%
C:\WINDOWS\system32\tasks\Microsoft\Windows\Defrag\ScheduledDefrag - %windir%\system32\defrag.exe -c -h -o -$
C:\WINDOWS\system32\tasks\Microsoft\Windows\Customer Experience Improvement Program\Consolidator - %SystemRoot%\System32\wsqmcons.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Customer Experience Improvement Program\Uploader - %windir%\system32\WSqmCons.exe -u
C:\WINDOWS\system32\tasks\Microsoft\Windows\Bluetooth\UninstallDeviceTask - BthUdTask.exe $(Arg0)
C:\WINDOWS\system32\tasks\Microsoft\Windows\Autochk\Proxy - %windir%\system32\rundll32.exe /d acproxy.dll,PerformAutochkOperations
C:\WINDOWS\system32\tasks\Microsoft\Windows\AppxDeploymentClient\Pre-staged app cleanup - %windir%\system32\rundll32.exe %windir%\system32\AppxDeploymentClient.dll,AppxPreStageCleanupRunTask
C:\WINDOWS\system32\tasks\Microsoft\Windows\ApplicationData\CleanupTemporaryState - %windir%\system32\rundll32.exe Windows.Storage.ApplicationData.dll,CleanupTemporaryState
C:\WINDOWS\system32\tasks\Microsoft\Windows\Application Experience\AitAgent - aitagent /increment
C:\WINDOWS\system32\tasks\Microsoft\Windows\Application Experience\Microsoft Compatibility Appraiser - %windir%\system32\compattel\DiagTrackRunner.exe /UploadEtlFilesOnly
C:\WINDOWS\system32\tasks\Microsoft\Windows\Application Experience\ProgramDataUpdater - %windir%\system32\rundll32.exe %windir%\system32\invagent.dll,RunUpdate
C:\WINDOWS\system32\tasks\Microsoft\Windows\Application Experience\StartupAppTask - %windir%\system32\rundll32.exe Startupscan.dll,SusRunTask
C:\WINDOWS\system32\tasks\Microsoft\Windows\AppID\PolicyConverter - %windir%\system32\appidpolicyconverter.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\AppID\VerifiedPublisherCertStoreCheck - %windir%\system32\appidcertstorecheck.exe
C:\WINDOWS\system32\tasks\Microsoft\Office\Office Automatic Updates - C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe /update SCHEDULEDTASK displaylevel=False
C:\WINDOWS\system32\tasks\Microsoft\Office\Office ClickToRun Service Monitor - C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe /WatchService
C:\WINDOWS\system32\tasks\Microsoft\Office\OfficeTelemetryAgentFallBack - C:\Program Files\Microsoft Office 15\root\Office15\msoia.exe scan upload mininterval:2880
C:\WINDOWS\system32\tasks\Microsoft\Office\OfficeTelemetryAgentLogOn - C:\Program Files\Microsoft Office 15\root\Office15\msoia.exe scan upload
=========Mozilla firefox=========
ProfilePath - C:\Users\jirka_000\AppData\Roaming\Mozilla\Firefox\Profiles\q9nkacjh.default-1496220436042
prefs.js - "browser.startup.homepage" - "https://www.google.com/"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 25.0.0.171 Plugin
"Path"=C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_25_0_0_171.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42]
"Description"=Intel IPT WebApi plugin
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI updater]
"Description"=This plugin updates Intel WebAPI component
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/Lync,version=15.0]
"Description"=Microsoft Lync Plug-in for Firefox
"Path"=C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/WLPG,version=16.4.3505.0912]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 25.0.0.171 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF64_25_0_0_171.dll
C:\Users\jirka_000\AppData\Roaming\Mozilla\Firefox\Profiles\q9nkacjh.default-1496220436042\addons.json
Adblock Plus - extension - {d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}
Classic Theme Restorer - extension - ClassicThemeRestorer@ArisT2Noia4dev
Mozilla Firefox hotfix - extension - firefox-hotfix@mozilla.org
C:\Users\jirka_000\AppData\Roaming\Mozilla\Firefox\Profiles\q9nkacjh.default-1496220436042\extensions.json
Application Update Service Helper - extension - aushelper@mozilla.org - C:\Program Files (x86)\Mozilla Firefox\browser\features\aushelper@mozilla.org.xpi
Multi-process staged rollout - extension - e10srollout@mozilla.org - C:\Program Files (x86)\Mozilla Firefox\browser\features\e10srollout@mozilla.org.xpi
Pocket - extension - firefox@getpocket.com - C:\Program Files (x86)\Mozilla Firefox\browser\features\firefox@getpocket.com.xpi
Web Compat - extension - webcompat@mozilla.org - C:\Program Files (x86)\Mozilla Firefox\browser\features\webcompat@mozilla.org.xpi
Default - theme - {972ce4c6-7e08-4474-a285-3208198ce6fd} - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}.xpi
Adblock Plus - extension - {d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d} - C:\Users\jirka_000\AppData\Roaming\Mozilla\Firefox\Profiles\q9nkacjh.default-1496220436042\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi
Classic Theme Restorer - extension - ClassicThemeRestorer@ArisT2Noia4dev - C:\Users\jirka_000\AppData\Roaming\Mozilla\Firefox\Profiles\q9nkacjh.default-1496220436042\extensions\ClassicThemeRestorer@ArisT2Noia4dev.xpi
Shield Recipe Client - extension - shield-recipe-client@mozilla.org - C:\Users\jirka_000\AppData\Roaming\Mozilla\Firefox\Profiles\q9nkacjh.default-1496220436042\features\{62efdbe2-123d-4ac9-add2-a62f3516801a}\shield-recipe-client@mozilla.org.xpi
C:\Users\jirka_000\AppData\Roaming\Mozilla\Firefox\Profiles\q9nkacjh.default-1496220436042\pluginreg.dat
Plugin - Shockwave Flash - 25.0.0.171 - C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_25_0_0_171.dll
=========Google Chrome=========
C:\Users\jirka_000\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences
Extension aapocclcgogkmnckokdopfmhonfmgoek 1 Prezentace Google 0.9
Extension ahfgeienlihckogmohjhadlkjgocpleb 1 Obchod Chrome 0.2
Extension aohghmighlieiainnegkcijnfilokake 1 Dokumenty Google 0.9
Extension apdfllckaahabafndbhieahigkjlhalf 1 Disk Google 14.1
Extension bepbmhgboaologfdajaanbcjmnhjmhfn 0
Extension blpcfgokakmgnkcojhhkbfbldkacnbeo 1 YouTube 4.2.8
Extension eemcgdkfndhakfknompkggombfjjjeno 1 Bookmark Manager 0.1
Extension felcaaldnbdncclmgdcncolpebgiejap
Extension gfdkimpbcpahaombhbimeihdjnejgicl 1 Feedback 1.0
Extension ghbmnnjooekpmoecnnnilnnbdlolhkhi 1 Dokumenty Google offline 1.4
Extension kmendfapggjehodndflmmgagdbamhnfd 1 CryptoTokenExtension 0.9.46
Extension mfehgcgbbipciphmccgaenjidiccnmng 1 Cloud Print 0.1
Extension mhjfbmdgcfjbbpaeojofohoefgiehjai 1 Chrome PDF Viewer 1
Extension neajdppkdcdipfabeoofebfddakdcjhd 1 Google Network Speech 1.0
Extension nkeimhogjdpnpccoofpliimaahmaaome 1 Google Hangouts 1.3.2
Extension nmmhkkegccagdldgiimedpiccmgmieda 1 Platby Internetového obchodu Chrome 1.0.0.2
Extension pjkljhegncpnkpknbcohdijeoejaedia 1 Gmail 8.1
Extension pkedcjkdefgpdelpbcmbmeomcjbeemfm
Homepage: http://www.google.com
default_search_provider.search_url:
C:\Users\jirka_000\AppData\Local\Google\Chrome\User Data\Default\Preferences
Homepage:
default_search_provider.search_url:
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\ccjleegmemocfpghkhpjmiccjcacackp]
"Path"=
======Registry dump ======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"={0633EE93-D776-472f-A0FF-E1416B8B2E3A}
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}]
"URL"=http://www.bing.com/search?q={searchTer ... &pc=ASU2JS
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"={0633EE93-D776-472f-A0FF-E1416B8B2E3A}
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}]
"URL"=http://www.bing.com/search?q={searchTer ... &pc=ASU2JS
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Skype for Business Browser Helper - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll [2017-05-16 229064]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft SkyDrive Pro Browser Helper - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL [2017-05-16 2351920]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Skype for Business Browser Helper - C:\Program Files\Microsoft Office 15\root\Office15\OCHelper.dll [2017-05-16 163528]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft SkyDrive Pro Browser Helper - C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL [2017-05-16 1744176]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IgfxTray"=C:\WINDOWS\system32\igfxtray.exe [2013-10-01 391128]
"HotKeysCmds"=C:\WINDOWS\system32\hkcmd.exe [2013-10-01 771032]
"Persistence"=C:\WINDOWS\system32\igfxpers.exe [2013-10-01 769496]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2013-05-30 13550152]
"RtHDVBg"=C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2013-05-20 1308232]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"Adobe Reader Speed Launcher"=C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe []
"ASUSPRP"=C:\Program Files (x86)\ASUS\APRP\APRP.EXE [2013-05-01 3187360]
"ASUSWebStorage"=C:\Program Files (x86)\ASUS\WebStorage Sync Agent\1.1.18.159\AsusWSPanel.exe [2012-12-19 3576784]
"RemoteControl10"=C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe [2013-03-08 95192]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Bluetooth.lnk - C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\Windows\system32\nvinitx.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
igfxdev.dll []
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"EnableLinkedConnections"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Active Setup\Installed Components\{8A69D345-D564-463c-AFF1-A69D9E530F96}]
"StubPath" = "C:\Program Files (x86)\Google\Chrome\Application\58.0.3029.110\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"VIDC.YUY2"=msyuv.dll
"vidc.i420"=iyuv_32.dll
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"VIDC.YVYU"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"vidc.msvc"=msvidc32.dll
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
====== File associations ======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
====== List of files/folders created in the last 1 month ======
2017-05-31 11:34:04 ----D---- C:\rsit
2017-05-31 11:34:04 ----D---- C:\Program Files\trend micro
2017-05-31 10:26:30 ----D---- C:\AdwCleaner
2017-05-31 10:21:55 ----D---- C:\Users\jirka_000\AppData\Roaming\ESET
2017-05-31 09:40:42 ----D---- C:\ProgramData\clp
2017-05-31 08:33:27 ----D---- C:\ProgramData\ESET
2017-05-31 08:33:27 ----D---- C:\Program Files\ESET
2017-05-31 08:25:16 ----A---- C:\WINDOWS\wininit.ini
2017-05-31 08:13:35 ----D---- C:\ProgramData\Spybot - Search & Destroy
2017-05-30 16:46:59 ----D---- C:\Users\jirka_000\AppData\Roaming\vlc
2017-05-22 19:50:27 ----D---- C:\Users\jirka_000\AppData\Roaming\Wargaming.net
2017-05-18 00:29:13 ----D---- C:\ProgramData\HP
2017-05-15 08:40:27 ----D---- C:\Program Files (x86)\Adobe
2017-05-15 08:39:37 ----D---- C:\Users\jirka_000\AppData\Roaming\WinRAR
2017-05-14 19:39:39 ----D---- C:\Program Files\Microsoft Office 15
2017-05-12 14:15:57 ----N---- C:\WINDOWS\system32\MpSigStub.exe
2017-05-12 10:18:28 ----D---- C:\Users\jirka_000\AppData\Roaming\Acronis
2017-05-12 10:17:15 ----D---- C:\ProgramData\Acronis
2017-05-12 10:17:03 ----D---- C:\Program Files (x86)\Acronis
2017-05-12 09:28:08 ----A---- C:\WINDOWS\SYSWOW64\aspnet_counters.dll
2017-05-12 09:28:08 ----A---- C:\WINDOWS\system32\aspnet_counters.dll
2017-05-12 01:45:35 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe
2017-05-12 01:40:59 ----D---- C:\WINDOWS\system32\appraiser
2017-05-12 01:40:15 ----A---- C:\WINDOWS\SYSWOW64\PresentationCFFRasterizerNative_v0300.dll
2017-05-12 01:40:15 ----A---- C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2017-05-12 01:22:12 ----A---- C:\WINDOWS\system32\sppsvc.exe
2017-05-12 01:22:12 ----A---- C:\WINDOWS\system32\sppobjs.dll
2017-05-12 01:22:09 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.dll
2017-05-12 01:22:08 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.dll
2017-05-12 01:21:58 ----A---- C:\WINDOWS\system32\drivers\rdbss.sys
2017-05-12 01:21:57 ----A---- C:\WINDOWS\system32\drivers\fvevol.sys
2017-05-12 01:21:57 ----A---- C:\WINDOWS\system32\CertEnroll.dll
2017-05-12 01:21:55 ----A---- C:\WINDOWS\system32\sppwinob.dll
2017-05-12 01:21:54 ----A---- C:\WINDOWS\SYSWOW64\winhttp.dll
2017-05-12 01:21:54 ----A---- C:\WINDOWS\system32\winhttp.dll
2017-05-12 01:21:51 ----A---- C:\WINDOWS\SYSWOW64\CertEnroll.dll
2017-05-12 01:21:51 ----A---- C:\WINDOWS\system32\kerberos.dll
2017-05-12 01:21:51 ----A---- C:\WINDOWS\system32\drivers\mup.sys
2017-05-12 01:21:50 ----A---- C:\WINDOWS\system32\drivers\ndiswan.sys
2017-05-12 01:21:49 ----A---- C:\WINDOWS\SYSWOW64\kerberos.dll
2017-05-12 01:21:49 ----A---- C:\WINDOWS\system32\webio.dll
2017-05-12 01:21:49 ----A---- C:\WINDOWS\system32\MPSSVC.dll
2017-05-12 01:21:49 ----A---- C:\WINDOWS\system32\iphlpsvc.dll
2017-05-12 01:21:48 ----AC---- C:\WINDOWS\system32\drivers\hidclass.sys
2017-05-12 01:21:48 ----A---- C:\WINDOWS\SYSWOW64\webio.dll
2017-05-12 01:21:48 ----A---- C:\WINDOWS\SYSWOW64\rdpcore.dll
2017-05-12 01:21:48 ----A---- C:\WINDOWS\system32\Windows.Devices.Geolocation.dll
2017-05-12 01:21:48 ----A---- C:\WINDOWS\system32\tpmvsc.dll
2017-05-12 01:21:48 ----A---- C:\WINDOWS\system32\rdpcore.dll
2017-05-12 01:21:48 ----A---- C:\WINDOWS\system32\drivers\dumpfve.sys
2017-05-12 01:21:48 ----A---- C:\WINDOWS\system32\drivers\Classpnp.sys
2017-05-12 01:21:48 ----A---- C:\WINDOWS\system32\certutil.exe
2017-05-12 01:21:45 ----AC---- C:\WINDOWS\system32\drivers\hidusb.sys
2017-05-12 01:21:44 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Geolocation.dll
2017-05-12 01:21:44 ----A---- C:\WINDOWS\system32\LocationApi.dll
2017-05-12 01:21:44 ----A---- C:\WINDOWS\system32\gpresult.exe
2017-05-12 01:21:43 ----A---- C:\WINDOWS\SYSWOW64\WebClnt.dll
2017-05-12 01:21:43 ----A---- C:\WINDOWS\SYSWOW64\UserAccountBroker.exe
2017-05-12 01:21:43 ----A---- C:\WINDOWS\SYSWOW64\LocationApi.dll
2017-05-12 01:21:43 ----A---- C:\WINDOWS\SYSWOW64\FirewallAPI.dll
2017-05-12 01:21:43 ----A---- C:\WINDOWS\SYSWOW64\cryptxml.dll
2017-05-12 01:21:43 ----A---- C:\WINDOWS\system32\WebClnt.dll
2017-05-12 01:21:43 ----A---- C:\WINDOWS\system32\UserAccountBroker.exe
2017-05-12 01:21:43 ----A---- C:\WINDOWS\system32\fveapi.dll
2017-05-12 01:21:43 ----A---- C:\WINDOWS\system32\FirewallAPI.dll
2017-05-12 01:21:43 ----A---- C:\WINDOWS\system32\cryptxml.dll
2017-05-12 01:21:42 ----A---- C:\WINDOWS\system32\wfapigp.dll
2017-05-12 01:21:42 ----A---- C:\WINDOWS\system32\hbaapi.dll
2017-05-12 01:21:42 ----A---- C:\WINDOWS\system32\BdeHdCfgLib.dll
2017-05-12 01:21:41 ----AC---- C:\WINDOWS\system32\drivers\hidparse.sys
2017-05-12 01:21:41 ----A---- C:\WINDOWS\SYSWOW64\wfapigp.dll
2017-05-12 01:21:41 ----A---- C:\WINDOWS\SYSWOW64\hbaapi.dll
2017-05-12 01:21:41 ----A---- C:\WINDOWS\SYSWOW64\gpresult.exe
2017-05-12 01:21:41 ----A---- C:\WINDOWS\SYSWOW64\certutil.exe
2017-05-12 01:21:41 ----A---- C:\WINDOWS\SYSWOW64\certenc.dll
2017-05-12 01:21:41 ----A---- C:\WINDOWS\system32\httpprxp.dll
2017-05-12 01:21:41 ----A---- C:\WINDOWS\system32\httpprxm.dll
2017-05-12 01:21:41 ----A---- C:\WINDOWS\system32\fvecpl.dll
2017-05-12 01:21:41 ----A---- C:\WINDOWS\system32\certenc.dll
2017-05-12 01:21:41 ----A---- C:\WINDOWS\system32\bdesvc.dll
2017-05-12 01:21:41 ----A---- C:\WINDOWS\system32\adhsvc.dll
2017-05-12 01:20:59 ----A---- C:\WINDOWS\SYSWOW64\tracerpt.exe
2017-05-12 01:20:59 ----A---- C:\WINDOWS\SYSWOW64\sechost.dll
2017-05-12 01:20:59 ----A---- C:\WINDOWS\system32\tracerpt.exe
2017-05-12 01:20:59 ----A---- C:\WINDOWS\system32\sechost.dll
2017-05-12 01:10:59 ----A---- C:\WINDOWS\SYSWOW64\KernelBase.dll
2017-05-12 01:10:59 ----A---- C:\WINDOWS\system32\mshtml.dll
2017-05-12 01:10:59 ----A---- C:\WINDOWS\system32\KernelBase.dll
2017-05-12 01:10:57 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2017-05-12 01:10:54 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2017-05-12 01:10:54 ----A---- C:\WINDOWS\system32\jscript9.dll
2017-05-12 01:10:54 ----A---- C:\WINDOWS\system32\ieframe.dll
2017-05-12 01:10:53 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2017-05-12 01:10:52 ----A---- C:\WINDOWS\system32\win32k.sys
2017-05-12 01:10:52 ----A---- C:\WINDOWS\system32\rpcss.dll
2017-05-12 01:10:51 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2017-05-12 01:10:51 ----A---- C:\WINDOWS\system32\wininet.dll
2017-05-12 01:10:50 ----A---- C:\WINDOWS\system32\urlmon.dll
2017-05-12 01:10:50 ----A---- C:\WINDOWS\system32\ole32.dll
2017-05-12 01:10:50 ----A---- C:\WINDOWS\system32\iertutil.dll
2017-05-12 01:10:50 ----A---- C:\WINDOWS\system32\drivers\dxgkrnl.sys
2017-05-12 01:10:49 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2017-05-12 01:10:49 ----A---- C:\WINDOWS\SYSWOW64\ole32.dll
2017-05-12 01:10:49 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2017-05-12 01:10:49 ----A---- C:\WINDOWS\SYSWOW64\crypt32.dll
2017-05-12 01:10:49 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2017-05-12 01:10:49 ----A---- C:\WINDOWS\system32\drivers\ntfs.sys
2017-05-12 01:10:49 ----A---- C:\WINDOWS\system32\crypt32.dll
2017-05-12 01:10:49 ----A---- C:\WINDOWS\system32\combase.dll
2017-05-12 01:10:48 ----A---- C:\WINDOWS\SYSWOW64\WsmSvc.dll
2017-05-12 01:10:48 ----A---- C:\WINDOWS\SYSWOW64\vbscript.dll
2017-05-12 01:10:48 ----A---- C:\WINDOWS\SYSWOW64\combase.dll
2017-05-12 01:10:48 ----A---- C:\WINDOWS\system32\WsmSvc.dll
2017-05-12 01:10:48 ----A---- C:\WINDOWS\system32\lsasrv.dll
2017-05-12 01:10:48 ----A---- C:\WINDOWS\system32\gdi32.dll
2017-05-12 01:10:48 ----A---- C:\WINDOWS\system32\drivers\srv2.sys
2017-05-12 01:10:45 ----AC---- C:\WINDOWS\system32\drivers\msiscsi.sys
2017-05-12 01:10:45 ----A---- C:\WINDOWS\SYSWOW64\wmitomi.dll
2017-05-12 01:10:45 ----A---- C:\WINDOWS\SYSWOW64\gdi32.dll
2017-05-12 01:10:45 ----A---- C:\WINDOWS\system32\wmitomi.dll
2017-05-12 01:10:45 ----A---- C:\WINDOWS\system32\wisp.dll
2017-05-12 01:10:45 ----A---- C:\WINDOWS\system32\oleaut32.dll
2017-05-12 01:10:45 ----A---- C:\WINDOWS\system32\drivers\srv.sys
2017-05-12 01:10:44 ----A---- C:\WINDOWS\SYSWOW64\wisp.dll
2017-05-12 01:10:44 ----A---- C:\WINDOWS\SYSWOW64\oleaut32.dll
2017-05-12 01:10:43 ----A---- C:\WINDOWS\SYSWOW64\WinTypes.dll
2017-05-12 01:10:43 ----A---- C:\WINDOWS\system32\WinTypes.dll
2017-05-12 01:10:43 ----A---- C:\WINDOWS\system32\msfeeds.dll
2017-05-12 01:10:43 ----A---- C:\WINDOWS\system32\ieetwcollector.exe
2017-05-12 01:10:42 ----A---- C:\WINDOWS\SYSWOW64\mshtmled.dll
2017-05-12 01:10:42 ----A---- C:\WINDOWS\SYSWOW64\iedkcs32.dll
2017-05-12 01:10:42 ----A---- C:\WINDOWS\system32\vbscript.dll
2017-05-12 01:10:42 ----A---- C:\WINDOWS\system32\jscript.dll
2017-05-12 01:10:41 ----A---- C:\WINDOWS\system32\MshtmlDac.dll
2017-05-12 01:10:41 ----A---- C:\WINDOWS\system32\drivers\dxgmms1.sys
2017-05-12 01:10:37 ----A---- C:\WINDOWS\SYSWOW64\webcheck.dll
2017-05-12 01:10:37 ----A---- C:\WINDOWS\SYSWOW64\dxtrans.dll
2017-05-12 01:10:36 ----A---- C:\WINDOWS\SYSWOW64\msfeeds.dll
2017-05-12 01:10:36 ----A---- C:\WINDOWS\system32\dxtrans.dll
2017-05-12 01:10:35 ----A---- C:\WINDOWS\SYSWOW64\wincorlib.dll
2017-05-12 01:10:35 ----A---- C:\WINDOWS\SYSWOW64\MshtmlDac.dll
2017-05-12 01:10:35 ----A---- C:\WINDOWS\SYSWOW64\iepeers.dll
2017-05-12 01:10:35 ----A---- C:\WINDOWS\SYSWOW64\certcli.dll
2017-05-12 01:10:35 ----A---- C:\WINDOWS\system32\webcheck.dll
2017-05-12 01:10:35 ----A---- C:\WINDOWS\system32\mshtmled.dll
2017-05-12 01:10:35 ----A---- C:\WINDOWS\system32\iepeers.dll
2017-05-12 01:10:35 ----A---- C:\WINDOWS\system32\certcli.dll
2017-05-12 01:10:34 ----A---- C:\WINDOWS\SYSWOW64\WsmWmiPl.dll
2017-05-12 01:10:34 ----A---- C:\WINDOWS\system32\WsmWmiPl.dll
2017-05-12 01:10:34 ----A---- C:\WINDOWS\system32\inetcomm.dll
2017-05-12 01:10:34 ----A---- C:\WINDOWS\system32\iedkcs32.dll
2017-05-12 01:10:34 ----A---- C:\WINDOWS\system32\ie4uinit.exe
2017-05-12 01:10:33 ----A---- C:\WINDOWS\SYSWOW64\jscript.dll
2017-05-12 01:10:33 ----A---- C:\WINDOWS\SYSWOW64\inetcomm.dll
2017-05-12 01:10:33 ----A---- C:\WINDOWS\SYSWOW64\ieapfltr.dll
2017-05-12 01:10:33 ----A---- C:\WINDOWS\system32\ieapfltr.dll
2017-05-12 01:10:33 ----A---- C:\WINDOWS\system32\drivers\mrxsmb20.sys
2017-05-12 01:10:33 ----A---- C:\WINDOWS\system32\drivers\mrxsmb10.sys
2017-05-12 01:10:33 ----A---- C:\WINDOWS\system32\drivers\mrxsmb.sys
2017-05-12 01:04:25 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
2017-05-12 01:04:22 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2017-05-12 01:04:20 ----A---- C:\WINDOWS\system32\twinui.dll
2017-05-12 01:04:16 ----A---- C:\WINDOWS\system32\shell32.dll
2017-05-12 01:04:14 ----A---- C:\WINDOWS\explorer.exe
2017-05-12 01:04:13 ----A---- C:\WINDOWS\SYSWOW64\explorer.exe
2017-05-12 01:04:13 ----A---- C:\WINDOWS\system32\RestoreOptIn.exe
2017-05-12 01:04:12 ----A---- C:\WINDOWS\SYSWOW64\RestoreOptIn.exe
2017-05-12 01:03:57 ----A---- C:\WINDOWS\SYSWOW64\TsWpfWrp.exe
2017-05-12 01:03:57 ----A---- C:\WINDOWS\system32\TsWpfWrp.exe
2017-05-12 00:59:05 ----A---- C:\WINDOWS\system32\CompatTelRunner.exe
2017-05-12 00:59:05 ----A---- C:\WINDOWS\system32\aepic.dll
2017-05-12 00:59:04 ----A---- C:\WINDOWS\system32\aeinv.dll
2017-05-12 00:59:04 ----A---- C:\WINDOWS\system32\acmigration.dll
2017-05-12 00:59:03 ----A---- C:\WINDOWS\system32\pcasvc.dll
2017-05-12 00:59:03 ----A---- C:\WINDOWS\system32\invagent.dll
2017-05-12 00:59:03 ----A---- C:\WINDOWS\system32\appraiser.dll
2017-05-12 00:59:01 ----A---- C:\WINDOWS\system32\devinv.dll
2017-05-12 00:58:57 ----A---- C:\WINDOWS\system32\generaltel.dll
2017-05-12 00:58:54 ----A---- C:\WINDOWS\system32\centel.dll
2017-05-11 07:10:48 ----A---- C:\WINDOWS\SYSWOW64\rasapi32.dll
2017-05-11 07:10:48 ----A---- C:\WINDOWS\SYSWOW64\mprdim.dll
2017-05-11 07:10:48 ----A---- C:\WINDOWS\SYSWOW64\mprddm.dll
2017-05-11 07:10:48 ----A---- C:\WINDOWS\system32\vpnike.dll
2017-05-11 07:10:48 ----A---- C:\WINDOWS\system32\rasmans.dll
2017-05-11 07:10:48 ----A---- C:\WINDOWS\system32\rasapi32.dll
2017-05-11 07:10:48 ----A---- C:\WINDOWS\system32\mprdim.dll
2017-05-11 07:10:48 ----A---- C:\WINDOWS\system32\mprddm.dll
2017-05-11 07:10:48 ----A---- C:\WINDOWS\system32\IKEEXT.DLL
2017-05-11 07:10:48 ----A---- C:\WINDOWS\system32\drivers\mountmgr.sys
2017-05-11 07:10:46 ----A---- C:\WINDOWS\system32\wpdbusenum.dll
2017-05-11 07:10:46 ----A---- C:\WINDOWS\system32\dssenh.dll
2017-05-11 07:10:44 ----A---- C:\WINDOWS\SYSWOW64\dssenh.dll
2017-05-11 07:10:44 ----A---- C:\WINDOWS\system32\rasppp.dll
2017-05-11 07:10:44 ----A---- C:\WINDOWS\system32\rasman.dll
2017-05-11 07:10:44 ----A---- C:\WINDOWS\system32\drivers\agilevpn.sys
2017-05-11 07:10:42 ----A---- C:\WINDOWS\system32\rascustom.dll
2017-05-11 07:10:40 ----A---- C:\WINDOWS\system32\rdpclip.exe
2017-05-11 07:10:38 ----A---- C:\WINDOWS\SYSWOW64\rasppp.dll
2017-05-11 07:10:38 ----A---- C:\WINDOWS\SYSWOW64\rasman.dll
2017-05-11 07:10:38 ----A---- C:\WINDOWS\SYSWOW64\iprtrmgr.dll
2017-05-11 07:10:38 ----A---- C:\WINDOWS\system32\nshwfp.dll
2017-05-11 07:10:38 ----A---- C:\WINDOWS\system32\iprtrmgr.dll
2017-05-11 07:10:32 ----A---- C:\WINDOWS\SYSWOW64\advapi32.dll
2017-05-11 07:10:32 ----A---- C:\WINDOWS\system32\advapi32.dll
2017-05-11 07:09:58 ----A---- C:\WINDOWS\system32\poqexec.exe
2017-05-11 07:09:54 ----A---- C:\WINDOWS\SYSWOW64\poqexec.exe
2017-05-11 07:09:49 ----A---- C:\WINDOWS\system32\tzsync.exe
2017-05-11 07:09:35 ----A---- C:\WINDOWS\SYSWOW64\appidapi.dll
2017-05-11 07:09:35 ----A---- C:\WINDOWS\system32\appidsvc.dll
2017-05-11 07:09:35 ----A---- C:\WINDOWS\system32\appidapi.dll
2017-05-11 07:06:50 ----A---- C:\WINDOWS\system32\SystemEventsBrokerServer.dll
2017-05-09 15:48:47 ----A---- C:\WINDOWS\SYSWOW64\xactengine3_7.dll
2017-05-09 15:48:47 ----A---- C:\WINDOWS\SYSWOW64\d3dcsx_43.dll
2017-05-09 15:48:47 ----A---- C:\WINDOWS\system32\xactengine3_7.dll
2017-05-09 15:48:47 ----A---- C:\WINDOWS\system32\d3dcsx_43.dll
2017-05-09 15:48:46 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_43.dll
2017-05-09 15:48:46 ----A---- C:\WINDOWS\system32\d3dx10_43.dll
2017-05-09 15:48:45 ----A---- C:\WINDOWS\SYSWOW64\XAudio2_6.dll
2017-05-09 15:48:45 ----A---- C:\WINDOWS\SYSWOW64\XAPOFX1_4.dll
2017-05-09 15:48:45 ----A---- C:\WINDOWS\SYSWOW64\D3DX9_43.dll
2017-05-09 15:48:45 ----A---- C:\WINDOWS\system32\XAudio2_6.dll
2017-05-09 15:48:45 ----A---- C:\WINDOWS\system32\XAPOFX1_4.dll
2017-05-09 15:48:45 ----A---- C:\WINDOWS\system32\D3DX9_43.dll
2017-05-09 15:48:44 ----A---- C:\WINDOWS\SYSWOW64\xactengine3_6.dll
2017-05-09 15:48:44 ----A---- C:\WINDOWS\SYSWOW64\X3DAudio1_7.dll
2017-05-09 15:48:44 ----A---- C:\WINDOWS\system32\xactengine3_6.dll
2017-05-09 15:48:44 ----A---- C:\WINDOWS\system32\X3DAudio1_7.dll
2017-05-09 15:48:43 ----A---- C:\WINDOWS\SYSWOW64\XAudio2_5.dll
2017-05-09 15:48:43 ----A---- C:\WINDOWS\system32\XAudio2_5.dll
2017-05-09 15:48:41 ----A---- C:\WINDOWS\SYSWOW64\xactengine3_5.dll
2017-05-09 15:48:41 ----A---- C:\WINDOWS\system32\xactengine3_5.dll
2017-05-09 15:48:40 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_42.dll
2017-05-09 15:48:40 ----A---- C:\WINDOWS\system32\D3DCompiler_42.dll
2017-05-09 15:48:39 ----A---- C:\WINDOWS\SYSWOW64\D3DX9_42.dll
2017-05-09 15:48:39 ----A---- C:\WINDOWS\SYSWOW64\d3dx11_42.dll
2017-05-09 15:48:39 ----A---- C:\WINDOWS\SYSWOW64\d3dcsx_42.dll
2017-05-09 15:48:39 ----A---- C:\WINDOWS\system32\D3DX9_42.dll
2017-05-09 15:48:39 ----A---- C:\WINDOWS\system32\d3dx11_42.dll
2017-05-09 15:48:39 ----A---- C:\WINDOWS\system32\d3dcsx_42.dll
2017-05-09 15:48:38 ----A---- C:\WINDOWS\SYSWOW64\D3DX9_41.dll
2017-05-09 15:48:38 ----A---- C:\WINDOWS\system32\D3DX9_41.dll
2017-05-09 15:48:38 ----A---- C:\WINDOWS\system32\d3dx10_41.dll
2017-05-09 15:48:38 ----A---- C:\WINDOWS\system32\D3DCompiler_41.dll
2017-05-09 15:48:37 ----A---- C:\WINDOWS\SYSWOW64\XAudio2_4.dll
2017-05-09 15:48:37 ----A---- C:\WINDOWS\SYSWOW64\XAPOFX1_3.dll
2017-05-09 15:48:37 ----A---- C:\WINDOWS\system32\XAudio2_4.dll
2017-05-09 15:48:37 ----A---- C:\WINDOWS\system32\XAPOFX1_3.dll
2017-05-09 15:48:36 ----A---- C:\WINDOWS\SYSWOW64\xactengine3_4.dll
2017-05-09 15:48:36 ----A---- C:\WINDOWS\SYSWOW64\X3DAudio1_6.dll
2017-05-09 15:48:36 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_40.dll
2017-05-09 15:48:36 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_40.dll
2017-05-09 15:48:36 ----A---- C:\WINDOWS\system32\xactengine3_4.dll
2017-05-09 15:48:36 ----A---- C:\WINDOWS\system32\X3DAudio1_6.dll
2017-05-09 15:48:36 ----A---- C:\WINDOWS\system32\d3dx10_40.dll
2017-05-09 15:48:36 ----A---- C:\WINDOWS\system32\D3DCompiler_40.dll
2017-05-09 15:48:35 ----A---- C:\WINDOWS\SYSWOW64\D3DX9_40.dll
2017-05-09 15:48:35 ----A---- C:\WINDOWS\system32\D3DX9_40.dll
2017-05-09 15:48:34 ----A---- C:\WINDOWS\SYSWOW64\XAudio2_3.dll
2017-05-09 15:48:34 ----A---- C:\WINDOWS\SYSWOW64\XAPOFX1_2.dll
2017-05-09 15:48:34 ----A---- C:\WINDOWS\SYSWOW64\xactengine3_3.dll
2017-05-09 15:48:34 ----A---- C:\WINDOWS\system32\XAudio2_3.dll
2017-05-09 15:48:34 ----A---- C:\WINDOWS\system32\XAPOFX1_2.dll
2017-05-09 15:48:34 ----A---- C:\WINDOWS\system32\xactengine3_3.dll
2017-05-09 15:48:33 ----A---- C:\WINDOWS\SYSWOW64\X3DAudio1_5.dll
2017-05-09 15:48:33 ----A---- C:\WINDOWS\system32\X3DAudio1_5.dll
2017-05-09 15:48:32 ----A---- C:\WINDOWS\SYSWOW64\XAudio2_2.dll
2017-05-09 15:48:32 ----A---- C:\WINDOWS\SYSWOW64\XAPOFX1_1.dll
2017-05-09 15:48:32 ----A---- C:\WINDOWS\SYSWOW64\xactengine3_2.dll
2017-05-09 15:48:32 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_39.dll
2017-05-09 15:48:32 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_39.dll
2017-05-09 15:48:32 ----A---- C:\WINDOWS\system32\XAudio2_2.dll
2017-05-09 15:48:32 ----A---- C:\WINDOWS\system32\XAPOFX1_1.dll
2017-05-09 15:48:32 ----A---- C:\WINDOWS\system32\xactengine3_2.dll
2017-05-09 15:48:32 ----A---- C:\WINDOWS\system32\d3dx10_39.dll
2017-05-09 15:48:32 ----A---- C:\WINDOWS\system32\D3DCompiler_39.dll
2017-05-09 15:48:31 ----A---- C:\WINDOWS\SYSWOW64\D3DX9_39.dll
2017-05-09 15:48:31 ----A---- C:\WINDOWS\system32\D3DX9_39.dll
2017-05-09 15:48:29 ----A---- C:\WINDOWS\SYSWOW64\XAudio2_1.dll
2017-05-09 15:48:29 ----A---- C:\WINDOWS\SYSWOW64\XAPOFX1_0.dll
2017-05-09 15:48:29 ----A---- C:\WINDOWS\system32\XAudio2_1.dll
2017-05-09 15:48:29 ----A---- C:\WINDOWS\system32\XAPOFX1_0.dll
2017-05-09 15:48:28 ----A---- C:\WINDOWS\SYSWOW64\xactengine3_1.dll
2017-05-09 15:48:28 ----A---- C:\WINDOWS\SYSWOW64\X3DAudio1_4.dll
2017-05-09 15:48:28 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_38.dll
2017-05-09 15:48:28 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_38.dll
2017-05-09 15:48:28 ----A---- C:\WINDOWS\system32\xactengine3_1.dll
2017-05-09 15:48:28 ----A---- C:\WINDOWS\system32\X3DAudio1_4.dll
2017-05-09 15:48:28 ----A---- C:\WINDOWS\system32\d3dx10_38.dll
2017-05-09 15:48:28 ----A---- C:\WINDOWS\system32\D3DCompiler_38.dll
2017-05-09 15:48:27 ----A---- C:\WINDOWS\SYSWOW64\D3DX9_38.dll
2017-05-09 15:48:27 ----A---- C:\WINDOWS\system32\D3DX9_38.dll
2017-05-09 15:48:24 ----A---- C:\WINDOWS\SYSWOW64\XAudio2_0.dll
2017-05-09 15:48:24 ----A---- C:\WINDOWS\SYSWOW64\xactengine3_0.dll
2017-05-09 15:48:24 ----A---- C:\WINDOWS\SYSWOW64\X3DAudio1_3.dll
2017-05-09 15:48:24 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_37.dll
2017-05-09 15:48:24 ----A---- C:\WINDOWS\system32\XAudio2_0.dll
2017-05-09 15:48:24 ----A---- C:\WINDOWS\system32\xactengine3_0.dll
2017-05-09 15:48:24 ----A---- C:\WINDOWS\system32\X3DAudio1_3.dll
2017-05-09 15:48:24 ----A---- C:\WINDOWS\system32\D3DCompiler_37.dll
2017-05-09 15:48:23 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_10.dll
2017-05-09 15:48:23 ----A---- C:\WINDOWS\SYSWOW64\D3DX9_37.dll
2017-05-09 15:48:23 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_37.dll
2017-05-09 15:48:23 ----A---- C:\WINDOWS\system32\xactengine2_10.dll
2017-05-09 15:48:23 ----A---- C:\WINDOWS\system32\D3DX9_37.dll
2017-05-09 15:48:23 ----A---- C:\WINDOWS\system32\d3dx10_37.dll
2017-05-09 15:48:22 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_36.dll
2017-05-09 15:48:22 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_36.dll
2017-05-09 15:48:22 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_36.dll
2017-05-09 15:48:22 ----A---- C:\WINDOWS\system32\d3dx9_36.dll
2017-05-09 15:48:22 ----A---- C:\WINDOWS\system32\d3dx10_36.dll
2017-05-09 15:48:22 ----A---- C:\WINDOWS\system32\D3DCompiler_36.dll
2017-05-09 15:48:21 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_9.dll
2017-05-09 15:48:21 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_35.dll
2017-05-09 15:48:21 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_35.dll
2017-05-09 15:48:21 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_35.dll
2017-05-09 15:48:21 ----A---- C:\WINDOWS\system32\xactengine2_9.dll
2017-05-09 15:48:21 ----A---- C:\WINDOWS\system32\d3dx9_35.dll
2017-05-09 15:48:21 ----A---- C:\WINDOWS\system32\d3dx10_35.dll
2017-05-09 15:48:21 ----A---- C:\WINDOWS\system32\D3DCompiler_35.dll
2017-05-09 15:48:20 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_8.dll
2017-05-09 15:48:20 ----A---- C:\WINDOWS\SYSWOW64\X3DAudio1_2.dll
2017-05-09 15:48:20 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_34.dll
2017-05-09 15:48:20 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_34.dll
2017-05-09 15:48:20 ----A---- C:\WINDOWS\system32\xactengine2_8.dll
2017-05-09 15:48:20 ----A---- C:\WINDOWS\system32\X3DAudio1_2.dll
2017-05-09 15:48:20 ----A---- C:\WINDOWS\system32\d3dx10_34.dll
2017-05-09 15:48:20 ----A---- C:\WINDOWS\system32\D3DCompiler_34.dll
2017-05-09 15:48:19 ----A---- C:\WINDOWS\SYSWOW64\xinput1_3.dll
2017-05-09 15:48:19 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_34.dll
2017-05-09 15:48:19 ----A---- C:\WINDOWS\system32\xinput1_3.dll
2017-05-09 15:48:19 ----A---- C:\WINDOWS\system32\d3dx9_34.dll
2017-05-09 15:48:17 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_7.dll
2017-05-09 15:48:17 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_33.dll
2017-05-09 15:48:17 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_33.dll
2017-05-09 15:48:17 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_33.dll
2017-05-09 15:48:17 ----A---- C:\WINDOWS\system32\xactengine2_7.dll
2017-05-09 15:48:17 ----A---- C:\WINDOWS\system32\d3dx9_33.dll
2017-05-09 15:48:17 ----A---- C:\WINDOWS\system32\d3dx10_33.dll
2017-05-09 15:48:17 ----A---- C:\WINDOWS\system32\D3DCompiler_33.dll
2017-05-09 15:48:16 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_6.dll
2017-05-09 15:48:16 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_5.dll
2017-05-09 15:48:16 ----A---- C:\WINDOWS\SYSWOW64\d3dx10.dll
2017-05-09 15:48:16 ----A---- C:\WINDOWS\system32\xactengine2_6.dll
2017-05-09 15:48:16 ----A---- C:\WINDOWS\system32\xactengine2_5.dll
2017-05-09 15:48:16 ----A---- C:\WINDOWS\system32\d3dx10.dll
2017-05-09 15:48:15 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_4.dll
2017-05-09 15:48:15 ----A---- C:\WINDOWS\SYSWOW64\x3daudio1_1.dll
2017-05-09 15:48:15 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_31.dll
2017-05-09 15:48:15 ----A---- C:\WINDOWS\system32\xactengine2_4.dll
2017-05-09 15:48:15 ----A---- C:\WINDOWS\system32\x3daudio1_1.dll
2017-05-09 15:48:15 ----A---- C:\WINDOWS\system32\d3dx9_31.dll
2017-05-09 15:48:14 ----A---- C:\WINDOWS\SYSWOW64\xinput1_2.dll
2017-05-09 15:48:14 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_3.dll
2017-05-09 15:48:14 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_2.dll
2017-05-09 15:48:14 ----A---- C:\WINDOWS\system32\xinput1_2.dll
2017-05-09 15:48:14 ----A---- C:\WINDOWS\system32\xactengine2_3.dll
2017-05-09 15:48:14 ----A---- C:\WINDOWS\system32\xactengine2_2.dll
2017-05-09 15:48:13 ----A---- C:\WINDOWS\SYSWOW64\xinput1_1.dll
2017-05-09 15:48:13 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_1.dll
2017-05-09 15:48:13 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_30.dll
2017-05-09 15:48:13 ----A---- C:\WINDOWS\system32\xinput1_1.dll
2017-05-09 15:48:13 ----A---- C:\WINDOWS\system32\xactengine2_1.dll
2017-05-09 15:48:13 ----A---- C:\WINDOWS\system32\d3dx9_30.dll
2017-05-09 15:48:11 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_0.dll
2017-05-09 15:48:11 ----A---- C:\WINDOWS\SYSWOW64\x3daudio1_0.dll
2017-05-09 15:48:11 ----A---- C:\WINDOWS\system32\xactengine2_0.dll
2017-05-09 15:48:11 ----A---- C:\WINDOWS\system32\x3daudio1_0.dll
2017-05-09 15:48:10 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_29.dll
2017-05-09 15:48:10 ----A---- C:\WINDOWS\system32\d3dx9_29.dll
2017-05-09 15:48:09 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_28.dll
2017-05-09 15:48:09 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_27.dll
2017-05-09 15:48:09 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_26.dll
2017-05-09 15:48:09 ----A---- C:\WINDOWS\system32\d3dx9_28.dll
2017-05-09 15:48:09 ----A---- C:\WINDOWS\system32\d3dx9_27.dll
2017-05-09 15:48:09 ----A---- C:\WINDOWS\system32\d3dx9_26.dll
2017-05-09 15:48:08 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_25.dll
2017-05-09 15:48:08 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_24.dll
2017-05-09 15:48:08 ----A---- C:\WINDOWS\system32\d3dx9_25.dll
2017-05-09 15:48:08 ----A---- C:\WINDOWS\system32\d3dx9_24.dll
2017-05-09 14:46:58 ----D---- C:\Users\jirka_000\AppData\Roaming\TS3Client
2017-05-09 14:46:23 ----D---- C:\ProgramData\Package Cache
2017-05-09 14:42:42 ----D---- C:\Program Files\TeamSpeak 3 Client
2017-05-09 14:11:15 ----D---- C:\WINDOWS\SYSWOW64\directx
2017-05-09 13:27:07 ----D---- C:\Users\jirka_000\AppData\Roaming\Identities
2017-05-09 13:16:27 ----DC---- C:\WINDOWS\Panther
2017-05-09 13:04:49 ----A---- C:\WINDOWS\system32\emptyregdb.dat
2017-05-09 13:00:06 ----A---- C:\WINDOWS\system32\fhcpl.dll
2017-05-09 12:59:50 ----A---- C:\WINDOWS\SYSWOW64\rdvidcrl.dll
2017-05-09 12:59:50 ----A---- C:\WINDOWS\SYSWOW64\mstscax.dll
2017-05-09 12:59:50 ----A---- C:\WINDOWS\system32\rdvidcrl.dll
2017-05-09 12:59:50 ----A---- C:\WINDOWS\system32\mstscax.dll
2017-05-09 12:49:15 ----A---- C:\WINDOWS\SYSWOW64\d2d1.dll
2017-05-09 12:49:15 ----A---- C:\WINDOWS\system32\d2d1.dll
2017-05-09 12:48:48 ----A---- C:\WINDOWS\SYSWOW64\rasser.dll
2017-05-09 12:48:48 ----A---- C:\WINDOWS\SYSWOW64\rasmxs.dll
2017-05-09 12:48:48 ----A---- C:\WINDOWS\SYSWOW64\rasdiag.dll
2017-05-09 12:48:48 ----A---- C:\WINDOWS\SYSWOW64\rascfg.dll
2017-05-09 12:48:48 ----A---- C:\WINDOWS\SYSWOW64\QSVRMGMT.DLL
2017-05-09 12:48:48 ----A---- C:\WINDOWS\SYSWOW64\QSHVHOST.DLL
2017-05-09 12:48:48 ----A---- C:\WINDOWS\SYSWOW64\mfplat.dll
2017-05-09 12:48:48 ----A---- C:\WINDOWS\SYSWOW64\MFMediaEngine.dll
2017-05-09 12:48:48 ----A---- C:\WINDOWS\SYSWOW64\DevicePairing.dll
2017-05-09 12:48:48 ----A---- C:\WINDOWS\system32\mfplat.dll
2017-05-09 12:48:48 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll
2017-05-09 12:48:46 ----AC---- C:\WINDOWS\system32\drivers\intelpep.sys
2017-05-09 12:48:46 ----A---- C:\WINDOWS\SYSWOW64\WSDApi.dll
2017-05-09 12:48:46 ----A---- C:\WINDOWS\SYSWOW64\vsstrace.dll
2017-05-09 12:48:46 ----A---- C:\WINDOWS\SYSWOW64\vssapi.dll
2017-05-09 12:48:46 ----A---- C:\WINDOWS\SYSWOW64\eventcls.dll
2017-05-09 12:48:46 ----A---- C:\WINDOWS\system32\WSDMon.dll
2017-05-09 12:48:46 ----A---- C:\WINDOWS\system32\WSDApi.dll
2017-05-09 12:48:46 ----A---- C:\WINDOWS\system32\vsstrace.dll
2017-05-09 12:48:46 ----A---- C:\WINDOWS\system32\vssapi.dll
2017-05-09 12:48:46 ----A---- C:\WINDOWS\system32\SyncEngine.dll
2017-05-09 12:48:46 ----A---- C:\WINDOWS\system32\spoolsv.exe
2017-05-09 12:48:46 ----A---- C:\WINDOWS\system32\SkyDriveTelemetry.dll
2017-05-09 12:48:46 ----A---- C:\WINDOWS\system32\SkyDrive.exe
2017-05-09 12:48:46 ----A---- C:\WINDOWS\system32\rasser.dll
2017-05-09 12:48:46 ----A---- C:\WINDOWS\system32\rasmxs.dll
2017-05-09 12:48:46 ----A---- C:\WINDOWS\system32\rasdiag.dll
2017-05-09 12:48:46 ----A---- C:\WINDOWS\system32\rascfg.dll
2017-05-09 12:48:46 ----A---- C:\WINDOWS\system32\QSVRMGMT.DLL
2017-05-09 12:48:46 ----A---- C:\WINDOWS\system32\QSHVHOST.DLL
2017-05-09 12:48:46 ----A---- C:\WINDOWS\system32\eventcls.dll
2017-05-09 12:48:46 ----A---- C:\WINDOWS\system32\drivers\wanarp.sys
2017-05-09 12:48:46 ----A---- C:\WINDOWS\system32\drivers\pdc.sys
2017-05-09 12:48:46 ----A---- C:\WINDOWS\system32\drivers\ndproxy.sys
2017-05-09 12:48:46 ----A---- C:\WINDOWS\system32\drivers\ndistapi.sys
2017-05-09 12:48:46 ----A---- C:\WINDOWS\system32\drivers\dam.sys
2017-05-09 12:48:46 ----A---- C:\WINDOWS\system32\DevicePairing.dll
2017-05-09 12:48:46 ----A---- C:\WINDOWS\splwow64.exe
2017-05-09 12:47:47 ----A---- C:\WINDOWS\system32\msra.exe
2017-05-09 12:40:51 ----A---- C:\WINDOWS\SYSWOW64\dhcpsapi.dll
2017-05-09 12:40:51 ----A---- C:\WINDOWS\system32\dhcpsapi.dll
2017-05-09 12:40:39 ----A---- C:\WINDOWS\SYSWOW64\dbghelp.dll
2017-05-09 12:40:39 ----A---- C:\WINDOWS\SYSWOW64\dbgeng.dll
2017-05-09 12:40:39 ----A---- C:\WINDOWS\system32\dbghelp.dll
2017-05-09 12:40:39 ----A---- C:\WINDOWS\system32\dbgeng.dll
2017-05-09 12:40:23 ----SD---- C:\Users\jirka_000\AppData\Roaming\Microsoft
2017-05-09 12:39:17 ----A---- C:\WINDOWS\SYSWOW64\wscapi.dll
2017-05-09 12:39:17 ----A---- C:\WINDOWS\system32\wscsvc.dll
2017-05-09 12:39:17 ----A---- C:\WINDOWS\system32\wscapi.dll
2017-05-09 12:39:00 ----AC---- C:\WINDOWS\system32\SysFxUI.dll
2017-05-09 12:39:00 ----A---- C:\WINDOWS\SYSWOW64\WMVXENCD.DLL
2017-05-09 12:39:00 ----A---- C:\WINDOWS\SYSWOW64\WMVSENCD.DLL
2017-05-09 12:39:00 ----A---- C:\WINDOWS\SYSWOW64\WMVSDECD.DLL
2017-05-09 12:39:00 ----A---- C:\WINDOWS\SYSWOW64\WMVENCOD.DLL
2017-05-09 12:39:00 ----A---- C:\WINDOWS\SYSWOW64\WMVDECOD.DLL
2017-05-09 12:39:00 ----A---- C:\WINDOWS\SYSWOW64\WMSPDMOE.DLL
2017-05-09 12:39:00 ----A---- C:\WINDOWS\SYSWOW64\WMSPDMOD.DLL
2017-05-09 12:39:00 ----A---- C:\WINDOWS\SYSWOW64\WMADMOE.DLL
2017-05-09 12:39:00 ----A---- C:\WINDOWS\SYSWOW64\WMADMOD.DLL
2017-05-09 12:39:00 ----A---- C:\WINDOWS\SYSWOW64\VIDRESZR.DLL
2017-05-09 12:39:00 ----A---- C:\WINDOWS\SYSWOW64\RESAMPLEDMO.DLL
2017-05-09 12:39:00 ----A---- C:\WINDOWS\SYSWOW64\qdvd.dll
2017-05-09 12:39:00 ----A---- C:\WINDOWS\SYSWOW64\msmpeg2adec.dll
2017-05-09 12:39:00 ----A---- C:\WINDOWS\SYSWOW64\MPG4DECD.DLL
2017-05-09 12:39:00 ----A---- C:\WINDOWS\SYSWOW64\MP4SDECD.DLL
2017-05-09 12:39:00 ----A---- C:\WINDOWS\SYSWOW64\MP43DECD.DLL
2017-05-09 12:39:00 ----A---- C:\WINDOWS\SYSWOW64\MP3DMOD.DLL
2017-05-09 12:39:00 ----A---- C:\WINDOWS\SYSWOW64\MFWMAAEC.DLL
2017-05-09 12:39:00 ----A---- C:\WINDOWS\SYSWOW64\mfvdsp.dll
2017-05-09 12:39:00 ----A---- C:\WINDOWS\SYSWOW64\mfps.dll
2017-05-09 12:39:00 ----A---- C:\WINDOWS\SYSWOW64\mfnetsrc.dll
2017-05-09 12:39:00 ----A---- C:\WINDOWS\SYSWOW64\mfnetcore.dll
2017-05-09 12:39:00 ----A---- C:\WINDOWS\SYSWOW64\mfcore.dll
2017-05-09 12:39:00 ----A---- C:\WINDOWS\SYSWOW64\evr.dll
2017-05-09 12:39:00 ----A---- C:\WINDOWS\SYSWOW64\devenum.dll
2017-05-09 12:39:00 ----A---- C:\WINDOWS\SYSWOW64\COLORCNV.DLL
2017-05-09 12:39:00 ----A---- C:\WINDOWS\system32\WMVXENCD.DLL
2017-05-09 12:39:00 ----A---- C:\WINDOWS\system32\WMVSENCD.DLL
2017-05-09 12:39:00 ----A---- C:\WINDOWS\system32\WMVSDECD.DLL
2017-05-09 12:39:00 ----A---- C:\WINDOWS\system32\WMVENCOD.DLL
2017-05-09 12:39:00 ----A---- C:\WINDOWS\system32\WMVDECOD.DLL
2017-05-09 12:39:00 ----A---- C:\WINDOWS\system32\WMSPDMOE.DLL
2017-05-09 12:39:00 ----A---- C:\WINDOWS\system32\WMSPDMOD.DLL
2017-05-09 12:39:00 ----A---- C:\WINDOWS\system32\WMALFXGFXDSP.dll
2017-05-09 12:39:00 ----A---- C:\WINDOWS\system32\WMADMOE.DLL
2017-05-09 12:39:00 ----A---- C:\WINDOWS\system32\WMADMOD.DLL
2017-05-09 12:39:00 ----A---- C:\WINDOWS\system32\VIDRESZR.DLL
2017-05-09 12:39:00 ----A---- C:\WINDOWS\system32\RESAMPLEDMO.DLL
2017-05-09 12:39:00 ----A---- C:\WINDOWS\system32\qdvd.dll
2017-05-09 12:39:00 ----A---- C:\WINDOWS\system32\msmpeg2adec.dll
2017-05-09 12:39:00 ----A---- C:\WINDOWS\system32\MPG4DECD.DLL
2017-05-09 12:39:00 ----A---- C:\WINDOWS\system32\MP4SDECD.DLL
2017-05-09 12:39:00 ----A---- C:\WINDOWS\system32\MP43DECD.DLL
2017-05-09 12:39:00 ----A---- C:\WINDOWS\system32\MP3DMOD.DLL
2017-05-09 12:39:00 ----A---- C:\WINDOWS\system32\MFWMAAEC.DLL
2017-05-09 12:39:00 ----A---- C:\WINDOWS\system32\mfvdsp.dll
2017-05-09 12:39:00 ----A---- C:\WINDOWS\system32\mfps.dll
2017-05-09 12:39:00 ----A---- C:\WINDOWS\system32\mfnetsrc.dll
2017-05-09 12:39:00 ----A---- C:\WINDOWS\system32\mfnetcore.dll
2017-05-09 12:39:00 ----A---- C:\WINDOWS\system32\mfcore.dll
2017-05-09 12:39:00 ----A---- C:\WINDOWS\system32\evr.dll
2017-05-09 12:39:00 ----A---- C:\WINDOWS\system32\devenum.dll
2017-05-09 12:39:00 ----A---- C:\WINDOWS\system32\COLORCNV.DLL
2017-05-09 12:38:28 ----A---- C:\WINDOWS\SYSWOW64\PhotoMetadataHandler.dll
2017-05-09 12:38:28 ----A---- C:\WINDOWS\system32\PhotoMetadataHandler.dll
2017-05-09 12:38:15 ----A---- C:\WINDOWS\SYSWOW64\notepad.exe
2017-05-09 12:38:15 ----A---- C:\WINDOWS\system32\notepad.exe
2017-05-09 12:38:15 ----A---- C:\WINDOWS\notepad.exe
2017-05-09 12:38:04 ----A---- C:\WINDOWS\system32\drivers\udfs.sys
2017-05-09 12:37:42 ----A---- C:\WINDOWS\SYSWOW64\authz.dll
2017-05-09 12:37:42 ----A---- C:\WINDOWS\system32\authz.dll
2017-05-09 12:37:31 ----A---- C:\WINDOWS\SYSWOW64\MrmCoreR.dll
2017-05-09 12:37:31 ----A---- C:\WINDOWS\system32\MrmCoreR.dll
2017-05-09 12:37:19 ----AC---- C:\WINDOWS\system32\drivers\disk.sys
2017-05-09 12:37:03 ----A---- C:\WINDOWS\system32\SystemSettingsDatabase.dll
2017-05-09 12:37:03 ----A---- C:\WINDOWS\system32\SystemSettings.Handlers.dll
2017-05-09 12:37:03 ----A---- C:\WINDOWS\system32\MDMAgent.exe
2017-05-09 12:36:44 ----A---- C:\WINDOWS\system32\seclogon.dll
2017-05-09 12:36:08 ----D---- C:\WINDOWS\en-GB
2017-05-09 12:36:08 ----D---- C:\Program Files\Windows Journal
2017-05-09 12:36:07 ----D---- C:\WINDOWS\SYSWOW64\drivers\en-GB
2017-05-09 12:36:07 ----D---- C:\WINDOWS\system32\drivers\en-GB
2017-05-09 12:25:45 ----A---- C:\WINDOWS\system32\apphelp.dll
2017-05-09 12:25:43 ----A---- C:\WINDOWS\system32\drivers\RTWAVES30.dat
2017-05-09 12:25:35 ----D---- C:\Program Files\Realtek
2017-05-09 12:25:34 ----D---- C:\WINDOWS\SYSWOW64\RTCOM
2017-05-09 12:25:26 ----D---- C:\Program Files (x86)\Intel
2017-05-09 12:25:23 ----AC---- C:\WINDOWS\system32\drivers\sermouse.sys
2017-05-09 12:25:23 ----AC---- C:\WINDOWS\system32\drivers\mouhid.sys
2017-05-09 12:25:23 ----AC---- C:\WINDOWS\system32\drivers\mouclass.sys
2017-05-09 12:25:23 ----AC---- C:\WINDOWS\system32\drivers\kbdhid.sys
2017-05-09 12:25:23 ----AC---- C:\WINDOWS\system32\drivers\kbdclass.sys
2017-05-09 12:25:23 ----AC---- C:\WINDOWS\system32\drivers\i8042prt.sys
2017-05-09 12:25:23 ----A---- C:\WINDOWS\SYSWOW64\OpenCL.DLL
2017-05-09 12:25:23 ----A---- C:\WINDOWS\system32\OpenCL.DLL
2017-05-09 12:24:51 ----A---- C:\WINDOWS\SYSWOW64\UIAutomationCore.dll
2017-05-09 12:24:51 ----A---- C:\WINDOWS\system32\UIAutomationCore.dll
2017-05-09 12:24:35 ----D---- C:\ProgramData\NVIDIA Corporation
2017-05-09 12:24:26 ----D---- C:\Program Files (x86)\NVIDIA Corporation
2017-05-09 12:24:25 ----D---- C:\Program Files\NVIDIA Corporation
2017-05-09 12:24:21 ----A---- C:\WINDOWS\SYSWOW64\EncDec.dll
2017-05-09 12:24:21 ----A---- C:\WINDOWS\SYSWOW64\CPFilters.dll
2017-05-09 12:24:21 ----A---- C:\WINDOWS\SYSWOW64\cfgbkend.dll
2017-05-09 12:24:21 ----A---- C:\WINDOWS\system32\EncDec.dll
2017-05-09 12:24:21 ----A---- C:\WINDOWS\system32\CPFilters.dll
2017-05-09 12:24:21 ----A---- C:\WINDOWS\system32\cfgbkend.dll
2017-05-09 12:24:05 ----A---- C:\WINDOWS\system32\WiFiDisplay.dll
2017-05-09 12:23:41 ----A---- C:\WINDOWS\SYSWOW64\ws2_32.dll
2017-05-09 12:23:41 ----A---- C:\WINDOWS\SYSWOW64\mswsock.dll
2017-05-09 12:23:41 ----A---- C:\WINDOWS\system32\ws2_32.dll
2017-05-09 12:23:41 ----A---- C:\WINDOWS\system32\mswsock.dll
2017-05-09 12:23:41 ----A---- C:\WINDOWS\system32\drivers\netbt.sys
2017-05-09 12:23:32 ----A---- C:\WINDOWS\SYSWOW64\ntprint.dll
2017-05-09 12:23:32 ----A---- C:\WINDOWS\system32\ntprint.dll
2017-05-09 12:23:32 ----A---- C:\WINDOWS\system32\inetpp.dll
2017-05-09 12:23:22 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.dll
2017-05-09 12:23:22 ----A---- C:\WINDOWS\system32\Windows.UI.dll
2017-05-09 12:23:13 ----AC---- C:\WINDOWS\system32\drivers\bthhfenum.sys
2017-05-09 12:22:54 ----A---- C:\WINDOWS\SYSWOW64\WSShared.dll
2017-05-09 12:22:54 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2017-05-09 12:22:54 ----A---- C:\WINDOWS\system32\WSShared.dll
2017-05-09 12:22:54 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2017-05-09 12:22:31 ----A---- C:\WINDOWS\system32\nlasvc.dll
2017-05-09 12:22:31 ----A---- C:\WINDOWS\system32\ncsi.dll
2017-05-09 12:22:23 ----A---- C:\WINDOWS\system32\LockScreenContentServer.exe
2017-05-09 12:22:07 ----A---- C:\WINDOWS\SYSWOW64\eapphost.dll
2017-05-09 12:22:07 ----A---- C:\WINDOWS\SYSWOW64\eappgnui.dll
2017-05-09 12:22:07 ----A---- C:\WINDOWS\SYSWOW64\eappcfg.dll
2017-05-09 12:22:07 ----A---- C:\WINDOWS\SYSWOW64\eapp3hst.dll
2017-05-09 12:22:07 ----A---- C:\WINDOWS\system32\eapphost.dll
2017-05-09 12:22:07 ----A---- C:\WINDOWS\system32\eappgnui.dll
2017-05-09 12:22:07 ----A---- C:\WINDOWS\system32\eappcfg.dll
2017-05-09 12:22:07 ----A---- C:\WINDOWS\system32\eapp3hst.dll
2017-05-09 12:21:51 ----A---- C:\WINDOWS\SYSWOW64\dsparse.dll
2017-05-09 12:21:51 ----A---- C:\WINDOWS\system32\dsparse.dll
2017-05-09 12:21:43 ----A---- C:\WINDOWS\SYSWOW64\tdh.dll
2017-05-09 12:21:43 ----A---- C:\WINDOWS\system32\tdh.dll
2017-05-09 12:20:54 ----A---- C:\WINDOWS\SYSWOW64\comctl32.dll
2017-05-09 12:20:54 ----A---- C:\WINDOWS\system32\comctl32.dll
2017-05-09 12:20:46 ----A---- C:\WINDOWS\SYSWOW64\WMPhoto.dll
2017-05-09 12:20:46 ----A---- C:\WINDOWS\system32\WMPhoto.dll
2017-05-09 12:20:33 ----D---- C:\WINDOWS\Prefetch
2017-05-09 12:20:31 ----A---- C:\WINDOWS\SYSWOW64\clfsw32.dll
2017-05-09 12:20:31 ----A---- C:\WINDOWS\system32\clfsw32.dll
2017-05-09 12:20:21 ----A---- C:\WINDOWS\system32\drivers\usb8023.sys
2017-05-09 12:20:14 ----A---- C:\WINDOWS\SYSWOW64\WinSync.dll
2017-05-09 12:20:14 ----A---- C:\WINDOWS\system32\WinSync.dll
2017-05-09 12:20:05 ----AC---- C:\WINDOWS\system32\drivers\sdbus.sys
2017-05-09 12:20:05 ----AC---- C:\WINDOWS\system32\drivers\dumpsd.sys
2017-05-09 12:19:57 ----A---- C:\WINDOWS\SYSWOW64\sspicli.dll
2017-05-09 12:19:57 ----A---- C:\WINDOWS\system32\sspicli.dll
2017-05-09 12:19:57 ----A---- C:\WINDOWS\system32\drivers\ksecdd.sys
2017-05-09 12:19:45 ----A---- C:\WINDOWS\system32\WindowsAnytimeUpgradeui.exe
2017-05-09 12:19:37 ----AC---- C:\WINDOWS\system32\drivers\bthpan.sys
2017-05-09 12:19:30 ----A---- C:\WINDOWS\system32\drivers\ahcache.sys
2017-05-09 12:19:22 ----A---- C:\WINDOWS\system32\winlogon.exe
2017-05-09 12:19:13 ----A---- C:\WINDOWS\SYSWOW64\msvcr120_clr0400.dll
2017-05-09 12:19:13 ----A---- C:\WINDOWS\SYSWOW64\msvcp120_clr0400.dll
2017-05-09 12:19:13 ----A---- C:\WINDOWS\system32\msvcr120_clr0400.dll
2017-05-09 12:19:13 ----A---- C:\WINDOWS\system32\msvcp120_clr0400.dll
2017-05-09 12:18:52 ----A---- C:\WINDOWS\system32\TSWbPrxy.exe
2017-05-09 12:18:44 ----A---- C:\WINDOWS\system32\drivers\netio.sys
2017-05-09 12:18:28 ----A---- C:\WINDOWS\SYSWOW64\rsaenh.dll
2017-05-09 12:18:28 ----A---- C:\WINDOWS\system32\rsaenh.dll
2017-05-09 12:17:41 ----AC---- C:\WINDOWS\system32\drivers\rfcomm.sys
2017-05-09 12:17:41 ----AC---- C:\WINDOWS\system32\drivers\hidbth.sys
Když jsem spustil AdwCleaner, našlo mi to pár chyb, které se již po "vyléčení" v tomto programu znovu nezobrazují. (první výsledný log přikládám jako txt)
Mohu tedy poprosit o kontrolu a případně radu, co v tomto případě dělat?
Zde ještě log z RSIT:
Logfile of random's system information tool 1.16 (written by random/random)
Run by Jiří at 2017-05-31 11:35:54
Microsoft Windows 8.1
System drive C: has 44 GB (52%) free of 85 GB
Total RAM: 6030 MB (61% free)
X64
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 11:35:55, on 31. 5. 2017
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.18123)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\ASUS\Splendid\ACMON.exe
C:\Program Files (x86)\ASUS\Splendid\ColorUService.exe
C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe
C:\Program Files (x86)\ASUS\ASUS Smart Gesture\QuickGesture\x86\QuickGesture.exe
C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe
C:\WINDOWS\SysWOW64\RunDll32.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
D:\World_of_Tanks\WoTLauncher.exe
C:\Program Files\trend micro\Jiří_RSITx64.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://asus13.msn.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: Skype for Business Click to Call BHO - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\Office15\OCHelper.dll
O2 - BHO: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [ASUSPRP] "C:\Program Files (x86)\ASUS\APRP\APRP.EXE"
O4 - HKLM\..\Run: [ASUSWebStorage] C:\Program Files (x86)\ASUS\WebStorage Sync Agent\1.1.18.159\AsusWSPanel.exe /S
O4 - HKLM\..\Run: [RemoteControl10] "C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe"
O4 - HKUS\S-1-5-21-1196467569-3603037678-3961814420-1001\..\RunOnce: [WAB Migrate] %ProgramFiles%\Windows Mail\wab.exe /Upgrade (User 'UpdatusUser')
O4 - Global Startup: Bluetooth.lnk = ?
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\Program Files\Microsoft Office 15\Root\Office15\EXCEL.EXE/3000
O8 - Extra context menu item: Se&nd to OneNote - res://C:\Program Files\Microsoft Office 15\Root\Office15\ONBttnIE.dll/105
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIE.dll
O9 - Extra button: Skype for Business Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\Office15\OCHelper.dll
O9 - Extra 'Tools' menuitem: Skype for Business Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\Office15\OCHelper.dll
O9 - Extra button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIELinkedNotes.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - Trusted Zone: http://help.eset.com (HKLM)
O15 - ESC Trusted Zone: http://help.eset.com (HKLM)
O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: ASLDR Service (ASLDRService) - ASUSTek Computer Inc. - C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe
O23 - Service: ASUS InstantOn Service (ASUS InstantOn) - ASUS - C:\Program Files (x86)\ASUS\ASUS InstantOn\InsOnSrv.exe
O23 - Service: ATKGFNEX Service (ATKGFNEXSrv) - ASUS - C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
O23 - Service: @oem10.inf,%BlueBcmBtRSupport.SVCNAME%;Bluetooth Driver Management Service (BcmBtRSupport) - Unknown owner - C:\WINDOWS\system32\BtwRSupportService.exe (file missing)
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET Security\ekrn.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
O23 - Service: IconMan_R - Realsil Microelectronics Inc. - C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) ME Service - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 10556 bytes
====== Enumerating Processes ======
C:\WINDOWS\system32\wininit.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
C:\WINDOWS\system32\dwm.exe
"C:\Windows\system32\nvvsvc.exe"
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalService
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\WINDOWS\system32\nvvsvc.exe -session
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k NetworkService
"C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe"
C:\WINDOWS\system32\WLANExt.exe 613912941776
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe"
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\WINDOWS\system32\taskhostex.exe
"C:\Program Files (x86)\ASUS\Splendid\ACMON.exe"
"C:\Program Files\ASUS\P4G\BatteryLife.exe"
"C:\Program Files (x86)\ASUS\Splendid\ColorUService.exe"
"C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe"
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\KBFiltr.exe
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files (x86)\ASUS\ASUS InstantOn\InsOnSrv.exe"
"C:\Program Files (x86)\ASUS\ASUS InstantOn\InsOnWMI.exe"
"C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe"
"C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe" /service
C:\WINDOWS\System32\svchost.exe -k utcsvc
"C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe"
C:\WINDOWS\system32\dashost.exe
"C:\Program Files\Intel\iCLS Client\HeciServer.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe"
C:\WINDOWS\system32\svchost.exe -k imgsvc
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\Program Files\ESET\ESET Security\egui.exe" /hide
C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
"C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPLoader.exe"
"C:\Program Files (x86)\ASUS\ASUS Smart Gesture\QuickGesture\x64\QuickGesture64.exe"
"C:\Program Files (x86)\ASUS\ASUS Smart Gesture\QuickGesture\x86\QuickGesture.exe"
"C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPCenter.exe"
C:\Windows\system32\igfxpers.exe
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
"C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe"
C:\WINDOWS\system32\svchost.exe -k NetworkServiceNetworkRestricted
"C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe"
"C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPHelper.exe"
"C:\Windows\System32\hkcmd.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /MAXX3
"C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe"
"C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe"
"C:\Program Files\WIDCOMM\Bluetooth Software\BtStackServer.exe" -Embedding
"C:\WINDOWS\system32\igfxsrvc.exe" -Embedding
"C:\WINDOWS\SysWOW64\RunDll32.exe" "C:\Program Files\WIDCOMM\Bluetooth Software\SysWOW64\BtMmHook.dll",SetAndWaitBtMmHook
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe"
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe" -contentproc --channel="1272.0.1858147329\1306753492" -greomni "C:\Program Files (x86)\Mozilla Firefox\omni.ja" -appomni "C:\Program Files (x86)\Mozilla Firefox\browser\omni.ja" -appdir "C:\Program Files (x86)\Mozilla Firefox\browser" 1272 "\\.\pipe\gecko-crash-server-pipe.1272" gpu
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe" -contentproc --channel="1272.11.1232464394\1853151054" -greomni "C:\Program Files (x86)\Mozilla Firefox\omni.ja" -appomni "C:\Program Files (x86)\Mozilla Firefox\browser\omni.ja" -appdir "C:\Program Files (x86)\Mozilla Firefox\browser" 1272 "\\.\pipe\gecko-crash-server-pipe.1272" tab
"D:\World_of_Tanks\WoTLauncher.exe"
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\system32\DllHost.exe /Processid:{B366DEBE-645B-43A5-B865-DDD82C345492}
C:\WINDOWS\servicing\TrustedInstaller.exe
C:\WINDOWS\winsxs\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.3.9600.18384_none_fa1d93c39b41b41a\TiWorker.exe -Embedding
C:\WINDOWS\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
C:\WINDOWS\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
"F:\Stáhnuté\RSITx64.exe"
====== Scheduled tasks folder ======
C:\WINDOWS\system32\tasks\Adobe Acrobat Update Task - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
C:\WINDOWS\system32\tasks\Adobe Flash Player Updater - C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\WINDOWS\system32\tasks\ASUS InstantOn Config - C:\Program Files (x86)\ASUS\ASUS InstantOn\InsOnCfg.exe
C:\WINDOWS\system32\tasks\ASUS Live Update1 - C:\Program Files (x86)\ASUS\ASUS Live Update\LiveUpdate.exe -critical
C:\WINDOWS\system32\tasks\ASUS Live Update2 - C:\Program Files (x86)\ASUS\ASUS Live Update\LiveUpdate.exe -check
C:\WINDOWS\system32\tasks\ASUS P4G - C:\Program Files\ASUS\P4G\BatteryLife.exe
C:\WINDOWS\system32\tasks\ASUS Smart Gesture Launcher - C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPLauncher.exe
C:\WINDOWS\system32\tasks\ASUS Splendid ACMON - C:\Program Files (x86)\ASUS\Splendid\ACMON.exe
C:\WINDOWS\system32\tasks\ASUS Splendid ColorU - C:\Program Files (x86)\ASUS\Splendid\ColorUService.exe
C:\WINDOWS\system32\tasks\ASUS USB Charger Plus - "C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe"
C:\WINDOWS\system32\tasks\AsusVibeSchedule - "C:\Program Files (x86)\Asus\AsusVibe\AsusVibeLauncher.exe" /start
C:\WINDOWS\system32\tasks\GoogleUpdateTaskMachineCore - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\system32\tasks\GoogleUpdateTaskMachineUA - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\WINDOWS\system32\tasks\SafeZone scheduled Autoupdate 1494279331 - D:\Programy\SZBrowser\launcher.exe --scheduledautoupdate $(Arg0)
C:\WINDOWS\system32\tasks\Update Checker - C:\Program Files (x86)\ASUS\ASUS Live Update\UpdateChecker.exe
C:\WINDOWS\system32\tasks\WPD\SqmUpload_S-1-5-21-1196467569-3603037678-3961814420-1002 - %windir%\system32\rundll32.exe portabledeviceapi.dll,#1
C:\WINDOWS\system32\tasks\Microsoft\Windows\WS\License Validation - rundll32.exe WSClient.dll,WSpTLR licensing
C:\WINDOWS\system32\tasks\Microsoft\Windows\WS\WSRefreshBannedAppsListTask - rundll32.exe WSClient.dll,RefreshBannedAppsList
C:\WINDOWS\system32\tasks\Microsoft\Windows\Workplace Join\Automatic-Workplace-Join - %SystemRoot%\System32\AutoWorkplace.exe join
C:\WINDOWS\system32\tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start - C:\WINDOWS\system32\sc.exe start wuauserv
C:\WINDOWS\system32\tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start With Network - C:\WINDOWS\system32\sc.exe start wuauserv
C:\WINDOWS\system32\tasks\Microsoft\Windows\WindowsBackup\ConfigNotification - %systemroot%\System32\sdclt.exe /CONFIGNOTIFICATION
C:\WINDOWS\system32\tasks\Microsoft\Windows\Windows Media Sharing\UpdateLibrary - "%ProgramFiles%\Windows Media Player\wmpnscfg.exe"
C:\WINDOWS\system32\tasks\Microsoft\Windows\Windows Filtering Platform\BfeOnServiceStartTypeChange - %windir%\system32\rundll32.exe bfe.dll,BfeOnServiceStartTypeChange
C:\WINDOWS\system32\tasks\Microsoft\Windows\Windows Error Reporting\QueueReporting - %windir%\system32\wermgr.exe -queuereporting
C:\WINDOWS\system32\tasks\Microsoft\Windows\UPnP\UPnPHostConfig - sc.exe config upnphost start= auto
C:\WINDOWS\system32\tasks\Microsoft\Windows\Time Zone\SynchronizeTimeZone - %windir%\system32\tzsync.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Time Synchronization\SynchronizeTime - %windir%\system32\sc.exe start w32time task_started
C:\WINDOWS\system32\tasks\Microsoft\Windows\SystemRestore\SR - %windir%\system32\srtasks.exe ExecuteScheduledSPPCreation
C:\WINDOWS\system32\tasks\Microsoft\Windows\Sysmain\WsSwapAssessmentTask - %windir%\system32\rundll32.exe sysmain.dll,PfSvWsSwapAssessmentTask
C:\WINDOWS\system32\tasks\Microsoft\Windows\SpacePort\SpaceAgentTask - %windir%\system32\SpaceAgent.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Shell\FamilySafetyMonitor - %windir%\System32\wpcmon.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\RemoteAssistance\RemoteAssistanceTask - %windir%\system32\RAServer.exe /offerraupdate
C:\WINDOWS\system32\tasks\Microsoft\Windows\Plug and Play\Sysprep Generalize Drivers - %SystemRoot%\System32\drvinst.exe 6
C:\WINDOWS\system32\tasks\Microsoft\Windows\NetTrace\GatherNetworkInfo - %windir%\system32\gatherNetworkInfo.vbs
C:\WINDOWS\system32\tasks\Microsoft\Windows\MUI\Lpksetup - C:\WINDOWS\System32\lpksetup.exe -v
C:\WINDOWS\system32\tasks\Microsoft\Windows\MUI\LPRemove - %windir%\system32\lpremove.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser - %SystemRoot%\System32\MbaeParserTask.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Location\Notifications - %windir%\System32\LocationNotifications.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticDataCollector - %windir%\system32\rundll32.exe dfdts.dll,DfdGetDefaultPolicyAndSMART
C:\WINDOWS\system32\tasks\Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticResolver - %windir%\system32\DFDWiz.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\DiskCleanup\SilentCleanup - %windir%\system32\cleanmgr.exe /autoclean /d %systemdrive%
C:\WINDOWS\system32\tasks\Microsoft\Windows\Defrag\ScheduledDefrag - %windir%\system32\defrag.exe -c -h -o -$
C:\WINDOWS\system32\tasks\Microsoft\Windows\Customer Experience Improvement Program\Consolidator - %SystemRoot%\System32\wsqmcons.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Customer Experience Improvement Program\Uploader - %windir%\system32\WSqmCons.exe -u
C:\WINDOWS\system32\tasks\Microsoft\Windows\Bluetooth\UninstallDeviceTask - BthUdTask.exe $(Arg0)
C:\WINDOWS\system32\tasks\Microsoft\Windows\Autochk\Proxy - %windir%\system32\rundll32.exe /d acproxy.dll,PerformAutochkOperations
C:\WINDOWS\system32\tasks\Microsoft\Windows\AppxDeploymentClient\Pre-staged app cleanup - %windir%\system32\rundll32.exe %windir%\system32\AppxDeploymentClient.dll,AppxPreStageCleanupRunTask
C:\WINDOWS\system32\tasks\Microsoft\Windows\ApplicationData\CleanupTemporaryState - %windir%\system32\rundll32.exe Windows.Storage.ApplicationData.dll,CleanupTemporaryState
C:\WINDOWS\system32\tasks\Microsoft\Windows\Application Experience\AitAgent - aitagent /increment
C:\WINDOWS\system32\tasks\Microsoft\Windows\Application Experience\Microsoft Compatibility Appraiser - %windir%\system32\compattel\DiagTrackRunner.exe /UploadEtlFilesOnly
C:\WINDOWS\system32\tasks\Microsoft\Windows\Application Experience\ProgramDataUpdater - %windir%\system32\rundll32.exe %windir%\system32\invagent.dll,RunUpdate
C:\WINDOWS\system32\tasks\Microsoft\Windows\Application Experience\StartupAppTask - %windir%\system32\rundll32.exe Startupscan.dll,SusRunTask
C:\WINDOWS\system32\tasks\Microsoft\Windows\AppID\PolicyConverter - %windir%\system32\appidpolicyconverter.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\AppID\VerifiedPublisherCertStoreCheck - %windir%\system32\appidcertstorecheck.exe
C:\WINDOWS\system32\tasks\Microsoft\Office\Office Automatic Updates - C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe /update SCHEDULEDTASK displaylevel=False
C:\WINDOWS\system32\tasks\Microsoft\Office\Office ClickToRun Service Monitor - C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe /WatchService
C:\WINDOWS\system32\tasks\Microsoft\Office\OfficeTelemetryAgentFallBack - C:\Program Files\Microsoft Office 15\root\Office15\msoia.exe scan upload mininterval:2880
C:\WINDOWS\system32\tasks\Microsoft\Office\OfficeTelemetryAgentLogOn - C:\Program Files\Microsoft Office 15\root\Office15\msoia.exe scan upload
=========Mozilla firefox=========
ProfilePath - C:\Users\jirka_000\AppData\Roaming\Mozilla\Firefox\Profiles\q9nkacjh.default-1496220436042
prefs.js - "browser.startup.homepage" - "https://www.google.com/"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 25.0.0.171 Plugin
"Path"=C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_25_0_0_171.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42]
"Description"=Intel IPT WebApi plugin
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI updater]
"Description"=This plugin updates Intel WebAPI component
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/Lync,version=15.0]
"Description"=Microsoft Lync Plug-in for Firefox
"Path"=C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/WLPG,version=16.4.3505.0912]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 25.0.0.171 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF64_25_0_0_171.dll
C:\Users\jirka_000\AppData\Roaming\Mozilla\Firefox\Profiles\q9nkacjh.default-1496220436042\addons.json
Adblock Plus - extension - {d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}
Classic Theme Restorer - extension - ClassicThemeRestorer@ArisT2Noia4dev
Mozilla Firefox hotfix - extension - firefox-hotfix@mozilla.org
C:\Users\jirka_000\AppData\Roaming\Mozilla\Firefox\Profiles\q9nkacjh.default-1496220436042\extensions.json
Application Update Service Helper - extension - aushelper@mozilla.org - C:\Program Files (x86)\Mozilla Firefox\browser\features\aushelper@mozilla.org.xpi
Multi-process staged rollout - extension - e10srollout@mozilla.org - C:\Program Files (x86)\Mozilla Firefox\browser\features\e10srollout@mozilla.org.xpi
Pocket - extension - firefox@getpocket.com - C:\Program Files (x86)\Mozilla Firefox\browser\features\firefox@getpocket.com.xpi
Web Compat - extension - webcompat@mozilla.org - C:\Program Files (x86)\Mozilla Firefox\browser\features\webcompat@mozilla.org.xpi
Default - theme - {972ce4c6-7e08-4474-a285-3208198ce6fd} - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}.xpi
Adblock Plus - extension - {d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d} - C:\Users\jirka_000\AppData\Roaming\Mozilla\Firefox\Profiles\q9nkacjh.default-1496220436042\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi
Classic Theme Restorer - extension - ClassicThemeRestorer@ArisT2Noia4dev - C:\Users\jirka_000\AppData\Roaming\Mozilla\Firefox\Profiles\q9nkacjh.default-1496220436042\extensions\ClassicThemeRestorer@ArisT2Noia4dev.xpi
Shield Recipe Client - extension - shield-recipe-client@mozilla.org - C:\Users\jirka_000\AppData\Roaming\Mozilla\Firefox\Profiles\q9nkacjh.default-1496220436042\features\{62efdbe2-123d-4ac9-add2-a62f3516801a}\shield-recipe-client@mozilla.org.xpi
C:\Users\jirka_000\AppData\Roaming\Mozilla\Firefox\Profiles\q9nkacjh.default-1496220436042\pluginreg.dat
Plugin - Shockwave Flash - 25.0.0.171 - C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_25_0_0_171.dll
=========Google Chrome=========
C:\Users\jirka_000\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences
Extension aapocclcgogkmnckokdopfmhonfmgoek 1 Prezentace Google 0.9
Extension ahfgeienlihckogmohjhadlkjgocpleb 1 Obchod Chrome 0.2
Extension aohghmighlieiainnegkcijnfilokake 1 Dokumenty Google 0.9
Extension apdfllckaahabafndbhieahigkjlhalf 1 Disk Google 14.1
Extension bepbmhgboaologfdajaanbcjmnhjmhfn 0
Extension blpcfgokakmgnkcojhhkbfbldkacnbeo 1 YouTube 4.2.8
Extension eemcgdkfndhakfknompkggombfjjjeno 1 Bookmark Manager 0.1
Extension felcaaldnbdncclmgdcncolpebgiejap
Extension gfdkimpbcpahaombhbimeihdjnejgicl 1 Feedback 1.0
Extension ghbmnnjooekpmoecnnnilnnbdlolhkhi 1 Dokumenty Google offline 1.4
Extension kmendfapggjehodndflmmgagdbamhnfd 1 CryptoTokenExtension 0.9.46
Extension mfehgcgbbipciphmccgaenjidiccnmng 1 Cloud Print 0.1
Extension mhjfbmdgcfjbbpaeojofohoefgiehjai 1 Chrome PDF Viewer 1
Extension neajdppkdcdipfabeoofebfddakdcjhd 1 Google Network Speech 1.0
Extension nkeimhogjdpnpccoofpliimaahmaaome 1 Google Hangouts 1.3.2
Extension nmmhkkegccagdldgiimedpiccmgmieda 1 Platby Internetového obchodu Chrome 1.0.0.2
Extension pjkljhegncpnkpknbcohdijeoejaedia 1 Gmail 8.1
Extension pkedcjkdefgpdelpbcmbmeomcjbeemfm
Homepage: http://www.google.com
default_search_provider.search_url:
C:\Users\jirka_000\AppData\Local\Google\Chrome\User Data\Default\Preferences
Homepage:
default_search_provider.search_url:
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\ccjleegmemocfpghkhpjmiccjcacackp]
"Path"=
======Registry dump ======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"={0633EE93-D776-472f-A0FF-E1416B8B2E3A}
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}]
"URL"=http://www.bing.com/search?q={searchTer ... &pc=ASU2JS
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"={0633EE93-D776-472f-A0FF-E1416B8B2E3A}
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}]
"URL"=http://www.bing.com/search?q={searchTer ... &pc=ASU2JS
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Skype for Business Browser Helper - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll [2017-05-16 229064]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft SkyDrive Pro Browser Helper - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL [2017-05-16 2351920]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Skype for Business Browser Helper - C:\Program Files\Microsoft Office 15\root\Office15\OCHelper.dll [2017-05-16 163528]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft SkyDrive Pro Browser Helper - C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL [2017-05-16 1744176]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IgfxTray"=C:\WINDOWS\system32\igfxtray.exe [2013-10-01 391128]
"HotKeysCmds"=C:\WINDOWS\system32\hkcmd.exe [2013-10-01 771032]
"Persistence"=C:\WINDOWS\system32\igfxpers.exe [2013-10-01 769496]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2013-05-30 13550152]
"RtHDVBg"=C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2013-05-20 1308232]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"Adobe Reader Speed Launcher"=C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe []
"ASUSPRP"=C:\Program Files (x86)\ASUS\APRP\APRP.EXE [2013-05-01 3187360]
"ASUSWebStorage"=C:\Program Files (x86)\ASUS\WebStorage Sync Agent\1.1.18.159\AsusWSPanel.exe [2012-12-19 3576784]
"RemoteControl10"=C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe [2013-03-08 95192]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Bluetooth.lnk - C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\Windows\system32\nvinitx.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
igfxdev.dll []
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"EnableLinkedConnections"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Active Setup\Installed Components\{8A69D345-D564-463c-AFF1-A69D9E530F96}]
"StubPath" = "C:\Program Files (x86)\Google\Chrome\Application\58.0.3029.110\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"VIDC.YUY2"=msyuv.dll
"vidc.i420"=iyuv_32.dll
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"VIDC.YVYU"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"vidc.msvc"=msvidc32.dll
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
====== File associations ======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
====== List of files/folders created in the last 1 month ======
2017-05-31 11:34:04 ----D---- C:\rsit
2017-05-31 11:34:04 ----D---- C:\Program Files\trend micro
2017-05-31 10:26:30 ----D---- C:\AdwCleaner
2017-05-31 10:21:55 ----D---- C:\Users\jirka_000\AppData\Roaming\ESET
2017-05-31 09:40:42 ----D---- C:\ProgramData\clp
2017-05-31 08:33:27 ----D---- C:\ProgramData\ESET
2017-05-31 08:33:27 ----D---- C:\Program Files\ESET
2017-05-31 08:25:16 ----A---- C:\WINDOWS\wininit.ini
2017-05-31 08:13:35 ----D---- C:\ProgramData\Spybot - Search & Destroy
2017-05-30 16:46:59 ----D---- C:\Users\jirka_000\AppData\Roaming\vlc
2017-05-22 19:50:27 ----D---- C:\Users\jirka_000\AppData\Roaming\Wargaming.net
2017-05-18 00:29:13 ----D---- C:\ProgramData\HP
2017-05-15 08:40:27 ----D---- C:\Program Files (x86)\Adobe
2017-05-15 08:39:37 ----D---- C:\Users\jirka_000\AppData\Roaming\WinRAR
2017-05-14 19:39:39 ----D---- C:\Program Files\Microsoft Office 15
2017-05-12 14:15:57 ----N---- C:\WINDOWS\system32\MpSigStub.exe
2017-05-12 10:18:28 ----D---- C:\Users\jirka_000\AppData\Roaming\Acronis
2017-05-12 10:17:15 ----D---- C:\ProgramData\Acronis
2017-05-12 10:17:03 ----D---- C:\Program Files (x86)\Acronis
2017-05-12 09:28:08 ----A---- C:\WINDOWS\SYSWOW64\aspnet_counters.dll
2017-05-12 09:28:08 ----A---- C:\WINDOWS\system32\aspnet_counters.dll
2017-05-12 01:45:35 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe
2017-05-12 01:40:59 ----D---- C:\WINDOWS\system32\appraiser
2017-05-12 01:40:15 ----A---- C:\WINDOWS\SYSWOW64\PresentationCFFRasterizerNative_v0300.dll
2017-05-12 01:40:15 ----A---- C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2017-05-12 01:22:12 ----A---- C:\WINDOWS\system32\sppsvc.exe
2017-05-12 01:22:12 ----A---- C:\WINDOWS\system32\sppobjs.dll
2017-05-12 01:22:09 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.dll
2017-05-12 01:22:08 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.dll
2017-05-12 01:21:58 ----A---- C:\WINDOWS\system32\drivers\rdbss.sys
2017-05-12 01:21:57 ----A---- C:\WINDOWS\system32\drivers\fvevol.sys
2017-05-12 01:21:57 ----A---- C:\WINDOWS\system32\CertEnroll.dll
2017-05-12 01:21:55 ----A---- C:\WINDOWS\system32\sppwinob.dll
2017-05-12 01:21:54 ----A---- C:\WINDOWS\SYSWOW64\winhttp.dll
2017-05-12 01:21:54 ----A---- C:\WINDOWS\system32\winhttp.dll
2017-05-12 01:21:51 ----A---- C:\WINDOWS\SYSWOW64\CertEnroll.dll
2017-05-12 01:21:51 ----A---- C:\WINDOWS\system32\kerberos.dll
2017-05-12 01:21:51 ----A---- C:\WINDOWS\system32\drivers\mup.sys
2017-05-12 01:21:50 ----A---- C:\WINDOWS\system32\drivers\ndiswan.sys
2017-05-12 01:21:49 ----A---- C:\WINDOWS\SYSWOW64\kerberos.dll
2017-05-12 01:21:49 ----A---- C:\WINDOWS\system32\webio.dll
2017-05-12 01:21:49 ----A---- C:\WINDOWS\system32\MPSSVC.dll
2017-05-12 01:21:49 ----A---- C:\WINDOWS\system32\iphlpsvc.dll
2017-05-12 01:21:48 ----AC---- C:\WINDOWS\system32\drivers\hidclass.sys
2017-05-12 01:21:48 ----A---- C:\WINDOWS\SYSWOW64\webio.dll
2017-05-12 01:21:48 ----A---- C:\WINDOWS\SYSWOW64\rdpcore.dll
2017-05-12 01:21:48 ----A---- C:\WINDOWS\system32\Windows.Devices.Geolocation.dll
2017-05-12 01:21:48 ----A---- C:\WINDOWS\system32\tpmvsc.dll
2017-05-12 01:21:48 ----A---- C:\WINDOWS\system32\rdpcore.dll
2017-05-12 01:21:48 ----A---- C:\WINDOWS\system32\drivers\dumpfve.sys
2017-05-12 01:21:48 ----A---- C:\WINDOWS\system32\drivers\Classpnp.sys
2017-05-12 01:21:48 ----A---- C:\WINDOWS\system32\certutil.exe
2017-05-12 01:21:45 ----AC---- C:\WINDOWS\system32\drivers\hidusb.sys
2017-05-12 01:21:44 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Geolocation.dll
2017-05-12 01:21:44 ----A---- C:\WINDOWS\system32\LocationApi.dll
2017-05-12 01:21:44 ----A---- C:\WINDOWS\system32\gpresult.exe
2017-05-12 01:21:43 ----A---- C:\WINDOWS\SYSWOW64\WebClnt.dll
2017-05-12 01:21:43 ----A---- C:\WINDOWS\SYSWOW64\UserAccountBroker.exe
2017-05-12 01:21:43 ----A---- C:\WINDOWS\SYSWOW64\LocationApi.dll
2017-05-12 01:21:43 ----A---- C:\WINDOWS\SYSWOW64\FirewallAPI.dll
2017-05-12 01:21:43 ----A---- C:\WINDOWS\SYSWOW64\cryptxml.dll
2017-05-12 01:21:43 ----A---- C:\WINDOWS\system32\WebClnt.dll
2017-05-12 01:21:43 ----A---- C:\WINDOWS\system32\UserAccountBroker.exe
2017-05-12 01:21:43 ----A---- C:\WINDOWS\system32\fveapi.dll
2017-05-12 01:21:43 ----A---- C:\WINDOWS\system32\FirewallAPI.dll
2017-05-12 01:21:43 ----A---- C:\WINDOWS\system32\cryptxml.dll
2017-05-12 01:21:42 ----A---- C:\WINDOWS\system32\wfapigp.dll
2017-05-12 01:21:42 ----A---- C:\WINDOWS\system32\hbaapi.dll
2017-05-12 01:21:42 ----A---- C:\WINDOWS\system32\BdeHdCfgLib.dll
2017-05-12 01:21:41 ----AC---- C:\WINDOWS\system32\drivers\hidparse.sys
2017-05-12 01:21:41 ----A---- C:\WINDOWS\SYSWOW64\wfapigp.dll
2017-05-12 01:21:41 ----A---- C:\WINDOWS\SYSWOW64\hbaapi.dll
2017-05-12 01:21:41 ----A---- C:\WINDOWS\SYSWOW64\gpresult.exe
2017-05-12 01:21:41 ----A---- C:\WINDOWS\SYSWOW64\certutil.exe
2017-05-12 01:21:41 ----A---- C:\WINDOWS\SYSWOW64\certenc.dll
2017-05-12 01:21:41 ----A---- C:\WINDOWS\system32\httpprxp.dll
2017-05-12 01:21:41 ----A---- C:\WINDOWS\system32\httpprxm.dll
2017-05-12 01:21:41 ----A---- C:\WINDOWS\system32\fvecpl.dll
2017-05-12 01:21:41 ----A---- C:\WINDOWS\system32\certenc.dll
2017-05-12 01:21:41 ----A---- C:\WINDOWS\system32\bdesvc.dll
2017-05-12 01:21:41 ----A---- C:\WINDOWS\system32\adhsvc.dll
2017-05-12 01:20:59 ----A---- C:\WINDOWS\SYSWOW64\tracerpt.exe
2017-05-12 01:20:59 ----A---- C:\WINDOWS\SYSWOW64\sechost.dll
2017-05-12 01:20:59 ----A---- C:\WINDOWS\system32\tracerpt.exe
2017-05-12 01:20:59 ----A---- C:\WINDOWS\system32\sechost.dll
2017-05-12 01:10:59 ----A---- C:\WINDOWS\SYSWOW64\KernelBase.dll
2017-05-12 01:10:59 ----A---- C:\WINDOWS\system32\mshtml.dll
2017-05-12 01:10:59 ----A---- C:\WINDOWS\system32\KernelBase.dll
2017-05-12 01:10:57 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2017-05-12 01:10:54 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2017-05-12 01:10:54 ----A---- C:\WINDOWS\system32\jscript9.dll
2017-05-12 01:10:54 ----A---- C:\WINDOWS\system32\ieframe.dll
2017-05-12 01:10:53 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2017-05-12 01:10:52 ----A---- C:\WINDOWS\system32\win32k.sys
2017-05-12 01:10:52 ----A---- C:\WINDOWS\system32\rpcss.dll
2017-05-12 01:10:51 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2017-05-12 01:10:51 ----A---- C:\WINDOWS\system32\wininet.dll
2017-05-12 01:10:50 ----A---- C:\WINDOWS\system32\urlmon.dll
2017-05-12 01:10:50 ----A---- C:\WINDOWS\system32\ole32.dll
2017-05-12 01:10:50 ----A---- C:\WINDOWS\system32\iertutil.dll
2017-05-12 01:10:50 ----A---- C:\WINDOWS\system32\drivers\dxgkrnl.sys
2017-05-12 01:10:49 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2017-05-12 01:10:49 ----A---- C:\WINDOWS\SYSWOW64\ole32.dll
2017-05-12 01:10:49 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2017-05-12 01:10:49 ----A---- C:\WINDOWS\SYSWOW64\crypt32.dll
2017-05-12 01:10:49 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2017-05-12 01:10:49 ----A---- C:\WINDOWS\system32\drivers\ntfs.sys
2017-05-12 01:10:49 ----A---- C:\WINDOWS\system32\crypt32.dll
2017-05-12 01:10:49 ----A---- C:\WINDOWS\system32\combase.dll
2017-05-12 01:10:48 ----A---- C:\WINDOWS\SYSWOW64\WsmSvc.dll
2017-05-12 01:10:48 ----A---- C:\WINDOWS\SYSWOW64\vbscript.dll
2017-05-12 01:10:48 ----A---- C:\WINDOWS\SYSWOW64\combase.dll
2017-05-12 01:10:48 ----A---- C:\WINDOWS\system32\WsmSvc.dll
2017-05-12 01:10:48 ----A---- C:\WINDOWS\system32\lsasrv.dll
2017-05-12 01:10:48 ----A---- C:\WINDOWS\system32\gdi32.dll
2017-05-12 01:10:48 ----A---- C:\WINDOWS\system32\drivers\srv2.sys
2017-05-12 01:10:45 ----AC---- C:\WINDOWS\system32\drivers\msiscsi.sys
2017-05-12 01:10:45 ----A---- C:\WINDOWS\SYSWOW64\wmitomi.dll
2017-05-12 01:10:45 ----A---- C:\WINDOWS\SYSWOW64\gdi32.dll
2017-05-12 01:10:45 ----A---- C:\WINDOWS\system32\wmitomi.dll
2017-05-12 01:10:45 ----A---- C:\WINDOWS\system32\wisp.dll
2017-05-12 01:10:45 ----A---- C:\WINDOWS\system32\oleaut32.dll
2017-05-12 01:10:45 ----A---- C:\WINDOWS\system32\drivers\srv.sys
2017-05-12 01:10:44 ----A---- C:\WINDOWS\SYSWOW64\wisp.dll
2017-05-12 01:10:44 ----A---- C:\WINDOWS\SYSWOW64\oleaut32.dll
2017-05-12 01:10:43 ----A---- C:\WINDOWS\SYSWOW64\WinTypes.dll
2017-05-12 01:10:43 ----A---- C:\WINDOWS\system32\WinTypes.dll
2017-05-12 01:10:43 ----A---- C:\WINDOWS\system32\msfeeds.dll
2017-05-12 01:10:43 ----A---- C:\WINDOWS\system32\ieetwcollector.exe
2017-05-12 01:10:42 ----A---- C:\WINDOWS\SYSWOW64\mshtmled.dll
2017-05-12 01:10:42 ----A---- C:\WINDOWS\SYSWOW64\iedkcs32.dll
2017-05-12 01:10:42 ----A---- C:\WINDOWS\system32\vbscript.dll
2017-05-12 01:10:42 ----A---- C:\WINDOWS\system32\jscript.dll
2017-05-12 01:10:41 ----A---- C:\WINDOWS\system32\MshtmlDac.dll
2017-05-12 01:10:41 ----A---- C:\WINDOWS\system32\drivers\dxgmms1.sys
2017-05-12 01:10:37 ----A---- C:\WINDOWS\SYSWOW64\webcheck.dll
2017-05-12 01:10:37 ----A---- C:\WINDOWS\SYSWOW64\dxtrans.dll
2017-05-12 01:10:36 ----A---- C:\WINDOWS\SYSWOW64\msfeeds.dll
2017-05-12 01:10:36 ----A---- C:\WINDOWS\system32\dxtrans.dll
2017-05-12 01:10:35 ----A---- C:\WINDOWS\SYSWOW64\wincorlib.dll
2017-05-12 01:10:35 ----A---- C:\WINDOWS\SYSWOW64\MshtmlDac.dll
2017-05-12 01:10:35 ----A---- C:\WINDOWS\SYSWOW64\iepeers.dll
2017-05-12 01:10:35 ----A---- C:\WINDOWS\SYSWOW64\certcli.dll
2017-05-12 01:10:35 ----A---- C:\WINDOWS\system32\webcheck.dll
2017-05-12 01:10:35 ----A---- C:\WINDOWS\system32\mshtmled.dll
2017-05-12 01:10:35 ----A---- C:\WINDOWS\system32\iepeers.dll
2017-05-12 01:10:35 ----A---- C:\WINDOWS\system32\certcli.dll
2017-05-12 01:10:34 ----A---- C:\WINDOWS\SYSWOW64\WsmWmiPl.dll
2017-05-12 01:10:34 ----A---- C:\WINDOWS\system32\WsmWmiPl.dll
2017-05-12 01:10:34 ----A---- C:\WINDOWS\system32\inetcomm.dll
2017-05-12 01:10:34 ----A---- C:\WINDOWS\system32\iedkcs32.dll
2017-05-12 01:10:34 ----A---- C:\WINDOWS\system32\ie4uinit.exe
2017-05-12 01:10:33 ----A---- C:\WINDOWS\SYSWOW64\jscript.dll
2017-05-12 01:10:33 ----A---- C:\WINDOWS\SYSWOW64\inetcomm.dll
2017-05-12 01:10:33 ----A---- C:\WINDOWS\SYSWOW64\ieapfltr.dll
2017-05-12 01:10:33 ----A---- C:\WINDOWS\system32\ieapfltr.dll
2017-05-12 01:10:33 ----A---- C:\WINDOWS\system32\drivers\mrxsmb20.sys
2017-05-12 01:10:33 ----A---- C:\WINDOWS\system32\drivers\mrxsmb10.sys
2017-05-12 01:10:33 ----A---- C:\WINDOWS\system32\drivers\mrxsmb.sys
2017-05-12 01:04:25 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
2017-05-12 01:04:22 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2017-05-12 01:04:20 ----A---- C:\WINDOWS\system32\twinui.dll
2017-05-12 01:04:16 ----A---- C:\WINDOWS\system32\shell32.dll
2017-05-12 01:04:14 ----A---- C:\WINDOWS\explorer.exe
2017-05-12 01:04:13 ----A---- C:\WINDOWS\SYSWOW64\explorer.exe
2017-05-12 01:04:13 ----A---- C:\WINDOWS\system32\RestoreOptIn.exe
2017-05-12 01:04:12 ----A---- C:\WINDOWS\SYSWOW64\RestoreOptIn.exe
2017-05-12 01:03:57 ----A---- C:\WINDOWS\SYSWOW64\TsWpfWrp.exe
2017-05-12 01:03:57 ----A---- C:\WINDOWS\system32\TsWpfWrp.exe
2017-05-12 00:59:05 ----A---- C:\WINDOWS\system32\CompatTelRunner.exe
2017-05-12 00:59:05 ----A---- C:\WINDOWS\system32\aepic.dll
2017-05-12 00:59:04 ----A---- C:\WINDOWS\system32\aeinv.dll
2017-05-12 00:59:04 ----A---- C:\WINDOWS\system32\acmigration.dll
2017-05-12 00:59:03 ----A---- C:\WINDOWS\system32\pcasvc.dll
2017-05-12 00:59:03 ----A---- C:\WINDOWS\system32\invagent.dll
2017-05-12 00:59:03 ----A---- C:\WINDOWS\system32\appraiser.dll
2017-05-12 00:59:01 ----A---- C:\WINDOWS\system32\devinv.dll
2017-05-12 00:58:57 ----A---- C:\WINDOWS\system32\generaltel.dll
2017-05-12 00:58:54 ----A---- C:\WINDOWS\system32\centel.dll
2017-05-11 07:10:48 ----A---- C:\WINDOWS\SYSWOW64\rasapi32.dll
2017-05-11 07:10:48 ----A---- C:\WINDOWS\SYSWOW64\mprdim.dll
2017-05-11 07:10:48 ----A---- C:\WINDOWS\SYSWOW64\mprddm.dll
2017-05-11 07:10:48 ----A---- C:\WINDOWS\system32\vpnike.dll
2017-05-11 07:10:48 ----A---- C:\WINDOWS\system32\rasmans.dll
2017-05-11 07:10:48 ----A---- C:\WINDOWS\system32\rasapi32.dll
2017-05-11 07:10:48 ----A---- C:\WINDOWS\system32\mprdim.dll
2017-05-11 07:10:48 ----A---- C:\WINDOWS\system32\mprddm.dll
2017-05-11 07:10:48 ----A---- C:\WINDOWS\system32\IKEEXT.DLL
2017-05-11 07:10:48 ----A---- C:\WINDOWS\system32\drivers\mountmgr.sys
2017-05-11 07:10:46 ----A---- C:\WINDOWS\system32\wpdbusenum.dll
2017-05-11 07:10:46 ----A---- C:\WINDOWS\system32\dssenh.dll
2017-05-11 07:10:44 ----A---- C:\WINDOWS\SYSWOW64\dssenh.dll
2017-05-11 07:10:44 ----A---- C:\WINDOWS\system32\rasppp.dll
2017-05-11 07:10:44 ----A---- C:\WINDOWS\system32\rasman.dll
2017-05-11 07:10:44 ----A---- C:\WINDOWS\system32\drivers\agilevpn.sys
2017-05-11 07:10:42 ----A---- C:\WINDOWS\system32\rascustom.dll
2017-05-11 07:10:40 ----A---- C:\WINDOWS\system32\rdpclip.exe
2017-05-11 07:10:38 ----A---- C:\WINDOWS\SYSWOW64\rasppp.dll
2017-05-11 07:10:38 ----A---- C:\WINDOWS\SYSWOW64\rasman.dll
2017-05-11 07:10:38 ----A---- C:\WINDOWS\SYSWOW64\iprtrmgr.dll
2017-05-11 07:10:38 ----A---- C:\WINDOWS\system32\nshwfp.dll
2017-05-11 07:10:38 ----A---- C:\WINDOWS\system32\iprtrmgr.dll
2017-05-11 07:10:32 ----A---- C:\WINDOWS\SYSWOW64\advapi32.dll
2017-05-11 07:10:32 ----A---- C:\WINDOWS\system32\advapi32.dll
2017-05-11 07:09:58 ----A---- C:\WINDOWS\system32\poqexec.exe
2017-05-11 07:09:54 ----A---- C:\WINDOWS\SYSWOW64\poqexec.exe
2017-05-11 07:09:49 ----A---- C:\WINDOWS\system32\tzsync.exe
2017-05-11 07:09:35 ----A---- C:\WINDOWS\SYSWOW64\appidapi.dll
2017-05-11 07:09:35 ----A---- C:\WINDOWS\system32\appidsvc.dll
2017-05-11 07:09:35 ----A---- C:\WINDOWS\system32\appidapi.dll
2017-05-11 07:06:50 ----A---- C:\WINDOWS\system32\SystemEventsBrokerServer.dll
2017-05-09 15:48:47 ----A---- C:\WINDOWS\SYSWOW64\xactengine3_7.dll
2017-05-09 15:48:47 ----A---- C:\WINDOWS\SYSWOW64\d3dcsx_43.dll
2017-05-09 15:48:47 ----A---- C:\WINDOWS\system32\xactengine3_7.dll
2017-05-09 15:48:47 ----A---- C:\WINDOWS\system32\d3dcsx_43.dll
2017-05-09 15:48:46 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_43.dll
2017-05-09 15:48:46 ----A---- C:\WINDOWS\system32\d3dx10_43.dll
2017-05-09 15:48:45 ----A---- C:\WINDOWS\SYSWOW64\XAudio2_6.dll
2017-05-09 15:48:45 ----A---- C:\WINDOWS\SYSWOW64\XAPOFX1_4.dll
2017-05-09 15:48:45 ----A---- C:\WINDOWS\SYSWOW64\D3DX9_43.dll
2017-05-09 15:48:45 ----A---- C:\WINDOWS\system32\XAudio2_6.dll
2017-05-09 15:48:45 ----A---- C:\WINDOWS\system32\XAPOFX1_4.dll
2017-05-09 15:48:45 ----A---- C:\WINDOWS\system32\D3DX9_43.dll
2017-05-09 15:48:44 ----A---- C:\WINDOWS\SYSWOW64\xactengine3_6.dll
2017-05-09 15:48:44 ----A---- C:\WINDOWS\SYSWOW64\X3DAudio1_7.dll
2017-05-09 15:48:44 ----A---- C:\WINDOWS\system32\xactengine3_6.dll
2017-05-09 15:48:44 ----A---- C:\WINDOWS\system32\X3DAudio1_7.dll
2017-05-09 15:48:43 ----A---- C:\WINDOWS\SYSWOW64\XAudio2_5.dll
2017-05-09 15:48:43 ----A---- C:\WINDOWS\system32\XAudio2_5.dll
2017-05-09 15:48:41 ----A---- C:\WINDOWS\SYSWOW64\xactengine3_5.dll
2017-05-09 15:48:41 ----A---- C:\WINDOWS\system32\xactengine3_5.dll
2017-05-09 15:48:40 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_42.dll
2017-05-09 15:48:40 ----A---- C:\WINDOWS\system32\D3DCompiler_42.dll
2017-05-09 15:48:39 ----A---- C:\WINDOWS\SYSWOW64\D3DX9_42.dll
2017-05-09 15:48:39 ----A---- C:\WINDOWS\SYSWOW64\d3dx11_42.dll
2017-05-09 15:48:39 ----A---- C:\WINDOWS\SYSWOW64\d3dcsx_42.dll
2017-05-09 15:48:39 ----A---- C:\WINDOWS\system32\D3DX9_42.dll
2017-05-09 15:48:39 ----A---- C:\WINDOWS\system32\d3dx11_42.dll
2017-05-09 15:48:39 ----A---- C:\WINDOWS\system32\d3dcsx_42.dll
2017-05-09 15:48:38 ----A---- C:\WINDOWS\SYSWOW64\D3DX9_41.dll
2017-05-09 15:48:38 ----A---- C:\WINDOWS\system32\D3DX9_41.dll
2017-05-09 15:48:38 ----A---- C:\WINDOWS\system32\d3dx10_41.dll
2017-05-09 15:48:38 ----A---- C:\WINDOWS\system32\D3DCompiler_41.dll
2017-05-09 15:48:37 ----A---- C:\WINDOWS\SYSWOW64\XAudio2_4.dll
2017-05-09 15:48:37 ----A---- C:\WINDOWS\SYSWOW64\XAPOFX1_3.dll
2017-05-09 15:48:37 ----A---- C:\WINDOWS\system32\XAudio2_4.dll
2017-05-09 15:48:37 ----A---- C:\WINDOWS\system32\XAPOFX1_3.dll
2017-05-09 15:48:36 ----A---- C:\WINDOWS\SYSWOW64\xactengine3_4.dll
2017-05-09 15:48:36 ----A---- C:\WINDOWS\SYSWOW64\X3DAudio1_6.dll
2017-05-09 15:48:36 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_40.dll
2017-05-09 15:48:36 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_40.dll
2017-05-09 15:48:36 ----A---- C:\WINDOWS\system32\xactengine3_4.dll
2017-05-09 15:48:36 ----A---- C:\WINDOWS\system32\X3DAudio1_6.dll
2017-05-09 15:48:36 ----A---- C:\WINDOWS\system32\d3dx10_40.dll
2017-05-09 15:48:36 ----A---- C:\WINDOWS\system32\D3DCompiler_40.dll
2017-05-09 15:48:35 ----A---- C:\WINDOWS\SYSWOW64\D3DX9_40.dll
2017-05-09 15:48:35 ----A---- C:\WINDOWS\system32\D3DX9_40.dll
2017-05-09 15:48:34 ----A---- C:\WINDOWS\SYSWOW64\XAudio2_3.dll
2017-05-09 15:48:34 ----A---- C:\WINDOWS\SYSWOW64\XAPOFX1_2.dll
2017-05-09 15:48:34 ----A---- C:\WINDOWS\SYSWOW64\xactengine3_3.dll
2017-05-09 15:48:34 ----A---- C:\WINDOWS\system32\XAudio2_3.dll
2017-05-09 15:48:34 ----A---- C:\WINDOWS\system32\XAPOFX1_2.dll
2017-05-09 15:48:34 ----A---- C:\WINDOWS\system32\xactengine3_3.dll
2017-05-09 15:48:33 ----A---- C:\WINDOWS\SYSWOW64\X3DAudio1_5.dll
2017-05-09 15:48:33 ----A---- C:\WINDOWS\system32\X3DAudio1_5.dll
2017-05-09 15:48:32 ----A---- C:\WINDOWS\SYSWOW64\XAudio2_2.dll
2017-05-09 15:48:32 ----A---- C:\WINDOWS\SYSWOW64\XAPOFX1_1.dll
2017-05-09 15:48:32 ----A---- C:\WINDOWS\SYSWOW64\xactengine3_2.dll
2017-05-09 15:48:32 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_39.dll
2017-05-09 15:48:32 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_39.dll
2017-05-09 15:48:32 ----A---- C:\WINDOWS\system32\XAudio2_2.dll
2017-05-09 15:48:32 ----A---- C:\WINDOWS\system32\XAPOFX1_1.dll
2017-05-09 15:48:32 ----A---- C:\WINDOWS\system32\xactengine3_2.dll
2017-05-09 15:48:32 ----A---- C:\WINDOWS\system32\d3dx10_39.dll
2017-05-09 15:48:32 ----A---- C:\WINDOWS\system32\D3DCompiler_39.dll
2017-05-09 15:48:31 ----A---- C:\WINDOWS\SYSWOW64\D3DX9_39.dll
2017-05-09 15:48:31 ----A---- C:\WINDOWS\system32\D3DX9_39.dll
2017-05-09 15:48:29 ----A---- C:\WINDOWS\SYSWOW64\XAudio2_1.dll
2017-05-09 15:48:29 ----A---- C:\WINDOWS\SYSWOW64\XAPOFX1_0.dll
2017-05-09 15:48:29 ----A---- C:\WINDOWS\system32\XAudio2_1.dll
2017-05-09 15:48:29 ----A---- C:\WINDOWS\system32\XAPOFX1_0.dll
2017-05-09 15:48:28 ----A---- C:\WINDOWS\SYSWOW64\xactengine3_1.dll
2017-05-09 15:48:28 ----A---- C:\WINDOWS\SYSWOW64\X3DAudio1_4.dll
2017-05-09 15:48:28 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_38.dll
2017-05-09 15:48:28 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_38.dll
2017-05-09 15:48:28 ----A---- C:\WINDOWS\system32\xactengine3_1.dll
2017-05-09 15:48:28 ----A---- C:\WINDOWS\system32\X3DAudio1_4.dll
2017-05-09 15:48:28 ----A---- C:\WINDOWS\system32\d3dx10_38.dll
2017-05-09 15:48:28 ----A---- C:\WINDOWS\system32\D3DCompiler_38.dll
2017-05-09 15:48:27 ----A---- C:\WINDOWS\SYSWOW64\D3DX9_38.dll
2017-05-09 15:48:27 ----A---- C:\WINDOWS\system32\D3DX9_38.dll
2017-05-09 15:48:24 ----A---- C:\WINDOWS\SYSWOW64\XAudio2_0.dll
2017-05-09 15:48:24 ----A---- C:\WINDOWS\SYSWOW64\xactengine3_0.dll
2017-05-09 15:48:24 ----A---- C:\WINDOWS\SYSWOW64\X3DAudio1_3.dll
2017-05-09 15:48:24 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_37.dll
2017-05-09 15:48:24 ----A---- C:\WINDOWS\system32\XAudio2_0.dll
2017-05-09 15:48:24 ----A---- C:\WINDOWS\system32\xactengine3_0.dll
2017-05-09 15:48:24 ----A---- C:\WINDOWS\system32\X3DAudio1_3.dll
2017-05-09 15:48:24 ----A---- C:\WINDOWS\system32\D3DCompiler_37.dll
2017-05-09 15:48:23 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_10.dll
2017-05-09 15:48:23 ----A---- C:\WINDOWS\SYSWOW64\D3DX9_37.dll
2017-05-09 15:48:23 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_37.dll
2017-05-09 15:48:23 ----A---- C:\WINDOWS\system32\xactengine2_10.dll
2017-05-09 15:48:23 ----A---- C:\WINDOWS\system32\D3DX9_37.dll
2017-05-09 15:48:23 ----A---- C:\WINDOWS\system32\d3dx10_37.dll
2017-05-09 15:48:22 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_36.dll
2017-05-09 15:48:22 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_36.dll
2017-05-09 15:48:22 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_36.dll
2017-05-09 15:48:22 ----A---- C:\WINDOWS\system32\d3dx9_36.dll
2017-05-09 15:48:22 ----A---- C:\WINDOWS\system32\d3dx10_36.dll
2017-05-09 15:48:22 ----A---- C:\WINDOWS\system32\D3DCompiler_36.dll
2017-05-09 15:48:21 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_9.dll
2017-05-09 15:48:21 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_35.dll
2017-05-09 15:48:21 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_35.dll
2017-05-09 15:48:21 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_35.dll
2017-05-09 15:48:21 ----A---- C:\WINDOWS\system32\xactengine2_9.dll
2017-05-09 15:48:21 ----A---- C:\WINDOWS\system32\d3dx9_35.dll
2017-05-09 15:48:21 ----A---- C:\WINDOWS\system32\d3dx10_35.dll
2017-05-09 15:48:21 ----A---- C:\WINDOWS\system32\D3DCompiler_35.dll
2017-05-09 15:48:20 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_8.dll
2017-05-09 15:48:20 ----A---- C:\WINDOWS\SYSWOW64\X3DAudio1_2.dll
2017-05-09 15:48:20 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_34.dll
2017-05-09 15:48:20 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_34.dll
2017-05-09 15:48:20 ----A---- C:\WINDOWS\system32\xactengine2_8.dll
2017-05-09 15:48:20 ----A---- C:\WINDOWS\system32\X3DAudio1_2.dll
2017-05-09 15:48:20 ----A---- C:\WINDOWS\system32\d3dx10_34.dll
2017-05-09 15:48:20 ----A---- C:\WINDOWS\system32\D3DCompiler_34.dll
2017-05-09 15:48:19 ----A---- C:\WINDOWS\SYSWOW64\xinput1_3.dll
2017-05-09 15:48:19 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_34.dll
2017-05-09 15:48:19 ----A---- C:\WINDOWS\system32\xinput1_3.dll
2017-05-09 15:48:19 ----A---- C:\WINDOWS\system32\d3dx9_34.dll
2017-05-09 15:48:17 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_7.dll
2017-05-09 15:48:17 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_33.dll
2017-05-09 15:48:17 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_33.dll
2017-05-09 15:48:17 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_33.dll
2017-05-09 15:48:17 ----A---- C:\WINDOWS\system32\xactengine2_7.dll
2017-05-09 15:48:17 ----A---- C:\WINDOWS\system32\d3dx9_33.dll
2017-05-09 15:48:17 ----A---- C:\WINDOWS\system32\d3dx10_33.dll
2017-05-09 15:48:17 ----A---- C:\WINDOWS\system32\D3DCompiler_33.dll
2017-05-09 15:48:16 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_6.dll
2017-05-09 15:48:16 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_5.dll
2017-05-09 15:48:16 ----A---- C:\WINDOWS\SYSWOW64\d3dx10.dll
2017-05-09 15:48:16 ----A---- C:\WINDOWS\system32\xactengine2_6.dll
2017-05-09 15:48:16 ----A---- C:\WINDOWS\system32\xactengine2_5.dll
2017-05-09 15:48:16 ----A---- C:\WINDOWS\system32\d3dx10.dll
2017-05-09 15:48:15 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_4.dll
2017-05-09 15:48:15 ----A---- C:\WINDOWS\SYSWOW64\x3daudio1_1.dll
2017-05-09 15:48:15 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_31.dll
2017-05-09 15:48:15 ----A---- C:\WINDOWS\system32\xactengine2_4.dll
2017-05-09 15:48:15 ----A---- C:\WINDOWS\system32\x3daudio1_1.dll
2017-05-09 15:48:15 ----A---- C:\WINDOWS\system32\d3dx9_31.dll
2017-05-09 15:48:14 ----A---- C:\WINDOWS\SYSWOW64\xinput1_2.dll
2017-05-09 15:48:14 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_3.dll
2017-05-09 15:48:14 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_2.dll
2017-05-09 15:48:14 ----A---- C:\WINDOWS\system32\xinput1_2.dll
2017-05-09 15:48:14 ----A---- C:\WINDOWS\system32\xactengine2_3.dll
2017-05-09 15:48:14 ----A---- C:\WINDOWS\system32\xactengine2_2.dll
2017-05-09 15:48:13 ----A---- C:\WINDOWS\SYSWOW64\xinput1_1.dll
2017-05-09 15:48:13 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_1.dll
2017-05-09 15:48:13 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_30.dll
2017-05-09 15:48:13 ----A---- C:\WINDOWS\system32\xinput1_1.dll
2017-05-09 15:48:13 ----A---- C:\WINDOWS\system32\xactengine2_1.dll
2017-05-09 15:48:13 ----A---- C:\WINDOWS\system32\d3dx9_30.dll
2017-05-09 15:48:11 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_0.dll
2017-05-09 15:48:11 ----A---- C:\WINDOWS\SYSWOW64\x3daudio1_0.dll
2017-05-09 15:48:11 ----A---- C:\WINDOWS\system32\xactengine2_0.dll
2017-05-09 15:48:11 ----A---- C:\WINDOWS\system32\x3daudio1_0.dll
2017-05-09 15:48:10 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_29.dll
2017-05-09 15:48:10 ----A---- C:\WINDOWS\system32\d3dx9_29.dll
2017-05-09 15:48:09 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_28.dll
2017-05-09 15:48:09 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_27.dll
2017-05-09 15:48:09 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_26.dll
2017-05-09 15:48:09 ----A---- C:\WINDOWS\system32\d3dx9_28.dll
2017-05-09 15:48:09 ----A---- C:\WINDOWS\system32\d3dx9_27.dll
2017-05-09 15:48:09 ----A---- C:\WINDOWS\system32\d3dx9_26.dll
2017-05-09 15:48:08 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_25.dll
2017-05-09 15:48:08 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_24.dll
2017-05-09 15:48:08 ----A---- C:\WINDOWS\system32\d3dx9_25.dll
2017-05-09 15:48:08 ----A---- C:\WINDOWS\system32\d3dx9_24.dll
2017-05-09 14:46:58 ----D---- C:\Users\jirka_000\AppData\Roaming\TS3Client
2017-05-09 14:46:23 ----D---- C:\ProgramData\Package Cache
2017-05-09 14:42:42 ----D---- C:\Program Files\TeamSpeak 3 Client
2017-05-09 14:11:15 ----D---- C:\WINDOWS\SYSWOW64\directx
2017-05-09 13:27:07 ----D---- C:\Users\jirka_000\AppData\Roaming\Identities
2017-05-09 13:16:27 ----DC---- C:\WINDOWS\Panther
2017-05-09 13:04:49 ----A---- C:\WINDOWS\system32\emptyregdb.dat
2017-05-09 13:00:06 ----A---- C:\WINDOWS\system32\fhcpl.dll
2017-05-09 12:59:50 ----A---- C:\WINDOWS\SYSWOW64\rdvidcrl.dll
2017-05-09 12:59:50 ----A---- C:\WINDOWS\SYSWOW64\mstscax.dll
2017-05-09 12:59:50 ----A---- C:\WINDOWS\system32\rdvidcrl.dll
2017-05-09 12:59:50 ----A---- C:\WINDOWS\system32\mstscax.dll
2017-05-09 12:49:15 ----A---- C:\WINDOWS\SYSWOW64\d2d1.dll
2017-05-09 12:49:15 ----A---- C:\WINDOWS\system32\d2d1.dll
2017-05-09 12:48:48 ----A---- C:\WINDOWS\SYSWOW64\rasser.dll
2017-05-09 12:48:48 ----A---- C:\WINDOWS\SYSWOW64\rasmxs.dll
2017-05-09 12:48:48 ----A---- C:\WINDOWS\SYSWOW64\rasdiag.dll
2017-05-09 12:48:48 ----A---- C:\WINDOWS\SYSWOW64\rascfg.dll
2017-05-09 12:48:48 ----A---- C:\WINDOWS\SYSWOW64\QSVRMGMT.DLL
2017-05-09 12:48:48 ----A---- C:\WINDOWS\SYSWOW64\QSHVHOST.DLL
2017-05-09 12:48:48 ----A---- C:\WINDOWS\SYSWOW64\mfplat.dll
2017-05-09 12:48:48 ----A---- C:\WINDOWS\SYSWOW64\MFMediaEngine.dll
2017-05-09 12:48:48 ----A---- C:\WINDOWS\SYSWOW64\DevicePairing.dll
2017-05-09 12:48:48 ----A---- C:\WINDOWS\system32\mfplat.dll
2017-05-09 12:48:48 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll
2017-05-09 12:48:46 ----AC---- C:\WINDOWS\system32\drivers\intelpep.sys
2017-05-09 12:48:46 ----A---- C:\WINDOWS\SYSWOW64\WSDApi.dll
2017-05-09 12:48:46 ----A---- C:\WINDOWS\SYSWOW64\vsstrace.dll
2017-05-09 12:48:46 ----A---- C:\WINDOWS\SYSWOW64\vssapi.dll
2017-05-09 12:48:46 ----A---- C:\WINDOWS\SYSWOW64\eventcls.dll
2017-05-09 12:48:46 ----A---- C:\WINDOWS\system32\WSDMon.dll
2017-05-09 12:48:46 ----A---- C:\WINDOWS\system32\WSDApi.dll
2017-05-09 12:48:46 ----A---- C:\WINDOWS\system32\vsstrace.dll
2017-05-09 12:48:46 ----A---- C:\WINDOWS\system32\vssapi.dll
2017-05-09 12:48:46 ----A---- C:\WINDOWS\system32\SyncEngine.dll
2017-05-09 12:48:46 ----A---- C:\WINDOWS\system32\spoolsv.exe
2017-05-09 12:48:46 ----A---- C:\WINDOWS\system32\SkyDriveTelemetry.dll
2017-05-09 12:48:46 ----A---- C:\WINDOWS\system32\SkyDrive.exe
2017-05-09 12:48:46 ----A---- C:\WINDOWS\system32\rasser.dll
2017-05-09 12:48:46 ----A---- C:\WINDOWS\system32\rasmxs.dll
2017-05-09 12:48:46 ----A---- C:\WINDOWS\system32\rasdiag.dll
2017-05-09 12:48:46 ----A---- C:\WINDOWS\system32\rascfg.dll
2017-05-09 12:48:46 ----A---- C:\WINDOWS\system32\QSVRMGMT.DLL
2017-05-09 12:48:46 ----A---- C:\WINDOWS\system32\QSHVHOST.DLL
2017-05-09 12:48:46 ----A---- C:\WINDOWS\system32\eventcls.dll
2017-05-09 12:48:46 ----A---- C:\WINDOWS\system32\drivers\wanarp.sys
2017-05-09 12:48:46 ----A---- C:\WINDOWS\system32\drivers\pdc.sys
2017-05-09 12:48:46 ----A---- C:\WINDOWS\system32\drivers\ndproxy.sys
2017-05-09 12:48:46 ----A---- C:\WINDOWS\system32\drivers\ndistapi.sys
2017-05-09 12:48:46 ----A---- C:\WINDOWS\system32\drivers\dam.sys
2017-05-09 12:48:46 ----A---- C:\WINDOWS\system32\DevicePairing.dll
2017-05-09 12:48:46 ----A---- C:\WINDOWS\splwow64.exe
2017-05-09 12:47:47 ----A---- C:\WINDOWS\system32\msra.exe
2017-05-09 12:40:51 ----A---- C:\WINDOWS\SYSWOW64\dhcpsapi.dll
2017-05-09 12:40:51 ----A---- C:\WINDOWS\system32\dhcpsapi.dll
2017-05-09 12:40:39 ----A---- C:\WINDOWS\SYSWOW64\dbghelp.dll
2017-05-09 12:40:39 ----A---- C:\WINDOWS\SYSWOW64\dbgeng.dll
2017-05-09 12:40:39 ----A---- C:\WINDOWS\system32\dbghelp.dll
2017-05-09 12:40:39 ----A---- C:\WINDOWS\system32\dbgeng.dll
2017-05-09 12:40:23 ----SD---- C:\Users\jirka_000\AppData\Roaming\Microsoft
2017-05-09 12:39:17 ----A---- C:\WINDOWS\SYSWOW64\wscapi.dll
2017-05-09 12:39:17 ----A---- C:\WINDOWS\system32\wscsvc.dll
2017-05-09 12:39:17 ----A---- C:\WINDOWS\system32\wscapi.dll
2017-05-09 12:39:00 ----AC---- C:\WINDOWS\system32\SysFxUI.dll
2017-05-09 12:39:00 ----A---- C:\WINDOWS\SYSWOW64\WMVXENCD.DLL
2017-05-09 12:39:00 ----A---- C:\WINDOWS\SYSWOW64\WMVSENCD.DLL
2017-05-09 12:39:00 ----A---- C:\WINDOWS\SYSWOW64\WMVSDECD.DLL
2017-05-09 12:39:00 ----A---- C:\WINDOWS\SYSWOW64\WMVENCOD.DLL
2017-05-09 12:39:00 ----A---- C:\WINDOWS\SYSWOW64\WMVDECOD.DLL
2017-05-09 12:39:00 ----A---- C:\WINDOWS\SYSWOW64\WMSPDMOE.DLL
2017-05-09 12:39:00 ----A---- C:\WINDOWS\SYSWOW64\WMSPDMOD.DLL
2017-05-09 12:39:00 ----A---- C:\WINDOWS\SYSWOW64\WMADMOE.DLL
2017-05-09 12:39:00 ----A---- C:\WINDOWS\SYSWOW64\WMADMOD.DLL
2017-05-09 12:39:00 ----A---- C:\WINDOWS\SYSWOW64\VIDRESZR.DLL
2017-05-09 12:39:00 ----A---- C:\WINDOWS\SYSWOW64\RESAMPLEDMO.DLL
2017-05-09 12:39:00 ----A---- C:\WINDOWS\SYSWOW64\qdvd.dll
2017-05-09 12:39:00 ----A---- C:\WINDOWS\SYSWOW64\msmpeg2adec.dll
2017-05-09 12:39:00 ----A---- C:\WINDOWS\SYSWOW64\MPG4DECD.DLL
2017-05-09 12:39:00 ----A---- C:\WINDOWS\SYSWOW64\MP4SDECD.DLL
2017-05-09 12:39:00 ----A---- C:\WINDOWS\SYSWOW64\MP43DECD.DLL
2017-05-09 12:39:00 ----A---- C:\WINDOWS\SYSWOW64\MP3DMOD.DLL
2017-05-09 12:39:00 ----A---- C:\WINDOWS\SYSWOW64\MFWMAAEC.DLL
2017-05-09 12:39:00 ----A---- C:\WINDOWS\SYSWOW64\mfvdsp.dll
2017-05-09 12:39:00 ----A---- C:\WINDOWS\SYSWOW64\mfps.dll
2017-05-09 12:39:00 ----A---- C:\WINDOWS\SYSWOW64\mfnetsrc.dll
2017-05-09 12:39:00 ----A---- C:\WINDOWS\SYSWOW64\mfnetcore.dll
2017-05-09 12:39:00 ----A---- C:\WINDOWS\SYSWOW64\mfcore.dll
2017-05-09 12:39:00 ----A---- C:\WINDOWS\SYSWOW64\evr.dll
2017-05-09 12:39:00 ----A---- C:\WINDOWS\SYSWOW64\devenum.dll
2017-05-09 12:39:00 ----A---- C:\WINDOWS\SYSWOW64\COLORCNV.DLL
2017-05-09 12:39:00 ----A---- C:\WINDOWS\system32\WMVXENCD.DLL
2017-05-09 12:39:00 ----A---- C:\WINDOWS\system32\WMVSENCD.DLL
2017-05-09 12:39:00 ----A---- C:\WINDOWS\system32\WMVSDECD.DLL
2017-05-09 12:39:00 ----A---- C:\WINDOWS\system32\WMVENCOD.DLL
2017-05-09 12:39:00 ----A---- C:\WINDOWS\system32\WMVDECOD.DLL
2017-05-09 12:39:00 ----A---- C:\WINDOWS\system32\WMSPDMOE.DLL
2017-05-09 12:39:00 ----A---- C:\WINDOWS\system32\WMSPDMOD.DLL
2017-05-09 12:39:00 ----A---- C:\WINDOWS\system32\WMALFXGFXDSP.dll
2017-05-09 12:39:00 ----A---- C:\WINDOWS\system32\WMADMOE.DLL
2017-05-09 12:39:00 ----A---- C:\WINDOWS\system32\WMADMOD.DLL
2017-05-09 12:39:00 ----A---- C:\WINDOWS\system32\VIDRESZR.DLL
2017-05-09 12:39:00 ----A---- C:\WINDOWS\system32\RESAMPLEDMO.DLL
2017-05-09 12:39:00 ----A---- C:\WINDOWS\system32\qdvd.dll
2017-05-09 12:39:00 ----A---- C:\WINDOWS\system32\msmpeg2adec.dll
2017-05-09 12:39:00 ----A---- C:\WINDOWS\system32\MPG4DECD.DLL
2017-05-09 12:39:00 ----A---- C:\WINDOWS\system32\MP4SDECD.DLL
2017-05-09 12:39:00 ----A---- C:\WINDOWS\system32\MP43DECD.DLL
2017-05-09 12:39:00 ----A---- C:\WINDOWS\system32\MP3DMOD.DLL
2017-05-09 12:39:00 ----A---- C:\WINDOWS\system32\MFWMAAEC.DLL
2017-05-09 12:39:00 ----A---- C:\WINDOWS\system32\mfvdsp.dll
2017-05-09 12:39:00 ----A---- C:\WINDOWS\system32\mfps.dll
2017-05-09 12:39:00 ----A---- C:\WINDOWS\system32\mfnetsrc.dll
2017-05-09 12:39:00 ----A---- C:\WINDOWS\system32\mfnetcore.dll
2017-05-09 12:39:00 ----A---- C:\WINDOWS\system32\mfcore.dll
2017-05-09 12:39:00 ----A---- C:\WINDOWS\system32\evr.dll
2017-05-09 12:39:00 ----A---- C:\WINDOWS\system32\devenum.dll
2017-05-09 12:39:00 ----A---- C:\WINDOWS\system32\COLORCNV.DLL
2017-05-09 12:38:28 ----A---- C:\WINDOWS\SYSWOW64\PhotoMetadataHandler.dll
2017-05-09 12:38:28 ----A---- C:\WINDOWS\system32\PhotoMetadataHandler.dll
2017-05-09 12:38:15 ----A---- C:\WINDOWS\SYSWOW64\notepad.exe
2017-05-09 12:38:15 ----A---- C:\WINDOWS\system32\notepad.exe
2017-05-09 12:38:15 ----A---- C:\WINDOWS\notepad.exe
2017-05-09 12:38:04 ----A---- C:\WINDOWS\system32\drivers\udfs.sys
2017-05-09 12:37:42 ----A---- C:\WINDOWS\SYSWOW64\authz.dll
2017-05-09 12:37:42 ----A---- C:\WINDOWS\system32\authz.dll
2017-05-09 12:37:31 ----A---- C:\WINDOWS\SYSWOW64\MrmCoreR.dll
2017-05-09 12:37:31 ----A---- C:\WINDOWS\system32\MrmCoreR.dll
2017-05-09 12:37:19 ----AC---- C:\WINDOWS\system32\drivers\disk.sys
2017-05-09 12:37:03 ----A---- C:\WINDOWS\system32\SystemSettingsDatabase.dll
2017-05-09 12:37:03 ----A---- C:\WINDOWS\system32\SystemSettings.Handlers.dll
2017-05-09 12:37:03 ----A---- C:\WINDOWS\system32\MDMAgent.exe
2017-05-09 12:36:44 ----A---- C:\WINDOWS\system32\seclogon.dll
2017-05-09 12:36:08 ----D---- C:\WINDOWS\en-GB
2017-05-09 12:36:08 ----D---- C:\Program Files\Windows Journal
2017-05-09 12:36:07 ----D---- C:\WINDOWS\SYSWOW64\drivers\en-GB
2017-05-09 12:36:07 ----D---- C:\WINDOWS\system32\drivers\en-GB
2017-05-09 12:25:45 ----A---- C:\WINDOWS\system32\apphelp.dll
2017-05-09 12:25:43 ----A---- C:\WINDOWS\system32\drivers\RTWAVES30.dat
2017-05-09 12:25:35 ----D---- C:\Program Files\Realtek
2017-05-09 12:25:34 ----D---- C:\WINDOWS\SYSWOW64\RTCOM
2017-05-09 12:25:26 ----D---- C:\Program Files (x86)\Intel
2017-05-09 12:25:23 ----AC---- C:\WINDOWS\system32\drivers\sermouse.sys
2017-05-09 12:25:23 ----AC---- C:\WINDOWS\system32\drivers\mouhid.sys
2017-05-09 12:25:23 ----AC---- C:\WINDOWS\system32\drivers\mouclass.sys
2017-05-09 12:25:23 ----AC---- C:\WINDOWS\system32\drivers\kbdhid.sys
2017-05-09 12:25:23 ----AC---- C:\WINDOWS\system32\drivers\kbdclass.sys
2017-05-09 12:25:23 ----AC---- C:\WINDOWS\system32\drivers\i8042prt.sys
2017-05-09 12:25:23 ----A---- C:\WINDOWS\SYSWOW64\OpenCL.DLL
2017-05-09 12:25:23 ----A---- C:\WINDOWS\system32\OpenCL.DLL
2017-05-09 12:24:51 ----A---- C:\WINDOWS\SYSWOW64\UIAutomationCore.dll
2017-05-09 12:24:51 ----A---- C:\WINDOWS\system32\UIAutomationCore.dll
2017-05-09 12:24:35 ----D---- C:\ProgramData\NVIDIA Corporation
2017-05-09 12:24:26 ----D---- C:\Program Files (x86)\NVIDIA Corporation
2017-05-09 12:24:25 ----D---- C:\Program Files\NVIDIA Corporation
2017-05-09 12:24:21 ----A---- C:\WINDOWS\SYSWOW64\EncDec.dll
2017-05-09 12:24:21 ----A---- C:\WINDOWS\SYSWOW64\CPFilters.dll
2017-05-09 12:24:21 ----A---- C:\WINDOWS\SYSWOW64\cfgbkend.dll
2017-05-09 12:24:21 ----A---- C:\WINDOWS\system32\EncDec.dll
2017-05-09 12:24:21 ----A---- C:\WINDOWS\system32\CPFilters.dll
2017-05-09 12:24:21 ----A---- C:\WINDOWS\system32\cfgbkend.dll
2017-05-09 12:24:05 ----A---- C:\WINDOWS\system32\WiFiDisplay.dll
2017-05-09 12:23:41 ----A---- C:\WINDOWS\SYSWOW64\ws2_32.dll
2017-05-09 12:23:41 ----A---- C:\WINDOWS\SYSWOW64\mswsock.dll
2017-05-09 12:23:41 ----A---- C:\WINDOWS\system32\ws2_32.dll
2017-05-09 12:23:41 ----A---- C:\WINDOWS\system32\mswsock.dll
2017-05-09 12:23:41 ----A---- C:\WINDOWS\system32\drivers\netbt.sys
2017-05-09 12:23:32 ----A---- C:\WINDOWS\SYSWOW64\ntprint.dll
2017-05-09 12:23:32 ----A---- C:\WINDOWS\system32\ntprint.dll
2017-05-09 12:23:32 ----A---- C:\WINDOWS\system32\inetpp.dll
2017-05-09 12:23:22 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.dll
2017-05-09 12:23:22 ----A---- C:\WINDOWS\system32\Windows.UI.dll
2017-05-09 12:23:13 ----AC---- C:\WINDOWS\system32\drivers\bthhfenum.sys
2017-05-09 12:22:54 ----A---- C:\WINDOWS\SYSWOW64\WSShared.dll
2017-05-09 12:22:54 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2017-05-09 12:22:54 ----A---- C:\WINDOWS\system32\WSShared.dll
2017-05-09 12:22:54 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2017-05-09 12:22:31 ----A---- C:\WINDOWS\system32\nlasvc.dll
2017-05-09 12:22:31 ----A---- C:\WINDOWS\system32\ncsi.dll
2017-05-09 12:22:23 ----A---- C:\WINDOWS\system32\LockScreenContentServer.exe
2017-05-09 12:22:07 ----A---- C:\WINDOWS\SYSWOW64\eapphost.dll
2017-05-09 12:22:07 ----A---- C:\WINDOWS\SYSWOW64\eappgnui.dll
2017-05-09 12:22:07 ----A---- C:\WINDOWS\SYSWOW64\eappcfg.dll
2017-05-09 12:22:07 ----A---- C:\WINDOWS\SYSWOW64\eapp3hst.dll
2017-05-09 12:22:07 ----A---- C:\WINDOWS\system32\eapphost.dll
2017-05-09 12:22:07 ----A---- C:\WINDOWS\system32\eappgnui.dll
2017-05-09 12:22:07 ----A---- C:\WINDOWS\system32\eappcfg.dll
2017-05-09 12:22:07 ----A---- C:\WINDOWS\system32\eapp3hst.dll
2017-05-09 12:21:51 ----A---- C:\WINDOWS\SYSWOW64\dsparse.dll
2017-05-09 12:21:51 ----A---- C:\WINDOWS\system32\dsparse.dll
2017-05-09 12:21:43 ----A---- C:\WINDOWS\SYSWOW64\tdh.dll
2017-05-09 12:21:43 ----A---- C:\WINDOWS\system32\tdh.dll
2017-05-09 12:20:54 ----A---- C:\WINDOWS\SYSWOW64\comctl32.dll
2017-05-09 12:20:54 ----A---- C:\WINDOWS\system32\comctl32.dll
2017-05-09 12:20:46 ----A---- C:\WINDOWS\SYSWOW64\WMPhoto.dll
2017-05-09 12:20:46 ----A---- C:\WINDOWS\system32\WMPhoto.dll
2017-05-09 12:20:33 ----D---- C:\WINDOWS\Prefetch
2017-05-09 12:20:31 ----A---- C:\WINDOWS\SYSWOW64\clfsw32.dll
2017-05-09 12:20:31 ----A---- C:\WINDOWS\system32\clfsw32.dll
2017-05-09 12:20:21 ----A---- C:\WINDOWS\system32\drivers\usb8023.sys
2017-05-09 12:20:14 ----A---- C:\WINDOWS\SYSWOW64\WinSync.dll
2017-05-09 12:20:14 ----A---- C:\WINDOWS\system32\WinSync.dll
2017-05-09 12:20:05 ----AC---- C:\WINDOWS\system32\drivers\sdbus.sys
2017-05-09 12:20:05 ----AC---- C:\WINDOWS\system32\drivers\dumpsd.sys
2017-05-09 12:19:57 ----A---- C:\WINDOWS\SYSWOW64\sspicli.dll
2017-05-09 12:19:57 ----A---- C:\WINDOWS\system32\sspicli.dll
2017-05-09 12:19:57 ----A---- C:\WINDOWS\system32\drivers\ksecdd.sys
2017-05-09 12:19:45 ----A---- C:\WINDOWS\system32\WindowsAnytimeUpgradeui.exe
2017-05-09 12:19:37 ----AC---- C:\WINDOWS\system32\drivers\bthpan.sys
2017-05-09 12:19:30 ----A---- C:\WINDOWS\system32\drivers\ahcache.sys
2017-05-09 12:19:22 ----A---- C:\WINDOWS\system32\winlogon.exe
2017-05-09 12:19:13 ----A---- C:\WINDOWS\SYSWOW64\msvcr120_clr0400.dll
2017-05-09 12:19:13 ----A---- C:\WINDOWS\SYSWOW64\msvcp120_clr0400.dll
2017-05-09 12:19:13 ----A---- C:\WINDOWS\system32\msvcr120_clr0400.dll
2017-05-09 12:19:13 ----A---- C:\WINDOWS\system32\msvcp120_clr0400.dll
2017-05-09 12:18:52 ----A---- C:\WINDOWS\system32\TSWbPrxy.exe
2017-05-09 12:18:44 ----A---- C:\WINDOWS\system32\drivers\netio.sys
2017-05-09 12:18:28 ----A---- C:\WINDOWS\SYSWOW64\rsaenh.dll
2017-05-09 12:18:28 ----A---- C:\WINDOWS\system32\rsaenh.dll
2017-05-09 12:17:41 ----AC---- C:\WINDOWS\system32\drivers\rfcomm.sys
2017-05-09 12:17:41 ----AC---- C:\WINDOWS\system32\drivers\hidbth.sys