Prosím o kontrolu PC
Napsal: 05 zář 2017 10:59
Dobrý den,
prosím o kontrolu notebooku, abych v něm neměl nějaký spyware. Předem moc děkuji
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 20-08-2017
Ran by C (administrator) on LAPTOP-QEHE5JQ9 (05-09-2017 11:49:14)
Running from C:\Users\C\Desktop
Loaded Profiles: C (Available Profiles: defaultuser0 & C)
Platform: Windows 10 Home Version 1607 (X64) Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: Edge)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
(Intel Corporation) C:\Windows\SysWOW64\esif_uf.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe
(Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
(Intel Corporation) C:\Windows\System32\ibtsiva.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
(Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(HP Inc.) C:\Program Files (x86)\HP\HP JumpStart Bridge\HPJumpStartBridge.exe
(HP Inc.) C:\Program Files\HPCommRecovery\HPCommRecovery.exe
(Intel Corporation) C:\Program Files (x86)\Intel\TXE Components\DAL\jhi_service.exe
(CyberLink) C:\Program Files\CyberLink\Shared files\RichVideo64.exe
(Intel Corporation) C:\Windows\Temp\DPTF\esif_assist_64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
() C:\Program Files (x86)\HP\HP JumpStart Bridge\HPJumpStartProvider.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel Corporation) C:\Windows\System32\igfxHK.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(HP Inc.) C:\Program Files (x86)\HP\HP System Event\HPMSGSVC.exe
(HP) C:\Program Files (x86)\HP\HP Wireless Button Driver\HPRadioMgr64.exe
(HP Inc.) C:\Program Files (x86)\HP\HPAudioSwitch\HPAudioSwitch.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
() C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.19.856.0_x64__kzf8qxf38zg5c\SkypeHost.exe
(McAfee, Inc.) C:\Program Files\Common Files\McAfee\platform\CommonBuild\x64B5D4.tmp
(McAfee, Inc.) C:\Program Files\Common Files\McAfee\platform\McU112E.tmp
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(HP) C:\Program Files (x86)\HP\Shared\hpqwmiex.exe
(McAfee, Inc.) C:\Program Files\Common Files\McAfee\platform\CommonBuild\x64B5D4.tmp
(McAfee, Inc.) C:\Program Files\Common Files\McAfee\platform\McU112E.tmp
(Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeC2RClient.exe
(McAfee, Inc.) C:\Program Files\Common Files\McAfee\platform\McAF00A.tmp
(Microsoft Corporation) C:\Windows\System32\InstallAgent.exe
(HP Inc.) C:\Program Files (x86)\HP\HP System Event\HPWMISVC.exe
(Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(McAfee, Inc.) C:\Program Files\Common Files\McAfee\ModuleCore\ModuleCoreService.exe
(McAfee, Inc.) C:\Program Files\Common Files\McAfee\CSP\1.9.829.0\McCSPServiceHost.exe
(McAfee, Inc.) C:\Program Files\Common Files\McAfee\SystemCore\mfemms.exe
(McAfee, Inc.) C:\Windows\System32\mfevtps.exe
(McAfee, Inc.) C:\Windows\System32\mfevtps.exe
(McAfee, Inc.) C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe
(McAfee, Inc.) C:\Program Files\mcafee\msc\McAPExe.exe
(McAfee, Inc.) C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe
(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe
(Microsoft Corporation) C:\Windows\System32\browser_broker.exe
(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe
(McAfee, Inc.) C:\Program Files\Common Files\McAfee\platform\McUICnt.exe
(McAfee, Inc.) C:\Program Files\Common Files\McAfee\platform\mcsvchost\McSvHost.exe
(McAfee, Inc.) C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe
(McAfee, Inc.) C:\Program Files\mcafee\virusscan\McVsShld.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(McAfee, Inc.) C:\Program Files\Common Files\McAfee\platform\core\mchost.exe
(Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe
(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe
(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe
(Intel Security) C:\Program Files\Common Files\McAfee\ClientAnalytics\McClientAnalytics.exe
(McAfee, Inc.) C:\Program Files\mcafee\virusscan\McVsMap.exe
(Intel Security) C:\Program Files\Common Files\McAfee\ClientAnalytics\McClientAnalytics.exe
(forum.viry.cz) C:\Users\C\Downloads\FRSTLauncher (1).exe
==================== Registry (Whitelisted) ====================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [8903176 2016-10-14] (Realtek Semiconductor)
HKLM-x32\...\Run: [HPMessageService] => C:\Program Files (x86)\HP\HP System Event\HPMSGSVC.exe [705784 2016-06-20] (HP Inc.)
HKLM-x32\...\Run: [HPRadioMgr] => C:\Program Files (x86)\HP\HP Wireless Button Driver\HPRadioMgr64.exe [324488 2016-08-02] (HP)
HKU\S-1-5-21-2775449184-814585837-182124203-1001\...\MountPoints2: {13fbf316-9085-11e7-9457-3c52828c12c2} - "F:\HiSuiteDownLoader.exe"
HKU\S-1-5-21-2775449184-814585837-182124203-1001\...\MountPoints2: {13fbf38a-9085-11e7-9457-3c52828c12c2} - "F:\HiSuiteDownLoader.exe"
HKU\S-1-5-21-2775449184-814585837-182124203-1001\...\MountPoints2: {13fbf46a-9085-11e7-9457-3c52828c12c2} - "F:\HiSuiteDownLoader.exe"
HKU\S-1-5-21-2775449184-814585837-182124203-1001\...\MountPoints2: {15b9ab15-90ee-11e7-9458-3c52828c12c2} - "F:\Lenovo_Suite.exe"
HKU\S-1-5-21-2775449184-814585837-182124203-1001\...\MountPoints2: {15b9ab31-90ee-11e7-9458-3c52828c12c2} - "F:\Lenovo_Suite.exe"
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\HP JumpStart Launch.lnk [2017-09-03]
ShortcutTarget: HP JumpStart Launch.lnk -> c:\Windows\Installer\{B90CB0DE-2E60-41C4-9857-466EB98192BF}\HPlogo_blue.ico ()
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{9e7dd22e-3d9c-456c-bd11-7fcc3bffe38e}: [DhcpNameServer] 192.168.1.1
Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.bing.com?pc=HCTE
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.bing.com?pc=HCTE
HKU\S-1-5-21-2775449184-814585837-182124203-1001\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKU\S-1-5-21-2775449184-814585837-182124203-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.bing.com?pc=HCTE
SearchScopes: HKLM -> {F3C247F2-F433-4639-A471-961791ADA9FC} URL = hxxp://www.amazon.co.uk/s/ref=azs_osd_ieauk?ie ... earchTerms}
SearchScopes: HKLM-x32 -> {F3C247F2-F433-4639-A471-961791ADA9FC} URL = hxxp://www.amazon.co.uk/s/ref=azs_osd_ieauk?ie ... earchTerms}
SearchScopes: HKU\S-1-5-21-2775449184-814585837-182124203-1001 -> {F3C247F2-F433-4639-A471-961791ADA9FC} URL = hxxp://www.amazon.co.uk/s/ref=azs_osd_ieauk?ie ... earchTerms}
BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2017-09-03] (Microsoft Corporation)
BHO: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\GROOVEEX.DLL [2017-09-03] (Microsoft Corporation)
BHO: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll [2016-08-05] (HP Inc.)
BHO-x32: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2016-08-05] (HP Inc.)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2017-09-03] (Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2017-09-03] (Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2017-09-03] (Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2017-09-03] (Microsoft Corporation)
Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\Program Files\mcafee\msc\McSnIePl64.dll [2016-09-23] (McAfee, Inc.)
Filter-x32: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\Program Files (x86)\McAfee\msc\McSnIePl.dll [2016-09-23] (McAfee, Inc.)
FireFox:
========
FF HKLM-x32\...\Thunderbird\Extensions: [msktbird@mcafee.com] - C:\Program Files\McAfee\MSK
FF Extension: (McAfee Anti-Spam Thunderbird Extension) - C:\Program Files\McAfee\MSK [2017-09-05] [not signed]
FF Plugin: @mcafee.com/MSC,version=10 -> c:\PROGRA~1\mcafee\msc\NPMCSN~1.DLL [2016-09-23] ()
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.56 -> C:\Program Files (x86)\Intel\TXE Components\IPT\npIntelWebAPIIPT.dll [2014-07-01] (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\TXE Components\IPT\npIntelWebAPIUpdater.dll [2014-07-01] (Intel Corporation)
FF Plugin-x32: @mcafee.com/MSC,version=10 -> c:\PROGRA~2\mcafee\msc\NPMCSN~1.DLL [2016-09-23] ()
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2017-09-03] (Microsoft Corporation)
==================== Services (Whitelisted) ====================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S2 0285631504600924mcinstcleanup; C:\windows\TEMP\028563~1.EXE [961888 2016-05-16] (McAfee, Inc.)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [4424384 2017-08-28] (Microsoft Corporation)
S2 dbupdate; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2017-09-03] (Dropbox, Inc.)
S3 dbupdatem; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2017-09-03] (Dropbox, Inc.)
R2 esifsvc; C:\windows\SysWoW64\esif_uf.exe [1419424 2016-07-05] (Intel Corporation)
R2 HomeNetSvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [596768 2016-07-07] (McAfee, Inc.)
R2 HP Comm Recover; C:\Program Files\HPCommRecovery\HPCommRecovery.exe [1268736 2016-10-05] (HP Inc.) [File not signed]
R2 HPJumpStartBridge; c:\Program Files (x86)\HP\HP JumpStart Bridge\HPJumpStartBridge.exe [461848 2016-08-05] (HP Inc.)
R3 hpqcaslwmiex; C:\Program Files (x86)\HP\Shared\hpqwmiex.exe [1031704 2016-06-03] (HP)
S2 HPSupportSolutionsFrameworkService; C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe [29760 2016-08-04] (HP Inc.)
R2 HPWMISVC; c:\Program Files (x86)\HP\HP System Event\HPWMISVC.exe [631800 2016-06-20] (HP Inc.)
R2 igfxCUIService2.0.0.0; C:\windows\system32\igfxCUIService.exe [356336 2016-09-20] (Intel Corporation)
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\TXE Components\TCS\SocketHeciServer.exe [887784 2015-09-03] (Intel(R) Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\TXE Components\DAL\jhi_service.exe [174368 2015-04-21] (Intel Corporation)
R2 McAPExe; C:\Program Files\McAfee\MSC\McAPExe.exe [993824 2016-09-23] (McAfee, Inc.)
S3 McAWFwk; c:\Program Files\Common Files\McAfee\ActWiz\McAWFwk.exe [419096 2016-04-01] (McAfee, Inc.)
R2 McBootDelayStartSvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [596768 2016-07-07] (McAfee, Inc.)
R2 mccspsvc; C:\Program Files\Common Files\McAfee\CSP\1.9.829.0\\McCSPServiceHost.exe [1910000 2016-05-31] (McAfee, Inc.)
R2 McMPFSvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [596768 2016-07-07] (McAfee, Inc.)
R2 McNaiAnn; C:\Program Files\Common Files\McAfee\platform\McSvcHost\McSvHost.exe [596768 2016-07-07] (McAfee, Inc.)
S3 McODS; C:\Program Files\mcafee\VirusScan\mcods.exe [816128 2016-06-21] (McAfee, Inc.)
R2 mcpltsvc; C:\Program Files\Common Files\McAfee\platform\McSvcHost\McSvHost.exe [596768 2016-07-07] (McAfee, Inc.)
R2 McProxy; C:\Program Files\Common Files\McAfee\platform\McSvcHost\McSvHost.exe [596768 2016-07-07] (McAfee, Inc.)
R3 mfefire; C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe [232688 2016-04-26] (McAfee, Inc.)
R2 mfemms; C:\Program Files\Common Files\McAfee\SystemCore\\mfemms.exe [382456 2016-08-03] (McAfee, Inc.)
R3 mfevtp; C:\windows\system32\mfevtps.exe [277744 2016-04-26] (McAfee, Inc.)
R2 ModuleCoreService; C:\Program Files\Common Files\McAfee\ModuleCore\ModuleCoreService.exe [1454216 2016-09-13] (McAfee, Inc.)
R3 MSK80Service; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [596768 2016-07-07] (McAfee, Inc.)
S3 MyWiFiDHCPDNS; c:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [268704 2016-08-04] ()
S2 PEFService; C:\Program Files\Common Files\Intel Security\PEF\CORE\PEFService.exe [1045336 2016-05-25] (Intel Security, Inc.)
R2 RichVideo64; C:\Program Files\CyberLink\Shared files\RichVideo64.exe [614664 2016-03-23] (CyberLink)
R2 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [317960 2016-10-14] (Realtek Semiconductor)
R2 SynTPEnhService; C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [278616 2017-04-26] (Synaptics Incorporated)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [347328 2016-07-16] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [103720 2016-07-16] (Microsoft Corporation)
R2 ZeroConfigService; c:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [3732896 2016-08-04] (Intel® Corporation)
R2 ibtsiva; %SystemRoot%\system32\ibtsiva [X]
===================== Drivers (Whitelisted) ======================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 cfwids; C:\windows\System32\drivers\cfwids.sys [78632 2016-08-02] (McAfee, Inc.)
R3 dptf_acpi; C:\windows\System32\drivers\dptf_acpi.sys [55792 2016-07-05] (Intel Corporation)
R3 dptf_cpu; C:\windows\System32\drivers\dptf_cpu.sys [52208 2016-07-05] (Intel Corporation)
R3 esif_lf; C:\windows\system32\DRIVERS\esif_lf.sys [260080 2016-07-05] (Intel Corporation)
S3 HipShieldK; C:\windows\System32\drivers\HipShieldK.sys [216704 2016-08-02] (McAfee, Inc.)
R3 ibtusb; C:\windows\system32\DRIVERS\ibtusb.sys [244744 2017-04-13] (Intel Corporation)
R3 igfxLP; C:\windows\system32\DRIVERS\igdkmd64lp.sys [7400936 2016-09-20] (Intel Corporation)
R3 mfeaack; C:\windows\System32\drivers\mfeaack.sys [419624 2016-08-02] (McAfee, Inc.)
R3 mfeavfk; C:\windows\System32\drivers\mfeavfk.sys [349480 2016-08-02] (McAfee, Inc.)
S0 mfeelamk; C:\windows\System32\drivers\mfeelamk.sys [83608 2016-08-02] (McAfee, Inc.)
R3 mfefirek; C:\windows\System32\drivers\mfefirek.sys [493352 2016-08-02] (McAfee, Inc.)
R0 mfehidk; C:\windows\System32\drivers\mfehidk.sys [843048 2016-08-02] (McAfee, Inc.)
R3 mfencbdc; C:\windows\System32\DRIVERS\mfencbdc.sys [519456 2016-08-01] (McAfee, Inc.)
S3 mfencrk; C:\windows\System32\DRIVERS\mfencrk.sys [100136 2016-08-01] (McAfee, Inc.)
R0 mfewfpk; C:\windows\System32\drivers\mfewfpk.sys [243496 2016-08-02] (McAfee, Inc.)
S3 NetAdapterCx; C:\windows\System32\drivers\NetAdapterCx.sys [90624 2016-07-16] ()
S3 Netwtw04; C:\windows\System32\drivers\Netwtw04.sys [7308560 2016-09-13] (Intel Corporation)
R3 rt640x64; C:\windows\System32\drivers\rt640x64.sys [943112 2016-08-26] (Realtek )
S3 RTSUER; C:\windows\system32\Drivers\RtsUer.sys [418784 2016-09-23] (Realsil Semiconductor Corporation)
S3 SmbDrv; C:\windows\System32\drivers\Smb_driver_AMDASF.sys [60008 2016-08-25] (Synaptics Incorporated)
R3 SmbDrvI; C:\windows\system32\DRIVERS\Smb_driver_Intel.sys [72792 2017-04-26] (Synaptics Incorporated)
R3 TXEIx64; C:\windows\System32\drivers\TXEIx64.sys [146200 2015-10-15] (Intel Corporation)
S3 WdBoot; C:\windows\system32\drivers\WdBoot.sys [44056 2016-07-16] (Microsoft Corporation)
S3 WdFilter; C:\windows\system32\drivers\WdFilter.sys [290144 2016-07-16] (Microsoft Corporation)
S3 WdNisDrv; C:\windows\System32\Drivers\WdNisDrv.sys [123232 2016-07-16] (Microsoft Corporation)
R3 WirelessButtonDriver64; C:\windows\system32\DRIVERS\WirelessButtonDriver64.sys [32832 2016-07-31] (HP)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2017-09-05 11:49 - 2017-09-05 11:49 - 000018733 _____ C:\Users\C\Desktop\FRST.txt
2017-09-05 11:48 - 2017-09-05 11:48 - 000112640 _____ (forum.viry.cz) C:\Users\C\Downloads\FRSTLauncher (1).exe
2017-09-05 11:47 - 2017-09-05 11:47 - 000000000 _____ C:\Users\C\Downloads\FRSTLauncher.exe.mia70t0.partial
2017-09-05 11:23 - 2017-09-05 11:23 - 000003224 _____ C:\windows\System32\Tasks\HPCeeScheduleForC
2017-09-05 11:23 - 2017-09-05 11:23 - 000000348 _____ C:\windows\Tasks\HPCeeScheduleForC.job
2017-09-05 11:23 - 2017-09-05 11:23 - 000000000 ____D C:\Users\C\AppData\Local\HP_Development_Company,_L
2017-09-05 11:06 - 2017-09-05 11:06 - 000000000 ____D C:\Users\C\Documents\Vlastní šablony Office
2017-09-05 11:04 - 2017-09-05 11:49 - 000000000 ____D C:\FRST
2017-09-05 10:57 - 2017-09-05 10:57 - 002395648 _____ (Farbar) C:\Users\C\Desktop\FRST64.exe
2017-09-05 10:56 - 2017-09-05 10:56 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee
2017-09-04 08:11 - 2017-09-04 08:43 - 000000000 ____D C:\Program Files\rempl
2017-09-04 07:55 - 2017-09-04 07:55 - 000001417 _____ C:\Users\C\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aktualizace a nastavení ochrany osobních údajů.lnk
2017-09-04 07:55 - 2017-09-04 07:55 - 000000000 ____D C:\Users\C\AppData\Local\UNP
2017-09-04 01:21 - 2017-09-04 01:21 - 000903535 _____ C:\Users\C\Downloads\print.pdf
2017-09-04 01:18 - 2017-09-04 01:23 - 000000000 ____D C:\windows\system32\MRT
2017-09-04 01:18 - 2017-09-04 01:18 - 140394280 ____C (Microsoft Corporation) C:\windows\system32\MRT.exe
2017-09-04 01:17 - 2017-09-04 01:18 - 000000000 ____D C:\Program Files\UNP
2017-09-04 01:17 - 2017-09-04 01:17 - 000000000 ____D C:\windows\system32\UNP
2017-09-04 01:09 - 2016-12-21 09:08 - 000142848 _____ (Microsoft Corporation) C:\windows\system32\poqexec.exe
2017-09-04 01:09 - 2016-12-21 06:44 - 000120320 _____ (Microsoft Corporation) C:\windows\SysWOW64\poqexec.exe
2017-09-04 01:00 - 2017-09-04 01:00 - 000103859 _____ C:\Users\C\Downloads\towelroot-1-0-en-android.apk
2017-09-03 23:45 - 2017-09-03 23:45 - 000003366 _____ C:\windows\System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-2775449184-814585837-182124203-1001
2017-09-03 23:40 - 2017-09-03 23:40 - 000000000 ____D C:\Users\C\AppData\Roaming\Skype
2017-09-03 16:49 - 2017-09-03 16:49 - 000000000 ___HD C:\windows\system32\CanonMF Uninstaller Information
2017-09-03 16:49 - 2017-09-03 16:49 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon
2017-09-03 16:49 - 2011-05-18 08:46 - 000416768 _____ (CANON INC.) C:\windows\system32\CNCC8300C.DLL
2017-09-03 16:49 - 2011-05-18 08:46 - 000275456 _____ (CANON INC.) C:\windows\system32\CNCLSU42b.DLL
2017-09-03 16:49 - 2011-05-18 08:46 - 000157696 _____ (CANON INC.) C:\windows\system32\CNCE8300C.DLL
2017-09-03 16:49 - 2011-05-18 08:46 - 000146432 _____ (CANON INC.) C:\windows\system32\CNCLSD42b.DLL
2017-09-03 16:49 - 2011-05-18 08:46 - 000134656 _____ (CANON INC.) C:\windows\system32\CNCLSI42b.DLL
2017-09-03 16:49 - 2011-05-18 08:46 - 000123392 _____ (CANON INC.) C:\windows\system32\CNCLST42b.DLL
2017-09-03 16:49 - 2011-05-18 08:46 - 000122368 _____ (CANON INC.) C:\windows\system32\CNCI8300C.DLL
2017-09-03 16:49 - 2011-05-18 08:46 - 000100352 _____ (CANON INC.) C:\windows\system32\CNCLSC42b.DLL
2017-09-03 16:49 - 2011-05-18 08:46 - 000049664 _____ (CANON INC.) C:\windows\system32\CNCLSO42b.dll
2017-09-03 16:49 - 2011-05-18 08:45 - 000155136 _____ (CANON INC.) C:\windows\system32\CNCL8300C.DLL
2017-09-03 16:49 - 2011-03-08 12:20 - 000000439 _____ C:\windows\system32\CNCMFP42.INI
2017-09-03 16:48 - 2017-09-03 16:48 - 000000000 ____D C:\Users\C\Downloads\MF8380CdwMFDriversV2055W64EN
2017-09-03 16:48 - 2017-09-03 16:48 - 000000000 ____D C:\Program Files\Canon
2017-09-03 16:48 - 2011-04-11 16:43 - 000968192 _____ (CANON INC.) C:\windows\system32\CNAS0MOK.DLL
2017-09-03 16:45 - 2017-09-03 16:48 - 047369424 _____ C:\Users\C\Downloads\MF8380CdwMFDriversV2055W64EN.exe
2017-09-03 16:43 - 2017-09-03 16:43 - 009640061 _____ C:\Users\C\Downloads\MF8380Cdw_FirmwareUpdateTool_V1004_EN.dmg
2017-09-03 16:39 - 2017-09-03 16:39 - 014073408 _____ C:\Users\C\Downloads\LBP5000_R150_V331_W64_uk_EN_1.exe
2017-09-03 16:37 - 2017-09-03 16:37 - 003007502 _____ C:\Users\C\Documents\jizdni rad2.pdf
2017-09-03 16:35 - 2017-09-03 16:35 - 002430066 _____ C:\Users\C\Documents\jizdni rad.pdf
2017-09-03 16:33 - 2017-09-05 11:26 - 000004020 _____ C:\windows\System32\Tasks\Intel Security DAT Reputation (AMCore) periodic endpoint safety pulse
2017-09-03 16:33 - 2017-09-05 10:45 - 000004208 _____ C:\windows\System32\Tasks\Intel Security DAT Reputation (AMCore) Post DAT update endpoint safety pulse
2017-09-03 13:00 - 2017-09-03 13:00 - 000000000 ____D C:\Users\C\Desktop\OpenOffice 4.1.3 (cs) Installation Files
2017-09-03 12:59 - 2017-09-03 12:59 - 000120411 _____ C:\Users\C\Documents\das.pdf
2017-09-03 12:55 - 2017-09-03 13:00 - 128605432 _____ C:\Users\C\Downloads\Apache_OpenOffice_4.1.3_Win_x86_install_cs.exe
2017-09-03 12:35 - 2017-09-03 12:35 - 000000000 ____D C:\Users\C\AppData\Roaming\KingRoot
2017-09-03 12:34 - 2017-09-04 00:48 - 000000000 ____D C:\Program Files (x86)\KingRoot
2017-09-03 12:34 - 2017-09-03 16:28 - 000000000 ____D C:\Users\C\AppData\Roaming\Tencent
2017-09-03 12:34 - 2017-09-03 12:34 - 000001083 _____ C:\Users\Public\Desktop\KingRoot.lnk
2017-09-03 12:34 - 2017-09-03 12:34 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\KingRoot
2017-09-03 12:33 - 2017-09-03 12:34 - 032120384 _____ (KingRoot ) C:\Users\C\Downloads\KingRoot_pc_en.exe
2017-09-03 12:15 - 2017-09-03 12:15 - 000000000 ____H C:\windows\system32\Drivers\Msft_User_WpdMtpDr_01_11_00.Wdf
2017-09-03 12:15 - 2017-09-03 12:15 - 000000000 ____D C:\Users\C\.android
2017-09-03 12:11 - 2017-09-03 12:11 - 000002192 _____ C:\Users\C\Desktop\One Click Root.lnk
2017-09-03 12:11 - 2017-09-03 12:11 - 000001264 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\One Click Root.lnk
2017-09-03 12:11 - 2017-09-03 12:11 - 000000000 ____D C:\Users\C\AppData\Local\oneClickRoot
2017-09-03 12:11 - 2017-09-03 12:11 - 000000000 ____D C:\Users\C\AppData\Local\AWSToolkit
2017-09-03 12:11 - 2017-09-03 12:11 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\One Click Root
2017-09-03 12:11 - 2017-09-03 12:11 - 000000000 ____D C:\Program Files (x86)\One Click Root
2017-09-03 12:10 - 2017-09-03 12:10 - 000000000 ____D C:\Users\C\AppData\Roaming\One Click Root
2017-09-03 12:09 - 2017-09-03 12:09 - 001036272 _____ () C:\Users\C\Downloads\OneClickRoot (1).exe
2017-09-03 12:09 - 2017-09-03 12:09 - 000000000 ____D C:\Users\C\AppData\Local\IsolatedStorage
2017-09-03 12:07 - 2017-09-03 12:07 - 001036272 _____ () C:\Users\C\Downloads\OneClickRoot.exe
2017-09-03 11:54 - 2017-09-04 14:09 - 000000000 ____D C:\Users\C\AppData\Roaming\hpqLog
2017-09-03 11:54 - 2017-09-03 11:54 - 000000000 ____D C:\Users\C\AppData\Local\Hewlett-Packard
2017-09-03 11:25 - 2017-09-03 11:25 - 000000000 ____D C:\Users\C\AppData\Roaming\Macromedia
2017-09-03 11:22 - 2017-09-03 11:22 - 000004090 _____ C:\windows\System32\Tasks\HPGenoobeReminder
2017-09-03 11:05 - 2017-09-03 11:05 - 000000000 ____D C:\Users\C\AppData\Local\MicrosoftEdge
2017-09-03 10:45 - 2017-09-03 10:45 - 000000000 ____D C:\Users\C\AppData\Local\Comms
2017-09-03 10:34 - 2016-07-16 13:43 - 000033498 _____ C:\windows\Core.xml
2017-09-03 10:31 - 2017-09-03 10:31 - 000000000 ____D C:\Users\C\AppData\Roaming\Hewlett-Packard
2017-09-03 10:30 - 2017-09-03 23:45 - 000002382 _____ C:\Users\C\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2017-09-03 10:30 - 2017-09-03 23:45 - 000000000 ___RD C:\Users\C\OneDrive
2017-09-03 10:28 - 2017-09-03 11:22 - 000000000 ____D C:\Users\C\AppData\Roaming\HP
2017-09-03 10:28 - 2017-09-03 11:14 - 000000000 ____D C:\Users\C\AppData\Roaming\DropboxOEM
2017-09-03 10:28 - 2017-09-03 10:28 - 000000000 ____D C:\Users\C\AppData\Local\DropboxOEM
2017-09-03 10:27 - 2017-09-03 10:27 - 000000000 ____D C:\Users\C\AppData\Local\Publishers
2017-09-03 10:26 - 2017-09-04 07:55 - 000000000 __SHD C:\Users\C\IntelGraphicsProfiles
2017-09-03 10:26 - 2017-09-03 17:13 - 000000000 ____D C:\Users\C\AppData\Local\ConnectedDevicesPlatform
2017-09-03 10:26 - 2017-09-03 12:21 - 000000000 ____D C:\Users\C\AppData\Local\Packages
2017-09-03 10:26 - 2017-09-03 12:15 - 000000000 ____D C:\Users\C
2017-09-03 10:26 - 2017-09-03 10:26 - 000000020 ___SH C:\Users\C\ntuser.ini
2017-09-03 10:26 - 2017-09-03 10:26 - 000000000 _SHDL C:\Users\C\Šablony
2017-09-03 10:26 - 2017-09-03 10:26 - 000000000 _SHDL C:\Users\C\Soubory cookie
2017-09-03 10:26 - 2017-09-03 10:26 - 000000000 _SHDL C:\Users\C\Poslední
2017-09-03 10:26 - 2017-09-03 10:26 - 000000000 _SHDL C:\Users\C\Okolní tiskárny
2017-09-03 10:26 - 2017-09-03 10:26 - 000000000 _SHDL C:\Users\C\Okolní síť
2017-09-03 10:26 - 2017-09-03 10:26 - 000000000 _SHDL C:\Users\C\Nabídka Start
2017-09-03 10:26 - 2017-09-03 10:26 - 000000000 _SHDL C:\Users\C\Dokumenty
2017-09-03 10:26 - 2017-09-03 10:26 - 000000000 _SHDL C:\Users\C\Documents\Obrázky
2017-09-03 10:26 - 2017-09-03 10:26 - 000000000 _SHDL C:\Users\C\Documents\Hudba
2017-09-03 10:26 - 2017-09-03 10:26 - 000000000 _SHDL C:\Users\C\Documents\Filmy
2017-09-03 10:26 - 2017-09-03 10:26 - 000000000 _SHDL C:\Users\C\Data aplikací
2017-09-03 10:26 - 2017-09-03 10:26 - 000000000 _SHDL C:\Users\C\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2017-09-03 10:26 - 2017-09-03 10:26 - 000000000 _SHDL C:\Users\C\AppData\Local\Data aplikací
2017-09-03 10:26 - 2017-09-03 10:26 - 000000000 ____D C:\Users\C\AppData\Roaming\Synaptics
2017-09-03 10:26 - 2017-09-03 10:26 - 000000000 ____D C:\Users\C\AppData\Roaming\Intel
2017-09-03 10:26 - 2017-09-03 10:26 - 000000000 ____D C:\Users\C\AppData\Roaming\Adobe
2017-09-03 10:26 - 2017-09-03 10:26 - 000000000 ____D C:\Users\C\AppData\Local\VirtualStore
2017-09-03 10:26 - 2017-09-03 10:26 - 000000000 ____D C:\Users\C\AppData\Local\TileDataLayer
2017-09-03 10:26 - 2016-10-24 09:06 - 000000000 ___HD C:\Users\C\Documents\hp.system.package.metadata
2017-09-03 10:26 - 2016-10-24 09:06 - 000000000 ___HD C:\Users\C\Documents\hp.applications.package.appdata
2017-09-03 10:25 - 2017-09-04 07:55 - 000000180 _____ C:\windows\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2017-09-03 10:25 - 2017-09-03 10:25 - 000000000 __SHD C:\Users\defaultuser0\IntelGraphicsProfiles
2017-09-03 10:25 - 2017-09-03 10:25 - 000000000 ____D C:\Users\defaultuser0\AppData\Roaming\Synaptics
2017-09-03 10:25 - 2017-09-03 10:25 - 000000000 ____D C:\Users\defaultuser0\AppData\Roaming\Intel
2017-09-03 10:25 - 2017-09-03 10:25 - 000000000 ____D C:\Users\defaultuser0\AppData\Local\VirtualStore
2017-09-03 10:25 - 2017-09-03 10:25 - 000000000 ____D C:\Users\defaultuser0\AppData\Local\TileDataLayer
2017-09-03 10:25 - 2017-09-03 10:25 - 000000000 ____D C:\Users\defaultuser0\AppData\Local\Packages
2017-09-03 10:25 - 2017-09-03 10:25 - 000000000 ____D C:\Users\defaultuser0\AppData\Local\ConnectedDevicesPlatform
2017-09-03 10:24 - 2017-09-03 10:25 - 000000000 ____D C:\Users\defaultuser0
2017-09-03 10:24 - 2017-09-03 10:24 - 000000020 ___SH C:\Users\defaultuser0\ntuser.ini
2017-09-03 10:24 - 2017-09-03 10:24 - 000000000 _SHDL C:\Users\defaultuser0\Šablony
2017-09-03 10:24 - 2017-09-03 10:24 - 000000000 _SHDL C:\Users\defaultuser0\Soubory cookie
2017-09-03 10:24 - 2017-09-03 10:24 - 000000000 _SHDL C:\Users\defaultuser0\Poslední
2017-09-03 10:24 - 2017-09-03 10:24 - 000000000 _SHDL C:\Users\defaultuser0\Okolní tiskárny
2017-09-03 10:24 - 2017-09-03 10:24 - 000000000 _SHDL C:\Users\defaultuser0\Okolní síť
2017-09-03 10:24 - 2017-09-03 10:24 - 000000000 _SHDL C:\Users\defaultuser0\Nabídka Start
2017-09-03 10:24 - 2017-09-03 10:24 - 000000000 _SHDL C:\Users\defaultuser0\Dokumenty
2017-09-03 10:24 - 2017-09-03 10:24 - 000000000 _SHDL C:\Users\defaultuser0\Documents\Obrázky
2017-09-03 10:24 - 2017-09-03 10:24 - 000000000 _SHDL C:\Users\defaultuser0\Documents\Hudba
2017-09-03 10:24 - 2017-09-03 10:24 - 000000000 _SHDL C:\Users\defaultuser0\Documents\Filmy
2017-09-03 10:24 - 2017-09-03 10:24 - 000000000 _SHDL C:\Users\defaultuser0\Data aplikací
2017-09-03 10:24 - 2017-09-03 10:24 - 000000000 _SHDL C:\Users\defaultuser0\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2017-09-03 10:24 - 2017-09-03 10:24 - 000000000 _SHDL C:\Users\defaultuser0\AppData\Local\Data aplikací
2017-09-03 10:24 - 2016-10-24 09:06 - 000000000 ___HD C:\Users\defaultuser0\Documents\hp.system.package.metadata
2017-09-03 10:24 - 2016-10-24 09:06 - 000000000 ___HD C:\Users\defaultuser0\Documents\hp.applications.package.appdata
2017-09-03 02:57 - 2017-09-03 02:57 - 000000000 _SHDL C:\Users\Public\Documents\Obrázky
2017-09-03 02:57 - 2017-09-03 02:57 - 000000000 _SHDL C:\Users\Public\Documents\Hudba
2017-09-03 02:57 - 2017-09-03 02:57 - 000000000 _SHDL C:\Users\Public\Documents\Filmy
2017-09-03 02:57 - 2017-09-03 02:57 - 000000000 _SHDL C:\Users\Default\Šablony
2017-09-03 02:57 - 2017-09-03 02:57 - 000000000 _SHDL C:\Users\Default\Soubory cookie
2017-09-03 02:57 - 2017-09-03 02:57 - 000000000 _SHDL C:\Users\Default\Poslední
2017-09-03 02:57 - 2017-09-03 02:57 - 000000000 _SHDL C:\Users\Default\Okolní tiskárny
2017-09-03 02:57 - 2017-09-03 02:57 - 000000000 _SHDL C:\Users\Default\Okolní síť
2017-09-03 02:57 - 2017-09-03 02:57 - 000000000 _SHDL C:\Users\Default\Nabídka Start
2017-09-03 02:57 - 2017-09-03 02:57 - 000000000 _SHDL C:\Users\Default\Dokumenty
2017-09-03 02:57 - 2017-09-03 02:57 - 000000000 _SHDL C:\Users\Default\Documents\Obrázky
2017-09-03 02:57 - 2017-09-03 02:57 - 000000000 _SHDL C:\Users\Default\Documents\Hudba
2017-09-03 02:57 - 2017-09-03 02:57 - 000000000 _SHDL C:\Users\Default\Documents\Filmy
2017-09-03 02:57 - 2017-09-03 02:57 - 000000000 _SHDL C:\Users\Default\Data aplikací
2017-09-03 02:57 - 2017-09-03 02:57 - 000000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2017-09-03 02:57 - 2017-09-03 02:57 - 000000000 _SHDL C:\Users\Default\AppData\Local\Data aplikací
2017-09-03 02:57 - 2017-09-03 02:57 - 000000000 _SHDL C:\Users\Default User\Documents\Obrázky
2017-09-03 02:57 - 2017-09-03 02:57 - 000000000 _SHDL C:\Users\Default User\Documents\Hudba
2017-09-03 02:57 - 2017-09-03 02:57 - 000000000 _SHDL C:\Users\Default User\Documents\Filmy
2017-09-03 02:57 - 2017-09-03 02:57 - 000000000 _SHDL C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2017-09-03 02:57 - 2017-09-03 02:57 - 000000000 _SHDL C:\Users\Default User\AppData\Local\Data aplikací
2017-09-03 02:57 - 2017-09-03 02:57 - 000000000 _SHDL C:\ProgramData\Šablony
2017-09-03 02:57 - 2017-09-03 02:57 - 000000000 _SHDL C:\ProgramData\Plocha
2017-09-03 02:57 - 2017-09-03 02:57 - 000000000 _SHDL C:\ProgramData\Nabídka Start
2017-09-03 02:57 - 2017-09-03 02:57 - 000000000 _SHDL C:\ProgramData\Microsoft\Windows\Start Menu\Programy
2017-09-03 02:57 - 2017-09-03 02:57 - 000000000 _SHDL C:\ProgramData\Dokumenty
2017-09-03 02:57 - 2017-09-03 02:57 - 000000000 _SHDL C:\ProgramData\Data aplikací
2017-09-03 02:57 - 2017-09-03 02:57 - 000000000 _SHDL C:\Documents and Settings
2017-09-03 01:45 - 2017-09-03 02:19 - 000020958 _____ C:\windows\diagwrn.xml
2017-09-03 01:45 - 2017-09-03 02:19 - 000020958 _____ C:\windows\diagerr.xml
2017-09-03 01:25 - 2016-08-02 01:03 - 000216704 _____ (McAfee, Inc.) C:\windows\system32\Drivers\HipShieldK.sys
2017-09-03 01:24 - 2017-09-05 10:48 - 000003126 _____ C:\windows\System32\Tasks\McAfeeLogon
2017-09-03 01:24 - 2017-09-05 10:48 - 000000000 ____D C:\windows\System32\Tasks\McAfee
2017-09-03 01:24 - 2017-09-03 01:24 - 000000000 ____D C:\ProgramData\Intel Security
2017-09-03 01:22 - 2016-04-26 17:56 - 000277744 _____ (McAfee, Inc.) C:\windows\system32\mfevtps.exe
2017-09-03 01:21 - 2017-09-05 10:54 - 000000000 ____D C:\ProgramData\McAfee
2017-09-03 01:21 - 2017-09-05 10:50 - 000000000 ____D C:\Program Files\Common Files\McAfee
2017-09-03 01:21 - 2017-09-05 10:42 - 000000000 ____D C:\Program Files (x86)\McAfee
2017-09-03 01:21 - 2017-09-03 01:26 - 000000000 ____D C:\Program Files\mcafee
2017-09-03 01:21 - 2017-09-03 01:21 - 000000000 ____D C:\Program Files\mcafee.com
2017-09-03 01:21 - 2017-09-03 01:21 - 000000000 ____D C:\Program Files\Common Files\Intel Security
2017-09-03 01:21 - 2017-09-03 01:21 - 000000000 ____D C:\Program Files\Common Files\AV
2017-09-03 01:19 - 2017-09-03 01:19 - 000002283 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Booking.com.lnk
2017-09-03 01:18 - 2017-09-03 01:18 - 000002376 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CyberLink Power Media Player 14.lnk
2017-09-03 01:16 - 2017-09-03 01:17 - 000000000 ____D C:\ProgramData\Temp
2017-09-03 01:16 - 2017-09-03 01:16 - 000000000 ____D C:\windows\HP
2017-09-03 01:15 - 2017-09-03 01:15 - 000000000 __RSH C:\windows\SysWOW64\Drivers\103C_HP_bNB_250 G5 Notebook PC_Y5336AN_0U_QCND7142QP5_ECND6222F37A6 DPS_4A_I81F1_SHP_V64.42_BF.24_T170120_W1101-0_L405_M3939_J500_7Intel_86C4_91.60_#170903_N80863165;10EC8168_(Z2Z08ES#BCM)_XMOBILE_CN10_Z.MRK
2017-09-03 01:15 - 2017-09-03 01:15 - 000000000 __RSH C:\windows\system32\Drivers\103C_HP_bNB_250 G5 Notebook PC_Y5336AN_0U_QCND7142QP5_ECND6222F37A6 DPS_4A_I81F1_SHP_V64.42_BF.24_T170120_W1101-0_L405_M3939_J500_7Intel_86C4_91.60_#170903_N80863165;10EC8168_(Z2Z08ES#BCM)_XMOBILE_CN10_Z.MRK
2017-09-03 01:13 - 2017-09-03 01:13 - 000015868 _____ C:\windows\system32\results.xml
2017-09-03 01:13 - 2017-09-03 01:13 - 000000000 ____D C:\ProgramData\Synaptics
2017-09-03 01:10 - 2017-09-03 02:57 - 000002252 _____ C:\windows\System32\Tasks\HPJumpStartProvider
2017-09-03 01:07 - 2017-09-03 01:07 - 000000000 ____H C:\windows\system32\Drivers\Msft_Kernel_SynTP_01011.Wdf
2017-09-03 01:07 - 2017-09-03 01:07 - 000000000 ____H C:\windows\system32\Drivers\Msft_Kernel_Smb_driver_Intel_01011.Wdf
2017-09-03 01:07 - 2017-09-03 01:07 - 000000000 ____D C:\Program Files\Synaptics
2017-09-03 01:07 - 2017-04-26 08:26 - 000072792 _____ (Synaptics Incorporated) C:\windows\system32\Drivers\Smb_driver_Intel.sys
2017-09-03 01:07 - 2016-08-25 16:02 - 000060008 _____ (Synaptics Incorporated) C:\windows\system32\Drivers\Smb_driver_AMDASF.sys
2017-09-03 01:06 - 2017-09-03 02:22 - 000000000 ____D C:\windows\SysWOW64\sda
2017-09-03 01:05 - 2017-09-03 01:05 - 000000000 ___HD C:\windows\system32\WLANProfiles
2017-09-03 01:05 - 2017-09-03 01:05 - 000000000 ____D C:\Program Files\Common Files\Intel
2017-09-03 01:05 - 2016-09-23 12:12 - 009891328 _____ (Realtek Semiconductor Corp.) C:\windows\SysWOW64\RsCRIcon.dll
2017-09-03 01:05 - 2016-09-23 12:12 - 004332032 _____ (Realtek Semiconductor Corp.) C:\windows\RtCRU64.exe
2017-09-03 01:05 - 2016-09-23 12:12 - 000418784 _____ (Realsil Semiconductor Corporation) C:\windows\system32\Drivers\RtsUer.sys
2017-09-03 01:05 - 2016-09-23 12:12 - 000084480 _____ (Realtek Semiconductor.) C:\windows\system32\RtCRX64.dll
2017-09-03 01:02 - 2016-09-20 13:20 - 000103960 _____ (Khronos Group) C:\windows\SysWOW64\OpenCL.DLL
2017-09-03 01:02 - 2016-09-20 13:20 - 000099864 _____ (Khronos Group) C:\windows\system32\OpenCL.DLL
2017-09-03 01:02 - 2016-08-26 13:04 - 000943112 _____ (Realtek ) C:\windows\system32\Drivers\rt640x64.sys
2017-09-03 01:02 - 2016-08-26 13:04 - 000082544 _____ (Realtek Semiconductor Corporation) C:\windows\system32\RtNicProp64.dll
2017-09-03 01:01 - 2017-09-03 01:01 - 000000000 _____ C:\windows\system32\GfxValDisplayLog.bin
2017-09-03 00:59 - 2017-09-03 01:06 - 000000000 ____D C:\Program Files\Intel
2017-09-03 00:59 - 2017-09-03 01:06 - 000000000 ____D C:\Program Files (x86)\Intel
2017-09-03 00:59 - 2017-09-03 01:05 - 000000000 ____D C:\ProgramData\Intel
2017-09-03 00:59 - 2017-09-03 01:01 - 000000000 ____D C:\Intel
2017-09-03 00:59 - 2017-09-03 00:59 - 000049091 _____ C:\windows\system32\Drivers\rtkhdasetting.zip
2017-09-03 00:59 - 2017-09-03 00:59 - 000001851 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DTS Audio Control.lnk
2017-09-03 00:59 - 2017-09-03 00:59 - 000000000 ____H C:\windows\system32\Drivers\Msft_User_esif_umdf2_02_00_00.Wdf
2017-09-03 00:59 - 2017-09-03 00:59 - 000000000 ____D C:\ProgramData\SRS Labs
2017-09-03 00:59 - 2016-07-05 13:13 - 001804688 _____ (Microsoft Corporation) C:\windows\system32\Drivers\WdfCoInstaller01011.dll
2017-09-03 00:59 - 2016-07-05 13:13 - 001419424 _____ (Intel Corporation) C:\windows\SysWOW64\esif_uf.exe
2017-09-03 00:59 - 2016-07-05 13:13 - 000971944 _____ (Microsoft Corporation) C:\windows\system32\msvcr120.dll
2017-09-03 00:59 - 2016-07-05 13:13 - 000668840 _____ (Microsoft Corporation) C:\windows\system32\msvcp120.dll
2017-09-03 00:59 - 2016-07-05 13:13 - 000260080 _____ (Intel Corporation) C:\windows\system32\Drivers\esif_lf.sys
2017-09-03 00:59 - 2016-07-05 13:13 - 000055792 _____ (Intel Corporation) C:\windows\system32\Drivers\dptf_acpi.sys
2017-09-03 00:59 - 2016-07-05 13:13 - 000052208 _____ (Intel Corporation) C:\windows\system32\Drivers\dptf_cpu.sys
2017-09-03 00:58 - 2017-09-03 01:05 - 000000000 ____D C:\Program Files (x86)\Realtek
2017-09-03 00:58 - 2017-09-03 00:59 - 000000000 ___HD C:\Program Files (x86)\Temp
2017-09-03 00:58 - 2017-09-03 00:58 - 000000000 ____D C:\windows\SysWOW64\RTCOM
2017-09-03 00:58 - 2017-09-03 00:58 - 000000000 ____D C:\windows\system32\SRSLabs
2017-09-03 00:58 - 2017-09-03 00:58 - 000000000 ____D C:\Program Files\Realtek
2017-09-03 00:58 - 2016-10-14 16:27 - 072520720 _____ (Realtek Semiconductor Corp.) C:\windows\system32\RCoRes64.dat
2017-09-03 00:58 - 2016-10-14 16:27 - 007182705 _____ C:\windows\system32\Drivers\RTAIODAT.DAT
2017-09-03 00:58 - 2016-10-14 16:27 - 005337608 _____ (Realtek Semiconductor Corp.) C:\windows\system32\Drivers\RTKVHD64.sys
2017-09-03 00:58 - 2016-10-14 16:27 - 003283248 _____ (Realtek Semiconductor Corp.) C:\windows\system32\RtkApi64.dll
2017-09-03 00:58 - 2016-10-14 16:27 - 003203592 _____ (Realtek Semiconductor Corp.) C:\windows\system32\RtPgEx64.dll
2017-09-03 00:58 - 2016-10-14 16:27 - 003135752 _____ (Realtek Semiconductor Corp.) C:\windows\system32\RltkAPO64.dll
2017-09-03 00:58 - 2016-10-14 16:27 - 002895104 _____ (Realtek Semiconductor Corp.) C:\windows\system32\RTSnMg64.cpl
2017-09-03 00:58 - 2016-10-14 16:27 - 002706872 _____ (DTS, Inc.) C:\windows\system32\sltech64.dll
2017-09-03 00:58 - 2016-10-14 16:27 - 002203752 _____ (DTS, Inc.) C:\windows\system32\slcnt64.dll
2017-09-03 00:58 - 2016-10-14 16:27 - 002073096 _____ (Realtek Semiconductor Corp.) C:\windows\system32\RCoInstII64.dll
2017-09-03 00:58 - 2016-10-14 16:27 - 001618040 _____ (Conexant Systems Inc.) C:\windows\system32\CX64APO.dll
2017-09-03 00:58 - 2016-10-14 16:27 - 001529144 _____ (Conexant Systems Inc.) C:\windows\system32\CX64Proxy.dll
2017-09-03 00:58 - 2016-10-14 16:27 - 001435152 _____ (Synopsys, Inc.) C:\windows\system32\SRRPTR64.dll
2017-09-03 00:58 - 2016-10-14 16:27 - 001360528 _____ (Realtek Semiconductor Corp.) C:\windows\system32\RTCOM64.dll
2017-09-03 00:58 - 2016-10-14 16:27 - 001041744 _____ (DTS, Inc.) C:\windows\system32\sl3apo64.dll
2017-09-03 00:58 - 2016-10-14 16:27 - 001002312 _____ (Sound Research, Corp.) C:\windows\system32\SEHDHF64.dll
2017-09-03 00:58 - 2016-10-14 16:27 - 000865408 _____ (Sound Research, Corp.) C:\windows\SysWOW64\SEHDHF32.dll
2017-09-03 00:58 - 2016-10-14 16:27 - 000858208 _____ (Sound Research, Corp.) C:\windows\system32\SEHDRA64.dll
2017-09-03 00:58 - 2016-10-14 16:27 - 000850408 _____ (Sound Research, Corp.) C:\windows\system32\SECOMN64.dll
2017-09-03 00:58 - 2016-10-14 16:27 - 000721816 _____ (Sound Research, Corp.) C:\windows\SysWOW64\SECOMN32.dll
2017-09-03 00:58 - 2016-10-14 16:27 - 000689888 _____ (Realtek Semiconductor Corp.) C:\windows\system32\RtDataProc64.dll
2017-09-03 00:58 - 2016-10-14 16:27 - 000574760 _____ (Andrea Electronics Corporation) C:\windows\system32\AERTAC64.dll
2017-09-03 00:58 - 2016-10-14 16:27 - 000532384 _____ (SRS Labs, Inc.) C:\windows\system32\SRSTSX64.dll
2017-09-03 00:58 - 2016-10-14 16:27 - 000499160 _____ (Sound Research, Corp.) C:\windows\system32\SEAPO64.dll
2017-09-03 00:58 - 2016-10-14 16:27 - 000467168 _____ (Synopsys, Inc.) C:\windows\system32\SRAPO64.dll
2017-09-03 00:58 - 2016-10-14 16:27 - 000438696 _____ (Conexant Systems, Inc.) C:\windows\system32\CAF64APO2.dll
2017-09-03 00:58 - 2016-10-14 16:27 - 000387320 _____ (Dolby Laboratories, Inc.) C:\windows\system32\RTEEP64A.dll
2017-09-03 00:58 - 2016-10-14 16:27 - 000381416 _____ (Synopsys, Inc.) C:\windows\system32\SRCOM64.dll
2017-09-03 00:58 - 2016-10-14 16:27 - 000343712 _____ (Realtek Semiconductor Corp.) C:\windows\system32\RtlCPAPI64.dll
2017-09-03 00:58 - 2016-10-14 16:27 - 000341152 _____ (Synopsys, Inc.) C:\windows\SysWOW64\SRCOM.dll
2017-09-03 00:58 - 2016-10-14 16:27 - 000341152 _____ (Synopsys, Inc.) C:\windows\system32\SRCOM.dll
2017-09-03 00:58 - 2016-10-14 16:27 - 000321720 _____ (Dolby Laboratories, Inc.) C:\windows\system32\RP3DAA64.dll
2017-09-03 00:58 - 2016-10-14 16:27 - 000321712 _____ (Dolby Laboratories, Inc.) C:\windows\system32\RP3DHT64.dll
2017-09-03 00:58 - 2016-10-14 16:27 - 000258872 _____ (TODO: <Company name>) C:\windows\system32\slprp64.dll
2017-09-03 00:58 - 2016-10-14 16:27 - 000214840 _____ (Dolby Laboratories, Inc.) C:\windows\system32\RTEED64A.dll
2017-09-03 00:58 - 2016-10-14 16:27 - 000192992 _____ (Realtek Semiconductor Corp.) C:\windows\system32\RtkCfg64.dll
2017-09-03 00:58 - 2016-10-14 16:27 - 000166200 _____ (SRS Labs, Inc.) C:\windows\system32\SRSWOW64.dll
2017-09-03 00:58 - 2016-10-14 16:27 - 000122328 _____ (Real Sound Lab SIA) C:\windows\system32\CONEQMSAPOGUILibrary.dll
2017-09-03 00:58 - 2016-10-14 16:27 - 000118600 _____ (Andrea Electronics Corporation) C:\windows\system32\AERTAR64.dll
2017-09-03 00:58 - 2016-10-14 16:27 - 000112504 _____ (Conexant Systems, Inc.) C:\windows\system32\Caf64api.dll
2017-09-03 00:58 - 2016-10-14 16:27 - 000110984 _____ (Dolby Laboratories, Inc.) C:\windows\system32\RTEEL64A.dll
2017-09-03 00:58 - 2016-10-14 16:27 - 000088352 _____ (Dolby Laboratories, Inc.) C:\windows\system32\RTEEG64A.dll
2017-09-03 00:58 - 2016-10-14 16:27 - 000023704 _____ (Realtek Semiconductor Corp.) C:\windows\system32\RtkCoLDR64.dll
2017-09-03 00:58 - 2016-10-14 16:27 - 000005604 _____ C:\windows\system32\cxapo.lncs
2017-09-03 00:58 - 2016-10-14 16:27 - 000000736 _____ C:\windows\system32\cxapo.prop
2017-09-03 00:58 - 2016-10-14 16:26 - 002839520 _____ (Realtek Semiconductor Corp.) C:\windows\RtlExUpd.dll
2017-09-03 00:54 - 2017-09-03 01:18 - 000000000 ____D C:\ProgramData\CyberLink
2017-09-03 00:54 - 2017-09-03 01:18 - 000000000 ____D C:\Program Files (x86)\NSIS Uninstall Information
2017-09-03 00:54 - 2017-09-03 01:17 - 000000000 ____D C:\Program Files (x86)\CyberLink
2017-09-03 00:54 - 2017-09-03 00:54 - 000002198 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CyberLink PowerDirector.lnk
2017-09-03 00:52 - 2017-09-03 00:54 - 000000000 ____D C:\Program Files\CyberLink
2017-09-03 00:51 - 2017-09-03 01:18 - 000000000 ____D C:\ProgramData\install_clap
2017-09-03 00:51 - 2017-09-03 01:16 - 000000000 ____D C:\ProgramData\SUPPORTDIR
2017-09-03 00:51 - 2017-09-03 01:16 - 000000000 ____D C:\ProgramData\install_backup
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2017-09-05 10:59 - 2016-07-16 13:47 - 000000000 ____D C:\windows\AppReadiness
2017-09-05 10:49 - 2016-07-16 13:45 - 000000000 ____D C:\windows\INF
2017-09-05 10:36 - 2016-07-16 13:47 - 000000000 ____D C:\windows\appcompat
2017-09-05 10:35 - 2016-07-29 14:32 - 000000000 ____D C:\windows\system32\SleepStudy
2017-09-04 08:13 - 2016-07-16 13:36 - 000000000 ____D C:\windows\CbsTemp
2017-09-04 07:56 - 2016-07-16 13:47 - 000000000 ____D C:\Program Files\Common Files\microsoft shared
2017-09-04 01:12 - 2016-07-16 13:47 - 000000000 ___HD C:\Program Files\WindowsApps
2017-09-03 23:48 - 2016-10-24 18:14 - 000537472 _____ C:\windows\system32\perfh005.dat
2017-09-03 23:48 - 2016-10-24 18:14 - 000117116 _____ C:\windows\system32\perfc005.dat
2017-09-03 23:48 - 2016-07-29 14:37 - 001752520 _____ C:\windows\system32\PerfStringBackup.INI
2017-09-03 23:45 - 2016-07-16 13:47 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2017-09-03 23:23 - 2016-10-24 09:09 - 000000948 _____ C:\windows\Tasks\DropboxUpdateTaskMachineUA.job
2017-09-03 23:23 - 2016-10-24 09:09 - 000000944 _____ C:\windows\Tasks\DropboxUpdateTaskMachineCore.job
2017-09-03 23:23 - 2016-07-29 14:32 - 000000006 ____H C:\windows\Tasks\SA.DAT
2017-09-03 23:11 - 2016-07-16 08:04 - 000262144 _____ C:\windows\system32\config\BBI
2017-09-03 21:37 - 2016-10-24 09:09 - 000000000 ____D C:\Program Files (x86)\Microsoft Office
2017-09-03 17:27 - 2016-07-16 13:47 - 000000000 __RSD C:\windows\Media
2017-09-03 11:15 - 2016-10-24 09:09 - 000003186 _____ C:\windows\System32\Tasks\DropboxOEM
2017-09-03 11:15 - 2016-10-24 09:09 - 000002143 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dropbox 25 GB.lnk
2017-09-03 11:15 - 2016-10-24 09:09 - 000000000 ____D C:\Program Files (x86)\Dropbox
2017-09-03 11:08 - 2016-10-24 09:09 - 000004008 _____ C:\windows\System32\Tasks\DropboxUpdateTaskMachineUA
2017-09-03 11:08 - 2016-10-24 09:09 - 000003776 _____ C:\windows\System32\Tasks\DropboxUpdateTaskMachineCore
2017-09-03 10:35 - 2016-10-24 18:28 - 000000012 _____ C:\windows\CSUP.txt
2017-09-03 10:32 - 2016-07-16 08:04 - 000032768 _____ C:\windows\system32\config\ELAM
2017-09-03 10:31 - 2016-10-24 09:05 - 000000000 ____D C:\windows\System32\Tasks\Hewlett-Packard
2017-09-03 10:31 - 2016-10-24 09:05 - 000000000 ____D C:\ProgramData\Hewlett-Packard
2017-09-03 10:29 - 2016-07-16 13:47 - 000028672 _____ C:\windows\system32\config\BCD-Template
2017-09-03 10:27 - 2016-08-23 21:10 - 000000000 ___HD C:\SYSTEM.SAV
2017-09-03 10:27 - 2016-07-29 14:33 - 000000000 __RHD C:\Users\Public\AccountPictures
2017-09-03 10:26 - 2016-07-16 13:47 - 000000000 ____D C:\windows\system32\WinBioDatabase
2017-09-03 02:57 - 2016-10-24 09:09 - 000002488 _____ C:\windows\System32\Tasks\HPAudioSwitch
2017-09-03 02:57 - 2016-10-24 09:07 - 000002498 _____ C:\windows\System32\Tasks\HPEA3JOBS
2017-09-03 02:57 - 2016-07-16 13:47 - 000000000 ____D C:\Program Files\Windows NT
2017-09-03 02:56 - 2016-07-29 15:23 - 000000000 ____D C:\windows\Panther
2017-09-03 02:43 - 2016-07-16 08:04 - 000000000 ____D C:\windows\system32\Sysprep
2017-09-03 02:41 - 2016-08-23 21:10 - 000000000 ____D C:\SWSETUP
2017-09-03 02:40 - 2016-10-24 09:06 - 000000000 ___RD C:\Program Files\Online Services
2017-09-03 02:40 - 2016-10-24 09:06 - 000000000 ___RD C:\Program Files (x86)\Online Services
2017-09-03 01:46 - 2016-07-16 13:47 - 000000000 ____D C:\windows\Registration
2017-09-03 01:37 - 2016-10-24 09:06 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP Help and Support
2017-09-03 01:37 - 2016-10-24 09:05 - 000000000 ____D C:\ProgramData\HP
2017-09-03 01:32 - 2016-07-16 13:47 - 000000000 ___HD C:\windows\ELAMBKUP
2017-09-03 01:26 - 2016-07-16 13:47 - 000000124 _____ C:\windows\win.ini
2017-09-03 01:20 - 2016-07-29 14:32 - 000294640 _____ C:\windows\system32\FNTCACHE.DAT
2017-09-03 01:19 - 2016-10-24 09:05 - 000000000 ____D C:\Program Files (x86)\HP
2017-09-03 01:18 - 2016-10-24 09:05 - 000000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2017-09-03 01:15 - 2016-07-16 13:47 - 000000000 ____D C:\windows\rescache
2017-09-03 01:14 - 2016-10-24 09:06 - 000000000 ____D C:\Program Files\HP
2017-09-03 01:08 - 2016-10-24 09:07 - 000000000 ____D C:\ProgramData\Package Cache
2017-09-03 00:55 - 2016-10-21 20:36 - 000000000 ___HD C:\hp
==================== Files in the root of some directories =======
==================== Bamital & volsnap ======================
(There is no automatic fix for files that do not pass verification.)
C:\windows\system32\winlogon.exe => File is digitally signed
C:\windows\system32\wininit.exe => File is digitally signed
C:\windows\explorer.exe => File is digitally signed
C:\windows\SysWOW64\explorer.exe => File is digitally signed
C:\windows\system32\svchost.exe => File is digitally signed
C:\windows\SysWOW64\svchost.exe => File is digitally signed
C:\windows\system32\services.exe => File is digitally signed
C:\windows\system32\User32.dll => File is digitally signed
C:\windows\SysWOW64\User32.dll => File is digitally signed
C:\windows\system32\userinit.exe => File is digitally signed
C:\windows\SysWOW64\userinit.exe => File is digitally signed
C:\windows\system32\rpcss.dll => File is digitally signed
C:\windows\system32\dnsapi.dll => File is digitally signed
C:\windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\windows\system32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2016-07-29 14:32
==================== End of FRST.txt ============================
===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===
==================== Drive and Memory info ===================
Drive c: (WINDOWS) (Fixed) (Total:450.7 GB) (Free:413.18 GB) NTFS
Drive d: (RECOVERY) (Fixed) (Total:13.83 GB) (Free:1.66 GB) NTFS ==>[system with boot components (obtained from drive)]
Available physical RAM: 1636.24 MB
Total physical RAM: 3938.27 MB
Percentage of memory in use: 58%
==================== MBR and Partition Table ==================
Disk: 0 (Size: 465.8 GB) (Disk ID: 8E61EA2B)
==================== Scheduled Tasks (whitelisted) ==================
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\windows\Tasks\DropboxUpdateTaskMachineCore.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
Task: C:\windows\Tasks\DropboxUpdateTaskMachineUA.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
Task: C:\windows\Tasks\HPCeeScheduleForC.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe
==================== Alternate Data Streams (whitelisted) ==================
==================== Security Center ==================
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: McAfee Anti-Virus a Antispyware (Disabled - Up to date) {DA9F8ED0-D0DE-39CC-F55A-51AB4CC1B556}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: McAfee Anti-Virus a Antispyware (Disabled - Up to date) {61FE6F34-F6E4-3642-CFEA-6AD93746FFEB}
FW: McAfee Firewall (Enabled) {E2A40FF5-9AB1-3894-DE05-F89EB212F22D}
===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)
***** Velikost "Plochy" *****
Velikost slozky "C:\Users\C\Desktop" je 127 MB.
***** Startup Programs *****
***** Firewall rules *****
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x1
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
***** System Restore *****
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR"=dword:00000001
"Generalize_DisableSR"=dword:00000001
==================== End Of Log ==============================
prosím o kontrolu notebooku, abych v něm neměl nějaký spyware. Předem moc děkuji
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 20-08-2017
Ran by C (administrator) on LAPTOP-QEHE5JQ9 (05-09-2017 11:49:14)
Running from C:\Users\C\Desktop
Loaded Profiles: C (Available Profiles: defaultuser0 & C)
Platform: Windows 10 Home Version 1607 (X64) Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: Edge)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
(Intel Corporation) C:\Windows\SysWOW64\esif_uf.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe
(Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
(Intel Corporation) C:\Windows\System32\ibtsiva.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
(Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(HP Inc.) C:\Program Files (x86)\HP\HP JumpStart Bridge\HPJumpStartBridge.exe
(HP Inc.) C:\Program Files\HPCommRecovery\HPCommRecovery.exe
(Intel Corporation) C:\Program Files (x86)\Intel\TXE Components\DAL\jhi_service.exe
(CyberLink) C:\Program Files\CyberLink\Shared files\RichVideo64.exe
(Intel Corporation) C:\Windows\Temp\DPTF\esif_assist_64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
() C:\Program Files (x86)\HP\HP JumpStart Bridge\HPJumpStartProvider.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel Corporation) C:\Windows\System32\igfxHK.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(HP Inc.) C:\Program Files (x86)\HP\HP System Event\HPMSGSVC.exe
(HP) C:\Program Files (x86)\HP\HP Wireless Button Driver\HPRadioMgr64.exe
(HP Inc.) C:\Program Files (x86)\HP\HPAudioSwitch\HPAudioSwitch.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
() C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.19.856.0_x64__kzf8qxf38zg5c\SkypeHost.exe
(McAfee, Inc.) C:\Program Files\Common Files\McAfee\platform\CommonBuild\x64B5D4.tmp
(McAfee, Inc.) C:\Program Files\Common Files\McAfee\platform\McU112E.tmp
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(HP) C:\Program Files (x86)\HP\Shared\hpqwmiex.exe
(McAfee, Inc.) C:\Program Files\Common Files\McAfee\platform\CommonBuild\x64B5D4.tmp
(McAfee, Inc.) C:\Program Files\Common Files\McAfee\platform\McU112E.tmp
(Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeC2RClient.exe
(McAfee, Inc.) C:\Program Files\Common Files\McAfee\platform\McAF00A.tmp
(Microsoft Corporation) C:\Windows\System32\InstallAgent.exe
(HP Inc.) C:\Program Files (x86)\HP\HP System Event\HPWMISVC.exe
(Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(McAfee, Inc.) C:\Program Files\Common Files\McAfee\ModuleCore\ModuleCoreService.exe
(McAfee, Inc.) C:\Program Files\Common Files\McAfee\CSP\1.9.829.0\McCSPServiceHost.exe
(McAfee, Inc.) C:\Program Files\Common Files\McAfee\SystemCore\mfemms.exe
(McAfee, Inc.) C:\Windows\System32\mfevtps.exe
(McAfee, Inc.) C:\Windows\System32\mfevtps.exe
(McAfee, Inc.) C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe
(McAfee, Inc.) C:\Program Files\mcafee\msc\McAPExe.exe
(McAfee, Inc.) C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe
(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe
(Microsoft Corporation) C:\Windows\System32\browser_broker.exe
(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe
(McAfee, Inc.) C:\Program Files\Common Files\McAfee\platform\McUICnt.exe
(McAfee, Inc.) C:\Program Files\Common Files\McAfee\platform\mcsvchost\McSvHost.exe
(McAfee, Inc.) C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe
(McAfee, Inc.) C:\Program Files\mcafee\virusscan\McVsShld.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(McAfee, Inc.) C:\Program Files\Common Files\McAfee\platform\core\mchost.exe
(Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe
(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe
(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe
(Intel Security) C:\Program Files\Common Files\McAfee\ClientAnalytics\McClientAnalytics.exe
(McAfee, Inc.) C:\Program Files\mcafee\virusscan\McVsMap.exe
(Intel Security) C:\Program Files\Common Files\McAfee\ClientAnalytics\McClientAnalytics.exe
(forum.viry.cz) C:\Users\C\Downloads\FRSTLauncher (1).exe
==================== Registry (Whitelisted) ====================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [8903176 2016-10-14] (Realtek Semiconductor)
HKLM-x32\...\Run: [HPMessageService] => C:\Program Files (x86)\HP\HP System Event\HPMSGSVC.exe [705784 2016-06-20] (HP Inc.)
HKLM-x32\...\Run: [HPRadioMgr] => C:\Program Files (x86)\HP\HP Wireless Button Driver\HPRadioMgr64.exe [324488 2016-08-02] (HP)
HKU\S-1-5-21-2775449184-814585837-182124203-1001\...\MountPoints2: {13fbf316-9085-11e7-9457-3c52828c12c2} - "F:\HiSuiteDownLoader.exe"
HKU\S-1-5-21-2775449184-814585837-182124203-1001\...\MountPoints2: {13fbf38a-9085-11e7-9457-3c52828c12c2} - "F:\HiSuiteDownLoader.exe"
HKU\S-1-5-21-2775449184-814585837-182124203-1001\...\MountPoints2: {13fbf46a-9085-11e7-9457-3c52828c12c2} - "F:\HiSuiteDownLoader.exe"
HKU\S-1-5-21-2775449184-814585837-182124203-1001\...\MountPoints2: {15b9ab15-90ee-11e7-9458-3c52828c12c2} - "F:\Lenovo_Suite.exe"
HKU\S-1-5-21-2775449184-814585837-182124203-1001\...\MountPoints2: {15b9ab31-90ee-11e7-9458-3c52828c12c2} - "F:\Lenovo_Suite.exe"
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\HP JumpStart Launch.lnk [2017-09-03]
ShortcutTarget: HP JumpStart Launch.lnk -> c:\Windows\Installer\{B90CB0DE-2E60-41C4-9857-466EB98192BF}\HPlogo_blue.ico ()
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{9e7dd22e-3d9c-456c-bd11-7fcc3bffe38e}: [DhcpNameServer] 192.168.1.1
Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.bing.com?pc=HCTE
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.bing.com?pc=HCTE
HKU\S-1-5-21-2775449184-814585837-182124203-1001\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKU\S-1-5-21-2775449184-814585837-182124203-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.bing.com?pc=HCTE
SearchScopes: HKLM -> {F3C247F2-F433-4639-A471-961791ADA9FC} URL = hxxp://www.amazon.co.uk/s/ref=azs_osd_ieauk?ie ... earchTerms}
SearchScopes: HKLM-x32 -> {F3C247F2-F433-4639-A471-961791ADA9FC} URL = hxxp://www.amazon.co.uk/s/ref=azs_osd_ieauk?ie ... earchTerms}
SearchScopes: HKU\S-1-5-21-2775449184-814585837-182124203-1001 -> {F3C247F2-F433-4639-A471-961791ADA9FC} URL = hxxp://www.amazon.co.uk/s/ref=azs_osd_ieauk?ie ... earchTerms}
BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2017-09-03] (Microsoft Corporation)
BHO: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\GROOVEEX.DLL [2017-09-03] (Microsoft Corporation)
BHO: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll [2016-08-05] (HP Inc.)
BHO-x32: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2016-08-05] (HP Inc.)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2017-09-03] (Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2017-09-03] (Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2017-09-03] (Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2017-09-03] (Microsoft Corporation)
Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\Program Files\mcafee\msc\McSnIePl64.dll [2016-09-23] (McAfee, Inc.)
Filter-x32: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\Program Files (x86)\McAfee\msc\McSnIePl.dll [2016-09-23] (McAfee, Inc.)
FireFox:
========
FF HKLM-x32\...\Thunderbird\Extensions: [msktbird@mcafee.com] - C:\Program Files\McAfee\MSK
FF Extension: (McAfee Anti-Spam Thunderbird Extension) - C:\Program Files\McAfee\MSK [2017-09-05] [not signed]
FF Plugin: @mcafee.com/MSC,version=10 -> c:\PROGRA~1\mcafee\msc\NPMCSN~1.DLL [2016-09-23] ()
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.56 -> C:\Program Files (x86)\Intel\TXE Components\IPT\npIntelWebAPIIPT.dll [2014-07-01] (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\TXE Components\IPT\npIntelWebAPIUpdater.dll [2014-07-01] (Intel Corporation)
FF Plugin-x32: @mcafee.com/MSC,version=10 -> c:\PROGRA~2\mcafee\msc\NPMCSN~1.DLL [2016-09-23] ()
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2017-09-03] (Microsoft Corporation)
==================== Services (Whitelisted) ====================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S2 0285631504600924mcinstcleanup; C:\windows\TEMP\028563~1.EXE [961888 2016-05-16] (McAfee, Inc.)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [4424384 2017-08-28] (Microsoft Corporation)
S2 dbupdate; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2017-09-03] (Dropbox, Inc.)
S3 dbupdatem; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2017-09-03] (Dropbox, Inc.)
R2 esifsvc; C:\windows\SysWoW64\esif_uf.exe [1419424 2016-07-05] (Intel Corporation)
R2 HomeNetSvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [596768 2016-07-07] (McAfee, Inc.)
R2 HP Comm Recover; C:\Program Files\HPCommRecovery\HPCommRecovery.exe [1268736 2016-10-05] (HP Inc.) [File not signed]
R2 HPJumpStartBridge; c:\Program Files (x86)\HP\HP JumpStart Bridge\HPJumpStartBridge.exe [461848 2016-08-05] (HP Inc.)
R3 hpqcaslwmiex; C:\Program Files (x86)\HP\Shared\hpqwmiex.exe [1031704 2016-06-03] (HP)
S2 HPSupportSolutionsFrameworkService; C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe [29760 2016-08-04] (HP Inc.)
R2 HPWMISVC; c:\Program Files (x86)\HP\HP System Event\HPWMISVC.exe [631800 2016-06-20] (HP Inc.)
R2 igfxCUIService2.0.0.0; C:\windows\system32\igfxCUIService.exe [356336 2016-09-20] (Intel Corporation)
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\TXE Components\TCS\SocketHeciServer.exe [887784 2015-09-03] (Intel(R) Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\TXE Components\DAL\jhi_service.exe [174368 2015-04-21] (Intel Corporation)
R2 McAPExe; C:\Program Files\McAfee\MSC\McAPExe.exe [993824 2016-09-23] (McAfee, Inc.)
S3 McAWFwk; c:\Program Files\Common Files\McAfee\ActWiz\McAWFwk.exe [419096 2016-04-01] (McAfee, Inc.)
R2 McBootDelayStartSvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [596768 2016-07-07] (McAfee, Inc.)
R2 mccspsvc; C:\Program Files\Common Files\McAfee\CSP\1.9.829.0\\McCSPServiceHost.exe [1910000 2016-05-31] (McAfee, Inc.)
R2 McMPFSvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [596768 2016-07-07] (McAfee, Inc.)
R2 McNaiAnn; C:\Program Files\Common Files\McAfee\platform\McSvcHost\McSvHost.exe [596768 2016-07-07] (McAfee, Inc.)
S3 McODS; C:\Program Files\mcafee\VirusScan\mcods.exe [816128 2016-06-21] (McAfee, Inc.)
R2 mcpltsvc; C:\Program Files\Common Files\McAfee\platform\McSvcHost\McSvHost.exe [596768 2016-07-07] (McAfee, Inc.)
R2 McProxy; C:\Program Files\Common Files\McAfee\platform\McSvcHost\McSvHost.exe [596768 2016-07-07] (McAfee, Inc.)
R3 mfefire; C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe [232688 2016-04-26] (McAfee, Inc.)
R2 mfemms; C:\Program Files\Common Files\McAfee\SystemCore\\mfemms.exe [382456 2016-08-03] (McAfee, Inc.)
R3 mfevtp; C:\windows\system32\mfevtps.exe [277744 2016-04-26] (McAfee, Inc.)
R2 ModuleCoreService; C:\Program Files\Common Files\McAfee\ModuleCore\ModuleCoreService.exe [1454216 2016-09-13] (McAfee, Inc.)
R3 MSK80Service; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [596768 2016-07-07] (McAfee, Inc.)
S3 MyWiFiDHCPDNS; c:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [268704 2016-08-04] ()
S2 PEFService; C:\Program Files\Common Files\Intel Security\PEF\CORE\PEFService.exe [1045336 2016-05-25] (Intel Security, Inc.)
R2 RichVideo64; C:\Program Files\CyberLink\Shared files\RichVideo64.exe [614664 2016-03-23] (CyberLink)
R2 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [317960 2016-10-14] (Realtek Semiconductor)
R2 SynTPEnhService; C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [278616 2017-04-26] (Synaptics Incorporated)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [347328 2016-07-16] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [103720 2016-07-16] (Microsoft Corporation)
R2 ZeroConfigService; c:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [3732896 2016-08-04] (Intel® Corporation)
R2 ibtsiva; %SystemRoot%\system32\ibtsiva [X]
===================== Drivers (Whitelisted) ======================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 cfwids; C:\windows\System32\drivers\cfwids.sys [78632 2016-08-02] (McAfee, Inc.)
R3 dptf_acpi; C:\windows\System32\drivers\dptf_acpi.sys [55792 2016-07-05] (Intel Corporation)
R3 dptf_cpu; C:\windows\System32\drivers\dptf_cpu.sys [52208 2016-07-05] (Intel Corporation)
R3 esif_lf; C:\windows\system32\DRIVERS\esif_lf.sys [260080 2016-07-05] (Intel Corporation)
S3 HipShieldK; C:\windows\System32\drivers\HipShieldK.sys [216704 2016-08-02] (McAfee, Inc.)
R3 ibtusb; C:\windows\system32\DRIVERS\ibtusb.sys [244744 2017-04-13] (Intel Corporation)
R3 igfxLP; C:\windows\system32\DRIVERS\igdkmd64lp.sys [7400936 2016-09-20] (Intel Corporation)
R3 mfeaack; C:\windows\System32\drivers\mfeaack.sys [419624 2016-08-02] (McAfee, Inc.)
R3 mfeavfk; C:\windows\System32\drivers\mfeavfk.sys [349480 2016-08-02] (McAfee, Inc.)
S0 mfeelamk; C:\windows\System32\drivers\mfeelamk.sys [83608 2016-08-02] (McAfee, Inc.)
R3 mfefirek; C:\windows\System32\drivers\mfefirek.sys [493352 2016-08-02] (McAfee, Inc.)
R0 mfehidk; C:\windows\System32\drivers\mfehidk.sys [843048 2016-08-02] (McAfee, Inc.)
R3 mfencbdc; C:\windows\System32\DRIVERS\mfencbdc.sys [519456 2016-08-01] (McAfee, Inc.)
S3 mfencrk; C:\windows\System32\DRIVERS\mfencrk.sys [100136 2016-08-01] (McAfee, Inc.)
R0 mfewfpk; C:\windows\System32\drivers\mfewfpk.sys [243496 2016-08-02] (McAfee, Inc.)
S3 NetAdapterCx; C:\windows\System32\drivers\NetAdapterCx.sys [90624 2016-07-16] ()
S3 Netwtw04; C:\windows\System32\drivers\Netwtw04.sys [7308560 2016-09-13] (Intel Corporation)
R3 rt640x64; C:\windows\System32\drivers\rt640x64.sys [943112 2016-08-26] (Realtek )
S3 RTSUER; C:\windows\system32\Drivers\RtsUer.sys [418784 2016-09-23] (Realsil Semiconductor Corporation)
S3 SmbDrv; C:\windows\System32\drivers\Smb_driver_AMDASF.sys [60008 2016-08-25] (Synaptics Incorporated)
R3 SmbDrvI; C:\windows\system32\DRIVERS\Smb_driver_Intel.sys [72792 2017-04-26] (Synaptics Incorporated)
R3 TXEIx64; C:\windows\System32\drivers\TXEIx64.sys [146200 2015-10-15] (Intel Corporation)
S3 WdBoot; C:\windows\system32\drivers\WdBoot.sys [44056 2016-07-16] (Microsoft Corporation)
S3 WdFilter; C:\windows\system32\drivers\WdFilter.sys [290144 2016-07-16] (Microsoft Corporation)
S3 WdNisDrv; C:\windows\System32\Drivers\WdNisDrv.sys [123232 2016-07-16] (Microsoft Corporation)
R3 WirelessButtonDriver64; C:\windows\system32\DRIVERS\WirelessButtonDriver64.sys [32832 2016-07-31] (HP)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2017-09-05 11:49 - 2017-09-05 11:49 - 000018733 _____ C:\Users\C\Desktop\FRST.txt
2017-09-05 11:48 - 2017-09-05 11:48 - 000112640 _____ (forum.viry.cz) C:\Users\C\Downloads\FRSTLauncher (1).exe
2017-09-05 11:47 - 2017-09-05 11:47 - 000000000 _____ C:\Users\C\Downloads\FRSTLauncher.exe.mia70t0.partial
2017-09-05 11:23 - 2017-09-05 11:23 - 000003224 _____ C:\windows\System32\Tasks\HPCeeScheduleForC
2017-09-05 11:23 - 2017-09-05 11:23 - 000000348 _____ C:\windows\Tasks\HPCeeScheduleForC.job
2017-09-05 11:23 - 2017-09-05 11:23 - 000000000 ____D C:\Users\C\AppData\Local\HP_Development_Company,_L
2017-09-05 11:06 - 2017-09-05 11:06 - 000000000 ____D C:\Users\C\Documents\Vlastní šablony Office
2017-09-05 11:04 - 2017-09-05 11:49 - 000000000 ____D C:\FRST
2017-09-05 10:57 - 2017-09-05 10:57 - 002395648 _____ (Farbar) C:\Users\C\Desktop\FRST64.exe
2017-09-05 10:56 - 2017-09-05 10:56 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee
2017-09-04 08:11 - 2017-09-04 08:43 - 000000000 ____D C:\Program Files\rempl
2017-09-04 07:55 - 2017-09-04 07:55 - 000001417 _____ C:\Users\C\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aktualizace a nastavení ochrany osobních údajů.lnk
2017-09-04 07:55 - 2017-09-04 07:55 - 000000000 ____D C:\Users\C\AppData\Local\UNP
2017-09-04 01:21 - 2017-09-04 01:21 - 000903535 _____ C:\Users\C\Downloads\print.pdf
2017-09-04 01:18 - 2017-09-04 01:23 - 000000000 ____D C:\windows\system32\MRT
2017-09-04 01:18 - 2017-09-04 01:18 - 140394280 ____C (Microsoft Corporation) C:\windows\system32\MRT.exe
2017-09-04 01:17 - 2017-09-04 01:18 - 000000000 ____D C:\Program Files\UNP
2017-09-04 01:17 - 2017-09-04 01:17 - 000000000 ____D C:\windows\system32\UNP
2017-09-04 01:09 - 2016-12-21 09:08 - 000142848 _____ (Microsoft Corporation) C:\windows\system32\poqexec.exe
2017-09-04 01:09 - 2016-12-21 06:44 - 000120320 _____ (Microsoft Corporation) C:\windows\SysWOW64\poqexec.exe
2017-09-04 01:00 - 2017-09-04 01:00 - 000103859 _____ C:\Users\C\Downloads\towelroot-1-0-en-android.apk
2017-09-03 23:45 - 2017-09-03 23:45 - 000003366 _____ C:\windows\System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-2775449184-814585837-182124203-1001
2017-09-03 23:40 - 2017-09-03 23:40 - 000000000 ____D C:\Users\C\AppData\Roaming\Skype
2017-09-03 16:49 - 2017-09-03 16:49 - 000000000 ___HD C:\windows\system32\CanonMF Uninstaller Information
2017-09-03 16:49 - 2017-09-03 16:49 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon
2017-09-03 16:49 - 2011-05-18 08:46 - 000416768 _____ (CANON INC.) C:\windows\system32\CNCC8300C.DLL
2017-09-03 16:49 - 2011-05-18 08:46 - 000275456 _____ (CANON INC.) C:\windows\system32\CNCLSU42b.DLL
2017-09-03 16:49 - 2011-05-18 08:46 - 000157696 _____ (CANON INC.) C:\windows\system32\CNCE8300C.DLL
2017-09-03 16:49 - 2011-05-18 08:46 - 000146432 _____ (CANON INC.) C:\windows\system32\CNCLSD42b.DLL
2017-09-03 16:49 - 2011-05-18 08:46 - 000134656 _____ (CANON INC.) C:\windows\system32\CNCLSI42b.DLL
2017-09-03 16:49 - 2011-05-18 08:46 - 000123392 _____ (CANON INC.) C:\windows\system32\CNCLST42b.DLL
2017-09-03 16:49 - 2011-05-18 08:46 - 000122368 _____ (CANON INC.) C:\windows\system32\CNCI8300C.DLL
2017-09-03 16:49 - 2011-05-18 08:46 - 000100352 _____ (CANON INC.) C:\windows\system32\CNCLSC42b.DLL
2017-09-03 16:49 - 2011-05-18 08:46 - 000049664 _____ (CANON INC.) C:\windows\system32\CNCLSO42b.dll
2017-09-03 16:49 - 2011-05-18 08:45 - 000155136 _____ (CANON INC.) C:\windows\system32\CNCL8300C.DLL
2017-09-03 16:49 - 2011-03-08 12:20 - 000000439 _____ C:\windows\system32\CNCMFP42.INI
2017-09-03 16:48 - 2017-09-03 16:48 - 000000000 ____D C:\Users\C\Downloads\MF8380CdwMFDriversV2055W64EN
2017-09-03 16:48 - 2017-09-03 16:48 - 000000000 ____D C:\Program Files\Canon
2017-09-03 16:48 - 2011-04-11 16:43 - 000968192 _____ (CANON INC.) C:\windows\system32\CNAS0MOK.DLL
2017-09-03 16:45 - 2017-09-03 16:48 - 047369424 _____ C:\Users\C\Downloads\MF8380CdwMFDriversV2055W64EN.exe
2017-09-03 16:43 - 2017-09-03 16:43 - 009640061 _____ C:\Users\C\Downloads\MF8380Cdw_FirmwareUpdateTool_V1004_EN.dmg
2017-09-03 16:39 - 2017-09-03 16:39 - 014073408 _____ C:\Users\C\Downloads\LBP5000_R150_V331_W64_uk_EN_1.exe
2017-09-03 16:37 - 2017-09-03 16:37 - 003007502 _____ C:\Users\C\Documents\jizdni rad2.pdf
2017-09-03 16:35 - 2017-09-03 16:35 - 002430066 _____ C:\Users\C\Documents\jizdni rad.pdf
2017-09-03 16:33 - 2017-09-05 11:26 - 000004020 _____ C:\windows\System32\Tasks\Intel Security DAT Reputation (AMCore) periodic endpoint safety pulse
2017-09-03 16:33 - 2017-09-05 10:45 - 000004208 _____ C:\windows\System32\Tasks\Intel Security DAT Reputation (AMCore) Post DAT update endpoint safety pulse
2017-09-03 13:00 - 2017-09-03 13:00 - 000000000 ____D C:\Users\C\Desktop\OpenOffice 4.1.3 (cs) Installation Files
2017-09-03 12:59 - 2017-09-03 12:59 - 000120411 _____ C:\Users\C\Documents\das.pdf
2017-09-03 12:55 - 2017-09-03 13:00 - 128605432 _____ C:\Users\C\Downloads\Apache_OpenOffice_4.1.3_Win_x86_install_cs.exe
2017-09-03 12:35 - 2017-09-03 12:35 - 000000000 ____D C:\Users\C\AppData\Roaming\KingRoot
2017-09-03 12:34 - 2017-09-04 00:48 - 000000000 ____D C:\Program Files (x86)\KingRoot
2017-09-03 12:34 - 2017-09-03 16:28 - 000000000 ____D C:\Users\C\AppData\Roaming\Tencent
2017-09-03 12:34 - 2017-09-03 12:34 - 000001083 _____ C:\Users\Public\Desktop\KingRoot.lnk
2017-09-03 12:34 - 2017-09-03 12:34 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\KingRoot
2017-09-03 12:33 - 2017-09-03 12:34 - 032120384 _____ (KingRoot ) C:\Users\C\Downloads\KingRoot_pc_en.exe
2017-09-03 12:15 - 2017-09-03 12:15 - 000000000 ____H C:\windows\system32\Drivers\Msft_User_WpdMtpDr_01_11_00.Wdf
2017-09-03 12:15 - 2017-09-03 12:15 - 000000000 ____D C:\Users\C\.android
2017-09-03 12:11 - 2017-09-03 12:11 - 000002192 _____ C:\Users\C\Desktop\One Click Root.lnk
2017-09-03 12:11 - 2017-09-03 12:11 - 000001264 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\One Click Root.lnk
2017-09-03 12:11 - 2017-09-03 12:11 - 000000000 ____D C:\Users\C\AppData\Local\oneClickRoot
2017-09-03 12:11 - 2017-09-03 12:11 - 000000000 ____D C:\Users\C\AppData\Local\AWSToolkit
2017-09-03 12:11 - 2017-09-03 12:11 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\One Click Root
2017-09-03 12:11 - 2017-09-03 12:11 - 000000000 ____D C:\Program Files (x86)\One Click Root
2017-09-03 12:10 - 2017-09-03 12:10 - 000000000 ____D C:\Users\C\AppData\Roaming\One Click Root
2017-09-03 12:09 - 2017-09-03 12:09 - 001036272 _____ () C:\Users\C\Downloads\OneClickRoot (1).exe
2017-09-03 12:09 - 2017-09-03 12:09 - 000000000 ____D C:\Users\C\AppData\Local\IsolatedStorage
2017-09-03 12:07 - 2017-09-03 12:07 - 001036272 _____ () C:\Users\C\Downloads\OneClickRoot.exe
2017-09-03 11:54 - 2017-09-04 14:09 - 000000000 ____D C:\Users\C\AppData\Roaming\hpqLog
2017-09-03 11:54 - 2017-09-03 11:54 - 000000000 ____D C:\Users\C\AppData\Local\Hewlett-Packard
2017-09-03 11:25 - 2017-09-03 11:25 - 000000000 ____D C:\Users\C\AppData\Roaming\Macromedia
2017-09-03 11:22 - 2017-09-03 11:22 - 000004090 _____ C:\windows\System32\Tasks\HPGenoobeReminder
2017-09-03 11:05 - 2017-09-03 11:05 - 000000000 ____D C:\Users\C\AppData\Local\MicrosoftEdge
2017-09-03 10:45 - 2017-09-03 10:45 - 000000000 ____D C:\Users\C\AppData\Local\Comms
2017-09-03 10:34 - 2016-07-16 13:43 - 000033498 _____ C:\windows\Core.xml
2017-09-03 10:31 - 2017-09-03 10:31 - 000000000 ____D C:\Users\C\AppData\Roaming\Hewlett-Packard
2017-09-03 10:30 - 2017-09-03 23:45 - 000002382 _____ C:\Users\C\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2017-09-03 10:30 - 2017-09-03 23:45 - 000000000 ___RD C:\Users\C\OneDrive
2017-09-03 10:28 - 2017-09-03 11:22 - 000000000 ____D C:\Users\C\AppData\Roaming\HP
2017-09-03 10:28 - 2017-09-03 11:14 - 000000000 ____D C:\Users\C\AppData\Roaming\DropboxOEM
2017-09-03 10:28 - 2017-09-03 10:28 - 000000000 ____D C:\Users\C\AppData\Local\DropboxOEM
2017-09-03 10:27 - 2017-09-03 10:27 - 000000000 ____D C:\Users\C\AppData\Local\Publishers
2017-09-03 10:26 - 2017-09-04 07:55 - 000000000 __SHD C:\Users\C\IntelGraphicsProfiles
2017-09-03 10:26 - 2017-09-03 17:13 - 000000000 ____D C:\Users\C\AppData\Local\ConnectedDevicesPlatform
2017-09-03 10:26 - 2017-09-03 12:21 - 000000000 ____D C:\Users\C\AppData\Local\Packages
2017-09-03 10:26 - 2017-09-03 12:15 - 000000000 ____D C:\Users\C
2017-09-03 10:26 - 2017-09-03 10:26 - 000000020 ___SH C:\Users\C\ntuser.ini
2017-09-03 10:26 - 2017-09-03 10:26 - 000000000 _SHDL C:\Users\C\Šablony
2017-09-03 10:26 - 2017-09-03 10:26 - 000000000 _SHDL C:\Users\C\Soubory cookie
2017-09-03 10:26 - 2017-09-03 10:26 - 000000000 _SHDL C:\Users\C\Poslední
2017-09-03 10:26 - 2017-09-03 10:26 - 000000000 _SHDL C:\Users\C\Okolní tiskárny
2017-09-03 10:26 - 2017-09-03 10:26 - 000000000 _SHDL C:\Users\C\Okolní síť
2017-09-03 10:26 - 2017-09-03 10:26 - 000000000 _SHDL C:\Users\C\Nabídka Start
2017-09-03 10:26 - 2017-09-03 10:26 - 000000000 _SHDL C:\Users\C\Dokumenty
2017-09-03 10:26 - 2017-09-03 10:26 - 000000000 _SHDL C:\Users\C\Documents\Obrázky
2017-09-03 10:26 - 2017-09-03 10:26 - 000000000 _SHDL C:\Users\C\Documents\Hudba
2017-09-03 10:26 - 2017-09-03 10:26 - 000000000 _SHDL C:\Users\C\Documents\Filmy
2017-09-03 10:26 - 2017-09-03 10:26 - 000000000 _SHDL C:\Users\C\Data aplikací
2017-09-03 10:26 - 2017-09-03 10:26 - 000000000 _SHDL C:\Users\C\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2017-09-03 10:26 - 2017-09-03 10:26 - 000000000 _SHDL C:\Users\C\AppData\Local\Data aplikací
2017-09-03 10:26 - 2017-09-03 10:26 - 000000000 ____D C:\Users\C\AppData\Roaming\Synaptics
2017-09-03 10:26 - 2017-09-03 10:26 - 000000000 ____D C:\Users\C\AppData\Roaming\Intel
2017-09-03 10:26 - 2017-09-03 10:26 - 000000000 ____D C:\Users\C\AppData\Roaming\Adobe
2017-09-03 10:26 - 2017-09-03 10:26 - 000000000 ____D C:\Users\C\AppData\Local\VirtualStore
2017-09-03 10:26 - 2017-09-03 10:26 - 000000000 ____D C:\Users\C\AppData\Local\TileDataLayer
2017-09-03 10:26 - 2016-10-24 09:06 - 000000000 ___HD C:\Users\C\Documents\hp.system.package.metadata
2017-09-03 10:26 - 2016-10-24 09:06 - 000000000 ___HD C:\Users\C\Documents\hp.applications.package.appdata
2017-09-03 10:25 - 2017-09-04 07:55 - 000000180 _____ C:\windows\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2017-09-03 10:25 - 2017-09-03 10:25 - 000000000 __SHD C:\Users\defaultuser0\IntelGraphicsProfiles
2017-09-03 10:25 - 2017-09-03 10:25 - 000000000 ____D C:\Users\defaultuser0\AppData\Roaming\Synaptics
2017-09-03 10:25 - 2017-09-03 10:25 - 000000000 ____D C:\Users\defaultuser0\AppData\Roaming\Intel
2017-09-03 10:25 - 2017-09-03 10:25 - 000000000 ____D C:\Users\defaultuser0\AppData\Local\VirtualStore
2017-09-03 10:25 - 2017-09-03 10:25 - 000000000 ____D C:\Users\defaultuser0\AppData\Local\TileDataLayer
2017-09-03 10:25 - 2017-09-03 10:25 - 000000000 ____D C:\Users\defaultuser0\AppData\Local\Packages
2017-09-03 10:25 - 2017-09-03 10:25 - 000000000 ____D C:\Users\defaultuser0\AppData\Local\ConnectedDevicesPlatform
2017-09-03 10:24 - 2017-09-03 10:25 - 000000000 ____D C:\Users\defaultuser0
2017-09-03 10:24 - 2017-09-03 10:24 - 000000020 ___SH C:\Users\defaultuser0\ntuser.ini
2017-09-03 10:24 - 2017-09-03 10:24 - 000000000 _SHDL C:\Users\defaultuser0\Šablony
2017-09-03 10:24 - 2017-09-03 10:24 - 000000000 _SHDL C:\Users\defaultuser0\Soubory cookie
2017-09-03 10:24 - 2017-09-03 10:24 - 000000000 _SHDL C:\Users\defaultuser0\Poslední
2017-09-03 10:24 - 2017-09-03 10:24 - 000000000 _SHDL C:\Users\defaultuser0\Okolní tiskárny
2017-09-03 10:24 - 2017-09-03 10:24 - 000000000 _SHDL C:\Users\defaultuser0\Okolní síť
2017-09-03 10:24 - 2017-09-03 10:24 - 000000000 _SHDL C:\Users\defaultuser0\Nabídka Start
2017-09-03 10:24 - 2017-09-03 10:24 - 000000000 _SHDL C:\Users\defaultuser0\Dokumenty
2017-09-03 10:24 - 2017-09-03 10:24 - 000000000 _SHDL C:\Users\defaultuser0\Documents\Obrázky
2017-09-03 10:24 - 2017-09-03 10:24 - 000000000 _SHDL C:\Users\defaultuser0\Documents\Hudba
2017-09-03 10:24 - 2017-09-03 10:24 - 000000000 _SHDL C:\Users\defaultuser0\Documents\Filmy
2017-09-03 10:24 - 2017-09-03 10:24 - 000000000 _SHDL C:\Users\defaultuser0\Data aplikací
2017-09-03 10:24 - 2017-09-03 10:24 - 000000000 _SHDL C:\Users\defaultuser0\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2017-09-03 10:24 - 2017-09-03 10:24 - 000000000 _SHDL C:\Users\defaultuser0\AppData\Local\Data aplikací
2017-09-03 10:24 - 2016-10-24 09:06 - 000000000 ___HD C:\Users\defaultuser0\Documents\hp.system.package.metadata
2017-09-03 10:24 - 2016-10-24 09:06 - 000000000 ___HD C:\Users\defaultuser0\Documents\hp.applications.package.appdata
2017-09-03 02:57 - 2017-09-03 02:57 - 000000000 _SHDL C:\Users\Public\Documents\Obrázky
2017-09-03 02:57 - 2017-09-03 02:57 - 000000000 _SHDL C:\Users\Public\Documents\Hudba
2017-09-03 02:57 - 2017-09-03 02:57 - 000000000 _SHDL C:\Users\Public\Documents\Filmy
2017-09-03 02:57 - 2017-09-03 02:57 - 000000000 _SHDL C:\Users\Default\Šablony
2017-09-03 02:57 - 2017-09-03 02:57 - 000000000 _SHDL C:\Users\Default\Soubory cookie
2017-09-03 02:57 - 2017-09-03 02:57 - 000000000 _SHDL C:\Users\Default\Poslední
2017-09-03 02:57 - 2017-09-03 02:57 - 000000000 _SHDL C:\Users\Default\Okolní tiskárny
2017-09-03 02:57 - 2017-09-03 02:57 - 000000000 _SHDL C:\Users\Default\Okolní síť
2017-09-03 02:57 - 2017-09-03 02:57 - 000000000 _SHDL C:\Users\Default\Nabídka Start
2017-09-03 02:57 - 2017-09-03 02:57 - 000000000 _SHDL C:\Users\Default\Dokumenty
2017-09-03 02:57 - 2017-09-03 02:57 - 000000000 _SHDL C:\Users\Default\Documents\Obrázky
2017-09-03 02:57 - 2017-09-03 02:57 - 000000000 _SHDL C:\Users\Default\Documents\Hudba
2017-09-03 02:57 - 2017-09-03 02:57 - 000000000 _SHDL C:\Users\Default\Documents\Filmy
2017-09-03 02:57 - 2017-09-03 02:57 - 000000000 _SHDL C:\Users\Default\Data aplikací
2017-09-03 02:57 - 2017-09-03 02:57 - 000000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2017-09-03 02:57 - 2017-09-03 02:57 - 000000000 _SHDL C:\Users\Default\AppData\Local\Data aplikací
2017-09-03 02:57 - 2017-09-03 02:57 - 000000000 _SHDL C:\Users\Default User\Documents\Obrázky
2017-09-03 02:57 - 2017-09-03 02:57 - 000000000 _SHDL C:\Users\Default User\Documents\Hudba
2017-09-03 02:57 - 2017-09-03 02:57 - 000000000 _SHDL C:\Users\Default User\Documents\Filmy
2017-09-03 02:57 - 2017-09-03 02:57 - 000000000 _SHDL C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2017-09-03 02:57 - 2017-09-03 02:57 - 000000000 _SHDL C:\Users\Default User\AppData\Local\Data aplikací
2017-09-03 02:57 - 2017-09-03 02:57 - 000000000 _SHDL C:\ProgramData\Šablony
2017-09-03 02:57 - 2017-09-03 02:57 - 000000000 _SHDL C:\ProgramData\Plocha
2017-09-03 02:57 - 2017-09-03 02:57 - 000000000 _SHDL C:\ProgramData\Nabídka Start
2017-09-03 02:57 - 2017-09-03 02:57 - 000000000 _SHDL C:\ProgramData\Microsoft\Windows\Start Menu\Programy
2017-09-03 02:57 - 2017-09-03 02:57 - 000000000 _SHDL C:\ProgramData\Dokumenty
2017-09-03 02:57 - 2017-09-03 02:57 - 000000000 _SHDL C:\ProgramData\Data aplikací
2017-09-03 02:57 - 2017-09-03 02:57 - 000000000 _SHDL C:\Documents and Settings
2017-09-03 01:45 - 2017-09-03 02:19 - 000020958 _____ C:\windows\diagwrn.xml
2017-09-03 01:45 - 2017-09-03 02:19 - 000020958 _____ C:\windows\diagerr.xml
2017-09-03 01:25 - 2016-08-02 01:03 - 000216704 _____ (McAfee, Inc.) C:\windows\system32\Drivers\HipShieldK.sys
2017-09-03 01:24 - 2017-09-05 10:48 - 000003126 _____ C:\windows\System32\Tasks\McAfeeLogon
2017-09-03 01:24 - 2017-09-05 10:48 - 000000000 ____D C:\windows\System32\Tasks\McAfee
2017-09-03 01:24 - 2017-09-03 01:24 - 000000000 ____D C:\ProgramData\Intel Security
2017-09-03 01:22 - 2016-04-26 17:56 - 000277744 _____ (McAfee, Inc.) C:\windows\system32\mfevtps.exe
2017-09-03 01:21 - 2017-09-05 10:54 - 000000000 ____D C:\ProgramData\McAfee
2017-09-03 01:21 - 2017-09-05 10:50 - 000000000 ____D C:\Program Files\Common Files\McAfee
2017-09-03 01:21 - 2017-09-05 10:42 - 000000000 ____D C:\Program Files (x86)\McAfee
2017-09-03 01:21 - 2017-09-03 01:26 - 000000000 ____D C:\Program Files\mcafee
2017-09-03 01:21 - 2017-09-03 01:21 - 000000000 ____D C:\Program Files\mcafee.com
2017-09-03 01:21 - 2017-09-03 01:21 - 000000000 ____D C:\Program Files\Common Files\Intel Security
2017-09-03 01:21 - 2017-09-03 01:21 - 000000000 ____D C:\Program Files\Common Files\AV
2017-09-03 01:19 - 2017-09-03 01:19 - 000002283 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Booking.com.lnk
2017-09-03 01:18 - 2017-09-03 01:18 - 000002376 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CyberLink Power Media Player 14.lnk
2017-09-03 01:16 - 2017-09-03 01:17 - 000000000 ____D C:\ProgramData\Temp
2017-09-03 01:16 - 2017-09-03 01:16 - 000000000 ____D C:\windows\HP
2017-09-03 01:15 - 2017-09-03 01:15 - 000000000 __RSH C:\windows\SysWOW64\Drivers\103C_HP_bNB_250 G5 Notebook PC_Y5336AN_0U_QCND7142QP5_ECND6222F37A6 DPS_4A_I81F1_SHP_V64.42_BF.24_T170120_W1101-0_L405_M3939_J500_7Intel_86C4_91.60_#170903_N80863165;10EC8168_(Z2Z08ES#BCM)_XMOBILE_CN10_Z.MRK
2017-09-03 01:15 - 2017-09-03 01:15 - 000000000 __RSH C:\windows\system32\Drivers\103C_HP_bNB_250 G5 Notebook PC_Y5336AN_0U_QCND7142QP5_ECND6222F37A6 DPS_4A_I81F1_SHP_V64.42_BF.24_T170120_W1101-0_L405_M3939_J500_7Intel_86C4_91.60_#170903_N80863165;10EC8168_(Z2Z08ES#BCM)_XMOBILE_CN10_Z.MRK
2017-09-03 01:13 - 2017-09-03 01:13 - 000015868 _____ C:\windows\system32\results.xml
2017-09-03 01:13 - 2017-09-03 01:13 - 000000000 ____D C:\ProgramData\Synaptics
2017-09-03 01:10 - 2017-09-03 02:57 - 000002252 _____ C:\windows\System32\Tasks\HPJumpStartProvider
2017-09-03 01:07 - 2017-09-03 01:07 - 000000000 ____H C:\windows\system32\Drivers\Msft_Kernel_SynTP_01011.Wdf
2017-09-03 01:07 - 2017-09-03 01:07 - 000000000 ____H C:\windows\system32\Drivers\Msft_Kernel_Smb_driver_Intel_01011.Wdf
2017-09-03 01:07 - 2017-09-03 01:07 - 000000000 ____D C:\Program Files\Synaptics
2017-09-03 01:07 - 2017-04-26 08:26 - 000072792 _____ (Synaptics Incorporated) C:\windows\system32\Drivers\Smb_driver_Intel.sys
2017-09-03 01:07 - 2016-08-25 16:02 - 000060008 _____ (Synaptics Incorporated) C:\windows\system32\Drivers\Smb_driver_AMDASF.sys
2017-09-03 01:06 - 2017-09-03 02:22 - 000000000 ____D C:\windows\SysWOW64\sda
2017-09-03 01:05 - 2017-09-03 01:05 - 000000000 ___HD C:\windows\system32\WLANProfiles
2017-09-03 01:05 - 2017-09-03 01:05 - 000000000 ____D C:\Program Files\Common Files\Intel
2017-09-03 01:05 - 2016-09-23 12:12 - 009891328 _____ (Realtek Semiconductor Corp.) C:\windows\SysWOW64\RsCRIcon.dll
2017-09-03 01:05 - 2016-09-23 12:12 - 004332032 _____ (Realtek Semiconductor Corp.) C:\windows\RtCRU64.exe
2017-09-03 01:05 - 2016-09-23 12:12 - 000418784 _____ (Realsil Semiconductor Corporation) C:\windows\system32\Drivers\RtsUer.sys
2017-09-03 01:05 - 2016-09-23 12:12 - 000084480 _____ (Realtek Semiconductor.) C:\windows\system32\RtCRX64.dll
2017-09-03 01:02 - 2016-09-20 13:20 - 000103960 _____ (Khronos Group) C:\windows\SysWOW64\OpenCL.DLL
2017-09-03 01:02 - 2016-09-20 13:20 - 000099864 _____ (Khronos Group) C:\windows\system32\OpenCL.DLL
2017-09-03 01:02 - 2016-08-26 13:04 - 000943112 _____ (Realtek ) C:\windows\system32\Drivers\rt640x64.sys
2017-09-03 01:02 - 2016-08-26 13:04 - 000082544 _____ (Realtek Semiconductor Corporation) C:\windows\system32\RtNicProp64.dll
2017-09-03 01:01 - 2017-09-03 01:01 - 000000000 _____ C:\windows\system32\GfxValDisplayLog.bin
2017-09-03 00:59 - 2017-09-03 01:06 - 000000000 ____D C:\Program Files\Intel
2017-09-03 00:59 - 2017-09-03 01:06 - 000000000 ____D C:\Program Files (x86)\Intel
2017-09-03 00:59 - 2017-09-03 01:05 - 000000000 ____D C:\ProgramData\Intel
2017-09-03 00:59 - 2017-09-03 01:01 - 000000000 ____D C:\Intel
2017-09-03 00:59 - 2017-09-03 00:59 - 000049091 _____ C:\windows\system32\Drivers\rtkhdasetting.zip
2017-09-03 00:59 - 2017-09-03 00:59 - 000001851 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DTS Audio Control.lnk
2017-09-03 00:59 - 2017-09-03 00:59 - 000000000 ____H C:\windows\system32\Drivers\Msft_User_esif_umdf2_02_00_00.Wdf
2017-09-03 00:59 - 2017-09-03 00:59 - 000000000 ____D C:\ProgramData\SRS Labs
2017-09-03 00:59 - 2016-07-05 13:13 - 001804688 _____ (Microsoft Corporation) C:\windows\system32\Drivers\WdfCoInstaller01011.dll
2017-09-03 00:59 - 2016-07-05 13:13 - 001419424 _____ (Intel Corporation) C:\windows\SysWOW64\esif_uf.exe
2017-09-03 00:59 - 2016-07-05 13:13 - 000971944 _____ (Microsoft Corporation) C:\windows\system32\msvcr120.dll
2017-09-03 00:59 - 2016-07-05 13:13 - 000668840 _____ (Microsoft Corporation) C:\windows\system32\msvcp120.dll
2017-09-03 00:59 - 2016-07-05 13:13 - 000260080 _____ (Intel Corporation) C:\windows\system32\Drivers\esif_lf.sys
2017-09-03 00:59 - 2016-07-05 13:13 - 000055792 _____ (Intel Corporation) C:\windows\system32\Drivers\dptf_acpi.sys
2017-09-03 00:59 - 2016-07-05 13:13 - 000052208 _____ (Intel Corporation) C:\windows\system32\Drivers\dptf_cpu.sys
2017-09-03 00:58 - 2017-09-03 01:05 - 000000000 ____D C:\Program Files (x86)\Realtek
2017-09-03 00:58 - 2017-09-03 00:59 - 000000000 ___HD C:\Program Files (x86)\Temp
2017-09-03 00:58 - 2017-09-03 00:58 - 000000000 ____D C:\windows\SysWOW64\RTCOM
2017-09-03 00:58 - 2017-09-03 00:58 - 000000000 ____D C:\windows\system32\SRSLabs
2017-09-03 00:58 - 2017-09-03 00:58 - 000000000 ____D C:\Program Files\Realtek
2017-09-03 00:58 - 2016-10-14 16:27 - 072520720 _____ (Realtek Semiconductor Corp.) C:\windows\system32\RCoRes64.dat
2017-09-03 00:58 - 2016-10-14 16:27 - 007182705 _____ C:\windows\system32\Drivers\RTAIODAT.DAT
2017-09-03 00:58 - 2016-10-14 16:27 - 005337608 _____ (Realtek Semiconductor Corp.) C:\windows\system32\Drivers\RTKVHD64.sys
2017-09-03 00:58 - 2016-10-14 16:27 - 003283248 _____ (Realtek Semiconductor Corp.) C:\windows\system32\RtkApi64.dll
2017-09-03 00:58 - 2016-10-14 16:27 - 003203592 _____ (Realtek Semiconductor Corp.) C:\windows\system32\RtPgEx64.dll
2017-09-03 00:58 - 2016-10-14 16:27 - 003135752 _____ (Realtek Semiconductor Corp.) C:\windows\system32\RltkAPO64.dll
2017-09-03 00:58 - 2016-10-14 16:27 - 002895104 _____ (Realtek Semiconductor Corp.) C:\windows\system32\RTSnMg64.cpl
2017-09-03 00:58 - 2016-10-14 16:27 - 002706872 _____ (DTS, Inc.) C:\windows\system32\sltech64.dll
2017-09-03 00:58 - 2016-10-14 16:27 - 002203752 _____ (DTS, Inc.) C:\windows\system32\slcnt64.dll
2017-09-03 00:58 - 2016-10-14 16:27 - 002073096 _____ (Realtek Semiconductor Corp.) C:\windows\system32\RCoInstII64.dll
2017-09-03 00:58 - 2016-10-14 16:27 - 001618040 _____ (Conexant Systems Inc.) C:\windows\system32\CX64APO.dll
2017-09-03 00:58 - 2016-10-14 16:27 - 001529144 _____ (Conexant Systems Inc.) C:\windows\system32\CX64Proxy.dll
2017-09-03 00:58 - 2016-10-14 16:27 - 001435152 _____ (Synopsys, Inc.) C:\windows\system32\SRRPTR64.dll
2017-09-03 00:58 - 2016-10-14 16:27 - 001360528 _____ (Realtek Semiconductor Corp.) C:\windows\system32\RTCOM64.dll
2017-09-03 00:58 - 2016-10-14 16:27 - 001041744 _____ (DTS, Inc.) C:\windows\system32\sl3apo64.dll
2017-09-03 00:58 - 2016-10-14 16:27 - 001002312 _____ (Sound Research, Corp.) C:\windows\system32\SEHDHF64.dll
2017-09-03 00:58 - 2016-10-14 16:27 - 000865408 _____ (Sound Research, Corp.) C:\windows\SysWOW64\SEHDHF32.dll
2017-09-03 00:58 - 2016-10-14 16:27 - 000858208 _____ (Sound Research, Corp.) C:\windows\system32\SEHDRA64.dll
2017-09-03 00:58 - 2016-10-14 16:27 - 000850408 _____ (Sound Research, Corp.) C:\windows\system32\SECOMN64.dll
2017-09-03 00:58 - 2016-10-14 16:27 - 000721816 _____ (Sound Research, Corp.) C:\windows\SysWOW64\SECOMN32.dll
2017-09-03 00:58 - 2016-10-14 16:27 - 000689888 _____ (Realtek Semiconductor Corp.) C:\windows\system32\RtDataProc64.dll
2017-09-03 00:58 - 2016-10-14 16:27 - 000574760 _____ (Andrea Electronics Corporation) C:\windows\system32\AERTAC64.dll
2017-09-03 00:58 - 2016-10-14 16:27 - 000532384 _____ (SRS Labs, Inc.) C:\windows\system32\SRSTSX64.dll
2017-09-03 00:58 - 2016-10-14 16:27 - 000499160 _____ (Sound Research, Corp.) C:\windows\system32\SEAPO64.dll
2017-09-03 00:58 - 2016-10-14 16:27 - 000467168 _____ (Synopsys, Inc.) C:\windows\system32\SRAPO64.dll
2017-09-03 00:58 - 2016-10-14 16:27 - 000438696 _____ (Conexant Systems, Inc.) C:\windows\system32\CAF64APO2.dll
2017-09-03 00:58 - 2016-10-14 16:27 - 000387320 _____ (Dolby Laboratories, Inc.) C:\windows\system32\RTEEP64A.dll
2017-09-03 00:58 - 2016-10-14 16:27 - 000381416 _____ (Synopsys, Inc.) C:\windows\system32\SRCOM64.dll
2017-09-03 00:58 - 2016-10-14 16:27 - 000343712 _____ (Realtek Semiconductor Corp.) C:\windows\system32\RtlCPAPI64.dll
2017-09-03 00:58 - 2016-10-14 16:27 - 000341152 _____ (Synopsys, Inc.) C:\windows\SysWOW64\SRCOM.dll
2017-09-03 00:58 - 2016-10-14 16:27 - 000341152 _____ (Synopsys, Inc.) C:\windows\system32\SRCOM.dll
2017-09-03 00:58 - 2016-10-14 16:27 - 000321720 _____ (Dolby Laboratories, Inc.) C:\windows\system32\RP3DAA64.dll
2017-09-03 00:58 - 2016-10-14 16:27 - 000321712 _____ (Dolby Laboratories, Inc.) C:\windows\system32\RP3DHT64.dll
2017-09-03 00:58 - 2016-10-14 16:27 - 000258872 _____ (TODO: <Company name>) C:\windows\system32\slprp64.dll
2017-09-03 00:58 - 2016-10-14 16:27 - 000214840 _____ (Dolby Laboratories, Inc.) C:\windows\system32\RTEED64A.dll
2017-09-03 00:58 - 2016-10-14 16:27 - 000192992 _____ (Realtek Semiconductor Corp.) C:\windows\system32\RtkCfg64.dll
2017-09-03 00:58 - 2016-10-14 16:27 - 000166200 _____ (SRS Labs, Inc.) C:\windows\system32\SRSWOW64.dll
2017-09-03 00:58 - 2016-10-14 16:27 - 000122328 _____ (Real Sound Lab SIA) C:\windows\system32\CONEQMSAPOGUILibrary.dll
2017-09-03 00:58 - 2016-10-14 16:27 - 000118600 _____ (Andrea Electronics Corporation) C:\windows\system32\AERTAR64.dll
2017-09-03 00:58 - 2016-10-14 16:27 - 000112504 _____ (Conexant Systems, Inc.) C:\windows\system32\Caf64api.dll
2017-09-03 00:58 - 2016-10-14 16:27 - 000110984 _____ (Dolby Laboratories, Inc.) C:\windows\system32\RTEEL64A.dll
2017-09-03 00:58 - 2016-10-14 16:27 - 000088352 _____ (Dolby Laboratories, Inc.) C:\windows\system32\RTEEG64A.dll
2017-09-03 00:58 - 2016-10-14 16:27 - 000023704 _____ (Realtek Semiconductor Corp.) C:\windows\system32\RtkCoLDR64.dll
2017-09-03 00:58 - 2016-10-14 16:27 - 000005604 _____ C:\windows\system32\cxapo.lncs
2017-09-03 00:58 - 2016-10-14 16:27 - 000000736 _____ C:\windows\system32\cxapo.prop
2017-09-03 00:58 - 2016-10-14 16:26 - 002839520 _____ (Realtek Semiconductor Corp.) C:\windows\RtlExUpd.dll
2017-09-03 00:54 - 2017-09-03 01:18 - 000000000 ____D C:\ProgramData\CyberLink
2017-09-03 00:54 - 2017-09-03 01:18 - 000000000 ____D C:\Program Files (x86)\NSIS Uninstall Information
2017-09-03 00:54 - 2017-09-03 01:17 - 000000000 ____D C:\Program Files (x86)\CyberLink
2017-09-03 00:54 - 2017-09-03 00:54 - 000002198 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CyberLink PowerDirector.lnk
2017-09-03 00:52 - 2017-09-03 00:54 - 000000000 ____D C:\Program Files\CyberLink
2017-09-03 00:51 - 2017-09-03 01:18 - 000000000 ____D C:\ProgramData\install_clap
2017-09-03 00:51 - 2017-09-03 01:16 - 000000000 ____D C:\ProgramData\SUPPORTDIR
2017-09-03 00:51 - 2017-09-03 01:16 - 000000000 ____D C:\ProgramData\install_backup
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2017-09-05 10:59 - 2016-07-16 13:47 - 000000000 ____D C:\windows\AppReadiness
2017-09-05 10:49 - 2016-07-16 13:45 - 000000000 ____D C:\windows\INF
2017-09-05 10:36 - 2016-07-16 13:47 - 000000000 ____D C:\windows\appcompat
2017-09-05 10:35 - 2016-07-29 14:32 - 000000000 ____D C:\windows\system32\SleepStudy
2017-09-04 08:13 - 2016-07-16 13:36 - 000000000 ____D C:\windows\CbsTemp
2017-09-04 07:56 - 2016-07-16 13:47 - 000000000 ____D C:\Program Files\Common Files\microsoft shared
2017-09-04 01:12 - 2016-07-16 13:47 - 000000000 ___HD C:\Program Files\WindowsApps
2017-09-03 23:48 - 2016-10-24 18:14 - 000537472 _____ C:\windows\system32\perfh005.dat
2017-09-03 23:48 - 2016-10-24 18:14 - 000117116 _____ C:\windows\system32\perfc005.dat
2017-09-03 23:48 - 2016-07-29 14:37 - 001752520 _____ C:\windows\system32\PerfStringBackup.INI
2017-09-03 23:45 - 2016-07-16 13:47 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2017-09-03 23:23 - 2016-10-24 09:09 - 000000948 _____ C:\windows\Tasks\DropboxUpdateTaskMachineUA.job
2017-09-03 23:23 - 2016-10-24 09:09 - 000000944 _____ C:\windows\Tasks\DropboxUpdateTaskMachineCore.job
2017-09-03 23:23 - 2016-07-29 14:32 - 000000006 ____H C:\windows\Tasks\SA.DAT
2017-09-03 23:11 - 2016-07-16 08:04 - 000262144 _____ C:\windows\system32\config\BBI
2017-09-03 21:37 - 2016-10-24 09:09 - 000000000 ____D C:\Program Files (x86)\Microsoft Office
2017-09-03 17:27 - 2016-07-16 13:47 - 000000000 __RSD C:\windows\Media
2017-09-03 11:15 - 2016-10-24 09:09 - 000003186 _____ C:\windows\System32\Tasks\DropboxOEM
2017-09-03 11:15 - 2016-10-24 09:09 - 000002143 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dropbox 25 GB.lnk
2017-09-03 11:15 - 2016-10-24 09:09 - 000000000 ____D C:\Program Files (x86)\Dropbox
2017-09-03 11:08 - 2016-10-24 09:09 - 000004008 _____ C:\windows\System32\Tasks\DropboxUpdateTaskMachineUA
2017-09-03 11:08 - 2016-10-24 09:09 - 000003776 _____ C:\windows\System32\Tasks\DropboxUpdateTaskMachineCore
2017-09-03 10:35 - 2016-10-24 18:28 - 000000012 _____ C:\windows\CSUP.txt
2017-09-03 10:32 - 2016-07-16 08:04 - 000032768 _____ C:\windows\system32\config\ELAM
2017-09-03 10:31 - 2016-10-24 09:05 - 000000000 ____D C:\windows\System32\Tasks\Hewlett-Packard
2017-09-03 10:31 - 2016-10-24 09:05 - 000000000 ____D C:\ProgramData\Hewlett-Packard
2017-09-03 10:29 - 2016-07-16 13:47 - 000028672 _____ C:\windows\system32\config\BCD-Template
2017-09-03 10:27 - 2016-08-23 21:10 - 000000000 ___HD C:\SYSTEM.SAV
2017-09-03 10:27 - 2016-07-29 14:33 - 000000000 __RHD C:\Users\Public\AccountPictures
2017-09-03 10:26 - 2016-07-16 13:47 - 000000000 ____D C:\windows\system32\WinBioDatabase
2017-09-03 02:57 - 2016-10-24 09:09 - 000002488 _____ C:\windows\System32\Tasks\HPAudioSwitch
2017-09-03 02:57 - 2016-10-24 09:07 - 000002498 _____ C:\windows\System32\Tasks\HPEA3JOBS
2017-09-03 02:57 - 2016-07-16 13:47 - 000000000 ____D C:\Program Files\Windows NT
2017-09-03 02:56 - 2016-07-29 15:23 - 000000000 ____D C:\windows\Panther
2017-09-03 02:43 - 2016-07-16 08:04 - 000000000 ____D C:\windows\system32\Sysprep
2017-09-03 02:41 - 2016-08-23 21:10 - 000000000 ____D C:\SWSETUP
2017-09-03 02:40 - 2016-10-24 09:06 - 000000000 ___RD C:\Program Files\Online Services
2017-09-03 02:40 - 2016-10-24 09:06 - 000000000 ___RD C:\Program Files (x86)\Online Services
2017-09-03 01:46 - 2016-07-16 13:47 - 000000000 ____D C:\windows\Registration
2017-09-03 01:37 - 2016-10-24 09:06 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP Help and Support
2017-09-03 01:37 - 2016-10-24 09:05 - 000000000 ____D C:\ProgramData\HP
2017-09-03 01:32 - 2016-07-16 13:47 - 000000000 ___HD C:\windows\ELAMBKUP
2017-09-03 01:26 - 2016-07-16 13:47 - 000000124 _____ C:\windows\win.ini
2017-09-03 01:20 - 2016-07-29 14:32 - 000294640 _____ C:\windows\system32\FNTCACHE.DAT
2017-09-03 01:19 - 2016-10-24 09:05 - 000000000 ____D C:\Program Files (x86)\HP
2017-09-03 01:18 - 2016-10-24 09:05 - 000000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2017-09-03 01:15 - 2016-07-16 13:47 - 000000000 ____D C:\windows\rescache
2017-09-03 01:14 - 2016-10-24 09:06 - 000000000 ____D C:\Program Files\HP
2017-09-03 01:08 - 2016-10-24 09:07 - 000000000 ____D C:\ProgramData\Package Cache
2017-09-03 00:55 - 2016-10-21 20:36 - 000000000 ___HD C:\hp
==================== Files in the root of some directories =======
==================== Bamital & volsnap ======================
(There is no automatic fix for files that do not pass verification.)
C:\windows\system32\winlogon.exe => File is digitally signed
C:\windows\system32\wininit.exe => File is digitally signed
C:\windows\explorer.exe => File is digitally signed
C:\windows\SysWOW64\explorer.exe => File is digitally signed
C:\windows\system32\svchost.exe => File is digitally signed
C:\windows\SysWOW64\svchost.exe => File is digitally signed
C:\windows\system32\services.exe => File is digitally signed
C:\windows\system32\User32.dll => File is digitally signed
C:\windows\SysWOW64\User32.dll => File is digitally signed
C:\windows\system32\userinit.exe => File is digitally signed
C:\windows\SysWOW64\userinit.exe => File is digitally signed
C:\windows\system32\rpcss.dll => File is digitally signed
C:\windows\system32\dnsapi.dll => File is digitally signed
C:\windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\windows\system32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2016-07-29 14:32
==================== End of FRST.txt ============================
===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===
==================== Drive and Memory info ===================
Drive c: (WINDOWS) (Fixed) (Total:450.7 GB) (Free:413.18 GB) NTFS
Drive d: (RECOVERY) (Fixed) (Total:13.83 GB) (Free:1.66 GB) NTFS ==>[system with boot components (obtained from drive)]
Available physical RAM: 1636.24 MB
Total physical RAM: 3938.27 MB
Percentage of memory in use: 58%
==================== MBR and Partition Table ==================
Disk: 0 (Size: 465.8 GB) (Disk ID: 8E61EA2B)
==================== Scheduled Tasks (whitelisted) ==================
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\windows\Tasks\DropboxUpdateTaskMachineCore.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
Task: C:\windows\Tasks\DropboxUpdateTaskMachineUA.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
Task: C:\windows\Tasks\HPCeeScheduleForC.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe
==================== Alternate Data Streams (whitelisted) ==================
==================== Security Center ==================
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: McAfee Anti-Virus a Antispyware (Disabled - Up to date) {DA9F8ED0-D0DE-39CC-F55A-51AB4CC1B556}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: McAfee Anti-Virus a Antispyware (Disabled - Up to date) {61FE6F34-F6E4-3642-CFEA-6AD93746FFEB}
FW: McAfee Firewall (Enabled) {E2A40FF5-9AB1-3894-DE05-F89EB212F22D}
===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)
***** Velikost "Plochy" *****
Velikost slozky "C:\Users\C\Desktop" je 127 MB.
***** Startup Programs *****
***** Firewall rules *****
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x1
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
***** System Restore *****
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR"=dword:00000001
"Generalize_DisableSR"=dword:00000001
==================== End Of Log ==============================