Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Dobrý den prosím o preventivní kontrolu logu

Nemáte v tuto chvíli žádný problém s pc a chcete se jen ujistit, že je vše v pořádku?
Vložte log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zpráva
Autor
otee
Návštěvník
Návštěvník
Příspěvky: 54
Registrován: 22 črc 2011 15:50

Dobrý den prosím o preventivní kontrolu logu

#1 Příspěvek od otee »

Logfile of random's system information tool 1.10 (written by random/random)
Run by Petr at 2015-10-02 22:03:24
Microsoft Windows 8
System drive C: has 443 GB (64%) free of 698 GB
Total RAM: 8072 MB (62% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 22:03:35, on 2. 10. 2015
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v10.0 (10.00.9200.17377)
Boot mode: Normal

Running processes:
C:\Users\Petr\AppData\Local\Pokki\Engine\ServiceHostApp.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\Canon\Quick Menu\CNQMMAIN.EXE
C:\Program Files (x86)\Canon\Quick Menu\CNQMUPDT.EXE
C:\Program Files (x86)\Canon\Quick Menu\CNQMSWCS.exe
C:\Users\Petr\AppData\Local\Pokki\Engine\ServiceHostApp.exe
C:\Users\Petr\AppData\Roaming\uTorrent\uTorrent.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\Petr.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = https://www.seznam.cz/?clid=22668
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://search.seznam.cz/?sourceid=quick ... earchTerms}
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://websearch.eazytosearch.info/?pid ... g=EN&cc=CZ
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = https://www.seznam.cz/?clid=22668
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://search.seznam.cz/?sourceid=quick ... earchTerms}
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.seznam.cz/?clid=22668
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: (no name) - {3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C} - (no file)
O2 - BHO: Canon Easy-WebPrint EX BHO - {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll
O2 - BHO: Air Globe 1.0.0.7 - {4c54ce3d-6b7d-4f21-9e69-200632a98540} - C:\Program Files (x86)\Air Globe\AirGlobebho.dll
O2 - BHO: (no name) - {51D26BB4-4D2C-4AE4-9873-5FF41B6DED1F} - (no file)
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O3 - Toolbar: (no name) - {828DC97A-2277-4E10-92A9-4907FA0922A9} - (no file)
O3 - Toolbar: Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [CanonQuickMenu] C:\Program Files (x86)\Canon\Quick Menu\CNQMMAIN.EXE /logon
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [Optimizer Pro] C:\Program Files (x86)\Optimizer Pro\OptProLauncher.exe
O4 - HKLM\..\Policies\Explorer\Run: [BtvStack] "C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvStack.exe"
O4 - Startup: MyPC Backup.lnk = C:\Program Files (x86)\MyPC Backup\MyPC Backup.exe
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O20 - AppInit_DLLs: c:\progra~2\sw-boo~1\assist~1.dll
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AtherosSvc - Qualcomm Atheros Commnucations - C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\adminservice.exe
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: AvastVBox COM Service (AvastVBoxSvc) - Avast Software - C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe
O23 - Service: Computer Backup (MyPC Backup) (BackupStack) - Just Develop It - C:\Program Files (x86)\MyPC Backup\BackupStack.exe
O23 - Service: CCDMonitorService - Acer Incorporated - C:\Program Files (x86)\Acer\Acer Cloud\CCDMonitorService.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\Windows\SysWow64\IntelCpHeciSvc.exe
O23 - Service: COMODO Dragon Update Service (DragonUpdater) - Unknown owner - C:\Program Files (x86)\Comodo\Dragon\dragon_updater.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: ePower Service (ePowerSvc) - Acer Incorporated - C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe
O23 - Service: Elan Service (ETDService) - ELAN Microelectronics Corp. - C:\Program Files\Elantech\ETDService.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Canon Inkjet Printer/Scanner/Fax Extended Survey Program (IJPLMSVC) - Unknown owner - C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
O23 - Service: Intel(R) Technology Access Software Asset Manager (Intel(R) TA SAM) - Unknown owner - C:\Program Files (x86)\Intel Corporation\Intel(R) Technology Access\Intel(R) Software Asset Manager\bin\IntelSoftwareAssetManagerService.exe
O23 - Service: Intel(R) Technology Access Legacy CS Loader - Intel(R) Corporation - C:\Program Files\Intel Corporation\Intel(R) Technology Access\LegacyCsLoaderService.exe
O23 - Service: Intel(R) Technology Access Service (Intel(R) TechnologyAccessService) - Intel(R) Corporation - C:\Program Files\Intel Corporation\Intel(R) Technology Access\IntelTechnologyAccessService.exe
O23 - Service: Intel(R) Update Manager (iumsvc) - Unknown owner - C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: Launch Manager Service (LMSvc) - Acer Incorporate - C:\Program Files\Acer\Acer Launch Manager\LMSvc.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @c:\Program Files (x86)\Nero\Update\NASvc.exe,-200 (NAUpdate) - Nero AG - c:\Program Files (x86)\Nero\Update\NASvc.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Update Air Globe - Unknown owner - C:\Program Files (x86)\Air Globe\updateAirGlobe.exe
O23 - Service: Util Air Globe - Unknown owner - C:\Program Files (x86)\Air Globe\bin\utilAirGlobe.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 9864 bytes

======Listing Processes======



\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
winlogon.exe
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
"dwm.exe"
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k NetworkService
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\adminservice.exe"
"C:\Program Files (x86)\Acer\Acer Cloud\CCDMonitorService.exe"
dashost.exe {01773ebb-a894-4447-994374d69199f88f}
"C:\Program Files (x86)\Comodo\Dragon\dragon_updater.exe"
"C:\Program Files\Elantech\ETDService.exe"
"C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE"
"C:\Program Files\Intel\iCLS Client\HeciServer.exe"
"C:\Program Files\Intel Corporation\Intel(R) Technology Access\LegacyCsLoaderService.exe"
"C:\Program Files\Intel Corporation\Intel(R) Technology Access\IntelTechnologyAccessService.exe"
"C:\Program Files\Acer\Acer Launch Manager\LMSvc.exe"
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files (x86)\Air Globe\updateAirGlobe.exe"
"C:\Program Files (x86)\Air Globe\bin\utilAirGlobe.exe"
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\wbem\unsecapp.exe -Embedding
C:\Windows\System32\alg.exe
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
taskeng.exe {4013B360-B80D-41B8-A935-9671FF12C95E}
taskhostex.exe
"C:\Program Files\Elantech\ETDCtrl.exe"
"C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /c
C:\Users\Petr\AppData\Local\Pokki\Engine\ServiceHostAppUpdater.exe /LOGON
C:\Windows\Explorer.EXE
"C:\Program Files\Elantech\ETDTouch.exe"
"C:\Program Files\Acer\Acer Launch Manager\LMEvent.exe"
C:\Windows\system32\wbem\unsecapp.exe -Embedding
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files\Acer\Acer Launch Manager\LMTray.exe"
"C:\Program Files\Elantech\ETDCtrlHelper.exe"
"C:\Users\Petr\AppData\Local\Pokki\Engine\ServiceHostApp.exe"
"C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvStack.exe"
"C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\ActivateDesktop.exe"
"C:\Windows\System32\igfxpers.exe"
"C:\Windows\system32\igfxsrvc.exe" -Embedding
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
"C:\Program Files (x86)\Canon\Quick Menu\CNQMMAIN.EXE" /logon
"C:\Program Files\Acer\Acer Power Management\ePowerTray.exe"
C:\Windows\system32\wbem\unsecapp.exe -Embedding
C:\Windows\splwow64.exe 8192
"C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe"
"C:\Windows\system32\igfxext.exe" -Embedding
C:\Windows\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files\Acer\Acer Power Management\ePowerEvent.exe"
"C:\Program Files (x86)\Canon\Quick Menu\CNQMUPDT.EXE"
"C:\Program Files (x86)\Canon\Quick Menu\CNQMSWCS.exe" /MainProcess 1156 /PrinterName "Canon MG3500 series Printer" /ScannerName "Canon MG3500 series" /Language cs-CZ /Startup
"C:\Program Files\CCleaner\CCleaner.exe" /uac
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"c:\Program Files (x86)\Nero\Update\NASvc.exe"
C:\Windows\system32\msiexec.exe /V
C:\Windows\servicing\TrustedInstaller.exe
C:\Windows\winsxs\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.2.9200.17280_none_6224eed751126779\TiWorker.exe -Embedding
"C:\Users\Petr\AppData\Local\Pokki\Engine\ServiceHostApp.exe" --type=renderer --disable-breakpad --disable-desktop-notifications --disable-logging --disable-speech-input --lang=en-US --force-fieldtrials=AsyncDns/disabled/ConnCountImpact/conn_count_6/ConnnectBackupJobs/ConnectBackupJobsEnabled/DnsImpact/default_enabled_prefetch/ForceCompositingMode/disable/GlobalSdch/global_enable_sdch/IdleSktToImpact/idle_timeout_10/InfiniteCache/No/OmniboxDisallowInlineHQP/Standard/OmniboxSearchSuggest/4/OneClickSignIn/BlueOnWhite/Prefetch/ContentPrefetchPrefetchOff/Prerender/PrerenderEnabled/ProxyConnectionImpact/proxy_connections_32/SBInterstitial/V1/SpeculativePrefetchingLearning/SpeculativePrefetchingLearningEnabled/Test0PercentDefault/default/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_18/UMA-Uniformity-Trial-1-Percent/default/UMA-Uniformity-Trial-10-Percent/default/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_04/UMA-Uniformity-Trial-5-Percent/default/UMA-Uniformity-Trial-50-Percent/default/WarmSocketImpact/warmest_socket/ --noerrdialogs --disable-client-side-phishing-detection --disable-bundled-ppapi-flash --channel="2644.1.1893269356\2000697916" /prefetch:3
"C:\Users\Petr\AppData\Roaming\uTorrent\uTorrent.exe"
"C:\Users\Petr\AppData\Local\Pokki\Engine\ServiceStartMenuIndexer.exe"
C:\Windows\sysWOW64\wbem\wmiprvse.exe -Embedding
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" http://www.omniboxes.com/?type=sc&ts=14 ... SPSX5SPSX5
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="1048.0.1941099584\243770472" --supports-dual-gpus=false --gpu-driver-bug-workarounds=2,20,45 --gpu-vendor-id=0x8086 --gpu-device-id=0x0a06 --gpu-driver-vendor="Intel Corporation" --gpu-driver-version=9.18.10.3234 --ignored=" --type=renderer " /prefetch:822062411
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AffiliationBasedMatching/Enabled/AudioProcessing48kHzSupport/Default/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/ChromeDashboard/Default/*ClientSideDetectionModel/Model0/*DomRel-Enable/enable/EmbeddedSearch/Group4 pct:10d stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnableSessionCrashedBubbleUI/Enabled/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GoogleNow/Enable/*IconNTP/Default/InstanceID/Enabled/IntelligentSessionRestore/Disabled/*NetworkQualityEstimator/Enabled/*NewProfileManagement/Enabled/NewVideoRendererTrial/Enabled/*OmniboxBundledExperimentV1/NewSuggestType_A3_Stable_R1/*PasswordGeneration/Disabled/PasswordLinkInSettings/Enabled/*PluginPowerSaver/Enabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/*QUIC/EnabledNoIdForLargePopulation/RefreshTokenDeviceId/Enabled/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingSocialEngineeringStrings/Disabled/SessionRestoreBackgroundLoading/Restore/SlimmingPaint/EnableSlimmingPaint/SyncBackingDatabase32K/Enabled/*UMA-Dynamic-Binary-Uniformity-Trial/group_01/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_03/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/VoiceTrigger/Install/WebRTC-UDPSocketNonBlockingIO/Default/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-delegated-renderer --num-raster-threads=1 --gpu-rasterization-msaa-sample-count=8 --content-image-texture-target=3553 --video-image-texture-target=3553 --channel="1048.1.7649325\1765912013" --font-cache-shared-handle=1800 /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AffiliationBasedMatching/Enabled/AudioProcessing48kHzSupport/Default/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/ChromeDashboard/Default/*ClientSideDetectionModel/Model0/*DomRel-Enable/enable/*EmbeddedSearch/Group4 pct:10d stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnableSessionCrashedBubbleUI/Enabled/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GoogleNow/Enable/*IconNTP/Default/InstanceID/Enabled/*IntelligentSessionRestore/Disabled/*NetworkQualityEstimator/Enabled/*NewProfileManagement/Enabled/NewVideoRendererTrial/Enabled/*OmniboxBundledExperimentV1/NewSuggestType_A3_Stable_R1/*PasswordGeneration/Disabled/PasswordLinkInSettings/Enabled/*PluginPowerSaver/Enabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/*QUIC/EnabledNoIdForLargePopulation/RefreshTokenDeviceId/Enabled/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingSocialEngineeringStrings/Disabled/SessionRestoreBackgroundLoading/Restore/*SlimmingPaint/EnableSlimmingPaint/SyncBackingDatabase32K/Enabled/*UMA-Dynamic-Binary-Uniformity-Trial/group_01/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_03/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/VoiceTrigger/Install/WebRTC-UDPSocketNonBlockingIO/Default/" --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-delegated-renderer --num-raster-threads=1 --gpu-rasterization-msaa-sample-count=8 --content-image-texture-target=3553 --video-image-texture-target=3553 --channel="1048.2.1533562129\1043088661" --font-cache-shared-handle=1748 /prefetch:673131151
C:\Windows\system32\vssvc.exe
C:\Windows\System32\svchost.exe -k swprv
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe2_ Global\UsGthrCtrlFltPipeMssGthrPipe2 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Windows\system32\SearchFilterHost.exe" 0 556 560 568 65536 564

"C:\Users\Petr\Downloads\RSITx64.exe"

======Scheduled tasks folder======

C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3785D0AD-BFFF-47F6-BF5B-A587C162FED9}]
Canon Easy-WebPrint EX BHO - C:\Program Files\Canon\Easy-WebPrint EX\ewpexbho.dll [2014-07-07 209504]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8D10F6C4-0E01-4BD4-8601-11AC1FDF8126}]
CIESpeechBHO Class - C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\IEPlugIn.dll [2013-04-15 66688]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2015-10-02 655480]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3785D0AD-BFFF-47F6-BF5B-A587C162FED9}]
Canon Easy-WebPrint EX BHO - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll [2014-07-07 176736]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4c54ce3d-6b7d-4f21-9e69-200632a98540}]
Air Globe 1.0.0.7 - C:\Program Files (x86)\Air Globe\AirGlobebho.dll [2015-03-20 269040]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{51D26BB4-4D2C-4AE4-9873-5FF41B6DED1F}]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2015-10-02 559624]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F}
{759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - Canon Easy-WebPrint EX - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll [2014-07-07 6133848]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{828DC97A-2277-4E10-92A9-4907FA0922A9}
{759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - Canon Easy-WebPrint EX - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll [2014-07-07 4439128]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2013-07-24 165872]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2013-07-24 407536]
"Persistence"=C:\Windows\system32\igfxpers.exe [2013-07-24 444400]
"ETDCtrl"=C:\Program Files\Elantech\ETDCtrl.exe [2013-04-22 2890640]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2013-03-18 13427784]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run]
"BtvStack"=C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvStack.exe [2013-04-15 132736]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"=C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2014-03-04 3696912]
"Optimizer Pro"=C:\Program Files (x86)\Optimizer Pro\OptProLauncher.exe [2014-04-16 136248]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2015-10-02 6134544]
"CanonQuickMenu"=C:\Program Files (x86)\Canon\Quick Menu\CNQMMAIN.EXE [2013-04-02 1282632]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run]
"BtvStack"=C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvStack.exe [2013-04-15 132736]

C:\Users\Petr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
MyPC Backup.lnk - C:\Program Files (x86)\MyPC Backup\MyPC Backup.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2013-07-09 441344]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MCODS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mcpltsvc]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"EnableLinkedConnections"=1
"SoftwareSASGeneration"=1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"VIDC.YUY2"=msyuv.dll
"vidc.i420"=iyuv_32.dll
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"VIDC.YVYU"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"vidc.msvc"=msvidc32.dll
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave2"=wdmaud.drv
"mixer2"=wdmaud.drv
"midi2"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2015-10-02 22:03:25 ----D---- C:\Program Files\trend micro
2015-10-02 22:03:24 ----D---- C:\rsit
2015-10-02 21:27:29 ----D---- C:\Program Files\McAfee
2015-10-02 21:03:42 ----A---- C:\Windows\system32\drivers\ngvss.sys
2015-10-02 21:03:26 ----A---- C:\Windows\system32\aswBoot.exe
2015-10-02 21:02:53 ----A---- C:\Windows\avastSS.scr
2015-10-02 20:51:08 ----D---- C:\Program Files\CCleaner
2015-09-16 16:59:32 ----D---- C:\Program Files (x86)\Intel Corporation
2015-09-10 00:09:43 ----A---- C:\Windows\SYSWOW64\gdi32.dll
2015-09-10 00:09:42 ----A---- C:\Windows\system32\gdi32.dll
2015-09-10 00:09:41 ----A---- C:\Windows\system32\msxml6.dll
2015-09-10 00:09:40 ----A---- C:\Windows\SYSWOW64\msxml6.dll
2015-09-10 00:09:40 ----A---- C:\Windows\SYSWOW64\msxml3.dll
2015-09-10 00:09:40 ----A---- C:\Windows\system32\msxml3.dll
2015-09-09 22:07:04 ----A---- C:\Windows\SYSWOW64\twinui.dll
2015-09-09 22:07:03 ----A---- C:\Windows\system32\twinui.dll
2015-09-09 22:07:03 ----A---- C:\Windows\system32\SettingSync.dll
2015-09-09 22:07:02 ----A---- C:\Windows\SYSWOW64\SettingSync.dll
2015-09-09 22:07:02 ----A---- C:\Windows\system32\Windows.UI.Immersive.dll
2015-09-09 22:07:01 ----A---- C:\Windows\SYSWOW64\Windows.UI.Immersive.dll
2015-09-09 22:07:01 ----A---- C:\Windows\system32\authui.dll
2015-09-09 22:07:00 ----A---- C:\Windows\SYSWOW64\SettingSyncInfo.dll
2015-09-09 22:07:00 ----A---- C:\Windows\SYSWOW64\authui.dll
2015-09-09 22:07:00 ----A---- C:\Windows\system32\SettingSyncInfo.dll
2015-09-09 22:06:55 ----A---- C:\Windows\system32\schedsvc.dll
2015-09-09 22:06:50 ----A---- C:\Windows\SYSWOW64\atmlib.dll
2015-09-09 22:06:50 ----A---- C:\Windows\SYSWOW64\atmfd.dll
2015-09-09 22:06:50 ----A---- C:\Windows\system32\win32k.sys
2015-09-09 22:06:50 ----A---- C:\Windows\system32\atmlib.dll
2015-09-09 22:06:50 ----A---- C:\Windows\system32\atmfd.dll
2015-09-09 22:06:49 ----A---- C:\Windows\SYSWOW64\appidapi.dll
2015-09-09 22:06:49 ----A---- C:\Windows\system32\appidsvc.dll
2015-09-09 22:06:49 ----A---- C:\Windows\system32\appidpolicyconverter.exe
2015-09-09 22:06:49 ----A---- C:\Windows\system32\appidcertstorecheck.exe
2015-09-09 22:06:49 ----A---- C:\Windows\system32\appidapi.dll
2015-09-09 22:06:42 ----A---- C:\Windows\system32\mshtml.dll
2015-09-09 22:06:36 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2015-09-09 22:06:34 ----A---- C:\Windows\SYSWOW64\jscript.dll
2015-09-09 22:06:32 ----A---- C:\Windows\system32\ieframe.dll
2015-09-09 22:06:30 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2015-09-09 22:06:28 ----A---- C:\Windows\system32\jscript.dll
2015-09-09 22:06:27 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2015-09-09 22:06:27 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2015-09-09 22:06:27 ----A---- C:\Windows\system32\vbscript.dll
2015-09-09 22:06:27 ----A---- C:\Windows\system32\urlmon.dll
2015-09-09 22:06:26 ----A---- C:\Windows\SYSWOW64\wininet.dll
2015-09-09 22:06:26 ----A---- C:\Windows\SYSWOW64\inetcomm.dll
2015-09-09 22:06:26 ----A---- C:\Windows\system32\inetcomm.dll
2015-09-09 22:06:25 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2015-09-09 22:06:25 ----A---- C:\Windows\system32\wininet.dll
2015-09-09 22:06:24 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2015-09-09 22:06:22 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2015-09-09 22:06:21 ----A---- C:\Windows\system32\jscript9.dll
2015-09-09 22:06:21 ----A---- C:\Windows\system32\iertutil.dll
2015-09-09 22:06:20 ----A---- C:\Windows\system32\msfeeds.dll
2015-09-09 22:06:19 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2015-09-09 22:06:19 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll

======List of files/folders modified in the last 1 month======

2015-10-02 22:03:25 ----D---- C:\Program Files
2015-10-02 22:02:36 ----D---- C:\Windows\CbsTemp
2015-10-02 22:02:21 ----SHD---- C:\Windows\Installer
2015-10-02 22:02:21 ----SHD---- C:\Config.Msi
2015-10-02 22:02:21 ----D---- C:\Windows\Temp
2015-10-02 22:00:13 ----D---- C:\Users\Petr\AppData\Roaming\uTorrent
2015-10-02 22:00:03 ----D---- C:\Windows\system32\sru
2015-10-02 21:57:55 ----RD---- C:\Windows\System32
2015-10-02 21:57:55 ----D---- C:\Windows\Inf
2015-10-02 21:57:55 ----A---- C:\Windows\system32\PerfStringBackup.INI
2015-10-02 21:57:43 ----A---- C:\IFRToolLog.txt
2015-10-02 21:54:40 ----HD---- C:\Program Files\WindowsApps
2015-10-02 21:54:40 ----D---- C:\Windows\system32\config
2015-10-02 21:54:40 ----D---- C:\Windows\AUInstallAgent
2015-10-02 21:54:23 ----D---- C:\Windows
2015-10-02 21:47:24 ----A---- C:\Windows\win.ini
2015-10-02 21:47:23 ----D---- C:\Program Files (x86)\Air Globe
2015-10-02 21:34:16 ----D---- C:\Windows\Prefetch
2015-10-02 21:28:55 ----HD---- C:\ProgramData
2015-10-02 21:26:39 ----AD---- C:\ProgramData\Temp
2015-10-02 21:16:37 ----SHD---- C:\System Volume Information
2015-10-02 21:14:24 ----D---- C:\Windows\system32\Drivers
2015-10-02 21:11:31 ----D---- C:\Users\Petr\AppData\Roaming\Seznam.cz
2015-10-02 21:11:22 ----D---- C:\Program Files (x86)\Seznam.cz
2015-10-02 21:07:46 ----D---- C:\Program Files (x86)\Opera
2015-10-02 21:07:42 ----D---- C:\Windows\system32\Tasks
2015-10-02 21:06:57 ----D---- C:\Users\Petr\AppData\Roaming\DAEMON Tools Lite
2015-10-02 21:06:57 ----D---- C:\Program Files (x86)\Steam
2015-10-02 21:06:46 ----D---- C:\Windows\Panther
2015-10-02 21:06:46 ----D---- C:\Windows\Minidump
2015-10-02 21:06:46 ----D---- C:\Windows\Logs
2015-10-02 21:06:46 ----D---- C:\Windows\debug
2015-10-02 20:53:06 ----D---- C:\Windows\SysWOW64
2015-10-02 20:48:46 ----D---- C:\ProgramData\CanonIJPLM
2015-09-22 14:00:53 ----D---- C:\Windows\system32\NDF
2015-09-20 16:44:34 ----D---- C:\Users\Petr\AppData\Roaming\vlc
2015-09-20 06:14:57 ----D---- C:\Windows\Microsoft.NET
2015-09-18 20:16:14 ----D---- C:\Program Files (x86)\McAfee
2015-09-16 16:59:47 ----RD---- C:\Program Files (x86)
2015-09-16 16:59:45 ----D---- C:\ProgramData\Package Cache
2015-09-16 16:59:27 ----D---- C:\Windows\Tasks
2015-09-16 16:58:06 ----D---- C:\Windows\system32\DriverStore
2015-09-14 18:16:28 ----D---- C:\Windows\system32\catroot
2015-09-12 23:37:13 ----D---- C:\Windows\WinSxS
2015-09-12 23:35:53 ----D---- C:\Windows\system32\catroot2
2015-09-11 23:23:54 ----RSD---- C:\Windows\assembly
2015-09-11 00:04:21 ----D---- C:\Windows\system32\MRT
2015-09-10 22:07:07 ----D---- C:\Windows\rescache
2015-09-10 21:48:01 ----A---- C:\Windows\Reimage.ini
2015-09-10 20:19:22 ----D---- C:\Windows\SYSWOW64\en-US
2015-09-10 20:19:22 ----D---- C:\Windows\SYSWOW64\cs-CZ
2015-09-10 20:19:22 ----D---- C:\Windows\system32\en-US
2015-09-10 20:19:22 ----D---- C:\Windows\system32\cs-CZ
2015-09-10 20:19:14 ----RD---- C:\Windows\ToastData
2015-09-10 20:19:05 ----D---- C:\Windows\PolicyDefinitions

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 aswRvrt;avast! Revert; C:\Windows\system32\drivers\aswRvrt.sys [2015-10-02 65224]
R0 aswVmm;avast! VM Monitor; C:\Windows\system32\drivers\aswVmm.sys [2015-10-02 274808]
R0 ngvss;ngvss; C:\Windows\system32\drivers\ngvss.sys [2015-10-02 132656]
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [2015-10-02 93528]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2015-10-02 1049880]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2015-10-02 448968]
R1 ndisrd;@oem25.inf,%ndisrfl_Desc%;Intel(R) Technology Access Filter Driver; C:\Windows\system32\DRIVERS\ndisrfl.sys [2015-04-30 41688]
R1 vwififlt;@%SystemRoot%\System32\drivers\vwififlt.sys,-259; C:\Windows\system32\DRIVERS\vwififlt.sys [2012-07-26 64000]
R2 aswHwid;avast! HardwareID; C:\Windows\system32\drivers\aswHwid.sys [2015-10-02 28656]
R2 aswMonFlt;aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [2015-10-02 90968]
R2 aswStm;aswStm; C:\Windows\system32\drivers\aswStm.sys [2015-10-02 153744]
R2 lirsgt;lirsgt; C:\Windows\system32\DRIVERS\lirsgt.sys [2014-05-04 43168]
R2 VBoxAswDrv;VBoxAsw Support Driver; \??\C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys [2015-10-02 274336]
R3 athr;@oem15.inf,%ATHR.Service.DispName%;Qualcomm Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athw8x.sys [2013-03-29 3776512]
R3 bScsiSDa;bScsiSDa; C:\Windows\System32\drivers\bScsiSDa.sys [2013-04-11 84688]
R3 BTATH_BUS;@oem16.inf,%BTATH_BUS.SVCDESC%;Qualcomm Atheros Bluetooth Bus; C:\Windows\System32\drivers\btath_bus.sys [2013-04-15 34384]
R3 dtsoftbus01;@oem23.inf,%DTSoftBus.SVCDESC%;DAEMON Tools Virtual Bus Driver; C:\Windows\System32\drivers\dtsoftbus01.sys [2014-03-17 283064]
R3 ETD;@oem13.inf,%PS2.DeviceDesc%;ELAN PS/2 Port Input Device; C:\Windows\system32\DRIVERS\ETD.sys [2013-04-22 367504]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys [2013-07-09 4445152]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2013-03-19 3363016]
R3 k57nd60a;@oem12.inf,%SvcDispName%;Broadcom NetLink (TM) Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\k57nd60a.sys [2013-03-27 455888]
R3 LMDriver;@oem5.inf,%LMDriver.SVCDESC%;Launch Manager Wireless Driver; C:\Windows\System32\drivers\LMDriver.sys [2013-01-10 21360]
R3 MEIx64;@oem8.inf,%TEE_SvcDesc%;Intel(R) Management Engine Interface ; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [2013-05-08 99800]
R3 NetTap630;@oem34.inf,%NetTap.Service.DispName%;Intel(R) Technology Access TAP Driver (NDIS 6.30); C:\Windows\system32\DRIVERS\nettap630.sys [2015-04-30 67800]
R3 RadioShim;@oem5.inf,%RadioShim.SVCDESC%;Shim for HID-KMDF Interface layer; C:\Windows\System32\drivers\RadioShim.sys [2013-01-10 15704]
R3 usbvideo;@usbvideo.inf,%USBVideo.SvcDesc%;USB Video Device (WDM); C:\Windows\System32\Drivers\usbvideo.sys [2013-07-06 210560]
R3 vwifimp;@%SystemRoot%\System32\drivers\vwifimp.sys,-261; C:\Windows\system32\DRIVERS\vwifimp.sys [2012-07-26 17920]
S2 atksgt;atksgt; C:\Windows\system32\DRIVERS\atksgt.sys [2014-05-04 311968]
S3 AthBTPort;@oem20.inf,%BTHSUPPORT.SvcDesc%;Qualcomm Atheros Virtual Bluetooth Class; C:\Windows\system32\DRIVERS\btath_flt.sys [2013-04-15 89168]
S3 BTATH_A2DP;@oem19.inf,%BTATH_A2DP.SvcDesc%;Bluetooth A2DP Audio Driver; C:\Windows\system32\drivers\btath_a2dp.sys [2013-04-15 346192]
S3 btath_avdt;@oem19.inf,%btath_avdt.SvcDesc%;Qualcomm Atheros Bluetooth AVDT Service; C:\Windows\system32\drivers\btath_avdt.sys [2013-04-15 115280]
S3 BTATH_HCRP;@oem22.inf,%BTATH_HCRP.SvcDesc%;Bluetooth HCRP Server driver; C:\Windows\System32\drivers\btath_hcrp.sys [2013-04-15 179432]
S3 BTATH_LWFLT;@oem24.inf,%BTATH_LWFLT%;Bluetooth LWFLT Device; C:\Windows\system32\DRIVERS\btath_lwflt.sys [2013-04-15 77464]
S3 BTATH_RCP;@oem26.inf,%BTATH_RCP%;Bluetooth AVRCP Device; C:\Windows\System32\drivers\btath_rcp.sys [2013-04-15 136784]
S3 BtFilter;BtFilter; C:\Windows\system32\DRIVERS\btfilter.sys [2013-04-15 584272]
S3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Bluetooth Enumerator Service; C:\Windows\System32\drivers\BthEnum.sys [2013-04-21 51712]
S3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Bluetooth Low Energy Driver; C:\Windows\system32\DRIVERS\BthLEEnum.sys [2012-07-26 202752]
S3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Bluetooth Device (Personal Area Network); C:\Windows\system32\DRIVERS\bthpan.sys [2012-07-26 119808]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2013-03-01 1175040]
S3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2013-04-21 74752]
S3 ccSet_NARA;NARA Settings Manager; C:\Windows\system32\drivers\NARAx64\0403000.00E\ccSetx64.sys [2012-05-26 168608]
S3 dg_ssudbus;@oem36.inf,%ssud.Service.DeviceDesc%;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\Windows\system32\DRIVERS\ssudbus.sys [2014-01-22 108800]
S3 IntcDAud;@oem6.inf,%IntcDAud.SvcDesc%;Intel(R) Display Audio; C:\Windows\system32\DRIVERS\IntcDAud.sys [2013-07-09 452088]
S3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Bluetooth Device (RFCOMM Protocol TDI); C:\Windows\System32\drivers\rfcomm.sys [2013-03-01 156672]
S3 ssudmdm;@oem37.inf,%ssud.Service.Name%;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.); C:\Windows\system32\DRIVERS\ssudmdm.sys [2014-01-22 206080]
S3 ssudserd;@oem38.inf,%ssud.Service.Name%;SAMSUNG Mobile USB Diagnostic Serial Port(DEVGURU Ver.); C:\Windows\system32\DRIVERS\ssudserd.sys [2014-01-22 206080]
S3 usbscan;@sti.inf,%usbscan.SvcDesc%;Ovladač skeneru USB; C:\Windows\system32\DRIVERS\usbscan.sys [2013-07-02 43008]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AtherosSvc;AtherosSvc; C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\adminservice.exe [2013-04-15 228480]
R2 avast! Antivirus;Avast Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2015-10-02 146600]
R2 CCDMonitorService;CCDMonitorService; C:\Program Files (x86)\Acer\Acer Cloud\CCDMonitorService.exe [2013-02-27 2615368]
R2 DragonUpdater;COMODO Dragon Update Service; C:\Program Files (x86)\Comodo\Dragon\dragon_updater.exe [2014-03-08 2135232]
R2 ETDService;Elan Service; C:\Program Files\Elantech\ETDService.exe [2013-04-22 100752]
R2 IJPLMSVC;Canon Inkjet Printer/Scanner/Fax Extended Survey Program; C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE [2013-05-14 140936]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [2013-02-13 731648]
R2 Intel(R) Technology Access Legacy CS Loader;Intel(R) Technology Access Legacy CS Loader; C:\Program Files\Intel Corporation\Intel(R) Technology Access\LegacyCsLoaderService.exe [2015-07-31 144128]
R2 Intel(R) TechnologyAccessService;Intel(R) Technology Access Service; C:\Program Files\Intel Corporation\Intel(R) Technology Access\IntelTechnologyAccessService.exe [2015-07-31 481536]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2013-05-08 169432]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2013-05-08 368600]
R2 LMSvc;Launch Manager Service; C:\Program Files\Acer\Acer Launch Manager\LMSvc.exe [2013-06-18 431656]
R2 Update Air Globe;Update Air Globe; C:\Program Files (x86)\Air Globe\updateAirGlobe.exe [2015-10-02 458992]
R2 Util Air Globe;Util Air Globe; C:\Program Files (x86)\Air Globe\bin\utilAirGlobe.exe [2015-10-02 458992]
R3 ePowerSvc;ePower Service; C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe [2013-03-16 662088]
S2 BackupStack;Computer Backup (MyPC Backup); C:\Program Files (x86)\MyPC Backup\BackupStack.exe [2015-03-12 36936]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-28 144200]
S2 NAUpdate;@c:\Program Files (x86)\Nero\Update\NASvc.exe,-200; c:\Program Files (x86)\Nero\Update\NASvc.exe [2012-07-14 769432]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-10-02 269000]
S3 AvastVBoxSvc;AvastVBox COM Service; C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe [2015-10-02 4048280]
S3 cphs;Intel(R) Content Protection HECI Service; C:\Windows\SysWow64\IntelCpHeciSvc.exe [2013-07-24 279024]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2012-07-26 43616]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-28 144200]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-04 69632]
S3 Intel(R) Capability Licensing Service TCP IP Interface;Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [2013-02-13 820184]
S3 Intel(R) TA SAM;Intel(R) Technology Access Software Asset Manager; C:\Program Files (x86)\Intel Corporation\Intel(R) Technology Access\Intel(R) Software Asset Manager\bin\IntelSoftwareAssetManagerService.exe [2015-04-18 18064]
S3 iumsvc;Intel(R) Update Manager; C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe [2014-06-09 174368]
S3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2015-02-19 835776]
S4 0309191443813488mcinstcleanup;McAfee Application Installer Cleanup (0309191443813488); C:\Windows\TEMP\030919~1.EXE [2015-05-04 883024]
S4 GamesAppService;GamesAppService; C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe [2010-10-12 206072]
S4 NOBU;Norton Online Backup; C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe [2013-01-28 4230016]

-----------------EOF-----------------

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: Dobrý den prosím o preventivní kontrolu logu

#2 Příspěvek od Márty84 »

Zdravim :)

:arrow: Stahnete AdwCleaner https://toolslib.net/downloads/finish/1/ a ulozte ho na plochu.
Ukoncete vsechny programy, jinak to AdwCleaner udela za vas.
Kliknete na nej pravym mysidlem a levym na Spustit jako spravce.
Kliknete na Scan a pockejte, az kontrola dobehne.
Pak kliknete na Cleaning
Program zacne pracovat (muze dojit k restartu pc) a vyplivne log (pripadne bude zde C:\AdwCleaner\AdwCleaner[C?].txt ). Ten mi sem zkopirujte.
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

otee
Návštěvník
Návštěvník
Příspěvky: 54
Registrován: 22 črc 2011 15:50

Re: Dobrý den prosím o preventivní kontrolu logu

#3 Příspěvek od otee »

dobrý den děkuji za kontrolu
postupoval jsem dle návodu na první pokus adwcleaner zamrzl na druhé spuštění po restartu vypsal log


# AdwCleaner v5.009 - Logfile created 03/10/2015 t 22:30:55
# Updated 27/09/2015 by Xplode
# Database : 2015-09-30.1 [Server]
# Operating system : Windows 8 (x64)
# Username : Petr - ACER
# Running from : C:\Users\Petr\Desktop\adwcleaner_5.009.exe
# Option : Cleaning
# Support : http://toolslib.net/forum

***** [ Services ] *****


***** [ Folders ] *****

[-] Folder Deleted : C:\Users\Petr\AppData\Local\pokki
[-] Folder Deleted : C:\Users\Petr\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\kclbidlajocjmicnpgpfmkblhdhjelfe

***** [ Files ] *****

[-] File Deleted : C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\ifhoijoekoojdliahnmaeigffnobenbg
[-] File Deleted : C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\ijoepbfeelmoglipefjobnfggjbcbgni
[-] File Deleted : C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\ldkmnfhiniknblljcflkdlfcfhddbgci
[-] File Deleted : C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\omhmmplpnconahdndomjkbajajooehip

***** [ Shortcuts ] *****


***** [ Scheduled tasks ] *****


***** [ Registry ] *****

[-] Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
[-] Data Restored : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes [DefaultScope]
[-] Data Restored : HKLM\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\open\command []
[-] Data Restored : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows [AppInit_DLLs]

***** [ Web browsers ] *****

[-] [C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Web Data] [Search Provider] Deleted : websearch.eazytosearch.info
[-] [C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Web Data] [Search Provider] Deleted : websearch
[-] [C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Web Data] [Search Provider] Deleted : omniboxes
[-] [C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Web Data] [Search Provider] Deleted : delta-homes
[-] [C:\Users\Petr\AppData\Local\Comodo\Dragon\User Data\Default\Web Data] [Search Provider] Deleted : ask.com

*************************

:: Winsock settings cleared

########## EOF - C:\AdwCleaner\AdwCleaner[C2].txt - [2318 bytes] ##########

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: Dobrý den prosím o preventivní kontrolu logu

#4 Příspěvek od Márty84 »

:arrow: Stahnete crystal disk info http://sourceforge.jp/projects/crystald ... 5_0_0.zip/
Spustte jako spravce. Za chvili se zobrazi vysledek.
Kliknete nahore na napis Úpravy a pak na napis Kopírovat. To co se zkopiruje (ulozi se to do pameti) mi sem vlozte (ctrl + V)


:arrow: Udelejte kontrolu s MBAM. Test nastavte podle tohoto navodu (cili Vlastni sken vsech disku) http://forum.viry.cz/viewtopic.php?f=29&t=144868 a dejte sem vysledky. Predem nic nemazte, miva obcas falesne detekce
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

otee
Návštěvník
Návštěvník
Příspěvky: 54
Registrován: 22 črc 2011 15:50

Re: Dobrý den prosím o preventivní kontrolu logu

#5 Příspěvek od otee »

----------------------------------------------------------------------------
CrystalDiskInfo 5.0.0 (C) 2008-2012 hiyohiyo
Crystal Dew World : http://crystalmark.info/
----------------------------------------------------------------------------

OS : Windows 8 [6.2 Build 9200] (x64)
Date : 2015/10/04 20:42:43

-- Controller Map ----------------------------------------------------------
+ Intel(R) 8 Series SATA AHCI Controller - 9C03 [ATA]
- WDC WD7500BPVX-22JC3T0
- MATSHITA DVD-RAM UJ8D2Q
- Řadič prostorů úložišť [SCSI]

-- Disk List ---------------------------------------------------------------
(1) WDC WD7500BPVX-22JC3T0 : 750,1 GB [0/0/0, pd1]

----------------------------------------------------------------------------
(1) WDC WD7500BPVX-22JC3T0
----------------------------------------------------------------------------
Model : WDC WD7500BPVX-22JC3T0
Firmware : 01.01A01
Serial Number : WD-WXD1E63SPSX5
Disk Size : 750,1 GB (8,4/137,4/750,1)
Buffer Size : 8192 KB
Queue Depth : 32
# of Sectors : 1465149168
Rotation Rate : 5400 RPM
Interface : Serial ATA
Major Version : ACS-2
Minor Version : ----
Transfer Mode : SATA/600
Power On Hours : 5586 hod.
Power On Count : 1494 krát
Temparature : 30 C (86 F)
Health Status : Dobrý
Features : S.M.A.R.T., APM, 48bit LBA, NCQ
APM Level : 0060h [ON]
AAM Level : ----

-- S.M.A.R.T. --------------------------------------------------------------
ID Cur Wor Thr RawValues(6) Attribute Name
01 200 200 _51 000000000000 Počet chyb čtení
03 182 181 _21 00000000076C Čas na roztočení ploten
04 _90 _90 __0 000000002A06 Počet spuštění/zastavení
05 200 200 140 000000000000 Počet přemapovaných sektorů
07 200 200 __0 000000000000 Počet chybných hledání
09 _93 _93 __0 0000000015D2 Hodin v činnosti
0A 100 100 __0 000000000000 Počet opakovaných pokusů o roztočení ploten
0B 100 100 __0 000000000000 Počet pokusů o překalibrování
0C _99 _99 __0 0000000005D6 Počet cyklů zapnutí zařízení
BF __1 __1 __0 000000000513 Počet udalostí zaznamenaných otřesovým senzorem
C0 200 200 __0 000000000017 Počet vypnutí disku
C1 188 188 __0 00000000910D Počet cyklů načítání/vymazání
C2 117 _95 __0 00000000001E Teplota
C4 200 200 __0 000000000000 Počet udalostí s číslem realokování sektorů
C5 200 200 __0 000000000000 Počet podezřelých sektorů
C6 100 253 __0 000000000000 Počet neopravitelných sektorů
C7 200 200 __0 000000000079 Počet chyb v kontrolním součtu UltraDMA
C8 100 253 __0 000000000000 Počet chyb při zápisu sektorů

-- IDENTIFY_DEVICE ---------------------------------------------------------
0 1 2 3 4 5 6 7 8 9
000: 427A 3FFF C837 0010 0000 003F 003F 0000 0000 0000
010: 2020 2020 2057 442D 5758 4536 4536 3353 5053 5835
020: 0000 4000 0000 3031 2E30 3031 3031 5744 4320 5744
030: 3735 3030 4250 5658 2D32 4333 4333 5430 2020 2020
040: 2020 2020 2020 2020 2020 2020 2020 8010 4000 2F00
050: 4001 0000 0000 0007 3FFF 003F 003F FC10 00FB 0100
060: FFFF 0FFF 0000 0007 0003 0078 0078 0078 0078 0000
070: 0000 0000 0000 0000 0000 FF0E FF0E 0006 004C 0048
080: 03FE 0000 746B 7D69 6123 BC49 BC49 6123 407F 0049
090: 0049 0060 FFFE 0000 0000 0000 0000 0000 0000 0000
100: 66F0 5754 0000 0000 0000 6003 6003 0000 5001 4EE6
110: AE83 9222 0000 0000 0000 0000 0000 0000 0000 4018
120: 4018 0000 0000 0000 0000 0000 0000 0000 0029 0000
130: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
140: 0000 0000 0004 0000 0000 0000 0000 0000 0000 0000
150: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
160: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
170: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
180: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
190: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
200: 0000 0000 0000 0000 0000 7035 7035 0000 0000 4000
210: 0000 0000 0000 0000 0000 0000 0000 1518 0000 0000
220: 0000 0000 103E 0000 0000 0000 0000 0000 0000 0000
230: 0000 0000 0000 0000 0001 0000 0000 0000 0000 0000
240: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
250: 0000 0000 0000 0000 0000 B8A5

otee
Návštěvník
Návštěvník
Příspěvky: 54
Registrován: 22 črc 2011 15:50

Re: Dobrý den prosím o preventivní kontrolu logu

#6 Příspěvek od otee »

Malwarebytes Anti-Malware
www.malwarebytes.org


Protection, 4. 10. 2015 20:51, SYSTEM, ACER, Protection, Malware Protection, Starting,
Protection, 4. 10. 2015 20:51, SYSTEM, ACER, Protection, Malware Protection, Started,
Protection, 4. 10. 2015 20:51, SYSTEM, ACER, Protection, Malicious Website Protection, Starting,
Protection, 4. 10. 2015 20:51, SYSTEM, ACER, Protection, Malicious Website Protection, Started,
Error, 4. 10. 2015 20:54, SYSTEM, ACER, Update, Bad md5 or size: akadomains, 11,
Error, 4. 10. 2015 20:54, SYSTEM, ACER, Update, Bad md5 or size: akaips, 11,
Update, 4. 10. 2015 20:54, SYSTEM, ACER, Manual, Rootkit Database, 2015.6.2.1, 2015.10.2.1,
Update, 4. 10. 2015 20:54, SYSTEM, ACER, Manual, Remediation Database, 2015.5.13.1, 2015.9.30.1,
Update, 4. 10. 2015 20:54, SYSTEM, ACER, Manual, AKA Domain Database, 0.0.0.0, 2015.9.11.2,
Update, 4. 10. 2015 20:54, SYSTEM, ACER, Manual, AKA IP Database, 0.0.0.0, 2015.9.11.2,
Update, 4. 10. 2015 20:54, SYSTEM, ACER, Manual, IP Database, 0.0.0.0, 2015.10.4.1,
Update, 4. 10. 2015 20:54, SYSTEM, ACER, Manual, Domain Database, 0.0.0.0, 2015.10.4.2,
Update, 4. 10. 2015 20:54, SYSTEM, ACER, Manual, Malware Database, 2015.6.3.3, 2015.10.4.4,
Protection, 4. 10. 2015 20:54, SYSTEM, ACER, Protection, Refresh, Starting,
Protection, 4. 10. 2015 20:54, SYSTEM, ACER, Protection, Malicious Website Protection, Stopping,
Protection, 4. 10. 2015 20:54, SYSTEM, ACER, Protection, Malicious Website Protection, Stopped,
Protection, 4. 10. 2015 20:54, SYSTEM, ACER, Protection, Refresh, Success,
Protection, 4. 10. 2015 20:54, SYSTEM, ACER, Protection, Malicious Website Protection, Starting,
Protection, 4. 10. 2015 20:54, SYSTEM, ACER, Protection, Malicious Website Protection, Started,
Update, 4. 10. 2015 23:14, SYSTEM, ACER, Scheduler, Domain Database, 2015.10.4.2, 2015.10.4.3,
Update, 4. 10. 2015 23:14, SYSTEM, ACER, Scheduler, Malware Database, 2015.10.4.4, 2015.10.4.5,
Protection, 4. 10. 2015 23:14, SYSTEM, ACER, Protection, Refresh, Starting,
Protection, 4. 10. 2015 23:14, SYSTEM, ACER, Protection, Malicious Website Protection, Stopping,
Protection, 4. 10. 2015 23:14, SYSTEM, ACER, Protection, Malicious Website Protection, Stopped,
Protection, 4. 10. 2015 23:14, SYSTEM, ACER, Protection, Refresh, Success,
Protection, 4. 10. 2015 23:14, SYSTEM, ACER, Protection, Malicious Website Protection, Starting,
Protection, 4. 10. 2015 23:15, SYSTEM, ACER, Protection, Malicious Website Protection, Started,
Detection, 4. 10. 2015 23:32, SYSTEM, ACER, Protection, Ochrana proti malwaru, Soubor, PUP.Optional.OptimizerPro, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Optimizer Pro v3.2\Optimizer Pro on the Web.lnk, Karanténa, [7e777dd535567fb74c5d1f0f0ff409f7]
Detection, 4. 10. 2015 23:32, SYSTEM, ACER, Protection, Ochrana proti malwaru, Soubor, PUP.Optional.OptimizerPro, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Optimizer Pro v3.2\Check updates.lnk, Karanténa, [d91ce969e7a4a5915d4c44eade256d93]
Detection, 4. 10. 2015 23:32, SYSTEM, ACER, Protection, Ochrana proti malwaru, Soubor, PUP.Optional.OptimizerPro, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Optimizer Pro v3.2\Help.lnk, Karanténa, [e60f232faedd76c0abfe49e5ef143ac6]
Detection, 4. 10. 2015 23:32, SYSTEM, ACER, Protection, Ochrana proti malwaru, Soubor, PUP.Optional.OptimizerPro, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Optimizer Pro v3.2\Optimizer Pro.lnk, Karanténa, [8471292905862115cadf84aa60a3fc04]
Detection, 4. 10. 2015 23:32, SYSTEM, ACER, Protection, Ochrana proti malwaru, Soubor, PUP.Optional.OptimizerPro, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Optimizer Pro v3.2\Uninstall Optimizer Pro.lnk, Karanténa, [84714e048efd2016b0f9b6786e95f60a]

(end)

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: Dobrý den prosím o preventivní kontrolu logu

#7 Příspěvek od Márty84 »

Ten log z MBAM ma vypadat jinak. Kazdopadne test zopakujte a dejte vedet, jestli zase neco nasel, at vime, jestli se to nevraci. Podle vysledku zvolim dalsi postup.
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

otee
Návštěvník
Návštěvník
Příspěvky: 54
Registrován: 22 črc 2011 15:50

Re: Dobrý den prosím o preventivní kontrolu logu

#8 Příspěvek od otee »

po dvou hodinách scanování našel mbam 61 souboru a dostal jsem z něj tohle tak snad je to ono

Malwarebytes Anti-Malware
www.malwarebytes.org

Datum skenování: 6. 10. 2015
Čas skenování: 23:24
Protokol: log2.txt
Správce: Ano

Verze: 2.1.8.1057
Databáze malwaru: v2015.10.06.05
Databáze rootkitů: v2015.10.06.01
Licence: Zkušební verze
Ochrana proti malwaru: Zapnuto
Ochrana proti škodlivým webovým stránkám: Zapnuto
Ochrana programu: Vypnuto

OS: Windows 8.1
CPU: x64
Souborový systém: NTFS
Uživatel: Petr

Typ skenu: Vlastní sken
Výsledek: Dokončeno
Prohledaných objektů: 622363
Uplynulý čas: 2 hod, 8 min, 5 sek

Paměť: Zapnuto
Po spuštění: Zapnuto
Souborový systém: Zapnuto
Archivy: Zapnuto
Rootkity: Vypnuto
Heuristika: Zapnuto
PUP: Zapnuto
PUM: Zapnuto

Procesy: 0
(Nenalezeny žádné škodlivé položky)

Moduly: 0
(Nenalezeny žádné škodlivé položky)

Klíče registru: 0
(Nenalezeny žádné škodlivé položky)

Hodnoty registru: 0
(Nenalezeny žádné škodlivé položky)

Data registru: 0
(Nenalezeny žádné škodlivé položky)

Složky: 0
(Nenalezeny žádné škodlivé položky)

Soubory: 61
PUP.Optional.AirGlobe, C:\AdwCleaner\Quarantine\C\Program Files (x86)\Air Globe\updateAirGlobe.exe.vir, Do karantény, [ae0fa6adc7c415210948328ee0256f91],
PUP.Optional.AirGlobe, C:\AdwCleaner\Quarantine\C\Program Files (x86)\Air Globe\bin\0c1b.dll.vir, Do karantény, [d3eabc979fec2214ada4f5cbb84da15f],
PUP.Optional.AirGlobe, C:\AdwCleaner\Quarantine\C\Program Files (x86)\Air Globe\bin\0c1b64.dll.vir, Do karantény, [873654ff49421521242d457b60a5ab55],
PUP.Optional.AirGlobe, C:\AdwCleaner\Quarantine\C\Program Files (x86)\Air Globe\bin\0c1bfd682f.dll.vir, Do karantény, [279661f2ee9d3afcf25f8f315ea7d729],
PUP.Optional.AirGlobe, C:\AdwCleaner\Quarantine\C\Program Files (x86)\Air Globe\bin\0c1bfd682f64.dll.vir, Do karantény, [e3da55fe513a2610024ff4cc3ec7619f],
PUP.Optional.AirGlobe, C:\AdwCleaner\Quarantine\C\Program Files (x86)\Air Globe\bin\AirGlobe.BrowserAdapter.exe.vir, Do karantény, [8a3356fde4a7072f1d34912f61a407f9],
PUP.Optional.AirGlobe, C:\AdwCleaner\Quarantine\C\Program Files (x86)\Air Globe\bin\AirGlobe.BrowserAdapter64.exe.vir, Do karantény, [497486cde3a8fc3a6ae7ba06d72e936d],
PUP.Optional.AirGlobe, C:\AdwCleaner\Quarantine\C\Program Files (x86)\Air Globe\bin\AirGlobe.expext.exe.vir, Do karantény, [9528ea6999f29c9a3120ba06bc4955ab],
PUP.Optional.AirGlobe, C:\AdwCleaner\Quarantine\C\Program Files (x86)\Air Globe\bin\utilAirGlobe.exe.vir, Do karantény, [4e6f66ed5f2ccc6a034ec8f8e61fbf41],
PUP.Optional.BuenoSearch, C:\AdwCleaner\Quarantine\C\Program Files (x86)\buenosearch LTD\buenosearch\1.8.28.7\buenosearchApp.dll.vir, Do karantény, [19a454ffe3a8a98d39c3193c9d634fb1],
PUP.Optional.BuenoSearch, C:\AdwCleaner\Quarantine\C\Program Files (x86)\buenosearch LTD\buenosearch\1.8.28.7\buenosearchEng.dll.vir, Do karantény, [417cee65d9b27cba0af2c3920cf406fa],
PUP.Optional.BuenoSearch, C:\AdwCleaner\Quarantine\C\Program Files (x86)\buenosearch LTD\buenosearch\1.8.28.7\buenosearchsrv.exe.vir, Do karantény, [00bd6ee5c9c28caa41bbaca9916fe21e],
PUP.Optional.BuenoSearch, C:\AdwCleaner\Quarantine\C\Program Files (x86)\buenosearch LTD\buenosearch\1.8.28.7\buenosearchTlbr.dll.vir, Do karantény, [1ba200534a41f64097657adb39c739c7],
PUP.Optional.BuenoSearch, C:\AdwCleaner\Quarantine\C\Program Files (x86)\buenosearch LTD\buenosearch\1.8.28.7\uninstall.exe.vir, Do karantény, [9a236ee5b8d3bc7ac057fbc2639e55ab],
PUP.Optional.BuenoSearch, C:\AdwCleaner\Quarantine\C\Program Files (x86)\buenosearch LTD\buenosearch\1.8.28.7\bh\buenosearch.dll.vir, Do karantény, [a419a3b0800b3afc96667ed73fc1748c],
PUP.Optional.OptimizerPro, C:\AdwCleaner\Quarantine\C\Program Files (x86)\Optimizer Pro\OptimizerPro.exe.vir, Do karantény, [2a938ac90d7eac8a6535804199681ee2],
PUP.Optional.OptimizerPro, C:\AdwCleaner\Quarantine\C\Program Files (x86)\Optimizer Pro\OptProLauncher.exe.vir, Do karantény, [fcc18ec5bad1a29476248c35f50c6f91],
PUP.Optional.OptimizerPro, C:\AdwCleaner\Quarantine\C\Program Files (x86)\Optimizer Pro\OptProReminder.exe.vir, Do karantény, [f7c6d77c4645280e28acd1267789dc24],
PUP.Optional.OptimizerPro, C:\AdwCleaner\Quarantine\C\Program Files (x86)\Optimizer Pro\OptProSchedule.exe.vir, Do karantény, [4e6f381b4645b185cf0661967c84cd33],
PUP.Optional.OptimizerPro, C:\AdwCleaner\Quarantine\C\Program Files (x86)\Optimizer Pro\OptProSmartScan.exe.vir, Do karantény, [0bb2262db2d9191d24b2748313ed6d93],
PUP.Optional.OptimizerPro, C:\AdwCleaner\Quarantine\C\Program Files (x86)\Optimizer Pro\OptProStart.exe.vir, Do karantény, [2697e86b19725dd90595b90846bb7090],
PUP.Optional.OptimizerPro, C:\AdwCleaner\Quarantine\C\Program Files (x86)\Optimizer Pro\OptProUninstaller.exe.vir, Do karantény, [9429f360dfac45f125746160c14019e7],
PUP.Optional.ClientConnect, C:\AdwCleaner\Quarantine\C\Users\Petr\AppData\Local\TB\APISupport\APISupport.dll.vir, Do karantény, [813ccb887c0f2d0946030a2114ed738d],
PUP.Optional.ClientConnect, C:\AdwCleaner\Quarantine\C\Users\Petr\AppData\Local\TB\APISupport\APISupport.old.vir, Do karantény, [516c1c37b2d9eb4b57f25ecdcc3513ed],
PUP.Optional.Conduit, C:\AdwCleaner\Quarantine\C\Users\Petr\AppData\Local\TB\APISupport\MiniSP_1.0.2.133\MiniSP.dll.vir, Do karantény, [8f2eb0a3612a1b1b4c83a57a8b7625db],
PUP.Optional.AirGlobe, C:\AdwCleaner\Quarantine\C\Windows\Sysnative\drivers\{0c1bfd68-2f89-48f3-b055-985cab8bbde5}Gw64.sys.vir, Do karantény, [4776f75cef9c31058bc6e1df33d24eb2],
PUP.Optional.AirGlobe, C:\AdwCleaner\Quarantine\C\Windows\Sysnative\drivers\{0ed07a29-a68f-404d-bba1-88566b3f424a}Gw64.sys.vir, Do karantény, [803dbd96bfccc37394bd4d73b154b749],
PUP.Optional.AirGlobe, C:\AdwCleaner\Quarantine\C\Windows\Sysnative\drivers\{168ea170-a682-4a6a-be62-f8928e526a66}Gw64.sys.vir, Do karantény, [a518064d08837eb8e968d4ece61f6997],
PUP.Optional.AirGlobe, C:\AdwCleaner\Quarantine\C\Windows\Sysnative\drivers\{16de1a5e-6c3d-4a29-8611-d373f21989ef}Gw64.sys.vir, Do karantény, [d2eb94bfc0cb64d248092a969c6938c8],
PUP.Optional.AirGlobe, C:\AdwCleaner\Quarantine\C\Windows\Sysnative\drivers\{21d3b30d-5feb-4224-9a1d-01f7d9334705}Gw64.sys.vir, Do karantény, [754882d197f442f499b8c8f8d2337b85],
PUP.Optional.AirGlobe, C:\AdwCleaner\Quarantine\C\Windows\Sysnative\drivers\{2bd159c5-ea71-4e27-88d2-1a2653bf93a0}Gw64.sys.vir, Do karantény, [615c2e25fa91ba7c430e2b958085ff01],
PUP.Optional.AirGlobe, C:\AdwCleaner\Quarantine\C\Windows\Sysnative\drivers\{2eb930fb-5d92-450f-a5ff-14c391caa31b}Gw64.sys.vir, Do karantény, [d7e6ea6999f2ee48d1806858d62f6b95],
PUP.Optional.AirGlobe, C:\AdwCleaner\Quarantine\C\Windows\Sysnative\drivers\{399a0743-357c-44e5-9a46-bb7ce63a3062}Gw64.sys.vir, Do karantény, [f5c87fd4404b8da9da77625e34d10cf4],
PUP.Optional.AirGlobe, C:\AdwCleaner\Quarantine\C\Windows\Sysnative\drivers\{454e3137-dcd4-4da1-8ba3-a62446458c4f}Gw64.sys.vir, Do karantény, [a21bbb9836550531094814ac34d157a9],
PUP.Optional.AirGlobe, C:\AdwCleaner\Quarantine\C\Windows\Sysnative\drivers\{47887a95-8ff1-45b1-926b-1922a67fa6a8}Gw64.sys.vir, Do karantény, [2895f85bdcafac8a331e9d23e22323dd],
PUP.Optional.AirGlobe, C:\AdwCleaner\Quarantine\C\Windows\Sysnative\drivers\{4c12e85e-ecff-4f9b-b0b4-a94418f3e761}Gw64.sys.vir, Do karantény, [1ba294bfd4b748eef75ad4ec9f66b44c],
PUP.Optional.AirGlobe, C:\AdwCleaner\Quarantine\C\Windows\Sysnative\drivers\{4dcf5f16-e481-4ed1-9973-24b80676c934}Gw64.sys.vir, Do karantény, [c6f7fb588704e452a1b06060877e758b],
PUP.Optional.AirGlobe, C:\AdwCleaner\Quarantine\C\Windows\Sysnative\drivers\{4ef0c05a-9c51-4169-8766-50499ecedac1}Gw64.sys.vir, Do karantény, [ecd159faec9fb87e53fe5868040143bd],
PUP.Optional.AirGlobe, C:\AdwCleaner\Quarantine\C\Windows\Sysnative\drivers\{50ce1dc5-0676-4bd3-8b6f-6a8393cebc27}Gw64.sys.vir, Do karantény, [7c4175de0f7cab8ba8a9f8c826df29d7],
PUP.Optional.AirGlobe, C:\AdwCleaner\Quarantine\C\Windows\Sysnative\drivers\{518c59b7-17dc-4872-ae04-24f1719066a1}Gw64.sys.vir, Do karantény, [813c1d3653383ff70e43bc04b154d42c],
PUP.Optional.AirGlobe, C:\AdwCleaner\Quarantine\C\Windows\Sysnative\drivers\{528cee47-7291-4264-bfa5-cfe581415f9d}Gw64.sys.vir, Do karantény, [e6d71c37c3c8a096d77a734d49bc0cf4],
PUP.Optional.AirGlobe, C:\AdwCleaner\Quarantine\C\Windows\Sysnative\drivers\{6010c1d4-82a3-4db6-b3f6-09826a275523}Gw64.sys.vir, Do karantény, [803db49f2566e650b998a71926df9a66],
PUP.Optional.AirGlobe, C:\AdwCleaner\Quarantine\C\Windows\Sysnative\drivers\{6ed44528-f859-4ac0-b14f-f62a9503489b}Gw64.sys.vir, Do karantény, [5d600d4613782b0ba9a80ab6f80df010],
PUP.Optional.AirGlobe, C:\AdwCleaner\Quarantine\C\Windows\Sysnative\drivers\{8a41cfe2-3810-44a8-a83f-c58ba68c0bd4}Gw64.sys.vir, Do karantény, [625b66ed26651224cc8502be49bc3dc3],
PUP.Optional.AirGlobe, C:\AdwCleaner\Quarantine\C\Windows\Sysnative\drivers\{90280f97-bcf9-4f01-b773-3eeda0515e95}Gw64.sys.vir, Do karantény, [f9c4391a1c6f59dd83ceae128580817f],
PUP.Optional.AirGlobe, C:\AdwCleaner\Quarantine\C\Windows\Sysnative\drivers\{913d2ed3-4e23-413f-bdab-195da83ca204}Gw64.sys.vir, Do karantény, [f0cdb89ba7e4cb6b59f89c245baa8080],
PUP.Optional.AirGlobe, C:\AdwCleaner\Quarantine\C\Windows\Sysnative\drivers\{91923a99-046b-4966-ad73-8db5e6ecac1d}Gw64.sys.vir, Do karantény, [7e3f252e1e6d38fe79d88739689d0ef2],
PUP.Optional.AirGlobe, C:\AdwCleaner\Quarantine\C\Windows\Sysnative\drivers\{95771641-7d7b-46d9-a635-8b6ed19ac290}Gw64.sys.vir, Do karantény, [febf0c475635ee48e56c259bba4b29d7],
PUP.Optional.AirGlobe, C:\AdwCleaner\Quarantine\C\Windows\Sysnative\drivers\{9c87de74-a53e-482a-ae83-0cd43d2f20ef}Gw64.sys.vir, Do karantény, [8637c2919dee2d09c48dd3ed966fae52],
PUP.Optional.AirGlobe, C:\AdwCleaner\Quarantine\C\Windows\Sysnative\drivers\{9f6bd61c-56e9-4ec0-8890-acc97fb10685}Gw64.sys.vir, Do karantény, [67563f145635ed49e9684a76ae5741bf],
PUP.Optional.AirGlobe, C:\AdwCleaner\Quarantine\C\Windows\Sysnative\drivers\{bedb11f1-1e99-489a-8394-6ed70e5ad345}Gw64.sys.vir, Do karantény, [04b970e33259ae8893be80404abb06fa],
PUP.Optional.AirGlobe, C:\AdwCleaner\Quarantine\C\Windows\Sysnative\drivers\{bf34199a-d8d1-4010-b9b5-fa9597e3123a}Gw64.sys.vir, Do karantény, [bd00074ca6e50e2855fc1ba564a150b0],
PUP.Optional.AirGlobe, C:\AdwCleaner\Quarantine\C\Windows\Sysnative\drivers\{d447a5a7-a0f3-4764-b2fa-d4e58c36c75a}Gw64.sys.vir, Do karantény, [8538e370b1da95a130215a666b9aa35d],
PUP.Optional.AirGlobe, C:\AdwCleaner\Quarantine\C\Windows\Sysnative\drivers\{dec6f88c-7a9e-4cc3-bf67-f2cb1ad3fe02}Gw64.sys.vir, Do karantény, [8d30d77c0c7fb284a6ab4d73f70e46ba],
PUP.Optional.AirGlobe, C:\AdwCleaner\Quarantine\C\Windows\Sysnative\drivers\{e08fcad9-9d66-45db-b3c2-5d84d4983d6e}Gw64.sys.vir, Do karantény, [5d60341f4546ce680e435f61c73edd23],
PUP.Optional.AirGlobe, C:\AdwCleaner\Quarantine\C\Windows\Sysnative\drivers\{e3bd305e-655b-4acb-ab17-5138c562afe0}Gw64.sys.vir, Do karantény, [ccf166ed7e0d7db93a17d8e8ba4b7c84],
PUP.Optional.AirGlobe, C:\AdwCleaner\Quarantine\C\Windows\Sysnative\drivers\{f17f19ac-f9b8-4e8d-b04e-93f39064f7e1}Gw64.sys.vir, Do karantény, [8a33c093d0bbdf57074a229e0104ff01],
PUP.Optional.AirGlobe, C:\AdwCleaner\Quarantine\C\Windows\Sysnative\drivers\{fa289dde-d9a2-48d0-a243-26b2c4f253f3}Gw64.sys.vir, Do karantény, [2a93cb8891fa40f691c0bc045ea7768a],
PUP.Optional.AirGlobe, C:\AdwCleaner\Quarantine\C\Windows\Sysnative\drivers\{fbcc472e-8c96-4669-abe9-10a269b03700}Gw64.sys.vir, Do karantény, [7e3f7ed505869b9b6ae708b8679eaf51],
PUP.Optional.AirGlobe, C:\AdwCleaner\Quarantine\C\Windows\Sysnative\drivers\{fc3ee8d3-d9cb-4d32-b226-0f4e1c81f5f0}Gw64.sys.vir, Do karantény, [803d044fd8b3d066351c0fb1eb1a38c8],
VirTool.Obfuscator, C:\Games\The Sims 4\Game\Bin\3dmgame.dll, Do karantény, [dce1c68d84077bbb43e7b74831d0e31d],

Fyzické sektory: 0
(Nenalezeny žádné škodlivé položky)


(end)

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: Dobrý den prosím o preventivní kontrolu logu

#9 Příspěvek od Márty84 »

:arrow: MBAM odinstalujte.

:arrow: Dejte novy log z RSIT

a k tomu

:arrow: Dejte logy podle tohoto navodu http://forum.viry.cz/viewtopic.php?f=13&t=133100 - vypnete na chvili antivir, je mozne, ze to bude blokovat jako skodnou, ale pouzivame to porad, jedna se o falesny poplach :)
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

otee
Návštěvník
Návštěvník
Příspěvky: 54
Registrován: 22 črc 2011 15:50

Re: Dobrý den prosím o preventivní kontrolu logu

#10 Příspěvek od otee »

nový RSIT

Logfile of random's system information tool 1.10 (written by random/random)
Run by Petr at 2015-10-07 10:28:23
Microsoft Windows 8.1
System drive C: has 457 GB (66%) free of 697 GB
Total RAM: 8072 MB (69% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 10:28:27, on 7. 10. 2015
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.17840)
Boot mode: Normal

Running processes:
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\Canon\Quick Menu\CNQMMAIN.EXE
C:\Program Files (x86)\Canon\Quick Menu\CNQMSWCS.exe
C:\Program Files (x86)\Canon\My Image Garden\cnmigmain.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\Petr.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = https://www.seznam.cz/?clid=22668
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://search.seznam.cz/?sourceid=quick ... earchTerms}
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe,
O2 - BHO: Canon Easy-WebPrint EX BHO - {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O3 - Toolbar: Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [CanonQuickMenu] C:\Program Files (x86)\Canon\Quick Menu\CNQMMAIN.EXE /logon
O4 - HKLM\..\RunOnce: [Malwarebytes Anti-Malware (cleanup)] "C:\ProgramData\Malwarebytes\Malwarebytes Anti-Malware\mbamdor.exe" "C:\ProgramData\Malwarebytes\Malwarebytes Anti-Malware"
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKLM\..\Policies\Explorer\Run: [BtvStack] "C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvStack.exe"
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: AtherosSvc - Qualcomm Atheros Commnucations - C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\adminservice.exe
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: AvastVBox COM Service (AvastVBoxSvc) - Avast Software - C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe
O23 - Service: CCDMonitorService - Acer Incorporated - C:\Program Files (x86)\Acer\Acer Cloud\CCDMonitorService.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: COMODO Dragon Update Service (DragonUpdater) - Unknown owner - C:\Program Files (x86)\Comodo\Dragon\dragon_updater.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: ePower Service (ePowerSvc) - Acer Incorporated - C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) - Unknown owner - C:\WINDOWS\system32\igfxCUIService.exe (file missing)
O23 - Service: Canon Inkjet Printer/Scanner/Fax Extended Survey Program (IJPLMSVC) - Unknown owner - C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
O23 - Service: Intel(R) Technology Access Software Asset Manager (Intel(R) TA SAM) - Unknown owner - C:\Program Files (x86)\Intel Corporation\Intel(R) Technology Access\Intel(R) Software Asset Manager\bin\IntelSoftwareAssetManagerService.exe
O23 - Service: Intel(R) Technology Access Legacy CS Loader - Intel(R) Corporation - C:\Program Files\Intel Corporation\Intel(R) Technology Access\LegacyCsLoaderService.exe
O23 - Service: Intel(R) Technology Access Service (Intel(R) TechnologyAccessService) - Intel(R) Corporation - C:\Program Files\Intel Corporation\Intel(R) Technology Access\IntelTechnologyAccessService.exe
O23 - Service: Intel(R) Update Manager (iumsvc) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: Launch Manager Service (LMSvc) - Acer Incorporate - C:\Program Files\Acer\Acer Launch Manager\LMSvc.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: Nero Update (NAUpdate) - Nero AG - c:\Program Files (x86)\Nero\Update\NASvc.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 9204 bytes

======Listing Processes======






wininit.exe
winlogon.exe

C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
"dwm.exe"
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\system32\igfxCUIService.exe
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k NetworkService
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\adminservice.exe"
"C:\Program Files (x86)\Acer\Acer Cloud\CCDMonitorService.exe"
C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
C:\WINDOWS\System32\svchost.exe -k utcsvc
dashost.exe {06d608f1-f45c-42f1-9a355c3329219ab9}
"C:\Program Files (x86)\Comodo\Dragon\dragon_updater.exe"
"C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE"
"C:\Program Files\Intel\iCLS Client\HeciServer.exe"
"C:\Program Files\Intel Corporation\Intel(R) Technology Access\LegacyCsLoaderService.exe"
"C:\Program Files\Acer\Acer Launch Manager\LMSvc.exe"
"C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe"
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\WINDOWS\System32\msdtc.exe
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /c
C:\WINDOWS\system32\dllhost.exe /Processid:{02D4B3F1-FD88-11D1-960D-00805FC79235}
C:\WINDOWS\system32\DllHost.exe /Processid:{48DA6741-1BF0-4A44-8325-293086C79077}

C:\WINDOWS\system32\SearchIndexer.exe /Embedding
"C:\Program Files\Intel Corporation\Intel(R) Technology Access\IntelTechnologyAccessService.exe"
C:\WINDOWS\system32\wbem\wmiprvse.exe
taskhost.exe TpmTasks
C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
C:\WINDOWS\Explorer.EXE
igfxEM.exe
igfxTray.exe
igfxHK.exe
taskhostex.exe
"C:\Program Files\Acer\Acer Launch Manager\LMEvent.exe"
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\Program Files\Acer\Acer Launch Manager\LMTray.exe"
"C:\Program Files\Acer\Acer Power Management\ePowerTray.exe"
"C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe"
"C:\WINDOWS\system32\igfxext.exe" -Embedding
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files\Acer\Acer Power Management\ePowerEvent.exe"
"C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvStack.exe"
"C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\ActivateDesktop.exe"
"C:\Program Files\Elantech\ETDCtrl.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files\Elantech\ETDTouch.exe"
"C:\Program Files\Elantech\ETDCtrlHelper.exe"
"C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
"C:\Program Files (x86)\Canon\Quick Menu\CNQMMAIN.EXE" /logon
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
C:\WINDOWS\system32\svchost.exe -k imgsvc
"C:\Program Files (x86)\Canon\Quick Menu\CNQMSWCS.exe" /MainProcess 2724 /PrinterName "" /ScannerName "Canon MG3500 series" /Language cs-CZ /Startup
"C:\Program Files (x86)\Canon\My Image Garden\cnmigmain.exe" -f="SM_CreateListBG"
C:\WINDOWS\System32\svchost.exe -k LocalServicePeerNet
C:\WINDOWS\system32\DllHost.exe /Processid:{30D49246-D217-465F-B00B-AC9DDD652EB7}
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\WINDOWS\system32\wuauclt.exe"
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-584f4795-b771-41be-a613-33731b423ae3 -SystemEventPortName:HostProcess-1cf990a6-e737-4d00-b7da-e3aa0789e293 -IoCancelEventPortName:HostProcess-acde08f3-7108-429d-bb7b-6d9a72259694 -NonStateChangingEventPortName:HostProcess-0b7a7206-384c-4a58-9278-9441cfce7373 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:d1ea81b8-ac81-441a-b86f-d3e5f565f920 -DeviceGroupId:WudfDefaultDevicePool

"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe_S-1-5-21-727662200-1775937095-1431734872-1001117_ Global\UsGthrCtrlFltPipeMssGthrPipe_S-1-5-21-727662200-1775937095-1431734872-1001117 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon" "1"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="7576.0.1490125119\1188623621" --supports-dual-gpus=false --gpu-driver-bug-workarounds=2,20,45 --gpu-vendor-id=0x8086 --gpu-device-id=0x0a06 --gpu-driver-vendor="Intel Corporation" --gpu-driver-version=10.18.14.4264 --ignored=" --type=renderer " /prefetch:822062411
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AffiliationBasedMatching/Enabled/AudioProcessing48kHzSupport/Default/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/ChromeDashboard/Default/ChromotingQUIC/Disabled/*ClientSideDetectionModel/Model0/*DomRel-Enable/enable/*EmbeddedSearch/Group4 pct:10d stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnableSessionCrashedBubbleUI/Enabled/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GoogleNow/Enable/*IconNTP/Default/InstanceID/Enabled/*IntelligentSessionRestore/Disabled/*NetworkQualityEstimator/Enabled/*NewProfileManagement/Enabled/NewVideoRendererTrial/Enabled/*OmniboxBundledExperimentV1/NewSuggestType_A3_Stable_R1/*PasswordGeneration/Disabled/PasswordLinkInSettings/Enabled/*PluginPowerSaver/Enabled/*PrerenderFromOmnibox/OmniboxPrerenderEnabled/*QUIC/EnabledTimeLossDetection/RefreshTokenDeviceId/Enabled/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingSocialEngineeringStrings/Disabled/SessionRestoreBackgroundLoading/Restore/*SlimmingPaint/EnableSlimmingPaint/SyncBackingDatabase32K/Enabled/*UMA-Dynamic-Binary-Uniformity-Trial/group_01/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_03/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/VoiceTrigger/Install/WebRTC-UDPSocketNonBlockingIO/Default/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-delegated-renderer --num-raster-threads=1 --gpu-rasterization-msaa-sample-count=8 --content-image-texture-target=3553 --video-image-texture-target=3553 --channel="7576.3.837748623\1955822156" --font-cache-shared-handle=4172 /prefetch:673131151
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe118_ Global\UsGthrCtrlFltPipeMssGthrPipe118 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 584 588 596 65536 592
"C:\Users\Petr\Desktop\RSITx64 (1).exe"

======Scheduled tasks folder======

C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3785D0AD-BFFF-47F6-BF5B-A587C162FED9}]
Canon Easy-WebPrint EX BHO - C:\Program Files\Canon\Easy-WebPrint EX\ewpexbho.dll [2014-07-07 209504]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8D10F6C4-0E01-4BD4-8601-11AC1FDF8126}]
CIESpeechBHO Class - C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\IEPlugIn.dll [2013-04-15 66688]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2015-10-02 655480]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3785D0AD-BFFF-47F6-BF5B-A587C162FED9}]
Canon Easy-WebPrint EX BHO - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll [2014-07-07 176736]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2015-10-02 559624]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F}
{759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - Canon Easy-WebPrint EX - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll [2014-07-07 6133848]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - Canon Easy-WebPrint EX - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll [2014-07-07 4439128]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"ETDCtrl"=C:\Program Files\Elantech\ETDCtrl.exe [2013-04-22 2890640]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2013-03-18 13427784]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2015-08-09 404376]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run]
"BtvStack"=C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvStack.exe [2013-04-15 132736]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"=C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2014-03-04 3696912]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2015-10-02 6134544]
"CanonQuickMenu"=C:\Program Files (x86)\Canon\Quick Menu\CNQMMAIN.EXE [2013-04-02 1282632]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\RunOnce]
"Malwarebytes Anti-Malware (cleanup)"=C:\ProgramData\Malwarebytes\Malwarebytes Anti-Malware\mbamdor.exe [2015-06-18 54072]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run]
"BtvStack"=C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvStack.exe [2013-04-15 132736]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"EnableLinkedConnections"=1
"SoftwareSASGeneration"=1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"VIDC.YUY2"=msyuv.dll
"vidc.i420"=iyuv_32.dll
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"VIDC.YVYU"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"vidc.msvc"=msvidc32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"aux1"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"wave4"=wdmaud.drv
"mixer4"=wdmaud.drv
"midi4"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2015-10-07 01:37:12 ----A---- C:\log2.txt
2015-10-07 01:35:29 ----A---- C:\WINDOWS\system32\drivers\mwiwr.sys
2015-10-05 07:48:20 ----D---- C:\Users\Petr\AppData\Roaming\Identities
2015-10-05 07:48:06 ----A---- C:\WINDOWS\system32\{F33C3B9B-72AF-418A-B3FD-560646F7CDA2}.bat
2015-10-05 01:38:09 ----SHD---- C:\Recovery
2015-10-05 01:38:00 ----DC---- C:\WINDOWS\Panther
2015-10-05 01:36:05 ----A---- C:\WINDOWS\system32\fhcpl.dll
2015-10-05 01:35:45 ----A---- C:\WINDOWS\SYSWOW64\rdvidcrl.dll
2015-10-05 01:35:45 ----A---- C:\WINDOWS\SYSWOW64\mstscax.dll
2015-10-05 01:35:45 ----A---- C:\WINDOWS\system32\rdvidcrl.dll
2015-10-05 01:35:45 ----A---- C:\WINDOWS\system32\mstscax.dll
2015-10-05 01:35:22 ----A---- C:\WINDOWS\system32\SettingsHandlers.dll
2015-10-05 01:34:55 ----A---- C:\WINDOWS\SYSWOW64\WSDApi.dll
2015-10-05 01:34:55 ----A---- C:\WINDOWS\SYSWOW64\WinSCard.dll
2015-10-05 01:34:55 ----A---- C:\WINDOWS\SYSWOW64\vsstrace.dll
2015-10-05 01:34:55 ----A---- C:\WINDOWS\SYSWOW64\vssapi.dll
2015-10-05 01:34:55 ----A---- C:\WINDOWS\SYSWOW64\untfs.dll
2015-10-05 01:34:55 ----A---- C:\WINDOWS\SYSWOW64\rasser.dll
2015-10-05 01:34:55 ----A---- C:\WINDOWS\SYSWOW64\rasmxs.dll
2015-10-05 01:34:55 ----A---- C:\WINDOWS\SYSWOW64\rasdiag.dll
2015-10-05 01:34:55 ----A---- C:\WINDOWS\SYSWOW64\rascfg.dll
2015-10-05 01:34:55 ----A---- C:\WINDOWS\SYSWOW64\rasapi32.dll
2015-10-05 01:34:55 ----A---- C:\WINDOWS\SYSWOW64\QSVRMGMT.DLL
2015-10-05 01:34:55 ----A---- C:\WINDOWS\SYSWOW64\QSHVHOST.DLL
2015-10-05 01:34:55 ----A---- C:\WINDOWS\SYSWOW64\nshwfp.dll
2015-10-05 01:34:55 ----A---- C:\WINDOWS\SYSWOW64\mfplat.dll
2015-10-05 01:34:55 ----A---- C:\WINDOWS\SYSWOW64\mfmp4srcsnk.dll
2015-10-05 01:34:55 ----A---- C:\WINDOWS\SYSWOW64\MFMediaEngine.dll
2015-10-05 01:34:55 ----A---- C:\WINDOWS\SYSWOW64\FWPUCLNT.DLL
2015-10-05 01:34:55 ----A---- C:\WINDOWS\SYSWOW64\eventcls.dll
2015-10-05 01:34:55 ----A---- C:\WINDOWS\SYSWOW64\dnsapi.dll
2015-10-05 01:34:55 ----A---- C:\WINDOWS\SYSWOW64\DevicePairing.dll
2015-10-05 01:34:55 ----A---- C:\WINDOWS\SYSWOW64\AppxAllUserStore.dll
2015-10-05 01:34:55 ----A---- C:\WINDOWS\system32\WSDMon.dll
2015-10-05 01:34:55 ----A---- C:\WINDOWS\system32\WSDApi.dll
2015-10-05 01:34:55 ----A---- C:\WINDOWS\system32\WinSCard.dll
2015-10-05 01:34:55 ----A---- C:\WINDOWS\system32\VSSVC.exe
2015-10-05 01:34:55 ----A---- C:\WINDOWS\system32\vsstrace.dll
2015-10-05 01:34:55 ----A---- C:\WINDOWS\system32\vssapi.dll
2015-10-05 01:34:55 ----A---- C:\WINDOWS\system32\vpnike.dll
2015-10-05 01:34:55 ----A---- C:\WINDOWS\system32\untfs.dll
2015-10-05 01:34:55 ----A---- C:\WINDOWS\system32\SyncEngine.dll
2015-10-05 01:34:55 ----A---- C:\WINDOWS\system32\spoolsv.exe
2015-10-05 01:34:55 ----A---- C:\WINDOWS\system32\SkyDriveTelemetry.dll
2015-10-05 01:34:55 ----A---- C:\WINDOWS\system32\SkyDrive.exe
2015-10-05 01:34:55 ----A---- C:\WINDOWS\system32\rasser.dll
2015-10-05 01:34:55 ----A---- C:\WINDOWS\system32\rasmxs.dll
2015-10-05 01:34:55 ----A---- C:\WINDOWS\system32\rasdiag.dll
2015-10-05 01:34:55 ----A---- C:\WINDOWS\system32\rascfg.dll
2015-10-05 01:34:55 ----A---- C:\WINDOWS\system32\rasapi32.dll
2015-10-05 01:34:55 ----A---- C:\WINDOWS\system32\QSVRMGMT.DLL
2015-10-05 01:34:55 ----A---- C:\WINDOWS\system32\QSHVHOST.DLL
2015-10-05 01:34:55 ----A---- C:\WINDOWS\system32\nshwfp.dll
2015-10-05 01:34:55 ----A---- C:\WINDOWS\system32\mfplat.dll
2015-10-05 01:34:55 ----A---- C:\WINDOWS\system32\mfmp4srcsnk.dll
2015-10-05 01:34:55 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll
2015-10-05 01:34:55 ----A---- C:\WINDOWS\system32\IKEEXT.DLL
2015-10-05 01:34:55 ----A---- C:\WINDOWS\system32\FWPUCLNT.DLL
2015-10-05 01:34:55 ----A---- C:\WINDOWS\system32\eventcls.dll
2015-10-05 01:34:55 ----A---- C:\WINDOWS\system32\drivers\wfplwfs.sys
2015-10-05 01:34:55 ----A---- C:\WINDOWS\system32\drivers\wanarp.sys
2015-10-05 01:34:55 ----A---- C:\WINDOWS\system32\drivers\rasl2tp.sys
2015-10-05 01:34:55 ----A---- C:\WINDOWS\system32\drivers\pdc.sys
2015-10-05 01:34:55 ----A---- C:\WINDOWS\system32\drivers\netio.sys
2015-10-05 01:34:55 ----A---- C:\WINDOWS\system32\drivers\ndproxy.sys
2015-10-05 01:34:55 ----A---- C:\WINDOWS\system32\drivers\ndistapi.sys
2015-10-05 01:34:55 ----A---- C:\WINDOWS\system32\drivers\dam.sys
2015-10-05 01:34:55 ----A---- C:\WINDOWS\system32\drivers\agilevpn.sys
2015-10-05 01:34:55 ----A---- C:\WINDOWS\system32\dnsrslvr.dll
2015-10-05 01:34:55 ----A---- C:\WINDOWS\system32\dnsapi.dll
2015-10-05 01:34:55 ----A---- C:\WINDOWS\system32\DevicePairing.dll
2015-10-05 01:34:55 ----A---- C:\WINDOWS\system32\BFE.DLL
2015-10-05 01:34:55 ----A---- C:\WINDOWS\system32\AppxAllUserStore.dll
2015-10-05 01:34:55 ----A---- C:\WINDOWS\splwow64.exe
2015-10-05 01:34:54 ----A---- C:\WINDOWS\system32\drivers\vhdmp.sys
2015-10-05 01:34:54 ----A---- C:\WINDOWS\system32\drivers\intelpep.sys
2015-10-05 01:33:22 ----A---- C:\WINDOWS\SYSWOW64\dbghelp.dll
2015-10-05 01:33:22 ----A---- C:\WINDOWS\SYSWOW64\dbgeng.dll
2015-10-05 01:33:22 ----A---- C:\WINDOWS\system32\dbghelp.dll
2015-10-05 01:33:22 ----A---- C:\WINDOWS\system32\dbgeng.dll
2015-10-05 01:33:02 ----A---- C:\WINDOWS\SYSWOW64\PhotoMetadataHandler.dll
2015-10-05 01:33:02 ----A---- C:\WINDOWS\system32\PhotoMetadataHandler.dll
2015-10-05 01:32:50 ----A---- C:\WINDOWS\SYSWOW64\notepad.exe
2015-10-05 01:32:50 ----A---- C:\WINDOWS\system32\notepad.exe
2015-10-05 01:32:50 ----A---- C:\WINDOWS\notepad.exe
2015-10-05 01:32:38 ----A---- C:\WINDOWS\system32\drivers\udfs.sys
2015-10-05 01:32:13 ----A---- C:\WINDOWS\SYSWOW64\authz.dll
2015-10-05 01:32:13 ----A---- C:\WINDOWS\system32\authz.dll
2015-10-05 01:32:01 ----A---- C:\WINDOWS\SYSWOW64\MrmCoreR.dll
2015-10-05 01:32:01 ----A---- C:\WINDOWS\system32\MrmCoreR.dll
2015-10-05 01:31:22 ----A---- C:\WINDOWS\system32\SystemSettingsDatabase.dll
2015-10-05 01:31:22 ----A---- C:\WINDOWS\system32\SystemSettingsAdminFlowUI.dll
2015-10-05 01:31:22 ----A---- C:\WINDOWS\system32\SystemSettingsAdminFlows.exe
2015-10-05 01:31:22 ----A---- C:\WINDOWS\system32\SystemSettings.Handlers.dll
2015-10-05 01:31:22 ----A---- C:\WINDOWS\system32\MDMAgent.exe
2015-10-05 01:31:02 ----A---- C:\WINDOWS\SYSWOW64\msiexec.exe
2015-10-05 01:31:02 ----A---- C:\WINDOWS\SYSWOW64\msi.dll
2015-10-05 01:31:02 ----A---- C:\WINDOWS\system32\msiexec.exe
2015-10-05 01:31:02 ----A---- C:\WINDOWS\system32\msi.dll
2015-10-05 01:30:45 ----A---- C:\WINDOWS\SYSWOW64\wuwebv.dll
2015-10-05 01:30:45 ----A---- C:\WINDOWS\SYSWOW64\wups.dll
2015-10-05 01:30:45 ----A---- C:\WINDOWS\SYSWOW64\wudriver.dll
2015-10-05 01:30:45 ----A---- C:\WINDOWS\SYSWOW64\wuapp.exe
2015-10-05 01:30:45 ----A---- C:\WINDOWS\SYSWOW64\wuapi.dll
2015-10-05 01:30:45 ----A---- C:\WINDOWS\system32\wuwebv.dll
2015-10-05 01:30:45 ----A---- C:\WINDOWS\system32\WUSettingsProvider.dll
2015-10-05 01:30:45 ----A---- C:\WINDOWS\system32\wups2.dll
2015-10-05 01:30:45 ----A---- C:\WINDOWS\system32\wups.dll
2015-10-05 01:30:45 ----A---- C:\WINDOWS\system32\wudriver.dll
2015-10-05 01:30:45 ----A---- C:\WINDOWS\system32\wucltux.dll
2015-10-05 01:30:45 ----A---- C:\WINDOWS\system32\wuaueng.dll
2015-10-05 01:30:45 ----A---- C:\WINDOWS\system32\wuauclt.exe
2015-10-05 01:30:45 ----A---- C:\WINDOWS\system32\wuapp.exe
2015-10-05 01:30:45 ----A---- C:\WINDOWS\system32\wuapi.dll
2015-10-05 01:30:45 ----A---- C:\WINDOWS\system32\WinSetupUI.dll
2015-10-05 01:30:26 ----A---- C:\WINDOWS\SYSWOW64\WindowsCodecs.dll
2015-10-05 01:30:26 ----A---- C:\WINDOWS\system32\WindowsCodecs.dll
2015-10-05 01:30:14 ----A---- C:\WINDOWS\SYSWOW64\oleaut32.dll
2015-10-05 01:30:14 ----A---- C:\WINDOWS\system32\oleaut32.dll
2015-10-05 01:29:45 ----A---- C:\WINDOWS\system32\drivers\sermouse.sys
2015-10-05 01:29:45 ----A---- C:\WINDOWS\system32\drivers\mouhid.sys
2015-10-05 01:29:45 ----A---- C:\WINDOWS\system32\drivers\mouclass.sys
2015-10-05 01:29:45 ----A---- C:\WINDOWS\system32\drivers\kbdhid.sys
2015-10-05 01:29:45 ----A---- C:\WINDOWS\system32\drivers\kbdclass.sys
2015-10-05 01:29:45 ----A---- C:\WINDOWS\system32\drivers\i8042prt.sys
2015-10-05 01:29:10 ----A---- C:\WINDOWS\SYSWOW64\UIAutomationCore.dll
2015-10-05 01:29:10 ----A---- C:\WINDOWS\system32\UIAutomationCore.dll
2015-10-05 01:28:27 ----A---- C:\WINDOWS\system32\dpapisrv.dll
2015-10-05 01:27:59 ----A---- C:\WINDOWS\system32\WiFiDisplay.dll
2015-10-05 01:27:44 ----A---- C:\WINDOWS\SYSWOW64\PresentationCFFRasterizerNative_v0300.dll
2015-10-05 01:27:44 ----A---- C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2015-10-05 01:27:24 ----A---- C:\WINDOWS\SYSWOW64\DWrite.dll
2015-10-05 01:27:24 ----A---- C:\WINDOWS\system32\FntCache.dll
2015-10-05 01:27:24 ----A---- C:\WINDOWS\system32\DWrite.dll
2015-10-05 01:27:09 ----A---- C:\WINDOWS\system32\drivers\bthhfenum.sys
2015-10-05 01:26:58 ----A---- C:\WINDOWS\SYSWOW64\schannel.dll
2015-10-05 01:26:58 ----A---- C:\WINDOWS\system32\schannel.dll
2015-10-05 01:16:52 ----A---- C:\WINDOWS\SYSWOW64\WSShared.dll
2015-10-05 01:16:52 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2015-10-05 01:16:52 ----A---- C:\WINDOWS\system32\WSShared.dll
2015-10-05 01:16:52 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2015-10-05 01:16:31 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.dll
2015-10-05 01:16:31 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.dll
2015-10-05 01:16:19 ----A---- C:\WINDOWS\system32\nlasvc.dll
2015-10-05 01:16:19 ----A---- C:\WINDOWS\system32\ncsi.dll
2015-10-05 01:16:13 ----A---- C:\WINDOWS\system32\LockScreenContentServer.exe
2015-10-05 01:16:06 ----A---- C:\WINDOWS\SYSWOW64\InkEd.dll
2015-10-05 01:16:06 ----A---- C:\WINDOWS\system32\InkEd.dll
2015-10-05 01:15:58 ----A---- C:\WINDOWS\system32\rdpudd.dll
2015-10-05 01:15:58 ----A---- C:\WINDOWS\system32\rdpcorets.dll
2015-10-05 01:15:51 ----A---- C:\WINDOWS\SYSWOW64\crypt32.dll
2015-10-05 01:15:51 ----A---- C:\WINDOWS\system32\crypt32.dll
2015-10-05 01:15:45 ----A---- C:\WINDOWS\SYSWOW64\eapphost.dll
2015-10-05 01:15:45 ----A---- C:\WINDOWS\SYSWOW64\eappgnui.dll
2015-10-05 01:15:45 ----A---- C:\WINDOWS\SYSWOW64\eappcfg.dll
2015-10-05 01:15:45 ----A---- C:\WINDOWS\SYSWOW64\eapp3hst.dll
2015-10-05 01:15:45 ----A---- C:\WINDOWS\system32\eapphost.dll
2015-10-05 01:15:45 ----A---- C:\WINDOWS\system32\eappgnui.dll
2015-10-05 01:15:45 ----A---- C:\WINDOWS\system32\eappcfg.dll
2015-10-05 01:15:45 ----A---- C:\WINDOWS\system32\eapp3hst.dll
2015-10-05 01:15:37 ----A---- C:\WINDOWS\SYSWOW64\puiobj.dll
2015-10-05 01:15:37 ----A---- C:\WINDOWS\system32\win32spl.dll
2015-10-05 01:15:37 ----A---- C:\WINDOWS\system32\puiobj.dll
2015-10-05 01:15:37 ----A---- C:\WINDOWS\system32\localspl.dll
2015-10-05 01:15:37 ----A---- C:\WINDOWS\system32\compstui.dll
2015-10-05 01:15:30 ----SHD---- C:\ProgramData\Šablony
2015-10-05 01:15:30 ----SHD---- C:\ProgramData\Plocha
2015-10-05 01:15:30 ----SHD---- C:\ProgramData\Nabídka Start
2015-10-05 01:15:30 ----SHD---- C:\ProgramData\Dokumenty
2015-10-05 01:15:30 ----SHD---- C:\ProgramData\Data aplikací
2015-10-05 01:15:28 ----A---- C:\WINDOWS\SYSWOW64\tdh.dll
2015-10-05 01:15:28 ----A---- C:\WINDOWS\system32\UtcResources.dll
2015-10-05 01:15:28 ----A---- C:\WINDOWS\system32\tdh.dll
2015-10-05 01:15:28 ----A---- C:\WINDOWS\system32\diagtrack.dll
2015-10-05 01:14:58 ----A---- C:\WINDOWS\SYSWOW64\comctl32.dll
2015-10-05 01:14:58 ----A---- C:\WINDOWS\system32\comctl32.dll
2015-10-05 01:14:51 ----A---- C:\WINDOWS\SYSWOW64\WMPhoto.dll
2015-10-05 01:14:51 ----A---- C:\WINDOWS\system32\WMPhoto.dll
2015-10-05 01:14:45 ----A---- C:\WINDOWS\SYSWOW64\ole32.dll
2015-10-05 01:14:45 ----A---- C:\WINDOWS\system32\ole32.dll
2015-10-05 01:14:38 ----A---- C:\WINDOWS\SYSWOW64\clfsw32.dll
2015-10-05 01:14:38 ----A---- C:\WINDOWS\system32\drivers\clfs.sys
2015-10-05 01:14:38 ----A---- C:\WINDOWS\system32\clfsw32.dll
2015-10-05 01:14:32 ----A---- C:\WINDOWS\SYSWOW64\tracerpt.exe
2015-10-05 01:14:32 ----A---- C:\WINDOWS\SYSWOW64\sechost.dll
2015-10-05 01:14:32 ----A---- C:\WINDOWS\system32\tracerpt.exe
2015-10-05 01:14:31 ----A---- C:\WINDOWS\system32\sechost.dll
2015-10-05 01:14:27 ----A---- C:\WINDOWS\system32\emptyregdb.dat
2015-10-05 01:14:21 ----A---- C:\WINDOWS\system32\drivers\usb8023.sys
2015-10-05 01:14:06 ----A---- C:\WINDOWS\system32\csrsrv.dll
2015-10-05 01:14:06 ----A---- C:\WINDOWS\system32\basesrv.dll
2015-10-05 01:13:42 ----A---- C:\WINDOWS\system32\drivers\sdbus.sys
2015-10-05 01:13:42 ----A---- C:\WINDOWS\system32\drivers\dumpsd.sys
2015-10-05 01:13:36 ----A---- C:\WINDOWS\system32\drivers\tcpip.sys
2015-10-05 01:13:36 ----A---- C:\WINDOWS\system32\drivers\FWPKCLNT.SYS
2015-10-05 01:13:30 ----A---- C:\WINDOWS\system32\drivers\bthpan.sys
2015-10-05 01:13:24 ----A---- C:\WINDOWS\system32\drivers\ahcache.sys
2015-10-05 01:13:15 ----A---- C:\WINDOWS\SYSWOW64\msvcr120_clr0400.dll
2015-10-05 01:13:15 ----A---- C:\WINDOWS\SYSWOW64\msvcp120_clr0400.dll
2015-10-05 01:13:15 ----A---- C:\WINDOWS\system32\msvcr120_clr0400.dll
2015-10-05 01:13:15 ----A---- C:\WINDOWS\system32\msvcp120_clr0400.dll
2015-10-05 01:12:50 ----A---- C:\WINDOWS\system32\TSWbPrxy.exe
2015-10-05 01:12:45 ----A---- C:\WINDOWS\SYSWOW64\msctf.dll
2015-10-05 01:12:45 ----A---- C:\WINDOWS\system32\msctf.dll
2015-10-05 01:12:18 ----A---- C:\WINDOWS\system32\drivers\rfcomm.sys
2015-10-05 01:12:18 ----A---- C:\WINDOWS\system32\drivers\hidbth.sys
2015-10-05 01:12:18 ----A---- C:\WINDOWS\system32\drivers\bthport.sys
2015-10-05 01:11:33 ----A---- C:\WINDOWS\SYSWOW64\wpdshext.dll
2015-10-05 01:11:33 ----A---- C:\WINDOWS\system32\wpdshext.dll
2015-10-05 01:11:27 ----A---- C:\WINDOWS\SYSWOW64\mfc42u.dll
2015-10-05 01:11:27 ----A---- C:\WINDOWS\SYSWOW64\mfc42.dll
2015-10-05 01:11:27 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_47.dll
2015-10-05 01:11:27 ----A---- C:\WINDOWS\system32\mfc42u.dll
2015-10-05 01:11:27 ----A---- C:\WINDOWS\system32\mfc42.dll
2015-10-05 01:11:27 ----A---- C:\WINDOWS\system32\D3DCompiler_47.dll
2015-10-05 01:11:13 ----A---- C:\WINDOWS\system32\apphelp.dll
2015-10-05 01:10:54 ----A---- C:\WINDOWS\system32\ubpm.dll
2015-10-05 01:10:39 ----A---- C:\WINDOWS\system32\lsm.dll
2015-10-05 01:10:30 ----A---- C:\WINDOWS\system32\drivers\USBXHCI.SYS
2015-10-05 01:10:20 ----A---- C:\WINDOWS\system32\wevtsvc.dll
2015-10-05 01:10:14 ----A---- C:\WINDOWS\SYSWOW64\rgb9rast.dll
2015-10-05 01:10:03 ----A---- C:\WINDOWS\SYSWOW64\gdi32.dll
2015-10-05 01:10:03 ----A---- C:\WINDOWS\system32\gdi32.dll
2015-10-05 01:09:28 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2015-10-05 01:09:28 ----A---- C:\WINDOWS\SYSWOW64\webcheck.dll
2015-10-05 01:09:28 ----A---- C:\WINDOWS\SYSWOW64\vbscript.dll
2015-10-05 01:09:28 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2015-10-05 01:09:28 ----A---- C:\WINDOWS\SYSWOW64\msrating.dll
2015-10-05 01:09:28 ----A---- C:\WINDOWS\SYSWOW64\mshtmled.dll
2015-10-05 01:09:28 ----A---- C:\WINDOWS\SYSWOW64\MshtmlDac.dll
2015-10-05 01:09:28 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2015-10-05 01:09:28 ----A---- C:\WINDOWS\SYSWOW64\msfeeds.dll
2015-10-05 01:09:28 ----A---- C:\WINDOWS\SYSWOW64\jscript9diag.dll
2015-10-05 01:09:28 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2015-10-05 01:09:28 ----A---- C:\WINDOWS\SYSWOW64\jscript.dll
2015-10-05 01:09:28 ----A---- C:\WINDOWS\SYSWOW64\inetcomm.dll
2015-10-05 01:09:28 ----A---- C:\WINDOWS\SYSWOW64\ieui.dll
2015-10-05 01:09:28 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2015-10-05 01:09:28 ----A---- C:\WINDOWS\SYSWOW64\iepeers.dll
2015-10-05 01:09:28 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2015-10-05 01:09:28 ----A---- C:\WINDOWS\SYSWOW64\iedkcs32.dll
2015-10-05 01:09:28 ----A---- C:\WINDOWS\SYSWOW64\ieapfltr.dll
2015-10-05 01:09:28 ----A---- C:\WINDOWS\SYSWOW64\dxtrans.dll
2015-10-05 01:09:28 ----A---- C:\WINDOWS\SYSWOW64\actxprxy.dll
2015-10-05 01:09:28 ----A---- C:\WINDOWS\system32\wininet.dll
2015-10-05 01:09:28 ----A---- C:\WINDOWS\system32\webcheck.dll
2015-10-05 01:09:28 ----A---- C:\WINDOWS\system32\vbscript.dll
2015-10-05 01:09:28 ----A---- C:\WINDOWS\system32\urlmon.dll
2015-10-05 01:09:28 ----A---- C:\WINDOWS\system32\msrating.dll
2015-10-05 01:09:28 ----A---- C:\WINDOWS\system32\mshtmled.dll
2015-10-05 01:09:28 ----A---- C:\WINDOWS\system32\MshtmlDac.dll
2015-10-05 01:09:28 ----A---- C:\WINDOWS\system32\mshtml.dll
2015-10-05 01:09:28 ----A---- C:\WINDOWS\system32\msfeeds.dll
2015-10-05 01:09:28 ----A---- C:\WINDOWS\system32\jscript9diag.dll
2015-10-05 01:09:28 ----A---- C:\WINDOWS\system32\jscript9.dll
2015-10-05 01:09:28 ----A---- C:\WINDOWS\system32\jscript.dll
2015-10-05 01:09:28 ----A---- C:\WINDOWS\system32\inseng.dll
2015-10-05 01:09:28 ----A---- C:\WINDOWS\system32\inetcomm.dll
2015-10-05 01:09:28 ----A---- C:\WINDOWS\system32\ieui.dll
2015-10-05 01:09:28 ----A---- C:\WINDOWS\system32\iertutil.dll
2015-10-05 01:09:28 ----A---- C:\WINDOWS\system32\iepeers.dll
2015-10-05 01:09:28 ----A---- C:\WINDOWS\system32\ieframe.dll
2015-10-05 01:09:28 ----A---- C:\WINDOWS\system32\iedkcs32.dll
2015-10-05 01:09:28 ----A---- C:\WINDOWS\system32\ieapfltr.dll
2015-10-05 01:09:28 ----A---- C:\WINDOWS\system32\ie4uinit.exe
2015-10-05 01:09:28 ----A---- C:\WINDOWS\system32\dxtrans.dll
2015-10-05 01:09:28 ----A---- C:\WINDOWS\system32\actxprxy.dll
2015-10-05 01:08:28 ----A---- C:\WINDOWS\SYSWOW64\rpcrt4.dll
2015-10-05 01:08:28 ----A---- C:\WINDOWS\SYSWOW64\msv1_0.dll
2015-10-05 01:08:28 ----A---- C:\WINDOWS\SYSWOW64\kerberos.dll
2015-10-05 01:08:28 ----A---- C:\WINDOWS\SYSWOW64\certcli.dll
2015-10-05 01:08:28 ----A---- C:\WINDOWS\system32\rpcrt4.dll
2015-10-05 01:08:28 ----A---- C:\WINDOWS\system32\msv1_0.dll
2015-10-05 01:08:28 ----A---- C:\WINDOWS\system32\lsasrv.dll
2015-10-05 01:08:28 ----A---- C:\WINDOWS\system32\kerberos.dll
2015-10-05 01:08:28 ----A---- C:\WINDOWS\system32\drivers\mrxsmb20.sys
2015-10-05 01:08:28 ----A---- C:\WINDOWS\system32\drivers\mrxsmb10.sys
2015-10-05 01:08:28 ----A---- C:\WINDOWS\system32\drivers\mrxsmb.sys
2015-10-05 01:08:28 ----A---- C:\WINDOWS\system32\drivers\ksecpkg.sys
2015-10-05 01:08:28 ----A---- C:\WINDOWS\system32\drivers\cng.sys
2015-10-05 01:08:28 ----A---- C:\WINDOWS\system32\certcli.dll
2015-10-05 01:08:12 ----A---- C:\WINDOWS\SYSWOW64\StorageContextHandler.dll
2015-10-05 01:08:12 ----A---- C:\WINDOWS\system32\StorageContextHandler.dll
2015-10-05 01:08:07 ----A---- C:\WINDOWS\SYSWOW64\DeviceSetupStatusProvider.dll
2015-10-05 01:08:07 ----A---- C:\WINDOWS\system32\DeviceSetupStatusProvider.dll
2015-10-05 01:08:01 ----A---- C:\WINDOWS\SYSWOW64\atmlib.dll
2015-10-05 01:08:01 ----A---- C:\WINDOWS\SYSWOW64\atmfd.dll
2015-10-05 01:08:01 ----A---- C:\WINDOWS\system32\win32k.sys
2015-10-05 01:08:01 ----A---- C:\WINDOWS\system32\atmlib.dll
2015-10-05 01:08:01 ----A---- C:\WINDOWS\system32\atmfd.dll
2015-10-05 01:07:48 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2015-10-05 01:07:48 ----A---- C:\WINDOWS\SYSWOW64\ExplorerFrame.dll
2015-10-05 01:07:48 ----A---- C:\WINDOWS\system32\shell32.dll
2015-10-05 01:07:48 ----A---- C:\WINDOWS\system32\ExplorerFrame.dll
2015-10-05 01:07:36 ----A---- C:\WINDOWS\system32\services.exe
2015-10-05 01:07:31 ----A---- C:\WINDOWS\SYSWOW64\netcfgx.dll
2015-10-05 01:07:31 ----A---- C:\WINDOWS\system32\netcfgx.dll
2015-10-05 01:07:31 ----A---- C:\WINDOWS\system32\drivers\ndis.sys
2015-10-05 01:07:24 ----A---- C:\WINDOWS\SYSWOW64\SRH.dll
2015-10-05 01:07:24 ----A---- C:\WINDOWS\system32\SRH.dll
2015-10-05 01:07:10 ----A---- C:\WINDOWS\SYSWOW64\winshfhc.dll
2015-10-05 01:07:10 ----A---- C:\WINDOWS\system32\winshfhc.dll
2015-10-05 01:07:10 ----A---- C:\WINDOWS\system32\drivers\WdNisDrv.sys
2015-10-05 01:07:10 ----A---- C:\WINDOWS\system32\drivers\WdFilter.sys
2015-10-05 01:07:10 ----A---- C:\WINDOWS\system32\drivers\WdBoot.sys
2015-10-05 01:06:58 ----A---- C:\WINDOWS\SYSWOW64\taskeng.exe
2015-10-05 01:06:58 ----A---- C:\WINDOWS\SYSWOW64\schtasks.exe
2015-10-05 01:06:58 ----A---- C:\WINDOWS\system32\taskeng.exe
2015-10-05 01:06:58 ----A---- C:\WINDOWS\system32\schtasks.exe
2015-10-05 01:06:58 ----A---- C:\WINDOWS\system32\schedsvc.dll
2015-10-05 01:06:52 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Input.Inking.dll
2015-10-05 01:06:52 ----A---- C:\WINDOWS\system32\Windows.UI.Input.Inking.dll
2015-10-05 01:06:48 ----A---- C:\WINDOWS\SYSWOW64\calc.exe
2015-10-05 01:06:48 ----A---- C:\WINDOWS\system32\calc.exe
2015-10-05 01:06:30 ----A---- C:\WINDOWS\SYSWOW64\Windows.Data.Pdf.dll
2015-10-05 01:06:30 ----A---- C:\WINDOWS\system32\Windows.Data.Pdf.dll
2015-10-05 01:06:25 ----A---- C:\WINDOWS\SYSWOW64\WebClnt.dll
2015-10-05 01:06:25 ----A---- C:\WINDOWS\SYSWOW64\davclnt.dll
2015-10-05 01:06:25 ----A---- C:\WINDOWS\system32\WebClnt.dll
2015-10-05 01:06:25 ----A---- C:\WINDOWS\system32\davclnt.dll
2015-10-05 01:06:17 ----A---- C:\WINDOWS\system32\wuaext.dll
2015-10-05 01:06:17 ----A---- C:\WINDOWS\system32\wu.upgrade.ps.dll
2015-10-05 01:06:17 ----A---- C:\WINDOWS\system32\storewuauth.dll
2015-10-05 01:06:06 ----A---- C:\WINDOWS\SYSWOW64\msxml6.dll
2015-10-05 01:06:06 ----A---- C:\WINDOWS\SYSWOW64\msxml3.dll
2015-10-05 01:06:06 ----A---- C:\WINDOWS\system32\msxml6.dll
2015-10-05 01:06:06 ----A---- C:\WINDOWS\system32\msxml3.dll
2015-10-05 01:05:59 ----A---- C:\WINDOWS\system32\drivers\mrxdav.sys
2015-10-05 01:05:50 ----A---- C:\WINDOWS\SYSWOW64\pku2u.dll
2015-10-05 01:05:50 ----A---- C:\WINDOWS\system32\pku2u.dll
2015-10-05 01:05:43 ----A---- C:\WINDOWS\SYSWOW64\wow32.dll
2015-10-05 01:05:43 ----A---- C:\WINDOWS\SYSWOW64\user.exe
2015-10-05 01:05:43 ----A---- C:\WINDOWS\SYSWOW64\setup16.exe
2015-10-05 01:05:43 ----A---- C:\WINDOWS\SYSWOW64\ntvdm64.dll
2015-10-05 01:05:43 ----A---- C:\WINDOWS\SYSWOW64\ntdll.dll
2015-10-05 01:05:43 ----A---- C:\WINDOWS\SYSWOW64\instnm.exe
2015-10-05 01:05:43 ----A---- C:\WINDOWS\system32\wow64cpu.dll
2015-10-05 01:05:43 ----A---- C:\WINDOWS\system32\wow64.dll
2015-10-05 01:05:43 ----A---- C:\WINDOWS\system32\sysmain.dll
2015-10-05 01:05:43 ----A---- C:\WINDOWS\system32\ntvdm64.dll
2015-10-05 01:05:43 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2015-10-05 01:05:43 ----A---- C:\WINDOWS\system32\ntdll.dll
2015-10-05 01:05:43 ----A---- C:\WINDOWS\system32\microsoft-windows-system-events.dll
2015-10-05 01:05:43 ----A---- C:\WINDOWS\system32\drivers\mountmgr.sys
2015-10-05 01:05:32 ----A---- C:\WINDOWS\SYSWOW64\SHCore.dll
2015-10-05 01:05:32 ----A---- C:\WINDOWS\system32\SHCore.dll
2015-10-05 01:03:52 ----A---- C:\WINDOWS\system32\drivers\USBHUB3.SYS
2015-10-05 01:03:48 ----A---- C:\WINDOWS\SYSWOW64\dwmcore.dll
2015-10-05 01:03:48 ----A---- C:\WINDOWS\system32\dwmcore.dll
2015-10-05 01:03:43 ----A---- C:\WINDOWS\SYSWOW64\scesrv.dll
2015-10-05 01:03:43 ----A---- C:\WINDOWS\system32\scesrv.dll
2015-10-05 01:03:39 ----A---- C:\WINDOWS\SYSWOW64\atlthunk.dll
2015-10-05 01:03:36 ----A---- C:\WINDOWS\system32\profsvc.dll
2015-10-05 01:03:12 ----A---- C:\WINDOWS\SYSWOW64\tquery.dll
2015-10-05 01:03:12 ----A---- C:\WINDOWS\SYSWOW64\SearchProtocolHost.exe
2015-10-05 01:03:12 ----A---- C:\WINDOWS\SYSWOW64\SearchIndexer.exe
2015-10-05 01:03:12 ----A---- C:\WINDOWS\SYSWOW64\mssvp.dll
2015-10-05 01:03:12 ----A---- C:\WINDOWS\SYSWOW64\mssrch.dll
2015-10-05 01:03:12 ----A---- C:\WINDOWS\SYSWOW64\mssph.dll
2015-10-05 01:03:12 ----A---- C:\WINDOWS\system32\tquery.dll
2015-10-05 01:03:12 ----A---- C:\WINDOWS\system32\SearchProtocolHost.exe
2015-10-05 01:03:12 ----A---- C:\WINDOWS\system32\SearchIndexer.exe
2015-10-05 01:03:12 ----A---- C:\WINDOWS\system32\mssvp.dll
2015-10-05 01:03:12 ----A---- C:\WINDOWS\system32\mssrch.dll
2015-10-05 01:03:12 ----A---- C:\WINDOWS\system32\mssphtb.dll
2015-10-05 01:03:12 ----A---- C:\WINDOWS\system32\mssph.dll
2015-10-05 01:02:33 ----A---- C:\WINDOWS\SYSWOW64\dxtmsft.dll
2015-10-05 01:02:33 ----A---- C:\WINDOWS\system32\dxtmsft.dll
2015-10-05 01:01:17 ----A---- C:\WINDOWS\SYSWOW64\explorer.exe
2015-10-05 01:01:17 ----A---- C:\WINDOWS\explorer.exe
2015-10-05 01:01:14 ----A---- C:\WINDOWS\system32\consent.exe
2015-10-05 01:01:08 ----A---- C:\WINDOWS\SYSWOW64\GeofenceMonitorService.dll
2015-10-05 01:01:08 ----A---- C:\WINDOWS\system32\GeofenceMonitorService.dll
2015-10-05 01:01:03 ----A---- C:\WINDOWS\SYSWOW64\poqexec.exe
2015-10-05 01:01:03 ----A---- C:\WINDOWS\system32\poqexec.exe
2015-10-05 01:00:53 ----A---- C:\WINDOWS\SYSWOW64\rastapi.dll
2015-10-05 01:00:53 ----A---- C:\WINDOWS\system32\rastapi.dll
2015-10-05 01:00:47 ----A---- C:\WINDOWS\system32\drivers\http.sys
2015-10-05 01:00:17 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Immersive.dll
2015-10-05 01:00:17 ----A---- C:\WINDOWS\SYSWOW64\shacct.dll
2015-10-05 01:00:17 ----A---- C:\WINDOWS\SYSWOW64\SettingSync.dll
2015-10-05 01:00:17 ----A---- C:\WINDOWS\SYSWOW64\authui.dll
2015-10-05 01:00:17 ----A---- C:\WINDOWS\system32\Windows.UI.Immersive.dll
2015-10-05 01:00:17 ----A---- C:\WINDOWS\system32\shacct.dll
2015-10-05 01:00:17 ----A---- C:\WINDOWS\system32\SettingSync.dll
2015-10-05 01:00:17 ----A---- C:\WINDOWS\system32\authui.dll
2015-10-05 01:00:11 ----A---- C:\WINDOWS\SYSWOW64\msftedit.dll
2015-10-05 01:00:11 ----A---- C:\WINDOWS\system32\msftedit.dll
2015-10-05 01:00:07 ----A---- C:\WINDOWS\SYSWOW64\photowiz.dll
2015-10-05 01:00:07 ----A---- C:\WINDOWS\system32\photowiz.dll
2015-10-05 00:59:38 ----A---- C:\WINDOWS\SYSWOW64\appidapi.dll
2015-10-05 00:59:38 ----A---- C:\WINDOWS\system32\appidsvc.dll
2015-10-05 00:59:38 ----A---- C:\WINDOWS\system32\appidapi.dll
2015-10-05 00:59:33 ----A---- C:\WINDOWS\SYSWOW64\WerFaultSecure.exe
2015-10-05 00:59:33 ----A---- C:\WINDOWS\SYSWOW64\wer.dll
2015-10-05 00:59:33 ----A---- C:\WINDOWS\SYSWOW64\Faultrep.dll
2015-10-05 00:59:33 ----A---- C:\WINDOWS\system32\WerFaultSecure.exe
2015-10-05 00:59:33 ----A---- C:\WINDOWS\system32\werdiagcontroller.dll
2015-10-05 00:59:33 ----A---- C:\WINDOWS\system32\wer.dll
2015-10-05 00:59:33 ----A---- C:\WINDOWS\system32\Faultrep.dll
2015-10-05 00:59:33 ----A---- C:\WINDOWS\system32\EncDump.dll
2015-10-05 00:59:33 ----A---- C:\WINDOWS\system32\ci.dll
2015-10-05 00:59:33 ----A---- C:\WINDOWS\system32\audiosrv.dll
2015-10-05 00:59:33 ----A---- C:\WINDOWS\system32\AudioEndpointBuilder.dll
2015-10-05 00:56:21 ----D---- C:\Program Files (x86)\Reference Assemblies
2015-10-05 00:56:21 ----D---- C:\Program Files (x86)\MSBuild
2015-10-05 00:56:19 ----D---- C:\WINDOWS\SYSWOW64\XPSViewer
2015-10-05 00:56:19 ----D---- C:\Program Files\Reference Assemblies
2015-10-05 00:56:19 ----D---- C:\Program Files\MSBuild
2015-10-05 00:55:19 ----A---- C:\WINDOWS\SYSWOW64\TsWpfWrp.exe
2015-10-05 00:55:18 ----A---- C:\WINDOWS\SYSWOW64\PresentationNative_v0300.dll
2015-10-05 00:55:17 ----A---- C:\WINDOWS\system32\TsWpfWrp.exe
2015-10-05 00:55:16 ----A---- C:\WINDOWS\system32\PresentationNative_v0300.dll
2015-10-05 00:54:38 ----A---- C:\WINDOWS\SYSWOW64\sdbinst.exe
2015-10-05 00:54:37 ----A---- C:\WINDOWS\system32\sdbinst.exe
2015-10-05 00:53:55 ----SD---- C:\Users\Petr\AppData\Roaming\Microsoft
2015-10-05 00:43:05 ----D---- C:\Program Files\Realtek
2015-10-05 00:43:04 ----D---- C:\WINDOWS\SYSWOW64\RTCOM
2015-10-05 00:42:32 ----D---- C:\Program Files\Elantech
2015-10-05 00:42:26 ----D---- C:\Program Files (x86)\Intel
2015-10-05 00:42:23 ----A---- C:\WINDOWS\SYSWOW64\OpenCL.DLL
2015-10-05 00:42:23 ----A---- C:\WINDOWS\system32\OpenCL.DLL
2015-10-05 00:42:15 ----D---- C:\Program Files\Intel
2015-10-05 00:40:38 ----D---- C:\WINDOWS\Prefetch
2015-10-04 20:50:22 ----D---- C:\ProgramData\Malwarebytes
2015-10-03 22:23:09 ----D---- C:\AdwCleaner
2015-10-02 22:03:25 ----D---- C:\Program Files\trend micro
2015-10-02 22:03:24 ----D---- C:\rsit
2015-10-02 21:27:29 ----D---- C:\Program Files\McAfee
2015-10-02 21:03:42 ----A---- C:\WINDOWS\system32\drivers\ngvss.sys
2015-10-02 21:03:26 ----A---- C:\WINDOWS\system32\aswBoot.exe
2015-10-02 21:02:53 ----A---- C:\WINDOWS\avastSS.scr
2015-10-02 20:51:08 ----D---- C:\Program Files\CCleaner
2015-09-16 16:59:32 ----D---- C:\Program Files (x86)\Intel Corporation

======List of files/folders modified in the last 1 month======

2015-10-07 10:26:19 ----D---- C:\Users\Petr\AppData\Roaming\uTorrent
2015-10-07 10:26:09 ----D---- C:\WINDOWS\Inf
2015-10-07 10:25:58 ----D---- C:\WINDOWS\Temp
2015-10-07 10:25:58 ----D---- C:\WINDOWS\debug
2015-10-07 10:25:58 ----D---- C:\Windows
2015-10-07 10:24:27 ----RD---- C:\Program Files (x86)
2015-10-07 10:24:27 ----D---- C:\WINDOWS\system32\drivers
2015-10-07 10:02:52 ----RD---- C:\WINDOWS\System32
2015-10-07 10:02:52 ----D---- C:\WINDOWS\system32\drivers\UMDF
2015-10-07 10:00:00 ----D---- C:\WINDOWS\system32\sru
2015-10-07 04:32:11 ----D---- C:\WINDOWS\Microsoft.NET
2015-10-07 04:30:31 ----RD---- C:\WINDOWS\assembly
2015-10-07 01:35:29 ----D---- C:\WINDOWS\Migration
2015-10-07 01:21:27 ----HD---- C:\Program Files\WindowsApps
2015-10-07 01:21:27 ----D---- C:\WINDOWS\AppReadiness
2015-10-07 00:45:15 ----D---- C:\WINDOWS\system32\config
2015-10-06 06:00:02 ----D---- C:\WINDOWS\Logs
2015-10-06 05:24:55 ----D---- C:\WINDOWS\WinSxS
2015-10-06 05:23:50 ----D---- C:\WINDOWS\CbsTemp
2015-10-06 05:21:49 ----D---- C:\WINDOWS\system32\catroot2
2015-10-05 20:40:34 ----D---- C:\WINDOWS\system32\wdi
2015-10-05 10:54:10 ----SHD---- C:\WINDOWS\Installer
2015-10-05 10:54:10 ----SHD---- C:\Config.Msi
2015-10-05 10:54:09 ----D---- C:\ProgramData\Intel(R) Update Manager
2015-10-05 10:54:05 ----D---- C:\WINDOWS\system32\Tasks
2015-10-05 10:53:31 ----A---- C:\IFRToolLog.txt
2015-10-05 07:51:11 ----D---- C:\WINDOWS\system32\LogFiles
2015-10-05 07:50:57 ----SD---- C:\ProgramData\Microsoft
2015-10-05 07:48:49 ----SHD---- C:\$Recycle.Bin
2015-10-05 07:48:17 ----HD---- C:\Intel
2015-10-05 01:36:28 ----RD---- C:\WINDOWS\ImmersiveControlPanel
2015-10-05 01:35:16 ----D---- C:\WINDOWS\SYSWOW64\setup
2015-10-05 01:35:16 ----D---- C:\WINDOWS\system32\setup
2015-10-05 01:31:31 ----D---- C:\WINDOWS\system32\wbem
2015-10-05 01:26:32 ----D---- C:\WINDOWS\WinStore
2015-10-05 01:26:32 ----D---- C:\WINDOWS\SYSWOW64\winrm
2015-10-05 01:26:32 ----D---- C:\WINDOWS\SYSWOW64\slmgr
2015-10-05 01:26:32 ----D---- C:\WINDOWS\SYSWOW64\en
2015-10-05 01:26:32 ----D---- C:\WINDOWS\SYSWOW64\drivers\en-US
2015-10-05 01:26:32 ----D---- C:\WINDOWS\servicing
2015-10-05 01:26:32 ----D---- C:\Program Files\Windows Photo Viewer
2015-10-05 01:26:32 ----D---- C:\Program Files\Windows Mail
2015-10-05 01:26:32 ----D---- C:\Program Files\Windows Journal
2015-10-05 01:26:32 ----D---- C:\Program Files\Windows Defender
2015-10-05 01:26:32 ----D---- C:\Program Files (x86)\Windows Photo Viewer
2015-10-05 01:26:32 ----D---- C:\Program Files (x86)\Windows Mail
2015-10-05 01:26:32 ----D---- C:\Program Files (x86)\Windows Defender
2015-10-05 01:26:31 ----D---- C:\WINDOWS\SYSWOW64\Printing_Admin_Scripts
2015-10-05 01:26:31 ----D---- C:\WINDOWS\system32\winrm
2015-10-05 01:26:31 ----D---- C:\WINDOWS\system32\slmgr
2015-10-05 01:26:31 ----D---- C:\WINDOWS\system32\migwiz
2015-10-05 01:26:31 ----D---- C:\WINDOWS\system32\en
2015-10-05 01:26:31 ----D---- C:\WINDOWS\system32\drivers\en-US
2015-10-05 01:26:31 ----D---- C:\WINDOWS\system32\Boot
2015-10-05 01:26:31 ----D---- C:\WINDOWS\en-US
2015-10-05 01:26:30 ----D---- C:\WINDOWS\system32\SystemResetPlatform
2015-10-05 01:26:30 ----D---- C:\WINDOWS\system32\Printing_Admin_Scripts
2015-10-05 01:17:11 ----D---- C:\WINDOWS\rescache
2015-10-05 01:16:20 ----D---- C:\WINDOWS\SoftwareDistribution
2015-10-05 01:15:42 ----RD---- C:\WINDOWS\ToastData
2015-10-05 01:15:37 ----A---- C:\WINDOWS\SYSWOW64\PrintConfig.dll
2015-10-05 01:15:30 ----HD---- C:\ProgramData
2015-10-05 01:15:30 ----D---- C:\Program Files\Windows NT
2015-10-05 01:15:27 ----SHD---- C:\System Volume Information
2015-10-05 01:15:01 ----D---- C:\WINDOWS\Registration
2015-10-05 01:12:32 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2015-10-05 01:11:48 ----RSD---- C:\WINDOWS\Media
2015-10-05 01:11:17 ----D---- C:\WINDOWS\apppatch
2015-10-05 01:09:53 ----D---- C:\WINDOWS\PolicyDefinitions
2015-10-05 01:09:53 ----D---- C:\Program Files\Internet Explorer
2015-10-05 01:09:53 ----D---- C:\Program Files (x86)\Internet Explorer
2015-10-05 01:05:47 ----D---- C:\WINDOWS\system32\drivers\cs-CZ
2015-10-05 01:01:04 ----D---- C:\WINDOWS\SYSWOW64\vbox
2015-10-05 01:01:04 ----D---- C:\WINDOWS\SYSWOW64\drivers
2015-10-05 01:01:04 ----D---- C:\WINDOWS\SysWOW64
2015-10-05 01:01:04 ----D---- C:\WINDOWS\system32\vbox
2015-10-05 01:01:04 ----D---- C:\WINDOWS\system32\Sysprep
2015-10-05 01:01:04 ----D---- C:\WINDOWS\system32\STRING
2015-10-05 01:01:03 ----D---- C:\WINDOWS\system32\OEM
2015-10-05 01:01:02 ----D---- C:\WINDOWS\system32\AutoUpdateLicense
2015-10-05 01:01:01 ----D---- C:\WINDOWS\Help
2015-10-05 01:01:00 ----D---- C:\ProgramData\regid.1991-06.com.microsoft
2015-10-05 01:00:59 ----D---- C:\WINDOWS\Tasks
2015-10-05 00:59:37 ----D---- C:\WINDOWS\system32\AdvancedInstallers
2015-10-05 00:59:35 ----D---- C:\WINDOWS\system32\CodeIntegrity
2015-10-05 00:59:13 ----D---- C:\WINDOWS\twain_32
2015-10-05 00:59:12 ----D---- C:\WINDOWS\SYSWOW64\WCN
2015-10-05 00:59:12 ----D---- C:\WINDOWS\SYSWOW64\sysprep
2015-10-05 00:59:12 ----D---- C:\WINDOWS\SYSWOW64\SMI
2015-10-05 00:59:12 ----D---- C:\WINDOWS\SYSWOW64\MUI
2015-10-05 00:59:11 ----D---- C:\WINDOWS\SYSWOW64\migwiz
2015-10-05 00:59:11 ----D---- C:\WINDOWS\SYSWOW64\LogFiles
2015-10-05 00:59:09 ----D---- C:\WINDOWS\SYSWOW64\IME
2015-10-05 00:59:09 ----D---- C:\WINDOWS\SYSWOW64\en-US
2015-10-05 00:59:08 ----D---- C:\WINDOWS\SYSWOW64\drivers\UMDF
2015-10-05 00:59:08 ----D---- C:\WINDOWS\SYSWOW64\cs-CZ
2015-10-05 00:59:07 ----D---- C:\WINDOWS\SYSWOW64\catroot
2015-10-05 00:59:04 ----D---- C:\WINDOWS\system32\WCN
2015-10-05 00:59:03 ----D---- C:\WINDOWS\system32\spool
2015-10-05 00:58:55 ----D---- C:\WINDOWS\system32\oobe
2015-10-05 00:58:54 ----D---- C:\WINDOWS\system32\NDF
2015-10-05 00:58:54 ----D---- C:\WINDOWS\system32\MUI
2015-10-05 00:58:54 ----D---- C:\WINDOWS\system32\MRT
2015-10-05 00:58:54 ----D---- C:\WINDOWS\system32\IME
2015-10-05 00:58:54 ----D---- C:\WINDOWS\system32\en-US
2015-10-05 00:58:52 ----D---- C:\WINDOWS\system32\drivers\etc
2015-10-05 00:58:51 ----D---- C:\WINDOWS\system32\cs-CZ
2015-10-05 00:57:03 ----RSD---- C:\WINDOWS\Fonts
2015-10-05 00:57:03 ----D---- C:\WINDOWS\DigitalLocker
2015-10-05 00:57:02 ----RD---- C:\Users
2015-10-05 00:56:59 ----D---- C:\ProgramData\PRICache
2015-10-05 00:56:54 ----SHD---- C:\Program Files (x86)\Windows Sidebar
2015-10-05 00:56:54 ----D---- C:\Program Files (x86)\Windows Media Player
2015-10-05 00:56:50 ----D---- C:\Program Files (x86)\Common Files
2015-10-05 00:56:49 ----SHD---- C:\Program Files\Windows Sidebar
2015-10-05 00:56:49 ----RD---- C:\Program Files
2015-10-05 00:56:49 ----D---- C:\Program Files\Windows Media Player
2015-10-05 00:56:48 ----D---- C:\Program Files\Common Files\microsoft shared
2015-10-05 00:55:19 ----D---- C:\WINDOWS\system32\Recovery
2015-10-05 00:55:16 ----D---- C:\WINDOWS\system32\GroupPolicy
2015-10-05 00:42:43 ----D---- C:\WINDOWS\system32\DriverStore
2015-10-05 00:42:43 ----D---- C:\WINDOWS\system32\catroot
2015-10-04 23:45:45 ----D---- C:\ProgramData\CanonIJPLM
2015-10-04 20:53:34 ----D---- C:\WINDOWS\AUInstallAgent
2015-10-03 22:34:32 ----D---- C:\ProgramData\Norton
2015-10-02 22:38:35 ----A---- C:\WINDOWS\win.ini
2015-10-02 22:25:47 ----D---- C:\ProgramData\NortonInstaller
2015-10-02 22:25:42 ----D---- C:\ProgramData\boost_interprocess
2015-10-02 21:26:39 ----AD---- C:\ProgramData\Temp
2015-10-02 21:11:31 ----D---- C:\Users\Petr\AppData\Roaming\Seznam.cz
2015-10-02 21:11:22 ----D---- C:\Program Files (x86)\Seznam.cz
2015-10-02 21:07:46 ----D---- C:\Program Files (x86)\Opera
2015-10-02 21:06:57 ----D---- C:\Users\Petr\AppData\Roaming\DAEMON Tools Lite
2015-10-02 21:06:57 ----D---- C:\Program Files (x86)\Steam
2015-09-20 16:44:34 ----D---- C:\Users\Petr\AppData\Roaming\vlc
2015-09-18 20:16:14 ----D---- C:\Program Files (x86)\McAfee
2015-09-16 16:59:45 ----D---- C:\ProgramData\Package Cache

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 aswRvrt;avast! Revert; C:\WINDOWS\system32\drivers\aswRvrt.sys [2015-10-02 65224]
R0 aswVmm;avast! VM Monitor; C:\WINDOWS\system32\drivers\aswVmm.sys [2015-10-02 274808]
R0 ngvss;ngvss; C:\WINDOWS\system32\drivers\ngvss.sys [2015-10-02 132656]
R1 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr2.sys [2015-10-02 93528]
R1 aswSnx;aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [2015-10-02 1049880]
R1 aswSP;aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [2015-10-02 448968]
R1 vwififlt;@%SystemRoot%\System32\drivers\vwififlt.sys,-259; C:\WINDOWS\system32\DRIVERS\vwififlt.sys [2013-08-22 71680]
R2 aswHwid;avast! HardwareID; C:\WINDOWS\system32\drivers\aswHwid.sys [2015-10-02 28656]
R2 aswMonFlt;aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [2015-10-02 90968]
R2 aswStm;aswStm; C:\WINDOWS\system32\drivers\aswStm.sys [2015-10-02 153744]
R2 atksgt;atksgt; C:\WINDOWS\system32\DRIVERS\atksgt.sys [2014-05-04 311968]
R2 lirsgt;lirsgt; C:\WINDOWS\system32\DRIVERS\lirsgt.sys [2014-05-04 43168]
R2 VBoxAswDrv;VBoxAsw Support Driver; \??\C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys [2015-10-02 274336]
R3 athr;@athw8x.inf,%ATHR.Service.DispName%;Qualcomm Atheros Extensible Wireless LAN device driver; C:\WINDOWS\system32\DRIVERS\athw8x.sys [2013-06-18 3680256]
R3 bScsiSDa;bScsiSDa; C:\WINDOWS\System32\drivers\bScsiSDa.sys [2013-04-11 84688]
R3 BTATH_HCRP;@oem16.inf,%BTATH_HCRP.SvcDesc%;Bluetooth HCRP Server driver; C:\WINDOWS\System32\drivers\btath_hcrp.sys [2013-04-15 179432]
R3 BTATH_RCP;@oem20.inf,%BTATH_RCP%;Bluetooth AVRCP Device; C:\WINDOWS\System32\drivers\btath_rcp.sys [2013-04-15 136784]
R3 BtFilter;BtFilter; C:\WINDOWS\system32\DRIVERS\btfilter.sys [2013-04-15 584272]
R3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Služba Bluetooth Enumerator; C:\WINDOWS\system32\DRIVERS\BthEnum.sys [2014-11-21 53248]
R3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Ovladač úspory energie technologie Bluetooth; C:\WINDOWS\system32\DRIVERS\BthLEEnum.sys [2014-11-21 226304]
R3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Zařízení Bluetooth (síť PAN); C:\WINDOWS\system32\DRIVERS\bthpan.sys [2015-10-05 118272]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Ovladač rozhraní USB radiostanice Bluetooth; C:\WINDOWS\System32\Drivers\BTHUSB.sys [2014-11-21 81920]
R3 dtsoftbus01;@oem17.inf,%DTSoftBus.SVCDESC%;DAEMON Tools Virtual Bus Driver; C:\WINDOWS\System32\drivers\dtsoftbus01.sys [2014-03-17 283064]
R3 ETD;@oem6.inf,%PS2.DeviceDesc%;ELAN PS/2 Port Input Device; C:\WINDOWS\system32\DRIVERS\ETD.sys [2013-04-22 367504]
R3 igfx;igfx; C:\WINDOWS\system32\DRIVERS\igdkmd64.sys [2015-08-09 4928256]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RTKVHD64.sys [2013-03-19 3363016]
R3 iwdbus;@oem41.inf,%iwdbus.SVCDESC%;IWD Bus Enumerator; C:\WINDOWS\System32\drivers\iwdbus.sys [2015-05-26 30512]
R3 k57nd60a;@oem5.inf,%SvcDispName%;Broadcom NetLink (TM) Gigabit Ethernet - NDIS 6.0; C:\WINDOWS\system32\DRIVERS\k57nd60a.sys [2013-03-27 455888]
R3 LMDriver;@oem34.inf,%LMDriver.SVCDESC%;Launch Manager Wireless Driver; C:\WINDOWS\System32\drivers\LMDriver.sys [2013-01-10 21360]
R3 MBAMSwissArmy;MBAMSwissArmy; \??\C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys []
R3 MEIx64;@oem37.inf,%TEE_SvcDesc%;Intel(R) Management Engine Interface ; C:\WINDOWS\system32\DRIVERS\TeeDriverx64.sys [2013-05-08 99800]
R3 RadioShim;@oem34.inf,%RadioShim.SVCDESC%;Shim for HID-KMDF Interface layer; C:\WINDOWS\System32\drivers\RadioShim.sys [2013-01-10 15704]
R3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Zařízení Bluetooth (RFCOMM protokol TDI); C:\WINDOWS\system32\DRIVERS\rfcomm.sys [2015-10-05 167424]
R3 usbvideo;@usbvideo.inf,%USBVideo.SvcDesc%;Zobrazovací zařízení USB (WDM); C:\WINDOWS\System32\Drivers\usbvideo.sys [2014-11-21 212736]
R3 vwifimp;@%SystemRoot%\System32\drivers\vwifimp.sys,-261; C:\WINDOWS\system32\DRIVERS\vwifimp.sys [2013-08-22 36864]
S0 pqirvic;pqirvic; C:\WINDOWS\System32\drivers\mwiwr.sys [2015-10-07 79064]
S1 ndisrd;Intel(R) Technology Access Filter Driver; C:\WINDOWS\system32\DRIVERS\ndisrfl.sys [2015-04-30 41688]
S3 AthBTPort;@oem14.inf,%BTHSUPPORT.SvcDesc%;Qualcomm Atheros Virtual Bluetooth Class; C:\WINDOWS\system32\DRIVERS\btath_flt.sys [2013-04-15 89168]
S3 BTATH_A2DP;@oem12.inf,%BTATH_A2DP.SvcDesc%;Bluetooth A2DP Audio Driver; C:\WINDOWS\system32\drivers\btath_a2dp.sys [2013-04-15 346192]
S3 btath_avdt;@oem12.inf,%btath_avdt.SvcDesc%;Qualcomm Atheros Bluetooth AVDT Service; C:\WINDOWS\system32\drivers\btath_avdt.sys [2013-04-15 115280]
S3 BTATH_LWFLT;@oem24.inf,%BTATH_LWFLT%;Bluetooth LWFLT Device; C:\WINDOWS\system32\DRIVERS\btath_lwflt.sys [2013-04-15 77464]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Ovladač portu Bluetooth; C:\WINDOWS\System32\Drivers\BTHport.sys [2015-10-05 1201664]
S3 intaud_WaveExtensible;@oem40.inf,%INTAUD_WEX.SvcDesc%;Intel WiDi Audio Device; C:\WINDOWS\system32\drivers\intelaud.sys [2015-05-26 42288]
S3 IntcDAud;@oem35.inf,%IntcDAud.SvcDesc%;Intel(R) Display Audio; C:\WINDOWS\system32\DRIVERS\IntcDAud.sys [2013-07-09 452088]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AtherosSvc;AtherosSvc; C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\adminservice.exe [2013-04-15 228480]
R2 avast! Antivirus;Avast Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2015-10-02 146600]
R2 CCDMonitorService;CCDMonitorService; C:\Program Files (x86)\Acer\Acer Cloud\CCDMonitorService.exe [2013-02-27 2615368]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\WINDOWS\System32\svchost.exe [2014-11-21 38792]
R2 DragonUpdater;COMODO Dragon Update Service; C:\Program Files (x86)\Comodo\Dragon\dragon_updater.exe [2014-03-08 2135232]
R2 igfxCUIService1.0.0.0;Intel(R) HD Graphics Control Panel Service; C:\WINDOWS\system32\igfxCUIService.exe [2015-08-09 355232]
R2 IJPLMSVC;Canon Inkjet Printer/Scanner/Fax Extended Survey Program; C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE [2013-05-14 140936]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [2013-02-13 731648]
R2 Intel(R) Technology Access Legacy CS Loader;Intel(R) Technology Access Legacy CS Loader; C:\Program Files\Intel Corporation\Intel(R) Technology Access\LegacyCsLoaderService.exe [2015-07-31 144128]
R2 Intel(R) TechnologyAccessService;Intel(R) Technology Access Service; C:\Program Files\Intel Corporation\Intel(R) Technology Access\IntelTechnologyAccessService.exe [2015-07-31 481536]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2013-05-08 169432]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2013-05-08 368600]
R2 LMSvc;Launch Manager Service; C:\Program Files\Acer\Acer Launch Manager\LMSvc.exe [2013-06-18 431656]
R3 AvastVBoxSvc;AvastVBox COM Service; C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe [2015-10-02 4048280]
R3 cphs;Intel(R) Content Protection HECI Service; C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe [2015-08-09 288688]
R3 ePowerSvc;ePower Service; C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe [2013-03-16 662088]
R3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2013-08-03 43696]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-28 144200]
S2 NAUpdate;Nero Update; c:\Program Files (x86)\Nero\Update\NASvc.exe [2012-07-14 769432]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-10-02 269000]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\WINDOWS\System32\svchost.exe [2014-11-21 38792]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-28 144200]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-04 69632]
S3 Intel(R) Capability Licensing Service TCP IP Interface;Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [2013-02-13 820184]
S3 Intel(R) TA SAM;Intel(R) Technology Access Software Asset Manager; C:\Program Files (x86)\Intel Corporation\Intel(R) Technology Access\Intel(R) Software Asset Manager\bin\IntelSoftwareAssetManagerService.exe [2015-04-18 18064]
S3 iumsvc;Intel(R) Update Manager; C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe [2015-09-25 178312]
S3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2015-02-19 835776]
S4 GamesAppService;GamesAppService; C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe [2010-10-12 206072]

-----------------EOF-----------------

otee
Návštěvník
Návštěvník
Příspěvky: 54
Registrován: 22 črc 2011 15:50

Re: Dobrý den prosím o preventivní kontrolu logu

#11 Příspěvek od otee »

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:04-10-2015
Ran by Petr (administrator) on ACER (07-10-2015 10:32:15)
Running from C:\Users\Petr\Desktop
Loaded Profiles: Petr (Available Profiles: Petr)
Platform: Windows 8.1 (X64) Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Qualcomm Atheros Commnucations) C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\AdminService.exe
(Acer Incorporated) C:\Program Files (x86)\Acer\Acer Cloud\CCDMonitorService.exe
(Intel Corporation) C:\Windows\SysWOW64\IntelCpHeciSvc.exe
() C:\Program Files (x86)\Comodo\Dragon\dragon_updater.exe
() C:\Program Files (x86)\Canon\IJPLM\ijplmsvc.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(Intel(R) Corporation) C:\Program Files\Intel Corporation\Intel(R) Technology Access\LegacyCsLoaderService.exe
(Acer Incorporate) C:\Program Files\Acer\Acer Launch Manager\LMSvc.exe
(Avast Software) C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\NisSrv.exe
(Intel(R) Corporation) C:\Program Files\Intel Corporation\Intel(R) Technology Access\IntelTechnologyAccessService.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Intel Corporation) C:\Windows\System32\igfxEM.exe
() C:\Windows\System32\igfxTray.exe
(Intel Corporation) C:\Windows\System32\igfxHK.exe
(Acer Incorporate) C:\Program Files\Acer\Acer Launch Manager\LMEvent.exe
(Acer Incorporate) C:\Program Files\Acer\Acer Launch Manager\LMTray.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerTray.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe
(Intel Corporation) C:\Windows\System32\igfxext.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerEvent.exe
(Qualcomm Atheros Commnucations) C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvStack.exe
() C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\ActivateDesktop.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDTouch.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(CANON INC.) C:\Program Files (x86)\Canon\Quick Menu\CNQMMAIN.EXE
(CANON INC.) C:\Program Files (x86)\Canon\Quick Menu\CNQMSWCS.EXE
(CANON INC.) C:\Program Files (x86)\Canon\My Image Garden\cnmigmain.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe


==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [ETDCtrl] => C:\Program Files\Elantech\ETDCtrl.exe [2890640 2013-04-22] (ELAN Microelectronics Corp.)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13427784 2013-03-18] (Realtek Semiconductor)
HKLM\...\Run: [IgfxTray] => C:\Windows\system32\igfxtray.exe [404376 2015-08-09] ()
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [6134544 2015-10-02] (AVAST Software)
HKLM-x32\...\Run: [CanonQuickMenu] => C:\Program Files (x86)\Canon\Quick Menu\CNQMMAIN.EXE [1282632 2013-04-02] (CANON INC.)
HKLM-x32\...\RunOnce: [Malwarebytes Anti-Malware (cleanup)] => C:\ProgramData\Malwarebytes\Malwarebytes Anti-Malware\mbamdor.exe [54072 2015-06-18] (Malwarebytes Corporation)
HKLM\...\Policies\Explorer\Run: [BtvStack] => C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvStack.exe [132736 2013-04-15] (Qualcomm Atheros Commnucations)
HKU\S-1-5-21-727662200-1775937095-1431734872-1001\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3696912 2014-03-04] (Disc Soft Ltd)
HKU\S-1-5-21-727662200-1775937095-1431734872-1001\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\Windows\system32\Mystify.scr [133632 2014-11-21] (Microsoft Corporation)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2015-10-02] (AVAST Software)
GroupPolicy: Restriction - Chrome <======= ATTENTION
CHR HKLM\SOFTWARE\Policies\Google: Restriction <======= ATTENTION
CHR HKU\S-1-5-21-727662200-1775937095-1431734872-1001\SOFTWARE\Policies\Google: Restriction <======= ATTENTION

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 192.168.80.254 192.168.0.1
Tcpip\..\Interfaces\{7A776059-EEEF-413B-B637-342FB80CCE60}: [DhcpNameServer] 192.168.80.254 192.168.0.1

Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.google.com
HKU\S-1-5-21-727662200-1775937095-1431734872-1001\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://search.seznam.cz/?sourceid=quicksearch_22668&q={searchTerms}
HKU\S-1-5-21-727662200-1775937095-1431734872-1001\Software\Microsoft\Internet Explorer\Main,Search Bar = hxxps://www.seznam.cz/?clid=22668
SearchScopes: HKLM-x32 -> DefaultScope {15C4DF55-4B67-495A-A3D3-A497C4A49EE0} URL = hxxp://search.seznam.cz/?sourceid=quicksearch_22668&q={searchTerms}
SearchScopes: HKLM-x32 -> {15C4DF55-4B67-495A-A3D3-A497C4A49EE0} URL = hxxp://search.seznam.cz/?sourceid=quicksearch_22668&q={searchTerms}
SearchScopes: HKU\S-1-5-21-727662200-1775937095-1431734872-1001 -> DefaultScope {15C4DF55-4B67-495A-A3D3-A497C4A49EE0} URL = hxxp://search.seznam.cz/?sourceid=quicksearch_22668&q={searchTerms}
SearchScopes: HKU\S-1-5-21-727662200-1775937095-1431734872-1001 -> {15C4DF55-4B67-495A-A3D3-A497C4A49EE0} URL = hxxp://search.seznam.cz/?sourceid=quicksearch_22668&q={searchTerms}
BHO: Canon Easy-WebPrint EX BHO -> {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} -> C:\Program Files\Canon\Easy-WebPrint EX\ewpexbho.dll [2014-07-07] (CANON INC.)
BHO: CIESpeechBHO Class -> {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} -> C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\IEPlugIn.dll [2013-04-15] (Qualcomm Atheros Commnucations)
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2015-10-02] (AVAST Software)
BHO-x32: Canon Easy-WebPrint EX BHO -> {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} -> C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll [2014-07-07] (CANON INC.)
BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2015-10-02] (AVAST Software)
Toolbar: HKLM - No Name - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - No File
Toolbar: HKLM - Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll [2014-07-07] (CANON INC.)
Toolbar: HKLM-x32 - Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll [2014-07-07] (CANON INC.)

FireFox:
========
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_19_0_0_185.dll [2015-10-02] ()
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_19_0_0_185.dll [2015-10-02] ()
FF Plugin-x32: @canon.com/EPPEX -> C:\Program Files (x86)\Canon\My Image Garden\AddOn\CIG\npmigfpi.dll [2011-11-30] (CANON INC.)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=3.5.29 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2013-05-08] (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2013-05-08] (Intel Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.28.15\npGoogleUpdate3.dll [2015-09-16] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.28.15\npGoogleUpdate3.dll [2015-09-16] (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.1.3 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2014-07-23] (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.1.5 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2014-07-23] (VideoLAN)
FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 -> C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll [2012-10-12] ()
FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2014-03-17]
FF HKLM-x32\...\Thunderbird\Extensions: [msktbird@mcafee.com] - C:\Program Files\McAfee\MSK => not found

Chrome:
=======
CHR Profile: C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Prezentace Google) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-10-02]
CHR Extension: (Dokumenty Google) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-03-10]
CHR Extension: (Disk Google) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-03-10]
CHR Extension: (YouTube) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-03-10]
CHR Extension: (Vyhledávání Google) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-03-10]
CHR Extension: (Tabulky Google) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-10-02]
CHR Extension: (Dokumenty Google offline) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2015-09-03]
CHR Extension: (Avast Online Security) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2014-03-17]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-03-10]
CHR Extension: (Gmail) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-03-10]
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2015-04-22]

==================== Services (Whitelisted) ========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 AtherosSvc; C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\adminservice.exe [228480 2013-04-15] (Qualcomm Atheros Commnucations) [File not signed]
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [146600 2015-10-02] (AVAST Software)
R3 AvastVBoxSvc; C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe [4048280 2015-10-02] (Avast Software)
R2 CCDMonitorService; C:\Program Files (x86)\Acer\Acer Cloud\CCDMonitorService.exe [2615368 2013-02-27] (Acer Incorporated)
R2 DragonUpdater; C:\Program Files (x86)\Comodo\Dragon\dragon_updater.exe [2135232 2014-03-08] ()
R3 ePowerSvc; C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe [662088 2013-03-16] (Acer Incorporated)
S3 IDriverT; C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [69632 2005-04-04] (Macrovision Corporation) [File not signed]
R2 igfxCUIService1.0.0.0; C:\Windows\system32\igfxCUIService.exe [355232 2015-08-09] (Intel Corporation)
R2 IJPLMSVC; C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE [140936 2013-05-14] ()
R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [731648 2013-02-13] (Intel(R) Corporation) [File not signed]
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [820184 2013-02-13] (Intel(R) Corporation)
S3 Intel(R) TA SAM; C:\Program Files (x86)\Intel Corporation\Intel(R) Technology Access\Intel(R) Software Asset Manager\bin\IntelSoftwareAssetManagerService.exe [18064 2015-04-18] ()
R2 Intel(R) Technology Access Legacy CS Loader; C:\Program Files\Intel Corporation\Intel(R) Technology Access\LegacyCsLoaderService.exe [144128 2015-07-31] (Intel(R) Corporation)
R2 Intel(R) TechnologyAccessService; C:\Program Files\Intel Corporation\Intel(R) Technology Access\IntelTechnologyAccessService.exe [481536 2015-07-31] (Intel(R) Corporation)
S3 iumsvc; C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe [178312 2015-09-25] (Intel Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-05-08] (Intel Corporation)
R2 LMSvc; C:\Program Files\Acer\Acer Launch Manager\LMSvc.exe [431656 2013-06-18] (Acer Incorporate)
R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [366552 2015-10-05] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23824 2015-10-05] (Microsoft Corporation)

===================== Drivers (Whitelisted) ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [28656 2015-10-02] (AVAST Software)
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [90968 2015-10-02] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93528 2015-10-02] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65224 2015-10-02] (AVAST Software)
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1049880 2015-10-02] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [448968 2015-10-02] (AVAST Software)
S2 aswStm; C:\Windows\system32\drivers\aswStm.sys [153744 2015-10-02] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [274808 2015-10-02] (AVAST Software)
R2 atksgt; C:\Windows\System32\DRIVERS\atksgt.sys [311968 2014-05-04] ()
S3 BTATH_LWFLT; C:\Windows\system32\DRIVERS\btath_lwflt.sys [77464 2013-04-15] (Qualcomm Atheros)
R3 BthLEEnum; C:\Windows\system32\DRIVERS\BthLEEnum.sys [226304 2014-11-21] (Microsoft Corporation)
R3 dtsoftbus01; C:\Windows\System32\drivers\dtsoftbus01.sys [283064 2014-03-17] (Disc Soft Ltd)
S0 ebdrv; C:\Windows\System32\drivers\evbda.sys [3357024 2013-08-22] (Broadcom Corporation)
R2 lirsgt; C:\Windows\System32\DRIVERS\lirsgt.sys [43168 2014-05-04] ()
R3 LMDriver; C:\Windows\System32\drivers\LMDriver.sys [21360 2013-01-10] (Acer Incorporated)
R3 MEIx64; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [99800 2013-05-08] (Intel Corporation)
S1 ndisrd; C:\Windows\system32\DRIVERS\ndisrfl.sys [41688 2015-04-30] (Intel Corporation)
R0 ngvss; C:\Windows\System32\Drivers\ngvss.sys [132656 2015-10-02] (AVAST Software)
U0 pqirvic; C:\Windows\System32\drivers\mwiwr.sys [79064 2015-10-07] (Malwarebytes Corporation)
R3 RadioShim; C:\Windows\System32\drivers\RadioShim.sys [15704 2013-01-10] (Acer Incorporated)
S4 secdrv; C:\Windows\SysWow64\Drivers\secdrv.sys [12528 2014-12-29] (Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K.) [File not signed]
R2 VBoxAswDrv; C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys [274336 2015-10-02] (Avast Software)
S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [44560 2015-10-05] (Microsoft Corporation)
R0 WdFilter; C:\Windows\System32\drivers\WdFilter.sys [270168 2015-10-05] (Microsoft Corporation)
R3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114520 2015-10-05] (Microsoft Corporation)
R3 MBAMSwissArmy; \??\C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2015-10-07 10:32 - 2015-10-07 10:32 - 00017769 _____ C:\Users\Petr\Desktop\FRST.txt
2015-10-07 10:32 - 2015-10-07 10:32 - 00000000 ____D C:\FRST
2015-10-07 10:32 - 2015-10-07 10:31 - 02193920 _____ (Farbar) C:\Users\Petr\Desktop\FRST64.exe
2015-10-07 10:31 - 2015-10-07 10:31 - 02193920 _____ (Farbar) C:\Users\Petr\Downloads\FRST64.exe
2015-10-07 10:27 - 2015-10-07 10:27 - 01222144 _____ C:\Users\Petr\Desktop\RSITx64 (1).exe
2015-10-07 01:35 - 2015-10-07 01:35 - 00079064 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mwiwr.sys
2015-10-05 07:48 - 2015-10-05 07:48 - 00001426 _____ C:\Users\Petr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2015-10-05 07:48 - 2015-10-05 07:48 - 00000401 _____ C:\WINDOWS\system32\{F33C3B9B-72AF-418A-B3FD-560646F7CDA2}.bat
2015-10-05 07:48 - 2015-10-05 07:48 - 00000020 ___SH C:\Users\Petr\ntuser.ini
2015-10-05 07:48 - 2015-10-05 07:48 - 00000000 ____D C:\WINDOWS\System32\Tasks\WPD
2015-10-05 01:38 - 2015-10-07 10:26 - 00000000 ___DC C:\WINDOWS\Panther
2015-10-05 01:38 - 2015-10-05 01:38 - 00000000 __SHD C:\Recovery
2015-10-05 01:36 - 2015-10-05 01:36 - 00332800 _____ (Microsoft Corporation) C:\WINDOWS\system32\fhcpl.dll
2015-10-05 01:35 - 2015-10-05 01:35 - 07032320 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
2015-10-05 01:35 - 2015-10-05 01:35 - 06213120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll
2015-10-05 01:35 - 2015-10-05 01:35 - 02819072 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers.dll
2015-10-05 01:35 - 2015-10-05 01:35 - 01101824 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdvidcrl.dll
2015-10-05 01:35 - 2015-10-05 01:35 - 00856064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdvidcrl.dll
2015-10-05 01:34 - 2015-10-05 01:34 - 04837376 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncEngine.dll
2015-10-05 01:34 - 2015-10-05 01:34 - 01574400 _____ (Microsoft Corporation) C:\WINDOWS\system32\vssapi.dll
2015-10-05 01:34 - 2015-10-05 01:34 - 01454080 _____ (Microsoft Corporation) C:\WINDOWS\system32\VSSVC.exe
2015-10-05 01:34 - 2015-10-05 01:34 - 01154048 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDrive.exe
2015-10-05 01:34 - 2015-10-05 01:34 - 01142272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vssapi.dll
2015-10-05 01:34 - 2015-10-05 01:34 - 01084416 _____ (Microsoft Corporation) C:\WINDOWS\system32\IKEEXT.DLL
2015-10-05 01:34 - 2015-10-05 01:34 - 01027584 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll
2015-10-05 01:34 - 2015-10-05 01:34 - 00962216 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll
2015-10-05 01:34 - 2015-10-05 01:34 - 00952896 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmp4srcsnk.dll
2015-10-05 01:34 - 2015-10-05 01:34 - 00885760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll
2015-10-05 01:34 - 2015-10-05 01:34 - 00845312 _____ (Microsoft Corporation) C:\WINDOWS\system32\BFE.DLL
2015-10-05 01:34 - 2015-10-05 01:34 - 00827392 _____ (Microsoft Corporation) C:\WINDOWS\system32\spoolsv.exe
2015-10-05 01:34 - 2015-10-05 01:34 - 00801584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfplat.dll
2015-10-05 01:34 - 2015-10-05 01:34 - 00786120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmp4srcsnk.dll
2015-10-05 01:34 - 2015-10-05 01:34 - 00733696 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDriveTelemetry.dll
2015-10-05 01:34 - 2015-10-05 01:34 - 00713216 _____ (Microsoft Corporation) C:\WINDOWS\system32\nshwfp.dll
2015-10-05 01:34 - 2015-10-05 01:34 - 00702464 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasapi32.dll
2015-10-05 01:34 - 2015-10-05 01:34 - 00658432 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSDApi.dll
2015-10-05 01:34 - 2015-10-05 01:34 - 00657920 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsapi.dll
2015-10-05 01:34 - 2015-10-05 01:34 - 00624640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasapi32.dll
2015-10-05 01:34 - 2015-10-05 01:34 - 00561664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\nshwfp.dll
2015-10-05 01:34 - 2015-10-05 01:34 - 00558080 _____ (Microsoft Corporation) C:\WINDOWS\system32\untfs.dll
2015-10-05 01:34 - 2015-10-05 01:34 - 00555520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSDApi.dll
2015-10-05 01:34 - 2015-10-05 01:34 - 00551232 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vhdmp.sys
2015-10-05 01:34 - 2015-10-05 01:34 - 00514048 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevicePairing.dll
2015-10-05 01:34 - 2015-10-05 01:34 - 00507392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\untfs.dll
2015-10-05 01:34 - 2015-10-05 01:34 - 00498688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dnsapi.dll
2015-10-05 01:34 - 2015-10-05 01:34 - 00473408 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netio.sys
2015-10-05 01:34 - 2015-10-05 01:34 - 00465408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DevicePairing.dll
2015-10-05 01:34 - 2015-10-05 01:34 - 00422400 _____ (Microsoft Corporation) C:\WINDOWS\system32\FWPUCLNT.DLL
2015-10-05 01:34 - 2015-10-05 01:34 - 00420864 _____ (Microsoft Corporation) C:\WINDOWS\system32\vpnike.dll
2015-10-05 01:34 - 2015-10-05 01:34 - 00309760 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSDMon.dll
2015-10-05 01:34 - 2015-10-05 01:34 - 00272384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FWPUCLNT.DLL
2015-10-05 01:34 - 2015-10-05 01:34 - 00252416 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsrslvr.dll
2015-10-05 01:34 - 2015-10-05 01:34 - 00242176 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinSCard.dll
2015-10-05 01:34 - 2015-10-05 01:34 - 00211968 _____ (Microsoft Corporation) C:\WINDOWS\system32\QSHVHOST.DLL
2015-10-05 01:34 - 2015-10-05 01:34 - 00182784 _____ (Microsoft Corporation) C:\WINDOWS\system32\rascfg.dll
2015-10-05 01:34 - 2015-10-05 01:34 - 00169984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WinSCard.dll
2015-10-05 01:34 - 2015-10-05 01:34 - 00166912 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll
2015-10-05 01:34 - 2015-10-05 01:34 - 00162304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rascfg.dll
2015-10-05 01:34 - 2015-10-05 01:34 - 00155648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\QSHVHOST.DLL
2015-10-05 01:34 - 2015-10-05 01:34 - 00143360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxAllUserStore.dll
2015-10-05 01:34 - 2015-10-05 01:34 - 00136512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wfplwfs.sys
2015-10-05 01:34 - 2015-10-05 01:34 - 00128512 _____ (Microsoft Corporation) C:\WINDOWS\splwow64.exe
2015-10-05 01:34 - 2015-10-05 01:34 - 00128000 _____ (Microsoft Corporation) C:\WINDOWS\system32\QSVRMGMT.DLL
2015-10-05 01:34 - 2015-10-05 01:34 - 00112640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rasl2tp.sys
2015-10-05 01:34 - 2015-10-05 01:34 - 00096768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\agilevpn.sys
2015-10-05 01:34 - 2015-10-05 01:34 - 00094208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\QSVRMGMT.DLL
2015-10-05 01:34 - 2015-10-05 01:34 - 00086336 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pdc.sys
2015-10-05 01:34 - 2015-10-05 01:34 - 00080896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wanarp.sys
2015-10-05 01:34 - 2015-10-05 01:34 - 00077824 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasdiag.dll
2015-10-05 01:34 - 2015-10-05 01:34 - 00074752 _____ (Microsoft Corporation) C:\WINDOWS\system32\vsstrace.dll
2015-10-05 01:34 - 2015-10-05 01:34 - 00072192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndproxy.sys
2015-10-05 01:34 - 2015-10-05 01:34 - 00061440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasdiag.dll
2015-10-05 01:34 - 2015-10-05 01:34 - 00058176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dam.sys
2015-10-05 01:34 - 2015-10-05 01:34 - 00055296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vsstrace.dll
2015-10-05 01:34 - 2015-10-05 01:34 - 00048128 _____ (Microsoft Corporation) C:\WINDOWS\system32\kmddsp.tsp
2015-10-05 01:34 - 2015-10-05 01:34 - 00043008 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasmxs.dll
2015-10-05 01:34 - 2015-10-05 01:34 - 00039744 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\intelpep.sys
2015-10-05 01:34 - 2015-10-05 01:34 - 00039424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kmddsp.tsp
2015-10-05 01:34 - 2015-10-05 01:34 - 00033280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasmxs.dll
2015-10-05 01:34 - 2015-10-05 01:34 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasser.dll
2015-10-05 01:34 - 2015-10-05 01:34 - 00024576 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndistapi.sys
2015-10-05 01:34 - 2015-10-05 01:34 - 00022528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasser.dll
2015-10-05 01:34 - 2015-10-05 01:34 - 00016896 _____ (Microsoft Corporation) C:\WINDOWS\system32\eventcls.dll
2015-10-05 01:34 - 2015-10-05 01:34 - 00015360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eventcls.dll
2015-10-05 01:33 - 2015-10-05 01:33 - 04417536 _____ (Microsoft Corporation) C:\WINDOWS\system32\dbgeng.dll
2015-10-05 01:33 - 2015-10-05 01:33 - 02985984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dbgeng.dll
2015-10-05 01:33 - 2015-10-05 01:33 - 01491456 _____ (Microsoft Corporation) C:\WINDOWS\system32\dbghelp.dll
2015-10-05 01:33 - 2015-10-05 01:33 - 01207296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dbghelp.dll
2015-10-05 01:33 - 2015-10-05 01:33 - 00445440 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhotoMetadataHandler.dll
2015-10-05 01:33 - 2015-10-05 01:33 - 00364544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PhotoMetadataHandler.dll
2015-10-05 01:32 - 2015-10-05 01:32 - 01090048 _____ (Microsoft Corporation) C:\WINDOWS\system32\MrmCoreR.dll
2015-10-05 01:32 - 2015-10-05 01:32 - 00791040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MrmCoreR.dll
2015-10-05 01:32 - 2015-10-05 01:32 - 00316416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\udfs.sys
2015-10-05 01:32 - 2015-10-05 01:32 - 00275968 _____ (Microsoft Corporation) C:\WINDOWS\system32\authz.dll
2015-10-05 01:32 - 2015-10-05 01:32 - 00221184 _____ (Microsoft Corporation) C:\WINDOWS\system32\notepad.exe
2015-10-05 01:32 - 2015-10-05 01:32 - 00221184 _____ (Microsoft Corporation) C:\WINDOWS\notepad.exe
2015-10-05 01:32 - 2015-10-05 01:32 - 00212992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\notepad.exe
2015-10-05 01:32 - 2015-10-05 01:32 - 00180224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\authz.dll
2015-10-05 01:31 - 2015-10-05 01:31 - 03607552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msi.dll
2015-10-05 01:31 - 2015-10-05 01:31 - 03320320 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll
2015-10-05 01:31 - 2015-10-05 01:31 - 02171904 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlowUI.dll
2015-10-05 01:31 - 2015-10-05 01:31 - 00672984 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAgent.exe
2015-10-05 01:31 - 2015-10-05 01:31 - 00463872 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.Handlers.dll
2015-10-05 01:31 - 2015-10-05 01:31 - 00273240 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlows.exe
2015-10-05 01:31 - 2015-10-05 01:31 - 00116736 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsDatabase.dll
2015-10-05 01:31 - 2015-10-05 01:31 - 00065024 _____ (Microsoft Corporation) C:\WINDOWS\system32\msiexec.exe
2015-10-05 01:31 - 2015-10-05 01:31 - 00059904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msiexec.exe
2015-10-05 01:30 - 2015-10-05 01:30 - 03705344 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2015-10-05 01:30 - 2015-10-05 01:30 - 02240512 _____ (Microsoft Corporation) C:\WINDOWS\system32\wucltux.dll
2015-10-05 01:30 - 2015-10-05 01:30 - 01763352 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecs.dll
2015-10-05 01:30 - 2015-10-05 01:30 - 01488040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WindowsCodecs.dll
2015-10-05 01:30 - 2015-10-05 01:30 - 00891904 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll
2015-10-05 01:30 - 2015-10-05 01:30 - 00788680 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleaut32.dll
2015-10-05 01:30 - 2015-10-05 01:30 - 00721920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll
2015-10-05 01:30 - 2015-10-05 01:30 - 00602776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleaut32.dll
2015-10-05 01:30 - 2015-10-05 01:30 - 00409088 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUSettingsProvider.dll
2015-10-05 01:30 - 2015-10-05 01:30 - 00359936 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinSetupUI.dll
2015-10-05 01:30 - 2015-10-05 01:30 - 00140288 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuwebv.dll
2015-10-05 01:30 - 2015-10-05 01:30 - 00136904 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
2015-10-05 01:30 - 2015-10-05 01:30 - 00124928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuwebv.dll
2015-10-05 01:30 - 2015-10-05 01:30 - 00095744 _____ (Microsoft Corporation) C:\WINDOWS\system32\wudriver.dll
2015-10-05 01:30 - 2015-10-05 01:30 - 00081920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wudriver.dll
2015-10-05 01:30 - 2015-10-05 01:30 - 00066048 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups.dll
2015-10-05 01:30 - 2015-10-05 01:30 - 00052224 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups2.dll
2015-10-05 01:30 - 2015-10-05 01:30 - 00035840 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapp.exe
2015-10-05 01:30 - 2015-10-05 01:30 - 00029696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapp.exe
2015-10-05 01:30 - 2015-10-05 01:30 - 00027136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wups.dll
2015-10-05 01:29 - 2015-10-05 01:29 - 01249280 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCore.dll
2015-10-05 01:29 - 2015-10-05 01:29 - 01018880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIAutomationCore.dll
2015-10-05 01:29 - 2015-10-05 01:29 - 00108544 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\i8042prt.sys
2015-10-05 01:29 - 2015-10-05 01:29 - 00059712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\kbdclass.sys
2015-10-05 01:29 - 2015-10-05 01:29 - 00051008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mouclass.sys
2015-10-05 01:29 - 2015-10-05 01:29 - 00032256 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\kbdhid.sys
2015-10-05 01:29 - 2015-10-05 01:29 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mouhid.sys
2015-10-05 01:29 - 2015-10-05 01:29 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sermouse.sys
2015-10-05 01:28 - 2015-10-05 01:28 - 00186368 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpapisrv.dll
2015-10-05 01:27 - 2015-10-05 01:27 - 01994752 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWrite.dll
2015-10-05 01:27 - 2015-10-05 01:27 - 01559552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWrite.dll
2015-10-05 01:27 - 2015-10-05 01:27 - 01381888 _____ (Microsoft Corporation) C:\WINDOWS\system32\FntCache.dll
2015-10-05 01:27 - 2015-10-05 01:27 - 00130048 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiFiDisplay.dll
2015-10-05 01:27 - 2015-10-05 01:27 - 00124112 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2015-10-05 01:27 - 2015-10-05 01:27 - 00102608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2015-10-05 01:27 - 2015-10-05 01:27 - 00057856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthhfenum.sys
2015-10-05 01:26 - 2015-10-05 01:26 - 00429568 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll
2015-10-05 01:26 - 2015-10-05 01:26 - 00358912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\schannel.dll
2015-10-05 01:16 - 2015-10-05 01:16 - 18823680 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2015-10-05 01:16 - 2015-10-05 01:16 - 15159296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2015-10-05 01:16 - 2015-10-05 01:16 - 00971776 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSShared.dll
2015-10-05 01:16 - 2015-10-05 01:16 - 00811008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSShared.dll
2015-10-05 01:16 - 2015-10-05 01:16 - 00513480 _____ C:\WINDOWS\SysWOW64\locale.nls
2015-10-05 01:16 - 2015-10-05 01:16 - 00513480 _____ C:\WINDOWS\system32\locale.nls
2015-10-05 01:16 - 2015-10-05 01:16 - 00391680 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlasvc.dll
2015-10-05 01:16 - 2015-10-05 01:16 - 00360448 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncsi.dll
2015-10-05 01:16 - 2015-10-05 01:16 - 00274944 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2015-10-05 01:16 - 2015-10-05 01:16 - 00268288 _____ (Microsoft Corporation) C:\WINDOWS\system32\InkEd.dll
2015-10-05 01:16 - 2015-10-05 01:16 - 00230912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InkEd.dll
2015-10-05 01:16 - 2015-10-05 01:16 - 00210944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2015-10-05 01:16 - 2015-10-05 01:16 - 00046456 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockScreenContentServer.exe
2015-10-05 01:15 - 2015-10-05 01:15 - 03547648 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll
2015-10-05 01:15 - 2015-10-05 01:15 - 01970432 _____ (Microsoft Corporation) C:\WINDOWS\system32\crypt32.dll
2015-10-05 01:15 - 2015-10-05 01:15 - 01633792 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll
2015-10-05 01:15 - 2015-10-05 01:15 - 01612992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\crypt32.dll
2015-10-05 01:15 - 2015-10-05 01:15 - 01091072 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll
2015-10-05 01:15 - 2015-10-05 01:15 - 00951296 _____ (Microsoft Corporation) C:\WINDOWS\system32\tdh.dll
2015-10-05 01:15 - 2015-10-05 01:15 - 00864256 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32spl.dll
2015-10-05 01:15 - 2015-10-05 01:15 - 00749568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tdh.dll
2015-10-05 01:15 - 2015-10-05 01:15 - 00477184 _____ (Microsoft Corporation) C:\WINDOWS\system32\puiobj.dll
2015-10-05 01:15 - 2015-10-05 01:15 - 00411455 _____ C:\WINDOWS\system32\ApnDatabase.xml
2015-10-05 01:15 - 2015-10-05 01:15 - 00367104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\puiobj.dll
2015-10-05 01:15 - 2015-10-05 01:15 - 00346112 _____ (Microsoft Corporation) C:\WINDOWS\system32\eappcfg.dll
2015-10-05 01:15 - 2015-10-05 01:15 - 00339456 _____ (Microsoft Corporation) C:\WINDOWS\system32\eapphost.dll
2015-10-05 01:15 - 2015-10-05 01:15 - 00331776 _____ (Microsoft Corporation) C:\WINDOWS\system32\eapp3hst.dll
2015-10-05 01:15 - 2015-10-05 01:15 - 00309760 _____ (Microsoft Corporation) C:\WINDOWS\system32\compstui.dll
2015-10-05 01:15 - 2015-10-05 01:15 - 00278016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eappcfg.dll
2015-10-05 01:15 - 2015-10-05 01:15 - 00266752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eapphost.dll
2015-10-05 01:15 - 2015-10-05 01:15 - 00250880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eapp3hst.dll
2015-10-05 01:15 - 2015-10-05 01:15 - 00131584 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpudd.dll
2015-10-05 01:15 - 2015-10-05 01:15 - 00102912 _____ (Microsoft Corporation) C:\WINDOWS\system32\eappgnui.dll
2015-10-05 01:15 - 2015-10-05 01:15 - 00091648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eappgnui.dll
2015-10-05 01:15 - 2015-10-05 01:15 - 00041984 _____ (Microsoft Corporation) C:\WINDOWS\system32\UtcResources.dll
2015-10-05 01:15 - 2015-10-05 01:15 - 00000000 _SHDL C:\Users\Public\Documents\Obrázky
2015-10-05 01:15 - 2015-10-05 01:15 - 00000000 _SHDL C:\Users\Public\Documents\Hudba
2015-10-05 01:15 - 2015-10-05 01:15 - 00000000 _SHDL C:\Users\Public\Documents\Filmy
2015-10-05 01:15 - 2015-10-05 01:15 - 00000000 _SHDL C:\Users\Default\Šablony
2015-10-05 01:15 - 2015-10-05 01:15 - 00000000 _SHDL C:\Users\Default\Soubory cookie
2015-10-05 01:15 - 2015-10-05 01:15 - 00000000 _SHDL C:\Users\Default\Poslední
2015-10-05 01:15 - 2015-10-05 01:15 - 00000000 _SHDL C:\Users\Default\Okolní tiskárny
2015-10-05 01:15 - 2015-10-05 01:15 - 00000000 _SHDL C:\Users\Default\Okolní síť
2015-10-05 01:15 - 2015-10-05 01:15 - 00000000 _SHDL C:\Users\Default\Nabídka Start
2015-10-05 01:15 - 2015-10-05 01:15 - 00000000 _SHDL C:\Users\Default\Dokumenty
2015-10-05 01:15 - 2015-10-05 01:15 - 00000000 _SHDL C:\Users\Default\Documents\Obrázky
2015-10-05 01:15 - 2015-10-05 01:15 - 00000000 _SHDL C:\Users\Default\Documents\Hudba
2015-10-05 01:15 - 2015-10-05 01:15 - 00000000 _SHDL C:\Users\Default\Documents\Filmy
2015-10-05 01:15 - 2015-10-05 01:15 - 00000000 _SHDL C:\Users\Default\Data aplikací
2015-10-05 01:15 - 2015-10-05 01:15 - 00000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2015-10-05 01:15 - 2015-10-05 01:15 - 00000000 _SHDL C:\Users\Default\AppData\Local\Data aplikací
2015-10-05 01:15 - 2015-10-05 01:15 - 00000000 _SHDL C:\Users\Default User\Documents\Obrázky
2015-10-05 01:15 - 2015-10-05 01:15 - 00000000 _SHDL C:\Users\Default User\Documents\Hudba
2015-10-05 01:15 - 2015-10-05 01:15 - 00000000 _SHDL C:\Users\Default User\Documents\Filmy
2015-10-05 01:15 - 2015-10-05 01:15 - 00000000 _SHDL C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2015-10-05 01:15 - 2015-10-05 01:15 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Data aplikací
2015-10-05 01:15 - 2015-10-05 01:15 - 00000000 _SHDL C:\ProgramData\Šablony
2015-10-05 01:15 - 2015-10-05 01:15 - 00000000 _SHDL C:\ProgramData\Plocha
2015-10-05 01:15 - 2015-10-05 01:15 - 00000000 _SHDL C:\ProgramData\Nabídka Start
2015-10-05 01:15 - 2015-10-05 01:15 - 00000000 _SHDL C:\ProgramData\Microsoft\Windows\Start Menu\Programy
2015-10-05 01:15 - 2015-10-05 01:15 - 00000000 _SHDL C:\ProgramData\Dokumenty
2015-10-05 01:15 - 2015-10-05 01:15 - 00000000 _SHDL C:\ProgramData\Data aplikací
2015-10-05 01:14 - 2015-10-05 01:14 - 01661576 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll
2015-10-05 01:14 - 2015-10-05 01:14 - 01212248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ole32.dll
2015-10-05 01:14 - 2015-10-05 01:14 - 00653824 _____ (Microsoft Corporation) C:\WINDOWS\system32\comctl32.dll
2015-10-05 01:14 - 2015-10-05 01:14 - 00549888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comctl32.dll
2015-10-05 01:14 - 2015-10-05 01:14 - 00411648 _____ (Microsoft Corporation) C:\WINDOWS\system32\tracerpt.exe
2015-10-05 01:14 - 2015-10-05 01:14 - 00402432 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMPhoto.dll
2015-10-05 01:14 - 2015-10-05 01:14 - 00377152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\clfs.sys
2015-10-05 01:14 - 2015-10-05 01:14 - 00369152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tracerpt.exe
2015-10-05 01:14 - 2015-10-05 01:14 - 00360480 _____ (Microsoft Corporation) C:\WINDOWS\system32\sechost.dll
2015-10-05 01:14 - 2015-10-05 01:14 - 00357376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMPhoto.dll
2015-10-05 01:14 - 2015-10-05 01:14 - 00257216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sechost.dll
2015-10-05 01:14 - 2015-10-05 01:14 - 00075264 _____ (Microsoft Corporation) C:\WINDOWS\system32\clfsw32.dll
2015-10-05 01:14 - 2015-10-05 01:14 - 00059392 _____ (Microsoft Corporation) C:\WINDOWS\system32\csrsrv.dll
2015-10-05 01:14 - 2015-10-05 01:14 - 00059392 _____ (Microsoft Corporation) C:\WINDOWS\system32\basesrv.dll
2015-10-05 01:14 - 2015-10-05 01:14 - 00058880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\clfsw32.dll
2015-10-05 01:14 - 2015-10-05 01:14 - 00022924 _____ C:\WINDOWS\system32\emptyregdb.dat
2015-10-05 01:14 - 2015-10-05 01:14 - 00020992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usb8023.sys
2015-10-05 01:13 - 2015-10-05 01:13 - 02476376 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys
2015-10-05 01:13 - 2015-10-05 01:13 - 00993632 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvcr120_clr0400.dll
2015-10-05 01:13 - 2015-10-05 01:13 - 00987848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcr120_clr0400.dll
2015-10-05 01:13 - 2015-10-05 01:13 - 00690016 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvcp120_clr0400.dll
2015-10-05 01:13 - 2015-10-05 01:13 - 00484552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcp120_clr0400.dll
2015-10-05 01:13 - 2015-10-05 01:13 - 00428888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\FWPKCLNT.SYS
2015-10-05 01:13 - 2015-10-05 01:13 - 00239424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdbus.sys
2015-10-05 01:13 - 2015-10-05 01:13 - 00154432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpsd.sys
2015-10-05 01:13 - 2015-10-05 01:13 - 00118272 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthpan.sys
2015-10-05 01:13 - 2015-10-05 01:13 - 00080384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ahcache.sys
2015-10-05 01:12 - 2015-10-05 01:12 - 01385256 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll
2015-10-05 01:12 - 2015-10-05 01:12 - 01201664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthport.sys
2015-10-05 01:12 - 2015-10-05 01:12 - 01124352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll
2015-10-05 01:12 - 2015-10-05 01:12 - 00167424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rfcomm.sys
2015-10-05 01:12 - 2015-10-05 01:12 - 00097792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidbth.sys
2015-10-05 01:12 - 2015-10-05 01:12 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\system32\TSWbPrxy.exe
2015-10-05 01:11 - 2015-10-05 01:11 - 04298240 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_47.dll
2015-10-05 01:11 - 2015-10-05 01:11 - 03551744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_47.dll
2015-10-05 01:11 - 2015-10-05 01:11 - 02067968 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpdshext.dll
2015-10-05 01:11 - 2015-10-05 01:11 - 01969664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wpdshext.dll
2015-10-05 01:11 - 2015-10-05 01:11 - 01488896 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfc42u.dll
2015-10-05 01:11 - 2015-10-05 01:11 - 01464832 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfc42.dll
2015-10-05 01:11 - 2015-10-05 01:11 - 01230336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfc42u.dll
2015-10-05 01:11 - 2015-10-05 01:11 - 01204224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfc42.dll
2015-10-05 01:11 - 2015-10-05 01:11 - 00564224 _____ (Microsoft Corporation) C:\WINDOWS\system32\apphelp.dll
2015-10-05 01:10 - 2015-10-05 01:10 - 01696256 _____ (Microsoft Corporation) C:\WINDOWS\system32\wevtsvc.dll
2015-10-05 01:10 - 2015-10-05 01:10 - 01380056 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32.dll
2015-10-05 01:10 - 2015-10-05 01:10 - 01097216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32.dll
2015-10-05 01:10 - 2015-10-05 01:10 - 00780800 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsm.dll
2015-10-05 01:10 - 2015-10-05 01:10 - 00325464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBXHCI.SYS
2015-10-05 01:10 - 2015-10-05 01:10 - 00203264 _____ (Microsoft Corporation) C:\WINDOWS\system32\ubpm.dll
2015-10-05 01:10 - 2015-10-05 01:10 - 00158720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rgb9rast.dll
2015-10-05 01:09 - 2015-10-05 01:09 - 25188352 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2015-10-05 01:09 - 2015-10-05 01:09 - 19856384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2015-10-05 01:09 - 2015-10-05 01:09 - 14451712 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2015-10-05 01:09 - 2015-10-05 01:09 - 12857344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2015-10-05 01:09 - 2015-10-05 01:09 - 05923840 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2015-10-05 01:09 - 2015-10-05 01:09 - 04520448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2015-10-05 01:09 - 2015-10-05 01:09 - 02886144 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2015-10-05 01:09 - 2015-10-05 01:09 - 02880000 _____ (Microsoft Corporation) C:\WINDOWS\system32\actxprxy.dll
2015-10-05 01:09 - 2015-10-05 01:09 - 02427392 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2015-10-05 01:09 - 2015-10-05 01:09 - 02279424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2015-10-05 01:09 - 2015-10-05 01:09 - 02126336 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2015-10-05 01:09 - 2015-10-05 01:09 - 02052608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
2015-10-05 01:09 - 2015-10-05 01:09 - 01951232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2015-10-05 01:09 - 2015-10-05 01:09 - 01545728 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2015-10-05 01:09 - 2015-10-05 01:09 - 01310720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2015-10-05 01:09 - 2015-10-05 01:09 - 01048576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\actxprxy.dll
2015-10-05 01:09 - 2015-10-05 01:09 - 01032704 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcomm.dll
2015-10-05 01:09 - 2015-10-05 01:09 - 00880128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcomm.dll
2015-10-05 01:09 - 2015-10-05 01:09 - 00817664 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2015-10-05 01:09 - 2015-10-05 01:09 - 00814080 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll
2015-10-05 01:09 - 2015-10-05 01:09 - 00801280 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
2015-10-05 01:09 - 2015-10-05 01:09 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll
2015-10-05 01:09 - 2015-10-05 01:09 - 00720384 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe
2015-10-05 01:09 - 2015-10-05 01:09 - 00710144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll
2015-10-05 01:09 - 2015-10-05 01:09 - 00689152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll
2015-10-05 01:09 - 2015-10-05 01:09 - 00665600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
2015-10-05 01:09 - 2015-10-05 01:09 - 00620032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9diag.dll
2015-10-05 01:09 - 2015-10-05 01:09 - 00615936 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieui.dll
2015-10-05 01:09 - 2015-10-05 01:09 - 00585216 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2015-10-05 01:09 - 2015-10-05 01:09 - 00504832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2015-10-05 01:09 - 2015-10-05 01:09 - 00479232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieui.dll
2015-10-05 01:09 - 2015-10-05 01:09 - 00417792 _____ (Microsoft Corporation) C:\WINDOWS\system32\html.iec
2015-10-05 01:09 - 2015-10-05 01:09 - 00374784 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll
2015-10-05 01:09 - 2015-10-05 01:09 - 00341504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\html.iec
2015-10-05 01:09 - 2015-10-05 01:09 - 00327168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll
2015-10-05 01:09 - 2015-10-05 01:09 - 00316928 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtrans.dll
2015-10-05 01:09 - 2015-10-05 01:09 - 00285696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtrans.dll
2015-10-05 01:09 - 2015-10-05 01:09 - 00262144 _____ (Microsoft Corporation) C:\WINDOWS\system32\webcheck.dll
2015-10-05 01:09 - 2015-10-05 01:09 - 00230400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webcheck.dll
2015-10-05 01:09 - 2015-10-05 01:09 - 00199680 _____ (Microsoft Corporation) C:\WINDOWS\system32\msrating.dll
2015-10-05 01:09 - 2015-10-05 01:09 - 00168960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msrating.dll
2015-10-05 01:09 - 2015-10-05 01:09 - 00145408 _____ (Microsoft Corporation) C:\WINDOWS\system32\iepeers.dll
2015-10-05 01:09 - 2015-10-05 01:09 - 00128000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iepeers.dll
2015-10-05 01:09 - 2015-10-05 01:09 - 00107520 _____ (Microsoft Corporation) C:\WINDOWS\system32\inseng.dll
2015-10-05 01:09 - 2015-10-05 01:09 - 00092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll
2015-10-05 01:09 - 2015-10-05 01:09 - 00088064 _____ (Microsoft Corporation) C:\WINDOWS\system32\MshtmlDac.dll
2015-10-05 01:09 - 2015-10-05 01:09 - 00087552 _____ (Microsoft Corporation) C:\WINDOWS\system32\tdc.ocx
2015-10-05 01:09 - 2015-10-05 01:09 - 00076288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtmled.dll
2015-10-05 01:09 - 2015-10-05 01:09 - 00073216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tdc.ocx
2015-10-05 01:09 - 2015-10-05 01:09 - 00064000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MshtmlDac.dll
2015-10-05 01:08 - 2015-10-07 10:29 - 01126392 _____ C:\WINDOWS\WindowsUpdate.log
2015-10-05 01:08 - 2015-10-05 01:08 - 04175872 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2015-10-05 01:08 - 2015-10-05 01:08 - 01441792 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2015-10-05 01:08 - 2015-10-05 01:08 - 01311960 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcrt4.dll
2015-10-05 01:08 - 2015-10-05 01:08 - 00989184 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2015-10-05 01:08 - 2015-10-05 01:08 - 00802816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll
2015-10-05 01:08 - 2015-10-05 01:08 - 00747520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rpcrt4.dll
2015-10-05 01:08 - 2015-10-05 01:08 - 00561928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2015-10-05 01:08 - 2015-10-05 01:08 - 00445440 _____ (Microsoft Corporation) C:\WINDOWS\system32\certcli.dll
2015-10-05 01:08 - 2015-10-05 01:08 - 00442712 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll
2015-10-05 01:08 - 2015-10-05 01:08 - 00401408 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys
2015-10-05 01:08 - 2015-10-05 01:08 - 00358912 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\atmfd.dll
2015-10-05 01:08 - 2015-10-05 01:08 - 00332120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll
2015-10-05 01:08 - 2015-10-05 01:08 - 00324096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\certcli.dll
2015-10-05 01:08 - 2015-10-05 01:08 - 00301568 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\atmfd.dll
2015-10-05 01:08 - 2015-10-05 01:08 - 00284672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb10.sys
2015-10-05 01:08 - 2015-10-05 01:08 - 00202240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb20.sys
2015-10-05 01:08 - 2015-10-05 01:08 - 00178008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys
2015-10-05 01:08 - 2015-10-05 01:08 - 00075264 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorageContextHandler.dll
2015-10-05 01:08 - 2015-10-05 01:08 - 00060928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StorageContextHandler.dll
2015-10-05 01:08 - 2015-10-05 01:08 - 00044032 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll
2015-10-05 01:08 - 2015-10-05 01:08 - 00035840 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll
2015-10-05 01:08 - 2015-10-05 01:08 - 00034304 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceSetupStatusProvider.dll
2015-10-05 01:08 - 2015-10-05 01:08 - 00028672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DeviceSetupStatusProvider.dll
2015-10-05 01:07 - 2015-10-05 01:07 - 22292672 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2015-10-05 01:07 - 2015-10-05 01:07 - 19734960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2015-10-05 01:07 - 2015-10-05 01:07 - 03109376 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExplorerFrame.dll
2015-10-05 01:07 - 2015-10-05 01:07 - 02706432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExplorerFrame.dll
2015-10-05 01:07 - 2015-10-05 01:07 - 02162176 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRH.dll
2015-10-05 01:07 - 2015-10-05 01:07 - 01812992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SRH.dll
2015-10-05 01:07 - 2015-10-05 01:07 - 01113944 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys
2015-10-05 01:07 - 2015-10-05 01:07 - 00487256 _____ (Microsoft Corporation) C:\WINDOWS\system32\netcfgx.dll
2015-10-05 01:07 - 2015-10-05 01:07 - 00410128 _____ (Microsoft Corporation) C:\WINDOWS\system32\services.exe
2015-10-05 01:07 - 2015-10-05 01:07 - 00393560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netcfgx.dll
2015-10-05 01:07 - 2015-10-05 01:07 - 00270168 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdFilter.sys
2015-10-05 01:07 - 2015-10-05 01:07 - 00114520 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdNisDrv.sys
2015-10-05 01:07 - 2015-10-05 01:07 - 00044560 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdBoot.sys
2015-10-05 01:07 - 2015-10-05 01:07 - 00014848 _____ (Microsoft Corporation) C:\WINDOWS\system32\winshfhc.dll
2015-10-05 01:07 - 2015-10-05 01:07 - 00012800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winshfhc.dll
2015-10-05 01:06 - 2015-10-05 01:06 - 07784448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll
2015-10-05 01:06 - 2015-10-05 01:06 - 05264384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll
2015-10-05 01:06 - 2015-10-05 01:06 - 02531400 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll
2015-10-05 01:06 - 2015-10-05 01:06 - 02345472 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll
2015-10-05 01:06 - 2015-10-05 01:06 - 01903848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6.dll
2015-10-05 01:06 - 2015-10-05 01:06 - 01556992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml3.dll
2015-10-05 01:06 - 2015-10-05 01:06 - 01265152 _____ (Microsoft Corporation) C:\WINDOWS\system32\schedsvc.dll
2015-10-05 01:06 - 2015-10-05 01:06 - 00933888 _____ (Microsoft Corporation) C:\WINDOWS\system32\calc.exe
2015-10-05 01:06 - 2015-10-05 01:06 - 00816128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\calc.exe
2015-10-05 01:06 - 2015-10-05 01:06 - 00468992 _____ (Microsoft Corporation) C:\WINDOWS\system32\taskeng.exe
2015-10-05 01:06 - 2015-10-05 01:06 - 00359936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\taskeng.exe
2015-10-05 01:06 - 2015-10-05 01:06 - 00229376 _____ (Microsoft Corporation) C:\WINDOWS\system32\schtasks.exe
2015-10-05 01:06 - 2015-10-05 01:06 - 00228864 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebClnt.dll
2015-10-05 01:06 - 2015-10-05 01:06 - 00200192 _____ (Microsoft Corporation) C:\WINDOWS\system32\storewuauth.dll
2015-10-05 01:06 - 2015-10-05 01:06 - 00198656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WebClnt.dll
2015-10-05 01:06 - 2015-10-05 01:06 - 00182784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\schtasks.exe
2015-10-05 01:06 - 2015-10-05 01:06 - 00172544 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Input.Inking.dll
2015-10-05 01:06 - 2015-10-05 01:06 - 00141824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Input.Inking.dll
2015-10-05 01:06 - 2015-10-05 01:06 - 00104448 _____ (Microsoft Corporation) C:\WINDOWS\system32\davclnt.dll
2015-10-05 01:06 - 2015-10-05 01:06 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\davclnt.dll
2015-10-05 01:06 - 2015-10-05 01:06 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaext.dll
2015-10-05 01:06 - 2015-10-05 01:06 - 00015360 _____ (Microsoft Corporation) C:\WINDOWS\system32\wu.upgrade.ps.dll
2015-10-05 01:05 - 2015-10-05 01:05 - 07458648 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2015-10-05 01:05 - 2015-10-05 01:05 - 01735000 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2015-10-05 01:05 - 2015-10-05 01:05 - 01499920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
2015-10-05 01:05 - 2015-10-05 01:05 - 01217024 _____ (Microsoft Corporation) C:\WINDOWS\system32\sysmain.dll
2015-10-05 01:05 - 2015-10-05 01:05 - 00723072 _____ (Microsoft Corporation) C:\WINDOWS\system32\SHCore.dll
2015-10-05 01:05 - 2015-10-05 01:05 - 00560392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SHCore.dll
2015-10-05 01:05 - 2015-10-05 01:05 - 00285184 _____ (Microsoft Corporation) C:\WINDOWS\system32\wow64.dll
2015-10-05 01:05 - 2015-10-05 01:05 - 00259072 _____ (Microsoft Corporation) C:\WINDOWS\system32\pku2u.dll
2015-10-05 01:05 - 2015-10-05 01:05 - 00246272 _____ (Microsoft Corporation) C:\WINDOWS\system32\microsoft-windows-system-events.dll
2015-10-05 01:05 - 2015-10-05 01:05 - 00208896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pku2u.dll
2015-10-05 01:05 - 2015-10-05 01:05 - 00140800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxdav.sys
2015-10-05 01:05 - 2015-10-05 01:05 - 00101720 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mountmgr.sys
2015-10-05 01:05 - 2015-10-05 01:05 - 00025600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\setup16.exe
2015-10-05 01:05 - 2015-10-05 01:05 - 00016896 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntvdm64.dll
2015-10-05 01:05 - 2015-10-05 01:05 - 00014336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntvdm64.dll
2015-10-05 01:05 - 2015-10-05 01:05 - 00013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\wow64cpu.dll
2015-10-05 01:05 - 2015-10-05 01:05 - 00008704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\instnm.exe
2015-10-05 01:05 - 2015-10-05 01:05 - 00005632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wow32.dll
2015-10-05 01:05 - 2015-10-05 01:05 - 00004096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user.exe
2015-10-05 01:03 - 2015-10-05 01:03 - 03633664 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll
2015-10-05 01:03 - 2015-10-05 01:03 - 02749952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tquery.dll
2015-10-05 01:03 - 2015-10-05 01:03 - 02551808 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll
2015-10-05 01:03 - 2015-10-05 01:03 - 02256896 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2015-10-05 01:03 - 2015-10-05 01:03 - 01943040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll
2015-10-05 01:03 - 2015-10-05 01:03 - 01920000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssrch.dll
2015-10-05 01:03 - 2015-10-05 01:03 - 00903168 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchIndexer.exe
2015-10-05 01:03 - 2015-10-05 01:03 - 00774144 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssvp.dll
2015-10-05 01:03 - 2015-10-05 01:03 - 00710144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchIndexer.exe
2015-10-05 01:03 - 2015-10-05 01:03 - 00699392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssvp.dll
2015-10-05 01:03 - 2015-10-05 01:03 - 00538624 _____ (Microsoft Corporation) C:\WINDOWS\system32\scesrv.dll
2015-10-05 01:03 - 2015-10-05 01:03 - 00468480 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssph.dll
2015-10-05 01:03 - 2015-10-05 01:03 - 00467776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBHUB3.SYS
2015-10-05 01:03 - 2015-10-05 01:03 - 00393728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\scesrv.dll
2015-10-05 01:03 - 2015-10-05 01:03 - 00391680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssph.dll
2015-10-05 01:03 - 2015-10-05 01:03 - 00337408 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchProtocolHost.exe
2015-10-05 01:03 - 2015-10-05 01:03 - 00272896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchProtocolHost.exe
2015-10-05 01:03 - 2015-10-05 01:03 - 00248832 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssphtb.dll
2015-10-05 01:03 - 2015-10-05 01:03 - 00228864 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvc.dll
2015-10-05 01:03 - 2015-10-05 01:03 - 00035840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\atlthunk.dll
2015-10-05 01:02 - 2015-10-05 01:02 - 00490496 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtmsft.dll
2015-10-05 01:02 - 2015-10-05 01:02 - 00418304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtmsft.dll
2015-10-05 01:01 - 2015-10-05 01:01 - 02501368 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2015-10-05 01:01 - 2015-10-05 01:01 - 02207488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
2015-10-05 01:01 - 2015-10-05 01:01 - 00522240 _____ (Microsoft Corporation) C:\WINDOWS\system32\GeofenceMonitorService.dll
2015-10-05 01:01 - 2015-10-05 01:01 - 00367104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GeofenceMonitorService.dll
2015-10-05 01:01 - 2015-10-05 01:01 - 00146432 _____ (Microsoft Corporation) C:\WINDOWS\system32\poqexec.exe
2015-10-05 01:01 - 2015-10-05 01:01 - 00129536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\poqexec.exe
2015-10-05 01:01 - 2015-10-05 01:01 - 00118616 _____ (Microsoft Corporation) C:\WINDOWS\system32\consent.exe
2015-10-05 01:00 - 2015-10-05 01:00 - 03084288 _____ (Microsoft Corporation) C:\WINDOWS\system32\msftedit.dll
2015-10-05 01:00 - 2015-10-05 01:00 - 02775552 _____ (Microsoft Corporation) C:\WINDOWS\system32\authui.dll
2015-10-05 01:00 - 2015-10-05 01:00 - 02471424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msftedit.dll
2015-10-05 01:00 - 2015-10-05 01:00 - 02461184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\authui.dll
2015-10-05 01:00 - 2015-10-05 01:00 - 01728000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Immersive.dll
2015-10-05 01:00 - 2015-10-05 01:00 - 01546752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Immersive.dll
2015-10-05 01:00 - 2015-10-05 01:00 - 00991552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\http.sys
2015-10-05 01:00 - 2015-10-05 01:00 - 00655872 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSync.dll
2015-10-05 01:00 - 2015-10-05 01:00 - 00520192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSync.dll
2015-10-05 01:00 - 2015-10-05 01:00 - 00347136 _____ (Microsoft Corporation) C:\WINDOWS\system32\photowiz.dll
2015-10-05 01:00 - 2015-10-05 01:00 - 00290816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\photowiz.dll
2015-10-05 01:00 - 2015-10-05 01:00 - 00222208 _____ (Microsoft Corporation) C:\WINDOWS\system32\rastapi.dll
2015-10-05 01:00 - 2015-10-05 01:00 - 00207872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rastapi.dll
2015-10-05 01:00 - 2015-10-05 01:00 - 00194048 _____ (Microsoft Corporation) C:\WINDOWS\system32\shacct.dll
2015-10-05 01:00 - 2015-10-05 01:00 - 00148480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shacct.dll
2015-10-05 00:59 - 2015-10-05 00:59 - 00911360 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2015-10-05 00:59 - 2015-10-05 00:59 - 00535640 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll
2015-10-05 00:59 - 2015-10-05 00:59 - 00531616 _____ (Microsoft Corporation) C:\WINDOWS\system32\ci.dll
2015-10-05 00:59 - 2015-10-05 00:59 - 00448792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wer.dll
2015-10-05 00:59 - 2015-10-05 00:59 - 00413248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Faultrep.dll
2015-10-05 00:59 - 2015-10-05 00:59 - 00372408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Faultrep.dll
2015-10-05 00:59 - 2015-10-05 00:59 - 00262144 _____ C:\WINDOWS\system32\config\userdiff
2015-10-05 00:59 - 2015-10-05 00:59 - 00230400 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll
2015-10-05 00:59 - 2015-10-05 00:59 - 00108944 _____ (Microsoft Corporation) C:\WINDOWS\system32\EncDump.dll
2015-10-05 00:59 - 2015-10-05 00:59 - 00074928 _____ (Microsoft Corporation) C:\WINDOWS\system32\appidapi.dll
2015-10-05 00:59 - 2015-10-05 00:59 - 00065600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\appidapi.dll
2015-10-05 00:59 - 2015-10-05 00:59 - 00039936 _____ (Microsoft Corporation) C:\WINDOWS\system32\appidsvc.dll
2015-10-05 00:59 - 2015-10-05 00:59 - 00038264 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerFaultSecure.exe
2015-10-05 00:59 - 2015-10-05 00:59 - 00037888 _____ (Microsoft Corporation) C:\WINDOWS\system32\werdiagcontroller.dll
2015-10-05 00:59 - 2015-10-05 00:59 - 00033584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WerFaultSecure.exe
2015-10-05 00:59 - 2015-10-05 00:59 - 00001547 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk
2015-10-05 00:59 - 2015-10-05 00:59 - 00000000 ____D C:\Users\Default\AppData\Local\Pokki
2015-10-05 00:59 - 2015-10-05 00:59 - 00000000 ____D C:\Users\Default User\AppData\Local\Pokki
2015-10-05 00:56 - 2015-10-05 00:56 - 00000000 ____D C:\WINDOWS\SysWOW64\XPSViewer
2015-10-05 00:56 - 2015-10-05 00:56 - 00000000 ____D C:\Program Files\Reference Assemblies
2015-10-05 00:56 - 2015-10-05 00:56 - 00000000 ____D C:\Program Files\MSBuild
2015-10-05 00:56 - 2015-10-05 00:56 - 00000000 ____D C:\Program Files (x86)\Reference Assemblies
2015-10-05 00:56 - 2015-10-05 00:56 - 00000000 ____D C:\Program Files (x86)\MSBuild
2015-10-05 00:55 - 2015-10-05 00:55 - 00000000 ____D C:\WINDOWS\system32\config\bbimigrate
2015-10-05 00:55 - 2013-08-03 06:48 - 01166520 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationNative_v0300.dll
2015-10-05 00:55 - 2013-08-03 06:48 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\system32\TsWpfWrp.exe
2015-10-05 00:55 - 2013-08-03 06:41 - 00778936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationNative_v0300.dll
2015-10-05 00:55 - 2013-08-03 06:41 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TsWpfWrp.exe
2015-10-05 00:54 - 2015-10-05 00:54 - 00024576 _____ (Microsoft Corporation) C:\WINDOWS\system32\sdbinst.exe
2015-10-05 00:54 - 2015-10-05 00:54 - 00021504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sdbinst.exe
2015-10-05 00:53 - 2015-10-05 07:48 - 00000000 ____D C:\Users\Petr
2015-10-05 00:53 - 2015-10-05 01:32 - 00000000 ___RD C:\Users\Petr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2015-10-05 00:53 - 2015-10-05 01:14 - 00020958 _____ C:\WINDOWS\diagwrn.xml
2015-10-05 00:53 - 2015-10-05 01:14 - 00020958 _____ C:\WINDOWS\diagerr.xml
2015-10-05 00:53 - 2015-10-05 00:55 - 00000000 ___RD C:\Users\Petr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2015-10-05 00:53 - 2015-10-05 00:53 - 00000000 _SHDL C:\Users\Petr\Šablony
2015-10-05 00:53 - 2015-10-05 00:53 - 00000000 _SHDL C:\Users\Petr\Soubory cookie
2015-10-05 00:53 - 2015-10-05 00:53 - 00000000 _SHDL C:\Users\Petr\Poslední
2015-10-05 00:53 - 2015-10-05 00:53 - 00000000 _SHDL C:\Users\Petr\Okolní tiskárny
2015-10-05 00:53 - 2015-10-05 00:53 - 00000000 _SHDL C:\Users\Petr\Okolní síť
2015-10-05 00:53 - 2015-10-05 00:53 - 00000000 _SHDL C:\Users\Petr\Nabídka Start
2015-10-05 00:53 - 2015-10-05 00:53 - 00000000 _SHDL C:\Users\Petr\Dokumenty
2015-10-05 00:53 - 2015-10-05 00:53 - 00000000 _SHDL C:\Users\Petr\Documents\Obrázky
2015-10-05 00:53 - 2015-10-05 00:53 - 00000000 _SHDL C:\Users\Petr\Documents\Hudba
2015-10-05 00:53 - 2015-10-05 00:53 - 00000000 _SHDL C:\Users\Petr\Documents\Filmy
2015-10-05 00:53 - 2015-10-05 00:53 - 00000000 _SHDL C:\Users\Petr\Data aplikací
2015-10-05 00:53 - 2015-10-05 00:53 - 00000000 _SHDL C:\Users\Petr\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2015-10-05 00:53 - 2015-10-05 00:53 - 00000000 _SHDL C:\Users\Petr\AppData\Local\Data aplikací
2015-10-05 00:53 - 2014-11-21 14:15 - 00000000 ___RD C:\Users\Petr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2015-10-05 00:53 - 2014-11-21 07:02 - 00000369 _____ C:\Users\Petr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pictures.lnk
2015-10-05 00:53 - 2014-11-21 07:02 - 00000369 _____ C:\Users\Petr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Documents.lnk
2015-10-05 00:53 - 2013-08-22 17:36 - 00000000 ____D C:\Users\Petr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2015-10-05 00:43 - 2015-10-05 00:43 - 00000000 ____D C:\WINDOWS\SysWOW64\RTCOM
2015-10-05 00:43 - 2015-10-05 00:43 - 00000000 ____D C:\Program Files\Realtek
2015-10-05 00:42 - 2015-10-05 00:56 - 00000000 ____D C:\Program Files\Intel
2015-10-05 00:42 - 2015-10-05 00:56 - 00000000 ____D C:\Program Files (x86)\Intel
2015-10-05 00:42 - 2015-10-05 00:42 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_Kernel_TeeDriverx64_01011.Wdf
2015-10-05 00:42 - 2015-10-05 00:42 - 00000000 ____D C:\Program Files\Elantech
2015-10-05 00:42 - 2015-08-09 04:50 - 00096752 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.DLL
2015-10-05 00:42 - 2015-08-09 04:50 - 00092648 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.DLL
2015-10-04 20:50 - 2015-10-04 20:50 - 00000000 ____D C:\ProgramData\Malwarebytes
2015-10-04 20:46 - 2015-10-04 20:48 - 24345872 _____ (Malwarebytes Corporation ) C:\Users\Petr\Downloads\mbam-setup-2.1.8.1057 (1).exe
2015-10-04 20:45 - 2015-10-04 20:46 - 24345872 _____ (Malwarebytes Corporation ) C:\Users\Petr\Downloads\mbam-setup-2.1.8.1057.exe
2015-10-04 20:41 - 2015-10-04 20:42 - 00000000 ____D C:\Users\Petr\Desktop\CrystalDiskInfo5_0_0
2015-10-04 20:41 - 2015-10-04 20:41 - 01496172 _____ C:\Users\Petr\Downloads\CrystalDiskInfo5_0_0 (1).zip
2015-10-04 20:41 - 2015-10-04 20:41 - 01496172 _____ C:\Users\Petr\Desktop\CrystalDiskInfo5_0_0.zip
2015-10-03 22:23 - 2015-10-03 22:30 - 00000000 ____D C:\AdwCleaner
2015-10-03 22:22 - 2015-10-03 22:22 - 01670656 _____ C:\Users\Petr\Desktop\adwcleaner_5.009.exe
2015-10-02 22:03 - 2015-10-07 10:28 - 00000000 ____D C:\Program Files\trend micro
2015-10-02 22:03 - 2015-10-02 22:03 - 01222144 _____ C:\Users\Petr\Downloads\RSITx64.exe
2015-10-02 22:03 - 2015-10-02 22:03 - 00000000 ____D C:\rsit
2015-10-02 21:27 - 2015-10-02 21:27 - 00000000 ____D C:\Program Files\McAfee
2015-10-02 21:03 - 2015-10-02 21:03 - 00378880 _____ (AVAST Software) C:\WINDOWS\system32\aswBoot.exe
2015-10-02 21:03 - 2015-10-02 21:03 - 00003924 _____ C:\WINDOWS\System32\Tasks\avast! Emergency Update
2015-10-02 21:03 - 2015-10-02 21:01 - 00132656 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\ngvss.sys
2015-10-02 21:02 - 2015-10-02 21:02 - 00043112 _____ (AVAST Software) C:\WINDOWS\avastSS.scr
2015-10-02 20:51 - 2015-10-05 01:01 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2015-10-02 20:51 - 2015-10-02 20:51 - 00002780 _____ C:\WINDOWS\System32\Tasks\CCleanerSkipUAC
2015-10-02 20:51 - 2015-10-02 20:51 - 00000786 _____ C:\Users\Public\Desktop\CCleaner.lnk
2015-10-02 20:51 - 2015-10-02 20:51 - 00000000 ____D C:\Program Files\CCleaner
2015-10-02 20:50 - 2015-10-02 20:50 - 06677440 _____ (Piriform Ltd) C:\Users\Petr\Downloads\ccsetup510.exe
2015-09-20 14:28 - 2015-09-20 14:28 - 00000000 ____D C:\Users\Petr\Desktop\foto 6.měsíc 8.12.2014 - kopie
2015-09-16 16:59 - 2015-09-16 16:59 - 00000000 ____D C:\Program Files (x86)\Intel Corporation
2015-09-16 16:16 - 2015-09-17 22:01 - 00003198 _____ C:\WINDOWS\System32\Tasks\avastBCLRestart_chrome.exe

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2021-10-21 15:36 - 2013-10-17 09:42 - 00000852 _____ C:\WINDOWS\system32\Drivers\RTKHDRC.dat
2021-10-04 09:34 - 2013-10-17 09:42 - 00000712 _____ C:\WINDOWS\system32\Drivers\RTMICEQ0.dat
2015-10-07 10:29 - 2014-03-10 22:39 - 00003596 _____ C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-727662200-1775937095-1431734872-1001
2015-10-07 10:26 - 2014-03-23 09:19 - 00000000 ____D C:\Users\Petr\AppData\Roaming\uTorrent
2015-10-07 10:00 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\sru
2015-10-07 01:21 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\AppReadiness
2015-10-06 23:04 - 2014-03-11 11:54 - 00000000 ____D C:\Users\Petr\AppData\Local\Packages
2015-10-06 05:25 - 2012-07-26 09:59 - 00000000 ____D C:\WINDOWS\CbsTemp
2015-10-05 17:04 - 2014-03-11 12:34 - 00000966 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2015-10-05 10:54 - 2015-03-02 12:36 - 00003722 _____ C:\WINDOWS\System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473
2015-10-05 10:54 - 2015-03-02 12:36 - 00003476 _____ C:\WINDOWS\System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473-Logon
2015-10-05 10:54 - 2015-03-02 12:35 - 00000000 ____D C:\ProgramData\Intel(R) Update Manager
2015-10-05 07:48 - 2013-08-12 15:00 - 00000000 ___HD C:\Intel
2015-10-05 01:37 - 2013-08-22 17:36 - 00262144 _____ C:\WINDOWS\system32\config\BCD-Template
2015-10-05 01:36 - 2013-08-22 17:36 - 00000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2015-10-05 01:35 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\SysWOW64\setup
2015-10-05 01:35 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\setup
2015-10-05 01:32 - 2013-08-22 17:36 - 00000000 ___RD C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2015-10-05 01:32 - 2013-08-22 17:36 - 00000000 ___RD C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2015-10-05 01:26 - 2014-11-21 06:34 - 00000000 ____D C:\Program Files\Windows Journal
2015-10-05 01:26 - 2014-11-21 06:09 - 00000000 ____D C:\WINDOWS\SysWOW64\winrm
2015-10-05 01:26 - 2014-11-21 06:09 - 00000000 ____D C:\WINDOWS\SysWOW64\slmgr
2015-10-05 01:26 - 2014-11-21 06:09 - 00000000 ____D C:\WINDOWS\SysWOW64\Printing_Admin_Scripts
2015-10-05 01:26 - 2014-11-21 06:09 - 00000000 ____D C:\WINDOWS\system32\winrm
2015-10-05 01:26 - 2014-11-21 06:09 - 00000000 ____D C:\WINDOWS\system32\slmgr
2015-10-05 01:26 - 2014-11-21 06:09 - 00000000 ____D C:\WINDOWS\system32\Printing_Admin_Scripts
2015-10-05 01:26 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\WinStore
2015-10-05 01:26 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\SystemResetPlatform
2015-10-05 01:26 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\migwiz
2015-10-05 01:26 - 2013-08-22 17:36 - 00000000 ____D C:\Program Files\Windows Photo Viewer
2015-10-05 01:26 - 2013-08-22 17:36 - 00000000 ____D C:\Program Files\Windows Defender
2015-10-05 01:26 - 2013-08-22 17:36 - 00000000 ____D C:\Program Files (x86)\Windows Photo Viewer
2015-10-05 01:26 - 2013-08-22 17:36 - 00000000 ____D C:\Program Files (x86)\Windows Defender
2015-10-05 01:26 - 2013-08-22 15:36 - 00000000 ____D C:\WINDOWS\servicing
2015-10-05 01:17 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\rescache
2015-10-05 01:15 - 2014-11-21 06:48 - 02473472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2015-10-05 01:15 - 2013-08-22 17:36 - 00000000 ___RD C:\WINDOWS\ToastData
2015-10-05 01:15 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\Registration
2015-10-05 01:15 - 2013-08-22 17:36 - 00000000 ____D C:\Program Files\Windows NT
2015-10-05 01:15 - 2013-08-22 15:36 - 00000000 __RHD C:\Users\Default
2015-10-05 01:14 - 2013-08-22 16:45 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2015-10-05 01:12 - 2014-11-21 06:53 - 01745984 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2015-10-05 01:12 - 2014-11-21 06:10 - 00739924 _____ C:\WINDOWS\system32\perfh005.dat
2015-10-05 01:12 - 2014-11-21 06:10 - 00151610 _____ C:\WINDOWS\system32\perfc005.dat
2015-10-05 01:11 - 2013-08-22 17:36 - 00000000 __RSD C:\WINDOWS\Media
2015-10-05 01:11 - 2013-08-22 17:36 - 00000000 __RHD C:\Users\Public\Libraries
2015-10-05 01:09 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\PolicyDefinitions
2015-10-05 01:07 - 2013-08-22 17:36 - 00000000 ___RD C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2015-10-05 01:07 - 2013-08-22 17:36 - 00000000 ___RD C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2015-10-05 01:06 - 2013-08-22 17:36 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
2015-10-05 01:02 - 2013-08-22 16:44 - 00349136 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2015-10-05 01:01 - 2015-04-28 20:04 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Registrace uživatele zařízení Canon MG3500 series
2015-10-05 01:01 - 2015-04-27 18:52 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon MG3500 series Manual
2015-10-05 01:01 - 2015-04-24 21:46 - 00000000 ____D C:\WINDOWS\system32\STRING
2015-10-05 01:01 - 2014-12-29 13:54 - 00000000 ____D C:\WINDOWS\SysWOW64\vbox
2015-10-05 01:01 - 2014-12-29 13:54 - 00000000 ____D C:\WINDOWS\system32\vbox
2015-10-05 01:01 - 2014-12-04 18:52 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ulož.to File Manager
2015-10-05 01:01 - 2014-12-02 18:59 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Cesky Preklad
2015-10-05 01:01 - 2014-10-30 23:14 - 00000000 ____D C:\WINDOWS\system32\AutoUpdateLicense
2015-10-05 01:01 - 2014-03-17 18:15 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
2015-10-05 01:01 - 2014-03-17 17:57 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Lite
2015-10-05 01:01 - 2014-03-15 20:24 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam
2015-10-05 01:01 - 2014-03-10 21:53 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
2015-10-05 01:01 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\Help
2015-10-05 01:01 - 2013-08-22 15:36 - 00000000 ____D C:\WINDOWS\system32\Sysprep
2015-10-05 01:01 - 2013-08-22 15:25 - 00262144 ___SH C:\WINDOWS\system32\config\BBI
2015-10-05 01:01 - 2013-08-12 15:08 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nero
2015-10-05 01:01 - 2013-08-12 15:07 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acer
2015-10-05 01:00 - 2014-07-27 09:59 - 00000000 ____D C:\Users\Petr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox
2015-10-05 01:00 - 2014-05-04 23:31 - 00000000 ____D C:\Users\Petr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\The KMPlayer
2015-10-05 01:00 - 2013-08-22 15:25 - 00262144 ___SH C:\WINDOWS\system32\config\ELAM
2015-10-05 00:59 - 2014-11-21 06:09 - 00000000 ____D C:\WINDOWS\SysWOW64\WCN
2015-10-05 00:59 - 2014-11-21 06:09 - 00000000 ____D C:\WINDOWS\SysWOW64\sysprep
2015-10-05 00:59 - 2014-11-21 06:09 - 00000000 ____D C:\WINDOWS\system32\WCN
2015-10-05 00:59 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\SysWOW64\MUI
2015-10-05 00:59 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\SysWOW64\migwiz
2015-10-05 00:59 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\SysWOW64\IME
2015-10-05 00:59 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\spool
2015-10-05 00:59 - 2013-08-22 15:36 - 00000000 ____D C:\WINDOWS\SysWOW64\SMI
2015-10-05 00:59 - 2013-08-22 15:36 - 00000000 ____D C:\WINDOWS\system32\AdvancedInstallers
2015-10-05 00:59 - 2012-07-26 07:37 - 00000000 ____D C:\Users\Default.migrated
2015-10-05 00:58 - 2014-03-18 18:13 - 00000000 ____D C:\WINDOWS\system32\MRT
2015-10-05 00:58 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\NDF
2015-10-05 00:58 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\MUI
2015-10-05 00:58 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\IME
2015-10-05 00:58 - 2013-08-22 15:36 - 00000000 ____D C:\WINDOWS\system32\oobe
2015-10-05 00:57 - 2013-08-22 17:43 - 00000000 ____D C:\WINDOWS\DigitalLocker
2015-10-05 00:56 - 2015-04-24 21:41 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon Utilities
2015-10-05 00:56 - 2015-03-02 12:35 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel
2015-10-05 00:56 - 2014-09-16 17:07 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\JoWood
2015-10-05 00:56 - 2014-07-07 21:27 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EA GAMES
2015-10-05 00:56 - 2014-07-07 11:25 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TopCD
2015-10-05 00:56 - 2014-05-04 23:36 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Comodo
2015-10-05 00:56 - 2013-08-22 17:36 - 00000000 __SHD C:\Program Files\Windows Sidebar
2015-10-05 00:56 - 2013-08-22 17:36 - 00000000 __SHD C:\Program Files (x86)\Windows Sidebar
2015-10-05 00:56 - 2013-08-22 17:36 - 00000000 ____D C:\Program Files\Common Files\microsoft shared
2015-10-05 00:56 - 2013-08-12 15:03 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
2015-10-05 00:56 - 2013-08-12 14:51 - 00000000 ____D C:\ProgramData\PRICache
2015-10-05 00:55 - 2014-03-17 18:25 - 00000000 ____D C:\Users\Petr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ubisoft
2015-10-05 00:55 - 2014-03-15 21:13 - 00000000 ____D C:\Users\Petr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2015-10-05 00:55 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\Recovery
2015-10-05 00:55 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\GroupPolicy
2015-10-04 23:45 - 2015-04-24 19:59 - 00000000 ____D C:\ProgramData\CanonIJPLM
2015-10-04 20:53 - 2012-07-26 10:12 - 00000000 ____D C:\WINDOWS\AUInstallAgent
2015-10-03 22:35 - 2015-01-26 18:06 - 00000374 _____ C:\WINDOWS\system32\Drivers\etc\hosts.ics
2015-10-03 22:34 - 2013-10-17 09:59 - 00000000 ____D C:\ProgramData\Norton
2015-10-03 22:25 - 2014-03-10 21:53 - 00001290 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2015-10-03 22:24 - 2014-05-04 23:06 - 00000000 ____D C:\Users\Petr\AppData\Local\TB
2015-10-02 22:38 - 2012-07-26 07:26 - 00000226 _____ C:\WINDOWS\win.ini
2015-10-02 22:25 - 2013-10-17 09:59 - 00000000 ____D C:\ProgramData\boost_interprocess
2015-10-02 21:26 - 2013-10-17 10:00 - 00000000 ____D C:\ProgramData\Temp
2015-10-02 21:11 - 2014-03-17 17:59 - 00000000 ____D C:\Program Files (x86)\Seznam.cz
2015-10-02 21:11 - 2014-03-17 17:58 - 00000000 ____D C:\Users\Petr\AppData\Roaming\Seznam.cz
2015-10-02 21:07 - 2015-03-20 01:18 - 00003822 _____ C:\WINDOWS\System32\Tasks\Opera scheduled Autoupdate 1426807100
2015-10-02 21:07 - 2015-03-20 01:18 - 00001055 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Opera.lnk
2015-10-02 21:07 - 2015-03-19 23:53 - 00000000 ____D C:\Program Files (x86)\Opera
2015-10-02 21:06 - 2014-03-17 17:57 - 00000000 ____D C:\Users\Petr\AppData\Roaming\DAEMON Tools Lite
2015-10-02 21:06 - 2014-03-11 18:18 - 00000000 ____D C:\Program Files (x86)\Steam
2015-10-02 21:03 - 2014-07-26 21:09 - 00028656 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswHwid.sys
2015-10-02 21:03 - 2014-03-17 18:46 - 00448968 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSP.sys
2015-10-02 21:03 - 2014-03-17 18:46 - 00274808 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswVmm.sys
2015-10-02 21:03 - 2014-03-17 18:46 - 00153744 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswStm.sys
2015-10-02 21:03 - 2014-03-17 18:46 - 00093528 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRdr2.sys
2015-10-02 21:03 - 2014-03-17 18:46 - 00090968 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswMonFlt.sys
2015-10-02 21:03 - 2014-03-17 18:46 - 00065224 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRvrt.sys
2015-10-02 21:01 - 2014-03-17 18:46 - 01049880 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSnx.sys
2015-09-20 21:56 - 2015-01-31 14:39 - 00000000 ____D C:\Users\Petr\Desktop\Živi Mrtvi 1serie-5serie
2015-09-20 16:44 - 2014-03-17 19:36 - 00000000 ____D C:\Users\Petr\AppData\Roaming\vlc
2015-09-18 20:16 - 2013-08-12 15:04 - 00000000 ____D C:\Program Files (x86)\McAfee
2015-09-16 16:59 - 2015-03-02 12:33 - 00000000 ____D C:\ProgramData\Package Cache
2015-09-16 16:59 - 2014-03-11 12:34 - 00003942 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA
2015-09-16 16:59 - 2014-03-11 12:34 - 00003706 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore
2015-09-16 16:59 - 2014-03-11 12:34 - 00000970 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2015-09-13 13:18 - 2014-03-11 12:34 - 00000000 ____D C:\Users\Petr\AppData\Local\Google

==================== Files in the root of some directories =======

2014-04-15 17:38 - 2014-04-15 17:38 - 0000000 ___SH () C:\Users\Petr\AppData\Local\LumaEmu
2015-03-23 22:46 - 2015-08-15 13:42 - 0007605 _____ () C:\Users\Petr\AppData\Local\resmon.resmoncfg

==================== Bamital & volsnap =================

(There is no automatic fix for files that do not pass verification.)

C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\wininit.exe => File is digitally signed
C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\SysWOW64\explorer.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\SysWOW64\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\SysWOW64\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\SysWOW64\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
C:\WINDOWS\SysWOW64\dnsapi.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2015-10-05 00:39

==================== End of FRST.txt ============================
Přílohy
Addition.zip
(8.01 KiB) Staženo 42 x

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: Dobrý den prosím o preventivní kontrolu logu

#12 Příspěvek od Márty84 »

:arrow: Napiste mi velikost adresare plochy (C:\Users\Petr\Plocha)



:arrow: Otevrete si poznamkovy blok a zkopirujte do nej tento skript

Kód: Vybrat vše

Start
CloseProcesses:
CreateRestorePoint:

HKLM-x32\...\RunOnce: [Malwarebytes Anti-Malware (cleanup)] => C:\ProgramData\Malwarebytes\Malwarebytes Anti-Malware\mbamdor.exe [54072 2015-06-18] (Malwarebytes Corporation)
HKU\S-1-5-21-727662200-1775937095-1431734872-1001\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3696912 2014-03-04] (Disc Soft Ltd)
GroupPolicy: Restriction - Chrome <======= ATTENTION
CHR HKLM\SOFTWARE\Policies\Google: Restriction <======= ATTENTION
CHR HKU\S-1-5-21-727662200-1775937095-1431734872-1001\SOFTWARE\Policies\Google: Restriction <======= ATTENTION

Toolbar: HKLM - No Name - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - No File
FF HKLM-x32\...\Thunderbird\Extensions: [msktbird@mcafee.com] - C:\Program Files\McAfee\MSK => not found

U0 pqirvic; C:\Windows\System32\drivers\mwiwr.sys [79064 2015-10-07] (Malwarebytes Corporation)
R3 MBAMSwissArmy; \??\C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys [X]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-28 144200]
S2 NAUpdate;Nero Update; c:\Program Files (x86)\Nero\Update\NASvc.exe [2012-07-14 769432]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-28 144200]

Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

Hosts:
EmptyTemp:
Reboot:
End
Vlevo nahore kliknete na napis Soubor
Kliknete na napis Ulozit jako...
Napiste spravne ten cerveny nazev fixlist a ulozte na plochu.
Vypnete antivir i dalsi pripadne zabezpeceni.
Spustte FRST jako spravce, kliknete na napis Fix a program vykona prikazy.
Po restartu pc by se mel objevit novy log - s nazvem fixlog, ten mi sem zase zkopirujte.
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

otee
Návštěvník
Návštěvník
Příspěvky: 54
Registrován: 22 črc 2011 15:50

Re: Dobrý den prosím o preventivní kontrolu logu

#13 Příspěvek od otee »

Fix result of Farbar Recovery Scan Tool (x64) Version:08-10-2015
Ran by Petr (2015-10-10 09:58:33) Run:1
Running from C:\Users\Petr\Desktop
Loaded Profiles: Petr (Available Profiles: Petr)
Boot Mode: Normal
==============================================

fixlist content:
*****************
Start
CloseProcesses:
CreateRestorePoint:

HKLM-x32\...\RunOnce: [Malwarebytes Anti-Malware (cleanup)] => C:\ProgramData\Malwarebytes\Malwarebytes Anti-Malware\mbamdor.exe [54072 2015-06-18] (Malwarebytes Corporation)
HKU\S-1-5-21-727662200-1775937095-1431734872-1001\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3696912 2014-03-04] (Disc Soft Ltd)
GroupPolicy: Restriction - Chrome <======= ATTENTION
CHR HKLM\SOFTWARE\Policies\Google: Restriction <======= ATTENTION
CHR HKU\S-1-5-21-727662200-1775937095-1431734872-1001\SOFTWARE\Policies\Google: Restriction <======= ATTENTION

Toolbar: HKLM - No Name - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - No File
FF HKLM-x32\...\Thunderbird\Extensions: [msktbird@mcafee.com] - C:\Program Files\McAfee\MSK => not found

U0 pqirvic; C:\Windows\System32\drivers\mwiwr.sys [79064 2015-10-07] (Malwarebytes Corporation)
R3 MBAMSwissArmy; \??\C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys [X]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-28 144200]
S2 NAUpdate;Nero Update; c:\Program Files (x86)\Nero\Update\NASvc.exe [2012-07-14 769432]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-28 144200]

Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

Hosts:
EmptyTemp:
Reboot:
End
*****************

Processes closed successfully.
Restore point was successfully created.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\RunOnce\\Malwarebytes Anti-Malware (cleanup) => value not found.
HKU\S-1-5-21-727662200-1775937095-1431734872-1001\Software\Microsoft\Windows\CurrentVersion\Run\\DAEMON Tools Lite => value removed successfully
C:\WINDOWS\system32\GroupPolicy\Machine => moved successfully
C:\WINDOWS\system32\GroupPolicy\GPT.ini => moved successfully
"HKLM\SOFTWARE\Policies\Google" => key removed successfully
"HKU\S-1-5-21-727662200-1775937095-1431734872-1001\SOFTWARE\Policies\Google" => key removed successfully
HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} => value removed successfully
HKCR\CLSID\{CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} => key not found.
HKLM\Software\Wow6432Node\Mozilla\Thunderbird\Extensions\\msktbird@mcafee.com => value removed successfully
pqirvic => service not found.
MBAMSwissArmy => service not found.
gupdate => service removed successfully
NAUpdate => service removed successfully
gupdatem => service removed successfully
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => moved successfully
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => moved successfully
C:\Windows\System32\Drivers\etc\hosts => moved successfully
Hosts restored successfully.
EmptyTemp: => 46.3 MB temporary data Removed.


The system needed a reboot..

==== End of Fixlog 09:59:08 ====

otee
Návštěvník
Návštěvník
Příspěvky: 54
Registrován: 22 črc 2011 15:50

Re: Dobrý den prosím o preventivní kontrolu logu

#14 Příspěvek od otee »

214 MB (224 900 126 bajtů)

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: Dobrý den prosím o preventivní kontrolu logu

#15 Příspěvek od Márty84 »

:!: Vsechny tyto programy - vcetne pripadne instalace - spoustejte jako spravce (kliknete na ne pravym mysidlem a zvolte - Spustit jako spravce)

:arrow:
vyosek píše: :arrow: DelFix https://toolslib.net/downloads/finish/2/
  • Stahnete a spustte
  • Ponechte zatrzitkou pouze u volby Remove disinfection tools
  • Kliknete na Run
:arrow: Stahnete Ccleaner http://www.filehippo.com/download_ccleaner a spustte.
Pri instalaci pozor na toolbar (ci jine doplnky), jestli vam nabidne jeho instalaci, tak zruste zatrzitko.
Po spusteni se ocitnete ve funkci Cistic. Vlevo je spousta zatrzitek. Pozor dejte hlavne na kos, pokud nechate zatrzene, vzdy ho vysype.
Dale, podle toho jak je nastaven, smaze vsechna hesla ulozena na netu!!! Takze jestli mate nastavene, at si pocitac hesla pamatuje (coz neni pro bezpecnost dobre), budete je muset pak napsat znova rucne (napr mail, facebook, ruzna fora atd.)
Kliknete na Analyzovat a az dokonci analyzu, kliknete na Spustit Cleaner.
Potom kliknete vlevo na funkci Registry
Kliknete na Hledej problemy, kdyz najde, kliknete na Opravit problemy. Nabidne Vam zalohu, tu udelejte a ulozte ji tak, at ji v pripade potreby najdete.
Funkce Nastroje umoznuje odinstalovani programu. Je dukladnejsi nez samotny windows!
(Pokud je v pc vice uzivatelskych uctu, pouzijte program i v nich)

:arrow: Defragmentujte disk(y) (SSD Disky ne!)
Stahnete program Defraggler https://www.piriform.com/defraggler/download/standard
Pri instalaci opet pozor na toolbar a dalsi nesmysly.
Po nainstalovani program spustte a kliknete na Analyzovat, po analyze kliknete na Defragmentovat a programek odvede svou praci.




:arrow: Pak napiste, jak to s pc vypada.
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

Zamčeno