Logfile of random's system information tool 1.10 (written by random/random)
Run by Saša at 2016-10-07 11:54:36
Microsoft Windows 8.1
System drive C: has 798 GB (85%) free of 937 GB
Total RAM: 8083 MB (67% free)
======Listing Processes======
wininit.exe
C:\WINDOWS\system32\lsass.exe
winlogon.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
"c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe"
C:\WINDOWS\system32\atiesrxx.exe
"dwm.exe"
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k netsvcs
atieclxx
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\system32\igfxCUIService.exe
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted
"c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DPCardEngine.exe"
C:\WINDOWS\system32\Hpservice.exe
"C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /SC
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /SRSPS
C:\windows\system32\vcsFPService.exe
C:\WINDOWS\system32\svchost.exe -k NetworkService
C:\WINDOWS\system32\WLANExt.exe 767858887296
\??\C:\WINDOWS\system32\conhost.exe 0x4
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
C:\WINDOWS\system32\svchost.exe -k apphost
"C:\Program Files\Bonjour\mDNSResponder.exe"
"C:\Program Files (x86)\Hewlett-Packard\HP Theft Recovery\CtService.exe"
C:\WINDOWS\System32\svchost.exe -k utcsvc
"c:\Program Files\Intel\WiFi\bin\EvtEng.exe"
"C:\Program Files (x86)\UPC Smart Guard\fshoster32.exe" -hosterid:0
"C:\Program Files (x86)\UPC Smart Guard\apps\CCF_Reputation\fsorsp.exe"
"C:\Program Files (x86)\UPC Smart Guard\apps\ComputerSecurity\Anti-Virus\FSGK32.EXE" /service /stopevent=852 /ipcexch=864
"C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\HPFSService.exe"
"C:\Program Files (x86)\Intel\Bluetooth\utilities\ibtsiva.exe"
"c:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTAgent.exe"
"c:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe"
C:\WINDOWS\system32\svchost.exe -k imgsvc
"c:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe"
"c:\Program Files (x86)\Hewlett-Packard\HP Device Access Manager\HP.ProtectTools.DeviceAccessManager.ServiceHost.exe"
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe"
"C:\Program Files (x86)\UPC Smart Guard\apps\ComputerSecurity\Common\FSMA32.EXE"
oid 1.3.6.1.4.1.2213.11.1.27.64 HosterGroupType 0
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
dashost.exe {c9d43552-44fe-4b5d-b19e28a6806a086f}
C:\WINDOWS\System32\svchost.exe -k LocalServicePeerNet
"C:\Program Files (x86)\UPC Smart Guard\apps\ComputerSecurity\Anti-Virus\fssm32.exe" 3 912 920 924
C:\WINDOWS\SysWOW64\DllHost.exe /Processid:{00021401-0000-0000-C000-000000000046}
C:\WINDOWS\system32\DllHost.exe /Processid:{30D49246-D217-465F-B00B-AC9DDD652EB7}
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
taskhostex.exe
taskeng.exe {797978C3-AC65-463D-8A70-71E9B2941579}
C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
"c:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DPAgent.exe"
C:\WINDOWS\Explorer.EXE
"C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /c
"C:\Program Files (x86)\Google\Update\1.3.31.5\GoogleCrashHandler.exe"
"C:\Program Files (x86)\Google\Update\1.3.31.5\GoogleCrashHandler64.exe"
"c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DPAgent.exe"
igfxEM.exe
igfxHK.exe
igfxTray.exe
"C:\Program Files (x86)\UPC Smart Guard\fshoster32.exe" -app -hosterid:1
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
"C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe"
"C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE"
"C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe" -s
"C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTsysTray8.exe"
"C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
"C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe"
"C:\Users\Saša\AppData\Local\Microsoft\BingSvc\BingSvc.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Users\Saša\AppData\Roaming\uTorrent\uTorrent.exe" /MINIMIZED
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe"
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files (x86)\Hewlett-Packard\HP 3D DriveGuard\AccelerometerSt.exe"
"C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe"
"C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe"
"C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\CORESHREDDER.exe"
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM" PriorityLow
"C:\Users\Saša\AppData\Roaming\uTorrent\updates\3.4.8_42576\utorrentie.exe" uTorrent_5272_00AA7040_1753978975 µTorrent4823DF041B09 uTorrent
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\Users\Saša\AppData\Roaming\uTorrent\updates\3.4.8_42576\utorrentie.exe" uTorrent_5272_00AA7630_76460884 µTorrent4823DF041B09 uTorrent
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe" 0
"C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=crashpad-handler /prefetch:7 --no-rate-limit "--database=C:\Users\Saša\AppData\Local\Google\Chrome\User Data\Crashpad" --url=https://clients2.google.com/cr/report --annotation=channel=-m --annotation=plat=Win64 --annotation=prod=Chrome --annotation=ver=53.0.2785.143 --handshake-handle=0x134
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="6012.0.1612987608\398599230" --mojo-application-channel-token=D52E2E1F14455A1E506FC612D398F711 --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,BlockSmallPluginContent<PluginPowerSaverTiny,MaterialDesignUserManager<MaterialDesignUserManager,*PreconnectMore<PreconnectMore,*TranslateUI2016Q2<TranslateUI2016Q2,UsePasswordSeparatedSigninFlow<PasswordSeparatedSigninFlow --disable-features=DocumentWriteEvaluator<DisallowFetchForDocWrittenScriptsInMainFrame,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --force-fieldtrials=AppBannerTriggering/site-engagement-eager/AutomaticTabDiscarding/Enabled_Once_10-gen2/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/ClientSideDetectionModel/Model0/DisallowFetchForDocWrittenScriptsInMainFrame/DocumentWriteScriptBlockGroup_20160627/EnableMediaRouter/Enabled/EnableWin32kLockDownMimeTypes/PPAPILockdown_Control/ExtensionDeveloperModeWarning/Enabled/*GFE/Default/GoogleBrandedContextMenu/default/InstanceID/Enabled/MaterialDesignDownloads/Enabled/MaterialDesignUserManager/Enabled/*NetworkQualityEstimator/Enabled/OmniboxBundledExperimentV1/StandardR7/PasswordBranding/Disabled/*PasswordGeneration/Disabled/PasswordManagerSettingsMigration/Enable/PasswordSeparatedSigninFlow/Enabled/PasswordSmartBubble/3-Times/PluginPowerSaverTiny/Enabled/PreconnectMore/Default/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/MonthlyPrompt/SSLCommonNameMismatchHandling/Enabled/SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/SignInPasswordPromo/Default/StrictSecureCookies/Default/SyncHttpContentCompression/Enabled/TranslateUI2016Q2/DefaultTranslateUI2016Q2/TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_75/*UMA-Uniformity-Trial-10-Percent/group_04/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_15/*UMA-Uniformity-Trial-50-Percent/default/WebBluetoothBlacklist/BlacklistUpdate1/ --disable-d3d11 --disable-direct-composition --supports-dual-gpus=false --gpu-driver-bug-workarounds=5,11,13,14,15,16,18,31,56 --gpu-vendor-id=0x1002 --gpu-device-id=0x6901 --gpu-driver-vendor="Advanced Micro Devices, Inc." --gpu-driver-version=15.201.1301.0 --gpu-driver-date=8-19-2015 --gpu-secondary-vendor-ids=0x8086 --gpu-secondary-device-ids=0x1616 --mojo-platform-channel-handle=1108 --ignored=" --type=renderer " /prefetch:2
"C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe" /taskrestart
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,BlockSmallPluginContent<PluginPowerSaverTiny,MaterialDesignUserManager<MaterialDesignUserManager,*PreconnectMore<PreconnectMore,*TranslateUI2016Q2<TranslateUI2016Q2,UsePasswordSeparatedSigninFlow<PasswordSeparatedSigninFlow --disable-features=DocumentWriteEvaluator<DisallowFetchForDocWrittenScriptsInMainFrame,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --force-fieldtrials=*AppBannerTriggering/site-engagement-eager/*AutomaticTabDiscarding/Enabled_Once_10-gen2/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/*ClientSideDetectionModel/Model0/*DisallowFetchForDocWrittenScriptsInMainFrame/DocumentWriteScriptBlockGroup_20160627/*EnableMediaRouter/Enabled/EnableWin32kLockDownMimeTypes/PPAPILockdown_Control/ExtensionDeveloperModeWarning/Enabled/*GFE/Default/GoogleBrandedContextMenu/default/InstanceID/Enabled/MaterialDesignDownloads/Enabled/MaterialDesignUserManager/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/StandardR7/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*PasswordManagerSettingsMigration/Enable/PasswordSeparatedSigninFlow/Enabled/PasswordSmartBubble/3-Times/PluginPowerSaverTiny/Enabled/*PreconnectMore/Default/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/MonthlyPrompt/SSLCommonNameMismatchHandling/Enabled/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/SignInPasswordPromo/Default/*StrictSecureCookies/Default/SyncHttpContentCompression/Enabled/TranslateUI2016Q2/DefaultTranslateUI2016Q2/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_75/*UMA-Uniformity-Trial-10-Percent/group_04/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_15/*UMA-Uniformity-Trial-50-Percent/default/WebBluetoothBlacklist/BlacklistUpdate1/ --primordial-pipe-token=7E78A3795CDA2D958BE6F8270600419A --lang=cs --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --blink-settings=disallowFetchForDocWrittenScriptsInMainFrame=false,disallowFetchForDocWrittenScriptsInMainFrameOnSlowConnections=true --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --mojo-channel-token=1E3FBCE2314A1A5E6FCAAE3C897F0A35 --mojo-application-channel-token=7E78A3795CDA2D958BE6F8270600419A --channel="6012.3.1502586349\1254899425" --mojo-platform-channel-handle=4276 /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,BlockSmallPluginContent<PluginPowerSaverTiny,MaterialDesignUserManager<MaterialDesignUserManager,*PreconnectMore<PreconnectMore,*TranslateUI2016Q2<TranslateUI2016Q2,UsePasswordSeparatedSigninFlow<PasswordSeparatedSigninFlow --disable-features=DocumentWriteEvaluator<DisallowFetchForDocWrittenScriptsInMainFrame,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --force-fieldtrials=*AppBannerTriggering/site-engagement-eager/*AutomaticTabDiscarding/Enabled_Once_10-gen2/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/*ClientSideDetectionModel/Model0/*DisallowFetchForDocWrittenScriptsInMainFrame/DocumentWriteScriptBlockGroup_20160627/*EnableMediaRouter/Enabled/EnableWin32kLockDownMimeTypes/PPAPILockdown_Control/ExtensionDeveloperModeWarning/Enabled/*GFE/Default/*GoogleBrandedContextMenu/default/InstanceID/Enabled/MaterialDesignDownloads/Enabled/MaterialDesignUserManager/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/StandardR7/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*PasswordManagerSettingsMigration/Enable/PasswordSeparatedSigninFlow/Enabled/PasswordSmartBubble/3-Times/PluginPowerSaverTiny/Enabled/*PreconnectMore/Default/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/MonthlyPrompt/SSLCommonNameMismatchHandling/Enabled/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/*SafeBrowsingUpdateFrequency/Default/SignInPasswordPromo/Default/*StrictSecureCookies/Default/SyncHttpContentCompression/Enabled/TranslateUI2016Q2/DefaultTranslateUI2016Q2/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_75/*UMA-Uniformity-Trial-10-Percent/group_04/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_15/*UMA-Uniformity-Trial-50-Percent/default/WebBluetoothBlacklist/BlacklistUpdate1/ --primordial-pipe-token=0FCC9421DE612D1DC28B59C147083A23 --lang=cs --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --blink-settings=disallowFetchForDocWrittenScriptsInMainFrame=false,disallowFetchForDocWrittenScriptsInMainFrameOnSlowConnections=true --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --mojo-channel-token=9D04E831067F45CFE791249F9DED51FC --mojo-application-channel-token=0FCC9421DE612D1DC28B59C147083A23 --channel="6012.8.1063247056\1466729235" --mojo-platform-channel-handle=2608 /prefetch:1
taskeng.exe {B483CF12-BDC9-4BE9-9224-55F2A1A85735}
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe2_ Global\UsGthrCtrlFltPipeMssGthrPipe2 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 556 560 568 65536 564
"C:\Users\Saša\Downloads\FRST64.exe"
C:\WINDOWS\system32\svchost.exe -k GPSvcGroup
"C:\Users\Saša\Downloads\RSITx64.exe"
C:\WINDOWS\system32\wbem\wmiprvse.exe
======Scheduled tasks folder======
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\WINDOWS\tasks\HPCeeScheduleForSaša.job - C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe HPCeeScheduleForSaša (null)
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{45BBE08D-81C5-4A67-AF20-B2A077C67747}]
Browsing Protection by F-Secure - C:\Program Files (x86)\UPC Smart Guard\apps\CCF_Scanning\bin\browser\install\fs_ie_https\fs_ie_https64.dll [2016-09-23 890848]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{690EF1CF-5775-4CB3-A5B8-85A63FD0262B}]
Search by F-Secure - C:\Program Files (x86)\UPC Smart Guard\apps\SafeSearch\IE\FSSafeSearch64.dll [2016-09-09 2996704]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E76FD755-C1BA-4DCB-9F13-99BD91223ADE}]
HP Network Check Helper - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll [2016-07-04 440712]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3134413B-49B4-425C-98A5-893C1F195601}]
HP File Sanitizer - C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\IEBHO.dll [2014-02-05 129240]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{45BBE08D-81C5-4A67-AF20-B2A077C67747}]
Browsing Protection by F-Secure - C:\Program Files (x86)\UPC Smart Guard\apps\CCF_Scanning\bin\browser\install\fs_ie_https\fs_ie_https.dll [2016-09-23 783328]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{690EF1CF-5775-4CB3-A5B8-85A63FD0262B}]
Search by F-Secure - C:\Program Files (x86)\UPC Smart Guard\apps\SafeSearch\IE\FSSafeSearch.dll [2016-09-09 2184672]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E76FD755-C1BA-4DCB-9F13-99BD91223ADE}]
HP Network Check Helper - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2016-07-04 416320]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{B242FC32-2B60-48EA-A8E3-2E280EDBC48F} - Search by F-Secure Toolbar - C:\Program Files (x86)\UPC Smart Guard\apps\SafeSearch\IE\FSSafeSearch64.dll [2016-09-09 2996704]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{B242FC32-2B60-48EA-A8E3-2E280EDBC48F} - Search by F-Secure Toolbar - C:\Program Files (x86)\UPC Smart Guard\apps\SafeSearch\IE\FSSafeSearch.dll [2016-09-09 2184672]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [2014-11-11 7659224]
"ISCT Tray"=c:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTsysTray8.exe [2014-08-14 5860656]
"IAStorIcon"=C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe [2015-12-08 71168]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Skype"=C:\Program Files (x86)\Skype\Phone\Skype.exe [2016-08-17 29547136]
"BingSvc"=C:\Users\Saša\AppData\Local\Microsoft\BingSvc\BingSvc.exe [2015-11-05 144008]
"uTorrent"=C:\Users\Saša\AppData\Roaming\uTorrent\uTorrent.exe [2016-09-12 2139840]
"Steam"=C:\Program Files (x86)\Steam\steam.exe [2016-09-20 2858272]
"DAEMON Tools Lite Automount"=C:\Program Files\DAEMON Tools Lite\DTAgent.exe [2016-08-29 4299968]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
""= []
"QLBController"=C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe [2014-10-03 425608]
"HP Camera Driver_Monitor"=C:\Program Files (x86)\HP Camera Driver\monitor.exe []
"AccelerometerSysTrayApplet"=C:\Program Files (x86)\Hewlett-Packard\HP 3D DriveGuard\AccelerometerST.exe [2014-04-01 126240]
"CLMLServer_For_P2G8"=c:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe [2013-08-05 111576]
"CLVirtualDrive"=c:\Program Files (x86)\CyberLink\Power2Go8\VirtualDrive.exe [2013-08-07 490760]
"HP File Sanitizer"=C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\Coreshredder.exe [2014-02-05 2213592]
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [2015-08-19 767176]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa]
"notification packages"=DPPassFilter
scecli
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktopChanges"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"VIDC.YUY2"=msyuv.dll
"vidc.i420"=iyuv_32.dll
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"VIDC.YVYU"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"vidc.msvc"=msvidc32.dll
"MSVideo8"=VfWWDM32.dll
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"aux1"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2016-10-07 11:54:37 ----D---- C:\Program Files\trend micro
2016-10-07 11:54:36 ----D---- C:\rsit
2016-10-07 11:53:45 ----D---- C:\FRST
2016-10-04 21:00:03 ----D---- C:\Heroes of Might and Magic V - Collectors Edition
2016-10-04 19:04:51 ----D---- C:\Program Files (x86)\2K Games
2016-10-03 21:24:52 ----D---- C:\Program Files (x86)\directx
2016-10-03 21:18:45 ----D---- C:\Users\Saša\AppData\Roaming\WinRAR
2016-10-03 21:18:28 ----D---- C:\Program Files\WinRAR
2016-09-16 20:15:05 ----D---- C:\ProgramData\ATI
2016-09-16 20:11:35 ----A---- C:\WINDOWS\system32\{F33C3B9B-72AF-418A-B3FD-560646F7CDA2}.bat
2016-09-15 14:27:36 ----A---- C:\WINDOWS\system32\SynTPCo20.dll
2016-09-15 14:27:36 ----A---- C:\WINDOWS\system32\SynTPAPI.dll
2016-09-15 14:27:36 ----A---- C:\WINDOWS\system32\drivers\SynTP.sys
2016-09-15 14:27:35 ----A---- C:\WINDOWS\SYSWOW64\SynCom.dll
2016-09-15 14:22:04 ----A---- C:\WINDOWS\SYSWOW64\IntelOpenCL32.dll
2016-09-15 14:22:04 ----A---- C:\WINDOWS\SYSWOW64\IntelCpHeciSvc.exe
2016-09-15 14:22:04 ----A---- C:\WINDOWS\SYSWOW64\Intel_OpenCL_ICD32.dll
2016-09-15 14:22:04 ----A---- C:\WINDOWS\system32\MetroIntelGenericUIFramework.dll
2016-09-15 14:22:04 ----A---- C:\WINDOWS\system32\IntelWiDiWinNextAgent64.dll
2016-09-15 14:22:04 ----A---- C:\WINDOWS\system32\IntelWiDiVAD64.exe
2016-09-15 14:22:04 ----A---- C:\WINDOWS\system32\IntelWiDiUtils64.dll
2016-09-15 14:22:04 ----A---- C:\WINDOWS\system32\IntelWiDiUMS64.exe
2016-09-15 14:22:04 ----A---- C:\WINDOWS\system32\IntelWiDiSilenceFilter64.dll
2016-09-15 14:22:04 ----A---- C:\WINDOWS\system32\IntelWiDiSecureSourceFilter64.dll
2016-09-15 14:22:04 ----A---- C:\WINDOWS\system32\IntelWiDiMux64.dll
2016-09-15 14:22:04 ----A---- C:\WINDOWS\system32\IntelWiDiMCUMD64.dll
2016-09-15 14:22:04 ----A---- C:\WINDOWS\system32\IntelWiDiLogServer64.dll
2016-09-15 14:22:04 ----A---- C:\WINDOWS\system32\IntelWiDiDDEAgent64.dll
2016-09-15 14:22:04 ----A---- C:\WINDOWS\system32\IntelWiDiAudioFilter64.dll
2016-09-15 14:22:04 ----A---- C:\WINDOWS\system32\IntelWiDiAAC64.dll
2016-09-15 14:22:04 ----A---- C:\WINDOWS\system32\IntelOpenCL64.dll
2016-09-15 14:22:04 ----A---- C:\WINDOWS\system32\Intel_OpenCL_ICD64.dll
2016-09-15 14:22:04 ----A---- C:\WINDOWS\system32\igfxCoIn_v4280.dll
2016-09-15 14:22:02 ----A---- C:\WINDOWS\SYSWOW64\iglhsip32.dll
2016-09-15 14:22:02 ----A---- C:\WINDOWS\SYSWOW64\iglhcp32.dll
2016-09-15 14:22:02 ----A---- C:\WINDOWS\system32\iglhsip64.dll
2016-09-15 14:22:02 ----A---- C:\WINDOWS\system32\iglhcp64.dll
2016-09-15 14:22:02 ----A---- C:\WINDOWS\system32\igfxOSP.dll
2016-09-15 14:22:02 ----A---- C:\WINDOWS\system32\igfxLHMLibv2_0.dll
2016-09-15 14:22:01 ----A---- C:\WINDOWS\SYSWOW64\igfxexps32.dll
2016-09-15 14:22:01 ----A---- C:\WINDOWS\system32\igfxLHMLib.dll
2016-09-15 14:22:01 ----A---- C:\WINDOWS\system32\igfxext.exe
2016-09-15 14:22:01 ----A---- C:\WINDOWS\system32\igfxexps.dll
2016-09-15 14:22:01 ----A---- C:\WINDOWS\system32\igfxEMLibv2_0.dll
2016-09-15 14:22:01 ----A---- C:\WINDOWS\system32\igfxEMLib.dll
2016-09-15 14:22:01 ----A---- C:\WINDOWS\system32\igfxDILibv2_0.dll
2016-09-15 14:22:01 ----A---- C:\WINDOWS\system32\igfxDILib.dll
2016-09-15 14:22:00 ----A---- C:\WINDOWS\SYSWOW64\igfxcmrt32.dll
2016-09-15 14:22:00 ----A---- C:\WINDOWS\SYSWOW64\igfxcmjit32.dll
2016-09-15 14:22:00 ----A---- C:\WINDOWS\SYSWOW64\igfx11cmrt32.dll
2016-09-15 14:22:00 ----A---- C:\WINDOWS\system32\igfxDHLibv2_0.dll
2016-09-15 14:22:00 ----A---- C:\WINDOWS\system32\igfxDHLib.dll
2016-09-15 14:22:00 ----A---- C:\WINDOWS\system32\igfxCUIServicePS.dll
2016-09-15 14:22:00 ----A---- C:\WINDOWS\system32\igfxcmrt64.dll
2016-09-15 14:22:00 ----A---- C:\WINDOWS\system32\igfxcmjit64.dll
2016-09-15 14:22:00 ----A---- C:\WINDOWS\system32\igfx11cmrt64.dll
2016-09-15 14:21:56 ----A---- C:\WINDOWS\SYSWOW64\igdrcl32.dll
2016-09-15 14:21:56 ----A---- C:\WINDOWS\SYSWOW64\igdmd32.dll
2016-09-15 14:21:56 ----A---- C:\WINDOWS\SYSWOW64\igdfcl32.dll
2016-09-15 14:21:56 ----A---- C:\WINDOWS\SYSWOW64\igdde32.dll
2016-09-15 14:21:56 ----A---- C:\WINDOWS\SYSWOW64\igdbcl32.dll
2016-09-15 14:21:56 ----A---- C:\WINDOWS\SYSWOW64\igdail32.dll
2016-09-15 14:21:56 ----A---- C:\WINDOWS\SYSWOW64\igd11dxva32.dll
2016-09-15 14:21:56 ----A---- C:\WINDOWS\SYSWOW64\igd10idpp32.dll
2016-09-15 14:21:56 ----A---- C:\WINDOWS\SYSWOW64\ig8icd32.dll
2016-09-15 14:21:56 ----A---- C:\WINDOWS\system32\igdrcl64.dll
2016-09-15 14:21:56 ----A---- C:\WINDOWS\system32\igdmd64.dll
2016-09-15 14:21:56 ----A---- C:\WINDOWS\system32\igdfcl64.dll
2016-09-15 14:21:56 ----A---- C:\WINDOWS\system32\igdde64.dll
2016-09-15 14:21:56 ----A---- C:\WINDOWS\system32\igdbcl64.dll
2016-09-15 14:21:56 ----A---- C:\WINDOWS\system32\igdail64.dll
2016-09-15 14:21:56 ----A---- C:\WINDOWS\system32\igd11dxva64.dll
2016-09-15 14:21:56 ----A---- C:\WINDOWS\system32\igd10idpp64.dll
2016-09-15 14:21:56 ----A---- C:\WINDOWS\system32\ig8icd64.dll
2016-09-15 14:21:56 ----A---- C:\WINDOWS\system32\Gfxv4_0.exe
2016-09-15 14:21:56 ----A---- C:\WINDOWS\system32\Gfxv2_0.exe
2016-09-15 14:21:56 ----A---- C:\WINDOWS\system32\GfxUIEx.exe
2016-09-15 14:21:56 ----A---- C:\WINDOWS\system32\GfxResources.dll
2016-09-15 14:21:56 ----A---- C:\WINDOWS\system32\drivers\IntcDAud.sys
2016-09-15 14:21:56 ----A---- C:\WINDOWS\system32\drivers\igdkmd64.sys
2016-09-15 14:21:56 ----A---- C:\WINDOWS\system32\DPTopologyAppv2_0.exe
2016-09-15 14:21:56 ----A---- C:\WINDOWS\system32\DPTopologyApp.exe
2016-09-15 14:21:56 ----A---- C:\WINDOWS\system32\difx64.exe
2016-09-15 14:09:12 ----A---- C:\WINDOWS\SYSWOW64\hsa-thunk.dll
2016-09-15 14:09:12 ----A---- C:\WINDOWS\SYSWOW64\detoured.dll
2016-09-15 14:09:12 ----A---- C:\WINDOWS\SYSWOW64\atiuxpag.dll
2016-09-15 14:09:12 ----A---- C:\WINDOWS\SYSWOW64\atiumdva.dll
2016-09-15 14:09:12 ----A---- C:\WINDOWS\SYSWOW64\atiumdag.dll
2016-09-15 14:09:12 ----A---- C:\WINDOWS\SYSWOW64\atiu9pag.dll
2016-09-15 14:09:12 ----A---- C:\WINDOWS\SYSWOW64\atisamu32.dll
2016-09-15 14:09:12 ----A---- C:\WINDOWS\SYSWOW64\atioglxx.dll
2016-09-15 14:09:12 ----A---- C:\WINDOWS\SYSWOW64\atimpc32.dll
2016-09-15 14:09:12 ----A---- C:\WINDOWS\system32\hsa-thunk64.dll
2016-09-15 14:09:12 ----A---- C:\WINDOWS\system32\drivers\atikmpag.sys
2016-09-15 14:09:12 ----A---- C:\WINDOWS\system32\detoured.dll
2016-09-15 14:09:12 ----A---- C:\WINDOWS\system32\coinst_15.20.dll
2016-09-15 14:09:12 ----A---- C:\WINDOWS\system32\clinfo.exe
2016-09-15 14:09:12 ----A---- C:\WINDOWS\system32\ativvaxy_vi_nd.dat
2016-09-15 14:09:12 ----A---- C:\WINDOWS\system32\ativvaxy_vi.dat
2016-09-15 14:09:12 ----A---- C:\WINDOWS\system32\ativvaxy_FJ_nd.dat
2016-09-15 14:09:12 ----A---- C:\WINDOWS\system32\ativvaxy_FJ.dat
2016-09-15 14:09:12 ----A---- C:\WINDOWS\system32\ativvaxy_cz_nd.dat
2016-09-15 14:09:12 ----A---- C:\WINDOWS\system32\ativvaxy_cik_nd.dat
2016-09-15 14:09:12 ----A---- C:\WINDOWS\system32\ativvaxy_cik.dat
2016-09-15 14:09:12 ----A---- C:\WINDOWS\system32\ativce03.dat
2016-09-15 14:09:12 ----A---- C:\WINDOWS\system32\ativce02.dat
2016-09-15 14:09:12 ----A---- C:\WINDOWS\system32\atiuxp64.dll
2016-09-15 14:09:12 ----A---- C:\WINDOWS\system32\atiumd6a.dll
2016-09-15 14:09:12 ----A---- C:\WINDOWS\system32\atiumd64.dll
2016-09-15 14:09:12 ----A---- C:\WINDOWS\system32\atiu9p64.dll
2016-09-15 14:09:12 ----A---- C:\WINDOWS\system32\atitmm64.dll
2016-09-15 14:09:12 ----A---- C:\WINDOWS\system32\atisamu64.dll
2016-09-15 14:09:12 ----A---- C:\WINDOWS\system32\ATIODE.exe
2016-09-15 14:09:12 ----A---- C:\WINDOWS\system32\ATIODCLI.exe
2016-09-15 14:09:12 ----A---- C:\WINDOWS\system32\atio6axx.dll
2016-09-15 14:09:12 ----A---- C:\WINDOWS\system32\atimuixx.dll
2016-09-15 14:09:12 ----A---- C:\WINDOWS\system32\atimpc64.dll
2016-09-15 14:09:08 ----A---- C:\WINDOWS\SYSWOW64\atiglpxx.dll
2016-09-15 14:09:08 ----A---- C:\WINDOWS\SYSWOW64\atigktxx.dll
2016-09-15 14:09:08 ----A---- C:\WINDOWS\system32\drivers\atikmdag.sys
2016-09-15 14:09:08 ----A---- C:\WINDOWS\system32\atiicdxx.dat
2016-09-15 14:09:08 ----A---- C:\WINDOWS\system32\atiglpxx.dll
2016-09-15 14:09:07 ----A---- C:\WINDOWS\SYSWOW64\atieah32.exe
2016-09-15 14:09:07 ----A---- C:\WINDOWS\system32\atig6txx.dll
2016-09-15 14:09:07 ----A---- C:\WINDOWS\system32\atig6pxx.dll
2016-09-15 14:09:07 ----A---- C:\WINDOWS\system32\atiesrxx.exe
2016-09-15 14:09:07 ----A---- C:\WINDOWS\system32\atieclxx.exe
2016-09-15 14:09:07 ----A---- C:\WINDOWS\system32\atieah64.exe
2016-09-15 14:09:06 ----A---- C:\WINDOWS\SYSWOW64\atidxx32.dll
2016-09-15 14:09:06 ----A---- C:\WINDOWS\system32\atidxx64.dll
2016-09-15 14:09:05 ----A---- C:\WINDOWS\SYSWOW64\OpenCL.dll
2016-09-15 14:09:05 ----A---- C:\WINDOWS\SYSWOW64\aticfx32.dll
2016-09-15 14:09:05 ----A---- C:\WINDOWS\SYSWOW64\aticalrt.dll
2016-09-15 14:09:05 ----A---- C:\WINDOWS\SYSWOW64\aticaldd.dll
2016-09-15 14:09:05 ----A---- C:\WINDOWS\SYSWOW64\aticalcl.dll
2016-09-15 14:09:05 ----A---- C:\WINDOWS\SYSWOW64\atiadlxy.dll
2016-09-15 14:09:05 ----A---- C:\WINDOWS\SYSWOW64\atiadlxx.dll
2016-09-15 14:09:05 ----A---- C:\WINDOWS\SYSWOW64\amdpcom32.dll
2016-09-15 14:09:05 ----A---- C:\WINDOWS\SYSWOW64\amdocl_ld32.exe
2016-09-15 14:09:05 ----A---- C:\WINDOWS\SYSWOW64\amdocl_as32.exe
2016-09-15 14:09:05 ----A---- C:\WINDOWS\system32\OpenCL.dll
2016-09-15 14:09:05 ----A---- C:\WINDOWS\system32\drivers\ati2erec.dll
2016-09-15 14:09:05 ----A---- C:\WINDOWS\system32\aticalrt64.dll
2016-09-15 14:09:05 ----A---- C:\WINDOWS\system32\aticaldd64.dll
2016-09-15 14:09:05 ----A---- C:\WINDOWS\system32\aticalcl64.dll
2016-09-15 14:09:05 ----A---- C:\WINDOWS\system32\atiapfxx.exe
2016-09-15 14:09:05 ----A---- C:\WINDOWS\system32\amdpcom64.dll
2016-09-15 14:09:05 ----A---- C:\WINDOWS\system32\amdocl_ld64.exe
2016-09-15 14:09:05 ----A---- C:\WINDOWS\system32\amdocl_as64.exe
2016-09-15 14:09:04 ----A---- C:\WINDOWS\SYSWOW64\amdocl12cl.dll
2016-09-15 14:09:04 ----A---- C:\WINDOWS\SYSWOW64\amdocl.dll
2016-09-15 14:09:04 ----A---- C:\WINDOWS\SYSWOW64\amdmmcl.dll
2016-09-15 14:09:04 ----A---- C:\WINDOWS\system32\amdocl64.dll
2016-09-15 14:09:04 ----A---- C:\WINDOWS\system32\amdocl12cl64.dll
2016-09-15 14:09:04 ----A---- C:\WINDOWS\system32\amdmmcl6.dll
2016-09-15 14:09:04 ----A---- C:\WINDOWS\system32\amdmiracast.dll
2016-09-15 14:09:03 ----A---- C:\WINDOWS\SYSWOW64\amdhdl32.dll
2016-09-15 14:09:03 ----A---- C:\WINDOWS\SYSWOW64\amdhcp32.dll
2016-09-15 14:09:03 ----A---- C:\WINDOWS\SYSWOW64\amdgfxinfo32.dll
2016-09-15 14:09:03 ----A---- C:\WINDOWS\SYSWOW64\amdave32.dll
2016-09-15 14:09:03 ----A---- C:\WINDOWS\system32\drivers\amdacpksd.sys
2016-09-15 14:09:03 ----A---- C:\WINDOWS\system32\amdicdxx.dat
2016-09-15 14:09:03 ----A---- C:\WINDOWS\system32\amdhdl64.dll
2016-09-15 14:09:03 ----A---- C:\WINDOWS\system32\amdhcp64.dll
2016-09-15 14:09:03 ----A---- C:\WINDOWS\system32\amdgfxinfo64.dll
2016-09-15 14:09:03 ----A---- C:\WINDOWS\system32\amde31a.dat
2016-09-15 14:09:03 ----A---- C:\WINDOWS\system32\amdave64.dll
2016-09-15 03:14:03 ----A---- C:\WINDOWS\SYSWOW64\XAudio2_7.dll
2016-09-15 03:14:03 ----A---- C:\WINDOWS\SYSWOW64\XAPOFX1_5.dll
2016-09-15 03:14:03 ----A---- C:\WINDOWS\SYSWOW64\xactengine3_7.dll
2016-09-15 03:14:03 ----A---- C:\WINDOWS\SYSWOW64\d3dcsx_43.dll
2016-09-15 03:14:03 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_43.dll
2016-09-15 03:14:03 ----A---- C:\WINDOWS\system32\XAudio2_7.dll
2016-09-15 03:14:03 ----A---- C:\WINDOWS\system32\XAPOFX1_5.dll
2016-09-15 03:14:03 ----A---- C:\WINDOWS\system32\xactengine3_7.dll
2016-09-15 03:14:03 ----A---- C:\WINDOWS\system32\d3dcsx_43.dll
2016-09-15 03:14:03 ----A---- C:\WINDOWS\system32\D3DCompiler_43.dll
2016-09-15 03:14:02 ----A---- C:\WINDOWS\SYSWOW64\D3DX9_43.dll
2016-09-15 03:14:02 ----A---- C:\WINDOWS\SYSWOW64\d3dx11_43.dll
2016-09-15 03:14:02 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_43.dll
2016-09-15 03:14:02 ----A---- C:\WINDOWS\system32\D3DX9_43.dll
2016-09-15 03:14:02 ----A---- C:\WINDOWS\system32\d3dx11_43.dll
2016-09-15 03:14:02 ----A---- C:\WINDOWS\system32\d3dx10_43.dll
2016-09-15 03:14:01 ----A---- C:\WINDOWS\SYSWOW64\XAudio2_6.dll
2016-09-15 03:14:01 ----A---- C:\WINDOWS\SYSWOW64\XAPOFX1_4.dll
2016-09-15 03:14:01 ----A---- C:\WINDOWS\SYSWOW64\xactengine3_6.dll
2016-09-15 03:14:01 ----A---- C:\WINDOWS\system32\XAudio2_6.dll
2016-09-15 03:14:01 ----A---- C:\WINDOWS\system32\XAPOFX1_4.dll
2016-09-15 03:14:01 ----A---- C:\WINDOWS\system32\xactengine3_6.dll
2016-09-15 03:14:00 ----A---- C:\WINDOWS\SYSWOW64\XAudio2_5.dll
2016-09-15 03:14:00 ----A---- C:\WINDOWS\SYSWOW64\X3DAudio1_7.dll
2016-09-15 03:14:00 ----A---- C:\WINDOWS\system32\XAudio2_5.dll
2016-09-15 03:14:00 ----A---- C:\WINDOWS\system32\X3DAudio1_7.dll
2016-09-15 03:13:59 ----A---- C:\WINDOWS\SYSWOW64\xactengine3_5.dll
2016-09-15 03:13:59 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_42.dll
2016-09-15 03:13:59 ----A---- C:\WINDOWS\system32\xactengine3_5.dll
2016-09-15 03:13:59 ----A---- C:\WINDOWS\system32\D3DCompiler_42.dll
2016-09-15 03:13:58 ----A---- C:\WINDOWS\SYSWOW64\d3dcsx_42.dll
2016-09-15 03:13:58 ----A---- C:\WINDOWS\system32\d3dcsx_42.dll
2016-09-15 03:13:57 ----A---- C:\WINDOWS\SYSWOW64\D3DX9_42.dll
2016-09-15 03:13:57 ----A---- C:\WINDOWS\SYSWOW64\d3dx11_42.dll
2016-09-15 03:13:57 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_42.dll
2016-09-15 03:13:57 ----A---- C:\WINDOWS\system32\D3DX9_42.dll
2016-09-15 03:13:57 ----A---- C:\WINDOWS\system32\d3dx11_42.dll
2016-09-15 03:13:57 ----A---- C:\WINDOWS\system32\d3dx10_42.dll
2016-09-15 03:13:56 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_41.dll
2016-09-15 03:13:56 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_41.dll
2016-09-15 03:13:56 ----A---- C:\WINDOWS\system32\d3dx10_41.dll
2016-09-15 03:13:56 ----A---- C:\WINDOWS\system32\D3DCompiler_41.dll
2016-09-15 03:13:54 ----A---- C:\WINDOWS\SYSWOW64\XAudio2_4.dll
2016-09-15 03:13:54 ----A---- C:\WINDOWS\SYSWOW64\XAPOFX1_3.dll
2016-09-15 03:13:54 ----A---- C:\WINDOWS\SYSWOW64\D3DX9_41.dll
2016-09-15 03:13:54 ----A---- C:\WINDOWS\system32\XAudio2_4.dll
2016-09-15 03:13:54 ----A---- C:\WINDOWS\system32\XAPOFX1_3.dll
2016-09-15 03:13:54 ----A---- C:\WINDOWS\system32\D3DX9_41.dll
2016-09-15 03:13:53 ----A---- C:\WINDOWS\SYSWOW64\xactengine3_4.dll
2016-09-15 03:13:53 ----A---- C:\WINDOWS\system32\xactengine3_4.dll
2016-09-15 03:13:52 ----A---- C:\WINDOWS\SYSWOW64\X3DAudio1_6.dll
2016-09-15 03:13:52 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_40.dll
2016-09-15 03:13:52 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_40.dll
2016-09-15 03:13:52 ----A---- C:\WINDOWS\system32\X3DAudio1_6.dll
2016-09-15 03:13:52 ----A---- C:\WINDOWS\system32\d3dx10_40.dll
2016-09-15 03:13:52 ----A---- C:\WINDOWS\system32\D3DCompiler_40.dll
2016-09-15 03:13:50 ----A---- C:\WINDOWS\SYSWOW64\XAudio2_3.dll
2016-09-15 03:13:50 ----A---- C:\WINDOWS\SYSWOW64\XAPOFX1_2.dll
2016-09-15 03:13:50 ----A---- C:\WINDOWS\SYSWOW64\D3DX9_40.dll
2016-09-15 03:13:50 ----A---- C:\WINDOWS\system32\XAudio2_3.dll
2016-09-15 03:13:50 ----A---- C:\WINDOWS\system32\XAPOFX1_2.dll
2016-09-15 03:13:50 ----A---- C:\WINDOWS\system32\D3DX9_40.dll
2016-09-15 03:13:49 ----A---- C:\WINDOWS\SYSWOW64\xactengine3_3.dll
2016-09-15 03:13:49 ----A---- C:\WINDOWS\SYSWOW64\X3DAudio1_5.dll
2016-09-15 03:13:49 ----A---- C:\WINDOWS\system32\xactengine3_3.dll
2016-09-15 03:13:49 ----A---- C:\WINDOWS\system32\X3DAudio1_5.dll
2016-09-15 03:13:48 ----A---- C:\WINDOWS\SYSWOW64\xactengine3_2.dll
2016-09-15 03:13:48 ----A---- C:\WINDOWS\system32\XAudio2_2.dll
2016-09-15 03:13:48 ----A---- C:\WINDOWS\system32\XAPOFX1_1.dll
2016-09-15 03:13:48 ----A---- C:\WINDOWS\system32\xactengine3_2.dll
2016-09-15 03:13:47 ----A---- C:\WINDOWS\system32\d3dx10_39.dll
2016-09-15 03:13:47 ----A---- C:\WINDOWS\system32\D3DCompiler_39.dll
2016-09-15 03:13:46 ----A---- C:\WINDOWS\SYSWOW64\XAudio2_1.dll
2016-09-15 03:13:46 ----A---- C:\WINDOWS\SYSWOW64\XAPOFX1_0.dll
2016-09-15 03:13:46 ----A---- C:\WINDOWS\system32\XAudio2_1.dll
2016-09-15 03:13:46 ----A---- C:\WINDOWS\system32\XAPOFX1_0.dll
2016-09-15 03:13:46 ----A---- C:\WINDOWS\system32\D3DX9_39.dll
2016-09-15 03:13:45 ----A---- C:\WINDOWS\SYSWOW64\xactengine3_1.dll
2016-09-15 03:13:45 ----A---- C:\WINDOWS\SYSWOW64\X3DAudio1_4.dll
2016-09-15 03:13:45 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_38.dll
2016-09-15 03:13:45 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_38.dll
2016-09-15 03:13:45 ----A---- C:\WINDOWS\system32\xactengine3_1.dll
2016-09-15 03:13:45 ----A---- C:\WINDOWS\system32\X3DAudio1_4.dll
2016-09-15 03:13:45 ----A---- C:\WINDOWS\system32\d3dx10_38.dll
2016-09-15 03:13:45 ----A---- C:\WINDOWS\system32\D3DCompiler_38.dll
2016-09-15 03:13:43 ----A---- C:\WINDOWS\SYSWOW64\D3DX9_38.dll
2016-09-15 03:13:43 ----A---- C:\WINDOWS\system32\D3DX9_38.dll
2016-09-15 03:13:42 ----A---- C:\WINDOWS\SYSWOW64\XAudio2_0.dll
2016-09-15 03:13:42 ----A---- C:\WINDOWS\SYSWOW64\xactengine3_0.dll
2016-09-15 03:13:42 ----A---- C:\WINDOWS\SYSWOW64\X3DAudio1_3.dll
2016-09-15 03:13:42 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_37.dll
2016-09-15 03:13:42 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_37.dll
2016-09-15 03:13:42 ----A---- C:\WINDOWS\system32\XAudio2_0.dll
2016-09-15 03:13:42 ----A---- C:\WINDOWS\system32\xactengine3_0.dll
2016-09-15 03:13:42 ----A---- C:\WINDOWS\system32\X3DAudio1_3.dll
2016-09-15 03:13:42 ----A---- C:\WINDOWS\system32\d3dx10_37.dll
2016-09-15 03:13:42 ----A---- C:\WINDOWS\system32\D3DCompiler_37.dll
2016-09-15 03:13:41 ----A---- C:\WINDOWS\SYSWOW64\D3DX9_37.dll
2016-09-15 03:13:41 ----A---- C:\WINDOWS\system32\D3DX9_37.dll
2016-09-15 03:13:40 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_10.dll
2016-09-15 03:13:40 ----A---- C:\WINDOWS\system32\xactengine2_10.dll
2016-09-15 03:13:39 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_36.dll
2016-09-15 03:13:39 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_36.dll
2016-09-15 03:13:39 ----A---- C:\WINDOWS\system32\d3dx10_36.dll
2016-09-15 03:13:39 ----A---- C:\WINDOWS\system32\D3DCompiler_36.dll
2016-09-15 03:13:38 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_9.dll
2016-09-15 03:13:38 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_36.dll
2016-09-15 03:13:38 ----A---- C:\WINDOWS\system32\xactengine2_9.dll
2016-09-15 03:13:38 ----A---- C:\WINDOWS\system32\d3dx9_36.dll
2016-09-15 03:13:37 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_35.dll
2016-09-15 03:13:37 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_35.dll
2016-09-15 03:13:37 ----A---- C:\WINDOWS\system32\d3dx10_35.dll
2016-09-15 03:13:37 ----A---- C:\WINDOWS\system32\D3DCompiler_35.dll
2016-09-15 03:13:36 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_8.dll
2016-09-15 03:13:36 ----A---- C:\WINDOWS\SYSWOW64\X3DAudio1_2.dll
2016-09-15 03:13:36 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_35.dll
2016-09-15 03:13:36 ----A---- C:\WINDOWS\system32\xactengine2_8.dll
2016-09-15 03:13:36 ----A---- C:\WINDOWS\system32\X3DAudio1_2.dll
2016-09-15 03:13:36 ----A---- C:\WINDOWS\system32\d3dx9_35.dll
2016-09-15 03:13:35 ----A---- C:\WINDOWS\SYSWOW64\xinput1_3.dll
2016-09-15 03:13:35 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_34.dll
2016-09-15 03:13:35 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_34.dll
2016-09-15 03:13:35 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_34.dll
2016-09-15 03:13:35 ----A---- C:\WINDOWS\system32\xinput1_3.dll
2016-09-15 03:13:35 ----A---- C:\WINDOWS\system32\d3dx9_34.dll
2016-09-15 03:13:35 ----A---- C:\WINDOWS\system32\d3dx10_34.dll
2016-09-15 03:13:35 ----A---- C:\WINDOWS\system32\D3DCompiler_34.dll
2016-09-15 03:13:34 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_7.dll
2016-09-15 03:13:34 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_33.dll
2016-09-15 03:13:34 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_33.dll
2016-09-15 03:13:34 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_33.dll
2016-09-15 03:13:34 ----A---- C:\WINDOWS\system32\xactengine2_7.dll
2016-09-15 03:13:34 ----A---- C:\WINDOWS\system32\d3dx9_33.dll
2016-09-15 03:13:34 ----A---- C:\WINDOWS\system32\d3dx10_33.dll
2016-09-15 03:13:34 ----A---- C:\WINDOWS\system32\D3DCompiler_33.dll
2016-09-15 03:13:33 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_6.dll
2016-09-15 03:13:33 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_5.dll
2016-09-15 03:13:33 ----A---- C:\WINDOWS\SYSWOW64\d3dx10.dll
2016-09-15 03:13:33 ----A---- C:\WINDOWS\system32\xactengine2_6.dll
2016-09-15 03:13:33 ----A---- C:\WINDOWS\system32\xactengine2_5.dll
2016-09-15 03:13:33 ----A---- C:\WINDOWS\system32\d3dx10.dll
2016-09-15 03:13:32 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_32.dll
2016-09-15 03:13:32 ----A---- C:\WINDOWS\system32\d3dx9_32.dll
2016-09-15 03:13:31 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_4.dll
2016-09-15 03:13:31 ----A---- C:\WINDOWS\SYSWOW64\x3daudio1_1.dll
2016-09-15 03:13:31 ----A---- C:\WINDOWS\system32\xactengine2_4.dll
2016-09-15 03:13:31 ----A---- C:\WINDOWS\system32\x3daudio1_1.dll
2016-09-15 03:13:30 ----A---- C:\WINDOWS\SYSWOW64\xinput1_2.dll
2016-09-15 03:13:30 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_3.dll
2016-09-15 03:13:30 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_31.dll
2016-09-15 03:13:30 ----A---- C:\WINDOWS\system32\xinput1_2.dll
2016-09-15 03:13:30 ----A---- C:\WINDOWS\system32\xactengine2_3.dll
2016-09-15 03:13:30 ----A---- C:\WINDOWS\system32\d3dx9_31.dll
2016-09-15 03:13:29 ----A---- C:\WINDOWS\SYSWOW64\xinput1_1.dll
2016-09-15 03:13:29 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_2.dll
2016-09-15 03:13:29 ----A---- C:\WINDOWS\system32\xinput1_1.dll
2016-09-15 03:13:29 ----A---- C:\WINDOWS\system32\xactengine2_2.dll
2016-09-15 03:13:28 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_1.dll
2016-09-15 03:13:28 ----A---- C:\WINDOWS\system32\xactengine2_1.dll
2016-09-15 03:13:24 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_30.dll
2016-09-15 03:13:24 ----A---- C:\WINDOWS\system32\d3dx9_30.dll
2016-09-15 03:13:23 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_0.dll
2016-09-15 03:13:23 ----A---- C:\WINDOWS\SYSWOW64\x3daudio1_0.dll
2016-09-15 03:13:23 ----A---- C:\WINDOWS\system32\xactengine2_0.dll
2016-09-15 03:13:23 ----A---- C:\WINDOWS\system32\x3daudio1_0.dll
2016-09-15 03:13:22 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_29.dll
2016-09-15 03:13:22 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_28.dll
2016-09-15 03:13:22 ----A---- C:\WINDOWS\system32\d3dx9_29.dll
2016-09-15 03:13:22 ----A---- C:\WINDOWS\system32\d3dx9_28.dll
2016-09-15 03:13:21 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_27.dll
2016-09-15 03:13:21 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_26.dll
2016-09-15 03:13:21 ----A---- C:\WINDOWS\system32\d3dx9_27.dll
2016-09-15 03:13:21 ----A---- C:\WINDOWS\system32\d3dx9_26.dll
2016-09-15 03:13:20 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_25.dll
2016-09-15 03:13:20 ----A---- C:\WINDOWS\system32\d3dx9_25.dll
2016-09-15 03:13:19 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_24.dll
2016-09-15 03:13:19 ----A---- C:\WINDOWS\system32\d3dx9_24.dll
2016-09-14 21:03:18 ----D---- C:\Users\Saša\AppData\Roaming\TS3Client
2016-09-14 20:56:12 ----D---- C:\Program Files (x86)\TeamSpeak 3 Client
2016-09-14 08:39:08 ----A---- C:\WINDOWS\system32\Windows.Data.Pdf.dll
2016-09-14 08:39:08 ----A---- C:\WINDOWS\system32\glcndFilter.dll
2016-09-14 08:39:07 ----A---- C:\WINDOWS\SYSWOW64\Windows.Data.Pdf.dll
2016-09-14 08:39:07 ----A---- C:\WINDOWS\SYSWOW64\glcndFilter.dll
2016-09-14 08:39:05 ----A---- C:\WINDOWS\SYSWOW64\oleaut32.dll
2016-09-14 08:39:05 ----A---- C:\WINDOWS\system32\oleaut32.dll
2016-09-14 08:39:04 ----A---- C:\WINDOWS\system32\drivers\srvnet.sys
2016-09-14 08:39:04 ----A---- C:\WINDOWS\system32\drivers\srv2.sys
2016-09-14 08:39:04 ----A---- C:\WINDOWS\system32\drivers\srv.sys
2016-09-14 08:38:59 ----A---- C:\WINDOWS\SYSWOW64\schannel.dll
2016-09-14 08:38:59 ----A---- C:\WINDOWS\system32\schannel.dll
2016-09-14 08:38:25 ----A---- C:\WINDOWS\system32\mshtml.dll
2016-09-14 08:38:21 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2016-09-14 08:38:20 ----A---- C:\WINDOWS\system32\jscript9.dll
2016-09-14 08:38:19 ----A---- C:\WINDOWS\system32\ieframe.dll
2016-09-14 08:38:18 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2016-09-14 08:38:18 ----A---- C:\WINDOWS\system32\actxprxy.dll
2016-09-14 08:38:17 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2016-09-14 08:38:17 ----A---- C:\WINDOWS\SYSWOW64\actxprxy.dll
2016-09-14 08:38:17 ----A---- C:\WINDOWS\system32\wininet.dll
2016-09-14 08:38:16 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2016-09-14 08:38:16 ----A---- C:\WINDOWS\SYSWOW64\vbscript.dll
2016-09-14 08:38:16 ----A---- C:\WINDOWS\system32\vbscript.dll
2016-09-14 08:38:15 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2016-09-14 08:38:15 ----A---- C:\WINDOWS\system32\iertutil.dll
2016-09-14 08:38:14 ----A---- C:\WINDOWS\system32\urlmon.dll
2016-09-14 08:38:13 ----A---- C:\WINDOWS\system32\msfeeds.dll
2016-09-14 08:38:13 ----A---- C:\WINDOWS\system32\jscript.dll
2016-09-14 08:38:13 ----A---- C:\WINDOWS\system32\inetcomm.dll
2016-09-14 08:38:12 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2016-09-14 08:38:12 ----A---- C:\WINDOWS\SYSWOW64\msfeeds.dll
2016-09-14 08:38:12 ----A---- C:\WINDOWS\SYSWOW64\jscript.dll
2016-09-14 08:38:12 ----A---- C:\WINDOWS\SYSWOW64\inetcomm.dll
2016-09-14 08:38:12 ----A---- C:\WINDOWS\SYSWOW64\ieapfltr.dll
2016-09-14 08:38:12 ----A---- C:\WINDOWS\system32\ieapfltr.dll
2016-09-14 08:37:50 ----A---- C:\WINDOWS\SYSWOW64\dnsapi.dll
2016-09-14 08:37:50 ----A---- C:\WINDOWS\system32\rdpcorets.dll
2016-09-14 08:37:50 ----A---- C:\WINDOWS\system32\dnsrslvr.dll
2016-09-14 08:37:49 ----A---- C:\WINDOWS\system32\dnsapi.dll
2016-09-14 08:37:48 ----A---- C:\WINDOWS\SYSWOW64\esent.dll
2016-09-14 08:37:48 ----A---- C:\WINDOWS\system32\esent.dll
2016-09-14 08:37:47 ----A---- C:\WINDOWS\system32\vpnike.dll
2016-09-14 08:37:46 ----A---- C:\WINDOWS\system32\rasapi32.dll
2016-09-14 08:37:46 ----A---- C:\WINDOWS\system32\ole32.dll
2016-09-14 08:37:46 ----A---- C:\WINDOWS\system32\mprddm.dll
2016-09-14 08:37:45 ----A---- C:\WINDOWS\SYSWOW64\rasapi32.dll
2016-09-14 08:37:45 ----A---- C:\WINDOWS\SYSWOW64\mprddm.dll
2016-09-14 08:37:45 ----A---- C:\WINDOWS\system32\mprdim.dll
2016-09-14 08:37:44 ----A---- C:\WINDOWS\SYSWOW64\ole32.dll
2016-09-14 08:37:44 ----A---- C:\WINDOWS\SYSWOW64\mprdim.dll
2016-09-14 08:37:43 ----A---- C:\WINDOWS\SYSWOW64\dssenh.dll
2016-09-14 08:37:43 ----A---- C:\WINDOWS\system32\wpdbusenum.dll
2016-09-14 08:37:43 ----A---- C:\WINDOWS\system32\rasppp.dll
2016-09-14 08:37:43 ----A---- C:\WINDOWS\system32\rasmans.dll
2016-09-14 08:37:43 ----A---- C:\WINDOWS\system32\dssenh.dll
2016-09-14 08:37:43 ----A---- C:\WINDOWS\system32\drivers\mountmgr.sys
2016-09-14 08:37:43 ----A---- C:\WINDOWS\system32\drivers\agilevpn.sys
2016-09-14 08:37:42 ----A---- C:\WINDOWS\system32\rdpudd.dll
2016-09-14 08:37:42 ----A---- C:\WINDOWS\system32\rdpclip.exe
2016-09-14 08:37:42 ----A---- C:\WINDOWS\system32\rasman.dll
2016-09-14 08:37:42 ----A---- C:\WINDOWS\system32\rascustom.dll
2016-09-14 08:37:42 ----A---- C:\WINDOWS\system32\iprtrmgr.dll
2016-09-14 08:37:41 ----A---- C:\WINDOWS\SYSWOW64\rasppp.dll
2016-09-14 08:37:41 ----A---- C:\WINDOWS\SYSWOW64\rasman.dll
2016-09-14 08:37:41 ----A---- C:\WINDOWS\SYSWOW64\iprtrmgr.dll
2016-09-14 08:37:41 ----A---- C:\WINDOWS\system32\nshwfp.dll
2016-09-14 08:37:41 ----A---- C:\WINDOWS\system32\IKEEXT.DLL
2016-09-14 08:37:35 ----A---- C:\WINDOWS\system32\lsasrv.dll
2016-09-14 08:37:34 ----A---- C:\WINDOWS\SYSWOW64\sspicli.dll
2016-09-14 08:37:34 ----A---- C:\WINDOWS\SYSWOW64\msv1_0.dll
2016-09-14 08:37:34 ----A---- C:\WINDOWS\system32\sspicli.dll
2016-09-14 08:37:34 ----A---- C:\WINDOWS\system32\msv1_0.dll
2016-09-14 08:37:34 ----A---- C:\WINDOWS\system32\drivers\mrxsmb20.sys
2016-09-14 08:37:34 ----A---- C:\WINDOWS\system32\drivers\mrxsmb10.sys
2016-09-14 08:37:34 ----A---- C:\WINDOWS\system32\drivers\mrxsmb.sys
2016-09-14 08:37:34 ----A---- C:\WINDOWS\system32\drivers\ksecdd.sys
2016-09-14 08:37:34 ----A---- C:\WINDOWS\system32\certcli.dll
2016-09-14 08:37:33 ----A---- C:\WINDOWS\SYSWOW64\certcli.dll
2016-09-14 08:37:28 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2016-09-14 08:37:27 ----A---- C:\WINDOWS\system32\winresume.exe
2016-09-14 08:37:27 ----A---- C:\WINDOWS\system32\winload.exe
2016-09-14 08:37:27 ----A---- C:\WINDOWS\system32\ntdll.dll
2016-09-14 08:37:26 ----A---- C:\WINDOWS\system32\csrsrv.dll
2016-09-14 08:37:20 ----A---- C:\WINDOWS\system32\wwanmm.dll
2016-09-14 08:37:20 ----A---- C:\WINDOWS\system32\wwanconn.dll
2016-09-14 08:37:20 ----A---- C:\WINDOWS\system32\pnidui.dll
2016-09-14 08:37:19 ----A---- C:\WINDOWS\SYSWOW64\user32.dll
2016-09-14 08:37:19 ----A---- C:\WINDOWS\system32\win32k.sys
2016-09-14 08:37:19 ----A---- C:\WINDOWS\system32\user32.dll
2016-09-11 20:43:54 ----D---- C:\WINDOWS\system32\DVD9
2016-09-11 20:43:54 ----D---- C:\WINDOWS\system32\DVD8
2016-09-11 20:43:54 ----D---- C:\WINDOWS\system32\DVD7
2016-09-11 20:43:54 ----D---- C:\WINDOWS\system32\DVD6
2016-09-11 20:43:54 ----D---- C:\WINDOWS\system32\DVD5
2016-09-11 20:43:54 ----D---- C:\WINDOWS\system32\DVD4
2016-09-11 20:43:54 ----D---- C:\WINDOWS\system32\DVD3
2016-09-11 20:43:54 ----D---- C:\WINDOWS\system32\DVD2
2016-09-11 20:43:54 ----D---- C:\WINDOWS\system32\DVD10
2016-09-11 20:43:54 ----D---- C:\WINDOWS\system32\DVD1
2016-09-11 20:36:20 ----A---- C:\WINDOWS\system32\drivers\dtliteusbbus.sys
2016-09-11 20:34:52 ----A---- C:\WINDOWS\system32\drivers\dtlitescsibus.sys
2016-09-11 20:34:49 ----D---- C:\Users\Saša\AppData\Roaming\DAEMON Tools Lite
2016-09-11 20:34:46 ----D---- C:\Program Files\DAEMON Tools Lite
2016-09-11 20:34:44 ----D---- C:\ProgramData\DAEMON Tools Lite
2016-09-11 16:54:55 ----D---- C:\Program Files (x86)\Steam
2016-09-11 15:49:21 ----D---- C:\Users\Saša\AppData\Roaming\uTorrent
2016-09-09 16:49:34 ----D---- C:\Program Files (x86)\HP
2016-09-08 18:33:50 ----A---- C:\WINDOWS\system32\drivers\fsbts.sys
2016-09-08 18:27:19 ----D---- C:\Program Files (x86)\UPC Smart Guard
2016-09-08 18:27:00 ----D---- C:\ProgramData\F-Secure
======List of files/folders modified in the last 1 month======
2016-10-07 11:54:37 ----RD---- C:\Program Files
2016-10-07 11:53:53 ----D---- C:\Windows
2016-10-07 11:51:35 ----D---- C:\WINDOWS\Temp
2016-10-07 11:48:47 ----D---- C:\WINDOWS\Prefetch
2016-10-07 11:46:35 ----D---- C:\Users\Saša\AppData\Roaming\Skype
2016-10-07 11:41:35 ----SHD---- C:\System Volume Information
2016-10-07 11:24:56 ----D---- C:\WINDOWS\system32\sru
2016-10-05 06:03:35 ----D---- C:\WINDOWS\Microsoft.NET
2016-10-04 21:45:02 ----D---- C:\WINDOWS\system32\config
2016-10-04 19:04:51 ----RD---- C:\Program Files (x86)
2016-10-04 09:47:09 ----SHD---- C:\WINDOWS\Installer
2016-10-03 21:25:01 ----D---- C:\Program Files (x86)\Common Files
2016-09-29 18:16:11 ----D---- C:\WINDOWS\Tasks
2016-09-29 18:16:11 ----D---- C:\WINDOWS\system32\Tasks
2016-09-28 19:00:11 ----D---- C:\WINDOWS\Inf
2016-09-26 20:40:54 ----D---- C:\WINDOWS\system32\catroot
2016-09-24 12:46:20 ----D---- C:\WINDOWS\rescache
2016-09-23 12:58:53 ----D---- C:\WINDOWS\CbsTemp
2016-09-23 12:58:52 ----D---- C:\WINDOWS\WinSxS
2016-09-23 12:58:49 ----D---- C:\WINDOWS\SYSWOW64\cs-CZ
2016-09-23 12:58:49 ----D---- C:\WINDOWS\system32\cs-CZ
2016-09-20 11:36:59 ----SHD---- C:\$RECYCLE.BIN
2016-09-19 11:06:07 ----D---- C:\WINDOWS\system32\DriverStore
2016-09-19 10:32:07 ----RSD---- C:\WINDOWS\assembly
2016-09-19 10:20:07 ----D---- C:\WINDOWS\AppReadiness
2016-09-16 20:23:20 ----RD---- C:\WINDOWS\System32
2016-09-16 20:23:20 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2016-09-16 20:15:05 ----HD---- C:\ProgramData
2016-09-16 20:09:34 ----D---- C:\WINDOWS\SysWOW64
2016-09-15 14:28:17 ----D---- C:\WINDOWS\system32\drivers
2016-09-15 14:27:31 ----AD---- C:\SWSETUP
2016-09-15 14:27:19 ----A---- C:\WINDOWS\system32\SynCOM.dll
2016-09-15 14:26:02 ----D---- C:\Program Files\Intel
2016-09-15 14:21:44 ----A---- C:\WINDOWS\SYSWOW64\igdusc32.dll
2016-09-15 14:21:44 ----A---- C:\WINDOWS\SYSWOW64\igdumdim32.dll
2016-09-15 14:21:44 ----A---- C:\WINDOWS\system32\igfxTray.exe
2016-09-15 14:21:44 ----A---- C:\WINDOWS\system32\igfxLHM.dll
2016-09-15 14:21:44 ----A---- C:\WINDOWS\system32\igfxHK.exe
2016-09-15 14:21:44 ----A---- C:\WINDOWS\system32\igfxEM.exe
2016-09-15 14:21:44 ----A---- C:\WINDOWS\system32\igfxDTCM.dll
2016-09-15 14:21:44 ----A---- C:\WINDOWS\system32\igfxDI.dll
2016-09-15 14:21:44 ----A---- C:\WINDOWS\system32\igfxDH.dll
2016-09-15 14:21:44 ----A---- C:\WINDOWS\system32\igfxCUIService.exe
2016-09-15 14:21:44 ----A---- C:\WINDOWS\system32\igdusc64.dll
2016-09-15 14:21:44 ----A---- C:\WINDOWS\system32\igdumdim64.dll
2016-09-15 14:21:34 ----A---- C:\WINDOWS\SYSWOW64\igd10iumd32.dll
2016-09-15 14:21:34 ----A---- C:\WINDOWS\system32\igd10iumd64.dll
2016-09-15 14:16:10 ----D---- C:\Program Files (x86)\ATI Technologies
2016-09-15 14:09:43 ----D---- C:\Program Files\AMD
2016-09-15 14:08:40 ----A---- C:\WINDOWS\system32\atidemgy.dll
2016-09-15 14:08:40 ----A---- C:\WINDOWS\system32\aticfx64.dll
2016-09-15 14:08:38 ----A---- C:\WINDOWS\system32\atiadlxx.dll
2016-09-14 20:31:28 ----SD---- C:\Users\Saša\AppData\Roaming\Microsoft
2016-09-14 19:20:45 ----D---- C:\WINDOWS\system32\LogFiles
2016-09-14 09:57:55 ----D---- C:\Program Files\Internet Explorer
2016-09-14 09:57:55 ----D---- C:\Program Files (x86)\Internet Explorer
2016-09-14 09:57:53 ----D---- C:\WINDOWS\SYSWOW64\setup
2016-09-14 09:57:53 ----D---- C:\WINDOWS\system32\setup
2016-09-14 09:01:48 ----HD---- C:\Program Files\WindowsApps
2016-09-14 08:56:48 ----D---- C:\WINDOWS\system32\MRT
2016-09-14 08:50:13 ----AC---- C:\WINDOWS\system32\MRT.exe
2016-09-14 08:37:03 ----D---- C:\WINDOWS\system32\catroot2
2016-09-14 08:28:56 ----RD---- C:\Program Files (x86)\Skype
2016-09-14 08:28:38 ----D---- C:\ProgramData\Skype
2016-09-10 08:59:33 ----D---- C:\ProgramData\Hewlett-Packard
2016-09-09 16:50:45 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2016-09-09 16:50:26 ----D---- C:\Program Files (x86)\Hewlett-Packard
2016-09-09 16:50:04 ----D---- C:\Users\Saša\AppData\Roaming\hpqLog
2016-09-09 16:45:49 ----RSD---- C:\WINDOWS\Fonts
2016-09-08 03:29:29 ----D---- C:\WarThunder
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 fsbts;fsbts; C:\WINDOWS\system32\Drivers\fsbts.sys [2016-09-08 73928]
R0 hpdskflt;@oem49.inf,%service_desc%;HP Filter; C:\WINDOWS\system32\DRIVERS\hpdskflt.sys [2013-07-23 30520]
R0 iaStorA;iaStorA; C:\WINDOWS\System32\drivers\iaStorA.sys [2015-07-16 682944]
R0 PinFile;PinFile; C:\WINDOWS\system32\DRIVERS\PinFile.sys [2014-12-05 49856]
R0 SDDisk2K;SDDisk2K; C:\WINDOWS\system32\DRIVERS\SDDisk2K.sys [2014-12-05 228544]
R0 SDDToki;SDDToki; C:\WINDOWS\system32\DRIVERS\SDDToki.sys [2014-12-05 131264]
R1 CLVirtualDrive;CLVirtualDrive; C:\WINDOWS\system32\DRIVERS\CLVirtualDrive.sys [2013-03-05 91712]
R1 F-Secure HIPS;F-Secure HIPS Driver; \??\C:\Program Files (x86)\UPC Smart Guard\apps\ComputerSecurity\HIPS\drivers\fshs.sys [2016-09-26 98008]
R3 Accelerometer;@oem49.inf,%accelerometer_desc%;HP Mobile Data Protection Sensor; C:\WINDOWS\system32\DRIVERS\Accelerometer.sys [2013-07-23 43320]
R3 amdkmdag;amdkmdag; C:\WINDOWS\system32\DRIVERS\atikmdag.sys [2016-09-15 21645320]
R3 amdkmdap;amdkmdap; C:\WINDOWS\system32\DRIVERS\atikmpag.sys [2016-09-15 676360]
R3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Služba Bluetooth Enumerator; C:\WINDOWS\System32\drivers\BthEnum.sys [2014-10-29 53248]
R3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Bluetooth Low Energy Driver; C:\WINDOWS\system32\DRIVERS\BthLEEnum.sys [2014-03-18 226304]
R3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Bluetooth Device (Personal Area Network); C:\WINDOWS\System32\drivers\bthpan.sys [2015-07-10 118272]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Ovladač rozhraní USB radiostanice Bluetooth; C:\WINDOWS\System32\Drivers\BTHUSB.sys [2014-10-29 81920]
R3 dtlitescsibus;@oem59.inf,%DTLITESCSIBUS.DeviceDesc%;DAEMON Tools Lite Virtual SCSI Bus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [2016-09-11 30264]
R3 dtliteusbbus;@oem60.inf,%DTLITEUSBBUS.DeviceDesc%;DAEMON Tools Lite Virtual USB Bus; C:\WINDOWS\System32\drivers\dtliteusbbus.sys [2016-09-11 47672]
R3 F-Secure Gatekeeper;F-Secure Gatekeeper; \??\C:\Program Files (x86)\UPC Smart Guard\apps\ComputerSecurity\Anti-Virus\minifilter\fsgk.sys [2016-09-26 219352]
R3 fsni;fsni; \??\C:\Program Files (x86)\UPC Smart Guard\apps\CCF_Scanning\bin\fsni64.sys [2016-09-23 110800]
R3 ibtusb;@oem41.inf,%ibtusb.SVCDESC_IBT%;Intel(R) Wireless Bluetooth(R); C:\WINDOWS\system32\DRIVERS\ibtusb.sys [2014-11-04 225008]
R3 igfx;igfx; C:\WINDOWS\system32\DRIVERS\igdkmd64.sys [2016-09-15 4918160]
R3 ikbevent;Intel Upper keyboard Class Filter Driver; C:\WINDOWS\system32\DRIVERS\ikbevent.sys [2014-05-27 22216]
R3 imsevent;Intel Upper Mouse Class Filter Driver; C:\WINDOWS\system32\DRIVERS\imsevent.sys [2014-05-27 22728]
R3 INETMON;INETMON; \??\C:\windows\System32\Drivers\INETMON.sys [2014-05-27 25800]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RTKVHD64.sys [2014-11-12 4275288]
R3 ISCT;@oem25.inf,%ISCT.DeviceDesc%;Intel(R) Smart Connect Technology Device Driver; C:\WINDOWS\System32\drivers\ISCTD.sys [2014-05-27 44744]
R3 iwdbus;@oem37.inf,%iwdbus.SVCDESC%;IWD Bus Enumerator; C:\WINDOWS\System32\drivers\iwdbus.sys [2015-07-28 40000]
R3 MEIx64;@oem22.inf,%TEE_SvcDesc%;Intel(R) Management Engine Interface ; C:\WINDOWS\System32\drivers\TeeDriverx64.sys [2014-10-10 129312]
R3 NETwNb64;@oem33.inf,___ %NIC_Service_DispName_WINB_64%;___ Intel(R) Wireless Adapter Driver for Windows 8.1 - 64 Bit; C:\WINDOWS\system32\DRIVERS\Netwbw02.sys [2014-10-17 3486488]
R3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Bluetooth Device (RFCOMM Protocol TDI); C:\WINDOWS\System32\drivers\rfcomm.sys [2015-01-30 167424]
R3 RTL8168;@oem40.inf,%rtl8168.Service.DispName%;Realtek 8168 NT Driver; C:\WINDOWS\system32\DRIVERS\Rt630x64.sys [2014-03-28 854744]
R3 RTSPER;@oem47.inf,%Rts5227PER%;Realtek PCIE Card Reader - PER; C:\WINDOWS\system32\DRIVERS\RtsPer.sys [2014-03-22 476888]
R3 SPUVCbv;@oem12.inf,%SPUVCb.ServiceName%;SPUVCb Driver Service; C:\WINDOWS\System32\Drivers\SPUVCbv_x64.sys [2014-10-07 674592]
R3 SynTP;@oem38.inf,%SynTP.SvcDesc%;Synaptics TouchPad Driver; C:\WINDOWS\System32\drivers\SynTP.sys [2016-09-15 580264]
S3 BCM43XX;@netbc64.inf,%BCM43XX_Service_DispName%;Broadcom 802.11 Network Adapter Driver; C:\WINDOWS\system32\DRIVERS\bcmwl63a.sys [2013-07-01 8536752]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Ovladač portu Bluetooth; C:\WINDOWS\System32\Drivers\BTHport.sys [2015-05-11 1201664]
S3 DAMDrv;DAMDrv; C:\WINDOWS\system32\DRIVERS\DAMDrv64.sys [2013-10-07 65752]
S3 dg_ssudbus;@oem55.inf,%ssud.Service.DeviceDesc%;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\WINDOWS\system32\DRIVERS\ssudbus.sys [2016-07-22 130688]
S3 e1iexpress;@net1ic64.inf,%e1iExpress.Service.DispName%;Intel(R) PRO/1000 PCI Express Network Connection Driver I; C:\WINDOWS\system32\DRIVERS\e1i63x64.sys [2013-06-18 460288]
S3 intaud_WaveExtensible;@oem29.inf,%INTAUD_WEX.SvcDesc%;Intel WiDi Audio Device; C:\WINDOWS\system32\drivers\intelaud.sys [2015-07-28 51776]
S3 IntcDAud;@oem63.inf,%IntcDAud.SvcDesc%;Intel(R) Display Audio; C:\WINDOWS\system32\DRIVERS\IntcDAud.sys [2016-09-15 460048]
S3 RSUSBSTOR;@oem42.inf,%RSUSBSTOR.SvcDesc%;RtsUStor.Sys Realtek USB Card Reader; C:\WINDOWS\System32\Drivers\RtsUStor.sys [2014-03-27 272600]
S3 RSUSBVSTOR;@oem43.inf,%RSUSBVSTOR.SvcDesc%;RtsUVStor.Sys Realtek USB Card Reader; C:\WINDOWS\System32\Drivers\RtsUVStor.sys [2014-03-27 331992]
S3 ssudmdm;@oem57.inf,%ssud.Service.Name%;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.); C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [2016-07-22 164992]
S3 ssudserd;@oem58.inf,%ssud.Service.Name%;SAMSUNG Mobile USB Diagnostic Serial Port(DEVGURU Ver.); C:\WINDOWS\system32\DRIVERS\ssudserd.sys [2016-07-22 164992]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AMD External Events Utility;AMD External Events Utility; C:\WINDOWS\system32\atiesrxx.exe [2016-09-15 255504]
R2 AppHostSvc;@%windir%\system32\inetsrv\iisres.dll,-30011; C:\WINDOWS\system32\svchost.exe [2014-10-29 38792]
R2 Bonjour Service;Bonjour Service; C:\Program Files\Bonjour\mDNSResponder.exe [2011-08-31 462184]
R2 CtAgentService;Absolute Software Agent Service; C:\Program Files (x86)\Hewlett-Packard\HP Theft Recovery\CtService.exe [2014-03-31 7168]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\WINDOWS\System32\svchost.exe [2014-10-29 38792]
R2 DpHost;@c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe,-128; c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe [2014-07-28 500048]
R2 EvtEng;Intel(R) PROSet/Wireless Event Log; c:\Program Files\Intel\WiFi\bin\EvtEng.exe [2014-09-23 638368]
R2 fshoster;F-Secure Dll Hoster; C:\Program Files (x86)\UPC Smart Guard\fshoster32.exe [2016-03-11 186840]
R2 FSORSPClient;F-Secure ORSP Client; C:\Program Files (x86)\UPC Smart Guard\apps\CCF_Reputation\fsorsp.exe [2016-09-08 60456]
R2 HpDamServiceHost;HP Device Access Manager Usage Service; c:\Program Files (x86)\Hewlett-Packard\HP Device Access Manager\HP.ProtectTools.DeviceAccessManager.ServiceHost.exe [2013-11-15 18232]
R2 HPFSService;HP File Sanitizer; C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\HPFSService.exe [2014-02-05 1758936]
R2 hpsrv;@oem49.inf,%hpservice_desc%;HP Service; C:\WINDOWS\system32\Hpservice.exe [2013-07-23 43320]
R2 HPSupportSolutionsFrameworkService;HP Support Solutions Framework Service; C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe [2016-08-15 29728]
R2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2015-07-09 18856]
R2 ibtsiva;Intel Bluetooth Service; C:\Program Files (x86)\Intel\Bluetooth\utilities\ibtsiva.exe [2014-11-04 125168]
R2 igfxCUIService1.0.0.0;Intel(R) HD Graphics Control Panel Service; C:\WINDOWS\system32\igfxCUIService.exe [2016-09-15 344168]
R2 ISCTAgent;Intel(R) Smart Connect Technology Agent; c:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTAgent.exe [2014-08-14 209712]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2014-10-10 158496]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2014-10-10 409376]
R2 RegSrvc;Intel(R) PROSet/Wireless Registry Service; c:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe [2014-09-23 157088]
R2 RtkAudioService;Realtek Audio Service; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [2014-09-04 292568]
R2 vcsFPService;Validity VCS Fingerprint Service; C:\windows\system32\vcsFPService.exe [2013-09-12 3221392]
R3 Disc Soft Lite Bus Service;Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe [2016-08-29 1467072]
R3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2014-03-18 43696]
R3 FSMA;F-Secure Management Agent; C:\Program Files (x86)\UPC Smart Guard\apps\ComputerSecurity\Common\FSMA32.EXE [2015-11-24 216104]
R3 hpqwmiex;HP Software Framework Service; C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe [2014-07-24 1093816]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-08-14 154440]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2016-07-25 324224]
S3 aspnet_state;@%SystemRoot%\Microsoft.NET\Framework64\v4.0.30319\aspnet_rc.dll,-1; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2014-04-16 50864]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\WINDOWS\System32\svchost.exe [2014-10-29 38792]
S3 cphs;Intel(R) Content Protection HECI Service; C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe [2016-09-15 279144]
S3 FLCDLOCK;HP Device Locking / Auditing; c:\windows\SysWOW64\flcdlock.exe [2013-11-20 567608]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-08-14 154440]
S3 HotSpotSrv;HP HotSpot 1.0 Service; C:\Program Files (x86)\Hewlett-Packard\HP Wireless Hotspot\HotSpotSrv.exe [2013-12-10 372408]
S3 hpqcaslwmiex;HP CASL Framework Service; C:\Program Files (x86)\HP\Shared\hpqwmiex.exe [2016-06-03 1031704]
S3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS; C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [2012-04-24 169752]
S3 Intel(R) Capability Licensing Service TCP IP Interface;Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [2014-05-13 887256]
S3 MyWiFiDHCPDNS;Wireless PAN DHCP Server; c:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [2014-09-23 268192]
S3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2016-09-20 1466144]
-----------------EOF-----------------

Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
Prosim o kotrolu
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Re: Prosim o kotrolu
info.txt logfile of random's system information tool 1.10 2016-10-07 11:54:44
======MBR======
0x00000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000B27BF5E000000000200EEFFFFFF01000000FFFFFFFF00000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000055AA
======Uninstall list======
-->"C:\Program Files (x86)\UPC Smart Guard\apps\ComputerSecurity\Uninstall\fsuninst.exe" /UninstRegKey:"F-Secure Anti-Virus Client Security Installer"
-->"C:\Program Files (x86)\UPC Smart Guard\apps\ComputerSecurity\Uninstall\fsuninst.exe" /UninstRegKey:"F-Secure Anti-Virus"
-->"C:\Program Files (x86)\UPC Smart Guard\apps\ComputerSecurity\Uninstall\fsuninst.exe" /UninstRegKey:"F-Secure DART"
-->"C:\Program Files (x86)\UPC Smart Guard\apps\ComputerSecurity\Uninstall\fsuninst.exe" /UninstRegKey:"F-Secure FirewallUtility"
-->"C:\Program Files (x86)\UPC Smart Guard\apps\ComputerSecurity\Uninstall\fsuninst.exe" /UninstRegKey:"F-Secure GateKeeper Interface"
-->"C:\Program Files (x86)\UPC Smart Guard\apps\ComputerSecurity\Uninstall\fsuninst.exe" /UninstRegKey:"F-Secure Gemini"
-->"C:\Program Files (x86)\UPC Smart Guard\apps\ComputerSecurity\Uninstall\fsuninst.exe" /UninstRegKey:"F-Secure GUI"
-->"C:\Program Files (x86)\UPC Smart Guard\apps\ComputerSecurity\Uninstall\fsuninst.exe" /UninstRegKey:"F-Secure HIPS"
-->"C:\Program Files (x86)\UPC Smart Guard\apps\ComputerSecurity\Uninstall\fsuninst.exe" /UninstRegKey:"F-Secure Localization API"
-->"C:\Program Files (x86)\UPC Smart Guard\apps\ComputerSecurity\Uninstall\fsuninst.exe" /UninstRegKey:"F-Secure Management Agent"
-->"C:\Program Files (x86)\UPC Smart Guard\apps\ComputerSecurity\Uninstall\fsuninst.exe" /UninstRegKey:"F-Secure Spam Control"
-->"C:\Program Files (x86)\UPC Smart Guard\apps\ComputerSecurity\Uninstall\fsuninst.exe" /UninstRegKey:"F-Secure Spam Scanner"
-->"C:\Program Files (x86)\UPC Smart Guard\apps\ComputerSecurity\Uninstall\fsuninst.exe" /UninstRegKey:"F-Secure TNB"
-->"C:\Program Files (x86)\UPC Smart Guard\apps\ComputerSecurity\Uninstall\fsuninst.exe" /UninstRegKey:"F-Secure ULFW"
-->"C:\Program Files (x86)\UPC Smart Guard\apps\ComputerSecurity\Uninstall\fsuninst.exe" /UninstRegKey:"F-Secure Uninstall"
-->"C:\Program Files (x86)\UPC Smart Guard\apps\ComputerSecurity\Uninstall\uninstaller.exe"
AMD Accelerated Video Transcoding-->MsiExec.exe /X{268FADB1-168C-8595-25C5-0D2D4CBE807F}
AMD Catalyst Install Manager-->msiexec /q/x{5094145C-9F17-8099-7F4F-E5AADD5E4065} REBOOT=ReallySuppress
Bonjour-->MsiExec.exe /X{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}
Catalyst Control Center - Branding-->MsiExec.exe /I{B820A5C2-0DD4-A49C-BC86-59E3B476D8CC}
Computer Security 14.150.101.0 (release)-->MsiExec.exe /I{658FDBCA-B7A1-43E4-A849-9F0812473331}
Counter-Strike: Global Offensive-->"C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/730
CyberLink Power2Go 8-->"C:\Program Files (x86)\InstallShield Installation Information\{2A87D48D-3FDF-41fd-97CD-A1E370EFFFE2}\Setup.exe" /z-uninstall
CyberLink Power2Go 8-->"C:\Program Files (x86)\InstallShield Installation Information\{2A87D48D-3FDF-41fd-97CD-A1E370EFFFE2}\Setup.exe" /z-uninstall
CyberLink PowerDVD 12-->"C:\Program Files (x86)\InstallShield Installation Information\{B46BEA36-0B71-4A4E-AE41-87241643FA0A}\Setup.exe" /z-uninstall
CyberLink PowerDVD 12-->"C:\Program Files (x86)\InstallShield Installation Information\{B46BEA36-0B71-4A4E-AE41-87241643FA0A}\Setup.exe" /z-uninstall
DAEMON Tools Lite-->C:\Program Files\DAEMON Tools Lite\uninst.exe
Energy Star-->MsiExec.exe /I{FC0ADA4D-8FA5-4452-8AFF-F0A0BAC97EF7}
Foxit PhantomPDF-->MsiExec.exe /I{5F3E0897-97AA-4FC2-A0A9-130A39D0FDFB}
F-Secure CCF Reputation-->MsiExec.exe /I{00000000-2778-5BED-8199-52EB14D8D22F}
F-Secure CCF Scanning 1.72.115.709 (release)-->MsiExec.exe /I{108CF06F-803B-4420-A251-03C72AB4CC1D}
F-Secure Network CCF 1.04.119-->MsiExec.exe /X{80FC157B-E7CE-46F2-969D-1F947291CEA5}
F-Secure SafeSearch 1.09.109.0 (release)-->MsiExec.exe /I{7F99FD17-0BEB-436A-9735-E621A1E7B44A}
Google Chrome-->"C:\Program Files (x86)\Google\Chrome\Application\53.0.2785.143\Installer\setup.exe" --uninstall --multi-install --chrome --system-level
Google Update Helper-->MsiExec.exe /I{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}
Heroes of Might and Magic V - Collectors Edition-->"C:\Heroes of Might and Magic V - Collectors Edition\uninstall.exe" "/U:C:\Heroes of Might and Magic V - Collectors Edition\Uninstall\uninstall.xml"
Hewlett-Packard ACLM.NET v1.2.2.3-->MsiExec.exe /I{6F340107-F9AA-47C6-B54C-C3A19F11553F}
HP 3D DriveGuard-->MsiExec.exe /X{13133E99-B0D5-4143-B832-AAD55C62A41C}
HP Camera Driver-->"C:\Program Files (x86)\HP Camera Driver\uninstall.exe"
HP Client Security Manager-->c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\setup.exe
HP Client Security Manager-->MsiExec.exe /X{8327F6D2-C8CC-49B5-B8D1-46C83909650E}
HP Customer Experience Enhancements-->MsiExec.exe /X{07FA4960-B038-49EB-891B-9F95930AA544}
HP Customer Experience Enhancements-->MsiExec.exe /X{64228DFB-7450-49B7-935C-B97342CB6659}
HP Device Access Manager-->MsiExec.exe /X{DBE16A07-DDFF-4453-807A-212EF93916E0}
HP Documentation-->MsiExec.exe /X{53AE55F3-8E99-4776-A347-06222894ECD3}
HP Drive Encryption-->C:\windows\SysWOW64\msiexec.exe /i {8606D2E0-AA72-4D44-A25C-7F79A10C5145}
HP ESU for Microsoft Windows 8.1-->MsiExec.exe /X{A3876D50-4A88-4A34-92E1-5D7BC8F886E1}
HP File Sanitizer-->MsiExec.exe /I{6349342F-9CEF-4A70-995A-2CF3704C2603}
HP Hotkey Support-->MsiExec.exe /X{445CC807-9384-47FA-A2B6-FFE970352B88}
HP Registration Service-->MsiExec.exe /X{D1E8F2D7-7794-4245-B286-87ED86C1893C}
HP SoftPaq Download Manager-->MsiExec.exe /I{34FF930E-DBF9-4858-BAB5-BAC957BF616E}
HP Software Setup-->MsiExec.exe /X{F6D61EC9-347B-4019-9F8E-E24169F7C330}
HP Support Assistant-->"C:\Program Files (x86)\InstallShield Installation Information\{39C8BE76-CF6A-466F-8618-0B52CC4CA0FC}\setup.exe" -runfromtemp -l0x0409 -removeonly
HP Support Solutions Framework-->MsiExec.exe /X{7C3170E8-E61A-41D9-8547-8E96445EA510}
HP System Default Settings-->MsiExec.exe /X{29641907-0BBA-4832-B6DE-349DAA655883}
HP Theft Recovery-->"C:\Program Files (x86)\InstallShield Installation Information\{B1E569B6-A5EB-4C97-9F93-9ED2AA99AF0E}\setup.exe" -runfromtemp -l0x0409 -removeonly
HP Theft Recovery-->MsiExec.exe /X{B1E569B6-A5EB-4C97-9F93-9ED2AA99AF0E}
HP Wireless Button Driver-->MsiExec.exe /X{30B2D1D8-0A07-4B71-9553-0710C5D31E35}
HP Wireless Hotspot-->MsiExec.exe /X{563ADFC1-38E6-4EF0-8763-7CDA8289944B}
Intel(R) Chipset Device Software-->"C:\ProgramData\Package Cache\{e3d22965-5c2d-48c8-acec-c2ba2d50b275}\SetupChipset.exe" /uninstall
Intel(R) Chipset Device Software-->MsiExec.exe /I{BD667C75-0EDD-4073-A406-A6DD9C3016EB}
Intel(R) Management Engine Components-->"C:\ProgramData\Intel\Package Cache\{1CEAC85D-2590-4760-800F-8DE5E91F3700}\Setup.exe" -uninstall
Intel(R) Management Engine Components-->MsiExec.exe /I{C2306F93-60AC-4401-B600-453376E771EC}
Intel(R) Management Engine Components-->MsiExec.exe /I{E0729EA8-444C-4AAF-AB69-3CE907F60A38}
Intel(R) Management Engine Components-->MsiExec.exe /I{FE51B16C-A025-418A-A5D6-07D93B643AFB}
Intel(R) ME UninstallLegacy-->MsiExec.exe /I{4332723E-06E5-47F8-B106-8A2971B01368}
Intel(R) Processor Graphics-->"C:\Program Files (x86)\Intel\Intel(R) Processor Graphics\Uninstall\setup.exe" -uninstall
Intel(R) Rapid Storage Technology-->"C:\ProgramData\Intel\Package Cache\{409CB30E-E457-4008-9B1A-ED1B9EA21140}\Setup.exe" -uninstall
Intel(R) Rapid Storage Technology-->MsiExec.exe /I{5710C8A3-A37D-421F-A88B-DC8EAFB784D2}
Intel(R) Smart Connect Technology-->MsiExec.exe /I{CAB8255F-E9B7-4EFC-9C9B-2D3A4C954294}
Intel(R) Wireless Bluetooth(R)-->MsiExec.exe /I{915DDCDE-7767-4B4A-9256-8729B265BDAC}
Intel® PROSet/Wireless WiFi Software-->MsiExec.exe /I{2FE44D72-C2E5-4CF9-A8DA-B73CC04B30E2}
Intel® Trusted Connect Service Client-->MsiExec.exe /I{1B444AF9-1DBE-4884-8F35-969BEFCF69A8}
League of Legends-->msiexec.exe /x {657DFCCF-B080-44B1-9AEA-61676011A1AE}
League of Legends-->MsiExec.exe /X{657DFCCF-B080-44B1-9AEA-61676011A1AE}
Mafia II-->"C:\Program Files (x86)\2K Games\Mafia II\unins000.exe"
Microsoft Office-->MsiExec.exe /X{90150000-0138-0409-0000-0000000FF1CE}
Microsoft Visual C++ 2005 Redistributable (x64)-->MsiExec.exe /X{071c9b48-7c32-4621-a0ac-3f809523288f}
Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{837b34e3-7c30-493c-8f6a-2b0f04e2912c}
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17-->MsiExec.exe /X{8220EEFE-38CD-377E-8595-13398D740ACE}
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161-->MsiExec.exe /X{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17-->MsiExec.exe /X{9A25302D-30C0-39D9-BD6F-21E6EC160475}
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148-->MsiExec.exe /X{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161-->MsiExec.exe /X{9BE518E6-ECC6-35A9-88E4-87755C07200F}
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219-->MsiExec.exe /X{1D8E6291-B0D5-35EC-8441-6616F567A0F7}
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219-->MsiExec.exe /X{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727-->"C:\ProgramData\Package Cache\{15134cb0-b767-4960-a911-f2d16ae54797}\vcredist_x64.exe" /uninstall
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.51106-->"C:\ProgramData\Package Cache\{6e8f74e0-43bd-4dce-8477-6ff6828acc07}\vcredist_x64.exe" /uninstall
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727-->"C:\ProgramData\Package Cache\{22154f09-719a-4619-bb71-5b3356999fbf}\vcredist_x86.exe" /uninstall
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.51106-->"C:\ProgramData\Package Cache\{8e70e4e1-06d7-470b-9f74-a51bef21088e}\vcredist_x86.exe" /uninstall
Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.50727-->MsiExec.exe /X{AC53FC8B-EE18-3F9C-9B59-60937D0B182C}
Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.51106-->MsiExec.exe /X{3C28BFD4-90C7-3138-87EF-418DC16E9598}
Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.50727-->MsiExec.exe /X{A2CB1ACB-94A2-32BA-A15E-7D80319F7589}
Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.51106-->MsiExec.exe /X{5AF4E09F-5C9B-3AAF-B731-544D3DC821DD}
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.50727-->MsiExec.exe /X{FDB30193-FDA0-3DAA-ACCA-A75EEFE53607}
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.51106-->MsiExec.exe /X{6C772996-BFF3-3C8C-860B-B3D48FF05D65}
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.50727-->MsiExec.exe /X{2F73A7B2-E50E-39A6-9ABC-EF89E4C62E36}
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.51106-->MsiExec.exe /X{E824E81C-80A4-3DFF-B5F9-4842A9FF5F7F}
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005-->"C:\ProgramData\Package Cache\{7f51bdb9-ee21-49ee-94d6-90afc321780e}\vcredist_x64.exe" /uninstall
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005-->"C:\ProgramData\Package Cache\{ce085a78-074e-4823-8dc1-8a721b94b76d}\vcredist_x86.exe" /uninstall
Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.21005-->MsiExec.exe /X{929FBD26-9020-399B-9A7A-751D61F0B942}
Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.21005-->MsiExec.exe /X{A749D8E6-B613-3BE3-8F5F-045C84EBA29B}
Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005-->MsiExec.exe /X{F8CFEB22-A2E7-3971-9EDA-4B11EDEFC185}
Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005-->MsiExec.exe /X{13A4EE12-23EA-3371-91EE-EFB36DDFFF3E}
OEM Application Profile-->MsiExec.exe /X{29F5A1C9-0BC3-16E6-9384-3BC5D1CB7ACE}
OEM Application Profile-->MsiExec.exe /X{FCCF4B77-432F-EA83-4289-40C1DFA14C85}
Online Safety 2.150.3659.2518-->MsiExec.exe /I{4410E7C9-E127-41F5-9931-0D3F9BCC5B2A}
PokerStars.eu-->"C:\Program Files (x86)\PokerStars.EU\PokerStarsUninstall.exe" /u:PokerStars.eu
Realtek Card Reader-->"C:\Program Files (x86)\InstallShield Installation Information\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}\setup.exe" -runfromtemp -removeonly
Realtek Ethernet Controller Driver-->C:\Program Files (x86)\InstallShield Installation Information\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}\setup.exe -runfromtemp -removeonly
Realtek High Definition Audio Driver-->"C:\Program Files (x86)\InstallShield Installation Information\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}\Setup.exe" -runfromtemp -removeonly
Skype™ 7.27-->MsiExec.exe /X{FC965A47-4839-40CA-B618-18F486F042C6}
Steam-->C:\Program Files (x86)\Steam\uninstall.exe
Synaptics Pointing Device Driver-->rundll32.exe "%ProgramFiles%\Synaptics\SynTP\SynISDLL.dll",standAloneUninstall
Team Fortress 2-->"C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/440
TeamSpeak 3 Client-->"C:\Program Files (x86)\TeamSpeak 3 Client\uninstall.exe"
UPC Smart Guard-->"C:\Program Files (x86)\UPC Smart Guard\\fsuninstall.exe" --operatorID 45329
UPC Smart Guard-->MsiExec.exe /X{60A8CF36-3CCD-4A54-8049-D85DBCF4B85C}
Validity Fingerprint Sensor Driver-->MsiExec.exe /X{ADAA7361-54B8-4FC8-804E-94EC6C11ED68}
War Thunder Launcher 1.0.1.674-->"C:\WarThunder\unins000.exe"
WinRAR 5.40 (64-bit)-->C:\Program Files\WinRAR\uninstall.exe
======System event log======
Computer Name: 199JLHOGSLHAL
Event Code: 4001
Message: Služba automatické konfigurace sítě WLAN byla úspěšně ukončena.
Record Number: 5
Source Name: Microsoft-Windows-WLAN-AutoConfig
Time Written: 20150123114159.324564-000
Event Type: Informace
User: NT AUTHORITY\SYSTEM
Computer Name: 199JLHOGSLHAL
Event Code: 10002
Message: Rozšiřující modul sítě WLAN byl ukončen.
Cesta k modulu: C:\windows\System32\IWMSSvc.dll
Record Number: 4
Source Name: Microsoft-Windows-WLAN-AutoConfig
Time Written: 20150123114159.152686-000
Event Type: Upozornění
User: NT AUTHORITY\SYSTEM
Computer Name: 199JLHOGSLHAL
Event Code: 6005
Message: Služba Event Log byla spuštěna.
Record Number: 3
Source Name: EventLog
Time Written: 20160813180443.000000-000
Event Type: Informace
User:
Computer Name: 199JLHOGSLHAL
Event Code: 6009
Message: Microsoft (R) Windows (R) 6.03. 9600 Multiprocessor Free.
Record Number: 2
Source Name: EventLog
Time Written: 20160813180443.000000-000
Event Type: Informace
User:
Computer Name: 199JLHOGSLHAL
Event Code: 6011
Message: Název tohoto počítače v systémech DNS a NetBIOS byl změněn z 199JLHOGSLHAL na WIN-0Q5K98SM3AD.
Record Number: 1
Source Name: EventLog
Time Written: 20160813180443.000000-000
Event Type: Informace
User:
=====Application event log=====
Computer Name: 199JLHOGSLHAL
Event Code: 105
Message:
Record Number: 5
Source Name: HPSrv
Time Written: 20160813180448.000000-000
Event Type: Informace
User:
Computer Name: 199JLHOGSLHAL
Event Code: 1531
Message: Služba Profil uživatele byla úspěšně spuštěna.
Record Number: 4
Source Name: Microsoft-Windows-User Profiles Service
Time Written: 20160813180443.977633-000
Event Type: Informace
User: NT AUTHORITY\SYSTEM
Computer Name: 199JLHOGSLHAL
Event Code: 1532
Message: Služba Profil uživatele byla zastavena.
Record Number: 3
Source Name: Microsoft-Windows-User Profiles Service
Time Written: 20150123114158.527062-000
Event Type: Informace
User: NT AUTHORITY\SYSTEM
Computer Name: 199JLHOGSLHAL
Event Code: 0
Message:
Record Number: 2
Source Name: igfxCUIService1.0.0.0
Time Written: 20160813180444.000000-000
Event Type: Informace
User:
Computer Name: WIN-0Q5K98SM3AD
Event Code: 4625
Message: Subsystém EventSystem zabraňuje vytváření duplicitních záznamů v protokolu událostí po dobu 86400 sekund. Tuto dobu lze změnit pomocí hodnoty REG_DWORD s názvem SuppressDuplicateDuration v následujícím klíči registru: HKLM\Software\Microsoft\EventSystem\EventLog.
Record Number: 1
Source Name: Microsoft-Windows-EventSystem
Time Written: 20160813180443.000000-000
Event Type: Informace
User:
=====Security event log=====
Computer Name: 199JLHOGSLHAL
Event Code: 4672
Message: Novému přihlášení byla přiřazena zvláštní oprávnění.
Předmět:
ID zabezpečení: S-1-5-18
Název účtu: SYSTEM
Doména účtu: NT AUTHORITY
ID přihlášení: 0x3E7
Oprávnění: SeAssignPrimaryTokenPrivilege
SeTcbPrivilege
SeSecurityPrivilege
SeTakeOwnershipPrivilege
SeLoadDriverPrivilege
SeBackupPrivilege
SeRestorePrivilege
SeDebugPrivilege
SeAuditPrivilege
SeSystemEnvironmentPrivilege
SeImpersonatePrivilege
Record Number: 5
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20160813180432.540944-000
Event Type: Úspěšný audit
User:
Computer Name: 199JLHOGSLHAL
Event Code: 4624
Message: Účet byl úspěšně přihlášen.
Předmět:
ID zabezpečení: S-1-5-18
Název účtu: 199JLHOGSLHAL$
Doména účtu: WORKGROUP
ID přihlášení: 0x3E7
Typ přihlášení: 5
Úroveň zosobnění: Zosobnění
Nové přihlášení:
ID zabezpečení: S-1-5-18
Název účtu: SYSTEM
Doména účtu: NT AUTHORITY
ID přihlášení: 0x3E7
GUID přihlášení: {00000000-0000-0000-0000-000000000000}
Informace o procesu:
ID procesu: 0x2a4
Název procesu: C:\Windows\System32\services.exe
Informace o síti:
Název pracovní stanice:
Adresa zdrojové sítě -
Zdrojový port: -
Podrobné informace o ověření:
Proces přihlášení: Advapi
Balíček ověření: Negotiate
Přenosové služby: -
Název balíčku (pouze NTLM): -
Délka klíče: 0
Tato událost je generována po vytvoření relace přihlášení. Je generována v počítači, ke kterému byl získán přístup.
Pole s předmětem označují účet v místním systému, který požadoval přihlášení. Jedná se nejčastěji o službu, například službu serveru nebo místní proces, například Winlogon.exe nebo Services.exe.
Pole Typ přihlášení označuje, k jakému typu přihlášení došlo. Nejběžnější typy jsou 2 (interaktivní) a 3 (síť).
Pole Nové přihlášení označují účet, pro který bylo nové přihlášení vytvořeno, tj. účet, který byl přihlášen.
Pole Síť označují původ požadavku na vzdálené přihlášení. Název pracovní stanice není vždy k dispozici a v některých případech může být toto pole prázdné.
Pole úrovně zosobnění označuje rozsah, ve kterém může být proces v přihlašovací relaci zosobněn.
Pole s informacemi o ověření poskytují podrobné informace o tomto konkrétním požadavku na přihlášení.
- GUID přihlášení je jednoznačný identifikátor, který je možné použít ke spojení této události s událostí KDC.
- Přenosové služby označují, které pomocné služby se podílely na tomto požadavku na přihlášení.
- Název balíčku označuje, který dílčí protokol z protokolů NTLM byl použit.
- Délka klíče označuje délku generovaného klíče relace. Tato hodnota bude 0, pokud nebyl požadován žádný klíč relace.
Record Number: 4
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20160813180432.540944-000
Event Type: Úspěšný audit
User:
Computer Name: 199JLHOGSLHAL
Event Code: 4902
Message: Tabulka zásad auditu pro jednotlivé uživatele byla vytvořena.
Počet prvků: 0
ID zásady: 0x562C8
Record Number: 3
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20160813180421.805545-000
Event Type: Úspěšný audit
User:
Computer Name: 199JLHOGSLHAL
Event Code: 4624
Message: Účet byl úspěšně přihlášen.
Předmět:
ID zabezpečení: S-1-0-0
Název účtu: -
Doména účtu: -
ID přihlášení: 0x0
Typ přihlášení: 0
Úroveň zosobnění: -
Nové přihlášení:
ID zabezpečení: S-1-5-18
Název účtu: SYSTEM
Doména účtu: NT AUTHORITY
ID přihlášení: 0x3E7
GUID přihlášení: {00000000-0000-0000-0000-000000000000}
Informace o procesu:
ID procesu: 0x4
Název procesu:
Informace o síti:
Název pracovní stanice: -
Adresa zdrojové sítě -
Zdrojový port: -
Podrobné informace o ověření:
Proces přihlášení: -
Balíček ověření: -
Přenosové služby: -
Název balíčku (pouze NTLM): -
Délka klíče: 0
Tato událost je generována po vytvoření relace přihlášení. Je generována v počítači, ke kterému byl získán přístup.
Pole s předmětem označují účet v místním systému, který požadoval přihlášení. Jedná se nejčastěji o službu, například službu serveru nebo místní proces, například Winlogon.exe nebo Services.exe.
Pole Typ přihlášení označuje, k jakému typu přihlášení došlo. Nejběžnější typy jsou 2 (interaktivní) a 3 (síť).
Pole Nové přihlášení označují účet, pro který bylo nové přihlášení vytvořeno, tj. účet, který byl přihlášen.
Pole Síť označují původ požadavku na vzdálené přihlášení. Název pracovní stanice není vždy k dispozici a v některých případech může být toto pole prázdné.
Pole úrovně zosobnění označuje rozsah, ve kterém může být proces v přihlašovací relaci zosobněn.
Pole s informacemi o ověření poskytují podrobné informace o tomto konkrétním požadavku na přihlášení.
- GUID přihlášení je jednoznačný identifikátor, který je možné použít ke spojení této události s událostí KDC.
- Přenosové služby označují, které pomocné služby se podílely na tomto požadavku na přihlášení.
- Název balíčku označuje, který dílčí protokol z protokolů NTLM byl použit.
- Délka klíče označuje délku generovaného klíče relace. Tato hodnota bude 0, pokud nebyl požadován žádný klíč relace.
Record Number: 2
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20160813180420.383566-000
Event Type: Úspěšný audit
User:
Computer Name: 199JLHOGSLHAL
Event Code: 4608
Message: Spouští se systém Windows.
Tato událost je zaznamenána při spuštění procesu LSASS.EXE a inicializaci kontrolního podsystému.
Record Number: 1
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20160813180420.305438-000
Event Type: Úspěšný audit
User:
======Environment variables======
"FP_NO_HOST_CHECK"=NO
"USERNAME"=SYSTEM
"Path"=C:\Program Files (x86)\Intel\iCLS Client\;C:\Program Files\Intel\iCLS Client\;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;c:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static;c:\Program Files\Intel\WiFi\bin\;c:\Program Files\Common Files\Intel\WirelessCommon\;C:\Program Files\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files\Intel\Intel(R) Management Engine Components\IPT;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT;C:\Program Files (x86)\Skype\Phone\
"ComSpec"=%SystemRoot%\system32\cmd.exe
"TMP"=%SystemRoot%\TEMP
"OS"=Windows_NT
"windir"=%SystemRoot%
"PROCESSOR_ARCHITECTURE"=AMD64
"TEMP"=%SystemRoot%\TEMP
"PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH;.MSC
"PSModulePath"=%SystemRoot%\system32\WindowsPowerShell\v1.0\Modules\
"NUMBER_OF_PROCESSORS"=4
"PROCESSOR_LEVEL"=6
"PROCESSOR_IDENTIFIER"=Intel64 Family 6 Model 61 Stepping 4, GenuineIntel
"PROCESSOR_REVISION"=3d04
"OnlineServices"=Online Services
"Platform"=BNB
"platformcode"=6U
"PTSMINSTALLPATH_X86"=c:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\
-----------------EOF-----------------
======MBR======
0x00000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000B27BF5E000000000200EEFFFFFF01000000FFFFFFFF00000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000055AA
======Uninstall list======
-->"C:\Program Files (x86)\UPC Smart Guard\apps\ComputerSecurity\Uninstall\fsuninst.exe" /UninstRegKey:"F-Secure Anti-Virus Client Security Installer"
-->"C:\Program Files (x86)\UPC Smart Guard\apps\ComputerSecurity\Uninstall\fsuninst.exe" /UninstRegKey:"F-Secure Anti-Virus"
-->"C:\Program Files (x86)\UPC Smart Guard\apps\ComputerSecurity\Uninstall\fsuninst.exe" /UninstRegKey:"F-Secure DART"
-->"C:\Program Files (x86)\UPC Smart Guard\apps\ComputerSecurity\Uninstall\fsuninst.exe" /UninstRegKey:"F-Secure FirewallUtility"
-->"C:\Program Files (x86)\UPC Smart Guard\apps\ComputerSecurity\Uninstall\fsuninst.exe" /UninstRegKey:"F-Secure GateKeeper Interface"
-->"C:\Program Files (x86)\UPC Smart Guard\apps\ComputerSecurity\Uninstall\fsuninst.exe" /UninstRegKey:"F-Secure Gemini"
-->"C:\Program Files (x86)\UPC Smart Guard\apps\ComputerSecurity\Uninstall\fsuninst.exe" /UninstRegKey:"F-Secure GUI"
-->"C:\Program Files (x86)\UPC Smart Guard\apps\ComputerSecurity\Uninstall\fsuninst.exe" /UninstRegKey:"F-Secure HIPS"
-->"C:\Program Files (x86)\UPC Smart Guard\apps\ComputerSecurity\Uninstall\fsuninst.exe" /UninstRegKey:"F-Secure Localization API"
-->"C:\Program Files (x86)\UPC Smart Guard\apps\ComputerSecurity\Uninstall\fsuninst.exe" /UninstRegKey:"F-Secure Management Agent"
-->"C:\Program Files (x86)\UPC Smart Guard\apps\ComputerSecurity\Uninstall\fsuninst.exe" /UninstRegKey:"F-Secure Spam Control"
-->"C:\Program Files (x86)\UPC Smart Guard\apps\ComputerSecurity\Uninstall\fsuninst.exe" /UninstRegKey:"F-Secure Spam Scanner"
-->"C:\Program Files (x86)\UPC Smart Guard\apps\ComputerSecurity\Uninstall\fsuninst.exe" /UninstRegKey:"F-Secure TNB"
-->"C:\Program Files (x86)\UPC Smart Guard\apps\ComputerSecurity\Uninstall\fsuninst.exe" /UninstRegKey:"F-Secure ULFW"
-->"C:\Program Files (x86)\UPC Smart Guard\apps\ComputerSecurity\Uninstall\fsuninst.exe" /UninstRegKey:"F-Secure Uninstall"
-->"C:\Program Files (x86)\UPC Smart Guard\apps\ComputerSecurity\Uninstall\uninstaller.exe"
AMD Accelerated Video Transcoding-->MsiExec.exe /X{268FADB1-168C-8595-25C5-0D2D4CBE807F}
AMD Catalyst Install Manager-->msiexec /q/x{5094145C-9F17-8099-7F4F-E5AADD5E4065} REBOOT=ReallySuppress
Bonjour-->MsiExec.exe /X{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}
Catalyst Control Center - Branding-->MsiExec.exe /I{B820A5C2-0DD4-A49C-BC86-59E3B476D8CC}
Computer Security 14.150.101.0 (release)-->MsiExec.exe /I{658FDBCA-B7A1-43E4-A849-9F0812473331}
Counter-Strike: Global Offensive-->"C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/730
CyberLink Power2Go 8-->"C:\Program Files (x86)\InstallShield Installation Information\{2A87D48D-3FDF-41fd-97CD-A1E370EFFFE2}\Setup.exe" /z-uninstall
CyberLink Power2Go 8-->"C:\Program Files (x86)\InstallShield Installation Information\{2A87D48D-3FDF-41fd-97CD-A1E370EFFFE2}\Setup.exe" /z-uninstall
CyberLink PowerDVD 12-->"C:\Program Files (x86)\InstallShield Installation Information\{B46BEA36-0B71-4A4E-AE41-87241643FA0A}\Setup.exe" /z-uninstall
CyberLink PowerDVD 12-->"C:\Program Files (x86)\InstallShield Installation Information\{B46BEA36-0B71-4A4E-AE41-87241643FA0A}\Setup.exe" /z-uninstall
DAEMON Tools Lite-->C:\Program Files\DAEMON Tools Lite\uninst.exe
Energy Star-->MsiExec.exe /I{FC0ADA4D-8FA5-4452-8AFF-F0A0BAC97EF7}
Foxit PhantomPDF-->MsiExec.exe /I{5F3E0897-97AA-4FC2-A0A9-130A39D0FDFB}
F-Secure CCF Reputation-->MsiExec.exe /I{00000000-2778-5BED-8199-52EB14D8D22F}
F-Secure CCF Scanning 1.72.115.709 (release)-->MsiExec.exe /I{108CF06F-803B-4420-A251-03C72AB4CC1D}
F-Secure Network CCF 1.04.119-->MsiExec.exe /X{80FC157B-E7CE-46F2-969D-1F947291CEA5}
F-Secure SafeSearch 1.09.109.0 (release)-->MsiExec.exe /I{7F99FD17-0BEB-436A-9735-E621A1E7B44A}
Google Chrome-->"C:\Program Files (x86)\Google\Chrome\Application\53.0.2785.143\Installer\setup.exe" --uninstall --multi-install --chrome --system-level
Google Update Helper-->MsiExec.exe /I{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}
Heroes of Might and Magic V - Collectors Edition-->"C:\Heroes of Might and Magic V - Collectors Edition\uninstall.exe" "/U:C:\Heroes of Might and Magic V - Collectors Edition\Uninstall\uninstall.xml"
Hewlett-Packard ACLM.NET v1.2.2.3-->MsiExec.exe /I{6F340107-F9AA-47C6-B54C-C3A19F11553F}
HP 3D DriveGuard-->MsiExec.exe /X{13133E99-B0D5-4143-B832-AAD55C62A41C}
HP Camera Driver-->"C:\Program Files (x86)\HP Camera Driver\uninstall.exe"
HP Client Security Manager-->c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\setup.exe
HP Client Security Manager-->MsiExec.exe /X{8327F6D2-C8CC-49B5-B8D1-46C83909650E}
HP Customer Experience Enhancements-->MsiExec.exe /X{07FA4960-B038-49EB-891B-9F95930AA544}
HP Customer Experience Enhancements-->MsiExec.exe /X{64228DFB-7450-49B7-935C-B97342CB6659}
HP Device Access Manager-->MsiExec.exe /X{DBE16A07-DDFF-4453-807A-212EF93916E0}
HP Documentation-->MsiExec.exe /X{53AE55F3-8E99-4776-A347-06222894ECD3}
HP Drive Encryption-->C:\windows\SysWOW64\msiexec.exe /i {8606D2E0-AA72-4D44-A25C-7F79A10C5145}
HP ESU for Microsoft Windows 8.1-->MsiExec.exe /X{A3876D50-4A88-4A34-92E1-5D7BC8F886E1}
HP File Sanitizer-->MsiExec.exe /I{6349342F-9CEF-4A70-995A-2CF3704C2603}
HP Hotkey Support-->MsiExec.exe /X{445CC807-9384-47FA-A2B6-FFE970352B88}
HP Registration Service-->MsiExec.exe /X{D1E8F2D7-7794-4245-B286-87ED86C1893C}
HP SoftPaq Download Manager-->MsiExec.exe /I{34FF930E-DBF9-4858-BAB5-BAC957BF616E}
HP Software Setup-->MsiExec.exe /X{F6D61EC9-347B-4019-9F8E-E24169F7C330}
HP Support Assistant-->"C:\Program Files (x86)\InstallShield Installation Information\{39C8BE76-CF6A-466F-8618-0B52CC4CA0FC}\setup.exe" -runfromtemp -l0x0409 -removeonly
HP Support Solutions Framework-->MsiExec.exe /X{7C3170E8-E61A-41D9-8547-8E96445EA510}
HP System Default Settings-->MsiExec.exe /X{29641907-0BBA-4832-B6DE-349DAA655883}
HP Theft Recovery-->"C:\Program Files (x86)\InstallShield Installation Information\{B1E569B6-A5EB-4C97-9F93-9ED2AA99AF0E}\setup.exe" -runfromtemp -l0x0409 -removeonly
HP Theft Recovery-->MsiExec.exe /X{B1E569B6-A5EB-4C97-9F93-9ED2AA99AF0E}
HP Wireless Button Driver-->MsiExec.exe /X{30B2D1D8-0A07-4B71-9553-0710C5D31E35}
HP Wireless Hotspot-->MsiExec.exe /X{563ADFC1-38E6-4EF0-8763-7CDA8289944B}
Intel(R) Chipset Device Software-->"C:\ProgramData\Package Cache\{e3d22965-5c2d-48c8-acec-c2ba2d50b275}\SetupChipset.exe" /uninstall
Intel(R) Chipset Device Software-->MsiExec.exe /I{BD667C75-0EDD-4073-A406-A6DD9C3016EB}
Intel(R) Management Engine Components-->"C:\ProgramData\Intel\Package Cache\{1CEAC85D-2590-4760-800F-8DE5E91F3700}\Setup.exe" -uninstall
Intel(R) Management Engine Components-->MsiExec.exe /I{C2306F93-60AC-4401-B600-453376E771EC}
Intel(R) Management Engine Components-->MsiExec.exe /I{E0729EA8-444C-4AAF-AB69-3CE907F60A38}
Intel(R) Management Engine Components-->MsiExec.exe /I{FE51B16C-A025-418A-A5D6-07D93B643AFB}
Intel(R) ME UninstallLegacy-->MsiExec.exe /I{4332723E-06E5-47F8-B106-8A2971B01368}
Intel(R) Processor Graphics-->"C:\Program Files (x86)\Intel\Intel(R) Processor Graphics\Uninstall\setup.exe" -uninstall
Intel(R) Rapid Storage Technology-->"C:\ProgramData\Intel\Package Cache\{409CB30E-E457-4008-9B1A-ED1B9EA21140}\Setup.exe" -uninstall
Intel(R) Rapid Storage Technology-->MsiExec.exe /I{5710C8A3-A37D-421F-A88B-DC8EAFB784D2}
Intel(R) Smart Connect Technology-->MsiExec.exe /I{CAB8255F-E9B7-4EFC-9C9B-2D3A4C954294}
Intel(R) Wireless Bluetooth(R)-->MsiExec.exe /I{915DDCDE-7767-4B4A-9256-8729B265BDAC}
Intel® PROSet/Wireless WiFi Software-->MsiExec.exe /I{2FE44D72-C2E5-4CF9-A8DA-B73CC04B30E2}
Intel® Trusted Connect Service Client-->MsiExec.exe /I{1B444AF9-1DBE-4884-8F35-969BEFCF69A8}
League of Legends-->msiexec.exe /x {657DFCCF-B080-44B1-9AEA-61676011A1AE}
League of Legends-->MsiExec.exe /X{657DFCCF-B080-44B1-9AEA-61676011A1AE}
Mafia II-->"C:\Program Files (x86)\2K Games\Mafia II\unins000.exe"
Microsoft Office-->MsiExec.exe /X{90150000-0138-0409-0000-0000000FF1CE}
Microsoft Visual C++ 2005 Redistributable (x64)-->MsiExec.exe /X{071c9b48-7c32-4621-a0ac-3f809523288f}
Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{837b34e3-7c30-493c-8f6a-2b0f04e2912c}
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17-->MsiExec.exe /X{8220EEFE-38CD-377E-8595-13398D740ACE}
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161-->MsiExec.exe /X{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17-->MsiExec.exe /X{9A25302D-30C0-39D9-BD6F-21E6EC160475}
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148-->MsiExec.exe /X{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161-->MsiExec.exe /X{9BE518E6-ECC6-35A9-88E4-87755C07200F}
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219-->MsiExec.exe /X{1D8E6291-B0D5-35EC-8441-6616F567A0F7}
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219-->MsiExec.exe /X{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727-->"C:\ProgramData\Package Cache\{15134cb0-b767-4960-a911-f2d16ae54797}\vcredist_x64.exe" /uninstall
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.51106-->"C:\ProgramData\Package Cache\{6e8f74e0-43bd-4dce-8477-6ff6828acc07}\vcredist_x64.exe" /uninstall
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727-->"C:\ProgramData\Package Cache\{22154f09-719a-4619-bb71-5b3356999fbf}\vcredist_x86.exe" /uninstall
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.51106-->"C:\ProgramData\Package Cache\{8e70e4e1-06d7-470b-9f74-a51bef21088e}\vcredist_x86.exe" /uninstall
Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.50727-->MsiExec.exe /X{AC53FC8B-EE18-3F9C-9B59-60937D0B182C}
Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.51106-->MsiExec.exe /X{3C28BFD4-90C7-3138-87EF-418DC16E9598}
Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.50727-->MsiExec.exe /X{A2CB1ACB-94A2-32BA-A15E-7D80319F7589}
Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.51106-->MsiExec.exe /X{5AF4E09F-5C9B-3AAF-B731-544D3DC821DD}
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.50727-->MsiExec.exe /X{FDB30193-FDA0-3DAA-ACCA-A75EEFE53607}
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.51106-->MsiExec.exe /X{6C772996-BFF3-3C8C-860B-B3D48FF05D65}
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.50727-->MsiExec.exe /X{2F73A7B2-E50E-39A6-9ABC-EF89E4C62E36}
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.51106-->MsiExec.exe /X{E824E81C-80A4-3DFF-B5F9-4842A9FF5F7F}
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005-->"C:\ProgramData\Package Cache\{7f51bdb9-ee21-49ee-94d6-90afc321780e}\vcredist_x64.exe" /uninstall
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005-->"C:\ProgramData\Package Cache\{ce085a78-074e-4823-8dc1-8a721b94b76d}\vcredist_x86.exe" /uninstall
Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.21005-->MsiExec.exe /X{929FBD26-9020-399B-9A7A-751D61F0B942}
Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.21005-->MsiExec.exe /X{A749D8E6-B613-3BE3-8F5F-045C84EBA29B}
Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005-->MsiExec.exe /X{F8CFEB22-A2E7-3971-9EDA-4B11EDEFC185}
Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005-->MsiExec.exe /X{13A4EE12-23EA-3371-91EE-EFB36DDFFF3E}
OEM Application Profile-->MsiExec.exe /X{29F5A1C9-0BC3-16E6-9384-3BC5D1CB7ACE}
OEM Application Profile-->MsiExec.exe /X{FCCF4B77-432F-EA83-4289-40C1DFA14C85}
Online Safety 2.150.3659.2518-->MsiExec.exe /I{4410E7C9-E127-41F5-9931-0D3F9BCC5B2A}
PokerStars.eu-->"C:\Program Files (x86)\PokerStars.EU\PokerStarsUninstall.exe" /u:PokerStars.eu
Realtek Card Reader-->"C:\Program Files (x86)\InstallShield Installation Information\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}\setup.exe" -runfromtemp -removeonly
Realtek Ethernet Controller Driver-->C:\Program Files (x86)\InstallShield Installation Information\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}\setup.exe -runfromtemp -removeonly
Realtek High Definition Audio Driver-->"C:\Program Files (x86)\InstallShield Installation Information\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}\Setup.exe" -runfromtemp -removeonly
Skype™ 7.27-->MsiExec.exe /X{FC965A47-4839-40CA-B618-18F486F042C6}
Steam-->C:\Program Files (x86)\Steam\uninstall.exe
Synaptics Pointing Device Driver-->rundll32.exe "%ProgramFiles%\Synaptics\SynTP\SynISDLL.dll",standAloneUninstall
Team Fortress 2-->"C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/440
TeamSpeak 3 Client-->"C:\Program Files (x86)\TeamSpeak 3 Client\uninstall.exe"
UPC Smart Guard-->"C:\Program Files (x86)\UPC Smart Guard\\fsuninstall.exe" --operatorID 45329
UPC Smart Guard-->MsiExec.exe /X{60A8CF36-3CCD-4A54-8049-D85DBCF4B85C}
Validity Fingerprint Sensor Driver-->MsiExec.exe /X{ADAA7361-54B8-4FC8-804E-94EC6C11ED68}
War Thunder Launcher 1.0.1.674-->"C:\WarThunder\unins000.exe"
WinRAR 5.40 (64-bit)-->C:\Program Files\WinRAR\uninstall.exe
======System event log======
Computer Name: 199JLHOGSLHAL
Event Code: 4001
Message: Služba automatické konfigurace sítě WLAN byla úspěšně ukončena.
Record Number: 5
Source Name: Microsoft-Windows-WLAN-AutoConfig
Time Written: 20150123114159.324564-000
Event Type: Informace
User: NT AUTHORITY\SYSTEM
Computer Name: 199JLHOGSLHAL
Event Code: 10002
Message: Rozšiřující modul sítě WLAN byl ukončen.
Cesta k modulu: C:\windows\System32\IWMSSvc.dll
Record Number: 4
Source Name: Microsoft-Windows-WLAN-AutoConfig
Time Written: 20150123114159.152686-000
Event Type: Upozornění
User: NT AUTHORITY\SYSTEM
Computer Name: 199JLHOGSLHAL
Event Code: 6005
Message: Služba Event Log byla spuštěna.
Record Number: 3
Source Name: EventLog
Time Written: 20160813180443.000000-000
Event Type: Informace
User:
Computer Name: 199JLHOGSLHAL
Event Code: 6009
Message: Microsoft (R) Windows (R) 6.03. 9600 Multiprocessor Free.
Record Number: 2
Source Name: EventLog
Time Written: 20160813180443.000000-000
Event Type: Informace
User:
Computer Name: 199JLHOGSLHAL
Event Code: 6011
Message: Název tohoto počítače v systémech DNS a NetBIOS byl změněn z 199JLHOGSLHAL na WIN-0Q5K98SM3AD.
Record Number: 1
Source Name: EventLog
Time Written: 20160813180443.000000-000
Event Type: Informace
User:
=====Application event log=====
Computer Name: 199JLHOGSLHAL
Event Code: 105
Message:
Record Number: 5
Source Name: HPSrv
Time Written: 20160813180448.000000-000
Event Type: Informace
User:
Computer Name: 199JLHOGSLHAL
Event Code: 1531
Message: Služba Profil uživatele byla úspěšně spuštěna.
Record Number: 4
Source Name: Microsoft-Windows-User Profiles Service
Time Written: 20160813180443.977633-000
Event Type: Informace
User: NT AUTHORITY\SYSTEM
Computer Name: 199JLHOGSLHAL
Event Code: 1532
Message: Služba Profil uživatele byla zastavena.
Record Number: 3
Source Name: Microsoft-Windows-User Profiles Service
Time Written: 20150123114158.527062-000
Event Type: Informace
User: NT AUTHORITY\SYSTEM
Computer Name: 199JLHOGSLHAL
Event Code: 0
Message:
Record Number: 2
Source Name: igfxCUIService1.0.0.0
Time Written: 20160813180444.000000-000
Event Type: Informace
User:
Computer Name: WIN-0Q5K98SM3AD
Event Code: 4625
Message: Subsystém EventSystem zabraňuje vytváření duplicitních záznamů v protokolu událostí po dobu 86400 sekund. Tuto dobu lze změnit pomocí hodnoty REG_DWORD s názvem SuppressDuplicateDuration v následujícím klíči registru: HKLM\Software\Microsoft\EventSystem\EventLog.
Record Number: 1
Source Name: Microsoft-Windows-EventSystem
Time Written: 20160813180443.000000-000
Event Type: Informace
User:
=====Security event log=====
Computer Name: 199JLHOGSLHAL
Event Code: 4672
Message: Novému přihlášení byla přiřazena zvláštní oprávnění.
Předmět:
ID zabezpečení: S-1-5-18
Název účtu: SYSTEM
Doména účtu: NT AUTHORITY
ID přihlášení: 0x3E7
Oprávnění: SeAssignPrimaryTokenPrivilege
SeTcbPrivilege
SeSecurityPrivilege
SeTakeOwnershipPrivilege
SeLoadDriverPrivilege
SeBackupPrivilege
SeRestorePrivilege
SeDebugPrivilege
SeAuditPrivilege
SeSystemEnvironmentPrivilege
SeImpersonatePrivilege
Record Number: 5
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20160813180432.540944-000
Event Type: Úspěšný audit
User:
Computer Name: 199JLHOGSLHAL
Event Code: 4624
Message: Účet byl úspěšně přihlášen.
Předmět:
ID zabezpečení: S-1-5-18
Název účtu: 199JLHOGSLHAL$
Doména účtu: WORKGROUP
ID přihlášení: 0x3E7
Typ přihlášení: 5
Úroveň zosobnění: Zosobnění
Nové přihlášení:
ID zabezpečení: S-1-5-18
Název účtu: SYSTEM
Doména účtu: NT AUTHORITY
ID přihlášení: 0x3E7
GUID přihlášení: {00000000-0000-0000-0000-000000000000}
Informace o procesu:
ID procesu: 0x2a4
Název procesu: C:\Windows\System32\services.exe
Informace o síti:
Název pracovní stanice:
Adresa zdrojové sítě -
Zdrojový port: -
Podrobné informace o ověření:
Proces přihlášení: Advapi
Balíček ověření: Negotiate
Přenosové služby: -
Název balíčku (pouze NTLM): -
Délka klíče: 0
Tato událost je generována po vytvoření relace přihlášení. Je generována v počítači, ke kterému byl získán přístup.
Pole s předmětem označují účet v místním systému, který požadoval přihlášení. Jedná se nejčastěji o službu, například službu serveru nebo místní proces, například Winlogon.exe nebo Services.exe.
Pole Typ přihlášení označuje, k jakému typu přihlášení došlo. Nejběžnější typy jsou 2 (interaktivní) a 3 (síť).
Pole Nové přihlášení označují účet, pro který bylo nové přihlášení vytvořeno, tj. účet, který byl přihlášen.
Pole Síť označují původ požadavku na vzdálené přihlášení. Název pracovní stanice není vždy k dispozici a v některých případech může být toto pole prázdné.
Pole úrovně zosobnění označuje rozsah, ve kterém může být proces v přihlašovací relaci zosobněn.
Pole s informacemi o ověření poskytují podrobné informace o tomto konkrétním požadavku na přihlášení.
- GUID přihlášení je jednoznačný identifikátor, který je možné použít ke spojení této události s událostí KDC.
- Přenosové služby označují, které pomocné služby se podílely na tomto požadavku na přihlášení.
- Název balíčku označuje, který dílčí protokol z protokolů NTLM byl použit.
- Délka klíče označuje délku generovaného klíče relace. Tato hodnota bude 0, pokud nebyl požadován žádný klíč relace.
Record Number: 4
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20160813180432.540944-000
Event Type: Úspěšný audit
User:
Computer Name: 199JLHOGSLHAL
Event Code: 4902
Message: Tabulka zásad auditu pro jednotlivé uživatele byla vytvořena.
Počet prvků: 0
ID zásady: 0x562C8
Record Number: 3
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20160813180421.805545-000
Event Type: Úspěšný audit
User:
Computer Name: 199JLHOGSLHAL
Event Code: 4624
Message: Účet byl úspěšně přihlášen.
Předmět:
ID zabezpečení: S-1-0-0
Název účtu: -
Doména účtu: -
ID přihlášení: 0x0
Typ přihlášení: 0
Úroveň zosobnění: -
Nové přihlášení:
ID zabezpečení: S-1-5-18
Název účtu: SYSTEM
Doména účtu: NT AUTHORITY
ID přihlášení: 0x3E7
GUID přihlášení: {00000000-0000-0000-0000-000000000000}
Informace o procesu:
ID procesu: 0x4
Název procesu:
Informace o síti:
Název pracovní stanice: -
Adresa zdrojové sítě -
Zdrojový port: -
Podrobné informace o ověření:
Proces přihlášení: -
Balíček ověření: -
Přenosové služby: -
Název balíčku (pouze NTLM): -
Délka klíče: 0
Tato událost je generována po vytvoření relace přihlášení. Je generována v počítači, ke kterému byl získán přístup.
Pole s předmětem označují účet v místním systému, který požadoval přihlášení. Jedná se nejčastěji o službu, například službu serveru nebo místní proces, například Winlogon.exe nebo Services.exe.
Pole Typ přihlášení označuje, k jakému typu přihlášení došlo. Nejběžnější typy jsou 2 (interaktivní) a 3 (síť).
Pole Nové přihlášení označují účet, pro který bylo nové přihlášení vytvořeno, tj. účet, který byl přihlášen.
Pole Síť označují původ požadavku na vzdálené přihlášení. Název pracovní stanice není vždy k dispozici a v některých případech může být toto pole prázdné.
Pole úrovně zosobnění označuje rozsah, ve kterém může být proces v přihlašovací relaci zosobněn.
Pole s informacemi o ověření poskytují podrobné informace o tomto konkrétním požadavku na přihlášení.
- GUID přihlášení je jednoznačný identifikátor, který je možné použít ke spojení této události s událostí KDC.
- Přenosové služby označují, které pomocné služby se podílely na tomto požadavku na přihlášení.
- Název balíčku označuje, který dílčí protokol z protokolů NTLM byl použit.
- Délka klíče označuje délku generovaného klíče relace. Tato hodnota bude 0, pokud nebyl požadován žádný klíč relace.
Record Number: 2
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20160813180420.383566-000
Event Type: Úspěšný audit
User:
Computer Name: 199JLHOGSLHAL
Event Code: 4608
Message: Spouští se systém Windows.
Tato událost je zaznamenána při spuštění procesu LSASS.EXE a inicializaci kontrolního podsystému.
Record Number: 1
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20160813180420.305438-000
Event Type: Úspěšný audit
User:
======Environment variables======
"FP_NO_HOST_CHECK"=NO
"USERNAME"=SYSTEM
"Path"=C:\Program Files (x86)\Intel\iCLS Client\;C:\Program Files\Intel\iCLS Client\;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;c:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static;c:\Program Files\Intel\WiFi\bin\;c:\Program Files\Common Files\Intel\WirelessCommon\;C:\Program Files\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files\Intel\Intel(R) Management Engine Components\IPT;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT;C:\Program Files (x86)\Skype\Phone\
"ComSpec"=%SystemRoot%\system32\cmd.exe
"TMP"=%SystemRoot%\TEMP
"OS"=Windows_NT
"windir"=%SystemRoot%
"PROCESSOR_ARCHITECTURE"=AMD64
"TEMP"=%SystemRoot%\TEMP
"PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH;.MSC
"PSModulePath"=%SystemRoot%\system32\WindowsPowerShell\v1.0\Modules\
"NUMBER_OF_PROCESSORS"=4
"PROCESSOR_LEVEL"=6
"PROCESSOR_IDENTIFIER"=Intel64 Family 6 Model 61 Stepping 4, GenuineIntel
"PROCESSOR_REVISION"=3d04
"OnlineServices"=Online Services
"Platform"=BNB
"platformcode"=6U
"PTSMINSTALLPATH_X86"=c:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\
-----------------EOF-----------------
Re: Prosim o kotrolu
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 04-10-2016
Ran by Saša (07-10-2016 11:57:28)
Running from C:\Users\Saša\Downloads
Windows 8.1 (Update) (X64) (2016-08-14 00:09:34)
Boot Mode: Normal
==========================================================
==================== Accounts: =============================
Administrator (S-1-5-21-3091623106-1469607821-2556767161-500 - Administrator - Disabled)
Guest (S-1-5-21-3091623106-1469607821-2556767161-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-3091623106-1469607821-2556767161-1004 - Limited - Enabled)
Saša (S-1-5-21-3091623106-1469607821-2556767161-1002 - Administrator - Enabled) => C:\Users\Saša
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: Počítačová ochrana by F-Secure (Enabled - Up to date) {4CBE0CB6-C6C6-9D82-ECD2-A076E5981AC9}
AS: Počítačová ochrana by F-Secure (Enabled - Up to date) {F7DFED52-E0FC-920C-D662-9B049E1F5074}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
==================== Installed Programs ======================
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
µTorrent (HKU\S-1-5-21-3091623106-1469607821-2556767161-1002\...\uTorrent) (Version: 3.4.8.42576 - BitTorrent Inc.)
AMD Catalyst Install Manager (HKLM\...\{5094145C-9F17-8099-7F4F-E5AADD5E4065}) (Version: 8.0.916.0 - Advanced Micro Devices, Inc.)
Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.)
Computer Security 14.150.101.0 (release) (x32 Version: 14.150.101.0 - F-Secure Corporation) Hidden
Counter-Strike: Global Offensive (HKLM\...\Steam App 730) (Version: - Valve)
CyberLink Power2Go 8 (HKLM-x32\...\InstallShield_{2A87D48D-3FDF-41fd-97CD-A1E370EFFFE2}) (Version: 8.0.3.3207 - CyberLink Corp.)
CyberLink PowerDVD 12 (HKLM-x32\...\InstallShield_{B46BEA36-0B71-4A4E-AE41-87241643FA0A}) (Version: 12.0.3.3920 - CyberLink Corp.)
DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 10.4.0.0195 - Disc Soft Ltd)
Energy Star (HKLM-x32\...\{FC0ADA4D-8FA5-4452-8AFF-F0A0BAC97EF7}) (Version: 1.0.9 - Hewlett-Packard Company)
Foxit PhantomPDF (HKLM-x32\...\{5F3E0897-97AA-4FC2-A0A9-130A39D0FDFB}) (Version: 6.0.16.324 - Foxit Corporation)
F-Secure CCF Reputation (x32 Version: 2.0.1337.0 - F-Secure) Hidden
F-Secure CCF Scanning 1.72.115.709 (release) (x32 Version: 1.72.115.709 - F-Secure Corporation) Hidden
F-Secure Network CCF 1.04.119 (x32 Version: 1.04.119 - F-Secure Corporation) Hidden
F-Secure SafeSearch 1.09.109.0 (release) (x32 Version: 1.09.109.0 - F-Secure Corporation) Hidden
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 53.0.2785.143 - Google Inc.)
Google Update Helper (x32 Version: 1.3.31.5 - Google Inc.) Hidden
Heroes of Might and Magic V - Collectors Edition (HKLM-x32\...\Heroes of Might and Magic V - Collectors Edition3.1) (Version: 3.1 - Ubisoft)
Hewlett-Packard ACLM.NET v1.2.2.3 (x32 Version: 1.00.0000 - Hewlett-Packard Company) Hidden
HP 3D DriveGuard (HKLM-x32\...\{13133E99-B0D5-4143-B832-AAD55C62A41C}) (Version: 6.0.19.1 - Hewlett-Packard Company)
HP Camera Driver (HKLM-x32\...\Sunplus SPUVCb) (Version: 3.4.8.48 - SunplusIT)
HP Client Security Manager (HKLM\...\HPProtectTools) (Version: 8.3.7.1864 - Hewlett-Packard Company)
HP Device Access Manager (HKLM\...\{DBE16A07-DDFF-4453-807A-212EF93916E0}) (Version: 8.3.2.0 - Hewlett-Packard Company)
HP Documentation (HKLM-x32\...\{53AE55F3-8E99-4776-A347-06222894ECD3}) (Version: 1.1.0.0 - Hewlett-Packard)
HP Drive Encryption (HKLM\...\HPDriveEncryption) (Version: 8.6.11.10 - Hewlett-Packard Company)
HP ESU for Microsoft Windows 8.1 (HKLM-x32\...\{A3876D50-4A88-4A34-92E1-5D7BC8F886E1}) (Version: 1.0.1 - Hewlett-Packard Company)
HP File Sanitizer (HKLM-x32\...\{6349342F-9CEF-4A70-995A-2CF3704C2603}) (Version: 8.4.20.1 - Hewlett-Packard Company)
HP Hotkey Support (HKLM-x32\...\{445CC807-9384-47FA-A2B6-FFE970352B88}) (Version: 6.0.22.1 - Hewlett-Packard Company)
HP Registration Service (HKLM\...\{D1E8F2D7-7794-4245-B286-87ED86C1893C}) (Version: 1.2.7493.4758 - Hewlett-Packard)
HP SoftPaq Download Manager (HKLM-x32\...\{34FF930E-DBF9-4858-BAB5-BAC957BF616E}) (Version: 3.5.1.0 - Hewlett-Packard Company)
HP Software Setup (HKLM-x32\...\{F6D61EC9-347B-4019-9F8E-E24169F7C330}) (Version: 8.7.5 - Hewlett-Packard Company)
HP Support Assistant (HKLM-x32\...\{39C8BE76-CF6A-466F-8618-0B52CC4CA0FC}) (Version: 8.3.34.7 - HP Inc.)
HP Support Information (HKLM-x32\...\{B2B7B1C8-7C8B-476C-BE2C-049731C55992}) (Version: 13.00.0000 - Hewlett-Packard)
HP Support Solutions Framework (HKLM-x32\...\{7C3170E8-E61A-41D9-8547-8E96445EA510}) (Version: 12.5.32.37 - HP Inc.)
HP System Default Settings (HKLM-x32\...\{29641907-0BBA-4832-B6DE-349DAA655883}) (Version: 2.1.1 - Hewlett-Packard Company)
HP Theft Recovery (HKLM-x32\...\InstallShield_{B1E569B6-A5EB-4C97-9F93-9ED2AA99AF0E}) (Version: 8.3.0.7 - Hewlett-Packard Company)
HP Wireless Button Driver (HKLM-x32\...\{30B2D1D8-0A07-4B71-9553-0710C5D31E35}) (Version: 1.1.2.1 - Hewlett-Packard Company)
HP Wireless Hotspot (HKLM-x32\...\{563ADFC1-38E6-4EF0-8763-7CDA8289944B}) (Version: 1.0.25.1 - Hewlett-Packard Company)
Intel(R) Chipset Device Software (x32 Version: 10.0.22 - Intel(R) Corporation) Hidden
Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 10.0.30.1072 - Intel Corporation)
Intel(R) PRO/Wireless Driver (HKLM\...\{250fe254-6a88-4792-ba37-86d3e156dc3d}) (Version: 17.13.0000.1890 - Intel Corporation)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.14.4280 - Intel Corporation)
Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 13.2.8.1002 - Intel Corporation)
Intel(R) Smart Connect Technology (HKLM\...\{CAB8255F-E9B7-4EFC-9C9B-2D3A4C954294}) (Version: 5.0.10.2861 - Intel Corporation)
Intel(R) Wireless Bluetooth(R) (HKLM-x32\...\{915DDCDE-7767-4B4A-9256-8729B265BDAC}) (Version: 17.1.1440.02 - Intel Corporation)
League of Legends (HKLM-x32\...\League of Legends 4.1.2) (Version: 4.1.2 - Riot Games)
League of Legends (x32 Version: 4.1.2 - Riot Games) Hidden
Mafia II (HKLM-x32\...\Mafia II_is1) (Version: - )
Microsoft Office (HKLM-x32\...\{90150000-0138-0409-0000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 (HKLM-x32\...\{15134cb0-b767-4960-a911-f2d16ae54797}) (Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.51106 (HKLM-x32\...\{6e8f74e0-43bd-4dce-8477-6ff6828acc07}) (Version: 11.0.51106.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (HKLM-x32\...\{22154f09-719a-4619-bb71-5b3356999fbf}) (Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.51106 (HKLM-x32\...\{8e70e4e1-06d7-470b-9f74-a51bef21088e}) (Version: 11.0.51106.1 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 (HKLM-x32\...\{7f51bdb9-ee21-49ee-94d6-90afc321780e}) (Version: 12.0.21005.1 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM-x32\...\{ce085a78-074e-4823-8dc1-8a721b94b76d}) (Version: 12.0.21005.1 - Microsoft Corporation)
OEM Application Profile (HKLM-x32\...\{29F5A1C9-0BC3-16E6-9384-3BC5D1CB7ACE}) (Version: 1.00.0000 - Název společnosti:)
OEM Application Profile (HKLM-x32\...\{FCCF4B77-432F-EA83-4289-40C1DFA14C85}) (Version: 1.00.0000 - Advanced Micro Devices, Inc.)
Online Safety 2.150.3659.2518 (x32 Version: 2.150.3659.2518 - F-Secure Corporation) Hidden
PokerStars.eu (HKLM-x32\...\PokerStars.eu) (Version: - PokerStars.eu)
PX Profile Update (x32 Version: 1.00.1. - AMD) Hidden
Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 6.3.273.49 - Realtek Semiconductor Corp.)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 8.30.328.2014 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7383 - Realtek Semiconductor Corp.)
Skype™ 7.27 (HKLM-x32\...\{FC965A47-4839-40CA-B618-18F486F042C6}) (Version: 7.27.101 - Skype Technologies S.A.)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 18.1.37.4 - Synaptics Incorporated)
Team Fortress 2 (HKLM\...\Steam App 440) (Version: - Valve)
TeamSpeak 3 Client (HKLM-x32\...\TeamSpeak 3 Client) (Version: 3.0.19 - TeamSpeak Systems GmbH)
UPC Smart Guard (HKLM-x32\...\F-Secure ServiceEnabler 45329) (Version: 2.50.214.0 - F-Secure Corporation)
UPC Smart Guard (x32 Version: 2.50.214.0 - F-Secure Corporation) Hidden
Validity Fingerprint Sensor Driver (HKLM\...\{ADAA7361-54B8-4FC8-804E-94EC6C11ED68}) (Version: 4.5.133.0 - Validity Sensors, Inc.)
War Thunder Launcher 1.0.1.674 (HKLM-x32\...\{ed8deea4-29fa-3932-9612-e2122d8a62d9}}_is1) (Version: - Gaijin Entertainment)
WinRAR 5.40 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.40.0 - win.rar GmbH)
==================== Custom CLSID (Whitelisted): ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
CustomCLSID: HKU\S-1-5-21-3091623106-1469607821-2556767161-1002_Classes\CLSID\{820D63D5-8CFF-46DE-86AF-4997DEDD6DB5}\localserver32 -> C:\WINDOWS\system32\igfxEM.exe (Intel Corporation)
==================== Scheduled Tasks (Whitelisted) =============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {01BA9117-94D2-4593-BB90-2CD908E00C30} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Report => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSFReport.exe [2016-07-04] (HP Inc.)
Task: {0B545118-B563-42FC-8D07-B78F602FCF34} - System32\Tasks\Microsoft\Windows\WS\WSRefreshBannedAppsListTask => Rundll32.exe WSClient.dll,RefreshBannedAppsList
Task: {0E8C2717-F7E0-4EF9-8EE0-4AC3DD184A43} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2016-08-23] (HP Inc.)
Task: {49D1DF28-60B5-4D92-9BCF-A64A45994990} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-08-14] (Google Inc.)
Task: {6ADC0A05-4183-4B9D-9718-E5FACA067BFF} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-08-14] (Google Inc.)
Task: {8E6B8D8D-CBDC-4075-9784-B9B2B9E7A06A} - System32\Tasks\HPCeeScheduleForSaša => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [2016-05-12] (HP Development Company, L.P.)
Task: {B63D279F-A058-4F2A-A6B1-9627C9FB399A} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2016-08-23] (HP Inc.)
Task: {B6D5959C-0D02-4AE9-BE13-EBBC51D6E3E6} - System32\Tasks\F-Secure\F-Secure GUI => C:\Program Files (x86)\UPC Smart Guard\FsGuiStarter.exe [2016-03-11] (F-Secure Corporation)
Task: {C91A6CB1-391D-40F7-96DE-BEB8B2874563} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe [2016-08-03] (HP Inc.)
Task: {E3AEBE7D-B1EA-4226-AC44-68E9EEBAE11E} - System32\Tasks\Synaptics TouchPad Enhancements => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2016-09-15] (Synaptics Incorporated)
Task: {EC401263-C84D-4A65-85C9-16710A7D6400} - System32\Tasks\Hewlett-Packard\HP Active Health\HP Active Health Scan (HPSA) => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPActiveHealth\ActiveHealth.exe [2016-08-18] (HP Inc.)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\HPCeeScheduleForSaša.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe
==================== Shortcuts =============================
(The entries could be listed to be restored or removed.)
ShortcutWithArgument: C:\Users\Saša\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Bing.lnk -> C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe () -> www.bing.com
==================== Loaded Modules (Whitelisted) ==============
2014-05-28 11:14 - 2014-05-28 11:14 - 00336056 _____ () c:\Program Files\Hewlett-Packard\Pre-Boot Security for HP ProtectTools\BIOSDomainPlugin.dll
2014-03-31 15:28 - 2014-03-31 15:28 - 00007168 _____ () C:\Program Files (x86)\Hewlett-Packard\HP Theft Recovery\CtService.exe
2014-08-14 11:28 - 2014-08-14 11:28 - 00209712 _____ () c:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTAgent.exe
2014-08-14 11:28 - 2014-08-14 11:28 - 00057648 _____ () c:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\NetworkHeuristic.dll
2014-08-14 11:28 - 2014-08-14 11:28 - 00057648 _____ () c:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\ISCTEncryptionCheck.dll
2014-08-14 11:28 - 2014-08-14 11:28 - 00037168 _____ () c:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\ISCTNetMon.dll
2014-10-28 12:49 - 2016-09-15 14:21 - 00393320 _____ () C:\WINDOWS\system32\igfxTray.exe
2016-10-04 02:09 - 2016-09-25 08:02 - 02279528 _____ () C:\Program Files (x86)\Google\Chrome\Application\53.0.2785.143\libglesv2.dll
2016-10-04 02:09 - 2016-09-25 08:02 - 00107112 _____ () C:\Program Files (x86)\Google\Chrome\Application\53.0.2785.143\libegl.dll
2016-09-08 18:33 - 2015-11-24 12:26 - 00072744 _____ () C:\Program Files (x86)\UPC Smart Guard\apps\ComputerSecurity\Anti-Virus\FSAVHRES.eng
2016-03-11 15:14 - 2016-03-11 15:14 - 00250840 _____ () C:\Program Files (x86)\UPC Smart Guard\daas2.dll
2016-09-08 18:37 - 2016-09-08 18:37 - 00093152 _____ () C:\Program Files (x86)\UPC Smart Guard\apps\ComputerSecurity\Anti-Virus\minifilter\hashlib_x86.dll
2016-09-08 18:33 - 2016-09-08 18:37 - 00213984 _____ () C:\Program Files (x86)\UPC Smart Guard\apps\ComputerSecurity\Spam Control\fsas.dll
2016-09-08 18:33 - 2016-09-08 18:37 - 00932320 _____ () C:\Program Files (x86)\UPC Smart Guard\apps\ComputerSecurity\Anti-Virus\fm4av.dll
2014-10-10 11:37 - 2014-10-10 11:37 - 01243936 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll
2015-01-23 13:24 - 2013-08-05 09:49 - 00627672 _____ () C:\Program Files (x86)\CyberLink\Power2Go8\CLMediaLibrary.dll
2013-08-05 17:48 - 2013-08-05 17:48 - 00016856 _____ () c:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvcPS.dll
==================== Alternate Data Streams (Whitelisted) =========
(If an entry is included in the fixlist, only the ADS will be removed.)
==================== Safe Mode (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
==================== Association (Whitelisted) ===============
(If an entry is included in the fixlist, the registry item will be restored to default or removed.)
==================== Internet Explorer trusted/restricted ===============
(If an entry is included in the fixlist, it will be removed from the registry.)
==================== Hosts content: ===============================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2013-08-22 15:25 - 2013-08-22 15:25 - 00000824 ____A C:\WINDOWS\system32\Drivers\etc\hosts
==================== Other Areas ============================
(Currently there is no automatic fix for this section.)
HKU\S-1-5-21-3091623106-1469607821-2556767161-1002\Control Panel\Desktop\\Wallpaper -> C:\WINDOWS\web\wallpaper\HP\Washing-up-time.jpg
DNS Servers: 213.46.172.36 - 213.46.172.37
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.
==================== MSCONFIG/TASK MANAGER disabled items ==
==================== FirewallRules (Whitelisted) ===============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139
FirewallRules: [{6639FFC6-9871-44C6-AC86-E2C6963CF212}] => (Allow) c:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe
FirewallRules: [{DCCD81AC-F88C-4C4A-A980-8F1B5D6D7A53}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{C33DD95E-A318-41F0-938A-37BE717AC80E}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{0C808333-34DC-44A4-B95B-6EE5E68BA60C}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{0F6B1F98-B2C7-4B23-AE63-633901238782}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{FD38A4D1-0CB2-417D-95B3-E3C129E837D5}] => (Allow) c:\Program Files (x86)\CyberLink\PowerDVD12\PowerDVD12.exe
FirewallRules: [{BC6883C5-55F8-4BC3-B855-10F585694EAC}] => (Allow) c:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMR\PowerDVD12DMREngine.exe
FirewallRules: [{29A6B2D8-373A-4CEB-9548-996FEA815D02}] => (Allow) c:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSServerPDVD12.exe
FirewallRules: [{65387A2F-1A05-4441-86EA-366AF0B1BC70}] => (Allow) c:\Program Files (x86)\CyberLink\PowerDVD12\PowerDVD12Agent.exe
FirewallRules: [{4AEA12F2-A046-43F7-96D1-9EF3F8705F6D}] => (Allow) c:\Program Files (x86)\CyberLink\PowerDVD12\PowerDVD12ML.exe
FirewallRules: [{79DA01D9-6CE8-4AB9-94DE-832BED1A85C3}] => (Allow) c:\Program Files (x86)\CyberLink\PowerDVD12\Movie\PowerDVD.exe
FirewallRules: [TCP Query User{CC02DBA1-AE35-4453-B40E-D75C623CC53C}C:\program files (x86)\skype\phone\skype.exe] => (Block) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [UDP Query User{FE366391-3093-4FAB-99F0-2F3EBAF98F09}C:\program files (x86)\skype\phone\skype.exe] => (Block) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [TCP Query User{58D8083D-4342-4B21-BC27-A97528142CDC}C:\program files (x86)\skype\phone\skype.exe] => (Block) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [UDP Query User{F6AA4928-B677-4CF6-86DE-D12651326F06}C:\program files (x86)\skype\phone\skype.exe] => (Block) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [{EF0542F1-4586-442A-8EB0-1E820016542A}] => (Allow) C:\WarThunder\launcher.exe
FirewallRules: [{6B390EB2-71BB-4751-9E03-08C6B080C379}] => (Allow) C:\WarThunder\launcher.exe
FirewallRules: [TCP Query User{5BA97BF3-F351-43A3-82F4-798A2C28D61D}C:\warthunder\win64\aces.exe] => (Allow) C:\warthunder\win64\aces.exe
FirewallRules: [UDP Query User{2364754C-8B2B-43C9-98FE-850F4DFF3334}C:\warthunder\win64\aces.exe] => (Allow) C:\warthunder\win64\aces.exe
FirewallRules: [{4A619D3E-A8E3-4B79-ACA9-8D8E16325888}] => (Allow) C:\Users\Saša\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{77449343-DC0B-4FE9-9B5F-90BA4720B719}] => (Allow) C:\Users\Saša\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{222EF888-EB0C-4788-BACC-34BDC0F92EA4}] => (Allow) C:\Users\Saša\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{5623E265-FF79-4B83-A04C-F5632A7F648C}] => (Allow) C:\Users\Saša\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{7AB6DB16-60EC-449B-9118-1A4F7057B42A}] => (Allow) C:\Users\Saša\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{9353C1D8-E38B-489B-8977-B99851AD4823}] => (Allow) C:\Users\Saša\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{54D14AD0-376D-4C12-930D-05AC67A59CB8}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{32319AA9-F002-4AD9-9F3A-11FE96702E6E}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{A8055F89-6C0B-40BB-BA33-AEF65F7C0993}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
FirewallRules: [{34C84ED0-3966-4344-8FDB-6976D3EBCB3E}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
FirewallRules: [{8542054C-54EA-4F8F-BA80-8E98397B8F3E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Team Fortress 2\hl2.exe
FirewallRules: [{D26CE6A8-38C0-4997-A648-4F5D5F3B4A9C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Team Fortress 2\hl2.exe
FirewallRules: [{F4551036-2BF7-41FC-860E-7793B2885F90}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{1CF44D3E-F38C-4D26-B034-C5B536C603D5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{2D2809D0-4576-42A9-BECF-32794D3BD92A}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
FirewallRules: [TCP Query User{7EAADC4A-C254-4FFE-90B6-0514C7D68BA9}C:\heroes of might and magic v - collectors edition\hmm5\bin\h5_game.exe] => (Allow) C:\heroes of might and magic v - collectors edition\hmm5\bin\h5_game.exe
FirewallRules: [UDP Query User{9908EEF1-4274-4AB8-8FD7-46465B64E12A}C:\heroes of might and magic v - collectors edition\hmm5\bin\h5_game.exe] => (Allow) C:\heroes of might and magic v - collectors edition\hmm5\bin\h5_game.exe
==================== Restore Points =========================
==================== Faulty Device Manager Devices =============
==================== Event log errors: =========================
Application errors:
==================
Error: (10/07/2016 11:44:15 AM) (Source: Windows Search Service) (EventID: 10021) (User: )
Description: Nelze načíst informace registru o čítači výkonu pro WSearchIdxPi pro instanci z důvodu následující chyby: Operace byla dokončena úspěšně. 0x0.
Error: (10/07/2016 11:44:14 AM) (Source: Windows Search Service) (EventID: 3007) (User: )
Description: Sledování výkonu objektu indexovacího modulu nebylo inicializováno, protože nejsou načteny čítače nebo nebyl otevřen sdílený objekt paměti. Tato skutečnost má vliv pouze na dostupnost čítačů výkonu. Restartujte počítač.
Kontext: aplikace , katalog SystemIndex
Error: (10/07/2016 11:44:12 AM) (Source: Windows Search Service) (EventID: 3006) (User: )
Description: Sledování výkonu služby indexovacího modulu nebylo inicializováno, protože nejsou načteny čítače nebo nebyl otevřen sdílený objekt paměti. Tato skutečnost má vliv pouze na dostupnost čítačů výkonu. Restartujte počítač.
Error: (10/07/2016 11:38:23 AM) (Source: FSecure-FSecure-F-Secure Anti-Virus) (EventID: 103) (User: )
Description: 7 2016-10-07 11:38:23+02:00 MUJPC MujPC\Saša F-Secure Anti-Virus
Malicious code found in computer MUJPC.
Infection: Gen:Variant.Graftor.308444
Action: The scanner was unable to remove the infection.
Error: (10/07/2016 11:34:05 AM) (Source: FSecure-FSecure-F-Secure Anti-Virus) (EventID: 103) (User: )
Description: 6 2016-10-07 11:34:05+02:00 MUJPC MujPC\Saša F-Secure Anti-Virus
Malicious code found in file C:\Users\Saša\AppData\Local\Temp\Rar$EXa0.342\Mafia 3 PC_RUS.exe.
Infection: Gen:Variant.Graftor.308444
Error: (10/05/2016 05:24:16 AM) (Source: FSecure-FSecure-F-Secure Anti-Virus) (EventID: 103) (User: )
Description: 5 2016-10-05 05:24:15+02:00 MUJPC MujPC\Saša F-Secure Anti-Virus
Scanning of \DEVICE\HARDDISKVOLUME4\RIOT GAMES\LEAGUE OF LEGENDS\RADS\PROJECTS\LOL_PATCHER\RELEASES\0.0.0.68\DEPLOY\LOLPATCHER.EXE was aborted due to exceeded scanning time limit. The file may be in use or reading it was too slow (e.g. network connection was under stress).
Error: (10/04/2016 07:29:29 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program Explorer.EXE verze 6.3.9600.18231 přestal spolupracovat se systémem Windows a byl ukončen. Chcete-li zjistit, zda je k dispozici více informací o tomto problému, vyhledejte historii problému v ovládacím panelu Centrum akcí.
ID procesu: 12d0
Čas spuštění: 01d21d7a7d2f619f
Čas ukončení: 0
Cesta k aplikaci: C:\WINDOWS\Explorer.EXE
ID hlášení: e2e20909-8a56-11e6-8260-d07e35ca269a
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:
Error: (10/04/2016 08:41:00 AM) (Source: Perflib) (EventID: 1008) (User: )
Description: Procedura Open pro službu .NETFramework v knihovně DLL C:\WINDOWS\system32\mscoree.dll se nezdařila. Výkonnostní data pro tuto službu nebudou k dispozici. Vrácený kód stavu představují první čtyři bajty (DWORD) datové části.
Error: (10/04/2016 01:06:21 AM) (Source: FSecure-FSecure-F-Secure Anti-Virus) (EventID: 103) (User: )
Description: 4 2016-10-04 01:06:21+02:00 MUJPC MujPC\Saša F-Secure Anti-Virus
Malicious code found in file C:\Users\Saša\AppData\Local\Temp\is-3D96L.tmp\json_parser.exe.
Infection: Gen:Variant.Symmi.42286
Action: The file was deleted.
Error: (10/04/2016 01:02:17 AM) (Source: FSecure-FSecure-F-Secure Anti-Virus) (EventID: 103) (User: )
Description: 3 2016-10-04 01:02:17+02:00 MUJPC MujPC\Saša F-Secure Anti-Virus
Malicious code found in file C:\Users\Saša\AppData\Local\Temp\is-IQTPC.tmp\json_parser.exe.
Infection: Gen:Variant.Symmi.42286
Action: The file was deleted.
System errors:
=============
Error: (10/07/2016 11:45:49 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba Steam Client Service neuspěla při spuštění v důsledku následující chyby:
Služba neodpověděla na řídicí nebo zahajovací požadavek dostatečně včas.
Error: (10/07/2016 11:45:49 AM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Při čekání na připojení služby Steam Client Service bylo dosaženo časového limitu (30000 ms).
Error: (10/07/2016 11:41:23 AM) (Source: volsnap) (EventID: 25) (User: )
Description: Stínové kopie svazku C: byly smazány, protože úložiště stínové kopie nebylo možné včas zvětšit. Zvažte možnost snížení vstupně-výstupního zatížení systému nebo zvolte svazek úložiště stínové kopie, pro který není vytvářena stínová kopie.
Error: (10/05/2016 09:38:58 AM) (Source: DCOM) (EventID: 10010) (User: MujPC)
Description: Server {4545DEA0-2DFC-4906-A728-6D986BA399A9} se v daném časovém limitu neregistroval u služby DCOM.
Error: (10/05/2016 09:38:58 AM) (Source: DCOM) (EventID: 10010) (User: MujPC)
Description: Server {4545DEA0-2DFC-4906-A728-6D986BA399A9} se v daném časovém limitu neregistroval u služby DCOM.
Error: (10/05/2016 09:38:53 AM) (Source: DCOM) (EventID: 10010) (User: MujPC)
Description: Server {3FCB7074-EC9E-4AAF-9BE3-C0E356942366} se v daném časovém limitu neregistroval u služby DCOM.
Error: (10/05/2016 09:38:53 AM) (Source: DCOM) (EventID: 10010) (User: MujPC)
Description: Server {3FCB7074-EC9E-4AAF-9BE3-C0E356942366} se v daném časovém limitu neregistroval u služby DCOM.
Error: (10/05/2016 09:38:52 AM) (Source: DCOM) (EventID: 10010) (User: MujPC)
Description: Server {4545DEA0-2DFC-4906-A728-6D986BA399A9} se v daném časovém limitu neregistroval u služby DCOM.
Error: (10/05/2016 09:38:52 AM) (Source: DCOM) (EventID: 10010) (User: MujPC)
Description: Server {4545DEA0-2DFC-4906-A728-6D986BA399A9} se v daném časovém limitu neregistroval u služby DCOM.
Error: (10/05/2016 06:04:00 AM) (Source: DCOM) (EventID: 10010) (User: MujPC)
Description: Server {1B1F472E-3221-4826-97DB-2C2324D389AE} se v daném časovém limitu neregistroval u služby DCOM.
CodeIntegrity:
===================================
Date: 2016-08-27 10:07:08.876
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\amdhdl64.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2016-08-26 04:40:24.896
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\amdhdl64.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2016-08-24 07:19:59.817
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\amdhdl64.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2016-08-14 04:17:09.796
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\amdhdl64.dll that did not meet the Custom 3 / Antimalware signing level requirements.
==================== Memory info ===========================
Processor: Intel(R) Core(TM) i7-5500U CPU @ 2.40GHz
Percentage of memory in use: 31%
Total physical RAM: 8083.11 MB
Available physical RAM: 5544.43 MB
Total Virtual: 9107.11 MB
Available Virtual: 6125.59 MB
==================== Drives ================================
Drive c: (Windows) (Fixed) (Total:914.77 GB) (Free:778.94 GB) NTFS
Drive d: (Recovery Image) (Fixed) (Total:13.26 GB) (Free:1.37 GB) NTFS
Drive e: (HP_TOOLS) (Fixed) (Total:1.99 GB) (Free:1.99 GB) FAT32
Drive h: (Mafia II) (CDROM) (Total:5.57 GB) (Free:0 GB) CDFS
Drive i: (LEGO Racers 2) (CDROM) (Total:0.46 GB) (Free:0 GB) CDFS
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (Size: 931.5 GB) (Disk ID: 5EBF270B)
Partition: GPT.
==================== End of Addition.txt ============================
Ran by Saša (07-10-2016 11:57:28)
Running from C:\Users\Saša\Downloads
Windows 8.1 (Update) (X64) (2016-08-14 00:09:34)
Boot Mode: Normal
==========================================================
==================== Accounts: =============================
Administrator (S-1-5-21-3091623106-1469607821-2556767161-500 - Administrator - Disabled)
Guest (S-1-5-21-3091623106-1469607821-2556767161-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-3091623106-1469607821-2556767161-1004 - Limited - Enabled)
Saša (S-1-5-21-3091623106-1469607821-2556767161-1002 - Administrator - Enabled) => C:\Users\Saša
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: Počítačová ochrana by F-Secure (Enabled - Up to date) {4CBE0CB6-C6C6-9D82-ECD2-A076E5981AC9}
AS: Počítačová ochrana by F-Secure (Enabled - Up to date) {F7DFED52-E0FC-920C-D662-9B049E1F5074}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
==================== Installed Programs ======================
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
µTorrent (HKU\S-1-5-21-3091623106-1469607821-2556767161-1002\...\uTorrent) (Version: 3.4.8.42576 - BitTorrent Inc.)
AMD Catalyst Install Manager (HKLM\...\{5094145C-9F17-8099-7F4F-E5AADD5E4065}) (Version: 8.0.916.0 - Advanced Micro Devices, Inc.)
Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.)
Computer Security 14.150.101.0 (release) (x32 Version: 14.150.101.0 - F-Secure Corporation) Hidden
Counter-Strike: Global Offensive (HKLM\...\Steam App 730) (Version: - Valve)
CyberLink Power2Go 8 (HKLM-x32\...\InstallShield_{2A87D48D-3FDF-41fd-97CD-A1E370EFFFE2}) (Version: 8.0.3.3207 - CyberLink Corp.)
CyberLink PowerDVD 12 (HKLM-x32\...\InstallShield_{B46BEA36-0B71-4A4E-AE41-87241643FA0A}) (Version: 12.0.3.3920 - CyberLink Corp.)
DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 10.4.0.0195 - Disc Soft Ltd)
Energy Star (HKLM-x32\...\{FC0ADA4D-8FA5-4452-8AFF-F0A0BAC97EF7}) (Version: 1.0.9 - Hewlett-Packard Company)
Foxit PhantomPDF (HKLM-x32\...\{5F3E0897-97AA-4FC2-A0A9-130A39D0FDFB}) (Version: 6.0.16.324 - Foxit Corporation)
F-Secure CCF Reputation (x32 Version: 2.0.1337.0 - F-Secure) Hidden
F-Secure CCF Scanning 1.72.115.709 (release) (x32 Version: 1.72.115.709 - F-Secure Corporation) Hidden
F-Secure Network CCF 1.04.119 (x32 Version: 1.04.119 - F-Secure Corporation) Hidden
F-Secure SafeSearch 1.09.109.0 (release) (x32 Version: 1.09.109.0 - F-Secure Corporation) Hidden
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 53.0.2785.143 - Google Inc.)
Google Update Helper (x32 Version: 1.3.31.5 - Google Inc.) Hidden
Heroes of Might and Magic V - Collectors Edition (HKLM-x32\...\Heroes of Might and Magic V - Collectors Edition3.1) (Version: 3.1 - Ubisoft)
Hewlett-Packard ACLM.NET v1.2.2.3 (x32 Version: 1.00.0000 - Hewlett-Packard Company) Hidden
HP 3D DriveGuard (HKLM-x32\...\{13133E99-B0D5-4143-B832-AAD55C62A41C}) (Version: 6.0.19.1 - Hewlett-Packard Company)
HP Camera Driver (HKLM-x32\...\Sunplus SPUVCb) (Version: 3.4.8.48 - SunplusIT)
HP Client Security Manager (HKLM\...\HPProtectTools) (Version: 8.3.7.1864 - Hewlett-Packard Company)
HP Device Access Manager (HKLM\...\{DBE16A07-DDFF-4453-807A-212EF93916E0}) (Version: 8.3.2.0 - Hewlett-Packard Company)
HP Documentation (HKLM-x32\...\{53AE55F3-8E99-4776-A347-06222894ECD3}) (Version: 1.1.0.0 - Hewlett-Packard)
HP Drive Encryption (HKLM\...\HPDriveEncryption) (Version: 8.6.11.10 - Hewlett-Packard Company)
HP ESU for Microsoft Windows 8.1 (HKLM-x32\...\{A3876D50-4A88-4A34-92E1-5D7BC8F886E1}) (Version: 1.0.1 - Hewlett-Packard Company)
HP File Sanitizer (HKLM-x32\...\{6349342F-9CEF-4A70-995A-2CF3704C2603}) (Version: 8.4.20.1 - Hewlett-Packard Company)
HP Hotkey Support (HKLM-x32\...\{445CC807-9384-47FA-A2B6-FFE970352B88}) (Version: 6.0.22.1 - Hewlett-Packard Company)
HP Registration Service (HKLM\...\{D1E8F2D7-7794-4245-B286-87ED86C1893C}) (Version: 1.2.7493.4758 - Hewlett-Packard)
HP SoftPaq Download Manager (HKLM-x32\...\{34FF930E-DBF9-4858-BAB5-BAC957BF616E}) (Version: 3.5.1.0 - Hewlett-Packard Company)
HP Software Setup (HKLM-x32\...\{F6D61EC9-347B-4019-9F8E-E24169F7C330}) (Version: 8.7.5 - Hewlett-Packard Company)
HP Support Assistant (HKLM-x32\...\{39C8BE76-CF6A-466F-8618-0B52CC4CA0FC}) (Version: 8.3.34.7 - HP Inc.)
HP Support Information (HKLM-x32\...\{B2B7B1C8-7C8B-476C-BE2C-049731C55992}) (Version: 13.00.0000 - Hewlett-Packard)
HP Support Solutions Framework (HKLM-x32\...\{7C3170E8-E61A-41D9-8547-8E96445EA510}) (Version: 12.5.32.37 - HP Inc.)
HP System Default Settings (HKLM-x32\...\{29641907-0BBA-4832-B6DE-349DAA655883}) (Version: 2.1.1 - Hewlett-Packard Company)
HP Theft Recovery (HKLM-x32\...\InstallShield_{B1E569B6-A5EB-4C97-9F93-9ED2AA99AF0E}) (Version: 8.3.0.7 - Hewlett-Packard Company)
HP Wireless Button Driver (HKLM-x32\...\{30B2D1D8-0A07-4B71-9553-0710C5D31E35}) (Version: 1.1.2.1 - Hewlett-Packard Company)
HP Wireless Hotspot (HKLM-x32\...\{563ADFC1-38E6-4EF0-8763-7CDA8289944B}) (Version: 1.0.25.1 - Hewlett-Packard Company)
Intel(R) Chipset Device Software (x32 Version: 10.0.22 - Intel(R) Corporation) Hidden
Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 10.0.30.1072 - Intel Corporation)
Intel(R) PRO/Wireless Driver (HKLM\...\{250fe254-6a88-4792-ba37-86d3e156dc3d}) (Version: 17.13.0000.1890 - Intel Corporation)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.14.4280 - Intel Corporation)
Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 13.2.8.1002 - Intel Corporation)
Intel(R) Smart Connect Technology (HKLM\...\{CAB8255F-E9B7-4EFC-9C9B-2D3A4C954294}) (Version: 5.0.10.2861 - Intel Corporation)
Intel(R) Wireless Bluetooth(R) (HKLM-x32\...\{915DDCDE-7767-4B4A-9256-8729B265BDAC}) (Version: 17.1.1440.02 - Intel Corporation)
League of Legends (HKLM-x32\...\League of Legends 4.1.2) (Version: 4.1.2 - Riot Games)
League of Legends (x32 Version: 4.1.2 - Riot Games) Hidden
Mafia II (HKLM-x32\...\Mafia II_is1) (Version: - )
Microsoft Office (HKLM-x32\...\{90150000-0138-0409-0000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 (HKLM-x32\...\{15134cb0-b767-4960-a911-f2d16ae54797}) (Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.51106 (HKLM-x32\...\{6e8f74e0-43bd-4dce-8477-6ff6828acc07}) (Version: 11.0.51106.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (HKLM-x32\...\{22154f09-719a-4619-bb71-5b3356999fbf}) (Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.51106 (HKLM-x32\...\{8e70e4e1-06d7-470b-9f74-a51bef21088e}) (Version: 11.0.51106.1 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 (HKLM-x32\...\{7f51bdb9-ee21-49ee-94d6-90afc321780e}) (Version: 12.0.21005.1 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM-x32\...\{ce085a78-074e-4823-8dc1-8a721b94b76d}) (Version: 12.0.21005.1 - Microsoft Corporation)
OEM Application Profile (HKLM-x32\...\{29F5A1C9-0BC3-16E6-9384-3BC5D1CB7ACE}) (Version: 1.00.0000 - Název společnosti:)
OEM Application Profile (HKLM-x32\...\{FCCF4B77-432F-EA83-4289-40C1DFA14C85}) (Version: 1.00.0000 - Advanced Micro Devices, Inc.)
Online Safety 2.150.3659.2518 (x32 Version: 2.150.3659.2518 - F-Secure Corporation) Hidden
PokerStars.eu (HKLM-x32\...\PokerStars.eu) (Version: - PokerStars.eu)
PX Profile Update (x32 Version: 1.00.1. - AMD) Hidden
Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 6.3.273.49 - Realtek Semiconductor Corp.)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 8.30.328.2014 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7383 - Realtek Semiconductor Corp.)
Skype™ 7.27 (HKLM-x32\...\{FC965A47-4839-40CA-B618-18F486F042C6}) (Version: 7.27.101 - Skype Technologies S.A.)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 18.1.37.4 - Synaptics Incorporated)
Team Fortress 2 (HKLM\...\Steam App 440) (Version: - Valve)
TeamSpeak 3 Client (HKLM-x32\...\TeamSpeak 3 Client) (Version: 3.0.19 - TeamSpeak Systems GmbH)
UPC Smart Guard (HKLM-x32\...\F-Secure ServiceEnabler 45329) (Version: 2.50.214.0 - F-Secure Corporation)
UPC Smart Guard (x32 Version: 2.50.214.0 - F-Secure Corporation) Hidden
Validity Fingerprint Sensor Driver (HKLM\...\{ADAA7361-54B8-4FC8-804E-94EC6C11ED68}) (Version: 4.5.133.0 - Validity Sensors, Inc.)
War Thunder Launcher 1.0.1.674 (HKLM-x32\...\{ed8deea4-29fa-3932-9612-e2122d8a62d9}}_is1) (Version: - Gaijin Entertainment)
WinRAR 5.40 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.40.0 - win.rar GmbH)
==================== Custom CLSID (Whitelisted): ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
CustomCLSID: HKU\S-1-5-21-3091623106-1469607821-2556767161-1002_Classes\CLSID\{820D63D5-8CFF-46DE-86AF-4997DEDD6DB5}\localserver32 -> C:\WINDOWS\system32\igfxEM.exe (Intel Corporation)
==================== Scheduled Tasks (Whitelisted) =============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {01BA9117-94D2-4593-BB90-2CD908E00C30} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Report => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSFReport.exe [2016-07-04] (HP Inc.)
Task: {0B545118-B563-42FC-8D07-B78F602FCF34} - System32\Tasks\Microsoft\Windows\WS\WSRefreshBannedAppsListTask => Rundll32.exe WSClient.dll,RefreshBannedAppsList
Task: {0E8C2717-F7E0-4EF9-8EE0-4AC3DD184A43} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2016-08-23] (HP Inc.)
Task: {49D1DF28-60B5-4D92-9BCF-A64A45994990} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-08-14] (Google Inc.)
Task: {6ADC0A05-4183-4B9D-9718-E5FACA067BFF} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-08-14] (Google Inc.)
Task: {8E6B8D8D-CBDC-4075-9784-B9B2B9E7A06A} - System32\Tasks\HPCeeScheduleForSaša => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [2016-05-12] (HP Development Company, L.P.)
Task: {B63D279F-A058-4F2A-A6B1-9627C9FB399A} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2016-08-23] (HP Inc.)
Task: {B6D5959C-0D02-4AE9-BE13-EBBC51D6E3E6} - System32\Tasks\F-Secure\F-Secure GUI => C:\Program Files (x86)\UPC Smart Guard\FsGuiStarter.exe [2016-03-11] (F-Secure Corporation)
Task: {C91A6CB1-391D-40F7-96DE-BEB8B2874563} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe [2016-08-03] (HP Inc.)
Task: {E3AEBE7D-B1EA-4226-AC44-68E9EEBAE11E} - System32\Tasks\Synaptics TouchPad Enhancements => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2016-09-15] (Synaptics Incorporated)
Task: {EC401263-C84D-4A65-85C9-16710A7D6400} - System32\Tasks\Hewlett-Packard\HP Active Health\HP Active Health Scan (HPSA) => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPActiveHealth\ActiveHealth.exe [2016-08-18] (HP Inc.)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\HPCeeScheduleForSaša.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe
==================== Shortcuts =============================
(The entries could be listed to be restored or removed.)
ShortcutWithArgument: C:\Users\Saša\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Bing.lnk -> C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe () -> www.bing.com
==================== Loaded Modules (Whitelisted) ==============
2014-05-28 11:14 - 2014-05-28 11:14 - 00336056 _____ () c:\Program Files\Hewlett-Packard\Pre-Boot Security for HP ProtectTools\BIOSDomainPlugin.dll
2014-03-31 15:28 - 2014-03-31 15:28 - 00007168 _____ () C:\Program Files (x86)\Hewlett-Packard\HP Theft Recovery\CtService.exe
2014-08-14 11:28 - 2014-08-14 11:28 - 00209712 _____ () c:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTAgent.exe
2014-08-14 11:28 - 2014-08-14 11:28 - 00057648 _____ () c:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\NetworkHeuristic.dll
2014-08-14 11:28 - 2014-08-14 11:28 - 00057648 _____ () c:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\ISCTEncryptionCheck.dll
2014-08-14 11:28 - 2014-08-14 11:28 - 00037168 _____ () c:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\ISCTNetMon.dll
2014-10-28 12:49 - 2016-09-15 14:21 - 00393320 _____ () C:\WINDOWS\system32\igfxTray.exe
2016-10-04 02:09 - 2016-09-25 08:02 - 02279528 _____ () C:\Program Files (x86)\Google\Chrome\Application\53.0.2785.143\libglesv2.dll
2016-10-04 02:09 - 2016-09-25 08:02 - 00107112 _____ () C:\Program Files (x86)\Google\Chrome\Application\53.0.2785.143\libegl.dll
2016-09-08 18:33 - 2015-11-24 12:26 - 00072744 _____ () C:\Program Files (x86)\UPC Smart Guard\apps\ComputerSecurity\Anti-Virus\FSAVHRES.eng
2016-03-11 15:14 - 2016-03-11 15:14 - 00250840 _____ () C:\Program Files (x86)\UPC Smart Guard\daas2.dll
2016-09-08 18:37 - 2016-09-08 18:37 - 00093152 _____ () C:\Program Files (x86)\UPC Smart Guard\apps\ComputerSecurity\Anti-Virus\minifilter\hashlib_x86.dll
2016-09-08 18:33 - 2016-09-08 18:37 - 00213984 _____ () C:\Program Files (x86)\UPC Smart Guard\apps\ComputerSecurity\Spam Control\fsas.dll
2016-09-08 18:33 - 2016-09-08 18:37 - 00932320 _____ () C:\Program Files (x86)\UPC Smart Guard\apps\ComputerSecurity\Anti-Virus\fm4av.dll
2014-10-10 11:37 - 2014-10-10 11:37 - 01243936 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll
2015-01-23 13:24 - 2013-08-05 09:49 - 00627672 _____ () C:\Program Files (x86)\CyberLink\Power2Go8\CLMediaLibrary.dll
2013-08-05 17:48 - 2013-08-05 17:48 - 00016856 _____ () c:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvcPS.dll
==================== Alternate Data Streams (Whitelisted) =========
(If an entry is included in the fixlist, only the ADS will be removed.)
==================== Safe Mode (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
==================== Association (Whitelisted) ===============
(If an entry is included in the fixlist, the registry item will be restored to default or removed.)
==================== Internet Explorer trusted/restricted ===============
(If an entry is included in the fixlist, it will be removed from the registry.)
==================== Hosts content: ===============================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2013-08-22 15:25 - 2013-08-22 15:25 - 00000824 ____A C:\WINDOWS\system32\Drivers\etc\hosts
==================== Other Areas ============================
(Currently there is no automatic fix for this section.)
HKU\S-1-5-21-3091623106-1469607821-2556767161-1002\Control Panel\Desktop\\Wallpaper -> C:\WINDOWS\web\wallpaper\HP\Washing-up-time.jpg
DNS Servers: 213.46.172.36 - 213.46.172.37
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.
==================== MSCONFIG/TASK MANAGER disabled items ==
==================== FirewallRules (Whitelisted) ===============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139
FirewallRules: [{6639FFC6-9871-44C6-AC86-E2C6963CF212}] => (Allow) c:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe
FirewallRules: [{DCCD81AC-F88C-4C4A-A980-8F1B5D6D7A53}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{C33DD95E-A318-41F0-938A-37BE717AC80E}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{0C808333-34DC-44A4-B95B-6EE5E68BA60C}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{0F6B1F98-B2C7-4B23-AE63-633901238782}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{FD38A4D1-0CB2-417D-95B3-E3C129E837D5}] => (Allow) c:\Program Files (x86)\CyberLink\PowerDVD12\PowerDVD12.exe
FirewallRules: [{BC6883C5-55F8-4BC3-B855-10F585694EAC}] => (Allow) c:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMR\PowerDVD12DMREngine.exe
FirewallRules: [{29A6B2D8-373A-4CEB-9548-996FEA815D02}] => (Allow) c:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSServerPDVD12.exe
FirewallRules: [{65387A2F-1A05-4441-86EA-366AF0B1BC70}] => (Allow) c:\Program Files (x86)\CyberLink\PowerDVD12\PowerDVD12Agent.exe
FirewallRules: [{4AEA12F2-A046-43F7-96D1-9EF3F8705F6D}] => (Allow) c:\Program Files (x86)\CyberLink\PowerDVD12\PowerDVD12ML.exe
FirewallRules: [{79DA01D9-6CE8-4AB9-94DE-832BED1A85C3}] => (Allow) c:\Program Files (x86)\CyberLink\PowerDVD12\Movie\PowerDVD.exe
FirewallRules: [TCP Query User{CC02DBA1-AE35-4453-B40E-D75C623CC53C}C:\program files (x86)\skype\phone\skype.exe] => (Block) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [UDP Query User{FE366391-3093-4FAB-99F0-2F3EBAF98F09}C:\program files (x86)\skype\phone\skype.exe] => (Block) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [TCP Query User{58D8083D-4342-4B21-BC27-A97528142CDC}C:\program files (x86)\skype\phone\skype.exe] => (Block) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [UDP Query User{F6AA4928-B677-4CF6-86DE-D12651326F06}C:\program files (x86)\skype\phone\skype.exe] => (Block) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [{EF0542F1-4586-442A-8EB0-1E820016542A}] => (Allow) C:\WarThunder\launcher.exe
FirewallRules: [{6B390EB2-71BB-4751-9E03-08C6B080C379}] => (Allow) C:\WarThunder\launcher.exe
FirewallRules: [TCP Query User{5BA97BF3-F351-43A3-82F4-798A2C28D61D}C:\warthunder\win64\aces.exe] => (Allow) C:\warthunder\win64\aces.exe
FirewallRules: [UDP Query User{2364754C-8B2B-43C9-98FE-850F4DFF3334}C:\warthunder\win64\aces.exe] => (Allow) C:\warthunder\win64\aces.exe
FirewallRules: [{4A619D3E-A8E3-4B79-ACA9-8D8E16325888}] => (Allow) C:\Users\Saša\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{77449343-DC0B-4FE9-9B5F-90BA4720B719}] => (Allow) C:\Users\Saša\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{222EF888-EB0C-4788-BACC-34BDC0F92EA4}] => (Allow) C:\Users\Saša\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{5623E265-FF79-4B83-A04C-F5632A7F648C}] => (Allow) C:\Users\Saša\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{7AB6DB16-60EC-449B-9118-1A4F7057B42A}] => (Allow) C:\Users\Saša\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{9353C1D8-E38B-489B-8977-B99851AD4823}] => (Allow) C:\Users\Saša\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{54D14AD0-376D-4C12-930D-05AC67A59CB8}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{32319AA9-F002-4AD9-9F3A-11FE96702E6E}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{A8055F89-6C0B-40BB-BA33-AEF65F7C0993}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
FirewallRules: [{34C84ED0-3966-4344-8FDB-6976D3EBCB3E}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
FirewallRules: [{8542054C-54EA-4F8F-BA80-8E98397B8F3E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Team Fortress 2\hl2.exe
FirewallRules: [{D26CE6A8-38C0-4997-A648-4F5D5F3B4A9C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Team Fortress 2\hl2.exe
FirewallRules: [{F4551036-2BF7-41FC-860E-7793B2885F90}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{1CF44D3E-F38C-4D26-B034-C5B536C603D5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{2D2809D0-4576-42A9-BECF-32794D3BD92A}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
FirewallRules: [TCP Query User{7EAADC4A-C254-4FFE-90B6-0514C7D68BA9}C:\heroes of might and magic v - collectors edition\hmm5\bin\h5_game.exe] => (Allow) C:\heroes of might and magic v - collectors edition\hmm5\bin\h5_game.exe
FirewallRules: [UDP Query User{9908EEF1-4274-4AB8-8FD7-46465B64E12A}C:\heroes of might and magic v - collectors edition\hmm5\bin\h5_game.exe] => (Allow) C:\heroes of might and magic v - collectors edition\hmm5\bin\h5_game.exe
==================== Restore Points =========================
==================== Faulty Device Manager Devices =============
==================== Event log errors: =========================
Application errors:
==================
Error: (10/07/2016 11:44:15 AM) (Source: Windows Search Service) (EventID: 10021) (User: )
Description: Nelze načíst informace registru o čítači výkonu pro WSearchIdxPi pro instanci z důvodu následující chyby: Operace byla dokončena úspěšně. 0x0.
Error: (10/07/2016 11:44:14 AM) (Source: Windows Search Service) (EventID: 3007) (User: )
Description: Sledování výkonu objektu indexovacího modulu nebylo inicializováno, protože nejsou načteny čítače nebo nebyl otevřen sdílený objekt paměti. Tato skutečnost má vliv pouze na dostupnost čítačů výkonu. Restartujte počítač.
Kontext: aplikace , katalog SystemIndex
Error: (10/07/2016 11:44:12 AM) (Source: Windows Search Service) (EventID: 3006) (User: )
Description: Sledování výkonu služby indexovacího modulu nebylo inicializováno, protože nejsou načteny čítače nebo nebyl otevřen sdílený objekt paměti. Tato skutečnost má vliv pouze na dostupnost čítačů výkonu. Restartujte počítač.
Error: (10/07/2016 11:38:23 AM) (Source: FSecure-FSecure-F-Secure Anti-Virus) (EventID: 103) (User: )
Description: 7 2016-10-07 11:38:23+02:00 MUJPC MujPC\Saša F-Secure Anti-Virus
Malicious code found in computer MUJPC.
Infection: Gen:Variant.Graftor.308444
Action: The scanner was unable to remove the infection.
Error: (10/07/2016 11:34:05 AM) (Source: FSecure-FSecure-F-Secure Anti-Virus) (EventID: 103) (User: )
Description: 6 2016-10-07 11:34:05+02:00 MUJPC MujPC\Saša F-Secure Anti-Virus
Malicious code found in file C:\Users\Saša\AppData\Local\Temp\Rar$EXa0.342\Mafia 3 PC_RUS.exe.
Infection: Gen:Variant.Graftor.308444
Error: (10/05/2016 05:24:16 AM) (Source: FSecure-FSecure-F-Secure Anti-Virus) (EventID: 103) (User: )
Description: 5 2016-10-05 05:24:15+02:00 MUJPC MujPC\Saša F-Secure Anti-Virus
Scanning of \DEVICE\HARDDISKVOLUME4\RIOT GAMES\LEAGUE OF LEGENDS\RADS\PROJECTS\LOL_PATCHER\RELEASES\0.0.0.68\DEPLOY\LOLPATCHER.EXE was aborted due to exceeded scanning time limit. The file may be in use or reading it was too slow (e.g. network connection was under stress).
Error: (10/04/2016 07:29:29 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program Explorer.EXE verze 6.3.9600.18231 přestal spolupracovat se systémem Windows a byl ukončen. Chcete-li zjistit, zda je k dispozici více informací o tomto problému, vyhledejte historii problému v ovládacím panelu Centrum akcí.
ID procesu: 12d0
Čas spuštění: 01d21d7a7d2f619f
Čas ukončení: 0
Cesta k aplikaci: C:\WINDOWS\Explorer.EXE
ID hlášení: e2e20909-8a56-11e6-8260-d07e35ca269a
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:
Error: (10/04/2016 08:41:00 AM) (Source: Perflib) (EventID: 1008) (User: )
Description: Procedura Open pro službu .NETFramework v knihovně DLL C:\WINDOWS\system32\mscoree.dll se nezdařila. Výkonnostní data pro tuto službu nebudou k dispozici. Vrácený kód stavu představují první čtyři bajty (DWORD) datové části.
Error: (10/04/2016 01:06:21 AM) (Source: FSecure-FSecure-F-Secure Anti-Virus) (EventID: 103) (User: )
Description: 4 2016-10-04 01:06:21+02:00 MUJPC MujPC\Saša F-Secure Anti-Virus
Malicious code found in file C:\Users\Saša\AppData\Local\Temp\is-3D96L.tmp\json_parser.exe.
Infection: Gen:Variant.Symmi.42286
Action: The file was deleted.
Error: (10/04/2016 01:02:17 AM) (Source: FSecure-FSecure-F-Secure Anti-Virus) (EventID: 103) (User: )
Description: 3 2016-10-04 01:02:17+02:00 MUJPC MujPC\Saša F-Secure Anti-Virus
Malicious code found in file C:\Users\Saša\AppData\Local\Temp\is-IQTPC.tmp\json_parser.exe.
Infection: Gen:Variant.Symmi.42286
Action: The file was deleted.
System errors:
=============
Error: (10/07/2016 11:45:49 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba Steam Client Service neuspěla při spuštění v důsledku následující chyby:
Služba neodpověděla na řídicí nebo zahajovací požadavek dostatečně včas.
Error: (10/07/2016 11:45:49 AM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Při čekání na připojení služby Steam Client Service bylo dosaženo časového limitu (30000 ms).
Error: (10/07/2016 11:41:23 AM) (Source: volsnap) (EventID: 25) (User: )
Description: Stínové kopie svazku C: byly smazány, protože úložiště stínové kopie nebylo možné včas zvětšit. Zvažte možnost snížení vstupně-výstupního zatížení systému nebo zvolte svazek úložiště stínové kopie, pro který není vytvářena stínová kopie.
Error: (10/05/2016 09:38:58 AM) (Source: DCOM) (EventID: 10010) (User: MujPC)
Description: Server {4545DEA0-2DFC-4906-A728-6D986BA399A9} se v daném časovém limitu neregistroval u služby DCOM.
Error: (10/05/2016 09:38:58 AM) (Source: DCOM) (EventID: 10010) (User: MujPC)
Description: Server {4545DEA0-2DFC-4906-A728-6D986BA399A9} se v daném časovém limitu neregistroval u služby DCOM.
Error: (10/05/2016 09:38:53 AM) (Source: DCOM) (EventID: 10010) (User: MujPC)
Description: Server {3FCB7074-EC9E-4AAF-9BE3-C0E356942366} se v daném časovém limitu neregistroval u služby DCOM.
Error: (10/05/2016 09:38:53 AM) (Source: DCOM) (EventID: 10010) (User: MujPC)
Description: Server {3FCB7074-EC9E-4AAF-9BE3-C0E356942366} se v daném časovém limitu neregistroval u služby DCOM.
Error: (10/05/2016 09:38:52 AM) (Source: DCOM) (EventID: 10010) (User: MujPC)
Description: Server {4545DEA0-2DFC-4906-A728-6D986BA399A9} se v daném časovém limitu neregistroval u služby DCOM.
Error: (10/05/2016 09:38:52 AM) (Source: DCOM) (EventID: 10010) (User: MujPC)
Description: Server {4545DEA0-2DFC-4906-A728-6D986BA399A9} se v daném časovém limitu neregistroval u služby DCOM.
Error: (10/05/2016 06:04:00 AM) (Source: DCOM) (EventID: 10010) (User: MujPC)
Description: Server {1B1F472E-3221-4826-97DB-2C2324D389AE} se v daném časovém limitu neregistroval u služby DCOM.
CodeIntegrity:
===================================
Date: 2016-08-27 10:07:08.876
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\amdhdl64.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2016-08-26 04:40:24.896
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\amdhdl64.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2016-08-24 07:19:59.817
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\amdhdl64.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2016-08-14 04:17:09.796
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\amdhdl64.dll that did not meet the Custom 3 / Antimalware signing level requirements.
==================== Memory info ===========================
Processor: Intel(R) Core(TM) i7-5500U CPU @ 2.40GHz
Percentage of memory in use: 31%
Total physical RAM: 8083.11 MB
Available physical RAM: 5544.43 MB
Total Virtual: 9107.11 MB
Available Virtual: 6125.59 MB
==================== Drives ================================
Drive c: (Windows) (Fixed) (Total:914.77 GB) (Free:778.94 GB) NTFS
Drive d: (Recovery Image) (Fixed) (Total:13.26 GB) (Free:1.37 GB) NTFS
Drive e: (HP_TOOLS) (Fixed) (Total:1.99 GB) (Free:1.99 GB) FAT32
Drive h: (Mafia II) (CDROM) (Total:5.57 GB) (Free:0 GB) CDFS
Drive i: (LEGO Racers 2) (CDROM) (Total:0.46 GB) (Free:0 GB) CDFS
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (Size: 931.5 GB) (Disk ID: 5EBF270B)
Partition: GPT.
==================== End of Addition.txt ============================
Re: Prosim o kotrolu
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 04-10-2016
Ran by Saša (07-10-2016 11:57:28)
Running from C:\Users\Saša\Downloads
Windows 8.1 (Update) (X64) (2016-08-14 00:09:34)
Boot Mode: Normal
==========================================================
==================== Accounts: =============================
Administrator (S-1-5-21-3091623106-1469607821-2556767161-500 - Administrator - Disabled)
Guest (S-1-5-21-3091623106-1469607821-2556767161-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-3091623106-1469607821-2556767161-1004 - Limited - Enabled)
Saša (S-1-5-21-3091623106-1469607821-2556767161-1002 - Administrator - Enabled) => C:\Users\Saša
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: Počítačová ochrana by F-Secure (Enabled - Up to date) {4CBE0CB6-C6C6-9D82-ECD2-A076E5981AC9}
AS: Počítačová ochrana by F-Secure (Enabled - Up to date) {F7DFED52-E0FC-920C-D662-9B049E1F5074}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
==================== Installed Programs ======================
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
µTorrent (HKU\S-1-5-21-3091623106-1469607821-2556767161-1002\...\uTorrent) (Version: 3.4.8.42576 - BitTorrent Inc.)
AMD Catalyst Install Manager (HKLM\...\{5094145C-9F17-8099-7F4F-E5AADD5E4065}) (Version: 8.0.916.0 - Advanced Micro Devices, Inc.)
Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.)
Computer Security 14.150.101.0 (release) (x32 Version: 14.150.101.0 - F-Secure Corporation) Hidden
Counter-Strike: Global Offensive (HKLM\...\Steam App 730) (Version: - Valve)
CyberLink Power2Go 8 (HKLM-x32\...\InstallShield_{2A87D48D-3FDF-41fd-97CD-A1E370EFFFE2}) (Version: 8.0.3.3207 - CyberLink Corp.)
CyberLink PowerDVD 12 (HKLM-x32\...\InstallShield_{B46BEA36-0B71-4A4E-AE41-87241643FA0A}) (Version: 12.0.3.3920 - CyberLink Corp.)
DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 10.4.0.0195 - Disc Soft Ltd)
Energy Star (HKLM-x32\...\{FC0ADA4D-8FA5-4452-8AFF-F0A0BAC97EF7}) (Version: 1.0.9 - Hewlett-Packard Company)
Foxit PhantomPDF (HKLM-x32\...\{5F3E0897-97AA-4FC2-A0A9-130A39D0FDFB}) (Version: 6.0.16.324 - Foxit Corporation)
F-Secure CCF Reputation (x32 Version: 2.0.1337.0 - F-Secure) Hidden
F-Secure CCF Scanning 1.72.115.709 (release) (x32 Version: 1.72.115.709 - F-Secure Corporation) Hidden
F-Secure Network CCF 1.04.119 (x32 Version: 1.04.119 - F-Secure Corporation) Hidden
F-Secure SafeSearch 1.09.109.0 (release) (x32 Version: 1.09.109.0 - F-Secure Corporation) Hidden
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 53.0.2785.143 - Google Inc.)
Google Update Helper (x32 Version: 1.3.31.5 - Google Inc.) Hidden
Heroes of Might and Magic V - Collectors Edition (HKLM-x32\...\Heroes of Might and Magic V - Collectors Edition3.1) (Version: 3.1 - Ubisoft)
Hewlett-Packard ACLM.NET v1.2.2.3 (x32 Version: 1.00.0000 - Hewlett-Packard Company) Hidden
HP 3D DriveGuard (HKLM-x32\...\{13133E99-B0D5-4143-B832-AAD55C62A41C}) (Version: 6.0.19.1 - Hewlett-Packard Company)
HP Camera Driver (HKLM-x32\...\Sunplus SPUVCb) (Version: 3.4.8.48 - SunplusIT)
HP Client Security Manager (HKLM\...\HPProtectTools) (Version: 8.3.7.1864 - Hewlett-Packard Company)
HP Device Access Manager (HKLM\...\{DBE16A07-DDFF-4453-807A-212EF93916E0}) (Version: 8.3.2.0 - Hewlett-Packard Company)
HP Documentation (HKLM-x32\...\{53AE55F3-8E99-4776-A347-06222894ECD3}) (Version: 1.1.0.0 - Hewlett-Packard)
HP Drive Encryption (HKLM\...\HPDriveEncryption) (Version: 8.6.11.10 - Hewlett-Packard Company)
HP ESU for Microsoft Windows 8.1 (HKLM-x32\...\{A3876D50-4A88-4A34-92E1-5D7BC8F886E1}) (Version: 1.0.1 - Hewlett-Packard Company)
HP File Sanitizer (HKLM-x32\...\{6349342F-9CEF-4A70-995A-2CF3704C2603}) (Version: 8.4.20.1 - Hewlett-Packard Company)
HP Hotkey Support (HKLM-x32\...\{445CC807-9384-47FA-A2B6-FFE970352B88}) (Version: 6.0.22.1 - Hewlett-Packard Company)
HP Registration Service (HKLM\...\{D1E8F2D7-7794-4245-B286-87ED86C1893C}) (Version: 1.2.7493.4758 - Hewlett-Packard)
HP SoftPaq Download Manager (HKLM-x32\...\{34FF930E-DBF9-4858-BAB5-BAC957BF616E}) (Version: 3.5.1.0 - Hewlett-Packard Company)
HP Software Setup (HKLM-x32\...\{F6D61EC9-347B-4019-9F8E-E24169F7C330}) (Version: 8.7.5 - Hewlett-Packard Company)
HP Support Assistant (HKLM-x32\...\{39C8BE76-CF6A-466F-8618-0B52CC4CA0FC}) (Version: 8.3.34.7 - HP Inc.)
HP Support Information (HKLM-x32\...\{B2B7B1C8-7C8B-476C-BE2C-049731C55992}) (Version: 13.00.0000 - Hewlett-Packard)
HP Support Solutions Framework (HKLM-x32\...\{7C3170E8-E61A-41D9-8547-8E96445EA510}) (Version: 12.5.32.37 - HP Inc.)
HP System Default Settings (HKLM-x32\...\{29641907-0BBA-4832-B6DE-349DAA655883}) (Version: 2.1.1 - Hewlett-Packard Company)
HP Theft Recovery (HKLM-x32\...\InstallShield_{B1E569B6-A5EB-4C97-9F93-9ED2AA99AF0E}) (Version: 8.3.0.7 - Hewlett-Packard Company)
HP Wireless Button Driver (HKLM-x32\...\{30B2D1D8-0A07-4B71-9553-0710C5D31E35}) (Version: 1.1.2.1 - Hewlett-Packard Company)
HP Wireless Hotspot (HKLM-x32\...\{563ADFC1-38E6-4EF0-8763-7CDA8289944B}) (Version: 1.0.25.1 - Hewlett-Packard Company)
Intel(R) Chipset Device Software (x32 Version: 10.0.22 - Intel(R) Corporation) Hidden
Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 10.0.30.1072 - Intel Corporation)
Intel(R) PRO/Wireless Driver (HKLM\...\{250fe254-6a88-4792-ba37-86d3e156dc3d}) (Version: 17.13.0000.1890 - Intel Corporation)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.14.4280 - Intel Corporation)
Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 13.2.8.1002 - Intel Corporation)
Intel(R) Smart Connect Technology (HKLM\...\{CAB8255F-E9B7-4EFC-9C9B-2D3A4C954294}) (Version: 5.0.10.2861 - Intel Corporation)
Intel(R) Wireless Bluetooth(R) (HKLM-x32\...\{915DDCDE-7767-4B4A-9256-8729B265BDAC}) (Version: 17.1.1440.02 - Intel Corporation)
League of Legends (HKLM-x32\...\League of Legends 4.1.2) (Version: 4.1.2 - Riot Games)
League of Legends (x32 Version: 4.1.2 - Riot Games) Hidden
Mafia II (HKLM-x32\...\Mafia II_is1) (Version: - )
Microsoft Office (HKLM-x32\...\{90150000-0138-0409-0000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 (HKLM-x32\...\{15134cb0-b767-4960-a911-f2d16ae54797}) (Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.51106 (HKLM-x32\...\{6e8f74e0-43bd-4dce-8477-6ff6828acc07}) (Version: 11.0.51106.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (HKLM-x32\...\{22154f09-719a-4619-bb71-5b3356999fbf}) (Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.51106 (HKLM-x32\...\{8e70e4e1-06d7-470b-9f74-a51bef21088e}) (Version: 11.0.51106.1 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 (HKLM-x32\...\{7f51bdb9-ee21-49ee-94d6-90afc321780e}) (Version: 12.0.21005.1 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM-x32\...\{ce085a78-074e-4823-8dc1-8a721b94b76d}) (Version: 12.0.21005.1 - Microsoft Corporation)
OEM Application Profile (HKLM-x32\...\{29F5A1C9-0BC3-16E6-9384-3BC5D1CB7ACE}) (Version: 1.00.0000 - Název společnosti:)
OEM Application Profile (HKLM-x32\...\{FCCF4B77-432F-EA83-4289-40C1DFA14C85}) (Version: 1.00.0000 - Advanced Micro Devices, Inc.)
Online Safety 2.150.3659.2518 (x32 Version: 2.150.3659.2518 - F-Secure Corporation) Hidden
PokerStars.eu (HKLM-x32\...\PokerStars.eu) (Version: - PokerStars.eu)
PX Profile Update (x32 Version: 1.00.1. - AMD) Hidden
Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 6.3.273.49 - Realtek Semiconductor Corp.)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 8.30.328.2014 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7383 - Realtek Semiconductor Corp.)
Skype™ 7.27 (HKLM-x32\...\{FC965A47-4839-40CA-B618-18F486F042C6}) (Version: 7.27.101 - Skype Technologies S.A.)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 18.1.37.4 - Synaptics Incorporated)
Team Fortress 2 (HKLM\...\Steam App 440) (Version: - Valve)
TeamSpeak 3 Client (HKLM-x32\...\TeamSpeak 3 Client) (Version: 3.0.19 - TeamSpeak Systems GmbH)
UPC Smart Guard (HKLM-x32\...\F-Secure ServiceEnabler 45329) (Version: 2.50.214.0 - F-Secure Corporation)
UPC Smart Guard (x32 Version: 2.50.214.0 - F-Secure Corporation) Hidden
Validity Fingerprint Sensor Driver (HKLM\...\{ADAA7361-54B8-4FC8-804E-94EC6C11ED68}) (Version: 4.5.133.0 - Validity Sensors, Inc.)
War Thunder Launcher 1.0.1.674 (HKLM-x32\...\{ed8deea4-29fa-3932-9612-e2122d8a62d9}}_is1) (Version: - Gaijin Entertainment)
WinRAR 5.40 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.40.0 - win.rar GmbH)
==================== Custom CLSID (Whitelisted): ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
CustomCLSID: HKU\S-1-5-21-3091623106-1469607821-2556767161-1002_Classes\CLSID\{820D63D5-8CFF-46DE-86AF-4997DEDD6DB5}\localserver32 -> C:\WINDOWS\system32\igfxEM.exe (Intel Corporation)
==================== Scheduled Tasks (Whitelisted) =============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {01BA9117-94D2-4593-BB90-2CD908E00C30} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Report => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSFReport.exe [2016-07-04] (HP Inc.)
Task: {0B545118-B563-42FC-8D07-B78F602FCF34} - System32\Tasks\Microsoft\Windows\WS\WSRefreshBannedAppsListTask => Rundll32.exe WSClient.dll,RefreshBannedAppsList
Task: {0E8C2717-F7E0-4EF9-8EE0-4AC3DD184A43} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2016-08-23] (HP Inc.)
Task: {49D1DF28-60B5-4D92-9BCF-A64A45994990} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-08-14] (Google Inc.)
Task: {6ADC0A05-4183-4B9D-9718-E5FACA067BFF} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-08-14] (Google Inc.)
Task: {8E6B8D8D-CBDC-4075-9784-B9B2B9E7A06A} - System32\Tasks\HPCeeScheduleForSaša => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [2016-05-12] (HP Development Company, L.P.)
Task: {B63D279F-A058-4F2A-A6B1-9627C9FB399A} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2016-08-23] (HP Inc.)
Task: {B6D5959C-0D02-4AE9-BE13-EBBC51D6E3E6} - System32\Tasks\F-Secure\F-Secure GUI => C:\Program Files (x86)\UPC Smart Guard\FsGuiStarter.exe [2016-03-11] (F-Secure Corporation)
Task: {C91A6CB1-391D-40F7-96DE-BEB8B2874563} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe [2016-08-03] (HP Inc.)
Task: {E3AEBE7D-B1EA-4226-AC44-68E9EEBAE11E} - System32\Tasks\Synaptics TouchPad Enhancements => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2016-09-15] (Synaptics Incorporated)
Task: {EC401263-C84D-4A65-85C9-16710A7D6400} - System32\Tasks\Hewlett-Packard\HP Active Health\HP Active Health Scan (HPSA) => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPActiveHealth\ActiveHealth.exe [2016-08-18] (HP Inc.)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\HPCeeScheduleForSaša.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe
==================== Shortcuts =============================
(The entries could be listed to be restored or removed.)
ShortcutWithArgument: C:\Users\Saša\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Bing.lnk -> C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe () -> www.bing.com
==================== Loaded Modules (Whitelisted) ==============
2014-05-28 11:14 - 2014-05-28 11:14 - 00336056 _____ () c:\Program Files\Hewlett-Packard\Pre-Boot Security for HP ProtectTools\BIOSDomainPlugin.dll
2014-03-31 15:28 - 2014-03-31 15:28 - 00007168 _____ () C:\Program Files (x86)\Hewlett-Packard\HP Theft Recovery\CtService.exe
2014-08-14 11:28 - 2014-08-14 11:28 - 00209712 _____ () c:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTAgent.exe
2014-08-14 11:28 - 2014-08-14 11:28 - 00057648 _____ () c:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\NetworkHeuristic.dll
2014-08-14 11:28 - 2014-08-14 11:28 - 00057648 _____ () c:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\ISCTEncryptionCheck.dll
2014-08-14 11:28 - 2014-08-14 11:28 - 00037168 _____ () c:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\ISCTNetMon.dll
2014-10-28 12:49 - 2016-09-15 14:21 - 00393320 _____ () C:\WINDOWS\system32\igfxTray.exe
2016-10-04 02:09 - 2016-09-25 08:02 - 02279528 _____ () C:\Program Files (x86)\Google\Chrome\Application\53.0.2785.143\libglesv2.dll
2016-10-04 02:09 - 2016-09-25 08:02 - 00107112 _____ () C:\Program Files (x86)\Google\Chrome\Application\53.0.2785.143\libegl.dll
2016-09-08 18:33 - 2015-11-24 12:26 - 00072744 _____ () C:\Program Files (x86)\UPC Smart Guard\apps\ComputerSecurity\Anti-Virus\FSAVHRES.eng
2016-03-11 15:14 - 2016-03-11 15:14 - 00250840 _____ () C:\Program Files (x86)\UPC Smart Guard\daas2.dll
2016-09-08 18:37 - 2016-09-08 18:37 - 00093152 _____ () C:\Program Files (x86)\UPC Smart Guard\apps\ComputerSecurity\Anti-Virus\minifilter\hashlib_x86.dll
2016-09-08 18:33 - 2016-09-08 18:37 - 00213984 _____ () C:\Program Files (x86)\UPC Smart Guard\apps\ComputerSecurity\Spam Control\fsas.dll
2016-09-08 18:33 - 2016-09-08 18:37 - 00932320 _____ () C:\Program Files (x86)\UPC Smart Guard\apps\ComputerSecurity\Anti-Virus\fm4av.dll
2014-10-10 11:37 - 2014-10-10 11:37 - 01243936 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll
2015-01-23 13:24 - 2013-08-05 09:49 - 00627672 _____ () C:\Program Files (x86)\CyberLink\Power2Go8\CLMediaLibrary.dll
2013-08-05 17:48 - 2013-08-05 17:48 - 00016856 _____ () c:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvcPS.dll
==================== Alternate Data Streams (Whitelisted) =========
(If an entry is included in the fixlist, only the ADS will be removed.)
==================== Safe Mode (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
==================== Association (Whitelisted) ===============
(If an entry is included in the fixlist, the registry item will be restored to default or removed.)
==================== Internet Explorer trusted/restricted ===============
(If an entry is included in the fixlist, it will be removed from the registry.)
==================== Hosts content: ===============================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2013-08-22 15:25 - 2013-08-22 15:25 - 00000824 ____A C:\WINDOWS\system32\Drivers\etc\hosts
==================== Other Areas ============================
(Currently there is no automatic fix for this section.)
HKU\S-1-5-21-3091623106-1469607821-2556767161-1002\Control Panel\Desktop\\Wallpaper -> C:\WINDOWS\web\wallpaper\HP\Washing-up-time.jpg
DNS Servers: 213.46.172.36 - 213.46.172.37
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.
==================== MSCONFIG/TASK MANAGER disabled items ==
==================== FirewallRules (Whitelisted) ===============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139
FirewallRules: [{6639FFC6-9871-44C6-AC86-E2C6963CF212}] => (Allow) c:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe
FirewallRules: [{DCCD81AC-F88C-4C4A-A980-8F1B5D6D7A53}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{C33DD95E-A318-41F0-938A-37BE717AC80E}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{0C808333-34DC-44A4-B95B-6EE5E68BA60C}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{0F6B1F98-B2C7-4B23-AE63-633901238782}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{FD38A4D1-0CB2-417D-95B3-E3C129E837D5}] => (Allow) c:\Program Files (x86)\CyberLink\PowerDVD12\PowerDVD12.exe
FirewallRules: [{BC6883C5-55F8-4BC3-B855-10F585694EAC}] => (Allow) c:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMR\PowerDVD12DMREngine.exe
FirewallRules: [{29A6B2D8-373A-4CEB-9548-996FEA815D02}] => (Allow) c:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSServerPDVD12.exe
FirewallRules: [{65387A2F-1A05-4441-86EA-366AF0B1BC70}] => (Allow) c:\Program Files (x86)\CyberLink\PowerDVD12\PowerDVD12Agent.exe
FirewallRules: [{4AEA12F2-A046-43F7-96D1-9EF3F8705F6D}] => (Allow) c:\Program Files (x86)\CyberLink\PowerDVD12\PowerDVD12ML.exe
FirewallRules: [{79DA01D9-6CE8-4AB9-94DE-832BED1A85C3}] => (Allow) c:\Program Files (x86)\CyberLink\PowerDVD12\Movie\PowerDVD.exe
FirewallRules: [TCP Query User{CC02DBA1-AE35-4453-B40E-D75C623CC53C}C:\program files (x86)\skype\phone\skype.exe] => (Block) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [UDP Query User{FE366391-3093-4FAB-99F0-2F3EBAF98F09}C:\program files (x86)\skype\phone\skype.exe] => (Block) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [TCP Query User{58D8083D-4342-4B21-BC27-A97528142CDC}C:\program files (x86)\skype\phone\skype.exe] => (Block) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [UDP Query User{F6AA4928-B677-4CF6-86DE-D12651326F06}C:\program files (x86)\skype\phone\skype.exe] => (Block) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [{EF0542F1-4586-442A-8EB0-1E820016542A}] => (Allow) C:\WarThunder\launcher.exe
FirewallRules: [{6B390EB2-71BB-4751-9E03-08C6B080C379}] => (Allow) C:\WarThunder\launcher.exe
FirewallRules: [TCP Query User{5BA97BF3-F351-43A3-82F4-798A2C28D61D}C:\warthunder\win64\aces.exe] => (Allow) C:\warthunder\win64\aces.exe
FirewallRules: [UDP Query User{2364754C-8B2B-43C9-98FE-850F4DFF3334}C:\warthunder\win64\aces.exe] => (Allow) C:\warthunder\win64\aces.exe
FirewallRules: [{4A619D3E-A8E3-4B79-ACA9-8D8E16325888}] => (Allow) C:\Users\Saša\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{77449343-DC0B-4FE9-9B5F-90BA4720B719}] => (Allow) C:\Users\Saša\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{222EF888-EB0C-4788-BACC-34BDC0F92EA4}] => (Allow) C:\Users\Saša\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{5623E265-FF79-4B83-A04C-F5632A7F648C}] => (Allow) C:\Users\Saša\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{7AB6DB16-60EC-449B-9118-1A4F7057B42A}] => (Allow) C:\Users\Saša\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{9353C1D8-E38B-489B-8977-B99851AD4823}] => (Allow) C:\Users\Saša\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{54D14AD0-376D-4C12-930D-05AC67A59CB8}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{32319AA9-F002-4AD9-9F3A-11FE96702E6E}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{A8055F89-6C0B-40BB-BA33-AEF65F7C0993}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
FirewallRules: [{34C84ED0-3966-4344-8FDB-6976D3EBCB3E}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
FirewallRules: [{8542054C-54EA-4F8F-BA80-8E98397B8F3E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Team Fortress 2\hl2.exe
FirewallRules: [{D26CE6A8-38C0-4997-A648-4F5D5F3B4A9C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Team Fortress 2\hl2.exe
FirewallRules: [{F4551036-2BF7-41FC-860E-7793B2885F90}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{1CF44D3E-F38C-4D26-B034-C5B536C603D5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{2D2809D0-4576-42A9-BECF-32794D3BD92A}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
FirewallRules: [TCP Query User{7EAADC4A-C254-4FFE-90B6-0514C7D68BA9}C:\heroes of might and magic v - collectors edition\hmm5\bin\h5_game.exe] => (Allow) C:\heroes of might and magic v - collectors edition\hmm5\bin\h5_game.exe
FirewallRules: [UDP Query User{9908EEF1-4274-4AB8-8FD7-46465B64E12A}C:\heroes of might and magic v - collectors edition\hmm5\bin\h5_game.exe] => (Allow) C:\heroes of might and magic v - collectors edition\hmm5\bin\h5_game.exe
==================== Restore Points =========================
==================== Faulty Device Manager Devices =============
==================== Event log errors: =========================
Application errors:
==================
Error: (10/07/2016 11:44:15 AM) (Source: Windows Search Service) (EventID: 10021) (User: )
Description: Nelze načíst informace registru o čítači výkonu pro WSearchIdxPi pro instanci z důvodu následující chyby: Operace byla dokončena úspěšně. 0x0.
Error: (10/07/2016 11:44:14 AM) (Source: Windows Search Service) (EventID: 3007) (User: )
Description: Sledování výkonu objektu indexovacího modulu nebylo inicializováno, protože nejsou načteny čítače nebo nebyl otevřen sdílený objekt paměti. Tato skutečnost má vliv pouze na dostupnost čítačů výkonu. Restartujte počítač.
Kontext: aplikace , katalog SystemIndex
Error: (10/07/2016 11:44:12 AM) (Source: Windows Search Service) (EventID: 3006) (User: )
Description: Sledování výkonu služby indexovacího modulu nebylo inicializováno, protože nejsou načteny čítače nebo nebyl otevřen sdílený objekt paměti. Tato skutečnost má vliv pouze na dostupnost čítačů výkonu. Restartujte počítač.
Error: (10/07/2016 11:38:23 AM) (Source: FSecure-FSecure-F-Secure Anti-Virus) (EventID: 103) (User: )
Description: 7 2016-10-07 11:38:23+02:00 MUJPC MujPC\Saša F-Secure Anti-Virus
Malicious code found in computer MUJPC.
Infection: Gen:Variant.Graftor.308444
Action: The scanner was unable to remove the infection.
Error: (10/07/2016 11:34:05 AM) (Source: FSecure-FSecure-F-Secure Anti-Virus) (EventID: 103) (User: )
Description: 6 2016-10-07 11:34:05+02:00 MUJPC MujPC\Saša F-Secure Anti-Virus
Malicious code found in file C:\Users\Saša\AppData\Local\Temp\Rar$EXa0.342\Mafia 3 PC_RUS.exe.
Infection: Gen:Variant.Graftor.308444
Error: (10/05/2016 05:24:16 AM) (Source: FSecure-FSecure-F-Secure Anti-Virus) (EventID: 103) (User: )
Description: 5 2016-10-05 05:24:15+02:00 MUJPC MujPC\Saša F-Secure Anti-Virus
Scanning of \DEVICE\HARDDISKVOLUME4\RIOT GAMES\LEAGUE OF LEGENDS\RADS\PROJECTS\LOL_PATCHER\RELEASES\0.0.0.68\DEPLOY\LOLPATCHER.EXE was aborted due to exceeded scanning time limit. The file may be in use or reading it was too slow (e.g. network connection was under stress).
Error: (10/04/2016 07:29:29 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program Explorer.EXE verze 6.3.9600.18231 přestal spolupracovat se systémem Windows a byl ukončen. Chcete-li zjistit, zda je k dispozici více informací o tomto problému, vyhledejte historii problému v ovládacím panelu Centrum akcí.
ID procesu: 12d0
Čas spuštění: 01d21d7a7d2f619f
Čas ukončení: 0
Cesta k aplikaci: C:\WINDOWS\Explorer.EXE
ID hlášení: e2e20909-8a56-11e6-8260-d07e35ca269a
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:
Error: (10/04/2016 08:41:00 AM) (Source: Perflib) (EventID: 1008) (User: )
Description: Procedura Open pro službu .NETFramework v knihovně DLL C:\WINDOWS\system32\mscoree.dll se nezdařila. Výkonnostní data pro tuto službu nebudou k dispozici. Vrácený kód stavu představují první čtyři bajty (DWORD) datové části.
Error: (10/04/2016 01:06:21 AM) (Source: FSecure-FSecure-F-Secure Anti-Virus) (EventID: 103) (User: )
Description: 4 2016-10-04 01:06:21+02:00 MUJPC MujPC\Saša F-Secure Anti-Virus
Malicious code found in file C:\Users\Saša\AppData\Local\Temp\is-3D96L.tmp\json_parser.exe.
Infection: Gen:Variant.Symmi.42286
Action: The file was deleted.
Error: (10/04/2016 01:02:17 AM) (Source: FSecure-FSecure-F-Secure Anti-Virus) (EventID: 103) (User: )
Description: 3 2016-10-04 01:02:17+02:00 MUJPC MujPC\Saša F-Secure Anti-Virus
Malicious code found in file C:\Users\Saša\AppData\Local\Temp\is-IQTPC.tmp\json_parser.exe.
Infection: Gen:Variant.Symmi.42286
Action: The file was deleted.
System errors:
=============
Error: (10/07/2016 11:45:49 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba Steam Client Service neuspěla při spuštění v důsledku následující chyby:
Služba neodpověděla na řídicí nebo zahajovací požadavek dostatečně včas.
Error: (10/07/2016 11:45:49 AM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Při čekání na připojení služby Steam Client Service bylo dosaženo časového limitu (30000 ms).
Error: (10/07/2016 11:41:23 AM) (Source: volsnap) (EventID: 25) (User: )
Description: Stínové kopie svazku C: byly smazány, protože úložiště stínové kopie nebylo možné včas zvětšit. Zvažte možnost snížení vstupně-výstupního zatížení systému nebo zvolte svazek úložiště stínové kopie, pro který není vytvářena stínová kopie.
Error: (10/05/2016 09:38:58 AM) (Source: DCOM) (EventID: 10010) (User: MujPC)
Description: Server {4545DEA0-2DFC-4906-A728-6D986BA399A9} se v daném časovém limitu neregistroval u služby DCOM.
Error: (10/05/2016 09:38:58 AM) (Source: DCOM) (EventID: 10010) (User: MujPC)
Description: Server {4545DEA0-2DFC-4906-A728-6D986BA399A9} se v daném časovém limitu neregistroval u služby DCOM.
Error: (10/05/2016 09:38:53 AM) (Source: DCOM) (EventID: 10010) (User: MujPC)
Description: Server {3FCB7074-EC9E-4AAF-9BE3-C0E356942366} se v daném časovém limitu neregistroval u služby DCOM.
Error: (10/05/2016 09:38:53 AM) (Source: DCOM) (EventID: 10010) (User: MujPC)
Description: Server {3FCB7074-EC9E-4AAF-9BE3-C0E356942366} se v daném časovém limitu neregistroval u služby DCOM.
Error: (10/05/2016 09:38:52 AM) (Source: DCOM) (EventID: 10010) (User: MujPC)
Description: Server {4545DEA0-2DFC-4906-A728-6D986BA399A9} se v daném časovém limitu neregistroval u služby DCOM.
Error: (10/05/2016 09:38:52 AM) (Source: DCOM) (EventID: 10010) (User: MujPC)
Description: Server {4545DEA0-2DFC-4906-A728-6D986BA399A9} se v daném časovém limitu neregistroval u služby DCOM.
Error: (10/05/2016 06:04:00 AM) (Source: DCOM) (EventID: 10010) (User: MujPC)
Description: Server {1B1F472E-3221-4826-97DB-2C2324D389AE} se v daném časovém limitu neregistroval u služby DCOM.
CodeIntegrity:
===================================
Date: 2016-08-27 10:07:08.876
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\amdhdl64.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2016-08-26 04:40:24.896
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\amdhdl64.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2016-08-24 07:19:59.817
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\amdhdl64.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2016-08-14 04:17:09.796
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\amdhdl64.dll that did not meet the Custom 3 / Antimalware signing level requirements.
==================== Memory info ===========================
Processor: Intel(R) Core(TM) i7-5500U CPU @ 2.40GHz
Percentage of memory in use: 31%
Total physical RAM: 8083.11 MB
Available physical RAM: 5544.43 MB
Total Virtual: 9107.11 MB
Available Virtual: 6125.59 MB
==================== Drives ================================
Drive c: (Windows) (Fixed) (Total:914.77 GB) (Free:778.94 GB) NTFS
Drive d: (Recovery Image) (Fixed) (Total:13.26 GB) (Free:1.37 GB) NTFS
Drive e: (HP_TOOLS) (Fixed) (Total:1.99 GB) (Free:1.99 GB) FAT32
Drive h: (Mafia II) (CDROM) (Total:5.57 GB) (Free:0 GB) CDFS
Drive i: (LEGO Racers 2) (CDROM) (Total:0.46 GB) (Free:0 GB) CDFS
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (Size: 931.5 GB) (Disk ID: 5EBF270B)
Partition: GPT.
==================== End of Addition.txt ============================
Ran by Saša (07-10-2016 11:57:28)
Running from C:\Users\Saša\Downloads
Windows 8.1 (Update) (X64) (2016-08-14 00:09:34)
Boot Mode: Normal
==========================================================
==================== Accounts: =============================
Administrator (S-1-5-21-3091623106-1469607821-2556767161-500 - Administrator - Disabled)
Guest (S-1-5-21-3091623106-1469607821-2556767161-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-3091623106-1469607821-2556767161-1004 - Limited - Enabled)
Saša (S-1-5-21-3091623106-1469607821-2556767161-1002 - Administrator - Enabled) => C:\Users\Saša
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: Počítačová ochrana by F-Secure (Enabled - Up to date) {4CBE0CB6-C6C6-9D82-ECD2-A076E5981AC9}
AS: Počítačová ochrana by F-Secure (Enabled - Up to date) {F7DFED52-E0FC-920C-D662-9B049E1F5074}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
==================== Installed Programs ======================
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
µTorrent (HKU\S-1-5-21-3091623106-1469607821-2556767161-1002\...\uTorrent) (Version: 3.4.8.42576 - BitTorrent Inc.)
AMD Catalyst Install Manager (HKLM\...\{5094145C-9F17-8099-7F4F-E5AADD5E4065}) (Version: 8.0.916.0 - Advanced Micro Devices, Inc.)
Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.)
Computer Security 14.150.101.0 (release) (x32 Version: 14.150.101.0 - F-Secure Corporation) Hidden
Counter-Strike: Global Offensive (HKLM\...\Steam App 730) (Version: - Valve)
CyberLink Power2Go 8 (HKLM-x32\...\InstallShield_{2A87D48D-3FDF-41fd-97CD-A1E370EFFFE2}) (Version: 8.0.3.3207 - CyberLink Corp.)
CyberLink PowerDVD 12 (HKLM-x32\...\InstallShield_{B46BEA36-0B71-4A4E-AE41-87241643FA0A}) (Version: 12.0.3.3920 - CyberLink Corp.)
DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 10.4.0.0195 - Disc Soft Ltd)
Energy Star (HKLM-x32\...\{FC0ADA4D-8FA5-4452-8AFF-F0A0BAC97EF7}) (Version: 1.0.9 - Hewlett-Packard Company)
Foxit PhantomPDF (HKLM-x32\...\{5F3E0897-97AA-4FC2-A0A9-130A39D0FDFB}) (Version: 6.0.16.324 - Foxit Corporation)
F-Secure CCF Reputation (x32 Version: 2.0.1337.0 - F-Secure) Hidden
F-Secure CCF Scanning 1.72.115.709 (release) (x32 Version: 1.72.115.709 - F-Secure Corporation) Hidden
F-Secure Network CCF 1.04.119 (x32 Version: 1.04.119 - F-Secure Corporation) Hidden
F-Secure SafeSearch 1.09.109.0 (release) (x32 Version: 1.09.109.0 - F-Secure Corporation) Hidden
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 53.0.2785.143 - Google Inc.)
Google Update Helper (x32 Version: 1.3.31.5 - Google Inc.) Hidden
Heroes of Might and Magic V - Collectors Edition (HKLM-x32\...\Heroes of Might and Magic V - Collectors Edition3.1) (Version: 3.1 - Ubisoft)
Hewlett-Packard ACLM.NET v1.2.2.3 (x32 Version: 1.00.0000 - Hewlett-Packard Company) Hidden
HP 3D DriveGuard (HKLM-x32\...\{13133E99-B0D5-4143-B832-AAD55C62A41C}) (Version: 6.0.19.1 - Hewlett-Packard Company)
HP Camera Driver (HKLM-x32\...\Sunplus SPUVCb) (Version: 3.4.8.48 - SunplusIT)
HP Client Security Manager (HKLM\...\HPProtectTools) (Version: 8.3.7.1864 - Hewlett-Packard Company)
HP Device Access Manager (HKLM\...\{DBE16A07-DDFF-4453-807A-212EF93916E0}) (Version: 8.3.2.0 - Hewlett-Packard Company)
HP Documentation (HKLM-x32\...\{53AE55F3-8E99-4776-A347-06222894ECD3}) (Version: 1.1.0.0 - Hewlett-Packard)
HP Drive Encryption (HKLM\...\HPDriveEncryption) (Version: 8.6.11.10 - Hewlett-Packard Company)
HP ESU for Microsoft Windows 8.1 (HKLM-x32\...\{A3876D50-4A88-4A34-92E1-5D7BC8F886E1}) (Version: 1.0.1 - Hewlett-Packard Company)
HP File Sanitizer (HKLM-x32\...\{6349342F-9CEF-4A70-995A-2CF3704C2603}) (Version: 8.4.20.1 - Hewlett-Packard Company)
HP Hotkey Support (HKLM-x32\...\{445CC807-9384-47FA-A2B6-FFE970352B88}) (Version: 6.0.22.1 - Hewlett-Packard Company)
HP Registration Service (HKLM\...\{D1E8F2D7-7794-4245-B286-87ED86C1893C}) (Version: 1.2.7493.4758 - Hewlett-Packard)
HP SoftPaq Download Manager (HKLM-x32\...\{34FF930E-DBF9-4858-BAB5-BAC957BF616E}) (Version: 3.5.1.0 - Hewlett-Packard Company)
HP Software Setup (HKLM-x32\...\{F6D61EC9-347B-4019-9F8E-E24169F7C330}) (Version: 8.7.5 - Hewlett-Packard Company)
HP Support Assistant (HKLM-x32\...\{39C8BE76-CF6A-466F-8618-0B52CC4CA0FC}) (Version: 8.3.34.7 - HP Inc.)
HP Support Information (HKLM-x32\...\{B2B7B1C8-7C8B-476C-BE2C-049731C55992}) (Version: 13.00.0000 - Hewlett-Packard)
HP Support Solutions Framework (HKLM-x32\...\{7C3170E8-E61A-41D9-8547-8E96445EA510}) (Version: 12.5.32.37 - HP Inc.)
HP System Default Settings (HKLM-x32\...\{29641907-0BBA-4832-B6DE-349DAA655883}) (Version: 2.1.1 - Hewlett-Packard Company)
HP Theft Recovery (HKLM-x32\...\InstallShield_{B1E569B6-A5EB-4C97-9F93-9ED2AA99AF0E}) (Version: 8.3.0.7 - Hewlett-Packard Company)
HP Wireless Button Driver (HKLM-x32\...\{30B2D1D8-0A07-4B71-9553-0710C5D31E35}) (Version: 1.1.2.1 - Hewlett-Packard Company)
HP Wireless Hotspot (HKLM-x32\...\{563ADFC1-38E6-4EF0-8763-7CDA8289944B}) (Version: 1.0.25.1 - Hewlett-Packard Company)
Intel(R) Chipset Device Software (x32 Version: 10.0.22 - Intel(R) Corporation) Hidden
Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 10.0.30.1072 - Intel Corporation)
Intel(R) PRO/Wireless Driver (HKLM\...\{250fe254-6a88-4792-ba37-86d3e156dc3d}) (Version: 17.13.0000.1890 - Intel Corporation)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.14.4280 - Intel Corporation)
Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 13.2.8.1002 - Intel Corporation)
Intel(R) Smart Connect Technology (HKLM\...\{CAB8255F-E9B7-4EFC-9C9B-2D3A4C954294}) (Version: 5.0.10.2861 - Intel Corporation)
Intel(R) Wireless Bluetooth(R) (HKLM-x32\...\{915DDCDE-7767-4B4A-9256-8729B265BDAC}) (Version: 17.1.1440.02 - Intel Corporation)
League of Legends (HKLM-x32\...\League of Legends 4.1.2) (Version: 4.1.2 - Riot Games)
League of Legends (x32 Version: 4.1.2 - Riot Games) Hidden
Mafia II (HKLM-x32\...\Mafia II_is1) (Version: - )
Microsoft Office (HKLM-x32\...\{90150000-0138-0409-0000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 (HKLM-x32\...\{15134cb0-b767-4960-a911-f2d16ae54797}) (Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.51106 (HKLM-x32\...\{6e8f74e0-43bd-4dce-8477-6ff6828acc07}) (Version: 11.0.51106.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (HKLM-x32\...\{22154f09-719a-4619-bb71-5b3356999fbf}) (Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.51106 (HKLM-x32\...\{8e70e4e1-06d7-470b-9f74-a51bef21088e}) (Version: 11.0.51106.1 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 (HKLM-x32\...\{7f51bdb9-ee21-49ee-94d6-90afc321780e}) (Version: 12.0.21005.1 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM-x32\...\{ce085a78-074e-4823-8dc1-8a721b94b76d}) (Version: 12.0.21005.1 - Microsoft Corporation)
OEM Application Profile (HKLM-x32\...\{29F5A1C9-0BC3-16E6-9384-3BC5D1CB7ACE}) (Version: 1.00.0000 - Název společnosti:)
OEM Application Profile (HKLM-x32\...\{FCCF4B77-432F-EA83-4289-40C1DFA14C85}) (Version: 1.00.0000 - Advanced Micro Devices, Inc.)
Online Safety 2.150.3659.2518 (x32 Version: 2.150.3659.2518 - F-Secure Corporation) Hidden
PokerStars.eu (HKLM-x32\...\PokerStars.eu) (Version: - PokerStars.eu)
PX Profile Update (x32 Version: 1.00.1. - AMD) Hidden
Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 6.3.273.49 - Realtek Semiconductor Corp.)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 8.30.328.2014 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7383 - Realtek Semiconductor Corp.)
Skype™ 7.27 (HKLM-x32\...\{FC965A47-4839-40CA-B618-18F486F042C6}) (Version: 7.27.101 - Skype Technologies S.A.)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 18.1.37.4 - Synaptics Incorporated)
Team Fortress 2 (HKLM\...\Steam App 440) (Version: - Valve)
TeamSpeak 3 Client (HKLM-x32\...\TeamSpeak 3 Client) (Version: 3.0.19 - TeamSpeak Systems GmbH)
UPC Smart Guard (HKLM-x32\...\F-Secure ServiceEnabler 45329) (Version: 2.50.214.0 - F-Secure Corporation)
UPC Smart Guard (x32 Version: 2.50.214.0 - F-Secure Corporation) Hidden
Validity Fingerprint Sensor Driver (HKLM\...\{ADAA7361-54B8-4FC8-804E-94EC6C11ED68}) (Version: 4.5.133.0 - Validity Sensors, Inc.)
War Thunder Launcher 1.0.1.674 (HKLM-x32\...\{ed8deea4-29fa-3932-9612-e2122d8a62d9}}_is1) (Version: - Gaijin Entertainment)
WinRAR 5.40 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.40.0 - win.rar GmbH)
==================== Custom CLSID (Whitelisted): ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
CustomCLSID: HKU\S-1-5-21-3091623106-1469607821-2556767161-1002_Classes\CLSID\{820D63D5-8CFF-46DE-86AF-4997DEDD6DB5}\localserver32 -> C:\WINDOWS\system32\igfxEM.exe (Intel Corporation)
==================== Scheduled Tasks (Whitelisted) =============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {01BA9117-94D2-4593-BB90-2CD908E00C30} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Report => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSFReport.exe [2016-07-04] (HP Inc.)
Task: {0B545118-B563-42FC-8D07-B78F602FCF34} - System32\Tasks\Microsoft\Windows\WS\WSRefreshBannedAppsListTask => Rundll32.exe WSClient.dll,RefreshBannedAppsList
Task: {0E8C2717-F7E0-4EF9-8EE0-4AC3DD184A43} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2016-08-23] (HP Inc.)
Task: {49D1DF28-60B5-4D92-9BCF-A64A45994990} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-08-14] (Google Inc.)
Task: {6ADC0A05-4183-4B9D-9718-E5FACA067BFF} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-08-14] (Google Inc.)
Task: {8E6B8D8D-CBDC-4075-9784-B9B2B9E7A06A} - System32\Tasks\HPCeeScheduleForSaša => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [2016-05-12] (HP Development Company, L.P.)
Task: {B63D279F-A058-4F2A-A6B1-9627C9FB399A} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2016-08-23] (HP Inc.)
Task: {B6D5959C-0D02-4AE9-BE13-EBBC51D6E3E6} - System32\Tasks\F-Secure\F-Secure GUI => C:\Program Files (x86)\UPC Smart Guard\FsGuiStarter.exe [2016-03-11] (F-Secure Corporation)
Task: {C91A6CB1-391D-40F7-96DE-BEB8B2874563} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe [2016-08-03] (HP Inc.)
Task: {E3AEBE7D-B1EA-4226-AC44-68E9EEBAE11E} - System32\Tasks\Synaptics TouchPad Enhancements => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2016-09-15] (Synaptics Incorporated)
Task: {EC401263-C84D-4A65-85C9-16710A7D6400} - System32\Tasks\Hewlett-Packard\HP Active Health\HP Active Health Scan (HPSA) => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPActiveHealth\ActiveHealth.exe [2016-08-18] (HP Inc.)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\HPCeeScheduleForSaša.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe
==================== Shortcuts =============================
(The entries could be listed to be restored or removed.)
ShortcutWithArgument: C:\Users\Saša\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Bing.lnk -> C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe () -> www.bing.com
==================== Loaded Modules (Whitelisted) ==============
2014-05-28 11:14 - 2014-05-28 11:14 - 00336056 _____ () c:\Program Files\Hewlett-Packard\Pre-Boot Security for HP ProtectTools\BIOSDomainPlugin.dll
2014-03-31 15:28 - 2014-03-31 15:28 - 00007168 _____ () C:\Program Files (x86)\Hewlett-Packard\HP Theft Recovery\CtService.exe
2014-08-14 11:28 - 2014-08-14 11:28 - 00209712 _____ () c:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTAgent.exe
2014-08-14 11:28 - 2014-08-14 11:28 - 00057648 _____ () c:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\NetworkHeuristic.dll
2014-08-14 11:28 - 2014-08-14 11:28 - 00057648 _____ () c:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\ISCTEncryptionCheck.dll
2014-08-14 11:28 - 2014-08-14 11:28 - 00037168 _____ () c:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\ISCTNetMon.dll
2014-10-28 12:49 - 2016-09-15 14:21 - 00393320 _____ () C:\WINDOWS\system32\igfxTray.exe
2016-10-04 02:09 - 2016-09-25 08:02 - 02279528 _____ () C:\Program Files (x86)\Google\Chrome\Application\53.0.2785.143\libglesv2.dll
2016-10-04 02:09 - 2016-09-25 08:02 - 00107112 _____ () C:\Program Files (x86)\Google\Chrome\Application\53.0.2785.143\libegl.dll
2016-09-08 18:33 - 2015-11-24 12:26 - 00072744 _____ () C:\Program Files (x86)\UPC Smart Guard\apps\ComputerSecurity\Anti-Virus\FSAVHRES.eng
2016-03-11 15:14 - 2016-03-11 15:14 - 00250840 _____ () C:\Program Files (x86)\UPC Smart Guard\daas2.dll
2016-09-08 18:37 - 2016-09-08 18:37 - 00093152 _____ () C:\Program Files (x86)\UPC Smart Guard\apps\ComputerSecurity\Anti-Virus\minifilter\hashlib_x86.dll
2016-09-08 18:33 - 2016-09-08 18:37 - 00213984 _____ () C:\Program Files (x86)\UPC Smart Guard\apps\ComputerSecurity\Spam Control\fsas.dll
2016-09-08 18:33 - 2016-09-08 18:37 - 00932320 _____ () C:\Program Files (x86)\UPC Smart Guard\apps\ComputerSecurity\Anti-Virus\fm4av.dll
2014-10-10 11:37 - 2014-10-10 11:37 - 01243936 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll
2015-01-23 13:24 - 2013-08-05 09:49 - 00627672 _____ () C:\Program Files (x86)\CyberLink\Power2Go8\CLMediaLibrary.dll
2013-08-05 17:48 - 2013-08-05 17:48 - 00016856 _____ () c:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvcPS.dll
==================== Alternate Data Streams (Whitelisted) =========
(If an entry is included in the fixlist, only the ADS will be removed.)
==================== Safe Mode (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
==================== Association (Whitelisted) ===============
(If an entry is included in the fixlist, the registry item will be restored to default or removed.)
==================== Internet Explorer trusted/restricted ===============
(If an entry is included in the fixlist, it will be removed from the registry.)
==================== Hosts content: ===============================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2013-08-22 15:25 - 2013-08-22 15:25 - 00000824 ____A C:\WINDOWS\system32\Drivers\etc\hosts
==================== Other Areas ============================
(Currently there is no automatic fix for this section.)
HKU\S-1-5-21-3091623106-1469607821-2556767161-1002\Control Panel\Desktop\\Wallpaper -> C:\WINDOWS\web\wallpaper\HP\Washing-up-time.jpg
DNS Servers: 213.46.172.36 - 213.46.172.37
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.
==================== MSCONFIG/TASK MANAGER disabled items ==
==================== FirewallRules (Whitelisted) ===============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139
FirewallRules: [{6639FFC6-9871-44C6-AC86-E2C6963CF212}] => (Allow) c:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe
FirewallRules: [{DCCD81AC-F88C-4C4A-A980-8F1B5D6D7A53}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{C33DD95E-A318-41F0-938A-37BE717AC80E}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{0C808333-34DC-44A4-B95B-6EE5E68BA60C}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{0F6B1F98-B2C7-4B23-AE63-633901238782}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{FD38A4D1-0CB2-417D-95B3-E3C129E837D5}] => (Allow) c:\Program Files (x86)\CyberLink\PowerDVD12\PowerDVD12.exe
FirewallRules: [{BC6883C5-55F8-4BC3-B855-10F585694EAC}] => (Allow) c:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMR\PowerDVD12DMREngine.exe
FirewallRules: [{29A6B2D8-373A-4CEB-9548-996FEA815D02}] => (Allow) c:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSServerPDVD12.exe
FirewallRules: [{65387A2F-1A05-4441-86EA-366AF0B1BC70}] => (Allow) c:\Program Files (x86)\CyberLink\PowerDVD12\PowerDVD12Agent.exe
FirewallRules: [{4AEA12F2-A046-43F7-96D1-9EF3F8705F6D}] => (Allow) c:\Program Files (x86)\CyberLink\PowerDVD12\PowerDVD12ML.exe
FirewallRules: [{79DA01D9-6CE8-4AB9-94DE-832BED1A85C3}] => (Allow) c:\Program Files (x86)\CyberLink\PowerDVD12\Movie\PowerDVD.exe
FirewallRules: [TCP Query User{CC02DBA1-AE35-4453-B40E-D75C623CC53C}C:\program files (x86)\skype\phone\skype.exe] => (Block) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [UDP Query User{FE366391-3093-4FAB-99F0-2F3EBAF98F09}C:\program files (x86)\skype\phone\skype.exe] => (Block) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [TCP Query User{58D8083D-4342-4B21-BC27-A97528142CDC}C:\program files (x86)\skype\phone\skype.exe] => (Block) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [UDP Query User{F6AA4928-B677-4CF6-86DE-D12651326F06}C:\program files (x86)\skype\phone\skype.exe] => (Block) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [{EF0542F1-4586-442A-8EB0-1E820016542A}] => (Allow) C:\WarThunder\launcher.exe
FirewallRules: [{6B390EB2-71BB-4751-9E03-08C6B080C379}] => (Allow) C:\WarThunder\launcher.exe
FirewallRules: [TCP Query User{5BA97BF3-F351-43A3-82F4-798A2C28D61D}C:\warthunder\win64\aces.exe] => (Allow) C:\warthunder\win64\aces.exe
FirewallRules: [UDP Query User{2364754C-8B2B-43C9-98FE-850F4DFF3334}C:\warthunder\win64\aces.exe] => (Allow) C:\warthunder\win64\aces.exe
FirewallRules: [{4A619D3E-A8E3-4B79-ACA9-8D8E16325888}] => (Allow) C:\Users\Saša\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{77449343-DC0B-4FE9-9B5F-90BA4720B719}] => (Allow) C:\Users\Saša\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{222EF888-EB0C-4788-BACC-34BDC0F92EA4}] => (Allow) C:\Users\Saša\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{5623E265-FF79-4B83-A04C-F5632A7F648C}] => (Allow) C:\Users\Saša\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{7AB6DB16-60EC-449B-9118-1A4F7057B42A}] => (Allow) C:\Users\Saša\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{9353C1D8-E38B-489B-8977-B99851AD4823}] => (Allow) C:\Users\Saša\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{54D14AD0-376D-4C12-930D-05AC67A59CB8}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{32319AA9-F002-4AD9-9F3A-11FE96702E6E}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{A8055F89-6C0B-40BB-BA33-AEF65F7C0993}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
FirewallRules: [{34C84ED0-3966-4344-8FDB-6976D3EBCB3E}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
FirewallRules: [{8542054C-54EA-4F8F-BA80-8E98397B8F3E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Team Fortress 2\hl2.exe
FirewallRules: [{D26CE6A8-38C0-4997-A648-4F5D5F3B4A9C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Team Fortress 2\hl2.exe
FirewallRules: [{F4551036-2BF7-41FC-860E-7793B2885F90}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{1CF44D3E-F38C-4D26-B034-C5B536C603D5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{2D2809D0-4576-42A9-BECF-32794D3BD92A}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
FirewallRules: [TCP Query User{7EAADC4A-C254-4FFE-90B6-0514C7D68BA9}C:\heroes of might and magic v - collectors edition\hmm5\bin\h5_game.exe] => (Allow) C:\heroes of might and magic v - collectors edition\hmm5\bin\h5_game.exe
FirewallRules: [UDP Query User{9908EEF1-4274-4AB8-8FD7-46465B64E12A}C:\heroes of might and magic v - collectors edition\hmm5\bin\h5_game.exe] => (Allow) C:\heroes of might and magic v - collectors edition\hmm5\bin\h5_game.exe
==================== Restore Points =========================
==================== Faulty Device Manager Devices =============
==================== Event log errors: =========================
Application errors:
==================
Error: (10/07/2016 11:44:15 AM) (Source: Windows Search Service) (EventID: 10021) (User: )
Description: Nelze načíst informace registru o čítači výkonu pro WSearchIdxPi pro instanci z důvodu následující chyby: Operace byla dokončena úspěšně. 0x0.
Error: (10/07/2016 11:44:14 AM) (Source: Windows Search Service) (EventID: 3007) (User: )
Description: Sledování výkonu objektu indexovacího modulu nebylo inicializováno, protože nejsou načteny čítače nebo nebyl otevřen sdílený objekt paměti. Tato skutečnost má vliv pouze na dostupnost čítačů výkonu. Restartujte počítač.
Kontext: aplikace , katalog SystemIndex
Error: (10/07/2016 11:44:12 AM) (Source: Windows Search Service) (EventID: 3006) (User: )
Description: Sledování výkonu služby indexovacího modulu nebylo inicializováno, protože nejsou načteny čítače nebo nebyl otevřen sdílený objekt paměti. Tato skutečnost má vliv pouze na dostupnost čítačů výkonu. Restartujte počítač.
Error: (10/07/2016 11:38:23 AM) (Source: FSecure-FSecure-F-Secure Anti-Virus) (EventID: 103) (User: )
Description: 7 2016-10-07 11:38:23+02:00 MUJPC MujPC\Saša F-Secure Anti-Virus
Malicious code found in computer MUJPC.
Infection: Gen:Variant.Graftor.308444
Action: The scanner was unable to remove the infection.
Error: (10/07/2016 11:34:05 AM) (Source: FSecure-FSecure-F-Secure Anti-Virus) (EventID: 103) (User: )
Description: 6 2016-10-07 11:34:05+02:00 MUJPC MujPC\Saša F-Secure Anti-Virus
Malicious code found in file C:\Users\Saša\AppData\Local\Temp\Rar$EXa0.342\Mafia 3 PC_RUS.exe.
Infection: Gen:Variant.Graftor.308444
Error: (10/05/2016 05:24:16 AM) (Source: FSecure-FSecure-F-Secure Anti-Virus) (EventID: 103) (User: )
Description: 5 2016-10-05 05:24:15+02:00 MUJPC MujPC\Saša F-Secure Anti-Virus
Scanning of \DEVICE\HARDDISKVOLUME4\RIOT GAMES\LEAGUE OF LEGENDS\RADS\PROJECTS\LOL_PATCHER\RELEASES\0.0.0.68\DEPLOY\LOLPATCHER.EXE was aborted due to exceeded scanning time limit. The file may be in use or reading it was too slow (e.g. network connection was under stress).
Error: (10/04/2016 07:29:29 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program Explorer.EXE verze 6.3.9600.18231 přestal spolupracovat se systémem Windows a byl ukončen. Chcete-li zjistit, zda je k dispozici více informací o tomto problému, vyhledejte historii problému v ovládacím panelu Centrum akcí.
ID procesu: 12d0
Čas spuštění: 01d21d7a7d2f619f
Čas ukončení: 0
Cesta k aplikaci: C:\WINDOWS\Explorer.EXE
ID hlášení: e2e20909-8a56-11e6-8260-d07e35ca269a
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:
Error: (10/04/2016 08:41:00 AM) (Source: Perflib) (EventID: 1008) (User: )
Description: Procedura Open pro službu .NETFramework v knihovně DLL C:\WINDOWS\system32\mscoree.dll se nezdařila. Výkonnostní data pro tuto službu nebudou k dispozici. Vrácený kód stavu představují první čtyři bajty (DWORD) datové části.
Error: (10/04/2016 01:06:21 AM) (Source: FSecure-FSecure-F-Secure Anti-Virus) (EventID: 103) (User: )
Description: 4 2016-10-04 01:06:21+02:00 MUJPC MujPC\Saša F-Secure Anti-Virus
Malicious code found in file C:\Users\Saša\AppData\Local\Temp\is-3D96L.tmp\json_parser.exe.
Infection: Gen:Variant.Symmi.42286
Action: The file was deleted.
Error: (10/04/2016 01:02:17 AM) (Source: FSecure-FSecure-F-Secure Anti-Virus) (EventID: 103) (User: )
Description: 3 2016-10-04 01:02:17+02:00 MUJPC MujPC\Saša F-Secure Anti-Virus
Malicious code found in file C:\Users\Saša\AppData\Local\Temp\is-IQTPC.tmp\json_parser.exe.
Infection: Gen:Variant.Symmi.42286
Action: The file was deleted.
System errors:
=============
Error: (10/07/2016 11:45:49 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba Steam Client Service neuspěla při spuštění v důsledku následující chyby:
Služba neodpověděla na řídicí nebo zahajovací požadavek dostatečně včas.
Error: (10/07/2016 11:45:49 AM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Při čekání na připojení služby Steam Client Service bylo dosaženo časového limitu (30000 ms).
Error: (10/07/2016 11:41:23 AM) (Source: volsnap) (EventID: 25) (User: )
Description: Stínové kopie svazku C: byly smazány, protože úložiště stínové kopie nebylo možné včas zvětšit. Zvažte možnost snížení vstupně-výstupního zatížení systému nebo zvolte svazek úložiště stínové kopie, pro který není vytvářena stínová kopie.
Error: (10/05/2016 09:38:58 AM) (Source: DCOM) (EventID: 10010) (User: MujPC)
Description: Server {4545DEA0-2DFC-4906-A728-6D986BA399A9} se v daném časovém limitu neregistroval u služby DCOM.
Error: (10/05/2016 09:38:58 AM) (Source: DCOM) (EventID: 10010) (User: MujPC)
Description: Server {4545DEA0-2DFC-4906-A728-6D986BA399A9} se v daném časovém limitu neregistroval u služby DCOM.
Error: (10/05/2016 09:38:53 AM) (Source: DCOM) (EventID: 10010) (User: MujPC)
Description: Server {3FCB7074-EC9E-4AAF-9BE3-C0E356942366} se v daném časovém limitu neregistroval u služby DCOM.
Error: (10/05/2016 09:38:53 AM) (Source: DCOM) (EventID: 10010) (User: MujPC)
Description: Server {3FCB7074-EC9E-4AAF-9BE3-C0E356942366} se v daném časovém limitu neregistroval u služby DCOM.
Error: (10/05/2016 09:38:52 AM) (Source: DCOM) (EventID: 10010) (User: MujPC)
Description: Server {4545DEA0-2DFC-4906-A728-6D986BA399A9} se v daném časovém limitu neregistroval u služby DCOM.
Error: (10/05/2016 09:38:52 AM) (Source: DCOM) (EventID: 10010) (User: MujPC)
Description: Server {4545DEA0-2DFC-4906-A728-6D986BA399A9} se v daném časovém limitu neregistroval u služby DCOM.
Error: (10/05/2016 06:04:00 AM) (Source: DCOM) (EventID: 10010) (User: MujPC)
Description: Server {1B1F472E-3221-4826-97DB-2C2324D389AE} se v daném časovém limitu neregistroval u služby DCOM.
CodeIntegrity:
===================================
Date: 2016-08-27 10:07:08.876
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\amdhdl64.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2016-08-26 04:40:24.896
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\amdhdl64.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2016-08-24 07:19:59.817
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\amdhdl64.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2016-08-14 04:17:09.796
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\amdhdl64.dll that did not meet the Custom 3 / Antimalware signing level requirements.
==================== Memory info ===========================
Processor: Intel(R) Core(TM) i7-5500U CPU @ 2.40GHz
Percentage of memory in use: 31%
Total physical RAM: 8083.11 MB
Available physical RAM: 5544.43 MB
Total Virtual: 9107.11 MB
Available Virtual: 6125.59 MB
==================== Drives ================================
Drive c: (Windows) (Fixed) (Total:914.77 GB) (Free:778.94 GB) NTFS
Drive d: (Recovery Image) (Fixed) (Total:13.26 GB) (Free:1.37 GB) NTFS
Drive e: (HP_TOOLS) (Fixed) (Total:1.99 GB) (Free:1.99 GB) FAT32
Drive h: (Mafia II) (CDROM) (Total:5.57 GB) (Free:0 GB) CDFS
Drive i: (LEGO Racers 2) (CDROM) (Total:0.46 GB) (Free:0 GB) CDFS
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (Size: 931.5 GB) (Disk ID: 5EBF270B)
Partition: GPT.
==================== End of Addition.txt ============================
Re: Prosim o kotrolu
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 04-10-2016
Ran by Saša (administrator) on MUJPC (07-10-2016 11:56:44)
Running from C:\Users\Saša\Downloads
Loaded Profiles: Saša (Available Profiles: Saša)
Platform: Windows 8.1 (Update) (X64) Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: IE)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(DigitalPersona, Inc.) C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe
(AMD) C:\Windows\System32\atiesrxx.exe
(AMD) C:\Windows\System32\atieclxx.exe
(Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(DigitalPersona, Inc.) C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpCardEngine.exe
(Hewlett-Packard Company) C:\Windows\System32\hpservice.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Validity Sensors, Inc.) C:\Windows\System32\vcsFPService.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
() C:\Program Files (x86)\Hewlett-Packard\HP Theft Recovery\CtService.exe
(Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe
(F-Secure Corporation) C:\Program Files (x86)\UPC Smart Guard\fshoster32.exe
(F-Secure Corporation) C:\Program Files (x86)\UPC Smart Guard\apps\CCF_Reputation\fsorsp.exe
(F-Secure Corporation) C:\Program Files (x86)\UPC Smart Guard\apps\ComputerSecurity\Anti-Virus\fsgk32.exe
(Hewlett-Packard) C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\HPFSService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\utilities\ibtsiva.exe
() C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTAgent.exe
(Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
(Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
(Hewlett-Packard Development Company) C:\Program Files (x86)\Hewlett-Packard\HP Device Access Manager\HP.ProtectTools.DeviceAccessManager.ServiceHost.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe
(F-Secure Corporation) C:\Program Files (x86)\UPC Smart Guard\apps\ComputerSecurity\Common\FSMA32.EXE
(F-Secure Corporation) C:\Program Files (x86)\UPC Smart Guard\apps\ComputerSecurity\Common\FSHDLL64.EXE
(F-Secure Corporation) C:\Program Files (x86)\UPC Smart Guard\apps\ComputerSecurity\Anti-Virus\fssm32.exe
(Microsoft Corporation) C:\Windows\SysWOW64\dllhost.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(DigitalPersona, Inc.) C:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DPAgent.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.31.5\GoogleCrashHandler.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.31.5\GoogleCrashHandler64.exe
(DigitalPersona, Inc.) C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpAgent.exe
(Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel Corporation) C:\Windows\System32\igfxHK.exe
() C:\Windows\System32\igfxTray.exe
(F-Secure Corporation) C:\Program Files (x86)\UPC Smart Guard\fshoster32.exe
(HP Inc.) C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTsysTray8.exe
(Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(© 2015 Microsoft Corporation) C:\Users\Saša\AppData\Local\Microsoft\BingSvc\BingSvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(BitTorrent Inc.) C:\Users\Saša\AppData\Roaming\uTorrent\uTorrent.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP 3D DriveGuard\AccelerometerSt.exe
(Disc Soft Ltd) C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe
(CyberLink) C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe
(Hewlett-Packard) C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\CORESHREDDER.exe
(Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(BitTorrent Inc.) C:\Users\Saša\AppData\Roaming\uTorrent\updates\3.4.8_42576\utorrentie.exe
(BitTorrent Inc.) C:\Users\Saša\AppData\Roaming\uTorrent\updates\3.4.8_42576\utorrentie.exe
(Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
==================== Registry (Whitelisted) ====================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [7659224 2014-11-11] (Realtek Semiconductor)
HKLM\...\Run: [ISCT Tray] => c:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTsysTray8.exe [5860656 2014-08-14] (Intel Corporation)
HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [321960 2015-07-09] (Intel Corporation)
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [QLBController] => C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe [425608 2014-10-03] (Hewlett-Packard Company)
HKLM-x32\...\Run: [HP Camera Driver_Monitor] => "C:\Program Files (x86)\HP Camera Driver\monitor.exe"
HKLM-x32\...\Run: [AccelerometerSysTrayApplet] => C:\Program Files (x86)\Hewlett-Packard\HP 3D DriveGuard\AccelerometerST.exe [126240 2014-04-01] (Hewlett-Packard Company)
HKLM-x32\...\Run: [CLMLServer_For_P2G8] => c:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe [111576 2013-08-05] (CyberLink)
HKLM-x32\...\Run: [CLVirtualDrive] => c:\Program Files (x86)\CyberLink\Power2Go8\VirtualDrive.exe [490760 2013-08-07] (CyberLink Corp.)
HKLM-x32\...\Run: [HP File Sanitizer] => C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\Coreshredder.exe [2213592 2014-02-05] (Hewlett-Packard)
HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [767176 2015-08-19] (Advanced Micro Devices, Inc.)
HKLM\...\Winlogon: [Userinit] C:\Windows\system32\userinit.exe,c:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DPAgent.exe,
HKU\S-1-5-21-3091623106-1469607821-2556767161-1002\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [29547136 2016-08-17] (Skype Technologies S.A.)
HKU\S-1-5-21-3091623106-1469607821-2556767161-1002\...\Run: [BingSvc] => C:\Users\Saša\AppData\Local\Microsoft\BingSvc\BingSvc.exe [144008 2015-11-05] (© 2015 Microsoft Corporation)
HKU\S-1-5-21-3091623106-1469607821-2556767161-1002\...\Run: [uTorrent] => C:\Users\Saša\AppData\Roaming\uTorrent\uTorrent.exe [2139840 2016-09-12] (BitTorrent Inc.)
HKU\S-1-5-21-3091623106-1469607821-2556767161-1002\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [2858272 2016-09-20] (Valve Corporation)
HKU\S-1-5-21-3091623106-1469607821-2556767161-1002\...\Run: [DAEMON Tools Lite Automount] => C:\Program Files\DAEMON Tools Lite\DTAgent.exe [4299968 2016-08-29] (Disc Soft Ltd)
HKU\S-1-5-21-3091623106-1469607821-2556767161-1002\...\MountPoints2: {7497f251-784c-11e6-825c-d07e35ca269a} - "I:\Browse.exe"
HKU\S-1-5-21-3091623106-1469607821-2556767161-1002\...\MountPoints2: {c23c6afe-825c-11e6-8260-d07e35ca269a} - "H:\Setup.exe"
Lsa: [Notification Packages] DPPassFilter scecli
CHR HKLM\SOFTWARE\Policies\Google: Restriction <======= ATTENTION
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 213.46.172.36 213.46.172.37
Tcpip\..\Interfaces\{2AC25671-3FEB-4281-B448-C6170DDD4319}: [DhcpNameServer] 213.46.172.36 213.46.172.37
Tcpip\..\Interfaces\{C91A3D70-B942-44D7-9098-5C83AA713164}: [DhcpNameServer] 213.46.172.36 213.46.172.37
Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.bing.com?pc=CMNTDFJS
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.bing.com?pc=CMNTDFJS
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.bing.com?pc=CMNTDFJS
HKU\S-1-5-21-3091623106-1469607821-2556767161-1002\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.bing.com/?pc=CMNTDFJS
HKU\S-1-5-21-3091623106-1469607821-2556767161-1002\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.bing.com?pc=CMNTDFJS
BHO: Browsing Protection by F-Secure -> {45BBE08D-81C5-4A67-AF20-B2A077C67747} -> C:\Program Files (x86)\UPC Smart Guard\apps\CCF_Scanning\bin\browser\install\fs_ie_https\fs_ie_https64.dll [2016-09-23] (F-Secure Corporation)
BHO: Search by F-Secure -> {690EF1CF-5775-4CB3-A5B8-85A63FD0262B} -> C:\Program Files (x86)\UPC Smart Guard\apps\SafeSearch\IE\FSSafeSearch64.dll [2016-09-09] (F-Secure Corporation)
BHO: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll [2016-07-04] (HP Inc.)
BHO-x32: HP File Sanitizer -> {3134413B-49B4-425C-98A5-893C1F195601} -> C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\IEBHO.dll [2014-02-05] (Hewlett-Packard)
BHO-x32: Browsing Protection by F-Secure -> {45BBE08D-81C5-4A67-AF20-B2A077C67747} -> C:\Program Files (x86)\UPC Smart Guard\apps\CCF_Scanning\bin\browser\install\fs_ie_https\fs_ie_https.dll [2016-09-23] (F-Secure Corporation)
BHO-x32: Search by F-Secure -> {690EF1CF-5775-4CB3-A5B8-85A63FD0262B} -> C:\Program Files (x86)\UPC Smart Guard\apps\SafeSearch\IE\FSSafeSearch.dll [2016-09-09] (F-Secure Corporation)
BHO-x32: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2016-07-04] (HP Inc.)
Toolbar: HKLM - Search by F-Secure Toolbar - {B242FC32-2B60-48EA-A8E3-2E280EDBC48F} - C:\Program Files (x86)\UPC Smart Guard\apps\SafeSearch\IE\FSSafeSearch64.dll [2016-09-09] (F-Secure Corporation)
Toolbar: HKLM-x32 - Search by F-Secure Toolbar - {B242FC32-2B60-48EA-A8E3-2E280EDBC48F} - C:\Program Files (x86)\UPC Smart Guard\apps\SafeSearch\IE\FSSafeSearch.dll [2016-09-09] (F-Secure Corporation)
FireFox:
========
FF HKLM\...\Firefox\Extensions: [ols@f-secure.com] - C:\Program Files (x86)\UPC Smart Guard\apps\CCF_Scanning\bin\browser\install\fs_firefox_https\fs_firefox_https.xpi
FF Extension: (Browsing Protection by F-Secure) - C:\Program Files (x86)\UPC Smart Guard\apps\CCF_Scanning\bin\browser\install\fs_firefox_https\fs_firefox_https.xpi [2016-09-23]
FF HKLM-x32\...\Firefox\Extensions: [dpmaxz_ng@jetpack] - c:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\BrowserExt\dpchrome
FF Extension: (HP Client Security Manager) - c:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\BrowserExt\dpchrome [2015-01-23] [not signed]
FF HKLM-x32\...\Firefox\Extensions: [ols@f-secure.com] - C:\Program Files (x86)\UPC Smart Guard\apps\CCF_Scanning\bin\browser\install\fs_firefox_https\fs_firefox_https.xpi
FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/pdf -> C:\Program Files (x86)\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [2013-12-18] ()
FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.fdf -> C:\Program Files (x86)\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [2013-12-18] ()
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.56 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2014-10-10] (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2014-10-10] (Intel Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-08-14] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-08-14] (Google Inc.)
FF Plugin-x32: digitalpersona.com/ChromeDPAgent -> c:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\BrowserExt\components\npChromeDPAgent.dll [2014-06-26] (DigitalPersona, Inc.)
Chrome:
=======
CHR HomePage: Default -> msn.com/?pc=__PARAM__&ocid=__PARAM__DHP&osmkt=en-us
CHR DefaultSearchURL: Default -> hxxp://www.bing.com/search?FORM=__PARAM__DF&PC ... earchTerms}
CHR DefaultSearchKeyword: Default -> bing.com
CHR DefaultSuggestURL: Default -> hxxp://www.bing.com/osjson.aspx?FORM=__PARAM__ ... earchTerms}
CHR Profile: C:\Users\Saša\AppData\Local\Google\Chrome\User Data\Default [2016-10-07]
CHR Extension: (Prezentace Google) - C:\Users\Saša\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2016-08-14]
CHR Extension: (Dokumenty Google) - C:\Users\Saša\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2016-08-14]
CHR Extension: (Disk Google) - C:\Users\Saša\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-08-14]
CHR Extension: (YouTube) - C:\Users\Saša\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-08-14]
CHR Extension: (Bing) - C:\Users\Saša\AppData\Local\Google\Chrome\User Data\Default\Extensions\fcfenmboojpjinhpgggodefccipikbpd [2016-08-31]
CHR Extension: (Tabulky Google) - C:\Users\Saša\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2016-08-14]
CHR Extension: (Dokumenty Google offline) - C:\Users\Saša\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-08-14]
CHR Extension: (Browsing Protection by F-Secure) - C:\Users\Saša\AppData\Local\Google\Chrome\User Data\Default\Extensions\jmjjnhpacphpjmnnlnccpfmhkcloaade [2016-09-09]
CHR Extension: (HP Client Security Manager) - C:\Users\Saša\AppData\Local\Google\Chrome\User Data\Default\Extensions\ncffjdbbodifgldkcbhmiiljfcnbgjab [2016-08-14]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Saša\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-08-14]
CHR Extension: (Gmail) - C:\Users\Saša\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2016-08-14]
CHR Extension: (Chrome Media Router) - C:\Users\Saša\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2016-09-23]
CHR HKU\S-1-5-21-3091623106-1469607821-2556767161-1002\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [fcfenmboojpjinhpgggodefccipikbpd] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [jmjjnhpacphpjmnnlnccpfmhkcloaade] - C:/Program Files (x86)/UPC Smart Guard/apps/CCF_Scanning/bin/browser/install/fs_chrome_https/fs_chrome_https.crx [2015-10-23]
CHR HKLM-x32\...\Chrome\Extension: [ncffjdbbodifgldkcbhmiiljfcnbgjab] - c:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\BrowserExt\dpchrome.crx [2014-06-26]
==================== Services (Whitelisted) ====================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 CtAgentService; C:\Program Files (x86)\Hewlett-Packard\HP Theft Recovery\CtService.exe [7168 2014-03-31] () [File not signed]
R3 Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe [1467072 2016-08-29] (Disc Soft Ltd)
R2 DpHost; c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe [500048 2014-07-28] (DigitalPersona, Inc.)
S3 FLCDLOCK; c:\windows\SysWOW64\flcdlock.exe [567608 2013-11-20] (Hewlett-Packard Company)
R2 fshoster; C:\Program Files (x86)\UPC Smart Guard\fshoster32.exe [186840 2016-03-11] (F-Secure Corporation)
R3 FSMA; C:\Program Files (x86)\UPC Smart Guard\apps\ComputerSecurity\Common\FSMA32.EXE [216104 2015-11-24] (F-Secure Corporation)
R2 FSORSPClient; C:\Program Files (x86)\UPC Smart Guard\apps\CCF_Reputation\fsorsp.exe [60456 2016-09-08] (F-Secure Corporation)
S3 HotSpotSrv; C:\Program Files (x86)\Hewlett-Packard\HP Wireless Hotspot\HotSpotSrv.exe [372408 2013-12-10] (Hewlett-Packard Development Company, L.P.)
R2 HpDamServiceHost; c:\Program Files (x86)\Hewlett-Packard\HP Device Access Manager\HP.ProtectTools.DeviceAccessManager.ServiceHost.exe [18232 2013-11-15] (Hewlett-Packard Development Company)
S3 hpqcaslwmiex; C:\Program Files (x86)\HP\Shared\hpqwmiex.exe [1031704 2016-06-03] (HP)
R2 HPSupportSolutionsFrameworkService; C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe [29728 2016-08-15] (HP Inc.)
R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [18856 2015-07-09] (Intel Corporation)
R2 ibtsiva; C:\Program Files (x86)\Intel\Bluetooth\utilities\ibtsiva.exe [125168 2014-11-04] (Intel Corporation)
R2 igfxCUIService1.0.0.0; C:\Windows\system32\igfxCUIService.exe [344168 2016-09-15] (Intel Corporation)
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [887256 2014-05-13] (Intel(R) Corporation)
R2 ISCTAgent; c:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTAgent.exe [209712 2014-08-14] ()
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [158496 2014-10-10] (Intel Corporation)
S3 MyWiFiDHCPDNS; c:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [268192 2014-09-23] ()
R2 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [292568 2014-09-04] (Realtek Semiconductor)
S3 vmicvss; C:\Windows\System32\ICSvc.dll [524800 2014-10-29] (Microsoft Corporation)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [366552 2015-07-07] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23824 2015-07-07] (Microsoft Corporation)
R2 ZeroConfigService; c:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [3820960 2014-09-23] (Intel® Corporation)
===================== Drivers (Whitelisted) ======================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 BCM43XX; C:\Windows\system32\DRIVERS\bcmwl63a.sys [8536752 2013-07-01] (Broadcom Corporation)
R1 CLVirtualDrive; C:\Windows\system32\DRIVERS\CLVirtualDrive.sys [91712 2013-03-05] (CyberLink)
S3 DAMDrv; C:\Windows\system32\DRIVERS\DAMDrv64.sys [65752 2013-10-07] (Hewlett-Packard Company)
S3 dg_ssudbus; C:\Windows\system32\DRIVERS\ssudbus.sys [130688 2016-07-22] (Samsung Electronics Co., Ltd.)
R3 dtlitescsibus; C:\Windows\System32\drivers\dtlitescsibus.sys [30264 2016-09-11] (Disc Soft Ltd)
R3 dtliteusbbus; C:\Windows\System32\drivers\dtliteusbbus.sys [47672 2016-09-11] (Disc Soft Ltd)
S0 ebdrv; C:\Windows\System32\drivers\evbda.sys [3357024 2013-08-22] (Broadcom Corporation)
R3 F-Secure Gatekeeper; C:\Program Files (x86)\UPC Smart Guard\apps\ComputerSecurity\Anti-Virus\minifilter\fsgk.sys [219352 2016-09-26] (F-Secure Corporation)
R1 F-Secure HIPS; C:\Program Files (x86)\UPC Smart Guard\apps\ComputerSecurity\HIPS\drivers\fshs.sys [98008 2016-09-26] (F-Secure Corporation)
R0 fsbts; C:\Windows\System32\Drivers\fsbts.sys [73928 2016-09-08] ()
R3 fsni; C:\Program Files (x86)\UPC Smart Guard\apps\CCF_Scanning\bin\fsni64.sys [110800 2016-09-23] (F-Secure Corporation)
R3 ibtusb; C:\Windows\system32\DRIVERS\ibtusb.sys [225008 2014-11-04] (Intel Corporation)
R3 ikbevent; C:\Windows\system32\DRIVERS\ikbevent.sys [22216 2014-05-27] ()
R3 imsevent; C:\Windows\system32\DRIVERS\imsevent.sys [22728 2014-05-27] ()
R3 INETMON; C:\windows\System32\Drivers\INETMON.sys [25800 2014-05-27] ()
R3 ISCT; C:\Windows\System32\drivers\ISCTD.sys [44744 2014-05-27] ()
R3 MEIx64; C:\Windows\System32\drivers\TeeDriverx64.sys [129312 2014-10-10] (Intel Corporation)
R3 NETwNb64; C:\Windows\system32\DRIVERS\Netwbw02.sys [3486488 2014-10-17] (Intel Corporation)
R0 PinFile; C:\Windows\System32\DRIVERS\PinFile.sys [49856 2014-12-05] (WinMagic Inc.)
R3 RTSPER; C:\Windows\system32\DRIVERS\RtsPer.sys [476888 2014-03-22] (Realsil Semiconductor Corporation)
R0 SDDisk2K; C:\Windows\System32\DRIVERS\SDDisk2K.sys [228544 2014-12-05] (WinMagic Inc.)
R0 SDDToki; C:\Windows\System32\DRIVERS\SDDToki.sys [131264 2014-12-05] (WinMagic Inc.)
R3 SPUVCbv; C:\Windows\System32\Drivers\SPUVCbv_x64.sys [674592 2014-10-07] (Sunplus)
S3 ssudmdm; C:\Windows\system32\DRIVERS\ssudmdm.sys [164992 2016-07-22] (Samsung Electronics Co., Ltd.)
S3 ssudserd; C:\Windows\system32\DRIVERS\ssudserd.sys [164992 2016-07-22] (Samsung Electronics Co., Ltd.)
S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [44560 2015-07-07] (Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [270168 2015-07-07] (Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114520 2015-07-07] (Microsoft Corporation)
R3 WirelessButtonDriver; C:\Windows\System32\drivers\WirelessButtonDriver64.sys [20800 2013-07-22] (Hewlett-Packard Development Company, L.P.)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2016-10-07 11:56 - 2016-10-07 11:57 - 00023553 _____ C:\Users\Saša\Downloads\FRST.txt
2016-10-07 11:54 - 2016-10-07 11:54 - 01222144 _____ C:\Users\Saša\Downloads\RSITx64.exe
2016-10-07 11:54 - 2016-10-07 11:54 - 00000000 ____D C:\rsit
2016-10-07 11:54 - 2016-10-07 11:54 - 00000000 ____D C:\Program Files\trend micro
2016-10-07 11:53 - 2016-10-07 11:56 - 00000000 ____D C:\FRST
2016-10-07 11:53 - 2016-10-07 11:53 - 02405376 _____ (Farbar) C:\Users\Saša\Downloads\FRST64.exe
2016-10-07 11:53 - 2016-10-07 11:53 - 02405376 _____ (Farbar) C:\Users\Saša\Downloads\FRST64 (1).exe
2016-10-07 11:41 - 2016-10-07 11:42 - 00001078 _____ C:\WINDOWS\system32dbgraw.bmp
2016-10-04 21:11 - 2016-10-04 21:11 - 00002147 _____ C:\Users\Saša\Desktop\Tribes of the East.lnk
2016-10-04 21:11 - 2016-10-04 21:11 - 00002045 _____ C:\Users\Saša\Desktop\Hammers of Fate.lnk
2016-10-04 21:11 - 2016-10-04 21:11 - 00002025 _____ C:\Users\Saša\Desktop\Heroes of Might and Magic V.lnk
2016-10-04 21:11 - 2016-10-04 21:11 - 00000000 ____D C:\Users\Saša\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Heroes of Might and Magic V - Collectors Edition
2016-10-04 21:00 - 2016-10-04 21:00 - 00000000 ____D C:\Heroes of Might and Magic V - Collectors Edition
2016-10-04 20:54 - 2016-10-04 20:54 - 00000000 ____D C:\Users\Saša\Desktop\Nová složka (2)
2016-10-04 20:30 - 2016-10-04 20:51 - 253014424 _____ C:\Users\Saša\Downloads\Heroes-of-Might-and-Magic-5-CZ.rar
2016-10-04 19:11 - 2016-10-04 19:11 - 00002132 _____ C:\Users\Public\Desktop\Mafia II.lnk
2016-10-04 19:11 - 2016-10-04 19:11 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\2K Games
2016-10-04 19:04 - 2016-10-04 19:04 - 00000000 ____D C:\Program Files (x86)\2K Games
2016-10-04 17:59 - 2016-10-04 18:11 - 00000000 ____D C:\Users\Saša\Downloads\Mafia II-SKIDROW
2016-10-04 01:06 - 2016-10-04 01:07 - 00000000 ____D C:\Users\Saša\Downloads\Rock Bottom to Rock Star
2016-10-04 01:06 - 2016-10-04 01:01 - 00700472 _____ (Auto-Grant ) C:\Users\Saša\Desktop\Mafia_II-SKIDROW_(Mafia_2).exe
2016-10-04 01:06 - 2016-10-04 01:01 - 00657000 _____ C:\Users\Saša\Desktop\Mafia_II-SKIDROW_(Mafia_2).zip
2016-10-04 01:04 - 2016-10-04 01:04 - 02970885 _____ C:\Users\Saša\Downloads\Mafia 3 PC_RUS.rar
2016-10-04 01:03 - 2016-10-04 01:03 - 00466216 _____ (MediaGet LLC) C:\Users\Saša\Downloads\MediaGet_id1778420ids2s.exe
2016-10-04 01:01 - 2016-10-04 01:01 - 00657229 _____ C:\Users\Saša\Downloads\Mafia_II-SKIDROW_(Mafia_2).zip
2016-10-04 00:07 - 2016-10-04 00:07 - 00700315 _____ C:\Users\Saša\Downloads\Mafia III.rar
2016-10-04 00:07 - 2016-01-17 19:53 - 03160576 _____ C:\Users\Saša\Desktop\setup.exe
2016-10-04 00:07 - 2015-07-20 11:42 - 00000045 _____ C:\Users\Saša\Desktop\READ!.txt
2016-10-04 00:07 - 2015-03-31 18:22 - 00321024 _____ (Sven Walter) C:\Users\Saša\Desktop\MetroFramework.dll
2016-10-04 00:07 - 2004-05-22 15:40 - 00149504 _____ C:\Users\Saša\Desktop\mssmp3.asi
2016-10-03 21:24 - 2016-10-03 21:24 - 00000000 ____D C:\Program Files (x86)\directx
2016-10-03 21:19 - 2016-10-03 21:25 - 00000000 ____D C:\Users\Saša\Desktop\WIN
2016-10-03 21:18 - 2016-10-03 21:18 - 02377944 _____ C:\Users\Saša\Downloads\winrar-x64-540cz.exe
2016-10-03 21:18 - 2016-10-03 21:18 - 00000000 ____D C:\Users\Saša\AppData\Roaming\WinRAR
2016-10-03 21:18 - 2016-10-03 21:18 - 00000000 ____D C:\Users\Saša\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2016-10-03 21:18 - 2016-10-03 21:18 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2016-10-03 21:18 - 2016-10-03 21:18 - 00000000 ____D C:\Program Files\WinRAR
2016-10-03 18:47 - 2016-10-03 19:07 - 488079444 _____ C:\Users\Saša\Downloads\lLEGO.RACERS.2-DEViANCE.rar
2016-10-03 18:24 - 2016-10-03 18:28 - 1354476014 _____ C:\Users\Saša\Downloads\Podfukari 2 CZ titulky (2016) NOVINKA.avi
2016-10-01 18:20 - 2016-10-01 18:23 - 1061137362 _____ C:\Users\Saša\Downloads\Ulice Cloverfield 10 (2016) CZ-Titulky NOVINKA.avi
2016-09-29 18:16 - 2016-09-29 18:16 - 00000000 ____D C:\Users\Saša\AppData\Local\HP_Development_Company,_L
2016-09-29 01:03 - 2016-09-29 01:04 - 00000000 ____D C:\Users\Saša\Desktop\Tor Browser
2016-09-29 01:02 - 2016-09-29 01:02 - 49791240 _____ C:\Users\Saša\Downloads\torbrowser-install-6.0.5_en-US.exe
2016-09-26 20:35 - 2016-10-07 11:44 - 00000000 ____D C:\Users\Saša\AppData\LocalLow\uTorrent
2016-09-16 20:15 - 2016-09-16 20:15 - 00000000 ____D C:\ProgramData\ATI
2016-09-16 20:13 - 2016-09-16 20:13 - 00016320 _____ C:\WINDOWS\system32\results.xml
2016-09-16 20:11 - 2016-09-16 20:11 - 00000401 _____ C:\WINDOWS\system32\{F33C3B9B-72AF-418A-B3FD-560646F7CDA2}.bat
2016-09-15 15:29 - 2016-09-15 15:29 - 00000000 ____D C:\Users\Saša\AppData\LocalLow\F-Secure
2016-09-15 14:27 - 2016-09-15 14:27 - 00580264 _____ (Synaptics Incorporated) C:\WINDOWS\system32\Drivers\SynTP.sys
2016-09-15 14:27 - 2016-09-15 14:27 - 00409256 _____ (Synaptics Incorporated) C:\WINDOWS\SysWOW64\SynCom.dll
2016-09-15 14:27 - 2016-09-15 14:27 - 00256168 _____ (Synaptics Incorporated) C:\WINDOWS\system32\SynTPAPI.dll
2016-09-15 14:27 - 2016-09-15 14:27 - 00212136 _____ (Synaptics Incorporated) C:\WINDOWS\system32\SynTPCo20.dll
2016-09-15 14:26 - 2016-09-15 14:26 - 00000000 ____D C:\Users\Default\AppData\Roaming\Intel Corporation
2016-09-15 14:26 - 2016-09-15 14:26 - 00000000 ____D C:\Users\Default User\AppData\Roaming\Intel Corporation
2016-09-15 14:22 - 2016-09-15 14:21 - 02958368 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiVAD64.exe
2016-09-15 14:22 - 2016-09-15 14:21 - 02777088 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiAAC64.dll
2016-09-15 14:22 - 2016-09-15 14:21 - 01513984 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiSecureSourceFilter64.dll
2016-09-15 14:22 - 2016-09-15 14:21 - 01402336 _____ (Intel Corporation) C:\WINDOWS\system32\iglhsip64.dll
2016-09-15 14:22 - 2016-09-15 14:21 - 01399240 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\iglhsip32.dll
2016-09-15 14:22 - 2016-09-15 14:21 - 01370624 _____ (Intel Corporation) C:\WINDOWS\system32\igfxcmjit64.dll
2016-09-15 14:22 - 2016-09-15 14:21 - 01064448 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igfxcmjit32.dll
2016-09-15 14:22 - 2016-09-15 14:21 - 01015808 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiWinNextAgent64.dll
2016-09-15 14:22 - 2016-09-15 14:21 - 00672768 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiAudioFilter64.dll
2016-09-15 14:22 - 2016-09-15 14:21 - 00624128 _____ (Intel Corporation) C:\WINDOWS\system32\MetroIntelGenericUIFramework.dll
2016-09-15 14:22 - 2016-09-15 14:21 - 00616960 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiMux64.dll
2016-09-15 14:22 - 2016-09-15 14:21 - 00472168 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiUMS64.exe
2016-09-15 14:22 - 2016-09-15 14:21 - 00385024 _____ (Intel Corporation) C:\WINDOWS\system32\igfxOSP.dll
2016-09-15 14:22 - 2016-09-15 14:21 - 00372224 _____ (Intel Corporation) C:\WINDOWS\system32\IntelOpenCL64.dll
2016-09-15 14:22 - 2016-09-15 14:21 - 00354816 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiSilenceFilter64.dll
2016-09-15 14:22 - 2016-09-15 14:21 - 00304128 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\IntelOpenCL32.dll
2016-09-15 14:22 - 2016-09-15 14:21 - 00279144 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\IntelCpHeciSvc.exe
2016-09-15 14:22 - 2016-09-15 14:21 - 00268800 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiUtils64.dll
2016-09-15 14:22 - 2016-09-15 14:21 - 00256000 _____ C:\WINDOWS\system32\igfxCPL.cpl
2016-09-15 14:22 - 2016-09-15 14:21 - 00220432 _____ (Intel Corporation) C:\WINDOWS\system32\iglhcp64.dll
2016-09-15 14:22 - 2016-09-15 14:21 - 00218728 _____ (Intel Corporation) C:\WINDOWS\system32\igfxext.exe
2016-09-15 14:22 - 2016-09-15 14:21 - 00214016 _____ (Intel Corporation) C:\WINDOWS\system32\igfx11cmrt64.dll
2016-09-15 14:22 - 2016-09-15 14:21 - 00213192 _____ (Intel Corporation) C:\WINDOWS\system32\igfxcmrt64.dll
2016-09-15 14:22 - 2016-09-15 14:21 - 00206848 _____ (Intel Corporation) C:\WINDOWS\system32\igfxCoIn_v4280.dll
2016-09-15 14:22 - 2016-09-15 14:21 - 00198144 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiDDEAgent64.dll
2016-09-15 14:22 - 2016-09-15 14:21 - 00184352 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\iglhcp32.dll
2016-09-15 14:22 - 2016-09-15 14:21 - 00179200 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igfx11cmrt32.dll
2016-09-15 14:22 - 2016-09-15 14:21 - 00178672 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igfxcmrt32.dll
2016-09-15 14:22 - 2016-09-15 14:21 - 00135680 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiMCUMD64.dll
2016-09-15 14:22 - 2016-09-15 14:21 - 00128000 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiLogServer64.dll
2016-09-15 14:22 - 2016-09-15 14:21 - 00086528 _____ C:\WINDOWS\system32\igfxCUIServicePS.dll
2016-09-15 14:22 - 2016-09-15 14:21 - 00086528 _____ (Khronos Group) C:\WINDOWS\SysWOW64\Intel_OpenCL_ICD32.dll
2016-09-15 14:22 - 2016-09-15 14:21 - 00082432 _____ (Khronos Group) C:\WINDOWS\system32\Intel_OpenCL_ICD64.dll
2016-09-15 14:22 - 2016-09-15 14:21 - 00073728 _____ ( ) C:\WINDOWS\system32\igfxDHLibv2_0.dll
2016-09-15 14:22 - 2016-09-15 14:21 - 00060928 _____ ( ) C:\WINDOWS\system32\igfxDHLib.dll
2016-09-15 14:22 - 2016-09-15 14:21 - 00036616 _____ (Intel Corporation) C:\WINDOWS\system32\igfxexps.dll
2016-09-15 14:22 - 2016-09-15 14:21 - 00035328 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igfxexps32.dll
2016-09-15 14:22 - 2016-09-15 14:21 - 00011264 _____ ( ) C:\WINDOWS\system32\igfxDILib.dll
2016-09-15 14:22 - 2016-09-15 14:21 - 00010752 _____ ( ) C:\WINDOWS\system32\igfxDILibv2_0.dll
2016-09-15 14:22 - 2016-09-15 14:21 - 00010240 _____ ( ) C:\WINDOWS\system32\igfxEMLibv2_0.dll
2016-09-15 14:22 - 2016-09-15 14:21 - 00010240 _____ ( ) C:\WINDOWS\system32\igfxEMLib.dll
2016-09-15 14:22 - 2016-09-15 14:21 - 00005120 _____ ( ) C:\WINDOWS\system32\igfxLHMLibv2_0.dll
2016-09-15 14:22 - 2016-09-15 14:21 - 00005120 _____ ( ) C:\WINDOWS\system32\igfxLHMLib.dll
2016-09-15 14:22 - 2016-09-15 14:21 - 00004040 _____ C:\WINDOWS\system32\iglhxs64.vp
2016-09-15 14:21 - 2016-09-15 14:21 - 17808192 _____ C:\WINDOWS\system32\igd11dxva64.dll
2016-09-15 14:21 - 2016-09-15 14:21 - 17331808 _____ C:\WINDOWS\SysWOW64\igd11dxva32.dll
2016-09-15 14:21 - 2016-09-15 14:21 - 15981056 _____ (Intel Corporation) C:\WINDOWS\system32\igdfcl64.dll
2016-09-15 14:21 - 2016-09-15 14:21 - 10852352 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdfcl32.dll
2016-09-15 14:21 - 2016-09-15 14:21 - 09504768 _____ (Intel Corporation) C:\WINDOWS\system32\ig8icd64.dll
2016-09-15 14:21 - 2016-09-15 14:21 - 07494144 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\ig8icd32.dll
2016-09-15 14:21 - 2016-09-15 14:21 - 06725162 _____ C:\WINDOWS\system32\igdclbif.bin
2016-09-15 14:21 - 2016-09-15 14:21 - 04918160 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\igdkmd64.sys
2016-09-15 14:21 - 2016-09-15 14:21 - 03590656 _____ (Intel Corporation) C:\WINDOWS\system32\igdrcl64.dll
2016-09-15 14:21 - 2016-09-15 14:21 - 03325440 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdrcl32.dll
2016-09-15 14:21 - 2016-09-15 14:21 - 01277224 _____ (Intel Corporation) C:\WINDOWS\system32\igdmd64.dll
2016-09-15 14:21 - 2016-09-15 14:21 - 01131008 _____ (Intel Corporation) C:\WINDOWS\system32\GfxResources.dll
2016-09-15 14:21 - 2016-09-15 14:21 - 01036904 _____ (Intel Corporation) C:\WINDOWS\system32\Gfxv4_0.exe
2016-09-15 14:21 - 2016-09-15 14:21 - 01033832 _____ (Intel Corporation) C:\WINDOWS\system32\Gfxv2_0.exe
2016-09-15 14:21 - 2016-09-15 14:21 - 01019664 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdmd32.dll
2016-09-15 14:21 - 2016-09-15 14:21 - 00460048 _____ (Intel(R) Corporation) C:\WINDOWS\system32\Drivers\IntcDAud.sys
2016-09-15 14:21 - 2016-09-15 14:21 - 00448104 _____ (Intel Corporation) C:\WINDOWS\system32\GfxUIEx.exe
2016-09-15 14:21 - 2016-09-15 14:21 - 00425472 _____ (Intel Corporation) C:\WINDOWS\system32\igdbcl64.dll
2016-09-15 14:21 - 2016-09-15 14:21 - 00374272 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdbcl32.dll
2016-09-15 14:21 - 2016-09-15 14:21 - 00339048 _____ (Intel Corporation) C:\WINDOWS\system32\DPTopologyApp.exe
2016-09-15 14:21 - 2016-09-15 14:21 - 00338536 _____ (Intel Corporation) C:\WINDOWS\system32\DPTopologyAppv2_0.exe
2016-09-15 14:21 - 2016-09-15 14:21 - 00282696 _____ (Intel Corporation) C:\WINDOWS\system32\igd10idpp64.dll
2016-09-15 14:21 - 2016-09-15 14:21 - 00263120 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igd10idpp32.dll
2016-09-15 14:21 - 2016-09-15 14:21 - 00192000 _____ C:\WINDOWS\system32\igdde64.dll
2016-09-15 14:21 - 2016-09-15 14:21 - 00169984 _____ (Intel Corporation) C:\WINDOWS\system32\igdail64.dll
2016-09-15 14:21 - 2016-09-15 14:21 - 00156264 _____ (Intel Corporation) C:\WINDOWS\system32\difx64.exe
2016-09-15 14:21 - 2016-09-15 14:21 - 00153088 _____ C:\WINDOWS\SysWOW64\igdde32.dll
2016-09-15 14:21 - 2016-09-15 14:21 - 00152064 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdail32.dll
2016-09-15 14:19 - 2016-09-15 14:19 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Catalyst Control Center
2016-09-15 14:12 - 2016-09-15 14:12 - 00000000 ____D C:\Users\Default\AppData\Roaming\ATI
2016-09-15 14:12 - 2016-09-15 14:12 - 00000000 ____D C:\Users\Default\AppData\Local\ATI
2016-09-15 14:12 - 2016-09-15 14:12 - 00000000 ____D C:\Users\Default User\AppData\Roaming\ATI
2016-09-15 14:12 - 2016-09-15 14:12 - 00000000 ____D C:\Users\Default User\AppData\Local\ATI
2016-09-15 14:09 - 2016-09-15 14:08 - 47795712 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\amdocl64.dll
2016-09-15 14:09 - 2016-09-15 14:08 - 39721488 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\amdocl.dll
2016-09-15 14:09 - 2016-09-15 14:08 - 30777368 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atio6axx.dll
2016-09-15 14:09 - 2016-09-15 14:08 - 27544592 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\amdocl12cl64.dll
2016-09-15 14:09 - 2016-09-15 14:08 - 25322008 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\atioglxx.dll
2016-09-15 14:09 - 2016-09-15 14:08 - 22328840 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\amdocl12cl.dll
2016-09-15 14:09 - 2016-09-15 14:08 - 21645320 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\Drivers\atikmdag.sys
2016-09-15 14:09 - 2016-09-15 14:08 - 15727112 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\aticaldd64.dll
2016-09-15 14:09 - 2016-09-15 14:08 - 14310936 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\aticaldd.dll
2016-09-15 14:09 - 2016-09-15 14:08 - 12062080 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atidxx64.dll
2016-09-15 14:09 - 2016-09-15 14:08 - 10192816 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atidxx32.dll
2016-09-15 14:09 - 2016-09-15 14:08 - 08983992 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiumd6a.dll
2016-09-15 14:09 - 2016-09-15 14:08 - 08866480 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiumd64.dll
2016-09-15 14:09 - 2016-09-15 14:08 - 08010912 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiumdva.dll
2016-09-15 14:09 - 2016-09-15 14:08 - 07482080 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiumdag.dll
2016-09-15 14:09 - 2016-09-15 14:08 - 03471376 _____ C:\WINDOWS\SysWOW64\atiumdva.cap
2016-09-15 14:09 - 2016-09-15 14:08 - 03437632 _____ C:\WINDOWS\system32\atiumd6a.cap
2016-09-15 14:09 - 2016-09-15 14:08 - 01220968 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\aticfx32.dll
2016-09-15 14:09 - 2016-09-15 14:08 - 01196072 _____ C:\WINDOWS\system32\amdocl_as64.exe
2016-09-15 14:09 - 2016-09-15 14:08 - 01072152 _____ C:\WINDOWS\system32\amdocl_ld64.exe
2016-09-15 14:09 - 2016-09-15 14:08 - 01004072 _____ C:\WINDOWS\SysWOW64\amdocl_as32.exe
2016-09-15 14:09 - 2016-09-15 14:08 - 00934408 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\atiadlxy.dll
2016-09-15 14:09 - 2016-09-15 14:08 - 00934408 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\atiadlxx.dll
2016-09-15 14:09 - 2016-09-15 14:08 - 00877064 _____ (AMD) C:\WINDOWS\system32\coinst_15.20.dll
2016-09-15 14:09 - 2016-09-15 14:08 - 00833800 _____ C:\WINDOWS\system32\amdicdxx.dat
2016-09-15 14:09 - 2016-09-15 14:08 - 00807456 _____ C:\WINDOWS\SysWOW64\amdocl_ld32.exe
2016-09-15 14:09 - 2016-09-15 14:08 - 00737410 _____ C:\WINDOWS\system32\atiicdxx.dat
2016-09-15 14:09 - 2016-09-15 14:08 - 00683544 _____ (AMD) C:\WINDOWS\system32\atieclxx.exe
2016-09-15 14:09 - 2016-09-15 14:08 - 00676360 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\Drivers\atikmpag.sys
2016-09-15 14:09 - 2016-09-15 14:08 - 00662384 _____ C:\WINDOWS\SysWOW64\atiapfxx.blb
2016-09-15 14:09 - 2016-09-15 14:08 - 00662384 _____ C:\WINDOWS\system32\atiapfxx.blb
2016-09-15 14:09 - 2016-09-15 14:08 - 00471352 _____ C:\WINDOWS\system32\amdmiracast.dll
2016-09-15 14:09 - 2016-09-15 14:08 - 00375824 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atiapfxx.exe
2016-09-15 14:09 - 2016-09-15 14:08 - 00341528 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\ATIODE.exe
2016-09-15 14:09 - 2016-09-15 14:08 - 00322868 _____ C:\WINDOWS\system32\ativvaxy_vi.dat
2016-09-15 14:09 - 2016-09-15 14:08 - 00321200 _____ C:\WINDOWS\system32\ativvaxy_vi_nd.dat
2016-09-15 14:09 - 2016-09-15 14:08 - 00305392 _____ (Advanced Micro Devices) C:\WINDOWS\system32\Drivers\amdacpksd.sys
2016-09-15 14:09 - 2016-09-15 14:08 - 00255808 _____ C:\WINDOWS\system32\ativvaxy_cz_nd.dat
2016-09-15 14:09 - 2016-09-15 14:08 - 00255504 _____ (AMD) C:\WINDOWS\system32\atiesrxx.exe
2016-09-15 14:09 - 2016-09-15 14:08 - 00250884 _____ C:\WINDOWS\system32\ativvaxy_FJ.dat
2016-09-15 14:09 - 2016-09-15 14:08 - 00249088 _____ C:\WINDOWS\system32\ativvaxy_FJ_nd.dat
2016-09-15 14:09 - 2016-09-15 14:08 - 00243736 _____ C:\WINDOWS\system32\clinfo.exe
2016-09-15 14:09 - 2016-09-15 14:08 - 00234420 _____ C:\WINDOWS\system32\ativvaxy_cik.dat
2016-09-15 14:09 - 2016-09-15 14:08 - 00232752 _____ C:\WINDOWS\system32\ativvaxy_cik_nd.dat
2016-09-15 14:09 - 2016-09-15 14:08 - 00215048 _____ C:\WINDOWS\system32\amdgfxinfo64.dll
2016-09-15 14:09 - 2016-09-15 14:08 - 00201224 _____ (AMD) C:\WINDOWS\system32\atitmm64.dll
2016-09-15 14:09 - 2016-09-15 14:08 - 00198672 _____ C:\WINDOWS\SysWOW64\amdgfxinfo32.dll
2016-09-15 14:09 - 2016-09-15 14:08 - 00177344 _____ C:\WINDOWS\system32\ativce03.dat
2016-09-15 14:09 - 2016-09-15 14:08 - 00175648 _____ C:\WINDOWS\system32\amde31a.dat
2016-09-15 14:09 - 2016-09-15 14:08 - 00170496 _____ C:\WINDOWS\system32\atieah64.exe
2016-09-15 14:09 - 2016-09-15 14:08 - 00166912 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atig6txx.dll
2016-09-15 14:09 - 2016-09-15 14:08 - 00162272 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiuxp64.dll
2016-09-15 14:09 - 2016-09-15 14:08 - 00154112 _____ C:\WINDOWS\SysWOW64\atieah32.exe
2016-09-15 14:09 - 2016-09-15 14:08 - 00153496 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\amdhcp64.dll
2016-09-15 14:09 - 2016-09-15 14:08 - 00152064 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atigktxx.dll
2016-09-15 14:09 - 2016-09-15 14:08 - 00144904 _____ C:\WINDOWS\system32\amdhdl64.dll
2016-09-15 14:09 - 2016-09-15 14:08 - 00144608 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiuxpag.dll
2016-09-15 14:09 - 2016-09-15 14:08 - 00139936 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\amdhcp32.dll
2016-09-15 14:09 - 2016-09-15 14:08 - 00133640 _____ C:\WINDOWS\SysWOW64\amdhdl32.dll
2016-09-15 14:09 - 2016-09-15 14:08 - 00131632 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiu9p64.dll
2016-09-15 14:09 - 2016-09-15 14:08 - 00117640 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdave64.dll
2016-09-15 14:09 - 2016-09-15 14:08 - 00113920 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiu9pag.dll
2016-09-15 14:09 - 2016-09-15 14:08 - 00112648 _____ C:\WINDOWS\SysWOW64\hsa-thunk.dll
2016-09-15 14:09 - 2016-09-15 14:08 - 00111632 _____ C:\WINDOWS\system32\hsa-thunk64.dll
2016-09-15 14:09 - 2016-09-15 14:08 - 00110352 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdave32.dll
2016-09-15 14:09 - 2016-09-15 14:08 - 00100816 _____ C:\WINDOWS\system32\ativce02.dat
2016-09-15 14:09 - 2016-09-15 14:08 - 00097808 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atisamu64.dll
2016-09-15 14:09 - 2016-09-15 14:08 - 00091136 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atisamu32.dll
2016-09-15 14:09 - 2016-09-15 14:08 - 00089560 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdpcom64.dll
2016-09-15 14:09 - 2016-09-15 14:08 - 00089552 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atimpc64.dll
2016-09-15 14:09 - 2016-09-15 14:08 - 00083984 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atig6pxx.dll
2016-09-15 14:09 - 2016-09-15 14:08 - 00081200 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atimpc32.dll
2016-09-15 14:09 - 2016-09-15 14:08 - 00081200 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdpcom32.dll
2016-09-15 14:09 - 2016-09-15 14:08 - 00078352 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiglpxx.dll
2016-09-15 14:09 - 2016-09-15 14:08 - 00078352 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiglpxx.dll
2016-09-15 14:09 - 2016-09-15 14:08 - 00075272 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll
2016-09-15 14:09 - 2016-09-15 14:08 - 00072712 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\aticalrt64.dll
2016-09-15 14:09 - 2016-09-15 14:08 - 00069640 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll
2016-09-15 14:09 - 2016-09-15 14:08 - 00064528 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\aticalcl64.dll
2016-09-15 14:09 - 2016-09-15 14:08 - 00062464 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\aticalrt.dll
2016-09-15 14:09 - 2016-09-15 14:08 - 00061448 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\ATIODCLI.exe
2016-09-15 14:09 - 2016-09-15 14:08 - 00060936 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdmmcl6.dll
2016-09-15 14:09 - 2016-09-15 14:08 - 00057872 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\aticalcl.dll
2016-09-15 14:09 - 2016-09-15 14:08 - 00053760 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\Drivers\ati2erec.dll
2016-09-15 14:09 - 2016-09-15 14:08 - 00048152 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdmmcl.dll
2016-09-15 14:09 - 2016-09-15 14:08 - 00047664 _____ C:\WINDOWS\system32\kapp_ci.sbin
2016-09-15 14:09 - 2016-09-15 14:08 - 00043536 _____ C:\WINDOWS\system32\kapp_si.sbin
2016-09-15 14:09 - 2016-09-15 14:08 - 00038424 _____ (AMD) C:\WINDOWS\system32\atimuixx.dll
2016-09-15 14:09 - 2016-09-15 14:08 - 00014344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\detoured.dll
2016-09-15 14:09 - 2016-09-15 14:08 - 00014344 _____ (Microsoft Corporation) C:\WINDOWS\system32\detoured.dll
2016-09-15 03:14 - 2010-06-02 04:55 - 00527192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_7.dll
2016-09-15 03:14 - 2010-06-02 04:55 - 00518488 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_7.dll
2016-09-15 03:14 - 2010-06-02 04:55 - 00239960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_7.dll
2016-09-15 03:14 - 2010-06-02 04:55 - 00176984 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_7.dll
2016-09-15 03:14 - 2010-06-02 04:55 - 00077656 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_5.dll
2016-09-15 03:14 - 2010-06-02 04:55 - 00074072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_5.dll
2016-09-15 03:14 - 2010-05-26 11:41 - 02526056 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_43.dll
2016-09-15 03:14 - 2010-05-26 11:41 - 02401112 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_43.dll
2016-09-15 03:14 - 2010-05-26 11:41 - 02106216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_43.dll
2016-09-15 03:14 - 2010-05-26 11:41 - 01998168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_43.dll
2016-09-15 03:14 - 2010-05-26 11:41 - 01907552 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dcsx_43.dll
2016-09-15 03:14 - 2010-05-26 11:41 - 01868128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dcsx_43.dll
2016-09-15 03:14 - 2010-05-26 11:41 - 00511328 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_43.dll
2016-09-15 03:14 - 2010-05-26 11:41 - 00470880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_43.dll
2016-09-15 03:14 - 2010-05-26 11:41 - 00276832 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx11_43.dll
2016-09-15 03:14 - 2010-05-26 11:41 - 00248672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx11_43.dll
2016-09-15 03:14 - 2010-02-04 10:01 - 00530776 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_6.dll
2016-09-15 03:14 - 2010-02-04 10:01 - 00528216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_6.dll
2016-09-15 03:14 - 2010-02-04 10:01 - 00238936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_6.dll
2016-09-15 03:14 - 2010-02-04 10:01 - 00176984 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_6.dll
2016-09-15 03:14 - 2010-02-04 10:01 - 00078680 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_4.dll
2016-09-15 03:14 - 2010-02-04 10:01 - 00074072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_4.dll
2016-09-15 03:14 - 2010-02-04 10:01 - 00024920 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_7.dll
2016-09-15 03:14 - 2010-02-04 10:01 - 00022360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_7.dll
2016-09-15 03:14 - 2009-09-04 17:44 - 00517960 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_5.dll
2016-09-15 03:14 - 2009-09-04 17:44 - 00515416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_5.dll
2016-09-15 03:13 - 2009-09-04 17:44 - 00238936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_5.dll
2016-09-15 03:13 - 2009-09-04 17:44 - 00176968 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_5.dll
2016-09-15 03:13 - 2009-09-04 17:44 - 00073544 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_3.dll
2016-09-15 03:13 - 2009-09-04 17:44 - 00069464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_3.dll
2016-09-15 03:13 - 2009-09-04 17:29 - 05554512 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dcsx_42.dll
2016-09-15 03:13 - 2009-09-04 17:29 - 05501792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dcsx_42.dll
2016-09-15 03:13 - 2009-09-04 17:29 - 02582888 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_42.dll
2016-09-15 03:13 - 2009-09-04 17:29 - 02475352 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_42.dll
2016-09-15 03:13 - 2009-09-04 17:29 - 01974616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_42.dll
2016-09-15 03:13 - 2009-09-04 17:29 - 01892184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_42.dll
2016-09-15 03:13 - 2009-09-04 17:29 - 00523088 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_42.dll
2016-09-15 03:13 - 2009-09-04 17:29 - 00453456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_42.dll
2016-09-15 03:13 - 2009-09-04 17:29 - 00285024 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx11_42.dll
2016-09-15 03:13 - 2009-09-04 17:29 - 00235344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx11_42.dll
2016-09-15 03:13 - 2009-03-16 14:18 - 00521560 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_4.dll
2016-09-15 03:13 - 2009-03-16 14:18 - 00517448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_4.dll
2016-09-15 03:13 - 2009-03-16 14:18 - 00235352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_4.dll
2016-09-15 03:13 - 2009-03-16 14:18 - 00174936 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_4.dll
2016-09-15 03:13 - 2009-03-16 14:18 - 00024920 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_6.dll
2016-09-15 03:13 - 2009-03-16 14:18 - 00022360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_6.dll
2016-09-15 03:13 - 2009-03-09 15:27 - 05425496 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_41.dll
2016-09-15 03:13 - 2009-03-09 15:27 - 04178264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_41.dll
2016-09-15 03:13 - 2009-03-09 15:27 - 02430312 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_41.dll
2016-09-15 03:13 - 2009-03-09 15:27 - 01846632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_41.dll
2016-09-15 03:13 - 2009-03-09 15:27 - 00520544 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_41.dll
2016-09-15 03:13 - 2009-03-09 15:27 - 00453456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_41.dll
2016-09-15 03:13 - 2008-10-27 10:04 - 00518480 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_3.dll
2016-09-15 03:13 - 2008-10-27 10:04 - 00514384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_3.dll
2016-09-15 03:13 - 2008-10-27 10:04 - 00235856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_3.dll
2016-09-15 03:13 - 2008-10-27 10:04 - 00175440 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_3.dll
2016-09-15 03:13 - 2008-10-27 10:04 - 00074576 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_2.dll
2016-09-15 03:13 - 2008-10-27 10:04 - 00070992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_2.dll
2016-09-15 03:13 - 2008-10-27 10:04 - 00025936 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_5.dll
2016-09-15 03:13 - 2008-10-27 10:04 - 00023376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_5.dll
2016-09-15 03:13 - 2008-10-15 06:22 - 05631312 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_40.dll
2016-09-15 03:13 - 2008-10-15 06:22 - 04379984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_40.dll
2016-09-15 03:13 - 2008-10-15 06:22 - 02605920 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_40.dll
2016-09-15 03:13 - 2008-10-15 06:22 - 02036576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_40.dll
2016-09-15 03:13 - 2008-10-15 06:22 - 00519000 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_40.dll
2016-09-15 03:13 - 2008-10-15 06:22 - 00452440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_40.dll
2016-09-15 03:13 - 2008-07-31 10:41 - 00238088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_2.dll
2016-09-15 03:13 - 2008-07-31 10:41 - 00177672 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_2.dll
2016-09-15 03:13 - 2008-07-31 10:41 - 00072200 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_1.dll
2016-09-15 03:13 - 2008-07-31 10:40 - 00513544 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_2.dll
2016-09-15 03:13 - 2008-07-10 11:00 - 04992520 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_39.dll
2016-09-15 03:13 - 2008-07-10 11:00 - 01942552 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_39.dll
2016-09-15 03:13 - 2008-07-10 11:00 - 00540688 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_39.dll
2016-09-15 03:13 - 2008-05-30 14:19 - 00511496 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_1.dll
2016-09-15 03:13 - 2008-05-30 14:19 - 00507400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_1.dll
2016-09-15 03:13 - 2008-05-30 14:18 - 00238088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_1.dll
2016-09-15 03:13 - 2008-05-30 14:18 - 00177672 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_1.dll
2016-09-15 03:13 - 2008-05-30 14:17 - 00068104 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_0.dll
2016-09-15 03:13 - 2008-05-30 14:17 - 00065032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_0.dll
2016-09-15 03:13 - 2008-05-30 14:17 - 00025608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_4.dll
2016-09-15 03:13 - 2008-05-30 14:16 - 00028168 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_4.dll
2016-09-15 03:13 - 2008-05-30 14:11 - 04991496 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_38.dll
2016-09-15 03:13 - 2008-05-30 14:11 - 03850760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_38.dll
2016-09-15 03:13 - 2008-05-30 14:11 - 01941528 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_38.dll
2016-09-15 03:13 - 2008-05-30 14:11 - 01491992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_38.dll
2016-09-15 03:13 - 2008-05-30 14:11 - 00540688 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_38.dll
2016-09-15 03:13 - 2008-05-30 14:11 - 00467984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_38.dll
2016-09-15 03:13 - 2008-03-05 16:04 - 00489480 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_0.dll
2016-09-15 03:13 - 2008-03-05 16:03 - 00479752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_0.dll
2016-09-15 03:13 - 2008-03-05 16:03 - 00238088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_0.dll
2016-09-15 03:13 - 2008-03-05 16:03 - 00177672 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_0.dll
2016-09-15 03:13 - 2008-03-05 16:00 - 00028168 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_3.dll
2016-09-15 03:13 - 2008-03-05 16:00 - 00025608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_3.dll
2016-09-15 03:13 - 2008-03-05 15:56 - 04910088 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_37.dll
2016-09-15 03:13 - 2008-03-05 15:56 - 03786760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_37.dll
2016-09-15 03:13 - 2008-03-05 15:56 - 01860120 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_37.dll
2016-09-15 03:13 - 2008-03-05 15:56 - 01420824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_37.dll
2016-09-15 03:13 - 2008-02-05 23:07 - 00529424 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_37.dll
2016-09-15 03:13 - 2008-02-05 23:07 - 00462864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_37.dll
2016-09-15 03:13 - 2007-10-22 03:40 - 00411656 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_10.dll
2016-09-15 03:13 - 2007-10-22 03:39 - 00267272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_10.dll
2016-09-15 03:13 - 2007-10-22 03:37 - 00021000 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_2.dll
2016-09-15 03:13 - 2007-10-22 03:37 - 00017928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_2.dll
2016-09-15 03:13 - 2007-10-12 15:14 - 05081608 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_36.dll
2016-09-15 03:13 - 2007-10-12 15:14 - 03734536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_36.dll
2016-09-15 03:13 - 2007-10-12 15:14 - 02006552 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_36.dll
2016-09-15 03:13 - 2007-10-12 15:14 - 01374232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_36.dll
2016-09-15 03:13 - 2007-10-02 09:56 - 00508264 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_36.dll
2016-09-15 03:13 - 2007-10-02 09:56 - 00444776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_36.dll
2016-09-15 03:13 - 2007-07-20 00:57 - 00411496 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_9.dll
2016-09-15 03:13 - 2007-07-20 00:57 - 00267112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_9.dll
2016-09-15 03:13 - 2007-07-19 18:14 - 05073256 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_35.dll
2016-09-15 03:13 - 2007-07-19 18:14 - 03727720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_35.dll
2016-09-15 03:13 - 2007-07-19 18:14 - 01985904 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_35.dll
2016-09-15 03:13 - 2007-07-19 18:14 - 01358192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_35.dll
2016-09-15 03:13 - 2007-07-19 18:14 - 00508264 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_35.dll
2016-09-15 03:13 - 2007-07-19 18:14 - 00444776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_35.dll
2016-09-15 03:13 - 2007-06-20 20:49 - 00409960 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_8.dll
2016-09-15 03:13 - 2007-06-20 20:46 - 00266088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_8.dll
2016-09-15 03:13 - 2007-05-16 16:45 - 04496232 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_34.dll
2016-09-15 03:13 - 2007-05-16 16:45 - 03497832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_34.dll
2016-09-15 03:13 - 2007-05-16 16:45 - 01401200 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_34.dll
2016-09-15 03:13 - 2007-05-16 16:45 - 01124720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_34.dll
2016-09-15 03:13 - 2007-05-16 16:45 - 00506728 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_34.dll
2016-09-15 03:13 - 2007-05-16 16:45 - 00443752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_34.dll
2016-09-15 03:13 - 2007-04-04 18:55 - 00403304 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_7.dll
2016-09-15 03:13 - 2007-04-04 18:55 - 00261480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_7.dll
2016-09-15 03:13 - 2007-04-04 18:54 - 00107368 _____ (Microsoft Corporation) C:\WINDOWS\system32\xinput1_3.dll
2016-09-15 03:13 - 2007-04-04 18:53 - 00081768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xinput1_3.dll
2016-09-15 03:13 - 2007-03-15 16:57 - 00506728 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_33.dll
2016-09-15 03:13 - 2007-03-15 16:57 - 00443752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_33.dll
2016-09-15 03:13 - 2007-03-12 16:42 - 04494184 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_33.dll
2016-09-15 03:13 - 2007-03-12 16:42 - 03495784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_33.dll
2016-09-15 03:13 - 2007-03-12 16:42 - 01400176 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_33.dll
2016-09-15 03:13 - 2007-03-12 16:42 - 01123696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_33.dll
2016-09-15 03:13 - 2007-03-05 12:42 - 00017688 _____ (Microsoft Corporation) C:\WINDOWS\system32\x3daudio1_1.dll
2016-09-15 03:13 - 2007-03-05 12:42 - 00015128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\x3daudio1_1.dll
2016-09-15 03:13 - 2007-01-24 15:27 - 00393576 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_6.dll
2016-09-15 03:13 - 2007-01-24 15:27 - 00255848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_6.dll
2016-09-15 03:13 - 2006-12-08 12:02 - 00251672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_5.dll
2016-09-15 03:13 - 2006-12-08 12:00 - 00390424 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_5.dll
2016-09-15 03:13 - 2006-11-29 13:06 - 04398360 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_32.dll
2016-09-15 03:13 - 2006-11-29 13:06 - 03426072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_32.dll
2016-09-15 03:13 - 2006-11-29 13:06 - 00469264 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10.dll
2016-09-15 03:13 - 2006-11-29 13:06 - 00440080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10.dll
2016-09-15 03:13 - 2006-09-28 16:05 - 03977496 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_31.dll
2016-09-15 03:13 - 2006-09-28 16:05 - 02414360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_31.dll
2016-09-15 03:13 - 2006-09-28 16:05 - 00237848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_4.dll
2016-09-15 03:13 - 2006-09-28 16:04 - 00364824 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_4.dll
2016-09-15 03:13 - 2006-07-28 09:31 - 00083736 _____ (Microsoft Corporation) C:\WINDOWS\system32\xinput1_2.dll
2016-09-15 03:13 - 2006-07-28 09:30 - 00363288 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_3.dll
2016-09-15 03:13 - 2006-07-28 09:30 - 00236824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_3.dll
2016-09-15 03:13 - 2006-07-28 09:30 - 00062744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xinput1_2.dll
2016-09-15 03:13 - 2006-05-31 07:24 - 00230168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_2.dll
2016-09-15 03:13 - 2006-05-31 07:22 - 00354072 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_2.dll
2016-09-15 03:13 - 2006-03-31 12:41 - 03927248 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_30.dll
2016-09-15 03:13 - 2006-03-31 12:40 - 02388176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_30.dll
2016-09-15 03:13 - 2006-03-31 12:40 - 00352464 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_1.dll
2016-09-15 03:13 - 2006-03-31 12:39 - 00229584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_1.dll
2016-09-15 03:13 - 2006-03-31 12:39 - 00083664 _____ (Microsoft Corporation) C:\WINDOWS\system32\xinput1_1.dll
2016-09-15 03:13 - 2006-03-31 12:39 - 00062672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xinput1_1.dll
2016-09-15 03:13 - 2006-02-03 08:43 - 03830992 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_29.dll
2016-09-15 03:13 - 2006-02-03 08:43 - 02332368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_29.dll
2016-09-15 03:13 - 2006-02-03 08:42 - 00355536 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_0.dll
2016-09-15 03:13 - 2006-02-03 08:42 - 00230096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_0.dll
2016-09-15 03:13 - 2006-02-03 08:41 - 00016592 _____ (Microsoft Corporation) C:\WINDOWS\system32\x3daudio1_0.dll
2016-09-15 03:13 - 2006-02-03 08:41 - 00014032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\x3daudio1_0.dll
2016-09-15 03:13 - 2005-12-05 18:09 - 03815120 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_28.dll
2016-09-15 03:13 - 2005-12-05 18:09 - 02323664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_28.dll
2016-09-15 03:13 - 2005-07-22 19:59 - 03807440 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_27.dll
2016-09-15 03:13 - 2005-07-22 19:59 - 02319568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_27.dll
2016-09-15 03:13 - 2005-05-26 15:34 - 03767504 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_26.dll
2016-09-15 03:13 - 2005-05-26 15:34 - 02297552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_26.dll
2016-09-15 03:13 - 2005-03-18 17:19 - 03823312 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_25.dll
2016-09-15 03:13 - 2005-03-18 17:19 - 02337488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_25.dll
2016-09-15 03:13 - 2005-02-05 19:45 - 03544272 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_24.dll
2016-09-15 03:13 - 2005-02-05 19:45 - 02222800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_24.dll
2016-09-14 21:03 - 2016-09-14 21:31 - 00000000 ____D C:\Users\Saša\AppData\Roaming\TS3Client
2016-09-14 20:56 - 2016-09-14 20:56 - 00001185 _____ C:\Users\Public\Desktop\TeamSpeak 3 Client.lnk
2016-09-14 20:56 - 2016-09-14 20:56 - 00001147 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamSpeak 3 Client.lnk
2016-09-14 20:56 - 2016-09-14 20:56 - 00000000 ____D C:\Program Files (x86)\TeamSpeak 3 Client
2016-09-14 20:55 - 2016-09-14 20:55 - 29441184 _____ (TeamSpeak Systems GmbH) C:\Users\Saša\Downloads\TeamSpeak3-Client-win32-3.0.19.3 (1).exe
2016-09-14 15:21 - 2016-09-14 15:24 - 922994570 _____ C:\Users\Saša\Downloads\Hra peněz [Money Monster] (2016) CZ dabing.avi
2016-09-14 08:39 - 2016-08-21 01:45 - 07076864 _____ (Microsoft Corporation) C:\WINDOWS\system32\glcndFilter.dll
2016-09-14 08:39 - 2016-08-21 01:05 - 05273600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\glcndFilter.dll
2016-09-14 08:39 - 2016-08-21 00:42 - 07795712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll
2016-09-14 08:39 - 2016-08-21 00:27 - 05268480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll
2016-09-14 08:39 - 2016-08-10 00:47 - 00803176 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleaut32.dll
2016-09-14 08:39 - 2016-08-10 00:47 - 00611576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleaut32.dll
2016-09-14 08:39 - 2016-08-04 16:17 - 00416768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv.sys
2016-09-14 08:39 - 2016-08-03 20:06 - 00675328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys
2016-09-14 08:39 - 2016-08-03 20:05 - 00243712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srvnet.sys
2016-09-14 08:38 - 2016-09-01 05:08 - 20312064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2016-09-14 08:38 - 2016-09-01 04:46 - 00498688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2016-09-14 08:38 - 2016-09-01 04:24 - 00663552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
2016-09-14 08:38 - 2016-09-01 03:39 - 00880128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcomm.dll
2016-09-14 08:38 - 2016-09-01 03:30 - 00692736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll
2016-09-14 08:38 - 2016-09-01 03:27 - 13808128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2016-09-14 08:38 - 2016-09-01 03:24 - 04607488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2016-09-14 08:38 - 2016-09-01 02:45 - 25770496 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2016-09-14 08:38 - 2016-09-01 02:43 - 02445824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2016-09-14 08:38 - 2016-09-01 02:42 - 00710144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll
2016-09-14 08:38 - 2016-09-01 02:38 - 01316352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2016-09-14 08:38 - 2016-09-01 02:24 - 00576000 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2016-09-14 08:38 - 2016-09-01 02:10 - 00817664 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2016-09-14 08:38 - 2016-09-01 02:06 - 06047232 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2016-09-14 08:38 - 2016-09-01 01:38 - 01032704 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcomm.dll
2016-09-14 08:38 - 2016-09-01 01:28 - 00806400 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
2016-09-14 08:38 - 2016-09-01 01:15 - 15411712 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2016-09-14 08:38 - 2016-09-01 01:10 - 02921472 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2016-09-14 08:38 - 2016-09-01 00:58 - 01550848 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2016-09-14 08:38 - 2016-09-01 00:47 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll
2016-09-14 08:38 - 2016-08-26 07:51 - 02894336 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2016-09-14 08:38 - 2016-08-26 06:44 - 02286592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2016-09-14 08:38 - 2016-08-26 06:41 - 02881536 _____ (Microsoft Corporation) C:\WINDOWS\system32\actxprxy.dll
2016-09-14 08:38 - 2016-08-26 06:00 - 01049600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\actxprxy.dll
2016-09-14 08:38 - 2016-08-21 01:22 - 00435200 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll
2016-09-14 08:38 - 2016-08-21 00:50 - 00360448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\schannel.dll
2016-09-14 08:37 - 2016-09-08 23:51 - 00443224 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll
2016-09-14 08:37 - 2016-09-08 23:51 - 00332632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll
2016-09-14 08:37 - 2016-08-22 18:06 - 00179248 _____ (Microsoft Corporation) C:\WINDOWS\system32\sspicli.dll
2016-09-14 08:37 - 2016-08-22 18:06 - 00100184 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecdd.sys
2016-09-14 08:37 - 2016-08-21 03:03 - 00201728 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb20.sys
2016-09-14 08:37 - 2016-08-21 03:01 - 00401408 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys
2016-09-14 08:37 - 2016-08-21 03:01 - 00284672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb10.sys
2016-09-14 08:37 - 2016-08-21 02:17 - 00445440 _____ (Microsoft Corporation) C:\WINDOWS\system32\certcli.dll
2016-09-14 08:37 - 2016-08-21 01:27 - 01445376 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2016-09-14 08:37 - 2016-08-21 01:26 - 00324096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\certcli.dll
2016-09-14 08:37 - 2016-08-21 00:55 - 00104960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sspicli.dll
2016-09-14 08:37 - 2016-08-14 21:34 - 01541248 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll
2016-09-14 08:37 - 2016-08-14 20:25 - 04171264 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2016-09-14 08:37 - 2016-08-14 18:14 - 01376768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll
2016-09-14 08:37 - 2016-08-13 09:41 - 07445848 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2016-09-14 08:37 - 2016-08-13 09:40 - 01737080 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2016-09-14 08:37 - 2016-08-13 09:40 - 01663184 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2016-09-14 08:37 - 2016-08-13 09:40 - 01523208 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2016-09-14 08:37 - 2016-08-13 09:40 - 01490120 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2016-09-14 08:37 - 2016-08-13 09:40 - 01358952 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2016-09-14 08:37 - 2016-08-13 02:04 - 00059392 _____ (Microsoft Corporation) C:\WINDOWS\system32\csrsrv.dll
2016-09-14 08:37 - 2016-08-11 18:26 - 01156608 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanmm.dll
2016-09-14 08:37 - 2016-08-11 18:17 - 00627200 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnidui.dll
2016-09-14 08:37 - 2016-08-11 18:16 - 00455680 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanconn.dll
2016-09-14 08:37 - 2016-07-09 18:10 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpdbusenum.dll
2016-09-14 08:37 - 2016-07-09 00:35 - 00101208 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mountmgr.sys
2016-09-14 08:37 - 2016-07-08 16:17 - 00377344 _____ (Microsoft Corporation) C:\WINDOWS\system32\mprddm.dll
2016-09-14 08:37 - 2016-07-08 16:17 - 00319488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mprddm.dll
2016-09-14 08:37 - 2016-07-08 00:32 - 00095744 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\agilevpn.sys
2016-09-14 08:37 - 2016-07-08 00:18 - 00323072 _____ (Microsoft Corporation) C:\WINDOWS\system32\iprtrmgr.dll
2016-09-14 08:37 - 2016-07-08 00:10 - 00233472 _____ (Microsoft Corporation) C:\WINDOWS\system32\mprdim.dll
2016-09-14 08:37 - 2016-07-08 00:01 - 00272896 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasppp.dll
2016-09-14 08:37 - 2016-07-07 23:04 - 00173568 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasman.dll
2016-09-14 08:37 - 2016-07-07 22:59 - 01080320 _____ (Microsoft Corporation) C:\WINDOWS\system32\IKEEXT.DLL
2016-09-14 08:37 - 2016-07-07 22:44 - 00429568 _____ (Microsoft Corporation) C:\WINDOWS\system32\vpnike.dll
2016-09-14 08:37 - 2016-07-07 22:41 - 00254464 _____ (Microsoft Corporation) C:\WINDOWS\system32\rascustom.dll
2016-09-14 08:37 - 2016-07-07 22:34 - 00542720 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasmans.dll
2016-09-14 08:37 - 2016-07-07 22:29 - 00713216 _____ (Microsoft Corporation) C:\WINDOWS\system32\nshwfp.dll
2016-09-14 08:37 - 2016-07-07 22:29 - 00704512 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasapi32.dll
2016-09-14 08:37 - 2016-07-07 22:23 - 00285184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iprtrmgr.dll
2016-09-14 08:37 - 2016-07-07 22:18 - 00187392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mprdim.dll
2016-09-14 08:37 - 2016-07-07 22:11 - 01661064 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll
2016-09-14 08:37 - 2016-07-07 22:11 - 01212248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ole32.dll
2016-09-14 08:37 - 2016-07-07 22:11 - 00185856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasppp.dll
2016-09-14 08:37 - 2016-07-07 21:35 - 00145920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasman.dll
2016-09-14 08:37 - 2016-07-07 21:14 - 00628736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasapi32.dll
2016-09-14 08:37 - 2016-07-04 07:09 - 00132096 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpudd.dll
2016-09-14 08:37 - 2016-07-04 05:45 - 00360448 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpclip.exe
2016-09-14 08:37 - 2016-07-04 05:37 - 02897920 _____ (Microsoft Corporation) C:\WINDOWS\system32\esent.dll
2016-09-14 08:37 - 2016-07-04 05:33 - 00657920 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsapi.dll
2016-09-14 08:37 - 2016-07-04 05:04 - 02539008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\esent.dll
2016-09-14 08:37 - 2016-07-04 05:02 - 00498688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dnsapi.dll
2016-09-14 08:37 - 2016-07-04 04:19 - 03547136 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll
2016-09-14 08:37 - 2016-07-01 22:39 - 00197352 _____ (Microsoft Corporation) C:\WINDOWS\system32\dssenh.dll
2016-09-14 08:37 - 2016-07-01 22:39 - 00157016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dssenh.dll
2016-09-14 08:37 - 2016-01-10 19:08 - 00252416 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsrslvr.dll
2016-09-11 21:14 - 2016-09-11 21:16 - 29441184 _____ (TeamSpeak Systems GmbH) C:\Users\Saša\Downloads\TeamSpeak3-Client-win32-3.0.19.3.exe
2016-09-11 20:43 - 2016-09-11 20:43 - 00000000 ____D C:\WINDOWS\system32\DVD9
2016-09-11 20:43 - 2016-09-11 20:43 - 00000000 ____D C:\WINDOWS\system32\DVD8
2016-09-11 20:43 - 2016-09-11 20:43 - 00000000 ____D C:\WINDOWS\system32\DVD7
2016-09-11 20:43 - 2016-09-11 20:43 - 00000000 ____D C:\WINDOWS\system32\DVD6
2016-09-11 20:43 - 2016-09-11 20:43 - 00000000 ____D C:\WINDOWS\system32\DVD5
2016-09-11 20:43 - 2016-09-11 20:43 - 00000000 ____D C:\WINDOWS\system32\DVD4
2016-09-11 20:43 - 2016-09-11 20:43 - 00000000 ____D C:\WINDOWS\system32\DVD3
2016-09-11 20:43 - 2016-09-11 20:43 - 00000000 ____D C:\WINDOWS\system32\DVD2
2016-09-11 20:43 - 2016-09-11 20:43 - 00000000 ____D C:\WINDOWS\system32\DVD10
2016-09-11 20:43 - 2016-09-11 20:43 - 00000000 ____D C:\WINDOWS\system32\DVD1
2016-09-11 20:43 - 2016-09-11 20:43 - 00000000 ____D C:\Users\Saša\AppData\Local\Disc_Soft_Ltd
2016-09-11 20:37 - 2016-09-11 20:37 - 00000000 ____D C:\Users\Public\Documents\Daemon Tools Images
2016-09-11 20:36 - 2016-09-11 20:36 - 00047672 _____ (Disc Soft Ltd) C:\WINDOWS\system32\Drivers\dtliteusbbus.sys
2016-09-11 20:34 - 2016-10-03 21:22 - 00000000 ____D C:\Users\Saša\AppData\Roaming\DAEMON Tools Lite
2016-09-11 20:34 - 2016-09-11 20:36 - 00000000 ____D C:\Program Files\DAEMON Tools Lite
2016-09-11 20:34 - 2016-09-11 20:34 - 00030264 _____ (Disc Soft Ltd) C:\WINDOWS\system32\Drivers\dtlitescsibus.sys
2016-09-11 20:34 - 2016-09-11 20:34 - 00001792 _____ C:\Users\Public\Desktop\DAEMON Tools Lite.lnk
2016-09-11 20:34 - 2016-09-11 20:34 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Lite
2016-09-11 20:34 - 2016-09-11 20:34 - 00000000 ____D C:\ProgramData\DAEMON Tools Lite
2016-09-11 20:32 - 2016-09-11 20:32 - 00692072 _____ (Disc Soft Ltd.) C:\Users\Saša\Downloads\DTLiteInstaller.exe
2016-09-11 17:06 - 2016-09-15 01:42 - 00000000 ____D C:\Users\Saša\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2016-09-11 17:02 - 2016-09-11 17:02 - 00000000 ____D C:\Users\Saša\AppData\Local\Steam
2016-09-11 16:54 - 2016-10-07 11:46 - 00000000 ____D C:\Program Files (x86)\Steam
2016-09-11 16:54 - 2016-09-11 16:54 - 01446792 _____ C:\Users\Saša\Downloads\SteamSetup.exe
2016-09-11 16:54 - 2016-09-11 16:54 - 00000986 _____ C:\Users\Public\Desktop\Steam.lnk
2016-09-11 16:54 - 2016-09-11 16:54 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam
2016-09-11 15:51 - 2016-09-14 23:26 - 00000000 ____D C:\Users\Saša\Downloads\Grand Theft Auto V [Repack]
2016-09-11 15:49 - 2016-10-07 11:54 - 00000000 ____D C:\Users\Saša\AppData\Roaming\uTorrent
2016-09-11 15:49 - 2016-09-11 15:49 - 02369536 _____ (BitTorrent Inc.) C:\Users\Saša\Downloads\uTorrent.exe
2016-09-11 15:49 - 2016-09-11 15:49 - 00002687 _____ C:\Users\Saša\Desktop\µTorrent.lnk
2016-09-09 16:50 - 2016-09-09 16:50 - 00002254 _____ C:\Users\Public\Desktop\HP Support Assistant.lnk
2016-09-09 16:49 - 2016-09-09 16:49 - 00000000 ____D C:\Program Files (x86)\HP
2016-09-08 18:33 - 2016-09-08 18:37 - 00073928 _____ C:\WINDOWS\system32\Drivers\fsbts.sys
2016-09-08 18:27 - 2016-10-07 11:55 - 00000000 ____D C:\Users\Saša\AppData\Local\F-Secure
2016-09-08 18:27 - 2016-10-04 09:47 - 00000000 ____D C:\ProgramData\F-Secure
2016-09-08 18:27 - 2016-09-08 18:28 - 00000000 ____D C:\Program Files (x86)\UPC Smart Guard
2016-09-08 18:27 - 2016-09-08 18:27 - 00002095 _____ C:\Users\Public\Desktop\UPC Smart Guard.lnk
2016-09-08 18:27 - 2016-09-08 18:27 - 00000000 ____D C:\WINDOWS\System32\Tasks\F-Secure
2016-09-08 18:27 - 2016-09-08 18:27 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\UPC Smart Guard
2016-09-08 18:26 - 2016-09-08 18:27 - 00857568 _____ (F-Secure Corporation) C:\Users\Saša\Downloads\stub-45329_SMARTGUARD_30_DAYS_TRIAL_.exe
2016-09-08 18:26 - 2016-09-08 18:26 - 00834600 _____ (F-Secure Corporation) C:\Users\Saša\Downloads\stub-45329_SMARTGUARD_30_DAYS_TRIAL_ (1).exe
2016-09-08 12:56 - 2016-09-08 12:57 - 00009728 ___SH C:\Users\Saša\Downloads\Thumbs.db
2016-09-08 12:46 - 2016-09-08 12:48 - 880174146 _____ C:\Users\Saša\Downloads\Teorie tygra (2016,cz,český film)ddd.avi
2016-09-07 11:10 - 2016-09-07 11:14 - 1490078432 _____ C:\Users\Saša\Downloads\Než jsem tě poznala (2016) - CZ-TITULKY NOVINKA.avi
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2016-10-07 11:55 - 2016-08-14 11:47 - 00000000 ____D C:\Users\Saša\AppData\Roaming\Skype
2016-10-07 11:43 - 2016-08-14 02:15 - 00000988 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2016-10-07 11:43 - 2016-08-14 02:09 - 00000000 __SHD C:\Users\Saša\IntelGraphicsProfiles
2016-10-07 11:41 - 2013-08-22 16:45 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2016-10-07 11:28 - 2016-08-14 02:14 - 00003954 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{1EE9E301-5EAA-446B-A057-6C17AFD21CEC}
2016-10-05 04:07 - 2016-08-14 02:15 - 00003600 _____ C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-3091623106-1469607821-2556767161-1002
2016-10-04 21:12 - 2016-08-23 14:46 - 00000000 ____D C:\Users\Saša\Documents\My Games
2016-10-04 02:09 - 2016-08-14 02:15 - 00002222 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2016-10-04 02:09 - 2016-08-14 02:15 - 00002210 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2016-10-03 18:16 - 2016-08-26 01:59 - 00003152 _____ C:\WINDOWS\System32\Tasks\HPCeeScheduleForSaša
2016-10-03 18:16 - 2016-08-26 01:59 - 00000340 _____ C:\WINDOWS\Tasks\HPCeeScheduleForSaša.job
2016-09-28 19:00 - 2013-08-22 15:36 - 00000000 ____D C:\WINDOWS\Inf
2016-09-25 19:10 - 2016-08-14 16:17 - 00000000 ____D C:\Users\Saša\Desktop\Nová složka
2016-09-24 15:42 - 2013-08-22 15:25 - 00262144 ___SH C:\WINDOWS\system32\config\BBI
2016-09-24 12:46 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\rescache
2016-09-23 12:58 - 2013-08-22 17:20 - 00000000 ____D C:\WINDOWS\CbsTemp
2016-09-19 10:20 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\AppReadiness
2016-09-16 20:44 - 2016-08-14 02:09 - 00000000 ____D C:\Users\Saša
2016-09-16 20:23 - 2015-01-23 20:29 - 00725470 _____ C:\WINDOWS\system32\perfh005.dat
2016-09-16 20:23 - 2015-01-23 20:29 - 00167260 _____ C:\WINDOWS\system32\perfc005.dat
2016-09-16 20:23 - 2014-03-18 17:32 - 01748794 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2016-09-15 14:28 - 2015-01-23 12:54 - 00002990 _____ C:\WINDOWS\System32\Tasks\Synaptics TouchPad Enhancements
2016-09-15 14:27 - 2014-10-31 03:19 - 00753320 _____ (Synaptics Incorporated) C:\WINDOWS\system32\SynCOM.dll
2016-09-15 14:27 - 2014-09-27 02:16 - 00000000 ____D C:\SWSETUP
2016-09-15 14:26 - 2014-12-13 00:40 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel
2016-09-15 14:26 - 2014-12-13 00:40 - 00000000 ____D C:\Program Files\Intel
2016-09-15 14:21 - 2014-10-28 12:49 - 00393320 _____ C:\WINDOWS\system32\igfxTray.exe
2016-09-15 14:21 - 2014-10-28 12:49 - 00344168 _____ (Intel Corporation) C:\WINDOWS\system32\igfxCUIService.exe
2016-09-15 14:21 - 2014-10-28 12:49 - 00313448 _____ (Intel Corporation) C:\WINDOWS\system32\igfxEM.exe
2016-09-15 14:21 - 2014-10-28 12:49 - 00248424 _____ (Intel Corporation) C:\WINDOWS\system32\igfxHK.exe
2016-09-15 14:21 - 2014-10-28 12:46 - 24849272 _____ (Intel Corporation) C:\WINDOWS\system32\igdumdim64.dll
2016-09-15 14:21 - 2014-10-28 12:46 - 24050504 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdumdim32.dll
2016-09-15 14:21 - 2014-10-28 12:46 - 09480608 _____ (Intel Corporation) C:\WINDOWS\system32\igd10iumd64.dll
2016-09-15 14:21 - 2014-10-28 12:46 - 08683376 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igd10iumd32.dll
2016-09-15 14:21 - 2014-10-28 12:46 - 06189800 _____ (Intel Corporation) C:\WINDOWS\system32\igdusc64.dll
2016-09-15 14:21 - 2014-10-28 12:46 - 04876008 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdusc32.dll
2016-09-15 14:21 - 2014-10-28 12:36 - 02039808 _____ (Intel Corporation) C:\WINDOWS\system32\igfxLHM.dll
2016-09-15 14:21 - 2014-10-28 12:36 - 00699392 _____ (Intel Corporation) C:\WINDOWS\system32\igfxDH.dll
2016-09-15 14:21 - 2014-10-28 12:36 - 00286720 _____ (Intel Corporation) C:\WINDOWS\system32\igfxDI.dll
2016-09-15 14:21 - 2014-10-28 12:36 - 00231424 _____ (Intel Corporation) C:\WINDOWS\system32\igfxDTCM.dll
2016-09-15 14:16 - 2015-01-23 13:19 - 00000000 ____D C:\Program Files (x86)\ATI Technologies
2016-09-15 14:09 - 2015-01-23 12:54 - 00000000 ____D C:\Program Files\AMD
2016-09-15 14:08 - 2014-11-08 03:45 - 01476576 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\aticfx64.dll
2016-09-15 14:08 - 2014-11-08 01:53 - 00452616 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atidemgy.dll
2016-09-15 14:08 - 2014-11-08 01:24 - 01254424 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atiadlxx.dll
2016-09-14 15:17 - 2013-08-22 16:44 - 00346512 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2016-09-14 09:57 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\SysWOW64\setup
2016-09-14 09:57 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\setup
2016-09-14 09:01 - 2013-08-22 17:36 - 00000000 ___HD C:\Program Files\WindowsApps
2016-09-14 08:56 - 2016-08-24 08:04 - 00000000 ____D C:\WINDOWS\system32\MRT
2016-09-14 08:50 - 2016-08-24 08:04 - 144199024 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2016-09-14 08:28 - 2016-08-14 11:47 - 00000000 ___RD C:\Program Files (x86)\Skype
2016-09-14 08:28 - 2016-08-14 11:46 - 00000000 ____D C:\ProgramData\Skype
2016-09-10 08:59 - 2014-12-13 00:40 - 00000000 ____D C:\WINDOWS\System32\Tasks\Hewlett-Packard
2016-09-10 08:59 - 2014-12-13 00:39 - 00000000 ____D C:\ProgramData\Hewlett-Packard
2016-09-09 16:50 - 2016-08-14 02:10 - 00000000 ____D C:\Users\Saša\AppData\Roaming\hpqLog
2016-09-09 16:50 - 2014-12-13 00:40 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP Help and Support
2016-09-09 16:50 - 2014-12-13 00:40 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2016-09-09 16:50 - 2014-12-13 00:38 - 00000000 ____D C:\Program Files (x86)\Hewlett-Packard
2016-09-08 03:29 - 2016-08-23 14:46 - 00000000 ____D C:\WarThunder
2016-09-07 03:11 - 2016-08-25 00:42 - 00828408 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2016-09-07 03:11 - 2016-08-25 00:42 - 00176632 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
==================== Files in the root of some directories =======
2015-01-23 13:11 - 2015-01-23 13:12 - 8935034 _____ () C:\ProgramData\hpcsmmsilogs.log
2015-01-23 13:27 - 2015-01-23 13:27 - 1266048 _____ () C:\ProgramData\hpdam_install_log.txt
2015-01-23 13:27 - 2015-01-23 13:27 - 0574176 _____ () C:\ProgramData\HPFileSanitizer_Install_Log.txt
Some files in TEMP:
====================
C:\Users\Saša\AppData\Local\Temp\BSvcProcessor.exe
C:\Users\Saša\AppData\Local\Temp\BSvcUpdater.exe
C:\Users\Saša\AppData\Local\Temp\HPSFUpdater.exe
C:\Users\Saša\AppData\Local\Temp\UninstallHPSA.exe
==================== Bamital & volsnap ======================
(There is no automatic fix for files that do not pass verification.)
C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\wininit.exe => File is digitally signed
C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\SysWOW64\explorer.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\SysWOW64\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\SysWOW64\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\SysWOW64\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
C:\WINDOWS\SysWOW64\dnsapi.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2016-10-03 21:40
==================== End of FRST.txt ============================
Ran by Saša (administrator) on MUJPC (07-10-2016 11:56:44)
Running from C:\Users\Saša\Downloads
Loaded Profiles: Saša (Available Profiles: Saša)
Platform: Windows 8.1 (Update) (X64) Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: IE)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(DigitalPersona, Inc.) C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe
(AMD) C:\Windows\System32\atiesrxx.exe
(AMD) C:\Windows\System32\atieclxx.exe
(Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(DigitalPersona, Inc.) C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpCardEngine.exe
(Hewlett-Packard Company) C:\Windows\System32\hpservice.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Validity Sensors, Inc.) C:\Windows\System32\vcsFPService.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
() C:\Program Files (x86)\Hewlett-Packard\HP Theft Recovery\CtService.exe
(Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe
(F-Secure Corporation) C:\Program Files (x86)\UPC Smart Guard\fshoster32.exe
(F-Secure Corporation) C:\Program Files (x86)\UPC Smart Guard\apps\CCF_Reputation\fsorsp.exe
(F-Secure Corporation) C:\Program Files (x86)\UPC Smart Guard\apps\ComputerSecurity\Anti-Virus\fsgk32.exe
(Hewlett-Packard) C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\HPFSService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\utilities\ibtsiva.exe
() C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTAgent.exe
(Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
(Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
(Hewlett-Packard Development Company) C:\Program Files (x86)\Hewlett-Packard\HP Device Access Manager\HP.ProtectTools.DeviceAccessManager.ServiceHost.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe
(F-Secure Corporation) C:\Program Files (x86)\UPC Smart Guard\apps\ComputerSecurity\Common\FSMA32.EXE
(F-Secure Corporation) C:\Program Files (x86)\UPC Smart Guard\apps\ComputerSecurity\Common\FSHDLL64.EXE
(F-Secure Corporation) C:\Program Files (x86)\UPC Smart Guard\apps\ComputerSecurity\Anti-Virus\fssm32.exe
(Microsoft Corporation) C:\Windows\SysWOW64\dllhost.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(DigitalPersona, Inc.) C:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DPAgent.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.31.5\GoogleCrashHandler.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.31.5\GoogleCrashHandler64.exe
(DigitalPersona, Inc.) C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpAgent.exe
(Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel Corporation) C:\Windows\System32\igfxHK.exe
() C:\Windows\System32\igfxTray.exe
(F-Secure Corporation) C:\Program Files (x86)\UPC Smart Guard\fshoster32.exe
(HP Inc.) C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTsysTray8.exe
(Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(© 2015 Microsoft Corporation) C:\Users\Saša\AppData\Local\Microsoft\BingSvc\BingSvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(BitTorrent Inc.) C:\Users\Saša\AppData\Roaming\uTorrent\uTorrent.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP 3D DriveGuard\AccelerometerSt.exe
(Disc Soft Ltd) C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe
(CyberLink) C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe
(Hewlett-Packard) C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\CORESHREDDER.exe
(Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(BitTorrent Inc.) C:\Users\Saša\AppData\Roaming\uTorrent\updates\3.4.8_42576\utorrentie.exe
(BitTorrent Inc.) C:\Users\Saša\AppData\Roaming\uTorrent\updates\3.4.8_42576\utorrentie.exe
(Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
==================== Registry (Whitelisted) ====================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [7659224 2014-11-11] (Realtek Semiconductor)
HKLM\...\Run: [ISCT Tray] => c:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTsysTray8.exe [5860656 2014-08-14] (Intel Corporation)
HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [321960 2015-07-09] (Intel Corporation)
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [QLBController] => C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe [425608 2014-10-03] (Hewlett-Packard Company)
HKLM-x32\...\Run: [HP Camera Driver_Monitor] => "C:\Program Files (x86)\HP Camera Driver\monitor.exe"
HKLM-x32\...\Run: [AccelerometerSysTrayApplet] => C:\Program Files (x86)\Hewlett-Packard\HP 3D DriveGuard\AccelerometerST.exe [126240 2014-04-01] (Hewlett-Packard Company)
HKLM-x32\...\Run: [CLMLServer_For_P2G8] => c:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe [111576 2013-08-05] (CyberLink)
HKLM-x32\...\Run: [CLVirtualDrive] => c:\Program Files (x86)\CyberLink\Power2Go8\VirtualDrive.exe [490760 2013-08-07] (CyberLink Corp.)
HKLM-x32\...\Run: [HP File Sanitizer] => C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\Coreshredder.exe [2213592 2014-02-05] (Hewlett-Packard)
HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [767176 2015-08-19] (Advanced Micro Devices, Inc.)
HKLM\...\Winlogon: [Userinit] C:\Windows\system32\userinit.exe,c:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DPAgent.exe,
HKU\S-1-5-21-3091623106-1469607821-2556767161-1002\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [29547136 2016-08-17] (Skype Technologies S.A.)
HKU\S-1-5-21-3091623106-1469607821-2556767161-1002\...\Run: [BingSvc] => C:\Users\Saša\AppData\Local\Microsoft\BingSvc\BingSvc.exe [144008 2015-11-05] (© 2015 Microsoft Corporation)
HKU\S-1-5-21-3091623106-1469607821-2556767161-1002\...\Run: [uTorrent] => C:\Users\Saša\AppData\Roaming\uTorrent\uTorrent.exe [2139840 2016-09-12] (BitTorrent Inc.)
HKU\S-1-5-21-3091623106-1469607821-2556767161-1002\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [2858272 2016-09-20] (Valve Corporation)
HKU\S-1-5-21-3091623106-1469607821-2556767161-1002\...\Run: [DAEMON Tools Lite Automount] => C:\Program Files\DAEMON Tools Lite\DTAgent.exe [4299968 2016-08-29] (Disc Soft Ltd)
HKU\S-1-5-21-3091623106-1469607821-2556767161-1002\...\MountPoints2: {7497f251-784c-11e6-825c-d07e35ca269a} - "I:\Browse.exe"
HKU\S-1-5-21-3091623106-1469607821-2556767161-1002\...\MountPoints2: {c23c6afe-825c-11e6-8260-d07e35ca269a} - "H:\Setup.exe"
Lsa: [Notification Packages] DPPassFilter scecli
CHR HKLM\SOFTWARE\Policies\Google: Restriction <======= ATTENTION
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 213.46.172.36 213.46.172.37
Tcpip\..\Interfaces\{2AC25671-3FEB-4281-B448-C6170DDD4319}: [DhcpNameServer] 213.46.172.36 213.46.172.37
Tcpip\..\Interfaces\{C91A3D70-B942-44D7-9098-5C83AA713164}: [DhcpNameServer] 213.46.172.36 213.46.172.37
Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.bing.com?pc=CMNTDFJS
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.bing.com?pc=CMNTDFJS
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.bing.com?pc=CMNTDFJS
HKU\S-1-5-21-3091623106-1469607821-2556767161-1002\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.bing.com/?pc=CMNTDFJS
HKU\S-1-5-21-3091623106-1469607821-2556767161-1002\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.bing.com?pc=CMNTDFJS
BHO: Browsing Protection by F-Secure -> {45BBE08D-81C5-4A67-AF20-B2A077C67747} -> C:\Program Files (x86)\UPC Smart Guard\apps\CCF_Scanning\bin\browser\install\fs_ie_https\fs_ie_https64.dll [2016-09-23] (F-Secure Corporation)
BHO: Search by F-Secure -> {690EF1CF-5775-4CB3-A5B8-85A63FD0262B} -> C:\Program Files (x86)\UPC Smart Guard\apps\SafeSearch\IE\FSSafeSearch64.dll [2016-09-09] (F-Secure Corporation)
BHO: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll [2016-07-04] (HP Inc.)
BHO-x32: HP File Sanitizer -> {3134413B-49B4-425C-98A5-893C1F195601} -> C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\IEBHO.dll [2014-02-05] (Hewlett-Packard)
BHO-x32: Browsing Protection by F-Secure -> {45BBE08D-81C5-4A67-AF20-B2A077C67747} -> C:\Program Files (x86)\UPC Smart Guard\apps\CCF_Scanning\bin\browser\install\fs_ie_https\fs_ie_https.dll [2016-09-23] (F-Secure Corporation)
BHO-x32: Search by F-Secure -> {690EF1CF-5775-4CB3-A5B8-85A63FD0262B} -> C:\Program Files (x86)\UPC Smart Guard\apps\SafeSearch\IE\FSSafeSearch.dll [2016-09-09] (F-Secure Corporation)
BHO-x32: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2016-07-04] (HP Inc.)
Toolbar: HKLM - Search by F-Secure Toolbar - {B242FC32-2B60-48EA-A8E3-2E280EDBC48F} - C:\Program Files (x86)\UPC Smart Guard\apps\SafeSearch\IE\FSSafeSearch64.dll [2016-09-09] (F-Secure Corporation)
Toolbar: HKLM-x32 - Search by F-Secure Toolbar - {B242FC32-2B60-48EA-A8E3-2E280EDBC48F} - C:\Program Files (x86)\UPC Smart Guard\apps\SafeSearch\IE\FSSafeSearch.dll [2016-09-09] (F-Secure Corporation)
FireFox:
========
FF HKLM\...\Firefox\Extensions: [ols@f-secure.com] - C:\Program Files (x86)\UPC Smart Guard\apps\CCF_Scanning\bin\browser\install\fs_firefox_https\fs_firefox_https.xpi
FF Extension: (Browsing Protection by F-Secure) - C:\Program Files (x86)\UPC Smart Guard\apps\CCF_Scanning\bin\browser\install\fs_firefox_https\fs_firefox_https.xpi [2016-09-23]
FF HKLM-x32\...\Firefox\Extensions: [dpmaxz_ng@jetpack] - c:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\BrowserExt\dpchrome
FF Extension: (HP Client Security Manager) - c:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\BrowserExt\dpchrome [2015-01-23] [not signed]
FF HKLM-x32\...\Firefox\Extensions: [ols@f-secure.com] - C:\Program Files (x86)\UPC Smart Guard\apps\CCF_Scanning\bin\browser\install\fs_firefox_https\fs_firefox_https.xpi
FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/pdf -> C:\Program Files (x86)\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [2013-12-18] ()
FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.fdf -> C:\Program Files (x86)\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [2013-12-18] ()
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.56 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2014-10-10] (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2014-10-10] (Intel Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-08-14] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-08-14] (Google Inc.)
FF Plugin-x32: digitalpersona.com/ChromeDPAgent -> c:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\BrowserExt\components\npChromeDPAgent.dll [2014-06-26] (DigitalPersona, Inc.)
Chrome:
=======
CHR HomePage: Default -> msn.com/?pc=__PARAM__&ocid=__PARAM__DHP&osmkt=en-us
CHR DefaultSearchURL: Default -> hxxp://www.bing.com/search?FORM=__PARAM__DF&PC ... earchTerms}
CHR DefaultSearchKeyword: Default -> bing.com
CHR DefaultSuggestURL: Default -> hxxp://www.bing.com/osjson.aspx?FORM=__PARAM__ ... earchTerms}
CHR Profile: C:\Users\Saša\AppData\Local\Google\Chrome\User Data\Default [2016-10-07]
CHR Extension: (Prezentace Google) - C:\Users\Saša\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2016-08-14]
CHR Extension: (Dokumenty Google) - C:\Users\Saša\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2016-08-14]
CHR Extension: (Disk Google) - C:\Users\Saša\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-08-14]
CHR Extension: (YouTube) - C:\Users\Saša\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-08-14]
CHR Extension: (Bing) - C:\Users\Saša\AppData\Local\Google\Chrome\User Data\Default\Extensions\fcfenmboojpjinhpgggodefccipikbpd [2016-08-31]
CHR Extension: (Tabulky Google) - C:\Users\Saša\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2016-08-14]
CHR Extension: (Dokumenty Google offline) - C:\Users\Saša\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-08-14]
CHR Extension: (Browsing Protection by F-Secure) - C:\Users\Saša\AppData\Local\Google\Chrome\User Data\Default\Extensions\jmjjnhpacphpjmnnlnccpfmhkcloaade [2016-09-09]
CHR Extension: (HP Client Security Manager) - C:\Users\Saša\AppData\Local\Google\Chrome\User Data\Default\Extensions\ncffjdbbodifgldkcbhmiiljfcnbgjab [2016-08-14]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Saša\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-08-14]
CHR Extension: (Gmail) - C:\Users\Saša\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2016-08-14]
CHR Extension: (Chrome Media Router) - C:\Users\Saša\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2016-09-23]
CHR HKU\S-1-5-21-3091623106-1469607821-2556767161-1002\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [fcfenmboojpjinhpgggodefccipikbpd] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [jmjjnhpacphpjmnnlnccpfmhkcloaade] - C:/Program Files (x86)/UPC Smart Guard/apps/CCF_Scanning/bin/browser/install/fs_chrome_https/fs_chrome_https.crx [2015-10-23]
CHR HKLM-x32\...\Chrome\Extension: [ncffjdbbodifgldkcbhmiiljfcnbgjab] - c:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\BrowserExt\dpchrome.crx [2014-06-26]
==================== Services (Whitelisted) ====================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 CtAgentService; C:\Program Files (x86)\Hewlett-Packard\HP Theft Recovery\CtService.exe [7168 2014-03-31] () [File not signed]
R3 Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe [1467072 2016-08-29] (Disc Soft Ltd)
R2 DpHost; c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe [500048 2014-07-28] (DigitalPersona, Inc.)
S3 FLCDLOCK; c:\windows\SysWOW64\flcdlock.exe [567608 2013-11-20] (Hewlett-Packard Company)
R2 fshoster; C:\Program Files (x86)\UPC Smart Guard\fshoster32.exe [186840 2016-03-11] (F-Secure Corporation)
R3 FSMA; C:\Program Files (x86)\UPC Smart Guard\apps\ComputerSecurity\Common\FSMA32.EXE [216104 2015-11-24] (F-Secure Corporation)
R2 FSORSPClient; C:\Program Files (x86)\UPC Smart Guard\apps\CCF_Reputation\fsorsp.exe [60456 2016-09-08] (F-Secure Corporation)
S3 HotSpotSrv; C:\Program Files (x86)\Hewlett-Packard\HP Wireless Hotspot\HotSpotSrv.exe [372408 2013-12-10] (Hewlett-Packard Development Company, L.P.)
R2 HpDamServiceHost; c:\Program Files (x86)\Hewlett-Packard\HP Device Access Manager\HP.ProtectTools.DeviceAccessManager.ServiceHost.exe [18232 2013-11-15] (Hewlett-Packard Development Company)
S3 hpqcaslwmiex; C:\Program Files (x86)\HP\Shared\hpqwmiex.exe [1031704 2016-06-03] (HP)
R2 HPSupportSolutionsFrameworkService; C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe [29728 2016-08-15] (HP Inc.)
R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [18856 2015-07-09] (Intel Corporation)
R2 ibtsiva; C:\Program Files (x86)\Intel\Bluetooth\utilities\ibtsiva.exe [125168 2014-11-04] (Intel Corporation)
R2 igfxCUIService1.0.0.0; C:\Windows\system32\igfxCUIService.exe [344168 2016-09-15] (Intel Corporation)
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [887256 2014-05-13] (Intel(R) Corporation)
R2 ISCTAgent; c:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTAgent.exe [209712 2014-08-14] ()
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [158496 2014-10-10] (Intel Corporation)
S3 MyWiFiDHCPDNS; c:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [268192 2014-09-23] ()
R2 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [292568 2014-09-04] (Realtek Semiconductor)
S3 vmicvss; C:\Windows\System32\ICSvc.dll [524800 2014-10-29] (Microsoft Corporation)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [366552 2015-07-07] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23824 2015-07-07] (Microsoft Corporation)
R2 ZeroConfigService; c:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [3820960 2014-09-23] (Intel® Corporation)
===================== Drivers (Whitelisted) ======================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 BCM43XX; C:\Windows\system32\DRIVERS\bcmwl63a.sys [8536752 2013-07-01] (Broadcom Corporation)
R1 CLVirtualDrive; C:\Windows\system32\DRIVERS\CLVirtualDrive.sys [91712 2013-03-05] (CyberLink)
S3 DAMDrv; C:\Windows\system32\DRIVERS\DAMDrv64.sys [65752 2013-10-07] (Hewlett-Packard Company)
S3 dg_ssudbus; C:\Windows\system32\DRIVERS\ssudbus.sys [130688 2016-07-22] (Samsung Electronics Co., Ltd.)
R3 dtlitescsibus; C:\Windows\System32\drivers\dtlitescsibus.sys [30264 2016-09-11] (Disc Soft Ltd)
R3 dtliteusbbus; C:\Windows\System32\drivers\dtliteusbbus.sys [47672 2016-09-11] (Disc Soft Ltd)
S0 ebdrv; C:\Windows\System32\drivers\evbda.sys [3357024 2013-08-22] (Broadcom Corporation)
R3 F-Secure Gatekeeper; C:\Program Files (x86)\UPC Smart Guard\apps\ComputerSecurity\Anti-Virus\minifilter\fsgk.sys [219352 2016-09-26] (F-Secure Corporation)
R1 F-Secure HIPS; C:\Program Files (x86)\UPC Smart Guard\apps\ComputerSecurity\HIPS\drivers\fshs.sys [98008 2016-09-26] (F-Secure Corporation)
R0 fsbts; C:\Windows\System32\Drivers\fsbts.sys [73928 2016-09-08] ()
R3 fsni; C:\Program Files (x86)\UPC Smart Guard\apps\CCF_Scanning\bin\fsni64.sys [110800 2016-09-23] (F-Secure Corporation)
R3 ibtusb; C:\Windows\system32\DRIVERS\ibtusb.sys [225008 2014-11-04] (Intel Corporation)
R3 ikbevent; C:\Windows\system32\DRIVERS\ikbevent.sys [22216 2014-05-27] ()
R3 imsevent; C:\Windows\system32\DRIVERS\imsevent.sys [22728 2014-05-27] ()
R3 INETMON; C:\windows\System32\Drivers\INETMON.sys [25800 2014-05-27] ()
R3 ISCT; C:\Windows\System32\drivers\ISCTD.sys [44744 2014-05-27] ()
R3 MEIx64; C:\Windows\System32\drivers\TeeDriverx64.sys [129312 2014-10-10] (Intel Corporation)
R3 NETwNb64; C:\Windows\system32\DRIVERS\Netwbw02.sys [3486488 2014-10-17] (Intel Corporation)
R0 PinFile; C:\Windows\System32\DRIVERS\PinFile.sys [49856 2014-12-05] (WinMagic Inc.)
R3 RTSPER; C:\Windows\system32\DRIVERS\RtsPer.sys [476888 2014-03-22] (Realsil Semiconductor Corporation)
R0 SDDisk2K; C:\Windows\System32\DRIVERS\SDDisk2K.sys [228544 2014-12-05] (WinMagic Inc.)
R0 SDDToki; C:\Windows\System32\DRIVERS\SDDToki.sys [131264 2014-12-05] (WinMagic Inc.)
R3 SPUVCbv; C:\Windows\System32\Drivers\SPUVCbv_x64.sys [674592 2014-10-07] (Sunplus)
S3 ssudmdm; C:\Windows\system32\DRIVERS\ssudmdm.sys [164992 2016-07-22] (Samsung Electronics Co., Ltd.)
S3 ssudserd; C:\Windows\system32\DRIVERS\ssudserd.sys [164992 2016-07-22] (Samsung Electronics Co., Ltd.)
S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [44560 2015-07-07] (Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [270168 2015-07-07] (Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114520 2015-07-07] (Microsoft Corporation)
R3 WirelessButtonDriver; C:\Windows\System32\drivers\WirelessButtonDriver64.sys [20800 2013-07-22] (Hewlett-Packard Development Company, L.P.)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2016-10-07 11:56 - 2016-10-07 11:57 - 00023553 _____ C:\Users\Saša\Downloads\FRST.txt
2016-10-07 11:54 - 2016-10-07 11:54 - 01222144 _____ C:\Users\Saša\Downloads\RSITx64.exe
2016-10-07 11:54 - 2016-10-07 11:54 - 00000000 ____D C:\rsit
2016-10-07 11:54 - 2016-10-07 11:54 - 00000000 ____D C:\Program Files\trend micro
2016-10-07 11:53 - 2016-10-07 11:56 - 00000000 ____D C:\FRST
2016-10-07 11:53 - 2016-10-07 11:53 - 02405376 _____ (Farbar) C:\Users\Saša\Downloads\FRST64.exe
2016-10-07 11:53 - 2016-10-07 11:53 - 02405376 _____ (Farbar) C:\Users\Saša\Downloads\FRST64 (1).exe
2016-10-07 11:41 - 2016-10-07 11:42 - 00001078 _____ C:\WINDOWS\system32dbgraw.bmp
2016-10-04 21:11 - 2016-10-04 21:11 - 00002147 _____ C:\Users\Saša\Desktop\Tribes of the East.lnk
2016-10-04 21:11 - 2016-10-04 21:11 - 00002045 _____ C:\Users\Saša\Desktop\Hammers of Fate.lnk
2016-10-04 21:11 - 2016-10-04 21:11 - 00002025 _____ C:\Users\Saša\Desktop\Heroes of Might and Magic V.lnk
2016-10-04 21:11 - 2016-10-04 21:11 - 00000000 ____D C:\Users\Saša\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Heroes of Might and Magic V - Collectors Edition
2016-10-04 21:00 - 2016-10-04 21:00 - 00000000 ____D C:\Heroes of Might and Magic V - Collectors Edition
2016-10-04 20:54 - 2016-10-04 20:54 - 00000000 ____D C:\Users\Saša\Desktop\Nová složka (2)
2016-10-04 20:30 - 2016-10-04 20:51 - 253014424 _____ C:\Users\Saša\Downloads\Heroes-of-Might-and-Magic-5-CZ.rar
2016-10-04 19:11 - 2016-10-04 19:11 - 00002132 _____ C:\Users\Public\Desktop\Mafia II.lnk
2016-10-04 19:11 - 2016-10-04 19:11 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\2K Games
2016-10-04 19:04 - 2016-10-04 19:04 - 00000000 ____D C:\Program Files (x86)\2K Games
2016-10-04 17:59 - 2016-10-04 18:11 - 00000000 ____D C:\Users\Saša\Downloads\Mafia II-SKIDROW
2016-10-04 01:06 - 2016-10-04 01:07 - 00000000 ____D C:\Users\Saša\Downloads\Rock Bottom to Rock Star
2016-10-04 01:06 - 2016-10-04 01:01 - 00700472 _____ (Auto-Grant ) C:\Users\Saša\Desktop\Mafia_II-SKIDROW_(Mafia_2).exe
2016-10-04 01:06 - 2016-10-04 01:01 - 00657000 _____ C:\Users\Saša\Desktop\Mafia_II-SKIDROW_(Mafia_2).zip
2016-10-04 01:04 - 2016-10-04 01:04 - 02970885 _____ C:\Users\Saša\Downloads\Mafia 3 PC_RUS.rar
2016-10-04 01:03 - 2016-10-04 01:03 - 00466216 _____ (MediaGet LLC) C:\Users\Saša\Downloads\MediaGet_id1778420ids2s.exe
2016-10-04 01:01 - 2016-10-04 01:01 - 00657229 _____ C:\Users\Saša\Downloads\Mafia_II-SKIDROW_(Mafia_2).zip
2016-10-04 00:07 - 2016-10-04 00:07 - 00700315 _____ C:\Users\Saša\Downloads\Mafia III.rar
2016-10-04 00:07 - 2016-01-17 19:53 - 03160576 _____ C:\Users\Saša\Desktop\setup.exe
2016-10-04 00:07 - 2015-07-20 11:42 - 00000045 _____ C:\Users\Saša\Desktop\READ!.txt
2016-10-04 00:07 - 2015-03-31 18:22 - 00321024 _____ (Sven Walter) C:\Users\Saša\Desktop\MetroFramework.dll
2016-10-04 00:07 - 2004-05-22 15:40 - 00149504 _____ C:\Users\Saša\Desktop\mssmp3.asi
2016-10-03 21:24 - 2016-10-03 21:24 - 00000000 ____D C:\Program Files (x86)\directx
2016-10-03 21:19 - 2016-10-03 21:25 - 00000000 ____D C:\Users\Saša\Desktop\WIN
2016-10-03 21:18 - 2016-10-03 21:18 - 02377944 _____ C:\Users\Saša\Downloads\winrar-x64-540cz.exe
2016-10-03 21:18 - 2016-10-03 21:18 - 00000000 ____D C:\Users\Saša\AppData\Roaming\WinRAR
2016-10-03 21:18 - 2016-10-03 21:18 - 00000000 ____D C:\Users\Saša\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2016-10-03 21:18 - 2016-10-03 21:18 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2016-10-03 21:18 - 2016-10-03 21:18 - 00000000 ____D C:\Program Files\WinRAR
2016-10-03 18:47 - 2016-10-03 19:07 - 488079444 _____ C:\Users\Saša\Downloads\lLEGO.RACERS.2-DEViANCE.rar
2016-10-03 18:24 - 2016-10-03 18:28 - 1354476014 _____ C:\Users\Saša\Downloads\Podfukari 2 CZ titulky (2016) NOVINKA.avi
2016-10-01 18:20 - 2016-10-01 18:23 - 1061137362 _____ C:\Users\Saša\Downloads\Ulice Cloverfield 10 (2016) CZ-Titulky NOVINKA.avi
2016-09-29 18:16 - 2016-09-29 18:16 - 00000000 ____D C:\Users\Saša\AppData\Local\HP_Development_Company,_L
2016-09-29 01:03 - 2016-09-29 01:04 - 00000000 ____D C:\Users\Saša\Desktop\Tor Browser
2016-09-29 01:02 - 2016-09-29 01:02 - 49791240 _____ C:\Users\Saša\Downloads\torbrowser-install-6.0.5_en-US.exe
2016-09-26 20:35 - 2016-10-07 11:44 - 00000000 ____D C:\Users\Saša\AppData\LocalLow\uTorrent
2016-09-16 20:15 - 2016-09-16 20:15 - 00000000 ____D C:\ProgramData\ATI
2016-09-16 20:13 - 2016-09-16 20:13 - 00016320 _____ C:\WINDOWS\system32\results.xml
2016-09-16 20:11 - 2016-09-16 20:11 - 00000401 _____ C:\WINDOWS\system32\{F33C3B9B-72AF-418A-B3FD-560646F7CDA2}.bat
2016-09-15 15:29 - 2016-09-15 15:29 - 00000000 ____D C:\Users\Saša\AppData\LocalLow\F-Secure
2016-09-15 14:27 - 2016-09-15 14:27 - 00580264 _____ (Synaptics Incorporated) C:\WINDOWS\system32\Drivers\SynTP.sys
2016-09-15 14:27 - 2016-09-15 14:27 - 00409256 _____ (Synaptics Incorporated) C:\WINDOWS\SysWOW64\SynCom.dll
2016-09-15 14:27 - 2016-09-15 14:27 - 00256168 _____ (Synaptics Incorporated) C:\WINDOWS\system32\SynTPAPI.dll
2016-09-15 14:27 - 2016-09-15 14:27 - 00212136 _____ (Synaptics Incorporated) C:\WINDOWS\system32\SynTPCo20.dll
2016-09-15 14:26 - 2016-09-15 14:26 - 00000000 ____D C:\Users\Default\AppData\Roaming\Intel Corporation
2016-09-15 14:26 - 2016-09-15 14:26 - 00000000 ____D C:\Users\Default User\AppData\Roaming\Intel Corporation
2016-09-15 14:22 - 2016-09-15 14:21 - 02958368 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiVAD64.exe
2016-09-15 14:22 - 2016-09-15 14:21 - 02777088 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiAAC64.dll
2016-09-15 14:22 - 2016-09-15 14:21 - 01513984 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiSecureSourceFilter64.dll
2016-09-15 14:22 - 2016-09-15 14:21 - 01402336 _____ (Intel Corporation) C:\WINDOWS\system32\iglhsip64.dll
2016-09-15 14:22 - 2016-09-15 14:21 - 01399240 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\iglhsip32.dll
2016-09-15 14:22 - 2016-09-15 14:21 - 01370624 _____ (Intel Corporation) C:\WINDOWS\system32\igfxcmjit64.dll
2016-09-15 14:22 - 2016-09-15 14:21 - 01064448 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igfxcmjit32.dll
2016-09-15 14:22 - 2016-09-15 14:21 - 01015808 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiWinNextAgent64.dll
2016-09-15 14:22 - 2016-09-15 14:21 - 00672768 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiAudioFilter64.dll
2016-09-15 14:22 - 2016-09-15 14:21 - 00624128 _____ (Intel Corporation) C:\WINDOWS\system32\MetroIntelGenericUIFramework.dll
2016-09-15 14:22 - 2016-09-15 14:21 - 00616960 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiMux64.dll
2016-09-15 14:22 - 2016-09-15 14:21 - 00472168 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiUMS64.exe
2016-09-15 14:22 - 2016-09-15 14:21 - 00385024 _____ (Intel Corporation) C:\WINDOWS\system32\igfxOSP.dll
2016-09-15 14:22 - 2016-09-15 14:21 - 00372224 _____ (Intel Corporation) C:\WINDOWS\system32\IntelOpenCL64.dll
2016-09-15 14:22 - 2016-09-15 14:21 - 00354816 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiSilenceFilter64.dll
2016-09-15 14:22 - 2016-09-15 14:21 - 00304128 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\IntelOpenCL32.dll
2016-09-15 14:22 - 2016-09-15 14:21 - 00279144 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\IntelCpHeciSvc.exe
2016-09-15 14:22 - 2016-09-15 14:21 - 00268800 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiUtils64.dll
2016-09-15 14:22 - 2016-09-15 14:21 - 00256000 _____ C:\WINDOWS\system32\igfxCPL.cpl
2016-09-15 14:22 - 2016-09-15 14:21 - 00220432 _____ (Intel Corporation) C:\WINDOWS\system32\iglhcp64.dll
2016-09-15 14:22 - 2016-09-15 14:21 - 00218728 _____ (Intel Corporation) C:\WINDOWS\system32\igfxext.exe
2016-09-15 14:22 - 2016-09-15 14:21 - 00214016 _____ (Intel Corporation) C:\WINDOWS\system32\igfx11cmrt64.dll
2016-09-15 14:22 - 2016-09-15 14:21 - 00213192 _____ (Intel Corporation) C:\WINDOWS\system32\igfxcmrt64.dll
2016-09-15 14:22 - 2016-09-15 14:21 - 00206848 _____ (Intel Corporation) C:\WINDOWS\system32\igfxCoIn_v4280.dll
2016-09-15 14:22 - 2016-09-15 14:21 - 00198144 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiDDEAgent64.dll
2016-09-15 14:22 - 2016-09-15 14:21 - 00184352 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\iglhcp32.dll
2016-09-15 14:22 - 2016-09-15 14:21 - 00179200 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igfx11cmrt32.dll
2016-09-15 14:22 - 2016-09-15 14:21 - 00178672 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igfxcmrt32.dll
2016-09-15 14:22 - 2016-09-15 14:21 - 00135680 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiMCUMD64.dll
2016-09-15 14:22 - 2016-09-15 14:21 - 00128000 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiLogServer64.dll
2016-09-15 14:22 - 2016-09-15 14:21 - 00086528 _____ C:\WINDOWS\system32\igfxCUIServicePS.dll
2016-09-15 14:22 - 2016-09-15 14:21 - 00086528 _____ (Khronos Group) C:\WINDOWS\SysWOW64\Intel_OpenCL_ICD32.dll
2016-09-15 14:22 - 2016-09-15 14:21 - 00082432 _____ (Khronos Group) C:\WINDOWS\system32\Intel_OpenCL_ICD64.dll
2016-09-15 14:22 - 2016-09-15 14:21 - 00073728 _____ ( ) C:\WINDOWS\system32\igfxDHLibv2_0.dll
2016-09-15 14:22 - 2016-09-15 14:21 - 00060928 _____ ( ) C:\WINDOWS\system32\igfxDHLib.dll
2016-09-15 14:22 - 2016-09-15 14:21 - 00036616 _____ (Intel Corporation) C:\WINDOWS\system32\igfxexps.dll
2016-09-15 14:22 - 2016-09-15 14:21 - 00035328 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igfxexps32.dll
2016-09-15 14:22 - 2016-09-15 14:21 - 00011264 _____ ( ) C:\WINDOWS\system32\igfxDILib.dll
2016-09-15 14:22 - 2016-09-15 14:21 - 00010752 _____ ( ) C:\WINDOWS\system32\igfxDILibv2_0.dll
2016-09-15 14:22 - 2016-09-15 14:21 - 00010240 _____ ( ) C:\WINDOWS\system32\igfxEMLibv2_0.dll
2016-09-15 14:22 - 2016-09-15 14:21 - 00010240 _____ ( ) C:\WINDOWS\system32\igfxEMLib.dll
2016-09-15 14:22 - 2016-09-15 14:21 - 00005120 _____ ( ) C:\WINDOWS\system32\igfxLHMLibv2_0.dll
2016-09-15 14:22 - 2016-09-15 14:21 - 00005120 _____ ( ) C:\WINDOWS\system32\igfxLHMLib.dll
2016-09-15 14:22 - 2016-09-15 14:21 - 00004040 _____ C:\WINDOWS\system32\iglhxs64.vp
2016-09-15 14:21 - 2016-09-15 14:21 - 17808192 _____ C:\WINDOWS\system32\igd11dxva64.dll
2016-09-15 14:21 - 2016-09-15 14:21 - 17331808 _____ C:\WINDOWS\SysWOW64\igd11dxva32.dll
2016-09-15 14:21 - 2016-09-15 14:21 - 15981056 _____ (Intel Corporation) C:\WINDOWS\system32\igdfcl64.dll
2016-09-15 14:21 - 2016-09-15 14:21 - 10852352 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdfcl32.dll
2016-09-15 14:21 - 2016-09-15 14:21 - 09504768 _____ (Intel Corporation) C:\WINDOWS\system32\ig8icd64.dll
2016-09-15 14:21 - 2016-09-15 14:21 - 07494144 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\ig8icd32.dll
2016-09-15 14:21 - 2016-09-15 14:21 - 06725162 _____ C:\WINDOWS\system32\igdclbif.bin
2016-09-15 14:21 - 2016-09-15 14:21 - 04918160 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\igdkmd64.sys
2016-09-15 14:21 - 2016-09-15 14:21 - 03590656 _____ (Intel Corporation) C:\WINDOWS\system32\igdrcl64.dll
2016-09-15 14:21 - 2016-09-15 14:21 - 03325440 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdrcl32.dll
2016-09-15 14:21 - 2016-09-15 14:21 - 01277224 _____ (Intel Corporation) C:\WINDOWS\system32\igdmd64.dll
2016-09-15 14:21 - 2016-09-15 14:21 - 01131008 _____ (Intel Corporation) C:\WINDOWS\system32\GfxResources.dll
2016-09-15 14:21 - 2016-09-15 14:21 - 01036904 _____ (Intel Corporation) C:\WINDOWS\system32\Gfxv4_0.exe
2016-09-15 14:21 - 2016-09-15 14:21 - 01033832 _____ (Intel Corporation) C:\WINDOWS\system32\Gfxv2_0.exe
2016-09-15 14:21 - 2016-09-15 14:21 - 01019664 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdmd32.dll
2016-09-15 14:21 - 2016-09-15 14:21 - 00460048 _____ (Intel(R) Corporation) C:\WINDOWS\system32\Drivers\IntcDAud.sys
2016-09-15 14:21 - 2016-09-15 14:21 - 00448104 _____ (Intel Corporation) C:\WINDOWS\system32\GfxUIEx.exe
2016-09-15 14:21 - 2016-09-15 14:21 - 00425472 _____ (Intel Corporation) C:\WINDOWS\system32\igdbcl64.dll
2016-09-15 14:21 - 2016-09-15 14:21 - 00374272 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdbcl32.dll
2016-09-15 14:21 - 2016-09-15 14:21 - 00339048 _____ (Intel Corporation) C:\WINDOWS\system32\DPTopologyApp.exe
2016-09-15 14:21 - 2016-09-15 14:21 - 00338536 _____ (Intel Corporation) C:\WINDOWS\system32\DPTopologyAppv2_0.exe
2016-09-15 14:21 - 2016-09-15 14:21 - 00282696 _____ (Intel Corporation) C:\WINDOWS\system32\igd10idpp64.dll
2016-09-15 14:21 - 2016-09-15 14:21 - 00263120 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igd10idpp32.dll
2016-09-15 14:21 - 2016-09-15 14:21 - 00192000 _____ C:\WINDOWS\system32\igdde64.dll
2016-09-15 14:21 - 2016-09-15 14:21 - 00169984 _____ (Intel Corporation) C:\WINDOWS\system32\igdail64.dll
2016-09-15 14:21 - 2016-09-15 14:21 - 00156264 _____ (Intel Corporation) C:\WINDOWS\system32\difx64.exe
2016-09-15 14:21 - 2016-09-15 14:21 - 00153088 _____ C:\WINDOWS\SysWOW64\igdde32.dll
2016-09-15 14:21 - 2016-09-15 14:21 - 00152064 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdail32.dll
2016-09-15 14:19 - 2016-09-15 14:19 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Catalyst Control Center
2016-09-15 14:12 - 2016-09-15 14:12 - 00000000 ____D C:\Users\Default\AppData\Roaming\ATI
2016-09-15 14:12 - 2016-09-15 14:12 - 00000000 ____D C:\Users\Default\AppData\Local\ATI
2016-09-15 14:12 - 2016-09-15 14:12 - 00000000 ____D C:\Users\Default User\AppData\Roaming\ATI
2016-09-15 14:12 - 2016-09-15 14:12 - 00000000 ____D C:\Users\Default User\AppData\Local\ATI
2016-09-15 14:09 - 2016-09-15 14:08 - 47795712 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\amdocl64.dll
2016-09-15 14:09 - 2016-09-15 14:08 - 39721488 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\amdocl.dll
2016-09-15 14:09 - 2016-09-15 14:08 - 30777368 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atio6axx.dll
2016-09-15 14:09 - 2016-09-15 14:08 - 27544592 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\amdocl12cl64.dll
2016-09-15 14:09 - 2016-09-15 14:08 - 25322008 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\atioglxx.dll
2016-09-15 14:09 - 2016-09-15 14:08 - 22328840 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\amdocl12cl.dll
2016-09-15 14:09 - 2016-09-15 14:08 - 21645320 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\Drivers\atikmdag.sys
2016-09-15 14:09 - 2016-09-15 14:08 - 15727112 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\aticaldd64.dll
2016-09-15 14:09 - 2016-09-15 14:08 - 14310936 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\aticaldd.dll
2016-09-15 14:09 - 2016-09-15 14:08 - 12062080 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atidxx64.dll
2016-09-15 14:09 - 2016-09-15 14:08 - 10192816 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atidxx32.dll
2016-09-15 14:09 - 2016-09-15 14:08 - 08983992 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiumd6a.dll
2016-09-15 14:09 - 2016-09-15 14:08 - 08866480 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiumd64.dll
2016-09-15 14:09 - 2016-09-15 14:08 - 08010912 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiumdva.dll
2016-09-15 14:09 - 2016-09-15 14:08 - 07482080 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiumdag.dll
2016-09-15 14:09 - 2016-09-15 14:08 - 03471376 _____ C:\WINDOWS\SysWOW64\atiumdva.cap
2016-09-15 14:09 - 2016-09-15 14:08 - 03437632 _____ C:\WINDOWS\system32\atiumd6a.cap
2016-09-15 14:09 - 2016-09-15 14:08 - 01220968 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\aticfx32.dll
2016-09-15 14:09 - 2016-09-15 14:08 - 01196072 _____ C:\WINDOWS\system32\amdocl_as64.exe
2016-09-15 14:09 - 2016-09-15 14:08 - 01072152 _____ C:\WINDOWS\system32\amdocl_ld64.exe
2016-09-15 14:09 - 2016-09-15 14:08 - 01004072 _____ C:\WINDOWS\SysWOW64\amdocl_as32.exe
2016-09-15 14:09 - 2016-09-15 14:08 - 00934408 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\atiadlxy.dll
2016-09-15 14:09 - 2016-09-15 14:08 - 00934408 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\atiadlxx.dll
2016-09-15 14:09 - 2016-09-15 14:08 - 00877064 _____ (AMD) C:\WINDOWS\system32\coinst_15.20.dll
2016-09-15 14:09 - 2016-09-15 14:08 - 00833800 _____ C:\WINDOWS\system32\amdicdxx.dat
2016-09-15 14:09 - 2016-09-15 14:08 - 00807456 _____ C:\WINDOWS\SysWOW64\amdocl_ld32.exe
2016-09-15 14:09 - 2016-09-15 14:08 - 00737410 _____ C:\WINDOWS\system32\atiicdxx.dat
2016-09-15 14:09 - 2016-09-15 14:08 - 00683544 _____ (AMD) C:\WINDOWS\system32\atieclxx.exe
2016-09-15 14:09 - 2016-09-15 14:08 - 00676360 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\Drivers\atikmpag.sys
2016-09-15 14:09 - 2016-09-15 14:08 - 00662384 _____ C:\WINDOWS\SysWOW64\atiapfxx.blb
2016-09-15 14:09 - 2016-09-15 14:08 - 00662384 _____ C:\WINDOWS\system32\atiapfxx.blb
2016-09-15 14:09 - 2016-09-15 14:08 - 00471352 _____ C:\WINDOWS\system32\amdmiracast.dll
2016-09-15 14:09 - 2016-09-15 14:08 - 00375824 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atiapfxx.exe
2016-09-15 14:09 - 2016-09-15 14:08 - 00341528 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\ATIODE.exe
2016-09-15 14:09 - 2016-09-15 14:08 - 00322868 _____ C:\WINDOWS\system32\ativvaxy_vi.dat
2016-09-15 14:09 - 2016-09-15 14:08 - 00321200 _____ C:\WINDOWS\system32\ativvaxy_vi_nd.dat
2016-09-15 14:09 - 2016-09-15 14:08 - 00305392 _____ (Advanced Micro Devices) C:\WINDOWS\system32\Drivers\amdacpksd.sys
2016-09-15 14:09 - 2016-09-15 14:08 - 00255808 _____ C:\WINDOWS\system32\ativvaxy_cz_nd.dat
2016-09-15 14:09 - 2016-09-15 14:08 - 00255504 _____ (AMD) C:\WINDOWS\system32\atiesrxx.exe
2016-09-15 14:09 - 2016-09-15 14:08 - 00250884 _____ C:\WINDOWS\system32\ativvaxy_FJ.dat
2016-09-15 14:09 - 2016-09-15 14:08 - 00249088 _____ C:\WINDOWS\system32\ativvaxy_FJ_nd.dat
2016-09-15 14:09 - 2016-09-15 14:08 - 00243736 _____ C:\WINDOWS\system32\clinfo.exe
2016-09-15 14:09 - 2016-09-15 14:08 - 00234420 _____ C:\WINDOWS\system32\ativvaxy_cik.dat
2016-09-15 14:09 - 2016-09-15 14:08 - 00232752 _____ C:\WINDOWS\system32\ativvaxy_cik_nd.dat
2016-09-15 14:09 - 2016-09-15 14:08 - 00215048 _____ C:\WINDOWS\system32\amdgfxinfo64.dll
2016-09-15 14:09 - 2016-09-15 14:08 - 00201224 _____ (AMD) C:\WINDOWS\system32\atitmm64.dll
2016-09-15 14:09 - 2016-09-15 14:08 - 00198672 _____ C:\WINDOWS\SysWOW64\amdgfxinfo32.dll
2016-09-15 14:09 - 2016-09-15 14:08 - 00177344 _____ C:\WINDOWS\system32\ativce03.dat
2016-09-15 14:09 - 2016-09-15 14:08 - 00175648 _____ C:\WINDOWS\system32\amde31a.dat
2016-09-15 14:09 - 2016-09-15 14:08 - 00170496 _____ C:\WINDOWS\system32\atieah64.exe
2016-09-15 14:09 - 2016-09-15 14:08 - 00166912 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atig6txx.dll
2016-09-15 14:09 - 2016-09-15 14:08 - 00162272 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiuxp64.dll
2016-09-15 14:09 - 2016-09-15 14:08 - 00154112 _____ C:\WINDOWS\SysWOW64\atieah32.exe
2016-09-15 14:09 - 2016-09-15 14:08 - 00153496 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\amdhcp64.dll
2016-09-15 14:09 - 2016-09-15 14:08 - 00152064 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atigktxx.dll
2016-09-15 14:09 - 2016-09-15 14:08 - 00144904 _____ C:\WINDOWS\system32\amdhdl64.dll
2016-09-15 14:09 - 2016-09-15 14:08 - 00144608 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiuxpag.dll
2016-09-15 14:09 - 2016-09-15 14:08 - 00139936 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\amdhcp32.dll
2016-09-15 14:09 - 2016-09-15 14:08 - 00133640 _____ C:\WINDOWS\SysWOW64\amdhdl32.dll
2016-09-15 14:09 - 2016-09-15 14:08 - 00131632 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiu9p64.dll
2016-09-15 14:09 - 2016-09-15 14:08 - 00117640 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdave64.dll
2016-09-15 14:09 - 2016-09-15 14:08 - 00113920 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiu9pag.dll
2016-09-15 14:09 - 2016-09-15 14:08 - 00112648 _____ C:\WINDOWS\SysWOW64\hsa-thunk.dll
2016-09-15 14:09 - 2016-09-15 14:08 - 00111632 _____ C:\WINDOWS\system32\hsa-thunk64.dll
2016-09-15 14:09 - 2016-09-15 14:08 - 00110352 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdave32.dll
2016-09-15 14:09 - 2016-09-15 14:08 - 00100816 _____ C:\WINDOWS\system32\ativce02.dat
2016-09-15 14:09 - 2016-09-15 14:08 - 00097808 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atisamu64.dll
2016-09-15 14:09 - 2016-09-15 14:08 - 00091136 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atisamu32.dll
2016-09-15 14:09 - 2016-09-15 14:08 - 00089560 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdpcom64.dll
2016-09-15 14:09 - 2016-09-15 14:08 - 00089552 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atimpc64.dll
2016-09-15 14:09 - 2016-09-15 14:08 - 00083984 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atig6pxx.dll
2016-09-15 14:09 - 2016-09-15 14:08 - 00081200 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atimpc32.dll
2016-09-15 14:09 - 2016-09-15 14:08 - 00081200 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdpcom32.dll
2016-09-15 14:09 - 2016-09-15 14:08 - 00078352 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiglpxx.dll
2016-09-15 14:09 - 2016-09-15 14:08 - 00078352 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiglpxx.dll
2016-09-15 14:09 - 2016-09-15 14:08 - 00075272 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll
2016-09-15 14:09 - 2016-09-15 14:08 - 00072712 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\aticalrt64.dll
2016-09-15 14:09 - 2016-09-15 14:08 - 00069640 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll
2016-09-15 14:09 - 2016-09-15 14:08 - 00064528 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\aticalcl64.dll
2016-09-15 14:09 - 2016-09-15 14:08 - 00062464 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\aticalrt.dll
2016-09-15 14:09 - 2016-09-15 14:08 - 00061448 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\ATIODCLI.exe
2016-09-15 14:09 - 2016-09-15 14:08 - 00060936 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdmmcl6.dll
2016-09-15 14:09 - 2016-09-15 14:08 - 00057872 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\aticalcl.dll
2016-09-15 14:09 - 2016-09-15 14:08 - 00053760 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\Drivers\ati2erec.dll
2016-09-15 14:09 - 2016-09-15 14:08 - 00048152 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdmmcl.dll
2016-09-15 14:09 - 2016-09-15 14:08 - 00047664 _____ C:\WINDOWS\system32\kapp_ci.sbin
2016-09-15 14:09 - 2016-09-15 14:08 - 00043536 _____ C:\WINDOWS\system32\kapp_si.sbin
2016-09-15 14:09 - 2016-09-15 14:08 - 00038424 _____ (AMD) C:\WINDOWS\system32\atimuixx.dll
2016-09-15 14:09 - 2016-09-15 14:08 - 00014344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\detoured.dll
2016-09-15 14:09 - 2016-09-15 14:08 - 00014344 _____ (Microsoft Corporation) C:\WINDOWS\system32\detoured.dll
2016-09-15 03:14 - 2010-06-02 04:55 - 00527192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_7.dll
2016-09-15 03:14 - 2010-06-02 04:55 - 00518488 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_7.dll
2016-09-15 03:14 - 2010-06-02 04:55 - 00239960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_7.dll
2016-09-15 03:14 - 2010-06-02 04:55 - 00176984 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_7.dll
2016-09-15 03:14 - 2010-06-02 04:55 - 00077656 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_5.dll
2016-09-15 03:14 - 2010-06-02 04:55 - 00074072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_5.dll
2016-09-15 03:14 - 2010-05-26 11:41 - 02526056 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_43.dll
2016-09-15 03:14 - 2010-05-26 11:41 - 02401112 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_43.dll
2016-09-15 03:14 - 2010-05-26 11:41 - 02106216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_43.dll
2016-09-15 03:14 - 2010-05-26 11:41 - 01998168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_43.dll
2016-09-15 03:14 - 2010-05-26 11:41 - 01907552 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dcsx_43.dll
2016-09-15 03:14 - 2010-05-26 11:41 - 01868128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dcsx_43.dll
2016-09-15 03:14 - 2010-05-26 11:41 - 00511328 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_43.dll
2016-09-15 03:14 - 2010-05-26 11:41 - 00470880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_43.dll
2016-09-15 03:14 - 2010-05-26 11:41 - 00276832 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx11_43.dll
2016-09-15 03:14 - 2010-05-26 11:41 - 00248672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx11_43.dll
2016-09-15 03:14 - 2010-02-04 10:01 - 00530776 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_6.dll
2016-09-15 03:14 - 2010-02-04 10:01 - 00528216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_6.dll
2016-09-15 03:14 - 2010-02-04 10:01 - 00238936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_6.dll
2016-09-15 03:14 - 2010-02-04 10:01 - 00176984 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_6.dll
2016-09-15 03:14 - 2010-02-04 10:01 - 00078680 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_4.dll
2016-09-15 03:14 - 2010-02-04 10:01 - 00074072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_4.dll
2016-09-15 03:14 - 2010-02-04 10:01 - 00024920 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_7.dll
2016-09-15 03:14 - 2010-02-04 10:01 - 00022360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_7.dll
2016-09-15 03:14 - 2009-09-04 17:44 - 00517960 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_5.dll
2016-09-15 03:14 - 2009-09-04 17:44 - 00515416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_5.dll
2016-09-15 03:13 - 2009-09-04 17:44 - 00238936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_5.dll
2016-09-15 03:13 - 2009-09-04 17:44 - 00176968 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_5.dll
2016-09-15 03:13 - 2009-09-04 17:44 - 00073544 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_3.dll
2016-09-15 03:13 - 2009-09-04 17:44 - 00069464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_3.dll
2016-09-15 03:13 - 2009-09-04 17:29 - 05554512 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dcsx_42.dll
2016-09-15 03:13 - 2009-09-04 17:29 - 05501792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dcsx_42.dll
2016-09-15 03:13 - 2009-09-04 17:29 - 02582888 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_42.dll
2016-09-15 03:13 - 2009-09-04 17:29 - 02475352 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_42.dll
2016-09-15 03:13 - 2009-09-04 17:29 - 01974616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_42.dll
2016-09-15 03:13 - 2009-09-04 17:29 - 01892184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_42.dll
2016-09-15 03:13 - 2009-09-04 17:29 - 00523088 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_42.dll
2016-09-15 03:13 - 2009-09-04 17:29 - 00453456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_42.dll
2016-09-15 03:13 - 2009-09-04 17:29 - 00285024 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx11_42.dll
2016-09-15 03:13 - 2009-09-04 17:29 - 00235344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx11_42.dll
2016-09-15 03:13 - 2009-03-16 14:18 - 00521560 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_4.dll
2016-09-15 03:13 - 2009-03-16 14:18 - 00517448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_4.dll
2016-09-15 03:13 - 2009-03-16 14:18 - 00235352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_4.dll
2016-09-15 03:13 - 2009-03-16 14:18 - 00174936 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_4.dll
2016-09-15 03:13 - 2009-03-16 14:18 - 00024920 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_6.dll
2016-09-15 03:13 - 2009-03-16 14:18 - 00022360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_6.dll
2016-09-15 03:13 - 2009-03-09 15:27 - 05425496 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_41.dll
2016-09-15 03:13 - 2009-03-09 15:27 - 04178264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_41.dll
2016-09-15 03:13 - 2009-03-09 15:27 - 02430312 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_41.dll
2016-09-15 03:13 - 2009-03-09 15:27 - 01846632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_41.dll
2016-09-15 03:13 - 2009-03-09 15:27 - 00520544 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_41.dll
2016-09-15 03:13 - 2009-03-09 15:27 - 00453456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_41.dll
2016-09-15 03:13 - 2008-10-27 10:04 - 00518480 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_3.dll
2016-09-15 03:13 - 2008-10-27 10:04 - 00514384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_3.dll
2016-09-15 03:13 - 2008-10-27 10:04 - 00235856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_3.dll
2016-09-15 03:13 - 2008-10-27 10:04 - 00175440 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_3.dll
2016-09-15 03:13 - 2008-10-27 10:04 - 00074576 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_2.dll
2016-09-15 03:13 - 2008-10-27 10:04 - 00070992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_2.dll
2016-09-15 03:13 - 2008-10-27 10:04 - 00025936 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_5.dll
2016-09-15 03:13 - 2008-10-27 10:04 - 00023376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_5.dll
2016-09-15 03:13 - 2008-10-15 06:22 - 05631312 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_40.dll
2016-09-15 03:13 - 2008-10-15 06:22 - 04379984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_40.dll
2016-09-15 03:13 - 2008-10-15 06:22 - 02605920 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_40.dll
2016-09-15 03:13 - 2008-10-15 06:22 - 02036576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_40.dll
2016-09-15 03:13 - 2008-10-15 06:22 - 00519000 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_40.dll
2016-09-15 03:13 - 2008-10-15 06:22 - 00452440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_40.dll
2016-09-15 03:13 - 2008-07-31 10:41 - 00238088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_2.dll
2016-09-15 03:13 - 2008-07-31 10:41 - 00177672 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_2.dll
2016-09-15 03:13 - 2008-07-31 10:41 - 00072200 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_1.dll
2016-09-15 03:13 - 2008-07-31 10:40 - 00513544 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_2.dll
2016-09-15 03:13 - 2008-07-10 11:00 - 04992520 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_39.dll
2016-09-15 03:13 - 2008-07-10 11:00 - 01942552 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_39.dll
2016-09-15 03:13 - 2008-07-10 11:00 - 00540688 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_39.dll
2016-09-15 03:13 - 2008-05-30 14:19 - 00511496 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_1.dll
2016-09-15 03:13 - 2008-05-30 14:19 - 00507400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_1.dll
2016-09-15 03:13 - 2008-05-30 14:18 - 00238088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_1.dll
2016-09-15 03:13 - 2008-05-30 14:18 - 00177672 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_1.dll
2016-09-15 03:13 - 2008-05-30 14:17 - 00068104 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_0.dll
2016-09-15 03:13 - 2008-05-30 14:17 - 00065032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_0.dll
2016-09-15 03:13 - 2008-05-30 14:17 - 00025608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_4.dll
2016-09-15 03:13 - 2008-05-30 14:16 - 00028168 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_4.dll
2016-09-15 03:13 - 2008-05-30 14:11 - 04991496 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_38.dll
2016-09-15 03:13 - 2008-05-30 14:11 - 03850760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_38.dll
2016-09-15 03:13 - 2008-05-30 14:11 - 01941528 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_38.dll
2016-09-15 03:13 - 2008-05-30 14:11 - 01491992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_38.dll
2016-09-15 03:13 - 2008-05-30 14:11 - 00540688 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_38.dll
2016-09-15 03:13 - 2008-05-30 14:11 - 00467984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_38.dll
2016-09-15 03:13 - 2008-03-05 16:04 - 00489480 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_0.dll
2016-09-15 03:13 - 2008-03-05 16:03 - 00479752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_0.dll
2016-09-15 03:13 - 2008-03-05 16:03 - 00238088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_0.dll
2016-09-15 03:13 - 2008-03-05 16:03 - 00177672 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_0.dll
2016-09-15 03:13 - 2008-03-05 16:00 - 00028168 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_3.dll
2016-09-15 03:13 - 2008-03-05 16:00 - 00025608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_3.dll
2016-09-15 03:13 - 2008-03-05 15:56 - 04910088 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_37.dll
2016-09-15 03:13 - 2008-03-05 15:56 - 03786760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_37.dll
2016-09-15 03:13 - 2008-03-05 15:56 - 01860120 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_37.dll
2016-09-15 03:13 - 2008-03-05 15:56 - 01420824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_37.dll
2016-09-15 03:13 - 2008-02-05 23:07 - 00529424 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_37.dll
2016-09-15 03:13 - 2008-02-05 23:07 - 00462864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_37.dll
2016-09-15 03:13 - 2007-10-22 03:40 - 00411656 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_10.dll
2016-09-15 03:13 - 2007-10-22 03:39 - 00267272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_10.dll
2016-09-15 03:13 - 2007-10-22 03:37 - 00021000 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_2.dll
2016-09-15 03:13 - 2007-10-22 03:37 - 00017928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_2.dll
2016-09-15 03:13 - 2007-10-12 15:14 - 05081608 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_36.dll
2016-09-15 03:13 - 2007-10-12 15:14 - 03734536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_36.dll
2016-09-15 03:13 - 2007-10-12 15:14 - 02006552 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_36.dll
2016-09-15 03:13 - 2007-10-12 15:14 - 01374232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_36.dll
2016-09-15 03:13 - 2007-10-02 09:56 - 00508264 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_36.dll
2016-09-15 03:13 - 2007-10-02 09:56 - 00444776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_36.dll
2016-09-15 03:13 - 2007-07-20 00:57 - 00411496 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_9.dll
2016-09-15 03:13 - 2007-07-20 00:57 - 00267112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_9.dll
2016-09-15 03:13 - 2007-07-19 18:14 - 05073256 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_35.dll
2016-09-15 03:13 - 2007-07-19 18:14 - 03727720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_35.dll
2016-09-15 03:13 - 2007-07-19 18:14 - 01985904 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_35.dll
2016-09-15 03:13 - 2007-07-19 18:14 - 01358192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_35.dll
2016-09-15 03:13 - 2007-07-19 18:14 - 00508264 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_35.dll
2016-09-15 03:13 - 2007-07-19 18:14 - 00444776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_35.dll
2016-09-15 03:13 - 2007-06-20 20:49 - 00409960 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_8.dll
2016-09-15 03:13 - 2007-06-20 20:46 - 00266088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_8.dll
2016-09-15 03:13 - 2007-05-16 16:45 - 04496232 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_34.dll
2016-09-15 03:13 - 2007-05-16 16:45 - 03497832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_34.dll
2016-09-15 03:13 - 2007-05-16 16:45 - 01401200 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_34.dll
2016-09-15 03:13 - 2007-05-16 16:45 - 01124720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_34.dll
2016-09-15 03:13 - 2007-05-16 16:45 - 00506728 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_34.dll
2016-09-15 03:13 - 2007-05-16 16:45 - 00443752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_34.dll
2016-09-15 03:13 - 2007-04-04 18:55 - 00403304 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_7.dll
2016-09-15 03:13 - 2007-04-04 18:55 - 00261480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_7.dll
2016-09-15 03:13 - 2007-04-04 18:54 - 00107368 _____ (Microsoft Corporation) C:\WINDOWS\system32\xinput1_3.dll
2016-09-15 03:13 - 2007-04-04 18:53 - 00081768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xinput1_3.dll
2016-09-15 03:13 - 2007-03-15 16:57 - 00506728 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_33.dll
2016-09-15 03:13 - 2007-03-15 16:57 - 00443752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_33.dll
2016-09-15 03:13 - 2007-03-12 16:42 - 04494184 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_33.dll
2016-09-15 03:13 - 2007-03-12 16:42 - 03495784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_33.dll
2016-09-15 03:13 - 2007-03-12 16:42 - 01400176 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_33.dll
2016-09-15 03:13 - 2007-03-12 16:42 - 01123696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_33.dll
2016-09-15 03:13 - 2007-03-05 12:42 - 00017688 _____ (Microsoft Corporation) C:\WINDOWS\system32\x3daudio1_1.dll
2016-09-15 03:13 - 2007-03-05 12:42 - 00015128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\x3daudio1_1.dll
2016-09-15 03:13 - 2007-01-24 15:27 - 00393576 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_6.dll
2016-09-15 03:13 - 2007-01-24 15:27 - 00255848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_6.dll
2016-09-15 03:13 - 2006-12-08 12:02 - 00251672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_5.dll
2016-09-15 03:13 - 2006-12-08 12:00 - 00390424 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_5.dll
2016-09-15 03:13 - 2006-11-29 13:06 - 04398360 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_32.dll
2016-09-15 03:13 - 2006-11-29 13:06 - 03426072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_32.dll
2016-09-15 03:13 - 2006-11-29 13:06 - 00469264 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10.dll
2016-09-15 03:13 - 2006-11-29 13:06 - 00440080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10.dll
2016-09-15 03:13 - 2006-09-28 16:05 - 03977496 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_31.dll
2016-09-15 03:13 - 2006-09-28 16:05 - 02414360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_31.dll
2016-09-15 03:13 - 2006-09-28 16:05 - 00237848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_4.dll
2016-09-15 03:13 - 2006-09-28 16:04 - 00364824 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_4.dll
2016-09-15 03:13 - 2006-07-28 09:31 - 00083736 _____ (Microsoft Corporation) C:\WINDOWS\system32\xinput1_2.dll
2016-09-15 03:13 - 2006-07-28 09:30 - 00363288 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_3.dll
2016-09-15 03:13 - 2006-07-28 09:30 - 00236824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_3.dll
2016-09-15 03:13 - 2006-07-28 09:30 - 00062744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xinput1_2.dll
2016-09-15 03:13 - 2006-05-31 07:24 - 00230168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_2.dll
2016-09-15 03:13 - 2006-05-31 07:22 - 00354072 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_2.dll
2016-09-15 03:13 - 2006-03-31 12:41 - 03927248 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_30.dll
2016-09-15 03:13 - 2006-03-31 12:40 - 02388176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_30.dll
2016-09-15 03:13 - 2006-03-31 12:40 - 00352464 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_1.dll
2016-09-15 03:13 - 2006-03-31 12:39 - 00229584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_1.dll
2016-09-15 03:13 - 2006-03-31 12:39 - 00083664 _____ (Microsoft Corporation) C:\WINDOWS\system32\xinput1_1.dll
2016-09-15 03:13 - 2006-03-31 12:39 - 00062672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xinput1_1.dll
2016-09-15 03:13 - 2006-02-03 08:43 - 03830992 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_29.dll
2016-09-15 03:13 - 2006-02-03 08:43 - 02332368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_29.dll
2016-09-15 03:13 - 2006-02-03 08:42 - 00355536 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_0.dll
2016-09-15 03:13 - 2006-02-03 08:42 - 00230096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_0.dll
2016-09-15 03:13 - 2006-02-03 08:41 - 00016592 _____ (Microsoft Corporation) C:\WINDOWS\system32\x3daudio1_0.dll
2016-09-15 03:13 - 2006-02-03 08:41 - 00014032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\x3daudio1_0.dll
2016-09-15 03:13 - 2005-12-05 18:09 - 03815120 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_28.dll
2016-09-15 03:13 - 2005-12-05 18:09 - 02323664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_28.dll
2016-09-15 03:13 - 2005-07-22 19:59 - 03807440 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_27.dll
2016-09-15 03:13 - 2005-07-22 19:59 - 02319568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_27.dll
2016-09-15 03:13 - 2005-05-26 15:34 - 03767504 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_26.dll
2016-09-15 03:13 - 2005-05-26 15:34 - 02297552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_26.dll
2016-09-15 03:13 - 2005-03-18 17:19 - 03823312 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_25.dll
2016-09-15 03:13 - 2005-03-18 17:19 - 02337488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_25.dll
2016-09-15 03:13 - 2005-02-05 19:45 - 03544272 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_24.dll
2016-09-15 03:13 - 2005-02-05 19:45 - 02222800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_24.dll
2016-09-14 21:03 - 2016-09-14 21:31 - 00000000 ____D C:\Users\Saša\AppData\Roaming\TS3Client
2016-09-14 20:56 - 2016-09-14 20:56 - 00001185 _____ C:\Users\Public\Desktop\TeamSpeak 3 Client.lnk
2016-09-14 20:56 - 2016-09-14 20:56 - 00001147 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamSpeak 3 Client.lnk
2016-09-14 20:56 - 2016-09-14 20:56 - 00000000 ____D C:\Program Files (x86)\TeamSpeak 3 Client
2016-09-14 20:55 - 2016-09-14 20:55 - 29441184 _____ (TeamSpeak Systems GmbH) C:\Users\Saša\Downloads\TeamSpeak3-Client-win32-3.0.19.3 (1).exe
2016-09-14 15:21 - 2016-09-14 15:24 - 922994570 _____ C:\Users\Saša\Downloads\Hra peněz [Money Monster] (2016) CZ dabing.avi
2016-09-14 08:39 - 2016-08-21 01:45 - 07076864 _____ (Microsoft Corporation) C:\WINDOWS\system32\glcndFilter.dll
2016-09-14 08:39 - 2016-08-21 01:05 - 05273600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\glcndFilter.dll
2016-09-14 08:39 - 2016-08-21 00:42 - 07795712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll
2016-09-14 08:39 - 2016-08-21 00:27 - 05268480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll
2016-09-14 08:39 - 2016-08-10 00:47 - 00803176 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleaut32.dll
2016-09-14 08:39 - 2016-08-10 00:47 - 00611576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleaut32.dll
2016-09-14 08:39 - 2016-08-04 16:17 - 00416768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv.sys
2016-09-14 08:39 - 2016-08-03 20:06 - 00675328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys
2016-09-14 08:39 - 2016-08-03 20:05 - 00243712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srvnet.sys
2016-09-14 08:38 - 2016-09-01 05:08 - 20312064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2016-09-14 08:38 - 2016-09-01 04:46 - 00498688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2016-09-14 08:38 - 2016-09-01 04:24 - 00663552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
2016-09-14 08:38 - 2016-09-01 03:39 - 00880128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcomm.dll
2016-09-14 08:38 - 2016-09-01 03:30 - 00692736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll
2016-09-14 08:38 - 2016-09-01 03:27 - 13808128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2016-09-14 08:38 - 2016-09-01 03:24 - 04607488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2016-09-14 08:38 - 2016-09-01 02:45 - 25770496 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2016-09-14 08:38 - 2016-09-01 02:43 - 02445824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2016-09-14 08:38 - 2016-09-01 02:42 - 00710144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll
2016-09-14 08:38 - 2016-09-01 02:38 - 01316352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2016-09-14 08:38 - 2016-09-01 02:24 - 00576000 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2016-09-14 08:38 - 2016-09-01 02:10 - 00817664 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2016-09-14 08:38 - 2016-09-01 02:06 - 06047232 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2016-09-14 08:38 - 2016-09-01 01:38 - 01032704 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcomm.dll
2016-09-14 08:38 - 2016-09-01 01:28 - 00806400 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
2016-09-14 08:38 - 2016-09-01 01:15 - 15411712 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2016-09-14 08:38 - 2016-09-01 01:10 - 02921472 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2016-09-14 08:38 - 2016-09-01 00:58 - 01550848 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2016-09-14 08:38 - 2016-09-01 00:47 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll
2016-09-14 08:38 - 2016-08-26 07:51 - 02894336 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2016-09-14 08:38 - 2016-08-26 06:44 - 02286592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2016-09-14 08:38 - 2016-08-26 06:41 - 02881536 _____ (Microsoft Corporation) C:\WINDOWS\system32\actxprxy.dll
2016-09-14 08:38 - 2016-08-26 06:00 - 01049600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\actxprxy.dll
2016-09-14 08:38 - 2016-08-21 01:22 - 00435200 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll
2016-09-14 08:38 - 2016-08-21 00:50 - 00360448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\schannel.dll
2016-09-14 08:37 - 2016-09-08 23:51 - 00443224 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll
2016-09-14 08:37 - 2016-09-08 23:51 - 00332632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll
2016-09-14 08:37 - 2016-08-22 18:06 - 00179248 _____ (Microsoft Corporation) C:\WINDOWS\system32\sspicli.dll
2016-09-14 08:37 - 2016-08-22 18:06 - 00100184 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecdd.sys
2016-09-14 08:37 - 2016-08-21 03:03 - 00201728 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb20.sys
2016-09-14 08:37 - 2016-08-21 03:01 - 00401408 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys
2016-09-14 08:37 - 2016-08-21 03:01 - 00284672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb10.sys
2016-09-14 08:37 - 2016-08-21 02:17 - 00445440 _____ (Microsoft Corporation) C:\WINDOWS\system32\certcli.dll
2016-09-14 08:37 - 2016-08-21 01:27 - 01445376 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2016-09-14 08:37 - 2016-08-21 01:26 - 00324096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\certcli.dll
2016-09-14 08:37 - 2016-08-21 00:55 - 00104960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sspicli.dll
2016-09-14 08:37 - 2016-08-14 21:34 - 01541248 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll
2016-09-14 08:37 - 2016-08-14 20:25 - 04171264 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2016-09-14 08:37 - 2016-08-14 18:14 - 01376768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll
2016-09-14 08:37 - 2016-08-13 09:41 - 07445848 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2016-09-14 08:37 - 2016-08-13 09:40 - 01737080 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2016-09-14 08:37 - 2016-08-13 09:40 - 01663184 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2016-09-14 08:37 - 2016-08-13 09:40 - 01523208 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2016-09-14 08:37 - 2016-08-13 09:40 - 01490120 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2016-09-14 08:37 - 2016-08-13 09:40 - 01358952 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2016-09-14 08:37 - 2016-08-13 02:04 - 00059392 _____ (Microsoft Corporation) C:\WINDOWS\system32\csrsrv.dll
2016-09-14 08:37 - 2016-08-11 18:26 - 01156608 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanmm.dll
2016-09-14 08:37 - 2016-08-11 18:17 - 00627200 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnidui.dll
2016-09-14 08:37 - 2016-08-11 18:16 - 00455680 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanconn.dll
2016-09-14 08:37 - 2016-07-09 18:10 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpdbusenum.dll
2016-09-14 08:37 - 2016-07-09 00:35 - 00101208 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mountmgr.sys
2016-09-14 08:37 - 2016-07-08 16:17 - 00377344 _____ (Microsoft Corporation) C:\WINDOWS\system32\mprddm.dll
2016-09-14 08:37 - 2016-07-08 16:17 - 00319488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mprddm.dll
2016-09-14 08:37 - 2016-07-08 00:32 - 00095744 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\agilevpn.sys
2016-09-14 08:37 - 2016-07-08 00:18 - 00323072 _____ (Microsoft Corporation) C:\WINDOWS\system32\iprtrmgr.dll
2016-09-14 08:37 - 2016-07-08 00:10 - 00233472 _____ (Microsoft Corporation) C:\WINDOWS\system32\mprdim.dll
2016-09-14 08:37 - 2016-07-08 00:01 - 00272896 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasppp.dll
2016-09-14 08:37 - 2016-07-07 23:04 - 00173568 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasman.dll
2016-09-14 08:37 - 2016-07-07 22:59 - 01080320 _____ (Microsoft Corporation) C:\WINDOWS\system32\IKEEXT.DLL
2016-09-14 08:37 - 2016-07-07 22:44 - 00429568 _____ (Microsoft Corporation) C:\WINDOWS\system32\vpnike.dll
2016-09-14 08:37 - 2016-07-07 22:41 - 00254464 _____ (Microsoft Corporation) C:\WINDOWS\system32\rascustom.dll
2016-09-14 08:37 - 2016-07-07 22:34 - 00542720 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasmans.dll
2016-09-14 08:37 - 2016-07-07 22:29 - 00713216 _____ (Microsoft Corporation) C:\WINDOWS\system32\nshwfp.dll
2016-09-14 08:37 - 2016-07-07 22:29 - 00704512 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasapi32.dll
2016-09-14 08:37 - 2016-07-07 22:23 - 00285184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iprtrmgr.dll
2016-09-14 08:37 - 2016-07-07 22:18 - 00187392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mprdim.dll
2016-09-14 08:37 - 2016-07-07 22:11 - 01661064 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll
2016-09-14 08:37 - 2016-07-07 22:11 - 01212248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ole32.dll
2016-09-14 08:37 - 2016-07-07 22:11 - 00185856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasppp.dll
2016-09-14 08:37 - 2016-07-07 21:35 - 00145920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasman.dll
2016-09-14 08:37 - 2016-07-07 21:14 - 00628736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasapi32.dll
2016-09-14 08:37 - 2016-07-04 07:09 - 00132096 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpudd.dll
2016-09-14 08:37 - 2016-07-04 05:45 - 00360448 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpclip.exe
2016-09-14 08:37 - 2016-07-04 05:37 - 02897920 _____ (Microsoft Corporation) C:\WINDOWS\system32\esent.dll
2016-09-14 08:37 - 2016-07-04 05:33 - 00657920 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsapi.dll
2016-09-14 08:37 - 2016-07-04 05:04 - 02539008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\esent.dll
2016-09-14 08:37 - 2016-07-04 05:02 - 00498688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dnsapi.dll
2016-09-14 08:37 - 2016-07-04 04:19 - 03547136 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll
2016-09-14 08:37 - 2016-07-01 22:39 - 00197352 _____ (Microsoft Corporation) C:\WINDOWS\system32\dssenh.dll
2016-09-14 08:37 - 2016-07-01 22:39 - 00157016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dssenh.dll
2016-09-14 08:37 - 2016-01-10 19:08 - 00252416 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsrslvr.dll
2016-09-11 21:14 - 2016-09-11 21:16 - 29441184 _____ (TeamSpeak Systems GmbH) C:\Users\Saša\Downloads\TeamSpeak3-Client-win32-3.0.19.3.exe
2016-09-11 20:43 - 2016-09-11 20:43 - 00000000 ____D C:\WINDOWS\system32\DVD9
2016-09-11 20:43 - 2016-09-11 20:43 - 00000000 ____D C:\WINDOWS\system32\DVD8
2016-09-11 20:43 - 2016-09-11 20:43 - 00000000 ____D C:\WINDOWS\system32\DVD7
2016-09-11 20:43 - 2016-09-11 20:43 - 00000000 ____D C:\WINDOWS\system32\DVD6
2016-09-11 20:43 - 2016-09-11 20:43 - 00000000 ____D C:\WINDOWS\system32\DVD5
2016-09-11 20:43 - 2016-09-11 20:43 - 00000000 ____D C:\WINDOWS\system32\DVD4
2016-09-11 20:43 - 2016-09-11 20:43 - 00000000 ____D C:\WINDOWS\system32\DVD3
2016-09-11 20:43 - 2016-09-11 20:43 - 00000000 ____D C:\WINDOWS\system32\DVD2
2016-09-11 20:43 - 2016-09-11 20:43 - 00000000 ____D C:\WINDOWS\system32\DVD10
2016-09-11 20:43 - 2016-09-11 20:43 - 00000000 ____D C:\WINDOWS\system32\DVD1
2016-09-11 20:43 - 2016-09-11 20:43 - 00000000 ____D C:\Users\Saša\AppData\Local\Disc_Soft_Ltd
2016-09-11 20:37 - 2016-09-11 20:37 - 00000000 ____D C:\Users\Public\Documents\Daemon Tools Images
2016-09-11 20:36 - 2016-09-11 20:36 - 00047672 _____ (Disc Soft Ltd) C:\WINDOWS\system32\Drivers\dtliteusbbus.sys
2016-09-11 20:34 - 2016-10-03 21:22 - 00000000 ____D C:\Users\Saša\AppData\Roaming\DAEMON Tools Lite
2016-09-11 20:34 - 2016-09-11 20:36 - 00000000 ____D C:\Program Files\DAEMON Tools Lite
2016-09-11 20:34 - 2016-09-11 20:34 - 00030264 _____ (Disc Soft Ltd) C:\WINDOWS\system32\Drivers\dtlitescsibus.sys
2016-09-11 20:34 - 2016-09-11 20:34 - 00001792 _____ C:\Users\Public\Desktop\DAEMON Tools Lite.lnk
2016-09-11 20:34 - 2016-09-11 20:34 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Lite
2016-09-11 20:34 - 2016-09-11 20:34 - 00000000 ____D C:\ProgramData\DAEMON Tools Lite
2016-09-11 20:32 - 2016-09-11 20:32 - 00692072 _____ (Disc Soft Ltd.) C:\Users\Saša\Downloads\DTLiteInstaller.exe
2016-09-11 17:06 - 2016-09-15 01:42 - 00000000 ____D C:\Users\Saša\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2016-09-11 17:02 - 2016-09-11 17:02 - 00000000 ____D C:\Users\Saša\AppData\Local\Steam
2016-09-11 16:54 - 2016-10-07 11:46 - 00000000 ____D C:\Program Files (x86)\Steam
2016-09-11 16:54 - 2016-09-11 16:54 - 01446792 _____ C:\Users\Saša\Downloads\SteamSetup.exe
2016-09-11 16:54 - 2016-09-11 16:54 - 00000986 _____ C:\Users\Public\Desktop\Steam.lnk
2016-09-11 16:54 - 2016-09-11 16:54 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam
2016-09-11 15:51 - 2016-09-14 23:26 - 00000000 ____D C:\Users\Saša\Downloads\Grand Theft Auto V [Repack]
2016-09-11 15:49 - 2016-10-07 11:54 - 00000000 ____D C:\Users\Saša\AppData\Roaming\uTorrent
2016-09-11 15:49 - 2016-09-11 15:49 - 02369536 _____ (BitTorrent Inc.) C:\Users\Saša\Downloads\uTorrent.exe
2016-09-11 15:49 - 2016-09-11 15:49 - 00002687 _____ C:\Users\Saša\Desktop\µTorrent.lnk
2016-09-09 16:50 - 2016-09-09 16:50 - 00002254 _____ C:\Users\Public\Desktop\HP Support Assistant.lnk
2016-09-09 16:49 - 2016-09-09 16:49 - 00000000 ____D C:\Program Files (x86)\HP
2016-09-08 18:33 - 2016-09-08 18:37 - 00073928 _____ C:\WINDOWS\system32\Drivers\fsbts.sys
2016-09-08 18:27 - 2016-10-07 11:55 - 00000000 ____D C:\Users\Saša\AppData\Local\F-Secure
2016-09-08 18:27 - 2016-10-04 09:47 - 00000000 ____D C:\ProgramData\F-Secure
2016-09-08 18:27 - 2016-09-08 18:28 - 00000000 ____D C:\Program Files (x86)\UPC Smart Guard
2016-09-08 18:27 - 2016-09-08 18:27 - 00002095 _____ C:\Users\Public\Desktop\UPC Smart Guard.lnk
2016-09-08 18:27 - 2016-09-08 18:27 - 00000000 ____D C:\WINDOWS\System32\Tasks\F-Secure
2016-09-08 18:27 - 2016-09-08 18:27 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\UPC Smart Guard
2016-09-08 18:26 - 2016-09-08 18:27 - 00857568 _____ (F-Secure Corporation) C:\Users\Saša\Downloads\stub-45329_SMARTGUARD_30_DAYS_TRIAL_.exe
2016-09-08 18:26 - 2016-09-08 18:26 - 00834600 _____ (F-Secure Corporation) C:\Users\Saša\Downloads\stub-45329_SMARTGUARD_30_DAYS_TRIAL_ (1).exe
2016-09-08 12:56 - 2016-09-08 12:57 - 00009728 ___SH C:\Users\Saša\Downloads\Thumbs.db
2016-09-08 12:46 - 2016-09-08 12:48 - 880174146 _____ C:\Users\Saša\Downloads\Teorie tygra (2016,cz,český film)ddd.avi
2016-09-07 11:10 - 2016-09-07 11:14 - 1490078432 _____ C:\Users\Saša\Downloads\Než jsem tě poznala (2016) - CZ-TITULKY NOVINKA.avi
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2016-10-07 11:55 - 2016-08-14 11:47 - 00000000 ____D C:\Users\Saša\AppData\Roaming\Skype
2016-10-07 11:43 - 2016-08-14 02:15 - 00000988 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2016-10-07 11:43 - 2016-08-14 02:09 - 00000000 __SHD C:\Users\Saša\IntelGraphicsProfiles
2016-10-07 11:41 - 2013-08-22 16:45 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2016-10-07 11:28 - 2016-08-14 02:14 - 00003954 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{1EE9E301-5EAA-446B-A057-6C17AFD21CEC}
2016-10-05 04:07 - 2016-08-14 02:15 - 00003600 _____ C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-3091623106-1469607821-2556767161-1002
2016-10-04 21:12 - 2016-08-23 14:46 - 00000000 ____D C:\Users\Saša\Documents\My Games
2016-10-04 02:09 - 2016-08-14 02:15 - 00002222 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2016-10-04 02:09 - 2016-08-14 02:15 - 00002210 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2016-10-03 18:16 - 2016-08-26 01:59 - 00003152 _____ C:\WINDOWS\System32\Tasks\HPCeeScheduleForSaša
2016-10-03 18:16 - 2016-08-26 01:59 - 00000340 _____ C:\WINDOWS\Tasks\HPCeeScheduleForSaša.job
2016-09-28 19:00 - 2013-08-22 15:36 - 00000000 ____D C:\WINDOWS\Inf
2016-09-25 19:10 - 2016-08-14 16:17 - 00000000 ____D C:\Users\Saša\Desktop\Nová složka
2016-09-24 15:42 - 2013-08-22 15:25 - 00262144 ___SH C:\WINDOWS\system32\config\BBI
2016-09-24 12:46 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\rescache
2016-09-23 12:58 - 2013-08-22 17:20 - 00000000 ____D C:\WINDOWS\CbsTemp
2016-09-19 10:20 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\AppReadiness
2016-09-16 20:44 - 2016-08-14 02:09 - 00000000 ____D C:\Users\Saša
2016-09-16 20:23 - 2015-01-23 20:29 - 00725470 _____ C:\WINDOWS\system32\perfh005.dat
2016-09-16 20:23 - 2015-01-23 20:29 - 00167260 _____ C:\WINDOWS\system32\perfc005.dat
2016-09-16 20:23 - 2014-03-18 17:32 - 01748794 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2016-09-15 14:28 - 2015-01-23 12:54 - 00002990 _____ C:\WINDOWS\System32\Tasks\Synaptics TouchPad Enhancements
2016-09-15 14:27 - 2014-10-31 03:19 - 00753320 _____ (Synaptics Incorporated) C:\WINDOWS\system32\SynCOM.dll
2016-09-15 14:27 - 2014-09-27 02:16 - 00000000 ____D C:\SWSETUP
2016-09-15 14:26 - 2014-12-13 00:40 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel
2016-09-15 14:26 - 2014-12-13 00:40 - 00000000 ____D C:\Program Files\Intel
2016-09-15 14:21 - 2014-10-28 12:49 - 00393320 _____ C:\WINDOWS\system32\igfxTray.exe
2016-09-15 14:21 - 2014-10-28 12:49 - 00344168 _____ (Intel Corporation) C:\WINDOWS\system32\igfxCUIService.exe
2016-09-15 14:21 - 2014-10-28 12:49 - 00313448 _____ (Intel Corporation) C:\WINDOWS\system32\igfxEM.exe
2016-09-15 14:21 - 2014-10-28 12:49 - 00248424 _____ (Intel Corporation) C:\WINDOWS\system32\igfxHK.exe
2016-09-15 14:21 - 2014-10-28 12:46 - 24849272 _____ (Intel Corporation) C:\WINDOWS\system32\igdumdim64.dll
2016-09-15 14:21 - 2014-10-28 12:46 - 24050504 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdumdim32.dll
2016-09-15 14:21 - 2014-10-28 12:46 - 09480608 _____ (Intel Corporation) C:\WINDOWS\system32\igd10iumd64.dll
2016-09-15 14:21 - 2014-10-28 12:46 - 08683376 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igd10iumd32.dll
2016-09-15 14:21 - 2014-10-28 12:46 - 06189800 _____ (Intel Corporation) C:\WINDOWS\system32\igdusc64.dll
2016-09-15 14:21 - 2014-10-28 12:46 - 04876008 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdusc32.dll
2016-09-15 14:21 - 2014-10-28 12:36 - 02039808 _____ (Intel Corporation) C:\WINDOWS\system32\igfxLHM.dll
2016-09-15 14:21 - 2014-10-28 12:36 - 00699392 _____ (Intel Corporation) C:\WINDOWS\system32\igfxDH.dll
2016-09-15 14:21 - 2014-10-28 12:36 - 00286720 _____ (Intel Corporation) C:\WINDOWS\system32\igfxDI.dll
2016-09-15 14:21 - 2014-10-28 12:36 - 00231424 _____ (Intel Corporation) C:\WINDOWS\system32\igfxDTCM.dll
2016-09-15 14:16 - 2015-01-23 13:19 - 00000000 ____D C:\Program Files (x86)\ATI Technologies
2016-09-15 14:09 - 2015-01-23 12:54 - 00000000 ____D C:\Program Files\AMD
2016-09-15 14:08 - 2014-11-08 03:45 - 01476576 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\aticfx64.dll
2016-09-15 14:08 - 2014-11-08 01:53 - 00452616 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atidemgy.dll
2016-09-15 14:08 - 2014-11-08 01:24 - 01254424 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atiadlxx.dll
2016-09-14 15:17 - 2013-08-22 16:44 - 00346512 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2016-09-14 09:57 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\SysWOW64\setup
2016-09-14 09:57 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\setup
2016-09-14 09:01 - 2013-08-22 17:36 - 00000000 ___HD C:\Program Files\WindowsApps
2016-09-14 08:56 - 2016-08-24 08:04 - 00000000 ____D C:\WINDOWS\system32\MRT
2016-09-14 08:50 - 2016-08-24 08:04 - 144199024 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2016-09-14 08:28 - 2016-08-14 11:47 - 00000000 ___RD C:\Program Files (x86)\Skype
2016-09-14 08:28 - 2016-08-14 11:46 - 00000000 ____D C:\ProgramData\Skype
2016-09-10 08:59 - 2014-12-13 00:40 - 00000000 ____D C:\WINDOWS\System32\Tasks\Hewlett-Packard
2016-09-10 08:59 - 2014-12-13 00:39 - 00000000 ____D C:\ProgramData\Hewlett-Packard
2016-09-09 16:50 - 2016-08-14 02:10 - 00000000 ____D C:\Users\Saša\AppData\Roaming\hpqLog
2016-09-09 16:50 - 2014-12-13 00:40 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP Help and Support
2016-09-09 16:50 - 2014-12-13 00:40 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2016-09-09 16:50 - 2014-12-13 00:38 - 00000000 ____D C:\Program Files (x86)\Hewlett-Packard
2016-09-08 03:29 - 2016-08-23 14:46 - 00000000 ____D C:\WarThunder
2016-09-07 03:11 - 2016-08-25 00:42 - 00828408 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2016-09-07 03:11 - 2016-08-25 00:42 - 00176632 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
==================== Files in the root of some directories =======
2015-01-23 13:11 - 2015-01-23 13:12 - 8935034 _____ () C:\ProgramData\hpcsmmsilogs.log
2015-01-23 13:27 - 2015-01-23 13:27 - 1266048 _____ () C:\ProgramData\hpdam_install_log.txt
2015-01-23 13:27 - 2015-01-23 13:27 - 0574176 _____ () C:\ProgramData\HPFileSanitizer_Install_Log.txt
Some files in TEMP:
====================
C:\Users\Saša\AppData\Local\Temp\BSvcProcessor.exe
C:\Users\Saša\AppData\Local\Temp\BSvcUpdater.exe
C:\Users\Saša\AppData\Local\Temp\HPSFUpdater.exe
C:\Users\Saša\AppData\Local\Temp\UninstallHPSA.exe
==================== Bamital & volsnap ======================
(There is no automatic fix for files that do not pass verification.)
C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\wininit.exe => File is digitally signed
C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\SysWOW64\explorer.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\SysWOW64\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\SysWOW64\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\SysWOW64\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
C:\WINDOWS\SysWOW64\dnsapi.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2016-10-03 21:40
==================== End of FRST.txt ============================