Prosím o kontrolu Vyřešeno

Místo pro vaše HiJackThis logy a logy z dalších programů…

Moderátoři: memphisto, Mods_senior, Security team

cunik.cz
Level 3
Level 3
Příspěvky: 463
Registrován: leden 18
Pohlaví: Muž

Re: Prosím o kontrolu

Příspěvekod cunik.cz » 22 bře 2018 15:37

========== Standard Registry (All) ==========


========== Internet Explorer ==========

IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = [binary data]
IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:NoAdd-ons
IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\System32\blank.htm
IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:SecurityRisk
IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
IE:64bit: - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE:64bit: - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = [binary data]
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:NoAdd-ons
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:SecurityRisk
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC

IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %11%\blank.htm
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page_TIMESTAMP = 8E 09 A1 A7 B2 8C D3 01 [binary data]
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,SyncHomePage Protected - It is a violation of Windows Policy to modify. See aka.ms/browserpolicy = Reg Error: Value error.
IE - HKCU\..\URLSearchHook: {CFBFAE00-17A6-11D0-99CB-00C04FD64497} - C:\Windows\SysWOW64\ieframe.dll (Microsoft Corporation)
IE - HKCU\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKCU\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IESR02
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

========== FireFox ==========

FF - prefs.js..browser.search.countryCode: "CZ"
FF - prefs.js..browser.search.region: "CZ"
FF - user.js - File not found

FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)

64bit-FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 58.0.2\extensions\\Components: C:\PROGRAM FILES\MOZILLA FIREFOX\COMPONENTS
64bit-FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 58.0.2\extensions\\Plugins: C:\PROGRAM FILES\MOZILLA FIREFOX\PLUGINS
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{F003DA68-8256-4b37-A6C4-350FA04494DF}: C:\Program Files\Logitech\SetPointP\LogiSmoothFirefoxExt [2018.02.20 19:39:23 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Thunderbird 52.6.0\extensions\\Components: C:\Program Files (x86)\Mozilla Thunderbird\components
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Thunderbird 52.6.0\extensions\\Plugins: C:\Program Files (x86)\Mozilla Thunderbird\plugins

[2018.01.12 16:46:53 | 000,000,000 | ---D | M] (No name found) -- C:\Users\cunik.cz\AppData\Roaming\Mozilla\Extensions
[2018.02.20 18:08:38 | 000,000,000 | ---D | M] (No name found) -- C:\Users\cunik.cz\AppData\Roaming\Mozilla\SystemExtensionsDev
[2018.02.27 20:17:49 | 000,000,000 | ---D | M] (No name found) -- C:\Users\cunik.cz\AppData\Roaming\Mozilla\Firefox\Profiles\4hjjs5qz.default\browser-extension-data
[2018.03.02 22:26:51 | 000,000,000 | ---D | M] (No name found) -- C:\Users\cunik.cz\AppData\Roaming\Mozilla\Firefox\Profiles\4hjjs5qz.default\browser-extension-data\{a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7}
[2018.03.02 22:26:19 | 000,000,000 | ---D | M] (No name found) -- C:\Users\cunik.cz\AppData\Roaming\Mozilla\Firefox\Profiles\4hjjs5qz.default\browser-extension-data\jid1-NIfFY2CA8fy1tg@jetpack
[2018.03.15 21:42:48 | 000,000,000 | ---D | M] (No name found) -- C:\Users\cunik.cz\AppData\Roaming\Mozilla\Firefox\Profiles\4hjjs5qz.default\extensions

========== Chrome ==========

CHR - Extension: No name found = C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\bhmmomiinigofkjcapegjjndpbikblnp\4.0.6.5_0\
CHR - Extension: No name found = C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi\1.4_0\
CHR - Extension: No name found = C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\3.27.0_0\
CHR - Extension: No name found = C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.3_1\
CHR - Extension: No name found = C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\6518.129.0.1_0\

O1 HOSTS File: ([2018.03.04 21:15:51 | 000,000,876 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O2:64bit: - BHO: (ExplorerWnd Helper) - {10921475-03CE-4E04-90CE-E2E7EF20C814} - C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallExplorer.dll (IObit)
O2:64bit: - BHO: (Logitech SetPoint) - {AF949550-9094-4807-95EC-D1C317803333} - C:\Program Files\Logitech\SetPointP\SetPointSmooth.dll (Logitech, Inc.)
O2 - BHO: (Logitech SetPoint) - {AF949550-9094-4807-95EC-D1C317803333} - C:\Program Files\Logitech\SetPointP\32-bit\SetPointSmooth.dll (Logitech, Inc.)
O4:64bit: - HKLM..\Run: [egui] C:\Program Files\ESET\ESET Security\ecmds.exe (ESET)
O4:64bit: - HKLM..\Run: [EvtMgr6] C:\Program Files\Logitech\SetPointP\SetPoint.exe (Logitech, Inc.)
O4:64bit: - HKLM..\Run: [Logitech Download Assistant] C:\WINDOWS\SysNative\LogiLDA.dll (Logitech, Inc.)
O4:64bit: - HKLM..\Run: [RTHDVCPL] C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe (Realtek Semiconductor)
O4:64bit: - HKLM..\Run: [SecurityHealth] C:\Program Files\Windows Defender\MSASCuiL.exe (Microsoft Corporation)
O4 - HKCU..\Run: [CCleaner Monitoring] C:\Program Files\CCleaner\CCleaner64.exe (Piriform Ltd)
O4 - HKCU..\Run: [DAEMON Tools Lite Automount] E:\DAEMON Tools Lite\DTAgent.exe (Disc Soft Ltd)
O4 - HKCU..\Run: [HP Deskjet 3510 series (NET)] C:\Program Files\HP\HP Deskjet 3510 series\Bin\ScanToPCActivationApp.exe (Hewlett-Packard Co.)
O4 - HKCU..\Run: [OneDrive] C:\Users\cunik.cz\AppData\Local\Microsoft\OneDrive\OneDrive.exe (Microsoft Corporation)
O4 - HKCU..\Run: [SandboxieControl] E:\Sandboxie\SbieCtrl.exe (Sandboxie Holdings, LLC)
O4 - HKCU..\Run: [Skype] C:\Program Files (x86)\Skype\Phone\Skype.exe (Skype Technologies S.A.)
O4 - HKCU..\Run: [Steam] E:\Steam\steam.exe (Valve Corporation)
O4 - HKCU..\Run: [SUPERAntiSpyware] E:\SuperAntiSpyware\SUPERAntiSpyware.exe (SUPERAntiSpyware)
O4 - Startup: C:\Users\cunik.cz\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Mozilla Thunderbird.lnk = C:\Program Files (x86)\Mozilla Thunderbird\thunderbird.exe (Mozilla Corporation)
O4 - Startup: C:\Users\cunik.cz\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\procexp.exe (Sysinternals - www.sysinternals.com)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: ForceActiveDesktopOn = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoRecentDocsHistory = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DSCAutomationHostEnabled = 2
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableCursorSuppression = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableFullTrustStartupTasks = 2
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableInstallerDetection = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableSecureUIAPaths = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableUIADesktopToggle = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableUwpStartupTasks = 2
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableVirtualization = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: SupportFullTrustStartupTasks = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: SupportUwpStartupTasks = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ValidateAdminCodeSignatures = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: undockwithoutlogon = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_BITMAP = 2
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_DIB = 8
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_DIBV5 = 17
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_OEMTEXT = 7
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_PALETTE = 9
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_TEXT = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_UNICODETEXT = 13
O10:64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000001 [] - C:\Windows\SysNative\NapiNSP.dll (Microsoft Corporation)
O10:64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000002 [] - C:\Windows\SysNative\pnrpnsp.dll (Microsoft Corporation)
O10:64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000003 [] - C:\Windows\SysNative\pnrpnsp.dll (Microsoft Corporation)
O10:64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000004 [] - C:\Windows\SysNative\nlaapi.dll (Microsoft Corporation)
O10:64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000005 [] - C:\Windows\SysNative\mswsock.dll (Microsoft Corporation)
O10:64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000006 [] - C:\Windows\SysNative\winrnr.dll (Microsoft Corporation)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000001 - C:\Windows\SysNative\mswsock.dll (Microsoft Corporation)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000002 - C:\Windows\SysNative\mswsock.dll (Microsoft Corporation)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000003 - C:\Windows\SysNative\mswsock.dll (Microsoft Corporation)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000004 - C:\Windows\SysNative\mswsock.dll (Microsoft Corporation)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000005 - C:\Windows\SysNative\mswsock.dll (Microsoft Corporation)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000006 - C:\Windows\SysNative\mswsock.dll (Microsoft Corporation)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000007 - C:\Windows\SysNative\mswsock.dll (Microsoft Corporation)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000008 - C:\Windows\SysNative\mswsock.dll (Microsoft Corporation)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000009 - C:\Windows\SysNative\mswsock.dll (Microsoft Corporation)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000010 - C:\Windows\SysNative\mswsock.dll (Microsoft Corporation)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000011 - C:\Windows\SysNative\mswsock.dll (Microsoft Corporation)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000012 - C:\Windows\SysNative\mswsock.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000001 [] - C:\Windows\SysWOW64\NapiNSP.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000002 [] - C:\Windows\SysWOW64\pnrpnsp.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000003 [] - C:\Windows\SysWOW64\pnrpnsp.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [] - C:\Windows\SysWOW64\nlaapi.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000005 [] - C:\Windows\SysWOW64\mswsock.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000006 [] - C:\Windows\SysWOW64\winrnr.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000001 - C:\Windows\SysWOW64\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000002 - C:\Windows\SysWOW64\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000003 - C:\Windows\SysWOW64\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000004 - C:\Windows\SysWOW64\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000005 - C:\Windows\SysWOW64\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000006 - C:\Windows\SysWOW64\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000007 - C:\Windows\SysWOW64\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000008 - C:\Windows\SysWOW64\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000009 - C:\Windows\SysWOW64\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000010 - C:\Windows\SysWOW64\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000011 - C:\Windows\SysWOW64\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000012 - C:\Windows\SysWOW64\mswsock.dll (Microsoft Corporation)
O1364bit: - gopher Prefix: missing
O13 - gopher Prefix: missing
O15:64bit: - ..Trusted Domains: eset.com ([help] http in Trusted sites)
O15 - HKLM\..Trusted Domains: eset.com ([help] http in Trusted sites)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 213.46.172.37 213.46.172.36
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{7d795e18-84d7-4198-acfa-15722a9516dc}: DhcpNameServer = 213.46.172.37 213.46.172.36
O18:64bit: - Protocol\Handler\about {3050F406-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysNative\mshtml.dll (Microsoft Corporation)
O18:64bit: - Protocol\Handler\cdl {3dd53d40-7b8b-11D0-b013-00aa0059ce02} - C:\Windows\SysNative\urlmon.dll (Microsoft Corporation)
O18:64bit: - Protocol\Handler\dvd {12D51199-0DB5-46FE-A120-47A3D7D937CC} - C:\Windows\SysNative\MSVidCtl.dll (Microsoft Corporation)
O18:64bit: - Protocol\Handler\file {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysNative\urlmon.dll (Microsoft Corporation)
O18:64bit: - Protocol\Handler\ftp {79eac9e3-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysNative\urlmon.dll (Microsoft Corporation)
O18:64bit: - Protocol\Handler\http {79eac9e2-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysNative\urlmon.dll (Microsoft Corporation)
O18:64bit: - Protocol\Handler\https {79eac9e5-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysNative\urlmon.dll (Microsoft Corporation)
O18:64bit: - Protocol\Handler\its {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\Windows\SysNative\itss.dll (Microsoft Corporation)
O18:64bit: - Protocol\Handler\javascript {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysNative\mshtml.dll (Microsoft Corporation)
O18:64bit: - Protocol\Handler\local {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysNative\urlmon.dll (Microsoft Corporation)
O18:64bit: - Protocol\Handler\mailto {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysNative\mshtml.dll (Microsoft Corporation)
O18:64bit: - Protocol\Handler\mhtml {05300401-BCBC-11d0-85E3-00C04FD85AB4} - C:\Windows\SysNative\inetcomm.dll (Microsoft Corporation)
O18:64bit: - Protocol\Handler\mk {79eac9e6-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysNative\urlmon.dll (Microsoft Corporation)
O18:64bit: - Protocol\Handler\ms-its {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\Windows\SysNative\itss.dll (Microsoft Corporation)
O18:64bit: - Protocol\Handler\res {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysNative\mshtml.dll (Microsoft Corporation)
O18:64bit: - Protocol\Handler\tbauth {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysNative\tbauth.dll (Microsoft Corporation)
O18:64bit: - Protocol\Handler\tv {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} - C:\Windows\SysNative\MSVidCtl.dll (Microsoft Corporation)
O18:64bit: - Protocol\Handler\vbscript {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysNative\mshtml.dll (Microsoft Corporation)
O18:64bit: - Protocol\Handler\windows.tbauth {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysNative\tbauth.dll (Microsoft Corporation)
O18 - Protocol\Handler\about {3050F406-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysWOW64\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\cdl {3dd53d40-7b8b-11D0-b013-00aa0059ce02} - C:\Windows\SysWOW64\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\dvd {12D51199-0DB5-46FE-A120-47A3D7D937CC} - C:\Windows\SysWOW64\MSVidCtl.dll (Microsoft Corporation)
O18 - Protocol\Handler\file {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysWOW64\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\ftp {79eac9e3-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysWOW64\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\http {79eac9e2-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysWOW64\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\https {79eac9e5-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysWOW64\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\its {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\Windows\SysWOW64\itss.dll (Microsoft Corporation)
O18 - Protocol\Handler\javascript {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysWOW64\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\local {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysWOW64\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\mailto {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysWOW64\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\mhtml {05300401-BCBC-11d0-85E3-00C04FD85AB4} - C:\Windows\SysWOW64\inetcomm.dll (Microsoft Corporation)
O18 - Protocol\Handler\mk {79eac9e6-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysWOW64\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\ms-its {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\Windows\SysWOW64\itss.dll (Microsoft Corporation)
O18 - Protocol\Handler\res {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysWOW64\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\tbauth {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll (Microsoft Corporation)
O18 - Protocol\Handler\tv {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} - C:\Windows\SysWOW64\MSVidCtl.dll (Microsoft Corporation)
O18 - Protocol\Handler\vbscript {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysWOW64\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\windows.tbauth {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: Shell - (explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: UserInit - (C:\WINDOWS\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\WINDOWS\SysNative\SystemPropertiesPerformance.exe (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\WINDOWS\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\WINDOWS\system32\userinit.exe) - C:\Windows\SysWOW64\userinit.exe (Microsoft Corporation)
O20:64bit: - Winlogon\Notify\LBTWlgn: DllName - (c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll) - c:\Program Files\Common Files\logishrd\Bluetooth\LBTWLgn.dll (Logitech, Inc.)
O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O29:64bit: - HKLM SecurityProviders - (credssp.dll) - C:\WINDOWS\SysWow64\credssp.dll (Microsoft Corporation)
O29 - HKLM SecurityProviders - (credssp.dll) - C:\WINDOWS\SysWow64\credssp.dll (Microsoft Corporation)
O30:64bit: - LSA: Authentication Packages - (msv1_0) - C:\WINDOWS\SysNative\msv1_0.dll (Microsoft Corporation)
O30 - LSA: Authentication Packages - (msv1_0) - C:\WINDOWS\SysWow64\msv1_0.dll (Microsoft Corporation)
O31 - SafeBoot: AlternateShell - cmd.exe
O32 - HKLM CDRom: AutoRun - 1
O34 - HKLM BootExecute: (autocheck autochk *)
O34 - HKLM BootExecute: (MACHINE BootExecut)
O35:64bit: - HKLM\..comfile [open] -- "%1" %*
O35:64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:64bit: - HKLM\...com [@ = comfile] -- "%1" %*
O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)

========== Files/Folders - Created Within 30 Days ==========

[2018.03.21 18:21:03 | 000,255,928 | ---- | C] (Malwarebytes) -- C:\WINDOWS\SysNative\drivers\2F53D671.sys
[2018.03.21 15:56:24 | 000,255,928 | ---- | C] (Malwarebytes) -- C:\WINDOWS\SysNative\drivers\5474B12C.sys
[2018.03.20 19:42:03 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\VulkanRT
[2018.03.20 19:39:55 | 019,854,816 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\nvopencl.dll
[2018.03.20 19:39:55 | 016,496,072 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\SysWow64\nvopencl.dll
[2018.03.20 19:39:55 | 013,571,008 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\nvptxJitCompiler.dll
[2018.03.20 19:39:55 | 011,131,872 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\SysWow64\nvptxJitCompiler.dll
[2018.03.20 19:39:54 | 040,278,616 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\nvcompiler.dll
[2018.03.20 19:39:54 | 035,189,336 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\SysWow64\nvcompiler.dll
[2018.03.20 19:39:54 | 012,966,216 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\nvcuda.dll
[2018.03.20 19:39:54 | 011,000,296 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\SysWow64\nvcuda.dll
[2018.03.20 19:39:54 | 004,318,464 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\nvcuvid.dll
[2018.03.20 19:39:54 | 003,719,200 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\SysWow64\nvcuvid.dll
[2018.03.20 19:39:54 | 001,985,280 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\nvdispco6439124.dll
[2018.03.20 19:39:54 | 001,684,000 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\nvdispgenco6439124.dll
[2018.03.20 19:39:54 | 001,355,408 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\nvEncMFThevc.dll
[2018.03.20 19:39:54 | 001,346,128 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\nvEncMFTH264.dll
[2018.03.20 19:39:54 | 001,153,568 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\nvfatbinaryLoader.dll
[2018.03.20 19:39:54 | 001,138,432 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\NvFBC64.dll
[2018.03.20 19:39:54 | 001,067,368 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\SysWow64\nvEncMFThevc.dll
[2018.03.20 19:39:54 | 001,066,072 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\SysWow64\NvFBC.dll
[2018.03.20 19:39:54 | 001,061,168 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\SysWow64\nvEncMFTH264.dll
[2018.03.20 19:39:54 | 000,997,280 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\NvIFR64.dll
[2018.03.20 19:39:54 | 000,949,176 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\SysWow64\NvIFR.dll
[2018.03.20 19:39:54 | 000,902,096 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\SysWow64\nvfatbinaryLoader.dll
[2018.03.20 19:39:54 | 000,811,992 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\nvEncodeAPI64.dll
[2018.03.20 19:39:54 | 000,748,960 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\nvDecMFTMjpeg.dll
[2018.03.20 19:39:54 | 000,650,232 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\SysWow64\nvEncodeAPI.dll
[2018.03.20 19:39:54 | 000,633,224 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\nvmcumd.dll
[2018.03.20 19:39:54 | 000,625,592 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\NvIFROpenGL.dll
[2018.03.20 19:39:54 | 000,608,344 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\SysWow64\nvDecMFTMjpeg.dll
[2018.03.20 19:39:54 | 000,515,672 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\SysWow64\NvIFROpenGL.dll
[2018.03.19 22:00:41 | 000,255,928 | ---- | C] (Malwarebytes) -- C:\WINDOWS\SysNative\drivers\7725C409.sys
[2018.03.18 20:20:51 | 002,724,512 | ---- | C] (Sysinternals - www.sysinternals.com) -- C:\Users\cunik.cz\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\procexp.exe
[2018.03.16 19:23:19 | 000,000,000 | ---D | C] -- C:\Users\cunik.cz\Desktop\knížky
[2018.03.16 16:15:59 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sandboxie
[2018.03.15 22:14:35 | 000,255,928 | ---- | C] (Malwarebytes) -- C:\WINDOWS\SysNative\drivers\7355F5E8.sys
[2018.03.15 18:09:41 | 000,000,000 | ---D | C] -- C:\Program Files\CCleaner
[2018.03.14 20:56:05 | 000,000,000 | ---D | C] -- C:\Users\cunik.cz\AppData\Local\ashampoo
[2018.03.14 20:55:47 | 000,000,000 | ---D | C] -- C:\ProgramData\Ashampoo
[2018.03.14 20:41:09 | 007,384,576 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Media.Protection.PlayReady.dll
[2018.03.14 20:41:09 | 000,369,152 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\msIso.dll
[2018.03.14 20:41:09 | 000,344,576 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\edgeIso.dll
[2018.03.14 20:41:09 | 000,162,304 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\IndexedDbLegacy.dll
[2018.03.14 20:41:09 | 000,155,648 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\EdgeManager.dll
[2018.03.14 20:41:09 | 000,075,168 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SecurityHealthProxyStub.dll
[2018.03.14 20:41:09 | 000,065,536 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\usoapi.dll
[2018.03.14 20:41:08 | 018,922,496 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\edgehtml.dll
[2018.03.14 20:41:08 | 006,480,616 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Media.Protection.PlayReady.dll
[2018.03.14 20:41:08 | 000,471,552 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\AcSpecfc.dll
[2018.03.14 20:41:08 | 000,459,776 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\webplatstorageserver.dll
[2018.03.14 20:41:07 | 000,665,088 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\jscript.dll
[2018.03.14 20:41:07 | 000,559,104 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\jscript9diag.dll
[2018.03.14 20:41:07 | 000,408,984 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\dxgmms1.sys
[2018.03.14 20:41:06 | 002,902,528 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\win32kfull.sys
[2018.03.14 20:41:06 | 000,749,976 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\dxgmms2.sys
[2018.03.14 20:41:06 | 000,368,128 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\daxexec.dll
[2018.03.14 20:41:06 | 000,147,872 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\wcifs.sys
[2018.03.14 20:41:06 | 000,093,600 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\rdpudd.dll
[2018.03.14 20:41:06 | 000,034,816 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\BasicRender.sys
[2018.03.14 20:41:05 | 006,575,616 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Data.Pdf.dll
[2018.03.14 20:41:05 | 006,092,152 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\windows.storage.dll
[2018.03.14 20:41:05 | 006,030,336 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Chakra.dll
[2018.03.14 20:41:05 | 004,839,424 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\dbgeng.dll
[2018.03.14 20:41:05 | 004,745,728 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\jscript9.dll
[2018.03.14 20:41:05 | 000,899,584 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\samsrv.dll
[2018.03.14 20:41:05 | 000,666,624 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\DbgModel.dll
[2018.03.14 20:41:05 | 000,594,944 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\vbscript.dll
[2018.03.14 20:41:04 | 003,664,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\win32kfull.sys
[2018.03.14 20:41:04 | 002,084,352 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\win32kbase.sys
[2018.03.14 20:41:04 | 000,536,576 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\edgeIso.dll
[2018.03.14 20:41:04 | 000,066,048 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\winsrv.dll
[2018.03.14 20:41:04 | 000,050,176 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\pcalua.exe
[2018.03.14 20:41:03 | 008,602,520 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ntoskrnl.exe
[2018.03.14 20:41:03 | 008,103,936 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Chakra.dll
[2018.03.14 20:41:03 | 001,173,576 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\rpcrt4.dll
[2018.03.14 20:41:03 | 000,708,096 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\jscript9diag.dll
[2018.03.14 20:41:02 | 008,030,720 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Data.Pdf.dll
[2018.03.14 20:41:02 | 007,675,784 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\windows.storage.dll
[2018.03.14 20:41:02 | 005,833,216 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dbgeng.dll
[2018.03.14 20:41:02 | 002,035,712 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\rdpcorets.dll
[2018.03.14 20:41:02 | 001,548,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\lsasrv.dll
[2018.03.14 20:41:02 | 000,812,032 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\jscript.dll
[2018.03.14 20:41:02 | 000,356,952 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wintrust.dll
[2018.03.14 20:41:01 | 007,831,760 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\d3d10warp.dll
[2018.03.14 20:41:01 | 002,514,936 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\KernelBase.dll
[2018.03.14 20:41:01 | 002,003,352 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\aitstatic.exe
[2018.03.14 20:41:01 | 000,770,048 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\WdiWiFi.sys
[2018.03.14 20:41:01 | 000,431,616 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\msIso.dll
[2018.03.14 20:41:01 | 000,056,320 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AcSpecfc.dll
[2018.03.14 20:40:59 | 025,251,840 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\edgehtml.dll
[2018.03.14 20:40:58 | 000,461,720 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dcntel.dll
[2018.03.14 20:40:58 | 000,389,536 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\invagent.dll
[2018.03.14 20:40:58 | 000,273,304 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\aepic.dll
[2018.03.14 20:40:58 | 000,213,400 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\aepic.dll
[2018.03.14 20:40:58 | 000,138,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\CompatTelRunner.exe
[2018.03.14 20:40:58 | 000,070,040 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\win32appinventorycsp.dll
[2018.03.14 20:40:58 | 000,035,224 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\DeviceCensus.exe
[2018.03.14 20:40:57 | 005,195,776 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\cdp.dll
[2018.03.14 20:40:57 | 003,181,568 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\cdp.dll
[2018.03.14 20:40:57 | 002,222,592 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wlidsvc.dll
[2018.03.14 20:40:57 | 001,568,664 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\appraiser.dll
[2018.03.14 20:40:57 | 001,296,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\usocore.dll
[2018.03.14 20:40:57 | 000,956,416 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Spectrum.exe
[2018.03.14 20:40:57 | 000,863,232 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MusUpdateHandlers.dll
[2018.03.14 20:40:57 | 000,749,464 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\generaltel.dll
[2018.03.14 20:40:57 | 000,675,328 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\webplatstorageserver.dll
[2018.03.14 20:40:57 | 000,664,472 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\aeinv.dll
[2018.03.14 20:40:57 | 000,609,176 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\devinv.dll
[2018.03.14 20:40:57 | 000,579,584 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Payments.dll
[2018.03.14 20:40:57 | 000,526,336 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\daxexec.dll
[2018.03.14 20:40:57 | 000,519,152 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SecurityHealthService.exe
[2018.03.14 20:40:57 | 000,496,128 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\updatehandlers.dll
[2018.03.14 20:40:57 | 000,405,504 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Payments.dll
[2018.03.14 20:40:57 | 000,399,872 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MusNotification.exe
[2018.03.14 20:40:57 | 000,386,560 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\zipfldr.dll
[2018.03.14 20:40:57 | 000,270,744 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\acmigration.dll
[2018.03.14 20:40:57 | 000,246,272 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MusNotificationUx.exe
[2018.03.14 20:40:57 | 000,201,728 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\EdgeManager.dll
[2018.03.14 20:40:57 | 000,189,344 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SecurityHealthAgent.dll
[2018.03.14 20:40:57 | 000,107,520 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\musdialoghandlers.dll
[2018.03.14 20:40:57 | 000,092,160 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\usoapi.dll
[2018.03.14 20:40:56 | 005,105,664 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\AuthFWSnapin.dll
[2018.03.14 20:40:56 | 005,105,664 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AuthFWSnapin.dll
[2018.03.14 20:40:56 | 004,050,432 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\msi.dll
[2018.03.14 20:40:56 | 000,568,320 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\msra.exe
[2018.03.14 20:40:56 | 000,484,352 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\cdpusersvc.dll
[2018.03.14 20:40:56 | 000,301,056 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MicrosoftAccountWAMExtension.dll
[2018.03.14 20:40:56 | 000,264,040 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MusNotifyIcon.exe
[2018.03.14 20:40:56 | 000,250,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\offlinesam.dll
[2018.03.14 20:40:56 | 000,221,592 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\offlinesam.dll
[2018.03.14 20:40:56 | 000,220,672 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MicrosoftAccountWAMExtension.dll
[2018.03.14 20:40:56 | 000,128,928 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\offlinelsa.dll
[2018.03.14 20:40:56 | 000,115,096 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\offlinelsa.dll
[2018.03.14 20:40:56 | 000,097,792 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\updatecsp.dll
[2018.03.14 20:40:55 | 000,640,000 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\HeadTrackerStorage.dll
[2018.03.14 20:40:55 | 000,206,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\IndexedDbLegacy.dll
[2018.03.14 20:40:55 | 000,128,000 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\racpldlg.dll
[2018.03.14 20:40:55 | 000,075,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\wcnfs.sys
[2018.03.14 20:40:55 | 000,039,424 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\UsoClient.exe
[2018.03.14 20:40:55 | 000,030,208 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\msisip.dll
[2018.03.14 20:40:55 | 000,026,624 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\msisip.dll
[2018.03.14 19:40:28 | 000,255,928 | ---- | C] (Malwarebytes) -- C:\WINDOWS\SysNative\drivers\317502D9.sys
[2018.03.14 19:15:19 | 000,255,928 | ---- | C] (Malwarebytes) -- C:\WINDOWS\SysNative\drivers\22A16C26.sys
[2018.03.14 18:51:25 | 000,255,928 | ---- | C] (Malwarebytes) -- C:\WINDOWS\SysNative\drivers\2251C3FF.sys
[2018.03.12 17:23:41 | 000,255,928 | ---- | C] (Malwarebytes) -- C:\WINDOWS\SysNative\drivers\33729292.sys
[2018.03.12 16:47:35 | 000,000,000 | ---D | C] -- C:\ProgramData\ProductData
[2018.03.11 15:13:57 | 000,255,928 | ---- | C] (Malwarebytes) -- C:\WINDOWS\SysNative\drivers\151522C5.sys
[2018.03.09 19:52:29 | 000,255,928 | ---- | C] (Malwarebytes) -- C:\WINDOWS\SysNative\drivers\5475433D.sys
[2018.03.09 16:21:54 | 000,555,424 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\USBHUB3.SYS
[2018.03.09 16:21:54 | 000,437,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\USBXHCI.SYS
[2018.03.09 16:21:54 | 000,285,080 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\sdbus.sys
[2018.03.09 16:21:54 | 000,187,296 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\dumpsd.sys
[2018.03.09 16:21:54 | 000,149,400 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\storahci.sys
[2018.03.09 16:21:54 | 000,103,328 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\stornvme.sys
[2018.03.09 16:21:54 | 000,046,080 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\hidparse.sys
[2018.03.09 16:21:54 | 000,046,080 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\hidparse.sys
[2018.03.09 16:21:54 | 000,045,472 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\storufs.sys
[2018.03.09 16:21:53 | 000,192,512 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\netvsc.sys
[2018.03.09 16:21:53 | 000,057,344 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\UcmUcsi.sys
[2018.03.09 16:21:52 | 001,055,648 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\hvax64.exe
[2018.03.09 16:21:52 | 000,571,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\spaceport.sys
[2018.03.09 16:21:52 | 000,077,216 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\hvloader.dll
[2018.03.09 16:21:51 | 001,206,688 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\hvix64.exe
[2018.03.09 16:21:49 | 000,086,528 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\cldapi.dll
[2018.03.09 16:21:49 | 000,076,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\cldapi.dll
[2018.03.09 16:21:44 | 001,415,296 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\winload.efi
[2018.03.09 16:21:44 | 001,209,248 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\winload.exe
[2018.03.09 16:21:44 | 001,092,016 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\winresume.efi
[2018.03.09 16:21:44 | 000,924,648 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\winresume.exe
[2018.03.09 16:21:44 | 000,097,176 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\sdstor.sys
[2018.03.09 16:21:44 | 000,043,008 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\RfxVmt.sys
[2018.03.09 16:21:43 | 000,229,272 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\tpm.sys
[2018.03.09 16:21:43 | 000,194,456 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\ataport.sys
[2018.03.07 21:46:42 | 000,000,000 | ---D | C] -- C:\Users\cunik.cz\AppData\Roaming\ConMet
[2018.03.07 21:46:42 | 000,000,000 | ---D | C] -- C:\ProgramData\ConMet
[2018.03.07 21:46:42 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\ConMet
[2018.03.07 17:55:14 | 000,255,928 | ---- | C] (Malwarebytes) -- C:\WINDOWS\SysNative\drivers\272393EF.sys
[2018.03.06 22:07:10 | 000,255,928 | ---- | C] (Malwarebytes) -- C:\WINDOWS\SysNative\drivers\24676186.sys
[2018.03.06 20:08:51 | 000,000,000 | ---D | C] -- C:\Users\cunik.cz\AppData\Roaming\SUPERAntiSpyware.com
[2018.03.06 20:08:35 | 000,000,000 | ---D | C] -- C:\Users\cunik.cz\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SUPERAntiSpyware
[2018.03.06 20:08:33 | 000,000,000 | ---D | C] -- C:\ProgramData\SUPERAntiSpyware.com
[2018.03.06 16:38:54 | 000,255,928 | ---- | C] (Malwarebytes) -- C:\WINDOWS\SysNative\drivers\673685F9.sys
[2018.03.05 21:54:26 | 000,255,928 | ---- | C] (Malwarebytes) -- C:\WINDOWS\SysNative\drivers\74775D00.sys
[2018.03.05 17:01:10 | 000,255,928 | ---- | C] (Malwarebytes) -- C:\WINDOWS\SysNative\drivers\7F11228D.sys
[2018.03.05 16:15:21 | 000,000,000 | ---D | C] -- C:\Users\cunik.cz\AppData\Local\Sniper3
[2018.03.04 21:15:04 | 000,000,000 | ---D | C] -- C:\Users\cunik.cz\Documents\RegRun2
[2018.03.04 21:14:55 | 000,049,968 | ---- | C] (Greatis Software) -- C:\WINDOWS\SysNative\partizan.exe
[2018.03.04 21:14:55 | 000,014,984 | ---- | C] (Greatis Software, LLC.) -- C:\WINDOWS\SysWow64\drivers\UnHackMeDrv.sys
[2018.03.04 21:14:55 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\UnHackMe
[2018.03.04 21:14:55 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\regruninfo
[2018.03.04 20:51:48 | 000,255,928 | ---- | C] (Malwarebytes) -- C:\WINDOWS\SysNative\drivers\E35CE538.sys
[2018.03.04 19:11:22 | 000,000,000 | ---D | C] -- C:\Users\cunik.cz\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\JDownloader
[2018.03.02 22:07:35 | 000,255,928 | ---- | C] (Malwarebytes) -- C:\WINDOWS\SysNative\drivers\55164D13.sys
[2018.03.01 22:00:12 | 000,255,928 | ---- | C] (Malwarebytes) -- C:\WINDOWS\SysNative\drivers\5427F645.sys
[2018.03.01 20:29:54 | 000,255,928 | ---- | C] (Malwarebytes) -- C:\WINDOWS\SysNative\drivers\5D12C6E1.sys
[2018.02.28 21:38:34 | 000,255,928 | ---- | C] (Malwarebytes) -- C:\WINDOWS\SysNative\drivers\5642E6E8.sys
[2018.02.27 20:34:27 | 000,255,928 | ---- | C] (Malwarebytes) -- C:\WINDOWS\SysNative\drivers\E255C43C.sys
[2018.02.27 19:32:34 | 003,937,000 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\SysWow64\nvapi.dll
[2018.02.27 19:32:34 | 001,985,384 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\nvdispco6439101.dll
[2018.02.27 19:32:34 | 001,684,000 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\nvdispgenco6439101.dll
[2018.02.26 21:50:30 | 000,255,928 | ---- | C] (Malwarebytes) -- C:\WINDOWS\SysNative\drivers\7765E7EC.sys
[2018.02.26 20:58:12 | 000,255,928 | ---- | C] (Malwarebytes) -- C:\WINDOWS\SysNative\drivers\15464780.sys
[2018.02.26 19:59:06 | 000,255,928 | ---- | C] (Malwarebytes) -- C:\WINDOWS\SysNative\drivers\7137B2BE.sys
[2018.02.26 15:41:25 | 000,000,000 | ---D | C] -- C:\KVRT_Data
[2018.02.23 22:01:14 | 000,255,928 | ---- | C] (Malwarebytes) -- C:\WINDOWS\SysNative\drivers\42416545.sys
[2018.02.23 21:23:29 | 000,000,000 | ---D | C] -- C:\FRST
[2018.02.23 20:15:39 | 000,000,000 | ---D | C] -- C:\Users\cunik.cz\AppData\Local\Windscribe
[2018.02.23 20:15:37 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windscribe
[2018.02.22 16:23:46 | 000,255,928 | ---- | C] (Malwarebytes) -- C:\WINDOWS\SysNative\drivers\622235E8.sys
[2018.02.22 14:48:49 | 000,000,000 | ---D | C] -- C:\WINDOWS\pss
[2018.02.20 21:28:22 | 000,255,928 | ---- | C] (Malwarebytes) -- C:\WINDOWS\SysNative\drivers\73B7B7E4.sys
[2018.02.20 19:39:38 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\Logishrd
[2018.02.20 19:39:29 | 000,018,960 | ---- | C] (Logitech, Inc.) -- C:\WINDOWS\SysNative\drivers\LNonPnP.sys
[2018.02.20 19:39:24 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Logitech
[2018.02.20 19:39:22 | 000,000,000 | ---D | C] -- C:\ProgramData\Logishrd
[2018.02.20 19:39:19 | 000,000,000 | ---D | C] -- C:\Program Files\Logitech
[2018.02.20 19:38:23 | 000,000,000 | ---D | C] -- C:\Users\cunik.cz\AppData\Roaming\Logitech
[2018.02.20 19:38:23 | 000,000,000 | ---D | C] -- C:\Users\cunik.cz\AppData\Roaming\Logishrd
[2018.02.20 19:21:14 | 000,255,928 | ---- | C] (Malwarebytes) -- C:\WINDOWS\SysNative\drivers\257543CC.sys
[2018.02.20 18:08:37 | 000,000,000 | ---D | C] -- C:\Users\cunik.cz\AppData\Local\Mozilla
[2018.02.20 18:08:35 | 000,000,000 | ---D | C] -- C:\Program Files\Mozilla Firefox
[2018.02.20 18:07:37 | 000,255,928 | ---- | C] (Malwarebytes) -- C:\WINDOWS\SysNative\drivers\73156484.sys
[2018.02.20 16:55:04 | 000,255,928 | ---- | C] (Malwarebytes) -- C:\WINDOWS\SysNative\drivers\6D2A7FDE.sys
[1 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]



Reklama
cunik.cz
Level 3
Level 3
Příspěvky: 463
Registrován: leden 18
Pohlaví: Muž

Re: Prosím o kontrolu

Příspěvekod cunik.cz » 22 bře 2018 15:38

========== Files - Modified Within 30 Days ==========

[2018.03.22 15:28:48 | 000,041,942 | ---- | M] () -- C:\WINDOWS\ZAM_Guard.krnl.trace
[2018.03.22 15:26:11 | 004,415,416 | ---- | M] () -- C:\WINDOWS\SysNative\PerfStringBackup.INI
[2018.03.22 15:26:11 | 002,100,512 | ---- | M] () -- C:\WINDOWS\SysNative\perfh005.dat
[2018.03.22 15:26:11 | 001,136,458 | ---- | M] () -- C:\WINDOWS\SysNative\perfh009.dat
[2018.03.22 15:26:11 | 000,569,502 | ---- | M] () -- C:\WINDOWS\SysNative\perfc005.dat
[2018.03.22 15:26:11 | 000,545,376 | ---- | M] () -- C:\WINDOWS\SysNative\perfc009.dat
[2018.03.22 15:21:52 | 000,067,584 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2018.03.22 15:19:51 | 2560,204,799 | -HS- | M] () -- C:\hiberfil.sys
[2018.03.22 15:19:51 | 016,777,216 | -HS- | M] () -- C:\swapfile.sys
[2018.03.21 18:21:03 | 000,255,928 | ---- | M] (Malwarebytes) -- C:\WINDOWS\SysNative\drivers\2F53D671.sys
[2018.03.21 18:20:52 | 000,192,952 | ---- | M] (Malwarebytes) -- C:\WINDOWS\SysNative\drivers\mbamchameleon.sys
[2018.03.21 17:17:47 | 000,028,272 | ---- | M] () -- C:\WINDOWS\SysNative\drivers\TrueSight.sys
[2018.03.21 17:17:03 | 000,000,214 | ---- | M] () -- C:\WINDOWS\tasks\CreateExplorerShellUnelevatedTask.job
[2018.03.21 15:56:24 | 000,255,928 | ---- | M] (Malwarebytes) -- C:\WINDOWS\SysNative\drivers\5474B12C.sys
[2018.03.21 15:56:18 | 000,002,260 | ---- | M] () -- C:\Users\Public\Desktop\Google Chrome.lnk
[2018.03.20 19:34:41 | 000,001,489 | ---- | M] () -- C:\Users\Public\Desktop\GeForce Experience.lnk
[2018.03.19 22:00:41 | 000,255,928 | ---- | M] (Malwarebytes) -- C:\WINDOWS\SysNative\drivers\7725C409.sys
[2018.03.16 19:12:44 | 000,625,592 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\NvIFROpenGL.dll
[2018.03.16 19:12:42 | 000,515,672 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysWow64\NvIFROpenGL.dll
[2018.03.16 19:12:40 | 000,997,280 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\NvIFR64.dll
[2018.03.16 19:12:36 | 000,949,176 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysWow64\NvIFR.dll
[2018.03.16 19:11:56 | 001,138,432 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\NvFBC64.dll
[2018.03.16 19:11:54 | 001,066,072 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysWow64\NvFBC.dll
[2018.03.16 19:11:50 | 001,684,000 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\nvdispgenco6439124.dll
[2018.03.16 19:11:46 | 001,985,280 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\nvdispco6439124.dll
[2018.03.16 19:11:40 | 000,748,960 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\nvDecMFTMjpeg.dll
[2018.03.16 19:11:36 | 000,608,344 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysWow64\nvDecMFTMjpeg.dll
[2018.03.16 19:11:30 | 004,318,464 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\nvcuvid.dll
[2018.03.16 19:11:28 | 003,719,200 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysWow64\nvcuvid.dll
[2018.03.16 19:11:14 | 040,278,616 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\nvcompiler.dll
[2018.03.16 19:11:04 | 035,189,336 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysWow64\nvcompiler.dll
[2018.03.16 19:01:58 | 013,571,008 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\nvptxJitCompiler.dll
[2018.03.16 19:01:54 | 011,131,872 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysWow64\nvptxJitCompiler.dll
[2018.03.16 19:01:48 | 019,854,816 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\nvopencl.dll
[2018.03.16 19:01:42 | 016,496,072 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysWow64\nvopencl.dll
[2018.03.16 19:01:34 | 000,633,224 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\nvmcumd.dll
[2018.03.16 19:01:20 | 001,153,568 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\nvfatbinaryLoader.dll
[2018.03.16 19:01:16 | 000,902,096 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysWow64\nvfatbinaryLoader.dll
[2018.03.16 19:01:14 | 000,811,992 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\nvEncodeAPI64.dll
[2018.03.16 19:01:12 | 000,650,232 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysWow64\nvEncodeAPI.dll
[2018.03.16 19:01:08 | 001,355,408 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\nvEncMFThevc.dll
[2018.03.16 19:01:04 | 001,067,368 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysWow64\nvEncMFThevc.dll
[2018.03.16 19:01:02 | 001,346,128 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\nvEncMFTH264.dll
[2018.03.16 19:00:58 | 001,061,168 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysWow64\nvEncMFTH264.dll
[2018.03.16 19:00:20 | 012,966,216 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\nvcuda.dll
[2018.03.16 19:00:16 | 011,000,296 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysWow64\nvcuda.dll
[2018.03.16 19:00:12 | 004,629,824 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\nvapi64.dll
[2018.03.16 19:00:08 | 003,937,000 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysWow64\nvapi.dll
[2018.03.16 16:12:37 | 000,002,688 | ---- | M] () -- C:\WINDOWS\Sandboxie.ini
[2018.03.16 01:57:58 | 000,058,816 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\drivers\nvvhci.sys
[2018.03.16 01:57:58 | 000,048,407 | ---- | M] () -- C:\WINDOWS\SysNative\nvinfo.pb
[2018.03.16 00:14:34 | 000,001,951 | ---- | M] () -- C:\WINDOWS\NvContainerRecovery.bat
[2018.03.15 23:40:25 | 005,952,640 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\nvcpl.dll
[2018.03.15 23:40:25 | 002,589,576 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\nvsvc64.dll
[2018.03.15 23:40:23 | 001,767,816 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\nvsvcr.dll
[2018.03.15 23:40:23 | 000,634,256 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\nv3dappshext.dll
[2018.03.15 23:40:23 | 000,451,040 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\nvmctray.dll
[2018.03.15 23:40:23 | 000,123,840 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\nvshext.dll
[2018.03.15 23:40:23 | 000,083,072 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\nv3dappshextr.dll
[2018.03.15 23:39:30 | 008,099,202 | ---- | M] () -- C:\WINDOWS\SysNative\nvcoproc.bin
[2018.03.15 22:14:35 | 000,255,928 | ---- | M] (Malwarebytes) -- C:\WINDOWS\SysNative\drivers\7355F5E8.sys
[2018.03.15 21:43:49 | 000,000,008 | RHS- | M] () -- C:\ProgramData\ntuser.pol
[2018.03.15 18:09:42 | 000,000,863 | ---- | M] () -- C:\Users\cunik.cz\Desktop\CCleaner.lnk
[2018.03.14 21:28:30 | 000,312,256 | ---- | M] () -- C:\WINDOWS\SysNative\FNTCACHE.DAT
[2018.03.14 20:42:41 | 130,364,688 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MRT-KB890830.exe
[2018.03.14 19:40:28 | 000,255,928 | ---- | M] (Malwarebytes) -- C:\WINDOWS\SysNative\drivers\317502D9.sys
[2018.03.14 19:15:19 | 000,255,928 | ---- | M] (Malwarebytes) -- C:\WINDOWS\SysNative\drivers\22A16C26.sys
[2018.03.14 18:51:25 | 000,255,928 | ---- | M] (Malwarebytes) -- C:\WINDOWS\SysNative\drivers\2251C3FF.sys
[2018.03.14 14:05:49 | 002,480,064 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\nvspcap64.dll
[2018.03.14 14:05:49 | 002,137,024 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysWow64\nvspcap.dll
[2018.03.14 14:05:48 | 001,310,144 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\NvRtmpStreamer64.dll
[2018.03.14 13:44:54 | 000,001,951 | ---- | M] () -- C:\WINDOWS\NvTelemetryContainerRecovery.bat
[2018.03.12 17:23:41 | 000,255,928 | ---- | M] (Malwarebytes) -- C:\WINDOWS\SysNative\drivers\33729292.sys
[2018.03.11 15:13:57 | 000,255,928 | ---- | M] (Malwarebytes) -- C:\WINDOWS\SysNative\drivers\151522C5.sys
[2018.03.09 19:52:29 | 000,255,928 | ---- | M] (Malwarebytes) -- C:\WINDOWS\SysNative\drivers\5475433D.sys
[2018.03.09 16:22:35 | 000,140,800 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Chakradiag.dll
[2018.03.09 16:22:28 | 000,106,496 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Chakradiag.dll
[2018.03.07 17:55:14 | 000,255,928 | ---- | M] (Malwarebytes) -- C:\WINDOWS\SysNative\drivers\272393EF.sys
[2018.03.06 22:07:10 | 000,255,928 | ---- | M] (Malwarebytes) -- C:\WINDOWS\SysNative\drivers\24676186.sys
[2018.03.06 20:08:35 | 000,000,745 | ---- | M] () -- C:\Users\cunik.cz\Desktop\SUPERAntiSpyware Free Edition.lnk
[2018.03.06 16:38:54 | 000,255,928 | ---- | M] (Malwarebytes) -- C:\WINDOWS\SysNative\drivers\673685F9.sys
[2018.03.05 21:54:26 | 000,255,928 | ---- | M] (Malwarebytes) -- C:\WINDOWS\SysNative\drivers\74775D00.sys
[2018.03.05 17:01:10 | 000,255,928 | ---- | M] (Malwarebytes) -- C:\WINDOWS\SysNative\drivers\7F11228D.sys
[2018.03.05 14:31:47 | 000,000,202 | ---- | M] () -- C:\Users\cunik.cz\Desktop\Sniper Elite 3.url
[2018.03.05 07:18:28 | 000,189,784 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\nvaudcap64v.dll
[2018.03.05 07:18:28 | 000,152,408 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysWow64\nvaudcap32v.dll
[2018.03.04 21:15:54 | 000,000,002 | RHS- | M] () -- C:\WINDOWS\SysWow64\CONFIG.NT
[2018.03.04 21:15:54 | 000,000,002 | RHS- | M] () -- C:\WINDOWS\SysWow64\AUTOEXEC.NT
[2018.03.04 21:15:51 | 000,000,876 | ---- | M] () -- C:\WINDOWS\SysNative\drivers\etc\hosts
[2018.03.04 21:14:56 | 000,000,581 | ---- | M] () -- C:\Users\cunik.cz\Desktop\UnHackMe.lnk
[2018.03.04 20:51:48 | 000,255,928 | ---- | M] (Malwarebytes) -- C:\WINDOWS\SysNative\drivers\E35CE538.sys
[2018.03.04 19:11:22 | 000,000,728 | ---- | M] () -- C:\Users\cunik.cz\Desktop\JDownloader 2.lnk
[2018.03.02 22:09:11 | 000,834,552 | ---- | M] (Adobe Systems Incorporated) -- C:\WINDOWS\SysWow64\FlashPlayerApp.exe
[2018.03.02 22:09:11 | 000,179,704 | ---- | M] (Adobe Systems Incorporated) -- C:\WINDOWS\SysWow64\FlashPlayerCPLApp.cpl
[2018.03.02 22:07:35 | 000,255,928 | ---- | M] (Malwarebytes) -- C:\WINDOWS\SysNative\drivers\55164D13.sys
[2018.03.02 04:02:48 | 000,037,888 | ---- | M] () -- C:\WINDOWS\SysNative\SpectrumSyncClient.dll
[2018.03.02 04:01:11 | 000,640,000 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\HeadTrackerStorage.dll
[2018.03.02 03:59:44 | 000,956,416 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Spectrum.exe
[2018.03.01 22:00:12 | 000,255,928 | ---- | M] (Malwarebytes) -- C:\WINDOWS\SysNative\drivers\5427F645.sys
[2018.03.01 20:29:54 | 000,255,928 | ---- | M] (Malwarebytes) -- C:\WINDOWS\SysNative\drivers\5D12C6E1.sys
[2018.03.01 08:50:57 | 000,270,744 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\acmigration.dll
[2018.03.01 08:49:36 | 000,389,536 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\invagent.dll
[2018.03.01 08:48:13 | 000,664,472 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\aeinv.dll
[2018.03.01 08:47:37 | 000,035,224 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\DeviceCensus.exe
[2018.03.01 08:47:09 | 000,749,464 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\generaltel.dll
[2018.03.01 08:46:56 | 000,609,176 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\devinv.dll
[2018.03.01 08:46:38 | 000,138,144 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\CompatTelRunner.exe
[2018.03.01 08:46:27 | 002,003,352 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\aitstatic.exe
[2018.03.01 08:46:09 | 001,568,664 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\appraiser.dll
[2018.03.01 08:45:12 | 000,070,040 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\win32appinventorycsp.dll
[2018.03.01 08:40:10 | 002,514,936 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\KernelBase.dll
[2018.03.01 08:40:01 | 000,461,720 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dcntel.dll
[2018.03.01 08:40:01 | 000,273,304 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\aepic.dll
[2018.03.01 08:37:00 | 007,831,760 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\d3d10warp.dll
[2018.03.01 08:31:11 | 008,602,520 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ntoskrnl.exe
[2018.03.01 08:30:56 | 000,264,040 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MusNotifyIcon.exe
[2018.03.01 08:27:48 | 001,173,576 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\rpcrt4.dll
[2018.03.01 08:23:29 | 000,749,976 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\dxgmms2.sys
[2018.03.01 08:17:39 | 000,519,152 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SecurityHealthService.exe
[2018.03.01 08:17:39 | 000,408,984 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\dxgmms1.sys
[2018.03.01 08:14:53 | 005,105,664 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AuthFWSnapin.dll
[2018.03.01 08:14:51 | 000,128,928 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\offlinelsa.dll
[2018.03.01 08:14:49 | 000,356,952 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wintrust.dll
[2018.03.01 08:14:45 | 000,147,872 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\wcifs.sys
[2018.03.01 08:14:37 | 007,384,576 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Media.Protection.PlayReady.dll
[2018.03.01 08:14:32 | 007,675,784 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\windows.storage.dll
[2018.03.01 08:12:41 | 000,250,264 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\offlinesam.dll
[2018.03.01 08:12:07 | 000,189,344 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SecurityHealthAgent.dll
[2018.03.01 08:11:44 | 000,093,600 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\rdpudd.dll
[2018.03.01 08:10:56 | 000,075,168 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SecurityHealthProxyStub.dll
[2018.03.01 07:39:42 | 000,213,400 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\aepic.dll
[2018.03.01 07:29:08 | 006,092,152 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\windows.storage.dll
[2018.03.01 07:28:27 | 000,115,096 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\offlinelsa.dll
[2018.03.01 07:28:20 | 006,480,616 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Media.Protection.PlayReady.dll
[2018.03.01 07:27:39 | 000,221,592 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\offlinesam.dll
[2018.03.01 07:23:01 | 005,105,664 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\AuthFWSnapin.dll
[2018.03.01 07:09:58 | 025,251,840 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\edgehtml.dll
[2018.03.01 07:03:58 | 002,902,528 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\win32kfull.sys
[2018.03.01 07:03:29 | 000,344,576 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\edgeIso.dll
[2018.03.01 07:03:26 | 000,471,552 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\AcSpecfc.dll
[2018.03.01 07:03:24 | 000,162,304 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\IndexedDbLegacy.dll
[2018.03.01 07:03:17 | 000,065,536 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\usoapi.dll
[2018.03.01 07:01:55 | 006,575,616 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Data.Pdf.dll
[2018.03.01 07:01:29 | 000,155,648 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\EdgeManager.dll
[2018.03.01 06:59:03 | 000,220,672 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MicrosoftAccountWAMExtension.dll
[2018.03.01 06:58:50 | 000,368,128 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\daxexec.dll
[2018.03.01 06:58:48 | 000,459,776 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\webplatstorageserver.dll
[2018.03.01 06:58:43 | 004,839,424 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\dbgeng.dll
[2018.03.01 06:58:28 | 000,405,504 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Payments.dll
[2018.03.01 06:57:55 | 000,369,152 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\msIso.dll
[2018.03.01 06:56:13 | 000,559,104 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\jscript9diag.dll
[2018.03.01 06:56:08 | 018,922,496 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\edgehtml.dll
[2018.03.01 06:54:52 | 001,296,896 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\usocore.dll
[2018.03.01 06:54:44 | 003,181,568 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\cdp.dll
[2018.03.01 06:54:25 | 000,665,088 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\jscript.dll
[2018.03.01 06:54:23 | 000,496,128 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\updatehandlers.dll
[2018.03.01 06:54:22 | 003,664,384 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\win32kfull.sys
[2018.03.01 06:53:46 | 000,863,232 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MusUpdateHandlers.dll
[2018.03.01 06:53:45 | 000,536,576 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\edgeIso.dll
[2018.03.01 06:53:41 | 000,246,272 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MusNotificationUx.exe
[2018.03.01 06:53:40 | 000,206,848 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\IndexedDbLegacy.dll
[2018.03.01 06:53:37 | 000,399,872 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MusNotification.exe
[2018.03.01 06:53:37 | 000,107,520 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\musdialoghandlers.dll
[2018.03.01 06:53:37 | 000,056,320 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AcSpecfc.dll
[2018.03.01 06:53:31 | 000,097,792 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\updatecsp.dll
[2018.03.01 06:53:31 | 000,092,160 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\usoapi.dll
[2018.03.01 06:53:30 | 000,039,424 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\UsoClient.exe
[2018.03.01 06:52:03 | 006,030,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Chakra.dll
[2018.03.01 06:51:55 | 000,034,816 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\BasicRender.sys
[2018.03.01 06:51:05 | 000,201,728 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\EdgeManager.dll
[2018.03.01 06:50:59 | 000,075,264 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\wcnfs.sys
[2018.03.01 06:50:01 | 000,526,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\daxexec.dll
[2018.03.01 06:49:57 | 000,066,048 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\winsrv.dll
[2018.03.01 06:49:43 | 000,301,056 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MicrosoftAccountWAMExtension.dll
[2018.03.01 06:49:15 | 000,675,328 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\webplatstorageserver.dll
[2018.03.01 06:48:31 | 000,431,616 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\msIso.dll
[2018.03.01 06:47:49 | 000,579,584 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Payments.dll
[2018.03.01 06:47:13 | 000,484,352 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\cdpusersvc.dll
[2018.03.01 06:46:16 | 000,026,624 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\msisip.dll
[2018.03.01 06:46:03 | 000,770,048 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\WdiWiFi.sys
[2018.03.01 06:45:58 | 000,708,096 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\jscript9diag.dll
[2018.03.01 06:45:20 | 000,594,944 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\vbscript.dll
[2018.03.01 06:45:06 | 000,386,560 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\zipfldr.dll
[2018.03.01 06:44:49 | 005,195,776 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\cdp.dll
[2018.03.01 06:44:48 | 008,030,720 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Data.Pdf.dll
[2018.03.01 06:42:38 | 002,084,352 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\win32kbase.sys
[2018.03.01 06:41:41 | 000,812,032 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\jscript.dll
[2018.03.01 06:41:38 | 008,103,936 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Chakra.dll
[2018.03.01 06:41:30 | 001,548,288 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\lsasrv.dll
[2018.03.01 06:41:25 | 004,745,728 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\jscript9.dll
[2018.03.01 06:40:29 | 005,833,216 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dbgeng.dll
[2018.03.01 06:39:51 | 000,899,584 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\samsrv.dll
[2018.03.01 06:39:32 | 000,666,624 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\DbgModel.dll
[2018.03.01 06:39:13 | 002,035,712 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\rdpcorets.dll
[2018.03.01 06:39:06 | 002,222,592 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wlidsvc.dll
[2018.03.01 06:36:49 | 004,050,432 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\msi.dll
[2018.03.01 06:36:16 | 000,030,208 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\msisip.dll
[2018.03.01 06:35:22 | 000,568,320 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\msra.exe
[2018.03.01 06:35:18 | 000,050,176 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\pcalua.exe
[2018.03.01 06:35:17 | 000,128,000 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\racpldlg.dll
[2018.02.28 21:38:34 | 000,255,928 | ---- | M] (Malwarebytes) -- C:\WINDOWS\SysNative\drivers\5642E6E8.sys
[2018.02.27 20:34:27 | 000,255,928 | ---- | M] (Malwarebytes) -- C:\WINDOWS\SysNative\drivers\E255C43C.sys
[2018.02.26 21:50:30 | 000,255,928 | ---- | M] (Malwarebytes) -- C:\WINDOWS\SysNative\drivers\7765E7EC.sys
[2018.02.26 20:58:12 | 000,255,928 | ---- | M] (Malwarebytes) -- C:\WINDOWS\SysNative\drivers\15464780.sys
[2018.02.26 19:59:06 | 000,255,928 | ---- | M] (Malwarebytes) -- C:\WINDOWS\SysNative\drivers\7137B2BE.sys
[2018.02.26 04:44:54 | 001,985,384 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\nvdispco6439101.dll
[2018.02.26 04:44:54 | 001,684,000 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\nvdispgenco6439101.dll
[2018.02.23 22:01:14 | 000,255,928 | ---- | M] (Malwarebytes) -- C:\WINDOWS\SysNative\drivers\42416545.sys
[2018.02.23 20:15:37 | 000,000,633 | ---- | M] () -- C:\Users\Public\Desktop\Windscribe.lnk
[2018.02.22 17:15:32 | 000,000,662 | ---- | M] () -- C:\Users\cunik.cz\Desktop\Defraggler.lnk
[2018.02.22 16:23:46 | 000,255,928 | ---- | M] (Malwarebytes) -- C:\WINDOWS\SysNative\drivers\622235E8.sys
[2018.02.22 03:23:33 | 001,092,016 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\winresume.efi
[2018.02.22 03:23:03 | 000,924,648 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\winresume.exe
[2018.02.22 03:13:15 | 000,077,216 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\hvloader.dll
[2018.02.22 03:10:34 | 000,285,080 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\sdbus.sys
[2018.02.22 03:08:18 | 001,055,648 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\hvax64.exe
[2018.02.22 03:08:17 | 000,571,288 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\spaceport.sys
[2018.02.22 03:08:11 | 001,206,688 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\hvix64.exe
[2018.02.22 03:07:31 | 001,415,296 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\winload.efi
[2018.02.22 03:07:19 | 000,194,456 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\ataport.sys
[2018.02.22 03:07:01 | 001,209,248 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\winload.exe
[2018.02.22 03:02:49 | 000,149,400 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\storahci.sys
[2018.02.22 03:00:02 | 000,187,296 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\dumpsd.sys
[2018.02.22 02:54:20 | 000,437,144 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\USBXHCI.SYS
[2018.02.22 02:52:26 | 000,103,328 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\stornvme.sys
[2018.02.22 02:51:38 | 000,045,472 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\storufs.sys
[2018.02.22 02:51:35 | 000,555,424 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\USBHUB3.SYS
[2018.02.22 02:51:00 | 000,097,176 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\sdstor.sys
[2018.02.22 02:50:42 | 000,229,272 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\tpm.sys
[2018.02.22 01:31:14 | 000,057,344 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\UcmUcsi.sys
[2018.02.22 01:30:58 | 000,046,080 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\hidparse.sys
[2018.02.22 01:30:58 | 000,046,080 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\hidparse.sys
[2018.02.22 01:30:18 | 000,043,008 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\RfxVmt.sys
[2018.02.22 01:30:17 | 000,192,512 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\netvsc.sys
[2018.02.22 01:29:24 | 000,176,128 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\UMDF\Microsoft.Bluetooth.Profiles.HidOverGatt.dll
[2018.02.22 01:25:58 | 000,086,528 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\cldapi.dll
[2018.02.22 01:12:33 | 000,076,288 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\cldapi.dll
[2018.02.20 21:28:22 | 000,255,928 | ---- | M] (Malwarebytes) -- C:\WINDOWS\SysNative\drivers\73B7B7E4.sys
[2018.02.20 19:39:29 | 000,018,960 | ---- | M] (Logitech, Inc.) -- C:\WINDOWS\SysNative\drivers\LNonPnP.sys
[2018.02.20 19:21:14 | 000,255,928 | ---- | M] (Malwarebytes) -- C:\WINDOWS\SysNative\drivers\257543CC.sys
[2018.02.20 19:18:44 | 002,019,223 | ---- | M] () -- C:\Users\cunik.cz\Documents\20180209_085433.jpg
[2018.02.20 18:08:37 | 000,000,993 | ---- | M] () -- C:\Users\Public\Desktop\Firefox.lnk
[2018.02.20 18:07:37 | 000,255,928 | ---- | M] (Malwarebytes) -- C:\WINDOWS\SysNative\drivers\73156484.sys
[2018.02.20 16:55:04 | 000,255,928 | ---- | M] (Malwarebytes) -- C:\WINDOWS\SysNative\drivers\6D2A7FDE.sys
[1 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]

========== Files Created - No Company Name ==========

[2018.03.21 17:17:03 | 000,000,214 | ---- | C] () -- C:\WINDOWS\tasks\CreateExplorerShellUnelevatedTask.job
[2018.03.20 19:42:04 | 000,928,568 | ---- | C] () -- C:\WINDOWS\SysNative\vulkan-1.dll
[2018.03.20 19:42:04 | 000,798,520 | ---- | C] () -- C:\WINDOWS\SysWow64\vulkan-1.dll
[2018.03.20 19:42:04 | 000,591,672 | ---- | C] () -- C:\WINDOWS\SysNative\vulkaninfo.exe
[2018.03.20 19:42:04 | 000,490,808 | ---- | C] () -- C:\WINDOWS\SysWow64\vulkaninfo.exe
[2018.03.15 18:09:42 | 000,000,863 | ---- | C] () -- C:\Users\cunik.cz\Desktop\CCleaner.lnk
[2018.03.14 20:40:55 | 000,037,888 | ---- | C] () -- C:\WINDOWS\SysNative\SpectrumSyncClient.dll
[2018.03.07 21:49:13 | 000,001,084 | ---- | C] () -- C:\Users\cunik.cz\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Connection Meter.lnk
[2018.03.06 20:08:35 | 000,000,745 | ---- | C] () -- C:\Users\cunik.cz\Desktop\SUPERAntiSpyware Free Edition.lnk
[2018.03.05 14:31:47 | 000,000,202 | ---- | C] () -- C:\Users\cunik.cz\Desktop\Sniper Elite 3.url
[2018.03.04 21:14:56 | 000,000,581 | ---- | C] () -- C:\Users\cunik.cz\Desktop\UnHackMe.lnk
[2018.03.04 19:11:23 | 000,000,728 | ---- | C] () -- C:\Users\cunik.cz\Desktop\JDownloader 2.lnk
[2018.03.02 22:23:00 | 000,028,272 | ---- | C] () -- C:\WINDOWS\SysNative\drivers\TrueSight.sys
[2018.02.23 20:15:37 | 000,000,633 | ---- | C] () -- C:\Users\Public\Desktop\Windscribe.lnk
[2018.02.22 17:15:32 | 000,000,662 | ---- | C] () -- C:\Users\cunik.cz\Desktop\Defraggler.lnk
[2018.02.20 18:08:37 | 000,001,005 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
[2018.02.20 18:08:37 | 000,000,993 | ---- | C] () -- C:\Users\Public\Desktop\Firefox.lnk
[2018.01.21 16:04:47 | 000,000,008 | RHS- | C] () -- C:\ProgramData\ntuser.pol
[2018.01.14 11:06:47 | 000,000,057 | ---- | C] () -- C:\ProgramData\Ament.ini
[2018.01.13 10:24:34 | 000,002,688 | ---- | C] () -- C:\WINDOWS\Sandboxie.ini
[2018.01.12 16:21:23 | 000,067,584 | --S- | C] () -- C:\WINDOWS\bootstat.dat
[2018.01.12 16:21:20 | 000,000,000 | -H-- | C] () -- C:\ProgramData\DP45977C.lfl
[2018.01.12 16:16:25 | 000,215,943 | ---- | C] () -- C:\WINDOWS\SysWow64\dssec.dat
[2018.01.12 16:16:25 | 000,000,741 | ---- | C] () -- C:\WINDOWS\SysWow64\NOISE.DAT
[2017.12.08 23:25:12 | 000,798,520 | ---- | C] () -- C:\WINDOWS\SysWow64\vulkan-1-1-0-65-1.dll
[2017.12.08 23:25:00 | 000,490,808 | ---- | C] () -- C:\WINDOWS\SysWow64\vulkaninfo-1-1-0-65-1.exe
[2017.12.04 20:18:52 | 002,491,112 | ---- | C] () -- C:\WINDOWS\SysWow64\Windows.Mirage.dll
[2017.09.29 14:41:56 | 000,039,424 | ---- | C] () -- C:\WINDOWS\SysWow64\vmstaging.dll
[2017.09.29 14:41:45 | 000,017,143 | ---- | C] () -- C:\WINDOWS\SysWow64\srms-apr.dat
[2017.09.29 14:41:37 | 000,518,144 | ---- | C] () -- C:\WINDOWS\SysWow64\msjetoledb40.dll
[2017.09.29 14:41:32 | 000,054,272 | ---- | C] () -- C:\WINDOWS\SysWow64\BWContextHandler.dll
[2017.09.29 14:41:32 | 000,002,307 | ---- | C] () -- C:\WINDOWS\SysWow64\WimBootCompress.ini
[2017.09.29 14:41:31 | 000,149,840 | ---- | C] () -- C:\WINDOWS\SysWow64\InputHost.dll
[2017.09.29 14:41:29 | 003,383,296 | ---- | C] () -- C:\WINDOWS\SysWow64\Windows.UI.Input.Inking.Analysis.dll
[2017.09.29 14:41:29 | 000,193,024 | ---- | C] () -- C:\WINDOWS\SysWow64\HeatCore.dll
[2017.09.29 14:41:29 | 000,092,160 | ---- | C] () -- C:\WINDOWS\SysWow64\WindowsDefaultHeatProcessor.dll
[2017.09.29 14:41:29 | 000,055,808 | ---- | C] () -- C:\WINDOWS\SysWow64\xboxgipsynthetic.dll
[2017.09.29 14:41:29 | 000,025,088 | ---- | C] () -- C:\WINDOWS\SysWow64\Windows.WARP.JITService.exe
[2017.09.29 14:41:28 | 000,309,248 | ---- | C] () -- C:\WINDOWS\SysWow64\ssdm.dll
[2017.09.29 14:41:28 | 000,167,640 | ---- | C] () -- C:\WINDOWS\SysWow64\chs_singlechar_pinyin.dat
[2017.09.29 14:41:19 | 000,043,131 | ---- | C] () -- C:\WINDOWS\mib.bin
[2017.09.29 14:41:14 | 000,673,088 | ---- | C] () -- C:\WINDOWS\SysWow64\mlang.dat

========== ZeroAccess Check ==========


[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64

[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]

[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64

[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
"" = C:\Windows\SysNative\windows.storage.dll -- [2018.03.01 08:14:32 | 007,675,784 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\windows.storage.dll -- [2018.03.01 07:29:08 | 006,092,152 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\fastprox.dll -- [2017.09.29 14:41:24 | 000,964,096 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2017.09.29 14:41:37 | 000,769,536 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\wbemess.dll -- [2018.02.10 05:35:43 | 000,506,368 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]

========== LOP Check ==========

[2018.03.07 21:59:57 | 000,000,000 | ---D | M] -- C:\Users\cunik.cz\AppData\Roaming\ConMet
[2018.01.23 19:28:26 | 000,000,000 | ---D | M] -- C:\Users\cunik.cz\AppData\Roaming\DAEMON Tools Lite
[2018.01.25 22:07:39 | 000,000,000 | ---D | M] -- C:\Users\cunik.cz\AppData\Roaming\ESET
[2018.01.24 20:10:04 | 000,000,000 | ---D | M] -- C:\Users\cunik.cz\AppData\Roaming\GHISLER
[2018.02.07 13:14:39 | 000,000,000 | ---D | M] -- C:\Users\cunik.cz\AppData\Roaming\Hard Disk Sentinel
[2018.01.28 18:32:24 | 000,000,000 | ---D | M] -- C:\Users\cunik.cz\AppData\Roaming\IObit
[2018.03.04 21:30:33 | 000,000,000 | ---D | M] -- C:\Users\cunik.cz\AppData\Roaming\Kodi
[2018.01.13 10:46:16 | 000,000,000 | ---D | M] -- C:\Users\cunik.cz\AppData\Roaming\LibreOffice
[2018.01.12 16:46:53 | 000,000,000 | ---D | M] -- C:\Users\cunik.cz\AppData\Roaming\Thunderbird
[2018.01.23 17:21:03 | 000,000,000 | ---D | M] -- C:\Users\cunik.cz\AppData\Roaming\URSoft

========== Purity Check ==========



< End of report >

cunik.cz
Level 3
Level 3
Příspěvky: 463
Registrován: leden 18
Pohlaví: Muž

Re: Prosím o kontrolu

Příspěvekod cunik.cz » 22 bře 2018 15:38

OTL Extras logfile created on: 22.03.2018 15:27:12 - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = E:\Stahování
64bit- Professional (Version = 6.2.9200) - Type = NTWorkstation
Internet Explorer (Version = 9.11.16299.0)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: dd.MM.yyyy

15,96 Gb Total Physical Memory | 14,07 Gb Available Physical Memory | 88,16% Memory free
16,96 Gb Paging File | 15,02 Gb Available in Paging File | 88,54% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 223,02 Gb Total Space | 179,80 Gb Free Space | 80,62% Space Free | Partition Type: NTFS
Drive D: | 96,00 Mb Total Space | 95,99 Mb Free Space | 99,99% Space Free | Partition Type: FAT32
Drive E: | 930,97 Gb Total Space | 756,50 Gb Free Space | 81,26% Space Free | Partition Type: NTFS

Computer Name: DESKTOP-RU7SUNC | User Name: cunik.cz | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

========== Extra Registry (SafeList) ==========


========== File Associations ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.html[@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
.url[@ = InternetShortcut] -- C:\WINDOWS\SysNative\rundll32.exe (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\WINDOWS\SysWow64\control.exe (Microsoft Corporation)
.html [@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)

========== Shell Spawning ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [edit] -- Reg Error: Key error.
htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [opennew] -- Reg Error: Key error.
htmlfile [print] -- "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1"
http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation)
InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\OpenWith.exe "%1" (Microsoft Corporation)
Directory [AddToPlaylistVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" (VideoLAN)
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" (VideoLAN)
Directory [Powershell] -- powershell.exe -noexit -command Set-Location -literalPath '%V' (Microsoft Corporation)
Directory [UpdateEncryptionSettings] -- Reg Error: Key error.
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- Reg Error: Key error.
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [edit] -- Reg Error: Key error.
htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [opennew] -- Reg Error: Key error.
htmlfile [print] -- "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1"
http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\OpenWith.exe "%1" (Microsoft Corporation)
Directory [AddToPlaylistVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" (VideoLAN)
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" (VideoLAN)
Directory [Powershell] -- powershell.exe -noexit -command Set-Location -literalPath '%V' (Microsoft Corporation)
Directory [UpdateEncryptionSettings] -- Reg Error: Key error.
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- Reg Error: Key error.
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Value error.

========== Security Center Settings ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = 5A 4B 21 46 B9 8B D3 01 [binary data]

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Upgrade]
"UpgradeTime" = [binary data]

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Upgrade]
"UpgradeTime" = Reg Error: Unknown registry data type -- File not found

========== Firewall Settings ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

========== Authorized Applications List ==========


========== Vista Active Open Ports Exception List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{0AA1684C-01C9-4E58-B74F-EB49D0AC5299}" = lport=5353 | protocol=17 | dir=in | app=c:\program files\nvidia corporation\nvcontainer\nvcontainer.exe |
"{48CC9A48-CF2D-4EE3-BD62-5915C67BD15E}" = lport=47984 | protocol=6 | dir=in | app=c:\program files\nvidia corporation\nvcontainer\nvcontainer.exe |
"{AEE4069E-3567-43AA-BEC5-686E72E3294C}" = lport=47995 | protocol=17 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamer.exe |
"{C317AC01-0CCD-4CD7-AECB-FE0A4A32371D}" = lport=48010 | protocol=17 | dir=in | app=c:\program files\nvidia corporation\nvcontainer\nvcontainer.exe |
"{C4772E6A-D03A-4B4A-B6C8-25A072BF736A}" = lport=5353 | protocol=17 | dir=in | app=c:\program files (x86)\google\chrome\application\chrome.exe |
"{C49C51B6-994E-4ACD-A228-812BBC4908A4}" = lport=47995 | protocol=6 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamer.exe |
"{C7D56F5B-C304-4501-81D2-05B929A16854}" = lport=47998 | protocol=17 | dir=in | app=c:\program files\nvidia corporation\nvcontainer\nvcontainer.exe |

========== Vista Active Application Exception List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{07699B5C-5E73-4F47-A866-EDD89AB4395B}" = dir=out | name=@{microsoft.oneconnect_3.1710.3044.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.oneconnect/oneconnect/appstorename} |
"{0C03CCE8-6BDA-4FB7-9A66-354A58283391}" = dir=out | name=microsoft pay |
"{0EB11766-7D17-4C36-AE1E-8F2A15B6D166}" = dir=out | name=@{microsoft.windows.secureassessmentbrowser_10.0.16299.15_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.secureassessmentbrowser/resources/packagedisplayname} |
"{0FC5A31E-1F10-471A-A29D-978E3F7913D0}" = dir=out | name=@{microsoft.microsoft3dviewer_3.1802.26012.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.microsoft3dviewer/common.view.uwp/resources/storeappname} |
"{108334FC-841A-4FB7-96C5-88FFB2221D57}" = dir=out | name=@{microsoft.windows.sechealthui_10.0.16299.309_neutral__cw5n1h2txyewy?ms-resource://microsoft.windows.sechealthui/resources/packagedisplayname} |
"{1557B048-0B08-4E74-8BB1-5C021D3C0FC4}" = dir=out | name=@{microsoft.bingweather_4.22.3254.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingweather/resources/applicationtitlewithbranding} |
"{172E047C-D985-4AE0-BFB0-68B22D480A11}" = dir=in | name=@{microsoft.windowsstore_11802.1001.11.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsstore/resources/storetitle} |
"{1A76DFA6-17F0-4FE3-8EE0-988B98E284B4}" = dir=out | name=@{microsoft.windows.parentalcontrols_1000.16299.15.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.parentalcontrols/resources/displayname} |
"{1E3BB179-D56A-408C-AC67-0DA815AB9745}" = dir=in | name=@{microsoft.windows.photos_2018.18021.12420.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.windows.photos/resources/appstorename} |
"{1EAD7B9D-B4DE-452D-9AD0-B58113AF6585}" = dir=in | app=c:\program files\hp\hp deskjet 3510 series\bin\hpnetworkcommunicatorcom.exe |
"{1EBF8AE7-F339-4A52-9300-22016A29CCC8}" = dir=out | name=microsoft solitaire collection |
"{29C6D6BE-391D-45A5-B4A6-0A5B06D8A850}" = dir=in | name=@{microsoft.microsoftedge_41.16299.248.0_neutral__8wekyb3d8bbwe?ms-resource://microsoft.microsoftedge/resources/appname} |
"{2B6CFB1D-4540-4ECD-BD7C-496E510B2A63}" = dir=out | name=@{microsoft.windowscommunicationsapps_17.9029.22105.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowscommunicationsapps/hxoutlookintl/appmanifest_outlookdesktop_displayname} |
"{2C960CF9-A5FC-4AC1-933C-03D6A05C8CDE}" = dir=out | name=@{microsoft.accountscontrol_10.0.16299.15_neutral__cw5n1h2txyewy?ms-resource://microsoft.accountscontrol/resources/displayname} |
"{2EE89397-E2D7-4DE5-8FDC-CADAF89B558C}" = dir=in | name=@{microsoft.desktopappinstaller_1.0.12894.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.desktopappinstaller/resources/appdisplayname} |
"{2FC20478-414D-4E15-AE75-FA4992F6A985}" = dir=in | name=@{microsoft.windowsfeedbackhub_1.1712.612.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsfeedbackhub/resources/appstorename} |
"{33D0C7E7-8331-4A02-BABE-CE775E6D5B92}" = dir=in | app=e:\daemon tools lite\discsoftbusservicelite.exe |
"{33E2AA98-F60B-4A2E-A4E4-AEDD7BA2D184}" = dir=out | name=microsoft sticky notes |
"{3689F789-DE14-43A5-8BEE-DE7D62D2272E}" = dir=out | name=@{microsoft.windowscamera_2018.227.10.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowscamera/resources/appstorename} |
"{3C9C2D63-1D31-405B-A968-45B8566F9EBD}" = dir=in | name=microsoft sticky notes |
"{47FE2A2E-9694-49F4-99BF-FFF9F4C06BA7}" = dir=out | name=@{microsoft.windowsstore_11802.1001.11.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsstore/resources/storetitle} |
"{4D803E16-319A-4B3E-9CAC-10B1A9B3C4DA}" = dir=out | name=@{microsoft.gethelp_10.1706.10602.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.gethelp/resources/appdisplayname} |
"{4E17147E-EA2D-43BB-A028-EC0E1F633314}" = dir=out | name=@{microsoft.xboxidentityprovider_12.39.13003.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.xboxidentityprovider/resources/displayname} |
"{4E4813B4-82C0-4F73-923B-24E0E9F8A7C4}" = dir=in | name=print 3d |
"{501F5C3E-F4F1-436D-9B9C-800D9BE085CE}" = dir=out | name=@{microsoft.microsoftofficehub_17.8830.7600.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.microsoftofficehub/officehubintl/appmanifest_getoffice_displayname} |
"{537EF6DE-E793-4CDA-B165-8285A38B4D07}" = dir=in | name=@{microsoft.windowscommunicationsapps_17.9029.22105.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowscommunicationsapps/hxoutlookintl/appmanifest_outlookdesktop_displayname} |
"{5C64B968-1912-463B-A2D8-0D7D2D791227}" = dir=in | name=xbox |
"{5E951E8A-50C7-4E80-A19D-9666582C7564}" = dir=out | name=@{microsoft.windowsmaps_5.1711.10477.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsmaps/resources/appstorename} |
"{6064F8A5-3312-4AC5-AE3E-9BD073524DB5}" = protocol=17 | dir=in | app=e:\steam\steam.exe |
"{6073A275-612E-41A9-A5A3-19803C0CC5E8}" = dir=in | name=@{microsoft.windows.cortana_1.9.6.16299_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.cortana/resources/packagedisplayname} |
"{613280A4-C59A-44FC-83A4-6C602A8286B6}" = dir=out | name=onenote |
"{61915871-85D3-4F18-8A5C-17C4AA68030C}" = dir=out | name=@{microsoft.desktopappinstaller_1.0.12894.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.desktopappinstaller/resources/appdisplayname} |
"{646C5DB6-C771-4AF4-8DE2-10FC0197FA0C}" = dir=out | name=xbox |
"{64C1056E-1855-422B-A4E5-C8EAA0E7F6EF}" = dir=out | name=@{microsoft.people_10.3.3472.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.people/resources/appstorename} |
"{671E995E-E942-47DB-849D-37D1BB1F0B3B}" = dir=out | name=@{microsoft.windows.apprep.chxapp_1000.16299.15.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.apprep.chxapp/resources/displayname} |
"{6ACCDF9E-8884-4224-8A91-F560DCED620E}" = dir=out | name=@{microsoft.windows.photos_2018.18021.12420.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.windows.photos/resources/appstorename} |
"{79856756-9C55-4AD2-9029-8F347127A65F}" = dir=out | name=@{microsoft.windowsfeedbackhub_1.1712.612.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsfeedbackhub/resources/appstorename} |
"{7B2E40FA-43B4-44C8-8694-5A915530B922}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{7B6CFE1F-BE2D-4718-9FDA-285E2846574F}" = dir=out | name=@{microsoft.aad.brokerplugin_1000.16299.15.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.aad.brokerplugin/resources/packagedisplayname} |
"{7CC74B4A-2747-4489-A2A8-C29D9F9D71E2}" = protocol=17 | dir=in | app=c:\program files\mozilla firefox\firefox.exe |
"{83F453C5-376C-4423-ACBD-DA51E0077D97}" = dir=out | name=@{microsoft.storepurchaseapp_11802.1802.23001.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.storepurchaseapp/resources/displaytitle} |
"{89A46CF9-CFE2-41F2-B048-EC7F44A2364C}" = dir=out | name=@{microsoft.lockapp_10.0.16299.15_neutral__cw5n1h2txyewy?ms-resource://microsoft.lockapp/resources/appdisplayname} |
"{8FBD2A8F-754B-4E2E-BE50-0928DF13CCA5}" = dir=out | name=@{microsoft.mspaint_4.1803.16027.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.mspaint/resources/appname} |
"{922DA487-7224-4F31-A1FB-BB92C65DC73F}" = protocol=6 | dir=in | app=c:\program files\mozilla firefox\firefox.exe |
"{96E629DA-17FF-4898-B51D-719DEE5289EC}" = dir=out | name=@{microsoft.windows.cortana_1.9.6.16299_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.cortana/resources/packagedisplayname} |
"{9AFB20D9-6AA3-4E93-93F5-A905BD9A7A22}" = dir=out | name=shell input application |
"{9BB8E29A-8416-4EE6-98C4-76DF2DB00882}" = protocol=17 | dir=in | app=e:\steam\steamapps\common\sniper elite 3\launcher\sniper3launcher.exe |
"{9FC9DF90-33E4-4858-B7DF-FB810635078F}" = dir=out | name=@{microsoft.windows.peopleexperiencehost_10.0.16299.15_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.peopleexperiencehost/resources/pkgdisplayname} |
"{A393C945-A503-49FD-AE37-F924415D5012}" = dir=out | name=@{microsoft.windowscalculator_10.1803.711.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowscalculator/resources/appstorename} |
"{A3BDDD23-88AD-4E20-9B7A-2FE07E28AF87}" = dir=out | name=@{microsoft.windows.shellexperiencehost_10.0.16299.15_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.shellexperiencehost/resources/pkgdisplayname} |
"{A90AE7AD-FEAC-434B-BE63-199DD6D94A21}" = dir=out | name=xbox game bar |
"{AE5D415F-A1FD-41F8-A3DD-F7648212AE39}" = protocol=17 | dir=in | app=e:\steam\bin\cef\cef.win7\steamwebhelper.exe |
"{B816980E-B894-4141-B014-4251FBDD7970}" = dir=in | app=c:\program files\hp\hp deskjet 3510 series\bin\hpnetworkcommunicator.exe |
"{BD2C518B-0AE1-4A09-86E2-D544237FDF61}" = dir=out | name=@{microsoft.microsoftedge_41.16299.248.0_neutral__8wekyb3d8bbwe?ms-resource://microsoft.microsoftedge/resources/appname} |
"{BFECA671-D688-4873-844A-E8912A6A891A}" = dir=in | name=onenote |
"{C3519C4C-4030-4B37-94E2-4B08819C4253}" = dir=in | name=@{microsoft.microsoftofficehub_17.8830.7600.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.microsoftofficehub/officehubintl/appmanifest_getoffice_displayname} |
"{C3BFA3D4-34A2-4D4C-BD06-70FF6EFD1BA4}" = dir=out | name=@{microsoft.xboxgamecallableui_1000.16299.15.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.xboxgamecallableui/resources/pkgdisplayname} |
"{CB0C2454-B25C-4A8C-B693-BBB5E005767B}" = dir=out | name=@{microsoft.windows.contentdeliverymanager_10.0.16299.15_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.contentdeliverymanager/resources/appdisplayname} |
"{CDA1228B-19D0-4B57-BA02-F59EA5FF8608}" = dir=out | name=print 3d |
"{D64D57C3-F8D1-412F-89E0-2ADD13D97BFD}" = dir=in | name=@{microsoft.windows.cloudexperiencehost_10.0.16299.15_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.cloudexperiencehost/resources/appdescription} |
"{DAFDD2B7-EF9F-4B9D-A7A1-BEF43590C039}" = dir=in | app=c:\program files\hp\hp deskjet 3510 series\bin\devicesetup.exe |
"{DB53FA54-177E-40B5-A4B5-87E079944A73}" = dir=out | name=@{microsoft.windows.cloudexperiencehost_10.0.16299.15_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.cloudexperiencehost/resources/appdescription} |
"{DD5A4429-C30A-4CD9-97A0-D9EBB78F51B9}" = protocol=6 | dir=in | app=e:\steam\bin\cef\cef.win7\steamwebhelper.exe |
"{E67353E4-B8CE-4EA6-B300-4AB8C79857FF}" = dir=in | name=@{microsoft.aad.brokerplugin_1000.16299.15.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.aad.brokerplugin/resources/packagedisplayname} |
"{EDB479B0-65AF-492B-9C44-6D4969CA39C1}" = protocol=6 | dir=in | app=e:\steam\steamapps\common\sniper elite 3\launcher\sniper3launcher.exe |
"{EE7C9F08-05C8-4258-A778-D7D743C1246B}" = dir=out | name=@{microsoft.getstarted_6.7.3462.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.getstarted/resources/appstorename} |
"{F6FD640D-AA56-4656-A30E-A23150CC249C}" = dir=in | name=@{microsoft.oneconnect_3.1710.3044.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.oneconnect/oneconnect/appstorename} |
"{FB3B0CD5-1999-4318-AA69-F6DC4BC3D848}" = protocol=6 | dir=in | app=e:\steam\steam.exe |
"{FFDE5480-285D-4EF7-B65A-03C49B529BEC}" = dir=out | name=@{microsoft.windows.oobenetworkcaptiveportal_10.0.16299.15_neutral__cw5n1h2txyewy?ms-resource://microsoft.windows.oobenetworkcaptiveportal/resources/appdisplayname} |

========== HKEY_LOCAL_MACHINE Uninstall List ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{1719C693-20CF-4BC3-831F-B65E79268114}" = Základní software zařízení HP Deskjet 3510 series
"{1D8E6291-B0D5-35EC-8441-6616F567A0F7}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219
"{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1" = Malwarebytes verze 3.3.1.2183
"{37B8F9C7-03FB-3253-8781-2517C99D7C00}" = Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030
"{37E67F0A-50BB-430A-A2A5-F5E2F6EE96DB}" = ESET Security
"{50A2BC33-C9CD-3BF1-A8FF-53C10A0B183C}" = Microsoft Visual C++ 2015 x64 Minimum Runtime - 14.0.24215
"{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161
"{8220EEFE-38CD-377E-8595-13398D740ACE}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17
"{929FBD26-9020-399B-9A7A-751D61F0B942}" = Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.21005
"{A749D8E6-B613-3BE3-8F5F-045C84EBA29B}" = Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.21005
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Ansel" = NVIDIA Ansel
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel" = Ovládací panel NVIDIA 391.24
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver" = NVIDIA Ovladače grafiky 391.24
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience" = NVIDIA GeForce Experience 3.13.1.30
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Optimus" = NVIDIA Optimus Update 31.1.10.0
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX" = NVIDIA Systémový software PhysX 9.17.0524
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update" = Aktualizace NVIDIA 31.1.10.0
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_DisplayDriverAnalyzer" = DisplayDriverAnalyzer
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.NvStreamSrv" = NVIDIA SHIELD Streaming
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer" = NVIDIA Install Application
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvBackend" = NVIDIA Backend
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer" = NVIDIA Container
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.ContainerTelemetryApiHelper" = NVIDIA TelemetryApi helper for NvContainer
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.LocalSystem" = NVIDIA LocalSystem Container
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.MessageBus" = NVIDIA Message Bus for NvContainer
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.NetworkService" = NVIDIA NetworkService Container
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.Session" = NVIDIA Session Container
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.User" = NVIDIA User Container
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NVDisplayContainer" = NVIDIA Display Container
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NVDisplayContainerLS" = NVIDIA Display Container LS
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NVDisplayPluginWatchdog" = NVIDIA Display Watchdog Plugin
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NVDisplaySessionContainer" = NVIDIA Display Session Container
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvNodejs" = NVIDIA NodeJS
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvPlugin.Watchdog" = NVIDIA Watchdog Plugin for NvContainer
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvTelemetry" = NVIDIA Telemetry Client
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvTelemetryContainer" = NVIDIA Telemetry Container
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvvHci" = NVIDIA Virtual Host Controller
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_OSC" = Nvidia Share
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_ShadowPlay" = NVIDIA ShadowPlay 3.13.1.30
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_ShieldWirelessController" = NVIDIA SHIELD Wireless Controller Driver
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Update.Core" = NVIDIA Update Core
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_VirtualAudio.Driver" = NVIDIA Virtual Audio 4.04.0
"{CDDCBBF1-2703-46BC-938B-BCC81A1EEAAA}" = SUPERAntiSpyware
"{CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97}" = Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030
"{EF1EC6A9-17DE-3DA9-B040-686A1E8A8B04}" = Microsoft Visual C++ 2015 x64 Additional Runtime - 14.0.24215
"CCleaner" = CCleaner
"CPUID HWMonitor_is1" = CPUID HWMonitor 1.34
"CrystalDiskMark6_is1" = CrystalDiskMark 6.0.0
"DAEMON Tools Lite" = DAEMON Tools Lite
"Defraggler" = Defraggler
"jdownloader2" = JDownloader 2
"MediaInfo" = MediaInfo 17.12
"Mozilla Firefox 58.0.2 (x64 cs)" = Mozilla Firefox 58.0.2 (x64 cs)
"MozillaMaintenanceService" = Mozilla Maintenance Service
"Sandboxie" = Sandboxie 5.24 (64-bit)
"sp6" = Logitech SetPoint 6.67
"Steam App 238090" = Sniper Elite 3
"Totalcmd64" = Total Commander 64-bit (Remove or Repair)
"VulkanRT1.0.65.1" = Vulkan Run Time Libraries 1.0.65.1

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{050d4fc8-5d48-4b8f-8972-47c82c46020f}" = Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501
"{13A4EE12-23EA-3371-91EE-EFB36DDFFF3E}" = Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005
"{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}" = Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030
"{3B7E914A-93D5-4A29-92BB-AF8C3F66C431}" = Skype™ 7.40
"{53862C8D-D41F-47A1-A331-664EB405BECA}" = LibreOffice 5.4.4.2
"{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}" = Google Update Helper
"{69BCE4AC-9572-3271-A2FB-9423BDA36A43}" = Microsoft Visual C++ 2015 x86 Additional Runtime - 14.0.24215
"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
"{AC76BA86-0804-1033-1959-001824265200}" = Adobe Refresh Manager
"{AC76BA86-7AD7-1029-7B44-AC0F074E4100}" = Adobe Acrobat Reader DC - Czech
"{B175520C-86A2-35A7-8619-86DC379688B9}" = Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030
"{BBF2AC74-720C-3CB3-8291-5E34039232FA}" = Microsoft Visual C++ 2015 x86 Minimum Runtime - 14.0.24215
"{BD95A8CD-1D9F-35AD-981A-3E7925026EBB}" = Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030
"{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}" = Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030
"{d992c12e-cab2-426f-bde3-fb8c53950b0d}" = Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24215
"{e2803110-78b3-4664-a479-3611a381656a}" = Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24215
"{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219
"{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver
"{f65db027-aff3-4070-886a-0d87064aabb1}" = Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501
"{F8CFEB22-A2E7-3971-9EDA-4B11EDEFC185}" = Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005
"{fa690e90-ddb0-4f0c-b3f1-136c084e5fc7}_is1" = Windscribe
"ConMet" = Connection Meter
"Google Chrome" = Google Chrome
"Hard Disk Sentinel_is1" = Hard Disk Sentinel
"IObitUninstall" = IObit Uninstaller
"Mozilla Thunderbird 52.6.0 (x86 cs)" = Mozilla Thunderbird 52.6.0 (x86 cs)
"Steam" = Steam
"UnHackMe CHIP Edition_is1" = UnHackMe CHIP 9.60 release
"VLC media player" = VLC media player

========== HKEY_CURRENT_USER Uninstall List ==========

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"Kodi" = Kodi
"OneDriveSetup.exe" = Microsoft OneDrive

========== Last 20 Event Log Errors ==========

[ Application Events ]
Error - 21.03.2018 12:07:31 | Computer Name = DESKTOP-RU7SUNC | Source = Microsoft Security Client | ID = 5000
Description =

Error - 21.03.2018 12:07:31 | Computer Name = DESKTOP-RU7SUNC | Source = Microsoft Security Client | ID = 5000
Description =

Error - 21.03.2018 13:36:40 | Computer Name = DESKTOP-RU7SUNC | Source = Software Protection Platform Service | ID = 8198
Description = Aktivace licence (slui.exe) se nezdařila s následujícím kódem chyby:
hr=0x803F7001
Argument
příkazového řádku: RuleId=31e71c49-8da7-4a2f-ad92-45d98a1c79ba;Action=AutoActivate;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=9fbaf5d6-4d83-4422-870d-fdda6e5858aa;NotificationInterval=1440;Trigger=UserLogon;SessionId=1

Error - 21.03.2018 13:36:40 | Computer Name = DESKTOP-RU7SUNC | Source = Software Protection Platform Service | ID = 8198
Description = Aktivace licence (slui.exe) se nezdařila s následujícím kódem chyby:
hr=0x803F7001
Argument
příkazového řádku: RuleId=31e71c49-8da7-4a2f-ad92-45d98a1c79ba;Action=AutoActivate;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=9fbaf5d6-4d83-4422-870d-fdda6e5858aa;NotificationInterval=1440;Trigger=NetworkAvailable

Error - 21.03.2018 13:38:28 | Computer Name = DESKTOP-RU7SUNC | Source = Software Protection Platform Service | ID = 8198
Description = Aktivace licence (slui.exe) se nezdařila s následujícím kódem chyby:
hr=0x803F7001
Argument
příkazového řádku: RuleId=31e71c49-8da7-4a2f-ad92-45d98a1c79ba;Action=AutoActivate;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=9fbaf5d6-4d83-4422-870d-fdda6e5858aa;NotificationInterval=1440;Trigger=UserLogon;SessionId=1

Error - 21.03.2018 13:38:29 | Computer Name = DESKTOP-RU7SUNC | Source = Software Protection Platform Service | ID = 8198
Description = Aktivace licence (slui.exe) se nezdařila s následujícím kódem chyby:
hr=0x803F7001
Argument
příkazového řádku: RuleId=31e71c49-8da7-4a2f-ad92-45d98a1c79ba;Action=AutoActivate;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=9fbaf5d6-4d83-4422-870d-fdda6e5858aa;NotificationInterval=1440;Trigger=NetworkAvailable

Error - 21.03.2018 13:38:30 | Computer Name = DESKTOP-RU7SUNC | Source = Software Protection Platform Service | ID = 8198
Description = Aktivace licence (slui.exe) se nezdařila s následujícím kódem chyby:
hr=0x803F7001
Argument
příkazového řádku: RuleId=31e71c49-8da7-4a2f-ad92-45d98a1c79ba;Action=AutoActivate;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=9fbaf5d6-4d83-4422-870d-fdda6e5858aa;NotificationInterval=1440;Trigger=NetworkAvailable

Error - 21.03.2018 14:20:52 | Computer Name = DESKTOP-RU7SUNC | Source = Software Protection Platform Service | ID = 8198
Description = Aktivace licence (slui.exe) se nezdařila s následujícím kódem chyby:
hr=0x803F7001
Argument
příkazového řádku: RuleId=31e71c49-8da7-4a2f-ad92-45d98a1c79ba;Action=AutoActivate;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=9fbaf5d6-4d83-4422-870d-fdda6e5858aa;NotificationInterval=1440;Trigger=NetworkAvailable

Error - 22.03.2018 10:20:03 | Computer Name = DESKTOP-RU7SUNC | Source = Software Protection Platform Service | ID = 8198
Description = Aktivace licence (slui.exe) se nezdařila s následujícím kódem chyby:
hr=0x803F7001
Argument
příkazového řádku: RuleId=31e71c49-8da7-4a2f-ad92-45d98a1c79ba;Action=AutoActivate;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=9fbaf5d6-4d83-4422-870d-fdda6e5858aa;NotificationInterval=1440;Trigger=UserLogon;SessionId=1

Error - 22.03.2018 10:20:03 | Computer Name = DESKTOP-RU7SUNC | Source = Software Protection Platform Service | ID = 8198
Description = Aktivace licence (slui.exe) se nezdařila s následujícím kódem chyby:
hr=0x803F7001
Argument
příkazového řádku: RuleId=31e71c49-8da7-4a2f-ad92-45d98a1c79ba;Action=AutoActivate;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=9fbaf5d6-4d83-4422-870d-fdda6e5858aa;NotificationInterval=1440;Trigger=NetworkAvailable

[ System Events ]
Error - 21.03.2018 13:35:15 | Computer Name = DESKTOP-RU7SUNC | Source = DCOM | ID = 10005
Description =

Error - 21.03.2018 13:35:15 | Computer Name = DESKTOP-RU7SUNC | Source = DCOM | ID = 10005
Description =

Error - 21.03.2018 13:35:15 | Computer Name = DESKTOP-RU7SUNC | Source = DCOM | ID = 10005
Description =

Error - 21.03.2018 13:35:15 | Computer Name = DESKTOP-RU7SUNC | Source = DCOM | ID = 10005
Description =

Error - 21.03.2018 13:35:15 | Computer Name = DESKTOP-RU7SUNC | Source = DCOM | ID = 10005
Description =

Error - 21.03.2018 13:35:20 | Computer Name = DESKTOP-RU7SUNC | Source = DCOM | ID = 10005
Description =

Error - 21.03.2018 13:35:54 | Computer Name = DESKTOP-RU7SUNC | Source = DCOM | ID = 10005
Description =

Error - 21.03.2018 13:36:00 | Computer Name = DESKTOP-RU7SUNC | Source = DCOM | ID = 10005
Description =

Error - 21.03.2018 13:36:07 | Computer Name = DESKTOP-RU7SUNC | Source = DCOM | ID = 10005
Description =

Error - 21.03.2018 13:36:07 | Computer Name = DESKTOP-RU7SUNC | Source = DCOM | ID = 10005
Description =


< End of report >

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 38354
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž

Re: Prosím o kontrolu

Příspěvekod jaro3 » 22 bře 2018 17:53

Odinstaluj:
Malwarebytes

pak:
Vyčisti systém CCleanerem

Poklepej na ikonu OTL na ploše.Ujisti se , že máš všechny ostatní aplikace a prohlížeče zavřeny.
Pod Vlastní skenování/opravy do okénka vlož následující text, zobrazený zeleně:

Kód: Vybrat vše

:OTL
PRC - C:\WINDOWS\explorer.exe (Microsoft Corporation)
PRC - C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)
IE:64bit: - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE:64bit: - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKCU\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKCU\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IESR02
[2018.01.12 16:46:53 | 000,000,000 | ---D | M] (No name found) -- C:\Users\cunik.cz\AppData\Roaming\Mozilla\Extensions
[2018.02.20 18:08:38 | 000,000,000 | ---D | M] (No name found) -- C:\Users\cunik.cz\AppData\Roaming\Mozilla\SystemExtensionsDev
[2018.02.27 20:17:49 | 000,000,000 | ---D | M] (No name found) -- C:\Users\cunik.cz\AppData\Roaming\Mozilla\Firefox\Profiles\4hjjs5qz.default\browser-extension-data
[2018.03.02 22:26:51 | 000,000,000 | ---D | M] (No name found) -- C:\Users\cunik.cz\AppData\Roaming\Mozilla\Firefox\Profiles\4hjjs5qz.default\browser-extension-data\{a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7}
[2018.03.02 22:26:19 | 000,000,000 | ---D | M] (No name found) -- C:\Users\cunik.cz\AppData\Roaming\Mozilla\Firefox\Profiles\4hjjs5qz.default\browser-extension-data\jid1-NIfFY2CA8fy1tg@jetpack
[2018.03.15 21:42:48 | 000,000,000 | ---D | M] (No name found) -- C:\Users\cunik.cz\AppData\Roaming\Mozilla\Firefox\Profiles\4hjjs5qz.default\extensions
CHR - Extension: No name found = C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\bhmmomiinigofkjcapegjjndpbikblnp\4.0.6.5_0\
CHR - Extension: No name found = C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi\1.4_0\
CHR - Extension: No name found = C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\3.27.0_0\
CHR - Extension: No name found = C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.3_1\
CHR - Extension: No name found = C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\6518.129.0.1_0\
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
O1364bit: - gopher Prefix: missing
O13 - gopher Prefix: missing
O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64
[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
"" = C:\Windows\SysNative\windows.storage.dll -- [2018.03.01 08:14:32 | 007,675,784 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\windows.storage.dll -- [2018.03.01 07:29:08 | 006,092,152 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\fastprox.dll -- [2017.09.29 14:41:24 | 000,964,096 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2017.09.29 14:41:37 | 000,769,536 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\wbemess.dll -- [2018.02.10 05:35:43 | 000,506,368 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]

:Files
C:\WINDOWS\System32\*.tmp
C:\WINDOWS\*.tmp
C:\WINDOWS\system32\*.tmp.dll
C:\WINDOWS\System32\dllcache\*.tmp
C:\WINDOWS\system32\SET*.tmp
C:\WINDOWS\system32\DUMP*.tmp
c:\windows\Tasks\*.job /s
C:\*.tmp
C:\WINDOWS\System32\drivers\*.tmp
C:\Program Files\*.tmp
C:\Documents and Settings\All Users\Data aplikací\*.tmp
C:\Windows\SysNative\drivers\*.tmp
C:\Windows\SysWow64\drivers\*.tmp
C:\Program Files (x86)\*.tmp
C:\Windows\SysWow64\*.tmp
C:\Windows\SysNative\*.tmp
C:\Program Files (x86)\*.tmp
C:\WINDOWS\tasks\CreateExplorerShellUnelevatedTask.job
C:\ProgramData\DP45977C.lfl

:Reg
:Commands
[purity]
[emptytemp]
[start explorer]
[Reboot]


Poté klikni nahoře na Opravit. Nech program nerušeně běžet, na konci se provede restart PC.
Po restartu se objeví log , prosím zkopíruj sem celý jeho obsah.

000000000005 Časový limit příkazu
udělej znovu CDI.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

cunik.cz
Level 3
Level 3
Příspěvky: 463
Registrován: leden 18
Pohlaví: Muž

Re: Prosím o kontrolu

Příspěvekod cunik.cz » 22 bře 2018 21:15

Tím Malwarebytesem občas systém projedu. Můžu si ho nechat? Nebo ještě používám SUPER Anti Spyware. Je otázka kterej je lepší. Jinak co tam mám za spasky? Myslíš že to s tím příkazovým řádkem je normální? CCleaner používám pravidelně. Zítra dám fixlog

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 38354
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž

Re: Prosím o kontrolu

Příspěvekod jaro3 » 22 bře 2018 21:22

Odinstaluj mbam i SAS.

Pak si přece můžeš zase nainstalovat , co budeš potřebovat.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

cunik.cz
Level 3
Level 3
Příspěvky: 463
Registrován: leden 18
Pohlaví: Muž

Re: Prosím o kontrolu

Příspěvekod cunik.cz » 22 bře 2018 21:26

Ok, a jen bych se chtěl zeptat proč a co myslíš že je z těch dvou lepší?

cunik.cz
Level 3
Level 3
Příspěvky: 463
Registrován: leden 18
Pohlaví: Muž

Re: Prosím o kontrolu

Příspěvekod cunik.cz » 22 bře 2018 22:16

Ok, a jen bych se chtěl zeptat proč a co myslíš že je z těch dvou lepší? A co si myslíš že ten příkazový řádek je normální?

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 38354
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž

Re: Prosím o kontrolu

Příspěvekod jaro3 » 22 bře 2018 22:44

Normální příkazový řádek není , můžeš sem dát obrázek?

Pak si zase nainstaluj mbam. SAS ne.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

cunik.cz
Level 3
Level 3
Příspěvky: 463
Registrován: leden 18
Pohlaví: Muž

Re: Prosím o kontrolu

Příspěvekod cunik.cz » 23 bře 2018 14:10

Vážně to není normální? Kámoš kterého jsem se ptal mi říkal že se to občas stane a že to nemusí znamenat že mně někdo hackuje. Jinak MBAM i SAS je pryč a proč jsem je oba dva vlastně musel odinstalovat? Jinak nohu se zeptat co jsi zjistil z OTL logu? Respektive něco závažnějšího kromě doplňků pro prohlížeč, .tmp souborů a registrů?

All processes killed
========== OTL ==========
No active process named explorer.exe was found!
No active process named firefox.exe was found!
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope| /E : value set successfully!
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ not found.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope| /E : value set successfully!
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ not found.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope| /E : value set successfully!
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ not found.
C:\Users\cunik.cz\AppData\Roaming\Mozilla\Extensions folder moved successfully.
C:\Users\cunik.cz\AppData\Roaming\Mozilla\SystemExtensionsDev folder moved successfully.
C:\Users\cunik.cz\AppData\Roaming\Mozilla\Firefox\Profiles\4hjjs5qz.default\browser-extension-data\{a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7} folder moved successfully.
C:\Users\cunik.cz\AppData\Roaming\Mozilla\Firefox\Profiles\4hjjs5qz.default\browser-extension-data\jid1-NIfFY2CA8fy1tg@jetpack folder moved successfully.
C:\Users\cunik.cz\AppData\Roaming\Mozilla\Firefox\Profiles\4hjjs5qz.default\browser-extension-data folder moved successfully.
Folder C:\Users\cunik.cz\AppData\Roaming\Mozilla\Firefox\Profiles\4hjjs5qz.default\browser-extension-data\{a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7}\ not found.
Folder C:\Users\cunik.cz\AppData\Roaming\Mozilla\Firefox\Profiles\4hjjs5qz.default\browser-extension-data\jid1-NIfFY2CA8fy1tg@jetpack\ not found.
C:\Users\cunik.cz\AppData\Roaming\Mozilla\Firefox\Profiles\4hjjs5qz.default\extensions folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\bhmmomiinigofkjcapegjjndpbikblnp\4.0.6.5_0\_metadata folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\bhmmomiinigofkjcapegjjndpbikblnp\4.0.6.5_0\_locales\zh_TW folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\bhmmomiinigofkjcapegjjndpbikblnp\4.0.6.5_0\_locales\zh_CN folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\bhmmomiinigofkjcapegjjndpbikblnp\4.0.6.5_0\_locales\uk folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\bhmmomiinigofkjcapegjjndpbikblnp\4.0.6.5_0\_locales\tr folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\bhmmomiinigofkjcapegjjndpbikblnp\4.0.6.5_0\_locales\sv folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\bhmmomiinigofkjcapegjjndpbikblnp\4.0.6.5_0\_locales\ru folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\bhmmomiinigofkjcapegjjndpbikblnp\4.0.6.5_0\_locales\pt_BR folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\bhmmomiinigofkjcapegjjndpbikblnp\4.0.6.5_0\_locales\pl folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\bhmmomiinigofkjcapegjjndpbikblnp\4.0.6.5_0\_locales\no folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\bhmmomiinigofkjcapegjjndpbikblnp\4.0.6.5_0\_locales\nl folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\bhmmomiinigofkjcapegjjndpbikblnp\4.0.6.5_0\_locales\ko folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\bhmmomiinigofkjcapegjjndpbikblnp\4.0.6.5_0\_locales\ja folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\bhmmomiinigofkjcapegjjndpbikblnp\4.0.6.5_0\_locales\it folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\bhmmomiinigofkjcapegjjndpbikblnp\4.0.6.5_0\_locales\hi folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\bhmmomiinigofkjcapegjjndpbikblnp\4.0.6.5_0\_locales\fr folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\bhmmomiinigofkjcapegjjndpbikblnp\4.0.6.5_0\_locales\fi folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\bhmmomiinigofkjcapegjjndpbikblnp\4.0.6.5_0\_locales\es folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\bhmmomiinigofkjcapegjjndpbikblnp\4.0.6.5_0\_locales\en folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\bhmmomiinigofkjcapegjjndpbikblnp\4.0.6.5_0\_locales\de folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\bhmmomiinigofkjcapegjjndpbikblnp\4.0.6.5_0\_locales\da folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\bhmmomiinigofkjcapegjjndpbikblnp\4.0.6.5_0\_locales\cs folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\bhmmomiinigofkjcapegjjndpbikblnp\4.0.6.5_0\_locales folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\bhmmomiinigofkjcapegjjndpbikblnp\4.0.6.5_0\styles folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\bhmmomiinigofkjcapegjjndpbikblnp\4.0.6.5_0\scripts\shared folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\bhmmomiinigofkjcapegjjndpbikblnp\4.0.6.5_0\scripts\popup\components\ratingFlowTesting folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\bhmmomiinigofkjcapegjjndpbikblnp\4.0.6.5_0\scripts\popup\components\ratingFlow folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\bhmmomiinigofkjcapegjjndpbikblnp\4.0.6.5_0\scripts\popup\components\modal folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\bhmmomiinigofkjcapegjjndpbikblnp\4.0.6.5_0\scripts\popup\components folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\bhmmomiinigofkjcapegjjndpbikblnp\4.0.6.5_0\scripts\popup folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\bhmmomiinigofkjcapegjjndpbikblnp\4.0.6.5_0\scripts\options\components folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\bhmmomiinigofkjcapegjjndpbikblnp\4.0.6.5_0\scripts\options folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\bhmmomiinigofkjcapegjjndpbikblnp\4.0.6.5_0\scripts\content\components\warning folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\bhmmomiinigofkjcapegjjndpbikblnp\4.0.6.5_0\scripts\content\components\donut folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\bhmmomiinigofkjcapegjjndpbikblnp\4.0.6.5_0\scripts\content\components\common folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\bhmmomiinigofkjcapegjjndpbikblnp\4.0.6.5_0\scripts\content\components folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\bhmmomiinigofkjcapegjjndpbikblnp\4.0.6.5_0\scripts\content folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\bhmmomiinigofkjcapegjjndpbikblnp\4.0.6.5_0\scripts\background\app\common folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\bhmmomiinigofkjcapegjjndpbikblnp\4.0.6.5_0\scripts\background\app folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\bhmmomiinigofkjcapegjjndpbikblnp\4.0.6.5_0\scripts\background folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\bhmmomiinigofkjcapegjjndpbikblnp\4.0.6.5_0\scripts folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\bhmmomiinigofkjcapegjjndpbikblnp\4.0.6.5_0\resources folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\bhmmomiinigofkjcapegjjndpbikblnp\4.0.6.5_0\libs folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\bhmmomiinigofkjcapegjjndpbikblnp\4.0.6.5_0\images folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\bhmmomiinigofkjcapegjjndpbikblnp\4.0.6.5_0 folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi\1.4_0\_metadata folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi\1.4_0\_locales\zu folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi\1.4_0\_locales\zh_TW folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi\1.4_0\_locales\zh_HK folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi\1.4_0\_locales\zh_CN folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi\1.4_0\_locales\vi folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi\1.4_0\_locales\ur folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi\1.4_0\_locales\uk folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi\1.4_0\_locales\tr folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi\1.4_0\_locales\th folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi\1.4_0\_locales\te folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi\1.4_0\_locales\ta folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi\1.4_0\_locales\sw folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi\1.4_0\_locales\sv folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi\1.4_0\_locales\sr folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi\1.4_0\_locales\sl folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi\1.4_0\_locales\sk folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi\1.4_0\_locales\si folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi\1.4_0\_locales\ru folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi\1.4_0\_locales\ro folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi\1.4_0\_locales\pt_PT folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi\1.4_0\_locales\pt_BR folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi\1.4_0\_locales\pl folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi\1.4_0\_locales\no folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi\1.4_0\_locales\nl folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi\1.4_0\_locales\ne folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi\1.4_0\_locales\ms folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi\1.4_0\_locales\mr folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi\1.4_0\_locales\mn folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi\1.4_0\_locales\ml folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi\1.4_0\_locales\lv folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi\1.4_0\_locales\lt folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi\1.4_0\_locales\lo folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi\1.4_0\_locales\ko folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi\1.4_0\_locales\kn folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi\1.4_0\_locales\km folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi\1.4_0\_locales\ka folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi\1.4_0\_locales\ja folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi\1.4_0\_locales\iw folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi\1.4_0\_locales\it folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi\1.4_0\_locales\is folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi\1.4_0\_locales\id folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi\1.4_0\_locales\hy folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi\1.4_0\_locales\hu folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi\1.4_0\_locales\hr folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi\1.4_0\_locales\hi folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi\1.4_0\_locales\gu folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi\1.4_0\_locales\gl folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi\1.4_0\_locales\fr_CA folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi\1.4_0\_locales\fr folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi\1.4_0\_locales\fil folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi\1.4_0\_locales\fi folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi\1.4_0\_locales\fa folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi\1.4_0\_locales\eu folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi\1.4_0\_locales\et folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi\1.4_0\_locales\es_419 folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi\1.4_0\_locales\es folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi\1.4_0\_locales\en_US folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi\1.4_0\_locales\en_GB folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi\1.4_0\_locales\el folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi\1.4_0\_locales\de folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi\1.4_0\_locales\da folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi\1.4_0\_locales\cs folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi\1.4_0\_locales\ca folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi\1.4_0\_locales\bn folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi\1.4_0\_locales\bg folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi\1.4_0\_locales\az folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi\1.4_0\_locales\ar folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi\1.4_0\_locales\am folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi\1.4_0\_locales\af folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi\1.4_0\_locales folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi\1.4_0 folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\3.27.0_0\_metadata folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\3.27.0_0\_locales\zh_TW folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\3.27.0_0\_locales\zh_CN folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\3.27.0_0\_locales\vi folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\3.27.0_0\_locales\uk folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\3.27.0_0\_locales\tr folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\3.27.0_0\_locales\th folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\3.27.0_0\_locales\te folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\3.27.0_0\_locales\ta folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\3.27.0_0\_locales\sw folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\3.27.0_0\_locales\sv folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\3.27.0_0\_locales\sr folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\3.27.0_0\_locales\sl folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\3.27.0_0\_locales\sk folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\3.27.0_0\_locales\ru folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\3.27.0_0\_locales\ro folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\3.27.0_0\_locales\pt_PT folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\3.27.0_0\_locales\pt_BR folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\3.27.0_0\_locales\pl folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\3.27.0_0\_locales\nl folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\3.27.0_0\_locales\nb folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\3.27.0_0\_locales\ms folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\3.27.0_0\_locales\ml folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\3.27.0_0\_locales\lv folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\3.27.0_0\_locales\lt folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\3.27.0_0\_locales\ko folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\3.27.0_0\_locales\kn folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\3.27.0_0\_locales\ja folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\3.27.0_0\_locales\it folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\3.27.0_0\_locales\id folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\3.27.0_0\_locales\hu folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\3.27.0_0\_locales\hr folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\3.27.0_0\_locales\hi folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\3.27.0_0\_locales\he folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\3.27.0_0\_locales\gu folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\3.27.0_0\_locales\fr folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\3.27.0_0\_locales\fil folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\3.27.0_0\_locales\fi folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\3.27.0_0\_locales\fa folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\3.27.0_0\_locales\et folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\3.27.0_0\_locales\es_419 folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\3.27.0_0\_locales\es folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\3.27.0_0\_locales\en_US folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\3.27.0_0\_locales\en_GB folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\3.27.0_0\_locales\el folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\3.27.0_0\_locales\de folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\3.27.0_0\_locales\da folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\3.27.0_0\_locales\cs folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\3.27.0_0\_locales\ca folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\3.27.0_0\_locales\bn folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\3.27.0_0\_locales\bg folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\3.27.0_0\_locales\ar folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\3.27.0_0\_locales\am folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\3.27.0_0\_locales folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\3.27.0_0\skin\social folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\3.27.0_0\skin\fonts folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\3.27.0_0\skin folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\3.27.0_0\qunit\tests folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\3.27.0_0\qunit folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\3.27.0_0\localLib\jquery folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\3.27.0_0\localLib folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\3.27.0_0\lib folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\3.27.0_0\jquery-ui\js folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\3.27.0_0\jquery-ui\css\smoothness\images folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\3.27.0_0\jquery-ui\css\smoothness folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\3.27.0_0\jquery-ui\css\images folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\3.27.0_0\jquery-ui\css folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\3.27.0_0\jquery-ui folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\3.27.0_0\icons\detailed folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\3.27.0_0\icons folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\3.27.0_0\ext folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\3.27.0_0 folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.3_1\_metadata folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.3_1\_locales\zh_TW folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.3_1\_locales\zh_CN folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.3_1\_locales\vi folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.3_1\_locales\uk folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.3_1\_locales\tr folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.3_1\_locales\th folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.3_1\_locales\sv folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.3_1\_locales\sr folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.3_1\_locales\sl folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.3_1\_locales\sk folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.3_1\_locales\ru folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.3_1\_locales\ro folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.3_1\_locales\pt_PT folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.3_1\_locales\pt_BR folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.3_1\_locales\pl folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.3_1\_locales\nl folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.3_1\_locales\nb folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.3_1\_locales\lv folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.3_1\_locales\lt folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.3_1\_locales\ko folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.3_1\_locales\ja folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.3_1\_locales\it folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.3_1\_locales\id folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.3_1\_locales\hu folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.3_1\_locales\hr folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.3_1\_locales\hi folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.3_1\_locales\fr folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.3_1\_locales\fil folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.3_1\_locales\fi folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.3_1\_locales\et folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.3_1\_locales\es_419 folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.3_1\_locales\es folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.3_1\_locales\en_GB folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.3_1\_locales\en folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.3_1\_locales\el folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.3_1\_locales\de folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.3_1\_locales\da folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.3_1\_locales\cs folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.3_1\_locales\ca folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.3_1\_locales\bg folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.3_1\_locales folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.3_1\images folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.3_1\html folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.3_1\css folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.3_1 folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\6518.129.0.1_0\_metadata folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\6518.129.0.1_0\_locales\zh_TW folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\6518.129.0.1_0\_locales\zh folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\6518.129.0.1_0\_locales\vi folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\6518.129.0.1_0\_locales\uk folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\6518.129.0.1_0\_locales\tr folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\6518.129.0.1_0\_locales\th folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\6518.129.0.1_0\_locales\te folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\6518.129.0.1_0\_locales\ta folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\6518.129.0.1_0\_locales\sw folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\6518.129.0.1_0\_locales\sv folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\6518.129.0.1_0\_locales\sr folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\6518.129.0.1_0\_locales\sl folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\6518.129.0.1_0\_locales\sk folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\6518.129.0.1_0\_locales\ru folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\6518.129.0.1_0\_locales\ro folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\6518.129.0.1_0\_locales\pt folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\6518.129.0.1_0\_locales\pl folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\6518.129.0.1_0\_locales\nl folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\6518.129.0.1_0\_locales\nb folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\6518.129.0.1_0\_locales\ms folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\6518.129.0.1_0\_locales\mr folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\6518.129.0.1_0\_locales\ml folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\6518.129.0.1_0\_locales\lv folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\6518.129.0.1_0\_locales\lt folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\6518.129.0.1_0\_locales\ko folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\6518.129.0.1_0\_locales\kn folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\6518.129.0.1_0\_locales\ja folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\6518.129.0.1_0\_locales\iw folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\6518.129.0.1_0\_locales\it folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\6518.129.0.1_0\_locales\id folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\6518.129.0.1_0\_locales\hu folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\6518.129.0.1_0\_locales\hr folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\6518.129.0.1_0\_locales\hi folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\6518.129.0.1_0\_locales\gu folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\6518.129.0.1_0\_locales\fr folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\6518.129.0.1_0\_locales\fil folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\6518.129.0.1_0\_locales\fi folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\6518.129.0.1_0\_locales\fa folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\6518.129.0.1_0\_locales\et folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\6518.129.0.1_0\_locales\es folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\6518.129.0.1_0\_locales\en folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\6518.129.0.1_0\_locales\el folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\6518.129.0.1_0\_locales\de folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\6518.129.0.1_0\_locales\da folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\6518.129.0.1_0\_locales\cs folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\6518.129.0.1_0\_locales\ca folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\6518.129.0.1_0\_locales\bn folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\6518.129.0.1_0\_locales\bg folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\6518.129.0.1_0\_locales\ar folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\6518.129.0.1_0\_locales\am folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\6518.129.0.1_0\_locales folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\6518.129.0.1_0\cast_setup folder moved successfully.
C:\Users\cunik.cz\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\6518.129.0.1_0 folder moved successfully.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\NoActiveDesktop deleted successfully.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\NoActiveDesktopChanges deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\URL\Prefixes\\gopher|:gopher:// /E : value set successfully!
64bit-Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad\\WebCheck deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E6FB5E20-DE35-11CF-9C87-00AA005127ED}\ not found.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad\\WebCheck deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E6FB5E20-DE35-11CF-9C87-00AA005127ED}\ not found.
File EY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64 not found.
File EY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] not found.
File EY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64 not found.
File EY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] not found.
File EY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64 not found.
File EY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] not found.
Folder EY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64\ not found.
Folder EY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]\ not found.
Folder EY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64\ not found.
Folder EY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]\ not found.
========== FILES ==========
File\Folder C:\WINDOWS\System32\*.tmp not found.
C:\WINDOWS\LastGood.Tmp\SysWow64 folder moved successfully.
C:\WINDOWS\LastGood.Tmp\system32 folder moved successfully.
C:\WINDOWS\LastGood.Tmp folder moved successfully.
File\Folder C:\WINDOWS\system32\*.tmp.dll not found.
File\Folder C:\WINDOWS\System32\dllcache\*.tmp not found.
File\Folder C:\WINDOWS\system32\SET*.tmp not found.
File\Folder C:\WINDOWS\system32\DUMP*.tmp not found.
c:\windows\Tasks\CreateExplorerShellUnelevatedTask.job moved successfully.
File\Folder C:\*.tmp not found.
File\Folder C:\WINDOWS\System32\drivers\*.tmp not found.
File\Folder C:\Program Files\*.tmp not found.
File\Folder C:\Documents and Settings\All Users\Data aplikací\*.tmp not found.
File\Folder C:\Windows\SysNative\drivers\*.tmp not found.
File\Folder C:\Windows\SysWow64\drivers\*.tmp not found.
File\Folder C:\Program Files (x86)\*.tmp not found.
File\Folder C:\Windows\SysWow64\*.tmp not found.
File\Folder C:\Windows\SysNative\*.tmp not found.
File\Folder C:\Program Files (x86)\*.tmp not found.
File\Folder C:\WINDOWS\tasks\CreateExplorerShellUnelevatedTask.job not found.
C:\ProgramData\DP45977C.lfl moved successfully.
========== REGISTRY ==========
========== COMMANDS ==========

[EMPTYTEMP]

User: All Users

User: cunik.cz
->Temp folder emptied: 180347692 bytes
->Temporary Internet Files folder emptied: 189134 bytes
->FireFox cache emptied: 11840534 bytes
->Google Chrome cache emptied: 20435164 bytes
->Flash cache emptied: 0 bytes

User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: Public

%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32 (64bit) .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 6462 bytes
RecycleBin emptied: 1231015421 bytes

Total Files Cleaned = 1 377,00 mb


OTL by OldTimer - Version 3.2.69.0 log created on 03232018_135925

Files\Folders moved on Reboot...
C:\Users\cunik.cz\AppData\Local\Temp\fwxdyaog.sys moved successfully.

PendingFileRenameOperations files...

Registry entries deleted on Reboot...

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 38354
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž

Re: Prosím o kontrolu

Příspěvekod jaro3 » 23 bře 2018 17:10

Nákaza tam byla a balast taky.
Je lepší odinstalovat některé programy , abychom zjistili , kde je problém.

Co problémy? Popiš.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

cunik.cz
Level 3
Level 3
Příspěvky: 463
Registrován: leden 18
Pohlaví: Muž

Re: Prosím o kontrolu

Příspěvekod cunik.cz » 23 bře 2018 17:47

Ok a jaká nákaza, jestli se můžu zeptat. Můžu zase nainstalovat MBAM?


Zpět na “HiJackThis”

Kdo je online

Uživatelé prohlížející si toto fórum: CommonCrawl [Bot] a 1 host