Prosím o kontrolu Vyřešeno
Re: Prosím o kontrolu
ale pořád mám na ploše jen popisky bez ikon
- jaro3
- člen Security týmu
-
Guru Level 15
- Příspěvky: 43294
- Registrován: červen 07
- Bydliště: Jižní Čechy
- Pohlaví:
- Stav:
Offline
Re: Prosím o kontrolu
O4 - HKLM\..\Run: [AutoKMS] C:\WINDOWS\AutoKMS.exe
zlegalizuj si windows , office.
Prosím stáhni příslušnou verzi programu pro Tvůj systém 32-bit/64-bit FarbarRecovery Scan Tool (FrSt)
32bit.:
http://www.bleepingcomputer.com/downloa ... ool/dl/81/
64bit.:
http://www.bleepingcomputer.com/downloa ... ool/dl/82/
a ulož jej na plochu. ,pak spusť FrSt.
Potvrď způsob užití.
Neměň žádné z výchozích nastavení a klikni na položku „Scan“ („Skenovat“) .Když je skenování dokončeno, ukážou se dva logy = FRST.txt a Addition.txt a uloží se na ploše.Prosím zkopíruj sem celý jejich obsah.
Stáhni si aswMBR
na svojí plochu. Uzavři všechna okna , programy a prohlížeče. Poklepej na aswMBR.exe. Pokud se objeví hláška o možnosti stáhnutí databáze Avastu , klikni na NE. Poté klikni na „Scan“ . Po skenu klikni na „Save Log“ a ulož si log na plochu .Zkopíruj sem celý obsah toho logu. Pak klikni na „Exit“ k zavření programu.
zlegalizuj si windows , office.
Prosím stáhni příslušnou verzi programu pro Tvůj systém 32-bit/64-bit FarbarRecovery Scan Tool (FrSt)
32bit.:
http://www.bleepingcomputer.com/downloa ... ool/dl/81/
64bit.:
http://www.bleepingcomputer.com/downloa ... ool/dl/82/
a ulož jej na plochu. ,pak spusť FrSt.
Potvrď způsob užití.
Neměň žádné z výchozích nastavení a klikni na položku „Scan“ („Skenovat“) .Když je skenování dokončeno, ukážou se dva logy = FRST.txt a Addition.txt a uloží se na ploše.Prosím zkopíruj sem celý jejich obsah.
Stáhni si aswMBR
na svojí plochu. Uzavři všechna okna , programy a prohlížeče. Poklepej na aswMBR.exe. Pokud se objeví hláška o možnosti stáhnutí databáze Avastu , klikni na NE. Poté klikni na „Scan“ . Po skenu klikni na „Save Log“ a ulož si log na plochu .Zkopíruj sem celý obsah toho logu. Pak klikni na „Exit“ k zavření programu.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Re: Prosím o kontrolu
Additional scan result of Farbar Recovery Scan Tool (x86) Version:25-04-2016
Ran by Ladicek (2016-04-25 20:52:38)
Running from D:\Stažené soubory\scoped_dir_1004_23469
Microsoft Windows 10 Pro Version 1511 (X86) (2016-03-30 20:03:11)
Boot Mode: Normal
==========================================================
==================== Accounts: =============================
Administrator (S-1-5-21-762262506-1715309918-2816265786-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-762262506-1715309918-2816265786-503 - Limited - Disabled)
Guest (S-1-5-21-762262506-1715309918-2816265786-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-762262506-1715309918-2816265786-1002 - Limited - Enabled)
Ladicek (S-1-5-21-762262506-1715309918-2816265786-1001 - Administrator - Enabled) => C:\Users\Ladicek
Souteze (S-1-5-21-762262506-1715309918-2816265786-1005 - Administrator - Enabled) => C:\Users\Souteze
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: ESET Smart Security 9.0.318.22 (Enabled - Up to date) {19259FAE-8396-A113-46DB-15B0E7DFA289}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: ESET Smart Security 9.0.374.1 (Enabled - Up to date) {A2447E4A-A5AC-AE9D-7C6B-2EC29C58E834}
FW: ESET Personální firewall (Enabled) {211E1E8B-C9F9-A04B-6D84-BC85190CE5F2}
==================== Installed Programs ======================
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
32 Bit HP CIO Components Installer (Version: 8.1.1 - Hewlett-Packard) Hidden
Adobe Acrobat Reader DC - Czech (HKLM\...\{AC76BA86-7AD7-1029-7B44-AC0F074E4100}) (Version: 15.010.20060 - Adobe Systems Incorporated)
Adobe AIR (HKLM\...\Adobe AIR) (Version: 21.0.0.176 - Adobe Systems Incorporated)
Adobe Flash Player 21 PPAPI (HKLM\...\Adobe Flash Player PPAPI) (Version: 21.0.0.213 - Adobe Systems Incorporated)
BufferChm (Version: 140.0.298.000 - Hewlett-Packard) Hidden
C5300 (Version: 140.0.425.000 - Hewlett-Packard) Hidden
CCleaner (HKLM\...\CCleaner) (Version: 5.15 - Piriform)
Conexant 20561 SmartAudio HD (HKLM\...\CNXT_AUDIO_HDA) (Version: 4.92.12.0 - Conexant)
Datovka (HKLM\...\Datovka) (Version: 4.5.3 - CZ.NIC, z. s. p. o.)
Defraggler (HKLM\...\Defraggler) (Version: 2.21 - Piriform)
Destinations (Version: 140.0.253.000 - Hewlett-Packard) Hidden
DeviceDiscovery (Version: 140.0.298.000 - Hewlett-Packard) Hidden
ESET Smart Security (HKLM\...\{8F5A2A0B-1F5D-4114-8C24-790DBB0528C4}) (Version: 9.0.318.22 - ESET, spol. s r.o.)
Firebird 2.5.5.26952 (Win32) (HKLM\...\FBDBServer_2_5_is1) (Version: 2.5.5.26952 - Firebird Project)
Google Chrome (HKLM\...\Google Chrome) (Version: 50.0.2661.87 - Google Inc.)
Google Update Helper (Version: 1.3.29.5 - Google Inc.) Hidden
GPBaseService2 (Version: 140.0.297.000 - Hewlett-Packard) Hidden
HDsum 2.4.0.3 (HKLM\...\HDsum) (Version: 2.4.0.3 - Ondřej Švík)
HP Customer Participation Program 14.0 (HKLM\...\HPExtendedCapabilities) (Version: 14.0 - HP)
HP Imaging Device Functions 14.0 (HKLM\...\HP Imaging Device Functions) (Version: 14.0 - HP)
HP LaserJet Professional P1100-P1560-P1600 Series (HKLM\...\HP LaserJet Professional P1100-P1560-P1600 Series) (Version: - )
HP Photo Creations (HKU\S-1-5-21-762262506-1715309918-2816265786-1001\...\HP Photo Creations) (Version: 1.0.0.20332 - HP)
HP Photosmart C5300 All-In-One Driver Software 14.0 Rel. 6 (HKLM\...\{12440487-BEA5-48CF-A36C-C86F5D350999}) (Version: 14.0 - HP)
HP Solution Center 14.0 (HKLM\...\HP Solution Center & Imaging Support Tools) (Version: 14.0 - HP)
HP Support Assistant (HKLM\...\{78E2C850-ADA6-420D-BA35-2F4A9BE733CC}) (Version: 8.2.8.25 - HP)
HP Support Solutions Framework (HKLM\...\{3D6FF65E-EE93-4D90-B5D7-0DC856E2AFEB}) (Version: 12.3.11.29 - HP)
HP Update (HKLM\...\{912D30CF-F39E-4B31-AD9A-123C6B794EE2}) (Version: 5.005.002.002 - Hewlett-Packard)
HPPhotoGadget (Version: 140.0.524.000 - Hewlett-Packard) Hidden
hppLaserJetService (Version: 001.001.0.0 - Hewlett-Packard) Hidden
hppP1100P1560P1600SeriesLaserJetService (Version: 001.001.0.0 - Hewlett-Packard) Hidden
HPProductAssistant (Version: 140.0.298.000 - Hewlett-Packard) Hidden
hppusgP1100P1560P1600Series (Version: 1.0.0.1 - Hewlett-Packard) Hidden
HPSSupply (Version: 140.0.297.000 - Hewlett-Packard) Hidden
Kodi (HKU\S-1-5-21-762262506-1715309918-2816265786-1001\...\Kodi) (Version: - XBMC-Foundation)
Lenovo Power Management Driver (HKLM\...\Power Management Driver) (Version: 1.67.10.20 - Lenovo)
Lenovo Service Bridge (HKU\S-1-5-21-762262506-1715309918-2816265786-1001\...\cbe8636f7dd0cf1d) (Version: 1.6.3.1 - Lenovo)
Lenovo Solution Center (HKLM\...\{E442BFFD-8406-4C6D-BE7E-0CF6E61EE363}) (Version: 3.2.004.00 - Lenovo)
Lenovo System Interface Foundation (HKLM\...\{884BAF97-AC8D-463E-846A-47DD41866A19}) (Version: 1.0.054.00 - Lenovo)
Lenovo System Update (HKLM\...\{25C64847-B900-48AD-A164-1B4F9B774650}) (Version: 5.07.0022 - Lenovo)
MarketResearch (Version: 140.0.212.000 - Hewlett-Packard) Hidden
Metric Collection SDK (Version: 1.1.0008.00 - Lenovo Group Limited) Hidden
Microsoft Office Professional Plus 2010 (HKLM\...\Office14.PROPLUSR) (Version: 14.0.7015.1000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x86) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x86)) (Version: 10.0.50903 - Microsoft Corporation)
MSI to redistribute MS VS2005 CRT libraries (HKLM\...\{A8D93648-9F7F-407D-915C-62044644C3DA}) (Version: 8.0.50727.42 - The Firebird Project)
Opera Stable 36.0.2130.65 (HKLM\...\Opera 36.0.2130.65) (Version: 36.0.2130.65 - Opera Software)
PDFCreator (HKLM\...\{0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}) (Version: 2.3.0 - pdfforge GmbH)
PS_AIO_04_C5300_Software_Min (Version: 140.0.425.000 - Hewlett-Packard) Hidden
Scan (Version: 140.0.253.000 - Hewlett-Packard) Hidden
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM\...\{91140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUSR_{DE28B448-32E8-4E8F-84F0-A52B21A49B5B}) (Version: - Microsoft)
Shop for HP Supplies (HKLM\...\Shop for HP Supplies) (Version: 14.0 - HP)
Skype™ 7.22 (HKLM\...\{FC965A47-4839-40CA-B618-18F486F042C6}) (Version: 7.22.109 - Skype Technologies S.A.)
SolutionCenter (Version: 140.0.299.000 - Hewlett-Packard) Hidden
Status (Version: 140.0.342.000 - Hewlett-Packard) Hidden
ThinkPad Modem Adapter (HKLM\...\CNXT_MODEM_HDA_HSF) (Version: 7.80.5.0 - Conexant Systems)
ThinkPad Settings Dependency (HKLM\...\{08515684-CE49-47EF-B509-326A2E91BC5C}_is1) (Version: 3.0.0.9 - Lenovo)
ThinkPad UltraNav Driver (HKLM\...\{9F72EF8B-AEC9-4CA5-B483-143980AFD6FD}) (Version: 7.202.1616.206 - ALPS ELECTRIC CO., LTD.)
ThinkPad UltraNav Utility (HKLM\...\{17CBC505-D1AE-459D-B445-3D2000A85842}) (Version: 2.13.0 - Lenovo)
Toolbox (Version: 140.0.596.000 - Hewlett-Packard) Hidden
Total Commander Ultima Prime 7.0 (HKLM\...\TC UP) (Version: 7.0.0.1254 - TC UP Team)
TrayApp (Version: 140.0.297.000 - Hewlett-Packard) Hidden
USB Enhanced Performance Keyboard (HKLM\...\{989DC5D9-A776-430D-9E16-D36E5B81CD86}) (Version: 2.0.2.2 - Lenovo)
WebReg (Version: 140.0.297.017 - Hewlett-Packard) Hidden
WinRAR 5.31 (32-bit) (HKLM\...\WinRAR archiver) (Version: 5.31.0 - win.rar GmbH)
==================== Custom CLSID (Whitelisted): ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
CustomCLSID: HKU\S-1-5-21-762262506-1715309918-2816265786-1001_Classes\CLSID\{9356e2bb-6c9a-43c0-a771-5cacbdab6afe}\InprocServer32 -> C:\Users\Ladicek\AppData\Roaming\HP Photo Creations\RLPNUpload.dll (RocketLife)
CustomCLSID: HKU\S-1-5-21-762262506-1715309918-2816265786-1001_Classes\CLSID\{A10E0335-AFCA-4E7E-975F-CA30235FB29A}\InprocServer32 -> C:\Users\Ladicek\AppData\Roaming\Visan\plugins\npRLSecurePluginLayer.dll (RocketLife, LLP)
CustomCLSID: HKU\S-1-5-21-762262506-1715309918-2816265786-1001_Classes\CLSID\{cc05a616-ddb3-4cc0-9a21-dc0e9962b444}\InprocServer32 -> C:\Users\Ladicek\AppData\Roaming\HP Photo Creations\ContentMan.dll (RocketLife)
CustomCLSID: HKU\S-1-5-21-762262506-1715309918-2816265786-1001_Classes\CLSID\{ff280b55-14f1-49ae-b40f-15f5294ce630}\InprocServer32 -> C:\Users\Ladicek\AppData\Roaming\HP Photo Creations\RocketEngine.dll (Visan inc.)
==================== Scheduled Tasks (Whitelisted) =============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {007FDA5A-DBF6-4BB5-8427-5D1B6F92D097} - System32\Tasks\Lenovo\Lenovo Customer Feedback Program 35 => C:\Program Files\Lenovo\Customer Feedback Program 35\Lenovo.TVT.CustomerFeedback.Agent35.exe [2016-01-25] (Lenovo)
Task: {00C9E80A-7319-417B-B281-9AEBF9F403E9} - System32\Tasks\Lenovo\Lenovo Solution Center Launcher => C:\Program Files\lenovo\lenovo solution center\App\LSCService.exe [2016-01-25] (Lenovo)
Task: {033853C5-CB0A-4248-A477-D1B0F82D6250} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Active Health Launcher => C:\Program Files\Hewlett-Packard\HP Support Framework\Resources\HPActiveHealth\ActiveHealth.exe [2016-03-02] (Hewlett-Packard)
Task: {0606A674-8A31-4ECF-B32C-B767FBE8CB1C} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis => C:\Program Files\Hewlett-Packard\HP Support Framework\HPSF.exe [2016-02-18] (Hewlett-Packard Company)
Task: {173D345D-9174-42CA-85B0-52636A26A699} - System32\Tasks\TVT\TVSUUpdateTask => C:\Program Files\Lenovo\System Update\tvsuShim.exe [2016-01-13] ()
Task: {2F191F46-79D6-48A3-A8F4-9162385E550E} - System32\Tasks\Lenovo\LSC\Lenovo Solution Center Notifications => C:\Program Files\Lenovo\Lenovo Solution Center\LSCNotify.exe [2016-01-25] (Lenovo)
Task: {30625C99-396E-4681-A230-E89AB06DB9A1} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-12-13] (Adobe Systems Incorporated)
Task: {40A12327-9A97-41ED-8061-B289F565844F} - System32\Tasks\Lenovo\Lenovo Service Bridge\S-1-5-21-762262506-1715309918-2816265786-1001 => Rundll32.exe dfshim.dll,ShOpenVerbShortcut C:\Users\Ladicek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Lenovo\Lenovo Service Bridge.appref-ms
Task: {4193C854-379F-486E-BFF4-668014D9404F} - System32\Tasks\Lenovo\ImController\Plugins\LenovoSystemUpdatePlugin_TVSUUpdateTask_Weekly => reg.exe add hklm\SOFTWARE\Lenovo\SystemUpdatePlugin\scheduler /v start /t reg_dword /d 1 /f /reg:32
Task: {46694050-10F3-460D-92B8-ACCA23A81344} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe [2016-04-05] (Google Inc.)
Task: {4B5D395F-4971-46D9-88D1-EDEAADEA1FF8} - System32\Tasks\Adobe Flash Player Updater => C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2016-04-07] (Adobe Systems Incorporated)
Task: {4D03E1B5-D26D-44CD-A48B-A300CE119536} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Report => C:\Program Files\Hewlett-Packard\HP Support Solutions\Modules\HPSFReport.exe [2016-03-16] (Hewlett-Packard)
Task: {574AC4D1-139E-4131-A8C3-41969CD8C424} - System32\Tasks\Lenovo\Lenovo Settings Power => Rundll32.exe "C:\Program Files\ThinkPad\Utilities\PWMTR32V.dll",PwrMgrBkGndMonitor
Task: {5B05C102-D28B-4F27-9A22-DAEE1F1E2666} - System32\Tasks\Lenovo\LSC\LSCHardwareScan => C:\Program Files\Lenovo\Lenovo Solution Center\LSC.exe [2016-01-25] (Lenovo)
Task: {74FADD1F-63D0-4AD3-B306-E1870C73D94B} - System32\Tasks\Adobe Flash Player PPAPI Notifier => C:\WINDOWS\system32\Macromed\Flash\FlashUtil32_21_0_0_213_pepper.exe [2016-04-07] (Adobe Systems Incorporated)
Task: {76C5FFA5-55D4-4801-B2FA-A86773D810C1} - System32\Tasks\Lenovo\ImController\Plugins\LenovoSystemUpdatePlugin_TVSUUpdateTask => reg.exe add hklm\SOFTWARE\Lenovo\SystemUpdatePlugin\scheduler /v start /t reg_dword /d 1 /f /reg:32
Task: {7DB3E788-D024-492C-B563-BF67110E1826} - System32\Tasks\Lenovo\Lenovo Customer Feedback Program => C:\Program Files\Lenovo\Customer Feedback Program\Lenovo.TVT.CustomerFeedback.Agent.exe [2014-09-02] (Lenovo)
Task: {897F844D-492C-48AF-9EA1-8ACBE58D6C3C} - System32\Tasks\Hewlett-Packard\HP Active Health\HP Active Health Scan (HPSA) => C:\Program Files\Hewlett-Packard\HP Support Framework\Resources\HPActiveHealth\ActiveHealth.exe [2016-03-02] (Hewlett-Packard)
Task: {920D8CC5-7DDB-4C99-9E13-C8541F11297A} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater => C:\Program Files\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe [2016-03-16] (Hewlett-Packard)
Task: {998996FB-1DFB-4615-AFEE-94629739C7C0} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe [2016-04-05] (Google Inc.)
Task: {B81DDA7F-5AB5-4600-91AA-4B57232F65B2} - System32\Tasks\HPCeeScheduleForLadicek => C:\Program Files\Hewlett-Packard\HP Ceement\HPCEE.exe [2016-01-22] (Hewlett-Packard)
Task: {BA8C0307-40F6-4C2B-86D7-88AEB65A26B7} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2016-02-12] (Piriform Ltd)
Task: {FA8B652C-C0A6-4D68-85C6-03E18344380E} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start => C:\Program Files\Hewlett-Packard\HP Support Framework\HPSF.exe [2016-02-18] (Hewlett-Packard Company)
Task: {FC16FF4B-3555-48EC-A162-B2E838619BBE} - System32\Tasks\Opera scheduled Autoupdate 1459399918 => C:\Program Files\Opera\launcher.exe [2016-04-11] (Opera Software)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\WINDOWS\Tasks\Adobe Flash Player PPAPI Notifier.job => C:\WINDOWS\system32\Macromed\Flash\FlashUtil32_21_0_0_213_pepper.exe
Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\HPCeeScheduleForLadicek.job => C:\Program Files\Hewlett-Packard\HP Ceement\HPCEE.exe
==================== Shortcuts =============================
(The entries could be listed to be restored or removed.)
==================== Loaded Modules (Whitelisted) ==============
2016-04-02 08:35 - 2012-08-31 15:01 - 00151552 _____ () C:\WINDOWS\System32\HP1100LM.DLL
2016-04-02 08:36 - 2012-08-31 15:01 - 00069632 _____ () C:\WINDOWS\system32\spool\PRTPROCS\W32X86\HP1100PP.DLL
2015-11-15 09:39 - 2012-09-26 07:45 - 00081920 _____ () C:\WINDOWS\SYSTEM32\mvusbews.DLL
2016-04-14 02:12 - 2016-04-14 02:12 - 01232896 _____ () C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\Windows.Networking\88dd5378cc099752f2a1e348d96060d2\Windows.Networking.ni.dll
2015-10-30 07:44 - 2015-10-30 07:44 - 00149504 ____N () C:\WINDOWS\SYSTEM32\ism32k.dll
2016-04-13 00:06 - 2016-03-29 11:37 - 01862008 _____ () C:\WINDOWS\system32\CoreUIComponents.dll
2016-04-14 02:12 - 2016-04-14 02:12 - 00335360 _____ () C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\Windows.Foundation\cb08b30577c06f92af1cf3ab27b72e9c\Windows.Foundation.ni.dll
2016-04-14 02:12 - 2016-04-14 02:12 - 02921472 _____ () C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\Windows.App640a3541#\cafa3d2563114560256e093ca4f804ed\Windows.ApplicationModel.ni.dll
2016-04-14 02:12 - 2016-04-14 02:12 - 00821248 _____ () C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\Windows.Storage\0e447a18cb051e2b7dab7fe0256c7c7e\Windows.Storage.ni.dll
2016-04-13 00:06 - 2016-03-29 11:37 - 01862008 _____ () C:\WINDOWS\System32\CoreUIComponents.dll
2013-09-05 00:14 - 2013-09-05 00:14 - 04300456 _____ () C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Cultures\OFFICE.ODF
2016-04-10 21:35 - 2015-07-09 08:00 - 00095232 ____N () C:\Program Files\ThinkPad\Utilities\CZ\PWMRT32V.DLL
2015-12-17 21:56 - 2015-12-07 06:11 - 00070656 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\Windows.UI.Shell.SharedUtilities.dll
2016-04-13 00:05 - 2016-04-02 05:26 - 00316416 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\QuickActions.dll
2016-04-13 00:05 - 2016-04-02 05:09 - 05340672 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll
2016-04-13 00:05 - 2016-04-02 05:03 - 00471552 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
2016-04-13 00:06 - 2016-04-02 05:03 - 02366976 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll
2016-04-13 00:06 - 2016-04-02 05:07 - 02657280 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll
2016-04-14 23:11 - 2016-04-14 23:10 - 63830568 _____ () C:\Program Files\Opera\36.0.2130.65\opera.dll
2016-04-14 23:10 - 2016-04-14 23:08 - 02134568 _____ () C:\Program Files\Opera\36.0.2130.65\libglesv2.dll
2016-04-14 23:10 - 2016-04-14 23:08 - 00082472 _____ () C:\Program Files\Opera\36.0.2130.65\libegl.dll
2016-04-07 21:04 - 2016-04-07 21:04 - 17532096 _____ () C:\WINDOWS\system32\Macromed\Flash\pepflashplayer32_21_0_0_213.dll
2013-09-05 00:14 - 2013-09-05 00:14 - 04300456 _____ () C:\Program Files\Common Files\Microsoft Shared\office14\Cultures\office.odf
2015-11-11 02:42 - 2015-11-11 02:42 - 01045672 _____ () C:\Program Files\Microsoft Office\Office14\ADDINS\UmOutlookAddin.dll
==================== Alternate Data Streams (Whitelisted) =========
(If an entry is included in the fixlist, only the ADS will be removed.)
==================== Safe Mode (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" value will be restored.)
==================== EXE Association (Whitelisted) ===============
(If an entry is included in the fixlist, the registry item will be restored to default or removed.)
==================== Internet Explorer trusted/restricted ===============
(If an entry is included in the fixlist, it will be removed from the registry.)
==================== Hosts content: ===============================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2016-03-30 22:39 - 2016-04-24 21:14 - 00000753 ____A C:\WINDOWS\system32\Drivers\etc\hosts
127.0.0.1 localhost
==================== Other Areas ============================
(Currently there is no automatic fix for this section.)
HKU\S-1-5-21-762262506-1715309918-2816265786-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Ladicek\AppData\Local\Packages\Microsoft.Windows.Photos_8wekyb3d8bbwe\LocalState\PhotosAppBackground\{55d76c64-e902-4a34-9e7c-92c84bc2ce1b}.jpg
DNS Servers: 77.48.254.254 - 77.48.100.254
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.
==================== MSCONFIG/TASK MANAGER disabled items ==
(Currently there is no automatic fix for this section.)
HKLM\...\StartupApproved\StartupFolder: => "HP Digital Imaging Monitor.lnk"
HKLM\...\StartupApproved\Run: => "HPUsageTrackingLEDM"
==================== FirewallRules (Whitelisted) ===============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139
FirewallRules: [TCP Query User{54614178-E3A8-42D6-B0E8-7D8D90CAC87C}C:\windows\kmsemulator.exe] => (Allow) C:\windows\kmsemulator.exe
FirewallRules: [UDP Query User{78587E38-4A33-4614-AC70-1A56565ED1D9}C:\windows\kmsemulator.exe] => (Allow) C:\windows\kmsemulator.exe
FirewallRules: [{873C4346-95D9-4424-84D6-8A756BA6C077}] => (Allow) C:\Program Files\Lenovo\System Update\uncserver.exe
FirewallRules: [{53F9B344-D500-43D5-8EC6-CA574C595BFA}] => (Allow) C:\Program Files\Lenovo\System Update\uncserver.exe
FirewallRules: [{03B1D8C3-5FA3-4A9B-BE67-3C5482AE1BDF}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
FirewallRules: [{21677692-794E-49EE-8C73-4DA438A5AB8C}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hpqste08.exe
FirewallRules: [{7EC9A4C7-7E24-4710-8D3B-69075C040616}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hposid01.exe
FirewallRules: [{FDE50B37-A6D2-4A20-8CE2-A48814EF9112}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hpqkygrp.exe
FirewallRules: [{8074FC7C-8D3B-4F19-9BFB-9DCB539FABD3}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hpfccopy.exe
FirewallRules: [{0AE0E43C-BF4A-4F09-B78F-B26BA1C9F67D}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hpoews01.exe
FirewallRules: [{C8551729-844D-4A03-9F6E-5FA52E5DE986}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hpiscnapp.exe
FirewallRules: [{2F805BF3-9FDB-45D4-9539-969B182ADF39}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hpqgplgtupl.exe
FirewallRules: [{139499E3-0224-46A8-B383-3D17851AABB2}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hpqgpc01.exe
FirewallRules: [{36188A17-C7D8-4692-AE93-0977A0D26EEB}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hpqusgm.exe
FirewallRules: [{52122F8B-5D24-40A2-AF37-2B1F9ECC157E}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hpqusgh.exe
FirewallRules: [{4A83D19D-C37C-4951-BFDB-BC2045D8B9E9}] => (Allow) C:\Program Files\HP\hp software update\hpwucli.exe
FirewallRules: [{68FCA74A-3D07-4A57-B0FD-78E65D84F01C}] => (Allow) C:\Users\Ladicek\AppData\Local\Temp\7zS425A\HPDiagnosticCoreUI.exe
FirewallRules: [{136CBE0E-9EEC-4DF8-AA17-AB7D6F14E9A1}] => (Allow) C:\Users\Ladicek\AppData\Local\Temp\7zS425A\HPDiagnosticCoreUI.exe
FirewallRules: [{DFAE5FBA-CC9D-421B-928D-93650531DC89}] => (Allow) C:\Users\Ladicek\AppData\Local\Temp\7zS4542\hppiw.exe
FirewallRules: [{C30299AA-1F52-4C03-9E5C-1DBAF5E3FB7A}] => (Allow) C:\Users\Ladicek\AppData\Local\Temp\7zS4542\hppiw.exe
FirewallRules: [{08F88C1C-B552-48F0-956A-49D095334679}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe
FirewallRules: [{C5AA51F6-D062-4B70-9544-07338BE12426}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe
==================== Restore Points =========================
24-04-2016 00:17:14 JRT Pre-Junkware Removal
==================== Faulty Device Manager Devices =============
Name: HP LaserJet P2055dn
Description: HP LaserJet P2055dn
Class Guid: {4d36e971-e325-11ce-bfc1-08002be10318}
Manufacturer: Hewlett-Packard
Service:
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.
==================== Event log errors: =========================
Application errors:
==================
Error: (04/25/2016 08:47:24 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: Lenovo.Modern.ImController.PluginHost.exe, verze: 1.0.72.0, časové razítko: 0x56aaf746
Název chybujícího modulu: KERNELBASE.dll, verze: 10.0.10586.162, časové razítko: 0x56cd40d3
Kód výjimky: 0xe0434352
Posun chyby: 0x000d2d82
ID chybujícího procesu: 0x1584
Čas spuštění chybující aplikace: 0xLenovo.Modern.ImController.PluginHost.exe0
Cesta k chybující aplikaci: Lenovo.Modern.ImController.PluginHost.exe1
Cesta k chybujícímu modulu: Lenovo.Modern.ImController.PluginHost.exe2
ID zprávy: Lenovo.Modern.ImController.PluginHost.exe3
Úplný název chybujícího balíčku: Lenovo.Modern.ImController.PluginHost.exe4
ID aplikace související s chybujícím balíčkem: Lenovo.Modern.ImController.PluginHost.exe5
Error: (04/25/2016 08:47:23 PM) (Source: .NET Runtime) (EventID: 1026) (User: )
Description: Aplikace: Lenovo.Modern.ImController.PluginHost.exe
Verze Framework: v4.0.30319
Popis: Proces byl ukončen z důvodu neošetřené výjimky.
Informace o výjimce: System.BadImageFormatException
na LenovoAudioPlugin.AudioAccess.RunCustomMonitor(IntPtr, IntPtr, System.String, Int32)
na LenovoAudioPlugin.AudioAccess+<>c.<RespondToEventAsync>b__13_0()
na System.Threading.ThreadHelper.ThreadStart_Context(System.Object)
na System.Threading.ExecutionContext.RunInternal(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
na System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
na System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object)
na System.Threading.ThreadHelper.ThreadStart()
Error: (04/25/2016 12:24:14 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: Lenovo.Modern.ImController.PluginHost.exe, verze: 1.0.72.0, časové razítko: 0x56aaf746
Název chybujícího modulu: KERNELBASE.dll, verze: 10.0.10586.162, časové razítko: 0x56cd40d3
Kód výjimky: 0xe0434352
Posun chyby: 0x000d2d82
ID chybujícího procesu: 0x11e4
Čas spuštění chybující aplikace: 0xLenovo.Modern.ImController.PluginHost.exe0
Cesta k chybující aplikaci: Lenovo.Modern.ImController.PluginHost.exe1
Cesta k chybujícímu modulu: Lenovo.Modern.ImController.PluginHost.exe2
ID zprávy: Lenovo.Modern.ImController.PluginHost.exe3
Úplný název chybujícího balíčku: Lenovo.Modern.ImController.PluginHost.exe4
ID aplikace související s chybujícím balíčkem: Lenovo.Modern.ImController.PluginHost.exe5
Error: (04/25/2016 12:24:12 AM) (Source: .NET Runtime) (EventID: 1026) (User: )
Description: Aplikace: Lenovo.Modern.ImController.PluginHost.exe
Verze Framework: v4.0.30319
Popis: Proces byl ukončen z důvodu neošetřené výjimky.
Informace o výjimce: System.BadImageFormatException
na LenovoAudioPlugin.AudioAccess.RunCustomMonitor(IntPtr, IntPtr, System.String, Int32)
na LenovoAudioPlugin.AudioAccess+<>c.<RespondToEventAsync>b__13_0()
na System.Threading.ThreadHelper.ThreadStart_Context(System.Object)
na System.Threading.ExecutionContext.RunInternal(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
na System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
na System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object)
na System.Threading.ThreadHelper.ThreadStart()
Error: (04/24/2016 09:55:42 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: Lenovo.Modern.ImController.PluginHost.exe, verze: 1.0.72.0, časové razítko: 0x56aaf746
Název chybujícího modulu: KERNELBASE.dll, verze: 10.0.10586.162, časové razítko: 0x56cd40d3
Kód výjimky: 0xe0434352
Posun chyby: 0x000d2d82
ID chybujícího procesu: 0x1378
Čas spuštění chybující aplikace: 0xLenovo.Modern.ImController.PluginHost.exe0
Cesta k chybující aplikaci: Lenovo.Modern.ImController.PluginHost.exe1
Cesta k chybujícímu modulu: Lenovo.Modern.ImController.PluginHost.exe2
ID zprávy: Lenovo.Modern.ImController.PluginHost.exe3
Úplný název chybujícího balíčku: Lenovo.Modern.ImController.PluginHost.exe4
ID aplikace související s chybujícím balíčkem: Lenovo.Modern.ImController.PluginHost.exe5
Error: (04/24/2016 09:55:39 PM) (Source: .NET Runtime) (EventID: 1026) (User: )
Description: Aplikace: Lenovo.Modern.ImController.PluginHost.exe
Verze Framework: v4.0.30319
Popis: Proces byl ukončen z důvodu neošetřené výjimky.
Informace o výjimce: System.BadImageFormatException
na LenovoAudioPlugin.AudioAccess.RunCustomMonitor(IntPtr, IntPtr, System.String, Int32)
na LenovoAudioPlugin.AudioAccess+<>c.<RespondToEventAsync>b__13_0()
na System.Threading.ThreadHelper.ThreadStart_Context(System.Object)
na System.Threading.ExecutionContext.RunInternal(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
na System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
na System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object)
na System.Threading.ThreadHelper.ThreadStart()
Error: (04/24/2016 09:40:30 PM) (Source: Perflib) (EventID: 1008) (User: )
Description: BITSC:\Windows\System32\bitsperf.dll4
Error: (04/24/2016 09:36:52 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program explorer.exe verze 10.0.10586.104 přestal spolupracovat se systémem Windows a byl ukončen. Chcete-li zjistit, zda je k dispozici více informací o tomto problému, vyhledejte historii problému v ovládacím panelu Zabezpečení a údržba.
ID procesu: e78
Čas spuštění: 01d19e6024fcb9c3
Čas ukončení: 1669
Cesta k aplikaci: C:\Windows\explorer.exe
ID hlášení: e09257e4-0a53-11e6-ae18-002186ff9497
Úplný název balíčku s chybou:
ID aplikace související s balíčkem s chybou:
Error: (04/24/2016 09:33:36 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: Lenovo.Modern.ImController.PluginHost.exe, verze: 1.0.72.0, časové razítko: 0x56aaf746
Název chybujícího modulu: KERNELBASE.dll, verze: 10.0.10586.162, časové razítko: 0x56cd40d3
Kód výjimky: 0xe0434352
Posun chyby: 0x000d2d82
ID chybujícího procesu: 0x12d8
Čas spuštění chybující aplikace: 0xLenovo.Modern.ImController.PluginHost.exe0
Cesta k chybující aplikaci: Lenovo.Modern.ImController.PluginHost.exe1
Cesta k chybujícímu modulu: Lenovo.Modern.ImController.PluginHost.exe2
ID zprávy: Lenovo.Modern.ImController.PluginHost.exe3
Úplný název chybujícího balíčku: Lenovo.Modern.ImController.PluginHost.exe4
ID aplikace související s chybujícím balíčkem: Lenovo.Modern.ImController.PluginHost.exe5
Error: (04/24/2016 09:33:31 PM) (Source: .NET Runtime) (EventID: 1026) (User: )
Description: Aplikace: Lenovo.Modern.ImController.PluginHost.exe
Verze Framework: v4.0.30319
Popis: Proces byl ukončen z důvodu neošetřené výjimky.
Informace o výjimce: System.BadImageFormatException
na LenovoAudioPlugin.AudioAccess.RunCustomMonitor(IntPtr, IntPtr, System.String, Int32)
na LenovoAudioPlugin.AudioAccess+<>c.<RespondToEventAsync>b__13_0()
na System.Threading.ThreadHelper.ThreadStart_Context(System.Object)
na System.Threading.ExecutionContext.RunInternal(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
na System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
na System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object)
na System.Threading.ThreadHelper.ThreadStart()
System errors:
=============
Error: (04/25/2016 08:52:52 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Služba HP Network Devices Support byla ukončena s následující chybou:
%%126
Error: (04/25/2016 08:52:52 PM) (Source: DCOM) (EventID: 10010) (User: NT AUTHORITY)
Description: {10DA4F3C-CC99-4190-BE4D-58330754E882}
Error: (04/25/2016 08:50:52 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Služba HP Network Devices Support byla ukončena s následující chybou:
%%126
Error: (04/25/2016 08:50:52 PM) (Source: DCOM) (EventID: 10010) (User: NT AUTHORITY)
Description: {10DA4F3C-CC99-4190-BE4D-58330754E882}
Error: (04/25/2016 08:48:52 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Služba HP Network Devices Support byla ukončena s následující chybou:
%%126
Error: (04/25/2016 08:41:06 PM) (Source: DCOM) (EventID: 10010) (User: NT AUTHORITY)
Description: {10DA4F3C-CC99-4190-BE4D-58330754E882}
Error: (04/25/2016 08:39:06 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Služba HP Network Devices Support byla ukončena s následující chybou:
%%126
Error: (04/25/2016 08:39:06 PM) (Source: DCOM) (EventID: 10010) (User: NT AUTHORITY)
Description: {10DA4F3C-CC99-4190-BE4D-58330754E882}
Error: (04/25/2016 08:37:06 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Služba HP Network Devices Support byla ukončena s následující chybou:
%%126
Error: (04/25/2016 04:00:53 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Přístup k uživatelským datům_4db9e byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 10000 milisekund: Restartovat službu.
CodeIntegrity:
===================================
Date: 2016-04-25 00:19:10.911
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\ESET\ESET Smart Security\Drivers\ehdrv\ehdrv.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
Date: 2016-04-25 00:19:10.791
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\ESET\ESET Smart Security\Drivers\ehdrv\ehdrv.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
Date: 2016-04-25 00:19:10.670
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\eelam.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
Date: 2016-04-25 00:19:10.604
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\eelam.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
Date: 2016-04-25 00:19:10.540
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\ESET\ESET Smart Security\Drivers\eelam\eelam.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
Date: 2016-04-25 00:19:08.952
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\ESET\ESET Smart Security\Drivers\eelam\eelam.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
Date: 2016-04-24 21:55:16.351
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\ESET\ESET Smart Security\Drivers\ehdrv\ehdrv.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
Date: 2016-04-24 21:55:16.226
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\ESET\ESET Smart Security\Drivers\ehdrv\ehdrv.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
Date: 2016-04-24 21:55:16.106
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\eelam.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
Date: 2016-04-24 21:55:16.040
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\eelam.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
==================== Memory info ===========================
Processor: Intel(R) Core(TM)2 Duo CPU T5870 @ 2.00GHz
Percentage of memory in use: 75%
Total physical RAM: 3032.03 MB
Available physical RAM: 747.24 MB
Total Virtual: 4440.03 MB
Available Virtual: 1537.3 MB
==================== Drives ================================
Drive c: () (Fixed) (Total:87.45 GB) (Free:59.41 GB) NTFS
Drive d: () (Fixed) (Total:210.1 GB) (Free:122.11 GB) NTFS
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (MBR Code: Windows 7 or
(Size: 298.1 GB) (Disk ID: 2C74BADC)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=87.5 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=450 MB) - (Type=27)
Partition 4: (Not Active) - (Size=210.1 GB) - (Type=07 NTFS)
==================== End of Addition.txt ============================
Ran by Ladicek (2016-04-25 20:52:38)
Running from D:\Stažené soubory\scoped_dir_1004_23469
Microsoft Windows 10 Pro Version 1511 (X86) (2016-03-30 20:03:11)
Boot Mode: Normal
==========================================================
==================== Accounts: =============================
Administrator (S-1-5-21-762262506-1715309918-2816265786-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-762262506-1715309918-2816265786-503 - Limited - Disabled)
Guest (S-1-5-21-762262506-1715309918-2816265786-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-762262506-1715309918-2816265786-1002 - Limited - Enabled)
Ladicek (S-1-5-21-762262506-1715309918-2816265786-1001 - Administrator - Enabled) => C:\Users\Ladicek
Souteze (S-1-5-21-762262506-1715309918-2816265786-1005 - Administrator - Enabled) => C:\Users\Souteze
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: ESET Smart Security 9.0.318.22 (Enabled - Up to date) {19259FAE-8396-A113-46DB-15B0E7DFA289}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: ESET Smart Security 9.0.374.1 (Enabled - Up to date) {A2447E4A-A5AC-AE9D-7C6B-2EC29C58E834}
FW: ESET Personální firewall (Enabled) {211E1E8B-C9F9-A04B-6D84-BC85190CE5F2}
==================== Installed Programs ======================
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
32 Bit HP CIO Components Installer (Version: 8.1.1 - Hewlett-Packard) Hidden
Adobe Acrobat Reader DC - Czech (HKLM\...\{AC76BA86-7AD7-1029-7B44-AC0F074E4100}) (Version: 15.010.20060 - Adobe Systems Incorporated)
Adobe AIR (HKLM\...\Adobe AIR) (Version: 21.0.0.176 - Adobe Systems Incorporated)
Adobe Flash Player 21 PPAPI (HKLM\...\Adobe Flash Player PPAPI) (Version: 21.0.0.213 - Adobe Systems Incorporated)
BufferChm (Version: 140.0.298.000 - Hewlett-Packard) Hidden
C5300 (Version: 140.0.425.000 - Hewlett-Packard) Hidden
CCleaner (HKLM\...\CCleaner) (Version: 5.15 - Piriform)
Conexant 20561 SmartAudio HD (HKLM\...\CNXT_AUDIO_HDA) (Version: 4.92.12.0 - Conexant)
Datovka (HKLM\...\Datovka) (Version: 4.5.3 - CZ.NIC, z. s. p. o.)
Defraggler (HKLM\...\Defraggler) (Version: 2.21 - Piriform)
Destinations (Version: 140.0.253.000 - Hewlett-Packard) Hidden
DeviceDiscovery (Version: 140.0.298.000 - Hewlett-Packard) Hidden
ESET Smart Security (HKLM\...\{8F5A2A0B-1F5D-4114-8C24-790DBB0528C4}) (Version: 9.0.318.22 - ESET, spol. s r.o.)
Firebird 2.5.5.26952 (Win32) (HKLM\...\FBDBServer_2_5_is1) (Version: 2.5.5.26952 - Firebird Project)
Google Chrome (HKLM\...\Google Chrome) (Version: 50.0.2661.87 - Google Inc.)
Google Update Helper (Version: 1.3.29.5 - Google Inc.) Hidden
GPBaseService2 (Version: 140.0.297.000 - Hewlett-Packard) Hidden
HDsum 2.4.0.3 (HKLM\...\HDsum) (Version: 2.4.0.3 - Ondřej Švík)
HP Customer Participation Program 14.0 (HKLM\...\HPExtendedCapabilities) (Version: 14.0 - HP)
HP Imaging Device Functions 14.0 (HKLM\...\HP Imaging Device Functions) (Version: 14.0 - HP)
HP LaserJet Professional P1100-P1560-P1600 Series (HKLM\...\HP LaserJet Professional P1100-P1560-P1600 Series) (Version: - )
HP Photo Creations (HKU\S-1-5-21-762262506-1715309918-2816265786-1001\...\HP Photo Creations) (Version: 1.0.0.20332 - HP)
HP Photosmart C5300 All-In-One Driver Software 14.0 Rel. 6 (HKLM\...\{12440487-BEA5-48CF-A36C-C86F5D350999}) (Version: 14.0 - HP)
HP Solution Center 14.0 (HKLM\...\HP Solution Center & Imaging Support Tools) (Version: 14.0 - HP)
HP Support Assistant (HKLM\...\{78E2C850-ADA6-420D-BA35-2F4A9BE733CC}) (Version: 8.2.8.25 - HP)
HP Support Solutions Framework (HKLM\...\{3D6FF65E-EE93-4D90-B5D7-0DC856E2AFEB}) (Version: 12.3.11.29 - HP)
HP Update (HKLM\...\{912D30CF-F39E-4B31-AD9A-123C6B794EE2}) (Version: 5.005.002.002 - Hewlett-Packard)
HPPhotoGadget (Version: 140.0.524.000 - Hewlett-Packard) Hidden
hppLaserJetService (Version: 001.001.0.0 - Hewlett-Packard) Hidden
hppP1100P1560P1600SeriesLaserJetService (Version: 001.001.0.0 - Hewlett-Packard) Hidden
HPProductAssistant (Version: 140.0.298.000 - Hewlett-Packard) Hidden
hppusgP1100P1560P1600Series (Version: 1.0.0.1 - Hewlett-Packard) Hidden
HPSSupply (Version: 140.0.297.000 - Hewlett-Packard) Hidden
Kodi (HKU\S-1-5-21-762262506-1715309918-2816265786-1001\...\Kodi) (Version: - XBMC-Foundation)
Lenovo Power Management Driver (HKLM\...\Power Management Driver) (Version: 1.67.10.20 - Lenovo)
Lenovo Service Bridge (HKU\S-1-5-21-762262506-1715309918-2816265786-1001\...\cbe8636f7dd0cf1d) (Version: 1.6.3.1 - Lenovo)
Lenovo Solution Center (HKLM\...\{E442BFFD-8406-4C6D-BE7E-0CF6E61EE363}) (Version: 3.2.004.00 - Lenovo)
Lenovo System Interface Foundation (HKLM\...\{884BAF97-AC8D-463E-846A-47DD41866A19}) (Version: 1.0.054.00 - Lenovo)
Lenovo System Update (HKLM\...\{25C64847-B900-48AD-A164-1B4F9B774650}) (Version: 5.07.0022 - Lenovo)
MarketResearch (Version: 140.0.212.000 - Hewlett-Packard) Hidden
Metric Collection SDK (Version: 1.1.0008.00 - Lenovo Group Limited) Hidden
Microsoft Office Professional Plus 2010 (HKLM\...\Office14.PROPLUSR) (Version: 14.0.7015.1000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x86) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x86)) (Version: 10.0.50903 - Microsoft Corporation)
MSI to redistribute MS VS2005 CRT libraries (HKLM\...\{A8D93648-9F7F-407D-915C-62044644C3DA}) (Version: 8.0.50727.42 - The Firebird Project)
Opera Stable 36.0.2130.65 (HKLM\...\Opera 36.0.2130.65) (Version: 36.0.2130.65 - Opera Software)
PDFCreator (HKLM\...\{0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}) (Version: 2.3.0 - pdfforge GmbH)
PS_AIO_04_C5300_Software_Min (Version: 140.0.425.000 - Hewlett-Packard) Hidden
Scan (Version: 140.0.253.000 - Hewlett-Packard) Hidden
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM\...\{91140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUSR_{DE28B448-32E8-4E8F-84F0-A52B21A49B5B}) (Version: - Microsoft)
Shop for HP Supplies (HKLM\...\Shop for HP Supplies) (Version: 14.0 - HP)
Skype™ 7.22 (HKLM\...\{FC965A47-4839-40CA-B618-18F486F042C6}) (Version: 7.22.109 - Skype Technologies S.A.)
SolutionCenter (Version: 140.0.299.000 - Hewlett-Packard) Hidden
Status (Version: 140.0.342.000 - Hewlett-Packard) Hidden
ThinkPad Modem Adapter (HKLM\...\CNXT_MODEM_HDA_HSF) (Version: 7.80.5.0 - Conexant Systems)
ThinkPad Settings Dependency (HKLM\...\{08515684-CE49-47EF-B509-326A2E91BC5C}_is1) (Version: 3.0.0.9 - Lenovo)
ThinkPad UltraNav Driver (HKLM\...\{9F72EF8B-AEC9-4CA5-B483-143980AFD6FD}) (Version: 7.202.1616.206 - ALPS ELECTRIC CO., LTD.)
ThinkPad UltraNav Utility (HKLM\...\{17CBC505-D1AE-459D-B445-3D2000A85842}) (Version: 2.13.0 - Lenovo)
Toolbox (Version: 140.0.596.000 - Hewlett-Packard) Hidden
Total Commander Ultima Prime 7.0 (HKLM\...\TC UP) (Version: 7.0.0.1254 - TC UP Team)
TrayApp (Version: 140.0.297.000 - Hewlett-Packard) Hidden
USB Enhanced Performance Keyboard (HKLM\...\{989DC5D9-A776-430D-9E16-D36E5B81CD86}) (Version: 2.0.2.2 - Lenovo)
WebReg (Version: 140.0.297.017 - Hewlett-Packard) Hidden
WinRAR 5.31 (32-bit) (HKLM\...\WinRAR archiver) (Version: 5.31.0 - win.rar GmbH)
==================== Custom CLSID (Whitelisted): ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
CustomCLSID: HKU\S-1-5-21-762262506-1715309918-2816265786-1001_Classes\CLSID\{9356e2bb-6c9a-43c0-a771-5cacbdab6afe}\InprocServer32 -> C:\Users\Ladicek\AppData\Roaming\HP Photo Creations\RLPNUpload.dll (RocketLife)
CustomCLSID: HKU\S-1-5-21-762262506-1715309918-2816265786-1001_Classes\CLSID\{A10E0335-AFCA-4E7E-975F-CA30235FB29A}\InprocServer32 -> C:\Users\Ladicek\AppData\Roaming\Visan\plugins\npRLSecurePluginLayer.dll (RocketLife, LLP)
CustomCLSID: HKU\S-1-5-21-762262506-1715309918-2816265786-1001_Classes\CLSID\{cc05a616-ddb3-4cc0-9a21-dc0e9962b444}\InprocServer32 -> C:\Users\Ladicek\AppData\Roaming\HP Photo Creations\ContentMan.dll (RocketLife)
CustomCLSID: HKU\S-1-5-21-762262506-1715309918-2816265786-1001_Classes\CLSID\{ff280b55-14f1-49ae-b40f-15f5294ce630}\InprocServer32 -> C:\Users\Ladicek\AppData\Roaming\HP Photo Creations\RocketEngine.dll (Visan inc.)
==================== Scheduled Tasks (Whitelisted) =============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {007FDA5A-DBF6-4BB5-8427-5D1B6F92D097} - System32\Tasks\Lenovo\Lenovo Customer Feedback Program 35 => C:\Program Files\Lenovo\Customer Feedback Program 35\Lenovo.TVT.CustomerFeedback.Agent35.exe [2016-01-25] (Lenovo)
Task: {00C9E80A-7319-417B-B281-9AEBF9F403E9} - System32\Tasks\Lenovo\Lenovo Solution Center Launcher => C:\Program Files\lenovo\lenovo solution center\App\LSCService.exe [2016-01-25] (Lenovo)
Task: {033853C5-CB0A-4248-A477-D1B0F82D6250} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Active Health Launcher => C:\Program Files\Hewlett-Packard\HP Support Framework\Resources\HPActiveHealth\ActiveHealth.exe [2016-03-02] (Hewlett-Packard)
Task: {0606A674-8A31-4ECF-B32C-B767FBE8CB1C} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis => C:\Program Files\Hewlett-Packard\HP Support Framework\HPSF.exe [2016-02-18] (Hewlett-Packard Company)
Task: {173D345D-9174-42CA-85B0-52636A26A699} - System32\Tasks\TVT\TVSUUpdateTask => C:\Program Files\Lenovo\System Update\tvsuShim.exe [2016-01-13] ()
Task: {2F191F46-79D6-48A3-A8F4-9162385E550E} - System32\Tasks\Lenovo\LSC\Lenovo Solution Center Notifications => C:\Program Files\Lenovo\Lenovo Solution Center\LSCNotify.exe [2016-01-25] (Lenovo)
Task: {30625C99-396E-4681-A230-E89AB06DB9A1} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-12-13] (Adobe Systems Incorporated)
Task: {40A12327-9A97-41ED-8061-B289F565844F} - System32\Tasks\Lenovo\Lenovo Service Bridge\S-1-5-21-762262506-1715309918-2816265786-1001 => Rundll32.exe dfshim.dll,ShOpenVerbShortcut C:\Users\Ladicek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Lenovo\Lenovo Service Bridge.appref-ms
Task: {4193C854-379F-486E-BFF4-668014D9404F} - System32\Tasks\Lenovo\ImController\Plugins\LenovoSystemUpdatePlugin_TVSUUpdateTask_Weekly => reg.exe add hklm\SOFTWARE\Lenovo\SystemUpdatePlugin\scheduler /v start /t reg_dword /d 1 /f /reg:32
Task: {46694050-10F3-460D-92B8-ACCA23A81344} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe [2016-04-05] (Google Inc.)
Task: {4B5D395F-4971-46D9-88D1-EDEAADEA1FF8} - System32\Tasks\Adobe Flash Player Updater => C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2016-04-07] (Adobe Systems Incorporated)
Task: {4D03E1B5-D26D-44CD-A48B-A300CE119536} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Report => C:\Program Files\Hewlett-Packard\HP Support Solutions\Modules\HPSFReport.exe [2016-03-16] (Hewlett-Packard)
Task: {574AC4D1-139E-4131-A8C3-41969CD8C424} - System32\Tasks\Lenovo\Lenovo Settings Power => Rundll32.exe "C:\Program Files\ThinkPad\Utilities\PWMTR32V.dll",PwrMgrBkGndMonitor
Task: {5B05C102-D28B-4F27-9A22-DAEE1F1E2666} - System32\Tasks\Lenovo\LSC\LSCHardwareScan => C:\Program Files\Lenovo\Lenovo Solution Center\LSC.exe [2016-01-25] (Lenovo)
Task: {74FADD1F-63D0-4AD3-B306-E1870C73D94B} - System32\Tasks\Adobe Flash Player PPAPI Notifier => C:\WINDOWS\system32\Macromed\Flash\FlashUtil32_21_0_0_213_pepper.exe [2016-04-07] (Adobe Systems Incorporated)
Task: {76C5FFA5-55D4-4801-B2FA-A86773D810C1} - System32\Tasks\Lenovo\ImController\Plugins\LenovoSystemUpdatePlugin_TVSUUpdateTask => reg.exe add hklm\SOFTWARE\Lenovo\SystemUpdatePlugin\scheduler /v start /t reg_dword /d 1 /f /reg:32
Task: {7DB3E788-D024-492C-B563-BF67110E1826} - System32\Tasks\Lenovo\Lenovo Customer Feedback Program => C:\Program Files\Lenovo\Customer Feedback Program\Lenovo.TVT.CustomerFeedback.Agent.exe [2014-09-02] (Lenovo)
Task: {897F844D-492C-48AF-9EA1-8ACBE58D6C3C} - System32\Tasks\Hewlett-Packard\HP Active Health\HP Active Health Scan (HPSA) => C:\Program Files\Hewlett-Packard\HP Support Framework\Resources\HPActiveHealth\ActiveHealth.exe [2016-03-02] (Hewlett-Packard)
Task: {920D8CC5-7DDB-4C99-9E13-C8541F11297A} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater => C:\Program Files\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe [2016-03-16] (Hewlett-Packard)
Task: {998996FB-1DFB-4615-AFEE-94629739C7C0} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe [2016-04-05] (Google Inc.)
Task: {B81DDA7F-5AB5-4600-91AA-4B57232F65B2} - System32\Tasks\HPCeeScheduleForLadicek => C:\Program Files\Hewlett-Packard\HP Ceement\HPCEE.exe [2016-01-22] (Hewlett-Packard)
Task: {BA8C0307-40F6-4C2B-86D7-88AEB65A26B7} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2016-02-12] (Piriform Ltd)
Task: {FA8B652C-C0A6-4D68-85C6-03E18344380E} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start => C:\Program Files\Hewlett-Packard\HP Support Framework\HPSF.exe [2016-02-18] (Hewlett-Packard Company)
Task: {FC16FF4B-3555-48EC-A162-B2E838619BBE} - System32\Tasks\Opera scheduled Autoupdate 1459399918 => C:\Program Files\Opera\launcher.exe [2016-04-11] (Opera Software)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\WINDOWS\Tasks\Adobe Flash Player PPAPI Notifier.job => C:\WINDOWS\system32\Macromed\Flash\FlashUtil32_21_0_0_213_pepper.exe
Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\HPCeeScheduleForLadicek.job => C:\Program Files\Hewlett-Packard\HP Ceement\HPCEE.exe
==================== Shortcuts =============================
(The entries could be listed to be restored or removed.)
==================== Loaded Modules (Whitelisted) ==============
2016-04-02 08:35 - 2012-08-31 15:01 - 00151552 _____ () C:\WINDOWS\System32\HP1100LM.DLL
2016-04-02 08:36 - 2012-08-31 15:01 - 00069632 _____ () C:\WINDOWS\system32\spool\PRTPROCS\W32X86\HP1100PP.DLL
2015-11-15 09:39 - 2012-09-26 07:45 - 00081920 _____ () C:\WINDOWS\SYSTEM32\mvusbews.DLL
2016-04-14 02:12 - 2016-04-14 02:12 - 01232896 _____ () C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\Windows.Networking\88dd5378cc099752f2a1e348d96060d2\Windows.Networking.ni.dll
2015-10-30 07:44 - 2015-10-30 07:44 - 00149504 ____N () C:\WINDOWS\SYSTEM32\ism32k.dll
2016-04-13 00:06 - 2016-03-29 11:37 - 01862008 _____ () C:\WINDOWS\system32\CoreUIComponents.dll
2016-04-14 02:12 - 2016-04-14 02:12 - 00335360 _____ () C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\Windows.Foundation\cb08b30577c06f92af1cf3ab27b72e9c\Windows.Foundation.ni.dll
2016-04-14 02:12 - 2016-04-14 02:12 - 02921472 _____ () C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\Windows.App640a3541#\cafa3d2563114560256e093ca4f804ed\Windows.ApplicationModel.ni.dll
2016-04-14 02:12 - 2016-04-14 02:12 - 00821248 _____ () C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\Windows.Storage\0e447a18cb051e2b7dab7fe0256c7c7e\Windows.Storage.ni.dll
2016-04-13 00:06 - 2016-03-29 11:37 - 01862008 _____ () C:\WINDOWS\System32\CoreUIComponents.dll
2013-09-05 00:14 - 2013-09-05 00:14 - 04300456 _____ () C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Cultures\OFFICE.ODF
2016-04-10 21:35 - 2015-07-09 08:00 - 00095232 ____N () C:\Program Files\ThinkPad\Utilities\CZ\PWMRT32V.DLL
2015-12-17 21:56 - 2015-12-07 06:11 - 00070656 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\Windows.UI.Shell.SharedUtilities.dll
2016-04-13 00:05 - 2016-04-02 05:26 - 00316416 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\QuickActions.dll
2016-04-13 00:05 - 2016-04-02 05:09 - 05340672 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll
2016-04-13 00:05 - 2016-04-02 05:03 - 00471552 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
2016-04-13 00:06 - 2016-04-02 05:03 - 02366976 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll
2016-04-13 00:06 - 2016-04-02 05:07 - 02657280 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll
2016-04-14 23:11 - 2016-04-14 23:10 - 63830568 _____ () C:\Program Files\Opera\36.0.2130.65\opera.dll
2016-04-14 23:10 - 2016-04-14 23:08 - 02134568 _____ () C:\Program Files\Opera\36.0.2130.65\libglesv2.dll
2016-04-14 23:10 - 2016-04-14 23:08 - 00082472 _____ () C:\Program Files\Opera\36.0.2130.65\libegl.dll
2016-04-07 21:04 - 2016-04-07 21:04 - 17532096 _____ () C:\WINDOWS\system32\Macromed\Flash\pepflashplayer32_21_0_0_213.dll
2013-09-05 00:14 - 2013-09-05 00:14 - 04300456 _____ () C:\Program Files\Common Files\Microsoft Shared\office14\Cultures\office.odf
2015-11-11 02:42 - 2015-11-11 02:42 - 01045672 _____ () C:\Program Files\Microsoft Office\Office14\ADDINS\UmOutlookAddin.dll
==================== Alternate Data Streams (Whitelisted) =========
(If an entry is included in the fixlist, only the ADS will be removed.)
==================== Safe Mode (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" value will be restored.)
==================== EXE Association (Whitelisted) ===============
(If an entry is included in the fixlist, the registry item will be restored to default or removed.)
==================== Internet Explorer trusted/restricted ===============
(If an entry is included in the fixlist, it will be removed from the registry.)
==================== Hosts content: ===============================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2016-03-30 22:39 - 2016-04-24 21:14 - 00000753 ____A C:\WINDOWS\system32\Drivers\etc\hosts
127.0.0.1 localhost
==================== Other Areas ============================
(Currently there is no automatic fix for this section.)
HKU\S-1-5-21-762262506-1715309918-2816265786-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Ladicek\AppData\Local\Packages\Microsoft.Windows.Photos_8wekyb3d8bbwe\LocalState\PhotosAppBackground\{55d76c64-e902-4a34-9e7c-92c84bc2ce1b}.jpg
DNS Servers: 77.48.254.254 - 77.48.100.254
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.
==================== MSCONFIG/TASK MANAGER disabled items ==
(Currently there is no automatic fix for this section.)
HKLM\...\StartupApproved\StartupFolder: => "HP Digital Imaging Monitor.lnk"
HKLM\...\StartupApproved\Run: => "HPUsageTrackingLEDM"
==================== FirewallRules (Whitelisted) ===============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139
FirewallRules: [TCP Query User{54614178-E3A8-42D6-B0E8-7D8D90CAC87C}C:\windows\kmsemulator.exe] => (Allow) C:\windows\kmsemulator.exe
FirewallRules: [UDP Query User{78587E38-4A33-4614-AC70-1A56565ED1D9}C:\windows\kmsemulator.exe] => (Allow) C:\windows\kmsemulator.exe
FirewallRules: [{873C4346-95D9-4424-84D6-8A756BA6C077}] => (Allow) C:\Program Files\Lenovo\System Update\uncserver.exe
FirewallRules: [{53F9B344-D500-43D5-8EC6-CA574C595BFA}] => (Allow) C:\Program Files\Lenovo\System Update\uncserver.exe
FirewallRules: [{03B1D8C3-5FA3-4A9B-BE67-3C5482AE1BDF}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
FirewallRules: [{21677692-794E-49EE-8C73-4DA438A5AB8C}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hpqste08.exe
FirewallRules: [{7EC9A4C7-7E24-4710-8D3B-69075C040616}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hposid01.exe
FirewallRules: [{FDE50B37-A6D2-4A20-8CE2-A48814EF9112}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hpqkygrp.exe
FirewallRules: [{8074FC7C-8D3B-4F19-9BFB-9DCB539FABD3}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hpfccopy.exe
FirewallRules: [{0AE0E43C-BF4A-4F09-B78F-B26BA1C9F67D}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hpoews01.exe
FirewallRules: [{C8551729-844D-4A03-9F6E-5FA52E5DE986}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hpiscnapp.exe
FirewallRules: [{2F805BF3-9FDB-45D4-9539-969B182ADF39}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hpqgplgtupl.exe
FirewallRules: [{139499E3-0224-46A8-B383-3D17851AABB2}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hpqgpc01.exe
FirewallRules: [{36188A17-C7D8-4692-AE93-0977A0D26EEB}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hpqusgm.exe
FirewallRules: [{52122F8B-5D24-40A2-AF37-2B1F9ECC157E}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hpqusgh.exe
FirewallRules: [{4A83D19D-C37C-4951-BFDB-BC2045D8B9E9}] => (Allow) C:\Program Files\HP\hp software update\hpwucli.exe
FirewallRules: [{68FCA74A-3D07-4A57-B0FD-78E65D84F01C}] => (Allow) C:\Users\Ladicek\AppData\Local\Temp\7zS425A\HPDiagnosticCoreUI.exe
FirewallRules: [{136CBE0E-9EEC-4DF8-AA17-AB7D6F14E9A1}] => (Allow) C:\Users\Ladicek\AppData\Local\Temp\7zS425A\HPDiagnosticCoreUI.exe
FirewallRules: [{DFAE5FBA-CC9D-421B-928D-93650531DC89}] => (Allow) C:\Users\Ladicek\AppData\Local\Temp\7zS4542\hppiw.exe
FirewallRules: [{C30299AA-1F52-4C03-9E5C-1DBAF5E3FB7A}] => (Allow) C:\Users\Ladicek\AppData\Local\Temp\7zS4542\hppiw.exe
FirewallRules: [{08F88C1C-B552-48F0-956A-49D095334679}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe
FirewallRules: [{C5AA51F6-D062-4B70-9544-07338BE12426}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe
==================== Restore Points =========================
24-04-2016 00:17:14 JRT Pre-Junkware Removal
==================== Faulty Device Manager Devices =============
Name: HP LaserJet P2055dn
Description: HP LaserJet P2055dn
Class Guid: {4d36e971-e325-11ce-bfc1-08002be10318}
Manufacturer: Hewlett-Packard
Service:
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.
==================== Event log errors: =========================
Application errors:
==================
Error: (04/25/2016 08:47:24 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: Lenovo.Modern.ImController.PluginHost.exe, verze: 1.0.72.0, časové razítko: 0x56aaf746
Název chybujícího modulu: KERNELBASE.dll, verze: 10.0.10586.162, časové razítko: 0x56cd40d3
Kód výjimky: 0xe0434352
Posun chyby: 0x000d2d82
ID chybujícího procesu: 0x1584
Čas spuštění chybující aplikace: 0xLenovo.Modern.ImController.PluginHost.exe0
Cesta k chybující aplikaci: Lenovo.Modern.ImController.PluginHost.exe1
Cesta k chybujícímu modulu: Lenovo.Modern.ImController.PluginHost.exe2
ID zprávy: Lenovo.Modern.ImController.PluginHost.exe3
Úplný název chybujícího balíčku: Lenovo.Modern.ImController.PluginHost.exe4
ID aplikace související s chybujícím balíčkem: Lenovo.Modern.ImController.PluginHost.exe5
Error: (04/25/2016 08:47:23 PM) (Source: .NET Runtime) (EventID: 1026) (User: )
Description: Aplikace: Lenovo.Modern.ImController.PluginHost.exe
Verze Framework: v4.0.30319
Popis: Proces byl ukončen z důvodu neošetřené výjimky.
Informace o výjimce: System.BadImageFormatException
na LenovoAudioPlugin.AudioAccess.RunCustomMonitor(IntPtr, IntPtr, System.String, Int32)
na LenovoAudioPlugin.AudioAccess+<>c.<RespondToEventAsync>b__13_0()
na System.Threading.ThreadHelper.ThreadStart_Context(System.Object)
na System.Threading.ExecutionContext.RunInternal(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
na System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
na System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object)
na System.Threading.ThreadHelper.ThreadStart()
Error: (04/25/2016 12:24:14 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: Lenovo.Modern.ImController.PluginHost.exe, verze: 1.0.72.0, časové razítko: 0x56aaf746
Název chybujícího modulu: KERNELBASE.dll, verze: 10.0.10586.162, časové razítko: 0x56cd40d3
Kód výjimky: 0xe0434352
Posun chyby: 0x000d2d82
ID chybujícího procesu: 0x11e4
Čas spuštění chybující aplikace: 0xLenovo.Modern.ImController.PluginHost.exe0
Cesta k chybující aplikaci: Lenovo.Modern.ImController.PluginHost.exe1
Cesta k chybujícímu modulu: Lenovo.Modern.ImController.PluginHost.exe2
ID zprávy: Lenovo.Modern.ImController.PluginHost.exe3
Úplný název chybujícího balíčku: Lenovo.Modern.ImController.PluginHost.exe4
ID aplikace související s chybujícím balíčkem: Lenovo.Modern.ImController.PluginHost.exe5
Error: (04/25/2016 12:24:12 AM) (Source: .NET Runtime) (EventID: 1026) (User: )
Description: Aplikace: Lenovo.Modern.ImController.PluginHost.exe
Verze Framework: v4.0.30319
Popis: Proces byl ukončen z důvodu neošetřené výjimky.
Informace o výjimce: System.BadImageFormatException
na LenovoAudioPlugin.AudioAccess.RunCustomMonitor(IntPtr, IntPtr, System.String, Int32)
na LenovoAudioPlugin.AudioAccess+<>c.<RespondToEventAsync>b__13_0()
na System.Threading.ThreadHelper.ThreadStart_Context(System.Object)
na System.Threading.ExecutionContext.RunInternal(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
na System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
na System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object)
na System.Threading.ThreadHelper.ThreadStart()
Error: (04/24/2016 09:55:42 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: Lenovo.Modern.ImController.PluginHost.exe, verze: 1.0.72.0, časové razítko: 0x56aaf746
Název chybujícího modulu: KERNELBASE.dll, verze: 10.0.10586.162, časové razítko: 0x56cd40d3
Kód výjimky: 0xe0434352
Posun chyby: 0x000d2d82
ID chybujícího procesu: 0x1378
Čas spuštění chybující aplikace: 0xLenovo.Modern.ImController.PluginHost.exe0
Cesta k chybující aplikaci: Lenovo.Modern.ImController.PluginHost.exe1
Cesta k chybujícímu modulu: Lenovo.Modern.ImController.PluginHost.exe2
ID zprávy: Lenovo.Modern.ImController.PluginHost.exe3
Úplný název chybujícího balíčku: Lenovo.Modern.ImController.PluginHost.exe4
ID aplikace související s chybujícím balíčkem: Lenovo.Modern.ImController.PluginHost.exe5
Error: (04/24/2016 09:55:39 PM) (Source: .NET Runtime) (EventID: 1026) (User: )
Description: Aplikace: Lenovo.Modern.ImController.PluginHost.exe
Verze Framework: v4.0.30319
Popis: Proces byl ukončen z důvodu neošetřené výjimky.
Informace o výjimce: System.BadImageFormatException
na LenovoAudioPlugin.AudioAccess.RunCustomMonitor(IntPtr, IntPtr, System.String, Int32)
na LenovoAudioPlugin.AudioAccess+<>c.<RespondToEventAsync>b__13_0()
na System.Threading.ThreadHelper.ThreadStart_Context(System.Object)
na System.Threading.ExecutionContext.RunInternal(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
na System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
na System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object)
na System.Threading.ThreadHelper.ThreadStart()
Error: (04/24/2016 09:40:30 PM) (Source: Perflib) (EventID: 1008) (User: )
Description: BITSC:\Windows\System32\bitsperf.dll4
Error: (04/24/2016 09:36:52 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program explorer.exe verze 10.0.10586.104 přestal spolupracovat se systémem Windows a byl ukončen. Chcete-li zjistit, zda je k dispozici více informací o tomto problému, vyhledejte historii problému v ovládacím panelu Zabezpečení a údržba.
ID procesu: e78
Čas spuštění: 01d19e6024fcb9c3
Čas ukončení: 1669
Cesta k aplikaci: C:\Windows\explorer.exe
ID hlášení: e09257e4-0a53-11e6-ae18-002186ff9497
Úplný název balíčku s chybou:
ID aplikace související s balíčkem s chybou:
Error: (04/24/2016 09:33:36 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: Lenovo.Modern.ImController.PluginHost.exe, verze: 1.0.72.0, časové razítko: 0x56aaf746
Název chybujícího modulu: KERNELBASE.dll, verze: 10.0.10586.162, časové razítko: 0x56cd40d3
Kód výjimky: 0xe0434352
Posun chyby: 0x000d2d82
ID chybujícího procesu: 0x12d8
Čas spuštění chybující aplikace: 0xLenovo.Modern.ImController.PluginHost.exe0
Cesta k chybující aplikaci: Lenovo.Modern.ImController.PluginHost.exe1
Cesta k chybujícímu modulu: Lenovo.Modern.ImController.PluginHost.exe2
ID zprávy: Lenovo.Modern.ImController.PluginHost.exe3
Úplný název chybujícího balíčku: Lenovo.Modern.ImController.PluginHost.exe4
ID aplikace související s chybujícím balíčkem: Lenovo.Modern.ImController.PluginHost.exe5
Error: (04/24/2016 09:33:31 PM) (Source: .NET Runtime) (EventID: 1026) (User: )
Description: Aplikace: Lenovo.Modern.ImController.PluginHost.exe
Verze Framework: v4.0.30319
Popis: Proces byl ukončen z důvodu neošetřené výjimky.
Informace o výjimce: System.BadImageFormatException
na LenovoAudioPlugin.AudioAccess.RunCustomMonitor(IntPtr, IntPtr, System.String, Int32)
na LenovoAudioPlugin.AudioAccess+<>c.<RespondToEventAsync>b__13_0()
na System.Threading.ThreadHelper.ThreadStart_Context(System.Object)
na System.Threading.ExecutionContext.RunInternal(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
na System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
na System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object)
na System.Threading.ThreadHelper.ThreadStart()
System errors:
=============
Error: (04/25/2016 08:52:52 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Služba HP Network Devices Support byla ukončena s následující chybou:
%%126
Error: (04/25/2016 08:52:52 PM) (Source: DCOM) (EventID: 10010) (User: NT AUTHORITY)
Description: {10DA4F3C-CC99-4190-BE4D-58330754E882}
Error: (04/25/2016 08:50:52 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Služba HP Network Devices Support byla ukončena s následující chybou:
%%126
Error: (04/25/2016 08:50:52 PM) (Source: DCOM) (EventID: 10010) (User: NT AUTHORITY)
Description: {10DA4F3C-CC99-4190-BE4D-58330754E882}
Error: (04/25/2016 08:48:52 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Služba HP Network Devices Support byla ukončena s následující chybou:
%%126
Error: (04/25/2016 08:41:06 PM) (Source: DCOM) (EventID: 10010) (User: NT AUTHORITY)
Description: {10DA4F3C-CC99-4190-BE4D-58330754E882}
Error: (04/25/2016 08:39:06 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Služba HP Network Devices Support byla ukončena s následující chybou:
%%126
Error: (04/25/2016 08:39:06 PM) (Source: DCOM) (EventID: 10010) (User: NT AUTHORITY)
Description: {10DA4F3C-CC99-4190-BE4D-58330754E882}
Error: (04/25/2016 08:37:06 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Služba HP Network Devices Support byla ukončena s následující chybou:
%%126
Error: (04/25/2016 04:00:53 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Přístup k uživatelským datům_4db9e byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 10000 milisekund: Restartovat službu.
CodeIntegrity:
===================================
Date: 2016-04-25 00:19:10.911
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\ESET\ESET Smart Security\Drivers\ehdrv\ehdrv.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
Date: 2016-04-25 00:19:10.791
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\ESET\ESET Smart Security\Drivers\ehdrv\ehdrv.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
Date: 2016-04-25 00:19:10.670
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\eelam.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
Date: 2016-04-25 00:19:10.604
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\eelam.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
Date: 2016-04-25 00:19:10.540
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\ESET\ESET Smart Security\Drivers\eelam\eelam.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
Date: 2016-04-25 00:19:08.952
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\ESET\ESET Smart Security\Drivers\eelam\eelam.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
Date: 2016-04-24 21:55:16.351
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\ESET\ESET Smart Security\Drivers\ehdrv\ehdrv.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
Date: 2016-04-24 21:55:16.226
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\ESET\ESET Smart Security\Drivers\ehdrv\ehdrv.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
Date: 2016-04-24 21:55:16.106
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\eelam.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
Date: 2016-04-24 21:55:16.040
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\eelam.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
==================== Memory info ===========================
Processor: Intel(R) Core(TM)2 Duo CPU T5870 @ 2.00GHz
Percentage of memory in use: 75%
Total physical RAM: 3032.03 MB
Available physical RAM: 747.24 MB
Total Virtual: 4440.03 MB
Available Virtual: 1537.3 MB
==================== Drives ================================
Drive c: () (Fixed) (Total:87.45 GB) (Free:59.41 GB) NTFS
Drive d: () (Fixed) (Total:210.1 GB) (Free:122.11 GB) NTFS
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (MBR Code: Windows 7 or

Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=87.5 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=450 MB) - (Type=27)
Partition 4: (Not Active) - (Size=210.1 GB) - (Type=07 NTFS)
==================== End of Addition.txt ============================
Re: Prosím o kontrolu
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version:25-04-2016
Ran by Ladicek (administrator) on LADICEK-PC (25-04-2016 20:50:53)
Running from D:\Stažené soubory\scoped_dir_1004_23469
Loaded Profiles: Ladicek (Available Profiles: Ladicek & Souteze)
Platform: Microsoft Windows 10 Pro Version 1511 (X86) Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: Opera)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(ESET) C:\Program Files\ESET\ESET Smart Security\ekrn.exe
(Lenovo.) C:\Windows\System32\ibmpmsvc.exe
(HP) C:\Program Files\HP\HPLaserJetService\HPLaserJetService.exe
(Firebird Project) C:\Program Files\Firebird\Firebird_2_5\bin\fbguard.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe
(Lenovo Group Limited) C:\Program Files\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe
(HP) C:\Windows\System32\HPSIsvc.exe
(Firebird Project) C:\Program Files\Firebird\Firebird_2_5\bin\fbserver.exe
(Hewlett-Packard Company) C:\Program Files\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
(Lenovo) C:\Program Files\ThinkPad\Utilities\PWMDBSVC.exe
(ESET) C:\Program Files\ESET\ESET Smart Security\egui.exe
(Lenovo Group Limited) C:\Program Files\Lenovo\ImController\PluginHost\Lenovo.Modern.ImController.PluginHost.exe
(Lenovo Group Limited) C:\Program Files\Lenovo\ImController\PluginHost\Lenovo.Modern.ImController.PluginHost.exe
(Lenovo Group Limited) C:\Program Files\Lenovo\ImController\PluginHost\Lenovo.Modern.ImController.PluginHost.exe
(Lenovo Group Limited) C:\Program Files\Lenovo\ImController\PluginHost\Lenovo.Modern.ImController.PluginHost.exe
(Lenovo Group Limited) C:\Program Files\Lenovo\ImController\PluginHost\Lenovo.Modern.ImController.PluginHost.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Alps Electric Co., Ltd.) C:\Program Files\Apoint2K\Apoint.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(LITE-ON TECHNOLOGY CORP.) C:\Program Files\Lenovo\USB Enhanced Performance Keyboard\Skdaemon.exe
(Alps Electric Co., Ltd.) C:\Program Files\Apoint2K\ApMsgFwd.exe
(Alps Electric Co., Ltd.) C:\Program Files\Apoint2K\ApntEx.exe
(Hewlett-Packard) C:\Program Files\HP\HP Software Update\hpwuschd2.exe
(Skype Technologies S.A.) C:\Program Files\Skype\Phone\Skype.exe
(Opera Software) C:\Program Files\Opera\36.0.2130.65\opera.exe
(Opera Software) C:\Program Files\Opera\36.0.2130.65\opera_crashreporter.exe
(Opera Software) C:\Program Files\Opera\36.0.2130.65\opera.exe
(Opera Software) C:\Program Files\Opera\36.0.2130.65\opera.exe
(Opera Software) C:\Program Files\Opera\36.0.2130.65\opera.exe
(Opera Software) C:\Program Files\Opera\36.0.2130.65\opera.exe
(Opera Software) C:\Program Files\Opera\36.0.2130.65\opera.exe
(Opera Software) C:\Program Files\Opera\36.0.2130.65\opera.exe
(Opera Software) C:\Program Files\Opera\36.0.2130.65\opera.exe
(Opera Software) C:\Program Files\Opera\36.0.2130.65\opera.exe
(Opera Software) C:\Program Files\Opera\36.0.2130.65\opera.exe
(Opera Software) C:\Program Files\Opera\36.0.2130.65\opera.exe
(Opera Software) C:\Program Files\Opera\36.0.2130.65\opera.exe
(Opera Software) C:\Program Files\Opera\36.0.2130.65\opera.exe
(Opera Software) C:\Program Files\Opera\36.0.2130.65\opera.exe
(Opera Software) C:\Program Files\Opera\36.0.2130.65\opera.exe
(Opera Software) C:\Program Files\Opera\36.0.2130.65\opera.exe
(Opera Software) C:\Program Files\Opera\36.0.2130.65\opera.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office\Office14\OUTLOOK.EXE
(Lenovo) C:\Users\Ladicek\AppData\Local\Apps\2.0\OHEBRQ5C.MH4\06NPHXT4.QY3\lsb...tion_91a10ba61c75c82d_0001.0006_e3bbae03e10aca14\LSB.exe
==================== Registry (Whitelisted) ===========================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [Apoint] => C:\Program Files\Apoint2K\Apoint.exe [176128 2009-12-09] (Alps Electric Co., Ltd.)
HKLM\...\Run: [BCSSync] => C:\Program Files\Microsoft Office\Office14\BCSSync.exe [89184 2012-11-05] (Microsoft Corporation)
HKLM\...\Run: [AutoKMS] => C:\WINDOWS\AutoKMS.exe [615936 2016-03-31] ()
HKLM\...\Run: [] => [X]
HKLM\...\Run: [HPUsageTrackingLEDM] => C:\Program Files\HP\HP UT LEDM\bin\hppusg.exe [30264 2009-08-04] (Hewlett-Packard Company)
HKLM\...\Run: [Enhanced Performance Keyboard] => C:\Program Files\Lenovo\USB Enhanced Performance Keyboard\SKDaemon.exe [3257344 2014-08-17] (LITE-ON TECHNOLOGY CORP.)
HKLM\...\Run: [HP Software Update] => C:\Program Files\HP\HP Software Update\HPWuSchd2.exe [96056 2013-05-30] (Hewlett-Packard)
HKU\S-1-5-21-762262506-1715309918-2816265786-1001\...\Run: [Skype] => C:\Program Files\Skype\Phone\Skype.exe [51656320 2016-04-08] (Skype Technologies S.A.)
HKU\S-1-5-21-762262506-1715309918-2816265786-1001\...\MountPoints2: {25f1b2f4-8ab5-11e5-93d4-002186ff9497} - "G:\SISetup.exe"
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\HP Digital Imaging Monitor.lnk [2016-04-04]
ShortcutTarget: HP Digital Imaging Monitor.lnk -> C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe (Hewlett-Packard Co.)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 77.48.254.254 77.48.100.254
Tcpip\..\Interfaces\{03d1e19c-2591-4f11-b11d-3636b5214afd}: [DhcpNameServer] 192.168.42.129
Tcpip\..\Interfaces\{b010c1ac-9cd6-41ba-abb8-2575f6c281a7}: [DhcpNameServer] 77.48.254.254 77.48.100.254
Internet Explorer:
==================
SearchScopes: HKU\S-1-5-21-762262506-1715309918-2816265786-1001 -> {012E1000-F331-11DB-8314-0800200C9A66} URL = hxxp://www.google.com/search?q={searchTerms}
BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL [2013-12-19] (Microsoft Corporation)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation)
FireFox:
========
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~1\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation)
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-04-05] (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-04-05] (Google Inc.)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2016-02-26] (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-762262506-1715309918-2816265786-1001: @rocketlife.com/RocketLife Secure Plug-In Layer;version=1.0.5 -> C:\Users\Ladicek\AppData\Roaming\Visan\plugins\npRLSecurePluginLayer.dll [2011-05-13] (RocketLife, LLP)
FF HKLM\...\Firefox\Extensions: [quickprint@hp.com] - C:\Program Files\Hewlett-Packard\SmartPrint\QPExtension
FF Extension: SmartPrintButton - C:\Program Files\Hewlett-Packard\SmartPrint\QPExtension [2011-01-26] [not signed]
Chrome:
=======
CHR Profile: C:\Users\Ladicek\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Prezentace Google) - C:\Users\Ladicek\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2016-04-24]
CHR Extension: (Dokumenty Google) - C:\Users\Ladicek\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2016-04-24]
CHR Extension: (Disk Google) - C:\Users\Ladicek\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-04-24]
CHR Extension: (YouTube) - C:\Users\Ladicek\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-04-24]
CHR Extension: (Tabulky Google) - C:\Users\Ladicek\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2016-04-24]
CHR Extension: (Dokumenty Google offline) - C:\Users\Ladicek\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-04-24]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Ladicek\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-04-24]
CHR Extension: (Gmail) - C:\Users\Ladicek\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2016-04-24]
Opera:
=======
OPR Extension: (Translator) - C:\Users\Ladicek\AppData\Roaming\Opera Software\Opera Stable\Extensions\cnbpedcoekjafichoehopgaaldogogch [2016-04-02]
OPR Extension: (WOT) - C:\Users\Ladicek\AppData\Roaming\Opera Software\Opera Stable\Extensions\eeokceolphhfjdfcibaiiopmekmcbedp [2016-04-02]
==================== Services (Whitelisted) ========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 ekrn; C:\Program Files\ESET\ESET Smart Security\ekrn.exe [1983264 2016-03-31] (ESET)
R2 FirebirdGuardianDefaultInstance; C:\Program Files\Firebird\Firebird_2_5\bin\fbguard.exe [98304 2015-11-12] (Firebird Project) [File not signed]
R3 FirebirdServerDefaultInstance; C:\Program Files\Firebird\Firebird_2_5\bin\fbserver.exe [3821568 2015-11-12] (Firebird Project) [File not signed]
R2 HP LaserJet Service; C:\Program Files\HP\HPLaserJetService\HPLaserJetService.exe [136704 2009-06-24] (HP) [File not signed]
R2 HPSupportSolutionsFrameworkService; C:\Program Files\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe [28736 2016-03-16] (Hewlett-Packard Company)
R2 ImControllerService; C:\Program Files\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [36808 2016-01-29] (Lenovo Group Limited)
S3 LSCWinService; C:\Program Files\Lenovo\Lenovo Solution Center\App\LSCWinService.exe [271328 2016-01-25] (Lenovo)
S2 Net Driver HPZ12; C:\WINDOWS\system32\HPZinw12.dll [44032 2010-08-06] (Hewlett-Packard) [File not signed]
S2 Pml Driver HPZ12; C:\WINDOWS\system32\HPZipm12.dll [53760 2010-08-06] (Hewlett-Packard) [File not signed]
S3 SUService; C:\Program Files\Lenovo\System Update\SUService.exe [21536 2016-01-13] ()
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [280376 2015-10-30] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23256 2015-10-30] (Microsoft Corporation)
S2 HPSLPSVC; C:\Users\Ladicek\AppData\Local\Temp\7zS4542\hpslpsvc32.dll [X]
===================== Drivers (Whitelisted) ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 dot4; C:\WINDOWS\System32\drivers\Dot4.sys [137632 2015-11-30] (Windows (R) Win 7 DDK provider)
S3 Dot4Print; C:\WINDOWS\System32\drivers\Dot4Prt.sys [22432 2015-11-30] (Windows (R) Win 7 DDK provider)
R1 eamonm; C:\WINDOWS\System32\DRIVERS\eamonm.sys [206312 2016-03-31] (ESET)
R0 edevmon; C:\WINDOWS\System32\DRIVERS\edevmon.sys [154288 2016-03-31] (ESET)
S0 eelam; C:\WINDOWS\System32\DRIVERS\eelam.sys [14464 2015-09-23] (ESET)
R1 ehdrv; C:\WINDOWS\system32\DRIVERS\ehdrv.sys [146024 2016-03-31] (ESET)
R2 ekbdflt; C:\WINDOWS\system32\DRIVERS\ekbdflt.sys [111040 2016-03-31] (ESET)
R1 epfw; C:\WINDOWS\system32\DRIVERS\epfw.sys [152728 2016-03-31] (ESET)
R1 EpfwLWF; C:\WINDOWS\system32\DRIVERS\EpfwLWF.sys [44608 2016-03-31] (ESET)
R0 epfwwfp; C:\WINDOWS\System32\DRIVERS\epfwwfp.sys [71488 2016-03-31] (ESET)
S3 HWHandSet; C:\WINDOWS\System32\drivers\hw_quusbmdm.sys [195200 2015-05-07] (Huawei Technologies Co., Ltd.)
S3 hw_usbdev; C:\WINDOWS\System32\drivers\hw_usbdev.sys [102272 2015-05-07] (Huawei Technologies Co., Ltd.)
S3 mcdbus; C:\WINDOWS\System32\drivers\mcdbus.sys [116736 2009-02-24] (MagicISO, Inc.) [File not signed]
R3 NETwNs32; C:\WINDOWS\System32\drivers\NETwNs32.sys [7518208 2015-10-30] (Intel Corporation)
R1 VD_FileDisk; C:\WINDOWS\system32\Drivers\VD_FileDisk.sys [24680 2011-01-26] (CaptainFlint Software)
S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [37400 2015-10-30] (Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [246104 2015-10-30] (Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [98648 2015-10-30] (Microsoft Corporation)
R3 WUDFWpdMtp; C:\WINDOWS\system32\DRIVERS\WUDFRd.sys [163328 2015-10-30] (Microsoft Corporation)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
=========================
Ran by Ladicek (administrator) on LADICEK-PC (25-04-2016 20:50:53)
Running from D:\Stažené soubory\scoped_dir_1004_23469
Loaded Profiles: Ladicek (Available Profiles: Ladicek & Souteze)
Platform: Microsoft Windows 10 Pro Version 1511 (X86) Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: Opera)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(ESET) C:\Program Files\ESET\ESET Smart Security\ekrn.exe
(Lenovo.) C:\Windows\System32\ibmpmsvc.exe
(HP) C:\Program Files\HP\HPLaserJetService\HPLaserJetService.exe
(Firebird Project) C:\Program Files\Firebird\Firebird_2_5\bin\fbguard.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe
(Lenovo Group Limited) C:\Program Files\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe
(HP) C:\Windows\System32\HPSIsvc.exe
(Firebird Project) C:\Program Files\Firebird\Firebird_2_5\bin\fbserver.exe
(Hewlett-Packard Company) C:\Program Files\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
(Lenovo) C:\Program Files\ThinkPad\Utilities\PWMDBSVC.exe
(ESET) C:\Program Files\ESET\ESET Smart Security\egui.exe
(Lenovo Group Limited) C:\Program Files\Lenovo\ImController\PluginHost\Lenovo.Modern.ImController.PluginHost.exe
(Lenovo Group Limited) C:\Program Files\Lenovo\ImController\PluginHost\Lenovo.Modern.ImController.PluginHost.exe
(Lenovo Group Limited) C:\Program Files\Lenovo\ImController\PluginHost\Lenovo.Modern.ImController.PluginHost.exe
(Lenovo Group Limited) C:\Program Files\Lenovo\ImController\PluginHost\Lenovo.Modern.ImController.PluginHost.exe
(Lenovo Group Limited) C:\Program Files\Lenovo\ImController\PluginHost\Lenovo.Modern.ImController.PluginHost.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Alps Electric Co., Ltd.) C:\Program Files\Apoint2K\Apoint.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(LITE-ON TECHNOLOGY CORP.) C:\Program Files\Lenovo\USB Enhanced Performance Keyboard\Skdaemon.exe
(Alps Electric Co., Ltd.) C:\Program Files\Apoint2K\ApMsgFwd.exe
(Alps Electric Co., Ltd.) C:\Program Files\Apoint2K\ApntEx.exe
(Hewlett-Packard) C:\Program Files\HP\HP Software Update\hpwuschd2.exe
(Skype Technologies S.A.) C:\Program Files\Skype\Phone\Skype.exe
(Opera Software) C:\Program Files\Opera\36.0.2130.65\opera.exe
(Opera Software) C:\Program Files\Opera\36.0.2130.65\opera_crashreporter.exe
(Opera Software) C:\Program Files\Opera\36.0.2130.65\opera.exe
(Opera Software) C:\Program Files\Opera\36.0.2130.65\opera.exe
(Opera Software) C:\Program Files\Opera\36.0.2130.65\opera.exe
(Opera Software) C:\Program Files\Opera\36.0.2130.65\opera.exe
(Opera Software) C:\Program Files\Opera\36.0.2130.65\opera.exe
(Opera Software) C:\Program Files\Opera\36.0.2130.65\opera.exe
(Opera Software) C:\Program Files\Opera\36.0.2130.65\opera.exe
(Opera Software) C:\Program Files\Opera\36.0.2130.65\opera.exe
(Opera Software) C:\Program Files\Opera\36.0.2130.65\opera.exe
(Opera Software) C:\Program Files\Opera\36.0.2130.65\opera.exe
(Opera Software) C:\Program Files\Opera\36.0.2130.65\opera.exe
(Opera Software) C:\Program Files\Opera\36.0.2130.65\opera.exe
(Opera Software) C:\Program Files\Opera\36.0.2130.65\opera.exe
(Opera Software) C:\Program Files\Opera\36.0.2130.65\opera.exe
(Opera Software) C:\Program Files\Opera\36.0.2130.65\opera.exe
(Opera Software) C:\Program Files\Opera\36.0.2130.65\opera.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office\Office14\OUTLOOK.EXE
(Lenovo) C:\Users\Ladicek\AppData\Local\Apps\2.0\OHEBRQ5C.MH4\06NPHXT4.QY3\lsb...tion_91a10ba61c75c82d_0001.0006_e3bbae03e10aca14\LSB.exe
==================== Registry (Whitelisted) ===========================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [Apoint] => C:\Program Files\Apoint2K\Apoint.exe [176128 2009-12-09] (Alps Electric Co., Ltd.)
HKLM\...\Run: [BCSSync] => C:\Program Files\Microsoft Office\Office14\BCSSync.exe [89184 2012-11-05] (Microsoft Corporation)
HKLM\...\Run: [AutoKMS] => C:\WINDOWS\AutoKMS.exe [615936 2016-03-31] ()
HKLM\...\Run: [] => [X]
HKLM\...\Run: [HPUsageTrackingLEDM] => C:\Program Files\HP\HP UT LEDM\bin\hppusg.exe [30264 2009-08-04] (Hewlett-Packard Company)
HKLM\...\Run: [Enhanced Performance Keyboard] => C:\Program Files\Lenovo\USB Enhanced Performance Keyboard\SKDaemon.exe [3257344 2014-08-17] (LITE-ON TECHNOLOGY CORP.)
HKLM\...\Run: [HP Software Update] => C:\Program Files\HP\HP Software Update\HPWuSchd2.exe [96056 2013-05-30] (Hewlett-Packard)
HKU\S-1-5-21-762262506-1715309918-2816265786-1001\...\Run: [Skype] => C:\Program Files\Skype\Phone\Skype.exe [51656320 2016-04-08] (Skype Technologies S.A.)
HKU\S-1-5-21-762262506-1715309918-2816265786-1001\...\MountPoints2: {25f1b2f4-8ab5-11e5-93d4-002186ff9497} - "G:\SISetup.exe"
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\HP Digital Imaging Monitor.lnk [2016-04-04]
ShortcutTarget: HP Digital Imaging Monitor.lnk -> C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe (Hewlett-Packard Co.)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 77.48.254.254 77.48.100.254
Tcpip\..\Interfaces\{03d1e19c-2591-4f11-b11d-3636b5214afd}: [DhcpNameServer] 192.168.42.129
Tcpip\..\Interfaces\{b010c1ac-9cd6-41ba-abb8-2575f6c281a7}: [DhcpNameServer] 77.48.254.254 77.48.100.254
Internet Explorer:
==================
SearchScopes: HKU\S-1-5-21-762262506-1715309918-2816265786-1001 -> {012E1000-F331-11DB-8314-0800200C9A66} URL = hxxp://www.google.com/search?q={searchTerms}
BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL [2013-12-19] (Microsoft Corporation)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation)
FireFox:
========
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~1\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation)
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-04-05] (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-04-05] (Google Inc.)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2016-02-26] (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-762262506-1715309918-2816265786-1001: @rocketlife.com/RocketLife Secure Plug-In Layer;version=1.0.5 -> C:\Users\Ladicek\AppData\Roaming\Visan\plugins\npRLSecurePluginLayer.dll [2011-05-13] (RocketLife, LLP)
FF HKLM\...\Firefox\Extensions: [quickprint@hp.com] - C:\Program Files\Hewlett-Packard\SmartPrint\QPExtension
FF Extension: SmartPrintButton - C:\Program Files\Hewlett-Packard\SmartPrint\QPExtension [2011-01-26] [not signed]
Chrome:
=======
CHR Profile: C:\Users\Ladicek\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Prezentace Google) - C:\Users\Ladicek\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2016-04-24]
CHR Extension: (Dokumenty Google) - C:\Users\Ladicek\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2016-04-24]
CHR Extension: (Disk Google) - C:\Users\Ladicek\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-04-24]
CHR Extension: (YouTube) - C:\Users\Ladicek\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-04-24]
CHR Extension: (Tabulky Google) - C:\Users\Ladicek\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2016-04-24]
CHR Extension: (Dokumenty Google offline) - C:\Users\Ladicek\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-04-24]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Ladicek\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-04-24]
CHR Extension: (Gmail) - C:\Users\Ladicek\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2016-04-24]
Opera:
=======
OPR Extension: (Translator) - C:\Users\Ladicek\AppData\Roaming\Opera Software\Opera Stable\Extensions\cnbpedcoekjafichoehopgaaldogogch [2016-04-02]
OPR Extension: (WOT) - C:\Users\Ladicek\AppData\Roaming\Opera Software\Opera Stable\Extensions\eeokceolphhfjdfcibaiiopmekmcbedp [2016-04-02]
==================== Services (Whitelisted) ========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 ekrn; C:\Program Files\ESET\ESET Smart Security\ekrn.exe [1983264 2016-03-31] (ESET)
R2 FirebirdGuardianDefaultInstance; C:\Program Files\Firebird\Firebird_2_5\bin\fbguard.exe [98304 2015-11-12] (Firebird Project) [File not signed]
R3 FirebirdServerDefaultInstance; C:\Program Files\Firebird\Firebird_2_5\bin\fbserver.exe [3821568 2015-11-12] (Firebird Project) [File not signed]
R2 HP LaserJet Service; C:\Program Files\HP\HPLaserJetService\HPLaserJetService.exe [136704 2009-06-24] (HP) [File not signed]
R2 HPSupportSolutionsFrameworkService; C:\Program Files\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe [28736 2016-03-16] (Hewlett-Packard Company)
R2 ImControllerService; C:\Program Files\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [36808 2016-01-29] (Lenovo Group Limited)
S3 LSCWinService; C:\Program Files\Lenovo\Lenovo Solution Center\App\LSCWinService.exe [271328 2016-01-25] (Lenovo)
S2 Net Driver HPZ12; C:\WINDOWS\system32\HPZinw12.dll [44032 2010-08-06] (Hewlett-Packard) [File not signed]
S2 Pml Driver HPZ12; C:\WINDOWS\system32\HPZipm12.dll [53760 2010-08-06] (Hewlett-Packard) [File not signed]
S3 SUService; C:\Program Files\Lenovo\System Update\SUService.exe [21536 2016-01-13] ()
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [280376 2015-10-30] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23256 2015-10-30] (Microsoft Corporation)
S2 HPSLPSVC; C:\Users\Ladicek\AppData\Local\Temp\7zS4542\hpslpsvc32.dll [X]
===================== Drivers (Whitelisted) ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 dot4; C:\WINDOWS\System32\drivers\Dot4.sys [137632 2015-11-30] (Windows (R) Win 7 DDK provider)
S3 Dot4Print; C:\WINDOWS\System32\drivers\Dot4Prt.sys [22432 2015-11-30] (Windows (R) Win 7 DDK provider)
R1 eamonm; C:\WINDOWS\System32\DRIVERS\eamonm.sys [206312 2016-03-31] (ESET)
R0 edevmon; C:\WINDOWS\System32\DRIVERS\edevmon.sys [154288 2016-03-31] (ESET)
S0 eelam; C:\WINDOWS\System32\DRIVERS\eelam.sys [14464 2015-09-23] (ESET)
R1 ehdrv; C:\WINDOWS\system32\DRIVERS\ehdrv.sys [146024 2016-03-31] (ESET)
R2 ekbdflt; C:\WINDOWS\system32\DRIVERS\ekbdflt.sys [111040 2016-03-31] (ESET)
R1 epfw; C:\WINDOWS\system32\DRIVERS\epfw.sys [152728 2016-03-31] (ESET)
R1 EpfwLWF; C:\WINDOWS\system32\DRIVERS\EpfwLWF.sys [44608 2016-03-31] (ESET)
R0 epfwwfp; C:\WINDOWS\System32\DRIVERS\epfwwfp.sys [71488 2016-03-31] (ESET)
S3 HWHandSet; C:\WINDOWS\System32\drivers\hw_quusbmdm.sys [195200 2015-05-07] (Huawei Technologies Co., Ltd.)
S3 hw_usbdev; C:\WINDOWS\System32\drivers\hw_usbdev.sys [102272 2015-05-07] (Huawei Technologies Co., Ltd.)
S3 mcdbus; C:\WINDOWS\System32\drivers\mcdbus.sys [116736 2009-02-24] (MagicISO, Inc.) [File not signed]
R3 NETwNs32; C:\WINDOWS\System32\drivers\NETwNs32.sys [7518208 2015-10-30] (Intel Corporation)
R1 VD_FileDisk; C:\WINDOWS\system32\Drivers\VD_FileDisk.sys [24680 2011-01-26] (CaptainFlint Software)
S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [37400 2015-10-30] (Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [246104 2015-10-30] (Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [98648 2015-10-30] (Microsoft Corporation)
R3 WUDFWpdMtp; C:\WINDOWS\system32\DRIVERS\WUDFRd.sys [163328 2015-10-30] (Microsoft Corporation)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
=========================
Re: Prosím o kontrolu
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2016-04-25 20:50 - 2016-04-25 20:50 - 00000000 ____D C:\FRST
2016-04-24 22:06 - 2016-04-24 22:06 - 00000000 ____D C:\Users\Ladicek\AppData\Local\PeerDistRepub
2016-04-24 21:36 - 2016-04-24 21:36 - 00000000 ____D C:\Users\Ladicek\AppData\Local\ActiveSync
2016-04-24 21:31 - 2016-04-24 21:12 - 00024064 _____ C:\WINDOWS\zoek-delete.exe
2016-04-24 21:12 - 2016-04-24 21:29 - 00000000 ____D C:\zoek_backup
2016-04-24 09:36 - 2016-04-24 09:36 - 00000000 _____ C:\WINDOWS\HPMProp.INI
2016-04-24 08:38 - 2016-04-24 08:38 - 00000000 ____D C:\Users\Ladicek\AppData\Local\Adobe
2016-04-24 08:08 - 2016-04-25 20:47 - 00000000 ____D C:\Users\Ladicek\AppData\Local\CrashDumps
2016-04-24 00:22 - 2016-04-24 20:45 - 00024688 _____ C:\WINDOWS\system32\Drivers\TrueSight.sys
2016-04-24 00:22 - 2016-04-24 01:04 - 00000000 ____D C:\ProgramData\RogueKiller
2016-04-23 23:00 - 2016-04-24 00:25 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
2016-04-23 23:00 - 2016-04-24 00:25 - 00000000 ____D C:\Program Files\Microsoft Silverlight
2016-04-23 22:25 - 2016-04-23 22:25 - 00000000 ____D C:\ProgramData\Malwarebytes
2016-04-23 22:15 - 2016-04-24 00:07 - 00000000 ____D C:\AdwCleaner
2016-04-23 11:18 - 2016-04-24 00:25 - 00000000 ____D C:\ProgramData\HandSetService
2016-04-23 11:18 - 2016-04-24 00:25 - 00000000 ____D C:\Program Files\HiSuite
2016-04-23 11:17 - 2016-04-23 11:20 - 00000000 ____D C:\Users\Ladicek\AppData\Local\Hisuite
2016-04-21 21:04 - 2016-04-25 20:52 - 00000000 ____D C:\Users\Ladicek\AppData\Roaming\Skype
2016-04-21 21:04 - 2016-04-21 21:04 - 00002646 _____ C:\Users\Public\Desktop\Skype.lnk
2016-04-21 21:04 - 2016-04-21 21:04 - 00000000 ___RD C:\Program Files\Skype
2016-04-21 21:04 - 2016-04-21 21:04 - 00000000 ____D C:\ProgramData\Skype
2016-04-21 21:04 - 2016-04-21 21:04 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2016-04-21 21:04 - 2016-04-21 21:04 - 00000000 ____D C:\Program Files\Common Files\Skype
2016-04-13 00:07 - 2016-03-29 10:01 - 00541304 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe
2016-04-13 00:07 - 2016-03-29 09:02 - 00303104 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\atmfd.dll
2016-04-13 00:07 - 2016-03-29 08:34 - 01152512 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2016-04-13 00:06 - 2016-04-02 06:17 - 00297072 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe
2016-04-13 00:06 - 2016-04-02 05:26 - 00526336 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneProviders.dll
2016-04-13 00:06 - 2016-04-02 05:22 - 00390144 _____ (Microsoft Corporation) C:\WINDOWS\system32\tileobjserver.dll
2016-04-13 00:06 - 2016-04-02 05:20 - 00826368 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2016-04-13 00:06 - 2016-04-02 05:20 - 00738816 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedStartModel.dll
2016-04-13 00:06 - 2016-04-02 05:17 - 00796672 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXService.dll
2016-04-13 00:06 - 2016-04-02 05:14 - 03197440 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll
2016-04-13 00:06 - 2016-04-02 05:12 - 01887744 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2016-04-13 00:06 - 2016-04-02 05:11 - 01524736 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2016-04-13 00:06 - 2016-04-02 05:10 - 02871296 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsThresholdAdminFlowUI.dll
2016-04-13 00:06 - 2016-04-02 05:05 - 01074688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Shell.dll
2016-04-13 00:06 - 2016-03-29 11:41 - 00875992 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2016-04-13 00:06 - 2016-03-29 11:41 - 00771120 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2016-04-13 00:06 - 2016-03-29 11:38 - 05797216 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2016-04-13 00:06 - 2016-03-29 11:38 - 01051584 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2016-04-13 00:06 - 2016-03-29 11:38 - 00927072 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2016-04-13 00:06 - 2016-03-29 11:37 - 01862008 _____ C:\WINDOWS\system32\CoreUIComponents.dll
2016-04-13 00:06 - 2016-03-29 11:36 - 01820512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys
2016-04-13 00:06 - 2016-03-29 11:20 - 00856928 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi
2016-04-13 00:06 - 2016-03-29 11:19 - 00296488 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanager.dll
2016-04-13 00:06 - 2016-03-29 11:13 - 00986976 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll
2016-04-13 00:06 - 2016-03-29 10:44 - 00502104 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupEngine.dll
2016-04-13 00:06 - 2016-03-29 10:32 - 00253088 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppHost.exe
2016-04-13 00:06 - 2016-03-29 10:24 - 00294752 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll
2016-04-13 00:06 - 2016-03-29 09:46 - 00771424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\http.sys
2016-04-13 00:06 - 2016-03-29 09:19 - 00037376 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll
2016-04-13 00:06 - 2016-03-29 09:16 - 00093696 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontsub.dll
2016-04-13 00:06 - 2016-03-29 09:12 - 00065536 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininetlui.dll
2016-04-13 00:06 - 2016-03-29 09:12 - 00045568 _____ (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll
2016-04-13 00:06 - 2016-03-29 08:59 - 00203264 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshostcore.dll
2016-04-13 00:06 - 2016-03-29 08:56 - 00415232 _____ (Microsoft Corporation) C:\WINDOWS\system32\StoreAgent.dll
2016-04-13 00:06 - 2016-03-29 08:55 - 00142336 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupSvc.dll
2016-04-13 00:06 - 2016-03-29 08:54 - 00497664 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll
2016-04-13 00:06 - 2016-03-29 08:53 - 00150016 _____ (Microsoft Corporation) C:\WINDOWS\system32\storewuauth.dll
2016-04-13 00:06 - 2016-03-29 08:52 - 00464896 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll
2016-04-13 00:06 - 2016-03-29 08:48 - 00346624 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapConfiguration.dll
2016-04-13 00:06 - 2016-03-29 08:47 - 00239616 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorService.dll
2016-04-13 00:06 - 2016-03-29 08:44 - 00498176 _____ (Microsoft Corporation) C:\WINDOWS\system32\MessagingDataModel2.dll
2016-04-13 00:06 - 2016-03-29 08:43 - 00358400 _____ (Microsoft Corporation) C:\WINDOWS\system32\AccountsRt.dll
2016-04-13 00:06 - 2016-03-29 08:43 - 00237568 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXTaskFactory.dll
2016-04-13 00:06 - 2016-03-29 08:41 - 00538624 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblAuthManager.dll
2016-04-13 00:06 - 2016-03-29 08:40 - 00445952 _____ (Microsoft Corporation) C:\WINDOWS\system32\PsmServiceExtHost.dll
2016-04-13 00:06 - 2016-03-29 08:39 - 00350720 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredProvDataModel.dll
2016-04-13 00:06 - 2016-03-29 08:38 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\system32\JpMapControl.dll
2016-04-13 00:06 - 2016-03-29 08:38 - 00609280 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsStore.dll
2016-04-13 00:06 - 2016-03-29 08:37 - 01444352 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRHInproc.dll
2016-04-13 00:06 - 2016-03-29 08:37 - 00799744 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRH.dll
2016-04-13 00:06 - 2016-03-29 08:37 - 00792064 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2016-04-13 00:06 - 2016-03-29 08:36 - 00649728 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2016-04-13 00:06 - 2016-03-29 08:36 - 00453632 _____ (Microsoft Corporation) C:\WINDOWS\system32\bisrv.dll
2016-04-13 00:06 - 2016-03-29 08:35 - 00354304 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupShim.dll
2016-04-13 00:06 - 2016-03-29 08:34 - 00711680 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapControlCore.dll
2016-04-13 00:06 - 2016-03-29 08:32 - 01588224 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll
2016-04-13 00:06 - 2016-03-29 08:32 - 00951808 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll
2016-04-13 00:06 - 2016-03-29 08:30 - 01139712 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCore.dll
2016-04-13 00:06 - 2016-03-29 08:28 - 01944576 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputService.dll
2016-04-13 00:06 - 2016-03-29 08:28 - 00764928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Cred.dll
2016-04-13 00:06 - 2016-03-29 08:27 - 00245760 _____ (Microsoft Corporation) C:\WINDOWS\system32\TextInputFramework.dll
2016-04-13 00:06 - 2016-03-29 08:27 - 00133632 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2016-04-13 00:06 - 2016-03-29 08:27 - 00083456 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputLocaleManager.dll
2016-04-13 00:06 - 2016-03-29 08:22 - 00638464 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBroker.dll
2016-04-13 00:06 - 2016-03-29 08:14 - 02975232 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2016-04-13 00:06 - 2016-03-29 08:14 - 01072128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.Http.dll
2016-04-13 00:06 - 2016-03-29 08:10 - 03671040 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll
2016-04-13 00:06 - 2016-03-29 08:07 - 00359936 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenrollengine.dll
2016-04-13 00:06 - 2016-03-29 08:06 - 00813056 _____ (Microsoft Corporation) C:\WINDOWS\system32\dosvc.dll
2016-04-13 00:06 - 2016-03-29 08:05 - 01894912 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2016-04-13 00:06 - 2016-03-29 08:05 - 01626624 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2016-04-13 00:06 - 2016-03-29 08:05 - 01500672 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2016-04-13 00:06 - 2016-03-29 08:04 - 00204800 _____ (Microsoft Corporation) C:\WINDOWS\system32\accountaccessor.dll
2016-04-13 00:06 - 2016-03-29 08:02 - 02229760 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2016-04-13 00:06 - 2016-03-29 08:01 - 13018624 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2016-04-13 00:06 - 2016-03-29 07:58 - 01799680 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Logon.dll
2016-04-13 00:06 - 2016-03-29 07:55 - 00614912 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapi.dll
2016-04-13 00:06 - 2016-03-29 07:51 - 09918976 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2016-04-13 00:06 - 2016-03-29 07:49 - 05202944 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingMaps.dll
2016-04-13 00:06 - 2016-03-29 07:49 - 01085952 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2016-04-13 00:06 - 2016-03-29 07:41 - 12125184 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2016-04-13 00:06 - 2016-03-29 07:38 - 18673664 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2016-04-13 00:06 - 2016-03-29 07:38 - 02798080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll
2016-04-13 00:06 - 2016-03-29 07:37 - 19340800 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2016-04-13 00:06 - 2016-03-29 07:36 - 02722816 _____ (Microsoft Corporation) C:\WINDOWS\system32\esent.dll
2016-04-13 00:06 - 2016-03-29 07:27 - 05662208 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2016-04-13 00:06 - 2016-03-29 07:25 - 00712704 _____ (Microsoft Corporation) C:\WINDOWS\system32\RemoteNaturalLanguage.dll
2016-04-13 00:05 - 2016-04-02 06:14 - 00757192 _____ (Microsoft Corporation) C:\WINDOWS\system32\iuilp.dll
2016-04-13 00:05 - 2016-04-02 06:14 - 00613112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Shell.Broker.dll
2016-04-13 00:05 - 2016-04-02 06:14 - 00305296 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlows.exe
2016-04-13 00:05 - 2016-04-02 05:30 - 00118784 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEStoreEventHandlers.dll
2016-04-13 00:05 - 2016-04-02 05:29 - 00083968 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEDataLayerHelpers.dll
2016-04-13 00:05 - 2016-04-02 05:25 - 00239104 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationObjFactory.dll
2016-04-13 00:05 - 2016-04-02 05:23 - 00219648 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEEventDispatcher.dll
2016-04-13 00:05 - 2016-04-02 05:08 - 02193408 _____ (Microsoft Corporation) C:\WINDOWS\system32\actxprxy.dll
2016-04-13 00:05 - 2016-03-29 11:41 - 00228696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdbus.sys
2016-04-13 00:05 - 2016-03-29 11:33 - 00084216 _____ (Microsoft Corporation) C:\WINDOWS\system32\omadmapi.dll
2016-04-13 00:05 - 2016-03-29 11:28 - 00535080 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsapi.dll
2016-04-13 00:05 - 2016-03-29 11:21 - 00922456 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys
2016-04-13 00:05 - 2016-03-29 10:44 - 00084832 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupApi.dll
2016-04-13 00:05 - 2016-03-29 10:41 - 00203104 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ufx01000.sys
2016-04-13 00:05 - 2016-03-29 10:41 - 00051128 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsNativeApi.dll
2016-04-13 00:05 - 2016-03-29 10:34 - 00153952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpsd.sys
2016-04-13 00:05 - 2016-03-29 10:26 - 00073872 _____ (Microsoft Corporation) C:\WINDOWS\system32\srvcli.dll
2016-04-13 00:05 - 2016-03-29 10:25 - 00056320 _____ (Microsoft Corporation) C:\WINDOWS\system32\wkscli.dll
2016-04-13 00:05 - 2016-03-29 10:24 - 00063008 _____ (Microsoft Corporation) C:\WINDOWS\system32\easinvoker.exe
2016-04-13 00:05 - 2016-03-29 10:23 - 00069744 _____ (Microsoft Corporation) C:\WINDOWS\system32\netapi32.dll
2016-04-13 00:05 - 2016-03-29 09:46 - 01861984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys
2016-04-13 00:05 - 2016-03-29 09:42 - 00287072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBXHCI.SYS
2016-04-13 00:05 - 2016-03-29 09:30 - 00161792 _____ (Microsoft Corporation) C:\WINDOWS\system32\msorcl32.dll
2016-04-13 00:05 - 2016-03-29 09:30 - 00074752 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsCSP.dll
2016-04-13 00:05 - 2016-03-29 09:28 - 00018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\xinputhid.sys
2016-04-13 00:05 - 2016-03-29 09:20 - 00080384 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsNativeApi.V2.dll
2016-04-13 00:05 - 2016-03-29 09:20 - 00073728 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanagerprecheck.dll
2016-04-13 00:05 - 2016-03-29 09:20 - 00033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenterprisediagnostics.dll
2016-04-13 00:05 - 2016-03-29 09:20 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsdchngr.dll
2016-04-13 00:05 - 2016-03-29 09:19 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleacchooks.dll
2016-04-13 00:05 - 2016-03-29 09:14 - 00059904 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveskybackup.dll
2016-04-13 00:05 - 2016-03-29 09:14 - 00023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\mapsupdatetask.dll
2016-04-13 00:05 - 2016-03-29 09:13 - 00022528 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManagerShellext.exe
2016-04-13 00:05 - 2016-03-29 09:11 - 00161280 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgent.exe
2016-04-13 00:05 - 2016-03-29 09:11 - 00061440 _____ (Microsoft Corporation) C:\WINDOWS\system32\samlib.dll
2016-04-13 00:05 - 2016-03-29 09:11 - 00059904 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosStorage.dll
2016-04-13 00:05 - 2016-03-29 09:11 - 00043520 _____ (Microsoft Corporation) C:\WINDOWS\system32\browcli.dll
2016-04-13 00:05 - 2016-03-29 09:09 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsBtSvc.dll
2016-04-13 00:05 - 2016-03-29 09:09 - 00077824 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\serial.sys
2016-04-13 00:05 - 2016-03-29 09:09 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\tbauth.dll
2016-04-13 00:05 - 2016-03-29 09:08 - 00118272 _____ (Microsoft Corporation) C:\WINDOWS\system32\mtxoci.dll
2016-04-13 00:05 - 2016-03-29 09:08 - 00085504 _____ (Microsoft Corporation) C:\WINDOWS\system32\FontProvider.dll
2016-04-13 00:05 - 2016-03-29 09:06 - 00137728 _____ (Microsoft Corporation) C:\WINDOWS\system32\dafBth.dll
2016-04-13 00:05 - 2016-03-29 09:06 - 00066560 _____ (Microsoft Corporation) C:\WINDOWS\system32\tzautoupdate.dll
2016-04-13 00:05 - 2016-03-29 09:06 - 00022528 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBrokerCookies.exe
2016-04-13 00:05 - 2016-03-29 09:05 - 00088576 _____ (Microsoft Corporation) C:\WINDOWS\system32\BdeHdCfgLib.dll
2016-04-13 00:05 - 2016-03-29 09:05 - 00074240 _____ (Microsoft Corporation) C:\WINDOWS\system32\browserbroker.dll
2016-04-13 00:05 - 2016-03-29 09:05 - 00071680 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxSysprep.dll
2016-04-13 00:05 - 2016-03-29 09:05 - 00052736 _____ (Microsoft Corporation) C:\WINDOWS\system32\OnDemandConnRouteHelper.dll
2016-04-13 00:05 - 2016-03-29 09:05 - 00050688 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshost.dll
2016-04-13 00:05 - 2016-03-29 09:05 - 00028160 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuautoappupdate.dll
2016-04-13 00:05 - 2016-03-29 09:04 - 00103936 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Devices.dll
2016-04-13 00:05 - 2016-03-29 09:03 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppCapture.dll
2016-04-13 00:05 - 2016-03-29 09:02 - 00107520 _____ (Microsoft Corporation) C:\WINDOWS\system32\browser.dll
2016-04-13 00:05 - 2016-03-29 09:00 - 00193536 _____ (Microsoft Corporation) C:\WINDOWS\system32\DAFWSD.dll
2016-04-13 00:05 - 2016-03-29 08:53 - 00424448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\nwifi.sys
2016-04-13 00:05 - 2016-03-29 08:53 - 00323072 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleacc.dll
2016-04-13 00:05 - 2016-03-29 08:53 - 00193024 _____ (Microsoft Corporation) C:\WINDOWS\system32\credprovhost.dll
2016-04-13 00:05 - 2016-03-29 08:52 - 00306176 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieproxy.dll
2016-04-13 00:05 - 2016-03-29 08:52 - 00241664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\portcls.sys
2016-04-13 00:05 - 2016-03-29 08:52 - 00222720 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsrslvr.dll
2016-04-13 00:05 - 2016-03-29 08:52 - 00141824 _____ (Microsoft Corporation) C:\WINDOWS\system32\easwrt.dll
2016-04-13 00:05 - 2016-03-29 08:51 - 00334336 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvr.exe
2016-04-13 00:05 - 2016-03-29 08:49 - 00246272 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvc.dll
2016-04-13 00:05 - 2016-03-29 08:46 - 00130560 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmmigrator.dll
2016-04-13 00:05 - 2016-03-29 08:44 - 00497152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdiWiFi.sys
2016-04-13 00:05 - 2016-03-29 08:42 - 00250880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2016-04-13 00:05 - 2016-03-29 08:41 - 00129024 _____ (Microsoft Corporation) C:\WINDOWS\system32\AboveLockAppHost.dll
2016-04-13 00:05 - 2016-03-29 08:39 - 00564224 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSDApi.dll
2016-04-13 00:05 - 2016-03-29 08:39 - 00496128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.Web.Core.dll
2016-04-13 00:05 - 2016-03-29 08:34 - 00784896 _____ (Microsoft Corporation) C:\WINDOWS\system32\NMAA.dll
2016-04-13 00:05 - 2016-03-29 08:34 - 00682496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Input.Inking.dll
2016-04-13 00:05 - 2016-03-29 08:32 - 00854528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Bluetooth.dll
2016-04-13 00:05 - 2016-03-29 08:32 - 00638464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.dll
2016-04-13 00:05 - 2016-03-29 08:32 - 00601600 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32spl.dll
2016-04-13 00:05 - 2016-03-29 08:31 - 01117184 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Speech.dll
2016-04-13 00:05 - 2016-03-29 08:31 - 00705536 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll
2016-04-13 00:05 - 2016-03-29 08:29 - 00114176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dfsc.sys
2016-04-13 00:05 - 2016-03-29 08:27 - 00162816 _____ C:\WINDOWS\system32\MTF.dll
2016-04-13 00:05 - 2016-03-29 08:26 - 00192512 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapibase.dll
2016-04-13 00:05 - 2016-03-29 08:26 - 00154112 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.DeviceEncryptionHandlers.dll
2016-04-13 00:05 - 2016-03-29 08:25 - 00110080 _____ (Microsoft Corporation) C:\WINDOWS\system32\BitLockerDeviceEncryption.exe
2016-04-13 00:05 - 2016-03-29 08:23 - 00777728 _____ (Microsoft Corporation) C:\WINDOWS\system32\MsSpellCheckingFacility.dll
2016-04-13 00:05 - 2016-03-29 08:18 - 00265216 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveui.dll
2016-04-13 00:05 - 2016-03-29 08:13 - 00592384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.dll
2016-04-13 00:05 - 2016-03-29 08:06 - 00151040 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmregistration.dll
2016-04-13 00:05 - 2016-03-29 08:06 - 00141824 _____ (Microsoft Corporation) C:\WINDOWS\system32\enrollmentapi.dll
2016-04-13 00:05 - 2016-03-29 08:06 - 00106496 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmcsps.dll
2016-04-13 00:05 - 2016-03-29 08:05 - 00450560 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncController.dll
2016-04-13 00:05 - 2016-03-29 08:00 - 06297088 _____ (Microsoft Corporation) C:\WINDOWS\system32\mos.dll
2016-04-13 00:05 - 2016-03-29 07:46 - 00307712 _____ (Microsoft Corporation) C:\WINDOWS\system32\bdesvc.dll
2016-04-13 00:05 - 2016-03-29 07:43 - 00521728 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.Connectivity.dll
2016-04-13 00:05 - 2016-03-29 07:42 - 00705024 _____ (Microsoft Corporation) C:\WINDOWS\system32\samsrv.dll
2016-04-13 00:05 - 2016-03-29 07:36 - 00294912 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncbservice.dll
2016-04-13 00:05 - 2016-03-29 07:32 - 00742400 _____ (Microsoft Corporation) C:\WINDOWS\system32\IKEEXT.DLL
2016-04-13 00:05 - 2016-03-29 07:30 - 00782336 _____ (Microsoft Corporation) C:\WINDOWS\system32\fvewiz.dll
2016-04-13 00:05 - 2016-03-29 07:25 - 00554496 _____ (Microsoft Corporation) C:\WINDOWS\system32\BFE.DLL
2016-04-13 00:05 - 2016-03-29 07:25 - 00269824 _____ (Microsoft Corporation) C:\WINDOWS\system32\FWPUCLNT.DLL
2016-04-13 00:05 - 2016-03-29 07:24 - 00310272 _____ (Microsoft Corporation) C:\WINDOWS\system32\fvecpl.dll
2016-04-13 00:05 - 2016-03-29 07:21 - 00055808 _____ (Microsoft Corporation) C:\WINDOWS\system32\basesrv.dll
2016-04-10 21:35 - 2016-04-10 21:35 - 00000000 ____D C:\Users\Ladicek\AppData\Local\Lenovo
2016-04-10 21:35 - 2016-04-10 21:35 - 00000000 ____D C:\Program Files\SmartSense
2016-04-10 21:35 - 2015-07-09 08:00 - 00019712 ____N (Lenovo Group Limited) C:\WINDOWS\system32\Drivers\TPPWR32V.SYS
2016-04-10 13:08 - 2016-04-24 21:32 - 00000350 _____ C:\WINDOWS\Tasks\HPCeeScheduleForLadicek.job
2016-04-05 13:02 - 2016-04-05 13:06 - 00000000 ____D C:\Users\Ladicek\Downloads\HP Downloads
2016-04-05 12:49 - 2016-04-24 00:06 - 00002218 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2016-04-05 12:49 - 2016-04-24 00:06 - 00002206 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2016-04-05 12:48 - 2016-04-25 20:47 - 00000960 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2016-04-05 12:48 - 2016-04-25 03:53 - 00000964 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2016-04-05 12:48 - 2016-04-16 00:57 - 00000000 ____D C:\Users\Ladicek\AppData\Local\Google
2016-04-05 12:48 - 2016-04-05 12:49 - 00000000 ____D C:\Program Files\Google
2016-04-04 22:43 - 2016-04-04 22:43 - 00000000 ____D C:\Program Files\Defraggler
2016-04-04 22:38 - 2016-04-09 21:29 - 00000000 ____D C:\Users\Ladicek\AppData\Roaming\HP Photo Creations
2016-04-04 22:38 - 2016-04-04 22:38 - 00002002 _____ C:\Users\Ladicek\Desktop\HP Photo Creations.lnk
2016-04-04 22:38 - 2016-04-04 22:38 - 00000000 ____D C:\Users\Ladicek\AppData\Roaming\Visan
2016-04-04 22:38 - 2016-04-04 22:38 - 00000000 ____D C:\Users\Ladicek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\HP
2016-04-04 22:30 - 2016-04-04 22:33 - 00000000 ____D C:\Users\Ladicek\AppData\Roaming\HP
2016-04-04 22:30 - 2016-04-04 22:30 - 00000000 ____D C:\Users\Ladicek\AppData\Local\HP
2016-04-04 22:30 - 2016-04-04 22:30 - 00000000 ____D C:\ProgramData\WEBREG
2016-04-04 22:29 - 2016-04-11 23:20 - 00000000 ____D C:\Users\Ladicek\AppData\Roaming\HpUpdate
2016-04-04 22:29 - 2016-04-04 22:29 - 00001272 _____ C:\Users\Public\Desktop\Nakupujte spotřební materiál HP.lnk
2016-04-04 22:28 - 2016-04-04 22:28 - 00001404 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Centrum řešení HP.lnk
2016-04-04 22:28 - 2016-04-04 22:28 - 00001398 _____ C:\Users\Public\Desktop\Centrum řešení HP.lnk
2016-04-04 22:28 - 2016-04-04 22:28 - 00000000 ____D C:\ProgramData\HP Product Assistant
2016-04-04 22:27 - 2016-04-04 22:27 - 00000000 ____D C:\Program Files\Common Files\HP
2016-04-04 22:27 - 2016-04-04 22:27 - 00000000 ____D C:\Program Files\Common Files\Hewlett-Packard
2016-04-04 22:22 - 2016-04-04 22:29 - 00200051 _____ C:\WINDOWS\hpoins32.dat
2016-04-04 22:22 - 2012-09-28 11:52 - 00000932 ____N C:\WINDOWS\hpomdl32.dat
2016-04-04 22:21 - 2011-05-10 04:47 - 00037376 _____ (Hewlett-Packard Corporation) C:\WINDOWS\system32\hpz3lw72.dll
2016-04-04 01:15 - 2016-04-04 01:16 - 00002393 _____ C:\Users\Souteze\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2016-04-04 01:15 - 2016-04-04 01:16 - 00000000 ___RD C:\Users\Souteze\OneDrive
2016-04-04 01:13 - 2016-04-04 01:14 - 00000000 ____D C:\Users\Souteze\AppData\Local\Packages
2016-04-04 01:13 - 2016-04-04 01:13 - 00000000 ____D C:\Users\Souteze\AppData\Roaming\Adobe
2016-04-04 01:13 - 2016-04-04 01:13 - 00000000 ____D C:\Users\Souteze\AppData\Local\Publishers
2016-04-04 01:12 - 2016-04-24 00:26 - 00000000 ____D C:\Users\Souteze
2016-04-04 01:12 - 2016-04-24 00:20 - 00000000 ____D C:\Users\Souteze\AppData\Roaming\Macromedia
2016-04-04 01:12 - 2016-04-04 01:12 - 00000020 ___SH C:\Users\Souteze\ntuser.ini
2016-04-04 01:12 - 2016-04-04 01:12 - 00000000 _SHDL C:\Users\Souteze\Šablony
2016-04-04 01:12 - 2016-04-04 01:12 - 00000000 _SHDL C:\Users\Souteze\Soubory cookie
2016-04-04 01:12 - 2016-04-04 01:12 - 00000000 _SHDL C:\Users\Souteze\Poslední
2016-04-04 01:12 - 2016-04-04 01:12 - 00000000 _SHDL C:\Users\Souteze\Okolní tiskárny
2016-04-04 01:12 - 2016-04-04 01:12 - 00000000 _SHDL C:\Users\Souteze\Okolní síť
2016-04-04 01:12 - 2016-04-04 01:12 - 00000000 _SHDL C:\Users\Souteze\Nabídka Start
2016-04-04 01:12 - 2016-04-04 01:12 - 00000000 _SHDL C:\Users\Souteze\Dokumenty
2016-04-04 01:12 - 2016-04-04 01:12 - 00000000 _SHDL C:\Users\Souteze\Data aplikací
2016-04-04 01:12 - 2016-04-04 01:12 - 00000000 _SHDL C:\Users\Souteze\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2016-04-04 01:12 - 2016-04-04 01:12 - 00000000 _SHDL C:\Users\Souteze\AppData\Local\Data aplikací
2016-04-04 01:12 - 2016-04-04 01:12 - 00000000 ____D C:\Users\Souteze\AppData\Local\TileDataLayer
2016-04-04 01:12 - 2016-04-04 01:12 - 00000000 ____D C:\Users\Souteze\AppData\Local\ESET
2016-04-04 01:12 - 2016-03-31 20:38 - 00000000 ____D C:\Users\Souteze\AppData\Local\Microsoft Help
2016-04-03 21:15 - 2016-04-14 23:50 - 00000000 ____D C:\Users\Ladicek\AppData\Roaming\Kodi
2016-04-03 21:12 - 2016-04-03 21:12 - 00000000 ____D C:\Users\Ladicek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Kodi
2016-04-03 21:11 - 2016-04-03 21:11 - 00000000 ____D C:\Users\Ladicek\AppData\Roaming\Lenovo
2016-04-03 20:54 - 2016-04-03 20:54 - 00000000 ____D C:\Users\Ladicek\AppData\Roaming\LSC
2016-04-03 20:37 - 2016-04-03 20:37 - 00002160 _____ C:\Users\Public\Desktop\Lenovo Solution Center.lnk
2016-04-02 21:25 - 2016-04-10 21:35 - 00000000 ____D C:\Program Files\ThinkPad
2016-04-02 21:05 - 2016-04-02 21:05 - 00000000 ____D C:\Users\Ladicek\AppData\Local\Tvsukernel
2016-04-02 21:04 - 2016-04-02 21:04 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_Kernel_ldiagio_uefi_01009.Wdf
2016-04-02 21:03 - 2016-04-02 21:03 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lenovo ThinkVantage Tools
2016-04-02 21:03 - 2016-04-02 21:03 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lenovo
2016-04-02 20:59 - 2016-04-24 00:18 - 00000000 ____D C:\Users\Default\AppData\Roaming\Macromedia
2016-04-02 20:59 - 2016-04-24 00:18 - 00000000 ____D C:\Users\Default User\AppData\Roaming\Macromedia
2016-04-02 20:59 - 2016-04-10 21:35 - 00000000 ____D C:\WINDOWS\Downloaded Installations
2016-04-02 20:59 - 2016-04-02 21:06 - 00000000 ____D C:\Program Files\Common Files\Adobe AIR
2016-04-02 20:50 - 2016-04-02 20:50 - 00000000 ____D C:\Users\Ladicek\AppData\Roaming\CachedFiles
2016-04-02 20:14 - 2016-04-02 20:14 - 00000000 ____D C:\Users\Ladicek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Lenovo
2016-04-02 20:13 - 2016-04-24 00:18 - 00000000 ____D C:\Users\Ladicek\AppData\Local\Apps\2.0
2016-04-02 20:13 - 2016-04-03 20:55 - 00000000 ____D C:\Users\Ladicek\AppData\Local\Deployment
2016-04-02 15:11 - 2016-04-03 20:42 - 00000091 _____ C:\Users\Ladicek\Desktop\jakub.txt
2016-04-02 12:01 - 2016-04-02 12:25 - 00000000 ____D C:\Users\Ladicek\AppData\Roaming\PDF Architect 4
2016-04-02 11:59 - 2016-04-02 12:38 - 00000000 ____D C:\ProgramData\PDF Architect 4
2016-04-02 11:59 - 2016-04-02 11:59 - 00101128 _____ (pdfforge GmbH) C:\WINDOWS\system32\pdfcmon.dll
2016-04-02 11:59 - 2016-04-02 11:59 - 00001058 _____ C:\Users\Public\Desktop\PDFCreator.lnk
2016-04-02 11:59 - 2016-04-02 11:59 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDFCreator
2016-04-02 11:58 - 2016-04-05 12:03 - 00000000 ____D C:\Program Files\PDFCreator
2016-04-02 08:49 - 2016-04-10 13:08 - 00000000 ____D C:\Users\Ladicek\AppData\Local\Hewlett-Packard
2016-04-02 08:40 - 2016-04-02 08:40 - 00000000 ____D C:\Users\Ladicek\AppData\Local\CEF
2016-04-02 08:35 - 2016-04-04 22:29 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP
2016-04-02 08:35 - 2012-09-27 02:27 - 00100256 _____ (HP) C:\WINDOWS\system32\HPSIsvc.exe
2016-04-02 08:35 - 2012-08-31 15:01 - 01511424 _____ C:\WINDOWS\system32\HP1100SM.EXE
2016-04-02 08:35 - 2012-08-31 15:01 - 00151552 _____ C:\WINDOWS\system32\HP1100LM.DLL
2016-04-02 08:34 - 2012-08-31 09:10 - 00284160 _____ C:\WINDOWS\system32\mvhlewsi.dll
2016-04-02 08:29 - 2012-09-26 07:45 - 00048128 _____ C:\WINDOWS\system32\HP1100SMs.dll
2016-04-02 08:28 - 2016-04-02 08:29 - 00000000 ____D C:\LJP1100_P1560_P1600_Full_Solution
2016-04-02 08:25 - 2016-04-05 13:04 - 00002039 _____ C:\Users\Public\Desktop\HP Print and Scan Doctor.lnk
2016-04-02 08:24 - 2016-04-02 08:24 - 00000000 ____D C:\Users\Ladicek\AppData\Roaming\Hewlett-Packard
2016-04-02 08:22 - 2016-04-04 22:30 - 00000000 ____D C:\ProgramData\HP
2016-04-02 08:22 - 2016-04-04 22:29 - 00000000 ____D C:\Program Files\HP
2016-04-02 08:17 - 2016-04-24 09:35 - 00000000 ____D C:\ProgramData\Hewlett-Packard
2016-04-02 08:17 - 2016-04-10 21:35 - 00000000 ___HD C:\Program Files\InstallShield Installation Information
2016-04-02 08:17 - 2016-04-02 08:17 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP Help and Support
2016-04-02 08:16 - 2016-04-02 08:16 - 00000000 ____D C:\Users\Ladicek\AppData\Roaming\hpqLog
2016-04-02 08:13 - 2016-04-24 09:36 - 00000000 ____D C:\Program Files\Hewlett-Packard
2016-04-02 08:01 - 2016-04-02 08:01 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_WpdMtpDr_01_11_00.Wdf
2016-04-01 20:37 - 2016-04-01 20:37 - 00000000 ____D C:\WINDOWS\system32\SleepStudy
2016-04-01 20:06 - 2016-04-24 17:49 - 00000000 ____D C:\ProgramData\firebird
2016-04-01 20:04 - 2016-04-24 00:26 - 00000000 ____D C:\Users\Ladicek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\HDsum
2016-04-01 20:04 - 2016-04-19 23:18 - 00000000 ____D C:\Users\Ladicek\AppData\Local\GHISLER
2016-04-01 19:44 - 2016-04-01 19:44 - 00001929 _____ C:\Users\Public\Desktop\TC UP.lnk
2016-04-01 19:44 - 2016-04-01 19:44 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Total Commander Ultima Prime
2016-04-01 19:39 - 2016-04-01 19:39 - 00000000 ____D C:\Users\Ladicek\AppData\Roaming\HEXelon
2016-04-01 19:35 - 2016-04-25 20:46 - 00000914 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2016-04-01 19:35 - 2016-04-24 00:44 - 00000958 _____ C:\WINDOWS\Tasks\Adobe Flash Player PPAPI Notifier.job
2016-04-01 19:35 - 2016-04-24 00:25 - 00000000 ___RD C:\Program Files\TC UP
2016-04-01 06:42 - 2016-04-01 06:42 - 00000000 ____D C:\Program Files\CCleaner
2016-04-01 06:33 - 2016-04-01 06:33 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf
2016-03-31 21:33 - 2016-03-31 21:33 - 00000000 ____D C:\Program Files\Common Files\DESIGNER
2016-03-31 21:15 - 2016-03-31 21:15 - 00000000 ____D C:\Users\Ladicek\AppData\Roaming\ESET
2016-03-31 21:02 - 2016-03-31 21:02 - 02154872 _____ (Microsoft Corporation) C:\WINDOWS\system32\WudfUpdate_01011.dll
2016-03-31 20:53 - 2016-03-31 20:53 - 00154288 _____ (ESET) C:\WINDOWS\system32\Drivers\edevmon.sys
2016-03-31 20:38 - 2016-03-31 20:38 - 00000000 ____D C:\Users\Default\AppData\Local\Microsoft Help
2016-03-31 20:38 - 2016-03-31 20:38 - 00000000 ____D C:\Users\Default User\AppData\Local\Microsoft Help
2016-03-31 20:18 - 2016-03-31 20:18 - 00000000 ____D C:\Users\Ladicek\AppData\Local\ESET
2016-03-31 20:16 - 2016-03-31 20:16 - 00002100 _____ C:\Users\Public\Desktop\ESET Ochrana bankovnictví a online plateb.lnk
2016-03-31 20:16 - 2016-03-31 20:16 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ESET
2016-03-31 20:16 - 2016-03-31 20:16 - 00000000 ____D C:\ProgramData\ESET
2016-03-31 20:15 - 2016-03-31 20:15 - 00615936 _____ C:\WINDOWS\AutoKMS.exe
2016-03-31 20:15 - 2016-03-31 20:15 - 00077824 ____N C:\WINDOWS\KMSEmulator.exe
2016-03-31 20:15 - 2016-03-31 20:15 - 00000161 _____ C:\WINDOWS\AutoKMS.ini
2016-03-31 20:15 - 2016-03-31 20:15 - 00000000 ____D C:\Program Files\ESET
2016-03-31 20:07 - 2016-04-10 21:35 - 00000000 ____D C:\Program Files\Lenovo
2016-03-31 20:07 - 2016-03-31 21:02 - 00217544 _____ (Lenovo Group Limited) C:\WINDOWS\system32\iMDriverHelper.dll
2016-03-31 20:06 - 2016-04-24 00:18 - 00000000 ____D C:\ProgramData\Lenovo
2016-03-31 20:04 - 2015-11-12 08:42 - 00548864 _____ (Firebird Project) C:\WINDOWS\system32\GDS32.DLL
2016-03-31 20:03 - 2016-03-31 20:03 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firebird 2.5 (Win32)
2016-03-31 20:03 - 2016-03-31 20:03 - 00000000 ____D C:\Program Files\Firebird
2016-03-31 20:03 - 2015-11-12 08:44 - 00462848 _____ (IBPhoenix) C:\WINDOWS\system32\Firebird2Control.cpl
2016-03-31 19:54 - 2016-03-31 19:54 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SharePoint
2016-03-31 19:54 - 2016-03-31 19:54 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office
2016-03-31 19:53 - 2016-03-31 19:53 - 00000000 ____D C:\Program Files\Microsoft Synchronization Services
2016-03-31 19:52 - 2016-03-31 19:52 - 00000000 ____D C:\WINDOWS\PCHEALTH
2016-03-31 19:52 - 2016-03-31 19:52 - 00000000 ____D C:\Program Files\Microsoft Sync Framework
2016-03-31 19:52 - 2016-03-31 19:52 - 00000000 ____D C:\Program Files\Microsoft SQL Server Compact Edition
2016-03-31 19:51 - 2016-03-31 19:51 - 00000000 ____D C:\Program Files\Microsoft Visual Studio 8
2016-03-31 19:51 - 2016-03-31 19:51 - 00000000 ____D C:\Program Files\Microsoft Analysis Services
2016-03-31 19:50 - 2016-03-31 19:52 - 00000000 ____D C:\Program Files\Microsoft Office
2016-03-31 19:50 - 2016-03-31 19:50 - 00002013 _____ C:\Users\Public\Desktop\Datovka.lnk
2016-03-31 19:50 - 2016-03-31 19:50 - 00000000 ____D C:\Users\Ladicek\AppData\Local\Microsoft Help
2016-03-31 19:50 - 2016-03-31 19:50 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CZ.NIC
2016-03-31 19:45 - 2016-03-31 19:45 - 00000000 ____D C:\Users\Ladicek\AppData\Roaming\WinRAR
2016-03-31 19:44 - 2016-03-31 19:44 - 00000000 ____D C:\Users\Ladicek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2016-03-31 19:44 - 2016-03-31 19:44 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2016-03-31 19:44 - 2016-03-31 19:44 - 00000000 ____D C:\Program Files\WinRAR
2016-03-31 19:40 - 2016-04-04 01:45 - 00000000 ____D C:\Users\Ladicek\AppData\Roaming\.dsgui
2016-03-31 19:30 - 2016-03-31 19:30 - 00000000 ____D C:\Program Files\CZ.NIC
2016-03-31 19:11 - 2015-12-09 05:39 - 00247976 ____N (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe
2016-03-31 19:09 - 2016-04-13 12:47 - 00000000 ____D C:\WINDOWS\system32\MRT
2016-03-31 19:08 - 2016-04-13 12:41 - 132539272 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2016-03-31 06:52 - 2016-04-14 23:11 - 00001078 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Opera.lnk
2016-03-31 06:52 - 2016-03-31 06:52 - 00001162 _____ C:\Users\Public\Desktop\Opera.lnk
2016-03-31 06:52 - 2016-03-31 06:52 - 00000000 ____D C:\Users\Ladicek\AppData\Roaming\Opera Software
2016-03-31 06:52 - 2016-03-31 06:52 - 00000000 ____D C:\Users\Ladicek\AppData\Local\Opera Software
2016-03-31 06:50 - 2016-04-14 23:11 - 00000000 ____D C:\Program Files\Opera
2016-03-31 06:50 - 2016-03-31 19:13 - 00002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2016-03-31 06:50 - 2016-03-31 06:50 - 00002094 _____ C:\Users\Public\Desktop\Acrobat Reader DC.lnk
2016-03-31 06:49 - 2016-04-02 20:59 - 00000000 ____D C:\ProgramData\Adobe
2016-03-31 06:49 - 2016-04-02 20:59 - 00000000 ____D C:\Program Files\Adobe
2016-03-31 06:49 - 2016-03-31 06:49 - 00000000 ____D C:\Program Files\Common Files\Adobe
2016-03-31 06:47 - 2016-04-24 00:20 - 00000000 ____D C:\Users\Ladicek\AppData\Roaming\Macromedia
2016-03-31 06:47 - 2016-03-31 06:47 - 00001047 _____ C:\Users\Ladicek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Volitelné funkce.lnk
2016-03-31 06:47 - 2015-10-29 19:42 - 05739520 _____ (Microsoft Corporation) C:\WINDOWS\system32\prm0009.dll
2016-03-31 06:47 - 2015-10-29 19:41 - 02629632 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsLexicons0009.dll
2016-03-31 06:47 - 2015-10-29 19:24 - 04847616 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData0009.dll
2016-03-31 06:46 - 2016-03-31 21:24 - 00000000 ____D C:\Users\Ladicek\AppData\Local\MicrosoftEdge
2016-03-31 06:37 - 2016-03-31 06:37 - 00002393 _____ C:\Users\Ladicek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2016-03-31 06:35 - 2016-03-31 06:35 - 00027744 _____ C:\Users\Ladicek\Desktop\Odebrané aplikace.html
2016-03-31 06:35 - 2016-03-31 06:35 - 00000000 ____D C:\ProgramData\Microsoft OneDrive
2016-03-31 06:34 - 2016-03-31 06:34 - 00000000 ____D C:\Users\Ladicek\AppData\Local\Comms
2016-03-31 06:33 - 2016-03-31 06:33 - 00000000 ____D C:\Users\Ladicek\AppData\Local\Publishers
2016-03-31 06:32 - 2016-04-23 23:48 - 00000000 ____D C:\Users\Ladicek\AppData\Local\VirtualStore
2016-03-31 06:32 - 2016-04-12 22:38 - 00000000 ____D C:\Users\Ladicek\AppData\Local\Packages
2016-03-31 06:32 - 2016-04-02 20:59 - 00000000 ____D C:\Users\Ladicek\AppData\Roaming\Adobe
2016-03-31 06:32 - 2016-03-31 06:32 - 00000020 ___SH C:\Users\Ladicek\ntuser.ini
2016-03-31 06:32 - 2016-03-31 06:32 - 00000000 ____D C:\Users\Ladicek\AppData\Local\TileDataLayer
2016-03-30 22:51 - 2016-04-05 12:03 - 00000000 ___DC C:\WINDOWS\Panther
2016-03-30 22:51 - 2016-03-30 22:51 - 00000000 ____D C:\WINDOWS\InfusedApps
2016-03-30 22:50 - 2016-04-02 19:51 - 00000000 ____D C:\Windows.old
2016-03-30 22:50 - 2016-03-30 22:50 - 00008192 _____ C:\WINDOWS\system32\config\userdiff
2016-03-30 22:50 - 2016-03-30 21:52 - 00000000 ____D C:\WINDOWS\ServiceProfiles
2016-03-30 22:49 - 2016-03-30 22:49 - 00000000 ____D C:\Program Files\Apoint2K
2016-03-30 22:48 - 2016-03-30 22:48 - 00000000 ____D C:\WINDOWS\Setup
2016-03-30 22:45 - 2016-03-31 19:53 - 00000000 ____D C:\Program Files\MSBuild
2016-03-30 22:45 - 2016-03-31 06:47 - 00000000 ____D C:\WINDOWS\OCR
2016-03-30 22:45 - 2016-03-30 22:45 - 00000000 ____D C:\WINDOWS\system32\XPSViewer
2016-03-30 22:45 - 2016-03-30 22:45 - 00000000 ____D C:\Program Files\Reference Assemblies
2016-03-30 22:44 - 2016-04-24 14:02 - 00751272 _____ C:\WINDOWS\system32\perfh005.dat
2016-03-30 22:44 - 2016-04-24 14:02 - 00150860 _____ C:\WINDOWS\system32\perfc005.dat
2016-03-30 22:44 - 2016-03-30 22:44 - 00296654 _____ C:\WINDOWS\system32\perfi005.dat
2016-03-30 22:44 - 2016-03-30 22:44 - 00038682 _____ C:\WINDOWS\system32\perfd005.dat
2016-03-30 22:44 - 2016-03-30 22:44 - 00000000 ____D C:\WINDOWS\system32\winrm
2016-03-30 22:44 - 2016-03-30 22:44 - 00000000 ____D C:\WINDOWS\system32\WCN
2016-03-30 22:44 - 2016-03-30 22:44 - 00000000 ____D C:\WINDOWS\system32\slmgr
2016-03-30 22:44 - 2016-03-30 22:44 - 00000000 ____D C:\WINDOWS\system32\Printing_Admin_Scripts
2016-03-30 22:44 - 2016-03-30 22:44 - 00000000 ____D C:\WINDOWS\system32\cs
2016-03-30 22:44 - 2016-03-30 22:44 - 00000000 ____D C:\WINDOWS\system32\0409
2016-03-30 22:44 - 2016-03-30 22:44 - 00000000 ____D C:\WINDOWS\DigitalLocker
2016-03-30 22:41 - 2016-04-06 20:32 - 00829944 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerApp.exe
2016-03-30 22:41 - 2016-04-06 20:32 - 00176632 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerCPLApp.cpl
2016-03-30 22:39 - 2016-04-25 00:28 - 00000000 ____D C:\WINDOWS\AppReadiness
2016-03-30 22:39 - 2016-04-24 00:26 - 00000000 __RHD C:\Users\Public\Libraries
2016-03-30 22:39 - 2016-04-24 00:20 - 00000000 ____D C:\WINDOWS\registration
2016-03-30 22:39 - 2016-04-24 00:02 - 00000000 ___HD C:\Program Files\WindowsApps
2016-03-30 22:39 - 2016-04-15 02:00 - 00000000 ____D C:\WINDOWS\rescache
2016-03-30 22:39 - 2016-04-13 12:58 - 00000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2016-03-30 22:39 - 2016-04-13 12:58 - 00000000 ____D C:\WINDOWS\system32\appraiser
2016-03-30 22:39 - 2016-04-13 12:58 - 00000000 ____D C:\WINDOWS\PolicyDefinitions
2016-03-30 22:39 - 2016-04-13 12:58 - 00000000 ____D C:\WINDOWS\bcastdvr
2016-03-30 22:39 - 2016-04-10 21:35 - 00000000 __RSD C:\WINDOWS\Media
2016-03-30 22:39 - 2016-04-04 22:29 - 00000202 _____ C:\WINDOWS\win.ini
2016-03-30 22:39 - 2016-04-02 08:05 - 00000000 ____D C:\WINDOWS\system32\NDF
2016-03-30 22:39 - 2016-03-31 20:57 - 00000000 ___SD C:\WINDOWS\system32\F12
2016-03-30 22:39 - 2016-03-31 20:57 - 00000000 ___RD C:\WINDOWS\PurchaseDialog
2016-03-30 22:39 - 2016-03-31 20:57 - 00000000 ____D C:\WINDOWS\system32\SystemResetPlatform
2016-03-30 22:39 - 2016-03-31 20:57 - 00000000 ____D C:\WINDOWS\system32\oobe
2016-03-30 22:39 - 2016-03-31 20:57 - 00000000 ____D C:\WINDOWS\system32\Dism
2016-03-30 22:39 - 2016-03-31 20:57 - 00000000 ____D C:\WINDOWS\Provisioning
2016-03-30 22:39 - 2016-03-31 20:56 - 00000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2016-03-30 22:39 - 2016-03-31 20:56 - 00000000 ____D C:\Program Files\Windows Portable Devices
2016-03-30 22:39 - 2016-03-31 20:56 - 00000000 ____D C:\Program Files\Windows Multimedia Platform
2016-03-30 22:39 - 2016-03-31 20:56 - 00000000 ____D C:\Program Files\Windows Journal
2016-03-30 22:39 - 2016-03-31 20:42 - 00000000 ____D C:\Program Files\Common Files\Microsoft Shared
2016-03-30 22:39 - 2016-03-31 20:41 - 00000000 ____D C:\Program Files\Common Files\System
2016-03-30 22:39 - 2016-03-31 20:17 - 00000000 ___HD C:\WINDOWS\ELAMBKUP
2016-03-30 22:39 - 2016-03-31 19:53 - 00000000 ____D C:\WINDOWS\ShellNew
2016-03-30 22:39 - 2016-03-31 06:51 - 00000000 ___RD C:\WINDOWS\DevicesFlow
2016-03-30 22:39 - 2016-03-31 06:34 - 00000000 ____D C:\WINDOWS\AppCompat
2016-03-30 22:39 - 2016-03-31 06:33 - 00000000 ___RD C:\WINDOWS\PrintDialog
2016-03-30 22:39 - 2016-03-31 06:33 - 00000000 ___RD C:\WINDOWS\MiracastView
2016-03-30 22:39 - 2016-03-30 22:51 - 00028672 _____ C:\WINDOWS\system32\config\BCD-Template
2016-03-30 22:39 - 2016-03-30 22:45 - 00000000 ____D C:\WINDOWS\system32\MUI
2016-03-30 22:39 - 2016-03-30 22:44 - 00000000 ___SD C:\WINDOWS\system32\dsc
2016-03-30 22:39 - 2016-03-30 22:44 - 00000000 ___SD C:\WINDOWS\system32\DiagSvcs
2016-03-30 22:39 - 2016-03-30 22:44 - 00000000 ____D C:\WINDOWS\system32\setup
2016-03-30 22:39 - 2016-03-30 22:44 - 00000000 ____D C:\WINDOWS\system32\migwiz
2016-03-30 22:39 - 2016-03-30 22:44 - 00000000 ____D C:\WINDOWS\system32\Com
2016-03-30 22:39 - 2016-03-30 22:44 - 00000000 ____D C:\WINDOWS\IME
2016-03-30 22:39 - 2016-03-30 22:44 - 00000000 ____D C:\WINDOWS\Help
2016-03-30 22:39 - 2016-03-30 22:44 - 00000000 ____D C:\Program Files\Windows Photo Viewer
2016-03-30 22:39 - 2016-03-30 22:44 - 00000000 ____D C:\Program Files\Windows Defender
2016-03-30 22:39 - 2016-03-30 22:39 - 00000000 __SHD C:\WINDOWS\BitLockerDiscoveryVolumeContents
2016-03-30 22:39 - 2016-03-30 22:39 - 00000000 __SHD C:\Program Files\Windows Sidebar
2016-03-30 22:39 - 2016-03-30 22:39 - 00000000 ___SD C:\WINDOWS\system32\Nui
2016-03-30 22:39 - 2016-03-30 22:39 - 00000000 ___SD C:\WINDOWS\system32\Configuration
2016-03-30 22:39 - 2016-03-30 22:39 - 00000000 ___SD C:\WINDOWS\Downloaded Program Files
2016-03-30 22:39 - 2016-03-30 22:39 - 00000000 ___RD C:\WINDOWS\Offline Web Pages
2016-03-30 22:39 - 2016-03-30 22:39 - 00000000 ___RD C:\WINDOWS\DesktopTileResources
2016-03-30 22:39 - 2016-03-30 22:39 - 00000000 ____D C:\WINDOWS\Web
2016-03-30 22:39 - 2016-03-30 22:39 - 00000000 ____D C:\WINDOWS\Vss
2016-03-30 22:39 - 2016-03-30 22:39 - 00000000 ____D C:\WINDOWS\tracing
2016-03-30 22:39 - 2016-03-30 22:39 - 00000000 ____D C:\WINDOWS\TAPI
2016-03-30 22:39 - 2016-03-30 22:39 - 00000000 ____D C:\WINDOWS\SystemResources
2016-03-30 22:39 - 2016-03-30 22:39 - 00000000 ____D C:\WINDOWS\SystemApps
2016-03-30 22:39 - 2016-03-30 22:39 - 00000000 ____D C:\WINDOWS\system32\WinMetadata
2016-03-30 22:39 - 2016-03-30 22:39 - 00000000 ____D C:\WINDOWS\system32\winevt
2016-03-30 22:39 - 2016-03-30 22:39 - 00000000 ____D C:\WINDOWS\system32\SecureBootUpdates
2016-03-30 22:39 - 2016-03-30 22:39 - 00000000 ____D C:\WINDOWS\system32\ras
2016-03-30 22:39 - 2016-03-30 22:39 - 00000000 ____D C:\WINDOWS\system32\ProximityToast
2016-03-30 22:39 - 2016-03-30 22:39 - 00000000 ____D C:\WINDOWS\system32\PointOfService
2016-03-30 22:39 - 2016-03-30 22:39 - 00000000 ____D C:\WINDOWS\system32\MsDtc
2016-03-30 22:39 - 2016-03-30 22:39 - 00000000 ____D C:\WINDOWS\system32\MailContactsCalendarSync
2016-03-30 22:39 - 2016-03-30 22:39 - 00000000 ____D C:\WINDOWS\system32\Macromed
2016-03-30 22:39 - 2016-03-30 22:39 - 00000000 ____D C:\WINDOWS\system32\Ipmi
2016-03-30 22:39 - 2016-03-30 22:39 - 00000000 ____D C:\WINDOWS\system32\InputMethod
2016-03-30 22:39 - 2016-03-30 22:39 - 00000000 ____D C:\WINDOWS\system32\inetsrv
2016-03-30 22:39 - 2016-03-30 22:39 - 00000000 ____D C:\WINDOWS\system32\IME
2016-03-30 22:39 - 2016-03-30 22:39 - 00000000 ____D C:\WINDOWS\system32\icsxml
2016-03-30 22:39 - 2016-03-30 22:39 - 00000000 ____D C:\WINDOWS\system32\ias
2016-03-30 22:39 - 2016-03-30 22:39 - 00000000 ____D C:\WINDOWS\system32\GroupPolicyUsers
2016-03-30 22:39 - 2016-03-30 22:39 - 00000000 ____D C:\WINDOWS\system32\GroupPolicy
2016-03-30 22:39 - 2016-03-30 22:39 - 00000000 ____D C:\WINDOWS\system32\downlevel
2016-03-30 22:39 - 2016-03-30 22:39 - 00000000 ____D C:\WINDOWS\system32\config\Journal
2016-03-30 22:39 - 2016-03-30 22:39 - 00000000 ____D C:\WINDOWS\system32\Bthprops
2016-03-30 22:39 - 2016-03-30 22:39 - 00000000 ____D C:\WINDOWS\system32\AppLocker
2016-03-30 22:39 - 2016-03-30 22:39 - 00000000 ____D C:\WINDOWS\system32\AdvancedInstallers
2016-03-30 22:39 - 2016-03-30 22:39 - 00000000 ____D C:\WINDOWS\System
2016-03-30 22:39 - 2016-03-30 22:39 - 00000000 ____D C:\WINDOWS\SKB
2016-03-30 22:39 - 2016-03-30 22:39 - 00000000 ____D C:\WINDOWS\schemas
2016-03-30 22:39 - 2016-03-30 22:39 - 00000000 ____D C:\WINDOWS\SchCache
2016-03-30 22:39 - 2016-03-30 22:39 - 00000000 ____D C:\WINDOWS\security
2016-03-30 22:39 - 2016-03-30 22:39 - 00000000 ____D C:\WINDOWS\Resources
2016-03-30 22:39 - 2016-03-30 22:39 - 00000000 ____D C:\WINDOWS\PLA
2016-03-30 22:39 - 2016-03-30 22:39 - 00000000 ____D C:\WINDOWS\Performance
2016-03-30 22:39 - 2016-03-30 22:39 - 00000000 ____D C:\WINDOWS\ModemLogs
2016-03-30 22:39 - 2016-03-30 22:39 - 00000000 ____D C:\WINDOWS\LiveKernelReports
2016-03-30 22:39 - 2016-03-30 22:39 - 00000000 ____D C:\WINDOWS\L2Schemas
2016-03-30 22:39 - 2016-03-30 22:39 - 00000000 ____D C:\WINDOWS\InputMethod
2016-03-30 22:39 - 2016-03-30 22:39 - 00000000 ____D C:\WINDOWS\Globalization
2016-03-30 22:39 - 2016-03-30 22:39 - 00000000 ____D C:\WINDOWS\Cursors
2016-03-30 22:39 - 2016-03-30 22:39 - 00000000 ____D C:\WINDOWS\Branding
2016-03-30 22:39 - 2016-03-30 22:39 - 00000000 ____D C:\WINDOWS\addins
2016-03-30 22:39 - 2016-03-30 22:39 - 00000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2016-03-30 22:39 - 2016-03-30 22:39 - 00000000 ____D C:\Program Files\Common Files\Services
2016-03-30 22:39 - 2016-03-30 22:36 - 00215943 _____ C:\WINDOWS\system32\dssec.dat
2016-03-30 22:39 - 2016-03-30 22:36 - 00209408 _____ (Microsoft Corporation) C:\WINDOWS\system32\msclmd.dll
2016-03-30 22:39 - 2016-03-30 22:36 - 00017463 _____ C:\WINDOWS\system32\Drivers\etc\services
2016-03-30 22:39 - 2016-03-30 22:36 - 00015462 _____ C:\WINDOWS\system32\OEMDefaultAssociations.xml
2016-03-30 22:39 - 2016-03-30 22:36 - 00008798 _____ C:\WINDOWS\system32\icrav03.rat
2016-03-30 22:39 - 2016-03-30 22:36 - 00003683 _____ C:\WINDOWS\system32\Drivers\etc\lmhosts.sam
2016-03-30 22:39 - 2016-03-30 22:36 - 00002577 _____ C:\WINDOWS\system32\config.nt
2016-03-30 22:39 - 2016-03-30 22:36 - 00001988 _____ C:\WINDOWS\system32\ticrf.rat
2016-03-30 22:39 - 2016-03-30 22:36 - 00001688 _____ C:\WINDOWS\system32\autoexec.nt
2016-03-30 22:39 - 2016-03-30 22:36 - 00001358 _____ C:\WINDOWS\system32\Drivers\etc\protocol
2016-03-30 22:39 - 2016-03-30 22:36 - 00000858 _____ C:\WINDOWS\system32\DefaultQuestions.json
2016-03-30 22:39 - 2016-03-30 22:36 - 00000741 _____ C:\WINDOWS\system32\NOISE.DAT
2016-03-30 22:39 - 2016-03-30 22:36 - 00000407 _____ C:\WINDOWS\system32\Drivers\etc\networks
2016-03-30 22:39 - 2016-03-30 22:36 - 00000389 _____ C:\WINDOWS\system32\AutoWorkplace.exe.config
2016-03-30 22:39 - 2016-03-30 22:36 - 00000219 _____ C:\WINDOWS\system.ini
2016-03-30 22:39 - 2016-03-30 22:02 - 00000000 ____D C:\WINDOWS\system32\WinBioDatabase
2016-03-30 22:39 - 2016-03-30 22:02 - 00000000 ____D C:\WINDOWS\system32\spool
2016-03-30 22:39 - 2016-03-30 22:02 - 00000000 ____D C:\WINDOWS\system32\FxsTmp
2016-03-30 22:39 - 2016-03-30 22:02 - 00000000 ____D C:\Program Files\Windows NT
2016-03-30 22:39 - 2016-03-30 22:00 - 00000000 ____D C:\WINDOWS\CSC
2016-03-30 22:39 - 2016-03-30 21:58 - 00000000 ____D C:\WINDOWS\system32\Sysprep
2016-03-30 22:39 - 2016-03-30 21:55 - 00000000 ____D C:\ProgramData\USOPrivate
2016-03-30 22:37 - 2016-04-24 14:02 - 00000000 ____D C:\WINDOWS\INF
2016-03-30 22:29 - 2016-04-13 12:49 - 00000000 ____D C:\WINDOWS\CbsTemp
2016-03-30 22:23 - 2015-10-30 07:18 - 00000164 _____ C:\WINDOWS\system32\config\FP
2016-03-30 22:22 - 2016-04-25 00:18 - 00524288 ___SH C:\WINDOWS\system32\config\BBI
2016-03-30 22:22 - 2016-03-30 22:44 - 00000000 ____D C:\WINDOWS\servicing
2016-03-30 22:22 - 2016-03-30 22:39 - 00000000 ____D C:\WINDOWS\system32\SMI
2016-03-30 22:22 - 2016-03-30 21:55 - 00032768 ___SH C:\WINDOWS\system32\config\ELAM
2016-03-30 22:05 - 2016-04-24 14:02 - 01771468 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2016-03-30 22:02 - 2016-03-30 22:02 - 00000000 _SHDL C:\Users\Default\Šablony
2016-03-30 22:02 - 2016-03-30 22:02 - 00000000 _SHDL C:\Users\Default\Soubory cookie
2016-03-30 22:02 - 2016-03-30 22:02 - 00000000 _SHDL C:\Users\Default\Poslední
2016-03-30 22:02 - 2016-03-30 22:02 - 00000000 _SHDL C:\Users\Default\Okolní tiskárny
2016-03-30 22:02 - 2016-03-30 22:02 - 00000000 _SHDL C:\Users\Default\Okolní síť
2016-03-30 22:02 - 2016-03-30 22:02 - 00000000 _SHDL C:\Users\Default\Nabídka Start
2016-03-30 22:02 - 2016-03-30 22:02 - 00000000 _SHDL C:\Users\Default\Dokumenty
2016-03-30 22:02 - 2016-03-30 22:02 - 00000000 _SHDL C:\Users\Default\Data aplikací
2016-03-30 22:02 - 2016-03-30 22:02 - 00000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2016-03-30 22:02 - 2016-03-30 22:02 - 00000000 _SHDL C:\Users\Default\AppData\Local\Data aplikací
2016-03-30 22:02 - 2016-03-30 22:02 - 00000000 _SHDL C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2016-03-30 22:02 - 2016-03-30 22:02 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Data aplikací
2016-03-30 22:02 - 2016-03-30 22:02 - 00000000 _SHDL C:\Users\Default User
2016-03-30 22:02 - 2016-03-30 22:02 - 00000000 _SHDL C:\Users\All Users
2016-03-30 22:02 - 2016-03-30 22:02 - 00000000 _SHDL C:\ProgramData\Šablony
2016-03-30 22:02 - 2016-03-30 22:02 - 00000000 _SHDL C:\ProgramData\Plocha
2016-03-30 22:02 - 2016-03-30 22:02 - 00000000 _SHDL C:\ProgramData\Oblíbené položky
2016-03-30 22:02 - 2016-03-30 22:02 - 00000000 _SHDL C:\ProgramData\Nabídka Start
2016-03-30 22:02 - 2016-03-30 22:02 - 00000000 _SHDL C:\ProgramData\Microsoft\Windows\Start Menu\Programy
2016-03-30 22:02 - 2016-03-30 22:02 - 00000000 _SHDL C:\ProgramData\Dokumenty
2016-03-30 22:02 - 2016-03-30 22:02 - 00000000 _SHDL C:\ProgramData\Data aplikací
2016-03-30 22:01 - 2016-04-24 21:29 - 00000000 ____D C:\Users\Ladicek
2016-03-30 22:01 - 2016-04-24 00:26 - 00000000 ____D C:\Users\DefaultAppPool
2016-03-30 22:01 - 2016-03-30 22:01 - 00000000 _SHDL C:\Users\Ladicek\Šablony
2016-03-30 22:01 - 2016-03-30 22:01 - 00000000 _SHDL C:\Users\Ladicek\Soubory cookie
2016-03-30 22:01 - 2016-03-30 22:01 - 00000000 _SHDL C:\Users\Ladicek\Poslední
2016-03-30 22:01 - 2016-03-30 22:01 - 00000000 _SHDL C:\Users\Ladicek\Okolní tiskárny
2016-03-30 22:01 - 2016-03-30 22:01 - 00000000 _SHDL C:\Users\Ladicek\Okolní síť
2016-03-30 22:01 - 2016-03-30 22:01 - 00000000 _SHDL C:\Users\Ladicek\Nabídka Start
2016-03-30 22:01 - 2016-03-30 22:01 - 00000000 _SHDL C:\Users\Ladicek\Dokumenty
2016-03-30 22:01 - 2016-03-30 22:01 - 00000000 _SHDL C:\Users\Ladicek\Data aplikací
2016-03-30 22:01 - 2016-03-30 22:01 - 00000000 _SHDL C:\Users\Ladicek\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2016-03-30 22:01 - 2016-03-30 22:01 - 00000000 _SHDL C:\Users\Ladicek\AppData\Local\Data aplikací
2016-03-30 22:01 - 2016-03-30 22:01 - 00000000 _SHDL C:\Users\DefaultAppPool\Šablony
2016-03-30 22:01 - 2016-03-30 22:01 - 00000000 _SHDL C:\Users\DefaultAppPool\Soubory cookie
2016-03-30 22:01 - 2016-03-30 22:01 - 00000000 _SHDL C:\Users\DefaultAppPool\Poslední
2016-03-30 22:01 - 2016-03-30 22:01 - 00000000 _SHDL C:\Users\DefaultAppPool\Okolní tiskárny
2016-03-30 22:01 - 2016-03-30 22:01 - 00000000 _SHDL C:\Users\DefaultAppPool\Okolní síť
2016-03-30 22:01 - 2016-03-30 22:01 - 00000000 _SHDL C:\Users\DefaultAppPool\Nabídka Start
2016-03-30 22:01 - 2016-03-30 22:01 - 00000000 _SHDL C:\Users\DefaultAppPool\Dokumenty
2016-03-30 22:01 - 2016-03-30 22:01 - 00000000 _SHDL C:\Users\DefaultAppPool\Data aplikací
2016-03-30 22:01 - 2016-03-30 22:01 - 00000000 _SHDL C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2016-03-30 22:01 - 2016-03-30 22:01 - 00000000 _SHDL C:\Users\DefaultAppPool\AppData\Local\Data aplikací
2016-03-30 21:55 - 2016-03-30 21:55 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_Kernel_Apfiltr_01007.Wdf
2016-03-30 21:55 - 2016-03-30 21:55 - 00000000 ____D C:\ProgramData\USOShared
2016-03-30 21:55 - 2016-03-30 21:55 - 00000000 ____D C:\Program Files\CONEXANT
2016-03-30 21:53 - 2016-04-25 00:18 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2016-03-30 21:52 - 2016-04-13 13:00 - 00353624 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2016-03-30 20:45 - 2016-03-31 19:18 - 00000000 ___HD C:\$SysReset
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2016-04-25 20:50 - 2016-04-25 20:50 - 00000000 ____D C:\FRST
2016-04-24 22:06 - 2016-04-24 22:06 - 00000000 ____D C:\Users\Ladicek\AppData\Local\PeerDistRepub
2016-04-24 21:36 - 2016-04-24 21:36 - 00000000 ____D C:\Users\Ladicek\AppData\Local\ActiveSync
2016-04-24 21:31 - 2016-04-24 21:12 - 00024064 _____ C:\WINDOWS\zoek-delete.exe
2016-04-24 21:12 - 2016-04-24 21:29 - 00000000 ____D C:\zoek_backup
2016-04-24 09:36 - 2016-04-24 09:36 - 00000000 _____ C:\WINDOWS\HPMProp.INI
2016-04-24 08:38 - 2016-04-24 08:38 - 00000000 ____D C:\Users\Ladicek\AppData\Local\Adobe
2016-04-24 08:08 - 2016-04-25 20:47 - 00000000 ____D C:\Users\Ladicek\AppData\Local\CrashDumps
2016-04-24 00:22 - 2016-04-24 20:45 - 00024688 _____ C:\WINDOWS\system32\Drivers\TrueSight.sys
2016-04-24 00:22 - 2016-04-24 01:04 - 00000000 ____D C:\ProgramData\RogueKiller
2016-04-23 23:00 - 2016-04-24 00:25 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
2016-04-23 23:00 - 2016-04-24 00:25 - 00000000 ____D C:\Program Files\Microsoft Silverlight
2016-04-23 22:25 - 2016-04-23 22:25 - 00000000 ____D C:\ProgramData\Malwarebytes
2016-04-23 22:15 - 2016-04-24 00:07 - 00000000 ____D C:\AdwCleaner
2016-04-23 11:18 - 2016-04-24 00:25 - 00000000 ____D C:\ProgramData\HandSetService
2016-04-23 11:18 - 2016-04-24 00:25 - 00000000 ____D C:\Program Files\HiSuite
2016-04-23 11:17 - 2016-04-23 11:20 - 00000000 ____D C:\Users\Ladicek\AppData\Local\Hisuite
2016-04-21 21:04 - 2016-04-25 20:52 - 00000000 ____D C:\Users\Ladicek\AppData\Roaming\Skype
2016-04-21 21:04 - 2016-04-21 21:04 - 00002646 _____ C:\Users\Public\Desktop\Skype.lnk
2016-04-21 21:04 - 2016-04-21 21:04 - 00000000 ___RD C:\Program Files\Skype
2016-04-21 21:04 - 2016-04-21 21:04 - 00000000 ____D C:\ProgramData\Skype
2016-04-21 21:04 - 2016-04-21 21:04 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2016-04-21 21:04 - 2016-04-21 21:04 - 00000000 ____D C:\Program Files\Common Files\Skype
2016-04-13 00:07 - 2016-03-29 10:01 - 00541304 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe
2016-04-13 00:07 - 2016-03-29 09:02 - 00303104 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\atmfd.dll
2016-04-13 00:07 - 2016-03-29 08:34 - 01152512 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2016-04-13 00:06 - 2016-04-02 06:17 - 00297072 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe
2016-04-13 00:06 - 2016-04-02 05:26 - 00526336 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneProviders.dll
2016-04-13 00:06 - 2016-04-02 05:22 - 00390144 _____ (Microsoft Corporation) C:\WINDOWS\system32\tileobjserver.dll
2016-04-13 00:06 - 2016-04-02 05:20 - 00826368 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2016-04-13 00:06 - 2016-04-02 05:20 - 00738816 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedStartModel.dll
2016-04-13 00:06 - 2016-04-02 05:17 - 00796672 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXService.dll
2016-04-13 00:06 - 2016-04-02 05:14 - 03197440 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll
2016-04-13 00:06 - 2016-04-02 05:12 - 01887744 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2016-04-13 00:06 - 2016-04-02 05:11 - 01524736 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2016-04-13 00:06 - 2016-04-02 05:10 - 02871296 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsThresholdAdminFlowUI.dll
2016-04-13 00:06 - 2016-04-02 05:05 - 01074688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Shell.dll
2016-04-13 00:06 - 2016-03-29 11:41 - 00875992 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2016-04-13 00:06 - 2016-03-29 11:41 - 00771120 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2016-04-13 00:06 - 2016-03-29 11:38 - 05797216 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2016-04-13 00:06 - 2016-03-29 11:38 - 01051584 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2016-04-13 00:06 - 2016-03-29 11:38 - 00927072 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2016-04-13 00:06 - 2016-03-29 11:37 - 01862008 _____ C:\WINDOWS\system32\CoreUIComponents.dll
2016-04-13 00:06 - 2016-03-29 11:36 - 01820512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys
2016-04-13 00:06 - 2016-03-29 11:20 - 00856928 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi
2016-04-13 00:06 - 2016-03-29 11:19 - 00296488 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanager.dll
2016-04-13 00:06 - 2016-03-29 11:13 - 00986976 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll
2016-04-13 00:06 - 2016-03-29 10:44 - 00502104 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupEngine.dll
2016-04-13 00:06 - 2016-03-29 10:32 - 00253088 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppHost.exe
2016-04-13 00:06 - 2016-03-29 10:24 - 00294752 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll
2016-04-13 00:06 - 2016-03-29 09:46 - 00771424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\http.sys
2016-04-13 00:06 - 2016-03-29 09:19 - 00037376 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll
2016-04-13 00:06 - 2016-03-29 09:16 - 00093696 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontsub.dll
2016-04-13 00:06 - 2016-03-29 09:12 - 00065536 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininetlui.dll
2016-04-13 00:06 - 2016-03-29 09:12 - 00045568 _____ (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll
2016-04-13 00:06 - 2016-03-29 08:59 - 00203264 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshostcore.dll
2016-04-13 00:06 - 2016-03-29 08:56 - 00415232 _____ (Microsoft Corporation) C:\WINDOWS\system32\StoreAgent.dll
2016-04-13 00:06 - 2016-03-29 08:55 - 00142336 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupSvc.dll
2016-04-13 00:06 - 2016-03-29 08:54 - 00497664 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll
2016-04-13 00:06 - 2016-03-29 08:53 - 00150016 _____ (Microsoft Corporation) C:\WINDOWS\system32\storewuauth.dll
2016-04-13 00:06 - 2016-03-29 08:52 - 00464896 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll
2016-04-13 00:06 - 2016-03-29 08:48 - 00346624 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapConfiguration.dll
2016-04-13 00:06 - 2016-03-29 08:47 - 00239616 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorService.dll
2016-04-13 00:06 - 2016-03-29 08:44 - 00498176 _____ (Microsoft Corporation) C:\WINDOWS\system32\MessagingDataModel2.dll
2016-04-13 00:06 - 2016-03-29 08:43 - 00358400 _____ (Microsoft Corporation) C:\WINDOWS\system32\AccountsRt.dll
2016-04-13 00:06 - 2016-03-29 08:43 - 00237568 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXTaskFactory.dll
2016-04-13 00:06 - 2016-03-29 08:41 - 00538624 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblAuthManager.dll
2016-04-13 00:06 - 2016-03-29 08:40 - 00445952 _____ (Microsoft Corporation) C:\WINDOWS\system32\PsmServiceExtHost.dll
2016-04-13 00:06 - 2016-03-29 08:39 - 00350720 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredProvDataModel.dll
2016-04-13 00:06 - 2016-03-29 08:38 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\system32\JpMapControl.dll
2016-04-13 00:06 - 2016-03-29 08:38 - 00609280 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsStore.dll
2016-04-13 00:06 - 2016-03-29 08:37 - 01444352 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRHInproc.dll
2016-04-13 00:06 - 2016-03-29 08:37 - 00799744 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRH.dll
2016-04-13 00:06 - 2016-03-29 08:37 - 00792064 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2016-04-13 00:06 - 2016-03-29 08:36 - 00649728 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2016-04-13 00:06 - 2016-03-29 08:36 - 00453632 _____ (Microsoft Corporation) C:\WINDOWS\system32\bisrv.dll
2016-04-13 00:06 - 2016-03-29 08:35 - 00354304 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupShim.dll
2016-04-13 00:06 - 2016-03-29 08:34 - 00711680 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapControlCore.dll
2016-04-13 00:06 - 2016-03-29 08:32 - 01588224 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll
2016-04-13 00:06 - 2016-03-29 08:32 - 00951808 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll
2016-04-13 00:06 - 2016-03-29 08:30 - 01139712 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCore.dll
2016-04-13 00:06 - 2016-03-29 08:28 - 01944576 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputService.dll
2016-04-13 00:06 - 2016-03-29 08:28 - 00764928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Cred.dll
2016-04-13 00:06 - 2016-03-29 08:27 - 00245760 _____ (Microsoft Corporation) C:\WINDOWS\system32\TextInputFramework.dll
2016-04-13 00:06 - 2016-03-29 08:27 - 00133632 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2016-04-13 00:06 - 2016-03-29 08:27 - 00083456 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputLocaleManager.dll
2016-04-13 00:06 - 2016-03-29 08:22 - 00638464 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBroker.dll
2016-04-13 00:06 - 2016-03-29 08:14 - 02975232 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2016-04-13 00:06 - 2016-03-29 08:14 - 01072128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.Http.dll
2016-04-13 00:06 - 2016-03-29 08:10 - 03671040 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll
2016-04-13 00:06 - 2016-03-29 08:07 - 00359936 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenrollengine.dll
2016-04-13 00:06 - 2016-03-29 08:06 - 00813056 _____ (Microsoft Corporation) C:\WINDOWS\system32\dosvc.dll
2016-04-13 00:06 - 2016-03-29 08:05 - 01894912 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2016-04-13 00:06 - 2016-03-29 08:05 - 01626624 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2016-04-13 00:06 - 2016-03-29 08:05 - 01500672 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2016-04-13 00:06 - 2016-03-29 08:04 - 00204800 _____ (Microsoft Corporation) C:\WINDOWS\system32\accountaccessor.dll
2016-04-13 00:06 - 2016-03-29 08:02 - 02229760 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2016-04-13 00:06 - 2016-03-29 08:01 - 13018624 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2016-04-13 00:06 - 2016-03-29 07:58 - 01799680 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Logon.dll
2016-04-13 00:06 - 2016-03-29 07:55 - 00614912 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapi.dll
2016-04-13 00:06 - 2016-03-29 07:51 - 09918976 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2016-04-13 00:06 - 2016-03-29 07:49 - 05202944 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingMaps.dll
2016-04-13 00:06 - 2016-03-29 07:49 - 01085952 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2016-04-13 00:06 - 2016-03-29 07:41 - 12125184 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2016-04-13 00:06 - 2016-03-29 07:38 - 18673664 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2016-04-13 00:06 - 2016-03-29 07:38 - 02798080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll
2016-04-13 00:06 - 2016-03-29 07:37 - 19340800 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2016-04-13 00:06 - 2016-03-29 07:36 - 02722816 _____ (Microsoft Corporation) C:\WINDOWS\system32\esent.dll
2016-04-13 00:06 - 2016-03-29 07:27 - 05662208 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2016-04-13 00:06 - 2016-03-29 07:25 - 00712704 _____ (Microsoft Corporation) C:\WINDOWS\system32\RemoteNaturalLanguage.dll
2016-04-13 00:05 - 2016-04-02 06:14 - 00757192 _____ (Microsoft Corporation) C:\WINDOWS\system32\iuilp.dll
2016-04-13 00:05 - 2016-04-02 06:14 - 00613112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Shell.Broker.dll
2016-04-13 00:05 - 2016-04-02 06:14 - 00305296 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlows.exe
2016-04-13 00:05 - 2016-04-02 05:30 - 00118784 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEStoreEventHandlers.dll
2016-04-13 00:05 - 2016-04-02 05:29 - 00083968 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEDataLayerHelpers.dll
2016-04-13 00:05 - 2016-04-02 05:25 - 00239104 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationObjFactory.dll
2016-04-13 00:05 - 2016-04-02 05:23 - 00219648 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEEventDispatcher.dll
2016-04-13 00:05 - 2016-04-02 05:08 - 02193408 _____ (Microsoft Corporation) C:\WINDOWS\system32\actxprxy.dll
2016-04-13 00:05 - 2016-03-29 11:41 - 00228696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdbus.sys
2016-04-13 00:05 - 2016-03-29 11:33 - 00084216 _____ (Microsoft Corporation) C:\WINDOWS\system32\omadmapi.dll
2016-04-13 00:05 - 2016-03-29 11:28 - 00535080 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsapi.dll
2016-04-13 00:05 - 2016-03-29 11:21 - 00922456 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys
2016-04-13 00:05 - 2016-03-29 10:44 - 00084832 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupApi.dll
2016-04-13 00:05 - 2016-03-29 10:41 - 00203104 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ufx01000.sys
2016-04-13 00:05 - 2016-03-29 10:41 - 00051128 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsNativeApi.dll
2016-04-13 00:05 - 2016-03-29 10:34 - 00153952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpsd.sys
2016-04-13 00:05 - 2016-03-29 10:26 - 00073872 _____ (Microsoft Corporation) C:\WINDOWS\system32\srvcli.dll
2016-04-13 00:05 - 2016-03-29 10:25 - 00056320 _____ (Microsoft Corporation) C:\WINDOWS\system32\wkscli.dll
2016-04-13 00:05 - 2016-03-29 10:24 - 00063008 _____ (Microsoft Corporation) C:\WINDOWS\system32\easinvoker.exe
2016-04-13 00:05 - 2016-03-29 10:23 - 00069744 _____ (Microsoft Corporation) C:\WINDOWS\system32\netapi32.dll
2016-04-13 00:05 - 2016-03-29 09:46 - 01861984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys
2016-04-13 00:05 - 2016-03-29 09:42 - 00287072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBXHCI.SYS
2016-04-13 00:05 - 2016-03-29 09:30 - 00161792 _____ (Microsoft Corporation) C:\WINDOWS\system32\msorcl32.dll
2016-04-13 00:05 - 2016-03-29 09:30 - 00074752 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsCSP.dll
2016-04-13 00:05 - 2016-03-29 09:28 - 00018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\xinputhid.sys
2016-04-13 00:05 - 2016-03-29 09:20 - 00080384 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsNativeApi.V2.dll
2016-04-13 00:05 - 2016-03-29 09:20 - 00073728 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanagerprecheck.dll
2016-04-13 00:05 - 2016-03-29 09:20 - 00033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenterprisediagnostics.dll
2016-04-13 00:05 - 2016-03-29 09:20 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsdchngr.dll
2016-04-13 00:05 - 2016-03-29 09:19 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleacchooks.dll
2016-04-13 00:05 - 2016-03-29 09:14 - 00059904 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveskybackup.dll
2016-04-13 00:05 - 2016-03-29 09:14 - 00023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\mapsupdatetask.dll
2016-04-13 00:05 - 2016-03-29 09:13 - 00022528 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManagerShellext.exe
2016-04-13 00:05 - 2016-03-29 09:11 - 00161280 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgent.exe
2016-04-13 00:05 - 2016-03-29 09:11 - 00061440 _____ (Microsoft Corporation) C:\WINDOWS\system32\samlib.dll
2016-04-13 00:05 - 2016-03-29 09:11 - 00059904 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosStorage.dll
2016-04-13 00:05 - 2016-03-29 09:11 - 00043520 _____ (Microsoft Corporation) C:\WINDOWS\system32\browcli.dll
2016-04-13 00:05 - 2016-03-29 09:09 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsBtSvc.dll
2016-04-13 00:05 - 2016-03-29 09:09 - 00077824 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\serial.sys
2016-04-13 00:05 - 2016-03-29 09:09 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\tbauth.dll
2016-04-13 00:05 - 2016-03-29 09:08 - 00118272 _____ (Microsoft Corporation) C:\WINDOWS\system32\mtxoci.dll
2016-04-13 00:05 - 2016-03-29 09:08 - 00085504 _____ (Microsoft Corporation) C:\WINDOWS\system32\FontProvider.dll
2016-04-13 00:05 - 2016-03-29 09:06 - 00137728 _____ (Microsoft Corporation) C:\WINDOWS\system32\dafBth.dll
2016-04-13 00:05 - 2016-03-29 09:06 - 00066560 _____ (Microsoft Corporation) C:\WINDOWS\system32\tzautoupdate.dll
2016-04-13 00:05 - 2016-03-29 09:06 - 00022528 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBrokerCookies.exe
2016-04-13 00:05 - 2016-03-29 09:05 - 00088576 _____ (Microsoft Corporation) C:\WINDOWS\system32\BdeHdCfgLib.dll
2016-04-13 00:05 - 2016-03-29 09:05 - 00074240 _____ (Microsoft Corporation) C:\WINDOWS\system32\browserbroker.dll
2016-04-13 00:05 - 2016-03-29 09:05 - 00071680 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxSysprep.dll
2016-04-13 00:05 - 2016-03-29 09:05 - 00052736 _____ (Microsoft Corporation) C:\WINDOWS\system32\OnDemandConnRouteHelper.dll
2016-04-13 00:05 - 2016-03-29 09:05 - 00050688 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshost.dll
2016-04-13 00:05 - 2016-03-29 09:05 - 00028160 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuautoappupdate.dll
2016-04-13 00:05 - 2016-03-29 09:04 - 00103936 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Devices.dll
2016-04-13 00:05 - 2016-03-29 09:03 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppCapture.dll
2016-04-13 00:05 - 2016-03-29 09:02 - 00107520 _____ (Microsoft Corporation) C:\WINDOWS\system32\browser.dll
2016-04-13 00:05 - 2016-03-29 09:00 - 00193536 _____ (Microsoft Corporation) C:\WINDOWS\system32\DAFWSD.dll
2016-04-13 00:05 - 2016-03-29 08:53 - 00424448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\nwifi.sys
2016-04-13 00:05 - 2016-03-29 08:53 - 00323072 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleacc.dll
2016-04-13 00:05 - 2016-03-29 08:53 - 00193024 _____ (Microsoft Corporation) C:\WINDOWS\system32\credprovhost.dll
2016-04-13 00:05 - 2016-03-29 08:52 - 00306176 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieproxy.dll
2016-04-13 00:05 - 2016-03-29 08:52 - 00241664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\portcls.sys
2016-04-13 00:05 - 2016-03-29 08:52 - 00222720 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsrslvr.dll
2016-04-13 00:05 - 2016-03-29 08:52 - 00141824 _____ (Microsoft Corporation) C:\WINDOWS\system32\easwrt.dll
2016-04-13 00:05 - 2016-03-29 08:51 - 00334336 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvr.exe
2016-04-13 00:05 - 2016-03-29 08:49 - 00246272 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvc.dll
2016-04-13 00:05 - 2016-03-29 08:46 - 00130560 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmmigrator.dll
2016-04-13 00:05 - 2016-03-29 08:44 - 00497152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdiWiFi.sys
2016-04-13 00:05 - 2016-03-29 08:42 - 00250880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2016-04-13 00:05 - 2016-03-29 08:41 - 00129024 _____ (Microsoft Corporation) C:\WINDOWS\system32\AboveLockAppHost.dll
2016-04-13 00:05 - 2016-03-29 08:39 - 00564224 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSDApi.dll
2016-04-13 00:05 - 2016-03-29 08:39 - 00496128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.Web.Core.dll
2016-04-13 00:05 - 2016-03-29 08:34 - 00784896 _____ (Microsoft Corporation) C:\WINDOWS\system32\NMAA.dll
2016-04-13 00:05 - 2016-03-29 08:34 - 00682496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Input.Inking.dll
2016-04-13 00:05 - 2016-03-29 08:32 - 00854528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Bluetooth.dll
2016-04-13 00:05 - 2016-03-29 08:32 - 00638464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.dll
2016-04-13 00:05 - 2016-03-29 08:32 - 00601600 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32spl.dll
2016-04-13 00:05 - 2016-03-29 08:31 - 01117184 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Speech.dll
2016-04-13 00:05 - 2016-03-29 08:31 - 00705536 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll
2016-04-13 00:05 - 2016-03-29 08:29 - 00114176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dfsc.sys
2016-04-13 00:05 - 2016-03-29 08:27 - 00162816 _____ C:\WINDOWS\system32\MTF.dll
2016-04-13 00:05 - 2016-03-29 08:26 - 00192512 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapibase.dll
2016-04-13 00:05 - 2016-03-29 08:26 - 00154112 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.DeviceEncryptionHandlers.dll
2016-04-13 00:05 - 2016-03-29 08:25 - 00110080 _____ (Microsoft Corporation) C:\WINDOWS\system32\BitLockerDeviceEncryption.exe
2016-04-13 00:05 - 2016-03-29 08:23 - 00777728 _____ (Microsoft Corporation) C:\WINDOWS\system32\MsSpellCheckingFacility.dll
2016-04-13 00:05 - 2016-03-29 08:18 - 00265216 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveui.dll
2016-04-13 00:05 - 2016-03-29 08:13 - 00592384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.dll
2016-04-13 00:05 - 2016-03-29 08:06 - 00151040 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmregistration.dll
2016-04-13 00:05 - 2016-03-29 08:06 - 00141824 _____ (Microsoft Corporation) C:\WINDOWS\system32\enrollmentapi.dll
2016-04-13 00:05 - 2016-03-29 08:06 - 00106496 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmcsps.dll
2016-04-13 00:05 - 2016-03-29 08:05 - 00450560 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncController.dll
2016-04-13 00:05 - 2016-03-29 08:00 - 06297088 _____ (Microsoft Corporation) C:\WINDOWS\system32\mos.dll
2016-04-13 00:05 - 2016-03-29 07:46 - 00307712 _____ (Microsoft Corporation) C:\WINDOWS\system32\bdesvc.dll
2016-04-13 00:05 - 2016-03-29 07:43 - 00521728 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.Connectivity.dll
2016-04-13 00:05 - 2016-03-29 07:42 - 00705024 _____ (Microsoft Corporation) C:\WINDOWS\system32\samsrv.dll
2016-04-13 00:05 - 2016-03-29 07:36 - 00294912 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncbservice.dll
2016-04-13 00:05 - 2016-03-29 07:32 - 00742400 _____ (Microsoft Corporation) C:\WINDOWS\system32\IKEEXT.DLL
2016-04-13 00:05 - 2016-03-29 07:30 - 00782336 _____ (Microsoft Corporation) C:\WINDOWS\system32\fvewiz.dll
2016-04-13 00:05 - 2016-03-29 07:25 - 00554496 _____ (Microsoft Corporation) C:\WINDOWS\system32\BFE.DLL
2016-04-13 00:05 - 2016-03-29 07:25 - 00269824 _____ (Microsoft Corporation) C:\WINDOWS\system32\FWPUCLNT.DLL
2016-04-13 00:05 - 2016-03-29 07:24 - 00310272 _____ (Microsoft Corporation) C:\WINDOWS\system32\fvecpl.dll
2016-04-13 00:05 - 2016-03-29 07:21 - 00055808 _____ (Microsoft Corporation) C:\WINDOWS\system32\basesrv.dll
2016-04-10 21:35 - 2016-04-10 21:35 - 00000000 ____D C:\Users\Ladicek\AppData\Local\Lenovo
2016-04-10 21:35 - 2016-04-10 21:35 - 00000000 ____D C:\Program Files\SmartSense
2016-04-10 21:35 - 2015-07-09 08:00 - 00019712 ____N (Lenovo Group Limited) C:\WINDOWS\system32\Drivers\TPPWR32V.SYS
2016-04-10 13:08 - 2016-04-24 21:32 - 00000350 _____ C:\WINDOWS\Tasks\HPCeeScheduleForLadicek.job
2016-04-05 13:02 - 2016-04-05 13:06 - 00000000 ____D C:\Users\Ladicek\Downloads\HP Downloads
2016-04-05 12:49 - 2016-04-24 00:06 - 00002218 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2016-04-05 12:49 - 2016-04-24 00:06 - 00002206 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2016-04-05 12:48 - 2016-04-25 20:47 - 00000960 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2016-04-05 12:48 - 2016-04-25 03:53 - 00000964 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2016-04-05 12:48 - 2016-04-16 00:57 - 00000000 ____D C:\Users\Ladicek\AppData\Local\Google
2016-04-05 12:48 - 2016-04-05 12:49 - 00000000 ____D C:\Program Files\Google
2016-04-04 22:43 - 2016-04-04 22:43 - 00000000 ____D C:\Program Files\Defraggler
2016-04-04 22:38 - 2016-04-09 21:29 - 00000000 ____D C:\Users\Ladicek\AppData\Roaming\HP Photo Creations
2016-04-04 22:38 - 2016-04-04 22:38 - 00002002 _____ C:\Users\Ladicek\Desktop\HP Photo Creations.lnk
2016-04-04 22:38 - 2016-04-04 22:38 - 00000000 ____D C:\Users\Ladicek\AppData\Roaming\Visan
2016-04-04 22:38 - 2016-04-04 22:38 - 00000000 ____D C:\Users\Ladicek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\HP
2016-04-04 22:30 - 2016-04-04 22:33 - 00000000 ____D C:\Users\Ladicek\AppData\Roaming\HP
2016-04-04 22:30 - 2016-04-04 22:30 - 00000000 ____D C:\Users\Ladicek\AppData\Local\HP
2016-04-04 22:30 - 2016-04-04 22:30 - 00000000 ____D C:\ProgramData\WEBREG
2016-04-04 22:29 - 2016-04-11 23:20 - 00000000 ____D C:\Users\Ladicek\AppData\Roaming\HpUpdate
2016-04-04 22:29 - 2016-04-04 22:29 - 00001272 _____ C:\Users\Public\Desktop\Nakupujte spotřební materiál HP.lnk
2016-04-04 22:28 - 2016-04-04 22:28 - 00001404 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Centrum řešení HP.lnk
2016-04-04 22:28 - 2016-04-04 22:28 - 00001398 _____ C:\Users\Public\Desktop\Centrum řešení HP.lnk
2016-04-04 22:28 - 2016-04-04 22:28 - 00000000 ____D C:\ProgramData\HP Product Assistant
2016-04-04 22:27 - 2016-04-04 22:27 - 00000000 ____D C:\Program Files\Common Files\HP
2016-04-04 22:27 - 2016-04-04 22:27 - 00000000 ____D C:\Program Files\Common Files\Hewlett-Packard
2016-04-04 22:22 - 2016-04-04 22:29 - 00200051 _____ C:\WINDOWS\hpoins32.dat
2016-04-04 22:22 - 2012-09-28 11:52 - 00000932 ____N C:\WINDOWS\hpomdl32.dat
2016-04-04 22:21 - 2011-05-10 04:47 - 00037376 _____ (Hewlett-Packard Corporation) C:\WINDOWS\system32\hpz3lw72.dll
2016-04-04 01:15 - 2016-04-04 01:16 - 00002393 _____ C:\Users\Souteze\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2016-04-04 01:15 - 2016-04-04 01:16 - 00000000 ___RD C:\Users\Souteze\OneDrive
2016-04-04 01:13 - 2016-04-04 01:14 - 00000000 ____D C:\Users\Souteze\AppData\Local\Packages
2016-04-04 01:13 - 2016-04-04 01:13 - 00000000 ____D C:\Users\Souteze\AppData\Roaming\Adobe
2016-04-04 01:13 - 2016-04-04 01:13 - 00000000 ____D C:\Users\Souteze\AppData\Local\Publishers
2016-04-04 01:12 - 2016-04-24 00:26 - 00000000 ____D C:\Users\Souteze
2016-04-04 01:12 - 2016-04-24 00:20 - 00000000 ____D C:\Users\Souteze\AppData\Roaming\Macromedia
2016-04-04 01:12 - 2016-04-04 01:12 - 00000020 ___SH C:\Users\Souteze\ntuser.ini
2016-04-04 01:12 - 2016-04-04 01:12 - 00000000 _SHDL C:\Users\Souteze\Šablony
2016-04-04 01:12 - 2016-04-04 01:12 - 00000000 _SHDL C:\Users\Souteze\Soubory cookie
2016-04-04 01:12 - 2016-04-04 01:12 - 00000000 _SHDL C:\Users\Souteze\Poslední
2016-04-04 01:12 - 2016-04-04 01:12 - 00000000 _SHDL C:\Users\Souteze\Okolní tiskárny
2016-04-04 01:12 - 2016-04-04 01:12 - 00000000 _SHDL C:\Users\Souteze\Okolní síť
2016-04-04 01:12 - 2016-04-04 01:12 - 00000000 _SHDL C:\Users\Souteze\Nabídka Start
2016-04-04 01:12 - 2016-04-04 01:12 - 00000000 _SHDL C:\Users\Souteze\Dokumenty
2016-04-04 01:12 - 2016-04-04 01:12 - 00000000 _SHDL C:\Users\Souteze\Data aplikací
2016-04-04 01:12 - 2016-04-04 01:12 - 00000000 _SHDL C:\Users\Souteze\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2016-04-04 01:12 - 2016-04-04 01:12 - 00000000 _SHDL C:\Users\Souteze\AppData\Local\Data aplikací
2016-04-04 01:12 - 2016-04-04 01:12 - 00000000 ____D C:\Users\Souteze\AppData\Local\TileDataLayer
2016-04-04 01:12 - 2016-04-04 01:12 - 00000000 ____D C:\Users\Souteze\AppData\Local\ESET
2016-04-04 01:12 - 2016-03-31 20:38 - 00000000 ____D C:\Users\Souteze\AppData\Local\Microsoft Help
2016-04-03 21:15 - 2016-04-14 23:50 - 00000000 ____D C:\Users\Ladicek\AppData\Roaming\Kodi
2016-04-03 21:12 - 2016-04-03 21:12 - 00000000 ____D C:\Users\Ladicek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Kodi
2016-04-03 21:11 - 2016-04-03 21:11 - 00000000 ____D C:\Users\Ladicek\AppData\Roaming\Lenovo
2016-04-03 20:54 - 2016-04-03 20:54 - 00000000 ____D C:\Users\Ladicek\AppData\Roaming\LSC
2016-04-03 20:37 - 2016-04-03 20:37 - 00002160 _____ C:\Users\Public\Desktop\Lenovo Solution Center.lnk
2016-04-02 21:25 - 2016-04-10 21:35 - 00000000 ____D C:\Program Files\ThinkPad
2016-04-02 21:05 - 2016-04-02 21:05 - 00000000 ____D C:\Users\Ladicek\AppData\Local\Tvsukernel
2016-04-02 21:04 - 2016-04-02 21:04 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_Kernel_ldiagio_uefi_01009.Wdf
2016-04-02 21:03 - 2016-04-02 21:03 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lenovo ThinkVantage Tools
2016-04-02 21:03 - 2016-04-02 21:03 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lenovo
2016-04-02 20:59 - 2016-04-24 00:18 - 00000000 ____D C:\Users\Default\AppData\Roaming\Macromedia
2016-04-02 20:59 - 2016-04-24 00:18 - 00000000 ____D C:\Users\Default User\AppData\Roaming\Macromedia
2016-04-02 20:59 - 2016-04-10 21:35 - 00000000 ____D C:\WINDOWS\Downloaded Installations
2016-04-02 20:59 - 2016-04-02 21:06 - 00000000 ____D C:\Program Files\Common Files\Adobe AIR
2016-04-02 20:50 - 2016-04-02 20:50 - 00000000 ____D C:\Users\Ladicek\AppData\Roaming\CachedFiles
2016-04-02 20:14 - 2016-04-02 20:14 - 00000000 ____D C:\Users\Ladicek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Lenovo
2016-04-02 20:13 - 2016-04-24 00:18 - 00000000 ____D C:\Users\Ladicek\AppData\Local\Apps\2.0
2016-04-02 20:13 - 2016-04-03 20:55 - 00000000 ____D C:\Users\Ladicek\AppData\Local\Deployment
2016-04-02 15:11 - 2016-04-03 20:42 - 00000091 _____ C:\Users\Ladicek\Desktop\jakub.txt
2016-04-02 12:01 - 2016-04-02 12:25 - 00000000 ____D C:\Users\Ladicek\AppData\Roaming\PDF Architect 4
2016-04-02 11:59 - 2016-04-02 12:38 - 00000000 ____D C:\ProgramData\PDF Architect 4
2016-04-02 11:59 - 2016-04-02 11:59 - 00101128 _____ (pdfforge GmbH) C:\WINDOWS\system32\pdfcmon.dll
2016-04-02 11:59 - 2016-04-02 11:59 - 00001058 _____ C:\Users\Public\Desktop\PDFCreator.lnk
2016-04-02 11:59 - 2016-04-02 11:59 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDFCreator
2016-04-02 11:58 - 2016-04-05 12:03 - 00000000 ____D C:\Program Files\PDFCreator
2016-04-02 08:49 - 2016-04-10 13:08 - 00000000 ____D C:\Users\Ladicek\AppData\Local\Hewlett-Packard
2016-04-02 08:40 - 2016-04-02 08:40 - 00000000 ____D C:\Users\Ladicek\AppData\Local\CEF
2016-04-02 08:35 - 2016-04-04 22:29 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP
2016-04-02 08:35 - 2012-09-27 02:27 - 00100256 _____ (HP) C:\WINDOWS\system32\HPSIsvc.exe
2016-04-02 08:35 - 2012-08-31 15:01 - 01511424 _____ C:\WINDOWS\system32\HP1100SM.EXE
2016-04-02 08:35 - 2012-08-31 15:01 - 00151552 _____ C:\WINDOWS\system32\HP1100LM.DLL
2016-04-02 08:34 - 2012-08-31 09:10 - 00284160 _____ C:\WINDOWS\system32\mvhlewsi.dll
2016-04-02 08:29 - 2012-09-26 07:45 - 00048128 _____ C:\WINDOWS\system32\HP1100SMs.dll
2016-04-02 08:28 - 2016-04-02 08:29 - 00000000 ____D C:\LJP1100_P1560_P1600_Full_Solution
2016-04-02 08:25 - 2016-04-05 13:04 - 00002039 _____ C:\Users\Public\Desktop\HP Print and Scan Doctor.lnk
2016-04-02 08:24 - 2016-04-02 08:24 - 00000000 ____D C:\Users\Ladicek\AppData\Roaming\Hewlett-Packard
2016-04-02 08:22 - 2016-04-04 22:30 - 00000000 ____D C:\ProgramData\HP
2016-04-02 08:22 - 2016-04-04 22:29 - 00000000 ____D C:\Program Files\HP
2016-04-02 08:17 - 2016-04-24 09:35 - 00000000 ____D C:\ProgramData\Hewlett-Packard
2016-04-02 08:17 - 2016-04-10 21:35 - 00000000 ___HD C:\Program Files\InstallShield Installation Information
2016-04-02 08:17 - 2016-04-02 08:17 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP Help and Support
2016-04-02 08:16 - 2016-04-02 08:16 - 00000000 ____D C:\Users\Ladicek\AppData\Roaming\hpqLog
2016-04-02 08:13 - 2016-04-24 09:36 - 00000000 ____D C:\Program Files\Hewlett-Packard
2016-04-02 08:01 - 2016-04-02 08:01 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_WpdMtpDr_01_11_00.Wdf
2016-04-01 20:37 - 2016-04-01 20:37 - 00000000 ____D C:\WINDOWS\system32\SleepStudy
2016-04-01 20:06 - 2016-04-24 17:49 - 00000000 ____D C:\ProgramData\firebird
2016-04-01 20:04 - 2016-04-24 00:26 - 00000000 ____D C:\Users\Ladicek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\HDsum
2016-04-01 20:04 - 2016-04-19 23:18 - 00000000 ____D C:\Users\Ladicek\AppData\Local\GHISLER
2016-04-01 19:44 - 2016-04-01 19:44 - 00001929 _____ C:\Users\Public\Desktop\TC UP.lnk
2016-04-01 19:44 - 2016-04-01 19:44 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Total Commander Ultima Prime
2016-04-01 19:39 - 2016-04-01 19:39 - 00000000 ____D C:\Users\Ladicek\AppData\Roaming\HEXelon
2016-04-01 19:35 - 2016-04-25 20:46 - 00000914 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2016-04-01 19:35 - 2016-04-24 00:44 - 00000958 _____ C:\WINDOWS\Tasks\Adobe Flash Player PPAPI Notifier.job
2016-04-01 19:35 - 2016-04-24 00:25 - 00000000 ___RD C:\Program Files\TC UP
2016-04-01 06:42 - 2016-04-01 06:42 - 00000000 ____D C:\Program Files\CCleaner
2016-04-01 06:33 - 2016-04-01 06:33 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf
2016-03-31 21:33 - 2016-03-31 21:33 - 00000000 ____D C:\Program Files\Common Files\DESIGNER
2016-03-31 21:15 - 2016-03-31 21:15 - 00000000 ____D C:\Users\Ladicek\AppData\Roaming\ESET
2016-03-31 21:02 - 2016-03-31 21:02 - 02154872 _____ (Microsoft Corporation) C:\WINDOWS\system32\WudfUpdate_01011.dll
2016-03-31 20:53 - 2016-03-31 20:53 - 00154288 _____ (ESET) C:\WINDOWS\system32\Drivers\edevmon.sys
2016-03-31 20:38 - 2016-03-31 20:38 - 00000000 ____D C:\Users\Default\AppData\Local\Microsoft Help
2016-03-31 20:38 - 2016-03-31 20:38 - 00000000 ____D C:\Users\Default User\AppData\Local\Microsoft Help
2016-03-31 20:18 - 2016-03-31 20:18 - 00000000 ____D C:\Users\Ladicek\AppData\Local\ESET
2016-03-31 20:16 - 2016-03-31 20:16 - 00002100 _____ C:\Users\Public\Desktop\ESET Ochrana bankovnictví a online plateb.lnk
2016-03-31 20:16 - 2016-03-31 20:16 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ESET
2016-03-31 20:16 - 2016-03-31 20:16 - 00000000 ____D C:\ProgramData\ESET
2016-03-31 20:15 - 2016-03-31 20:15 - 00615936 _____ C:\WINDOWS\AutoKMS.exe
2016-03-31 20:15 - 2016-03-31 20:15 - 00077824 ____N C:\WINDOWS\KMSEmulator.exe
2016-03-31 20:15 - 2016-03-31 20:15 - 00000161 _____ C:\WINDOWS\AutoKMS.ini
2016-03-31 20:15 - 2016-03-31 20:15 - 00000000 ____D C:\Program Files\ESET
2016-03-31 20:07 - 2016-04-10 21:35 - 00000000 ____D C:\Program Files\Lenovo
2016-03-31 20:07 - 2016-03-31 21:02 - 00217544 _____ (Lenovo Group Limited) C:\WINDOWS\system32\iMDriverHelper.dll
2016-03-31 20:06 - 2016-04-24 00:18 - 00000000 ____D C:\ProgramData\Lenovo
2016-03-31 20:04 - 2015-11-12 08:42 - 00548864 _____ (Firebird Project) C:\WINDOWS\system32\GDS32.DLL
2016-03-31 20:03 - 2016-03-31 20:03 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firebird 2.5 (Win32)
2016-03-31 20:03 - 2016-03-31 20:03 - 00000000 ____D C:\Program Files\Firebird
2016-03-31 20:03 - 2015-11-12 08:44 - 00462848 _____ (IBPhoenix) C:\WINDOWS\system32\Firebird2Control.cpl
2016-03-31 19:54 - 2016-03-31 19:54 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SharePoint
2016-03-31 19:54 - 2016-03-31 19:54 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office
2016-03-31 19:53 - 2016-03-31 19:53 - 00000000 ____D C:\Program Files\Microsoft Synchronization Services
2016-03-31 19:52 - 2016-03-31 19:52 - 00000000 ____D C:\WINDOWS\PCHEALTH
2016-03-31 19:52 - 2016-03-31 19:52 - 00000000 ____D C:\Program Files\Microsoft Sync Framework
2016-03-31 19:52 - 2016-03-31 19:52 - 00000000 ____D C:\Program Files\Microsoft SQL Server Compact Edition
2016-03-31 19:51 - 2016-03-31 19:51 - 00000000 ____D C:\Program Files\Microsoft Visual Studio 8
2016-03-31 19:51 - 2016-03-31 19:51 - 00000000 ____D C:\Program Files\Microsoft Analysis Services
2016-03-31 19:50 - 2016-03-31 19:52 - 00000000 ____D C:\Program Files\Microsoft Office
2016-03-31 19:50 - 2016-03-31 19:50 - 00002013 _____ C:\Users\Public\Desktop\Datovka.lnk
2016-03-31 19:50 - 2016-03-31 19:50 - 00000000 ____D C:\Users\Ladicek\AppData\Local\Microsoft Help
2016-03-31 19:50 - 2016-03-31 19:50 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CZ.NIC
2016-03-31 19:45 - 2016-03-31 19:45 - 00000000 ____D C:\Users\Ladicek\AppData\Roaming\WinRAR
2016-03-31 19:44 - 2016-03-31 19:44 - 00000000 ____D C:\Users\Ladicek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2016-03-31 19:44 - 2016-03-31 19:44 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2016-03-31 19:44 - 2016-03-31 19:44 - 00000000 ____D C:\Program Files\WinRAR
2016-03-31 19:40 - 2016-04-04 01:45 - 00000000 ____D C:\Users\Ladicek\AppData\Roaming\.dsgui
2016-03-31 19:30 - 2016-03-31 19:30 - 00000000 ____D C:\Program Files\CZ.NIC
2016-03-31 19:11 - 2015-12-09 05:39 - 00247976 ____N (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe
2016-03-31 19:09 - 2016-04-13 12:47 - 00000000 ____D C:\WINDOWS\system32\MRT
2016-03-31 19:08 - 2016-04-13 12:41 - 132539272 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2016-03-31 06:52 - 2016-04-14 23:11 - 00001078 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Opera.lnk
2016-03-31 06:52 - 2016-03-31 06:52 - 00001162 _____ C:\Users\Public\Desktop\Opera.lnk
2016-03-31 06:52 - 2016-03-31 06:52 - 00000000 ____D C:\Users\Ladicek\AppData\Roaming\Opera Software
2016-03-31 06:52 - 2016-03-31 06:52 - 00000000 ____D C:\Users\Ladicek\AppData\Local\Opera Software
2016-03-31 06:50 - 2016-04-14 23:11 - 00000000 ____D C:\Program Files\Opera
2016-03-31 06:50 - 2016-03-31 19:13 - 00002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2016-03-31 06:50 - 2016-03-31 06:50 - 00002094 _____ C:\Users\Public\Desktop\Acrobat Reader DC.lnk
2016-03-31 06:49 - 2016-04-02 20:59 - 00000000 ____D C:\ProgramData\Adobe
2016-03-31 06:49 - 2016-04-02 20:59 - 00000000 ____D C:\Program Files\Adobe
2016-03-31 06:49 - 2016-03-31 06:49 - 00000000 ____D C:\Program Files\Common Files\Adobe
2016-03-31 06:47 - 2016-04-24 00:20 - 00000000 ____D C:\Users\Ladicek\AppData\Roaming\Macromedia
2016-03-31 06:47 - 2016-03-31 06:47 - 00001047 _____ C:\Users\Ladicek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Volitelné funkce.lnk
2016-03-31 06:47 - 2015-10-29 19:42 - 05739520 _____ (Microsoft Corporation) C:\WINDOWS\system32\prm0009.dll
2016-03-31 06:47 - 2015-10-29 19:41 - 02629632 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsLexicons0009.dll
2016-03-31 06:47 - 2015-10-29 19:24 - 04847616 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData0009.dll
2016-03-31 06:46 - 2016-03-31 21:24 - 00000000 ____D C:\Users\Ladicek\AppData\Local\MicrosoftEdge
2016-03-31 06:37 - 2016-03-31 06:37 - 00002393 _____ C:\Users\Ladicek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2016-03-31 06:35 - 2016-03-31 06:35 - 00027744 _____ C:\Users\Ladicek\Desktop\Odebrané aplikace.html
2016-03-31 06:35 - 2016-03-31 06:35 - 00000000 ____D C:\ProgramData\Microsoft OneDrive
2016-03-31 06:34 - 2016-03-31 06:34 - 00000000 ____D C:\Users\Ladicek\AppData\Local\Comms
2016-03-31 06:33 - 2016-03-31 06:33 - 00000000 ____D C:\Users\Ladicek\AppData\Local\Publishers
2016-03-31 06:32 - 2016-04-23 23:48 - 00000000 ____D C:\Users\Ladicek\AppData\Local\VirtualStore
2016-03-31 06:32 - 2016-04-12 22:38 - 00000000 ____D C:\Users\Ladicek\AppData\Local\Packages
2016-03-31 06:32 - 2016-04-02 20:59 - 00000000 ____D C:\Users\Ladicek\AppData\Roaming\Adobe
2016-03-31 06:32 - 2016-03-31 06:32 - 00000020 ___SH C:\Users\Ladicek\ntuser.ini
2016-03-31 06:32 - 2016-03-31 06:32 - 00000000 ____D C:\Users\Ladicek\AppData\Local\TileDataLayer
2016-03-30 22:51 - 2016-04-05 12:03 - 00000000 ___DC C:\WINDOWS\Panther
2016-03-30 22:51 - 2016-03-30 22:51 - 00000000 ____D C:\WINDOWS\InfusedApps
2016-03-30 22:50 - 2016-04-02 19:51 - 00000000 ____D C:\Windows.old
2016-03-30 22:50 - 2016-03-30 22:50 - 00008192 _____ C:\WINDOWS\system32\config\userdiff
2016-03-30 22:50 - 2016-03-30 21:52 - 00000000 ____D C:\WINDOWS\ServiceProfiles
2016-03-30 22:49 - 2016-03-30 22:49 - 00000000 ____D C:\Program Files\Apoint2K
2016-03-30 22:48 - 2016-03-30 22:48 - 00000000 ____D C:\WINDOWS\Setup
2016-03-30 22:45 - 2016-03-31 19:53 - 00000000 ____D C:\Program Files\MSBuild
2016-03-30 22:45 - 2016-03-31 06:47 - 00000000 ____D C:\WINDOWS\OCR
2016-03-30 22:45 - 2016-03-30 22:45 - 00000000 ____D C:\WINDOWS\system32\XPSViewer
2016-03-30 22:45 - 2016-03-30 22:45 - 00000000 ____D C:\Program Files\Reference Assemblies
2016-03-30 22:44 - 2016-04-24 14:02 - 00751272 _____ C:\WINDOWS\system32\perfh005.dat
2016-03-30 22:44 - 2016-04-24 14:02 - 00150860 _____ C:\WINDOWS\system32\perfc005.dat
2016-03-30 22:44 - 2016-03-30 22:44 - 00296654 _____ C:\WINDOWS\system32\perfi005.dat
2016-03-30 22:44 - 2016-03-30 22:44 - 00038682 _____ C:\WINDOWS\system32\perfd005.dat
2016-03-30 22:44 - 2016-03-30 22:44 - 00000000 ____D C:\WINDOWS\system32\winrm
2016-03-30 22:44 - 2016-03-30 22:44 - 00000000 ____D C:\WINDOWS\system32\WCN
2016-03-30 22:44 - 2016-03-30 22:44 - 00000000 ____D C:\WINDOWS\system32\slmgr
2016-03-30 22:44 - 2016-03-30 22:44 - 00000000 ____D C:\WINDOWS\system32\Printing_Admin_Scripts
2016-03-30 22:44 - 2016-03-30 22:44 - 00000000 ____D C:\WINDOWS\system32\cs
2016-03-30 22:44 - 2016-03-30 22:44 - 00000000 ____D C:\WINDOWS\system32\0409
2016-03-30 22:44 - 2016-03-30 22:44 - 00000000 ____D C:\WINDOWS\DigitalLocker
2016-03-30 22:41 - 2016-04-06 20:32 - 00829944 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerApp.exe
2016-03-30 22:41 - 2016-04-06 20:32 - 00176632 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerCPLApp.cpl
2016-03-30 22:39 - 2016-04-25 00:28 - 00000000 ____D C:\WINDOWS\AppReadiness
2016-03-30 22:39 - 2016-04-24 00:26 - 00000000 __RHD C:\Users\Public\Libraries
2016-03-30 22:39 - 2016-04-24 00:20 - 00000000 ____D C:\WINDOWS\registration
2016-03-30 22:39 - 2016-04-24 00:02 - 00000000 ___HD C:\Program Files\WindowsApps
2016-03-30 22:39 - 2016-04-15 02:00 - 00000000 ____D C:\WINDOWS\rescache
2016-03-30 22:39 - 2016-04-13 12:58 - 00000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2016-03-30 22:39 - 2016-04-13 12:58 - 00000000 ____D C:\WINDOWS\system32\appraiser
2016-03-30 22:39 - 2016-04-13 12:58 - 00000000 ____D C:\WINDOWS\PolicyDefinitions
2016-03-30 22:39 - 2016-04-13 12:58 - 00000000 ____D C:\WINDOWS\bcastdvr
2016-03-30 22:39 - 2016-04-10 21:35 - 00000000 __RSD C:\WINDOWS\Media
2016-03-30 22:39 - 2016-04-04 22:29 - 00000202 _____ C:\WINDOWS\win.ini
2016-03-30 22:39 - 2016-04-02 08:05 - 00000000 ____D C:\WINDOWS\system32\NDF
2016-03-30 22:39 - 2016-03-31 20:57 - 00000000 ___SD C:\WINDOWS\system32\F12
2016-03-30 22:39 - 2016-03-31 20:57 - 00000000 ___RD C:\WINDOWS\PurchaseDialog
2016-03-30 22:39 - 2016-03-31 20:57 - 00000000 ____D C:\WINDOWS\system32\SystemResetPlatform
2016-03-30 22:39 - 2016-03-31 20:57 - 00000000 ____D C:\WINDOWS\system32\oobe
2016-03-30 22:39 - 2016-03-31 20:57 - 00000000 ____D C:\WINDOWS\system32\Dism
2016-03-30 22:39 - 2016-03-31 20:57 - 00000000 ____D C:\WINDOWS\Provisioning
2016-03-30 22:39 - 2016-03-31 20:56 - 00000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2016-03-30 22:39 - 2016-03-31 20:56 - 00000000 ____D C:\Program Files\Windows Portable Devices
2016-03-30 22:39 - 2016-03-31 20:56 - 00000000 ____D C:\Program Files\Windows Multimedia Platform
2016-03-30 22:39 - 2016-03-31 20:56 - 00000000 ____D C:\Program Files\Windows Journal
2016-03-30 22:39 - 2016-03-31 20:42 - 00000000 ____D C:\Program Files\Common Files\Microsoft Shared
2016-03-30 22:39 - 2016-03-31 20:41 - 00000000 ____D C:\Program Files\Common Files\System
2016-03-30 22:39 - 2016-03-31 20:17 - 00000000 ___HD C:\WINDOWS\ELAMBKUP
2016-03-30 22:39 - 2016-03-31 19:53 - 00000000 ____D C:\WINDOWS\ShellNew
2016-03-30 22:39 - 2016-03-31 06:51 - 00000000 ___RD C:\WINDOWS\DevicesFlow
2016-03-30 22:39 - 2016-03-31 06:34 - 00000000 ____D C:\WINDOWS\AppCompat
2016-03-30 22:39 - 2016-03-31 06:33 - 00000000 ___RD C:\WINDOWS\PrintDialog
2016-03-30 22:39 - 2016-03-31 06:33 - 00000000 ___RD C:\WINDOWS\MiracastView
2016-03-30 22:39 - 2016-03-30 22:51 - 00028672 _____ C:\WINDOWS\system32\config\BCD-Template
2016-03-30 22:39 - 2016-03-30 22:45 - 00000000 ____D C:\WINDOWS\system32\MUI
2016-03-30 22:39 - 2016-03-30 22:44 - 00000000 ___SD C:\WINDOWS\system32\dsc
2016-03-30 22:39 - 2016-03-30 22:44 - 00000000 ___SD C:\WINDOWS\system32\DiagSvcs
2016-03-30 22:39 - 2016-03-30 22:44 - 00000000 ____D C:\WINDOWS\system32\setup
2016-03-30 22:39 - 2016-03-30 22:44 - 00000000 ____D C:\WINDOWS\system32\migwiz
2016-03-30 22:39 - 2016-03-30 22:44 - 00000000 ____D C:\WINDOWS\system32\Com
2016-03-30 22:39 - 2016-03-30 22:44 - 00000000 ____D C:\WINDOWS\IME
2016-03-30 22:39 - 2016-03-30 22:44 - 00000000 ____D C:\WINDOWS\Help
2016-03-30 22:39 - 2016-03-30 22:44 - 00000000 ____D C:\Program Files\Windows Photo Viewer
2016-03-30 22:39 - 2016-03-30 22:44 - 00000000 ____D C:\Program Files\Windows Defender
2016-03-30 22:39 - 2016-03-30 22:39 - 00000000 __SHD C:\WINDOWS\BitLockerDiscoveryVolumeContents
2016-03-30 22:39 - 2016-03-30 22:39 - 00000000 __SHD C:\Program Files\Windows Sidebar
2016-03-30 22:39 - 2016-03-30 22:39 - 00000000 ___SD C:\WINDOWS\system32\Nui
2016-03-30 22:39 - 2016-03-30 22:39 - 00000000 ___SD C:\WINDOWS\system32\Configuration
2016-03-30 22:39 - 2016-03-30 22:39 - 00000000 ___SD C:\WINDOWS\Downloaded Program Files
2016-03-30 22:39 - 2016-03-30 22:39 - 00000000 ___RD C:\WINDOWS\Offline Web Pages
2016-03-30 22:39 - 2016-03-30 22:39 - 00000000 ___RD C:\WINDOWS\DesktopTileResources
2016-03-30 22:39 - 2016-03-30 22:39 - 00000000 ____D C:\WINDOWS\Web
2016-03-30 22:39 - 2016-03-30 22:39 - 00000000 ____D C:\WINDOWS\Vss
2016-03-30 22:39 - 2016-03-30 22:39 - 00000000 ____D C:\WINDOWS\tracing
2016-03-30 22:39 - 2016-03-30 22:39 - 00000000 ____D C:\WINDOWS\TAPI
2016-03-30 22:39 - 2016-03-30 22:39 - 00000000 ____D C:\WINDOWS\SystemResources
2016-03-30 22:39 - 2016-03-30 22:39 - 00000000 ____D C:\WINDOWS\SystemApps
2016-03-30 22:39 - 2016-03-30 22:39 - 00000000 ____D C:\WINDOWS\system32\WinMetadata
2016-03-30 22:39 - 2016-03-30 22:39 - 00000000 ____D C:\WINDOWS\system32\winevt
2016-03-30 22:39 - 2016-03-30 22:39 - 00000000 ____D C:\WINDOWS\system32\SecureBootUpdates
2016-03-30 22:39 - 2016-03-30 22:39 - 00000000 ____D C:\WINDOWS\system32\ras
2016-03-30 22:39 - 2016-03-30 22:39 - 00000000 ____D C:\WINDOWS\system32\ProximityToast
2016-03-30 22:39 - 2016-03-30 22:39 - 00000000 ____D C:\WINDOWS\system32\PointOfService
2016-03-30 22:39 - 2016-03-30 22:39 - 00000000 ____D C:\WINDOWS\system32\MsDtc
2016-03-30 22:39 - 2016-03-30 22:39 - 00000000 ____D C:\WINDOWS\system32\MailContactsCalendarSync
2016-03-30 22:39 - 2016-03-30 22:39 - 00000000 ____D C:\WINDOWS\system32\Macromed
2016-03-30 22:39 - 2016-03-30 22:39 - 00000000 ____D C:\WINDOWS\system32\Ipmi
2016-03-30 22:39 - 2016-03-30 22:39 - 00000000 ____D C:\WINDOWS\system32\InputMethod
2016-03-30 22:39 - 2016-03-30 22:39 - 00000000 ____D C:\WINDOWS\system32\inetsrv
2016-03-30 22:39 - 2016-03-30 22:39 - 00000000 ____D C:\WINDOWS\system32\IME
2016-03-30 22:39 - 2016-03-30 22:39 - 00000000 ____D C:\WINDOWS\system32\icsxml
2016-03-30 22:39 - 2016-03-30 22:39 - 00000000 ____D C:\WINDOWS\system32\ias
2016-03-30 22:39 - 2016-03-30 22:39 - 00000000 ____D C:\WINDOWS\system32\GroupPolicyUsers
2016-03-30 22:39 - 2016-03-30 22:39 - 00000000 ____D C:\WINDOWS\system32\GroupPolicy
2016-03-30 22:39 - 2016-03-30 22:39 - 00000000 ____D C:\WINDOWS\system32\downlevel
2016-03-30 22:39 - 2016-03-30 22:39 - 00000000 ____D C:\WINDOWS\system32\config\Journal
2016-03-30 22:39 - 2016-03-30 22:39 - 00000000 ____D C:\WINDOWS\system32\Bthprops
2016-03-30 22:39 - 2016-03-30 22:39 - 00000000 ____D C:\WINDOWS\system32\AppLocker
2016-03-30 22:39 - 2016-03-30 22:39 - 00000000 ____D C:\WINDOWS\system32\AdvancedInstallers
2016-03-30 22:39 - 2016-03-30 22:39 - 00000000 ____D C:\WINDOWS\System
2016-03-30 22:39 - 2016-03-30 22:39 - 00000000 ____D C:\WINDOWS\SKB
2016-03-30 22:39 - 2016-03-30 22:39 - 00000000 ____D C:\WINDOWS\schemas
2016-03-30 22:39 - 2016-03-30 22:39 - 00000000 ____D C:\WINDOWS\SchCache
2016-03-30 22:39 - 2016-03-30 22:39 - 00000000 ____D C:\WINDOWS\security
2016-03-30 22:39 - 2016-03-30 22:39 - 00000000 ____D C:\WINDOWS\Resources
2016-03-30 22:39 - 2016-03-30 22:39 - 00000000 ____D C:\WINDOWS\PLA
2016-03-30 22:39 - 2016-03-30 22:39 - 00000000 ____D C:\WINDOWS\Performance
2016-03-30 22:39 - 2016-03-30 22:39 - 00000000 ____D C:\WINDOWS\ModemLogs
2016-03-30 22:39 - 2016-03-30 22:39 - 00000000 ____D C:\WINDOWS\LiveKernelReports
2016-03-30 22:39 - 2016-03-30 22:39 - 00000000 ____D C:\WINDOWS\L2Schemas
2016-03-30 22:39 - 2016-03-30 22:39 - 00000000 ____D C:\WINDOWS\InputMethod
2016-03-30 22:39 - 2016-03-30 22:39 - 00000000 ____D C:\WINDOWS\Globalization
2016-03-30 22:39 - 2016-03-30 22:39 - 00000000 ____D C:\WINDOWS\Cursors
2016-03-30 22:39 - 2016-03-30 22:39 - 00000000 ____D C:\WINDOWS\Branding
2016-03-30 22:39 - 2016-03-30 22:39 - 00000000 ____D C:\WINDOWS\addins
2016-03-30 22:39 - 2016-03-30 22:39 - 00000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2016-03-30 22:39 - 2016-03-30 22:39 - 00000000 ____D C:\Program Files\Common Files\Services
2016-03-30 22:39 - 2016-03-30 22:36 - 00215943 _____ C:\WINDOWS\system32\dssec.dat
2016-03-30 22:39 - 2016-03-30 22:36 - 00209408 _____ (Microsoft Corporation) C:\WINDOWS\system32\msclmd.dll
2016-03-30 22:39 - 2016-03-30 22:36 - 00017463 _____ C:\WINDOWS\system32\Drivers\etc\services
2016-03-30 22:39 - 2016-03-30 22:36 - 00015462 _____ C:\WINDOWS\system32\OEMDefaultAssociations.xml
2016-03-30 22:39 - 2016-03-30 22:36 - 00008798 _____ C:\WINDOWS\system32\icrav03.rat
2016-03-30 22:39 - 2016-03-30 22:36 - 00003683 _____ C:\WINDOWS\system32\Drivers\etc\lmhosts.sam
2016-03-30 22:39 - 2016-03-30 22:36 - 00002577 _____ C:\WINDOWS\system32\config.nt
2016-03-30 22:39 - 2016-03-30 22:36 - 00001988 _____ C:\WINDOWS\system32\ticrf.rat
2016-03-30 22:39 - 2016-03-30 22:36 - 00001688 _____ C:\WINDOWS\system32\autoexec.nt
2016-03-30 22:39 - 2016-03-30 22:36 - 00001358 _____ C:\WINDOWS\system32\Drivers\etc\protocol
2016-03-30 22:39 - 2016-03-30 22:36 - 00000858 _____ C:\WINDOWS\system32\DefaultQuestions.json
2016-03-30 22:39 - 2016-03-30 22:36 - 00000741 _____ C:\WINDOWS\system32\NOISE.DAT
2016-03-30 22:39 - 2016-03-30 22:36 - 00000407 _____ C:\WINDOWS\system32\Drivers\etc\networks
2016-03-30 22:39 - 2016-03-30 22:36 - 00000389 _____ C:\WINDOWS\system32\AutoWorkplace.exe.config
2016-03-30 22:39 - 2016-03-30 22:36 - 00000219 _____ C:\WINDOWS\system.ini
2016-03-30 22:39 - 2016-03-30 22:02 - 00000000 ____D C:\WINDOWS\system32\WinBioDatabase
2016-03-30 22:39 - 2016-03-30 22:02 - 00000000 ____D C:\WINDOWS\system32\spool
2016-03-30 22:39 - 2016-03-30 22:02 - 00000000 ____D C:\WINDOWS\system32\FxsTmp
2016-03-30 22:39 - 2016-03-30 22:02 - 00000000 ____D C:\Program Files\Windows NT
2016-03-30 22:39 - 2016-03-30 22:00 - 00000000 ____D C:\WINDOWS\CSC
2016-03-30 22:39 - 2016-03-30 21:58 - 00000000 ____D C:\WINDOWS\system32\Sysprep
2016-03-30 22:39 - 2016-03-30 21:55 - 00000000 ____D C:\ProgramData\USOPrivate
2016-03-30 22:37 - 2016-04-24 14:02 - 00000000 ____D C:\WINDOWS\INF
2016-03-30 22:29 - 2016-04-13 12:49 - 00000000 ____D C:\WINDOWS\CbsTemp
2016-03-30 22:23 - 2015-10-30 07:18 - 00000164 _____ C:\WINDOWS\system32\config\FP
2016-03-30 22:22 - 2016-04-25 00:18 - 00524288 ___SH C:\WINDOWS\system32\config\BBI
2016-03-30 22:22 - 2016-03-30 22:44 - 00000000 ____D C:\WINDOWS\servicing
2016-03-30 22:22 - 2016-03-30 22:39 - 00000000 ____D C:\WINDOWS\system32\SMI
2016-03-30 22:22 - 2016-03-30 21:55 - 00032768 ___SH C:\WINDOWS\system32\config\ELAM
2016-03-30 22:05 - 2016-04-24 14:02 - 01771468 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2016-03-30 22:02 - 2016-03-30 22:02 - 00000000 _SHDL C:\Users\Default\Šablony
2016-03-30 22:02 - 2016-03-30 22:02 - 00000000 _SHDL C:\Users\Default\Soubory cookie
2016-03-30 22:02 - 2016-03-30 22:02 - 00000000 _SHDL C:\Users\Default\Poslední
2016-03-30 22:02 - 2016-03-30 22:02 - 00000000 _SHDL C:\Users\Default\Okolní tiskárny
2016-03-30 22:02 - 2016-03-30 22:02 - 00000000 _SHDL C:\Users\Default\Okolní síť
2016-03-30 22:02 - 2016-03-30 22:02 - 00000000 _SHDL C:\Users\Default\Nabídka Start
2016-03-30 22:02 - 2016-03-30 22:02 - 00000000 _SHDL C:\Users\Default\Dokumenty
2016-03-30 22:02 - 2016-03-30 22:02 - 00000000 _SHDL C:\Users\Default\Data aplikací
2016-03-30 22:02 - 2016-03-30 22:02 - 00000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2016-03-30 22:02 - 2016-03-30 22:02 - 00000000 _SHDL C:\Users\Default\AppData\Local\Data aplikací
2016-03-30 22:02 - 2016-03-30 22:02 - 00000000 _SHDL C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2016-03-30 22:02 - 2016-03-30 22:02 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Data aplikací
2016-03-30 22:02 - 2016-03-30 22:02 - 00000000 _SHDL C:\Users\Default User
2016-03-30 22:02 - 2016-03-30 22:02 - 00000000 _SHDL C:\Users\All Users
2016-03-30 22:02 - 2016-03-30 22:02 - 00000000 _SHDL C:\ProgramData\Šablony
2016-03-30 22:02 - 2016-03-30 22:02 - 00000000 _SHDL C:\ProgramData\Plocha
2016-03-30 22:02 - 2016-03-30 22:02 - 00000000 _SHDL C:\ProgramData\Oblíbené položky
2016-03-30 22:02 - 2016-03-30 22:02 - 00000000 _SHDL C:\ProgramData\Nabídka Start
2016-03-30 22:02 - 2016-03-30 22:02 - 00000000 _SHDL C:\ProgramData\Microsoft\Windows\Start Menu\Programy
2016-03-30 22:02 - 2016-03-30 22:02 - 00000000 _SHDL C:\ProgramData\Dokumenty
2016-03-30 22:02 - 2016-03-30 22:02 - 00000000 _SHDL C:\ProgramData\Data aplikací
2016-03-30 22:01 - 2016-04-24 21:29 - 00000000 ____D C:\Users\Ladicek
2016-03-30 22:01 - 2016-04-24 00:26 - 00000000 ____D C:\Users\DefaultAppPool
2016-03-30 22:01 - 2016-03-30 22:01 - 00000000 _SHDL C:\Users\Ladicek\Šablony
2016-03-30 22:01 - 2016-03-30 22:01 - 00000000 _SHDL C:\Users\Ladicek\Soubory cookie
2016-03-30 22:01 - 2016-03-30 22:01 - 00000000 _SHDL C:\Users\Ladicek\Poslední
2016-03-30 22:01 - 2016-03-30 22:01 - 00000000 _SHDL C:\Users\Ladicek\Okolní tiskárny
2016-03-30 22:01 - 2016-03-30 22:01 - 00000000 _SHDL C:\Users\Ladicek\Okolní síť
2016-03-30 22:01 - 2016-03-30 22:01 - 00000000 _SHDL C:\Users\Ladicek\Nabídka Start
2016-03-30 22:01 - 2016-03-30 22:01 - 00000000 _SHDL C:\Users\Ladicek\Dokumenty
2016-03-30 22:01 - 2016-03-30 22:01 - 00000000 _SHDL C:\Users\Ladicek\Data aplikací
2016-03-30 22:01 - 2016-03-30 22:01 - 00000000 _SHDL C:\Users\Ladicek\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2016-03-30 22:01 - 2016-03-30 22:01 - 00000000 _SHDL C:\Users\Ladicek\AppData\Local\Data aplikací
2016-03-30 22:01 - 2016-03-30 22:01 - 00000000 _SHDL C:\Users\DefaultAppPool\Šablony
2016-03-30 22:01 - 2016-03-30 22:01 - 00000000 _SHDL C:\Users\DefaultAppPool\Soubory cookie
2016-03-30 22:01 - 2016-03-30 22:01 - 00000000 _SHDL C:\Users\DefaultAppPool\Poslední
2016-03-30 22:01 - 2016-03-30 22:01 - 00000000 _SHDL C:\Users\DefaultAppPool\Okolní tiskárny
2016-03-30 22:01 - 2016-03-30 22:01 - 00000000 _SHDL C:\Users\DefaultAppPool\Okolní síť
2016-03-30 22:01 - 2016-03-30 22:01 - 00000000 _SHDL C:\Users\DefaultAppPool\Nabídka Start
2016-03-30 22:01 - 2016-03-30 22:01 - 00000000 _SHDL C:\Users\DefaultAppPool\Dokumenty
2016-03-30 22:01 - 2016-03-30 22:01 - 00000000 _SHDL C:\Users\DefaultAppPool\Data aplikací
2016-03-30 22:01 - 2016-03-30 22:01 - 00000000 _SHDL C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2016-03-30 22:01 - 2016-03-30 22:01 - 00000000 _SHDL C:\Users\DefaultAppPool\AppData\Local\Data aplikací
2016-03-30 21:55 - 2016-03-30 21:55 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_Kernel_Apfiltr_01007.Wdf
2016-03-30 21:55 - 2016-03-30 21:55 - 00000000 ____D C:\ProgramData\USOShared
2016-03-30 21:55 - 2016-03-30 21:55 - 00000000 ____D C:\Program Files\CONEXANT
2016-03-30 21:53 - 2016-04-25 00:18 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2016-03-30 21:52 - 2016-04-13 13:00 - 00353624 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2016-03-30 20:45 - 2016-03-31 19:18 - 00000000 ___HD C:\$SysReset
==================== One Month Modified files and folders ========
Re: Prosím o kontrolu
(If an entry is included in the fixlist, the file/folder will be moved.)
2016-04-24 00:26 - 2015-11-13 01:01 - 00000000 __RHD C:\Users\Public\AccountPictures
2016-04-24 00:18 - 2015-10-21 00:18 - 00000000 __RHD C:\MSOCache
2016-04-01 20:04 - 2015-10-25 20:03 - 00000708 _____ C:\Users\Ladicek\Desktop\HDsum.lnk
2016-03-31 21:10 - 2015-12-06 11:56 - 00000000 ___RD C:\Users\Ladicek\OneDrive
2016-03-31 20:54 - 2016-03-08 20:13 - 12586496 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmp.dll
2016-03-31 20:53 - 2015-10-07 06:16 - 00111040 _____ (ESET) C:\WINDOWS\system32\Drivers\ekbdflt.sys
2016-03-31 20:53 - 2015-09-23 09:30 - 00206312 _____ (ESET) C:\WINDOWS\system32\Drivers\eamonm.sys
2016-03-31 20:53 - 2015-09-23 09:30 - 00152728 _____ (ESET) C:\WINDOWS\system32\Drivers\epfw.sys
2016-03-31 20:53 - 2015-09-23 09:30 - 00146024 _____ (ESET) C:\WINDOWS\system32\Drivers\ehdrv.sys
2016-03-31 20:53 - 2015-09-23 09:30 - 00071488 _____ (ESET) C:\WINDOWS\system32\Drivers\epfwwfp.sys
2016-03-31 20:53 - 2015-09-23 09:30 - 00044608 _____ (ESET) C:\WINDOWS\system32\Drivers\epfwlwf.sys
2016-03-30 22:36 - 2015-10-30 07:45 - 00102912 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpshell.dll
2016-03-30 22:35 - 2015-10-30 07:45 - 00253080 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpeffects.dll
2016-03-30 22:35 - 2015-10-30 07:45 - 00194560 _____ (Microsoft Corporation) C:\WINDOWS\system32\unregmp2.exe
2016-03-30 22:35 - 2015-10-30 07:45 - 00153920 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpps.dll
2016-03-30 22:34 - 2015-10-30 07:45 - 09375232 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmploc.DLL
2016-03-30 22:34 - 2015-10-30 07:45 - 01334680 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpmde.dll
2016-03-30 22:34 - 2015-10-30 07:45 - 00009216 _____ (Microsoft Corporation) C:\WINDOWS\system32\spwmp.dll
2016-03-30 22:34 - 2015-10-30 07:45 - 00005120 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdxm.ocx
2016-03-30 22:34 - 2015-10-30 07:45 - 00005120 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxmasf.dll
2016-03-30 22:33 - 2015-10-30 07:45 - 00174592 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpdxm.dll
2016-03-30 22:33 - 2015-10-30 07:45 - 00044544 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdxm.tlb
2016-03-30 22:33 - 2015-10-30 07:45 - 00019456 _____ (Microsoft Corporation) C:\WINDOWS\system32\amcompat.tlb
2016-03-30 22:01 - 2009-07-14 11:20 - 00000000 ___RD C:\Users\Public\Recorded TV
==================== Files in the root of some directories =======
2016-04-04 22:22 - 2016-04-04 22:29 - 0001179 _____ () C:\ProgramData\hpzinstall.log
==================== Bamital & volsnap =================
(There is no automatic fix for files that do not pass verification.)
C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\wininit.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2016-04-16 21:59
==================== End of FRST.txt ===
2016-04-24 00:26 - 2015-11-13 01:01 - 00000000 __RHD C:\Users\Public\AccountPictures
2016-04-24 00:18 - 2015-10-21 00:18 - 00000000 __RHD C:\MSOCache
2016-04-01 20:04 - 2015-10-25 20:03 - 00000708 _____ C:\Users\Ladicek\Desktop\HDsum.lnk
2016-03-31 21:10 - 2015-12-06 11:56 - 00000000 ___RD C:\Users\Ladicek\OneDrive
2016-03-31 20:54 - 2016-03-08 20:13 - 12586496 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmp.dll
2016-03-31 20:53 - 2015-10-07 06:16 - 00111040 _____ (ESET) C:\WINDOWS\system32\Drivers\ekbdflt.sys
2016-03-31 20:53 - 2015-09-23 09:30 - 00206312 _____ (ESET) C:\WINDOWS\system32\Drivers\eamonm.sys
2016-03-31 20:53 - 2015-09-23 09:30 - 00152728 _____ (ESET) C:\WINDOWS\system32\Drivers\epfw.sys
2016-03-31 20:53 - 2015-09-23 09:30 - 00146024 _____ (ESET) C:\WINDOWS\system32\Drivers\ehdrv.sys
2016-03-31 20:53 - 2015-09-23 09:30 - 00071488 _____ (ESET) C:\WINDOWS\system32\Drivers\epfwwfp.sys
2016-03-31 20:53 - 2015-09-23 09:30 - 00044608 _____ (ESET) C:\WINDOWS\system32\Drivers\epfwlwf.sys
2016-03-30 22:36 - 2015-10-30 07:45 - 00102912 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpshell.dll
2016-03-30 22:35 - 2015-10-30 07:45 - 00253080 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpeffects.dll
2016-03-30 22:35 - 2015-10-30 07:45 - 00194560 _____ (Microsoft Corporation) C:\WINDOWS\system32\unregmp2.exe
2016-03-30 22:35 - 2015-10-30 07:45 - 00153920 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpps.dll
2016-03-30 22:34 - 2015-10-30 07:45 - 09375232 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmploc.DLL
2016-03-30 22:34 - 2015-10-30 07:45 - 01334680 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpmde.dll
2016-03-30 22:34 - 2015-10-30 07:45 - 00009216 _____ (Microsoft Corporation) C:\WINDOWS\system32\spwmp.dll
2016-03-30 22:34 - 2015-10-30 07:45 - 00005120 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdxm.ocx
2016-03-30 22:34 - 2015-10-30 07:45 - 00005120 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxmasf.dll
2016-03-30 22:33 - 2015-10-30 07:45 - 00174592 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpdxm.dll
2016-03-30 22:33 - 2015-10-30 07:45 - 00044544 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdxm.tlb
2016-03-30 22:33 - 2015-10-30 07:45 - 00019456 _____ (Microsoft Corporation) C:\WINDOWS\system32\amcompat.tlb
2016-03-30 22:01 - 2009-07-14 11:20 - 00000000 ___RD C:\Users\Public\Recorded TV
==================== Files in the root of some directories =======
2016-04-04 22:22 - 2016-04-04 22:29 - 0001179 _____ () C:\ProgramData\hpzinstall.log
==================== Bamital & volsnap =================
(There is no automatic fix for files that do not pass verification.)
C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\wininit.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2016-04-16 21:59
==================== End of FRST.txt ===
Re: Prosím o kontrolu
aswMBR version 1.0.1.2290 Copyright(c) 2014 AVAST Software
Run date: 2016-04-25 21:01:09
-----------------------------
21:01:09.039 OS Version: Windows 6.2.9200
21:01:09.039 Number of processors: 2 586 0xF0D
21:01:09.039 ComputerName: LADICEK-PC UserName: Ladicek
21:01:42.506 Initialize success
21:01:42.606 VM: initialized successfully
21:01:42.606 VM: Intel CPU virtualization not supported
21:01:51.700 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IAAStorageDevice-1
21:01:51.716 Disk 0 Vendor: Hitachi_ FB4O Size: 305245MB BusType: 3
21:01:51.823 Disk 0 MBR read successfully
21:01:51.823 Disk 0 MBR scan
21:01:51.838 Disk 0 Windows 7 default MBR code
21:01:51.838 Disk 0 Partition 1 80 (A) 07 HPFS/NTFS NTFS 100 MB offset 2048
21:01:51.859 Disk 0 Partition 2 00 07 HPFS/NTFS NTFS 89550 MB offset 206848
21:01:51.876 Disk 0 Partition 3 00 27 Hidden NTFS WinRE NTFS 450 MB offset 183605248
21:01:51.876 Disk 0 Partition 4 00 07 HPFS/NTFS NTFS 215143 MB offset 184526848
21:01:51.891 Disk 0 scanning sectors +625139712
21:01:52.060 Disk 0 scanning C:\WINDOWS\system32\drivers
21:02:01.373 Service scanning
21:02:06.713 Service edevmon C:\WINDOWS\system32\DRIVERS\edevmon.sys **LOCKED** 5
21:02:06.829 Service eelam C:\WINDOWS\system32\DRIVERS\eelam.sys **LOCKED** 5
21:02:06.898 Service ehdrv C:\WINDOWS\system32\DRIVERS\ehdrv.sys **LOCKED** 5
21:02:07.070 Service ekbdflt C:\WINDOWS\system32\DRIVERS\ekbdflt.sys **LOCKED** 5
21:02:07.373 Service epfw C:\WINDOWS\system32\DRIVERS\epfw.sys **LOCKED** 5
21:02:07.457 Service EpfwLWF C:\WINDOWS\system32\DRIVERS\EpfwLWF.sys **LOCKED** 5
21:02:07.489 Service epfwwfp C:\WINDOWS\system32\DRIVERS\epfwwfp.sys **LOCKED** 5
21:02:30.907 Modules scanning
21:02:30.923 Disk 0 trace - called modules:
21:02:30.976 ntoskrnl.exe CLASSPNP.SYS disk.sys ACPI.sys halmacpi.dll iaStor.sys
21:02:30.976 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0x8746d030]
21:02:30.991 3 CLASSPNP.SYS[867a4f25] -> nt!IofCallDriver -> [0x897f34c0]
21:02:30.991 5 ACPI.sys[86201412] -> nt!IofCallDriver -> \Device\Ide\IAAStorageDevice-1[0x80316028]
21:02:31.007 Disk 0 statistics 102344/0/0 @ 5,91 MB/s
21:02:31.007 Scan finished successfully
21:02:48.843 Disk 0 MBR has been saved successfully to "C:\Users\Ladicek\Desktop\MBR.dat"
21:02:48.846 The log file has been saved successfully to "C:\Users\Ladicek\Desktop\aswMBR.txt"
Run date: 2016-04-25 21:01:09
-----------------------------
21:01:09.039 OS Version: Windows 6.2.9200
21:01:09.039 Number of processors: 2 586 0xF0D
21:01:09.039 ComputerName: LADICEK-PC UserName: Ladicek
21:01:42.506 Initialize success
21:01:42.606 VM: initialized successfully
21:01:42.606 VM: Intel CPU virtualization not supported
21:01:51.700 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IAAStorageDevice-1
21:01:51.716 Disk 0 Vendor: Hitachi_ FB4O Size: 305245MB BusType: 3
21:01:51.823 Disk 0 MBR read successfully
21:01:51.823 Disk 0 MBR scan
21:01:51.838 Disk 0 Windows 7 default MBR code
21:01:51.838 Disk 0 Partition 1 80 (A) 07 HPFS/NTFS NTFS 100 MB offset 2048
21:01:51.859 Disk 0 Partition 2 00 07 HPFS/NTFS NTFS 89550 MB offset 206848
21:01:51.876 Disk 0 Partition 3 00 27 Hidden NTFS WinRE NTFS 450 MB offset 183605248
21:01:51.876 Disk 0 Partition 4 00 07 HPFS/NTFS NTFS 215143 MB offset 184526848
21:01:51.891 Disk 0 scanning sectors +625139712
21:01:52.060 Disk 0 scanning C:\WINDOWS\system32\drivers
21:02:01.373 Service scanning
21:02:06.713 Service edevmon C:\WINDOWS\system32\DRIVERS\edevmon.sys **LOCKED** 5
21:02:06.829 Service eelam C:\WINDOWS\system32\DRIVERS\eelam.sys **LOCKED** 5
21:02:06.898 Service ehdrv C:\WINDOWS\system32\DRIVERS\ehdrv.sys **LOCKED** 5
21:02:07.070 Service ekbdflt C:\WINDOWS\system32\DRIVERS\ekbdflt.sys **LOCKED** 5
21:02:07.373 Service epfw C:\WINDOWS\system32\DRIVERS\epfw.sys **LOCKED** 5
21:02:07.457 Service EpfwLWF C:\WINDOWS\system32\DRIVERS\EpfwLWF.sys **LOCKED** 5
21:02:07.489 Service epfwwfp C:\WINDOWS\system32\DRIVERS\epfwwfp.sys **LOCKED** 5
21:02:30.907 Modules scanning
21:02:30.923 Disk 0 trace - called modules:
21:02:30.976 ntoskrnl.exe CLASSPNP.SYS disk.sys ACPI.sys halmacpi.dll iaStor.sys
21:02:30.976 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0x8746d030]
21:02:30.991 3 CLASSPNP.SYS[867a4f25] -> nt!IofCallDriver -> [0x897f34c0]
21:02:30.991 5 ACPI.sys[86201412] -> nt!IofCallDriver -> \Device\Ide\IAAStorageDevice-1[0x80316028]
21:02:31.007 Disk 0 statistics 102344/0/0 @ 5,91 MB/s
21:02:31.007 Scan finished successfully
21:02:48.843 Disk 0 MBR has been saved successfully to "C:\Users\Ladicek\Desktop\MBR.dat"
21:02:48.846 The log file has been saved successfully to "C:\Users\Ladicek\Desktop\aswMBR.txt"
- jaro3
- člen Security týmu
-
Guru Level 15
- Příspěvky: 43294
- Registrován: červen 07
- Bydliště: Jižní Čechy
- Pohlaví:
- Stav:
Offline
Re: Prosím o kontrolu
Prosím, postupuj následujícím způsobem:
Otevřít poznámkový blok (Start => Všechny programy => Příslušenství => Poznámkový blok).
Prosím, zkopíruj do něj celý obsah níže.
(Můžeš použít funkci „vybrat vše“, klepni pravým tlačítkem myši na levé horní políčko v otevřeném poznámkovém bloku a zvol „ Vložit“).
Ulož jej na na plochu jako fixlist.txt
Spusťt FRST a stiskni tlačítko „Fix“ (Opravit) jen jednou a čekej.
Nástroj vypracuje log na ploše (Fixlog.txt), prosím zkopíruj sem celý jeho obsah.
Stáhni si Memtest:
Políčko , ve kterém je napsáno:
All unused RAM -ponech , jak je.
-dej Start , nech nejméně 2h běžet , pokud bude po 2h stále 0 errors , jsou v pořádku.
Ještě zkontrolovat HDD na chyby ,popř. zkusit jeho defragmentaci ..
Stáhni si CrystalDiskInfo
Spusť program a klikni na Úpravy-Kopírovat. Poté sem vlož pomocí Ctrl+V obsah logu.
Stáhni si prosím ExeFix.scr by Farbar
a ulož jej na flash disk nebo v kořenovém adresáři systémového disku (obvykle C: \)
Důležité: Spusť počítač do svého účtu, který má potíže se systémem souborů EXE..Spusť nástroj.Upozorní Tě , že nástroj během zlomku sekundy restartuje počítač, učiň tak.Prosím, napiš mi, jestli jsi nyní schopen spouštět programy.
Poznámka:.... Pokud nástroj nebyl spuštěn, můžeš změnit příponu na com nebo bat nebo cmd nebo pif
Poznámka: Aby oprava provedla musíš být přihlášen do svého uživatelského účtu, který má potíže se systémem souborů EXE.
Stáhni si exeHelper
na svojí plochu. Poklepej na exeHelper. Objeví se černé okno,až bude fix kompletní , budeš vybídnut ke stisknutí nějaké klávesy k zavření . Objeví se exehelperlog.txt (jinak je ve stejném místě jako program exehelper.
Zkopíruj sem prosím celý jeho obsah.
Pozn.: jestliže windows ukáže chybovou zprávu „Error deleting file“ , restartuj program dříve než se vytvoří log a poté pošli oba dva logy spolu , budou oba v jednom souboru.
Otevřít poznámkový blok (Start => Všechny programy => Příslušenství => Poznámkový blok).
Prosím, zkopíruj do něj celý obsah níže.
Kód: Vybrat vše
Start
CloseProcesses:
Task: {46694050-10F3-460D-92B8-ACCA23A81344} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe [2016-04-05] (Google Inc.)
Task: {4B5D395F-4971-46D9-88D1-EDEAADEA1FF8} - System32\Tasks\Adobe Flash Player Updater => C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2016-04-07] (Adobe Systems Incorporated)
Task: {998996FB-1DFB-4615-AFEE-94629739C7C0} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe [2016-04-05] (Google Inc.)
Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
EmptyTemp:
End
(Můžeš použít funkci „vybrat vše“, klepni pravým tlačítkem myši na levé horní políčko v otevřeném poznámkovém bloku a zvol „ Vložit“).
Ulož jej na na plochu jako fixlist.txt
Spusťt FRST a stiskni tlačítko „Fix“ (Opravit) jen jednou a čekej.
Nástroj vypracuje log na ploše (Fixlog.txt), prosím zkopíruj sem celý jeho obsah.
Stáhni si Memtest:
Políčko , ve kterém je napsáno:
All unused RAM -ponech , jak je.
-dej Start , nech nejméně 2h běžet , pokud bude po 2h stále 0 errors , jsou v pořádku.
Ještě zkontrolovat HDD na chyby ,popř. zkusit jeho defragmentaci ..
Stáhni si CrystalDiskInfo
Spusť program a klikni na Úpravy-Kopírovat. Poté sem vlož pomocí Ctrl+V obsah logu.
Stáhni si prosím ExeFix.scr by Farbar
a ulož jej na flash disk nebo v kořenovém adresáři systémového disku (obvykle C: \)
Důležité: Spusť počítač do svého účtu, který má potíže se systémem souborů EXE..Spusť nástroj.Upozorní Tě , že nástroj během zlomku sekundy restartuje počítač, učiň tak.Prosím, napiš mi, jestli jsi nyní schopen spouštět programy.
Poznámka:.... Pokud nástroj nebyl spuštěn, můžeš změnit příponu na com nebo bat nebo cmd nebo pif
Poznámka: Aby oprava provedla musíš být přihlášen do svého uživatelského účtu, který má potíže se systémem souborů EXE.
Stáhni si exeHelper
na svojí plochu. Poklepej na exeHelper. Objeví se černé okno,až bude fix kompletní , budeš vybídnut ke stisknutí nějaké klávesy k zavření . Objeví se exehelperlog.txt (jinak je ve stejném místě jako program exehelper.
Zkopíruj sem prosím celý jeho obsah.
Pozn.: jestliže windows ukáže chybovou zprávu „Error deleting file“ , restartuj program dříve než se vytvoří log a poté pošli oba dva logy spolu , budou oba v jednom souboru.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Re: Prosím o kontrolu
----------------------------------------------------------------------------
CrystalDiskInfo 6.8.0 (C) 2008-2016 hiyohiyo
Crystal Dew World : http://crystalmark.info/
----------------------------------------------------------------------------
OS : Windows 10 Professional [10.0 Build 10586] (x86)
Date : 2016/04/28 23:39:25
-- Controller Map ----------------------------------------------------------
+ Intel(R) ICH9M-E/M SATA AHCI Controller [ATA]
- Hitachi HTS543232L9A300
- Ricoh xD-Picture Card Controller [ATA]
- Ricoh Memory Stick Controller [ATA]
- Ricoh SD/MMC Host Controller [ATA]
- Řadič prostorů úložišť [SCSI]
-- Disk List ---------------------------------------------------------------
(1) Hitachi HTS543232L9A300 : 320,0 GB [0/0/0, pd1]
----------------------------------------------------------------------------
(1) Hitachi HTS543232L9A300
----------------------------------------------------------------------------
Model : Hitachi HTS543232L9A300
Firmware : FB4OC40C
Serial Number : 080727FB0400LEC2J1AB
Disk Size : 320,0 GB (8,4/137,4/320,0/320,0)
Buffer Size : 7114 KB
Queue Depth : 32
# of Sectors : 625142448
Rotation Rate : 5400 RPM
Interface : Serial ATA
Major Version : ATA8-ACS
Minor Version : ATA8-ACS version 3f
Transfer Mode : ---- | SATA/300
Power On Hours : 4166 hod.
Power On Count : 2326 krát
Temperature : 31 C (87 F)
Health Status : Dobrý
Features : S.M.A.R.T., APM, AAM, 48bit LBA, NCQ
APM Level : 4080h [ON]
AAM Level : 80FEh [OFF]
-- S.M.A.R.T. --------------------------------------------------------------
ID Cur Wor Thr RawValues(6) Attribute Name
01 100 100 _62 000000000000 Počet chyb čtení
02 100 100 _40 000000000000 Průchodnost disku
03 253 253 _33 000500000000 Čas na roztočení ploten
04 _99 _99 __0 00000000092B Počet spuštění/zastavení
05 100 100 __5 000000000000 Počet přemapovaných sektorů
07 100 100 _67 000000000000 Počet chybných hledání
08 100 100 _40 000000000000 Čas potřebný na vyhledání
09 _91 _91 __0 000000001046 Hodin v činnosti
0A 100 100 _60 000000000000 Počet opakovaných pokusů o roztočení ploten
0C _99 _99 __0 000000000916 Počet cyklů zapnutí zařízení
BF 100 100 __0 000000000000 Počet udalostí zaznamenaných otřesovým senzorem
C0 100 100 __0 0000000000A6 Počet vypnutí disku
C1 _95 _95 __0 00000000E345 Počet cyklů načítání/vymazání
C2 177 177 __0 0034000F001F Teplota
C4 100 100 __0 000000000000 Počet udalostí s číslem realokování sektorů
C5 100 100 __0 000000000000 Počet podezřelých sektorů
C6 100 100 __0 000000000000 Počet neopravitelných sektorů
C7 200 200 __0 000000000000 Počet chyb v kontrolním součtu UltraDMA
DF 100 100 __0 000000000000 Zatížení budiče magnetických hlav způsobené opakovanými úkony
-- IDENTIFY_DEVICE ---------------------------------------------------------
0 1 2 3 4 5 6 7 8 9
000: 045A 3FFF C837 0010 0000 0000 003F 0000 0000 0000
010: 3038 3037 3237 4642 3034 3030 4C45 4332 4A31 4142
020: 0003 3795 0004 4642 344F 4334 3043 4869 7461 6368
030: 6920 4854 5335 3433 3233 324C 3941 3330 3020 2020
040: 2020 2020 2020 2020 2020 2020 2020 8010 4000 0F00
050: 4000 0200 0200 0007 3FFF 0010 003F FC10 00FB 0110
060: FFFF 0FFF 0000 0007 0003 0078 0078 0078 0078 0000
070: 0000 0000 0000 0000 0000 001F 1706 0000 005E 0044
080: 01FC 0042 746B 7F69 6163 7469 BC49 6163 407F 003F
090: 0040 4080 FFFE 0000 80FE 0000 0000 0000 0000 0000
100: EAB0 2542 0000 0000 0000 0000 0000 8848 5000 CCA5
110: 64C1 24F7 0000 0000 0000 0000 0000 0000 0000 4014
120: 4014 0000 0000 0000 0000 0000 0000 0000 0029 000B
130: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
140: 0000 0000 0000 0000 0000 0000 0000 0000 4001 0000
150: 8000 0000 344F 0000 0000 7391 7391 0000 0000 0000
160: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
170: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
180: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
190: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
200: 0000 0000 0000 0000 0000 0000 003D 0000 0000 0000
210: 0000 0000 0000 0000 0000 0000 0000 1518 0000 0000
220: 0000 0000 101F 0021 0000 0000 0000 0000 0000 0000
230: 0000 0000 0000 0000 0001 0080 0000 0000 0000 0000
240: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
250: 0000 0000 0000 0000 0000 EBA5
-- SMART_READ_DATA ---------------------------------------------------------
+0 +1 +2 +3 +4 +5 +6 +7 +8 +9 +A +B +C +D +E +F
000: 10 00 01 0B 00 64 64 00 00 00 00 00 00 00 02 05
010: 00 64 64 00 00 00 00 00 00 00 03 07 00 FD FD 00
020: 00 00 00 05 00 00 04 12 00 63 63 2B 09 00 00 00
030: 00 00 05 33 00 64 64 00 00 00 00 00 00 00 07 0B
040: 00 64 64 00 00 00 00 00 00 00 08 05 00 64 64 00
050: 00 00 00 00 00 00 09 12 00 5B 5B 46 10 00 00 00
060: 00 00 0A 13 00 64 64 00 00 00 00 00 00 00 0C 32
070: 00 63 63 16 09 00 00 00 00 00 BF 0A 00 64 64 00
080: 00 00 00 00 00 00 C0 32 00 64 64 A6 00 00 00 00
090: 00 00 C1 12 00 5F 5F 45 E3 00 00 00 00 00 C2 02
0A0: 00 B1 B1 1F 00 0F 00 34 00 00 C4 32 00 64 64 00
0B0: 00 00 00 00 00 00 C5 22 00 64 64 00 00 00 00 00
0C0: 00 00 C6 08 00 64 64 00 00 00 00 00 00 00 C7 0A
0D0: 00 C8 C8 00 00 00 00 00 00 00 DF 0A 00 64 64 00
0E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
0F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
100: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
110: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
120: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
130: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
140: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
150: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
160: 00 00 00 00 00 00 00 00 00 00 00 00 85 02 01 5B
170: 03 00 01 00 02 7F 00 00 00 00 00 00 00 00 00 00
180: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
190: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1A0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1B0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1C0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 A7
-- SMART_READ_THRESHOLD ----------------------------------------------------
+0 +1 +2 +3 +4 +5 +6 +7 +8 +9 +A +B +C +D +E +F
000: 10 00 01 3E 00 00 00 00 00 00 00 00 00 00 02 28
010: 00 00 00 00 00 00 00 00 00 00 03 21 00 00 00 00
020: 00 00 00 00 00 00 04 00 00 00 00 00 00 00 00 00
030: 00 00 05 05 00 00 00 00 00 00 00 00 00 00 07 43
040: 00 00 00 00 00 00 00 00 00 00 08 28 00 00 00 00
050: 00 00 00 00 00 00 09 00 00 00 00 00 00 00 00 00
060: 00 00 0A 3C 00 00 00 00 00 00 00 00 00 00 0C 00
070: 00 00 00 00 00 00 00 00 00 00 BF 00 00 00 00 00
080: 00 00 00 00 00 00 C0 00 00 00 00 00 00 00 00 00
090: 00 00 C1 00 00 00 00 00 00 00 00 00 00 00 C2 00
0A0: 00 00 00 00 00 00 00 00 00 00 C4 00 00 00 00 00
0B0: 00 00 00 00 00 00 C5 00 00 00 00 00 00 00 00 00
0C0: 00 00 C6 00 00 00 00 00 00 00 00 00 00 00 C7 00
0D0: 00 00 00 00 00 00 00 00 00 00 DF 00 00 00 00 00
0E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
0F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
100: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
110: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
120: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
130: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
140: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
150: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
160: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
170: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
180: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
190: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1A0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1B0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1C0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 89
CrystalDiskInfo 6.8.0 (C) 2008-2016 hiyohiyo
Crystal Dew World : http://crystalmark.info/
----------------------------------------------------------------------------
OS : Windows 10 Professional [10.0 Build 10586] (x86)
Date : 2016/04/28 23:39:25
-- Controller Map ----------------------------------------------------------
+ Intel(R) ICH9M-E/M SATA AHCI Controller [ATA]
- Hitachi HTS543232L9A300
- Ricoh xD-Picture Card Controller [ATA]
- Ricoh Memory Stick Controller [ATA]
- Ricoh SD/MMC Host Controller [ATA]
- Řadič prostorů úložišť [SCSI]
-- Disk List ---------------------------------------------------------------
(1) Hitachi HTS543232L9A300 : 320,0 GB [0/0/0, pd1]
----------------------------------------------------------------------------
(1) Hitachi HTS543232L9A300
----------------------------------------------------------------------------
Model : Hitachi HTS543232L9A300
Firmware : FB4OC40C
Serial Number : 080727FB0400LEC2J1AB
Disk Size : 320,0 GB (8,4/137,4/320,0/320,0)
Buffer Size : 7114 KB
Queue Depth : 32
# of Sectors : 625142448
Rotation Rate : 5400 RPM
Interface : Serial ATA
Major Version : ATA8-ACS
Minor Version : ATA8-ACS version 3f
Transfer Mode : ---- | SATA/300
Power On Hours : 4166 hod.
Power On Count : 2326 krát
Temperature : 31 C (87 F)
Health Status : Dobrý
Features : S.M.A.R.T., APM, AAM, 48bit LBA, NCQ
APM Level : 4080h [ON]
AAM Level : 80FEh [OFF]
-- S.M.A.R.T. --------------------------------------------------------------
ID Cur Wor Thr RawValues(6) Attribute Name
01 100 100 _62 000000000000 Počet chyb čtení
02 100 100 _40 000000000000 Průchodnost disku
03 253 253 _33 000500000000 Čas na roztočení ploten
04 _99 _99 __0 00000000092B Počet spuštění/zastavení
05 100 100 __5 000000000000 Počet přemapovaných sektorů
07 100 100 _67 000000000000 Počet chybných hledání
08 100 100 _40 000000000000 Čas potřebný na vyhledání
09 _91 _91 __0 000000001046 Hodin v činnosti
0A 100 100 _60 000000000000 Počet opakovaných pokusů o roztočení ploten
0C _99 _99 __0 000000000916 Počet cyklů zapnutí zařízení
BF 100 100 __0 000000000000 Počet udalostí zaznamenaných otřesovým senzorem
C0 100 100 __0 0000000000A6 Počet vypnutí disku
C1 _95 _95 __0 00000000E345 Počet cyklů načítání/vymazání
C2 177 177 __0 0034000F001F Teplota
C4 100 100 __0 000000000000 Počet udalostí s číslem realokování sektorů
C5 100 100 __0 000000000000 Počet podezřelých sektorů
C6 100 100 __0 000000000000 Počet neopravitelných sektorů
C7 200 200 __0 000000000000 Počet chyb v kontrolním součtu UltraDMA
DF 100 100 __0 000000000000 Zatížení budiče magnetických hlav způsobené opakovanými úkony
-- IDENTIFY_DEVICE ---------------------------------------------------------
0 1 2 3 4 5 6 7 8 9
000: 045A 3FFF C837 0010 0000 0000 003F 0000 0000 0000
010: 3038 3037 3237 4642 3034 3030 4C45 4332 4A31 4142
020: 0003 3795 0004 4642 344F 4334 3043 4869 7461 6368
030: 6920 4854 5335 3433 3233 324C 3941 3330 3020 2020
040: 2020 2020 2020 2020 2020 2020 2020 8010 4000 0F00
050: 4000 0200 0200 0007 3FFF 0010 003F FC10 00FB 0110
060: FFFF 0FFF 0000 0007 0003 0078 0078 0078 0078 0000
070: 0000 0000 0000 0000 0000 001F 1706 0000 005E 0044
080: 01FC 0042 746B 7F69 6163 7469 BC49 6163 407F 003F
090: 0040 4080 FFFE 0000 80FE 0000 0000 0000 0000 0000
100: EAB0 2542 0000 0000 0000 0000 0000 8848 5000 CCA5
110: 64C1 24F7 0000 0000 0000 0000 0000 0000 0000 4014
120: 4014 0000 0000 0000 0000 0000 0000 0000 0029 000B
130: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
140: 0000 0000 0000 0000 0000 0000 0000 0000 4001 0000
150: 8000 0000 344F 0000 0000 7391 7391 0000 0000 0000
160: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
170: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
180: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
190: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
200: 0000 0000 0000 0000 0000 0000 003D 0000 0000 0000
210: 0000 0000 0000 0000 0000 0000 0000 1518 0000 0000
220: 0000 0000 101F 0021 0000 0000 0000 0000 0000 0000
230: 0000 0000 0000 0000 0001 0080 0000 0000 0000 0000
240: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
250: 0000 0000 0000 0000 0000 EBA5
-- SMART_READ_DATA ---------------------------------------------------------
+0 +1 +2 +3 +4 +5 +6 +7 +8 +9 +A +B +C +D +E +F
000: 10 00 01 0B 00 64 64 00 00 00 00 00 00 00 02 05
010: 00 64 64 00 00 00 00 00 00 00 03 07 00 FD FD 00
020: 00 00 00 05 00 00 04 12 00 63 63 2B 09 00 00 00
030: 00 00 05 33 00 64 64 00 00 00 00 00 00 00 07 0B
040: 00 64 64 00 00 00 00 00 00 00 08 05 00 64 64 00
050: 00 00 00 00 00 00 09 12 00 5B 5B 46 10 00 00 00
060: 00 00 0A 13 00 64 64 00 00 00 00 00 00 00 0C 32
070: 00 63 63 16 09 00 00 00 00 00 BF 0A 00 64 64 00
080: 00 00 00 00 00 00 C0 32 00 64 64 A6 00 00 00 00
090: 00 00 C1 12 00 5F 5F 45 E3 00 00 00 00 00 C2 02
0A0: 00 B1 B1 1F 00 0F 00 34 00 00 C4 32 00 64 64 00
0B0: 00 00 00 00 00 00 C5 22 00 64 64 00 00 00 00 00
0C0: 00 00 C6 08 00 64 64 00 00 00 00 00 00 00 C7 0A
0D0: 00 C8 C8 00 00 00 00 00 00 00 DF 0A 00 64 64 00
0E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
0F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
100: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
110: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
120: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
130: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
140: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
150: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
160: 00 00 00 00 00 00 00 00 00 00 00 00 85 02 01 5B
170: 03 00 01 00 02 7F 00 00 00 00 00 00 00 00 00 00
180: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
190: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1A0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1B0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1C0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 A7
-- SMART_READ_THRESHOLD ----------------------------------------------------
+0 +1 +2 +3 +4 +5 +6 +7 +8 +9 +A +B +C +D +E +F
000: 10 00 01 3E 00 00 00 00 00 00 00 00 00 00 02 28
010: 00 00 00 00 00 00 00 00 00 00 03 21 00 00 00 00
020: 00 00 00 00 00 00 04 00 00 00 00 00 00 00 00 00
030: 00 00 05 05 00 00 00 00 00 00 00 00 00 00 07 43
040: 00 00 00 00 00 00 00 00 00 00 08 28 00 00 00 00
050: 00 00 00 00 00 00 09 00 00 00 00 00 00 00 00 00
060: 00 00 0A 3C 00 00 00 00 00 00 00 00 00 00 0C 00
070: 00 00 00 00 00 00 00 00 00 00 BF 00 00 00 00 00
080: 00 00 00 00 00 00 C0 00 00 00 00 00 00 00 00 00
090: 00 00 C1 00 00 00 00 00 00 00 00 00 00 00 C2 00
0A0: 00 00 00 00 00 00 00 00 00 00 C4 00 00 00 00 00
0B0: 00 00 00 00 00 00 C5 00 00 00 00 00 00 00 00 00
0C0: 00 00 C6 00 00 00 00 00 00 00 00 00 00 00 C7 00
0D0: 00 00 00 00 00 00 00 00 00 00 DF 00 00 00 00 00
0E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
0F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
100: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
110: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
120: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
130: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
140: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
150: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
160: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
170: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
180: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
190: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1A0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1B0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1C0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 89
- jaro3
- člen Security týmu
-
Guru Level 15
- Příspěvky: 43294
- Registrován: červen 07
- Bydliště: Jižní Čechy
- Pohlaví:
- Stav:
Offline
Re: Prosím o kontrolu
Disk OK.
Udělej ten script v FRST. ExeHelper , ExeFix
Co Memtest?
Udělej ten script v FRST. ExeHelper , ExeFix
Co Memtest?
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Re: Prosím o kontrolu
memtest dobrý jen exehelper nejde stáhnout a exefix neudělal nic
- jaro3
- člen Security týmu
-
Guru Level 15
- Příspěvky: 43294
- Registrován: červen 07
- Bydliště: Jižní Čechy
- Pohlaví:
- Stav:
Offline
Re: Prosím o kontrolu
Udělej ten script v FRST
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Kdo je online
Uživatelé prohlížející si toto fórum: DotNetDotCom.org [Bot] a 67 hostů