Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:15-09-2015
Ran by Bohumil (administrator) on LENOVO (17-09-2015 16:05:15)
Running from C:\Users\Bohumil\Desktop
Loaded Profiles: Bohumil (Available Profiles: Bohumil)
Platform: Windows 10 Home (X64) Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool:
http://www.geekstogo.com/forum/topic/33 ... scan-tool/==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Intel Corporation) C:\Windows\System32\igfxCUIService.exe
() C:\ProgramData\HiSuiteOuc\HiSuiteOuc64.exe
() C:\ProgramData\HandSetService\HuaweiHiSuiteService64.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
() C:\Windows\jmesoft\Service.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
(PS Media s.r.o.) C:\Windows\SysWOW64\ssins.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel Corporation) C:\Windows\System32\igfxHK.exe
() C:\Windows\System32\igfxTray.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Petr Laštovička) C:\Program Files\HotkeyP.exe
() C:\Users\Bohumil\Downloads\Rainlendar2\Rainlendar2.exe
(Google, Inc) C:\Users\Bohumil\AppData\Local\Programs\Google\Google Photos Backup\Google Photos Backup.exe
(Lenovo) C:\Windows\jmesoft\hotkey.exe
(Lenovo) C:\Program Files\Lenovo\Lenovo Solution Center\LSCNotify.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
() C:\Windows\jmesoft\JME_LOAD.exe
==================== Registry (Whitelisted) ===========================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13885696 2015-06-24] (Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_Dolby] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1402624 2015-06-24] (Realtek Semiconductor)
HKLM\...\Run: [IgfxTray] => C:\windows\system32\igfxtray.exe [396688 2015-07-18] ()
HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [287592 2013-08-08] (Intel Corporation)
HKLM-x32\...\Run: [jmekey] => C:\windows\jmesoft\hotkey.exe [118784 2013-07-24] (Lenovo)
HKLM-x32\...\Run: [jmesoft] => C:\Windows\jmesoft\ServiceLoader.exe [28672 2011-08-17] ()
HKLM-x32\...\Run: [LVT] => C:\Program Files\Lenovo\LVT\LJYZ.exe [886112 2011-11-24] (Lenovo)
HKLM-x32\...\Run: [RemoteControl10] => C:\Program Files (x86)\Lenovo\PowerDVD10\PDVD10Serv.exe [95192 2013-03-09] (CyberLink Corp.)
HKLM-x32\...\Run: [seznam-listicka-distribuce] => C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe [1062472 2013-05-16] ()
HKU\S-1-5-21-2167593211-4253963868-4146078775-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [8455960 2015-08-20] (Piriform Ltd)
HKU\S-1-5-21-2167593211-4253963868-4146078775-1001\...\Run: [Zoner Photo Studio Service 16] => C:\Program Files\Zoner\Photo Studio 16\Program32\ZPSService.exe [27864 2014-12-23] ()
HKU\S-1-5-21-2167593211-4253963868-4146078775-1001\...\Run: [HotkeyP] => C:\Program Files\HotkeyP.exe [65536 2008-07-15] (Petr Laštovička)
HKU\S-1-5-21-2167593211-4253963868-4146078775-1001\...\Run: [Rainlendar2] => C:\Users\Bohumil\Downloads\Rainlendar2\Rainlendar2.exe [2611808 2014-03-16] ()
HKU\S-1-5-21-2167593211-4253963868-4146078775-1001\...\Run: [Zoner Photo Studio Autoupdate] => C:\PROGRAM FILES\ZONER\PHOTO STUDIO 16\Program32\ZPSTRAY.EXE [833240 2014-12-23] (ZONER software)
HKU\S-1-5-21-2167593211-4253963868-4146078775-1001\...\Run: [Google Photos Backup] => C:\Users\Bohumil\AppData\Local\Programs\Google\Google Photos Backup\Google Photos Backup.exe [3787080 2015-08-26] (Google, Inc)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
ProxyEnable: [S-1-5-21-2167593211-4253963868-4146078775-1001] => Proxy is enabled.
Tcpip\Parameters: [DhcpNameServer] 77.237.128.2 77.237.128.1 192.168.1.1
Tcpip\..\Interfaces\{92d708c8-a8a6-46d2-85ba-93c13404971c}: [DhcpNameServer] 77.237.128.2 77.237.128.1 192.168.1.1
Internet Explorer:
==================
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKU\S-1-5-21-2167593211-4253963868-4146078775-1001\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL =
hxxp://www.lenovo.comSearchScopes: HKU\S-1-5-21-2167593211-4253963868-4146078775-1001 -> DefaultScope {012E1000-F331-11DB-8314-0800200C9A66} URL =
hxxp://www.google.com/search?q={searchTerms}
SearchScopes: HKU\S-1-5-21-2167593211-4253963868-4146078775-1001 -> {012E1000-F331-11DB-8314-0800200C9A66} URL =
hxxp://www.google.com/search?q={searchTerms}
SearchScopes: HKU\S-1-5-21-2167593211-4253963868-4146078775-1001 -> {03DEF8D7-DD4B-42FE-A1DE-484B0B66B1E0} URL =
hxxp://www.novinky.cz/hledej?w={searchTerms}&sourceid=QuickSearch_12902
SearchScopes: HKU\S-1-5-21-2167593211-4253963868-4146078775-1001 -> {04EB9A24-4863-4637-81DE-44E4FED285B5} URL =
hxxp://www.zbozi.cz/?q={searchTerms}&r=campmoz&sourceid=QuickSearch_12902
SearchScopes: HKU\S-1-5-21-2167593211-4253963868-4146078775-1001 -> {70E2B0D3-52A9-40EF-B74A-CE828F3D9A9D} URL =
hxxp://encyklopedie.seznam.cz/search?q={searchTerms}&sourceid=QuickSearch_12902
SearchScopes: HKU\S-1-5-21-2167593211-4253963868-4146078775-1001 -> {B4C9182C-B3DD-4AE5-A2F4-F23177234088} URL =
hxxp://slovnik.seznam.cz/?q={searchTerms}&lang=cz_en&sourceid=QuickSearch_12902
SearchScopes: HKU\S-1-5-21-2167593211-4253963868-4146078775-1001 -> {C1202CC7-9C56-4CC1-8266-3DD7B1ACAC79} URL =
hxxp://tv.seznam.cz/hledej?w={searchTerms}&sourceid=QuickSearch_12902
SearchScopes: HKU\S-1-5-21-2167593211-4253963868-4146078775-1001 -> {D5F1808B-2BBB-451A-96D4-D47759B20391} URL =
hxxp://www.mapy.cz/?query={searchTerms}&sourceid=QuickSearch_12902
SearchScopes: HKU\S-1-5-21-2167593211-4253963868-4146078775-1001 -> {F7524068-D6D2-4A6A-B4EB-BFC0D731FACA} URL =
hxxp://slovnik.seznam.cz/?q={searchTerms}&lang=en_cz&sourceid=QuickSearch_12902
SearchScopes: HKU\S-1-5-21-2167593211-4253963868-4146078775-1001 -> {FBEDBE33-9F68-4D6F-8ED7-6918FE4AEC83} URL =
hxxp://www.firmy.cz/?q={searchTerms}&sourceid=QuickSearch_12902
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2015-08-12] (Microsoft Corporation)
BHO: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2015-05-01] (Microsoft Corporation)
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL [2015-07-14] (Microsoft Corporation)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2015-08-12] (Microsoft Corporation)
BHO-x32: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2015-05-01] (Microsoft Corporation)
BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL [2015-07-14] (Microsoft Corporation)
Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL [2015-02-17] (Microsoft Corporation)
Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2015-05-01] (Microsoft Corporation)
Handler-x32: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2015-05-01] (Microsoft Corporation)
FireFox:
========
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~1\Office15\NPSPWRAP.DLL [2014-01-23] (Microsoft Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2013-09-04] (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2013-09-04] (Intel Corporation)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2015-04-22] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office15\NPSPWRAP.DLL [2014-01-22] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.28.13\npGoogleUpdate3.dll [No File]
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.28.13\npGoogleUpdate3.dll [No File]
FF Plugin HKU\S-1-5-21-2167593211-4253963868-4146078775-1001: @tools.google.com/Google Update;version=3 -> C:\Users\Bohumil\AppData\Local\Google\Update\1.3.28.15\npGoogleUpdate3.dll [2015-09-15] (Google Inc.)
FF Plugin HKU\S-1-5-21-2167593211-4253963868-4146078775-1001: @tools.google.com/Google Update;version=9 -> C:\Users\Bohumil\AppData\Local\Google\Update\1.3.28.15\npGoogleUpdate3.dll [2015-09-15] (Google Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npMeetingJoinPluginOC.dll [2015-04-22] (Microsoft Corporation)
FF HKLM-x32\...\Thunderbird\Extensions: [msktbird@mcafee.com] - C:\Program Files\McAfee\MSK
Chrome:
=======
CHR Profile: C:\Users\Bohumil\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Slides) - C:\Users\Bohumil\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-07-31]
CHR Extension: (Google Docs) - C:\Users\Bohumil\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-07-31]
CHR Extension: (Google Drive) - C:\Users\Bohumil\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-07-31]
CHR Extension: (YouTube) - C:\Users\Bohumil\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-07-31]
CHR Extension: (Google Search) - C:\Users\Bohumil\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-07-31]
CHR Extension: (Google Sheets) - C:\Users\Bohumil\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-07-31]
CHR Extension: (AdBlock) - C:\Users\Bohumil\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2015-08-30]
CHR Extension: (Chrome Web Store Payments) - C:\Users\Bohumil\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-07-31]
CHR Extension: (Gmail) - C:\Users\Bohumil\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-07-31]
CHR HKLM\...\Chrome\Extension: [fcgnigmofekcllgbiejhmigggmgehkip] -
hxxps://clients2.google.com/service/update2/crxCHR HKLM-x32\...\Chrome\Extension: [fcgnigmofekcllgbiejhmigggmgehkip] -
hxxps://clients2.google.com/service/update2/crxOpera:
=======
OPR StartupUrls: "hxxp://www.mystartsearch.com/?type=hp&ts=1438412936&z=db8b68ba6931a08beedd835g5z0c1b0zbgao2bct9g&from=cvs&uid=ST500DM002-1BD142_S2AYB7KVXXXXS2AYB7KV"
==================== Services (Whitelisted) ========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1394816 2015-05-01] (Microsoft Corporation)
R2 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1772672 2015-05-01] (Microsoft Corporation)
R2 HiSuiteOuc64.exe; C:\ProgramData\HiSuiteOuc\HiSuiteOuc64.exe [138544 2015-05-20] ()
R2 HuaweiHiSuiteService64.exe; C:\ProgramData\HandSetService\HuaweiHiSuiteService64.exe [192304 2015-05-20] ()
R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [15720 2013-08-08] (Intel Corporation)
R2 igfxCUIService2.0.0.0; C:\Windows\system32\igfxCUIService.exe [351120 2015-07-18] (Intel Corporation)
R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [733696 2013-05-12] (Intel(R) Corporation) [File not signed]
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [822232 2013-05-12] (Intel(R) Corporation)
R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [131544 2013-09-04] (Intel Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-09-04] (Intel Corporation)
R2 JME Keyboard; C:\Windows\jmesoft\Service.exe [32768 2011-08-17] () [File not signed]
S3 LSCWinService; C:\Program Files\Lenovo\Lenovo Solution Center\App\LSCWinService.exe [272424 2015-08-17] (Lenovo)
R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [1871160 2015-06-18] (Malwarebytes Corporation)
R2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [1133880 2015-06-18] (Malwarebytes Corporation)
R2 ssinstall; C:\WINDOWS\SysWOW64\ssins.exe [2324216 2015-07-31] (PS Media s.r.o.)
===================== Drivers (Whitelisted) ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
U5 hw_usbdev; C:\Windows\System32\Drivers\hw_usbdev.sys [116864 2015-05-07] (Huawei Technologies Co., Ltd.)
R3 i8042HDR; C:\Windows\system32\DRIVERS\i8042HDR.sys [15920 2009-08-14] (Windows (R) Codename Longhorn DDK provider)
R3 MBAMProtector; C:\WINDOWS\system32\drivers\mbam.sys [25816 2015-06-18] (Malwarebytes Corporation)
R3 MBAMWebAccessControl; C:\WINDOWS\system32\drivers\mwac.sys [64216 2015-06-18] (Malwarebytes Corporation)
R3 MEIx64; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [99288 2013-09-04] (Intel Corporation)
R3 RSP2STOR; C:\Windows\system32\DRIVERS\RtsP2Stor.sys [310528 2015-06-05] (Realtek Semiconductor Corp.)
R3 RTWlanE; C:\Windows\system32\DRIVERS\rtwlane.sys [3453144 2015-07-10] (Realtek Semiconductor Corporation )
S3 UdeCx; C:\Windows\System32\drivers\udecx.sys [44032 2015-07-10] ()
S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [44568 2015-07-10] (Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [291680 2015-07-10] (Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [119648 2015-07-10] (Microsoft Corporation)
S3 wsvd; C:\Windows\system32\DRIVERS\wsvd.sys [102376 2012-06-14] ("CyberLink)
S3 wfpcapture; \SystemRoot\System32\drivers\wfpcapture.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2015-09-17 16:05 - 2015-09-17 16:05 - 00017139 _____ C:\Users\Bohumil\Desktop\FRST.txt
2015-09-17 16:04 - 2015-09-17 16:05 - 00000000 ____D C:\FRST
2015-09-17 16:03 - 2015-09-17 16:03 - 02191360 _____ (Farbar) C:\Users\Bohumil\Desktop\FRST64.exe
2015-09-17 15:40 - 2015-09-17 15:40 - 00000000 ____D C:\Users\Bohumil\Downloads\backups
2015-09-17 15:36 - 2015-09-17 15:36 - 00016148 _____ C:\WINDOWS\system32\LENOVO_Bohumil_HistoryPrediction.bin
2015-09-17 15:34 - 2015-09-17 15:34 - 00008660 _____ C:\Users\Bohumil\Desktop\Mbam.txt
2015-09-17 15:24 - 2015-09-17 15:24 - 00000000 ____D C:\Users\Bohumil\Desktop\Microsoft Office 2010 Professional Plus 32bit
2015-09-17 15:18 - 2015-09-17 15:36 - 00113880 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys
2015-09-17 15:18 - 2015-09-17 15:33 - 00001180 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2015-09-17 15:18 - 2015-09-17 15:18 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2015-09-17 15:18 - 2015-06-18 08:42 - 00064216 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mwac.sys
2015-09-17 15:18 - 2015-06-18 08:41 - 00109272 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbamchameleon.sys
2015-09-17 15:18 - 2015-06-18 08:41 - 00025816 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbam.sys
2015-09-17 15:17 - 2015-09-17 15:17 - 24345872 _____ (Malwarebytes Corporation ) C:\Users\Bohumil\Downloads\mbam-setup-2.1.8.1057.exe
2015-09-17 15:17 - 2015-09-17 15:17 - 24345872 _____ (Malwarebytes Corporation ) C:\Users\Bohumil\Desktop\mbam-setup-2.1.8.1057 (1).exe
2015-09-17 15:07 - 2015-09-17 15:07 - 00000000 ____D C:\Users\Bohumil\AppData\Local\NetworkTiles
2015-09-17 11:17 - 2015-09-17 11:17 - 00331053 _____ C:\Users\Bohumil\Downloads\kavremvr 2015-09-17 11-17-10 (pid 1196).log
2015-09-17 11:16 - 2015-09-17 11:16 - 03686800 _____ (Kaspersky Lab ZAO) C:\Users\Bohumil\Downloads\kavremover11.exe
2015-09-17 11:06 - 2015-09-17 11:06 - 05159424 _____ C:\Users\Bohumil\Downloads\WindowsDefender.msi
2015-09-17 10:46 - 2015-09-17 10:46 - 00000000 ____D C:\Users\Bohumil\AppData\Local\CrashDumps
2015-09-17 10:37 - 2015-09-17 10:37 - 00388608 _____ (Trend Micro Inc.) C:\Users\Bohumil\Downloads\HijackThis.exe
2015-09-17 10:33 - 2015-09-17 10:33 - 00000008 __RSH C:\ProgramData\ntuser.pol
2015-09-17 10:32 - 2015-09-17 10:23 - 00024064 _____ C:\WINDOWS\zoek-delete.exe
2015-09-17 10:23 - 2015-09-17 10:33 - 00012232 _____ C:\zoek-results.log
2015-09-17 10:23 - 2015-09-17 10:31 - 00000000 ____D C:\zoek_backup
2015-09-17 09:44 - 2015-09-17 15:35 - 00011830 _____ C:\WINDOWS\PFRO.log
2015-09-17 09:40 - 2015-09-17 10:41 - 00000214 _____ C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job
2015-09-16 21:08 - 2015-09-17 15:37 - 00000275 _____ C:\WINDOWS\WindowsUpdate.log
2015-09-16 21:02 - 2015-09-16 21:02 - 07491896 _____ (Kaspersky Lab ZAO) C:\Users\Bohumil\Desktop\kavremover.exe
2015-09-16 20:44 - 2015-09-17 10:03 - 00037624 _____ C:\WINDOWS\system32\Drivers\TrueSight.sys
2015-09-16 20:44 - 2015-09-16 20:54 - 00000000 ____D C:\ProgramData\RogueKiller
2015-09-16 20:40 - 2015-09-17 15:46 - 00002129 _____ C:\WINDOWS\setupact.log
2015-09-16 20:40 - 2015-09-16 20:40 - 00000000 _____ C:\WINDOWS\setuperr.log
2015-09-16 17:01 - 2015-09-16 17:01 - 00000000 _____ C:\Users\Bohumil\Downloads\ChromeSetup_exe (1).bhhl0e2.partial
2015-09-16 16:58 - 2015-09-16 16:58 - 00000000 _____ C:\Users\Bohumil\Downloads\ChromeSetup_exe.1i1v3gy.partial
2015-09-16 15:10 - 2015-09-17 15:18 - 00000000 ____D C:\Program Files (x86)\Malwarebytes Anti-Malware
2015-09-16 15:10 - 2015-09-16 15:10 - 00000000 ____D C:\ProgramData\Malwarebytes
2015-09-16 10:46 - 2015-09-17 15:38 - 00011027 _____ C:\Users\Bohumil\Downloads\hijackthis.log
2015-09-15 16:41 - 2015-09-15 16:41 - 00000110 ____H C:\Users\Bohumil\Desktop\DSCN2864.JPG.uid-zps
2015-09-15 16:29 - 2015-09-15 17:34 - 00000000 ____D C:\Users\Bohumil\Desktop\outl
2015-09-15 10:08 - 2015-09-15 10:08 - 00112867 _____ C:\Users\Bohumil\Downloads\Zakázkový-list---vzor,-tiskopis,-formulář-ke-stažení-online-zdarma---MUDr.-Zbyněk-Mlčoch.htm
2015-09-15 09:57 - 2015-09-16 17:26 - 00000000 ____D C:\Users\Bohumil\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AdmWin
2015-09-15 09:56 - 2015-09-15 09:56 - 04017921 _____ C:\Users\Bohumil\Downloads\AdmWin-6.04.zip
2015-09-15 09:47 - 2011-03-21 04:50 - 01081616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSCOMCTL.OCX
2015-09-15 09:40 - 2015-09-15 09:40 - 00036864 _____ C:\Users\Bohumil\Downloads\zakazkovy-list.xls
2015-09-15 09:29 - 2015-09-15 09:29 - 08341727 _____ (AdmWin ) C:\Users\Bohumil\Downloads\Setup_AdmWinDEserv.exe
2015-09-15 05:23 - 2015-09-16 17:26 - 00000000 ____D C:\Users\Bohumil\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Photos Backup
2015-09-14 17:53 - 2015-09-14 17:55 - 00000000 ____D C:\Users\Bohumil\Desktop\Promoce
2015-09-13 09:23 - 2015-09-13 09:23 - 02662704 _____ (Google) C:\Users\Bohumil\Downloads\gpautobackup_setup.exe
2015-09-13 08:57 - 2015-09-13 09:06 - 00000000 ____D C:\Users\Bohumil\Desktop\Foto Kateřina
2015-09-11 20:25 - 2015-09-11 20:25 - 00000000 ____D C:\Users\Bohumil\Downloads\Rainlendar2
2015-09-11 20:25 - 2015-09-11 20:25 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Rainlendar2
2015-09-11 20:24 - 2015-09-11 20:24 - 15151864 _____ C:\Users\Bohumil\Downloads\Rainlendar-Lite-2.12.2-32bit.exe
2015-09-11 20:24 - 2015-09-11 20:24 - 00078825 _____ C:\Users\Bohumil\Downloads\Czech.r2lang
2015-09-11 17:26 - 2015-09-17 15:22 - 00000914 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2015-09-11 17:26 - 2015-09-11 17:38 - 00000000 ____D C:\Users\Bohumil\AppData\Local\Chromium
2015-09-11 17:26 - 2015-09-11 17:26 - 00003890 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater
2015-09-11 17:16 - 2015-09-11 17:16 - 00000000 ____D C:\Users\Bohumil\AppData\Roaming\Mozilla
2015-09-11 17:15 - 2015-09-17 15:35 - 00000326 _____ C:\WINDOWS\Tasks\txouii.job
2015-09-11 17:15 - 2015-09-11 17:15 - 00002646 _____ C:\WINDOWS\System32\Tasks\txouii
2015-09-11 17:14 - 2013-08-22 15:25 - 00000824 _____ C:\WINDOWS\system32\Drivers\etc\hp.bak
2015-09-11 17:06 - 2015-09-02 03:20 - 00077400 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll
2015-09-11 17:06 - 2015-09-02 02:25 - 03586560 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2015-09-11 17:06 - 2015-09-02 02:25 - 01382912 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2015-09-11 17:06 - 2015-08-27 08:36 - 03620736 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2015-09-11 17:06 - 2015-08-27 08:32 - 00608936 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe
2015-09-11 17:06 - 2015-08-27 08:04 - 21874688 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2015-09-11 17:06 - 2015-08-27 07:59 - 02880032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2015-09-11 17:06 - 2015-08-27 07:55 - 24594944 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2015-09-11 17:06 - 2015-08-27 07:54 - 00541248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe
2015-09-11 17:06 - 2015-08-27 07:54 - 00365568 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\atmfd.dll
2015-09-11 17:06 - 2015-08-27 07:51 - 02350592 _____ (Microsoft Corporation) C:\WINDOWS\system32\authui.dll
2015-09-11 17:06 - 2015-08-27 07:51 - 01774592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Immersive.dll
2015-09-11 17:06 - 2015-08-27 07:49 - 01008640 _____ (Microsoft Corporation) C:\WINDOWS\system32\schedsvc.dll
2015-09-11 17:06 - 2015-08-27 07:47 - 12503552 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2015-09-11 17:06 - 2015-08-27 07:43 - 00826880 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2015-09-11 17:06 - 2015-08-27 07:43 - 00576000 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2015-09-11 17:06 - 2015-08-27 07:42 - 00596480 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSync.dll
2015-09-11 17:06 - 2015-08-27 07:42 - 00578560 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe
2015-09-11 17:06 - 2015-08-27 07:42 - 00187904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.PicturePassword.dll
2015-09-11 17:06 - 2015-08-27 07:42 - 00184320 _____ (Microsoft Corporation) C:\WINDOWS\system32\shacct.dll
2015-09-11 17:06 - 2015-08-27 07:39 - 00045568 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll
2015-09-11 17:06 - 2015-08-27 07:23 - 19324416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2015-09-11 17:06 - 2015-08-27 07:23 - 00303104 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\atmfd.dll
2015-09-11 17:06 - 2015-08-27 07:16 - 18806272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2015-09-11 17:06 - 2015-08-27 07:16 - 02153472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\authui.dll
2015-09-11 17:06 - 2015-08-27 07:16 - 01612288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Immersive.dll
2015-09-11 17:06 - 2015-08-27 07:12 - 00650752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
2015-09-11 17:06 - 2015-08-27 07:12 - 00504320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2015-09-11 17:06 - 2015-08-27 07:11 - 00484352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSync.dll
2015-09-11 17:06 - 2015-08-27 07:11 - 00139776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shacct.dll
2015-09-11 17:06 - 2015-08-27 07:09 - 11262464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2015-09-11 17:06 - 2015-08-27 07:08 - 00037376 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll
2015-09-08 11:10 - 2015-09-08 11:10 - 00000000 ____D C:\Program Files (x86)\MSECache
2015-09-08 11:09 - 2015-09-08 11:09 - 08374576 _____ (Microsoft Corporation) C:\Users\Bohumil\Downloads\proofingtools_cs-cz-x64.exe
2015-09-08 10:48 - 2015-09-08 11:07 - 00000000 ____D C:\Users\Bohumil\AppData\Roaming\Skype
2015-09-08 10:48 - 2015-09-08 10:48 - 00000000 ____D C:\Users\Bohumil\AppData\Local\Skype
2015-09-08 10:47 - 2015-09-17 15:33 - 00002652 _____ C:\Users\Public\Desktop\Skype.lnk
2015-09-08 10:47 - 2015-09-08 10:53 - 00000000 ___RD C:\Program Files (x86)\Skype
2015-09-08 10:47 - 2015-09-08 10:48 - 00000000 ____D C:\ProgramData\Skype
2015-09-08 10:47 - 2015-09-08 10:48 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2015-09-08 10:46 - 2015-09-08 10:46 - 01494048 _____ (Skype Technologies S.A.) C:\Users\Bohumil\Downloads\SkypeSetup.exe
2015-09-08 10:06 - 2015-09-17 15:18 - 00000984 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-2167593211-4253963868-4146078775-1001UA.job
2015-09-08 10:06 - 2015-09-16 17:26 - 00000000 ____D C:\Users\Bohumil\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome Canary
2015-09-08 10:06 - 2015-09-15 05:18 - 00000932 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-2167593211-4253963868-4146078775-1001Core.job
2015-09-08 10:06 - 2015-09-15 05:13 - 00004106 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-2167593211-4253963868-4146078775-1001UA
2015-09-08 10:06 - 2015-09-15 05:13 - 00003730 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-2167593211-4253963868-4146078775-1001Core
2015-09-08 10:06 - 2015-09-08 10:06 - 00929360 _____ (Google Inc.) C:\Users\Bohumil\Downloads\ChromeSetup (1).exe
2015-09-06 07:39 - 2015-09-06 07:39 - 06667640 _____ (Piriform Ltd) C:\Users\Bohumil\Downloads\ccsetup509 (1).exe
2015-09-06 07:38 - 2015-09-06 07:39 - 06667640 _____ (Piriform Ltd) C:\Users\Bohumil\Downloads\ccsetup509.exe
2015-09-02 15:20 - 2015-09-02 15:21 - 224387072 _____ C:\Users\Bohumil\Downloads\libreoffice_4.4.3.msi
2015-09-02 13:50 - 2015-09-02 13:55 - 908736213 _____ C:\Users\Bohumil\Downloads\H30-U10_V100R001C432B306.zip
2015-08-30 13:04 - 2015-09-17 15:33 - 00000000 ____D C:\Users\Bohumil\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\uTorrent
2015-08-30 13:04 - 2015-08-30 13:07 - 00000000 ____D C:\Users\Bohumil\AppData\Roaming\uTorrent
2015-08-30 12:42 - 2015-08-30 12:42 - 00003430 _____ C:\WINDOWS\System32\Tasks\{0C3FDEC9-F6AB-41F1-A72A-4DA0C15CDBB6}
2015-08-30 11:33 - 2015-08-30 11:33 - 00000000 ____D C:\WINDOWS\system32\TokensBackup
2015-08-30 10:25 - 2015-09-14 15:57 - 00000000 ____D C:\Users\Bohumil\AppData\Roaming\Mighty Checker
2015-08-28 17:37 - 2015-08-20 08:07 - 08019296 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2015-08-28 17:37 - 2015-08-20 08:06 - 00609592 _____ (Microsoft Corporation) C:\WINDOWS\system32\ci.dll
2015-08-28 17:37 - 2015-08-20 08:02 - 22324656 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2015-08-28 17:37 - 2015-08-20 07:26 - 00168960 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgent.exe
2015-08-28 17:37 - 2015-08-20 07:21 - 00193024 _____ (Microsoft Corporation) C:\WINDOWS\system32\EnterpriseModernAppMgmtCSP.dll
2015-08-28 17:37 - 2015-08-20 07:16 - 20857848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2015-08-28 17:37 - 2015-08-20 07:13 - 02235904 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2015-08-28 17:37 - 2015-08-18 09:56 - 02498808 _____ C:\WINDOWS\system32\CoreUIComponents.dll
2015-08-28 17:37 - 2015-08-18 09:55 - 00373072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBXHCI.SYS
2015-08-28 17:37 - 2015-08-18 09:54 - 01396064 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll
2015-08-28 17:37 - 2015-08-18 09:27 - 01771592 _____ C:\WINDOWS\SysWOW64\CoreUIComponents.dll
2015-08-28 17:37 - 2015-08-18 09:24 - 00963920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicenseManager.dll
2015-08-28 17:37 - 2015-08-18 09:13 - 00497664 _____ (Microsoft Corporation) C:\WINDOWS\system32\WlanMediaManager.dll
2015-08-28 17:37 - 2015-08-18 09:13 - 00387584 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupShim.dll
2015-08-28 17:37 - 2015-08-18 09:12 - 02225664 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkMobileSettings.dll
2015-08-28 17:37 - 2015-08-18 09:07 - 02226688 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll
2015-08-28 17:37 - 2015-08-18 09:04 - 01234944 _____ (Microsoft Corporation) C:\WINDOWS\system32\aitstatic.exe
2015-08-28 17:37 - 2015-08-18 09:04 - 00859136 _____ (Microsoft Corporation) C:\WINDOWS\system32\modernexecserver.dll
2015-08-28 17:37 - 2015-08-18 08:59 - 01294336 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcnwiz.dll
2015-08-28 17:37 - 2015-08-18 08:59 - 00140288 _____ (Microsoft Corporation) C:\WINDOWS\system32\WcnApi.dll
2015-08-28 17:37 - 2015-08-18 08:58 - 00187392 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupSvc.dll
2015-08-28 17:37 - 2015-08-18 08:58 - 00117760 _____ (Microsoft Corporation) C:\WINDOWS\system32\dafWCN.dll
2015-08-28 17:37 - 2015-08-18 08:58 - 00112640 _____ (Microsoft Corporation) C:\WINDOWS\system32\fdWCN.dll
2015-08-28 17:37 - 2015-08-18 08:58 - 00050176 _____ (Microsoft Corporation) C:\WINDOWS\system32\WcnNetsh.dll
2015-08-28 17:37 - 2015-08-18 08:57 - 00045568 _____ (Microsoft Corporation) C:\WINDOWS\system32\wfdprov.dll
2015-08-28 17:37 - 2015-08-18 08:56 - 00079872 _____ (Microsoft Corporation) C:\WINDOWS\system32\BthRadioMedia.dll
2015-08-28 17:37 - 2015-08-18 08:55 - 02178560 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2015-08-28 17:37 - 2015-08-18 08:54 - 00322048 _____ (Microsoft Corporation) C:\WINDOWS\system32\vaultsvc.dll
2015-08-28 17:37 - 2015-08-18 08:54 - 00247296 _____ C:\WINDOWS\system32\facecredentialprovider.dll
2015-08-28 17:37 - 2015-08-18 08:52 - 01888768 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2015-08-28 17:37 - 2015-08-18 08:50 - 01795072 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2015-08-28 17:37 - 2015-08-18 08:49 - 01061888 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll
2015-08-28 17:37 - 2015-08-18 08:49 - 00274432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupShim.dll
2015-08-28 17:37 - 2015-08-18 08:49 - 00246272 _____ (Microsoft Corporation) C:\WINDOWS\system32\PackageStateRoaming.dll
2015-08-28 17:37 - 2015-08-18 08:36 - 01226752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wcnwiz.dll
2015-08-28 17:37 - 2015-08-18 08:35 - 00100352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WcnApi.dll
2015-08-28 17:37 - 2015-08-18 08:35 - 00095744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fdWCN.dll
2015-08-28 17:37 - 2015-08-18 08:34 - 00037376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wfdprov.dll
2015-08-28 17:37 - 2015-08-18 08:29 - 01593344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll
2015-08-28 17:37 - 2015-08-18 08:26 - 00195584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PackageStateRoaming.dll
2015-08-28 17:37 - 2015-08-18 06:44 - 00008847 _____ C:\WINDOWS\system32\ResPriHMImageList
2015-08-28 12:30 - 2015-08-28 12:30 - 00000110 ____H C:\Users\Bohumil\Desktop\IMG_20150828_122404.jpg.uid-zps
2015-08-28 12:30 - 2015-08-28 12:30 - 00000110 ____H C:\Users\Bohumil\Desktop\IMG_20150828_122011.jpg.uid-zps
2015-08-28 12:30 - 2015-08-28 12:30 - 00000110 ____H C:\Users\Bohumil\Desktop\IMG_20150828_121907.jpg.uid-zps
2015-08-28 12:27 - 2015-08-28 12:27 - 00000110 ____H C:\Users\Bohumil\Desktop\IMG_20150828_121858.jpg.uid-zps
2015-08-26 11:40 - 2015-08-26 11:40 - 01405720 _____ C:\WINDOWS\system32\cpm.exe
2015-08-25 18:51 - 2015-08-25 18:51 - 00031903 _____ C:\Users\Bohumil\Downloads\Terminy_SZZ_srpen_2015.xlsx
2015-08-24 11:42 - 2015-09-17 15:33 - 00001069 _____ C:\Users\Public\Desktop\HiSuite.lnk
2015-08-24 11:42 - 2015-08-24 11:42 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HiSuite
2015-08-24 11:42 - 2015-08-24 11:42 - 00000000 ____D C:\ProgramData\HiSuiteOuc
2015-08-24 11:42 - 2015-08-24 11:42 - 00000000 ____D C:\ProgramData\HandSetService
2015-08-24 11:42 - 2015-05-07 13:40 - 02152176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WUDFUpdate_01009.dll
2015-08-24 11:42 - 2015-05-07 13:40 - 01721576 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdfCoInstaller01009.dll
2015-08-24 11:42 - 2015-05-07 13:40 - 01002728 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\winusbcoinstaller2.dll
2015-08-24 11:42 - 2015-05-07 13:40 - 00287232 _____ (Huawei Technologies Co., Ltd.) C:\WINDOWS\system32\Drivers\hw_quusbnet.sys
2015-08-24 11:42 - 2015-05-07 13:40 - 00223232 _____ (Huawei Technologies Co., Ltd.) C:\WINDOWS\system32\Drivers\hw_quusbmdm.sys
2015-08-24 11:42 - 2015-05-07 13:40 - 00116864 _____ (Huawei Technologies Co., Ltd.) C:\WINDOWS\system32\Drivers\hw_usbdev.sys
2015-08-24 11:41 - 2015-08-24 11:42 - 00000000 ____D C:\Program Files (x86)\HiSuite
2015-08-24 11:40 - 2015-08-24 11:42 - 35721505 _____ C:\Users\Bohumil\Downloads\HiSuiteSetup_2.3.55.1.zip
2015-08-24 11:21 - 2015-08-24 11:21 - 00000381 _____ C:\Users\Bohumil\Downloads\HuaweiHonor3CPlay_lollipop_software.torrent
2015-08-20 10:47 - 2015-08-20 10:47 - 00000110 ____H C:\Users\Bohumil\Desktop\IMG_20150820_102629.jpg.uid-zps
2015-08-19 09:18 - 2015-08-13 06:22 - 02093056 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidsvc.dll
2015-08-19 09:18 - 2015-08-13 06:20 - 00414208 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll
2015-08-19 09:18 - 2015-08-13 05:53 - 00311808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll
2015-08-19 09:18 - 2015-08-11 12:04 - 04532304 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2015-08-19 09:18 - 2015-08-11 12:04 - 02462648 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2015-08-19 09:18 - 2015-08-11 12:04 - 01087296 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll
2015-08-19 09:18 - 2015-08-11 12:03 - 00442208 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storport.sys
2015-08-19 09:18 - 2015-08-11 12:02 - 00554744 _____ (Microsoft Corporation) C:\WINDOWS\system32\directmanipulation.dll
2015-08-19 09:18 - 2015-08-11 12:02 - 00292856 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppHost.exe
2015-08-19 09:18 - 2015-08-11 12:02 - 00080720 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\stornvme.sys
2015-08-19 09:18 - 2015-08-11 11:52 - 00993104 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReAgent.dll
2015-08-19 09:18 - 2015-08-11 11:50 - 01643872 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll
2015-08-19 09:18 - 2015-08-11 11:40 - 04048808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
2015-08-19 09:18 - 2015-08-11 11:40 - 02151208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll
2015-08-19 09:18 - 2015-08-11 11:40 - 00918320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfplat.dll
2015-08-19 09:18 - 2015-08-11 11:38 - 00454000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\directmanipulation.dll
2015-08-19 09:18 - 2015-08-11 11:37 - 00243800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LockAppHost.exe
2015-08-19 09:18 - 2015-08-11 11:26 - 00845664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ReAgent.dll
2015-08-19 09:18 - 2015-08-11 11:23 - 16706560 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2015-08-19 09:18 - 2015-08-11 11:21 - 00148992 _____ (Microsoft Corporation) C:\WINDOWS\system32\tetheringservice.dll
2015-08-19 09:18 - 2015-08-11 11:21 - 00052224 _____ (Microsoft Corporation) C:\WINDOWS\system32\tetheringclient.dll
2015-08-19 09:18 - 2015-08-11 11:20 - 00483328 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneDriveSettingSyncProvider.dll
2015-08-19 09:18 - 2015-08-11 11:19 - 00235520 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Notifications.dll
2015-08-19 09:18 - 2015-08-11 11:18 - 00235008 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserMgrProxy.dll
2015-08-19 09:18 - 2015-08-11 11:16 - 02416640 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll
2015-08-19 09:18 - 2015-08-11 11:14 - 00404480 _____ C:\WINDOWS\system32\diagtrack_wininternal.dll
2015-08-19 09:18 - 2015-08-11 11:13 - 00413184 _____ C:\WINDOWS\system32\diagtrack_win.dll
2015-08-19 09:18 - 2015-08-11 11:11 - 02446336 _____ C:\WINDOWS\system32\InputService.dll
2015-08-19 09:18 - 2015-08-11 11:11 - 00553472 _____ (Microsoft Corporation) C:\WINDOWS\system32\GamePanel.exe
2015-08-19 09:18 - 2015-08-11 11:10 - 00778752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2015-08-19 09:18 - 2015-08-11 11:10 - 00324096 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2015-08-19 09:18 - 2015-08-11 11:10 - 00293376 _____ C:\WINDOWS\system32\TextInputFramework.dll
2015-08-19 09:18 - 2015-08-11 11:09 - 00032768 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuautoappupdate.dll
2015-08-19 09:18 - 2015-08-11 11:08 - 00893440 _____ (Microsoft Corporation) C:\WINDOWS\system32\MbaeApiPublic.dll
2015-08-19 09:18 - 2015-08-11 11:08 - 00563200 _____ (Microsoft Corporation) C:\WINDOWS\system32\MbaeApi.dll
2015-08-19 09:18 - 2015-08-11 11:07 - 01178112 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll
2015-08-19 09:18 - 2015-08-11 11:07 - 00593920 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll
2015-08-19 09:18 - 2015-08-11 11:07 - 00115712 _____ (Microsoft Corporation) C:\WINDOWS\system32\MbaeParserTask.exe
2015-08-19 09:18 - 2015-08-11 11:06 - 07523328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2015-08-19 09:18 - 2015-08-11 11:06 - 02662400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Logon.dll
2015-08-19 09:18 - 2015-08-11 11:05 - 03527168 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll
2015-08-19 09:18 - 2015-08-11 11:05 - 00996352 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXService.dll
2015-08-19 09:18 - 2015-08-11 11:05 - 00342016 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationGeofences.dll
2015-08-19 09:18 - 2015-08-11 11:05 - 00269312 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationFramework.dll
2015-08-19 09:18 - 2015-08-11 11:05 - 00137216 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationPermissions.dll
2015-08-19 09:18 - 2015-08-11 11:05 - 00078848 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationFrameworkInternalPS.dll
2015-08-19 09:18 - 2015-08-11 11:03 - 02558976 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll
2015-08-19 09:18 - 2015-08-11 11:02 - 00621056 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll
2015-08-19 09:18 - 2015-08-11 11:02 - 00186368 _____ (Microsoft Corporation) C:\WINDOWS\system32\cloudAP.dll
2015-08-19 09:18 - 2015-08-11 11:01 - 01334784 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCore.dll
2015-08-19 09:18 - 2015-08-11 11:00 - 00336384 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchProtocolHost.exe
2015-08-19 09:18 - 2015-08-11 11:00 - 00274432 _____ (Microsoft Corporation) C:\WINDOWS\system32\syncutil.dll
2015-08-19 09:18 - 2015-08-11 10:59 - 01106432 _____ (Microsoft Corporation) C:\WINDOWS\system32\sysmain.dll
2015-08-19 09:18 - 2015-08-11 10:59 - 00642560 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdbui.dll
2015-08-19 09:18 - 2015-08-11 10:59 - 00123392 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssprxy.dll
2015-08-19 09:18 - 2015-08-11 10:59 - 00042496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tetheringclient.dll
2015-08-19 09:18 - 2015-08-11 10:58 - 00372224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OneDriveSettingSyncProvider.dll
2015-08-19 09:18 - 2015-08-11 10:57 - 13024768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2015-08-19 09:18 - 2015-08-11 10:57 - 00159744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserMgrProxy.dll
2015-08-19 09:18 - 2015-08-11 10:51 - 01916928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll
2015-08-19 09:18 - 2015-08-11 10:51 - 01823232 _____ C:\WINDOWS\SysWOW64\InputService.dll
2015-08-19 09:18 - 2015-08-11 10:50 - 00420352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GamePanel.exe
2015-08-19 09:18 - 2015-08-11 10:50 - 00200704 _____ C:\WINDOWS\SysWOW64\TextInputFramework.dll
2015-08-19 09:18 - 2015-08-11 10:50 - 00131584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Core.TextInput.dll
2015-08-19 09:18 - 2015-08-11 10:49 - 00586752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.dll
2015-08-19 09:18 - 2015-08-11 10:49 - 00247808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2015-08-19 09:18 - 2015-08-11 10:48 - 00671232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MbaeApiPublic.dll
2015-08-19 09:18 - 2015-08-11 10:47 - 00448512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MbaeApi.dll
2015-08-19 09:18 - 2015-08-11 10:45 - 01820672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Logon.dll
2015-08-19 09:18 - 2015-08-11 10:43 - 02748416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tquery.dll
2015-08-19 09:18 - 2015-08-11 10:42 - 05454848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2015-08-19 09:18 - 2015-08-11 10:40 - 01964544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssrch.dll
2015-08-19 09:18 - 2015-08-11 10:40 - 01112064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIAutomationCore.dll
2015-08-19 09:18 - 2015-08-11 10:39 - 00280576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchProtocolHost.exe
2015-08-19 09:18 - 2015-08-11 10:38 - 00162304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ReInfo.dll
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2015-09-17 16:06 - 2015-07-31 18:56 - 00000974 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2015-09-17 15:49 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\AppReadiness
2015-09-17 15:36 - 2015-08-01 08:53 - 00000000 ____D C:\Users\Bohumil\.rainlendar2
2015-09-17 15:36 - 2015-07-31 18:56 - 00000970 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2015-09-17 15:36 - 2015-07-31 18:25 - 00000180 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2015-09-17 15:35 - 2015-07-31 19:09 - 00000000 _____ C:\WINDOWS\SysWOW64\sinstall.log
2015-09-17 15:35 - 2015-07-10 14:21 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2015-09-17 15:35 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\sru
2015-09-17 15:35 - 2015-07-10 11:05 - 00262144 ___SH C:\WINDOWS\system32\config\BBI
2015-09-17 15:33 - 2015-08-10 11:33 - 00001976 _____ C:\Users\Public\Desktop\Zoner Photo Studio 16.lnk
2015-09-17 15:33 - 2015-08-01 09:20 - 00000912 _____ C:\Users\Public\Desktop\CCleaner.lnk
2015-09-17 15:33 - 2015-08-01 08:55 - 00001307 _____ C:\Users\Bohumil\Desktop\Hesla.lnk
2015-09-17 15:33 - 2015-08-01 08:00 - 00000817 _____ C:\Users\Bohumil\Desktop\Bohouš.lnk
2015-09-17 15:33 - 2015-07-31 21:22 - 00000915 _____ C:\Users\Bohumil\Desktop\2015.lnk
2015-09-17 15:33 - 2015-07-31 21:17 - 00001665 _____ C:\Users\Bohumil\Desktop\Foto.lnk
2015-09-17 15:33 - 2015-07-31 21:04 - 00001568 _____ C:\Users\Bohumil\Desktop\Peníze.lnk
2015-09-17 15:33 - 2015-07-31 18:48 - 00002379 _____ C:\Users\Bohumil\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2015-09-17 15:33 - 2015-07-31 18:31 - 00001540 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk
2015-09-17 15:33 - 2014-11-04 11:25 - 00002198 _____ C:\Users\Public\Desktop\Lenovo PowerDVD 10.lnk
2015-09-17 15:33 - 2014-11-04 11:21 - 00002451 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Amazon.lnk
2015-09-17 15:33 - 2014-11-04 11:03 - 00000712 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel(R) HD Graphics Control Panel.lnk
2015-09-17 15:26 - 2015-07-31 18:42 - 01765712 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2015-09-17 15:26 - 2015-07-10 18:02 - 00746444 _____ C:\WINDOWS\system32\perfh005.dat
2015-09-17 15:26 - 2015-07-10 18:02 - 00149880 _____ C:\WINDOWS\system32\perfc005.dat
2015-09-17 15:22 - 2015-08-01 09:02 - 00004198 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{FFA7102A-B417-4557-B83A-BD9454130D74}
2015-09-17 11:12 - 2015-07-31 19:35 - 00000000 ____D C:\Users\Bohumil\Documents\Soubory aplikace Outlook
2015-09-17 10:31 - 2015-07-31 18:28 - 00000000 ____D C:\Users\Bohumil
2015-09-17 10:31 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\GroupPolicy
2015-09-16 20:32 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\NDF
2015-09-16 20:28 - 2015-07-31 18:56 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
2015-09-16 20:28 - 2014-11-04 11:21 - 00000000 ____D C:\Program Files (x86)\Amazon
2015-09-16 19:14 - 2015-08-01 08:43 - 00000000 ____D C:\Users\Bohumil\AppData\Local\Packages
2015-09-16 18:49 - 2015-07-10 13:04 - 00000000 ___HD C:\WINDOWS\ELAMBKUP
2015-09-16 18:49 - 2015-07-10 11:05 - 00032768 ___SH C:\WINDOWS\system32\config\ELAM
2015-09-16 18:29 - 2015-08-08 06:09 - 00000000 ____D C:\Users\Bohumil\AppData\Roaming\LSC
2015-09-16 18:28 - 2014-11-04 11:27 - 00000000 ____D C:\WINDOWS\System32\Tasks\Lenovo
2015-09-16 18:28 - 2014-11-04 11:27 - 00000000 ____D C:\WINDOWS\Downloaded Installations
2015-09-16 18:28 - 2014-11-04 11:20 - 00000000 ____D C:\Program Files (x86)\Lenovo
2015-09-16 17:25 - 2014-11-04 11:18 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lenovo
2015-09-16 17:25 - 2014-11-04 11:03 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2015-09-16 17:19 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\registration
2015-09-16 17:18 - 2015-08-01 08:43 - 00000000 ____D C:\Users\Bohumil\AppData\Local\VirtualStore
2015-09-16 17:18 - 2015-08-01 08:41 - 00000000 ____D C:\Users\Bohumil\AppData\Roaming\Macromedia
2015-09-16 17:18 - 2015-07-31 18:32 - 00000000 ____D C:\Users\Default\AppData\Roaming\Macromedia
2015-09-16 17:18 - 2015-07-31 18:32 - 00000000 ____D C:\Users\Default User\AppData\Roaming\Macromedia
2015-09-15 09:30 - 2015-07-31 20:54 - 00000000 ____D C:\D
2015-09-15 06:30 - 2015-07-10 11:05 - 00262144 ___SH C:\WINDOWS\system32\config\BBI(519)
2015-09-15 05:23 - 2015-07-31 18:56 - 00000000 ____D C:\Users\Bohumil\AppData\Local\Google
2015-09-14 16:56 - 2015-07-10 14:20 - 00353280 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2015-09-14 16:53 - 2015-07-10 18:05 - 00000000 ____D C:\Program Files\Windows Journal
2015-09-14 16:53 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\appraiser
2015-09-14 16:41 - 2015-07-10 12:55 - 00000000 ____D C:\WINDOWS\CbsTemp
2015-09-14 15:55 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\LiveKernelReports
2015-09-11 17:25 - 2015-07-31 19:17 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013
2015-09-11 17:25 - 2015-07-31 19:13 - 00000000 ____D C:\ProgramData\Microsoft Help
2015-09-11 17:23 - 2013-08-22 15:25 - 00000301 _____ C:\WINDOWS\win.ini
2015-09-11 17:19 - 2015-08-15 19:35 - 00000000 ____D C:\WINDOWS\system32\MRT
2015-09-08 10:13 - 2015-07-31 18:56 - 00000000 ____D C:\Program Files (x86)\Google
2015-09-06 07:39 - 2015-08-01 09:19 - 00000000 ____D C:\Program Files\CCleaner
2015-09-02 13:26 - 2015-08-01 07:59 - 00000000 ____D C:\Bohouš
2015-09-02 13:06 - 2015-07-31 18:45 - 00000000 ____D C:\Users\Bohumil\AppData\Local\Comms
2015-08-30 11:11 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\rescache
2015-08-30 11:01 - 2015-08-01 19:49 - 00000000 ____D C:\WINDOWS\System32\Tasks\Games
2015-08-30 10:34 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\oobe
2015-08-30 10:01 - 2015-07-31 18:56 - 00004032 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA
2015-08-30 10:01 - 2015-07-31 18:56 - 00003800 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore
2015-08-26 18:37 - 2015-08-15 19:35 - 134753440 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2015-08-19 10:51 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2015-08-19 10:42 - 2015-07-10 13:04 - 00000000 ___RD C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2015-08-19 10:42 - 2015-07-10 13:04 - 00000000 ___RD C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
==================== Files in the root of some directories =======
2015-08-10 17:29 - 2008-07-15 17:33 - 0065536 _____ (Petr Laštovička) C:\Program Files\HotkeyP.exe
2015-07-31 18:26 - 2015-07-31 18:26 - 0000000 ____H () C:\ProgramData\DP45977C.lfl
==================== Bamital & volsnap =================
(There is no automatic fix for files that do not pass verification.)
C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\wininit.exe => File is digitally signed
C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\SysWOW64\explorer.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\SysWOW64\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\SysWOW64\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\SysWOW64\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
C:\WINDOWS\SysWOW64\dnsapi.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2015-09-11 17:07
==================== End of FRST.txt ============================