2015-07-10 12:59 - 2015-07-10 12:59 - 00068096 _____ (Microsoft Corporation) C:\Windows\system32\EnterpriseDesktopAppMgmtCSP.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00067936 _____ (Microsoft Corporation) C:\Windows\system32\gacinstall.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00067584 _____ (Microsoft Corporation) C:\Windows\system32\sc.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00067584 _____ (Microsoft Corporation) C:\Windows\system32\drvcfg.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\NapiNSP.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00066912 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ULIAGPKX.SYS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066912 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\GAGP30KX.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00066594 _____ C:\Windows\SysWOW64\C_874.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066594 _____ C:\Windows\SysWOW64\C_869.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066594 _____ C:\Windows\SysWOW64\C_866.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066594 _____ C:\Windows\SysWOW64\C_865.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066594 _____ C:\Windows\SysWOW64\C_864.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066594 _____ C:\Windows\SysWOW64\C_863.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066594 _____ C:\Windows\SysWOW64\C_862.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066594 _____ C:\Windows\SysWOW64\C_861.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066594 _____ C:\Windows\SysWOW64\C_860.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066594 _____ C:\Windows\SysWOW64\C_858.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066594 _____ C:\Windows\SysWOW64\C_857.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066594 _____ C:\Windows\SysWOW64\C_855.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066594 _____ C:\Windows\SysWOW64\C_852.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066594 _____ C:\Windows\SysWOW64\C_850.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066594 _____ C:\Windows\SysWOW64\C_775.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066594 _____ C:\Windows\SysWOW64\C_737.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066594 _____ C:\Windows\SysWOW64\C_720.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066594 _____ C:\Windows\system32\C_874.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066594 _____ C:\Windows\system32\C_869.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066594 _____ C:\Windows\system32\C_866.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066594 _____ C:\Windows\system32\C_865.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066594 _____ C:\Windows\system32\C_864.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066594 _____ C:\Windows\system32\C_863.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066594 _____ C:\Windows\system32\C_862.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066594 _____ C:\Windows\system32\C_861.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066594 _____ C:\Windows\system32\C_860.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066594 _____ C:\Windows\system32\C_858.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066594 _____ C:\Windows\system32\C_857.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066594 _____ C:\Windows\system32\C_855.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066594 _____ C:\Windows\system32\C_852.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066594 _____ C:\Windows\system32\C_850.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066594 _____ C:\Windows\system32\C_775.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066594 _____ C:\Windows\system32\C_737.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066594 _____ C:\Windows\system32\C_720.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\umpoext.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\inetmib1.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\fhlisten.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\fhautoplay.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00066400 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\UAGP35.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00066082 _____ C:\Windows\SysWOW64\C_708.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066082 _____ C:\Windows\SysWOW64\C_28605.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066082 _____ C:\Windows\SysWOW64\c_28603.nls
2015-07-10 12:59 - 2015-07-10 12:59 - 00066082 _____ C:\Windows\SysWOW64\C_28599.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066082 _____ C:\Windows\SysWOW64\C_28598.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066082 _____ C:\Windows\SysWOW64\C_28597.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066082 _____ C:\Windows\SysWOW64\C_28596.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066082 _____ C:\Windows\SysWOW64\C_28595.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066082 _____ C:\Windows\SysWOW64\C_28594.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066082 _____ C:\Windows\SysWOW64\C_28593.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066082 _____ C:\Windows\SysWOW64\C_28592.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066082 _____ C:\Windows\SysWOW64\C_28591.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066082 _____ C:\Windows\SysWOW64\C_21866.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066082 _____ C:\Windows\SysWOW64\C_20866.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066082 _____ C:\Windows\SysWOW64\C_20127.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066082 _____ C:\Windows\SysWOW64\C_1258.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066082 _____ C:\Windows\SysWOW64\C_1257.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066082 _____ C:\Windows\SysWOW64\C_1256.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066082 _____ C:\Windows\SysWOW64\C_1255.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066082 _____ C:\Windows\SysWOW64\C_1254.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066082 _____ C:\Windows\SysWOW64\C_1253.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066082 _____ C:\Windows\SysWOW64\C_1251.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066082 _____ C:\Windows\SysWOW64\C_1250.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066082 _____ C:\Windows\system32\C_875.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066082 _____ C:\Windows\system32\C_870.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066082 _____ C:\Windows\system32\C_708.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066082 _____ C:\Windows\system32\C_500.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066082 _____ C:\Windows\system32\C_28605.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066082 _____ C:\Windows\system32\c_28603.nls
2015-07-10 12:59 - 2015-07-10 12:59 - 00066082 _____ C:\Windows\system32\C_28599.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066082 _____ C:\Windows\system32\C_28598.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066082 _____ C:\Windows\system32\C_28597.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066082 _____ C:\Windows\system32\C_28596.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066082 _____ C:\Windows\system32\C_28595.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066082 _____ C:\Windows\system32\C_28594.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066082 _____ C:\Windows\system32\C_28593.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066082 _____ C:\Windows\system32\C_28592.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066082 _____ C:\Windows\system32\C_28591.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066082 _____ C:\Windows\system32\C_21866.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066082 _____ C:\Windows\system32\C_21027.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066082 _____ C:\Windows\system32\C_21025.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066082 _____ C:\Windows\system32\C_20924.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066082 _____ C:\Windows\system32\C_20905.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066082 _____ C:\Windows\system32\C_20880.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066082 _____ C:\Windows\system32\C_20871.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066082 _____ C:\Windows\system32\C_20866.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066082 _____ C:\Windows\system32\C_20838.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066082 _____ C:\Windows\system32\C_20833.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066082 _____ C:\Windows\system32\C_20424.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066082 _____ C:\Windows\system32\C_20423.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066082 _____ C:\Windows\system32\C_20420.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066082 _____ C:\Windows\system32\C_20297.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066082 _____ C:\Windows\system32\C_20290.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066082 _____ C:\Windows\system32\C_20285.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066082 _____ C:\Windows\system32\C_20284.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066082 _____ C:\Windows\system32\C_20280.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066082 _____ C:\Windows\system32\C_20278.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066082 _____ C:\Windows\system32\C_20277.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066082 _____ C:\Windows\system32\C_20273.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066082 _____ C:\Windows\system32\C_20269.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066082 _____ C:\Windows\system32\C_20127.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066082 _____ C:\Windows\system32\C_20108.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066082 _____ C:\Windows\system32\C_20107.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066082 _____ C:\Windows\system32\C_20106.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066082 _____ C:\Windows\system32\C_20105.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066082 _____ C:\Windows\system32\C_1258.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066082 _____ C:\Windows\system32\C_1257.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066082 _____ C:\Windows\system32\C_1256.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066082 _____ C:\Windows\system32\C_1255.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066082 _____ C:\Windows\system32\C_1254.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066082 _____ C:\Windows\system32\C_1253.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066082 _____ C:\Windows\system32\C_1251.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066082 _____ C:\Windows\system32\C_1250.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066082 _____ C:\Windows\system32\C_1149.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066082 _____ C:\Windows\system32\C_1148.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066082 _____ C:\Windows\system32\C_1147.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066082 _____ C:\Windows\system32\C_1146.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066082 _____ C:\Windows\system32\C_1145.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066082 _____ C:\Windows\system32\C_1144.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066082 _____ C:\Windows\system32\C_1143.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066082 _____ C:\Windows\system32\C_1142.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066082 _____ C:\Windows\system32\C_1141.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066082 _____ C:\Windows\system32\C_1140.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066082 _____ C:\Windows\system32\C_1047.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066082 _____ C:\Windows\system32\C_1026.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066082 _____ C:\Windows\system32\C_10082.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066082 _____ C:\Windows\system32\C_10081.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066082 _____ C:\Windows\system32\C_10079.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066082 _____ C:\Windows\system32\C_10029.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066082 _____ C:\Windows\system32\C_10021.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066082 _____ C:\Windows\system32\C_10017.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066082 _____ C:\Windows\system32\C_10010.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066082 _____ C:\Windows\system32\C_10007.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066082 _____ C:\Windows\system32\C_10006.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066082 _____ C:\Windows\system32\C_10005.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066082 _____ C:\Windows\system32\C_10004.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066082 _____ C:\Windows\system32\C_10000.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066082 _____ C:\Windows\system32\C_037.NLS
2015-07-10 12:59 - 2015-07-10 12:59 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\vmictimeprovider.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\OnDemandConnRouteHelper.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\fthsvc.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\execmodelproxy.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00065698 _____ C:\Windows\system32\normnfkd.nls
2015-07-10 12:59 - 2015-07-10 12:59 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\WwanRadioManager.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\WlanRadioManager.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\stclient.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\l2nacp.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bthmodem.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00065024 _____ (Microsoft Corporation) C:\Windows\system32\MSAlacEncoder.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00065024 _____ (Microsoft Corporation) C:\Windows\system32\hdwwiz.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00065024 _____ (Microsoft Corporation) C:\Windows\system32\eappprxy.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00064512 _____ (Microsoft Corporation) C:\Windows\system32\ssdpapi.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00064512 _____ (Microsoft Corporation) C:\Windows\system32\offreg.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00064512 _____ (Microsoft Corporation) C:\Windows\system32\ihvrilproxy.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00064352 _____ (Hewlett-Packard Company) C:\Windows\system32\Drivers\HpSAMD.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\xolehlp.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\tzsync.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Synth3dVsc.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\lltdio.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00063840 _____ (Marvell Semiconductor, Inc.) C:\Windows\system32\Drivers\mvumis.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00063488 _____ (Microsoft Corporation) C:\Windows\system32\xwizard.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00063488 _____ (Microsoft Corporation) C:\Windows\system32\tzutil.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00063488 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndisuio.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00063488 _____ (Microsoft Corporation) C:\Windows\system32\dmwappushsvc.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00063328 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\AGP440.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00063081 _____ C:\Windows\system32\certlm.msc
2015-07-10 12:59 - 2015-07-10 12:59 - 00063070 _____ C:\Windows\system32\certmgr.msc
2015-07-10 12:59 - 2015-07-10 12:59 - 00062976 _____ (Microsoft Corporation) C:\Windows\system32\wsnmp32.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00062976 _____ (Microsoft Corporation) C:\Windows\system32\wshbth.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00062976 _____ (Microsoft Corporation) C:\Windows\system32\dmclient.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00062816 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fsdepends.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Background.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\rtutils.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00062304 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\kbdclass.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00061952 _____ (Microsoft Corporation) C:\Windows\system32\vss_ps.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00061952 _____ (Microsoft Corporation) C:\Windows\system32\rasmbmgr.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00061952 _____ (Microsoft Corporation) C:\Windows\bfsvc.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00061440 _____ (Microsoft Corporation) C:\Windows\system32\WsmRes.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00061440 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Management.Lockdown.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00061440 _____ (Microsoft Corporation) C:\Windows\system32\takeown.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00061440 _____ (Microsoft Corporation) C:\Windows\system32\fdPnp.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00061440 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\TsUsbFlt.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00060928 _____ (Microsoft Corporation) C:\Windows\system32\srumapi.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00060928 _____ (Microsoft Corporation) C:\Windows\system32\PnPUnattend.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00060928 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndproxy.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\fhtask.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\dot3dlg.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00060256 _____ (Microsoft Corporation) C:\Windows\system32\fmifs.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00059904 _____ (Microsoft Corporation) C:\Windows\system32\energyprov.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00059904 _____ (Microsoft Corporation) C:\Windows\system32\AepRoam.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00059744 _____ (Avago Technologies) C:\Windows\system32\Drivers\megasas.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00059392 _____ (Microsoft Corporation) C:\Windows\system32\dot3gpclnt.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00059232 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mouclass.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00059232 _____ (Mellanox) C:\Windows\system32\Drivers\winverbs.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00058880 _____ (Microsoft Corporation) C:\Windows\system32\TaskSchdPS.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00058880 _____ (Microsoft Corporation) C:\Windows\system32\devrtl.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00058720 _____ (Avago Technologies) C:\Windows\system32\Drivers\percsas3i.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00058368 _____ (Microsoft Corporation) C:\Windows\system32\vdsvd.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00058368 _____ (Microsoft Corporation) C:\Windows\system32\cmutil.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00058208 _____ (LSI Corporation) C:\Windows\system32\Drivers\percsas2i.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00057856 _____ (Microsoft Corporation) C:\Windows\system32\umpowmi.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00057856 _____ (Microsoft Corporation) C:\Windows\system32\ucmhc.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00057344 _____ (Microsoft Corporation) C:\Windows\system32\PNPXAssocPrx.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00057344 _____ (Microsoft Corporation) C:\Windows\system32\networkitemfactory.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00057344 _____ (Microsoft Corporation) C:\Windows\system32\MSAlacDecoder.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00057344 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\umbus.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00057344 _____ (Microsoft Corporation) C:\Windows\system32\bitsigd.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00057184 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netbios.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\pdhui.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\fwcfg.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\fhcleanup.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\BitsProxy.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00056320 _____ (Microsoft Corporation) C:\Windows\system32\xmlfilter.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00056320 _____ (Microsoft Corporation) C:\Windows\system32\IoTAssignedAccessLockFramework.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00056320 _____ (Microsoft Corporation) C:\Windows\system32\dmintf.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00055808 _____ (Microsoft Corporation) C:\Windows\system32\WudfSMCClassExt.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00055808 _____ (Microsoft Corporation) C:\Windows\system32\setx.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00055808 _____ (Microsoft Corporation) C:\Windows\system32\rilproxy.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00055808 _____ (Microsoft Corporation) C:\Windows\system32\provtool.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00055808 _____ (Microsoft Corporation) C:\Windows\system32\ftp.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00055808 _____ (Microsoft Corporation) C:\Windows\system32\acppage.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00055803 _____ C:\Windows\system32\srms.dat
2015-07-10 12:59 - 2015-07-10 12:59 - 00055296 _____ (Microsoft Corporation) C:\Windows\system32\eeutil.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00055296 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\BasicDisplay.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00055296 _____ (Microsoft Corporation) C:\Windows\system32\DAConn.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\ndiscapCfg.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00054272 _____ (Microsoft Corporation) C:\Windows\system32\signdrv.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00054272 _____ (Microsoft Corporation) C:\Windows\system32\cscapi.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\prauthproviders.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\mfh263enc.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\dcpapi.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00052736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSAlacEncoder.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\MbaeXmlParser.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\luainstall.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\Wwanpref.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\RemovableMediaProvisioningPlugin.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\pnppolicy.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpipreg.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\cmdl32.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\wldp.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\dmocx.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\dmloader.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00051552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pciidex.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\lodctr.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidi2c.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00050688 _____ (Microsoft Corporation) C:\Windows\system32\NAPCRYPT.DLL
2015-07-10 12:59 - 2015-07-10 12:59 - 00050688 _____ (Microsoft Corporation) C:\Windows\system32\microsoft-windows-pdc.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00050688 _____ (Microsoft Corporation) C:\Windows\system32\lltdapi.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\WcnNetsh.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\SortWindows61.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\PSModuleDiscoveryProvider.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndiscap.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00050144 _____ (Microsoft Corporation) C:\Windows\system32\iri.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00050112 _____ C:\Windows\system32\normnfc.nls
2015-07-10 12:59 - 2015-07-10 12:59 - 00050016 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidinterrupt.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00049664 _____ (Microsoft Corporation) C:\Windows\system32\xcopy.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00049664 _____ (Microsoft Corporation) C:\Windows\system32\forfiles.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00049664 _____ (Microsoft Corporation) C:\Windows\system32\catsrvps.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00049152 _____ (Microsoft Corporation) C:\Windows\system32\winrs.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00049152 _____ (Microsoft Corporation) C:\Windows\system32\iaspolcy.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\pcadm.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\qwavedrv.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\circlass.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\amsi.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\vpnikeapi.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\sfc_os.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\kmddsp.tsp
2015-07-10 12:59 - 2015-07-10 12:59 - 00047679 _____ C:\Windows\system32\diskmgmt.msc
2015-07-10 12:59 - 2015-07-10 12:59 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSAlacDecoder.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00047616 _____ (Microsoft Corporation) C:\Windows\system32\typeperf.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00047616 _____ (Microsoft Corporation) C:\Windows\system32\BackgroundMediaPolicy.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00047104 _____ (Microsoft Corporation) C:\Windows\system32\CredentialMigrationHandler.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00046592 _____ (Microsoft Corporation) C:\Windows\system32\SortServer2003Compat.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00046592 _____ (Microsoft Corporation) C:\Windows\system32\rrinstaller.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00046592 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidir.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00046592 _____ (Microsoft Corporation) C:\Windows\system32\APHostClient.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00046432 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msgpiowin32.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00046080 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Playback.ProxyStub.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00046080 _____ (Microsoft Corporation) C:\Windows\system32\perfctrs.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00046080 _____ (Microsoft Corporation) C:\Windows\system32\pcaui.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00046080 _____ (Microsoft Corporation) C:\Windows\system32\nci.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00046080 _____ (Microsoft Corporation) C:\Windows\system32\mspatcha.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00045920 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vmstorfl.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00045568 _____ (Microsoft Corporation) C:\Windows\system32\wmiclnt.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00045568 _____ (Microsoft Corporation) C:\Windows\system32\wfdprov.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00045568 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbGDCoInstaller.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00045568 _____ (Microsoft Corporation) C:\Windows\system32\AutoWorkplace.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00045536 _____ (Microsoft Corporation) C:\Windows\system32\kernel.appcore.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00045056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfh263enc.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00045056 _____ (Microsoft Corporation) C:\Windows\system32\musdialoghandlers.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00045056 _____ (Microsoft Corporation) C:\Windows\system32\cmlua.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00045056 _____ (Microsoft Corporation) C:\Windows\system32\cipher.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00044896 _____ (Silicon Integrated Systems Corp.) C:\Windows\system32\Drivers\sisraid2.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00044568 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdBoot.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00044544 _____ (Microsoft Corporation) C:\Windows\system32\uicom.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00044544 _____ (Microsoft Corporation) C:\Windows\system32\pcacli.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00044544 _____ (Microsoft Corporation) C:\Windows\system32\KnobsCsp.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00044384 _____ (Microsoft Corporation) C:\Windows\system32\kdusb.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00044032 _____ C:\Windows\system32\Drivers\Udecx.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\wsplib.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\Websocket.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\tpmcompc.dll
Shooper pro
Re: Shooper pro
2015-07-10 12:59 - 2015-07-10 12:59 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\sxshared.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\SetNetworkLocation.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\rdrleakdiag.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\MsiCofire.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\fhuxcommon.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00043872 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mssmbios.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00043872 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\intelpep.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00043566 _____ C:\Windows\system32\normnfd.nls
2015-07-10 12:59 - 2015-07-10 12:59 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\rasmxs.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\ProximityServicePal.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00043440 _____ (Microsoft Corporation) C:\Windows\system32\tbs.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00043131 _____ C:\Windows\mib.bin
2015-07-10 12:59 - 2015-07-10 12:59 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\unlodctr.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\ucsvc.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\relog.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\cmmon32.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00042848 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vdrvroot.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00042496 _____ (Microsoft Corporation) C:\Windows\system32\traffic.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00042496 _____ (Microsoft Corporation) C:\Windows\system32\SyncProxy.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00042496 _____ (Microsoft Corporation) C:\Windows\system32\sfc.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00042496 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\BthAvrcpTg.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00042496 _____ (Microsoft Corporation) C:\Windows\system32\DafDnsSd.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00042496 _____ (Microsoft Corporation) C:\Windows\system32\cmgrcspps.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00041984 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\modem.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00041840 _____ (Microsoft Corporation) C:\Windows\system32\dsclient.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00041824 _____ (Microsoft Corporation) C:\Windows\system32\cfmifs.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00041587 _____ C:\Windows\system32\azman.msc
2015-07-10 12:59 - 2015-07-10 12:59 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\upnpcont.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\TimeBrokerClient.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\BasicRender.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00040960 _____ (Microsoft Corporation) C:\Windows\system32\where.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00040960 _____ (Microsoft Corporation) C:\Windows\system32\TpmTasks.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00040960 _____ (Microsoft Corporation) C:\Windows\system32\perfproc.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00040960 _____ (Microsoft Corporation) C:\Windows\system32\NETSTAT.EXE
2015-07-10 12:59 - 2015-07-10 12:59 - 00040960 _____ (Microsoft Corporation) C:\Windows\system32\DiagnosticLogCSP.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\perfos.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\perfdisk.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\mimefilt.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\eventcreate.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\cnvfat.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00040288 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storufs.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\waitfor.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\UVoipBackgroundManagerPolicy.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vwifimp.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidparse.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\deviceassociation.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00039856 _____ (Microsoft Corporation) C:\Windows\system32\svchost.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00039424 _____ (Microsoft Corporation) C:\Windows\system32\microsoft-windows-kernel-pnp-events.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00039424 _____ (Microsoft Corporation) C:\Windows\system32\compact.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00038912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rrinstaller.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00038912 _____ (Microsoft Corporation) C:\Windows\system32\SebBackgroundManagerPolicy.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00038912 _____ (Microsoft Corporation) C:\Windows\system32\nshhttp.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00038912 _____ (Microsoft Corporation) C:\Windows\system32\npmproxy.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00038912 _____ (Microsoft Corporation) C:\Windows\system32\NetEvtFwdr.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00038912 _____ (Microsoft Corporation) C:\Windows\system32\dsauth.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00038912 _____ (Microsoft Corporation) C:\Windows\system32\dmcfghost.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00038912 _____ (Microsoft Corporation) C:\Windows\system32\ddodiag.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00038752 _____ (Microsoft Corporation) C:\Windows\system32\kd_02_1969.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00038400 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\monitor.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00038400 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidusb.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00038400 _____ (Microsoft Corporation) C:\Windows\system32\ByteCodeGenerator.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00038400 _____ (Microsoft Corporation) C:\Windows\system32\bthudtask.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00038128 _____ (Intel Corporation) C:\Windows\system32\Drivers\iaLPSSi_GPIO.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\WcnEapPeerProxy.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\dtsh.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\DmApiSetExtImpl.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\cmcfg32.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00037728 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Diskdump.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00037376 _____ (Microsoft Corporation) C:\Windows\system32\wsmprovhost.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00037376 _____ (Microsoft Corporation) C:\Windows\system32\netcfg.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00037376 _____ (Microsoft Corporation) C:\Windows\system32\icacls.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00037376 _____ (Microsoft Corporation) C:\Windows\system32\EasPoliciesBroker.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\witnesswmiv2provider.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\SetProxyCredential.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBCAMD2.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\kbdhid.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\BackgroundTransferHost.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00036704 _____ (Microsoft Corporation) C:\Windows\system32\kd_0C_8086.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00036704 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\battc.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00036352 _____ (Microsoft Corporation) C:\Windows\system32\WcnEapAuthProxy.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00036352 _____ (Microsoft Corporation) C:\Windows\system32\format.com
2015-07-10 12:59 - 2015-07-10 12:59 - 00036352 _____ (Microsoft Corporation) C:\Windows\system32\datusage.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00036192 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storvsc.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00035840 _____ (Microsoft Corporation) C:\Windows\system32\sdhcinst.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00035840 _____ (Microsoft Corporation) C:\Windows\system32\RacEngn.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00035840 _____ (Microsoft Corporation) C:\Windows\system32\mfcsubs.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00035840 _____ (Microsoft Corporation) C:\Windows\system32\FDResPub.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00035840 _____ (Microsoft Corporation) C:\Windows\system32\FdDevQuery.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00035840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\filetrace.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00035840 _____ (Microsoft Corporation) C:\Windows\system32\DeviceDisplayStatusManager.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00035664 _____ (Microsoft Corporation) C:\Windows\system32\mfpmp.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00035328 _____ (Microsoft Corporation) C:\Windows\system32\winbrand.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00035328 _____ (Microsoft Corporation) C:\Windows\system32\ndfetw.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00035328 _____ (Microsoft Corporation) C:\Windows\system32\Apphlpdm.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00035168 _____ (Microsoft Corporation) C:\Windows\system32\kd_02_15b3.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00035168 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wimmount.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00034816 _____ (Microsoft Corporation) C:\Windows\system32\sxssrv.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00034816 _____ (Microsoft Corporation) C:\Windows\system32\rasphone.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00034816 _____ (Microsoft Corporation) C:\Windows\system32\pots.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00034816 _____ (Microsoft Corporation) C:\Windows\system32\pnpui.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00034816 _____ (Microsoft Corporation) C:\Windows\system32\ipconfig.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00034816 _____ (Microsoft Corporation) C:\Windows\system32\hid.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00034816 _____ (Microsoft Corporation) C:\Windows\system32\extrac32.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00034816 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbuhci.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Management.Workplace.WorkplaceSettings.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\hidserv.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\findstr.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\RNDISMP.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\choice.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dmvsc.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00033280 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\TsUsbGD.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00033280 _____ (Microsoft Corporation) C:\Windows\system32\DmNotificationBroker.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00033280 _____ (Microsoft Corporation) C:\Windows\system32\cofiredm.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00032768 _____ (Microsoft Corporation) C:\Windows\system32\snmpapi.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00032768 _____ (Microsoft Corporation) C:\Windows\system32\rpcnsh.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00032768 _____ (Microsoft Corporation) C:\Windows\system32\cacls.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00032256 _____ (Microsoft Corporation) C:\Windows\system32\rtffilt.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00032256 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mouhid.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00032256 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fdc.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00032256 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\buttonconverter.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00032256 _____ (Microsoft Corporation) C:\Windows\system32\CSystemEventsBrokerClient.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00032256 _____ (Microsoft Corporation) C:\Windows\system32\bthpanapi.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00031744 _____ (Microsoft Corporation) C:\Windows\system32\WsmAgent.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00031744 _____ (Microsoft Corporation) C:\Windows\system32\WofUtil.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00031744 _____ (Microsoft Corporation) C:\Windows\system32\msisip.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00031744 _____ (Microsoft Corporation) C:\Windows\system32\mode.com
2015-07-10 12:59 - 2015-07-10 12:59 - 00031744 _____ (Microsoft Corporation) C:\Windows\system32\ias.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00031744 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vhf.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00031744 _____ (Microsoft Corporation) C:\Windows\system32\DDOIProxy.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00031744 _____ (Microsoft Corporation) C:\Windows\system32\APHostRes.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00031584 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\winhv.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00031528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfpmp.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\mtxdm.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\InprocLogger.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\ifmon.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tape.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fcvsc.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00031072 _____ (Promise Technology, Inc.) C:\Windows\system32\Drivers\stexstor.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\timeout.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\sxsstore.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\rasser.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\fdWNet.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\BthhfHid.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\aeevts.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\wmiprop.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\ureg.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\syncmlhook.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\RpcPing.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\eapprovp.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\clip.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00029696 _____ (Microsoft Corporation) C:\Windows\system32\nlmproxy.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00029696 _____ (Microsoft Corporation) C:\Windows\system32\ncuprov.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00029696 _____ (Microsoft Corporation) C:\Windows\system32\MSAMRNBSink.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00029696 _____ (Microsoft Corporation) C:\Windows\system32\LldpNotify.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00029696 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wacompen.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00029536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbohci.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\CmBatt.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\Dot3Conn.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\cscdll.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\cmpbk32.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00029024 _____ (Microsoft Corporation) C:\Windows\system32\SysResetErr.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00029024 _____ (Microsoft Corporation) C:\Windows\system32\kd_02_19a2.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00029024 _____ (Microsoft Corporation) C:\Windows\system32\kd_02_10df.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\winrshost.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\netiougc.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\fsutilext.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\dswave.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00028512 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\urschipidea.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00028512 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\uefi.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00028512 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\atapi.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\Windows.System.Profile.SystemManufacturers.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Management.Provisioning.ProxyStub.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\more.com
2015-07-10 12:59 - 2015-07-10 12:59 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidbatt.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\asyncmac.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00027944 _____ (Microsoft Corporation) C:\Windows\system32\vmbuspipe.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00027648 _____ (Microsoft Corporation) C:\Windows\system32\pcalua.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00027648 _____ (Microsoft Corporation) C:\Windows\system32\CheckNetIsolation.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00027648 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\sermouse.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00027648 _____ (Microsoft Corporation) C:\Windows\system32\dmutil.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00027488 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\urssynopsys.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00027136 _____ (Microsoft Corporation) C:\Windows\system32\ReAgentc.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00027136 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbprint.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00027136 _____ (Microsoft Corporation) C:\Windows\system32\dmoleaututils.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00027136 _____ (Microsoft Corporation) C:\Windows\system32\DeviceEject.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00026976 _____ (Microsoft Corporation) C:\Windows\system32\streamci.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00026976 _____ (Mellanox) C:\Windows\system32\Drivers\winmad.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00026976 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\amdxata.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00026624 _____ (Microsoft Corporation) C:\Windows\system32\winusb.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00026624 _____ (Microsoft Corporation) C:\Windows\system32\vdsldr.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00026624 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\npsvctrig.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00026624 _____ (Microsoft Corporation) C:\Windows\system32\delegatorprovider.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00026624 _____ (Microsoft Corporation) C:\Windows\system32\davhlpr.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\WINSRPC.DLL
2015-07-10 12:59 - 2015-07-10 12:59 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\storagewmi_passthru.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\osbaseln.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\msimsg.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\MDMAgent.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\chkwudrv.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\chkdsk.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vwifibus.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\HyperVideo.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\flpydisk.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\DefaultPrinterProvider.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\comp.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\ARP.EXE
2015-07-10 12:59 - 2015-07-10 12:59 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\WindowsUpdateElevatedInstaller.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\perfnet.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\netbtugc.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\NcdProp.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\fc.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\EnterpriseAppMgmtClient.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\xinputhid.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndistapi.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\bitsperf.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00025280 _____ (Microsoft Corporation) C:\Windows\system32\CompatTelRunner.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00025088 _____ (Microsoft Corporation) C:\Windows\system32\WiFiConfigSP.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00025088 _____ (Microsoft Corporation) C:\Windows\system32\sdbinst.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00025088 _____ (Microsoft Corporation) C:\Windows\system32\irmon.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00025088 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\VMBusHID.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00025088 _____ (Microsoft Corporation) C:\Windows\system32\dmcfgutils.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00024928 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tbs.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSAMRNBSink.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\TtlsExt.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\sisbkup.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\serwvdrv.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\Register-CimProvider.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\serenum.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00024416 _____ (Microsoft Corporation) C:\Windows\system32\kd1394.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00024064 _____ (Microsoft Corporation) C:\Windows\system32\sort.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00024064 _____ (Microsoft Corporation) C:\Windows\system32\ROUTE.EXE
2015-07-10 12:59 - 2015-07-10 12:59 - 00023552 _____ (Microsoft Corporation) C:\Windows\system32\wlansvcpal.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00023552 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Custom.ps.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00023552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mcd.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00023552 _____ (Microsoft Corporation) C:\Windows\system32\cofire.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00023552 _____ (Microsoft Corporation) C:\Windows\system32\adhapi.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00023040 _____ (Microsoft Corporation) C:\Windows\system32\SmsDeviceAccessRevocation.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00023040 _____ (Microsoft Corporation) C:\Windows\system32\mgmtapi.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00023040 _____ (Microsoft Corporation) C:\Windows\system32\MCCSPal.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00023040 _____ (Microsoft Corporation) C:\Windows\system32\lmhsvc.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00023040 _____ (Microsoft Corporation) C:\Windows\system32\fhsvcctl.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00023040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\kdnic.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00023040 _____ (Microsoft Corporation) C:\Windows\system32\acu.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\xmlprovi.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\umdmxfrm.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\spopk.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\PnPutil.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\msdtcVSp1res.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ws2ifsl.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\dmprocessxmlfiltered.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00022368 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\isapnp.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\uniplat.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\replace.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\rasctrs.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\ndproxystub.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\energytask.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usb8023.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\BtaMPM.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\SetNetworkLocation.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\rdrleakdiag.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\MsiCofire.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\fhuxcommon.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00043872 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mssmbios.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00043872 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\intelpep.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00043566 _____ C:\Windows\system32\normnfd.nls
2015-07-10 12:59 - 2015-07-10 12:59 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\rasmxs.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\ProximityServicePal.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00043440 _____ (Microsoft Corporation) C:\Windows\system32\tbs.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00043131 _____ C:\Windows\mib.bin
2015-07-10 12:59 - 2015-07-10 12:59 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\unlodctr.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\ucsvc.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\relog.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\cmmon32.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00042848 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vdrvroot.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00042496 _____ (Microsoft Corporation) C:\Windows\system32\traffic.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00042496 _____ (Microsoft Corporation) C:\Windows\system32\SyncProxy.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00042496 _____ (Microsoft Corporation) C:\Windows\system32\sfc.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00042496 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\BthAvrcpTg.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00042496 _____ (Microsoft Corporation) C:\Windows\system32\DafDnsSd.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00042496 _____ (Microsoft Corporation) C:\Windows\system32\cmgrcspps.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00041984 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\modem.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00041840 _____ (Microsoft Corporation) C:\Windows\system32\dsclient.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00041824 _____ (Microsoft Corporation) C:\Windows\system32\cfmifs.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00041587 _____ C:\Windows\system32\azman.msc
2015-07-10 12:59 - 2015-07-10 12:59 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\upnpcont.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\TimeBrokerClient.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\BasicRender.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00040960 _____ (Microsoft Corporation) C:\Windows\system32\where.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00040960 _____ (Microsoft Corporation) C:\Windows\system32\TpmTasks.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00040960 _____ (Microsoft Corporation) C:\Windows\system32\perfproc.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00040960 _____ (Microsoft Corporation) C:\Windows\system32\NETSTAT.EXE
2015-07-10 12:59 - 2015-07-10 12:59 - 00040960 _____ (Microsoft Corporation) C:\Windows\system32\DiagnosticLogCSP.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\perfos.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\perfdisk.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\mimefilt.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\eventcreate.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\cnvfat.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00040288 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storufs.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\waitfor.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\UVoipBackgroundManagerPolicy.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vwifimp.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidparse.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\deviceassociation.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00039856 _____ (Microsoft Corporation) C:\Windows\system32\svchost.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00039424 _____ (Microsoft Corporation) C:\Windows\system32\microsoft-windows-kernel-pnp-events.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00039424 _____ (Microsoft Corporation) C:\Windows\system32\compact.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00038912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rrinstaller.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00038912 _____ (Microsoft Corporation) C:\Windows\system32\SebBackgroundManagerPolicy.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00038912 _____ (Microsoft Corporation) C:\Windows\system32\nshhttp.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00038912 _____ (Microsoft Corporation) C:\Windows\system32\npmproxy.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00038912 _____ (Microsoft Corporation) C:\Windows\system32\NetEvtFwdr.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00038912 _____ (Microsoft Corporation) C:\Windows\system32\dsauth.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00038912 _____ (Microsoft Corporation) C:\Windows\system32\dmcfghost.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00038912 _____ (Microsoft Corporation) C:\Windows\system32\ddodiag.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00038752 _____ (Microsoft Corporation) C:\Windows\system32\kd_02_1969.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00038400 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\monitor.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00038400 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidusb.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00038400 _____ (Microsoft Corporation) C:\Windows\system32\ByteCodeGenerator.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00038400 _____ (Microsoft Corporation) C:\Windows\system32\bthudtask.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00038128 _____ (Intel Corporation) C:\Windows\system32\Drivers\iaLPSSi_GPIO.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\WcnEapPeerProxy.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\dtsh.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\DmApiSetExtImpl.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\cmcfg32.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00037728 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Diskdump.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00037376 _____ (Microsoft Corporation) C:\Windows\system32\wsmprovhost.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00037376 _____ (Microsoft Corporation) C:\Windows\system32\netcfg.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00037376 _____ (Microsoft Corporation) C:\Windows\system32\icacls.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00037376 _____ (Microsoft Corporation) C:\Windows\system32\EasPoliciesBroker.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\witnesswmiv2provider.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\SetProxyCredential.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBCAMD2.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\kbdhid.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\BackgroundTransferHost.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00036704 _____ (Microsoft Corporation) C:\Windows\system32\kd_0C_8086.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00036704 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\battc.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00036352 _____ (Microsoft Corporation) C:\Windows\system32\WcnEapAuthProxy.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00036352 _____ (Microsoft Corporation) C:\Windows\system32\format.com
2015-07-10 12:59 - 2015-07-10 12:59 - 00036352 _____ (Microsoft Corporation) C:\Windows\system32\datusage.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00036192 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storvsc.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00035840 _____ (Microsoft Corporation) C:\Windows\system32\sdhcinst.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00035840 _____ (Microsoft Corporation) C:\Windows\system32\RacEngn.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00035840 _____ (Microsoft Corporation) C:\Windows\system32\mfcsubs.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00035840 _____ (Microsoft Corporation) C:\Windows\system32\FDResPub.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00035840 _____ (Microsoft Corporation) C:\Windows\system32\FdDevQuery.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00035840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\filetrace.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00035840 _____ (Microsoft Corporation) C:\Windows\system32\DeviceDisplayStatusManager.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00035664 _____ (Microsoft Corporation) C:\Windows\system32\mfpmp.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00035328 _____ (Microsoft Corporation) C:\Windows\system32\winbrand.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00035328 _____ (Microsoft Corporation) C:\Windows\system32\ndfetw.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00035328 _____ (Microsoft Corporation) C:\Windows\system32\Apphlpdm.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00035168 _____ (Microsoft Corporation) C:\Windows\system32\kd_02_15b3.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00035168 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wimmount.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00034816 _____ (Microsoft Corporation) C:\Windows\system32\sxssrv.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00034816 _____ (Microsoft Corporation) C:\Windows\system32\rasphone.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00034816 _____ (Microsoft Corporation) C:\Windows\system32\pots.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00034816 _____ (Microsoft Corporation) C:\Windows\system32\pnpui.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00034816 _____ (Microsoft Corporation) C:\Windows\system32\ipconfig.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00034816 _____ (Microsoft Corporation) C:\Windows\system32\hid.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00034816 _____ (Microsoft Corporation) C:\Windows\system32\extrac32.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00034816 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbuhci.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Management.Workplace.WorkplaceSettings.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\hidserv.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\findstr.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\RNDISMP.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\choice.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dmvsc.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00033280 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\TsUsbGD.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00033280 _____ (Microsoft Corporation) C:\Windows\system32\DmNotificationBroker.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00033280 _____ (Microsoft Corporation) C:\Windows\system32\cofiredm.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00032768 _____ (Microsoft Corporation) C:\Windows\system32\snmpapi.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00032768 _____ (Microsoft Corporation) C:\Windows\system32\rpcnsh.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00032768 _____ (Microsoft Corporation) C:\Windows\system32\cacls.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00032256 _____ (Microsoft Corporation) C:\Windows\system32\rtffilt.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00032256 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mouhid.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00032256 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fdc.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00032256 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\buttonconverter.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00032256 _____ (Microsoft Corporation) C:\Windows\system32\CSystemEventsBrokerClient.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00032256 _____ (Microsoft Corporation) C:\Windows\system32\bthpanapi.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00031744 _____ (Microsoft Corporation) C:\Windows\system32\WsmAgent.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00031744 _____ (Microsoft Corporation) C:\Windows\system32\WofUtil.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00031744 _____ (Microsoft Corporation) C:\Windows\system32\msisip.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00031744 _____ (Microsoft Corporation) C:\Windows\system32\mode.com
2015-07-10 12:59 - 2015-07-10 12:59 - 00031744 _____ (Microsoft Corporation) C:\Windows\system32\ias.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00031744 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vhf.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00031744 _____ (Microsoft Corporation) C:\Windows\system32\DDOIProxy.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00031744 _____ (Microsoft Corporation) C:\Windows\system32\APHostRes.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00031584 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\winhv.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00031528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfpmp.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\mtxdm.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\InprocLogger.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\ifmon.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tape.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fcvsc.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00031072 _____ (Promise Technology, Inc.) C:\Windows\system32\Drivers\stexstor.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\timeout.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\sxsstore.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\rasser.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\fdWNet.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\BthhfHid.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\aeevts.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\wmiprop.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\ureg.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\syncmlhook.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\RpcPing.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\eapprovp.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\clip.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00029696 _____ (Microsoft Corporation) C:\Windows\system32\nlmproxy.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00029696 _____ (Microsoft Corporation) C:\Windows\system32\ncuprov.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00029696 _____ (Microsoft Corporation) C:\Windows\system32\MSAMRNBSink.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00029696 _____ (Microsoft Corporation) C:\Windows\system32\LldpNotify.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00029696 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wacompen.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00029536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbohci.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\CmBatt.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\Dot3Conn.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\cscdll.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\cmpbk32.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00029024 _____ (Microsoft Corporation) C:\Windows\system32\SysResetErr.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00029024 _____ (Microsoft Corporation) C:\Windows\system32\kd_02_19a2.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00029024 _____ (Microsoft Corporation) C:\Windows\system32\kd_02_10df.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\winrshost.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\netiougc.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\fsutilext.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\dswave.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00028512 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\urschipidea.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00028512 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\uefi.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00028512 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\atapi.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\Windows.System.Profile.SystemManufacturers.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Management.Provisioning.ProxyStub.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\more.com
2015-07-10 12:59 - 2015-07-10 12:59 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidbatt.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\asyncmac.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00027944 _____ (Microsoft Corporation) C:\Windows\system32\vmbuspipe.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00027648 _____ (Microsoft Corporation) C:\Windows\system32\pcalua.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00027648 _____ (Microsoft Corporation) C:\Windows\system32\CheckNetIsolation.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00027648 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\sermouse.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00027648 _____ (Microsoft Corporation) C:\Windows\system32\dmutil.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00027488 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\urssynopsys.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00027136 _____ (Microsoft Corporation) C:\Windows\system32\ReAgentc.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00027136 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbprint.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00027136 _____ (Microsoft Corporation) C:\Windows\system32\dmoleaututils.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00027136 _____ (Microsoft Corporation) C:\Windows\system32\DeviceEject.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00026976 _____ (Microsoft Corporation) C:\Windows\system32\streamci.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00026976 _____ (Mellanox) C:\Windows\system32\Drivers\winmad.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00026976 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\amdxata.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00026624 _____ (Microsoft Corporation) C:\Windows\system32\winusb.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00026624 _____ (Microsoft Corporation) C:\Windows\system32\vdsldr.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00026624 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\npsvctrig.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00026624 _____ (Microsoft Corporation) C:\Windows\system32\delegatorprovider.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00026624 _____ (Microsoft Corporation) C:\Windows\system32\davhlpr.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\WINSRPC.DLL
2015-07-10 12:59 - 2015-07-10 12:59 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\storagewmi_passthru.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\osbaseln.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\msimsg.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\MDMAgent.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\chkwudrv.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\chkdsk.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vwifibus.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\HyperVideo.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\flpydisk.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\DefaultPrinterProvider.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\comp.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\ARP.EXE
2015-07-10 12:59 - 2015-07-10 12:59 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\WindowsUpdateElevatedInstaller.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\perfnet.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\netbtugc.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\NcdProp.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\fc.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\EnterpriseAppMgmtClient.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\xinputhid.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndistapi.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\bitsperf.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00025280 _____ (Microsoft Corporation) C:\Windows\system32\CompatTelRunner.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00025088 _____ (Microsoft Corporation) C:\Windows\system32\WiFiConfigSP.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00025088 _____ (Microsoft Corporation) C:\Windows\system32\sdbinst.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00025088 _____ (Microsoft Corporation) C:\Windows\system32\irmon.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00025088 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\VMBusHID.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00025088 _____ (Microsoft Corporation) C:\Windows\system32\dmcfgutils.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00024928 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tbs.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSAMRNBSink.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\TtlsExt.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\sisbkup.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\serwvdrv.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\Register-CimProvider.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\serenum.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00024416 _____ (Microsoft Corporation) C:\Windows\system32\kd1394.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00024064 _____ (Microsoft Corporation) C:\Windows\system32\sort.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00024064 _____ (Microsoft Corporation) C:\Windows\system32\ROUTE.EXE
2015-07-10 12:59 - 2015-07-10 12:59 - 00023552 _____ (Microsoft Corporation) C:\Windows\system32\wlansvcpal.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00023552 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Custom.ps.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00023552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mcd.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00023552 _____ (Microsoft Corporation) C:\Windows\system32\cofire.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00023552 _____ (Microsoft Corporation) C:\Windows\system32\adhapi.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00023040 _____ (Microsoft Corporation) C:\Windows\system32\SmsDeviceAccessRevocation.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00023040 _____ (Microsoft Corporation) C:\Windows\system32\mgmtapi.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00023040 _____ (Microsoft Corporation) C:\Windows\system32\MCCSPal.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00023040 _____ (Microsoft Corporation) C:\Windows\system32\lmhsvc.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00023040 _____ (Microsoft Corporation) C:\Windows\system32\fhsvcctl.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00023040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\kdnic.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00023040 _____ (Microsoft Corporation) C:\Windows\system32\acu.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\xmlprovi.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\umdmxfrm.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\spopk.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\PnPutil.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\msdtcVSp1res.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ws2ifsl.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\dmprocessxmlfiltered.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00022368 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\isapnp.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\uniplat.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\replace.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\rasctrs.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\ndproxystub.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\energytask.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usb8023.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\BtaMPM.sys
Re: Shooper pro
2015-07-10 12:59 - 2015-07-10 12:59 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\convert.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00021856 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cmimcext.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00021656 _____ C:\Windows\system32\NetTrace.PLA.Diagnostics.xml
2015-07-10 12:59 - 2015-07-10 12:59 - 00021504 _____ (Microsoft Corporation) C:\Windows\system32\PING.EXE
2015-07-10 12:59 - 2015-07-10 12:59 - 00021504 _____ (Microsoft Corporation) C:\Windows\system32\nbtstat.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00021504 _____ (Microsoft Corporation) C:\Windows\system32\fdPHost.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00021504 _____ (Microsoft Corporation) C:\Windows\system32\diskperf.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00021504 _____ (Microsoft Corporation) C:\Windows\system32\bridgeunattend.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00020992 _____ (Microsoft Corporation) C:\Windows\system32\wshelper.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00020992 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.BackgroundPlayback.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00020992 _____ (Microsoft Corporation) C:\Windows\system32\rasdial.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00020992 _____ (Microsoft Corporation) C:\Windows\system32\msiltcfg.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00020992 _____ (Microsoft Corporation) C:\Windows\system32\chkntfs.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00020992 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\NdisVirtualBus.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00020992 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\genericusbfn.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00020992 _____ (Microsoft Corporation) C:\Windows\system32\attrib.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00020480 _____ (Microsoft Corporation) C:\Windows\system32\wshqos.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00020480 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Background.ps.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00020480 _____ (Microsoft Corporation) C:\Windows\system32\tree.com
2015-07-10 12:59 - 2015-07-10 12:59 - 00020480 _____ (Microsoft Corporation) C:\Windows\system32\cmstplua.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00020184 _____ (Microsoft Corporation) C:\Windows\system32\iumbase.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00019992 _____ (Microsoft Corporation) C:\Windows\system32\HalExtIntcLpioDMA.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00019968 _____ (Microsoft Corporation) C:\Windows\system32\winnlsres.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00019968 _____ (Microsoft Corporation) C:\Windows\system32\smphost.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00019968 _____ (Microsoft Corporation) C:\Windows\system32\runas.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00019968 _____ (Microsoft Corporation) C:\Windows\system32\irclass.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00019968 _____ (Microsoft Corporation) C:\Windows\system32\EsdSip.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00019968 _____ (Microsoft Corporation) C:\Windows\system32\defragproxy.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00019808 _____ (Microsoft Corporation) C:\Windows\system32\kdhv1394.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00019456 _____ (Microsoft Corporation) C:\Windows\system32\rasautou.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00019456 _____ (Microsoft Corporation) C:\Windows\system32\PATHPING.EXE
2015-07-10 12:59 - 2015-07-10 12:59 - 00019456 _____ (Microsoft Corporation) C:\Windows\system32\httpprxp.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00019456 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\irenum.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00019456 _____ (Microsoft Corporation) C:\Windows\system32\doskey.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00019296 _____ (Microsoft Corporation) C:\Windows\system32\setupetw.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00019296 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msisadrv.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00019296 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\intelide.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\wshrm.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\serialui.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\kernelceip.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\httpprxc.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\DmOmaCpMo.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00018784 _____ (Microsoft Corporation) C:\Windows\system32\dllhost.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00018656 _____ (Microsoft Corporation) C:\Windows\system32\psapi.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00018432 _____ (Microsoft Corporation) C:\Windows\system32\wsock32.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00018432 _____ (Microsoft Corporation) C:\Windows\system32\syssetup.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00018432 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00018432 _____ (Microsoft Corporation) C:\Windows\system32\netbios.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00018432 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wmiacpi.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00018432 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\sfloppy.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00018432 _____ (Microsoft Corporation) C:\Windows\system32\clb.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00017944 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WindowsTrustedRTProxy.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00017935 _____ C:\Windows\system32\EventViewer_EventDetails.xsl
2015-07-10 12:59 - 2015-07-10 12:59 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\TRACERT.EXE
2015-07-10 12:59 - 2015-07-10 12:59 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\stdole2.tlb
2015-07-10 12:59 - 2015-07-10 12:59 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\RmClient.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\mountvol.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\icsunattend.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\fhuxapi.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\dmpushproxy.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00017624 _____ (Windows (R) Win 7 DDK provider) C:\Windows\system32\Drivers\bcmfn2.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00017432 _____ (Microsoft Corporation) C:\Windows\system32\HalExtPL080.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\wowreg32.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\rasadhlp.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\print.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\nrpsrv.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\nlmsprep.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\label.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\ktmutil.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\iscsilog.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\enterpriseetw.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rasacd.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00017248 _____ (Microsoft Corporation) C:\Windows\system32\spwizres.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00017248 _____ (Microsoft Corporation) C:\Windows\system32\kd_07_1415.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00016896 _____ (Microsoft Corporation) C:\Windows\system32\secinit.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00016896 _____ (Microsoft Corporation) C:\Windows\system32\ProximityCommonPal.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00016896 _____ (Microsoft Corporation) C:\Windows\system32\hnetmon.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00016896 _____ (Microsoft Corporation) C:\Windows\system32\fsavailux.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00016896 _____ (Microsoft Corporation) C:\Windows\system32\find.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\wsmplpxy.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\subst.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\regidle.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\pstask.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\MRINFO.EXE
2015-07-10 12:59 - 2015-07-10 12:59 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\finger.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hyperkbd.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00016224 _____ (Microsoft Corporation) C:\Windows\system32\kdnet_uart16550.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00016168 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\drmkaud.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\TSChannel.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\snmptrap.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\pcwrun.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\ifsutilx.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\MTConfig.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\C_IS2022.DLL
2015-07-10 12:59 - 2015-07-10 12:59 - 00015712 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pciide.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00015360 _____ (Microsoft Corporation) C:\Windows\system32\VmApplicationHealthMonitorProxy.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00015360 _____ (Microsoft Corporation) C:\Windows\system32\spwinsat.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00015360 _____ (Microsoft Corporation) C:\Windows\system32\pnpts.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00015200 _____ (Microsoft Corporation) C:\Windows\system32\kdstub.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\wshirda.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\WpPortingLibrary.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\wlanhlp.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\winshfhc.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\winrssrv.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\TimeSyncTask.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\chcp.com
2015-07-10 12:59 - 2015-07-10 12:59 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\dnsext.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\dmcommandlineutils.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\cfmifsproxy.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\c_GSM7.DLL
2015-07-10 12:59 - 2015-07-10 12:59 - 00014552 _____ (Microsoft Corporation) C:\Windows\system32\iumdll.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\usbperf.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\SensApi.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\recover.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\HOSTNAME.EXE
2015-07-10 12:59 - 2015-07-10 12:59 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\EasPoliciesBrokerPS.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Dmpusbstor.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\DockInterface.ProxyStub.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcmonitor.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\amsiproxy.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\wmcodecdspps.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\whhelper.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\svsvc.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\ProximityRtapiPal.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mprext.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mskssrv.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\dmiso8601utils.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\dabapi.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\cmdext.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\C_ISCII.DLL
2015-07-10 12:59 - 2015-07-10 12:59 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\pcaevts.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\kd_02_1137.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\InfDefaultInstall.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\Eap3Host.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vmgencounter.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\acpipmi.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\rastlsext.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\raschapext.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\MinstoreEvents.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\microsoft-windows-battery-events.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\dstokenclean.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\umpass.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rootmdm.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mstee.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\acpitime.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\acproxy.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00012288 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00012288 _____ (Microsoft Corporation) C:\Windows\system32\TCPSVCS.EXE
2015-07-10 12:59 - 2015-07-10 12:59 - 00012288 _____ (Microsoft Corporation) C:\Windows\system32\netwphelper.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00012288 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\acpipagr.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00012288 _____ (Microsoft Corporation) C:\Windows\system32\DefaultDeviceManager.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00012128 _____ (Microsoft Corporation) C:\Windows\system32\uxlibres.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00011776 _____ (Microsoft Corporation) C:\Windows\system32\TimeDateMUICallback.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00011776 _____ (Microsoft Corporation) C:\Windows\system32\spnet.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00011776 _____ (Microsoft Corporation) C:\Windows\system32\regedt32.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00011776 _____ (Microsoft Corporation) C:\Windows\system32\msiwer.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00011776 _____ (Microsoft Corporation) C:\Windows\system32\EasPoliciesBrokerHost.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00011776 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mshidumdf.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00011776 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\errdev.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00011776 _____ (Microsoft Corporation) C:\Windows\system32\dcomcnfg.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00011264 _____ (Microsoft Corporation) C:\Windows\system32\iprtprio.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00011264 _____ (Microsoft Corporation) C:\Windows\system32\help.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00011264 _____ (Microsoft Corporation) C:\Windows\system32\CIRCoInst.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00010752 _____ (Microsoft Corporation) C:\Windows\system32\spmpm.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00010752 _____ (Microsoft Corporation) C:\Windows\system32\Locator.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00010752 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mspqm.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00010752 _____ (Microsoft Corporation) C:\Windows\system32\acledit.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmcodecdspps.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00010240 _____ (Microsoft Corporation) C:\Windows\system32\plasrv.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00010240 _____ (Microsoft Corporation) C:\Windows\system32\Nlsdl.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00010240 _____ (Microsoft Corporation) C:\Windows\system32\dllhst3g.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00010240 _____ (Microsoft Corporation) C:\Windows\system32\comcat.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00010240 _____ (Microsoft Corporation) C:\Windows\system32\AutoWorkplaceN.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\wshhyperv.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\RpcNs4.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\osuninst.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\mtxex.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\idndl.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00008704 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vms3cap.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00008704 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mshidkmdf.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00008192 _____ C:\Windows\system32\settings.dat
2015-07-10 12:59 - 2015-07-10 12:59 - 00008192 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\gpuenergydrv.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\stdole32.tlb
2015-07-10 12:59 - 2015-07-10 12:59 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\shimeng.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\microsoft-windows-hal-events.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\Firewall.cpl
2015-07-10 12:59 - 2015-07-10 12:59 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\FamilySafetyExt.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\enrolluxdll.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\microsoft-windows-storage-tiering-events.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\microsoft-windows-sleepstudy-events.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00005120 _____ (Microsoft Corporation) C:\Windows\system32\normaliz.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00004675 _____ C:\Windows\system32\wsmanconfig_schema.xml
2015-07-10 12:59 - 2015-07-10 12:59 - 00004608 _____ (Microsoft Corporation) C:\Windows\system32\ws2help.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00004608 _____ (Microsoft Corporation) C:\Windows\system32\tzsyncres.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00004608 _____ (Microsoft Corporation) C:\Windows\system32\defragres.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00004148 _____ C:\Windows\system32\psmodulediscoveryprovider.mof
2015-07-10 12:59 - 2015-07-10 12:59 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\TpmCertResources.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00004014 _____ C:\Windows\system32\xwizard.dtd
2015-07-10 12:59 - 2015-07-10 12:59 - 00003584 _____ (Microsoft Corporation) C:\Windows\system32\wlanutil.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00003584 _____ (Microsoft Corporation) C:\Windows\system32\bootstr.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00003072 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00003072 _____ (Microsoft Corporation) C:\Windows\system32\SyncRes.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00003072 _____ (Microsoft Corporation) C:\Windows\system32\sfc.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00003072 _____ (Microsoft Corporation) C:\Windows\system32\msafd.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00003072 _____ (Microsoft Corporation) C:\Windows\system32\lz32.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00003072 _____ (Microsoft Corporation) C:\Windows\system32\lltdres.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00003072 _____ (Microsoft Corporation) C:\Windows\system32\icmp.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00003072 _____ (Microsoft Corporation) C:\Windows\system32\dmdskres2.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00003072 _____ (Microsoft Corporation) C:\Windows\system32\DMAppsRes.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00003072 _____ (Microsoft Corporation) C:\Windows\system32\bridgeres.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00002560 _____ (Microsoft Corporation) C:\Windows\system32\winrsmgr.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00002560 _____ (Microsoft Corporation) C:\Windows\system32\rnr20.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00002426 _____ C:\Windows\system32\WsmTxt.xsl
2015-07-10 12:59 - 2015-07-10 12:59 - 00002269 _____ C:\Windows\system32\WimBootCompress.ini
2015-07-10 12:59 - 2015-07-10 12:59 - 00002125 _____ C:\Windows\system32\AppxProvisioning.xml
2015-07-10 12:59 - 2015-07-10 12:59 - 00001820 _____ C:\Windows\system32\rasctrnm.h
2015-07-10 12:59 - 2015-07-10 12:59 - 00001559 _____ C:\Windows\system32\WsmPty.xsl
2015-07-10 12:59 - 2015-07-10 12:59 - 00000843 _____ C:\Windows\system32\onlinesetup.cmd
2015-07-10 12:59 - 2015-07-10 12:59 - 00000714 _____ C:\Windows\system32\RestartManager.mof
2015-07-10 12:59 - 2015-07-10 12:59 - 00000614 _____ C:\Windows\system32\WdsUnattendTemplate.xml
2015-07-10 12:59 - 2015-07-10 12:59 - 00000565 _____ C:\Windows\system32\NdfEventView.xml
2015-07-10 12:59 - 2015-07-10 12:59 - 00000176 _____ C:\Windows\system32\RestartManagerUninstall.mof
2015-07-10 12:59 - 2015-07-10 12:59 - 00000035 _____ C:\Windows\system32\winrm.cmd
2015-07-10 12:55 - 2015-08-08 22:36 - 00000000 ____D C:\Windows\CbsTemp
2015-07-10 11:11 - 2015-07-10 11:11 - 00000164 _____ C:\Windows\system32\config\FP
2015-07-10 11:07 - 2015-07-10 13:04 - 00000000 ____D C:\Windows\SysWOW64\AdvancedInstallers
2015-07-10 11:07 - 2015-07-10 13:04 - 00000000 ____D C:\Windows\system32\AdvancedInstallers
2015-07-10 11:07 - 2015-07-10 11:07 - 00141824 _____ (Microsoft Corporation) C:\Windows\system32\poqexec.exe
2015-07-10 11:07 - 2015-07-10 11:07 - 00118272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\poqexec.exe
2015-07-10 11:05 - 2015-08-09 18:54 - 00131072 ___SH C:\Windows\system32\config\BBI
2015-07-10 11:05 - 2015-08-08 16:57 - 00000000 ____D C:\Windows\SysWOW64\Dism
2015-07-10 11:05 - 2015-08-08 16:57 - 00000000 ____D C:\Windows\system32\Dism
2015-07-10 11:05 - 2015-08-08 13:29 - 00000000 __RHD C:\Users\Default
2015-07-10 11:05 - 2015-08-08 13:22 - 00000000 ____D C:\Windows\system32\Sysprep
2015-07-10 11:05 - 2015-07-10 18:02 - 00000000 ____D C:\Windows\servicing
2015-07-10 11:05 - 2015-07-10 14:21 - 00032768 ___SH C:\Windows\system32\config\ELAM
2015-07-10 11:05 - 2015-07-10 11:05 - 00897024 _____ (Microsoft Corporation) C:\Windows\system32\SmiEngine.dll
2015-07-10 11:05 - 2015-07-10 11:05 - 00618272 _____ (Microsoft Corporation) C:\Windows\system32\sxs.dll
2015-07-10 11:05 - 2015-07-10 11:05 - 00254816 _____ (Microsoft Corporation) C:\Windows\system32\wdscore.dll
2015-07-10 11:05 - 2015-07-10 11:05 - 00243040 _____ (Microsoft Corporation) C:\Windows\system32\cmipnpinstall.dll
2015-07-10 11:05 - 2015-07-10 11:05 - 00207200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdscore.dll
2015-07-10 11:05 - 2015-07-10 11:05 - 00202240 _____ (Microsoft Corporation) C:\Windows\system32\PkgMgr.exe
2015-07-10 11:05 - 2015-07-10 11:05 - 00199168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PkgMgr.exe
2015-07-10 11:05 - 2015-07-10 11:05 - 00191840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cmipnpinstall.dll
2015-07-10 11:05 - 2015-07-10 11:05 - 00135520 _____ (Microsoft Corporation) C:\Windows\system32\SSShim.dll
2015-07-10 11:05 - 2015-07-10 11:05 - 00111456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SSShim.dll
2015-07-10 11:05 - 2015-07-10 11:05 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\sxstrace.exe
2015-07-10 11:05 - 2015-07-10 11:05 - 00000000 ____D C:\Windows\SysWOW64\downlevel
2015-07-10 11:05 - 2015-07-10 11:05 - 00000000 ____D C:\Windows\system32\SMI
2015-07-10 11:05 - 2015-07-10 11:05 - 00000000 ____D C:\Windows\system32\downlevel
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2015-08-09 10:58 - 2015-04-19 14:20 - 00000626 _____ C:\Users\Břeta a Miláček\AppData\Roaming\xT1yXX67
==================== Files in the root of some directories =======
2015-08-08 17:19 - 2015-08-08 17:19 - 0000269 _____ () C:\Program Files (x86)\dht.dat
2015-08-08 17:19 - 2014-07-07 11:00 - 0000276 _____ () C:\Program Files (x86)\install.cmd
2015-08-08 17:19 - 2014-07-07 11:00 - 0108032 _____ () C:\Program Files (x86)\nssm.exe
2015-08-08 17:19 - 2014-07-07 11:00 - 0000054 _____ () C:\Program Files (x86)\uninstall.cmd
2015-08-08 17:19 - 2014-07-07 11:00 - 0000059 _____ () C:\Program Files (x86)\webui.url
2015-08-08 17:19 - 2014-07-07 11:00 - 0184512 _____ () C:\Program Files (x86)\webui.zip
2015-04-19 14:20 - 2015-08-09 10:58 - 0000626 _____ () C:\Users\Břeta a Miláček\AppData\Roaming\xT1yXX67
2015-08-08 17:04 - 2015-08-08 17:04 - 0000017 _____ () C:\Users\Břeta a Miláček\AppData\Local\resmon.resmoncfg
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2015-08-08 13:18
==================== End of log ============================
2015-07-10 12:59 - 2015-07-10 12:59 - 00021856 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cmimcext.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00021656 _____ C:\Windows\system32\NetTrace.PLA.Diagnostics.xml
2015-07-10 12:59 - 2015-07-10 12:59 - 00021504 _____ (Microsoft Corporation) C:\Windows\system32\PING.EXE
2015-07-10 12:59 - 2015-07-10 12:59 - 00021504 _____ (Microsoft Corporation) C:\Windows\system32\nbtstat.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00021504 _____ (Microsoft Corporation) C:\Windows\system32\fdPHost.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00021504 _____ (Microsoft Corporation) C:\Windows\system32\diskperf.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00021504 _____ (Microsoft Corporation) C:\Windows\system32\bridgeunattend.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00020992 _____ (Microsoft Corporation) C:\Windows\system32\wshelper.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00020992 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.BackgroundPlayback.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00020992 _____ (Microsoft Corporation) C:\Windows\system32\rasdial.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00020992 _____ (Microsoft Corporation) C:\Windows\system32\msiltcfg.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00020992 _____ (Microsoft Corporation) C:\Windows\system32\chkntfs.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00020992 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\NdisVirtualBus.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00020992 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\genericusbfn.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00020992 _____ (Microsoft Corporation) C:\Windows\system32\attrib.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00020480 _____ (Microsoft Corporation) C:\Windows\system32\wshqos.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00020480 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Background.ps.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00020480 _____ (Microsoft Corporation) C:\Windows\system32\tree.com
2015-07-10 12:59 - 2015-07-10 12:59 - 00020480 _____ (Microsoft Corporation) C:\Windows\system32\cmstplua.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00020184 _____ (Microsoft Corporation) C:\Windows\system32\iumbase.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00019992 _____ (Microsoft Corporation) C:\Windows\system32\HalExtIntcLpioDMA.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00019968 _____ (Microsoft Corporation) C:\Windows\system32\winnlsres.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00019968 _____ (Microsoft Corporation) C:\Windows\system32\smphost.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00019968 _____ (Microsoft Corporation) C:\Windows\system32\runas.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00019968 _____ (Microsoft Corporation) C:\Windows\system32\irclass.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00019968 _____ (Microsoft Corporation) C:\Windows\system32\EsdSip.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00019968 _____ (Microsoft Corporation) C:\Windows\system32\defragproxy.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00019808 _____ (Microsoft Corporation) C:\Windows\system32\kdhv1394.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00019456 _____ (Microsoft Corporation) C:\Windows\system32\rasautou.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00019456 _____ (Microsoft Corporation) C:\Windows\system32\PATHPING.EXE
2015-07-10 12:59 - 2015-07-10 12:59 - 00019456 _____ (Microsoft Corporation) C:\Windows\system32\httpprxp.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00019456 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\irenum.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00019456 _____ (Microsoft Corporation) C:\Windows\system32\doskey.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00019296 _____ (Microsoft Corporation) C:\Windows\system32\setupetw.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00019296 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msisadrv.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00019296 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\intelide.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\wshrm.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\serialui.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\kernelceip.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\httpprxc.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\DmOmaCpMo.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00018784 _____ (Microsoft Corporation) C:\Windows\system32\dllhost.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00018656 _____ (Microsoft Corporation) C:\Windows\system32\psapi.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00018432 _____ (Microsoft Corporation) C:\Windows\system32\wsock32.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00018432 _____ (Microsoft Corporation) C:\Windows\system32\syssetup.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00018432 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00018432 _____ (Microsoft Corporation) C:\Windows\system32\netbios.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00018432 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wmiacpi.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00018432 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\sfloppy.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00018432 _____ (Microsoft Corporation) C:\Windows\system32\clb.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00017944 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WindowsTrustedRTProxy.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00017935 _____ C:\Windows\system32\EventViewer_EventDetails.xsl
2015-07-10 12:59 - 2015-07-10 12:59 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\TRACERT.EXE
2015-07-10 12:59 - 2015-07-10 12:59 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\stdole2.tlb
2015-07-10 12:59 - 2015-07-10 12:59 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\RmClient.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\mountvol.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\icsunattend.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\fhuxapi.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\dmpushproxy.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00017624 _____ (Windows (R) Win 7 DDK provider) C:\Windows\system32\Drivers\bcmfn2.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00017432 _____ (Microsoft Corporation) C:\Windows\system32\HalExtPL080.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\wowreg32.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\rasadhlp.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\print.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\nrpsrv.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\nlmsprep.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\label.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\ktmutil.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\iscsilog.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\enterpriseetw.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rasacd.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00017248 _____ (Microsoft Corporation) C:\Windows\system32\spwizres.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00017248 _____ (Microsoft Corporation) C:\Windows\system32\kd_07_1415.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00016896 _____ (Microsoft Corporation) C:\Windows\system32\secinit.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00016896 _____ (Microsoft Corporation) C:\Windows\system32\ProximityCommonPal.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00016896 _____ (Microsoft Corporation) C:\Windows\system32\hnetmon.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00016896 _____ (Microsoft Corporation) C:\Windows\system32\fsavailux.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00016896 _____ (Microsoft Corporation) C:\Windows\system32\find.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\wsmplpxy.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\subst.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\regidle.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\pstask.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\MRINFO.EXE
2015-07-10 12:59 - 2015-07-10 12:59 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\finger.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hyperkbd.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00016224 _____ (Microsoft Corporation) C:\Windows\system32\kdnet_uart16550.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00016168 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\drmkaud.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\TSChannel.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\snmptrap.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\pcwrun.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\ifsutilx.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\MTConfig.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\C_IS2022.DLL
2015-07-10 12:59 - 2015-07-10 12:59 - 00015712 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pciide.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00015360 _____ (Microsoft Corporation) C:\Windows\system32\VmApplicationHealthMonitorProxy.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00015360 _____ (Microsoft Corporation) C:\Windows\system32\spwinsat.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00015360 _____ (Microsoft Corporation) C:\Windows\system32\pnpts.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00015200 _____ (Microsoft Corporation) C:\Windows\system32\kdstub.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\wshirda.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\WpPortingLibrary.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\wlanhlp.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\winshfhc.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\winrssrv.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\TimeSyncTask.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\chcp.com
2015-07-10 12:59 - 2015-07-10 12:59 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\dnsext.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\dmcommandlineutils.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\cfmifsproxy.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\c_GSM7.DLL
2015-07-10 12:59 - 2015-07-10 12:59 - 00014552 _____ (Microsoft Corporation) C:\Windows\system32\iumdll.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\usbperf.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\SensApi.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\recover.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\HOSTNAME.EXE
2015-07-10 12:59 - 2015-07-10 12:59 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\EasPoliciesBrokerPS.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Dmpusbstor.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\DockInterface.ProxyStub.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcmonitor.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\amsiproxy.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\wmcodecdspps.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\whhelper.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\svsvc.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\ProximityRtapiPal.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mprext.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mskssrv.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\dmiso8601utils.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\dabapi.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\cmdext.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\C_ISCII.DLL
2015-07-10 12:59 - 2015-07-10 12:59 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\pcaevts.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\kd_02_1137.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\InfDefaultInstall.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\Eap3Host.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vmgencounter.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\acpipmi.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\rastlsext.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\raschapext.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\MinstoreEvents.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\microsoft-windows-battery-events.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\dstokenclean.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\umpass.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rootmdm.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mstee.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\acpitime.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\acproxy.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00012288 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00012288 _____ (Microsoft Corporation) C:\Windows\system32\TCPSVCS.EXE
2015-07-10 12:59 - 2015-07-10 12:59 - 00012288 _____ (Microsoft Corporation) C:\Windows\system32\netwphelper.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00012288 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\acpipagr.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00012288 _____ (Microsoft Corporation) C:\Windows\system32\DefaultDeviceManager.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00012128 _____ (Microsoft Corporation) C:\Windows\system32\uxlibres.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00011776 _____ (Microsoft Corporation) C:\Windows\system32\TimeDateMUICallback.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00011776 _____ (Microsoft Corporation) C:\Windows\system32\spnet.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00011776 _____ (Microsoft Corporation) C:\Windows\system32\regedt32.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00011776 _____ (Microsoft Corporation) C:\Windows\system32\msiwer.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00011776 _____ (Microsoft Corporation) C:\Windows\system32\EasPoliciesBrokerHost.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00011776 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mshidumdf.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00011776 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\errdev.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00011776 _____ (Microsoft Corporation) C:\Windows\system32\dcomcnfg.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00011264 _____ (Microsoft Corporation) C:\Windows\system32\iprtprio.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00011264 _____ (Microsoft Corporation) C:\Windows\system32\help.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00011264 _____ (Microsoft Corporation) C:\Windows\system32\CIRCoInst.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00010752 _____ (Microsoft Corporation) C:\Windows\system32\spmpm.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00010752 _____ (Microsoft Corporation) C:\Windows\system32\Locator.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00010752 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mspqm.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00010752 _____ (Microsoft Corporation) C:\Windows\system32\acledit.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmcodecdspps.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00010240 _____ (Microsoft Corporation) C:\Windows\system32\plasrv.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00010240 _____ (Microsoft Corporation) C:\Windows\system32\Nlsdl.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00010240 _____ (Microsoft Corporation) C:\Windows\system32\dllhst3g.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00010240 _____ (Microsoft Corporation) C:\Windows\system32\comcat.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00010240 _____ (Microsoft Corporation) C:\Windows\system32\AutoWorkplaceN.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\wshhyperv.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\RpcNs4.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\osuninst.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\mtxex.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\idndl.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00008704 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vms3cap.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00008704 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mshidkmdf.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00008192 _____ C:\Windows\system32\settings.dat
2015-07-10 12:59 - 2015-07-10 12:59 - 00008192 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\gpuenergydrv.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\stdole32.tlb
2015-07-10 12:59 - 2015-07-10 12:59 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\shimeng.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\microsoft-windows-hal-events.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\Firewall.cpl
2015-07-10 12:59 - 2015-07-10 12:59 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\FamilySafetyExt.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\enrolluxdll.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\microsoft-windows-storage-tiering-events.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\microsoft-windows-sleepstudy-events.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00005120 _____ (Microsoft Corporation) C:\Windows\system32\normaliz.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00004675 _____ C:\Windows\system32\wsmanconfig_schema.xml
2015-07-10 12:59 - 2015-07-10 12:59 - 00004608 _____ (Microsoft Corporation) C:\Windows\system32\ws2help.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00004608 _____ (Microsoft Corporation) C:\Windows\system32\tzsyncres.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00004608 _____ (Microsoft Corporation) C:\Windows\system32\defragres.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00004148 _____ C:\Windows\system32\psmodulediscoveryprovider.mof
2015-07-10 12:59 - 2015-07-10 12:59 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\TpmCertResources.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00004014 _____ C:\Windows\system32\xwizard.dtd
2015-07-10 12:59 - 2015-07-10 12:59 - 00003584 _____ (Microsoft Corporation) C:\Windows\system32\wlanutil.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00003584 _____ (Microsoft Corporation) C:\Windows\system32\bootstr.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00003072 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00003072 _____ (Microsoft Corporation) C:\Windows\system32\SyncRes.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00003072 _____ (Microsoft Corporation) C:\Windows\system32\sfc.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00003072 _____ (Microsoft Corporation) C:\Windows\system32\msafd.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00003072 _____ (Microsoft Corporation) C:\Windows\system32\lz32.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00003072 _____ (Microsoft Corporation) C:\Windows\system32\lltdres.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00003072 _____ (Microsoft Corporation) C:\Windows\system32\icmp.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00003072 _____ (Microsoft Corporation) C:\Windows\system32\dmdskres2.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00003072 _____ (Microsoft Corporation) C:\Windows\system32\DMAppsRes.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00003072 _____ (Microsoft Corporation) C:\Windows\system32\bridgeres.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00002560 _____ (Microsoft Corporation) C:\Windows\system32\winrsmgr.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00002560 _____ (Microsoft Corporation) C:\Windows\system32\rnr20.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00002426 _____ C:\Windows\system32\WsmTxt.xsl
2015-07-10 12:59 - 2015-07-10 12:59 - 00002269 _____ C:\Windows\system32\WimBootCompress.ini
2015-07-10 12:59 - 2015-07-10 12:59 - 00002125 _____ C:\Windows\system32\AppxProvisioning.xml
2015-07-10 12:59 - 2015-07-10 12:59 - 00001820 _____ C:\Windows\system32\rasctrnm.h
2015-07-10 12:59 - 2015-07-10 12:59 - 00001559 _____ C:\Windows\system32\WsmPty.xsl
2015-07-10 12:59 - 2015-07-10 12:59 - 00000843 _____ C:\Windows\system32\onlinesetup.cmd
2015-07-10 12:59 - 2015-07-10 12:59 - 00000714 _____ C:\Windows\system32\RestartManager.mof
2015-07-10 12:59 - 2015-07-10 12:59 - 00000614 _____ C:\Windows\system32\WdsUnattendTemplate.xml
2015-07-10 12:59 - 2015-07-10 12:59 - 00000565 _____ C:\Windows\system32\NdfEventView.xml
2015-07-10 12:59 - 2015-07-10 12:59 - 00000176 _____ C:\Windows\system32\RestartManagerUninstall.mof
2015-07-10 12:59 - 2015-07-10 12:59 - 00000035 _____ C:\Windows\system32\winrm.cmd
2015-07-10 12:55 - 2015-08-08 22:36 - 00000000 ____D C:\Windows\CbsTemp
2015-07-10 11:11 - 2015-07-10 11:11 - 00000164 _____ C:\Windows\system32\config\FP
2015-07-10 11:07 - 2015-07-10 13:04 - 00000000 ____D C:\Windows\SysWOW64\AdvancedInstallers
2015-07-10 11:07 - 2015-07-10 13:04 - 00000000 ____D C:\Windows\system32\AdvancedInstallers
2015-07-10 11:07 - 2015-07-10 11:07 - 00141824 _____ (Microsoft Corporation) C:\Windows\system32\poqexec.exe
2015-07-10 11:07 - 2015-07-10 11:07 - 00118272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\poqexec.exe
2015-07-10 11:05 - 2015-08-09 18:54 - 00131072 ___SH C:\Windows\system32\config\BBI
2015-07-10 11:05 - 2015-08-08 16:57 - 00000000 ____D C:\Windows\SysWOW64\Dism
2015-07-10 11:05 - 2015-08-08 16:57 - 00000000 ____D C:\Windows\system32\Dism
2015-07-10 11:05 - 2015-08-08 13:29 - 00000000 __RHD C:\Users\Default
2015-07-10 11:05 - 2015-08-08 13:22 - 00000000 ____D C:\Windows\system32\Sysprep
2015-07-10 11:05 - 2015-07-10 18:02 - 00000000 ____D C:\Windows\servicing
2015-07-10 11:05 - 2015-07-10 14:21 - 00032768 ___SH C:\Windows\system32\config\ELAM
2015-07-10 11:05 - 2015-07-10 11:05 - 00897024 _____ (Microsoft Corporation) C:\Windows\system32\SmiEngine.dll
2015-07-10 11:05 - 2015-07-10 11:05 - 00618272 _____ (Microsoft Corporation) C:\Windows\system32\sxs.dll
2015-07-10 11:05 - 2015-07-10 11:05 - 00254816 _____ (Microsoft Corporation) C:\Windows\system32\wdscore.dll
2015-07-10 11:05 - 2015-07-10 11:05 - 00243040 _____ (Microsoft Corporation) C:\Windows\system32\cmipnpinstall.dll
2015-07-10 11:05 - 2015-07-10 11:05 - 00207200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdscore.dll
2015-07-10 11:05 - 2015-07-10 11:05 - 00202240 _____ (Microsoft Corporation) C:\Windows\system32\PkgMgr.exe
2015-07-10 11:05 - 2015-07-10 11:05 - 00199168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PkgMgr.exe
2015-07-10 11:05 - 2015-07-10 11:05 - 00191840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cmipnpinstall.dll
2015-07-10 11:05 - 2015-07-10 11:05 - 00135520 _____ (Microsoft Corporation) C:\Windows\system32\SSShim.dll
2015-07-10 11:05 - 2015-07-10 11:05 - 00111456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SSShim.dll
2015-07-10 11:05 - 2015-07-10 11:05 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\sxstrace.exe
2015-07-10 11:05 - 2015-07-10 11:05 - 00000000 ____D C:\Windows\SysWOW64\downlevel
2015-07-10 11:05 - 2015-07-10 11:05 - 00000000 ____D C:\Windows\system32\SMI
2015-07-10 11:05 - 2015-07-10 11:05 - 00000000 ____D C:\Windows\system32\downlevel
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2015-08-09 10:58 - 2015-04-19 14:20 - 00000626 _____ C:\Users\Břeta a Miláček\AppData\Roaming\xT1yXX67
==================== Files in the root of some directories =======
2015-08-08 17:19 - 2015-08-08 17:19 - 0000269 _____ () C:\Program Files (x86)\dht.dat
2015-08-08 17:19 - 2014-07-07 11:00 - 0000276 _____ () C:\Program Files (x86)\install.cmd
2015-08-08 17:19 - 2014-07-07 11:00 - 0108032 _____ () C:\Program Files (x86)\nssm.exe
2015-08-08 17:19 - 2014-07-07 11:00 - 0000054 _____ () C:\Program Files (x86)\uninstall.cmd
2015-08-08 17:19 - 2014-07-07 11:00 - 0000059 _____ () C:\Program Files (x86)\webui.url
2015-08-08 17:19 - 2014-07-07 11:00 - 0184512 _____ () C:\Program Files (x86)\webui.zip
2015-04-19 14:20 - 2015-08-09 10:58 - 0000626 _____ () C:\Users\Břeta a Miláček\AppData\Roaming\xT1yXX67
2015-08-08 17:04 - 2015-08-08 17:04 - 0000017 _____ () C:\Users\Břeta a Miláček\AppData\Local\resmon.resmoncfg
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2015-08-08 13:18
==================== End of log ============================
Re: Shooper pro
Additional scan result of Farbar Recovery Scan Tool (x64) Version:08-08-2015 01
Ran by Břeta a Miláček (2015-08-09 19:28:55)
Running from C:\Users\Břeta a Miláček\Desktop
Boot Mode: Normal
==========================================================
==================== Accounts: =============================
Administrator (S-1-5-21-1410555089-2074226881-640514690-500 - Administrator - Disabled)
Břeta a Miláček (S-1-5-21-1410555089-2074226881-640514690-1001 - Administrator - Enabled) => C:\Users\Břeta a Miláček
DefaultAccount (S-1-5-21-1410555089-2074226881-640514690-503 - Limited - Disabled)
Guest (S-1-5-21-1410555089-2074226881-640514690-501 - Limited - Disabled)
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: avast! Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: avast! Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}
FW: avast! Antivirus (Enabled) {2F96FC65-F07D-9D1E-5A6E-3DA5C487EAF0}
==================== Installed Programs ======================
(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
µTorrent (HKU\S-1-5-21-1410555089-2074226881-640514690-1001\...\uTorrent) (Version: 3.4.3.40760 - BitTorrent Inc.)
Adobe Flash Player 18 PPAPI (HKLM-x32\...\Adobe Flash Player PPAPI) (Version: 18.0.0.209 - Adobe Systems Incorporated)
Aktualizace NVIDIA 2.5.12.11 (Version: 2.5.12.11 - NVIDIA Corporation) Hidden
Avast Premier (HKLM-x32\...\Avast) (Version: 10.3.2225 - AVAST Software)
globalupdate Helper (x32 Version: 1.3.25.0 - globalupdate Inc.) Hidden <==== ATTENTION
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 44.0.2403.130 - Google Inc.)
Google Update Helper (x32 Version: 1.3.28.1 - Google Inc.) Hidden
Malwarebytes Anti-Malware verze 2.1.8.1057 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.1.8.1057 - Malwarebytes Corporation)
Microsoft Silverlight (HKLM-x32\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
NVIDIA GeForce Experience 2.5.12.11 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.5.12.11 - NVIDIA Corporation)
NVIDIA Ovladač 3D Vision 353.62 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 353.62 - NVIDIA Corporation)
NVIDIA Ovladač HD audia 1.3.34.3 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.34.3 - NVIDIA Corporation)
NVIDIA Ovladač řídící jednotky 3D Vision 352.65 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 352.65 - NVIDIA Corporation)
NVIDIA Ovladače grafiky 353.62 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 353.62 - NVIDIA Corporation)
NVIDIA Systémový software PhysX 9.15.0428 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.15.0428 - NVIDIA Corporation)
Ovládací panel NVIDIA 353.62 (Version: 353.62 - NVIDIA Corporation) Hidden
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7535 - Realtek Semiconductor Corp.)
SHIELD Streaming (Version: 4.1.3000 - NVIDIA Corporation) Hidden
SHIELD Wireless Controller Driver (Version: 2.5.12.11 - NVIDIA Corporation) Hidden
==================== Custom CLSID (Whitelisted): ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
CustomCLSID: HKU\S-1-5-21-1410555089-2074226881-640514690-1001_Classes\CLSID\{018D5C66-4533-4307-9B53-224DE2ED1FE6}\InprocServer32 -> C:\Windows\system32\shell32.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1410555089-2074226881-640514690-1001_Classes\CLSID\{1BF42E4C-4AF4-4CFD-A1A0-CF2960B8F63E}\InprocServer32 -> C:\Users\Břeta a Miláček\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64\FileSyncShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1410555089-2074226881-640514690-1001_Classes\CLSID\{5AB7172C-9C11-405C-8DD5-AF20F3606282}\InprocServer32 -> C:\Users\Břeta a Miláček\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64\FileSyncShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1410555089-2074226881-640514690-1001_Classes\CLSID\{7AFDFDDB-F914-11E4-8377-6C3BE50D980C}\InprocServer32 -> C:\Users\Břeta a Miláček\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64\FileSyncShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1410555089-2074226881-640514690-1001_Classes\CLSID\{82CA8DE3-01AD-4CEA-9D75-BE4C51810A9E}\InprocServer32 -> C:\Users\Břeta a Miláček\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64\FileSyncShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1410555089-2074226881-640514690-1001_Classes\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}\InprocServer32 -> C:\Users\Břeta a Miláček\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64\FileSyncShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1410555089-2074226881-640514690-1001_Classes\CLSID\{A78ED123-AB77-406B-9962-2A5D9D2F7F30}\InprocServer32 -> C:\Users\Břeta a Miláček\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64\FileSyncShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1410555089-2074226881-640514690-1001_Classes\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524}\InprocServer32 -> C:\Users\Břeta a Miláček\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64\FileSyncShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1410555089-2074226881-640514690-1001_Classes\CLSID\{CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B}\InprocServer32 -> C:\Users\Břeta a Miláček\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64\FileSyncShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1410555089-2074226881-640514690-1001_Classes\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A}\InprocServer32 -> C:\Users\Břeta a Miláček\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64\FileSyncShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1410555089-2074226881-640514690-1001_Classes\CLSID\{F8071786-1FD0-4A66-81A1-3CBE29274458}\InprocServer32 -> C:\Users\Břeta a Miláček\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64\FileSyncApi64.dll (Microsoft Corporation)
==================== Restore Points =========================
==================== Hosts content: ===============================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2015-07-10 13:04 - 2015-07-10 13:02 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts
==================== Scheduled Tasks (Whitelisted) =============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {00EEBA9C-F9EF-4272-B793-C830FBADD359} - System32\Tasks\Microsoft\Windows\ApplicationData\DsSvcCleanup => C:\Windows\system32\dstokenclean.exe [2015-07-10] (Microsoft Corporation)
Task: {0CCA7916-2916-4F12-BD32-1E3BE31E1269} - System32\Tasks\Microsoft\Windows\Workplace Join\Automatic-Device-Join => C:\Windows\System32\dsregcmd.exe [2015-07-10] (Microsoft Corporation)
Task: {0DB27679-8217-4112-BC1A-5D389E77E388} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-08-09] (Adobe Systems Incorporated)
Task: {1641F54C-1E57-4902-AB65-EE2B65E5629D} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Schedule Scan => C:\Windows\system32\usoclient.exe [2015-07-10] (Microsoft Corporation)
Task: {19865544-CE08-40BE-8B8C-87C47681433D} - System32\Tasks\Microsoft\Windows\WindowsUpdate\sihboot => C:\Windows\System32\sihclient.exe [2015-07-10] (Microsoft Corporation)
Task: {1D3D099E-EE1E-4907-8BA2-BA8F12D11AA6} - System32\Tasks\Microsoft\Windows\Location\Notifications => C:\Windows\System32\LocationNotificationWindows.exe [2015-07-10] (Microsoft Corporation)
Task: {1F7A270C-46EE-4FC8-ADC5-B857ABA32EEC} - System32\Tasks\Microsoft\Windows\RetailDemo\CleanupOfflineContent
Task: {297F0E02-1FA8-478B-A8B9-185DFEC4C1ED} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2015-08-09] (AVAST Software)
Task: {2C97A00A-1C5C-4318-B5CC-8A1A126B77F9} - System32\Tasks\Microsoft\Windows\CertificateServicesClient\KeyPreGenTask
Task: {3F6E048D-6404-433B-8F5F-CFF4D89BF89E} - System32\Tasks\Microsoft\Windows\Application Experience\Microsoft Compatibility Appraiser => Rundll32.exe generaltel.dll,RunTelemetryW
Task: {41160EA0-208B-4C3E-B4DB-805BBABC6B93} - System32\Tasks\Microsoft\Windows\Feedback\Siuf\DmClient => C:\Windows\system32\dmclient.exe [2015-07-10] (Microsoft Corporation)
Task: {4454A8D0-2E4E-4A02-BF67-48DF6A7BFAB4} - System32\Tasks\Microsoft\Windows\Maps\MapsUpdateTask
Task: {5E5515C1-7D87-4904-B9CE-FD29EB2ADB72} - System32\Tasks\Microsoft\Windows\Sysmain\ResPriStaticDbSync
Task: {611C823C-437B-46E7-9683-5312DFFCFD7B} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Policy Install => C:\Windows\system32\usoclient.exe [2015-07-10] (Microsoft Corporation)
Task: {64D3074F-B951-474C-ABCD-3EC13D64708B} - System32\Tasks\Adobe Flash Player PPAPI Notifier => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_18_0_0_209_pepper.exe [2015-08-09] (Adobe Systems Incorporated)
Task: {711EE2F9-A611-4773-AF8E-D4B278A6718D} - System32\Tasks\Microsoft\Windows\CertificateServicesClient\AikCertEnrollTask
Task: {73551810-E5F4-433E-9494-0D00B55C855E} - System32\Tasks\Microsoft\Windows\Maps\MapsToastTask
Task: {744C9FEA-08B7-43E1-A729-0F94647D655C} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Resume On Boot => C:\Windows\system32\usoclient.exe [2015-07-10] (Microsoft Corporation)
Task: {78B77FA3-9D97-441D-97B6-68CEA40B4F74} - System32\Tasks\Microsoft\Windows\Application Experience\ProgramDataUpdater => Rundll32.exe generaltel.dll,RunTelemetry -maintenance
Task: {7A003965-A297-4DC6-B15B-852D798391E0} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Reboot => C:\Windows\system32\MusNotification.exe [2015-07-16] (Microsoft Corporation)
Task: {848DCC36-520C-4946-BF68-C7EFFEFA2F84} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker_ReadyToReboot => C:\windows\system32\MusNotification.exe [2015-07-16] (Microsoft Corporation)
Task: {8DF84CB3-D8E0-4307-A35B-CA74E21786DB} - System32\Tasks\Microsoft\Windows\Clip\License Validation => C:\Windows\system32\ClipUp.exe [2015-07-15] (Microsoft Corporation)
Task: {A364E297-00AD-490D-900E-22AC34598C71} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Maintenance Install => C:\Windows\system32\usoclient.exe [2015-07-10] (Microsoft Corporation)
Task: {A5B6CD85-1B57-49B9-BA80-5D5D65F02826} - System32\Tasks\Microsoft\Windows\AppID\EDP Policy Manager
Task: {AC29E64E-3271-47BA-B8F1-914523CF379B} - System32\Tasks\Microsoft\Windows\WindowsUpdate\Automatic App Update
Task: {B0B73FF7-3E27-48DF-A2CF-5B46C524ABD1} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-09] (Google Inc.)
Task: {B9B36D41-C776-424E-9A13-5387E17A2CEB} - System32\Tasks\Microsoft\Windows\WCM\WiFiTask => C:\Windows\System32\WiFiTask.exe [2015-07-10] (Microsoft Corporation)
Task: {BFA53E0A-7086-4206-B682-203E731C1A98} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-09] (Google Inc.)
Task: {C2162702-FFEB-48C0-AA5F-2DA3A8887D61} - System32\Tasks\Microsoft\Windows\LanguageComponentsInstaller\Installation
Task: {C56AFFD3-06B8-4A16-AF7E-F7A6EB3FAE9E} - System32\Tasks\Microsoft\Windows\TPM\Tpm-HASCertRetr
Task: {C5EE2EA2-5312-4D1F-B9D0-41B18DF31B78} - System32\Tasks\Microsoft\Windows\WindowsUpdate\sih => C:\Windows\System32\sihclient.exe [2015-07-10] (Microsoft Corporation)
Task: {C7A236B2-12E1-46DC-9501-3B1B0209CC09} - System32\Tasks\Microsoft\Windows\Location\WindowsActionDialog => C:\Windows\System32\WindowsActionDialog.exe [2015-07-10] (Microsoft Corporation)
Task: {D2401052-A382-42DE-9C79-D1CF3563F654} - System32\Tasks\Microsoft\Windows\LanguageComponentsInstaller\Uninstallation
Task: {DAF2BAE3-1C5B-4CB5-9F62-0911C031A15A} - System32\Tasks\Microsoft\Windows\DiskFootprint\Diagnostics => C:\Windows\system32\disksnapshot.exe [2015-07-10] (Microsoft Corporation)
Task: {EA3F661E-B31C-44A9-B40C-E3D5D56149D4} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker_Display => C:\windows\system32\MusNotification.exe [2015-07-16] (Microsoft Corporation)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\Windows\Tasks\Adobe Flash Player PPAPI Notifier.job => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_18_0_0_209_pepper.exe
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => 0x000A01000374ECED2716EE48A42F5C587791657946008003000000003C000A0020000000FEFFFFFF000000000013040000008021DF07080000000900120037001500DA000000360043003A005C00500072006F006700720061006D002000460069006C00650073002000280078003800360029005C0047006F006F0067006C0065005C005500700064006100740065005C0047006F006F0067006C0065005500700064006100740065002E00650078006500000003002F006300000000001E00420052004500540041002D004D0049004C0041000C0145004B005C00420059016500740061002000610020004D0069006C00E1000D0165006B0000003B015500640072007E0175006A006500200073006F00660074007700610072006500200047006F006F0067006C006500200061006B007400750061006C0069007A006F00760061006E00FD002E0020004A0065002D006C00690020007400610074006F002000FA006C006F006800610020007A0061006B00E1007A00E1006E00610020006E00650062006F0020007A006100730074006100760065006E0061002C0020006E006500620075006400650020007600E1006101200073006F00660074007700610072006500200047006F006F0067006C00650020007500640072007E016F007600E1006E0020007600200061006B007400750061006C0069007A006F00760061006E00E9006D002000730074006100760075002E00200054006F0020007A006E0061006D0065006E00E1002C0020007E01650020006E0065006D0075007300ED0020006200FD00740020006F00700072006100760065006E00610020007A006A006900610174001B016E00E100200073006C0061006200E10020006D00ED007300740061002000760020007A006100620065007A00700065000D0165006E00ED00200061002000750072000D0169007400E9002000660075006E006B006300650020006E0065006D0075007300ED002000660075006E0067006F007600610074002E00200050006F006B007500640020007400750074006F002000FA006C006F006800750020007E01E10064006E00FD00200073006F00660074007700610072006500200047006F006F0067006C00650020006E00650070006F0075007E01ED007600E1002C002000730061006D00610020007300650020006F00640069006E007300740061006C0075006A0065002E000000000008000000000000000000020030000000CF0701000100000000000000000000000000000000000000000000000700000001000000000000000000000030000100DF07080009000000000000000D002B0000000000000000000000000001000000010000000000000000000000
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\xT1yXX67.job => 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
==================== Loaded Modules (Whitelisted) ==============
2015-08-08 16:54 - 2015-07-15 04:04 - 00032768 _____ () C:\Windows\SYSTEM32\licensemanagerapi.dll
2015-08-08 16:54 - 2015-07-11 03:22 - 00403968 _____ () C:\Windows\System32\diagtrack_wininternal.dll
2015-08-08 16:54 - 2015-07-30 08:05 - 02498808 _____ () C:\Windows\system32\CoreUIComponents.dll
2015-08-08 16:54 - 2015-07-30 08:05 - 02498808 _____ () C:\Windows\System32\CoreUIComponents.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00429056 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\QuickActions.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00143360 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\XamlTileRendering.dll
2015-08-08 16:54 - 2015-08-02 03:37 - 06569472 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll
2015-07-10 13:00 - 2015-07-10 18:05 - 00471040 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
2015-08-08 16:54 - 2015-08-02 03:34 - 01806848 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll
2015-08-08 16:54 - 2015-08-02 03:35 - 02274816 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll
2015-07-10 13:00 - 2015-07-10 18:05 - 00210432 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.ProxyStub.dll
2015-08-09 00:45 - 2015-08-09 00:45 - 00102864 _____ () C:\Program Files\AVAST Software\Avast\log.dll
2015-08-09 00:45 - 2015-08-09 00:45 - 00123976 _____ () C:\Program Files\AVAST Software\Avast\JsonRpcServer.dll
2015-08-09 12:40 - 2015-08-09 12:40 - 02960384 _____ () C:\Program Files\AVAST Software\Avast\defs\15080900\algo.dll
2015-08-09 13:38 - 2015-07-31 08:19 - 01405768 _____ () C:\Program Files (x86)\Google\Chrome\Application\44.0.2403.130\libglesv2.dll
2015-08-09 13:38 - 2015-07-31 08:19 - 00081224 _____ () C:\Program Files (x86)\Google\Chrome\Application\44.0.2403.130\libegl.dll
==================== Alternate Data Streams (Whitelisted) =========
(If an entry is included in the fixlist, only the ADS will be removed.)
==================== Safe Mode (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TileDataModelSvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Ahcache.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\CoreMessagingRegistrar => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\StateRepository => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TileDataModelSvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\UserManager => ""="Service"
==================== EXE Association (Whitelisted) ===============
(If an entry is included in the fixlist, the registry item will be restored to default or removed.)
==================== Internet Explorer trusted/restricted ===============
(If an entry is included in the fixlist, it will be removed from the registry.)
==================== Other Areas ============================
(Currently there is no automatic fix for this section.)
HKU\S-1-5-21-1410555089-2074226881-640514690-1001\Control Panel\Desktop\\Wallpaper -> C:\Windows\web\wallpaper\Windows\img0.jpg
DNS Servers: 62.129.50.20 - 85.135.32.100
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.
==================== MSCONFIG/TASK MANAGER disabled items ==
(Currently there is no automatic fix for this section.)
HKLM\...\StartupApproved\Run: => "NvBackend"
HKLM\...\StartupApproved\Run: => "ShadowPlay"
HKLM\...\StartupApproved\Run: => "RTHDVCPL"
HKU\S-1-5-21-1410555089-2074226881-640514690-1001\...\StartupApproved\Run: => "OneDrive"
HKU\S-1-5-21-1410555089-2074226881-640514690-1001\...\StartupApproved\Run: => "uTorrent"
==================== FirewallRules (Whitelisted) ===============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139
FirewallRules: [SPPSVC-In-TCP] => (Allow) %SystemRoot%\system32\sppextcomobj.exe
FirewallRules: [SPPSVC-In-TCP-NoScope] => (Allow) %SystemRoot%\system32\sppextcomobj.exe
FirewallRules: [{F228256D-0D96-4484-855C-ADB33F16FB56}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
FirewallRules: [{E31F1EB5-A31E-43CE-9F80-FF1D146E6F4E}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
FirewallRules: [{1170F138-FBC4-4A38-828A-23C365C71874}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
FirewallRules: [{51E99F88-0C65-450C-A794-77D5D192E42B}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
FirewallRules: [{BF477F33-AC6A-4D7F-A65A-C2B65B62C9D2}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe
FirewallRules: [{AEB0B0D5-FDA8-4221-8799-A39CA35F2A12}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{E8AC9284-69D6-4C7C-B234-5FC5CD35E1BA}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{1D924D54-FEEA-4686-A605-878041D3B00A}] => (Allow) C:\Users\Břeta a Miláček\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{6A7319F9-A932-4394-99D9-17EA0A3F714E}] => (Allow) C:\Users\Břeta a Miláček\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{B9C128FF-186C-4EA9-BE89-48429E5CD8CD}] => (Allow) C:\Users\Břeta a Miláček\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{15ACEDBD-3B38-46ED-B0DC-41ECD84F65EC}] => (Allow) C:\Users\Břeta a Miláček\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{B55D9373-F7B2-49FB-BF74-441D875FBB59}] => (Allow) C:\Users\Břeta a Miláček\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{A2845406-CEFD-4DE3-A0EC-09517E74C627}] => (Allow) C:\Users\Břeta a Miláček\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [TCP Query User{113AB4C3-EE3D-4C69-95C5-0A5C7A2DD960}C:\program files\pro evolution soccer 2015\pes2015.exe] => (Allow) C:\program files\pro evolution soccer 2015\pes2015.exe
FirewallRules: [UDP Query User{FB96F3B8-AFB4-4974-BADB-159CEB8E0608}C:\program files\pro evolution soccer 2015\pes2015.exe] => (Allow) C:\program files\pro evolution soccer 2015\pes2015.exe
FirewallRules: [{37F70C52-F335-4778-AC5D-C78133E0354F}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
==================== Faulty Device Manager Devices =============
==================== Event log errors: =========================
Application errors:
==================
Error: (08/09/2015 07:20:53 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: BRETA-MILAČEK)
Description: Aplikaci Microsoft.WindowsFeedback_cw5n1h2txyewy!App se nepovedlo aktivovat, protože došlo k chybě: -2144927142. Další informace najdete v protokolu Microsoft-Windows-TWinUI/Operational.
Error: (08/09/2015 06:57:41 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program explorer.exe verze 10.0.10240.16405 přestal spolupracovat se systémem Windows a byl ukončen. Chcete-li zjistit, zda je k dispozici více informací o tomto problému, vyhledejte historii problému v ovládacím panelu Zabezpečení a údržba.
ID procesu: c28
Čas spuštění: 01d0d2c42e1d3d4a
Čas ukončení: 0
Cesta k aplikaci: C:\Windows\explorer.exe
ID hlášení: 90ae0503-3eb7-11e5-9bcd-6c626d38d2ba
Úplný název balíčku s chybou:
ID aplikace související s balíčkem s chybou:
Error: (08/09/2015 06:55:13 PM) (Source: nssm) (EventID: 1010) (User: )
Description: uTorrent Serverutorrent.exeSystém nemůže nalézt uvedený soubor.
Error: (08/09/2015 03:12:37 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program SearchUI.exe verze 10.0.10240.16413 přestal spolupracovat se systémem Windows a byl ukončen. Chcete-li zjistit, zda je k dispozici více informací o tomto problému, vyhledejte historii problému v ovládacím panelu Zabezpečení a údržba.
ID procesu: d80
Čas spuštění: 01d0d2a5023fdedf
Čas ukončení: 4294967295
Cesta k aplikaci: C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe
ID hlášení: 4a96eccb-3e98-11e5-9bcc-6c626d38d2ba
Úplný název balíčku s chybou: Microsoft.Windows.Cortana_1.4.8.176_neutral_neutral_cw5n1h2txyewy
ID aplikace související s balíčkem s chybou: CortanaUI
Error: (08/09/2015 03:12:32 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: BRETA-MILAČEK)
Description: Aplikaci Microsoft.Windows.Cortana_cw5n1h2txyewy!CortanaUI se nepovedlo aktivovat, protože došlo k chybě: -2147023170. Další informace najdete v protokolu Microsoft-Windows-TWinUI/Operational.
Error: (08/09/2015 03:12:30 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 2486) (User: BRETA-MILAČEK)
Description: Aplikace Microsoft.Windows.Cortana_1.4.8.176_neutral_neutral_cw5n1h2txyewy+CortanaUI se nespustila ve stanovenou dobu.
Error: (08/09/2015 03:11:36 PM) (Source: nssm) (EventID: 1010) (User: )
Description: uTorrent Serverutorrent.exeSystém nemůže nalézt uvedený soubor.
Error: (08/09/2015 01:06:51 PM) (Source: nssm) (EventID: 1010) (User: )
Description: uTorrent Serverutorrent.exeSystém nemůže nalézt uvedený soubor.
Error: (08/09/2015 12:38:20 PM) (Source: nssm) (EventID: 1010) (User: )
Description: uTorrent Serverutorrent.exeSystém nemůže nalézt uvedený soubor.
Error: (08/09/2015 08:55:43 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: BRETA-MILAČEK)
Description: Aplikaci Microsoft.BingWeather_8wekyb3d8bbwe!App se nepovedlo aktivovat, protože došlo k chybě: -2144927141. Další informace najdete v protokolu Microsoft-Windows-TWinUI/Operational.
System errors:
=============
Error: (08/09/2015 07:22:55 PM) (Source: DCOM) (EventID: 10010) (User: BRETA-MILAČEK)
Description: App
Error: (08/09/2015 06:57:14 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba globalUpdate Update Service (globalUpdate) neuspěla při spuštění v důsledku následující chyby:
%%2
Error: (08/09/2015 06:55:13 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba uTorrent Server byla neočekávaně ukončena. Tento stav nastal již 1krát.
Error: (08/09/2015 06:55:13 PM) (Source: Service Control Manager) (EventID: 7024) (User: )
Description: Služba uTorrent Server skončila s následující chybou specifickou pro službu:
%%3
Error: (08/09/2015 06:54:15 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Hostitel synchronizace_Session2 byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 10000 milisekund: Restartovat službu.
Error: (08/09/2015 06:25:39 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Přístup k uživatelským datům_Session1 byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 10000 milisekund: Restartovat službu.
Error: (08/09/2015 06:25:39 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Úložiště uživatelských dat_Session1 byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 10000 milisekund: Restartovat službu.
Error: (08/09/2015 06:25:39 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Data kontaktů_Session1 byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 10000 milisekund: Restartovat službu.
Error: (08/09/2015 06:25:39 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Hostitel synchronizace_Session1 byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 10000 milisekund: Restartovat službu.
Error: (08/09/2015 05:47:43 PM) (Source: volsnap) (EventID: 36) (User: )
Description: Stínové kopie svazku C: byly přerušeny, protože z důvodu limitu stanoveného uživatelem se nepodařilo zvětšit úložiště stínové kopie.
Microsoft Office:
=========================
Error: (08/09/2015 07:20:53 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: BRETA-MILAČEK)
Description: Microsoft.WindowsFeedback_cw5n1h2txyewy!App-2144927142
Error: (08/09/2015 06:57:41 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: explorer.exe10.0.10240.16405c2801d0d2c42e1d3d4a0C:\Windows\explorer.exe90ae0503-3eb7-11e5-9bcd-6c626d38d2ba
Error: (08/09/2015 06:55:13 PM) (Source: nssm) (EventID: 1010) (User: )
Description: uTorrent Serverutorrent.exeSystém nemůže nalézt uvedený soubor.
Error: (08/09/2015 03:12:37 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: SearchUI.exe10.0.10240.16413d8001d0d2a5023fdedf4294967295C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe4a96eccb-3e98-11e5-9bcc-6c626d38d2baMicrosoft.Windows.Cortana_1.4.8.176_neutral_neutral_cw5n1h2txyewyCortanaUI
Error: (08/09/2015 03:12:32 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: BRETA-MILAČEK)
Description: Microsoft.Windows.Cortana_cw5n1h2txyewy!CortanaUI-2147023170
Error: (08/09/2015 03:12:30 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 2486) (User: BRETA-MILAČEK)
Description: Microsoft.Windows.Cortana_1.4.8.176_neutral_neutral_cw5n1h2txyewy+CortanaUI
Error: (08/09/2015 03:11:36 PM) (Source: nssm) (EventID: 1010) (User: )
Description: uTorrent Serverutorrent.exeSystém nemůže nalézt uvedený soubor.
Error: (08/09/2015 01:06:51 PM) (Source: nssm) (EventID: 1010) (User: )
Description: uTorrent Serverutorrent.exeSystém nemůže nalézt uvedený soubor.
Error: (08/09/2015 12:38:20 PM) (Source: nssm) (EventID: 1010) (User: )
Description: uTorrent Serverutorrent.exeSystém nemůže nalézt uvedený soubor.
Error: (08/09/2015 08:55:43 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: BRETA-MILAČEK)
Description: Microsoft.BingWeather_8wekyb3d8bbwe!App-2144927141
==================== Memory info ===========================
Processor: Intel(R) Core(TM) i5-2300 CPU @ 2.80GHz
Percentage of memory in use: 44%
Total physical RAM: 4078.64 MB
Available physical RAM: 2264.66 MB
Total Virtual: 5486.64 MB
Available Virtual: 3422.95 MB
==================== Drives ================================
Drive c: () (Fixed) (Total:292.43 GB) (Free:183.14 GB) NTFS
Drive d: () (Fixed) (Total:172.79 GB) (Free:171.08 GB) NTFS
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (MBR Code: Windows 7 or
(Size: 465.8 GB) (Disk ID: A9F69741)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=292.4 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=450 MB) - (Type=27)
Partition 4: (Not Active) - (Size=172.8 GB) - (Type=07 NTFS)
==================== End of log ============================
Ran by Břeta a Miláček (2015-08-09 19:28:55)
Running from C:\Users\Břeta a Miláček\Desktop
Boot Mode: Normal
==========================================================
==================== Accounts: =============================
Administrator (S-1-5-21-1410555089-2074226881-640514690-500 - Administrator - Disabled)
Břeta a Miláček (S-1-5-21-1410555089-2074226881-640514690-1001 - Administrator - Enabled) => C:\Users\Břeta a Miláček
DefaultAccount (S-1-5-21-1410555089-2074226881-640514690-503 - Limited - Disabled)
Guest (S-1-5-21-1410555089-2074226881-640514690-501 - Limited - Disabled)
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: avast! Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: avast! Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}
FW: avast! Antivirus (Enabled) {2F96FC65-F07D-9D1E-5A6E-3DA5C487EAF0}
==================== Installed Programs ======================
(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
µTorrent (HKU\S-1-5-21-1410555089-2074226881-640514690-1001\...\uTorrent) (Version: 3.4.3.40760 - BitTorrent Inc.)
Adobe Flash Player 18 PPAPI (HKLM-x32\...\Adobe Flash Player PPAPI) (Version: 18.0.0.209 - Adobe Systems Incorporated)
Aktualizace NVIDIA 2.5.12.11 (Version: 2.5.12.11 - NVIDIA Corporation) Hidden
Avast Premier (HKLM-x32\...\Avast) (Version: 10.3.2225 - AVAST Software)
globalupdate Helper (x32 Version: 1.3.25.0 - globalupdate Inc.) Hidden <==== ATTENTION
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 44.0.2403.130 - Google Inc.)
Google Update Helper (x32 Version: 1.3.28.1 - Google Inc.) Hidden
Malwarebytes Anti-Malware verze 2.1.8.1057 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.1.8.1057 - Malwarebytes Corporation)
Microsoft Silverlight (HKLM-x32\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
NVIDIA GeForce Experience 2.5.12.11 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.5.12.11 - NVIDIA Corporation)
NVIDIA Ovladač 3D Vision 353.62 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 353.62 - NVIDIA Corporation)
NVIDIA Ovladač HD audia 1.3.34.3 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.34.3 - NVIDIA Corporation)
NVIDIA Ovladač řídící jednotky 3D Vision 352.65 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 352.65 - NVIDIA Corporation)
NVIDIA Ovladače grafiky 353.62 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 353.62 - NVIDIA Corporation)
NVIDIA Systémový software PhysX 9.15.0428 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.15.0428 - NVIDIA Corporation)
Ovládací panel NVIDIA 353.62 (Version: 353.62 - NVIDIA Corporation) Hidden
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7535 - Realtek Semiconductor Corp.)
SHIELD Streaming (Version: 4.1.3000 - NVIDIA Corporation) Hidden
SHIELD Wireless Controller Driver (Version: 2.5.12.11 - NVIDIA Corporation) Hidden
==================== Custom CLSID (Whitelisted): ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
CustomCLSID: HKU\S-1-5-21-1410555089-2074226881-640514690-1001_Classes\CLSID\{018D5C66-4533-4307-9B53-224DE2ED1FE6}\InprocServer32 -> C:\Windows\system32\shell32.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1410555089-2074226881-640514690-1001_Classes\CLSID\{1BF42E4C-4AF4-4CFD-A1A0-CF2960B8F63E}\InprocServer32 -> C:\Users\Břeta a Miláček\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64\FileSyncShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1410555089-2074226881-640514690-1001_Classes\CLSID\{5AB7172C-9C11-405C-8DD5-AF20F3606282}\InprocServer32 -> C:\Users\Břeta a Miláček\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64\FileSyncShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1410555089-2074226881-640514690-1001_Classes\CLSID\{7AFDFDDB-F914-11E4-8377-6C3BE50D980C}\InprocServer32 -> C:\Users\Břeta a Miláček\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64\FileSyncShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1410555089-2074226881-640514690-1001_Classes\CLSID\{82CA8DE3-01AD-4CEA-9D75-BE4C51810A9E}\InprocServer32 -> C:\Users\Břeta a Miláček\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64\FileSyncShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1410555089-2074226881-640514690-1001_Classes\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}\InprocServer32 -> C:\Users\Břeta a Miláček\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64\FileSyncShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1410555089-2074226881-640514690-1001_Classes\CLSID\{A78ED123-AB77-406B-9962-2A5D9D2F7F30}\InprocServer32 -> C:\Users\Břeta a Miláček\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64\FileSyncShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1410555089-2074226881-640514690-1001_Classes\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524}\InprocServer32 -> C:\Users\Břeta a Miláček\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64\FileSyncShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1410555089-2074226881-640514690-1001_Classes\CLSID\{CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B}\InprocServer32 -> C:\Users\Břeta a Miláček\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64\FileSyncShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1410555089-2074226881-640514690-1001_Classes\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A}\InprocServer32 -> C:\Users\Břeta a Miláček\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64\FileSyncShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1410555089-2074226881-640514690-1001_Classes\CLSID\{F8071786-1FD0-4A66-81A1-3CBE29274458}\InprocServer32 -> C:\Users\Břeta a Miláček\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64\FileSyncApi64.dll (Microsoft Corporation)
==================== Restore Points =========================
==================== Hosts content: ===============================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2015-07-10 13:04 - 2015-07-10 13:02 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts
==================== Scheduled Tasks (Whitelisted) =============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {00EEBA9C-F9EF-4272-B793-C830FBADD359} - System32\Tasks\Microsoft\Windows\ApplicationData\DsSvcCleanup => C:\Windows\system32\dstokenclean.exe [2015-07-10] (Microsoft Corporation)
Task: {0CCA7916-2916-4F12-BD32-1E3BE31E1269} - System32\Tasks\Microsoft\Windows\Workplace Join\Automatic-Device-Join => C:\Windows\System32\dsregcmd.exe [2015-07-10] (Microsoft Corporation)
Task: {0DB27679-8217-4112-BC1A-5D389E77E388} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-08-09] (Adobe Systems Incorporated)
Task: {1641F54C-1E57-4902-AB65-EE2B65E5629D} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Schedule Scan => C:\Windows\system32\usoclient.exe [2015-07-10] (Microsoft Corporation)
Task: {19865544-CE08-40BE-8B8C-87C47681433D} - System32\Tasks\Microsoft\Windows\WindowsUpdate\sihboot => C:\Windows\System32\sihclient.exe [2015-07-10] (Microsoft Corporation)
Task: {1D3D099E-EE1E-4907-8BA2-BA8F12D11AA6} - System32\Tasks\Microsoft\Windows\Location\Notifications => C:\Windows\System32\LocationNotificationWindows.exe [2015-07-10] (Microsoft Corporation)
Task: {1F7A270C-46EE-4FC8-ADC5-B857ABA32EEC} - System32\Tasks\Microsoft\Windows\RetailDemo\CleanupOfflineContent
Task: {297F0E02-1FA8-478B-A8B9-185DFEC4C1ED} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2015-08-09] (AVAST Software)
Task: {2C97A00A-1C5C-4318-B5CC-8A1A126B77F9} - System32\Tasks\Microsoft\Windows\CertificateServicesClient\KeyPreGenTask
Task: {3F6E048D-6404-433B-8F5F-CFF4D89BF89E} - System32\Tasks\Microsoft\Windows\Application Experience\Microsoft Compatibility Appraiser => Rundll32.exe generaltel.dll,RunTelemetryW
Task: {41160EA0-208B-4C3E-B4DB-805BBABC6B93} - System32\Tasks\Microsoft\Windows\Feedback\Siuf\DmClient => C:\Windows\system32\dmclient.exe [2015-07-10] (Microsoft Corporation)
Task: {4454A8D0-2E4E-4A02-BF67-48DF6A7BFAB4} - System32\Tasks\Microsoft\Windows\Maps\MapsUpdateTask
Task: {5E5515C1-7D87-4904-B9CE-FD29EB2ADB72} - System32\Tasks\Microsoft\Windows\Sysmain\ResPriStaticDbSync
Task: {611C823C-437B-46E7-9683-5312DFFCFD7B} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Policy Install => C:\Windows\system32\usoclient.exe [2015-07-10] (Microsoft Corporation)
Task: {64D3074F-B951-474C-ABCD-3EC13D64708B} - System32\Tasks\Adobe Flash Player PPAPI Notifier => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_18_0_0_209_pepper.exe [2015-08-09] (Adobe Systems Incorporated)
Task: {711EE2F9-A611-4773-AF8E-D4B278A6718D} - System32\Tasks\Microsoft\Windows\CertificateServicesClient\AikCertEnrollTask
Task: {73551810-E5F4-433E-9494-0D00B55C855E} - System32\Tasks\Microsoft\Windows\Maps\MapsToastTask
Task: {744C9FEA-08B7-43E1-A729-0F94647D655C} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Resume On Boot => C:\Windows\system32\usoclient.exe [2015-07-10] (Microsoft Corporation)
Task: {78B77FA3-9D97-441D-97B6-68CEA40B4F74} - System32\Tasks\Microsoft\Windows\Application Experience\ProgramDataUpdater => Rundll32.exe generaltel.dll,RunTelemetry -maintenance
Task: {7A003965-A297-4DC6-B15B-852D798391E0} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Reboot => C:\Windows\system32\MusNotification.exe [2015-07-16] (Microsoft Corporation)
Task: {848DCC36-520C-4946-BF68-C7EFFEFA2F84} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker_ReadyToReboot => C:\windows\system32\MusNotification.exe [2015-07-16] (Microsoft Corporation)
Task: {8DF84CB3-D8E0-4307-A35B-CA74E21786DB} - System32\Tasks\Microsoft\Windows\Clip\License Validation => C:\Windows\system32\ClipUp.exe [2015-07-15] (Microsoft Corporation)
Task: {A364E297-00AD-490D-900E-22AC34598C71} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Maintenance Install => C:\Windows\system32\usoclient.exe [2015-07-10] (Microsoft Corporation)
Task: {A5B6CD85-1B57-49B9-BA80-5D5D65F02826} - System32\Tasks\Microsoft\Windows\AppID\EDP Policy Manager
Task: {AC29E64E-3271-47BA-B8F1-914523CF379B} - System32\Tasks\Microsoft\Windows\WindowsUpdate\Automatic App Update
Task: {B0B73FF7-3E27-48DF-A2CF-5B46C524ABD1} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-09] (Google Inc.)
Task: {B9B36D41-C776-424E-9A13-5387E17A2CEB} - System32\Tasks\Microsoft\Windows\WCM\WiFiTask => C:\Windows\System32\WiFiTask.exe [2015-07-10] (Microsoft Corporation)
Task: {BFA53E0A-7086-4206-B682-203E731C1A98} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-09] (Google Inc.)
Task: {C2162702-FFEB-48C0-AA5F-2DA3A8887D61} - System32\Tasks\Microsoft\Windows\LanguageComponentsInstaller\Installation
Task: {C56AFFD3-06B8-4A16-AF7E-F7A6EB3FAE9E} - System32\Tasks\Microsoft\Windows\TPM\Tpm-HASCertRetr
Task: {C5EE2EA2-5312-4D1F-B9D0-41B18DF31B78} - System32\Tasks\Microsoft\Windows\WindowsUpdate\sih => C:\Windows\System32\sihclient.exe [2015-07-10] (Microsoft Corporation)
Task: {C7A236B2-12E1-46DC-9501-3B1B0209CC09} - System32\Tasks\Microsoft\Windows\Location\WindowsActionDialog => C:\Windows\System32\WindowsActionDialog.exe [2015-07-10] (Microsoft Corporation)
Task: {D2401052-A382-42DE-9C79-D1CF3563F654} - System32\Tasks\Microsoft\Windows\LanguageComponentsInstaller\Uninstallation
Task: {DAF2BAE3-1C5B-4CB5-9F62-0911C031A15A} - System32\Tasks\Microsoft\Windows\DiskFootprint\Diagnostics => C:\Windows\system32\disksnapshot.exe [2015-07-10] (Microsoft Corporation)
Task: {EA3F661E-B31C-44A9-B40C-E3D5D56149D4} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker_Display => C:\windows\system32\MusNotification.exe [2015-07-16] (Microsoft Corporation)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\Windows\Tasks\Adobe Flash Player PPAPI Notifier.job => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_18_0_0_209_pepper.exe
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => 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
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\xT1yXX67.job => 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
==================== Loaded Modules (Whitelisted) ==============
2015-08-08 16:54 - 2015-07-15 04:04 - 00032768 _____ () C:\Windows\SYSTEM32\licensemanagerapi.dll
2015-08-08 16:54 - 2015-07-11 03:22 - 00403968 _____ () C:\Windows\System32\diagtrack_wininternal.dll
2015-08-08 16:54 - 2015-07-30 08:05 - 02498808 _____ () C:\Windows\system32\CoreUIComponents.dll
2015-08-08 16:54 - 2015-07-30 08:05 - 02498808 _____ () C:\Windows\System32\CoreUIComponents.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00429056 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\QuickActions.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00143360 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\XamlTileRendering.dll
2015-08-08 16:54 - 2015-08-02 03:37 - 06569472 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll
2015-07-10 13:00 - 2015-07-10 18:05 - 00471040 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
2015-08-08 16:54 - 2015-08-02 03:34 - 01806848 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll
2015-08-08 16:54 - 2015-08-02 03:35 - 02274816 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll
2015-07-10 13:00 - 2015-07-10 18:05 - 00210432 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.ProxyStub.dll
2015-08-09 00:45 - 2015-08-09 00:45 - 00102864 _____ () C:\Program Files\AVAST Software\Avast\log.dll
2015-08-09 00:45 - 2015-08-09 00:45 - 00123976 _____ () C:\Program Files\AVAST Software\Avast\JsonRpcServer.dll
2015-08-09 12:40 - 2015-08-09 12:40 - 02960384 _____ () C:\Program Files\AVAST Software\Avast\defs\15080900\algo.dll
2015-08-09 13:38 - 2015-07-31 08:19 - 01405768 _____ () C:\Program Files (x86)\Google\Chrome\Application\44.0.2403.130\libglesv2.dll
2015-08-09 13:38 - 2015-07-31 08:19 - 00081224 _____ () C:\Program Files (x86)\Google\Chrome\Application\44.0.2403.130\libegl.dll
==================== Alternate Data Streams (Whitelisted) =========
(If an entry is included in the fixlist, only the ADS will be removed.)
==================== Safe Mode (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TileDataModelSvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Ahcache.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\CoreMessagingRegistrar => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\StateRepository => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TileDataModelSvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\UserManager => ""="Service"
==================== EXE Association (Whitelisted) ===============
(If an entry is included in the fixlist, the registry item will be restored to default or removed.)
==================== Internet Explorer trusted/restricted ===============
(If an entry is included in the fixlist, it will be removed from the registry.)
==================== Other Areas ============================
(Currently there is no automatic fix for this section.)
HKU\S-1-5-21-1410555089-2074226881-640514690-1001\Control Panel\Desktop\\Wallpaper -> C:\Windows\web\wallpaper\Windows\img0.jpg
DNS Servers: 62.129.50.20 - 85.135.32.100
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.
==================== MSCONFIG/TASK MANAGER disabled items ==
(Currently there is no automatic fix for this section.)
HKLM\...\StartupApproved\Run: => "NvBackend"
HKLM\...\StartupApproved\Run: => "ShadowPlay"
HKLM\...\StartupApproved\Run: => "RTHDVCPL"
HKU\S-1-5-21-1410555089-2074226881-640514690-1001\...\StartupApproved\Run: => "OneDrive"
HKU\S-1-5-21-1410555089-2074226881-640514690-1001\...\StartupApproved\Run: => "uTorrent"
==================== FirewallRules (Whitelisted) ===============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139
FirewallRules: [SPPSVC-In-TCP] => (Allow) %SystemRoot%\system32\sppextcomobj.exe
FirewallRules: [SPPSVC-In-TCP-NoScope] => (Allow) %SystemRoot%\system32\sppextcomobj.exe
FirewallRules: [{F228256D-0D96-4484-855C-ADB33F16FB56}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
FirewallRules: [{E31F1EB5-A31E-43CE-9F80-FF1D146E6F4E}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
FirewallRules: [{1170F138-FBC4-4A38-828A-23C365C71874}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
FirewallRules: [{51E99F88-0C65-450C-A794-77D5D192E42B}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
FirewallRules: [{BF477F33-AC6A-4D7F-A65A-C2B65B62C9D2}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe
FirewallRules: [{AEB0B0D5-FDA8-4221-8799-A39CA35F2A12}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{E8AC9284-69D6-4C7C-B234-5FC5CD35E1BA}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{1D924D54-FEEA-4686-A605-878041D3B00A}] => (Allow) C:\Users\Břeta a Miláček\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{6A7319F9-A932-4394-99D9-17EA0A3F714E}] => (Allow) C:\Users\Břeta a Miláček\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{B9C128FF-186C-4EA9-BE89-48429E5CD8CD}] => (Allow) C:\Users\Břeta a Miláček\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{15ACEDBD-3B38-46ED-B0DC-41ECD84F65EC}] => (Allow) C:\Users\Břeta a Miláček\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{B55D9373-F7B2-49FB-BF74-441D875FBB59}] => (Allow) C:\Users\Břeta a Miláček\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{A2845406-CEFD-4DE3-A0EC-09517E74C627}] => (Allow) C:\Users\Břeta a Miláček\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [TCP Query User{113AB4C3-EE3D-4C69-95C5-0A5C7A2DD960}C:\program files\pro evolution soccer 2015\pes2015.exe] => (Allow) C:\program files\pro evolution soccer 2015\pes2015.exe
FirewallRules: [UDP Query User{FB96F3B8-AFB4-4974-BADB-159CEB8E0608}C:\program files\pro evolution soccer 2015\pes2015.exe] => (Allow) C:\program files\pro evolution soccer 2015\pes2015.exe
FirewallRules: [{37F70C52-F335-4778-AC5D-C78133E0354F}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
==================== Faulty Device Manager Devices =============
==================== Event log errors: =========================
Application errors:
==================
Error: (08/09/2015 07:20:53 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: BRETA-MILAČEK)
Description: Aplikaci Microsoft.WindowsFeedback_cw5n1h2txyewy!App se nepovedlo aktivovat, protože došlo k chybě: -2144927142. Další informace najdete v protokolu Microsoft-Windows-TWinUI/Operational.
Error: (08/09/2015 06:57:41 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program explorer.exe verze 10.0.10240.16405 přestal spolupracovat se systémem Windows a byl ukončen. Chcete-li zjistit, zda je k dispozici více informací o tomto problému, vyhledejte historii problému v ovládacím panelu Zabezpečení a údržba.
ID procesu: c28
Čas spuštění: 01d0d2c42e1d3d4a
Čas ukončení: 0
Cesta k aplikaci: C:\Windows\explorer.exe
ID hlášení: 90ae0503-3eb7-11e5-9bcd-6c626d38d2ba
Úplný název balíčku s chybou:
ID aplikace související s balíčkem s chybou:
Error: (08/09/2015 06:55:13 PM) (Source: nssm) (EventID: 1010) (User: )
Description: uTorrent Serverutorrent.exeSystém nemůže nalézt uvedený soubor.
Error: (08/09/2015 03:12:37 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program SearchUI.exe verze 10.0.10240.16413 přestal spolupracovat se systémem Windows a byl ukončen. Chcete-li zjistit, zda je k dispozici více informací o tomto problému, vyhledejte historii problému v ovládacím panelu Zabezpečení a údržba.
ID procesu: d80
Čas spuštění: 01d0d2a5023fdedf
Čas ukončení: 4294967295
Cesta k aplikaci: C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe
ID hlášení: 4a96eccb-3e98-11e5-9bcc-6c626d38d2ba
Úplný název balíčku s chybou: Microsoft.Windows.Cortana_1.4.8.176_neutral_neutral_cw5n1h2txyewy
ID aplikace související s balíčkem s chybou: CortanaUI
Error: (08/09/2015 03:12:32 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: BRETA-MILAČEK)
Description: Aplikaci Microsoft.Windows.Cortana_cw5n1h2txyewy!CortanaUI se nepovedlo aktivovat, protože došlo k chybě: -2147023170. Další informace najdete v protokolu Microsoft-Windows-TWinUI/Operational.
Error: (08/09/2015 03:12:30 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 2486) (User: BRETA-MILAČEK)
Description: Aplikace Microsoft.Windows.Cortana_1.4.8.176_neutral_neutral_cw5n1h2txyewy+CortanaUI se nespustila ve stanovenou dobu.
Error: (08/09/2015 03:11:36 PM) (Source: nssm) (EventID: 1010) (User: )
Description: uTorrent Serverutorrent.exeSystém nemůže nalézt uvedený soubor.
Error: (08/09/2015 01:06:51 PM) (Source: nssm) (EventID: 1010) (User: )
Description: uTorrent Serverutorrent.exeSystém nemůže nalézt uvedený soubor.
Error: (08/09/2015 12:38:20 PM) (Source: nssm) (EventID: 1010) (User: )
Description: uTorrent Serverutorrent.exeSystém nemůže nalézt uvedený soubor.
Error: (08/09/2015 08:55:43 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: BRETA-MILAČEK)
Description: Aplikaci Microsoft.BingWeather_8wekyb3d8bbwe!App se nepovedlo aktivovat, protože došlo k chybě: -2144927141. Další informace najdete v protokolu Microsoft-Windows-TWinUI/Operational.
System errors:
=============
Error: (08/09/2015 07:22:55 PM) (Source: DCOM) (EventID: 10010) (User: BRETA-MILAČEK)
Description: App
Error: (08/09/2015 06:57:14 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba globalUpdate Update Service (globalUpdate) neuspěla při spuštění v důsledku následující chyby:
%%2
Error: (08/09/2015 06:55:13 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba uTorrent Server byla neočekávaně ukončena. Tento stav nastal již 1krát.
Error: (08/09/2015 06:55:13 PM) (Source: Service Control Manager) (EventID: 7024) (User: )
Description: Služba uTorrent Server skončila s následující chybou specifickou pro službu:
%%3
Error: (08/09/2015 06:54:15 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Hostitel synchronizace_Session2 byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 10000 milisekund: Restartovat službu.
Error: (08/09/2015 06:25:39 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Přístup k uživatelským datům_Session1 byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 10000 milisekund: Restartovat službu.
Error: (08/09/2015 06:25:39 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Úložiště uživatelských dat_Session1 byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 10000 milisekund: Restartovat službu.
Error: (08/09/2015 06:25:39 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Data kontaktů_Session1 byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 10000 milisekund: Restartovat službu.
Error: (08/09/2015 06:25:39 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Hostitel synchronizace_Session1 byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 10000 milisekund: Restartovat službu.
Error: (08/09/2015 05:47:43 PM) (Source: volsnap) (EventID: 36) (User: )
Description: Stínové kopie svazku C: byly přerušeny, protože z důvodu limitu stanoveného uživatelem se nepodařilo zvětšit úložiště stínové kopie.
Microsoft Office:
=========================
Error: (08/09/2015 07:20:53 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: BRETA-MILAČEK)
Description: Microsoft.WindowsFeedback_cw5n1h2txyewy!App-2144927142
Error: (08/09/2015 06:57:41 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: explorer.exe10.0.10240.16405c2801d0d2c42e1d3d4a0C:\Windows\explorer.exe90ae0503-3eb7-11e5-9bcd-6c626d38d2ba
Error: (08/09/2015 06:55:13 PM) (Source: nssm) (EventID: 1010) (User: )
Description: uTorrent Serverutorrent.exeSystém nemůže nalézt uvedený soubor.
Error: (08/09/2015 03:12:37 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: SearchUI.exe10.0.10240.16413d8001d0d2a5023fdedf4294967295C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe4a96eccb-3e98-11e5-9bcc-6c626d38d2baMicrosoft.Windows.Cortana_1.4.8.176_neutral_neutral_cw5n1h2txyewyCortanaUI
Error: (08/09/2015 03:12:32 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: BRETA-MILAČEK)
Description: Microsoft.Windows.Cortana_cw5n1h2txyewy!CortanaUI-2147023170
Error: (08/09/2015 03:12:30 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 2486) (User: BRETA-MILAČEK)
Description: Microsoft.Windows.Cortana_1.4.8.176_neutral_neutral_cw5n1h2txyewy+CortanaUI
Error: (08/09/2015 03:11:36 PM) (Source: nssm) (EventID: 1010) (User: )
Description: uTorrent Serverutorrent.exeSystém nemůže nalézt uvedený soubor.
Error: (08/09/2015 01:06:51 PM) (Source: nssm) (EventID: 1010) (User: )
Description: uTorrent Serverutorrent.exeSystém nemůže nalézt uvedený soubor.
Error: (08/09/2015 12:38:20 PM) (Source: nssm) (EventID: 1010) (User: )
Description: uTorrent Serverutorrent.exeSystém nemůže nalézt uvedený soubor.
Error: (08/09/2015 08:55:43 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: BRETA-MILAČEK)
Description: Microsoft.BingWeather_8wekyb3d8bbwe!App-2144927141
==================== Memory info ===========================
Processor: Intel(R) Core(TM) i5-2300 CPU @ 2.80GHz
Percentage of memory in use: 44%
Total physical RAM: 4078.64 MB
Available physical RAM: 2264.66 MB
Total Virtual: 5486.64 MB
Available Virtual: 3422.95 MB
==================== Drives ================================
Drive c: () (Fixed) (Total:292.43 GB) (Free:183.14 GB) NTFS
Drive d: () (Fixed) (Total:172.79 GB) (Free:171.08 GB) NTFS
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (MBR Code: Windows 7 or

Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=292.4 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=450 MB) - (Type=27)
Partition 4: (Not Active) - (Size=172.8 GB) - (Type=07 NTFS)
==================== End of log ============================
Re: Shooper pro
Additional scan result of Farbar Recovery Scan Tool (x64) Version:08-08-2015 01
Ran by Břeta a Miláček (2015-08-09 19:28:55)
Running from C:\Users\Břeta a Miláček\Desktop
Boot Mode: Normal
==========================================================
==================== Accounts: =============================
Administrator (S-1-5-21-1410555089-2074226881-640514690-500 - Administrator - Disabled)
Břeta a Miláček (S-1-5-21-1410555089-2074226881-640514690-1001 - Administrator - Enabled) => C:\Users\Břeta a Miláček
DefaultAccount (S-1-5-21-1410555089-2074226881-640514690-503 - Limited - Disabled)
Guest (S-1-5-21-1410555089-2074226881-640514690-501 - Limited - Disabled)
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: avast! Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: avast! Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}
FW: avast! Antivirus (Enabled) {2F96FC65-F07D-9D1E-5A6E-3DA5C487EAF0}
==================== Installed Programs ======================
(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
µTorrent (HKU\S-1-5-21-1410555089-2074226881-640514690-1001\...\uTorrent) (Version: 3.4.3.40760 - BitTorrent Inc.)
Adobe Flash Player 18 PPAPI (HKLM-x32\...\Adobe Flash Player PPAPI) (Version: 18.0.0.209 - Adobe Systems Incorporated)
Aktualizace NVIDIA 2.5.12.11 (Version: 2.5.12.11 - NVIDIA Corporation) Hidden
Avast Premier (HKLM-x32\...\Avast) (Version: 10.3.2225 - AVAST Software)
globalupdate Helper (x32 Version: 1.3.25.0 - globalupdate Inc.) Hidden <==== ATTENTION
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 44.0.2403.130 - Google Inc.)
Google Update Helper (x32 Version: 1.3.28.1 - Google Inc.) Hidden
Malwarebytes Anti-Malware verze 2.1.8.1057 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.1.8.1057 - Malwarebytes Corporation)
Microsoft Silverlight (HKLM-x32\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
NVIDIA GeForce Experience 2.5.12.11 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.5.12.11 - NVIDIA Corporation)
NVIDIA Ovladač 3D Vision 353.62 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 353.62 - NVIDIA Corporation)
NVIDIA Ovladač HD audia 1.3.34.3 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.34.3 - NVIDIA Corporation)
NVIDIA Ovladač řídící jednotky 3D Vision 352.65 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 352.65 - NVIDIA Corporation)
NVIDIA Ovladače grafiky 353.62 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 353.62 - NVIDIA Corporation)
NVIDIA Systémový software PhysX 9.15.0428 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.15.0428 - NVIDIA Corporation)
Ovládací panel NVIDIA 353.62 (Version: 353.62 - NVIDIA Corporation) Hidden
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7535 - Realtek Semiconductor Corp.)
SHIELD Streaming (Version: 4.1.3000 - NVIDIA Corporation) Hidden
SHIELD Wireless Controller Driver (Version: 2.5.12.11 - NVIDIA Corporation) Hidden
==================== Custom CLSID (Whitelisted): ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
CustomCLSID: HKU\S-1-5-21-1410555089-2074226881-640514690-1001_Classes\CLSID\{018D5C66-4533-4307-9B53-224DE2ED1FE6}\InprocServer32 -> C:\Windows\system32\shell32.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1410555089-2074226881-640514690-1001_Classes\CLSID\{1BF42E4C-4AF4-4CFD-A1A0-CF2960B8F63E}\InprocServer32 -> C:\Users\Břeta a Miláček\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64\FileSyncShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1410555089-2074226881-640514690-1001_Classes\CLSID\{5AB7172C-9C11-405C-8DD5-AF20F3606282}\InprocServer32 -> C:\Users\Břeta a Miláček\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64\FileSyncShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1410555089-2074226881-640514690-1001_Classes\CLSID\{7AFDFDDB-F914-11E4-8377-6C3BE50D980C}\InprocServer32 -> C:\Users\Břeta a Miláček\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64\FileSyncShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1410555089-2074226881-640514690-1001_Classes\CLSID\{82CA8DE3-01AD-4CEA-9D75-BE4C51810A9E}\InprocServer32 -> C:\Users\Břeta a Miláček\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64\FileSyncShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1410555089-2074226881-640514690-1001_Classes\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}\InprocServer32 -> C:\Users\Břeta a Miláček\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64\FileSyncShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1410555089-2074226881-640514690-1001_Classes\CLSID\{A78ED123-AB77-406B-9962-2A5D9D2F7F30}\InprocServer32 -> C:\Users\Břeta a Miláček\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64\FileSyncShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1410555089-2074226881-640514690-1001_Classes\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524}\InprocServer32 -> C:\Users\Břeta a Miláček\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64\FileSyncShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1410555089-2074226881-640514690-1001_Classes\CLSID\{CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B}\InprocServer32 -> C:\Users\Břeta a Miláček\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64\FileSyncShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1410555089-2074226881-640514690-1001_Classes\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A}\InprocServer32 -> C:\Users\Břeta a Miláček\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64\FileSyncShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1410555089-2074226881-640514690-1001_Classes\CLSID\{F8071786-1FD0-4A66-81A1-3CBE29274458}\InprocServer32 -> C:\Users\Břeta a Miláček\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64\FileSyncApi64.dll (Microsoft Corporation)
==================== Restore Points =========================
==================== Hosts content: ===============================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2015-07-10 13:04 - 2015-07-10 13:02 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts
==================== Scheduled Tasks (Whitelisted) =============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {00EEBA9C-F9EF-4272-B793-C830FBADD359} - System32\Tasks\Microsoft\Windows\ApplicationData\DsSvcCleanup => C:\Windows\system32\dstokenclean.exe [2015-07-10] (Microsoft Corporation)
Task: {0CCA7916-2916-4F12-BD32-1E3BE31E1269} - System32\Tasks\Microsoft\Windows\Workplace Join\Automatic-Device-Join => C:\Windows\System32\dsregcmd.exe [2015-07-10] (Microsoft Corporation)
Task: {0DB27679-8217-4112-BC1A-5D389E77E388} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-08-09] (Adobe Systems Incorporated)
Task: {1641F54C-1E57-4902-AB65-EE2B65E5629D} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Schedule Scan => C:\Windows\system32\usoclient.exe [2015-07-10] (Microsoft Corporation)
Task: {19865544-CE08-40BE-8B8C-87C47681433D} - System32\Tasks\Microsoft\Windows\WindowsUpdate\sihboot => C:\Windows\System32\sihclient.exe [2015-07-10] (Microsoft Corporation)
Task: {1D3D099E-EE1E-4907-8BA2-BA8F12D11AA6} - System32\Tasks\Microsoft\Windows\Location\Notifications => C:\Windows\System32\LocationNotificationWindows.exe [2015-07-10] (Microsoft Corporation)
Task: {1F7A270C-46EE-4FC8-ADC5-B857ABA32EEC} - System32\Tasks\Microsoft\Windows\RetailDemo\CleanupOfflineContent
Task: {297F0E02-1FA8-478B-A8B9-185DFEC4C1ED} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2015-08-09] (AVAST Software)
Task: {2C97A00A-1C5C-4318-B5CC-8A1A126B77F9} - System32\Tasks\Microsoft\Windows\CertificateServicesClient\KeyPreGenTask
Task: {3F6E048D-6404-433B-8F5F-CFF4D89BF89E} - System32\Tasks\Microsoft\Windows\Application Experience\Microsoft Compatibility Appraiser => Rundll32.exe generaltel.dll,RunTelemetryW
Task: {41160EA0-208B-4C3E-B4DB-805BBABC6B93} - System32\Tasks\Microsoft\Windows\Feedback\Siuf\DmClient => C:\Windows\system32\dmclient.exe [2015-07-10] (Microsoft Corporation)
Task: {4454A8D0-2E4E-4A02-BF67-48DF6A7BFAB4} - System32\Tasks\Microsoft\Windows\Maps\MapsUpdateTask
Task: {5E5515C1-7D87-4904-B9CE-FD29EB2ADB72} - System32\Tasks\Microsoft\Windows\Sysmain\ResPriStaticDbSync
Task: {611C823C-437B-46E7-9683-5312DFFCFD7B} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Policy Install => C:\Windows\system32\usoclient.exe [2015-07-10] (Microsoft Corporation)
Task: {64D3074F-B951-474C-ABCD-3EC13D64708B} - System32\Tasks\Adobe Flash Player PPAPI Notifier => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_18_0_0_209_pepper.exe [2015-08-09] (Adobe Systems Incorporated)
Task: {711EE2F9-A611-4773-AF8E-D4B278A6718D} - System32\Tasks\Microsoft\Windows\CertificateServicesClient\AikCertEnrollTask
Task: {73551810-E5F4-433E-9494-0D00B55C855E} - System32\Tasks\Microsoft\Windows\Maps\MapsToastTask
Task: {744C9FEA-08B7-43E1-A729-0F94647D655C} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Resume On Boot => C:\Windows\system32\usoclient.exe [2015-07-10] (Microsoft Corporation)
Task: {78B77FA3-9D97-441D-97B6-68CEA40B4F74} - System32\Tasks\Microsoft\Windows\Application Experience\ProgramDataUpdater => Rundll32.exe generaltel.dll,RunTelemetry -maintenance
Task: {7A003965-A297-4DC6-B15B-852D798391E0} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Reboot => C:\Windows\system32\MusNotification.exe [2015-07-16] (Microsoft Corporation)
Task: {848DCC36-520C-4946-BF68-C7EFFEFA2F84} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker_ReadyToReboot => C:\windows\system32\MusNotification.exe [2015-07-16] (Microsoft Corporation)
Task: {8DF84CB3-D8E0-4307-A35B-CA74E21786DB} - System32\Tasks\Microsoft\Windows\Clip\License Validation => C:\Windows\system32\ClipUp.exe [2015-07-15] (Microsoft Corporation)
Task: {A364E297-00AD-490D-900E-22AC34598C71} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Maintenance Install => C:\Windows\system32\usoclient.exe [2015-07-10] (Microsoft Corporation)
Task: {A5B6CD85-1B57-49B9-BA80-5D5D65F02826} - System32\Tasks\Microsoft\Windows\AppID\EDP Policy Manager
Task: {AC29E64E-3271-47BA-B8F1-914523CF379B} - System32\Tasks\Microsoft\Windows\WindowsUpdate\Automatic App Update
Task: {B0B73FF7-3E27-48DF-A2CF-5B46C524ABD1} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-09] (Google Inc.)
Task: {B9B36D41-C776-424E-9A13-5387E17A2CEB} - System32\Tasks\Microsoft\Windows\WCM\WiFiTask => C:\Windows\System32\WiFiTask.exe [2015-07-10] (Microsoft Corporation)
Task: {BFA53E0A-7086-4206-B682-203E731C1A98} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-09] (Google Inc.)
Task: {C2162702-FFEB-48C0-AA5F-2DA3A8887D61} - System32\Tasks\Microsoft\Windows\LanguageComponentsInstaller\Installation
Task: {C56AFFD3-06B8-4A16-AF7E-F7A6EB3FAE9E} - System32\Tasks\Microsoft\Windows\TPM\Tpm-HASCertRetr
Task: {C5EE2EA2-5312-4D1F-B9D0-41B18DF31B78} - System32\Tasks\Microsoft\Windows\WindowsUpdate\sih => C:\Windows\System32\sihclient.exe [2015-07-10] (Microsoft Corporation)
Task: {C7A236B2-12E1-46DC-9501-3B1B0209CC09} - System32\Tasks\Microsoft\Windows\Location\WindowsActionDialog => C:\Windows\System32\WindowsActionDialog.exe [2015-07-10] (Microsoft Corporation)
Task: {D2401052-A382-42DE-9C79-D1CF3563F654} - System32\Tasks\Microsoft\Windows\LanguageComponentsInstaller\Uninstallation
Task: {DAF2BAE3-1C5B-4CB5-9F62-0911C031A15A} - System32\Tasks\Microsoft\Windows\DiskFootprint\Diagnostics => C:\Windows\system32\disksnapshot.exe [2015-07-10] (Microsoft Corporation)
Task: {EA3F661E-B31C-44A9-B40C-E3D5D56149D4} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker_Display => C:\windows\system32\MusNotification.exe [2015-07-16] (Microsoft Corporation)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\Windows\Tasks\Adobe Flash Player PPAPI Notifier.job => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_18_0_0_209_pepper.exe
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => 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
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\xT1yXX67.job => 0x000A0100E61858A8B8826241A3E5E471978693E14600BE03000000003C000A0020000000FEFFFFFF000000000313040000208001000000000000000000000000000000000000360043003A005C00550073006500720073005C004200FDFF6500740061002000610020004D0069006C00FDFFFDFF65006B005C0041007000700044006100740061005C0052006F0061006D0069006E0067005C00780054003100790058005800360037002E0065007800650000005D012D002D0063003D0068005A006D00540048004A002B006F0067004600590049007A0057006F006600570044004C003700370048004A0052004900620035006F0059003300440059005500640069007700480065006400320036006C0030007A0059005A0069006D00790052003400770056004500300058003200660051003200650034005800670069006A004900580050007A003100360044006F00580051004100330061005400300042003500450054006A004F0069005100550047005A002F002B0030004900790078007400770075004100370047005600640034007500680046004A006600410050007A0047004700590061006B00360079006B00390074004C006400570078004F006C0053003200750032006E00460032002F006400760041004A004E004600330077004200440055007A00710048006400320058005400700039004E005A00570048003400470032006B0067005300540070006D005000370039005A004C004B005100490037004700660031003700470079006A007900740066002B0058006D006D006D004600530079006E004400330034004A00780068007A003600300037003300420062006F003700690074007700580076006F00380033006F0045007A004F004E006D0032003000640038002B003800700031004F004A006E007000350041006F006D006600490057007A0041006E006F005100580041003600560061004F00560072004400410032003200690075003800610068005A003700300048004600360069005400610056004A003300540057004C007600650074004F004F007A00500049007A006200670056004E00780049002F004D00440057006B004C004F005900670059006E004400720068002B00780031003300660069004400650078005A004B00670034004600490056006F005500500050004B00470046006B0039007000570067003D003D00000000001E00420052004500540041002D004D0049004C0041000C0145004B005C00420059016500740061002000610020004D0069006C00E1000D0165006B0000000000000008000313040000000000020030000000C00701000100000000000000000000000000000000000000000000000700000001000000000000000000000030000100C0070100010000000000000016002100A0050000C10200000000000001000000010000000000000000000000
==================== Loaded Modules (Whitelisted) ==============
2015-08-08 16:54 - 2015-07-15 04:04 - 00032768 _____ () C:\Windows\SYSTEM32\licensemanagerapi.dll
2015-08-08 16:54 - 2015-07-11 03:22 - 00403968 _____ () C:\Windows\System32\diagtrack_wininternal.dll
2015-08-08 16:54 - 2015-07-30 08:05 - 02498808 _____ () C:\Windows\system32\CoreUIComponents.dll
2015-08-08 16:54 - 2015-07-30 08:05 - 02498808 _____ () C:\Windows\System32\CoreUIComponents.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00429056 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\QuickActions.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00143360 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\XamlTileRendering.dll
2015-08-08 16:54 - 2015-08-02 03:37 - 06569472 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll
2015-07-10 13:00 - 2015-07-10 18:05 - 00471040 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
2015-08-08 16:54 - 2015-08-02 03:34 - 01806848 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll
2015-08-08 16:54 - 2015-08-02 03:35 - 02274816 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll
2015-07-10 13:00 - 2015-07-10 18:05 - 00210432 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.ProxyStub.dll
2015-08-09 00:45 - 2015-08-09 00:45 - 00102864 _____ () C:\Program Files\AVAST Software\Avast\log.dll
2015-08-09 00:45 - 2015-08-09 00:45 - 00123976 _____ () C:\Program Files\AVAST Software\Avast\JsonRpcServer.dll
2015-08-09 12:40 - 2015-08-09 12:40 - 02960384 _____ () C:\Program Files\AVAST Software\Avast\defs\15080900\algo.dll
2015-08-09 13:38 - 2015-07-31 08:19 - 01405768 _____ () C:\Program Files (x86)\Google\Chrome\Application\44.0.2403.130\libglesv2.dll
2015-08-09 13:38 - 2015-07-31 08:19 - 00081224 _____ () C:\Program Files (x86)\Google\Chrome\Application\44.0.2403.130\libegl.dll
==================== Alternate Data Streams (Whitelisted) =========
(If an entry is included in the fixlist, only the ADS will be removed.)
==================== Safe Mode (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TileDataModelSvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Ahcache.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\CoreMessagingRegistrar => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\StateRepository => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TileDataModelSvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\UserManager => ""="Service"
==================== EXE Association (Whitelisted) ===============
(If an entry is included in the fixlist, the registry item will be restored to default or removed.)
==================== Internet Explorer trusted/restricted ===============
(If an entry is included in the fixlist, it will be removed from the registry.)
==================== Other Areas ============================
(Currently there is no automatic fix for this section.)
HKU\S-1-5-21-1410555089-2074226881-640514690-1001\Control Panel\Desktop\\Wallpaper -> C:\Windows\web\wallpaper\Windows\img0.jpg
DNS Servers: 62.129.50.20 - 85.135.32.100
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.
==================== MSCONFIG/TASK MANAGER disabled items ==
(Currently there is no automatic fix for this section.)
HKLM\...\StartupApproved\Run: => "NvBackend"
HKLM\...\StartupApproved\Run: => "ShadowPlay"
HKLM\...\StartupApproved\Run: => "RTHDVCPL"
HKU\S-1-5-21-1410555089-2074226881-640514690-1001\...\StartupApproved\Run: => "OneDrive"
HKU\S-1-5-21-1410555089-2074226881-640514690-1001\...\StartupApproved\Run: => "uTorrent"
==================== FirewallRules (Whitelisted) ===============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139
FirewallRules: [SPPSVC-In-TCP] => (Allow) %SystemRoot%\system32\sppextcomobj.exe
FirewallRules: [SPPSVC-In-TCP-NoScope] => (Allow) %SystemRoot%\system32\sppextcomobj.exe
FirewallRules: [{F228256D-0D96-4484-855C-ADB33F16FB56}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
FirewallRules: [{E31F1EB5-A31E-43CE-9F80-FF1D146E6F4E}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
FirewallRules: [{1170F138-FBC4-4A38-828A-23C365C71874}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
FirewallRules: [{51E99F88-0C65-450C-A794-77D5D192E42B}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
FirewallRules: [{BF477F33-AC6A-4D7F-A65A-C2B65B62C9D2}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe
FirewallRules: [{AEB0B0D5-FDA8-4221-8799-A39CA35F2A12}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{E8AC9284-69D6-4C7C-B234-5FC5CD35E1BA}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{1D924D54-FEEA-4686-A605-878041D3B00A}] => (Allow) C:\Users\Břeta a Miláček\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{6A7319F9-A932-4394-99D9-17EA0A3F714E}] => (Allow) C:\Users\Břeta a Miláček\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{B9C128FF-186C-4EA9-BE89-48429E5CD8CD}] => (Allow) C:\Users\Břeta a Miláček\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{15ACEDBD-3B38-46ED-B0DC-41ECD84F65EC}] => (Allow) C:\Users\Břeta a Miláček\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{B55D9373-F7B2-49FB-BF74-441D875FBB59}] => (Allow) C:\Users\Břeta a Miláček\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{A2845406-CEFD-4DE3-A0EC-09517E74C627}] => (Allow) C:\Users\Břeta a Miláček\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [TCP Query User{113AB4C3-EE3D-4C69-95C5-0A5C7A2DD960}C:\program files\pro evolution soccer 2015\pes2015.exe] => (Allow) C:\program files\pro evolution soccer 2015\pes2015.exe
FirewallRules: [UDP Query User{FB96F3B8-AFB4-4974-BADB-159CEB8E0608}C:\program files\pro evolution soccer 2015\pes2015.exe] => (Allow) C:\program files\pro evolution soccer 2015\pes2015.exe
FirewallRules: [{37F70C52-F335-4778-AC5D-C78133E0354F}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
==================== Faulty Device Manager Devices =============
==================== Event log errors: =========================
Application errors:
==================
Error: (08/09/2015 07:20:53 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: BRETA-MILAČEK)
Description: Aplikaci Microsoft.WindowsFeedback_cw5n1h2txyewy!App se nepovedlo aktivovat, protože došlo k chybě: -2144927142. Další informace najdete v protokolu Microsoft-Windows-TWinUI/Operational.
Error: (08/09/2015 06:57:41 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program explorer.exe verze 10.0.10240.16405 přestal spolupracovat se systémem Windows a byl ukončen. Chcete-li zjistit, zda je k dispozici více informací o tomto problému, vyhledejte historii problému v ovládacím panelu Zabezpečení a údržba.
ID procesu: c28
Čas spuštění: 01d0d2c42e1d3d4a
Čas ukončení: 0
Cesta k aplikaci: C:\Windows\explorer.exe
ID hlášení: 90ae0503-3eb7-11e5-9bcd-6c626d38d2ba
Úplný název balíčku s chybou:
ID aplikace související s balíčkem s chybou:
Error: (08/09/2015 06:55:13 PM) (Source: nssm) (EventID: 1010) (User: )
Description: uTorrent Serverutorrent.exeSystém nemůže nalézt uvedený soubor.
Error: (08/09/2015 03:12:37 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program SearchUI.exe verze 10.0.10240.16413 přestal spolupracovat se systémem Windows a byl ukončen. Chcete-li zjistit, zda je k dispozici více informací o tomto problému, vyhledejte historii problému v ovládacím panelu Zabezpečení a údržba.
ID procesu: d80
Čas spuštění: 01d0d2a5023fdedf
Čas ukončení: 4294967295
Cesta k aplikaci: C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe
ID hlášení: 4a96eccb-3e98-11e5-9bcc-6c626d38d2ba
Úplný název balíčku s chybou: Microsoft.Windows.Cortana_1.4.8.176_neutral_neutral_cw5n1h2txyewy
ID aplikace související s balíčkem s chybou: CortanaUI
Error: (08/09/2015 03:12:32 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: BRETA-MILAČEK)
Description: Aplikaci Microsoft.Windows.Cortana_cw5n1h2txyewy!CortanaUI se nepovedlo aktivovat, protože došlo k chybě: -2147023170. Další informace najdete v protokolu Microsoft-Windows-TWinUI/Operational.
Error: (08/09/2015 03:12:30 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 2486) (User: BRETA-MILAČEK)
Description: Aplikace Microsoft.Windows.Cortana_1.4.8.176_neutral_neutral_cw5n1h2txyewy+CortanaUI se nespustila ve stanovenou dobu.
Error: (08/09/2015 03:11:36 PM) (Source: nssm) (EventID: 1010) (User: )
Description: uTorrent Serverutorrent.exeSystém nemůže nalézt uvedený soubor.
Error: (08/09/2015 01:06:51 PM) (Source: nssm) (EventID: 1010) (User: )
Description: uTorrent Serverutorrent.exeSystém nemůže nalézt uvedený soubor.
Error: (08/09/2015 12:38:20 PM) (Source: nssm) (EventID: 1010) (User: )
Description: uTorrent Serverutorrent.exeSystém nemůže nalézt uvedený soubor.
Error: (08/09/2015 08:55:43 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: BRETA-MILAČEK)
Description: Aplikaci Microsoft.BingWeather_8wekyb3d8bbwe!App se nepovedlo aktivovat, protože došlo k chybě: -2144927141. Další informace najdete v protokolu Microsoft-Windows-TWinUI/Operational.
System errors:
=============
Error: (08/09/2015 07:22:55 PM) (Source: DCOM) (EventID: 10010) (User: BRETA-MILAČEK)
Description: App
Error: (08/09/2015 06:57:14 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba globalUpdate Update Service (globalUpdate) neuspěla při spuštění v důsledku následující chyby:
%%2
Error: (08/09/2015 06:55:13 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba uTorrent Server byla neočekávaně ukončena. Tento stav nastal již 1krát.
Error: (08/09/2015 06:55:13 PM) (Source: Service Control Manager) (EventID: 7024) (User: )
Description: Služba uTorrent Server skončila s následující chybou specifickou pro službu:
%%3
Error: (08/09/2015 06:54:15 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Hostitel synchronizace_Session2 byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 10000 milisekund: Restartovat službu.
Error: (08/09/2015 06:25:39 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Přístup k uživatelským datům_Session1 byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 10000 milisekund: Restartovat službu.
Error: (08/09/2015 06:25:39 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Úložiště uživatelských dat_Session1 byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 10000 milisekund: Restartovat službu.
Error: (08/09/2015 06:25:39 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Data kontaktů_Session1 byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 10000 milisekund: Restartovat službu.
Error: (08/09/2015 06:25:39 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Hostitel synchronizace_Session1 byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 10000 milisekund: Restartovat službu.
Error: (08/09/2015 05:47:43 PM) (Source: volsnap) (EventID: 36) (User: )
Description: Stínové kopie svazku C: byly přerušeny, protože z důvodu limitu stanoveného uživatelem se nepodařilo zvětšit úložiště stínové kopie.
Microsoft Office:
=========================
Error: (08/09/2015 07:20:53 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: BRETA-MILAČEK)
Description: Microsoft.WindowsFeedback_cw5n1h2txyewy!App-2144927142
Error: (08/09/2015 06:57:41 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: explorer.exe10.0.10240.16405c2801d0d2c42e1d3d4a0C:\Windows\explorer.exe90ae0503-3eb7-11e5-9bcd-6c626d38d2ba
Error: (08/09/2015 06:55:13 PM) (Source: nssm) (EventID: 1010) (User: )
Description: uTorrent Serverutorrent.exeSystém nemůže nalézt uvedený soubor.
Error: (08/09/2015 03:12:37 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: SearchUI.exe10.0.10240.16413d8001d0d2a5023fdedf4294967295C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe4a96eccb-3e98-11e5-9bcc-6c626d38d2baMicrosoft.Windows.Cortana_1.4.8.176_neutral_neutral_cw5n1h2txyewyCortanaUI
Error: (08/09/2015 03:12:32 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: BRETA-MILAČEK)
Description: Microsoft.Windows.Cortana_cw5n1h2txyewy!CortanaUI-2147023170
Error: (08/09/2015 03:12:30 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 2486) (User: BRETA-MILAČEK)
Description: Microsoft.Windows.Cortana_1.4.8.176_neutral_neutral_cw5n1h2txyewy+CortanaUI
Error: (08/09/2015 03:11:36 PM) (Source: nssm) (EventID: 1010) (User: )
Description: uTorrent Serverutorrent.exeSystém nemůže nalézt uvedený soubor.
Error: (08/09/2015 01:06:51 PM) (Source: nssm) (EventID: 1010) (User: )
Description: uTorrent Serverutorrent.exeSystém nemůže nalézt uvedený soubor.
Error: (08/09/2015 12:38:20 PM) (Source: nssm) (EventID: 1010) (User: )
Description: uTorrent Serverutorrent.exeSystém nemůže nalézt uvedený soubor.
Error: (08/09/2015 08:55:43 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: BRETA-MILAČEK)
Description: Microsoft.BingWeather_8wekyb3d8bbwe!App-2144927141
==================== Memory info ===========================
Processor: Intel(R) Core(TM) i5-2300 CPU @ 2.80GHz
Percentage of memory in use: 44%
Total physical RAM: 4078.64 MB
Available physical RAM: 2264.66 MB
Total Virtual: 5486.64 MB
Available Virtual: 3422.95 MB
==================== Drives ================================
Drive c: () (Fixed) (Total:292.43 GB) (Free:183.14 GB) NTFS
Drive d: () (Fixed) (Total:172.79 GB) (Free:171.08 GB) NTFS
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (MBR Code: Windows 7 or
(Size: 465.8 GB) (Disk ID: A9F69741)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=292.4 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=450 MB) - (Type=27)
Partition 4: (Not Active) - (Size=172.8 GB) - (Type=07 NTFS)
==================== End of log ============================
Ran by Břeta a Miláček (2015-08-09 19:28:55)
Running from C:\Users\Břeta a Miláček\Desktop
Boot Mode: Normal
==========================================================
==================== Accounts: =============================
Administrator (S-1-5-21-1410555089-2074226881-640514690-500 - Administrator - Disabled)
Břeta a Miláček (S-1-5-21-1410555089-2074226881-640514690-1001 - Administrator - Enabled) => C:\Users\Břeta a Miláček
DefaultAccount (S-1-5-21-1410555089-2074226881-640514690-503 - Limited - Disabled)
Guest (S-1-5-21-1410555089-2074226881-640514690-501 - Limited - Disabled)
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: avast! Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: avast! Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}
FW: avast! Antivirus (Enabled) {2F96FC65-F07D-9D1E-5A6E-3DA5C487EAF0}
==================== Installed Programs ======================
(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
µTorrent (HKU\S-1-5-21-1410555089-2074226881-640514690-1001\...\uTorrent) (Version: 3.4.3.40760 - BitTorrent Inc.)
Adobe Flash Player 18 PPAPI (HKLM-x32\...\Adobe Flash Player PPAPI) (Version: 18.0.0.209 - Adobe Systems Incorporated)
Aktualizace NVIDIA 2.5.12.11 (Version: 2.5.12.11 - NVIDIA Corporation) Hidden
Avast Premier (HKLM-x32\...\Avast) (Version: 10.3.2225 - AVAST Software)
globalupdate Helper (x32 Version: 1.3.25.0 - globalupdate Inc.) Hidden <==== ATTENTION
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 44.0.2403.130 - Google Inc.)
Google Update Helper (x32 Version: 1.3.28.1 - Google Inc.) Hidden
Malwarebytes Anti-Malware verze 2.1.8.1057 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.1.8.1057 - Malwarebytes Corporation)
Microsoft Silverlight (HKLM-x32\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
NVIDIA GeForce Experience 2.5.12.11 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.5.12.11 - NVIDIA Corporation)
NVIDIA Ovladač 3D Vision 353.62 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 353.62 - NVIDIA Corporation)
NVIDIA Ovladač HD audia 1.3.34.3 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.34.3 - NVIDIA Corporation)
NVIDIA Ovladač řídící jednotky 3D Vision 352.65 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 352.65 - NVIDIA Corporation)
NVIDIA Ovladače grafiky 353.62 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 353.62 - NVIDIA Corporation)
NVIDIA Systémový software PhysX 9.15.0428 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.15.0428 - NVIDIA Corporation)
Ovládací panel NVIDIA 353.62 (Version: 353.62 - NVIDIA Corporation) Hidden
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7535 - Realtek Semiconductor Corp.)
SHIELD Streaming (Version: 4.1.3000 - NVIDIA Corporation) Hidden
SHIELD Wireless Controller Driver (Version: 2.5.12.11 - NVIDIA Corporation) Hidden
==================== Custom CLSID (Whitelisted): ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
CustomCLSID: HKU\S-1-5-21-1410555089-2074226881-640514690-1001_Classes\CLSID\{018D5C66-4533-4307-9B53-224DE2ED1FE6}\InprocServer32 -> C:\Windows\system32\shell32.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1410555089-2074226881-640514690-1001_Classes\CLSID\{1BF42E4C-4AF4-4CFD-A1A0-CF2960B8F63E}\InprocServer32 -> C:\Users\Břeta a Miláček\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64\FileSyncShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1410555089-2074226881-640514690-1001_Classes\CLSID\{5AB7172C-9C11-405C-8DD5-AF20F3606282}\InprocServer32 -> C:\Users\Břeta a Miláček\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64\FileSyncShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1410555089-2074226881-640514690-1001_Classes\CLSID\{7AFDFDDB-F914-11E4-8377-6C3BE50D980C}\InprocServer32 -> C:\Users\Břeta a Miláček\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64\FileSyncShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1410555089-2074226881-640514690-1001_Classes\CLSID\{82CA8DE3-01AD-4CEA-9D75-BE4C51810A9E}\InprocServer32 -> C:\Users\Břeta a Miláček\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64\FileSyncShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1410555089-2074226881-640514690-1001_Classes\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}\InprocServer32 -> C:\Users\Břeta a Miláček\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64\FileSyncShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1410555089-2074226881-640514690-1001_Classes\CLSID\{A78ED123-AB77-406B-9962-2A5D9D2F7F30}\InprocServer32 -> C:\Users\Břeta a Miláček\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64\FileSyncShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1410555089-2074226881-640514690-1001_Classes\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524}\InprocServer32 -> C:\Users\Břeta a Miláček\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64\FileSyncShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1410555089-2074226881-640514690-1001_Classes\CLSID\{CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B}\InprocServer32 -> C:\Users\Břeta a Miláček\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64\FileSyncShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1410555089-2074226881-640514690-1001_Classes\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A}\InprocServer32 -> C:\Users\Břeta a Miláček\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64\FileSyncShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1410555089-2074226881-640514690-1001_Classes\CLSID\{F8071786-1FD0-4A66-81A1-3CBE29274458}\InprocServer32 -> C:\Users\Břeta a Miláček\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64\FileSyncApi64.dll (Microsoft Corporation)
==================== Restore Points =========================
==================== Hosts content: ===============================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2015-07-10 13:04 - 2015-07-10 13:02 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts
==================== Scheduled Tasks (Whitelisted) =============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {00EEBA9C-F9EF-4272-B793-C830FBADD359} - System32\Tasks\Microsoft\Windows\ApplicationData\DsSvcCleanup => C:\Windows\system32\dstokenclean.exe [2015-07-10] (Microsoft Corporation)
Task: {0CCA7916-2916-4F12-BD32-1E3BE31E1269} - System32\Tasks\Microsoft\Windows\Workplace Join\Automatic-Device-Join => C:\Windows\System32\dsregcmd.exe [2015-07-10] (Microsoft Corporation)
Task: {0DB27679-8217-4112-BC1A-5D389E77E388} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-08-09] (Adobe Systems Incorporated)
Task: {1641F54C-1E57-4902-AB65-EE2B65E5629D} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Schedule Scan => C:\Windows\system32\usoclient.exe [2015-07-10] (Microsoft Corporation)
Task: {19865544-CE08-40BE-8B8C-87C47681433D} - System32\Tasks\Microsoft\Windows\WindowsUpdate\sihboot => C:\Windows\System32\sihclient.exe [2015-07-10] (Microsoft Corporation)
Task: {1D3D099E-EE1E-4907-8BA2-BA8F12D11AA6} - System32\Tasks\Microsoft\Windows\Location\Notifications => C:\Windows\System32\LocationNotificationWindows.exe [2015-07-10] (Microsoft Corporation)
Task: {1F7A270C-46EE-4FC8-ADC5-B857ABA32EEC} - System32\Tasks\Microsoft\Windows\RetailDemo\CleanupOfflineContent
Task: {297F0E02-1FA8-478B-A8B9-185DFEC4C1ED} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2015-08-09] (AVAST Software)
Task: {2C97A00A-1C5C-4318-B5CC-8A1A126B77F9} - System32\Tasks\Microsoft\Windows\CertificateServicesClient\KeyPreGenTask
Task: {3F6E048D-6404-433B-8F5F-CFF4D89BF89E} - System32\Tasks\Microsoft\Windows\Application Experience\Microsoft Compatibility Appraiser => Rundll32.exe generaltel.dll,RunTelemetryW
Task: {41160EA0-208B-4C3E-B4DB-805BBABC6B93} - System32\Tasks\Microsoft\Windows\Feedback\Siuf\DmClient => C:\Windows\system32\dmclient.exe [2015-07-10] (Microsoft Corporation)
Task: {4454A8D0-2E4E-4A02-BF67-48DF6A7BFAB4} - System32\Tasks\Microsoft\Windows\Maps\MapsUpdateTask
Task: {5E5515C1-7D87-4904-B9CE-FD29EB2ADB72} - System32\Tasks\Microsoft\Windows\Sysmain\ResPriStaticDbSync
Task: {611C823C-437B-46E7-9683-5312DFFCFD7B} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Policy Install => C:\Windows\system32\usoclient.exe [2015-07-10] (Microsoft Corporation)
Task: {64D3074F-B951-474C-ABCD-3EC13D64708B} - System32\Tasks\Adobe Flash Player PPAPI Notifier => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_18_0_0_209_pepper.exe [2015-08-09] (Adobe Systems Incorporated)
Task: {711EE2F9-A611-4773-AF8E-D4B278A6718D} - System32\Tasks\Microsoft\Windows\CertificateServicesClient\AikCertEnrollTask
Task: {73551810-E5F4-433E-9494-0D00B55C855E} - System32\Tasks\Microsoft\Windows\Maps\MapsToastTask
Task: {744C9FEA-08B7-43E1-A729-0F94647D655C} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Resume On Boot => C:\Windows\system32\usoclient.exe [2015-07-10] (Microsoft Corporation)
Task: {78B77FA3-9D97-441D-97B6-68CEA40B4F74} - System32\Tasks\Microsoft\Windows\Application Experience\ProgramDataUpdater => Rundll32.exe generaltel.dll,RunTelemetry -maintenance
Task: {7A003965-A297-4DC6-B15B-852D798391E0} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Reboot => C:\Windows\system32\MusNotification.exe [2015-07-16] (Microsoft Corporation)
Task: {848DCC36-520C-4946-BF68-C7EFFEFA2F84} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker_ReadyToReboot => C:\windows\system32\MusNotification.exe [2015-07-16] (Microsoft Corporation)
Task: {8DF84CB3-D8E0-4307-A35B-CA74E21786DB} - System32\Tasks\Microsoft\Windows\Clip\License Validation => C:\Windows\system32\ClipUp.exe [2015-07-15] (Microsoft Corporation)
Task: {A364E297-00AD-490D-900E-22AC34598C71} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Maintenance Install => C:\Windows\system32\usoclient.exe [2015-07-10] (Microsoft Corporation)
Task: {A5B6CD85-1B57-49B9-BA80-5D5D65F02826} - System32\Tasks\Microsoft\Windows\AppID\EDP Policy Manager
Task: {AC29E64E-3271-47BA-B8F1-914523CF379B} - System32\Tasks\Microsoft\Windows\WindowsUpdate\Automatic App Update
Task: {B0B73FF7-3E27-48DF-A2CF-5B46C524ABD1} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-09] (Google Inc.)
Task: {B9B36D41-C776-424E-9A13-5387E17A2CEB} - System32\Tasks\Microsoft\Windows\WCM\WiFiTask => C:\Windows\System32\WiFiTask.exe [2015-07-10] (Microsoft Corporation)
Task: {BFA53E0A-7086-4206-B682-203E731C1A98} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-09] (Google Inc.)
Task: {C2162702-FFEB-48C0-AA5F-2DA3A8887D61} - System32\Tasks\Microsoft\Windows\LanguageComponentsInstaller\Installation
Task: {C56AFFD3-06B8-4A16-AF7E-F7A6EB3FAE9E} - System32\Tasks\Microsoft\Windows\TPM\Tpm-HASCertRetr
Task: {C5EE2EA2-5312-4D1F-B9D0-41B18DF31B78} - System32\Tasks\Microsoft\Windows\WindowsUpdate\sih => C:\Windows\System32\sihclient.exe [2015-07-10] (Microsoft Corporation)
Task: {C7A236B2-12E1-46DC-9501-3B1B0209CC09} - System32\Tasks\Microsoft\Windows\Location\WindowsActionDialog => C:\Windows\System32\WindowsActionDialog.exe [2015-07-10] (Microsoft Corporation)
Task: {D2401052-A382-42DE-9C79-D1CF3563F654} - System32\Tasks\Microsoft\Windows\LanguageComponentsInstaller\Uninstallation
Task: {DAF2BAE3-1C5B-4CB5-9F62-0911C031A15A} - System32\Tasks\Microsoft\Windows\DiskFootprint\Diagnostics => C:\Windows\system32\disksnapshot.exe [2015-07-10] (Microsoft Corporation)
Task: {EA3F661E-B31C-44A9-B40C-E3D5D56149D4} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker_Display => C:\windows\system32\MusNotification.exe [2015-07-16] (Microsoft Corporation)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\Windows\Tasks\Adobe Flash Player PPAPI Notifier.job => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_18_0_0_209_pepper.exe
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => 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
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\xT1yXX67.job => 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
==================== Loaded Modules (Whitelisted) ==============
2015-08-08 16:54 - 2015-07-15 04:04 - 00032768 _____ () C:\Windows\SYSTEM32\licensemanagerapi.dll
2015-08-08 16:54 - 2015-07-11 03:22 - 00403968 _____ () C:\Windows\System32\diagtrack_wininternal.dll
2015-08-08 16:54 - 2015-07-30 08:05 - 02498808 _____ () C:\Windows\system32\CoreUIComponents.dll
2015-08-08 16:54 - 2015-07-30 08:05 - 02498808 _____ () C:\Windows\System32\CoreUIComponents.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00429056 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\QuickActions.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00143360 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\XamlTileRendering.dll
2015-08-08 16:54 - 2015-08-02 03:37 - 06569472 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll
2015-07-10 13:00 - 2015-07-10 18:05 - 00471040 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
2015-08-08 16:54 - 2015-08-02 03:34 - 01806848 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll
2015-08-08 16:54 - 2015-08-02 03:35 - 02274816 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll
2015-07-10 13:00 - 2015-07-10 18:05 - 00210432 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.ProxyStub.dll
2015-08-09 00:45 - 2015-08-09 00:45 - 00102864 _____ () C:\Program Files\AVAST Software\Avast\log.dll
2015-08-09 00:45 - 2015-08-09 00:45 - 00123976 _____ () C:\Program Files\AVAST Software\Avast\JsonRpcServer.dll
2015-08-09 12:40 - 2015-08-09 12:40 - 02960384 _____ () C:\Program Files\AVAST Software\Avast\defs\15080900\algo.dll
2015-08-09 13:38 - 2015-07-31 08:19 - 01405768 _____ () C:\Program Files (x86)\Google\Chrome\Application\44.0.2403.130\libglesv2.dll
2015-08-09 13:38 - 2015-07-31 08:19 - 00081224 _____ () C:\Program Files (x86)\Google\Chrome\Application\44.0.2403.130\libegl.dll
==================== Alternate Data Streams (Whitelisted) =========
(If an entry is included in the fixlist, only the ADS will be removed.)
==================== Safe Mode (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TileDataModelSvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Ahcache.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\CoreMessagingRegistrar => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\StateRepository => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TileDataModelSvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\UserManager => ""="Service"
==================== EXE Association (Whitelisted) ===============
(If an entry is included in the fixlist, the registry item will be restored to default or removed.)
==================== Internet Explorer trusted/restricted ===============
(If an entry is included in the fixlist, it will be removed from the registry.)
==================== Other Areas ============================
(Currently there is no automatic fix for this section.)
HKU\S-1-5-21-1410555089-2074226881-640514690-1001\Control Panel\Desktop\\Wallpaper -> C:\Windows\web\wallpaper\Windows\img0.jpg
DNS Servers: 62.129.50.20 - 85.135.32.100
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.
==================== MSCONFIG/TASK MANAGER disabled items ==
(Currently there is no automatic fix for this section.)
HKLM\...\StartupApproved\Run: => "NvBackend"
HKLM\...\StartupApproved\Run: => "ShadowPlay"
HKLM\...\StartupApproved\Run: => "RTHDVCPL"
HKU\S-1-5-21-1410555089-2074226881-640514690-1001\...\StartupApproved\Run: => "OneDrive"
HKU\S-1-5-21-1410555089-2074226881-640514690-1001\...\StartupApproved\Run: => "uTorrent"
==================== FirewallRules (Whitelisted) ===============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139
FirewallRules: [SPPSVC-In-TCP] => (Allow) %SystemRoot%\system32\sppextcomobj.exe
FirewallRules: [SPPSVC-In-TCP-NoScope] => (Allow) %SystemRoot%\system32\sppextcomobj.exe
FirewallRules: [{F228256D-0D96-4484-855C-ADB33F16FB56}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
FirewallRules: [{E31F1EB5-A31E-43CE-9F80-FF1D146E6F4E}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
FirewallRules: [{1170F138-FBC4-4A38-828A-23C365C71874}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
FirewallRules: [{51E99F88-0C65-450C-A794-77D5D192E42B}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
FirewallRules: [{BF477F33-AC6A-4D7F-A65A-C2B65B62C9D2}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe
FirewallRules: [{AEB0B0D5-FDA8-4221-8799-A39CA35F2A12}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{E8AC9284-69D6-4C7C-B234-5FC5CD35E1BA}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{1D924D54-FEEA-4686-A605-878041D3B00A}] => (Allow) C:\Users\Břeta a Miláček\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{6A7319F9-A932-4394-99D9-17EA0A3F714E}] => (Allow) C:\Users\Břeta a Miláček\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{B9C128FF-186C-4EA9-BE89-48429E5CD8CD}] => (Allow) C:\Users\Břeta a Miláček\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{15ACEDBD-3B38-46ED-B0DC-41ECD84F65EC}] => (Allow) C:\Users\Břeta a Miláček\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{B55D9373-F7B2-49FB-BF74-441D875FBB59}] => (Allow) C:\Users\Břeta a Miláček\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{A2845406-CEFD-4DE3-A0EC-09517E74C627}] => (Allow) C:\Users\Břeta a Miláček\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [TCP Query User{113AB4C3-EE3D-4C69-95C5-0A5C7A2DD960}C:\program files\pro evolution soccer 2015\pes2015.exe] => (Allow) C:\program files\pro evolution soccer 2015\pes2015.exe
FirewallRules: [UDP Query User{FB96F3B8-AFB4-4974-BADB-159CEB8E0608}C:\program files\pro evolution soccer 2015\pes2015.exe] => (Allow) C:\program files\pro evolution soccer 2015\pes2015.exe
FirewallRules: [{37F70C52-F335-4778-AC5D-C78133E0354F}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
==================== Faulty Device Manager Devices =============
==================== Event log errors: =========================
Application errors:
==================
Error: (08/09/2015 07:20:53 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: BRETA-MILAČEK)
Description: Aplikaci Microsoft.WindowsFeedback_cw5n1h2txyewy!App se nepovedlo aktivovat, protože došlo k chybě: -2144927142. Další informace najdete v protokolu Microsoft-Windows-TWinUI/Operational.
Error: (08/09/2015 06:57:41 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program explorer.exe verze 10.0.10240.16405 přestal spolupracovat se systémem Windows a byl ukončen. Chcete-li zjistit, zda je k dispozici více informací o tomto problému, vyhledejte historii problému v ovládacím panelu Zabezpečení a údržba.
ID procesu: c28
Čas spuštění: 01d0d2c42e1d3d4a
Čas ukončení: 0
Cesta k aplikaci: C:\Windows\explorer.exe
ID hlášení: 90ae0503-3eb7-11e5-9bcd-6c626d38d2ba
Úplný název balíčku s chybou:
ID aplikace související s balíčkem s chybou:
Error: (08/09/2015 06:55:13 PM) (Source: nssm) (EventID: 1010) (User: )
Description: uTorrent Serverutorrent.exeSystém nemůže nalézt uvedený soubor.
Error: (08/09/2015 03:12:37 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program SearchUI.exe verze 10.0.10240.16413 přestal spolupracovat se systémem Windows a byl ukončen. Chcete-li zjistit, zda je k dispozici více informací o tomto problému, vyhledejte historii problému v ovládacím panelu Zabezpečení a údržba.
ID procesu: d80
Čas spuštění: 01d0d2a5023fdedf
Čas ukončení: 4294967295
Cesta k aplikaci: C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe
ID hlášení: 4a96eccb-3e98-11e5-9bcc-6c626d38d2ba
Úplný název balíčku s chybou: Microsoft.Windows.Cortana_1.4.8.176_neutral_neutral_cw5n1h2txyewy
ID aplikace související s balíčkem s chybou: CortanaUI
Error: (08/09/2015 03:12:32 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: BRETA-MILAČEK)
Description: Aplikaci Microsoft.Windows.Cortana_cw5n1h2txyewy!CortanaUI se nepovedlo aktivovat, protože došlo k chybě: -2147023170. Další informace najdete v protokolu Microsoft-Windows-TWinUI/Operational.
Error: (08/09/2015 03:12:30 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 2486) (User: BRETA-MILAČEK)
Description: Aplikace Microsoft.Windows.Cortana_1.4.8.176_neutral_neutral_cw5n1h2txyewy+CortanaUI se nespustila ve stanovenou dobu.
Error: (08/09/2015 03:11:36 PM) (Source: nssm) (EventID: 1010) (User: )
Description: uTorrent Serverutorrent.exeSystém nemůže nalézt uvedený soubor.
Error: (08/09/2015 01:06:51 PM) (Source: nssm) (EventID: 1010) (User: )
Description: uTorrent Serverutorrent.exeSystém nemůže nalézt uvedený soubor.
Error: (08/09/2015 12:38:20 PM) (Source: nssm) (EventID: 1010) (User: )
Description: uTorrent Serverutorrent.exeSystém nemůže nalézt uvedený soubor.
Error: (08/09/2015 08:55:43 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: BRETA-MILAČEK)
Description: Aplikaci Microsoft.BingWeather_8wekyb3d8bbwe!App se nepovedlo aktivovat, protože došlo k chybě: -2144927141. Další informace najdete v protokolu Microsoft-Windows-TWinUI/Operational.
System errors:
=============
Error: (08/09/2015 07:22:55 PM) (Source: DCOM) (EventID: 10010) (User: BRETA-MILAČEK)
Description: App
Error: (08/09/2015 06:57:14 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba globalUpdate Update Service (globalUpdate) neuspěla při spuštění v důsledku následující chyby:
%%2
Error: (08/09/2015 06:55:13 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba uTorrent Server byla neočekávaně ukončena. Tento stav nastal již 1krát.
Error: (08/09/2015 06:55:13 PM) (Source: Service Control Manager) (EventID: 7024) (User: )
Description: Služba uTorrent Server skončila s následující chybou specifickou pro službu:
%%3
Error: (08/09/2015 06:54:15 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Hostitel synchronizace_Session2 byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 10000 milisekund: Restartovat službu.
Error: (08/09/2015 06:25:39 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Přístup k uživatelským datům_Session1 byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 10000 milisekund: Restartovat službu.
Error: (08/09/2015 06:25:39 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Úložiště uživatelských dat_Session1 byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 10000 milisekund: Restartovat službu.
Error: (08/09/2015 06:25:39 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Data kontaktů_Session1 byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 10000 milisekund: Restartovat službu.
Error: (08/09/2015 06:25:39 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Hostitel synchronizace_Session1 byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 10000 milisekund: Restartovat službu.
Error: (08/09/2015 05:47:43 PM) (Source: volsnap) (EventID: 36) (User: )
Description: Stínové kopie svazku C: byly přerušeny, protože z důvodu limitu stanoveného uživatelem se nepodařilo zvětšit úložiště stínové kopie.
Microsoft Office:
=========================
Error: (08/09/2015 07:20:53 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: BRETA-MILAČEK)
Description: Microsoft.WindowsFeedback_cw5n1h2txyewy!App-2144927142
Error: (08/09/2015 06:57:41 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: explorer.exe10.0.10240.16405c2801d0d2c42e1d3d4a0C:\Windows\explorer.exe90ae0503-3eb7-11e5-9bcd-6c626d38d2ba
Error: (08/09/2015 06:55:13 PM) (Source: nssm) (EventID: 1010) (User: )
Description: uTorrent Serverutorrent.exeSystém nemůže nalézt uvedený soubor.
Error: (08/09/2015 03:12:37 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: SearchUI.exe10.0.10240.16413d8001d0d2a5023fdedf4294967295C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe4a96eccb-3e98-11e5-9bcc-6c626d38d2baMicrosoft.Windows.Cortana_1.4.8.176_neutral_neutral_cw5n1h2txyewyCortanaUI
Error: (08/09/2015 03:12:32 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: BRETA-MILAČEK)
Description: Microsoft.Windows.Cortana_cw5n1h2txyewy!CortanaUI-2147023170
Error: (08/09/2015 03:12:30 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 2486) (User: BRETA-MILAČEK)
Description: Microsoft.Windows.Cortana_1.4.8.176_neutral_neutral_cw5n1h2txyewy+CortanaUI
Error: (08/09/2015 03:11:36 PM) (Source: nssm) (EventID: 1010) (User: )
Description: uTorrent Serverutorrent.exeSystém nemůže nalézt uvedený soubor.
Error: (08/09/2015 01:06:51 PM) (Source: nssm) (EventID: 1010) (User: )
Description: uTorrent Serverutorrent.exeSystém nemůže nalézt uvedený soubor.
Error: (08/09/2015 12:38:20 PM) (Source: nssm) (EventID: 1010) (User: )
Description: uTorrent Serverutorrent.exeSystém nemůže nalézt uvedený soubor.
Error: (08/09/2015 08:55:43 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: BRETA-MILAČEK)
Description: Microsoft.BingWeather_8wekyb3d8bbwe!App-2144927141
==================== Memory info ===========================
Processor: Intel(R) Core(TM) i5-2300 CPU @ 2.80GHz
Percentage of memory in use: 44%
Total physical RAM: 4078.64 MB
Available physical RAM: 2264.66 MB
Total Virtual: 5486.64 MB
Available Virtual: 3422.95 MB
==================== Drives ================================
Drive c: () (Fixed) (Total:292.43 GB) (Free:183.14 GB) NTFS
Drive d: () (Fixed) (Total:172.79 GB) (Free:171.08 GB) NTFS
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (MBR Code: Windows 7 or

Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=292.4 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=450 MB) - (Type=27)
Partition 4: (Not Active) - (Size=172.8 GB) - (Type=07 NTFS)
==================== End of log ============================
Re: Shooper pro
Additional scan result of Farbar Recovery Scan Tool (x64) Version:08-08-2015 01
Ran by Břeta a Miláček (2015-08-09 19:28:55)
Running from C:\Users\Břeta a Miláček\Desktop
Boot Mode: Normal
==========================================================
==================== Accounts: =============================
Administrator (S-1-5-21-1410555089-2074226881-640514690-500 - Administrator - Disabled)
Břeta a Miláček (S-1-5-21-1410555089-2074226881-640514690-1001 - Administrator - Enabled) => C:\Users\Břeta a Miláček
DefaultAccount (S-1-5-21-1410555089-2074226881-640514690-503 - Limited - Disabled)
Guest (S-1-5-21-1410555089-2074226881-640514690-501 - Limited - Disabled)
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: avast! Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: avast! Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}
FW: avast! Antivirus (Enabled) {2F96FC65-F07D-9D1E-5A6E-3DA5C487EAF0}
==================== Installed Programs ======================
(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
µTorrent (HKU\S-1-5-21-1410555089-2074226881-640514690-1001\...\uTorrent) (Version: 3.4.3.40760 - BitTorrent Inc.)
Adobe Flash Player 18 PPAPI (HKLM-x32\...\Adobe Flash Player PPAPI) (Version: 18.0.0.209 - Adobe Systems Incorporated)
Aktualizace NVIDIA 2.5.12.11 (Version: 2.5.12.11 - NVIDIA Corporation) Hidden
Avast Premier (HKLM-x32\...\Avast) (Version: 10.3.2225 - AVAST Software)
globalupdate Helper (x32 Version: 1.3.25.0 - globalupdate Inc.) Hidden <==== ATTENTION
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 44.0.2403.130 - Google Inc.)
Google Update Helper (x32 Version: 1.3.28.1 - Google Inc.) Hidden
Malwarebytes Anti-Malware verze 2.1.8.1057 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.1.8.1057 - Malwarebytes Corporation)
Microsoft Silverlight (HKLM-x32\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
NVIDIA GeForce Experience 2.5.12.11 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.5.12.11 - NVIDIA Corporation)
NVIDIA Ovladač 3D Vision 353.62 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 353.62 - NVIDIA Corporation)
NVIDIA Ovladač HD audia 1.3.34.3 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.34.3 - NVIDIA Corporation)
NVIDIA Ovladač řídící jednotky 3D Vision 352.65 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 352.65 - NVIDIA Corporation)
NVIDIA Ovladače grafiky 353.62 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 353.62 - NVIDIA Corporation)
NVIDIA Systémový software PhysX 9.15.0428 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.15.0428 - NVIDIA Corporation)
Ovládací panel NVIDIA 353.62 (Version: 353.62 - NVIDIA Corporation) Hidden
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7535 - Realtek Semiconductor Corp.)
SHIELD Streaming (Version: 4.1.3000 - NVIDIA Corporation) Hidden
SHIELD Wireless Controller Driver (Version: 2.5.12.11 - NVIDIA Corporation) Hidden
==================== Custom CLSID (Whitelisted): ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
CustomCLSID: HKU\S-1-5-21-1410555089-2074226881-640514690-1001_Classes\CLSID\{018D5C66-4533-4307-9B53-224DE2ED1FE6}\InprocServer32 -> C:\Windows\system32\shell32.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1410555089-2074226881-640514690-1001_Classes\CLSID\{1BF42E4C-4AF4-4CFD-A1A0-CF2960B8F63E}\InprocServer32 -> C:\Users\Břeta a Miláček\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64\FileSyncShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1410555089-2074226881-640514690-1001_Classes\CLSID\{5AB7172C-9C11-405C-8DD5-AF20F3606282}\InprocServer32 -> C:\Users\Břeta a Miláček\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64\FileSyncShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1410555089-2074226881-640514690-1001_Classes\CLSID\{7AFDFDDB-F914-11E4-8377-6C3BE50D980C}\InprocServer32 -> C:\Users\Břeta a Miláček\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64\FileSyncShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1410555089-2074226881-640514690-1001_Classes\CLSID\{82CA8DE3-01AD-4CEA-9D75-BE4C51810A9E}\InprocServer32 -> C:\Users\Břeta a Miláček\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64\FileSyncShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1410555089-2074226881-640514690-1001_Classes\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}\InprocServer32 -> C:\Users\Břeta a Miláček\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64\FileSyncShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1410555089-2074226881-640514690-1001_Classes\CLSID\{A78ED123-AB77-406B-9962-2A5D9D2F7F30}\InprocServer32 -> C:\Users\Břeta a Miláček\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64\FileSyncShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1410555089-2074226881-640514690-1001_Classes\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524}\InprocServer32 -> C:\Users\Břeta a Miláček\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64\FileSyncShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1410555089-2074226881-640514690-1001_Classes\CLSID\{CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B}\InprocServer32 -> C:\Users\Břeta a Miláček\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64\FileSyncShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1410555089-2074226881-640514690-1001_Classes\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A}\InprocServer32 -> C:\Users\Břeta a Miláček\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64\FileSyncShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1410555089-2074226881-640514690-1001_Classes\CLSID\{F8071786-1FD0-4A66-81A1-3CBE29274458}\InprocServer32 -> C:\Users\Břeta a Miláček\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64\FileSyncApi64.dll (Microsoft Corporation)
==================== Restore Points =========================
==================== Hosts content: ===============================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2015-07-10 13:04 - 2015-07-10 13:02 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts
==================== Scheduled Tasks (Whitelisted) =============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {00EEBA9C-F9EF-4272-B793-C830FBADD359} - System32\Tasks\Microsoft\Windows\ApplicationData\DsSvcCleanup => C:\Windows\system32\dstokenclean.exe [2015-07-10] (Microsoft Corporation)
Task: {0CCA7916-2916-4F12-BD32-1E3BE31E1269} - System32\Tasks\Microsoft\Windows\Workplace Join\Automatic-Device-Join => C:\Windows\System32\dsregcmd.exe [2015-07-10] (Microsoft Corporation)
Task: {0DB27679-8217-4112-BC1A-5D389E77E388} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-08-09] (Adobe Systems Incorporated)
Task: {1641F54C-1E57-4902-AB65-EE2B65E5629D} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Schedule Scan => C:\Windows\system32\usoclient.exe [2015-07-10] (Microsoft Corporation)
Task: {19865544-CE08-40BE-8B8C-87C47681433D} - System32\Tasks\Microsoft\Windows\WindowsUpdate\sihboot => C:\Windows\System32\sihclient.exe [2015-07-10] (Microsoft Corporation)
Task: {1D3D099E-EE1E-4907-8BA2-BA8F12D11AA6} - System32\Tasks\Microsoft\Windows\Location\Notifications => C:\Windows\System32\LocationNotificationWindows.exe [2015-07-10] (Microsoft Corporation)
Task: {1F7A270C-46EE-4FC8-ADC5-B857ABA32EEC} - System32\Tasks\Microsoft\Windows\RetailDemo\CleanupOfflineContent
Task: {297F0E02-1FA8-478B-A8B9-185DFEC4C1ED} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2015-08-09] (AVAST Software)
Task: {2C97A00A-1C5C-4318-B5CC-8A1A126B77F9} - System32\Tasks\Microsoft\Windows\CertificateServicesClient\KeyPreGenTask
Task: {3F6E048D-6404-433B-8F5F-CFF4D89BF89E} - System32\Tasks\Microsoft\Windows\Application Experience\Microsoft Compatibility Appraiser => Rundll32.exe generaltel.dll,RunTelemetryW
Task: {41160EA0-208B-4C3E-B4DB-805BBABC6B93} - System32\Tasks\Microsoft\Windows\Feedback\Siuf\DmClient => C:\Windows\system32\dmclient.exe [2015-07-10] (Microsoft Corporation)
Task: {4454A8D0-2E4E-4A02-BF67-48DF6A7BFAB4} - System32\Tasks\Microsoft\Windows\Maps\MapsUpdateTask
Task: {5E5515C1-7D87-4904-B9CE-FD29EB2ADB72} - System32\Tasks\Microsoft\Windows\Sysmain\ResPriStaticDbSync
Task: {611C823C-437B-46E7-9683-5312DFFCFD7B} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Policy Install => C:\Windows\system32\usoclient.exe [2015-07-10] (Microsoft Corporation)
Task: {64D3074F-B951-474C-ABCD-3EC13D64708B} - System32\Tasks\Adobe Flash Player PPAPI Notifier => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_18_0_0_209_pepper.exe [2015-08-09] (Adobe Systems Incorporated)
Task: {711EE2F9-A611-4773-AF8E-D4B278A6718D} - System32\Tasks\Microsoft\Windows\CertificateServicesClient\AikCertEnrollTask
Task: {73551810-E5F4-433E-9494-0D00B55C855E} - System32\Tasks\Microsoft\Windows\Maps\MapsToastTask
Task: {744C9FEA-08B7-43E1-A729-0F94647D655C} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Resume On Boot => C:\Windows\system32\usoclient.exe [2015-07-10] (Microsoft Corporation)
Task: {78B77FA3-9D97-441D-97B6-68CEA40B4F74} - System32\Tasks\Microsoft\Windows\Application Experience\ProgramDataUpdater => Rundll32.exe generaltel.dll,RunTelemetry -maintenance
Task: {7A003965-A297-4DC6-B15B-852D798391E0} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Reboot => C:\Windows\system32\MusNotification.exe [2015-07-16] (Microsoft Corporation)
Task: {848DCC36-520C-4946-BF68-C7EFFEFA2F84} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker_ReadyToReboot => C:\windows\system32\MusNotification.exe [2015-07-16] (Microsoft Corporation)
Task: {8DF84CB3-D8E0-4307-A35B-CA74E21786DB} - System32\Tasks\Microsoft\Windows\Clip\License Validation => C:\Windows\system32\ClipUp.exe [2015-07-15] (Microsoft Corporation)
Task: {A364E297-00AD-490D-900E-22AC34598C71} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Maintenance Install => C:\Windows\system32\usoclient.exe [2015-07-10] (Microsoft Corporation)
Task: {A5B6CD85-1B57-49B9-BA80-5D5D65F02826} - System32\Tasks\Microsoft\Windows\AppID\EDP Policy Manager
Task: {AC29E64E-3271-47BA-B8F1-914523CF379B} - System32\Tasks\Microsoft\Windows\WindowsUpdate\Automatic App Update
Task: {B0B73FF7-3E27-48DF-A2CF-5B46C524ABD1} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-09] (Google Inc.)
Task: {B9B36D41-C776-424E-9A13-5387E17A2CEB} - System32\Tasks\Microsoft\Windows\WCM\WiFiTask => C:\Windows\System32\WiFiTask.exe [2015-07-10] (Microsoft Corporation)
Task: {BFA53E0A-7086-4206-B682-203E731C1A98} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-09] (Google Inc.)
Task: {C2162702-FFEB-48C0-AA5F-2DA3A8887D61} - System32\Tasks\Microsoft\Windows\LanguageComponentsInstaller\Installation
Task: {C56AFFD3-06B8-4A16-AF7E-F7A6EB3FAE9E} - System32\Tasks\Microsoft\Windows\TPM\Tpm-HASCertRetr
Task: {C5EE2EA2-5312-4D1F-B9D0-41B18DF31B78} - System32\Tasks\Microsoft\Windows\WindowsUpdate\sih => C:\Windows\System32\sihclient.exe [2015-07-10] (Microsoft Corporation)
Task: {C7A236B2-12E1-46DC-9501-3B1B0209CC09} - System32\Tasks\Microsoft\Windows\Location\WindowsActionDialog => C:\Windows\System32\WindowsActionDialog.exe [2015-07-10] (Microsoft Corporation)
Task: {D2401052-A382-42DE-9C79-D1CF3563F654} - System32\Tasks\Microsoft\Windows\LanguageComponentsInstaller\Uninstallation
Task: {DAF2BAE3-1C5B-4CB5-9F62-0911C031A15A} - System32\Tasks\Microsoft\Windows\DiskFootprint\Diagnostics => C:\Windows\system32\disksnapshot.exe [2015-07-10] (Microsoft Corporation)
Task: {EA3F661E-B31C-44A9-B40C-E3D5D56149D4} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker_Display => C:\windows\system32\MusNotification.exe [2015-07-16] (Microsoft Corporation)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\Windows\Tasks\Adobe Flash Player PPAPI Notifier.job => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_18_0_0_209_pepper.exe
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => 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
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\xT1yXX67.job => 0x000A0100E61858A8B8826241A3E5E471978693E14600BE03000000003C000A0020000000FEFFFFFF000000000313040000208001000000000000000000000000000000000000360043003A005C00550073006500720073005C004200FDFF6500740061002000610020004D0069006C00FDFFFDFF65006B005C0041007000700044006100740061005C0052006F0061006D0069006E0067005C00780054003100790058005800360037002E0065007800650000005D012D002D0063003D0068005A006D00540048004A002B006F0067004600590049007A0057006F006600570044004C003700370048004A0052004900620035006F0059003300440059005500640069007700480065006400320036006C0030007A0059005A0069006D00790052003400770056004500300058003200660051003200650034005800670069006A004900580050007A003100360044006F00580051004100330061005400300042003500450054006A004F0069005100550047005A002F002B0030004900790078007400770075004100370047005600640034007500680046004A006600410050007A0047004700590061006B00360079006B00390074004C006400570078004F006C0053003200750032006E00460032002F006400760041004A004E004600330077004200440055007A00710048006400320058005400700039004E005A00570048003400470032006B0067005300540070006D005000370039005A004C004B005100490037004700660031003700470079006A007900740066002B0058006D006D006D004600530079006E004400330034004A00780068007A003600300037003300420062006F003700690074007700580076006F00380033006F0045007A004F004E006D0032003000640038002B003800700031004F004A006E007000350041006F006D006600490057007A0041006E006F005100580041003600560061004F00560072004400410032003200690075003800610068005A003700300048004600360069005400610056004A003300540057004C007600650074004F004F007A00500049007A006200670056004E00780049002F004D00440057006B004C004F005900670059006E004400720068002B00780031003300660069004400650078005A004B00670034004600490056006F005500500050004B00470046006B0039007000570067003D003D00000000001E00420052004500540041002D004D0049004C0041000C0145004B005C00420059016500740061002000610020004D0069006C00E1000D0165006B0000000000000008000313040000000000020030000000C00701000100000000000000000000000000000000000000000000000700000001000000000000000000000030000100C0070100010000000000000016002100A0050000C10200000000000001000000010000000000000000000000
==================== Loaded Modules (Whitelisted) ==============
2015-08-08 16:54 - 2015-07-15 04:04 - 00032768 _____ () C:\Windows\SYSTEM32\licensemanagerapi.dll
2015-08-08 16:54 - 2015-07-11 03:22 - 00403968 _____ () C:\Windows\System32\diagtrack_wininternal.dll
2015-08-08 16:54 - 2015-07-30 08:05 - 02498808 _____ () C:\Windows\system32\CoreUIComponents.dll
2015-08-08 16:54 - 2015-07-30 08:05 - 02498808 _____ () C:\Windows\System32\CoreUIComponents.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00429056 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\QuickActions.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00143360 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\XamlTileRendering.dll
2015-08-08 16:54 - 2015-08-02 03:37 - 06569472 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll
2015-07-10 13:00 - 2015-07-10 18:05 - 00471040 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
2015-08-08 16:54 - 2015-08-02 03:34 - 01806848 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll
2015-08-08 16:54 - 2015-08-02 03:35 - 02274816 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll
2015-07-10 13:00 - 2015-07-10 18:05 - 00210432 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.ProxyStub.dll
2015-08-09 00:45 - 2015-08-09 00:45 - 00102864 _____ () C:\Program Files\AVAST Software\Avast\log.dll
2015-08-09 00:45 - 2015-08-09 00:45 - 00123976 _____ () C:\Program Files\AVAST Software\Avast\JsonRpcServer.dll
2015-08-09 12:40 - 2015-08-09 12:40 - 02960384 _____ () C:\Program Files\AVAST Software\Avast\defs\15080900\algo.dll
2015-08-09 13:38 - 2015-07-31 08:19 - 01405768 _____ () C:\Program Files (x86)\Google\Chrome\Application\44.0.2403.130\libglesv2.dll
2015-08-09 13:38 - 2015-07-31 08:19 - 00081224 _____ () C:\Program Files (x86)\Google\Chrome\Application\44.0.2403.130\libegl.dll
==================== Alternate Data Streams (Whitelisted) =========
(If an entry is included in the fixlist, only the ADS will be removed.)
==================== Safe Mode (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TileDataModelSvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Ahcache.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\CoreMessagingRegistrar => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\StateRepository => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TileDataModelSvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\UserManager => ""="Service"
==================== EXE Association (Whitelisted) ===============
(If an entry is included in the fixlist, the registry item will be restored to default or removed.)
==================== Internet Explorer trusted/restricted ===============
(If an entry is included in the fixlist, it will be removed from the registry.)
==================== Other Areas ============================
(Currently there is no automatic fix for this section.)
HKU\S-1-5-21-1410555089-2074226881-640514690-1001\Control Panel\Desktop\\Wallpaper -> C:\Windows\web\wallpaper\Windows\img0.jpg
DNS Servers: 62.129.50.20 - 85.135.32.100
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.
==================== MSCONFIG/TASK MANAGER disabled items ==
(Currently there is no automatic fix for this section.)
HKLM\...\StartupApproved\Run: => "NvBackend"
HKLM\...\StartupApproved\Run: => "ShadowPlay"
HKLM\...\StartupApproved\Run: => "RTHDVCPL"
HKU\S-1-5-21-1410555089-2074226881-640514690-1001\...\StartupApproved\Run: => "OneDrive"
HKU\S-1-5-21-1410555089-2074226881-640514690-1001\...\StartupApproved\Run: => "uTorrent"
==================== FirewallRules (Whitelisted) ===============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139
FirewallRules: [SPPSVC-In-TCP] => (Allow) %SystemRoot%\system32\sppextcomobj.exe
FirewallRules: [SPPSVC-In-TCP-NoScope] => (Allow) %SystemRoot%\system32\sppextcomobj.exe
FirewallRules: [{F228256D-0D96-4484-855C-ADB33F16FB56}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
FirewallRules: [{E31F1EB5-A31E-43CE-9F80-FF1D146E6F4E}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
FirewallRules: [{1170F138-FBC4-4A38-828A-23C365C71874}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
FirewallRules: [{51E99F88-0C65-450C-A794-77D5D192E42B}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
FirewallRules: [{BF477F33-AC6A-4D7F-A65A-C2B65B62C9D2}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe
FirewallRules: [{AEB0B0D5-FDA8-4221-8799-A39CA35F2A12}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{E8AC9284-69D6-4C7C-B234-5FC5CD35E1BA}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{1D924D54-FEEA-4686-A605-878041D3B00A}] => (Allow) C:\Users\Břeta a Miláček\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{6A7319F9-A932-4394-99D9-17EA0A3F714E}] => (Allow) C:\Users\Břeta a Miláček\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{B9C128FF-186C-4EA9-BE89-48429E5CD8CD}] => (Allow) C:\Users\Břeta a Miláček\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{15ACEDBD-3B38-46ED-B0DC-41ECD84F65EC}] => (Allow) C:\Users\Břeta a Miláček\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{B55D9373-F7B2-49FB-BF74-441D875FBB59}] => (Allow) C:\Users\Břeta a Miláček\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{A2845406-CEFD-4DE3-A0EC-09517E74C627}] => (Allow) C:\Users\Břeta a Miláček\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [TCP Query User{113AB4C3-EE3D-4C69-95C5-0A5C7A2DD960}C:\program files\pro evolution soccer 2015\pes2015.exe] => (Allow) C:\program files\pro evolution soccer 2015\pes2015.exe
FirewallRules: [UDP Query User{FB96F3B8-AFB4-4974-BADB-159CEB8E0608}C:\program files\pro evolution soccer 2015\pes2015.exe] => (Allow) C:\program files\pro evolution soccer 2015\pes2015.exe
FirewallRules: [{37F70C52-F335-4778-AC5D-C78133E0354F}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
==================== Faulty Device Manager Devices =============
==================== Event log errors: =========================
Application errors:
==================
Error: (08/09/2015 07:20:53 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: BRETA-MILAČEK)
Description: Aplikaci Microsoft.WindowsFeedback_cw5n1h2txyewy!App se nepovedlo aktivovat, protože došlo k chybě: -2144927142. Další informace najdete v protokolu Microsoft-Windows-TWinUI/Operational.
Error: (08/09/2015 06:57:41 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program explorer.exe verze 10.0.10240.16405 přestal spolupracovat se systémem Windows a byl ukončen. Chcete-li zjistit, zda je k dispozici více informací o tomto problému, vyhledejte historii problému v ovládacím panelu Zabezpečení a údržba.
ID procesu: c28
Čas spuštění: 01d0d2c42e1d3d4a
Čas ukončení: 0
Cesta k aplikaci: C:\Windows\explorer.exe
ID hlášení: 90ae0503-3eb7-11e5-9bcd-6c626d38d2ba
Úplný název balíčku s chybou:
ID aplikace související s balíčkem s chybou:
Error: (08/09/2015 06:55:13 PM) (Source: nssm) (EventID: 1010) (User: )
Description: uTorrent Serverutorrent.exeSystém nemůže nalézt uvedený soubor.
Error: (08/09/2015 03:12:37 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program SearchUI.exe verze 10.0.10240.16413 přestal spolupracovat se systémem Windows a byl ukončen. Chcete-li zjistit, zda je k dispozici více informací o tomto problému, vyhledejte historii problému v ovládacím panelu Zabezpečení a údržba.
ID procesu: d80
Čas spuštění: 01d0d2a5023fdedf
Čas ukončení: 4294967295
Cesta k aplikaci: C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe
ID hlášení: 4a96eccb-3e98-11e5-9bcc-6c626d38d2ba
Úplný název balíčku s chybou: Microsoft.Windows.Cortana_1.4.8.176_neutral_neutral_cw5n1h2txyewy
ID aplikace související s balíčkem s chybou: CortanaUI
Error: (08/09/2015 03:12:32 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: BRETA-MILAČEK)
Description: Aplikaci Microsoft.Windows.Cortana_cw5n1h2txyewy!CortanaUI se nepovedlo aktivovat, protože došlo k chybě: -2147023170. Další informace najdete v protokolu Microsoft-Windows-TWinUI/Operational.
Error: (08/09/2015 03:12:30 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 2486) (User: BRETA-MILAČEK)
Description: Aplikace Microsoft.Windows.Cortana_1.4.8.176_neutral_neutral_cw5n1h2txyewy+CortanaUI se nespustila ve stanovenou dobu.
Error: (08/09/2015 03:11:36 PM) (Source: nssm) (EventID: 1010) (User: )
Description: uTorrent Serverutorrent.exeSystém nemůže nalézt uvedený soubor.
Error: (08/09/2015 01:06:51 PM) (Source: nssm) (EventID: 1010) (User: )
Description: uTorrent Serverutorrent.exeSystém nemůže nalézt uvedený soubor.
Error: (08/09/2015 12:38:20 PM) (Source: nssm) (EventID: 1010) (User: )
Description: uTorrent Serverutorrent.exeSystém nemůže nalézt uvedený soubor.
Error: (08/09/2015 08:55:43 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: BRETA-MILAČEK)
Description: Aplikaci Microsoft.BingWeather_8wekyb3d8bbwe!App se nepovedlo aktivovat, protože došlo k chybě: -2144927141. Další informace najdete v protokolu Microsoft-Windows-TWinUI/Operational.
System errors:
=============
Error: (08/09/2015 07:22:55 PM) (Source: DCOM) (EventID: 10010) (User: BRETA-MILAČEK)
Description: App
Error: (08/09/2015 06:57:14 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba globalUpdate Update Service (globalUpdate) neuspěla při spuštění v důsledku následující chyby:
%%2
Error: (08/09/2015 06:55:13 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba uTorrent Server byla neočekávaně ukončena. Tento stav nastal již 1krát.
Error: (08/09/2015 06:55:13 PM) (Source: Service Control Manager) (EventID: 7024) (User: )
Description: Služba uTorrent Server skončila s následující chybou specifickou pro službu:
%%3
Error: (08/09/2015 06:54:15 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Hostitel synchronizace_Session2 byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 10000 milisekund: Restartovat službu.
Error: (08/09/2015 06:25:39 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Přístup k uživatelským datům_Session1 byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 10000 milisekund: Restartovat službu.
Error: (08/09/2015 06:25:39 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Úložiště uživatelských dat_Session1 byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 10000 milisekund: Restartovat službu.
Error: (08/09/2015 06:25:39 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Data kontaktů_Session1 byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 10000 milisekund: Restartovat službu.
Error: (08/09/2015 06:25:39 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Hostitel synchronizace_Session1 byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 10000 milisekund: Restartovat službu.
Error: (08/09/2015 05:47:43 PM) (Source: volsnap) (EventID: 36) (User: )
Description: Stínové kopie svazku C: byly přerušeny, protože z důvodu limitu stanoveného uživatelem se nepodařilo zvětšit úložiště stínové kopie.
Microsoft Office:
=========================
Error: (08/09/2015 07:20:53 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: BRETA-MILAČEK)
Description: Microsoft.WindowsFeedback_cw5n1h2txyewy!App-2144927142
Error: (08/09/2015 06:57:41 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: explorer.exe10.0.10240.16405c2801d0d2c42e1d3d4a0C:\Windows\explorer.exe90ae0503-3eb7-11e5-9bcd-6c626d38d2ba
Error: (08/09/2015 06:55:13 PM) (Source: nssm) (EventID: 1010) (User: )
Description: uTorrent Serverutorrent.exeSystém nemůže nalézt uvedený soubor.
Error: (08/09/2015 03:12:37 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: SearchUI.exe10.0.10240.16413d8001d0d2a5023fdedf4294967295C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe4a96eccb-3e98-11e5-9bcc-6c626d38d2baMicrosoft.Windows.Cortana_1.4.8.176_neutral_neutral_cw5n1h2txyewyCortanaUI
Error: (08/09/2015 03:12:32 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: BRETA-MILAČEK)
Description: Microsoft.Windows.Cortana_cw5n1h2txyewy!CortanaUI-2147023170
Error: (08/09/2015 03:12:30 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 2486) (User: BRETA-MILAČEK)
Description: Microsoft.Windows.Cortana_1.4.8.176_neutral_neutral_cw5n1h2txyewy+CortanaUI
Error: (08/09/2015 03:11:36 PM) (Source: nssm) (EventID: 1010) (User: )
Description: uTorrent Serverutorrent.exeSystém nemůže nalézt uvedený soubor.
Error: (08/09/2015 01:06:51 PM) (Source: nssm) (EventID: 1010) (User: )
Description: uTorrent Serverutorrent.exeSystém nemůže nalézt uvedený soubor.
Error: (08/09/2015 12:38:20 PM) (Source: nssm) (EventID: 1010) (User: )
Description: uTorrent Serverutorrent.exeSystém nemůže nalézt uvedený soubor.
Error: (08/09/2015 08:55:43 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: BRETA-MILAČEK)
Description: Microsoft.BingWeather_8wekyb3d8bbwe!App-2144927141
==================== Memory info ===========================
Processor: Intel(R) Core(TM) i5-2300 CPU @ 2.80GHz
Percentage of memory in use: 44%
Total physical RAM: 4078.64 MB
Available physical RAM: 2264.66 MB
Total Virtual: 5486.64 MB
Available Virtual: 3422.95 MB
==================== Drives ================================
Drive c: () (Fixed) (Total:292.43 GB) (Free:183.14 GB) NTFS
Drive d: () (Fixed) (Total:172.79 GB) (Free:171.08 GB) NTFS
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (MBR Code: Windows 7 or
(Size: 465.8 GB) (Disk ID: A9F69741)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=292.4 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=450 MB) - (Type=27)
Partition 4: (Not Active) - (Size=172.8 GB) - (Type=07 NTFS)
==================== End of log ============================
Ran by Břeta a Miláček (2015-08-09 19:28:55)
Running from C:\Users\Břeta a Miláček\Desktop
Boot Mode: Normal
==========================================================
==================== Accounts: =============================
Administrator (S-1-5-21-1410555089-2074226881-640514690-500 - Administrator - Disabled)
Břeta a Miláček (S-1-5-21-1410555089-2074226881-640514690-1001 - Administrator - Enabled) => C:\Users\Břeta a Miláček
DefaultAccount (S-1-5-21-1410555089-2074226881-640514690-503 - Limited - Disabled)
Guest (S-1-5-21-1410555089-2074226881-640514690-501 - Limited - Disabled)
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: avast! Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: avast! Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}
FW: avast! Antivirus (Enabled) {2F96FC65-F07D-9D1E-5A6E-3DA5C487EAF0}
==================== Installed Programs ======================
(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
µTorrent (HKU\S-1-5-21-1410555089-2074226881-640514690-1001\...\uTorrent) (Version: 3.4.3.40760 - BitTorrent Inc.)
Adobe Flash Player 18 PPAPI (HKLM-x32\...\Adobe Flash Player PPAPI) (Version: 18.0.0.209 - Adobe Systems Incorporated)
Aktualizace NVIDIA 2.5.12.11 (Version: 2.5.12.11 - NVIDIA Corporation) Hidden
Avast Premier (HKLM-x32\...\Avast) (Version: 10.3.2225 - AVAST Software)
globalupdate Helper (x32 Version: 1.3.25.0 - globalupdate Inc.) Hidden <==== ATTENTION
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 44.0.2403.130 - Google Inc.)
Google Update Helper (x32 Version: 1.3.28.1 - Google Inc.) Hidden
Malwarebytes Anti-Malware verze 2.1.8.1057 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.1.8.1057 - Malwarebytes Corporation)
Microsoft Silverlight (HKLM-x32\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
NVIDIA GeForce Experience 2.5.12.11 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.5.12.11 - NVIDIA Corporation)
NVIDIA Ovladač 3D Vision 353.62 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 353.62 - NVIDIA Corporation)
NVIDIA Ovladač HD audia 1.3.34.3 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.34.3 - NVIDIA Corporation)
NVIDIA Ovladač řídící jednotky 3D Vision 352.65 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 352.65 - NVIDIA Corporation)
NVIDIA Ovladače grafiky 353.62 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 353.62 - NVIDIA Corporation)
NVIDIA Systémový software PhysX 9.15.0428 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.15.0428 - NVIDIA Corporation)
Ovládací panel NVIDIA 353.62 (Version: 353.62 - NVIDIA Corporation) Hidden
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7535 - Realtek Semiconductor Corp.)
SHIELD Streaming (Version: 4.1.3000 - NVIDIA Corporation) Hidden
SHIELD Wireless Controller Driver (Version: 2.5.12.11 - NVIDIA Corporation) Hidden
==================== Custom CLSID (Whitelisted): ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
CustomCLSID: HKU\S-1-5-21-1410555089-2074226881-640514690-1001_Classes\CLSID\{018D5C66-4533-4307-9B53-224DE2ED1FE6}\InprocServer32 -> C:\Windows\system32\shell32.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1410555089-2074226881-640514690-1001_Classes\CLSID\{1BF42E4C-4AF4-4CFD-A1A0-CF2960B8F63E}\InprocServer32 -> C:\Users\Břeta a Miláček\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64\FileSyncShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1410555089-2074226881-640514690-1001_Classes\CLSID\{5AB7172C-9C11-405C-8DD5-AF20F3606282}\InprocServer32 -> C:\Users\Břeta a Miláček\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64\FileSyncShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1410555089-2074226881-640514690-1001_Classes\CLSID\{7AFDFDDB-F914-11E4-8377-6C3BE50D980C}\InprocServer32 -> C:\Users\Břeta a Miláček\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64\FileSyncShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1410555089-2074226881-640514690-1001_Classes\CLSID\{82CA8DE3-01AD-4CEA-9D75-BE4C51810A9E}\InprocServer32 -> C:\Users\Břeta a Miláček\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64\FileSyncShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1410555089-2074226881-640514690-1001_Classes\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}\InprocServer32 -> C:\Users\Břeta a Miláček\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64\FileSyncShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1410555089-2074226881-640514690-1001_Classes\CLSID\{A78ED123-AB77-406B-9962-2A5D9D2F7F30}\InprocServer32 -> C:\Users\Břeta a Miláček\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64\FileSyncShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1410555089-2074226881-640514690-1001_Classes\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524}\InprocServer32 -> C:\Users\Břeta a Miláček\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64\FileSyncShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1410555089-2074226881-640514690-1001_Classes\CLSID\{CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B}\InprocServer32 -> C:\Users\Břeta a Miláček\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64\FileSyncShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1410555089-2074226881-640514690-1001_Classes\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A}\InprocServer32 -> C:\Users\Břeta a Miláček\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64\FileSyncShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1410555089-2074226881-640514690-1001_Classes\CLSID\{F8071786-1FD0-4A66-81A1-3CBE29274458}\InprocServer32 -> C:\Users\Břeta a Miláček\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64\FileSyncApi64.dll (Microsoft Corporation)
==================== Restore Points =========================
==================== Hosts content: ===============================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2015-07-10 13:04 - 2015-07-10 13:02 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts
==================== Scheduled Tasks (Whitelisted) =============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {00EEBA9C-F9EF-4272-B793-C830FBADD359} - System32\Tasks\Microsoft\Windows\ApplicationData\DsSvcCleanup => C:\Windows\system32\dstokenclean.exe [2015-07-10] (Microsoft Corporation)
Task: {0CCA7916-2916-4F12-BD32-1E3BE31E1269} - System32\Tasks\Microsoft\Windows\Workplace Join\Automatic-Device-Join => C:\Windows\System32\dsregcmd.exe [2015-07-10] (Microsoft Corporation)
Task: {0DB27679-8217-4112-BC1A-5D389E77E388} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-08-09] (Adobe Systems Incorporated)
Task: {1641F54C-1E57-4902-AB65-EE2B65E5629D} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Schedule Scan => C:\Windows\system32\usoclient.exe [2015-07-10] (Microsoft Corporation)
Task: {19865544-CE08-40BE-8B8C-87C47681433D} - System32\Tasks\Microsoft\Windows\WindowsUpdate\sihboot => C:\Windows\System32\sihclient.exe [2015-07-10] (Microsoft Corporation)
Task: {1D3D099E-EE1E-4907-8BA2-BA8F12D11AA6} - System32\Tasks\Microsoft\Windows\Location\Notifications => C:\Windows\System32\LocationNotificationWindows.exe [2015-07-10] (Microsoft Corporation)
Task: {1F7A270C-46EE-4FC8-ADC5-B857ABA32EEC} - System32\Tasks\Microsoft\Windows\RetailDemo\CleanupOfflineContent
Task: {297F0E02-1FA8-478B-A8B9-185DFEC4C1ED} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2015-08-09] (AVAST Software)
Task: {2C97A00A-1C5C-4318-B5CC-8A1A126B77F9} - System32\Tasks\Microsoft\Windows\CertificateServicesClient\KeyPreGenTask
Task: {3F6E048D-6404-433B-8F5F-CFF4D89BF89E} - System32\Tasks\Microsoft\Windows\Application Experience\Microsoft Compatibility Appraiser => Rundll32.exe generaltel.dll,RunTelemetryW
Task: {41160EA0-208B-4C3E-B4DB-805BBABC6B93} - System32\Tasks\Microsoft\Windows\Feedback\Siuf\DmClient => C:\Windows\system32\dmclient.exe [2015-07-10] (Microsoft Corporation)
Task: {4454A8D0-2E4E-4A02-BF67-48DF6A7BFAB4} - System32\Tasks\Microsoft\Windows\Maps\MapsUpdateTask
Task: {5E5515C1-7D87-4904-B9CE-FD29EB2ADB72} - System32\Tasks\Microsoft\Windows\Sysmain\ResPriStaticDbSync
Task: {611C823C-437B-46E7-9683-5312DFFCFD7B} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Policy Install => C:\Windows\system32\usoclient.exe [2015-07-10] (Microsoft Corporation)
Task: {64D3074F-B951-474C-ABCD-3EC13D64708B} - System32\Tasks\Adobe Flash Player PPAPI Notifier => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_18_0_0_209_pepper.exe [2015-08-09] (Adobe Systems Incorporated)
Task: {711EE2F9-A611-4773-AF8E-D4B278A6718D} - System32\Tasks\Microsoft\Windows\CertificateServicesClient\AikCertEnrollTask
Task: {73551810-E5F4-433E-9494-0D00B55C855E} - System32\Tasks\Microsoft\Windows\Maps\MapsToastTask
Task: {744C9FEA-08B7-43E1-A729-0F94647D655C} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Resume On Boot => C:\Windows\system32\usoclient.exe [2015-07-10] (Microsoft Corporation)
Task: {78B77FA3-9D97-441D-97B6-68CEA40B4F74} - System32\Tasks\Microsoft\Windows\Application Experience\ProgramDataUpdater => Rundll32.exe generaltel.dll,RunTelemetry -maintenance
Task: {7A003965-A297-4DC6-B15B-852D798391E0} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Reboot => C:\Windows\system32\MusNotification.exe [2015-07-16] (Microsoft Corporation)
Task: {848DCC36-520C-4946-BF68-C7EFFEFA2F84} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker_ReadyToReboot => C:\windows\system32\MusNotification.exe [2015-07-16] (Microsoft Corporation)
Task: {8DF84CB3-D8E0-4307-A35B-CA74E21786DB} - System32\Tasks\Microsoft\Windows\Clip\License Validation => C:\Windows\system32\ClipUp.exe [2015-07-15] (Microsoft Corporation)
Task: {A364E297-00AD-490D-900E-22AC34598C71} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Maintenance Install => C:\Windows\system32\usoclient.exe [2015-07-10] (Microsoft Corporation)
Task: {A5B6CD85-1B57-49B9-BA80-5D5D65F02826} - System32\Tasks\Microsoft\Windows\AppID\EDP Policy Manager
Task: {AC29E64E-3271-47BA-B8F1-914523CF379B} - System32\Tasks\Microsoft\Windows\WindowsUpdate\Automatic App Update
Task: {B0B73FF7-3E27-48DF-A2CF-5B46C524ABD1} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-09] (Google Inc.)
Task: {B9B36D41-C776-424E-9A13-5387E17A2CEB} - System32\Tasks\Microsoft\Windows\WCM\WiFiTask => C:\Windows\System32\WiFiTask.exe [2015-07-10] (Microsoft Corporation)
Task: {BFA53E0A-7086-4206-B682-203E731C1A98} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-09] (Google Inc.)
Task: {C2162702-FFEB-48C0-AA5F-2DA3A8887D61} - System32\Tasks\Microsoft\Windows\LanguageComponentsInstaller\Installation
Task: {C56AFFD3-06B8-4A16-AF7E-F7A6EB3FAE9E} - System32\Tasks\Microsoft\Windows\TPM\Tpm-HASCertRetr
Task: {C5EE2EA2-5312-4D1F-B9D0-41B18DF31B78} - System32\Tasks\Microsoft\Windows\WindowsUpdate\sih => C:\Windows\System32\sihclient.exe [2015-07-10] (Microsoft Corporation)
Task: {C7A236B2-12E1-46DC-9501-3B1B0209CC09} - System32\Tasks\Microsoft\Windows\Location\WindowsActionDialog => C:\Windows\System32\WindowsActionDialog.exe [2015-07-10] (Microsoft Corporation)
Task: {D2401052-A382-42DE-9C79-D1CF3563F654} - System32\Tasks\Microsoft\Windows\LanguageComponentsInstaller\Uninstallation
Task: {DAF2BAE3-1C5B-4CB5-9F62-0911C031A15A} - System32\Tasks\Microsoft\Windows\DiskFootprint\Diagnostics => C:\Windows\system32\disksnapshot.exe [2015-07-10] (Microsoft Corporation)
Task: {EA3F661E-B31C-44A9-B40C-E3D5D56149D4} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker_Display => C:\windows\system32\MusNotification.exe [2015-07-16] (Microsoft Corporation)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\Windows\Tasks\Adobe Flash Player PPAPI Notifier.job => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_18_0_0_209_pepper.exe
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => 0x000A01000374ECED2716EE48A42F5C587791657946008003000000003C000A0020000000FEFFFFFF000000000013040000008021DF07080000000900120037001500DA000000360043003A005C00500072006F006700720061006D002000460069006C00650073002000280078003800360029005C0047006F006F0067006C0065005C005500700064006100740065005C0047006F006F0067006C0065005500700064006100740065002E00650078006500000003002F006300000000001E00420052004500540041002D004D0049004C0041000C0145004B005C00420059016500740061002000610020004D0069006C00E1000D0165006B0000003B015500640072007E0175006A006500200073006F00660074007700610072006500200047006F006F0067006C006500200061006B007400750061006C0069007A006F00760061006E00FD002E0020004A0065002D006C00690020007400610074006F002000FA006C006F006800610020007A0061006B00E1007A00E1006E00610020006E00650062006F0020007A006100730074006100760065006E0061002C0020006E006500620075006400650020007600E1006101200073006F00660074007700610072006500200047006F006F0067006C00650020007500640072007E016F007600E1006E0020007600200061006B007400750061006C0069007A006F00760061006E00E9006D002000730074006100760075002E00200054006F0020007A006E0061006D0065006E00E1002C0020007E01650020006E0065006D0075007300ED0020006200FD00740020006F00700072006100760065006E00610020007A006A006900610174001B016E00E100200073006C0061006200E10020006D00ED007300740061002000760020007A006100620065007A00700065000D0165006E00ED00200061002000750072000D0169007400E9002000660075006E006B006300650020006E0065006D0075007300ED002000660075006E0067006F007600610074002E00200050006F006B007500640020007400750074006F002000FA006C006F006800750020007E01E10064006E00FD00200073006F00660074007700610072006500200047006F006F0067006C00650020006E00650070006F0075007E01ED007600E1002C002000730061006D00610020007300650020006F00640069006E007300740061006C0075006A0065002E000000000008000000000000000000020030000000CF0701000100000000000000000000000000000000000000000000000700000001000000000000000000000030000100DF07080009000000000000000D002B0000000000000000000000000001000000010000000000000000000000
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\xT1yXX67.job => 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
==================== Loaded Modules (Whitelisted) ==============
2015-08-08 16:54 - 2015-07-15 04:04 - 00032768 _____ () C:\Windows\SYSTEM32\licensemanagerapi.dll
2015-08-08 16:54 - 2015-07-11 03:22 - 00403968 _____ () C:\Windows\System32\diagtrack_wininternal.dll
2015-08-08 16:54 - 2015-07-30 08:05 - 02498808 _____ () C:\Windows\system32\CoreUIComponents.dll
2015-08-08 16:54 - 2015-07-30 08:05 - 02498808 _____ () C:\Windows\System32\CoreUIComponents.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00429056 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\QuickActions.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00143360 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\XamlTileRendering.dll
2015-08-08 16:54 - 2015-08-02 03:37 - 06569472 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll
2015-07-10 13:00 - 2015-07-10 18:05 - 00471040 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
2015-08-08 16:54 - 2015-08-02 03:34 - 01806848 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll
2015-08-08 16:54 - 2015-08-02 03:35 - 02274816 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll
2015-07-10 13:00 - 2015-07-10 18:05 - 00210432 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.ProxyStub.dll
2015-08-09 00:45 - 2015-08-09 00:45 - 00102864 _____ () C:\Program Files\AVAST Software\Avast\log.dll
2015-08-09 00:45 - 2015-08-09 00:45 - 00123976 _____ () C:\Program Files\AVAST Software\Avast\JsonRpcServer.dll
2015-08-09 12:40 - 2015-08-09 12:40 - 02960384 _____ () C:\Program Files\AVAST Software\Avast\defs\15080900\algo.dll
2015-08-09 13:38 - 2015-07-31 08:19 - 01405768 _____ () C:\Program Files (x86)\Google\Chrome\Application\44.0.2403.130\libglesv2.dll
2015-08-09 13:38 - 2015-07-31 08:19 - 00081224 _____ () C:\Program Files (x86)\Google\Chrome\Application\44.0.2403.130\libegl.dll
==================== Alternate Data Streams (Whitelisted) =========
(If an entry is included in the fixlist, only the ADS will be removed.)
==================== Safe Mode (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TileDataModelSvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Ahcache.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\CoreMessagingRegistrar => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\StateRepository => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TileDataModelSvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\UserManager => ""="Service"
==================== EXE Association (Whitelisted) ===============
(If an entry is included in the fixlist, the registry item will be restored to default or removed.)
==================== Internet Explorer trusted/restricted ===============
(If an entry is included in the fixlist, it will be removed from the registry.)
==================== Other Areas ============================
(Currently there is no automatic fix for this section.)
HKU\S-1-5-21-1410555089-2074226881-640514690-1001\Control Panel\Desktop\\Wallpaper -> C:\Windows\web\wallpaper\Windows\img0.jpg
DNS Servers: 62.129.50.20 - 85.135.32.100
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.
==================== MSCONFIG/TASK MANAGER disabled items ==
(Currently there is no automatic fix for this section.)
HKLM\...\StartupApproved\Run: => "NvBackend"
HKLM\...\StartupApproved\Run: => "ShadowPlay"
HKLM\...\StartupApproved\Run: => "RTHDVCPL"
HKU\S-1-5-21-1410555089-2074226881-640514690-1001\...\StartupApproved\Run: => "OneDrive"
HKU\S-1-5-21-1410555089-2074226881-640514690-1001\...\StartupApproved\Run: => "uTorrent"
==================== FirewallRules (Whitelisted) ===============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139
FirewallRules: [SPPSVC-In-TCP] => (Allow) %SystemRoot%\system32\sppextcomobj.exe
FirewallRules: [SPPSVC-In-TCP-NoScope] => (Allow) %SystemRoot%\system32\sppextcomobj.exe
FirewallRules: [{F228256D-0D96-4484-855C-ADB33F16FB56}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
FirewallRules: [{E31F1EB5-A31E-43CE-9F80-FF1D146E6F4E}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
FirewallRules: [{1170F138-FBC4-4A38-828A-23C365C71874}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
FirewallRules: [{51E99F88-0C65-450C-A794-77D5D192E42B}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
FirewallRules: [{BF477F33-AC6A-4D7F-A65A-C2B65B62C9D2}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe
FirewallRules: [{AEB0B0D5-FDA8-4221-8799-A39CA35F2A12}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{E8AC9284-69D6-4C7C-B234-5FC5CD35E1BA}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{1D924D54-FEEA-4686-A605-878041D3B00A}] => (Allow) C:\Users\Břeta a Miláček\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{6A7319F9-A932-4394-99D9-17EA0A3F714E}] => (Allow) C:\Users\Břeta a Miláček\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{B9C128FF-186C-4EA9-BE89-48429E5CD8CD}] => (Allow) C:\Users\Břeta a Miláček\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{15ACEDBD-3B38-46ED-B0DC-41ECD84F65EC}] => (Allow) C:\Users\Břeta a Miláček\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{B55D9373-F7B2-49FB-BF74-441D875FBB59}] => (Allow) C:\Users\Břeta a Miláček\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{A2845406-CEFD-4DE3-A0EC-09517E74C627}] => (Allow) C:\Users\Břeta a Miláček\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [TCP Query User{113AB4C3-EE3D-4C69-95C5-0A5C7A2DD960}C:\program files\pro evolution soccer 2015\pes2015.exe] => (Allow) C:\program files\pro evolution soccer 2015\pes2015.exe
FirewallRules: [UDP Query User{FB96F3B8-AFB4-4974-BADB-159CEB8E0608}C:\program files\pro evolution soccer 2015\pes2015.exe] => (Allow) C:\program files\pro evolution soccer 2015\pes2015.exe
FirewallRules: [{37F70C52-F335-4778-AC5D-C78133E0354F}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
==================== Faulty Device Manager Devices =============
==================== Event log errors: =========================
Application errors:
==================
Error: (08/09/2015 07:20:53 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: BRETA-MILAČEK)
Description: Aplikaci Microsoft.WindowsFeedback_cw5n1h2txyewy!App se nepovedlo aktivovat, protože došlo k chybě: -2144927142. Další informace najdete v protokolu Microsoft-Windows-TWinUI/Operational.
Error: (08/09/2015 06:57:41 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program explorer.exe verze 10.0.10240.16405 přestal spolupracovat se systémem Windows a byl ukončen. Chcete-li zjistit, zda je k dispozici více informací o tomto problému, vyhledejte historii problému v ovládacím panelu Zabezpečení a údržba.
ID procesu: c28
Čas spuštění: 01d0d2c42e1d3d4a
Čas ukončení: 0
Cesta k aplikaci: C:\Windows\explorer.exe
ID hlášení: 90ae0503-3eb7-11e5-9bcd-6c626d38d2ba
Úplný název balíčku s chybou:
ID aplikace související s balíčkem s chybou:
Error: (08/09/2015 06:55:13 PM) (Source: nssm) (EventID: 1010) (User: )
Description: uTorrent Serverutorrent.exeSystém nemůže nalézt uvedený soubor.
Error: (08/09/2015 03:12:37 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program SearchUI.exe verze 10.0.10240.16413 přestal spolupracovat se systémem Windows a byl ukončen. Chcete-li zjistit, zda je k dispozici více informací o tomto problému, vyhledejte historii problému v ovládacím panelu Zabezpečení a údržba.
ID procesu: d80
Čas spuštění: 01d0d2a5023fdedf
Čas ukončení: 4294967295
Cesta k aplikaci: C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe
ID hlášení: 4a96eccb-3e98-11e5-9bcc-6c626d38d2ba
Úplný název balíčku s chybou: Microsoft.Windows.Cortana_1.4.8.176_neutral_neutral_cw5n1h2txyewy
ID aplikace související s balíčkem s chybou: CortanaUI
Error: (08/09/2015 03:12:32 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: BRETA-MILAČEK)
Description: Aplikaci Microsoft.Windows.Cortana_cw5n1h2txyewy!CortanaUI se nepovedlo aktivovat, protože došlo k chybě: -2147023170. Další informace najdete v protokolu Microsoft-Windows-TWinUI/Operational.
Error: (08/09/2015 03:12:30 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 2486) (User: BRETA-MILAČEK)
Description: Aplikace Microsoft.Windows.Cortana_1.4.8.176_neutral_neutral_cw5n1h2txyewy+CortanaUI se nespustila ve stanovenou dobu.
Error: (08/09/2015 03:11:36 PM) (Source: nssm) (EventID: 1010) (User: )
Description: uTorrent Serverutorrent.exeSystém nemůže nalézt uvedený soubor.
Error: (08/09/2015 01:06:51 PM) (Source: nssm) (EventID: 1010) (User: )
Description: uTorrent Serverutorrent.exeSystém nemůže nalézt uvedený soubor.
Error: (08/09/2015 12:38:20 PM) (Source: nssm) (EventID: 1010) (User: )
Description: uTorrent Serverutorrent.exeSystém nemůže nalézt uvedený soubor.
Error: (08/09/2015 08:55:43 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: BRETA-MILAČEK)
Description: Aplikaci Microsoft.BingWeather_8wekyb3d8bbwe!App se nepovedlo aktivovat, protože došlo k chybě: -2144927141. Další informace najdete v protokolu Microsoft-Windows-TWinUI/Operational.
System errors:
=============
Error: (08/09/2015 07:22:55 PM) (Source: DCOM) (EventID: 10010) (User: BRETA-MILAČEK)
Description: App
Error: (08/09/2015 06:57:14 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba globalUpdate Update Service (globalUpdate) neuspěla při spuštění v důsledku následující chyby:
%%2
Error: (08/09/2015 06:55:13 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba uTorrent Server byla neočekávaně ukončena. Tento stav nastal již 1krát.
Error: (08/09/2015 06:55:13 PM) (Source: Service Control Manager) (EventID: 7024) (User: )
Description: Služba uTorrent Server skončila s následující chybou specifickou pro službu:
%%3
Error: (08/09/2015 06:54:15 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Hostitel synchronizace_Session2 byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 10000 milisekund: Restartovat službu.
Error: (08/09/2015 06:25:39 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Přístup k uživatelským datům_Session1 byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 10000 milisekund: Restartovat službu.
Error: (08/09/2015 06:25:39 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Úložiště uživatelských dat_Session1 byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 10000 milisekund: Restartovat službu.
Error: (08/09/2015 06:25:39 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Data kontaktů_Session1 byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 10000 milisekund: Restartovat službu.
Error: (08/09/2015 06:25:39 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Hostitel synchronizace_Session1 byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 10000 milisekund: Restartovat službu.
Error: (08/09/2015 05:47:43 PM) (Source: volsnap) (EventID: 36) (User: )
Description: Stínové kopie svazku C: byly přerušeny, protože z důvodu limitu stanoveného uživatelem se nepodařilo zvětšit úložiště stínové kopie.
Microsoft Office:
=========================
Error: (08/09/2015 07:20:53 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: BRETA-MILAČEK)
Description: Microsoft.WindowsFeedback_cw5n1h2txyewy!App-2144927142
Error: (08/09/2015 06:57:41 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: explorer.exe10.0.10240.16405c2801d0d2c42e1d3d4a0C:\Windows\explorer.exe90ae0503-3eb7-11e5-9bcd-6c626d38d2ba
Error: (08/09/2015 06:55:13 PM) (Source: nssm) (EventID: 1010) (User: )
Description: uTorrent Serverutorrent.exeSystém nemůže nalézt uvedený soubor.
Error: (08/09/2015 03:12:37 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: SearchUI.exe10.0.10240.16413d8001d0d2a5023fdedf4294967295C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe4a96eccb-3e98-11e5-9bcc-6c626d38d2baMicrosoft.Windows.Cortana_1.4.8.176_neutral_neutral_cw5n1h2txyewyCortanaUI
Error: (08/09/2015 03:12:32 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: BRETA-MILAČEK)
Description: Microsoft.Windows.Cortana_cw5n1h2txyewy!CortanaUI-2147023170
Error: (08/09/2015 03:12:30 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 2486) (User: BRETA-MILAČEK)
Description: Microsoft.Windows.Cortana_1.4.8.176_neutral_neutral_cw5n1h2txyewy+CortanaUI
Error: (08/09/2015 03:11:36 PM) (Source: nssm) (EventID: 1010) (User: )
Description: uTorrent Serverutorrent.exeSystém nemůže nalézt uvedený soubor.
Error: (08/09/2015 01:06:51 PM) (Source: nssm) (EventID: 1010) (User: )
Description: uTorrent Serverutorrent.exeSystém nemůže nalézt uvedený soubor.
Error: (08/09/2015 12:38:20 PM) (Source: nssm) (EventID: 1010) (User: )
Description: uTorrent Serverutorrent.exeSystém nemůže nalézt uvedený soubor.
Error: (08/09/2015 08:55:43 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: BRETA-MILAČEK)
Description: Microsoft.BingWeather_8wekyb3d8bbwe!App-2144927141
==================== Memory info ===========================
Processor: Intel(R) Core(TM) i5-2300 CPU @ 2.80GHz
Percentage of memory in use: 44%
Total physical RAM: 4078.64 MB
Available physical RAM: 2264.66 MB
Total Virtual: 5486.64 MB
Available Virtual: 3422.95 MB
==================== Drives ================================
Drive c: () (Fixed) (Total:292.43 GB) (Free:183.14 GB) NTFS
Drive d: () (Fixed) (Total:172.79 GB) (Free:171.08 GB) NTFS
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (MBR Code: Windows 7 or

Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=292.4 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=450 MB) - (Type=27)
Partition 4: (Not Active) - (Size=172.8 GB) - (Type=07 NTFS)
==================== End of log ============================
Re: Shooper pro
tady je to je
- jaro3
- člen Security týmu
-
Guru Level 15
- Příspěvky: 43298
- Registrován: červen 07
- Bydliště: Jižní Čechy
- Pohlaví:
- Stav:
Offline
Re: Shooper pro
Prosím, postupuj následujícím způsobem:
Otevřít poznámkový blok (Start => Všechny programy => Příslušenství => Poznámkový blok).
Prosím, zkopíruj do něj celý obsah níže.
(Můžeš použít funkci „vybrat vše“, klepni pravým tlačítkem myši na levé horní políčko v otevřeném poznámkovém bloku a zvol „ Vložit“).
Ulož jej na na plochu jako fixlist.txt
Spusťt FRST a stiskni tlačítko „Fix“ (Opravit) jen jednou a čekej.
Nástroj vypracuje log na ploše (Fixlog.txt), prosím zkopíruj sem celý jeho obsah.
Přeinstalovat PES2015
Stáhni AdwCleaner (by Xplode)
http://www.bleepingcomputer.com/download/adwcleaner/
Ulož si ho na svojí plochu
Ukonči všechny programy , okna a prohlížeče
Spusť program poklepáním a klikni na „Prohledat-Scan“
Po skenu se objeví log ( jinak je uložen systémovem disku jako AdwCleaner[R?].txt), jeho obsah sem celý vlož.
Stáhni si Malwarebytes' Anti-Malware
- Při instalaci odeber zatržítko u „Povolit bezplatnou zkušební verzi Malwarebytes' Anti-Malware Premium“
Nainstaluj a spusť ho
- na konci instalace se ujisti že máš zvoleny/zatrhnuty obě možnosti:
Aktualizace Malwarebytes' Anti-Malware a Spustit aplikaci Malwarebytes' Anti-Malware, pokud jo tak klikni na tlačítko konec
- pokud bude nalezena aktualizace, tak se stáhne a nainstaluje
- program se po té spustí a klikni na Skenovat nyní a
- po proběhnutí programu se ti objeví hláška vpravo dole tak klikni na b] Kopírovat do schránky [/b]a a vlož sem celý log.
- po té klikni na tlačítko Exit, objeví se ti hláška tak zvol Ano
(zatím nic nemaž!).
Pokud budou problémy , spusť v nouz. režimu.
Otevřít poznámkový blok (Start => Všechny programy => Příslušenství => Poznámkový blok).
Prosím, zkopíruj do něj celý obsah níže.
Kód: Vybrat vše
Task: {3E2C8060-0403-4363-B41B-BEA729839163} - System32\Tasks\fad96ebe-31a4-4408-b15f-f66aebe7dfaa-6 => C:\Program Files (x86)\Internet Speed Checker\fad96ebe-31a4-4408-b15f-f66aebe7dfaa-6.exe <==== ATTENTION
Task: {691A1696-C457-4025-AB88-6251D013F9C6} - System32\Tasks\fad96ebe-31a4-4408-b15f-f66aebe7dfaa-5 => C:\Program Files (x86)\Internet Speed Checker\fad96ebe-31a4-4408-b15f-f66aebe7dfaa-5.exe <==== ATTENTION
Task: {AD3895D2-3BA4-4216-9761-D9C2E2AAA429} - System32\Tasks\globalUpdateUpdateTaskMachineUA => C:\Program Files (x86)\globalUpdate\Update\globalupdate.exe <==== ATTENTION
Task: {AFA14D76-4997-4750-B00A-CBBADC401000} - System32\Tasks\fad96ebe-31a4-4408-b15f-f66aebe7dfaa-1-7 => C:\Program Files (x86)\Internet Speed Checker\fad96ebe-31a4-4408-b15f-f66aebe7dfaa-1-7.exe <==== ATTENTION
Task: {B02E7678-EFCC-40C9-A1A7-553368F85423} - System32\Tasks\globalUpdateUpdateTaskMachineCore => C:\Program Files (x86)\globalUpdate\Update\globalupdate.exe <==== ATTENTION
Task: {EAA0980E-D393-4B6D-B1DF-D526DAF18C0A} - System32\Tasks\fad96ebe-31a4-4408-b15f-f66aebe7dfaa-1-6 => C:\Program Files (x86)\Internet Speed Checker\fad96ebe-31a4-4408-b15f-f66aebe7dfaa-1-6.exe <==== ATTENTION
Task: {FBD8CE28-168B-4CA4-AA8E-C27BE316C0EF} - System32\Tasks\fad96ebe-31a4-4408-b15f-f66aebe7dfaa-7 => C:\Program Files (x86)\Internet Speed Checker\fad96ebe-31a4-4408-b15f-f66aebe7dfaa-7.exe <==== ATTENTION
Task: C:\Windows\Tasks\fad96ebe-31a4-4408-b15f-f66aebe7dfaa-1-6.job => C:\Program Files (x86)\Internet Speed Checker\fad96ebe-31a4-4408-b15f-f66aebe7dfaa-1-6.exe <==== ATTENTION
Task: C:\Windows\Tasks\fad96ebe-31a4-4408-b15f-f66aebe7dfaa-1-7.job => C:\Program Files (x86)\Internet Speed Checker\fad96ebe-31a4-4408-b15f-f66aebe7dfaa-1-7.exe <==== ATTENTION
Task: C:\Windows\Tasks\fad96ebe-31a4-4408-b15f-f66aebe7dfaa-10_user.job => C:\Program Files (x86)\Internet Speed Checker\fad96ebe-31a4-4408-b15f-f66aebe7dfaa-10.exe <==== ATTENTION
Task: C:\Windows\Tasks\fad96ebe-31a4-4408-b15f-f66aebe7dfaa-13.job => C:\Program Files (x86)\Internet Speed Checker\fad96ebe-31a4-4408-b15f-f66aebe7dfaa-13.exe <==== ATTENTION
Task: C:\Windows\Tasks\fad96ebe-31a4-4408-b15f-f66aebe7dfaa-14.job => C:\Program Files (x86)\Internet Speed Checker\fad96ebe-31a4-4408-b15f-f66aebe7dfaa-14.exe <==== ATTENTION
Task: C:\Windows\Tasks\fad96ebe-31a4-4408-b15f-f66aebe7dfaa-5.job => C:\Program Files (x86)\Internet Speed Checker\fad96ebe-31a4-4408-b15f-f66aebe7dfaa-5.exe <==== ATTENTION
Task: C:\Windows\Tasks\fad96ebe-31a4-4408-b15f-f66aebe7dfaa-5_user.job => C:\Program Files (x86)\Internet Speed Checker\fad96ebe-31a4-4408-b15f-f66aebe7dfaa-5.exe <==== ATTENTION
Task: C:\Windows\Tasks\fad96ebe-31a4-4408-b15f-f66aebe7dfaa-6.job => C:\Program Files (x86)\Internet Speed Checker\fad96ebe-31a4-4408-b15f-f66aebe7dfaa-6.exe <==== ATTENTION
Task: C:\Windows\Tasks\fad96ebe-31a4-4408-b15f-f66aebe7dfaa-7.job => C:\Program Files (x86)\Internet Speed Checker\fad96ebe-31a4-4408-b15f-f66aebe7dfaa-7.exe <==== ATTENTION
Task: C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job => 0x000A0100C50227F926292445828E4008A669B38546007A03000000003C000A0020000000FEFFFFFF030007800013040000008021DF070800000009000D00070008000D0300003C0043003A005C00500072006F006700720061006D002000460069006C00650073002000280078003800360029005C0067006C006F00620061006C005500700064006100740065005C005500700064006100740065005C0067006C006F00620061006C007500700064006100740065002E00650078006500000003002F006300000000001E00420052004500540041002D004D0049004C0041000C0145004B005C00420059016500740061002000610020004D0069006C00E1000D0165006B00000032014B006500650070007300200079006F007500720020005300700065006500640063006800650063006B0065007200200073006F00660074007700610072006500200075007000200074006F00200064006100740065002E002000490066002000740068006900730020007400610073006B002000690073002000640069007300610062006C006500640020006F0072002000730074006F0070007000650064002C00200079006F007500720020005300700065006500640063006800650063006B0065007200200073006F006600740077006100720065002000770069006C006C0020006E006F00740020006200650020006B00650070007400200075007000200074006F00200064006100740065002C0020006D00650061006E0069006E0067002000730065006300750072006900740079002000760075006C006E00650072006100620069006C00690074006900650073002000740068006100740020006D00610079002000610072006900730065002000630061006E006E006F007400200062006500200066006900780065006400200061006E00640020006600650061007400750072006500730020006D006100790020006E006F007400200077006F0072006B002E002000540068006900730020007400610073006B00200075006E0069006E007300740061006C006C007300200069007400730065006C00660020007700680065006E0020007400680065007200650020006900730020006E006F0020005300700065006500640063006800650063006B0065007200200073006F0066007400770061007200650020007500730069006E0067002000690074002E000000000008000000000000000000020030000000CF0701000100000000000000000000000000000000000000000000000700000001000000000000000000000030000100DF07080008000000000000001600370000000000000000000000000001000000010000000000000000000000 <==== ATTENTION
Task: C:\Windows\Tasks\globalUpdateUpdateTaskMachineUA.job => C:\Program Files (x86)\globalUpdate\Update\globalupdate.exe <==== ATTENTION
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => 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
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\xT1yXX67.job => 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
HKU\S-1-5-21-1410555089-2074226881-640514690-1001\...\RunOnce: [Uninstall C:\Users\BYeta a Mil�**ek\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64<*>] => C:\Windows\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Břeta a Miláček\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64" <===== ATTENTION (Value Name with invalid characters)
HKU\S-1-5-21-1410555089-2074226881-640514690-1001\...\RunOnce: [Uninstall C:\Users\BYeta a Mil�**ek\AppData\Local\Microsoft\OneDrive\17.3.5892.0626<*>] => C:\Windows\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Břeta a Miláček\AppData\Local\Microsoft\OneDrive\17.3.5892.0626" <===== ATTENTION (Value Name with invalid characters)
S2 globalUpdate; C:\Program Files (x86)\globalUpdate\Update\globalupdate.exe /svc [X] <==== ATTENTION
S3 globalUpdatem; C:\Program Files (x86)\globalUpdate\Update\globalupdate.exe /medsvc [X] <==== ATTENTION
NETSVCx32: NetSetupSvc -> C:\Windows\SysWOW64\NetSetupSvc.dll ==> No File
NETSVCx32: UserManager -> C:\Windows\SysWOW64\usermgr.dll ==> No File
C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
C:\Windows\Tasks\xT1yXX67.job
C:\Users\Břeta a Miláček\AppData\Local\globalUpdate
C:\Users\Břeta a Miláček\AppData\Roaming\xT1yXX67
(Můžeš použít funkci „vybrat vše“, klepni pravým tlačítkem myši na levé horní políčko v otevřeném poznámkovém bloku a zvol „ Vložit“).
Ulož jej na na plochu jako fixlist.txt
Spusťt FRST a stiskni tlačítko „Fix“ (Opravit) jen jednou a čekej.
Nástroj vypracuje log na ploše (Fixlog.txt), prosím zkopíruj sem celý jeho obsah.
Přeinstalovat PES2015
Stáhni AdwCleaner (by Xplode)
http://www.bleepingcomputer.com/download/adwcleaner/
Ulož si ho na svojí plochu
Ukonči všechny programy , okna a prohlížeče
Spusť program poklepáním a klikni na „Prohledat-Scan“
Po skenu se objeví log ( jinak je uložen systémovem disku jako AdwCleaner[R?].txt), jeho obsah sem celý vlož.
Stáhni si Malwarebytes' Anti-Malware
- Při instalaci odeber zatržítko u „Povolit bezplatnou zkušební verzi Malwarebytes' Anti-Malware Premium“
Nainstaluj a spusť ho
- na konci instalace se ujisti že máš zvoleny/zatrhnuty obě možnosti:
Aktualizace Malwarebytes' Anti-Malware a Spustit aplikaci Malwarebytes' Anti-Malware, pokud jo tak klikni na tlačítko konec
- pokud bude nalezena aktualizace, tak se stáhne a nainstaluje
- program se po té spustí a klikni na Skenovat nyní a
- po proběhnutí programu se ti objeví hláška vpravo dole tak klikni na b] Kopírovat do schránky [/b]a a vlož sem celý log.
- po té klikni na tlačítko Exit, objeví se ti hláška tak zvol Ano
(zatím nic nemaž!).
Pokud budou problémy , spusť v nouz. režimu.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Re: Shooper pro
RogueKiller V10.9.4.0 (x64) [Jul 30 2015] by Adlice Software
mail : http://www.adlice.com/contact/
Feedback : http://forum.adlice.com
Webová stránka : http://www.adlice.com/softwares/roguekiller/
Blog : http://www.adlice.com
Operační systém : Windows 8 (6.2.9200 ) 64 bits version
Spuštěno : Normální režim
Uživatel : B?eta a Milá?ek [Práva správce]
Started from : C:\Users\B?eta a Milá?ek\Desktop\RogueKillerX64.exe
Mód : Prohledat -- Datum : 08/10/2015 12:51:09
¤¤¤ Procesy : 0 ¤¤¤
¤¤¤ Registry : 5 ¤¤¤
[Suspicious.Path] (X64) HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run | gpuminer : C:\Users\B?eta a Milá?ek\AppData\Roaming\cpuminer\sgminer\sgminer.cmd [x] -> Nalezeno
[Suspicious.Path] (X64) HKEY_USERS\S-1-5-21-1410555089-2074226881-640514690-1001\Software\Microsoft\Windows\CurrentVersion\RunOnce | Uninstall C:\Users\B?eta a Milá?ek\AppData\Local\Microsoft\OneDrive\17.3.5892.0626 : C:\Windows\system32\cmd.exe /q /c rmdir /s /q "C:\Users\B?eta a Milá?ek\AppData\Local\Microsoft\OneDrive\17.3.5892.0626" [-][x][x][x][x][x][-] -> Nalezeno
[Suspicious.Path] (X86) HKEY_USERS\S-1-5-21-1410555089-2074226881-640514690-1001\Software\Microsoft\Windows\CurrentVersion\RunOnce | Uninstall C:\Users\B?eta a Milá?ek\AppData\Local\Microsoft\OneDrive\17.3.5892.0626 : C:\Windows\system32\cmd.exe /q /c rmdir /s /q "C:\Users\B?eta a Milá?ek\AppData\Local\Microsoft\OneDrive\17.3.5892.0626" [-][x][x][x][x][x][-] -> Nalezeno
[PUM.Dns] (X64) HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{c985c18e-58cc-4f90-973c-30a9aaccb779} | NameServer : 62.129.50.20,85.135.32.100 ([-][CZECH REPUBLIC (CZ)]) -> Nalezeno
[PUM.Dns] (X64) HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Tcpip\Parameters\Interfaces\{c985c18e-58cc-4f90-973c-30a9aaccb779} | NameServer : 62.129.50.20,85.135.32.100 ([-][CZECH REPUBLIC (CZ)]) -> Nalezeno
¤¤¤ Úlohy : 0 ¤¤¤
¤¤¤ Soubory : 0 ¤¤¤
¤¤¤ Soubor HOSTS : 0 ¤¤¤
¤¤¤ Antirootkit : 0 (Driver: Nahrán) ¤¤¤
¤¤¤ Webové prohlížeče : 0 ¤¤¤
¤¤¤ Kontrola MBR : ¤¤¤
+++++ PhysicalDrive0: SAMSUNG HD502HJ ATA Device +++++
--- User ---
[MBR] 2d35d44118884082efb757ce3b7fca33
[BSP] 37a3239771826a9248e70b0b8205f8a7 : Windows Vista/7/8|VT.Unknown MBR Code
Partition table:
0 - [ACTIVE] NTFS (0x7) [VISIBLE] Offset (sectors): 2048 | Size: 100 MB [Windows Vista/7/8 Bootstrap | Windows Vista/7/8 Bootloader]
1 - [XXXXXX] NTFS (0x7) [VISIBLE] Offset (sectors): 206848 | Size: 299450 MB [Windows Vista/7/8 Bootstrap | Windows Vista/7/8 Bootloader]
2 - [XXXXXX] ACER (0x27) [VISIBLE] Offset (sectors): 613480448 | Size: 450 MB
3 - [XXXXXX] NTFS (0x7) [VISIBLE] Offset (sectors): 614402048 | Size: 176938 MB [Windows Vista/7/8 Bootstrap | Windows Vista/7/8 Bootloader]
User = LL1 ... OK
User = LL2 ... OK
mail : http://www.adlice.com/contact/
Feedback : http://forum.adlice.com
Webová stránka : http://www.adlice.com/softwares/roguekiller/
Blog : http://www.adlice.com
Operační systém : Windows 8 (6.2.9200 ) 64 bits version
Spuštěno : Normální režim
Uživatel : B?eta a Milá?ek [Práva správce]
Started from : C:\Users\B?eta a Milá?ek\Desktop\RogueKillerX64.exe
Mód : Prohledat -- Datum : 08/10/2015 12:51:09
¤¤¤ Procesy : 0 ¤¤¤
¤¤¤ Registry : 5 ¤¤¤
[Suspicious.Path] (X64) HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run | gpuminer : C:\Users\B?eta a Milá?ek\AppData\Roaming\cpuminer\sgminer\sgminer.cmd [x] -> Nalezeno
[Suspicious.Path] (X64) HKEY_USERS\S-1-5-21-1410555089-2074226881-640514690-1001\Software\Microsoft\Windows\CurrentVersion\RunOnce | Uninstall C:\Users\B?eta a Milá?ek\AppData\Local\Microsoft\OneDrive\17.3.5892.0626 : C:\Windows\system32\cmd.exe /q /c rmdir /s /q "C:\Users\B?eta a Milá?ek\AppData\Local\Microsoft\OneDrive\17.3.5892.0626" [-][x][x][x][x][x][-] -> Nalezeno
[Suspicious.Path] (X86) HKEY_USERS\S-1-5-21-1410555089-2074226881-640514690-1001\Software\Microsoft\Windows\CurrentVersion\RunOnce | Uninstall C:\Users\B?eta a Milá?ek\AppData\Local\Microsoft\OneDrive\17.3.5892.0626 : C:\Windows\system32\cmd.exe /q /c rmdir /s /q "C:\Users\B?eta a Milá?ek\AppData\Local\Microsoft\OneDrive\17.3.5892.0626" [-][x][x][x][x][x][-] -> Nalezeno
[PUM.Dns] (X64) HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{c985c18e-58cc-4f90-973c-30a9aaccb779} | NameServer : 62.129.50.20,85.135.32.100 ([-][CZECH REPUBLIC (CZ)]) -> Nalezeno
[PUM.Dns] (X64) HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Tcpip\Parameters\Interfaces\{c985c18e-58cc-4f90-973c-30a9aaccb779} | NameServer : 62.129.50.20,85.135.32.100 ([-][CZECH REPUBLIC (CZ)]) -> Nalezeno
¤¤¤ Úlohy : 0 ¤¤¤
¤¤¤ Soubory : 0 ¤¤¤
¤¤¤ Soubor HOSTS : 0 ¤¤¤
¤¤¤ Antirootkit : 0 (Driver: Nahrán) ¤¤¤
¤¤¤ Webové prohlížeče : 0 ¤¤¤
¤¤¤ Kontrola MBR : ¤¤¤
+++++ PhysicalDrive0: SAMSUNG HD502HJ ATA Device +++++
--- User ---
[MBR] 2d35d44118884082efb757ce3b7fca33
[BSP] 37a3239771826a9248e70b0b8205f8a7 : Windows Vista/7/8|VT.Unknown MBR Code
Partition table:
0 - [ACTIVE] NTFS (0x7) [VISIBLE] Offset (sectors): 2048 | Size: 100 MB [Windows Vista/7/8 Bootstrap | Windows Vista/7/8 Bootloader]
1 - [XXXXXX] NTFS (0x7) [VISIBLE] Offset (sectors): 206848 | Size: 299450 MB [Windows Vista/7/8 Bootstrap | Windows Vista/7/8 Bootloader]
2 - [XXXXXX] ACER (0x27) [VISIBLE] Offset (sectors): 613480448 | Size: 450 MB
3 - [XXXXXX] NTFS (0x7) [VISIBLE] Offset (sectors): 614402048 | Size: 176938 MB [Windows Vista/7/8 Bootstrap | Windows Vista/7/8 Bootloader]
User = LL1 ... OK
User = LL2 ... OK
Re: Shooper pro
# AdwCleaner v4.208 - Log vytvořen 10/08/2015 v 15:18:56
# Aktualizováno 09/07/2015 by Xplode
# Databáze : 2015-08-01.1 [Server]
# Operační system : Windows 10 Pro (x64)
# Uživatelské jméno : Břeta a Miláček - BRETA-MILAČEK
# Spuštěno z : C:\Users\Břeta a Miláček\Desktop\adwcleaner_4.208.exe
# Nastavení : Sken
***** [ Služby ] *****
***** [ Soubory / Složky ] *****
***** [ Naplánované úlohy ] *****
***** [ Zástupci ] *****
***** [ Registry ] *****
***** [ Prohlížeče ] *****
-\\ Internet Explorer v11.0.10240.16412
-\\ Google Chrome v44.0.2403.130
[C:\Users\Břeta a Miláček\AppData\Local\Google\Chrome\User Data\Default\Web data] - Nalezeno [Search Provider] : hxxp://dts.search.ask.com/sr?src=ieb&gc ... nrs=AG1&q={searchTerms}
[C:\Users\Břeta a Miláček\AppData\Local\Google\Chrome\User Data\Default\Web data] - Nalezeno [Search Provider] : hxxp://www.istartsurf.com/web/?type=ds& ... B212587&q={searchTerms}
[C:\Users\Břeta a Miláček\AppData\Local\Google\Chrome\User Data\Default\Web data] - Nalezeno [Search Provider] : hxxp://www.buenosearch.com/?q={searchTerms}&babsrc=SP_ss&mntrId=BADC6C626D38D2BA&affID=128129&tsp=5158
[C:\Users\Břeta a Miláček\AppData\Local\Google\Chrome\User Data\Default\Web data] - Nalezeno [Search Provider] : hxxp://www.search.ask.com/web?tpid=SGT- ... trgb=IE&q={searchTerms}&psv=
[C:\Users\Břeta a Miláček\AppData\Local\Google\Chrome\User Data\Default\Web data] - Nalezeno [Search Provider] : hxxp://www.istartsurf.com/web/?type=ds& ... B212587&q={searchTerms}
[C:\Users\Břeta a Miláček\AppData\Local\Google\Chrome\User Data\Default\Web data] - Nalezeno [Search Provider] : hxxp://www.istartsurf.com/web/?type=ds& ... B212587&q={searchTerms}
*************************
AdwCleaner[R0].txt - [5525 bytů] - [09/08/2015 18:58:53]
AdwCleaner[R1].txt - [4011 bytů] - [09/08/2015 23:37:59]
AdwCleaner[R2].txt - [4069 bytů] - [10/08/2015 12:36:51]
AdwCleaner[R3].txt - [2376 bytů] - [10/08/2015 15:18:56]
AdwCleaner[S0].txt - [3987 bytů] - [10/08/2015 12:40:29]
########## EOF - C:\AdwCleaner\AdwCleaner[R3].txt - [2492 bytů] ##########
# Aktualizováno 09/07/2015 by Xplode
# Databáze : 2015-08-01.1 [Server]
# Operační system : Windows 10 Pro (x64)
# Uživatelské jméno : Břeta a Miláček - BRETA-MILAČEK
# Spuštěno z : C:\Users\Břeta a Miláček\Desktop\adwcleaner_4.208.exe
# Nastavení : Sken
***** [ Služby ] *****
***** [ Soubory / Složky ] *****
***** [ Naplánované úlohy ] *****
***** [ Zástupci ] *****
***** [ Registry ] *****
***** [ Prohlížeče ] *****
-\\ Internet Explorer v11.0.10240.16412
-\\ Google Chrome v44.0.2403.130
[C:\Users\Břeta a Miláček\AppData\Local\Google\Chrome\User Data\Default\Web data] - Nalezeno [Search Provider] : hxxp://dts.search.ask.com/sr?src=ieb&gc ... nrs=AG1&q={searchTerms}
[C:\Users\Břeta a Miláček\AppData\Local\Google\Chrome\User Data\Default\Web data] - Nalezeno [Search Provider] : hxxp://www.istartsurf.com/web/?type=ds& ... B212587&q={searchTerms}
[C:\Users\Břeta a Miláček\AppData\Local\Google\Chrome\User Data\Default\Web data] - Nalezeno [Search Provider] : hxxp://www.buenosearch.com/?q={searchTerms}&babsrc=SP_ss&mntrId=BADC6C626D38D2BA&affID=128129&tsp=5158
[C:\Users\Břeta a Miláček\AppData\Local\Google\Chrome\User Data\Default\Web data] - Nalezeno [Search Provider] : hxxp://www.search.ask.com/web?tpid=SGT- ... trgb=IE&q={searchTerms}&psv=
[C:\Users\Břeta a Miláček\AppData\Local\Google\Chrome\User Data\Default\Web data] - Nalezeno [Search Provider] : hxxp://www.istartsurf.com/web/?type=ds& ... B212587&q={searchTerms}
[C:\Users\Břeta a Miláček\AppData\Local\Google\Chrome\User Data\Default\Web data] - Nalezeno [Search Provider] : hxxp://www.istartsurf.com/web/?type=ds& ... B212587&q={searchTerms}
*************************
AdwCleaner[R0].txt - [5525 bytů] - [09/08/2015 18:58:53]
AdwCleaner[R1].txt - [4011 bytů] - [09/08/2015 23:37:59]
AdwCleaner[R2].txt - [4069 bytů] - [10/08/2015 12:36:51]
AdwCleaner[R3].txt - [2376 bytů] - [10/08/2015 15:18:56]
AdwCleaner[S0].txt - [3987 bytů] - [10/08/2015 12:40:29]
########## EOF - C:\AdwCleaner\AdwCleaner[R3].txt - [2492 bytů] ##########
Re: Shooper pro
Malwarebytes Anti-Malware
www.malwarebytes.org
Datum skenování: 10.08.2015
Čas skenování: 15:22
Protokol: ted.txt
Správce: Ano
Verze: 2.1.8.1057
Databáze malwaru: v2015.08.10.03
Databáze rootkitů: v2015.08.06.01
Licence: Zkušební verze
Ochrana proti malwaru: Zapnuto
Ochrana proti škodlivým webovým stránkám: Zapnuto
Ochrana programu: Vypnuto
OS: Windows 10
CPU: x64
Souborový systém: NTFS
Uživatel: Břeta a Miláček
Typ skenu: Sken hrozeb
Výsledek: Dokončeno
Prohledaných objektů: 331704
Uplynulý čas: 6 min, 58 sek
Paměť: Zapnuto
Po spuštění: Zapnuto
Souborový systém: Zapnuto
Archivy: Zapnuto
Rootkity: Vypnuto
Heuristika: Zapnuto
PUP: Zapnuto
PUM: Zapnuto
Procesy: 0
(Nenalezeny žádné škodlivé položky)
Moduly: 0
(Nenalezeny žádné škodlivé položky)
Klíče registru: 0
(Nenalezeny žádné škodlivé položky)
Hodnoty registru: 0
(Nenalezeny žádné škodlivé položky)
Data registru: 0
(Nenalezeny žádné škodlivé položky)
Složky: 0
(Nenalezeny žádné škodlivé položky)
Soubory: 0
(Nenalezeny žádné škodlivé položky)
Fyzické sektory: 0
(Nenalezeny žádné škodlivé položky)
(end)
www.malwarebytes.org
Datum skenování: 10.08.2015
Čas skenování: 15:22
Protokol: ted.txt
Správce: Ano
Verze: 2.1.8.1057
Databáze malwaru: v2015.08.10.03
Databáze rootkitů: v2015.08.06.01
Licence: Zkušební verze
Ochrana proti malwaru: Zapnuto
Ochrana proti škodlivým webovým stránkám: Zapnuto
Ochrana programu: Vypnuto
OS: Windows 10
CPU: x64
Souborový systém: NTFS
Uživatel: Břeta a Miláček
Typ skenu: Sken hrozeb
Výsledek: Dokončeno
Prohledaných objektů: 331704
Uplynulý čas: 6 min, 58 sek
Paměť: Zapnuto
Po spuštění: Zapnuto
Souborový systém: Zapnuto
Archivy: Zapnuto
Rootkity: Vypnuto
Heuristika: Zapnuto
PUP: Zapnuto
PUM: Zapnuto
Procesy: 0
(Nenalezeny žádné škodlivé položky)
Moduly: 0
(Nenalezeny žádné škodlivé položky)
Klíče registru: 0
(Nenalezeny žádné škodlivé položky)
Hodnoty registru: 0
(Nenalezeny žádné škodlivé položky)
Data registru: 0
(Nenalezeny žádné škodlivé položky)
Složky: 0
(Nenalezeny žádné škodlivé položky)
Soubory: 0
(Nenalezeny žádné škodlivé položky)
Fyzické sektory: 0
(Nenalezeny žádné škodlivé položky)
(end)
Re: Shooper pro
udělano,co ted?
Kdo je online
Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 53 hostů