Prosím o kontrolu logu Vyřešeno

Místo pro vaše HiJackThis logy a logy z dalších programů…

Moderátoři: Mods_senior, Security team

Uživatelský avatar
akiller
Level 3
Level 3
Příspěvky: 558
Registrován: listopad 10
Bydliště: Nothingtown
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod akiller » 14 srp 2015 15:53

Nerestartuji pičítač každou hodinu, pokud, tak jednou, maximálně dvakrát za den. Jestli myslíš to poslední seknutí a restart, tak ten přišel až po FRST. A od té doby bez problémů. Ty můžou přijít zítra.
Keybord not present. Press Enter to continue

Reklama
Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43298
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod jaro3 » 14 srp 2015 18:42

Pak dej vědět.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

Uživatelský avatar
akiller
Level 3
Level 3
Příspěvky: 558
Registrován: listopad 10
Bydliště: Nothingtown
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod akiller » 15 srp 2015 07:46

Tak před pěti minutami zase... Když nad tím tak přemýšlím, tak všechny pády spojuje spuštěný Firefox a v něm přehrávané video, až na jeden případ youtube.com, koukal na gameplay Shenmue :-)

V podstatě problémy z FF eviduji už dlouho, ale dřív se na monitoru objevovaly černé pruhy, na youtube, na facebooku... pak firefox spadl, restartoval se a po restartu zase fungoval. Zamrznutí celého pičítače eviduji až v windows 10.

Zásuvné moduly byly (a jsou) aktuální a ovladače ke grafické kartě taky.
Keybord not present. Press Enter to continue

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43298
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod jaro3 » 15 srp 2015 09:33

Stáhni si OTL by OldTimer
na plochu. Ujisti se , že máš zavřena všechna ostatní okna a poklepej na ikonu OTL.Nahoře v okně pod Výstup klikni na minimální výstup.Pod Běžné registry změň na Vše. Zatrhni Kontrola na havěť “LOP“ a Kontrola na havěť “ Purity“ . Klikni na Prohledat. Všechny ostatní nastavení ponech jak jsou. Sken může trvat dlouho, až skončí otevřou se dva logy:
OTL.Txt
Extras.Txt

Jsou uloženy ve stejném místě jako OTL. Oba logy sem prosím zkopíruj.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

Uživatelský avatar
akiller
Level 3
Level 3
Příspěvky: 558
Registrován: listopad 10
Bydliště: Nothingtown
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod akiller » 15 srp 2015 10:26

Před cca hodinou jsem obnovil Firefox do továrního nastavení. Nevím, jestli to pomůže, nebo jestli to vůbec bude mít na něco vliv, ale myslím, že jsem tím ničemu neuškodil.


Zde je první část ze tří:


OTL logfile created on: 15.08.2015 10:14:22 - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Petr\Desktop
An unknown product (Version = 6.2.9200) - Type = NTWorkstation
Internet Explorer (Version = 9.11.10240.16384)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: dd.MM.yyyy

3,25 Gb Total Physical Memory | 2,08 Gb Available Physical Memory | 63,98% Memory free
6,50 Gb Paging File | 4,88 Gb Available in Paging File | 75,04% Paging File free
Paging file location(s): c:\pagefile.sys 0 0 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 151,61 Gb Total Space | 60,38 Gb Free Space | 39,82% Space Free | Partition Type: NTFS
Drive D: | 146,48 Gb Total Space | 126,00 Gb Free Space | 86,02% Space Free | Partition Type: NTFS
Drive E: | 1,39 Gb Total Space | 0,00 Gb Free Space | 0,00% Space Free | Partition Type: CDFS
Drive F: | 244,14 Gb Total Space | 124,34 Gb Free Space | 50,93% Space Free | Partition Type: NTFS
Drive G: | 687,37 Gb Total Space | 138,09 Gb Free Space | 20,09% Space Free | Partition Type: NTFS
Drive H: | 111,79 Gb Total Space | 73,10 Gb Free Space | 65,39% Space Free | Partition Type: NTFS

Computer Name: INTEL | User Name: Petr | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

========== Processes (SafeList) ==========

PRC - C:\Users\Petr\Desktop\OTL.exe (OldTimer Tools)
PRC - C:\Program Files\WindowsApps\Microsoft.WindowsStore_2015.8.3.0_x86__8wekyb3d8bbwe\WinStore.Mobile.exe (Microsoft Corporation)
PRC - C:\Windows\explorer.exe (Microsoft Corporation)
PRC - C:\Windows\System32\fontdrvhost.exe (Microsoft Corporation)
PRC - C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (NVIDIA Corporation)
PRC - C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation)
PRC - C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (NVIDIA Corporation)
PRC - C:\Program Files\AVG\AVG2015\avgui.exe (AVG Technologies CZ, s.r.o.)
PRC - C:\Program Files\AVG\AVG2015\avgidsagent.exe (AVG Technologies CZ, s.r.o.)
PRC - C:\Program Files\AVG\AVG2015\avgnsx.exe (AVG Technologies CZ, s.r.o.)
PRC - C:\Program Files\AVG\AVG2015\avgemcx.exe (AVG Technologies CZ, s.r.o.)
PRC - C:\Program Files\AVG\AVG2015\avgfws.exe (AVG Technologies CZ, s.r.o.)
PRC - C:\Program Files\AVG\AVG2015\avgwdsvc.exe (AVG Technologies CZ, s.r.o.)
PRC - C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe (Microsoft Corporation)
PRC - C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe (Microsoft Corporation)
PRC - c:\Program Files\AVG\AVG2015\avgrsx.exe (AVG Technologies CZ, s.r.o.)
PRC - C:\Program Files\AVG\AVG2015\avgcsrvx.exe (AVG Technologies CZ, s.r.o.)
PRC - C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe (NVIDIA Corporation)
PRC - C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe (NVIDIA Corporation)
PRC - C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe (NVIDIA Corporation)
PRC - C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe (NVIDIA Corporation)
PRC - C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe (NVIDIA Corporation)
PRC - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe (NVIDIA Corporation)
PRC - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe (Adobe Systems Incorporated)
PRC - C:\Windows\ImmersiveControlPanel\SystemSettings.exe (Microsoft Corporation)
PRC - C:\Windows\System32\SystemSettingsBroker.exe (Microsoft Corporation)
PRC - C:\Windows\System32\ApplicationFrameHost.exe (Microsoft Corporation)
PRC - C:\Windows\System32\sihost.exe (Microsoft Corporation)
PRC - C:\Windows\System32\conhost.exe (Microsoft Corporation)
PRC - C:\Windows\System32\RuntimeBroker.exe (Microsoft Corporation)
PRC - C:\Windows\System32\dasHost.exe (Microsoft Corporation)
PRC - C:\Windows\System32\taskhostw.exe (Microsoft Corporation)


========== Modules (No Company Name) ==========

MOD - C:\Program Files\WindowsApps\Microsoft.WindowsStore_2015.8.3.0_x86__8wekyb3d8bbwe\WinStore.Entertainment.Mobile.dll ()
MOD - C:\Program Files\WindowsApps\Microsoft.WindowsStore_2015.8.3.0_x86__8wekyb3d8bbwe\MS.Entertainment.Common.Mobile.dll ()
MOD - C:\Windows\System32\LicenseManagerApi.dll ()
MOD - C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll ()
MOD - C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll ()
MOD - C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll ()
MOD - C:\Windows\System32\CoreUIComponents.dll ()
MOD - C:\Program Files\NVIDIA Corporation\Update Core\detoured.dll ()
MOD - C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll ()
MOD - C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\QuickActions.dll ()
MOD - C:\Program Files\PSPad editor\PSPadShell.dll ()
MOD - C:\Windows\System32\APOMngr.DLL ()
MOD - C:\Windows\System32\CmdRtr.DLL ()


========== Services (SafeList) ==========

SRV - (MozillaMaintenance) -- C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe (Mozilla Foundation)
SRV - (AdobeFlashPlayerUpdateSvc) -- C:\Windows\System32\Macromed\Flash\FlashPlayerUpdateService.exe (Adobe Systems Incorporated)
SRV - (UnistoreSvc) -- C:\Windows\System32\Unistore.dll (Microsoft Corporation)
SRV - (DoSvc) -- C:\Windows\System32\dosvc.dll (Microsoft Corporation)
SRV - (SensorDataService) -- C:\Windows\System32\SensorDataService.exe (Microsoft Corporation)
SRV - (UsoSvc) -- C:\Windows\System32\usocore.dll (Microsoft Corporation)
SRV - (icssvc) -- C:\Windows\System32\tetheringservice.dll (Microsoft Corporation)
SRV - (CoreMessagingRegistrar) -- C:\Windows\System32\CoreMessaging.dll (Microsoft Corporation)
SRV - (ClipSVC) -- C:\Windows\System32\ClipSVC.dll (Microsoft Corporation)
SRV - (w3logsvc) -- C:\Windows\System32\inetsrv\w3logsvc.dll (Microsoft Corporation)
SRV - (AppHostSvc) -- C:\Windows\System32\inetsrv\apphostsvc.dll (Microsoft Corporation)
SRV - (WAS) -- C:\Windows\System32\inetsrv\iisw3adm.dll (Microsoft Corporation)
SRV - (W3SVC) -- C:\Windows\System32\inetsrv\iisw3adm.dll (Microsoft Corporation)
SRV - (Stereo Service) -- C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (NVIDIA Corporation)
SRV - (AVGIDSAgent) -- C:\Program Files\AVG\AVG2015\avgidsagent.exe (AVG Technologies CZ, s.r.o.)
SRV - (avgfws) -- C:\Program Files\AVG\AVG2015\avgfws.exe (AVG Technologies CZ, s.r.o.)
SRV - (avgwd) -- C:\Program Files\AVG\AVG2015\avgwdsvc.exe (AVG Technologies CZ, s.r.o.)
SRV - (tiledatamodelsvc) -- C:\Windows\System32\tileobjserver.dll (Microsoft Corporation)
SRV - (RetailDemo) -- C:\Windows\System32\RDXService.dll (Microsoft Corporation)
SRV - (AppXSvc) -- C:\Windows\System32\AppXDeploymentServer.dll (Microsoft Corporation)
SRV - (DiagTrack) -- C:\Windows\System32\diagtrack.dll (Microsoft Corporation)
SRV - (Wcmsvc) -- C:\Windows\System32\wcmsvc.dll (Microsoft Corporation)
SRV - (AudioEndpointBuilder) -- C:\Windows\System32\AudioEndpointBuilder.dll (Microsoft Corporation)
SRV - (SensorService) -- C:\Windows\System32\SensorService.dll (Microsoft Corporation)
SRV - (UserDataSvc) -- C:\Windows\System32\UserDataService.dll (Microsoft Corporation)
SRV - (NvStreamSvc) -- C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe (NVIDIA Corporation)
SRV - (NvNetworkService) -- C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe (NVIDIA Corporation)
SRV - (GfExperienceService) -- C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe (NVIDIA Corporation)
SRV - (AdobeARMservice) -- C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe (Adobe Systems Incorporated)
SRV - (SensrSvc) -- C:\Windows\System32\sensrsvc.dll (Microsoft Corporation)
SRV - (AppReadiness) -- C:\Windows\System32\AppReadiness.dll (Microsoft Corporation)
SRV - (WalletService) -- C:\Windows\System32\WalletService.dll (Microsoft Corporation)
SRV - (WiaRpc) -- C:\Windows\System32\wiarpc.dll (Microsoft Corporation)
SRV - (StorSvc) -- C:\Windows\System32\StorSvc.dll (Microsoft Corporation)
SRV - (NcaSvc) -- C:\Windows\System32\NcaSvc.dll (Microsoft Corporation)
SRV - (workfolderssvc) -- C:\Windows\System32\workfolderssvc.dll (Microsoft Corporation)
SRV - (IEEtwCollectorService) -- C:\WINDOWS\System32\IEEtwCollector.exe (Microsoft Corporation)
SRV - (LSM) -- C:\Windows\System32\lsm.dll (Microsoft Corporation)
SRV - (NcdAutoSetup) -- C:\Windows\System32\NcdAutoSetup.dll (Microsoft Corporation)
SRV - (NetSetupSvc) -- C:\Windows\System32\NetSetupSvc.dll (Microsoft Corporation)
SRV - (BrokerInfrastructure) -- C:\Windows\System32\bisrv.dll (Microsoft Corporation)
SRV - (NcbService) -- C:\Windows\System32\ncbservice.dll (Microsoft Corporation)
SRV - (PimIndexMaintenanceSvc) -- C:\Windows\System32\PimIndexMaintenance.dll (Microsoft Corporation)
SRV - (WpnService) -- C:\Windows\System32\wpnservice.dll (Microsoft Corporation)
SRV - (DevQueryBroker) -- C:\Windows\System32\DevQueryBroker.dll (Microsoft Corporation)
SRV - (lfsvc) -- C:\Windows\System32\lfsvc.dll (Microsoft Corporation)
SRV - (LicenseManager) -- C:\Windows\System32\LicenseManagerSvc.dll (Microsoft Corporation)
SRV - (StateRepository) -- C:\Windows\System32\Windows.StateRepository.dll (Microsoft Corporation)
SRV - (XboxNetApiSvc) -- C:\Windows\System32\XboxNetApiSvc.dll (Microsoft Corporation)
SRV - (XblGameSave) -- C:\Windows\System32\XblGameSave.dll (Microsoft Corporation)
SRV - (NgcSvc) -- C:\Windows\System32\ngcsvc.dll (Microsoft Corporation)
SRV - (NgcCtnrSvc) -- C:\Windows\System32\NgcCtnrSvc.dll (Microsoft Corporation)
SRV - (MapsBroker) -- C:\Windows\System32\moshost.dll (Microsoft Corporation)
SRV - (AJRouter) -- C:\Windows\System32\AJRouter.dll (Microsoft Corporation)
SRV - (CDPSvc) -- C:\Windows\System32\cdpsvc.dll (Microsoft Corporation)
SRV - (embeddedmode) -- C:\Windows\System32\embeddedmodesvc.dll (Microsoft Corporation)
SRV - (WSService) -- C:\Windows\System32\WSService.dll (Microsoft Corporation)
SRV - (KeyIso) -- C:\Windows\System32\keyiso.dll (Microsoft Corporation)
SRV - (wlidsvc) -- C:\Windows\System32\wlidsvc.dll (Microsoft Corporation)
SRV - (UserManager) -- C:\Windows\System32\usermgr.dll (Microsoft Corporation)
SRV - (XblAuthManager) -- C:\Windows\System32\XblAuthManager.dll (Microsoft Corporation)
SRV - (ScDeviceEnum) -- C:\Windows\System32\ScDeviceEnum.dll (Microsoft Corporation)
SRV - (WEPHOSTSVC) -- C:\Windows\System32\wephostsvc.dll (Microsoft Corporation)
SRV - (VaultSvc) -- C:\Windows\System32\vaultsvc.dll (Microsoft Corporation)
SRV - (EFS) -- C:\Windows\System32\efssvc.dll (Microsoft Corporation)
SRV - (DsmSvc) -- C:\Windows\System32\DeviceSetupManager.dll (Microsoft Corporation)
SRV - (diagnosticshub.standardcollector.service) -- C:\Windows\System32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (Microsoft Corporation)
SRV - (DeviceAssociationService) -- C:\Windows\System32\das.dll (Microsoft Corporation)
SRV - (smphost) -- C:\Windows\System32\smphost.dll (Microsoft Corporation)
SRV - (OneSyncSvc) -- C:\Windows\System32\APHostService.dll (Microsoft Corporation)
SRV - (DcpSvc) -- C:\Windows\System32\dcpsvc.dll (Microsoft Corporation)
SRV - (fhsvc) -- C:\Windows\System32\fhsvc.dll (Microsoft Corporation)
SRV - (svsvc) -- C:\Windows\System32\svsvc.dll (Microsoft Corporation)
SRV - (DsSvc) -- C:\Windows\System32\dssvc.dll (Microsoft Corporation)
SRV - (EntAppSvc) -- C:\Windows\System32\EnterpriseAppMgmtSvc.dll (Microsoft Corporation)
SRV - (DmEnrollmentSvc) -- C:\Windows\System32\Windows.Internal.Management.dll (Microsoft Corporation)
SRV - (dmwappushservice) -- C:\Windows\System32\dmwappushsvc.dll (Microsoft Corporation)
SRV - (SmsRouter) -- C:\Windows\System32\SmsRouterSvc.dll (Microsoft Corporation)
SRV - (netprofm) -- C:\Windows\System32\netprofmsvc.dll (Microsoft Corporation)
SRV - (WdNisSvc) -- C:\Program Files\Windows Defender\NisSrv.exe (Microsoft Corporation)
SRV - (SystemEventsBroker) -- C:\Windows\System32\SystemEventsBrokerServer.dll (Microsoft Corporation)
SRV - (TimeBroker) -- C:\Windows\System32\TimeBrokerServer.dll (Microsoft Corporation)
SRV - (WinDefend) -- C:\Program Files\Windows Defender\MsMpEng.exe (Microsoft Corporation)
SRV - (vmicheartbeat) -- C:\Windows\System32\icsvc.dll (Microsoft Corporation)
SRV - (vmicvss) -- C:\Windows\System32\icsvc.dll (Microsoft Corporation)
SRV - (vmicvmsession) -- C:\Windows\System32\icsvc.dll (Microsoft Corporation)
SRV - (vmictimesync) -- C:\Windows\System32\icsvc.dll (Microsoft Corporation)
SRV - (vmicshutdown) -- C:\Windows\System32\icsvc.dll (Microsoft Corporation)
SRV - (vmicrdv) -- C:\Windows\System32\icsvc.dll (Microsoft Corporation)
SRV - (vmickvpexchange) -- C:\Windows\System32\icsvc.dll (Microsoft Corporation)
SRV - (vmicguestinterface) -- C:\Windows\System32\icsvc.dll (Microsoft Corporation)
SRV - (PrintNotify) -- C:\Windows\System32\spool\drivers\w32x86\3\PrintConfig.dll (Microsoft Corporation)
SRV - (BthHFSrv) -- C:\Windows\System32\BthHFSrv.dll (Microsoft Corporation)
SRV - (MBAMService) -- C:\Program Files\Malwarebytes Anti-Malware\mbamservice.exe (Malwarebytes Corporation)
SRV - (Freemake Improver) -- C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe (Freemake)
SRV - (FreemakeVideoCapture) -- C:\Program Files\Freemake\CaptureLib\CaptureLibService.exe (Ellora Assets Corp.)
SRV - (Fabs) -- C:\Program Files\Common Files\MAGIX Services\Database\bin\FABS.exe (MAGIX AG)
SRV - (FLEXnet Licensing Service) -- C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe (Acresso Software Inc.)
SRV - (Creative Audio Engine Licensing Service) -- C:\Program Files\Common Files\Creative Labs Shared\Service\CTAELicensing.exe (Creative Labs)
SRV - (FirebirdServerMAGIXInstance) -- C:\Program Files\Common Files\MAGIX Services\Database\bin\fbserver.exe (MAGIX®)
SRV - (ServiceLayer) -- C:\Program Files\Nokia\PC Connectivity Solution\ServiceLayer.exe (Nokia)
SRV - (LVPrcSrv) -- C:\Program Files\Common Files\logishrd\LVMVFM\LVPrcSrv.exe (Logitech Inc.)
SRV - (CTAudSvcService) -- C:\Program Files\Creative\Shared Files\CTAudSvc.exe (Creative Technology Ltd)


========== Driver Services (SafeList) ==========

DRV - (wfpcapture) -- C:\WINDOWS\System32\drivers\wfpcapture.sys File not found
DRV - (nvlddmkm) -- C:\Windows\System32\drivers\nvlddmkm.sys (NVIDIA Corporation)
DRV - (dam) -- C:\Windows\System32\drivers\dam.sys (Microsoft Corporation)
DRV - (UcmUcsi) -- C:\Windows\System32\drivers\UcmUcsi.sys (Microsoft Corporation)
DRV - (MQAC) -- C:\Windows\System32\drivers\mqac.sys (Microsoft Corporation)
DRV - (NVHDA) -- C:\Windows\System32\drivers\nvhda32v.sys (NVIDIA Corporation)
DRV - (Wof) -- C:\WINDOWS\System32\drivers\wof.sys (Microsoft Corporation)
DRV - (wdiwifi) -- C:\Windows\System32\drivers\WdiWiFi.sys (Microsoft Corporation)
DRV - (Avgfwfd) -- C:\Windows\System32\drivers\avgfwd6x.sys (AVG Technologies CZ, s.r.o.)
DRV - (USBHUB3) -- C:\Windows\System32\drivers\USBHUB3.SYS (Microsoft Corporation)
DRV - (msgpiowin32) -- C:\Windows\System32\drivers\msgpiowin32.sys (Microsoft Corporation)
DRV - (wpcfltr) -- C:\Windows\System32\drivers\wpcfltr.sys (Microsoft Corporation)
DRV - (BthHFEnum) -- C:\Windows\System32\drivers\bthhfenum.sys (Microsoft Corporation)
DRV - (AVGIDSDriver) -- C:\Windows\System32\drivers\avgidsdriverx.sys (AVG Technologies CZ, s.r.o.)
DRV - (Avgmfx86) -- C:\Windows\System32\drivers\avgmfx86.sys (AVG Technologies CZ, s.r.o.)
DRV - (NvStreamKms) -- C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys (NVIDIA Corporation)
DRV - (AVGIDSShim) -- C:\Windows\System32\drivers\avgidsshimw8x.sys (AVG Technologies CZ, s.r.o.)
DRV - (nvvad_WaveExtensible) -- C:\Windows\System32\drivers\nvvad32v.sys (NVIDIA Corporation)
DRV - (Avglogx) -- C:\Windows\System32\drivers\avglogx.sys (AVG Technologies CZ, s.r.o.)
DRV - (RdpVideoMiniport) -- C:\Windows\System32\drivers\rdpvideominiport.sys (Microsoft Corporation)
DRV - (terminpt) -- C:\Windows\System32\drivers\terminpt.sys (Microsoft Corporation)
DRV - (WpdUpFltr) -- C:\Windows\System32\drivers\WpdUpFltr.sys (Microsoft Corporation)
DRV - (CLFS) -- C:\Windows\System32\drivers\clfs.sys (Microsoft Corporation)
DRV - (ahcache) -- C:\Windows\System32\drivers\ahcache.sys (Microsoft Corporation)
DRV - (WindowsTrustedRT) -- C:\Windows\System32\drivers\WindowsTrustedRT.sys (Microsoft Corporation)
DRV - (UcmCx0101) -- C:\Windows\System32\drivers\UcmCx.sys (Microsoft Corporation)
DRV - (VerifierExt) -- C:\Windows\System32\drivers\VerifierExt.sys (Microsoft Corporation)
DRV - (storqosflt) -- C:\Windows\System32\drivers\storqosflt.sys (Microsoft Corporation)
DRV - (condrv) -- C:\Windows\System32\drivers\condrv.sys (Microsoft Corporation)
DRV - (IoQos) -- C:\Windows\System32\drivers\ioqos.sys (Microsoft Corporation)
DRV - (WFPLWFS) -- C:\Windows\System32\drivers\wfplwfs.sys (Microsoft Corporation)
DRV - (MMCSS) -- C:\Windows\System32\drivers\mmcss.sys (Microsoft Corporation)
DRV - (cnghwassist) -- C:\Windows\System32\drivers\cnghwassist.sys (Microsoft Corporation)
DRV - (Ufx01000) -- C:\Windows\System32\drivers\ufx01000.sys (Microsoft Corporation)
DRV - (GPIOClx0101) -- C:\Windows\System32\drivers\msgpioclx.sys (Microsoft Corporation)
DRV - (SerCx2) -- C:\Windows\System32\drivers\SerCx2.sys (Microsoft Corporation)
DRV - (EhStorClass) -- C:\Windows\System32\drivers\EhStorClass.sys (Microsoft Corporation)
DRV - (SpbCx) -- C:\Windows\System32\drivers\SpbCx.sys (Microsoft Corporation)
DRV - (SerCx) -- C:\Windows\System32\drivers\SerCx.sys (Microsoft Corporation)
DRV - (UrsCx01000) -- C:\Windows\System32\drivers\urscx01000.sys (Microsoft Corporation)
DRV - (mshidumdf) -- C:\Windows\System32\drivers\mshidumdf.sys (Microsoft Corporation)
DRV - (GpuEnergyDrv) -- C:\Windows\System32\drivers\gpuenergydrv.sys (Microsoft Corporation)
DRV - (NdisVirtualBus) -- C:\Windows\System32\drivers\NdisVirtualBus.sys (Microsoft Corporation)
DRV - (Ndu) -- C:\Windows\System32\drivers\Ndu.sys (Microsoft Corporation)
DRV - (MsLldp) -- C:\Windows\System32\drivers\mslldp.sys (Microsoft Corporation)
DRV - (NdisImPlatform) -- C:\Windows\System32\drivers\NdisImPlatform.sys (Microsoft Corporation)
DRV - (WdFilter) -- C:\Windows\System32\drivers\WdFilter.sys (Microsoft Corporation)
DRV - (WdNisDrv) -- C:\Windows\System32\drivers\WdNisDrv.sys (Microsoft Corporation)
DRV - (WdBoot) -- C:\Windows\System32\drivers\WdBoot.sys (Microsoft Corporation)
DRV - (Ucx01000) -- C:\Windows\System32\drivers\Ucx01000.sys (Microsoft Corporation)
DRV - (acpiex) -- C:\Windows\System32\drivers\acpiex.sys (Microsoft Corporation)
DRV - (pdc) -- C:\Windows\System32\drivers\pdc.sys (Microsoft Corporation)
DRV - (FileCrypt) -- C:\Windows\System32\drivers\filecrypt.sys (Microsoft Corporation)
DRV - (TsUsbFlt) -- C:\Windows\System32\drivers\TsUsbFlt.sys (Microsoft Corporation)
DRV - (UdeCx) -- C:\Windows\System32\drivers\Udecx.sys ()
DRV - (vhf) -- C:\Windows\System32\drivers\vhf.sys (Microsoft Corporation)
DRV - (TsUsbGD) -- C:\Windows\System32\drivers\TsUsbGD.sys (Microsoft Corporation)
DRV - (UrsSynopsys) -- C:\Windows\System32\drivers\urssynopsys.sys (Microsoft Corporation)
DRV - (UrsChipidea) -- C:\Windows\System32\drivers\urschipidea.sys (Microsoft Corporation)
DRV - (npsvctrig) -- C:\Windows\System32\drivers\npsvctrig.sys (Microsoft Corporation)
DRV - (WindowsTrustedRTProxy) -- C:\Windows\System32\drivers\WindowsTrustedRTProxy.sys (Microsoft Corporation)
DRV - (rt640x86) -- C:\Windows\System32\drivers\rt640x86.sys (Realtek )
DRV - (spaceport) -- C:\Windows\System32\drivers\spaceport.sys (Microsoft Corporation)
DRV - (USBXHCI) -- C:\Windows\System32\drivers\USBXHCI.SYS (Microsoft Corporation)
DRV - (VSTXRAID) -- C:\Windows\System32\drivers\VSTXRAID.SYS (VIA Corporation)
DRV - (storahci) -- C:\Windows\System32\drivers\storahci.sys (Microsoft Corporation)
DRV - (ufxsynopsys) -- C:\Windows\System32\drivers\ufxsynopsys.sys (Microsoft Corporation)
DRV - (UfxChipidea) -- C:\Windows\System32\drivers\UfxChipidea.sys (Microsoft Corporation)
DRV - (stornvme) -- C:\Windows\System32\drivers\stornvme.sys (Microsoft Corporation)
DRV - (UASPStor) -- C:\Windows\System32\drivers\uaspstor.sys (Microsoft Corporation)
DRV - (mvumis) -- C:\Windows\System32\drivers\mvumis.sys (Marvell Semiconductor, Inc.)
DRV - (percsas3i) -- C:\Windows\System32\drivers\percsas3i.sys (Avago Technologies)
DRV - (percsas2i) -- C:\Windows\System32\drivers\percsas2i.sys (LSI Corporation)
DRV - (BasicDisplay) -- C:\Windows\System32\drivers\BasicDisplay.sys (Microsoft Corporation)
DRV - (storufs) -- C:\Windows\System32\drivers\storufs.sys (Microsoft Corporation)
DRV - (BasicRender) -- C:\Windows\System32\drivers\BasicRender.sys (Microsoft Corporation)
DRV - (UEFI) -- C:\Windows\System32\drivers\uefi.sys (Microsoft Corporation)
DRV - (swenum) -- C:\Windows\System32\DriverStore\FileRepository\swenum.inf_x86_b6707c73599dd1b6\swenum.sys (Microsoft Corporation)
DRV - (ADP80XX) -- C:\Windows\System32\drivers\adp80xx.sys (PMC-Sierra)
DRV - (iaStorAV) -- C:\Windows\System32\drivers\iaStorAV.sys (Intel Corporation)
DRV - (xboxgip) -- C:\Windows\System32\drivers\xboxgip.sys (Microsoft Corporation)
DRV - (TPM) -- C:\Windows\System32\drivers\tpm.sys (Microsoft Corporation)
DRV - (CapImg) -- C:\Windows\System32\drivers\capimg.sys (Microsoft Corporation)
DRV - (LSI_SAS2i) -- C:\Windows\System32\drivers\lsi_sas2i.sys (LSI Corporation)
DRV - (3ware) -- C:\Windows\System32\drivers\3ware.sys (LSI)
DRV - (LSI_SAS3i) -- C:\Windows\System32\drivers\lsi_sas3i.sys (Avago Technologies)
DRV - (LSI_SSS) -- C:\Windows\System32\drivers\lsi_sss.sys (LSI Corporation)
DRV - (iaioi2c) -- C:\Windows\System32\drivers\iaioi2c.sys (Intel Corporation)
DRV - (hidinterrupt) -- C:\Windows\System32\drivers\hidinterrupt.sys (Microsoft Corporation)
DRV - (buttonconverter) -- C:\Windows\System32\drivers\buttonconverter.sys (Microsoft Corporation)
DRV - (GPIO) -- C:\Windows\System32\drivers\iaiogpio.sys (Intel Corporation)
DRV - (xinputhid) -- C:\Windows\System32\drivers\xinputhid.sys (Microsoft Corporation)
DRV - (kdnic) -- C:\Windows\System32\drivers\kdnic.sys (Microsoft Corporation)
DRV - (genericusbfn) -- C:\Windows\System32\drivers\genericusbfn.sys (Microsoft Corporation)
DRV - (bcmfn2) -- C:\Windows\System32\drivers\bcmfn2.sys (Windows (R) Win 7 DDK provider)
DRV - (acpitime) -- C:\Windows\System32\drivers\acpitime.sys (Microsoft Corporation)
DRV - (acpipagr) -- C:\Windows\System32\drivers\acpipagr.sys (Microsoft Corporation)
DRV - (EhStorTcgDrv) -- C:\Windows\System32\drivers\EhStorTcgDrv.sys (Microsoft Corporation)
DRV - (vmbus) -- C:\Windows\System32\drivers\vmbus.sys (Microsoft Corporation)
DRV - (netvsc) -- C:\Windows\System32\drivers\netvsc.sys (Microsoft Corporation)
DRV - (sdstor) -- C:\Windows\System32\drivers\sdstor.sys (Microsoft Corporation)
DRV - (WINUSB) -- C:\Windows\System32\drivers\winusb.sys (Microsoft Corporation)
DRV - (Synth3dVsc) -- C:\Windows\System32\drivers\Synth3dVsc.sys (Microsoft Corporation)
DRV - (storflt) -- C:\Windows\System32\drivers\vmstorfl.sys (Microsoft Corporation)
DRV - (intelpep) -- C:\Windows\System32\drivers\intelpep.sys (Microsoft Corporation)
DRV - (hidi2c) -- C:\Windows\System32\drivers\hidi2c.sys (Microsoft Corporation)
DRV - (BthAvrcpTg) -- C:\Windows\System32\drivers\BthAvrcpTg.sys (Microsoft Corporation)
DRV - (CompositeBus) -- C:\Windows\System32\DriverStore\FileRepository\compositebus.inf_x86_a4832450a7024d49\CompositeBus.sys (Microsoft Corporation)
DRV - (dmvsc) -- C:\Windows\System32\drivers\dmvsc.sys (Microsoft Corporation)
DRV - (storvsc) -- C:\Windows\System32\drivers\storvsc.sys (Microsoft Corporation)
DRV - (fcvsc) -- C:\Windows\System32\drivers\fcvsc.sys (Microsoft Corporation)
DRV - (bthhfhid) -- C:\Windows\System32\drivers\BthhfHid.sys (Microsoft Corporation)
DRV - (VMBusHID) -- C:\Windows\System32\drivers\VMBusHID.sys (Microsoft Corporation)
DRV - (HyperVideo) -- C:\Windows\System32\drivers\HyperVideo.sys (Microsoft Corporation)
DRV - (hyperkbd) -- C:\Windows\System32\drivers\hyperkbd.sys (Microsoft Corporation)
DRV - (gencounter) -- C:\Windows\System32\drivers\vmgencounter.sys (Microsoft Corporation)
DRV - (s3cap) -- C:\Windows\System32\drivers\vms3cap.sys (Microsoft Corporation)
DRV - (Avgwfpx) -- C:\Windows\System32\drivers\avgwfpx.sys (AVG Technologies CZ, s.r.o.)
DRV - (MBAMWebAccessControl) -- C:\Windows\System32\drivers\mwac.sys (Malwarebytes Corporation)
DRV - (MBAMProtector) -- C:\Windows\System32\drivers\mbam.sys (Malwarebytes Corporation)
DRV - (Avgldx86) -- C:\Windows\System32\drivers\avgldx86.sys (AVG Technologies CZ, s.r.o.)
DRV - (AVGIDSHX) -- C:\Windows\System32\drivers\avgidshx.sys (AVG Technologies CZ, s.r.o.)
DRV - (Avgbootx) -- C:\Windows\System32\drivers\avgbootx.sys (AVG Technologies CZ, s.r.o.)
DRV - (Avgrkx86) -- C:\Windows\System32\drivers\avgrkx86.sys (AVG Technologies CZ, s.r.o.)
DRV - (Avgdiskx) -- C:\Windows\System32\drivers\avgdiskx.sys (AVG Technologies CZ, s.r.o.)
DRV - (dtsoftbus01) -- C:\Windows\System32\drivers\dtsoftbus01.sys (Disc Soft Ltd)
DRV - (tap0901) -- C:\Windows\System32\drivers\tap0901.sys (The OpenVPN Project)
DRV - (VBoxNetAdp) -- C:\Windows\System32\drivers\VBoxNetAdp.sys (Oracle Corporation)
DRV - (HWiNFO32) -- D:\Program Files\HWiNFO32\HWiNFO32.SYS (REALiX(tm))
DRV - (npf) -- C:\Windows\System32\drivers\npf.sys (CACE Technologies, Inc.)
DRV - (LVPr2Mon) -- C:\Windows\System32\drivers\LVPr2Mon.sys ()
DRV - (P17) -- C:\Windows\System32\drivers\P17.sys (Creative Technology Ltd.)
DRV - (pccsmcfd) -- C:\Windows\System32\drivers\pccsmcfd.sys (Nokia)
DRV - (LVUSBSta) -- C:\Windows\System32\drivers\LVUSBSta.sys (Logitech Inc.)
DRV - (LVRS) -- C:\Windows\System32\drivers\lvrs.sys (Logitech Inc.)
DRV - (PID_PEPI) -- C:\Windows\System32\drivers\LV302V32.SYS (Logitech Inc.)
DRV - (pepifilter) -- C:\Windows\System32\drivers\lv302af.sys (Logitech Inc.)
DRV - (sfhlp02) -- C:\Windows\System32\drivers\sfhlp02.sys (Protection Technology)


========== Standard Registry (All) ==========


========== Internet Explorer ==========

IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = [binary data]
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:NoAdd-ons
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\System32\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:SecurityRisk
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.msn.com/
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,CustomizeSearch = http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchcust.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm
IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC

IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\system32\blank.htm
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://windows.microsoft.com/cs-cz/hotm ... ?ocid=iehp
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = cs,en-US;q=0.7,en;q=0.3
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = BD E4 2C 67 7A D6 D0 01 [binary data]
IE - HKCU\..\URLSearchHook: {CFBFAE00-17A6-11D0-99CB-00C04FD64497} - C:\Windows\System32\ieframe.dll (Microsoft Corporation)
IE - HKCU\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

========== FireFox ==========

FF - prefs.js..browser.startup.homepage: "about:home"
FF - user.js - File not found

FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\WINDOWS\system32\Macromed\Flash\NPSWF32_18_0_0_232.dll ()
FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\Windows\system32\Adobe\Director\np32dsw_1211151.dll (Adobe Systems, Inc.)
FF - HKLM\Software\MozillaPlugins\@divx.com/DivX Browser Plugin,version=1.0.0: C:\Program Files\DivX\DivX Web Player\npdivx32.dll (DivX,Inc.)
FF - HKLM\Software\MozillaPlugins\@Google.com/GoogleEarthPlugin: C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=11.51.2: C:\Program Files\Java\jre1.8.0_51\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=11.51.2: C:\Program Files\Java\jre1.8.0_51\bin\plugin2\npjp2.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files\Microsoft Silverlight\5.1.40728.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@nvidia.com/3DVision: C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
FF - HKLM\Software\MozillaPlugins\@nvidia.com/3DVisionStreaming: C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
FF - HKLM\Software\MozillaPlugins\@pages.tvunetworks.com/WebPlayer: C:\Program Files\TVUPlayer\npTVUAx.dll (TVU networks)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.28.1\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.28.1\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=2.1.0: C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=2.1.1: C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=2.1.2: C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=2.1.3: C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=2.1.5: C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=2.2.1: C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)

FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\fmdownloader@gmail.com: C:\Program Files\Freemake\Freemake Video Downloader\BrowserPlugin\Firefox\fmdownloader@gmail.com\ [2014.02.07 10:31:01 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\ytfmdownloader@gmail.com: C:\Program Files\Freemake\Freemake Video Downloader\BrowserPlugin\Firefox\ytfmdownloader@gmail.com\ [2014.02.07 10:31:01 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 40.0.2\extensions\\Components: C:\Program Files\Mozilla Firefox\components
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 40.0.2\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins
FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Firefox 40.0.2\extensions\\Components: C:\Program Files\Mozilla Firefox\components
FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Firefox 40.0.2\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins

[2015.05.15 20:21:35 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Petr\AppData\Roaming\Mozilla\Extensions
[2015.07.23 13:44:56 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\0khh5aex.default-1427958703254\extensions
[2015.08.15 09:13:13 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\o8mlkunx.default-1439620301952\extensions
[2015.08.15 09:13:13 | 000,000,000 | ---D | M] (Memory Fox) -- C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\o8mlkunx.default-1439620301952\extensions\{E173B749-DB5B-4fd2-BA0E-94ECEA0CA55B}
[2015.08.15 09:13:14 | 000,000,000 | ---D | M] (Seznam lištička) -- C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\o8mlkunx.default-1439620301952\extensions\{ea614400-e918-4741-9a97-7a972ff7c30b}
[2015.08.15 09:11:32 | 000,000,000 | ---D | M] (ÄŚeskĂ˝ slovnĂ­k pro kontrolu pravopisu) -- C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\o8mlkunx.default-1439620301952\extensions\cs@dictionaries.addons.mozilla.org
[2015.07.23 21:42:51 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Petr\AppData\Roaming\Mozilla\SeaMonkey\Profiles\s23qpowu.default\extensions
[2015.08.15 09:13:13 | 000,553,637 | ---- | M] () (No name found) -- C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\o8mlkunx.default-1439620301952\extensions\ClassicThemeRestorer@ArisT2Noia4dev.xpi
[2015.08.15 09:08:33 | 000,120,605 | ---- | M] () (No name found) -- C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\o8mlkunx.default-1439620301952\extensions\elemhidehelper@adblockplus.org.xpi
[2015.08.15 09:07:11 | 001,482,019 | ---- | M] () (No name found) -- C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\o8mlkunx.default-1439620301952\extensions\firefox@ghostery.com.xpi
[2015.08.15 09:13:13 | 000,078,016 | ---- | M] () (No name found) -- C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\o8mlkunx.default-1439620301952\extensions\Restart-My-Fox@8pecxstudios.com.xpi
[2015.08.15 09:13:13 | 000,071,075 | ---- | M] () (No name found) -- C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\o8mlkunx.default-1439620301952\extensions\save2read@konstantin.plotnikov.xpi
[2015.08.15 09:13:13 | 000,207,861 | ---- | M] () (No name found) -- C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\o8mlkunx.default-1439620301952\extensions\thumbnailZoom@dadler.github.com.xpi
[2015.08.15 09:07:01 | 000,532,238 | ---- | M] () (No name found) -- C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\o8mlkunx.default-1439620301952\extensions\{1018e4d6-728f-4b20-ad56-37578a4de76b}.xpi
[2015.08.15 09:13:13 | 000,561,726 | ---- | M] () (No name found) -- C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\o8mlkunx.default-1439620301952\extensions\{73a6fe31-595d-460b-a920-fcc0f8843232}.xpi
[2015.08.15 09:06:08 | 000,963,213 | ---- | M] () (No name found) -- C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\o8mlkunx.default-1439620301952\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi
[2015.08.15 09:13:12 | 000,864,558 | ---- | M] () (No name found) -- C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\o8mlkunx.default-1439620301952\extensions\{dc572301-7619-498c-a57d-39143191b318}.xpi
[2015.08.15 09:13:12 | 000,148,138 | ---- | M] () (No name found) -- C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\o8mlkunx.default-1439620301952\extensions\{F8A55C97-3DB6-4961-A81D-0DE0080E53CB}.xpi
[2015.08.14 08:51:54 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\browser\extensions
[2015.08.14 08:51:59 | 000,000,000 | ---D | M] (Default) -- C:\Program Files\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}

O1 HOSTS File: ([2015.08.13 16:28:20 | 000,000,753 | ---- | M]) - C:\Windows\System32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.8.0_51\bin\ssv.dll (Oracle Corporation)
O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre1.8.0_51\bin\jp2ssv.dll (Oracle Corporation)
O4 - HKLM..\Run: [AVG_UI] C:\Program Files\AVG\AVG2015\avgui.exe (AVG Technologies CZ, s.r.o.)
O4 - HKLM..\Run: [NvBackend] C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe (NVIDIA Corporation)
O4 - HKLM..\Run: [P17RunE] C:\WINDOWS\System32\P17RunE.dll (Creative Technology Ltd.)
O4 - HKLM..\Run: [ShadowPlay] C:\WINDOWS\System32\nvspcap.dll (NVIDIA Corporation)
O4 - HKCU..\Run: [CCleaner Monitoring] C:\Program Files\CCleaner\CCleaner.exe (Piriform Ltd)
O4 - HKCU..\Run: [OneDrive] C:\Users\Petr\AppData\Local\Microsoft\OneDrive\OneDrive.exe (Microsoft Corporation)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoRecentDocsHistory = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 153
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DSCAutomationHostEnabled = 2
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableCursorSuppression = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableInstallerDetection = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableSecureUIAPaths = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableUIADesktopToggle = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableVirtualization = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ValidateAdminCodeSignatures = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: dontdisplaylastusername = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticecaption =
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticetext =
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: scforceoption = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: shutdownwithoutlogon = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: undockwithoutlogon = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: FilterAdministratorToken = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableRegistryTools = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_BITMAP = 2
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_DIB = 8
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_DIBV5 = 17
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_OEMTEXT = 7
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_PALETTE = 9
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_TEXT = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_UNICODETEXT = 13
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 153
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: disableregistrytools = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableTaskMgr = 0
O10 - NameSpace_Catalog5\Catalog_Entries\000000000001 [] - C:\Windows\System32\NapiNSP.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000002 [] - C:\Windows\System32\pnrpnsp.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000003 [] - C:\Windows\System32\pnrpnsp.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [] - C:\Windows\System32\nlaapi.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000005 [] - C:\Windows\System32\winrnr.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000006 [] - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000001 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000002 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000003 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000004 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000005 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000006 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000007 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000008 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000009 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000010 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000011 - C:\Windows\System32\mswsock.dll (Microsoft Corporation)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.8.0/jinsta ... s-i586.cab (Java Plug-in 11.51.2)
O16 - DPF: {CAFEEFAC-0018-0000-0025-ABCDEFFEDCBA} http://java.sun.com/update/1.8.0/jinsta ... s-i586.cab (Java Plug-in 1.8.0_25)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.8.0/jinsta ... s-i586.cab (Java Plug-in 11.51.2)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 213.46.172.37 213.46.172.36
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{c6846616-3e73-45d0-840e-dae156dada32}: DhcpNameServer = 213.46.172.37 213.46.172.36
O18 - Protocol\Handler\about {3050F406-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\System32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\cdl {3dd53d40-7b8b-11D0-b013-00aa0059ce02} - C:\Windows\System32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\dvd {12D51199-0DB5-46FE-A120-47A3D7D937CC} - C:\Windows\System32\MSVidCtl.dll (Microsoft Corporation)
O18 - Protocol\Handler\file {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\System32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\ftp {79eac9e3-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\System32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\http {79eac9e2-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\System32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\https {79eac9e5-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\System32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\its {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\Windows\System32\itss.dll (Microsoft Corporation)
O18 - Protocol\Handler\javascript {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\System32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\local {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\System32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\mailto {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\System32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\mhtml {05300401-BCBC-11d0-85E3-00C04FD85AB4} - C:\Windows\System32\inetcomm.dll (Microsoft Corporation)
O18 - Protocol\Handler\mk {79eac9e6-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\System32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - C:\Program Files\Common Files\microsoft shared\Help\hxds.dll (Microsoft Corporation)
O18 - Protocol\Handler\ms-its {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\Windows\System32\itss.dll (Microsoft Corporation)
O18 - Protocol\Handler\res {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\System32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\tbauth {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\System32\tbauth.dll (Microsoft Corporation)
O18 - Protocol\Handler\tv {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} - C:\Windows\System32\MSVidCtl.dll (Microsoft Corporation)
O18 - Protocol\Handler\vbscript {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\System32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Filter\application/octet-stream {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\Windows\System32\mscoree.dll (Microsoft Corporation)
O18 - Protocol\Filter\application/x-complus {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\Windows\System32\mscoree.dll (Microsoft Corporation)
O18 - Protocol\Filter\application/x-msdownload {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\Windows\System32\mscoree.dll (Microsoft Corporation)
O18 - Protocol\Filter\text/xml {807563E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\microsoft shared\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\System32\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\WINDOWS\System32\SystemPropertiesPerformance.exe (Microsoft Corporation)
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O22 - SharedTaskScheduler: {1984DD45-52CF-49cd-AB77-18F378FEA264} - FencesShellExt - C:\Program Files\Stardock\Fences\FencesMenu.dll (Stardock)
O29 - HKLM SecurityProviders - (credssp.dll) - C:\WINDOWS\System32\credssp.dll (Microsoft Corporation)
O30 - LSA: Authentication Packages - (msv1_0) - C:\WINDOWS\System32\msv1_0.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (kerberos) - C:\WINDOWS\System32\kerberos.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (msv1_0) - C:\WINDOWS\System32\msv1_0.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (schannel) - C:\WINDOWS\System32\schannel.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (wdigest) - C:\WINDOWS\System32\wdigest.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (tspkg) - C:\WINDOWS\System32\tspkg.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (pku2u) - C:\WINDOWS\System32\pku2u.dll (Microsoft Corporation)
O31 - SafeBoot: AlternateShell - cmd.exe
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2003.01.17 19:56:40 | 000,000,031 | R--- | M] () - E:\Autorun.inf -- [ CDFS ]
O34 - HKLM BootExecute: (autocheck autochk *)
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)

========== Files/Folders - Created Within 30 Days ==========
Naposledy upravil(a) akiller dne 15 srp 2015 10:30, celkem upraveno 1 x.
Keybord not present. Press Enter to continue

Uživatelský avatar
akiller
Level 3
Level 3
Příspěvky: 558
Registrován: listopad 10
Bydliště: Nothingtown
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod akiller » 15 srp 2015 10:27

Prostřední část:


[2015.08.15 10:06:02 | 000,602,112 | ---- | C] (OldTimer Tools) -- C:\Users\Petr\Desktop\OTL.exe
[2015.08.14 08:51:54 | 000,000,000 | ---D | C] -- C:\Program Files\Mozilla Firefox
[2015.08.14 08:44:33 | 000,000,000 | ---D | C] -- C:\FRST
[2015.08.14 08:40:14 | 001,678,336 | ---- | C] (Farbar) -- C:\Users\Petr\Desktop\FRST.exe
[2015.08.13 17:03:59 | 000,000,000 | ---D | C] -- C:\Users\Petr\AppData\Local\CrashDumps
[2015.08.13 17:01:15 | 000,573,232 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvStreaming.exe
[2015.08.13 16:57:52 | 000,037,208 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvhdap32.dll
[2015.08.13 16:57:49 | 001,000,088 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvumdshim.dll
[2015.08.13 16:57:48 | 000,128,512 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvoglshim32.dll
[2015.08.13 16:57:47 | 018,564,912 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvoglv32.dll
[2015.08.13 16:57:47 | 013,663,232 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvopencl.dll
[2015.08.13 16:57:46 | 012,186,176 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvcuda.dll
[2015.08.13 16:57:46 | 002,104,440 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvcuvid.dll
[2015.08.13 16:57:46 | 001,049,904 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvdispco3235560.dll
[2015.08.13 16:57:46 | 000,985,208 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\System32\NvIFR.dll
[2015.08.13 16:57:46 | 000,931,960 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\System32\NvFBC.dll
[2015.08.13 16:57:46 | 000,912,688 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvdispgenco3235560.dll
[2015.08.13 16:57:46 | 000,632,848 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvEncMFTH264.dll
[2015.08.13 16:57:46 | 000,364,336 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\System32\NvIFROpenGL.dll
[2015.08.13 16:57:46 | 000,339,576 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvDecMFTMjpeg.dll
[2015.08.13 16:57:46 | 000,316,120 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvEncodeAPI.dll
[2015.08.13 16:57:46 | 000,155,976 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvinit.dll
[2015.08.13 16:57:28 | 000,000,000 | ---D | C] -- C:\Users\Petr\AppData\Local\Adobe
[2015.08.13 16:49:31 | 000,000,000 | -HSD | C] -- C:\$RECYCLE.BIN
[2015.08.13 16:44:54 | 000,000,000 | ---D | C] -- C:\WINDOWS\Temp
[2015.08.13 16:44:54 | 000,000,000 | ---D | C] -- C:\Users\Petr\AppData\Local\Temp
[2015.08.13 16:26:38 | 000,000,000 | ---D | C] -- C:\zoek_backup
[2015.08.13 10:24:23 | 001,791,580 | ---- | C] (Malwarebytes Corporation) -- C:\Users\Petr\Desktop\JRT.exe
[2015.08.13 07:31:41 | 000,000,000 | ---D | C] -- C:\Program Files\CrystalDiskInfo
[2015.08.12 21:58:28 | 000,000,000 | ---D | C] -- C:\AdwCleaner
[2015.08.12 12:23:42 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
[2015.08.12 12:12:30 | 000,000,000 | ---D | C] -- C:\WINDOWS\PCHEALTH
[2015.08.12 08:48:57 | 006,878,256 | ---- | C] (Microsoft Corp.) -- C:\WINDOWS\System32\Windows.Media.Protection.PlayReady.dll
[2015.08.12 08:48:52 | 013,025,792 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\Windows.UI.Xaml.dll
[2015.08.12 08:48:51 | 018,805,248 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\edgehtml.dll
[2015.08.12 08:48:39 | 003,025,408 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\SettingsHandlers_nt.dll
[2015.08.12 08:48:37 | 002,151,208 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\mfcore.dll
[2015.08.12 08:48:37 | 001,916,416 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\MFMediaEngine.dll
[2015.08.12 08:48:34 | 002,987,008 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\win32kfull.sys
[2015.08.12 08:48:33 | 001,162,240 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\Windows.Media.Speech.dll
[2015.08.12 08:48:32 | 000,898,560 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\RemoteNaturalLanguage.dll
[2015.08.12 08:48:31 | 001,985,024 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\DWrite.dll
[2015.08.12 08:48:31 | 001,917,440 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\AppXDeploymentServer.dll
[2015.08.12 08:48:31 | 000,494,592 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\LogonController.dll
[2015.08.12 08:48:30 | 000,644,128 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\mfsvr.dll
[2015.08.12 08:48:29 | 001,134,592 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\win32kbase.sys
[2015.08.12 08:48:28 | 006,264,160 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\ntoskrnl.exe
[2015.08.12 08:48:28 | 000,195,072 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\Windows.ApplicationModel.LockScreen.dll
[2015.08.12 08:48:27 | 000,700,256 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\WWAHost.exe
[2015.08.12 08:48:27 | 000,488,960 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\WdiWiFi.sys
[2015.08.12 08:48:27 | 000,303,104 | ---- | C] (Adobe Systems Incorporated) -- C:\WINDOWS\System32\atmfd.dll
[2015.08.12 08:48:27 | 000,273,408 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\configmanager2.dll
[2015.08.12 08:48:26 | 000,752,640 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\msctfuimanager.dll
[2015.08.12 08:48:26 | 000,539,728 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\fontdrvhost.exe
[2015.08.12 08:48:26 | 000,436,064 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\dxgmms2.sys
[2015.08.12 08:48:26 | 000,268,800 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\NotificationObjFactory.dll
[2015.08.12 08:48:26 | 000,261,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\ActionCenter.dll
[2015.08.12 08:48:26 | 000,132,096 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\WinBioDataModel.dll
[2015.08.12 08:48:26 | 000,130,048 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\SubscriptionMgr.dll
[2015.08.12 08:48:26 | 000,094,208 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\NetworkStatus.dll
[2015.08.12 08:48:25 | 000,445,952 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\Windows.Cortana.Desktop.dll
[2015.08.12 08:48:25 | 000,415,072 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\USBHUB3.SYS
[2015.08.12 08:48:25 | 000,067,584 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\VPNv2CSP.dll
[2015.08.12 08:48:24 | 000,173,408 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\wof.sys
[2015.08.12 08:48:24 | 000,134,656 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\coredpus.dll
[2015.08.12 08:48:21 | 000,042,904 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\wpcfltr.sys
[2015.08.12 08:48:20 | 000,503,600 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\Windows.Internal.Shell.Broker.dll
[2015.08.12 08:48:20 | 000,036,704 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\msgpiowin32.sys
[2015.08.12 08:48:19 | 000,334,176 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\dxgmms1.sys
[2015.08.12 08:48:14 | 001,593,856 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dwmcore.dll
[2015.08.12 08:48:14 | 000,521,728 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\rdbui.dll
[2015.08.12 08:48:13 | 000,995,840 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\wifinetworkmanager.dll
[2015.08.12 08:48:13 | 000,311,808 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\LockAppBroker.dll
[2015.08.12 08:48:13 | 000,161,280 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\SharedStartModelShim.dll
[2015.08.12 08:48:10 | 001,499,136 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\AppXDeploymentExtensions.dll
[2015.08.12 08:48:07 | 000,719,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\RDXService.dll
[2015.08.12 08:48:06 | 000,990,720 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\Windows.UI.Shell.dll
[2015.08.12 08:48:06 | 000,673,792 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\SharedStartModel.dll
[2015.08.12 08:48:05 | 000,388,096 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\tileobjserver.dll
[2015.08.12 08:48:05 | 000,217,088 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\VEEventDispatcher.dll
[2015.08.12 08:48:05 | 000,189,440 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\SettingsHandlers_UserAccount.dll
[2015.08.12 08:48:04 | 000,081,920 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\VEDataLayerHelpers.dll
[2015.08.10 13:41:15 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\SleepStudy
[2015.08.10 12:14:55 | 000,000,000 | ---D | C] -- C:\Users\Petr\AppData\Local\MicrosoftEdge
[2015.08.09 20:24:57 | 009,889,792 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\twinui.dll
[2015.08.09 20:24:51 | 000,713,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\mfmpeg2srcsnk.dll
[2015.08.09 20:24:50 | 001,714,176 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\twinui.appcore.dll
[2015.08.09 20:24:47 | 000,585,728 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\Windows.ApplicationModel.Store.dll
[2015.08.09 20:24:46 | 000,962,400 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\LicenseManager.dll
[2015.08.09 20:24:45 | 000,335,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\CredProvDataModel.dll
[2015.08.09 20:24:44 | 001,867,160 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\d3d9.dll
[2015.08.09 20:24:42 | 000,675,328 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\modernexecserver.dll
[2015.08.09 20:24:42 | 000,397,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\NotificationController.dll
[2015.08.09 20:24:36 | 001,356,368 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\winmde.dll
[2015.08.09 20:24:36 | 001,341,920 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\wmpmde.dll
[2015.08.09 20:24:35 | 001,125,888 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\UserDataService.dll
[2015.08.09 20:24:35 | 000,877,016 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\mfmp4srcsnk.dll
[2015.08.09 20:24:35 | 000,417,280 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\PsmServiceExtHost.dll
[2015.08.09 20:24:34 | 000,741,376 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\wpncore.dll
[2015.08.09 20:24:34 | 000,445,240 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\AudioEng.dll
[2015.08.09 20:24:33 | 000,484,864 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\wcmsvc.dll
[2015.08.09 20:24:33 | 000,196,096 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\provhandlers.dll
[2015.08.09 20:24:32 | 000,497,152 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\PlayToManager.dll
[2015.08.09 20:24:32 | 000,285,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\MFPlay.dll
[2015.08.09 20:24:32 | 000,062,976 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\ACPBackgroundManagerPolicy.dll
[2015.08.09 20:24:31 | 000,473,088 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\wpnapps.dll
[2015.08.09 20:24:30 | 000,193,888 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\ContentDeliveryManager.Utilities.dll
[2015.08.09 20:24:29 | 000,896,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\mfsrcsnk.dll
[2015.08.09 20:24:29 | 000,189,440 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\provengine.dll
[2015.08.09 20:24:25 | 000,047,104 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\MusNotificationUx.exe
[2015.08.09 20:24:22 | 000,507,696 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dxgi.dll
[2015.08.09 20:24:22 | 000,239,616 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\AudioEndpointBuilder.dll
[2015.08.09 20:24:21 | 000,407,616 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\AudioSes.dll
[2015.08.09 20:24:21 | 000,135,680 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\InstallAgent.exe
[2015.08.09 20:24:20 | 001,181,536 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\diagtrack.dll
[2015.08.09 20:24:20 | 000,371,200 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\StoreAgent.dll
[2015.08.09 20:24:20 | 000,166,400 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\SensorService.dll
[2015.08.09 20:24:20 | 000,066,048 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\AppxSysprep.dll
[2015.08.09 20:24:19 | 000,373,248 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\mfmkvsrcsnk.dll
[2015.08.09 20:24:19 | 000,163,328 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\fwpolicyiomgr.dll
[2015.08.09 20:24:19 | 000,162,816 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\wcmcsp.dll
[2015.08.09 20:24:19 | 000,132,096 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\provisioningcsp.dll
[2015.08.09 20:24:19 | 000,078,336 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\SensorsNativeApi.V2.dll
[2015.08.09 20:24:19 | 000,034,816 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\VoiceActivationManager.dll
[2015.08.09 20:24:19 | 000,019,456 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\LicenseManagerShellext.exe
[2015.08.09 20:24:19 | 000,016,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\NotificationControllerPS.dll
[2015.08.09 20:24:18 | 000,247,808 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\Windows.ApplicationModel.Store.TestingFramework.dll
[2015.08.09 20:24:18 | 000,051,200 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\bthhfenum.sys
[2015.08.09 13:43:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\Panther
[2015.08.09 13:40:48 | 000,000,000 | ---D | C] -- C:\Windows.old
[2015.08.09 13:40:04 | 005,454,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\Chakra.dll
[2015.08.09 13:40:04 | 003,579,904 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\jscript9.dll
[2015.08.09 13:40:04 | 002,646,528 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\Windows.Media.dll
[2015.08.09 13:40:04 | 001,043,968 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\Windows.Media.Editing.dll
[2015.08.09 13:40:04 | 000,916,800 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\mfplat.dll
[2015.08.09 13:40:04 | 000,850,784 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\SecConfig.efi
[2015.08.09 13:40:04 | 000,729,088 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\wpccpl.dll
[2015.08.09 13:40:04 | 000,480,256 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\MCRecvSrc.dll
[2015.08.09 13:40:04 | 000,437,248 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\Windows.Devices.Sensors.dll
[2015.08.09 13:40:04 | 000,294,912 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\ieproxy.dll
[2015.08.09 13:40:04 | 000,251,392 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\SensorsApi.dll
[2015.08.09 13:40:04 | 000,082,616 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\bcd.dll
[2015.08.09 13:40:04 | 000,045,568 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\Windows.Cortana.PAL.Desktop.dll
[2015.08.09 13:39:59 | 004,398,080 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\Windows.UI.Search.dll
[2015.08.09 13:39:59 | 004,350,464 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\ExplorerFrame.dll
[2015.08.09 13:39:59 | 004,047,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe
[2015.08.09 13:39:59 | 003,443,200 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\UIRibbon.dll
[2015.08.09 13:39:59 | 001,611,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\Windows.UI.Immersive.dll
[2015.08.09 13:39:59 | 001,506,816 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\NetworkMobileSettings.dll
[2015.08.09 13:39:59 | 001,275,392 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\ActiveSyncProvider.dll
[2015.08.09 13:39:59 | 001,153,536 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\RecoveryDrive.exe
[2015.08.09 13:39:59 | 001,030,416 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\winload.efi
[2015.08.09 13:39:59 | 000,987,072 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\ClipUp.exe
[2015.08.09 13:39:59 | 000,925,696 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\Unistore.dll
[2015.08.09 13:39:59 | 000,920,576 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\reseteng.dll
[2015.08.09 13:39:59 | 000,902,320 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\winload.exe
[2015.08.09 13:39:59 | 000,872,448 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dosvc.dll
[2015.08.09 13:39:59 | 000,868,752 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\winresume.efi
[2015.08.09 13:39:59 | 000,845,664 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\ReAgent.dll
[2015.08.09 13:39:59 | 000,754,688 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\Windows.UI.Cred.dll
[2015.08.09 13:39:59 | 000,751,520 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\winresume.exe
[2015.08.09 13:39:59 | 000,677,888 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\wuapi.dll
[2015.08.09 13:39:59 | 000,669,696 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\SensorDataService.exe
[2015.08.09 13:39:59 | 000,623,616 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\ContactApis.dll
[2015.08.09 13:39:59 | 000,589,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\efscore.dll
[2015.08.09 13:39:59 | 000,584,704 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\UIRibbonRes.dll
[2015.08.09 13:39:59 | 000,584,544 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\wimgapi.dll
[2015.08.09 13:39:59 | 000,442,720 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\wimserv.exe
[2015.08.09 13:39:59 | 000,420,352 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\GamePanel.exe
[2015.08.09 13:39:59 | 000,419,328 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\sppcomapi.dll
[2015.08.09 13:39:59 | 000,363,520 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\bcdedit.exe
[2015.08.09 13:39:59 | 000,351,072 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\halmacpi.dll
[2015.08.09 13:39:59 | 000,351,072 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\hal.dll
[2015.08.09 13:39:59 | 000,322,048 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\Windows.UI.BlockedShutdown.dll
[2015.08.09 13:39:59 | 000,296,448 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\wuuhext.dll
[2015.08.09 13:39:59 | 000,283,648 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\Windows.UI.BioFeedback.dll
[2015.08.09 13:39:59 | 000,283,136 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\ncsi.dll
[2015.08.09 13:39:59 | 000,279,552 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\systemcpl.dll
[2015.08.09 13:39:59 | 000,275,456 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\bcastdvr.exe
[2015.08.09 13:39:59 | 000,268,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\ConhostV2.dll
[2015.08.09 13:39:59 | 000,257,024 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\MusUpdateHandlers.dll
[2015.08.09 13:39:59 | 000,242,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\LockAppHost.exe
[2015.08.09 13:39:59 | 000,236,032 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\usocore.dll
[2015.08.09 13:39:59 | 000,211,456 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\updatehandlers.dll
[2015.08.09 13:39:59 | 000,198,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\ConsoleLogon.dll
[2015.08.09 13:39:59 | 000,185,344 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\DevicesFlowBroker.dll
[2015.08.09 13:39:59 | 000,181,088 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\AppxAllUserStore.dll
[2015.08.09 13:39:59 | 000,176,640 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\SettingsHandlers_Notifications.dll
[2015.08.09 13:39:59 | 000,162,304 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\ReInfo.dll
[2015.08.09 13:39:59 | 000,154,112 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\BootMenuUX.dll
[2015.08.09 13:39:59 | 000,153,088 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\OmaDmAgent.dll
[2015.08.09 13:39:59 | 000,147,968 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\psmsrv.dll
[2015.08.09 13:39:59 | 000,145,920 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\bcdboot.exe
[2015.08.09 13:39:59 | 000,142,336 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\storewuauth.dll
[2015.08.09 13:39:59 | 000,141,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\shutdownux.dll
[2015.08.09 13:39:59 | 000,131,072 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\SettingsHandlers_SignInOptions.dll
[2015.08.09 13:39:59 | 000,124,416 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\SettingsHandlers_Privacy.dll
[2015.08.09 13:39:59 | 000,123,904 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\MusNotification.exe
[2015.08.09 13:39:59 | 000,107,520 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\VEStoreEventHandlers.dll
[2015.08.09 13:39:59 | 000,102,912 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\omadmclient.exe
[2015.08.09 13:39:59 | 000,069,120 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\spbcd.dll
[2015.08.09 13:39:59 | 000,056,832 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\setbcdlocale.dll
[2015.08.09 13:39:59 | 000,054,112 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\dam.sys
[2015.08.09 13:39:59 | 000,052,224 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\unenrollhook.dll
[2015.08.09 13:39:59 | 000,048,640 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\Windows.Cortana.OneCore.dll
[2015.08.09 13:39:59 | 000,043,008 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\omadmprc.exe
[2015.08.09 13:39:59 | 000,037,888 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\Windows.Cortana.ProxyStub.dll
[2015.08.09 13:39:59 | 000,037,376 | ---- | C] (Adobe Systems) -- C:\WINDOWS\System32\atmlib.dll
[2015.08.09 13:39:59 | 000,031,232 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\calc.exe
[2015.08.09 13:39:58 | 006,101,504 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\mos.dll
[2015.08.09 13:39:58 | 005,118,024 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\windows.storage.dll
[2015.08.09 13:39:58 | 005,076,480 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\BingMaps.dll
[2015.08.09 13:39:58 | 002,606,080 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\msftedit.dll
[2015.08.09 13:39:58 | 001,964,544 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\mssrch.dll
[2015.08.09 13:39:58 | 001,112,064 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\UIAutomationCore.dll
[2015.08.09 13:39:58 | 000,828,416 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\Windows.Devices.Bluetooth.dll
[2015.08.09 13:39:58 | 000,823,336 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\MrmCoreR.dll
[2015.08.09 13:39:58 | 000,762,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\twinapi.appcore.dll
[2015.08.09 13:39:58 | 000,588,800 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\CoreMessaging.dll
[2015.08.09 13:39:58 | 000,587,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\MapsStore.dll
[2015.08.09 13:39:58 | 000,575,488 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\Windows.Media.Import.dll
[2015.08.09 13:39:58 | 000,548,616 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\ci.dll
[2015.08.09 13:39:58 | 000,520,640 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\ClipSVC.dll
[2015.08.09 13:39:58 | 000,503,296 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\Windows.Networking.Connectivity.dll
[2015.08.09 13:39:58 | 000,465,920 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\MessagingDataModel2.dll
[2015.08.09 13:39:58 | 000,448,512 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\MbaeApi.dll
[2015.08.09 13:39:58 | 000,441,344 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\AppContracts.dll
[2015.08.09 13:39:58 | 000,328,704 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\MapConfiguration.dll
[2015.08.09 13:39:58 | 000,296,960 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\Windows.Internal.Bluetooth.dll
[2015.08.09 13:39:58 | 000,241,152 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\MBMediaManager.dll
[2015.08.09 13:39:58 | 000,191,488 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\DisplayManager.dll
[2015.08.09 13:39:58 | 000,179,200 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\srumsvc.dll
[2015.08.09 13:39:58 | 000,165,888 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\EnterpriseModernAppMgmtCSP.dll
[2015.08.09 13:39:58 | 000,132,608 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\cloudAP.dll
[2015.08.09 13:39:58 | 000,120,832 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\tetheringservice.dll
[2015.08.09 13:39:58 | 000,045,056 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\hmkd.dll
[2015.08.09 13:39:58 | 000,032,768 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\UcmUcsi.sys
[2015.08.09 13:31:09 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\XPSViewer
[2015.08.09 13:31:09 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\msmq
[2015.08.09 13:31:09 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\BestPractices
[2015.08.09 13:31:08 | 000,000,000 | ---D | C] -- C:\Program Files\Reference Assemblies
[2015.08.09 13:31:08 | 000,000,000 | ---D | C] -- C:\Program Files\MSBuild
[2015.08.09 13:31:08 | 000,000,000 | ---D | C] -- C:\inetpub
[2015.08.09 13:30:40 | 000,778,936 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\PresentationNative_v0300.dll
[2015.08.09 13:30:40 | 000,102,608 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\PresentationCFFRasterizerNative_v0300.dll
[2015.08.09 13:30:40 | 000,035,480 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\TsWpfWrp.exe
[2015.08.09 13:22:52 | 000,000,000 | R--D | C] -- C:\Users\Petr\OneDrive
[2015.08.09 13:22:03 | 000,000,000 | ---D | C] -- C:\Users\Petr\AppData\Local\Comms
[2015.08.09 13:20:57 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft OneDrive
[2015.08.09 13:18:51 | 005,739,520 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\prm0009.dll
[2015.08.09 13:18:50 | 004,847,104 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\NlsData0009.dll
[2015.08.09 13:18:50 | 002,629,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\NlsLexicons0009.dll
[2015.08.09 13:17:53 | 000,000,000 | ---D | C] -- C:\Users\Petr\AppData\Local\Publishers
[2015.08.09 13:16:23 | 000,000,000 | ---D | C] -- C:\Users\Petr\AppData\Local\Packages
[2015.08.09 13:16:07 | 000,000,000 | ---D | C] -- C:\Users\Petr\AppData\Local\TileDataLayer
[2015.08.09 13:14:30 | 000,000,000 | -HSD | C] -- C:\Recovery
[2015.08.09 13:09:11 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
[2015.08.09 12:55:39 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\SpeechEngines
[2015.08.09 12:52:59 | 000,000,000 | -HSD | C] -- C:\Users\Petr\AppData\Local\Temporary Internet Files
[2015.08.09 12:52:59 | 000,000,000 | -HSD | C] -- C:\Users\Petr\Šablony
[2015.08.09 12:52:59 | 000,000,000 | -HSD | C] -- C:\Users\Petr\Soubory cookie
[2015.08.09 12:52:59 | 000,000,000 | -HSD | C] -- C:\Users\Petr\SendTo
[2015.08.09 12:52:59 | 000,000,000 | -HSD | C] -- C:\Users\Petr\Poslední
[2015.08.09 12:52:59 | 000,000,000 | -HSD | C] -- C:\Users\Petr\Okolní tiskárny
[2015.08.09 12:52:59 | 000,000,000 | -HSD | C] -- C:\Users\Petr\Okolní síť
[2015.08.09 12:52:59 | 000,000,000 | -HSD | C] -- C:\Users\Petr\Documents\Obrázky
[2015.08.09 12:52:59 | 000,000,000 | -HSD | C] -- C:\Users\Petr\Nabídka Start
[2015.08.09 12:52:59 | 000,000,000 | -HSD | C] -- C:\Users\Petr\Local Settings
[2015.08.09 12:52:59 | 000,000,000 | -HSD | C] -- C:\Users\Petr\Documents\Hudba
[2015.08.09 12:52:59 | 000,000,000 | -HSD | C] -- C:\Users\Petr\AppData\Local\History
[2015.08.09 12:52:59 | 000,000,000 | -HSD | C] -- C:\Users\Petr\Documents\Filmy
[2015.08.09 12:52:59 | 000,000,000 | -HSD | C] -- C:\Users\Petr\Dokumenty
[2015.08.09 12:52:59 | 000,000,000 | -HSD | C] -- C:\Users\Petr\Data aplikací
[2015.08.09 12:52:59 | 000,000,000 | -HSD | C] -- C:\Users\Petr\AppData\Local\Data aplikací
[2015.08.09 12:52:58 | 000,000,000 | --SD | C] -- C:\Users\Petr\AppData\Roaming\Microsoft
[2015.08.09 12:52:58 | 000,000,000 | R-SD | C] -- C:\Users\Petr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell
[2015.08.09 12:52:58 | 000,000,000 | R--D | C] -- C:\Users\Petr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
[2015.08.09 12:52:58 | 000,000,000 | R--D | C] -- C:\Users\Petr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
[2015.08.09 12:52:58 | 000,000,000 | R--D | C] -- C:\Users\Petr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
[2015.08.09 12:52:58 | 000,000,000 | -H-D | C] -- C:\Users\Petr\AppData
[2015.08.09 12:52:58 | 000,000,000 | ---D | C] -- C:\Users\Petr\AppData\Local\Microsoft
[2015.08.09 12:52:58 | 000,000,000 | ---D | C] -- C:\Users\Petr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
[2015.08.09 12:47:35 | 000,000,000 | ---D | C] -- C:\ProgramData\NVIDIA
[2015.08.09 12:47:29 | 004,390,520 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvcpl.dll
[2015.08.09 12:47:29 | 003,020,080 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvsvc.dll
[2015.08.09 12:47:29 | 002,554,672 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvsvcr.dll
[2015.08.09 12:47:29 | 000,374,904 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvmctray.dll
[2015.08.09 12:47:29 | 000,061,560 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvshext.dll
[2015.08.09 12:47:12 | 000,000,000 | ---D | C] -- C:\ProgramData\NVIDIA Corporation
[2015.08.09 12:47:00 | 000,000,000 | ---D | C] -- C:\Program Files\NVIDIA Corporation
[2015.08.09 12:46:43 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\logishrd
[2015.08.09 12:45:41 | 000,000,000 | ---D | C] -- C:\WINDOWS\Prefetch
[2015.08.07 09:28:26 | 000,108,144 | ---- | C] (COMODO) -- C:\WINDOWS\System32\drivers\inspect.sys
[2015.08.03 09:32:31 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG
[2015.08.03 07:49:46 | 000,000,000 | ---D | C] -- C:\Users\Petr\AppData\Local\MFAData
[2015.07.31 12:26:52 | 000,000,000 | ---D | C] -- C:\Users\Petr\Documents\MAGIX Speed projects
[2015.07.31 12:26:51 | 000,000,000 | ---D | C] -- C:\Users\Petr\Documents\MAGIX Speed
[2015.07.29 21:24:11 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
[2015.07.28 11:02:10 | 000,250,288 | ---- | C] (AVG Technologies CZ, s.r.o.) -- C:\WINDOWS\System32\drivers\avgidsdriverx.sys
[2015.07.28 11:02:04 | 000,186,800 | ---- | C] (AVG Technologies CZ, s.r.o.) -- C:\WINDOWS\System32\drivers\avgmfx86.sys
[2015.07.27 09:56:52 | 000,000,000 | ---D | C] -- C:\Program Files\Kralovna jezer
[2015.07.23 18:57:25 | 000,000,000 | ---D | C] -- C:\ProgramData\RogueKiller
[2015.07.23 16:44:24 | 000,031,664 | ---- | C] (AVG Technologies CZ, s.r.o.) -- C:\WINDOWS\System32\drivers\avgidsshimw8x.sys
[2015.07.23 06:46:46 | 015,328,488 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvwgf2um.dll
[2015.07.23 06:46:46 | 012,609,072 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvd3dum.dll
[2015.07.23 06:46:46 | 009,409,664 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\System32\drivers\nvlddmkm.sys
[2015.07.23 06:46:46 | 003,060,040 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvapi.dll
[2015.07.23 06:46:46 | 001,049,416 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvdispco3235362.dll
[2015.07.23 06:46:46 | 000,912,528 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvdispgenco3235362.dll
[2015.07.17 14:15:43 | 000,000,000 | ---D | C] -- C:\Users\Petr\AppData\Local\CEF
Keybord not present. Press Enter to continue

Uživatelský avatar
akiller
Level 3
Level 3
Příspěvky: 558
Registrován: listopad 10
Bydliště: Nothingtown
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod akiller » 15 srp 2015 10:28

Poslední část:


========== Files - Modified Within 30 Days ==========

[2015.08.15 10:18:34 | 000,016,148 | ---- | M] () -- C:\WINDOWS\System32\INTEL_Petr_HistoryPrediction.bin
[2015.08.15 10:16:02 | 000,000,940 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
[2015.08.15 10:13:12 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\Petr\Desktop\OTL.exe
[2015.08.15 07:45:35 | 000,833,010 | ---- | M] () -- C:\WINDOWS\System32\perfh005.dat
[2015.08.15 07:45:35 | 000,818,076 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat
[2015.08.15 07:45:35 | 000,187,212 | ---- | M] () -- C:\WINDOWS\System32\perfc005.dat
[2015.08.15 07:45:35 | 000,168,744 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat
[2015.08.15 07:42:15 | 000,000,000 | -H-- | M] () -- C:\WINDOWS\System32\drivers\Msft_User_WpdFs_01_11_00.Wdf
[2015.08.15 07:41:14 | 000,067,584 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2015.08.15 07:40:28 | 000,000,936 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
[2015.08.15 07:39:07 | 268,435,456 | -HS- | M] () -- C:\swapfile.sys
[2015.08.15 07:39:05 | 2616,053,760 | -HS- | M] () -- C:\hiberfil.sys
[2015.08.14 11:52:59 | 000,000,914 | ---- | M] () -- C:\WINDOWS\tasks\Adobe Flash Player Updater.job
[2015.08.14 08:44:17 | 001,678,336 | ---- | M] (Farbar) -- C:\Users\Petr\Desktop\FRST.exe
[2015.08.13 16:28:20 | 000,000,753 | ---- | M] () -- C:\WINDOWS\System32\drivers\etc\hosts
[2015.08.13 16:26:38 | 000,024,064 | ---- | M] () -- C:\WINDOWS\zoek-delete.exe
[2015.08.13 16:26:36 | 001,308,672 | ---- | M] () -- C:\Users\Petr\Desktop\zoek.exe
[2015.08.13 16:08:37 | 000,035,064 | ---- | M] () -- C:\WINDOWS\System32\drivers\TrueSight.sys
[2015.08.13 10:53:36 | 001,791,580 | ---- | M] (Malwarebytes Corporation) -- C:\Users\Petr\Desktop\JRT.exe
[2015.08.13 10:32:39 | 018,723,912 | ---- | M] () -- C:\Users\Petr\Desktop\RogueKiller.exe
[2015.08.13 07:38:24 | 000,002,003 | ---- | M] () -- C:\Users\Petr\Desktop\CrystalDiskInfo.lnk
[2015.08.12 22:23:29 | 000,098,520 | ---- | M] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\MBAMSwissArmy.sys
[2015.08.12 21:58:17 | 002,248,704 | ---- | M] () -- C:\Users\Petr\Desktop\AdwCleaner.exe
[2015.08.12 20:32:12 | 002,237,592 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2015.08.11 21:52:54 | 009,409,664 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\drivers\nvlddmkm.sys
[2015.08.11 09:26:53 | 000,001,042 | ---- | M] () -- C:\Users\Public\Desktop\CCleaner.lnk
[2015.08.09 15:35:44 | 000,395,264 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dpnet.dll
[2015.08.09 15:35:44 | 000,061,952 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dpnathlp.dll
[2015.08.09 15:35:44 | 000,023,040 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dpnsvr.exe
[2015.08.09 15:35:44 | 000,008,704 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dpnhupnp.dll
[2015.08.09 15:35:44 | 000,008,704 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dpnhpast.dll
[2015.08.09 15:35:44 | 000,004,608 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dpnlobby.dll
[2015.08.09 15:35:44 | 000,004,096 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dpnaddr.dll
[2015.08.09 15:35:41 | 000,220,160 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dplayx.dll
[2015.08.09 15:35:41 | 000,047,104 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dpwsockx.dll
[2015.08.09 15:35:41 | 000,025,088 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dpmodemx.dll
[2015.08.09 15:35:41 | 000,020,992 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dplaysvr.exe
[2015.08.09 13:40:04 | 005,454,848 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\Chakra.dll
[2015.08.09 13:40:04 | 003,579,904 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\jscript9.dll
[2015.08.09 13:40:04 | 002,646,528 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\Windows.Media.dll
[2015.08.09 13:40:04 | 001,043,968 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\Windows.Media.Editing.dll
[2015.08.09 13:40:04 | 000,916,800 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\mfplat.dll
[2015.08.09 13:40:04 | 000,850,784 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\SecConfig.efi
[2015.08.09 13:40:04 | 000,729,088 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\wpccpl.dll
[2015.08.09 13:40:04 | 000,480,256 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\MCRecvSrc.dll
[2015.08.09 13:40:04 | 000,437,248 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\Windows.Devices.Sensors.dll
[2015.08.09 13:40:04 | 000,301,056 | ---- | M] () -- C:\WINDOWS\System32\diagtrack_wininternal.dll
[2015.08.09 13:40:04 | 000,294,912 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\ieproxy.dll
[2015.08.09 13:40:04 | 000,251,392 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\SensorsApi.dll
[2015.08.09 13:40:04 | 000,082,616 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\bcd.dll
[2015.08.09 13:40:04 | 000,045,568 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\Windows.Cortana.PAL.Desktop.dll
[2015.08.09 13:39:59 | 004,398,080 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\Windows.UI.Search.dll
[2015.08.09 13:39:59 | 004,350,464 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\ExplorerFrame.dll
[2015.08.09 13:39:59 | 004,047,288 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe
[2015.08.09 13:39:59 | 003,443,200 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\UIRibbon.dll
[2015.08.09 13:39:59 | 001,611,264 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\Windows.UI.Immersive.dll
[2015.08.09 13:39:59 | 001,506,816 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\NetworkMobileSettings.dll
[2015.08.09 13:39:59 | 001,275,392 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\ActiveSyncProvider.dll
[2015.08.09 13:39:59 | 001,153,536 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\RecoveryDrive.exe
[2015.08.09 13:39:59 | 001,030,416 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\winload.efi
[2015.08.09 13:39:59 | 000,987,072 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\ClipUp.exe
[2015.08.09 13:39:59 | 000,925,696 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\Unistore.dll
[2015.08.09 13:39:59 | 000,920,576 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\reseteng.dll
[2015.08.09 13:39:59 | 000,902,320 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\winload.exe
[2015.08.09 13:39:59 | 000,872,448 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dosvc.dll
[2015.08.09 13:39:59 | 000,868,752 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\winresume.efi
[2015.08.09 13:39:59 | 000,845,664 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\ReAgent.dll
[2015.08.09 13:39:59 | 000,754,688 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\Windows.UI.Cred.dll
[2015.08.09 13:39:59 | 000,751,520 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\winresume.exe
[2015.08.09 13:39:59 | 000,677,888 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\wuapi.dll
[2015.08.09 13:39:59 | 000,669,696 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\SensorDataService.exe
[2015.08.09 13:39:59 | 000,623,616 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\ContactApis.dll
[2015.08.09 13:39:59 | 000,589,312 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\efscore.dll
[2015.08.09 13:39:59 | 000,584,704 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\UIRibbonRes.dll
[2015.08.09 13:39:59 | 000,584,544 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\wimgapi.dll
[2015.08.09 13:39:59 | 000,442,720 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\wimserv.exe
[2015.08.09 13:39:59 | 000,420,352 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\GamePanel.exe
[2015.08.09 13:39:59 | 000,419,328 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\sppcomapi.dll
[2015.08.09 13:39:59 | 000,363,520 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\bcdedit.exe
[2015.08.09 13:39:59 | 000,351,072 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\halmacpi.dll
[2015.08.09 13:39:59 | 000,351,072 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\hal.dll
[2015.08.09 13:39:59 | 000,322,048 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\Windows.UI.BlockedShutdown.dll
[2015.08.09 13:39:59 | 000,296,448 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\wuuhext.dll
[2015.08.09 13:39:59 | 000,284,672 | ---- | M] () -- C:\WINDOWS\System32\diagtrack_win.dll
[2015.08.09 13:39:59 | 000,283,648 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\Windows.UI.BioFeedback.dll
[2015.08.09 13:39:59 | 000,283,136 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\ncsi.dll
[2015.08.09 13:39:59 | 000,279,552 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\systemcpl.dll
[2015.08.09 13:39:59 | 000,275,456 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\bcastdvr.exe
[2015.08.09 13:39:59 | 000,268,288 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\ConhostV2.dll
[2015.08.09 13:39:59 | 000,257,024 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\MusUpdateHandlers.dll
[2015.08.09 13:39:59 | 000,242,264 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\LockAppHost.exe
[2015.08.09 13:39:59 | 000,236,032 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\usocore.dll
[2015.08.09 13:39:59 | 000,211,456 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\updatehandlers.dll
[2015.08.09 13:39:59 | 000,198,144 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\ConsoleLogon.dll
[2015.08.09 13:39:59 | 000,185,344 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\DevicesFlowBroker.dll
[2015.08.09 13:39:59 | 000,181,088 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\AppxAllUserStore.dll
[2015.08.09 13:39:59 | 000,176,640 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\SettingsHandlers_Notifications.dll
[2015.08.09 13:39:59 | 000,162,304 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\ReInfo.dll
[2015.08.09 13:39:59 | 000,154,112 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\BootMenuUX.dll
[2015.08.09 13:39:59 | 000,153,088 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\OmaDmAgent.dll
[2015.08.09 13:39:59 | 000,147,968 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\psmsrv.dll
[2015.08.09 13:39:59 | 000,145,920 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\bcdboot.exe
[2015.08.09 13:39:59 | 000,142,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\storewuauth.dll
[2015.08.09 13:39:59 | 000,141,312 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\shutdownux.dll
[2015.08.09 13:39:59 | 000,131,072 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\SettingsHandlers_SignInOptions.dll
[2015.08.09 13:39:59 | 000,124,416 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\SettingsHandlers_Privacy.dll
[2015.08.09 13:39:59 | 000,123,904 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\MusNotification.exe
[2015.08.09 13:39:59 | 000,120,832 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\tetheringservice.dll
[2015.08.09 13:39:59 | 000,107,520 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\VEStoreEventHandlers.dll
[2015.08.09 13:39:59 | 000,102,912 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\omadmclient.exe
[2015.08.09 13:39:59 | 000,069,120 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\spbcd.dll
[2015.08.09 13:39:59 | 000,056,832 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\setbcdlocale.dll
[2015.08.09 13:39:59 | 000,054,112 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\dam.sys
[2015.08.09 13:39:59 | 000,052,224 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\unenrollhook.dll
[2015.08.09 13:39:59 | 000,048,640 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\Windows.Cortana.OneCore.dll
[2015.08.09 13:39:59 | 000,043,008 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\omadmprc.exe
[2015.08.09 13:39:59 | 000,037,888 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\Windows.Cortana.ProxyStub.dll
[2015.08.09 13:39:59 | 000,037,376 | ---- | M] (Adobe Systems) -- C:\WINDOWS\System32\atmlib.dll
[2015.08.09 13:39:59 | 000,031,232 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\calc.exe
[2015.08.09 13:39:58 | 006,101,504 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\mos.dll
[2015.08.09 13:39:58 | 005,118,024 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\windows.storage.dll
[2015.08.09 13:39:58 | 005,076,480 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\BingMaps.dll
[2015.08.09 13:39:58 | 002,606,080 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\msftedit.dll
[2015.08.09 13:39:58 | 001,964,544 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\mssrch.dll
[2015.08.09 13:39:58 | 001,112,064 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\UIAutomationCore.dll
[2015.08.09 13:39:58 | 000,828,416 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\Windows.Devices.Bluetooth.dll
[2015.08.09 13:39:58 | 000,823,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\MrmCoreR.dll
[2015.08.09 13:39:58 | 000,762,896 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\twinapi.appcore.dll
[2015.08.09 13:39:58 | 000,588,800 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\CoreMessaging.dll
[2015.08.09 13:39:58 | 000,587,264 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\MapsStore.dll
[2015.08.09 13:39:58 | 000,575,488 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\Windows.Media.Import.dll
[2015.08.09 13:39:58 | 000,548,616 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\ci.dll
[2015.08.09 13:39:58 | 000,520,640 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\ClipSVC.dll
[2015.08.09 13:39:58 | 000,503,296 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\Windows.Networking.Connectivity.dll
[2015.08.09 13:39:58 | 000,465,920 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\MessagingDataModel2.dll
[2015.08.09 13:39:58 | 000,448,512 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\MbaeApi.dll
[2015.08.09 13:39:58 | 000,441,344 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\AppContracts.dll
[2015.08.09 13:39:58 | 000,328,704 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\MapConfiguration.dll
[2015.08.09 13:39:58 | 000,296,960 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\Windows.Internal.Bluetooth.dll
[2015.08.09 13:39:58 | 000,241,152 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\MBMediaManager.dll
[2015.08.09 13:39:58 | 000,191,488 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\DisplayManager.dll
[2015.08.09 13:39:58 | 000,179,200 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\srumsvc.dll
[2015.08.09 13:39:58 | 000,165,888 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\EnterpriseModernAppMgmtCSP.dll
[2015.08.09 13:39:58 | 000,132,608 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\cloudAP.dll
[2015.08.09 13:39:58 | 000,045,056 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\hmkd.dll
[2015.08.09 13:39:58 | 000,032,768 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\UcmUcsi.sys
[2015.08.09 13:39:58 | 000,025,088 | ---- | M] () -- C:\WINDOWS\System32\LicenseManagerApi.dll
[2015.08.09 13:31:06 | 000,096,768 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\mqoa.tlb
[2015.08.09 13:31:06 | 000,091,136 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\mqoa30.tlb
[2015.08.09 13:31:06 | 000,055,808 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\mqoa20.tlb
[2015.08.09 13:31:06 | 000,037,376 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\mqoa10.tlb
[2015.08.09 13:31:05 | 000,635,904 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\mqsnap.dll
[2015.08.09 13:31:05 | 000,014,848 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\mqcertui.dll
[2015.08.09 13:31:04 | 001,014,272 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\mqqm.dll
[2015.08.09 13:31:04 | 000,265,728 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\mqoa.dll
[2015.08.09 13:31:04 | 000,009,096 | ---- | M] () -- C:\WINDOWS\System32\msmqtrc.mof
[2015.08.09 13:31:02 | 000,044,544 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\mqbkup.exe
[2015.08.09 13:31:00 | 000,168,960 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\iisRtl.dll
[2015.08.09 13:31:00 | 000,130,048 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\mqac.sys
[2015.08.09 13:31:00 | 000,050,688 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\admwprox.dll
[2015.08.09 13:31:00 | 000,026,112 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\ahadmin.dll
[2015.08.09 13:31:00 | 000,016,896 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\iisreset.exe
[2015.08.09 13:31:00 | 000,011,264 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\wamregps.dll
[2015.08.09 13:31:00 | 000,010,240 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\iisrstap.dll
[2015.08.09 13:30:59 | 000,161,792 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\mqrt.dll
[2015.08.09 13:30:59 | 000,104,960 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\mqlogmgr.dll
[2015.08.09 13:30:58 | 000,562,176 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\mqutil.dll
[2015.08.09 13:13:46 | 000,010,449 | ---- | M] () -- C:\WINDOWS\diagerr.xml
[2015.08.09 13:13:46 | 000,009,528 | ---- | M] () -- C:\WINDOWS\diagwrn.xml
[2015.08.09 13:12:51 | 000,021,496 | ---- | M] () -- C:\WINDOWS\System32\emptyregdb.dat
[2015.08.09 12:22:39 | 000,022,272 | -H-- | M] () -- C:\WINDOWS\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2015.08.09 12:22:38 | 000,022,272 | -H-- | M] () -- C:\WINDOWS\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2015.08.08 17:38:46 | 000,794,088 | ---- | M] (Adobe Systems Incorporated) -- C:\WINDOWS\System32\FlashPlayerApp.exe
[2015.08.08 17:38:46 | 000,179,688 | ---- | M] (Adobe Systems Incorporated) -- C:\WINDOWS\System32\FlashPlayerCPLApp.cpl
[2015.08.08 09:01:41 | 006,264,160 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\ntoskrnl.exe
[2015.08.08 08:48:13 | 000,539,728 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\fontdrvhost.exe
[2015.08.08 08:15:14 | 000,303,104 | ---- | M] (Adobe Systems Incorporated) -- C:\WINDOWS\System32\atmfd.dll
[2015.08.08 08:00:44 | 001,985,024 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\DWrite.dll
[2015.08.08 07:58:06 | 000,521,728 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\rdbui.dll
[2015.08.07 12:23:28 | 037,819,000 | ---- | M] () -- C:\WINDOWS\System32\nvcompiler.dll
[2015.08.07 12:23:28 | 018,564,912 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvoglv32.dll
[2015.08.07 12:23:28 | 015,328,488 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvwgf2um.dll
[2015.08.07 12:23:28 | 013,663,232 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvopencl.dll
[2015.08.07 12:23:28 | 012,609,072 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvd3dum.dll
[2015.08.07 12:23:28 | 012,186,176 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvcuda.dll
[2015.08.07 12:23:28 | 003,060,040 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvapi.dll
[2015.08.07 12:23:28 | 002,104,440 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvcuvid.dll
[2015.08.07 12:23:28 | 001,049,904 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvdispco3235560.dll
[2015.08.07 12:23:28 | 001,000,088 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvumdshim.dll
[2015.08.07 12:23:28 | 000,985,208 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\NvIFR.dll
[2015.08.07 12:23:28 | 000,931,960 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\NvFBC.dll
[2015.08.07 12:23:28 | 000,921,448 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvhdagenco3220103.dll
[2015.08.07 12:23:28 | 000,912,688 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvdispgenco3235560.dll
[2015.08.07 12:23:28 | 000,632,848 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvEncMFTH264.dll
[2015.08.07 12:23:28 | 000,461,136 | ---- | M] () -- C:\WINDOWS\System32\nvmcumd.dll
[2015.08.07 12:23:28 | 000,364,336 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\NvIFROpenGL.dll
[2015.08.07 12:23:28 | 000,339,576 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvDecMFTMjpeg.dll
[2015.08.07 12:23:28 | 000,316,120 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvEncodeAPI.dll
[2015.08.07 12:23:28 | 000,171,352 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\drivers\nvhda32v.sys
[2015.08.07 12:23:28 | 000,155,976 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvinit.dll
[2015.08.07 12:23:28 | 000,128,512 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvoglshim32.dll
[2015.08.07 12:23:28 | 000,105,264 | ---- | M] (Khronos Group) -- C:\WINDOWS\System32\OpenCL.dll
[2015.08.07 12:23:28 | 000,037,208 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvhdap32.dll
[2015.08.07 12:23:28 | 000,028,267 | ---- | M] () -- C:\WINDOWS\System32\nvinfo.pb
[2015.08.07 06:41:15 | 000,573,232 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvStreaming.exe
[2015.08.07 06:26:20 | 002,554,672 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvsvcr.dll
[2015.08.07 06:26:20 | 000,061,560 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvshext.dll
[2015.08.07 06:26:19 | 000,374,904 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvmctray.dll
[2015.08.07 06:26:18 | 004,390,520 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvcpl.dll
[2015.08.07 06:26:18 | 003,020,080 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvsvc.dll
[2015.08.06 04:50:44 | 000,173,408 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\wof.sys
[2015.08.06 04:03:46 | 018,805,248 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\edgehtml.dll
[2015.08.06 04:01:23 | 000,488,960 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\WdiWiFi.sys
[2015.08.05 09:36:47 | 000,000,951 | ---- | M] () -- C:\Users\Public\Desktop\AVG 2015.lnk
[2015.08.05 06:29:04 | 000,644,128 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\mfsvr.dll
[2015.08.05 05:43:35 | 001,916,416 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\MFMediaEngine.dll
[2015.08.05 05:40:24 | 000,995,840 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\wifinetworkmanager.dll
[2015.08.05 05:39:56 | 000,261,632 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\ActionCenter.dll
[2015.08.05 05:32:40 | 002,987,008 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\win32kfull.sys
[2015.08.05 05:32:13 | 001,134,592 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\win32kbase.sys
[2015.08.05 02:31:39 | 000,108,144 | ---- | M] (COMODO) -- C:\WINDOWS\System32\drivers\inspect.sys
[2015.08.05 01:19:15 | 000,002,820 | ---- | M] () -- C:\WINDOWS\System32\drivers\inspect.inf
[2015.08.04 06:31:01 | 000,003,584 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\cs-CZ\mountmgr.sys.mui
[2015.08.04 05:50:59 | 002,151,208 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\mfcore.dll
[2015.08.04 05:10:39 | 000,067,584 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\VPNv2CSP.dll
[2015.08.04 05:10:28 | 013,025,792 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\Windows.UI.Xaml.dll
[2015.08.04 04:47:23 | 000,898,560 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\RemoteNaturalLanguage.dll
[2015.08.03 15:07:48 | 005,133,709 | ---- | M] () -- C:\WINDOWS\System32\nvcoproc.bin
[2015.08.03 09:32:13 | 000,068,032 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\WINDOWS\System32\drivers\avgfwd6x.sys
[2015.08.03 04:28:04 | 000,268,800 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\NotificationObjFactory.dll
[2015.08.03 03:57:37 | 000,415,072 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\USBHUB3.SYS
[2015.08.03 03:57:21 | 000,503,600 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\Windows.Internal.Shell.Broker.dll
[2015.08.03 03:57:21 | 000,036,704 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\msgpiowin32.sys
[2015.08.03 03:57:19 | 000,334,176 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\dxgmms1.sys
[2015.08.03 03:57:12 | 000,436,064 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\dxgmms2.sys
[2015.08.03 03:57:01 | 000,042,904 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\wpcfltr.sys
[2015.08.03 03:56:47 | 006,878,256 | ---- | M] (Microsoft Corp.) -- C:\WINDOWS\System32\Windows.Media.Protection.PlayReady.dll
[2015.08.03 03:49:58 | 000,700,256 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\WWAHost.exe
[2015.08.03 03:18:12 | 000,673,792 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\SharedStartModel.dll
[2015.08.03 03:18:11 | 000,189,440 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\SettingsHandlers_UserAccount.dll
[2015.08.03 03:13:08 | 000,161,280 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\SharedStartModelShim.dll
[2015.08.03 03:13:03 | 000,388,096 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\tileobjserver.dll
[2015.08.03 03:12:54 | 000,217,088 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\VEEventDispatcher.dll
[2015.08.03 03:12:48 | 000,081,920 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\VEDataLayerHelpers.dll
[2015.08.03 03:12:11 | 001,823,232 | ---- | M] () -- C:\WINDOWS\System32\InputService.dll
[2015.08.03 03:11:15 | 000,273,408 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\configmanager2.dll
[2015.08.03 03:11:14 | 000,200,704 | ---- | M] () -- C:\WINDOWS\System32\TextInputFramework.dll
[2015.08.03 03:10:44 | 000,134,656 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\coredpus.dll
[2015.08.03 03:10:15 | 001,162,240 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\Windows.Media.Speech.dll
[2015.08.03 03:06:34 | 000,130,048 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\SubscriptionMgr.dll
[2015.08.03 03:06:29 | 003,025,408 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\SettingsHandlers_nt.dll
[2015.08.03 03:05:54 | 000,094,208 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\NetworkStatus.dll
[2015.08.03 03:03:28 | 000,494,592 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\LogonController.dll
[2015.08.03 03:03:17 | 000,445,952 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\Windows.Cortana.Desktop.dll
[2015.08.03 03:03:12 | 000,132,096 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\WinBioDataModel.dll
[2015.08.03 03:03:10 | 000,719,360 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\RDXService.dll
[2015.08.03 03:02:46 | 001,917,440 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\AppXDeploymentServer.dll
[2015.08.03 03:02:44 | 000,311,808 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\LockAppBroker.dll
[2015.08.03 03:02:32 | 000,990,720 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\Windows.UI.Shell.dll
[2015.08.03 03:02:18 | 000,195,072 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\Windows.ApplicationModel.LockScreen.dll
[2015.08.03 03:00:01 | 001,593,856 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dwmcore.dll
[2015.08.03 02:59:11 | 000,752,640 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\msctfuimanager.dll
[2015.08.03 02:57:18 | 001,499,136 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\AppXDeploymentExtensions.dll
[2015.07.30 06:26:32 | 000,877,016 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\mfmp4srcsnk.dll
[2015.07.30 06:26:21 | 001,341,920 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\wmpmde.dll
[2015.07.30 06:26:17 | 001,867,160 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\d3d9.dll
[2015.07.30 06:25:27 | 001,356,368 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\winmde.dll
[2015.07.30 06:25:04 | 000,713,312 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\mfmpeg2srcsnk.dll
[2015.07.30 06:24:59 | 000,285,632 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\MFPlay.dll
[2015.07.30 06:24:08 | 000,407,616 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\AudioSes.dll
[2015.07.30 06:24:07 | 001,769,056 | ---- | M] () -- C:\WINDOWS\System32\CoreUIComponents.dll
[2015.07.30 06:24:04 | 000,445,240 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\AudioEng.dll
[2015.07.30 06:22:31 | 000,507,696 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dxgi.dll
[2015.07.30 06:22:17 | 000,896,144 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\mfsrcsnk.dll
[2015.07.30 06:21:21 | 000,962,400 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\LicenseManager.dll
[2015.07.30 06:09:27 | 000,193,888 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\ContentDeliveryManager.Utilities.dll
[2015.07.30 05:47:23 | 001,181,536 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\diagtrack.dll
[2015.07.30 05:24:34 | 000,189,440 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\provengine.dll
[2015.07.30 05:24:29 | 000,196,096 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\provhandlers.dll
[2015.07.30 05:22:00 | 000,371,200 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\StoreAgent.dll
[2015.07.30 05:21:51 | 000,047,104 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\MusNotificationUx.exe
[2015.07.30 05:21:49 | 000,135,680 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\InstallAgent.exe
[2015.07.30 05:21:45 | 000,019,456 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\LicenseManagerShellext.exe
[2015.07.30 05:17:10 | 000,132,096 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\provisioningcsp.dll
[2015.07.30 05:15:22 | 009,889,792 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\twinui.dll
[2015.07.30 05:12:56 | 000,675,328 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\modernexecserver.dll
[2015.07.30 05:12:32 | 000,062,976 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\ACPBackgroundManagerPolicy.dll
[2015.07.30 05:12:25 | 000,417,280 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\PsmServiceExtHost.dll
[2015.07.30 05:10:41 | 000,585,728 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\Windows.ApplicationModel.Store.dll
[2015.07.30 05:10:28 | 000,247,808 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\Windows.ApplicationModel.Store.TestingFramework.dll
[2015.07.30 05:08:04 | 000,484,864 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\wcmsvc.dll
[2015.07.30 05:08:03 | 000,162,816 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\wcmcsp.dll
[2015.07.30 05:07:39 | 000,163,328 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\fwpolicyiomgr.dll
[2015.07.30 05:06:54 | 000,373,248 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\mfmkvsrcsnk.dll
[2015.07.30 05:06:46 | 000,239,616 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\AudioEndpointBuilder.dll
[2015.07.30 05:06:27 | 000,034,816 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\VoiceActivationManager.dll
[2015.07.30 05:06:18 | 000,166,400 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\SensorService.dll
[2015.07.30 05:06:18 | 000,115,200 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\UMDF\SensorsCx.dll
[2015.07.30 05:06:11 | 000,051,200 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\bthhfenum.sys
[2015.07.30 05:06:07 | 000,078,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\SensorsNativeApi.V2.dll
[2015.07.30 05:04:45 | 001,714,176 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\twinui.appcore.dll
[2015.07.30 05:04:44 | 000,741,376 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\wpncore.dll
[2015.07.30 05:04:19 | 000,397,312 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\NotificationController.dll
[2015.07.30 05:04:16 | 000,335,360 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\CredProvDataModel.dll
[2015.07.30 05:03:43 | 000,016,896 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\NotificationControllerPS.dll
[2015.07.30 05:01:42 | 000,066,048 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\AppxSysprep.dll
[2015.07.30 05:00:43 | 001,125,888 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\UserDataService.dll
[2015.07.30 04:59:38 | 000,473,088 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\wpnapps.dll
[2015.07.30 04:58:28 | 000,497,152 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\PlayToManager.dll
[2015.07.29 13:26:14 | 000,038,400 | ---- | M] () -- C:\Users\Petr\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2015.07.29 08:10:52 | 000,000,161 | ---- | M] () -- C:\Delme.bat
[2015.07.28 11:02:10 | 000,250,288 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\WINDOWS\System32\drivers\avgidsdriverx.sys
[2015.07.28 11:02:04 | 000,186,800 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\WINDOWS\System32\drivers\avgmfx86.sys
[2015.07.24 06:21:23 | 001,423,304 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvspcap.dll
[2015.07.24 06:21:23 | 001,316,000 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvspbridge.dll
[2015.07.23 16:44:24 | 000,031,664 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\WINDOWS\System32\drivers\avgidsshimw8x.sys
[2015.07.23 06:46:46 | 001,049,416 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvdispco3235362.dll
[2015.07.23 06:46:46 | 000,912,528 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvdispgenco3235362.dll
[2015.07.20 22:37:28 | 000,000,070 | ---- | M] () -- C:\Users\Petr\turtle.layout.hiscores
[2015.07.16 11:41:26 | 000,096,352 | ---- | M] (Oracle Corporation) -- C:\WINDOWS\System32\WindowsAccessBridge.dll

========== Files Created - No Company Name ==========

[2015.08.15 09:02:53 | 000,016,148 | ---- | C] () -- C:\WINDOWS\System32\INTEL_Petr_HistoryPrediction.bin
[2015.08.15 07:42:15 | 000,000,000 | -H-- | C] () -- C:\WINDOWS\System32\drivers\Msft_User_WpdFs_01_11_00.Wdf
[2015.08.14 13:45:29 | 000,001,421 | ---- | C] () -- C:\Users\Petr\Desktop\Internet Explorer - kopie.lnk
[2015.08.13 16:57:47 | 000,461,136 | ---- | C] () -- C:\WINDOWS\System32\nvmcumd.dll
[2015.08.13 16:57:46 | 037,819,000 | ---- | C] () -- C:\WINDOWS\System32\nvcompiler.dll
[2015.08.13 16:44:55 | 000,024,064 | ---- | C] () -- C:\WINDOWS\zoek-delete.exe
[2015.08.13 15:49:08 | 001,308,672 | ---- | C] () -- C:\Users\Petr\Desktop\zoek.exe
[2015.08.13 12:23:40 | 000,004,123 | ---- | C] () -- C:\WINDOWS\System32\drivers\cmdguard.inf
[2015.08.13 12:23:37 | 000,002,643 | ---- | C] () -- C:\WINDOWS\System32\drivers\cmdhlp.inf
[2015.08.13 12:23:32 | 000,002,820 | ---- | C] () -- C:\WINDOWS\System32\drivers\inspect.inf
[2015.08.13 10:24:39 | 018,723,912 | ---- | C] () -- C:\Users\Petr\Desktop\RogueKiller.exe
[2015.08.13 07:31:43 | 000,002,003 | ---- | C] () -- C:\Users\Petr\Desktop\CrystalDiskInfo.lnk
[2015.08.12 21:50:56 | 002,248,704 | ---- | C] () -- C:\Users\Petr\Desktop\AdwCleaner.exe
[2015.08.12 08:48:30 | 001,823,232 | ---- | C] () -- C:\WINDOWS\System32\InputService.dll
[2015.08.12 08:48:25 | 000,200,704 | ---- | C] () -- C:\WINDOWS\System32\TextInputFramework.dll
[2015.08.09 20:24:51 | 001,769,056 | ---- | C] () -- C:\WINDOWS\System32\CoreUIComponents.dll
[2015.08.09 13:40:04 | 000,301,056 | ---- | C] () -- C:\WINDOWS\System32\diagtrack_wininternal.dll
[2015.08.09 13:39:59 | 000,284,672 | ---- | C] () -- C:\WINDOWS\System32\diagtrack_win.dll
[2015.08.09 13:39:58 | 000,025,088 | ---- | C] () -- C:\WINDOWS\System32\LicenseManagerApi.dll
[2015.08.09 13:22:52 | 000,002,398 | ---- | C] () -- C:\Users\Petr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
[2015.08.09 13:18:41 | 000,001,055 | ---- | C] () -- C:\Users\Petr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Volitelné funkce.lnk
[2015.08.09 13:12:51 | 000,021,496 | ---- | C] () -- C:\WINDOWS\System32\emptyregdb.dat
[2015.08.09 13:00:47 | 000,001,544 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk
[2015.08.09 12:47:29 | 005,133,709 | ---- | C] () -- C:\WINDOWS\System32\nvcoproc.bin
[2015.08.09 12:44:55 | 268,435,456 | -HS- | C] () -- C:\swapfile.sys
[2015.08.09 12:14:59 | 000,010,449 | ---- | C] () -- C:\WINDOWS\diagerr.xml
[2015.08.09 12:14:59 | 000,009,528 | ---- | C] () -- C:\WINDOWS\diagwrn.xml
[2015.07.29 08:10:52 | 000,000,161 | ---- | C] () -- C:\Delme.bat
[2015.07.23 06:46:46 | 000,028,267 | ---- | C] () -- C:\WINDOWS\System32\nvinfo.pb
[2015.07.20 22:26:49 | 000,000,070 | ---- | C] () -- C:\Users\Petr\turtle.layout.hiscores
[2015.07.10 15:19:27 | 000,833,010 | ---- | C] () -- C:\WINDOWS\System32\perfh005.dat
[2015.07.10 15:19:27 | 000,296,654 | ---- | C] () -- C:\WINDOWS\System32\perfi005.dat
[2015.07.10 15:19:27 | 000,187,212 | ---- | C] () -- C:\WINDOWS\System32\perfc005.dat
[2015.07.10 15:19:27 | 000,038,682 | ---- | C] () -- C:\WINDOWS\System32\perfd005.dat
[2015.07.10 11:57:46 | 000,016,148 | ---- | C] () -- C:\WINDOWS\System32\DESKTOP-QGL8DMR_Administrator_HistoryPrediction.bin
[2015.07.10 11:53:56 | 000,067,584 | --S- | C] () -- C:\WINDOWS\bootstat.dat
[2015.07.10 11:53:35 | 002,237,592 | ---- | C] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2015.07.10 10:29:29 | 000,818,076 | ---- | C] () -- C:\WINDOWS\System32\perfh009.dat
[2015.07.10 10:29:29 | 000,296,742 | ---- | C] () -- C:\WINDOWS\System32\perfi009.dat
[2015.07.10 10:29:29 | 000,168,744 | ---- | C] () -- C:\WINDOWS\System32\perfc009.dat
[2015.07.10 10:29:29 | 000,033,362 | ---- | C] () -- C:\WINDOWS\System32\perfd009.dat
[2015.07.10 10:28:28 | 000,000,741 | ---- | C] () -- C:\WINDOWS\System32\NOISE.DAT
[2015.07.10 10:28:27 | 000,215,943 | ---- | C] () -- C:\WINDOWS\System32\dssec.dat
[2015.07.10 10:28:27 | 000,000,389 | ---- | C] () -- C:\WINDOWS\System32\AutoWorkplace.exe.config
[2015.07.10 10:25:11 | 001,520,828 | ---- | C] () -- C:\WINDOWS\System32\WpcNBModel.bin
[2015.07.10 10:25:11 | 000,526,068 | ---- | C] () -- C:\WINDOWS\System32\staticurllist.bin
[2015.07.10 10:25:09 | 000,161,632 | ---- | C] () -- C:\WINDOWS\System32\weretw.dll
[2015.07.10 10:25:06 | 000,673,088 | ---- | C] () -- C:\WINDOWS\System32\mlang.dat
[2015.07.10 10:25:03 | 000,047,104 | ---- | C] () -- C:\WINDOWS\System32\BWContextHandler.dll
[2015.07.10 10:25:00 | 000,174,080 | ---- | C] () -- C:\WINDOWS\System32\MTFServer.dll
[2015.07.10 10:25:00 | 000,156,672 | ---- | C] () -- C:\WINDOWS\System32\MTF.dll
[2015.07.10 10:25:00 | 000,007,680 | ---- | C] () -- C:\WINDOWS\System32\WppRecorderUM.dll
[2015.07.10 10:24:54 | 000,167,640 | ---- | C] () -- C:\WINDOWS\System32\chs_singlechar_pinyin.dat
[2015.07.10 10:24:52 | 000,081,408 | ---- | C] () -- C:\WINDOWS\System32\InputLocaleManager.dll
[2015.07.10 10:24:52 | 000,057,344 | ---- | C] () -- C:\WINDOWS\System32\EditBufferTestHook.dll
[2015.07.10 10:24:52 | 000,053,760 | ---- | C] () -- C:\WINDOWS\System32\WpKbdLayout.dll
[2015.07.10 10:24:52 | 000,022,016 | ---- | C] () -- C:\WINDOWS\System32\WordBreakers.dll
[2015.07.10 10:24:50 | 007,561,248 | ---- | C] () -- C:\WINDOWS\System32\DefaultHrtfs.bin
[2015.07.10 10:24:50 | 000,328,048 | ---- | C] () -- C:\WINDOWS\System32\LargeRoom.bin
[2015.07.10 10:24:50 | 000,270,848 | ---- | C] () -- C:\WINDOWS\System32\HrtfApo.dll
[2015.07.10 10:24:50 | 000,246,048 | ---- | C] () -- C:\WINDOWS\System32\MediumRoom.bin
[2015.07.10 10:24:50 | 000,164,048 | ---- | C] () -- C:\WINDOWS\System32\SmallRoom.bin
[2015.07.10 10:24:50 | 000,131,248 | ---- | C] () -- C:\WINDOWS\System32\OutdoorAudioEnvironment.bin
[2015.07.10 10:24:45 | 000,462,848 | ---- | C] () -- C:\WINDOWS\System32\EditionUpgradeManagerObj.dll
[2015.07.10 10:24:45 | 000,325,632 | ---- | C] () -- C:\WINDOWS\System32\EditionUpgradeHelper.dll
[2015.07.10 10:24:45 | 000,022,528 | ---- | C] () -- C:\WINDOWS\System32\efsext.dll
[2015.07.10 10:24:42 | 000,002,269 | ---- | C] () -- C:\WINDOWS\System32\WimBootCompress.ini
[2015.07.10 10:24:39 | 000,055,803 | ---- | C] () -- C:\WINDOWS\System32\srms.dat
[2015.07.10 10:24:36 | 000,008,192 | ---- | C] () -- C:\WINDOWS\System32\settings.dat
[2015.07.10 10:24:33 | 000,074,752 | ---- | C] () -- C:\WINDOWS\System32\BthpanContextHandler.dll
[2015.07.10 10:24:33 | 000,043,131 | ---- | C] () -- C:\WINDOWS\mib.bin
[2015.07.10 10:24:28 | 000,031,744 | ---- | C] () -- C:\WINDOWS\System32\drivers\Udecx.sys
[2015.04.01 19:52:02 | 000,000,207 | ---- | C] () -- C:\WINDOWS\tweaking.com-regbackup-INTEL-Windows-7-Home-Premium-(32-bit).dat
[2014.09.28 12:20:20 | 000,344,064 | ---- | C] () -- C:\WINDOWS\System32\fgkey10.exe
[2014.09.28 12:05:37 | 000,000,000 | ---- | C] () -- C:\WINDOWS\PROTOCOL.INI
[2014.06.08 21:01:59 | 000,035,064 | ---- | C] () -- C:\WINDOWS\System32\drivers\TrueSight.sys
[2014.04.16 19:26:01 | 000,149,504 | ---- | C] () -- C:\WINDOWS\UNWISE.EXE
[2014.04.16 19:26:01 | 000,006,067 | ---- | C] () -- C:\WINDOWS\UNWISE.INI
[2012.08.06 18:24:33 | 000,138,904 | ---- | C] () -- C:\Users\Petr\AppData\Roaming\PnkBstrK.sys
[2012.07.28 17:27:29 | 000,021,976 | ---- | C] () -- C:\Users\Petr\AppData\Roaming\UserTile.png
[2011.12.18 15:32:49 | 000,038,400 | ---- | C] () -- C:\Users\Petr\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini

========== ZeroAccess Check ==========


[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]

[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\windows.storage.dll -- [2015.08.09 13:39:58 | 005,118,024 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2015.07.10 10:24:35 | 000,754,688 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
"" = %systemroot%\system32\wbem\wbemess.dll -- [2015.07.10 10:24:35 | 000,408,064 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both

========== LOP Check ==========

[2013.07.09 21:51:26 | 000,000,000 | ---D | M] -- C:\Users\Petr\AppData\Roaming\Ashampoo
[2014.01.31 12:44:26 | 000,000,000 | ---D | M] -- C:\Users\Petr\AppData\Roaming\Audacity
[2015.03.29 11:27:02 | 000,000,000 | ---D | M] -- C:\Users\Petr\AppData\Roaming\AVG
[2015.07.11 09:52:44 | 000,000,000 | ---D | M] -- C:\Users\Petr\AppData\Roaming\AVG2015
[2015.08.10 12:08:13 | 000,000,000 | ---D | M] -- C:\Users\Petr\AppData\Roaming\avidemux
[2012.04.09 16:14:15 | 000,000,000 | ---D | M] -- C:\Users\Petr\AppData\Roaming\Azureus
[2015.07.09 17:32:08 | 000,000,000 | ---D | M] -- C:\Users\Petr\AppData\Roaming\BitTorrent
[2014.12.10 02:57:43 | 000,000,000 | ---D | M] -- C:\Users\Petr\AppData\Roaming\BlackBean
[2015.04.25 15:15:26 | 000,000,000 | ---D | M] -- C:\Users\Petr\AppData\Roaming\BSplayer
[2015.04.25 14:20:11 | 000,000,000 | ---D | M] -- C:\Users\Petr\AppData\Roaming\BSplayer Pro
[2011.11.09 11:38:53 | 000,000,000 | ---D | M] -- C:\Users\Petr\AppData\Roaming\Canneverbe Limited
[2015.08.12 11:07:05 | 000,000,000 | ---D | M] -- C:\Users\Petr\AppData\Roaming\ChromePlus
[2012.10.29 21:17:51 | 000,000,000 | ---D | M] -- C:\Users\Petr\AppData\Roaming\CloneSpy
[2015.01.14 08:37:32 | 000,000,000 | ---D | M] -- C:\Users\Petr\AppData\Roaming\DAEMON Tools Lite
[2013.04.06 15:10:19 | 000,000,000 | ---D | M] -- C:\Users\Petr\AppData\Roaming\DVDVideoSoft
[2015.06.01 19:00:29 | 000,000,000 | ---D | M] -- C:\Users\Petr\AppData\Roaming\Electronic Arts
[2011.11.08 16:13:57 | 000,000,000 | ---D | M] -- C:\Users\Petr\AppData\Roaming\GHISLER
[2014.07.22 23:02:39 | 000,000,000 | ---D | M] -- C:\Users\Petr\AppData\Roaming\Hulubulu
[2014.03.02 12:38:03 | 000,000,000 | ---D | M] -- C:\Users\Petr\AppData\Roaming\ICQ
[2015.04.19 19:50:47 | 000,000,000 | ---D | M] -- C:\Users\Petr\AppData\Roaming\IObit
[2011.11.11 07:04:41 | 000,000,000 | ---D | M] -- C:\Users\Petr\AppData\Roaming\Leadertech
[2012.09.19 23:21:31 | 000,000,000 | ---D | M] -- C:\Users\Petr\AppData\Roaming\LEGO Company
[2015.06.09 21:28:44 | 000,000,000 | ---D | M] -- C:\Users\Petr\AppData\Roaming\ljaguska
[2015.04.24 10:52:19 | 000,000,000 | ---D | M] -- C:\Users\Petr\AppData\Roaming\MediaInfo
[2013.03.03 22:18:01 | 000,000,000 | ---D | M] -- C:\Users\Petr\AppData\Roaming\NetBeans
[2012.04.30 20:13:49 | 000,000,000 | ---D | M] -- C:\Users\Petr\AppData\Roaming\Nokia
[2015.08.10 12:08:01 | 000,000,000 | ---D | M] -- C:\Users\Petr\AppData\Roaming\QuickScan
[2012.04.08 16:27:38 | 000,000,000 | ---D | M] -- C:\Users\Petr\AppData\Roaming\Raptr
[2012.10.10 18:43:22 | 000,000,000 | ---D | M] -- C:\Users\Petr\AppData\Roaming\RigNRoll_usa_ws
[2015.06.30 23:10:49 | 000,000,000 | ---D | M] -- C:\Users\Petr\AppData\Roaming\RobotsDemo
[2013.10.31 20:00:30 | 000,000,000 | ---D | M] -- C:\Users\Petr\AppData\Roaming\Seznam.cz
[2015.06.30 22:55:30 | 000,000,000 | ---D | M] -- C:\Users\Petr\AppData\Roaming\Sierra
[2013.02.20 22:04:35 | 000,000,000 | ---D | M] -- C:\Users\Petr\AppData\Roaming\Sony Online Entertainment
[2015.06.10 08:46:38 | 000,000,000 | ---D | M] -- C:\Users\Petr\AppData\Roaming\Spotify
[2015.08.12 10:39:59 | 000,000,000 | ---D | M] -- C:\Users\Petr\AppData\Roaming\Stardock
[2013.08.30 13:25:02 | 000,000,000 | ---D | M] -- C:\Users\Petr\AppData\Roaming\Steganos
[2013.08.30 13:22:58 | 000,000,000 | ---D | M] -- C:\Users\Petr\AppData\Roaming\Steganos VPN
[2015.05.09 11:41:47 | 000,000,000 | ---D | M] -- C:\Users\Petr\AppData\Roaming\Stellarium
[2015.04.24 11:09:19 | 000,000,000 | ---D | M] -- C:\Users\Petr\AppData\Roaming\Thumbnail me
[2015.05.27 14:52:25 | 000,000,000 | ---D | M] -- C:\Users\Petr\AppData\Roaming\TuneUp Software
[2015.08.03 12:15:45 | 000,000,000 | ---D | M] -- C:\Users\Petr\AppData\Roaming\uTorrent
[2011.12.02 16:06:39 | 000,000,000 | ---D | M] -- C:\Users\Petr\AppData\Roaming\VirtuaWin
[2013.07.01 21:01:19 | 000,000,000 | ---D | M] -- C:\Users\Petr\AppData\Roaming\Zoner

========== Purity Check ==========



========== Alternate Data Streams ==========

@Alternate Data Stream - 64 bytes -> C:\WINDOWS\System32\nvdispgenco3235330.dll:$CmdTcID
@Alternate Data Stream - 64 bytes -> C:\WINDOWS\System32\nvdispgenco3235306.dll:$CmdTcID
@Alternate Data Stream - 64 bytes -> C:\WINDOWS\System32\nvdispgenco3235286.dll:$CmdTcID
@Alternate Data Stream - 64 bytes -> C:\WINDOWS\System32\nvdispgenco3235012.dll:$CmdTcID
@Alternate Data Stream - 64 bytes -> C:\WINDOWS\System32\nvdispgenco3234725.dll:$CmdTcID
@Alternate Data Stream - 64 bytes -> C:\WINDOWS\System32\nvdispco3235330.dll:$CmdTcID
@Alternate Data Stream - 64 bytes -> C:\WINDOWS\System32\nvdispco3235306.dll:$CmdTcID
@Alternate Data Stream - 64 bytes -> C:\WINDOWS\System32\nvdispco3235286.dll:$CmdTcID
@Alternate Data Stream - 64 bytes -> C:\WINDOWS\System32\nvdispco3235012.dll:$CmdTcID
@Alternate Data Stream - 64 bytes -> C:\WINDOWS\System32\nvdispco3234725.dll:$CmdTcID
@Alternate Data Stream - 64 bytes -> C:\WINDOWS\System32\nvaudcap32v.dll:$CmdTcID
@Alternate Data Stream - 64 bytes -> C:\WINDOWS\System32\MsSpellCheckingFacility.exe:$CmdTcID
@Alternate Data Stream - 64 bytes -> C:\WINDOWS\System32\mshtmlmedia.dll:$CmdTcID
@Alternate Data Stream - 64 bytes -> C:\WINDOWS\System32\MpSigStub.exe:$CmdTcID
@Alternate Data Stream - 64 bytes -> C:\WINDOWS\System32\drivers\nvvad32v.sys:$CmdTcID
@Alternate Data Stream - 64 bytes -> C:\WINDOWS\System32\drivers\mwac.sys:$CmdTcID
@Alternate Data Stream - 64 bytes -> C:\WINDOWS\System32\drivers\mbamchameleon.sys:$CmdTcID
@Alternate Data Stream - 64 bytes -> C:\WINDOWS\System32\drivers\mbam.sys:$CmdTcID
@Alternate Data Stream - 64 bytes -> C:\WINDOWS\System32\drivers\avglogx.sys:$CmdTcID
@Alternate Data Stream - 64 bytes -> C:\WINDOWS\System32\drivers\avgfwd6x.sys:$CmdTcID
@Alternate Data Stream - 64 bytes -> C:\Users\Petr\Desktop\islamofilie-v-kostce.pdf:$CmdTcID
@Alternate Data Stream - 64 bytes -> C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe:$CmdTcID
@Alternate Data Stream - 64 bytes -> C:\Program Files\AVG\AVG2015\avgui.exe:$CmdTcID
@Alternate Data Stream - 64 bytes -> C:\Delapp.bat:$CmdTcID
@Alternate Data Stream - 26 bytes -> C:\Users\Petr\Desktop\islamofilie-v-kostce.pdf:$CmdZnID

< End of report >
Keybord not present. Press Enter to continue

Uživatelský avatar
akiller
Level 3
Level 3
Příspěvky: 558
Registrován: listopad 10
Bydliště: Nothingtown
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod akiller » 15 srp 2015 10:28

Zde je log Extras.txt:


OTL Extras logfile created on: 15.08.2015 10:14:22 - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Petr\Desktop
An unknown product (Version = 6.2.9200) - Type = NTWorkstation
Internet Explorer (Version = 9.11.10240.16384)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: dd.MM.yyyy

3,25 Gb Total Physical Memory | 2,08 Gb Available Physical Memory | 63,98% Memory free
6,50 Gb Paging File | 4,88 Gb Available in Paging File | 75,04% Paging File free
Paging file location(s): c:\pagefile.sys 0 0 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 151,61 Gb Total Space | 60,38 Gb Free Space | 39,82% Space Free | Partition Type: NTFS
Drive D: | 146,48 Gb Total Space | 126,00 Gb Free Space | 86,02% Space Free | Partition Type: NTFS
Drive E: | 1,39 Gb Total Space | 0,00 Gb Free Space | 0,00% Space Free | Partition Type: CDFS
Drive F: | 244,14 Gb Total Space | 124,34 Gb Free Space | 50,93% Space Free | Partition Type: NTFS
Drive G: | 687,37 Gb Total Space | 138,09 Gb Free Space | 20,09% Space Free | Partition Type: NTFS
Drive H: | 111,79 Gb Total Space | 73,10 Gb Free Space | 65,39% Space Free | Partition Type: NTFS

Computer Name: INTEL | User Name: Petr | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

========== Extra Registry (SafeList) ==========


========== File Associations ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\WINDOWS\System32\control.exe (Microsoft Corporation)
.hlp [@ = hlpfile] -- C:\WINDOWS\winhlp32.exe (Microsoft Corporation)
.html [@ = ChromeHTML] -- C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.)

[HKEY_CURRENT_USER\SOFTWARE\Classes\<extension>]
.html [@ = FirefoxHTML] -- C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)

========== Shell Spawning ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation)
htmlfile [opennew] -- Reg Error: Key error.
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\OpenWith.exe "%1" (Microsoft Corporation)
Directory [AddToPlaylistVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" (VideoLAN)
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" (VideoLAN)
Directory [Winamp.Bookmark] -- "C:\Program Files\Winamp\winamp.exe" /BOOKMARK "%1" (Nullsoft, Inc.)
Directory [Winamp.Enqueue] -- "C:\Program Files\Winamp\winamp.exe" /ADD "%1" (Nullsoft, Inc.)
Directory [Winamp.Play] -- "C:\Program Files\Winamp\winamp.exe" "%1" (Nullsoft, Inc.)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

========== Security Center Settings ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = Reg Error: Unknown registry data type -- File not found

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Upgrade]
"UpgradeTime" = Reg Error: Unknown registry data type -- File not found

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]

========== Firewall Settings ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile]

[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
"DefaultOutboundAction" = 0
"DefaultInboundAction" = 1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

========== Authorized Applications List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]


========== Vista Active Open Ports Exception List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{30CE37E0-DED2-4087-BCE0-29C02788843C}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{3EED9121-A8E2-4B60-9819-EB36851850B4}" = lport=47998 | protocol=17 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamuseragent.exe |
"{3F6D6A16-53FD-4FDC-9944-C249DBDB8CFE}" = lport=5353 | protocol=17 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamnetworkservice.exe |
"{5829AAE5-A6B5-4302-9809-A024D50966DC}" = lport=35043 | protocol=6 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamer.exe |
"{7B9A6E3F-B8ED-49F4-9768-C8ABDD8DF628}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{7DEB36B4-50B5-45BC-BE60-FF7A6C0D84AE}" = lport=443 | protocol=6 | dir=in | app=c:\program files\nvidia corporation\netservice\nvnetworkservice.exe |
"{89340BCC-5305-46E7-B9CB-3A9226CE49E6}" = lport=47995 | protocol=17 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamer.exe |
"{90B02225-470C-4B6F-BE30-29A09FEE231C}" = lport=47984 | protocol=6 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamnetworkservice.exe |
"{9B9542D4-2989-4CC8-9DC3-C56855B3F9E1}" = lport=80 | protocol=6 | dir=in | app=c:\program files\nvidia corporation\netservice\nvnetworkservice.exe |
"{B203DAF3-E33C-4AFB-9F74-5C781DF98FBD}" = lport=5353 | protocol=6 | dir=in | name=adobe csi cs4 |
"{CCE1BE80-34DF-4CB0-BAB1-72AC9B8333AC}" = lport=5353 | protocol=17 | dir=in | app=c:\program files\google\chrome\application\chrome.exe |

========== Vista Active Application Exception List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{024F9F2C-0C31-4D12-AF01-559F504BAB7D}" = dir=out | name=@{microsoft.windowsdvdplayer_3.6.11761.0_x86__8wekyb3d8bbwe?ms-resource://microsoft.windowsdvdplayer/resources/ids_dvdplayer_app_name} |
"{0D1D80F3-5E7F-4400-ADB0-CE563988669F}" = dir=out | name=@{microsoft.windows.cortana_1.4.8.176_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.cortana/resources/displayname} |
"{1090BF33-5F79-47DE-A3AF-0CDE4682B3FB}" = dir=in | name=@{microsoft.windowsstore_2015.8.3.0_x86__8wekyb3d8bbwe?ms-resource://microsoft.windowsstore/resources/storetitle} |
"{10F07B24-7314-49E7-BA24-4A9056E9AF8F}" = dir=in | name=@{microsoft.bingnews_4.4.200.0_x86__8wekyb3d8bbwe?ms-resource://microsoft.bingnews/resources/applicationtitlewithbranding} |
"{111304A3-9B02-4624-AF9B-D82C721CB272}" = dir=out | name=@{microsoft.lockapp_10.0.10240.16384_neutral__cw5n1h2txyewy?ms-resource://microsoft.lockapp/resources/appdisplayname} |
"{155B6193-9A6E-4A11-8608-B085E51A09D3}" = protocol=17 | dir=in | app=c:\program files\avg\avg2015\avgemcx.exe |
"{15681998-8007-44B3-AE60-A41F7A383F11}" = dir=out | name=@{microsoft.microsoftedge_20.10240.16384.0_neutral__8wekyb3d8bbwe?ms-resource://microsoft.microsoftedge/resources/appname} |
"{1BD2E9F8-E363-4259-ABA8-E1CC5FE58D8A}" = dir=in | name=@{microsoft.aad.brokerplugin_1000.10240.16384.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.aad.brokerplugin/resources/packagedisplayname} |
"{1F29D365-3215-4B82-BE90-AC72A58D373F}" = protocol=6 | dir=in | app=c:\program files\avg\avg2015\avgnsx.exe |
"{1F5A4FC0-8664-45D6-B1B0-A690BD28B1C9}" = dir=in | name=@{microsoft.bingweather_4.4.200.0_x86__8wekyb3d8bbwe?ms-resource://microsoft.bingweather/resources/applicationtitlewithbranding} |
"{2538D7CD-6F61-4CA8-B82A-D91C85775309}" = dir=out | name=@{microsoft.bingfinance_4.4.200.0_x86__8wekyb3d8bbwe?ms-resource://microsoft.bingfinance/resources/applicationtitlewithbranding} |
"{287A7A5C-C547-400E-9087-203055A63CC7}" = protocol=17 | dir=in | app=c:\program files\avg\avg2015\avgnsx.exe |
"{295BE81B-9946-4EF1-B7FD-E018D244F65B}" = dir=out | name=@{microsoft.windowsmaps_4.1506.50715.0_x86__8wekyb3d8bbwe?ms-resource://microsoft.windowsmaps/resources/appstorename} |
"{2BB0AEB9-295E-4DC6-8976-204095560EA3}" = protocol=6 | dir=in | app=c:\program files\mozilla firefox\firefox.exe |
"{322E4B0D-84AE-4D5E-B662-46E77B775100}" = protocol=6 | dir=in | app=c:\program files\common files\adobe\cs4servicemanager\cs4servicemanager.exe |
"{3C786B9E-D203-49A4-AF0E-032DA661FC7F}" = dir=out | name=twitter |
"{47F8D8AC-187D-4C33-A4C4-EAE237661504}" = protocol=6 | dir=in | app=c:\program files\parom.tv\paromplayer.exe |
"{5431E2B5-A6BA-4326-9102-46CFBA334093}" = dir=in | app=c:\program files\common files\apple\apple application support\webkit2webprocess.exe |
"{594A00D1-EC04-4D21-95B9-7A546FA1351C}" = protocol=17 | dir=in | app=c:\program files\logitech\vid hd\vid.exe |
"{59EBDDEB-DFDC-472D-8A4B-0CBA5DD3848B}" = dir=out | name=@{microsoft.windows.photos_15.803.16240.0_x86__8wekyb3d8bbwe?ms-resource://microsoft.windows.photos/resources/appstorename} |
"{59F40109-F655-4CF8-81D8-AAB74166658B}" = dir=in | name=microsoft solitaire collection |
"{5C438780-8C3E-4BF4-A59B-823BA13DBAFC}" = dir=out | name=@{microsoft.zunevideo_3.6.12101.0_x86__8wekyb3d8bbwe?ms-resource://microsoft.zunevideo/resources/ids_manifest_video_app_name} |
"{61FBF7F0-537F-4F31-9F41-FB971DBE62B4}" = protocol=6 | dir=in | app=c:\program files\avg\avg2015\avgdiagex.exe |
"{62ADCCCE-6A2F-458C-B19C-38E1FAD5F3E5}" = protocol=6 | dir=in | app=c:\windows\system32\pnkbstrb.exe |
"{64E0B41F-6650-4645-9C1E-036186E2BDE0}" = protocol=6 | dir=in | app=c:\program files\winamp\winamp.exe |
"{69E7D10E-29A3-4FB0-9120-15068EC867B5}" = dir=out | name=@{microsoft.windowsphone_10.1507.17010.0_x86__8wekyb3d8bbwe?ms-resource://microsoft.windowsphone/resources/appstorename} |
"{6D89690A-2DEB-44CC-ACF0-16B7FC4A277F}" = protocol=17 | dir=in | app=c:\windows\system32\pnkbstrb.exe |
"{70A4BCB7-AA37-4594-8ECF-116F80D2F7C1}" = dir=out | name=@{microsoft.bingweather_4.4.200.0_x86__8wekyb3d8bbwe?ms-resource://microsoft.bingweather/resources/applicationtitlewithbranding} |
"{7235F9A3-4047-4B15-B17F-A7F228BB7ED4}" = dir=out | name=@{microsoft.accountscontrol_10.0.10240.16384_neutral__cw5n1h2txyewy?ms-resource://microsoft.accountscontrol/resources/displayname} |
"{762E2FC6-16AF-48A0-BD89-342BD0E26D02}" = dir=out | name=@{microsoft.getstarted_2.2.7.0_x86__8wekyb3d8bbwe?ms-resource://microsoft.getstarted/resources/appstorename} |
"{767645B6-2CCE-432C-AB0B-191D6B89C6D1}" = protocol=17 | dir=in | app=c:\program files\avg\avg2015\avgdiagex.exe |
"{775EF534-D954-4E54-8AA7-7E1346CBC268}" = dir=out | name=@{windows.contactsupport_10.0.10240.16384_neutral_neutral_cw5n1h2txyewy?ms-resource://windows.contactsupport/resources/appdisplayname} |
"{777C7949-E862-4EA6-9BC2-1436FE5F0345}" = dir=in | name=@{microsoft.microsoftofficehub_17.6106.23501.0_x86__8wekyb3d8bbwe?ms-resource://microsoft.microsoftofficehub/officehubintl/appmanifest_getoffice_displayname} |
"{7EA43471-7250-4D2A-86AB-A70085D84A5F}" = dir=out | name=candy crush saga |
"{80200878-69DA-419B-906A-3731C6E5FE33}" = dir=out | name=@{microsoft.windowsstore_2015.8.3.0_x86__8wekyb3d8bbwe?ms-resource://microsoft.windowsstore/resources/storetitle} |
"{80FBCB68-B368-48E0-B219-A898F487C309}" = dir=out | name=@{microsoft.aad.brokerplugin_1000.10240.16384.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.aad.brokerplugin/resources/packagedisplayname} |
"{81A761FD-E264-4E5F-89C4-3902E9A51F7D}" = dir=out | name=@{microsoft.appconnector_1.3.3.0_neutral__8wekyb3d8bbwe?ms-resource://microsoft.appconnector/resources/connectorstubtitle} |
"{83BAFAC2-B9C1-431B-BA69-C9D1737C85F7}" = protocol=6 | dir=in | app=c:\program files\logitech\vid hd\vid.exe |
"{8737A334-36BE-4107-85B5-F8FD211A39B1}" = dir=out | name=@{microsoft.people_1.10241.0.0_x86__8wekyb3d8bbwe?ms-resource://microsoft.people/resources/appstorename} |
"{87D13A28-0037-42E6-B732-C2A8B08A27E8}" = dir=out | name=@{microsoft.bingnews_4.4.200.0_x86__8wekyb3d8bbwe?ms-resource://microsoft.bingnews/resources/applicationtitlewithbranding} |
"{88B4C436-5EEE-40AD-A6AD-1241AB5201CC}" = dir=in | name=xbox |
"{8D3D1114-69B5-44D0-A551-2B62E558B696}" = dir=in | name=@{microsoft.bingfinance_4.4.200.0_x86__8wekyb3d8bbwe?ms-resource://microsoft.bingfinance/resources/applicationtitlewithbranding} |
"{8E6E3348-C19A-4E62-AC23-16F2E8C9FAD1}" = dir=out | name=@{microsoft.windows.cloudexperiencehost_10.0.10240.16384_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.cloudexperiencehost/resources/appdescription} |
"{930820F1-4D29-4A5D-B85A-21FC64680508}" = dir=out | name=@{microsoft.windowsfeedback_10.0.10240.16393_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windowsfeedback/feedbackapp.resources/appname/text} |
"{953E115A-FB96-4B37-AAA9-5BF9A5DC46F7}" = protocol=17 | dir=in | app=c:\program files\avg\avg2015\avgmfapx.exe |
"{9C27501F-0A96-424D-9382-9D74DEFDFA1E}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{9E56B5AC-E120-4343-9EB3-58FA0A3ABB82}" = dir=out | name=@{microsoft.xboxgamecallableui_1000.10240.16384.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.xboxgamecallableui/resources/pkgdisplayname} |
"{9EC188D5-1A7D-41B4-A1BE-4C91C3AD21D4}" = dir=out | name=@{windows.purchasedialog_6.2.0.0_neutral_neutral_cw5n1h2txyewy?ms-resource://windows.purchasedialog/resources/displayname} |
"{9FE83B2B-BCCA-4C9C-85EF-93CFEDF2EB99}" = protocol=17 | dir=in | app=c:\program files\microsoft office\office12\onenote.exe |
"{A1A810B8-952D-4553-BCBB-D62176D9BF7A}" = protocol=6 | dir=in | app=c:\program files\bittorrent\bittorrent.exe |
"{A75FCF3A-1C94-427D-AEB3-8326FE83988B}" = dir=out | name=xbox |
"{AA7E5E5F-7B82-4B7D-B530-D9E4D6D6B5C9}" = dir=out | name=@{microsoft.windows.parentalcontrols_1000.10240.16384.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.parentalcontrols/resources/displayname} |
"{AC832D95-E3C3-4B4D-817E-1C3C159189E4}" = dir=in | name=@{microsoft.microsoftedge_20.10240.16384.0_neutral__8wekyb3d8bbwe?ms-resource://microsoft.microsoftedge/resources/appname} |
"{AE61675C-8A3C-484E-956C-8D2E999413E0}" = protocol=6 | dir=in | app=c:\program files\microsoft office\office12\onenote.exe |
"{AFB7BABA-BAA7-4CE9-870B-3D19DCB8A817}" = dir=out | name=@{microsoft.bingsports_4.4.200.0_x86__8wekyb3d8bbwe?ms-resource://microsoft.bingsports/resources/applicationtitlewithbranding} |
"{B2E8B109-FEF4-4976-9F9A-6CE0DE4A637D}" = dir=in | name=@{microsoft.windowscommunicationsapps_17.6106.42001.0_x86__8wekyb3d8bbwe?ms-resource://microsoft.windowscommunicationsapps/hxcommintl/appmanifest_outlookdesktop_displayname} |
"{C566E8FF-DC1C-4D1C-8D32-D15391A80A60}" = dir=out | name=@{microsoft.microsoftofficehub_17.6106.23501.0_x86__8wekyb3d8bbwe?ms-resource://microsoft.microsoftofficehub/officehubintl/appmanifest_getoffice_displayname} |
"{C6E4A1FE-CCA7-40CD-A9E6-64C490E76E2E}" = dir=out | name=microsoft solitaire collection |
"{C92F8246-2E39-4872-8D8E-D057EB3BA260}" = dir=out | name=@{microsoft.zunemusic_3.6.12101.0_x86__8wekyb3d8bbwe?ms-resource://microsoft.zunemusic/resources/ids_manifest_music_app_name} |
"{CD1EDB1B-3BB7-4F3D-A51E-B04063ACC31C}" = protocol=17 | dir=in | app=c:\program files\common files\adobe\cs4servicemanager\cs4servicemanager.exe |
"{D1FA21D5-71A0-43D4-84B2-D6584DA6CFF5}" = protocol=6 | dir=in | app=c:\program files\avg\avg2015\avgmfapx.exe |
"{D6501511-4D6C-4986-8B5D-5447ECCFBE20}" = dir=out | name=@{microsoft.windowscommunicationsapps_17.6106.42001.0_x86__8wekyb3d8bbwe?ms-resource://microsoft.windowscommunicationsapps/hxcommintl/appmanifest_outlookdesktop_displayname} |
"{D75CA8AB-2113-45A0-AEC9-A69D211B7AE8}" = dir=in | name=@{microsoft.windows.photos_15.803.16240.0_x86__8wekyb3d8bbwe?ms-resource://microsoft.windows.photos/resources/appstorename} |
"{D81E2099-7F30-4803-817F-DE1EC325CE05}" = dir=in | name=@{windows.contactsupport_10.0.10240.16384_neutral_neutral_cw5n1h2txyewy?ms-resource://windows.contactsupport/resources/appdisplayname} |
"{DBA836B1-F897-408D-99B3-ABD1FA97C87E}" = dir=out | name=@{microsoft.3dbuilder_10.1.9.0_x86__8wekyb3d8bbwe?ms-resource://microsoft.3dbuilder/resources/appstorename} |
"{DCE917F1-B836-4C80-A759-7CD240CDEF19}" = dir=in | name=@{microsoft.windows.cortana_1.4.8.176_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.cortana/resources/displayname} |
"{DD99310E-5906-4578-B9C3-A049AD7D0954}" = dir=out | name=@{microsoft.xboxidentityprovider_1000.10240.16384.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.xboxidentityprovider/resources/pkgdisplayname} |
"{E4CD1B96-E8FF-45CE-8751-BAA62AFFFDB8}" = dir=out | name=windows_ie_ac_001 |
"{E5778F9D-550C-423D-9D1E-2576B41D8BE6}" = dir=in | name=@{microsoft.bingsports_4.4.200.0_x86__8wekyb3d8bbwe?ms-resource://microsoft.bingsports/resources/applicationtitlewithbranding} |
"{EA4A3B86-0532-441C-B39D-737AC2DABFFC}" = protocol=17 | dir=in | app=c:\program files\winamp\winamp.exe |
"{EFA46DBE-1979-48BE-AAF0-6AD48782A829}" = dir=out | name=@{microsoft.windows.contentdeliverymanager_10.0.10240.16384_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.contentdeliverymanager/resources/appdisplayname} |
"{F187433B-1BDC-4668-A525-46C12BA0DF59}" = dir=in | name=@{microsoft.windows.cloudexperiencehost_10.0.10240.16384_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.cloudexperiencehost/resources/appdescription} |
"{F59B88ED-AE32-4650-93BE-61669F301C55}" = protocol=17 | dir=in | app=c:\program files\parom.tv\paromplayer.exe |
"{F769B642-6D1B-4937-A85F-D9681161D5FE}" = protocol=17 | dir=in | app=c:\program files\mozilla firefox\firefox.exe |
"{F76A4799-68AB-4717-81A6-F86C1547CC52}" = protocol=17 | dir=in | app=c:\program files\bittorrent\bittorrent.exe |
"{F9D43F74-9904-4EFF-9A75-AD0493546B1B}" = protocol=6 | dir=in | app=c:\program files\avg\avg2015\avgemcx.exe |
"{FCA6A44D-B7B1-4B54-8F66-8144398BF18F}" = dir=in | name=onenote |
"{FD0C9BEE-E9AD-4B15-B638-ABF18A8CF355}" = dir=out | name=onenote |
"TCP Query User{13758209-EC29-4385-B776-4B0090426886}C:\users\petr\appdata\roaming\utorrent\utorrent.exe" = protocol=6 | dir=in | app=c:\users\petr\appdata\roaming\utorrent\utorrent.exe |
"TCP Query User{33CB591A-DAAE-4329-B273-D61BA7C587C3}C:\users\petr\appdata\roaming\spotify\spotify.exe" = protocol=6 | dir=in | app=c:\users\petr\appdata\roaming\spotify\spotify.exe |
"TCP Query User{355772AB-2CCA-478C-926F-190A25E8D97C}C:\program files\tvuplayer\tvuplayer.exe" = protocol=6 | dir=in | app=c:\program files\tvuplayer\tvuplayer.exe |
"TCP Query User{4E591382-6A78-41FB-A1E0-353513242C54}G:\instalačky\vypalování, winzip, stahování dat, apod\bittorrent (7.5).exe" = protocol=6 | dir=in | app=g:\instalačky\vypalování, winzip, stahování dat, apod\bittorrent (7.5).exe |
"TCP Query User{892043FB-C949-4528-ADAB-BD0A2ACAC92A}C:\users\petr\appdata\roaming\spotify\spotify.exe" = protocol=6 | dir=in | app=c:\users\petr\appdata\roaming\spotify\spotify.exe |
"TCP Query User{908A9E04-C667-4E6B-80E3-A0933BB93BE1}C:\program files\videolan\vlc\vlc.exe" = protocol=6 | dir=in | app=c:\program files\videolan\vlc\vlc.exe |
"TCP Query User{9A45832F-924C-43E8-BA2C-5757A0483163}C:\program files\tapinradio\tapinradio.exe" = protocol=6 | dir=in | app=c:\program files\tapinradio\tapinradio.exe |
"TCP Query User{AF9D5409-291D-44E7-A426-6B1EE187EE87}C:\program files\mozilla firefox\firefox.exe" = protocol=6 | dir=in | app=c:\program files\mozilla firefox\firefox.exe |
"TCP Query User{B9FDF405-BD9C-4B05-AB5F-3A3BB484B0DE}C:\users\petr\appdata\roaming\utorrent\utorrent.exe" = protocol=6 | dir=in | app=c:\users\petr\appdata\roaming\utorrent\utorrent.exe |
"TCP Query User{C3D7AB9F-9CDF-40DB-8676-757A326FFE81}C:\program files\internet explorer\iexplore.exe" = protocol=6 | dir=in | app=c:\program files\internet explorer\iexplore.exe |
"UDP Query User{0DD80B20-5040-43CF-A2B7-95EFAA84C98A}C:\program files\internet explorer\iexplore.exe" = protocol=17 | dir=in | app=c:\program files\internet explorer\iexplore.exe |
"UDP Query User{139EC371-4B05-41A6-B684-8BFA7B4279EB}C:\program files\tapinradio\tapinradio.exe" = protocol=17 | dir=in | app=c:\program files\tapinradio\tapinradio.exe |
"UDP Query User{5C5D834A-3FB6-4950-8FFB-595C41B5D282}C:\program files\videolan\vlc\vlc.exe" = protocol=17 | dir=in | app=c:\program files\videolan\vlc\vlc.exe |
"UDP Query User{67E061F1-7FD9-4D70-B5AD-39CB6A952F3D}C:\users\petr\appdata\roaming\spotify\spotify.exe" = protocol=17 | dir=in | app=c:\users\petr\appdata\roaming\spotify\spotify.exe |
"UDP Query User{6FAA17A2-F798-4A88-80BA-1DC16865D208}C:\users\petr\appdata\roaming\spotify\spotify.exe" = protocol=17 | dir=in | app=c:\users\petr\appdata\roaming\spotify\spotify.exe |
"UDP Query User{9A1AC8A3-11A0-4E5C-A37E-ABF0F625158F}C:\program files\mozilla firefox\firefox.exe" = protocol=17 | dir=in | app=c:\program files\mozilla firefox\firefox.exe |
"UDP Query User{B367FDF1-6D97-46FD-BBAF-E02ED1FB99F2}C:\users\petr\appdata\roaming\utorrent\utorrent.exe" = protocol=17 | dir=in | app=c:\users\petr\appdata\roaming\utorrent\utorrent.exe |
"UDP Query User{B68D9FC7-FE51-40E0-9B7B-8CBCC080054D}G:\instalačky\vypalování, winzip, stahování dat, apod\bittorrent (7.5).exe" = protocol=17 | dir=in | app=g:\instalačky\vypalování, winzip, stahování dat, apod\bittorrent (7.5).exe |
"UDP Query User{E4B921E9-F946-496E-B264-D10F4E775572}C:\users\petr\appdata\roaming\utorrent\utorrent.exe" = protocol=17 | dir=in | app=c:\users\petr\appdata\roaming\utorrent\utorrent.exe |
"UDP Query User{E4F926A8-B972-4D4D-97E7-37704D0A4CBC}C:\program files\tvuplayer\tvuplayer.exe" = protocol=17 | dir=in | app=c:\program files\tvuplayer\tvuplayer.exe |

========== HKEY_LOCAL_MACHINE Uninstall List ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{00ADFB20-AE75-46F4-AD2C-F48B15AC3100}" = Adobe Color NA Recommended Settings CS4
"{05308C4E-7285-4066-BAE3-6B50DA6ED755}" = Adobe Update Manager CS4
"{054EFA56-2AC1-48F4-A883-0AB89874B972}" = Adobe Extension Manager CS4
"{088A4B09-8FB2-48D0-932A-7F90BE050543}" = MAGIX Music Maker 2014 Premium
"{095A41CD-2500-4783-AE28-87E05653CDE7}" = MAGIX Music Maker 2014 Premium Soundpools
"{098727E1-775A-4450-B573-3F441F1CA243}" = kuler
"{0D6013AB-A0C7-41DC-973C-E93129C9A29F}" = Adobe Color JA Extra Settings CS4
"{0D67A4E4-5BE0-4C9A-8AD8-AB552B433F23}" = Adobe Setup
"{0F723FC1-7606-4867-866C-CE80AD292DAF}" = Adobe CSI CS4
"{10CD364B-FFCC-48BE-B469-B9622A033075}" = Fences
"{123F4E9B-80E6-3A84-BDD4-3CB3AC59ABF0}" = Microsoft .NET Framework 4.5.1 (CSY)
"{1618734A-3957-4ADD-8199-F973763109A8}" = Adobe Anchor Service CS4
"{16E16F01-2E2D-4248-A42F-76261C147B6C}" = Adobe Drive CS4
"{16E6D2C1-7C90-4309-8EC4-D2212690AAA4}" = AdobeColorCommonSetRGB
"{17CA32D1-73BD-4990-B8F6-369D8D34B05D}" = Microsoft Antimalware Service CS-CZ Language Pack
"{196467F1-C11F-4F76-858B-5812ADC83B94}" = MSXML 4.0 SP3 Parser
"{196BB40D-1578-3D01-B289-BEFC77A11A1E}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319
"{197A3012-8C85-4FD3-AB66-9EC7E13DB92E}" = Adobe AIR
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}" = Skype™ 7.3
"{25CFEF55-A945-41FC-86ED-76469F31DF37}" = Nokia Connectivity Cable Driver
"{25F61E72-AAA4-4607-95D2-1E5139C98FFB}" = Nokia_Multimedia_Common_Components_2_5
"{26A24AE4-039D-4CA4-87B4-2F83218051F0}" = Java 8 Update 51
"{32A3A4F4-B792-11D6-A78A-00B0D0160050}" = Java(TM) SE Development Kit 6 Update 5
"{32A3A4F4-B792-11D6-A78A-00B0D0170150}" = Java SE Development Kit 7 Update 15
"{32A3A4F4-B792-11D6-A78A-00B0D0180110}" = Java SE Development Kit 8 Update 11
"{35D94F92-1D3A-43C5-8605-EA268B1A7BD9}" = PDF Settings CS4
"{3911CF56-9EF2-39BA-846A-C27BD3CD0685}" = Microsoft .NET Framework 4.5.2
"{39AB2E37-1A55-4292-A5D3-971E9F70D0F8}" = Firebird SQL Server - MAGIX Edition
"{39F6E2B4-CFE8-C30A-66E8-489651F0F34C}" = Adobe Media Player
"{3A4E8896-C2E7-4084-A4A4-B8FD1894E739}" = Adobe XMP Panels CS4
"{3A9FC03D-C685-4831-94CF-4EDFD3749497}" = Microsoft SQL Server Compact 3.5 SP2 ENU
"{3CAD92B3-6BA0-44A4-A546-162520A80BB3}" = Vita Pop Brass
"{3DA8DF9A-044E-46C4-8531-DEDBB0EE37FF}" = Adobe WinSoft Linguistics Plugin
"{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}" = Microsoft ASP.NET MVC 4 Runtime
"{46F044A5-CE8B-4196-984E-5BD6525E361D}" = Apple Application Support
"{4943EFF5-229F-435D-BEA9-BE3CAEA783A7}" = Adobe Service Manager Extension
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{4B28C077-9958-45F1-8BB4-CBF90A69AD4E}" = PC Connectivity Solution
"{4B35F00C-E63D-40DC-9839-DF15A33EAC46}" = Grand Theft Auto Vice City
"{4BA5297E-60A6-4F18-9AAC-25A878C4E38C}" = MAGIX Music Maker 2014 Premium (Introductory videos)
"{4F6B2EA9-4598-4653-B13A-E27AA387DC9B}" = Vita Vintage Organ
"{4FCB1267-7380-4EBA-9A6C-69809C6E8227}" = Nokia Music Player
"{50779A29-834E-4E36-BBEB-B7CABC67A825}" = Microsoft Security Client CS-CZ Language Pack
"{514D1AB9-90BE-4159-AB90-5CAFB21B8D52}" = AVG 2015
"{5570C7F0-43D0-4916-8A9E-AEDD52FA86F4}" = Adobe Color EU Extra Settings CS4
"{57BB4801-61C8-4E74-9672-2160728A461E}" = Google Earth Plug-in
"{58DDFC02-3E05-472E-ABF0-5A3DC500FFB1}" = MAGIX Music Maker 2014 Premium Update
"{59E4543A-D49D-4489-B445-473D763C79AF}" = Microsoft Games for Windows - LIVE Redistributable
"{5C375A31-ED71-4CA0-91E0-8FA47E72D56D}" = MAGIX Speed burnR (MSI)
"{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}" = Google Update Helper
"{612C34C7-5E90-47D8-9B5C-0F717DD82726}" = swMSM
"{63C24A08-70F3-4C8E-B9FB-9F21A903801D}" = Adobe Color Video Profiles CS CS4
"{63E5CDBF-8214-4F03-84F8-CD3CE48639AD}" = Adobe Photoshop CS4 Support
"{65444C65-5D63-4D20-82EC-F182656B0786}" = Vita Drum Engine
"{67F0E67A-8E93-4C2C-B29D-47C48262738A}" = Adobe Device Central CS4
"{68243FF8-83CA-466B-B2B8-9F99DA5479C4}" = AdobeColorCommonSetCMYK
"{6F1F7E62-A579-434C-9610-F6FE2930C02E}" = MAGIX Music Maker 2014 Soundpools
"{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
"{72945A77-20ED-4507-B267-4771EDE4EE58}" = MAGIX Burn routines
"{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
"{767CC44C-9BBC-438D-BAD3-FD4595DD148B}" = VC80CRTRedist - 8.0.50727.762
"{773A4DDC-3B52-42C7-8B7A-52369B9A390B}" = MAGIX Music Maker 2014 Premium (Synthesizer and effects)
"{77C4AF18-19ED-489E-84D3-203E3862F6BC}" = Vita 2 add-on content
"{789495D8-AF08-4B7C-9022-5F624F3CFB0B}" = PowerArchiver 2010
"{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}" = Apple Software Update
"{7A22C523-501D-4FD2-B9AD-BBEE8AFAED44}" = Vita Jazz Drums
"{7B3F0113-E63C-4D6D-AF19-111A3165CCA2}" = Text-To-Speech-Runtime
"{7E265513-8CDA-4631-B696-F40D983F3B07}_is1" = CDBurnerXP
"{80074966-5231-428D-9AE7-B7D5D2DC3246}" = Readon TV Movie Radio Player 7.6.0.0
"{820D3F45-F6EE-4AAF-81EF-CE21FF21D230}" = Adobe Type Support CS4
"{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable
"{83877DB1-8B77-45BC-AB43-2BAC22E093E0}" = Adobe Bridge CS4
"{842B4B72-9E8F-4962-B3C1-1C422A5C4434}" = Suite Shared Configuration CS4
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{8FFBAAD7-E582-4BF6-AC91-9F53FC98006F}" = AVG 2015
"{90120000-0016-0405-0000-0000000FF1CE}" = Microsoft Office Excel MUI (Czech) 2007
"{90120000-0016-0405-0000-0000000FF1CE}_HOMESTUDENTR_{3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0018-0405-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Czech) 2007
"{90120000-0018-0405-0000-0000000FF1CE}_HOMESTUDENTR_{3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-001B-0405-0000-0000000FF1CE}" = Microsoft Office Word MUI (Czech) 2007
"{90120000-001B-0405-0000-0000000FF1CE}_HOMESTUDENTR_{3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-001F-0405-0000-0000000FF1CE}" = Microsoft Office Proof (Czech) 2007
"{90120000-001F-0405-0000-0000000FF1CE}_HOMESTUDENTR_{0B7A4B67-2A38-42B1-9857-662FAB361E08}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
"{90120000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2007
"{90120000-001F-0407-0000-0000000FF1CE}_HOMESTUDENTR_{928D7B99-2BEA-49F9-83B8-20FA57860643}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
"{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007
"{90120000-001F-0409-0000-0000000FF1CE}_HOMESTUDENTR_{1FF96026-A04A-4C3E-B50A-BB7022654D0F}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
"{90120000-001F-041B-0000-0000000FF1CE}" = Microsoft Office Proof (Slovak) 2007
"{90120000-001F-041B-0000-0000000FF1CE}_HOMESTUDENTR_{FDF9A959-241A-4662-A8DE-7DED9C22D160}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
"{90120000-002C-0405-0000-0000000FF1CE}" = Microsoft Office Proofing (Czech) 2007
"{90120000-006E-0405-0000-0000000FF1CE}" = Microsoft Office Shared MUI (Czech) 2007
"{90120000-006E-0405-0000-0000000FF1CE}_HOMESTUDENTR_{A0AAD4D5-9F9C-49BB-AB64-0FD4695424E8}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-00A1-0405-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (Czech) 2007
"{90120000-00A1-0405-0000-0000000FF1CE}_HOMESTUDENTR_{3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90140000-2005-0000-0000-0000000FF1CE}" = Microsoft Office File Validation Add-In
"{91120000-002F-0000-0000-0000000FF1CE}" = Microsoft Office Home and Student 2007
"{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{931AB7EA-3656-4BB7-864D-022B09E3DD67}" = Adobe Linguistics CS4
"{94D398EB-D2FD-4FD1-B8C4-592635E8A191}" = Adobe CMaps CS4
"{986E003C-E56D-5A47-110E-D3C81F0E8535}" = Microsoft DVD App Installation for Microsoft.WindowsDVDPlayer_2019.6.11761.0_neutral_~_8wekyb3d8bbwe (x86)
"{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}" = Visual Studio 2012 x86 Redistributables
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
"{A6A5590A-0FF9-4FD9-AD8D-17B5BCBE06F5}" = MAGIX Music Maker 2014 Premium (Visuals)
"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
"{AC65361C-7AD1-4811-834A-6AEF497F9927}" = Microsoft WorldWide Telescope
"{AC76BA86-0804-1033-1959-001824147215}" = Adobe Refresh Manager
"{AC76BA86-7AD7-1029-7B44-AC0F074E4100}" = Adobe Acrobat Reader DC - Czech
"{B29AD377-CC12-490A-A480-1452337C618D}" = Connect
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision" = NVIDIA Ovladač 3D Vision 355.60
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel" = Ovládací panel NVIDIA 355.60
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver" = NVIDIA Ovladače grafiky 355.60
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience" = NVIDIA GeForce Experience 2.5.12.11
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB" = NVIDIA Ovladač řídící jednotky 3D Vision 352.65
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX" = NVIDIA Systémový software PhysX 9.15.0428
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update" = Aktualizace NVIDIA 2.5.12.11
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.LEDVisualizer" = NVIDIA LED Visualizer 1.0
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.NvStreamSrv" = SHIELD Streaming
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GfExperienceService" = NVIDIA GeForce Experience Service
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver" = NVIDIA Ovladač HD audia 1.3.34.3
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer" = NVIDIA Install Application
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Network.Service" = NVIDIA Network Service
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_ShadowPlay" = NVIDIA ShadowPlay 2.5.12.11
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_ShieldWirelessController" = SHIELD Wireless Controller Driver
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Update.Core" = NVIDIA Update Core
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_VirtualAudio.Driver" = NVIDIA Virtual Audio 1.2.30
"{B4477203-41E1-40CE-9B31-1EA0E22E7084}" = Vita 2
"{B5145D63-8F03-40B0-A337-43C005438B5B}" = Vita Power Guitar
"{B65BA85C-0A27-4BC0-A22D-A66F0E5B9494}" = Adobe Photoshop CS4
"{B7050CBDB2504B34BC2A9CA0A692CC29}" = DivX Web Player
"{B807FEBE-E253-4B7E-B23F-364873478065}" = MAGIX Music Maker 2014 Premium (Demo songs)
"{BB4E33EC-8181-4685-96F7-8554293DEC6A}" = Adobe Output Module
"{BF307EDA-A176-4D83-9775-D337810CF7A7}" = Cookienator
"{C27BC2A2-30DD-4014-B22E-63EB0DB572F9}" = Logitech Webcam Software
"{C52E3EC1-048C-45E1-8D53-10B0C6509683}" = Adobe Default Language CS4
"{C7340571-7773-4A8C-9EBC-4E4243B38C76}" = Microsoft XML Parser
"{CC75AB5C-2110-4A7F-AF52-708680D22FE8}" = Photoshop Camera Raw
"{CD49361E-3FE6-457E-90A1-9C59E29B5D02}" = Java DB 10.3.1.4
"{E4848436-0345-47E2-B648-8B522FCDA623}" = Adobe Photoshop CS4
"{F0E64E2E-3A60-40D8-A55D-92F6831875DA}" = Adobe Search for Help
"{F333A33D-125C-32A2-8DCE-5C5D14231E27}" = Visual C++ 2008 x86 Runtime - (v9.0.30729)
"{F333A33D-125C-32A2-8DCE-5C5D14231E27}.vc_x86runtime_30729_01" = Visual C++ 2008 x86 Runtime - v9.0.30729.01
"{F8EF2B3F-C345-4F20-8FE4-791A20333CD5}" = Adobe ExtendScript Toolkit CS4
"{F93C84A6-0DC6-42AF-89FA-776F7C377353}" = Adobe PDF Library Files CS4
"{FA28DEC6-ECC8-4787-B551-93F0C2778579}" = Vita Electric Piano
"{FCDD51BB-CAD0-4BB1-B7DF-CE86D1032794}" = Adobe Fonts All
"{FD8E178D-8B4E-42DA-B434-EFF270329B1C}" = COMODO Internet Security
"504244733D18C8F63FF584AEB290E3904E791693" = Balíček ovladače systému Windows - Nokia pccsmcfd (08/22/2008 7.0.0.0)
"7-Zip" = 7-Zip 9.20
"Adobe AIR" = Adobe AIR
"Adobe Flash Player NPAPI" = Adobe Flash Player 18 NPAPI
"Adobe Shockwave Player" = Adobe Shockwave Player 12.1
"Adobe_faf656ef605427ee2f42989c3ad31b8" = Adobe Photoshop CS4
"Audacity 1.3 Beta (Unicode)_is1" = Audacity 1.3.12 (Unicode)
"AudioCS" = Creative Audio Control Panel
"AVG" = AVG 2015
"Avidemux 2.6" = Avidemux 2.6 (32-bit)
"BitTorrent" = BitTorrent
"CCleaner" = CCleaner
"CloneSpy" = CloneSpy 2.63
"com.adobe.amp.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1" = Adobe Media Player
"Creative Software AutoUpdate" = Creative Software AutoUpdate
"Creative Sound Blaster Properties" = Creative Sound Blaster Properties
"CrystalDiskInfo_is1" = CrystalDiskInfo 6.5.2
"DAEMON Tools Lite" = DAEMON Tools Lite
"Defraggler" = Defraggler
"Ear Test_is1" = Ear Test 1.00
"EVEREST Home Edition_is1" = EVEREST Home Edition v2.20
"Fences" = Fences
"File Shredder_is1" = File Shredder 2.5
"FormatFactory" = FormatFactory 3.3.5.0
"Freemake Video Converter_is1" = Freemake Video Converter verze 4.1.3
"Freemake Video Downloader_is1" = Freemake Video Downloader
"Google Chrome" = Google Chrome
"HOMESTUDENTR" = Microsoft Office Home and Student 2007
"KLiteCodecPack_is1" = K-Lite Codec Pack 6.0.4 (Basic)
"Logitech Vid" = Logitech Vid HD
"Magic FLAC to MP3 Converter_is1" = Magic FLAC to MP3 Converter 3.71
"MAGIX_{5C375A31-ED71-4CA0-91E0-8FA47E72D56D}" = MAGIX Speed burnR (MSI)
"MAGIX_GlobalContent" = MAGIX Content and Soundpools
"Malwarebytes Anti-Malware_is1" = Malwarebytes Anti-Malware verze 2.1.8.1057
"MediaInfo" = MediaInfo 0.7.73
"Mozilla Firefox 40.0.2 (x86 cs)" = Mozilla Firefox 40.0.2 (x86 cs)
"MozillaMaintenanceService" = Mozilla Maintenance Service
"Music NFO Builder_is1" = Music NFO Builder v1.20
"MX.{088A4B09-8FB2-48D0-932A-7F90BE050543}" = MAGIX Music Maker 2014 Premium
"MX.{4BA5297E-60A6-4F18-9AAC-25A878C4E38C}" = MAGIX Music Maker 2014 Premium (Introductory videos)
"MX.{773A4DDC-3B52-42C7-8B7A-52369B9A390B}" = MAGIX Music Maker 2014 Premium (Synthesizer and effects)
"MX.{A6A5590A-0FF9-4FD9-AD8D-17B5BCBE06F5}" = MAGIX Music Maker 2014 Premium (Visuals)
"MX.{B807FEBE-E253-4B7E-B23F-364873478065}" = MAGIX Music Maker 2014 Premium (Demo songs)
"nbi-nb-base-7.3.0.0.201302132200" = NetBeans IDE 7.3
"NVIDIAStereo" = NVIDIA Stereoscopic 3D Driver
"OpenAL" = OpenAL
"Parom.TV" = Parom.TV player
"PatchBeam_is1" = PatchBeam v1.10
"PSPad editor_is1" = PSPad editor
"PunkBusterSvc" = PunkBuster Services
"Ramdisk" = Ramdisk
"Recuva" = Recuva
"Scorpions WinCheater 2.07 (s databází 165)_is1" = Scorpions WinCheater
"Sigil_is1" = Sigil 0.7.4
"Smart Tests" = Smart Tests
"SQLite3 manager LITE_is1" = SQLite3 manager 5.1 lite, release 280207
"Stellarium_is1" = Stellarium 0.11.4
"TapinRadio_is1" = TapinRadio 1.18
"Totalcmd" = Total Commander (Remove or Repair)
"TS Dějepis" = TS Dějepis
"TS Dějepis (plná instalace)" = TS Dějepis (plná instalace)
"TVUPlayer" = TVUPlayer 2.5.3.1
"Uc_heb a Hebrák_is1" = Uc_heb a Hebrák 2.31
"VisiPics_is1" = VisiPics V1.30
"VLC media player" = VLC media player
"Winamp" = Winamp
"WinDjView" = WinDjView 2.1
"WinPcapInst" = WinPcap 4.1.2
"Word Manager" = Word Manager
"yBook_is1" = yBook
"YeaChess" = Yea Chess
"ZonerPhotoStudio12_CZ_is1" = Zoner Photo Studio 12

========== HKEY_CURRENT_USER Uninstall List ==========

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"9ead8755c3c1fd40" = Ucitilek
"BitTorrent" = BitTorrent
"ChromePlus" = ChromePlus
"Spotify" = Spotify
"Thumbnail me 3.0" = Thumbnail me 3.0

========== Last 20 Event Log Errors ==========

[ Application Events ]
Error - 14.08.2015 07:53:30 | Computer Name = intel | Source = SideBySide | ID = 16842785
Description = Generování kontextu aktivace pro H:\Windows\System32\rasphone.exe
se nezdařilo. Závislé sestavení Microsoft.Windows.Common-Controls,language="&#x2a;",processorArchitecture="amd64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"
nelze najít. Podrobnější diagnostické údaje získáte pomocí programu sxstrace.exe.

Error - 14.08.2015 07:53:30 | Computer Name = intel | Source = SideBySide | ID = 16842785
Description = Generování kontextu aktivace pro H:\Windows\System32\rasautou.exe
se nezdařilo. Závislé sestavení Microsoft.Windows.Common-Controls,language="&#x2a;",processorArchitecture="amd64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"
nelze najít. Podrobnější diagnostické údaje získáte pomocí programu sxstrace.exe.

Error - 14.08.2015 07:53:31 | Computer Name = intel | Source = SideBySide | ID = 16842785
Description = Generování kontextu aktivace pro H:\Windows\System32\printui.exe se
nezdařilo. Závislé sestavení Microsoft.Windows.Common-Controls,processorArchitecture="amd64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"
nelze najít. Podrobnější diagnostické údaje získáte pomocí programu sxstrace.exe.

Error - 14.08.2015 07:53:31 | Computer Name = intel | Source = SideBySide | ID = 16842785
Description = Generování kontextu aktivace pro H:\Windows\System32\rasautou.exe
se nezdařilo. Závislé sestavení Microsoft.Windows.Common-Controls,language="&#x2a;",processorArchitecture="amd64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"
nelze najít. Podrobnější diagnostické údaje získáte pomocí programu sxstrace.exe.

Error - 14.08.2015 07:53:32 | Computer Name = intel | Source = SideBySide | ID = 16842785
Description = Generování kontextu aktivace pro H:\Windows\System32\rasautou.exe
se nezdařilo. Závislé sestavení Microsoft.Windows.Common-Controls,language="&#x2a;",processorArchitecture="amd64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"
nelze najít. Podrobnější diagnostické údaje získáte pomocí programu sxstrace.exe.

Error - 14.08.2015 07:53:32 | Computer Name = intel | Source = SideBySide | ID = 16842785
Description = Generování kontextu aktivace pro H:\Windows\System32\rasphone.exe
se nezdařilo. Závislé sestavení Microsoft.Windows.Common-Controls,language="&#x2a;",processorArchitecture="amd64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"
nelze najít. Podrobnější diagnostické údaje získáte pomocí programu sxstrace.exe.

Error - 14.08.2015 07:53:34 | Computer Name = intel | Source = SideBySide | ID = 16842785
Description = Generování kontextu aktivace pro H:\Windows\System32\sdclt.exe se
nezdařilo. Závislé sestavení Microsoft.Windows.Common-Controls,language="&#x2a;",processorArchitecture="amd64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"
nelze najít. Podrobnější diagnostické údaje získáte pomocí programu sxstrace.exe.

Error - 15.08.2015 00:44:30 | Computer Name = intel | Source = Application Error | ID = 1000
Description = Název chybující aplikace: OHub.exe, verze: 16.0.6106.2350, časové
razítko: 0x55c40ea5 Název chybujícího modulu: ntdll.dll, verze: 10.0.10240.16430,
časové razítko: 0x55c599e6 Kód výjimky: 0xc0000374 Posun chyby: 0x000e1267 ID chybujícího
procesu: 0x1f04 Čas spuštění chybující aplikace: 0x01d0d71508028ec7 Cesta k chybující
aplikaci: C:\Program Files\WindowsApps\Microsoft.MicrosoftOfficeHub_17.6106.23501.0_x86__8wekyb3d8bbwe\OHub.exe
Cesta
k chybujícímu modulu: C:\WINDOWS\SYSTEM32\ntdll.dll ID zprávy: a1a4b0ab-5eb0-4e1a-85de-b0e2bf99e902
Úplný
název chybujícího balíčku: Microsoft.MicrosoftOfficeHub_17.6106.23501.0_x86__8wekyb3d8bbwe
ID
aplikace související s chybujícím balíčkem: Microsoft.MicrosoftOfficeHub

Error - 15.08.2015 01:42:18 | Computer Name = intel | Source = Application Error | ID = 1000
Description = Název chybující aplikace: AUDIODG.EXE, verze: 10.0.10240.16384, časové
razítko: 0x559f3cf8 Název chybujícího modulu: P17APO32.dll, verze: 1.0.6.0, časové
razítko: 0x49de0d5a Kód výjimky: 0xc0000005 Posun chyby: 0x0001b8d5 ID chybujícího
procesu: 0x1604 Čas spuštění chybující aplikace: 0x01d0d71d019aa4a1 Cesta k chybující
aplikaci: C:\WINDOWS\system32\AUDIODG.EXE Cesta k chybujícímu modulu: C:\WINDOWS\system32\P17APO32.dll
ID
zprávy: bf389e1f-1282-4f02-a6d0-00e0a6df5ce5 Úplný název chybujícího balíčku: ID
aplikace související s chybujícím balíčkem:

Error - 15.08.2015 01:54:27 | Computer Name = intel | Source = Application Error | ID = 1000
Description = Název chybující aplikace: OHub.exe, verze: 16.0.6106.2350, časové
razítko: 0x55c40ea5 Název chybujícího modulu: ntdll.dll, verze: 10.0.10240.16430,
časové razítko: 0x55c599e6 Kód výjimky: 0xc0000374 Posun chyby: 0x000e1267 ID chybujícího
procesu: 0x1e98 Čas spuštění chybující aplikace: 0x01d0d71ed1f28250 Cesta k chybující
aplikaci: C:\Program Files\WindowsApps\Microsoft.MicrosoftOfficeHub_17.6106.23501.0_x86__8wekyb3d8bbwe\OHub.exe
Cesta
k chybujícímu modulu: C:\WINDOWS\SYSTEM32\ntdll.dll ID zprávy: 3aa9618d-ae3d-4506-b76d-e87f0128bdbc
Úplný
název chybujícího balíčku: Microsoft.MicrosoftOfficeHub_17.6106.23501.0_x86__8wekyb3d8bbwe
ID
aplikace související s chybujícím balíčkem: Microsoft.MicrosoftOfficeHub

[ System Events ]
Error - 14.08.2015 06:06:30 | Computer Name = intel | Source = Service Control Manager | ID = 7034
Description = Služba AVG Firewall byla neočekávaně ukončena. Tento stav nastal již
1krát.

Error - 14.08.2015 06:06:58 | Computer Name = intel | Source = Service Control Manager | ID = 7032
Description = Správce služeb se pokusil o opravnou akci (Restartovat službu) po
nečekaném ukončení služby Windows Search, ale tato akce selhala kvůli následující
chybě: %%1056

Error - 14.08.2015 06:07:03 | Computer Name = intel | Source = Service Control Manager | ID = 7031
Description = Služba Hostitel synchronizace_Session1 byla nečekaně ukončena. Stalo
se to 1 krát. Následující opravná akce bude spuštěna za 10000 milisekund: Restartovat
službu.

Error - 14.08.2015 06:09:15 | Computer Name = intel | Source = NETLOGON | ID = 3095
Description = Tento počítač je nakonfigurován jako člen pracovní skupiny, nikoliv
jako člen domény. Přihlašovací služba Netlogon nepotřebuje být spuštěna v této konfiguraci.

Error - 14.08.2015 06:09:17 | Computer Name = intel | Source = Service Control Manager | ID = 7001
Description = Služba Adaptér naslouchání Net.Tcp závisí na službě Služba sdílení
portů Net.Tcp, která neuspěla při spuštění v důsledku následující chyby: %%1058

Error - 14.08.2015 09:57:25 | Computer Name = intel | Source = Service Control Manager | ID = 7031
Description = Služba Hostitel synchronizace_Session1 byla nečekaně ukončena. Stalo
se to 1 krát. Následující opravná akce bude spuštěna za 10000 milisekund: Restartovat
službu.

Error - 15.08.2015 01:39:16 | Computer Name = intel | Source = EventLog | ID = 6008
Description = Předchozí vypnutí systému (7:24:49, ?15.?08.?2015) bylo neočekávané.

Error - 15.08.2015 01:39:18 | Computer Name = intel | Source = NETLOGON | ID = 3095
Description = Tento počítač je nakonfigurován jako člen pracovní skupiny, nikoliv
jako člen domény. Přihlašovací služba Netlogon nepotřebuje být spuštěna v této konfiguraci.

Error - 15.08.2015 01:39:19 | Computer Name = intel | Source = Service Control Manager | ID = 7001
Description = Služba Adaptér naslouchání Net.Tcp závisí na službě Služba sdílení
portů Net.Tcp, která neuspěla při spuštění v důsledku následující chyby: %%1058

Error - 15.08.2015 01:55:16 | Computer Name = intel | Source = DCOM | ID = 10016
Description =


< End of report >
Keybord not present. Press Enter to continue

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43298
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod jaro3 » 15 srp 2015 18:42

Odinstaluj:
Java(TM) SE Development Kit 6 Update 5
Java SE Development Kit 7 Update 15



Poklepej na ikonu OTL na ploše.Ujisti se , že máš všechny ostatní aplikace a prohlížeče zavřeny.
Pod Vlastní skenování/opravy do okénka vlož následující text, zobrazený zeleně:

Kód: Vybrat vše

:OTL
PRC - C:\WINDOWS\explorer.exe (Microsoft Corporation)
PRC - C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)
DRV - (wfpcapture) -- C:\WINDOWS\System32\drivers\wfpcapture.sys File not found
IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKCU\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC
FF - user.js - File not found
[2015.05.15 20:21:35 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Petr\AppData\Roaming\Mozilla\Extensions
[2015.07.23 13:44:56 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\0khh5aex.default-1427958703254\extensions
[2015.08.15 09:13:13 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\o8mlkunx.default-1439620301952\extensions
[2015.07.23 21:42:51 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Petr\AppData\Roaming\Mozilla\SeaMonkey\Profiles\s23qpowu.default\extensions
[2015.08.15 09:13:13 | 000,553,637 | ---- | M] () (No name found) -- C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\o8mlkunx.default-1439620301952\extensions\ClassicThemeRestorer@ArisT2Noia4dev.xpi
[2015.08.15 09:08:33 | 000,120,605 | ---- | M] () (No name found) -- C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\o8mlkunx.default-1439620301952\extensions\elemhidehelper@adblockplus.org.xpi
[2015.08.15 09:07:11 | 001,482,019 | ---- | M] () (No name found) -- C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\o8mlkunx.default-1439620301952\extensions\firefox@ghostery.com.xpi
[2015.08.15 09:13:13 | 000,078,016 | ---- | M] () (No name found) -- C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\o8mlkunx.default-1439620301952\extensions\Restart-My-Fox@8pecxstudios.com.xpi
[2015.08.15 09:13:13 | 000,071,075 | ---- | M] () (No name found) -- C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\o8mlkunx.default-1439620301952\extensions\save2read@konstantin.plotnikov.xpi
[2015.08.15 09:13:13 | 000,207,861 | ---- | M] () (No name found) -- C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\o8mlkunx.default-1439620301952\extensions\thumbnailZoom@dadler.github.com.xpi
[2015.08.15 09:07:01 | 000,532,238 | ---- | M] () (No name found) -- C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\o8mlkunx.default-1439620301952\extensions\{1018e4d6-728f-4b20-ad56-37578a4de76b}.xpi
[2015.08.15 09:13:13 | 000,561,726 | ---- | M] () (No name found) -- C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\o8mlkunx.default-1439620301952\extensions\{73a6fe31-595d-460b-a920-fcc0f8843232}.xpi
[2015.08.15 09:06:08 | 000,963,213 | ---- | M] () (No name found) -- C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\o8mlkunx.default-1439620301952\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi
[2015.08.15 09:13:12 | 000,864,558 | ---- | M] () (No name found) -- C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\o8mlkunx.default-1439620301952\extensions\{dc572301-7619-498c-a57d-39143191b318}.xpi
[2015.08.15 09:13:12 | 000,148,138 | ---- | M] () (No name found) -- C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\o8mlkunx.default-1439620301952\extensions\{F8A55C97-3DB6-4961-A81D-0DE0080E53CB}.xpi
[2015.08.14 08:51:54 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\browser\extensions
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.

:Files
C:\WINDOWS\System32\*.tmp
C:\WINDOWS\*.tmp
C:\WINDOWS\system32\*.tmp.dll
C:\WINDOWS\System32\dllcache\*.tmp
C:\WINDOWS\system32\SET*.tmp
C:\WINDOWS\system32\DUMP*.tmp
c:\windows\Tasks\*.job /s
C:\*.tmp
C:\WINDOWS\System32\drivers\*.tmp
C:\Program Files\*.tmp
C:\Documents and Settings\All Users\Data aplikací\*.tmp
C:\WINDOWS\System32\drivers\inspect.sys

:Reg
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{FD8E178D-8B4E-42DA-B434-EFF270329B1C}" =-

:Commands
[purity]
[emptytemp]
[start explorer]
[Reboot]


Poté klikni nahoře na Opravit. Nech program nerušeně běžet, na konci se provede restart PC.
Po restartu se objeví log , prosím zkopíruj sem celý jeho obsah.

V možnostech složky si povol zobrazování skrytých souborů a složek+ odškrtni zatržítko skrýt chráněné soubory operačního systému

Toto otestuj na Virustotal
C:\WINDOWS\System32\efsext.dll
C:\WINDOWS\UNWISE.EXE

Klikni vpravo od okénka na Vybrat a v Exploreru najdi požadovaný soubor v Tvém PC. Označ ho myší a klikni na Otevřít , poté klikni na Send File. Pokud už byl soubor testován , objeví se okno ve kterém klikni na Reanalyze. Soubor se začne postupně testovat více antivirovými programy. Až skončí test posledního antiviru , objeví se nahoře result a červeně počet nákaz , např. 0/43 , nebo 1/43. Pak zkopíruj myší odkaz na tuto stránku a vlož ji do svého příspěvku.

Nebo na:
http://www.virscan.org/
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

Uživatelský avatar
akiller
Level 3
Level 3
Příspěvky: 558
Registrován: listopad 10
Bydliště: Nothingtown
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod akiller » 15 srp 2015 20:20

All processes killed
========== OTL ==========
No active process named explorer.exe was found!
No active process named firefox.exe was found!
Service wfpcapture stopped successfully!
Service wfpcapture deleted successfully!
File C:\WINDOWS\System32\drivers\wfpcapture.sys File not found not found.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope| /E : value set successfully!
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ not found.
C:\Users\Petr\AppData\Roaming\Mozilla\Extensions folder moved successfully.
C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\0khh5aex.default-1427958703254\extensions folder moved successfully.
C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\o8mlkunx.default-1439620301952\extensions\{ea614400-e918-4741-9a97-7a972ff7c30b}\modules\JAK folder moved successfully.
C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\o8mlkunx.default-1439620301952\extensions\{ea614400-e918-4741-9a97-7a972ff7c30b}\modules\components\subclasses\email folder moved successfully.
C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\o8mlkunx.default-1439620301952\extensions\{ea614400-e918-4741-9a97-7a972ff7c30b}\modules\components\subclasses folder moved successfully.
C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\o8mlkunx.default-1439620301952\extensions\{ea614400-e918-4741-9a97-7a972ff7c30b}\modules\components folder moved successfully.
C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\o8mlkunx.default-1439620301952\extensions\{ea614400-e918-4741-9a97-7a972ff7c30b}\modules\classes folder moved successfully.
C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\o8mlkunx.default-1439620301952\extensions\{ea614400-e918-4741-9a97-7a972ff7c30b}\modules folder moved successfully.
C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\o8mlkunx.default-1439620301952\extensions\{ea614400-e918-4741-9a97-7a972ff7c30b}\META-INF folder moved successfully.
C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\o8mlkunx.default-1439620301952\extensions\{ea614400-e918-4741-9a97-7a972ff7c30b}\chrome folder moved successfully.
C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\o8mlkunx.default-1439620301952\extensions\{ea614400-e918-4741-9a97-7a972ff7c30b} folder moved successfully.
C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\o8mlkunx.default-1439620301952\extensions\{E173B749-DB5B-4fd2-BA0E-94ECEA0CA55B}\META-INF folder moved successfully.
C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\o8mlkunx.default-1439620301952\extensions\{E173B749-DB5B-4fd2-BA0E-94ECEA0CA55B}\defaults\preferences folder moved successfully.
C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\o8mlkunx.default-1439620301952\extensions\{E173B749-DB5B-4fd2-BA0E-94ECEA0CA55B}\defaults folder moved successfully.
C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\o8mlkunx.default-1439620301952\extensions\{E173B749-DB5B-4fd2-BA0E-94ECEA0CA55B}\components folder moved successfully.
C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\o8mlkunx.default-1439620301952\extensions\{E173B749-DB5B-4fd2-BA0E-94ECEA0CA55B}\chrome\skin\icons folder moved successfully.
C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\o8mlkunx.default-1439620301952\extensions\{E173B749-DB5B-4fd2-BA0E-94ECEA0CA55B}\chrome\skin folder moved successfully.
C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\o8mlkunx.default-1439620301952\extensions\{E173B749-DB5B-4fd2-BA0E-94ECEA0CA55B}\chrome\locale\en-US folder moved successfully.
C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\o8mlkunx.default-1439620301952\extensions\{E173B749-DB5B-4fd2-BA0E-94ECEA0CA55B}\chrome\locale folder moved successfully.
C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\o8mlkunx.default-1439620301952\extensions\{E173B749-DB5B-4fd2-BA0E-94ECEA0CA55B}\chrome\content folder moved successfully.
C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\o8mlkunx.default-1439620301952\extensions\{E173B749-DB5B-4fd2-BA0E-94ECEA0CA55B}\chrome folder moved successfully.
C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\o8mlkunx.default-1439620301952\extensions\{E173B749-DB5B-4fd2-BA0E-94ECEA0CA55B} folder moved successfully.
C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\o8mlkunx.default-1439620301952\extensions\cs@dictionaries.addons.mozilla.org\dictionaries folder moved successfully.
C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\o8mlkunx.default-1439620301952\extensions\cs@dictionaries.addons.mozilla.org folder moved successfully.
C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\o8mlkunx.default-1439620301952\extensions folder moved successfully.
C:\Users\Petr\AppData\Roaming\Mozilla\SeaMonkey\Profiles\s23qpowu.default\extensions folder moved successfully.
File C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\o8mlkunx.default-1439620301952\extensions\ClassicThemeRestorer@ArisT2Noia4dev.xpi not found.
File C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\o8mlkunx.default-1439620301952\extensions\elemhidehelper@adblockplus.org.xpi not found.
File C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\o8mlkunx.default-1439620301952\extensions\firefox@ghostery.com.xpi not found.
File C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\o8mlkunx.default-1439620301952\extensions\Restart-My-Fox@8pecxstudios.com.xpi not found.
File C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\o8mlkunx.default-1439620301952\extensions\save2read@konstantin.plotnikov.xpi not found.
File C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\o8mlkunx.default-1439620301952\extensions\thumbnailZoom@dadler.github.com.xpi not found.
File C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\o8mlkunx.default-1439620301952\extensions\{1018e4d6-728f-4b20-ad56-37578a4de76b}.xpi not found.
File C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\o8mlkunx.default-1439620301952\extensions\{73a6fe31-595d-460b-a920-fcc0f8843232}.xpi not found.
File C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\o8mlkunx.default-1439620301952\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi not found.
File C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\o8mlkunx.default-1439620301952\extensions\{dc572301-7619-498c-a57d-39143191b318}.xpi not found.
File C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\o8mlkunx.default-1439620301952\extensions\{F8A55C97-3DB6-4961-A81D-0DE0080E53CB}.xpi not found.
C:\Program Files\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} folder moved successfully.
C:\Program Files\Mozilla Firefox\browser\extensions folder moved successfully.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad\\WebCheck deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E6FB5E20-DE35-11CF-9C87-00AA005127ED}\ not found.
========== FILES ==========
File\Folder C:\WINDOWS\System32\*.tmp not found.
File\Folder C:\WINDOWS\*.tmp not found.
File\Folder C:\WINDOWS\system32\*.tmp.dll not found.
File\Folder C:\WINDOWS\System32\dllcache\*.tmp not found.
File\Folder C:\WINDOWS\system32\SET*.tmp not found.
File\Folder C:\WINDOWS\system32\DUMP*.tmp not found.
c:\windows\Tasks\Adobe Flash Player Updater.job moved successfully.
c:\windows\Tasks\GoogleUpdateTaskMachineCore.job moved successfully.
c:\windows\Tasks\GoogleUpdateTaskMachineUA.job moved successfully.
File\Folder C:\*.tmp not found.
File\Folder C:\WINDOWS\System32\drivers\*.tmp not found.
File\Folder C:\Program Files\*.tmp not found.
File\Folder C:\Documents and Settings\All Users\Data aplikací\*.tmp not found.
C:\WINDOWS\System32\drivers\inspect.sys moved successfully.
========== REGISTRY ==========
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\\{FD8E178D-8B4E-42DA-B434-EFF270329B1C} not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FD8E178D-8B4E-42DA-B434-EFF270329B1C}\ not found.
========== COMMANDS ==========

[EMPTYTEMP]

User: All Users

User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: Default.migrated

User: Petr
->Temp folder emptied: 18590663 bytes
->Temporary Internet Files folder emptied: 5243161 bytes
->Java cache emptied: 0 bytes
->FireFox cache emptied: 162446662 bytes
->Google Chrome cache emptied: 0 bytes
->Flash cache emptied: 523 bytes

User: Public

%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 23314 bytes
RecycleBin emptied: 0 bytes

Total Files Cleaned = 178,00 mb


OTL by OldTimer - Version 3.2.69.0 log created on 08152015_201116

Files\Folders moved on Reboot...

PendingFileRenameOperations files...

Registry entries deleted on Reboot...
Keybord not present. Press Enter to continue

Uživatelský avatar
akiller
Level 3
Level 3
Příspěvky: 558
Registrován: listopad 10
Bydliště: Nothingtown
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod akiller » 15 srp 2015 20:29

Keybord not present. Press Enter to continue

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43298
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod jaro3 » 16 srp 2015 08:58

Spusť OTL a klikni na Vyčisti.

Pokud problémy přetrvávají , bude se jednat o problém HW. Viry vylučuji.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra


Zpět na “HiJackThis”

Kdo je online

Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 77 hostů