[2016.06.07 00:42:29 | 000,230,400 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\DAFWSD.dll
[2016.06.07 00:42:29 | 000,219,648 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\VEEventDispatcher.dll
[2016.06.07 00:42:29 | 000,217,440 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AppxAllUserStore.dll
[2016.06.07 00:42:29 | 000,215,040 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\aepic.dll
[2016.06.07 00:42:29 | 000,210,432 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wcmcsp.dll
[2016.06.07 00:42:29 | 000,209,408 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\storewuauth.dll
[2016.06.07 00:42:29 | 000,199,168 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\InstallAgent.exe
[2016.06.07 00:42:29 | 000,192,000 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\provisioningcsp.dll
[2016.06.07 00:42:29 | 000,176,640 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mdmregistration.dll
[2016.06.07 00:42:29 | 000,175,616 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.UI.Core.TextInput.dll
[2016.06.07 00:42:29 | 000,174,592 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\easwrt.dll
[2016.06.07 00:42:29 | 000,169,472 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mdmmigrator.dll
[2016.06.07 00:42:29 | 000,166,400 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SubscriptionMgr.dll
[2016.06.07 00:42:29 | 000,162,816 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\enrollmentapi.dll
[2016.06.07 00:42:29 | 000,161,280 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\InstallAgent.exe
[2016.06.07 00:42:29 | 000,151,040 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\VEStoreEventHandlers.dll
[2016.06.07 00:42:29 | 000,147,456 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mtxoci.dll
[2016.06.07 00:42:29 | 000,134,656 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wificonnapi.dll
[2016.06.07 00:42:29 | 000,133,632 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.UI.Core.TextInput.dll
[2016.06.07 00:42:29 | 000,128,512 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dmcsps.dll
[2016.06.07 00:42:29 | 000,127,488 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\VEDataLayerHelpers.dll
[2016.06.07 00:42:29 | 000,120,320 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MapsBtSvc.dll
[2016.06.07 00:42:29 | 000,116,224 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\FontProvider.dll
[2016.06.07 00:42:29 | 000,111,616 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\updatepolicy.dll
[2016.06.07 00:42:29 | 000,108,544 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\InputLocaleManager.dll
[2016.06.07 00:42:29 | 000,100,232 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\omadmapi.dll
[2016.06.07 00:42:29 | 000,095,072 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\sdport.sys
[2016.06.07 00:42:29 | 000,092,352 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\acmigration.dll
[2016.06.07 00:42:29 | 000,092,160 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SensorsNativeApi.V2.dll
[2016.06.07 00:42:29 | 000,092,160 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\policymanagerprecheck.dll
[2016.06.07 00:42:29 | 000,091,136 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\browserbroker.dll
[2016.06.07 00:42:29 | 000,089,600 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\NFCProvisioningPlugin.dll
[2016.06.07 00:42:29 | 000,089,088 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MapsCSP.dll
[2016.06.07 00:42:29 | 000,088,576 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AppxSysprep.dll
[2016.06.07 00:42:29 | 000,087,552 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\filecrypt.sys
[2016.06.07 00:42:29 | 000,087,040 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MDMAppInstaller.exe
[2016.06.07 00:42:29 | 000,087,040 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MapsBtSvc.dll
[2016.06.07 00:42:29 | 000,086,528 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AppCapture.dll
[2016.06.07 00:42:29 | 000,084,480 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\VEDataLayerHelpers.dll
[2016.06.07 00:42:29 | 000,083,456 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\InputLocaleManager.dll
[2016.06.07 00:42:29 | 000,081,144 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\netapi32.dll
[2016.06.07 00:42:29 | 000,080,384 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\SensorsNativeApi.V2.dll
[2016.06.07 00:42:29 | 000,076,800 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\NetCfgNotifyObjectHost.exe
[2016.06.07 00:42:29 | 000,076,288 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ngcpopkeysrv.dll
[2016.06.07 00:42:29 | 000,074,752 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MosStorage.dll
[2016.06.07 00:42:29 | 000,074,424 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\easinvoker.exe
[2016.06.07 00:42:29 | 000,072,704 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\moshost.dll
[2016.06.07 00:42:29 | 000,069,632 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wininetlui.dll
[2016.06.07 00:42:29 | 000,069,632 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\EnterpriseDesktopAppMgmtCSP.dll
[2016.06.07 00:42:29 | 000,066,560 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MosHostClient.dll
[2016.06.07 00:42:29 | 000,059,904 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MosStorage.dll
[2016.06.07 00:42:29 | 000,058,400 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SensorsNativeApi.dll
[2016.06.07 00:42:29 | 000,051,128 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\SensorsNativeApi.dll
[2016.06.07 00:42:29 | 000,050,176 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MosHostClient.dll
[2016.06.07 00:42:29 | 000,048,128 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wups.dll
[2016.06.07 00:42:29 | 000,047,104 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\hmkd.dll
[2016.06.07 00:42:29 | 000,046,784 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\CompatTelRunner.exe
[2016.06.07 00:42:29 | 000,043,520 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\browcli.dll
[2016.06.07 00:42:29 | 000,034,816 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dmenterprisediagnostics.dll
[2016.06.07 00:42:29 | 000,033,280 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wuautoappupdate.dll
[2016.06.07 00:42:29 | 000,028,672 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mapsupdatetask.dll
[2016.06.07 00:42:29 | 000,027,648 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\LicenseManagerShellext.exe
[2016.06.07 00:42:29 | 000,026,408 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wuauclt.exe
[2016.06.07 00:42:29 | 000,002,186 | ---- | M] () -- C:\WINDOWS\SysNative\AppxProvisioning.xml
[2016.06.07 00:42:27 | 016,984,576 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.UI.Xaml.dll
[2016.06.07 00:42:27 | 013,018,112 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.UI.Xaml.dll
[2016.06.07 00:42:27 | 006,974,464 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Data.Pdf.dll
[2016.06.07 00:42:27 | 006,605,504 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\windows.storage.dll
[2016.06.07 00:42:27 | 005,324,288 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Data.Pdf.dll
[2016.06.07 00:42:27 | 005,240,960 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\windows.storage.dll
[2016.06.07 00:42:27 | 004,775,424 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\actxprxy.dll
[2016.06.07 00:42:27 | 003,078,144 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\esent.dll
[2016.06.07 00:42:27 | 002,722,816 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\esent.dll
[2016.06.07 00:42:27 | 002,444,288 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\twinui.appcore.dll
[2016.06.07 00:42:27 | 002,000,896 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\twinui.appcore.dll
[2016.06.07 00:42:27 | 001,946,112 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dwmcore.dll
[2016.06.07 00:42:27 | 001,848,072 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\crypt32.dll
[2016.06.07 00:42:27 | 001,626,624 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\dwmcore.dll
[2016.06.07 00:42:27 | 001,444,352 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\SRHInproc.dll
[2016.06.07 00:42:27 | 001,410,560 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Web.Http.dll
[2016.06.07 00:42:27 | 001,395,712 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\UIAutomationCore.dll
[2016.06.07 00:42:27 | 001,388,032 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\lsasrv.dll
[2016.06.07 00:42:27 | 001,239,552 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Devices.Bluetooth.dll
[2016.06.07 00:42:27 | 001,139,712 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\UIAutomationCore.dll
[2016.06.07 00:42:27 | 001,117,184 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Media.Speech.dll
[2016.06.07 00:42:27 | 001,072,128 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Web.Http.dll
[2016.06.07 00:42:27 | 000,984,576 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SettingSyncCore.dll
[2016.06.07 00:42:27 | 000,948,736 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\XblAuthManager.dll
[2016.06.07 00:42:27 | 000,888,320 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Networking.dll
[2016.06.07 00:42:27 | 000,870,400 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\modernexecserver.dll
[2016.06.07 00:42:27 | 000,854,528 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Devices.Bluetooth.dll
[2016.06.07 00:42:27 | 000,848,896 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\samsrv.dll
[2016.06.07 00:42:27 | 000,821,760 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\TokenBroker.dll
[2016.06.07 00:42:27 | 000,799,744 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\SRH.dll
[2016.06.07 00:42:27 | 000,787,456 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Web.dll
[2016.06.07 00:42:27 | 000,765,952 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\fveapi.dll
[2016.06.07 00:42:27 | 000,754,664 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\CoreMessaging.dll
[2016.06.07 00:42:27 | 000,754,176 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\SettingSyncCore.dll
[2016.06.07 00:42:27 | 000,708,608 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Security.Authentication.Web.Core.dll
[2016.06.07 00:42:27 | 000,705,536 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wuapi.dll
[2016.06.07 00:42:27 | 000,688,640 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Networking.Connectivity.dll
[2016.06.07 00:42:27 | 000,686,976 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dnsapi.dll
[2016.06.07 00:42:27 | 000,682,496 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.UI.Input.Inking.dll
[2016.06.07 00:42:27 | 000,647,680 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\jscript.dll
[2016.06.07 00:42:27 | 000,639,488 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\TokenBroker.dll
[2016.06.07 00:42:27 | 000,638,464 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Networking.dll
[2016.06.07 00:42:27 | 000,628,736 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MessagingDataModel2.dll
[2016.06.07 00:42:27 | 000,592,384 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Web.dll
[2016.06.07 00:42:27 | 000,565,600 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SettingSyncHost.exe
[2016.06.07 00:42:27 | 000,550,656 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\directmanipulation.dll
[2016.06.07 00:42:27 | 000,541,304 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\fontdrvhost.exe
[2016.06.07 00:42:27 | 000,534,872 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\USBHUB3.SYS
[2016.06.07 00:42:27 | 000,521,728 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Networking.Connectivity.dll
[2016.06.07 00:42:27 | 000,515,072 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\OneDriveSettingSyncProvider.dll
[2016.06.07 00:42:27 | 000,498,176 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MessagingDataModel2.dll
[2016.06.07 00:42:27 | 000,496,128 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Security.Authentication.Web.Core.dll
[2016.06.07 00:42:27 | 000,489,984 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.UI.dll
[2016.06.07 00:42:27 | 000,465,760 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\SettingSyncHost.exe
[2016.06.07 00:42:27 | 000,461,824 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\CoreMessaging.dll
[2016.06.07 00:42:27 | 000,453,472 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\directmanipulation.dll
[2016.06.07 00:42:27 | 000,436,736 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AppXDeploymentClient.dll
[2016.06.07 00:42:27 | 000,400,896 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\OneDriveSettingSyncProvider.dll
[2016.06.07 00:42:27 | 000,378,208 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\USBXHCI.SYS
[2016.06.07 00:42:27 | 000,356,864 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ActivationManager.dll
[2016.06.07 00:42:27 | 000,342,528 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\AppXDeploymentClient.dll
[2016.06.07 00:42:27 | 000,333,824 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\portcls.sys
[2016.06.07 00:42:27 | 000,303,104 | ---- | M] (Adobe Systems Incorporated) -- C:\WINDOWS\SysWow64\atmfd.dll
[2016.06.07 00:42:27 | 000,291,360 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wininit.exe
[2016.06.07 00:42:27 | 000,277,856 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\sdbus.sys
[2016.06.07 00:42:27 | 000,258,912 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\ufx01000.sys
[2016.06.07 00:42:27 | 000,223,232 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\fveapibase.dll
[2016.06.07 00:42:27 | 000,204,048 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\rsaenh.dll
[2016.06.07 00:42:27 | 000,190,144 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\DeviceCensus.exe
[2016.06.07 00:42:27 | 000,185,184 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\dumpsd.sys
[2016.06.07 00:42:27 | 000,167,936 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dafBth.dll
[2016.06.07 00:42:27 | 000,162,816 | ---- | M] () -- C:\WINDOWS\SysWow64\MTF.dll
[2016.06.07 00:42:27 | 000,161,792 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\msorcl32.dll
[2016.06.07 00:42:27 | 000,155,136 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\hidclass.sys
[2016.06.07 00:42:27 | 000,131,424 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\ufxsynopsys.sys
[2016.06.07 00:42:27 | 000,110,584 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\srvcli.dll
[2016.06.07 00:42:27 | 000,104,448 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\BluetoothApis.dll
[2016.06.07 00:42:27 | 000,103,936 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\updatepolicy.dll
[2016.06.07 00:42:27 | 000,099,680 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\pdc.sys
[2016.06.07 00:42:27 | 000,095,744 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\samlib.dll
[2016.06.07 00:42:27 | 000,093,696 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\fontsub.dll
[2016.06.07 00:42:27 | 000,087,040 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\tzautoupdate.dll
[2016.06.07 00:42:27 | 000,080,896 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\BluetoothApis.dll
[2016.06.07 00:42:27 | 000,078,040 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wkscli.dll
[2016.06.07 00:42:27 | 000,067,072 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\usbser.sys
[2016.06.07 00:42:27 | 000,066,048 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\OnDemandConnRouteHelper.dll
[2016.06.07 00:42:27 | 000,065,536 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wininetlui.dll
[2016.06.07 00:42:27 | 000,065,536 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\UMDF\UcmCx.dll
[2016.06.07 00:42:27 | 000,063,488 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\UcmCx.sys
[2016.06.07 00:42:27 | 000,059,392 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\hmkd.dll
[2016.06.07 00:42:27 | 000,058,368 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\browcli.dll
[2016.06.07 00:42:27 | 000,056,320 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wkscli.dll
[2016.06.07 00:42:27 | 000,052,736 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\OnDemandConnRouteHelper.dll
[2016.06.07 00:42:27 | 000,038,400 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ByteCodeGenerator.exe
[2016.06.07 00:42:27 | 000,037,376 | ---- | M] (Adobe Systems) -- C:\WINDOWS\SysWow64\atmlib.dll
[2016.06.07 00:42:27 | 000,036,352 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\tbauth.dll
[2016.06.07 00:42:27 | 000,031,232 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ByteCodeGenerator.exe
[2016.06.07 00:42:27 | 000,030,208 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\tbauth.dll
[2016.06.07 00:42:27 | 000,026,112 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\xinputhid.sys
[2016.06.07 00:42:27 | 000,026,112 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\TokenBrokerCookies.exe
[2016.06.07 00:42:27 | 000,023,552 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wups.dll
[2016.06.07 00:42:27 | 000,022,528 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\TokenBrokerCookies.exe
[2016.06.07 00:42:27 | 000,010,240 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\oleacchooks.dll
[2016.06.07 00:29:03 | 000,342,912 | ---- | M] () -- C:\WINDOWS\SysNative\perfi015.dat
[2016.06.07 00:29:03 | 000,041,236 | ---- | M] () -- C:\WINDOWS\SysNative\perfd015.dat
[2016.06.07 00:28:46 | 000,003,584 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\pl-PL\usbrpm.sys.mui
[2016.06.07 00:28:45 | 000,010,752 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\pl-PL\synth3dvsc.sys.mui
[2016.06.07 00:28:45 | 000,010,752 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\pl-PL\netvsc.sys.mui
[2016.06.07 00:28:45 | 000,006,656 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\pl-PL\vmstorfl.sys.mui
[2016.06.07 00:28:45 | 000,005,120 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\pl-PL\dmvsc.sys.mui
[2016.06.07 00:28:44 | 000,028,160 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\pl-PL\fvevol.sys.mui
[2016.06.07 00:28:42 | 000,003,584 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\UMDF\pl-PL\WpdMtpDr.dll.mui
[2016.06.07 00:28:41 | 000,015,872 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\drivers\pl-PL\NdisImPlatform.sys.mui
[2016.06.07 00:28:40 | 000,008,192 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\drivers\pl-PL\ndiscap.sys.mui
[2016.06.07 00:28:40 | 000,004,096 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\drivers\pl-PL\wfplwfs.sys.mui
[2016.06.07 00:28:40 | 000,003,072 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\drivers\UMDF\pl-PL\SensorsCx.dll.mui
[2016.06.07 00:28:39 | 000,015,872 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\pl-PL\NdisImPlatform.sys.mui
[2016.06.07 00:28:39 | 000,010,752 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\pl-PL\mslldp.sys.mui
[2016.06.07 00:28:39 | 000,005,120 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\pl-PL\agilevpn.sys.mui
[2016.06.07 00:28:39 | 000,003,072 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\pl-PL\ws2ifsl.sys.mui
[2016.06.07 00:28:38 | 000,048,128 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\pl-PL\http.sys.mui
[2016.06.07 00:28:38 | 000,018,432 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\pl-PL\nwifi.sys.mui
[2016.06.07 00:28:38 | 000,009,728 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\pl-PL\tunnel.sys.mui
[2016.06.07 00:28:38 | 000,009,216 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\pl-PL\refsv1.sys.mui
[2016.06.07 00:28:38 | 000,004,608 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\pl-PL\modem.sys.mui
[2016.06.07 00:28:38 | 000,003,584 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\pl-PL\wudfpf.sys.mui
[2016.06.07 00:28:38 | 000,003,584 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\pl-PL\volmgrx.sys.mui
[2016.06.07 00:28:38 | 000,003,584 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\pl-PL\NdisVirtualBus.sys.mui
[2016.06.07 00:28:37 | 000,113,152 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\pl-PL\tcpip.sys.mui
[2016.06.07 00:28:37 | 000,100,352 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\pl-PL\ntfs.sys.mui
[2016.06.07 00:28:37 | 000,080,384 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\pl-PL\srv2.sys.mui
[2016.06.07 00:28:37 | 000,075,776 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\pl-PL\ndis.sys.mui
[2016.06.07 00:28:37 | 000,071,680 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\pl-PL\mrxsmb.sys.mui
[2016.06.07 00:28:37 | 000,027,136 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\pl-PL\afd.sys.mui
[2016.06.07 00:28:37 | 000,016,896 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\pl-PL\mup.sys.mui
[2016.06.07 00:28:37 | 000,012,800 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\UMDF\pl-PL\SensorsHid.dll.mui
[2016.06.07 00:28:37 | 000,011,264 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\pl-PL\storqosflt.sys.mui
[2016.06.07 00:28:37 | 000,008,192 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\pl-PL\ndiscap.sys.mui
[2016.06.07 00:28:37 | 000,006,656 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\pl-PL\rdbss.sys.mui
[2016.06.07 00:28:37 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\pl-PL\fltmgr.sys.mui
[2016.06.07 00:28:37 | 000,004,608 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\pl-PL\ndisuio.sys.mui
[2016.06.07 00:28:37 | 000,004,096 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\pl-PL\wfplwfs.sys.mui
[2016.06.07 00:28:37 | 000,004,096 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\pl-PL\wdf01000.sys.mui
[2016.06.07 00:28:37 | 000,003,584 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\pl-PL\scfilter.sys.mui
[2016.06.07 00:28:37 | 000,003,584 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\pl-PL\partmgr.sys.mui
[2016.06.07 00:28:37 | 000,003,584 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\pl-PL\mountmgr.sys.mui
[2016.06.07 00:28:37 | 000,003,072 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\UMDF\pl-PL\SensorsCx.dll.mui
[2016.06.07 00:28:36 | 000,008,704 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\pl-PL\luafv.sys.mui
[2016.06.07 00:28:36 | 000,006,656 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\pl-PL\wof.sys.mui
[2016.06.07 00:28:36 | 000,003,584 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\pl-PL\mshidumdf.sys.mui
[2016.06.07 00:28:35 | 000,060,928 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\pl-PL\volsnap.sys.mui
[2016.06.07 00:28:35 | 000,046,080 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\pl-PL\spaceport.sys.mui
[2016.06.07 00:28:35 | 000,028,160 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\pl-PL\usbport.sys.mui
[2016.06.07 00:28:35 | 000,022,528 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\pl-PL\USBHUB3.SYS.mui
[2016.06.07 00:28:35 | 000,020,480 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\pl-PL\pacer.sys.mui
[2016.06.07 00:28:35 | 000,016,896 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\pl-PL\bthport.sys.mui
[2016.06.07 00:28:35 | 000,016,384 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\pl-PL\wmbclass.sys.mui
[2016.06.07 00:28:35 | 000,015,872 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\pl-PL\USBXHCI.SYS.mui
[2016.06.07 00:28:35 | 000,015,360 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\pl-PL\usbhub.sys.mui
[2016.06.07 00:28:35 | 000,015,360 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\pl-PL\processr.sys.mui
[2016.06.07 00:28:35 | 000,015,360 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\pl-PL\intelppm.sys.mui
[2016.06.07 00:28:35 | 000,015,360 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\pl-PL\amdppm.sys.mui
[2016.06.07 00:28:35 | 000,015,360 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\pl-PL\amdk8.sys.mui
[2016.06.07 00:28:35 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\pl-PL\vhdmp.sys.mui
[2016.06.07 00:28:35 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\pl-PL\vdrvroot.sys.mui
[2016.06.07 00:28:35 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\pl-PL\BthLEEnum.sys.mui
[2016.06.07 00:28:35 | 000,012,800 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\pl-PL\1394ohci.sys.mui
[2016.06.07 00:28:35 | 000,012,288 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\pl-PL\i8042prt.sys.mui
[2016.06.07 00:28:35 | 000,012,288 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\pl-PL\acpi.sys.mui
[2016.06.07 00:28:35 | 000,011,776 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\pl-PL\serial.sys.mui
[2016.06.07 00:28:35 | 000,009,728 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\pl-PL\tpm.sys.mui
[2016.06.07 00:28:35 | 000,009,728 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\pl-PL\pci.sys.mui
[2016.06.07 00:28:35 | 000,009,216 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\pl-PL\sdbus.sys.mui
[2016.06.07 00:28:35 | 000,009,216 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\pl-PL\EhStorTcgDrv.sys.mui
[2016.06.07 00:28:35 | 000,009,216 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\pl-PL\dumpsd.sys.mui
[2016.06.07 00:28:35 | 000,008,704 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\pl-PL\battc.sys.mui
[2016.06.07 00:28:35 | 000,008,704 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\pl-PL\ataport.sys.mui
[2016.06.07 00:28:35 | 000,008,192 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\UMDF\pl-PL\WUDFUsbccidDriver.dll.mui
[2016.06.07 00:28:35 | 000,007,680 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\pl-PL\IPMIDrv.sys.mui
[2016.06.07 00:28:35 | 000,007,680 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\pl-PL\hidclass.sys.mui
[2016.06.07 00:28:35 | 000,007,168 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\pl-PL\disk.sys.mui
[2016.06.07 00:28:35 | 000,006,656 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\pl-PL\sermouse.sys.mui
[2016.06.07 00:28:35 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\pl-PL\hidbth.sys.mui
[2016.06.07 00:28:35 | 000,005,632 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\pl-PL\mouclass.sys.mui
[2016.06.07 00:28:35 | 000,005,632 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\pl-PL\kbdclass.sys.mui
[2016.06.07 00:28:35 | 000,005,632 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\pl-PL\bthpan.sys.mui
[2016.06.07 00:28:35 | 000,005,632 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\pl-PL\BthA2DP.sys.mui
[2016.06.07 00:28:35 | 000,005,120 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\pl-PL\wacompen.sys.mui
[2016.06.07 00:28:35 | 000,005,120 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\pl-PL\portcls.sys.mui
[2016.06.07 00:28:35 | 000,005,120 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\pl-PL\pcmcia.sys.mui
[2016.06.07 00:28:35 | 000,005,120 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\pl-PL\isapnp.sys.mui
[2016.06.07 00:28:35 | 000,005,120 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\UMDF\pl-PL\HidBthLE.dll.mui
[2016.06.07 00:28:35 | 000,005,120 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\pl-PL\hdaudbus.sys.mui
[2016.06.07 00:28:35 | 000,004,608 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\pl-PL\sdstor.sys.mui
[2016.06.07 00:28:35 | 000,004,608 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\pl-PL\parport.sys.mui
[2016.06.07 00:28:35 | 000,004,608 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\pl-PL\hidi2c.sys.mui
[2016.06.07 00:28:35 | 000,004,608 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\pl-PL\BthMini.SYS.mui
[2016.06.07 00:28:35 | 000,004,096 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\pl-PL\usbehci.sys.mui
[2016.06.07 00:28:35 | 000,004,096 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\pl-PL\umbus.sys.mui
[2016.06.07 00:28:35 | 000,004,096 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\pl-PL\ULIAGPKX.SYS.mui
[2016.06.07 00:28:35 | 000,004,096 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\pl-PL\rndismpx.sys.mui
[2016.06.07 00:28:35 | 000,004,096 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\pl-PL\rndismp6.sys.mui
[2016.06.07 00:28:35 | 000,004,096 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\pl-PL\mssmbios.sys.mui
[2016.06.07 00:28:35 | 000,004,096 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\pl-PL\mouhid.sys.mui
[2016.06.07 00:28:35 | 000,004,096 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\pl-PL\HdAudio.sys.mui
[2016.06.07 00:28:35 | 000,004,096 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\pl-PL\GAGP30KX.sys.mui
[2016.06.07 00:28:35 | 000,004,096 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\pl-PL\BTHUSB.SYS.mui
[2016.06.07 00:28:35 | 000,004,096 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\pl-PL\bthhfenum.sys.mui
[2016.06.07 00:28:35 | 000,003,584 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\pl-PL\volmgr.sys.mui
[2016.06.07 00:28:35 | 000,003,584 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\pl-PL\vhf.sys.mui
[2016.06.07 00:28:35 | 000,003,584 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\pl-PL\usbvideo.sys.mui
[2016.06.07 00:28:35 | 000,003,584 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\pl-PL\USBSTOR.SYS.mui
[2016.06.07 00:28:35 | 000,003,584 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\pl-PL\USBAUDIO.sys.mui
[2016.06.07 00:28:35 | 000,003,584 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\pl-PL\UAGP35.sys.mui
[2016.06.07 00:28:35 | 000,003,584 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\pl-PL\serscan.sys.mui
[2016.06.07 00:28:35 | 000,003,584 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\pl-PL\rfcomm.sys.mui
[2016.06.07 00:28:35 | 000,003,584 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\pl-PL\qwavedrv.sys.mui
[2016.06.07 00:28:35 | 000,003,584 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\pl-PL\pnpmem.sys.mui
[2016.06.07 00:28:35 | 000,003,584 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\pl-PL\NV_AGP.SYS.mui
[2016.06.07 00:28:35 | 000,003,584 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\pl-PL\MTConfig.sys.mui
[2016.06.07 00:28:35 | 000,003,584 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\pl-PL\kbdhid.sys.mui
[2016.06.07 00:28:35 | 000,003,584 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\pl-PL\cdrom.sys.mui
[2016.06.07 00:28:35 | 000,003,584 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\pl-PL\BthhfHid.sys.mui
[2016.06.07 00:28:35 | 000,003,584 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\pl-PL\bthenum.sys.mui
[2016.06.07 00:28:35 | 000,003,584 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\pl-PL\BthAvrcpTg.sys.mui
[2016.06.07 00:28:35 | 000,003,584 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\pl-PL\AGP440.sys.mui
[2016.06.07 00:28:35 | 000,003,072 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\pl-PL\pdc.sys.mui
[2016.06.07 00:28:35 | 000,003,072 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\pl-PL\msgpiowin32.sys.mui
[2016.06.06 23:53:15 | 000,027,078 | ---- | M] () -- C:\WINDOWS\diagerr.xml
[2016.06.06 23:53:15 | 000,024,768 | ---- | M] () -- C:\WINDOWS\diagwrn.xml
[2016.06.06 23:52:03 | 000,022,924 | ---- | M] () -- C:\WINDOWS\SysNative\emptyregdb.dat
[2016.06.06 23:46:24 | 000,000,200 | ---- | M] () -- C:\WINDOWS\SysNative\{EC94D02F-D200-4428-9531-05AF7F9799CB}.bat
[2016.06.06 23:46:24 | 000,000,000 | ---- | M] () -- C:\WINDOWS\SysNative\GfxValDisplayLog.bin
[2016.06.06 23:46:15 | 000,000,000 | -H-- | M] () -- C:\WINDOWS\SysNative\drivers\Msft_User_esif_umdf2_02_00_00.Wdf
[2016.06.06 22:39:08 | 000,633,480 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysNative\MetroIntelGenericUIFramework.dll
[2016.06.06 22:39:08 | 000,104,584 | ---- | M] (Khronos Group) -- C:\WINDOWS\SysWow64\OpenCL.DLL
[2016.06.06 22:39:08 | 000,104,584 | ---- | M] (Khronos Group) -- C:\WINDOWS\SysWow64\Intel_OpenCL_ICD32.dll
[2016.06.06 22:39:08 | 000,100,488 | ---- | M] (Khronos Group) -- C:\WINDOWS\SysNative\OpenCL.DLL
[2016.06.06 22:39:08 | 000,100,488 | ---- | M] (Khronos Group) -- C:\WINDOWS\SysNative\Intel_OpenCL_ICD64.dll
[2016.06.06 22:39:07 | 002,813,952 | ---- | M] () -- C:\WINDOWS\SysNative\iglhxa64.cpa
[2016.06.06 22:39:07 | 002,063,488 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysNative\igfxLHM.dll
[2016.06.06 22:39:07 | 001,817,352 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysNative\iglhsip64.dll
[2016.06.06 22:39:07 | 001,814,704 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysWow64\iglhsip32.dll
[2016.06.06 22:39:07 | 001,027,680 | ---- | M] () -- C:\WINDOWS\SysNative\igfxSDK.exe
[2016.06.06 22:39:07 | 000,622,680 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysNative\IntelCpHDCPSvc.exe
[2016.06.06 22:39:07 | 000,537,184 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysNative\IntelWiDiUMS64.exe
[2016.06.06 22:39:07 | 000,416,904 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysNative\IntelOpenCL64.dll
[2016.06.06 22:39:07 | 000,403,671 | ---- | M] () -- C:\WINDOWS\SysNative\ImageStabilization.wmv
[2016.06.06 22:39:07 | 000,402,520 | ---- | M] () -- C:\WINDOWS\SysNative\igfxTray.exe
[2016.06.06 22:39:07 | 000,394,880 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysNative\igfxDI.dll
[2016.06.06 22:39:07 | 000,390,784 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysNative\igfxOSP.dll
[2016.06.06 22:39:07 | 000,355,424 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysNative\igfxEM.exe
[2016.06.06 22:39:07 | 000,350,824 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysNative\IntelWiDiMCComp64.dll
[2016.06.06 22:39:07 | 000,319,104 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysWow64\IntelOpenCL32.dll
[2016.06.06 22:39:07 | 000,302,176 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
[2016.06.06 22:39:07 | 000,269,400 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysNative\igfxHK.exe
[2016.06.06 22:39:07 | 000,255,624 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysNative\igfxDTCM.dll
[2016.06.06 22:39:07 | 000,242,792 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysNative\iglhcp64.dll
[2016.06.06 22:39:07 | 000,237,664 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysNative\igfxext.exe
[2016.06.06 22:39:07 | 000,208,512 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysNative\igfxCoIn_v4444.dll
Zamořené PC Vyřešeno
Re: Zamořené PC
[2016.06.06 22:39:07 | 000,206,000 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysWow64\iglhcp32.dll
[2016.06.06 22:39:07 | 000,112,256 | ---- | M] ( ) -- C:\WINDOWS\SysNative\igfxSDKLibv2_0.dll
[2016.06.06 22:39:07 | 000,101,512 | ---- | M] ( ) -- C:\WINDOWS\SysNative\igfxSDKLib.dll
[2016.06.06 22:39:07 | 000,056,696 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysWow64\igfxexps32.dll
[2016.06.06 22:39:07 | 000,055,880 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysNative\igfxexps.dll
[2016.06.06 22:39:07 | 000,041,296 | ---- | M] () -- C:\WINDOWS\SysNative\iglhxc64_dev.vp
[2016.06.06 22:39:07 | 000,040,931 | ---- | M] () -- C:\WINDOWS\SysNative\iglhxo64_dev.vp
[2016.06.06 22:39:07 | 000,040,343 | ---- | M] () -- C:\WINDOWS\SysNative\iglhxo64.vp
[2016.06.06 22:39:07 | 000,040,316 | ---- | M] () -- C:\WINDOWS\SysNative\iglhxc64.vp
[2016.06.06 22:39:07 | 000,039,798 | ---- | M] () -- C:\WINDOWS\SysNative\iglhxg64_dev.vp
[2016.06.06 22:39:07 | 000,039,658 | ---- | M] () -- C:\WINDOWS\SysNative\iglhxg64.vp
[2016.06.06 22:39:07 | 000,029,832 | ---- | M] ( ) -- C:\WINDOWS\SysNative\igfxDILibv2_0.dll
[2016.06.06 22:39:07 | 000,029,832 | ---- | M] ( ) -- C:\WINDOWS\SysNative\igfxDILib.dll
[2016.06.06 22:39:07 | 000,028,296 | ---- | M] ( ) -- C:\WINDOWS\SysNative\igfxEMLibv2_0.dll
[2016.06.06 22:39:07 | 000,028,296 | ---- | M] ( ) -- C:\WINDOWS\SysNative\igfxEMLib.dll
[2016.06.06 22:39:07 | 000,023,176 | ---- | M] ( ) -- C:\WINDOWS\SysNative\igfxLHMLibv2_0.dll
[2016.06.06 22:39:07 | 000,023,168 | ---- | M] ( ) -- C:\WINDOWS\SysNative\igfxLHMLib.dll
[2016.06.06 22:39:07 | 000,004,850 | ---- | M] () -- C:\WINDOWS\SysNative\iglhxs64.vp
[2016.06.06 22:39:07 | 000,001,125 | ---- | M] () -- C:\WINDOWS\SysNative\iglhxa64.vp
[2016.06.06 22:39:06 | 039,857,152 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysNative\igdumdim64.dll
[2016.06.06 22:39:06 | 038,897,696 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysWow64\igdumdim32.dll
[2016.06.06 22:39:06 | 006,644,000 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysNative\igdusc64.dll
[2016.06.06 22:39:06 | 005,099,192 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysWow64\igdusc32.dll
[2016.06.06 22:39:06 | 001,591,432 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysNative\igfxcmjit64.dll
[2016.06.06 22:39:06 | 001,179,272 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysWow64\igfxcmjit32.dll
[2016.06.06 22:39:06 | 000,753,800 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysNative\igfxDH.dll
[2016.06.06 22:39:06 | 000,374,360 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysNative\igfxCUIService.exe
[2016.06.06 22:39:06 | 000,274,056 | ---- | M] () -- C:\WINDOWS\SysNative\igfxCPL.cpl
[2016.06.06 22:39:06 | 000,184,624 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysNative\igfxcmrt64.dll
[2016.06.06 22:39:06 | 000,183,600 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysNative\igfx11cmrt64.dll
[2016.06.06 22:39:06 | 000,160,904 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysWow64\igfxcmrt32.dll
[2016.06.06 22:39:06 | 000,160,904 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysWow64\igfx11cmrt32.dll
[2016.06.06 22:39:06 | 000,104,064 | ---- | M] () -- C:\WINDOWS\SysNative\igfxCUIServicePS.dll
[2016.06.06 22:39:06 | 000,095,872 | ---- | M] ( ) -- C:\WINDOWS\SysNative\igfxDHLibv2_0.dll
[2016.06.06 22:39:06 | 000,085,128 | ---- | M] ( ) -- C:\WINDOWS\SysNative\igfxDHLib.dll
[2016.06.06 22:39:05 | 007,936,600 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysNative\drivers\igdkmd64.sys
[2016.06.06 22:39:05 | 005,799,386 | ---- | M] () -- C:\WINDOWS\SysNative\igdclbif.bin
[2016.06.06 22:39:05 | 005,686,408 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysNative\igdmcl64.dll
[2016.06.06 22:39:05 | 004,927,624 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysNative\igdrcl64.dll
[2016.06.06 22:39:05 | 004,426,888 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysWow64\igdrcl32.dll
[2016.06.06 22:39:05 | 003,971,208 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysWow64\igdmcl32.dll
[2016.06.06 22:39:05 | 001,890,664 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysNative\igdmd64.dll
[2016.06.06 22:39:05 | 001,465,744 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysWow64\igdmd32.dll
[2016.06.06 22:39:05 | 000,439,432 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysNative\igdbcl64.dll
[2016.06.06 22:39:05 | 000,389,256 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysWow64\igdbcl32.dll
[2016.06.06 22:39:05 | 000,266,888 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysNative\igdfcl64.dll
[2016.06.06 22:39:05 | 000,225,920 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysWow64\igdfcl32.dll
[2016.06.06 22:39:05 | 000,223,880 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysNative\igdde64.dll
[2016.06.06 22:39:05 | 000,193,672 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysNative\igdail64.dll
[2016.06.06 22:39:05 | 000,182,480 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysWow64\igdde32.dll
[2016.06.06 22:39:05 | 000,174,216 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysWow64\igdail32.dll
[2016.06.06 22:39:04 | 034,815,616 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysWow64\igd11dxva32.dll
[2016.06.06 22:39:04 | 033,473,752 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysNative\igd11dxva64.dll
[2016.06.06 22:39:04 | 014,579,488 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysNative\igd10iumd64.dll
[2016.06.06 22:39:04 | 011,858,784 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysWow64\igd10iumd32.dll
[2016.06.06 22:39:04 | 004,246,672 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysNative\igd12umd64.dll
[2016.06.06 22:39:04 | 004,213,648 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysWow64\igd12umd32.dll
[2016.06.06 22:39:03 | 015,488,544 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysNative\igc64.dll
[2016.06.06 22:39:03 | 013,612,168 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysNative\ig9icd64.dll
[2016.06.06 22:39:03 | 013,482,720 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysWow64\igc32.dll
[2016.06.06 22:39:03 | 010,310,792 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysWow64\ig9icd32.dll
[2016.06.06 22:39:03 | 000,312,944 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysNative\igd10idpp64.dll
[2016.06.06 22:39:03 | 000,297,800 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysWow64\igd10idpp32.dll
[2016.06.06 22:39:02 | 029,102,216 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysNative\common_clang64.dll
[2016.06.06 22:39:02 | 019,862,152 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysWow64\common_clang32.dll
[2016.06.06 22:39:02 | 005,263,496 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysNative\GfxResources.dll
[2016.06.06 22:39:02 | 000,966,232 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysNative\Gfxv4_0.exe
[2016.06.06 22:39:02 | 000,962,656 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysNative\Gfxv2_0.exe
[2016.06.06 22:39:02 | 000,843,068 | ---- | M] () -- C:\WINDOWS\SysNative\DisplayAudiox64.cab
[2016.06.06 22:39:02 | 000,641,530 | ---- | M] () -- C:\WINDOWS\SysNative\FilmModeDetection.wmv
[2016.06.06 22:39:02 | 000,511,260 | ---- | M] () -- C:\WINDOWS\SysNative\cp_resources.bin
[2016.06.06 22:39:02 | 000,467,544 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysNative\GfxUIEx.exe
[2016.06.06 22:39:02 | 000,233,056 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysNative\DPTopologyApp.exe
[2016.06.06 22:39:02 | 000,232,536 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysNative\DPTopologyAppv2_0.exe
[2016.06.06 22:39:02 | 000,175,704 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysNative\difx64.exe
[2016.06.06 22:39:02 | 000,000,935 | ---- | M] () -- C:\WINDOWS\SysNative\Gfxv4_0.exe.config
[2016.06.06 22:39:02 | 000,000,935 | ---- | M] () -- C:\WINDOWS\SysNative\DPTopologyApp.exe.config
[2016.06.06 22:39:02 | 000,000,895 | ---- | M] () -- C:\WINDOWS\SysNative\Gfxv2_0.exe.config
[2016.06.06 22:39:02 | 000,000,895 | ---- | M] () -- C:\WINDOWS\SysNative\DPTopologyAppv2_0.exe.config
[2016.06.06 22:39:01 | 000,375,173 | ---- | M] () -- C:\WINDOWS\SysNative\ColorImageEnhancement.wmv
[2016.06.06 20:34:44 | 000,016,148 | ---- | M] () -- C:\WINDOWS\SysNative\DESKTOP-SG2OKFT_Bert_HistoryPrediction.bin
[2016.06.06 19:19:20 | 003,933,496 | ---- | M] (Logitech, Inc.) -- C:\WINDOWS\SysNative\LogiLDA.DLL
[2016.06.06 19:19:20 | 002,458,936 | ---- | M] (Logitech, Inc.) -- C:\WINDOWS\SysNative\LdaCx2.dll
[2016.06.06 19:19:20 | 000,828,872 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\msvcr110.dll
[2016.06.06 19:19:20 | 000,661,448 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\msvcp110.dll
[2016.06.06 19:19:20 | 000,354,264 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\vccorlib110.dll
[2016.06.06 18:36:29 | 000,097,344 | ---- | M] (Oracle Corporation) -- C:\WINDOWS\SysWow64\WindowsAccessBridge-32.dll
[2016.06.06 18:26:33 | 000,016,148 | ---- | M] () -- C:\WINDOWS\SysNative\DESKTOP-SG2OKFT_defaultuser0_HistoryPrediction.bin
[2016.06.03 09:22:06 | 039,977,920 | ---- | M] () -- C:\WINDOWS\SysNative\nvcompiler.dll
[2016.06.03 09:22:06 | 035,115,968 | ---- | M] () -- C:\WINDOWS\SysWow64\nvcompiler.dll
[2016.06.03 09:22:06 | 031,641,656 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\nvoglv64.dll
[2016.06.03 09:22:06 | 025,404,864 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysWow64\nvoglv32.dll
[2016.06.03 09:22:06 | 021,812,056 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\nvopencl.dll
[2016.06.03 09:22:06 | 021,355,464 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\nvcuda.dll
[2016.06.03 09:22:06 | 020,375,488 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\nvwgf2umx.dll
[2016.06.03 09:22:06 | 018,151,128 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysWow64\nvopencl.dll
[2016.06.03 09:22:06 | 017,746,664 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysWow64\nvcuda.dll
[2016.06.03 09:22:06 | 017,729,184 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysWow64\nvwgf2um.dll
[2016.06.03 09:22:06 | 017,432,544 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\nvd3dumx.dll
[2016.06.03 09:22:06 | 014,462,536 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysWow64\nvd3dum.dll
[2016.06.03 09:22:06 | 010,643,240 | ---- | M] () -- C:\WINDOWS\SysNative\nvptxJitCompiler.dll
[2016.06.03 09:22:06 | 008,733,792 | ---- | M] () -- C:\WINDOWS\SysWow64\nvptxJitCompiler.dll
[2016.06.03 09:22:06 | 003,811,256 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\nvapi64.dll
[2016.06.03 09:22:06 | 003,371,624 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysWow64\nvapi.dll
[2016.06.03 09:22:06 | 002,844,608 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\nvcuvid.dll
[2016.06.03 09:22:06 | 002,470,336 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysWow64\nvcuvid.dll
[2016.06.03 09:22:06 | 001,920,960 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\nvdispco6436839.dll
[2016.06.03 09:22:06 | 001,571,776 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\nvdispgenco6436839.dll
[2016.06.03 09:22:06 | 000,983,488 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\NvFBC64.dll
[2016.06.03 09:22:06 | 000,910,392 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\NvIFR64.dll
[2016.06.03 09:22:06 | 000,787,384 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\nvEncMFTH264.dll
[2016.06.03 09:22:06 | 000,769,984 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysWow64\NvFBC.dll
[2016.06.03 09:22:06 | 000,707,520 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysWow64\NvIFR.dll
[2016.06.03 09:22:06 | 000,669,952 | ---- | M] () -- C:\WINDOWS\SysNative\nvfatbinaryLoader.dll
[2016.06.03 09:22:06 | 000,632,848 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysWow64\nvEncMFTH264.dll
[2016.06.03 09:22:06 | 000,565,208 | ---- | M] () -- C:\WINDOWS\SysWow64\nvfatbinaryLoader.dll
[2016.06.03 09:22:06 | 000,425,016 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\NvIFROpenGL.dll
[2016.06.03 09:22:06 | 000,379,808 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\nvEncodeAPI64.dll
[2016.06.03 09:22:06 | 000,379,448 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysWow64\NvIFROpenGL.dll
[2016.06.03 09:22:06 | 000,316,632 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysWow64\nvEncodeAPI.dll
[2016.06.03 09:22:06 | 000,177,952 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\nvinitx.dll
[2016.06.03 09:22:06 | 000,155,768 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysWow64\nvinit.dll
[2016.06.03 09:22:06 | 000,040,084 | ---- | M] () -- C:\WINDOWS\SysNative\nvinfo.pb
[2016.06.03 09:22:06 | 000,000,594 | ---- | M] () -- C:\WINDOWS\SysNative\nv-vk64.json
[2016.06.03 09:22:06 | 000,000,594 | ---- | M] () -- C:\WINDOWS\SysWow64\nv-vk32.json
[2016.06.03 05:59:19 | 006,364,216 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\nvcpl.dll
[2016.06.03 05:59:19 | 002,455,608 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\nvsvc64.dll
[2016.06.03 05:59:17 | 001,762,752 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\nvsvcr.dll
[2016.06.03 05:59:17 | 000,534,072 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\nv3dappshext.dll
[2016.06.03 05:59:17 | 000,392,128 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\nvmctray.dll
[2016.06.03 05:59:17 | 000,081,856 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\nv3dappshextr.dll
[2016.06.03 05:59:17 | 000,069,568 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\nvshext.dll
[2016.06.03 05:59:09 | 006,452,948 | ---- | M] () -- C:\WINDOWS\SysNative\nvcoproc.bin
========== Files Created - No Company Name ==========
[2016.06.12 09:52:21 | 000,001,221 | ---- | C] () -- C:\Users\Bert\Desktop\CrystalDiskInfo.lnk
[2016.06.11 23:02:44 | 000,000,000 | -H-- | C] () -- C:\WINDOWS\SysNative\drivers\Msft_User_WpdFs_01_11_00.Wdf
[2016.06.11 21:53:49 | 000,000,000 | ---- | C] () -- C:\autoexec.bat
[2016.06.11 21:53:31 | 000,001,134 | ---- | C] () -- C:\Users\Bert\Desktop\SpyHunter.lnk
[2016.06.11 21:53:11 | 000,022,704 | ---- | C] () -- C:\WINDOWS\SysNative\drivers\EsgScanner.sys
[2016.06.11 21:49:34 | 000,000,000 | ---- | C] () -- C:\Users\Bert\Desktop\Nový rastrový obrázek.bmp
[2016.06.11 20:54:30 | 3393,560,576 | -HS- | C] () -- C:\hiberfil.sys
[2016.06.11 17:56:14 | 000,001,189 | ---- | C] () -- C:\Users\Bert\Desktop\AdsFix_Donate.lnk
[2016.06.11 15:12:48 | 000,000,512 | ---- | C] () -- C:\Users\Bert\Desktop\MBR.dat
[2016.06.11 12:11:59 | 000,024,064 | ---- | C] () -- C:\WINDOWS\zoek-delete.exe
[2016.06.11 12:00:51 | 001,309,184 | ---- | C] () -- C:\Users\Bert\Desktop\zoek.exe
[2016.06.10 20:47:50 | 000,028,272 | ---- | C] () -- C:\WINDOWS\SysNative\drivers\TrueSight.sys
[2016.06.10 20:46:28 | 024,172,616 | ---- | C] () -- C:\Users\Bert\Desktop\RogueKillerX64.exe
[2016.06.10 13:30:36 | 003,677,248 | ---- | C] () -- C:\Users\Bert\Desktop\adwcleaner_5.119.exe
[2016.06.08 20:13:11 | 000,001,177 | ---- | C] () -- C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
[2016.06.08 09:35:46 | 006,452,948 | ---- | C] () -- C:\WINDOWS\SysNative\nvcoproc.bin
[2016.06.08 09:34:47 | 039,977,920 | ---- | C] () -- C:\WINDOWS\SysNative\nvcompiler.dll
[2016.06.08 09:34:47 | 035,115,968 | ---- | C] () -- C:\WINDOWS\SysWow64\nvcompiler.dll
[2016.06.08 09:34:47 | 010,643,240 | ---- | C] () -- C:\WINDOWS\SysNative\nvptxJitCompiler.dll
[2016.06.08 09:34:47 | 008,733,792 | ---- | C] () -- C:\WINDOWS\SysWow64\nvptxJitCompiler.dll
[2016.06.08 09:34:47 | 000,669,952 | ---- | C] () -- C:\WINDOWS\SysNative\nvfatbinaryLoader.dll
[2016.06.08 09:34:47 | 000,565,208 | ---- | C] () -- C:\WINDOWS\SysWow64\nvfatbinaryLoader.dll
[2016.06.08 09:34:47 | 000,040,084 | ---- | C] () -- C:\WINDOWS\SysNative\nvinfo.pb
[2016.06.08 09:34:47 | 000,000,594 | ---- | C] () -- C:\WINDOWS\SysNative\nv-vk64.json
[2016.06.08 09:34:47 | 000,000,594 | ---- | C] () -- C:\WINDOWS\SysWow64\nv-vk32.json
[2016.06.07 00:45:08 | 000,051,362 | ---- | C] () -- C:\WINDOWS\SysWow64\license.rtf
[2016.06.07 00:45:08 | 000,051,362 | ---- | C] () -- C:\WINDOWS\SysNative\license.rtf
[2016.06.07 00:42:31 | 000,002,186 | ---- | C] () -- C:\WINDOWS\SysWow64\AppxProvisioning.xml
[2016.06.07 00:42:29 | 002,656,952 | ---- | C] () -- C:\WINDOWS\SysNative\CoreUIComponents.dll
[2016.06.07 00:42:29 | 001,862,008 | ---- | C] () -- C:\WINDOWS\SysWow64\CoreUIComponents.dll
[2016.06.07 00:42:29 | 000,235,008 | ---- | C] () -- C:\WINDOWS\SysNative\MTF.dll
[2016.06.07 00:42:29 | 000,002,186 | ---- | C] () -- C:\WINDOWS\SysNative\AppxProvisioning.xml
[2016.06.07 00:42:27 | 000,162,816 | ---- | C] () -- C:\WINDOWS\SysWow64\MTF.dll
[2016.06.07 00:29:14 | 000,809,628 | ---- | C] () -- C:\WINDOWS\SysNative\perfh015.dat
[2016.06.07 00:29:14 | 000,342,912 | ---- | C] () -- C:\WINDOWS\SysNative\perfi015.dat
[2016.06.07 00:29:14 | 000,158,256 | ---- | C] () -- C:\WINDOWS\SysNative\perfc015.dat
[2016.06.07 00:29:14 | 000,041,236 | ---- | C] () -- C:\WINDOWS\SysNative\perfd015.dat
[2016.06.06 23:52:03 | 000,022,924 | ---- | C] () -- C:\WINDOWS\SysNative\emptyregdb.dat
[2016.06.06 23:50:25 | 000,001,552 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk
[2016.06.06 23:46:24 | 000,000,200 | ---- | C] () -- C:\WINDOWS\SysNative\{EC94D02F-D200-4428-9531-05AF7F9799CB}.bat
[2016.06.06 23:46:24 | 000,000,180 | ---- | C] () -- C:\WINDOWS\SysNative\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
[2016.06.06 23:46:24 | 000,000,000 | ---- | C] () -- C:\WINDOWS\SysNative\GfxValDisplayLog.bin
[2016.06.06 23:46:15 | 000,000,000 | -H-- | C] () -- C:\WINDOWS\SysNative\drivers\Msft_User_esif_umdf2_02_00_00.Wdf
[2016.06.06 22:39:07 | 002,813,952 | ---- | C] () -- C:\WINDOWS\SysNative\iglhxa64.cpa
[2016.06.06 22:39:07 | 001,027,680 | ---- | C] () -- C:\WINDOWS\SysNative\igfxSDK.exe
[2016.06.06 22:39:07 | 000,403,671 | ---- | C] () -- C:\WINDOWS\SysNative\ImageStabilization.wmv
[2016.06.06 22:39:07 | 000,402,520 | ---- | C] () -- C:\WINDOWS\SysNative\igfxTray.exe
[2016.06.06 22:39:07 | 000,112,256 | ---- | C] ( ) -- C:\WINDOWS\SysNative\igfxSDKLibv2_0.dll
[2016.06.06 22:39:07 | 000,101,512 | ---- | C] ( ) -- C:\WINDOWS\SysNative\igfxSDKLib.dll
[2016.06.06 22:39:07 | 000,041,296 | ---- | C] () -- C:\WINDOWS\SysNative\iglhxc64_dev.vp
[2016.06.06 22:39:07 | 000,040,931 | ---- | C] () -- C:\WINDOWS\SysNative\iglhxo64_dev.vp
[2016.06.06 22:39:07 | 000,040,343 | ---- | C] () -- C:\WINDOWS\SysNative\iglhxo64.vp
[2016.06.06 22:39:07 | 000,040,316 | ---- | C] () -- C:\WINDOWS\SysNative\iglhxc64.vp
[2016.06.06 22:39:07 | 000,039,798 | ---- | C] () -- C:\WINDOWS\SysNative\iglhxg64_dev.vp
[2016.06.06 22:39:07 | 000,039,658 | ---- | C] () -- C:\WINDOWS\SysNative\iglhxg64.vp
[2016.06.06 22:39:07 | 000,029,832 | ---- | C] ( ) -- C:\WINDOWS\SysNative\igfxDILibv2_0.dll
[2016.06.06 22:39:07 | 000,029,832 | ---- | C] ( ) -- C:\WINDOWS\SysNative\igfxDILib.dll
[2016.06.06 22:39:07 | 000,028,296 | ---- | C] ( ) -- C:\WINDOWS\SysNative\igfxEMLibv2_0.dll
[2016.06.06 22:39:07 | 000,028,296 | ---- | C] ( ) -- C:\WINDOWS\SysNative\igfxEMLib.dll
[2016.06.06 22:39:07 | 000,023,176 | ---- | C] ( ) -- C:\WINDOWS\SysNative\igfxLHMLibv2_0.dll
[2016.06.06 22:39:07 | 000,023,168 | ---- | C] ( ) -- C:\WINDOWS\SysNative\igfxLHMLib.dll
[2016.06.06 22:39:07 | 000,004,850 | ---- | C] () -- C:\WINDOWS\SysNative\iglhxs64.vp
[2016.06.06 22:39:07 | 000,001,125 | ---- | C] () -- C:\WINDOWS\SysNative\iglhxa64.vp
[2016.06.06 22:39:06 | 000,274,056 | ---- | C] () -- C:\WINDOWS\SysNative\igfxCPL.cpl
[2016.06.06 22:39:06 | 000,104,064 | ---- | C] () -- C:\WINDOWS\SysNative\igfxCUIServicePS.dll
[2016.06.06 22:39:06 | 000,095,872 | ---- | C] ( ) -- C:\WINDOWS\SysNative\igfxDHLibv2_0.dll
[2016.06.06 22:39:06 | 000,085,128 | ---- | C] ( ) -- C:\WINDOWS\SysNative\igfxDHLib.dll
[2016.06.06 22:39:05 | 005,799,386 | ---- | C] () -- C:\WINDOWS\SysNative\igdclbif.bin
[2016.06.06 22:39:02 | 000,843,068 | ---- | C] () -- C:\WINDOWS\SysNative\DisplayAudiox64.cab
[2016.06.06 22:39:02 | 000,641,530 | ---- | C] () -- C:\WINDOWS\SysNative\FilmModeDetection.wmv
[2016.06.06 22:39:02 | 000,511,260 | ---- | C] () -- C:\WINDOWS\SysNative\cp_resources.bin
[2016.06.06 22:39:02 | 000,000,935 | ---- | C] () -- C:\WINDOWS\SysNative\Gfxv4_0.exe.config
[2016.06.06 22:39:02 | 000,000,935 | ---- | C] () -- C:\WINDOWS\SysNative\DPTopologyApp.exe.config
[2016.06.06 22:39:02 | 000,000,895 | ---- | C] () -- C:\WINDOWS\SysNative\Gfxv2_0.exe.config
[2016.06.06 22:39:02 | 000,000,895 | ---- | C] () -- C:\WINDOWS\SysNative\DPTopologyAppv2_0.exe.config
[2016.06.06 22:39:01 | 000,375,173 | ---- | C] () -- C:\WINDOWS\SysNative\ColorImageEnhancement.wmv
[2016.06.06 21:54:21 | 000,001,659 | ---- | C] () -- C:\Users\Public\Desktop\STATISTICA.lnk
[2016.06.06 21:54:20 | 000,007,549 | ---- | C] () -- C:\WINDOWS\SysNative\novak7.ctm
[2016.06.06 20:34:44 | 000,016,148 | ---- | C] () -- C:\WINDOWS\SysNative\DESKTOP-SG2OKFT_Bert_HistoryPrediction.bin
[2016.06.06 20:10:11 | 000,002,561 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneNote 2016.lnk
[2016.06.06 20:10:11 | 000,002,560 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneDrive pro firmy.lnk
[2016.06.06 20:10:11 | 000,002,555 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Word 2016.lnk
[2016.06.06 20:10:11 | 000,002,532 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerPoint 2016.lnk
[2016.06.06 20:10:11 | 000,002,527 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Excel 2016.lnk
[2016.06.06 20:10:11 | 000,002,520 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype pro firmy 2016.lnk
[2016.06.06 20:10:11 | 000,002,488 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Access 2016.lnk
[2016.06.06 20:10:11 | 000,002,453 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outlook 2016.lnk
[2016.06.06 20:10:11 | 000,002,449 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Publisher 2016.lnk
[2016.06.06 18:49:53 | 000,112,032 | ---- | C] () -- C:\WINDOWS\SysNative\NvRtmpStreamer64.dll
[2016.06.06 18:41:52 | 000,001,053 | ---- | C] () -- C:\Users\Bert\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Volitelné funkce.lnk
[2016.06.06 18:37:49 | 000,001,295 | ---- | C] () -- C:\Users\Bert\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Eye Care Switcher.lnk
[2016.06.06 18:33:31 | 000,002,234 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
[2016.06.06 18:33:31 | 000,002,222 | ---- | C] () -- C:\Users\Public\Desktop\Google Chrome.lnk
[2016.06.06 18:28:24 | 000,002,390 | ---- | C] () -- C:\Users\Bert\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
[2016.06.06 18:26:37 | 000,000,165 | ---- | C] () -- C:\Users\Bert\AppData\Roaming\sp_data.sys
[2016.06.06 18:26:33 | 000,016,148 | ---- | C] () -- C:\WINDOWS\SysNative\DESKTOP-SG2OKFT_defaultuser0_HistoryPrediction.bin
[2016.04.27 08:46:11 | 000,067,584 | --S- | C] () -- C:\WINDOWS\bootstat.dat
[2016.02.19 17:40:20 | 000,044,760 | ---- | C] () -- C:\WINDOWS\runSW.exe
[2016.02.19 17:40:19 | 000,451,072 | ---- | C] () -- C:\WINDOWS\SysWow64\ISSRemoveSP.exe
[2016.02.19 17:40:12 | 000,050,476 | ---- | C] () -- C:\WINDOWS\rtl8761a_mp_chip_bt40_fw_asic_rom_patch_8812ae_new.dll
[2016.02.19 17:40:12 | 000,050,456 | ---- | C] () -- C:\WINDOWS\rtl8723b_mp_chip_bt40_fw_asic_rom_patch_new.dll
[2016.02.19 17:40:12 | 000,050,108 | ---- | C] () -- C:\WINDOWS\rtl8723b_mp_chip_bt40_fw_asic_rom_patch_new_s1.dll
[2016.02.19 17:40:12 | 000,049,660 | ---- | C] () -- C:\WINDOWS\rtl8761a_mp_chip_bt40_fw_asic_rom_patch_8192ee_new.dll
[2016.02.19 17:40:12 | 000,049,580 | ---- | C] () -- C:\WINDOWS\rtl8761a_mp_chip_bt40_fw_asic_rom_patch_8192eu_new.dll
[2016.02.19 17:40:12 | 000,047,376 | ---- | C] () -- C:\WINDOWS\rtl8761a_mp_chip_bt40_fw_asic_rom_patch_new.dll
[2016.02.19 17:40:12 | 000,037,244 | ---- | C] () -- C:\WINDOWS\rlt8723a_chip_bt40_fw_asic_rom_patch.dll
[2016.02.19 17:40:12 | 000,037,148 | ---- | C] () -- C:\WINDOWS\rtl8821a_mp_chip_bt40_fw_asic_rom_patch_new.dll
[2015.10.30 09:24:43 | 000,215,943 | ---- | C] () -- C:\WINDOWS\SysWow64\dssec.dat
[2015.10.30 09:24:43 | 000,000,741 | ---- | C] () -- C:\WINDOWS\SysWow64\NOISE.DAT
[2015.10.30 09:18:39 | 000,164,224 | ---- | C] () -- C:\WINDOWS\SysWow64\weretw.dll
[2015.10.30 09:18:36 | 000,673,088 | ---- | C] () -- C:\WINDOWS\SysWow64\mlang.dat
[2015.10.30 09:18:36 | 000,047,104 | ---- | C] () -- C:\WINDOWS\SysWow64\BWContextHandler.dll
[2015.10.30 09:18:34 | 000,019,968 | ---- | C] () -- C:\WINDOWS\SysWow64\GamePanelExternalHook.dll
[2015.10.30 09:18:31 | 000,252,928 | ---- | C] () -- C:\WINDOWS\SysWow64\Windows.Perception.Stub.dll
[2015.10.30 09:18:31 | 000,029,184 | ---- | C] () -- C:\WINDOWS\SysWow64\dtdump.exe
[2015.10.30 09:18:29 | 000,364,544 | ---- | C] () -- C:\WINDOWS\SysWow64\msjetoledb40.dll
[2015.10.30 09:18:29 | 000,293,376 | ---- | C] () -- C:\WINDOWS\SysWow64\HrtfApo.dll
[2015.10.30 09:18:26 | 000,022,528 | ---- | C] () -- C:\WINDOWS\SysWow64\efsext.dll
[2015.10.30 09:18:25 | 000,002,269 | ---- | C] () -- C:\WINDOWS\SysWow64\WimBootCompress.ini
[2015.10.30 09:18:23 | 000,167,640 | ---- | C] () -- C:\WINDOWS\SysWow64\chs_singlechar_pinyin.dat
[2015.10.30 09:17:40 | 000,043,131 | ---- | C] () -- C:\WINDOWS\mib.bin
========== ZeroAccess Check ==========
[2016.06.07 08:02:39 | 000,000,227 | RHS- | M] () -- C:\WINDOWS\assembly\Desktop.ini
[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64
[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
"" = C:\Windows\SysNative\windows.storage.dll -- [2016.06.07 00:42:27 | 006,605,504 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\windows.storage.dll -- [2016.06.07 00:42:27 | 005,240,960 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\fastprox.dll -- [2015.10.30 09:17:43 | 000,987,648 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2015.10.30 09:18:21 | 000,765,440 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\wbemess.dll -- [2015.10.30 09:17:45 | 000,518,656 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
========== LOP Check ==========
[2016.06.06 18:33:13 | 000,000,000 | ---D | M] -- C:\Users\Bert\AppData\Roaming\awsRun
[2016.06.06 18:27:40 | 000,000,000 | ---D | M] -- C:\Users\Bert\AppData\Roaming\DropboxOEM
[2016.06.11 21:53:33 | 000,000,000 | ---D | M] -- C:\Users\Bert\AppData\Roaming\Enigma Software Group
[2016.06.06 19:40:25 | 000,000,000 | ---D | M] -- C:\Users\Bert\AppData\Roaming\Kingsoft
[2016.06.07 08:42:08 | 000,000,000 | ---D | M] -- C:\Users\Bert\AppData\Roaming\Reign of Augustus
[2016.06.06 21:54:21 | 000,000,000 | ---D | M] -- C:\Users\Bert\AppData\Roaming\Softland
[2016.06.06 21:54:41 | 000,000,000 | ---D | M] -- C:\Users\Bert\AppData\Roaming\StatSoft
[2016.06.06 18:26:38 | 000,000,000 | ---D | M] -- C:\Users\Bert\AppData\Roaming\WebStorage
[2016.06.08 20:19:45 | 000,000,000 | ---D | M] -- C:\Users\Bert\AppData\Roaming\WildTangent
========== Purity Check ==========
< End of report >
[2016.06.06 22:39:07 | 000,112,256 | ---- | M] ( ) -- C:\WINDOWS\SysNative\igfxSDKLibv2_0.dll
[2016.06.06 22:39:07 | 000,101,512 | ---- | M] ( ) -- C:\WINDOWS\SysNative\igfxSDKLib.dll
[2016.06.06 22:39:07 | 000,056,696 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysWow64\igfxexps32.dll
[2016.06.06 22:39:07 | 000,055,880 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysNative\igfxexps.dll
[2016.06.06 22:39:07 | 000,041,296 | ---- | M] () -- C:\WINDOWS\SysNative\iglhxc64_dev.vp
[2016.06.06 22:39:07 | 000,040,931 | ---- | M] () -- C:\WINDOWS\SysNative\iglhxo64_dev.vp
[2016.06.06 22:39:07 | 000,040,343 | ---- | M] () -- C:\WINDOWS\SysNative\iglhxo64.vp
[2016.06.06 22:39:07 | 000,040,316 | ---- | M] () -- C:\WINDOWS\SysNative\iglhxc64.vp
[2016.06.06 22:39:07 | 000,039,798 | ---- | M] () -- C:\WINDOWS\SysNative\iglhxg64_dev.vp
[2016.06.06 22:39:07 | 000,039,658 | ---- | M] () -- C:\WINDOWS\SysNative\iglhxg64.vp
[2016.06.06 22:39:07 | 000,029,832 | ---- | M] ( ) -- C:\WINDOWS\SysNative\igfxDILibv2_0.dll
[2016.06.06 22:39:07 | 000,029,832 | ---- | M] ( ) -- C:\WINDOWS\SysNative\igfxDILib.dll
[2016.06.06 22:39:07 | 000,028,296 | ---- | M] ( ) -- C:\WINDOWS\SysNative\igfxEMLibv2_0.dll
[2016.06.06 22:39:07 | 000,028,296 | ---- | M] ( ) -- C:\WINDOWS\SysNative\igfxEMLib.dll
[2016.06.06 22:39:07 | 000,023,176 | ---- | M] ( ) -- C:\WINDOWS\SysNative\igfxLHMLibv2_0.dll
[2016.06.06 22:39:07 | 000,023,168 | ---- | M] ( ) -- C:\WINDOWS\SysNative\igfxLHMLib.dll
[2016.06.06 22:39:07 | 000,004,850 | ---- | M] () -- C:\WINDOWS\SysNative\iglhxs64.vp
[2016.06.06 22:39:07 | 000,001,125 | ---- | M] () -- C:\WINDOWS\SysNative\iglhxa64.vp
[2016.06.06 22:39:06 | 039,857,152 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysNative\igdumdim64.dll
[2016.06.06 22:39:06 | 038,897,696 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysWow64\igdumdim32.dll
[2016.06.06 22:39:06 | 006,644,000 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysNative\igdusc64.dll
[2016.06.06 22:39:06 | 005,099,192 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysWow64\igdusc32.dll
[2016.06.06 22:39:06 | 001,591,432 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysNative\igfxcmjit64.dll
[2016.06.06 22:39:06 | 001,179,272 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysWow64\igfxcmjit32.dll
[2016.06.06 22:39:06 | 000,753,800 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysNative\igfxDH.dll
[2016.06.06 22:39:06 | 000,374,360 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysNative\igfxCUIService.exe
[2016.06.06 22:39:06 | 000,274,056 | ---- | M] () -- C:\WINDOWS\SysNative\igfxCPL.cpl
[2016.06.06 22:39:06 | 000,184,624 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysNative\igfxcmrt64.dll
[2016.06.06 22:39:06 | 000,183,600 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysNative\igfx11cmrt64.dll
[2016.06.06 22:39:06 | 000,160,904 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysWow64\igfxcmrt32.dll
[2016.06.06 22:39:06 | 000,160,904 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysWow64\igfx11cmrt32.dll
[2016.06.06 22:39:06 | 000,104,064 | ---- | M] () -- C:\WINDOWS\SysNative\igfxCUIServicePS.dll
[2016.06.06 22:39:06 | 000,095,872 | ---- | M] ( ) -- C:\WINDOWS\SysNative\igfxDHLibv2_0.dll
[2016.06.06 22:39:06 | 000,085,128 | ---- | M] ( ) -- C:\WINDOWS\SysNative\igfxDHLib.dll
[2016.06.06 22:39:05 | 007,936,600 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysNative\drivers\igdkmd64.sys
[2016.06.06 22:39:05 | 005,799,386 | ---- | M] () -- C:\WINDOWS\SysNative\igdclbif.bin
[2016.06.06 22:39:05 | 005,686,408 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysNative\igdmcl64.dll
[2016.06.06 22:39:05 | 004,927,624 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysNative\igdrcl64.dll
[2016.06.06 22:39:05 | 004,426,888 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysWow64\igdrcl32.dll
[2016.06.06 22:39:05 | 003,971,208 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysWow64\igdmcl32.dll
[2016.06.06 22:39:05 | 001,890,664 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysNative\igdmd64.dll
[2016.06.06 22:39:05 | 001,465,744 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysWow64\igdmd32.dll
[2016.06.06 22:39:05 | 000,439,432 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysNative\igdbcl64.dll
[2016.06.06 22:39:05 | 000,389,256 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysWow64\igdbcl32.dll
[2016.06.06 22:39:05 | 000,266,888 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysNative\igdfcl64.dll
[2016.06.06 22:39:05 | 000,225,920 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysWow64\igdfcl32.dll
[2016.06.06 22:39:05 | 000,223,880 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysNative\igdde64.dll
[2016.06.06 22:39:05 | 000,193,672 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysNative\igdail64.dll
[2016.06.06 22:39:05 | 000,182,480 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysWow64\igdde32.dll
[2016.06.06 22:39:05 | 000,174,216 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysWow64\igdail32.dll
[2016.06.06 22:39:04 | 034,815,616 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysWow64\igd11dxva32.dll
[2016.06.06 22:39:04 | 033,473,752 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysNative\igd11dxva64.dll
[2016.06.06 22:39:04 | 014,579,488 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysNative\igd10iumd64.dll
[2016.06.06 22:39:04 | 011,858,784 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysWow64\igd10iumd32.dll
[2016.06.06 22:39:04 | 004,246,672 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysNative\igd12umd64.dll
[2016.06.06 22:39:04 | 004,213,648 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysWow64\igd12umd32.dll
[2016.06.06 22:39:03 | 015,488,544 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysNative\igc64.dll
[2016.06.06 22:39:03 | 013,612,168 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysNative\ig9icd64.dll
[2016.06.06 22:39:03 | 013,482,720 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysWow64\igc32.dll
[2016.06.06 22:39:03 | 010,310,792 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysWow64\ig9icd32.dll
[2016.06.06 22:39:03 | 000,312,944 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysNative\igd10idpp64.dll
[2016.06.06 22:39:03 | 000,297,800 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysWow64\igd10idpp32.dll
[2016.06.06 22:39:02 | 029,102,216 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysNative\common_clang64.dll
[2016.06.06 22:39:02 | 019,862,152 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysWow64\common_clang32.dll
[2016.06.06 22:39:02 | 005,263,496 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysNative\GfxResources.dll
[2016.06.06 22:39:02 | 000,966,232 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysNative\Gfxv4_0.exe
[2016.06.06 22:39:02 | 000,962,656 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysNative\Gfxv2_0.exe
[2016.06.06 22:39:02 | 000,843,068 | ---- | M] () -- C:\WINDOWS\SysNative\DisplayAudiox64.cab
[2016.06.06 22:39:02 | 000,641,530 | ---- | M] () -- C:\WINDOWS\SysNative\FilmModeDetection.wmv
[2016.06.06 22:39:02 | 000,511,260 | ---- | M] () -- C:\WINDOWS\SysNative\cp_resources.bin
[2016.06.06 22:39:02 | 000,467,544 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysNative\GfxUIEx.exe
[2016.06.06 22:39:02 | 000,233,056 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysNative\DPTopologyApp.exe
[2016.06.06 22:39:02 | 000,232,536 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysNative\DPTopologyAppv2_0.exe
[2016.06.06 22:39:02 | 000,175,704 | ---- | M] (Intel Corporation) -- C:\WINDOWS\SysNative\difx64.exe
[2016.06.06 22:39:02 | 000,000,935 | ---- | M] () -- C:\WINDOWS\SysNative\Gfxv4_0.exe.config
[2016.06.06 22:39:02 | 000,000,935 | ---- | M] () -- C:\WINDOWS\SysNative\DPTopologyApp.exe.config
[2016.06.06 22:39:02 | 000,000,895 | ---- | M] () -- C:\WINDOWS\SysNative\Gfxv2_0.exe.config
[2016.06.06 22:39:02 | 000,000,895 | ---- | M] () -- C:\WINDOWS\SysNative\DPTopologyAppv2_0.exe.config
[2016.06.06 22:39:01 | 000,375,173 | ---- | M] () -- C:\WINDOWS\SysNative\ColorImageEnhancement.wmv
[2016.06.06 20:34:44 | 000,016,148 | ---- | M] () -- C:\WINDOWS\SysNative\DESKTOP-SG2OKFT_Bert_HistoryPrediction.bin
[2016.06.06 19:19:20 | 003,933,496 | ---- | M] (Logitech, Inc.) -- C:\WINDOWS\SysNative\LogiLDA.DLL
[2016.06.06 19:19:20 | 002,458,936 | ---- | M] (Logitech, Inc.) -- C:\WINDOWS\SysNative\LdaCx2.dll
[2016.06.06 19:19:20 | 000,828,872 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\msvcr110.dll
[2016.06.06 19:19:20 | 000,661,448 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\msvcp110.dll
[2016.06.06 19:19:20 | 000,354,264 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\vccorlib110.dll
[2016.06.06 18:36:29 | 000,097,344 | ---- | M] (Oracle Corporation) -- C:\WINDOWS\SysWow64\WindowsAccessBridge-32.dll
[2016.06.06 18:26:33 | 000,016,148 | ---- | M] () -- C:\WINDOWS\SysNative\DESKTOP-SG2OKFT_defaultuser0_HistoryPrediction.bin
[2016.06.03 09:22:06 | 039,977,920 | ---- | M] () -- C:\WINDOWS\SysNative\nvcompiler.dll
[2016.06.03 09:22:06 | 035,115,968 | ---- | M] () -- C:\WINDOWS\SysWow64\nvcompiler.dll
[2016.06.03 09:22:06 | 031,641,656 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\nvoglv64.dll
[2016.06.03 09:22:06 | 025,404,864 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysWow64\nvoglv32.dll
[2016.06.03 09:22:06 | 021,812,056 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\nvopencl.dll
[2016.06.03 09:22:06 | 021,355,464 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\nvcuda.dll
[2016.06.03 09:22:06 | 020,375,488 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\nvwgf2umx.dll
[2016.06.03 09:22:06 | 018,151,128 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysWow64\nvopencl.dll
[2016.06.03 09:22:06 | 017,746,664 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysWow64\nvcuda.dll
[2016.06.03 09:22:06 | 017,729,184 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysWow64\nvwgf2um.dll
[2016.06.03 09:22:06 | 017,432,544 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\nvd3dumx.dll
[2016.06.03 09:22:06 | 014,462,536 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysWow64\nvd3dum.dll
[2016.06.03 09:22:06 | 010,643,240 | ---- | M] () -- C:\WINDOWS\SysNative\nvptxJitCompiler.dll
[2016.06.03 09:22:06 | 008,733,792 | ---- | M] () -- C:\WINDOWS\SysWow64\nvptxJitCompiler.dll
[2016.06.03 09:22:06 | 003,811,256 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\nvapi64.dll
[2016.06.03 09:22:06 | 003,371,624 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysWow64\nvapi.dll
[2016.06.03 09:22:06 | 002,844,608 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\nvcuvid.dll
[2016.06.03 09:22:06 | 002,470,336 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysWow64\nvcuvid.dll
[2016.06.03 09:22:06 | 001,920,960 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\nvdispco6436839.dll
[2016.06.03 09:22:06 | 001,571,776 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\nvdispgenco6436839.dll
[2016.06.03 09:22:06 | 000,983,488 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\NvFBC64.dll
[2016.06.03 09:22:06 | 000,910,392 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\NvIFR64.dll
[2016.06.03 09:22:06 | 000,787,384 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\nvEncMFTH264.dll
[2016.06.03 09:22:06 | 000,769,984 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysWow64\NvFBC.dll
[2016.06.03 09:22:06 | 000,707,520 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysWow64\NvIFR.dll
[2016.06.03 09:22:06 | 000,669,952 | ---- | M] () -- C:\WINDOWS\SysNative\nvfatbinaryLoader.dll
[2016.06.03 09:22:06 | 000,632,848 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysWow64\nvEncMFTH264.dll
[2016.06.03 09:22:06 | 000,565,208 | ---- | M] () -- C:\WINDOWS\SysWow64\nvfatbinaryLoader.dll
[2016.06.03 09:22:06 | 000,425,016 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\NvIFROpenGL.dll
[2016.06.03 09:22:06 | 000,379,808 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\nvEncodeAPI64.dll
[2016.06.03 09:22:06 | 000,379,448 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysWow64\NvIFROpenGL.dll
[2016.06.03 09:22:06 | 000,316,632 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysWow64\nvEncodeAPI.dll
[2016.06.03 09:22:06 | 000,177,952 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\nvinitx.dll
[2016.06.03 09:22:06 | 000,155,768 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysWow64\nvinit.dll
[2016.06.03 09:22:06 | 000,040,084 | ---- | M] () -- C:\WINDOWS\SysNative\nvinfo.pb
[2016.06.03 09:22:06 | 000,000,594 | ---- | M] () -- C:\WINDOWS\SysNative\nv-vk64.json
[2016.06.03 09:22:06 | 000,000,594 | ---- | M] () -- C:\WINDOWS\SysWow64\nv-vk32.json
[2016.06.03 05:59:19 | 006,364,216 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\nvcpl.dll
[2016.06.03 05:59:19 | 002,455,608 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\nvsvc64.dll
[2016.06.03 05:59:17 | 001,762,752 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\nvsvcr.dll
[2016.06.03 05:59:17 | 000,534,072 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\nv3dappshext.dll
[2016.06.03 05:59:17 | 000,392,128 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\nvmctray.dll
[2016.06.03 05:59:17 | 000,081,856 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\nv3dappshextr.dll
[2016.06.03 05:59:17 | 000,069,568 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\SysNative\nvshext.dll
[2016.06.03 05:59:09 | 006,452,948 | ---- | M] () -- C:\WINDOWS\SysNative\nvcoproc.bin
========== Files Created - No Company Name ==========
[2016.06.12 09:52:21 | 000,001,221 | ---- | C] () -- C:\Users\Bert\Desktop\CrystalDiskInfo.lnk
[2016.06.11 23:02:44 | 000,000,000 | -H-- | C] () -- C:\WINDOWS\SysNative\drivers\Msft_User_WpdFs_01_11_00.Wdf
[2016.06.11 21:53:49 | 000,000,000 | ---- | C] () -- C:\autoexec.bat
[2016.06.11 21:53:31 | 000,001,134 | ---- | C] () -- C:\Users\Bert\Desktop\SpyHunter.lnk
[2016.06.11 21:53:11 | 000,022,704 | ---- | C] () -- C:\WINDOWS\SysNative\drivers\EsgScanner.sys
[2016.06.11 21:49:34 | 000,000,000 | ---- | C] () -- C:\Users\Bert\Desktop\Nový rastrový obrázek.bmp
[2016.06.11 20:54:30 | 3393,560,576 | -HS- | C] () -- C:\hiberfil.sys
[2016.06.11 17:56:14 | 000,001,189 | ---- | C] () -- C:\Users\Bert\Desktop\AdsFix_Donate.lnk
[2016.06.11 15:12:48 | 000,000,512 | ---- | C] () -- C:\Users\Bert\Desktop\MBR.dat
[2016.06.11 12:11:59 | 000,024,064 | ---- | C] () -- C:\WINDOWS\zoek-delete.exe
[2016.06.11 12:00:51 | 001,309,184 | ---- | C] () -- C:\Users\Bert\Desktop\zoek.exe
[2016.06.10 20:47:50 | 000,028,272 | ---- | C] () -- C:\WINDOWS\SysNative\drivers\TrueSight.sys
[2016.06.10 20:46:28 | 024,172,616 | ---- | C] () -- C:\Users\Bert\Desktop\RogueKillerX64.exe
[2016.06.10 13:30:36 | 003,677,248 | ---- | C] () -- C:\Users\Bert\Desktop\adwcleaner_5.119.exe
[2016.06.08 20:13:11 | 000,001,177 | ---- | C] () -- C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
[2016.06.08 09:35:46 | 006,452,948 | ---- | C] () -- C:\WINDOWS\SysNative\nvcoproc.bin
[2016.06.08 09:34:47 | 039,977,920 | ---- | C] () -- C:\WINDOWS\SysNative\nvcompiler.dll
[2016.06.08 09:34:47 | 035,115,968 | ---- | C] () -- C:\WINDOWS\SysWow64\nvcompiler.dll
[2016.06.08 09:34:47 | 010,643,240 | ---- | C] () -- C:\WINDOWS\SysNative\nvptxJitCompiler.dll
[2016.06.08 09:34:47 | 008,733,792 | ---- | C] () -- C:\WINDOWS\SysWow64\nvptxJitCompiler.dll
[2016.06.08 09:34:47 | 000,669,952 | ---- | C] () -- C:\WINDOWS\SysNative\nvfatbinaryLoader.dll
[2016.06.08 09:34:47 | 000,565,208 | ---- | C] () -- C:\WINDOWS\SysWow64\nvfatbinaryLoader.dll
[2016.06.08 09:34:47 | 000,040,084 | ---- | C] () -- C:\WINDOWS\SysNative\nvinfo.pb
[2016.06.08 09:34:47 | 000,000,594 | ---- | C] () -- C:\WINDOWS\SysNative\nv-vk64.json
[2016.06.08 09:34:47 | 000,000,594 | ---- | C] () -- C:\WINDOWS\SysWow64\nv-vk32.json
[2016.06.07 00:45:08 | 000,051,362 | ---- | C] () -- C:\WINDOWS\SysWow64\license.rtf
[2016.06.07 00:45:08 | 000,051,362 | ---- | C] () -- C:\WINDOWS\SysNative\license.rtf
[2016.06.07 00:42:31 | 000,002,186 | ---- | C] () -- C:\WINDOWS\SysWow64\AppxProvisioning.xml
[2016.06.07 00:42:29 | 002,656,952 | ---- | C] () -- C:\WINDOWS\SysNative\CoreUIComponents.dll
[2016.06.07 00:42:29 | 001,862,008 | ---- | C] () -- C:\WINDOWS\SysWow64\CoreUIComponents.dll
[2016.06.07 00:42:29 | 000,235,008 | ---- | C] () -- C:\WINDOWS\SysNative\MTF.dll
[2016.06.07 00:42:29 | 000,002,186 | ---- | C] () -- C:\WINDOWS\SysNative\AppxProvisioning.xml
[2016.06.07 00:42:27 | 000,162,816 | ---- | C] () -- C:\WINDOWS\SysWow64\MTF.dll
[2016.06.07 00:29:14 | 000,809,628 | ---- | C] () -- C:\WINDOWS\SysNative\perfh015.dat
[2016.06.07 00:29:14 | 000,342,912 | ---- | C] () -- C:\WINDOWS\SysNative\perfi015.dat
[2016.06.07 00:29:14 | 000,158,256 | ---- | C] () -- C:\WINDOWS\SysNative\perfc015.dat
[2016.06.07 00:29:14 | 000,041,236 | ---- | C] () -- C:\WINDOWS\SysNative\perfd015.dat
[2016.06.06 23:52:03 | 000,022,924 | ---- | C] () -- C:\WINDOWS\SysNative\emptyregdb.dat
[2016.06.06 23:50:25 | 000,001,552 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk
[2016.06.06 23:46:24 | 000,000,200 | ---- | C] () -- C:\WINDOWS\SysNative\{EC94D02F-D200-4428-9531-05AF7F9799CB}.bat
[2016.06.06 23:46:24 | 000,000,180 | ---- | C] () -- C:\WINDOWS\SysNative\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
[2016.06.06 23:46:24 | 000,000,000 | ---- | C] () -- C:\WINDOWS\SysNative\GfxValDisplayLog.bin
[2016.06.06 23:46:15 | 000,000,000 | -H-- | C] () -- C:\WINDOWS\SysNative\drivers\Msft_User_esif_umdf2_02_00_00.Wdf
[2016.06.06 22:39:07 | 002,813,952 | ---- | C] () -- C:\WINDOWS\SysNative\iglhxa64.cpa
[2016.06.06 22:39:07 | 001,027,680 | ---- | C] () -- C:\WINDOWS\SysNative\igfxSDK.exe
[2016.06.06 22:39:07 | 000,403,671 | ---- | C] () -- C:\WINDOWS\SysNative\ImageStabilization.wmv
[2016.06.06 22:39:07 | 000,402,520 | ---- | C] () -- C:\WINDOWS\SysNative\igfxTray.exe
[2016.06.06 22:39:07 | 000,112,256 | ---- | C] ( ) -- C:\WINDOWS\SysNative\igfxSDKLibv2_0.dll
[2016.06.06 22:39:07 | 000,101,512 | ---- | C] ( ) -- C:\WINDOWS\SysNative\igfxSDKLib.dll
[2016.06.06 22:39:07 | 000,041,296 | ---- | C] () -- C:\WINDOWS\SysNative\iglhxc64_dev.vp
[2016.06.06 22:39:07 | 000,040,931 | ---- | C] () -- C:\WINDOWS\SysNative\iglhxo64_dev.vp
[2016.06.06 22:39:07 | 000,040,343 | ---- | C] () -- C:\WINDOWS\SysNative\iglhxo64.vp
[2016.06.06 22:39:07 | 000,040,316 | ---- | C] () -- C:\WINDOWS\SysNative\iglhxc64.vp
[2016.06.06 22:39:07 | 000,039,798 | ---- | C] () -- C:\WINDOWS\SysNative\iglhxg64_dev.vp
[2016.06.06 22:39:07 | 000,039,658 | ---- | C] () -- C:\WINDOWS\SysNative\iglhxg64.vp
[2016.06.06 22:39:07 | 000,029,832 | ---- | C] ( ) -- C:\WINDOWS\SysNative\igfxDILibv2_0.dll
[2016.06.06 22:39:07 | 000,029,832 | ---- | C] ( ) -- C:\WINDOWS\SysNative\igfxDILib.dll
[2016.06.06 22:39:07 | 000,028,296 | ---- | C] ( ) -- C:\WINDOWS\SysNative\igfxEMLibv2_0.dll
[2016.06.06 22:39:07 | 000,028,296 | ---- | C] ( ) -- C:\WINDOWS\SysNative\igfxEMLib.dll
[2016.06.06 22:39:07 | 000,023,176 | ---- | C] ( ) -- C:\WINDOWS\SysNative\igfxLHMLibv2_0.dll
[2016.06.06 22:39:07 | 000,023,168 | ---- | C] ( ) -- C:\WINDOWS\SysNative\igfxLHMLib.dll
[2016.06.06 22:39:07 | 000,004,850 | ---- | C] () -- C:\WINDOWS\SysNative\iglhxs64.vp
[2016.06.06 22:39:07 | 000,001,125 | ---- | C] () -- C:\WINDOWS\SysNative\iglhxa64.vp
[2016.06.06 22:39:06 | 000,274,056 | ---- | C] () -- C:\WINDOWS\SysNative\igfxCPL.cpl
[2016.06.06 22:39:06 | 000,104,064 | ---- | C] () -- C:\WINDOWS\SysNative\igfxCUIServicePS.dll
[2016.06.06 22:39:06 | 000,095,872 | ---- | C] ( ) -- C:\WINDOWS\SysNative\igfxDHLibv2_0.dll
[2016.06.06 22:39:06 | 000,085,128 | ---- | C] ( ) -- C:\WINDOWS\SysNative\igfxDHLib.dll
[2016.06.06 22:39:05 | 005,799,386 | ---- | C] () -- C:\WINDOWS\SysNative\igdclbif.bin
[2016.06.06 22:39:02 | 000,843,068 | ---- | C] () -- C:\WINDOWS\SysNative\DisplayAudiox64.cab
[2016.06.06 22:39:02 | 000,641,530 | ---- | C] () -- C:\WINDOWS\SysNative\FilmModeDetection.wmv
[2016.06.06 22:39:02 | 000,511,260 | ---- | C] () -- C:\WINDOWS\SysNative\cp_resources.bin
[2016.06.06 22:39:02 | 000,000,935 | ---- | C] () -- C:\WINDOWS\SysNative\Gfxv4_0.exe.config
[2016.06.06 22:39:02 | 000,000,935 | ---- | C] () -- C:\WINDOWS\SysNative\DPTopologyApp.exe.config
[2016.06.06 22:39:02 | 000,000,895 | ---- | C] () -- C:\WINDOWS\SysNative\Gfxv2_0.exe.config
[2016.06.06 22:39:02 | 000,000,895 | ---- | C] () -- C:\WINDOWS\SysNative\DPTopologyAppv2_0.exe.config
[2016.06.06 22:39:01 | 000,375,173 | ---- | C] () -- C:\WINDOWS\SysNative\ColorImageEnhancement.wmv
[2016.06.06 21:54:21 | 000,001,659 | ---- | C] () -- C:\Users\Public\Desktop\STATISTICA.lnk
[2016.06.06 21:54:20 | 000,007,549 | ---- | C] () -- C:\WINDOWS\SysNative\novak7.ctm
[2016.06.06 20:34:44 | 000,016,148 | ---- | C] () -- C:\WINDOWS\SysNative\DESKTOP-SG2OKFT_Bert_HistoryPrediction.bin
[2016.06.06 20:10:11 | 000,002,561 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneNote 2016.lnk
[2016.06.06 20:10:11 | 000,002,560 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneDrive pro firmy.lnk
[2016.06.06 20:10:11 | 000,002,555 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Word 2016.lnk
[2016.06.06 20:10:11 | 000,002,532 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerPoint 2016.lnk
[2016.06.06 20:10:11 | 000,002,527 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Excel 2016.lnk
[2016.06.06 20:10:11 | 000,002,520 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype pro firmy 2016.lnk
[2016.06.06 20:10:11 | 000,002,488 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Access 2016.lnk
[2016.06.06 20:10:11 | 000,002,453 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outlook 2016.lnk
[2016.06.06 20:10:11 | 000,002,449 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Publisher 2016.lnk
[2016.06.06 18:49:53 | 000,112,032 | ---- | C] () -- C:\WINDOWS\SysNative\NvRtmpStreamer64.dll
[2016.06.06 18:41:52 | 000,001,053 | ---- | C] () -- C:\Users\Bert\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Volitelné funkce.lnk
[2016.06.06 18:37:49 | 000,001,295 | ---- | C] () -- C:\Users\Bert\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Eye Care Switcher.lnk
[2016.06.06 18:33:31 | 000,002,234 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
[2016.06.06 18:33:31 | 000,002,222 | ---- | C] () -- C:\Users\Public\Desktop\Google Chrome.lnk
[2016.06.06 18:28:24 | 000,002,390 | ---- | C] () -- C:\Users\Bert\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
[2016.06.06 18:26:37 | 000,000,165 | ---- | C] () -- C:\Users\Bert\AppData\Roaming\sp_data.sys
[2016.06.06 18:26:33 | 000,016,148 | ---- | C] () -- C:\WINDOWS\SysNative\DESKTOP-SG2OKFT_defaultuser0_HistoryPrediction.bin
[2016.04.27 08:46:11 | 000,067,584 | --S- | C] () -- C:\WINDOWS\bootstat.dat
[2016.02.19 17:40:20 | 000,044,760 | ---- | C] () -- C:\WINDOWS\runSW.exe
[2016.02.19 17:40:19 | 000,451,072 | ---- | C] () -- C:\WINDOWS\SysWow64\ISSRemoveSP.exe
[2016.02.19 17:40:12 | 000,050,476 | ---- | C] () -- C:\WINDOWS\rtl8761a_mp_chip_bt40_fw_asic_rom_patch_8812ae_new.dll
[2016.02.19 17:40:12 | 000,050,456 | ---- | C] () -- C:\WINDOWS\rtl8723b_mp_chip_bt40_fw_asic_rom_patch_new.dll
[2016.02.19 17:40:12 | 000,050,108 | ---- | C] () -- C:\WINDOWS\rtl8723b_mp_chip_bt40_fw_asic_rom_patch_new_s1.dll
[2016.02.19 17:40:12 | 000,049,660 | ---- | C] () -- C:\WINDOWS\rtl8761a_mp_chip_bt40_fw_asic_rom_patch_8192ee_new.dll
[2016.02.19 17:40:12 | 000,049,580 | ---- | C] () -- C:\WINDOWS\rtl8761a_mp_chip_bt40_fw_asic_rom_patch_8192eu_new.dll
[2016.02.19 17:40:12 | 000,047,376 | ---- | C] () -- C:\WINDOWS\rtl8761a_mp_chip_bt40_fw_asic_rom_patch_new.dll
[2016.02.19 17:40:12 | 000,037,244 | ---- | C] () -- C:\WINDOWS\rlt8723a_chip_bt40_fw_asic_rom_patch.dll
[2016.02.19 17:40:12 | 000,037,148 | ---- | C] () -- C:\WINDOWS\rtl8821a_mp_chip_bt40_fw_asic_rom_patch_new.dll
[2015.10.30 09:24:43 | 000,215,943 | ---- | C] () -- C:\WINDOWS\SysWow64\dssec.dat
[2015.10.30 09:24:43 | 000,000,741 | ---- | C] () -- C:\WINDOWS\SysWow64\NOISE.DAT
[2015.10.30 09:18:39 | 000,164,224 | ---- | C] () -- C:\WINDOWS\SysWow64\weretw.dll
[2015.10.30 09:18:36 | 000,673,088 | ---- | C] () -- C:\WINDOWS\SysWow64\mlang.dat
[2015.10.30 09:18:36 | 000,047,104 | ---- | C] () -- C:\WINDOWS\SysWow64\BWContextHandler.dll
[2015.10.30 09:18:34 | 000,019,968 | ---- | C] () -- C:\WINDOWS\SysWow64\GamePanelExternalHook.dll
[2015.10.30 09:18:31 | 000,252,928 | ---- | C] () -- C:\WINDOWS\SysWow64\Windows.Perception.Stub.dll
[2015.10.30 09:18:31 | 000,029,184 | ---- | C] () -- C:\WINDOWS\SysWow64\dtdump.exe
[2015.10.30 09:18:29 | 000,364,544 | ---- | C] () -- C:\WINDOWS\SysWow64\msjetoledb40.dll
[2015.10.30 09:18:29 | 000,293,376 | ---- | C] () -- C:\WINDOWS\SysWow64\HrtfApo.dll
[2015.10.30 09:18:26 | 000,022,528 | ---- | C] () -- C:\WINDOWS\SysWow64\efsext.dll
[2015.10.30 09:18:25 | 000,002,269 | ---- | C] () -- C:\WINDOWS\SysWow64\WimBootCompress.ini
[2015.10.30 09:18:23 | 000,167,640 | ---- | C] () -- C:\WINDOWS\SysWow64\chs_singlechar_pinyin.dat
[2015.10.30 09:17:40 | 000,043,131 | ---- | C] () -- C:\WINDOWS\mib.bin
========== ZeroAccess Check ==========
[2016.06.07 08:02:39 | 000,000,227 | RHS- | M] () -- C:\WINDOWS\assembly\Desktop.ini
[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64
[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
"" = C:\Windows\SysNative\windows.storage.dll -- [2016.06.07 00:42:27 | 006,605,504 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\windows.storage.dll -- [2016.06.07 00:42:27 | 005,240,960 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\fastprox.dll -- [2015.10.30 09:17:43 | 000,987,648 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2015.10.30 09:18:21 | 000,765,440 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\wbemess.dll -- [2015.10.30 09:17:45 | 000,518,656 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
========== LOP Check ==========
[2016.06.06 18:33:13 | 000,000,000 | ---D | M] -- C:\Users\Bert\AppData\Roaming\awsRun
[2016.06.06 18:27:40 | 000,000,000 | ---D | M] -- C:\Users\Bert\AppData\Roaming\DropboxOEM
[2016.06.11 21:53:33 | 000,000,000 | ---D | M] -- C:\Users\Bert\AppData\Roaming\Enigma Software Group
[2016.06.06 19:40:25 | 000,000,000 | ---D | M] -- C:\Users\Bert\AppData\Roaming\Kingsoft
[2016.06.07 08:42:08 | 000,000,000 | ---D | M] -- C:\Users\Bert\AppData\Roaming\Reign of Augustus
[2016.06.06 21:54:21 | 000,000,000 | ---D | M] -- C:\Users\Bert\AppData\Roaming\Softland
[2016.06.06 21:54:41 | 000,000,000 | ---D | M] -- C:\Users\Bert\AppData\Roaming\StatSoft
[2016.06.06 18:26:38 | 000,000,000 | ---D | M] -- C:\Users\Bert\AppData\Roaming\WebStorage
[2016.06.08 20:19:45 | 000,000,000 | ---D | M] -- C:\Users\Bert\AppData\Roaming\WildTangent
========== Purity Check ==========
< End of report >
Re: Zamořené PC
OTL Extras logfile created on: 12.06.2016 9:54:25 - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Bert\Desktop
64bit- An unknown product (Version = 6.2.9200) - Type = NTWorkstation
Internet Explorer (Version = 9.11.10586.0)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: dd.MM.yyyy
7,90 Gb Total Physical Memory | 5,84 Gb Available Physical Memory | 73,89% Memory free
9,78 Gb Paging File | 7,86 Gb Available in Paging File | 80,39% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 237,72 Gb Total Space | 173,33 Gb Free Space | 72,92% Space Free | Partition Type: NTFS
Computer Name: BERTUVPC | User Name: Bert | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
========== Extra Registry (SafeList) ==========
========== File Associations ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.html[@ = htmlfile] -- C:\Program Files\Internet Explorer\IEXPLORE.EXE (Microsoft Corporation)
.url[@ = InternetShortcut] -- C:\WINDOWS\SysNative\rundll32.exe (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\WINDOWS\SysWow64\control.exe (Microsoft Corporation)
.html [@ = htmlfile] -- C:\Program Files\Internet Explorer\IEXPLORE.EXE (Microsoft Corporation)
========== Shell Spawning ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [edit] -- Reg Error: Key error.
htmlfile [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation)
htmlfile [opennew] -- Reg Error: Key error.
htmlfile [print] -- "C:\WINDOWS\system32\rundll32.exe" "C:\WINDOWS\system32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
http [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation)
https [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
InternetShortcut [open] -- "C:\WINDOWS\system32\rundll32.exe" "C:\WINDOWS\system32\ieframe.dll",OpenURL %l (Microsoft Corporation)
InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\OpenWith.exe "%1" (Microsoft Corporation)
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [edit] -- Reg Error: Key error.
htmlfile [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation)
htmlfile [opennew] -- Reg Error: Key error.
http [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation)
https [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\OpenWith.exe "%1" (Microsoft Corporation)
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Value error.
========== Security Center Settings ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = 7C 82 68 8E 51 A0 D1 01 [binary data]
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Upgrade]
"UpgradeTime" = [binary data]
"DontEnumerateCommonFilesUpgradeExe" = 1
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Upgrade]
"UpgradeTime" = Reg Error: Unknown registry data type -- File not found
========== Firewall Settings ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
========== Authorized Applications List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
"C:\Users\Bert\Desktop\adsfix_3_11.06.2016.1.exe" = C:\Users\Bert\Desktop\adsfix_3_11.06.2016.1.exe:*:Enabled:adsfix_3_11.06.2016.1 -- (SosVirus)
"C:\Users\Bert\Desktop\adsfix_3_11.06.2016.1.exe" = C:\Users\Bert\Desktop\adsfix_3_11.06.2016.1.exe:*:Enabled:adsfix_3_11.06.2016.1 -- (SosVirus)
========== Vista Active Open Ports Exception List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{14296478-135D-48FD-885E-61B3ED269C82}" = lport=47995 | protocol=17 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamer.exe |
"{148BA415-1E05-4685-BA29-A02BB78C26A6}" = lport=5353 | protocol=17 | dir=in | app=c:\program files (x86)\google\chrome\application\chrome.exe |
"{18BA4B53-925D-45EE-8951-0AA2C04E2299}" = lport=35043 | protocol=6 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamer.exe |
"{2C00B430-B5DC-45CF-8C9D-78427841E93B}" = lport=5353 | protocol=17 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamnetworkservice.exe |
"{994338F3-366A-4D42-BE2A-0FE31CD7BDCA}" = lport=80 | protocol=6 | dir=in | app=c:\program files (x86)\nvidia corporation\netservice\nvnetworkservice.exe |
"{A7DBDAFC-02E5-4E1E-ABB4-6A0375E679FC}" = lport=47998 | protocol=17 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamuseragent.exe |
"{C436681E-E95E-4B05-AA1F-B196E741BCB8}" = lport=443 | protocol=6 | dir=in | app=c:\program files (x86)\nvidia corporation\netservice\nvnetworkservice.exe |
"{EADEC054-B959-4294-99AA-B2025729A3DC}" = lport=6004 | protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\root\office16\outlook.exe |
"{FF1FAD8F-1C10-417B-9E7A-0A114C40EB12}" = lport=47984 | protocol=6 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamnetworkservice.exe |
"TCP Query User{A8064AE8-6CBA-412B-A1EC-D72343F79773}C:\Users\Bert\Desktop\adsfix_3_11.06.2016.1.exe" = lport=19844 | protocol=6 | dir=in | app=c:\users\bert\desktop\adsfix_3_11.06.2016.1.exe |
"UDP Query User{8012CD5F-78FA-489A-B2C4-2168ADE624EB}C:\Users\Bert\Desktop\adsfix_3_11.06.2016.1.exe" = lport=19844 | protocol=17 | dir=in | app=c:\users\bert\desktop\adsfix_3_11.06.2016.1.exe |
========== Vista Active Application Exception List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{00EA4368-1EB1-42EB-928C-095B63F62D36}" = dir=out | name=@{microsoft.aad.brokerplugin_1000.10586.0.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.aad.brokerplugin/resources/packagedisplayname} |
"{02FED8A6-5820-49A2-B2E4-CEFD1AB7939D}" = dir=out | name=@{microsoft.bingsports_4.9.76.0_x86__8wekyb3d8bbwe?ms-resource://microsoft.bingsports/resources/applicationtitlewithbranding} |
"{0901697C-8E3F-4DEB-BFEA-BCB4F028C7B7}" = dir=out | name=tripadvisor hotels flights restaurants |
"{0AD44972-FC8A-4B1F-9F9D-AAA132396781}" = dir=out | name=@{microsoft.lockapp_10.0.10586.0_neutral__cw5n1h2txyewy?ms-resource://microsoft.lockapp/resources/appdisplayname} |
"{0C377016-08E2-4E55-A6C0-33F307486BC7}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steam.exe |
"{0E7E6E0A-964C-4622-8B61-7F4E455A4A48}" = dir=out | name=@{windows.contactsupport_10.0.10240.16384_neutral_neutral_cw5n1h2txyewy?ms-resource://windows.contactsupport/resources/appdisplayname} |
"{0FCBD30F-A8E2-4826-A298-84FF72594262}" = dir=in | name=@{microsoft.messaging_2.15.20002.0_x86__8wekyb3d8bbwe?ms-resource://microsoft.messaging/microsoft.apps.messaging.skype/skypemessaging.resources/skype_appstorename} |
"{13506469-2BA5-4C77-A821-352AD7B33E78}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\grand ages rome\rome.exe |
"{142BFC8A-FD61-4B0B-8303-9C2E9481B672}" = dir=out | name=@{microsoft.windowsfeedback_10.0.10586.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windowsfeedback/feedbackapp.resources/appname/text} |
"{146C12FA-16ED-4FC4-A466-80BE1E709124}" = dir=in | name=@{microsoft.bingsports_4.9.76.0_x86__8wekyb3d8bbwe?ms-resource://microsoft.bingsports/resources/applicationtitlewithbranding} |
"{14B6E898-665A-482F-B550-35EE66489E90}" = dir=out | name=microsoft solitaire collection |
"{153F56B7-8D96-4155-81FA-A8138755D131}" = dir=out | name=@{microsoft.windows.cortana_1.4.8.152_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.cortana/resources/displayname} |
"{1A3160B4-6A1F-49AA-BD51-ED7239FFC164}" = dir=in | name=@{microsoft.windowsstore_11602.1.26.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsstore/resources/storetitle} |
"{1AD30027-A186-44F6-8C3C-1B5B26D1856C}" = dir=out | name=@{microsoft.accountscontrol_10.0.10586.0_neutral__cw5n1h2txyewy?ms-resource://microsoft.accountscontrol/resources/displayname} |
"{1BED712C-1928-45E4-8C2D-7D5EBC31AA13}" = dir=in | name=@{microsoft.windows.cloudexperiencehost_10.0.10586.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.cloudexperiencehost/resources/appdescription} |
"{1D0F74C0-612F-4DA9-9E85-DD43F4622E97}" = dir=out | name=@{microsoft.windows.contentdeliverymanager_10.0.10586.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.contentdeliverymanager/resources/appdisplayname} |
"{1D60292C-1382-4334-8A76-12EBC0C2CCA1}" = dir=in | name=@{microsoft.windows.cloudexperiencehost_10.0.10240.16384_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.cloudexperiencehost/resources/appdescription} |
"{1F9754A8-1600-4109-AA76-1EC8B8BE511C}" = dir=in | name=@{microsoft.windowscommunicationsapps_17.6868.41141.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowscommunicationsapps/hxcommintl/appmanifest_outlookdesktop_displayname} |
"{1FFE421E-137C-4AFC-836B-7509411EA32C}" = dir=in | name=@{microsoft.aad.brokerplugin_1000.10586.0.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.aad.brokerplugin/resources/packagedisplayname} |
"{2059B846-82A5-4248-9ACC-0D53018D1565}" = dir=out | name=@{microsoft.windowsphone_10.1602.3010.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsphone/resources/appstorename} |
"{231FA41B-D6D9-4DE2-8E01-C5039C242E12}" = dir=out | name=@{microsoft.windowsfeedback_10.0.10586.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windowsfeedback/feedbackapp.resources/appname/text} |
"{26B35BC4-CC51-4824-BDB1-1CEF3FF344FF}" = dir=out | name=@{microsoft.microsoftofficehub_17.7031.23501.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.microsoftofficehub/officehubintl/appmanifest_getoffice_displayname} |
"{28A7D1FC-96BD-42C5-BE05-EAFACC03FC5B}" = dir=out | name=@{microsoft.windows.contentdeliverymanager_10.0.10586.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.contentdeliverymanager/resources/appdisplayname} |
"{2D51B304-34B7-4511-9CAD-1CF083C99C3E}" = dir=out | name=twitter |
"{318A54A4-63E6-4790-826C-1790CA1CD3BC}" = dir=out | name=@{microsoft.aad.brokerplugin_1000.10586.0.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.aad.brokerplugin/resources/packagedisplayname} |
"{38DCAE28-0B58-4D2D-9894-16AF54A03CAF}" = dir=out | name=@{microsoft.microsoftedge_20.10240.16384.0_neutral__8wekyb3d8bbwe?ms-resource://microsoft.microsoftedge/resources/appname} |
"{3927C6E8-C8B2-4E41-82AF-558C390774D8}" = dir=out | name=@{windows.purchasedialog_6.2.0.0_neutral_neutral_cw5n1h2txyewy?ms-resource://windows.purchasedialog/resources/displayname} |
"{3994C23E-3377-473F-A14E-E922F8A7695C}" = dir=out | name=windows_ie_ac_001 |
"{3C8985B1-DFBD-4560-BBC3-484FF3BDF945}" = dir=out | name=@{microsoft.bingfinance_4.9.76.0_x86__8wekyb3d8bbwe?ms-resource://microsoft.bingfinance/resources/applicationtitlewithbranding} |
"{3E907371-480C-4E22-8551-6F54B9B11591}" = dir=out | name=@{microsoft.windows.cloudexperiencehost_10.0.10586.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.cloudexperiencehost/resources/appdescription} |
"{3FD7C119-B054-4FBB-8348-B446E5A9ADD8}" = dir=in | name=@{microsoft.microsoftedge_20.10240.16384.0_neutral__8wekyb3d8bbwe?ms-resource://microsoft.microsoftedge/resources/appname} |
"{4228C46D-BBC1-48DB-ABCD-32702B2CD407}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\democracy 3\democracy3.exe |
"{426C84AD-B345-49F8-8EF2-D6FAFC479E6E}" = dir=out | name=@{microsoft.commsphone_2.17.27003.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.commsphone/resources/appstorename} |
"{43040A6E-269B-4E7E-8CBB-3003B1C8FF42}" = dir=out | name=@{microsoft.connectivitystore_1.1604.4.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.connectivitystore/mswifiresources/appstorename} |
"{471F6C75-C8F1-4207-BDA9-B04DFB6BC699}" = dir=out | name=@{microsoft.xboxidentityprovider_1000.10586.0.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.xboxidentityprovider/resources/pkgdisplayname} |
"{477AA7DA-C5E2-4397-9CD0-357A27FC7B5C}" = dir=out | name=@{microsoft.windowsfeedback_10.0.10240.16384_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windowsfeedback/feedbackapp.resources/appname/text} |
"{48211505-57FA-42E4-B435-E072C7F4C51D}" = dir=in | name=@{windows.contactsupport_10.0.10586.0_neutral_neutral_cw5n1h2txyewy?ms-resource://windows.contactsupport/resources/appdisplayname} |
"{4B3331CB-1E1D-4629-977A-803331107BFB}" = dir=out | name=@{microsoft.windows.parentalcontrols_1000.10586.0.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.parentalcontrols/resources/displayname} |
"{4C23F819-2B91-496F-8BF9-E97A75C12077}" = dir=in | name=@{microsoft.microsoftedge_25.10586.0.0_neutral__8wekyb3d8bbwe?ms-resource://microsoft.microsoftedge/resources/appname} |
"{4CAF5C20-36DD-491B-BAAD-D7F43A01588B}" = dir=out | name=@{microsoft.windows.cloudexperiencehost_10.0.10240.16384_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.cloudexperiencehost/resources/appdescription} |
"{4CE780F2-3FDC-43DF-808A-910D047D3644}" = dir=out | name=@{microsoft.windowsmaps_4.1603.1190.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsmaps/resources/appstorename} |
"{4DC02280-39DE-474C-94BA-5BBC3944AA13}" = dir=in | name=@{microsoft.bingfinance_4.9.76.0_x86__8wekyb3d8bbwe?ms-resource://microsoft.bingfinance/resources/applicationtitlewithbranding} |
"{50957F06-0434-4BD8-8445-2EF72DD27A30}" = dir=out | name=@{microsoft.lockapp_10.0.10240.16384_neutral__cw5n1h2txyewy?ms-resource://microsoft.lockapp/resources/appdisplayname} |
"{51311B5A-472D-4D25-9BF6-834E2E4F9A40}" = dir=in | name=@{microsoft.windows.cortana_1.4.8.152_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.cortana/resources/displayname} |
"{5377E18E-C34D-45E8-AEE7-7993C9E5C99F}" = dir=out | name=windows_ie_ac_001 |
"{5569D265-D5FC-4C9E-B535-E62DF9B861E2}" = dir=in | name=@{microsoft.bingnews_4.9.76.0_x86__8wekyb3d8bbwe?ms-resource://microsoft.bingnews/resources/applicationtitlewithbranding} |
"{594C87B9-AC02-4BCD-BA6F-41C18FD13D7C}" = dir=out | name=@{microsoft.windows.parentalcontrols_1000.10240.16384.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.parentalcontrols/resources/displayname} |
"{599D6BA6-83D1-4DE6-A487-85BFF80EFA00}" = dir=out | name=@{microsoft.xboxgamecallableui_1000.10240.16384.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.xboxgamecallableui/resources/pkgdisplayname} |
"{5C8B3185-2104-4D1C-873A-EE76B590727C}" = dir=out | name=@{microsoft.xboxgamecallableui_1000.10586.0.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.xboxgamecallableui/resources/pkgdisplayname} |
"{5DEF16B9-E3E4-4A23-9F9E-49C869F7BBDC}" = dir=out | name=asus welcome |
"{65379897-6C5C-4137-AD6E-E678BB721741}" = dir=out | name=@{microsoft.windows.cortana_1.6.1.52_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.cortana/resources/displayname} |
"{65C2134C-94E7-40F3-97F6-D7DB04622465}" = dir=out | name=@{microsoft.accountscontrol_10.0.10586.0_neutral__cw5n1h2txyewy?ms-resource://microsoft.accountscontrol/resources/displayname} |
"{6641CAE5-B5A6-4ED5-9E21-D28BA4E3BFFC}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steam.exe |
"{6783EFF6-3889-45BB-9F70-750A609652F5}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\root\office16\lync.exe |
"{6CA00601-5FF4-42D3-97BC-9BB41012C4D7}" = dir=in | name=onenote |
"{6DD544C1-3DDD-4F05-87E6-BEDAEB0D3242}" = dir=out | name=xbox |
"{7023AEE5-DF20-469F-A5E4-5440A3F226A2}" = dir=in | name=@{microsoft.microsoftofficehub_17.7031.23501.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.microsoftofficehub/officehubintl/appmanifest_getoffice_displayname} |
"{7369B77C-0515-42EE-8E27-8ECA414ED8D6}" = dir=out | name=@{windows.purchasedialog_6.2.0.0_neutral_neutral_cw5n1h2txyewy?ms-resource://windows.purchasedialog/resources/displayname} |
"{73C854B9-0D2F-4936-B34D-C5B11DE81A84}" = dir=in | name=@{microsoft.windows.cortana_1.6.1.52_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.cortana/resources/displayname} |
"{7405238E-EBDE-4475-8271-84F64B631DBF}" = dir=out | name=@{microsoft.microsoftedge_25.10586.0.0_neutral__8wekyb3d8bbwe?ms-resource://microsoft.microsoftedge/resources/appname} |
"{76E718B7-F9DC-436E-BD10-8EDFF20D0CC1}" = dir=out | name=@{microsoft.windows.parentalcontrols_1000.10586.0.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.parentalcontrols/resources/displayname} |
"{7A50C057-DE55-4549-AB42-4BB7C52350BB}" = dir=out | name=windows_ie_ac_001 |
"{7CA9A397-5023-4EC1-85E5-B37A602F33D1}" = dir=out | name=@{microsoft.lockapp_10.0.10586.0_neutral__cw5n1h2txyewy?ms-resource://microsoft.lockapp/resources/appdisplayname} |
"{836D3501-E79F-4375-B79B-B8BDC3CA7F16}" = dir=out | name=@{a278ab0d.gameloftgames_1.0.2.6_x86__h6adky7gbf63m?ms-resource://a278ab0d.gameloftgames/resources/appdisplayname} |
"{83BBDD95-C306-438D-AAEA-823CC1F6153B}" = dir=out | name=@{microsoft.bingnews_4.9.76.0_x86__8wekyb3d8bbwe?ms-resource://microsoft.bingnews/resources/applicationtitlewithbranding} |
"{84223A32-5505-4CAE-9F2F-68A61366521D}" = dir=out | name=@{windows.purchasedialog_6.2.0.0_neutral_neutral_cw5n1h2txyewy?ms-resource://windows.purchasedialog/resources/displayname} |
"{86323CC3-BC8F-4313-BA9F-6458018332B3}" = dir=in | name=@{windows.contactsupport_10.0.10586.0_neutral_neutral_cw5n1h2txyewy?ms-resource://windows.contactsupport/resources/appdisplayname} |
"{864E17A8-265D-444F-86E7-908493CC3EBC}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\root\office16\ucmapi.exe |
"{87409669-067B-4D08-9DFD-18BE9727A3B3}" = dir=out | name=@{microsoft.zunemusic_3.6.20961.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.zunemusic/resources/ids_manifest_music_app_name} |
"{87D67ED5-6AE7-4816-A7C8-05D141247A05}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\grand ages rome\rome.exe |
"{884568BB-0F7C-4FFB-A8FB-FBFBD706DE5C}" = dir=out | name=@{microsoft.windows.featureondemand.insiderhub_10.0.10586.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.featureondemand.insiderhub/resources/appstorename} |
"{8D041C84-1935-4EE8-AFD3-15144675D7BE}" = dir=in | name=sway |
"{8F892EA7-643B-41B3-8CC6-5388D9B033B3}" = dir=in | name=@{microsoft.windows.photos_16.526.11220.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.windows.photos/resources/appstorename} |
"{91E22B23-EB8E-42FB-8F08-7E2CF1275F5B}" = dir=in | name=@{microsoft.zunemusic_3.6.20961.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.zunemusic/resources/ids_manifest_music_app_name} |
"{933342A6-FA7D-4CF7-8C15-696D5848C31F}" = dir=out | name=@{microsoft.windows.featureondemand.insiderhub_10.0.10586.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.featureondemand.insiderhub/resources/appstorename} |
"{99263FB2-4125-4A3F-8A18-7511BAF6FFCC}" = dir=out | name=@{microsoft.xboxidentityprovider_1000.10240.16384.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.xboxidentityprovider/resources/pkgdisplayname} |
"{9CF4A587-65A2-4284-9C5A-7F5E6EC20473}" = dir=in | name=@{windows.contactsupport_10.0.10240.16384_neutral_neutral_cw5n1h2txyewy?ms-resource://windows.contactsupport/resources/appdisplayname} |
"{9DE3F154-1E73-48F2-A2D8-312A7ADC7E15}" = dir=out | name=@{windows.contactsupport_10.0.10586.0_neutral_neutral_cw5n1h2txyewy?ms-resource://windows.contactsupport/resources/appdisplayname} |
"{A4BD97E8-294A-4A38-A857-DE150F7BD159}" = dir=out | name=flipboard |
"{A665610C-D4A5-4BED-8FE9-06067F1AF692}" = dir=out | name=@{windows.contactsupport_10.0.10586.0_neutral_neutral_cw5n1h2txyewy?ms-resource://windows.contactsupport/resources/appdisplayname} |
"{A6CD1A07-F630-4739-A9FF-18987FC04721}" = dir=out | name=@{microsoft.accountscontrol_10.0.10240.16384_neutral__cw5n1h2txyewy?ms-resource://microsoft.accountscontrol/resources/displayname} |
"{A73AB033-3F87-4F74-A6EA-15E4F3C91990}" = dir=out | name=onenote |
"{AD41D0E7-2079-464B-8CE8-881E2F135C97}" = dir=out | name=@{microsoft.microsoftedge_25.10586.0.0_neutral__8wekyb3d8bbwe?ms-resource://microsoft.microsoftedge/resources/appname} |
"{B0013559-E640-4BAB-BAA1-A7AFB17E64DC}" = dir=out | name=sway |
"{B1E0609C-FF9A-495B-B117-F44E6C936593}" = dir=out | name=@{microsoft.windows.cloudexperiencehost_10.0.10240.16384_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.cloudexperiencehost/resources/appdescription} |
"{B2AB0656-B4A2-4247-82A5-F68B4C6EEB88}" = dir=in | name=@{microsoft.aad.brokerplugin_1000.10586.0.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.aad.brokerplugin/resources/packagedisplayname} |
"{B683DAEF-D3A5-42A9-A914-E25C8FE5835B}" = dir=out | name=@{microsoft.getstarted_3.5.11.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.getstarted/resources/appstorename} |
"{B6A70E1F-BDCC-4736-8BF4-2A8484901DB5}" = dir=in | name=@{microsoft.windows.featureondemand.insiderhub_10.0.10586.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.featureondemand.insiderhub/resources/appstorename} |
"{B725067F-99DB-492E-A92C-16782CC388AC}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\bin\steamwebhelper.exe |
"{B910B123-C5C6-4E44-B7DA-F6F13E549D0C}" = dir=out | name=@{microsoft.windowsstore_11602.1.26.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsstore/resources/storetitle} |
"{B9119D70-9CA4-4ABD-8FBA-8059EF5BAAB1}" = dir=in | name=@{microsoft.commsphone_2.17.27003.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.commsphone/resources/appstorename} |
"{BB74B92C-9CF7-4224-B910-229CE5BE60DA}" = dir=in | name=@{microsoft.windows.cloudexperiencehost_10.0.10586.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.cloudexperiencehost/resources/appdescription} |
"{BE4FD569-B2DF-4E88-A1AA-2E05E1FFB38E}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\democracy 3\democracy3.exe |
"{BE68562A-148C-431F-ABFD-1D13A7348B0C}" = dir=in | name=@{microsoft.zunevideo_3.6.20961.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.zunevideo/resources/ids_manifest_video_app_name} |
"{BECB9398-5ACE-46C2-A457-41F2FD177262}" = dir=in | name=@{microsoft.microsoftedge_25.10586.0.0_neutral__8wekyb3d8bbwe?ms-resource://microsoft.microsoftedge/resources/appname} |
"{BFBD09EE-7CED-4CA6-B917-670CFD0E4CEE}" = dir=out | name=@{microsoft.messaging_2.15.20002.0_x86__8wekyb3d8bbwe?ms-resource://microsoft.messaging/microsoft.apps.messaging.skype/skypemessaging.resources/skype_appstorename} |
"{C6D2532E-210D-476B-B677-2CF223F45A00}" = dir=out | name=@{microsoft.xboxgamecallableui_1000.10586.0.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.xboxgamecallableui/resources/pkgdisplayname} |
"{C745090A-713C-44F2-AE0C-E49370D80B1C}" = dir=in | app=c:\program files\cyberlink\powerdirector12\pdr10.exe |
"{CA0D2B33-A16E-4A24-942F-F5A7E2533C60}" = dir=in | name=@{microsoft.windows.featureondemand.insiderhub_10.0.10586.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.featureondemand.insiderhub/resources/appstorename} |
"{CE6DB055-DA84-47E2-81D6-4B2B94B1F3C5}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\root\office16\lync.exe |
"{CF09EB2A-0F3D-4CE7-BF88-2BEFB9A1B624}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\root\office16\ucmapi.exe |
"{D0160EFC-43CF-4214-9020-D96DF0D7ECB7}" = dir=out | name=candy crush soda saga |
"{D02B36F6-6E74-48F3-B26E-CA39C3081F9C}" = dir=in | name=netflix |
"{D3B0CFA6-2D19-4793-ABEC-01ADC7E138FF}" = dir=in | name=microsoft solitaire collection |
"{D437170A-6775-4262-B852-00044D2CA056}" = dir=in | name=xbox |
"{D453BA2A-97E2-483A-BCC7-047D35E5C3F4}" = dir=out | name=@{microsoft.windows.cloudexperiencehost_10.0.10586.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.cloudexperiencehost/resources/appdescription} |
"{D7D1A8CE-F6C9-4B1E-B743-ECD8F11BE26C}" = dir=in | name=@{microsoft.bingweather_4.9.76.0_x86__8wekyb3d8bbwe?ms-resource://microsoft.bingweather/resources/applicationtitlewithbranding} |
"{DF13D7DB-D0B3-4CCC-9F35-098C3034CA76}" = dir=out | name=@{microsoft.appconnector_1.3.3.0_neutral__8wekyb3d8bbwe?ms-resource://microsoft.appconnector/resources/connectorstubtitle} |
"{E260622E-3F8E-43CA-8EEB-B6B9AA172F43}" = dir=out | name=asus giftbox |
"{E960080B-4295-4639-861D-8CC894C002DF}" = dir=out | name=@{microsoft.windowscommunicationsapps_17.6868.41141.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowscommunicationsapps/hxcommintl/appmanifest_outlookdesktop_displayname} |
"{E9E4DFED-4464-4848-9345-A11A4F838982}" = dir=out | name=@{microsoft.windows.cortana_1.6.1.52_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.cortana/resources/displayname} |
"{EA19C10F-00FF-4A2F-A66D-0DCB5684B79C}" = dir=out | name=@{microsoft.zunevideo_3.6.20961.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.zunevideo/resources/ids_manifest_video_app_name} |
"{EA1BA8EB-8D5F-4FD2-9228-72F3C41312A3}" = dir=in | name=@{microsoft.windows.cloudexperiencehost_10.0.10240.16384_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.cloudexperiencehost/resources/appdescription} |
"{EE12444A-92F2-492F-B994-D9F082F36A5B}" = dir=in | name=@{microsoft.windows.cortana_1.6.1.52_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.cortana/resources/displayname} |
"{F0C0582B-D648-4115-AD78-15E93374D0CE}" = dir=out | name=@{microsoft.windows.photos_16.526.11220.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.windows.photos/resources/appstorename} |
"{F5521152-0BF7-4DA7-9608-33374FA088CC}" = dir=out | name=@{microsoft.3dbuilder_11.1.8.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.3dbuilder/resources/appstorename} |
"{F8A3FFF0-611D-47DE-A905-CFD30F4BE987}" = dir=out | name=@{microsoft.windows.contentdeliverymanager_10.0.10240.16384_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.contentdeliverymanager/resources/appdisplayname} |
"{F95B16CC-FFC6-44DA-B347-292BC29F9B27}" = dir=out | name=@{microsoft.bingweather_4.9.76.0_x86__8wekyb3d8bbwe?ms-resource://microsoft.bingweather/resources/applicationtitlewithbranding} |
"{FBBC7BCB-27D5-4D52-8438-2515383D40E3}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\bin\steamwebhelper.exe |
"{FC9C05BE-CEEA-4939-B2B8-7777F75E7E73}" = dir=out | name=@{microsoft.people_10.0.10811.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.people/resources/appstorename} |
"{FD401F59-3B61-49AF-89E1-EE64DBE8B469}" = dir=out | name=netflix |
"{FFBEC9BF-D6D0-424C-A7EA-A236AA971C10}" = dir=out | name=@{microsoft.xboxidentityprovider_1000.10586.0.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.xboxidentityprovider/resources/pkgdisplayname} |
========== HKEY_LOCAL_MACHINE Uninstall List ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{1CEAC85D-2590-4760-800F-8DE5E91F3700}" = Intel(R) Management Engine Components
"{1D8E6291-B0D5-35EC-8441-6616F567A0F7}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219
"{30E935B2-0DAC-455E-AC76-3C8504DC3D18}" = Intel(R) Serial IO
"{555B1C57-E71B-4775-BC1D-627EEF693F0D}" = Intel(R) ME UninstallLegacy
"{5A454EC5-217A-42a5-8CE1-2DDEC4E70E01}" = CyberLink PhotoDirector 5
"{5BD7E621-9791-4D9F-A620-1BA51153B749}" = Intel(R) Management Engine Components
"{7D84E343-A23D-451C-B123-0195B2D903A6}" = Intel® Trusted Connect Service Client
"{8220EEFE-38CD-377E-8595-13398D740ACE}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17
"{8E2CA9DC-9975-468F-90CF-C740109DD2B8}" = Intel(R) Chipset Device Software
"{90160000-008F-0000-1000-0000000FF1CE}" = Office 16 Click-to-Run Licensing Component
"{929FBD26-9020-399B-9A7A-751D61F0B942}" = Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.21005
"{9FD91C5C-44AE-4D9D-85BE-AE52816B0294}" = Intel(R) Serial IO
"{A53B7EAB-86BD-4F16-8C44-011B1376326A}" = Intel(R) Management Engine Components
"{A749D8E6-B613-3BE3-8F5F-045C84EBA29B}" = Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.21005
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel" = Ovládací panel NVIDIA 368.39
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver" = NVIDIA Ovladače grafiky 368.39
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience" = NVIDIA GeForce Experience 2.11.3.5
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Optimus" = NVIDIA Optimus Update 2.11.3.5
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX" = NVIDIA Systémový software PhysX 9.16.0318
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update" = Aktualizace NVIDIA 2.11.3.5
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.LEDVisualizer" = NVIDIA LED Visualizer 1.0
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.NvStreamSrv" = SHIELD Streaming
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GfExperienceService" = NVIDIA GeForce Experience Service
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer" = NVIDIA Install Application
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Network.Service" = NVIDIA Network Service
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_ShadowPlay" = NVIDIA ShadowPlay 2.11.3.5
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_ShieldWirelessController" = SHIELD Wireless Controller Driver
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Update.Core" = NVIDIA Update Core
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_VirtualAudio.Driver" = NVIDIA Virtual Audio 1.2.40
"{E1646825-D391-42A0-93AA-27FA810DA093}" = CyberLink PowerDirector 12
"{ED579539-9D37-4600-B763-D450593F501B}" = STATISTICA CZ 12 64-bit
"545B999BD5E2E239335F95C2AF9BED5D511CEC95" = Windows Driver Package - ASUS (AsusSGDrv) Mouse (06/18/2015 8.0.0.16)
"7-Zip" = 7-Zip 16.02 (x64)
"O365ProPlusRetail - cs-cz" = Microsoft Office 365 ProPlus - cs-cz
"STATNOVAPDF_is1" = STATNOVAPDF (novaPDF 7.7 printer)
"Steam App 23450" = Grand Ages: Rome
"Steam App 245470" = Democracy 3
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{04768366-F421-4BA5-8423-B84F644B5249}" = ASUS HiPost
"{050d4fc8-5d48-4b8f-8972-47c82c46020f}" = Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501
"{0969AF05-4FF6-4C00-9406-43599238DE0D}" = ASUS Splendid Video Enhancement Technology
"{0A4EF0E6-A912-4CDE-A7F3-6E56E7C13A2F}" = Cisco PEAP Module
"{13A4EE12-23EA-3371-91EE-EFB36DDFFF3E}" = Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{26A24AE4-039D-4CA4-87B4-2F83218091F0}" = Java 8 Update 91
"{4701E5AB-AF91-4D40-8F18-358CC80E4E5B}" = ASUS GIFTBOX Desktop
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{4B230374-6475-4A73-BA6E-41015E9C5013}" = Intel® Security Assist
"{4D3286A6-F6AB-498A-82A4-E4F040529F3D}" = ASUS Smart Gesture
"{57E770A2-2BAF-4CAA-BAA3-BD896E2254D3}" = AudioWizard
"{597A58EC-42D6-4940-8739-FB94491B013C}" = Dropbox 25 GB
"{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}" = Realtek Card Reader
"{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}" = Google Update Helper
"{64BF0187-F3D2-498B-99EA-163AF9AE6EC9}" = Cisco EAP-FAST Module
"{654EE65D-FAA4-4EA6-8C07-DC94E6A304D4}" = Intel(R) Dynamic Platform and Thermal Framework
"{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
"{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable
"{8833FFB6-5B0C-4764-81AA-06DFEED9A476}" = Realtek Ethernet Controller Driver
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{8D6B05E0-F457-408C-9D13-549334D8FAE1}" = Device Setup
"{8F21291E-0444-4B1D-B9F9-4370A73E346D}" = WinFlash
"{90160000-008C-0000-0000-0000000FF1CE}" = Office 16 Click-to-Run Extensibility Component
"{90160000-008C-0405-0000-0000000FF1CE}" = Office 16 Click-to-Run Localization Component
"{9D3D8C60-A5EF-4123-B2B9-172095903AD}" = REALTEK Bluetooth Filter Driver
"{9DAABC60-A5EF-41FF-B2B9-17329590CD5}" = REALTEK Wireless LAN Driver
"{a2d9fda8-65eb-4c06-81ef-31e0a4daa335}" = Intel(R) Chipset Device Software
"{A859E3E5-C62F-4BFA-AF1D-2B95E03166AF}" = ASUS USB Charger Plus
"{AB5C933E-5C7D-4D30-B314-9C83A49B94BE}" = ATK Package
"{AF312B06-5C5C-468E-89B3-BE6DE2645722}" = Cisco LEAP Module
"{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219
"{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}" = Intel(R) Processor Graphics
"{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver
"{f65db027-aff3-4070-886a-0d87064aabb1}" = Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501
"{F8CFEB22-A2E7-3971-9EDA-4B11EDEFC185}" = Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005
"{FA540E67-095C-4A1B-97BA-4D547DEC9AF4}" = ASUS Live Update
"{FEDC7C10-EF67-11E4-9B07-00505695D7B0}" = Evernote v. 5.8.6
"CrystalDiskInfo_is1" = CrystalDiskInfo 6.8.0
"Google Chrome" = Google Chrome
"Heroes of Might and Magic III Complete HD" = Heroes of Might and Magic III Complete HD
"InstallShield_{5A454EC5-217A-42a5-8CE1-2DDEC4E70E01}" = CyberLink PhotoDirector 5
"InstallShield_{E1646825-D391-42A0-93AA-27FA810DA093}" = CyberLink PowerDirector 12
"Malwarebytes Anti-Malware_is1" = Malwarebytes Anti-Malware verze 2.2.1.1043
"SpyHunter" = SpyHunter 4
"Steam" = Steam
"WebStorage" = WebStorage
========== Last 20 Event Log Errors ==========
[ Application Events ]
Error - 11.06.2016 14:24:56 | Computer Name = BertuvPC | Source = Application Error | ID = 1000
Description = Název chybující aplikace: SkypeHost.exe, verze: 10.1.2123.36, časové
razítko: 0x56eb679c Název chybujícího modulu: twinapi.appcore.dll_unloaded, verze:
10.0.10586.0, časové razítko: 0x5632d2bd Kód výjimky: 0xc0000005 Posun chyby: 0x0006d780
ID
chybujícího procesu: 0x1158 Čas spuštění chybující aplikace: 0x01d1c40e8e3718c4 Cesta
k chybující aplikaci: C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkypeHost.exe
Cesta
k chybujícímu modulu: twinapi.appcore.dll ID zprávy: fc58d79c-d900-4195-91a3-83b9221399a9
Úplný
název chybujícího balíčku: Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe ID
aplikace související s chybujícím balíčkem: ppleae38af2e007f4358a809ac99a64a67c1
Error - 11.06.2016 14:24:57 | Computer Name = BertuvPC | Source = Application Error | ID = 1000
Description = Název chybující aplikace: SkypeHost.exe, verze: 10.1.2123.36, časové
razítko: 0x56eb679c Název chybujícího modulu: twinapi.appcore.dll_unloaded, verze:
10.0.10586.0, časové razítko: 0x5632d2bd Kód výjimky: 0xc0000005 Posun chyby: 0x0006d780
ID
chybujícího procesu: 0xe00 Čas spuštění chybující aplikace: 0x01d1c40e8eb90194 Cesta
k chybující aplikaci: C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkypeHost.exe
Cesta
k chybujícímu modulu: twinapi.appcore.dll ID zprávy: 9608f553-6225-4ff5-858f-d4e10120f35d
Úplný
název chybujícího balíčku: Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe ID
aplikace související s chybujícím balíčkem: ppleae38af2e007f4358a809ac99a64a67c1
Error - 11.06.2016 14:24:56 | Computer Name = BertuvPC | Source = Microsoft-Windows-Immersive-Shell | ID = 5973
Description = Aplikaci Microsoft.Messaging_8wekyb3d8bbwe!ppleae38af2e007f4358a809ac99a64a67c1
se nepovedlo aktivovat, protože došlo k chybě: -2144927141. Další informace najdete
v protokolu Microsoft-Windows-TWinUI/Operational.
Error - 11.06.2016 14:24:57 | Computer Name = BertuvPC | Source = Microsoft-Windows-Immersive-Shell | ID = 5973
Description = Aplikaci Microsoft.Messaging_8wekyb3d8bbwe!ppleae38af2e007f4358a809ac99a64a67c1
se nepovedlo aktivovat, protože došlo k chybě: -2144927141. Další informace najdete
v protokolu Microsoft-Windows-TWinUI/Operational.
Error - 11.06.2016 14:24:58 | Computer Name = BertuvPC | Source = Application Error | ID = 1000
Description = Název chybující aplikace: SkypeHost.exe, verze: 10.1.2123.36, časové
razítko: 0x56eb679c Název chybujícího modulu: twinapi.appcore.dll_unloaded, verze:
10.0.10586.0, časové razítko: 0x5632d2bd Kód výjimky: 0xc0000005 Posun chyby: 0x0006d780
ID
chybujícího procesu: 0x5ec Čas spuštění chybující aplikace: 0x01d1c40e8f372cdd Cesta
k chybující aplikaci: C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkypeHost.exe
Cesta
k chybujícímu modulu: twinapi.appcore.dll ID zprávy: 87508cc8-4403-4e2e-946b-a7bd2fb53d0a
Úplný
název chybujícího balíčku: Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe ID
aplikace související s chybujícím balíčkem: ppleae38af2e007f4358a809ac99a64a67c1
Error - 11.06.2016 14:24:59 | Computer Name = BertuvPC | Source = Application Error | ID = 1000
Description = Název chybující aplikace: SkypeHost.exe, verze: 10.1.2123.36, časové
razítko: 0x56eb679c Název chybujícího modulu: twinapi.appcore.dll_unloaded, verze:
10.0.10586.0, časové razítko: 0x5632d2bd Kód výjimky: 0xc0000005 Posun chyby: 0x0006d780
ID
chybujícího procesu: 0x19f0 Čas spuštění chybující aplikace: 0x01d1c40e8fba7283 Cesta
k chybující aplikaci: C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkypeHost.exe
Cesta
k chybujícímu modulu: twinapi.appcore.dll ID zprávy: 857cce36-7a70-4c67-b4fa-465666ffe390
Úplný
název chybujícího balíčku: Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe ID
aplikace související s chybujícím balíčkem: ppleae38af2e007f4358a809ac99a64a67c1
Error - 11.06.2016 14:24:58 | Computer Name = BertuvPC | Source = Microsoft-Windows-Immersive-Shell | ID = 5973
Description = Aplikaci Microsoft.Messaging_8wekyb3d8bbwe!ppleae38af2e007f4358a809ac99a64a67c1
se nepovedlo aktivovat, protože došlo k chybě: -2144927141. Další informace najdete
v protokolu Microsoft-Windows-TWinUI/Operational.
Error - 11.06.2016 14:24:59 | Computer Name = BertuvPC | Source = Microsoft-Windows-Immersive-Shell | ID = 5973
Description = Aplikaci Microsoft.Messaging_8wekyb3d8bbwe!ppleae38af2e007f4358a809ac99a64a67c1
se nepovedlo aktivovat, protože došlo k chybě: -2144927141. Další informace najdete
v protokolu Microsoft-Windows-TWinUI/Operational.
Error - 11.06.2016 14:24:59 | Computer Name = BertuvPC | Source = Application Error | ID = 1000
Description = Název chybující aplikace: SkypeHost.exe, verze: 10.1.2123.36, časové
razítko: 0x56eb679c Název chybujícího modulu: twinapi.appcore.dll_unloaded, verze:
10.0.10586.0, časové razítko: 0x5632d2bd Kód výjimky: 0xc0000005 Posun chyby: 0x0006d780
ID
chybujícího procesu: 0x1a78 Čas spuštění chybující aplikace: 0x01d1c40e903af77b Cesta
k chybující aplikaci: C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkypeHost.exe
Cesta
k chybujícímu modulu: twinapi.appcore.dll ID zprávy: 15898cd9-da80-4728-ab6e-873a89d40976
Úplný
název chybujícího balíčku: Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe ID
aplikace související s chybujícím balíčkem: ppleae38af2e007f4358a809ac99a64a67c1
Error - 11.06.2016 14:25:00 | Computer Name = BertuvPC | Source = Application Error | ID = 1000
Description = Název chybující aplikace: SkypeHost.exe, verze: 10.1.2123.36, časové
razítko: 0x56eb679c Název chybujícího modulu: twinapi.appcore.dll_unloaded, verze:
10.0.10586.0, časové razítko: 0x5632d2bd Kód výjimky: 0xc0000005 Posun chyby: 0x0006d780
ID
chybujícího procesu: 0x63c Čas spuštění chybující aplikace: 0x01d1c40e90c169e8 Cesta
k chybující aplikaci: C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkypeHost.exe
Cesta
k chybujícímu modulu: twinapi.appcore.dll ID zprávy: aa6488b6-4c12-4379-b104-ea96d6cf4bff
Úplný
název chybujícího balíčku: Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe ID
aplikace související s chybujícím balíčkem: ppleae38af2e007f4358a809ac99a64a67c1
< End of report >
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Bert\Desktop
64bit- An unknown product (Version = 6.2.9200) - Type = NTWorkstation
Internet Explorer (Version = 9.11.10586.0)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: dd.MM.yyyy
7,90 Gb Total Physical Memory | 5,84 Gb Available Physical Memory | 73,89% Memory free
9,78 Gb Paging File | 7,86 Gb Available in Paging File | 80,39% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 237,72 Gb Total Space | 173,33 Gb Free Space | 72,92% Space Free | Partition Type: NTFS
Computer Name: BERTUVPC | User Name: Bert | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
========== Extra Registry (SafeList) ==========
========== File Associations ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.html[@ = htmlfile] -- C:\Program Files\Internet Explorer\IEXPLORE.EXE (Microsoft Corporation)
.url[@ = InternetShortcut] -- C:\WINDOWS\SysNative\rundll32.exe (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\WINDOWS\SysWow64\control.exe (Microsoft Corporation)
.html [@ = htmlfile] -- C:\Program Files\Internet Explorer\IEXPLORE.EXE (Microsoft Corporation)
========== Shell Spawning ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [edit] -- Reg Error: Key error.
htmlfile [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation)
htmlfile [opennew] -- Reg Error: Key error.
htmlfile [print] -- "C:\WINDOWS\system32\rundll32.exe" "C:\WINDOWS\system32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
http [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation)
https [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
InternetShortcut [open] -- "C:\WINDOWS\system32\rundll32.exe" "C:\WINDOWS\system32\ieframe.dll",OpenURL %l (Microsoft Corporation)
InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\OpenWith.exe "%1" (Microsoft Corporation)
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [edit] -- Reg Error: Key error.
htmlfile [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation)
htmlfile [opennew] -- Reg Error: Key error.
http [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation)
https [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\OpenWith.exe "%1" (Microsoft Corporation)
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Value error.
========== Security Center Settings ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = 7C 82 68 8E 51 A0 D1 01 [binary data]
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Upgrade]
"UpgradeTime" = [binary data]
"DontEnumerateCommonFilesUpgradeExe" = 1
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Upgrade]
"UpgradeTime" = Reg Error: Unknown registry data type -- File not found
========== Firewall Settings ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
========== Authorized Applications List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
"C:\Users\Bert\Desktop\adsfix_3_11.06.2016.1.exe" = C:\Users\Bert\Desktop\adsfix_3_11.06.2016.1.exe:*:Enabled:adsfix_3_11.06.2016.1 -- (SosVirus)
"C:\Users\Bert\Desktop\adsfix_3_11.06.2016.1.exe" = C:\Users\Bert\Desktop\adsfix_3_11.06.2016.1.exe:*:Enabled:adsfix_3_11.06.2016.1 -- (SosVirus)
========== Vista Active Open Ports Exception List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{14296478-135D-48FD-885E-61B3ED269C82}" = lport=47995 | protocol=17 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamer.exe |
"{148BA415-1E05-4685-BA29-A02BB78C26A6}" = lport=5353 | protocol=17 | dir=in | app=c:\program files (x86)\google\chrome\application\chrome.exe |
"{18BA4B53-925D-45EE-8951-0AA2C04E2299}" = lport=35043 | protocol=6 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamer.exe |
"{2C00B430-B5DC-45CF-8C9D-78427841E93B}" = lport=5353 | protocol=17 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamnetworkservice.exe |
"{994338F3-366A-4D42-BE2A-0FE31CD7BDCA}" = lport=80 | protocol=6 | dir=in | app=c:\program files (x86)\nvidia corporation\netservice\nvnetworkservice.exe |
"{A7DBDAFC-02E5-4E1E-ABB4-6A0375E679FC}" = lport=47998 | protocol=17 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamuseragent.exe |
"{C436681E-E95E-4B05-AA1F-B196E741BCB8}" = lport=443 | protocol=6 | dir=in | app=c:\program files (x86)\nvidia corporation\netservice\nvnetworkservice.exe |
"{EADEC054-B959-4294-99AA-B2025729A3DC}" = lport=6004 | protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\root\office16\outlook.exe |
"{FF1FAD8F-1C10-417B-9E7A-0A114C40EB12}" = lport=47984 | protocol=6 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamnetworkservice.exe |
"TCP Query User{A8064AE8-6CBA-412B-A1EC-D72343F79773}C:\Users\Bert\Desktop\adsfix_3_11.06.2016.1.exe" = lport=19844 | protocol=6 | dir=in | app=c:\users\bert\desktop\adsfix_3_11.06.2016.1.exe |
"UDP Query User{8012CD5F-78FA-489A-B2C4-2168ADE624EB}C:\Users\Bert\Desktop\adsfix_3_11.06.2016.1.exe" = lport=19844 | protocol=17 | dir=in | app=c:\users\bert\desktop\adsfix_3_11.06.2016.1.exe |
========== Vista Active Application Exception List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{00EA4368-1EB1-42EB-928C-095B63F62D36}" = dir=out | name=@{microsoft.aad.brokerplugin_1000.10586.0.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.aad.brokerplugin/resources/packagedisplayname} |
"{02FED8A6-5820-49A2-B2E4-CEFD1AB7939D}" = dir=out | name=@{microsoft.bingsports_4.9.76.0_x86__8wekyb3d8bbwe?ms-resource://microsoft.bingsports/resources/applicationtitlewithbranding} |
"{0901697C-8E3F-4DEB-BFEA-BCB4F028C7B7}" = dir=out | name=tripadvisor hotels flights restaurants |
"{0AD44972-FC8A-4B1F-9F9D-AAA132396781}" = dir=out | name=@{microsoft.lockapp_10.0.10586.0_neutral__cw5n1h2txyewy?ms-resource://microsoft.lockapp/resources/appdisplayname} |
"{0C377016-08E2-4E55-A6C0-33F307486BC7}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steam.exe |
"{0E7E6E0A-964C-4622-8B61-7F4E455A4A48}" = dir=out | name=@{windows.contactsupport_10.0.10240.16384_neutral_neutral_cw5n1h2txyewy?ms-resource://windows.contactsupport/resources/appdisplayname} |
"{0FCBD30F-A8E2-4826-A298-84FF72594262}" = dir=in | name=@{microsoft.messaging_2.15.20002.0_x86__8wekyb3d8bbwe?ms-resource://microsoft.messaging/microsoft.apps.messaging.skype/skypemessaging.resources/skype_appstorename} |
"{13506469-2BA5-4C77-A821-352AD7B33E78}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\grand ages rome\rome.exe |
"{142BFC8A-FD61-4B0B-8303-9C2E9481B672}" = dir=out | name=@{microsoft.windowsfeedback_10.0.10586.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windowsfeedback/feedbackapp.resources/appname/text} |
"{146C12FA-16ED-4FC4-A466-80BE1E709124}" = dir=in | name=@{microsoft.bingsports_4.9.76.0_x86__8wekyb3d8bbwe?ms-resource://microsoft.bingsports/resources/applicationtitlewithbranding} |
"{14B6E898-665A-482F-B550-35EE66489E90}" = dir=out | name=microsoft solitaire collection |
"{153F56B7-8D96-4155-81FA-A8138755D131}" = dir=out | name=@{microsoft.windows.cortana_1.4.8.152_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.cortana/resources/displayname} |
"{1A3160B4-6A1F-49AA-BD51-ED7239FFC164}" = dir=in | name=@{microsoft.windowsstore_11602.1.26.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsstore/resources/storetitle} |
"{1AD30027-A186-44F6-8C3C-1B5B26D1856C}" = dir=out | name=@{microsoft.accountscontrol_10.0.10586.0_neutral__cw5n1h2txyewy?ms-resource://microsoft.accountscontrol/resources/displayname} |
"{1BED712C-1928-45E4-8C2D-7D5EBC31AA13}" = dir=in | name=@{microsoft.windows.cloudexperiencehost_10.0.10586.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.cloudexperiencehost/resources/appdescription} |
"{1D0F74C0-612F-4DA9-9E85-DD43F4622E97}" = dir=out | name=@{microsoft.windows.contentdeliverymanager_10.0.10586.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.contentdeliverymanager/resources/appdisplayname} |
"{1D60292C-1382-4334-8A76-12EBC0C2CCA1}" = dir=in | name=@{microsoft.windows.cloudexperiencehost_10.0.10240.16384_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.cloudexperiencehost/resources/appdescription} |
"{1F9754A8-1600-4109-AA76-1EC8B8BE511C}" = dir=in | name=@{microsoft.windowscommunicationsapps_17.6868.41141.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowscommunicationsapps/hxcommintl/appmanifest_outlookdesktop_displayname} |
"{1FFE421E-137C-4AFC-836B-7509411EA32C}" = dir=in | name=@{microsoft.aad.brokerplugin_1000.10586.0.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.aad.brokerplugin/resources/packagedisplayname} |
"{2059B846-82A5-4248-9ACC-0D53018D1565}" = dir=out | name=@{microsoft.windowsphone_10.1602.3010.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsphone/resources/appstorename} |
"{231FA41B-D6D9-4DE2-8E01-C5039C242E12}" = dir=out | name=@{microsoft.windowsfeedback_10.0.10586.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windowsfeedback/feedbackapp.resources/appname/text} |
"{26B35BC4-CC51-4824-BDB1-1CEF3FF344FF}" = dir=out | name=@{microsoft.microsoftofficehub_17.7031.23501.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.microsoftofficehub/officehubintl/appmanifest_getoffice_displayname} |
"{28A7D1FC-96BD-42C5-BE05-EAFACC03FC5B}" = dir=out | name=@{microsoft.windows.contentdeliverymanager_10.0.10586.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.contentdeliverymanager/resources/appdisplayname} |
"{2D51B304-34B7-4511-9CAD-1CF083C99C3E}" = dir=out | name=twitter |
"{318A54A4-63E6-4790-826C-1790CA1CD3BC}" = dir=out | name=@{microsoft.aad.brokerplugin_1000.10586.0.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.aad.brokerplugin/resources/packagedisplayname} |
"{38DCAE28-0B58-4D2D-9894-16AF54A03CAF}" = dir=out | name=@{microsoft.microsoftedge_20.10240.16384.0_neutral__8wekyb3d8bbwe?ms-resource://microsoft.microsoftedge/resources/appname} |
"{3927C6E8-C8B2-4E41-82AF-558C390774D8}" = dir=out | name=@{windows.purchasedialog_6.2.0.0_neutral_neutral_cw5n1h2txyewy?ms-resource://windows.purchasedialog/resources/displayname} |
"{3994C23E-3377-473F-A14E-E922F8A7695C}" = dir=out | name=windows_ie_ac_001 |
"{3C8985B1-DFBD-4560-BBC3-484FF3BDF945}" = dir=out | name=@{microsoft.bingfinance_4.9.76.0_x86__8wekyb3d8bbwe?ms-resource://microsoft.bingfinance/resources/applicationtitlewithbranding} |
"{3E907371-480C-4E22-8551-6F54B9B11591}" = dir=out | name=@{microsoft.windows.cloudexperiencehost_10.0.10586.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.cloudexperiencehost/resources/appdescription} |
"{3FD7C119-B054-4FBB-8348-B446E5A9ADD8}" = dir=in | name=@{microsoft.microsoftedge_20.10240.16384.0_neutral__8wekyb3d8bbwe?ms-resource://microsoft.microsoftedge/resources/appname} |
"{4228C46D-BBC1-48DB-ABCD-32702B2CD407}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\democracy 3\democracy3.exe |
"{426C84AD-B345-49F8-8EF2-D6FAFC479E6E}" = dir=out | name=@{microsoft.commsphone_2.17.27003.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.commsphone/resources/appstorename} |
"{43040A6E-269B-4E7E-8CBB-3003B1C8FF42}" = dir=out | name=@{microsoft.connectivitystore_1.1604.4.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.connectivitystore/mswifiresources/appstorename} |
"{471F6C75-C8F1-4207-BDA9-B04DFB6BC699}" = dir=out | name=@{microsoft.xboxidentityprovider_1000.10586.0.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.xboxidentityprovider/resources/pkgdisplayname} |
"{477AA7DA-C5E2-4397-9CD0-357A27FC7B5C}" = dir=out | name=@{microsoft.windowsfeedback_10.0.10240.16384_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windowsfeedback/feedbackapp.resources/appname/text} |
"{48211505-57FA-42E4-B435-E072C7F4C51D}" = dir=in | name=@{windows.contactsupport_10.0.10586.0_neutral_neutral_cw5n1h2txyewy?ms-resource://windows.contactsupport/resources/appdisplayname} |
"{4B3331CB-1E1D-4629-977A-803331107BFB}" = dir=out | name=@{microsoft.windows.parentalcontrols_1000.10586.0.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.parentalcontrols/resources/displayname} |
"{4C23F819-2B91-496F-8BF9-E97A75C12077}" = dir=in | name=@{microsoft.microsoftedge_25.10586.0.0_neutral__8wekyb3d8bbwe?ms-resource://microsoft.microsoftedge/resources/appname} |
"{4CAF5C20-36DD-491B-BAAD-D7F43A01588B}" = dir=out | name=@{microsoft.windows.cloudexperiencehost_10.0.10240.16384_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.cloudexperiencehost/resources/appdescription} |
"{4CE780F2-3FDC-43DF-808A-910D047D3644}" = dir=out | name=@{microsoft.windowsmaps_4.1603.1190.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsmaps/resources/appstorename} |
"{4DC02280-39DE-474C-94BA-5BBC3944AA13}" = dir=in | name=@{microsoft.bingfinance_4.9.76.0_x86__8wekyb3d8bbwe?ms-resource://microsoft.bingfinance/resources/applicationtitlewithbranding} |
"{50957F06-0434-4BD8-8445-2EF72DD27A30}" = dir=out | name=@{microsoft.lockapp_10.0.10240.16384_neutral__cw5n1h2txyewy?ms-resource://microsoft.lockapp/resources/appdisplayname} |
"{51311B5A-472D-4D25-9BF6-834E2E4F9A40}" = dir=in | name=@{microsoft.windows.cortana_1.4.8.152_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.cortana/resources/displayname} |
"{5377E18E-C34D-45E8-AEE7-7993C9E5C99F}" = dir=out | name=windows_ie_ac_001 |
"{5569D265-D5FC-4C9E-B535-E62DF9B861E2}" = dir=in | name=@{microsoft.bingnews_4.9.76.0_x86__8wekyb3d8bbwe?ms-resource://microsoft.bingnews/resources/applicationtitlewithbranding} |
"{594C87B9-AC02-4BCD-BA6F-41C18FD13D7C}" = dir=out | name=@{microsoft.windows.parentalcontrols_1000.10240.16384.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.parentalcontrols/resources/displayname} |
"{599D6BA6-83D1-4DE6-A487-85BFF80EFA00}" = dir=out | name=@{microsoft.xboxgamecallableui_1000.10240.16384.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.xboxgamecallableui/resources/pkgdisplayname} |
"{5C8B3185-2104-4D1C-873A-EE76B590727C}" = dir=out | name=@{microsoft.xboxgamecallableui_1000.10586.0.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.xboxgamecallableui/resources/pkgdisplayname} |
"{5DEF16B9-E3E4-4A23-9F9E-49C869F7BBDC}" = dir=out | name=asus welcome |
"{65379897-6C5C-4137-AD6E-E678BB721741}" = dir=out | name=@{microsoft.windows.cortana_1.6.1.52_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.cortana/resources/displayname} |
"{65C2134C-94E7-40F3-97F6-D7DB04622465}" = dir=out | name=@{microsoft.accountscontrol_10.0.10586.0_neutral__cw5n1h2txyewy?ms-resource://microsoft.accountscontrol/resources/displayname} |
"{6641CAE5-B5A6-4ED5-9E21-D28BA4E3BFFC}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steam.exe |
"{6783EFF6-3889-45BB-9F70-750A609652F5}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\root\office16\lync.exe |
"{6CA00601-5FF4-42D3-97BC-9BB41012C4D7}" = dir=in | name=onenote |
"{6DD544C1-3DDD-4F05-87E6-BEDAEB0D3242}" = dir=out | name=xbox |
"{7023AEE5-DF20-469F-A5E4-5440A3F226A2}" = dir=in | name=@{microsoft.microsoftofficehub_17.7031.23501.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.microsoftofficehub/officehubintl/appmanifest_getoffice_displayname} |
"{7369B77C-0515-42EE-8E27-8ECA414ED8D6}" = dir=out | name=@{windows.purchasedialog_6.2.0.0_neutral_neutral_cw5n1h2txyewy?ms-resource://windows.purchasedialog/resources/displayname} |
"{73C854B9-0D2F-4936-B34D-C5B11DE81A84}" = dir=in | name=@{microsoft.windows.cortana_1.6.1.52_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.cortana/resources/displayname} |
"{7405238E-EBDE-4475-8271-84F64B631DBF}" = dir=out | name=@{microsoft.microsoftedge_25.10586.0.0_neutral__8wekyb3d8bbwe?ms-resource://microsoft.microsoftedge/resources/appname} |
"{76E718B7-F9DC-436E-BD10-8EDFF20D0CC1}" = dir=out | name=@{microsoft.windows.parentalcontrols_1000.10586.0.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.parentalcontrols/resources/displayname} |
"{7A50C057-DE55-4549-AB42-4BB7C52350BB}" = dir=out | name=windows_ie_ac_001 |
"{7CA9A397-5023-4EC1-85E5-B37A602F33D1}" = dir=out | name=@{microsoft.lockapp_10.0.10586.0_neutral__cw5n1h2txyewy?ms-resource://microsoft.lockapp/resources/appdisplayname} |
"{836D3501-E79F-4375-B79B-B8BDC3CA7F16}" = dir=out | name=@{a278ab0d.gameloftgames_1.0.2.6_x86__h6adky7gbf63m?ms-resource://a278ab0d.gameloftgames/resources/appdisplayname} |
"{83BBDD95-C306-438D-AAEA-823CC1F6153B}" = dir=out | name=@{microsoft.bingnews_4.9.76.0_x86__8wekyb3d8bbwe?ms-resource://microsoft.bingnews/resources/applicationtitlewithbranding} |
"{84223A32-5505-4CAE-9F2F-68A61366521D}" = dir=out | name=@{windows.purchasedialog_6.2.0.0_neutral_neutral_cw5n1h2txyewy?ms-resource://windows.purchasedialog/resources/displayname} |
"{86323CC3-BC8F-4313-BA9F-6458018332B3}" = dir=in | name=@{windows.contactsupport_10.0.10586.0_neutral_neutral_cw5n1h2txyewy?ms-resource://windows.contactsupport/resources/appdisplayname} |
"{864E17A8-265D-444F-86E7-908493CC3EBC}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\root\office16\ucmapi.exe |
"{87409669-067B-4D08-9DFD-18BE9727A3B3}" = dir=out | name=@{microsoft.zunemusic_3.6.20961.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.zunemusic/resources/ids_manifest_music_app_name} |
"{87D67ED5-6AE7-4816-A7C8-05D141247A05}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\grand ages rome\rome.exe |
"{884568BB-0F7C-4FFB-A8FB-FBFBD706DE5C}" = dir=out | name=@{microsoft.windows.featureondemand.insiderhub_10.0.10586.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.featureondemand.insiderhub/resources/appstorename} |
"{8D041C84-1935-4EE8-AFD3-15144675D7BE}" = dir=in | name=sway |
"{8F892EA7-643B-41B3-8CC6-5388D9B033B3}" = dir=in | name=@{microsoft.windows.photos_16.526.11220.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.windows.photos/resources/appstorename} |
"{91E22B23-EB8E-42FB-8F08-7E2CF1275F5B}" = dir=in | name=@{microsoft.zunemusic_3.6.20961.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.zunemusic/resources/ids_manifest_music_app_name} |
"{933342A6-FA7D-4CF7-8C15-696D5848C31F}" = dir=out | name=@{microsoft.windows.featureondemand.insiderhub_10.0.10586.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.featureondemand.insiderhub/resources/appstorename} |
"{99263FB2-4125-4A3F-8A18-7511BAF6FFCC}" = dir=out | name=@{microsoft.xboxidentityprovider_1000.10240.16384.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.xboxidentityprovider/resources/pkgdisplayname} |
"{9CF4A587-65A2-4284-9C5A-7F5E6EC20473}" = dir=in | name=@{windows.contactsupport_10.0.10240.16384_neutral_neutral_cw5n1h2txyewy?ms-resource://windows.contactsupport/resources/appdisplayname} |
"{9DE3F154-1E73-48F2-A2D8-312A7ADC7E15}" = dir=out | name=@{windows.contactsupport_10.0.10586.0_neutral_neutral_cw5n1h2txyewy?ms-resource://windows.contactsupport/resources/appdisplayname} |
"{A4BD97E8-294A-4A38-A857-DE150F7BD159}" = dir=out | name=flipboard |
"{A665610C-D4A5-4BED-8FE9-06067F1AF692}" = dir=out | name=@{windows.contactsupport_10.0.10586.0_neutral_neutral_cw5n1h2txyewy?ms-resource://windows.contactsupport/resources/appdisplayname} |
"{A6CD1A07-F630-4739-A9FF-18987FC04721}" = dir=out | name=@{microsoft.accountscontrol_10.0.10240.16384_neutral__cw5n1h2txyewy?ms-resource://microsoft.accountscontrol/resources/displayname} |
"{A73AB033-3F87-4F74-A6EA-15E4F3C91990}" = dir=out | name=onenote |
"{AD41D0E7-2079-464B-8CE8-881E2F135C97}" = dir=out | name=@{microsoft.microsoftedge_25.10586.0.0_neutral__8wekyb3d8bbwe?ms-resource://microsoft.microsoftedge/resources/appname} |
"{B0013559-E640-4BAB-BAA1-A7AFB17E64DC}" = dir=out | name=sway |
"{B1E0609C-FF9A-495B-B117-F44E6C936593}" = dir=out | name=@{microsoft.windows.cloudexperiencehost_10.0.10240.16384_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.cloudexperiencehost/resources/appdescription} |
"{B2AB0656-B4A2-4247-82A5-F68B4C6EEB88}" = dir=in | name=@{microsoft.aad.brokerplugin_1000.10586.0.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.aad.brokerplugin/resources/packagedisplayname} |
"{B683DAEF-D3A5-42A9-A914-E25C8FE5835B}" = dir=out | name=@{microsoft.getstarted_3.5.11.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.getstarted/resources/appstorename} |
"{B6A70E1F-BDCC-4736-8BF4-2A8484901DB5}" = dir=in | name=@{microsoft.windows.featureondemand.insiderhub_10.0.10586.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.featureondemand.insiderhub/resources/appstorename} |
"{B725067F-99DB-492E-A92C-16782CC388AC}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\bin\steamwebhelper.exe |
"{B910B123-C5C6-4E44-B7DA-F6F13E549D0C}" = dir=out | name=@{microsoft.windowsstore_11602.1.26.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsstore/resources/storetitle} |
"{B9119D70-9CA4-4ABD-8FBA-8059EF5BAAB1}" = dir=in | name=@{microsoft.commsphone_2.17.27003.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.commsphone/resources/appstorename} |
"{BB74B92C-9CF7-4224-B910-229CE5BE60DA}" = dir=in | name=@{microsoft.windows.cloudexperiencehost_10.0.10586.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.cloudexperiencehost/resources/appdescription} |
"{BE4FD569-B2DF-4E88-A1AA-2E05E1FFB38E}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\democracy 3\democracy3.exe |
"{BE68562A-148C-431F-ABFD-1D13A7348B0C}" = dir=in | name=@{microsoft.zunevideo_3.6.20961.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.zunevideo/resources/ids_manifest_video_app_name} |
"{BECB9398-5ACE-46C2-A457-41F2FD177262}" = dir=in | name=@{microsoft.microsoftedge_25.10586.0.0_neutral__8wekyb3d8bbwe?ms-resource://microsoft.microsoftedge/resources/appname} |
"{BFBD09EE-7CED-4CA6-B917-670CFD0E4CEE}" = dir=out | name=@{microsoft.messaging_2.15.20002.0_x86__8wekyb3d8bbwe?ms-resource://microsoft.messaging/microsoft.apps.messaging.skype/skypemessaging.resources/skype_appstorename} |
"{C6D2532E-210D-476B-B677-2CF223F45A00}" = dir=out | name=@{microsoft.xboxgamecallableui_1000.10586.0.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.xboxgamecallableui/resources/pkgdisplayname} |
"{C745090A-713C-44F2-AE0C-E49370D80B1C}" = dir=in | app=c:\program files\cyberlink\powerdirector12\pdr10.exe |
"{CA0D2B33-A16E-4A24-942F-F5A7E2533C60}" = dir=in | name=@{microsoft.windows.featureondemand.insiderhub_10.0.10586.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.featureondemand.insiderhub/resources/appstorename} |
"{CE6DB055-DA84-47E2-81D6-4B2B94B1F3C5}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\root\office16\lync.exe |
"{CF09EB2A-0F3D-4CE7-BF88-2BEFB9A1B624}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\root\office16\ucmapi.exe |
"{D0160EFC-43CF-4214-9020-D96DF0D7ECB7}" = dir=out | name=candy crush soda saga |
"{D02B36F6-6E74-48F3-B26E-CA39C3081F9C}" = dir=in | name=netflix |
"{D3B0CFA6-2D19-4793-ABEC-01ADC7E138FF}" = dir=in | name=microsoft solitaire collection |
"{D437170A-6775-4262-B852-00044D2CA056}" = dir=in | name=xbox |
"{D453BA2A-97E2-483A-BCC7-047D35E5C3F4}" = dir=out | name=@{microsoft.windows.cloudexperiencehost_10.0.10586.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.cloudexperiencehost/resources/appdescription} |
"{D7D1A8CE-F6C9-4B1E-B743-ECD8F11BE26C}" = dir=in | name=@{microsoft.bingweather_4.9.76.0_x86__8wekyb3d8bbwe?ms-resource://microsoft.bingweather/resources/applicationtitlewithbranding} |
"{DF13D7DB-D0B3-4CCC-9F35-098C3034CA76}" = dir=out | name=@{microsoft.appconnector_1.3.3.0_neutral__8wekyb3d8bbwe?ms-resource://microsoft.appconnector/resources/connectorstubtitle} |
"{E260622E-3F8E-43CA-8EEB-B6B9AA172F43}" = dir=out | name=asus giftbox |
"{E960080B-4295-4639-861D-8CC894C002DF}" = dir=out | name=@{microsoft.windowscommunicationsapps_17.6868.41141.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowscommunicationsapps/hxcommintl/appmanifest_outlookdesktop_displayname} |
"{E9E4DFED-4464-4848-9345-A11A4F838982}" = dir=out | name=@{microsoft.windows.cortana_1.6.1.52_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.cortana/resources/displayname} |
"{EA19C10F-00FF-4A2F-A66D-0DCB5684B79C}" = dir=out | name=@{microsoft.zunevideo_3.6.20961.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.zunevideo/resources/ids_manifest_video_app_name} |
"{EA1BA8EB-8D5F-4FD2-9228-72F3C41312A3}" = dir=in | name=@{microsoft.windows.cloudexperiencehost_10.0.10240.16384_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.cloudexperiencehost/resources/appdescription} |
"{EE12444A-92F2-492F-B994-D9F082F36A5B}" = dir=in | name=@{microsoft.windows.cortana_1.6.1.52_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.cortana/resources/displayname} |
"{F0C0582B-D648-4115-AD78-15E93374D0CE}" = dir=out | name=@{microsoft.windows.photos_16.526.11220.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.windows.photos/resources/appstorename} |
"{F5521152-0BF7-4DA7-9608-33374FA088CC}" = dir=out | name=@{microsoft.3dbuilder_11.1.8.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.3dbuilder/resources/appstorename} |
"{F8A3FFF0-611D-47DE-A905-CFD30F4BE987}" = dir=out | name=@{microsoft.windows.contentdeliverymanager_10.0.10240.16384_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.contentdeliverymanager/resources/appdisplayname} |
"{F95B16CC-FFC6-44DA-B347-292BC29F9B27}" = dir=out | name=@{microsoft.bingweather_4.9.76.0_x86__8wekyb3d8bbwe?ms-resource://microsoft.bingweather/resources/applicationtitlewithbranding} |
"{FBBC7BCB-27D5-4D52-8438-2515383D40E3}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\bin\steamwebhelper.exe |
"{FC9C05BE-CEEA-4939-B2B8-7777F75E7E73}" = dir=out | name=@{microsoft.people_10.0.10811.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.people/resources/appstorename} |
"{FD401F59-3B61-49AF-89E1-EE64DBE8B469}" = dir=out | name=netflix |
"{FFBEC9BF-D6D0-424C-A7EA-A236AA971C10}" = dir=out | name=@{microsoft.xboxidentityprovider_1000.10586.0.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.xboxidentityprovider/resources/pkgdisplayname} |
========== HKEY_LOCAL_MACHINE Uninstall List ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{1CEAC85D-2590-4760-800F-8DE5E91F3700}" = Intel(R) Management Engine Components
"{1D8E6291-B0D5-35EC-8441-6616F567A0F7}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219
"{30E935B2-0DAC-455E-AC76-3C8504DC3D18}" = Intel(R) Serial IO
"{555B1C57-E71B-4775-BC1D-627EEF693F0D}" = Intel(R) ME UninstallLegacy
"{5A454EC5-217A-42a5-8CE1-2DDEC4E70E01}" = CyberLink PhotoDirector 5
"{5BD7E621-9791-4D9F-A620-1BA51153B749}" = Intel(R) Management Engine Components
"{7D84E343-A23D-451C-B123-0195B2D903A6}" = Intel® Trusted Connect Service Client
"{8220EEFE-38CD-377E-8595-13398D740ACE}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17
"{8E2CA9DC-9975-468F-90CF-C740109DD2B8}" = Intel(R) Chipset Device Software
"{90160000-008F-0000-1000-0000000FF1CE}" = Office 16 Click-to-Run Licensing Component
"{929FBD26-9020-399B-9A7A-751D61F0B942}" = Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.21005
"{9FD91C5C-44AE-4D9D-85BE-AE52816B0294}" = Intel(R) Serial IO
"{A53B7EAB-86BD-4F16-8C44-011B1376326A}" = Intel(R) Management Engine Components
"{A749D8E6-B613-3BE3-8F5F-045C84EBA29B}" = Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.21005
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel" = Ovládací panel NVIDIA 368.39
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver" = NVIDIA Ovladače grafiky 368.39
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience" = NVIDIA GeForce Experience 2.11.3.5
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Optimus" = NVIDIA Optimus Update 2.11.3.5
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX" = NVIDIA Systémový software PhysX 9.16.0318
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update" = Aktualizace NVIDIA 2.11.3.5
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.LEDVisualizer" = NVIDIA LED Visualizer 1.0
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.NvStreamSrv" = SHIELD Streaming
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GfExperienceService" = NVIDIA GeForce Experience Service
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer" = NVIDIA Install Application
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Network.Service" = NVIDIA Network Service
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_ShadowPlay" = NVIDIA ShadowPlay 2.11.3.5
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_ShieldWirelessController" = SHIELD Wireless Controller Driver
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Update.Core" = NVIDIA Update Core
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_VirtualAudio.Driver" = NVIDIA Virtual Audio 1.2.40
"{E1646825-D391-42A0-93AA-27FA810DA093}" = CyberLink PowerDirector 12
"{ED579539-9D37-4600-B763-D450593F501B}" = STATISTICA CZ 12 64-bit
"545B999BD5E2E239335F95C2AF9BED5D511CEC95" = Windows Driver Package - ASUS (AsusSGDrv) Mouse (06/18/2015 8.0.0.16)
"7-Zip" = 7-Zip 16.02 (x64)
"O365ProPlusRetail - cs-cz" = Microsoft Office 365 ProPlus - cs-cz
"STATNOVAPDF_is1" = STATNOVAPDF (novaPDF 7.7 printer)
"Steam App 23450" = Grand Ages: Rome
"Steam App 245470" = Democracy 3
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{04768366-F421-4BA5-8423-B84F644B5249}" = ASUS HiPost
"{050d4fc8-5d48-4b8f-8972-47c82c46020f}" = Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501
"{0969AF05-4FF6-4C00-9406-43599238DE0D}" = ASUS Splendid Video Enhancement Technology
"{0A4EF0E6-A912-4CDE-A7F3-6E56E7C13A2F}" = Cisco PEAP Module
"{13A4EE12-23EA-3371-91EE-EFB36DDFFF3E}" = Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{26A24AE4-039D-4CA4-87B4-2F83218091F0}" = Java 8 Update 91
"{4701E5AB-AF91-4D40-8F18-358CC80E4E5B}" = ASUS GIFTBOX Desktop
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{4B230374-6475-4A73-BA6E-41015E9C5013}" = Intel® Security Assist
"{4D3286A6-F6AB-498A-82A4-E4F040529F3D}" = ASUS Smart Gesture
"{57E770A2-2BAF-4CAA-BAA3-BD896E2254D3}" = AudioWizard
"{597A58EC-42D6-4940-8739-FB94491B013C}" = Dropbox 25 GB
"{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}" = Realtek Card Reader
"{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}" = Google Update Helper
"{64BF0187-F3D2-498B-99EA-163AF9AE6EC9}" = Cisco EAP-FAST Module
"{654EE65D-FAA4-4EA6-8C07-DC94E6A304D4}" = Intel(R) Dynamic Platform and Thermal Framework
"{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
"{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable
"{8833FFB6-5B0C-4764-81AA-06DFEED9A476}" = Realtek Ethernet Controller Driver
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{8D6B05E0-F457-408C-9D13-549334D8FAE1}" = Device Setup
"{8F21291E-0444-4B1D-B9F9-4370A73E346D}" = WinFlash
"{90160000-008C-0000-0000-0000000FF1CE}" = Office 16 Click-to-Run Extensibility Component
"{90160000-008C-0405-0000-0000000FF1CE}" = Office 16 Click-to-Run Localization Component
"{9D3D8C60-A5EF-4123-B2B9-172095903AD}" = REALTEK Bluetooth Filter Driver
"{9DAABC60-A5EF-41FF-B2B9-17329590CD5}" = REALTEK Wireless LAN Driver
"{a2d9fda8-65eb-4c06-81ef-31e0a4daa335}" = Intel(R) Chipset Device Software
"{A859E3E5-C62F-4BFA-AF1D-2B95E03166AF}" = ASUS USB Charger Plus
"{AB5C933E-5C7D-4D30-B314-9C83A49B94BE}" = ATK Package
"{AF312B06-5C5C-468E-89B3-BE6DE2645722}" = Cisco LEAP Module
"{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219
"{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}" = Intel(R) Processor Graphics
"{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver
"{f65db027-aff3-4070-886a-0d87064aabb1}" = Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501
"{F8CFEB22-A2E7-3971-9EDA-4B11EDEFC185}" = Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005
"{FA540E67-095C-4A1B-97BA-4D547DEC9AF4}" = ASUS Live Update
"{FEDC7C10-EF67-11E4-9B07-00505695D7B0}" = Evernote v. 5.8.6
"CrystalDiskInfo_is1" = CrystalDiskInfo 6.8.0
"Google Chrome" = Google Chrome
"Heroes of Might and Magic III Complete HD" = Heroes of Might and Magic III Complete HD
"InstallShield_{5A454EC5-217A-42a5-8CE1-2DDEC4E70E01}" = CyberLink PhotoDirector 5
"InstallShield_{E1646825-D391-42A0-93AA-27FA810DA093}" = CyberLink PowerDirector 12
"Malwarebytes Anti-Malware_is1" = Malwarebytes Anti-Malware verze 2.2.1.1043
"SpyHunter" = SpyHunter 4
"Steam" = Steam
"WebStorage" = WebStorage
========== Last 20 Event Log Errors ==========
[ Application Events ]
Error - 11.06.2016 14:24:56 | Computer Name = BertuvPC | Source = Application Error | ID = 1000
Description = Název chybující aplikace: SkypeHost.exe, verze: 10.1.2123.36, časové
razítko: 0x56eb679c Název chybujícího modulu: twinapi.appcore.dll_unloaded, verze:
10.0.10586.0, časové razítko: 0x5632d2bd Kód výjimky: 0xc0000005 Posun chyby: 0x0006d780
ID
chybujícího procesu: 0x1158 Čas spuštění chybující aplikace: 0x01d1c40e8e3718c4 Cesta
k chybující aplikaci: C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkypeHost.exe
Cesta
k chybujícímu modulu: twinapi.appcore.dll ID zprávy: fc58d79c-d900-4195-91a3-83b9221399a9
Úplný
název chybujícího balíčku: Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe ID
aplikace související s chybujícím balíčkem: ppleae38af2e007f4358a809ac99a64a67c1
Error - 11.06.2016 14:24:57 | Computer Name = BertuvPC | Source = Application Error | ID = 1000
Description = Název chybující aplikace: SkypeHost.exe, verze: 10.1.2123.36, časové
razítko: 0x56eb679c Název chybujícího modulu: twinapi.appcore.dll_unloaded, verze:
10.0.10586.0, časové razítko: 0x5632d2bd Kód výjimky: 0xc0000005 Posun chyby: 0x0006d780
ID
chybujícího procesu: 0xe00 Čas spuštění chybující aplikace: 0x01d1c40e8eb90194 Cesta
k chybující aplikaci: C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkypeHost.exe
Cesta
k chybujícímu modulu: twinapi.appcore.dll ID zprávy: 9608f553-6225-4ff5-858f-d4e10120f35d
Úplný
název chybujícího balíčku: Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe ID
aplikace související s chybujícím balíčkem: ppleae38af2e007f4358a809ac99a64a67c1
Error - 11.06.2016 14:24:56 | Computer Name = BertuvPC | Source = Microsoft-Windows-Immersive-Shell | ID = 5973
Description = Aplikaci Microsoft.Messaging_8wekyb3d8bbwe!ppleae38af2e007f4358a809ac99a64a67c1
se nepovedlo aktivovat, protože došlo k chybě: -2144927141. Další informace najdete
v protokolu Microsoft-Windows-TWinUI/Operational.
Error - 11.06.2016 14:24:57 | Computer Name = BertuvPC | Source = Microsoft-Windows-Immersive-Shell | ID = 5973
Description = Aplikaci Microsoft.Messaging_8wekyb3d8bbwe!ppleae38af2e007f4358a809ac99a64a67c1
se nepovedlo aktivovat, protože došlo k chybě: -2144927141. Další informace najdete
v protokolu Microsoft-Windows-TWinUI/Operational.
Error - 11.06.2016 14:24:58 | Computer Name = BertuvPC | Source = Application Error | ID = 1000
Description = Název chybující aplikace: SkypeHost.exe, verze: 10.1.2123.36, časové
razítko: 0x56eb679c Název chybujícího modulu: twinapi.appcore.dll_unloaded, verze:
10.0.10586.0, časové razítko: 0x5632d2bd Kód výjimky: 0xc0000005 Posun chyby: 0x0006d780
ID
chybujícího procesu: 0x5ec Čas spuštění chybující aplikace: 0x01d1c40e8f372cdd Cesta
k chybující aplikaci: C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkypeHost.exe
Cesta
k chybujícímu modulu: twinapi.appcore.dll ID zprávy: 87508cc8-4403-4e2e-946b-a7bd2fb53d0a
Úplný
název chybujícího balíčku: Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe ID
aplikace související s chybujícím balíčkem: ppleae38af2e007f4358a809ac99a64a67c1
Error - 11.06.2016 14:24:59 | Computer Name = BertuvPC | Source = Application Error | ID = 1000
Description = Název chybující aplikace: SkypeHost.exe, verze: 10.1.2123.36, časové
razítko: 0x56eb679c Název chybujícího modulu: twinapi.appcore.dll_unloaded, verze:
10.0.10586.0, časové razítko: 0x5632d2bd Kód výjimky: 0xc0000005 Posun chyby: 0x0006d780
ID
chybujícího procesu: 0x19f0 Čas spuštění chybující aplikace: 0x01d1c40e8fba7283 Cesta
k chybující aplikaci: C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkypeHost.exe
Cesta
k chybujícímu modulu: twinapi.appcore.dll ID zprávy: 857cce36-7a70-4c67-b4fa-465666ffe390
Úplný
název chybujícího balíčku: Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe ID
aplikace související s chybujícím balíčkem: ppleae38af2e007f4358a809ac99a64a67c1
Error - 11.06.2016 14:24:58 | Computer Name = BertuvPC | Source = Microsoft-Windows-Immersive-Shell | ID = 5973
Description = Aplikaci Microsoft.Messaging_8wekyb3d8bbwe!ppleae38af2e007f4358a809ac99a64a67c1
se nepovedlo aktivovat, protože došlo k chybě: -2144927141. Další informace najdete
v protokolu Microsoft-Windows-TWinUI/Operational.
Error - 11.06.2016 14:24:59 | Computer Name = BertuvPC | Source = Microsoft-Windows-Immersive-Shell | ID = 5973
Description = Aplikaci Microsoft.Messaging_8wekyb3d8bbwe!ppleae38af2e007f4358a809ac99a64a67c1
se nepovedlo aktivovat, protože došlo k chybě: -2144927141. Další informace najdete
v protokolu Microsoft-Windows-TWinUI/Operational.
Error - 11.06.2016 14:24:59 | Computer Name = BertuvPC | Source = Application Error | ID = 1000
Description = Název chybující aplikace: SkypeHost.exe, verze: 10.1.2123.36, časové
razítko: 0x56eb679c Název chybujícího modulu: twinapi.appcore.dll_unloaded, verze:
10.0.10586.0, časové razítko: 0x5632d2bd Kód výjimky: 0xc0000005 Posun chyby: 0x0006d780
ID
chybujícího procesu: 0x1a78 Čas spuštění chybující aplikace: 0x01d1c40e903af77b Cesta
k chybující aplikaci: C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkypeHost.exe
Cesta
k chybujícímu modulu: twinapi.appcore.dll ID zprávy: 15898cd9-da80-4728-ab6e-873a89d40976
Úplný
název chybujícího balíčku: Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe ID
aplikace související s chybujícím balíčkem: ppleae38af2e007f4358a809ac99a64a67c1
Error - 11.06.2016 14:25:00 | Computer Name = BertuvPC | Source = Application Error | ID = 1000
Description = Název chybující aplikace: SkypeHost.exe, verze: 10.1.2123.36, časové
razítko: 0x56eb679c Název chybujícího modulu: twinapi.appcore.dll_unloaded, verze:
10.0.10586.0, časové razítko: 0x5632d2bd Kód výjimky: 0xc0000005 Posun chyby: 0x0006d780
ID
chybujícího procesu: 0x63c Čas spuštění chybující aplikace: 0x01d1c40e90c169e8 Cesta
k chybující aplikaci: C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkypeHost.exe
Cesta
k chybujícímu modulu: twinapi.appcore.dll ID zprávy: aa6488b6-4c12-4379-b104-ea96d6cf4bff
Úplný
název chybujícího balíčku: Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe ID
aplikace související s chybujícím balíčkem: ppleae38af2e007f4358a809ac99a64a67c1
< End of report >
- jaro3
- člen Security týmu
-
Guru Level 15
- Příspěvky: 43298
- Registrován: červen 07
- Bydliště: Jižní Čechy
- Pohlaví:
- Stav:
Offline
Re: Zamořené PC
Poklepej na ikonu OTL na ploše.Ujisti se , že máš všechny ostatní aplikace a prohlížeče zavřeny.
Pod Vlastní skenování/opravy do okénka vlož následující text, zobrazený zeleně:
Poté klikni nahoře na Opravit. Nech program nerušeně běžet, na konci se provede restart PC.
Po restartu se objeví log , prosím zkopíruj sem celý jeho obsah.
tovární nastavení je poslední možnost , při kterém se noebook uvede do stavu , v jakém byl při koupi. Takže je nutno si potřebné zazálohovat.
log z OTL je bez nákaz , viry to nebude.
Pod Vlastní skenování/opravy do okénka vlož následující text, zobrazený zeleně:
Kód: Vybrat vše
:OTL
PRC - C:\WINDOWS\explorer.exe (Microsoft Corporation)
PRC - C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)
IE - HKCU\..\SearchScopes,DefaultScope = {012E1000-F331-11DB-8314-0800200C9A66}
IE - HKCU\..\SearchScopes\{012E1000-F331-11DB-8314-0800200C9A66}: "URL" = http://www.google.com/search?q={searchTerms}
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
O18:64bit: - Protocol\Handler\mso-minsb.16 - No CLSID value found
O18:64bit: - Protocol\Handler\mso-minsb-roaming.16 - No CLSID value found
O18:64bit: - Protocol\Handler\osf.16 - No CLSID value found
O18:64bit: - Protocol\Handler\osf-roaming.16 - No CLSID value found
O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
:Files
C:\WINDOWS\System32\*.tmp
C:\WINDOWS\*.tmp
C:\WINDOWS\system32\*.tmp.dll
C:\WINDOWS\System32\dllcache\*.tmp
C:\WINDOWS\system32\SET*.tmp
C:\WINDOWS\system32\DUMP*.tmp
c:\windows\Tasks\*.job /s
C:\*.tmp
C:\WINDOWS\System32\drivers\*.tmp
C:\Program Files\*.tmp
C:\Documents and Settings\All Users\Data aplikací\*.tmp
C:\Windows\SysNative\drivers\*.tmp
C:\Windows\SysWow64\drivers\*.tmp
C:\Program Files (x86)\*.tmp
C:\Windows\SysWow64\*.tmp
C:\Windows\SysNative\*.tmp
C:\Program Files (x86)\*.tmp
:Reg
:Commands
[purity]
[emptytemp]
[start explorer]
[Reboot]
Poté klikni nahoře na Opravit. Nech program nerušeně běžet, na konci se provede restart PC.
Po restartu se objeví log , prosím zkopíruj sem celý jeho obsah.
Jdu pustit Memtest. Jinak myslíte, že bych měl potom zkusit to obnovení továrního nastavení?
tovární nastavení je poslední možnost , při kterém se noebook uvede do stavu , v jakém byl při koupi. Takže je nutno si potřebné zazálohovat.
log z OTL je bez nákaz , viry to nebude.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Re: Zamořené PC
Až dorazím domů, tak to provedu. Ale to OTL to tedy nespraví? Pokud ne, tak zkusím to tovární nastavení. Notebook je nový, zálohování ani následné znovu nainstalování aplikací nebude tak náročné. Co myslíte? Každopádně velmi děkuji za pomoc!
Re: Zamořené PC
All processes killed
========== OTL ==========
No active process named explorer.exe was found!
No active process named firefox.exe was found!
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope| /E : value set successfully!
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{012E1000-F331-11DB-8314-0800200C9A66}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{012E1000-F331-11DB-8314-0800200C9A66}\ not found.
HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\\ProxyOverride| /E : value set successfully!
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\NoActiveDesktop deleted successfully.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\NoActiveDesktopChanges deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\mso-minsb.16\ deleted successfully.
File Protocol\Handler\mso-minsb.16 - No CLSID value found not found.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\mso-minsb-roaming.16\ deleted successfully.
File Protocol\Handler\mso-minsb-roaming.16 - No CLSID value found not found.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\osf.16\ deleted successfully.
File Protocol\Handler\osf.16 - No CLSID value found not found.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\osf-roaming.16\ deleted successfully.
File Protocol\Handler\osf-roaming.16 - No CLSID value found not found.
64bit-Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad\\WebCheck deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E6FB5E20-DE35-11CF-9C87-00AA005127ED}\ not found.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad\\WebCheck deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E6FB5E20-DE35-11CF-9C87-00AA005127ED}\ not found.
========== FILES ==========
File\Folder C:\WINDOWS\System32\*.tmp not found.
File\Folder C:\WINDOWS\*.tmp not found.
File\Folder C:\WINDOWS\system32\*.tmp.dll not found.
File\Folder C:\WINDOWS\System32\dllcache\*.tmp not found.
File\Folder C:\WINDOWS\system32\SET*.tmp not found.
File\Folder C:\WINDOWS\system32\DUMP*.tmp not found.
File\Folder c:\windows\Tasks\*.job not found.
File\Folder C:\*.tmp not found.
File\Folder C:\WINDOWS\System32\drivers\*.tmp not found.
File\Folder C:\Program Files\*.tmp not found.
File\Folder C:\Documents and Settings\All Users\Data aplikací\*.tmp not found.
File\Folder C:\Windows\SysNative\drivers\*.tmp not found.
File\Folder C:\Windows\SysWow64\drivers\*.tmp not found.
File\Folder C:\Program Files (x86)\*.tmp not found.
File\Folder C:\Windows\SysWow64\*.tmp not found.
File\Folder C:\Windows\SysNative\*.tmp not found.
File\Folder C:\Program Files (x86)\*.tmp not found.
========== REGISTRY ==========
========== COMMANDS ==========
[EMPTYTEMP]
User: All Users
User: Bert
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 5247958 bytes
->Java cache emptied: 0 bytes
->Google Chrome cache emptied: 0 bytes
->Flash cache emptied: 0 bytes
User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
User: Default.migrated
User: Public
%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32 (64bit) .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 761908 bytes
%systemroot%\sysnative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 0 bytes
RecycleBin emptied: 0 bytes
Total Files Cleaned = 6,00 mb
OTL by OldTimer - Version 3.2.69.0 log created on 06122016_183805
Files\Folders moved on Reboot...
C:\Users\Bert\AppData\Local\Microsoft\Windows\INetCache\counters.dat moved successfully.
C:\WINDOWS\temp\DPTF\dptf_pnmwlanproxy.dll moved successfully.
C:\WINDOWS\temp\DPTF\dptf_wwanproxy.dll moved successfully.
C:\WINDOWS\temp\DPTF\esif_assist_64.exe moved successfully.
C:\WINDOWS\temp\BERTUVPC-20160611-2140.log moved successfully.
File\Folder C:\WINDOWS\temp\officeclicktorun.exe_streamserver(20160611214050930).log not found!
PendingFileRenameOperations files...
Registry entries deleted on Reboot...
========== OTL ==========
No active process named explorer.exe was found!
No active process named firefox.exe was found!
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope| /E : value set successfully!
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{012E1000-F331-11DB-8314-0800200C9A66}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{012E1000-F331-11DB-8314-0800200C9A66}\ not found.
HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\\ProxyOverride| /E : value set successfully!
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\NoActiveDesktop deleted successfully.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\NoActiveDesktopChanges deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\mso-minsb.16\ deleted successfully.
File Protocol\Handler\mso-minsb.16 - No CLSID value found not found.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\mso-minsb-roaming.16\ deleted successfully.
File Protocol\Handler\mso-minsb-roaming.16 - No CLSID value found not found.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\osf.16\ deleted successfully.
File Protocol\Handler\osf.16 - No CLSID value found not found.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\osf-roaming.16\ deleted successfully.
File Protocol\Handler\osf-roaming.16 - No CLSID value found not found.
64bit-Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad\\WebCheck deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E6FB5E20-DE35-11CF-9C87-00AA005127ED}\ not found.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad\\WebCheck deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E6FB5E20-DE35-11CF-9C87-00AA005127ED}\ not found.
========== FILES ==========
File\Folder C:\WINDOWS\System32\*.tmp not found.
File\Folder C:\WINDOWS\*.tmp not found.
File\Folder C:\WINDOWS\system32\*.tmp.dll not found.
File\Folder C:\WINDOWS\System32\dllcache\*.tmp not found.
File\Folder C:\WINDOWS\system32\SET*.tmp not found.
File\Folder C:\WINDOWS\system32\DUMP*.tmp not found.
File\Folder c:\windows\Tasks\*.job not found.
File\Folder C:\*.tmp not found.
File\Folder C:\WINDOWS\System32\drivers\*.tmp not found.
File\Folder C:\Program Files\*.tmp not found.
File\Folder C:\Documents and Settings\All Users\Data aplikací\*.tmp not found.
File\Folder C:\Windows\SysNative\drivers\*.tmp not found.
File\Folder C:\Windows\SysWow64\drivers\*.tmp not found.
File\Folder C:\Program Files (x86)\*.tmp not found.
File\Folder C:\Windows\SysWow64\*.tmp not found.
File\Folder C:\Windows\SysNative\*.tmp not found.
File\Folder C:\Program Files (x86)\*.tmp not found.
========== REGISTRY ==========
========== COMMANDS ==========
[EMPTYTEMP]
User: All Users
User: Bert
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 5247958 bytes
->Java cache emptied: 0 bytes
->Google Chrome cache emptied: 0 bytes
->Flash cache emptied: 0 bytes
User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
User: Default.migrated
User: Public
%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32 (64bit) .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 761908 bytes
%systemroot%\sysnative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 0 bytes
RecycleBin emptied: 0 bytes
Total Files Cleaned = 6,00 mb
OTL by OldTimer - Version 3.2.69.0 log created on 06122016_183805
Files\Folders moved on Reboot...
C:\Users\Bert\AppData\Local\Microsoft\Windows\INetCache\counters.dat moved successfully.
C:\WINDOWS\temp\DPTF\dptf_pnmwlanproxy.dll moved successfully.
C:\WINDOWS\temp\DPTF\dptf_wwanproxy.dll moved successfully.
C:\WINDOWS\temp\DPTF\esif_assist_64.exe moved successfully.
C:\WINDOWS\temp\BERTUVPC-20160611-2140.log moved successfully.
File\Folder C:\WINDOWS\temp\officeclicktorun.exe_streamserver(20160611214050930).log not found!
PendingFileRenameOperations files...
Registry entries deleted on Reboot...
- jaro3
- člen Security týmu
-
Guru Level 15
- Příspěvky: 43298
- Registrován: červen 07
- Bydliště: Jižní Čechy
- Pohlaví:
- Stav:
Offline
Re: Zamořené PC
Spusť OTL a klikni na Vyčisti.
popiš problémy.
popiš problémy.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Re: Zamořené PC
Rozhodl jsem se uvést PC do továrního nastavení. Data jsem z externího disku rychle obnovil a znovu nainstalování aplikací také nezabralo tolik času. Každopádně děkuji za pomoc a všechen čas, který jste tomuto případu věnoval.
- jaro3
- člen Security týmu
-
Guru Level 15
- Příspěvky: 43298
- Registrován: červen 07
- Bydliště: Jižní Čechy
- Pohlaví:
- Stav:
Offline
Re: Zamořené PC Vyřešeno
Není zač!
Pokud nejsou problémy , je to vše a můžeš dát vyřešeno , zelenou fajfku.
Pokud nejsou problémy , je to vše a můžeš dát vyřešeno , zelenou fajfku.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Kdo je online
Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 67 hostů