Prosím o kontrolu logu

Místo pro vaše HiJackThis logy a logy z dalších programů…

Moderátoři: Mods_senior, Security team

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43298
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod jaro3 » 05 lis 2016 10:15

Odinstaluj:
Spybot - Search & Destroy 2

. spusť znovu Malwarebytes' Anti-Malware a dej Skenovat nyní
- po proběhnutí programu se ti objeví hláška tak klikni na „Vše do karantény(smazat vybrané)“ a na „Exportovat záznam“ a vyber „textový soubor“ , soubor nějak pojmenuj a někam ho ulož. Zkopíruj se celý obsah toho logu.

Stáhni si Junkware Removal Tool by Thisisu
http://www.bleepingcomputer.com/downloa ... oval-tool/
na svojí plochu.

Deaktivuj si svůj antivirový program. Pravým tl. myši klikni na JRT.exe a vyber „spustit jako správce“. Pro pokračování budeš vyzván ke stisknutí jakékoliv klávesy. Na nějakou klikni.
Začne skenování programu. Skenování může trvat dloho , podle množství nákaz. Po ukončení skenu se objeví log (JRT.txt) , který se uloží na ploše.
Zkopíruj sem prosím celý jeho obsah.

Stáhni si RogueKiller by Adlice Software
32bit.:
http://www.adlice.com/download/roguekil ... HlwZT14ODY

64bit.:
http://www.adlice.com/download/roguekil ... HlwZT14NjQ
na svojí plochu.
- Zavři všechny ostatní programy a prohlížeče.
- Pro OS Vista a win7,8,10 spusť program RogueKiller.exe jako správce , u XP poklepáním.
- klikni na „Start Scan“. V novém okně nic neměň a klikni dole na „Start Scan“
- Program skenuje procesy PC. Po proskenování klikni na „Open Report “ , v okně pak na „Open TXT“ a celý obsah logu sem zkopíruj.
Pokud je program blokován , zkus ho spustit několikrát. Pokud dále program nepůjde spustit a pracovat, přejmenuj ho na winlogon.exe.
-pokud bude mít log více než 60.000 znaků , rozděl ho a vlož do více příspěvků
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

Reklama
klobje
nováček
Příspěvky: 28
Registrován: listopad 16
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod klobje » 05 lis 2016 10:32

2016-11-04 21:33:26.227 Sophos Virus Removal Tool version 2.5.6
2016-11-04 21:33:26.227 Copyright (c) 2009-2016 Sophos Limited. All rights reserved.

2016-11-04 21:33:26.227 This tool will scan your computer for viruses and other threats. If it finds any, it will give you the option to remove them.

2016-11-04 21:33:26.242 Windows version 6.2 SP 0.0 build 9200 SM=0x100 PT=0x1 Win32
2016-11-04 21:33:26.242 Checking for updates...
2016-11-04 21:33:30.383 Update progress: proxy server not available
2016-11-04 21:33:40.820 Option all = no
2016-11-04 21:33:40.820 Option recurse = yes
2016-11-04 21:33:40.820 Option archive = no
2016-11-04 21:33:40.820 Option service = yes
2016-11-04 21:33:40.820 Option confirm = yes
2016-11-04 21:33:40.820 Option sxl = yes
2016-11-04 21:33:40.820 Option max-data-age = 35
2016-11-04 21:33:40.820 Option vdl-logging = yes
2016-11-04 21:33:40.836 Customer ID: 094260ca9b3af99f9d4a3909fc47a743
2016-11-04 21:33:40.836 Machine ID: 00571171f23949368bf119d38f99c429
2016-11-04 21:33:40.836 Component SVRTcli.exe version 2.5.6
2016-11-04 21:33:40.836 Component control.dll version 2.5.6
2016-11-04 21:33:40.836 Component SVRTservice.exe version 2.5.6
2016-11-04 21:33:40.836 Component engine\osdp.dll version 1.44.1.2270
2016-11-04 21:33:40.836 Component engine\veex.dll version 3.67.0.2270
2016-11-04 21:33:40.836 Component engine\savi.dll version 9.0.5.2270
2016-11-04 21:33:40.836 Component rkdisk.dll version 1.5.31.1
2016-11-04 21:33:40.836 Version info: Product version 2.5.6
2016-11-04 21:33:40.836 Version info: Detection engine 3.67.0
2016-11-04 21:33:40.836 Version info: Detection data 5.32
2016-11-04 21:33:40.836 Version info: Build date 4.10.2016
2016-11-04 21:33:40.836 Version info: Data files added 296
2016-11-04 21:33:40.836 Version info: Last successful update (not yet updated)
2016-11-04 21:37:20.467 Sophos Virus Removal Tool version 2.5.6
2016-11-04 21:37:20.467 Copyright (c) 2009-2016 Sophos Limited. All rights reserved.

2016-11-04 21:37:20.467 This tool will scan your computer for viruses and other threats. If it finds any, it will give you the option to remove them.

2016-11-04 21:37:20.467 Windows version 6.2 SP 0.0 build 9200 SM=0x100 PT=0x1 Win32
2016-11-04 21:37:20.467 Checking for updates...
2016-11-04 21:37:20.482 Error: failed to create service (1072: Zadané zařízení je určeno na odstranění.)
2016-11-04 21:37:20.545 Update progress: proxy server not available

2016-11-04 21:40:39.618 Scan failed due to fatal error.
2016-11-04 21:40:39.618

------------------------------------------------------------

2016-11-04 22:44:45.603 Sophos Virus Removal Tool version 2.5.6
2016-11-04 22:44:45.603 Copyright (c) 2009-2016 Sophos Limited. All rights reserved.

2016-11-04 22:44:45.603 This tool will scan your computer for viruses and other threats. If it finds any, it will give you the option to remove them.

2016-11-04 22:44:45.603 Windows version 6.2 SP 0.0 build 9200 SM=0x100 PT=0x1 Win32
2016-11-04 22:44:45.603 Checking for updates...
2016-11-04 22:44:45.650 Update progress: proxy server not available
2016-11-04 22:45:01.056 Option all = no
2016-11-04 22:45:01.056 Option recurse = yes
2016-11-04 22:45:01.056 Option archive = no
2016-11-04 22:45:01.056 Option service = yes
2016-11-04 22:45:01.056 Option confirm = yes
2016-11-04 22:45:01.056 Option sxl = yes
2016-11-04 22:45:01.056 Option max-data-age = 35
2016-11-04 22:45:01.056 Option vdl-logging = yes
2016-11-04 22:45:01.072 Customer ID: 094260ca9b3af99f9d4a3909fc47a743
2016-11-04 22:45:01.072 Machine ID: 00571171f23949368bf119d38f99c429
2016-11-04 22:45:01.087 Component SVRTcli.exe version 2.5.6
2016-11-04 22:45:01.087 Component control.dll version 2.5.6
2016-11-04 22:45:01.087 Component SVRTservice.exe version 2.5.6
2016-11-04 22:45:01.087 Component engine\osdp.dll version 1.44.1.2270
2016-11-04 22:45:01.087 Component engine\veex.dll version 3.67.0.2270
2016-11-04 22:45:01.087 Component engine\savi.dll version 9.0.5.2270
2016-11-04 22:45:01.103 Component rkdisk.dll version 1.5.31.1
2016-11-04 22:45:01.103 Version info: Product version 2.5.6
2016-11-04 22:45:01.103 Version info: Detection engine 3.67.0
2016-11-04 22:45:01.103 Version info: Detection data 5.32
2016-11-04 22:45:01.103 Version info: Build date 4.10.2016
2016-11-04 22:45:01.103 Version info: Data files added 296
2016-11-04 22:45:01.103 Version info: Last successful update (not yet updated)
2016-11-04 22:50:05.675 Update error: failed to read remote metadata (error 4)
[T46381] ..\SUL\Handle.cpp:98 + SU::Handle::readRemoteMetadata()
[T75884] ..\SUL\Metadata.cpp:144 SU::Metadata::readRemoteMetadata()
[I40394] Downloading customer file from sophos:1:1
[E26245] Error fetching data from http://dci.sophosupd.com/update/2/9e/29 ... a00871.dat: WinHttpReceiveResponse 12002
[I20317] No proxy was used.
[I40394] Downloading customer file from sophos:2:1
[E26245] Error fetching data from http://dci.sophosupd.net/update/2/9e/29 ... a00871.dat: WinHttpReceiveResponse 12002
[I20317] No proxy was used.
[I40394] Downloading customer file from sophos:3:1
[E75373] Ran out of sophos aliases for this update source
[E35369] Out of update sources
[E99999] Out of sources

2016-11-05 00:06:20.648 Warning: rootkit scan failed to open device "\\?\Volume{fe6fdf0c-19cd-11e1-af31-806e6f6e6963}" (1)
2016-11-05 00:13:09.726 Could not open C:\hiberfil.sys
2016-11-05 00:13:18.679 Could not open C:\pagefile.sys
2016-11-05 00:13:38.914 >>> Virus 'Mal/VMProtBad-A' found in file C:\Program Files\2K Games\Borderlands 2\Binaries\Win32\buddha.dll
2016-11-05 00:40:14.884 Could not open C:\swapfile.sys
2016-11-05 00:40:15.212 Could not open C:\System Volume Information\{3808876b-c176-4e48-b7ae-04046e6cc752}
2016-11-05 00:40:15.212 Could not open C:\System Volume Information\{ac35ae8c-a283-11e6-ab22-f8d1110247c5}{3808876b-c176-4e48-b7ae-04046e6cc752}
2016-11-05 03:01:46.849 Password protected file C:\Users\klobje\Documents\Tabulky\Kopie - O(2)+(4).xlsx
2016-11-05 03:12:57.875 Could not open C:\Windows\System32\config\BBI
2016-11-05 03:12:58.511 Could not open C:\Windows\System32\config\RegBack\DEFAULT
2016-11-05 03:12:58.530 Could not open C:\Windows\System32\config\RegBack\SAM
2016-11-05 03:12:58.543 Could not open C:\Windows\System32\config\RegBack\SECURITY
2016-11-05 03:12:58.566 Could not open C:\Windows\System32\config\RegBack\SOFTWARE
2016-11-05 03:12:58.589 Could not open C:\Windows\System32\config\RegBack\SYSTEM
2016-11-05 03:42:42.890 >>> Virus 'Mal/Generic-S' found in file D:\sports tracker gpx\hry\Might and Magic X Legacy\uplay_r1.dll
2016-11-05 03:42:42.890 >>> Virus 'Mal/Generic-S' found in file D:\sports tracker gpx\hry\Might and Magic X Legacy\uplay_r1.dll
2016-11-05 03:42:42.890 >>> Virus 'Mal/Generic-S' found in file D:\sports tracker gpx\hry\Might and Magic X Legacy\uplay_r1.dll
2016-11-05 03:42:42.891 >>> Virus 'Mal/Generic-S' found in file D:\sports tracker gpx\hry\Might and Magic X Legacy\uplay_r1.dll
2016-11-05 04:59:38.019 Warning: failed to stop service (109: Přesměrování bylo ukončeno.)
2016-11-05 04:59:38.020 Error: scan service had to be terminated

klobje
nováček
Příspěvky: 28
Registrován: listopad 16
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod klobje » 05 lis 2016 10:33

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Malwarebytes
Version: 8.0.9 (09.30.2016)
Operating System: Windows 10 Pro x86
Ran by klobje (Administrator) on so 05.11.2016 at 10:14:03,99
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




File System: 14

Successfully deleted: C:\ProgramData\alawarwrapper (Folder)
Successfully deleted: C:\Users\klobje\AppData\Local\crashrpt (Folder)
Successfully deleted: C:\Users\klobje\AppData\Local\Google\Chrome\User Data\Default\Extensions\bgjpfhpjcgdppjbgnpnjllokbmcdllig (Folder)
Successfully deleted: C:\Users\klobje\AppData\Local\Google\Chrome\User Data\Default\Extensions\blmojkbhnkkphngknkmgccmlenfaelkd (Folder)
Successfully deleted: C:\Users\klobje\AppData\Local\Google\Chrome\User Data\Default\Extensions\olfeabkoenfaoljndfecamgilllcpiak (Folder)
Successfully deleted: C:\Users\klobje\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_bgjpfhpjcgdppjbgnpnjllokbmcdllig_0.localstorage-journal (File)
Successfully deleted: C:\Users\klobje\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_bgjpfhpjcgdppjbgnpnjllokbmcdllig_0.localstorage (File)
Successfully deleted: C:\Users\klobje\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_blmojkbhnkkphngknkmgccmlenfaelkd_0.localstorage (File)
Successfully deleted: C:\Users\klobje\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_olfeabkoenfaoljndfecamgilllcpiak_0.localstorage (File)
Successfully deleted: C:\Users\klobje\AppData\Roaming\Mozilla\Firefox\Profiles\sxmld3me.default\extensions\staged (Folder)
Successfully deleted: C:\Users\klobje\AppData\Roaming\Mozilla\Firefox\Profiles\sxmld3me.default\searchplugins\absearch-search.xml (File)
Successfully deleted: C:\users\Public\Documents\alawarwrapper (Folder)
Successfully deleted: C:\WINDOWS\wininit.ini (File)
Successfully deleted: C:\Program Files\driver-soft (Folder)

Deleted the following from C:\Users\klobje\AppData\Roaming\Mozilla\Firefox\Profiles\sxmld3me.default\prefs.js
user_pref(DownTangoFTToolbar_2937.global.ClearSearchHistoryOnClose, false);
user_pref(DownTangoFTToolbar_2937.global.CurrentLanguageSelection, English);
user_pref(DownTangoFTToolbar_2937.global.CurrentNavigationSelection, Current window);
user_pref(DownTangoFTToolbar_2937.global.CurrentSearchEngineSelection, US: United States of America);
user_pref(DownTangoFTToolbar_2937.global.DisplayRecentSearches, true);
user_pref(DownTangoFTToolbar_2937.global.ShowButtonText2, true);
user_pref(DownTangoFTToolbar_2937.global.UpdateTime, 1352923998374);
user_pref(DownTangoFTToolbar_2937.global.setupExtension, true);
user_pref(DownTangoFTToolbar_2937.global.userEnable, true);
user_pref(DownTangoFTToolbar_2937.global.userID, 2c91d26b1682a4cba9213e919920561a);
user_pref(extensions.yasearch@yandex.ru.barplatfo ... throttling, 64);
user_pref(extensions.yasearch@yandex.ru.branding.lastcheck, 1352927982);
user_pref(extensions.yasearch@yandex.ru.branding.lastupdate, 1334779623);
user_pref(extensions.yasearch@yandex.ru.creator, Seznam);
user_pref(extensions.yasearch@yandex.ru.daylystat.sent, 1352988950);
user_pref(extensions.yasearch@yandex.ru.description, RychlĂ„â€Ä
user_pref(extensions.yasearch@yandex.ru.getAddons.cache.enabled, false);
user_pref(extensions.yasearch@yandex.ru.homepageURL, hxxp://bar.yandex.com/cz);
user_pref(extensions.yasearch@yandex.ru.name, Yandex.Bar);
user_pref(extensions.yasearch@yandex.ru.stat.firstSearch, true);
user_pref(yasearch.auth.static, 1322578587106~~~/:hxxp://pass.yandex.ru/~~~.yandex.ru:Secure_session_id,Session_id,Session_domains,yandex_login,yandex_nickname,yandex_fio,y
user_pref(yasearch.default.preset.url, hxxps://download.yandex.ru/bar/wwt/presets/cb.xml);
user_pref(yasearch.native_comps.hxxp://bar-widgets.yandex.ru/packages/a ... gs.deflang, cs);
user_pref(yasearch.native_comps.hxxp://bar-widgets.yandex.ru/packages/a ... gs.enabled, true);
user_pref(yasearch.native_comps.hxxp://bar-widgets.yandex.ru/packages/a ... tings.from, en);
user_pref(yasearch.native_comps.hxxp://bar-widgets.yandex.ru/packages/a ... ngs.hotkey, control|| ||);
user_pref(yasearch.native_comps.hxxp://bar-widgets.yandex.ru/packages/a ... ast_update, 1352668725111);
user_pref(yasearch.native_comps.hxxp://bar-widgets.yandex.ru/packages/a ... ettings.to, cs);
user_pref(yasearch.native_comps.hxxp://bar-widgets.yandex.ru/packages/a ... r_lang_sel, true);
user_pref(yasearch.native_comps.hxxp://bar.yandex.ru/packages/yandexbar ... terEnabled, true);
user_pref(yasearch.static.hxxp://bar.yandex.ru/packages/yandexbar ... introduced, true);
user_pref(yasearch.xbwidgets.hxxp://bar-widgets.yandex.ru/packages/a ... .region-id, 125);
user_pref(yasearch.xbwidgets.hxxp://bar.yandex.ru/packages/yandexbar ... ettings.id, 98536);



Registry: 9

Successfully deleted: HKCU\Software\Microsoft\Windows\CurrentVersion\Run\\GoogleChromeAutoLaunch_BD9EF44F55E24F2C1FB1E8536069FB05 (Registry Value)
Successfully deleted: HKLM\Software\Wow6432Node\Google\Chrome\Extensions\dlnembnfbcpjnepmfjmngjenhhajpdfd (Registry Key)
Successfully deleted: HKLM\Software\Wow6432Node\Mozilla\Firefox\Extensions\\{336d0c35-8a85-403a-b9d2-65c292c39087} (Registry Value)
Successfully deleted: HKCU\Software\Microsoft\Internet Explorer\Search\\SearchAssistant (Registry Value)
Successfully deleted: HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{EFEED92A-A33D-4873-BA8F-32BAA631E54D} (Registry Value)
Successfully deleted: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} (Registry Key)
Successfully deleted: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{95289393-33EA-4F8D-B952-483415B9C955} (Registry Key)
Successfully deleted: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{A55F9C95-2BB1-4EA2-BC77-DFAAB78832CE} (Registry Key)
Successfully deleted: HKLM\Software\Microsoft\Internet Explorer\SearchScopes\{95289393-33EA-4F8D-B952-483415B9C955} (Registry Key)




~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on so 05.11.2016 at 10:16:48,35
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

klobje
nováček
Příspěvky: 28
Registrován: listopad 16
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod klobje » 05 lis 2016 11:37

MbAM mi dalším testem již nic nenašel, ani nevytvořil log

klobje
nováček
Příspěvky: 28
Registrován: listopad 16
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod klobje » 05 lis 2016 17:07

Rogue killer:
RogueKiller V12.7.5.0 [Oct 31 2016] (Free) by Adlice Software
mail : http://www.adlice.com/contact/
Feedback : http://forum.adlice.com
Webová stránka : http://www.adlice.com/download/roguekiller/
Blog : http://www.adlice.com

Operační systém : Windows 10 (10.0.14393) 32 bits version
Spuštěno : Normální režim
Uživatel : klobje [Práva správce]
Started from : C:\Users\klobje\Desktop\RogueKiller.exe
Mód : Prohledat -- Datum : 11/05/2016 11:39:59 (Duration : 01:40:07)

¤¤¤ Procesy : 3 ¤¤¤
[Suspicious.Path] FacebookGameroom.exe(2232) -- C:\Users\klobje\AppData\Local\Facebook\Games\FacebookGameroom.exe[-] -> Nalezeno
[Suspicious.Path] CefSharp.BrowserSubprocess.exe(2944) -- C:\Users\klobje\AppData\Local\Facebook\Games\CefSharp.BrowserSubprocess.exe[-] -> Nalezeno
[Suspicious.Path] DropboxExt.1.0.dll(2320) -- C:\Users\klobje\AppData\Roaming\Dropbox\bin\DropboxExt.1.0.dll[7] -> Nalezeno

¤¤¤ Registry : 34 ¤¤¤
[Suspicious.Path] HKEY_CLASSES_ROOT\CLSID\{019FE6D9-3504-46b3-8934-00C4B7426C12} (C:\ProgramData\LangSoft\TrnOutl.dll) -> Nalezeno
[Suspicious.Path] HKEY_CLASSES_ROOT\CLSID\{0A368B9B-3566-4730-B40E-EAF6858A53AF} (C:\Users\klobje\AppData\Local\Dropbox\Update\1.3.27.33\psuser.dll) -> Nalezeno
[Suspicious.Path] HKEY_CLASSES_ROOT\CLSID\{603A1CA4-18A9-417a-9108-1CA8067E2803} (C:\ProgramData\LangSoft\TrnOutl.dll) -> Nalezeno
[Suspicious.Path] HKEY_CLASSES_ROOT\CLSID\{BFC32E1D-EE75-4A48-BC60-104E11EE2431} (C:\ProgramData\LangSoft\WebIE.dll) -> Nalezeno
[Suspicious.Path] HKEY_CLASSES_ROOT\CLSID\{C3101A8B-0EE1-4612-BFE9-41FFC1A3C19D} (C:\Users\klobje\AppData\Local\Google\Update\1.3.31.5\npGoogleUpdate3.dll) -> Nalezeno
[Suspicious.Path] HKEY_CLASSES_ROOT\CLSID\{C39C6B2C-81B2-4ede-BC22-587AFDB7E4EC} (C:\ProgramData\LangSoft\TrnWord.dll) -> Nalezeno
[Suspicious.Path] HKEY_CLASSES_ROOT\CLSID\{C442AC41-9200-4770-8CC0-7CDB4F245C55} (C:\Users\klobje\AppData\Local\Google\Update\1.3.31.5\npGoogleUpdate3.dll) -> Nalezeno
[Suspicious.Path] HKEY_CLASSES_ROOT\CLSID\{CC963627-B1DC-40E0-B52A-CF21EE748449} (C:\ProgramData\LangSoft\WebIE.dll) -> Nalezeno
[Suspicious.Path] HKEY_CLASSES_ROOT\CLSID\{CC963627-B1DC-40E0-B52A-CF21EE748450} (C:\ProgramData\LangSoft\WebIE.dll) -> Nalezeno
[Suspicious.Path] HKEY_CLASSES_ROOT\CLSID\{CC963627-B1DC-40E0-B52A-CF21EE748451} (C:\ProgramData\LangSoft\WebIE.dll) -> Nalezeno
[Suspicious.Path] HKEY_CLASSES_ROOT\CLSID\{CC963627-B1DC-40E0-B52A-CF21EE748452} (C:\ProgramData\LangSoft\WebIE.dll) -> Nalezeno
[Suspicious.Path] HKEY_CLASSES_ROOT\CLSID\{ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} (C:\Users\klobje\AppData\Roaming\Dropbox\bin\DropboxExt.1.0.dll) -> Nalezeno
[Suspicious.Path] HKEY_CLASSES_ROOT\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B} (C:\Users\klobje\AppData\Roaming\Dropbox\bin\DropboxExt.1.0.dll) -> Nalezeno
[Suspicious.Path] HKEY_CLASSES_ROOT\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B} (C:\Users\klobje\AppData\Roaming\Dropbox\bin\DropboxExt.1.0.dll) -> Nalezeno
[Suspicious.Path] HKEY_CLASSES_ROOT\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B} (C:\Users\klobje\AppData\Roaming\Dropbox\bin\DropboxExt.1.0.dll) -> Nalezeno
[Suspicious.Path] HKEY_CLASSES_ROOT\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B} (C:\Users\klobje\AppData\Roaming\Dropbox\bin\DropboxExt.1.0.dll) -> Nalezeno
[Suspicious.Path] HKEY_CLASSES_ROOT\CLSID\{FB314EDD-A251-47B7-93E1-CDD82E34AF8B} (C:\Users\klobje\AppData\Roaming\Dropbox\bin\DropboxExt.1.0.dll) -> Nalezeno
[Suspicious.Path] HKEY_CLASSES_ROOT\CLSID\{FB314EDE-A251-47B7-93E1-CDD82E34AF8B} (C:\Users\klobje\AppData\Roaming\Dropbox\bin\DropboxExt.1.0.dll) -> Nalezeno
[Suspicious.Path] HKEY_CLASSES_ROOT\CLSID\{FB314EDF-A251-47B7-93E1-CDD82E34AF8B} (C:\Users\klobje\AppData\Roaming\Dropbox\bin\DropboxExt.1.0.dll) -> Nalezeno
[Suspicious.Path] HKEY_CLASSES_ROOT\CLSID\{FB314EE0-A251-47B7-93E1-CDD82E34AF8B} (C:\Users\klobje\AppData\Roaming\Dropbox\bin\DropboxExt.1.0.dll) -> Nalezeno
[Suspicious.Path] HKEY_CLASSES_ROOT\CLSID\{FB314EE1-A251-47B7-93E1-CDD82E34AF8B} (C:\Users\klobje\AppData\Roaming\Dropbox\bin\DropboxExt.1.0.dll) -> Nalezeno
[Suspicious.Path] HKEY_CLASSES_ROOT\CLSID\{FB314EE2-A251-47B7-93E1-CDD82E34AF8B} (C:\Users\klobje\AppData\Roaming\Dropbox\bin\DropboxExt.1.0.dll) -> Nalezeno
[Suspicious.Path] HKEY_CLASSES_ROOT\CLSID\{FBC9D74C-AF55-4309-9FB2-C426E071637F} (C:\Users\klobje\AppData\Roaming\Dropbox\bin\DropboxExt.1.0.dll) -> Nalezeno
[Suspicious.Path] HKEY_CLASSES_ROOT\CLSID\{FE819BE5-BADF-4370-9913-6FB84ABA6FB1} (C:\Users\klobje\AppData\Local\Dropbox\Update\1.3.27.33\psuser.dll) -> Nalezeno
[PUP] HKEY_USERS\S-1-5-21-2313541682-3982225299-4202079360-1000\Software\IM -> Nalezeno
[Suspicious.Path] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\DropboxExt1 | (default) : {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} (C:\Users\klobje\AppData\Roaming\Dropbox\bin\DropboxExt.1.0.dll) [7] -> Nalezeno
[Suspicious.Path] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\DropboxExt2 | (default) : {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} (C:\Users\klobje\AppData\Roaming\Dropbox\bin\DropboxExt.1.0.dll) [7] -> Nalezeno
[Suspicious.Path] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\DropboxExt3 | (default) : {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} (C:\Users\klobje\AppData\Roaming\Dropbox\bin\DropboxExt.1.0.dll) [7] -> Nalezeno
[Suspicious.Path] HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar | {BFC32E1D-EE75-4A48-BC60-104E11EE2431} : WebTranslator (C:\ProgramData\LangSoft\WebIE.dll) [-] -> Nalezeno
[PUM.Dns] HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Tcpip\Parameters | DhcpNameServer : 213.46.172.37 213.46.172.36 ([Czech Republic][Czech Republic]) -> Nalezeno
[PUM.Dns] HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Tcpip\Parameters\Interfaces\{0972d76a-b566-4c1e-af26-5fce51b0f266} | DhcpNameServer : 213.46.172.37 213.46.172.36 ([Czech Republic][Czech Republic]) -> Nalezeno
[PUM.Dns] HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Tcpip\Parameters\Interfaces\{53bd5100-e786-4d25-af00-bf5eb95bb944} | DhcpNameServer : 213.46.172.37 213.46.172.36 ([Czech Republic][Czech Republic]) -> Nalezeno
[Suspicious.Path] HKEY_LOCAL_MACHINE\System\ControlSet001\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules | TCP Query User{A7AC50F7-172E-403E-B142-9D4ABEE5FD71}C:\users\klobje\utorrent.exe : v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Public|App=C:\users\klobje\utorrent.exe|Name=utorrent.exe|Desc=utorrent.exe|Edge=TRUE|Defer=App| [-] -> Nalezeno
[Suspicious.Path] HKEY_LOCAL_MACHINE\System\ControlSet001\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules | UDP Query User{405E9A3F-BBDD-4863-8703-A9E767C21E78}C:\users\klobje\utorrent.exe : v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Public|App=C:\users\klobje\utorrent.exe|Name=utorrent.exe|Desc=utorrent.exe|Edge=TRUE|Defer=App| [-] -> Nalezeno

¤¤¤ Úlohy : 1 ¤¤¤
[Suspicious.Path] \4812 -- wscript.exe (C:\Users\klobje\AppData\Local\Temp\launchie.vbs //B) -> Nalezeno

¤¤¤ Soubory : 2 ¤¤¤
[Suspicious.Path][Soubor] C:\Users\klobje\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Facebook Gameroom.lnk [LNK@] C:\Users\klobje\AppData\Local\Facebook\Games\FACEBO~1.EXE fbgames://windows_startup/ -> Nalezeno
[Suspicious.Path][Soubor] C:\Users\klobje\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Facebook Games Arcade (BETA).lnk [LNK@] C:\Users\klobje\AppData\Local\Facebook\Games\FacebookGames.exe fbgames://windows_startup/ -> Nalezeno

¤¤¤ WMI : 0 ¤¤¤

¤¤¤ Soubor HOSTS : 0 ¤¤¤

¤¤¤ Antirootkit : 41 (Driver: Nahrán) ¤¤¤
[SSDT:Inl(Hook.SSDT)] ZwThawTransactions[32] : C:\Windows\System32\drivers\tm.sys @ 0xffffffff86d02036 (jmp dword [0x824572c0])
[SSDT:Inl(Hook.SSDT)] ZwSinglePhaseReject[44] : C:\Windows\System32\drivers\tm.sys @ 0xffffffff86cfe68c (jmp dword [0x82457330])
[SSDT:Inl(Hook.SSDT)] ZwSetInformationTransactionManager[73] : C:\Windows\System32\drivers\tm.sys @ 0xffffffff86d02d08 (jmp dword [0x82457334])
[SSDT:Inl(Hook.SSDT)] ZwSetInformationTransaction[74] : C:\Windows\System32\drivers\tm.sys @ 0xffffffff86d01cf6 (jmp dword [0x824572c4])
[SSDT:Inl(Hook.SSDT)] ZwSetInformationResourceManager[77] : C:\Windows\System32\drivers\tm.sys @ 0xffffffff86cff08c (jmp dword [0x824572c8])
[SSDT:Inl(Hook.SSDT)] ZwSetInformationEnlistment[83] : C:\Windows\System32\drivers\tm.sys @ 0xffffffff86cfdf9e (jmp dword [0x824572cc])
[SSDT:Inl(Hook.SSDT)] ZwRollforwardTransactionManager[105] : C:\Windows\System32\drivers\tm.sys @ 0xffffffff86d0267e (jmp dword [0x82457338])
[SSDT:Inl(Hook.SSDT)] ZwRollbackTransaction[106] : C:\Windows\System32\drivers\tm.sys @ 0xffffffff86d01c8c (jmp dword [0x824572d0])
[SSDT:Inl(Hook.SSDT)] ZwRollbackEnlistment[107] : C:\Windows\System32\drivers\tm.sys @ 0xffffffff86cfe3ac (jmp dword [0x824572d4])
[SSDT:Inl(Hook.SSDT)] ZwRollbackComplete[108] : C:\Windows\System32\drivers\tm.sys @ 0xffffffff86cfe7f8 (jmp dword [0x824572d8])
[SSDT:Inl(Hook.SSDT)] ZwRenameTransactionManager[123] : C:\Windows\System32\drivers\tm.sys @ 0xffffffff86d02516 (jmp dword [0x8245733c])
[SSDT:Inl(Hook.SSDT)] ZwRegisterProtocolAddressInformation[133] : C:\Windows\System32\drivers\tm.sys @ 0xffffffff86d02e46 (jmp dword [0x82457340])
[SSDT:Inl(Hook.SSDT)] ZwRecoverTransactionManager[134] : C:\Windows\System32\drivers\tm.sys @ 0xffffffff86d02736 (jmp dword [0x824572dc])
[SSDT:Inl(Hook.SSDT)] ZwRecoverResourceManager[135] : C:\Windows\System32\drivers\tm.sys @ 0xffffffff86cfed18 (jmp dword [0x824572e0])
[SSDT:Inl(Hook.SSDT)] ZwRecoverEnlistment[136] : C:\Windows\System32\drivers\tm.sys @ 0xffffffff86cfdce4 (jmp dword [0x824572e4])
[SSDT:Inl(Hook.SSDT)] ZwReadOnlyEnlistment[139] : C:\Windows\System32\drivers\tm.sys @ 0xffffffff86cfe742 (jmp dword [0x8245735c])
[SSDT:Inl(Hook.SSDT)] ZwQueryInformationTransactionManager[178] : C:\Windows\System32\drivers\tm.sys @ 0xffffffff86d02792 (jmp dword [0x82457360])
[SSDT:Inl(Hook.SSDT)] ZwQueryInformationTransaction[179] : C:\Windows\System32\drivers\tm.sys @ 0xffffffff86d01454 (jmp dword [0x82457364])
[SSDT:Inl(Hook.SSDT)] ZwQueryInformationResourceManager[182] : C:\Windows\System32\drivers\tm.sys @ 0xffffffff86cfee7e (jmp dword [0x82457368])
[SSDT:Inl(Hook.SSDT)] ZwQueryInformationEnlistment[187] : C:\Windows\System32\drivers\tm.sys @ 0xffffffff86cfdd40 (jmp dword [0x8245736c])
[SSDT:Inl(Hook.SSDT)] ZwPropagationFailed[203] : C:\Windows\System32\drivers\tm.sys @ 0xffffffff86d030d4 (jmp dword [0x82457370])
[SSDT:Inl(Hook.SSDT)] ZwPropagationComplete[204] : C:\Windows\System32\drivers\tm.sys @ 0xffffffff86d0300a (jmp dword [0x82457374])
[SSDT:Inl(Hook.SSDT)] ZwPrePrepareEnlistment[209] : C:\Windows\System32\drivers\tm.sys @ 0xffffffff86cfe23c (jmp dword [0x82457380])
[SSDT:Inl(Hook.SSDT)] ZwPrePrepareComplete[210] : C:\Windows\System32\drivers\tm.sys @ 0xffffffff86cfe51c (jmp dword [0x82457384])
[SSDT:Inl(Hook.SSDT)] ZwPrepareEnlistment[211] : C:\Windows\System32\drivers\tm.sys @ 0xffffffff86cfe184 (jmp dword [0x82457378])
[SSDT:Inl(Hook.SSDT)] ZwPrepareComplete[212] : C:\Windows\System32\drivers\tm.sys @ 0xffffffff86cfe464 (jmp dword [0x8245737c])
[SSDT:Inl(Hook.SSDT)] ZwOpenTransactionManager[215] : C:\Windows\System32\drivers\tm.sys @ 0xffffffff86d022a4 (jmp dword [0x82457388])
[SSDT:Inl(Hook.SSDT)] ZwOpenTransaction[216] : C:\Windows\System32\drivers\tm.sys @ 0xffffffff86d01256 (jmp dword [0x8245738c])
[SSDT:Inl(Hook.SSDT)] ZwOpenResourceManager[225] : C:\Windows\System32\drivers\tm.sys @ 0xffffffff86cfeb64 (jmp dword [0x82457390])
[SSDT:Inl(Hook.SSDT)] ZwOpenEnlistment[243] : C:\Windows\System32\drivers\tm.sys @ 0xffffffff86cfdb40 (jmp dword [0x82457394])
[SSDT:Inl(Hook.SSDT)] ZwGetNotificationResourceManager[279] : C:\Windows\System32\drivers\tm.sys @ 0xffffffff86cfed72 (jmp dword [0x82457398])
[SSDT:Inl(Hook.SSDT)] ZwFreezeTransactions[291] : C:\Windows\System32\drivers\tm.sys @ 0xffffffff86d01f5e (jmp dword [0x8245739c])
[SSDT:Inl(Hook.SSDT)] ZwFlushWriteBuffer[295] : C:\Windows\System32\halmacpi.dll @ 0xffffffff82860c80 (call dword [0x824570a0])
[SSDT:Inl(Hook.SSDT)] ZwEnumerateTransactionObject[309] : C:\Windows\System32\drivers\tm.sys @ 0xffffffff86d01a14 (jmp dword [0x82457358])
[SSDT:Inl(Hook.SSDT)] ZwCreateTransactionManager[340] : C:\Windows\System32\drivers\tm.sys @ 0xffffffff86d0208c (jmp dword [0x82457354])
[SSDT:Inl(Hook.SSDT)] ZwCreateTransaction[341] : C:\Windows\System32\drivers\tm.sys @ 0xffffffff86d00f3a (jmp dword [0x82457350])
[SSDT:Inl(Hook.SSDT)] ZwCreateResourceManager[351] : C:\Windows\System32\drivers\tm.sys @ 0xffffffff86cfe8ae (jmp dword [0x8245734c])
[SSDT:Inl(Hook.SSDT)] ZwCreateEnlistment[373] : C:\Windows\System32\drivers\tm.sys @ 0xffffffff86cfd93e (jmp dword [0x824572fc])
[SSDT:Inl(Hook.SSDT)] ZwCommitTransaction[385] : C:\Windows\System32\drivers\tm.sys @ 0xffffffff86d01c22 (jmp dword [0x824572f8])
[SSDT:Inl(Hook.SSDT)] ZwCommitEnlistment[386] : C:\Windows\System32\drivers\tm.sys @ 0xffffffff86cfe2f4 (jmp dword [0x824572f4])
[SSDT:Inl(Hook.SSDT)] ZwCommitComplete[387] : C:\Windows\System32\drivers\tm.sys @ 0xffffffff86cfe5d4 (jmp dword [0x824572f0])

¤¤¤ Webové prohlížeče : 4 ¤¤¤
[PUP][FIREFX:Addon] sxmld3me.default : Seznam li?ti?ka [{ea614400-e918-4741-9a97-7a972ff7c30b}] -> Nalezeno
[PUP][FIREFX:Addon] sxmld3me.default : QipAuthorizer [{32a1fd71-835e-4b11-8e54-886fda0b4c89}] -> Nalezeno
[PUP][FIREFX:Addon] sxmld3me.default : IMPI [{17E113E6-CD0E-4045-B154-65F0E57959EF}] -> Nalezeno
[PUP][FIREFX:Addon] sxmld3me.default : WinToFlash Suggestor [{285ACFBB-8E53-4feb-90E6-F02A128927F3}] -> Nalezeno

¤¤¤ Kontrola MBR : ¤¤¤
+++++ PhysicalDrive0: SAMSUNG HD103UJ ATA Device +++++
--- User ---
[MBR] 50b618c01d31195a0ab7973ffe836479
[BSP] a2c176279d131497691b1f9350e2b989 : Windows Vista/7/8 MBR Code
Partition table:
0 - [ACTIVE] NTFS (0x7) [VISIBLE] Offset (sectors): 2048 | Size: 100 MB [Windows Vista/7/8 Bootstrap | Windows Vista/7/8 Bootloader]
1 - [XXXXXX] NTFS (0x7) [VISIBLE] Offset (sectors): 206848 | Size: 250318 MB [Windows Vista/7/8 Bootstrap | Windows Vista/7/8 Bootloader]
2 - [XXXXXX] ACER (0x27) [VISIBLE] Offset (sectors): 512858112 | Size: 450 MB
3 - [XXXXXX] NTFS (0x7) [VISIBLE] Offset (sectors): 513779712 | Size: 702999 MB [Windows Vista/7/8 Bootstrap | Windows Vista/7/8 Bootloader]
User = LL1 ... OK
User = LL2 ... OK

+++++ PhysicalDrive1: HPT DISK 0_0 SCSI Disk Device +++++
--- User ---
[MBR] c6ee2fc09eb4bb76e7e6fb7a3dc5b2bd
[BSP] 3feb5ad4da3164bc59041dba71a7685b : HP MBR Code
Partition table:
0 - [XXXXXX] NTFS (0x7) [VISIBLE] Offset (sectors): 2048 | Size: 953725 MB [Windows Vista/7/8 Bootstrap | Windows Vista/7/8 Bootloader]
User = LL1 ... OK
Error reading LL2 MBR! ([1] Nesprávná funkce. )

+++++ PhysicalDrive2: Generic STORAGE DEVICE USB Device +++++
Error reading User MBR! ([15] Za?ízení není p?ipraveno. )
Error reading LL1 MBR! NOT VALID!
Error reading LL2 MBR! ([32] Po?adavek není podporován. )

+++++ PhysicalDrive3: Generic STORAGE DEVICE USB Device +++++
Error reading User MBR! ([15] Za?ízení není p?ipraveno. )
Error reading LL1 MBR! NOT VALID!
Error reading LL2 MBR! ([32] Po?adavek není podporován. )

+++++ PhysicalDrive4: Generic STORAGE DEVICE USB Device +++++
Error reading User MBR! ([15] Za?ízení není p?ipraveno. )
Error reading LL1 MBR! NOT VALID!
Error reading LL2 MBR! ([32] Po?adavek není podporován. )

+++++ PhysicalDrive5: Generic STORAGE DEVICE USB Device +++++
Error reading User MBR! ([15] Za?ízení není p?ipraveno. )
Error reading LL1 MBR! NOT VALID!
Error reading LL2 MBR! ([32] Po?adavek není podporován. )

Uživatelský avatar
jerabina
člen Security týmu
Level 6
Level 6
Příspěvky: 3647
Registrován: březen 13
Bydliště: Litoměřice
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod jerabina » 05 lis 2016 23:07

Zavři všechny programy a prohlížeče. Deaktivuj antivir a firewall.
Prosím, odpoj všechny USB (kromě myši s klávesnice) nebo externí disky z počítače před spuštěním tohoto programu.
Spusť znovu RogueKiller ( Pro Windows Vista nebo Windows 7, klepni pravým a vyber "Spustit jako správce", ve Windows XP poklepej ke spuštění).
- Počkej, až Prescan dokončí práci...
- Pak klikni na "Prohledat " ,po jeho skončení:
- V záložkách (Registry , Tasks , Web Browser apod.) vše zatrhni (dej zatržítka)
(musíš dát myší zatržítko do toho čtverečku vlevo od registru ap.)
- Klikni na "Smazat"
- Počkej, dokud Status box nezobrazí " Mazání dokončeno "
- Klikni na "Zpráva " a zkopíruj a vlož obsah té zprávy prosím sem. Log je možno nalézt v RKreport [číslo]. txt na ploše.
- Zavři RogueKiller

Vypni antivir
Stáhni
Zoek.exe

a uloz si ho na plochu.
Zavři všechny ostatní programy , okna i prohlížeče.
Spusť Zoek.exe ( u win vista , win7, 8 klikni na něj pravým a vyber : „Spustit jako správce“
- pozor , náběh programu může trvat déle.

Do okna programu vlož skript níže:

Kód: Vybrat vše

autoclean;
emptyclsid;
iedefaults;
FFdefaults;
CHRdefaults;
emptyalltemp;
resethosts;


klikni na Run Script
Program provede sken , opravu, sken i oprava může trvat i více minut ,je třeba posečkat do konce. Do okna neklikej!
Program nabídne restart , potvrď .

Po restartu se může nějaký čas ukázat pouze černá plocha , to je normální. Je třeba počkat až se vytvoří log. Ten si můžeš uložit třeba do dokumentů , jinak se sám ukládá do:
C:\zoek-results.log
Zkopíruj sem celý obsah toho logu.

Prosím stáhni příslušnou verzi programu pro Tvůj systém 32-bit/64-bit Farbar Recovery Scan Tool (FRST)
32bit.:
http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/81/
64bit.:
http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/82/
a ulož jej na plochu. ,pak spusť FRST jako správce
Potvrď způsob užití.
Neměň žádné z výchozích nastavení a klikni na položku „Scan“ („Skenovat“) .Když je skenování dokončeno, ukážou se dva logy = FRST.txt a Addition.txt a uloží se na ploše.Prosím zkopíruj sem celý jejich obsah.
Když nevíš jak dál, přichází na řadu prostudovat manuál!
HJT návod

Pokud neodpovídám do vašich témat v sekci HJT když jsem online, tak je to jen proto, že jsem na mobilu kde je studování logů a psaní skriptů nemožné. Neberte to tedy prosím jako ignoraci.

klobje
nováček
Příspěvky: 28
Registrován: listopad 16
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod klobje » 06 lis 2016 22:52

rogue killer podruhé:
RogueKiller V12.7.5.0 [Oct 31 2016] (Free) by Adlice Software
mail : http://www.adlice.com/contact/
Feedback : http://forum.adlice.com
Webová stránka : http://www.adlice.com/download/roguekiller/
Blog : http://www.adlice.com

Operační systém : Windows 10 (10.0.14393) 32 bits version
Spuštěno : Normální režim
Uživatel : klobje [Práva správce]
Started from : C:\Users\klobje\Desktop\RogueKiller.exe
Mód : Smazat -- Datum : 11/05/2016 23:06:12 (Duration : 06:32:34)

¤¤¤ Procesy : 0 ¤¤¤

¤¤¤ Registry : 2 ¤¤¤
[PUM.Dns] HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Tcpip\Parameters | DhcpNameServer : 213.46.172.37 213.46.172.36 ([Czech Republic][Czech Republic]) -> Nahrazeno ()
[PUM.Dns] HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Tcpip\Parameters\Interfaces\{0972d76a-b566-4c1e-af26-5fce51b0f266} | DhcpNameServer : 213.46.172.37 213.46.172.36 ([X][X]) -> Nahrazeno ()

¤¤¤ Úlohy : 0 ¤¤¤

¤¤¤ Soubory : 0 ¤¤¤

¤¤¤ WMI : 0 ¤¤¤

¤¤¤ Soubor HOSTS : 0 ¤¤¤

¤¤¤ Antirootkit : 41 (Driver: Nahrán) ¤¤¤
[SSDT:Inl(Hook.SSDT)] ZwThawTransactions[32] : C:\Windows\System32\drivers\tm.sys @ 0xffffffff86d42036 (jmp dword [0x824442c0])
[SSDT:Inl(Hook.SSDT)] ZwSinglePhaseReject[44] : C:\Windows\System32\drivers\tm.sys @ 0xffffffff86d3e68c (jmp dword [0x82444330])
[SSDT:Inl(Hook.SSDT)] ZwSetInformationTransactionManager[73] : C:\Windows\System32\drivers\tm.sys @ 0xffffffff86d42d08 (jmp dword [0x82444334])
[SSDT:Inl(Hook.SSDT)] ZwSetInformationTransaction[74] : C:\Windows\System32\drivers\tm.sys @ 0xffffffff86d41cf6 (jmp dword [0x824442c4])
[SSDT:Inl(Hook.SSDT)] ZwSetInformationResourceManager[77] : C:\Windows\System32\drivers\tm.sys @ 0xffffffff86d3f08c (jmp dword [0x824442c8])
[SSDT:Inl(Hook.SSDT)] ZwSetInformationEnlistment[83] : C:\Windows\System32\drivers\tm.sys @ 0xffffffff86d3df9e (jmp dword [0x824442cc])
[SSDT:Inl(Hook.SSDT)] ZwRollforwardTransactionManager[105] : C:\Windows\System32\drivers\tm.sys @ 0xffffffff86d4267e (jmp dword [0x82444338])
[SSDT:Inl(Hook.SSDT)] ZwRollbackTransaction[106] : C:\Windows\System32\drivers\tm.sys @ 0xffffffff86d41c8c (jmp dword [0x824442d0])
[SSDT:Inl(Hook.SSDT)] ZwRollbackEnlistment[107] : C:\Windows\System32\drivers\tm.sys @ 0xffffffff86d3e3ac (jmp dword [0x824442d4])
[SSDT:Inl(Hook.SSDT)] ZwRollbackComplete[108] : C:\Windows\System32\drivers\tm.sys @ 0xffffffff86d3e7f8 (jmp dword [0x824442d8])
[SSDT:Inl(Hook.SSDT)] ZwRenameTransactionManager[123] : C:\Windows\System32\drivers\tm.sys @ 0xffffffff86d42516 (jmp dword [0x8244433c])
[SSDT:Inl(Hook.SSDT)] ZwRegisterProtocolAddressInformation[133] : C:\Windows\System32\drivers\tm.sys @ 0xffffffff86d42e46 (jmp dword [0x82444340])
[SSDT:Inl(Hook.SSDT)] ZwRecoverTransactionManager[134] : C:\Windows\System32\drivers\tm.sys @ 0xffffffff86d42736 (jmp dword [0x824442dc])
[SSDT:Inl(Hook.SSDT)] ZwRecoverResourceManager[135] : C:\Windows\System32\drivers\tm.sys @ 0xffffffff86d3ed18 (jmp dword [0x824442e0])
[SSDT:Inl(Hook.SSDT)] ZwRecoverEnlistment[136] : C:\Windows\System32\drivers\tm.sys @ 0xffffffff86d3dce4 (jmp dword [0x824442e4])
[SSDT:Inl(Hook.SSDT)] ZwReadOnlyEnlistment[139] : C:\Windows\System32\drivers\tm.sys @ 0xffffffff86d3e742 (jmp dword [0x8244435c])
[SSDT:Inl(Hook.SSDT)] ZwQueryInformationTransactionManager[178] : C:\Windows\System32\drivers\tm.sys @ 0xffffffff86d42792 (jmp dword [0x82444360])
[SSDT:Inl(Hook.SSDT)] ZwQueryInformationTransaction[179] : C:\Windows\System32\drivers\tm.sys @ 0xffffffff86d41454 (jmp dword [0x82444364])
[SSDT:Inl(Hook.SSDT)] ZwQueryInformationResourceManager[182] : C:\Windows\System32\drivers\tm.sys @ 0xffffffff86d3ee7e (jmp dword [0x82444368])
[SSDT:Inl(Hook.SSDT)] ZwQueryInformationEnlistment[187] : C:\Windows\System32\drivers\tm.sys @ 0xffffffff86d3dd40 (jmp dword [0x8244436c])
[SSDT:Inl(Hook.SSDT)] ZwPropagationFailed[203] : C:\Windows\System32\drivers\tm.sys @ 0xffffffff86d430d4 (jmp dword [0x82444370])
[SSDT:Inl(Hook.SSDT)] ZwPropagationComplete[204] : C:\Windows\System32\drivers\tm.sys @ 0xffffffff86d4300a (jmp dword [0x82444374])
[SSDT:Inl(Hook.SSDT)] ZwPrePrepareEnlistment[209] : C:\Windows\System32\drivers\tm.sys @ 0xffffffff86d3e23c (jmp dword [0x82444380])
[SSDT:Inl(Hook.SSDT)] ZwPrePrepareComplete[210] : C:\Windows\System32\drivers\tm.sys @ 0xffffffff86d3e51c (jmp dword [0x82444384])
[SSDT:Inl(Hook.SSDT)] ZwPrepareEnlistment[211] : C:\Windows\System32\drivers\tm.sys @ 0xffffffff86d3e184 (jmp dword [0x82444378])
[SSDT:Inl(Hook.SSDT)] ZwPrepareComplete[212] : C:\Windows\System32\drivers\tm.sys @ 0xffffffff86d3e464 (jmp dword [0x8244437c])
[SSDT:Inl(Hook.SSDT)] ZwOpenTransactionManager[215] : C:\Windows\System32\drivers\tm.sys @ 0xffffffff86d422a4 (jmp dword [0x82444388])
[SSDT:Inl(Hook.SSDT)] ZwOpenTransaction[216] : C:\Windows\System32\drivers\tm.sys @ 0xffffffff86d41256 (jmp dword [0x8244438c])
[SSDT:Inl(Hook.SSDT)] ZwOpenResourceManager[225] : C:\Windows\System32\drivers\tm.sys @ 0xffffffff86d3eb64 (jmp dword [0x82444390])
[SSDT:Inl(Hook.SSDT)] ZwOpenEnlistment[243] : C:\Windows\System32\drivers\tm.sys @ 0xffffffff86d3db40 (jmp dword [0x82444394])
[SSDT:Inl(Hook.SSDT)] ZwGetNotificationResourceManager[279] : C:\Windows\System32\drivers\tm.sys @ 0xffffffff86d3ed72 (jmp dword [0x82444398])
[SSDT:Inl(Hook.SSDT)] ZwFreezeTransactions[291] : C:\Windows\System32\drivers\tm.sys @ 0xffffffff86d41f5e (jmp dword [0x8244439c])
[SSDT:Inl(Hook.SSDT)] ZwFlushWriteBuffer[295] : C:\Windows\System32\halmacpi.dll @ 0xffffffff8284dc80 (call dword [0x824440a0])
[SSDT:Inl(Hook.SSDT)] ZwEnumerateTransactionObject[309] : C:\Windows\System32\drivers\tm.sys @ 0xffffffff86d41a14 (jmp dword [0x82444358])
[SSDT:Inl(Hook.SSDT)] ZwCreateTransactionManager[340] : C:\Windows\System32\drivers\tm.sys @ 0xffffffff86d4208c (jmp dword [0x82444354])
[SSDT:Inl(Hook.SSDT)] ZwCreateTransaction[341] : C:\Windows\System32\drivers\tm.sys @ 0xffffffff86d40f3a (jmp dword [0x82444350])
[SSDT:Inl(Hook.SSDT)] ZwCreateResourceManager[351] : C:\Windows\System32\drivers\tm.sys @ 0xffffffff86d3e8ae (jmp dword [0x8244434c])
[SSDT:Inl(Hook.SSDT)] ZwCreateEnlistment[373] : C:\Windows\System32\drivers\tm.sys @ 0xffffffff86d3d93e (jmp dword [0x824442fc])
[SSDT:Inl(Hook.SSDT)] ZwCommitTransaction[385] : C:\Windows\System32\drivers\tm.sys @ 0xffffffff86d41c22 (jmp dword [0x824442f8])
[SSDT:Inl(Hook.SSDT)] ZwCommitEnlistment[386] : C:\Windows\System32\drivers\tm.sys @ 0xffffffff86d3e2f4 (jmp dword [0x824442f4])
[SSDT:Inl(Hook.SSDT)] ZwCommitComplete[387] : C:\Windows\System32\drivers\tm.sys @ 0xffffffff86d3e5d4 (jmp dword [0x824442f0])

¤¤¤ Webové prohlížeče : 0 ¤¤¤

¤¤¤ Kontrola MBR : ¤¤¤
+++++ PhysicalDrive0: +++++
--- User ---
[MBR] 50b618c01d31195a0ab7973ffe836479
[BSP] a2c176279d131497691b1f9350e2b989 : Windows Vista/7/8 MBR Code
Partition table:
0 - [ACTIVE] NTFS (0x7) [VISIBLE] Offset (sectors): 2048 | Size: 100 MB [Windows Vista/7/8 Bootstrap | Windows Vista/7/8 Bootloader]
1 - [XXXXXX] NTFS (0x7) [VISIBLE] Offset (sectors): 206848 | Size: 250318 MB [Windows Vista/7/8 Bootstrap | Windows Vista/7/8 Bootloader]
2 - [XXXXXX] ACER (0x27) [VISIBLE] Offset (sectors): 512858112 | Size: 450 MB
3 - [XXXXXX] NTFS (0x7) [VISIBLE] Offset (sectors): 513779712 | Size: 702999 MB [Windows Vista/7/8 Bootstrap | Windows Vista/7/8 Bootloader]
User = LL1 ... OK
User = LL2 ... OK

+++++ PhysicalDrive1: HPT DISK 0_0 SCSI Disk Device +++++
--- User ---
[MBR] c6ee2fc09eb4bb76e7e6fb7a3dc5b2bd
[BSP] 3feb5ad4da3164bc59041dba71a7685b : HP MBR Code
Partition table:
0 - [XXXXXX] NTFS (0x7) [VISIBLE] Offset (sectors): 2048 | Size: 953725 MB [Windows Vista/7/8 Bootstrap | Windows Vista/7/8 Bootloader]
User = LL1 ... OK
Error reading LL2 MBR! ([1] Nesprávná funkce. )

+++++ PhysicalDrive2: Generic STORAGE DEVICE USB Device +++++
Error reading User MBR! ([15] Za?ízení není p?ipraveno. )
Error reading LL1 MBR! NOT VALID!
Error reading LL2 MBR! ([32] Po?adavek není podporován. )

+++++ PhysicalDrive3: Generic STORAGE DEVICE USB Device +++++
Error reading User MBR! ([15] Za?ízení není p?ipraveno. )
Error reading LL1 MBR! NOT VALID!
Error reading LL2 MBR! ([32] Po?adavek není podporován. )

+++++ PhysicalDrive4: Generic STORAGE DEVICE USB Device +++++
Error reading User MBR! ([15] Za?ízení není p?ipraveno. )
Error reading LL1 MBR! NOT VALID!
Error reading LL2 MBR! ([32] Po?adavek není podporován. )

+++++ PhysicalDrive5: Generic STORAGE DEVICE USB Device +++++
Error reading User MBR! ([15] Za?ízení není p?ipraveno. )
Error reading LL1 MBR! NOT VALID!
Error reading LL2 MBR! ([32] Po?adavek není podporován. )

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43298
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod jaro3 » 07 lis 2016 10:18

Ještě Farbar Recovery Scan Tool (FRST)
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

klobje
nováček
Příspěvky: 28
Registrován: listopad 16
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod klobje » 07 lis 2016 16:55

FRST.txt

Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 06-11-2016
Ran by klobje (administrator) on KLOBJE-PC (07-11-2016 16:44:45)
Running from C:\Users\klobje\Desktop
Loaded Profiles: klobje (Available Profiles: klobje & DefaultAppPool)
Platform: Microsoft Windows 10 Pro Version 1607 (X86) Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(AMD) C:\Windows\System32\atiesrxx.exe
(AMD) C:\Windows\System32\atieclxx.exe
(Andrea Electronics Corporation) C:\Windows\System32\AEADISRV.EXE
(BlueStack Systems, Inc.) C:\Program Files\BlueStacks\HD-LogRotatorService.exe
(BlueStack Systems, Inc.) C:\Program Files\BlueStacks\HD-UpdaterService.exe
(LogMeIn Inc.) C:\Program Files\LogMeIn Hamachi\hamachi-2.exe
(LogMeIn, Inc.) C:\Program Files\LogMeIn Hamachi\LMIGuardianSvc.exe
(QIP.ru) C:\Program Files\QipGuard\QipGuard.exe
(TeamViewer GmbH) C:\Program Files\TeamViewer\Version9\TeamViewer_Service.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\NisSrv.exe
(TeamViewer GmbH) C:\Program Files\TeamViewer\Version9\TeamViewer.exe
(TeamViewer GmbH) C:\Program Files\TeamViewer\Version9\tv_w32.exe
(Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Analog Devices, Inc.) C:\Program Files\Analog Devices\Core\smax4pnp.exe
(Advanced Micro Devices Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(InstallShield Software Corporation) C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe
(Advanced Micro Devices Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(Analog Devices, Inc.) C:\Program Files\Analog Devices\SoundMAX\SoundMAX.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MSASCuiL.exe
(AMD) C:\Program Files\ATI Technologies\HydraVision\HydraDM.exe
(LogMeIn Inc.) C:\Program Files\LogMeIn Hamachi\hamachi-2-ui.exe
() C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.9.251.0_x86__kzf8qxf38zg5c\SkypeHost.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MpCmdRun.exe
(Microsoft Corporation) C:\Windows\System32\backgroundTaskHost.exe
(Opera Software) C:\Program Files\Opera\launcher.exe
(Opera Software) C:\Program Files\Opera\41.0.2353.46\opera_autoupdate.exe


==================== Registry (Whitelisted) ====================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [SoundMAXPnP] => C:\Program Files\Analog Devices\Core\smax4pnp.exe [1310720 2009-06-05] (Analog Devices, Inc.)
HKLM\...\Run: [StartCCC] => C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\x86\CLIStart.exe [748744 2015-11-04] (Advanced Micro Devices, Inc.)
HKLM\...\Run: [BCSSync] => C:\Program Files\Microsoft Office\Office14\BCSSync.exe [89184 2012-11-05] (Microsoft Corporation)
HKLM\...\Run: [ISUSScheduler] => C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe [81920 2004-08-09] (InstallShield Software Corporation)
HKLM\...\Run: [BlueStacks Agent] => C:\Program Files\BlueStacks\HD-Agent.exe [832272 2014-05-21] (BlueStack Systems, Inc.)
HKLM\...\Run: [Launch SilverCrest STMS 2219 A1-K] => C:\Program Files\SilverCrest STMS 2219 A1 Driver\KbClient_FD2.exe [3403256 2013-07-16] (Siliten)
HKLM\...\Run: [Launch SilverCrest STMS 2219 A1-M] => C:\Program Files\SilverCrest STMS 2219 A1 Driver\MouClient_FD2.exe [2841592 2013-07-16] (Siliten)
HKLM\...\Run: [SoundMAX] => C:\Program Files\Analog Devices\SoundMAX\soundmax.exe [3866624 2009-05-18] (Analog Devices, Inc.)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [500208 2010-03-06] (Adobe Systems Incorporated)
HKLM\...\Run: [LogMeIn Hamachi Ui] => C:\Program Files\LogMeIn Hamachi\hamachi-2-ui.exe [5565960 2016-09-13] (LogMeIn Inc.)
HKLM\...\Run: [WindowsDefender] => C:\Program Files\Windows Defender\MSASCuiL.exe [483840 2016-07-16] (Microsoft Corporation)
HKU\S-1-5-21-2313541682-3982225299-4202079360-1000\...\Run: [ISUSPM Startup] => C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe [221184 2004-08-09] (InstallShield Software Corporation)
HKU\S-1-5-21-2313541682-3982225299-4202079360-1000\...\Run: [HydraVisionDesktopManager] => C:\Program Files\ATI Technologies\HydraVision\HydraDM.exe [393216 2011-07-28] (AMD)
HKU\S-1-5-21-2313541682-3982225299-4202079360-1000\...\Run: [RemoTerm.exe] => C:\Program Files\Common Files\PCTV Systems\RemoTerm\RemoTerm.exe
HKU\S-1-5-21-2313541682-3982225299-4202079360-1000\...\Run: [Google Update] => C:\Users\klobje\AppData\Local\Google\Update\GoogleUpdate.exe [144200 2015-08-30] (Google Inc.)
HKU\S-1-5-21-2313541682-3982225299-4202079360-1000\...\Run: [Dropbox Update] => C:\Users\klobje\AppData\Local\Dropbox\Update\DropboxUpdate.exe [134512 2015-06-16] (Dropbox, Inc.)
HKU\S-1-5-21-2313541682-3982225299-4202079360-1000\...\MountPoints2: {375c9c42-19c1-11e1-98c6-806e6f6e6963} - "F:\Launcher.exe"
HKU\S-1-5-21-2313541682-3982225299-4202079360-1000\...\MountPoints2: {9787691c-7145-11e6-ab0e-f8d1110247c5} - "K:\Autorun.exe"
HKU\S-1-5-21-2313541682-3982225299-4202079360-1000\...\MountPoints2: {97876e4b-7145-11e6-ab0e-f8d1110247c5} - "L:\StartUp.exe"
ShellIconOverlayIdentifiers: [ GoogleDriveBlacklisted] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42} => C:\Program Files\Google\Drive\googledrivesync32.dll [2016-07-29] (Google)
ShellIconOverlayIdentifiers: [ GoogleDriveSynced] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40} => C:\Program Files\Google\Drive\googledrivesync32.dll [2016-07-29] (Google)
ShellIconOverlayIdentifiers: [ GoogleDriveSyncing] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41} => C:\Program Files\Google\Drive\googledrivesync32.dll [2016-07-29] (Google)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => No File
ShellIconOverlayIdentifiers: [GDriveSharedOverlay] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44} => No File
Startup: C:\Users\klobje\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk [2016-11-04]
ShortcutTarget: Dropbox.lnk -> C:\Users\klobje\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
BootExecute: autocheck autochk * sdnclean.exe

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 213.46.172.37 213.46.172.36
Tcpip\..\Interfaces\{0972d76a-b566-4c1e-af26-5fce51b0f266}: [DhcpNameServer] 213.46.172.37 213.46.172.36

Internet Explorer:
==================
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <======= ATTENTION
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = about:blank
SearchScopes: HKU\S-1-5-21-2313541682-3982225299-4202079360-1000 -> DefaultScope {012E1000-F331-11DB-8314-0800200C9A66} URL = hxxp://www.google.com/search?q={searchTerms}
SearchScopes: HKU\S-1-5-21-2313541682-3982225299-4202079360-1000 -> gorsel.yandex.com.tr-143849 URL = hxxp://gorsel.yandex.com.tr/yandsearch? ... 1952&text={searchTerms}
SearchScopes: HKU\S-1-5-21-2313541682-3982225299-4202079360-1000 -> haber.yandex.com.tr-143849 URL = hxxp://haber.yandex.com.tr/yandsearch?r ... 1952&text={searchTerms}
SearchScopes: HKU\S-1-5-21-2313541682-3982225299-4202079360-1000 -> video.yandex.com.tr-143849 URL = hxxp://video.yandex.com.tr/#search?win= ... 1952&text={searchTerms}
SearchScopes: HKU\S-1-5-21-2313541682-3982225299-4202079360-1000 -> {012E1000-F331-11DB-8314-0800200C9A66} URL = hxxp://www.google.com/search?q={searchTerms}
SearchScopes: HKU\S-1-5-21-2313541682-3982225299-4202079360-1000 -> {399a1442-7377-49e7-8d77-6dc9ed5968c1} URL = hxxp://www.zbozi.cz/?q={searchTerms}&sourceid=quicksearch_6826
SearchScopes: HKU\S-1-5-21-2313541682-3982225299-4202079360-1000 -> {40EC5F13-8677-43B3-91EE-45AC8BB37B6C} URL = hxxp://www.mapy.cz/?query={searchTerms}&sourceid=QuickSearch_14875
SearchScopes: HKU\S-1-5-21-2313541682-3982225299-4202079360-1000 -> {5cf5d387-d87c-4408-9a6b-301b0713d62a} URL = hxxp://www.mapy.cz/?query={searchTerms}&sourceid=quicksearch_6826
SearchScopes: HKU\S-1-5-21-2313541682-3982225299-4202079360-1000 -> {73458497-67BC-4D20-915C-99E5CEEC7AB3} URL = hxxp://www.novinky.cz/hledej?w={searchTerms}&sourceid=QuickSearch_14875
SearchScopes: HKU\S-1-5-21-2313541682-3982225299-4202079360-1000 -> {90E49BAC-2D21-4EC5-83EC-CF9639731E32} URL = hxxp://www.zbozi.cz/?q={searchTerms}&r=campmoz&sourceid=QuickSearch_14875
SearchScopes: HKU\S-1-5-21-2313541682-3982225299-4202079360-1000 -> {9D9AB388-4939-4931-9D23-487ACB973960} URL = hxxp://tv.seznam.cz/hledej?w={searchTerms}&sourceid=QuickSearch_14875
SearchScopes: HKU\S-1-5-21-2313541682-3982225299-4202079360-1000 -> {DB05DBE7-BC92-43FB-B49F-5F39915E98CF} URL = hxxp://slovnik.seznam.cz/?q={searchTerms}&lang=cz_en&sourceid=QuickSearch_14875
SearchScopes: HKU\S-1-5-21-2313541682-3982225299-4202079360-1000 -> {E9FF0900-4F98-48F8-A73A-1819122B3923} URL = hxxp://www.firmy.cz/?q={searchTerms}&sourceid=QuickSearch_14875
SearchScopes: HKU\S-1-5-21-2313541682-3982225299-4202079360-1000 -> {eb97f7df-1773-4916-aae6-5af74da8c69d} URL = hxxp://www.firmy.cz/phr/{searchTerms}
SearchScopes: HKU\S-1-5-21-2313541682-3982225299-4202079360-1000 -> {F1316EFB-957D-4F8C-9041-C5EA33D61CDA} URL = hxxp://encyklopedie.seznam.cz/search?q={searchTerms}&sourceid=QuickSearch_14875
SearchScopes: HKU\S-1-5-21-2313541682-3982225299-4202079360-1000 -> {FEB3C1E0-A06D-4371-B919-B14A9488423F} URL = hxxp://slovnik.seznam.cz/?q={searchTerms}&lang=en_cz&sourceid=QuickSearch_14875
BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL [2013-12-19] (Microsoft Corporation)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_25\bin\ssv.dll [2014-11-03] (Oracle Corporation)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_25\bin\jp2ssv.dll [2014-11-03] (Oracle Corporation)
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} hxxp://fpdownload2.macromedia.com/get/s ... wflash.cab

FireFox:
========
FF ProfilePath: C:\Users\klobje\AppData\Roaming\Mozilla\Firefox\Profiles\sxmld3me.default [2016-11-07]
FF NewTab: Mozilla\Firefox\Profiles\sxmld3me.default -> about:newtab
FF Homepage: Mozilla\Firefox\Profiles\sxmld3me.default -> about:home
FF Extension: (Firefox Hotfix) - C:\Users\klobje\AppData\Roaming\Mozilla\Firefox\Profiles\sxmld3me.default\Extensions\firefox-hotfix@mozilla.org.xpi [2016-11-02]
FF Extension: (UnPlug) - C:\Users\klobje\AppData\Roaming\Mozilla\Firefox\Profiles\sxmld3me.default\Extensions\unplug@compunach.xpi [2016-07-07]
FF Extension: (No Name) - C:\Users\klobje\AppData\Roaming\Mozilla\Firefox\Profiles\sxmld3me.default\extensions\{285ACFBB-8E53-4feb-90E6-F02A128927F3}.xpi [not found]
FF Extension: (No Name) - C:\Users\klobje\AppData\Roaming\Mozilla\Firefox\Profiles\sxmld3me.default\extensions\{ea614400-e918-4741-9a97-7a972ff7c30b} [not found]
FF SearchPlugin: C:\Users\klobje\AppData\Roaming\Mozilla\Firefox\Profiles\sxmld3me.default\searchplugins\gorsel.yandex.com.tr-143850.xml [2012-11-10]
FF SearchPlugin: C:\Users\klobje\AppData\Roaming\Mozilla\Firefox\Profiles\sxmld3me.default\searchplugins\haber.yandex.com.tr-143850.xml [2012-11-10]
FF SearchPlugin: C:\Users\klobje\AppData\Roaming\Mozilla\Firefox\Profiles\sxmld3me.default\searchplugins\video.yandex.com.tr-143850.xml [2012-11-10]
FF SearchPlugin: C:\Users\klobje\AppData\Roaming\Mozilla\Firefox\Profiles\sxmld3me.default\searchplugins\yandex.com.tr-143850.xml [2012-11-10]
FF SearchPlugin: C:\Users\klobje\AppData\Roaming\Mozilla\Firefox\Profiles\sxmld3me.default\searchplugins\ybqs-firmy.xml [2012-05-15]
FF SearchPlugin: C:\Users\klobje\AppData\Roaming\Mozilla\Firefox\Profiles\sxmld3me.default\searchplugins\ybqs-mapy.xml [2012-05-15]
FF SearchPlugin: C:\Users\klobje\AppData\Roaming\Mozilla\Firefox\Profiles\sxmld3me.default\searchplugins\ybqs-seznam.xml [2012-05-15]
FF SearchPlugin: C:\Users\klobje\AppData\Roaming\Mozilla\Firefox\Profiles\sxmld3me.default\searchplugins\ybqs-sz_vidia.xml [2012-05-15]
FF SearchPlugin: C:\Users\klobje\AppData\Roaming\Mozilla\Firefox\Profiles\sxmld3me.default\searchplugins\ybqs-zbozi.xml [2012-05-15]
FF HKLM\...\Thunderbird\Extensions: [eplgTb@eset.com] - C:\Program Files\ESET\ESET NOD32 Antivirus\Mozilla Thunderbird => not found
FF HKLM\...\Firefox\Extensions: [{17E113E6-CD0E-4045-B154-65F0E57959EF}] - C:\Program Files\IMPI\Firefox
FF Extension: (IMPI) - C:\Program Files\IMPI\Firefox [2013-02-24] [not signed]
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF32_23_0_0_162.dll [2016-09-13] ()
FF Plugin: @Google.com/GoogleEarthPlugin -> C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll [2015-05-20] (Google)
FF Plugin: @java.com/DTPlugin,version=11.25.2 -> C:\Program Files\Java\jre1.8.0_25\bin\dtplugin\npDeployJava1.dll [2014-11-03] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.25.2 -> C:\Program Files\Java\jre1.8.0_25\bin\plugin2\npjp2.dll [2014-11-03] (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.50901.0\npctrl.dll [2016-08-31] ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~4\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~4\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation)
FF Plugin: @pandonetworks.com/PandoWebPlugin -> C:\Program Files\Pando Networks\Media Booster\npPandoWebPlugin.dll [No File]
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-07-28] (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-07-28] (Google Inc.)
FF Plugin: @videolan.org/vlc,version=2.0.7 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2016-06-01] (VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.1.3 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2016-06-01] (VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.1.5 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2016-06-01] (VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.2.1 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2016-06-01] (VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.2.4 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2016-06-01] (VideoLAN)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2016-10-01] (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-2313541682-3982225299-4202079360-1000: @tools.google.com/Google Update;version=3 -> C:\Users\klobje\AppData\Local\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-07-29] (Google Inc.)
FF Plugin HKU\S-1-5-21-2313541682-3982225299-4202079360-1000: @tools.google.com/Google Update;version=9 -> C:\Users\klobje\AppData\Local\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-07-29] (Google Inc.)
FF Plugin HKU\S-1-5-21-2313541682-3982225299-4202079360-1000: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\klobje\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [No File]
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\np-mswmp.dll [2007-04-10] (Microsoft Corporation)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\nppdf32.dll [2016-10-01] (Adobe Systems Inc.)

Chrome:
=======
CHR DefaultProfile: Default
CHR HKLM\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - hxxps://clients2.google.com/service/update2/crx
StartMenuInternet: Google Chrome - C:\Users\klobje\AppData\Local\Google\Chrome\Application\chrome.exe

==================== Services (Whitelisted) ====================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S2 BstHdAndroidSvc; C:\Program Files\BlueStacks\HD-Service.exe [402192 2014-05-21] (BlueStack Systems, Inc.)
R2 BstHdLogRotatorSvc; C:\Program Files\BlueStacks\HD-LogRotatorService.exe [385808 2014-05-21] (BlueStack Systems, Inc.)
R2 BstHdUpdaterSvc; C:\Program Files\BlueStacks\HD-UpdaterService.exe [774928 2014-05-21] (BlueStack Systems, Inc.)
R2 Hamachi2Svc; C:\Program Files\LogMeIn Hamachi\hamachi-2.exe [1958408 2016-09-13] (LogMeIn Inc.)
R2 LMIGuardianSvc; C:\Program Files\LogMeIn Hamachi\LMIGuardianSvc.exe [405424 2016-08-31] (LogMeIn, Inc.)
R2 QipGuard; C:\Program Files\QipGuard\QipGuard.exe [191440 2011-11-23] (QIP.ru) [File not signed]
R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [271496 2016-07-16] (Microsoft Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [84928 2016-07-16] (Microsoft Corporation)
S3 Sense; "%ProgramFiles%\Windows Defender Advanced Threat Protection\MsSense.exe" [X]

===================== Drivers (Whitelisted) ======================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 atksgt; C:\WINDOWS\System32\DRIVERS\atksgt.sys [83872 2014-04-22] ()
R1 avgtp; C:\Windows\system32\drivers\avgtpx86.sys [26984 2012-11-05] (AVG Technologies)
S3 azvusb; C:\WINDOWS\System32\drivers\azvusb.sys [44544 2009-08-24] (AzureWave Technologies, Inc.)
R2 BstHdDrv; C:\Program Files\BlueStacks\HD-Hypervisor-x86.sys [113424 2014-05-21] (BlueStack Systems)
R3 ElbyDelay; C:\WINDOWS\System32\Drivers\ElbyDelay.sys [3840 2003-03-28] (Elaborate Bytes) [File not signed]
R3 Hamachi; C:\WINDOWS\System32\drivers\Hamdrv.sys [38512 2015-11-12] (LogMeIn Inc.)
R2 lirsgt; C:\WINDOWS\System32\DRIVERS\lirsgt.sys [25888 2014-04-22] ()
S3 mod7700; C:\WINDOWS\System32\Drivers\mod7700.sys [914816 2010-11-19] (DiBcom SA)
S3 MODRC; C:\WINDOWS\system32\DRIVERS\modrc.sys [13824 2008-09-17] (DiBcom S.A.)
R3 MTsensor; C:\WINDOWS\system32\DRIVERS\ASACPI.sys [13216 2009-07-16] ()
S3 NetAdapterCx; C:\WINDOWS\System32\drivers\NetAdapterCx.sys [62976 2016-07-16] ()
R0 rr172x; C:\WINDOWS\System32\drivers\rr172x.sys [101920 2007-11-01] (HighPoint Technologies, Inc.)
S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [199936 2016-04-24] (Samsung Electronics Co., Ltd.)
S3 trufos; C:\WINDOWS\System32\drivers\trufos.sys [343456 2016-11-02] (BitDefender S.R.L.)
R3 VmtkmHid_0; C:\WINDOWS\System32\drivers\VmtkmHid_0.sys [8704 2012-02-20] (0)
R3 VmtkmHid_MouFiltr_0; C:\WINDOWS\System32\drivers\VmtkmMouFiltr_0.sys [5632 2012-02-20] (0)
S0 WdBoot; C:\WINDOWS\System32\drivers\WdBoot.sys [37912 2016-07-16] (Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\WdFilter.sys [244576 2016-07-16] (Microsoft Corporation)
S3 wdm_usb; C:\WINDOWS\system32\DRIVERS\usb2ser.sys [119952 2016-07-15] (MBB)
R3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [100192 2016-07-16] (Microsoft Corporation)
R3 WUDFWpdMtp; C:\WINDOWS\system32\DRIVERS\WUDFRd.sys [161280 2016-07-16] (Microsoft Corporation)
R3 yukonw8; C:\WINDOWS\System32\drivers\yk63x86.sys [242688 2016-07-16] (Marvell)
U3 idsvc; no ImagePath

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2016-11-07 16:44 - 2016-11-07 16:45 - 00020176 _____ C:\Users\klobje\Desktop\FRST.txt
2016-11-07 16:43 - 2016-11-07 16:44 - 00000000 ____D C:\FRST
2016-11-07 16:42 - 2016-11-07 16:43 - 01759744 _____ (Farbar) C:\Users\klobje\Desktop\FRST.exe
2016-11-07 15:20 - 2016-11-07 14:14 - 00024064 _____ C:\WINDOWS\zoek-delete.exe
2016-11-07 11:38 - 2016-11-07 15:17 - 00000000 ____D C:\zoek_backup
2016-11-07 11:37 - 2016-11-07 11:38 - 01309184 _____ C:\Users\klobje\Desktop\zoek.exe
2016-11-06 16:24 - 2016-11-06 16:24 - 00000000 ____D C:\Users\klobje\AppData\Local\CrashDumps
2016-11-06 11:32 - 2016-11-06 11:32 - 00000000 ____D C:\Users\klobje\AppData\Local\AMD
2016-11-05 11:40 - 2016-11-05 23:06 - 00024688 _____ C:\WINDOWS\system32\Drivers\TrueSight.sys
2016-11-05 11:39 - 2016-11-05 20:32 - 00000000 ____D C:\ProgramData\RogueKiller
2016-11-05 11:38 - 2016-11-05 11:39 - 20966472 _____ C:\Users\klobje\Desktop\RogueKiller.exe
2016-11-05 10:16 - 2016-11-05 10:16 - 00006858 _____ C:\Users\klobje\Desktop\JRT.txt
2016-11-05 10:12 - 2016-11-05 10:13 - 01631928 _____ (Malwarebytes) C:\Users\klobje\Desktop\JRT.exe
2016-11-04 22:33 - 2016-11-04 22:33 - 00000000 ____D C:\ProgramData\Sophos
2016-11-04 22:32 - 2016-11-04 22:32 - 00002763 _____ C:\Users\Public\Desktop\Sophos Virus Removal Tool.lnk
2016-11-04 22:32 - 2016-11-04 22:32 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sophos
2016-11-04 22:32 - 2016-11-04 22:32 - 00000000 ____D C:\Program Files\Sophos
2016-11-04 21:55 - 2016-11-04 21:55 - 00133061 _____ C:\antimalware1.txt
2016-11-04 21:54 - 2016-11-04 21:54 - 00133060 _____ C:\antimalware.txt
2016-11-04 13:09 - 2016-11-05 10:50 - 00170200 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys
2016-11-04 13:07 - 2016-11-04 22:00 - 00001133 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2016-11-04 13:07 - 2016-11-04 13:07 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2016-11-04 13:07 - 2016-11-04 13:07 - 00000000 ____D C:\ProgramData\Malwarebytes
2016-11-04 13:07 - 2016-11-04 13:07 - 00000000 ____D C:\Program Files\Malwarebytes Anti-Malware
2016-11-04 13:07 - 2016-03-10 14:09 - 00053120 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mwac.sys
2016-11-04 13:07 - 2016-03-10 14:08 - 00126336 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamchameleon.sys
2016-11-04 13:07 - 2016-03-10 14:08 - 00024448 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbam.sys
2016-11-04 12:48 - 2016-11-04 22:11 - 00000000 ____D C:\AdwCleaner
2016-11-04 12:43 - 2016-11-04 12:43 - 00000000 ____D C:\Users\klobje\AppData\Local\CEF
2016-11-04 12:43 - 2016-11-04 12:43 - 00000000 ____D C:\Users\klobje\AppData\Local\ATI
2016-11-04 12:43 - 2016-11-04 12:43 - 00000000 ____D C:\Users\klobje\AppData\Local\Adobe
2016-11-04 12:40 - 2016-11-04 12:40 - 00000000 ____D C:\Users\klobje\AppData\Local\Apps\2.0
2016-11-04 12:33 - 2016-11-04 12:48 - 03910208 _____ C:\Users\klobje\Desktop\AdwCleaner.exe
2016-11-04 12:33 - 2016-11-04 12:33 - 00000000 ____D C:\Users\klobje\Desktop\antiviry a kontrola PC
2016-11-03 14:39 - 2016-11-03 14:39 - 00252778 _____ C:\Users\klobje\Documents\cc_20161103_143938.reg
2016-11-03 12:29 - 2016-11-04 12:16 - 00000214 _____ C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job
2016-11-03 12:27 - 2016-11-03 12:27 - 00000000 ____D C:\WINDOWS\pss
2016-11-02 19:12 - 2016-11-02 19:15 - 00064261 _____ C:\Users\klobje\Downloads\Nepotvrzeno 883655.crdownload
2016-11-02 18:30 - 2016-11-02 18:59 - 00000000 _____ C:\Users\klobje\Downloads\Nepotvrzeno 130903.crdownload
2016-11-02 15:41 - 2016-11-02 15:41 - 00000029 _____ C:\WINDOWS\Lic.xxx
2016-11-02 15:40 - 2016-11-02 15:40 - 00655872 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvcr90.dll
2016-11-02 15:40 - 2016-11-02 15:40 - 00572928 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvcp90.dll
2016-11-02 15:40 - 2016-11-02 15:40 - 00343456 _____ (BitDefender S.R.L.) C:\WINDOWS\system32\Drivers\trufos.sys
2016-11-02 15:40 - 2016-11-02 15:40 - 00156392 _____ (MicroWorld Technologies Inc.) C:\WINDOWS\system32\eEmpty.exe
2016-11-02 15:40 - 2016-11-02 15:40 - 00000000 ____D C:\ProgramData\MicroWorld
2016-11-02 14:53 - 2016-11-02 14:59 - 00049332 _____ C:\Users\klobje\Downloads\Nepotvrzeno 388788.crdownload
2016-11-01 14:42 - 2016-11-05 10:43 - 00000000 ____D C:\ProgramData\Spybot - Search & Destroy
2016-11-01 14:41 - 2016-11-05 10:46 - 00000000 ____D C:\Program Files\Spybot - Search & Destroy 2
2016-11-01 14:17 - 2016-11-01 14:18 - 00065536 _____ C:\Users\klobje\Downloads\spybot-2.4 (1).exe
2016-10-29 16:49 - 2016-10-29 16:49 - 00000000 ____D C:\Users\klobje\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox
2016-10-28 11:32 - 2016-11-04 22:00 - 00001363 _____ C:\Users\Public\Desktop\Teta CEWE fotosvet.lnk
2016-10-28 11:32 - 2016-10-28 11:32 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Teta CEWE fotosvet
2016-10-28 11:17 - 2016-10-28 11:17 - 00000000 ____D C:\Program Files\Teta CEWE fotosvet
2016-10-28 11:14 - 2016-10-28 11:15 - 01638264 _____ C:\Users\klobje\Downloads\setup_Teta_CEWE_fotosvet.exe
2016-10-28 07:35 - 2016-10-15 05:36 - 04970224 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe
2016-10-28 07:35 - 2016-10-15 05:35 - 00890984 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2016-10-28 07:35 - 2016-10-15 05:35 - 00784064 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2016-10-28 07:35 - 2016-10-15 05:33 - 01073816 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2016-10-28 07:35 - 2016-10-15 05:33 - 00945760 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2016-10-28 07:35 - 2016-10-15 05:32 - 01583112 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2016-10-28 07:35 - 2016-10-15 05:20 - 01898336 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2016-10-28 07:35 - 2016-10-15 05:20 - 00550752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2016-10-28 07:35 - 2016-10-15 05:20 - 00342880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2016-10-28 07:35 - 2016-10-15 05:19 - 02256592 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2016-10-28 07:35 - 2016-10-15 05:14 - 01384704 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll
2016-10-28 07:35 - 2016-10-15 05:14 - 00802600 _____ (Microsoft Corporation) C:\WINDOWS\system32\EditionUpgradeManagerObj.dll
2016-10-28 07:35 - 2016-10-15 05:14 - 00675064 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppwinob.dll
2016-10-28 07:35 - 2016-10-15 04:48 - 00797696 _____ (Microsoft Corporation) C:\WINDOWS\system32\qmgr.dll
2016-10-28 07:35 - 2016-10-15 04:37 - 02256896 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2016-10-28 07:35 - 2016-10-15 04:37 - 00579072 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe
2016-10-28 07:35 - 2016-10-15 04:36 - 01595392 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2016-10-28 07:35 - 2016-10-15 04:36 - 01234944 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2016-10-28 07:34 - 2016-10-15 06:11 - 00484584 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll
2016-10-28 07:34 - 2016-10-15 05:40 - 01126496 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipUp.exe
2016-10-28 07:34 - 2016-10-15 05:34 - 01969912 _____ (Microsoft Corporation) C:\WINDOWS\system32\hevcdecoder.dll
2016-10-28 07:34 - 2016-10-15 05:33 - 06020448 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2016-10-28 07:34 - 2016-10-15 05:19 - 00272720 _____ (Microsoft Corporation) C:\WINDOWS\system32\wintrust.dll
2016-10-28 07:34 - 2016-10-15 05:18 - 00749920 _____ (Microsoft Corporation) C:\WINDOWS\system32\drvstore.dll
2016-10-28 07:34 - 2016-10-15 05:18 - 00576400 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll
2016-10-28 07:34 - 2016-10-15 05:18 - 00454496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storport.sys
2016-10-28 07:34 - 2016-10-15 05:18 - 00186424 _____ (Microsoft Corporation) C:\WINDOWS\system32\weretw.dll
2016-10-28 07:34 - 2016-10-15 05:18 - 00067424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\crashdmp.sys
2016-10-28 07:34 - 2016-10-15 05:15 - 00959112 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll
2016-10-28 07:34 - 2016-10-15 05:11 - 01424488 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d9.dll
2016-10-28 07:34 - 2016-10-15 05:11 - 01345504 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll
2016-10-28 07:34 - 2016-10-15 05:11 - 01263848 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll
2016-10-28 07:34 - 2016-10-15 05:11 - 00545944 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe
2016-10-28 07:34 - 2016-10-15 05:10 - 00482656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\afd.sys
2016-10-28 07:34 - 2016-10-15 05:00 - 01631232 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Resources.dll
2016-10-28 07:34 - 2016-10-15 04:59 - 00187904 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfksproxy.dll
2016-10-28 07:34 - 2016-10-15 04:58 - 00032768 _____ (Microsoft Corporation) C:\WINDOWS\system32\efsext.dll
2016-10-28 07:34 - 2016-10-15 04:56 - 00327680 _____ (Microsoft Corporation) C:\WINDOWS\system32\daxexec.dll
2016-10-28 07:34 - 2016-10-15 04:56 - 00186368 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdd.dll
2016-10-28 07:34 - 2016-10-15 04:56 - 00095232 _____ (Microsoft Corporation) C:\WINDOWS\system32\BluetoothApis.dll
2016-10-28 07:34 - 2016-10-15 04:55 - 00062976 _____ (Microsoft Corporation) C:\WINDOWS\system32\HttpsDataSource.dll
2016-10-28 07:34 - 2016-10-15 04:54 - 00410112 _____ (Microsoft Corporation) C:\WINDOWS\system32\SndVolSSO.dll
2016-10-28 07:34 - 2016-10-15 04:54 - 00394240 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll
2016-10-28 07:34 - 2016-10-15 04:54 - 00186880 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Flights.dll
2016-10-28 07:34 - 2016-10-15 04:54 - 00079360 _____ (Microsoft Corporation) C:\WINDOWS\system32\BthRadioMedia.dll
2016-10-28 07:34 - 2016-10-15 04:52 - 00322560 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpAXHolder.dll
2016-10-28 07:34 - 2016-10-15 04:51 - 13868544 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2016-10-28 07:34 - 2016-10-15 04:51 - 00132608 _____ (Microsoft Corporation) C:\WINDOWS\system32\winsrv.dll
2016-10-28 07:34 - 2016-10-15 04:50 - 02333184 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmSvc.dll
2016-10-28 07:34 - 2016-10-15 04:50 - 00074752 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatepolicy.dll
2016-10-28 07:34 - 2016-10-15 04:49 - 00348672 _____ (Microsoft Corporation) C:\WINDOWS\system32\zipfldr.dll
2016-10-28 07:34 - 2016-10-15 04:49 - 00033280 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSManHTTPConfig.exe
2016-10-28 07:34 - 2016-10-15 04:48 - 00827392 _____ (Microsoft Corporation) C:\WINDOWS\system32\iphlpsvc.dll
2016-10-28 07:34 - 2016-10-15 04:48 - 00158720 _____ (Microsoft Corporation) C:\WINDOWS\system32\EditionUpgradeHelper.dll
2016-10-28 07:34 - 2016-10-15 04:46 - 00097792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\capimg.sys
2016-10-28 07:34 - 2016-10-15 04:43 - 02748928 _____ (Microsoft Corporation) C:\WINDOWS\system32\mispace.dll
2016-10-28 07:34 - 2016-10-15 04:43 - 01406976 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationFramework.dll
2016-10-28 07:34 - 2016-10-15 04:43 - 00786432 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2016-10-28 07:34 - 2016-10-15 04:43 - 00500736 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationController.dll
2016-10-28 07:34 - 2016-10-15 04:42 - 00090624 _____ (Microsoft Corporation) C:\WINDOWS\system32\olepro32.dll
2016-10-28 07:34 - 2016-10-15 04:42 - 00076800 _____ (Microsoft Corporation) C:\WINDOWS\system32\powercfg.exe
2016-10-28 07:34 - 2016-10-15 04:41 - 12174848 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2016-10-28 07:34 - 2016-10-15 04:39 - 01228288 _____ (Microsoft Corporation) C:\WINDOWS\system32\usercpl.dll
2016-10-28 07:34 - 2016-10-15 04:39 - 00357376 _____ (Microsoft Corporation) C:\WINDOWS\system32\Geolocation.dll
2016-10-28 07:34 - 2016-10-15 04:38 - 00675840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.dll
2016-10-28 07:34 - 2016-10-15 04:37 - 01485312 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll
2016-10-28 07:34 - 2016-10-15 04:37 - 00884224 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcomm.dll
2016-10-28 07:34 - 2016-10-15 04:37 - 00709120 _____ (Microsoft Corporation) C:\WINDOWS\system32\CPFilters.dll
2016-10-28 07:34 - 2016-10-15 04:36 - 01170944 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Speech.dll
2016-10-28 07:34 - 2016-10-15 04:36 - 00542208 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.Connectivity.dll
2016-10-28 07:34 - 2016-10-15 04:35 - 02999808 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2016-10-28 07:34 - 2016-10-15 04:35 - 02708992 _____ (Microsoft Corporation) C:\WINDOWS\system32\esent.dll
2016-10-28 07:33 - 2016-10-15 05:31 - 00570720 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\acpi.sys
2016-10-28 07:33 - 2016-10-15 05:15 - 20969928 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2016-10-28 07:33 - 2016-10-15 05:15 - 01557808 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmde.dll
2016-10-28 07:33 - 2016-10-15 05:10 - 01968992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys
2016-10-28 07:33 - 2016-10-15 05:00 - 00254464 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.pcshell.dll
2016-10-28 07:33 - 2016-10-15 04:58 - 00158720 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe
2016-10-28 07:33 - 2016-10-15 04:58 - 00114688 _____ (Microsoft Corporation) C:\WINDOWS\splwow64.exe
2016-10-28 07:33 - 2016-10-15 04:57 - 00081408 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll
2016-10-28 07:33 - 2016-10-15 04:56 - 00306688 _____ (Microsoft Corporation) C:\WINDOWS\system32\esentutl.exe
2016-10-28 07:33 - 2016-10-15 04:56 - 00231424 _____ (Microsoft Corporation) C:\WINDOWS\system32\wc_storage.dll
2016-10-28 07:33 - 2016-10-15 04:55 - 00035840 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmTasks.dll
2016-10-28 07:33 - 2016-10-15 04:53 - 00270336 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtrans.dll
2016-10-28 07:33 - 2016-10-15 04:52 - 00306176 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieproxy.dll
2016-10-28 07:33 - 2016-10-15 04:51 - 00790528 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
2016-10-28 07:33 - 2016-10-15 04:51 - 00226304 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcore6.dll
2016-10-28 07:33 - 2016-10-15 04:50 - 00416256 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocore.dll
2016-10-28 07:33 - 2016-10-15 04:50 - 00310272 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll
2016-10-28 07:33 - 2016-10-15 04:50 - 00198656 _____ (Microsoft Corporation) C:\WINDOWS\system32\indexeddbserver.dll
2016-10-28 07:33 - 2016-10-15 04:49 - 00146432 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscsvc.dll
2016-10-28 07:33 - 2016-10-15 04:48 - 01323008 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsp_fs.dll
2016-10-28 07:33 - 2016-10-15 04:48 - 00088576 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAppInstaller.exe
2016-10-28 07:33 - 2016-10-15 04:47 - 01113600 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsp_health.dll
2016-10-28 07:33 - 2016-10-15 04:47 - 00488448 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnprv.dll
2016-10-28 07:33 - 2016-10-15 04:46 - 19418112 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2016-10-28 07:33 - 2016-10-15 04:46 - 19416576 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2016-10-28 07:33 - 2016-10-15 04:46 - 01375232 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2016-10-28 07:33 - 2016-10-15 04:44 - 00747008 _____ (Microsoft Corporation) C:\WINDOWS\system32\RemoteNaturalLanguage.dll
2016-10-28 07:33 - 2016-10-15 04:44 - 00465920 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppBroker.dll
2016-10-28 07:33 - 2016-10-15 04:42 - 12349440 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmp.dll
2016-10-28 07:33 - 2016-10-15 04:41 - 00444928 _____ (Microsoft Corporation) C:\WINDOWS\system32\energy.dll
2016-10-28 07:33 - 2016-10-15 04:41 - 00067584 _____ (Microsoft Corporation) C:\WINDOWS\system32\iscsiwmi.dll
2016-10-28 07:33 - 2016-10-15 04:40 - 01135616 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpncore.dll
2016-10-28 07:33 - 2016-10-15 04:39 - 00079360 _____ (Microsoft Corporation) C:\WINDOWS\system32\asycfilt.dll
2016-10-28 07:33 - 2016-10-15 04:38 - 07468032 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
2016-10-28 07:33 - 2016-10-15 04:37 - 01940992 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2016-10-28 07:33 - 2016-10-15 04:36 - 01123328 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2016-10-28 07:33 - 2016-10-15 04:36 - 00528384 _____ (Microsoft Corporation) C:\WINDOWS\system32\spoolsv.exe
2016-10-28 07:33 - 2016-10-15 04:36 - 00081408 _____ (Microsoft Corporation) C:\WINDOWS\system32\cmifw.dll
2016-10-28 07:33 - 2016-10-15 04:35 - 01509376 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll
2016-10-28 07:32 - 2016-10-15 06:11 - 01415520 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll
2016-10-28 07:32 - 2016-10-15 06:11 - 01026400 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll
2016-10-28 07:32 - 2016-10-15 06:11 - 00496992 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll
2016-10-28 07:32 - 2016-10-15 06:11 - 00486752 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll
2016-10-28 07:32 - 2016-10-15 06:11 - 00277344 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll
2016-10-28 07:32 - 2016-10-15 06:11 - 00224608 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCensus.exe
2016-10-28 07:32 - 2016-10-15 06:11 - 00192864 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepic.dll
2016-10-28 07:32 - 2016-10-15 06:11 - 00115552 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll
2016-10-28 07:32 - 2016-10-15 06:11 - 00069472 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompatTelRunner.exe
2016-10-28 07:32 - 2016-10-15 05:33 - 00455040 _____ (Microsoft Corporation) C:\WINDOWS\system32\DolbyDecMFT.dll
2016-10-28 07:32 - 2016-10-15 05:32 - 00601712 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleaut32.dll
2016-10-28 07:32 - 2016-10-15 05:27 - 00421216 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcasvc.dll
2016-10-28 07:32 - 2016-10-15 05:26 - 00055136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dam.sys
2016-10-28 07:32 - 2016-10-15 05:20 - 02276736 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll
2016-10-28 07:32 - 2016-10-15 05:18 - 02166232 _____ (Microsoft Corporation) C:\WINDOWS\system32\combase.dll
2016-10-28 07:32 - 2016-10-15 05:18 - 01556712 _____ (Microsoft Corporation) C:\WINDOWS\system32\crypt32.dll
2016-10-28 07:32 - 2016-10-15 05:18 - 00846560 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinTypes.dll
2016-10-28 07:32 - 2016-10-15 05:18 - 00458592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spaceport.sys
2016-10-28 07:32 - 2016-10-15 05:18 - 00261984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pci.sys
2016-10-28 07:32 - 2016-10-15 05:15 - 03892352 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2016-10-28 07:32 - 2016-10-15 05:15 - 01853776 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmp4srcsnk.dll
2016-10-28 07:32 - 2016-10-15 05:15 - 01123368 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll
2016-10-28 07:32 - 2016-10-15 05:15 - 00952416 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll
2016-10-28 07:32 - 2016-10-15 05:15 - 00687936 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvproc.dll
2016-10-28 07:32 - 2016-10-15 05:14 - 04311736 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2016-10-28 07:32 - 2016-10-15 05:10 - 00781664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\http.sys
2016-10-28 07:32 - 2016-10-15 05:10 - 00254656 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpeffects.dll
2016-10-28 07:32 - 2016-10-15 05:06 - 05685760 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll
2016-10-28 07:32 - 2016-10-15 05:00 - 00018432 _____ (Microsoft Corporation) C:\WINDOWS\system32\stdole2.tlb
2016-10-28 07:32 - 2016-10-15 04:59 - 00216576 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\xboxgip.sys
2016-10-28 07:32 - 2016-10-15 04:57 - 00175104 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpdxm.dll
2016-10-28 07:32 - 2016-10-15 04:55 - 00254976 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdpusersvc.dll
2016-10-28 07:32 - 2016-10-15 04:55 - 00182784 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsensorgroup.dll
2016-10-28 07:32 - 2016-10-15 04:55 - 00142336 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.WiFi.dll
2016-10-28 07:32 - 2016-10-15 04:55 - 00116224 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidclass.sys
2016-10-28 07:32 - 2016-10-15 04:54 - 00555008 _____ (Microsoft Corporation) C:\WINDOWS\system32\StoreAgent.dll
2016-10-28 07:32 - 2016-10-15 04:54 - 00179712 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgent.exe
2016-10-28 07:32 - 2016-10-15 04:54 - 00168448 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSrvPolicyManager.dll
2016-10-28 07:32 - 2016-10-15 04:54 - 00102912 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpshell.dll
2016-10-28 07:32 - 2016-10-15 04:53 - 00222720 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgentUserBroker.exe
2016-10-28 07:32 - 2016-10-15 04:52 - 00293888 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdpsvc.dll
2016-10-28 07:32 - 2016-10-15 04:51 - 00517632 _____ (Microsoft Corporation) C:\WINDOWS\system32\FlightSettings.dll
2016-10-28 07:32 - 2016-10-15 04:50 - 00353792 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Bluetooth.dll
2016-10-28 07:32 - 2016-10-15 04:49 - 00838144 _____ (Microsoft Corporation) C:\WINDOWS\system32\JpMapControl.dll
2016-10-28 07:32 - 2016-10-15 04:49 - 00151040 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXApplicabilityBlob.dll
2016-10-28 07:32 - 2016-10-15 04:47 - 07626752 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2016-10-28 07:32 - 2016-10-15 04:47 - 04612608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll
2016-10-28 07:32 - 2016-10-15 04:46 - 00471552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.BackgroundMediaPlayback.dll
2016-10-28 07:32 - 2016-10-15 04:44 - 03307520 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll
2016-10-28 07:32 - 2016-10-15 04:44 - 00636928 _____ (Microsoft Corporation) C:\WINDOWS\system32\winhttp.dll
2016-10-28 07:32 - 2016-10-15 04:44 - 00470016 _____ (Microsoft Corporation)

klobje
nováček
Příspěvky: 28
Registrován: listopad 16
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod klobje » 07 lis 2016 16:55

C:\WINDOWS\system32\Windows.Media.Playback.BackgroundMediaPlayer.dll
2016-10-28 07:32 - 2016-10-15 04:42 - 06108672 _____ (Microsoft Corporation) C:\WINDOWS\system32\mos.dll
2016-10-28 07:32 - 2016-10-15 04:42 - 03776000 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll
2016-10-28 07:32 - 2016-10-15 04:42 - 00459776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Playback.MediaPlayer.dll
2016-10-28 07:32 - 2016-10-15 04:41 - 05376000 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingMaps.dll
2016-10-28 07:32 - 2016-10-15 04:40 - 00503808 _____ (Microsoft Corporation) C:\WINDOWS\system32\FrameServer.dll
2016-10-28 07:32 - 2016-10-15 04:39 - 00806400 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3D12.dll
2016-10-28 07:32 - 2016-10-15 04:38 - 01993216 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2016-10-28 07:32 - 2016-10-15 04:37 - 03733504 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_47.dll
2016-10-28 07:32 - 2016-10-15 04:37 - 00715264 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapControlCore.dll
2016-10-28 07:32 - 2016-10-15 04:37 - 00712192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Search.dll
2016-10-28 07:32 - 2016-10-15 04:36 - 04423680 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExplorerFrame.dll
2016-10-28 07:32 - 2016-10-15 04:36 - 02484736 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameux.dll
2016-10-28 07:32 - 2016-10-15 04:36 - 01880576 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Logon.dll
2016-10-28 07:32 - 2016-10-15 04:36 - 01556992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Immersive.dll
2016-10-28 07:32 - 2016-10-15 04:36 - 01523712 _____ (Microsoft Corporation) C:\WINDOWS\system32\FntCache.dll
2016-10-28 07:32 - 2016-10-15 04:35 - 02005504 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWrite.dll
2016-10-28 07:32 - 2016-10-15 04:35 - 00798208 _____ (Microsoft Corporation) C:\WINDOWS\system32\authui.dll
2016-10-28 07:32 - 2016-10-15 04:35 - 00760832 _____ (Microsoft Corporation) C:\WINDOWS\system32\NMAA.dll
2016-10-28 07:32 - 2016-10-15 04:35 - 00422400 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.dll
2016-10-28 07:32 - 2016-10-15 04:33 - 00188928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ahcache.sys
2016-10-28 07:31 - 2016-10-15 04:56 - 00176128 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkDesktopSettings.dll
2016-10-28 07:31 - 2016-10-15 04:54 - 00239616 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshostcore.dll
2016-10-28 07:31 - 2016-10-15 04:54 - 00152064 _____ (Microsoft Corporation) C:\WINDOWS\system32\autoplay.dll
2016-10-28 07:31 - 2016-10-15 04:53 - 00705024 _____ (Microsoft Corporation) C:\WINDOWS\system32\taskbarcpl.dll
2016-10-28 07:31 - 2016-10-15 04:53 - 00549376 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActionCenterCPL.dll
2016-10-28 07:31 - 2016-10-15 04:53 - 00198144 _____ (Microsoft Corporation) C:\WINDOWS\system32\FSClient.dll
2016-10-28 07:31 - 2016-10-15 04:52 - 00632832 _____ (Microsoft Corporation) C:\WINDOWS\system32\sud.dll
2016-10-28 07:31 - 2016-10-15 04:52 - 00506880 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevicePairing.dll
2016-10-28 07:31 - 2016-10-15 04:52 - 00288256 _____ (Microsoft Corporation) C:\WINDOWS\system32\systemcpl.dll
2016-10-28 07:31 - 2016-10-15 04:51 - 00136704 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockScreenContent.dll
2016-10-28 07:31 - 2016-10-15 04:50 - 00896512 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontext.dll
2016-10-28 07:31 - 2016-10-15 04:50 - 00387072 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.UserAccountsHandlers.dll
2016-10-28 07:31 - 2016-10-15 04:46 - 00336896 _____ (Microsoft Corporation) C:\WINDOWS\system32\msinfo32.exe
2016-10-28 07:31 - 2016-10-15 04:39 - 00109568 _____ (Microsoft Corporation) C:\WINDOWS\system32\chartv.dll
2016-10-28 07:31 - 2016-10-15 04:38 - 02458112 _____ (Microsoft Corporation) C:\WINDOWS\system32\themecpl.dll
2016-10-28 07:31 - 2016-10-15 04:37 - 00705536 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsStore.dll
2016-10-28 07:31 - 2016-10-15 04:36 - 00580608 _____ (Microsoft Corporation) C:\WINDOWS\system32\hgcpl.dll
2016-10-28 07:31 - 2016-10-15 04:36 - 00358912 _____ (Microsoft Corporation) C:\WINDOWS\system32\stobject.dll
2016-10-27 21:04 - 2016-10-27 21:04 - 00000000 ____D C:\Users\klobje\Documents\Electronic Arts
2016-10-27 21:03 - 2011-02-18 15:07 - 00447752 _____ (On2.com) C:\WINDOWS\system32\vp6vfw.dll
2016-10-27 21:02 - 2016-11-04 22:00 - 00000755 _____ C:\Users\Public\Desktop\The Sims 4.lnk
2016-10-27 21:02 - 2016-10-27 21:02 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hry
2016-10-27 19:07 - 2016-11-04 22:00 - 00000279 _____ C:\Users\klobje\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Koš.lnk
2016-10-27 14:36 - 2016-11-04 22:01 - 00001078 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Opera 41.lnk
2016-10-26 10:31 - 2016-10-26 10:31 - 00000322 _____ C:\Users\klobje\Downloads\CSOB_1792503093_26.10.2016.txt
2016-10-23 22:32 - 2016-10-23 22:33 - 344668867 _____ C:\Users\klobje\Downloads\The-Philosophers-2013-‧-FantasyThriller-‧-1-h-47-min.mp4
2016-10-23 20:58 - 2016-10-23 21:02 - 1141230216 _____ C:\Users\klobje\Downloads\Dcera-čarodějky-akční,dobrodružný,fantasy-(2015)-cz.titulky,novinky.avi
2016-10-23 18:58 - 2016-10-25 13:50 - 00000000 ____D C:\WINDOWS\Panther
2016-10-20 13:55 - 2016-10-20 14:38 - 412136676 _____ C:\Users\klobje\Downloads\Van-Helsing-S01E03-české-titulky-vloženy-novinka.avi
2016-10-20 11:58 - 2016-10-20 12:26 - 258605928 _____ C:\Users\klobje\Downloads\Van-Helsing-S01E02-CZ-Titulky....ID--154291.avi
2016-10-19 13:49 - 2016-10-19 13:50 - 297363626 _____ C:\Users\klobje\Downloads\Arrow.S05E01+cz-tit.avi
2016-10-19 12:59 - 2016-10-19 13:01 - 365699576 _____ C:\Users\klobje\Downloads\Arrow.S05E02+cz.tit.avi
2016-10-17 19:58 - 2016-11-04 22:00 - 00001267 _____ C:\Users\klobje\Desktop\Facebook Gameroom.lnk
2016-10-13 20:19 - 2016-10-13 20:19 - 00011299 _____ C:\Users\klobje\Documents\Kopie - CAndy crush saga céčka1.xlsx
2016-10-13 12:58 - 2016-10-13 13:01 - 45914748 _____ C:\Users\klobje\Downloads\FOREHAND---Muzes-bejt-(CZ-1998).rar
2016-10-12 11:57 - 2016-10-12 15:52 - 00000000 ____D C:\Users\klobje\Desktop\mp3 směs
2016-10-11 22:13 - 2016-10-05 11:10 - 00231776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdbus.sys
2016-10-11 22:13 - 2016-10-05 11:05 - 00099680 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tm.sys
2016-10-11 22:13 - 2016-10-05 11:03 - 01724584 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2016-10-11 22:13 - 2016-10-05 10:59 - 00949600 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys
2016-10-11 22:13 - 2016-10-05 10:54 - 01097568 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpx.dll
2016-10-11 22:13 - 2016-10-05 10:53 - 00154976 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpsd.sys
2016-10-11 22:13 - 2016-10-05 10:51 - 01430720 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2016-10-11 22:13 - 2016-10-05 10:50 - 00116576 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHostCommon.dll
2016-10-11 22:13 - 2016-10-05 10:49 - 01980768 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll
2016-10-11 22:13 - 2016-10-05 10:48 - 01022304 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxPackaging.dll
2016-10-11 22:13 - 2016-10-05 10:46 - 01360456 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfnetsrc.dll
2016-10-11 22:13 - 2016-10-05 10:46 - 00980824 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfnetcore.dll
2016-10-11 22:13 - 2016-10-05 10:46 - 00056672 _____ (Avago Technologies) C:\WINDOWS\system32\Drivers\MegaSas2i.sys
2016-10-11 22:13 - 2016-10-05 10:45 - 00198496 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHost.dll
2016-10-11 22:13 - 2016-10-05 10:31 - 00058880 _____ (Microsoft Corporation) C:\WINDOWS\system32\ConfigureExpandedStorage.dll
2016-10-11 22:13 - 2016-10-05 10:28 - 00584192 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIRibbonRes.dll
2016-10-11 22:13 - 2016-10-05 10:28 - 00156672 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDeviceRegistration.dll
2016-10-11 22:13 - 2016-10-05 10:28 - 00123904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.HostName.dll
2016-10-11 22:13 - 2016-10-05 10:27 - 00094208 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryClient.dll
2016-10-11 22:13 - 2016-10-05 10:27 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.ServiceDiscovery.Dnssd.dll
2016-10-11 22:13 - 2016-10-05 10:26 - 00184320 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserMgrProxy.dll
2016-10-11 22:13 - 2016-10-05 10:26 - 00137216 _____ (Microsoft Corporation) C:\WINDOWS\system32\credprovs.dll
2016-10-11 22:13 - 2016-10-05 10:26 - 00088576 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDeviceRegistration.Ngc.dll
2016-10-11 22:13 - 2016-10-05 10:25 - 00822784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll
2016-10-11 22:13 - 2016-10-05 10:25 - 00404992 _____ (Microsoft Corporation) C:\WINDOWS\system32\dsreg.dll
2016-10-11 22:13 - 2016-10-05 10:25 - 00299520 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataAccountApis.dll
2016-10-11 22:13 - 2016-10-05 10:25 - 00267776 _____ (Microsoft Corporation) C:\WINDOWS\system32\cloudAP.dll
2016-10-11 22:13 - 2016-10-05 10:25 - 00193024 _____ (Microsoft Corporation) C:\WINDOWS\system32\shutdownux.dll
2016-10-11 22:13 - 2016-10-05 10:25 - 00117760 _____ (Microsoft Corporation) C:\WINDOWS\system32\AuthBroker.dll
2016-10-11 22:13 - 2016-10-05 10:24 - 00483840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.AllJoyn.dll
2016-10-11 22:13 - 2016-10-05 10:24 - 00113152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dfsc.sys
2016-10-11 22:13 - 2016-10-05 10:23 - 00431616 _____ (Microsoft Corporation) C:\WINDOWS\system32\efswrt.dll
2016-10-11 22:13 - 2016-10-05 10:23 - 00426496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Wallet.dll
2016-10-11 22:13 - 2016-10-05 10:23 - 00373760 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcdedit.exe
2016-10-11 22:13 - 2016-10-05 10:23 - 00284672 _____ (Microsoft Corporation) C:\WINDOWS\system32\apprepsync.dll
2016-10-11 22:13 - 2016-10-05 10:23 - 00273920 _____ (Microsoft Corporation) C:\WINDOWS\system32\PrintDialogs3D.dll
2016-10-11 22:13 - 2016-10-05 10:23 - 00125952 _____ (Microsoft Corporation) C:\WINDOWS\system32\apprepapi.dll
2016-10-11 22:13 - 2016-10-05 10:22 - 00325632 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncsi.dll
2016-10-11 22:13 - 2016-10-05 10:21 - 03689984 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll
2016-10-11 22:13 - 2016-10-05 10:21 - 00567808 _____ (Microsoft Corporation) C:\WINDOWS\system32\ChatApis.dll
2016-10-11 22:13 - 2016-10-05 10:21 - 00498176 _____ (Microsoft Corporation) C:\WINDOWS\system32\wbiosrvc.dll
2016-10-11 22:13 - 2016-10-05 10:20 - 00661504 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcWebFilter.dll
2016-10-11 22:13 - 2016-10-05 10:20 - 00303104 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlasvc.dll
2016-10-11 22:13 - 2016-10-05 10:18 - 01283584 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdtctm.dll
2016-10-11 22:13 - 2016-10-05 10:18 - 00858112 _____ (Microsoft Corporation) C:\WINDOWS\system32\EmailApis.dll
2016-10-11 22:13 - 2016-10-05 10:17 - 00089088 _____ (Microsoft Corporation) C:\WINDOWS\system32\adsmsext.dll
2016-10-11 22:13 - 2016-10-05 10:16 - 00704512 _____ (Microsoft Corporation) C:\WINDOWS\system32\cscui.dll
2016-10-11 22:13 - 2016-10-05 10:16 - 00508416 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2016-10-11 22:13 - 2016-10-05 10:15 - 00141312 _____ (Microsoft Corporation) C:\WINDOWS\system32\dialclient.dll
2016-10-11 22:13 - 2016-10-05 10:14 - 01456640 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll
2016-10-11 22:13 - 2016-10-05 10:14 - 01255936 _____ (Microsoft Corporation) C:\WINDOWS\system32\AzureSettingSyncProvider.dll
2016-10-11 22:13 - 2016-10-05 10:13 - 00055808 _____ (Microsoft Corporation) C:\WINDOWS\system32\offreg.dll
2016-10-11 22:13 - 2016-10-05 10:11 - 06043136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2016-10-11 22:13 - 2016-10-05 10:11 - 00125440 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxdav.sys
2016-10-11 22:13 - 2016-10-05 10:10 - 06474752 _____ (Microsoft Corporation) C:\WINDOWS\system32\mspaint.exe
2016-10-11 22:13 - 2016-10-05 10:10 - 00754688 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcsvc.dll
2016-10-11 22:13 - 2016-10-05 10:09 - 03369984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepository.dll
2016-10-11 22:13 - 2016-10-05 10:09 - 01700864 _____ (Microsoft Corporation) C:\WINDOWS\system32\smartscreen.exe
2016-10-11 22:13 - 2016-10-05 10:09 - 00710144 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppointmentApis.dll
2016-10-11 22:13 - 2016-10-05 10:09 - 00691712 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
2016-10-11 22:13 - 2016-10-05 10:09 - 00608256 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32spl.dll
2016-10-11 22:13 - 2016-10-05 10:08 - 02356736 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVidCtl.dll
2016-10-11 22:13 - 2016-10-05 10:08 - 00873472 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadtb.dll
2016-10-11 22:13 - 2016-10-05 10:08 - 00598528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.dll
2016-10-11 22:13 - 2016-10-05 10:07 - 03667456 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2016-10-11 22:13 - 2016-10-05 10:07 - 02682880 _____ (Microsoft Corporation) C:\WINDOWS\system32\netshell.dll
2016-10-11 22:13 - 2016-10-05 10:07 - 02646016 _____ (Microsoft Corporation) C:\WINDOWS\system32\CertEnroll.dll
2016-10-11 22:13 - 2016-10-05 10:07 - 00589312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Sensors.dll
2016-10-11 22:13 - 2016-10-05 10:07 - 00566784 _____ (Microsoft Corporation) C:\WINDOWS\system32\ShareHost.dll
2016-10-11 22:13 - 2016-10-05 10:06 - 01013248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.Http.dll
2016-10-11 22:13 - 2016-10-05 10:06 - 00850944 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContactApis.dll
2016-10-11 22:13 - 2016-10-05 10:05 - 03105792 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstsc.exe
2016-10-11 22:13 - 2016-10-05 10:05 - 00751104 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.BackgroundTransfer.dll
2016-10-11 22:13 - 2016-09-23 04:59 - 00446124 _____ C:\WINDOWS\system32\ApnDatabase.xml
2016-10-11 16:51 - 2016-09-15 18:37 - 00496872 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsapi.dll
2016-10-11 16:51 - 2016-09-15 18:35 - 00356704 _____ (Microsoft Corporation) C:\WINDOWS\system32\halmacpi.dll
2016-10-11 16:51 - 2016-09-15 18:35 - 00356704 _____ (Microsoft Corporation) C:\WINDOWS\system32\hal.dll
2016-10-11 16:51 - 2016-09-15 18:31 - 00583648 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreMessaging.dll
2016-10-11 16:51 - 2016-09-15 18:27 - 00868704 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi
2016-10-11 16:51 - 2016-09-15 18:23 - 01503032 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecs.dll
2016-10-11 16:51 - 2016-09-15 18:14 - 01413664 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32full.dll
2016-10-11 16:51 - 2016-09-15 18:13 - 00113504 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmapi.dll
2016-10-11 16:51 - 2016-09-15 18:00 - 00518656 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngccredprov.dll
2016-10-11 16:51 - 2016-09-15 18:00 - 00156672 _____ (Microsoft Corporation) C:\WINDOWS\system32\BcastDVRHelper.dll
2016-10-11 16:51 - 2016-09-15 17:59 - 00143872 _____ (Microsoft Corporation) C:\WINDOWS\system32\credprovslegacy.dll
2016-10-11 16:51 - 2016-09-15 17:58 - 00491008 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvr.exe
2016-10-11 16:51 - 2016-09-15 17:58 - 00148480 _____ (Microsoft Corporation) C:\WINDOWS\system32\provops.dll
2016-10-11 16:51 - 2016-09-15 17:57 - 00374784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.LowLevel.dll
2016-10-11 16:51 - 2016-09-15 17:57 - 00272896 _____ (Microsoft Corporation) C:\WINDOWS\system32\PsmServiceExtHost.dll
2016-10-11 16:51 - 2016-09-15 17:57 - 00271872 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.SmartCards.Phone.dll
2016-10-11 16:51 - 2016-09-15 17:57 - 00237056 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncSettings.dll
2016-10-11 16:51 - 2016-09-15 17:55 - 00332288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll
2016-10-11 16:51 - 2016-09-15 17:55 - 00325120 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleacc.dll
2016-10-11 16:51 - 2016-09-15 17:54 - 00747520 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Ocr.dll
2016-10-11 16:51 - 2016-09-15 17:54 - 00228352 _____ (Microsoft Corporation) C:\WINDOWS\system32\icsvc.dll
2016-10-11 16:51 - 2016-09-15 17:54 - 00204800 _____ (Microsoft Corporation) C:\WINDOWS\system32\ConsoleLogon.dll
2016-10-11 16:51 - 2016-09-15 17:52 - 00285696 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptngc.dll
2016-10-11 16:51 - 2016-09-15 17:52 - 00238080 _____ (Microsoft Corporation) C:\WINDOWS\system32\AboveLockAppHost.dll
2016-10-11 16:51 - 2016-09-15 17:49 - 00901120 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Bluetooth.dll
2016-10-11 16:51 - 2016-09-15 17:49 - 00653312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.AccountsControl.dll
2016-10-11 16:51 - 2016-09-15 17:49 - 00499200 _____ (Microsoft Corporation) C:\WINDOWS\system32\LogonController.dll
2016-10-11 16:51 - 2016-09-15 17:48 - 00626688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys
2016-10-11 16:51 - 2016-09-15 17:47 - 00134656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Energy.dll
2016-10-11 16:51 - 2016-09-15 17:46 - 00795648 _____ (Microsoft Corporation) C:\WINDOWS\system32\MiracastReceiver.dll
2016-10-11 16:51 - 2016-09-15 17:43 - 00433664 _____ (Microsoft Corporation) C:\WINDOWS\system32\imapi2.dll
2016-10-11 16:51 - 2016-09-15 17:40 - 00348160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Midi.dll
2016-10-11 16:51 - 2016-09-15 17:36 - 00094208 _____ (Microsoft Corporation) C:\WINDOWS\system32\FontProvider.dll
2016-10-11 16:50 - 2016-09-15 18:42 - 00448864 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContentDeliveryManager.Utilities.dll
2016-10-11 16:50 - 2016-09-15 18:40 - 00965472 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReAgent.dll
2016-10-11 16:50 - 2016-09-15 18:37 - 00402352 _____ (Microsoft Corporation) C:\WINDOWS\system32\ws2_32.dll
2016-10-11 16:50 - 2016-09-15 18:37 - 00320152 _____ (Microsoft Corporation) C:\WINDOWS\system32\systemreset.exe
2016-10-11 16:50 - 2016-09-15 18:34 - 00106336 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\partmgr.sys
2016-10-11 16:50 - 2016-09-15 18:33 - 00083120 _____ (Microsoft Corporation) C:\WINDOWS\system32\devenum.dll
2016-10-11 16:50 - 2016-09-15 18:32 - 02048496 _____ C:\WINDOWS\system32\CoreUIComponents.dll
2016-10-11 16:50 - 2016-09-15 18:32 - 00279416 _____ (Microsoft Corporation) C:\WINDOWS\system32\bdeunlock.exe
2016-10-11 16:50 - 2016-09-15 18:26 - 00581672 _____ (Microsoft Corporation) C:\WINDOWS\system32\ci.dll
2016-10-11 16:50 - 2016-09-15 18:25 - 00340320 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll
2016-10-11 16:50 - 2016-09-15 18:25 - 00262960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Storage.ApplicationData.dll
2016-10-11 16:50 - 2016-09-15 18:23 - 00170448 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32.dll
2016-10-11 16:50 - 2016-09-15 18:22 - 05722320 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2016-10-11 16:50 - 2016-09-15 18:22 - 00975744 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll
2016-10-11 16:50 - 2016-09-15 18:22 - 00860512 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll
2016-10-11 16:50 - 2016-09-15 18:22 - 00433832 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWanAPI.dll
2016-10-11 16:50 - 2016-09-15 18:22 - 00111968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storahci.sys
2016-10-11 16:50 - 2016-09-15 18:21 - 00557920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fvevol.sys
2016-10-11 16:50 - 2016-09-15 18:21 - 00357216 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdbss.sys
2016-10-11 16:50 - 2016-09-15 18:21 - 00186720 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb20.sys
2016-10-11 16:50 - 2016-09-15 18:21 - 00175968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tpm.sys
2016-10-11 16:50 - 2016-09-15 18:20 - 00095072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wcifs.sys
2016-10-11 16:50 - 2016-09-15 18:19 - 00361104 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsmf.dll
2016-10-11 16:50 - 2016-09-15 18:19 - 00080224 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpudd.dll
2016-10-11 16:50 - 2016-09-15 18:18 - 06654616 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2016-10-11 16:50 - 2016-09-15 18:18 - 01201872 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2016-10-11 16:50 - 2016-09-15 18:18 - 00856872 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfreadwrite.dll
2016-10-11 16:50 - 2016-09-15 18:06 - 00038400 _____ (Microsoft Corporation) C:\WINDOWS\system32\ffbroker.dll
2016-10-11 16:50 - 2016-09-15 18:03 - 00094720 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataTimeUtil.dll
2016-10-11 16:50 - 2016-09-15 18:03 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\odbcconf.dll
2016-10-11 16:50 - 2016-09-15 18:03 - 00012288 _____ (Microsoft Corporation) C:\WINDOWS\system32\cngkeyhelper.dll
2016-10-11 16:50 - 2016-09-15 18:01 - 00141824 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Radios.dll
2016-10-11 16:50 - 2016-09-15 18:00 - 00554496 _____ (Microsoft Corporation) C:\WINDOWS\system32\tdh.dll
2016-10-11 16:50 - 2016-09-15 18:00 - 00399360 _____ (Microsoft Corporation) C:\WINDOWS\system32\nltest.exe
2016-10-11 16:50 - 2016-09-15 18:00 - 00138240 _____ (Microsoft Corporation) C:\WINDOWS\system32\DisplayManager.dll
2016-10-11 16:50 - 2016-09-15 18:00 - 00042496 _____ (Microsoft Corporation) C:\WINDOWS\system32\NfcRadioMedia.dll
2016-10-11 16:50 - 2016-09-15 18:00 - 00028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\kbdhid.sys
2016-10-11 16:50 - 2016-09-15 17:59 - 00255488 _____ (Microsoft Corporation) C:\WINDOWS\system32\unimdm.tsp
2016-10-11 16:50 - 2016-09-15 17:58 - 00329728 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadcloudap.dll
2016-10-11 16:50 - 2016-09-15 17:58 - 00203776 _____ (Microsoft Corporation) C:\WINDOWS\system32\credprovhost.dll
2016-10-11 16:50 - 2016-09-15 17:58 - 00132608 _____ (Microsoft Corporation) C:\WINDOWS\system32\ACPBackgroundManagerPolicy.dll
2016-10-11 16:50 - 2016-09-15 17:58 - 00092672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Background.SystemEventsBroker.dll
2016-10-11 16:50 - 2016-09-15 17:58 - 00078848 _____ (Microsoft Corporation) C:\WINDOWS\system32\browserbroker.dll
2016-10-11 16:50 - 2016-09-15 17:58 - 00059904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.System.UserDeviceAssociation.dll
2016-10-11 16:50 - 2016-09-15 17:57 - 00392192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Gaming.Input.dll
2016-10-11 16:50 - 2016-09-15 17:57 - 00268800 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvc.dll
2016-10-11 16:50 - 2016-09-15 17:57 - 00171520 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipboardServer.dll
2016-10-11 16:50 - 2016-09-15 17:56 - 01300480 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVPXENC.dll
2016-10-11 16:50 - 2016-09-15 17:56 - 00823808 _____ (Microsoft Corporation) C:\WINDOWS\system32\nettrace.dll
2016-10-11 16:50 - 2016-09-15 17:56 - 00609280 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Import.dll
2016-10-11 16:50 - 2016-09-15 17:56 - 00576512 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblAuthManager.dll
2016-10-11 16:50 - 2016-09-15 17:56 - 00298496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Management.dll
2016-10-11 16:50 - 2016-09-15 17:56 - 00289792 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorService.dll
2016-10-11 16:50 - 2016-09-15 17:56 - 00262656 _____ (Microsoft Corporation) C:\WINDOWS\system32\pdh.dll
2016-10-11 16:50 - 2016-09-15 17:56 - 00257536 _____ (Microsoft Corporation) C:\WINDOWS\system32\DataExchange.dll
2016-10-11 16:50 - 2016-09-15 17:56 - 00114688 _____ (Microsoft Corporation) C:\WINDOWS\system32\RMapi.dll
2016-10-11 16:50 - 2016-09-15 17:55 - 00575488 _____ (Microsoft Corporation) C:\WINDOWS\system32\nshwfp.dll
2016-10-11 16:50 - 2016-09-15 17:55 - 00562176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.SmartCards.dll
2016-10-11 16:50 - 2016-09-15 17:55 - 00386048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.WiFiDirect.dll
2016-10-11 16:50 - 2016-09-15 17:55 - 00268800 _____ (Microsoft Corporation) C:\WINDOWS\system32\usbmon.dll
2016-10-11 16:50 - 2016-09-15 17:55 - 00213504 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.CredDialogController.dll
2016-10-11 16:50 - 2016-09-15 17:55 - 00202752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.HumanInterfaceDevice.dll
2016-10-11 16:50 - 2016-09-15 17:55 - 00185856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.Identity.Provider.dll
2016-10-11 16:50 - 2016-09-15 17:55 - 00152064 _____ (Microsoft Corporation) C:\WINDOWS\system32\biwinrt.dll
2016-10-11 16:50 - 2016-09-15 17:55 - 00114176 _____ (Microsoft Corporation) C:\WINDOWS\system32\setupugc.exe
2016-10-11 16:50 - 2016-09-15 17:54 - 00493568 _____ (Microsoft Corporation) C:\WINDOWS\system32\dsregcmd.exe
2016-10-11 16:50 - 2016-09-15 17:54 - 00461312 _____ (Microsoft Corporation) C:\WINDOWS\system32\webio.dll
2016-10-11 16:50 - 2016-09-15 17:54 - 00431104 _____ (Microsoft Corporation) C:\WINDOWS\system32\mprdim.dll
2016-10-11 16:50 - 2016-09-15 17:54 - 00391168 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredProvDataModel.dll
2016-10-11 16:50 - 2016-09-15 17:54 - 00323584 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevicesFlowBroker.dll
2016-10-11 16:50 - 2016-09-15 17:54 - 00262144 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Picker.dll
2016-10-11 16:50 - 2016-09-15 17:53 - 01344000 _____ (Microsoft Corporation) C:\WINDOWS\system32\wevtsvc.dll
2016-10-11 16:50 - 2016-09-15 17:53 - 00819200 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppContracts.dll
2016-10-11 16:50 - 2016-09-15 17:53 - 00284672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.dll
2016-10-11 16:50 - 2016-09-15 17:53 - 00185344 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapibase.dll
2016-10-11 16:50 - 2016-09-15 17:52 - 00822272 _____ (Microsoft Corporation) C:\WINDOWS\system32\usermgr.dll
2016-10-11 16:50 - 2016-09-15 17:52 - 00816640 _____ (Microsoft Corporation) C:\WINDOWS\system32\NaturalLanguage6.dll
2016-10-11 16:50 - 2016-09-15 17:52 - 00623616 _____ (Microsoft Corporation) C:\WINDOWS\system32\bisrv.dll
2016-10-11 16:50 - 2016-09-15 17:52 - 00500224 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Printing.dll
2016-10-11 16:50 - 2016-09-15 17:52 - 00445952 _____ (Microsoft Corporation) C:\WINDOWS\system32\mprapi.dll
2016-10-11 16:50 - 2016-09-15 17:52 - 00298496 _____ (Microsoft Corporation) C:\WINDOWS\system32\rascustom.dll
2016-10-11 16:50 - 2016-09-15 17:51 - 00762368 _____ (Microsoft Corporation) C:\WINDOWS\system32\mprddm.dll
2016-10-11 16:50 - 2016-09-15 17:51 - 00551936 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasmans.dll
2016-10-11 16:50 - 2016-09-15 17:51 - 00288256 _____ (Microsoft Corporation) C:\WINDOWS\system32\CryptoWinRT.dll
2016-10-11 16:50 - 2016-09-15 17:50 - 01534464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Printing.3D.dll
2016-10-11 16:50 - 2016-09-15 17:49 - 00817664 _____ (Microsoft Corporation) C:\WINDOWS\system32\modernexecserver.dll
2016-10-11 16:50 - 2016-09-15 17:49 - 00468992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.InkControls.dll
2016-10-11 16:50 - 2016-09-15 17:48 - 00310272 _____ (Microsoft Corporation) C:\WINDOWS\system32\bdesvc.dll
2016-10-11 16:50 - 2016-09-15 17:48 - 00153088 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.DeviceEncryptionHandlers.dll
2016-10-11 16:50 - 2016-09-15 17:47 - 01098752 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpsvc.dll
2016-10-11 16:50 - 2016-09-15 17:47 - 01077760 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Editing.dll
2016-10-11 16:50 - 2016-09-15 17:47 - 00355328 _____ (Microsoft Corporation) C:\WINDOWS\system32\RTMediaFrame.dll
2016-10-11 16:50 - 2016-09-15 17:47 - 00144384 _____ (Microsoft Corporation) C:\WINDOWS\system32\RelPost.exe
2016-10-11 16:50 - 2016-09-15 17:46 - 00945664 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll
2016-10-11 16:50 - 2016-09-15 17:46 - 00558080 _____ (Microsoft Corporation) C:\WINDOWS\system32\clusapi.dll
2016-10-11 16:50 - 2016-09-15 17:46 - 00343040 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToDevice.dll
2016-10-11 16:50 - 2016-09-15 17:46 - 00324096 _____ (Microsoft Corporation) C:\WINDOWS\system32\fhcfg.dll
2016-10-11 16:50 - 2016-09-15 17:45 - 00302592 _____ (Microsoft Corporation) C:\WINDOWS\system32\fvecpl.dll
2016-10-11 16:50 - 2016-09-15 17:45 - 00187904 _____ (Microsoft Corporation) C:\WINDOWS\system32\manage-bde.exe
2016-10-11 16:50 - 2016-09-15 17:44 - 02153984 _____ (Microsoft Corporation) C:\WINDOWS\system32\storagewmi.dll
2016-10-11 16:50 - 2016-09-15 17:44 - 00734208 _____ (Microsoft Corporation) C:\WINDOWS\system32\samsrv.dll
2016-10-11 16:50 - 2016-09-15 17:44 - 00582656 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpaceControl.dll
2016-10-11 16:50 - 2016-09-15 17:44 - 00494592 _____ (Microsoft Corporation) C:\WINDOWS\system32\BootMenuUX.dll
2016-10-11 16:50 - 2016-09-15 17:44 - 00257024 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveui.dll
2016-10-11 16:50 - 2016-09-15 17:44 - 00210432 _____ (Microsoft Corporation) C:\WINDOWS\system32\discan.dll
2016-10-11 16:50 - 2016-09-15 17:44 - 00209920 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSAC3ENC.DLL
2016-10-11 16:50 - 2016-09-15 17:44 - 00167936 _____ (Microsoft Corporation) C:\WINDOWS\system32\fvenotify.exe
2016-10-11 16:50 - 2016-09-15 17:44 - 00057856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Sens.dll
2016-10-11 16:50 - 2016-09-15 17:43 - 03520512 _____ (Microsoft Corporation) C:\WINDOWS\system32\xpsrchvw.exe
2016-10-11 16:50 - 2016-09-15 17:43 - 03196416 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdp.dll
2016-10-11 16:50 - 2016-09-15 17:43 - 00758784 _____ (Microsoft Corporation) C:\WINDOWS\system32\fvewiz.dll
2016-10-11 16:50 - 2016-09-15 17:43 - 00210432 _____ (Microsoft Corporation) C:\WINDOWS\system32\offlinesam.dll
2016-10-11 16:50 - 2016-09-15 17:43 - 00028160 _____ (Microsoft Corporation) C:\WINDOWS\system32\bdeui.dll
2016-10-11 16:50 - 2016-09-15 17:42 - 01220608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Audio.dll
2016-10-11 16:50 - 2016-09-15 17:42 - 00719872 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsp_sr.dll
2016-10-11 16:50 - 2016-09-15 17:42 - 00112640 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpaceAgent.exe
2016-10-11 16:50 - 2016-09-15 17:42 - 00103424 _____ (Microsoft Corporation) C:\WINDOWS\system32\BitLockerDeviceEncryption.exe
2016-10-11 16:50 - 2016-09-15 17:42 - 00049664 _____ (Microsoft Corporation) C:\WINDOWS\system32\BackgroundMediaPolicy.dll
2016-10-11 16:50 - 2016-09-15 17:41 - 00400384 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToManager.dll
2016-10-11 16:50 - 2016-09-15 17:40 - 02138112 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputService.dll
2016-10-11 16:50 - 2016-09-15 17:40 - 01247232 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Globalization.dll
2016-10-11 16:50 - 2016-09-15 17:39 - 02740224 _____ (Microsoft Corporation) C:\WINDOWS\system32\msftedit.dll
2016-10-11 16:50 - 2016-09-15 17:39 - 01170944 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Phone.dll
2016-10-11 16:50 - 2016-09-15 17:39 - 01004544 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Input.Inking.dll
2016-10-11 16:50 - 2016-09-15 17:39 - 00941568 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll
2016-10-11 16:50 - 2016-09-15 17:39 - 00827904 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll
2016-10-11 16:50 - 2016-09-15 17:39 - 00240640 _____ (Microsoft Corporation) C:\WINDOWS\system32\wkssvc.dll
2016-10-11 16:50 - 2016-09-15 17:38 - 00691200 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBroker.dll
2016-10-11 16:50 - 2016-09-15 17:38 - 00654336 _____ (Microsoft Corporation) C:\WINDOWS\system32\MbaeApiPublic.dll
2016-10-11 16:50 - 2016-09-15 17:38 - 00620544 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.dll
2016-10-11 16:50 - 2016-09-15 17:38 - 00585728 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapi.dll
2016-10-11 16:50 - 2016-09-15 17:36 - 00448512 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmCoreProvisioning.dll
2016-10-11 16:50 - 2016-09-15 17:35 - 01438720 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResetEngine.dll
2016-10-11 16:50 - 2016-09-15 17:35 - 00783360 _____ (Microsoft Corporation) C:\WINDOWS\system32\TSWorkspace.dll
2016-10-11 16:50 - 2016-09-15 17:35 - 00331776 _____ (Microsoft Corporation) C:\WINDOWS\system32\SessEnv.dll
2016-10-11 16:50 - 2016-09-15 17:35 - 00029696 _____ (Microsoft Corporation) C:\WINDOWS\system32\spaceman.exe
2016-10-11 16:50 - 2016-08-06 04:33 - 00020992 _____ (Microsoft Corporation) C:\WINDOWS\system32\smphost.dll
2016-10-11 16:49 - 2016-09-15 18:42 - 00614752 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVClient.exe
2016-10-11 16:49 - 2016-09-15 18:42 - 00498016 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntVirtualization.dll
2016-10-11 16:49 - 2016-09-15 18:42 - 00094560 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\AppVStrm.sys
2016-10-11 16:49 - 2016-09-15 18:36 - 00021344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cmimcext.sys
2016-10-11 16:49 - 2016-09-15 18:17 - 00125792 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHostBroker.dll
2016-10-11 16:49 - 2016-09-15 18:16 - 00093984 _____ (Microsoft Corporation) C:\WINDOWS\system32\phoneactivate.exe
2016-10-11 16:49 - 2016-09-15 18:06 - 00274944 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXTaskFactory.dll
2016-10-11 16:49 - 2016-09-15 18:02 - 00089600 _____ (Microsoft Corporation) C:\WINDOWS\system32\VPNv2CSP.dll
2016-10-11 16:49 - 2016-09-15 18:01 - 00055296 _____ (Microsoft Corporation) C:\WINDOWS\system32\findnetprinters.dll
2016-10-11 16:49 - 2016-09-15 18:01 - 00023040 _____ (Microsoft Corporation) C:\WINDOWS\system32\cmintegrator.dll
2016-10-11 16:49 - 2016-09-15 18:00 - 00119296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Family.Client.dll
2016-10-11 16:49 - 2016-09-15 17:59 - 00136192 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinRtTracing.dll
2016-10-11 16:49 - 2016-09-15 17:58 - 00366080 _____ (Microsoft Corporation) C:\WINDOWS\system32\vmrdvcore.dll
2016-10-11 16:49 - 2016-09-15 17:58 - 00291840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Search.ProtocolHandler.MAPI2.dll
2016-10-11 16:49 - 2016-09-15 17:58 - 00248832 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlancfg.dll
2016-10-11 16:49 - 2016-09-15 17:58 - 00186880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Family.SyncEngine.dll
2016-10-11 16:49 - 2016-09-15 17:57 - 03716096 _____ (Microsoft Corporation) C:\WINDOWS\system32\bootux.dll
2016-10-11 16:49 - 2016-09-15 17:57 - 00315904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Gaming.XboxLive.Storage.dll
2016-10-11 16:49 - 2016-09-15 17:57 - 00231936 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.LockScreen.dll
2016-10-11 16:49 - 2016-09-15 17:57 - 00102912 _____ (Microsoft Corporation) C:\WINDOWS\system32\appinfo.dll
2016-10-11 16:49 - 2016-09-15 17:56 - 00670208 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.PointOfService.dll
2016-10-11 16:49 - 2016-09-15 17:56 - 00265728 _____ C:\WINDOWS\system32\Windows.Perception.Stub.dll
2016-10-11 16:49 - 2016-09-15 17:55 - 00518144 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdiWiFi.sys
2016-10-11 16:49 - 2016-09-15 17:55 - 00455168 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkCollectionAgent.dll
2016-10-11 16:49 - 2016-09-15 17:55 - 00378368 _____ (Microsoft Corporation) C:\WINDOWS\system32\NgcCtnrGidsHandler.dll
2016-10-11 16:49 - 2016-09-15 17:55 - 00332800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Cortana.Desktop.dll
2016-10-11 16:49 - 2016-09-15 17:55 - 00277504 _____ (Microsoft Corporation) C:\WINDOWS\system32\icsvcext.dll
2016-10-11 16:49 - 2016-09-15 17:55 - 00175616 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Scanners.dll
2016-10-11 16:49 - 2016-09-15 17:54 - 00498688 _____ (Microsoft Corporation) C:\WINDOWS\system32\mbsmsapi.dll
2016-10-11 16:49 - 2016-09-15 17:53 - 00466432 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppcext.dll
2016-10-11 16:49 - 2016-09-15 17:53 - 00314368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Usb.dll
2016-10-11 16:49 - 2016-09-15 17:52 - 01110016 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedStartModel.dll
2016-10-11 16:49 - 2016-09-15 17:52 - 00834560 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.Vpn.dll
2016-10-11 16:49 - 2016-09-15 17:52 - 00525824 _____ (Microsoft Corporation) C:\WINDOWS\system32\PrintDialogs.dll
2016-10-11 16:49 - 2016-09-15 17:52 - 00441856 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppReadiness.dll
2016-10-11 16:49 - 2016-09-15 17:52 - 00297472 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchProtocolHost.exe
2016-10-11 16:49 - 2016-09-15 17:50 - 00071168 _____ (Microsoft Corporation) C:\WINDOWS\system32\pwrshplugin.dll
2016-10-11 16:49 - 2016-09-15 17:47 - 00110080 _____ (Microsoft Corporation) C:\WINDOWS\system32\baaupdate.exe
2016-10-11 16:49 - 2016-09-15 17:46 - 00713216 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnapps.dll
2016-10-11 16:49 - 2016-09-15 17:45 - 02642944 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll
2016-10-11 16:49 - 2016-09-15 17:45 - 00671744 _____ (Microsoft Corporation) C:\WINDOWS\system32\pwcreator.exe
2016-10-11 16:49 - 2016-09-15 17:45 - 00248832 _____ (Microsoft Corporation) C:\WINDOWS\system32\dlnashext.dll
2016-10-11 16:49 - 2016-09-15 17:44 - 00158208 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveprompt.exe
2016-10-11 16:49 - 2016-09-15 17:43 - 00349696 _____ (Microsoft Corporation) C:\WINDOWS\system32\bdechangepin.exe
2016-10-11 16:49 - 2016-09-15 17:43 - 00220672 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToReceiver.dll
2016-10-11 16:49 - 2016-09-15 17:40 - 02026496 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2016-10-11 16:49 - 2016-09-15 17:40 - 01988096 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll
2016-10-11 16:49 - 2016-09-15 17:40 - 01656320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Perception.dll
2016-10-11 16:49 - 2016-09-15 17:39 - 01232384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Maps.dll
2016-10-11 16:49 - 2016-09-15 17:38 - 00773120 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchIndexer.exe
2016-10-11 15:55 - 2016-10-11 15:55 - 00001468 _____ C:\Users\klobje\Desktop\AngryBirds (2016) CZ-Dabing NOVINKA.avi – zástupce.lnk
2016-10-11 15:17 - 2016-10-11 15:17 - 00000020 ___SH C:\Users\DefaultAppPool\ntuser.ini
2016-10-11 12:54 - 2016-10-11 12:54 - 00000000 ____D C:\ProgramData\Microsoft OneDrive
2016-10-11 12:51 - 2016-10-11 12:51 - 00000000 ____D C:\ProgramData\USOShared
2016-10-11 12:50 - 2016-10-11 14:48 - 00000000 ____D C:\Users\klobje\AppData\Local\ConnectedDevicesPlatform
2016-10-11 12:50 - 2016-10-11 12:50 - 00000020 ___SH C:\Users\klobje\ntuser.ini
2016-10-11 12:49 - 2016-10-11 12:49 - 00000000 _SHDL C:\Users\Default\Šablony
2016-10-11 12:49 - 2016-10-11 12:49 - 00000000 _SHDL C:\Users\Default\Soubory cookie
2016-10-11 12:49 - 2016-10-11 12:49 - 00000000 _SHDL C:\Users\Default\Poslední
2016-10-11 12:49 - 2016-10-11 12:49 - 00000000 _SHDL C:\Users\Default\Okolní tiskárny
2016-10-11 12:49 - 2016-10-11 12:49 - 00000000 _SHDL C:\Users\Default\Okolní síť
2016-10-11 12:49 - 2016-10-11 12:49 - 00000000 _SHDL C:\Users\Default\Nabídka Start
2016-10-11 12:49 - 2016-10-11 12:49 - 00000000 _SHDL C:\Users\Default\Dokumenty
2016-10-11 12:49 - 2016-10-11 12:49 - 00000000 _SHDL C:\Users\Default\Documents\Obrázky
2016-10-11 12:49 - 2016-10-11 12:49 - 00000000 _SHDL C:\Users\Default\Documents\Hudba
2016-10-11 12:49 - 2016-10-11 12:49 - 00000000 _SHDL C:\Users\Default\Documents\Filmy
2016-10-11 12:49 - 2016-10-11 12:49 - 00000000 _SHDL C:\Users\Default\Data aplikací
2016-10-11 12:49 - 2016-10-11 12:49 - 00000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2016-10-11 12:49 - 2016-10-11 12:49 - 00000000 _SHDL C:\Users\Default\AppData\Local\Data aplikací
2016-10-11 12:49 - 2016-10-11 12:49 - 00000000 _SHDL C:\Users\Default User\Documents\Obrázky
2016-10-11 12:49 - 2016-10-11 12:49 - 00000000 _SHDL C:\Users\Default User\Documents\Hudba
2016-10-11 12:49 - 2016-10-11 12:49 - 00000000 _SHDL C:\Users\Default User\Documents\Filmy
2016-10-11 12:49 - 2016-10-11 12:49 - 00000000 _SHDL C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2016-10-11 12:49 - 2016-10-11 12:49 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Data aplikací
2016-10-11 12:48 - 2016-10-11 12:49 - 00011433 _____ C:\WINDOWS\diagwrn.xml
2016-10-11 12:48 - 2016-10-11 12:49 - 00011433 _____ C:\WINDOWS\diagerr.xml
2016-10-11 12:42 - 2016-11-07 16:38 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2016-10-11 12:29 - 2016-11-04 22:01 - 00001487 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk
2016-10-11 12:29 - 2016-10-11 12:29 - 00000000 ____D C:\Users\Default\Documents\Visual Studio 2008
2016-10-11 12:29 - 2016-10-11 12:29 - 00000000 ____D C:\Users\Default\AppData\Roaming\Media Center Programs
2016-10-11 12:29 - 2016-10-11 12:29 - 00000000 ____D C:\Users\Default\AppData\Roaming\Macromedia
2016-10-11 12:29 - 2016-10-11 12:29 - 00000000 ____D C:\Users\Default\AppData\Local\Microsoft Help
2016-10-11 12:29 - 2016-10-11 12:29 - 00000000 ____D C:\Users\Default\AppData\Local\LogMeIn Hamachi
2016-10-11 12:29 - 2016-10-11 12:29 - 00000000 ____D C:\Users\Default\AppData\Local\Google
2016-10-11 12:29 - 2016-10-11 12:29 - 00000000 ____D C:\Users\Default User\Documents\Visual Studio 2008
2016-10-11 12:29 - 2016-10-11 12:29 - 00000000 ____D C:\Users\Default User\AppData\Roaming\Media Center Programs
2016-10-11 12:29 - 2016-10-11 12:29 - 00000000 ____D C:\Users\Default User\AppData\Roaming\Macromedia
2016-10-11 12:29 - 2016-10-11 12:29 - 00000000 ____D C:\Users\Default User\AppData\Local\Microsoft Help
2016-10-11 12:29 - 2016-10-11 12:29 - 00000000 ____D C:\Users\Default User\AppData\Local\LogMeIn Hamachi
2016-10-11 12:29 - 2016-10-11 12:29 - 00000000 ____D C:\Users\Default User\AppData\Local\Google
2016-10-11 12:24 - 2016-10-11 12:24 - 00000000 ____D C:\Program Files\Common Files\SpeechEngines
2016-10-11 12:23 - 2016-10-11 12:31 - 00000000 ____D C:\WINDOWS\system32\config\bbimigrate
2016-10-11 12:21 - 2016-11-07 15:15 - 00000000 ____D C:\Users\klobje
2016-10-11 12:21 - 2016-10-11 15:17 - 00000000 ____D C:\Users\DefaultAppPool
2016-10-11 12:21 - 2016-10-11 12:21 - 00000000 _SHDL C:\Users\klobje\Šablony
2016-10-11 12:21 - 2016-10-11 12:21 - 00000000 _SHDL C:\Users\klobje\Soubory cookie
2016-10-11 12:21 - 2016-10-11 12:21 - 00000000 _SHDL C:\Users\klobje\Poslední
2016-10-11 12:21 - 2016-10-11 12:21 - 00000000 _SHDL C:\Users\klobje\Okolní tiskárny
2016-10-11 12:21 - 2016-10-11 12:21 - 00000000 _SHDL C:\Users\klobje\Okolní síť
2016-10-11 12:21 - 2016-10-11 12:21 - 00000000 _SHDL C:\Users\klobje\Nabídka Start
2016-10-11 12:21 - 2016-10-11 12:21 - 00000000 _SHDL C:\Users\klobje\Dokumenty
2016-10-11 12:21 - 2016-10-11 12:21 - 00000000 _SHDL C:\Users\klobje\Documents\Obrázky
2016-10-11 12:21 - 2016-10-11 12:21 - 00000000 _SHDL C:\Users\klobje\Documents\Hudba
2016-10-11 12:21 - 2016-10-11 12:21 - 00000000 _SHDL C:\Users\klobje\Documents\Filmy
2016-10-11 12:21 - 2016-10-11 12:21 - 00000000 _SHDL C:\Users\klobje\Data aplikací
2016-10-11 12:21 - 2016-10-11 12:21 - 00000000 _SHDL C:\Users\klobje\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2016-10-11 12:21 - 2016-10-11 12:21 - 00000000 _SHDL C:\Users\klobje\AppData\Local\Data aplikací
2016-10-11 12:21 - 2016-10-11 12:21 - 00000000 _SHDL C:\Users\DefaultAppPool\Šablony
2016-10-11 12:21 - 2016-10-11 12:21 - 00000000 _SHDL C:\Users\DefaultAppPool\Soubory cookie
2016-10-11 12:21 - 2016-10-11 12:21 - 00000000 _SHDL C:\Users\DefaultAppPool\Poslední
2016-10-11 12:21 - 2016-10-11 12:21 - 00000000 _SHDL C:\Users\DefaultAppPool\Okolní tiskárny
2016-10-11 12:21 - 2016-10-11 12:21 - 00000000 _SHDL C:\Users\DefaultAppPool\Okolní síť
2016-10-11 12:21 - 2016-10-11 12:21 - 00000000 _SHDL C:\Users\DefaultAppPool\Nabídka Start
2016-10-11 12:21 - 2016-10-11 12:21 - 00000000 _SHDL C:\Users\DefaultAppPool\Dokumenty
2016-10-11 12:21 - 2016-10-11 12:21 - 00000000 _SHDL C:\Users\DefaultAppPool\Documents\Obrázky
2016-10-11 12:21 - 2016-10-11 12:21 - 00000000 _SHDL C:\Users\DefaultAppPool\Documents\Hudba
2016-10-11 12:21 - 2016-10-11 12:21 - 00000000 _SHDL C:\Users\DefaultAppPool\Documents\Filmy
2016-10-11 12:21 - 2016-10-11 12:21 - 00000000 _SHDL C:\Users\DefaultAppPool\Data aplikací
2016-10-11 12:21 - 2016-10-11 12:21 - 00000000 _SHDL C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2016-10-11 12:21 - 2016-10-11 12:21 - 00000000 _SHDL C:\Users\DefaultAppPool\AppData\Local\Data aplikací
2016-10-11 12:18 - 2016-11-04 12:50 - 01885840 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2016-10-11 12:16 - 2016-10-11 12:16 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Catalyst Control Center
2016-10-11 12:15 - 2016-10-11 12:24 - 00000000 ____D C:\Program Files\ATI Technologies
2016-10-11 12:15 - 2016-10-11 12:24 - 00000000 ____D C:\Program Files\Analog Devices
2016-10-11 12:15 - 2016-10-11 12:15 - 00000000 ____D C:\ProgramData\SonicFocus
2016-10-11 12:15 - 2016-10-11 12:15 - 00000000 ____D C:\Program Files\Common Files\ATI Technologies
2016-10-11 12:15 - 2016-10-11 12:15 - 00000000 ____D C:\Program Files\AMD
2016-10-11 12:15 - 2016-10-11 12:15 - 00000000 _____ C:\WINDOWS\ativpsrm.bin
2016-10-11 12:14 - 2016-10-11 12:14 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf
2016-10-11 12:03 - 2016-11-05 19:57 - 00000000 ____D C:\WINDOWS\system32\SleepStudy
2016-10-11 12:03 - 2016-10-28 18:15 - 03780392 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2016-10-11 12:03 - 2016-10-11 12:03 - 00000000 ____D C:\WINDOWS\ServiceProfiles
2016-10-11 08:08 - 2016-10-23 19:01 - 00000000 ____D C:\Windows.old
2016-10-11 08:07 - 2016-10-11 08:07 - 09260032 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmploc.DLL
2016-10-11 08:07 - 2016-10-11 08:07 - 06534656 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanmm.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 05398016 _____ (Microsoft Corporation) C:\WINDOWS\system32\aclui.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 04557824 _____ (Microsoft) C:\WINDOWS\system32\dbgeng.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 03595264 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 02755584 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb
2016-10-11 08:07 - 2016-10-11 08:07 - 02423296 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSAJApi.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 02360832 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapRouter.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 02318336 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsThresholdAdminFlowUI.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 02206496 _____ (Microsoft Corporation) C:\WINDOWS\system32\msmpeg2vdec.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 02107392 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapGeocoder.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 01997824 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 01957216 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys
2016-10-11 08:07 - 2016-10-11 08:07 - 01885696 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 01842688 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnidui.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 01774080 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkMobileSettings.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 01755136 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceFlows.DataModel.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 01362504 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpmde.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 01343928 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsrcsnk.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 01293312 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMPDMC.exe
2016-10-11 08:07 - 2016-10-11 08:07 - 01056768 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifinetworkmanager.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 01013248 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 00939872 _____ (Microsoft Corporation) C:\WINDOWS\system32\pidgenx.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 00920576 _____ (Microsoft Corporation) C:\WINDOWS\system32\dosvc.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 00895488 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Streaming.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 00894976 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorDataService.exe
2016-10-11 08:07 - 2016-10-11 08:07 - 00866816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Cred.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 00860672 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncCore.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 00846336 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebcamUi.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 00798504 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcrt4.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 00782176 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWAHost.exe
2016-10-11 08:07 - 2016-10-11 08:07 - 00755200 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 00640000 _____ (Microsoft Corporation) C:\WINDOWS\system32\MCRecvSrc.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 00636928 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneService.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 00635904 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 00592384 _____ (Microsoft Corporation) C:\WINDOWS\system32\GamePanel.exe
2016-10-11 08:07 - 2016-10-11 08:07 - 00589144 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ClipSp.sys
2016-10-11 08:07 - 2016-10-11 08:07 - 00582144 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneProviders.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 00575488 _____ (Microsoft Corporation) C:\WINDOWS\system32\qdvd.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 00564488 _____ (Microsoft Corporation) C:\WINDOWS\system32\GenValObj.exe
2016-10-11 08:07 - 2016-10-11 08:07 - 00536576 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingOnlineServices.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 00529928 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 00520192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2016-10-11 08:07 - 2016-10-11 08:07 - 00509792 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncHost.exe
2016-10-11 08:07 - 2016-10-11 08:07 - 00461312 _____ (Microsoft) C:\WINDOWS\system32\DbgModel.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 00448512 _____ (Microsoft Corporation) C:\WINDOWS\system32\w32time.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 00444416 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSync.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 00432328 _____ (Microsoft Corporation) C:\WINDOWS\system32\DMRServer.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 00426496 _____ (Microsoft Corporation)

klobje
nováček
Příspěvky: 28
Registrován: listopad 16
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod klobje » 07 lis 2016 16:56

C:\WINDOWS\system32\OneDriveSettingSyncProvider.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 00409088 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosResource.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 00399712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys
2016-10-11 08:07 - 2016-10-11 08:07 - 00395264 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansec.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 00392704 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanconn.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 00389632 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 00366592 _____ (Microsoft Corporation) C:\WINDOWS\system32\das.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 00360448 _____ (Microsoft Corporation) C:\WINDOWS\system32\DscCore.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 00358912 _____ (Microsoft Corporation) C:\WINDOWS\system32\facecredentialprovider.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 00342528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv.sys
2016-10-11 08:07 - 2016-10-11 08:07 - 00341344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Classpnp.sys
2016-10-11 08:07 - 2016-10-11 08:07 - 00340480 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 00338432 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanmsm.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 00331264 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapConfiguration.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 00321792 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppHost.exe
2016-10-11 08:07 - 2016-10-11 08:07 - 00315736 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifitask.exe
2016-10-11 08:07 - 2016-10-11 08:07 - 00313560 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanapi.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 00309760 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 00300544 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 00297552 _____ (Microsoft Corporation) C:\WINDOWS\system32\wevtapi.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 00296960 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhext.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 00292184 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\FWPKCLNT.SYS
2016-10-11 08:07 - 2016-10-11 08:07 - 00290264 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlows.exe
2016-10-11 08:07 - 2016-10-11 08:07 - 00289280 _____ (Microsoft Corporation) C:\WINDOWS\system32\NmaDirect.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 00288768 _____ (Microsoft Corporation) C:\WINDOWS\system32\wincorlib.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 00285184 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.BlockedShutdown.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 00270848 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifiprofilessettinghandler.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 00260096 _____ (Microsoft Corporation) C:\WINDOWS\system32\Phoneutil.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 00253952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.BioFeedback.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 00253952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 00246784 _____ (Microsoft Corporation) C:\WINDOWS\system32\domgmt.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 00244224 _____ (Microsoft Corporation) C:\WINDOWS\system32\provengine.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 00231424 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudBackupSettings.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 00230400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb10.sys
2016-10-11 08:07 - 2016-10-11 08:07 - 00226304 _____ (Microsoft Corporation) C:\WINDOWS\system32\container.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 00225280 _____ (Microsoft Corporation) C:\WINDOWS\system32\C_G18030.DLL
2016-10-11 08:07 - 2016-10-11 08:07 - 00224256 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExSMime.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 00215040 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_WorkAccess.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 00207872 _____ (Microsoft Corporation) C:\WINDOWS\system32\provhandlers.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 00196608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srvnet.sys
2016-10-11 08:07 - 2016-10-11 08:07 - 00192512 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinBioDataModel.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 00188416 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe
2016-10-11 08:07 - 2016-10-11 08:07 - 00181760 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcpipcfg.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 00166400 _____ (Microsoft Corporation) C:\WINDOWS\system32\dafpos.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 00162850 _____ C:\WINDOWS\system32\C_932.NLS
2016-10-11 08:07 - 2016-10-11 08:07 - 00158208 _____ (Microsoft Corporation) C:\WINDOWS\system32\KnobsCore.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 00150528 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2016-10-11 08:07 - 2016-10-11 08:07 - 00147456 _____ (Microsoft Corporation) C:\WINDOWS\system32\VCardParser.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 00145408 _____ (Microsoft Corporation) C:\WINDOWS\system32\provisioningcsp.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 00145248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys
2016-10-11 08:07 - 2016-10-11 08:07 - 00141824 _____ (Windows (R) Win 7 DDK provider) C:\WINDOWS\system32\DscCoreConfProv.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 00133296 _____ (Microsoft Corporation) C:\WINDOWS\system32\sspicli.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 00121368 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfps.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 00121344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakrathunk.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 00118272 _____ (Microsoft Corporation) C:\WINDOWS\system32\slc.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 00118272 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppointmentActivation.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 00116224 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsBtSvc.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 00110080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft-Windows-MapControls.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 00105984 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppc.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 00105472 _____ (Microsoft Corporation) C:\WINDOWS\system32\wificonnapi.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 00104448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.UI.Logon.ProxyStub.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 00102752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecdd.sys
2016-10-11 08:07 - 2016-10-11 08:07 - 00102400 _____ (Microsoft Corporation) C:\WINDOWS\system32\offlinelsa.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 00101216 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\EhStorTcgDrv.sys
2016-10-11 08:07 - 2016-10-11 08:07 - 00100864 _____ (Microsoft Corporation) C:\WINDOWS\system32\MediaFoundation.DefaultPerceptionProvider.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 00094528 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32u.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 00092000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pdc.sys
2016-10-11 08:07 - 2016-10-11 08:07 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\system32\KnobsCsp.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 00086016 _____ (Microsoft Corporation) C:\WINDOWS\system32\samlib.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 00085504 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpninprc.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 00079872 _____ (Microsoft Corporation) C:\WINDOWS\system32\CastLaunch.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 00079360 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsCSP.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 00073216 _____ (Microsoft Corporation) C:\WINDOWS\system32\tzautoupdate.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 00073216 _____ (Microsoft Corporation) C:\WINDOWS\system32\NFCProvisioningPlugin.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosStorage.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\dasHost.exe
2016-10-11 08:07 - 2016-10-11 08:07 - 00069120 _____ (Microsoft Corporation) C:\WINDOWS\system32\provdatastore.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 00068096 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanprotdim.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 00065024 _____ (Microsoft Corporation) C:\WINDOWS\system32\BarcodeProvisioningPlugin.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 00061440 _____ (Microsoft Corporation) C:\WINDOWS\system32\iesetup.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 00059904 _____ (Microsoft Corporation) C:\WINDOWS\system32\ProvPluginEng.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 00059904 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshost.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 00058880 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosHostClient.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 00057344 _____ (Microsoft Corporation) C:\WINDOWS\system32\POSyncServices.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 00055808 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataPlatformHelperUtil.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 00054784 _____ (Microsoft Corporation) C:\WINDOWS\system32\AddressParser.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 00051200 _____ (Microsoft Corporation) C:\WINDOWS\system32\provtool.exe
2016-10-11 08:07 - 2016-10-11 08:07 - 00051200 _____ (Microsoft Corporation) C:\WINDOWS\system32\csrsrv.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 00048128 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContactActivation.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 00047104 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Shell.Search.UriHandler.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 00047104 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinBioDataModelOOBE.exe
2016-10-11 08:07 - 2016-10-11 08:07 - 00047104 _____ (Microsoft Corporation) C:\WINDOWS\system32\RemovableMediaProvisioningPlugin.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 00045568 _____ (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 00043944 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsass.exe
2016-10-11 08:07 - 2016-10-11 08:07 - 00041984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Shell.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 00040960 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorageUsage.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 00039936 _____ (Microsoft Corporation) C:\WINDOWS\system32\mapstoasttask.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 00038912 _____ (Microsoft Corporation) C:\WINDOWS\system32\wfdprov.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 00038400 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataTypeHelperUtil.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 00037888 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataLanguageUtil.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 00036704 _____ (Microsoft Corporation) C:\WINDOWS\system32\SysResetErr.exe
2016-10-11 08:07 - 2016-10-11 08:07 - 00036168 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfpmp.exe
2016-10-11 08:07 - 2016-10-11 08:07 - 00035328 _____ (Microsoft Corporation) C:\WINDOWS\system32\deviceassociation.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 00034304 _____ (Microsoft Corporation) C:\WINDOWS\system32\LaunchWinApp.exe
2016-10-11 08:07 - 2016-10-11 08:07 - 00034304 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\xinputhid.sys
2016-10-11 08:07 - 2016-10-11 08:07 - 00032768 _____ (Microsoft Corporation) C:\WINDOWS\system32\mapsupdatetask.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 00031744 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidparse.sys
2016-10-11 08:07 - 2016-10-11 08:07 - 00029696 _____ (Microsoft Corporation) C:\WINDOWS\system32\iernonce.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 00026624 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidusb.sys
2016-10-11 08:07 - 2016-10-11 08:07 - 00025600 _____ (Microsoft Corporation) C:\WINDOWS\system32\netiougc.exe
2016-10-11 08:07 - 2016-10-11 08:07 - 00023776 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
2016-10-11 08:07 - 2016-10-11 08:07 - 00023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiFiConfigSP.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 00022528 _____ (Microsoft Corporation) C:\WINDOWS\system32\encapi.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 00020992 _____ (Microsoft Corporation) C:\WINDOWS\system32\nativemap.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 00020992 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManagerSvc.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 00020992 _____ (Microsoft Corporation) C:\WINDOWS\system32\delegatorprovider.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 00020480 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvcpal.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 00020480 _____ (Microsoft Corporation) C:\WINDOWS\system32\storagewmi_passthru.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 00019968 _____ (Microsoft Corporation) C:\WINDOWS\system32\slcext.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 00018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Management.Provisioning.ProxyStub.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 00018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExtrasXmlParser.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 00017920 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups2.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 00015360 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanhlp.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 00014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\C_IS2022.DLL
2016-10-11 08:07 - 2016-10-11 08:07 - 00012800 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsBtSvcProxy.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 00012800 _____ (Microsoft Corporation) C:\WINDOWS\system32\c_GSM7.DLL
2016-10-11 08:07 - 2016-10-11 08:07 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResetEngine.exe
2016-10-11 08:07 - 2016-10-11 08:07 - 00009728 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft-Windows-MosTrace.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 00009216 _____ (Microsoft Corporation) C:\WINDOWS\system32\spwmp.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 00009216 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft-Windows-MosHost.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataAccessRes.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 00005120 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdxm.ocx
2016-10-11 08:07 - 2016-10-11 08:07 - 00005120 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxmasf.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 00002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\tzres.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 00002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneutilRes.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 00002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneServiceRes.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 00002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6r.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 00002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapControlStringsRes.dll
2016-10-11 08:04 - 2016-07-15 18:45 - 05739008 _____ (Microsoft Corporation) C:\WINDOWS\system32\prm0009.dll
2016-10-11 08:04 - 2016-07-15 18:45 - 02629120 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsLexicons0009.dll
2016-10-11 08:04 - 2016-07-15 18:29 - 05489664 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData0009.dll
2016-10-11 08:03 - 2016-10-11 08:03 - 00008192 _____ C:\WINDOWS\system32\config\userdiff
2016-10-11 08:02 - 2016-10-11 08:02 - 00000000 ____D C:\WINDOWS\system32\XPSViewer
2016-10-11 08:02 - 2016-10-11 08:02 - 00000000 ____D C:\WINDOWS\system32\msmq
2016-10-11 08:02 - 2016-10-11 08:02 - 00000000 ____D C:\WINDOWS\system32\BestPractices
2016-10-11 08:01 - 2016-10-11 12:31 - 00000000 ____D C:\Program Files\MSBuild
2016-10-11 08:01 - 2016-10-11 08:01 - 00173408 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wof.sys
2016-10-11 08:01 - 2016-10-11 08:01 - 00000000 ____D C:\Program Files\Reference Assemblies
2016-10-11 08:01 - 2016-10-11 08:01 - 00000000 ____D C:\inetpub
2016-10-11 08:01 - 2016-05-25 11:03 - 00778936 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationNative_v0300.dll
2016-10-11 08:01 - 2016-05-25 11:03 - 00103120 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2016-10-11 08:01 - 2016-05-25 11:03 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\system32\TsWpfWrp.exe
2016-10-09 20:38 - 2016-10-10 08:06 - 00000000 ____D C:\Program Files\Mozilla Thunderbird

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2016-11-07 16:40 - 2013-12-10 19:24 - 00000000 ____D C:\Users\klobje\AppData\Local\LogMeIn Hamachi
2016-11-07 16:38 - 2014-01-13 19:33 - 00000008 __RSH C:\ProgramData\ntuser.pol
2016-11-07 16:37 - 2016-07-16 03:22 - 00262144 _____ C:\WINDOWS\system32\config\BBI
2016-11-07 15:41 - 2011-11-28 14:30 - 00000000 ____D C:\Program Files\Opera
2016-11-07 15:15 - 2015-06-28 15:26 - 00000000 ____D C:\Program Files\Common Files\DVDVideoSoft
2016-11-07 15:15 - 2009-07-14 03:37 - 00000000 ___HD C:\WINDOWS\system32\GroupPolicy
2016-11-07 13:46 - 2016-07-16 09:29 - 00000000 ___HD C:\WINDOWS\ELAMBKUP
2016-11-07 13:46 - 2016-07-16 09:28 - 00000000 ____D C:\WINDOWS\INF
2016-11-07 11:35 - 2012-01-25 08:55 - 00000000 ____D C:\Users\klobje\AppData\Roaming\vlc
2016-11-07 09:55 - 2016-07-16 09:29 - 00000000 ___HD C:\Program Files\WindowsApps
2016-11-07 09:55 - 2016-07-16 09:29 - 00000000 ____D C:\WINDOWS\AppReadiness
2016-11-07 09:46 - 2016-07-16 09:29 - 00000000 ____D C:\WINDOWS\LiveKernelReports
2016-11-06 16:01 - 2013-12-27 14:28 - 00000000 ____D C:\Program Files\Steam
2016-11-04 22:39 - 2016-07-16 09:29 - 00000000 ____D C:\WINDOWS\system32\NDF
2016-11-04 22:39 - 2011-12-13 20:04 - 00000000 ____D C:\Users\klobje\AppData\Local\ElevatedDiagnostics
2016-11-04 22:01 - 2016-04-30 23:09 - 00001040 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Help.lnk
2016-11-04 22:01 - 2015-10-05 14:58 - 00002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2016-11-04 22:01 - 2014-07-16 20:29 - 00001060 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer 9.lnk
2016-11-04 22:01 - 2011-11-28 16:37 - 00001112 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2016-11-04 22:01 - 2011-11-28 14:39 - 00002048 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Thunderbird.lnk
2016-11-04 22:01 - 2011-11-28 14:30 - 00001791 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Opera.lnk
2016-11-04 22:00 - 2016-09-12 21:52 - 00001274 _____ C:\Users\klobje\Desktop\Facebook Games Arcade (BETA).lnk
2016-11-04 22:00 - 2016-05-20 12:31 - 00002121 _____ C:\Users\Public\Desktop\Zoner Callisto 5 FREE.lnk
2016-11-04 22:00 - 2016-03-09 13:11 - 00000933 _____ C:\Users\Public\Desktop\Hearthstone.lnk
2016-11-04 22:00 - 2016-03-09 13:01 - 00001175 _____ C:\Users\Public\Desktop\Battle.net.lnk
2016-11-04 22:00 - 2016-03-07 22:59 - 00001236 _____ C:\Users\klobje\Desktop\Uplay.lnk
2016-11-04 22:00 - 2016-03-07 12:07 - 00002433 _____ C:\Users\klobje\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2016-11-04 22:00 - 2016-03-07 12:06 - 00001051 _____ C:\Users\klobje\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Volitelné funkce.lnk
2016-11-04 22:00 - 2016-03-07 12:05 - 00001210 _____ C:\Users\klobje\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ESET NOD32 Antivirus.lnk
2016-11-04 22:00 - 2016-01-29 21:04 - 00000744 _____ C:\Users\Public\Desktop\Oblivion.lnk
2016-11-04 22:00 - 2015-10-17 14:33 - 00002330 _____ C:\Users\klobje\Desktop\Hry.cz.lnk
2016-11-04 22:00 - 2015-08-04 05:39 - 00001058 _____ C:\Users\klobje\Desktop\WALL-E.lnk
2016-11-04 22:00 - 2015-06-28 15:26 - 00002240 _____ C:\Users\Public\Desktop\Free Video Flip and Rotate.lnk
2016-11-04 22:00 - 2015-06-28 15:26 - 00001203 _____ C:\Users\Public\Desktop\DVDVideoSoft Free Studio.lnk
2016-11-04 22:00 - 2015-06-18 00:06 - 00001107 _____ C:\Users\Public\Desktop\Free MP4 MP3 Converter.lnk
2016-11-04 22:00 - 2014-09-05 13:06 - 00001768 _____ C:\Users\Public\Desktop\Apps.lnk
2016-11-04 22:00 - 2014-09-05 13:06 - 00001765 _____ C:\Users\Public\Desktop\Start BlueStacks.lnk
2016-11-04 22:00 - 2014-08-28 22:04 - 00001122 _____ C:\Users\klobje\Desktop\Wooky.lnk
2016-11-04 22:00 - 2014-07-20 20:20 - 00001017 _____ C:\Users\klobje\Desktop\Puzzle Quest.lnk
2016-11-04 22:00 - 2014-07-16 20:29 - 00001048 _____ C:\Users\Public\Desktop\TeamViewer 9.lnk
2016-11-04 22:00 - 2014-04-20 21:03 - 00001696 _____ C:\Users\klobje\Desktop\LEGO Harry 2.lnk
2016-11-04 22:00 - 2014-04-17 18:37 - 00001111 _____ C:\Users\klobje\Desktop\Angry Birds Breakfast 2.lnk
2016-11-04 22:00 - 2014-03-27 17:59 - 00002031 _____ C:\Users\Public\Desktop\Play Beyond Good & Evil.lnk
2016-11-04 22:00 - 2014-03-13 11:43 - 00001111 _____ C:\Users\klobje\Desktop\Angry Birds Breakfast 1.lnk
2016-11-04 22:00 - 2014-01-25 16:24 - 00000857 _____ C:\Users\klobje\Desktop\Stažené soubory.lnk
2016-11-04 22:00 - 2013-12-27 14:28 - 00000925 _____ C:\Users\Public\Desktop\Steam.lnk
2016-11-04 22:00 - 2013-07-19 14:00 - 00001101 _____ C:\Users\Public\Desktop\VLC media player.lnk
2016-11-04 22:00 - 2013-06-02 15:51 - 00000874 _____ C:\Users\klobje\Desktop\Kuba - filmy.lnk
2016-11-04 22:00 - 2013-03-31 21:45 - 00000822 _____ C:\Users\Public\Desktop\The Witcher 2.lnk
2016-11-04 22:00 - 2013-02-22 14:49 - 00001066 _____ C:\Users\klobje\Desktop\WTV to AVI.lnk
2016-11-04 22:00 - 2013-02-11 17:07 - 00001887 _____ C:\Users\klobje\Desktop\Fish Fillets.lnk
2016-11-04 22:00 - 2013-01-25 16:12 - 00000758 _____ C:\Users\Public\Desktop\Fish Fillets 2.lnk
2016-11-04 22:00 - 2012-11-26 11:17 - 00001216 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Program Updates.lnk
2016-11-04 22:00 - 2012-11-13 15:45 - 00001099 _____ C:\Users\Public\Desktop\Angry Birds Space.lnk
2016-11-04 22:00 - 2012-11-13 15:43 - 00001700 _____ C:\Users\klobje\Desktop\AngryBirds Seasons.lnk
2016-11-04 22:00 - 2012-11-13 15:42 - 00002081 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Angry Birds Seasons.lnk
2016-11-04 22:00 - 2012-11-13 15:39 - 00001620 _____ C:\Users\klobje\Desktop\AngryBirds Rio.lnk
2016-11-04 22:00 - 2012-11-13 15:38 - 00002025 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Angry Birds Rio.lnk
2016-11-04 22:00 - 2012-11-12 16:48 - 00001219 _____ C:\Users\klobje\Desktop\AngryBirds StarWars.lnk
2016-11-04 22:00 - 2012-08-04 08:43 - 00000650 _____ C:\Users\klobje\Desktop\AngryBirds.lnk
2016-11-04 22:00 - 2012-07-17 10:52 - 00000696 _____ C:\Users\klobje\Desktop\Cool Edit Pro.lnk
2016-11-04 22:00 - 2012-04-23 17:03 - 00001926 _____ C:\Users\klobje\Desktop\TimeAdjuster.lnk
2016-11-04 22:00 - 2012-02-10 12:47 - 00001158 _____ C:\Users\klobje\Desktop\ConvertXtoDvd 3.lnk
2016-11-04 22:00 - 2012-02-07 19:54 - 00001026 _____ C:\Users\klobje\Desktop\DVD Shrink 3.2.lnk
2016-11-04 22:00 - 2012-01-23 11:21 - 00000646 _____ C:\Users\klobje\Desktop\Audiograbber.lnk
2016-11-04 22:00 - 2011-12-18 10:08 - 00001165 _____ C:\Users\Public\Desktop\Ashampoo Burning Studio 6 FREE.lnk
2016-11-04 22:00 - 2011-11-28 16:37 - 00001100 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk
2016-11-04 22:00 - 2011-11-28 16:18 - 00000877 _____ C:\Users\klobje\Desktop\Stažené lecosy.lnk
2016-11-04 22:00 - 2011-11-28 16:18 - 00000658 _____ C:\Users\klobje\Desktop\Sdílené lecosy.lnk
2016-11-04 22:00 - 2011-11-28 16:02 - 00001925 _____ C:\Users\klobje\Desktop\StrongDC++.lnk
2016-11-04 22:00 - 2011-11-28 14:24 - 00002501 _____ C:\Users\klobje\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2016-11-04 21:55 - 2012-01-14 20:14 - 00000000 ____D C:\Users\klobje\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games
2016-11-04 21:55 - 2009-07-14 05:52 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
2016-11-04 21:54 - 2013-11-24 22:03 - 00000000 ____D C:\Program Files\Saints Row IV
2016-11-04 14:18 - 2013-03-02 16:07 - 00000000 ____D C:\ProgramData\PCTV Systems
2016-11-04 14:16 - 2013-04-10 05:52 - 00000000 ____D C:\Users\klobje\AppData\Roaming\Seznam.cz
2016-11-04 14:16 - 2012-07-31 08:18 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ubisoft
2016-11-04 14:16 - 2012-05-05 22:54 - 00000000 ____D C:\Program Files\Ubisoft
2016-11-04 14:16 - 2011-12-17 11:11 - 00000000 ___HD C:\Program Files\InstallShield Installation Information
2016-11-04 14:15 - 2014-10-17 11:06 - 00000000 ____D C:\Program Files\Legend of Grimrock 2
2016-11-04 14:15 - 2013-06-12 21:55 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GOG.com
2016-11-04 14:10 - 2011-12-05 12:38 - 00000000 ____D C:\Program Files\Common Files\Adobe
2016-11-04 14:10 - 2011-11-28 15:49 - 00000000 ____D C:\ProgramData\Adobe
2016-11-04 14:10 - 2011-11-28 15:48 - 00000000 ____D C:\Program Files\Adobe
2016-11-04 14:10 - 2011-11-28 14:25 - 00000000 ____D C:\Users\klobje\AppData\Roaming\Adobe
2016-11-04 12:50 - 2016-07-16 18:01 - 00632756 _____ C:\WINDOWS\system32\perfh005.dat
2016-11-04 12:50 - 2016-07-16 18:01 - 00150714 _____ C:\WINDOWS\system32\perfc005.dat
2016-11-03 14:38 - 2014-09-05 13:05 - 00000000 ____D C:\ProgramData\BlueStacksSetup
2016-11-03 14:38 - 2012-10-19 07:14 - 00000000 ____D C:\Users\klobje\AppData\Roaming\TeamViewer
2016-11-03 14:38 - 2011-11-29 19:22 - 00000000 ____D C:\Users\klobje\AppData\Roaming\Media Player Classic
2016-11-03 14:38 - 2011-11-29 13:53 - 00000000 ____D C:\Users\klobje\AppData\Roaming\DAEMON Tools Lite
2016-11-02 19:35 - 2014-07-16 23:31 - 00000000 ____D C:\Users\klobje\AppData\Local\ESET
2016-11-02 19:06 - 2016-07-16 03:22 - 00032768 _____ C:\WINDOWS\system32\config\ELAM
2016-11-02 19:04 - 2016-02-05 16:05 - 00000958 _____ C:\WINDOWS\Tasks\Adobe Flash Player PPAPI Notifier.job
2016-11-02 19:04 - 2012-05-09 05:46 - 00000914 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2016-11-02 15:40 - 2009-07-14 03:04 - 00000510 _____ C:\WINDOWS\win.ini
2016-11-02 12:23 - 2016-08-23 21:54 - 00000000 ____D C:\Users\klobje\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Facebook
2016-11-01 14:19 - 2015-09-10 12:19 - 46525608 _____ (Safer-Networking Ltd. ) C:\Users\klobje\Downloads\spybot-2.4.exe
2016-11-01 14:17 - 2012-11-10 14:37 - 00000000 ____D C:\ProgramData\ZalmanInstaller_otshot
2016-11-01 14:16 - 2013-02-24 10:55 - 00000000 ____D C:\Program Files\IMPI
2016-10-30 20:22 - 2016-04-02 11:05 - 00000091 _____ C:\Users\klobje\Desktop\Odkaz.txt
2016-10-30 16:58 - 2016-07-16 09:29 - 00000000 ____D C:\WINDOWS\rescache
2016-10-30 12:07 - 2016-07-16 09:29 - 00000000 ____D C:\WINDOWS\system32\Macromed
2016-10-29 16:49 - 2014-04-12 08:28 - 00000000 ____D C:\Users\klobje\AppData\Roaming\Dropbox
2016-10-28 18:17 - 2016-03-07 12:00 - 00000000 __RHD C:\Users\Public\AccountPictures
2016-10-28 16:41 - 2016-07-16 09:29 - 00000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2016-10-28 16:41 - 2016-07-16 09:29 - 00000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2016-10-28 16:41 - 2016-07-16 09:29 - 00000000 ____D C:\WINDOWS\system32\oobe
2016-10-28 16:41 - 2016-07-16 09:29 - 00000000 ____D C:\WINDOWS\system32\appraiser
2016-10-28 16:41 - 2016-07-16 09:29 - 00000000 ____D C:\WINDOWS\PolicyDefinitions
2016-10-28 16:40 - 2016-07-16 09:30 - 00015425 _____ C:\WINDOWS\system32\OEMDefaultAssociations.xml
2016-10-28 12:27 - 2012-06-21 13:10 - 00000000 ____D C:\ProgramData\tmp
2016-10-28 11:25 - 2016-07-16 09:19 - 00000000 ____D C:\WINDOWS\CbsTemp
2016-10-28 11:21 - 2011-11-28 14:24 - 00000000 ____D C:\Users\klobje\AppData\Local\Google
2016-10-27 21:03 - 2013-08-26 12:31 - 00000000 ___HD C:\Program Files\Common Files\EAInstaller
2016-10-25 13:41 - 2013-12-10 19:46 - 00000000 ___RD C:\Program Files\Skype
2016-10-25 00:30 - 2016-07-16 09:31 - 00828408 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerApp.exe
2016-10-25 00:30 - 2016-07-16 09:31 - 00176632 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerCPLApp.cpl
2016-10-21 20:03 - 2016-08-18 10:12 - 00000000 ____D C:\Users\klobje\AppData\Roaming\.minecraft
2016-10-19 16:30 - 2013-12-27 14:28 - 00000000 ____D C:\Program Files\Common Files\Steam
2016-10-17 19:58 - 2016-06-24 22:50 - 00000000 ____D C:\Users\klobje\AppData\Local\Facebook
2016-10-17 12:05 - 2016-08-31 18:32 - 00011370 _____ C:\Users\klobje\Documents\CAndy crush saga céčka.xlsx
2016-10-13 14:34 - 2012-11-11 14:28 - 00000000 ____D C:\Program Files\Microsoft Silverlight
2016-10-13 14:00 - 2016-07-16 09:29 - 00000000 ___SD C:\WINDOWS\system32\DiagSvcs
2016-10-13 14:00 - 2016-07-16 09:29 - 00000000 ____D C:\WINDOWS\system32\migwiz
2016-10-13 14:00 - 2016-07-16 09:29 - 00000000 ____D C:\WINDOWS\ShellExperiences
2016-10-13 14:00 - 2016-07-16 09:29 - 00000000 ____D C:\Program Files\Windows Photo Viewer
2016-10-12 14:12 - 2012-11-11 14:29 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
2016-10-12 14:11 - 2013-08-14 22:25 - 00000000 ____D C:\WINDOWS\system32\MRT
2016-10-12 13:59 - 2013-05-04 20:33 - 141042968 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2016-10-12 09:03 - 2016-07-16 09:29 - 00000000 ____D C:\WINDOWS\appcompat
2016-10-11 20:56 - 2016-07-16 09:29 - 00000000 ___SD C:\WINDOWS\system32\F12
2016-10-11 20:56 - 2016-07-16 09:29 - 00000000 ____D C:\WINDOWS\system32\setup
2016-10-11 20:56 - 2016-07-16 09:29 - 00000000 ____D C:\WINDOWS\Provisioning
2016-10-11 20:56 - 2016-07-16 09:29 - 00000000 ____D C:\WINDOWS\bcastdvr
2016-10-11 20:56 - 2016-07-16 03:22 - 00000000 ____D C:\WINDOWS\system32\Sysprep
2016-10-11 20:56 - 2016-07-16 03:22 - 00000000 ____D C:\WINDOWS\system32\Dism
2016-10-11 13:09 - 2016-03-07 12:00 - 00000000 ____D C:\Users\klobje\AppData\Local\Packages
2016-10-11 13:02 - 2016-07-16 09:30 - 00028672 _____ C:\WINDOWS\system32\config\BCD-Template
2016-10-11 12:56 - 2016-03-07 12:07 - 00000000 ___RD C:\Users\klobje\OneDrive
2016-10-11 12:51 - 2016-07-16 09:29 - 00000000 ____D C:\ProgramData\USOPrivate
2016-10-11 12:50 - 2016-07-16 09:29 - 00000000 ____D C:\Program Files\Windows NT
2016-10-11 12:47 - 2016-07-16 09:29 - 00000000 ____D C:\WINDOWS\system32\WinBioDatabase
2016-10-11 12:47 - 2016-07-16 09:29 - 00000000 ____D C:\WINDOWS\Registration
2016-10-11 12:47 - 2015-10-30 06:48 - 00000000 ____D C:\WINDOWS\system32\Tasks_Migrated
2016-10-11 12:42 - 2016-07-16 09:29 - 00000000 ____D C:\WINDOWS\Media
2016-10-11 12:42 - 2016-03-07 11:52 - 00021592 _____ C:\WINDOWS\system32\emptyregdb.dat
2016-10-11 12:41 - 2016-07-16 09:29 - 00000000 __RHD C:\Users\Public\Libraries
2016-10-11 12:31 - 2016-09-14 09:32 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LogMeIn Hamachi
2016-10-11 12:31 - 2016-09-03 17:26 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Rise of the Tomb Raider
2016-10-11 12:31 - 2016-08-19 16:45 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ship Simulator Extremes Demo
2016-10-11 12:31 - 2016-07-16 09:29 - 00000000 ___SD C:\WINDOWS\Downloaded Program Files
2016-10-11 12:31 - 2016-07-16 09:29 - 00000000 ____D C:\WINDOWS\system32\FxsTmp
2016-10-11 12:31 - 2016-05-20 12:31 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Zoner Callisto 5 FREE
2016-10-11 12:31 - 2016-04-30 23:14 - 00000000 ____D C:\ProgramData\regid.1986-12.com.adobe
2016-10-11 12:31 - 2016-04-30 23:10 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe
2016-10-11 12:31 - 2016-03-09 13:11 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hearthstone
2016-10-11 12:31 - 2016-03-09 13:01 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battle.net
2016-10-11 12:31 - 2016-03-09 12:42 - 00000000 ____D C:\Users\klobje\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Sichbo Interactive
2016-10-11 12:31 - 2016-01-21 20:26 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OldGames.sk
2016-10-11 12:31 - 2015-12-13 16:57 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SoundMAX
2016-10-11 12:31 - 2015-11-11 23:35 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StrokeScribe
2016-10-11 12:31 - 2015-10-30 16:10 - 00000000 ____D C:\WINDOWS\ShellNew
2016-10-11 12:31 - 2015-10-05 15:18 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Free OCR to Word
2016-10-11 12:31 - 2015-06-28 15:26 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVDVideoSoft
2016-10-11 12:31 - 2015-06-18 00:06 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Free MP4 MP3 Converter
2016-10-11 12:31 - 2015-06-17 13:30 - 00000000 ____D C:\Users\klobje\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplikace Chrome
2016-10-11 12:31 - 2015-02-14 18:54 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SilverCrest STMS 2219 A1
2016-10-11 12:31 - 2014-09-05 13:05 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BlueStacks
2016-10-11 12:31 - 2014-08-28 22:04 - 00000000 ____D C:\Users\klobje\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Wooky
2016-10-11 12:31 - 2014-07-25 15:19 - 00000000 ____D C:\Users\klobje\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ICQ
2016-10-11 12:31 - 2014-07-20 20:20 - 00000000 ____D C:\Users\klobje\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Puzzle Quest
2016-10-11 12:31 - 2014-04-17 18:37 - 00000000 ____D C:\Users\klobje\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Angry Birds Breakfast 2
2016-10-11 12:31 - 2014-03-27 17:14 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Axence NetTools 5
2016-10-11 12:31 - 2014-03-13 11:42 - 00000000 ____D C:\Users\klobje\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Angry Birds Breakfast 1
2016-10-11 12:31 - 2014-02-12 15:14 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Deadly Rooms of Death
2016-10-11 12:31 - 2013-12-27 14:28 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam
2016-10-11 12:31 - 2013-11-26 07:03 - 00000000 ____D C:\Users\klobje\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Minecraft
2016-10-11 12:31 - 2013-10-21 11:14 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2016-10-11 12:31 - 2013-10-07 23:04 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QLandkarte GT
2016-10-11 12:31 - 2013-07-19 14:00 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
2016-10-11 12:31 - 2013-06-14 20:37 - 00000000 ____D C:\Users\klobje\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Legend of Grimrock
2016-10-11 12:31 - 2013-06-11 14:55 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BS2
2016-10-11 12:31 - 2013-05-28 05:17 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive
2016-10-11 12:31 - 2013-04-11 10:48 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RFOnline
2016-10-11 12:31 - 2013-04-10 05:51 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Super Ovladac
2016-10-11 12:31 - 2013-03-31 21:45 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\The Witcher 2 (CZ)
2016-10-11 12:31 - 2013-03-01 20:34 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DivX
2016-10-11 12:31 - 2013-02-22 14:49 - 00000000 ____D C:\Users\klobje\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WTV to AVI
2016-10-11 12:31 - 2013-02-11 17:02 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Fish Fillets
2016-10-11 12:31 - 2013-01-25 16:12 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Fish Fillets 2
2016-10-11 12:31 - 2013-01-09 11:11 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Notation Player
2016-10-11 12:31 - 2013-01-09 10:59 - 00000000 ____D C:\Users\klobje\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\vanBasco's Karaoke Player
2016-10-11 12:31 - 2012-09-24 13:38 - 00000000 ____D C:\Users\klobje\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Torchlight
2016-10-11 12:31 - 2012-07-17 10:51 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Cool Edit Pro
2016-10-11 12:31 - 2012-06-05 09:22 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\rajce
2016-10-11 12:31 - 2012-05-28 10:41 - 00000000 ____D C:\Users\klobje\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Hry.cz
2016-10-11 12:31 - 2012-04-23 17:03 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TimeAdjuster
2016-10-11 12:31 - 2012-02-07 20:42 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Convert DVD to AVI
2016-10-11 12:31 - 2012-02-07 19:54 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVD Shrink
2016-10-11 12:31 - 2012-01-28 19:14 - 00000000 ____D C:\Users\klobje\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\The KMPlayer
2016-10-11 12:31 - 2012-01-23 11:21 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Audiograbber
2016-10-11 12:31 - 2011-12-05 18:15 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Odysseus - Dlouhá cesta domů
2016-10-11 12:31 - 2011-11-29 19:21 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack
2016-10-11 12:31 - 2011-11-29 14:31 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SharePoint
2016-10-11 12:31 - 2011-11-29 14:31 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office
2016-10-11 12:31 - 2011-11-28 15:47 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StrongDC++
2016-10-11 12:31 - 2011-11-28 15:08 - 00000000 ____D C:\Users\klobje\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2016-10-11 12:31 - 2011-11-28 15:08 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2016-10-11 12:31 - 2011-11-28 14:24 - 00000000 ____D C:\Users\klobje\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome
2016-10-11 12:29 - 2016-07-16 09:29 - 00000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2016-10-11 12:29 - 2015-10-30 06:13 - 00000000 ____D C:\Users\Default.migrated
2016-10-11 12:25 - 2016-07-16 09:29 - 00000000 __SHD C:\Program Files\Windows Sidebar
2016-10-11 12:25 - 2016-07-16 09:29 - 00000000 ____D C:\WINDOWS\system32\spool
2016-10-11 12:25 - 2016-07-16 09:29 - 00000000 ____D C:\WINDOWS\system32\IME
2016-10-11 12:25 - 2016-07-16 09:29 - 00000000 ____D C:\WINDOWS\schemas
2016-10-11 12:25 - 2016-01-29 21:01 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bethesda Softworks
2016-10-11 12:25 - 2015-04-15 13:37 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2016-10-11 12:25 - 2015-02-12 13:38 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\REPACK BY TOMI2K9
2016-10-11 12:25 - 2014-02-25 23:05 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Frozenbyte
2016-10-11 12:25 - 2013-12-27 20:35 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TLKGAMES
2016-10-11 12:25 - 2013-04-12 15:47 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Giant
2016-10-11 12:25 - 2013-04-12 15:44 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Media Center
2016-10-11 12:25 - 2013-03-20 06:20 - 00000000 ____D C:\WINDOWS\system32\SPReview
2016-10-11 12:25 - 2013-03-20 06:19 - 00000000 ____D C:\WINDOWS\system32\EventProviders
2016-10-11 12:25 - 2012-11-13 15:38 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Rovio
2016-10-11 12:25 - 2012-11-12 12:08 - 00000000 ____D C:\WINDOWS\system32\appmgmt
2016-10-11 12:25 - 2012-09-25 12:49 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\JoWooD
2016-10-11 12:25 - 2012-09-22 17:47 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Elaborate Bytes
2016-10-11 12:25 - 2012-08-07 12:38 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nobilis
2016-10-11 12:25 - 2012-04-01 21:36 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Cyanide
2016-10-11 12:25 - 2012-02-10 12:47 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VSO
2016-10-11 12:25 - 2011-12-18 10:08 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ashampoo
2016-10-11 12:25 - 2011-11-29 14:04 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Razor 1911
2016-10-11 12:25 - 2011-11-29 13:54 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Yandex
2016-10-11 12:25 - 2009-07-14 10:20 - 00000000 ___RD C:\Users\Public\Recorded TV
2016-10-11 12:24 - 2016-07-16 09:29 - 00000000 ____D C:\Program Files\Common Files\System
2016-10-11 12:24 - 2016-07-16 09:29 - 00000000 ____D C:\Program Files\Common Files\microsoft shared
2016-10-11 12:24 - 2009-07-14 05:52 - 00000000 ____D C:\Program Files\Microsoft Games
2016-10-11 12:22 - 2016-03-07 22:59 - 00000000 ____D C:\Users\klobje\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ubisoft
2016-10-11 12:22 - 2013-12-27 14:35 - 00000000 ____D C:\Users\klobje\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2016-10-11 12:22 - 2013-02-22 15:01 - 00000000 ____D C:\Users\klobje\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Bigasoft
2016-10-11 12:22 - 2012-04-23 17:03 - 00000000 ____D C:\Users\klobje\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TimeAdjuster
2016-10-11 12:22 - 2012-04-01 21:43 - 00000000 ____D C:\Users\klobje\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Cyanide
2016-10-11 12:16 - 2016-07-16 09:29 - 00000000 ___RD C:\WINDOWS\PrintDialog
2016-10-11 12:16 - 2016-07-16 09:29 - 00000000 ___RD C:\WINDOWS\MiracastView
2016-10-11 12:15 - 2012-02-15 07:03 - 00000000 ____D C:\AMD
2016-10-11 08:08 - 2016-07-16 09:29 - 00000000 ___SD C:\WINDOWS\system32\dsc
2016-10-11 08:08 - 2016-07-16 09:29 - 00000000 ___RD C:\Program Files\Windows Defender
2016-10-11 08:08 - 2016-07-16 09:29 - 00000000 ____D C:\WINDOWS\system32\lv-LV
2016-10-11 08:08 - 2016-07-16 09:29 - 00000000 ____D C:\WINDOWS\system32\lt-LT
2016-10-11 08:08 - 2016-07-16 09:29 - 00000000 ____D C:\WINDOWS\system32\et-EE
2016-10-11 08:08 - 2016-07-16 09:29 - 00000000 ____D C:\WINDOWS\system32\es-MX
2016-10-11 08:08 - 2016-07-16 09:29 - 00000000 ____D C:\WINDOWS\system32\en-GB
2016-10-11 08:04 - 2016-07-16 18:01 - 00000000 ____D C:\WINDOWS\OCR
2016-10-11 08:02 - 2016-07-16 09:29 - 00000000 ____D C:\WINDOWS\system32\MUI
2016-10-11 08:02 - 2016-07-16 09:29 - 00000000 ____D C:\WINDOWS\system32\inetsrv
2016-10-11 08:01 - 2016-07-16 09:26 - 01003008 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqqm.dll
2016-10-11 08:01 - 2016-07-16 09:26 - 00621568 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqsnap.dll
2016-10-11 08:01 - 2016-07-16 09:26 - 00562176 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqutil.dll
2016-10-11 08:01 - 2016-07-16 09:26 - 00265728 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqoa.dll
2016-10-11 08:01 - 2016-07-16 09:26 - 00172032 _____ (Microsoft Corporation) C:\WINDOWS\system32\iisRtl.dll
2016-10-11 08:01 - 2016-07-16 09:26 - 00160768 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqrt.dll
2016-10-11 08:01 - 2016-07-16 09:26 - 00130560 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mqac.sys
2016-10-11 08:01 - 2016-07-16 09:26 - 00104448 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqlogmgr.dll
2016-10-11 08:01 - 2016-07-16 09:26 - 00096256 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqoa.tlb
2016-10-11 08:01 - 2016-07-16 09:26 - 00090624 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqoa30.tlb
2016-10-11 08:01 - 2016-07-16 09:26 - 00055296 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqoa20.tlb
2016-10-11 08:01 - 2016-07-16 09:26 - 00050688 _____ (Microsoft Corporation) C:\WINDOWS\system32\admwprox.dll
2016-10-11 08:01 - 2016-07-16 09:26 - 00044544 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqbkup.exe
2016-10-11 08:01 - 2016-07-16 09:26 - 00036864 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqoa10.tlb
2016-10-11 08:01 - 2016-07-16 09:26 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\ahadmin.dll
2016-10-11 08:01 - 2016-07-16 09:26 - 00024576 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqsvc.exe
2016-10-11 08:01 - 2016-07-16 09:26 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\system32\iisreset.exe
2016-10-11 08:01 - 2016-07-16 09:26 - 00015360 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqcertui.dll
2016-10-11 08:01 - 2016-07-16 09:26 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\system32\wamregps.dll
2016-10-11 08:01 - 2016-07-16 09:26 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\iisrstap.dll
2016-10-11 08:01 - 2016-07-16 09:26 - 00009096 _____ C:\WINDOWS\system32\msmqtrc.mof
2016-10-11 06:12 - 2012-05-30 09:20 - 00000964 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2016-10-11 00:41 - 2011-11-28 14:24 - 00000986 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-2313541682-3982225299-4202079360-1000UA.job
2016-10-10 23:48 - 2012-05-30 09:20 - 00000968 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2016-10-10 23:45 - 2015-06-16 12:34 - 00000922 _____ C:\WINDOWS\Tasks\DropboxUpdateTaskUserS-1-5-21-2313541682-3982225299-4202079360-1000UA.job
2016-10-10 16:45 - 2015-06-16 12:33 - 00000870 _____ C:\WINDOWS\Tasks\DropboxUpdateTaskUserS-1-5-21-2313541682-3982225299-4202079360-1000Core.job
2016-10-10 08:06 - 2012-05-03 18:13 - 00000000 ____D C:\Program Files\Mozilla Maintenance Service
2016-10-08 17:22 - 2013-11-27 16:21 - 01680054 _____ (Titan Launcher) C:\Users\klobje\Desktop\Minecraft Launcher.exe

==================== Files in the root of some directories =======

2012-02-10 12:47 - 2012-02-10 12:47 - 0087608 _____ () C:\Users\klobje\AppData\Roaming\inst.exe
2012-02-10 12:47 - 2012-02-10 12:47 - 0007887 _____ () C:\Users\klobje\AppData\Roaming\pcouffin.cat
2012-02-10 12:47 - 2012-02-10 12:47 - 0001144 _____ () C:\Users\klobje\AppData\Roaming\pcouffin.inf
2012-02-10 12:47 - 2012-02-10 12:47 - 0000034 _____ () C:\Users\klobje\AppData\Roaming\pcouffin.log
2012-02-10 12:47 - 2012-02-10 12:47 - 0047360 _____ (VSO Software) C:\Users\klobje\AppData\Roaming\pcouffin.sys
2012-02-10 12:47 - 2016-03-09 14:03 - 0000668 _____ () C:\Users\klobje\AppData\Roaming\vso_ts_preview.xml
2012-11-11 14:30 - 2012-11-11 14:30 - 0003584 _____ () C:\Users\klobje\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2015-02-26 21:54 - 2015-05-30 21:46 - 0004275 _____ () C:\Users\klobje\AppData\Local\MRDownloader (1).err
2015-02-10 14:19 - 2015-06-12 22:37 - 0001120 _____ () C:\Users\klobje\AppData\Local\MRDownloader (1).nast
2014-06-16 15:44 - 2015-02-12 21:47 - 0001072 _____ () C:\Users\klobje\AppData\Local\MRDownloader.nast
2013-01-09 17:09 - 2013-01-09 17:09 - 0000218 _____ () C:\Users\klobje\AppData\Local\recently-used.xbel
2012-01-31 22:29 - 2012-01-31 22:29 - 0000085 _____ () C:\Users\klobje\AppData\Local\SRDownloader.err
2012-01-31 22:34 - 2012-02-17 15:47 - 0001008 _____ () C:\Users\klobje\AppData\Local\SRDownloader.nast

Files to move or delete:
====================
C:\Users\klobje\dht.dat
C:\Users\klobje\resume.dat
C:\Users\klobje\rss.dat
C:\Users\klobje\settings.dat


==================== Bamital & volsnap ======================

(There is no automatic fix for files that do not pass verification.)

C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\wininit.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2016-11-05 13:07

==================== End of FRST.txt ============================

klobje
nováček
Příspěvky: 28
Registrován: listopad 16
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod klobje » 07 lis 2016 16:57

Addition.txt

Additional scan result of Farbar Recovery Scan Tool (x86) Version: 06-11-2016
Ran by klobje (07-11-2016 16:46:14)
Running from C:\Users\klobje\Desktop
Microsoft Windows 10 Pro Version 1607 (X86) (2016-10-11 11:50:23)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-2313541682-3982225299-4202079360-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-2313541682-3982225299-4202079360-503 - Limited - Disabled)
Guest (S-1-5-21-2313541682-3982225299-4202079360-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-2313541682-3982225299-4202079360-1468 - Limited - Enabled)
klobje (S-1-5-21-2313541682-3982225299-4202079360-1000 - Administrator - Enabled) => C:\Users\klobje

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Adobe Acrobat Reader DC - Czech (HKLM\...\{AC76BA86-7AD7-1029-7B44-AC0F074E4100}) (Version: 15.020.20039 - Adobe Systems Incorporated)
Adobe AIR (HKLM\...\Adobe AIR) (Version: 3.7.0.1860 - Adobe Systems Incorporated)
Adobe Community Help (HKLM\...\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 3.0.0.400 - Adobe Systems Incorporated)
Adobe Flash Player 23 NPAPI (HKLM\...\Adobe Flash Player NPAPI) (Version: 23.0.0.162 - Adobe Systems Incorporated)
Adobe Flash Player 23 PPAPI (HKLM\...\Adobe Flash Player PPAPI) (Version: 23.0.0.205 - Adobe Systems Incorporated)
Adobe Media Player (HKLM\...\com.adobe.amp.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 1.8 - Adobe Systems Incorporated)
Adventure Chronicles: The Search for Lost Treasures (HKU\S-1-5-21-2313541682-3982225299-4202079360-1000\...\Adventure Chronicles: The Search for Lost Treasures) (Version: 1.0.0.0 - Alawar Entertainment Inc.)
Alan Wake (HKLM\...\Steam App 108710) (Version: - Remedy Entertainment)
AMD Catalyst Control Center (HKLM\...\WUCCCApp) (Version: 1.00.0000 - AMD)
AMD Catalyst Install Manager (HKLM\...\{3825F8BD-F784-6FBB-A5CD-857559148007}) (Version: 8.0.903.0 - Advanced Micro Devices, Inc.)
Angry Birds Breakfast 1 (HKLM\...\{A2A84F3C-2273-4F05-8A41-D0C5FA271651}) (Version: 1.0.16 - Rovio Entertainment Ltd.)
Angry Birds Breakfast 2 (HKLM\...\{6DA44563-279B-4F07-B8B0-BA97596850C4}) (Version: 1.0.16 - Rovio Entertainment Ltd.)
Angry Birds Rio (HKLM\...\{4933D2E2-B621-487F-A7E7-96DA7312BCFE}) (Version: 1.3.2 - Rovio)
Angry Birds Seasons (HKLM\...\{37F8C732-02B5-41A2-9F5B-D94EAC2226AB}) (Version: 2.1.0 - Rovio)
Angry Birds Space (HKLM\...\{3F2A323E-60C4-41E8-8CCB-9715D1D750C3}) (Version: 1.0.0 - Rovio)
Ashampoo Burning Studio 6 FREE v.6.80 (HKLM\...\Ashampoo Burning Studio 6 FREE_is1) (Version: 6.8.0 - ashampoo GmbH & Co. KG)
AutoUpdate (HKLM\...\{18D10072035C4515918F7E37EAFAACFC}) (Version: 1.1 - )
Axence NetTools 5 (HKLM\...\Axence NetTools_is1) (Version: - Axence Software, Inc.)
Bad Piggies (HKLM\...\{32941438-AD79-4EF4-B7E4-86039E41B4D3}) (Version: 1.0.0 - Rovio)
Battle.net (HKLM\...\Battle.net) (Version: - Blizzard Entertainment)
Beyond Good & Evil (HKLM\...\{6BF81CE7-3D5A-497F-8912-2A65A0253E1B}) (Version: 1.01.000 - )
Bigasoft WTV Converter 3.7.24.4700 (HKLM\...\{BF28F7E1-F3A0-40e5-B4E7-B6CFE20D5ADF}_is1) (Version: - Bigasoft Corporation)
BlueStacks App Player (HKLM\...\BlueStacks App Player) (Version: 0.8.10.3096 - BlueStack Systems, Inc.)
BlueStacks Notification Center (HKLM\...\{0BED0B96-70B8-4893-884B-DC485DC8C1B7}) (Version: 0.8.10.3096 - BlueStack Systems, Inc.)
Convert DVD to AVI (HKLM\...\{300B9E83-E406-4DF7-8A21-E8A90E4F8B91}_is1) (Version: - convertdvdtoavi.com)
ConvertXtoDVD 3.1.2.34 (HKLM\...\{76C24F39-B161-498F-BD8B-C64789812D13}_is1) (Version: 3.1.2.34 - )
Cool Edit Pro v1.2 fixed (HKLM\...\Cool Edit Pro) (Version: - )
Disney-Pixar VALL-I (HKLM\...\{1E249838-D27F-4C11-8C62-0D1CACCFC7EB}) (Version: 1.00.0000 - THQ)
DivX Codec (HKLM\...\{7B63B2922B174135AFC0E1377DD81EC2}) (Version: 6.6.1 - DivX, Inc.)
Dropbox (HKU\S-1-5-21-2313541682-3982225299-4202079360-1000\...\Dropbox) (Version: 13.4.21 - Dropbox, Inc.)
DVD Shrink 3.2 (HKLM\...\DVD Shrink_is1) (Version: - DVD Shrink)
Facebook Gameroom 1.0.3.0 (HKLM\...\{29F046AE-F2E7-464D-879A-B3FB6087F89F}) (Version: 1.0.3.0 - Facebook)
Fish Fillets (HKLM\...\Fish Fillets) (Version: - )
Fish Fillets 2 (HKLM\...\Fish Fillets 2) (Version: 1.0.0.0 - ALTAR Games)
Free MP4 MP3 Converter 3.0.1 (HKLM\...\Free MP4 MP3 Converter) (Version: 3.0.1 - ZISUN Freeware)
Free OCR to Word 5.0.1 (HKLM\...\Free OCR to Word_is1) (Version: - FreeOCRtoWord, Inc.)
Free Video Flip and Rotate version 1.0.10.616 (HKLM\...\Free Video Flip and Rotate_is1) (Version: 1.0.10.616 - DVDVideoSoft Ltd.)
GameCenter (HKLM\...\GameCenter) (Version: - )
Goat Simulator (HKLM\...\Steam App 265930) (Version: - Coffee Stain Studios)
Google Drive (HKLM\...\{459CE109-4E46-4340-92BC-054642BC3BC2}) (Version: 1.31.2873.2758 - Google, Inc.)
Google Earth Plug-in (HKLM\...\{57BB4801-61C8-4E74-9672-2160728A461E}) (Version: 7.1.5.1557 - Google)
Google Chrome (HKU\S-1-5-21-2313541682-3982225299-4202079360-1000\...\Google Chrome) (Version: 54.0.2840.71 - Google Inc.)
Google Update Helper (Version: 1.3.25.11 - Google Inc.) Hidden
Google Update Helper (Version: 1.3.31.5 - Google Inc.) Hidden
Hearthstone (HKLM\...\Hearthstone) (Version: - Blizzard Entertainment)
Host OpenAL (ADI) (HKLM\...\Host OpenAL (ADI)) (Version: - )
HydraVision (Version: 4.2.210.0 - Advanced Micro Devices, Inc.) Hidden
IMPI 2.0.0.429 (HKLM\...\{17E113E6-CD0E-4045-B154-65F0E57959EF}_is1) (Version: - Bitcocktail)
Java 8 Update 25 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F83218025F0}) (Version: 8.0.250 - Oracle Corporation)
K-Lite Mega Codec Pack 8.0.0 (HKLM\...\KLiteCodecPack_is1) (Version: 8.0.0 - )
LEGO Star Wars (HKLM\...\{3CAF8B75-2F1F-4B87-9071-5B838C408DBB}) (Version: 1.0 - )
LEGO Star Wars II (HKLM\...\InstallShield_{4E074808-1B86-4230-A9EB-0904942EC4AE}) (Version: 1.00.0000 - LucasArts)
LEGO Star Wars II (Version: 1.00.0000 - LucasArts) Hidden
LEGO® Batman™ 2: DC Super Heroes (HKLM\...\{4E2EA555-3DAE-4BE1-96BF-6A632ACFE8DE}) (Version: 1.0.0.0 - Warner Bros. Interactive Entertainment)
LEGO® Harry Potter™: Years 5-7 (HKLM\...\{5C5A944F-096E-4ADD-B8E8-887F18BA6228}) (Version: 1.0.0.0 - WB Games)
LEGO® Piraci z Karaibów Gra wideo (HKLM\...\{DED30CC9-D549-403A-9C7E-3D4A12F06BF0}) (Version: 1.0.0.0 - Disney Interactive Studios)
LEGO® Pirates of the Caribbean The Video Game (HKLM\...\{64958DA4-79D3-43FD-AF06-720DAD044F9E}) (Version: 1.0.0.0 - Disney Interactive Studios)
LEGO® The Lord of the Rings™ (HKLM\...\{C6F20FA7-342A-47A9-A3C8-EB36CABE6419}) (Version: 1.0.0.0 - Warner Bros. Interactive Entertainment)
LogMeIn Hamachi (HKLM\...\LogMeIn Hamachi) (Version: 2.2.0.519 - LogMeIn, Inc.)
LogMeIn Hamachi (Version: 2.2.0.519 - LogMeIn, Inc.) Hidden
Malwarebytes Anti-Malware verze 2.2.1.1043 (HKLM\...\Malwarebytes Anti-Malware_is1) (Version: 2.2.1.1043 - Malwarebytes)
Marvell Miniport Driver (HKLM\...\Marvell Miniport Driver) (Version: 11.22.5.3 - Marvell)
Microsoft Office Professional Plus 2010 (HKLM\...\Office14.PROPLUS) (Version: 14.0.7015.1000 - Microsoft Corporation)
Microsoft Office Professional Plus 2010 (HKLM\...\Office14.PROPLUSR) (Version: 14.0.7015.1000 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50901.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (HKLM\...\{6AFCA4E1-9B78-3640-8F72-A7BF33448200}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (HKLM\...\{22154f09-719a-4619-bb71-5b3356999fbf}) (Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM\...\{ce085a78-074e-4823-8dc1-8a721b94b76d}) (Version: 12.0.21005.1 - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x86) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x86)) (Version: 10.0.50903 - Microsoft Corporation)
Microsoft Visual Studio Tools for Applications 2.0 - ENU (HKLM\...\{AA4A4B2C-0465-3CF8-BA76-27A027D8ACAB}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual Studio Tools for Applications 2.0 Runtime (HKLM\...\{299C0434-4F4E-341F-A916-4E07AEB35E79}) (Version: 9.0.30729 - Microsoft Corporation)
Might & Magic X Legacy (HKLM\...\Uplay Install 401) (Version: - Ubisoft)
Might & Magic: Clash of Heroes (HKLM\...\Steam App 61700) (Version: - Capybara Games)
Mozilla Firefox 41.0.2 (x86 cs) (HKLM\...\Mozilla Firefox 41.0.2 (x86 cs)) (Version: 41.0.2 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 45.4.0.6115 - Mozilla)
Mozilla Thunderbird 45.4.0 (x86 cs) (HKLM\...\Mozilla Thunderbird 45.4.0 (x86 cs)) (Version: 45.4.0 - Mozilla)
MSI to redistribute MS VS2005 CRT libraries (HKLM\...\{A8D93648-9F7F-407D-915C-62044644C3DA}) (Version: 8.0.50727.42 - The Firebird Project)
MSXML 4.0 SP2 (KB954430) (HKLM\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
MSXML 4.0 SP2 Parser and SDK (HKLM\...\{716E0306-8318-4364-8B8F-0CC4E9376BAC}) (Version: 4.20.9818.0 - Microsoft Corporation)
Notation Player 2.6.3 (HKLM\...\{61150C85-DC0A-4976-922F-5575F388ADA6}) (Version: 2.6.3 - Notation Software, Inc.)
NSIS Example2 (remove only) (HKLM\...\BS2) (Version: - )
NVIDIA PhysX (HKLM\...\{64467D47-FFE4-4FBC-ABBA-A0DB829A17EB}) (Version: 9.12.0613 - NVIDIA Corporation)
Oblivion (HKLM\...\{35CB6715-41F8-4F99-8881-6FC75BF054B0}) (Version: 1.00.0000 - Bethesda Softworks)
OpenAL (HKLM\...\OpenAL) (Version: - )
Opera 12.17 (HKLM\...\Opera 12.17.1863) (Version: 12.17.1863 - Opera Software ASA)
Opera Stable 41.0.2353.46 (HKLM\...\Opera 41.0.2353.46) (Version: 41.0.2353.46 - Opera Software)
Pinnacle TVCenter Pro (HKLM\...\{F38ADCA4-AF7C-4C73-9021-6F1EA15D15EA}) (Version: - )
PlayReady PC Runtime x86 (HKLM\...\{CCA5EAAD-92F4-4B7A-B5EE-14294C66AB61}) (Version: 1.3.0 - Microsoft Corporation)
QLandkarte GT (remove only) (HKU\S-1-5-21-2313541682-3982225299-4202079360-1000\...\QLandkarte GT) (Version: - )
rajče průvodce verze 1.59.40.255 (HKLM\...\rajče.net_is1) (Version: - rajče.net)
RFOnline Uninstall (HKLM\...\RFOnline) (Version: - OnNet EU)
Rise of the Tomb Raider (HKLM\...\{45F08513-973A-4C18-93FD-8E12B1908390}_is1) (Version: - Square Enix)
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{DE28B448-32E8-4E8F-84F0-A52B21A49B5B}) (Version: - Microsoft)
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM\...\{91140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUSR_{DE28B448-32E8-4E8F-84F0-A52B21A49B5B}) (Version: - Microsoft)
Seznam Software (HKU\S-1-5-21-2313541682-3982225299-4202079360-1000\...\SeznamInstall) (Version: - Seznam.cz)
Ship Simulator Extremes (HKLM\...\Steam App 48800) (Version: - VStep)
Ship Simulator Extremes Demo (HKLM\...\ShipSimExtremesDemo) (Version: - )
SichboPVR (HKU\S-1-5-21-2313541682-3982225299-4202079360-1000\...\7c6b090ee13ed70a) (Version: 3.0.0.158 - Sichbo Interactive)
Skype Click to Call (HKLM\...\{873F8E7C-10E6-449F-BD7E-5FBA7C8E1C9B}) (Version: 8.5.0.9167 - Microsoft Corporation)
Skype™ 7.0 (HKLM\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.0.102 - Skype Technologies S.A.)
Sophos Virus Removal Tool (HKLM\...\{B829E117-D072-41EA-9606-9826A38D34C1}) (Version: 2.5.6 - Sophos Limited)
SoundMAX (HKLM\...\{F0A37341-D692-11D4-A984-009027EC0A9C}) (Version: 6.10.1.6585 - Analog Devices)
Steam (HKLM\...\Steam) (Version: - Valve Corporation)
StrokeScribe 4.6.0.0 (x86 and x64) (HKLM\...\{640558C4-B442-4CD4-B6F0-DCA99EFD2117}_is1) (Version: - strokescribe.com)
StrokeScribe Office Addin x86 (HKLM\...\{A8A3338E-BE3F-42F0-9353-E5B4D459FE20}) (Version: 1.4 - StrokeScribe)
StrongDC++ 2.41 (HKLM\...\StrongDC++) (Version: 2.41 - Big Muscle)
Super Ovladač (HKLM\...\Super Ovladač_is1) (Version: 12.0 - Driver-Soft Inc.)
TeamViewer 9 (HKLM\...\TeamViewer 9) (Version: 9.0.41110 - TeamViewer)
Teta CEWE fotosvet (HKLM\...\Teta CEWE fotosvet) (Version: 6.0.5 - CEWE Stiftung u Co. KGaA)
The KMPlayer (remove only) (HKLM\...\The KMPlayer) (Version: 3.7.0.113 - KMP Media co., Ltd)
The Sims™ 4 (HKLM\...\{48EBEBBF-B9F8-4520-A3CF-89A730721917}) (Version: 1.0.732.20 - Electronic Arts Inc.)
The Witcher 2 (CZ) (HKLM\...\{F0A209B7-7F85-4BDD-8F1F-B98EEAD9E04B}) (Version: 1.00.0000 - CD Projekt Red)
Time Adjuster STANDARD 3.1 (HKU\S-1-5-21-2313541682-3982225299-4202079360-1000\...\TimeAdjuster) (Version: - IrekSoftware.com)
Tomb Raider (HKLM\...\Steam App 203160) (Version: - Crystal Dynamics)
Uplay (HKLM\...\Uplay) (Version: 17.1 - Ubisoft)
VideoConverter (HKLM\...\VideoConverter) (Version: - PerformerSoft LLC) <==== ATTENTION
VLC media player (HKLM\...\VLC media player) (Version: 2.2.4 - VideoLAN)
Windows Media Player Firefox Plugin (HKLM\...\{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}) (Version: 1.0.0.8 - Microsoft Corp)
WinRAR 4.01 (32-bit) (HKLM\...\WinRAR archiver) (Version: 4.01.0 - win.rar GmbH)
Wooky 3.0.0.7 (HKU\S-1-5-21-2313541682-3982225299-4202079360-1000\...\Wooky) (Version: 3.0.0.7 - Mobilbonus, s.r.o.)
WTV to AVI (HKLM\...\WTV2AVI) (Version: 1.7.3 - Dvrsoft)
Zoner Callisto 5 FREE (HKLM\...\ZonerCallisto5_CZ_is1) (Version: 5.0.5000.16 - ZONER software)
Zuma Deluxe! 1.0 (HKLM\...\Zuma_Deluxe!_1.0) (Version: - )

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-2313541682-3982225299-4202079360-1000_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\localserver32 -> C:\Users\klobje\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-2313541682-3982225299-4202079360-1000_Classes\CLSID\{018D5C66-4533-4307-9B53-224DE2ED1FE6}\InprocServer32 -> C:\WINDOWS\system32\shell32.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-2313541682-3982225299-4202079360-1000_Classes\CLSID\{022105BD-948A-40C9-AB42-A3300DDF097F}\localserver32 -> C:\Users\klobje\AppData\Local\Google\Update\GoogleUpdate.exe (Google Inc.)
CustomCLSID: HKU\S-1-5-21-2313541682-3982225299-4202079360-1000_Classes\CLSID\{22181302-A8A6-4F84-A541-E5CBFC70CC43}\localserver32 -> C:\Users\klobje\AppData\Local\Google\Update\1.3.31.5\GoogleUpdateOnDemand.exe (Google Inc.)
CustomCLSID: HKU\S-1-5-21-2313541682-3982225299-4202079360-1000_Classes\CLSID\{2F0E2680-9FF5-43C0-B76E-114A56E93598}\localserver32 -> C:\Users\klobje\AppData\Local\Google\Update\1.3.31.5\GoogleUpdateOnDemand.exe (Google Inc.)
CustomCLSID: HKU\S-1-5-21-2313541682-3982225299-4202079360-1000_Classes\CLSID\{3059C9E6-9EDC-4C89-933E-C65623F8FD60}\localserver32 -> C:\Users\klobje\AppData\Local\Dropbox\Update\DropboxUpdate.exe (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-2313541682-3982225299-4202079360-1000_Classes\CLSID\{444785F1-DE89-4295-863A-D46C3A781394}\InprocServer32 -> C:\Users\klobje\AppData\LocalLow\Unity\WebPlayer\loader\UnityWebPluginAX.ocx => No File
CustomCLSID: HKU\S-1-5-21-2313541682-3982225299-4202079360-1000_Classes\CLSID\{51F9E8EF-59D7-475B-A106-C7EA6F30C119}\localserver32 -> C:\Users\klobje\AppData\Local\Google\Update\1.3.31.5\GoogleUpdateOnDemand.exe (Google Inc.)
CustomCLSID: HKU\S-1-5-21-2313541682-3982225299-4202079360-1000_Classes\CLSID\{59B55F04-DE14-4BB8-92FF-C4A22EF2E5F4}\InprocServer32 -> C:\Users\klobje\AppData\Local\Google\Update\1.3.31.5\psuser.dll (Google Inc.)
CustomCLSID: HKU\S-1-5-21-2313541682-3982225299-4202079360-1000_Classes\CLSID\{8668f7c9-1827-4cbd-a770-3ecab265e14b}\InprocServer32 -> C:\WINDOWS\system32\dfshim.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-2313541682-3982225299-4202079360-1000_Classes\CLSID\{87DC457B-B35D-48AC-BD42-BDF35EF623CE}\localserver32 -> C:\Users\klobje\AppData\Local\Dropbox\Update\1.3.27.33\DropboxUpdateOnDemand.exe (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-2313541682-3982225299-4202079360-1000_Classes\CLSID\{9FAA38ED-5635-44F7-9BE0-8CAFE29B3783}\localserver32 -> C:\Users\klobje\AppData\Local\Dropbox\Update\1.3.27.33\DropboxUpdateOnDemand.exe (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-2313541682-3982225299-4202079360-1000_Classes\CLSID\{C0DD324D-A74F-4533-84AD-030F76771C77}\localserver32 -> C:\Users\klobje\AppData\Local\Dropbox\Update\1.3.27.33\DropboxUpdateOnDemand.exe (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-2313541682-3982225299-4202079360-1000_Classes\CLSID\{C32E3EEC-3C10-426E-95F3-38C7F139FADD}\localserver32 -> C:\Users\klobje\AppData\Local\Dropbox\Update\1.3.27.33\DropboxUpdateOnDemand.exe (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-2313541682-3982225299-4202079360-1000_Classes\CLSID\{E31EA727-12ED-4702-820C-4B6445F28E1A}\InprocServer32 -> C:\WINDOWS\system32\shell32.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-2313541682-3982225299-4202079360-1000_Classes\CLSID\{E31EA727-12ED-4702-820C-4B6445F28E1B}\InprocServer32 -> C:\WINDOWS\system32\shell32.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-2313541682-3982225299-4202079360-1000_Classes\CLSID\{E67BE843-BBBE-4484-95FB-05271AE86750}\localserver32 -> C:\Users\klobje\AppData\Local\Google\Update\1.3.31.5\GoogleUpdateOnDemand.exe (Google Inc.)
CustomCLSID: HKU\S-1-5-21-2313541682-3982225299-4202079360-1000_Classes\CLSID\{E7A37920-253C-4FF1-B169-298A7CE6CAA9}\localserver32 -> C:\Users\klobje\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-2313541682-3982225299-4202079360-1000_Classes\CLSID\{E8CF3E55-F919-49D9-ABC0-948E6CB34B9F}\InprocServer32 -> C:\Users\klobje\AppData\Local\Google\Update\1.3.31.5\psuser.dll (Google Inc.)

==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {033753BE-5C69-49CB-A949-FA38C8F4D271} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> No File <==== ATTENTION
Task: {064A7CCB-4610-43DE-9BCA-81AB96E8DCD4} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-2313541682-3982225299-4202079360-1000UA => C:\Users\klobje\AppData\Local\Google\Update\GoogleUpdate.exe [2015-08-30] (Google Inc.)
Task: {079B4107-5BA0-4ECE-9C24-3ED4095C91E4} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe
Task: {0897BB32-751C-485E-A76B-3A96EA6DC3A6} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-2313541682-3982225299-4202079360-1000Core => C:\Users\klobje\AppData\Local\Google\Update\GoogleUpdate.exe [2015-08-30] (Google Inc.)
Task: {0A220FF9-275E-4955-8666-AE707A942A46} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> No File <==== ATTENTION
Task: {0DD1624F-BD8F-4195-9683-6E19F392907E} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\Program Files\Windows Defender\\MpCmdRun.exe [2016-07-16] (Microsoft Corporation)
Task: {169E19F0-C3B1-4BC8-B7DF-6045CE2A6361} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\Program Files\Windows Defender\\MpCmdRun.exe [2016-07-16] (Microsoft Corporation)
Task: {1E4FB35B-B0B5-4A20-BD6A-72CE3BDCB17C} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> No File <==== ATTENTION
Task: {1FC930D0-6728-4678-B0B0-56D21F2299B2} - System32\Tasks\AdobeAAMUpdater-1.0-klobje-PC-klobje => C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2010-03-06] (Adobe Systems Incorporated)
Task: {26663278-9344-42B5-9941-C3AA0FD38FC8} - System32\Tasks\Microsoft\Windows\Media Center\UpdateRecordPath => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {2A638B2D-D23D-4FB5-BBE3-DFC5D210DF7C} - \Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeTime -> No File <==== ATTENTION
Task: {2D479BDB-ED51-4AA0-83E3-415EFC03447E} - \Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeReminderTime -> No File <==== ATTENTION
Task: {30B7E955-1CB3-465F-B7EF-FC0172675147} - System32\Tasks\Microsoft\Windows\Media Center\RecordingRestart => C:\WINDOWS\ehome\ehrec.exe
Task: {3606541A-F6D9-4895-9801-3FF62EB230C7} - System32\Tasks\SidebarExecute => C:\Program Files\Windows Sidebar\sidebar.exe
Task: {37CDFA7C-F3E3-499F-B9B8-9EBA70E699EA} - System32\Tasks\Opera scheduled Autoupdate 1444577072 => C:\Program Files\Opera\launcher.exe [2016-10-24] (Opera Software)
Task: {3CC51E1C-8662-46A7-ADBE-4FD1B1F590F8} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> No File <==== ATTENTION
Task: {3FBBADD2-9FD3-41E7-AB59-C12983E14828} - System32\Tasks\Microsoft\Windows\Media Center\OCURDiscovery => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {414F207A-D9DC-4560-98F9-F544827A886D} - System32\Tasks\Microsoft\Windows\Media Center\ObjectStoreRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe
Task: {42571365-29B4-45DA-AB4E-A19B343F5BF6} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> No File <==== ATTENTION
Task: {438B5AE1-6C52-44F2-A6E2-4844443B1182} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> No File <==== ATTENTION
Task: {4F6AB9B5-2704-4977-83A5-96B90E0CB7B1} - System32\Tasks\Microsoft\Windows\Media Center\SqlLiteRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe
Task: {584C0261-4964-4E4D-BB85-F499A871A27A} - System32\Tasks\Microsoft\Windows\Media Center\MediaCenterRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe
Task: {5CC731FE-DB2D-43FC-9907-6F79B8EEA688} - System32\Tasks\Microsoft\Windows\Media Center\ActivateWindowsSearch => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {6084637B-49BD-4965-92CA-89479A4C228A} - System32\Tasks\AutoKMS => C:\Windows\AutoKMS.exe
Task: {61474097-6B0D-48F8-817B-1AEF42C4CD72} - System32\Tasks\Microsoft\Windows\Media Center\StartRecording => C:\WINDOWS\ehome\ehrec.exe
Task: {6194B494-E266-412E-B66C-8349E5399964} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\Program Files\Windows Defender\\MpCmdRun.exe [2016-07-16] (Microsoft Corporation)
Task: {6699C601-9257-4F50-977A-8C4AD547E7F1} - System32\Tasks\Microsoft\Windows\Media Center\OCURActivate => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {6A0BFC91-E584-4DAF-90A9-CF7945FB197D} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> No File <==== ATTENTION
Task: {6D52F425-EB07-4111-A710-393EF9941171} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> No File <==== ATTENTION
Task: {6E598E2B-85A9-4ECC-AA03-01CDF534AA63} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate_scheduled => C:\WINDOWS\ehome\mcupdate.exe
Task: {6E967375-8805-439B-A064-3CA10409B573} - System32\Tasks\Microsoft\Windows\Media Center\ehDRMInit => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {7F8F78F3-A301-41C4-9AD6-6049BC52D531} - System32\Tasks\Microsoft\Windows\Media Center\InstallPlayReady => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {805CD6C4-FD5F-4B71-9404-3CACC60759EF} - System32\Tasks\Microsoft\Windows\Media Center\DispatchRecoveryTasks => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {859304A7-8D9E-4A2A-AC76-6BA765EA42C8} - System32\Tasks\{3A2F6D76-5C32-4038-8789-DD920931EE70} => pcalua.exe -a F:\TagesSetup.exe -d F:\
Task: {866083D9-EB1B-40BD-80B8-44571D446584} - System32\Tasks\Microsoft\Windows\Media Center\PvrScheduleTask => C:\WINDOWS\ehome\mcupdate.exe
Task: {8CD7E643-08EA-48B6-8636-DA8079FB705D} - System32\Tasks\Microsoft\Windows\Media Center\PvrRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe
Task: {93F8D404-A203-454E-BC51-207050E6C200} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2016-10-30] (Adobe Systems Incorporated)
Task: {9A8CEF41-03FD-4938-A1DC-463A6A357AE9} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2016-09-16] (Adobe Systems Incorporated)
Task: {9E71E3AD-48CC-4C37-B883-60C8FCDB9745} - System32\Tasks\Adobe Flash Player PPAPI Notifier => C:\WINDOWS\system32\Macromed\Flash\FlashUtil32_23_0_0_205_pepper.exe [2016-10-30] (Adobe Systems Incorporated)
Task: {9EF03D84-AFB7-42CC-B455-FC6F6A836404} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW1 => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {A4191C13-9D4C-45BA-A7DC-6D992A007BBC} - \CCleanerSkipUAC -> No File <==== ATTENTION
Task: {A547FFEE-E612-476B-94D8-C940C52A9B5B} - System32\Tasks\CreateChoiceProcessTask => C:\Windows\System32\browserchoice.exe
Task: {A5900F9E-4008-4C56-BD5C-57C98C40A8EA} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\Program Files\Windows Defender\\MpCmdRun.exe [2016-07-16] (Microsoft Corporation)
Task: {A97F7164-705F-4731-9A2D-1F264405F911} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate => C:\WINDOWS\ehome\mcupdate.exe
Task: {AC3FE102-2342-4D87-BC0A-C4F66F935A7B} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe [2015-08-28] (Google Inc.)
Task: {AD138B4F-3FC7-4AA9-9FB2-A1717678C235} - System32\Tasks\Microsoft\Windows\Media Center\PeriodicScanRetry => C:\WINDOWS\ehome\MCUpdate.exe
Task: {B2CF3607-AE5A-4250-85D6-65E60CCFA66C} - System32\Tasks\Microsoft\Windows\Media Center\ReindexSearchRoot => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {BF93C6A7-0A36-42C5-8EE5-B8EC517E73E7} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe [2015-08-28] (Google Inc.)
Task: {C15887CF-235C-4E36-9C44-F11FAB5C9001} - System32\Tasks\Microsoft\Windows\Media Center\ConfigureInternetTimeService => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {C21736CD-7041-4DF0-B6B2-48D647F8B45C} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> No File <==== ATTENTION
Task: {C874584C-4050-407F-9755-2D2ECF2BC961} - System32\Tasks\{57234FEC-8A57-4C1D-B179-AB7B370FD69D} => pcalua.exe -a D:\install\kotor2_install_cz.exe -d D:\install
Task: {D2996360-3D6E-435B-8D66-8527686E1E39} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscovery => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {D3F60171-9550-4750-B702-21E7B7D1985C} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW2 => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {D9C805F7-98BF-4ED8-A6A0-C95B891A5E54} - System32\Tasks\{9B3EB42A-FCCC-4F3D-8C66-FD7F29EC9D12} => pcalua.exe -a L:\Autorun.exe -d L:\
Task: {DA2F37ED-F707-4990-AC1C-0D3ABA2BDBF7} - System32\Tasks\DropboxUpdateTaskUserS-1-5-21-2313541682-3982225299-4202079360-1000UA => C:\Users\klobje\AppData\Local\Dropbox\Update\DropboxUpdate.exe [2015-06-16] (Dropbox, Inc.)
Task: {DCC8100B-1AA4-4182-97AB-6B752FB3FF23} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> No File <==== ATTENTION
Task: {E5AF1EC0-38E7-4622-9AC7-B7D731B01C01} - System32\Tasks\DropboxUpdateTaskUserS-1-5-21-2313541682-3982225299-4202079360-1000Core => C:\Users\klobje\AppData\Local\Dropbox\Update\DropboxUpdate.exe [2015-06-16] (Dropbox, Inc.)
Task: {ECC375B3-1131-41C0-ADFC-A1AB23825F83} - System32\Tasks\Microsoft\Windows\Media Center\RegisterSearch => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {F2551C8C-7349-40E1-B944-799E88CED351} - \OfficeSoftwareProtectionPlatform\SvcRestartTask -> No File <==== ATTENTION
Task: {FE37FC63-4650-4EE6-85D6-772CDFDD9151} - \Go for FilesUpdate -> No File <==== ATTENTION

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\WINDOWS\Tasks\Adobe Flash Player PPAPI Notifier.job => C:\WINDOWS\system32\Macromed\Flash\FlashUtil32_23_0_0_205_pepper.exe
Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\WINDOWS\Tasks\AutoKMS.job => C:\Windows\AutoKMS.exe
Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe
Task: C:\WINDOWS\Tasks\DropboxUpdateTaskUserS-1-5-21-2313541682-3982225299-4202079360-1000Core.job => C:\Users\klobje\AppData\Local\Dropbox\Update\DropboxUpdate.exe
Task: C:\WINDOWS\Tasks\DropboxUpdateTaskUserS-1-5-21-2313541682-3982225299-4202079360-1000UA.job => C:\Users\klobje\AppData\Local\Dropbox\Update\DropboxUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-2313541682-3982225299-4202079360-1000Core.job => C:\Users\klobje\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-2313541682-3982225299-4202079360-1000UA.job => C:\Users\klobje\AppData\Local\Google\Update\GoogleUpdate.exe

==================== Shortcuts =============================

(The entries could be listed to be restored or removed.)

Shortcut: C:\Users\klobje\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WTV to AVI\Website.lnk -> hxxp://www.dvr-ms.com/

ShortcutWithArgument: C:\Users\klobje\AppData\Local\Google\Chrome\User Data\Spouštěč aplikací Chrome.lnk -> C:\Users\klobje\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.) -> --show-app-list
ShortcutWithArgument: C:\Users\klobje\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome\Spouštěč aplikací Chrome.lnk -> C:\Users\klobje\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.) -> --show-app-list
ShortcutWithArgument: C:\Users\klobje\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplikace Chrome\Youtube & Facebook Video Downloader.lnk -> C:\Users\klobje\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.) -> --profile-directory=Default --app-id=hpnmapiffopdglhkhphfeonoglomkmmh

==================== Loaded Modules (Whitelisted) ==============

2016-07-16 09:25 - 2016-07-16 09:25 - 00190976 _____ () C:\WINDOWS\SYSTEM32\ism32k.dll
2016-10-11 16:50 - 2016-09-15 18:32 - 02048496 _____ () C:\WINDOWS\system32\CoreUIComponents.dll
2016-10-11 16:50 - 2016-09-15 18:32 - 02048496 _____ () C:\WINDOWS\SYSTEM32\CoreUIComponents.dll
2016-10-11 12:55 - 2016-10-11 12:55 - 01383616 _____ () C:\Users\klobje\AppData\Local\Microsoft\OneDrive\17.3.6517.0809_1\ClientTelemetry.dll
2011-11-28 15:08 - 2011-05-28 22:04 - 00140288 _____ () C:\Program Files\WinRAR\rarext.dll
2016-07-16 09:25 - 2016-07-16 09:25 - 00108032 _____ () C:\Windows\ShellExperiences\Windows.UI.Shell.SharedUtilities.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 00321536 _____ () C:\Windows\ShellExperiences\QuickActions.dll
2016-10-28 07:33 - 2016-10-15 04:39 - 06726656 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll
2016-10-28 07:33 - 2016-10-15 04:35 - 01149440 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
2016-10-11 08:07 - 2016-10-11 08:07 - 00526848 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CSGSuggestLib.dll
2016-10-28 07:33 - 2016-10-15 04:35 - 01724928 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll
2016-10-28 07:33 - 2016-10-15 04:37 - 03158528 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll
2011-07-28 17:11 - 2011-07-28 17:11 - 00090112 _____ () C:\Program Files\ATI Technologies\HydraVision\HydraCsy.dll
2016-10-11 12:55 - 2016-10-11 12:55 - 00118976 _____ () C:\Users\klobje\AppData\Local\Microsoft\OneDrive\17.3.6517.0809_1\FileSyncViews.dll
2016-11-07 09:51 - 2016-11-07 09:51 - 00062464 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.9.251.0_x86__kzf8qxf38zg5c\SkypeHost.exe
2016-11-07 09:51 - 2016-11-07 09:51 - 00151552 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.9.251.0_x86__kzf8qxf38zg5c\SkypeBackgroundTasks.dll
2016-11-07 09:51 - 2016-11-07 09:51 - 29914112 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.9.251.0_x86__kzf8qxf38zg5c\SkyWrap.dll
2016-10-11 16:49 - 2016-09-15 18:42 - 02261856 _____ () C:\Windows\SystemApps\Microsoft.Windows.ContentDeliveryManager_cw5n1h2txyewy\ContentDeliveryManager.Background.dll
2016-07-16 09:26 - 2016-07-16 18:04 - 01486688 _____ () C:\Windows\SystemApps\Microsoft.Windows.ContentDeliveryManager_cw5n1h2txyewy\ContentManagementSDK.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)

AlternateDataStreams: C:\ProgramData\Temp:F8F070C2 [144]

==================== Safe Mode (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" value will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SCT_SKMScan => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\SCT_SKMScan => ""="Service"

==================== Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)


==================== Hosts content: ===============================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2009-07-14 03:04 - 2016-11-07 14:20 - 00000753 ____A C:\WINDOWS\system32\Drivers\etc\hosts


127.0.0.1 localhost

==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-2313541682-3982225299-4202079360-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\klobje\AppData\Local\Microsoft\Windows\Themes\img2.jpg
DNS Servers: 213.46.172.37 - 213.46.172.36
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==


==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139
FirewallRules: [MSMQ-In-TCP] => (Allow) %systemroot%\system32\mqsvc.exe
FirewallRules: [MSMQ-Out-TCP] => (Allow) %systemroot%\system32\mqsvc.exe
FirewallRules: [MSMQ-In-UDP] => (Allow) %systemroot%\system32\mqsvc.exe
FirewallRules: [MSMQ-Out-UDP] => (Allow) %systemroot%\system32\mqsvc.exe
FirewallRules: [WCF-NetTcpActivator-In-TCP-32bit] => (Allow) LPort=808
FirewallRules: [{6AB631FC-1383-4B1A-8FFC-30365F8CF7D1}] => (Allow) D:\Hry\SteamLibrary\steamapps\common\Ship Simulator Extremes\Steam.exe
FirewallRules: [{4382AF7A-30FE-4CC8-8EA3-436572E7CDC1}] => (Allow) D:\Hry\SteamLibrary\steamapps\common\Ship Simulator Extremes\Steam.exe
FirewallRules: [UDP Query User{DD855CBE-1AF0-45D6-800E-3785C2DCA865}D:\hry\hearthstone\hearthstone\hearthstone.exe] => (Allow) D:\hry\hearthstone\hearthstone\hearthstone.exe
FirewallRules: [TCP Query User{FC2DA358-FD83-4DE6-A0CD-913003FAADBC}D:\hry\hearthstone\hearthstone\hearthstone.exe] => (Allow) D:\hry\hearthstone\hearthstone\hearthstone.exe
FirewallRules: [{FFE2E0B0-C42E-4A23-9830-FC05127EE770}] => (Allow) D:\Hry\M&MX\Might & Magic® X Legacy\Might and Magic X Legacy.exe
FirewallRules: [{8491A929-6ACA-402B-A3E9-5B15326728F8}] => (Allow) C:\Program Files\Opera\opera.exe
FirewallRules: [{D2B4534E-C923-4D50-8262-ADB78410392B}] => (Allow) C:\Program Files\Opera\opera.exe
FirewallRules: [TCP Query User{B62EC92A-E8B1-4E69-845C-CBD0018BB3D8}C:\program files\strongdc++\strongdc.exe] => (Allow) C:\program files\strongdc++\strongdc.exe
FirewallRules: [UDP Query User{F6F32E76-3E73-4775-9D5F-2683FF32A86C}C:\program files\strongdc++\strongdc.exe] => (Allow) C:\program files\strongdc++\strongdc.exe
FirewallRules: [TCP Query User{C6E60A1F-634B-47A2-9BFA-2AC9FE3CC457}C:\program files\opera\opera.exe] => (Allow) C:\program files\opera\opera.exe
FirewallRules: [UDP Query User{5F61CD57-18E6-4771-8A8D-303B7CAAD49C}C:\program files\opera\opera.exe] => (Allow) C:\program files\opera\opera.exe
FirewallRules: [TCP Query User{B05B6775-5C2C-4463-A03A-D46FF7E0DF2D}C:\program files\icq7.7\icq.exe] => (Allow) C:\program files\icq7.7\icq.exe
FirewallRules: [UDP Query User{A856F608-03B0-42ED-BF7F-6F162586053B}C:\program files\icq7.7\icq.exe] => (Allow) C:\program files\icq7.7\icq.exe
FirewallRules: [TCP Query User{7B8E06D6-2394-4AED-A669-904B5B866BC5}C:\program files\icq7.7\icq.exe] => (Allow) C:\program files\icq7.7\icq.exe
FirewallRules: [UDP Query User{175AB22C-670C-482C-83A0-E5B484340D20}C:\program files\icq7.7\icq.exe] => (Allow) C:\program files\icq7.7\icq.exe
FirewallRules: [TCP Query User{56D543F2-0FA7-4AE4-B317-ADC894E8483E}C:\program files\strongdc++\strongdc.exe] => (Allow) C:\program files\strongdc++\strongdc.exe
FirewallRules: [UDP Query User{F075D0BA-EF06-4E96-9B1A-CF1CB37F5282}C:\program files\strongdc++\strongdc.exe] => (Allow) C:\program files\strongdc++\strongdc.exe
FirewallRules: [{80D4BF54-F51E-41D1-B0D1-ECBD77AA53DF}] => (Allow) C:\Program Files\Cyanide\GameCenter\GameCenter.exe
FirewallRules: [{36055F22-AC94-442F-A28B-4F968A0E965C}] => (Allow) C:\Program Files\Cyanide\GameCenter\GameCenter.exe
FirewallRules: [TCP Query User{E6DAE196-D5B7-46E9-84A3-312F3470A34A}C:\program files\mozilla firefox\plugin-container.exe] => (Allow) C:\program files\mozilla firefox\plugin-container.exe
FirewallRules: [UDP Query User{13873BD7-A0B8-4416-BCDC-1445C44B08F1}C:\program files\mozilla firefox\plugin-container.exe] => (Allow) C:\program files\mozilla firefox\plugin-container.exe
FirewallRules: [{AD0953EB-5D03-4E0E-BB0F-B46C4CE473B6}] => (Allow) C:\Windows\System32\msiexec.exe
FirewallRules: [{24909D5D-EF32-4E3C-B5C2-35F1B137CB54}] => (Allow) C:\Windows\System32\msiexec.exe
FirewallRules: [TCP Query User{FB9C13D7-F262-44DA-89E5-1FEBDE128677}C:\Program Files\bethesda softworks\dishonored\Binaries\Win32\dishonored.exe] => (Block) C:\Program Files\bethesda softworks\dishonored\Binaries\Win32\dishonored.exe
FirewallRules: [UDP Query User{C0DF3434-130B-4630-9B23-A2D1625A0E2F}C:\Program Files\bethesda softworks\dishonored\Binaries\Win32\dishonored.exe] => (Block) C:\Program Files\bethesda softworks\dishonored\Binaries\Win32\dishonored.exe
FirewallRules: [{9E43A2D2-AEF8-4624-9E29-675480ECF7B4}] => (Allow) LPort=1900
FirewallRules: [{CDE9D5DC-3DDF-470A-A307-7B7C3A2084EE}] => (Allow) LPort=2869
FirewallRules: [{4E66ACB6-AFC8-4566-B825-68BB04AD5A97}] => (Allow) C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
FirewallRules: [TCP Query User{3C7366EB-1CC8-4B4A-A674-5DFFD7FE4C13}C:\program files\the witcher 2 (cz)\bin\witcher2.exe] => (Allow) C:\program files\the witcher 2 (cz)\bin\witcher2.exe
FirewallRules: [UDP Query User{F02680C7-68F4-49C1-B2FD-625D69737320}C:\program files\the witcher 2 (cz)\bin\witcher2.exe] => (Allow) C:\program files\the witcher 2 (cz)\bin\witcher2.exe
FirewallRules: [TCP Query User{DEA53D7B-F549-4FCC-9039-CCC06A46975A}C:\program files\saints row iv\saintsrowiv.exe] => (Block) C:\program files\saints row iv\saintsrowiv.exe
FirewallRules: [UDP Query User{ACADACDE-B991-4B52-8EC7-8A74E2BCCF6F}C:\program files\saints row iv\saintsrowiv.exe] => (Block) C:\program files\saints row iv\saintsrowiv.exe
FirewallRules: [{EF3F87E9-55AD-46FE-AB93-4B5E32095191}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe
FirewallRules: [{7E13A9A0-4BF5-4BA6-B524-948945837145}] => (Allow) C:\Program Files\Steam\Steam.exe
FirewallRules: [{438C7201-90B0-4C1F-B779-1F4844D5C674}] => (Allow) C:\Program Files\Steam\Steam.exe
FirewallRules: [{CA41ABE2-1EDA-474E-A19A-FD6F324B531B}] => (Allow) C:\Program Files\Axence\NetTools\5\NetTools.exe
FirewallRules: [{8E4AC31C-C5EB-4490-BB10-C84D7512CFE3}] => (Allow) C:\Program Files\Axence\NetTools\5\NetTools.exe
FirewallRules: [{0D5EDA51-28C6-4D5B-8681-A76BC295DF36}] => (Allow) C:\Users\klobje\AppData\Roaming\Dropbox\bin\Dropbox.exe
FirewallRules: [{D6AA40A2-0854-40FB-843E-484E29EB320E}] => (Allow) C:\Users\klobje\AppData\Roaming\Dropbox\bin\Dropbox.exe
FirewallRules: [{7F1BD272-6E26-4CF3-9BE9-A6F89C935A1F}] => (Allow) C:\Users\klobje\AppData\Roaming\Dropbox\bin\Dropbox.exe
FirewallRules: [{6F4DBEE7-C14D-43B5-A18B-60978624E810}] => (Allow) C:\Users\klobje\AppData\Roaming\Dropbox\bin\Dropbox.exe
FirewallRules: [{15DD95A5-CB79-429E-BAC3-2ADE07FAD665}] => (Allow) C:\Users\klobje\Desktop\Minecraft Launcher.exe
FirewallRules: [{623EA273-3710-40F9-A185-AB9DBD67C963}] => (Allow) C:\Users\klobje\Desktop\Minecraft Launcher.exe
FirewallRules: [{04EFBFDB-A627-4B9A-9209-629B66F624A7}] => (Allow) C:\Users\klobje\Desktop\Minecraft Launcher.exe
FirewallRules: [{1A84F0E4-CEE7-4350-B8D0-FDFC3F4D3550}] => (Allow) C:\Users\klobje\Desktop\Minecraft Launcher.exe
FirewallRules: [TCP Query User{5BBAA583-0DF1-4E5E-9A68-C8DCBAE6D07D}D:\hry\goat simulator\binaries\win32\goatgame-win32-shipping.exe] => (Block) D:\hry\goat simulator\binaries\win32\goatgame-win32-shipping.exe
FirewallRules: [UDP Query User{D16474CB-DC8E-470B-B896-8C2CD9DCC3DC}D:\hry\goat simulator\binaries\win32\goatgame-win32-shipping.exe] => (Block) D:\hry\goat simulator\binaries\win32\goatgame-win32-shipping.exe
FirewallRules: [TCP Query User{B88816ED-FAAB-424F-A39A-E3D69C771742}C:\program files\java\jre1.8.0_25\bin\javaw.exe] => (Block) C:\program files\java\jre1.8.0_25\bin\javaw.exe
FirewallRules: [UDP Query User{ADCA812D-C322-4511-BD8A-274153C00199}C:\program files\java\jre1.8.0_25\bin\javaw.exe] => (Block) C:\program files\java\jre1.8.0_25\bin\javaw.exe
FirewallRules: [{FA69E4A1-37D0-495C-AF7E-D23155A8E47B}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe
FirewallRules: [{AB519D38-3625-4195-8397-19D2487C08B2}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe
FirewallRules: [{67936A1B-3843-45DF-A232-0992A5084AC1}] => (Allow) C:\Program Files\TeamViewer\Version9\TeamViewer.exe
FirewallRules: [{6AE0A1F5-5A08-4684-9919-E82DC8D0C22D}] => (Allow) C:\Program Files\TeamViewer\Version9\TeamViewer.exe
FirewallRules: [{9E1801E7-FBE0-4891-A1F7-312F9FA0527F}] => (Allow) C:\Program Files\TeamViewer\Version9\TeamViewer_Service.exe
FirewallRules: [{58201573-6411-43A8-ADB1-B5E668711FBA}] => (Allow) C:\Program Files\TeamViewer\Version9\TeamViewer_Service.exe
FirewallRules: [{D0388226-31E2-4FA0-A128-E6D4A684441F}] => (Allow) D:\Hry\SteamLibrary\steamapps\common\Alan Wake\AlanWake.exe
FirewallRules: [{34C29F3A-3856-4014-8410-B21A732D432F}] => (Allow) D:\Hry\SteamLibrary\steamapps\common\Alan Wake\AlanWake.exe
FirewallRules: [{DFB7F3F0-9363-4E1D-AF3B-2CA10EA69C91}] => (Allow) D:\Hry\SteamLibrary\steamapps\common\Tomb Raider\TombRaider.exe
FirewallRules: [{165E8D3E-0CE8-43CD-B4DC-687E95C1C0DA}] => (Allow) D:\Hry\SteamLibrary\steamapps\common\Tomb Raider\TombRaider.exe
FirewallRules: [{BE8563F3-EA86-4262-BFAD-605A6830089D}] => (Allow) D:\Hry\SteamLibrary\steamapps\common\GoatSimulator\Binaries\Win32\GoatGame-Win32-Shipping.exe
FirewallRules: [{43F0C7E9-18EF-462E-BE54-9A4F012A4C2F}] => (Allow) D:\Hry\SteamLibrary\steamapps\common\GoatSimulator\Binaries\Win32\GoatGame-Win32-Shipping.exe
FirewallRules: [{D9C91B61-2D2C-461E-B4A1-436706C3DBC2}] => (Allow) D:\Hry\SteamLibrary\steamapps\common\Might and Magic Clash of Heroes\ClashOfHeroes.exe
FirewallRules: [{48301AEA-BF9C-4632-8D98-FC6D290B6036}] => (Allow) D:\Hry\SteamLibrary\steamapps\common\Might and Magic Clash of Heroes\ClashOfHeroes.exe
FirewallRules: [{A2155FC7-7523-42B7-BF9C-09EA4A075D9A}] => (Allow) C:\Program Files\Hry.cz\Adventure Chronicles The Search for Lost Treasures\AdventureChronicles.exe
FirewallRules: [TCP Query User{F0ED918E-E839-4CD8-9670-155F785A7E79}C:\program files\the witcher 2 (cz)\bin\witcher2.exe] => (Allow) C:\program files\the witcher 2 (cz)\bin\witcher2.exe
FirewallRules: [UDP Query User{E57B9133-A318-4FCE-A76B-3B91BD1C3EBF}C:\program files\the witcher 2 (cz)\bin\witcher2.exe] => (Allow) C:\program files\the witcher 2 (cz)\bin\witcher2.exe
FirewallRules: [{D21AA19A-D9A7-4E88-A894-193200396E50}] => (Allow) G:\HRY\The Sims 4\Game\Bin\TS4.exe
FirewallRules: [{E3235788-F227-479F-9060-C2170E5E1E09}] => (Allow) G:\HRY\The Sims 4\Game\Bin\TS4.exe

==================== Restore Points =========================

07-11-2016 14:20:02 zoek.exe restore point

==================== Faulty Device Manager Devices =============

Name: Standardní klávesnice PS/2
Description: Standardní klávesnice PS/2
Class Guid: {4d36e96b-e325-11ce-bfc1-08002be10318}
Manufacturer: (Standardní klávesnice)
Service: i8042prt
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.


==================== Event log errors: =========================

Application errors:
==================
Error: (11/07/2016 04:38:48 PM) (Source: BstHdAndroidSvc) (EventID: 0) (User: )
Description: Službu nelze spustit. System.ApplicationException: Cannot start service. Service did not stop gracefully the last time it was run.
v BlueStacks.hyperDroid.Service.Service.OnStart(String[] args)
v System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state)

Error: (11/07/2016 02:20:10 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: )
Description: Služba Šifrování selhala při volání OnIdentity() v objektu System Writer.

Details:
AddLegacyDriverFiles: Unable to back up image of binary Protokol Microsoft LLDP (Link-Layer Discovery Protocol).

System Error:
Přístup byl odepřen.
.

Error: (11/07/2016 01:48:29 PM) (Source: BstHdAndroidSvc) (EventID: 0) (User: )
Description: Službu nelze spustit. System.ApplicationException: Cannot start service. Service did not stop gracefully the last time it was run.
v BlueStacks.hyperDroid.Service.Service.OnStart(String[] args)
v System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state)

Error: (11/07/2016 09:45:17 AM) (Source: Windows Search Service) (EventID: 3104) (User: )
Description: Vytvoření výčtu relací uživatelů pro generování fondů filtrů se nezdařilo.

Podrobnosti:
(HRESULT : 0x80040210) (0x80040210)

Error: (11/06/2016 04:24:12 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: Moded Sinking Simulator.exe, verze: 0.0.0.0, časové razítko: 0x519fd8da
Název chybujícího modulu: Moded Sinking Simulator.exe, verze: 0.0.0.0, časové razítko: 0x519fd8da
Kód výjimky: 0xc0000005
Posun chyby: 0x00006ce3
ID chybujícího procesu: 0x1514
Čas spuštění chybující aplikace: 0x01d238191493138f
Cesta k chybující aplikaci: D:\Tučňáci z Madagaskaru cz 102dílů\pán času\Modded Sinking Simulator by Colbz0527\Moded Sinking Simulator.exe
Cesta k chybujícímu modulu: D:\Tučňáci z Madagaskaru cz 102dílů\pán času\Modded Sinking Simulator by Colbz0527\Moded Sinking Simulator.exe
ID zprávy: 3435cd72-8974-4b3c-bba2-f417b5014e27
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:

Error: (11/06/2016 11:34:27 AM) (Source: Steam Client Service) (EventID: 1) (User: )
Description: Error: Failed to add firewall exception for C:\Program Files\Steam\bin\steamwebhelper.exe

Error: (11/06/2016 09:14:56 AM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program QuestViewer.exe verze 0.0.0.0 přestal spolupracovat se systémem Windows a byl ukončen. Chcete-li zjistit, zda je k dispozici více informací o tomto problému, vyhledejte historii problému v ovládacím panelu Zabezpečení a údržba.

ID procesu: 29fc

Čas spuštění: 01d237f9f56c5893

Čas ukončení: 7

Cesta k aplikaci: D:\Hry\SteamLibrary\steamapps\common\Ship Simulator Extremes\QuestViewer.exe

ID hlášení: 170af644-a3f9-11e6-ab27-f8d1110247c5

Úplný název balíčku s chybou:

ID aplikace související s balíčkem s chybou:

Error: (11/06/2016 07:48:08 AM) (Source: Steam Client Service) (EventID: 1) (User: )
Description: Error: Failed to add firewall exception for C:\Program Files\Steam\bin\steamwebhelper.exe

Error: (11/06/2016 05:27:59 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: wmiprvse.exe, verze: 10.0.14393.0, časové razítko: 0x57898ff5
Název chybujícího modulu: ntdll.dll, verze: 10.0.14393.351, časové razítko: 0x5801a3a8
Kód výjimky: 0xc0000374
Posun chyby: 0x000ed9ac
ID chybujícího procesu: 0x464
Čas spuštění chybující aplikace: 0x01d237e5296185a8
Cesta k chybující aplikaci: C:\WINDOWS\system32\wbem\wmiprvse.exe
Cesta k chybujícímu modulu: C:\WINDOWS\SYSTEM32\ntdll.dll
ID zprávy: de4d0cdb-db04-41e5-878a-b81fd955addc
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:

Error: (11/06/2016 05:27:49 AM) (Source: Microsoft Security Client) (EventID: 2002) (User: )
Description: Event-ID 2002


System errors:
=============
Error: (11/07/2016 04:42:39 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: Nastavení oprávnění specifické pro aplikaci neuděluje oprávnění Místní Aktivace pro serverovou aplikaci COM s identifikátorem CLSID
{8D8F4F83-3594-4F07-8369-FC3C3CAE4919}
a APPID
{F72671A9-012C-4725-9D2F-2A4D32D65169}
uživateli NT AUTHORITY\SYSTEM (SID: S-1-5-18) z adresy LocalHost (pomocí LRPC) běžící v kontejneru aplikací Není k dispozici – SID (Není k dispozici). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.

Error: (11/07/2016 04:38:48 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Služba BstHdAndroidSvc byla ukončena s následující chybou:
Při obsluze řídicí žádosti došlo ve službě k výjimce.

Error: (11/07/2016 04:38:48 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: Služba NetTcpActivator závisí na službě NetTcpPortSharing, která neuspěla při spuštění v důsledku následující chyby:
Zvolenou službu nelze spustit, protože není povolena nebo s ní není spojeno žádné povolené zařízení.

Error: (11/07/2016 04:23:37 PM) (Source: Service Control Manager) (EventID: 7011) (User: )
Description: Při čekání na odezvu transakce služby TeamViewer9 bylo dosaženo časového limitu (30000 ms).

Error: (11/07/2016 02:34:13 PM) (Source: Service Control Manager) (EventID: 7030) (User: )
Description: Služba PEVSystemStart je označena jako interaktivní služba. Avšak systém je nakonfigurován tak, že neumožňuje použití interaktivní služby. Tato služba nebude fungovat správně.

Error: (11/07/2016 02:34:13 PM) (Source: Service Control Manager) (EventID: 7030) (User: )
Description: Služba PEVSystemStart je označena jako interaktivní služba. Avšak systém je nakonfigurován tak, že neumožňuje použití interaktivní služby. Tato služba nebude fungovat správně.

Error: (11/07/2016 02:34:12 PM) (Source: Service Control Manager) (EventID: 7030) (User: )
Description: Služba PEVSystemStart je označena jako interaktivní služba. Avšak systém je nakonfigurován tak, že neumožňuje použití interaktivní služby. Tato služba nebude fungovat správně.

Error: (11/07/2016 02:34:12 PM) (Source: Service Control Manager) (EventID: 7030) (User: )
Description: Služba PEVSystemStart je označena jako interaktivní služba. Avšak systém je nakonfigurován tak, že neumožňuje použití interaktivní služby. Tato služba nebude fungovat správně.

Error: (11/07/2016 02:34:12 PM) (Source: Service Control Manager) (EventID: 7030) (User: )
Description: Služba PEVSystemStart je označena jako interaktivní služba. Avšak systém je nakonfigurován tak, že neumožňuje použití interaktivní služby. Tato služba nebude fungovat správně.

Error: (11/07/2016 01:53:08 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: Nastavení oprávnění specifické pro aplikaci neuděluje oprávnění Místní Aktivace pro serverovou aplikaci COM s identifikátorem CLSID
{8D8F4F83-3594-4F07-8369-FC3C3CAE4919}
a APPID
{F72671A9-012C-4725-9D2F-2A4D32D65169}
uživateli NT AUTHORITY\SYSTEM (SID: S-1-5-18) z adresy LocalHost (pomocí LRPC) běžící v kontejneru aplikací Není k dispozici – SID (Není k dispozici). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.


CodeIntegrity:
===================================
Date: 2016-11-07 15:42:53.202
Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2016-11-07 15:42:53.164
Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2016-11-07 15:42:53.135
Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2016-11-07 15:42:53.121
Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2016-11-07 15:42:53.096
Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2016-11-07 15:42:52.846
Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2016-11-07 15:42:52.843
Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2016-11-07 15:42:52.840
Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2016-11-07 15:42:52.820
Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2016-11-07 15:42:52.817
Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.


==================== Memory info ===========================

Processor: Intel(R) Core(TM)2 Duo CPU E6750 @ 2.66GHz
Percentage of memory in use: 34%
Total physical RAM: 3327.1 MB
Available physical RAM: 2177.75 MB
Total Virtual: 6655.1 MB
Available Virtual: 5351.2 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:244.45 GB) (Free:39.73 GB) NTFS
Drive d: () (Fixed) (Total:686.52 GB) (Free:247.99 GB) NTFS
Drive e: (mp3_smes) (CDROM) (Total:0.14 GB) (Free:0 GB) CDFS
Drive f: (Iso_VolumID_Not_) (CDROM) (Total:5.85 GB) (Free:0 GB) CDFS
Drive g: (raid_1TB) (Fixed) (Total:931.37 GB) (Free:91.15 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: F37AF64A)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=244.5 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=450 MB) - (Type=27)
Partition 4: (Not Active) - (Size=686.5 GB) - (Type=07 NTFS)

========================================================
Disk: 1 (MBR Code: Windows 7 or Vista) (Size: 931.4 GB) (Disk ID: 3DDB5D2F)
Partition 1: (Not Active) - (Size=931.4 GB) - (Type=07 NTFS)

==================== End of Addition.txt ============================


Zpět na “HiJackThis”

Kdo je online

Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 111 hostů