Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 19-11-2017
Ran by jedli (administrator) on MSI (20-11-2017 20:06:35)
Running from C:\Users\jedli\Desktop
Loaded Profiles: jedli (Available Profiles: jedli)
Platform: Windows 10 Home Version 1709 16299.64 (X64) Language: Čeština (Česko)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_f507e86e308a4c50\igfxCUIService.exe
(Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_f507e86e308a4c50\IntelCpHDCPSvc.exe
(Monotype Imaging Inc.) C:\Program Files\Monotype\SkyFonts\Monotype.SkyFonts.Service.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDService.exe
(Qualcomm Technologies Inc.) C:\Windows\System32\QcomWlanSrvx64.exe
(Windows (R) Win 7 DDK provider) C:\Windows\System32\AdminService.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(Micro-Star International Co., Ltd.) C:\Program Files (x86)\SCM\MSIService.exe
(DEVGURU Co., LTD.) C:\Program Files (x86)\Samsung\USB Drivers\27_ssconn\conn\ss_conn_service.exe
() C:\Program Files\MariaDB 10.1\bin\mysqld.exe
(VMware, Inc.) C:\Windows\SysWOW64\vmnat.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
(VMware, Inc.) C:\Windows\SysWOW64\vmnetdhcp.exe
(Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe
(Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_f507e86e308a4c50\IntelCpHeciSvc.exe
(VMware, Inc.) C:\Program Files (x86)\VMware\VMware Player\vmware-authd.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvContainer\nvcontainer.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvContainer\nvcontainer.exe
(Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_f507e86e308a4c50\igfxEM.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe
(Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
() C:\Program Files (x86)\MSI\MSI Remind Manager\40\MSIOnlineRegister.exe
(Toshiba Corporation) C:\Program Files (x86)\Toshiba Corporation\SSD Utility\SSDUtility.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MSASCuiL.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
() C:\Program Files\Nahimic\NahimicMSI\UserInterface\NahimicMSIUILauncher.exe
(MSI) C:\Program Files (x86)\SCM\SCM.exe
(Valve Corporation) C:\Program Files (x86)\Steam\Steam.exe
(f.lux Software LLC) C:\Users\jedli\AppData\Local\FluxSoftware\Flux\flux.exe
(Hewlett-Packard Co.) C:\Program Files\HP\HP Deskjet 5520 series\Bin\ScanToPCActivationApp.exe
(Slack Technologies) C:\Users\jedli\AppData\Local\slack\app-2.8.2\slack.exe
(Vivaldi Technologies AS) C:\Users\jedli\AppData\Local\Vivaldi\Application\update_notifier.exe
(MyHeritage) C:\Program Files (x86)\MyHeritage\Bin\FTBCheckUpdates.exe
(Mega Limited) C:\Users\jedli\AppData\Local\MEGAsync\MEGAsync.exe
(Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
(Slack Technologies) C:\Users\jedli\AppData\Local\slack\app-2.8.2\slack.exe
(Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
(Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe
(Slack Technologies) C:\Users\jedli\AppData\Local\slack\app-2.8.2\slack.exe
(Slack Technologies) C:\Users\jedli\AppData\Local\slack\app-2.8.2\slack.exe
(GOG.com) C:\Program Files (x86)\GOG Galaxy\GalaxyClient.exe
(Slack Technologies) C:\Users\jedli\AppData\Local\slack\app-2.8.2\slack.exe
(GOG.com) C:\Program Files (x86)\GOG Galaxy\GalaxyClient Helper.exe
(GOG.com) C:\Program Files (x86)\GOG Galaxy\GalaxyClient Helper.exe
(GOG.com) C:\Program Files (x86)\GOG Galaxy\GOG Galaxy Notifications Renderer.exe
(Micro-Star International Co., Ltd.) C:\Program Files (x86)\MSI\Dragon Gaming Center\Dragon Gaming Center.exe
() C:\Program Files\WindowsApps\Microsoft.SkypeApp_12.8.487.0_x64__kzf8qxf38zg5c\SkypeHost.exe
() C:\Program Files\Nahimic\NahimicMSI\UserInterface\NahimicMSISvc32.exe
() C:\Program Files\Nahimic\NahimicMSI\UserInterface\x64\NahimicMSISvc64.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\ShadowPlay\nvsphelper64.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.LockApp_cw5n1h2txyewy\LockApp.exe
(Hewlett-Packard Co.) C:\Program Files\HP\HP Deskjet 5520 series\Bin\HPNetworkCommunicator.exe
() C:\Program Files\WindowsApps\Microsoft.ZuneMusic_10.17085.22311.0_x64__8wekyb3d8bbwe\Music.UI.exe
(Monotype Imaging Inc.) C:\Program Files\Monotype\SkyFonts\SkyFonts.exe
(Monotype Imaging Inc.) C:\Program Files\Monotype\SkyFonts\SkyFonts.Monitor.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Spotify Ltd) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.67.582.0_x86__zpdnekdrzrea0\SpotifyWebHelper.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsStore_11710.1001.27.0_x64__8wekyb3d8bbwe\WinStore.App.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Launcher\Avira.Systray.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avguard.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avshadow.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\sched.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avgnt.exe
(Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Program Files\internet explorer\iexplore.exe
(forum.viry.cz) C:\Users\jedli\Desktop\FRSTLauncher.exe

==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [SecurityHealth] => C:\Program Files\Windows Defender\MSASCuiL.exe [630168 2017-09-29] (Microsoft Corporation)
HKLM\...\Run: [ETDCtrl] => C:\Program Files\Elantech\ETDCtrl.exe [3366624 2017-05-03] (ELAN Microelectronics Corp.)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [8781568 2016-01-13] (Realtek Semiconductor)
HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [322472 2015-09-15] (Intel Corporation)
HKLM\...\Run: [NahimicMSIUILauncher] => C:\Program Files\Nahimic\NahimicMSI\UserInterface\NahimicMSIUILauncher.exe [740320 2015-12-02] ()
HKLM\...\Run: [SCM] => C:\Program Files (x86)\SCM\SCM.exe [297984 2015-12-09] (MSI)
HKLM-x32\...\Run: [Family Tree Builder Update] => C:\Program Files (x86)\MyHeritage\Bin\FTBCheckUpdates.exe [17487536 2017-07-09] (MyHeritage)
HKU\S-1-5-21-2890812157-160744085-872001271-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [3102496 2017-10-31] (Valve Corporation)
HKU\S-1-5-21-2890812157-160744085-872001271-1001\...\Run: [f.lux] => C:\Users\jedli\AppData\Local\FluxSoftware\Flux\flux.exe [1678840 2017-10-10] (f.lux Software LLC)
HKU\S-1-5-21-2890812157-160744085-872001271-1001\...\Run: [HP Deskjet 5520 series (NET)] => C:\Program Files\HP\HP Deskjet 5520 series\Bin\ScanToPCActivationApp.exe [2573416 2012-10-17] (Hewlett-Packard Co.)
HKU\S-1-5-21-2890812157-160744085-872001271-1001\...\Run: [com.squirrel.slack.slack] => C:\Users\jedli\AppData\Local\slack\Update.exe [1584656 2017-11-20] ()
HKU\S-1-5-21-2890812157-160744085-872001271-1001\...\Run: [GalaxyClient] => C:\Program Files (x86)\GOG Galaxy\GalaxyClient.exe [5284928 2017-11-14] (GOG.com)
HKU\S-1-5-21-2890812157-160744085-872001271-1001\...\Run: [Vivaldi Update Notifier] => C:\Users\jedli\AppData\Local\Vivaldi\Application\update_notifier.exe [3780728 2017-10-27] (Vivaldi Technologies AS)
HKU\S-1-5-21-2890812157-160744085-872001271-1001\...\Run: [Monotype SkyFonts System Extension] => C:\Program Files\Monotype\SkyFonts\SkyFonts.exe [2295248 2017-06-26] (Monotype Imaging Inc.)
HKU\S-1-5-21-2890812157-160744085-872001271-1001\...\Run: [Monotype SkyFonts Rack Up] => C:\Program Files\Monotype\SkyFonts\SFC.exe [26064 2017-06-26] (Monotype Imaging Inc.)
Startup: C:\Users\jedli\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\MEGAsync.lnk [2017-02-03]
ShortcutTarget: MEGAsync.lnk -> C:\Users\jedli\AppData\Local\MEGAsync\MEGAsync.exe (Mega Limited)
Startup: C:\Users\jedli\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Sledovat výstrahy inkoustu - .lnk [2017-03-17]
ShortcutTarget: Sledovat výstrahy inkoustu - .lnk -> C:\Program Files\HP\HP Deskjet 5520 series\Bin\HPStatusBL.dll (Hewlett-Packard Co.)
Startup: C:\Users\jedli\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\TickTick.lnk [2017-07-08]
ShortcutTarget: TickTick.lnk -> C:\Program Files (x86)\TickTick\TickTick.exe (Appest.com)
GroupPolicy: Restriction <==== ATTENTION

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

ProxyEnable: [S-1-5-21-2890812157-160744085-872001271-1001] => Proxy is enabled.
Hosts: 127.0.0.1 local.skyfonts.com
Tcpip\Parameters: [DhcpNameServer] 10.0.0.1
Tcpip\..\Interfaces\{3b5e11c2-bc08-44c6-9d06-6d8a6d083eb8}: [DhcpNameServer] 10.0.0.1
Tcpip\..\Interfaces\{d1ac0ffc-6fd1-496c-9397-dc635d23ff1b}: [NameServer]  

Internet Explorer:
==================
HKU\S-1-5-21-2890812157-160744085-872001271-1001\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKU\S-1-5-21-2890812157-160744085-872001271-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://oem15.msn.com/?pc=NMTE
SearchScopes: HKU\S-1-5-21-2890812157-160744085-872001271-1001 -> DefaultScope {B8837D52-43FF-43E6-BB57-93201591CA40} URL = 
SearchScopes: HKU\S-1-5-21-2890812157-160744085-872001271-1001 -> {B8837D52-43FF-43E6-BB57-93201591CA40} URL = 
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_121\bin\ssv.dll [2017-02-05] (Oracle Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_121\bin\jp2ssv.dll [2017-02-05] (Oracle Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_121\bin\ssv.dll [2017-02-05] (Oracle Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_121\bin\jp2ssv.dll [2017-02-05] (Oracle Corporation)

FireFox:
========
FF DefaultProfile: k75thz7t.default
FF ProfilePath: C:\Users\jedli\AppData\Roaming\Mozilla\Firefox\Profiles\k75thz7t.default [2017-11-15]
FF Extension: (Avira Browser Safety) - C:\Users\jedli\AppData\Roaming\Mozilla\Firefox\Profiles\k75thz7t.default\Extensions\abs@avira.com [2017-11-20]
FF Extension: (Avira Browser Safety) - C:\Users\jedli\AppData\Roaming\Mozilla\Firefox\Profiles\k75thz7t.default\Extensions\abs@avira.com.xpi [2017-11-12]
FF Extension: (Avira Password Manager) - C:\Users\jedli\AppData\Roaming\Mozilla\Firefox\Profiles\k75thz7t.default\Extensions\passwordmanager@avira.com.xpi [2017-11-12]
FF Extension: (Avira SafeSearch Plus) - C:\Users\jedli\AppData\Roaming\Mozilla\Firefox\Profiles\k75thz7t.default\Extensions\safesearchplus2@avira.com.xpi [2017-11-12] [Lagacy]
FF ProfilePath: C:\Users\jedli\AppData\Roaming\Mozilla\Firefox\Profiles\nvwx21x3.test [2017-11-20]
FF Extension: (LastPass: Free Password Manager) - C:\Users\jedli\AppData\Roaming\Mozilla\Firefox\Profiles\nvwx21x3.test\Extensions\support@lastpass.com.xpi [2017-11-13]
FF ProfilePath: C:\Users\jedli\AppData\Roaming\Mozilla\Firefox\Profiles\89gb2z0u.irena [2017-11-15]
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_24_0_0_194.dll [2017-02-07] ()
FF Plugin: @java.com/DTPlugin,version=11.121.2 -> C:\Program Files\Java\jre1.8.0_121\bin\dtplugin\npDeployJava1.dll [2017-02-05] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.121.2 -> C:\Program Files\Java\jre1.8.0_121\bin\plugin2\npjp2.dll [2017-02-05] (Oracle Corporation)
FF Plugin: @videolan.org/vlc,version=2.2.4 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2017-05-24] (VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.2.6 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2017-05-24] (VideoLAN)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWoW64\Macromed\Flash\NPSWF32_24_0_0_194.dll [2017-02-07] ()
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.68 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2015-08-25] (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2015-08-25] (Intel Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=11.121.2 -> C:\Program Files (x86)\Java\jre1.8.0_121\bin\dtplugin\npDeployJava1.dll [2017-02-05] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.121.2 -> C:\Program Files (x86)\Java\jre1.8.0_121\bin\plugin2\npjp2.dll [2017-02-05] (Oracle Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.7\npGoogleUpdate3.dll [2017-11-16] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.7\npGoogleUpdate3.dll [2017-11-16] (Google Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2017-11-04] (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-2890812157-160744085-872001271-1001: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\jedli\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2017-05-18] (Unity Technologies ApS)

Chrome: 
=======
CHR DefaultProfile: Default
CHR HomePage: Default -> hxxp://whealthico.local/
CHR StartupUrls: Default -> "chrome://newtab/","hxxp://www.default-search.net?sid=498&aid=121&itype=n&ver=12386&tm=383&src=hmp"
CHR Session Restore: Default -> is enabled.
CHR Profile: C:\Users\jedli\AppData\Local\Google\Chrome\User Data\Default [2017-11-20]
CHR Extension: (Překladač Google) - C:\Users\jedli\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapbdbdomjkkjkaonfhkkikfgjllcleb [2017-10-28]
CHR Extension: (Prezentace) - C:\Users\jedli\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-10-13]
CHR Extension: (BIODIGITAL HUMAN) - C:\Users\jedli\AppData\Local\Google\Chrome\User Data\Default\Extensions\agoenciogemlojlhccbcpcfflicgnaak [2017-02-02]
CHR Extension: (Duolingo on the Web) - C:\Users\jedli\AppData\Local\Google\Chrome\User Data\Default\Extensions\aiahmijlpehemcpleichkcokhegllfjl [2017-02-02]
CHR Extension: (From Dust) - C:\Users\jedli\AppData\Local\Google\Chrome\User Data\Default\Extensions\anelkojiepicmcldgnmkplocifmegpfj [2017-02-02]
CHR Extension: (Dokumenty) - C:\Users\jedli\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-10-13]
CHR Extension: (Disk Google) - C:\Users\jedli\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2017-01-31]
CHR Extension: (MindMeister) - C:\Users\jedli\AppData\Local\Google\Chrome\User Data\Default\Extensions\bdehgigffdnkjpaindemkaniebfaepjm [2017-02-02]
CHR Extension: (Lighthouse) - C:\Users\jedli\AppData\Local\Google\Chrome\User Data\Default\Extensions\blipmdconlkpinefehnmjammfjpmpbjk [2017-11-20]
CHR Extension: (YouTube) - C:\Users\jedli\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2017-01-31]
CHR Extension: (Avira Password Manager) - C:\Users\jedli\AppData\Local\Google\Chrome\User Data\Default\Extensions\caljgklbbfbcjjanaijlacgncafpegll [2017-10-13]
CHR Extension: (Battlegrounds of Eldhelm) - C:\Users\jedli\AppData\Local\Google\Chrome\User Data\Default\Extensions\cdkaddpgikmbnfpahgkjabeniopnhmjj [2017-02-02]
CHR Extension: (Clear Cache) - C:\Users\jedli\AppData\Local\Google\Chrome\User Data\Default\Extensions\cppjkneekbjaeellbfkmgnhonkkjfpdn [2017-02-02]
CHR Extension: (Trello) - C:\Users\jedli\AppData\Local\Google\Chrome\User Data\Default\Extensions\dmdidbedhnbabookbkpkgomahnocimke [2017-11-04]
CHR Extension: (Tabulky) - C:\Users\jedli\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-10-13]
CHR Extension: (Postman) - C:\Users\jedli\AppData\Local\Google\Chrome\User Data\Default\Extensions\fhbjgbiflinjbdggehcddcbncdddomop [2017-10-28]
CHR Extension: (React Developer Tools) - C:\Users\jedli\AppData\Local\Google\Chrome\User Data\Default\Extensions\fmkadmapgofadopljbjfkapdkoienihi [2017-09-27]
CHR Extension: (Ericom Cloud Browser for Internet Explorer) - C:\Users\jedli\AppData\Local\Google\Chrome\User Data\Default\Extensions\gahjiajfldfkbglaegkndeccohnpcoce [2017-07-08]
CHR Extension: (Dokumenty Google offline) - C:\Users\jedli\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2017-01-31]
CHR Extension: (MagicScroll eBook Reader) - C:\Users\jedli\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghgnmgfdoiplfmhgghbmlphanpfmjble [2017-02-02]
CHR Extension: (HTML5 Storage Manager All in One) - C:\Users\jedli\AppData\Local\Google\Chrome\User Data\Default\Extensions\giompennnhheakjcnobejbnjgbbkmdnd [2017-09-18]
CHR Extension: (LastPass: Free Password Manager) - C:\Users\jedli\AppData\Local\Google\Chrome\User Data\Default\Extensions\hdokiejnpimakedhajhdlcegeplioahd [2017-11-17]
CHR Extension: (Avira SafeSearch Plus) - C:\Users\jedli\AppData\Local\Google\Chrome\User Data\Default\Extensions\ipmkfpcnmccejididiaagpgchgjfajgp [2017-08-25]
CHR Extension: (Page Ruler) - C:\Users\jedli\AppData\Local\Google\Chrome\User Data\Default\Extensions\jlpkojjdgbllmedoapgfodplfhcbnbpn [2017-06-14]
CHR Extension: (Wordmark.it) - C:\Users\jedli\AppData\Local\Google\Chrome\User Data\Default\Extensions\kbpdmjdjcgpciedkahfcidpojchnooij [2017-02-02]
CHR Extension: (The Great Suspender) - C:\Users\jedli\AppData\Local\Google\Chrome\User Data\Default\Extensions\klbibkeccnjlkjkiokjodocebajanakg [2017-06-14]
CHR Extension: (Raindrop.io: \) - C:\Users\jedli\AppData\Local\Google\Chrome\User Data\Default\Extensions\ldgfbffkinooeloadekpmfoklnobpien [2017-08-13]
CHR Extension: (Redux DevTools) - C:\Users\jedli\AppData\Local\Google\Chrome\User Data\Default\Extensions\lmhkpmbekcpmknklioeibfkpmmfibljd [2017-05-11]
CHR Extension: (DevDocs) - C:\Users\jedli\AppData\Local\Google\Chrome\User Data\Default\Extensions\mnfehgbmkapmjnhcnbodoamcioleeooe [2017-02-02]
CHR Extension: (Cloud9) - C:\Users\jedli\AppData\Local\Google\Chrome\User Data\Default\Extensions\nbdmccoknlfggadpfkmcpnamfnbkmkcp [2017-02-02]
CHR Extension: (OneDrive) - C:\Users\jedli\AppData\Local\Google\Chrome\User Data\Default\Extensions\nffchahhjecejoiigmnhhicpoabngedk [2017-02-02]
CHR Extension: (Awesome Screenshot: Screen Video Recorder) - C:\Users\jedli\AppData\Local\Google\Chrome\User Data\Default\Extensions\nlipoenfbbikpbjkfpfillcgkoblgpmj [2017-11-10]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\jedli\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2017-08-25]
CHR Extension: (Funkify - disability simulator - beta) - C:\Users\jedli\AppData\Local\Google\Chrome\User Data\Default\Extensions\ojcijjdchelkddboickefhnbdpeajdjg [2017-11-15]
CHR Extension: (Click&Clean App) - C:\Users\jedli\AppData\Local\Google\Chrome\User Data\Default\Extensions\pdabfienifkbhoihedcgeogidfmibmhp [2017-10-28]
CHR Extension: (Gmail) - C:\Users\jedli\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2017-01-31]
CHR Extension: (Chrome Media Router) - C:\Users\jedli\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2017-11-16]
CHR Extension: (Custom JavaScript for websites ) - C:\Users\jedli\AppData\Local\Google\Chrome\User Data\Default\Extensions\poakhlngfciodnhlhhgnaaelnpjljija [2017-05-28]
CHR Profile: C:\Users\jedli\AppData\Local\Google\Chrome\User Data\Guest Profile [2017-08-25]
CHR Profile: C:\Users\jedli\AppData\Local\Google\Chrome\User Data\Profile 1 [2017-11-20]
CHR Extension: (Prezentace) - C:\Users\jedli\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-11-09]
CHR Extension: (Dokumenty) - C:\Users\jedli\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aohghmighlieiainnegkcijnfilokake [2017-11-09]
CHR Extension: (Disk Google) - C:\Users\jedli\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\apdfllckaahabafndbhieahigkjlhalf [2017-08-16]
CHR Extension: (YouTube) - C:\Users\jedli\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2017-08-16]
CHR Extension: (Avira Password Manager) - C:\Users\jedli\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\caljgklbbfbcjjanaijlacgncafpegll [2017-11-09]
CHR Extension: (Tabulky) - C:\Users\jedli\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-11-09]
CHR Extension: (Dokumenty Google offline) - C:\Users\jedli\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2017-11-09]
CHR Extension: (Avira SafeSearch Plus) - C:\Users\jedli\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ipmkfpcnmccejididiaagpgchgjfajgp [2017-11-09]
CHR Extension: (Awesome Screenshot: Screen Video Recorder) - C:\Users\jedli\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nlipoenfbbikpbjkfpfillcgkoblgpmj [2017-11-20]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\jedli\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2017-11-09]
CHR Extension: (Gmail) - C:\Users\jedli\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2017-08-16]
CHR Extension: (Chrome Media Router) - C:\Users\jedli\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2017-11-20]
CHR Profile: C:\Users\jedli\AppData\Local\Google\Chrome\User Data\System Profile [2017-11-10]
CHR HKLM\...\Chrome\Extension: [caljgklbbfbcjjanaijlacgncafpegll] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM\...\Chrome\Extension: [ipmkfpcnmccejididiaagpgchgjfajgp] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [caljgklbbfbcjjanaijlacgncafpegll] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [ipmkfpcnmccejididiaagpgchgjfajgp] - hxxps://clients2.google.com/service/update2/crx

==================== Services (Whitelisted) ====================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S2 AntiVirMailService; C:\Program Files (x86)\Avira\Antivirus\avmailc7.exe [1128944 2017-11-09] (Avira Operations GmbH & Co. KG)
R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\Antivirus\sched.exe [490968 2017-11-09] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files (x86)\Avira\Antivirus\avguard.exe [490968 2017-11-09] (Avira Operations GmbH & Co. KG)
S2 AntiVirWebService; C:\Program Files (x86)\Avira\Antivirus\avwebg7.exe [1526832 2017-11-09] (Avira Operations GmbH & Co. KG)
S2 Apache; C:\tools\Apache\httpd-2.4.20\Apache24\bin\httpd.exe [24576 2016-04-04] (Apache Software Foundation) [File not signed]
R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [83768 2017-04-03] (Apple Inc.)
R2 Avira.ServiceHost; C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe [434248 2017-11-06] (Avira Operations GmbH & Co. KG)
S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [1404936 2017-02-03] ()
R2 ETDService; C:\Program Files\Elantech\ETDService.exe [144096 2017-05-03] (ELAN Microelectronics Corp.)
S3 fussvc; C:\Program Files (x86)\Windows Kits\8.1\App Certification Kit\fussvc.exe [142336 2014-02-20] (Microsoft Corporation) [File not signed]
S3 GalaxyClientService; C:\Program Files (x86)\GOG Galaxy\GalaxyClientService.exe [529984 2017-11-14] (GOG.com)
S3 GalaxyCommunication; C:\ProgramData\GOG.com\Galaxy\redists\GalaxyCommunication.exe [8330304 2017-11-14] (GOG.com)
R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [18856 2015-09-15] (Intel Corporation)
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [881152 2015-05-22] (Intel(R) Corporation)
R3 Intel(R) Security Assist; C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe [335872 2015-05-19] (Intel Corporation) [File not signed]
S2 isaHelperSvc; C:\Program Files (x86)\Intel\Intel(R) Security Assist\isaHelperService.exe [7680 2015-05-19] () [File not signed]
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [207648 2015-09-19] (Intel Corporation)
R2 MbnExt; C:\Program Files (x86)\T-Mobile\Web'n'walk Manager\MbnExt.dll [422608 2017-04-13] (Gemfor s.r.o.)
R2 Micro Star SCM; C:\Program Files (x86)\SCM\MSIService.exe [160768 2015-12-09] (Micro-Star International Co., Ltd.) [File not signed]
R2 MySQL; C:\Program Files\MariaDB 10.1\bin\mysqld.exe [13628872 2017-01-17] ()
R2 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [518080 2017-10-11] (NVIDIA Corporation)
S3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [518080 2017-10-11] (NVIDIA Corporation)
R2 NVDisplay.ContainerLocalSystem; C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe [462968 2017-10-27] (NVIDIA Corporation)
R2 NvTelemetryContainer; C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe [460736 2017-10-11] (NVIDIA Corporation)
R2 QcomWlanSrv; C:\WINDOWS\System32\QcomWlanSrvx64.exe [220680 2017-08-28] (Qualcomm Technologies Inc.)
R2 SkyFontsService; C:\Program Files\Monotype\SkyFonts\Monotype.SkyFonts.Service.exe [60880 2017-06-26] (Monotype Imaging Inc.)
R2 ss_conn_service; C:\Program Files (x86)\Samsung\USB Drivers\27_ssconn\conn\ss_conn_service.exe [754784 2016-07-22] (DEVGURU Co., LTD.)
S3 Te.Service; C:\Program Files (x86)\Windows Kits\8.1\Testing\Runtimes\TAEF\Wex.Services.exe [119808 2013-08-22] (Microsoft Corporation) [File not signed]
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [10803952 2017-11-09] (TeamViewer GmbH)
S3 ThunderboltService; C:\Program Files (x86)\Intel\Thunderbolt Software\tbtsvc.exe [1831064 2015-11-05] (Intel Corporation)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [355304 2017-09-29] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [105944 2017-09-29] (Microsoft Corporation)

===================== Drivers (Whitelisted) ======================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 atksgt; C:\WINDOWS\System32\DRIVERS\atksgt.sys [314016 2017-09-11] ()
R0 avdevprot; C:\WINDOWS\System32\DRIVERS\avdevprot.sys [60920 2017-11-09] (Avira Operations GmbH & Co. KG)
R2 avgntflt; C:\WINDOWS\System32\DRIVERS\avgntflt.sys [176224 2017-11-09] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\WINDOWS\system32\DRIVERS\avipbb.sys [167464 2017-11-09] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\WINDOWS\system32\DRIVERS\avkmgr.sys [44488 2017-11-09] (Avira Operations GmbH & Co. KG)
R2 avnetflt; C:\WINDOWS\system32\DRIVERS\avnetflt.sys [88488 2017-11-09] (Avira Operations GmbH & Co. KG)
R0 avusbflt; C:\WINDOWS\System32\Drivers\avusbflt.sys [38048 2017-11-09] (Avira Operations GmbH & Co. KG)
R3 e2xw10x64; C:\WINDOWS\System32\drivers\e2xw10x64.sys [165608 2017-09-06] (Qualcomm Atheros, Inc.)
R3 ETDSMBus; C:\WINDOWS\System32\drivers\ETDSMBus.sys [31824 2017-05-03] (ELAN Microelectronic Corp.)
R2 lirsgt; C:\WINDOWS\System32\DRIVERS\lirsgt.sys [43680 2017-09-11] ()
S3 nrtap; C:\WINDOWS\System32\drivers\nrtap.sys [29696 2009-09-01] (NeoRouter Inc.)
R3 nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nvmii.inf_amd64_9d9ba5ae040a0264\nvlddmkm.sys [16936048 2017-10-28] (NVIDIA Corporation)
S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [30144 2017-10-11] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\WINDOWS\system32\drivers\nvvad64v.sys [50624 2017-10-11] (NVIDIA Corporation)
R3 nvvhci; C:\WINDOWS\System32\drivers\nvvhci.sys [57976 2017-10-27] (NVIDIA Corporation)
S3 RTSUER; C:\WINDOWS\system32\Drivers\RtsUer.sys [404184 2016-01-13] (Realsil Semiconductor Corporation)
S3 ssdevfactory; C:\WINDOWS\System32\drivers\ssdevfactory.sys [40568 2015-10-02] (SteelSeries ApS)
S3 sshid; C:\WINDOWS\System32\drivers\sshid.sys [45928 2017-01-10] (SteelSeries ApS)
S3 ssps2; C:\WINDOWS\System32\drivers\ssps2.sys [32840 2015-10-02] (SteelSeries ApS)
R3 VBoxNetAdp; C:\WINDOWS\System32\drivers\VBoxNetAdp6.sys [196040 2017-09-13] (Oracle Corporation)
R1 VBoxNetLwf; C:\WINDOWS\system32\DRIVERS\VBoxNetLwf.sys [206976 2017-09-13] (Oracle Corporation)
R0 vsock; C:\WINDOWS\system32\DRIVERS\vsock.sys [91712 2016-09-30] (VMware, Inc.)
S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [44608 2017-09-29] (Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [309144 2017-09-29] (Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [119192 2017-09-29] (Microsoft Corporation)
R3 WINIO; C:\Program Files (x86)\MSI\Dragon Gaming Center\winio64.sys [15160 2010-06-07] ()

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2017-11-20 20:06 - 2017-11-20 20:06 - 000034969 _____ C:\Users\jedli\Desktop\FRST.txt
2017-11-20 20:06 - 2017-11-20 20:06 - 000000000 ____D C:\FRST
2017-11-20 20:04 - 2017-11-20 20:04 - 000112640 _____ (forum.viry.cz) C:\Users\jedli\Desktop\FRSTLauncher.exe
2017-11-20 20:02 - 2017-11-20 20:02 - 002391552 _____ (Farbar) C:\Users\jedli\Desktop\FRST64.exe
2017-11-20 14:58 - 2017-11-20 14:58 - 000003374 _____ C:\WINDOWS\System32\Tasks\Avira_Antivirus_Systray
2017-11-20 14:58 - 2017-11-09 20:31 - 000176224 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avgntflt.sys
2017-11-20 14:58 - 2017-11-09 20:31 - 000167464 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avipbb.sys
2017-11-20 14:58 - 2017-11-09 20:31 - 000088488 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avnetflt.sys
2017-11-20 14:58 - 2017-11-09 20:31 - 000060920 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avdevprot.sys
2017-11-20 14:58 - 2017-11-09 20:31 - 000044488 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avkmgr.sys
2017-11-20 14:58 - 2017-11-09 20:31 - 000038048 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avusbflt.sys
2017-11-20 14:52 - 2017-11-20 14:58 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira
2017-11-20 14:52 - 2017-11-20 14:52 - 000003208 _____ C:\WINDOWS\System32\Tasks\Avira SystrayStartTrigger
2017-11-20 14:52 - 2017-11-20 14:52 - 000001268 _____ C:\Users\Public\Desktop\Avira.lnk
2017-11-20 14:51 - 2017-11-20 14:58 - 000000000 ____D C:\ProgramData\Avira
2017-11-20 13:11 - 2017-11-20 13:15 - 000000000 ____D C:\Users\jedli\AppData\Local\PlaceholderTileLogoFolder
2017-11-20 11:35 - 2017-11-20 11:35 - 000009142 _____ C:\Users\jedli\AppData\Local\recently-used.xbel
2017-11-17 11:26 - 2017-11-17 11:28 - 000000000 ____D C:\Users\jedli\AppData\Local\mphp
2017-11-17 10:44 - 2017-11-17 10:44 - 000000000 ____D C:\WINDOWS\System32\Tasks\MEGA
2017-11-16 21:27 - 2017-11-16 21:27 - 000000000 ____D C:\Users\jedli\AppData\Local\Composer
2017-11-16 17:54 - 2017-10-25 10:11 - 017083904 _____ (Microsoft Corporation) C:\WINDOWS\system32\HologramCompositor.dll
2017-11-16 17:54 - 2017-10-25 10:09 - 021753344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Hydrogen.dll
2017-11-16 17:54 - 2017-10-25 09:57 - 000956416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Spectrum.exe
2017-11-16 17:54 - 2017-10-25 09:57 - 000882688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Mirage.Internal.dll
2017-11-16 17:54 - 2017-10-25 09:56 - 000665600 _____ (Microsoft Corporation) C:\WINDOWS\system32\DHolographicDisplay.dll
2017-11-16 17:54 - 2017-10-25 05:41 - 000362176 _____ (Microsoft Corporation) C:\WINDOWS\system32\BioIso.exe
2017-11-16 17:54 - 2017-10-25 05:40 - 001634288 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll
2017-11-16 17:54 - 2017-10-25 05:40 - 000612760 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll
2017-11-16 17:54 - 2017-10-25 05:39 - 007831248 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d10warp.dll
2017-11-16 17:54 - 2017-10-25 05:39 - 000479912 _____ (Microsoft Corporation) C:\WINDOWS\system32\wow64win.dll
2017-11-16 17:54 - 2017-10-25 05:36 - 008590744 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2017-11-16 17:54 - 2017-10-25 05:36 - 002400664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys
2017-11-16 17:54 - 2017-10-25 05:34 - 002573208 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2017-11-16 17:54 - 2017-10-25 05:34 - 000839928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Perception.Stub.dll
2017-11-16 17:54 - 2017-10-25 05:31 - 000436120 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHostCommon.dll
2017-11-16 17:54 - 2017-10-25 05:30 - 004487968 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2017-11-16 17:54 - 2017-10-25 05:29 - 001507736 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2017-11-16 17:54 - 2017-10-25 05:29 - 000603920 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe
2017-11-16 17:54 - 2017-10-25 05:28 - 001170008 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll
2017-11-16 17:54 - 2017-10-25 05:27 - 006791472 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll
2017-11-16 17:54 - 2017-10-25 05:27 - 001970520 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfasfsrcsnk.dll
2017-11-16 17:54 - 2017-10-25 05:27 - 001426152 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll
2017-11-16 17:54 - 2017-10-25 05:20 - 002717392 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmp4srcsnk.dll
2017-11-16 17:54 - 2017-10-25 04:36 - 025246208 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2017-11-16 17:54 - 2017-10-25 04:30 - 005615968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d10warp.dll
2017-11-16 17:54 - 2017-10-25 04:28 - 004648528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll
2017-11-16 17:54 - 2017-10-25 04:28 - 001246432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioEng.dll
2017-11-16 17:54 - 2017-10-25 04:28 - 000982016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll
2017-11-16 17:54 - 2017-10-25 04:27 - 001454568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsrcsnk.dll
2017-11-16 17:54 - 2017-10-25 04:27 - 001377080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfasfsrcsnk.dll
2017-11-16 17:54 - 2017-10-25 04:24 - 000506256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Perception.Stub.dll
2017-11-16 17:54 - 2017-10-25 04:22 - 006015200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll
2017-11-16 17:54 - 2017-10-25 04:22 - 002465848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmp4srcsnk.dll
2017-11-16 17:54 - 2017-10-25 04:19 - 003670016 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2017-11-16 17:54 - 2017-10-25 04:18 - 000975872 _____ C:\WINDOWS\system32\FaceProcessor.dll
2017-11-16 17:54 - 2017-10-25 04:18 - 000328192 _____ (Microsoft Corporation) C:\WINDOWS\system32\AcGenral.dll
2017-11-16 17:54 - 2017-10-25 04:16 - 023658496 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2017-11-16 17:54 - 2017-10-25 04:16 - 000227328 _____ (Microsoft Corporation) C:\WINDOWS\system32\CapabilityAccessManager.dll
2017-11-16 17:54 - 2017-10-25 04:14 - 000541184 _____ (Microsoft Corporation) C:\WINDOWS\system32\HolographicExtensions.dll
2017-11-16 17:54 - 2017-10-25 04:13 - 013655552 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmp.dll
2017-11-16 17:54 - 2017-10-25 04:13 - 002972672 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.pcshell.dll
2017-11-16 17:54 - 2017-10-25 04:10 - 008099328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2017-11-16 17:54 - 2017-10-25 04:10 - 004742144 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2017-11-16 17:54 - 2017-10-25 04:10 - 001167360 _____ (Microsoft Corporation) C:\WINDOWS\system32\ISM.dll
2017-11-16 17:54 - 2017-10-25 04:09 - 002862080 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2017-11-16 17:54 - 2017-10-25 04:09 - 002106368 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2017-11-16 17:54 - 2017-10-25 04:08 - 002905600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys
2017-11-16 17:54 - 2017-10-25 04:08 - 002781696 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2017-11-16 17:54 - 2017-10-25 04:08 - 002633216 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll
2017-11-16 17:54 - 2017-10-25 04:08 - 002392576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AcGenral.dll
2017-11-16 17:54 - 2017-10-25 04:08 - 000654848 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXService.dll
2017-11-16 17:54 - 2017-10-25 04:07 - 018914304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2017-11-16 17:54 - 2017-10-25 04:07 - 001485824 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2017-11-16 17:54 - 2017-10-25 04:05 - 019339776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2017-11-16 17:54 - 2017-10-25 04:01 - 012687360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmp.dll
2017-11-16 17:54 - 2017-10-25 03:59 - 003679232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2017-11-16 17:54 - 2017-10-25 03:58 - 002467840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll
2017-11-16 17:54 - 2017-10-25 03:57 - 006035968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2017-11-16 17:54 - 2017-10-21 13:25 - 003313968 _____ C:\WINDOWS\system32\Windows.Mirage.dll
2017-11-16 17:54 - 2017-10-20 15:17 - 002474584 _____ C:\WINDOWS\SysWOW64\Windows.Mirage.dll
2017-11-16 17:53 - 2017-10-25 10:11 - 000336896 _____ (Microsoft Corporation) C:\WINDOWS\system32\HolographicRuntimes.dll
2017-11-16 17:53 - 2017-10-25 07:36 - 000618496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Mirage.Internal.dll
2017-11-16 17:53 - 2017-10-25 05:40 - 000269696 _____ C:\WINDOWS\system32\FaceProcessorCore.dll
2017-11-16 17:53 - 2017-10-25 05:39 - 000285080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdbus.sys
2017-11-16 17:53 - 2017-10-25 05:37 - 001954048 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2017-11-16 17:53 - 2017-10-25 05:37 - 000610712 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll
2017-11-16 17:53 - 2017-10-25 05:36 - 000187288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpsd.sys
2017-11-16 17:53 - 2017-10-25 05:34 - 000710920 _____ (Microsoft Corporation) C:\WINDOWS\system32\ci.dll
2017-11-16 17:53 - 2017-10-25 05:32 - 000559512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storport.sys
2017-11-16 17:53 - 2017-10-25 05:32 - 000147864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wcifs.sys
2017-11-16 17:53 - 2017-10-25 05:31 - 000045464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storufs.sys
2017-11-16 17:53 - 2017-10-25 05:30 - 000555416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBHUB3.SYS
2017-11-16 17:53 - 2017-10-25 05:29 - 002269080 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsrcsnk.dll
2017-11-16 17:53 - 2017-10-25 05:27 - 000374032 _____ (Microsoft Corporation) C:\WINDOWS\system32\vac.exe
2017-11-16 17:53 - 2017-10-25 05:24 - 000428952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdbss.sys
2017-11-16 17:53 - 2017-10-25 04:52 - 001615720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
2017-11-16 17:53 - 2017-10-25 04:50 - 001528904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll
2017-11-16 17:53 - 2017-10-25 04:30 - 000354200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CloudExperienceHostCommon.dll
2017-11-16 17:53 - 2017-10-25 04:27 - 001015008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmpeg2srcsnk.dll
2017-11-16 17:53 - 2017-10-25 04:19 - 000097792 _____ C:\WINDOWS\system32\runexehelper.exe
2017-11-16 17:53 - 2017-10-25 04:18 - 000301056 _____ (Microsoft Corporation) C:\WINDOWS\system32\AcLayers.dll
2017-11-16 17:53 - 2017-10-25 04:18 - 000135168 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_CapabilityAccess.dll
2017-11-16 17:53 - 2017-10-25 04:18 - 000095744 _____ (Microsoft Corporation) C:\WINDOWS\system32\CapabilityAccessManagerClient.dll
2017-11-16 17:53 - 2017-10-25 04:18 - 000056320 _____ (Microsoft Corporation) C:\WINDOWS\system32\AcSpecfc.dll
2017-11-16 17:53 - 2017-10-25 04:16 - 000114688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\UcmCx.sys
2017-11-16 17:53 - 2017-10-25 04:16 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\tzres.dll
2017-11-16 17:53 - 2017-10-25 04:15 - 000140800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll
2017-11-16 17:53 - 2017-10-25 04:14 - 000046080 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdrleakdiag.exe
2017-11-16 17:53 - 2017-10-25 04:12 - 001015296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthport.sys
2017-11-16 17:53 - 2017-10-25 04:12 - 000708096 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll
2017-11-16 17:53 - 2017-10-25 04:12 - 000599040 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2017-11-16 17:53 - 2017-10-25 04:12 - 000568832 _____ (Microsoft Corporation) C:\WINDOWS\system32\TileDataRepository.dll
2017-11-16 17:53 - 2017-10-25 04:11 - 000768512 _____ (Microsoft Corporation) C:\WINDOWS\system32\PCPKsp.dll
2017-11-16 17:53 - 2017-10-25 04:09 - 001806336 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Speech.dll
2017-11-16 17:53 - 2017-10-25 04:09 - 000812032 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2017-11-16 17:53 - 2017-10-25 04:08 - 001667584 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Input.Inking.dll
2017-11-16 17:53 - 2017-10-25 04:08 - 000487424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AcSpecfc.dll
2017-11-16 17:53 - 2017-10-25 04:08 - 000465408 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhext.dll
2017-11-16 17:53 - 2017-10-25 04:07 - 003478016 _____ (Microsoft Corporation) C:\WINDOWS\system32\mispace.dll
2017-11-16 17:53 - 2017-10-25 04:07 - 000685056 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll
2017-11-16 17:53 - 2017-10-25 04:07 - 000372224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AcLayers.dll
2017-11-16 17:53 - 2017-10-25 04:07 - 000064512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CapabilityAccessManagerClient.dll
2017-11-16 17:53 - 2017-10-25 04:06 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tzres.dll
2017-11-16 17:53 - 2017-10-25 04:05 - 000106496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakradiag.dll
2017-11-16 17:53 - 2017-10-25 04:05 - 000022528 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdtcVSp1res.dll
2017-11-16 17:53 - 2017-10-25 04:04 - 000124928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\luafv.sys
2017-11-16 17:53 - 2017-10-25 04:04 - 000041984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdrleakdiag.exe
2017-11-16 17:53 - 2017-10-25 04:03 - 000450048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TileDataRepository.dll
2017-11-16 17:53 - 2017-10-25 04:02 - 000591872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PCPKsp.dll
2017-11-16 17:53 - 2017-10-25 04:01 - 000462848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2017-11-16 17:53 - 2017-10-25 03:59 - 000664576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
2017-11-16 17:53 - 2017-10-25 03:58 - 001322496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Input.Inking.dll
2017-11-16 17:53 - 2017-10-25 03:58 - 001280000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Speech.dll
2017-11-16 17:53 - 2017-10-25 03:55 - 002864640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mispace.dll
2017-11-16 17:53 - 2017-10-25 03:54 - 000022528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msdtcVSp1res.dll
2017-11-16 17:53 - 2017-10-20 06:08 - 000339968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msexcl40.dll
2017-11-16 17:38 - 2017-11-16 17:38 - 000000000 ____D C:\ProgramData\Microsoft OneDrive
2017-11-16 17:36 - 2017-11-16 17:36 - 000000020 ___SH C:\Users\jedli\ntuser.ini
2017-11-16 17:36 - 2017-11-16 17:36 - 000000000 ___RD C:\Users\jedli\3D Objects
2017-11-16 17:36 - 2017-11-16 17:36 - 000000000 ___HD C:\Users\jedli\MicrosoftEdgeBackups
2017-11-16 15:48 - 2017-11-16 15:48 - 000000000 ____D C:\ProgramData\USOShared
2017-11-16 15:45 - 2017-11-16 15:45 - 000007623 _____ C:\WINDOWS\diagwrn.xml
2017-11-16 15:45 - 2017-11-16 15:45 - 000007623 _____ C:\WINDOWS\diagerr.xml
2017-11-16 15:43 - 2017-11-17 01:53 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2017-11-16 15:43 - 2017-11-16 17:38 - 000003350 _____ C:\WINDOWS\System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-2890812157-160744085-872001271-1001
2017-11-16 15:43 - 2017-11-16 15:48 - 000003470 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA
2017-11-16 15:43 - 2017-11-16 15:48 - 000003346 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore
2017-11-16 15:43 - 2017-11-16 15:43 - 000003482 _____ C:\WINDOWS\System32\Tasks\Adobe Acrobat Update Task
2017-11-16 15:43 - 2017-11-16 15:43 - 000003398 _____ C:\WINDOWS\System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2017-11-16 15:43 - 2017-11-16 15:43 - 000003176 _____ C:\WINDOWS\System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2017-11-16 15:43 - 2017-11-16 15:43 - 000003128 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater
2017-11-16 15:43 - 2017-11-16 15:43 - 000003114 _____ C:\WINDOWS\System32\Tasks\MSI_Help_Desk_Agent
2017-11-16 15:43 - 2017-11-16 15:43 - 000003044 _____ C:\WINDOWS\System32\Tasks\HP AR Program Upload - 3547217ff88a468f940a3c730e94638b4a7f91c0de5646d3af47dd28d3398c0f
2017-11-16 15:43 - 2017-11-16 15:43 - 000002984 _____ C:\WINDOWS\System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2017-11-16 15:43 - 2017-11-16 15:43 - 000002956 _____ C:\WINDOWS\System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2017-11-16 15:43 - 2017-11-16 15:43 - 000002914 _____ C:\WINDOWS\System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2017-11-16 15:43 - 2017-11-16 15:43 - 000002838 _____ C:\WINDOWS\System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2017-11-16 15:43 - 2017-11-16 15:43 - 000002786 _____ C:\WINDOWS\System32\Tasks\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2017-11-16 15:43 - 2017-11-16 15:43 - 000002744 _____ C:\WINDOWS\System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2017-11-16 15:43 - 2017-11-16 15:43 - 000002694 _____ C:\WINDOWS\System32\Tasks\SSDUtilityAutorun
2017-11-16 15:43 - 2017-11-16 15:43 - 000002502 _____ C:\WINDOWS\System32\Tasks\MSI_Dragon Gaming Center
2017-11-16 15:43 - 2017-11-16 15:43 - 000002412 _____ C:\WINDOWS\System32\Tasks\NahimicMSIUILauncherRun
2017-11-16 15:43 - 2017-11-16 15:43 - 000002400 _____ C:\WINDOWS\System32\Tasks\NahimicMSIsvc64Run
2017-11-16 15:43 - 2017-11-16 15:43 - 000002392 _____ C:\WINDOWS\System32\Tasks\NahimicMSIsvc32Run
2017-11-16 15:43 - 2017-11-16 15:43 - 000002362 _____ C:\WINDOWS\System32\Tasks\{A7F67265-B1D2-44F6-8CE2-39CEE242129F}
2017-11-16 15:43 - 2017-11-16 15:43 - 000002358 _____ C:\WINDOWS\System32\Tasks\{1C983A43-F475-44C0-82CA-3BEADFDCD714}
2017-11-16 15:43 - 2017-11-16 15:43 - 000002196 _____ C:\WINDOWS\System32\Tasks\MSISCMTsk
2017-11-16 15:43 - 2017-11-16 15:43 - 000000000 ____D C:\WINDOWS\System32\Tasks\SmartFTP
2017-11-16 15:43 - 2017-11-16 15:43 - 000000000 ____D C:\WINDOWS\System32\Tasks\NCH Software
2017-11-16 15:43 - 2017-11-16 15:43 - 000000000 ____D C:\WINDOWS\System32\Tasks\Intel
2017-11-16 15:43 - 2017-11-16 15:43 - 000000000 ____D C:\WINDOWS\System32\Tasks\Avira
2017-11-16 15:43 - 2017-11-16 15:43 - 000000000 ____D C:\WINDOWS\System32\Tasks\Apple
2017-11-16 15:40 - 2017-11-17 10:47 - 001853378 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2017-11-16 15:36 - 2017-11-16 15:36 - 000001576 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk
2017-11-16 15:35 - 2017-11-20 13:15 - 000000000 ____D C:\Users\jedli\AppData\Local\Packages
2017-11-16 15:35 - 2017-11-17 11:25 - 000000000 ____D C:\Users\jedli
2017-11-16 15:35 - 2017-11-16 15:35 - 000000000 _SHDL C:\Users\jedli\Šablony
2017-11-16 15:35 - 2017-11-16 15:35 - 000000000 _SHDL C:\Users\jedli\Soubory cookie
2017-11-16 15:35 - 2017-11-16 15:35 - 000000000 _SHDL C:\Users\jedli\Poslední
2017-11-16 15:35 - 2017-11-16 15:35 - 000000000 _SHDL C:\Users\jedli\Okolní tiskárny
2017-11-16 15:35 - 2017-11-16 15:35 - 000000000 _SHDL C:\Users\jedli\Okolní síť
2017-11-16 15:35 - 2017-11-16 15:35 - 000000000 _SHDL C:\Users\jedli\Nabídka Start
2017-11-16 15:35 - 2017-11-16 15:35 - 000000000 _SHDL C:\Users\jedli\Dokumenty
2017-11-16 15:35 - 2017-11-16 15:35 - 000000000 _SHDL C:\Users\jedli\Documents\Obrázky
2017-11-16 15:35 - 2017-11-16 15:35 - 000000000 _SHDL C:\Users\jedli\Documents\Hudba
2017-11-16 15:35 - 2017-11-16 15:35 - 000000000 _SHDL C:\Users\jedli\Documents\Filmy
2017-11-16 15:35 - 2017-11-16 15:35 - 000000000 _SHDL C:\Users\jedli\Data aplikací
2017-11-16 15:35 - 2017-11-16 15:35 - 000000000 _SHDL C:\Users\jedli\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2017-11-16 15:35 - 2017-11-16 15:35 - 000000000 _SHDL C:\Users\jedli\AppData\Local\Data aplikací
2017-11-16 15:33 - 2017-09-29 14:41 - 002241024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2017-11-16 15:33 - 2017-07-31 14:28 - 000132208 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.DLL
2017-11-16 15:33 - 2017-07-31 14:28 - 000108656 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.DLL
2017-11-16 15:31 - 2017-11-20 19:58 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2017-11-16 15:31 - 2017-11-17 01:53 - 000522112 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2017-11-16 15:29 - 2017-11-16 15:48 - 000000000 ____D C:\Windows.old
2017-11-16 15:11 - 2017-11-16 15:29 - 000000000 ____D C:\WINDOWS\system32\config\bbimigrate
2017-11-16 15:10 - 2017-11-16 15:11 - 000000000 ____D C:\WINDOWS\ServiceProfiles
2017-11-16 15:09 - 2017-11-16 15:09 - 005906264 _____ (Microsoft Corporation) C:\WINDOWS\system32\StartTileData.dll
2017-11-16 15:09 - 2017-11-16 15:09 - 003334144 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2017-11-16 15:09 - 2017-11-16 15:09 - 002869248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2017-11-16 15:09 - 2017-11-16 15:09 - 001856000 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll
2017-11-16 15:09 - 2017-11-16 15:09 - 001822208 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2017-11-16 15:09 - 2017-11-16 15:09 - 001664000 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll
2017-11-16 15:09 - 2017-11-16 15:09 - 001641536 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32full.dll
2017-11-16 15:09 - 2017-11-16 15:09 - 001587200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml3.dll
2017-11-16 15:09 - 2017-11-16 15:09 - 001559552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2017-11-16 15:09 - 2017-11-16 15:09 - 001554216 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll
2017-11-16 15:09 - 2017-11-16 15:09 - 001547264 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2017-11-16 15:09 - 2017-11-16 15:09 - 001470976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll
2017-11-16 15:09 - 2017-11-16 15:09 - 001463856 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll
2017-11-16 15:09 - 2017-11-16 15:09 - 001436432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32full.dll
2017-11-16 15:09 - 2017-11-16 15:09 - 001323840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll
2017-11-16 15:09 - 2017-11-16 15:09 - 001261864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.appcore.dll
2017-11-16 15:09 - 2017-11-16 15:09 - 001200024 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe
2017-11-16 15:09 - 2017-11-16 15:09 - 001053592 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe
2017-11-16 15:09 - 2017-11-16 15:09 - 000925184 _____ (Microsoft Corporation) C:\WINDOWS\system32\MPSSVC.dll
2017-11-16 15:09 - 2017-11-16 15:09 - 000778936 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe
2017-11-16 15:09 - 2017-11-16 15:09 - 000739696 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsapi.dll
2017-11-16 15:09 - 2017-11-16 15:09 - 000726016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys
2017-11-16 15:09 - 2017-11-16 15:09 - 000677280 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2017-11-16 15:09 - 2017-11-16 15:09 - 000665088 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmCoreProvisioning.dll
2017-11-16 15:09 - 2017-11-16 15:09 - 000649304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe
2017-11-16 15:09 - 2017-11-16 15:09 - 000640512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mswstr10.dll
2017-11-16 15:09 - 2017-11-16 15:09 - 000597160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dnsapi.dll
2017-11-16 15:09 - 2017-11-16 15:09 - 000566272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TpmCoreProvisioning.dll
2017-11-16 15:09 - 2017-11-16 15:09 - 000542208 _____ (Microsoft Corporation) C:\WINDOWS\system32\FirewallAPI.dll
2017-11-16 15:09 - 2017-11-16 15:09 - 000529408 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\nwifi.sys
2017-11-16 15:09 - 2017-11-16 15:09 - 000478208 _____ (Microsoft Corporation) C:\WINDOWS\system32\NgcCtnr.dll
2017-11-16 15:09 - 2017-11-16 15:09 - 000464416 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcryptprimitives.dll
2017-11-16 15:09 - 2017-11-16 15:09 - 000461312 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansec.dll
2017-11-16 15:09 - 2017-11-16 15:09 - 000442880 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptngc.dll
2017-11-16 15:09 - 2017-11-16 15:09 - 000422912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv.sys
2017-11-16 15:09 - 2017-11-16 15:09 - 000418712 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll
2017-11-16 15:09 - 2017-11-16 15:09 - 000374784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FirewallAPI.dll
2017-11-16 15:09 - 2017-11-16 15:09 - 000373656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\clfs.sys
2017-11-16 15:09 - 2017-11-16 15:09 - 000353688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll
2017-11-16 15:09 - 2017-11-16 15:09 - 000326144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptngc.dll
2017-11-16 15:09 - 2017-11-16 15:09 - 000285696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb10.sys
2017-11-16 15:09 - 2017-11-16 15:09 - 000246168 _____ (Microsoft Corporation) C:\WINDOWS\system32\browserbroker.dll
2017-11-16 15:09 - 2017-11-16 15:09 - 000232344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb20.sys
2017-11-16 15:09 - 2017-11-16 15:09 - 000184984 _____ (Microsoft Corporation) C:\WINDOWS\system32\sspicli.dll
2017-11-16 15:09 - 2017-11-16 15:09 - 000177664 _____ (Microsoft Corporation) C:\WINDOWS\system32\t2embed.dll
2017-11-16 15:09 - 2017-11-16 15:09 - 000139672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecdd.sys
2017-11-16 15:09 - 2017-11-16 15:09 - 000136192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\t2embed.dll
2017-11-16 15:09 - 2017-11-16 15:09 - 000123520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sspicli.dll
2017-11-16 15:09 - 2017-11-16 15:09 - 000086016 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblAuthTokenBrokerExt.dll
2017-11-16 15:09 - 2017-11-16 15:09 - 000070656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XblAuthTokenBrokerExt.dll
2017-11-16 15:09 - 2017-11-16 15:09 - 000060824 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\urscx01000.sys
2017-11-16 15:09 - 2017-11-16 15:09 - 000058880 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmTasks.dll
2017-11-16 15:09 - 2017-11-16 15:09 - 000057344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\UcmUcsi.sys
2017-11-16 15:09 - 2017-11-16 15:09 - 000034816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BasicRender.sys
2017-11-16 15:09 - 2017-11-16 15:09 - 000028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\sspisrv.dll
2017-11-16 15:09 - 2017-11-16 15:09 - 000008704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msjint40.dll
2017-11-16 15:03 - 2017-11-16 15:29 - 000000000 ____D C:\Program Files (x86)\MSBuild
2017-11-16 15:03 - 2017-11-16 15:07 - 000000000 ___SD C:\WINDOWS\system32\lxss
2017-11-16 15:03 - 2017-11-16 15:03 - 017928704 _____ (Microsoft Corporation) C:\WINDOWS\system32\DXCaptureReplay.dll
2017-11-16 15:03 - 2017-11-16 15:03 - 014014976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DXCaptureReplay.dll
2017-11-16 15:03 - 2017-11-16 15:03 - 006347776 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData0009.dll
2017-11-16 15:03 - 2017-11-16 15:03 - 005784576 _____ (Microsoft Corporation) C:\WINDOWS\system32\VsGraphicsDesktopEngine.exe
2017-11-16 15:03 - 2017-11-16 15:03 - 005739008 _____ (Microsoft Corporation) C:\WINDOWS\system32\prm0009.dll
2017-11-16 15:03 - 2017-11-16 15:03 - 005484032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NlsData0009.dll
2017-11-16 15:03 - 2017-11-16 15:03 - 004907008 _____ (Microsoft Corporation) C:\WINDOWS\system32\VsGraphicsRemoteEngine.exe
2017-11-16 15:03 - 2017-11-16 15:03 - 004550144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VsGraphicsDesktopEngine.exe
2017-11-16 15:03 - 2017-11-16 15:03 - 003657216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VsGraphicsRemoteEngine.exe
2017-11-16 15:03 - 2017-11-16 15:03 - 002771968 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d12SDKLayers.dll
2017-11-16 15:03 - 2017-11-16 15:03 - 002629120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NlsLexicons0009.dll
2017-11-16 15:03 - 2017-11-16 15:03 - 002629120 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsLexicons0009.dll
2017-11-16 15:03 - 2017-11-16 15:03 - 002216960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d12SDKLayers.dll
2017-11-16 15:03 - 2017-11-16 15:03 - 001992192 _____ (Microsoft Corporation) C:\WINDOWS\system32\DXToolsOfflineAnalysis.dll
2017-11-16 15:03 - 2017-11-16 15:03 - 001496064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DXToolsOfflineAnalysis.dll
2017-11-16 15:03 - 2017-11-16 15:03 - 001312256 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11_3SDKLayers.dll
2017-11-16 15:03 - 2017-11-16 15:03 - 001178112 _____ (Microsoft Corporation) C:\WINDOWS\system32\DXCap.exe
2017-11-16 15:03 - 2017-11-16 15:03 - 001166520 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationNative_v0300.dll
2017-11-16 15:03 - 2017-11-16 15:03 - 001165312 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebManagement.exe
2017-11-16 15:03 - 2017-11-16 15:03 - 001064448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d11_3SDKLayers.dll
2017-11-16 15:03 - 2017-11-16 15:03 - 000921088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DXCap.exe
2017-11-16 15:03 - 2017-11-16 15:03 - 000778936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationNative_v0300.dll
2017-11-16 15:03 - 2017-11-16 15:03 - 000778240 _____ (Microsoft Corporation) C:\WINDOWS\system32\wdp.dll
2017-11-16 15:03 - 2017-11-16 15:03 - 000538624 _____ (Microsoft Corporation) C:\WINDOWS\system32\d2d1debug3.dll
2017-11-16 15:03 - 2017-11-16 15:03 - 000498176 _____ (Microsoft Corporation) C:\WINDOWS\system32\SshSession.exe
2017-11-16 15:03 - 2017-11-16 15:03 - 000464384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d2d1debug3.dll
2017-11-16 15:03 - 2017-11-16 15:03 - 000445440 _____ (Microsoft Corporation) C:\WINDOWS\system32\SshSftp.exe
2017-11-16 15:03 - 2017-11-16 15:03 - 000398336 _____ (Windows (R) Win 7 DDK provider) C:\WINDOWS\system32\DXCpl.exe
2017-11-16 15:03 - 2017-11-16 15:03 - 000379392 _____ (Microsoft Corporation) C:\WINDOWS\system32\SshBroker.dll
2017-11-16 15:03 - 2017-11-16 15:03 - 000375296 _____ (Windows (R) Win 7 DDK provider) C:\WINDOWS\SysWOW64\DXCpl.exe
2017-11-16 15:03 - 2017-11-16 15:03 - 000349696 _____ (Microsoft Corporation) C:\WINDOWS\system32\perf_gputiming.dll
2017-11-16 15:03 - 2017-11-16 15:03 - 000334336 _____ (Microsoft Corporation) C:\WINDOWS\system32\DXGIDebug.dll
2017-11-16 15:03 - 2017-11-16 15:03 - 000284160 _____ (Microsoft Corporation) C:\WINDOWS\system32\VsGraphicsExperiment.dll
2017-11-16 15:03 - 2017-11-16 15:03 - 000271872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\perf_gputiming.dll
2017-11-16 15:03 - 2017-11-16 15:03 - 000267776 _____ (Microsoft Corporation) C:\WINDOWS\system32\PerceptionSimulationREST.dll
2017-11-16 15:03 - 2017-11-16 15:03 - 000262144 _____ (Microsoft Corporation) C:\WINDOWS\system32\SshProxy.dll
2017-11-16 15:03 - 2017-11-16 15:03 - 000239104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DXGIDebug.dll
2017-11-16 15:03 - 2017-11-16 15:03 - 000218624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VsGraphicsExperiment.dll
2017-11-16 15:03 - 2017-11-16 15:03 - 000188416 _____ (Microsoft Corporation) C:\WINDOWS\system32\DXToolsMonitor.dll
2017-11-16 15:03 - 2017-11-16 15:03 - 000175616 _____ (Microsoft Corporation) C:\WINDOWS\system32\DXToolsReporting.dll
2017-11-16 15:03 - 2017-11-16 15:03 - 000161792 _____ (Microsoft Corporation) C:\WINDOWS\system32\VsGraphicsCapture.dll
2017-11-16 15:03 - 2017-11-16 15:03 - 000142336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DXToolsMonitor.dll
2017-11-16 15:03 - 2017-11-16 15:03 - 000124624 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2017-11-16 15:03 - 2017-11-16 15:03 - 000123392 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeveloperToolsSvc.exe
2017-11-16 15:03 - 2017-11-16 15:03 - 000121856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VsGraphicsCapture.dll
2017-11-16 15:03 - 2017-11-16 15:03 - 000118784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DXToolsReporting.dll
2017-11-16 15:03 - 2017-11-16 15:03 - 000103120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2017-11-16 15:03 - 2017-11-16 15:03 - 000095744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DxToolsReportGenerator.dll
2017-11-16 15:03 - 2017-11-16 15:03 - 000095744 _____ (Microsoft Corporation) C:\WINDOWS\system32\DxToolsReportGenerator.dll
2017-11-16 15:03 - 2017-11-16 15:03 - 000090624 _____ (Microsoft Corporation) C:\WINDOWS\system32\VsGraphicsProxyStub.dll
2017-11-16 15:03 - 2017-11-16 15:03 - 000086016 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevToolsLauncher.exe
2017-11-16 15:03 - 2017-11-16 15:03 - 000076800 _____ (Microsoft Corporation) C:\WINDOWS\system32\VSD3DWARPDebug.dll
2017-11-16 15:03 - 2017-11-16 15:03 - 000076288 _____ (Microsoft Corporation) C:\WINDOWS\system32\debugregsvc.dll
2017-11-16 15:03 - 2017-11-16 15:03 - 000059392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VSD3DWARPDebug.dll
2017-11-16 15:03 - 2017-11-16 15:03 - 000058368 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeployUtil.exe
2017-11-16 15:03 - 2017-11-16 15:03 - 000041984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VsGraphicsProxyStub.dll
2017-11-16 15:03 - 2017-11-16 15:03 - 000035456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TsWpfWrp.exe
2017-11-16 15:03 - 2017-11-16 15:03 - 000035456 _____ (Microsoft Corporation) C:\WINDOWS\system32\TsWpfWrp.exe
2017-11-16 15:03 - 2017-11-16 15:03 - 000031232 _____ (Microsoft Corporation) C:\WINDOWS\system32\debugregsvcapi.dll
2017-11-16 15:03 - 2017-11-16 15:03 - 000019456 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeveloperTools.ProxyStub.dll
2017-11-16 15:03 - 2017-11-16 15:03 - 000000000 __RSD C:\WINDOWS\system32\WindowsDevicePortal
2017-11-16 15:03 - 2017-11-16 15:03 - 000000000 ___RD C:\WINDOWS\WebManagement
2017-11-16 15:03 - 2017-11-16 15:03 - 000000000 ____D C:\WINDOWS\SysWOW64\XPSViewer
2017-11-16 15:03 - 2017-11-16 15:03 - 000000000 ____D C:\Program Files\Reference Assemblies
2017-11-16 15:03 - 2017-11-16 15:03 - 000000000 ____D C:\Program Files\MSBuild
2017-11-16 15:03 - 2017-11-16 15:03 - 000000000 ____D C:\Program Files (x86)\Reference Assemblies
2017-11-16 14:57 - 2017-11-16 14:57 - 000008192 _____ C:\WINDOWS\system32\config\userdiff
2017-11-16 13:08 - 2017-11-16 13:09 - 000000145 _____ C:\Users\jedli\.php_history
2017-11-15 20:06 - 2017-11-16 17:36 - 000000000 ___DC C:\WINDOWS\Panther
2017-11-15 01:32 - 2017-11-15 01:32 - 000000094 _____ C:\Users\jedli\.gitconfig
2017-11-13 11:03 - 2017-11-13 11:03 - 000000272 _____ C:\Users\jedli\.lesshst
2017-11-13 00:40 - 2017-11-13 00:40 - 000000000 ____D C:\Users\jedli\.dbeaver-drivers
2017-11-13 00:40 - 2017-11-13 00:40 - 000000000 ____D C:\Users\jedli\.dbeaver4
2017-11-12 22:56 - 2017-11-16 15:29 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DBeaver
2017-11-12 19:04 - 2017-11-20 11:30 - 000000000 ____D C:\Users\jedli\AppData\Roaming\Monotype
2017-11-12 19:04 - 2017-11-16 15:29 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SkyFonts
2017-11-12 19:04 - 2017-11-12 19:04 - 000001960 _____ C:\Users\Public\Desktop\SkyFonts.lnk
2017-11-12 19:04 - 2017-11-12 19:04 - 000000000 ____D C:\Users\jedli\AppData\Local\Monotype_Imaging_Inc
2017-11-12 19:04 - 2017-11-12 19:04 - 000000000 ____D C:\Program Files\Monotype
2017-11-11 14:32 - 2017-11-11 14:33 - 000000000 ____D C:\Users\jedli\AppData\LocalLow\LastPass
2017-11-10 11:48 - 2017-11-10 11:48 - 000002371 _____ C:\Users\jedli\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Vivaldi.lnk
2017-11-10 11:48 - 2017-11-10 11:48 - 000000000 ____D C:\Users\jedli\AppData\Local\Vivaldi
2017-11-09 20:38 - 2017-11-09 20:38 - 000000000 ____D C:\Users\jedli\.texlive2016
2017-11-09 18:48 - 2017-11-16 15:29 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FontForge
2017-11-09 18:48 - 2017-11-12 01:00 - 000000000 ____D C:\Users\jedli\AppData\Roaming\FontForge
2017-11-09 18:47 - 2017-11-09 18:48 - 000000000 ____D C:\Program Files (x86)\FontForgeBuilds
2017-11-08 11:21 - 2017-11-08 11:21 - 000053163 _____ C:\Users\jedli\test-2017-11-08-11-21-22.gramps
2017-11-08 11:19 - 2017-11-08 11:20 - 000000000 ____D C:\Users\jedli\AppData\Roaming\gramps
2017-11-08 11:16 - 2017-11-16 15:29 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GrampsAIO64 5.0.0
2017-11-08 11:16 - 2017-11-08 11:16 - 000001113 _____ C:\Users\Public\Desktop\GrampsAIO64 5.0.0.lnk
2017-11-08 11:15 - 2017-11-08 11:17 - 000000000 ____D C:\Program Files\GrampsAIO64-5.0.0
2017-11-07 11:59 - 2017-11-16 15:29 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Node.js
2017-11-07 11:59 - 2017-11-07 11:59 - 000000000 ____D C:\Program Files\nodejs
2017-11-06 21:14 - 2017-11-16 15:36 - 000000000 ____D C:\Users\jedli\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ubisoft
2017-11-06 21:14 - 2017-11-06 21:19 - 000000000 ____D C:\Users\jedli\AppData\Local\Ubisoft Game Launcher
2017-11-06 21:14 - 2017-11-06 21:14 - 000001281 _____ C:\Users\jedli\Desktop\Uplay.lnk
2017-11-06 21:13 - 2017-11-06 21:13 - 000000000 ____D C:\Program Files (x86)\Ubisoft
2017-11-01 21:59 - 2017-11-01 21:59 - 000000000 ____D C:\Users\jedli\AppData\Local\ElevatedDiagnostics
2017-10-31 19:16 - 2017-11-16 15:29 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDFtk Server
2017-10-31 19:16 - 2017-10-31 19:16 - 000000000 ____D C:\Program Files (x86)\PDFtk Server
2017-10-31 14:14 - 2017-10-31 14:14 - 000000000 ____D C:\Program Files (x86)\VulkanRT
2017-10-31 14:14 - 2017-09-14 00:20 - 000798008 _____ C:\WINDOWS\SysWOW64\vulkan-1.dll
2017-10-31 14:14 - 2017-09-14 00:20 - 000490296 _____ C:\WINDOWS\SysWOW64\vulkaninfo.exe
2017-10-31 14:14 - 2017-09-14 00:19 - 000927544 _____ C:\WINDOWS\system32\vulkan-1.dll
2017-10-31 14:14 - 2017-09-14 00:19 - 000591160 _____ C:\WINDOWS\system32\vulkaninfo.exe
2017-10-31 14:12 - 2017-10-27 18:50 - 040237688 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcompiler.dll
2017-10-31 14:12 - 2017-10-27 18:50 - 036239480 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvoglv64.dll
2017-10-31 14:12 - 2017-10-27 18:50 - 035156928 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcompiler.dll
2017-10-31 14:12 - 2017-10-27 18:50 - 029270976 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvoglv32.dll
2017-10-31 14:12 - 2017-10-27 18:50 - 023262280 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvopencl.dll
2017-10-31 14:12 - 2017-10-27 18:50 - 019037416 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvopencl.dll
2017-10-31 14:12 - 2017-10-27 18:50 - 013864048 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll
2017-10-31 14:12 - 2017-10-27 18:50 - 013254520 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvptxJitCompiler.dll
2017-10-31 14:12 - 2017-10-27 18:50 - 011779328 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll
2017-10-31 14:12 - 2017-10-27 18:50 - 010882720 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvptxJitCompiler.dll
2017-10-31 14:12 - 2017-10-27 18:50 - 004485048 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvapi64.dll
2017-10-31 14:12 - 2017-10-27 18:50 - 004201592 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll
2017-10-31 14:12 - 2017-10-27 18:50 - 003817584 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvapi.dll
2017-10-31 14:12 - 2017-10-27 18:50 - 003614328 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll
2017-10-31 14:12 - 2017-10-27 18:50 - 001989056 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispco6438813.dll
2017-10-31 14:12 - 2017-10-27 18:50 - 001673848 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispgenco6438813.dll
2017-10-31 14:12 - 2017-10-27 18:50 - 001331200 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncMFThevc.dll
2017-10-31 14:12 - 2017-10-27 18:50 - 001321448 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncMFTH264.dll
2017-10-31 14:12 - 2017-10-27 18:50 - 001135464 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvfatbinaryLoader.dll
2017-10-31 14:12 - 2017-10-27 18:50 - 001099712 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll
2017-10-31 14:12 - 2017-10-27 18:50 - 001044848 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncMFThevc.dll
2017-10-31 14:12 - 2017-10-27 18:50 - 001038680 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncMFTH264.dll
2017-10-31 14:12 - 2017-10-27 18:50 - 001031104 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll
2017-10-31 14:12 - 2017-10-27 18:50 - 000981112 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll
2017-10-31 14:12 - 2017-10-27 18:50 - 000932288 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll
2017-10-31 14:12 - 2017-10-27 18:50 - 000885680 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvfatbinaryLoader.dll
2017-10-31 14:12 - 2017-10-27 18:50 - 000794392 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncodeAPI64.dll
2017-10-31 14:12 - 2017-10-27 18:50 - 000634224 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncodeAPI.dll
2017-10-31 14:12 - 2017-10-27 18:50 - 000615544 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFROpenGL.dll
2017-10-31 14:12 - 2017-10-27 18:50 - 000505976 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFROpenGL.dll
2017-10-31 14:12 - 2017-10-27 18:50 - 000057976 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvvhci.sys
2017-10-31 14:12 - 2017-10-27 18:50 - 000048442 _____ C:\WINDOWS\system32\nvinfo.pb
2017-10-31 14:12 - 2017-10-27 18:50 - 000000669 _____ C:\WINDOWS\SysWOW64\nv-vk32.json
2017-10-31 14:12 - 2017-10-27 18:50 - 000000669 _____ C:\WINDOWS\system32\nv-vk64.json
2017-10-30 19:37 - 2017-10-30 19:37 - 000000000 ____D C:\Users\jedli\AppData\Local\Testo_SE_&_Co._KGaA
2017-10-30 19:30 - 2017-11-16 15:29 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Testo
2017-10-30 19:30 - 2017-10-30 19:32 - 000000000 ____D C:\Users\jedli\AppData\Roaming\Testo
2017-10-30 19:30 - 2017-10-30 19:30 - 000000000 ____D C:\Program Files\Testo
2017-10-30 19:30 - 2017-10-30 19:30 - 000000000 ____D C:\Program Files (x86)\Testo
2017-10-24 10:02 - 2017-10-12 22:38 - 001988032 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispco6438800.dll
2017-10-24 10:02 - 2017-10-12 22:38 - 001606592 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispgenco6438800.dll
2017-10-24 09:48 - 2017-10-11 02:05 - 000050624 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvvad64v.sys

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2017-11-20 14:58 - 2017-02-02 23:55 - 000000000 ____D C:\Program Files (x86)\Avira
2017-11-20 14:51 - 2016-01-14 00:38 - 000000000 ____D C:\ProgramData\Package Cache
2017-11-20 14:48 - 2017-01-31 22:09 - 000000000 ____D C:\Users\jedli\AppData\LocalLow\Mozilla
2017-11-20 14:43 - 2017-09-29 14:44 - 000000000 ____D C:\WINDOWS\INF
2017-11-20 13:25 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\rescache
2017-11-20 13:24 - 2017-09-29 14:46 - 000000000 ___HD C:\Program Files\WindowsApps
2017-11-20 13:20 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\AppReadiness
2017-11-20 13:16 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\DeliveryOptimization
2017-11-20 12:25 - 2017-08-13 21:13 - 000000000 ____D C:\ProgramData\NVIDIA
2017-11-20 08:05 - 2017-02-02 14:26 - 000002246 _____ C:\Users\jedli\Desktop\Slack.lnk
2017-11-20 08:05 - 2017-02-02 14:26 - 000000000 ____D C:\Users\jedli\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Slack Technologies
2017-11-20 08:05 - 2017-02-02 14:26 - 000000000 ____D C:\Users\jedli\AppData\Local\slack
2017-11-20 07:44 - 2017-02-02 14:26 - 000000000 ____D C:\Users\jedli\AppData\Roaming\Slack
2017-11-20 07:44 - 2017-02-02 14:26 - 000000000 ____D C:\Users\jedli\AppData\Local\SquirrelTemp
2017-11-20 07:44 - 2017-01-31 22:17 - 000000000 ____D C:\Program Files (x86)\Steam
2017-11-20 07:43 - 2017-01-31 19:29 - 000000000 __SHD C:\Users\jedli\IntelGraphicsProfiles
2017-11-17 13:09 - 2017-02-12 22:38 - 000000000 ____D C:\Users\jedli\AppData\Roaming\vlc
2017-11-17 11:25 - 2017-02-02 14:32 - 000025668 _____ C:\Users\jedli\.viminfo
2017-11-17 11:00 - 2017-02-02 14:58 - 000000000 ____D C:\Users\jedli\AppData\Local\clink
2017-11-17 10:47 - 2017-09-30 15:31 - 000789496 _____ C:\WINDOWS\system32\perfh005.dat
2017-11-17 10:47 - 2017-09-30 15:31 - 000162964 _____ C:\WINDOWS\system32\perfc005.dat
2017-11-17 10:44 - 2017-02-03 21:58 - 000000000 ____D C:\Users\jedli\AppData\Local\MEGAsync
2017-11-17 01:53 - 2017-04-27 19:51 - 000000270 __RSH C:\ProgramData\ntuser.pol
2017-11-17 01:53 - 2017-02-21 13:19 - 000000000 ____D C:\ProgramData\VMware
2017-11-17 01:52 - 2017-09-29 14:46 - 000000000 ___SD C:\WINDOWS\SysWOW64\F12
2017-11-17 01:52 - 2017-09-29 14:46 - 000000000 ___SD C:\WINDOWS\system32\F12
2017-11-17 01:52 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\TextInput
2017-11-17 01:52 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2017-11-17 01:52 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2017-11-17 01:52 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\system32\appraiser
2017-11-17 01:52 - 2017-09-29 09:45 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2017-11-17 01:52 - 2017-09-29 09:45 - 000000000 ____D C:\WINDOWS\system32\Dism
2017-11-17 01:49 - 2016-01-14 00:46 - 000000000 ____D C:\WINDOWS\SysWOW64\sda
2017-11-16 21:01 - 2017-03-29 12:22 - 000000000 __SHD C:\Users\jedli\AppData\Local\lxss
2017-11-16 17:55 - 2017-09-29 14:37 - 000000000 ____D C:\WINDOWS\CbsTemp
2017-11-16 17:38 - 2017-08-13 21:33 - 000002428 _____ C:\Users\jedli\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2017-11-16 17:38 - 2017-02-04 18:40 - 000000000 ___RD C:\Users\jedli\OneDrive
2017-11-16 17:36 - 2017-01-31 19:29 - 000000000 ____D C:\Users\jedli\AppData\Local\TileDataLayer
2017-11-16 17:36 - 2015-11-16 22:33 - 000000000 __RHD C:\Users\Public\AccountPictures
2017-11-16 15:48 - 2017-09-29 14:46 - 000000000 ____D C:\ProgramData\USOPrivate
2017-11-16 15:46 - 2017-09-29 14:46 - 000000000 ____D C:\Program Files\windows nt
2017-11-16 15:45 - 2017-09-29 09:45 - 000032768 _____ C:\WINDOWS\system32\config\ELAM
2017-11-16 15:43 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\Registration
2017-11-16 15:43 - 2017-01-31 21:08 - 000023020 _____ C:\WINDOWS\system32\emptyregdb.dat
2017-11-16 15:40 - 2017-01-31 21:43 - 000002279 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2017-11-16 15:40 - 2017-01-31 21:43 - 000002267 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2017-11-16 15:40 - 2016-01-14 00:42 - 001813082 _____ C:\WINDOWS\SysWOW64\PerfStringBackup.INI
2017-11-16 15:38 - 2017-08-15 12:37 - 000000000 ____D C:\Users\jedli\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Power Loss
2017-11-16 15:37 - 2017-09-25 13:37 - 000000000 ____D C:\Users\jedli\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Docker
2017-11-16 15:37 - 2017-08-08 16:22 - 000000000 ____D C:\Users\jedli\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\JPEG Autorotate
2017-11-16 15:37 - 2017-07-30 12:16 - 000000000 ____D C:\Users\jedli\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Torch Boy
2017-11-16 15:37 - 2017-04-20 15:02 - 000000000 ____D C:\Users\jedli\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Emscripten
2017-11-16 15:37 - 2017-04-18 20:10 - 000000000 ____D C:\Users\jedli\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TeX Live 2016
2017-11-16 15:37 - 2017-04-10 11:03 - 000000000 ____D C:\Users\jedli\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MAISIN&CO., Inc
2017-11-16 15:37 - 2017-03-23 17:38 - 000000000 ____D C:\Users\jedli\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Python 3.6
2017-11-16 15:37 - 2017-02-21 17:14 - 000000000 ____D C:\Users\jedli\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinDirStat
2017-11-16 15:37 - 2017-02-05 11:55 - 000000000 ____D C:\Users\jedli\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MyHeritage.com
2017-11-16 15:37 - 2017-02-04 21:43 - 000000000 ____D C:\Users\jedli\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\JetBrains
2017-11-16 15:37 - 2017-02-03 21:58 - 000000000 ____D C:\Users\jedli\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MEGAsync
2017-11-16 15:37 - 2017-02-03 13:05 - 000000000 ____D C:\Users\jedli\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\KeyTweak
2017-11-16 15:37 - 2017-02-02 14:28 - 000000000 ____D C:\Users\jedli\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\DBeaver
2017-11-16 15:37 - 2017-02-02 14:27 - 000000000 ____D C:\Users\jedli\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Toggl
2017-11-16 15:37 - 2017-01-31 22:25 - 000000000 ____D C:\Users\jedli\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2017-11-16 15:36 - 2017-09-29 14:46 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2017-11-16 15:36 - 2017-02-05 18:23 - 000000000 ____D C:\Users\jedli\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Toshiba Corporation
2017-11-16 15:36 - 2017-02-03 23:12 - 000000000 ____D C:\Users\jedli\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Bohemia Interactive
2017-11-16 15:36 - 2017-02-03 13:03 - 000000000 ____D C:\Users\jedli\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\RandyRants.com
2017-11-16 15:36 - 2017-02-02 14:07 - 000000000 ____D C:\Users\jedli\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplikace Chrome
2017-11-16 15:35 - 2017-09-29 09:45 - 000000000 ____D C:\WINDOWS\system32\Sysprep
2017-11-16 15:34 - 2017-08-13 21:13 - 000000000 ____D C:\Program Files\NVIDIA Corporation
2017-11-16 15:34 - 2017-08-13 21:13 - 000000000 ____D C:\Program Files\Elantech
2017-11-16 15:33 - 2017-08-13 21:13 - 000000000 ____D C:\WINDOWS\SysWOW64\RTCOM
2017-11-16 15:33 - 2017-08-13 21:13 - 000000000 ____D C:\WINDOWS\system32\DAX2
2017-11-16 15:31 - 2017-09-29 14:46 - 000028672 _____ C:\WINDOWS\system32\config\BCD-Template
2017-11-16 15:29 - 2017-09-29 14:49 - 000000000 ____D C:\WINDOWS\Setup
2017-11-16 15:29 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\SysWOW64\Macromed
2017-11-16 15:29 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\SysWOW64\GroupPolicy
2017-11-16 15:29 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\system32\WinBioDatabase
2017-11-16 15:29 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\system32\spool
2017-11-16 15:29 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\system32\oobe
2017-11-16 15:29 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\system32\NDF
2017-11-16 15:29 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\system32\Macromed
2017-11-16 15:29 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\ModemLogs
2017-11-16 15:29 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2017-11-16 15:29 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\Help
2017-11-16 15:29 - 2017-09-29 14:46 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2017-11-16 15:29 - 2017-09-29 14:46 - 000000000 ____D C:\Program Files\Common Files\microsoft shared
2017-11-16 15:29 - 2017-09-29 10:04 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Robo 3T 1.1.1
2017-11-16 15:29 - 2017-09-29 09:33 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Oracle VM VirtualBox
2017-11-16 15:29 - 2017-09-23 16:42 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VMware
2017-11-16 15:29 - 2017-08-25 09:58 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ArmA 2 - Combined Operations [GOG.com]
2017-11-16 15:29 - 2017-08-16 15:24 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Jotun [GOG.com]
2017-11-16 15:29 - 2017-08-16 08:58 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Deadlight - Director's Cut [GOG.com]
2017-11-16 15:29 - 2017-08-14 12:33 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Visual Studio Code
2017-11-16 15:29 - 2017-08-14 07:58 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\digiKam 5.6.0
2017-11-16 15:29 - 2017-08-13 21:13 - 000000000 ____D C:\Program Files\Intel
2017-11-16 15:29 - 2017-08-13 21:13 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2017-11-16 15:29 - 2017-08-08 15:44 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Cyberduck
2017-11-16 15:29 - 2017-08-07 15:50 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Image Resizer for Windows
2017-11-16 15:29 - 2017-08-03 23:00 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Unity 2017.1.0f3 (64-bit)
2017-11-16 15:29 - 2017-07-30 00:14 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Recordit
2017-11-16 15:29 - 2017-07-29 15:13 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GraphicsGale
2017-11-16 15:29 - 2017-07-12 23:09 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RollerCoaster Tycoon Deluxe [GOG.com]
2017-11-16 15:29 - 2017-07-12 23:00 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Patrician 3 [GOG.com]
2017-11-16 15:29 - 2017-07-10 06:51 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Stronghold HD [GOG.com]
2017-11-16 15:29 - 2017-07-08 10:03 - 000000000 ____D C:\Program Files\UNP
2017-11-16 15:29 - 2017-06-20 09:32 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Defcon [GOG.com]
2017-11-16 15:29 - 2017-06-20 09:31 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Eador - Masters of the Broken World [GOG.com]
2017-11-16 15:29 - 2017-06-20 08:02 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Crysis [GOG.com]
2017-11-16 15:29 - 2017-06-19 21:08 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Serious Sam The First Encounter [GOG.com]
2017-11-16 15:29 - 2017-05-19 22:55 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TagScanner
2017-11-16 15:29 - 2017-05-17 20:03 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\The Final Station [GOG.com]
2017-11-16 15:29 - 2017-05-15 21:58 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mp3tag
2017-11-16 15:29 - 2017-05-10 12:56 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TuxGuitar
2017-11-16 15:29 - 2017-04-27 19:54 - 000000000 ____D C:\WINDOWS\SysWOW64\rufus_files
2017-11-16 15:29 - 2017-04-24 13:33 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TickTick
2017-11-16 15:29 - 2017-04-18 17:59 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ImageMagick 7.0.5 Q16 (64-bit)
2017-11-16 15:29 - 2017-03-24 13:54 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Inkscape 0.92.1
2017-11-16 15:29 - 2017-03-24 12:37 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GTK2 Runtime
2017-11-16 15:29 - 2017-03-18 22:03 - 000000000 ____D C:\WINDOWS\system32\Tasks_Migrated
2017-11-16 15:29 - 2017-02-12 19:18 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VeNCrypt-0.2.6
2017-11-16 15:29 - 2017-02-05 19:20 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FileZilla FTP Client
2017-11-16 15:29 - 2017-02-05 17:37 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CrystalDiskMark5
2017-11-16 15:29 - 2017-02-05 12:11 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ABRA FlexiBee
2017-11-16 15:29 - 2017-02-05 12:08 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2017-11-16 15:29 - 2017-02-05 01:04 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ghostscript
2017-11-16 15:29 - 2017-02-04 21:17 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
2017-11-16 15:29 - 2017-02-04 21:15 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2017-11-16 15:29 - 2017-02-04 21:14 - 000000000 ___SD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LibreOffice 5.3
2017-11-16 15:29 - 2017-02-04 20:40 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ChocolateyGUI
2017-11-16 15:29 - 2017-02-04 17:16 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
2017-11-16 15:29 - 2017-02-03 13:34 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AutoHotkey
2017-11-16 15:29 - 2017-02-02 16:54 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LockHunter
2017-11-16 15:29 - 2017-02-02 14:49 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MariaDB 10.1 (x64)
2017-11-16 15:29 - 2017-02-02 14:26 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip
2017-11-16 15:29 - 2017-02-02 14:24 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Git
2017-11-16 15:29 - 2017-02-02 14:22 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java Development Kit
2017-11-16 15:29 - 2017-02-01 12:18 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\JetBrains
2017-11-16 15:29 - 2017-01-31 22:17 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam
2017-11-16 15:29 - 2016-01-14 01:23 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BurnRecovery
2017-11-16 15:29 - 2016-01-14 00:55 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nahimic for MSI
2017-11-16 15:29 - 2016-01-14 00:49 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Thunderbolt(TM) Software
2017-11-16 15:29 - 2016-01-14 00:42 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel
2017-11-16 15:29 - 2015-10-30 10:07 - 000000000 ____D C:\WINDOWS\ShellNew
2017-11-16 15:29 - 2015-10-30 08:24 - 000000000 ___HD C:\WINDOWS\system32\GroupPolicy
2017-11-16 15:15 - 2017-09-29 14:46 - 000000000 __RHD C:\Users\Public\Libraries
2017-11-16 15:12 - 2017-05-17 19:20 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GOG.com
2017-11-16 15:12 - 2017-03-23 20:09 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GnuWin32
2017-11-16 15:12 - 2017-03-23 17:59 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Visual C++ Build Tools
2017-11-16 15:12 - 2017-03-23 17:57 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Kits
2017-11-16 15:12 - 2017-03-23 17:47 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Visual Studio 2015
2017-11-16 15:12 - 2017-03-07 23:15 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dex [GOG.com]
2017-11-16 15:12 - 2017-02-06 13:55 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP
2017-11-16 15:12 - 2017-02-05 17:51 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Simpli Software
2017-11-16 15:12 - 2016-01-14 00:54 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SteelSeries
2017-11-16 15:12 - 2016-01-14 00:53 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MSI
2017-11-16 15:11 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\appcompat
2017-11-16 15:11 - 2017-08-13 21:13 - 000000000 ____D C:\Program Files\Realtek
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\zu-ZA
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\yo-NG
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\xh-ZA
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\wo-SN
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\vi-VN
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\uz-Latn-UZ
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\ur-PK
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\ug-CN
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\tt-RU
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\tn-ZA
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\tk-TM
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\ti-ET
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\tg-Cyrl-TJ
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\te-IN
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\ta-IN
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\sw-KE
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\sr-Cyrl-RS
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\sr-Cyrl-BA
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\sq-AL
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\si-LK
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\sd-Arab-PK
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\rw-RW
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\quz-PE
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\quc-Latn-GT
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\prs-AF
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\pa-IN
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\pa-Arab-PK
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\or-IN
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\nso-ZA
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\nn-NO
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\ne-NP
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\mt-MT
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\mr-IN
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\mn-MN
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\ml-IN
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\mk-MK
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\mi-NZ
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\lo-LA
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\lb-LU
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\ky-KG
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\ku-Arab-IQ
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\kok-IN
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\kn-IN
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\km-KH
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\kk-KZ
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\ka-GE
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\is-IS
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\ig-NG
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\id-ID
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\chr-CHER-US
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\hy-AM
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\ha-Latn-NG
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\gu-IN
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\gd-GB
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\ga-IE
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\fil-PH
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\fa-IR
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\cy-GB
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\ca-ES-valencia
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\bs-Latn-BA
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\bn-IN
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\bn-BD
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\be-BY
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\az-Latn-AZ
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\as-IN
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\am-ET
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\af-ZA
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\zu-ZA
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\yo-NG
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\xh-ZA
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\wo-SN
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\vi-VN
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\uz-Latn-UZ
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\ur-PK
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\ug-CN
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\tt-RU
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\tn-ZA
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\tk-TM
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\ti-ET
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\tg-Cyrl-TJ
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\te-IN
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\ta-IN
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\sw-KE
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\sr-Cyrl-RS
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\sr-Cyrl-BA
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\sq-AL
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\si-LK
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\sd-Arab-PK
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\rw-RW
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\quz-PE
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\quc-Latn-GT
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\prs-AF
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\pa-IN
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\pa-Arab-PK
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\or-IN
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\nso-ZA
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\nn-NO
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\ne-NP
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\mt-MT
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\mr-IN
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\mn-MN
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\ml-IN
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\mk-MK
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\mi-NZ
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\lo-LA
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\lb-LU
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\ky-KG
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\ku-Arab-IQ
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\kok-IN
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\kn-IN
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\km-KH
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\kk-KZ
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\ka-GE
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\is-IS
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\ig-NG
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\id-ID
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\chr-CHER-US
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\hy-AM
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\ha-Latn-NG
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\gu-IN
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\gd-GB
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\ga-IE
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\fil-PH
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\fa-IR
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\cy-GB
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\ca-ES-valencia
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\bs-Latn-BA
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\bn-IN
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\bn-BD
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\be-BY
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\az-Latn-AZ
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\as-IN
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\am-ET
2017-11-16 15:10 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\af-ZA
2017-11-16 15:07 - 2017-09-30 15:31 - 000000000 ____D C:\WINDOWS\SysWOW64\winrm
2017-11-16 15:07 - 2017-09-30 15:31 - 000000000 ____D C:\WINDOWS\SysWOW64\WCN
2017-11-16 15:07 - 2017-09-30 15:31 - 000000000 ____D C:\WINDOWS\SysWOW64\slmgr
2017-11-16 15:07 - 2017-09-30 15:31 - 000000000 ____D C:\WINDOWS\SysWOW64\Printing_Admin_Scripts
2017-11-16 15:07 - 2017-09-30 15:31 - 000000000 ____D C:\WINDOWS\system32\winrm
2017-11-16 15:07 - 2017-09-30 15:31 - 000000000 ____D C:\WINDOWS\system32\WCN
2017-11-16 15:07 - 2017-09-30 15:31 - 000000000 ____D C:\WINDOWS\system32\slmgr
2017-11-16 15:07 - 2017-09-30 15:31 - 000000000 ____D C:\WINDOWS\system32\Printing_Admin_Scripts
2017-11-16 15:07 - 2017-09-29 14:46 - 000000000 ___SD C:\WINDOWS\SysWOW64\DiagSvcs
2017-11-16 15:07 - 2017-09-29 14:46 - 000000000 ___SD C:\WINDOWS\system32\DiagSvcs
2017-11-16 15:07 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\system32\SystemResetPlatform
2017-11-16 15:07 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\system32\migwiz
2017-11-16 15:07 - 2017-09-29 14:46 - 000000000 ____D C:\Program Files\Windows Photo Viewer
2017-11-16 15:07 - 2017-09-29 14:46 - 000000000 ____D C:\Program Files\Windows Defender
2017-11-16 15:07 - 2017-09-29 14:46 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer
2017-11-16 15:07 - 2017-09-29 14:46 - 000000000 ____D C:\Program Files (x86)\Windows Defender
2017-11-16 15:07 - 2017-09-29 09:45 - 000000000 ____D C:\WINDOWS\servicing
2017-11-16 15:03 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\SysWOW64\MUI
2017-11-16 15:03 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\system32\MUI
2017-11-16 15:02 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\OCR
2017-11-16 12:07 - 2017-05-31 07:25 - 000007643 _____ C:\Users\jedli\AppData\Local\Resmon.ResmonCfg
2017-11-16 11:54 - 2017-02-02 17:09 - 000000000 ____D C:\WINDOWS\system32\MRT
2017-11-16 11:48 - 2017-10-11 17:43 - 127017032 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT-KB890830.exe
2017-11-16 11:48 - 2017-02-02 17:09 - 127017032 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2017-11-16 11:05 - 2017-08-14 12:33 - 000000000 ____D C:\Program Files\Microsoft VS Code
2017-11-16 10:33 - 2017-02-04 21:03 - 000002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2017-11-15 19:53 - 2017-02-21 12:39 - 000000000 ____D C:\Users\jedli\.VirtualBox
2017-11-15 19:28 - 2017-05-17 19:20 - 000000000 ____D C:\Program Files (x86)\GOG Galaxy
2017-11-15 19:11 - 2017-01-31 22:08 - 000000000 ____D C:\Program Files\Mozilla Firefox
2017-11-15 19:11 - 2017-01-31 22:08 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2017-11-15 18:57 - 2017-02-04 21:16 - 000001047 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer 12.lnk
2017-11-15 18:57 - 2017-02-04 21:16 - 000001035 _____ C:\Users\Public\Desktop\TeamViewer 12.lnk
2017-11-15 18:57 - 2017-02-04 21:15 - 000000000 ____D C:\Program Files (x86)\TeamViewer
2017-11-15 16:44 - 2017-02-23 21:13 - 000000000 ____D C:\Users\jedli\AppData\Local\transmission
2017-11-15 15:04 - 2017-02-21 14:13 - 000000000 ____D C:\Users\jedli\AppData\Local\VMware
2017-11-15 14:55 - 2017-02-21 14:13 - 000000000 ____D C:\Users\jedli\AppData\Roaming\VMware
2017-11-15 12:01 - 2017-01-31 22:09 - 000000000 ____D C:\Users\jedli\AppData\Roaming\Mozilla
2017-11-15 11:58 - 2017-05-09 12:36 - 000001012 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2017-11-14 20:37 - 2017-02-02 14:30 - 000000000 ____D C:\Users\jedli\Projekty
2017-11-14 20:27 - 2017-02-05 18:23 - 000002284 _____ C:\Users\jedli\Desktop\SSD Utility.lnk
2017-11-14 14:27 - 2017-02-25 10:41 - 000000000 ____D C:\Users\jedli\AppData\Roaming\Composer
2017-11-14 09:57 - 2017-03-22 08:19 - 000000000 ____D C:\tmp
2017-11-13 11:31 - 2017-02-05 19:15 - 000000000 ____D C:\tools
2017-11-13 10:28 - 2017-02-02 16:21 - 000005539 _____ C:\Users\jedli\.bash_history
2017-11-13 00:40 - 2017-02-02 15:58 - 000000000 ____D C:\Users\jedli\.eclipse
2017-11-12 22:56 - 2017-02-02 14:28 - 000000000 ____D C:\Program Files\DBeaver
2017-11-11 23:40 - 2017-02-11 15:00 - 000000121 _____ C:\Users\jedli\.yarnrc
2017-11-10 11:37 - 2017-05-09 12:36 - 000001000 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk
2017-11-08 13:31 - 2017-02-05 11:57 - 000000000 ____D C:\Users\jedli\Documents\MyHeritage
2017-11-07 22:13 - 2017-02-14 20:05 - 000000000 ____D C:\Users\jedli\.gimp-2.8
2017-11-07 15:47 - 2017-02-02 16:26 - 000000000 ____D C:\Users\jedli\AppData\Roaming\npm-cache
2017-11-07 14:54 - 2017-02-04 18:38 - 000000000 ____D C:\Users\jedli\AppData\Local\CrashDumps
2017-11-07 11:58 - 2017-01-31 21:40 - 000000000 ____D C:\ProgramData\chocolatey
2017-11-04 02:25 - 2017-09-29 14:49 - 000835568 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2017-11-04 02:25 - 2017-09-29 14:49 - 000177648 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2017-11-02 14:16 - 2017-02-02 15:03 - 000002197 _____ C:\Users\jedli\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\f.lux.lnk
2017-10-27 17:36 - 2017-08-13 21:13 - 000001951 _____ C:\WINDOWS\NvContainerRecovery.bat
2017-10-27 17:12 - 2017-08-13 21:13 - 005960824 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcpl.dll
2017-10-27 17:12 - 2017-08-13 21:13 - 002587768 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvc64.dll
2017-10-27 17:12 - 2017-08-13 21:13 - 001766520 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvcr.dll
2017-10-27 17:12 - 2017-08-13 21:13 - 000607168 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nv3dappshext.dll
2017-10-27 17:12 - 2017-08-13 21:13 - 000449656 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvmctray.dll
2017-10-27 17:12 - 2017-08-13 21:13 - 000123000 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvshext.dll
2017-10-27 17:12 - 2017-08-13 21:13 - 000081856 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nv3dappshextr.dll
2017-10-25 11:33 - 2017-08-13 21:13 - 007802921 _____ C:\WINDOWS\system32\nvcoproc.bin
2017-10-24 10:04 - 2017-02-04 22:21 - 000000000 ____D C:\Users\jedli\AppData\Roaming\NVIDIA
2017-10-24 09:48 - 2017-08-13 21:13 - 000000000 ____D C:\ProgramData\NVIDIA Corporation
2017-10-24 09:48 - 2017-02-04 17:16 - 000001492 _____ C:\Users\Public\Desktop\GeForce Experience.lnk
2017-10-21 20:46 - 2017-02-11 15:00 - 000000000 ____D C:\Users\jedli\AppData\Local\Yarn

==================== Files in the root of some directories =======

2015-12-30 00:44 - 2015-12-30 00:44 - 000082537 _____ () C:\Program Files (x86)\en.rtf
2017-09-24 17:57 - 2017-09-24 17:57 - 000099804 _____ () C:\Users\jedli\AppData\Roaming\VideoPad.dmp
2017-02-11 15:36 - 2017-02-11 15:36 - 000000090 _____ () C:\Users\jedli\AppData\Local\.meteorsession
2017-08-14 07:58 - 2017-08-14 12:26 - 000021099 _____ () C:\Users\jedli\AppData\Local\digikamrc
2017-02-12 00:14 - 2017-02-12 00:14 - 000000000 _____ () C:\Users\jedli\AppData\Local\Driver_1535Present.flag
2017-02-12 00:14 - 2017-02-12 00:14 - 000000000 _____ () C:\Users\jedli\AppData\Local\Driver_LOM_8171Present.flag
2017-07-29 15:15 - 2017-07-29 15:15 - 000000063 _____ () C:\Users\jedli\AppData\Local\emaildefaults
2017-07-29 15:15 - 2017-07-29 15:15 - 000000039 _____ () C:\Users\jedli\AppData\Local\kritadisplayrc
2017-07-29 15:14 - 2017-07-29 15:15 - 000015364 _____ () C:\Users\jedli\AppData\Local\kritarc
2017-11-20 11:35 - 2017-11-20 11:35 - 000009142 _____ () C:\Users\jedli\AppData\Local\recently-used.xbel
2017-05-31 07:25 - 2017-11-16 12:07 - 000007643 _____ () C:\Users\jedli\AppData\Local\Resmon.ResmonCfg
2017-08-16 19:12 - 2017-08-16 19:12 - 000002075 _____ () C:\Users\jedli\AppData\Local\showfotorc

Some files in TEMP:
====================
2017-11-20 13:12 - 2017-10-31 20:26 - 020791408 _____ (Spotify Ltd) C:\Users\jedli\AppData\Local\Temp\SpotifyUninstall.exe

==================== Bamital & volsnap ======================

(There is no automatic fix for files that do not pass verification.)

C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\wininit.exe => File is digitally signed
C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\SysWOW64\explorer.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\SysWOW64\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\SysWOW64\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\SysWOW64\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
C:\WINDOWS\SysWOW64\dnsapi.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed



===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===

==================== Drive and Memory info ===================



==================== MBR and Partition Table ==================

Image Resizer for Windows (64 bit) (HKLM\...\{617CA6E9-D5FB-4017-8130-82E68C56C34D}) (Version: 3.0.4802.35565 - Brice Lambson) Hidden
Image Resizer for Windows (HKLM-x32\...\{69d72156-6582-4556-8637-06f40aa7f85b}) (Version: 3.0.4802.35565 - Brice Lambson)
ContextMenuHandlers1: [Image Resizer] -> {51B4D7E5-7568-4234-B4BB-47FB3C016A69} => C:\Program Files\Image Resizer for Windows\ShellExtensions.dll [2013-02-23] (Brice Lambson)

==================== Scheduled Tasks (whitelisted) ==================

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\WINDOWS\SysWoW64\Macromed\Flash\FlashPlayerUpdateService.exe

==================== Alternate Data Streams (whitelisted) ==================


==================== Security Center ==================

AV: Avira Antivirus (Disabled - Up to date) {B3F630BD-538D-1B4A-14FA-14B63235278F}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Avira Antivirus (Disabled - Up to date) {0897D159-75B7-14C4-2E4A-2FC449B26D32}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}



===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)

  
***** Velikost "Plochy" *****

Velikost slozky "C:\Users\jedli\Desktop" je 1032 MB.
 
 
***** Startup Programs *****
 
 
***** Firewall rules *****

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
    DisableNotifications    REG_DWORD    0x0
    EnableFirewall    REG_DWORD    0x1
    DoNotAllowExceptions    REG_DWORD    0x0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
    DisableNotifications    REG_DWORD    0x0
    EnableFirewall    REG_DWORD    0x1
    DoNotAllowExceptions    REG_DWORD    0x0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
 
 
***** System Restore *****

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]

 
==================== End Of Log ==============================
