Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Pomalý počítač - prosím o kontrolu logu (log je rozdělen)

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Odpovědět
Zpráva
Autor
TinTon
Návštěvník
Návštěvník
Příspěvky: 9
Registrován: 11 úno 2017 17:18

Pomalý počítač - prosím o kontrolu logu (log je rozdělen)

#1 Příspěvek od TinTon »

Ahoj, prosím o kontrolu logu, v poslední době se mi zdá počítač příliš pomalý. Ve chvílích kdy bych to nečekal je zátěž disku poměrně vysoká. Děkuji za případé rady. :)

Logfile of random's system information tool 1.14 (written by random/random)
Run by Pavel at 2017-02-11 17:11:38
Microsoft Windows 10 Pro
System drive C: has 514 GB (54%) free of 953 GB
Total RAM: 8104 MB (19% free)
X64

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 17:12:07, on 11.02.2017
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.14393.0000)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Program Files (x86)\Gyazo\GyStation.exe
C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Program Files (x86)\Bloody5\Bloody5\Bloody5.exe
C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe
C:\Program Files (x86)\Dropbox\Client\Dropbox.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\IPC\AdobeIPCBroker.exe
C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ADS\Adobe Desktop Service.exe
C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\HEX\Adobe CEF Helper.exe
C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSync\CoreSync.exe
C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCXProcess\CCXProcess.exe
C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCXProcess\libs\node.exe
C:\Program Files (x86)\Atlassian\HipChat4\HipChat.exe
C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCLibrary\CCLibrary.exe
C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCLibrary\libs\node.exe
C:\Program Files (x86)\Atlassian\HipChat4\bin\QtWebEngineProcess.exe
C:\Program Files (x86)\KeePass Password Safe\KeePass.exe
C:\Program Files (x86)\Mozilla Thunderbird\thunderbird.exe
C:\wamp\wampmanager.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Program Files\Adobe\Adobe Photoshop CC 2017\Required\CEP\CEPHtmlEngine\CEPHtmlEngine.exe
C:\Program Files\Adobe\Adobe Photoshop CC 2017\Required\CEP\CEPHtmlEngine\CEPHtmlEngine.exe
C:\Program Files\Adobe\Adobe Photoshop CC 2017\Required\CEP\CEPHtmlEngine\CEPHtmlEngine.exe
C:\Program Files\Adobe\Adobe Photoshop CC 2017\Required\CEP\CEPHtmlEngine\CEPHtmlEngine.exe
C:\Program Files\Adobe\Adobe Photoshop CC 2017\Required\CEP\CEPHtmlEngine\CEPHtmlEngine.exe
C:\Program Files\Adobe\Adobe Photoshop CC 2017\Required\CEP\CEPHtmlEngine\CEPHtmlEngine.exe
C:\Program Files\Adobe\Adobe Photoshop CC 2017\Required\CEP\CEPHtmlEngine\CEPHtmlEngine.exe
C:\Program Files\Adobe\Adobe Photoshop CC 2017\Required\CEP\CEPHtmlEngine\CEPHtmlEngine.exe
C:\Program Files\Adobe\Adobe Photoshop CC 2017\Required\CEP\CEPHtmlEngine\CEPHtmlEngine.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Git\bin\ssh-agent.exe
C:\Program Files (x86)\Git\bin\git.exe
C:\Program Files (x86)\Git\bin\ssh.exe
C:\Program Files (x86)\Git\bin\git.exe
C:\Program Files (x86)\Git\bin\ssh.exe
C:\Program Files (x86)\pgAdmin 4\v1\runtime\pgAdmin4.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Skype\Browser\SkypeBrowserHost.exe
C:\Program Files (x86)\Skype\Browser\SkypeBrowserHost.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Skype\Browser\SkypeBrowserHost.exe
C:\Program Files (x86)\Skype\Browser\SkypeBrowserHost.exe
C:\WINDOWS\SysWOW64\SearchProtocolHost.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\Pavel_RSITx64.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://lenovo.com/cz/cs/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = %11%\blank.htm
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=
O2 - BHO: Skype for Business Click to Call BHO - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\Office15\OCHelper.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_111\bin\ssv.dll
O2 - BHO: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_111\bin\jp2ssv.dll
O4 - HKLM\..\Run: [Adobe Creative Cloud] "C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe" --showwindow=false --onOSstartup=true
O4 - HKLM\..\Run: [Dropbox] "C:\Program Files (x86)\Dropbox\Client\Dropbox.exe" /systemstartup
O4 - HKLM\..\Run: [Codec Settings UAC Manager] "C:\WINDOWS\system32\Codecs\CodecUACManager.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [Gyazo] C:\Program Files (x86)\Gyazo\GyStation.exe
O4 - HKCU\..\Run: [Steam] "C:\Program Files (x86)\Steam\steam.exe" -silent
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [Bloody2] "C:\Program Files (x86)\Bloody5\Bloody5\Bloody5.exe" Minimum
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O4 - Startup: MEGAsync.lnk = Pavel\AppData\Local\MEGAsync\MEGAsync.exe
O4 - Global Startup: CodecPackTrayMenu.lnk = C:\Windows\SysWOW64\Codecs\TrayMenu.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\Program Files\Microsoft Office 15\Root\Office15\EXCEL.EXE/3000
O8 - Extra context menu item: Se&nd to OneNote - res://C:\Program Files\Microsoft Office 15\Root\Office15\ONBttnIE.dll/105
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIE.dll
O9 - Extra button: Skype for Business Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\Office15\OCHelper.dll
O9 - Extra 'Tools' menuitem: Skype for Business Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\Office15\OCHelper.dll
O9 - Extra button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIELinkedNotes.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: AdobeUpdateService - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe
O23 - Service: Adobe Genuine Software Integrity Service (AGSService) - Adobe Systems, Incorporated - C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: Služba Vzdálené plochy Chrome (chromoting) - Google Inc. - C:\Program Files (x86)\Google\Chrome Remote Desktop\56.0.2924.51\remoting_host.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: Dropbox Update Service (dbupdate) (dbupdate) - Dropbox, Inc. - C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
O23 - Service: Dropbox Update Service (dbupdatem) (dbupdatem) - Dropbox, Inc. - C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
O23 - Service: DbxSvc - Unknown owner - C:\WINDOWS\system32\DbxSvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel(R) Corporation - C:\Program Files\Intel\WiFi\bin\EvtEng.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: FortiClient Service Scheduler (FA_Scheduler) - Fortinet Inc. - C:\Program Files (x86)\Fortinet\FortiClient\scheduler.exe
O23 - Service: NVIDIA GeForce Experience Service (GfExperienceService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: hMailServer - hMailServer - C:\Program Files (x86)\hMailServer\Bin\hMailServer.exe
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: @oem101.inf,%SERVICE_NAME%;Intel Bluetooth Service (ibtsiva) - Unknown owner - C:\WINDOWS\system32\ibtsiva (file missing)
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService2.0.0.0) - Unknown owner - C:\WINDOWS\system32\igfxCUIService.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: Wireless PAN DHCP Server (MyWiFiDHCPDNS) - Unknown owner - C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Display Container LS (NVDisplay.ContainerLocalSystem) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe
O23 - Service: postgresql-x64-9.6 - PostgreSQL Server 9.6 (postgresql-x64-9.6) - PostgreSQL Global Development Group - C:\Program Files\PostgreSQL\9.6\bin\pg_ctl.exe
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel(R) Corporation - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
O23 - Service: Reimage Real Time Protector (ReimageRealTimeProtector) - Reimage® - C:\Program Files\Reimage\Reimage Protector\ReiGuard.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender Advanced Threat Protection\MsSense.exe,-1001 (Sense) - Unknown owner - C:\Program Files (x86)\Windows Defender Advanced Threat Protection\MsSense.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\WINDOWS\system32\TieringEngineService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vmcompute.exe,-100 (vmcompute) - Unknown owner - C:\WINDOWS\system32\vmcompute.exe (file missing)
O23 - Service: @%systemroot%\system32\vmms.exe,-10 (vmms) - Unknown owner - C:\WINDOWS\system32\vmms.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: wampapache64 - Apache Software Foundation - c:\wamp\bin\apache\apache2.4.23\bin\httpd.exe
O23 - Service: wampmysqld64 - Unknown owner - c:\wamp\bin\mysql\mysql5.7.14\bin\mysqld.exe
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Zero Configuration Service (ZeroConfigService) - Intel® Corporation - C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe

--
End of file - 16439 bytes

======Enumerating Processes======

C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
C:\WINDOWS\system32\dwm.exe
C:\WINDOWS\System32\svchost.exe -k NetworkService
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-63be715d-94e9-4e99-a445-0a9db4b6730c -SystemEventPortName:HostProcess-331f317f-a60f-4683-8adf-6c704622895f -IoCancelEventPortName:HostProcess-228130b8-4d2d-4245-8179-c3cd4e02e194 -NonStateChangingEventPortName:HostProcess-6a76e594-fc4a-4378-a1bb-a3c234ada91b -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:189b877e-6ad9-46a4-96a1-6935395739a8 -DeviceGroupId:WudfDefaultDevicePool
C:\WINDOWS\system32\dashost.exe
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\WLANExt.exe 1882112595968
\??\C:\WINDOWS\system32\conhost.exe 0x4
C:\WINDOWS\system32\ibtsiva.exe
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe"
"C:\Program Files\Intel\WiFi\bin\EvtEng.exe"
C:\WINDOWS\system32\svchost.exe -k imgsvc
C:\WINDOWS\system32\DbxSvc.exe
"C:\Program Files (x86)\Google\Chrome Remote Desktop\56.0.2924.51\remoting_host.exe" --type=daemon --host-config="C:\ProgramData\Google\Chrome Remote Desktop\host.json"
"C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe"
"C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe"
"C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe"
"C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe" /service
"C:\Program Files (x86)\hMailServer\Bin\hMailServer.exe" RunAsService
C:\WINDOWS\system32\svchost.exe -k appmodel
"C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe"
C:\WINDOWS\system32\vmms.exe
"C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe"
"C:\Program Files\PostgreSQL\9.6\bin\pg_ctl.exe" runservice -N "postgresql-x64-9.6" -D "C:\Program Files\PostgreSQL\9.6\data" -w
"C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe"
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe"
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\Program Files\PostgreSQL\9.6\bin\postgres.exe" -D "C:\Program Files\PostgreSQL\9.6\data"
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Program Files (x86)\Google\Chrome Remote Desktop\56.0.2924.51\remoting_host.exe" --type=host --mojo-pipe-token=2B9DD52ABB305E9FC5ACAECA09D0A8AC --mojo-platform-channel-handle=656
C:\Program Files\PostgreSQL\9.6\bin\postgres.exe
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Program Files\PostgreSQL\9.6\bin\postgres.exe
C:\Program Files\PostgreSQL\9.6\bin\postgres.exe
C:\Program Files\PostgreSQL\9.6\bin\postgres.exe
C:\Program Files\PostgreSQL\9.6\bin\postgres.exe
C:\Program Files\PostgreSQL\9.6\bin\postgres.exe
C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
C:\WINDOWS\system32\taskhostw.exe
C:\WINDOWS\system32\sihost.exe
C:\WINDOWS\system32\vmcompute.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
"C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
"C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe" -ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /FORPCEE4
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /LENOVO_DOLBYDRAGON
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /LENOVO_MICPKEY
"C:\Windows\RTFTrack.exe"
"C:\Program Files\Lenovo\LenovoUtility\utility.exe"
"C:\Program Files (x86)\Lenovo\Energy Manager\Energy Manager.exe"
"C:\Program Files\Windows Defender\MSASCuiL.exe"
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
"C:\Program Files (x86)\Gyazo\GyStation.exe"
"C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe"
"C:\Program Files (x86)\Bloody5\Bloody5\Bloody5.exe" Minimum
"C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe" --showwindow=false --onOSstartup=true
"C:\Program Files (x86)\Dropbox\Client\Dropbox.exe" /systemstartup
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
"C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe"
"C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\IPC\AdobeIPCBroker.exe" "-launchedbyvulcan"
"C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE"
C:\WINDOWS\system32\fontdrvhost.exe
"C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ADS\Adobe Desktop Service.exe" --onOSstartup=true --showwindow=false --waitForRegistration=true
"C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\HEX\Adobe CEF Helper.exe" --type=renderer --disable-3d-apis --disable-pinch --no-sandbox --enable-deferred-image-decoding --lang=en-US --lang=en-US --locales-dir-path="C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\CEF\locales" --log-file="C:\Users\Pavel\AppData\Local\Temp\CreativeCloud\ACC\CEF.log" --log-severity=warning --user-agent="Mozilla/5.0 (Windows NT 10.0.0; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Safari/537.36 CreativeCloud/3.9.1.335" --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --disable-gpu-compositing --channel="6632.0.1724573972\1232506105" /prefetch:673131151
"C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSync\CoreSync.exe"
"C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCXProcess\CCXProcess.exe"
"C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCXProcess\libs\node.exe" "C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCXProcess\js\main.js"
\??\C:\WINDOWS\system32\conhost.exe 0x4
C:\WINDOWS\system32\DllHost.exe /Processid:{49F6E667-6658-4BD1-9DE9-6AF87F9FAF85}
C:\WINDOWS\system32\SettingSyncHost.exe -Embedding
"C:\Program Files (x86)\Atlassian\HipChat4\HipChat.exe"
"C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCLibrary\CCLibrary.exe"
"C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCLibrary\libs\node.exe" "C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCLibrary\js\server.js"
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Program Files (x86)\Atlassian\HipChat4\bin\QtWebEngineProcess.exe" --type=renderer --disable-accelerated-video-decode --enable-threaded-compositing --no-sandbox --use-gl=desktop --lang=cs --enable-pinch --device-scale-factor=1 --num-raster-threads=4 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="11948.2.1378313182\412710759" /prefetch:1
"C:\Program Files (x86)\KeePass Password Safe\KeePass.exe"
"C:\Program Files\FileZilla FTP Client\filezilla.exe"
"C:\Program Files (x86)\Mozilla Thunderbird\thunderbird.exe"
C:\WINDOWS\system32\ApplicationFrameHost.exe -Embedding
"C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.16122.10291.0_x64__8wekyb3d8bbwe\Video.UI.exe" -ServerName:Microsoft.ZuneVideo.AppX758ya5sqdjd98rx6z7g95nw6jy7bqx9y.mca
C:\WINDOWS\System32\svchost.exe -k utcsvc
C:\WINDOWS\system32\taskhostw.exe
"C:\WINDOWS\system32\NOTEPAD.EXE" C:\Users\Pavel\Desktop\notes.txt
"C:\wamp\wampmanager.exe"
"c:\wamp\bin\apache\apache2.4.23\bin\httpd.exe" -k runservice
C:\wamp\bin\apache\apache2.4.23\bin\httpd.exe -d C:/wamp/bin/apache/apache2.4.23
c:\wamp\bin\mysql\mysql5.7.14\bin\mysqld.exe wampmysqld64
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=crashpad-handler /prefetch:7 "--database=C:\Users\Pavel\AppData\Local\Google\Chrome\User Data\Crashpad" "--metrics-dir=C:\Users\Pavel\AppData\Local\Google\Chrome\User Data" --url=https://clients2.google.com/cr/report --annotation=channel= --annotation=plat=Win32 --annotation=prod=Chrome --annotation=ver=56.0.2924.87 --initial-client-data=0x250,0x254,0x258,0x24c,0x25c,0x733d7598,0x733d75bc,0x733d75a4
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=watcher --main-thread-id=16336 --on-initialized-event-handle=720 --parent-handle=724 /prefetch:6
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutofillProfileCleanup<AutofillProfileCleanup,BlockSmallPluginContent<PluginPowerSaverTiny,*DefaultEnableGpuRasterization<DefaultEnableGpuRasterization,*EnableSyncClientToServerCompression<EnableSyncClientToServerCompression,*ExperimentalSwReporterEngine<SRTExperimentalEngineTrial,*NegotiateTLS13<TLS13Negotiation,PersistentHistograms<PersistentHistograms,*PointerEvent<PointerEvent,*PreferHtmlOverPlugins<Html5ByDefault,SecurityChip<SecurityChip,SecurityWarningIconUpdate<SecurityWarningIconUpdate,SubresourceFilter<SubresourceFilter,SwReporterExtendedSafeBrowsingFeature<SwReporterExtendedSafeBrowsingFeature,*TranslateRankerLogging<TranslateRankerLogging,*TranslateUI2016Q2<TranslateUI2016Q2 --disable-features=DisableFirstRunAutoImport<DisableFirstRunAutoImport,DocumentWriteEvaluator<DisallowFetchForDocWrittenScriptsInMainFrame,MediaFoundationH264Encoding<MediaFoundationH264Encoding,MetricsReporting<MetricsAndCrashSampling,ParseHTMLOnMainThread<ParseHTMLOnMainThread,SSLPostQuantumExperiment<SSLPostQuantum,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --force-fieldtrials=*AppBannerTriggering/site-engagement-eager/*AutofillProfileCleanup/Enabled/CaptivePortalInterstitial/Enabled/*ChromeChannelStable/Enabled/*ChromeSuggestionsTuning/IncludeExternalApps/*ClientSideDetectionModel/Model0/DataReductionProxyUseQuic/Enabled10_NoControl/DefaultBrowserPromptStyle/ColoredIconOnWhiteInfoBar3/DefaultEnableGpuRasterization/Default/DisableFirstRunAutoImport/Control/*DisallowFetchForDocWrittenScriptsInMainFrame/Control_20161208_Launch/EnableSyncClientToServerCompression/Default/ExtensionDeveloperModeWarning/Enabled/Html5ByDefault/Default/*InstanceID/Enabled/MarkNonSecureAs/show-non-secure-passwords-cc-ui/MediaFoundationH264Encoding/Control/MetricsAndCrashSampling/OutOfReportingSample/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/StandardR7/*ParseHTMLOnMainThread/Default/PasswordBranding/SmartLockBrandingSavePromptOnly/*PasswordGeneration/Disabled/*PasswordManagerSettingsMigration/Enable/*PersistentHistograms/EnabledInMemory/PluginPowerSaverTiny/Enabled2/*QUIC/ControlJuly/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/SRTExperimentalEngineTrial/Default/*SRTPromptFieldTrial/On/SSLCommonNameMismatchHandling/Enabled/*SSLPostQuantum/disabled/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/*SecurityChip/Enabled/SecurityWarningIconUpdate/Enabled/SignInPasswordPromo/Enable3/StrictSecureCookies/Enabled/*SubresourceFilter/EnabledForPhishingSites/*SwReporterExtendedSafeBrowsingFeature/Enabled/*TLS13Negotiation/Default/TranslateRankerLogging/TranslateRankerLoggingDefault/TranslateServerStudy/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_50/*UMA-Uniformity-Trial-10-Percent/default/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_04/*UMA-Uniformity-Trial-5-Percent/group_08/*UMA-Uniformity-Trial-50-Percent/default/WebFontsInterventionV2/Default/ --primordial-pipe-token=569EE2DABFCE26430D06AA6739224907 --lang=cs --extension-process --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --blink-settings=disallowFetchForDocWrittenScriptsInMainFrame=false,disallowFetchForDocWrittenScriptsInMainFrameOnSlowConnections=false --enable-pinch --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --content-image-texture-target=0,0,3553;0,1,3553;0,2,3553;0,3,3553;0,4,3553;0,5,3553;0,6,3553;0,7,3553;0,8,3553;0,9,3553;0,10,3553;0,11,3553;0,12,3553;0,13,3553;0,14,3553;0,15,3553;1,0,3553;1,1,3553;1,2,3553;1,3,3553;1,4,3553;1,5,3553;1,6,3553;1,7,3553;1,8,3553;1,9,3553;1,10,3553;1,11,3553;1,12,3553;1,13,3553;1,14,3553;1,15,3553;2,0,3553;2,1,3553;2,2,3553;2,3,3553;2,4,3553;2,5,3553;2,6,3553;2,7,3553;2,8,3553;2,9,3553;2,10,3553;2,11,3553;2,12,3553;2,13,3553;2,14,3553;2,15,3553;3,0,3553;3,1,3553;3,2,3553;3,3,3553;3,4,3553;3,5,3553;3,6,3553;3,7,3553;3,8,3553;3,9,3553;3,10,3553;3,11,3553;3,12,3553;3,13,3553;3,14,3553;3,15,3553 --service-request-channel-token=569EE2DABFCE26430D06AA6739224907 --renderer-client-id=5 --mojo-platform-channel-handle=2592 /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutofillProfileCleanup<AutofillProfileCleanup,BlockSmallPluginContent<PluginPowerSaverTiny,*DefaultEnableGpuRasterization<DefaultEnableGpuRasterization,*EnableSyncClientToServerCompression<EnableSyncClientToServerCompression,*ExperimentalSwReporterEngine<SRTExperimentalEngineTrial,*NegotiateTLS13<TLS13Negotiation,PersistentHistograms<PersistentHistograms,*PointerEvent<PointerEvent,*PreferHtmlOverPlugins<Html5ByDefault,SecurityChip<SecurityChip,SecurityWarningIconUpdate<SecurityWarningIconUpdate,SubresourceFilter<SubresourceFilter,SwReporterExtendedSafeBrowsingFeature<SwReporterExtendedSafeBrowsingFeature,*TranslateRankerLogging<TranslateRankerLogging,*TranslateUI2016Q2<TranslateUI2016Q2 --disable-features=DisableFirstRunAutoImport<DisableFirstRunAutoImport,DocumentWriteEvaluator<DisallowFetchForDocWrittenScriptsInMainFrame,MediaFoundationH264Encoding<MediaFoundationH264Encoding,MetricsReporting<MetricsAndCrashSampling,ParseHTMLOnMainThread<ParseHTMLOnMainThread,SSLPostQuantumExperiment<SSLPostQuantum,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --force-fieldtrials=*AppBannerTriggering/site-engagement-eager/*AutofillProfileCleanup/Enabled/CaptivePortalInterstitial/Enabled/*ChromeChannelStable/Enabled/*ChromeSuggestionsTuning/IncludeExternalApps/*ClientSideDetectionModel/Model0/DataReductionProxyUseQuic/Enabled10_NoControl/DefaultBrowserPromptStyle/ColoredIconOnWhiteInfoBar3/DefaultEnableGpuRasterization/Default/DisableFirstRunAutoImport/Control/*DisallowFetchForDocWrittenScriptsInMainFrame/Control_20161208_Launch/EnableSyncClientToServerCompression/Default/ExtensionDeveloperModeWarning/Enabled/Html5ByDefault/Default/*InstanceID/Enabled/MarkNonSecureAs/show-non-secure-passwords-cc-ui/MediaFoundationH264Encoding/Control/MetricsAndCrashSampling/OutOfReportingSample/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/StandardR7/*ParseHTMLOnMainThread/Default/PasswordBranding/SmartLockBrandingSavePromptOnly/*PasswordGeneration/Disabled/*PasswordManagerSettingsMigration/Enable/*PersistentHistograms/EnabledInMemory/PluginPowerSaverTiny/Enabled2/*QUIC/ControlJuly/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/SRTExperimentalEngineTrial/Default/*SRTPromptFieldTrial/On/SSLCommonNameMismatchHandling/Enabled/*SSLPostQuantum/disabled/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/*SecurityChip/Enabled/SecurityWarningIconUpdate/Enabled/SignInPasswordPromo/Enable3/StrictSecureCookies/Enabled/*SubresourceFilter/EnabledForPhishingSites/*SwReporterExtendedSafeBrowsingFeature/Enabled/*TLS13Negotiation/Default/TranslateRankerLogging/TranslateRankerLoggingDefault/TranslateServerStudy/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_50/*UMA-Uniformity-Trial-10-Percent/default/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_04/*UMA-Uniformity-Trial-5-Percent/group_08/*UMA-Uniformity-Trial-50-Percent/default/WebFontsInterventionV2/Default/ --primordial-pipe-token=2B60483EE3FB7D0EFAE2EB0FFC15235C --lang=cs --extension-process --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --blink-settings=disallowFetchForDocWrittenScriptsInMainFrame=false,disallowFetchForDocWrittenScriptsInMainFrameOnSlowConnections=false --enable-pinch --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --content-image-texture-target=0,0,3553;0,1,3553;0,2,3553;0,3,3553;0,4,3553;0,5,3553;0,6,3553;0,7,3553;0,8,3553;0,9,3553;0,10,3553;0,11,3553;0,12,3553;0,13,3553;0,14,3553;0,15,3553;1,0,3553;1,1,3553;1,2,3553;1,3,3553;1,4,3553;1,5,3553;1,6,3553;1,7,3553;1,8,3553;1,9,3553;1,10,3553;1,11,3553;1,12,3553;1,13,3553;1,14,3553;1,15,3553;2,0,3553;2,1,3553;2,2,3553;2,3,3553;2,4,3553;2,5,3553;2,6,3553;2,7,3553;2,8,3553;2,9,3553;2,10,3553;2,11,3553;2,12,3553;2,13,3553;2,14,3553;2,15,3553;3,0,3553;3,1,3553;3,2,3553;3,3,3553;3,4,3553;3,5,3553;3,6,3553;3,7,3553;3,8,3553;3,9,3553;3,10,3553;3,11,3553;3,12,3553;3,13,3553;3,14,3553;3,15,3553 --service-request-channel-token=2B60483EE3FB7D0EFAE2EB0FFC15235C --renderer-client-id=6 --mojo-platform-channel-handle=2912 /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutofillProfileCleanup<AutofillProfileCleanup,BlockSmallPluginContent<PluginPowerSaverTiny,*DefaultEnableGpuRasterization<DefaultEnableGpuRasterization,*EnableSyncClientToServerCompression<EnableSyncClientToServerCompression,*ExperimentalSwReporterEngine<SRTExperimentalEngineTrial,*NegotiateTLS13<TLS13Negotiation,PersistentHistograms<PersistentHistograms,*PointerEvent<PointerEvent,*PreferHtmlOverPlugins<Html5ByDefault,SecurityChip<SecurityChip,SecurityWarningIconUpdate<SecurityWarningIconUpdate,SubresourceFilter<SubresourceFilter,SwReporterExtendedSafeBrowsingFeature<SwReporterExtendedSafeBrowsingFeature,*TranslateRankerLogging<TranslateRankerLogging,*TranslateUI2016Q2<TranslateUI2016Q2 --disable-features=DisableFirstRunAutoImport<DisableFirstRunAutoImport,DocumentWriteEvaluator<DisallowFetchForDocWrittenScriptsInMainFrame,MediaFoundationH264Encoding<MediaFoundationH264Encoding,MetricsReporting<MetricsAndCrashSampling,ParseHTMLOnMainThread<ParseHTMLOnMainThread,SSLPostQuantumExperiment<SSLPostQuantum,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --force-fieldtrials=*AppBannerTriggering/site-engagement-eager/*AutofillProfileCleanup/Enabled/CaptivePortalInterstitial/Enabled/*ChromeChannelStable/Enabled/*ChromeSuggestionsTuning/IncludeExternalApps/*ClientSideDetectionModel/Model0/DataReductionProxyUseQuic/Enabled10_NoControl/DefaultBrowserPromptStyle/ColoredIconOnWhiteInfoBar3/DefaultEnableGpuRasterization/Default/DisableFirstRunAutoImport/Control/*DisallowFetchForDocWrittenScriptsInMainFrame/Control_20161208_Launch/EnableSyncClientToServerCompression/Default/ExtensionDeveloperModeWarning/Enabled/Html5ByDefault/Default/*InstanceID/Enabled/MarkNonSecureAs/show-non-secure-passwords-cc-ui/MediaFoundationH264Encoding/Control/MetricsAndCrashSampling/OutOfReportingSample/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/StandardR7/*ParseHTMLOnMainThread/Default/PasswordBranding/SmartLockBrandingSavePromptOnly/*PasswordGeneration/Disabled/*PasswordManagerSettingsMigration/Enable/*PersistentHistograms/EnabledInMemory/PluginPowerSaverTiny/Enabled2/*QUIC/ControlJuly/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/SRTExperimentalEngineTrial/Default/*SRTPromptFieldTrial/On/SSLCommonNameMismatchHandling/Enabled/*SSLPostQuantum/disabled/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/*SecurityChip/Enabled/SecurityWarningIconUpdate/Enabled/SignInPasswordPromo/Enable3/StrictSecureCookies/Enabled/*SubresourceFilter/EnabledForPhishingSites/*SwReporterExtendedSafeBrowsingFeature/Enabled/*TLS13Negotiation/Default/TranslateRankerLogging/TranslateRankerLoggingDefault/TranslateServerStudy/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_50/*UMA-Uniformity-Trial-10-Percent/default/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_04/*UMA-Uniformity-Trial-5-Percent/group_08/*UMA-Uniformity-Trial-50-Percent/default/WebFontsInterventionV2/Default/ --primordial-pipe-token=A46F766E517E42E5D10E56AC6C7F11B2 --lang=cs --extension-process --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --blink-settings=disallowFetchForDocWrittenScriptsInMainFrame=false,disallowFetchForDocWrittenScriptsInMainFrameOnSlowConnections=false --enable-pinch --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --content-image-texture-target=0,0,3553;0,1,3553;0,2,3553;0,3,3553;0,4,3553;0,5,3553;0,6,3553;0,7,3553;0,8,3553;0,9,3553;0,10,3553;0,11,3553;0,12,3553;0,13,3553;0,14,3553;0,15,3553;1,0,3553;1,1,3553;1,2,3553;1,3,3553;1,4,3553;1,5,3553;1,6,3553;1,7,3553;1,8,3553;1,9,3553;1,10,3553;1,11,3553;1,12,3553;1,13,3553;1,14,3553;1,15,3553;2,0,3553;2,1,3553;2,2,3553;2,3,3553;2,4,3553;2,5,3553;2,6,3553;2,7,3553;2,8,3553;2,9,3553;2,10,3553;2,11,3553;2,12,3553;2,13,3553;2,14,3553;2,15,3553;3,0,3553;3,1,3553;3,2,3553;3,3,3553;3,4,3553;3,5,3553;3,6,3553;3,7,3553;3,8,3553;3,9,3553;3,10,3553;3,11,3553;3,12,3553;3,13,3553;3,14,3553;3,15,3553 --service-request-channel-token=A46F766E517E42E5D10E56AC6C7F11B2 --renderer-client-id=7 --mojo-platform-channel-handle=2916 /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutofillProfileCleanup<AutofillProfileCleanup,BlockSmallPluginContent<PluginPowerSaverTiny,*DefaultEnableGpuRasterization<DefaultEnableGpuRasterization,*EnableSyncClientToServerCompression<EnableSyncClientToServerCompression,*ExperimentalSwReporterEngine<SRTExperimentalEngineTrial,*NegotiateTLS13<TLS13Negotiation,PersistentHistograms<PersistentHistograms,*PointerEvent<PointerEvent,*PreferHtmlOverPlugins<Html5ByDefault,SecurityChip<SecurityChip,SecurityWarningIconUpdate<SecurityWarningIconUpdate,SubresourceFilter<SubresourceFilter,SwReporterExtendedSafeBrowsingFeature<SwReporterExtendedSafeBrowsingFeature,*TranslateRankerLogging<TranslateRankerLogging,*TranslateUI2016Q2<TranslateUI2016Q2 --disable-features=DisableFirstRunAutoImport<DisableFirstRunAutoImport,DocumentWriteEvaluator<DisallowFetchForDocWrittenScriptsInMainFrame,MediaFoundationH264Encoding<MediaFoundationH264Encoding,MetricsReporting<MetricsAndCrashSampling,ParseHTMLOnMainThread<ParseHTMLOnMainThread,SSLPostQuantumExperiment<SSLPostQuantum,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --force-fieldtrials=*AppBannerTriggering/site-engagement-eager/*AutofillProfileCleanup/Enabled/CaptivePortalInterstitial/Enabled/*ChromeChannelStable/Enabled/*ChromeSuggestionsTuning/IncludeExternalApps/*ClientSideDetectionModel/Model0/DataReductionProxyUseQuic/Enabled10_NoControl/DefaultBrowserPromptStyle/ColoredIconOnWhiteInfoBar3/DefaultEnableGpuRasterization/Default/DisableFirstRunAutoImport/Control/*DisallowFetchForDocWrittenScriptsInMainFrame/Control_20161208_Launch/EnableSyncClientToServerCompression/Default/ExtensionDeveloperModeWarning/Enabled/Html5ByDefault/Default/*InstanceID/Enabled/MarkNonSecureAs/show-non-secure-passwords-cc-ui/MediaFoundationH264Encoding/Control/MetricsAndCrashSampling/OutOfReportingSample/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/StandardR7/*ParseHTMLOnMainThread/Default/PasswordBranding/SmartLockBrandingSavePromptOnly/*PasswordGeneration/Disabled/*PasswordManagerSettingsMigration/Enable/*PersistentHistograms/EnabledInMemory/PluginPowerSaverTiny/Enabled2/*QUIC/ControlJuly/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/SRTExperimentalEngineTrial/Default/*SRTPromptFieldTrial/On/SSLCommonNameMismatchHandling/Enabled/*SSLPostQuantum/disabled/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/*SecurityChip/Enabled/SecurityWarningIconUpdate/Enabled/SignInPasswordPromo/Enable3/StrictSecureCookies/Enabled/*SubresourceFilter/EnabledForPhishingSites/*SwReporterExtendedSafeBrowsingFeature/Enabled/*TLS13Negotiation/Default/TranslateRankerLogging/TranslateRankerLoggingDefault/TranslateServerStudy/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_50/*UMA-Uniformity-Trial-10-Percent/default/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_04/*UMA-Uniformity-Trial-5-Percent/group_08/*UMA-Uniformity-Trial-50-Percent/default/WebFontsInterventionV2/Default/ --primordial-pipe-token=BFF50950A69D93E22F9687E2AD4A878A --lang=cs --extension-process --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --blink-settings=disallowFetchForDocWrittenScriptsInMainFrame=false,disallowFetchForDocWrittenScriptsInMainFrameOnSlowConnections=false --enable-pinch --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --content-image-texture-target=0,0,3553;0,1,3553;0,2,3553;0,3,3553;0,4,3553;0,5,3553;0,6,3553;0,7,3553;0,8,3553;0,9,3553;0,10,3553;0,11,3553;0,12,3553;0,13,3553;0,14,3553;0,15,3553;1,0,3553;1,1,3553;1,2,3553;1,3,3553;1,4,3553;1,5,3553;1,6,3553;1,7,3553;1,8,3553;1,9,3553;1,10,3553;1,11,3553;1,12,3553;1,13,3553;1,14,3553;1,15,3553;2,0,3553;2,1,3553;2,2,3553;2,3,3553;2,4,3553;2,5,3553;2,6,3553;2,7,3553;2,8,3553;2,9,3553;2,10,3553;2,11,3553;2,12,3553;2,13,3553;2,14,3553;2,15,3553;3,0,3553;3,1,3553;3,2,3553;3,3,3553;3,4,3553;3,5,3553;3,6,3553;3,7,3553;3,8,3553;3,9,3553;3,10,3553;3,11,3553;3,12,3553;3,13,3553;3,14,3553;3,15,3553 --service-request-channel-token=BFF50950A69D93E22F9687E2AD4A878A --renderer-client-id=10 --mojo-platform-channel-handle=2940 /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutofillProfileCleanup<AutofillProfileCleanup,BlockSmallPluginContent<PluginPowerSaverTiny,*DefaultEnableGpuRasterization<DefaultEnableGpuRasterization,*EnableSyncClientToServerCompression<EnableSyncClientToServerCompression,*ExperimentalSwReporterEngine<SRTExperimentalEngineTrial,*NegotiateTLS13<TLS13Negotiation,PersistentHistograms<PersistentHistograms,*PointerEvent<PointerEvent,*PreferHtmlOverPlugins<Html5ByDefault,SecurityChip<SecurityChip,SecurityWarningIconUpdate<SecurityWarningIconUpdate,SubresourceFilter<SubresourceFilter,SwReporterExtendedSafeBrowsingFeature<SwReporterExtendedSafeBrowsingFeature,*TranslateRankerLogging<TranslateRankerLogging,*TranslateUI2016Q2<TranslateUI2016Q2 --disable-features=DisableFirstRunAutoImport<DisableFirstRunAutoImport,DocumentWriteEvaluator<DisallowFetchForDocWrittenScriptsInMainFrame,MediaFoundationH264Encoding<MediaFoundationH264Encoding,MetricsReporting<MetricsAndCrashSampling,ParseHTMLOnMainThread<ParseHTMLOnMainThread,SSLPostQuantumExperiment<SSLPostQuantum,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --force-fieldtrials=*AppBannerTriggering/site-engagement-eager/*AutofillProfileCleanup/Enabled/CaptivePortalInterstitial/Enabled/*ChromeChannelStable/Enabled/*ChromeSuggestionsTuning/IncludeExternalApps/*ClientSideDetectionModel/Model0/DataReductionProxyUseQuic/Enabled10_NoControl/DefaultBrowserPromptStyle/ColoredIconOnWhiteInfoBar3/DefaultEnableGpuRasterization/Default/DisableFirstRunAutoImport/Control/*DisallowFetchForDocWrittenScriptsInMainFrame/Control_20161208_Launch/EnableSyncClientToServerCompression/Default/ExtensionDeveloperModeWarning/Enabled/Html5ByDefault/Default/*InstanceID/Enabled/MarkNonSecureAs/show-non-secure-passwords-cc-ui/MediaFoundationH264Encoding/Control/MetricsAndCrashSampling/OutOfReportingSample/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/StandardR7/*ParseHTMLOnMainThread/Default/PasswordBranding/SmartLockBrandingSavePromptOnly/*PasswordGeneration/Disabled/*PasswordManagerSettingsMigration/Enable/*PersistentHistograms/EnabledInMemory/PluginPowerSaverTiny/Enabled2/*QUIC/ControlJuly/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/SRTExperimentalEngineTrial/Default/*SRTPromptFieldTrial/On/SSLCommonNameMismatchHandling/Enabled/*SSLPostQuantum/disabled/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/*SecurityChip/Enabled/SecurityWarningIconUpdate/Enabled/SignInPasswordPromo/Enable3/StrictSecureCookies/Enabled/*SubresourceFilter/EnabledForPhishingSites/*SwReporterExtendedSafeBrowsingFeature/Enabled/*TLS13Negotiation/Default/TranslateRankerLogging/TranslateRankerLoggingDefault/TranslateServerStudy/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_50/*UMA-Uniformity-Trial-10-Percent/default/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_04/*UMA-Uniformity-Trial-5-Percent/group_08/*UMA-Uniformity-Trial-50-Percent/default/WebFontsInterventionV2/Default/ --primordial-pipe-token=7825060B1A575CEC654F4BCEA9F68B1D --lang=cs --extension-process --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --blink-settings=disallowFetchForDocWrittenScriptsInMainFrame=false,disallowFetchForDocWrittenScriptsInMainFrameOnSlowConnections=false --enable-pinch --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --content-image-texture-target=0,0,3553;0,1,3553;0,2,3553;0,3,3553;0,4,3553;0,5,3553;0,6,3553;0,7,3553;0,8,3553;0,9,3553;0,10,3553;0,11,3553;0,12,3553;0,13,3553;0,14,3553;0,15,3553;1,0,3553;1,1,3553;1,2,3553;1,3,3553;1,4,3553;1,5,3553;1,6,3553;1,7,3553;1,8,3553;1,9,3553;1,10,3553;1,11,3553;1,12,3553;1,13,3553;1,14,3553;1,15,3553;2,0,3553;2,1,3553;2,2,3553;2,3,3553;2,4,3553;2,5,3553;2,6,3553;2,7,3553;2,8,3553;2,9,3553;2,10,3553;2,11,3553;2,12,3553;2,13,3553;2,14,3553;2,15,3553;3,0,3553;3,1,3553;3,2,3553;3,3,3553;3,4,3553;3,5,3553;3,6,3553;3,7,3553;3,8,3553;3,9,3553;3,10,3553;3,11,3553;3,12,3553;3,13,3553;3,14,3553;3,15,3553 --service-request-channel-token=7825060B1A575CEC654F4BCEA9F68B1D --renderer-client-id=11 --mojo-platform-channel-handle=2948 /prefetch:1
"C:\Windows\System32\cmd.exe" /c "C:\Users\Pavel\Desktop\ONLINE~1.BAT"
\??\C:\WINDOWS\system32\conhost.exe 0x4
c:\program files\nodejs\node.exe
C:\Program Files (x86)\Google\Chrome\Application\56.0.2924.87\nacl64.exe
"C:\Program Files (x86)\Google\Chrome\Application\56.0.2924.87\nacl64.exe" --type=nacl-loader --mojo-platform-channel-handle=480 --mojo-channel-token=A5992AE13346A25A823AB16E194B4359 --ignored=" --type=renderer "
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutofillProfileCleanup<AutofillProfileCleanup,BlockSmallPluginContent<PluginPowerSaverTiny,*DefaultEnableGpuRasterization<DefaultEnableGpuRasterization,*EnableSyncClientToServerCompression<EnableSyncClientToServerCompression,*ExperimentalSwReporterEngine<SRTExperimentalEngineTrial,*NegotiateTLS13<TLS13Negotiation,PersistentHistograms<PersistentHistograms,*PointerEvent<PointerEvent,*PreferHtmlOverPlugins<Html5ByDefault,SecurityChip<SecurityChip,SecurityWarningIconUpdate<SecurityWarningIconUpdate,SubresourceFilter<SubresourceFilter,SwReporterExtendedSafeBrowsingFeature<SwReporterExtendedSafeBrowsingFeature,*TranslateRankerLogging<TranslateRankerLogging,*TranslateUI2016Q2<TranslateUI2016Q2 --disable-features=DisableFirstRunAutoImport<DisableFirstRunAutoImport,DocumentWriteEvaluator<DisallowFetchForDocWrittenScriptsInMainFrame,MediaFoundationH264Encoding<MediaFoundationH264Encoding,MetricsReporting<MetricsAndCrashSampling,ParseHTMLOnMainThread<ParseHTMLOnMainThread,SSLPostQuantumExperiment<SSLPostQuantum,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --force-fieldtrials=*AppBannerTriggering/site-engagement-eager/*AutofillProfileCleanup/Enabled/CaptivePortalInterstitial/Enabled/*ChromeChannelStable/Enabled/*ChromeSuggestionsTuning/IncludeExternalApps/*ClientSideDetectionModel/Model0/DataReductionProxyUseQuic/Enabled10_NoControl/DefaultBrowserPromptStyle/ColoredIconOnWhiteInfoBar3/DefaultEnableGpuRasterization/Default/DisableFirstRunAutoImport/Control/*DisallowFetchForDocWrittenScriptsInMainFrame/Control_20161208_Launch/EnableSyncClientToServerCompression/Default/ExtensionDeveloperModeWarning/Enabled/*Html5ByDefault/Default/*InstanceID/Enabled/MarkNonSecureAs/show-non-secure-passwords-cc-ui/*MediaFoundationH264Encoding/Control/MetricsAndCrashSampling/OutOfReportingSample/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/StandardR7/*ParseHTMLOnMainThread/Default/PasswordBranding/SmartLockBrandingSavePromptOnly/*PasswordGeneration/Disabled/*PasswordManagerSettingsMigration/Enable/*PersistentHistograms/EnabledInMemory/*PluginPowerSaverTiny/Enabled2/*QUIC/ControlJuly/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/SRTExperimentalEngineTrial/Default/*SRTPromptFieldTrial/On/SSLCommonNameMismatchHandling/Enabled/*SSLPostQuantum/disabled/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/*SecurityChip/Enabled/SecurityWarningIconUpdate/Enabled/SignInPasswordPromo/Enable3/*StrictSecureCookies/Enabled/*SubresourceFilter/EnabledForPhishingSites/*SwReporterExtendedSafeBrowsingFeature/Enabled/*TLS13Negotiation/Default/TranslateRankerLogging/TranslateRankerLoggingDefault/TranslateServerStudy/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_50/*UMA-Uniformity-Trial-10-Percent/default/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_04/*UMA-Uniformity-Trial-5-Percent/group_08/*UMA-Uniformity-Trial-50-Percent/default/*WebFontsInterventionV2/Default/ --primordial-pipe-token=4B33DDFB8C14ABC5BA8F13F0626A5598 --lang=cs --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --blink-settings=disallowFetchForDocWrittenScriptsInMainFrame=false,disallowFetchForDocWrittenScriptsInMainFrameOnSlowConnections=false --enable-pinch --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --content-image-texture-target=0,0,3553;0,1,3553;0,2,3553;0,3,3553;0,4,3553;0,5,3553;0,6,3553;0,7,3553;0,8,3553;0,9,3553;0,10,3553;0,11,3553;0,12,3553;0,13,3553;0,14,3553;0,15,3553;1,0,3553;1,1,3553;1,2,3553;1,3,3553;1,4,3553;1,5,3553;1,6,3553;1,7,3553;1,8,3553;1,9,3553;1,10,3553;1,11,3553;1,12,3553;1,13,3553;1,14,3553;1,15,3553;2,0,3553;2,1,3553;2,2,3553;2,3,3553;2,4,3553;2,5,3553;2,6,3553;2,7,3553;2,8,3553;2,9,3553;2,10,3553;2,11,3553;2,12,3553;2,13,3553;2,14,3553;2,15,3553;3,0,3553;3,1,3553;3,2,3553;3,3,3553;3,4,3553;3,5,3553;3,6,3553;3,7,3553;3,8,3553;3,9,3553;3,10,3553;3,11,3553;3,12,3553;3,13,3553;3,14,3553;3,15,3553 --service-request-channel-token=4B33DDFB8C14ABC5BA8F13F0626A5598 --renderer-client-id=21 --mojo-platform-channel-handle=8676 /prefetch:1
C:\WINDOWS\system32\igfxCUIService.exe
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --enable-features=AutofillProfileCleanup<AutofillProfileCleanup,BlockSmallPluginContent<PluginPowerSaverTiny,*DefaultEnableGpuRasterization<DefaultEnableGpuRasterization,*EnableSyncClientToServerCompression<EnableSyncClientToServerCompression,*ExperimentalSwReporterEngine<SRTExperimentalEngineTrial,*NegotiateTLS13<TLS13Negotiation,PersistentHistograms<PersistentHistograms,*PointerEvent<PointerEvent,*PreferHtmlOverPlugins<Html5ByDefault,SecurityChip<SecurityChip,SecurityWarningIconUpdate<SecurityWarningIconUpdate,SubresourceFilter<SubresourceFilter,SwReporterExtendedSafeBrowsingFeature<SwReporterExtendedSafeBrowsingFeature,*TranslateRankerLogging<TranslateRankerLogging,*TranslateUI2016Q2<TranslateUI2016Q2 --disable-features=DisableFirstRunAutoImport<DisableFirstRunAutoImport,DocumentWriteEvaluator<DisallowFetchForDocWrittenScriptsInMainFrame,MediaFoundationH264Encoding<MediaFoundationH264Encoding,MetricsReporting<MetricsAndCrashSampling,ParseHTMLOnMainThread<ParseHTMLOnMainThread,SSLPostQuantumExperiment<SSLPostQuantum,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --force-fieldtrials=*AppBannerTriggering/site-engagement-eager/*AutofillProfileCleanup/Enabled/CaptivePortalInterstitial/Enabled/*ChromeChannelStable/Enabled/*ChromeSuggestionsTuning/IncludeExternalApps/*ClientSideDetectionModel/Model0/DataReductionProxyUseQuic/Enabled10_NoControl/DefaultBrowserPromptStyle/ColoredIconOnWhiteInfoBar3/DefaultEnableGpuRasterization/Default/DisableFirstRunAutoImport/Control/*DisallowFetchForDocWrittenScriptsInMainFrame/Control_20161208_Launch/*EnableSyncClientToServerCompression/Default/ExtensionDeveloperModeWarning/Enabled/*Html5ByDefault/Default/*InstanceID/Enabled/*MarkNonSecureAs/show-non-secure-passwords-cc-ui/*MediaFoundationH264Encoding/Control/MetricsAndCrashSampling/OutOfReportingSample/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/StandardR7/*ParseHTMLOnMainThread/Default/PasswordBranding/SmartLockBrandingSavePromptOnly/*PasswordGeneration/Disabled/*PasswordManagerSettingsMigration/Enable/*PersistentHistograms/EnabledInMemory/*PluginPowerSaverTiny/Enabled2/*QUIC/ControlJuly/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/SRTExperimentalEngineTrial/Default/*SRTPromptFieldTrial/On/SSLCommonNameMismatchHandling/Enabled/*SSLPostQuantum/disabled/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/*SecurityChip/Enabled/SecurityWarningIconUpdate/Enabled/SignInPasswordPromo/Enable3/*StrictSecureCookies/Enabled/*SubresourceFilter/EnabledForPhishingSites/*SwReporterExtendedSafeBrowsingFeature/Enabled/*TLS13Negotiation/Default/*TranslateRankerLogging/TranslateRankerLoggingDefault/TranslateServerStudy/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_50/*UMA-Uniformity-Trial-10-Percent/default/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_04/*UMA-Uniformity-Trial-5-Percent/group_08/*UMA-Uniformity-Trial-50-Percent/default/*WebFontsInterventionV2/Default/ --supports-dual-gpus=false --swiftshader-path="C:\Users\Pavel\AppData\Local\Google\Chrome\User Data\SwiftShader\3.3.0.1" --gpu-driver-bug-workarounds=7,19,23,40,41,59,71,77 --gpu-vendor-id=0x8086 --gpu-device-id=0x0416 --gpu-driver-vendor="Intel Corporation" --gpu-driver-version=20.19.15.4326 --gpu-driver-date=11-18-2015 --gpu-secondary-vendor-ids=0x10de --gpu-secondary-device-ids=0x1392 --gpu-active-vendor-id=0x8086 --gpu-active-device-id=0x0416 --service-request-channel-token=69C880801531D1C618CFAE0FE66D06BD --mojo-platform-channel-handle=4732 --ignored=" --type=renderer " /prefetch:2
"C:\WINDOWS\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
C:\Windows\System32\SystemSettingsBroker.exe -Embedding
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutofillProfileCleanup<AutofillProfileCleanup,BlockSmallPluginContent<PluginPowerSaverTiny,*DefaultEnableGpuRasterization<DefaultEnableGpuRasterization,*EnableSyncClientToServerCompression<EnableSyncClientToServerCompression,*ExperimentalSwReporterEngine<SRTExperimentalEngineTrial,*NegotiateTLS13<TLS13Negotiation,PersistentHistograms<PersistentHistograms,*PointerEvent<PointerEvent,*PreferHtmlOverPlugins<Html5ByDefault,SecurityChip<SecurityChip,SecurityWarningIconUpdate<SecurityWarningIconUpdate,SubresourceFilter<SubresourceFilter,SwReporterExtendedSafeBrowsingFeature<SwReporterExtendedSafeBrowsingFeature,*TranslateRankerLogging<TranslateRankerLogging,*TranslateUI2016Q2<TranslateUI2016Q2 --disable-features=DisableFirstRunAutoImport<DisableFirstRunAutoImport,DocumentWriteEvaluator<DisallowFetchForDocWrittenScriptsInMainFrame,MediaFoundationH264Encoding<MediaFoundationH264Encoding,MetricsReporting<MetricsAndCrashSampling,ParseHTMLOnMainThread<ParseHTMLOnMainThread,SSLPostQuantumExperiment<SSLPostQuantum,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --force-fieldtrials=*AppBannerTriggering/site-engagement-eager/*AutofillProfileCleanup/Enabled/CaptivePortalInterstitial/Enabled/*ChromeChannelStable/Enabled/*ChromeSuggestionsTuning/IncludeExternalApps/*ClientSideDetectionModel/Model0/DataReductionProxyUseQuic/Enabled10_NoControl/DefaultBrowserPromptStyle/ColoredIconOnWhiteInfoBar3/DefaultEnableGpuRasterization/Default/DisableFirstRunAutoImport/Control/*DisallowFetchForDocWrittenScriptsInMainFrame/Control_20161208_Launch/*EnableSyncClientToServerCompression/Default/ExtensionDeveloperModeWarning/Enabled/*Html5ByDefault/Default/*InstanceID/Enabled/*MarkNonSecureAs/show-non-secure-passwords-cc-ui/*MediaFoundationH264Encoding/Control/MetricsAndCrashSampling/OutOfReportingSample/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/StandardR7/*ParseHTMLOnMainThread/Default/PasswordBranding/SmartLockBrandingSavePromptOnly/*PasswordGeneration/Disabled/*PasswordManagerSettingsMigration/Enable/*PersistentHistograms/EnabledInMemory/*PluginPowerSaverTiny/Enabled2/*QUIC/ControlJuly/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/SRTExperimentalEngineTrial/Default/*SRTPromptFieldTrial/On/SSLCommonNameMismatchHandling/Enabled/*SSLPostQuantum/disabled/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/*SecurityChip/Enabled/SecurityWarningIconUpdate/Enabled/SignInPasswordPromo/Enable3/*StrictSecureCookies/Enabled/*SubresourceFilter/EnabledForPhishingSites/*SwReporterExtendedSafeBrowsingFeature/Enabled/*TLS13Negotiation/Default/*TranslateRankerLogging/TranslateRankerLoggingDefault/TranslateServerStudy/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_50/*UMA-Uniformity-Trial-10-Percent/default/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_04/*UMA-Uniformity-Trial-5-Percent/group_08/*UMA-Uniformity-Trial-50-Percent/default/*WebFontsInterventionV2/Default/ --primordial-pipe-token=236F1F3E667438C3EB3682C7AC77522C --lang=cs --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --blink-settings=disallowFetchForDocWrittenScriptsInMainFrame=false,disallowFetchForDocWrittenScriptsInMainFrameOnSlowConnections=false --enable-pinch --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --content-image-texture-target=0,0,3553;0,1,3553;0,2,3553;0,3,3553;0,4,3553;0,5,3553;0,6,3553;0,7,3553;0,8,3553;0,9,3553;0,10,3553;0,11,3553;0,12,3553;0,13,3553;0,14,3553;0,15,3553;1,0,3553;1,1,3553;1,2,3553;1,3,3553;1,4,3553;1,5,3553;1,6,3553;1,7,3553;1,8,3553;1,9,3553;1,10,3553;1,11,3553;1,12,3553;1,13,3553;1,14,3553;1,15,3553;2,0,3553;2,1,3553;2,2,3553;2,3,3553;2,4,3553;2,5,3553;2,6,3553;2,7,3553;2,8,3553;2,9,3553;2,10,3553;2,11,3553;2,12,3553;2,13,3553;2,14,3553;2,15,3553;3,0,3553;3,1,3553;3,2,3553;3,3,3553;3,4,3553;3,5,3553;3,6,3553;3,7,3553;3,8,3553;3,9,3553;3,10,3553;3,11,3553;3,12,3553;3,13,3553;3,14,3553;3,15,3553 --service-request-channel-token=236F1F3E667438C3EB3682C7AC77522C --renderer-client-id=1257 --mojo-platform-channel-handle=10448 /prefetch:1
"C:\Program Files (x86)\Skype\Phone\Skype.exe"
"C:\Program Files\Adobe\Adobe Photoshop CC 2017\Photoshop.exe" "C:\Users\Pavel\prace\projekty\dostdobrydesign\PSD\ddd_A.psd"
"C:\Program Files\Adobe\Adobe Photoshop CC 2017\Required\Plug-Ins\Spaces\Adobe Spaces Helper.exe" --type=gpu-process --channel="15556.0.1459363692\1451245480" --no-sandbox --lang=cs --locales-dir-path="C:\Program Files\Adobe\Adobe Photoshop CC 2017\Required\Plug-Ins\Spaces\Resources\locales\\" --log-file="C:\Users\Pavel\AppData\Roaming\Adobe\Adobe Photoshop CC 2017\Logs\debug.log" --resources-dir-path="C:\Program Files\Adobe\Adobe Photoshop CC 2017\Required\Plug-Ins\Spaces\Resources\\" --supports-dual-gpus=false --gpu-driver-bug-workarounds=2,22,50 --gpu-vendor-id=0x8086 --gpu-device-id=0x0416 --gpu-driver-vendor="Intel Corporation" --gpu-driver-version=20.19.15.4531 --lang=cs --locales-dir-path="C:\Program Files\Adobe\Adobe Photoshop CC 2017\Required\Plug-Ins\Spaces\Resources\locales\\" --log-file="C:\Users\Pavel\AppData\Roaming\Adobe\Adobe Photoshop CC 2017\Logs\debug.log" --resources-dir-path="C:\Program Files\Adobe\Adobe Photoshop CC 2017\Required\Plug-Ins\Spaces\Resources\\" /prefetch:822062411
"C:\Program Files\Adobe\Adobe Photoshop CC 2017\Required\Plug-Ins\Spaces\Adobe Spaces Helper.exe" --type=renderer --no-sandbox --touch-events=disabled --lang=en-US --lang=cs --locales-dir-path="C:\Program Files\Adobe\Adobe Photoshop CC 2017\Required\Plug-Ins\Spaces\Resources\locales\\" --log-file="C:\Users\Pavel\AppData\Roaming\Adobe\Adobe Photoshop CC 2017\Logs\debug.log" --resources-dir-path="C:\Program Files\Adobe\Adobe Photoshop CC 2017\Required\Plug-Ins\Spaces\Resources\\" --enable-pinch --device-scale-factor=1 --num-raster-threads=4 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="15556.1.396475451\601925303" /prefetch:673131151
"C:\Program Files\Adobe\Adobe Photoshop CC 2017\node.exe" "C:\Program Files\Adobe\Adobe Photoshop CC 2017\Required\Generator-builtin" --launchreason alwayson --photoshopVersion 18.0.1 -i \\.\pipe\0e41561e-ef16-11e6-a9fe-fdb1adfa65d8_i -o \\.\pipe\0e41561e-ef16-11e6-a9fe-fdb1adfa65d8_o -f "C:\Program Files\Adobe\Adobe Photoshop CC 2017\Required\Plug-Ins\Generator" -f "C:\Program Files\Common Files\Adobe\Plug-Ins\CC\Generator" -f "C:\Program Files\Adobe\Adobe Photoshop CC 2017\Plug-ins\Generator"
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Program Files\Adobe\Adobe Photoshop CC 2017\Required\CEP\CEPHtmlEngine\CEPHtmlEngine.exe" "C:\Program Files\Adobe\Adobe Photoshop CC 2017\Required\CEP\extensions\com.adobe.ccx.start\index.html" 4893ef46-4003-471b-bce4-08eb3256504f 15556 PHXS 18.0.1 com.adobe.ccx.start 1 "C:\Program Files\Adobe\Adobe Photoshop CC 2017\Required\CEP\extensions\com.adobe.ccx.start" "Photoshop" 64 WyItLW5vZGVqcy1kaXNhYmxlZCIsIi0taGlnaC1kcGktc3VwcG9ydD0xIiwiLS1kaXNhYmxlLXBpbmNoIl0= cs_CZ 4283650899 1
"C:\Program Files\Adobe\Adobe Photoshop CC 2017\Required\CEP\CEPHtmlEngine\CEPHtmlEngine.exe" "C:\Program Files\Common Files\Adobe\CEP\extensions\com.adobe.previewHD\PSLoader\loader.html" 5e123761-88da-41d5-b42d-4ce0abf22373 15556 PHXS 18.0.1 com.adobe.preview.loader 1 "C:\Program Files\Common Files\Adobe\CEP\extensions\com.adobe.previewHD" "Photoshop" 16 WyItLWVuYWJsZS1ub2RlanMiXQ== cs_CZ 4283650899 1
"C:\Program Files\Adobe\Adobe Photoshop CC 2017\Required\CEP\CEPHtmlEngine\CEPHtmlEngine.exe" --type=gpu-process --channel="7036.0.793716297\1015715496" --no-sandbox --lang=cs --log-file="C:\Users\Pavel\AppData\Local\Temp\CEPHtmlEngine7-PHXS-18.0.1-com.adobe.ccx.start.log" --log-severity=error --params_ppid=PHXS --params_serverid=15556 --supports-dual-gpus=false --gpu-driver-bug-workarounds=1,18,40 --gpu-vendor-id=0x8086 --gpu-device-id=0x0416 --gpu-driver-vendor="Intel Corporation" --gpu-driver-version=20.19.15.4531 --lang=cs --log-file="C:\Users\Pavel\AppData\Local\Temp\CEPHtmlEngine7-PHXS-18.0.1-com.adobe.ccx.start.log" --log-severity=error --params_ppid=PHXS --params_serverid=15556 /prefetch:822062411
"C:\Program Files\Adobe\Adobe Photoshop CC 2017\Required\CEP\CEPHtmlEngine\CEPHtmlEngine.exe" --type=renderer --disable-pinch --no-sandbox --enable-deferred-image-decoding --lang=en-US --lang=cs --log-file="C:\Users\Pavel\AppData\Local\Temp\CEPHtmlEngine7-PHXS-18.0.1-com.adobe.ccx.start.log" --log-severity=error --params_ppid=PHXS --params_ppversion=18.0.1 --params_extensionid=com.adobe.ccx.start --params_loglevel=1 --params_serverid=15556 --params_extensionuuid=4893ef46-4003-471b-bce4-08eb3256504f --params_windowid=139750 --params_commandline=WyItLW5vZGVqcy1kaXNhYmxlZCIsIi0taGlnaC1kcGktc3VwcG9ydD0xIiwiLS1kaXNhYmxlLXBpbmNoIl0= --device-scale-factor=1 --font-cache-shared-mem-suffix=7036 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --channel="7036.1.1387037610\1328357347" /prefetch:673131151
"C:\Program Files\Adobe\Adobe Photoshop CC 2017\Required\CEP\CEPHtmlEngine\CEPHtmlEngine.exe" "C:\Program Files\Adobe\Adobe Photoshop CC 2017\Required\CEP\extensions\com.adobe.experimentation.extension\index.html" d65178b1-e13e-47df-8357-316c723a8559 15556 PHXS 18.0.1 com.adobe.experimentation.extension 1 "C:\Program Files\Adobe\Adobe Photoshop CC 2017\Required\CEP\extensions\com.adobe.experimentation.extension" "Photoshop" 16 WyItLWVuYWJsZS1ub2RlanMiXQ== cs_CZ 4283650899 1
"C:\Program Files\Adobe\Adobe Photoshop CC 2017\Required\CEP\CEPHtmlEngine\CEPHtmlEngine.exe" --type=gpu-process --channel="16904.0.1310799043\117433034" --no-sandbox --lang=cs --log-file="C:\Users\Pavel\AppData\Local\Temp\CEPHtmlEngine7-PHXS-18.0.1-com.adobe.experimentation.extension.log" --log-severity=error --params_ppid=PHXS --params_serverid=15556 --supports-dual-gpus=false --gpu-driver-bug-workarounds=1,18,40 --gpu-vendor-id=0x8086 --gpu-device-id=0x0416 --gpu-driver-vendor="Intel Corporation" --gpu-driver-version=20.19.15.4531 --lang=cs --log-file="C:\Users\Pavel\AppData\Local\Temp\CEPHtmlEngine7-PHXS-18.0.1-com.adobe.experimentation.extension.log" --log-severity=error --params_ppid=PHXS --params_serverid=15556 /prefetch:822062411
"C:\Program Files\Adobe\Adobe Photoshop CC 2017\Required\CEP\CEPHtmlEngine\CEPHtmlEngine.exe" --type=renderer --no-sandbox --enable-deferred-image-decoding --lang=en-US --lang=cs --log-file="C:\Users\Pavel\AppData\Local\Temp\CEPHtmlEngine7-PHXS-18.0.1-com.adobe.experimentation.extension.log" --log-severity=error --params_ppid=PHXS --params_ppversion=18.0.1 --params_extensionid=com.adobe.experimentation.extension --params_loglevel=1 --params_serverid=15556 --params_extensionuuid=d65178b1-e13e-47df-8357-316c723a8559 --params_windowid=271038 --params_commandline=WyItLWVuYWJsZS1ub2RlanMiXQ== --enable-pinch --device-scale-factor=1 --font-cache-shared-mem-suffix=16904 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --channel="16904.1.1184377386\847016594" /prefetch:673131151
"C:\Program Files\Adobe\Adobe Photoshop CC 2017\Required\CEP\CEPHtmlEngine\CEPHtmlEngine.exe" --type=gpu-process --channel="20804.0.388736011\1466294082" --no-sandbox --lang=cs --log-file="C:\Users\Pavel\AppData\Local\Temp\CEPHtmlEngine7-PHXS-18.0.1-com.adobe.preview.loader.log" --log-severity=error --params_ppid=PHXS --params_serverid=15556 --supports-dual-gpus=false --gpu-driver-bug-workarounds=1,18,40 --gpu-vendor-id=0x8086 --gpu-device-id=0x0416 --gpu-driver-vendor="Intel Corporation" --gpu-driver-version=20.19.15.4531 --lang=cs --log-file="C:\Users\Pavel\AppData\Local\Temp\CEPHtmlEngine7-PHXS-18.0.1-com.adobe.preview.loader.log" --log-severity=error --params_ppid=PHXS --params_serverid=15556 /prefetch:822062411
"C:\Program Files\Adobe\Adobe Photoshop CC 2017\Required\CEP\CEPHtmlEngine\CEPHtmlEngine.exe" --type=renderer --no-sandbox --enable-deferred-image-decoding --lang=en-US --lang=cs --log-file="C:\Users\Pavel\AppData\Local\Temp\CEPHtmlEngine7-PHXS-18.0.1-com.adobe.preview.loader.log" --log-severity=error --params_ppid=PHXS --params_ppversion=18.0.1 --params_extensionid=com.adobe.preview.loader --params_loglevel=1 --params_serverid=15556 --params_extensionuuid=5e123761-88da-41d5-b42d-4ce0abf22373 --params_windowid=205278 --params_commandline=WyItLWVuYWJsZS1ub2RlanMiXQ== --enable-pinch --device-scale-factor=1 --font-cache-shared-mem-suffix=20804 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --channel="20804.1.14806174\1335433067" /prefetch:673131151
"C:\Program Files (x86)\JetBrains\PhpStorm 2016.3.2\bin\phpstorm64.exe"
"C:\Program Files (x86)\JetBrains\PhpStorm 2016.3.2\bin\fsnotifier64.exe"
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Program Files\Realtek\Audio\HDA\FMAPP.exe" -START
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutofillProfileCleanup<AutofillProfileCleanup,BlockSmallPluginContent<PluginPowerSaverTiny,*DefaultEnableGpuRasterization<DefaultEnableGpuRasterization,*EnableSyncClientToServerCompression<EnableSyncClientToServerCompression,*ExperimentalSwReporterEngine<SRTExperimentalEngineTrial,*NegotiateTLS13<TLS13Negotiation,PersistentHistograms<PersistentHistograms,*PointerEvent<PointerEvent,*PreferHtmlOverPlugins<Html5ByDefault,SecurityChip<SecurityChip,SecurityWarningIconUpdate<SecurityWarningIconUpdate,SubresourceFilter<SubresourceFilter,SwReporterExtendedSafeBrowsingFeature<SwReporterExtendedSafeBrowsingFeature,*TranslateRankerLogging<TranslateRankerLogging,*TranslateUI2016Q2<TranslateUI2016Q2 --disable-features=DisableFirstRunAutoImport<DisableFirstRunAutoImport,DocumentWriteEvaluator<DisallowFetchForDocWrittenScriptsInMainFrame,MediaFoundationH264Encoding<MediaFoundationH264Encoding,MetricsReporting<MetricsAndCrashSampling,ParseHTMLOnMainThread<ParseHTMLOnMainThread,SSLPostQuantumExperiment<SSLPostQuantum,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --force-fieldtrials=*AppBannerTriggering/site-engagement-eager/*AutofillProfileCleanup/Enabled/CaptivePortalInterstitial/Enabled/*ChromeChannelStable/Enabled/*ChromeSuggestionsTuning/IncludeExternalApps/*ClientSideDetectionModel/Model0/DataReductionProxyUseQuic/Enabled10_NoControl/DefaultBrowserPromptStyle/ColoredIconOnWhiteInfoBar3/DefaultEnableGpuRasterization/Default/DisableFirstRunAutoImport/Control/*DisallowFetchForDocWrittenScriptsInMainFrame/Control_20161208_Launch/*EnableSyncClientToServerCompression/Default/ExtensionDeveloperModeWarning/Enabled/*Html5ByDefault/Default/*InstanceID/Enabled/*MarkNonSecureAs/show-non-secure-passwords-cc-ui/*MediaFoundationH264Encoding/Control/MetricsAndCrashSampling/OutOfReportingSample/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/StandardR7/*ParseHTMLOnMainThread/Default/PasswordBranding/SmartLockBrandingSavePromptOnly/*PasswordGeneration/Disabled/*PasswordManagerSettingsMigration/Enable/*PersistentHistograms/EnabledInMemory/*PluginPowerSaverTiny/Enabled2/*QUIC/ControlJuly/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/SRTExperimentalEngineTrial/Default/*SRTPromptFieldTrial/On/SSLCommonNameMismatchHandling/Enabled/*SSLPostQuantum/disabled/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/*SecurityChip/Enabled/SecurityWarningIconUpdate/Enabled/SignInPasswordPromo/Enable3/*StrictSecureCookies/Enabled/*SubresourceFilter/EnabledForPhishingSites/*SwReporterExtendedSafeBrowsingFeature/Enabled/*TLS13Negotiation/Default/*TranslateRankerLogging/TranslateRankerLoggingDefault/TranslateServerStudy/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_50/*UMA-Uniformity-Trial-10-Percent/default/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_04/*UMA-Uniformity-Trial-5-Percent/group_08/*UMA-Uniformity-Trial-50-Percent/default/*WebFontsInterventionV2/Default/ --primordial-pipe-token=E58A073F7192E629520DD789C7A57347 --lang=cs --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --blink-settings=disallowFetchForDocWrittenScriptsInMainFrame=false,disallowFetchForDocWrittenScriptsInMainFrameOnSlowConnections=false --enable-pinch --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --content-image-texture-target=0,0,3553;0,1,3553;0,2,3553;0,3,3553;0,4,3553;0,5,3553;0,6,3553;0,7,3553;0,8,3553;0,9,3553;0,10,3553;0,11,3553;0,12,3553;0,13,3553;0,14,3553;0,15,3553;1,0,3553;1,1,3553;1,2,3553;1,3,3553;1,4,3553;1,5,3553;1,6,3553;1,7,3553;1,8,3553;1,9,3553;1,10,3553;1,11,3553;1,12,3553;1,13,3553;1,14,3553;1,15,3553;2,0,3553;2,1,3553;2,2,3553;2,3,3553;2,4,3553;2,5,3553;2,6,3553;2,7,3553;2,8,3553;2,9,3553;2,10,3553;2,11,3553;2,12,3553;2,13,3553;2,14,3553;2,15,3553;3,0,3553;3,1,3553;3,2,3553;3,3,3553;3,4,3553;3,5,3553;3,6,3553;3,7,3553;3,8,3553;3,9,3553;3,10,3553;3,11,3553;3,12,3553;3,13,3553;3,14,3553;3,15,3553 --service-request-channel-token=E58A073F7192E629520DD789C7A57347 --renderer-client-id=1961 --mojo-platform-channel-handle=1504 /prefetch:1
"C:\Program Files (x86)\Atlassian\SourceTree\SourceTree.exe"
"C:\WINDOWS\system32\cmd.exe"
\??\C:\WINDOWS\system32\conhost.exe 0x4
c:\wamp\bin\php\php5.6.25\php.exe
C:\WINDOWS\SYSTEM32\cmd.exe
C:\Program Files (x86)\Git\bin\ssh-agent.exe
\??\C:\WINDOWS\system32\conhost.exe 0x4
C:\Program Files (x86)\Git\bin\git.exe
C:\Program Files (x86)\Git\bin\ssh.exe
\??\C:\WINDOWS\system32\conhost.exe 0x4
C:\Program Files (x86)\Git\bin\git.exe
C:\Program Files (x86)\Git\bin\ssh.exe
"C:\Program Files (x86)\pgAdmin 4\v1\runtime\pgAdmin4.exe"
C:\Program Files\PostgreSQL\9.6\bin\postgres.exe
C:\Program Files\PostgreSQL\9.6\bin\postgres.exe
C:\Program Files\PostgreSQL\9.6\bin\postgres.exe
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutofillProfileCleanup<AutofillProfileCleanup,BlockSmallPluginContent<PluginPowerSaverTiny,*DefaultEnableGpuRasterization<DefaultEnableGpuRasterization,*EnableSyncClientToServerCompression<EnableSyncClientToServerCompression,*ExperimentalSwReporterEngine<SRTExperimentalEngineTrial,*NegotiateTLS13<TLS13Negotiation,PersistentHistograms<PersistentHistograms,*PointerEvent<PointerEvent,*PreferHtmlOverPlugins<Html5ByDefault,SecurityChip<SecurityChip,SecurityWarningIconUpdate<SecurityWarningIconUpdate,SubresourceFilter<SubresourceFilter,SwReporterExtendedSafeBrowsingFeature<SwReporterExtendedSafeBrowsingFeature,*TranslateRankerLogging<TranslateRankerLogging,*TranslateUI2016Q2<TranslateUI2016Q2 --disable-features=DisableFirstRunAutoImport<DisableFirstRunAutoImport,DocumentWriteEvaluator<DisallowFetchForDocWrittenScriptsInMainFrame,MediaFoundationH264Encoding<MediaFoundationH264Encoding,MetricsReporting<MetricsAndCrashSampling,ParseHTMLOnMainThread<ParseHTMLOnMainThread,SSLPostQuantumExperiment<SSLPostQuantum,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --force-fieldtrials=*AppBannerTriggering/site-engagement-eager/*AutofillProfileCleanup/Enabled/CaptivePortalInterstitial/Enabled/*ChromeChannelStable/Enabled/*ChromeSuggestionsTuning/IncludeExternalApps/*ClientSideDetectionModel/Model0/DataReductionProxyUseQuic/Enabled10_NoControl/DefaultBrowserPromptStyle/ColoredIconOnWhiteInfoBar3/DefaultEnableGpuRasterization/Default/DisableFirstRunAutoImport/Control/*DisallowFetchForDocWrittenScriptsInMainFrame/Control_20161208_Launch/*EnableSyncClientToServerCompression/Default/ExtensionDeveloperModeWarning/Enabled/*Html5ByDefault/Default/*InstanceID/Enabled/*MarkNonSecureAs/show-non-secure-passwords-cc-ui/*MediaFoundationH264Encoding/Control/MetricsAndCrashSampling/OutOfReportingSample/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/StandardR7/*ParseHTMLOnMainThread/Default/PasswordBranding/SmartLockBrandingSavePromptOnly/*PasswordGeneration/Disabled/*PasswordManagerSettingsMigration/Enable/*PersistentHistograms/EnabledInMemory/*PluginPowerSaverTiny/Enabled2/*QUIC/ControlJuly/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/SRTExperimentalEngineTrial/Default/*SRTPromptFieldTrial/On/SSLCommonNameMismatchHandling/Enabled/*SSLPostQuantum/disabled/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/*SecurityChip/Enabled/SecurityWarningIconUpdate/Enabled/SignInPasswordPromo/Enable3/*StrictSecureCookies/Enabled/*SubresourceFilter/EnabledForPhishingSites/*SwReporterExtendedSafeBrowsingFeature/Enabled/*TLS13Negotiation/Default/*TranslateRankerLogging/TranslateRankerLoggingDefault/TranslateServerStudy/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_50/*UMA-Uniformity-Trial-10-Percent/default/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_04/*UMA-Uniformity-Trial-5-Percent/group_08/*UMA-Uniformity-Trial-50-Percent/default/*WebFontsInterventionV2/Default/ --primordial-pipe-token=6BF22728DBA03DFF386038F79E14BBF8 --lang=cs --extension-process --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --blink-settings=disallowFetchForDocWrittenScriptsInMainFrame=false,disallowFetchForDocWrittenScriptsInMainFrameOnSlowConnections=false --enable-pinch --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --content-image-texture-target=0,0,3553;0,1,3553;0,2,3553;0,3,3553;0,4,3553;0,5,3553;0,6,3553;0,7,3553;0,8,3553;0,9,3553;0,10,3553;0,11,3553;0,12,3553;0,13,3553;0,14,3553;0,15,3553;1,0,3553;1,1,3553;1,2,3553;1,3,3553;1,4,3553;1,5,3553;1,6,3553;1,7,3553;1,8,3553;1,9,3553;1,10,3553;1,11,3553;1,12,3553;1,13,3553;1,14,3553;1,15,3553;2,0,3553;2,1,3553;2,2,3553;2,3,3553;2,4,3553;2,5,3553;2,6,3553;2,7,3553;2,8,3553;2,9,3553;2,10,3553;2,11,3553;2,12,3553;2,13,3553;2,14,3553;2,15,3553;3,0,3553;3,1,3553;3,2,3553;3,3,3553;3,4,3553;3,5,3553;3,6,3553;3,7,3553;3,8,3553;3,9,3553;3,10,3553;3,11,3553;3,12,3553;3,13,3553;3,14,3553;3,15,3553 --service-request-channel-token=6BF22728DBA03DFF386038F79E14BBF8 --renderer-client-id=2832 --mojo-platform-channel-handle=14908 /prefetch:1
"C:\WINDOWS\system32\cmd.exe"
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.11.105.0_x64__kzf8qxf38zg5c\SkypeHost.exe" -ServerName:SkypeHost.ServerServer
"C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem"
C:\WINDOWS\system32\AUDIODG.EXE 0x4fc
"C:\Program Files (x86)\Skype\Browser\SkypeBrowserHost.exe" -Embedding
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe" b0d87be4-2122-4519-920d-ad6d3b763dd8
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe" serviceapp
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Program Files (x86)\Skype\Browser\SkypeBrowserHost.exe" -Embedding
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutofillProfileCleanup<AutofillProfileCleanup,BlockSmallPluginContent<PluginPowerSaverTiny,*DefaultEnableGpuRasterization<DefaultEnableGpuRasterization,*EnableSyncClientToServerCompression<EnableSyncClientToServerCompression,*ExperimentalSwReporterEngine<SRTExperimentalEngineTrial,*NegotiateTLS13<TLS13Negotiation,PersistentHistograms<PersistentHistograms,*PointerEvent<PointerEvent,*PreferHtmlOverPlugins<Html5ByDefault,SecurityChip<SecurityChip,SecurityWarningIconUpdate<SecurityWarningIconUpdate,SubresourceFilter<SubresourceFilter,SwReporterExtendedSafeBrowsingFeature<SwReporterExtendedSafeBrowsingFeature,*TranslateRankerLogging<TranslateRankerLogging,*TranslateUI2016Q2<TranslateUI2016Q2 --disable-features=DisableFirstRunAutoImport<DisableFirstRunAutoImport,DocumentWriteEvaluator<DisallowFetchForDocWrittenScriptsInMainFrame,MediaFoundationH264Encoding<MediaFoundationH264Encoding,MetricsReporting<MetricsAndCrashSampling,ParseHTMLOnMainThread<ParseHTMLOnMainThread,SSLPostQuantumExperiment<SSLPostQuantum,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --force-fieldtrials=*AppBannerTriggering/site-engagement-eager/*AutofillProfileCleanup/Enabled/CaptivePortalInterstitial/Enabled/*ChromeChannelStable/Enabled/*ChromeSuggestionsTuning/IncludeExternalApps/*ClientSideDetectionModel/Model0/DataReductionProxyUseQuic/Enabled10_NoControl/DefaultBrowserPromptStyle/ColoredIconOnWhiteInfoBar3/DefaultEnableGpuRasterization/Default/DisableFirstRunAutoImport/Control/*DisallowFetchForDocWrittenScriptsInMainFrame/Control_20161208_Launch/*EnableSyncClientToServerCompression/Default/ExtensionDeveloperModeWarning/Enabled/*Html5ByDefault/Default/*InstanceID/Enabled/*MarkNonSecureAs/show-non-secure-passwords-cc-ui/*MediaFoundationH264Encoding/Control/MetricsAndCrashSampling/OutOfReportingSample/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/StandardR7/*ParseHTMLOnMainThread/Default/PasswordBranding/SmartLockBrandingSavePromptOnly/*PasswordGeneration/Disabled/*PasswordManagerSettingsMigration/Enable/*PersistentHistograms/EnabledInMemory/*PluginPowerSaverTiny/Enabled2/*QUIC/ControlJuly/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/SRTExperimentalEngineTrial/Default/*SRTPromptFieldTrial/On/SSLCommonNameMismatchHandling/Enabled/*SSLPostQuantum/disabled/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/*SecurityChip/Enabled/SecurityWarningIconUpdate/Enabled/SignInPasswordPromo/Enable3/*StrictSecureCookies/Enabled/*SubresourceFilter/EnabledForPhishingSites/*SwReporterExtendedSafeBrowsingFeature/Enabled/*TLS13Negotiation/Default/*TranslateRankerLogging/TranslateRankerLoggingDefault/TranslateServerStudy/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_50/*UMA-Uniformity-Trial-10-Percent/default/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_04/*UMA-Uniformity-Trial-5-Percent/group_08/*UMA-Uniformity-Trial-50-Percent/default/*WebFontsInterventionV2/Default/ --primordial-pipe-token=87F42BA0866E70F42112A82D5FB4ADAC --lang=cs --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --blink-settings=disallowFetchForDocWrittenScriptsInMainFrame=false,disallowFetchForDocWrittenScriptsInMainFrameOnSlowConnections=false --enable-pinch --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --content-image-texture-target=0,0,3553;0,1,3553;0,2,3553;0,3,3553;0,4,3553;0,5,3553;0,6,3553;0,7,3553;0,8,3553;0,9,3553;0,10,3553;0,11,3553;0,12,3553;0,13,3553;0,14,3553;0,15,3553;1,0,3553;1,1,3553;1,2,3553;1,3,3553;1,4,3553;1,5,3553;1,6,3553;1,7,3553;1,8,3553;1,9,3553;1,10,3553;1,11,3553;1,12,3553;1,13,3553;1,14,3553;1,15,3553;2,0,3553;2,1,3553;2,2,3553;2,3,3553;2,4,3553;2,5,3553;2,6,3553;2,7,3553;2,8,3553;2,9,3553;2,10,3553;2,11,3553;2,12,3553;2,13,3553;2,14,3553;2,15,3553;3,0,3553;3,1,3553;3,2,3553;3,3,3553;3,4,3553;3,5,3553;3,6,3553;3,7,3553;3,8,3553;3,9,3553;3,10,3553;3,11,3553;3,12,3553;3,13,3553;3,14,3553;3,15,3553 --service-request-channel-token=87F42BA0866E70F42112A82D5FB4ADAC --renderer-client-id=4292 --mojo-platform-channel-handle=11020 /prefetch:1
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-0cdbc94e-2dd4-4802-a550-9a96296673e2 -SystemEventPortName:HostProcess-1c0e5dd7-ea15-4d76-b35d-7f96eca141f3 -IoCancelEventPortName:HostProcess-4b9c7bd3-cc91-4a4c-8f0f-03d0f131daf6 -NonStateChangingEventPortName:HostProcess-89f006c4-bd0b-44e6-9571-929426a661a1 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:575e46b9-ee5d-40b5-89c5-d5be618b1069 -DeviceGroupId:WpdFsGroup
"C:\WINDOWS\System32\Taskmgr.exe" /2
C:\Program Files\Windows Defender\MpCmdRun.exe
C:\WINDOWS\system32\svchost.exe -k SDRSVC
"C:\Program Files\Reimage\Reimage Protector\ReiGuard.exe"
"C:\Program Files\Reimage\Reimage Protector\ReiSystem.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutofillProfileCleanup<AutofillProfileCleanup,BlockSmallPluginContent<PluginPowerSaverTiny,*DefaultEnableGpuRasterization<DefaultEnableGpuRasterization,*EnableSyncClientToServerCompression<EnableSyncClientToServerCompression,*ExperimentalSwReporterEngine<SRTExperimentalEngineTrial,*NegotiateTLS13<TLS13Negotiation,PersistentHistograms<PersistentHistograms,*PointerEvent<PointerEvent,*PreferHtmlOverPlugins<Html5ByDefault,SecurityChip<SecurityChip,SecurityWarningIconUpdate<SecurityWarningIconUpdate,SubresourceFilter<SubresourceFilter,SwReporterExtendedSafeBrowsingFeature<SwReporterExtendedSafeBrowsingFeature,*TranslateRankerLogging<TranslateRankerLogging,*TranslateUI2016Q2<TranslateUI2016Q2 --disable-features=DisableFirstRunAutoImport<DisableFirstRunAutoImport,DocumentWriteEvaluator<DisallowFetchForDocWrittenScriptsInMainFrame,MediaFoundationH264Encoding<MediaFoundationH264Encoding,MetricsReporting<MetricsAndCrashSampling,ParseHTMLOnMainThread<ParseHTMLOnMainThread,SSLPostQuantumExperiment<SSLPostQuantum,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --force-fieldtrials=*AppBannerTriggering/site-engagement-eager/*AutofillProfileCleanup/Enabled/CaptivePortalInterstitial/Enabled/*ChromeChannelStable/Enabled/*ChromeSuggestionsTuning/IncludeExternalApps/*ClientSideDetectionModel/Model0/DataReductionProxyUseQuic/Enabled10_NoControl/DefaultBrowserPromptStyle/ColoredIconOnWhiteInfoBar3/DefaultEnableGpuRasterization/Default/DisableFirstRunAutoImport/Control/*DisallowFetchForDocWrittenScriptsInMainFrame/Control_20161208_Launch/*EnableSyncClientToServerCompression/Default/ExtensionDeveloperModeWarning/Enabled/*Html5ByDefault/Default/*InstanceID/Enabled/*MarkNonSecureAs/show-non-secure-passwords-cc-ui/*MediaFoundationH264Encoding/Control/MetricsAndCrashSampling/OutOfReportingSample/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/StandardR7/*ParseHTMLOnMainThread/Default/PasswordBranding/SmartLockBrandingSavePromptOnly/*PasswordGeneration/Disabled/*PasswordManagerSettingsMigration/Enable/*PersistentHistograms/EnabledInMemory/*PluginPowerSaverTiny/Enabled2/*QUIC/ControlJuly/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/SRTExperimentalEngineTrial/Default/*SRTPromptFieldTrial/On/SSLCommonNameMismatchHandling/Enabled/*SSLPostQuantum/disabled/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/*SecurityChip/Enabled/SecurityWarningIconUpdate/Enabled/SignInPasswordPromo/Enable3/*StrictSecureCookies/Enabled/*SubresourceFilter/EnabledForPhishingSites/*SwReporterExtendedSafeBrowsingFeature/Enabled/*TLS13Negotiation/Default/*TranslateRankerLogging/TranslateRankerLoggingDefault/TranslateServerStudy/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_50/*UMA-Uniformity-Trial-10-Percent/default/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_04/*UMA-Uniformity-Trial-5-Percent/group_08/*UMA-Uniformity-Trial-50-Percent/default/*WebFontsInterventionV2/Default/ --primordial-pipe-token=B92FD1937B4673E18FA408D13CAF0F9D --lang=cs --instant-process --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --blink-settings=disallowFetchForDocWrittenScriptsInMainFrame=false,disallowFetchForDocWrittenScriptsInMainFrameOnSlowConnections=false --enable-pinch --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --content-image-texture-target=0,0,3553;0,1,3553;0,2,3553;0,3,3553;0,4,3553;0,5,3553;0,6,3553;0,7,3553;0,8,3553;0,9,3553;0,10,3553;0,11,3553;0,12,3553;0,13,3553;0,14,3553;0,15,3553;1,0,3553;1,1,3553;1,2,3553;1,3,3553;1,4,3553;1,5,3553;1,6,3553;1,7,3553;1,8,3553;1,9,3553;1,10,3553;1,11,3553;1,12,3553;1,13,3553;1,14,3553;1,15,3553;2,0,3553;2,1,3553;2,2,3553;2,3,3553;2,4,3553;2,5,3553;2,6,3553;2,7,3553;2,8,3553;2,9,3553;2,10,3553;2,11,3553;2,12,3553;2,13,3553;2,14,3553;2,15,3553;3,0,3553;3,1,3553;3,2,3553;3,3,3553;3,4,3553;3,5,3553;3,6,3553;3,7,3553;3,8,3553;3,9,3553;3,10,3553;3,11,3553;3,12,3553;3,13,3553;3,14,3553;3,15,3553 --service-request-channel-token=B92FD1937B4673E18FA408D13CAF0F9D --renderer-client-id=4333 --mojo-platform-channel-handle=4696 /prefetch:1
C:\WINDOWS\system32\compattelrunner.exe -m:aeinv.dll -f:UpdateSoftwareInventoryW
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Program Files (x86)\Skype\Browser\SkypeBrowserHost.exe" -Embedding
"C:\Program Files (x86)\Skype\Browser\SkypeBrowserHost.exe" -Embedding
"C:\WINDOWS\system32\backgroundTaskHost.exe" -ServerName:App.AppXmtcan0h2tfbfy7k9kn8hbxb6dmzz1zh0.mca
"C:\WINDOWS\SysWOW64\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe_S-1-5-21-2045645379-809631811-2224358688-1002317_ Global\UsGthrCtrlFltPipeMssGthrPipe_S-1-5-21-2045645379-809631811-2224358688-1002317 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon" "1"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutofillProfileCleanup<AutofillProfileCleanup,BlockSmallPluginContent<PluginPowerSaverTiny,*DefaultEnableGpuRasterization<DefaultEnableGpuRasterization,*EnableSyncClientToServerCompression<EnableSyncClientToServerCompression,*ExperimentalSwReporterEngine<SRTExperimentalEngineTrial,*NegotiateTLS13<TLS13Negotiation,PersistentHistograms<PersistentHistograms,*PointerEvent<PointerEvent,*PreferHtmlOverPlugins<Html5ByDefault,SecurityChip<SecurityChip,SecurityWarningIconUpdate<SecurityWarningIconUpdate,SubresourceFilter<SubresourceFilter,SwReporterExtendedSafeBrowsingFeature<SwReporterExtendedSafeBrowsingFeature,*TranslateRankerLogging<TranslateRankerLogging,*TranslateUI2016Q2<TranslateUI2016Q2 --disable-features=DisableFirstRunAutoImport<DisableFirstRunAutoImport,DocumentWriteEvaluator<DisallowFetchForDocWrittenScriptsInMainFrame,MediaFoundationH264Encoding<MediaFoundationH264Encoding,MetricsReporting<MetricsAndCrashSampling,ParseHTMLOnMainThread<ParseHTMLOnMainThread,SSLPostQuantumExperiment<SSLPostQuantum,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --force-fieldtrials=*AppBannerTriggering/site-engagement-eager/*AutofillProfileCleanup/Enabled/CaptivePortalInterstitial/Enabled/*ChromeChannelStable/Enabled/*ChromeSuggestionsTuning/IncludeExternalApps/*ClientSideDetectionModel/Model0/DataReductionProxyUseQuic/Enabled10_NoControl/DefaultBrowserPromptStyle/ColoredIconOnWhiteInfoBar3/DefaultEnableGpuRasterization/Default/DisableFirstRunAutoImport/Control/*DisallowFetchForDocWrittenScriptsInMainFrame/Control_20161208_Launch/*EnableSyncClientToServerCompression/Default/ExtensionDeveloperModeWarning/Enabled/*Html5ByDefault/Default/*InstanceID/Enabled/*MarkNonSecureAs/show-non-secure-passwords-cc-ui/*MediaFoundationH264Encoding/Control/MetricsAndCrashSampling/OutOfReportingSample/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/StandardR7/*ParseHTMLOnMainThread/Default/PasswordBranding/SmartLockBrandingSavePromptOnly/*PasswordGeneration/Disabled/*PasswordManagerSettingsMigration/Enable/*PersistentHistograms/EnabledInMemory/*PluginPowerSaverTiny/Enabled2/*QUIC/ControlJuly/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/SRTExperimentalEngineTrial/Default/*SRTPromptFieldTrial/On/SSLCommonNameMismatchHandling/Enabled/*SSLPostQuantum/disabled/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/*SecurityChip/Enabled/SecurityWarningIconUpdate/Enabled/SignInPasswordPromo/Enable3/*StrictSecureCookies/Enabled/*SubresourceFilter/EnabledForPhishingSites/*SwReporterExtendedSafeBrowsingFeature/Enabled/*TLS13Negotiation/Default/*TranslateRankerLogging/TranslateRankerLoggingDefault/TranslateServerStudy/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_50/*UMA-Uniformity-Trial-10-Percent/default/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_04/*UMA-Uniformity-Trial-5-Percent/group_08/*UMA-Uniformity-Trial-50-Percent/default/*WebFontsInterventionV2/Default/ --primordial-pipe-token=7D46B85CC5A318472E142FDF7B7316A3 --lang=cs --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --blink-settings=disallowFetchForDocWrittenScriptsInMainFrame=false,disallowFetchForDocWrittenScriptsInMainFrameOnSlowConnections=false --enable-pinch --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --content-image-texture-target=0,0,3553;0,1,3553;0,2,3553;0,3,3553;0,4,3553;0,5,3553;0,6,3553;0,7,3553;0,8,3553;0,9,3553;0,10,3553;0,11,3553;0,12,3553;0,13,3553;0,14,3553;0,15,3553;1,0,3553;1,1,3553;1,2,3553;1,3,3553;1,4,3553;1,5,3553;1,6,3553;1,7,3553;1,8,3553;1,9,3553;1,10,3553;1,11,3553;1,12,3553;1,13,3553;1,14,3553;1,15,3553;2,0,3553;2,1,3553;2,2,3553;2,3,3553;2,4,3553;2,5,3553;2,6,3553;2,7,3553;2,8,3553;2,9,3553;2,10,3553;2,11,3553;2,12,3553;2,13,3553;2,14,3553;2,15,3553;3,0,3553;3,1,3553;3,2,3553;3,3,3553;3,4,3553;3,5,3553;3,6,3553;3,7,3553;3,8,3553;3,9,3553;3,10,3553;3,11,3553;3,12,3553;3,13,3553;3,14,3553;3,15,3553 --service-request-channel-token=7D46B85CC5A318472E142FDF7B7316A3 --renderer-client-id=4378 --mojo-platform-channel-handle=11980 /prefetch:1
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe318_ Global\UsGthrCtrlFltPipeMssGthrPipe318 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 636 640 648 8192 644
C:\Windows\System32\smartscreen.exe -Embedding
"C:\Users\Pavel\Downloads\RSITx64.exe"
C:\WINDOWS\system32\wbem\wmiprvse.exe
Naposledy upravil(a) TinTon dne 21 lis 2017 18:21, celkem upraveno 1 x.

TinTon
Návštěvník
Návštěvník
Příspěvky: 9
Registrován: 11 úno 2017 17:18

Re: Pomalý počítač - prosím o kontrolu logu (log je rozdělen

#2 Příspěvek od TinTon »

======Scheduled tasks folder======

C:\WINDOWS\tasks\CreateExplorerShellUnelevatedTask.job - C:\WINDOWS\explorer.exe /NOUACCHECK
C:\WINDOWS\tasks\DropboxUpdateTaskMachineCore.job - C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe /c
C:\WINDOWS\tasks\DropboxUpdateTaskMachineUA.job - C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe /ua /installsource scheduler
C:\WINDOWS\system32\tasks\Adobe Acrobat Update Task - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
C:\WINDOWS\system32\tasks\AdobeAAMUpdater-1.0-PAVEL-NB-Pavel - C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe -mode=scheduled
C:\WINDOWS\system32\tasks\DolbySelectorTask - %ProgramFiles%\Dolby Digital Plus\ddp.exe -autostart
C:\WINDOWS\system32\tasks\DropboxUpdateTaskMachineCore - C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe /c
C:\WINDOWS\system32\tasks\DropboxUpdateTaskMachineUA - C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe /ua /installsource scheduler
C:\WINDOWS\system32\tasks\GoogleUpdateTaskMachineCore - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\system32\tasks\GoogleUpdateTaskMachineUA - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\WINDOWS\system32\tasks\GyazoUpdateTaskMachine - "C:\Program Files (x86)\Gyazo\GyazoUpdate.exe"
C:\WINDOWS\system32\tasks\GyazoUpdateTaskMachineDaily - "C:\Program Files (x86)\Gyazo\GyazoUpdate.exe"
C:\WINDOWS\system32\tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} - C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe
C:\WINDOWS\system32\tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} - C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe
C:\WINDOWS\system32\tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} - C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe
C:\WINDOWS\system32\tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} - C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmMon.exe
C:\WINDOWS\system32\tasks\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} - C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe --logon
C:\WINDOWS\system32\tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} - C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe
C:\WINDOWS\system32\tasks\OneDrive Standalone Update Task - C:\Users\Pavel\AppData\Local\Microsoft\OneDrive\17.3.6517.0809\OneDriveStandaloneUpdater.exe
C:\WINDOWS\system32\tasks\OneDrive Standalone Update Task v2 - %localappdata%\Microsoft\OneDrive\OneDriveStandaloneUpdater.exe
C:\WINDOWS\system32\tasks\Reimage Reminder - "C:\Program Files\Reimage\Reimage Repair\ReimageReminder.exe"
C:\WINDOWS\system32\tasks\ReimageUpdater - C:\Program Files\Reimage\Reimage Protector\ReiGuard.exe run_task
C:\WINDOWS\system32\tasks\User_Feed_Synchronization-{DC74A0A1-E661-42DC-9B49-0AF5D039816B} - C:\Windows\system32\msfeedssync.exe sync
C:\WINDOWS\system32\tasks\{296E541D-30AA-4EBF-B3BF-0316F28E15DA} - C:\WINDOWS\system32\pcalua.exe -a "C:\ProgramData\Battle.net\Agent\Blizzard Uninstaller.exe" -c --lang=enUS --uid=wow_enus --displayname="World of Warcraft"
C:\WINDOWS\system32\tasks\{57742151-5698-4179-AD4E-BA965B253782} - "c:\windows\system32\launchwinapp.exe" http://ui.skype.com/ui/0/7.5.64.102/cs/ ... age=tsMain
C:\WINDOWS\system32\tasks\Microsoft\XblGameSave\XblGameSaveTask - %windir%\System32\XblGameSaveTask.exe standby
C:\WINDOWS\system32\tasks\Microsoft\XblGameSave\XblGameSaveTaskLogon - %windir%\System32\XblGameSaveTask.exe logon
C:\WINDOWS\system32\tasks\Microsoft\Windows\Workplace Join\Automatic-Device-Join - %SystemRoot%\System32\dsregcmd.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start - C:\WINDOWS\system32\sc.exe start wuauserv
C:\WINDOWS\system32\tasks\Microsoft\Windows\WindowsUpdate\sih - %systemroot%\System32\sihclient.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\WindowsUpdate\sihboot - %systemroot%\System32\sihclient.exe /boot
C:\WINDOWS\system32\tasks\Microsoft\Windows\Windows Media Sharing\UpdateLibrary - "%ProgramFiles%\Windows Media Player\wmpnscfg.exe"
C:\WINDOWS\system32\tasks\Microsoft\Windows\Windows Filtering Platform\BfeOnServiceStartTypeChange - %windir%\system32\rundll32.exe bfe.dll,BfeOnServiceStartTypeChange
C:\WINDOWS\system32\tasks\Microsoft\Windows\Windows Error Reporting\QueueReporting - %windir%\system32\wermgr.exe -upload
C:\WINDOWS\system32\tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance - %ProgramFiles%\Windows Defender\MpCmdRun.exe -IdleTask -TaskName WdCacheMaintenance
C:\WINDOWS\system32\tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup - %ProgramFiles%\Windows Defender\MpCmdRun.exe -IdleTask -TaskName WdCleanup
C:\WINDOWS\system32\tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan - %ProgramFiles%\Windows Defender\MpCmdRun.exe Scan -ScheduleJob
C:\WINDOWS\system32\tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification - %ProgramFiles%\Windows Defender\MpCmdRun.exe -IdleTask -TaskName WdVerification
C:\WINDOWS\system32\tasks\Microsoft\Windows\WCM\WiFiTask - %SystemRoot%\System32\WiFiTask.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\UPnP\UPnPHostConfig - sc.exe config upnphost start= auto
C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\Maintenance Install - %systemroot%\system32\usoclient.exe StartInstall
C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\MusUx_UpdateInterval - C:\WINDOWS\system32\MusNotification.exe Display
C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\Policy Install - %systemroot%\system32\usoclient.exe StartInstall
C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\Reboot - %systemroot%\system32\MusNotification.exe Reboot
C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\Refresh Settings - %systemroot%\system32\usoclient.exe RefreshSettings
C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\Resume On Boot - %systemroot%\system32\usoclient.exe ResumeUpdate
C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\Schedule Scan - %systemroot%\system32\usoclient.exe StartScan
C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker_Display - C:\windows\system32\MusNotification.exe Display
C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker_ReadyToReboot - C:\windows\system32\MusNotification.exe ReadyToReboot
C:\WINDOWS\system32\tasks\Microsoft\Windows\Time Zone\SynchronizeTimeZone - %windir%\system32\tzsync.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Time Synchronization\SynchronizeTime - %windir%\system32\sc.exe start w32time task_started
C:\WINDOWS\system32\tasks\Microsoft\Windows\SystemRestore\SR - %windir%\system32\srtasks.exe ExecuteScheduledSPPCreation
C:\WINDOWS\system32\tasks\Microsoft\Windows\Sysmain\WsSwapAssessmentTask - %windir%\system32\rundll32.exe sysmain.dll,PfSvWsSwapAssessmentTask
C:\WINDOWS\system32\tasks\Microsoft\Windows\Subscription\EnableLicenseAcquisition - %SystemRoot%\system32\UpgradeSubscription.exe -e
C:\WINDOWS\system32\tasks\Microsoft\Windows\Subscription\LicenseAcquisition - %SystemRoot%\system32\UpgradeSubscription.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Storage Tiers Management\Storage Tiers Optimization - %windir%\system32\defrag.exe -c -h -g -# -m 8 -i 13500
C:\WINDOWS\system32\tasks\Microsoft\Windows\Speech\SpeechModelDownloadTask - %windir%\system32\speech_onecore\common\SpeechModelDownload.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\SpacePort\SpaceAgentTask - %windir%\system32\SpaceAgent.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\SpacePort\SpaceManagerTask - %windir%\system32\spaceman.exe /Work
C:\WINDOWS\system32\tasks\Microsoft\Windows\Shell\FamilySafetyMonitor - %windir%\System32\wpcmon.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\SharedPC\Account Cleanup - %windir%\System32\rundll32.exe %windir%\System32\Windows.SharedPC.AccountManager.dll,StartMaintenance
C:\WINDOWS\system32\tasks\Microsoft\Windows\RemovalTools\MRT_HB - C:\Windows\system32\MRT.exe /EHB /Q
C:\WINDOWS\system32\tasks\Microsoft\Windows\RemoteAssistance\RemoteAssistanceTask - %windir%\system32\RAServer.exe /offerraupdate
C:\WINDOWS\system32\tasks\Microsoft\Windows\Plug and Play\Sysprep Generalize Drivers - %SystemRoot%\System32\drvinst.exe 6
C:\WINDOWS\system32\tasks\Microsoft\Windows\NlaSvc\WiFiTask - %SystemRoot%\System32\WiFiTask.exe nla
C:\WINDOWS\system32\tasks\Microsoft\Windows\NetTrace\GatherNetworkInfo - %windir%\system32\gatherNetworkInfo.vbs
C:\WINDOWS\system32\tasks\Microsoft\Windows\MUI\LPRemove - %windir%\system32\lpremove.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser - %SystemRoot%\System32\MbaeParserTask.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Management\Provisioning\Logon - %windir%\system32\ProvTool.exe /turn 5
C:\WINDOWS\system32\tasks\Microsoft\Windows\Location\Notifications - %windir%\System32\LocationNotificationWindows.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Location\WindowsActionDialog - %windir%\System32\WindowsActionDialog.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Feedback\Siuf\DmClient - %windir%\system32\dmclient.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Feedback\Siuf\DmClientOnScenarioDownload - %windir%\system32\dmclient.exe utcwnf
C:\WINDOWS\system32\tasks\Microsoft\Windows\EnterpriseMgmt\MDMMaintenenceTask - %windir%\system32\MDMAgent.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\DUSM\dusmtask - %SystemRoot%\System32\dusmtask.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\DiskFootprint\Diagnostics - %windir%\system32\disksnapshot.exe -z
C:\WINDOWS\system32\tasks\Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticDataCollector - %windir%\system32\rundll32.exe dfdts.dll,DfdGetDefaultPolicyAndSMART
C:\WINDOWS\system32\tasks\Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticResolver - %windir%\system32\DFDWiz.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\DiskCleanup\SilentCleanup - %windir%\system32\cleanmgr.exe /autoclean /d %systemdrive%
C:\WINDOWS\system32\tasks\Microsoft\Windows\Device Information\Device - %windir%\system32\devicecensus.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Defrag\ScheduledDefrag - %windir%\system32\defrag.exe -c -h -o -$
C:\WINDOWS\system32\tasks\Microsoft\Windows\Customer Experience Improvement Program\Consolidator - %SystemRoot%\System32\wsqmcons.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Clip\License Validation - %SystemRoot%\system32\ClipUp.exe -p -s -o
C:\WINDOWS\system32\tasks\Microsoft\Windows\Bluetooth\UninstallDeviceTask - BthUdTask.exe $(Arg0)
C:\WINDOWS\system32\tasks\Microsoft\Windows\Autochk\Proxy - %windir%\system32\rundll32.exe /d acproxy.dll,PerformAutochkOperations
C:\WINDOWS\system32\tasks\Microsoft\Windows\AppxDeploymentClient\Pre-staged app cleanup - %windir%\system32\rundll32.exe %windir%\system32\AppxDeploymentClient.dll,AppxPreStageCleanupRunTask
C:\WINDOWS\system32\tasks\Microsoft\Windows\ApplicationData\appuriverifierdaily - %windir%\system32\AppHostRegistrationVerifier.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\ApplicationData\appuriverifierinstall - %windir%\system32\AppHostRegistrationVerifier.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\ApplicationData\CleanupTemporaryState - %windir%\system32\rundll32.exe Windows.Storage.ApplicationData.dll,CleanupTemporaryState
C:\WINDOWS\system32\tasks\Microsoft\Windows\ApplicationData\DsSvcCleanup - %windir%\system32\dstokenclean.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Application Experience\Microsoft Compatibility Appraiser - %windir%\system32\compattelrunner.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Application Experience\ProgramDataUpdater - %windir%\system32\compattelrunner.exe -maintenance
C:\WINDOWS\system32\tasks\Microsoft\Windows\Application Experience\StartupAppTask - %windir%\system32\rundll32.exe Startupscan.dll,SusRunTask
C:\WINDOWS\system32\tasks\Microsoft\Windows\AppID\PolicyConverter - %windir%\system32\appidpolicyconverter.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\AppID\VerifiedPublisherCertStoreCheck - %windir%\system32\appidcertstorecheck.exe
C:\WINDOWS\system32\tasks\Microsoft\VisualStudio\VSIX Auto Update 14 - C:\Program Files (x86)\Microsoft Visual Studio 14.0\Common7\IDE\VSIXAutoUpdate.exe
C:\WINDOWS\system32\tasks\Microsoft\Office\Office Automatic Updates - C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe /update SCHEDULEDTASK displaylevel=False
C:\WINDOWS\system32\tasks\Microsoft\Office\Office ClickToRun Service Monitor - C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe /WatchService
C:\WINDOWS\system32\tasks\Microsoft\Office\Office Subscription Maintenance - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesCommonx86\Microsoft Shared\OFFICE15\OLicenseHeartbeat.exe
C:\WINDOWS\system32\tasks\Microsoft\Office\OfficeTelemetryAgentFallBack - C:\Program Files\Microsoft Office 15\root\Office15\msoia.exe scan upload mininterval:2880
C:\WINDOWS\system32\tasks\Microsoft\Office\OfficeTelemetryAgentLogOn - C:\Program Files\Microsoft Office 15\root\Office15\msoia.exe scan upload
C:\WINDOWS\system32\tasks\Apple\AppleSoftwareUpdate - C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe -task

=========Mozilla firefox=========

ProfilePath - C:\Users\Pavel\AppData\Roaming\Mozilla\Firefox\Profiles\b14wv8ko.default

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@FortinetCacheClean]
"Description"=SSL VPN Cache Cleaner
"Path"=C:\Program Files (x86)\Fortinet\FortiClient\npccplugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@FortinetCacheCleanEx]
"Description"=FortiClient SSLVPN CacheCleaner
"Path"=C:\Program Files (x86)\Fortinet\FortiClient\npccpluginex.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@FortinetTunnelControl]
"Description"=SSL VPN Tunnel Control Plugin
"Path"=C:\Program Files (x86)\Fortinet\FortiClient\nptcplugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/DTPlugin,version=11.111.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files (x86)\Java\jre1.8.0_111\bin\dtplugin\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=11.111.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Java\jre1.8.0_111\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/Lync,version=15.0]
"Description"=Microsoft Lync Plug-in for Firefox
"Path"=C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files (x86)\Microsoft Silverlight\5.1.20513.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVision]
"Description"=NVIDIA stereo images plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVisionStreaming]
"Description"=NVIDIA 3D Vision Streaming plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.32.7\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.32.7\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\adobe.com/AdobeAAMDetect]
"Description"=
"Path"=C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=11.111.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files\Java\jre1.8.0_111\bin\dtplugin\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin,version=11.111.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre1.8.0_111\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\adobe.com/AdobeAAMDetect]
"Description"=
"Path"=C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll


C:\Users\Pavel\AppData\Roaming\Mozilla\Firefox\Profiles\b14wv8ko.default\addons.json

C:\Users\Pavel\AppData\Roaming\Mozilla\Firefox\Profiles\b14wv8ko.default\extensions.json
Multi-process staged rollout - extension - e10srollout@mozilla.org - C:\Program Files (x86)\Mozilla Firefox\browser\features\e10srollout@mozilla.org.xpi
Pocket - extension - firefox@getpocket.com - C:\Program Files (x86)\Mozilla Firefox\browser\features\firefox@getpocket.com.xpi
Web Compat - extension - webcompat@mozilla.org - C:\Program Files (x86)\Mozilla Firefox\browser\features\webcompat@mozilla.org.xpi
Application Update Service Helper - extension - aushelper@mozilla.org - C:\Program Files (x86)\Mozilla Firefox\browser\features\aushelper@mozilla.org.xpi
Default - theme - {972ce4c6-7e08-4474-a285-3208198ce6fd} - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}.xpi

C:\Users\Pavel\AppData\Roaming\Mozilla\Firefox\Profiles\b14wv8ko.default\pluginreg.dat
Plugin - AdobeAAMDetect - 3.0.0.0 - C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll
Plugin - Adobe Acrobat - 15.23.20053.15062 - C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll
Plugin - Google Update - 1.3.32.7 - C:\Program Files (x86)\Google\Update\1.3.32.7\npGoogleUpdate3.dll
Plugin - NVIDIA 3D VISION - 7.17.13.5362 - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll
Plugin - NVIDIA 3D Vision - 7.17.13.5362 - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll
Plugin - Microsoft Office 2013 - 15.0.4514.1000 - C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL
Plugin - Silverlight Plug-In - 5.1.20513.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.20513.0\npctrl.dll
Plugin - Microsoft Office 2013 - 15.0.4849.1000 - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll
Plugin - Java(TM) Platform SE 8 U111 - 11.111.2.14 - C:\Program Files (x86)\Java\jre1.8.0_111\bin\plugin2\npjp2.dll
Plugin - Java Deployment Toolkit 8.0.1110.14 - 11.111.2.14 - C:\Program Files (x86)\Java\jre1.8.0_111\bin\dtplugin\npdeployJava1.dll
Plugin - FortiClient SSLVPN CacheCleaner Firefox Plugin - 5.4.0.780 - C:\Program Files (x86)\Fortinet\FortiClient\npccplugin.dll
Plugin - FortiClient SSLVPN CacheCleanerEx Firefox Plugin - 5.4.0.780 - C:\Program Files (x86)\Fortinet\FortiClient\npccpluginex.dll
Plugin - FortiClient SSLVPN Tunnel Service FireFox Plugin - 5.4.0.780 - C:\Program Files (x86)\Fortinet\FortiClient\nptcplugin.dll
Plugin - Unity Player - 5.3.4.47953 - C:\Users\Pavel\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll

=========Google Chrome=========

C:\Users\Pavel\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences
Extension aapocclcgogkmnckokdopfmhonfmgoek 1 Prezentace Google 0.9
Extension abopacaefhbognnmeigicfpgnmpideag 1 Floorplanner 14
Extension ahfgeienlihckogmohjhadlkjgocpleb 1 Obchod Chrome 0.2
Extension algoakekcdmbbikdjgjdahbfihboglmi 1 3DTin 1.1
Extension aohghmighlieiainnegkcijnfilokake 1 Dokumenty Google 0.9
Extension apdfllckaahabafndbhieahigkjlhalf 1 Disk Google 14.1
Extension bepbmhgboaologfdajaanbcjmnhjmhfn 0
Extension bfbameneiokkgbdmiekhjnmfkcnldhhm 0 Web Developer 0.4.7
Extension blpcfgokakmgnkcojhhkbfbldkacnbeo 1 YouTube 4.2.8
Extension coobgpohoikkiipiblmjeljniedjpjpf 1 Vyhledávání Google 0.0.0.60
Extension dappigdjllcnkkoacaoolciaolaaiemb 1 Lamborghini Sesto Elemento Theme 1.0
Extension ddeoimiimmmfddbiggnbipkjomlalanb 1 Fun Switcher 0.0.0.3
Extension dinfmiceliiomokeofbocegmacmagjhe 1 Daum Equation Editor 2.0.1
Extension dkaagdgjmgdmbnecmcefdhjekcoceebi 1 PerfectPixel by WellDoneCode 1.86.0
Extension eemcgdkfndhakfknompkggombfjjjeno 1 Bookmark Manager 0.1
Extension efaidnbmnnnibpcajpcglclefindmkaj 2 Adobe Acrobat 15.1.0.3
Extension eiimnmioipafcokbfikbljfdeojpcgbh 1 Block site 3.1.11
Extension ekkomjfglgnfeeachhdckcbgjhfiahco
Extension ennkphjdgehloodpbhlhldgbnhmacadg 1 Settings 0.2
Extension fahmaaghhglfmonjliepjlchgpgfmobi 1 Hudba Google Play 1.353.0
Extension felcaaldnbdncclmgdcncolpebgiejap 1 Tabulky Google 1.1
Extension ffdaeeijbbijklfcpahbghahojgfgebo 0 Gyazo 2.4.3
Extension gbchcmhmhahfdphkhkmpfmihenigjmpp 1 Vzdálená plocha Chrome 56.0.2924.52
Extension gbcjjgkapdombcilbfbjapkbpnocbkcf
Extension gcmhlmapohffdglflokbgknlknnmogbb 1 QR Code Generator 0.2.6
Extension gfdkimpbcpahaombhbimeihdjnejgicl 1 Feedback 1.0
Extension ggnidjbcahhbnleinchgobfnabopeioh 1 Stopky / časovač 3.8
Extension ghbmnnjooekpmoecnnnilnnbdlolhkhi 1 Dokumenty Google offline 1.4
Extension gighmmpiobklfepjocnamgkkbiglidom 1 AdBlock 3.8.6
Extension hfhlngbcdalpjiejaenfchpcajdmpeom 0 Stolen Camera Finder 1.99.6
Extension hmhgeddbohgjknpmjagkdomcpobmllji 0 JetBrains IDE Support 2.0.9
Extension hoooohdeiheekoemicbaeeiaokjhnpko 0 Javascript Library for Console 1.0.3.2
Extension jlpkojjdgbllmedoapgfodplfhcbnbpn 1 Page Ruler 2.0.9
Extension kkelicaakdanhinjdeammmilcgefonfh 0 Window Resizer 1.9.1.5
Extension kmendfapggjehodndflmmgagdbamhnfd 1 CryptoTokenExtension 0.9.46
Extension knkapnclbofjjgicpkfoagdjohlfjhpd 1 Little Alchemy 1.5.0
Extension mciidkooancddoomldklgcklkbmlboog 0 Lenstag Rescue 1.4
Extension mfehgcgbbipciphmccgaenjidiccnmng 1 Cloud Print 0.1
Extension mfffpogegjflfpflabcdkioaeobkgjik 1 GaiaAuthExtension 0.0.1
Extension mfiddfehmfdojjfdpfngagldgaaafcfo 0 BrowserStack Local 16.4
Extension mgndgikekgjfcpckkfioiadnlibdjbkf 1 Chrome 0.1
Extension mhjfbmdgcfjbbpaeojofohoefgiehjai 1 Chrome PDF Viewer 1
Extension mihcahmgecmbnbcchbopgniflfhgnkff 1 Kontrola e-mailu Google 4.4.0
Extension mjpnebljmdbglkmlnijcaplhfhkhdnib 1 ChemReference: Periodic Table 2.0.0
Extension neajdppkdcdipfabeoofebfddakdcjhd 1 Google Network Speech 1.0
Extension njlkegdphefeellhaongiopcfgcinikh 0 Edge: The Web Ruler 0.6.6.2
Extension nkeimhogjdpnpccoofpliimaahmaaome 1 Google Hangouts 1.3.2
Extension nkhkaamdeplibnmodcgodlkghphdbahk 1 Graph.tk 0.0.1.0
Extension nkihdmlheodkdfojglpcjjmioefjahjb 0 BrowserStack 2.0.1
Extension nlmbdmpjmlijibeockamioakdpmhjnpk 1 Twitch Now 1.1.189
Extension nmmhkkegccagdldgiimedpiccmgmieda 1 Platby Internetového obchodu Chrome 1.0.0.1
Extension oijdcdmnjjgnnhgljmhkjlablaejfeeb 1 The QR Code Extension 0.3
Extension oiomepakkenneiifjocbinkmmampfbdn 1 Origami Player 2.5
Extension okboeogmnhjpgbeaokfogelclpblaemo
Extension ooaodnhmdenhnomcbfandipncimhdnke 1 Keyboard shortcuts for Google Play Music 1.0
Extension pjkljhegncpnkpknbcohdijeoejaedia 1 Gmail 8.1
Extension pkedcjkdefgpdelpbcmbmeomcjbeemfm 1 Chrome Media Router 5616.1121.0.3
Extension pnengefjfhgcceajaepbjhanoojifmog 1 Writer 1.1.0.0
Homepage: http://www.google.com/
default_search_provider.search_url:
C:\Users\Pavel\AppData\Local\Google\Chrome\User Data\Default\Preferences
Homepage:
default_search_provider.search_url:

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\efaidnbmnnnibpcajpcglclefindmkaj]
"Path"=


======Registry dump======


[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"={0633EE93-D776-472f-A0FF-E1416B8B2E3A}
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}]
"URL"=http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC


[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"={0633EE93-D776-472f-A0FF-E1416B8B2E3A}
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}]
"URL"=http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Skype for Business Browser Helper - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll [2016-12-13 229064]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre1.8.0_111\bin\ssv.dll [2016-10-21 571456]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft SkyDrive Pro Browser Helper - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL [2016-11-01 2351920]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre1.8.0_111\bin\jp2ssv.dll [2016-10-21 234560]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Skype for Business Browser Helper - C:\Program Files\Microsoft Office 15\root\Office15\OCHelper.dll [2016-12-13 163528]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_111\bin\ssv.dll [2016-10-21 473152]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft SkyDrive Pro Browser Helper - C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL [2016-11-01 1743664]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_111\bin\jp2ssv.dll [2016-10-21 186944]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2016-02-12 13885696]
"RtHDVBg_Dolby"=C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2016-02-12 1402624]
"RtHDVBg_LENOVO_DOLBYDRAGON"=C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2016-02-12 1402624]
"RtHDVBg_LENOVO_MICPKEY"=C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2016-02-12 1402624]
"RtsFT"=RTFTrack.exe []
"IAStorIcon"=C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe [2015-06-23 36352]
"LenovoUtility"=C:\Program Files\Lenovo\LenovoUtility\utility.exe [2015-09-10 791848]
"Energy Manager"=C:\Program Files (x86)\Lenovo\Energy Manager\Energy Manager.exe [2015-09-10 16093512]
"Lenovo Utility"=C:\Program Files (x86)\Lenovo\Energy Manager\Utility.exe [2015-09-10 8235848]
"AdobeAAMUpdater-1.0"=C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2016-07-01 508128]
"WindowsDefender"=C:\Program Files\Windows Defender\MSASCuiL.exe [2016-10-04 631808]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2016-02-13 3947704]
"NvBackend"=C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2015-07-24 2634896]
"ShadowPlay"=C:\WINDOWS\system32\nvspcap64.dll [2015-07-24 1710568]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Gyazo"=C:\Program Files (x86)\Gyazo\GyStation.exe [2017-01-10 5077792]
"Steam"=C:\Program Files (x86)\Steam\steam.exe [2017-01-19 2881824]
"Skype"=C:\Program Files (x86)\Skype\Phone\Skype.exe [2017-02-08 27427808]
"Bloody2"=C:\Program Files (x86)\Bloody5\Bloody5\Bloody5.exe [2015-06-16 18923008]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"Adobe Creative Cloud"=C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe [2016-10-25 2383040]
"Dropbox"=C:\Program Files (x86)\Dropbox\Client\Dropbox.exe [2017-02-07 26220296]
"Codec Settings UAC Manager"=C:\WINDOWS\system32\Codecs\CodecUACManager.exe []
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2016-09-22 587288]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
CodecPackTrayMenu.lnk - C:\Windows\SysWOW64\Codecs\TrayMenu.exe

C:\Users\Pavel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
MEGAsync.lnk - C:\Users\Pavel\AppData\Local\MEGAsync\MEGAsync.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"DSCAutomationHostEnabled"=2
"EnableCursorSuppression"=1
"EnableUIADesktopToggle"=0
"undockwithoutlogon"=1
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"ForceActiveDesktopOn"=0
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]


[HKEY_LOCAL_MACHINE\Software\Microsoft\Active Setup\Installed Components\>{22d6f312-b0f6-11d0-94ab-0080c74c7e95}]
"StubPath"=%SystemRoot%\inf\unregmp2.exe /ShowWMP

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"aux"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux2"=wdmaud.drv
"vidc.ffds"=ff_vfw.dll
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"aux3"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux1"=wdmaud.drv

======File associations======

.js - edit -
.js - open - C:\Program Files (x86)\JetBrains\PhpStorm 2016.3.2\bin\phpstorm.exe "%1"

======List of files/folders created in the last 1 month======

2017-02-11 17:11:41 ----D---- C:\Program Files\trend micro
2017-02-11 17:11:38 ----D---- C:\rsit
2017-02-11 16:52:21 ----D---- C:\ProgramData\Reimage Protector
2017-02-11 16:52:02 ----D---- C:\Program Files\Reimage
2017-02-11 16:51:51 ----D---- C:\rei
2017-02-11 16:51:17 ----A---- C:\WINDOWS\Reimage.ini
2017-02-10 18:19:51 ----A---- C:\WINDOWS\SYSWOW64\nvStreaming.exe
2017-02-10 18:19:42 ----A---- C:\WINDOWS\SYSWOW64\vulkaninfo.exe
2017-02-10 18:19:42 ----A---- C:\WINDOWS\SYSWOW64\vulkan-1.dll
2017-02-10 18:19:42 ----A---- C:\WINDOWS\system32\vulkaninfo.exe
2017-02-10 18:19:42 ----A---- C:\WINDOWS\system32\vulkan-1.dll
2017-02-10 18:19:40 ----D---- C:\Program Files (x86)\VulkanRT
2017-02-08 15:00:28 ----A---- C:\Users\Pavel\AppData\Roaming\AdobeWLCMCache.dat
2017-02-08 14:30:19 ----D---- C:\Users\Pavel\AppData\Roaming\NVIDIA
2017-02-08 11:24:05 ----A---- C:\WINDOWS\SYSWOW64\nvspcap.dll
2017-02-08 11:24:05 ----A---- C:\WINDOWS\SYSWOW64\nvspbridge.dll
2017-02-08 11:24:05 ----A---- C:\WINDOWS\system32\nvspcap64.dll
2017-02-08 11:24:05 ----A---- C:\WINDOWS\system32\nvspbridge64.dll
2017-02-08 11:22:37 ----D---- C:\Program Files (x86)\NVIDIA Corporation
2017-02-08 11:22:36 ----D---- C:\ProgramData\NVIDIA
2017-02-08 11:22:27 ----A---- C:\WINDOWS\system32\nvsvcr.dll
2017-02-08 11:22:27 ----A---- C:\WINDOWS\system32\nvsvc64.dll
2017-02-08 11:22:27 ----A---- C:\WINDOWS\system32\nvshext.dll
2017-02-08 11:22:27 ----A---- C:\WINDOWS\system32\nvmctray.dll
2017-02-08 11:22:27 ----A---- C:\WINDOWS\system32\nvcpl.dll
2017-02-08 11:22:27 ----A---- C:\WINDOWS\system32\nv3dappshextr.dll
2017-02-08 11:22:27 ----A---- C:\WINDOWS\system32\nv3dappshext.dll
2017-02-08 11:22:04 ----A---- C:\WINDOWS\SYSWOW64\OpenCL.dll
2017-02-08 11:22:04 ----A---- C:\WINDOWS\system32\OpenCL.dll
2017-02-08 11:19:16 ----D---- C:\ProgramData\NVIDIA Corporation
2017-02-08 11:19:11 ----A---- C:\WINDOWS\SYSWOW64\nvaudcap32v.dll
2017-02-08 11:19:11 ----A---- C:\WINDOWS\system32\nvaudcap64v.dll
2017-02-08 11:19:11 ----A---- C:\WINDOWS\system32\drivers\nvvad64v.sys
2017-02-08 11:19:07 ----A---- C:\WINDOWS\system32\SET917F.tmp
2017-02-08 11:19:07 ----A---- C:\WINDOWS\system32\nvopencl.dll
2017-02-08 11:19:06 ----N---- C:\WINDOWS\system32\drivers\nvlddmkm.sys
2017-02-08 11:19:06 ----A---- C:\WINDOWS\SYSWOW64\SET9FDE.tmp
2017-02-08 11:19:06 ----A---- C:\WINDOWS\SYSWOW64\nvinit.dll
2017-02-08 11:19:06 ----A---- C:\WINDOWS\SYSWOW64\nvEncMFTH264.dll
2017-02-08 11:19:06 ----A---- C:\WINDOWS\system32\nvinitx.dll
2017-02-08 11:19:06 ----A---- C:\WINDOWS\system32\nvdispgenco6435362.dll
2017-02-08 11:19:06 ----A---- C:\WINDOWS\system32\nvdispco6435362.dll
2017-02-08 11:19:05 ----A---- C:\WINDOWS\system32\SET4EE1.tmp
2017-02-08 11:19:05 ----A---- C:\WINDOWS\system32\nvapi64.dll
2017-02-08 11:18:19 ----D---- C:\Program Files\NVIDIA Corporation
2017-02-08 11:03:25 ----A---- C:\WINDOWS\system32\SET5924.tmp
2017-02-08 11:03:25 ----A---- C:\WINDOWS\system32\SET3BDD.tmp
2017-02-08 11:03:25 ----A---- C:\WINDOWS\system32\SET3AF0.tmp
2017-02-08 11:03:25 ----A---- C:\WINDOWS\system32\SET3919.tmp
2017-02-08 11:03:25 ----A---- C:\WINDOWS\system32\SET3313.tmp
2017-02-08 11:03:25 ----A---- C:\WINDOWS\system32\SET2FA1.tmp
2017-02-08 11:03:25 ----A---- C:\WINDOWS\system32\SET2EF1.tmp
2017-02-08 11:03:25 ----A---- C:\WINDOWS\system32\SET2E42.tmp
2017-02-08 11:03:25 ----A---- C:\WINDOWS\system32\IntelOpenCL64.dll
2017-02-08 11:03:25 ----A---- C:\WINDOWS\system32\igfxTray.exe
2017-02-08 11:03:25 ----A---- C:\WINDOWS\system32\igfxLHM.dll
2017-02-08 11:03:25 ----A---- C:\WINDOWS\system32\igfxEM.exe
2017-02-08 11:03:25 ----A---- C:\WINDOWS\system32\igfxDTCM.dll
2017-02-08 11:03:25 ----A---- C:\WINDOWS\system32\igfxDI.dll
2017-02-08 11:03:25 ----A---- C:\WINDOWS\system32\igfxDH.dll
2017-02-08 11:03:25 ----A---- C:\WINDOWS\system32\igfxCUIService.exe
2017-02-08 11:03:25 ----A---- C:\WINDOWS\system32\igfxCoIn_v4326.dll
2017-02-08 11:03:24 ----A---- C:\WINDOWS\SYSWOW64\SET2398.tmp
2017-02-08 11:03:24 ----A---- C:\WINDOWS\SYSWOW64\SET1EFD.tmp
2017-02-08 11:03:24 ----A---- C:\WINDOWS\SYSWOW64\igdusc32.dll
2017-02-08 11:03:24 ----A---- C:\WINDOWS\SYSWOW64\igdumdim32.dll
2017-02-08 11:03:24 ----A---- C:\WINDOWS\system32\SETE91E.tmp
2017-02-08 11:03:24 ----A---- C:\WINDOWS\system32\SETE3D6.tmp
2017-02-08 11:03:24 ----A---- C:\WINDOWS\system32\SET6E9A.tmp
2017-02-08 11:03:24 ----A---- C:\WINDOWS\system32\igdusc64.dll
2017-02-08 11:03:24 ----A---- C:\WINDOWS\system32\igdumdim64.dll
2017-02-08 11:03:24 ----A---- C:\WINDOWS\system32\igdrcl64.dll
2017-02-08 11:03:23 ----A---- C:\WINDOWS\SYSWOW64\SETF7C8.tmp
2017-02-08 11:03:23 ----A---- C:\WINDOWS\SYSWOW64\SET911.tmp
2017-02-08 11:03:23 ----A---- C:\WINDOWS\SYSWOW64\igd11dxva32.dll
2017-02-08 11:03:23 ----A---- C:\WINDOWS\SYSWOW64\igd10iumd32.dll
2017-02-08 11:03:23 ----A---- C:\WINDOWS\system32\SETD431.tmp
2017-02-08 11:03:23 ----A---- C:\WINDOWS\system32\SET79CB.tmp
2017-02-08 11:03:23 ----A---- C:\WINDOWS\system32\SET7861.tmp
2017-02-08 11:03:23 ----A---- C:\WINDOWS\system32\SET6D9E.tmp
2017-02-08 11:03:23 ----A---- C:\WINDOWS\system32\igdmcl64.dll
2017-02-08 11:03:23 ----A---- C:\WINDOWS\system32\igdfcl64.dll
2017-02-08 11:03:23 ----A---- C:\WINDOWS\system32\igdbcl64.dll
2017-02-08 11:03:23 ----A---- C:\WINDOWS\system32\igd10iumd64.dll
2017-02-08 11:03:23 ----A---- C:\WINDOWS\system32\drivers\SETD170.tmp
2017-02-08 11:03:23 ----A---- C:\WINDOWS\system32\drivers\igdkmd64.sys
2017-02-08 11:03:22 ----A---- C:\WINDOWS\SYSWOW64\SET44F0.tmp
2017-02-08 11:03:22 ----A---- C:\WINDOWS\SYSWOW64\ig75icd32.dll
2017-02-08 11:03:22 ----A---- C:\WINDOWS\system32\SET4348.tmp
2017-02-08 11:03:22 ----A---- C:\WINDOWS\system32\ig75icd64.dll
2017-02-07 05:38:06 ----A---- C:\WINDOWS\system32\drivers\dbx-stable.sys
2017-02-07 05:38:06 ----A---- C:\WINDOWS\system32\drivers\dbx-dev.sys
2017-02-07 05:38:06 ----A---- C:\WINDOWS\system32\drivers\dbx-canary.sys
2017-02-07 05:38:06 ----A---- C:\WINDOWS\system32\DbxSvc.exe
2017-02-06 19:45:07 ----A---- C:\WINDOWS\SYSWOW64\oemdspif.dll
2017-02-06 19:44:34 ----A---- C:\WINDOWS\NvContainerRecovery.bat
2017-02-06 19:44:11 ----D---- C:\WINDOWS\LastGood
2017-02-06 19:17:30 ----D---- C:\Users\Pavel\AppData\Roaming\sp6_log
2017-02-06 19:14:58 ----D---- C:\WINDOWS\system32\appmgmt
2017-02-03 00:58:40 ----D---- C:\WINDOWS\LastGood.Tmp
2017-02-01 21:26:59 ----SD---- C:\WINDOWS\system32\containers
2017-02-01 21:26:59 ----D---- C:\WINDOWS\system32\BestPractices
2017-02-01 21:26:58 ----D---- C:\Program Files\Hyper-V
2017-01-27 00:34:12 ----D---- C:\WINDOWS\Minidump
2017-01-25 11:38:14 ----A---- C:\WINDOWS\SYSWOW64\poqexec.exe
2017-01-25 11:38:13 ----A---- C:\WINDOWS\system32\poqexec.exe
2017-01-18 18:50:28 ----AD---- C:\Program Files (x86)\CrystalDiskInfo
2017-01-17 05:54:04 ----A---- C:\WINDOWS\system32\nvoglv64.dll
2017-01-17 05:53:58 ----A---- C:\WINDOWS\SYSWOW64\nvoglv32.dll
2017-01-17 05:53:40 ----A---- C:\WINDOWS\system32\NvIFROpenGL.dll
2017-01-17 05:53:36 ----A---- C:\WINDOWS\SYSWOW64\NvIFROpenGL.dll
2017-01-17 05:53:36 ----A---- C:\WINDOWS\system32\NvIFR64.dll
2017-01-17 05:53:34 ----A---- C:\WINDOWS\SYSWOW64\NvIFR.dll
2017-01-17 05:52:44 ----A---- C:\WINDOWS\system32\NvFBC64.dll
2017-01-17 05:52:40 ----A---- C:\WINDOWS\SYSWOW64\NvFBC.dll
2017-01-17 05:52:40 ----A---- C:\WINDOWS\system32\nvdispgenco6437654.dll
2017-01-17 05:52:36 ----A---- C:\WINDOWS\system32\nvdispco6437654.dll
2017-01-17 05:52:20 ----A---- C:\WINDOWS\system32\nvcuvid.dll
2017-01-17 05:52:16 ----A---- C:\WINDOWS\SYSWOW64\nvcuvid.dll
2017-01-17 05:52:02 ----A---- C:\WINDOWS\system32\nvcompiler.dll
2017-01-17 05:51:52 ----A---- C:\WINDOWS\SYSWOW64\nvcompiler.dll
2017-01-17 05:51:26 ----A---- C:\WINDOWS\system32\nvptxJitCompiler.dll
2017-01-17 05:51:22 ----A---- C:\WINDOWS\SYSWOW64\nvptxJitCompiler.dll
2017-01-17 05:51:16 ----A---- C:\WINDOWS\SYSWOW64\nvopencl.dll
2017-01-17 05:51:10 ----A---- C:\WINDOWS\SYSWOW64\nvfatbinaryLoader.dll
2017-01-17 05:51:10 ----A---- C:\WINDOWS\system32\nvfatbinaryLoader.dll
2017-01-17 05:51:08 ----A---- C:\WINDOWS\SYSWOW64\nvEncodeAPI.dll
2017-01-17 05:51:08 ----A---- C:\WINDOWS\system32\nvEncodeAPI64.dll
2017-01-17 05:51:00 ----A---- C:\WINDOWS\system32\nvEncMFTH264.dll
2017-01-17 05:50:34 ----A---- C:\WINDOWS\system32\nvcuda.dll
2017-01-17 05:50:32 ----A---- C:\WINDOWS\SYSWOW64\nvcuda.dll
2017-01-17 05:50:30 ----A---- C:\WINDOWS\SYSWOW64\nvapi.dll
2017-01-14 20:15:48 ----A---- C:\WINDOWS\system32\drivers\gpslc64.sys
2017-01-14 20:15:48 ----A---- C:\WINDOWS\system32\drivers\gpslc.sys

======List of files/folders modified in the last 1 month======

2017-02-11 17:11:41 ----RD---- C:\Program Files
2017-02-11 17:11:24 ----D---- C:\WINDOWS\system32\sru
2017-02-11 17:11:05 ----D---- C:\WINDOWS\Prefetch
2017-02-11 17:08:16 ----D---- C:\Users\Pavel\AppData\Roaming\Skype
2017-02-11 16:53:36 ----D---- C:\WINDOWS\Temp
2017-02-11 16:53:28 ----D---- C:\WINDOWS\system32\Tasks
2017-02-11 16:52:21 ----HD---- C:\ProgramData
2017-02-11 16:51:17 ----D---- C:\Windows
2017-02-11 16:48:03 ----D---- C:\WINDOWS\AppReadiness
2017-02-11 16:36:39 ----D---- C:\WINDOWS\system32\SleepStudy
2017-02-11 15:39:57 ----HD---- C:\Program Files\WindowsApps
2017-02-11 13:37:23 ----D---- C:\Users\Pavel\AppData\Roaming\Atlassian
2017-02-11 13:17:51 ----D---- C:\WINDOWS\system32\config
2017-02-11 12:27:21 ----RD---- C:\WINDOWS\Microsoft.NET
2017-02-10 18:20:56 ----D---- C:\temp
2017-02-10 18:20:15 ----D---- C:\WINDOWS\SysWOW64
2017-02-10 18:20:14 ----D---- C:\WINDOWS\INF
2017-02-10 18:19:42 ----D---- C:\WINDOWS\System32
2017-02-10 18:19:40 ----RD---- C:\Program Files (x86)
2017-02-10 18:12:21 ----D---- C:\WINDOWS\system32\DriverStore
2017-02-10 18:12:21 ----D---- C:\WINDOWS\system32\CatRoot
2017-02-10 18:12:14 ----D---- C:\WINDOWS\system32\catroot2
2017-02-10 18:08:15 ----SHD---- C:\System Volume Information
2017-02-10 12:05:51 ----D---- C:\Users\Pavel\AppData\Roaming\FileZilla
2017-02-09 20:08:59 ----SHDC---- C:\WINDOWS\Installer
2017-02-09 20:08:49 ----RD---- C:\Program Files (x86)\Skype
2017-02-09 20:08:49 ----D---- C:\Program Files (x86)\Common Files
2017-02-09 20:07:37 ----D---- C:\ProgramData\Skype
2017-02-09 18:01:10 ----D---- C:\WINDOWS\system32\drivers
2017-02-09 16:16:15 ----AD---- C:\Program Files (x86)\Mozilla Firefox
2017-02-09 16:15:42 ----A---- C:\WINDOWS\system32\{EC94D02F-D200-4428-9531-05AF7F9799CB}.bat
2017-02-09 16:15:42 ----A---- C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2017-02-08 15:01:54 ----D---- C:\Users\Pavel\AppData\Roaming\Adobe
2017-02-08 14:55:36 ----D---- C:\Program Files\Common Files\Adobe
2017-02-08 14:51:44 ----AD---- C:\Program Files\Adobe
2017-02-08 13:03:48 ----AD---- C:\Program Files (x86)\Mozilla Thunderbird
2017-02-08 11:22:25 ----D---- C:\WINDOWS\Help
2017-02-08 11:07:05 ----D---- C:\WINDOWS\Tasks
2017-02-08 11:05:30 ----AD---- C:\Program Files (x86)\Intel
2017-02-08 11:03:58 ----D---- C:\Intel
2017-02-08 10:08:06 ----D---- C:\WINDOWS\Logs
2017-02-08 09:38:59 ----D---- C:\Program Files (x86)\Dropbox
2017-02-06 19:57:48 ----D---- C:\WINDOWS\LiveKernelReports
2017-02-06 19:29:09 ----D---- C:\Program Files (x86)\Steam
2017-02-06 19:27:56 ----D---- C:\Program Files\Common Files
2017-02-06 19:18:34 ----D---- C:\ProgramData\Logishrd
2017-02-06 19:14:58 ----SD---- C:\Users\Pavel\AppData\Roaming\Microsoft
2017-02-06 19:09:53 ----D---- C:\Program Files (x86)\JetBrains
2017-02-06 18:50:37 ----D---- C:\Users\Pavel\AppData\Roaming\pgAdmin
2017-02-06 18:45:00 ----D---- C:\Program Files (x86)\Atlassian
2017-02-06 18:42:39 ----AD---- C:\Program Files (x86)\KeePass Password Safe
2017-02-06 18:39:38 ----AD---- C:\Program Files\FileZilla FTP Client
2017-02-06 18:37:42 ----D---- C:\ProgramData\Atlassian
2017-02-02 01:57:19 ----D---- C:\WINDOWS\rescache
2017-02-01 21:32:08 ----D---- C:\WINDOWS\WinSxS
2017-02-01 21:30:00 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2017-02-01 21:27:04 ----D---- C:\WINDOWS\system32\wbem
2017-02-01 21:27:04 ----D---- C:\WINDOWS\system32\migration
2017-02-01 21:27:04 ----D---- C:\WINDOWS\system32\en-US
2017-02-01 21:27:04 ----D---- C:\WINDOWS\system32\drivers\en-US
2017-02-01 21:27:04 ----D---- C:\WINDOWS\system32\drivers\cs-CZ
2017-02-01 21:27:03 ----D---- C:\WINDOWS\system32\cs-CZ
2017-02-01 21:26:59 ----D---- C:\WINDOWS\schemas
2017-02-01 21:21:46 ----D---- C:\WINDOWS\CbsTemp
2017-02-01 21:21:23 ----A---- C:\WINDOWS\system32\RdvgmProxy.dll
2017-02-01 21:21:19 ----A---- C:\WINDOWS\system32\sbresources.dll
2017-02-01 21:21:15 ----A---- C:\WINDOWS\system32\vmbuspiper.dll
2017-02-01 21:21:14 ----A---- C:\WINDOWS\system32\vmusrv.dll
2017-02-01 21:21:14 ----A---- C:\WINDOWS\system32\vmsmb.dll
2017-02-01 21:21:11 ----A---- C:\WINDOWS\system32\VmEmulatedStorage.dll
2017-02-01 21:21:09 ----A---- C:\WINDOWS\system32\rdvgm.exe
2017-02-01 21:21:08 ----A---- C:\WINDOWS\system32\NetMgmtIF.dll
2017-02-01 21:21:05 ----A---- C:\WINDOWS\SYSWOW64\RdvgmProxy.dll
2017-02-01 21:21:04 ----A---- C:\WINDOWS\system32\ContainerUpdater.exe
2017-02-01 21:20:59 ----A---- C:\WINDOWS\system32\CCG.exe
2017-02-01 21:20:32 ----A---- C:\WINDOWS\system32\RdvGpuInfo.dll
2017-02-01 21:20:30 ----A---- C:\WINDOWS\system32\vmsifproxystub.dll
2017-02-01 21:20:29 ----A---- C:\WINDOWS\system32\vmsif.dll
2017-02-01 21:20:28 ----A---- C:\WINDOWS\system32\vsconfig.dll
2017-02-01 21:20:28 ----A---- C:\WINDOWS\system32\vmdynmem.dll
2017-02-01 21:20:27 ----A---- C:\WINDOWS\system32\vpcievdev.dll
2017-02-01 21:20:27 ----A---- C:\WINDOWS\system32\rtpm.dll
2017-02-01 21:20:25 ----A---- C:\WINDOWS\system32\vmserial.dll
2017-02-01 21:20:25 ----A---- C:\WINDOWS\system32\HgsClientWmi.dll
2017-02-01 21:20:21 ----A---- C:\WINDOWS\system32\vmwp.exe
2017-02-01 21:20:20 ----A---- C:\WINDOWS\system32\VmSynthNic.dll
2017-02-01 21:20:15 ----A---- C:\WINDOWS\system32\wnvapi.dll
2017-02-01 21:20:15 ----A---- C:\WINDOWS\system32\VmEmulatedNic.dll
2017-02-01 21:20:14 ----A---- C:\WINDOWS\system32\vmuidevices.dll
2017-02-01 21:20:13 ----A---- C:\WINDOWS\system32\vmbusvdev.dll
2017-02-01 21:20:11 ----A---- C:\WINDOWS\system32\vmicvdev.dll
2017-02-01 21:20:10 ----A---- C:\WINDOWS\system32\vmemulateddevices.dll
2017-02-01 21:20:09 ----A---- C:\WINDOWS\system32\vmdebug.dll
2017-02-01 21:20:08 ----A---- C:\WINDOWS\system32\virtmgmt.msc
2017-02-01 21:20:07 ----A---- C:\WINDOWS\system32\vmconnect.exe
2017-02-01 21:20:06 ----A---- C:\WINDOWS\system32\vmsynthstor.dll
2017-02-01 21:20:04 ----A---- C:\WINDOWS\system32\vmsynthfcvdev.dll
2017-02-01 21:20:04 ----A---- C:\WINDOWS\system32\HyperVSysprepProvider.dll
2017-02-01 21:20:02 ----A---- C:\WINDOWS\system32\TpmEngUM.dll
2017-02-01 21:20:01 ----A---- C:\WINDOWS\system32\HostGuardianServiceClientResources.dll
2017-02-01 21:19:56 ----A---- C:\WINDOWS\system32\RemoteFileBrowse.dll
2017-02-01 21:19:56 ----A---- C:\WINDOWS\system32\PrivateCloudHNSPlugin.dll
2017-02-01 21:19:56 ----A---- C:\WINDOWS\system32\HostNetSvc.dll
2017-02-01 21:19:54 ----A---- C:\WINDOWS\system32\vmms.exe
2017-02-01 21:19:54 ----A---- C:\WINDOWS\system32\rdp4vs.dll
2017-02-01 21:19:50 ----A---- C:\WINDOWS\system32\gpupvdev.dll
2017-02-01 21:19:49 ----A---- C:\WINDOWS\system32\vmicrdv.dll
2017-02-01 21:19:47 ----A---- C:\WINDOWS\system32\vmcompute.exe
2017-02-01 21:19:46 ----A---- C:\WINDOWS\system32\vmsp.exe
2017-02-01 21:19:46 ----A---- C:\WINDOWS\system32\vmcompute.dll
2017-02-01 21:19:41 ----A---- C:\WINDOWS\system32\vmtpm.dll
2017-02-01 21:19:41 ----A---- C:\WINDOWS\system32\CCGLaunchPad.dll
2017-02-01 21:19:41 ----A---- C:\WINDOWS\system32\ActivationVdev.dll
2017-02-01 21:19:34 ----A---- C:\WINDOWS\system32\vid.dll
2017-02-01 21:19:33 ----A---- C:\WINDOWS\system32\vmwpctrl.dll
2017-02-01 21:19:33 ----A---- C:\WINDOWS\system32\vmprox.dll
2017-02-01 21:19:29 ----A---- C:\WINDOWS\system32\vmsynth3dvideo.dll
2017-02-01 21:19:28 ----A---- C:\WINDOWS\system32\synth3dvideoproxy.dll
2017-02-01 21:19:27 ----A---- C:\WINDOWS\system32\vmchipset.dll
2017-01-26 13:30:25 ----D---- C:\Program Files (x86)\Adobe
2017-01-26 11:28:45 ----D---- C:\ProgramData\regid.1986-12.com.adobe
2017-01-26 11:08:34 ----D---- C:\ProgramData\boost_interprocess
2017-01-25 15:59:59 ----D---- C:\Program Files (x86)\Google
2017-01-24 09:51:00 ----AD---- C:\Program Files (x86)\Gyazo
2017-01-20 03:28:26 ----RSD---- C:\WINDOWS\assembly
2017-01-20 03:28:15 ----AD---- C:\ProgramData\regid.1991-06.com.microsoft
2017-01-20 03:25:03 ----AD---- C:\Program Files\Microsoft Office 15
2017-01-18 17:58:13 ----D---- C:\ProgramData\Adobe
2017-01-14 23:45:27 ----D---- C:\WINDOWS\system32\WinBioPlugIns
2017-01-14 23:45:27 ----D---- C:\WINDOWS\system32\oobe
2017-01-14 23:45:27 ----D---- C:\WINDOWS\ShellExperiences
2017-01-14 23:45:27 ----D---- C:\WINDOWS\Provisioning
2017-01-14 23:45:27 ----D---- C:\WINDOWS\PolicyDefinitions
2017-01-14 23:45:26 ----RD---- C:\WINDOWS\ImmersiveControlPanel
2017-01-14 23:45:26 ----D---- C:\Program Files\Internet Explorer
2017-01-14 23:45:26 ----D---- C:\Program Files (x86)\Internet Explorer
2017-01-12 12:51:28 ----D---- C:\WINDOWS\system32\MRT
2017-01-12 12:45:41 ----AC---- C:\WINDOWS\system32\MRT.exe

File C:\WINDOWS\system32\winlogon.exe is digitally signed
File C:\WINDOWS\system32\wininit.exe is digitally signed
File C:\WINDOWS\explorer.exe is digitally signed
File C:\WINDOWS\SysWOW64\explorer.exe is digitally signed
File C:\WINDOWS\system32\svchost.exe is digitally signed
File C:\WINDOWS\SysWOW64\svchost.exe is digitally signed
File C:\WINDOWS\system32\services.exe is digitally signed
File C:\WINDOWS\system32\User32.dll is digitally signed
File C:\WINDOWS\SysWOW64\User32.dll is digitally signed
File C:\WINDOWS\system32\userinit.exe is digitally signed
File C:\WINDOWS\SysWOW64\userinit.exe is digitally signed
File C:\WINDOWS\system32\rpcss.dll is digitally signed
File C:\WINDOWS\system32\Drivers\volsnap.sys is digitally signed

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 iaStorA;iaStorA; C:\WINDOWS\System32\drivers\iaStorA.sys [2015-06-23 1455552]
R0 iorate;@%SystemRoot%\system32\drivers\iorate.sys,-100; C:\WINDOWS\system32\drivers\iorate.sys [2016-11-02 48992]
R1 FortiFilter;@oem51.inf,%FtNdisLwfService_Desc%;FortiClient NDIS 6.3 Packet Filter Service; C:\WINDOWS\system32\DRIVERS\FortiFilter.sys [2015-08-26 45792]
R1 FortiShield;FortiShield; C:\WINDOWS\system32\drivers\FortiShield.sys [2015-10-06 72064]
R2 clreg;@%SystemRoot%\system32\drivers\registry.sys,-100; C:\WINDOWS\System32\drivers\registry.sys [2016-07-16 70144]
R3 ACPIVPC;@oem29.inf,%ACPIVPC.SvcDesc%;Lenovo Virtual Power Controller Driver; C:\WINDOWS\System32\drivers\AcpiVpc.sys [2015-09-10 35576]
R3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Služba Bluetooth Enumerator; C:\WINDOWS\System32\drivers\BthEnum.sys [2016-10-04 114176]
R3 BthLEEnum;@BthLEEnum.inf,%BthLEEnum.SVCDESC%;Ovladač úspory energie technologie Bluetooth; C:\WINDOWS\system32\DRIVERS\BthLEEnum.sys [2016-10-04 249856]
R3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Bluetooth Device (Personal Area Network); C:\WINDOWS\System32\drivers\bthpan.sys [2016-10-05 128512]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Ovladač rozhraní USB radiostanice Bluetooth; C:\WINDOWS\System32\drivers\BTHUSB.sys [2016-10-04 84992]
R3 ft_vnic;@oem37.inf,%FTNT.Service.DispName%;Fortinet Virtual Miniport (NDIS 6.30); C:\WINDOWS\System32\drivers\ftvnic.sys [2015-08-26 71928]
R3 ibtusb;@oem101.inf,%ibtusb.SVCDESC_IBT%;Intel(R) Wireless Bluetooth(R); C:\WINDOWS\system32\DRIVERS\ibtusb.sys [2016-12-12 230656]
R3 NdisImPlatformMp;@%SystemRoot%\System32\drivers\ndisimplatform.sys,-531; C:\WINDOWS\System32\drivers\NdisImPlatform.sys [2016-07-16 126464]
R3 NETwNb64;___ Ovladač adaptéru Intel(R) Wireless pro systém Windows 8.1 64 Bit; C:\WINDOWS\System32\drivers\Netwbw02.sys [2015-06-21 3776792]
R3 nvlddmkm;nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nvltwu.inf_amd64_dc8ffafad3ea7ddd\nvlddmkm.sys [2017-01-17 14190520]
R3 NvStreamKms;NvStreamKms; \??\C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [2015-07-24 19600]
R3 nvvad_WaveExtensible;@oem4.inf,%nvvad_WaveExtensible.SvcDesc%;NVIDIA Virtual Audio Device (Wave Extensible) (WDM); C:\WINDOWS\system32\drivers\nvvad64v.sys [2015-07-03 47976]
R3 pppop;@oem43.inf,%VER_ADAPTER_STR%;PPPoP WAN Adapter; C:\WINDOWS\System32\drivers\pppop64.sys [2015-07-23 54024]
R3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Zařízení Bluetooth (RFCOMM protokol TDI); C:\WINDOWS\System32\drivers\rfcomm.sys [2016-07-16 183808]
R3 rt640x64;@oem24.inf,%rt640.Service.DispName%;Realtek RT640 NT Driver; C:\WINDOWS\System32\drivers\rt640x64.sys [2016-02-12 886528]
R3 RTSPER;@oem55.inf,%Rts5227PER%;Realtek PCIE Card Reader - PER; C:\WINDOWS\system32\DRIVERS\RtsPer.sys [2016-02-12 761600]
R3 rtsuvc;@oem28.inf,%rtsuvc.DeviceDesc%;Lenovo EasyCamera; C:\WINDOWS\system32\DRIVERS\rtsuvc.sys [2015-06-11 3059416]
R3 SensorsSimulatorDriver;@oem0.inf,%WudfSensorsSimulatorDriverDisplayName%;UMDF Reflector service for SensorsSimulatorDriver; C:\WINDOWS\System32\drivers\WUDFRd.sys [2016-07-16 216064]
R3 SmbDrvI;SmbDrvI; C:\WINDOWS\system32\DRIVERS\Smb_driver_Intel.sys [2016-02-13 42696]
R3 storvsp;storvsp; C:\WINDOWS\System32\drivers\storvsp.sys [2017-02-01 97792]
S0 megasas2i;megasas2i; C:\WINDOWS\System32\drivers\MegaSas2i.sys [2016-10-05 64352]
S0 scmbus;@scmbus.inf,%scmbus.SvcDesc%;Microsoft Storage Class Memory Bus Driver; C:\WINDOWS\System32\drivers\scmbus.sys [2016-07-16 88416]
S1 FortiFW;FortiFW; C:\WINDOWS\system32\drivers\FortiFW2.sys [2015-10-06 37248]
S3 AcpiDev;@acpidev.inf,%AcpiDev.SvcDesc%;ACPI Devices driver; C:\WINDOWS\System32\drivers\AcpiDev.sys [2016-07-16 18432]
S3 applockerfltr;@%systemroot%\system32\srpapi.dll,-102; C:\WINDOWS\system32\drivers\applockerfltr.sys [2016-07-16 15360]
S3 AppvStrm;@%systemroot%\system32\drivers\AppvStrm.sys,-101; C:\WINDOWS\system32\drivers\AppvStrm.sys [2016-10-04 127328]
S3 AppvVemgr;@%systemroot%\system32\drivers\AppvVemgr.sys,-101; C:\WINDOWS\system32\drivers\AppvVemgr.sys [2016-10-04 157024]
S3 AppvVfs;@%systemroot%\system32\drivers\AppvVfs.sys,-101; C:\WINDOWS\system32\drivers\AppvVfs.sys [2016-10-04 141152]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Ovladač portu Bluetooth; C:\WINDOWS\System32\drivers\BTHport.sys [2016-11-11 967168]
S3 connctfy;@oem50.inf,%connctfyService_Desc%;Connectify Service; C:\WINDOWS\system32\DRIVERS\connctfy.sys []
S3 dbx;dbx; C:\WINDOWS\system32\DRIVERS\dbx.sys []
S3 dg_ssudbus;@oem98.inf,%ssud.Service.DeviceDesc%;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\WINDOWS\system32\DRIVERS\ssudbus.sys [2016-09-05 131712]
S3 fortiapd;fortiapd; C:\WINDOWS\system32\drivers\fortiapd.sys [2015-10-06 17792]
S3 Fortips;Fortips; C:\WINDOWS\system32\drivers\fortips.sys [2015-07-23 145632]
S3 fortisniff;fortisniff; C:\WINDOWS\system32\drivers\fortisniff2.sys [2015-10-06 38272]
S3 gpslc64;gpslc64; C:\WINDOWS\System32\Drivers\gpslc64.sys [2010-03-10 102624]
S3 hvservice;@%SystemRoot%\system32\drivers\hvservice.sys,-16; C:\WINDOWS\system32\drivers\hvservice.sys [2016-10-04 73568]
S3 cht4iscsi;cht4iscsi; C:\WINDOWS\System32\drivers\cht4sx64.sys [2016-07-16 346976]
S3 cht4vbd;@cht4vx64.inf,%cht4vbd.generic%;Chelsio Virtual Bus Driver; C:\WINDOWS\System32\drivers\cht4vx64.sys [2016-07-16 2104160]
S3 iagpio;@iagpio.inf,%iagpio.SVCDESC%;Intel Serial IO GPIO Controller Driver; C:\WINDOWS\System32\drivers\iagpio.sys [2016-07-16 33280]
S3 iaLPSS2i_GPIO2;@iaLPSS2i_GPIO2_SKL.inf,%iaLPSS2i_GPIO2.SVCDESC%;Intel(R) Serial IO GPIO Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2.sys [2016-07-16 64512]
S3 IndirectKmd;@%SystemRoot%\system32\drivers\IndirectKmd.sys,-100; C:\WINDOWS\System32\drivers\IndirectKmd.sys [2016-07-16 35840]
S3 irda;IrDA; C:\WINDOWS\system32\drivers\irda.sys [2016-07-16 120320]
S3 lunparser;@%systemroot%\system32\drivers\lunparser.sys,-10010; C:\WINDOWS\system32\drivers\lunparser.sys [2017-02-01 22528]
S3 MsSecFlt;@%SystemRoot%\System32\Drivers\mssecflt.sys,-1001; C:\WINDOWS\system32\drivers\mssecflt.sys [2016-10-07 179040]
S3 NetAdapterCx;Network Adapter Wdf Class Extension Library; C:\WINDOWS\system32\drivers\NetAdapterCx.sys [2016-07-16 90624]
S3 passthruparser;@%systemroot%\system32\drivers\passthruparser.sys,-10010; C:\WINDOWS\system32\drivers\passthruparser.sys [2017-02-01 24576]
S3 pcip;@wpcip.inf,%pcip.SVCDESC%;PCI Proxy driver; C:\WINDOWS\System32\drivers\pcip.sys [2017-02-01 46592]
S3 pvhdparser;@%systemroot%\system32\drivers\pvhdparser.sys,-10010; C:\WINDOWS\system32\drivers\pvhdparser.sys [2017-02-01 50176]
S3 ramparser;@%systemroot%\system32\drivers\ramparser.sys,-10010; C:\WINDOWS\system32\drivers\ramparser.sys [2017-02-01 30720]
S3 scmdisk0101;@scmdisk0101.inf,%scmdisk0101.SvcDesc%;Microsoft NVDIMM-N disk driver; C:\WINDOWS\System32\drivers\scmdisk0101.sys [2016-07-16 123904]
S3 ssudmdm;@oem99.inf,%ssud.Service.Name%;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.); C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [2016-09-05 165504]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeUpdateService;AdobeUpdateService; C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe [2016-10-25 744640]
R2 AGSService;Adobe Genuine Software Integrity Service; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2017-01-19 2227312]
R2 CDPUserSvc_60398;CDPUserSvc_60398; C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup;"ServiceDll"=
R2 ClickToRunSvc;Služba Microsoft Office ClickToRun; C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe [2016-12-13 3042032]
R2 DbxSvc;DbxSvc; C:\WINDOWS\system32\DbxSvc.exe [2017-02-07 46400]
R2 EvtEng;Intel(R) PROSet/Wireless Event Log; C:\Program Files\Intel\WiFi\bin\EvtEng.exe [2015-06-12 640928]
R2 GfExperienceService;NVIDIA GeForce Experience Service; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [2015-07-24 1155216]
R2 hMailServer;hMailServer; C:\Program Files (x86)\hMailServer\Bin\hMailServer.exe [2016-05-24 4519936]
R2 chromoting;Služba Vzdálené plochy Chrome; C:\Program Files (x86)\Google\Chrome Remote Desktop\56.0.2924.51\remoting_host.exe [2017-01-03 72024]
R2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2015-06-23 18856]
R2 ibtsiva;@oem101.inf,%SERVICE_NAME%;Intel Bluetooth Service; C:\WINDOWS\system32\ibtsiva []
R2 NVDisplay.ContainerLocalSystem;NVIDIA Display Container LS; C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe [2016-12-29 458176]
R2 NvNetworkService;NVIDIA Network Service; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [2015-07-24 1871504]
R2 NvStreamSvc;NVIDIA Streamer Service; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [2015-07-24 5544592]
R2 OneSyncSvc_60398;Hostitel synchronizace_60398; C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup;"ServiceDll"=
R2 postgresql-x64-9.6;postgresql-x64-9.6 - PostgreSQL Server 9.6; C:\Program Files\PostgreSQL\9.6\bin\pg_ctl.exe [2016-10-25 94720]
R2 RegSrvc;Intel(R) PROSet/Wireless Registry Service; C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe [2015-06-12 157088]
R2 ReimageRealTimeProtector;Reimage Real Time Protector; C:\Program Files\Reimage\Reimage Protector\ReiGuard.exe [2017-01-19 8061808]
R2 SQLWriter;SQL Server VSS Writer; C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe [2016-04-30 131776]
R3 PimIndexMaintenanceSvc_60398;Data kontaktů_60398; C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup;"ServiceDll"=
R3 RmSvc;@%SystemRoot%\system32\RMapi.dll,-1001; %SystemRoot%\System32\svchost.exe -k LocalServiceNetworkRestricted;"ServiceDll"=%SystemRoot%\System32\RMapi.dll
S2 CDPUserSvc;@%SystemRoot%\system32\cdpusersvc.dll,-100; %SystemRoot%\system32\svchost.exe -k UnistackSvcGroup;"ServiceDll"=%SystemRoot%\System32\CDPUserSvc.dll
S2 dbupdate;Dropbox Update Service (dbupdate); C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [2016-11-05 143144]
S2 FA_Scheduler;FortiClient Service Scheduler; C:\Program Files (x86)\Fortinet\FortiClient\scheduler.exe [2015-10-06 107026]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2017-01-16 317400]
S3 aspnet_state;@%SystemRoot%\Microsoft.NET\Framework64\v4.0.30319\aspnet_rc.dll,-1; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2016-07-16 52920]
S3 dbupdatem;Dropbox Update Service (dbupdatem); C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [2016-11-05 143144]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2016-05-25 43696]
S3 FrameServer;@%systemroot%\system32\FrameServer.dll,-100; %SystemRoot%\System32\svchost.exe -k Camera;"ServiceDll"=%SystemRoot%\system32\FrameServer.dll
S3 fussvc;Windows App Certification Kit Fast User Switching Utility Service; C:\Program Files (x86)\Windows Kits\8.1\App Certification Kit\fussvc.exe [2014-02-20 142336]
S3 hns;@%systemroot%\system32\HostNetSvc.dll,-100; %systemroot%\system32\svchost.exe -k NetSvcs;"ServiceDll"=%SystemRoot%\System32\HostNetSvc.dll
S3 HvHost;@%SystemRoot%\system32\hvhostsvc.dll,-100; %SystemRoot%\system32\svchost.exe -k LocalSystemNetworkRestricted;"ServiceDll"=%SystemRoot%\System32\hvhostsvc.dll
S3 irmon;@%SystemRoot%\System32\irmon.dll,-2000; %SystemRoot%\system32\svchost.exe -k LocalSystemNetworkRestricted;"ServiceDll"=%SystemRoot%\System32\irmon.dll
S3 MessagingService_60398;Služba zasílání zpráv_60398; C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup;"ServiceDll"=
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2016-12-20 172488]
S3 MyWiFiDHCPDNS;Wireless PAN DHCP Server; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [2015-06-12 268192]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2016-01-26 150600]
S3 Sense;@%ProgramFiles%\Windows Defender Advanced Threat Protection\MsSense.exe,-1001; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [2016-10-04 2889896]
S3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2017-01-19 1464096]
S4 AppVClient;@%systemroot%\system32\AppVClient.exe,-102; C:\WINDOWS\system32\AppVClient.exe [2016-12-14 822624]
S4 shpamsvc;@%SystemRoot%\System32\Windows.SharedPC.AccountManager.dll,-100; %SystemRoot%\System32\svchost.exe -k netsvcs;"ServiceDll"=%systemroot%\system32\Windows.SharedPC.AccountManager.dll

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119671
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Pomalý počítač - prosím o kontrolu logu (log je rozdělen

#3 Příspěvek od Rudy »

Zdravím!
Spusťte tuto utilitu:
Stáhněte AdwCleaner https://toolslib.net/downloads/viewdown ... dwcleaner/
Uložte na plochu
Ukončete všechny programy
Klikněte nejprve na >Scan<(hledání) a pak na >Clean< (mazání).
Proběhne skenováni a pak se objeví log, který sem vložte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

TinTon
Návštěvník
Návštěvník
Příspěvky: 9
Registrován: 11 úno 2017 17:18

Re: Pomalý počítač - prosím o kontrolu logu (log je rozdělen

#4 Příspěvek od TinTon »

# AdwCleaner v6.043 - Log vytvořen 11/02/2017 v 17:47:08
# Aktualizováno dne 27/01/2017 z Malwarebytes
# Databáze : 2017-02-09.1 [Server]
# Operační systém : Windows 10 Pro (X64)
# Uživatelské jméno : Pavel - PAVEL-NB
# Spuštěno z : C:\Users\Pavel\Desktop\adwcleaner_6.043.exe
# Mod: Čištění
# Podpora : https://www.malwarebytes.com/support



***** [ Služby ] *****



***** [ Složky ] *****

[-] Složka smazána: C:\Program Files\Reimage
[#] Složka smazána po restartu: C:\Program Files\reimage


***** [ Soubory ] *****

[-] Soubor smazán: C:\Users\Pavel\Downloads\ReimageRepair.exe
[-] Soubor smazán: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\CodecPackTrayMenu.lnk
[-] Soubor smazán: C:\WINDOWS\Reimage.ini
[-] Soubor smazán: C:\Users\Pavel\AppData\Local\Temp\reimage.log
[-] Soubor smazán: C:\Users\Pavel\AppData\Local\Temp\ReimagePackage.exe


***** [ DLL ] *****



***** [ WMI ] *****



***** [ Zástupci ] *****



***** [ Naplánované úlohy ] *****



***** [ Registry ] *****

[-] Klíč smazán: HKLM\SOFTWARE\Classes\REI_AxControl.ReiEngine
[-] Klíč smazán: HKLM\SOFTWARE\Classes\REI_AxControl.ReiEngine.1
[#] Klíč smazán po restartu: [x64] HKLM\SOFTWARE\Classes\REI_AxControl.ReiEngine
[#] Klíč smazán po restartu: [x64] HKLM\SOFTWARE\Classes\REI_AxControl.ReiEngine.1
[-] Klíč smazán: HKLM\SOFTWARE\Classes\AppID\{28FF42B8-A0DA-4BE5-9B81-E26DD59B350A}
[-] Klíč smazán: HKLM\SOFTWARE\Classes\Interface\{9BB31AD8-5DB2-459E-A901-DEA536F23BA4}
[-] Klíč smazán: HKLM\SOFTWARE\Classes\Interface\{BD51A48E-EB5F-4454-8774-EF962DF64546}
[-] Klíč smazán: HKLM\SOFTWARE\Classes\TypeLib\{FA6468D2-FAA4-4951-A53B-2A5CF9CC0A36}
[-] Klíč smazán: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{10ECCE17-29B5-4880-A8F5-EAD298611484}
[-] Klíč smazán: HKU\S-1-5-21-2045645379-809631811-2224358688-1002\Software\Reimage
[-] Klíč smazán: HKU\S-1-5-21-2045645379-809631811-2224358688-1002\Software\Local AppWizard-Generated Applications\Reimage - Windows Problem Relief.
[#] Klíč smazán po restartu: HKCU\Software\Reimage
[#] Klíč smazán po restartu: HKCU\Software\Local AppWizard-Generated Applications\Reimage - Windows Problem Relief.
[#] Klíč smazán po restartu: [x64] HKCU\Software\Reimage
[#] Klíč smazán po restartu: [x64] HKCU\Software\Local AppWizard-Generated Applications\Reimage - Windows Problem Relief.
[-] Klíč smazán: [x64] HKLM\SOFTWARE\Reimage
[-] Klíč smazán: HKCU\Software\Microsoft\Internet Explorer\DOMStorage\castplatform.com
[-] Klíč smazán: HKCU\Software\Microsoft\Internet Explorer\DOMStorage\cdn.castplatform.com
[#] Klíč smazán po restartu: [x64] HKCU\Software\Microsoft\Internet Explorer\DOMStorage\castplatform.com
[#] Klíč smazán po restartu: [x64] HKCU\Software\Microsoft\Internet Explorer\DOMStorage\cdn.castplatform.com
[-] Hodnota smazána: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [Codec Settings UAC Manager]
[-] Hodnota smazána: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32 [Codec Settings UAC Manager]
[-] Klíč smazán: HKLM\SOFTWARE\Classes\AppID\REI_AxControl.DLL


***** [ Prohlížeče ] *****

[-] [C:\Users\Pavel\AppData\Local\Google\Chrome\User Data\Default\Web data] [Search Provider] Smazáno: mysearchresults.com
[-] [C:\Users\Pavel\AppData\Local\Google\Chrome\User Data\Default\Web data] [Search Provider] Smazáno: slunecnice.cz
[-] [C:\Users\Pavel\AppData\Local\Google\Chrome\User Data\Default\Web data] [Search Provider] Smazáno: ask.com
[-] [C:\Users\Pavel\AppData\Local\Google\Chrome\User Data\Default\Web data] [Search Provider] Smazáno: windows-movie-maker-2012.en.softonic.com
[-] [C:\Users\Pavel\AppData\Local\Google\Chrome\User Data\Default\Web data] [Search Provider] Smazáno: potplayer.en.softonic.com
[-] [C:\Users\Pavel\AppData\Local\Google\Chrome\User Data\Default\Web data] [Search Provider] Smazáno: mystart.incredibar.com/mb201


*************************

:: "Tracing" klíče smazány
:: Winsock nastavení vyčištěno

*************************

C:\AdwCleaner\AdwCleaner[C0].txt - [4144 Bajty] - [11/02/2017 17:47:08]
C:\AdwCleaner\AdwCleaner[S0].txt - [4301 Bajty] - [11/02/2017 17:46:04]

########## EOF - C:\AdwCleaner\AdwCleaner[C0].txt - [4290 Bajty] ##########

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119671
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Pomalý počítač - prosím o kontrolu logu (log je rozdělen

#5 Příspěvek od Rudy »

Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

TinTon
Návštěvník
Návštěvník
Příspěvky: 9
Registrován: 11 úno 2017 17:18

Re: Pomalý počítač - prosím o kontrolu logu (log je rozdělen

#6 Příspěvek od TinTon »

FRST.txt se mi nepodařilo otevřít
ale tady to je log z FRST3.txt


Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 12-02-2017
Ran by Pavel (administrator) on PAVEL-NB (12-02-2017 15:32:37)
Running from C:\Users\Pavel\Desktop
Loaded Profiles: Pavel (Available Profiles: Pavel)
Platform: Windows 10 Pro Version 1607 (X64) Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(Fortinet Inc.) C:\Program Files (x86)\Fortinet\FortiClient\scheduler.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Fortinet Inc.) C:\Program Files (x86)\Fortinet\FortiClient\FCDBLog.exe
(Fortinet Inc.) C:\Program Files (x86)\Fortinet\FortiClient\FortiESNAC.exe
(Fortinet Inc.) C:\Program Files (x86)\Fortinet\FortiClient\FortiSSLVPNdaemon.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome Remote Desktop\56.0.2924.51\remoting_host.exe
(Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office 15\ClientX64\officeclicktorun.exe
(Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe
(Intel Corporation) C:\Windows\System32\ibtsiva.exe
(Dropbox, Inc.) C:\Windows\System32\DbxSvc.exe
(Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
(Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
(hMailServer) C:\Program Files (x86)\hMailServer\Bin\hMailServer.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(Microsoft Corporation) C:\Windows\System32\vmms.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
(Intel Corporation) C:\Windows\SysWOW64\IntelCpHeciSvc.exe
(PostgreSQL Global Development Group) C:\Program Files\PostgreSQL\9.6\bin\postgres.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome Remote Desktop\56.0.2924.51\remoting_host.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(PostgreSQL Global Development Group) C:\Program Files\PostgreSQL\9.6\bin\postgres.exe
(Fortinet Inc.) C:\Program Files (x86)\Fortinet\FortiClient\FCHelper64.exe
(Fortinet Inc.) C:\Program Files (x86)\Fortinet\FortiClient\FortiTray.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\NisSrv.exe
(Microsoft Corporation) C:\Windows\System32\vmcompute.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Realtek semiconductor) C:\Windows\RTFTrack.exe
() C:\Program Files\Lenovo\LenovoUtility\utility.exe
(Lenovo(beijing) Limited) C:\Program Files (x86)\Lenovo\Energy Manager\Energy Manager.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MSASCuiL.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Nota Inc.) C:\Program Files (x86)\Gyazo\GyStation.exe
(Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe
() C:\Program Files (x86)\Bloody5\Bloody5\Bloody5.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe
(Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\IPC\AdobeIPCBroker.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Intel Corporation) C:\Windows\System32\igfxEM.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Intel Corporation) C:\Windows\System32\igfxHK.exe
() C:\Windows\System32\igfxTray.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ADS\Adobe Desktop Service.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\HEX\Adobe CEF Helper.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\56.0.2924.87\nacl64.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\56.0.2924.87\nacl64.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
() C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSync\CoreSync.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCXProcess\CCXProcess.exe
(Node.js) C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCXProcess\libs\node.exe
(PostgreSQL Global Development Group) C:\Program Files\PostgreSQL\9.6\bin\postgres.exe
(PostgreSQL Global Development Group) C:\Program Files\PostgreSQL\9.6\bin\postgres.exe
(PostgreSQL Global Development Group) C:\Program Files\PostgreSQL\9.6\bin\postgres.exe
(PostgreSQL Global Development Group) C:\Program Files\PostgreSQL\9.6\bin\postgres.exe
(PostgreSQL Global Development Group) C:\Program Files\PostgreSQL\9.6\bin\postgres.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe
() C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.11.105.0_x64__kzf8qxf38zg5c\SkypeHost.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCLibrary\CCLibrary.exe
(Node.js) C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCLibrary\libs\node.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(Skype Technologies) C:\Program Files (x86)\Skype\Browser\SkypeBrowserHost.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Skype Technologies) C:\Program Files (x86)\Skype\Browser\SkypeBrowserHost.exe
(Skype Technologies) C:\Program Files (x86)\Skype\Browser\SkypeBrowserHost.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MpCmdRun.exe
(Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(forum.viry.cz) C:\Users\Pavel\Desktop\FRSTLauncher.exe

==================== Registry (Whitelisted) ====================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13885696 2016-02-12] (Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_Dolby] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1402624 2016-02-12] (Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_LENOVO_DOLBYDRAGON] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1402624 2016-02-12] (Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_LENOVO_MICPKEY] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1402624 2016-02-12] (Realtek Semiconductor)
HKLM\...\Run: [RtsFT] => c:\windows\RTFTrack.exe [5052120 2015-06-01] (Realtek semiconductor)
HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [322472 2015-06-23] (Intel Corporation)
HKLM\...\Run: [LenovoUtility] => C:\Program Files\Lenovo\LenovoUtility\utility.exe [791848 2015-09-10] ()
HKLM\...\Run: [Energy Manager] => C:\Program Files (x86)\Lenovo\Energy Manager\Energy Manager.exe [16093512 2015-09-10] (Lenovo(beijing) Limited)
HKLM\...\Run: [Lenovo Utility] => C:\Program Files (x86)\Lenovo\Energy Manager\Utility.exe [8235848 2015-09-10] (Lenovo(beijing) Limited)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [508128 2016-07-01] (Adobe Systems Incorporated)
HKLM\...\Run: [WindowsDefender] => C:\Program Files\Windows Defender\MSASCuiL.exe [631808 2016-10-04] (Microsoft Corporation)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [3947704 2016-02-13] (Synaptics Incorporated)
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2634896 2015-07-24] (NVIDIA Corporation)
HKLM\...\Run: [ShadowPlay] => C:\WINDOWS\system32\rundll32.exe C:\WINDOWS\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM-x32\...\Run: [Adobe Creative Cloud] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe [2383040 2016-10-25] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [Dropbox] => C:\Program Files (x86)\Dropbox\Client\Dropbox.exe [26220296 2017-02-07] (Dropbox, Inc.)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [587288 2016-09-22] (Oracle Corporation)
HKU\S-1-5-21-2045645379-809631811-2224358688-1002\...\Run: [Gyazo] => C:\Program Files (x86)\Gyazo\GyStation.exe [5077792 2017-01-10] (Nota Inc.)
HKU\S-1-5-21-2045645379-809631811-2224358688-1002\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [2881824 2017-01-19] (Valve Corporation)
HKU\S-1-5-21-2045645379-809631811-2224358688-1002\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [27427808 2017-02-08] (Skype Technologies S.A.)
HKU\S-1-5-21-2045645379-809631811-2224358688-1002\...\Run: [Bloody2] => C:\Program Files (x86)\Bloody5\Bloody5\Bloody5.exe [18923008 2015-06-16] ()
ShellIconOverlayIdentifiers: [ MEGA (Pending)] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => C:\Users\Pavel\AppData\Local\MEGAsync\ShellExtX64.dll [2016-10-31] ()
ShellIconOverlayIdentifiers: [ MEGA (Synced)] -> {05B38830-F4E9-4329-978B-1DD28605D202} => C:\Users\Pavel\AppData\Local\MEGAsync\ShellExtX64.dll [2016-10-31] ()
ShellIconOverlayIdentifiers: [ MEGA (Syncing)] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => C:\Users\Pavel\AppData\Local\MEGAsync\ShellExtX64.dll [2016-10-31] ()
ShellIconOverlayIdentifiers: [ DropboxExt01] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.14.0.dll [2017-02-07] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt02] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.14.0.dll [2017-02-07] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt03] -> {FB314EE1-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.14.0.dll [2017-02-07] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt04] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.14.0.dll [2017-02-07] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt05] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.14.0.dll [2017-02-07] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt06] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.14.0.dll [2017-02-07] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt07] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.14.0.dll [2017-02-07] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt08] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.14.0.dll [2017-02-07] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt09] -> {FB314EE2-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.14.0.dll [2017-02-07] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt10] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.14.0.dll [2017-02-07] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ AccExtIco1] -> {AB9CF9F8-8A96-4F9D-BF21-CE85714C3A47} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll [2016-10-25] ()
ShellIconOverlayIdentifiers: [ AccExtIco2] -> {853B7E05-C47D-4985-909A-D0DC5C6D7303} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll [2016-10-25] ()
ShellIconOverlayIdentifiers: [ AccExtIco3] -> {42D38F2E-98E9-4382-B546-E24E4D6D04BB} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll [2016-10-25] ()
ShellIconOverlayIdentifiers-x32: [ MEGA (Pending)] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => C:\Users\Pavel\AppData\Local\MEGAsync\ShellExtX32.dll [2016-10-31] ()
ShellIconOverlayIdentifiers-x32: [ MEGA (Synced)] -> {05B38830-F4E9-4329-978B-1DD28605D202} => C:\Users\Pavel\AppData\Local\MEGAsync\ShellExtX32.dll [2016-10-31] ()
ShellIconOverlayIdentifiers-x32: [ MEGA (Syncing)] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => C:\Users\Pavel\AppData\Local\MEGAsync\ShellExtX32.dll [2016-10-31] ()
ShellIconOverlayIdentifiers-x32: [ DropboxExt01] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.14.0.dll [2017-02-07] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt02] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.14.0.dll [2017-02-07] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt03] -> {FB314EE1-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.14.0.dll [2017-02-07] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt04] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.14.0.dll [2017-02-07] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt05] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.14.0.dll [2017-02-07] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt06] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.14.0.dll [2017-02-07] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt07] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.14.0.dll [2017-02-07] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt08] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.14.0.dll [2017-02-07] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt09] -> {FB314EE2-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.14.0.dll [2017-02-07] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt10] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.14.0.dll [2017-02-07] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ SkyDrivePro1 (ErrorConflict)] -> {8BA85C75-763B-4103-94EB-9470F12FE0F7} => C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL [2016-11-01] (Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ SkyDrivePro2 (SyncInProgress)] -> {CD55129A-B1A1-438E-A425-CEBC7DC684EE} => C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL [2016-11-01] (Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ SkyDrivePro3 (InSync)] -> {E768CD3B-BDDC-436D-9C13-E1B39CA257B1} => C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL [2016-11-01] (Microsoft Corporation)
Startup: C:\Users\Pavel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\MEGAsync.lnk [2017-02-06]
ShortcutTarget: MEGAsync.lnk -> C:\Users\Pavel\AppData\Local\MEGAsync\MEGAsync.exe (Mega Limited)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 160.217.1.10 160.217.161.1
Tcpip\..\Interfaces\{10644f92-9e51-4bdb-b7d6-661cc261645a}: [DhcpNameServer] 160.217.1.10 160.217.161.1
Tcpip\..\Interfaces\{19fab024-f22a-4f63-acdf-de4517cb4a04}: [DhcpNameServer] 160.217.1.10 160.217.161.1
Tcpip\..\Interfaces\{5520d217-ddad-4182-b348-4f90f2f345bb}: [DhcpNameServer] 160.217.1.10 160.217.161.1

Internet Explorer:
==================
HKU\S-1-5-21-2045645379-809631811-2224358688-1002\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://lenovo.com/cz/cs/
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll [2016-12-13] (Microsoft Corporation)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_111\bin\ssv.dll [2016-10-21] (Oracle Corporation)
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL [2016-11-01] (Microsoft Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_111\bin\jp2ssv.dll [2016-10-21] (Oracle Corporation)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office 15\root\Office15\OCHelper.dll [2016-12-13] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_111\bin\ssv.dll [2016-10-21] (Oracle Corporation)
BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL [2016-11-01] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_111\bin\jp2ssv.dll [2016-10-21] (Oracle Corporation)
Handler-x32: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL [2016-04-20] (Microsoft Corporation)

FireFox:
========
FF DefaultProfile: b14wv8ko.default
FF ProfilePath: C:\Users\Pavel\AppData\Roaming\Mozilla\Firefox\Profiles\b14wv8ko.default [2017-02-11]
FF HKLM-x32\...\Firefox\Extensions: [{F003DA68-8256-4b37-A6C4-350FA04494DF}] - C:\Program Files\Logitech\SetPointP\LogiSmoothFirefoxExt => not found
FF Plugin: @java.com/DTPlugin,version=11.111.2 -> C:\Program Files\Java\jre1.8.0_111\bin\dtplugin\npDeployJava1.dll [2016-10-21] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.111.2 -> C:\Program Files\Java\jre1.8.0_111\bin\plugin2\npjp2.dll [2016-10-21] (Oracle Corporation)
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll [2016-10-25] (Adobe Systems)
FF Plugin-x32: @FortinetCacheClean -> C:\Program Files (x86)\Fortinet\FortiClient\npccplugin.dll [2015-10-06] (Fortinet Inc.)
FF Plugin-x32: @FortinetCacheCleanEx -> C:\Program Files (x86)\Fortinet\FortiClient\npccpluginex.dll [2015-10-06] (Fortinet Inc.)
FF Plugin-x32: @FortinetTunnelControl -> C:\Program Files (x86)\Fortinet\FortiClient\nptcplugin.dll [2015-10-06] (Fortinet Inc.)
FF Plugin-x32: @java.com/DTPlugin,version=11.111.2 -> C:\Program Files (x86)\Java\jre1.8.0_111\bin\dtplugin\npDeployJava1.dll [2016-10-21] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.111.2 -> C:\Program Files (x86)\Java\jre1.8.0_111\bin\plugin2\npjp2.dll [2016-10-21] (Oracle Corporation)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2016-07-12] (Microsoft Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.20513.0\npctrl.dll [2013-05-13] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL [2016-02-13] (Microsoft Corporation)
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2016-12-29] (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2016-12-29] (NVIDIA Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.32.7\npGoogleUpdate3.dll [2016-12-19] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.32.7\npGoogleUpdate3.dll [2016-12-19] (Google Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2016-12-23] (Adobe Systems Inc.)
FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll [2016-10-25] (Adobe Systems)
FF Plugin HKU\S-1-5-21-2045645379-809631811-2224358688-1002: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Pavel\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2016-03-11] (Unity Technologies ApS)

Chrome:
=======
CHR HomePage: Default -> hxxp://www.google.com/
CHR StartupUrls: Default -> "hxxp://www.google.com/"
CHR DefaultSearchKeyword: Default -> jb
CHR Profile: C:\Users\Pavel\AppData\Local\Google\Chrome\User Data\Default [2017-02-12]
CHR Extension: (Prezentace Google) - C:\Users\Pavel\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2016-02-13]
CHR Extension: (Floorplanner) - C:\Users\Pavel\AppData\Local\Google\Chrome\User Data\Default\Extensions\abopacaefhbognnmeigicfpgnmpideag [2016-02-13]
CHR Extension: (3DTin) - C:\Users\Pavel\AppData\Local\Google\Chrome\User Data\Default\Extensions\algoakekcdmbbikdjgjdahbfihboglmi [2016-02-13]
CHR Extension: (Dokumenty Google) - C:\Users\Pavel\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2016-02-13]
CHR Extension: (Disk Google) - C:\Users\Pavel\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-02-13]
CHR Extension: (Web Developer) - C:\Users\Pavel\AppData\Local\Google\Chrome\User Data\Default\Extensions\bfbameneiokkgbdmiekhjnmfkcnldhhm [2016-08-02]
CHR Extension: (YouTube) - C:\Users\Pavel\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-02-13]
CHR Extension: (Vyhledávání Google) - C:\Users\Pavel\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2016-02-13]
CHR Extension: (Lamborghini Sesto Elemento Theme) - C:\Users\Pavel\AppData\Local\Google\Chrome\User Data\Default\Extensions\dappigdjllcnkkoacaoolciaolaaiemb [2016-02-13]
CHR Extension: (Fun Switcher) - C:\Users\Pavel\AppData\Local\Google\Chrome\User Data\Default\Extensions\ddeoimiimmmfddbiggnbipkjomlalanb [2016-02-13]
CHR Extension: (Daum Equation Editor) - C:\Users\Pavel\AppData\Local\Google\Chrome\User Data\Default\Extensions\dinfmiceliiomokeofbocegmacmagjhe [2016-02-13]
CHR Extension: (PerfectPixel by WellDoneCode) - C:\Users\Pavel\AppData\Local\Google\Chrome\User Data\Default\Extensions\dkaagdgjmgdmbnecmcefdhjekcoceebi [2017-02-11]
CHR Extension: (Block site) - C:\Users\Pavel\AppData\Local\Google\Chrome\User Data\Default\Extensions\eiimnmioipafcokbfikbljfdeojpcgbh [2017-01-09]
CHR Extension: (Hudba Google Play) - C:\Users\Pavel\AppData\Local\Google\Chrome\User Data\Default\Extensions\fahmaaghhglfmonjliepjlchgpgfmobi [2017-02-11]
CHR Extension: (Tabulky Google) - C:\Users\Pavel\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2016-02-13]
CHR Extension: (Gyazo) - C:\Users\Pavel\AppData\Local\Google\Chrome\User Data\Default\Extensions\ffdaeeijbbijklfcpahbghahojgfgebo [2016-07-18]
CHR Extension: (Vzdálená plocha Chrome) - C:\Users\Pavel\AppData\Local\Google\Chrome\User Data\Default\Extensions\gbchcmhmhahfdphkhkmpfmihenigjmpp [2017-02-08]
CHR Extension: (QR Code Generator) - C:\Users\Pavel\AppData\Local\Google\Chrome\User Data\Default\Extensions\gcmhlmapohffdglflokbgknlknnmogbb [2016-02-13]
CHR Extension: (Stopky / časovač) - C:\Users\Pavel\AppData\Local\Google\Chrome\User Data\Default\Extensions\ggnidjbcahhbnleinchgobfnabopeioh [2016-02-13]
CHR Extension: (Dokumenty Google offline) - C:\Users\Pavel\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-03-19]
CHR Extension: (AdBlock) - C:\Users\Pavel\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2017-01-31]
CHR Extension: (Stolen Camera Finder) - C:\Users\Pavel\AppData\Local\Google\Chrome\User Data\Default\Extensions\hfhlngbcdalpjiejaenfchpcajdmpeom [2017-02-09]
CHR Extension: (JetBrains IDE Support) - C:\Users\Pavel\AppData\Local\Google\Chrome\User Data\Default\Extensions\hmhgeddbohgjknpmjagkdomcpobmllji [2016-08-01]
CHR Extension: (Javascript Library for Console) - C:\Users\Pavel\AppData\Local\Google\Chrome\User Data\Default\Extensions\hoooohdeiheekoemicbaeeiaokjhnpko [2016-02-13]
CHR Extension: (Page Ruler) - C:\Users\Pavel\AppData\Local\Google\Chrome\User Data\Default\Extensions\jlpkojjdgbllmedoapgfodplfhcbnbpn [2016-02-13]
CHR Extension: (Window Resizer) - C:\Users\Pavel\AppData\Local\Google\Chrome\User Data\Default\Extensions\kkelicaakdanhinjdeammmilcgefonfh [2016-05-11]
CHR Extension: (Little Alchemy) - C:\Users\Pavel\AppData\Local\Google\Chrome\User Data\Default\Extensions\knkapnclbofjjgicpkfoagdjohlfjhpd [2016-02-13]
CHR Extension: (Lenstag Rescue) - C:\Users\Pavel\AppData\Local\Google\Chrome\User Data\Default\Extensions\mciidkooancddoomldklgcklkbmlboog [2016-09-18]
CHR Extension: (BrowserStack Local) - C:\Users\Pavel\AppData\Local\Google\Chrome\User Data\Default\Extensions\mfiddfehmfdojjfdpfngagldgaaafcfo [2017-01-10]
CHR Extension: (Kontrola e-mailu Google) - C:\Users\Pavel\AppData\Local\Google\Chrome\User Data\Default\Extensions\mihcahmgecmbnbcchbopgniflfhgnkff [2016-02-13]
CHR Extension: (ChemReference: Periodic Table) - C:\Users\Pavel\AppData\Local\Google\Chrome\User Data\Default\Extensions\mjpnebljmdbglkmlnijcaplhfhkhdnib [2016-02-13]
CHR Extension: (Edge: The Web Ruler) - C:\Users\Pavel\AppData\Local\Google\Chrome\User Data\Default\Extensions\njlkegdphefeellhaongiopcfgcinikh [2016-02-13]
CHR Extension: (Graph.tk) - C:\Users\Pavel\AppData\Local\Google\Chrome\User Data\Default\Extensions\nkhkaamdeplibnmodcgodlkghphdbahk [2016-02-13]
CHR Extension: (BrowserStack) - C:\Users\Pavel\AppData\Local\Google\Chrome\User Data\Default\Extensions\nkihdmlheodkdfojglpcjjmioefjahjb [2016-10-07]
CHR Extension: (Twitch Now) - C:\Users\Pavel\AppData\Local\Google\Chrome\User Data\Default\Extensions\nlmbdmpjmlijibeockamioakdpmhjnpk [2016-08-02]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Pavel\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2017-01-19]
CHR Extension: (The QR Code Extension) - C:\Users\Pavel\AppData\Local\Google\Chrome\User Data\Default\Extensions\oijdcdmnjjgnnhgljmhkjlablaejfeeb [2016-04-09]
CHR Extension: (Origami Player) - C:\Users\Pavel\AppData\Local\Google\Chrome\User Data\Default\Extensions\oiomepakkenneiifjocbinkmmampfbdn [2016-02-13]
CHR Extension: (Keyboard shortcuts for Google Play Music) - C:\Users\Pavel\AppData\Local\Google\Chrome\User Data\Default\Extensions\ooaodnhmdenhnomcbfandipncimhdnke [2016-02-13]
CHR Extension: (Gmail) - C:\Users\Pavel\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2016-02-13]
CHR Extension: (Chrome Media Router) - C:\Users\Pavel\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2017-02-06]
CHR Extension: (Writer) - C:\Users\Pavel\AppData\Local\Google\Chrome\User Data\Default\Extensions\pnengefjfhgcceajaepbjhanoojifmog [2016-02-13]
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - hxxps://clients2.google.com/service/update2/crx

==================== Services (Whitelisted) ====================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 AdobeUpdateService; C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe [744640 2016-10-25] (Adobe Systems Incorporated)
R2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2227312 2017-01-19] (Adobe Systems, Incorporated)
R2 chromoting; C:\Program Files (x86)\Google\Chrome Remote Desktop\56.0.2924.51\remoting_host.exe [72024 2017-01-03] (Google Inc.)
R2 ClickToRunSvc; C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe [3042032 2016-12-13] (Microsoft Corporation)
S2 dbupdate; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2016-11-05] (Dropbox, Inc.)
S3 dbupdatem; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2016-11-05] (Dropbox, Inc.)
R2 DbxSvc; C:\WINDOWS\system32\DbxSvc.exe [46400 2017-02-07] (Dropbox, Inc.)
R2 FA_Scheduler; C:\Program Files (x86)\Fortinet\FortiClient\scheduler.exe [107026 2015-10-06] (Fortinet Inc.) [File not signed]
S3 fussvc; C:\Program Files (x86)\Windows Kits\8.1\App Certification Kit\fussvc.exe [142336 2014-02-20] (Microsoft Corporation) [File not signed]
R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1155216 2015-07-24] (NVIDIA Corporation)
R2 hMailServer; C:\Program Files (x86)\hMailServer\Bin\hMailServer.exe [4519936 2016-05-24] (hMailServer) [File not signed]
S3 hns; C:\WINDOWS\System32\HostNetSvc.dll [553984 2017-02-01] (Microsoft Corporation)
R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [18856 2015-06-23] (Intel Corporation)
R2 igfxCUIService2.0.0.0; C:\WINDOWS\system32\igfxCUIService.exe [373744 2016-11-01] (Intel Corporation)
S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [268192 2015-06-12] ()
R2 NVDisplay.ContainerLocalSystem; C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe [458176 2016-12-29] (NVIDIA Corporation)
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1871504 2015-07-24] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [5544592 2015-07-24] (NVIDIA Corporation)
S2 postgresql-x64-9.6; C:\Program Files\PostgreSQL\9.6\bin\pg_ctl.exe [94720 2016-10-25] (PostgreSQL Global Development Group) [File not signed]
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [2889896 2016-10-04] (Microsoft Corporation)
S3 Te.Service; C:\Program Files (x86)\Windows Kits\8.1\Testing\Runtimes\TAEF\Wex.Services.exe [119808 2013-08-22] (Microsoft Corporation) [File not signed]
R3 vmcompute; C:\WINDOWS\system32\vmcompute.exe [1911296 2017-02-01] (Microsoft Corporation)
R2 vmms; C:\WINDOWS\system32\vmms.exe [14422528 2017-02-01] (Microsoft Corporation)
S3 VSStandardCollectorService140; C:\Program Files (x86)\Microsoft Visual Studio 14.0\Team Tools\DiagnosticsHub\Collector\StandardCollector.Service.exe [108776 2016-09-06] (Microsoft Corporation)
S3 wampapache64; c:\wamp\bin\apache\apache2.4.23\bin\httpd.exe [29696 2016-07-01] (Apache Software Foundation) [File not signed]
S3 wampmysqld64; c:\wamp\bin\mysql\mysql5.7.14\bin\mysqld.exe [39885824 2016-07-12] () [File not signed]
R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [347328 2016-07-16] (Microsoft Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [103720 2016-07-16] (Microsoft Corporation)
R2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [3831200 2015-06-12] (Intel® Corporation)
R2 ibtsiva; %SystemRoot%\system32\ibtsiva [X]

===================== Drivers (Whitelisted) ======================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus.sys [131712 2016-09-05] (Samsung Electronics Co., Ltd.)
S3 fortiapd; C:\WINDOWS\System32\drivers\fortiapd.sys [17792 2015-10-06] (Fortinet Inc)
R1 FortiFilter; C:\WINDOWS\system32\DRIVERS\FortiFilter.sys [45792 2015-08-26] (Fortinet Inc)
S1 FortiFW; C:\WINDOWS\System32\drivers\FortiFW2.sys [37248 2015-10-06] (Fortinet Inc)
S3 Fortips; C:\WINDOWS\System32\drivers\fortips.sys [145632 2015-07-23] (Fortinet Inc)
R1 FortiShield; C:\WINDOWS\System32\drivers\FortiShield.sys [72064 2015-10-06] (Fortinet Inc)
S3 fortisniff; C:\WINDOWS\System32\drivers\fortisniff2.sys [38272 2015-10-06] (Fortinet Inc)
R3 ft_vnic; C:\WINDOWS\System32\drivers\ftvnic.sys [71928 2015-08-26] (Fortinet Inc)
S3 gpslc64; C:\WINDOWS\System32\Drivers\gpslc64.sys [102624 2010-03-10] (Mobile Action Technology Inc.)
R3 ibtusb; C:\WINDOWS\system32\DRIVERS\ibtusb.sys [230656 2016-12-12] (Intel Corporation)
S3 lunparser; C:\WINDOWS\System32\drivers\lunparser.sys [22528 2017-02-01] (Microsoft Corporation)
R3 NdisImPlatformMp; C:\WINDOWS\System32\drivers\NdisImPlatform.sys [126464 2016-07-16] (Microsoft Corporation)
S3 NetAdapterCx; C:\WINDOWS\System32\drivers\NetAdapterCx.sys [90624 2016-07-16] ()
R3 NETwNb64; C:\WINDOWS\System32\drivers\Netwbw02.sys [3776792 2015-06-21] (Intel Corporation)
R3 nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nvltwu.inf_amd64_dc8ffafad3ea7ddd\nvlddmkm.sys [14190520 2017-01-17] (NVIDIA Corporation)
R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [19600 2015-07-24] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\WINDOWS\system32\drivers\nvvad64v.sys [47976 2015-07-03] (NVIDIA Corporation)
S3 passthruparser; C:\WINDOWS\System32\drivers\passthruparser.sys [24576 2017-02-01] (Microsoft Corporation)
S3 pcip; C:\WINDOWS\System32\drivers\pcip.sys [46592 2017-02-01] (Microsoft Corporation)
R3 pppop; C:\WINDOWS\System32\drivers\pppop64.sys [54024 2015-07-23] (Fortinet Inc.)
S3 pvhdparser; C:\WINDOWS\System32\drivers\pvhdparser.sys [50176 2017-02-01] (Microsoft Corporation)
S3 ramparser; C:\WINDOWS\System32\drivers\ramparser.sys [30720 2017-02-01] (Microsoft Corporation)
R3 rt640x64; C:\WINDOWS\System32\drivers\rt640x64.sys [886528 2016-02-12] (Realtek )
R3 RTSPER; C:\WINDOWS\system32\DRIVERS\RtsPer.sys [761600 2016-02-12] (Realsil Semiconductor Corporation)
R3 rtsuvc; C:\WINDOWS\system32\DRIVERS\rtsuvc.sys [3059416 2015-06-11] (Realtek Semiconductor Corp.)
R3 SensorsSimulatorDriver; C:\WINDOWS\System32\drivers\WUDFRd.sys [216064 2016-07-16] (Microsoft Corporation)
R3 SmbDrvI; C:\WINDOWS\system32\DRIVERS\Smb_driver_Intel.sys [42696 2016-02-13] (Synaptics Incorporated)
S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [165504 2016-09-05] (Samsung Electronics Co., Ltd.)
R3 Synth3dVsp; C:\WINDOWS\System32\drivers\synth3dvsp.sys [103424 2017-02-01] (Microsoft Corporation)
S3 vhdparser; C:\WINDOWS\System32\drivers\vhdparser.sys [26624 2017-02-01] (Microsoft Corporation)
R3 vmsmp; C:\WINDOWS\System32\drivers\vmswitch.sys [1616384 2017-02-01] (Microsoft Corporation)
R2 VMSP; C:\WINDOWS\System32\drivers\vmswitch.sys [1616384 2017-02-01] (Microsoft Corporation)
R0 vmsproxy; C:\WINDOWS\System32\drivers\vmsproxy.sys [33632 2017-02-01] (Microsoft Corporation)
S3 VMSVSF; C:\WINDOWS\System32\drivers\vmswitch.sys [1616384 2017-02-01] (Microsoft Corporation)
S3 VMSVSP; C:\WINDOWS\System32\drivers\vmswitch.sys [1616384 2017-02-01] (Microsoft Corporation)
S0 WdBoot; C:\WINDOWS\System32\drivers\WdBoot.sys [44056 2016-07-16] (Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\WdFilter.sys [290144 2016-07-16] (Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [123232 2016-07-16] (Microsoft Corporation)
S3 WinNat; C:\WINDOWS\System32\drivers\winnat.sys [207360 2017-02-01] (Microsoft Corporation)
S3 connctfy; \SystemRoot\system32\DRIVERS\connctfy.sys [X]
S3 dbx; system32\DRIVERS\dbx.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

NETSVC: hns -> C:\Windows\System32\HostNetSvc.dll (Microsoft Corporation)

==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2069-02-15 14:29 - 2005-02-14 10:39 - 00286720 ____R C:\Users\Pavel\Downloads\server.dll
2069-02-15 14:17 - 2005-02-09 17:32 - 05987980 _____ C:\Users\Pavel\Downloads\SPEED2.EXE
2017-02-12 15:32 - 2017-02-12 15:33 - 00038386 _____ C:\Users\Pavel\Desktop\FRST.txt
2017-02-12 10:15 - 2017-02-12 10:15 - 00000000 ____D C:\FRST
2017-02-12 10:11 - 2017-02-12 10:15 - 02421248 _____ (Farbar) C:\Users\Pavel\Desktop\FRST64.exe
2017-02-12 10:11 - 2017-02-12 10:14 - 00112640 _____ (forum.viry.cz) C:\Users\Pavel\Desktop\FRSTLauncher.exe
2017-02-12 10:11 - 2017-02-12 10:11 - 02421248 _____ (Farbar) C:\Users\Pavel\Downloads\FRST64.exe
2017-02-11 17:43 - 2017-02-11 17:47 - 00000000 ____D C:\AdwCleaner
2017-02-11 17:42 - 2017-02-11 17:43 - 04015056 _____ C:\Users\Pavel\Desktop\adwcleaner_6.043.exe
2017-02-11 17:41 - 2017-02-11 17:42 - 04015056 _____ C:\Users\Pavel\Downloads\adwcleaner_6.043.exe
2017-02-11 17:11 - 2017-02-11 17:13 - 00000000 ____D C:\rsit
2017-02-11 17:11 - 2017-02-11 17:12 - 00000000 ____D C:\Program Files\trend micro
2017-02-11 17:10 - 2017-02-11 17:10 - 01323520 _____ C:\Users\Pavel\Downloads\RSITx64.exe
2017-02-11 16:55 - 2017-02-11 17:00 - 1690697466 _____ C:\Users\Pavel\Desktop\valentinska_party_20170211.rar
2017-02-11 16:44 - 2017-02-11 16:45 - 00000000 ____D C:\Users\Pavel\Desktop\valentinska_party_20170211
2017-02-10 18:19 - 2017-02-10 18:19 - 00000000 ____D C:\Program Files (x86)\VulkanRT
2017-02-10 18:19 - 2016-12-29 13:28 - 00133056 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvStreaming.exe
2017-02-10 18:19 - 2016-09-09 19:25 - 00269600 _____ C:\WINDOWS\SysWOW64\vulkan-1.dll
2017-02-10 18:19 - 2016-09-09 19:25 - 00261920 _____ C:\WINDOWS\system32\vulkan-1.dll
2017-02-10 18:19 - 2016-09-09 19:25 - 00110880 _____ C:\WINDOWS\SysWOW64\vulkaninfo.exe
2017-02-10 18:19 - 2016-09-09 19:24 - 00125216 _____ C:\WINDOWS\system32\vulkaninfo.exe
2017-02-10 13:34 - 2017-02-10 13:34 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsign92251f65fda615d6
2017-02-10 13:33 - 2017-02-10 13:33 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsignf9e9807a5077d358
2017-02-10 13:32 - 2017-02-10 13:32 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsign7e5cc3b1dbd182fc
2017-02-10 13:32 - 2017-02-10 13:32 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsign094fda8cea30bc30
2017-02-10 10:43 - 2017-02-10 10:43 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsignddf6e9602e35da9a
2017-02-10 10:42 - 2017-02-10 10:42 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsign13bd1eb42962d219
2017-02-09 23:21 - 2017-02-09 23:21 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsignb0664d1486d71187
2017-02-09 23:21 - 2017-02-09 23:21 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsign5daf5cf3e1900dc8
2017-02-09 23:21 - 2017-02-09 23:21 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsign347286b559dc9bba
2017-02-09 14:16 - 2017-02-09 14:16 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsign5298265d36dc6b67
2017-02-09 13:49 - 2017-02-09 13:49 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsign72e75bf8e96f2800
2017-02-09 12:15 - 2017-02-09 12:15 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsigncbb1dfe18edf8d46
2017-02-09 11:52 - 2017-02-09 11:52 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsign90e0bd24af2c9592
2017-02-09 11:01 - 2017-02-09 11:01 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsign6cad115e01667f95
2017-02-09 10:59 - 2017-02-09 10:59 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsignafc17514f8a0dd19
2017-02-09 10:44 - 2017-02-09 10:44 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsignd31499a3fc95220b
2017-02-09 10:44 - 2017-02-09 10:44 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsignd00462523618e3ad
2017-02-09 10:44 - 2017-02-09 10:44 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsign75c01e5aec88d7f3
2017-02-09 10:44 - 2017-02-09 10:44 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsign5db70153af4c4610
2017-02-09 10:44 - 2017-02-09 10:44 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsign55c273b43b185eee
2017-02-09 10:42 - 2017-02-09 10:42 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsign450ee6874ce6b9bf
2017-02-09 10:25 - 2017-02-09 10:25 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsigncb342be260d66de3
2017-02-09 10:25 - 2017-02-09 10:25 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsign96010771db3ddf5d
2017-02-09 10:25 - 2017-02-09 10:25 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsign7e2a3c96d381829d
2017-02-09 10:24 - 2017-02-09 10:24 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsigne0c5464391d710bd
2017-02-09 10:24 - 2017-02-09 10:24 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsign4295db07896c2991
2017-02-09 10:23 - 2017-02-09 10:23 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsigndeef85cca74a53e9
2017-02-08 15:53 - 2017-02-08 15:53 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsignef64acc69c66248e
2017-02-08 15:39 - 2017-02-08 15:39 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsign721b1b877d3c2e90
2017-02-08 15:34 - 2017-02-08 15:34 - 00845897 _____ C:\Users\Pavel\Downloads\layoutmaschinede6.sql
2017-02-08 15:15 - 2017-02-08 15:15 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsign4141a9c5d21db6e1
2017-02-08 15:14 - 2017-02-08 15:14 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsign906cadfa22feb842
2017-02-08 15:11 - 2017-02-08 15:11 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsign2d4d324d7457e2e9
2017-02-08 15:07 - 2017-02-08 15:07 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsigne2293a030418c99e
2017-02-08 15:07 - 2017-02-08 15:07 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsigna8168a81e71a73f0
2017-02-08 15:07 - 2017-02-08 15:07 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsign86ffa6bab4cb0dca
2017-02-08 15:00 - 2017-02-08 15:00 - 00000033 _____ C:\Users\Pavel\AppData\Roaming\AdobeWLCMCache.dat
2017-02-08 14:55 - 2017-02-08 14:55 - 00002520 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Illustrator CC 2017.lnk
2017-02-08 14:31 - 2017-02-08 14:31 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsigne8845af372a0177a
2017-02-08 14:31 - 2017-02-08 14:31 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsign69bebc5d0cdf8f71
2017-02-08 14:31 - 2017-02-08 14:31 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsign2a7589a271891a03
2017-02-08 14:30 - 2017-02-08 15:05 - 00000000 ____D C:\Users\Pavel\AppData\Roaming\NVIDIA
2017-02-08 11:57 - 2017-02-08 11:57 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsignd0585a09ca903ed9
2017-02-08 11:57 - 2017-02-08 11:57 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsignba9d6525a30be3a8
2017-02-08 11:56 - 2017-02-08 11:56 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsignb8fc3378446623fb
2017-02-08 11:24 - 2017-02-08 11:24 - 00001450 _____ C:\Users\Public\Desktop\GeForce Experience.lnk
2017-02-08 11:24 - 2017-02-08 11:24 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
2017-02-08 11:24 - 2015-07-24 05:21 - 01756608 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvspbridge64.dll
2017-02-08 11:24 - 2015-07-24 05:21 - 01710568 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvspcap64.dll
2017-02-08 11:24 - 2015-07-24 05:21 - 01423304 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvspcap.dll
2017-02-08 11:24 - 2015-07-24 05:21 - 01316000 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvspbridge.dll
2017-02-08 11:23 - 2017-02-08 11:23 - 00000000 ____D C:\Users\Pavel\AppData\Local\NVIDIA Corporation
2017-02-08 11:23 - 2017-02-08 11:23 - 00000000 ____D C:\Users\Pavel\AppData\Local\NVIDIA
2017-02-08 11:22 - 2017-02-11 17:49 - 00000000 ____D C:\ProgramData\NVIDIA
2017-02-08 11:22 - 2017-02-10 18:17 - 00000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2017-02-08 11:22 - 2016-12-29 14:16 - 06384576 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcpl.dll
2017-02-08 11:22 - 2016-12-29 14:16 - 02475968 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvc64.dll
2017-02-08 11:22 - 2016-12-29 14:16 - 01762752 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvcr.dll
2017-02-08 11:22 - 2016-12-29 14:16 - 00546752 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nv3dappshext.dll
2017-02-08 11:22 - 2016-12-29 14:16 - 00392128 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvmctray.dll
2017-02-08 11:22 - 2016-12-29 14:16 - 00083512 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nv3dappshextr.dll
2017-02-08 11:22 - 2016-12-29 14:16 - 00069568 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvshext.dll
2017-02-08 11:22 - 2016-12-22 00:59 - 07651057 _____ C:\WINDOWS\system32\nvcoproc.bin
2017-02-08 11:22 - 2016-11-01 23:05 - 00103952 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll
2017-02-08 11:22 - 2016-11-01 23:05 - 00099848 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll
2017-02-08 11:19 - 2017-02-10 18:20 - 00000000 ____D C:\ProgramData\NVIDIA Corporation
2017-02-08 11:19 - 2017-01-17 05:51 - 10907368 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvopencl.dll
2017-02-08 11:19 - 2017-01-17 05:50 - 03972960 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvapi64.dll
2017-02-08 11:19 - 2017-01-17 05:50 - 00658584 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncMFTH264.dll
2017-02-08 11:19 - 2015-07-23 05:02 - 11142984 ____N (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvlddmkm.sys
2017-02-08 11:19 - 2015-07-23 05:02 - 01898128 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispco6435362.dll
2017-02-08 11:19 - 2015-07-23 05:02 - 01557648 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispgenco6435362.dll
2017-02-08 11:19 - 2015-07-23 05:02 - 00176904 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvinitx.dll
2017-02-08 11:19 - 2015-07-23 05:02 - 00155280 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvinit.dll
2017-02-08 11:19 - 2015-07-03 05:28 - 00069992 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvaudcap64v.dll
2017-02-08 11:19 - 2015-07-03 05:28 - 00065896 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvaudcap32v.dll
2017-02-08 11:19 - 2015-07-03 05:28 - 00047976 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvvad64v.sys
2017-02-08 11:18 - 2017-02-10 18:17 - 00000000 ____D C:\Program Files\NVIDIA Corporation
2017-02-08 11:05 - 2017-02-08 11:05 - 00000724 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel(R) HD Graphics Control Panel.lnk
2017-02-08 11:05 - 2017-02-08 11:05 - 00000712 _____ C:\Users\Public\Desktop\Intel(R) HD Graphics Control Panel.lnk
2017-02-08 11:04 - 2017-02-08 11:05 - 294933088 _____ (NVIDIA Corporation) C:\Users\Pavel\Downloads\353.62-notebook-win10-64bit-international-whql.exe
2017-02-08 11:03 - 2016-11-01 23:06 - 39862848 _____ (Intel Corporation) C:\WINDOWS\system32\igdumdim64.dll
2017-02-08 11:03 - 2016-11-01 23:06 - 38903912 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdumdim32.dll
2017-02-08 11:03 - 2016-11-01 23:06 - 34823872 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igd11dxva32.dll
2017-02-08 11:03 - 2016-11-01 23:06 - 12680800 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igd10iumd32.dll
2017-02-08 11:03 - 2016-11-01 23:06 - 06696832 _____ (Intel Corporation) C:\WINDOWS\system32\igdusc64.dll
2017-02-08 11:03 - 2016-11-01 23:06 - 05140472 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdusc32.dll
2017-02-08 11:03 - 2016-11-01 23:05 - 15837984 _____ (Intel Corporation) C:\WINDOWS\system32\igd10iumd64.dll
2017-02-08 11:03 - 2016-11-01 23:05 - 11742216 _____ (Intel Corporation) C:\WINDOWS\system32\ig75icd64.dll
2017-02-08 11:03 - 2016-11-01 23:05 - 08732168 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\ig75icd32.dll
2017-02-08 11:03 - 2016-11-01 23:05 - 07966192 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\igdkmd64.sys
2017-02-08 11:03 - 2016-11-01 23:05 - 05688840 _____ (Intel Corporation) C:\WINDOWS\system32\igdmcl64.dll
2017-02-08 11:03 - 2016-11-01 23:05 - 04928528 _____ (Intel Corporation) C:\WINDOWS\system32\igdrcl64.dll
2017-02-08 11:03 - 2016-11-01 23:05 - 02142224 _____ (Intel Corporation) C:\WINDOWS\system32\igfxLHM.dll
2017-02-08 11:03 - 2016-11-01 23:05 - 00756744 _____ (Intel Corporation) C:\WINDOWS\system32\igfxDH.dll
2017-02-08 11:03 - 2016-11-01 23:05 - 00439304 _____ (Intel Corporation) C:\WINDOWS\system32\igdbcl64.dll
2017-02-08 11:03 - 2016-11-01 23:05 - 00416264 _____ (Intel Corporation) C:\WINDOWS\system32\IntelOpenCL64.dll
2017-02-08 11:03 - 2016-11-01 23:05 - 00401896 _____ C:\WINDOWS\system32\igfxTray.exe
2017-02-08 11:03 - 2016-11-01 23:05 - 00398856 _____ (Intel Corporation) C:\WINDOWS\system32\igfxDI.dll
2017-02-08 11:03 - 2016-11-01 23:05 - 00373744 _____ (Intel Corporation) C:\WINDOWS\system32\igfxCUIService.exe
2017-02-08 11:03 - 2016-11-01 23:05 - 00354800 _____ (Intel Corporation) C:\WINDOWS\system32\igfxEM.exe
2017-02-08 11:03 - 2016-11-01 23:05 - 00266248 _____ (Intel Corporation) C:\WINDOWS\system32\igdfcl64.dll
2017-02-08 11:03 - 2016-11-01 23:05 - 00254984 _____ (Intel Corporation) C:\WINDOWS\system32\igfxDTCM.dll
2017-02-08 11:03 - 2015-11-20 10:55 - 02813952 _____ C:\WINDOWS\system32\iglhxa64.cpa
2017-02-08 11:03 - 2015-11-20 10:55 - 00511260 _____ C:\WINDOWS\system32\cp_resources.bin
2017-02-08 11:03 - 2015-11-20 10:55 - 00188928 _____ (Intel Corporation) C:\WINDOWS\system32\igfxCoIn_v4326.dll
2017-02-08 11:03 - 2015-11-20 10:55 - 00041296 _____ C:\WINDOWS\system32\iglhxc64_dev.vp
2017-02-08 11:03 - 2015-11-20 10:55 - 00040931 _____ C:\WINDOWS\system32\iglhxo64_dev.vp
2017-02-08 11:03 - 2015-11-20 10:55 - 00040343 _____ C:\WINDOWS\system32\iglhxo64.vp
2017-02-08 11:03 - 2015-11-20 10:55 - 00040316 _____ C:\WINDOWS\system32\iglhxc64.vp
2017-02-08 11:03 - 2015-11-20 10:55 - 00039798 _____ C:\WINDOWS\system32\iglhxg64_dev.vp
2017-02-08 11:03 - 2015-11-20 10:55 - 00039658 _____ C:\WINDOWS\system32\iglhxg64.vp
2017-02-08 11:03 - 2015-11-20 10:55 - 00001125 _____ C:\WINDOWS\system32\iglhxa64.vp
2017-02-08 11:03 - 2015-11-20 10:55 - 00000935 _____ C:\WINDOWS\system32\Gfxv4_0.exe.config
2017-02-08 11:03 - 2015-11-20 10:55 - 00000935 _____ C:\WINDOWS\system32\DPTopologyApp.exe.config
2017-02-08 11:03 - 2015-11-20 10:55 - 00000895 _____ C:\WINDOWS\system32\Gfxv2_0.exe.config
2017-02-08 11:03 - 2015-11-20 10:55 - 00000895 _____ C:\WINDOWS\system32\DPTopologyAppv2_0.exe.config
2017-02-08 11:01 - 2017-02-08 11:03 - 188551808 _____ C:\Users\Pavel\Downloads\win64_154012.zip
2017-02-08 10:47 - 2017-02-08 10:47 - 01138890 _____ (Igor Pavlov) C:\Users\Pavel\Downloads\DDU v17.0.5.3.exe
2017-02-08 10:47 - 2017-02-05 19:58 - 00000000 ____D C:\Users\Pavel\Downloads\settings
2017-02-08 10:47 - 2017-02-05 19:43 - 01442816 _____ C:\Users\Pavel\Downloads\Display Driver Uninstaller.exe
2017-02-08 10:47 - 2017-02-05 19:43 - 00560640 _____ C:\Users\Pavel\Downloads\Display Driver Uninstaller.pdb
2017-02-08 10:47 - 2015-09-06 12:26 - 00000224 _____ C:\Users\Pavel\Downloads\Display Driver Uninstaller.exe.config
2017-02-08 10:26 - 2017-02-08 10:28 - 00523004 _____ C:\WINDOWS\Minidump\020817-48750-01.dmp
2017-02-08 09:57 - 2017-02-08 10:00 - 00491964 _____ C:\WINDOWS\Minidump\020817-50328-01.dmp
2017-02-08 09:47 - 2017-02-08 09:49 - 00515116 _____ C:\WINDOWS\Minidump\020817-41578-01.dmp
2017-02-08 09:38 - 2017-02-08 09:38 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dropbox
2017-02-07 23:14 - 2017-02-07 23:14 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsign63b633249bd6ae06
2017-02-07 20:55 - 2017-02-07 20:55 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsignfabfb5455540f341
2017-02-07 20:55 - 2017-02-07 20:55 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsigne2fe1a34dae8b7bb
2017-02-07 20:55 - 2017-02-07 20:55 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsign45365da9f4fd9adc
2017-02-07 19:47 - 2017-02-07 19:47 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsign2a0d11c2596ea33f
2017-02-07 19:47 - 2017-02-07 19:47 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsign05aa217a626e0328
2017-02-07 19:46 - 2017-02-07 19:46 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsignbef8ceba18631437
2017-02-07 19:44 - 2017-02-07 19:44 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsign28e5c14f8934affd
2017-02-07 19:43 - 2017-02-07 19:43 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsign811b85fc22922da9
2017-02-07 19:43 - 2017-02-07 19:43 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsign765db64eb067df6c
2017-02-07 19:30 - 2017-02-07 19:30 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsignf5ddf3e7a5ef11b3
2017-02-07 19:30 - 2017-02-07 19:30 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsign5538d381c36fa9dc
2017-02-07 19:23 - 2017-02-07 19:23 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsignd50b50856f548e64
2017-02-07 19:23 - 2017-02-07 19:23 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsign4126762da097e507
2017-02-07 19:22 - 2017-02-07 19:22 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsign782b2fe677c88431
2017-02-07 19:09 - 2017-02-07 19:09 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsign0736c91cc73ae73b
2017-02-07 19:08 - 2017-02-07 19:08 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsign8b33e227828c6b99
2017-02-07 18:56 - 2017-02-07 18:56 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsign08b6f6a67da181a0
2017-02-07 18:50 - 2017-02-07 18:50 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsignae9f9f054fd509c1
2017-02-07 18:50 - 2017-02-07 18:50 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsign610c646eb96b4431
2017-02-07 18:49 - 2017-02-07 18:49 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsign90db4dc9d70d91d6
2017-02-07 18:35 - 2017-02-07 18:35 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsignb74f856b0e1af5bd
2017-02-07 13:41 - 2017-02-07 13:41 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsignbaf9e03cdfbecca7
2017-02-07 13:41 - 2017-02-07 13:41 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsign5028d9d5d8b3d868
2017-02-07 13:41 - 2017-02-07 13:41 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsign39d4f74055bd250c
2017-02-07 12:17 - 2017-02-07 12:19 - 00520892 _____ C:\WINDOWS\Minidump\020717-34859-01.dmp
2017-02-07 10:10 - 2017-02-07 10:11 - 00493508 _____ C:\WINDOWS\Minidump\020717-29203-01.dmp
2017-02-07 05:38 - 2017-02-07 05:38 - 00046400 _____ (Dropbox, Inc.) C:\WINDOWS\system32\DbxSvc.exe
2017-02-07 05:38 - 2017-02-07 05:38 - 00046192 _____ (Dropbox, Inc.) C:\WINDOWS\system32\Drivers\dbx-stable.sys
2017-02-07 05:38 - 2017-02-07 05:38 - 00046192 _____ (Dropbox, Inc.) C:\WINDOWS\system32\Drivers\dbx-dev.sys
2017-02-07 05:38 - 2017-02-07 05:38 - 00046192 _____ (Dropbox, Inc.) C:\WINDOWS\system32\Drivers\dbx-canary.sys
2017-02-06 23:50 - 2017-02-06 23:50 - 00000000 ____D C:\Users\Pavel\Documents\MEGAsync
2017-02-06 23:49 - 2017-02-06 23:49 - 00000000 ____D C:\Users\Pavel\AppData\Local\Mega Limited
2017-02-06 23:48 - 2017-02-08 10:19 - 00000000 ____D C:\Users\Pavel\AppData\Local\MEGAsync
2017-02-06 23:48 - 2017-02-06 23:48 - 00001163 _____ C:\Users\Pavel\Desktop\MEGAsync.lnk
2017-02-06 23:48 - 2017-02-06 23:48 - 00000000 ____D C:\Users\Pavel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MEGAsync
2017-02-06 23:46 - 2017-02-06 23:47 - 13285576 _____ (MEGA Limited) C:\Users\Pavel\Downloads\MEGAsyncSetup.exe
2017-02-06 23:11 - 2017-02-06 23:11 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsign3918eb7448659b08
2017-02-06 23:06 - 2017-02-06 23:06 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsign3557fca3360d3d86
2017-02-06 23:04 - 2017-02-06 23:04 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsigne24dc30ce25c6547
2017-02-06 22:56 - 2017-02-06 22:56 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsign9711c4657c795243
2017-02-06 22:53 - 2017-02-06 22:53 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsignf0be11360e975ea1
2017-02-06 22:53 - 2017-02-06 22:53 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsigne647b0732db75097
2017-02-06 22:53 - 2017-02-06 22:53 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsigna21198d2bb67bd3f
2017-02-06 22:53 - 2017-02-06 22:53 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsign86f408cad5c5f97b
2017-02-06 22:52 - 2017-02-06 22:52 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsigna5653f44707a1502
2017-02-06 22:52 - 2017-02-06 22:52 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsign9eb03426b693cff1
2017-02-06 22:20 - 2017-02-06 22:20 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsign64cb1a38595c5cf6
2017-02-06 22:19 - 2017-02-06 22:19 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsigne18e2ed37e9278d3
2017-02-06 22:19 - 2017-02-06 22:19 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsign79b2fa339abe269d
2017-02-06 22:15 - 2017-02-06 22:15 - 00000000 ____D C:\Users\Pavel\.PhpStorm2016.3
2017-02-06 20:59 - 2017-02-06 21:00 - 02049069 _____ C:\Users\Pavel\Downloads\CrystalDiskMark5_2_1_1_UWP64.appx
2017-02-06 20:10 - 2017-02-06 20:10 - 00000017 _____ C:\Users\Pavel\AppData\Local\resmon.resmoncfg
2017-02-06 19:47 - 2017-02-06 19:47 - 00003830 _____ C:\WINDOWS\System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2017-02-06 19:46 - 2017-02-06 19:46 - 00003894 _____ C:\WINDOWS\System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2017-02-06 19:46 - 2017-02-06 19:46 - 00003866 _____ C:\WINDOWS\System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2017-02-06 19:46 - 2017-02-06 19:46 - 00003804 _____ C:\WINDOWS\System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2017-02-06 19:46 - 2017-02-06 19:46 - 00003642 _____ C:\WINDOWS\System32\Tasks\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2017-02-06 19:46 - 2017-02-06 19:46 - 00003600 _____ C:\WINDOWS\System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2017-02-06 19:45 - 2016-12-29 14:16 - 00147000 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\oemdspif.dll
2017-02-06 19:44 - 2017-02-10 18:13 - 00000000 ____D C:\WINDOWS\LastGood
2017-02-06 19:44 - 2016-12-29 14:10 - 00001951 _____ C:\WINDOWS\NvContainerRecovery.bat
2017-02-06 19:31 - 2017-02-06 19:31 - 00003390 _____ C:\WINDOWS\System32\Tasks\{296E541D-30AA-4EBF-B3BF-0316F28E15DA}
2017-02-06 19:17 - 2017-02-06 19:17 - 00000000 ____D C:\Users\Pavel\AppData\Roaming\sp6_log
2017-02-06 19:14 - 2017-02-06 19:20 - 00000000 ____D C:\WINDOWS\system32\appmgmt
2017-02-06 19:12 - 2017-02-06 19:12 - 00001250 _____ C:\Users\Pavel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\JetBrains PhpStorm 2016.3.2(64).lnk
2017-02-06 19:10 - 2017-02-06 19:22 - 398382600 _____ (NVIDIA Corporation) C:\Users\Pavel\Downloads\378.49-notebook-win10-64bit-international-whql.exe
2017-02-06 19:09 - 2017-02-06 19:09 - 00000986 _____ C:\Users\Public\Desktop\JetBrains PhpStorm 2016.3.2(64).lnk
2017-02-06 19:00 - 2017-02-06 19:09 - 208202496 _____ C:\Users\Pavel\Downloads\PhpStorm-2016.3.2.exe
2017-02-06 18:44 - 2017-02-06 18:44 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Atlassian
2017-02-06 18:41 - 2017-02-06 18:42 - 01929896 _____ (Dominik Reichl ) C:\Users\Pavel\Downloads\KeePass-1.32-Setup.exe
2017-02-06 15:33 - 2017-02-06 15:33 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsign4a7311a2e021b6f5
2017-02-06 15:02 - 2017-02-06 15:02 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsignb5dcb6d96fff5cd9
2017-02-06 15:02 - 2017-02-06 15:02 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsign515c67d6c09f10d6
2017-02-06 15:00 - 2017-02-06 15:00 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsignfa83f3074ba4415b
2017-02-06 15:00 - 2017-02-06 15:00 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsigne861be54def56507
2017-02-06 14:49 - 2017-02-06 14:49 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsign80c3fb78e88b8105
2017-02-06 14:43 - 2017-02-06 14:43 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsign23e901c8e8f0a232
2017-02-06 14:39 - 2017-02-06 14:39 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsignfa11ed934e183aca
2017-02-06 14:39 - 2017-02-06 14:39 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsign7ac23b869f94cde2
2017-02-06 14:30 - 2017-02-06 14:30 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsign53ad52b6da76c7fe
2017-02-06 14:16 - 2017-02-06 14:16 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsignbfb34adcee4c1dbc
2017-02-06 13:58 - 2017-02-06 13:58 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsignbc79ab4746534513
2017-02-06 13:58 - 2017-02-06 13:58 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsign8b9034272aefeb05
2017-02-06 13:55 - 2017-02-06 13:55 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsign1919bc9754e39642
2017-02-06 13:53 - 2017-02-06 13:53 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsignada232c8482c214d
2017-02-05 14:26 - 2017-02-05 14:26 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsign984cecf6ce65cb70
2017-02-05 13:59 - 2017-02-05 13:59 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsign673ea455b949caeb
2017-02-05 13:58 - 2017-02-05 13:58 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsign6829b281dc0f7630
2017-02-05 13:34 - 2017-02-05 13:34 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsignefbe512885c062f9
2017-02-05 13:27 - 2017-02-05 13:27 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsign590318de56e51ab8
2017-02-05 13:25 - 2017-02-05 13:25 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsign8108d2c5e86341cd
2017-02-05 13:25 - 2017-02-05 13:25 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsign1288f393c7f60d24
2017-02-05 13:18 - 2017-02-05 13:18 - 00114522 _____ C:\Users\Pavel\Downloads\webfontkit-20170205-071804.zip
2017-02-05 13:02 - 2017-02-05 13:02 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsign4c43e3e437777196
2017-02-05 13:01 - 2017-02-05 13:01 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsign5e9d9ea995855224
2017-02-05 12:59 - 2017-02-05 12:59 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsignef9ac784a4097a2a
2017-02-05 12:59 - 2017-02-05 12:59 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsign9b7c9d3c6c9520aa
2017-02-05 12:59 - 2017-02-05 12:59 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsign95d36d4be0f99f28
2017-02-04 17:53 - 2017-02-04 17:54 - 301045391 _____ C:\Users\Pavel\Downloads\ddd_A.zip
2017-02-03 00:58 - 2017-02-03 00:58 - 00000000 ____D C:\WINDOWS\LastGood.Tmp
2017-02-02 16:52 - 2017-02-02 16:52 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsign3288ddd9ddde9828
2017-02-02 16:51 - 2017-02-02 16:51 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsign9516ab51ced5fbb5
2017-02-02 16:51 - 2017-02-02 16:51 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsign531438d83dc77c82
2017-02-01 21:44 - 2017-02-01 22:02 - 1358661632 _____ C:\Users\Pavel\Desktop\en_windows_server_2016_x64_dvd_9327751.iso
2017-02-01 21:26 - 2017-02-01 21:27 - 00000000 ___SD C:\WINDOWS\system32\containers
2017-02-01 21:26 - 2017-02-01 21:27 - 00000000 ____D C:\Program Files\Hyper-V
2017-02-01 21:26 - 2017-02-01 21:26 - 00000000 ____D C:\WINDOWS\system32\BestPractices
2017-02-01 21:26 - 2017-02-01 21:26 - 00000000 ____D C:\Users\Public\Documents\Hyper-V
2017-02-01 20:19 - 2017-02-01 20:19 - 00046255 _____ C:\Users\Pavel\Desktop\ZapisovyListBReport_seps.pdf
2017-02-01 15:01 - 2017-02-01 15:01 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsignae7563f44f124aaa
2017-02-01 15:01 - 2017-02-01 15:01 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsign028c03d51245c2d2
2017-02-01 14:58 - 2017-02-01 14:58 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsign31acd494acfc55b2
2017-02-01 14:53 - 2017-02-01 14:53 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsign21b03015942c04bc
2017-02-01 14:52 - 2017-02-01 14:52 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsigne0e65bb0edb992ac
2017-02-01 14:52 - 2017-02-01 14:52 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsign9c2865da72a59cee
2017-01-31 20:35 - 2017-01-31 20:35 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsign9915cbc4121c6ac5
2017-01-31 20:34 - 2017-01-31 20:34 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsign95dfb15605dec083
2017-01-31 20:34 - 2017-01-31 20:34 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsign27f1ec34631c0821
2017-01-31 20:25 - 2017-01-31 20:25 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsign17a5e06d03761a52
2017-01-31 20:24 - 2017-01-31 20:24 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsign4a6fdd8cad3b142f
2017-01-31 20:24 - 2017-01-31 20:24 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsign25a2ab37f46851eb
2017-01-31 20:24 - 2017-01-31 20:24 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsign2510af439331caf8
2017-01-31 18:53 - 2017-01-31 18:53 - 00000000 ____D C:\Users\Pavel\Documents\Klei
2017-01-30 20:37 - 2017-01-30 20:37 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsign6c2df7d85ffc12df
2017-01-30 20:36 - 2017-01-30 20:36 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsigne2615ed3fe868f43
2017-01-30 20:36 - 2017-01-30 20:36 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsign7f8dca62ac2dc31b
2017-01-30 20:35 - 2017-01-30 20:35 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsign692a9941df8c53ed
2017-01-30 20:33 - 2017-01-30 20:33 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsign30b200a6557eeab4
2017-01-30 00:15 - 2017-01-30 00:22 - 1138392436 _____ C:\Users\Pavel\Downloads\Need for Speed Underground 2 [DoubleL].rar
2017-01-30 00:09 - 2017-01-30 00:09 - 02302483 _____ C:\Users\Pavel\Downloads\NEED.FOR.SPEED.UNDERGROUND.2.V1.2.ENG.HOODLUM.BACKUPCD.ZIP
2017-01-30 00:06 - 2017-01-30 00:06 - 02297878 _____ C:\Users\Pavel\Downloads\crack.zip
2017-01-29 23:55 - 2017-01-29 23:55 - 00158350 _____ C:\Users\Pavel\Downloads\Need.for.Speed.Underground.2.zip
2017-01-29 23:55 - 2017-01-29 23:55 - 00000000 ____D C:\Users\Pavel\Downloads\FRONTEND
2017-01-29 23:54 - 2017-01-29 23:54 - 08622362 _____ C:\Users\Pavel\Downloads\nfsug2v1-2sp.exe
2017-01-29 20:43 - 2017-01-29 20:43 - 00132364 _____ C:\Users\Pavel\Downloads\2536rozvrhls2017-pr.xlsx
2017-01-28 22:02 - 2017-01-28 22:02 - 01294609 _____ C:\Users\Pavel\Downloads\Bestaetigung-Nachbetreuung (1).pdf
2017-01-28 22:01 - 2017-01-28 22:01 - 01294915 _____ C:\Users\Pavel\Downloads\Bestaetigung-Nachbetreuung.pdf
2017-01-28 22:01 - 2017-01-28 22:01 - 00869979 _____ C:\Users\Pavel\Downloads\Hebammenberatung-Bestaetigung (13).pdf
2017-01-28 22:01 - 2017-01-28 22:01 - 00869975 _____ C:\Users\Pavel\Downloads\Hebammenberatung-Bestaetigung (12).pdf
2017-01-28 21:59 - 2017-01-28 21:59 - 00872582 _____ C:\Users\Pavel\Downloads\Modus_der_Geburt (17).pdf
2017-01-28 21:59 - 2017-01-28 21:59 - 00869975 _____ C:\Users\Pavel\Downloads\Hebammenberatung-Bestaetigung (11).pdf
2017-01-28 21:58 - 2017-01-28 21:58 - 00872581 _____ C:\Users\Pavel\Downloads\Modus_der_Geburt (16).pdf
2017-01-28 21:57 - 2017-01-28 21:57 - 00872576 _____ C:\Users\Pavel\Downloads\Modus_der_Geburt (15).pdf
2017-01-28 21:56 - 2017-01-28 21:56 - 00872614 _____ C:\Users\Pavel\Downloads\Modus_der_Geburt (13).pdf
2017-01-28 21:56 - 2017-01-28 21:56 - 00872587 _____ C:\Users\Pavel\Downloads\Modus_der_Geburt (14).pdf
2017-01-28 21:54 - 2017-01-28 21:54 - 00921108 _____ C:\Users\Pavel\Downloads\MUKI-Datenerhebungsblatt (53).pdf
2017-01-28 21:54 - 2017-01-28 21:54 - 00872575 _____ C:\Users\Pavel\Downloads\Modus_der_Geburt (12).pdf
2017-01-28 21:53 - 2017-01-28 21:53 - 00864614 _____ C:\Users\Pavel\Downloads\infoblatt (9).pdf
2017-01-28 20:32 - 2017-01-28 20:32 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsignda4910aaff906ece
2017-01-28 12:01 - 2017-01-28 12:01 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsigncf65adc96e9cb192
2017-01-28 11:57 - 2017-01-28 11:57 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsignf9ecc4502164c00e
2017-01-28 11:57 - 2017-01-28 11:57 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsignda42ed25a17893ac
2017-01-28 11:57 - 2017-01-28 11:57 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsign821ede38f5ddfd33
2017-01-28 11:57 - 2017-01-28 11:57 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsign802b55f3993e3e9a
2017-01-28 11:56 - 2017-01-28 11:56 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsigna3c04f2d2818b13c
2017-01-28 11:56 - 2017-01-28 11:56 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsign9cb8333888da2444
2017-01-28 11:56 - 2017-01-28 11:56 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsign6a9da33588272fdf
2017-01-28 11:56 - 2017-01-28 11:56 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsign45a4b9cee476e066
2017-01-28 11:54 - 2017-01-28 11:54 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsignd5f48ddb0b1f4bd3
2017-01-28 11:54 - 2017-01-28 11:54 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsign0e81d3de8339662b
2017-01-28 10:53 - 2017-01-28 10:53 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsign18c8db04a2f3f4a8
2017-01-28 10:22 - 2017-01-28 10:22 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsignac90ab6c65e7b23d
2017-01-28 10:22 - 2017-01-28 10:22 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsignab21565ee08ef872
2017-01-28 10:22 - 2017-01-28 10:22 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsign02161e1520f226c6
2017-01-27 14:42 - 2017-01-27 14:42 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsignf3062df1afd02e46
2017-01-27 14:42 - 2017-01-27 14:42 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsign80f3372effe8d8db
2017-01-27 14:41 - 2017-01-27 14:41 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsign059209ee616dc1c5
2017-01-27 11:10 - 2017-01-27 11:11 - 00003276 _____ C:\WINDOWS\System32\Tasks\OneDrive Standalone Update Task v2
2017-01-27 00:34 - 2017-02-08 10:26 - 00000000 ____D C:\WINDOWS\Minidump
2017-01-27 00:34 - 2017-01-27 00:34 - 00000000 _____ C:\WINDOWS\Minidump\012717-41828-01.dmp
2017-01-26 21:58 - 2017-01-26 21:58 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsign1a47ce29c595480a
2017-01-26 21:57 - 2017-01-26 21:57 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsign5353164ebb4161e3
2017-01-26 21:57 - 2017-01-26 21:57 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsign12d6a81fa1895fd9
2017-01-26 21:55 - 2017-01-26 21:55 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsignda296927a19de21b
2017-01-26 20:09 - 2017-01-26 20:10 - 00037050 _____ C:\Users\Pavel\Downloads\webfontkit-20170126-140949.zip
2017-01-26 19:58 - 2017-01-26 19:58 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsigna01bd7db994611bb
2017-01-26 19:58 - 2017-01-26 19:58 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsign7eb3cd112822440e
2017-01-26 19:58 - 2017-01-26 19:58 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsign003f7aab381007c9
2017-01-26 17:50 - 2017-01-26 17:50 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsign271814c58254d49f
2017-01-26 17:49 - 2017-01-26 17:49 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsign83588fbd2061874e
2017-01-26 17:49 - 2017-01-26 17:49 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsign7fc12f3722bfc612
2017-01-26 13:21 - 2017-01-26 13:21 - 00001085 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Photoshop CC 2017.lnk
2017-01-26 11:30 - 2017-01-26 11:30 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsignbf45fdeeae388715
2017-01-26 11:30 - 2017-01-26 11:30 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsign78cb263f3bd2b6c8
2017-01-26 11:29 - 2017-01-26 11:29 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsignc7f58ec64636ccd9
2017-01-26 11:11 - 2017-02-11 17:58 - 00000000 ___RD C:\Users\Pavel\Creative Cloud Files
2017-01-26 10:58 - 2017-01-26 10:58 - 00000529 _____ C:\Users\Pavel\Desktop\aaaa.txt
2017-01-25 11:38 - 2016-12-21 08:08 - 00142848 _____ (Microsoft Corporation) C:\WINDOWS\system32\poqexec.exe
2017-01-25 11:38 - 2016-12-21 05:44 - 00120320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\poqexec.exe
2017-01-24 15:02 - 2017-01-24 15:02 - 00006144 _____ C:\Users\Pavel\Downloads\getMistnostiInfo-2017-01-24-15-02.xls
2017-01-21 18:39 - 2017-01-21 18:39 - 00083583 _____ C:\Users\Pavel\Desktop\Otazky_ke_zkousce_v2.pdf
2017-01-20 12:20 - 2017-01-20 12:20 - 02550771 _____ C:\Users\Pavel\Downloads\policen_web_rechner_01.psd
2017-01-19 14:14 - 2017-01-19 14:14 - 03805551 _____ C:\Users\Pavel\Downloads\VID_20170118_210832.mp4
2017-01-19 11:18 - 2017-01-19 11:18 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsign9624eec922b21828
2017-01-19 11:18 - 2017-01-19 11:18 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsign42dc7991ec29b1a0
2017-01-19 11:18 - 2017-01-19 11:18 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsign31b9acbdf08ce307
2017-01-18 18:50 - 2017-01-18 18:50 - 00001269 _____ C:\Users\Pavel\Desktop\CrystalDiskInfo.lnk
2017-01-18 18:50 - 2017-01-18 18:50 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CrystalDiskInfo
2017-01-18 18:50 - 2017-01-18 18:50 - 00000000 ____D C:\Program Files (x86)\CrystalDiskInfo
2017-01-18 18:49 - 2017-01-18 18:50 - 03961080 _____ (Crystal Dew World ) C:\Users\Pavel\Downloads\CrystalDiskInfo7_0_5.exe
2017-01-18 18:47 - 2017-01-18 18:47 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsign8c793a84fe3f6ff4
2017-01-18 18:47 - 2017-01-18 18:47 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsign6d021d427b4f99dd
2017-01-18 18:47 - 2017-01-18 18:47 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsign68d0aecc84ecc895
2017-01-18 18:41 - 2017-01-18 18:41 - 00000000 ____D C:\Users\Pavel\AppData\Local\Tempzxpsign023dece2b8e05469
2017-01-18 17:58 - 2017-01-18 17:58 - 00001073 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe InDesign CC 2017.lnk
2017-01-18 17:46 - 2017-01-18 17:46 - 00001298 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Creative Cloud.lnk
2017-01-18 17:46 - 2017-01-18 17:46 - 00001286 _____ C:\Users\Public\Desktop\Adobe Creative Cloud.lnk
2017-01-18 12:30 - 2017-01-18 12:30 - 00000000 ____D C:\Users\Pavel\AppData\Local\NuGet
2017-01-17 15:06 - 2017-01-17 15:06 - 04014240 _____ C:\Users\Pavel\Downloads\zaverecna_prace.pdf
2017-01-17 13:38 - 2017-01-17 13:38 - 02803772 _____ C:\Users\Pavel\Downloads\VFP_-_predn (1).zip
2017-01-17 13:38 - 2017-01-17 13:38 - 00000122 _____ C:\Users\Pavel\Downloads\Škola - OneNote.url
2017-01-17 11:59 - 2017-01-17 12:00 - 00222208 _____ C:\Users\Pavel\Downloads\Optimalizace SQL dotazů.ppt
2017-01-17 05:54 - 2017-01-17 05:54 - 34717624 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvoglv64.dll
2017-01-17 05:53 - 2017-01-17 05:53 - 28209080 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvoglv32.dll
2017-01-17 05:53 - 2017-01-17 05:53 - 00951224 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll
2017-01-17 05:53 - 2017-01-17 05:53 - 00904752 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll
2017-01-17 05:53 - 2017-01-17 05:53 - 00448568 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFROpenGL.dll
2017-01-17 05:53 - 2017-01-17 05:53 - 00397240 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFROpenGL.dll
2017-01-17 05:52 - 2017-01-17 05:52 - 40134192 _____ C:\WINDOWS\system32\nvcompiler.dll
2017-01-17 05:52 - 2017-01-17 05:52 - 02961336 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll
2017-01-17 05:52 - 2017-01-17 05:52 - 02594744 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll
2017-01-17 05:52 - 2017-01-17 05:52 - 01964600 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispco6437654.dll
2017-01-17 05:52 - 2017-01-17 05:52 - 01598392 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispgenco6437654.dll
2017-01-17 05:52 - 2017-01-17 05:52 - 01047096 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll
2017-01-17 05:52 - 2017-01-17 05:52 - 00985136 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll
2017-01-17 05:51 - 2017-01-17 05:51 - 35233328 _____ C:\WINDOWS\SysWOW64\nvcompiler.dll
2017-01-17 05:51 - 2017-01-17 05:51 - 11017016 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvptxJitCompiler.dll
2017-01-17 05:51 - 2017-01-17 05:51 - 09246824 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvopencl.dll
2017-01-17 05:51 - 2017-01-17 05:51 - 09000336 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvptxJitCompiler.dll
2017-01-17 05:51 - 2017-01-17 05:51 - 00818680 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncMFTH264.dll
2017-01-17 05:51 - 2017-01-17 05:51 - 00698544 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvfatbinaryLoader.dll
2017-01-17 05:51 - 2017-01-17 05:51 - 00586784 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvfatbinaryLoader.dll
2017-01-17 05:51 - 2017-01-17 05:51 - 00407240 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncodeAPI64.dll
2017-01-17 05:51 - 2017-01-17 05:51 - 00339144 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncodeAPI.dll
2017-01-17 05:50 - 2017-01-17 05:50 - 10453152 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll
2017-01-17 05:50 - 2017-01-17 05:50 - 08847016 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll
2017-01-17 05:50 - 2017-01-17 05:50 - 03509152 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvapi.dll
2017-01-17 01:37 - 2017-01-17 01:37 - 00042296 _____ C:\WINDOWS\system32\nvinfo.pb
2017-01-17 01:37 - 2017-01-17 01:37 - 00000669 _____ C:\WINDOWS\SysWOW64\nv-vk32.json
2017-01-17 01:37 - 2017-01-17 01:37 - 00000669 _____ C:\WINDOWS\system32\nv-vk64.json
2017-01-16 19:40 - 2017-01-17 08:56 - 00000000 ____D C:\Users\Pavel\Desktop\Pokrocile_Databazove_systemy
2017-01-16 18:55 - 2017-01-16 18:56 - 06975096 _____ (Tim Kosse) C:\Users\Pavel\Downloads\FileZilla_3.24.0_win64-setup.exe
2017-01-16 18:29 - 2017-01-16 19:38 - 3091886735 _____ C:\Users\Pavel\Downloads\Pokrocile_Databazove_systemy.zip
2017-01-16 14:58 - 2017-01-16 14:58 - 00444318 _____ C:\Users\Pavel\Downloads\LtoSQL.zip
2017-01-16 14:56 - 2017-01-16 14:56 - 00468992 _____ C:\Users\Pavel\Downloads\DataWarehouse.ppt
2017-01-16 14:56 - 2017-01-16 14:56 - 00206202 _____ C:\Users\Pavel\Downloads\indexy.zip
2017-01-16 14:55 - 2017-01-16 14:55 - 00614400 _____ C:\Users\Pavel\Downloads\NoSQL.ppt
2017-01-16 14:55 - 2017-01-16 14:55 - 00041330 _____ C:\Users\Pavel\Downloads\SQL - dotazy.zip
2017-01-16 14:54 - 2017-01-16 14:54 - 00360479 _____ C:\Users\Pavel\Downloads\Firma_kostra.zip
2017-01-16 14:54 - 2017-01-16 14:54 - 00126446 _____ C:\Users\Pavel\Downloads\MVC_MVP.pptx
2017-01-16 13:40 - 2017-01-16 13:40 - 00103763 _____ C:\Users\Pavel\Downloads\27.08.16 7-52 odp. (2).gpx
2017-01-16 13:40 - 2017-01-16 13:40 - 00093335 _____ C:\Users\Pavel\Downloads\20.08.16 7-10 odp (2).gpx
2017-01-16 13:40 - 2017-01-16 13:40 - 00084441 _____ C:\Users\Pavel\Downloads\25.08.16 6-59 odp (2).gpx
2017-01-16 13:40 - 2017-01-16 13:40 - 00077630 _____ C:\Users\Pavel\Downloads\14.08.16 5-57 odp (2).gpx
2017-01-16 13:40 - 2017-01-16 13:40 - 00075262 _____ C:\Users\Pavel\Downloads\17.08.16 7-41 odp (2).gpx
2017-01-16 13:40 - 2017-01-16 13:40 - 00073406 _____ C:\Users\Pavel\Downloads\21.12.16 5-12 odp. (2).gpx
2017-01-16 13:40 - 2017-01-16 13:40 - 00058876 _____ C:\Users\Pavel\Downloads\19.10.16 3-31 odp. (2).gpx
2017-01-16 13:36 - 2017-01-16 13:36 - 00195570 _____ C:\Users\Pavel\Downloads\08.05.14 17-38 (1).gpx
2017-01-16 13:34 - 2017-01-16 13:34 - 00554501 _____ C:\Users\Pavel\Downloads\23.3.12 16-02 (2).gpx
2017-01-16 13:28 - 2017-01-16 13:28 - 00095338 _____ C:\Users\Pavel\Downloads\08.01.17 16-12 (9).gpx
2017-01-16 13:28 - 2017-01-16 13:28 - 00075139 _____ C:\Users\Pavel\Downloads\28.12.16 3-39 odp. (2).gpx
2017-01-16 13:28 - 2017-01-16 13:28 - 00067677 _____ C:\Users\Pavel\Downloads\26.12.16 2-36 odp. (2).gpx
2017-01-16 13:28 - 2017-01-16 13:28 - 00050719 _____ C:\Users\Pavel\Downloads\06.01.17 16-04 (3).gpx
2017-01-15 19:54 - 2017-01-15 19:54 - 00020391 _____ C:\Users\Pavel\Downloads\docbook.xsl
2017-01-14 20:15 - 2010-03-10 15:02 - 00102624 _____ (Mobile Action Technology Inc.) C:\WINDOWS\system32\Drivers\gpslc64.sys
2017-01-14 20:15 - 2009-12-20 15:53 - 00057216 _____ (Mobile Action Technology Inc.) C:\WINDOWS\system32\Drivers\gpslc.sys
2017-01-14 20:12 - 2017-01-14 20:14 - 08336072 _____ C:\Users\Pavel\Downloads\atrip_Driver.exe
2017-01-13 17:09 - 2017-01-13 17:09 - 00035462 _____ C:\Users\Pavel\Downloads\Protokoll-abgebrocheneHausgeburt (41).pdf
2017-01-13 17:07 - 2017-01-13 17:07 - 00035507 _____ C:\Users\Pavel\Downloads\Protokoll-abgebrocheneHausgeburt (40).pdf
2017-01-13 17:07 - 2017-01-13 17:07 - 00035504 _____ C:\Users\Pavel\Downloads\Protokoll-abgebrocheneHausgeburt (39).pdf
2017-01-13 17:05 - 2017-01-13 17:05 - 00035501 _____ C:\Users\Pavel\Downloads\Protokoll-abgebrocheneHausgeburt (38).pdf
2017-01-13 17:04 - 2017-01-13 17:04 - 00035506 _____ C:\Users\Pavel\Downloads\Protokoll-abgebrocheneHausgeburt (37).pdf
2017-01-13 17:03 - 2017-01-13 17:03 - 00035459 _____ C:\Users\Pavel\Downloads\Protokoll-abgebrocheneHausgeburt (36).pdf
2017-01-13 17:02 - 2017-01-13 17:02 - 00035454 _____ C:\Users\Pavel\Downloads\Protokoll-abgebrocheneHausgeburt (35).pdf
2017-01-13 17:02 - 2017-01-13 17:02 - 00035454 _____ C:\Users\Pavel\Downloads\Protokoll-abgebrocheneHausgeburt (34).pdf
2017-01-13 17:00 - 2017-01-13 17:00 - 00035418 _____ C:\Users\Pavel\Downloads\Protokoll-abgebrocheneHausgeburt (33).pdf
2017-01-13 16:59 - 2017-01-13 16:59 - 00035420 _____ C:\Users\Pavel\Downloads\Protokoll-abgebrocheneHausgeburt (32).pdf
2017-01-13 16:58 - 2017-01-13 16:58 - 00035445 _____ C:\Users\Pavel\Downloads\Protokoll-abgebrocheneHausgeburt (31).pdf
2017-01-13 16:57 - 2017-01-13 16:57 - 00035484 _____ C:\Users\Pavel\Downloads\Protokoll-abgebrocheneHausgeburt (28).pdf
2017-01-13 16:57 - 2017-01-13 16:57 - 00035481 _____ C:\Users\Pavel\Downloads\Protokoll-abgebrocheneHausgeburt (29).pdf
2017-01-13 16:57 - 2017-01-13 16:57 - 00035438 _____ C:\Users\Pavel\Downloads\Protokoll-abgebrocheneHausgeburt (30).pdf
2017-01-13 16:56 - 2017-01-13 16:56 - 00035433 _____ C:\Users\Pavel\Downloads\Protokoll-abgebrocheneHausgeburt (26).pdf
2017-01-13 16:56 - 2017-01-13 16:56 - 00035412 _____ C:\Users\Pavel\Downloads\Protokoll-abgebrocheneHausgeburt (27).pdf
2017-01-13 16:51 - 2017-01-13 16:51 - 00035277 _____ C:\Users\Pavel\Downloads\Protokoll-abgebrocheneHausgeburt (25).pdf
2017-01-13 15:51 - 2017-01-13 15:51 - 00035603 _____ C:\Users\Pavel\Downloads\Protokoll-abgebrocheneHausgeburt (24).pdf
2017-01-13 15:50 - 2017-01-13 15:50 - 00035595 _____ C:\Users\Pavel\Downloads\Protokoll-abgebrocheneHausgeburt (22).pdf
2017-01-13 15:50 - 2017-01-13 15:50 - 00035578 _____ C:\Users\Pavel\Downloads\Protokoll-abgebrocheneHausgeburt (23).pdf
2017-01-13 15:47 - 2017-01-13 15:47 - 00035530 _____ C:\Users\Pavel\Downloads\Protokoll-abgebrocheneHausgeburt (21).pdf
2017-01-13 15:47 - 2017-01-13 15:47 - 00035528 _____ C:\Users\Pavel\Downloads\Protokoll-abgebrocheneHausgeburt (18).pdf
2017-01-13 15:47 - 2017-01-13 15:47 - 00035526 _____ C:\Users\Pavel\Downloads\Protokoll-abgebrocheneHausgeburt (20).pdf
2017-01-13 15:47 - 2017-01-13 15:47 - 00035521 _____ C:\Users\Pavel\Downloads\Protokoll-abgebrocheneHausgeburt (19).pdf
2017-01-13 15:46 - 2017-01-13 15:46 - 00035508 _____ C:\Users\Pavel\Downloads\Protokoll-abgebrocheneHausgeburt (17).pdf
2017-01-13 15:46 - 2017-01-13 15:46 - 00035508 _____ C:\Users\Pavel\Downloads\Protokoll-abgebrocheneHausgeburt (16).pdf
2017-01-13 15:38 - 2017-01-13 15:38 - 00035602 _____ C:\Users\Pavel\Downloads\Protokoll-abgebrocheneHausgeburt (15).pdf
2017-01-13 15:35 - 2017-01-13 15:35 - 00035472 _____ C:\Users\Pavel\Downloads\Protokoll-abgebrocheneHausgeburt (14).pdf
2017-01-13 15:35 - 2017-01-13 15:35 - 00035472 _____ C:\Users\Pavel\Downloads\Protokoll-abgebrocheneHausgeburt (13).pdf
2017-01-13 15:35 - 2017-01-13 15:35 - 00035472 _____ C:\Users\Pavel\Downloads\Protokoll-abgebrocheneHausgeburt (12).pdf
2017-01-13 15:34 - 2017-01-13 15:34 - 00035472 _____ C:\Users\Pavel\Downloads\Protokoll-abgebrocheneHausgeburt (11).pdf
2017-01-13 15:33 - 2017-01-13 15:33 - 00035472 _____ C:\Users\Pavel\Downloads\Protokoll-abgebrocheneHausgeburt (9).pdf
2017-01-13 15:33 - 2017-01-13 15:33 - 00035472 _____ C:\Users\Pavel\Downloads\Protokoll-abgebrocheneHausgeburt (10).pdf
2017-01-13 15:31 - 2017-01-13 15:31 - 00035566 _____ C:\Users\Pavel\Downloads\Protokoll-abgebrocheneHausgeburt (7).pdf
2017-01-13 15:31 - 2017-01-13 15:31 - 00035472 _____ C:\Users\Pavel\Downloads\Protokoll-abgebrocheneHausgeburt (8).pdf
2017-01-13 15:29 - 2017-01-13 15:29 - 00035584 _____ C:\Users\Pavel\Downloads\Protokoll-abgebrocheneHausgeburt (6).pdf
2017-01-13 15:27 - 2017-01-13 15:27 - 00035594 _____ C:\Users\Pavel\Downloads\Protokoll-abgebrocheneHausgeburt (5).pdf
2017-01-13 15:25 - 2017-01-13 15:25 - 00035581 _____ C:\Users\Pavel\Downloads\Protokoll-abgebrocheneHausgeburt (4).pdf
2017-01-13 15:25 - 2017-01-13 15:25 - 00035566 _____ C:\Users\Pavel\Downloads\Protokoll-abgebrocheneHausgeburt (3).pdf
2017-01-13 15:24 - 2017-01-13 15:24 - 00035566 _____ C:\Users\Pavel\Downloads\Protokoll-abgebrocheneHausgeburt (2).pdf
2017-01-13 15:05 - 2017-01-13 15:05 - 00035486 _____ C:\Users\Pavel\Downloads\Protokoll-abgebrocheneHausgeburt (1).pdf
2017-01-13 14:59 - 2017-01-13 14:59 - 00053827 _____ C:\Users\Pavel\Downloads\Protokoll-abgebrocheneHausgeburt_O¦ęHG.pdf
2017-01-13 14:58 - 2017-01-13 14:58 - 00035496 _____ C:\Users\Pavel\Downloads\Protokoll-abgebrocheneHausgeburt.pdf

TinTon
Návštěvník
Návštěvník
Příspěvky: 9
Registrován: 11 úno 2017 17:18

Re: Pomalý počítač - prosím o kontrolu logu (log je rozdělen

#7 Příspěvek od TinTon »

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2017-02-12 15:32 - 2016-02-12 19:28 - 00000000 ____D C:\Users\Pavel\AppData\Roaming\FileZilla
2017-02-12 15:32 - 2016-02-11 16:18 - 00000000 ___RD C:\Users\Pavel\prace
2017-02-12 15:26 - 2016-02-11 16:37 - 00000000 ____D C:\Users\Pavel\AppData\Roaming\Skype
2017-02-12 10:33 - 2016-10-04 18:33 - 00000000 ____D C:\WINDOWS\system32\SleepStudy
2017-02-11 17:58 - 2016-02-12 18:57 - 00000000 ____D C:\Users\Pavel\AppData\Local\Adobe
2017-02-11 17:57 - 2016-02-12 19:08 - 00000000 ___RD C:\Users\Pavel\Dropbox
2017-02-11 17:53 - 2016-10-04 18:36 - 00000180 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2017-02-11 17:53 - 2016-02-11 16:09 - 00000000 __SHD C:\Users\Pavel\IntelGraphicsProfiles
2017-02-11 17:48 - 2016-10-04 19:03 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2017-02-11 17:48 - 2016-07-16 07:04 - 00524288 _____ C:\WINDOWS\system32\config\BBI
2017-02-11 17:40 - 2016-11-24 11:17 - 00000000 ____D C:\Users\Pavel\AppData\Roaming\pgAdmin
2017-02-11 17:17 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\AppReadiness
2017-02-11 15:39 - 2016-07-16 12:47 - 00000000 ___HD C:\Program Files\WindowsApps
2017-02-11 13:37 - 2016-02-13 00:45 - 00000000 ____D C:\Users\Pavel\AppData\Roaming\Atlassian
2017-02-11 12:55 - 2016-02-14 11:11 - 00000335 _____ C:\Users\Pavel\Desktop\notes.txt
2017-02-10 18:20 - 2016-11-15 11:55 - 00000000 ____D C:\temp
2017-02-10 18:20 - 2016-07-16 12:45 - 00000000 ____D C:\WINDOWS\INF
2017-02-10 13:34 - 2016-02-14 16:53 - 00001480 _____ C:\Users\Pavel\AppData\Local\Adobe Uložit pro web 13.0 Prefs
2017-02-09 22:14 - 2016-02-12 19:40 - 00000000 ____D C:\Users\Pavel\AppData\Local\CrashDumps
2017-02-09 20:08 - 2016-04-17 13:22 - 00000000 ___RD C:\Program Files (x86)\Skype
2017-02-09 20:08 - 2016-02-11 16:36 - 00000000 ____D C:\ProgramData\Skype
2017-02-09 16:17 - 2016-11-21 10:59 - 00000000 ____D C:\Users\Pavel\AppData\LocalLow\Mozilla
2017-02-09 16:16 - 2016-11-18 16:13 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2017-02-09 16:15 - 2016-10-04 18:36 - 00000200 _____ C:\WINDOWS\system32\{EC94D02F-D200-4428-9531-05AF7F9799CB}.bat
2017-02-08 15:01 - 2016-02-11 16:09 - 00000000 ____D C:\Users\Pavel\AppData\Roaming\Adobe
2017-02-08 14:55 - 2016-02-14 14:00 - 00000000 ____D C:\Program Files\Common Files\Adobe
2017-02-08 14:51 - 2016-02-14 14:00 - 00000000 ____D C:\Program Files\Adobe
2017-02-08 13:03 - 2016-11-21 21:41 - 00000000 ____D C:\Program Files (x86)\Mozilla Thunderbird
2017-02-08 11:22 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\Help
2017-02-08 11:15 - 2015-09-10 03:08 - 00019300 _____ C:\WINDOWS\system32\results.xml
2017-02-08 11:07 - 2016-05-11 11:08 - 00000214 _____ C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job
2017-02-08 11:05 - 2016-06-16 22:09 - 00000000 ____D C:\Users\Pavel\Desktop\Ovladače grafiky
2017-02-08 11:05 - 2015-09-10 02:49 - 00000000 ____D C:\Program Files (x86)\Intel
2017-02-08 11:03 - 2015-09-10 03:06 - 00000000 ____D C:\Intel
2017-02-08 10:25 - 2016-02-23 20:47 - 1083109040 _____ C:\WINDOWS\MEMORY.DMP
2017-02-08 09:38 - 2016-02-11 17:19 - 00000000 ____D C:\Program Files (x86)\Dropbox
2017-02-07 11:03 - 2016-10-04 18:42 - 00000000 ____D C:\Users\Pavel
2017-02-07 10:47 - 2016-10-04 18:32 - 00371000 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2017-02-06 21:00 - 2016-02-11 16:09 - 00000000 ____D C:\Users\Pavel\AppData\Local\Packages
2017-02-06 19:57 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\LiveKernelReports
2017-02-06 19:29 - 2016-02-14 21:53 - 00000000 ____D C:\Program Files (x86)\Steam
2017-02-06 19:18 - 2016-02-14 11:27 - 00000000 ____D C:\ProgramData\Logishrd
2017-02-06 19:15 - 2016-02-14 12:44 - 00000000 ____D C:\Users\Pavel\AppData\Local\avocode
2017-02-06 19:14 - 2016-03-07 21:22 - 00000000 ____D C:\Users\Pavel\AppData\Local\FluxSoftware
2017-02-06 19:09 - 2016-04-09 15:35 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\JetBrains
2017-02-06 19:09 - 2016-02-12 19:37 - 00000000 ____D C:\Program Files (x86)\JetBrains
2017-02-06 18:45 - 2016-02-11 16:25 - 00000000 ____D C:\Program Files (x86)\Atlassian
2017-02-06 18:42 - 2016-02-13 00:49 - 00001172 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\KeePass.lnk
2017-02-06 18:42 - 2016-02-13 00:49 - 00000000 ____D C:\Program Files (x86)\KeePass Password Safe
2017-02-06 18:39 - 2016-02-11 16:22 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FileZilla FTP Client
2017-02-06 18:39 - 2016-02-11 16:22 - 00000000 ____D C:\Program Files\FileZilla FTP Client
2017-02-06 18:37 - 2016-02-11 16:55 - 00000000 ____D C:\ProgramData\Atlassian
2017-02-06 13:34 - 2016-02-29 10:19 - 00000600 _____ C:\Users\Pavel\AppData\Local\PUTTY.RND
2017-02-03 02:04 - 2016-02-13 00:39 - 00002272 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2017-02-02 01:57 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\rescache
2017-02-01 21:30 - 2016-02-13 00:47 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2017-02-01 21:26 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\schemas
2017-02-01 21:21 - 2017-01-11 17:26 - 04407808 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdvgm.exe
2017-02-01 21:21 - 2016-10-28 19:11 - 00025776 _____ (Microsoft Corporation) C:\WINDOWS\system32\sbresources.dll
2017-02-01 21:21 - 2016-10-04 19:25 - 00431616 _____ (Microsoft Corporation) C:\WINDOWS\system32\VmEmulatedStorage.dll
2017-02-01 21:21 - 2016-10-04 19:25 - 00366592 _____ (Microsoft Corporation) C:\WINDOWS\system32\vmsmb.dll
2017-02-01 21:21 - 2016-10-04 19:25 - 00244224 _____ (Microsoft Corporation) C:\WINDOWS\system32\vmusrv.dll
2017-02-01 21:21 - 2016-10-04 19:25 - 00199168 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetMgmtIF.dll
2017-02-01 21:21 - 2016-10-04 19:25 - 00062976 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContainerUpdater.exe
2017-02-01 21:21 - 2016-07-16 12:43 - 01569750 _____ C:\WINDOWS\system32\WindowsVirtualization.V2.mof
2017-02-01 21:21 - 2016-07-16 12:43 - 00028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\RdvgmProxy.dll
2017-02-01 21:21 - 2016-07-16 12:43 - 00024576 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\passthruparser.sys
2017-02-01 21:21 - 2016-07-16 12:43 - 00021504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RdvgmProxy.dll
2017-02-01 21:21 - 2016-07-16 12:41 - 00152064 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vmbusr.sys
2017-02-01 21:21 - 2016-07-16 12:41 - 00016384 _____ (Microsoft Corporation) C:\WINDOWS\system32\vmbuspiper.dll
2017-02-01 21:21 - 2016-07-16 12:36 - 00000000 ____D C:\WINDOWS\CbsTemp
2017-02-01 21:20 - 2017-01-11 17:26 - 01616384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vmswitch.sys
2017-02-01 21:20 - 2016-10-28 19:11 - 00710144 _____ (Microsoft Corporation) C:\WINDOWS\system32\vsconfig.dll
2017-02-01 21:20 - 2016-10-28 19:11 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\system32\HostGuardianServiceClientResources.dll
2017-02-01 21:20 - 2016-10-28 19:10 - 02069688 _____ (Microsoft Corporation) C:\WINDOWS\system32\vmwp.exe
2017-02-01 21:20 - 2016-10-04 19:25 - 01312256 _____ (Microsoft Corporation) C:\WINDOWS\system32\vmuidevices.dll
2017-02-01 21:20 - 2016-10-04 19:25 - 01241600 _____ (Microsoft Corporation) C:\WINDOWS\system32\vmemulateddevices.dll
2017-02-01 21:20 - 2016-10-04 19:25 - 00724992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Wnv.sys
2017-02-01 21:20 - 2016-10-04 19:25 - 00448512 _____ (Microsoft Corporation) C:\WINDOWS\system32\VmEmulatedNic.dll
2017-02-01 21:20 - 2016-10-04 19:25 - 00434688 _____ (Microsoft Corporation) C:\WINDOWS\system32\VmSynthNic.dll
2017-02-01 21:20 - 2016-10-04 19:25 - 00395776 _____ (Microsoft Corporation) C:\WINDOWS\system32\vmsynthstor.dll
2017-02-01 21:20 - 2016-10-04 19:25 - 00347136 _____ (Microsoft Corporation) C:\WINDOWS\system32\vmicvdev.dll
2017-02-01 21:20 - 2016-10-04 19:25 - 00212992 _____ (Microsoft Corporation) C:\WINDOWS\system32\vmdynmem.dll
2017-02-01 21:20 - 2016-10-04 19:25 - 00201216 _____ (Microsoft Corporation) C:\WINDOWS\system32\vmsynthfcvdev.dll
2017-02-01 21:20 - 2016-10-04 19:25 - 00185856 _____ (Microsoft Corporation) C:\WINDOWS\system32\vmsif.dll
2017-02-01 21:20 - 2016-10-04 19:25 - 00178176 _____ (Microsoft Corporation) C:\WINDOWS\system32\vmserial.dll
2017-02-01 21:20 - 2016-10-04 19:25 - 00144896 _____ (Microsoft Corporation) C:\WINDOWS\system32\vmdebug.dll
2017-02-01 21:20 - 2016-10-04 19:25 - 00143872 _____ (Microsoft Corporation) C:\WINDOWS\system32\vmbusvdev.dll
2017-02-01 21:20 - 2016-10-04 19:25 - 00135168 _____ (Microsoft Corporation) C:\WINDOWS\system32\vpcievdev.dll
2017-02-01 21:20 - 2016-10-04 19:25 - 00097792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storvsp.sys
2017-02-01 21:20 - 2016-10-04 19:25 - 00064000 _____ (Microsoft Corporation) C:\WINDOWS\system32\wnvapi.dll
2017-02-01 21:20 - 2016-10-04 19:25 - 00033632 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vmsproxy.sys
2017-02-01 21:20 - 2016-10-04 19:25 - 00019456 _____ (Microsoft Corporation) C:\WINDOWS\system32\vmsifproxystub.dll
2017-02-01 21:20 - 2016-07-16 12:43 - 00779776 _____ (Microsoft Corporation) C:\WINDOWS\system32\vmconnect.exe
2017-02-01 21:20 - 2016-07-16 12:43 - 00336296 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmEngUM.dll
2017-02-01 21:20 - 2016-07-16 12:43 - 00197120 _____ (Microsoft Corporation) C:\WINDOWS\system32\CCG.exe
2017-02-01 21:20 - 2016-07-16 12:43 - 00144967 _____ C:\WINDOWS\system32\virtmgmt.msc
2017-02-01 21:20 - 2016-07-16 12:43 - 00140288 _____ (Microsoft Corporation) C:\WINDOWS\system32\HgsClientWmi.dll
2017-02-01 21:20 - 2016-07-16 12:43 - 00075616 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtpm.dll
2017-02-01 21:20 - 2016-07-16 12:43 - 00063488 _____ (Microsoft Corporation) C:\WINDOWS\system32\HyperVSysprepProvider.dll
2017-02-01 21:20 - 2016-07-16 12:43 - 00027136 _____ (Microsoft Corporation) C:\WINDOWS\system32\RdvGpuInfo.dll
2017-02-01 21:20 - 2016-07-16 12:43 - 00026624 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vhdparser.sys
2017-02-01 21:20 - 2016-07-16 12:43 - 00022528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\lunparser.sys
2017-02-01 21:20 - 2016-07-16 12:41 - 00103424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Synth3dVsp.sys
2017-02-01 21:20 - 2016-07-16 12:41 - 00046592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pcip.sys
2017-02-01 21:19 - 2017-01-11 17:26 - 02316800 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdp4vs.dll
2017-02-01 21:19 - 2017-01-11 17:26 - 00553984 _____ (Microsoft Corporation) C:\WINDOWS\system32\HostNetSvc.dll
2017-02-01 21:19 - 2017-01-11 17:26 - 00321536 _____ (Microsoft Corporation) C:\WINDOWS\system32\PrivateCloudHNSPlugin.dll
2017-02-01 21:19 - 2016-12-11 13:23 - 01911296 _____ (Microsoft Corporation) C:\WINDOWS\system32\vmcompute.exe
2017-02-01 21:19 - 2016-11-09 08:07 - 02801152 _____ (Microsoft Corporation) C:\WINDOWS\system32\vmchipset.dll
2017-02-01 21:19 - 2016-10-28 19:11 - 14422528 _____ (Microsoft Corporation) C:\WINDOWS\system32\vmms.exe
2017-02-01 21:19 - 2016-10-28 19:11 - 00444416 _____ (Microsoft Corporation) C:\WINDOWS\system32\vmcompute.dll
2017-02-01 21:19 - 2016-10-28 19:11 - 00036352 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActivationVdev.dll
2017-02-01 21:19 - 2016-10-04 19:25 - 00480256 _____ (Microsoft Corporation) C:\WINDOWS\system32\vmprox.dll
2017-02-01 21:19 - 2016-10-04 19:25 - 00312320 _____ (Microsoft Corporation) C:\WINDOWS\system32\vmsynth3dvideo.dll
2017-02-01 21:19 - 2016-10-04 19:25 - 00294400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Vid.sys
2017-02-01 21:19 - 2016-10-04 19:25 - 00178688 _____ (Microsoft Corporation) C:\WINDOWS\system32\vmicrdv.dll
2017-02-01 21:19 - 2016-10-04 19:25 - 00149504 _____ (Microsoft Corporation) C:\WINDOWS\system32\vmtpm.dll
2017-02-01 21:19 - 2016-10-04 19:25 - 00141824 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpupvdev.dll
2017-02-01 21:19 - 2016-10-04 19:25 - 00095744 _____ (Microsoft Corporation) C:\WINDOWS\system32\vmwpctrl.dll
2017-02-01 21:19 - 2016-10-04 19:25 - 00085504 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vpcivsp.sys
2017-02-01 21:19 - 2016-10-04 19:25 - 00044032 _____ (Microsoft Corporation) C:\WINDOWS\system32\vid.dll
2017-02-01 21:19 - 2016-07-16 12:43 - 01149404 _____ C:\WINDOWS\system32\WindowsHyperVCluster.V2.mof
2017-02-01 21:19 - 2016-07-16 12:43 - 00248320 _____ (Microsoft Corporation) C:\WINDOWS\system32\RemoteFileBrowse.dll
2017-02-01 21:19 - 2016-07-16 12:43 - 00207360 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\winnat.sys
2017-02-01 21:19 - 2016-07-16 12:43 - 00193024 _____ (Microsoft Corporation) C:\WINDOWS\system32\CCGLaunchPad.dll
2017-02-01 21:19 - 2016-07-16 12:43 - 00128128 _____ (Microsoft Corporation) C:\WINDOWS\system32\vmsp.exe
2017-02-01 21:19 - 2016-07-16 12:43 - 00050176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pvhdparser.sys
2017-02-01 21:19 - 2016-07-16 12:43 - 00030720 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ramparser.sys
2017-02-01 21:19 - 2016-07-16 12:43 - 00018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\synth3dvideoproxy.dll
2017-01-29 14:39 - 2016-12-14 13:12 - 00000000 ____D C:\Users\Pavel\AppData\Local\FileZilla
2017-01-27 11:11 - 2016-02-11 16:09 - 00002425 _____ C:\Users\Pavel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2017-01-27 11:11 - 2016-02-11 16:09 - 00000000 ___RD C:\Users\Pavel\OneDrive
2017-01-26 13:30 - 2016-02-12 19:00 - 00000000 ____D C:\Program Files (x86)\Adobe
2017-01-26 13:21 - 2016-02-14 14:04 - 00000000 ____D C:\Users\Pavel\Documents\Adobe
2017-01-26 11:28 - 2016-02-14 14:16 - 00000000 ____D C:\ProgramData\regid.1986-12.com.adobe
2017-01-26 11:08 - 2016-02-14 13:54 - 00000000 __RHD C:\Users\Pavel\info@business-webdesign.cz Creative Cloud Files
2017-01-26 11:08 - 2015-09-10 03:09 - 00000000 ____D C:\ProgramData\boost_interprocess
2017-01-25 15:59 - 2016-02-13 00:39 - 00000000 ____D C:\Program Files (x86)\Google
2017-01-24 09:51 - 2016-10-04 19:03 - 00003516 _____ C:\WINDOWS\System32\Tasks\GyazoUpdateTaskMachineDaily
2017-01-24 09:51 - 2016-10-04 19:03 - 00003380 _____ C:\WINDOWS\System32\Tasks\GyazoUpdateTaskMachine
2017-01-24 09:51 - 2016-02-11 16:25 - 00000000 ____D C:\Program Files (x86)\Gyazo
2017-01-20 21:47 - 2016-02-14 11:13 - 00002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2017-01-20 03:28 - 2016-07-16 12:47 - 00000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2017-01-20 03:25 - 2016-02-13 00:50 - 00000000 ____D C:\Program Files\Microsoft Office 15
2017-01-18 17:58 - 2016-02-12 19:00 - 00000000 ____D C:\ProgramData\Adobe
2017-01-18 14:08 - 2016-05-11 14:41 - 01048576 _____ C:\Users\Pavel\aut_zavody_log.ldf
2017-01-17 16:21 - 2016-10-07 13:26 - 00000000 ____D C:\Users\Pavel\Documents\Visual Studio 2015
2017-01-17 16:19 - 2016-12-25 13:52 - 00000000 ____D C:\Users\Pavel\Desktop\ProjectManagement
2017-01-16 13:21 - 2017-01-11 15:21 - 00000000 ____D C:\Users\Pavel\Documents\sporttracker
2017-01-15 08:34 - 2015-09-10 02:38 - 00000000 __RHD C:\Users\Public\AccountPictures
2017-01-14 23:45 - 2016-07-16 12:47 - 00000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2017-01-14 23:45 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2017-01-14 23:45 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\system32\oobe
2017-01-14 23:45 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\ShellExperiences
2017-01-14 23:45 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\Provisioning
2017-01-14 23:45 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\PolicyDefinitions

==================== Files in the root of some directories =======

2017-02-08 15:00 - 2017-02-08 15:00 - 0000033 _____ () C:\Users\Pavel\AppData\Roaming\AdobeWLCMCache.dat
2016-02-14 16:53 - 2017-02-10 13:34 - 0001480 _____ () C:\Users\Pavel\AppData\Local\Adobe Uložit pro web 13.0 Prefs
2016-02-29 10:19 - 2017-02-06 13:34 - 0000600 _____ () C:\Users\Pavel\AppData\Local\PUTTY.RND
2017-02-06 20:10 - 2017-02-06 20:10 - 0000017 _____ () C:\Users\Pavel\AppData\Local\resmon.resmoncfg
2016-12-11 18:11 - 2016-12-11 18:12 - 0019456 _____ () C:\Users\Pavel\AppData\Local\WebpageIcons.db
2016-10-04 18:37 - 2016-10-04 18:37 - 0000000 ____H () C:\ProgramData\DP45977C.lfl

Files to move or delete:
====================
C:\Users\Pavel\edb_npgsql.exe
C:\Users\Pavel\edb_pgjdbc.exe
C:\Users\Pavel\edb_psqlodbc.exe
C:\Users\Pavel\postgresql_96.exe


Some files in TEMP:
====================
2016-12-25 18:00 - 2016-12-25 18:00 - 0026624 _____ () C:\Users\Pavel\AppData\Local\Temp\bf95f17f36f34dee81ff3db3b492e9fd.dll
2016-12-25 22:18 - 2016-12-25 22:18 - 0026624 _____ () C:\Users\Pavel\AppData\Local\Temp\f580c39cc33448be8a66f5df7b116006.dll
2016-10-21 10:39 - 2016-10-21 10:40 - 0737856 _____ (Oracle Corporation) C:\Users\Pavel\AppData\Local\Temp\jre-8u111-windows-au.exe
2017-02-06 19:28 - 2015-07-23 01:44 - 0783504 _____ (NVIDIA Corporation) C:\Users\Pavel\AppData\Local\Temp\nvStInst.exe
2017-02-06 22:17 - 2017-02-06 22:17 - 0040448 ____N () C:\Users\Pavel\AppData\Local\Temp\proxy_vole2259239538439008405.dll
2016-11-21 09:51 - 2015-07-09 23:46 - 0032768 _____ () C:\Users\Pavel\AppData\Local\Temp\shutdown1479718316.exe
2016-11-11 09:00 - 2017-02-09 20:05 - 44048864 _____ (Skype Technologies S.A.) C:\Users\Pavel\AppData\Local\Temp\SkypeSetup.exe
2016-12-08 15:46 - 2016-12-08 15:46 - 0010472 ____N () C:\Users\Pavel\AppData\Local\Temp\winp4034250694234484584.dll
2016-11-12 11:50 - 2016-11-12 11:50 - 0010472 _____ () C:\Users\Pavel\AppData\Local\Temp\winp5832338279659114971.dll
2016-12-16 14:50 - 2016-12-16 14:50 - 0010472 ____N () C:\Users\Pavel\AppData\Local\Temp\winp760832935355554013.dll
2016-11-04 11:01 - 2016-11-04 11:01 - 0010472 _____ () C:\Users\Pavel\AppData\Local\Temp\winp8998734649884619428.dll

==================== Bamital & volsnap ======================

(There is no automatic fix for files that do not pass verification.)

C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\wininit.exe => File is digitally signed
C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\SysWOW64\explorer.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\SysWOW64\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\SysWOW64\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\SysWOW64\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
C:\WINDOWS\SysWOW64\dnsapi.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed



===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===

==================== Drive and Memory info ===================



==================== MBR and Partition Table ==================


==================== Scheduled Tasks (whitelisted) ==================

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe
Task: C:\WINDOWS\Tasks\DropboxUpdateTaskMachineCore.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
Task: C:\WINDOWS\Tasks\DropboxUpdateTaskMachineUA.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe

==================== Alternate Data Streams (whitelisted) ==================


==================== Security Center ==================

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}



===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)


***** Velikost "Plochy" *****

Velikost slozky "C:\Users\Pavel\Desktop" je 66652 MB.


***** Startup Programs *****


***** Firewall rules *****

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]


***** System Restore *****

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]


==================== End Of Log ==============================

TinTon
Návštěvník
Návštěvník
Příspěvky: 9
Registrován: 11 úno 2017 17:18

Re: Pomalý počítač - prosím o kontrolu logu (log je rozdělen

#8 Příspěvek od TinTon »

Přidávám zip s addition.txt
Přílohy
Addition.zip
(18.83 KiB) Staženo 56 x

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119671
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Pomalý počítač - prosím o kontrolu logu (log je rozdělen

#9 Příspěvek od Rudy »

Otevřte poznámkový blok a zkopírujte do něj:
Start
C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
C:\WINDOWS\system32\{EC94D02F-D200-4428-9531-05AF7F9799CB}.bat
C:\ProgramData\DP45977C.lfl
C:\Users\Pavel\edb_npgsql.exe
C:\Users\Pavel\edb_pgjdbc.exe
C:\Users\Pavel\edb_psqlodbc.exe
C:\Users\Pavel\postgresql_96.exe
C:\Users\Pavel\AppData\Local\Temp
C:\WINDOWS\LastGood.Tmp

EmptyTemp:
End
Uložte na plochu jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

TinTon
Návštěvník
Návštěvník
Příspěvky: 9
Registrován: 11 úno 2017 17:18

Re: Pomalý počítač - prosím o kontrolu logu (log je rozdělen

#10 Příspěvek od TinTon »

Chtěl bych se zeptat, mám na pc PostgreSQL server. Většina souborů se jmenem podobají PostgreSQL. Nezpustobí to problemi se serverem, nebo to je pouze shoda?

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119671
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Pomalý počítač - prosím o kontrolu logu (log je rozdělen

#11 Příspěvek od Rudy »

Tak to nevím. FRST to označil za soubory k smazání. Pokud je to něco, co znáte, vymažte to z fixlistu.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

TinTon
Návštěvník
Návštěvník
Příspěvky: 9
Registrován: 11 úno 2017 17:18

Re: Pomalý počítač - prosím o kontrolu logu (log je rozdělen

#12 Příspěvek od TinTon »

Programy který se tvářili jako PostgreSQL jsem nechal zkontrolovat na https://virustotal.com/ a objevila se mi u všech jenom jedna chyba



Fix result of Farbar Recovery Scan Tool (x64) Version: 14-02-2017
Ran by Pavel (14-02-2017 08:29:16) Run:1
Running from C:\Users\Pavel\Desktop
Loaded Profiles: Pavel (Available Profiles: Pavel)
Boot Mode: Normal
==============================================

fixlist content:
*****************
Start
C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
C:\WINDOWS\system32\{EC94D02F-D200-4428-9531-05AF7F9799CB}.bat
C:\ProgramData\DP45977C.lfl
C:\Users\Pavel\AppData\Local\Temp
C:\WINDOWS\LastGood.Tmp

EmptyTemp:
End
*****************

C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat => moved successfully
C:\WINDOWS\system32\{EC94D02F-D200-4428-9531-05AF7F9799CB}.bat => moved successfully
C:\ProgramData\DP45977C.lfl => moved successfully

"C:\Users\Pavel\AppData\Local\Temp" folder move:

Could not move "C:\Users\Pavel\AppData\Local\Temp" => Scheduled to move on reboot.

C:\WINDOWS\LastGood.Tmp => moved successfully

=========== EmptyTemp: ==========

BITS transfer queue => 0 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 56223630 B
Java, Flash, Steam htmlcache => 149096641 B
Windows/system/drivers => 164415898 B
Edge => 1540163 B
Chrome => 896018180 B
Firefox => 338877102 B
Opera => 0 B

Temp, IE cache, history, cookies, recent:
Default => 29764 B
Users => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 0 B
systemprofile32 => 128 B
LocalService => 0 B
NetworkService => 35438 B
Pavel => 36700160284 B

RecycleBin => 26036136792 B
EmptyTemp: => 59.9 GB temporary data Removed.

================================

Result of scheduled files to move (Boot Mode: Normal) (Date&Time: 14-02-2017 09:20:15)

C:\Users\Pavel\AppData\Local\Temp => moved successfully

==== End of Fixlog 09:20:41 ====

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119671
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Pomalý počítač - prosím o kontrolu logu (log je rozdělen

#13 Příspěvek od Rudy »

Smazáno. Nastala nějaká změna?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

TinTon
Návštěvník
Návštěvník
Příspěvky: 9
Registrován: 11 úno 2017 17:18

Re: Pomalý počítač - prosím o kontrolu logu (log je rozdělen

#14 Příspěvek od TinTon »

zatím se to zdá vpohodě, bez zasekávání, uvidím během dlouhodobějšího používání. Děkuju mockrát za rady! :)

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119671
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Pomalý počítač - prosím o kontrolu logu (log je rozdělen

#15 Příspěvek od Rudy »

Rádo se stalo! :)
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Odpovědět