Stránka 1 z 1

Prosím o preventivní kontrolu, děkuju

Napsal: 08 srp 2015 08:00
od Hruzka
Hooodně dlouhou dobu jsem neprováděla žádnou údržbu NTBku přestože se postupně začínal víc a víc zpomalovat :oops: ... nyní jsem ho trochu vyčistila, v rámci letního úklidu prosím i o preventivní kontrolu logu zda je vše v pořádku, děkuju! :)


Logfile of random's system information tool 1.10 (written by random/random)
Run by Jarka at 2015-08-08 08:45:42
Microsoft Windows 8.1
System drive C: has 33 GB (7%) free of 461 GB
Total RAM: 3535 MB (41% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 8:46:24, on 8. 8. 2015
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.17840)
Boot mode: Normal

Running processes:
C:\Users\Jarka\AppData\Roaming\Spotify\SpotifyWebHelper.exe
C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BtTray.exe
C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\Last.fm\Last.fm Scrobbler.exe
C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe
C:\Users\Jarka\AppData\Roaming\BitTorrent\BitTorrent.exe
C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MMLoadDrv.exe
C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MMLoadDrv.exe
C:\Program Files (x86)\Winamp\winamp.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\Jarka.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.bing.com?pc=CMNTDFJS
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.bing.com?pc=CMNTDFJS
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_45\bin\ssv.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_45\bin\jp2ssv.dll
O2 - BHO: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [QLBController] C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe /start
O4 - HKLM\..\Run: [BtTray] "c:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BtTray.exe"
O4 - HKLM\..\Run: [CLMLServer_For_P2G8] "c:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe"
O4 - HKLM\..\Run: [CLVirtualDrive] "c:\Program Files (x86)\CyberLink\Power2Go8\VirtualDrive.exe" /R
O4 - HKLM\..\Run: [RemoteControl10] "c:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe"
O4 - HKLM\..\Run: [YouCam Mirage] "c:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe"
O4 - HKLM\..\Run: [YouCam Tray] "c:\Program Files (x86)\CyberLink\YouCam\YouCamTray.exe" /s
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [Family Tree Builder Update] C:\Program Files (x86)\MyHeritage\Bin\FTBCheckUpdates.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [Spotify Web Helper] "C:\Users\Jarka\AppData\Roaming\Spotify\SpotifyWebHelper.exe"
O4 - HKCU\..\Run: [Spotify] "C:\Users\Jarka\AppData\Roaming\Spotify\Spotify.exe" -autostart -minimized
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKUS\S-1-5-21-1134397532-792521543-4184498135-500\..\Run: [Power2GoExpress8] "c:\Program Files (x86)\CyberLink\Power2Go8\Power2GoExpress8.exe" (User 'Administrator')
O4 - HKUS\S-1-5-21-1134397532-792521543-4184498135-500\..\RunOnce: [WAB Migrate] %ProgramFiles%\Windows Mail\wab.exe /Upgrade (User 'Administrator')
O4 - Startup: Dropbox.lnk = Jarka\AppData\Roaming\Dropbox\bin\Dropbox.exe
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\Program Files (x86)\Microsoft Office\Office12\EXCEL.EXE/3000
O9 - Extra button: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-103 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-102 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\Program Files (x86)\Microsoft Office\Office12\REFIEBAR.DLL
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O17 - HKLM\System\CCS\Services\Tcpip\..\{0C40C9EE-04D1-4D28-89D3-3B0E9B42E1C0}: NameServer = 8.8.8.8
O17 - HKLM\System\CS1\Services\Tcpip\..\{0C40C9EE-04D1-4D28-89D3-3B0E9B42E1C0}: NameServer = 8.8.8.8
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Windows\SysWow64\skype4com.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\WINDOWS\system32\atiesrxx.exe (file missing)
O23 - Service: AMD FUEL Service - Advanced Micro Devices, Inc. - C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: BlueSoleilCS - IVT Corporation - C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BlueSoleilCS.exe
O23 - Service: BsHelpCS - IVT Corporation - C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BsHelpCS.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: HP Support Assistant Service - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe
O23 - Service: hpHotkeyMonitor - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HPHotkeyMonitor.exe
O23 - Service: HP Software Framework Service (hpqwmiex) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
O23 - Service: @oem41.inf,%hpservice_desc%;HP Service (hpsrv) - Unknown owner - C:\WINDOWS\system32\Hpservice.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: PandoraService (PanService) - Pandora.TV - C:\Program Files (x86)\PANDORA.TV\PanService\PandoraService.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\stlang64.dll,-10122 (STacSV) - IDT, Inc. - C:\Program Files\IDT\WDM\STacSV64.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Validity VCS Fingerprint Service (vcsFPService) - Validity Sensors, Inc. - C:\Windows\system32\vcsFPService.exe
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 12472 bytes

======Listing Processes======






wininit.exe
winlogon.exe

C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
"dwm.exe"
C:\WINDOWS\system32\atiesrxx.exe
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted
atieclxx
"C:\Program Files\IDT\WDM\STacSV64.exe"
C:\WINDOWS\system32\Hpservice.exe
C:\WINDOWS\system32\svchost.exe -k NetworkService
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe" /launchService
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
taskhostex.exe
dashost.exe {c070a580-6382-4748-a25414779c88adec}
"C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HPHotkeyMonitor.exe"
C:\WINDOWS\SysWOW64\svchost.exe -k hpdevmgmt
"C:\Program Files (x86)\PANDORA.TV\PanService\PandoraService.exe"
C:\WINDOWS\system32\svchost.exe -k imgsvc
C:\Windows\system32\vcsFPService.exe
"C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BsHelpCS.exe"
"C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe"
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-ce70fb81-8b17-40d3-a744-912778721683 -SystemEventPortName:HostProcess-db36ad6e-23c7-4207-9c2e-0f05e2b483bc -IoCancelEventPortName:HostProcess-32941d77-7c0f-408a-80be-b0e4f3134092 -NonStateChangingEventPortName:HostProcess-cef24263-249f-488f-9d04-57adf3e64021 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:39a5f9bd-7ad4-4e96-9492-499e9ef7d874 -DeviceGroupId:
C:\WINDOWS\System32\svchost.exe -k LocalServicePeerNet
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-908cb4c0-24fb-4e36-961a-ae21d79398d8 -SystemEventPortName:HostProcess-ebdced96-2cd5-43a1-bf68-b3db16105382 -IoCancelEventPortName:HostProcess-e96ba77c-bd5c-47b8-b494-acc01ce4d423 -NonStateChangingEventPortName:HostProcess-edefbbec-95b6-4228-815b-f5a215ff2a3c -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:8de25a4e-6822-4b1b-b3aa-b9c6af7a0532 -DeviceGroupId:WudfDefaultDevicePool
"C:\Windows\System32\SettingSyncHost.exe" -Embedding
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
C:\Windows\System32\skydrive.exe -Embedding
"C:\Program Files (x86)\PANDORA.TV\PanService\PanProcess.exe" PanProcess
C:\WINDOWS\system32\DllHost.exe /Processid:{30D49246-D217-465F-B00B-AC9DDD652EB7}
"C:\Program Files\IDT\WDM\sttray64.exe"
"C:\Users\Jarka\AppData\Roaming\Spotify\SpotifyWebHelper.exe"
"C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE"
"C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe"
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM" PriorityLow
"C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe" /start
"C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BtTray.exe"
"C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe"
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
"C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe" 0
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe"
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\Program Files (x86)\Last.fm\Last.fm Scrobbler.exe"
"C:\Program Files\CCleaner\CCleaner64.exe" /monitor
"C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe"
taskhost.exe
"C:\Users\Jarka\AppData\Roaming\BitTorrent\BitTorrent.exe" "magnet:?xt=urn:btih:0c698a0bfd8c88546c841ba1a046bc56385d0451&dn=The+Elder+Scrolls+V+Skyrim+Legendary+Edition-WaLMaRT&tr=udp%3A%2F%2Ftracker.openbittorrent.com%3A80&tr=udp%3A%2F%2Fopen.demonii.com%3A1337&tr=udp%3A%2F%2Ftracker.coppersurfer.tk%3A6969&tr=udp%3A%2F%2Fexodus.desync.com%3A6969"
"C:\Program Files (x86)\Google\Chrome\Application\44.0.2403.130\Installer\setup.exe" --on-os-upgrade --multi-install --chrome --system-level --verbose-logging
explorer.exe
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MMLoadDrv.exe" -h -k
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MMLoadDrv.exe" -h -k

"C:\Program Files (x86)\Winamp\winamp.exe" -Embedding
"C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BlueSoleilCS.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="8448.0.315690078\1205232013" --supports-dual-gpus=false --gpu-driver-bug-workarounds=2,22,45 --gpu-vendor-id=0x1002 --gpu-device-id=0x9992 --gpu-driver-vendor="Advanced Micro Devices, Inc." --gpu-driver-version=13.251.9001.1001 --ignored=" --type=renderer " /prefetch:822062411
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="AffiliationBasedMatching/Enabled/AudioProcessing48kHzSupport/Default/*AutofillEnabled/Default/*AutofillFieldMetadata/Enabled/BrowserBlacklist/Enabled/CaptivePortalInterstitial/Disabled/*ChildAccountDetection/Disabled/ChromeDashboard/Default/*DomRel-Enable/enable/*EmbeddedSearch/Group3 pct:10c stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnableSessionCrashedBubbleUI/Disabled/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GoogleNow/Enable/*IconNTP/Default/*NewProfileManagement/Enabled/NewVideoRendererTrial/Enabled/OmniboxBundledExperimentV1/NewSuggestType_A5_Stable_R2/*PasswordGeneration/Disabled/PasswordLinkInSettings/Enabled/PermissionBubbleRollout/Enabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/*QUIC/EnabledNoIdForLargePopulation/*RefreshTokenDeviceId/Enabled/*RememberCertificateErrorDecisions/Default/ReportCertificateErrors/ShowAndPossiblySend/*ReportCertificateErrorsOverHttp/UploadReportsOverHttp/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/*SdchPersistence/Default/SessionRestoreBackgroundLoading/Restore/*SettingsEnforcement/enforce_always_with_extensions_and_dse/SyncBackingDatabase32K/Enabled/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_58/*UMA-Uniformity-Trial-10-Percent/group_03/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_04/*UMA-Uniformity-Trial-5-Percent/group_12/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*VoiceTrigger/Install/WebRTC-UDPSocketNonBlockingIO/Default/" --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=1 --gpu-rasterization-msaa-sample-count=8 --use-image-texture-target=3553 --channel="8448.1.1799979639\858178364" --font-cache-shared-handle=2296 /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="AffiliationBasedMatching/Enabled/AudioProcessing48kHzSupport/Default/*AutofillEnabled/Default/*AutofillFieldMetadata/Enabled/BrowserBlacklist/Enabled/CaptivePortalInterstitial/Disabled/*ChildAccountDetection/Disabled/ChromeDashboard/Default/*DomRel-Enable/enable/*EmbeddedSearch/Group3 pct:10c stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnableSessionCrashedBubbleUI/Disabled/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GoogleNow/Enable/*IconNTP/Default/*NewProfileManagement/Enabled/NewVideoRendererTrial/Enabled/OmniboxBundledExperimentV1/NewSuggestType_A5_Stable_R2/*PasswordGeneration/Disabled/PasswordLinkInSettings/Enabled/PermissionBubbleRollout/Enabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/*QUIC/EnabledNoIdForLargePopulation/*RefreshTokenDeviceId/Enabled/*RememberCertificateErrorDecisions/Default/ReportCertificateErrors/ShowAndPossiblySend/*ReportCertificateErrorsOverHttp/UploadReportsOverHttp/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/*SdchPersistence/Default/SessionRestoreBackgroundLoading/Restore/*SettingsEnforcement/enforce_always_with_extensions_and_dse/SyncBackingDatabase32K/Enabled/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_58/*UMA-Uniformity-Trial-10-Percent/group_03/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_04/*UMA-Uniformity-Trial-5-Percent/group_12/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*VoiceTrigger/Install/WebRTC-UDPSocketNonBlockingIO/Default/" --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=1 --gpu-rasterization-msaa-sample-count=8 --use-image-texture-target=3553 --channel="8448.2.1169459825\381990346" --font-cache-shared-handle=2316 /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="AffiliationBasedMatching/Enabled/AudioProcessing48kHzSupport/Default/*AutofillEnabled/Default/*AutofillFieldMetadata/Enabled/BrowserBlacklist/Enabled/CaptivePortalInterstitial/Disabled/*ChildAccountDetection/Disabled/ChromeDashboard/Default/*DomRel-Enable/enable/*EmbeddedSearch/Group3 pct:10c stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnableSessionCrashedBubbleUI/Disabled/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GoogleNow/Enable/*IconNTP/Default/*NewProfileManagement/Enabled/NewVideoRendererTrial/Enabled/OmniboxBundledExperimentV1/NewSuggestType_A5_Stable_R2/*PasswordGeneration/Disabled/PasswordLinkInSettings/Enabled/PermissionBubbleRollout/Enabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/*QUIC/EnabledNoIdForLargePopulation/*RefreshTokenDeviceId/Enabled/*RememberCertificateErrorDecisions/Default/ReportCertificateErrors/ShowAndPossiblySend/*ReportCertificateErrorsOverHttp/UploadReportsOverHttp/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/*SdchPersistence/Default/SessionRestoreBackgroundLoading/Restore/*SettingsEnforcement/enforce_always_with_extensions_and_dse/SyncBackingDatabase32K/Enabled/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_58/*UMA-Uniformity-Trial-10-Percent/group_03/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_04/*UMA-Uniformity-Trial-5-Percent/group_12/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*VoiceTrigger/Install/WebRTC-UDPSocketNonBlockingIO/Default/" --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=1 --gpu-rasterization-msaa-sample-count=8 --use-image-texture-target=3553 --channel="8448.3.335119532\662962838" --font-cache-shared-handle=2528 /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="AffiliationBasedMatching/Enabled/AudioProcessing48kHzSupport/Default/*AutofillEnabled/Default/*AutofillFieldMetadata/Enabled/BrowserBlacklist/Enabled/CaptivePortalInterstitial/Disabled/*ChildAccountDetection/Disabled/ChromeDashboard/Default/*DomRel-Enable/enable/*EmbeddedSearch/Group3 pct:10c stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnableSessionCrashedBubbleUI/Disabled/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GoogleNow/Enable/*IconNTP/Default/*NewProfileManagement/Enabled/NewVideoRendererTrial/Enabled/OmniboxBundledExperimentV1/NewSuggestType_A5_Stable_R2/*PasswordGeneration/Disabled/PasswordLinkInSettings/Enabled/PermissionBubbleRollout/Enabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/*QUIC/EnabledNoIdForLargePopulation/*RefreshTokenDeviceId/Enabled/*RememberCertificateErrorDecisions/Default/ReportCertificateErrors/ShowAndPossiblySend/*ReportCertificateErrorsOverHttp/UploadReportsOverHttp/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/*SdchPersistence/Default/SessionRestoreBackgroundLoading/Restore/*SettingsEnforcement/enforce_always_with_extensions_and_dse/SyncBackingDatabase32K/Enabled/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_58/*UMA-Uniformity-Trial-10-Percent/group_03/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_04/*UMA-Uniformity-Trial-5-Percent/group_12/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*VoiceTrigger/Install/WebRTC-UDPSocketNonBlockingIO/Default/" --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=1 --gpu-rasterization-msaa-sample-count=8 --use-image-texture-target=3553 --channel="8448.4.1203631437\904682944" --font-cache-shared-handle=2616 /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="AffiliationBasedMatching/Enabled/AudioProcessing48kHzSupport/Default/*AutofillEnabled/Default/*AutofillFieldMetadata/Enabled/BrowserBlacklist/Enabled/CaptivePortalInterstitial/Disabled/*ChildAccountDetection/Disabled/ChromeDashboard/Default/*DomRel-Enable/enable/*EmbeddedSearch/Group3 pct:10c stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnableSessionCrashedBubbleUI/Disabled/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GoogleNow/Enable/*IconNTP/Default/*NewProfileManagement/Enabled/NewVideoRendererTrial/Enabled/OmniboxBundledExperimentV1/NewSuggestType_A5_Stable_R2/*PasswordGeneration/Disabled/PasswordLinkInSettings/Enabled/PermissionBubbleRollout/Enabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/*QUIC/EnabledNoIdForLargePopulation/*RefreshTokenDeviceId/Enabled/*RememberCertificateErrorDecisions/Default/ReportCertificateErrors/ShowAndPossiblySend/*ReportCertificateErrorsOverHttp/UploadReportsOverHttp/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/*SdchPersistence/Default/SessionRestoreBackgroundLoading/Restore/*SettingsEnforcement/enforce_always_with_extensions_and_dse/SyncBackingDatabase32K/Enabled/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_58/*UMA-Uniformity-Trial-10-Percent/group_03/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_04/*UMA-Uniformity-Trial-5-Percent/group_12/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*VoiceTrigger/Install/WebRTC-UDPSocketNonBlockingIO/Default/" --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=1 --gpu-rasterization-msaa-sample-count=8 --use-image-texture-target=3553 --channel="8448.5.726396645\1213842235" --font-cache-shared-handle=2632 /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="AffiliationBasedMatching/Enabled/AudioProcessing48kHzSupport/Default/*AutofillEnabled/Default/*AutofillFieldMetadata/Enabled/BrowserBlacklist/Enabled/CaptivePortalInterstitial/Disabled/*ChildAccountDetection/Disabled/ChromeDashboard/Default/*DomRel-Enable/enable/*EmbeddedSearch/Group3 pct:10c stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnableSessionCrashedBubbleUI/Disabled/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GoogleNow/Enable/*IconNTP/Default/*NewProfileManagement/Enabled/NewVideoRendererTrial/Enabled/OmniboxBundledExperimentV1/NewSuggestType_A5_Stable_R2/*PasswordGeneration/Disabled/PasswordLinkInSettings/Enabled/PermissionBubbleRollout/Enabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/*QUIC/EnabledNoIdForLargePopulation/*RefreshTokenDeviceId/Enabled/*RememberCertificateErrorDecisions/Default/ReportCertificateErrors/ShowAndPossiblySend/*ReportCertificateErrorsOverHttp/UploadReportsOverHttp/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/*SdchPersistence/Default/SessionRestoreBackgroundLoading/Restore/*SettingsEnforcement/enforce_always_with_extensions_and_dse/SyncBackingDatabase32K/Enabled/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_58/*UMA-Uniformity-Trial-10-Percent/group_03/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_04/*UMA-Uniformity-Trial-5-Percent/group_12/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*VoiceTrigger/Install/WebRTC-UDPSocketNonBlockingIO/Default/" --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=1 --gpu-rasterization-msaa-sample-count=8 --use-image-texture-target=3553 --channel="8448.6.2129232873\922481304" --font-cache-shared-handle=2868 /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="AffiliationBasedMatching/Enabled/AudioProcessing48kHzSupport/Default/*AutofillEnabled/Default/*AutofillFieldMetadata/Enabled/BrowserBlacklist/Enabled/CaptivePortalInterstitial/Disabled/*ChildAccountDetection/Disabled/ChromeDashboard/Default/*DomRel-Enable/enable/*EmbeddedSearch/Group3 pct:10c stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnableSessionCrashedBubbleUI/Disabled/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GoogleNow/Enable/*IconNTP/Default/*NewProfileManagement/Enabled/NewVideoRendererTrial/Enabled/OmniboxBundledExperimentV1/NewSuggestType_A5_Stable_R2/*PasswordGeneration/Disabled/PasswordLinkInSettings/Enabled/PermissionBubbleRollout/Enabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/*QUIC/EnabledNoIdForLargePopulation/*RefreshTokenDeviceId/Enabled/*RememberCertificateErrorDecisions/Default/ReportCertificateErrors/ShowAndPossiblySend/*ReportCertificateErrorsOverHttp/UploadReportsOverHttp/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/*SdchPersistence/Default/SessionRestoreBackgroundLoading/Restore/*SettingsEnforcement/enforce_always_with_extensions_and_dse/SyncBackingDatabase32K/Enabled/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_58/*UMA-Uniformity-Trial-10-Percent/group_03/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_04/*UMA-Uniformity-Trial-5-Percent/group_12/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*VoiceTrigger/Install/WebRTC-UDPSocketNonBlockingIO/Default/" --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=1 --gpu-rasterization-msaa-sample-count=8 --use-image-texture-target=3553 --channel="8448.8.1716180065\1025136566" --font-cache-shared-handle=3172 /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="AffiliationBasedMatching/Enabled/AudioProcessing48kHzSupport/Default/*AutofillEnabled/Default/*AutofillFieldMetadata/Enabled/BrowserBlacklist/Enabled/CaptivePortalInterstitial/Disabled/*ChildAccountDetection/Disabled/ChromeDashboard/Default/*DomRel-Enable/enable/*EmbeddedSearch/Group3 pct:10c stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnableSessionCrashedBubbleUI/Disabled/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GoogleNow/Enable/*IconNTP/Default/*NewProfileManagement/Enabled/NewVideoRendererTrial/Enabled/*OmniboxBundledExperimentV1/NewSuggestType_A5_Stable_R2/*PasswordGeneration/Disabled/PasswordLinkInSettings/Enabled/PermissionBubbleRollout/Enabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/*QUIC/EnabledNoIdForLargePopulation/*RefreshTokenDeviceId/Enabled/*RememberCertificateErrorDecisions/Default/ReportCertificateErrors/ShowAndPossiblySend/*ReportCertificateErrorsOverHttp/UploadReportsOverHttp/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/*SdchPersistence/Default/SessionRestoreBackgroundLoading/Restore/*SettingsEnforcement/enforce_always_with_extensions_and_dse/SyncBackingDatabase32K/Enabled/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_58/*UMA-Uniformity-Trial-10-Percent/group_03/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_04/*UMA-Uniformity-Trial-5-Percent/group_12/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*VoiceTrigger/Install/WebRTC-UDPSocketNonBlockingIO/Default/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=1 --gpu-rasterization-msaa-sample-count=8 --use-image-texture-target=3553 --channel="8448.10.979907997\1911025150" --font-cache-shared-handle=3640 /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="*AffiliationBasedMatching/Enabled/AudioProcessing48kHzSupport/Default/*AutofillEnabled/Default/*AutofillFieldMetadata/Enabled/*BrowserBlacklist/Enabled/CaptivePortalInterstitial/Disabled/*ChildAccountDetection/Disabled/ChromeDashboard/Default/*DomRel-Enable/enable/*EmbeddedSearch/Group3 pct:10c stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnableSessionCrashedBubbleUI/Disabled/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GoogleNow/Enable/*IconNTP/Default/*NewProfileManagement/Enabled/NewVideoRendererTrial/Enabled/*OmniboxBundledExperimentV1/NewSuggestType_A5_Stable_R2/*PasswordGeneration/Disabled/PasswordLinkInSettings/Enabled/PermissionBubbleRollout/Enabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/*QUIC/EnabledNoIdForLargePopulation/*RefreshTokenDeviceId/Enabled/*RememberCertificateErrorDecisions/Default/ReportCertificateErrors/ShowAndPossiblySend/*ReportCertificateErrorsOverHttp/UploadReportsOverHttp/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/*SdchPersistence/Default/SessionRestoreBackgroundLoading/Restore/*SettingsEnforcement/enforce_always_with_extensions_and_dse/*SyncBackingDatabase32K/Enabled/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_58/*UMA-Uniformity-Trial-10-Percent/group_03/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_04/*UMA-Uniformity-Trial-5-Percent/group_12/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*VoiceTrigger/Install/WebRTC-UDPSocketNonBlockingIO/Default/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=1 --gpu-rasterization-msaa-sample-count=8 --use-image-texture-target=3553 --channel="8448.13.508046621\2146238513" --font-cache-shared-handle=4628 /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="*AffiliationBasedMatching/Enabled/AudioProcessing48kHzSupport/Default/*AutofillEnabled/Default/*AutofillFieldMetadata/Enabled/*BrowserBlacklist/Enabled/CaptivePortalInterstitial/Disabled/*ChildAccountDetection/Disabled/ChromeDashboard/Default/*DomRel-Enable/enable/*EmbeddedSearch/Group3 pct:10c stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnableSessionCrashedBubbleUI/Disabled/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GoogleNow/Enable/*IconNTP/Default/*NewProfileManagement/Enabled/NewVideoRendererTrial/Enabled/*OmniboxBundledExperimentV1/NewSuggestType_A5_Stable_R2/*PasswordGeneration/Disabled/PasswordLinkInSettings/Enabled/PermissionBubbleRollout/Enabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/*QUIC/EnabledNoIdForLargePopulation/*RefreshTokenDeviceId/Enabled/*RememberCertificateErrorDecisions/Default/ReportCertificateErrors/ShowAndPossiblySend/*ReportCertificateErrorsOverHttp/UploadReportsOverHttp/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/*SdchPersistence/Default/SessionRestoreBackgroundLoading/Restore/*SettingsEnforcement/enforce_always_with_extensions_and_dse/*SyncBackingDatabase32K/Enabled/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_58/*UMA-Uniformity-Trial-10-Percent/group_03/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_04/*UMA-Uniformity-Trial-5-Percent/group_12/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*VoiceTrigger/Install/WebRTC-UDPSocketNonBlockingIO/Default/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=1 --gpu-rasterization-msaa-sample-count=8 --use-image-texture-target=3553 --channel="8448.14.444398247\193200062" --font-cache-shared-handle=4576 /prefetch:673131151
"C:\Users\Jarka\Desktop\RSITx64.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="*AffiliationBasedMatching/Enabled/AudioProcessing48kHzSupport/Default/*AutofillEnabled/Default/*AutofillFieldMetadata/Enabled/*BrowserBlacklist/Enabled/CaptivePortalInterstitial/Disabled/*ChildAccountDetection/Disabled/ChromeDashboard/Default/*DomRel-Enable/enable/*EmbeddedSearch/Group3 pct:10c stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnableSessionCrashedBubbleUI/Disabled/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GoogleNow/Enable/*IconNTP/Default/*NewProfileManagement/Enabled/NewVideoRendererTrial/Enabled/*OmniboxBundledExperimentV1/NewSuggestType_A5_Stable_R2/*PasswordGeneration/Disabled/PasswordLinkInSettings/Enabled/PermissionBubbleRollout/Enabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/*QUIC/EnabledNoIdForLargePopulation/*RefreshTokenDeviceId/Enabled/*RememberCertificateErrorDecisions/Default/ReportCertificateErrors/ShowAndPossiblySend/*ReportCertificateErrorsOverHttp/UploadReportsOverHttp/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/*SdchPersistence/Default/SessionRestoreBackgroundLoading/Restore/*SettingsEnforcement/enforce_always_with_extensions_and_dse/*SyncBackingDatabase32K/Enabled/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_58/*UMA-Uniformity-Trial-10-Percent/group_03/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_04/*UMA-Uniformity-Trial-5-Percent/group_12/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*VoiceTrigger/Install/WebRTC-UDPSocketNonBlockingIO/Default/" --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=1 --gpu-rasterization-msaa-sample-count=8 --use-image-texture-target=3553 --channel="8448.17.1344362573\616578120" --font-cache-shared-handle=4480 /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="*AffiliationBasedMatching/Enabled/AudioProcessing48kHzSupport/Default/*AutofillEnabled/Default/*AutofillFieldMetadata/Enabled/*BrowserBlacklist/Enabled/CaptivePortalInterstitial/Disabled/*ChildAccountDetection/Disabled/ChromeDashboard/Default/*DomRel-Enable/enable/*EmbeddedSearch/Group3 pct:10c stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnableSessionCrashedBubbleUI/Disabled/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GoogleNow/Enable/*IconNTP/Default/*NewProfileManagement/Enabled/NewVideoRendererTrial/Enabled/*OmniboxBundledExperimentV1/NewSuggestType_A5_Stable_R2/*PasswordGeneration/Disabled/PasswordLinkInSettings/Enabled/PermissionBubbleRollout/Enabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/*QUIC/EnabledNoIdForLargePopulation/*RefreshTokenDeviceId/Enabled/*RememberCertificateErrorDecisions/Default/ReportCertificateErrors/ShowAndPossiblySend/*ReportCertificateErrorsOverHttp/UploadReportsOverHttp/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/*SdchPersistence/Default/SessionRestoreBackgroundLoading/Restore/*SettingsEnforcement/enforce_always_with_extensions_and_dse/*SyncBackingDatabase32K/Enabled/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_58/*UMA-Uniformity-Trial-10-Percent/group_03/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_04/*UMA-Uniformity-Trial-5-Percent/group_12/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*VoiceTrigger/Install/WebRTC-UDPSocketNonBlockingIO/Default/" --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=1 --gpu-rasterization-msaa-sample-count=8 --use-image-texture-target=3553 --channel="8448.18.1080818902\254869821" --font-cache-shared-handle=4488 /prefetch:673131151

======Scheduled tasks folder======

C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\WINDOWS\tasks\Synaptics TouchPad Enhancements.job - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_45\bin\ssv.dll [2015-05-03 460384]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_45\bin\jp2ssv.dll [2015-05-03 172640]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E76FD755-C1BA-4DCB-9F13-99BD91223ADE}]
HP Network Check Helper - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2012-07-10 351136]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2013-10-30 2804976]
"SysTrayApp"=C:\Program Files\IDT\WDM\sttray64.exe [2012-09-20 1664000]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"=C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2013-03-14 3672640]
"Spotify Web Helper"=C:\Users\Jarka\AppData\Roaming\Spotify\SpotifyWebHelper.exe [2015-07-24 2017848]
"Spotify"=C:\Users\Jarka\AppData\Roaming\Spotify\Spotify.exe [2015-07-24 7574584]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2015-07-17 8418584]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [2014-07-04 766688]
"QLBController"=C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe [2012-08-29 334240]
""= []
"BtTray"=c:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BtTray.exe [2012-08-16 364032]
"CLMLServer_For_P2G8"=c:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe [2012-06-08 111120]
"CLVirtualDrive"=c:\Program Files (x86)\CyberLink\Power2Go8\VirtualDrive.exe [2012-07-24 491120]
"RemoteControl10"=c:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe [2012-03-29 91432]
"YouCam Mirage"=c:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe [2012-08-31 136488]
"YouCam Tray"=c:\Program Files (x86)\CyberLink\YouCam\YouCamTray.exe [2012-08-31 167024]
"GrooveMonitor"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [2009-02-26 30040]
"HP Software Update"=C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe [2010-06-09 49208]
"Family Tree Builder Update"=C:\Program Files (x86)\MyHeritage\Bin\FTBCheckUpdates.exe [2013-11-12 2532864]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2015-04-30 334896]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2015-07-29 6109776]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
HP Digital Imaging Monitor.lnk - C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe

C:\Users\Jarka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Dropbox.lnk - C:\Users\Jarka\AppData\Roaming\Dropbox\bin\Dropbox.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"VIDC.YUY2"=msyuv.dll
"vidc.i420"=iyuv_32.dll
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"VIDC.YVYU"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"vidc.msvc"=msvidc32.dll
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"VIDC.LAGS"=lagarith.dll
"VIDC.X264"=x264vfw64.dll
"VIDC.XVID"=xvidvfw.dll
"msacm.ac3acm"=ac3acm.acm
"msacm.l3codecp"=l3codecp.acm
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2015-08-08 08:45:43 ----D---- C:\Program Files\trend micro
2015-08-08 08:45:42 ----D---- C:\rsit
2015-08-07 18:04:56 ----A---- C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys
2015-08-07 18:04:39 ----A---- C:\WINDOWS\system32\drivers\mwac.sys
2015-08-07 18:04:39 ----A---- C:\WINDOWS\system32\drivers\mbamchameleon.sys
2015-08-07 18:04:39 ----A---- C:\WINDOWS\system32\drivers\mbam.sys
2015-08-07 18:04:38 ----D---- C:\ProgramData\Malwarebytes
2015-08-07 18:04:38 ----D---- C:\Program Files (x86)\Malwarebytes Anti-Malware
2015-08-07 17:12:05 ----D---- C:\Program Files\CCleaner
2015-08-06 15:15:20 ----D---- C:\Users\Jarka\AppData\Roaming\MPC-HC
2015-07-30 12:05:45 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe
2015-07-30 04:45:47 ----A---- C:\WINDOWS\SYSWOW64\PresentationCFFRasterizerNative_v0300.dll
2015-07-30 04:45:47 ----A---- C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2015-07-29 22:05:34 ----A---- C:\WINDOWS\SYSWOW64\mshtmled.dll
2015-07-29 22:05:32 ----A---- C:\WINDOWS\SYSWOW64\msfeeds.dll
2015-07-29 22:05:32 ----A---- C:\WINDOWS\SYSWOW64\iedkcs32.dll
2015-07-29 22:05:32 ----A---- C:\WINDOWS\system32\inseng.dll
2015-07-29 22:05:32 ----A---- C:\WINDOWS\system32\ie4uinit.exe
2015-07-29 22:05:31 ----A---- C:\WINDOWS\SYSWOW64\vbscript.dll
2015-07-29 22:05:31 ----A---- C:\WINDOWS\SYSWOW64\dxtrans.dll
2015-07-29 22:05:29 ----A---- C:\WINDOWS\system32\iedkcs32.dll
2015-07-29 22:05:27 ----A---- C:\WINDOWS\SYSWOW64\jscript.dll
2015-07-29 22:05:27 ----A---- C:\WINDOWS\SYSWOW64\dxtmsft.dll
2015-07-29 22:05:27 ----A---- C:\WINDOWS\system32\vbscript.dll
2015-07-29 22:05:26 ----A---- C:\WINDOWS\system32\msfeeds.dll
2015-07-29 22:05:26 ----A---- C:\WINDOWS\system32\dxtrans.dll
2015-07-29 22:05:23 ----A---- C:\WINDOWS\SYSWOW64\webcheck.dll
2015-07-29 22:05:22 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2015-07-29 22:05:22 ----A---- C:\WINDOWS\SYSWOW64\MshtmlDac.dll
2015-07-29 22:05:22 ----A---- C:\WINDOWS\SYSWOW64\inetcomm.dll
2015-07-29 22:05:22 ----A---- C:\WINDOWS\SYSWOW64\ieapfltr.dll
2015-07-29 22:05:21 ----A---- C:\WINDOWS\system32\jscript.dll
2015-07-29 22:05:20 ----A---- C:\WINDOWS\system32\dxtmsft.dll
2015-07-29 22:05:17 ----A---- C:\WINDOWS\system32\webcheck.dll
2015-07-29 22:05:17 ----A---- C:\WINDOWS\system32\mshtmled.dll
2015-07-29 22:05:16 ----A---- C:\WINDOWS\system32\jscript9diag.dll
2015-07-29 22:05:15 ----A---- C:\WINDOWS\system32\ieapfltr.dll
2015-07-29 22:05:13 ----A---- C:\WINDOWS\system32\MshtmlDac.dll
2015-07-29 22:05:11 ----A---- C:\WINDOWS\system32\ieui.dll
2015-07-29 22:05:10 ----A---- C:\WINDOWS\system32\wininet.dll
2015-07-29 22:05:10 ----A---- C:\WINDOWS\system32\inetcomm.dll
2015-07-29 22:04:59 ----A---- C:\WINDOWS\system32\actxprxy.dll
2015-07-29 22:04:58 ----A---- C:\WINDOWS\SYSWOW64\iepeers.dll
2015-07-29 22:04:58 ----A---- C:\WINDOWS\system32\iepeers.dll
2015-07-29 22:04:52 ----A---- C:\WINDOWS\SYSWOW64\actxprxy.dll
2015-07-29 22:04:51 ----A---- C:\WINDOWS\SYSWOW64\jscript9diag.dll
2015-07-29 22:04:50 ----A---- C:\WINDOWS\SYSWOW64\ieui.dll
2015-07-29 22:04:49 ----A---- C:\WINDOWS\SYSWOW64\msrating.dll
2015-07-29 22:04:49 ----A---- C:\WINDOWS\system32\msrating.dll
2015-07-29 22:02:42 ----A---- C:\WINDOWS\system32\drivers\WdFilter.sys
2015-07-29 22:02:39 ----A---- C:\WINDOWS\system32\drivers\WdNisDrv.sys
2015-07-29 22:02:39 ----A---- C:\WINDOWS\system32\drivers\WdBoot.sys
2015-07-29 22:02:34 ----A---- C:\WINDOWS\SYSWOW64\winshfhc.dll
2015-07-29 22:02:34 ----A---- C:\WINDOWS\system32\winshfhc.dll
2015-07-29 21:42:08 ----A---- C:\WINDOWS\system32\win32k.sys
2015-07-29 21:42:03 ----A---- C:\WINDOWS\SYSWOW64\kerberos.dll
2015-07-29 21:42:03 ----A---- C:\WINDOWS\SYSWOW64\certcli.dll
2015-07-29 21:42:03 ----A---- C:\WINDOWS\system32\rpcrt4.dll
2015-07-29 21:42:03 ----A---- C:\WINDOWS\system32\msv1_0.dll
2015-07-29 21:42:03 ----A---- C:\WINDOWS\system32\kerberos.dll
2015-07-29 21:42:03 ----A---- C:\WINDOWS\system32\drivers\mrxsmb20.sys
2015-07-29 21:42:03 ----A---- C:\WINDOWS\system32\drivers\mrxsmb10.sys
2015-07-29 21:42:03 ----A---- C:\WINDOWS\system32\drivers\mrxsmb.sys
2015-07-29 21:42:03 ----A---- C:\WINDOWS\system32\drivers\ksecpkg.sys
2015-07-29 21:42:03 ----A---- C:\WINDOWS\system32\drivers\cng.sys
2015-07-29 21:42:03 ----A---- C:\WINDOWS\system32\certcli.dll
2015-07-29 21:42:02 ----A---- C:\WINDOWS\SYSWOW64\rpcrt4.dll
2015-07-29 21:42:02 ----A---- C:\WINDOWS\SYSWOW64\msv1_0.dll
2015-07-29 21:42:02 ----A---- C:\WINDOWS\system32\lsasrv.dll
2015-07-29 21:41:55 ----A---- C:\WINDOWS\SYSWOW64\wer.dll
2015-07-29 21:41:55 ----A---- C:\WINDOWS\system32\wer.dll
2015-07-29 21:41:55 ----A---- C:\WINDOWS\system32\AudioEndpointBuilder.dll
2015-07-29 21:41:54 ----A---- C:\WINDOWS\system32\Faultrep.dll
2015-07-29 21:41:52 ----A---- C:\WINDOWS\SYSWOW64\Faultrep.dll
2015-07-29 21:41:52 ----A---- C:\WINDOWS\system32\audiosrv.dll
2015-07-29 21:41:51 ----A---- C:\WINDOWS\SYSWOW64\WerFaultSecure.exe
2015-07-29 21:41:51 ----A---- C:\WINDOWS\system32\WerFaultSecure.exe
2015-07-29 21:41:51 ----A---- C:\WINDOWS\system32\werdiagcontroller.dll
2015-07-29 21:41:51 ----A---- C:\WINDOWS\system32\EncDump.dll
2015-07-29 21:41:51 ----A---- C:\WINDOWS\system32\ci.dll
2015-07-29 21:41:43 ----A---- C:\WINDOWS\SYSWOW64\poqexec.exe
2015-07-29 21:41:43 ----A---- C:\WINDOWS\system32\poqexec.exe
2015-07-29 21:41:22 ----A---- C:\WINDOWS\system32\profsvc.dll
2015-07-29 21:41:21 ----A---- C:\WINDOWS\SYSWOW64\authui.dll
2015-07-29 21:41:21 ----A---- C:\WINDOWS\system32\authui.dll
2015-07-29 21:41:20 ----A---- C:\WINDOWS\SYSWOW64\msiexec.exe
2015-07-29 21:41:20 ----A---- C:\WINDOWS\SYSWOW64\msi.dll
2015-07-29 21:41:20 ----A---- C:\WINDOWS\system32\msiexec.exe
2015-07-29 21:41:20 ----A---- C:\WINDOWS\system32\msi.dll
2015-07-29 21:41:19 ----A---- C:\WINDOWS\system32\scesrv.dll
2015-07-29 21:41:18 ----A---- C:\WINDOWS\SYSWOW64\scesrv.dll
2015-07-29 21:41:01 ----A---- C:\WINDOWS\SYSWOW64\schannel.dll
2015-07-29 21:41:01 ----A---- C:\WINDOWS\system32\schannel.dll
2015-07-29 21:40:54 ----A---- C:\WINDOWS\system32\wow64cpu.dll
2015-07-29 21:40:54 ----A---- C:\WINDOWS\system32\wow64.dll
2015-07-29 21:40:54 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2015-07-29 21:40:53 ----A---- C:\WINDOWS\SYSWOW64\wow32.dll
2015-07-29 21:40:53 ----A---- C:\WINDOWS\SYSWOW64\user.exe
2015-07-29 21:40:53 ----A---- C:\WINDOWS\SYSWOW64\tdh.dll
2015-07-29 21:40:53 ----A---- C:\WINDOWS\SYSWOW64\setup16.exe
2015-07-29 21:40:53 ----A---- C:\WINDOWS\SYSWOW64\sechost.dll
2015-07-29 21:40:53 ----A---- C:\WINDOWS\SYSWOW64\ntvdm64.dll
2015-07-29 21:40:53 ----A---- C:\WINDOWS\SYSWOW64\ntdll.dll
2015-07-29 21:40:53 ----A---- C:\WINDOWS\SYSWOW64\instnm.exe
2015-07-29 21:40:53 ----A---- C:\WINDOWS\system32\tdh.dll
2015-07-29 21:40:53 ----A---- C:\WINDOWS\system32\sechost.dll
2015-07-29 21:40:53 ----A---- C:\WINDOWS\system32\ntvdm64.dll
2015-07-29 21:40:53 ----A---- C:\WINDOWS\system32\ntdll.dll
2015-07-29 21:40:53 ----A---- C:\WINDOWS\system32\microsoft-windows-system-events.dll
2015-07-29 21:40:52 ----A---- C:\WINDOWS\SYSWOW64\tracerpt.exe
2015-07-29 21:40:52 ----A---- C:\WINDOWS\system32\tracerpt.exe
2015-07-29 21:36:24 ----A---- C:\WINDOWS\system32\lsm.dll
2015-07-29 21:35:40 ----A---- C:\WINDOWS\SYSWOW64\atlthunk.dll
2015-07-29 21:35:32 ----A---- C:\WINDOWS\system32\DWrite.dll
2015-07-29 21:35:28 ----A---- C:\WINDOWS\SYSWOW64\DWrite.dll
2015-07-29 21:35:28 ----A---- C:\WINDOWS\system32\FntCache.dll
2015-07-29 21:35:27 ----A---- C:\WINDOWS\system32\drivers\mrxdav.sys
2015-07-29 21:35:27 ----A---- C:\WINDOWS\system32\drivers\ahcache.sys
2015-07-29 21:35:26 ----A---- C:\WINDOWS\SYSWOW64\pku2u.dll
2015-07-29 21:35:26 ----A---- C:\WINDOWS\system32\TSWbPrxy.exe
2015-07-29 21:35:26 ----A---- C:\WINDOWS\system32\pku2u.dll
2015-07-29 21:34:56 ----A---- C:\WINDOWS\SYSWOW64\TsWpfWrp.exe
2015-07-29 21:34:56 ----A---- C:\WINDOWS\system32\TsWpfWrp.exe
2015-07-29 21:26:02 ----A---- C:\WINDOWS\system32\drivers\http.sys
2015-07-29 21:26:00 ----A---- C:\WINDOWS\SYSWOW64\gdi32.dll
2015-07-29 21:26:00 ----A---- C:\WINDOWS\system32\gdi32.dll
2015-07-29 21:21:20 ----A---- C:\WINDOWS\SYSWOW64\msvcr120_clr0400.dll
2015-07-29 21:21:19 ----A---- C:\WINDOWS\system32\msvcr120_clr0400.dll
2015-07-29 21:16:39 ----A---- C:\WINDOWS\SYSWOW64\clfsw32.dll
2015-07-29 21:16:39 ----A---- C:\WINDOWS\system32\drivers\clfs.sys
2015-07-29 21:16:39 ----A---- C:\WINDOWS\system32\clfsw32.dll
2015-07-29 21:16:37 ----A---- C:\WINDOWS\SYSWOW64\WMPhoto.dll
2015-07-29 21:16:37 ----A---- C:\WINDOWS\system32\WMPhoto.dll
2015-07-29 21:16:35 ----A---- C:\WINDOWS\system32\ole32.dll
2015-07-29 21:16:34 ----A---- C:\WINDOWS\SYSWOW64\ole32.dll
2015-07-29 21:16:16 ----A---- C:\WINDOWS\SYSWOW64\msctf.dll
2015-07-29 21:16:16 ----A---- C:\WINDOWS\system32\msctf.dll
2015-07-29 21:15:35 ----A---- C:\WINDOWS\system32\rdpcorets.dll
2015-07-29 21:15:34 ----A---- C:\WINDOWS\system32\rdpudd.dll
2015-07-29 21:15:28 ----A---- C:\WINDOWS\system32\ubpm.dll
2015-07-29 21:15:13 ----A---- C:\WINDOWS\system32\services.exe
2015-07-29 21:15:10 ----A---- C:\WINDOWS\system32\apphelp.dll
2015-07-29 21:14:45 ----A---- C:\WINDOWS\system32\comctl32.dll
2015-07-29 21:14:44 ----A---- C:\WINDOWS\SYSWOW64\comctl32.dll
2015-07-29 21:14:23 ----A---- C:\WINDOWS\system32\nlasvc.dll
2015-07-29 21:14:23 ----A---- C:\WINDOWS\system32\ncsi.dll
2015-07-29 21:13:58 ----A---- C:\WINDOWS\SYSWOW64\WindowsCodecs.dll
2015-07-29 21:13:58 ----A---- C:\WINDOWS\system32\WindowsCodecs.dll
2015-07-29 21:13:54 ----A---- C:\WINDOWS\system32\shell32.dll
2015-07-29 21:13:52 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2015-07-29 21:12:20 ----A---- C:\WINDOWS\SYSWOW64\atmlib.dll
2015-07-29 21:12:20 ----A---- C:\WINDOWS\SYSWOW64\atmfd.dll
2015-07-29 21:12:20 ----A---- C:\WINDOWS\system32\atmlib.dll
2015-07-29 21:12:20 ----A---- C:\WINDOWS\system32\atmfd.dll
2015-07-29 21:12:19 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2015-07-29 21:12:19 ----A---- C:\WINDOWS\system32\jscript9.dll
2015-07-29 21:11:41 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2015-07-29 21:11:39 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2015-07-29 21:11:39 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2015-07-29 21:11:38 ----A---- C:\WINDOWS\system32\urlmon.dll
2015-07-29 21:11:37 ----A---- C:\WINDOWS\system32\mshtml.dll
2015-07-29 21:11:37 ----A---- C:\WINDOWS\system32\ieframe.dll
2015-07-29 21:11:35 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2015-07-29 21:11:35 ----A---- C:\WINDOWS\system32\iertutil.dll
2015-07-29 07:36:54 ----D---- C:\Users\Jarka\AppData\Roaming\AVAST Software
2015-07-29 07:25:31 ----A---- C:\WINDOWS\system32\drivers\aswVmm.sys
2015-07-29 07:25:31 ----A---- C:\WINDOWS\system32\drivers\aswSP.sys
2015-07-29 07:25:31 ----A---- C:\WINDOWS\system32\drivers\aswSnx.sys
2015-07-29 07:25:31 ----A---- C:\WINDOWS\system32\drivers\aswRvrt.sys
2015-07-29 07:25:31 ----A---- C:\WINDOWS\system32\drivers\aswMonFlt.sys
2015-07-29 07:25:31 ----A---- C:\WINDOWS\system32\drivers\aswHwid.sys
2015-07-29 07:25:29 ----A---- C:\WINDOWS\system32\aswBoot.exe
2015-07-29 07:25:17 ----A---- C:\WINDOWS\avastSS.scr
2015-07-29 07:23:01 ----D---- C:\Program Files\AVAST Software
2015-07-29 07:19:10 ----D---- C:\ProgramData\AVAST Software
2015-07-28 22:45:51 ----N---- C:\WINDOWS\system32\stapi64.dll
2015-07-28 22:45:39 ----A---- C:\WINDOWS\system32\stapo64.dll
2015-07-28 22:33:04 ----A---- C:\WINDOWS\system32\wuaueng.dll
2015-07-28 22:33:03 ----A---- C:\WINDOWS\system32\wucltux.dll
2015-07-28 22:33:03 ----A---- C:\WINDOWS\system32\wuauclt.exe
2015-07-28 22:33:02 ----A---- C:\WINDOWS\SYSWOW64\wuapi.dll
2015-07-28 22:33:02 ----A---- C:\WINDOWS\system32\wuapi.dll
2015-07-28 22:33:02 ----A---- C:\WINDOWS\system32\WinSetupUI.dll
2015-07-28 22:33:01 ----A---- C:\WINDOWS\system32\wups2.dll
2015-07-28 22:33:01 ----A---- C:\WINDOWS\system32\wups.dll
2015-07-28 22:33:01 ----A---- C:\WINDOWS\system32\wu.upgrade.ps.dll
2015-07-28 22:33:00 ----A---- C:\WINDOWS\system32\WUSettingsProvider.dll
2015-07-28 22:32:59 ----A---- C:\WINDOWS\SYSWOW64\wups.dll
2015-07-28 22:32:59 ----A---- C:\WINDOWS\system32\storewuauth.dll
2015-07-28 22:32:57 ----A---- C:\WINDOWS\system32\wuwebv.dll
2015-07-28 22:32:56 ----A---- C:\WINDOWS\system32\wudriver.dll
2015-07-28 22:32:54 ----A---- C:\WINDOWS\SYSWOW64\wuwebv.dll
2015-07-28 22:32:53 ----A---- C:\WINDOWS\SYSWOW64\wudriver.dll
2015-07-28 22:32:53 ----A---- C:\WINDOWS\system32\wuapp.exe
2015-07-28 22:32:52 ----A---- C:\WINDOWS\SYSWOW64\wuapp.exe
2015-07-28 22:32:52 ----A---- C:\WINDOWS\system32\wuaext.dll
2015-07-28 12:32:26 ----A---- C:\WINDOWS\system32\emptyregdb.dat
2015-07-28 12:32:13 ----SHD---- C:\Recovery
2015-07-28 12:32:02 ----DC---- C:\WINDOWS\Panther
2015-07-28 12:23:48 ----D---- C:\Program Files (x86)\Reference Assemblies
2015-07-28 12:23:48 ----D---- C:\Program Files (x86)\MSBuild
2015-07-28 12:23:46 ----D---- C:\WINDOWS\SYSWOW64\XPSViewer
2015-07-28 12:23:46 ----D---- C:\Program Files\Reference Assemblies
2015-07-28 12:23:46 ----D---- C:\Program Files\MSBuild
2015-07-28 12:22:49 ----A---- C:\WINDOWS\SYSWOW64\PresentationNative_v0300.dll
2015-07-28 12:22:46 ----A---- C:\WINDOWS\system32\PresentationNative_v0300.dll
2015-07-28 12:22:11 ----A---- C:\WINDOWS\SYSWOW64\sdbinst.exe
2015-07-28 12:22:10 ----A---- C:\WINDOWS\system32\sdbinst.exe
2015-07-28 11:50:12 ----SD---- C:\Users\Jarka\AppData\Roaming\Microsoft
2015-07-28 11:42:08 ----A---- C:\WINDOWS\SYSWOW64\PerfStringBackup.INI
2015-07-28 11:37:36 ----D---- C:\Program Files\ATI Technologies
2015-07-28 11:36:54 ----D---- C:\Program Files (x86)\ATI Technologies
2015-07-28 11:36:40 ----D---- C:\Program Files\Synaptics
2015-07-28 11:36:29 ----D---- C:\WINDOWS\system32\SRSLabs
2015-07-28 11:35:55 ----D---- C:\AMD
2015-07-28 11:35:45 ----D---- C:\Program Files\Common Files\ATI Technologies
2015-07-28 11:35:34 ----D---- C:\Program Files\AMD
2015-07-28 11:34:55 ----D---- C:\WINDOWS\Prefetch
2015-07-18 10:26:19 ----D---- C:\ProgramData\REVOLT
2015-07-15 13:39:08 ----N---- C:\WINDOWS\system32\CompatTelRunner.exe
2015-07-14 10:54:24 ----D---- C:\Users\Jarka\AppData\Roaming\TripleTown
2015-07-14 10:54:03 ----D---- C:\GOG Games

======List of files/folders modified in the last 1 month======

2015-08-08 08:45:56 ----D---- C:\Users\Jarka\AppData\Roaming\BitTorrent
2015-08-08 08:45:43 ----RD---- C:\Program Files
2015-08-08 08:41:52 ----D---- C:\Users\Jarka\AppData\Roaming\DAEMON Tools Lite
2015-08-08 08:41:45 ----D---- C:\WINDOWS\Temp
2015-08-08 08:41:45 ----D---- C:\WINDOWS\SoftwareDistribution
2015-08-08 08:41:45 ----D---- C:\WINDOWS\debug
2015-08-08 08:41:45 ----D---- C:\Windows
2015-08-08 08:31:33 ----A---- C:\WINDOWS\SYSWOW64\bscs.ini
2015-08-08 08:31:19 ----D---- C:\Games
2015-08-08 08:28:12 ----A---- C:\WINDOWS\SYSWOW64\LOCALSERVICE.INI
2015-08-08 08:28:10 ----A---- C:\WINDOWS\SYSWOW64\LOCALDEVICE.INI
2015-08-08 08:23:57 ----D---- C:\WINDOWS\system32\sru
2015-08-07 23:44:57 ----D---- C:\WINDOWS\Microsoft.NET
2015-08-07 22:19:44 ----RD---- C:\Program Files (x86)
2015-08-07 18:04:56 ----D---- C:\WINDOWS\system32\drivers
2015-08-07 18:04:38 ----HD---- C:\ProgramData
2015-08-07 17:28:38 ----D---- C:\Program Files (x86)\TeamViewer
2015-08-07 17:28:36 ----RSD---- C:\WINDOWS\Fonts
2015-08-07 17:28:35 ----D---- C:\Users\Jarka\AppData\Roaming\TeamViewer
2015-08-07 17:27:21 ----D---- C:\Program Files (x86)\1-click run
2015-08-07 17:26:48 ----SHD---- C:\WINDOWS\Installer
2015-08-07 17:26:48 ----HD---- C:\Config.Msi
2015-08-07 17:26:47 ----D---- C:\Program Files (x86)\Common Files
2015-08-07 17:16:58 ----D---- C:\WINDOWS\Inf
2015-08-07 17:12:08 ----D---- C:\WINDOWS\system32\Tasks
2015-08-07 17:01:33 ----RD---- C:\WINDOWS\System32
2015-08-07 17:01:33 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2015-08-07 09:59:42 ----D---- C:\Users\Jarka\AppData\Roaming\Winamp
2015-08-07 08:47:36 ----SHD---- C:\System Volume Information
2015-08-06 23:18:55 ----D---- C:\WINDOWS\system32\config
2015-08-06 15:14:35 ----D---- C:\Users\Jarka\AppData\Roaming\vlc
2015-08-06 14:45:30 ----D---- C:\Program Files (x86)\Opera
2015-08-06 10:49:33 ----D---- C:\WINDOWS\system32\NDF
2015-08-06 10:43:51 ----D---- C:\WINDOWS\AppReadiness
2015-08-05 21:32:56 ----D---- C:\Users\Jarka\AppData\Roaming\Spotify
2015-08-05 21:20:13 ----D---- C:\WINDOWS\system32\catroot2
2015-07-31 07:27:47 ----D---- C:\WINDOWS\rescache
2015-07-31 07:23:27 ----D---- C:\WINDOWS\Logs
2015-07-31 07:20:50 ----RD---- C:\WINDOWS\assembly
2015-07-30 12:07:32 ----D---- C:\WINDOWS\system32\wdi
2015-07-30 12:06:22 ----D---- C:\WINDOWS\SysWOW64
2015-07-30 12:05:50 ----D---- C:\WINDOWS\WinSxS
2015-07-30 08:31:02 ----D---- C:\Program Files\Windows Defender
2015-07-30 08:30:55 ----D---- C:\Program Files (x86)\Windows Defender
2015-07-30 08:30:52 ----D---- C:\WINDOWS\system32\sr-Latn-RS
2015-07-30 08:30:52 ----D---- C:\WINDOWS\system32\sr-Latn-CS
2015-07-30 08:30:29 ----D---- C:\WINDOWS\system32\CodeIntegrity
2015-07-30 08:30:03 ----D---- C:\WINDOWS\system32\en-US
2015-07-30 08:27:31 ----D---- C:\WINDOWS\system32\cs-CZ
2015-07-30 08:27:29 ----D---- C:\WINDOWS\apppatch
2015-07-30 08:27:09 ----D---- C:\WINDOWS\SYSWOW64\cs-CZ
2015-07-30 08:26:58 ----D---- C:\Program Files\Internet Explorer
2015-07-30 08:26:58 ----D---- C:\Program Files (x86)\Internet Explorer
2015-07-30 08:26:44 ----D---- C:\WINDOWS\PolicyDefinitions
2015-07-30 08:26:00 ----RD---- C:\WINDOWS\ToastData
2015-07-30 08:25:08 ----D---- C:\Program Files\Windows Journal
2015-07-30 05:09:27 ----D---- C:\WINDOWS\CbsTemp
2015-07-29 12:35:38 ----HD---- C:\Program Files\WindowsApps
2015-07-29 09:57:14 ----D---- C:\WINDOWS\system32\drivers\UMDF
2015-07-29 07:26:13 ----D---- C:\WINDOWS\system32\DriverStore
2015-07-29 07:03:02 ----D---- C:\WINDOWS\Tasks
2015-07-29 04:03:36 ----D---- C:\WINDOWS\system32\restore
2015-07-28 22:08:42 ----D---- C:\WINDOWS\system32\AutoUpdateLicense
2015-07-28 21:28:37 ----SHD---- C:\$Recycle.Bin
2015-07-28 12:34:34 ----D---- C:\Program Files\Windows NT
2015-07-28 12:33:32 ----D---- C:\WINDOWS\Registration
2015-07-28 12:32:48 ----D---- C:\WINDOWS\system32\LogFiles
2015-07-28 12:24:30 ----RSD---- C:\WINDOWS\Media
2015-07-28 12:15:04 ----D---- C:\ProgramData\AMD
2015-07-28 12:09:42 ----D---- C:\WINDOWS\SYSWOW64\drivers
2015-07-28 12:09:41 ----D---- C:\WINDOWS\system32\Sysprep
2015-07-28 12:09:21 ----D---- C:\WINDOWS\ShellNew
2015-07-28 12:02:00 ----D---- C:\WINDOWS\WinStore
2015-07-28 12:01:59 ----D---- C:\WINDOWS\twain_32
2015-07-28 12:01:59 ----D---- C:\WINDOWS\SYSWOW64\winrm
2015-07-28 12:01:58 ----D---- C:\WINDOWS\SYSWOW64\WCN
2015-07-28 12:01:57 ----D---- C:\WINDOWS\SYSWOW64\sysprep
2015-07-28 12:01:57 ----D---- C:\WINDOWS\SYSWOW64\SMI
2015-07-28 12:01:56 ----D---- C:\WINDOWS\SYSWOW64\slmgr
2015-07-28 12:01:56 ----D---- C:\WINDOWS\SYSWOW64\SDA
2015-07-28 12:01:56 ----D---- C:\WINDOWS\SYSWOW64\Printing_Admin_Scripts
2015-07-28 12:01:56 ----D---- C:\WINDOWS\SYSWOW64\MUI
2015-07-28 12:01:56 ----D---- C:\WINDOWS\SYSWOW64\migwiz
2015-07-28 12:01:56 ----D---- C:\WINDOWS\SYSWOW64\LogFiles
2015-07-28 12:01:54 ----D---- C:\WINDOWS\SYSWOW64\IME
2015-07-28 12:01:53 ----D---- C:\WINDOWS\SYSWOW64\en-US
2015-07-28 12:01:53 ----D---- C:\WINDOWS\SYSWOW64\drivers\UMDF
2015-07-28 12:01:52 ----D---- C:\WINDOWS\SYSWOW64\catroot
2015-07-28 12:01:49 ----D---- C:\WINDOWS\system32\winrm
2015-07-28 12:01:47 ----D---- C:\WINDOWS\system32\WCN
2015-07-28 12:01:46 ----D---- C:\WINDOWS\system32\SystemResetPlatform
2015-07-28 12:01:46 ----D---- C:\WINDOWS\system32\spool
2015-07-28 12:01:41 ----D---- C:\WINDOWS\system32\slmgr
2015-07-28 12:01:40 ----D---- C:\WINDOWS\system32\Printing_Admin_Scripts
2015-07-28 12:00:37 ----D---- C:\WINDOWS\system32\oobe
2015-07-28 12:00:37 ----D---- C:\WINDOWS\system32\MUI
2015-07-28 12:00:36 ----D---- C:\WINDOWS\system32\IME
2015-07-28 12:00:35 ----DC---- C:\WINDOWS\system32\DRVSTORE
2015-07-28 11:58:58 ----D---- C:\WINDOWS\system32\Boot
2015-07-28 11:58:51 ----D---- C:\WINDOWS\Migration
2015-07-28 11:58:37 ----RD---- C:\WINDOWS\ImmersiveControlPanel
2015-07-28 11:58:37 ----D---- C:\WINDOWS\IME
2015-07-28 11:58:36 ----D---- C:\WINDOWS\Help
2015-07-28 11:58:34 ----D---- C:\WINDOWS\DigitalLocker
2015-07-28 11:58:31 ----RD---- C:\Users
2015-07-28 11:58:30 ----D---- C:\ProgramData\PRICache
2015-07-28 11:58:28 ----SD---- C:\ProgramData\Microsoft
2015-07-28 11:58:20 ----SHD---- C:\Program Files (x86)\Windows Sidebar
2015-07-28 11:58:20 ----D---- C:\Program Files (x86)\Windows Media Player
2015-07-28 11:58:15 ----D---- C:\Program Files (x86)\Microsoft.NET
2015-07-28 11:58:04 ----SHD---- C:\Program Files\Windows Sidebar
2015-07-28 11:58:04 ----D---- C:\Program Files\Windows Media Player
2015-07-28 11:58:02 ----D---- C:\Program Files\Common Files\microsoft shared
2015-07-28 11:53:12 ----D---- C:\WINDOWS\system32\Recovery
2015-07-28 11:35:45 ----D---- C:\Program Files\Common Files
2015-07-26 17:14:04 ----D---- C:\Program Files (x86)\Hewlett-Packard
2015-07-26 17:09:48 ----D---- C:\Program Files\Hewlett-Packard
2015-07-26 17:08:51 ----D---- C:\Users\Jarka\AppData\Roaming\hpqlog
2015-07-26 16:53:27 ----D---- C:\ProgramData\HPQLOG
2015-07-26 16:03:45 ----D---- C:\WINDOWS\AUInstallAgent
2015-07-16 09:59:32 ----D---- C:\WINDOWS\system32\MRT
2015-07-15 14:58:02 ----D---- C:\ProgramData\Microsoft Help

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 amd_sata;amd_sata; C:\WINDOWS\System32\drivers\amd_sata.sys [2012-07-23 79528]
R0 amd_xata;amd_xata; C:\WINDOWS\System32\drivers\amd_xata.sys [2012-07-23 26280]
R0 aswRvrt;avast! Revert; C:\WINDOWS\system32\drivers\aswRvrt.sys [2015-07-29 65224]
R0 aswVmm;avast! VM Monitor; C:\WINDOWS\system32\drivers\aswVmm.sys [2015-07-29 274808]
R0 hpdskflt;@oem41.inf,%service_desc%;HP Filter; C:\WINDOWS\system32\DRIVERS\hpdskflt.sys [2012-08-22 31040]
R1 aswSnx;aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [2015-07-29 1048856]
R1 aswSP;aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [2015-07-29 447944]
R1 CLVirtualDrive;CLVirtualDrive; C:\WINDOWS\system32\DRIVERS\CLVirtualDrive.sys [2012-06-25 92536]
R1 dtsoftbus01;@oem37.inf,%DTSoftBus.SVCDESC%;DAEMON Tools Virtual Bus Driver; C:\WINDOWS\System32\drivers\dtsoftbus01.sys [2014-02-15 283200]
R1 vwififlt;@%SystemRoot%\System32\drivers\vwififlt.sys,-259; C:\WINDOWS\system32\DRIVERS\vwififlt.sys [2013-08-22 71680]
R2 AODDriver4.2.0;AODDriver4.2.0; \??\C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys [2013-09-20 59648]
R2 aswHwid;avast! HardwareID; C:\WINDOWS\system32\drivers\aswHwid.sys [2015-07-29 28656]
R2 aswMonFlt;aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [2015-07-29 90968]
R2 atksgt;atksgt; C:\WINDOWS\system32\DRIVERS\atksgt.sys [2014-04-16 312480]
R2 lirsgt;lirsgt; C:\WINDOWS\system32\DRIVERS\lirsgt.sys [2014-04-16 43168]
R3 Accelerometer;@oem41.inf,%accelerometer_desc%;HP Mobile Data Protection Sensor; C:\WINDOWS\system32\DRIVERS\Accelerometer.sys [2012-08-22 43328]
R3 amdkmdag;amdkmdag; C:\WINDOWS\system32\DRIVERS\atikmdag.sys [2014-07-21 13209088]
R3 amdkmdap;amdkmdap; C:\WINDOWS\system32\DRIVERS\atikmpag.sys [2014-07-21 626688]
R3 AtiHDAudioService;@oem10.inf,%ATIHdAudioDriver.SvcDesc%;AMD Function Driver for HD Audio Service; C:\WINDOWS\system32\drivers\AtihdW86.sys [2012-07-17 98472]
R3 BtAudioBusSrv;@oem6.inf,%SvcDesc%;IVT Bluetooth Audio Bus Service; C:\WINDOWS\System32\Drivers\BtAudioBus.sys [2012-06-15 23136]
R3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Služba Bluetooth Enumerator; C:\WINDOWS\system32\DRIVERS\BthEnum.sys [2014-11-21 53248]
R3 BthL2caScoIfSrv;Bluetooth Profile Interface Driver Service; C:\WINDOWS\System32\Drivers\BtL2caScoIf.sys [2012-07-20 56904]
R3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Ovladač úspory energie technologie Bluetooth; C:\WINDOWS\system32\DRIVERS\BthLEEnum.sys [2014-11-21 226304]
R3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Zařízení Bluetooth (síť PAN); C:\WINDOWS\system32\DRIVERS\bthpan.sys [2014-11-21 118272]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Ovladač rozhraní USB radiostanice Bluetooth; C:\WINDOWS\System32\Drivers\BTHUSB.sys [2014-11-21 81920]
R3 btUrbFilterDrv;IVT URB Bluetooth Filter Driver Service; C:\WINDOWS\System32\Drivers\IvtUrbBtFlt.sys [2012-08-14 48736]
R3 clwvd;@oem15.inf,%clwvd.DeviceDesc%;CyberLink Webcam Sharing Manager; C:\WINDOWS\system32\DRIVERS\clwvd.sys [2012-08-28 40944]
R3 HpqKbFiltr;@oem32.inf,%HpqKbFiltr.SvcDesc%;HpqKbFilter Driver; C:\WINDOWS\System32\drivers\HpqKbFiltr.sys [2012-08-28 26504]
R3 JMCR;JMCR; C:\WINDOWS\System32\drivers\jmcr.sys [2012-07-31 175928]
R3 MBAMSwissArmy;MBAMSwissArmy; \??\C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys [2015-08-07 113880]
R3 netr28x;@oem38.inf,%Generic.Service.DispName%;Ralink 802.11n Extensible Wireless Driver; C:\WINDOWS\system32\DRIVERS\netr28x.sys [2013-12-04 2505904]
R3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Zařízení Bluetooth (RFCOMM protokol TDI); C:\WINDOWS\system32\DRIVERS\rfcomm.sys [2014-11-21 167424]
R3 rtbth;@oem36.inf,%General.Service.DispName%;RTBTH Bluetooth Device Driver; C:\WINDOWS\System32\drivers\rtbth.sys [2013-12-02 1204424]
R3 RTL8168;@netrt630x64.inf,%rtl8168.Service.DispName%;Realtek 8168 NT Driver; C:\WINDOWS\system32\DRIVERS\Rt630x64.sys [2013-06-18 591360]
R3 SensorsServiceDriver;@sensorsservicedriver.inf,%WudfSensorsServiceDriverDisplayName%;Služba Reflektor UMDF pro knihovnu SensorsServiceDriver; C:\WINDOWS\system32\DRIVERS\WUDFRd.sys [2014-11-21 226304]
R3 SPUVCbv;@oem11.inf,%SPUVCb.ServiceName%;SPUVCb Driver Service; C:\WINDOWS\System32\Drivers\SPUVCbv_x64.sys [2012-09-23 1064184]
R3 STHDA;@%SystemRoot%\system32\stlang64.dll,-10322; C:\WINDOWS\system32\DRIVERS\stwrt64.sys [2012-09-20 543744]
R3 SynTP;@oem31.inf,%SynTP.SvcDesc%;Synaptics TouchPad Driver; C:\WINDOWS\system32\DRIVERS\SynTP.sys [2013-10-30 549104]
R3 vwifimp;@%SystemRoot%\System32\drivers\vwifimp.sys,-261; C:\WINDOWS\system32\DRIVERS\vwifimp.sys [2013-08-22 36864]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Ovladač portu Bluetooth; C:\WINDOWS\System32\Drivers\BTHport.sys [2014-11-21 1198080]
S3 dg_ssudbus;@oem35.inf,%ssud.Service.DeviceDesc%;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\WINDOWS\system32\DRIVERS\ssudbus.sys [2014-01-22 108800]
S3 MBAMProtector;MBAMProtector; \??\C:\WINDOWS\system32\drivers\mbam.sys [2015-06-18 25816]
S3 MBAMWebAccessControl;MBAMWebAccessControl; \??\C:\WINDOWS\system32\drivers\mwac.sys [2015-06-18 64216]
S3 SmbDrv;SmbDrv; C:\WINDOWS\System32\drivers\Smb_driver_AMDASF.sys [2012-08-15 41272]
S3 SmbDrvI;SmbDrvI; C:\WINDOWS\System32\drivers\Smb_driver_Intel.sys [2012-08-15 43832]
S3 ssudmdm;@oem33.inf,%ssud.Service.Name%;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.); C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [2014-01-22 206080]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2015-07-07 82128]
R2 AMD External Events Utility;AMD External Events Utility; C:\WINDOWS\system32\atiesrxx.exe [2014-07-21 239616]
R2 AMD FUEL Service;AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [2014-07-04 344064]
R2 avast! Antivirus;Avast Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2015-07-29 146600]
R2 BlueSoleilCS;BlueSoleilCS; C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BlueSoleilCS.exe [2012-08-15 1578496]
R2 HP Support Assistant Service;HP Support Assistant Service; C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe [2012-08-15 85504]
R2 hpHotkeyMonitor;hpHotkeyMonitor; C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HPHotkeyMonitor.exe [2012-08-29 523680]
R2 hpqddsvc;Služba HP CUE DeviceDiscovery; C:\WINDOWS\syswow64\svchost.exe [2014-11-21 33088]
R2 hpsrv;@oem41.inf,%hpservice_desc%;HP Service; C:\WINDOWS\system32\Hpservice.exe [2012-08-22 33600]
R2 PanService;PandoraService; C:\Program Files (x86)\PANDORA.TV\PanService\PandoraService.exe [2012-09-28 625304]
R2 STacSV;@%SystemRoot%\system32\stlang64.dll,-10122; C:\Program Files\IDT\WDM\STacSV64.exe [2012-09-20 323072]
R2 vcsFPService;Validity VCS Fingerprint Service; C:\Windows\system32\vcsFPService.exe [2012-07-19 2714232]
R3 BsHelpCS;BsHelpCS; C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BsHelpCS.exe [2012-08-15 138752]
R3 hpqcxs08;hpqcxs08; C:\WINDOWS\syswow64\svchost.exe [2014-11-21 33088]
R3 hpqwmiex;HP Software Framework Service; C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe [2012-08-11 1001376]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-10-14 116648]
S2 MBAMService;MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [2015-06-18 1133880]
S2 Net Driver HPZ12;Net Driver HPZ12; C:\Windows\System32\svchost.exe [2014-11-21 38792]
S2 Pml Driver HPZ12;Pml Driver HPZ12; C:\Windows\System32\svchost.exe [2014-11-21 38792]
S3 aspnet_state;@%SystemRoot%\Microsoft.NET\Framework64\v4.0.30319\aspnet_rc.dll,-1; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2013-08-10 50784]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2013-08-03 43696]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-10-14 116648]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files (x86)\Microsoft Office\Office12\GrooveAuditService.exe [2009-02-26 64856]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S4 BthAvrcpTg;@bthaudhid.inf,%BthAvrcpTg_SvcDesc%;Bluetooth Audio/Video Remote Control HID; C:\WINDOWS\System32\drivers\BthAvrcpTg.sys [2013-08-22 36992]
S4 BthHFEnum;@bthhfenum.inf,%BthHFEnum.SVCDESC%;Bluetooth Hands-Free Audio and Call Control HID Enumerator; C:\WINDOWS\System32\drivers\bthhfenum.sys [2014-11-21 57856]
S4 bthhfhid;@bthaudhid.inf,%BthAudioHFHid.SVCDESC%;Bluetooth Hands-Free Call Control HID; C:\WINDOWS\System32\drivers\BthHFHid.sys [2013-08-22 30720]
S4 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\WINDOWS\System32\svchost.exe [2014-11-21 38792]

-----------------EOF-----------------

Prosím o preventivní kontrolu, děkuju

Napsal: 08 srp 2015 08:03
od Hruzka
přikládám ještě i nález z mbam (hry i keygenu jsem se už zbavila):
Malwarebytes Anti-Malware
http://www.malwarebytes.org

Datum skenování: 7. 8. 2015
Čas skenování: 18:08
Protokol: mbam.txt
Správce: Ano

Verze: 2.1.8.1057
Databáze malwaru: v2015.08.07.04
Databáze rootkitů: v2015.08.06.01
Licence: Bezplatná verze
Ochrana proti malwaru: Vypnuto
Ochrana proti škodlivým webovým stránkám: Vypnuto
Ochrana programu: Vypnuto

OS: Windows 8.1
CPU: x64
Souborový systém: NTFS
Uživatel: Jarka

Typ skenu: Vlastní sken
Výsledek: Dokončeno
Prohledaných objektů: 707598
Uplynulý čas: 5 hod, 34 min, 34 sek

Paměť: Zapnuto
Po spuštění: Zapnuto
Souborový systém: Zapnuto
Archivy: Zapnuto
Rootkity: Zapnuto
Heuristika: Zapnuto
PUP: Zapnuto
PUM: Zapnuto

Procesy: 0
(Nenalezeny žádné škodlivé položky)

Moduly: 0
(Nenalezeny žádné škodlivé položky)

Klíče registru: 0
(Nenalezeny žádné škodlivé položky)

Hodnoty registru: 0
(Nenalezeny žádné škodlivé položky)

Data registru: 0
(Nenalezeny žádné škodlivé položky)

Složky: 0
(Nenalezeny žádné škodlivé položky)

Soubory: 4
Trojan.VirTool, C:\Games\The Walking Dead\steam_api.dll, , [cd339f67c2c9c670437a9fc00ef457a9],
PUP.Optional.OneClickDownloader.A, C:\Users\Jarka\AppData\Local\Google\Chrome\User Data\Default\File System\006\t\00\00000000, , [8b759d692c5fd95d78ef2cc225db23dd],
PUP.Optional.OpenCandy, C:\Users\Jarka\Desktop\software\DTLite4471-0333.exe, , [f60a49bdccbf0432f1c78ce5bc4927d9],
RiskWare.Tool.CK, C:\Users\Jarka\Desktop\software\Office 2007 - Enterprise - CZ\Crack-Serial\kegen.rar, , [b54b5ea82e5dac8aaaee23e4b84a43bd],

Fyzické sektory: 0
(Nenalezeny žádné škodlivé položky)


(end)

Re: Prosím o preventivní kontrolu, děkuju

Napsal: 08 srp 2015 08:50
od Márty84
Zdravim :)

:arrow: I zbytek nalezu MBAM nechte odstranit.

:arrow: Stahnete AdwCleaner https://toolslib.net/downloads/finish/1/ a ulozte ho na plochu.
Ukoncete vsechny programy, jinak to AdwCleaner udela za vas.
Kliknete na nej pravym mysidlem a levym na Spustit jako spravce.
Kliknete na Scan a pockejte, az kontrola dobehne.
Pak kliknete na Cleaning
Program zacne pracovat (muze dojit k restartu pc) a vyplivne log (pripadne bude zde C:\AdwCleaner\AdwCleaner [S?].txt ). Ten mi sem zkopirujte.

Re: Prosím o preventivní kontrolu, děkuju

Napsal: 08 srp 2015 09:14
od Hruzka
Hotovo :) Ještě nějaká rada nebo je to vše? :)
# AdwCleaner v4.208 - Log vytvořen 08/08/2015 v 10:03:47
# Aktualizováno 09/07/2015 by Xplode
# Databáze : 2015-08-01.1 [Server]
# Operační system : Windows 8.1 (x64)
# Uživatelské jméno : Jarka - MILÁÁÁÁŠEK
# Spuštěno z : C:\Users\Jarka\Desktop\adwcleaner_4.208.exe
# Nastavení : Čištění

***** [ Služby ] *****

[#] Služba Smazáno : PanService

***** [ Soubory / Složky ] *****

Složka Smazáno : C:\Program Files (x86)\GamesBar
Složka Smazáno : C:\Program Files (x86)\PANDORA.TV
Složka Smazáno : C:\Users\Jarka\AppData\Local\Google\Chrome\User Data\Default\Extensions\iblenkmcolcdonmlfknbpbgjebabcoae
Složka Smazáno : C:\Users\Jarka\AppData\Local\Google\Chrome\User Data\Default\Extensions\bcjbagclppcgdbpobcpoojdjdmcjhpid
Soubor Smazáno : C:\Users\Jarka\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_iblenkmcolcdonmlfknbpbgjebabcoae_0.localstorage
Soubor Smazáno : C:\Users\Jarka\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_bcjbagclppcgdbpobcpoojdjdmcjhpid_0.localstorage

***** [ Naplánované úlohy ] *****


***** [ Zástupci ] *****


***** [ Registry ] *****


***** [ Prohlížeče ] *****

-\\ Internet Explorer v11.0.9600.17840


-\\ Google Chrome v44.0.2403.130

[C:\Users\Jarka\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Smazáno [Search Provider] : hxxp://en.softonic.com/s/{searchTerms}

-\\ Opera v31.0.1889.99


*************************

AdwCleaner[R0].txt - [1611 bytů] - [08/08/2015 10:00:55]
AdwCleaner[S0].txt - [1532 bytů] - [08/08/2015 10:03:47]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [1590 bytů] ##########

Re: Prosím o preventivní kontrolu, děkuju

Napsal: 08 srp 2015 09:17
od Márty84
:arrow: Stahnete crystal disk info http://sourceforge.jp/projects/crystald ... 5_0_0.zip/
Spustte jako spravce. Za chvili se zobrazi vysledek.
Kliknete nahore na napis Úpravy a pak na napis Kopírovat. To co se zkopiruje (ulozi se to do pameti) mi sem vlozte (ctrl + V)


:arrow: Dejte novy log z RSIT

a k tomu

:arrow: Dejte logy podle tohoto navodu http://forum.viry.cz/viewtopic.php?f=13&t=133100 - vypnete na chvili antivir, je mozne, ze to bude blokovat jako skodnou, ale pouzivame to porad, jedna se o falesny poplach :)

Re: Prosím o preventivní kontrolu, děkuju

Napsal: 08 srp 2015 09:31
od Hruzka
Tak prozatím logy z CrystalDisk a RSITu:
----------------------------------------------------------------------------
CrystalDiskInfo 5.0.0 (C) 2008-2012 hiyohiyo
Crystal Dew World : http://crystalmark.info/
----------------------------------------------------------------------------

OS : Windows 8 [6.2 Build 9200] (x64)
Date : 2015/08/08 10:26:08

-- Controller Map ----------------------------------------------------------
+ AMD SATA Controller [ATA]
- ST500LT0 12-9WS142 SATA Disk Device
- hp DVD A DS8A8SH SATA CdRom Device
- Řadič prostorů úložišť [SCSI]

-- Disk List ---------------------------------------------------------------
(1) ST500LT012-9WS142 : 500,1 GB [0/0/0, pd1] - st

----------------------------------------------------------------------------
(1) ST500LT012-9WS142
----------------------------------------------------------------------------
Model : ST500LT012-9WS142
Firmware : 0001YAM1
Serial Number : S0V24RSJ
Disk Size : 500,1 GB (8,4/137,4/500,1)
Buffer Size : 16384 KB
Queue Depth : 32
# of Sectors : 976773168
Rotation Rate : 5400 RPM
Interface : Serial ATA
Major Version : ATA8-ACS
Minor Version : ATA8-ACS version 4
Transfer Mode : SATA/300
Power On Hours : 10414 hod.
Power On Count : 1987 krát
Temparature : 39 C (102 F)
Health Status : Dobrý
Features : S.M.A.R.T., APM, 48bit LBA, NCQ
APM Level : 8080h [ON]
AAM Level : ----

-- S.M.A.R.T. --------------------------------------------------------------
ID Cur Wor Thr RawValues(6) Attribute Name
01 117 _86 __6 000008EF7490 Počet chyb čtení
03 _99 _98 __0 000000000000 Čas na roztočení ploten
04 _99 _99 __0 0000000007D5 Počet spuštění/zastavení
05 100 100 _36 000000000000 Počet přemapovaných sektorů
07 _87 _60 _30 0000218741C9 Počet chybných hledání
09 _89 _89 __0 0000000028AE Hodin v činnosti
0A 100 100 _97 000000000000 Počet opakovaných pokusů o roztočení ploten
0C _99 _99 __0 0000000007C3 Počet cyklů zapnutí zařízení
B7 100 100 __0 000000000000 Neznámý
B8 100 100 _97 000000000000 Ukončovacích chyb
BB __1 __1 __0 000000000370 Ohlášeno neopravitelných chyb
BC 100 100 __0 000100010001 Časový limit příkazu
BD 100 100 __0 000000000000 Vysoká rychlost zápisu
BE _61 _56 _45 000029190027 Teplota toku vzduchu
BF 100 100 __0 00000000021E Počet udalostí zaznamenaných otřesovým senzorem
C0 100 100 __0 000000000063 Počet vypnutí disku
C1 _46 _46 __0 00000001AA48 Počet cyklů načítání/vymazání
C2 _39 _44 __0 000E00000027 Teplota
C4 100 100 __0 000000000000 Počet udalostí s číslem realokování sektorů
C5 100 100 __0 000000000000 Počet podezřelých sektorů
C6 100 100 __0 000000000000 Počet neopravitelných sektorů
C7 200 200 __0 000000000000 Počet chyb v kontrolním součtu UltraDMA
FE 100 100 __0 000000000000 Ochrana proti pádu

-- IDENTIFY_DEVICE ---------------------------------------------------------
0 1 2 3 4 5 6 7 8 9
000: 0C5A 3FFF C837 0010 0000 003F 003F 0000 0000 0000
010: 5330 5632 3452 534A 2020 2020 2020 2020 2020 2020
020: 0000 8000 0004 3030 3031 4D31 4D31 5354 3530 304C
030: 5430 3132 2D39 5753 3134 2020 2020 2020 2020 2020
040: 2020 2020 2020 2020 2020 2020 2020 8010 4000 2F00
050: 4000 0200 0200 0007 3FFF 003F 003F FC10 00FB 0110
060: FFFF 0FFF 0000 0007 0003 0078 0078 0078 0078 0000
070: 0000 0000 0000 0000 0000 0D06 0D06 0004 004C 004C
080: 01F8 0029 306B 7C09 6123 BC09 BC09 6123 407F 0037
090: 0037 8080 FFFE 0000 0000 0000 0000 0000 0000 0000
100: 6030 3A38 0000 0000 0000 6003 6003 0000 5000 C500
110: 5B56 DFB5 0000 0000 0000 0000 0000 0000 0000 401C
120: 401C 0000 0000 0000 0000 0000 0000 0000 0029 6030
130: 3A38 6030 3A38 2020 0002 0108 0108 5000 3C06 3C0A
140: 0000 0078 0000 0008 0000 00FF 00FF 0280 0000 0000
150: 0008 0000 0000 0000 0000 0000 0000 0000 5F00 8000
160: 0000 0000 0000 0000 0000 0000 0000 0000 0003 0000
170: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
180: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
190: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
200: 0000 0000 0000 0000 0000 103D 103D 0000 0000 4000
210: 0000 0000 0000 0000 0000 0000 0000 1518 0000 0000
220: 0000 0000 101F 0000 0000 0000 0000 0000 0000 0000
230: 0000 0000 0000 0000 0001 0000 0000 0000 0000 0000
240: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
250: 0000 0000 0000 0000 0000 86A5




Logfile of random's system information tool 1.10 (written by random/random)
Run by Jarka at 2015-08-08 10:28:06
Microsoft Windows 8.1
System drive C: has 20 GB (4%) free of 461 GB
Total RAM: 3535 MB (52% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 10:28:08, on 8. 8. 2015
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.17840)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\Jarka.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.bing.com?pc=CMNTDFJS
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.bing.com?pc=CMNTDFJS
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_45\bin\ssv.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_45\bin\jp2ssv.dll
O2 - BHO: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [QLBController] C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe /start
O4 - HKLM\..\Run: [BtTray] "c:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BtTray.exe"
O4 - HKLM\..\Run: [CLMLServer_For_P2G8] "c:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe"
O4 - HKLM\..\Run: [CLVirtualDrive] "c:\Program Files (x86)\CyberLink\Power2Go8\VirtualDrive.exe" /R
O4 - HKLM\..\Run: [RemoteControl10] "c:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe"
O4 - HKLM\..\Run: [YouCam Mirage] "c:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe"
O4 - HKLM\..\Run: [YouCam Tray] "c:\Program Files (x86)\CyberLink\YouCam\YouCamTray.exe" /s
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [Family Tree Builder Update] C:\Program Files (x86)\MyHeritage\Bin\FTBCheckUpdates.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [Spotify Web Helper] "C:\Users\Jarka\AppData\Roaming\Spotify\SpotifyWebHelper.exe"
O4 - HKCU\..\Run: [Spotify] "C:\Users\Jarka\AppData\Roaming\Spotify\Spotify.exe" -autostart -minimized
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - Startup: Dropbox.lnk = Jarka\AppData\Roaming\Dropbox\bin\Dropbox.exe
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\Program Files (x86)\Microsoft Office\Office12\EXCEL.EXE/3000
O9 - Extra button: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-103 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-102 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\Program Files (x86)\Microsoft Office\Office12\REFIEBAR.DLL
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O17 - HKLM\System\CCS\Services\Tcpip\..\{0C40C9EE-04D1-4D28-89D3-3B0E9B42E1C0}: NameServer = 8.8.8.8
O17 - HKLM\System\CS1\Services\Tcpip\..\{0C40C9EE-04D1-4D28-89D3-3B0E9B42E1C0}: NameServer = 8.8.8.8
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Windows\SysWow64\skype4com.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\WINDOWS\system32\atiesrxx.exe (file missing)
O23 - Service: AMD FUEL Service - Advanced Micro Devices, Inc. - C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: BlueSoleilCS - IVT Corporation - C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BlueSoleilCS.exe
O23 - Service: BsHelpCS - IVT Corporation - C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BsHelpCS.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: HP Support Assistant Service - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe
O23 - Service: hpHotkeyMonitor - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HPHotkeyMonitor.exe
O23 - Service: HP Software Framework Service (hpqwmiex) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
O23 - Service: @oem41.inf,%hpservice_desc%;HP Service (hpsrv) - Unknown owner - C:\WINDOWS\system32\Hpservice.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\stlang64.dll,-10122 (STacSV) - IDT, Inc. - C:\Program Files\IDT\WDM\STacSV64.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Validity VCS Fingerprint Service (vcsFPService) - Validity Sensors, Inc. - C:\Windows\system32\vcsFPService.exe
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 11588 bytes

======Listing Processes======





wininit.exe

winlogon.exe

C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
"dwm.exe"
C:\WINDOWS\system32\atiesrxx.exe
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalService
atieclxx
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted
"C:\Program Files\IDT\WDM\STacSV64.exe"
C:\WINDOWS\system32\Hpservice.exe
C:\WINDOWS\system32\svchost.exe -k NetworkService
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe" /launchService
"C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BlueSoleilCS.exe"
dashost.exe {f0ecd795-e5e3-4b1e-a3409d96af12c791}
"C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HPHotkeyMonitor.exe"
C:\WINDOWS\SysWOW64\svchost.exe -k hpdevmgmt
C:\Windows\System32\svchost.exe -k HPZ12
C:\Windows\System32\svchost.exe -k HPZ12
C:\WINDOWS\system32\svchost.exe -k imgsvc
C:\Windows\system32\vcsFPService.exe
"C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BsHelpCS.exe"
"C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe"
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-fc882b76-d6cd-4170-ba2a-79efcc71d7cc -SystemEventPortName:HostProcess-b6a029ea-98ec-4f80-b05e-d4d9c7e2df0a -IoCancelEventPortName:HostProcess-63ba0b54-1948-49b4-a625-f3a8cb571ec1 -NonStateChangingEventPortName:HostProcess-c58d30bf-7bfb-46a2-9bc5-4b4a9ea310fe -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:aff49cd1-656c-4e3f-8748-5f064c5b7b10 -DeviceGroupId:
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\System32\svchost.exe -k LocalServicePeerNet
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-2a4c4b5a-f096-4239-a1e8-1e4348c7be63 -SystemEventPortName:HostProcess-e389d8c2-5045-41e3-bab1-30276dee8b53 -IoCancelEventPortName:HostProcess-3b95a960-f669-47d5-8fb7-99259a6fc565 -NonStateChangingEventPortName:HostProcess-800c9eee-3172-4d73-af6a-0eb1d700043f -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:1be087b4-4a2b-4d21-b4ab-28cce6f09fb6 -DeviceGroupId:WudfDefaultDevicePool
taskhostex.exe
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\DllHost.exe /Processid:{30D49246-D217-465F-B00B-AC9DDD652EB7}
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
C:\Windows\System32\skydrive.exe -Embedding
"C:\Program Files (x86)\Google\Chrome\Application\44.0.2403.130\Installer\setup.exe" --on-os-upgrade --multi-install --chrome --system-level --verbose-logging
"C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE"
"C:\Program Files\IDT\WDM\sttray64.exe"
"C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe"
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM" PriorityLow
"C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe" /start
"C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe"
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
"C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe" 0
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe2_ Global\UsGthrCtrlFltPipeMssGthrPipe2 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Program Files\CCleaner\CCleaner.exe" /MONITOR /uac
"C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe"
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="1380.0.2012721715\464929953" --supports-dual-gpus=false --gpu-driver-bug-workarounds=2,22,45 --gpu-vendor-id=0x1002 --gpu-device-id=0x9992 --gpu-driver-vendor="Advanced Micro Devices, Inc." --gpu-driver-version=13.251.9001.1001 --ignored=" --type=renderer " /prefetch:822062411
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="AffiliationBasedMatching/Enabled/AudioProcessing48kHzSupport/Default/*AutofillEnabled/Default/*AutofillFieldMetadata/Enabled/BrowserBlacklist/Enabled/CaptivePortalInterstitial/Disabled/*ChildAccountDetection/Disabled/ChromeDashboard/Default/*DomRel-Enable/enable/*EmbeddedSearch/Group3 pct:10c stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnableSessionCrashedBubbleUI/Disabled/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GoogleNow/Enable/*IconNTP/Default/*NewProfileManagement/Enabled/NewVideoRendererTrial/Enabled/OmniboxBundledExperimentV1/NewSuggestType_A5_Stable_R2/*PasswordGeneration/Disabled/PasswordLinkInSettings/Enabled/PermissionBubbleRollout/Enabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/*QUIC/EnabledNoIdForLargePopulation/*RefreshTokenDeviceId/Enabled/*RememberCertificateErrorDecisions/Default/ReportCertificateErrors/ShowAndPossiblySend/*ReportCertificateErrorsOverHttp/UploadReportsOverHttp/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/*SdchPersistence/Default/SessionRestoreBackgroundLoading/Restore/*SettingsEnforcement/enforce_always_with_extensions_and_dse/SyncBackingDatabase32K/Enabled/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_58/*UMA-Uniformity-Trial-10-Percent/group_03/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_04/*UMA-Uniformity-Trial-5-Percent/group_12/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*VoiceTrigger/Install/WebRTC-UDPSocketNonBlockingIO/Default/" --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=1 --gpu-rasterization-msaa-sample-count=8 --use-image-texture-target=3553 --channel="1380.1.1213684049\1352132579" --font-cache-shared-handle=1528 /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="AffiliationBasedMatching/Enabled/AudioProcessing48kHzSupport/Default/*AutofillEnabled/Default/*AutofillFieldMetadata/Enabled/BrowserBlacklist/Enabled/CaptivePortalInterstitial/Disabled/*ChildAccountDetection/Disabled/ChromeDashboard/Default/*DomRel-Enable/enable/*EmbeddedSearch/Group3 pct:10c stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnableSessionCrashedBubbleUI/Disabled/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GoogleNow/Enable/*IconNTP/Default/*NewProfileManagement/Enabled/NewVideoRendererTrial/Enabled/OmniboxBundledExperimentV1/NewSuggestType_A5_Stable_R2/*PasswordGeneration/Disabled/PasswordLinkInSettings/Enabled/PermissionBubbleRollout/Enabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/*QUIC/EnabledNoIdForLargePopulation/*RefreshTokenDeviceId/Enabled/*RememberCertificateErrorDecisions/Default/ReportCertificateErrors/ShowAndPossiblySend/*ReportCertificateErrorsOverHttp/UploadReportsOverHttp/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/*SdchPersistence/Default/SessionRestoreBackgroundLoading/Restore/*SettingsEnforcement/enforce_always_with_extensions_and_dse/SyncBackingDatabase32K/Enabled/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_58/*UMA-Uniformity-Trial-10-Percent/group_03/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_04/*UMA-Uniformity-Trial-5-Percent/group_12/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*VoiceTrigger/Install/WebRTC-UDPSocketNonBlockingIO/Default/" --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=1 --gpu-rasterization-msaa-sample-count=8 --use-image-texture-target=3553 --channel="1380.2.1347721001\1004279982" --font-cache-shared-handle=1820 /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="AffiliationBasedMatching/Enabled/AudioProcessing48kHzSupport/Default/*AutofillEnabled/Default/*AutofillFieldMetadata/Enabled/BrowserBlacklist/Enabled/CaptivePortalInterstitial/Disabled/*ChildAccountDetection/Disabled/ChromeDashboard/Default/*DomRel-Enable/enable/*EmbeddedSearch/Group3 pct:10c stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnableSessionCrashedBubbleUI/Disabled/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GoogleNow/Enable/*IconNTP/Default/*NewProfileManagement/Enabled/NewVideoRendererTrial/Enabled/OmniboxBundledExperimentV1/NewSuggestType_A5_Stable_R2/*PasswordGeneration/Disabled/PasswordLinkInSettings/Enabled/PermissionBubbleRollout/Enabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/*QUIC/EnabledNoIdForLargePopulation/*RefreshTokenDeviceId/Enabled/*RememberCertificateErrorDecisions/Default/ReportCertificateErrors/ShowAndPossiblySend/*ReportCertificateErrorsOverHttp/UploadReportsOverHttp/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/*SdchPersistence/Default/SessionRestoreBackgroundLoading/Restore/*SettingsEnforcement/enforce_always_with_extensions_and_dse/SyncBackingDatabase32K/Enabled/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_58/*UMA-Uniformity-Trial-10-Percent/group_03/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_04/*UMA-Uniformity-Trial-5-Percent/group_12/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*VoiceTrigger/Install/WebRTC-UDPSocketNonBlockingIO/Default/" --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=1 --gpu-rasterization-msaa-sample-count=8 --use-image-texture-target=3553 --channel="1380.3.1098521569\936681880" --font-cache-shared-handle=1832 /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="AffiliationBasedMatching/Enabled/AudioProcessing48kHzSupport/Default/*AutofillEnabled/Default/*AutofillFieldMetadata/Enabled/BrowserBlacklist/Enabled/CaptivePortalInterstitial/Disabled/*ChildAccountDetection/Disabled/ChromeDashboard/Default/*DomRel-Enable/enable/*EmbeddedSearch/Group3 pct:10c stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnableSessionCrashedBubbleUI/Disabled/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GoogleNow/Enable/*IconNTP/Default/*NewProfileManagement/Enabled/NewVideoRendererTrial/Enabled/OmniboxBundledExperimentV1/NewSuggestType_A5_Stable_R2/*PasswordGeneration/Disabled/PasswordLinkInSettings/Enabled/PermissionBubbleRollout/Enabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/*QUIC/EnabledNoIdForLargePopulation/*RefreshTokenDeviceId/Enabled/*RememberCertificateErrorDecisions/Default/ReportCertificateErrors/ShowAndPossiblySend/*ReportCertificateErrorsOverHttp/UploadReportsOverHttp/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/*SdchPersistence/Default/SessionRestoreBackgroundLoading/Restore/*SettingsEnforcement/enforce_always_with_extensions_and_dse/SyncBackingDatabase32K/Enabled/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_58/*UMA-Uniformity-Trial-10-Percent/group_03/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_04/*UMA-Uniformity-Trial-5-Percent/group_12/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*VoiceTrigger/Install/WebRTC-UDPSocketNonBlockingIO/Default/" --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=1 --gpu-rasterization-msaa-sample-count=8 --use-image-texture-target=3553 --channel="1380.4.1938881191\1983559385" --font-cache-shared-handle=2132 /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="AffiliationBasedMatching/Enabled/AudioProcessing48kHzSupport/Default/*AutofillEnabled/Default/*AutofillFieldMetadata/Enabled/BrowserBlacklist/Enabled/CaptivePortalInterstitial/Disabled/*ChildAccountDetection/Disabled/ChromeDashboard/Default/*DomRel-Enable/enable/*EmbeddedSearch/Group3 pct:10c stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnableSessionCrashedBubbleUI/Disabled/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GoogleNow/Enable/*IconNTP/Default/*NewProfileManagement/Enabled/NewVideoRendererTrial/Enabled/OmniboxBundledExperimentV1/NewSuggestType_A5_Stable_R2/*PasswordGeneration/Disabled/PasswordLinkInSettings/Enabled/PermissionBubbleRollout/Enabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/*QUIC/EnabledNoIdForLargePopulation/*RefreshTokenDeviceId/Enabled/*RememberCertificateErrorDecisions/Default/ReportCertificateErrors/ShowAndPossiblySend/*ReportCertificateErrorsOverHttp/UploadReportsOverHttp/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/*SdchPersistence/Default/SessionRestoreBackgroundLoading/Restore/*SettingsEnforcement/enforce_always_with_extensions_and_dse/SyncBackingDatabase32K/Enabled/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_58/*UMA-Uniformity-Trial-10-Percent/group_03/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_04/*UMA-Uniformity-Trial-5-Percent/group_12/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*VoiceTrigger/Install/WebRTC-UDPSocketNonBlockingIO/Default/" --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=1 --gpu-rasterization-msaa-sample-count=8 --use-image-texture-target=3553 --channel="1380.5.535410481\75861342" --font-cache-shared-handle=2164 /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="AffiliationBasedMatching/Enabled/AudioProcessing48kHzSupport/Default/*AutofillEnabled/Default/*AutofillFieldMetadata/Enabled/BrowserBlacklist/Enabled/CaptivePortalInterstitial/Disabled/*ChildAccountDetection/Disabled/ChromeDashboard/Default/*DomRel-Enable/enable/*EmbeddedSearch/Group3 pct:10c stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnableSessionCrashedBubbleUI/Disabled/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GoogleNow/Enable/*IconNTP/Default/*NewProfileManagement/Enabled/NewVideoRendererTrial/Enabled/OmniboxBundledExperimentV1/NewSuggestType_A5_Stable_R2/*PasswordGeneration/Disabled/PasswordLinkInSettings/Enabled/PermissionBubbleRollout/Enabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/*QUIC/EnabledNoIdForLargePopulation/*RefreshTokenDeviceId/Enabled/*RememberCertificateErrorDecisions/Default/ReportCertificateErrors/ShowAndPossiblySend/*ReportCertificateErrorsOverHttp/UploadReportsOverHttp/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/*SdchPersistence/Default/SessionRestoreBackgroundLoading/Restore/*SettingsEnforcement/enforce_always_with_extensions_and_dse/SyncBackingDatabase32K/Enabled/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_58/*UMA-Uniformity-Trial-10-Percent/group_03/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_04/*UMA-Uniformity-Trial-5-Percent/group_12/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*VoiceTrigger/Install/WebRTC-UDPSocketNonBlockingIO/Default/" --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=1 --gpu-rasterization-msaa-sample-count=8 --use-image-texture-target=3553 --channel="1380.6.315073295\1460150296" --font-cache-shared-handle=1844 /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="AffiliationBasedMatching/Enabled/AudioProcessing48kHzSupport/Default/*AutofillEnabled/Default/*AutofillFieldMetadata/Enabled/BrowserBlacklist/Enabled/CaptivePortalInterstitial/Disabled/*ChildAccountDetection/Disabled/ChromeDashboard/Default/*DomRel-Enable/enable/*EmbeddedSearch/Group3 pct:10c stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnableSessionCrashedBubbleUI/Disabled/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GoogleNow/Enable/*IconNTP/Default/*NewProfileManagement/Enabled/NewVideoRendererTrial/Enabled/OmniboxBundledExperimentV1/NewSuggestType_A5_Stable_R2/*PasswordGeneration/Disabled/PasswordLinkInSettings/Enabled/PermissionBubbleRollout/Enabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/*QUIC/EnabledNoIdForLargePopulation/*RefreshTokenDeviceId/Enabled/*RememberCertificateErrorDecisions/Default/ReportCertificateErrors/ShowAndPossiblySend/*ReportCertificateErrorsOverHttp/UploadReportsOverHttp/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/*SdchPersistence/Default/SessionRestoreBackgroundLoading/Restore/*SettingsEnforcement/enforce_always_with_extensions_and_dse/SyncBackingDatabase32K/Enabled/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_58/*UMA-Uniformity-Trial-10-Percent/group_03/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_04/*UMA-Uniformity-Trial-5-Percent/group_12/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*VoiceTrigger/Install/WebRTC-UDPSocketNonBlockingIO/Default/" --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=1 --gpu-rasterization-msaa-sample-count=8 --use-image-texture-target=3553 --channel="1380.8.439447220\1741178483" --font-cache-shared-handle=1996 /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="AffiliationBasedMatching/Enabled/AudioProcessing48kHzSupport/Default/*AutofillEnabled/Default/*AutofillFieldMetadata/Enabled/BrowserBlacklist/Enabled/CaptivePortalInterstitial/Disabled/*ChildAccountDetection/Disabled/ChromeDashboard/Default/*DomRel-Enable/enable/*EmbeddedSearch/Group3 pct:10c stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnableSessionCrashedBubbleUI/Disabled/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GoogleNow/Enable/*IconNTP/Default/*NewProfileManagement/Enabled/NewVideoRendererTrial/Enabled/*OmniboxBundledExperimentV1/NewSuggestType_A5_Stable_R2/*PasswordGeneration/Disabled/PasswordLinkInSettings/Enabled/PermissionBubbleRollout/Enabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/*QUIC/EnabledNoIdForLargePopulation/*RefreshTokenDeviceId/Enabled/*RememberCertificateErrorDecisions/Default/ReportCertificateErrors/ShowAndPossiblySend/*ReportCertificateErrorsOverHttp/UploadReportsOverHttp/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/*SdchPersistence/Default/SessionRestoreBackgroundLoading/Restore/*SettingsEnforcement/enforce_always_with_extensions_and_dse/SyncBackingDatabase32K/Enabled/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_58/*UMA-Uniformity-Trial-10-Percent/group_03/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_04/*UMA-Uniformity-Trial-5-Percent/group_12/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*VoiceTrigger/Install/WebRTC-UDPSocketNonBlockingIO/Default/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=1 --gpu-rasterization-msaa-sample-count=8 --use-image-texture-target=3553 --channel="1380.10.1561639069\1589553304" --font-cache-shared-handle=3644 /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="AffiliationBasedMatching/Enabled/AudioProcessing48kHzSupport/Default/*AutofillEnabled/Default/*AutofillFieldMetadata/Enabled/*BrowserBlacklist/Enabled/CaptivePortalInterstitial/Disabled/*ChildAccountDetection/Disabled/ChromeDashboard/Default/*DomRel-Enable/enable/*EmbeddedSearch/Group3 pct:10c stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnableSessionCrashedBubbleUI/Disabled/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GoogleNow/Enable/*IconNTP/Default/*NewProfileManagement/Enabled/NewVideoRendererTrial/Enabled/*OmniboxBundledExperimentV1/NewSuggestType_A5_Stable_R2/*PasswordGeneration/Disabled/PasswordLinkInSettings/Enabled/PermissionBubbleRollout/Enabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/*QUIC/EnabledNoIdForLargePopulation/*RefreshTokenDeviceId/Enabled/*RememberCertificateErrorDecisions/Default/ReportCertificateErrors/ShowAndPossiblySend/*ReportCertificateErrorsOverHttp/UploadReportsOverHttp/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/*SdchPersistence/Default/SessionRestoreBackgroundLoading/Restore/*SettingsEnforcement/enforce_always_with_extensions_and_dse/SyncBackingDatabase32K/Enabled/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_58/*UMA-Uniformity-Trial-10-Percent/group_03/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_04/*UMA-Uniformity-Trial-5-Percent/group_12/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*VoiceTrigger/Install/WebRTC-UDPSocketNonBlockingIO/Default/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=1 --gpu-rasterization-msaa-sample-count=8 --use-image-texture-target=3553 --channel="1380.11.500740433\410563104" --font-cache-shared-handle=4344 /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="AffiliationBasedMatching/Enabled/AudioProcessing48kHzSupport/Default/*AutofillEnabled/Default/*AutofillFieldMetadata/Enabled/*BrowserBlacklist/Enabled/CaptivePortalInterstitial/Disabled/*ChildAccountDetection/Disabled/ChromeDashboard/Default/*DomRel-Enable/enable/*EmbeddedSearch/Group3 pct:10c stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnableSessionCrashedBubbleUI/Disabled/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GoogleNow/Enable/*IconNTP/Default/*NewProfileManagement/Enabled/NewVideoRendererTrial/Enabled/*OmniboxBundledExperimentV1/NewSuggestType_A5_Stable_R2/*PasswordGeneration/Disabled/PasswordLinkInSettings/Enabled/PermissionBubbleRollout/Enabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/*QUIC/EnabledNoIdForLargePopulation/*RefreshTokenDeviceId/Enabled/*RememberCertificateErrorDecisions/Default/ReportCertificateErrors/ShowAndPossiblySend/*ReportCertificateErrorsOverHttp/UploadReportsOverHttp/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/*SdchPersistence/Default/SessionRestoreBackgroundLoading/Restore/*SettingsEnforcement/enforce_always_with_extensions_and_dse/*SyncBackingDatabase32K/Enabled/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_58/*UMA-Uniformity-Trial-10-Percent/group_03/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_04/*UMA-Uniformity-Trial-5-Percent/group_12/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*VoiceTrigger/Install/WebRTC-UDPSocketNonBlockingIO/Default/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=1 --gpu-rasterization-msaa-sample-count=8 --use-image-texture-target=3553 --channel="1380.12.1446094543\1150808657" --font-cache-shared-handle=7096 /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=ppapi --channel="1380.16.267234277\344315101" --ppapi-flash-args=enable_hw_video_decode=1 --lang=cs --ignored=" --type=renderer " /prefetch:-632637702
"C:\Windows\System32\SettingSyncHost.exe" -Embedding
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="*AffiliationBasedMatching/Enabled/AudioProcessing48kHzSupport/Default/*AutofillEnabled/Default/*AutofillFieldMetadata/Enabled/*BrowserBlacklist/Enabled/CaptivePortalInterstitial/Disabled/*ChildAccountDetection/Disabled/ChromeDashboard/Default/*DomRel-Enable/enable/*EmbeddedSearch/Group3 pct:10c stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnableSessionCrashedBubbleUI/Disabled/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GoogleNow/Enable/*IconNTP/Default/*NewProfileManagement/Enabled/NewVideoRendererTrial/Enabled/*OmniboxBundledExperimentV1/NewSuggestType_A5_Stable_R2/*PasswordGeneration/Disabled/PasswordLinkInSettings/Enabled/PermissionBubbleRollout/Enabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/*QUIC/EnabledNoIdForLargePopulation/*RefreshTokenDeviceId/Enabled/*RememberCertificateErrorDecisions/Default/ReportCertificateErrors/ShowAndPossiblySend/*ReportCertificateErrorsOverHttp/UploadReportsOverHttp/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/*SdchPersistence/Default/SessionRestoreBackgroundLoading/Restore/*SettingsEnforcement/enforce_always_with_extensions_and_dse/*SyncBackingDatabase32K/Enabled/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_58/*UMA-Uniformity-Trial-10-Percent/group_03/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_04/*UMA-Uniformity-Trial-5-Percent/group_12/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*VoiceTrigger/Install/WebRTC-UDPSocketNonBlockingIO/Default/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=1 --gpu-rasterization-msaa-sample-count=8 --use-image-texture-target=3553 --channel="1380.41.558523668\1353852250" --font-cache-shared-handle=9116 /prefetch:673131151

"C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20911_x64__8wekyb3d8bbwe\LiveComm.exe" -ServerName:Microsoft.WindowsLive.Platform.Server
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="*AffiliationBasedMatching/Enabled/AudioProcessing48kHzSupport/Default/*AutofillEnabled/Default/*AutofillFieldMetadata/Enabled/*BrowserBlacklist/Enabled/CaptivePortalInterstitial/Disabled/*ChildAccountDetection/Disabled/ChromeDashboard/Default/*DomRel-Enable/enable/*EmbeddedSearch/Group3 pct:10c stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnableSessionCrashedBubbleUI/Disabled/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GoogleNow/Enable/*IconNTP/Default/*NewProfileManagement/Enabled/NewVideoRendererTrial/Enabled/*OmniboxBundledExperimentV1/NewSuggestType_A5_Stable_R2/*PasswordGeneration/Disabled/PasswordLinkInSettings/Enabled/PermissionBubbleRollout/Enabled/*PrerenderFromOmnibox/OmniboxPrerenderEnabled/*QUIC/EnabledNoIdForLargePopulation/*RefreshTokenDeviceId/Enabled/*RememberCertificateErrorDecisions/Default/ReportCertificateErrors/ShowAndPossiblySend/*ReportCertificateErrorsOverHttp/UploadReportsOverHttp/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/*SdchPersistence/Default/SessionRestoreBackgroundLoading/Restore/*SettingsEnforcement/enforce_always_with_extensions_and_dse/*SyncBackingDatabase32K/Enabled/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_58/*UMA-Uniformity-Trial-10-Percent/group_03/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_04/*UMA-Uniformity-Trial-5-Percent/group_12/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*VoiceTrigger/Install/WebRTC-UDPSocketNonBlockingIO/Default/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=1 --gpu-rasterization-msaa-sample-count=8 --use-image-texture-target=3553 --channel="1380.59.99166972\2023530338" --font-cache-shared-handle=10952 /prefetch:673131151
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 572 576 584 65536 580
taskeng.exe {8446E6F2-9D60-45C6-A95D-52A36447EA33}
C:\WINDOWS\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
C:\WINDOWS\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
"C:\Users\Jarka\Desktop\RSITx64.exe"

======Scheduled tasks folder======

C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\WINDOWS\tasks\Synaptics TouchPad Enhancements.job - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_45\bin\ssv.dll [2015-05-03 460384]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_45\bin\jp2ssv.dll [2015-05-03 172640]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E76FD755-C1BA-4DCB-9F13-99BD91223ADE}]
HP Network Check Helper - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2012-07-10 351136]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2013-10-30 2804976]
"SysTrayApp"=C:\Program Files\IDT\WDM\sttray64.exe [2012-09-20 1664000]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"=C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2013-03-14 3672640]
"Spotify Web Helper"=C:\Users\Jarka\AppData\Roaming\Spotify\SpotifyWebHelper.exe [2015-07-24 2017848]
"Spotify"=C:\Users\Jarka\AppData\Roaming\Spotify\Spotify.exe [2015-07-24 7574584]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2015-07-17 8418584]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [2014-07-04 766688]
"QLBController"=C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe [2012-08-29 334240]
""= []
"BtTray"=c:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BtTray.exe [2012-08-16 364032]
"CLMLServer_For_P2G8"=c:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe [2012-06-08 111120]
"CLVirtualDrive"=c:\Program Files (x86)\CyberLink\Power2Go8\VirtualDrive.exe [2012-07-24 491120]
"RemoteControl10"=c:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe [2012-03-29 91432]
"YouCam Mirage"=c:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe [2012-08-31 136488]
"YouCam Tray"=c:\Program Files (x86)\CyberLink\YouCam\YouCamTray.exe [2012-08-31 167024]
"GrooveMonitor"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [2009-02-26 30040]
"HP Software Update"=C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe [2010-06-09 49208]
"Family Tree Builder Update"=C:\Program Files (x86)\MyHeritage\Bin\FTBCheckUpdates.exe [2013-11-12 2532864]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2015-04-30 334896]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2015-07-29 6109776]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
HP Digital Imaging Monitor.lnk - C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe

C:\Users\Jarka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Dropbox.lnk - C:\Users\Jarka\AppData\Roaming\Dropbox\bin\Dropbox.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"VIDC.YUY2"=msyuv.dll
"vidc.i420"=iyuv_32.dll
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"VIDC.YVYU"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"vidc.msvc"=msvidc32.dll
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"VIDC.LAGS"=lagarith.dll
"VIDC.X264"=x264vfw64.dll
"VIDC.XVID"=xvidvfw.dll
"msacm.ac3acm"=ac3acm.acm
"msacm.l3codecp"=l3codecp.acm
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2015-08-08 10:00:43 ----D---- C:\AdwCleaner
2015-08-08 09:10:22 ----D---- C:\Program Files (x86)\TSEV Skyrim LE
2015-08-08 08:45:43 ----D---- C:\Program Files\trend micro
2015-08-08 08:45:42 ----D---- C:\rsit
2015-08-07 18:04:56 ----A---- C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys
2015-08-07 18:04:39 ----A---- C:\WINDOWS\system32\drivers\mwac.sys
2015-08-07 18:04:39 ----A---- C:\WINDOWS\system32\drivers\mbamchameleon.sys
2015-08-07 18:04:39 ----A---- C:\WINDOWS\system32\drivers\mbam.sys
2015-08-07 18:04:38 ----D---- C:\ProgramData\Malwarebytes
2015-08-07 18:04:38 ----D---- C:\Program Files (x86)\Malwarebytes Anti-Malware
2015-08-07 17:12:05 ----D---- C:\Program Files\CCleaner
2015-08-06 15:15:20 ----D---- C:\Users\Jarka\AppData\Roaming\MPC-HC
2015-07-30 12:05:45 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe
2015-07-30 04:45:47 ----A---- C:\WINDOWS\SYSWOW64\PresentationCFFRasterizerNative_v0300.dll
2015-07-30 04:45:47 ----A---- C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2015-07-29 22:05:34 ----A---- C:\WINDOWS\SYSWOW64\mshtmled.dll
2015-07-29 22:05:32 ----A---- C:\WINDOWS\SYSWOW64\msfeeds.dll
2015-07-29 22:05:32 ----A---- C:\WINDOWS\SYSWOW64\iedkcs32.dll
2015-07-29 22:05:32 ----A---- C:\WINDOWS\system32\inseng.dll
2015-07-29 22:05:32 ----A---- C:\WINDOWS\system32\ie4uinit.exe
2015-07-29 22:05:31 ----A---- C:\WINDOWS\SYSWOW64\vbscript.dll
2015-07-29 22:05:31 ----A---- C:\WINDOWS\SYSWOW64\dxtrans.dll
2015-07-29 22:05:29 ----A---- C:\WINDOWS\system32\iedkcs32.dll
2015-07-29 22:05:27 ----A---- C:\WINDOWS\SYSWOW64\jscript.dll
2015-07-29 22:05:27 ----A---- C:\WINDOWS\SYSWOW64\dxtmsft.dll
2015-07-29 22:05:27 ----A---- C:\WINDOWS\system32\vbscript.dll
2015-07-29 22:05:26 ----A---- C:\WINDOWS\system32\msfeeds.dll
2015-07-29 22:05:26 ----A---- C:\WINDOWS\system32\dxtrans.dll
2015-07-29 22:05:23 ----A---- C:\WINDOWS\SYSWOW64\webcheck.dll
2015-07-29 22:05:22 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2015-07-29 22:05:22 ----A---- C:\WINDOWS\SYSWOW64\MshtmlDac.dll
2015-07-29 22:05:22 ----A---- C:\WINDOWS\SYSWOW64\inetcomm.dll
2015-07-29 22:05:22 ----A---- C:\WINDOWS\SYSWOW64\ieapfltr.dll
2015-07-29 22:05:21 ----A---- C:\WINDOWS\system32\jscript.dll
2015-07-29 22:05:20 ----A---- C:\WINDOWS\system32\dxtmsft.dll
2015-07-29 22:05:17 ----A---- C:\WINDOWS\system32\webcheck.dll
2015-07-29 22:05:17 ----A---- C:\WINDOWS\system32\mshtmled.dll
2015-07-29 22:05:16 ----A---- C:\WINDOWS\system32\jscript9diag.dll
2015-07-29 22:05:15 ----A---- C:\WINDOWS\system32\ieapfltr.dll
2015-07-29 22:05:13 ----A---- C:\WINDOWS\system32\MshtmlDac.dll
2015-07-29 22:05:11 ----A---- C:\WINDOWS\system32\ieui.dll
2015-07-29 22:05:10 ----A---- C:\WINDOWS\system32\wininet.dll
2015-07-29 22:05:10 ----A---- C:\WINDOWS\system32\inetcomm.dll
2015-07-29 22:04:59 ----A---- C:\WINDOWS\system32\actxprxy.dll
2015-07-29 22:04:58 ----A---- C:\WINDOWS\SYSWOW64\iepeers.dll
2015-07-29 22:04:58 ----A---- C:\WINDOWS\system32\iepeers.dll
2015-07-29 22:04:52 ----A---- C:\WINDOWS\SYSWOW64\actxprxy.dll
2015-07-29 22:04:51 ----A---- C:\WINDOWS\SYSWOW64\jscript9diag.dll
2015-07-29 22:04:50 ----A---- C:\WINDOWS\SYSWOW64\ieui.dll
2015-07-29 22:04:49 ----A---- C:\WINDOWS\SYSWOW64\msrating.dll
2015-07-29 22:04:49 ----A---- C:\WINDOWS\system32\msrating.dll
2015-07-29 22:02:42 ----A---- C:\WINDOWS\system32\drivers\WdFilter.sys
2015-07-29 22:02:39 ----A---- C:\WINDOWS\system32\drivers\WdNisDrv.sys
2015-07-29 22:02:39 ----A---- C:\WINDOWS\system32\drivers\WdBoot.sys
2015-07-29 22:02:34 ----A---- C:\WINDOWS\SYSWOW64\winshfhc.dll
2015-07-29 22:02:34 ----A---- C:\WINDOWS\system32\winshfhc.dll
2015-07-29 21:42:08 ----A---- C:\WINDOWS\system32\win32k.sys
2015-07-29 21:42:03 ----A---- C:\WINDOWS\SYSWOW64\kerberos.dll
2015-07-29 21:42:03 ----A---- C:\WINDOWS\SYSWOW64\certcli.dll
2015-07-29 21:42:03 ----A---- C:\WINDOWS\system32\rpcrt4.dll
2015-07-29 21:42:03 ----A---- C:\WINDOWS\system32\msv1_0.dll
2015-07-29 21:42:03 ----A---- C:\WINDOWS\system32\kerberos.dll
2015-07-29 21:42:03 ----A---- C:\WINDOWS\system32\drivers\mrxsmb20.sys
2015-07-29 21:42:03 ----A---- C:\WINDOWS\system32\drivers\mrxsmb10.sys
2015-07-29 21:42:03 ----A---- C:\WINDOWS\system32\drivers\mrxsmb.sys
2015-07-29 21:42:03 ----A---- C:\WINDOWS\system32\drivers\ksecpkg.sys
2015-07-29 21:42:03 ----A---- C:\WINDOWS\system32\drivers\cng.sys
2015-07-29 21:42:03 ----A---- C:\WINDOWS\system32\certcli.dll
2015-07-29 21:42:02 ----A---- C:\WINDOWS\SYSWOW64\rpcrt4.dll
2015-07-29 21:42:02 ----A---- C:\WINDOWS\SYSWOW64\msv1_0.dll
2015-07-29 21:42:02 ----A---- C:\WINDOWS\system32\lsasrv.dll
2015-07-29 21:41:55 ----A---- C:\WINDOWS\SYSWOW64\wer.dll
2015-07-29 21:41:55 ----A---- C:\WINDOWS\system32\wer.dll
2015-07-29 21:41:55 ----A---- C:\WINDOWS\system32\AudioEndpointBuilder.dll
2015-07-29 21:41:54 ----A---- C:\WINDOWS\system32\Faultrep.dll
2015-07-29 21:41:52 ----A---- C:\WINDOWS\SYSWOW64\Faultrep.dll
2015-07-29 21:41:52 ----A---- C:\WINDOWS\system32\audiosrv.dll
2015-07-29 21:41:51 ----A---- C:\WINDOWS\SYSWOW64\WerFaultSecure.exe
2015-07-29 21:41:51 ----A---- C:\WINDOWS\system32\WerFaultSecure.exe
2015-07-29 21:41:51 ----A---- C:\WINDOWS\system32\werdiagcontroller.dll
2015-07-29 21:41:51 ----A---- C:\WINDOWS\system32\EncDump.dll
2015-07-29 21:41:51 ----A---- C:\WINDOWS\system32\ci.dll
2015-07-29 21:41:43 ----A---- C:\WINDOWS\SYSWOW64\poqexec.exe
2015-07-29 21:41:43 ----A---- C:\WINDOWS\system32\poqexec.exe
2015-07-29 21:41:22 ----A---- C:\WINDOWS\system32\profsvc.dll
2015-07-29 21:41:21 ----A---- C:\WINDOWS\SYSWOW64\authui.dll
2015-07-29 21:41:21 ----A---- C:\WINDOWS\system32\authui.dll
2015-07-29 21:41:20 ----A---- C:\WINDOWS\SYSWOW64\msiexec.exe
2015-07-29 21:41:20 ----A---- C:\WINDOWS\SYSWOW64\msi.dll
2015-07-29 21:41:20 ----A---- C:\WINDOWS\system32\msiexec.exe
2015-07-29 21:41:20 ----A---- C:\WINDOWS\system32\msi.dll
2015-07-29 21:41:19 ----A---- C:\WINDOWS\system32\scesrv.dll
2015-07-29 21:41:18 ----A---- C:\WINDOWS\SYSWOW64\scesrv.dll
2015-07-29 21:41:01 ----A---- C:\WINDOWS\SYSWOW64\schannel.dll
2015-07-29 21:41:01 ----A---- C:\WINDOWS\system32\schannel.dll
2015-07-29 21:40:54 ----A---- C:\WINDOWS\system32\wow64cpu.dll
2015-07-29 21:40:54 ----A---- C:\WINDOWS\system32\wow64.dll
2015-07-29 21:40:54 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2015-07-29 21:40:53 ----A---- C:\WINDOWS\SYSWOW64\wow32.dll
2015-07-29 21:40:53 ----A---- C:\WINDOWS\SYSWOW64\user.exe
2015-07-29 21:40:53 ----A---- C:\WINDOWS\SYSWOW64\tdh.dll
2015-07-29 21:40:53 ----A---- C:\WINDOWS\SYSWOW64\setup16.exe
2015-07-29 21:40:53 ----A---- C:\WINDOWS\SYSWOW64\sechost.dll
2015-07-29 21:40:53 ----A---- C:\WINDOWS\SYSWOW64\ntvdm64.dll
2015-07-29 21:40:53 ----A---- C:\WINDOWS\SYSWOW64\ntdll.dll
2015-07-29 21:40:53 ----A---- C:\WINDOWS\SYSWOW64\instnm.exe
2015-07-29 21:40:53 ----A---- C:\WINDOWS\system32\tdh.dll
2015-07-29 21:40:53 ----A---- C:\WINDOWS\system32\sechost.dll
2015-07-29 21:40:53 ----A---- C:\WINDOWS\system32\ntvdm64.dll
2015-07-29 21:40:53 ----A---- C:\WINDOWS\system32\ntdll.dll
2015-07-29 21:40:53 ----A---- C:\WINDOWS\system32\microsoft-windows-system-events.dll
2015-07-29 21:40:52 ----A---- C:\WINDOWS\SYSWOW64\tracerpt.exe
2015-07-29 21:40:52 ----A---- C:\WINDOWS\system32\tracerpt.exe
2015-07-29 21:36:24 ----A---- C:\WINDOWS\system32\lsm.dll
2015-07-29 21:35:40 ----A---- C:\WINDOWS\SYSWOW64\atlthunk.dll
2015-07-29 21:35:32 ----A---- C:\WINDOWS\system32\DWrite.dll
2015-07-29 21:35:28 ----A---- C:\WINDOWS\SYSWOW64\DWrite.dll
2015-07-29 21:35:28 ----A---- C:\WINDOWS\system32\FntCache.dll
2015-07-29 21:35:27 ----A---- C:\WINDOWS\system32\drivers\mrxdav.sys
2015-07-29 21:35:27 ----A---- C:\WINDOWS\system32\drivers\ahcache.sys
2015-07-29 21:35:26 ----A---- C:\WINDOWS\SYSWOW64\pku2u.dll
2015-07-29 21:35:26 ----A---- C:\WINDOWS\system32\TSWbPrxy.exe
2015-07-29 21:35:26 ----A---- C:\WINDOWS\system32\pku2u.dll
2015-07-29 21:34:56 ----A---- C:\WINDOWS\SYSWOW64\TsWpfWrp.exe
2015-07-29 21:34:56 ----A---- C:\WINDOWS\system32\TsWpfWrp.exe
2015-07-29 21:26:02 ----A---- C:\WINDOWS\system32\drivers\http.sys
2015-07-29 21:26:00 ----A---- C:\WINDOWS\SYSWOW64\gdi32.dll
2015-07-29 21:26:00 ----A---- C:\WINDOWS\system32\gdi32.dll
2015-07-29 21:21:20 ----A---- C:\WINDOWS\SYSWOW64\msvcr120_clr0400.dll
2015-07-29 21:21:19 ----A---- C:\WINDOWS\system32\msvcr120_clr0400.dll
2015-07-29 21:16:39 ----A---- C:\WINDOWS\SYSWOW64\clfsw32.dll
2015-07-29 21:16:39 ----A---- C:\WINDOWS\system32\drivers\clfs.sys
2015-07-29 21:16:39 ----A---- C:\WINDOWS\system32\clfsw32.dll
2015-07-29 21:16:37 ----A---- C:\WINDOWS\SYSWOW64\WMPhoto.dll
2015-07-29 21:16:37 ----A---- C:\WINDOWS\system32\WMPhoto.dll
2015-07-29 21:16:35 ----A---- C:\WINDOWS\system32\ole32.dll
2015-07-29 21:16:34 ----A---- C:\WINDOWS\SYSWOW64\ole32.dll
2015-07-29 21:16:16 ----A---- C:\WINDOWS\SYSWOW64\msctf.dll
2015-07-29 21:16:16 ----A---- C:\WINDOWS\system32\msctf.dll
2015-07-29 21:15:35 ----A---- C:\WINDOWS\system32\rdpcorets.dll
2015-07-29 21:15:34 ----A---- C:\WINDOWS\system32\rdpudd.dll
2015-07-29 21:15:28 ----A---- C:\WINDOWS\system32\ubpm.dll
2015-07-29 21:15:13 ----A---- C:\WINDOWS\system32\services.exe
2015-07-29 21:15:10 ----A---- C:\WINDOWS\system32\apphelp.dll
2015-07-29 21:14:45 ----A---- C:\WINDOWS\system32\comctl32.dll
2015-07-29 21:14:44 ----A---- C:\WINDOWS\SYSWOW64\comctl32.dll
2015-07-29 21:14:23 ----A---- C:\WINDOWS\system32\nlasvc.dll
2015-07-29 21:14:23 ----A---- C:\WINDOWS\system32\ncsi.dll
2015-07-29 21:13:58 ----A---- C:\WINDOWS\SYSWOW64\WindowsCodecs.dll
2015-07-29 21:13:58 ----A---- C:\WINDOWS\system32\WindowsCodecs.dll
2015-07-29 21:13:54 ----A---- C:\WINDOWS\system32\shell32.dll
2015-07-29 21:13:52 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2015-07-29 21:12:20 ----A---- C:\WINDOWS\SYSWOW64\atmlib.dll
2015-07-29 21:12:20 ----A---- C:\WINDOWS\SYSWOW64\atmfd.dll
2015-07-29 21:12:20 ----A---- C:\WINDOWS\system32\atmlib.dll
2015-07-29 21:12:20 ----A---- C:\WINDOWS\system32\atmfd.dll
2015-07-29 21:12:19 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2015-07-29 21:12:19 ----A---- C:\WINDOWS\system32\jscript9.dll
2015-07-29 21:11:41 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2015-07-29 21:11:39 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2015-07-29 21:11:39 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2015-07-29 21:11:38 ----A---- C:\WINDOWS\system32\urlmon.dll
2015-07-29 21:11:37 ----A---- C:\WINDOWS\system32\mshtml.dll
2015-07-29 21:11:37 ----A---- C:\WINDOWS\system32\ieframe.dll
2015-07-29 21:11:35 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2015-07-29 21:11:35 ----A---- C:\WINDOWS\system32\iertutil.dll
2015-07-29 07:36:54 ----D---- C:\Users\Jarka\AppData\Roaming\AVAST Software
2015-07-29 07:25:31 ----A---- C:\WINDOWS\system32\drivers\aswVmm.sys
2015-07-29 07:25:31 ----A---- C:\WINDOWS\system32\drivers\aswSP.sys
2015-07-29 07:25:31 ----A---- C:\WINDOWS\system32\drivers\aswSnx.sys
2015-07-29 07:25:31 ----A---- C:\WINDOWS\system32\drivers\aswRvrt.sys
2015-07-29 07:25:31 ----A---- C:\WINDOWS\system32\drivers\aswMonFlt.sys
2015-07-29 07:25:31 ----A---- C:\WINDOWS\system32\drivers\aswHwid.sys
2015-07-29 07:25:29 ----A---- C:\WINDOWS\system32\aswBoot.exe
2015-07-29 07:25:17 ----A---- C:\WINDOWS\avastSS.scr
2015-07-29 07:23:01 ----D---- C:\Program Files\AVAST Software
2015-07-29 07:19:10 ----D---- C:\ProgramData\AVAST Software
2015-07-28 22:45:51 ----N---- C:\WINDOWS\system32\stapi64.dll
2015-07-28 22:45:39 ----A---- C:\WINDOWS\system32\stapo64.dll
2015-07-28 22:33:04 ----A---- C:\WINDOWS\system32\wuaueng.dll
2015-07-28 22:33:03 ----A---- C:\WINDOWS\system32\wucltux.dll
2015-07-28 22:33:03 ----A---- C:\WINDOWS\system32\wuauclt.exe
2015-07-28 22:33:02 ----A---- C:\WINDOWS\SYSWOW64\wuapi.dll
2015-07-28 22:33:02 ----A---- C:\WINDOWS\system32\wuapi.dll
2015-07-28 22:33:02 ----A---- C:\WINDOWS\system32\WinSetupUI.dll
2015-07-28 22:33:01 ----A---- C:\WINDOWS\system32\wups2.dll
2015-07-28 22:33:01 ----A---- C:\WINDOWS\system32\wups.dll
2015-07-28 22:33:01 ----A---- C:\WINDOWS\system32\wu.upgrade.ps.dll
2015-07-28 22:33:00 ----A---- C:\WINDOWS\system32\WUSettingsProvider.dll
2015-07-28 22:32:59 ----A---- C:\WINDOWS\SYSWOW64\wups.dll
2015-07-28 22:32:59 ----A---- C:\WINDOWS\system32\storewuauth.dll
2015-07-28 22:32:57 ----A---- C:\WINDOWS\system32\wuwebv.dll
2015-07-28 22:32:56 ----A---- C:\WINDOWS\system32\wudriver.dll
2015-07-28 22:32:54 ----A---- C:\WINDOWS\SYSWOW64\wuwebv.dll
2015-07-28 22:32:53 ----A---- C:\WINDOWS\SYSWOW64\wudriver.dll
2015-07-28 22:32:53 ----A---- C:\WINDOWS\system32\wuapp.exe
2015-07-28 22:32:52 ----A---- C:\WINDOWS\SYSWOW64\wuapp.exe
2015-07-28 22:32:52 ----A---- C:\WINDOWS\system32\wuaext.dll
2015-07-28 12:32:26 ----A---- C:\WINDOWS\system32\emptyregdb.dat
2015-07-28 12:32:13 ----SHD---- C:\Recovery
2015-07-28 12:32:02 ----DC---- C:\WINDOWS\Panther
2015-07-28 12:23:48 ----D---- C:\Program Files (x86)\Reference Assemblies
2015-07-28 12:23:48 ----D---- C:\Program Files (x86)\MSBuild
2015-07-28 12:23:46 ----D---- C:\WINDOWS\SYSWOW64\XPSViewer
2015-07-28 12:23:46 ----D---- C:\Program Files\Reference Assemblies
2015-07-28 12:23:46 ----D---- C:\Program Files\MSBuild
2015-07-28 12:22:49 ----A---- C:\WINDOWS\SYSWOW64\PresentationNative_v0300.dll
2015-07-28 12:22:46 ----A---- C:\WINDOWS\system32\PresentationNative_v0300.dll
2015-07-28 12:22:11 ----A---- C:\WINDOWS\SYSWOW64\sdbinst.exe
2015-07-28 12:22:10 ----A---- C:\WINDOWS\system32\sdbinst.exe
2015-07-28 11:50:12 ----SD---- C:\Users\Jarka\AppData\Roaming\Microsoft
2015-07-28 11:42:08 ----A---- C:\WINDOWS\SYSWOW64\PerfStringBackup.INI
2015-07-28 11:37:36 ----D---- C:\Program Files\ATI Technologies
2015-07-28 11:36:54 ----D---- C:\Program Files (x86)\ATI Technologies
2015-07-28 11:36:40 ----D---- C:\Program Files\Synaptics
2015-07-28 11:36:29 ----D---- C:\WINDOWS\system32\SRSLabs
2015-07-28 11:35:55 ----D---- C:\AMD
2015-07-28 11:35:45 ----D---- C:\Program Files\Common Files\ATI Technologies
2015-07-28 11:35:34 ----D---- C:\Program Files\AMD
2015-07-28 11:34:55 ----D---- C:\WINDOWS\Prefetch
2015-07-18 10:26:19 ----D---- C:\ProgramData\REVOLT
2015-07-15 13:39:08 ----N---- C:\WINDOWS\system32\CompatTelRunner.exe
2015-07-14 10:54:24 ----D---- C:\Users\Jarka\AppData\Roaming\TripleTown
2015-07-14 10:54:03 ----D---- C:\GOG Games

======List of files/folders modified in the last 1 month======

2015-08-08 10:14:16 ----RD---- C:\WINDOWS\System32
2015-08-08 10:14:16 ----D---- C:\WINDOWS\Inf
2015-08-08 10:14:16 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2015-08-08 10:12:33 ----D---- C:\WINDOWS\SoftwareDistribution
2015-08-08 10:12:33 ----D---- C:\Windows
2015-08-08 10:10:46 ----A---- C:\WINDOWS\SYSWOW64\bscs.ini
2015-08-08 10:08:10 ----A---- C:\WINDOWS\SYSWOW64\LOCALSERVICE.INI
2015-08-08 10:08:09 ----D---- C:\WINDOWS\Temp
2015-08-08 10:07:31 ----A---- C:\WINDOWS\SYSWOW64\LOCALDEVICE.INI
2015-08-08 10:04:15 ----SD---- C:\ProgramData\Microsoft
2015-08-08 10:03:49 ----RD---- C:\Program Files (x86)
2015-08-08 10:00:09 ----D---- C:\WINDOWS\system32\sru
2015-08-08 08:58:24 ----D---- C:\Users\Jarka\AppData\Roaming\Spotify
2015-08-08 08:55:11 ----D---- C:\Users\Jarka\AppData\Roaming\BitTorrent
2015-08-08 08:45:43 ----RD---- C:\Program Files
2015-08-08 08:41:52 ----D---- C:\Users\Jarka\AppData\Roaming\DAEMON Tools Lite
2015-08-08 08:41:45 ----D---- C:\WINDOWS\debug
2015-08-08 08:31:19 ----D---- C:\Games
2015-08-07 23:44:57 ----D---- C:\WINDOWS\Microsoft.NET
2015-08-07 18:04:56 ----D---- C:\WINDOWS\system32\drivers
2015-08-07 18:04:38 ----HD---- C:\ProgramData
2015-08-07 17:28:38 ----D---- C:\Program Files (x86)\TeamViewer
2015-08-07 17:28:36 ----RSD---- C:\WINDOWS\Fonts
2015-08-07 17:28:35 ----D---- C:\Users\Jarka\AppData\Roaming\TeamViewer
2015-08-07 17:27:21 ----D---- C:\Program Files (x86)\1-click run
2015-08-07 17:26:48 ----SHD---- C:\WINDOWS\Installer
2015-08-07 17:26:48 ----HD---- C:\Config.Msi
2015-08-07 17:26:47 ----D---- C:\Program Files (x86)\Common Files
2015-08-07 17:12:08 ----D---- C:\WINDOWS\system32\Tasks
2015-08-07 09:59:42 ----D---- C:\Users\Jarka\AppData\Roaming\Winamp
2015-08-07 08:47:36 ----SHD---- C:\System Volume Information
2015-08-06 23:18:55 ----D---- C:\WINDOWS\system32\config
2015-08-06 15:14:35 ----D---- C:\Users\Jarka\AppData\Roaming\vlc
2015-08-06 14:45:30 ----D---- C:\Program Files (x86)\Opera
2015-08-06 10:49:33 ----D---- C:\WINDOWS\system32\NDF
2015-08-06 10:43:51 ----D---- C:\WINDOWS\AppReadiness
2015-08-05 21:20:13 ----D---- C:\WINDOWS\system32\catroot2
2015-07-31 07:27:47 ----D---- C:\WINDOWS\rescache
2015-07-31 07:23:27 ----D---- C:\WINDOWS\Logs
2015-07-31 07:20:50 ----RD---- C:\WINDOWS\assembly
2015-07-30 12:07:32 ----D---- C:\WINDOWS\system32\wdi
2015-07-30 12:06:22 ----D---- C:\WINDOWS\SysWOW64
2015-07-30 12:05:50 ----D---- C:\WINDOWS\WinSxS
2015-07-30 08:31:02 ----D---- C:\Program Files\Windows Defender
2015-07-30 08:30:55 ----D---- C:\Program Files (x86)\Windows Defender
2015-07-30 08:30:52 ----D---- C:\WINDOWS\system32\sr-Latn-RS
2015-07-30 08:30:52 ----D---- C:\WINDOWS\system32\sr-Latn-CS
2015-07-30 08:30:29 ----D---- C:\WINDOWS\system32\CodeIntegrity
2015-07-30 08:30:03 ----D---- C:\WINDOWS\system32\en-US
2015-07-30 08:27:31 ----D---- C:\WINDOWS\system32\cs-CZ
2015-07-30 08:27:29 ----D---- C:\WINDOWS\apppatch
2015-07-30 08:27:09 ----D---- C:\WINDOWS\SYSWOW64\cs-CZ
2015-07-30 08:26:58 ----D---- C:\Program Files\Internet Explorer
2015-07-30 08:26:58 ----D---- C:\Program Files (x86)\Internet Explorer
2015-07-30 08:26:44 ----D---- C:\WINDOWS\PolicyDefinitions
2015-07-30 08:26:00 ----RD---- C:\WINDOWS\ToastData
2015-07-30 08:25:08 ----D---- C:\Program Files\Windows Journal
2015-07-30 05:09:27 ----D---- C:\WINDOWS\CbsTemp
2015-07-29 12:35:38 ----HD---- C:\Program Files\WindowsApps
2015-07-29 09:57:14 ----D---- C:\WINDOWS\system32\drivers\UMDF
2015-07-29 07:26:13 ----D---- C:\WINDOWS\system32\DriverStore
2015-07-29 07:03:02 ----D---- C:\WINDOWS\Tasks
2015-07-29 04:03:36 ----D---- C:\WINDOWS\system32\restore
2015-07-28 22:08:42 ----D---- C:\WINDOWS\system32\AutoUpdateLicense
2015-07-28 21:28:37 ----SHD---- C:\$Recycle.Bin
2015-07-28 12:34:34 ----D---- C:\Program Files\Windows NT
2015-07-28 12:33:32 ----D---- C:\WINDOWS\Registration
2015-07-28 12:32:48 ----D---- C:\WINDOWS\system32\LogFiles
2015-07-28 12:24:30 ----RSD---- C:\WINDOWS\Media
2015-07-28 12:15:04 ----D---- C:\ProgramData\AMD
2015-07-28 12:09:42 ----D---- C:\WINDOWS\SYSWOW64\drivers
2015-07-28 12:09:41 ----D---- C:\WINDOWS\system32\Sysprep
2015-07-28 12:09:21 ----D---- C:\WINDOWS\ShellNew
2015-07-28 12:02:00 ----D---- C:\WINDOWS\WinStore
2015-07-28 12:01:59 ----D---- C:\WINDOWS\twain_32
2015-07-28 12:01:59 ----D---- C:\WINDOWS\SYSWOW64\winrm
2015-07-28 12:01:58 ----D---- C:\WINDOWS\SYSWOW64\WCN
2015-07-28 12:01:57 ----D---- C:\WINDOWS\SYSWOW64\sysprep
2015-07-28 12:01:57 ----D---- C:\WINDOWS\SYSWOW64\SMI
2015-07-28 12:01:56 ----D---- C:\WINDOWS\SYSWOW64\slmgr
2015-07-28 12:01:56 ----D---- C:\WINDOWS\SYSWOW64\SDA
2015-07-28 12:01:56 ----D---- C:\WINDOWS\SYSWOW64\Printing_Admin_Scripts
2015-07-28 12:01:56 ----D---- C:\WINDOWS\SYSWOW64\MUI
2015-07-28 12:01:56 ----D---- C:\WINDOWS\SYSWOW64\migwiz
2015-07-28 12:01:56 ----D---- C:\WINDOWS\SYSWOW64\LogFiles
2015-07-28 12:01:54 ----D---- C:\WINDOWS\SYSWOW64\IME
2015-07-28 12:01:53 ----D---- C:\WINDOWS\SYSWOW64\en-US
2015-07-28 12:01:53 ----D---- C:\WINDOWS\SYSWOW64\drivers\UMDF
2015-07-28 12:01:52 ----D---- C:\WINDOWS\SYSWOW64\catroot
2015-07-28 12:01:49 ----D---- C:\WINDOWS\system32\winrm
2015-07-28 12:01:47 ----D---- C:\WINDOWS\system32\WCN
2015-07-28 12:01:46 ----D---- C:\WINDOWS\system32\SystemResetPlatform
2015-07-28 12:01:46 ----D---- C:\WINDOWS\system32\spool
2015-07-28 12:01:41 ----D---- C:\WINDOWS\system32\slmgr
2015-07-28 12:01:40 ----D---- C:\WINDOWS\system32\Printing_Admin_Scripts
2015-07-28 12:00:37 ----D---- C:\WINDOWS\system32\oobe
2015-07-28 12:00:37 ----D---- C:\WINDOWS\system32\MUI
2015-07-28 12:00:36 ----D---- C:\WINDOWS\system32\IME
2015-07-28 12:00:35 ----DC---- C:\WINDOWS\system32\DRVSTORE
2015-07-28 11:58:58 ----D---- C:\WINDOWS\system32\Boot
2015-07-28 11:58:51 ----D---- C:\WINDOWS\Migration
2015-07-28 11:58:37 ----RD---- C:\WINDOWS\ImmersiveControlPanel
2015-07-28 11:58:37 ----D---- C:\WINDOWS\IME
2015-07-28 11:58:36 ----D---- C:\WINDOWS\Help
2015-07-28 11:58:34 ----D---- C:\WINDOWS\DigitalLocker
2015-07-28 11:58:31 ----RD---- C:\Users
2015-07-28 11:58:30 ----D---- C:\ProgramData\PRICache
2015-07-28 11:58:20 ----SHD---- C:\Program Files (x86)\Windows Sidebar
2015-07-28 11:58:20 ----D---- C:\Program Files (x86)\Windows Media Player
2015-07-28 11:58:15 ----D---- C:\Program Files (x86)\Microsoft.NET
2015-07-28 11:58:04 ----SHD---- C:\Program Files\Windows Sidebar
2015-07-28 11:58:04 ----D---- C:\Program Files\Windows Media Player
2015-07-28 11:58:02 ----D---- C:\Program Files\Common Files\microsoft shared
2015-07-28 11:53:12 ----D---- C:\WINDOWS\system32\Recovery
2015-07-28 11:35:45 ----D---- C:\Program Files\Common Files
2015-07-26 17:14:04 ----D---- C:\Program Files (x86)\Hewlett-Packard
2015-07-26 17:09:48 ----D---- C:\Program Files\Hewlett-Packard
2015-07-26 17:08:51 ----D---- C:\Users\Jarka\AppData\Roaming\hpqlog
2015-07-26 16:53:27 ----D---- C:\ProgramData\HPQLOG
2015-07-26 16:03:45 ----D---- C:\WINDOWS\AUInstallAgent
2015-07-16 09:59:32 ----D---- C:\WINDOWS\system32\MRT
2015-07-15 14:58:02 ----D---- C:\ProgramData\Microsoft Help

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 amd_sata;amd_sata; C:\WINDOWS\System32\drivers\amd_sata.sys [2012-07-23 79528]
R0 amd_xata;amd_xata; C:\WINDOWS\System32\drivers\amd_xata.sys [2012-07-23 26280]
R0 aswRvrt;avast! Revert; C:\WINDOWS\system32\drivers\aswRvrt.sys [2015-07-29 65224]
R0 aswVmm;avast! VM Monitor; C:\WINDOWS\system32\drivers\aswVmm.sys [2015-07-29 274808]
R0 hpdskflt;@oem41.inf,%service_desc%;HP Filter; C:\WINDOWS\system32\DRIVERS\hpdskflt.sys [2012-08-22 31040]
R1 aswSnx;aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [2015-07-29 1048856]
R1 aswSP;aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [2015-07-29 447944]
R1 CLVirtualDrive;CLVirtualDrive; C:\WINDOWS\system32\DRIVERS\CLVirtualDrive.sys [2012-06-25 92536]
R1 dtsoftbus01;@oem37.inf,%DTSoftBus.SVCDESC%;DAEMON Tools Virtual Bus Driver; C:\WINDOWS\System32\drivers\dtsoftbus01.sys [2014-02-15 283200]
R1 vwififlt;@%SystemRoot%\System32\drivers\vwififlt.sys,-259; C:\WINDOWS\system32\DRIVERS\vwififlt.sys [2013-08-22 71680]
R2 AODDriver4.2.0;AODDriver4.2.0; \??\C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys [2013-09-20 59648]
R2 aswHwid;avast! HardwareID; C:\WINDOWS\system32\drivers\aswHwid.sys [2015-07-29 28656]
R2 aswMonFlt;aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [2015-07-29 90968]
R2 atksgt;atksgt; C:\WINDOWS\system32\DRIVERS\atksgt.sys [2014-04-16 312480]
R2 lirsgt;lirsgt; C:\WINDOWS\system32\DRIVERS\lirsgt.sys [2014-04-16 43168]
R3 Accelerometer;@oem41.inf,%accelerometer_desc%;HP Mobile Data Protection Sensor; C:\WINDOWS\system32\DRIVERS\Accelerometer.sys [2012-08-22 43328]
R3 amdkmdag;amdkmdag; C:\WINDOWS\system32\DRIVERS\atikmdag.sys [2014-07-21 13209088]
R3 amdkmdap;amdkmdap; C:\WINDOWS\system32\DRIVERS\atikmpag.sys [2014-07-21 626688]
R3 AtiHDAudioService;@oem10.inf,%ATIHdAudioDriver.SvcDesc%;AMD Function Driver for HD Audio Service; C:\WINDOWS\system32\drivers\AtihdW86.sys [2012-07-17 98472]
R3 BtAudioBusSrv;@oem6.inf,%SvcDesc%;IVT Bluetooth Audio Bus Service; C:\WINDOWS\System32\Drivers\BtAudioBus.sys [2012-06-15 23136]
R3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Služba Bluetooth Enumerator; C:\WINDOWS\system32\DRIVERS\BthEnum.sys [2014-11-21 53248]
R3 BthL2caScoIfSrv;Bluetooth Profile Interface Driver Service; C:\WINDOWS\System32\Drivers\BtL2caScoIf.sys [2012-07-20 56904]
R3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Ovladač úspory energie technologie Bluetooth; C:\WINDOWS\system32\DRIVERS\BthLEEnum.sys [2014-11-21 226304]
R3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Zařízení Bluetooth (síť PAN); C:\WINDOWS\system32\DRIVERS\bthpan.sys [2014-11-21 118272]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Ovladač rozhraní USB radiostanice Bluetooth; C:\WINDOWS\System32\Drivers\BTHUSB.sys [2014-11-21 81920]
R3 btUrbFilterDrv;IVT URB Bluetooth Filter Driver Service; C:\WINDOWS\System32\Drivers\IvtUrbBtFlt.sys [2012-08-14 48736]
R3 clwvd;@oem15.inf,%clwvd.DeviceDesc%;CyberLink Webcam Sharing Manager; C:\WINDOWS\system32\DRIVERS\clwvd.sys [2012-08-28 40944]
R3 HpqKbFiltr;@oem32.inf,%HpqKbFiltr.SvcDesc%;HpqKbFilter Driver; C:\WINDOWS\System32\drivers\HpqKbFiltr.sys [2012-08-28 26504]
R3 JMCR;JMCR; C:\WINDOWS\System32\drivers\jmcr.sys [2012-07-31 175928]
R3 MBAMProtector;MBAMProtector; \??\C:\WINDOWS\system32\drivers\mbam.sys [2015-06-18 25816]
R3 netr28x;@oem38.inf,%Generic.Service.DispName%;Ralink 802.11n Extensible Wireless Driver; C:\WINDOWS\system32\DRIVERS\netr28x.sys [2013-12-04 2505904]
R3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Zařízení Bluetooth (RFCOMM protokol TDI); C:\WINDOWS\system32\DRIVERS\rfcomm.sys [2014-11-21 167424]
R3 rtbth;@oem36.inf,%General.Service.DispName%;RTBTH Bluetooth Device Driver; C:\WINDOWS\System32\drivers\rtbth.sys [2013-12-02 1204424]
R3 RTL8168;@netrt630x64.inf,%rtl8168.Service.DispName%;Realtek 8168 NT Driver; C:\WINDOWS\system32\DRIVERS\Rt630x64.sys [2013-06-18 591360]
R3 SensorsServiceDriver;@sensorsservicedriver.inf,%WudfSensorsServiceDriverDisplayName%;Služba Reflektor UMDF pro knihovnu SensorsServiceDriver; C:\WINDOWS\system32\DRIVERS\WUDFRd.sys [2014-11-21 226304]
R3 SPUVCbv;@oem11.inf,%SPUVCb.ServiceName%;SPUVCb Driver Service; C:\WINDOWS\System32\Drivers\SPUVCbv_x64.sys [2012-09-23 1064184]
R3 STHDA;@%SystemRoot%\system32\stlang64.dll,-10322; C:\WINDOWS\system32\DRIVERS\stwrt64.sys [2012-09-20 543744]
R3 SynTP;@oem31.inf,%SynTP.SvcDesc%;Synaptics TouchPad Driver; C:\WINDOWS\system32\DRIVERS\SynTP.sys [2013-10-30 549104]
R3 vwifimp;@%SystemRoot%\System32\drivers\vwifimp.sys,-261; C:\WINDOWS\system32\DRIVERS\vwifimp.sys [2013-08-22 36864]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Ovladač portu Bluetooth; C:\WINDOWS\System32\Drivers\BTHport.sys [2014-11-21 1198080]
S3 dg_ssudbus;@oem35.inf,%ssud.Service.DeviceDesc%;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\WINDOWS\system32\DRIVERS\ssudbus.sys [2014-01-22 108800]
S3 MBAMWebAccessControl;MBAMWebAccessControl; \??\C:\WINDOWS\system32\drivers\mwac.sys [2015-06-18 64216]
S3 SmbDrv;SmbDrv; C:\WINDOWS\System32\drivers\Smb_driver_AMDASF.sys [2012-08-15 41272]
S3 SmbDrvI;SmbDrvI; C:\WINDOWS\System32\drivers\Smb_driver_Intel.sys [2012-08-15 43832]
S3 ssudmdm;@oem33.inf,%ssud.Service.Name%;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.); C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [2014-01-22 206080]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2015-07-07 82128]
R2 AMD External Events Utility;AMD External Events Utility; C:\WINDOWS\system32\atiesrxx.exe [2014-07-21 239616]
R2 AMD FUEL Service;AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [2014-07-04 344064]
R2 avast! Antivirus;Avast Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2015-07-29 146600]
R2 BlueSoleilCS;BlueSoleilCS; C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BlueSoleilCS.exe [2012-08-15 1578496]
R2 HP Support Assistant Service;HP Support Assistant Service; C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe [2012-08-15 85504]
R2 hpHotkeyMonitor;hpHotkeyMonitor; C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HPHotkeyMonitor.exe [2012-08-29 523680]
R2 hpqddsvc;Služba HP CUE DeviceDiscovery; C:\WINDOWS\syswow64\svchost.exe [2014-11-21 33088]
R2 hpsrv;@oem41.inf,%hpservice_desc%;HP Service; C:\WINDOWS\system32\Hpservice.exe [2012-08-22 33600]
R2 Net Driver HPZ12;Net Driver HPZ12; C:\Windows\System32\svchost.exe [2014-11-21 38792]
R2 Pml Driver HPZ12;Pml Driver HPZ12; C:\Windows\System32\svchost.exe [2014-11-21 38792]
R2 STacSV;@%SystemRoot%\system32\stlang64.dll,-10122; C:\Program Files\IDT\WDM\STacSV64.exe [2012-09-20 323072]
R2 vcsFPService;Validity VCS Fingerprint Service; C:\Windows\system32\vcsFPService.exe [2012-07-19 2714232]
R3 BsHelpCS;BsHelpCS; C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BsHelpCS.exe [2012-08-15 138752]
R3 hpqcxs08;hpqcxs08; C:\WINDOWS\syswow64\svchost.exe [2014-11-21 33088]
R3 hpqwmiex;HP Software Framework Service; C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe [2012-08-11 1001376]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-10-14 116648]
S2 MBAMService;MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [2015-06-18 1133880]
S3 aspnet_state;@%SystemRoot%\Microsoft.NET\Framework64\v4.0.30319\aspnet_rc.dll,-1; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2013-08-10 50784]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2013-08-03 43696]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-10-14 116648]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files (x86)\Microsoft Office\Office12\GrooveAuditService.exe [2009-02-26 64856]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S4 BthAvrcpTg;@bthaudhid.inf,%BthAvrcpTg_SvcDesc%;Bluetooth Audio/Video Remote Control HID; C:\WINDOWS\System32\drivers\BthAvrcpTg.sys [2013-08-22 36992]
S4 BthHFEnum;@bthhfenum.inf,%BthHFEnum.SVCDESC%;Bluetooth Hands-Free Audio and Call Control HID Enumerator; C:\WINDOWS\System32\drivers\bthhfenum.sys [2014-11-21 57856]
S4 bthhfhid;@bthaudhid.inf,%BthAudioHFHid.SVCDESC%;Bluetooth Hands-Free Call Control HID; C:\WINDOWS\System32\drivers\BthHFHid.sys [2013-08-22 30720]
S4 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\WINDOWS\System32\svchost.exe [2014-11-21 38792]

-----------------EOF-----------------

Re: Prosím o preventivní kontrolu, děkuju

Napsal: 08 srp 2015 09:48
od Hruzka
a log z FRST:

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:06-08-2015
Ran by Jarka (administrator) on MILÁÁÁÁŠEK (08-08-2015 10:33:12)
Running from C:\Users\Jarka\Desktop
Loaded Profiles: Jarka (Available Profiles: Jarka & Administrator)
Platform: Windows 8.1 (X64) Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(AMD) C:\Windows\System32\atiesrxx.exe
(AMD) C:\Windows\System32\atieclxx.exe
(IDT, Inc.) C:\Program Files\IDT\WDM\stacsv64.exe
(Hewlett-Packard Company) C:\Windows\System32\hpservice.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Advanced Micro Devices, Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
(IVT Corporation) C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BlueSoleilCS.exe
(Microsoft Corporation) C:\Windows\System32\dasHost.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HPHotkeyMonitor.exe
(Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe
(Validity Sensors, Inc.) C:\Windows\System32\vcsFPService.exe
(IVT Corporation) C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BsHelpCS.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\System32\SkyDrive.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\44.0.2403.130\Installer\setup.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(IDT, Inc.) C:\Program Files\IDT\WDM\sttray64.exe
(Hewlett-Packard Co.) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe
(Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe
(Hewlett-Packard) C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSA_Service.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(forum.viry.cz) C:\Users\Jarka\Desktop\FRSTLauncher.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2804976 2013-10-30] (Synaptics Incorporated)
HKLM\...\Run: [SysTrayApp] => C:\Program Files\IDT\WDM\sttray64.exe [1664000 2012-09-20] (IDT, Inc.)
HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [766688 2014-07-04] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [QLBController] => C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe [334240 2012-08-29] (Hewlett-Packard Company)
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [BtTray] => c:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BtTray.exe [364032 2012-08-16] (IVT Corporation)
HKLM-x32\...\Run: [CLMLServer_For_P2G8] => c:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe [111120 2012-06-08] (CyberLink)
HKLM-x32\...\Run: [CLVirtualDrive] => c:\Program Files (x86)\CyberLink\Power2Go8\VirtualDrive.exe [491120 2012-07-24] (CyberLink Corp.)
HKLM-x32\...\Run: [RemoteControl10] => c:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe [91432 2012-03-29] (CyberLink Corp.)
HKLM-x32\...\Run: [YouCam Mirage] => c:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe [136488 2012-08-31] (CyberLink)
HKLM-x32\...\Run: [YouCam Tray] => c:\Program Files (x86)\CyberLink\YouCam\YouCamTray.exe [167024 2012-08-31] (CyberLink Corp.)
HKLM-x32\...\Run: [GrooveMonitor] => C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [30040 2009-02-26] (Microsoft Corporation)
HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe [49208 2010-06-09] (Hewlett-Packard)
HKLM-x32\...\Run: [Family Tree Builder Update] => C:\Program Files (x86)\MyHeritage\Bin\FTBCheckUpdates.exe [2532864 2013-11-12] (MyHeritage)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [334896 2015-04-30] (Oracle Corporation)
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [6109776 2015-07-29] (AVAST Software)
HKU\S-1-5-21-1134397532-792521543-4184498135-1002\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3672640 2013-03-14] (Disc Soft Ltd)
HKU\S-1-5-21-1134397532-792521543-4184498135-1002\...\Run: [Spotify Web Helper] => C:\Users\Jarka\AppData\Roaming\Spotify\SpotifyWebHelper.exe [2017848 2015-07-24] (Spotify Ltd)
HKU\S-1-5-21-1134397532-792521543-4184498135-1002\...\Run: [Spotify] => C:\Users\Jarka\AppData\Roaming\Spotify\Spotify.exe [7574584 2015-07-24] (Spotify Ltd)
HKU\S-1-5-21-1134397532-792521543-4184498135-1002\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [8418584 2015-07-17] (Piriform Ltd)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\HP Digital Imaging Monitor.lnk [2014-01-02]
ShortcutTarget: HP Digital Imaging Monitor.lnk -> C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe (Hewlett-Packard Co.)
Startup: C:\Users\Jarka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk [2015-02-19]
ShortcutTarget: Dropbox.lnk -> C:\Users\Jarka\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2015-07-29] (AVAST Software)
ShellIconOverlayIdentifiers: [DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Jarka\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll [2015-02-11] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Jarka\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll [2015-02-11] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [DropboxExt3] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Jarka\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll [2015-02-11] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [DropboxExt4] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Jarka\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll [2015-02-11] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Jarka\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll [2015-02-11] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Jarka\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll [2015-02-11] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [DropboxExt3] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Jarka\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll [2015-02-11] (Dropbox, Inc.)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.bing.com?pc=CMNTDFJS
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.bing.com?pc=CMNTDFJS
HKU\S-1-5-21-1134397532-792521543-4184498135-1002\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.bing.com?pc=CMNTDFJS
HKU\S-1-5-21-1134397532-792521543-4184498135-1002\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.bing.com?pc=CMNTDFJS
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_45\bin\ssv.dll [2015-05-03] (Oracle Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_45\bin\jp2ssv.dll [2015-05-03] (Oracle Corporation)
BHO-x32: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2012-07-10] (Hewlett-Packard)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Windows\SysWow64\skype4com.dll [2012-08-14] (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{0C40C9EE-04D1-4D28-89D3-3B0E9B42E1C0}: [NameServer] 8.8.8.8
Tcpip\..\Interfaces\{0C40C9EE-04D1-4D28-89D3-3B0E9B42E1C0}: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{8A59FA6F-92DA-4CB3-984A-62CDE1CBDA40}: [DhcpNameServer] 172.168.0.2

FireFox:
========
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.40416.0\npctrl.dll [2015-04-16] ( Microsoft Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=11.45.2 -> C:\Program Files (x86)\Java\jre1.8.0_45\bin\dtplugin\npDeployJava1.dll [2015-05-03] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.45.2 -> C:\Program Files (x86)\Java\jre1.8.0_45\bin\plugin2\npjp2.dll [2015-05-03] (Oracle Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.40416.0\npctrl.dll [2015-04-15] ( Microsoft Corporation)
FF Plugin-x32: @oberon-media.com/ONCAdapter -> C:\Program Files (x86)\Common Files\Oberon Media\NCAdapter\1.0.0.14\npapicomadapter.dll [No File]
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.28.1\npGoogleUpdate3.dll [2015-07-15] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.28.1\npGoogleUpdate3.dll [2015-07-15] (Google Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2015-06-29] (Adobe Systems Inc.)

Chrome:
=======
CHR Profile: C:\Users\Jarka\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Translate) - C:\Users\Jarka\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapbdbdomjkkjkaonfhkkikfgjllcleb [2013-10-14]
CHR Extension: (BIODIGITAL HUMAN) - C:\Users\Jarka\AppData\Local\Google\Chrome\User Data\Default\Extensions\agoenciogemlojlhccbcpcfflicgnaak [2013-10-14]
CHR Extension: (Angry Birds) - C:\Users\Jarka\AppData\Local\Google\Chrome\User Data\Default\Extensions\aknpkdffaafgjchaibgeefbgmgeghloj [2013-10-14]
CHR Extension: (CacheList) - C:\Users\Jarka\AppData\Local\Google\Chrome\User Data\Default\Extensions\amhhdbdhoghppijbjfdkiaconkmfbbpa [2014-10-03]
CHR Extension: (Google Docs) - C:\Users\Jarka\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2013-10-14]
CHR Extension: (Google Drive) - C:\Users\Jarka\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2013-10-14]
CHR Extension: (No Name) - C:\Users\Jarka\AppData\Local\Google\Chrome\User Data\Default\Extensions\bcjbagclppcgdbpobcpoojdjdmcjhpid [2015-08-08]
CHR Extension: (YouTube) - C:\Users\Jarka\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2013-10-14]
CHR Extension: (Google+ Notifications) - C:\Users\Jarka\AppData\Local\Google\Chrome\User Data\Default\Extensions\boemmnepglcoinjcdlfcpcbmhiecichi [2013-10-14]
CHR Extension: (Pool) - C:\Users\Jarka\AppData\Local\Google\Chrome\User Data\Default\Extensions\cedbddnnmhgnedpamoenmdkhnpnfbpjb [2013-10-14]
CHR Extension: (OneFeed) - C:\Users\Jarka\AppData\Local\Google\Chrome\User Data\Default\Extensions\cidjbmjjebfhfjodbphfklcmknafddmb [2013-10-14]
CHR Extension: (Google Search) - C:\Users\Jarka\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2013-10-14]
CHR Extension: (Lookup Companion for Wikipedia) - C:\Users\Jarka\AppData\Local\Google\Chrome\User Data\Default\Extensions\dhgpkiiipkgmckicafkhcihkcldbdeej [2013-10-14]
CHR Extension: (Solitairey) - C:\Users\Jarka\AppData\Local\Google\Chrome\User Data\Default\Extensions\dofbnmhnoodmmlhflbcihicmbnhhinhp [2013-10-14]
CHR Extension: (Ponyhoof) - C:\Users\Jarka\AppData\Local\Google\Chrome\User Data\Default\Extensions\efjjgphedlaihnlgaibiaihhmhaejjdd [2015-02-05]
CHR Extension: (Google Calendar) - C:\Users\Jarka\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejjicmeblgpmajnghnpcppodonldlgfn [2013-10-14]
CHR Extension: (XKit) - C:\Users\Jarka\AppData\Local\Google\Chrome\User Data\Default\Extensions\fpfgeeomkfdefkckijiabdbogjkdaecd [2015-02-25]
CHR Extension: (MagicScroll eBook Reader) - C:\Users\Jarka\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghgnmgfdoiplfmhgghbmlphanpfmjble [2014-12-29]
CHR Extension: (AdBlock) - C:\Users\Jarka\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2014-11-01]
CHR Extension: (Last.fm Scrobbler) - C:\Users\Jarka\AppData\Local\Google\Chrome\User Data\Default\Extensions\hhinaapppaileiechjoiifaancjggfjm [2014-05-25]
CHR Extension: (Checker Plus for Google Calendar™) - C:\Users\Jarka\AppData\Local\Google\Chrome\User Data\Default\Extensions\hkhggnncdpfibdhinjiegagmopldibha [2013-10-14]
CHR Extension: (No Name) - C:\Users\Jarka\AppData\Local\Google\Chrome\User Data\Default\Extensions\iblenkmcolcdonmlfknbpbgjebabcoae [2015-08-08]
CHR Extension: (Google +1 Button) - C:\Users\Jarka\AppData\Local\Google\Chrome\User Data\Default\Extensions\jgoepmocgafhnchmokaimcmlojpnlkhp [2013-10-14]
CHR Extension: (Typing Test - KeyHero) - C:\Users\Jarka\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkcieoaeooeidmpaopkpjpjfakidlabm [2013-10-14]
CHR Extension: (A Crack in Time and Space) - C:\Users\Jarka\AppData\Local\Google\Chrome\User Data\Default\Extensions\jmmpbeckibaikflbnegjemaegnpbgjol [2015-01-01]
CHR Extension: (Google Maps) - C:\Users\Jarka\AppData\Local\Google\Chrome\User Data\Default\Extensions\lneaknkopdijkpnocmklfnjbeapigfbh [2013-10-14]
CHR Extension: (Google Dictionary (by Google)) - C:\Users\Jarka\AppData\Local\Google\Chrome\User Data\Default\Extensions\mgijmajocgfcbeboacabfgobmjgjcoja [2013-10-14]
CHR Extension: (Facebook Notifications) - C:\Users\Jarka\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmameahlembdcigphohgiodcgjomcgeo [2013-10-14]
CHR Extension: (Chrome Web Store Payments) - C:\Users\Jarka\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-10-14]
CHR Extension: (Tumblr Savior) - C:\Users\Jarka\AppData\Local\Google\Chrome\User Data\Default\Extensions\oefddkjnflmjbclpnnoegglmmdfkidip [2014-12-20]
CHR Extension: (Weather Underground) - C:\Users\Jarka\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjejbgheonogbpfkkjigbmahaljipoej [2013-10-14]
CHR Extension: (Gmail) - C:\Users\Jarka\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2013-10-14]

==================== Services (Whitelisted) ========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [344064 2014-07-04] (Advanced Micro Devices, Inc.) [File not signed]
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [146600 2015-07-29] (AVAST Software)
R2 BlueSoleilCS; C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BlueSoleilCS.exe [1578496 2012-08-15] (IVT Corporation) [File not signed]
R3 BsHelpCS; C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BsHelpCS.exe [138752 2012-08-15] (IVT Corporation) [File not signed]
U4 BthAvrcpTg; C:\Windows\System32\drivers\BthAvrcpTg.sys [36992 2013-08-22] (Microsoft Corporation)
U4 BthHFEnum; C:\Windows\System32\drivers\bthhfenum.sys [57856 2014-11-21] (Microsoft Corporation)
U4 bthhfhid; C:\Windows\System32\drivers\BthHFHid.sys [30720 2013-08-22] (Microsoft Corporation)
U4 BthHFSrv; C:\Windows\System32\svchost.exe [38792 2014-11-21] (Microsoft Corporation)
U4 BthHFSrv; C:\Windows\SysWOW64\svchost.exe [33088 2014-11-21] (Microsoft Corporation)
R2 HP Support Assistant Service; C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe [85504 2012-08-15] (Hewlett-Packard Company) [File not signed]
R2 hpHotkeyMonitor; C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HPHotkeyMonitor.exe [523680 2012-08-29] (Hewlett-Packard Company)
S2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [1133880 2015-06-18] (Malwarebytes Corporation)
R2 Net Driver HPZ12; C:\Windows\System32\HPZinw12.dll [71680 2010-08-06] (Hewlett-Packard) [File not signed]
R2 Pml Driver HPZ12; C:\Windows\System32\HPZipm12.dll [89600 2010-08-06] (Hewlett-Packard) [File not signed]
R2 STacSV; C:\Program Files\IDT\WDM\STacSV64.exe [323072 2012-09-20] (IDT, Inc.) [File not signed]
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [366520 2015-02-04] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23792 2015-02-04] (Microsoft Corporation)

===================== Drivers (Whitelisted) ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 AODDriver4.2.0; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys [59648 2013-09-20] (Advanced Micro Devices)
R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [28656 2015-07-29] (AVAST Software)
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [90968 2015-07-29] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65224 2015-07-29] (AVAST Software)
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1048856 2015-07-29] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [447944 2015-07-29] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [274808 2015-07-29] (AVAST Software)
R3 AtiHDAudioService; C:\Windows\system32\drivers\AtihdW86.sys [98472 2012-07-17] (Advanced Micro Devices)
R2 atksgt; C:\Windows\System32\DRIVERS\atksgt.sys [312480 2014-04-16] ()
R3 BtAudioBusSrv; C:\Windows\System32\Drivers\BtAudioBus.sys [23136 2012-06-15] (IVT Corporation)
R3 BthL2caScoIfSrv; C:\Windows\System32\Drivers\BtL2caScoIf.sys [56904 2012-07-20] (Ralink Corporation)
R3 BthLEEnum; C:\Windows\system32\DRIVERS\BthLEEnum.sys [226304 2014-11-21] (Microsoft Corporation)
R3 btUrbFilterDrv; C:\Windows\System32\Drivers\IvtUrbBtFlt.sys [48736 2012-08-14] (Ralink Corporation)
R1 CLVirtualDrive; C:\Windows\system32\DRIVERS\CLVirtualDrive.sys [92536 2012-06-25] (CyberLink)
R1 dtsoftbus01; C:\Windows\System32\drivers\dtsoftbus01.sys [283200 2014-02-15] (DT Soft Ltd)
R2 lirsgt; C:\Windows\System32\DRIVERS\lirsgt.sys [43168 2014-04-16] ()
R3 MBAMProtector; C:\WINDOWS\system32\drivers\mbam.sys [25816 2015-06-18] (Malwarebytes Corporation)
S3 MBAMWebAccessControl; C:\WINDOWS\system32\drivers\mwac.sys [64216 2015-06-18] (Malwarebytes Corporation)
R3 rtbth; C:\Windows\System32\drivers\rtbth.sys [1204424 2013-12-02] (Ralink Technology, Corp.)
R3 SensorsServiceDriver; C:\Windows\system32\DRIVERS\WUDFRd.sys [226304 2014-11-21] (Microsoft Corporation)
S3 SmbDrv; C:\Windows\System32\drivers\Smb_driver_AMDASF.sys [41272 2012-08-15] (Synaptics Incorporated)
S3 SmbDrvI; C:\Windows\System32\drivers\Smb_driver_Intel.sys [43832 2012-08-15] (Synaptics Incorporated)
R3 SPUVCbv; C:\Windows\System32\Drivers\SPUVCbv_x64.sys [1064184 2012-09-23] (Sunplus)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114496 2015-02-04] (Microsoft Corporation)
R3 WirelessButtonDriver; C:\Windows\System32\drivers\WirelessButtonDriver64.sys [20288 2012-08-04] (Hewlett-Packard Development Company, L.P.)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2015-08-08 10:33 - 2015-08-08 10:34 - 00022673 _____ C:\Users\Jarka\Desktop\FRST.txt
2015-08-08 10:32 - 2015-08-08 10:33 - 00000000 ____D C:\FRST
2015-08-08 10:24 - 2015-08-08 10:25 - 00000000 ____D C:\Users\Jarka\Desktop\CrystalDiskInfo5_0_0
2015-08-08 10:23 - 2015-08-08 10:23 - 00112640 _____ (forum.viry.cz) C:\Users\Jarka\Downloads\FRSTLauncher.exe
2015-08-08 10:23 - 2015-08-08 10:23 - 00112640 _____ (forum.viry.cz) C:\Users\Jarka\Desktop\FRSTLauncher.exe
2015-08-08 10:20 - 2015-08-08 10:20 - 02170368 _____ (Farbar) C:\Users\Jarka\Desktop\FRST64.exe
2015-08-08 10:12 - 2015-08-08 10:23 - 00005530 _____ C:\WINDOWS\WindowsUpdate.log
2015-08-08 10:07 - 2015-08-08 10:07 - 00000077 _____ C:\WINDOWS\setupact.log
2015-08-08 10:07 - 2015-08-08 10:07 - 00000000 _____ C:\WINDOWS\setuperr.log
2015-08-08 10:06 - 2015-08-08 10:06 - 00001994 _____ C:\WINDOWS\PFRO.log
2015-08-08 10:00 - 2015-08-08 10:04 - 00000000 ____D C:\AdwCleaner
2015-08-08 09:55 - 2015-08-08 09:55 - 02248704 _____ C:\Users\Jarka\Desktop\adwcleaner_4.208.exe
2015-08-08 09:22 - 2015-08-08 09:22 - 00001093 _____ C:\Users\Jarka\Desktop\TSEV Skyrim LE.lnk
2015-08-08 09:22 - 2015-08-08 09:22 - 00000000 ____D C:\Users\Jarka\Documents\My Games
2015-08-08 09:22 - 2015-08-08 09:22 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TSEV Skyrim LE
2015-08-08 09:10 - 2015-08-08 09:22 - 00000000 ____D C:\Program Files (x86)\TSEV Skyrim LE
2015-08-08 08:45 - 2015-08-08 10:28 - 00000000 ____D C:\Program Files\trend micro
2015-08-08 08:45 - 2015-08-08 08:46 - 00000000 ____D C:\rsit
2015-08-08 08:40 - 2015-08-08 08:40 - 01222144 _____ C:\Users\Jarka\Desktop\RSITx64.exe
2015-08-08 08:37 - 2015-08-08 08:37 - 00006690 _____ C:\Users\Jarka\Documents\cc_20150808_083701.reg
2015-08-08 08:33 - 2015-08-08 08:33 - 00001633 _____ C:\Users\Jarka\Desktop\mbam.txt
2015-08-07 18:04 - 2015-08-08 09:55 - 00113880 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys
2015-08-07 18:04 - 2015-08-07 18:04 - 00001116 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2015-08-07 18:04 - 2015-08-07 18:04 - 00000000 ____D C:\ProgramData\Malwarebytes
2015-08-07 18:04 - 2015-08-07 18:04 - 00000000 ____D C:\Program Files (x86)\Malwarebytes Anti-Malware
2015-08-07 18:04 - 2015-06-18 08:42 - 00064216 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mwac.sys
2015-08-07 18:04 - 2015-06-18 08:41 - 00109272 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbamchameleon.sys
2015-08-07 18:04 - 2015-06-18 08:41 - 00025816 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbam.sys
2015-08-07 17:18 - 2015-08-07 17:25 - 00139418 _____ C:\Users\Jarka\Documents\cc_20150807_171852.reg
2015-08-07 17:12 - 2015-08-07 17:12 - 00002794 _____ C:\WINDOWS\System32\Tasks\CCleanerSkipUAC
2015-08-07 17:12 - 2015-08-07 17:12 - 00000836 _____ C:\Users\Public\Desktop\CCleaner.lnk
2015-08-07 17:12 - 2015-08-07 17:12 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2015-08-07 17:12 - 2015-08-07 17:12 - 00000000 ____D C:\Program Files\CCleaner
2015-08-07 09:00 - 2015-08-07 10:15 - 00000000 ____D C:\Users\Jarka\Desktop\záloha registrů
2015-08-07 08:22 - 2015-08-07 08:22 - 00000558 _____ C:\Users\Jarka\Documents\cc_20150807_082226.reg
2015-08-07 08:19 - 2015-08-07 08:20 - 00000202 _____ C:\Users\Jarka\Documents\cc_20150807_081852.reg
2015-08-06 15:15 - 2015-08-07 17:17 - 00000000 ____D C:\Users\Jarka\AppData\Roaming\MPC-HC
2015-07-30 12:05 - 2015-07-13 23:10 - 00792568 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2015-07-30 12:05 - 2015-07-13 23:10 - 00178168 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2015-07-30 04:45 - 2015-04-30 22:35 - 00124112 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2015-07-30 04:45 - 2015-04-30 22:35 - 00102608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2015-07-29 22:05 - 2015-06-16 00:39 - 00584192 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2015-07-29 22:05 - 2015-06-16 00:38 - 00088064 _____ (Microsoft Corporation) C:\WINDOWS\system32\MshtmlDac.dll
2015-07-29 22:05 - 2015-06-16 00:26 - 00633856 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieui.dll
2015-07-29 22:05 - 2015-06-16 00:24 - 00816640 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2015-07-29 22:05 - 2015-06-15 23:57 - 00092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll
2015-07-29 22:05 - 2015-06-15 23:55 - 00316928 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtrans.dll
2015-07-29 22:05 - 2015-06-15 23:49 - 01032704 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcomm.dll
2015-07-29 22:05 - 2015-06-15 23:41 - 00262144 _____ (Microsoft Corporation) C:\WINDOWS\system32\webcheck.dll
2015-07-29 22:05 - 2015-06-15 23:38 - 00801280 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
2015-07-29 22:05 - 2015-06-15 23:36 - 02125824 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2015-07-29 22:05 - 2015-06-15 23:16 - 02427392 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2015-07-29 22:05 - 2015-06-15 23:15 - 00504320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2015-07-29 22:05 - 2015-06-15 23:13 - 00064000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MshtmlDac.dll
2015-07-29 22:05 - 2015-06-15 23:03 - 00664064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
2015-07-29 22:05 - 2015-06-15 22:52 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll
2015-07-29 22:05 - 2015-06-15 22:43 - 00076288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtmled.dll
2015-07-29 22:05 - 2015-06-15 22:41 - 00285696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtrans.dll
2015-07-29 22:05 - 2015-06-15 22:37 - 00880128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcomm.dll
2015-07-29 22:05 - 2015-06-15 22:32 - 00230400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webcheck.dll
2015-07-29 22:05 - 2015-06-15 22:31 - 00689152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll
2015-07-29 22:05 - 2015-06-15 22:30 - 02052608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
2015-07-29 22:05 - 2015-06-15 22:30 - 00327168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll
2015-07-29 22:05 - 2015-06-15 22:07 - 01951232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2015-07-29 22:05 - 2015-06-15 22:02 - 00710144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll
2015-07-29 22:05 - 2015-05-23 05:14 - 00341504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\html.iec
2015-07-29 22:05 - 2015-05-22 21:00 - 00417792 _____ (Microsoft Corporation) C:\WINDOWS\system32\html.iec
2015-07-29 22:05 - 2015-05-22 20:47 - 00814080 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll
2015-07-29 22:05 - 2015-05-22 20:08 - 00374272 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll
2015-07-29 22:05 - 2015-04-21 18:13 - 00107520 _____ (Microsoft Corporation) C:\WINDOWS\system32\inseng.dll
2015-07-29 22:05 - 2015-04-21 17:49 - 00720384 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe
2015-07-29 22:05 - 2015-01-12 04:21 - 00490496 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtmsft.dll
2015-07-29 22:05 - 2015-01-12 03:45 - 00418304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtmsft.dll
2015-07-29 22:04 - 2015-06-16 00:02 - 00087552 _____ (Microsoft Corporation) C:\WINDOWS\system32\tdc.ocx
2015-07-29 22:04 - 2015-06-15 23:58 - 00199680 _____ (Microsoft Corporation) C:\WINDOWS\system32\msrating.dll
2015-07-29 22:04 - 2015-06-15 23:56 - 00145408 _____ (Microsoft Corporation) C:\WINDOWS\system32\iepeers.dll
2015-07-29 22:04 - 2015-06-15 23:17 - 02880000 _____ (Microsoft Corporation) C:\WINDOWS\system32\actxprxy.dll
2015-07-29 22:04 - 2015-06-15 23:04 - 00478208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieui.dll
2015-07-29 22:04 - 2015-06-15 22:47 - 00073216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tdc.ocx
2015-07-29 22:04 - 2015-06-15 22:44 - 00168960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msrating.dll
2015-07-29 22:04 - 2015-06-15 22:42 - 00128000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iepeers.dll
2015-07-29 22:04 - 2015-06-15 22:17 - 01048576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\actxprxy.dll
2015-07-29 22:04 - 2015-05-23 05:04 - 00620032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9diag.dll
2015-07-29 22:02 - 2015-02-04 01:58 - 00264000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdFilter.sys
2015-07-29 22:02 - 2015-02-04 01:58 - 00114496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdNisDrv.sys
2015-07-29 22:02 - 2015-02-04 01:58 - 00044024 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdBoot.sys
2015-07-29 22:02 - 2015-02-03 01:53 - 00014848 _____ (Microsoft Corporation) C:\WINDOWS\system32\winshfhc.dll
2015-07-29 22:02 - 2015-02-03 01:53 - 00012800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winshfhc.dll
2015-07-29 21:42 - 2015-06-28 07:07 - 00442712 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll
2015-07-29 21:42 - 2015-06-28 07:07 - 00178008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys
2015-07-29 21:42 - 2015-06-28 07:06 - 01311960 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcrt4.dll
2015-07-29 21:42 - 2015-06-28 07:06 - 00332120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll
2015-07-29 21:42 - 2015-06-27 18:42 - 00747520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rpcrt4.dll
2015-07-29 21:42 - 2015-06-27 05:13 - 00202240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb20.sys
2015-07-29 21:42 - 2015-06-27 05:12 - 00401408 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys
2015-07-29 21:42 - 2015-06-27 05:12 - 00284672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb10.sys
2015-07-29 21:42 - 2015-06-27 04:40 - 00445440 _____ (Microsoft Corporation) C:\WINDOWS\system32\certcli.dll
2015-07-29 21:42 - 2015-06-27 04:05 - 01441792 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2015-07-29 21:42 - 2015-06-27 04:00 - 00989184 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2015-07-29 21:42 - 2015-06-27 03:53 - 00324096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\certcli.dll
2015-07-29 21:42 - 2015-06-27 03:26 - 00802816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll
2015-07-29 21:42 - 2015-06-25 04:31 - 04177920 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2015-07-29 21:42 - 2015-03-30 07:47 - 00561928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2015-07-29 21:41 - 2015-06-16 00:41 - 00065024 _____ (Microsoft Corporation) C:\WINDOWS\system32\msiexec.exe
2015-07-29 21:41 - 2015-06-16 00:24 - 03320320 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll
2015-07-29 21:41 - 2015-06-15 23:16 - 00059904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msiexec.exe
2015-07-29 21:41 - 2015-06-15 23:09 - 03607552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msi.dll
2015-07-29 21:41 - 2015-06-15 22:50 - 02774528 _____ (Microsoft Corporation) C:\WINDOWS\system32\authui.dll
2015-07-29 21:41 - 2015-06-15 21:57 - 02460160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\authui.dll
2015-07-29 21:41 - 2015-05-30 23:18 - 00037888 _____ (Microsoft Corporation) C:\WINDOWS\system32\werdiagcontroller.dll
2015-07-29 21:41 - 2015-05-30 21:36 - 00230400 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll
2015-07-29 21:41 - 2015-05-30 21:35 - 00911360 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2015-07-29 21:41 - 2015-05-01 01:05 - 00429568 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll
2015-07-29 21:41 - 2015-05-01 00:48 - 00358912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\schannel.dll
2015-07-29 21:41 - 2014-12-09 05:45 - 00393728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\scesrv.dll
2015-07-29 21:41 - 2014-12-09 03:56 - 00538624 _____ (Microsoft Corporation) C:\WINDOWS\system32\scesrv.dll
2015-07-29 21:41 - 2014-12-09 03:50 - 00225280 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvc.dll
2015-07-29 21:41 - 2014-12-08 21:42 - 00535640 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll
2015-07-29 21:41 - 2014-12-08 21:42 - 00531616 _____ (Microsoft Corporation) C:\WINDOWS\system32\ci.dll
2015-07-29 21:41 - 2014-12-08 21:42 - 00448792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wer.dll
2015-07-29 21:41 - 2014-12-08 21:42 - 00413248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Faultrep.dll
2015-07-29 21:41 - 2014-12-08 21:42 - 00372408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Faultrep.dll
2015-07-29 21:41 - 2014-12-08 21:42 - 00108944 _____ (Microsoft Corporation) C:\WINDOWS\system32\EncDump.dll
2015-07-29 21:41 - 2014-12-08 21:42 - 00038264 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerFaultSecure.exe
2015-07-29 21:41 - 2014-12-08 21:42 - 00033584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WerFaultSecure.exe
2015-07-29 21:41 - 2014-10-31 00:37 - 00129536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\poqexec.exe
2015-07-29 21:41 - 2014-10-31 00:34 - 00146432 _____ (Microsoft Corporation) C:\WINDOWS\system32\poqexec.exe
2015-07-29 21:40 - 2015-03-23 23:59 - 07476032 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2015-07-29 21:40 - 2015-03-23 23:59 - 01733952 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2015-07-29 21:40 - 2015-03-23 23:59 - 00360480 _____ (Microsoft Corporation) C:\WINDOWS\system32\sechost.dll
2015-07-29 21:40 - 2015-03-23 23:58 - 01498872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
2015-07-29 21:40 - 2015-03-23 23:45 - 00257216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sechost.dll
2015-07-29 21:40 - 2015-03-20 06:12 - 00246272 _____ (Microsoft Corporation) C:\WINDOWS\system32\microsoft-windows-system-events.dll
2015-07-29 21:40 - 2015-03-20 06:10 - 00285184 _____ (Microsoft Corporation) C:\WINDOWS\system32\wow64.dll
2015-07-29 21:40 - 2015-03-20 06:10 - 00013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\wow64cpu.dll
2015-07-29 21:40 - 2015-03-20 05:17 - 00411648 _____ (Microsoft Corporation) C:\WINDOWS\system32\tracerpt.exe
2015-07-29 21:40 - 2015-03-20 04:41 - 00369152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tracerpt.exe
2015-07-29 21:40 - 2015-03-20 04:40 - 00950784 _____ (Microsoft Corporation) C:\WINDOWS\system32\tdh.dll
2015-07-29 21:40 - 2015-03-20 04:16 - 00749568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tdh.dll
2015-07-29 21:40 - 2014-10-29 03:57 - 00016896 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntvdm64.dll
2015-07-29 21:40 - 2014-10-29 03:15 - 00014336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntvdm64.dll
2015-07-29 21:40 - 2014-10-29 03:15 - 00005632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wow32.dll
2015-07-29 21:40 - 2014-10-29 03:14 - 00004096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user.exe
2015-07-29 21:40 - 2014-10-29 03:13 - 00025600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\setup16.exe
2015-07-29 21:40 - 2014-10-29 03:13 - 00008704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\instnm.exe
2015-07-29 21:36 - 2015-02-21 01:49 - 00780800 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsm.dll
2015-07-29 21:35 - 2015-04-10 03:00 - 01996800 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWrite.dll
2015-07-29 21:35 - 2015-04-10 02:50 - 01387008 _____ (Microsoft Corporation) C:\WINDOWS\system32\FntCache.dll
2015-07-29 21:35 - 2015-04-10 02:26 - 01560576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWrite.dll
2015-07-29 21:35 - 2015-03-13 04:58 - 00259072 _____ (Microsoft Corporation) C:\WINDOWS\system32\pku2u.dll
2015-07-29 21:35 - 2015-03-13 04:37 - 00208896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pku2u.dll
2015-07-29 21:35 - 2015-01-30 03:29 - 00035840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\atlthunk.dll
2015-07-29 21:35 - 2014-12-19 08:26 - 00140800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxdav.sys
2015-07-29 21:35 - 2014-12-12 04:04 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\system32\TSWbPrxy.exe
2015-07-29 21:35 - 2014-12-12 02:51 - 00075776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ahcache.sys
2015-07-29 21:34 - 2014-06-10 00:13 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TsWpfWrp.exe
2015-07-29 21:34 - 2014-06-10 00:13 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\system32\TsWpfWrp.exe
2015-07-29 21:26 - 2015-06-11 05:49 - 01380600 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32.dll
2015-07-29 21:26 - 2015-06-10 18:13 - 01097216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32.dll
2015-07-29 21:26 - 2015-02-24 10:32 - 00991552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\http.sys
2015-07-29 21:21 - 2014-07-24 05:20 - 00875688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcr120_clr0400.dll
2015-07-29 21:21 - 2014-07-24 05:20 - 00869544 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvcr120_clr0400.dll
2015-07-29 21:16 - 2015-06-16 07:36 - 01661576 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll
2015-07-29 21:16 - 2015-06-16 07:36 - 01212248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ole32.dll
2015-07-29 21:16 - 2015-03-04 12:25 - 00377152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\clfs.sys
2015-07-29 21:16 - 2015-03-04 05:04 - 00075264 _____ (Microsoft Corporation) C:\WINDOWS\system32\clfsw32.dll
2015-07-29 21:16 - 2015-03-04 04:19 - 00058880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\clfsw32.dll
2015-07-29 21:16 - 2015-01-28 03:31 - 00402432 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMPhoto.dll
2015-07-29 21:16 - 2015-01-28 03:11 - 00357376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMPhoto.dll
2015-07-29 21:16 - 2015-01-21 07:54 - 01384712 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll
2015-07-29 21:16 - 2015-01-21 07:15 - 01123848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll
2015-07-29 21:15 - 2015-05-07 18:47 - 00564224 _____ (Microsoft Corporation) C:\WINDOWS\system32\apphelp.dll
2015-07-29 21:15 - 2015-04-09 00:55 - 00410128 _____ (Microsoft Corporation) C:\WINDOWS\system32\services.exe
2015-07-29 21:15 - 2015-01-31 01:20 - 00203264 _____ (Microsoft Corporation) C:\WINDOWS\system32\ubpm.dll
2015-07-29 21:15 - 2015-01-27 06:22 - 00131584 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpudd.dll
2015-07-29 21:15 - 2015-01-27 04:11 - 03547648 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll
2015-07-29 21:14 - 2015-04-25 04:34 - 00653824 _____ (Microsoft Corporation) C:\WINDOWS\system32\comctl32.dll
2015-07-29 21:14 - 2015-04-25 04:33 - 00549888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comctl32.dll
2015-07-29 21:14 - 2014-12-06 05:17 - 00360448 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncsi.dll
2015-07-29 21:14 - 2014-12-06 03:41 - 00391680 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlasvc.dll
2015-07-29 21:13 - 2015-02-12 19:40 - 22291584 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2015-07-29 21:13 - 2015-02-12 19:34 - 19731824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2015-07-29 21:13 - 2015-01-29 20:45 - 01763352 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecs.dll
2015-07-29 21:13 - 2015-01-29 20:34 - 01488040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WindowsCodecs.dll
2015-07-29 21:12 - 2015-07-14 16:14 - 00358912 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\atmfd.dll
2015-07-29 21:12 - 2015-07-14 16:14 - 00301056 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\atmfd.dll
2015-07-29 21:12 - 2015-07-14 16:14 - 00035840 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll
2015-07-29 21:12 - 2015-07-14 16:13 - 00044032 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll
2015-07-29 21:12 - 2015-07-02 00:08 - 05923840 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2015-07-29 21:12 - 2015-07-01 23:14 - 04520448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2015-07-29 21:11 - 2015-07-02 23:21 - 19877376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2015-07-29 21:11 - 2015-07-02 22:50 - 02279424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2015-07-29 21:11 - 2015-07-02 22:49 - 25193984 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2015-07-29 21:11 - 2015-07-02 22:23 - 02885632 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2015-07-29 21:11 - 2015-07-02 22:19 - 12855296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2015-07-29 21:11 - 2015-07-02 21:55 - 01310720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2015-07-29 21:11 - 2015-07-02 21:20 - 14453248 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2015-07-29 21:11 - 2015-07-02 20:59 - 01545728 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2015-07-29 12:35 - 2015-08-08 10:09 - 00000000 ____D C:\Users\Jarka\OneDrive
2015-07-29 10:07 - 2015-08-07 21:49 - 00000000 ____D C:\Users\Jarka\Desktop\videa mobil
2015-07-29 07:36 - 2015-07-29 07:36 - 00000000 ____D C:\Users\Jarka\AppData\Roaming\AVAST Software
2015-07-29 07:26 - 2015-07-29 07:26 - 00001940 _____ C:\Users\Public\Desktop\Avast Free Antivirus.lnk
2015-07-29 07:26 - 2015-07-29 07:26 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software
2015-07-29 07:25 - 2015-07-29 07:25 - 01048856 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSnx.sys
2015-07-29 07:25 - 2015-07-29 07:25 - 00447944 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSP.sys
2015-07-29 07:25 - 2015-07-29 07:25 - 00378880 _____ (AVAST Software) C:\WINDOWS\system32\aswBoot.exe
2015-07-29 07:25 - 2015-07-29 07:25 - 00274808 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswVmm.sys
2015-07-29 07:25 - 2015-07-29 07:25 - 00090968 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswMonFlt.sys
2015-07-29 07:25 - 2015-07-29 07:25 - 00065224 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRvrt.sys
2015-07-29 07:25 - 2015-07-29 07:25 - 00043112 _____ (AVAST Software) C:\WINDOWS\avastSS.scr
2015-07-29 07:25 - 2015-07-29 07:25 - 00028656 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswHwid.sys
2015-07-29 07:25 - 2015-07-29 07:25 - 00003924 _____ C:\WINDOWS\System32\Tasks\avast! Emergency Update
2015-07-29 07:23 - 2015-07-29 07:23 - 00000000 ____D C:\Program Files\AVAST Software
2015-07-29 07:19 - 2015-07-29 07:19 - 00000000 ____D C:\ProgramData\AVAST Software
2015-07-28 22:45 - 2012-09-20 18:56 - 02188800 _____ (IDT, Inc.) C:\WINDOWS\system32\stapo64.dll
2015-07-28 22:45 - 2012-09-20 18:56 - 00672256 ____N (IDT, Inc.) C:\WINDOWS\system32\stapi64.dll
2015-07-28 22:33 - 2015-03-14 10:54 - 00133256 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
2015-07-28 22:33 - 2015-03-14 03:56 - 00066048 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups.dll
2015-07-28 22:33 - 2015-03-14 03:56 - 00052224 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups2.dll
2015-07-28 22:33 - 2015-03-14 03:51 - 00015360 _____ (Microsoft Corporation) C:\WINDOWS\system32\wu.upgrade.ps.dll
2015-07-28 22:33 - 2015-03-14 03:37 - 00267264 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinSetupUI.dll
2015-07-28 22:33 - 2015-03-14 02:22 - 03678720 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2015-07-28 22:33 - 2015-03-14 02:08 - 00408064 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUSettingsProvider.dll
2015-07-28 22:33 - 2015-03-14 02:06 - 02373632 _____ (Microsoft Corporation) C:\WINDOWS\system32\wucltux.dll
2015-07-28 22:33 - 2015-03-14 02:06 - 00891392 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll
2015-07-28 22:33 - 2015-03-14 01:59 - 00721920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll
2015-07-28 22:32 - 2015-03-14 03:14 - 00027136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wups.dll
2015-07-28 22:32 - 2015-03-14 02:12 - 00140288 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuwebv.dll
2015-07-28 22:32 - 2015-03-14 02:12 - 00035840 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapp.exe
2015-07-28 22:32 - 2015-03-14 02:09 - 00200192 _____ (Microsoft Corporation) C:\WINDOWS\system32\storewuauth.dll
2015-07-28 22:32 - 2015-03-14 02:08 - 00095744 _____ (Microsoft Corporation) C:\WINDOWS\system32\wudriver.dll
2015-07-28 22:32 - 2015-03-14 02:02 - 00124928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuwebv.dll
2015-07-28 22:32 - 2015-03-14 02:02 - 00029696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapp.exe
2015-07-28 22:32 - 2015-03-14 01:59 - 00081920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wudriver.dll
2015-07-28 22:32 - 2014-10-18 08:50 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaext.dll
2015-07-28 21:42 - 2015-07-28 21:42 - 00000000 ____D C:\Users\Jarka\AppData\Local\AMD
2015-07-28 21:24 - 2015-07-28 21:24 - 00001424 _____ C:\Users\Jarka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2015-07-28 21:24 - 2015-07-28 21:24 - 00000020 ___SH C:\Users\Jarka\ntuser.ini
2015-07-28 12:34 - 2015-07-28 12:34 - 00000000 _SHDL C:\Users\Default\Šablony
2015-07-28 12:34 - 2015-07-28 12:34 - 00000000 _SHDL C:\Users\Default\Soubory cookie
2015-07-28 12:34 - 2015-07-28 12:34 - 00000000 _SHDL C:\Users\Default\Poslední
2015-07-28 12:34 - 2015-07-28 12:34 - 00000000 _SHDL C:\Users\Default\Okolní tiskárny
2015-07-28 12:34 - 2015-07-28 12:34 - 00000000 _SHDL C:\Users\Default\Okolní síť
2015-07-28 12:34 - 2015-07-28 12:34 - 00000000 _SHDL C:\Users\Default\Nabídka Start
2015-07-28 12:34 - 2015-07-28 12:34 - 00000000 _SHDL C:\Users\Default\Dokumenty
2015-07-28 12:34 - 2015-07-28 12:34 - 00000000 _SHDL C:\Users\Default\Documents\Obrázky
2015-07-28 12:34 - 2015-07-28 12:34 - 00000000 _SHDL C:\Users\Default\Documents\Hudba
2015-07-28 12:34 - 2015-07-28 12:34 - 00000000 _SHDL C:\Users\Default\Documents\Filmy
2015-07-28 12:34 - 2015-07-28 12:34 - 00000000 _SHDL C:\Users\Default\Data aplikací
2015-07-28 12:34 - 2015-07-28 12:34 - 00000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2015-07-28 12:34 - 2015-07-28 12:34 - 00000000 _SHDL C:\Users\Default\AppData\Local\Data aplikací
2015-07-28 12:34 - 2015-07-28 12:34 - 00000000 _SHDL C:\Users\Default User\Documents\Obrázky
2015-07-28 12:34 - 2015-07-28 12:34 - 00000000 _SHDL C:\Users\Default User\Documents\Hudba
2015-07-28 12:34 - 2015-07-28 12:34 - 00000000 _SHDL C:\Users\Default User\Documents\Filmy
2015-07-28 12:34 - 2015-07-28 12:34 - 00000000 _SHDL C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2015-07-28 12:34 - 2015-07-28 12:34 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Data aplikací
2015-07-28 12:32 - 2015-08-07 17:16 - 00000000 ___DC C:\WINDOWS\Panther
2015-07-28 12:32 - 2015-07-28 12:32 - 00022924 _____ C:\WINDOWS\system32\emptyregdb.dat
2015-07-28 12:32 - 2015-07-28 12:32 - 00000000 __SHD C:\Recovery
2015-07-28 12:28 - 2015-07-28 12:28 - 00262144 _____ C:\WINDOWS\system32\config\userdiff
2015-07-28 12:23 - 2015-07-28 12:23 - 00000000 ____D C:\WINDOWS\SysWOW64\XPSViewer
2015-07-28 12:23 - 2015-07-28 12:23 - 00000000 ____D C:\Program Files\Reference Assemblies
2015-07-28 12:23 - 2015-07-28 12:23 - 00000000 ____D C:\Program Files\MSBuild
2015-07-28 12:23 - 2015-07-28 12:23 - 00000000 ____D C:\Program Files (x86)\Reference Assemblies
2015-07-28 12:23 - 2015-07-28 12:09 - 00000000 ____D C:\Program Files (x86)\MSBuild
2015-07-28 12:22 - 2015-07-28 12:22 - 00024576 _____ (Microsoft Corporation) C:\WINDOWS\system32\sdbinst.exe
2015-07-28 12:22 - 2015-07-28 12:22 - 00021504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sdbinst.exe
2015-07-28 12:22 - 2013-08-03 06:48 - 01166520 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationNative_v0300.dll
2015-07-28 12:22 - 2013-08-03 06:41 - 00778936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationNative_v0300.dll
2015-07-28 12:03 - 2015-07-28 12:03 - 00001547 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk
2015-07-28 12:03 - 2015-07-28 12:03 - 00000000 ____D C:\Users\Default\Documents\hp.system.package.metadata
2015-07-28 12:03 - 2015-07-28 12:03 - 00000000 ____D C:\Users\Default\AppData\Roaming\Adobe
2015-07-28 12:03 - 2015-07-28 12:03 - 00000000 ____D C:\Users\Default\AppData\Local\Packages
2015-07-28 12:03 - 2015-07-28 12:03 - 00000000 ____D C:\Users\Default\AppData\Local\Microsoft Help
2015-07-28 12:03 - 2015-07-28 12:03 - 00000000 ____D C:\Users\Default User\Documents\hp.system.package.metadata
2015-07-28 12:03 - 2015-07-28 12:03 - 00000000 ____D C:\Users\Default User\AppData\Roaming\Adobe
2015-07-28 12:03 - 2015-07-28 12:03 - 00000000 ____D C:\Users\Default User\AppData\Local\Packages
2015-07-28 12:03 - 2015-07-28 12:03 - 00000000 ____D C:\Users\Default User\AppData\Local\Microsoft Help
2015-07-28 11:53 - 2015-07-28 11:53 - 00000000 ____D C:\WINDOWS\system32\config\bbimigrate
2015-07-28 11:50 - 2015-07-30 08:23 - 00000000 ____D C:\Users\Jarka
2015-07-28 11:50 - 2015-07-28 12:17 - 00000000 ____D C:\Users\Administrator
2015-07-28 11:50 - 2015-07-28 11:52 - 00000000 ___RD C:\Users\Jarka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2015-07-28 11:50 - 2015-07-28 11:51 - 00000000 ___RD C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2015-07-28 11:50 - 2015-07-28 11:50 - 00000000 _SHDL C:\Users\Jarka\Šablony
2015-07-28 11:50 - 2015-07-28 11:50 - 00000000 _SHDL C:\Users\Jarka\Soubory cookie
2015-07-28 11:50 - 2015-07-28 11:50 - 00000000 _SHDL C:\Users\Jarka\Poslední
2015-07-28 11:50 - 2015-07-28 11:50 - 00000000 _SHDL C:\Users\Jarka\Okolní tiskárny
2015-07-28 11:50 - 2015-07-28 11:50 - 00000000 _SHDL C:\Users\Jarka\Okolní síť
2015-07-28 11:50 - 2015-07-28 11:50 - 00000000 _SHDL C:\Users\Jarka\Nabídka Start
2015-07-28 11:50 - 2015-07-28 11:50 - 00000000 _SHDL C:\Users\Jarka\Dokumenty
2015-07-28 11:50 - 2015-07-28 11:50 - 00000000 _SHDL C:\Users\Jarka\Documents\Obrázky
2015-07-28 11:50 - 2015-07-28 11:50 - 00000000 _SHDL C:\Users\Jarka\Documents\Hudba
2015-07-28 11:50 - 2015-07-28 11:50 - 00000000 _SHDL C:\Users\Jarka\Documents\Filmy
2015-07-28 11:50 - 2015-07-28 11:50 - 00000000 _SHDL C:\Users\Jarka\Data aplikací
2015-07-28 11:50 - 2015-07-28 11:50 - 00000000 _SHDL C:\Users\Jarka\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2015-07-28 11:50 - 2015-07-28 11:50 - 00000000 _SHDL C:\Users\Jarka\AppData\Local\Data aplikací
2015-07-28 11:50 - 2015-07-28 11:50 - 00000000 _SHDL C:\Users\Administrator\Šablony
2015-07-28 11:50 - 2015-07-28 11:50 - 00000000 _SHDL C:\Users\Administrator\Soubory cookie
2015-07-28 11:50 - 2015-07-28 11:50 - 00000000 _SHDL C:\Users\Administrator\Poslední
2015-07-28 11:50 - 2015-07-28 11:50 - 00000000 _SHDL C:\Users\Administrator\Okolní tiskárny
2015-07-28 11:50 - 2015-07-28 11:50 - 00000000 _SHDL C:\Users\Administrator\Okolní síť
2015-07-28 11:50 - 2015-07-28 11:50 - 00000000 _SHDL C:\Users\Administrator\Nabídka Start
2015-07-28 11:50 - 2015-07-28 11:50 - 00000000 _SHDL C:\Users\Administrator\Dokumenty
2015-07-28 11:50 - 2015-07-28 11:50 - 00000000 _SHDL C:\Users\Administrator\Documents\Obrázky
2015-07-28 11:50 - 2015-07-28 11:50 - 00000000 _SHDL C:\Users\Administrator\Documents\Hudba
2015-07-28 11:50 - 2015-07-28 11:50 - 00000000 _SHDL C:\Users\Administrator\Documents\Filmy
2015-07-28 11:50 - 2015-07-28 11:50 - 00000000 _SHDL C:\Users\Administrator\Data aplikací
2015-07-28 11:50 - 2015-07-28 11:50 - 00000000 _SHDL C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2015-07-28 11:50 - 2015-07-28 11:50 - 00000000 _SHDL C:\Users\Administrator\AppData\Local\Data aplikací
2015-07-28 11:50 - 2014-11-21 14:15 - 00000000 ___RD C:\Users\Jarka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2015-07-28 11:50 - 2014-11-21 14:15 - 00000000 ___RD C:\Users\Jarka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2015-07-28 11:50 - 2014-11-21 14:15 - 00000000 ___RD C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2015-07-28 11:50 - 2014-11-21 14:15 - 00000000 ___RD C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2015-07-28 11:50 - 2014-11-21 07:02 - 00000369 _____ C:\Users\Jarka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pictures.lnk
2015-07-28 11:50 - 2014-11-21 07:02 - 00000369 _____ C:\Users\Jarka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Documents.lnk
2015-07-28 11:50 - 2014-11-21 07:02 - 00000369 _____ C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pictures.lnk
2015-07-28 11:50 - 2014-11-21 07:02 - 00000369 _____ C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Documents.lnk
2015-07-28 11:50 - 2013-08-22 17:36 - 00000000 ____D C:\Users\Jarka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2015-07-28 11:50 - 2013-08-22 17:36 - 00000000 ____D C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2015-07-28 11:49 - 2015-07-28 12:33 - 00028578 _____ C:\WINDOWS\diagwrn.xml
2015-07-28 11:49 - 2015-07-28 12:33 - 00028578 _____ C:\WINDOWS\diagerr.xml
2015-07-28 11:42 - 2015-07-28 11:42 - 01873064 _____ C:\WINDOWS\SysWOW64\PerfStringBackup.INI
2015-07-28 11:38 - 2015-07-28 11:38 - 00060385 _____ C:\WINDOWS\SysWOW64\CCCInstall_201507281138050528.log
2015-07-28 11:37 - 2015-07-28 11:37 - 00000264 _____ C:\WINDOWS\Tasks\Synaptics TouchPad Enhancements.job
2015-07-28 11:37 - 2015-07-28 11:37 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_Kernel_SynTP_01011.Wdf
2015-07-28 11:37 - 2015-07-28 11:37 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_Kernel_BtL2caScoIf_01009.Wdf
2015-07-28 11:37 - 2015-07-28 11:37 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Catalyst Control Center
2015-07-28 11:37 - 2015-07-28 11:37 - 00000000 ____D C:\Program Files\ATI Technologies
2015-07-28 11:36 - 2015-07-28 11:37 - 00000000 ____D C:\Program Files (x86)\ATI Technologies
2015-07-28 11:36 - 2015-07-28 11:36 - 00001370 _____ C:\WINDOWS\system32\RaCoInst.log
2015-07-28 11:36 - 2015-07-28 11:36 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_SensorsServiceDriver_01_11_00.Wdf
2015-07-28 11:36 - 2015-07-28 11:36 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_AccelSensorAPI_01_09_00.Wdf
2015-07-28 11:36 - 2015-07-28 11:36 - 00000000 ____D C:\WINDOWS\system32\SRSLabs
2015-07-28 11:36 - 2015-07-28 11:36 - 00000000 ____D C:\Program Files\Synaptics
2015-07-28 11:35 - 2015-07-28 11:35 - 00000000 ____D C:\Program Files\Common Files\ATI Technologies
2015-07-28 11:35 - 2015-07-28 11:35 - 00000000 ____D C:\Program Files\AMD
2015-07-28 11:35 - 2015-07-28 11:35 - 00000000 ____D C:\AMD
2015-07-28 11:35 - 2015-07-28 11:35 - 00000000 _____ C:\WINDOWS\ativpsrm.bin
2015-07-28 06:55 - 2015-08-03 21:42 - 00000000 ____D C:\Users\Jarka\Desktop\BANAN
2015-07-25 08:47 - 2015-07-28 06:43 - 00000000 ____D C:\Users\Jarka\Desktop\ROAD TRIP
2015-07-18 10:26 - 2015-07-18 10:26 - 00000000 ____D C:\ProgramData\REVOLT
2015-07-15 13:39 - 2015-06-29 18:18 - 00026288 ____N (Microsoft Corporation) C:\WINDOWS\system32\CompatTelRunner.exe
2015-07-14 10:54 - 2015-07-28 12:09 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Triple Town [GOG.com]
2015-07-14 10:54 - 2015-07-14 10:54 - 00001643 _____ C:\Users\Public\Desktop\Triple Town.lnk
2015-07-14 10:54 - 2015-07-14 10:54 - 00000000 ____D C:\Users\Jarka\AppData\Roaming\TripleTown
2015-07-14 10:54 - 2015-07-14 10:54 - 00000000 ____D C:\GOG Games

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2015-08-08 10:27 - 2013-10-14 21:16 - 00000976 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2015-08-08 10:27 - 2013-09-24 09:23 - 00000000 ____D C:\Users\Jarka\Desktop\software
2015-08-08 10:14 - 2014-11-21 06:53 - 01934988 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2015-08-08 10:14 - 2014-11-21 06:10 - 00802206 _____ C:\WINDOWS\system32\perfh005.dat
2015-08-08 10:14 - 2014-11-21 06:10 - 00183700 _____ C:\WINDOWS\system32\perfc005.dat
2015-08-08 10:13 - 2013-10-14 21:09 - 00003596 _____ C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-1134397532-792521543-4184498135-1002
2015-08-08 10:10 - 2012-08-16 03:46 - 00000787 _____ C:\WINDOWS\SysWOW64\bscs.ini
2015-08-08 10:09 - 2013-10-14 21:17 - 00002205 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2015-08-08 10:09 - 2013-10-14 21:16 - 00000972 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2015-08-08 10:08 - 2012-12-12 08:04 - 00004524 _____ C:\WINDOWS\SysWOW64\LOCALSERVICE.INI
2015-08-08 10:07 - 2013-08-22 16:45 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2015-08-08 10:07 - 2012-12-12 08:04 - 00000043 _____ C:\WINDOWS\SysWOW64\LOCALDEVICE.INI
2015-08-08 10:06 - 2013-08-22 16:44 - 00491760 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2015-08-08 10:05 - 2013-08-22 15:25 - 00262144 ___SH C:\WINDOWS\system32\config\BBI
2015-08-08 10:00 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\sru
2015-08-08 09:09 - 2015-02-10 23:35 - 00000000 ____D C:\Users\Jarka\AppData\Local\Spotify
2015-08-08 08:58 - 2015-02-10 23:33 - 00000000 ____D C:\Users\Jarka\AppData\Roaming\Spotify
2015-08-08 08:55 - 2013-10-15 19:28 - 00000000 ____D C:\Users\Jarka\AppData\Roaming\BitTorrent
2015-08-08 08:49 - 2014-06-15 14:35 - 00000000 ____D C:\Users\Jarka\AppData\Local\Last.fm
2015-08-08 08:41 - 2014-02-15 17:20 - 00000000 ____D C:\Users\Jarka\AppData\Roaming\DAEMON Tools Lite
2015-08-08 08:31 - 2014-09-12 15:38 - 00000000 ____D C:\Games
2015-08-07 23:18 - 2013-09-27 14:37 - 00000000 ____D C:\Users\Jarka\Desktop\TorrentZ
2015-08-07 21:53 - 2014-05-08 16:16 - 00000000 ____D C:\Users\Jarka\Desktop\GAMES
2015-08-07 17:28 - 2013-10-23 21:31 - 00000000 ____D C:\Users\Jarka\AppData\Roaming\TeamViewer
2015-08-07 17:28 - 2013-10-23 21:31 - 00000000 ____D C:\Program Files (x86)\TeamViewer
2015-08-07 17:27 - 2014-07-11 11:02 - 00000000 ____D C:\Program Files (x86)\1-click run
2015-08-07 09:59 - 2014-07-05 20:51 - 00000000 ____D C:\Users\Jarka\AppData\Roaming\Winamp
2015-08-07 09:09 - 2014-12-11 13:00 - 00000000 ____D C:\Users\Jarka\Desktop\ostatní
2015-08-06 15:14 - 2014-06-07 22:19 - 00000000 ____D C:\Users\Jarka\AppData\Roaming\vlc
2015-08-06 14:45 - 2015-05-21 11:26 - 00001065 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Opera.lnk
2015-08-06 14:45 - 2014-07-04 11:05 - 00003828 _____ C:\WINDOWS\System32\Tasks\Opera scheduled Autoupdate 1397419789
2015-08-06 14:45 - 2014-04-13 22:09 - 00000000 ____D C:\Program Files (x86)\Opera
2015-08-06 10:49 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\NDF
2015-08-06 10:43 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\AppReadiness
2015-07-31 07:27 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\rescache
2015-07-30 12:27 - 2012-12-12 08:20 - 00001660 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SRS Premium Sound.lnk
2015-07-30 08:31 - 2013-08-22 17:36 - 00000000 ___RD C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2015-07-30 08:31 - 2013-08-22 17:36 - 00000000 ___RD C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2015-07-30 08:31 - 2013-08-22 17:36 - 00000000 ____D C:\Program Files\Windows Defender
2015-07-30 08:30 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\sr-Latn-RS
2015-07-30 08:30 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\sr-Latn-CS
2015-07-30 08:30 - 2013-08-22 17:36 - 00000000 ____D C:\Program Files (x86)\Windows Defender
2015-07-30 08:26 - 2013-08-22 17:36 - 00000000 ___RD C:\WINDOWS\ToastData
2015-07-30 08:26 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\PolicyDefinitions
2015-07-30 08:25 - 2014-11-21 06:34 - 00000000 ____D C:\Program Files\Windows Journal
2015-07-30 05:09 - 2012-07-26 09:59 - 00000000 ____D C:\WINDOWS\CbsTemp
2015-07-29 12:36 - 2013-10-14 15:59 - 00000000 ____D C:\Users\Jarka\AppData\Local\Packages
2015-07-29 07:03 - 2013-11-23 16:58 - 00000000 ____D C:\Users\Jarka\AppData\Local\Facebook
2015-07-29 06:54 - 2014-01-05 23:32 - 00000000 ____D C:\Users\Jarka\Desktop\FOTKY
2015-07-29 04:03 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\restore
2015-07-28 23:10 - 2013-09-30 09:26 - 00000000 ____D C:\Users\Jarka\Desktop\school
2015-07-28 23:07 - 2014-07-10 11:23 - 00000000 ____D C:\Users\Jarka\Desktop\kraviny
2015-07-28 22:08 - 2014-10-28 23:43 - 00000000 ____D C:\WINDOWS\system32\AutoUpdateLicense
2015-07-28 12:34 - 2013-08-22 17:36 - 00000000 ____D C:\Program Files\Windows NT
2015-07-28 12:34 - 2013-08-22 15:36 - 00000000 __RHD C:\Users\Default
2015-07-28 12:34 - 2013-08-22 15:25 - 00262144 ___SH C:\WINDOWS\system32\config\ELAM
2015-07-28 12:33 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\Registration
2015-07-28 12:29 - 2013-08-22 17:36 - 00262144 _____ C:\WINDOWS\system32\config\BCD-Template
2015-07-28 12:24 - 2013-08-22 17:36 - 00000000 __RSD C:\WINDOWS\Media
2015-07-28 12:24 - 2013-08-22 17:36 - 00000000 __RHD C:\Users\Public\Libraries
2015-07-28 12:15 - 2012-12-12 08:03 - 00000000 ____D C:\ProgramData\AMD
2015-07-28 12:09 - 2015-02-11 13:10 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Last.fm
2015-07-28 12:09 - 2015-01-01 13:47 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack
2015-07-28 12:09 - 2014-11-28 12:38 - 00000000 ____D C:\Users\Jarka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Hewlett-Packard Company
2015-07-28 12:09 - 2014-11-21 06:34 - 00000000 ____D C:\WINDOWS\ShellNew
2015-07-28 12:09 - 2014-10-01 15:27 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\The Walking Dead Season 2
2015-07-28 12:09 - 2014-09-18 12:23 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2015-07-28 12:09 - 2014-08-15 12:04 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iGIFmaker
2015-07-28 12:09 - 2014-07-19 21:05 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PhotoFiltre 7
2015-07-28 12:09 - 2014-07-05 20:54 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Winamp
2015-07-28 12:09 - 2014-06-30 20:04 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
2015-07-28 12:09 - 2014-06-07 22:18 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
2015-07-28 12:09 - 2014-03-13 17:57 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PSPad editor
2015-07-28 12:09 - 2014-02-15 17:21 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Lite
2015-07-28 12:09 - 2014-01-12 17:14 - 00000000 ____D C:\Users\Jarka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox
2015-07-28 12:09 - 2013-11-30 14:27 - 00000000 ____D C:\Users\Jarka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MyHeritage.com
2015-07-28 12:09 - 2013-10-15 21:04 - 00000000 ____D C:\Users\Jarka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2015-07-28 12:09 - 2013-10-15 21:04 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2015-07-28 12:09 - 2013-10-14 21:40 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office
2015-07-28 12:09 - 2013-10-14 21:17 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
2015-07-28 12:09 - 2013-10-14 21:10 - 00000000 ____D C:\Users\Jarka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\The KMPlayer
2015-07-28 12:09 - 2013-08-22 15:36 - 00000000 ____D C:\WINDOWS\system32\Sysprep
2015-07-28 12:09 - 2012-12-12 08:31 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Communication and Chat
2015-07-28 12:09 - 2012-12-12 08:17 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP
2015-07-28 12:09 - 2012-11-22 15:01 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Productivity and Tools
2015-07-28 12:03 - 2012-07-26 07:37 - 00000000 ____D C:\Users\Default.migrated
2015-07-28 12:02 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\WinStore
2015-07-28 12:01 - 2014-11-21 06:09 - 00000000 ____D C:\WINDOWS\SysWOW64\winrm
2015-07-28 12:01 - 2014-11-21 06:09 - 00000000 ____D C:\WINDOWS\SysWOW64\WCN
2015-07-28 12:01 - 2014-11-21 06:09 - 00000000 ____D C:\WINDOWS\SysWOW64\sysprep
2015-07-28 12:01 - 2014-11-21 06:09 - 00000000 ____D C:\WINDOWS\SysWOW64\slmgr
2015-07-28 12:01 - 2014-11-21 06:09 - 00000000 ____D C:\WINDOWS\SysWOW64\Printing_Admin_Scripts
2015-07-28 12:01 - 2014-11-21 06:09 - 00000000 ____D C:\WINDOWS\system32\winrm
2015-07-28 12:01 - 2014-11-21 06:09 - 00000000 ____D C:\WINDOWS\system32\WCN
2015-07-28 12:01 - 2014-11-21 06:09 - 00000000 ____D C:\WINDOWS\system32\slmgr
2015-07-28 12:01 - 2014-11-21 06:09 - 00000000 ____D C:\WINDOWS\system32\Printing_Admin_Scripts
2015-07-28 12:01 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\SysWOW64\MUI
2015-07-28 12:01 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\SysWOW64\migwiz
2015-07-28 12:01 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\SysWOW64\IME
2015-07-28 12:01 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\SystemResetPlatform
2015-07-28 12:01 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\spool
2015-07-28 12:01 - 2013-08-22 15:36 - 00000000 ____D C:\WINDOWS\SysWOW64\SMI
2015-07-28 12:01 - 2012-12-12 07:55 - 00000000 ____D C:\WINDOWS\SysWOW64\SDA
2015-07-28 12:00 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\MUI
2015-07-28 12:00 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\IME
2015-07-28 12:00 - 2013-08-22 15:36 - 00000000 ____D C:\WINDOWS\system32\oobe
2015-07-28 11:58 - 2014-01-31 15:06 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DivX
2015-07-28 11:58 - 2014-01-31 15:00 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\URUSoft
2015-07-28 11:58 - 2013-10-14 21:10 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PANDORATV
2015-07-28 11:58 - 2013-08-22 17:43 - 00000000 ____D C:\WINDOWS\DigitalLocker
2015-07-28 11:58 - 2013-08-22 17:36 - 00000000 __SHD C:\Program Files\Windows Sidebar
2015-07-28 11:58 - 2013-08-22 17:36 - 00000000 __SHD C:\Program Files (x86)\Windows Sidebar
2015-07-28 11:58 - 2013-08-22 17:36 - 00000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2015-07-28 11:58 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\IME
2015-07-28 11:58 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\Help
2015-07-28 11:58 - 2013-08-22 17:36 - 00000000 ____D C:\Program Files\Common Files\microsoft shared
2015-07-28 11:58 - 2012-12-12 07:46 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Security and Protection
2015-07-28 11:58 - 2012-11-22 15:03 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP Help and Support
2015-07-28 11:58 - 2012-08-01 23:28 - 00000000 ____D C:\ProgramData\PRICache
2015-07-28 11:53 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\Recovery
2015-07-28 11:52 - 2014-02-21 20:39 - 00000000 ____D C:\Users\Jarka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ubisoft
2015-07-28 11:52 - 2014-01-31 15:31 - 00000000 ____D C:\Users\Jarka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\URUSoft
2015-07-28 11:52 - 2014-01-31 15:25 - 00000000 ____D C:\Users\Jarka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Subtitle Workshop
2015-07-28 11:51 - 2012-08-01 23:28 - 00000000 ____D C:\Users\Administrator\AppData\Local\Packages
2015-07-26 17:14 - 2012-11-22 14:57 - 00000000 ____D C:\Program Files (x86)\Hewlett-Packard
2015-07-26 17:09 - 2012-11-22 15:00 - 00000000 ____D C:\Program Files\Hewlett-Packard
2015-07-26 17:08 - 2013-10-14 21:05 - 00000000 ____D C:\Users\Jarka\AppData\Roaming\hpqlog
2015-07-26 16:53 - 2012-12-12 07:48 - 00000000 ____D C:\ProgramData\HPQLOG
2015-07-26 16:25 - 2013-10-13 10:53 - 00000000 ____D C:\Users\Jarka\Desktop\MOVIES
2015-07-26 16:13 - 2013-11-28 20:57 - 08393728 ___SH C:\Users\Jarka\Desktop\Thumbs.db
2015-07-26 16:03 - 2012-07-26 10:12 - 00000000 ____D C:\WINDOWS\AUInstallAgent
2015-07-18 10:26 - 2014-09-12 16:17 - 00000000 ____D C:\Users\Jarka\Documents\Telltale Games
2015-07-16 19:42 - 2013-10-15 11:24 - 00002441 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk
2015-07-16 19:41 - 2014-12-28 17:46 - 00003886 _____ C:\WINDOWS\System32\Tasks\Adobe Acrobat Update Task
2015-07-16 09:59 - 2013-10-16 09:44 - 00000000 ____D C:\WINDOWS\system32\MRT
2015-07-15 21:22 - 2013-10-14 21:16 - 00003948 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA
2015-07-15 21:22 - 2013-10-14 21:16 - 00003712 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore
2015-07-15 14:58 - 2013-10-14 21:14 - 00000000 ____D C:\ProgramData\Microsoft Help
2015-07-11 11:39 - 2014-04-22 19:31 - 00000000 ____D C:\Users\Jarka\Desktop\Geocaching

==================== Files in the root of some directories =======

2014-04-02 22:05 - 2014-04-02 22:37 - 0001162 _____ () C:\Users\Jarka\AppData\Roaming\gnuplot_history
2014-08-15 12:42 - 2014-12-28 21:53 - 0000555 _____ () C:\Users\Jarka\AppData\Roaming\koukou.ini
2014-03-06 19:14 - 2014-08-15 13:08 - 0000600 _____ () C:\Users\Jarka\AppData\Roaming\winscp.rnd
2015-02-04 12:51 - 2015-02-04 12:51 - 0000000 _____ () C:\Users\Jarka\AppData\Local\BIT85AF.tmp
2014-12-29 00:33 - 2014-12-29 00:33 - 0006815 _____ () C:\Users\Jarka\AppData\Local\recently-used.xbel
2015-02-04 12:33 - 2015-02-04 12:33 - 0000000 _____ () C:\Users\Jarka\AppData\Local\{07BC0079-007B-4998-B668-0A66E055015E}
2015-01-09 18:55 - 2015-01-09 18:55 - 0000000 _____ () C:\Users\Jarka\AppData\Local\{B74CCA1F-088D-4EE1-BD6F-653AE28C9C2C}
2013-11-28 14:00 - 2015-03-22 20:25 - 0008599 _____ () C:\ProgramData\hpzinstall.log

Some files in TEMP:
====================
C:\Users\Jarka\AppData\Local\Temp\Quarantine.exe
C:\Users\Jarka\AppData\Local\Temp\sqlite3.dll
C:\Users\Jarka\AppData\Local\Temp\Uninst.exe


==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\wininit.exe => File is digitally signed
C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\SysWOW64\explorer.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\SysWOW64\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\SysWOW64\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\SysWOW64\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
C:\WINDOWS\SysWOW64\dnsapi.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed



===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===

==================== Drive and Memory info ===================



==================== MBR and Partition Table ==================


==================== Scheduled Tasks (whitelisted) ==================

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\Synaptics TouchPad Enhancements.job => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe

==================== Alternate Data Streams (whitelisted) ==================


==================== Security Center ==================

AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: avast! Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: avast! Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}



===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)


***** Velikost "Plochy" *****

Velikost slozky "C:\Users\Jarka\Desktop" je 188136 MB.


***** Startup Programs *****


***** Firewall rules *****

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]


***** System Restore *****

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR"=dword:00000000
"Generalize_DisableSR"=dword:00000000


==================== End Of Log ==============================

Re: Prosím o preventivní kontrolu, děkuju

Napsal: 08 srp 2015 10:04
od Márty84
Disk hlasi spoustu chyb. I to muze pusobit zpomaleni. Uvidime.


***** Velikost "Plochy" *****

Velikost slozky "C:\Users\Jarka\Desktop" je 188136 MB.
:arrow: Velikost plochy by nemela presahovat 200 - 300 MB! Brzdi to chod pc. Cili ji trosku uklidte a na plochu dejte jen zastupce. Jen pozor na obcasnou chybu, ze uzivatele maji na plose slozku, v ni dalsi a v ni dalsi a do te to schovaji. To je sice hezke, ale plochu to nezmensi, jen je to v jinem supliku :)




:arrow: Otevrete si poznamkovy blok a zkopirujte do nej tento skript

Kód: Vybrat vše

Start
CloseProcesses:
CreateRestorePoint:

HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [RemoteControl10] => c:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe [91432 2012-03-29] (CyberLink Corp.)
HKLM-x32\...\Run: [GrooveMonitor] => C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [30040 2009-02-26] (Microsoft Corporation)
HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe [49208 2010-06-09] (Hewlett-Packard)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [334896 2015-04-30] (Oracle Corporation)
HKU\S-1-5-21-1134397532-792521543-4184498135-1002\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3672640 2013-03-14] (Disc Soft Ltd)
HKU\S-1-5-21-1134397532-792521543-4184498135-1002\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [8418584 2015-07-17] (Piriform Ltd)

HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.bing.com?pc=CMNTDFJS
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.bing.com?pc=CMNTDFJS
HKU\S-1-5-21-1134397532-792521543-4184498135-1002\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.bing.com?pc=CMNTDFJS
HKU\S-1-5-21-1134397532-792521543-4184498135-1002\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.bing.com?pc=CMNTDFJS

CHR Extension: (No Name) - C:\Users\Jarka\AppData\Local\Google\Chrome\User Data\Default\Extensions\bcjbagclppcgdbpobcpoojdjdmcjhpid [2015-08-08]
CHR Extension: (No Name) - C:\Users\Jarka\AppData\Local\Google\Chrome\User Data\Default\Extensions\iblenkmcolcdonmlfknbpbgjebabcoae [2015-08-08]

Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2015-07-07 82128]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-10-14 116648]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-10-14 116648]

Hosts:
EmptyTemp:
Reboot:
End
Vlevo nahore kliknete na napis Soubor
Kliknete na napis Ulozit jako...
Napiste spravne ten cerveny nazev fixlist a ulozte na plochu.
Vypnete antivir i dalsi pripadne zabezpeceni.
Spustte FRST jako spravce, kliknete na napis Fix a program vykona prikazy.
Po restartu pc by se mel objevit novy log - s nazvem fixlog, ten mi sem zase zkopirujte.

Re: Prosím o preventivní kontrolu, děkuju

Napsal: 08 srp 2015 10:54
od Hruzka
:arrow:Velikost plochy by nemela presahovat 200 - 300 MB! Brzdi to chod pc. Cili ji trosku uklidte a na plochu dejte jen zastupce. Jen pozor na obcasnou chybu, ze uzivatele maji na plose slozku, v ni dalsi a v ni dalsi a do te to schovaji. To je sice hezke, ale plochu to nezmensi, jen je to v jinem supliku :)
Bordel na ploše eheheh :oops: Děkuji za upozornění! :) Částečně již uklizeno :) a fixlog:
Fix result of Farbar Recovery Scan Tool (x64) Version:06-08-2015
Ran by Jarka (2015-08-08 11:34:52) Run:1
Running from C:\Users\Jarka\Desktop
Loaded Profiles: Jarka (Available Profiles: Jarka & Administrator)
Boot Mode: Normal
==============================================

fixlist content:
*****************
Start
CloseProcesses:
CreateRestorePoint:

HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [RemoteControl10] => c:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe [91432 2012-03-29] (CyberLink Corp.)
HKLM-x32\...\Run: [GrooveMonitor] => C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [30040 2009-02-26] (Microsoft Corporation)
HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe [49208 2010-06-09] (Hewlett-Packard)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [334896 2015-04-30] (Oracle Corporation)
HKU\S-1-5-21-1134397532-792521543-4184498135-1002\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3672640 2013-03-14] (Disc Soft Ltd)
HKU\S-1-5-21-1134397532-792521543-4184498135-1002\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [8418584 2015-07-17] (Piriform Ltd)

HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.bing.com?pc=CMNTDFJS
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.bing.com?pc=CMNTDFJS
HKU\S-1-5-21-1134397532-792521543-4184498135-1002\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.bing.com?pc=CMNTDFJS
HKU\S-1-5-21-1134397532-792521543-4184498135-1002\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.bing.com?pc=CMNTDFJS

CHR Extension: (No Name) - C:\Users\Jarka\AppData\Local\Google\Chrome\User Data\Default\Extensions\bcjbagclppcgdbpobcpoojdjdmcjhpid [2015-08-08]
CHR Extension: (No Name) - C:\Users\Jarka\AppData\Local\Google\Chrome\User Data\Default\Extensions\iblenkmcolcdonmlfknbpbgjebabcoae [2015-08-08]

Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2015-07-07 82128]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-10-14 116648]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-10-14 116648]

Hosts:
EmptyTemp:
Reboot:
End
*****************

Processes closed successfully.
Restore point was successfully created.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\ => value removed successfully
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\RemoteControl10 => value removed successfully
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\GrooveMonitor => value removed successfully
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\HP Software Update => value removed successfully
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\SunJavaUpdateSched => value removed successfully
HKU\S-1-5-21-1134397532-792521543-4184498135-1002\Software\Microsoft\Windows\CurrentVersion\Run\\DAEMON Tools Lite => value removed successfully
HKU\S-1-5-21-1134397532-792521543-4184498135-1002\Software\Microsoft\Windows\CurrentVersion\Run\\CCleaner Monitoring => value removed successfully
HKLM\Software\\Microsoft\Internet Explorer\Main\\Start Page => value restored successfully
HKLM\Software\\Microsoft\Internet Explorer\Main\\Default_Page_URL => value restored successfully
HKU\S-1-5-21-1134397532-792521543-4184498135-1002\Software\Microsoft\Internet Explorer\Main\\Start Page => value restored successfully
HKU\S-1-5-21-1134397532-792521543-4184498135-1002\Software\Microsoft\Internet Explorer\Main\\Default_Page_URL => value restored successfully
C:\Users\Jarka\AppData\Local\Google\Chrome\User Data\Default\Extensions\bcjbagclppcgdbpobcpoojdjdmcjhpid => moved successfully.
C:\Users\Jarka\AppData\Local\Google\Chrome\User Data\Default\Extensions\iblenkmcolcdonmlfknbpbgjebabcoae => moved successfully.
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => moved successfully.
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => moved successfully.
AdobeARMservice => service removed successfully
gupdate => service removed successfully
gupdatem => service removed successfully
C:\Windows\System32\Drivers\etc\hosts => moved successfully.
Hosts restored successfully.
EmptyTemp: => 303.7 MB temporary data Removed.


The system needed a reboot..

==== End of Fixlog 11:36:11 ====

Re: Prosím o preventivní kontrolu, děkuju

Napsal: 08 srp 2015 11:11
od Márty84
:!: Vsechny tyto programy - vcetne pripadne instalace - spoustejte jako spravce (kliknete na ne pravym mysidlem a zvolte - Spustit jako spravce)

:arrow:
vyosek píše: :arrow: DelFix https://toolslib.net/downloads/finish/2/
  • Stahnete a spustte
  • Ponechte zatrzitkou pouze u volby Remove disinfection tools
  • Kliknete na Run
:arrow: Stahnete Ccleaner http://www.filehippo.com/download_ccleaner a spustte.
Pri instalaci pozor na toolbar (ci jine doplnky), jestli vam nabidne jeho instalaci, tak zruste zatrzitko.
Po spusteni se ocitnete ve funkci Cistic. Vlevo je spousta zatrzitek. Pozor dejte hlavne na kos, pokud nechate zatrzene, vzdy ho vysype.
Dale, podle toho jak je nastaven, smaze vsechna hesla ulozena na netu!!! Takze jestli mate nastavene, at si pocitac hesla pamatuje (coz neni pro bezpecnost dobre), budete je muset pak napsat znova rucne (napr mail, facebook, ruzna fora atd.)
Kliknete na Analyzovat a az dokonci analyzu, kliknete na Spustit Cleaner.
Potom kliknete vlevo na funkci Registry
Kliknete na Hledej problemy, kdyz najde, kliknete na Opravit problemy. Nabidne Vam zalohu, tu udelejte a ulozte ji tak, at ji v pripade potreby najdete.
Funkce Nastroje umoznuje odinstalovani programu. Je dukladnejsi nez samotny windows!
(Pokud je v pc vice uzivatelskych uctu, pouzijte program i v nich)

:arrow: Defragmentujte disk(y) (SSD Disky ne!)
Stahnete program Defraggler https://www.piriform.com/defraggler/download/standard
Pri instalaci opet pozor na toolbar a dalsi nesmysly.
Po nainstalovani program spustte a kliknete na Analyzovat, po analyze kliknete na Defragmentovat a programek odvede svou praci.




:arrow: Pak napiste, jak to s pc vypada.

Re: Prosím o preventivní kontrolu, děkuju

Napsal: 08 srp 2015 13:00
od Hruzka
Tak hotovo :) teda až na tu defragmentaci, ta hlásí zbývající čas >1 den :?: :D, tak to nechám až někdy na noc :) .. Jinak to vypadá, že už teď PC pracuje o trošíčku rychleji :thumbsup: .. Pokud je to tedy vše, tak moc děkuji za kontrolu a následnou spolupráci! :)

Re: Prosím o preventivní kontrolu, děkuju

Napsal: 08 srp 2015 14:12
od Márty84
Hruzka píše:Pokud je to tedy vše....
To zalezi na vas. Pokud se pocitac chova normalne, je to vse. Pokud je sice rychlejsi, ale do normalu to ma jeste daleko, muzeme se podivat jeste hloubeji. Havet tam neni, ale nejake zbytecnosti a brzdy treba jeste vystourame :-)

Jinak nemate zac, rado se stalo! ;-)



13.9. :lock: http://forum.viry.cz/viewtopic.php?f=12&t=123975