Pomalé načítání stránek
Napsal: 05 dub 2016 21:56
Ahoj, potřeboval bych pomoct, jelikož se mi poslední dobou vždy po pár minutách, když si načítám v klidu stránky pohodička, dám si další stránku a najednou musím čekat někdy i přes minutu, někdy to napíše že odezva webu blabla trvala příliš dlouho, ale internet mi normálně funguje, tak netuším čím by to mohlo být.. Přikladám log FRST a Log ADW Cleaneru.
1. část
LOG FRST: Logfile of random's system information tool 1.10 (written by random/random)
Run by Petr at 2016-04-05 22:51:21
Microsoft Windows 10 Home
System drive C: has 265 GB (58%) free of 453 GB
Total RAM: 3982 MB (53% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 22:51:30, on 05.04.2016
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.10586.0020)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\CyberLink\YouCam\YouCamService.exe
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Program Files\AVAST Software\SecureLine\SecureLine.exe
C:\Program Files (x86)\Hewlett-Packard\HP System Event\HPMSGSVC.exe
C:\Program Files (x86)\Steam\Steam.exe
C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\AAM Updates Notifier.exe
C:\Program Files (x86)\AIMP\AIMP.exe
C:\Users\Petr\Desktop\HRC.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\Petr.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.bing.com?pc=HPDTDFJS
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.bing.com?pc=HPDTDFJS
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=
O2 - BHO: Evernote extension - {92EF2EAD-A7CE-4424-B0DB-499CF856608E} - C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll
O2 - BHO: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll
O4 - HKLM\..\Run: [HPMessageService] C:\Program Files (x86)\Hewlett-Packard\HP System Event\HPMSGSVC.exe
O4 - HKLM\..\Run: [DropboxOEM] "C:\Program Files (x86)\Dropbox\DropboxOEM\DropboxOEM.exe" auto
O4 - HKLM\..\Run: [AdobeCEPServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CEPServiceManager4\CEPServiceManager.exe" -launchedbylogin
O4 - HKCU\..\Run: [Steam] "C:\Program Files (x86)\Steam\steam.exe" -silent
O4 - HKCU\..\Run: [Gyazo] C:\Program Files (x86)\Gyazo\GyStation.exe
O4 - HKCU\..\Run: [OneDrive] "C:\Users\Petr\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O4 - Global Startup: avast! SecureLine.lnk = C:\Program Files\AVAST Software\SecureLine\SecureLine.exe
O9 - Extra button: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-103 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-102 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O9 - Extra button: @C:\Program Files (x86)\Evernote\Evernote\Resource.dll,-101 - {A95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\Program Files (x86)\Evernote\Evernote\\EvernoteIERes\AddNote.html
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Evernote\Evernote\Resource.dll,-101 - {A95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\Program Files (x86)\Evernote\Evernote\\EvernoteIERes\AddNote.html
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - Trusted Zone: http://help.eset.com (HKLM)
O15 - ESC Trusted Zone: http://help.eset.com (HKLM)
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O23 - Service: Andrea RT Filters Service (AERTFilters) - Andrea Electronics Corporation - C:\Program Files\Realtek\Audio\HDA\AERTSr64.EXE
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: BattlEye Service (BEService) - Unknown owner - C:\Program Files (x86)\Common Files\BattlEye\BEService.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: BTDevManager - Unknown owner - C:\Program Files (x86)\REALTEK\Realtek Bluetooth\BTDevMgr.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: HP Support Assistant Service - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe
O23 - Service: HP Software Framework Service (hpqwmiex) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe
O23 - Service: HPWMISVC - Hewlett-Packard Development Company, L.P. - C:\Program Files (x86)\Hewlett-Packard\HP System Event\HPWMISVC.exe
O23 - Service: Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) - Unknown owner - C:\WINDOWS\system32\igfxCUIService.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\TXE Components\TCS\HeciServer.exe
O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - C:\Program Files\Intel\TXE Components\TCS\SocketHeciServer.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: LiveUpdate (LiveUpdateSvc) - IObit - C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\WINDOWS\system32\nvvsvc.exe (file missing)
O23 - Service: HP SimplePass Service (omniserv) - Softex Inc. - C:\Program Files\Hewlett-Packard\SimplePass\OmniServ.exe
O23 - Service: Cyberlink RichVideo64 Service(CRVS) (RichVideo64) - Unknown owner - C:\Program Files\CyberLink\Shared files\RichVideo64.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: Realtek Audio Service (RtkAudioService) - Realtek Semiconductor - C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: avast! SecureLine (SecureLine) - Unknown owner - C:\Program Files\AVAST Software\SecureLine\VpnSvc.exe
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: SynTPEnh Caller Service (SynTPEnhService) - Synaptics Incorporated - C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\WINDOWS\system32\TieringEngineService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 12185 bytes
======Listing Processes======
winlogon.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
"dwm.exe"
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
"C:\WINDOWS\system32\nvvsvc.exe"
"C:\Program Files\Hewlett-Packard\SimplePass\OmniServ.exe"
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\WINDOWS\system32\nvvsvc.exe -session -first
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\system32\igfxCUIService.exe
"C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /SRSPS
C:\WINDOWS\system32\svchost.exe -k NetworkService
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
C:\WINDOWS\system32\svchost.exe -k WbioSvcGroup
C:\WINDOWS\system32\svchost.exe -k apphost
C:\WINDOWS\System32\svchost.exe -k utcsvc
"C:\Program Files\Realtek\Audio\HDA\AERTSr64.EXE"
"C:\Program Files (x86)\Hewlett-Packard\HP System Event\HPWMISVC.exe"
"C:\Program Files\Intel\TXE Components\TCS\HeciServer.exe"
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe"
C:\WINDOWS\system32\svchost.exe -k imgsvc
C:\WINDOWS\system32\svchost.exe -k appmodel
dashost.exe {ea9b5b8d-2d06-4a07-965db4abe7cc209a}
"C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe"
"C:\Program Files\Bonjour\mDNSResponder.exe"
"C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe"
"C:\Program Files (x86)\REALTEK\Realtek Bluetooth\BTDevMgr.exe"
"C:\Program Files\AVAST Software\SecureLine\VpnSvc.exe"
"C:\Program Files\CyberLink\Shared files\RichVideo64.exe"
C:\WINDOWS\system32\WLANExt.exe 2891908622416
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe" nss e17323c5-2f9b-4aff-9c8b-b9f8821f52d5 1
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe" serviceapp
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
sihost.exe
taskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E}
C:\Windows\System32\RuntimeBroker.exe -Embedding
C:\WINDOWS\Explorer.EXE
"C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE"
"C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
"C:\Program Files\Hewlett-Packard\SimplePass\opvapp.exe"
"C:\Program Files (x86)\CyberLink\YouCam\YouCamService.exe"
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
"C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe" -ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
"C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
"C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe" -s
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /ANDREA_BF_BYPASS
"C:\Program Files\Hewlett-Packard\SimplePass\ClientCore.exe" /hideui
"C:\Program Files\Hewlett-Packard\SimplePass\opbhobroker.exe"
"C:\Program Files\Hewlett-Packard\SimplePass\opbhobrokerdsktop.exe"
"C:\Program Files\AVAST Software\SecureLine\SecureLine.exe" /nogui
"C:\Program Files (x86)\Hewlett-Packard\HP System Event\HPMSGSVC.exe"
C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
C:\WINDOWS\system32\wbem\wmiprvse.exe
igfxEM.exe
igfxHK.exe
"C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe" /hide
"C:\Program Files (x86)\Steam\Steam.exe"
"C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe"
"C:\Program Files (x86)\Steam\bin\steamwebhelper.exe" -cachedir="C:\Users\Petr\AppData\Local\Steam\htmlcache" -steampid=5640 -buildid=1459463254 -steamid="0" --disable-gpu-compositing --disable-gpu --process-per-tab --enable-system-flash --disable-spell-checking --enable-widevine-cdm --enable-direct-write
"C:\Program Files (x86)\Common Files\Steam\SteamService.exe" /RunAsService
C:\WINDOWS\system32\SettingSyncHost.exe -Embedding
"C:\Program Files (x86)\Steam\bin\steamwebhelper.exe" --type=renderer --disable-gpu-compositing --enable-pinch --lang=en-US --lang=en-US --log-file="C:\Program Files (x86)\Steam\bin\debug.log" --product-version="Valve Steam Client" --disable-spell-checking --enable-system-flash --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --disable-gpu-compositing --channel="4104.0.922663693\1204857682" --font-cache-shared-handle=1532 /prefetch:673131151
"C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\AAM Updates Notifier.exe"
"C:\Program Files (x86)\AIMP\AIMP.exe"
"fontdrvhost.exe"
C:\WINDOWS\system32\ApplicationFrameHost.exe -Embedding
"C:\WINDOWS\ImmersiveControlPanel\SystemSettings.exe" -ServerName:microsoft.windows.immersivecontrolpanel
"C:\Program Files\WindowsApps\Microsoft.WindowsStore_2016.29.13.0_x64__8wekyb3d8bbwe\WinStore.Mobile.exe" -ServerName:App.AppXqagq4n4gvy0tjw576pgh6xr601s1h1mv.mca
"C:\Program Files\WindowsApps\Microsoft.Windows.Photos_16.325.12390.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe" -ServerName:App.AppXzst44mncqdg84v7sv6p7yznqwssy6f7f.mca
"C:\Program Files\WindowsApps\Microsoft.People_10.0.10811.0_x64__8wekyb3d8bbwe\PeopleApp.exe" -ServerName:x4c7a3b7dy2188y46d4ya362y19ac5a5805e5x.AppXp4q8q2jfk5x248b0h39ew5k7wz3xvc5b.mca
"C:\Users\Petr\Desktop\HRC.exe"
taskhostw.exe
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=crashpad-handler /prefetch:7 --no-rate-limit "--database=C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Crashpad" --url=https://clients2.google.com/cr/report --annotation=channel=m --annotation=plat=Win32 --annotation=prod=Chrome --annotation=ver=49.0.2623.110 --handshake-handle=0x1ac
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding --disable-features=UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup,WebFontsIntervention<WebFontsIntervention --lang=cs --force-fieldtrials=AppBannerTriggering/Aggressive/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_10-gen2/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ClientSideDetectionModel/Model0/*CrossDevicePromo/14DaySingleProfile/*DataReductionProxyConfigService/Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Postperiod_AnswersInSuggest_A1/PasswordBranding/Disabled/*PasswordGeneration/Disabled/PreRead/Default/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Disabled/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/SSLCommonNameMismatchHandling/Disabled/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_07/*UMA-Uniformity-Trial-10-Percent/group_09/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/default/*UMA-Uniformity-Trial-5-Percent/group_02/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/WebFontsIntervention/Disabled/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --extension-process --enable-webrtc-hw-h264-encoding --disable-client-side-phishing-detection --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --disable-accelerated-video-decode --disable-webrtc-hw-encoding --disable-gpu-compositing --channel="10312.2.355831801\1425600287" /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="10312.6.1653752180\1652153616" --use-gl=swiftshader --supports-dual-gpus=false --swiftshader-path="C:\Users\Petr\AppData\Local\Google\Chrome\User Data\SwiftShader\3.2.6.45159" --gpu-driver-bug-workarounds=3,11,16,25,54 --gpu-vendor-id=0x8086 --gpu-device-id=0x0f31 --gpu-driver-vendor="Intel Corporation" --gpu-driver-version=10.18.10.4276 --ignored=" --type=renderer " /prefetch:2
"C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe"
C:\WINDOWS\System32\svchost.exe -k swprv
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding --disable-features=UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup,WebFontsIntervention<WebFontsIntervention --lang=cs --force-fieldtrials=AppBannerTriggering/Aggressive/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_10-gen2/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ClientSideDetectionModel/Model0/*CrossDevicePromo/14DaySingleProfile/*DataReductionProxyConfigService/Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Postperiod_AnswersInSuggest_A1/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*PreRead/Default/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Disabled/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/SSLCommonNameMismatchHandling/Disabled/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_07/*UMA-Uniformity-Trial-10-Percent/group_09/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/default/*UMA-Uniformity-Trial-5-Percent/group_02/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*WebFontsIntervention/Disabled/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --disable-client-side-phishing-detection --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --disable-gpu-compositing --channel="10312.36.1572614579\1650319811" /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding --disable-features=UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup,WebFontsIntervention<WebFontsIntervention --lang=cs --force-fieldtrials=AppBannerTriggering/Aggressive/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_10-gen2/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ClientSideDetectionModel/Model0/*CrossDevicePromo/14DaySingleProfile/*DataReductionProxyConfigService/Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Postperiod_AnswersInSuggest_A1/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*PreRead/Default/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Disabled/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/SSLCommonNameMismatchHandling/Disabled/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_07/*UMA-Uniformity-Trial-10-Percent/group_09/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/default/*UMA-Uniformity-Trial-5-Percent/group_02/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*WebFontsIntervention/Disabled/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --disable-client-side-phishing-detection --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --disable-gpu-compositing --channel="10312.39.1310509455\178751577" /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding --disable-features=UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup,WebFontsIntervention<WebFontsIntervention --lang=cs --force-fieldtrials=AppBannerTriggering/Aggressive/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_10-gen2/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ClientSideDetectionModel/Model0/*CrossDevicePromo/14DaySingleProfile/*DataReductionProxyConfigService/Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Postperiod_AnswersInSuggest_A1/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*PreRead/Default/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Disabled/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/SSLCommonNameMismatchHandling/Disabled/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_07/*UMA-Uniformity-Trial-10-Percent/group_09/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/default/*UMA-Uniformity-Trial-5-Percent/group_02/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*WebFontsIntervention/Disabled/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --disable-client-side-phishing-detection --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --disable-gpu-compositing --channel="10312.40.823946976\926330763" /prefetch:1
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe47_ Global\UsGthrCtrlFltPipeMssGthrPipe47 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 620 624 632 8192 628
"C:\Users\Petr\Desktop\RSITx64.exe"
C:\WINDOWS\system32\wbem\wmiprvse.exe
======Scheduled tasks folder======
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\WINDOWS\tasks\HPCeeScheduleForPetr.job - C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe HPCeeScheduleForPetr (null)
=========Mozilla firefox=========
ProfilePath - C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\70e4d70i.default
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 21.0.0.182 Plugin
"Path"=C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_21_0_0_182.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/ShockwavePlayer]
"Description"=Adobe Shockwave Player
"Path"=C:\windows\SysWOW64\Adobe\Director\np32dsw_1204144.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/pdf]
"Description"=
"Path"=C:\Program Files (x86)\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.fdf]
"Description"=
"Path"=C:\Program Files (x86)\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.29.5\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.29.5\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.2.2]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\adobe.com/AdobeAAMDetect]
"Description"=
"Path"=C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 21.0.0.182 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF64_21_0_0_182.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\adobe.com/AdobeAAMDetect]
"Description"=
"Path"=C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E76FD755-C1BA-4DCB-9F13-99BD91223ADE}]
HP Network Check Helper - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll [2013-08-28 303416]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{92EF2EAD-A7CE-4424-B0DB-499CF856608E}]
Evernote extension - C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll [2014-07-25 585568]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E76FD755-C1BA-4DCB-9F13-99BD91223ADE}]
HP Network Check Helper - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2013-08-28 286520]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [2014-09-03 7636696]
"RtHDVBg"=C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2014-09-02 1396592]
"NvBackend"=C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2014-09-09 2473800]
"ShadowPlay"=C:\Windows\system32\nvspcap64.dll [2014-09-09 2799272]
"SimplePass"=C:\Program Files\Hewlett-Packard\SimplePass\ClientCore.exe [2014-03-28 3962936]
"OPBHOBroker"=C:\Program Files\Hewlett-Packard\SimplePass\OPBHOBroker.exe [2014-03-28 415288]
"OPBHOBrokerDesktop"=C:\Program Files\Hewlett-Packard\SimplePass\OPBHOBrokerDsktop.exe [2014-03-28 415288]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2015-07-17 3944136]
"AdobeAAMUpdater-1.0"=C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2013-03-21 472992]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Steam"=C:\Program Files (x86)\Steam\steam.exe [2016-03-31 3077712]
"Gyazo"=C:\Program Files (x86)\Gyazo\GyStation.exe [2016-02-17 3586848]
"OneDrive"=C:\Users\Petr\AppData\Local\Microsoft\OneDrive\OneDrive.exe [2016-03-13 551104]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2016-02-12 8641240]
"Skype"=C:\Program Files (x86)\Skype\Phone\Skype.exe [2016-03-01 50670720]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"HPMessageService"=C:\Program Files (x86)\Hewlett-Packard\HP System Event\HPMSGSVC.exe [2014-09-02 507144]
"DropboxOEM"=C:\Program Files (x86)\Dropbox\DropboxOEM\DropboxOEM.exe [2014-09-02 462160]
"AdobeCEPServiceManager"=C:\Program Files (x86)\Common Files\Adobe\CEPServiceManager4\CEPServiceManager.exe [2013-03-13 1039248]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
avast! SecureLine.lnk - C:\Program Files\AVAST Software\SecureLine\SecureLine.exe
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iai2c.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TileDataModelSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TileDataModelSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DSCAutomationHostEnabled"=2
"SoftwareSASGeneration"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"VIDC.FPS1"=frapsv64.dll
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2016-04-05 22:51:22 ----D---- C:\Program Files\trend micro
2016-04-05 22:51:21 ----D---- C:\rsit
2016-04-05 22:40:21 ----D---- C:\Users\Petr\AppData\Roaming\ProductData
2016-04-05 22:40:16 ----D---- C:\ProgramData\{FD6F83C0-EC70-4581-8361-C70CD1AA4B98}
2016-04-05 22:38:59 ----D---- C:\ProgramData\ProductData
2016-04-05 22:38:49 ----D---- C:\Users\Petr\AppData\Roaming\IObit
2016-04-05 22:38:49 ----D---- C:\ProgramData\IObit
2016-04-05 22:38:49 ----A---- C:\WINDOWS\SYSWOW64\drivers\HWiNFO64A.SYS
2016-04-05 22:38:44 ----D---- C:\Program Files (x86)\IObit
2016-04-02 22:24:38 ----D---- C:\Users\Petr\AppData\Roaming\SFBot
2016-04-01 15:26:11 ----D---- C:\ProgramData\Orbit
2016-04-01 15:01:07 ----D---- C:\Program Files (x86)\Steam Customizer
2016-03-31 19:08:24 ----D---- C:\Users\Petr\AppData\Roaming\MotioninJoy
2016-03-31 19:08:19 ----A---- C:\WINDOWS\system32\MijFrc.dll
2016-03-31 19:08:18 ----AD---- C:\Program Files\MotioninJoy
2016-03-31 19:08:18 ----A---- C:\WINDOWS\system32\drivers\xusb21.sys
2016-03-31 19:08:18 ----A---- C:\WINDOWS\system32\drivers\MijXfilt.sys
2016-03-28 21:57:57 ----D---- C:\Program Files (x86)\Livestreamer
2016-03-22 23:56:17 ----D---- C:\AdwCleaner
2016-03-22 21:40:32 ----D---- C:\Users\Petr\AppData\Roaming\vlc
2016-03-22 21:38:44 ----D---- C:\Users\Petr\AppData\Roaming\livestreamer
2016-03-22 21:36:15 ----D---- C:\Program Files (x86)\VideoLAN
2016-03-22 19:30:40 ----D---- C:\Users\Petr\AppData\Roaming\Skype
2016-03-22 19:30:27 ----RD---- C:\Program Files (x86)\Skype
2016-03-22 19:30:17 ----D---- C:\ProgramData\Skype
2016-03-18 20:00:11 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2016-03-18 20:00:06 ----AD---- C:\Program Files (x86)\Mozilla Firefox
2016-03-16 23:05:48 ----D---- C:\Users\Petr\AppData\Roaming\.mono
2016-03-16 23:05:48 ----D---- C:\ProgramData\.mono
2016-03-14 22:54:01 ----D---- C:\Games
2016-03-13 23:49:18 ----D---- C:\ProgramData\ESET
2016-03-13 23:49:05 ----D---- C:\Program Files\ESET
2016-03-13 23:43:03 ----AD---- C:\Program Files\CCleaner
2016-03-13 22:24:33 ----D---- C:\Users\Petr\AppData\Roaming\Publish Providers
2016-03-13 22:21:02 ----D---- C:\ProgramData\Sony
2016-03-13 22:21:02 ----D---- C:\Program Files (x86)\Sony
2016-03-13 22:21:01 ----D---- C:\Program Files\Sony
2016-03-13 22:20:16 ----D---- C:\Users\Petr\AppData\Roaming\Sony
2016-03-13 22:10:16 ----SD---- C:\WINDOWS\SYSWOW64\Microsoft
2016-03-13 22:00:46 ----D---- C:\Fraps
2016-03-13 21:37:51 ----D---- C:\Program Files\Adobe
2016-03-13 21:35:14 ----AD---- C:\Program Files (x86)\Adobe
2016-03-13 11:59:21 ----D---- C:\Users\Petr\AppData\Roaming\Mozilla
2016-03-13 11:52:09 ----D---- C:\Users\Petr\AppData\Roaming\Raptr
2016-03-13 11:51:32 ----D---- C:\Users\Petr\AppData\Roaming\library_dir
2016-03-13 11:51:23 ----D---- C:\Program Files (x86)\Raptr Inc
2016-03-13 10:16:27 ----D---- C:\WINDOWS\system32\MRT
2016-03-13 10:16:19 ----A---- C:\WINDOWS\system32\MRT.exe
2016-03-13 00:25:12 ----A---- C:\WINDOWS\system32\{F33C3B9B-72AF-418A-B3FD-560646F7CDA2}.bat
2016-03-13 00:20:44 ----A---- C:\WINDOWS\system32\emptyregdb.dat
2016-03-12 23:59:49 ----SD---- C:\Users\Petr\AppData\Roaming\Microsoft
2016-03-12 23:59:01 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2016-03-12 23:58:51 ----A---- C:\WINDOWS\SYSWOW64\PerfStringBackup.INI
2016-03-12 23:55:37 ----D---- C:\ProgramData\NVIDIA
2016-03-12 23:55:31 ----A---- C:\WINDOWS\system32\nvvsvc.exe
2016-03-12 23:55:31 ----A---- C:\WINDOWS\system32\nvsvcr.dll
2016-03-12 23:55:31 ----A---- C:\WINDOWS\system32\nvsvc64.dll
2016-03-12 23:55:31 ----A---- C:\WINDOWS\system32\nvshext.dll
2016-03-12 23:55:31 ----A---- C:\WINDOWS\system32\nvmctray.dll
2016-03-12 23:55:31 ----A---- C:\WINDOWS\system32\nvcpl.dll
2016-03-12 23:55:31 ----A---- C:\WINDOWS\system32\nv3dappshextr.dll
2016-03-12 23:55:31 ----A---- C:\WINDOWS\system32\nv3dappshext.dll
2016-03-12 23:55:17 ----D---- C:\ProgramData\NVIDIA Corporation
2016-03-12 23:55:03 ----D---- C:\Program Files\NVIDIA Corporation
2016-03-12 23:54:57 ----D---- C:\WINDOWS\SYSWOW64\sda
2016-03-12 23:54:44 ----D---- C:\WINDOWS\system32\SRSLabs
2016-03-12 23:54:39 ----D---- C:\WINDOWS\SYSWOW64\RTCOM
2016-03-12 23:54:39 ----D---- C:\Program Files\Realtek
2016-03-12 23:54:36 ----A---- C:\WINDOWS\SYSWOW64\OpenCL.DLL
2016-03-12 23:54:36 ----A---- C:\WINDOWS\system32\OpenCL.DLL
2016-03-12 23:54:31 ----D---- C:\Program Files\Intel
2016-03-12 23:53:37 ----D---- C:\Program Files\Synaptics
2016-03-12 23:50:17 ----D---- C:\WINDOWS\Prefetch
2016-03-12 23:48:11 ----SHD---- C:\Recovery
2016-03-12 23:47:56 ----DC---- C:\WINDOWS\Panther
2016-03-12 23:41:46 ----D---- C:\Windows.old
2016-03-12 23:39:08 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.MediaControl.dll
2016-03-12 23:39:08 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Audio.dll
2016-03-12 23:39:08 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Scanners.dll
2016-03-12 23:39:08 ----A---- C:\WINDOWS\SYSWOW64\SettingSync.dll
2016-03-12 23:39:08 ----A---- C:\WINDOWS\SYSWOW64\msvproc.dll
2016-03-12 23:39:08 ----A---- C:\WINDOWS\SYSWOW64\MSFlacDecoder.dll
2016-03-12 23:39:08 ----A---- C:\WINDOWS\SYSWOW64\mfsvr.dll
2016-03-12 23:39:08 ----A---- C:\WINDOWS\SYSWOW64\mfmpeg2srcsnk.dll
2016-03-12 23:39:08 ----A---- C:\WINDOWS\SYSWOW64\mfmp4srcsnk.dll
2016-03-12 23:39:08 ----A---- C:\WINDOWS\SYSWOW64\mfds.dll
2016-03-12 23:39:08 ----A---- C:\WINDOWS\SYSWOW64\mfasfsrcsnk.dll
2016-03-12 23:39:08 ----A---- C:\WINDOWS\SYSWOW64\MCRecvSrc.dll
2016-03-12 23:39:08 ----A---- C:\WINDOWS\SYSWOW64\AppxPackaging.dll
2016-03-12 23:39:08 ----A---- C:\WINDOWS\system32\MSFlacDecoder.dll
2016-03-12 23:39:08 ----A---- C:\WINDOWS\system32\MDEServer.exe
2016-03-12 23:39:08 ----A---- C:\WINDOWS\system32\MCRecvSrc.dll
2016-03-12 23:38:59 ----A---- C:\WINDOWS\SYSWOW64\mfsrcsnk.dll
2016-03-12 23:38:59 ----A---- C:\WINDOWS\SYSWOW64\mfmkvsrcsnk.dll
2016-03-12 23:38:59 ----A---- C:\WINDOWS\SYSWOW64\MFMediaEngine.dll
2016-03-12 23:38:59 ----A---- C:\WINDOWS\SYSWOW64\MFCaptureEngine.dll
2016-03-12 23:38:58 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.dll
2016-03-12 23:38:58 ----A---- C:\WINDOWS\SYSWOW64\mfcore.dll
2016-03-12 23:38:58 ----A---- C:\WINDOWS\system32\Windows.Media.dll
2016-03-12 23:38:58 ----A---- C:\WINDOWS\system32\Windows.Media.Audio.dll
2016-03-12 23:38:58 ----A---- C:\WINDOWS\system32\SettingSync.dll
2016-03-12 23:38:58 ----A---- C:\WINDOWS\system32\msvproc.dll
2016-03-12 23:38:58 ----A---- C:\WINDOWS\system32\mfsvr.dll
2016-03-12 23:38:58 ----A---- C:\WINDOWS\system32\mfsrcsnk.dll
2016-03-12 23:38:58 ----A---- C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2016-03-12 23:38:58 ----A---- C:\WINDOWS\system32\mfmp4srcsnk.dll
2016-03-12 23:38:58 ----A---- C:\WINDOWS\system32\mfmkvsrcsnk.dll
2016-03-12 23:38:58 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll
2016-03-12 23:38:58 ----A---- C:\WINDOWS\system32\mfds.dll
2016-03-12 23:38:58 ----A---- C:\WINDOWS\system32\mfcore.dll
2016-03-12 23:38:58 ----A---- C:\WINDOWS\system32\MFCaptureEngine.dll
2016-03-12 23:38:58 ----A---- C:\WINDOWS\system32\mfasfsrcsnk.dll
2016-03-12 23:38:58 ----A---- C:\WINDOWS\system32\drivers\mrxsmb10.sys
2016-03-12 23:38:58 ----A---- C:\WINDOWS\system32\audiosrv.dll
2016-03-12 23:38:58 ----A---- C:\WINDOWS\system32\AudioSes.dll
2016-03-12 23:38:58 ----A---- C:\WINDOWS\system32\AUDIOKSE.dll
2016-03-12 23:38:58 ----A---- C:\WINDOWS\system32\AudioEndpointBuilder.dll
2016-03-12 23:38:58 ----A---- C:\WINDOWS\system32\audiodg.exe
2016-03-12 23:38:57 ----A---- C:\WINDOWS\SYSWOW64\wfapigp.dll
2016-03-12 23:38:57 ----A---- C:\WINDOWS\SYSWOW64\NetSetupEngine.dll
2016-03-12 23:38:57 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2016-03-12 23:38:57 ----A---- C:\WINDOWS\SYSWOW64\fwpolicyiomgr.dll
2016-03-12 23:38:57 ----A---- C:\WINDOWS\SYSWOW64\fwbase.dll
2016-03-12 23:38:57 ----A---- C:\WINDOWS\SYSWOW64\FirewallAPI.dll
2016-03-12 23:38:57 ----A---- C:\WINDOWS\system32\wpninprc.dll
2016-03-12 23:38:57 ----A---- C:\WINDOWS\system32\wfapigp.dll
2016-03-12 23:38:57 ----A---- C:\WINDOWS\system32\sharemediacpl.dll
2016-03-12 23:38:57 ----A---- C:\WINDOWS\system32\PsmServiceExtHost.dll
2016-03-12 23:38:57 ----A---- C:\WINDOWS\system32\NetSetupSvc.dll
2016-03-12 23:38:57 ----A---- C:\WINDOWS\system32\NetSetupEngine.dll
2016-03-12 23:38:57 ----A---- C:\WINDOWS\system32\MPSSVC.dll
2016-03-12 23:38:57 ----A---- C:\WINDOWS\system32\fwpolicyiomgr.dll
2016-03-12 23:38:57 ----A---- C:\WINDOWS\system32\fwbase.dll
2016-03-12 23:38:57 ----A---- C:\WINDOWS\system32\FirewallAPI.dll
2016-03-12 23:38:55 ----A---- C:\WINDOWS\SYSWOW64\WMPDMC.exe
2016-03-12 23:38:55 ----A---- C:\WINDOWS\SYSWOW64\wmp.dll
2016-03-12 23:38:55 ----A---- C:\WINDOWS\system32\WMPDMC.exe
2016-03-12 23:38:54 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2016-03-12 23:38:54 ----A---- C:\WINDOWS\system32\wmp.dll
2016-03-12 23:38:54 ----A---- C:\WINDOWS\system32\flvprophandler.dll
2016-03-12 23:38:53 ----A---- C:\WINDOWS\SYSWOW64\edgehtml.dll
2016-03-12 23:38:53 ----A---- C:\WINDOWS\system32\jscript9.dll
2016-03-12 23:38:52 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2016-03-12 23:38:52 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2016-03-12 23:38:52 ----A---- C:\WINDOWS\system32\mshtml.dll
2016-03-12 23:38:52 ----A---- C:\WINDOWS\system32\ieframe.dll
2016-03-12 23:38:52 ----A---- C:\WINDOWS\system32\edgehtml.dll
2016-03-12 23:38:51 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Logon.dll
2016-03-12 23:38:51 ----A---- C:\WINDOWS\SYSWOW64\WiFiDisplay.dll
2016-03-12 23:38:51 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
2016-03-12 23:38:51 ----A---- C:\WINDOWS\SYSWOW64\TimeBrokerClient.dll
2016-03-12 23:38:51 ----A---- C:\WINDOWS\SYSWOW64\taskschd.dll
2016-03-12 23:38:51 ----A---- C:\WINDOWS\SYSWOW64\SyncController.dll
2016-03-12 23:38:51 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2016-03-12 23:38:51 ----A---- C:\WINDOWS\SYSWOW64\olepro32.dll
2016-03-12 23:38:51 ----A---- C:\WINDOWS\SYSWOW64\ole32.dll
2016-03-12 23:38:51 ----A---- C:\WINDOWS\SYSWOW64\ntdll.dll
2016-03-12 23:38:51 ----A---- C:\WINDOWS\SYSWOW64\NetSetupShim.dll
2016-03-12 23:38:51 ----A---- C:\WINDOWS\SYSWOW64\LaunchWinApp.exe
2016-03-12 23:38:51 ----A---- C:\WINDOWS\SYSWOW64\KernelBase.dll
2016-03-12 23:38:51 ----A---- C:\WINDOWS\SYSWOW64\Chakra.dll
2016-03-12 23:38:51 ----A---- C:\WINDOWS\SYSWOW64\ExplorerFrame.dll
2016-03-12 23:38:51 ----A---- C:\WINDOWS\SYSWOW64\asycfilt.dll
2016-03-12 23:38:51 ----A---- C:\WINDOWS\SYSWOW64\AppxAllUserStore.dll
2016-03-12 23:38:51 ----A---- C:\WINDOWS\SYSWOW64\ActiveSyncProvider.dll
2016-03-12 23:38:51 ----A---- C:\WINDOWS\system32\wwansvc.dll
2016-03-12 23:38:51 ----A---- C:\WINDOWS\system32\wsqmcons.exe
2016-03-12 23:38:51 ----A---- C:\WINDOWS\system32\wlansvcpal.dll
2016-03-12 23:38:51 ----A---- C:\WINDOWS\system32\wlansvc.dll
2016-03-12 23:38:51 ----A---- C:\WINDOWS\system32\wlansec.dll
2016-03-12 23:38:51 ----A---- C:\WINDOWS\system32\wlanmsm.dll
2016-03-12 23:38:51 ----A---- C:\WINDOWS\system32\wlanapi.dll
2016-03-12 23:38:51 ----A---- C:\WINDOWS\system32\winresume.exe
2016-03-12 23:38:51 ----A---- C:\WINDOWS\system32\winload.exe
2016-03-12 23:38:51 ----A---- C:\WINDOWS\system32\Windows.UI.Shell.dll
2016-03-12 23:38:51 ----A---- C:\WINDOWS\system32\Windows.UI.Logon.dll
2016-03-12 23:38:51 ----A---- C:\WINDOWS\system32\Windows.UI.dll
2016-03-12 23:38:51 ----A---- C:\WINDOWS\system32\Windows.Media.MediaControl.dll
2016-03-12 23:38:51 ----A---- C:\WINDOWS\system32\Windows.Devices.Scanners.dll
2016-03-12 23:38:51 ----A---- C:\WINDOWS\system32\wifiprofilessettinghandler.dll
2016-03-12 23:38:51 ----A---- C:\WINDOWS\system32\wifinetworkmanager.dll
2016-03-12 23:38:51 ----A---- C:\WINDOWS\system32\WiFiConfigSP.dll
2016-03-12 23:38:51 ----A---- C:\WINDOWS\system32\wfdprov.dll
2016-03-12 23:38:51 ----A---- C:\WINDOWS\system32\werui.dll
2016-03-12 23:38:51 ----A---- C:\WINDOWS\system32\wcmsvc.dll
2016-03-12 23:38:51 ----A---- C:\WINDOWS\system32\usbmon.dll
2016-03-12 23:38:51 ----A---- C:\WINDOWS\system32\uDWM.dll
2016-03-12 23:38:51 ----A---- C:\WINDOWS\system32\twinui.dll
2016-03-12 23:38:51 ----A---- C:\WINDOWS\system32\sqmapi.dll
2016-03-12 23:38:51 ----A---- C:\WINDOWS\system32\spoolsv.exe
2016-03-12 23:38:51 ----A---- C:\WINDOWS\system32\SmsRouterSvc.dll
2016-03-12 23:38:51 ----A---- C:\WINDOWS\system32\SMSRouter.dll
2016-03-12 23:38:51 ----A---- C:\WINDOWS\system32\shell32.dll
2016-03-12 23:38:51 ----A---- C:\WINDOWS\system32\SharedStartModel.dll
2016-03-12 23:38:51 ----A---- C:\WINDOWS\system32\QuickActionsDataModel.dll
2016-03-12 23:38:51 ----A---- C:\WINDOWS\system32\ntdll.dll
2016-03-12 23:38:51 ----A---- C:\WINDOWS\system32\NetSetupShim.dll
2016-03-12 23:38:51 ----A---- C:\WINDOWS\system32\mstscax.dll
2016-03-12 23:38:51 ----A---- C:\WINDOWS\system32\localspl.dll
2016-03-12 23:38:51 ----A---- C:\WINDOWS\system32\LaunchWinApp.exe
2016-03-12 23:38:51 ----A---- C:\WINDOWS\system32\KernelBase.dll
2016-03-12 23:38:51 ----A---- C:\WINDOWS\system32\irmon.dll
2016-03-12 23:38:51 ----A---- C:\WINDOWS\system32\ipnathlp.dll
2016-03-12 23:38:51 ----A---- C:\WINDOWS\system32\Chakradiag.dll
2016-03-12 23:38:51 ----A---- C:\WINDOWS\system32\Chakra.dll
2016-03-12 23:38:51 ----A---- C:\WINDOWS\system32\fontsub.dll
2016-03-12 23:38:51 ----A---- C:\WINDOWS\system32\fontdrvhost.exe
2016-03-12 23:38:51 ----A---- C:\WINDOWS\system32\ExplorerFrame.dll
2016-03-12 23:38:51 ----A---- C:\WINDOWS\system32\drivers\rasl2tp.sys
2016-03-12 23:38:51 ----A---- C:\WINDOWS\system32\drivers\ntfs.sys
2016-03-12 23:38:51 ----A---- C:\WINDOWS\system32\drivers\mrxsmb.sys
2016-03-12 23:38:51 ----A---- C:\WINDOWS\system32\drivers\bridge.sys
2016-03-12 23:38:51 ----A---- C:\WINDOWS\system32\bcastdvr.exe
2016-03-12 23:38:51 ----A---- C:\WINDOWS\system32\atmlib.dll
2016-03-12 23:38:51 ----A---- C:\WINDOWS\system32\atmfd.dll
2016-03-12 23:38:51 ----A---- C:\WINDOWS\system32\AppCapture.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\SYSWOW64\WWAHost.exe
2016-03-12 23:38:45 ----A---- C:\WINDOWS\SYSWOW64\wininetlui.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Core.TextInput.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\SYSWOW64\windows.storage.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Protection.PlayReady.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\SYSWOW64\Windows.Data.Pdf.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\SYSWOW64\Windows.AccountsControl.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\SYSWOW64\werui.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\SYSWOW64\wermgr.exe
2016-03-12 23:38:45 ----A---- C:\WINDOWS\SYSWOW64\wer.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\SYSWOW64\VCardParser.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\SYSWOW64\UserDataTypeHelperUtil.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\SYSWOW64\UserDataTimeUtil.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\SYSWOW64\UserDataPlatformHelperUtil.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\SYSWOW64\UserDataLanguageUtil.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\SYSWOW64\UserDataAccountApis.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\SYSWOW64\Unistore.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\SYSWOW64\thumbcache.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\SYSWOW64\TextInputFramework.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\SYSWOW64\SRHInproc.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\SYSWOW64\SRH.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\SYSWOW64\sqmapi.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\SYSWOW64\SettingSyncCore.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\SYSWOW64\profext.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\SYSWOW64\POSyncServices.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\SYSWOW64\PimIndexMaintenanceClient.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\SYSWOW64\PhoneCallHistoryApis.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\SYSWOW64\PackageStateRoaming.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\SYSWOW64\netlogon.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\SYSWOW64\msv1_0.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\SYSWOW64\mstscax.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\SYSWOW64\jsproxy.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\SYSWOW64\InstallAgent.exe
2016-03-12 23:38:45 ----A---- C:\WINDOWS\SYSWOW64\InputService.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\SYSWOW64\InputLocaleManager.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\SYSWOW64\ChatApis.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\SYSWOW64\fontsub.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\SYSWOW64\fontdrvhost.exe
2016-03-12 23:38:45 ----A---- C:\WINDOWS\SYSWOW64\ExtrasXmlParser.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\SYSWOW64\ExSMime.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\SYSWOW64\EmailApis.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\SYSWOW64\dxgi.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\SYSWOW64\DisplayManager.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\SYSWOW64\deviceaccess.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\SYSWOW64\d3d11.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\SYSWOW64\CoreUIComponents.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\SYSWOW64\ContactApis.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\SYSWOW64\CertEnroll.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\SYSWOW64\cemapi.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\SYSWOW64\CallHistoryClient.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\SYSWOW64\atmlib.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\SYSWOW64\atmfd.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\SYSWOW64\AppxSip.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\SYSWOW64\AppXDeploymentClient.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\SYSWOW64\AppointmentApis.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\SYSWOW64\AppointmentActivation.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\XblGameSave.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\XblAuthManager.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\WWAHost.exe
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\wuuhext.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\wuaueng.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\WSService.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\wininetlui.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\wininet.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\windows.storage.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\Windows.Data.Pdf.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\Windows.AccountsControl.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\win32kfull.sys
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\win32kbase.sys
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\WiFiDisplay.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\wermgr.exe
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\wer.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\VCardParser.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\vaultsvc.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\vaultcli.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\UserDataTypeHelperUtil.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\UserDataTimeUtil.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\UserDataService.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\UserDataPlatformHelperUtil.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\UserDataLanguageUtil.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\UserDataAccountApis.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\urlmon.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\Unistore.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\TimeBrokerServer.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\TimeBrokerClient.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\thumbcache.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\TextInputFramework.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\taskschd.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\SyncController.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\StorSvc.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\storewuauth.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\srpapi.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\SRHInproc.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\SRH.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\schedsvc.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\SettingSyncCore.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\seclogon.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\scapi.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\psmsrv.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\provpackageapidll.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\profext.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\POSyncServices.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\PimIndexMaintenanceClient.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\PimIndexMaintenance.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\PhoneCallHistoryApis.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\PackageStateRoaming.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\ole32.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\ngcsvc.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\ngckeyenum.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\netlogon.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\msv1_0.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\modernexecserver.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\MDMAppInstaller.exe
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\MBMediaManager.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\jsproxy.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\invagent.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\InstallAgent.exe
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\InputService.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\InputLocaleManager.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\iertutil.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\ChatApis.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\generaltel.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\ExtrasXmlParser.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\ExSMime.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\EnterpriseDesktopAppMgmtCSP.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\enterprisecsps.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\EmailApis.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\dxgi.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\dssvc.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\drivers\dxgmms2.sys
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\drivers\dxgmms1.sys
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\drivers\dxgkrnl.sys
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\drivers\appid.sys
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\dosvc.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\domgmt.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\DisplayManager.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\diagtrack.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\devinv.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\DeviceEnroller.exe
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\DeviceCensus.exe
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\deviceaccess.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\dafBth.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\d3d11.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\CoreUIComponents.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\ContactApis.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\configurationclient.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\ClipSVC.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\CertEnroll.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\cemapi.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\CallHistoryClient.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\bisrv.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\AuthHost.exe
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\AuthBroker.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\asycfilt.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\AppxSysprep.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\AppxSip.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\AppxPackaging.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\AppXDeploymentServer.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\AppXDeploymentClient.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\AppxAllUserStore.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\AppointmentApis.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\AppointmentActivation.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\aeinv.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\ActiveSyncProvider.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\accountaccessor.dll
2016-03-12 23:38:44 ----A---- C:\WINDOWS\SYSWOW64\Windows.Internal.Bluetooth.dll
2016-03-12 23:38:44 ----A---- C:\WINDOWS\SYSWOW64\dwmcore.dll
2016-03-12 23:38:44 ----A---- C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll
2016-03-12 23:38:44 ----A---- C:\WINDOWS\system32\dwmcore.dll
2016-03-12 23:38:44 ----A---- C:\WINDOWS\system32\drivers\xinputhid.sys
2016-03-12 23:38:44 ----A---- C:\WINDOWS\system32\drivers\xboxgip.sys
2016-03-12 23:38:44 ----A---- C:\WINDOWS\system32\drivers\USBSTOR.SYS
2016-03-12 23:38:44 ----A---- C:\WINDOWS\system32\drivers\USBHUB3.SYS
2016-03-12 23:38:44 ----A---- C:\WINDOWS\system32\drivers\rfcomm.sys
2016-03-12 23:38:44 ----A---- C:\WINDOWS\system32\drivers\BTHUSB.SYS
2016-03-12 23:38:44 ----A---- C:\WINDOWS\system32\drivers\bthport.sys
2016-03-12 23:38:44 ----A---- C:\WINDOWS\system32\drivers\bthenum.sys
2016-03-12 23:38:44 ----A---- C:\WINDOWS\system32\drivers\acpi.sys
2016-03-12 23:28:47 ----D---- C:\WINDOWS\SYSWOW64\drivers\en-GB
2016-03-12 23:28:46 ----D---- C:\WINDOWS\system32\drivers\en-GB
2016-03-12 23:28:46 ----D---- C:\WINDOWS\en-GB
2016-03-12 23:22:12 ----D---- C:\WINDOWS\SYSWOW64\drivers\sk-SK
2016-03-12 23:22:09 ----D---- C:\WINDOWS\system32\sk
2016-03-12 23:22:08 ----D---- C:\WINDOWS\system32\drivers\sk-SK
2016-03-12 23:22:08 ----D---- C:\WINDOWS\sk-SK
2016-03-12 23:09:27 ----D---- C:\WINDOWS\SYSWOW64\XPSViewer
2016-03-12 23:09:25 ----D---- C:\Program Files\Reference Assemblies
2016-03-12 23:09:25 ----D---- C:\Program Files\MSBuild
2016-03-12 23:09:25 ----D---- C:\Program Files (x86)\Reference Assemblies
2016-03-12 23:09:25 ----D---- C:\Program Files (x86)\MSBuild
2016-03-12 23:09:25 ----D---- C:\inetpub
2016-03-12 23:08:06 ----A---- C:\WINDOWS\SYSWOW64\TsWpfWrp.exe
2016-03-12 23:08:05 ----A---- C:\WINDOWS\SYSWOW64\PresentationNative_v0300.dll
2016-03-12 23:08:05 ----A---- C:\WINDOWS\SYSWOW64\PresentationCFFRasterizerNative_v0300.dll
2016-03-12 23:08:02 ----A---- C:\WINDOWS\system32\TsWpfWrp.exe
2016-03-12 23:08:02 ----A---- C:\WINDOWS\system32\PresentationNative_v0300.dll
2016-03-12 23:08:02 ----A---- C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2016-03-12 23:07:40 ----A---- C:\WINDOWS\system32\systemreset.exe
2016-03-12 23:07:40 ----A---- C:\WINDOWS\system32\reseteng.dll
2016-03-12 23:07:40 ----A---- C:\WINDOWS\system32\drivers\sdbus.sys
2016-03-12 23:07:40 ----A---- C:\WINDOWS\system32\drivers\dumpsd.sys
2016-03-12 14:42:52 ----D---- C:\Users\Petr\AppData\Roaming\YoutubeSoft
2016-03-12 14:42:52 ----D---- C:\ProgramData\YoutubeSoft
2016-03-12 14:36:42 ----D---- C:\Program Files (x86)\VS Revo Group
2016-03-12 14:35:06 ----D---- C:\Program Files (x86)\4KDownload
2016-03-12 13:19:42 ----D---- C:\Users\Petr\AppData\Roaming\LolClient
2016-03-12 11:41:01 ----A---- C:\WINDOWS\system32\drivers\aswE31A.tmp
2016-03-12 11:41:01 ----A---- C:\WINDOWS\system32\drivers\aswE30A.tmp
2016-03-12 11:41:01 ----A---- C:\WINDOWS\system32\drivers\aswE2F9.tmp
2016-03-12 11:41:01 ----A---- C:\WINDOWS\system32\drivers\aswE2E8.tmp
2016-03-12 11:41:01 ----A---- C:\WINDOWS\system32\drivers\aswE2A9.tmp
2016-03-12 11:41:01 ----A---- C:\WINDOWS\system32\drivers\aswE298.tmp
2016-03-12 11:41:01 ----A---- C:\WINDOWS\system32\drivers\aswE249.tmp
2016-03-12 11:41:01 ----A---- C:\WINDOWS\system32\drivers\aswE1CB.tmp
2016-03-12 11:16:46 ----D---- C:\Users\Petr\AppData\Roaming\DropboxOEM
2016-03-12 11:16:37 ----D---- C:\Users\Petr\AppData\Roaming\AVAST Software
2016-03-12 11:15:26 ----D---- C:\Users\Petr\AppData\Roaming\Identities
2016-03-11 22:29:03 ----D---- C:\ProgramData\boost_interprocess
2016-03-11 22:20:06 ----D---- C:\Users\Petr\AppData\Roaming\PhotoScape
2016-03-11 22:19:35 ----D---- C:\Program Files (x86)\PhotoScape
2016-03-11 21:56:31 ----D---- C:\Users\Petr\AppData\Roaming\Gyazo
2016-03-11 21:56:03 ----AD---- C:\Program Files (x86)\Gyazo
2016-03-11 21:36:23 ----D---- C:\Users\Petr\AppData\Roaming\PDAppFlex
2016-03-11 21:22:30 ----D---- C:\ProgramData\regid.1986-12.com.adobe
2016-03-11 21:04:58 ----D---- C:\Program Files\Common Files\Adobe
2016-03-11 20:57:32 ----D---- C:\ProgramData\Adobe
2016-03-11 20:31:21 ----D---- C:\Users\Petr\AppData\Roaming\uTorrent
2016-03-11 19:05:52 ----A---- C:\WINDOWS\system32\UtcResources.dll
2016-03-11 18:25:31 ----A---- C:\WINDOWS\system32\SkyDriveTelemetry.dll
2016-03-11 18:03:33 ----A---- C:\WINDOWS\system32\DfpCommon.dll
2016-03-11 17:54:46 ----A---- C:\WINDOWS\system32\dfp.exe
2016-03-11 16:57:14 ----A---- C:\WINDOWS\system32\wu.upgrade.ps.dll
2016-03-10 19:28:37 ----D---- C:\ProgramData\Riot Games
2016-03-10 19:27:51 ----A---- C:\WINDOWS\SYSWOW64\D3DX9_39.dll
2016-03-10 19:27:51 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_39.dll
2016-03-10 19:27:51 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_39.dll
2016-03-10 19:27:44 ----D---- C:\Riot Games
2016-03-10 19:26:49 ----D---- C:\Users\Petr\AppData\Roaming\Riot Games
2016-03-10 19:17:00 ----AD---- C:\Program Files (x86)\Hearthstone
2016-03-10 19:16:41 ----D---- C:\Users\Petr\AppData\Roaming\NVIDIA
2016-03-10 19:16:33 ----D---- C:\ProgramData\Blizzard Entertainment
2016-03-10 19:15:35 ----AD---- C:\Program Files (x86)\Battle.net
2016-03-10 19:15:04 ----D---- C:\Users\Petr\AppData\Roaming\Battle.net
2016-03-10 19:14:46 ----D---- C:\ProgramData\Battle.net
2016-03-10 16:17:11 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-utility-l1-1-0.dll
2016-03-10 16:17:11 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-time-l1-1-0.dll
2016-03-10 16:17:11 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-string-l1-1-0.dll
2016-03-10 16:17:11 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-stdio-l1-1-0.dll
2016-03-10 16:17:11 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-runtime-l1-1-0.dll
2016-03-10 16:17:11 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-process-l1-1-0.dll
2016-03-10 16:17:11 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-private-l1-1-0.dll
2016-03-10 16:17:11 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-multibyte-l1-1-0.dll
2016-03-10 16:17:11 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-math-l1-1-0.dll
2016-03-10 16:17:11 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-locale-l1-1-0.dll
2016-03-10 16:17:11 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-heap-l1-1-0.dll
2016-03-10 16:17:11 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-filesystem-l1-1-0.dll
2016-03-10 16:17:11 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-environment-l1-1-0.dll
2016-03-10 16:17:11 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-convert-l1-1-0.dll
2016-03-10 16:17:11 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-conio-l1-1-0.dll
2016-03-10 16:17:11 ----A---- C:\WINDOWS\system32\api-ms-win-crt-utility-l1-1-0.dll
2016-03-10 16:17:11 ----A---- C:\WINDOWS\system32\api-ms-win-crt-time-l1-1-0.dll
2016-03-10 16:17:11 ----A---- C:\WINDOWS\system32\api-ms-win-crt-string-l1-1-0.dll
2016-03-10 16:17:11 ----A---- C:\WINDOWS\system32\api-ms-win-crt-stdio-l1-1-0.dll
2016-03-10 16:17:11 ----A---- C:\WINDOWS\system32\api-ms-win-crt-runtime-l1-1-0.dll
2016-03-10 16:17:11 ----A---- C:\WINDOWS\system32\api-ms-win-crt-process-l1-1-0.dll
2016-03-10 16:17:11 ----A---- C:\WINDOWS\system32\api-ms-win-crt-private-l1-1-0.dll
2016-03-10 16:17:11 ----A---- C:\WINDOWS\system32\api-ms-win-crt-multibyte-l1-1-0.dll
2016-03-10 16:17:11 ----A---- C:\WINDOWS\system32\api-ms-win-crt-math-l1-1-0.dll
2016-03-10 16:17:11 ----A---- C:\WINDOWS\system32\api-ms-win-crt-locale-l1-1-0.dll
2016-03-10 16:17:11 ----A---- C:\WINDOWS\system32\api-ms-win-crt-heap-l1-1-0.dll
2016-03-10 16:17:11 ----A---- C:\WINDOWS\system32\api-ms-win-crt-filesystem-l1-1-0.dll
2016-03-10 16:17:11 ----A---- C:\WINDOWS\system32\api-ms-win-crt-environment-l1-1-0.dll
2016-03-10 16:17:11 ----A---- C:\WINDOWS\system32\api-ms-win-crt-convert-l1-1-0.dll
2016-03-10 16:17:11 ----A---- C:\WINDOWS\system32\api-ms-win-crt-conio-l1-1-0.dll
2016-03-10 15:29:34 ----D---- C:\Program Files\Common Files\AV
2016-03-09 20:55:18 ----A---- C:\WINDOWS\SYSWOW64\XAudio2_7.dll
2016-03-09 20:55:18 ----A---- C:\WINDOWS\SYSWOW64\XAPOFX1_5.dll
2016-03-09 20:55:18 ----A---- C:\WINDOWS\SYSWOW64\xactengine3_7.dll
2016-03-09 20:55:18 ----A---- C:\WINDOWS\system32\XAudio2_7.dll
2016-03-09 20:55:18 ----A---- C:\WINDOWS\system32\XAPOFX1_5.dll
2016-03-09 20:55:18 ----A---- C:\WINDOWS\system32\xactengine3_7.dll
2016-03-09 20:55:17 ----A---- C:\WINDOWS\SYSWOW64\d3dcsx_43.dll
2016-03-09 20:55:17 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_43.dll
2016-03-09 20:55:17 ----A---- C:\WINDOWS\system32\d3dcsx_43.dll
2016-03-09 20:55:17 ----A---- C:\WINDOWS\system32\D3DCompiler_43.dll
2016-03-09 20:55:14 ----A---- C:\WINDOWS\SYSWOW64\XAudio2_6.dll
2016-03-09 20:55:14 ----A---- C:\WINDOWS\SYSWOW64\XAPOFX1_4.dll
2016-03-09 20:55:14 ----A---- C:\WINDOWS\SYSWOW64\xactengine3_6.dll
2016-03-09 20:55:14 ----A---- C:\WINDOWS\SYSWOW64\X3DAudio1_7.dll
2016-03-09 20:55:14 ----A---- C:\WINDOWS\system32\XAudio2_6.dll
2016-03-09 20:55:14 ----A---- C:\WINDOWS\system32\XAPOFX1_4.dll
2016-03-09 20:55:14 ----A---- C:\WINDOWS\system32\xactengine3_6.dll
2016-03-09 20:55:14 ----A---- C:\WINDOWS\system32\X3DAudio1_7.dll
2016-03-09 20:55:13 ----A---- C:\WINDOWS\SYSWOW64\XAudio2_5.dll
2016-03-09 20:55:13 ----A---- C:\WINDOWS\system32\XAudio2_5.dll
2016-03-09 20:55:12 ----A---- C:\WINDOWS\SYSWOW64\xactengine3_5.dll
2016-03-09 20:55:12 ----A---- C:\WINDOWS\system32\xactengine3_5.dll
2016-03-09 20:55:11 ----A---- C:\WINDOWS\SYSWOW64\d3dcsx_42.dll
2016-03-09 20:55:11 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_42.dll
2016-03-09 20:55:11 ----A---- C:\WINDOWS\system32\d3dcsx_42.dll
2016-03-09 20:55:11 ----A---- C:\WINDOWS\system32\D3DCompiler_42.dll
2016-03-09 20:55:10 ----A---- C:\WINDOWS\SYSWOW64\D3DX9_42.dll
2016-03-09 20:55:10 ----A---- C:\WINDOWS\SYSWOW64\d3dx11_42.dll
2016-03-09 20:55:10 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_42.dll
2016-03-09 20:55:10 ----A---- C:\WINDOWS\system32\D3DX9_42.dll
2016-03-09 20:55:10 ----A---- C:\WINDOWS\system32\d3dx11_42.dll
2016-03-09 20:55:10 ----A---- C:\WINDOWS\system32\d3dx10_42.dll
2016-03-09 20:55:09 ----A---- C:\WINDOWS\SYSWOW64\D3DX9_41.dll
2016-03-09 20:55:09 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_41.dll
2016-03-09 20:55:09 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_41.dll
2016-03-09 20:55:09 ----A---- C:\WINDOWS\system32\D3DX9_41.dll
2016-03-09 20:55:09 ----A---- C:\WINDOWS\system32\d3dx10_41.dll
2016-03-09 20:55:09 ----A---- C:\WINDOWS\system32\D3DCompiler_41.dll
2016-03-09 20:55:08 ----A---- C:\WINDOWS\SYSWOW64\XAudio2_4.dll
2016-03-09 20:55:08 ----A---- C:\WINDOWS\SYSWOW64\XAPOFX1_3.dll
2016-03-09 20:55:08 ----A---- C:\WINDOWS\SYSWOW64\xactengine3_4.dll
2016-03-09 20:55:08 ----A---- C:\WINDOWS\SYSWOW64\X3DAudio1_6.dll
2016-03-09 20:55:08 ----A---- C:\WINDOWS\system32\XAudio2_4.dll
2016-03-09 20:55:08 ----A---- C:\WINDOWS\system32\XAPOFX1_3.dll
2016-03-09 20:55:08 ----A---- C:\WINDOWS\system32\xactengine3_4.dll
2016-03-09 20:55:08 ----A---- C:\WINDOWS\system32\X3DAudio1_6.dll
2016-03-09 20:55:07 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_40.dll
2016-03-09 20:55:07 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_40.dll
2016-03-09 20:55:07 ----A---- C:\WINDOWS\system32\d3dx10_40.dll
2016-03-09 20:55:07 ----A---- C:\WINDOWS\system32\D3DCompiler_40.dll
2016-03-09 20:55:06 ----A---- C:\WINDOWS\SYSWOW64\XAudio2_3.dll
2016-03-09 20:55:06 ----A---- C:\WINDOWS\SYSWOW64\XAPOFX1_2.dll
2016-03-09 20:55:06 ----A---- C:\WINDOWS\SYSWOW64\xactengine3_3.dll
2016-03-09 20:55:06 ----A---- C:\WINDOWS\SYSWOW64\D3DX9_40.dll
2016-03-09 20:55:06 ----A---- C:\WINDOWS\system32\XAudio2_3.dll
2016-03-09 20:55:06 ----A---- C:\WINDOWS\system32\XAPOFX1_2.dll
2016-03-09 20:55:06 ----A---- C:\WINDOWS\system32\xactengine3_3.dll
2016-03-09 20:55:06 ----A---- C:\WINDOWS\system32\D3DX9_40.dll
2016-03-09 20:55:05 ----A---- C:\WINDOWS\SYSWOW64\XAudio2_2.dll
2016-03-09 20:55:05 ----A---- C:\WINDOWS\SYSWOW64\XAPOFX1_1.dll
2016-03-09 20:55:05 ----A---- C:\WINDOWS\SYSWOW64\X3DAudio1_5.dll
2016-03-09 20:55:05 ----A---- C:\WINDOWS\system32\XAudio2_2.dll
2016-03-09 20:55:05 ----A---- C:\WINDOWS\system32\XAPOFX1_1.dll
2016-03-09 20:55:05 ----A---- C:\WINDOWS\system32\X3DAudio1_5.dll
2016-03-09 20:55:04 ----A---- C:\WINDOWS\SYSWOW64\xactengine3_2.dll
2016-03-09 20:55:04 ----A---- C:\WINDOWS\system32\xactengine3_2.dll
2016-03-09 20:55:04 ----A---- C:\WINDOWS\system32\d3dx10_39.dll
2016-03-09 20:55:04 ----A---- C:\WINDOWS\system32\D3DCompiler_39.dll
2016-03-09 20:55:03 ----A---- C:\WINDOWS\SYSWOW64\XAudio2_1.dll
2016-03-09 20:55:03 ----A---- C:\WINDOWS\SYSWOW64\XAPOFX1_0.dll
2016-03-09 20:55:03 ----A---- C:\WINDOWS\system32\XAudio2_1.dll
2016-03-09 20:55:03 ----A---- C:\WINDOWS\system32\XAPOFX1_0.dll
2016-03-09 20:55:03 ----A---- C:\WINDOWS\system32\D3DX9_39.dll
2016-03-09 20:55:02 ----A---- C:\WINDOWS\SYSWOW64\xactengine3_1.dll
2016-03-09 20:55:02 ----A---- C:\WINDOWS\SYSWOW64\X3DAudio1_4.dll
2016-03-09 20:55:02 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_38.dll
2016-03-09 20:55:02 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_38.dll
2016-03-09 20:55:02 ----A---- C:\WINDOWS\system32\xactengine3_1.dll
2016-03-09 20:55:02 ----A---- C:\WINDOWS\system32\X3DAudio1_4.dll
2016-03-09 20:55:02 ----A---- C:\WINDOWS\system32\d3dx10_38.dll
2016-03-09 20:55:02 ----A---- C:\WINDOWS\system32\D3DCompiler_38.dll
2016-03-09 20:55:01 ----A---- C:\WINDOWS\SYSWOW64\D3DX9_38.dll
2016-03-09 20:55:01 ----A---- C:\WINDOWS\system32\D3DX9_38.dll
2016-03-09 20:55:00 ----A---- C:\WINDOWS\SYSWOW64\XAudio2_0.dll
2016-03-09 20:55:00 ----A---- C:\WINDOWS\SYSWOW64\xactengine3_0.dll
2016-03-09 20:55:00 ----A---- C:\WINDOWS\SYSWOW64\X3DAudio1_3.dll
2016-03-09 20:55:00 ----A---- C:\WINDOWS\system32\XAudio2_0.dll
2016-03-09 20:55:00 ----A---- C:\WINDOWS\system32\xactengine3_0.dll
2016-03-09 20:55:00 ----A---- C:\WINDOWS\system32\X3DAudio1_3.dll
2016-03-09 20:54:59 ----A---- C:\WINDOWS\SYSWOW64\D3DX9_37.dll
2016-03-09 20:54:59 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_37.dll
2016-03-09 20:54:59 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_37.dll
2016-03-09 20:54:59 ----A---- C:\WINDOWS\system32\D3DX9_37.dll
2016-03-09 20:54:59 ----A---- C:\WINDOWS\system32\d3dx10_37.dll
2016-03-09 20:54:59 ----A---- C:\WINDOWS\system32\D3DCompiler_37.dll
2016-03-09 20:54:58 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_10.dll
2016-03-09 20:54:58 ----A---- C:\WINDOWS\system32\xactengine2_10.dll
2016-03-09 20:54:57 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_36.dll
2016-03-09 20:54:57 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_36.dll
2016-03-09 20:54:57 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_36.dll
2016-03-09 20:54:57 ----A---- C:\WINDOWS\system32\d3dx9_36.dll
2016-03-09 20:54:57 ----A---- C:\WINDOWS\system32\d3dx10_36.dll
2016-03-09 20:54:57 ----A---- C:\WINDOWS\system32\D3DCompiler_36.dll
2016-03-09 20:54:56 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_9.dll
2016-03-09 20:54:56 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_35.dll
2016-03-09 20:54:56 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_35.dll
2016-03-09 20:54:56 ----A---- C:\WINDOWS\system32\xactengine2_9.dll
2016-03-09 20:54:56 ----A---- C:\WINDOWS\system32\d3dx10_35.dll
2016-03-09 20:54:56 ----A---- C:\WINDOWS\system32\D3DCompiler_35.dll
2016-03-09 20:54:55 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_8.dll
2016-03-09 20:54:55 ----A---- C:\WINDOWS\SYSWOW64\X3DAudio1_2.dll
2016-03-09 20:54:55 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_35.dll
2016-03-09 20:54:55 ----A---- C:\WINDOWS\system32\xactengine2_8.dll
2016-03-09 20:54:55 ----A---- C:\WINDOWS\system32\X3DAudio1_2.dll
2016-03-09 20:54:55 ----A---- C:\WINDOWS\system32\d3dx9_35.dll
2016-03-09 20:54:54 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_34.dll
2016-03-09 20:54:54 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_34.dll
2016-03-09 20:54:54 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_34.dll
2016-03-09 20:54:54 ----A---- C:\WINDOWS\system32\d3dx9_34.dll
2016-03-09 20:54:54 ----A---- C:\WINDOWS\system32\d3dx10_34.dll
2016-03-09 20:54:54 ----A---- C:\WINDOWS\system32\D3DCompiler_34.dll
2016-03-09 20:54:53 ----A---- C:\WINDOWS\SYSWOW64\xinput1_3.dll
2016-03-09 20:54:53 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_7.dll
2016-03-09 20:54:53 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_33.dll
2016-03-09 20:54:53 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_33.dll
2016-03-09 20:54:53 ----A---- C:\WINDOWS\system32\xinput1_3.dll
2016-03-09 20:54:53 ----A---- C:\WINDOWS\system32\xactengine2_7.dll
2016-03-09 20:54:53 ----A---- C:\WINDOWS\system32\d3dx10_33.dll
2016-03-09 20:54:53 ----A---- C:\WINDOWS\system32\D3DCompiler_33.dll
2016-03-09 20:54:52 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_6.dll
2016-03-09 20:54:52 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_33.dll
2016-03-09 20:54:52 ----A---- C:\WINDOWS\system32\xactengine2_6.dll
2016-03-09 20:54:52 ----A---- C:\WINDOWS\system32\d3dx9_33.dll
2016-03-09 20:54:51 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_5.dll
2016-03-09 20:54:51 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_32.dll
2016-03-09 20:54:51 ----A---- C:\WINDOWS\SYSWOW64\d3dx10.dll
2016-03-09 20:54:51 ----A---- C:\WINDOWS\system32\xactengine2_5.dll
2016-03-09 20:54:51 ----A---- C:\WINDOWS\system32\d3dx9_32.dll
2016-03-09 20:54:51 ----A---- C:\WINDOWS\system32\d3dx10.dll
2016-03-09 20:54:50 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_4.dll
2016-03-09 20:54:50 ----A---- C:\WINDOWS\SYSWOW64\x3daudio1_1.dll
2016-03-09 20:54:50 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_31.dll
2016-03-09 20:54:50 ----A---- C:\WINDOWS\system32\xactengine2_4.dll
2016-03-09 20:54:50 ----A---- C:\WINDOWS\system32\x3daudio1_1.dll
2016-03-09 20:54:50 ----A---- C:\WINDOWS\system32\d3dx9_31.dll
2016-03-09 20:54:49 ----A---- C:\WINDOWS\SYSWOW64\xinput1_2.dll
2016-03-09 20:54:49 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_3.dll
2016-03-09 20:54:49 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_2.dll
2016-03-09 20:54:49 ----A---- C:\WINDOWS\system32\xinput1_2.dll
2016-03-09 20:54:49 ----A---- C:\WINDOWS\system32\xactengine2_3.dll
2016-03-09 20:54:49 ----A---- C:\WINDOWS\system32\xactengine2_2.dll
2016-03-09 20:54:48 ----A---- C:\WINDOWS\SYSWOW64\xinput1_1.dll
2016-03-09 20:54:48 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_1.dll
2016-03-09 20:54:48 ----A---- C:\WINDOWS\system32\xinput1_1.dll
2016-03-09 20:54:48 ----A---- C:\WINDOWS\system32\xactengine2_1.dll
2016-03-09 20:54:44 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_30.dll
2016-03-09 20:54:44 ----A---- C:\WINDOWS\system32\d3dx9_30.dll
2016-03-09 20:54:43 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_0.dll
2016-03-09 20:54:43 ----A---- C:\WINDOWS\SYSWOW64\x3daudio1_0.dll
2016-03-09 20:54:43 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_29.dll
2016-03-09 20:54:43 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_28.dll
2016-03-09 20:54:43 ----A---- C:\WINDOWS\system32\xactengine2_0.dll
2016-03-09 20:54:43 ----A---- C:\WINDOWS\system32\x3daudio1_0.dll
2016-03-09 20:54:43 ----A---- C:\WINDOWS\system32\d3dx9_29.dll
2016-03-09 20:54:43 ----A---- C:\WINDOWS\system32\d3dx9_28.dll
2016-03-09 20:54:42 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_27.dll
2016-03-09 20:54:42 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_26.dll
2016-03-09 20:54:42 ----A---- C:\WINDOWS\system32\d3dx9_27.dll
2016-03-09 20:54:42 ----A---- C:\WINDOWS\system32\d3dx9_26.dll
2016-03-09 20:54:41 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_25.dll
2016-03-09 20:54:41 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_24.dll
2016-03-09 20:54:41 ----A---- C:\WINDOWS\system32\d3dx9_25.dll
2016-03-09 20:54:41 ----A---- C:\WINDOWS\system32\d3dx9_24.dll
2016-03-09 20:29:46 ----D---- C:\Users\Petr\AppData\Roaming\hpqlog
2016-03-09 20:18:59 ----D---- C:\Users\Petr\AppData\Roaming\AIMP
2016-03-09 20:18:52 ----D---- C:\Program Files (x86)\AIMP
2016-03-09 20:08:49 ----AD---- C:\Program Files\ParkControl
2016-03-09 19:53:11 ----D---- C:\Users\Petr\AppData\Roaming\TS3Client
2016-03-09 19:51:43 ----AD---- C:\Program Files\TeamSpeak 3 Client
2016-03-09 19:42:33 ----D---- C:\Program Files (x86)\Steam
2016-03-09 19:39:59 ----D---- C:\Program Files (x86)\Google
2016-03-09 19:29:36 ----D---- C:\Users\Petr\AppData\Roaming\Hewlett-Packard
2016-03-09 19:27:53 ----D---- C:\Users\Petr\AppData\Roaming\Macromedia
2016-03-09 19:25:29 ----D---- C:\Users\Petr\AppData\Roaming\Adobe
2016-03-09 19:25:18 ----D---- C:\Users\Petr\AppData\Roaming\Synaptics
2016-03-09 19:25:13 ----A---- C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2016-03-09 19:24:56 ----D---- C:\WINDOWS\SoftwareDistribution
2016-03-09 18:18:51 ----SHD---- C:\ProgramData\Šablony
2016-03-09 18:18:51 ----SHD---- C:\ProgramData\Plocha
2016-03-09 18:18:51 ----SHD---- C:\ProgramData\Nabídka Start
2016-03-09 18:18:51 ----SHD---- C:\ProgramData\Dokumenty
2016-03-09 18:18:51 ----SHD---- C:\ProgramData\Data aplikací
======List of files/folders modified in the last 1 month======
2016-04-05 22:51:22 ----RD---- C:\Program Files
2016-04-05 22:51:14 ----D---- C:\WINDOWS\Temp
2016-04-05 22:47:50 ----D---- C:\WINDOWS\Tasks
2016-04-05 22:44:10 ----D---- C:\WINDOWS\system32\Tasks
2016-04-05 22:43:39 ----SHD---- C:\System Volume Information
2016-04-05 22:40:16 ----HD---- C:\ProgramData
2016-04-05 22:40:07 ----D---- C:\Program Files (x86)\Common Files
2016-04-05 22:39:05 ----D---- C:\WINDOWS\system32\sru
2016-04-05 22:38:49 ----D---- C:\WINDOWS\SYSWOW64\drivers
2016-04-05 22:38:44 ----RD---- C:\Program Files (x86)
2016-04-05 22:22:48 ----D---- C:\WINDOWS\system32\config
2016-04-05 22:15:33 ----D---- C:\WINDOWS\Microsoft.NET
2016-04-05 14:39:03 ----HD---- C:\Program Files\WindowsApps
2016-04-04 20:39:39 ----RSD---- C:\WINDOWS\Fonts
2016-04-03 09:35:15 ----D---- C:\WINDOWS\SysWOW64
2016-04-03 09:34:42 ----D---- C:\WINDOWS\INF
2016-04-01 17:57:29 ----SHD---- C:\WINDOWS\Installer
2016-04-01 14:20:38 ----D---- C:\WINDOWS\AppReadiness
2016-03-31 22:02:14 ----D---- C:\WINDOWS\System32
2016-03-31 21:58:42 ----D---- C:\WINDOWS\system32\drivers
2016-03-31 21:58:38 ----D---- C:\WINDOWS\system32\DriverStore
2016-03-31 18:49:57 ----D---- C:\Windows
2016-03-31 18:48:59 ----RSD---- C:\WINDOWS\assembly
2016-03-30 15:35:51 ----D---- C:\WINDOWS\system32\drivers\UMDF
2016-03-29 21:23:15 ----D---- C:\WINDOWS\Logs
2016-03-26 22:44:45 ----D---- C:\WINDOWS\system32\catroot2
2016-03-23 15:29:10 ----D---- C:\WINDOWS\system32\WDI
2016-03-23 00:08:47 ----D---- C:\WINDOWS\WinSxS
2016-03-23 00:06:51 ----D---- C:\WINDOWS\OCR
2016-03-23 00:04:42 ----D---- C:\WINDOWS\CbsTemp
2016-03-18 20:24:00 ----D---- C:\WINDOWS\debug
2016-03-15 14:49:50 ----D---- C:\ProgramData\AVAST Software
2016-03-15 14:49:50 ----D---- C:\Program Files\AVAST Software
2016-03-13 23:50:46 ----HD---- C:\WINDOWS\ELAMBKUP
2016-03-13 12:01:31 ----D---- C:\WINDOWS\system32\restore
2016-03-13 10:30:42 ----D---- C:\WINDOWS\system32\CatRoot
2016-03-13 09:57:46 ----D---- C:\Logs
2016-03-13 09:48:30 ----D---- C:\WINDOWS\appcompat
2016-03-13 00:29:19 ----D---- C:\WINDOWS\rescache
2016-03-13 00:24:23 ----SD---- C:\ProgramData\Microsoft
2016-03-13 00:23:19 ----D---- C:\Program Files\Windows NT
2016-03-13 00:23:01 ----D---- C:\WINDOWS\system32\WinBioDatabase
2016-03-13 00:21:46 ----D---- C:\WINDOWS\Registration
2016-03-13 00:16:36 ----D---- C:\WINDOWS\system32\LogFiles
2016-03-13 00:16:35 ----D---- C:\WINDOWS\system32\wbem
2016-03-13 00:16:31 ----D---- C:\WINDOWS\system32\drivers\etc
2016-03-13 00:10:51 ----AD---- C:\ProgramData\regid.1991-06.com.microsoft
2016-03-13 00:05:27 ----D---- C:\WINDOWS\SYSWOW64\zh-TW
2016-03-13 00:05:27 ----D---- C:\WINDOWS\SYSWOW64\zh-HK
2016-03-13 00:05:27 ----D---- C:\WINDOWS\SYSWOW64\zh-CN
2016-03-13 00:05:26 ----D---- C:\WINDOWS\SYSWOW64\uk-UA
2016-03-13 00:05:26 ----D---- C:\WINDOWS\SYSWOW64\tr-TR
2016-03-13 00:05:26 ----D---- C:\WINDOWS\SYSWOW64\th-TH
2016-03-13 00:05:26 ----D---- C:\WINDOWS\SYSWOW64\sv-SE
2016-03-13 00:05:26 ----D---- C:\WINDOWS\SYSWOW64\sr-Latn-RS
2016-03-13 00:05:25 ----D---- C:\WINDOWS\SYSWOW64\sl-SI
2016-03-13 00:05:25 ----D---- C:\WINDOWS\SYSWOW64\slmgr
2016-03-13 00:05:25 ----D---- C:\WINDOWS\SYSWOW64\ru-RU
2016-03-13 00:05:25 ----D---- C:\WINDOWS\SYSWOW64\ro-RO
2016-03-13 00:05:25 ----D---- C:\WINDOWS\SYSWOW64\pt-PT
2016-03-13 00:05:25 ----D---- C:\WINDOWS\SYSWOW64\pt-BR
2016-03-13 00:05:25 ----D---- C:\WINDOWS\SYSWOW64\pl-PL
2016-03-13 00:05:24 ----D---- C:\WINDOWS\SYSWOW64\nl-NL
2016-03-13 00:05:24 ----D---- C:\WINDOWS\SYSWOW64\nb-NO
2016-03-13 00:05:24 ----D---- C:\WINDOWS\SYSWOW64\lv-LV
2016-03-13 00:05:24 ----D---- C:\WINDOWS\SYSWOW64\lt-LT
2016-03-13 00:05:24 ----D---- C:\WINDOWS\SYSWOW64\ko-KR
2016-03-13 00:05:24 ----D---- C:\WINDOWS\SYSWOW64\ja-JP
2016-03-13 00:05:24 ----D---- C:\WINDOWS\SYSWOW64\it-IT
2016-03-13 00:05:23 ----D---- C:\WINDOWS\SYSWOW64\hu-HU
2016-03-13 00:05:23 ----D---- C:\WINDOWS\SYSWOW64\hr-HR
2016-03-13 00:05:23 ----D---- C:\WINDOWS\SYSWOW64\he-IL
2016-03-13 00:05:23 ----D---- C:\WINDOWS\SYSWOW64\fr-FR
2016-03-13 00:05:23 ----D---- C:\WINDOWS\SYSWOW64\fi-FI
2016-03-13 00:05:22 ----D---- C:\WINDOWS\SYSWOW64\et-EE
2016-03-13 00:05:22 ----D---- C:\WINDOWS\SYSWOW64\es-ES
2016-03-13 00:05:22 ----D---- C:\WINDOWS\SYSWOW64\en-US
2016-03-13 00:05:22 ----D---- C:\WINDOWS\SYSWOW64\el-GR
2016-03-13 00:05:21 ----D---- C:\WINDOWS\SYSWOW64\de-DE
2016-03-13 00:05:21 ----D---- C:\WINDOWS\SYSWOW64\da-DK
2016-03-13 00:05:21 ----D---- C:\WINDOWS\SYSWOW64\cs-CZ
2016-03-13 00:05:20 ----D---- C:\WINDOWS\SYSWOW64\bg-BG
2016-03-13 00:05:20 ----D---- C:\WINDOWS\SYSWOW64\ar-SA
2016-03-13 00:05:20 ----AD---- C:\WINDOWS\SYSWOW64\Adobe
2016-03-13 00:05:17 ----D---- C:\WINDOWS\system32\zh-TW
2016-03-13 00:05:17 ----D---- C:\WINDOWS\system32\zh-HK
2016-03-13 00:05:17 ----D---- C:\WINDOWS\system32\zh-CN
2016-03-13 00:05:14 ----D---- C:\WINDOWS\system32\WindowsInternal.Inbox.Shared
2016-03-13 00:05:14 ----D---- C:\WINDOWS\system32\WindowsInternal.Inbox.Media.Shared
2016-03-13 00:05:14 ----D---- C:\WINDOWS\system32\uk-UA
2016-03-13 00:05:14 ----D---- C:\WINDOWS\system32\tr-TR
2016-03-13 00:05:13 ----D---- C:\WINDOWS\system32\th-TH
2016-03-13 00:05:13 ----D---- C:\WINDOWS\system32\sv-SE
2016-03-13 00:05:13 ----D---- C:\WINDOWS\system32\sr-Latn-RS
2016-03-13 00:05:11 ----D---- C:\WINDOWS\system32\sl-SI
2016-03-13 00:05:11 ----D---- C:\WINDOWS\system32\slmgr
2016-03-13 00:05:10 ----D---- C:\WINDOWS\system32\ru-RU
2016-03-13 00:05:10 ----D---- C:\WINDOWS\system32\ro-RO
2016-03-13 00:05:10 ----D---- C:\WINDOWS\system32\pt-PT
2016-03-13 00:05:10 ----D---- C:\WINDOWS\system32\pt-BR
2016-03-13 00:05:10 ----D---- C:\WINDOWS\system32\pl-PL
2016-03-13 00:05:09 ----D---- C:\WINDOWS\system32\oobe
2016-03-13 00:05:02 ----D---- C:\WINDOWS\system32\nl-NL
2016-03-13 00:05:02 ----D---- C:\WINDOWS\system32\nb-NO
2016-03-13 00:05:02 ----D---- C:\WINDOWS\system32\migration
2016-03-13 00:05:02 ----D---- C:\WINDOWS\system32\lv-LV
2016-03-13 00:05:02 ----D---- C:\WINDOWS\system32\lt-LT
2016-03-13 00:05:02 ----D---- C:\WINDOWS\system32\ko-KR
2016-03-13 00:05:02 ----D---- C:\WINDOWS\system32\ja-JP
2016-03-13 00:05:02 ----D---- C:\WINDOWS\system32\it-IT
2016-03-13 00:05:02 ----D---- C:\WINDOWS\system32\InputMethod
2016-03-13 00:05:01 ----D---- C:\WINDOWS\system32\hu-HU
2016-03-13 00:05:01 ----D---- C:\WINDOWS\system32\hr-HR
2016-03-13 00:05:01 ----D---- C:\WINDOWS\system32\he-IL
2016-03-13 00:05:00 ----D---- C:\WINDOWS\system32\fr-FR
2016-03-13 00:05:00 ----D---- C:\WINDOWS\system32\fi-FI
2016-03-13 00:05:00 ----D---- C:\WINDOWS\system32\et-EE
2016-03-13 00:05:00 ----D---- C:\WINDOWS\system32\es-ES
2016-03-13 00:05:00 ----D---- C:\WINDOWS\system32\en-US
2016-03-13 00:04:59 ----DC---- C:\WINDOWS\system32\DRVSTORE
2016-03-13 00:04:59 ----D---- C:\WINDOWS\system32\el-GR
2016-03-13 00:04:58 ----D---- C:\WINDOWS\system32\de-DE
2016-03-13 00:04:57 ----D---- C:\WINDOWS\system32\da-DK
2016-03-13 00:04:57 ----D---- C:\WINDOWS\system32\cs-CZ
2016-03-13 00:02:41 ----D---- C:\WINDOWS\system32\bg-BG
2016-03-13 00:02:41 ----D---- C:\WINDOWS\system32\ar-SA
2016-03-13 00:02:35 ----D---- C:\WINDOWS\MediaViewer
2016-03-13 00:02:32 ----D---- C:\WINDOWS\InputMethod
2016-03-13 00:02:23 ----D---- C:\WINDOWS\ADFS
2016-03-13 00:02:20 ----RD---- C:\Users
2016-03-13 00:02:12 ----D---- C:\Program Files (x86)\Windows Mail
2016-03-13 00:02:10 ----AD---- C:\Program Files (x86)\Hewlett-Packard
2016-03-13 00:02:07 ----D---- C:\Program Files\Windows Mail
2016-03-13 00:02:04 ----D---- C:\Program Files\Common Files\microsoft shared
2016-03-13 00:02:04 ----D---- C:\Program Files\Common Files
2016-03-13 00:01:33 ----D---- C:\WINDOWS\system32\Recovery
2016-03-12 23:59:25 ----D---- C:\WINDOWS\system32\CodeIntegrity
2016-03-12 23:58:09 ----D---- C:\WINDOWS\system32\Sysprep
2016-03-12 23:55:30 ----D---- C:\WINDOWS\Help
2016-03-12 23:41:21 ----D---- C:\WINDOWS\SYSWOW64\sk-SK
2016-03-12 23:41:21 ----D---- C:\WINDOWS\SYSWOW64\migration
2016-03-12 23:41:21 ----D---- C:\WINDOWS\SYSWOW64\en-GB
2016-03-12 23:41:21 ----D---- C:\WINDOWS\SYSWOW64\Dism
2016-03-12 23:41:21 ----D---- C:\WINDOWS\system32\WinBioPlugIns
2016-03-12 23:41:21 ----D---- C:\WINDOWS\system32\SystemResetPlatform
2016-03-12 23:41:21 ----D---- C:\WINDOWS\system32\sk-SK
2016-03-12 23:41:20 ----RSD---- C:\WINDOWS\Media
2016-03-12 23:41:20 ----RD---- C:\WINDOWS\PurchaseDialog
2016-03-12 23:41:20 ----D---- C:\WINDOWS\system32\en-GB
2016-03-12 23:41:20 ----D---- C:\WINDOWS\system32\Dism
2016-03-12 23:41:20 ----D---- C:\WINDOWS\system32\Boot
2016-03-12 23:41:20 ----D---- C:\WINDOWS\system32\appraiser
2016-03-12 23:41:20 ----D---- C:\WINDOWS\bcastdvr
2016-03-12 23:41:20 ----D---- C:\WINDOWS\AppPatch
2016-03-12 23:41:20 ----D---- C:\Program Files\Windows Portable Devices
2016-03-12 23:41:20 ----D---- C:\Program Files\Windows Multimedia Platform
2016-03-12 23:41:20 ----D---- C:\Program Files\Windows Media Player
2016-03-12 23:41:20 ----D---- C:\Program Files\Windows Journal
2016-03-12 23:41:20 ----D---- C:\Program Files\Internet Explorer
2016-03-12 23:41:20 ----D---- C:\Program Files (x86)\Windows Portable Devices
2016-03-12 23:41:20 ----D---- C:\Program Files (x86)\Windows Multimedia Platform
2016-03-12 23:41:20 ----D---- C:\Program Files (x86)\Internet Explorer
2016-03-12 23:28:48 ----SD---- C:\WINDOWS\SYSWOW64\F12
2016-03-12 23:28:48 ----D---- C:\WINDOWS\SYSWOW64\WCN
2016-03-12 23:28:48 ----D---- C:\WINDOWS\SYSWOW64\wbem
2016-03-12 23:28:48 ----D---- C:\WINDOWS\SYSWOW64\oobe
2016-03-12 23:28:47 ----SD---- C:\WINDOWS\system32\F12
2016-03-12 23:28:47 ----D---- C:\WINDOWS\SYSWOW64\drivers\UMDF
2016-03-12 23:28:47 ----D---- C:\WINDOWS\system32\WCN
2016-03-12 23:28:47 ----D---- C:\WINDOWS\system32\migwiz
2016-03-12 23:28:46 ----RD---- C:\WINDOWS\MiracastView
2016-03-12 23:28:46 ----RD---- C:\WINDOWS\ImmersiveControlPanel
2016-03-12 23:28:46 ----RD---- C:\WINDOWS\DevicesFlow
2016-03-12 23:28:46 ----D---- C:\WINDOWS\servicing
2016-03-12 23:28:46 ----D---- C:\WINDOWS\PolicyDefinitions
2016-03-12 23:28:46 ----D---- C:\WINDOWS\IME
2016-03-12 23:28:46 ----D---- C:\Program Files\Windows Photo Viewer
2016-03-12 23:28:46 ----D---- C:\Program Files\Windows Defender
2016-03-12 23:28:46 ----D---- C:\Program Files\Common Files\System
2016-03-12 23:28:46 ----D---- C:\Program Files (x86)\Windows Photo Viewer
2016-03-12 23:28:46 ----D---- C:\Program Files (x86)\Windows Media Player
2016-03-12 23:28:46 ----D---- C:\Program Files (x86)\Windows Defender
2016-03-12 23:22:13 ----D---- C:\WINDOWS\SYSWOW64\winrm
2016-03-12 23:22:12 ----SD---- C:\WINDOWS\SYSWOW64\DiagSvcs
2016-03-12 23:22:12 ----D---- C:\WINDOWS\SYSWOW64\Printing_Admin_Scripts
2016-03-12 23:22:12 ----D---- C:\WINDOWS\SYSWOW64\en
2016-03-12 23:22:12 ----D---- C:\WINDOWS\SYSWOW64\drivers\en-US
2016-03-12 23:22:12 ----D---- C:\WINDOWS\system32\winrm
2016-03-12 23:22:09 ----D---- C:\WINDOWS\system32\Printing_Admin_Scripts
2016-03-12 23:22:09 ----D---- C:\WINDOWS\system32\en
2016-03-12 23:22:08 ----SD---- C:\WINDOWS\system32\DiagSvcs
2016-03-12 23:22:08 ----D---- C:\WINDOWS\system32\drivers\en-US
2016-03-12 23:22:08 ----D---- C:\WINDOWS\en-US
2016-03-12 23:13:08 ----SD---- C:\WINDOWS\system32\Microsoft
2016-03-12 23:09:27 ----D---- C:\WINDOWS\SYSWOW64\MUI
2016-03-12 23:09:27 ----D---- C:\WINDOWS\SYSWOW64\inetsrv
2016-03-12 23:09:27 ----D---- C:\WINDOWS\system32\MUI
2016-03-12 23:09:27 ----D---- C:\WINDOWS\system32\inetsrv
2016-03-12 23:09:16 ----A---- C:\WINDOWS\system32\wamregps.dll
2016-03-12 23:09:16 ----A---- C:\WINDOWS\system32\iisRtl.dll
2016-03-12 23:09:16 ----A---- C:\WINDOWS\system32\admwprox.dll
2016-03-12 23:09:15 ----A---- C:\WINDOWS\system32\iisrstap.dll
2016-03-12 23:09:15 ----A---- C:\WINDOWS\system32\iisreset.exe
2016-03-12 23:09:15 ----A---- C:\WINDOWS\system32\ahadmin.dll
2016-03-12 23:09:11 ----A---- C:\WINDOWS\SYSWOW64\wamregps.dll
2016-03-12 23:09:11 ----A---- C:\WINDOWS\SYSWOW64\iisRtl.dll
2016-03-12 23:09:11 ----A---- C:\WINDOWS\SYSWOW64\admwprox.dll
2016-03-12 23:09:10 ----A---- C:\WINDOWS\SYSWOW64\iisrstap.dll
2016-03-12 23:09:10 ----A---- C:\WINDOWS\SYSWOW64\iisreset.exe
2016-03-12 23:09:10 ----A---- C:\WINDOWS\SYSWOW64\ahadmin.dll
2016-03-12 22:47:23 ----HD---- C:\$WINDOWS.~BT
2016-03-12 11:33:39 ----D---- C:\ProgramData\McAfee
2016-03-12 11:33:39 ----D---- C:\Program Files\Common Files\McAfee
2016-03-12 11:11:38 ----D---- C:\Program Files (x86)\McAfee
2016-03-12 10:58:15 ----RD---- C:\WINDOWS\ToastData
2016-03-10 16:17:22 ----D---- C:\ProgramData\Package Cache
2016-03-09 19:25:48 ----SHD---- C:\$Recycle.Bin
2016-03-09 19:25:18 ----HD---- C:\SYSTEM.SAV
2016-03-08 09:12:26 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 MBI;@oem4.inf,%MBI.SVCDESC%;Intel(R) Sideband Fabric Device Service; C:\WINDOWS\System32\drivers\MBI.sys [2014-01-23 29464]
1. část
LOG FRST: Logfile of random's system information tool 1.10 (written by random/random)
Run by Petr at 2016-04-05 22:51:21
Microsoft Windows 10 Home
System drive C: has 265 GB (58%) free of 453 GB
Total RAM: 3982 MB (53% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 22:51:30, on 05.04.2016
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.10586.0020)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\CyberLink\YouCam\YouCamService.exe
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Program Files\AVAST Software\SecureLine\SecureLine.exe
C:\Program Files (x86)\Hewlett-Packard\HP System Event\HPMSGSVC.exe
C:\Program Files (x86)\Steam\Steam.exe
C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\AAM Updates Notifier.exe
C:\Program Files (x86)\AIMP\AIMP.exe
C:\Users\Petr\Desktop\HRC.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\Petr.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.bing.com?pc=HPDTDFJS
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.bing.com?pc=HPDTDFJS
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=
O2 - BHO: Evernote extension - {92EF2EAD-A7CE-4424-B0DB-499CF856608E} - C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll
O2 - BHO: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll
O4 - HKLM\..\Run: [HPMessageService] C:\Program Files (x86)\Hewlett-Packard\HP System Event\HPMSGSVC.exe
O4 - HKLM\..\Run: [DropboxOEM] "C:\Program Files (x86)\Dropbox\DropboxOEM\DropboxOEM.exe" auto
O4 - HKLM\..\Run: [AdobeCEPServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CEPServiceManager4\CEPServiceManager.exe" -launchedbylogin
O4 - HKCU\..\Run: [Steam] "C:\Program Files (x86)\Steam\steam.exe" -silent
O4 - HKCU\..\Run: [Gyazo] C:\Program Files (x86)\Gyazo\GyStation.exe
O4 - HKCU\..\Run: [OneDrive] "C:\Users\Petr\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O4 - Global Startup: avast! SecureLine.lnk = C:\Program Files\AVAST Software\SecureLine\SecureLine.exe
O9 - Extra button: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-103 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-102 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O9 - Extra button: @C:\Program Files (x86)\Evernote\Evernote\Resource.dll,-101 - {A95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\Program Files (x86)\Evernote\Evernote\\EvernoteIERes\AddNote.html
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Evernote\Evernote\Resource.dll,-101 - {A95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\Program Files (x86)\Evernote\Evernote\\EvernoteIERes\AddNote.html
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - Trusted Zone: http://help.eset.com (HKLM)
O15 - ESC Trusted Zone: http://help.eset.com (HKLM)
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O23 - Service: Andrea RT Filters Service (AERTFilters) - Andrea Electronics Corporation - C:\Program Files\Realtek\Audio\HDA\AERTSr64.EXE
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: BattlEye Service (BEService) - Unknown owner - C:\Program Files (x86)\Common Files\BattlEye\BEService.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: BTDevManager - Unknown owner - C:\Program Files (x86)\REALTEK\Realtek Bluetooth\BTDevMgr.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: HP Support Assistant Service - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe
O23 - Service: HP Software Framework Service (hpqwmiex) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe
O23 - Service: HPWMISVC - Hewlett-Packard Development Company, L.P. - C:\Program Files (x86)\Hewlett-Packard\HP System Event\HPWMISVC.exe
O23 - Service: Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) - Unknown owner - C:\WINDOWS\system32\igfxCUIService.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\TXE Components\TCS\HeciServer.exe
O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - C:\Program Files\Intel\TXE Components\TCS\SocketHeciServer.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: LiveUpdate (LiveUpdateSvc) - IObit - C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\WINDOWS\system32\nvvsvc.exe (file missing)
O23 - Service: HP SimplePass Service (omniserv) - Softex Inc. - C:\Program Files\Hewlett-Packard\SimplePass\OmniServ.exe
O23 - Service: Cyberlink RichVideo64 Service(CRVS) (RichVideo64) - Unknown owner - C:\Program Files\CyberLink\Shared files\RichVideo64.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: Realtek Audio Service (RtkAudioService) - Realtek Semiconductor - C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: avast! SecureLine (SecureLine) - Unknown owner - C:\Program Files\AVAST Software\SecureLine\VpnSvc.exe
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: SynTPEnh Caller Service (SynTPEnhService) - Synaptics Incorporated - C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\WINDOWS\system32\TieringEngineService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 12185 bytes
======Listing Processes======
winlogon.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
"dwm.exe"
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
"C:\WINDOWS\system32\nvvsvc.exe"
"C:\Program Files\Hewlett-Packard\SimplePass\OmniServ.exe"
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\WINDOWS\system32\nvvsvc.exe -session -first
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\system32\igfxCUIService.exe
"C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /SRSPS
C:\WINDOWS\system32\svchost.exe -k NetworkService
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
C:\WINDOWS\system32\svchost.exe -k WbioSvcGroup
C:\WINDOWS\system32\svchost.exe -k apphost
C:\WINDOWS\System32\svchost.exe -k utcsvc
"C:\Program Files\Realtek\Audio\HDA\AERTSr64.EXE"
"C:\Program Files (x86)\Hewlett-Packard\HP System Event\HPWMISVC.exe"
"C:\Program Files\Intel\TXE Components\TCS\HeciServer.exe"
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe"
C:\WINDOWS\system32\svchost.exe -k imgsvc
C:\WINDOWS\system32\svchost.exe -k appmodel
dashost.exe {ea9b5b8d-2d06-4a07-965db4abe7cc209a}
"C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe"
"C:\Program Files\Bonjour\mDNSResponder.exe"
"C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe"
"C:\Program Files (x86)\REALTEK\Realtek Bluetooth\BTDevMgr.exe"
"C:\Program Files\AVAST Software\SecureLine\VpnSvc.exe"
"C:\Program Files\CyberLink\Shared files\RichVideo64.exe"
C:\WINDOWS\system32\WLANExt.exe 2891908622416
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe" nss e17323c5-2f9b-4aff-9c8b-b9f8821f52d5 1
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe" serviceapp
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
sihost.exe
taskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E}
C:\Windows\System32\RuntimeBroker.exe -Embedding
C:\WINDOWS\Explorer.EXE
"C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE"
"C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
"C:\Program Files\Hewlett-Packard\SimplePass\opvapp.exe"
"C:\Program Files (x86)\CyberLink\YouCam\YouCamService.exe"
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
"C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe" -ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
"C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
"C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe" -s
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /ANDREA_BF_BYPASS
"C:\Program Files\Hewlett-Packard\SimplePass\ClientCore.exe" /hideui
"C:\Program Files\Hewlett-Packard\SimplePass\opbhobroker.exe"
"C:\Program Files\Hewlett-Packard\SimplePass\opbhobrokerdsktop.exe"
"C:\Program Files\AVAST Software\SecureLine\SecureLine.exe" /nogui
"C:\Program Files (x86)\Hewlett-Packard\HP System Event\HPMSGSVC.exe"
C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
C:\WINDOWS\system32\wbem\wmiprvse.exe
igfxEM.exe
igfxHK.exe
"C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe" /hide
"C:\Program Files (x86)\Steam\Steam.exe"
"C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe"
"C:\Program Files (x86)\Steam\bin\steamwebhelper.exe" -cachedir="C:\Users\Petr\AppData\Local\Steam\htmlcache" -steampid=5640 -buildid=1459463254 -steamid="0" --disable-gpu-compositing --disable-gpu --process-per-tab --enable-system-flash --disable-spell-checking --enable-widevine-cdm --enable-direct-write
"C:\Program Files (x86)\Common Files\Steam\SteamService.exe" /RunAsService
C:\WINDOWS\system32\SettingSyncHost.exe -Embedding
"C:\Program Files (x86)\Steam\bin\steamwebhelper.exe" --type=renderer --disable-gpu-compositing --enable-pinch --lang=en-US --lang=en-US --log-file="C:\Program Files (x86)\Steam\bin\debug.log" --product-version="Valve Steam Client" --disable-spell-checking --enable-system-flash --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --disable-gpu-compositing --channel="4104.0.922663693\1204857682" --font-cache-shared-handle=1532 /prefetch:673131151
"C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\AAM Updates Notifier.exe"
"C:\Program Files (x86)\AIMP\AIMP.exe"
"fontdrvhost.exe"
C:\WINDOWS\system32\ApplicationFrameHost.exe -Embedding
"C:\WINDOWS\ImmersiveControlPanel\SystemSettings.exe" -ServerName:microsoft.windows.immersivecontrolpanel
"C:\Program Files\WindowsApps\Microsoft.WindowsStore_2016.29.13.0_x64__8wekyb3d8bbwe\WinStore.Mobile.exe" -ServerName:App.AppXqagq4n4gvy0tjw576pgh6xr601s1h1mv.mca
"C:\Program Files\WindowsApps\Microsoft.Windows.Photos_16.325.12390.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe" -ServerName:App.AppXzst44mncqdg84v7sv6p7yznqwssy6f7f.mca
"C:\Program Files\WindowsApps\Microsoft.People_10.0.10811.0_x64__8wekyb3d8bbwe\PeopleApp.exe" -ServerName:x4c7a3b7dy2188y46d4ya362y19ac5a5805e5x.AppXp4q8q2jfk5x248b0h39ew5k7wz3xvc5b.mca
"C:\Users\Petr\Desktop\HRC.exe"
taskhostw.exe
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=crashpad-handler /prefetch:7 --no-rate-limit "--database=C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Crashpad" --url=https://clients2.google.com/cr/report --annotation=channel=m --annotation=plat=Win32 --annotation=prod=Chrome --annotation=ver=49.0.2623.110 --handshake-handle=0x1ac
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding --disable-features=UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup,WebFontsIntervention<WebFontsIntervention --lang=cs --force-fieldtrials=AppBannerTriggering/Aggressive/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_10-gen2/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ClientSideDetectionModel/Model0/*CrossDevicePromo/14DaySingleProfile/*DataReductionProxyConfigService/Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Postperiod_AnswersInSuggest_A1/PasswordBranding/Disabled/*PasswordGeneration/Disabled/PreRead/Default/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Disabled/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/SSLCommonNameMismatchHandling/Disabled/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_07/*UMA-Uniformity-Trial-10-Percent/group_09/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/default/*UMA-Uniformity-Trial-5-Percent/group_02/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/WebFontsIntervention/Disabled/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --extension-process --enable-webrtc-hw-h264-encoding --disable-client-side-phishing-detection --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --disable-accelerated-video-decode --disable-webrtc-hw-encoding --disable-gpu-compositing --channel="10312.2.355831801\1425600287" /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="10312.6.1653752180\1652153616" --use-gl=swiftshader --supports-dual-gpus=false --swiftshader-path="C:\Users\Petr\AppData\Local\Google\Chrome\User Data\SwiftShader\3.2.6.45159" --gpu-driver-bug-workarounds=3,11,16,25,54 --gpu-vendor-id=0x8086 --gpu-device-id=0x0f31 --gpu-driver-vendor="Intel Corporation" --gpu-driver-version=10.18.10.4276 --ignored=" --type=renderer " /prefetch:2
"C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe"
C:\WINDOWS\System32\svchost.exe -k swprv
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding --disable-features=UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup,WebFontsIntervention<WebFontsIntervention --lang=cs --force-fieldtrials=AppBannerTriggering/Aggressive/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_10-gen2/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ClientSideDetectionModel/Model0/*CrossDevicePromo/14DaySingleProfile/*DataReductionProxyConfigService/Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Postperiod_AnswersInSuggest_A1/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*PreRead/Default/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Disabled/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/SSLCommonNameMismatchHandling/Disabled/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_07/*UMA-Uniformity-Trial-10-Percent/group_09/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/default/*UMA-Uniformity-Trial-5-Percent/group_02/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*WebFontsIntervention/Disabled/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --disable-client-side-phishing-detection --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --disable-gpu-compositing --channel="10312.36.1572614579\1650319811" /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding --disable-features=UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup,WebFontsIntervention<WebFontsIntervention --lang=cs --force-fieldtrials=AppBannerTriggering/Aggressive/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_10-gen2/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ClientSideDetectionModel/Model0/*CrossDevicePromo/14DaySingleProfile/*DataReductionProxyConfigService/Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Postperiod_AnswersInSuggest_A1/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*PreRead/Default/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Disabled/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/SSLCommonNameMismatchHandling/Disabled/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_07/*UMA-Uniformity-Trial-10-Percent/group_09/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/default/*UMA-Uniformity-Trial-5-Percent/group_02/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*WebFontsIntervention/Disabled/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --disable-client-side-phishing-detection --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --disable-gpu-compositing --channel="10312.39.1310509455\178751577" /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding --disable-features=UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup,WebFontsIntervention<WebFontsIntervention --lang=cs --force-fieldtrials=AppBannerTriggering/Aggressive/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_10-gen2/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ClientSideDetectionModel/Model0/*CrossDevicePromo/14DaySingleProfile/*DataReductionProxyConfigService/Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Postperiod_AnswersInSuggest_A1/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*PreRead/Default/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Disabled/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/SSLCommonNameMismatchHandling/Disabled/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_07/*UMA-Uniformity-Trial-10-Percent/group_09/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/default/*UMA-Uniformity-Trial-5-Percent/group_02/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*WebFontsIntervention/Disabled/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --disable-client-side-phishing-detection --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --disable-gpu-compositing --channel="10312.40.823946976\926330763" /prefetch:1
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe47_ Global\UsGthrCtrlFltPipeMssGthrPipe47 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 620 624 632 8192 628
"C:\Users\Petr\Desktop\RSITx64.exe"
C:\WINDOWS\system32\wbem\wmiprvse.exe
======Scheduled tasks folder======
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\WINDOWS\tasks\HPCeeScheduleForPetr.job - C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe HPCeeScheduleForPetr (null)
=========Mozilla firefox=========
ProfilePath - C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\70e4d70i.default
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 21.0.0.182 Plugin
"Path"=C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_21_0_0_182.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/ShockwavePlayer]
"Description"=Adobe Shockwave Player
"Path"=C:\windows\SysWOW64\Adobe\Director\np32dsw_1204144.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/pdf]
"Description"=
"Path"=C:\Program Files (x86)\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.fdf]
"Description"=
"Path"=C:\Program Files (x86)\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.29.5\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.29.5\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.2.2]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\adobe.com/AdobeAAMDetect]
"Description"=
"Path"=C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 21.0.0.182 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF64_21_0_0_182.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\adobe.com/AdobeAAMDetect]
"Description"=
"Path"=C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E76FD755-C1BA-4DCB-9F13-99BD91223ADE}]
HP Network Check Helper - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll [2013-08-28 303416]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{92EF2EAD-A7CE-4424-B0DB-499CF856608E}]
Evernote extension - C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll [2014-07-25 585568]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E76FD755-C1BA-4DCB-9F13-99BD91223ADE}]
HP Network Check Helper - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2013-08-28 286520]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [2014-09-03 7636696]
"RtHDVBg"=C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2014-09-02 1396592]
"NvBackend"=C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2014-09-09 2473800]
"ShadowPlay"=C:\Windows\system32\nvspcap64.dll [2014-09-09 2799272]
"SimplePass"=C:\Program Files\Hewlett-Packard\SimplePass\ClientCore.exe [2014-03-28 3962936]
"OPBHOBroker"=C:\Program Files\Hewlett-Packard\SimplePass\OPBHOBroker.exe [2014-03-28 415288]
"OPBHOBrokerDesktop"=C:\Program Files\Hewlett-Packard\SimplePass\OPBHOBrokerDsktop.exe [2014-03-28 415288]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2015-07-17 3944136]
"AdobeAAMUpdater-1.0"=C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2013-03-21 472992]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Steam"=C:\Program Files (x86)\Steam\steam.exe [2016-03-31 3077712]
"Gyazo"=C:\Program Files (x86)\Gyazo\GyStation.exe [2016-02-17 3586848]
"OneDrive"=C:\Users\Petr\AppData\Local\Microsoft\OneDrive\OneDrive.exe [2016-03-13 551104]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2016-02-12 8641240]
"Skype"=C:\Program Files (x86)\Skype\Phone\Skype.exe [2016-03-01 50670720]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"HPMessageService"=C:\Program Files (x86)\Hewlett-Packard\HP System Event\HPMSGSVC.exe [2014-09-02 507144]
"DropboxOEM"=C:\Program Files (x86)\Dropbox\DropboxOEM\DropboxOEM.exe [2014-09-02 462160]
"AdobeCEPServiceManager"=C:\Program Files (x86)\Common Files\Adobe\CEPServiceManager4\CEPServiceManager.exe [2013-03-13 1039248]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
avast! SecureLine.lnk - C:\Program Files\AVAST Software\SecureLine\SecureLine.exe
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iai2c.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TileDataModelSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TileDataModelSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DSCAutomationHostEnabled"=2
"SoftwareSASGeneration"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"VIDC.FPS1"=frapsv64.dll
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2016-04-05 22:51:22 ----D---- C:\Program Files\trend micro
2016-04-05 22:51:21 ----D---- C:\rsit
2016-04-05 22:40:21 ----D---- C:\Users\Petr\AppData\Roaming\ProductData
2016-04-05 22:40:16 ----D---- C:\ProgramData\{FD6F83C0-EC70-4581-8361-C70CD1AA4B98}
2016-04-05 22:38:59 ----D---- C:\ProgramData\ProductData
2016-04-05 22:38:49 ----D---- C:\Users\Petr\AppData\Roaming\IObit
2016-04-05 22:38:49 ----D---- C:\ProgramData\IObit
2016-04-05 22:38:49 ----A---- C:\WINDOWS\SYSWOW64\drivers\HWiNFO64A.SYS
2016-04-05 22:38:44 ----D---- C:\Program Files (x86)\IObit
2016-04-02 22:24:38 ----D---- C:\Users\Petr\AppData\Roaming\SFBot
2016-04-01 15:26:11 ----D---- C:\ProgramData\Orbit
2016-04-01 15:01:07 ----D---- C:\Program Files (x86)\Steam Customizer
2016-03-31 19:08:24 ----D---- C:\Users\Petr\AppData\Roaming\MotioninJoy
2016-03-31 19:08:19 ----A---- C:\WINDOWS\system32\MijFrc.dll
2016-03-31 19:08:18 ----AD---- C:\Program Files\MotioninJoy
2016-03-31 19:08:18 ----A---- C:\WINDOWS\system32\drivers\xusb21.sys
2016-03-31 19:08:18 ----A---- C:\WINDOWS\system32\drivers\MijXfilt.sys
2016-03-28 21:57:57 ----D---- C:\Program Files (x86)\Livestreamer
2016-03-22 23:56:17 ----D---- C:\AdwCleaner
2016-03-22 21:40:32 ----D---- C:\Users\Petr\AppData\Roaming\vlc
2016-03-22 21:38:44 ----D---- C:\Users\Petr\AppData\Roaming\livestreamer
2016-03-22 21:36:15 ----D---- C:\Program Files (x86)\VideoLAN
2016-03-22 19:30:40 ----D---- C:\Users\Petr\AppData\Roaming\Skype
2016-03-22 19:30:27 ----RD---- C:\Program Files (x86)\Skype
2016-03-22 19:30:17 ----D---- C:\ProgramData\Skype
2016-03-18 20:00:11 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2016-03-18 20:00:06 ----AD---- C:\Program Files (x86)\Mozilla Firefox
2016-03-16 23:05:48 ----D---- C:\Users\Petr\AppData\Roaming\.mono
2016-03-16 23:05:48 ----D---- C:\ProgramData\.mono
2016-03-14 22:54:01 ----D---- C:\Games
2016-03-13 23:49:18 ----D---- C:\ProgramData\ESET
2016-03-13 23:49:05 ----D---- C:\Program Files\ESET
2016-03-13 23:43:03 ----AD---- C:\Program Files\CCleaner
2016-03-13 22:24:33 ----D---- C:\Users\Petr\AppData\Roaming\Publish Providers
2016-03-13 22:21:02 ----D---- C:\ProgramData\Sony
2016-03-13 22:21:02 ----D---- C:\Program Files (x86)\Sony
2016-03-13 22:21:01 ----D---- C:\Program Files\Sony
2016-03-13 22:20:16 ----D---- C:\Users\Petr\AppData\Roaming\Sony
2016-03-13 22:10:16 ----SD---- C:\WINDOWS\SYSWOW64\Microsoft
2016-03-13 22:00:46 ----D---- C:\Fraps
2016-03-13 21:37:51 ----D---- C:\Program Files\Adobe
2016-03-13 21:35:14 ----AD---- C:\Program Files (x86)\Adobe
2016-03-13 11:59:21 ----D---- C:\Users\Petr\AppData\Roaming\Mozilla
2016-03-13 11:52:09 ----D---- C:\Users\Petr\AppData\Roaming\Raptr
2016-03-13 11:51:32 ----D---- C:\Users\Petr\AppData\Roaming\library_dir
2016-03-13 11:51:23 ----D---- C:\Program Files (x86)\Raptr Inc
2016-03-13 10:16:27 ----D---- C:\WINDOWS\system32\MRT
2016-03-13 10:16:19 ----A---- C:\WINDOWS\system32\MRT.exe
2016-03-13 00:25:12 ----A---- C:\WINDOWS\system32\{F33C3B9B-72AF-418A-B3FD-560646F7CDA2}.bat
2016-03-13 00:20:44 ----A---- C:\WINDOWS\system32\emptyregdb.dat
2016-03-12 23:59:49 ----SD---- C:\Users\Petr\AppData\Roaming\Microsoft
2016-03-12 23:59:01 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2016-03-12 23:58:51 ----A---- C:\WINDOWS\SYSWOW64\PerfStringBackup.INI
2016-03-12 23:55:37 ----D---- C:\ProgramData\NVIDIA
2016-03-12 23:55:31 ----A---- C:\WINDOWS\system32\nvvsvc.exe
2016-03-12 23:55:31 ----A---- C:\WINDOWS\system32\nvsvcr.dll
2016-03-12 23:55:31 ----A---- C:\WINDOWS\system32\nvsvc64.dll
2016-03-12 23:55:31 ----A---- C:\WINDOWS\system32\nvshext.dll
2016-03-12 23:55:31 ----A---- C:\WINDOWS\system32\nvmctray.dll
2016-03-12 23:55:31 ----A---- C:\WINDOWS\system32\nvcpl.dll
2016-03-12 23:55:31 ----A---- C:\WINDOWS\system32\nv3dappshextr.dll
2016-03-12 23:55:31 ----A---- C:\WINDOWS\system32\nv3dappshext.dll
2016-03-12 23:55:17 ----D---- C:\ProgramData\NVIDIA Corporation
2016-03-12 23:55:03 ----D---- C:\Program Files\NVIDIA Corporation
2016-03-12 23:54:57 ----D---- C:\WINDOWS\SYSWOW64\sda
2016-03-12 23:54:44 ----D---- C:\WINDOWS\system32\SRSLabs
2016-03-12 23:54:39 ----D---- C:\WINDOWS\SYSWOW64\RTCOM
2016-03-12 23:54:39 ----D---- C:\Program Files\Realtek
2016-03-12 23:54:36 ----A---- C:\WINDOWS\SYSWOW64\OpenCL.DLL
2016-03-12 23:54:36 ----A---- C:\WINDOWS\system32\OpenCL.DLL
2016-03-12 23:54:31 ----D---- C:\Program Files\Intel
2016-03-12 23:53:37 ----D---- C:\Program Files\Synaptics
2016-03-12 23:50:17 ----D---- C:\WINDOWS\Prefetch
2016-03-12 23:48:11 ----SHD---- C:\Recovery
2016-03-12 23:47:56 ----DC---- C:\WINDOWS\Panther
2016-03-12 23:41:46 ----D---- C:\Windows.old
2016-03-12 23:39:08 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.MediaControl.dll
2016-03-12 23:39:08 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Audio.dll
2016-03-12 23:39:08 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Scanners.dll
2016-03-12 23:39:08 ----A---- C:\WINDOWS\SYSWOW64\SettingSync.dll
2016-03-12 23:39:08 ----A---- C:\WINDOWS\SYSWOW64\msvproc.dll
2016-03-12 23:39:08 ----A---- C:\WINDOWS\SYSWOW64\MSFlacDecoder.dll
2016-03-12 23:39:08 ----A---- C:\WINDOWS\SYSWOW64\mfsvr.dll
2016-03-12 23:39:08 ----A---- C:\WINDOWS\SYSWOW64\mfmpeg2srcsnk.dll
2016-03-12 23:39:08 ----A---- C:\WINDOWS\SYSWOW64\mfmp4srcsnk.dll
2016-03-12 23:39:08 ----A---- C:\WINDOWS\SYSWOW64\mfds.dll
2016-03-12 23:39:08 ----A---- C:\WINDOWS\SYSWOW64\mfasfsrcsnk.dll
2016-03-12 23:39:08 ----A---- C:\WINDOWS\SYSWOW64\MCRecvSrc.dll
2016-03-12 23:39:08 ----A---- C:\WINDOWS\SYSWOW64\AppxPackaging.dll
2016-03-12 23:39:08 ----A---- C:\WINDOWS\system32\MSFlacDecoder.dll
2016-03-12 23:39:08 ----A---- C:\WINDOWS\system32\MDEServer.exe
2016-03-12 23:39:08 ----A---- C:\WINDOWS\system32\MCRecvSrc.dll
2016-03-12 23:38:59 ----A---- C:\WINDOWS\SYSWOW64\mfsrcsnk.dll
2016-03-12 23:38:59 ----A---- C:\WINDOWS\SYSWOW64\mfmkvsrcsnk.dll
2016-03-12 23:38:59 ----A---- C:\WINDOWS\SYSWOW64\MFMediaEngine.dll
2016-03-12 23:38:59 ----A---- C:\WINDOWS\SYSWOW64\MFCaptureEngine.dll
2016-03-12 23:38:58 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.dll
2016-03-12 23:38:58 ----A---- C:\WINDOWS\SYSWOW64\mfcore.dll
2016-03-12 23:38:58 ----A---- C:\WINDOWS\system32\Windows.Media.dll
2016-03-12 23:38:58 ----A---- C:\WINDOWS\system32\Windows.Media.Audio.dll
2016-03-12 23:38:58 ----A---- C:\WINDOWS\system32\SettingSync.dll
2016-03-12 23:38:58 ----A---- C:\WINDOWS\system32\msvproc.dll
2016-03-12 23:38:58 ----A---- C:\WINDOWS\system32\mfsvr.dll
2016-03-12 23:38:58 ----A---- C:\WINDOWS\system32\mfsrcsnk.dll
2016-03-12 23:38:58 ----A---- C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2016-03-12 23:38:58 ----A---- C:\WINDOWS\system32\mfmp4srcsnk.dll
2016-03-12 23:38:58 ----A---- C:\WINDOWS\system32\mfmkvsrcsnk.dll
2016-03-12 23:38:58 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll
2016-03-12 23:38:58 ----A---- C:\WINDOWS\system32\mfds.dll
2016-03-12 23:38:58 ----A---- C:\WINDOWS\system32\mfcore.dll
2016-03-12 23:38:58 ----A---- C:\WINDOWS\system32\MFCaptureEngine.dll
2016-03-12 23:38:58 ----A---- C:\WINDOWS\system32\mfasfsrcsnk.dll
2016-03-12 23:38:58 ----A---- C:\WINDOWS\system32\drivers\mrxsmb10.sys
2016-03-12 23:38:58 ----A---- C:\WINDOWS\system32\audiosrv.dll
2016-03-12 23:38:58 ----A---- C:\WINDOWS\system32\AudioSes.dll
2016-03-12 23:38:58 ----A---- C:\WINDOWS\system32\AUDIOKSE.dll
2016-03-12 23:38:58 ----A---- C:\WINDOWS\system32\AudioEndpointBuilder.dll
2016-03-12 23:38:58 ----A---- C:\WINDOWS\system32\audiodg.exe
2016-03-12 23:38:57 ----A---- C:\WINDOWS\SYSWOW64\wfapigp.dll
2016-03-12 23:38:57 ----A---- C:\WINDOWS\SYSWOW64\NetSetupEngine.dll
2016-03-12 23:38:57 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2016-03-12 23:38:57 ----A---- C:\WINDOWS\SYSWOW64\fwpolicyiomgr.dll
2016-03-12 23:38:57 ----A---- C:\WINDOWS\SYSWOW64\fwbase.dll
2016-03-12 23:38:57 ----A---- C:\WINDOWS\SYSWOW64\FirewallAPI.dll
2016-03-12 23:38:57 ----A---- C:\WINDOWS\system32\wpninprc.dll
2016-03-12 23:38:57 ----A---- C:\WINDOWS\system32\wfapigp.dll
2016-03-12 23:38:57 ----A---- C:\WINDOWS\system32\sharemediacpl.dll
2016-03-12 23:38:57 ----A---- C:\WINDOWS\system32\PsmServiceExtHost.dll
2016-03-12 23:38:57 ----A---- C:\WINDOWS\system32\NetSetupSvc.dll
2016-03-12 23:38:57 ----A---- C:\WINDOWS\system32\NetSetupEngine.dll
2016-03-12 23:38:57 ----A---- C:\WINDOWS\system32\MPSSVC.dll
2016-03-12 23:38:57 ----A---- C:\WINDOWS\system32\fwpolicyiomgr.dll
2016-03-12 23:38:57 ----A---- C:\WINDOWS\system32\fwbase.dll
2016-03-12 23:38:57 ----A---- C:\WINDOWS\system32\FirewallAPI.dll
2016-03-12 23:38:55 ----A---- C:\WINDOWS\SYSWOW64\WMPDMC.exe
2016-03-12 23:38:55 ----A---- C:\WINDOWS\SYSWOW64\wmp.dll
2016-03-12 23:38:55 ----A---- C:\WINDOWS\system32\WMPDMC.exe
2016-03-12 23:38:54 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2016-03-12 23:38:54 ----A---- C:\WINDOWS\system32\wmp.dll
2016-03-12 23:38:54 ----A---- C:\WINDOWS\system32\flvprophandler.dll
2016-03-12 23:38:53 ----A---- C:\WINDOWS\SYSWOW64\edgehtml.dll
2016-03-12 23:38:53 ----A---- C:\WINDOWS\system32\jscript9.dll
2016-03-12 23:38:52 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2016-03-12 23:38:52 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2016-03-12 23:38:52 ----A---- C:\WINDOWS\system32\mshtml.dll
2016-03-12 23:38:52 ----A---- C:\WINDOWS\system32\ieframe.dll
2016-03-12 23:38:52 ----A---- C:\WINDOWS\system32\edgehtml.dll
2016-03-12 23:38:51 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Logon.dll
2016-03-12 23:38:51 ----A---- C:\WINDOWS\SYSWOW64\WiFiDisplay.dll
2016-03-12 23:38:51 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
2016-03-12 23:38:51 ----A---- C:\WINDOWS\SYSWOW64\TimeBrokerClient.dll
2016-03-12 23:38:51 ----A---- C:\WINDOWS\SYSWOW64\taskschd.dll
2016-03-12 23:38:51 ----A---- C:\WINDOWS\SYSWOW64\SyncController.dll
2016-03-12 23:38:51 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2016-03-12 23:38:51 ----A---- C:\WINDOWS\SYSWOW64\olepro32.dll
2016-03-12 23:38:51 ----A---- C:\WINDOWS\SYSWOW64\ole32.dll
2016-03-12 23:38:51 ----A---- C:\WINDOWS\SYSWOW64\ntdll.dll
2016-03-12 23:38:51 ----A---- C:\WINDOWS\SYSWOW64\NetSetupShim.dll
2016-03-12 23:38:51 ----A---- C:\WINDOWS\SYSWOW64\LaunchWinApp.exe
2016-03-12 23:38:51 ----A---- C:\WINDOWS\SYSWOW64\KernelBase.dll
2016-03-12 23:38:51 ----A---- C:\WINDOWS\SYSWOW64\Chakra.dll
2016-03-12 23:38:51 ----A---- C:\WINDOWS\SYSWOW64\ExplorerFrame.dll
2016-03-12 23:38:51 ----A---- C:\WINDOWS\SYSWOW64\asycfilt.dll
2016-03-12 23:38:51 ----A---- C:\WINDOWS\SYSWOW64\AppxAllUserStore.dll
2016-03-12 23:38:51 ----A---- C:\WINDOWS\SYSWOW64\ActiveSyncProvider.dll
2016-03-12 23:38:51 ----A---- C:\WINDOWS\system32\wwansvc.dll
2016-03-12 23:38:51 ----A---- C:\WINDOWS\system32\wsqmcons.exe
2016-03-12 23:38:51 ----A---- C:\WINDOWS\system32\wlansvcpal.dll
2016-03-12 23:38:51 ----A---- C:\WINDOWS\system32\wlansvc.dll
2016-03-12 23:38:51 ----A---- C:\WINDOWS\system32\wlansec.dll
2016-03-12 23:38:51 ----A---- C:\WINDOWS\system32\wlanmsm.dll
2016-03-12 23:38:51 ----A---- C:\WINDOWS\system32\wlanapi.dll
2016-03-12 23:38:51 ----A---- C:\WINDOWS\system32\winresume.exe
2016-03-12 23:38:51 ----A---- C:\WINDOWS\system32\winload.exe
2016-03-12 23:38:51 ----A---- C:\WINDOWS\system32\Windows.UI.Shell.dll
2016-03-12 23:38:51 ----A---- C:\WINDOWS\system32\Windows.UI.Logon.dll
2016-03-12 23:38:51 ----A---- C:\WINDOWS\system32\Windows.UI.dll
2016-03-12 23:38:51 ----A---- C:\WINDOWS\system32\Windows.Media.MediaControl.dll
2016-03-12 23:38:51 ----A---- C:\WINDOWS\system32\Windows.Devices.Scanners.dll
2016-03-12 23:38:51 ----A---- C:\WINDOWS\system32\wifiprofilessettinghandler.dll
2016-03-12 23:38:51 ----A---- C:\WINDOWS\system32\wifinetworkmanager.dll
2016-03-12 23:38:51 ----A---- C:\WINDOWS\system32\WiFiConfigSP.dll
2016-03-12 23:38:51 ----A---- C:\WINDOWS\system32\wfdprov.dll
2016-03-12 23:38:51 ----A---- C:\WINDOWS\system32\werui.dll
2016-03-12 23:38:51 ----A---- C:\WINDOWS\system32\wcmsvc.dll
2016-03-12 23:38:51 ----A---- C:\WINDOWS\system32\usbmon.dll
2016-03-12 23:38:51 ----A---- C:\WINDOWS\system32\uDWM.dll
2016-03-12 23:38:51 ----A---- C:\WINDOWS\system32\twinui.dll
2016-03-12 23:38:51 ----A---- C:\WINDOWS\system32\sqmapi.dll
2016-03-12 23:38:51 ----A---- C:\WINDOWS\system32\spoolsv.exe
2016-03-12 23:38:51 ----A---- C:\WINDOWS\system32\SmsRouterSvc.dll
2016-03-12 23:38:51 ----A---- C:\WINDOWS\system32\SMSRouter.dll
2016-03-12 23:38:51 ----A---- C:\WINDOWS\system32\shell32.dll
2016-03-12 23:38:51 ----A---- C:\WINDOWS\system32\SharedStartModel.dll
2016-03-12 23:38:51 ----A---- C:\WINDOWS\system32\QuickActionsDataModel.dll
2016-03-12 23:38:51 ----A---- C:\WINDOWS\system32\ntdll.dll
2016-03-12 23:38:51 ----A---- C:\WINDOWS\system32\NetSetupShim.dll
2016-03-12 23:38:51 ----A---- C:\WINDOWS\system32\mstscax.dll
2016-03-12 23:38:51 ----A---- C:\WINDOWS\system32\localspl.dll
2016-03-12 23:38:51 ----A---- C:\WINDOWS\system32\LaunchWinApp.exe
2016-03-12 23:38:51 ----A---- C:\WINDOWS\system32\KernelBase.dll
2016-03-12 23:38:51 ----A---- C:\WINDOWS\system32\irmon.dll
2016-03-12 23:38:51 ----A---- C:\WINDOWS\system32\ipnathlp.dll
2016-03-12 23:38:51 ----A---- C:\WINDOWS\system32\Chakradiag.dll
2016-03-12 23:38:51 ----A---- C:\WINDOWS\system32\Chakra.dll
2016-03-12 23:38:51 ----A---- C:\WINDOWS\system32\fontsub.dll
2016-03-12 23:38:51 ----A---- C:\WINDOWS\system32\fontdrvhost.exe
2016-03-12 23:38:51 ----A---- C:\WINDOWS\system32\ExplorerFrame.dll
2016-03-12 23:38:51 ----A---- C:\WINDOWS\system32\drivers\rasl2tp.sys
2016-03-12 23:38:51 ----A---- C:\WINDOWS\system32\drivers\ntfs.sys
2016-03-12 23:38:51 ----A---- C:\WINDOWS\system32\drivers\mrxsmb.sys
2016-03-12 23:38:51 ----A---- C:\WINDOWS\system32\drivers\bridge.sys
2016-03-12 23:38:51 ----A---- C:\WINDOWS\system32\bcastdvr.exe
2016-03-12 23:38:51 ----A---- C:\WINDOWS\system32\atmlib.dll
2016-03-12 23:38:51 ----A---- C:\WINDOWS\system32\atmfd.dll
2016-03-12 23:38:51 ----A---- C:\WINDOWS\system32\AppCapture.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\SYSWOW64\WWAHost.exe
2016-03-12 23:38:45 ----A---- C:\WINDOWS\SYSWOW64\wininetlui.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Core.TextInput.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\SYSWOW64\windows.storage.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Protection.PlayReady.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\SYSWOW64\Windows.Data.Pdf.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\SYSWOW64\Windows.AccountsControl.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\SYSWOW64\werui.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\SYSWOW64\wermgr.exe
2016-03-12 23:38:45 ----A---- C:\WINDOWS\SYSWOW64\wer.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\SYSWOW64\VCardParser.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\SYSWOW64\UserDataTypeHelperUtil.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\SYSWOW64\UserDataTimeUtil.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\SYSWOW64\UserDataPlatformHelperUtil.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\SYSWOW64\UserDataLanguageUtil.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\SYSWOW64\UserDataAccountApis.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\SYSWOW64\Unistore.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\SYSWOW64\thumbcache.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\SYSWOW64\TextInputFramework.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\SYSWOW64\SRHInproc.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\SYSWOW64\SRH.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\SYSWOW64\sqmapi.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\SYSWOW64\SettingSyncCore.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\SYSWOW64\profext.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\SYSWOW64\POSyncServices.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\SYSWOW64\PimIndexMaintenanceClient.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\SYSWOW64\PhoneCallHistoryApis.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\SYSWOW64\PackageStateRoaming.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\SYSWOW64\netlogon.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\SYSWOW64\msv1_0.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\SYSWOW64\mstscax.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\SYSWOW64\jsproxy.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\SYSWOW64\InstallAgent.exe
2016-03-12 23:38:45 ----A---- C:\WINDOWS\SYSWOW64\InputService.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\SYSWOW64\InputLocaleManager.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\SYSWOW64\ChatApis.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\SYSWOW64\fontsub.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\SYSWOW64\fontdrvhost.exe
2016-03-12 23:38:45 ----A---- C:\WINDOWS\SYSWOW64\ExtrasXmlParser.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\SYSWOW64\ExSMime.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\SYSWOW64\EmailApis.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\SYSWOW64\dxgi.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\SYSWOW64\DisplayManager.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\SYSWOW64\deviceaccess.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\SYSWOW64\d3d11.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\SYSWOW64\CoreUIComponents.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\SYSWOW64\ContactApis.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\SYSWOW64\CertEnroll.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\SYSWOW64\cemapi.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\SYSWOW64\CallHistoryClient.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\SYSWOW64\atmlib.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\SYSWOW64\atmfd.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\SYSWOW64\AppxSip.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\SYSWOW64\AppXDeploymentClient.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\SYSWOW64\AppointmentApis.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\SYSWOW64\AppointmentActivation.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\XblGameSave.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\XblAuthManager.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\WWAHost.exe
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\wuuhext.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\wuaueng.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\WSService.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\wininetlui.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\wininet.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\windows.storage.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\Windows.Data.Pdf.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\Windows.AccountsControl.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\win32kfull.sys
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\win32kbase.sys
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\WiFiDisplay.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\wermgr.exe
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\wer.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\VCardParser.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\vaultsvc.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\vaultcli.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\UserDataTypeHelperUtil.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\UserDataTimeUtil.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\UserDataService.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\UserDataPlatformHelperUtil.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\UserDataLanguageUtil.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\UserDataAccountApis.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\urlmon.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\Unistore.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\TimeBrokerServer.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\TimeBrokerClient.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\thumbcache.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\TextInputFramework.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\taskschd.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\SyncController.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\StorSvc.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\storewuauth.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\srpapi.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\SRHInproc.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\SRH.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\schedsvc.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\SettingSyncCore.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\seclogon.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\scapi.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\psmsrv.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\provpackageapidll.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\profext.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\POSyncServices.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\PimIndexMaintenanceClient.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\PimIndexMaintenance.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\PhoneCallHistoryApis.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\PackageStateRoaming.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\ole32.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\ngcsvc.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\ngckeyenum.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\netlogon.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\msv1_0.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\modernexecserver.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\MDMAppInstaller.exe
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\MBMediaManager.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\jsproxy.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\invagent.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\InstallAgent.exe
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\InputService.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\InputLocaleManager.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\iertutil.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\ChatApis.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\generaltel.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\ExtrasXmlParser.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\ExSMime.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\EnterpriseDesktopAppMgmtCSP.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\enterprisecsps.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\EmailApis.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\dxgi.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\dssvc.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\drivers\dxgmms2.sys
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\drivers\dxgmms1.sys
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\drivers\dxgkrnl.sys
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\drivers\appid.sys
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\dosvc.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\domgmt.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\DisplayManager.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\diagtrack.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\devinv.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\DeviceEnroller.exe
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\DeviceCensus.exe
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\deviceaccess.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\dafBth.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\d3d11.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\CoreUIComponents.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\ContactApis.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\configurationclient.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\ClipSVC.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\CertEnroll.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\cemapi.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\CallHistoryClient.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\bisrv.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\AuthHost.exe
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\AuthBroker.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\asycfilt.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\AppxSysprep.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\AppxSip.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\AppxPackaging.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\AppXDeploymentServer.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\AppXDeploymentClient.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\AppxAllUserStore.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\AppointmentApis.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\AppointmentActivation.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\aeinv.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\ActiveSyncProvider.dll
2016-03-12 23:38:45 ----A---- C:\WINDOWS\system32\accountaccessor.dll
2016-03-12 23:38:44 ----A---- C:\WINDOWS\SYSWOW64\Windows.Internal.Bluetooth.dll
2016-03-12 23:38:44 ----A---- C:\WINDOWS\SYSWOW64\dwmcore.dll
2016-03-12 23:38:44 ----A---- C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll
2016-03-12 23:38:44 ----A---- C:\WINDOWS\system32\dwmcore.dll
2016-03-12 23:38:44 ----A---- C:\WINDOWS\system32\drivers\xinputhid.sys
2016-03-12 23:38:44 ----A---- C:\WINDOWS\system32\drivers\xboxgip.sys
2016-03-12 23:38:44 ----A---- C:\WINDOWS\system32\drivers\USBSTOR.SYS
2016-03-12 23:38:44 ----A---- C:\WINDOWS\system32\drivers\USBHUB3.SYS
2016-03-12 23:38:44 ----A---- C:\WINDOWS\system32\drivers\rfcomm.sys
2016-03-12 23:38:44 ----A---- C:\WINDOWS\system32\drivers\BTHUSB.SYS
2016-03-12 23:38:44 ----A---- C:\WINDOWS\system32\drivers\bthport.sys
2016-03-12 23:38:44 ----A---- C:\WINDOWS\system32\drivers\bthenum.sys
2016-03-12 23:38:44 ----A---- C:\WINDOWS\system32\drivers\acpi.sys
2016-03-12 23:28:47 ----D---- C:\WINDOWS\SYSWOW64\drivers\en-GB
2016-03-12 23:28:46 ----D---- C:\WINDOWS\system32\drivers\en-GB
2016-03-12 23:28:46 ----D---- C:\WINDOWS\en-GB
2016-03-12 23:22:12 ----D---- C:\WINDOWS\SYSWOW64\drivers\sk-SK
2016-03-12 23:22:09 ----D---- C:\WINDOWS\system32\sk
2016-03-12 23:22:08 ----D---- C:\WINDOWS\system32\drivers\sk-SK
2016-03-12 23:22:08 ----D---- C:\WINDOWS\sk-SK
2016-03-12 23:09:27 ----D---- C:\WINDOWS\SYSWOW64\XPSViewer
2016-03-12 23:09:25 ----D---- C:\Program Files\Reference Assemblies
2016-03-12 23:09:25 ----D---- C:\Program Files\MSBuild
2016-03-12 23:09:25 ----D---- C:\Program Files (x86)\Reference Assemblies
2016-03-12 23:09:25 ----D---- C:\Program Files (x86)\MSBuild
2016-03-12 23:09:25 ----D---- C:\inetpub
2016-03-12 23:08:06 ----A---- C:\WINDOWS\SYSWOW64\TsWpfWrp.exe
2016-03-12 23:08:05 ----A---- C:\WINDOWS\SYSWOW64\PresentationNative_v0300.dll
2016-03-12 23:08:05 ----A---- C:\WINDOWS\SYSWOW64\PresentationCFFRasterizerNative_v0300.dll
2016-03-12 23:08:02 ----A---- C:\WINDOWS\system32\TsWpfWrp.exe
2016-03-12 23:08:02 ----A---- C:\WINDOWS\system32\PresentationNative_v0300.dll
2016-03-12 23:08:02 ----A---- C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2016-03-12 23:07:40 ----A---- C:\WINDOWS\system32\systemreset.exe
2016-03-12 23:07:40 ----A---- C:\WINDOWS\system32\reseteng.dll
2016-03-12 23:07:40 ----A---- C:\WINDOWS\system32\drivers\sdbus.sys
2016-03-12 23:07:40 ----A---- C:\WINDOWS\system32\drivers\dumpsd.sys
2016-03-12 14:42:52 ----D---- C:\Users\Petr\AppData\Roaming\YoutubeSoft
2016-03-12 14:42:52 ----D---- C:\ProgramData\YoutubeSoft
2016-03-12 14:36:42 ----D---- C:\Program Files (x86)\VS Revo Group
2016-03-12 14:35:06 ----D---- C:\Program Files (x86)\4KDownload
2016-03-12 13:19:42 ----D---- C:\Users\Petr\AppData\Roaming\LolClient
2016-03-12 11:41:01 ----A---- C:\WINDOWS\system32\drivers\aswE31A.tmp
2016-03-12 11:41:01 ----A---- C:\WINDOWS\system32\drivers\aswE30A.tmp
2016-03-12 11:41:01 ----A---- C:\WINDOWS\system32\drivers\aswE2F9.tmp
2016-03-12 11:41:01 ----A---- C:\WINDOWS\system32\drivers\aswE2E8.tmp
2016-03-12 11:41:01 ----A---- C:\WINDOWS\system32\drivers\aswE2A9.tmp
2016-03-12 11:41:01 ----A---- C:\WINDOWS\system32\drivers\aswE298.tmp
2016-03-12 11:41:01 ----A---- C:\WINDOWS\system32\drivers\aswE249.tmp
2016-03-12 11:41:01 ----A---- C:\WINDOWS\system32\drivers\aswE1CB.tmp
2016-03-12 11:16:46 ----D---- C:\Users\Petr\AppData\Roaming\DropboxOEM
2016-03-12 11:16:37 ----D---- C:\Users\Petr\AppData\Roaming\AVAST Software
2016-03-12 11:15:26 ----D---- C:\Users\Petr\AppData\Roaming\Identities
2016-03-11 22:29:03 ----D---- C:\ProgramData\boost_interprocess
2016-03-11 22:20:06 ----D---- C:\Users\Petr\AppData\Roaming\PhotoScape
2016-03-11 22:19:35 ----D---- C:\Program Files (x86)\PhotoScape
2016-03-11 21:56:31 ----D---- C:\Users\Petr\AppData\Roaming\Gyazo
2016-03-11 21:56:03 ----AD---- C:\Program Files (x86)\Gyazo
2016-03-11 21:36:23 ----D---- C:\Users\Petr\AppData\Roaming\PDAppFlex
2016-03-11 21:22:30 ----D---- C:\ProgramData\regid.1986-12.com.adobe
2016-03-11 21:04:58 ----D---- C:\Program Files\Common Files\Adobe
2016-03-11 20:57:32 ----D---- C:\ProgramData\Adobe
2016-03-11 20:31:21 ----D---- C:\Users\Petr\AppData\Roaming\uTorrent
2016-03-11 19:05:52 ----A---- C:\WINDOWS\system32\UtcResources.dll
2016-03-11 18:25:31 ----A---- C:\WINDOWS\system32\SkyDriveTelemetry.dll
2016-03-11 18:03:33 ----A---- C:\WINDOWS\system32\DfpCommon.dll
2016-03-11 17:54:46 ----A---- C:\WINDOWS\system32\dfp.exe
2016-03-11 16:57:14 ----A---- C:\WINDOWS\system32\wu.upgrade.ps.dll
2016-03-10 19:28:37 ----D---- C:\ProgramData\Riot Games
2016-03-10 19:27:51 ----A---- C:\WINDOWS\SYSWOW64\D3DX9_39.dll
2016-03-10 19:27:51 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_39.dll
2016-03-10 19:27:51 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_39.dll
2016-03-10 19:27:44 ----D---- C:\Riot Games
2016-03-10 19:26:49 ----D---- C:\Users\Petr\AppData\Roaming\Riot Games
2016-03-10 19:17:00 ----AD---- C:\Program Files (x86)\Hearthstone
2016-03-10 19:16:41 ----D---- C:\Users\Petr\AppData\Roaming\NVIDIA
2016-03-10 19:16:33 ----D---- C:\ProgramData\Blizzard Entertainment
2016-03-10 19:15:35 ----AD---- C:\Program Files (x86)\Battle.net
2016-03-10 19:15:04 ----D---- C:\Users\Petr\AppData\Roaming\Battle.net
2016-03-10 19:14:46 ----D---- C:\ProgramData\Battle.net
2016-03-10 16:17:11 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-utility-l1-1-0.dll
2016-03-10 16:17:11 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-time-l1-1-0.dll
2016-03-10 16:17:11 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-string-l1-1-0.dll
2016-03-10 16:17:11 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-stdio-l1-1-0.dll
2016-03-10 16:17:11 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-runtime-l1-1-0.dll
2016-03-10 16:17:11 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-process-l1-1-0.dll
2016-03-10 16:17:11 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-private-l1-1-0.dll
2016-03-10 16:17:11 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-multibyte-l1-1-0.dll
2016-03-10 16:17:11 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-math-l1-1-0.dll
2016-03-10 16:17:11 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-locale-l1-1-0.dll
2016-03-10 16:17:11 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-heap-l1-1-0.dll
2016-03-10 16:17:11 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-filesystem-l1-1-0.dll
2016-03-10 16:17:11 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-environment-l1-1-0.dll
2016-03-10 16:17:11 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-convert-l1-1-0.dll
2016-03-10 16:17:11 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-conio-l1-1-0.dll
2016-03-10 16:17:11 ----A---- C:\WINDOWS\system32\api-ms-win-crt-utility-l1-1-0.dll
2016-03-10 16:17:11 ----A---- C:\WINDOWS\system32\api-ms-win-crt-time-l1-1-0.dll
2016-03-10 16:17:11 ----A---- C:\WINDOWS\system32\api-ms-win-crt-string-l1-1-0.dll
2016-03-10 16:17:11 ----A---- C:\WINDOWS\system32\api-ms-win-crt-stdio-l1-1-0.dll
2016-03-10 16:17:11 ----A---- C:\WINDOWS\system32\api-ms-win-crt-runtime-l1-1-0.dll
2016-03-10 16:17:11 ----A---- C:\WINDOWS\system32\api-ms-win-crt-process-l1-1-0.dll
2016-03-10 16:17:11 ----A---- C:\WINDOWS\system32\api-ms-win-crt-private-l1-1-0.dll
2016-03-10 16:17:11 ----A---- C:\WINDOWS\system32\api-ms-win-crt-multibyte-l1-1-0.dll
2016-03-10 16:17:11 ----A---- C:\WINDOWS\system32\api-ms-win-crt-math-l1-1-0.dll
2016-03-10 16:17:11 ----A---- C:\WINDOWS\system32\api-ms-win-crt-locale-l1-1-0.dll
2016-03-10 16:17:11 ----A---- C:\WINDOWS\system32\api-ms-win-crt-heap-l1-1-0.dll
2016-03-10 16:17:11 ----A---- C:\WINDOWS\system32\api-ms-win-crt-filesystem-l1-1-0.dll
2016-03-10 16:17:11 ----A---- C:\WINDOWS\system32\api-ms-win-crt-environment-l1-1-0.dll
2016-03-10 16:17:11 ----A---- C:\WINDOWS\system32\api-ms-win-crt-convert-l1-1-0.dll
2016-03-10 16:17:11 ----A---- C:\WINDOWS\system32\api-ms-win-crt-conio-l1-1-0.dll
2016-03-10 15:29:34 ----D---- C:\Program Files\Common Files\AV
2016-03-09 20:55:18 ----A---- C:\WINDOWS\SYSWOW64\XAudio2_7.dll
2016-03-09 20:55:18 ----A---- C:\WINDOWS\SYSWOW64\XAPOFX1_5.dll
2016-03-09 20:55:18 ----A---- C:\WINDOWS\SYSWOW64\xactengine3_7.dll
2016-03-09 20:55:18 ----A---- C:\WINDOWS\system32\XAudio2_7.dll
2016-03-09 20:55:18 ----A---- C:\WINDOWS\system32\XAPOFX1_5.dll
2016-03-09 20:55:18 ----A---- C:\WINDOWS\system32\xactengine3_7.dll
2016-03-09 20:55:17 ----A---- C:\WINDOWS\SYSWOW64\d3dcsx_43.dll
2016-03-09 20:55:17 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_43.dll
2016-03-09 20:55:17 ----A---- C:\WINDOWS\system32\d3dcsx_43.dll
2016-03-09 20:55:17 ----A---- C:\WINDOWS\system32\D3DCompiler_43.dll
2016-03-09 20:55:14 ----A---- C:\WINDOWS\SYSWOW64\XAudio2_6.dll
2016-03-09 20:55:14 ----A---- C:\WINDOWS\SYSWOW64\XAPOFX1_4.dll
2016-03-09 20:55:14 ----A---- C:\WINDOWS\SYSWOW64\xactengine3_6.dll
2016-03-09 20:55:14 ----A---- C:\WINDOWS\SYSWOW64\X3DAudio1_7.dll
2016-03-09 20:55:14 ----A---- C:\WINDOWS\system32\XAudio2_6.dll
2016-03-09 20:55:14 ----A---- C:\WINDOWS\system32\XAPOFX1_4.dll
2016-03-09 20:55:14 ----A---- C:\WINDOWS\system32\xactengine3_6.dll
2016-03-09 20:55:14 ----A---- C:\WINDOWS\system32\X3DAudio1_7.dll
2016-03-09 20:55:13 ----A---- C:\WINDOWS\SYSWOW64\XAudio2_5.dll
2016-03-09 20:55:13 ----A---- C:\WINDOWS\system32\XAudio2_5.dll
2016-03-09 20:55:12 ----A---- C:\WINDOWS\SYSWOW64\xactengine3_5.dll
2016-03-09 20:55:12 ----A---- C:\WINDOWS\system32\xactengine3_5.dll
2016-03-09 20:55:11 ----A---- C:\WINDOWS\SYSWOW64\d3dcsx_42.dll
2016-03-09 20:55:11 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_42.dll
2016-03-09 20:55:11 ----A---- C:\WINDOWS\system32\d3dcsx_42.dll
2016-03-09 20:55:11 ----A---- C:\WINDOWS\system32\D3DCompiler_42.dll
2016-03-09 20:55:10 ----A---- C:\WINDOWS\SYSWOW64\D3DX9_42.dll
2016-03-09 20:55:10 ----A---- C:\WINDOWS\SYSWOW64\d3dx11_42.dll
2016-03-09 20:55:10 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_42.dll
2016-03-09 20:55:10 ----A---- C:\WINDOWS\system32\D3DX9_42.dll
2016-03-09 20:55:10 ----A---- C:\WINDOWS\system32\d3dx11_42.dll
2016-03-09 20:55:10 ----A---- C:\WINDOWS\system32\d3dx10_42.dll
2016-03-09 20:55:09 ----A---- C:\WINDOWS\SYSWOW64\D3DX9_41.dll
2016-03-09 20:55:09 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_41.dll
2016-03-09 20:55:09 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_41.dll
2016-03-09 20:55:09 ----A---- C:\WINDOWS\system32\D3DX9_41.dll
2016-03-09 20:55:09 ----A---- C:\WINDOWS\system32\d3dx10_41.dll
2016-03-09 20:55:09 ----A---- C:\WINDOWS\system32\D3DCompiler_41.dll
2016-03-09 20:55:08 ----A---- C:\WINDOWS\SYSWOW64\XAudio2_4.dll
2016-03-09 20:55:08 ----A---- C:\WINDOWS\SYSWOW64\XAPOFX1_3.dll
2016-03-09 20:55:08 ----A---- C:\WINDOWS\SYSWOW64\xactengine3_4.dll
2016-03-09 20:55:08 ----A---- C:\WINDOWS\SYSWOW64\X3DAudio1_6.dll
2016-03-09 20:55:08 ----A---- C:\WINDOWS\system32\XAudio2_4.dll
2016-03-09 20:55:08 ----A---- C:\WINDOWS\system32\XAPOFX1_3.dll
2016-03-09 20:55:08 ----A---- C:\WINDOWS\system32\xactengine3_4.dll
2016-03-09 20:55:08 ----A---- C:\WINDOWS\system32\X3DAudio1_6.dll
2016-03-09 20:55:07 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_40.dll
2016-03-09 20:55:07 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_40.dll
2016-03-09 20:55:07 ----A---- C:\WINDOWS\system32\d3dx10_40.dll
2016-03-09 20:55:07 ----A---- C:\WINDOWS\system32\D3DCompiler_40.dll
2016-03-09 20:55:06 ----A---- C:\WINDOWS\SYSWOW64\XAudio2_3.dll
2016-03-09 20:55:06 ----A---- C:\WINDOWS\SYSWOW64\XAPOFX1_2.dll
2016-03-09 20:55:06 ----A---- C:\WINDOWS\SYSWOW64\xactengine3_3.dll
2016-03-09 20:55:06 ----A---- C:\WINDOWS\SYSWOW64\D3DX9_40.dll
2016-03-09 20:55:06 ----A---- C:\WINDOWS\system32\XAudio2_3.dll
2016-03-09 20:55:06 ----A---- C:\WINDOWS\system32\XAPOFX1_2.dll
2016-03-09 20:55:06 ----A---- C:\WINDOWS\system32\xactengine3_3.dll
2016-03-09 20:55:06 ----A---- C:\WINDOWS\system32\D3DX9_40.dll
2016-03-09 20:55:05 ----A---- C:\WINDOWS\SYSWOW64\XAudio2_2.dll
2016-03-09 20:55:05 ----A---- C:\WINDOWS\SYSWOW64\XAPOFX1_1.dll
2016-03-09 20:55:05 ----A---- C:\WINDOWS\SYSWOW64\X3DAudio1_5.dll
2016-03-09 20:55:05 ----A---- C:\WINDOWS\system32\XAudio2_2.dll
2016-03-09 20:55:05 ----A---- C:\WINDOWS\system32\XAPOFX1_1.dll
2016-03-09 20:55:05 ----A---- C:\WINDOWS\system32\X3DAudio1_5.dll
2016-03-09 20:55:04 ----A---- C:\WINDOWS\SYSWOW64\xactengine3_2.dll
2016-03-09 20:55:04 ----A---- C:\WINDOWS\system32\xactengine3_2.dll
2016-03-09 20:55:04 ----A---- C:\WINDOWS\system32\d3dx10_39.dll
2016-03-09 20:55:04 ----A---- C:\WINDOWS\system32\D3DCompiler_39.dll
2016-03-09 20:55:03 ----A---- C:\WINDOWS\SYSWOW64\XAudio2_1.dll
2016-03-09 20:55:03 ----A---- C:\WINDOWS\SYSWOW64\XAPOFX1_0.dll
2016-03-09 20:55:03 ----A---- C:\WINDOWS\system32\XAudio2_1.dll
2016-03-09 20:55:03 ----A---- C:\WINDOWS\system32\XAPOFX1_0.dll
2016-03-09 20:55:03 ----A---- C:\WINDOWS\system32\D3DX9_39.dll
2016-03-09 20:55:02 ----A---- C:\WINDOWS\SYSWOW64\xactengine3_1.dll
2016-03-09 20:55:02 ----A---- C:\WINDOWS\SYSWOW64\X3DAudio1_4.dll
2016-03-09 20:55:02 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_38.dll
2016-03-09 20:55:02 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_38.dll
2016-03-09 20:55:02 ----A---- C:\WINDOWS\system32\xactengine3_1.dll
2016-03-09 20:55:02 ----A---- C:\WINDOWS\system32\X3DAudio1_4.dll
2016-03-09 20:55:02 ----A---- C:\WINDOWS\system32\d3dx10_38.dll
2016-03-09 20:55:02 ----A---- C:\WINDOWS\system32\D3DCompiler_38.dll
2016-03-09 20:55:01 ----A---- C:\WINDOWS\SYSWOW64\D3DX9_38.dll
2016-03-09 20:55:01 ----A---- C:\WINDOWS\system32\D3DX9_38.dll
2016-03-09 20:55:00 ----A---- C:\WINDOWS\SYSWOW64\XAudio2_0.dll
2016-03-09 20:55:00 ----A---- C:\WINDOWS\SYSWOW64\xactengine3_0.dll
2016-03-09 20:55:00 ----A---- C:\WINDOWS\SYSWOW64\X3DAudio1_3.dll
2016-03-09 20:55:00 ----A---- C:\WINDOWS\system32\XAudio2_0.dll
2016-03-09 20:55:00 ----A---- C:\WINDOWS\system32\xactengine3_0.dll
2016-03-09 20:55:00 ----A---- C:\WINDOWS\system32\X3DAudio1_3.dll
2016-03-09 20:54:59 ----A---- C:\WINDOWS\SYSWOW64\D3DX9_37.dll
2016-03-09 20:54:59 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_37.dll
2016-03-09 20:54:59 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_37.dll
2016-03-09 20:54:59 ----A---- C:\WINDOWS\system32\D3DX9_37.dll
2016-03-09 20:54:59 ----A---- C:\WINDOWS\system32\d3dx10_37.dll
2016-03-09 20:54:59 ----A---- C:\WINDOWS\system32\D3DCompiler_37.dll
2016-03-09 20:54:58 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_10.dll
2016-03-09 20:54:58 ----A---- C:\WINDOWS\system32\xactengine2_10.dll
2016-03-09 20:54:57 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_36.dll
2016-03-09 20:54:57 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_36.dll
2016-03-09 20:54:57 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_36.dll
2016-03-09 20:54:57 ----A---- C:\WINDOWS\system32\d3dx9_36.dll
2016-03-09 20:54:57 ----A---- C:\WINDOWS\system32\d3dx10_36.dll
2016-03-09 20:54:57 ----A---- C:\WINDOWS\system32\D3DCompiler_36.dll
2016-03-09 20:54:56 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_9.dll
2016-03-09 20:54:56 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_35.dll
2016-03-09 20:54:56 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_35.dll
2016-03-09 20:54:56 ----A---- C:\WINDOWS\system32\xactengine2_9.dll
2016-03-09 20:54:56 ----A---- C:\WINDOWS\system32\d3dx10_35.dll
2016-03-09 20:54:56 ----A---- C:\WINDOWS\system32\D3DCompiler_35.dll
2016-03-09 20:54:55 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_8.dll
2016-03-09 20:54:55 ----A---- C:\WINDOWS\SYSWOW64\X3DAudio1_2.dll
2016-03-09 20:54:55 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_35.dll
2016-03-09 20:54:55 ----A---- C:\WINDOWS\system32\xactengine2_8.dll
2016-03-09 20:54:55 ----A---- C:\WINDOWS\system32\X3DAudio1_2.dll
2016-03-09 20:54:55 ----A---- C:\WINDOWS\system32\d3dx9_35.dll
2016-03-09 20:54:54 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_34.dll
2016-03-09 20:54:54 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_34.dll
2016-03-09 20:54:54 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_34.dll
2016-03-09 20:54:54 ----A---- C:\WINDOWS\system32\d3dx9_34.dll
2016-03-09 20:54:54 ----A---- C:\WINDOWS\system32\d3dx10_34.dll
2016-03-09 20:54:54 ----A---- C:\WINDOWS\system32\D3DCompiler_34.dll
2016-03-09 20:54:53 ----A---- C:\WINDOWS\SYSWOW64\xinput1_3.dll
2016-03-09 20:54:53 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_7.dll
2016-03-09 20:54:53 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_33.dll
2016-03-09 20:54:53 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_33.dll
2016-03-09 20:54:53 ----A---- C:\WINDOWS\system32\xinput1_3.dll
2016-03-09 20:54:53 ----A---- C:\WINDOWS\system32\xactengine2_7.dll
2016-03-09 20:54:53 ----A---- C:\WINDOWS\system32\d3dx10_33.dll
2016-03-09 20:54:53 ----A---- C:\WINDOWS\system32\D3DCompiler_33.dll
2016-03-09 20:54:52 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_6.dll
2016-03-09 20:54:52 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_33.dll
2016-03-09 20:54:52 ----A---- C:\WINDOWS\system32\xactengine2_6.dll
2016-03-09 20:54:52 ----A---- C:\WINDOWS\system32\d3dx9_33.dll
2016-03-09 20:54:51 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_5.dll
2016-03-09 20:54:51 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_32.dll
2016-03-09 20:54:51 ----A---- C:\WINDOWS\SYSWOW64\d3dx10.dll
2016-03-09 20:54:51 ----A---- C:\WINDOWS\system32\xactengine2_5.dll
2016-03-09 20:54:51 ----A---- C:\WINDOWS\system32\d3dx9_32.dll
2016-03-09 20:54:51 ----A---- C:\WINDOWS\system32\d3dx10.dll
2016-03-09 20:54:50 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_4.dll
2016-03-09 20:54:50 ----A---- C:\WINDOWS\SYSWOW64\x3daudio1_1.dll
2016-03-09 20:54:50 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_31.dll
2016-03-09 20:54:50 ----A---- C:\WINDOWS\system32\xactengine2_4.dll
2016-03-09 20:54:50 ----A---- C:\WINDOWS\system32\x3daudio1_1.dll
2016-03-09 20:54:50 ----A---- C:\WINDOWS\system32\d3dx9_31.dll
2016-03-09 20:54:49 ----A---- C:\WINDOWS\SYSWOW64\xinput1_2.dll
2016-03-09 20:54:49 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_3.dll
2016-03-09 20:54:49 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_2.dll
2016-03-09 20:54:49 ----A---- C:\WINDOWS\system32\xinput1_2.dll
2016-03-09 20:54:49 ----A---- C:\WINDOWS\system32\xactengine2_3.dll
2016-03-09 20:54:49 ----A---- C:\WINDOWS\system32\xactengine2_2.dll
2016-03-09 20:54:48 ----A---- C:\WINDOWS\SYSWOW64\xinput1_1.dll
2016-03-09 20:54:48 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_1.dll
2016-03-09 20:54:48 ----A---- C:\WINDOWS\system32\xinput1_1.dll
2016-03-09 20:54:48 ----A---- C:\WINDOWS\system32\xactengine2_1.dll
2016-03-09 20:54:44 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_30.dll
2016-03-09 20:54:44 ----A---- C:\WINDOWS\system32\d3dx9_30.dll
2016-03-09 20:54:43 ----A---- C:\WINDOWS\SYSWOW64\xactengine2_0.dll
2016-03-09 20:54:43 ----A---- C:\WINDOWS\SYSWOW64\x3daudio1_0.dll
2016-03-09 20:54:43 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_29.dll
2016-03-09 20:54:43 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_28.dll
2016-03-09 20:54:43 ----A---- C:\WINDOWS\system32\xactengine2_0.dll
2016-03-09 20:54:43 ----A---- C:\WINDOWS\system32\x3daudio1_0.dll
2016-03-09 20:54:43 ----A---- C:\WINDOWS\system32\d3dx9_29.dll
2016-03-09 20:54:43 ----A---- C:\WINDOWS\system32\d3dx9_28.dll
2016-03-09 20:54:42 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_27.dll
2016-03-09 20:54:42 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_26.dll
2016-03-09 20:54:42 ----A---- C:\WINDOWS\system32\d3dx9_27.dll
2016-03-09 20:54:42 ----A---- C:\WINDOWS\system32\d3dx9_26.dll
2016-03-09 20:54:41 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_25.dll
2016-03-09 20:54:41 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_24.dll
2016-03-09 20:54:41 ----A---- C:\WINDOWS\system32\d3dx9_25.dll
2016-03-09 20:54:41 ----A---- C:\WINDOWS\system32\d3dx9_24.dll
2016-03-09 20:29:46 ----D---- C:\Users\Petr\AppData\Roaming\hpqlog
2016-03-09 20:18:59 ----D---- C:\Users\Petr\AppData\Roaming\AIMP
2016-03-09 20:18:52 ----D---- C:\Program Files (x86)\AIMP
2016-03-09 20:08:49 ----AD---- C:\Program Files\ParkControl
2016-03-09 19:53:11 ----D---- C:\Users\Petr\AppData\Roaming\TS3Client
2016-03-09 19:51:43 ----AD---- C:\Program Files\TeamSpeak 3 Client
2016-03-09 19:42:33 ----D---- C:\Program Files (x86)\Steam
2016-03-09 19:39:59 ----D---- C:\Program Files (x86)\Google
2016-03-09 19:29:36 ----D---- C:\Users\Petr\AppData\Roaming\Hewlett-Packard
2016-03-09 19:27:53 ----D---- C:\Users\Petr\AppData\Roaming\Macromedia
2016-03-09 19:25:29 ----D---- C:\Users\Petr\AppData\Roaming\Adobe
2016-03-09 19:25:18 ----D---- C:\Users\Petr\AppData\Roaming\Synaptics
2016-03-09 19:25:13 ----A---- C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2016-03-09 19:24:56 ----D---- C:\WINDOWS\SoftwareDistribution
2016-03-09 18:18:51 ----SHD---- C:\ProgramData\Šablony
2016-03-09 18:18:51 ----SHD---- C:\ProgramData\Plocha
2016-03-09 18:18:51 ----SHD---- C:\ProgramData\Nabídka Start
2016-03-09 18:18:51 ----SHD---- C:\ProgramData\Dokumenty
2016-03-09 18:18:51 ----SHD---- C:\ProgramData\Data aplikací
======List of files/folders modified in the last 1 month======
2016-04-05 22:51:22 ----RD---- C:\Program Files
2016-04-05 22:51:14 ----D---- C:\WINDOWS\Temp
2016-04-05 22:47:50 ----D---- C:\WINDOWS\Tasks
2016-04-05 22:44:10 ----D---- C:\WINDOWS\system32\Tasks
2016-04-05 22:43:39 ----SHD---- C:\System Volume Information
2016-04-05 22:40:16 ----HD---- C:\ProgramData
2016-04-05 22:40:07 ----D---- C:\Program Files (x86)\Common Files
2016-04-05 22:39:05 ----D---- C:\WINDOWS\system32\sru
2016-04-05 22:38:49 ----D---- C:\WINDOWS\SYSWOW64\drivers
2016-04-05 22:38:44 ----RD---- C:\Program Files (x86)
2016-04-05 22:22:48 ----D---- C:\WINDOWS\system32\config
2016-04-05 22:15:33 ----D---- C:\WINDOWS\Microsoft.NET
2016-04-05 14:39:03 ----HD---- C:\Program Files\WindowsApps
2016-04-04 20:39:39 ----RSD---- C:\WINDOWS\Fonts
2016-04-03 09:35:15 ----D---- C:\WINDOWS\SysWOW64
2016-04-03 09:34:42 ----D---- C:\WINDOWS\INF
2016-04-01 17:57:29 ----SHD---- C:\WINDOWS\Installer
2016-04-01 14:20:38 ----D---- C:\WINDOWS\AppReadiness
2016-03-31 22:02:14 ----D---- C:\WINDOWS\System32
2016-03-31 21:58:42 ----D---- C:\WINDOWS\system32\drivers
2016-03-31 21:58:38 ----D---- C:\WINDOWS\system32\DriverStore
2016-03-31 18:49:57 ----D---- C:\Windows
2016-03-31 18:48:59 ----RSD---- C:\WINDOWS\assembly
2016-03-30 15:35:51 ----D---- C:\WINDOWS\system32\drivers\UMDF
2016-03-29 21:23:15 ----D---- C:\WINDOWS\Logs
2016-03-26 22:44:45 ----D---- C:\WINDOWS\system32\catroot2
2016-03-23 15:29:10 ----D---- C:\WINDOWS\system32\WDI
2016-03-23 00:08:47 ----D---- C:\WINDOWS\WinSxS
2016-03-23 00:06:51 ----D---- C:\WINDOWS\OCR
2016-03-23 00:04:42 ----D---- C:\WINDOWS\CbsTemp
2016-03-18 20:24:00 ----D---- C:\WINDOWS\debug
2016-03-15 14:49:50 ----D---- C:\ProgramData\AVAST Software
2016-03-15 14:49:50 ----D---- C:\Program Files\AVAST Software
2016-03-13 23:50:46 ----HD---- C:\WINDOWS\ELAMBKUP
2016-03-13 12:01:31 ----D---- C:\WINDOWS\system32\restore
2016-03-13 10:30:42 ----D---- C:\WINDOWS\system32\CatRoot
2016-03-13 09:57:46 ----D---- C:\Logs
2016-03-13 09:48:30 ----D---- C:\WINDOWS\appcompat
2016-03-13 00:29:19 ----D---- C:\WINDOWS\rescache
2016-03-13 00:24:23 ----SD---- C:\ProgramData\Microsoft
2016-03-13 00:23:19 ----D---- C:\Program Files\Windows NT
2016-03-13 00:23:01 ----D---- C:\WINDOWS\system32\WinBioDatabase
2016-03-13 00:21:46 ----D---- C:\WINDOWS\Registration
2016-03-13 00:16:36 ----D---- C:\WINDOWS\system32\LogFiles
2016-03-13 00:16:35 ----D---- C:\WINDOWS\system32\wbem
2016-03-13 00:16:31 ----D---- C:\WINDOWS\system32\drivers\etc
2016-03-13 00:10:51 ----AD---- C:\ProgramData\regid.1991-06.com.microsoft
2016-03-13 00:05:27 ----D---- C:\WINDOWS\SYSWOW64\zh-TW
2016-03-13 00:05:27 ----D---- C:\WINDOWS\SYSWOW64\zh-HK
2016-03-13 00:05:27 ----D---- C:\WINDOWS\SYSWOW64\zh-CN
2016-03-13 00:05:26 ----D---- C:\WINDOWS\SYSWOW64\uk-UA
2016-03-13 00:05:26 ----D---- C:\WINDOWS\SYSWOW64\tr-TR
2016-03-13 00:05:26 ----D---- C:\WINDOWS\SYSWOW64\th-TH
2016-03-13 00:05:26 ----D---- C:\WINDOWS\SYSWOW64\sv-SE
2016-03-13 00:05:26 ----D---- C:\WINDOWS\SYSWOW64\sr-Latn-RS
2016-03-13 00:05:25 ----D---- C:\WINDOWS\SYSWOW64\sl-SI
2016-03-13 00:05:25 ----D---- C:\WINDOWS\SYSWOW64\slmgr
2016-03-13 00:05:25 ----D---- C:\WINDOWS\SYSWOW64\ru-RU
2016-03-13 00:05:25 ----D---- C:\WINDOWS\SYSWOW64\ro-RO
2016-03-13 00:05:25 ----D---- C:\WINDOWS\SYSWOW64\pt-PT
2016-03-13 00:05:25 ----D---- C:\WINDOWS\SYSWOW64\pt-BR
2016-03-13 00:05:25 ----D---- C:\WINDOWS\SYSWOW64\pl-PL
2016-03-13 00:05:24 ----D---- C:\WINDOWS\SYSWOW64\nl-NL
2016-03-13 00:05:24 ----D---- C:\WINDOWS\SYSWOW64\nb-NO
2016-03-13 00:05:24 ----D---- C:\WINDOWS\SYSWOW64\lv-LV
2016-03-13 00:05:24 ----D---- C:\WINDOWS\SYSWOW64\lt-LT
2016-03-13 00:05:24 ----D---- C:\WINDOWS\SYSWOW64\ko-KR
2016-03-13 00:05:24 ----D---- C:\WINDOWS\SYSWOW64\ja-JP
2016-03-13 00:05:24 ----D---- C:\WINDOWS\SYSWOW64\it-IT
2016-03-13 00:05:23 ----D---- C:\WINDOWS\SYSWOW64\hu-HU
2016-03-13 00:05:23 ----D---- C:\WINDOWS\SYSWOW64\hr-HR
2016-03-13 00:05:23 ----D---- C:\WINDOWS\SYSWOW64\he-IL
2016-03-13 00:05:23 ----D---- C:\WINDOWS\SYSWOW64\fr-FR
2016-03-13 00:05:23 ----D---- C:\WINDOWS\SYSWOW64\fi-FI
2016-03-13 00:05:22 ----D---- C:\WINDOWS\SYSWOW64\et-EE
2016-03-13 00:05:22 ----D---- C:\WINDOWS\SYSWOW64\es-ES
2016-03-13 00:05:22 ----D---- C:\WINDOWS\SYSWOW64\en-US
2016-03-13 00:05:22 ----D---- C:\WINDOWS\SYSWOW64\el-GR
2016-03-13 00:05:21 ----D---- C:\WINDOWS\SYSWOW64\de-DE
2016-03-13 00:05:21 ----D---- C:\WINDOWS\SYSWOW64\da-DK
2016-03-13 00:05:21 ----D---- C:\WINDOWS\SYSWOW64\cs-CZ
2016-03-13 00:05:20 ----D---- C:\WINDOWS\SYSWOW64\bg-BG
2016-03-13 00:05:20 ----D---- C:\WINDOWS\SYSWOW64\ar-SA
2016-03-13 00:05:20 ----AD---- C:\WINDOWS\SYSWOW64\Adobe
2016-03-13 00:05:17 ----D---- C:\WINDOWS\system32\zh-TW
2016-03-13 00:05:17 ----D---- C:\WINDOWS\system32\zh-HK
2016-03-13 00:05:17 ----D---- C:\WINDOWS\system32\zh-CN
2016-03-13 00:05:14 ----D---- C:\WINDOWS\system32\WindowsInternal.Inbox.Shared
2016-03-13 00:05:14 ----D---- C:\WINDOWS\system32\WindowsInternal.Inbox.Media.Shared
2016-03-13 00:05:14 ----D---- C:\WINDOWS\system32\uk-UA
2016-03-13 00:05:14 ----D---- C:\WINDOWS\system32\tr-TR
2016-03-13 00:05:13 ----D---- C:\WINDOWS\system32\th-TH
2016-03-13 00:05:13 ----D---- C:\WINDOWS\system32\sv-SE
2016-03-13 00:05:13 ----D---- C:\WINDOWS\system32\sr-Latn-RS
2016-03-13 00:05:11 ----D---- C:\WINDOWS\system32\sl-SI
2016-03-13 00:05:11 ----D---- C:\WINDOWS\system32\slmgr
2016-03-13 00:05:10 ----D---- C:\WINDOWS\system32\ru-RU
2016-03-13 00:05:10 ----D---- C:\WINDOWS\system32\ro-RO
2016-03-13 00:05:10 ----D---- C:\WINDOWS\system32\pt-PT
2016-03-13 00:05:10 ----D---- C:\WINDOWS\system32\pt-BR
2016-03-13 00:05:10 ----D---- C:\WINDOWS\system32\pl-PL
2016-03-13 00:05:09 ----D---- C:\WINDOWS\system32\oobe
2016-03-13 00:05:02 ----D---- C:\WINDOWS\system32\nl-NL
2016-03-13 00:05:02 ----D---- C:\WINDOWS\system32\nb-NO
2016-03-13 00:05:02 ----D---- C:\WINDOWS\system32\migration
2016-03-13 00:05:02 ----D---- C:\WINDOWS\system32\lv-LV
2016-03-13 00:05:02 ----D---- C:\WINDOWS\system32\lt-LT
2016-03-13 00:05:02 ----D---- C:\WINDOWS\system32\ko-KR
2016-03-13 00:05:02 ----D---- C:\WINDOWS\system32\ja-JP
2016-03-13 00:05:02 ----D---- C:\WINDOWS\system32\it-IT
2016-03-13 00:05:02 ----D---- C:\WINDOWS\system32\InputMethod
2016-03-13 00:05:01 ----D---- C:\WINDOWS\system32\hu-HU
2016-03-13 00:05:01 ----D---- C:\WINDOWS\system32\hr-HR
2016-03-13 00:05:01 ----D---- C:\WINDOWS\system32\he-IL
2016-03-13 00:05:00 ----D---- C:\WINDOWS\system32\fr-FR
2016-03-13 00:05:00 ----D---- C:\WINDOWS\system32\fi-FI
2016-03-13 00:05:00 ----D---- C:\WINDOWS\system32\et-EE
2016-03-13 00:05:00 ----D---- C:\WINDOWS\system32\es-ES
2016-03-13 00:05:00 ----D---- C:\WINDOWS\system32\en-US
2016-03-13 00:04:59 ----DC---- C:\WINDOWS\system32\DRVSTORE
2016-03-13 00:04:59 ----D---- C:\WINDOWS\system32\el-GR
2016-03-13 00:04:58 ----D---- C:\WINDOWS\system32\de-DE
2016-03-13 00:04:57 ----D---- C:\WINDOWS\system32\da-DK
2016-03-13 00:04:57 ----D---- C:\WINDOWS\system32\cs-CZ
2016-03-13 00:02:41 ----D---- C:\WINDOWS\system32\bg-BG
2016-03-13 00:02:41 ----D---- C:\WINDOWS\system32\ar-SA
2016-03-13 00:02:35 ----D---- C:\WINDOWS\MediaViewer
2016-03-13 00:02:32 ----D---- C:\WINDOWS\InputMethod
2016-03-13 00:02:23 ----D---- C:\WINDOWS\ADFS
2016-03-13 00:02:20 ----RD---- C:\Users
2016-03-13 00:02:12 ----D---- C:\Program Files (x86)\Windows Mail
2016-03-13 00:02:10 ----AD---- C:\Program Files (x86)\Hewlett-Packard
2016-03-13 00:02:07 ----D---- C:\Program Files\Windows Mail
2016-03-13 00:02:04 ----D---- C:\Program Files\Common Files\microsoft shared
2016-03-13 00:02:04 ----D---- C:\Program Files\Common Files
2016-03-13 00:01:33 ----D---- C:\WINDOWS\system32\Recovery
2016-03-12 23:59:25 ----D---- C:\WINDOWS\system32\CodeIntegrity
2016-03-12 23:58:09 ----D---- C:\WINDOWS\system32\Sysprep
2016-03-12 23:55:30 ----D---- C:\WINDOWS\Help
2016-03-12 23:41:21 ----D---- C:\WINDOWS\SYSWOW64\sk-SK
2016-03-12 23:41:21 ----D---- C:\WINDOWS\SYSWOW64\migration
2016-03-12 23:41:21 ----D---- C:\WINDOWS\SYSWOW64\en-GB
2016-03-12 23:41:21 ----D---- C:\WINDOWS\SYSWOW64\Dism
2016-03-12 23:41:21 ----D---- C:\WINDOWS\system32\WinBioPlugIns
2016-03-12 23:41:21 ----D---- C:\WINDOWS\system32\SystemResetPlatform
2016-03-12 23:41:21 ----D---- C:\WINDOWS\system32\sk-SK
2016-03-12 23:41:20 ----RSD---- C:\WINDOWS\Media
2016-03-12 23:41:20 ----RD---- C:\WINDOWS\PurchaseDialog
2016-03-12 23:41:20 ----D---- C:\WINDOWS\system32\en-GB
2016-03-12 23:41:20 ----D---- C:\WINDOWS\system32\Dism
2016-03-12 23:41:20 ----D---- C:\WINDOWS\system32\Boot
2016-03-12 23:41:20 ----D---- C:\WINDOWS\system32\appraiser
2016-03-12 23:41:20 ----D---- C:\WINDOWS\bcastdvr
2016-03-12 23:41:20 ----D---- C:\WINDOWS\AppPatch
2016-03-12 23:41:20 ----D---- C:\Program Files\Windows Portable Devices
2016-03-12 23:41:20 ----D---- C:\Program Files\Windows Multimedia Platform
2016-03-12 23:41:20 ----D---- C:\Program Files\Windows Media Player
2016-03-12 23:41:20 ----D---- C:\Program Files\Windows Journal
2016-03-12 23:41:20 ----D---- C:\Program Files\Internet Explorer
2016-03-12 23:41:20 ----D---- C:\Program Files (x86)\Windows Portable Devices
2016-03-12 23:41:20 ----D---- C:\Program Files (x86)\Windows Multimedia Platform
2016-03-12 23:41:20 ----D---- C:\Program Files (x86)\Internet Explorer
2016-03-12 23:28:48 ----SD---- C:\WINDOWS\SYSWOW64\F12
2016-03-12 23:28:48 ----D---- C:\WINDOWS\SYSWOW64\WCN
2016-03-12 23:28:48 ----D---- C:\WINDOWS\SYSWOW64\wbem
2016-03-12 23:28:48 ----D---- C:\WINDOWS\SYSWOW64\oobe
2016-03-12 23:28:47 ----SD---- C:\WINDOWS\system32\F12
2016-03-12 23:28:47 ----D---- C:\WINDOWS\SYSWOW64\drivers\UMDF
2016-03-12 23:28:47 ----D---- C:\WINDOWS\system32\WCN
2016-03-12 23:28:47 ----D---- C:\WINDOWS\system32\migwiz
2016-03-12 23:28:46 ----RD---- C:\WINDOWS\MiracastView
2016-03-12 23:28:46 ----RD---- C:\WINDOWS\ImmersiveControlPanel
2016-03-12 23:28:46 ----RD---- C:\WINDOWS\DevicesFlow
2016-03-12 23:28:46 ----D---- C:\WINDOWS\servicing
2016-03-12 23:28:46 ----D---- C:\WINDOWS\PolicyDefinitions
2016-03-12 23:28:46 ----D---- C:\WINDOWS\IME
2016-03-12 23:28:46 ----D---- C:\Program Files\Windows Photo Viewer
2016-03-12 23:28:46 ----D---- C:\Program Files\Windows Defender
2016-03-12 23:28:46 ----D---- C:\Program Files\Common Files\System
2016-03-12 23:28:46 ----D---- C:\Program Files (x86)\Windows Photo Viewer
2016-03-12 23:28:46 ----D---- C:\Program Files (x86)\Windows Media Player
2016-03-12 23:28:46 ----D---- C:\Program Files (x86)\Windows Defender
2016-03-12 23:22:13 ----D---- C:\WINDOWS\SYSWOW64\winrm
2016-03-12 23:22:12 ----SD---- C:\WINDOWS\SYSWOW64\DiagSvcs
2016-03-12 23:22:12 ----D---- C:\WINDOWS\SYSWOW64\Printing_Admin_Scripts
2016-03-12 23:22:12 ----D---- C:\WINDOWS\SYSWOW64\en
2016-03-12 23:22:12 ----D---- C:\WINDOWS\SYSWOW64\drivers\en-US
2016-03-12 23:22:12 ----D---- C:\WINDOWS\system32\winrm
2016-03-12 23:22:09 ----D---- C:\WINDOWS\system32\Printing_Admin_Scripts
2016-03-12 23:22:09 ----D---- C:\WINDOWS\system32\en
2016-03-12 23:22:08 ----SD---- C:\WINDOWS\system32\DiagSvcs
2016-03-12 23:22:08 ----D---- C:\WINDOWS\system32\drivers\en-US
2016-03-12 23:22:08 ----D---- C:\WINDOWS\en-US
2016-03-12 23:13:08 ----SD---- C:\WINDOWS\system32\Microsoft
2016-03-12 23:09:27 ----D---- C:\WINDOWS\SYSWOW64\MUI
2016-03-12 23:09:27 ----D---- C:\WINDOWS\SYSWOW64\inetsrv
2016-03-12 23:09:27 ----D---- C:\WINDOWS\system32\MUI
2016-03-12 23:09:27 ----D---- C:\WINDOWS\system32\inetsrv
2016-03-12 23:09:16 ----A---- C:\WINDOWS\system32\wamregps.dll
2016-03-12 23:09:16 ----A---- C:\WINDOWS\system32\iisRtl.dll
2016-03-12 23:09:16 ----A---- C:\WINDOWS\system32\admwprox.dll
2016-03-12 23:09:15 ----A---- C:\WINDOWS\system32\iisrstap.dll
2016-03-12 23:09:15 ----A---- C:\WINDOWS\system32\iisreset.exe
2016-03-12 23:09:15 ----A---- C:\WINDOWS\system32\ahadmin.dll
2016-03-12 23:09:11 ----A---- C:\WINDOWS\SYSWOW64\wamregps.dll
2016-03-12 23:09:11 ----A---- C:\WINDOWS\SYSWOW64\iisRtl.dll
2016-03-12 23:09:11 ----A---- C:\WINDOWS\SYSWOW64\admwprox.dll
2016-03-12 23:09:10 ----A---- C:\WINDOWS\SYSWOW64\iisrstap.dll
2016-03-12 23:09:10 ----A---- C:\WINDOWS\SYSWOW64\iisreset.exe
2016-03-12 23:09:10 ----A---- C:\WINDOWS\SYSWOW64\ahadmin.dll
2016-03-12 22:47:23 ----HD---- C:\$WINDOWS.~BT
2016-03-12 11:33:39 ----D---- C:\ProgramData\McAfee
2016-03-12 11:33:39 ----D---- C:\Program Files\Common Files\McAfee
2016-03-12 11:11:38 ----D---- C:\Program Files (x86)\McAfee
2016-03-12 10:58:15 ----RD---- C:\WINDOWS\ToastData
2016-03-10 16:17:22 ----D---- C:\ProgramData\Package Cache
2016-03-09 19:25:48 ----SHD---- C:\$Recycle.Bin
2016-03-09 19:25:18 ----HD---- C:\SYSTEM.SAV
2016-03-08 09:12:26 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 MBI;@oem4.inf,%MBI.SVCDESC%;Intel(R) Sideband Fabric Device Service; C:\WINDOWS\System32\drivers\MBI.sys [2014-01-23 29464]