Stránka 1 z 1

Samovolné restartování notebooku

Napsal: 27 dub 2016 17:51
od Stoone
Čau, v posledních dnech se mi notebook nekolikrat denne samovolne zniceho nic vypne a pak znova zapne. Obávám se jestli není zavirovaný. Žádné hlášky to nepíše. Prikladam log z RSIT. Predem diky za pomoc.
  • Logfile of random's system information tool 1.10 (written by random/random)
    Run by Ondra K at 2016-04-27 18:48:50
    Microsoft Windows 10 Home
    System drive C: has 454 GB (50%) free of 913 GB
    Total RAM: 7375 MB (66% free)

    Logfile of Trend Micro HijackThis v2.0.4
    Scan saved at 18:48:58, on 27. 4. 2016
    Platform: Unknown Windows (WinNT 6.02.1008)
    MSIE: Internet Explorer v11.0 (11.00.10586.0020)
    Boot mode: Normal

    Running processes:
    C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkypeHost.exe
    C:\Users\Ondra K\AppData\Local\Google\Update\1.3.29.5\GoogleCrashHandler.exe
    C:\Program Files (x86)\Lenovo\PowerDVD10\PDVD10Serv.EXE
    C:\Program Files (x86)\Skype\Phone\Skype.exe
    C:\WINDOWS\SysWOW64\runonce.exe
    C:\Program Files (x86)\Common Files\COMODO\GeekBuddyRSP.exe
    C:\Program Files (x86)\Dropbox\Client\Dropbox.exe
    C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
    C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
    C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
    C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
    C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
    C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
    C:\Program Files\Lenovo\Lenovo Solution Center\LSCNotify.exe
    C:\Users\Ondra K\AppData\Local\Google\Update\GoogleUpdate.exe
    C:\Users\Ondra K\AppData\Local\Google\Update\GoogleUpdate.exe
    C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
    C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
    C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
    C:\Program Files\trend micro\Ondra K.exe

    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://lenovo13.msn.com/?pc=LCJB
    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.seznam.cz/
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
    F2 - REG:system.ini: UserInit=
    O2 - BHO: IDM Helper - {0055C089-8582-441B-A0BF-17B458C2A3A8} - C:\Program Files (x86)\Internet Download Manager\IDMIECC.dll
    O2 - BHO: Skype for Business Click to Call BHO - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
    O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_66\bin\ssv.dll
    O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
    O2 - BHO: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\PROGRA~2\MICROS~1\Office15\GROOVEEX.DLL
    O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_66\bin\jp2ssv.dll
    O2 - BHO: DialuxBHO - {F586CB96-7091-42ec-9829-F5D5CE65AFC1} - C:\Program Files (x86)\DIALux\Dialux.BHO_x86.dll
    O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe" MSRun
    O4 - HKLM\..\Run: [tvncontrol] "C:\Program Files (x86)\Common Files\COMODO\GeekBuddyRSP.exe" -controlservice -slave
    O4 - HKLM\..\Run: [Dropbox] "C:\Program Files (x86)\Dropbox\Client\Dropbox.exe" /systemstartup
    O4 - HKLM\..\Run: [SafeQ Client] "C:\Program Files (x86)\Y Soft\SafeQ Client\Client\SafeQ Client.exe"
    O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
    O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
    O4 - HKCU\..\Run: [AppEx Accelerator UI] C:\Program Files\AMD Quick Stream\AMDQuickStream.exe -h
    O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
    O4 - HKCU\..\Run: [Overwolf] C:\Program Files (x86)\Overwolf\Overwolf.exe -silent
    O4 - HKCU\..\Run: [Google Update] "C:\Users\Ondra K\AppData\Local\Google\Update\GoogleUpdate.exe" /c
    O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
    O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
    O4 - HKCU\..\RunOnce: [Uninstall C:\Users\Ondra K\AppData\Local\Microsoft\OneDrive\17.3.5892.0626_1\amd64] C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Ondra K\AppData\Local\Microsoft\OneDrive\17.3.5892.0626_1\amd64"
    O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
    O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
    O8 - Extra context menu item: E&xportovat do Microsoft Excelu - res://C:\Program Files (x86)\Microsoft Office\Office15\EXCEL.EXE/3000
    O8 - Extra context menu item: Od&eslat do OneNotu - res://C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIE.dll/105
    O8 - Extra context menu item: Stáhnout s IDM - C:\Program Files (x86)\Internet Download Manager\IEExt.htm
    O8 - Extra context menu item: Stáhnout s IDM všechny odkazy - C:\Program Files (x86)\Internet Download Manager\IEGetAll.htm
    O9 - Extra button: Odeslat do OneNotu - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIE.dll
    O9 - Extra 'Tools' menuitem: Od&eslat do OneNotu - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIE.dll
    O9 - Extra button: PrivDog - {2F5C139F-79BD-4C84-A95A-E7140525BC55} - (no file)
    O9 - Extra button: Volání kliknutím v Lyncu - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
    O9 - Extra 'Tools' menuitem: Volání kliknutím v Lyncu - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
    O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
    O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
    O9 - Extra button: Skype Click to Call settings - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
    O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
    O15 - ESC Trusted Zone: http://*.connectify.me
    O15 - ESC Trusted Zone: http://*.fastspring.com
    O15 - ESC Trusted Zone: http://*.connectify.me (HKLM)
    O15 - ESC Trusted Zone: http://*.fastspring.com (HKLM)
    O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files (x86)\Microsoft Office\Office15\MSOSB.DLL
    O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
    O18 - Protocol: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
    O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
    O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
    O18 - Filter hijack: text/xml - {807583E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\MSOXMLMF.DLL
    O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
    O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
    O23 - Service: AMD External Events Utility - Unknown owner - C:\WINDOWS\system32\atiesrxx.exe (file missing)
    O23 - Service: AMD FUEL Service - Advanced Micro Devices, Inc. - C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
    O23 - Service: @oem60.inf,%BlueBcmBtRSupport.SVCNAME%;Bluetooth Driver Management Service (BcmBtRSupport) - Unknown owner - C:\WINDOWS\system32\BtwRSupportService.exe (file missing)
    O23 - Service: COMODO LPS Launcher (CLPSLauncher) - Comodo Security Solutions, Inc. - C:\Program Files (x86)\Common Files\COMODO\launcher_service.exe
    O23 - Service: COMODO Internet Security Helper Service (CmdAgent) - COMODO - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
    O23 - Service: COMODO Virtual Service Manager (cmdvirth) - COMODO - C:\Program Files\COMODO\COMODO Internet Security\cmdvirth.exe
    O23 - Service: Connectify - Connectify - C:\Program Files (x86)\Connectify\ConnectifyService.exe
    O23 - Service: @C:\WINDOWS\system32\CxAudMsg64.exe,-100 (CxAudMsg) - Unknown owner - C:\WINDOWS\system32\CxAudMsg64.exe (file missing)
    O23 - Service: Dropbox Update Service (dbupdate) (dbupdate) - Dropbox, Inc. - C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
    O23 - Service: Dropbox Update Service (dbupdatem) (dbupdatem) - Dropbox, Inc. - C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
    O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
    O23 - Service: DIAL Communication Service (DialComService) - DIAL GmbH - C:\Program Files (x86)\DIAL GmbH\DIAL Communication Framework\DialComService.exe
    O23 - Service: COMODO Dragon Update Service (DragonUpdater) - Comodo - C:\Program Files (x86)\Comodo\Dragon\dragon_updater.exe
    O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
    O23 - Service: Elan Service (ETDService) - ELAN Microelectronics Corp. - C:\Program Files\Elantech\ETDService.exe
    O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
    O23 - Service: GeekBuddyRSP Server (GeekBuddyRSP) - Comodo Security Solutions, Inc. - C:\Program Files (x86)\Common Files\COMODO\GeekBuddyRSP.exe
    O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
    O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
    O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
    O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
    O23 - Service: LSCWinService - Lenovo - C:\Program Files\Lenovo\Lenovo Solution Center\App\LSCWinService.exe
    O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
    O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
    O23 - Service: Overwolf Updater Windows SCM (OverwolfUpdater) - Overwolf LTD - C:\Program Files (x86)\Overwolf\OverwolfUpdater.exe
    O23 - Service: Cyberlink RichVideo64 Service(CRVS) (RichVideo64) - Unknown owner - C:\Program Files\CyberLink\Shared files\RichVideo64.exe
    O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
    O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
    O23 - Service: Conexant SmartAudio service (SAService) - Conexant Systems, Inc. - C:\WINDOWS\system32\SAsrv.exe
    O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
    O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
    O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
    O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
    O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
    O23 - Service: TeamViewer 11 (TeamViewer) - TeamViewer GmbH - C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
    O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\WINDOWS\system32\TieringEngineService.exe (file missing)
    O23 - Service: TunngleService - Tunngle.net GmbH - C:\Program Files (x86)\Tunngle\TnglCtrl.exe
    O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
    O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
    O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
    O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
    O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
    O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
    O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
    O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
    O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

    --
    End of file - 14429 bytes

    ======Listing Processes======








    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe -k DcomLaunch
    winlogon.exe
    C:\WINDOWS\system32\svchost.exe -k RPCSS
    "dwm.exe"
    C:\WINDOWS\system32\svchost.exe -k netsvcs
    C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted
    "C:\Program Files (x86)\Common Files\COMODO\launcher_service.exe"
    "C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-ca61ceaa-9284-4343-b042-149179a31451 -SystemEventPortName:HostProcess-6e8b017b-b86d-49c6-bffc-ec871a2d5ba3 -IoCancelEventPortName:HostProcess-d82d90d3-b464-4ef3-8fed-386e7becb044 -NonStateChangingEventPortName:HostProcess-d6b613b3-900d-4cf8-af2f-12e30ff11919 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:2e3a7fbd-ce1a-4087-920a-73a80173e1ac -DeviceGroupId:WudfDefaultDevicePool
    "C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe"
    C:\WINDOWS\system32\atiesrxx.exe
    C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
    C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
    C:\WINDOWS\system32\svchost.exe -k LocalService
    C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
    atieclxx
    C:\WINDOWS\system32\svchost.exe -k NetworkService
    C:\WINDOWS\System32\spoolsv.exe
    C:\WINDOWS\system32\svchost.exe -k NetworkServiceNetworkRestricted
    C:\WINDOWS\system32\svchost.exe -k apphost
    "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
    C:\WINDOWS\System32\svchost.exe -k utcsvc
    "C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe" /launchService
    "C:\Program Files (x86)\Comodo\Dragon\dragon_updater.exe"
    "C:\WINDOWS\system32\CxAudMsg64.exe"
    "C:\Program Files\CyberLink\Shared files\RichVideo64.exe"
    "C:\Program Files\Elantech\ETDService.exe"
    "C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe" /service
    "C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe" /service
    "C:\Program Files (x86)\Common Files\COMODO\GeekBuddyRSP.exe" -service
    C:\WINDOWS\system32\svchost.exe -k iissvcs
    C:\WINDOWS\system32\svchost.exe -k imgsvc
    C:\WINDOWS\system32\BtwRSupportService.exe
    "C:\Program Files (x86)\Connectify\ConnectifyService.exe"
    C:\WINDOWS\system32\svchost.exe -k appmodel
    dashost.exe {5ccdedf9-dc3e-4ec3-80af98a2d135a41b}
    "C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe"
    "ConnectifyD.exe"
    \??\C:\WINDOWS\system32\conhost.exe 0x4
    "C:\WINDOWS\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\SMSvcHost.exe"
    "C:\Program Files\COMODO\COMODO Internet Security\cavwp.exe" /ModeAvMonitor -Embedding
    C:\WINDOWS\system32\SearchIndexer.exe /Embedding
    taskeng.exe {5F358298-2E53-455C-8175-73FED1A813DA}
    "C:\Program Files\Elantech\ETDCtrl.exe"
    sihost.exe
    taskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E}
    "C:\Program Files\COMODO\COMODO Internet Security\cistray.exe"
    C:\Windows\System32\RuntimeBroker.exe -Embedding
    C:\WINDOWS\Explorer.EXE
    "C:\Program Files\Elantech\ETDCtrlHelper.exe"
    "C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkypeHost.exe" -ServerName:SkypeHost.ServerServer
    "C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
    "C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe" -ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca
    "C:\Program Files\COMODO\COMODO Internet Security\cis.exe" --alertsUI
    "C:\Program Files\CONEXANT\cAudioFilterAgent\CAudioFilterAgent64.exe"
    "C:\Windows\RTFTrack.exe"
    "C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe"
    "C:\Program Files (x86)\Lenovo\Energy Management\utility.exe"
    "C:\Program Files\AMD Quick Stream\AMDQuickStream.exe" -h

    "C:\Users\Ondra K\AppData\Local\Google\Update\1.3.29.5\GoogleCrashHandler.exe"
    "C:\Users\Ondra K\AppData\Local\Google\Update\1.3.29.5\GoogleCrashHandler64.exe"
    "C:\Program Files (x86)\Lenovo\PowerDVD10\PDVD10Serv.EXE"
    "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
    C:\WINDOWS\SysWOW64\runonce.exe /Run6432
    "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM" PriorityLow
    "C:\Program Files (x86)\Common Files\COMODO\GeekBuddyRSP.exe" -controlservice -slave
    "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe" 0
    "C:\Program Files (x86)\Dropbox\Client\Dropbox.exe" /systemstartup
    "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
    "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=crashpad-handler /prefetch:7 --no-rate-limit "--database=C:\Users\Ondra K\AppData\Local\Google\Chrome\User Data\Crashpad" --url=https://clients2.google.com/cr/report --annotation=channel=m --annotation=plat=Win32 --annotation=prod=Chrome --annotation=ver=49.0.2623.112 --handshake-handle=0x390
    "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="3116.0.39745345\896115791" --supports-dual-gpus=false --gpu-driver-bug-workarounds=3,11,25,54 --gpu-vendor-id=0x1002 --gpu-device-id=0x9903 --gpu-driver-vendor="Advanced Micro Devices, Inc." --gpu-driver-version=15.201.1151.1008 --ignored=" --type=renderer " /prefetch:2
    "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,WebFontsIntervention<WebFontsIntervention --disable-features=UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=cs --force-fieldtrials=AppBannerTriggering/Aggressive/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_10-gen2/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ClientSideDetectionModel/Model0/*CrossDevicePromo/1DaySingleProfile/*DataReductionProxyConfigService/Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Unused_2/PasswordBranding/Disabled/*PasswordGeneration/Disabled/PreRead/Default/*QUIC/EnabledSlowStartLargeReduction/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Control50pct/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/SSLCommonNameMismatchHandling/Disabled/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_72/*UMA-Uniformity-Trial-10-Percent/group_03/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_10/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/WebFontsIntervention/Enabled/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="3116.2.267335903\1542699827" /prefetch:1
    "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,WebFontsIntervention<WebFontsIntervention --disable-features=UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=cs --force-fieldtrials=AppBannerTriggering/Aggressive/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_10-gen2/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ClientSideDetectionModel/Model0/*CrossDevicePromo/1DaySingleProfile/*DataReductionProxyConfigService/Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Unused_2/PasswordBranding/Disabled/*PasswordGeneration/Disabled/PreRead/Default/*QUIC/EnabledSlowStartLargeReduction/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Control50pct/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/SSLCommonNameMismatchHandling/Disabled/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_72/*UMA-Uniformity-Trial-10-Percent/group_03/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_10/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/WebFontsIntervention/Enabled/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="3116.3.1316659216\1263692984" /prefetch:1
    "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,WebFontsIntervention<WebFontsIntervention --disable-features=UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=cs --force-fieldtrials=AppBannerTriggering/Aggressive/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_10-gen2/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ClientSideDetectionModel/Model0/*CrossDevicePromo/1DaySingleProfile/*DataReductionProxyConfigService/Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Unused_2/PasswordBranding/Disabled/*PasswordGeneration/Disabled/PreRead/Default/*QUIC/EnabledSlowStartLargeReduction/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Control50pct/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/SSLCommonNameMismatchHandling/Disabled/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_72/*UMA-Uniformity-Trial-10-Percent/group_03/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_10/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/*WebFontsIntervention/Enabled/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="3116.4.899852765\342194101" /prefetch:1
    C:\WINDOWS\system32\wbem\wmiprvse.exe
    "C:\Program Files\Lenovo\Lenovo Solution Center\LSCNotify.exe" /showasync
    C:\WINDOWS\sysWOW64\wbem\wmiprvse.exe -Embedding
    C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
    taskeng.exe {6DD21BC1-B892-400D-83EA-ED4A906B24D3}
    "C:\Users\Ondra K\AppData\Local\Google\Update\GoogleUpdate.exe" /ua /installsource scheduler
    "C:\Users\Ondra K\AppData\Local\Google\Update\GoogleUpdate.exe" -Embedding
    "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,WebFontsIntervention<WebFontsIntervention --disable-features=UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=cs --force-fieldtrials=AppBannerTriggering/Aggressive/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_10-gen2/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ClientSideDetectionModel/Model0/*CrossDevicePromo/1DaySingleProfile/*DataReductionProxyConfigService/Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Unused_2/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*PreRead/Default/*QUIC/EnabledSlowStartLargeReduction/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Control50pct/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/SSLCommonNameMismatchHandling/Disabled/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/*SafeBrowsingUpdateFrequency/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_72/*UMA-Uniformity-Trial-10-Percent/group_03/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_10/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/*WebFontsIntervention/Enabled/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="3116.13.1057244910\2018641016" /prefetch:1
    "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,WebFontsIntervention<WebFontsIntervention --disable-features=UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=cs --force-fieldtrials=AppBannerTriggering/Aggressive/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_10-gen2/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ClientSideDetectionModel/Model0/*CrossDevicePromo/1DaySingleProfile/*DataReductionProxyConfigService/Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Unused_2/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*PreRead/Default/*QUIC/EnabledSlowStartLargeReduction/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Control50pct/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/SSLCommonNameMismatchHandling/Disabled/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/*SafeBrowsingUpdateFrequency/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_72/*UMA-Uniformity-Trial-10-Percent/group_03/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_10/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/*WebFontsIntervention/Enabled/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --instant-process --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="3116.15.656793367\885756720" /prefetch:1
    "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,WebFontsIntervention<WebFontsIntervention --disable-features=UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=cs --force-fieldtrials=AppBannerTriggering/Aggressive/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_10-gen2/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ClientSideDetectionModel/Model0/*CrossDevicePromo/1DaySingleProfile/*DataReductionProxyConfigService/Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Unused_2/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*PreRead/Default/*QUIC/EnabledSlowStartLargeReduction/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Control50pct/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/SSLCommonNameMismatchHandling/Disabled/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/*SafeBrowsingUpdateFrequency/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_72/*UMA-Uniformity-Trial-10-Percent/group_03/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_10/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/*WebFontsIntervention/Enabled/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="3116.16.78205431\1309760658" /prefetch:1
    "C:\Program Files\Lenovo\ExperienceImprovement\LenovoExperienceImprovement.exe" /firstBoot
    "C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe4_ Global\UsGthrCtrlFltPipeMssGthrPipe4 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
    "C:\WINDOWS\system32\SearchFilterHost.exe" 0 976 980 988 8192 984
    "C:\Users\Ondra K\Downloads\RSITx64.exe"
    C:\WINDOWS\system32\wbem\wmiprvse.exe

    ======Scheduled tasks folder======

    C:\WINDOWS\tasks\DropboxUpdateTaskMachineCore.job - C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe /c
    C:\WINDOWS\tasks\DropboxUpdateTaskMachineUA.job - C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe /ua /installsource scheduler
    C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
    C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
    C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1067718225-367633953-3890117072-1002Core.job - C:\Users\Ondra K\AppData\Local\Google\Update\GoogleUpdate.exe /c
    C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1067718225-367633953-3890117072-1002UA.job - C:\Users\Ondra K\AppData\Local\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
    C:\WINDOWS\tasks\MATLAB R2015b Startup Accelerator.job - C:\Program Files\MATLAB\R2015b\bin\win64\MATLABStartupAccelerator.exe

    ======Registry dump======

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0055C089-8582-441B-A0BF-17B458C2A3A8}]
    IDM integration (IDMIEHlprObj Class) - C:\Program Files (x86)\Internet Download Manager\IDMIECC64.dll [2015-05-20 484376]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
    Skype for Business Browser Helper - C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2016-02-09 228552]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
    Skype Click to Call for Internet Explorer - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2016-01-08 2134656]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
    Microsoft SkyDrive Pro Browser Helper - C:\PROGRA~1\MICROS~1\Office15\GROOVEEX.DLL [2016-03-15 2348848]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F586CB96-7091-42ec-9829-F5D5CE65AFC1}]
    DIALux Browser Helper Object - C:\Program Files\DIAL GmbH\DIALux\Dialux.BHO_x64.dll [2014-05-09 1337616]

    [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0055C089-8582-441B-A0BF-17B458C2A3A8}]
    IDM integration (IDMIEHlprObj Class) - C:\Program Files (x86)\Internet Download Manager\IDMIECC.dll [2015-05-20 422936]

    [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
    Skype for Business Browser Helper - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2016-02-09 163016]

    [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
    Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_66\bin\ssv.dll [2015-11-29 460384]

    [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
    Skype Click to Call for Internet Explorer - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2016-01-08 1725056]

    [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
    Microsoft SkyDrive Pro Browser Helper - C:\PROGRA~2\MICROS~1\Office15\GROOVEEX.DLL [2016-03-15 1741104]

    [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
    Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_66\bin\jp2ssv.dll [2015-11-29 172640]

    [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F586CB96-7091-42ec-9829-F5D5CE65AFC1}]
    DIALux Browser Helper Object - C:\Program Files (x86)\DIALux\Dialux.BHO_x86.dll [2013-12-10 1215248]

    [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
    "cAudioFilterAgent"=C:\Program Files\Conexant\cAudioFilterAgent\cAudioFilterAgent64.exe [2014-11-25 935104]
    "SmartAudio"=C:\Program Files\CONEXANT\SAII\SACpl.exe [2014-04-10 1830616]
    "ETDCtrl"=C:\Program Files\Elantech\ETDCtrl.exe [2015-10-25 3242696]
    "RtsFT"=C:\WINDOWS\RTFTrack.exe [2015-10-25 9308416]
    "Energy Management"=C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe [2014-06-19 17111056]
    "EnergyUtility"=C:\Program Files (x86)\Lenovo\Energy Management\Utility.exe [2014-06-19 193008]
    "AdobeAAMUpdater-1.0"=C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2015-04-28 500936]
    "Connectify Hotspot"=C:\Program Files (x86)\Connectify\Connectify.exe [2016-02-14 4140600]

    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
    "AppEx Accelerator UI"=C:\Program Files\AMD Quick Stream\AMDQuickStream.exe [2013-04-11 429792]
    "DAEMON Tools Lite"=C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2014-03-04 3696912]
    "Overwolf"=C:\Program Files (x86)\Overwolf\Overwolf.exe [2016-04-07 45296]
    "Google Update"=C:\Users\Ondra K\AppData\Local\Google\Update\GoogleUpdate.exe [2015-09-03 144200]
    "Skype"=C:\Program Files (x86)\Skype\Phone\Skype.exe [2016-03-01 50670720]
    "CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2016-02-13 8619224]

    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce]
    "Uninstall C:\Users\Ondra K\AppData\Local\Microsoft\OneDrive\17.3.5892.0626_1\amd64"=C:\WINDOWS\system32\cmd.exe [2015-10-30 233984]

    [HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
    "StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [2015-12-18 767176]
    "tvncontrol"=C:\Program Files (x86)\Common Files\COMODO\GeekBuddyRSP.exe [2014-09-24 2327248]
    "Dropbox"=C:\Program Files (x86)\Dropbox\Client\Dropbox.exe [2016-04-14 23248560]
    "SafeQ Client"=C:\Program Files (x86)\Y Soft\SafeQ Client\Client\SafeQ Client.exe [2015-12-15 259584]
    "SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2015-11-29 596528]
    "Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2016-01-14 1085656]

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys]

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar]

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iai2c.sys]

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SpbCx.sys]

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository]

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TileDataModelSvc]

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\uefi.sys]

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager]

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys]

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar]

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SpbCx.sys]

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository]

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TileDataModelSvc]

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\uefi.sys]

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager]

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]

    [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
    "DSCAutomationHostEnabled"=2
    "ConsentPromptBehaviorAdmin"=0
    "PromptOnSecureDesktop"=0

    [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

    [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
    "midimapper"=midimap.dll
    "msacm.imaadpcm"=imaadp32.acm
    "msacm.l3acm"=C:\Windows\System32\l3codeca.acm
    "msacm.msadpcm"=msadp32.acm
    "msacm.msg711"=msg711.acm
    "msacm.msgsm610"=msgsm32.acm
    "vidc.i420"=iyuv_32.dll
    "vidc.iyuv"=iyuv_32.dll
    "vidc.mrle"=msrle32.dll
    "vidc.msvc"=msvidc32.dll
    "vidc.uyvy"=msyuv.dll
    "vidc.yuy2"=msyuv.dll
    "vidc.yvu9"=tsbyuv.dll
    "vidc.yvyu"=msyuv.dll
    "wavemapper"=msacm32.drv
    "wave"=wdmaud.drv
    "midi"=wdmaud.drv
    "mixer"=wdmaud.drv
    "aux"=wdmaud.drv
    "wave1"=wdmaud.drv
    "midi1"=wdmaud.drv
    "mixer1"=wdmaud.drv
    "aux1"=wdmaud.drv
    "MSVideo8"=VfWWDM32.dll
    "VIDC.FPS1"=frapsv64.dll

    ======File associations======

    .js - edit - C:\Windows\System32\Notepad.exe %1
    .js - open - C:\Windows\System32\WScript.exe "%1" %*

    ======List of files/folders created in the last 1 month======

    2016-04-27 18:48:50 ----D---- C:\rsit
    2016-04-23 18:51:37 ----D---- C:\WINDOWS\LastGood.Tmp
    2016-04-22 17:52:36 ----A---- C:\WINDOWS\SYSWOW64\SET2A47.tmp
    2016-04-22 17:52:36 ----A---- C:\WINDOWS\system32\mantleaxl64.dll
    2016-04-22 17:52:36 ----A---- C:\WINDOWS\system32\mantle64.dll
    2016-04-22 17:52:36 ----A---- C:\WINDOWS\system32\hsa-thunk64.dll
    2016-04-22 17:52:36 ----A---- C:\WINDOWS\system32\dgtrayicon.exe
    2016-04-22 17:52:36 ----A---- C:\WINDOWS\system32\detoured.dll
    2016-04-22 17:52:36 ----A---- C:\WINDOWS\system32\atio6axx.dll
    2016-04-22 17:52:34 ----A---- C:\WINDOWS\system32\atitmm64.dll
    2016-04-22 17:52:34 ----A---- C:\WINDOWS\system32\atimuixx.dll
    2016-04-22 17:52:34 ----A---- C:\WINDOWS\system32\atieah64.exe
    2016-04-22 17:52:34 ----A---- C:\WINDOWS\system32\aticaldd64.dll
    2016-04-22 17:52:34 ----A---- C:\WINDOWS\system32\amdocl12cl64.dll
    2016-04-22 17:52:32 ----A---- C:\WINDOWS\system32\aticalrt64.dll
    2016-04-22 17:52:30 ----A---- C:\WINDOWS\SYSWOW64\atiadlxy.dll
    2016-04-22 17:52:30 ----A---- C:\WINDOWS\SYSWOW64\atiadlxx.dll
    2016-04-22 17:52:30 ----A---- C:\WINDOWS\SYSWOW64\amdmmcl.dll
    2016-04-22 17:52:30 ----A---- C:\WINDOWS\system32\drivers\ati2erec.dll
    2016-04-22 17:52:30 ----A---- C:\WINDOWS\system32\aticalcl64.dll
    2016-04-22 17:52:30 ----A---- C:\WINDOWS\system32\atiapfxx.exe
    2016-04-22 17:52:30 ----A---- C:\WINDOWS\system32\amdmmcl6.dll
    2016-04-22 17:52:30 ----A---- C:\WINDOWS\system32\amdmantle64.dll
    2016-04-22 17:52:30 ----A---- C:\WINDOWS\system32\amdlvr64.dll
    2016-04-22 17:52:30 ----A---- C:\WINDOWS\system32\amdhdl64.dll
    2016-04-22 17:52:30 ----A---- C:\WINDOWS\system32\amdgfxinfo64.dll
    2016-04-22 17:50:34 ----A---- C:\WINDOWS\SYSWOW64\atimpc32.dll
    2016-04-22 17:50:32 ----A---- C:\WINDOWS\SYSWOW64\amdpcom32.dll
    2016-04-22 17:50:32 ----A---- C:\WINDOWS\system32\atimpc64.dll
    2016-04-22 17:50:32 ----A---- C:\WINDOWS\system32\amdpcom64.dll
    2016-04-22 17:50:32 ----A---- C:\WINDOWS\system32\amdmiracast.dll
    2016-04-13 10:51:36 ----A---- C:\WINDOWS\SYSWOW64\atmlib.dll
    2016-04-13 10:51:35 ----A---- C:\WINDOWS\SYSWOW64\jsproxy.dll
    2016-04-13 10:51:35 ----A---- C:\WINDOWS\SYSWOW64\edgehtml.dll
    2016-04-13 10:51:33 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
    2016-04-13 10:51:33 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
    2016-04-13 10:51:33 ----A---- C:\WINDOWS\SYSWOW64\kerberos.dll
    2016-04-13 10:51:33 ----A---- C:\WINDOWS\SYSWOW64\atmfd.dll
    2016-04-13 10:51:33 ----A---- C:\WINDOWS\system32\jsproxy.dll
    2016-04-13 10:51:32 ----A---- C:\WINDOWS\SYSWOW64\wininetlui.dll
    2016-04-13 10:51:32 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
    2016-04-13 10:51:32 ----A---- C:\WINDOWS\SYSWOW64\fontdrvhost.exe
    2016-04-13 10:51:32 ----A---- C:\WINDOWS\system32\wininet.dll
    2016-04-13 10:51:32 ----A---- C:\WINDOWS\system32\kerberos.dll
    2016-04-13 10:51:32 ----A---- C:\WINDOWS\system32\atmfd.dll
    2016-04-13 10:51:31 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
    2016-04-13 10:51:31 ----A---- C:\WINDOWS\system32\wininetlui.dll
    2016-04-13 10:51:31 ----A---- C:\WINDOWS\system32\urlmon.dll
    2016-04-13 10:51:30 ----A---- C:\WINDOWS\SYSWOW64\CoreUIComponents.dll
    2016-04-13 10:51:30 ----A---- C:\WINDOWS\system32\storewuauth.dll
    2016-04-13 10:51:30 ----A---- C:\WINDOWS\system32\fontdrvhost.exe
    2016-04-13 10:51:30 ----A---- C:\WINDOWS\system32\edgehtml.dll
    2016-04-13 10:51:30 ----A---- C:\WINDOWS\system32\drivers\ntfs.sys
    2016-04-13 10:51:29 ----A---- C:\WINDOWS\system32\ieframe.dll
    2016-04-13 10:51:28 ----A---- C:\WINDOWS\system32\wwansvc.dll
    2016-04-13 10:51:28 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
    2016-04-13 10:51:28 ----A---- C:\WINDOWS\system32\atmlib.dll
    2016-04-13 10:51:27 ----A---- C:\WINDOWS\system32\wuaueng.dll
    2016-04-13 10:51:27 ----A---- C:\WINDOWS\system32\win32kfull.sys
    2016-04-13 10:51:27 ----A---- C:\WINDOWS\system32\lsasrv.dll
    2016-04-13 10:51:27 ----A---- C:\WINDOWS\system32\CoreUIComponents.dll
    2016-04-13 10:51:26 ----A---- C:\WINDOWS\system32\mshtml.dll
    2016-04-13 10:51:18 ----A---- C:\WINDOWS\SYSWOW64\SRHInproc.dll
    2016-04-13 10:51:18 ----A---- C:\WINDOWS\SYSWOW64\SRH.dll
    2016-04-13 10:51:18 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.dll
    2016-04-13 10:51:18 ----A---- C:\WINDOWS\system32\SRHInproc.dll
    2016-04-13 10:51:18 ----A---- C:\WINDOWS\system32\SRH.dll
    2016-04-13 10:51:16 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.dll
    2016-04-13 10:51:14 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
    2016-04-13 10:51:14 ----A---- C:\WINDOWS\system32\twinui.dll
    2016-04-13 10:51:13 ----A---- C:\WINDOWS\SYSWOW64\TextInputFramework.dll
    2016-04-13 10:51:13 ----A---- C:\WINDOWS\SYSWOW64\InputService.dll
    2016-04-13 10:51:13 ----A---- C:\WINDOWS\system32\TextInputFramework.dll
    2016-04-13 10:51:13 ----A---- C:\WINDOWS\system32\InputService.dll
    2016-04-13 10:51:13 ----A---- C:\WINDOWS\system32\Chakra.dll
    2016-04-13 10:51:13 ----A---- C:\WINDOWS\system32\fontsub.dll
    2016-04-13 10:51:12 ----A---- C:\WINDOWS\SYSWOW64\Chakra.dll
    2016-04-13 10:51:11 ----A---- C:\WINDOWS\system32\Windows.Media.dll
    2016-04-13 10:51:11 ----A---- C:\WINDOWS\system32\SettingsHandlers_nt.dll
    2016-04-13 10:51:10 ----A---- C:\WINDOWS\system32\Windows.UI.Logon.dll
    2016-04-13 10:51:09 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Logon.dll
    2016-04-13 10:51:09 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.dll
    2016-04-13 10:51:09 ----A---- C:\WINDOWS\SYSWOW64\BingMaps.dll
    2016-04-13 10:51:09 ----A---- C:\WINDOWS\system32\XblAuthManager.dll
    2016-04-13 10:51:08 ----A---- C:\WINDOWS\system32\Windows.UI.Shell.dll
    2016-04-13 10:51:08 ----A---- C:\WINDOWS\system32\LicenseManager.dll
    2016-04-13 10:51:08 ----A---- C:\WINDOWS\system32\enterprisecsps.dll
    2016-04-13 10:51:08 ----A---- C:\WINDOWS\system32\dwmcore.dll
    2016-04-13 10:51:08 ----A---- C:\WINDOWS\system32\drivers\cng.sys
    2016-04-13 10:51:07 ----A---- C:\WINDOWS\SYSWOW64\LicenseManager.dll
    2016-04-13 10:51:07 ----A---- C:\WINDOWS\system32\dosvc.dll
    2016-04-13 10:51:07 ----A---- C:\WINDOWS\system32\audiosrv.dll
    2016-04-13 10:51:07 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.dll
    2016-04-13 10:51:06 ----A---- C:\WINDOWS\SYSWOW64\dwmcore.dll
    2016-04-13 10:51:06 ----A---- C:\WINDOWS\system32\win32kbase.sys
    2016-04-13 10:51:06 ----A---- C:\WINDOWS\system32\SystemSettingsThresholdAdminFlowUI.dll
    2016-04-13 10:51:05 ----A---- C:\WINDOWS\system32\esent.dll
    2016-04-13 10:51:03 ----A---- C:\WINDOWS\SYSWOW64\UIAutomationCore.dll
    2016-04-13 10:51:03 ----A---- C:\WINDOWS\system32\BingMaps.dll
    2016-04-13 10:51:02 ----A---- C:\WINDOWS\SYSWOW64\esent.dll
    2016-04-13 10:51:02 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
    2016-04-13 10:51:02 ----A---- C:\WINDOWS\system32\UIAutomationCore.dll
    2016-04-13 10:51:02 ----A---- C:\WINDOWS\system32\NetSetupEngine.dll
    2016-04-13 10:51:02 ----A---- C:\WINDOWS\system32\MapControlCore.dll
    2016-04-13 10:51:01 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.dll
    2016-04-13 10:51:01 ----A---- C:\WINDOWS\SYSWOW64\MapControlCore.dll
    2016-04-13 10:51:01 ----A---- C:\WINDOWS\system32\winload.exe
    2016-04-13 10:51:01 ----A---- C:\WINDOWS\system32\SharedStartModel.dll
    2016-04-13 10:51:01 ----A---- C:\WINDOWS\system32\RemoteNaturalLanguage.dll
    2016-04-13 10:51:01 ----A---- C:\WINDOWS\system32\PhoneProviders.dll
    2016-04-13 10:51:01 ----A---- C:\WINDOWS\system32\NetSetupShim.dll
    2016-04-13 10:51:01 ----A---- C:\WINDOWS\system32\MapsStore.dll
    2016-04-13 10:51:01 ----A---- C:\WINDOWS\system32\AppXDeploymentServer.dll
    2016-04-13 10:51:00 ----A---- C:\WINDOWS\SYSWOW64\NetSetupShim.dll
    2016-04-13 10:51:00 ----A---- C:\WINDOWS\system32\winresume.exe
    2016-04-13 10:51:00 ----A---- C:\WINDOWS\system32\Windows.UI.Cred.dll
    2016-04-13 10:51:00 ----A---- C:\WINDOWS\system32\RDXService.dll
    2016-04-13 10:51:00 ----A---- C:\WINDOWS\system32\InputLocaleManager.dll
    2016-04-13 10:51:00 ----A---- C:\WINDOWS\system32\bisrv.dll
    2016-04-13 10:50:59 ----A---- C:\WINDOWS\SYSWOW64\StoreAgent.dll
    2016-04-13 10:50:59 ----A---- C:\WINDOWS\SYSWOW64\NetSetupEngine.dll
    2016-04-13 10:50:59 ----A---- C:\WINDOWS\SYSWOW64\fontsub.dll
    2016-04-13 10:50:59 ----A---- C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
    2016-04-13 10:50:59 ----A---- C:\WINDOWS\system32\Windows.Media.Speech.dll
    2016-04-13 10:50:59 ----A---- C:\WINDOWS\system32\tileobjserver.dll
    2016-04-13 10:50:59 ----A---- C:\WINDOWS\system32\PsmServiceExtHost.dll
    2016-04-13 10:50:59 ----A---- C:\WINDOWS\system32\drivers\bthport.sys
    2016-04-13 10:50:58 ----A---- C:\WINDOWS\SYSWOW64\Windows.Web.Http.dll
    2016-04-13 10:50:58 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Core.TextInput.dll
    2016-04-13 10:50:58 ----A---- C:\WINDOWS\SYSWOW64\RemoteNaturalLanguage.dll
    2016-04-13 10:50:58 ----A---- C:\WINDOWS\SYSWOW64\MessagingDataModel2.dll
    2016-04-13 10:50:58 ----A---- C:\WINDOWS\SYSWOW64\MapConfiguration.dll
    2016-04-13 10:50:58 ----A---- C:\WINDOWS\SYSWOW64\CredProvDataModel.dll
    2016-04-13 10:50:58 ----A---- C:\WINDOWS\SYSWOW64\AccountsRt.dll
    2016-04-13 10:50:58 ----A---- C:\WINDOWS\system32\TokenBroker.dll
    2016-04-13 10:50:58 ----A---- C:\WINDOWS\system32\StorSvc.dll
    2016-04-13 10:50:58 ----A---- C:\WINDOWS\system32\StoreAgent.dll
    2016-04-13 10:50:58 ----A---- C:\WINDOWS\system32\SensorService.dll
    2016-04-13 10:50:58 ----A---- C:\WINDOWS\system32\NMAA.dll
    2016-04-13 10:50:58 ----A---- C:\WINDOWS\system32\NetSetupSvc.dll
    2016-04-13 10:50:58 ----A---- C:\WINDOWS\system32\msxml3.dll
    2016-04-13 10:50:58 ----A---- C:\WINDOWS\system32\MapConfiguration.dll
    2016-04-13 10:50:58 ----A---- C:\WINDOWS\system32\LockAppHost.exe
    2016-04-13 10:50:58 ----A---- C:\WINDOWS\system32\fveapi.dll
    2016-04-13 10:50:58 ----A---- C:\WINDOWS\system32\drivers\http.sys
    2016-04-13 10:50:58 ----A---- C:\WINDOWS\system32\dmenrollengine.dll
    2016-04-13 10:50:58 ----A---- C:\WINDOWS\system32\audiodg.exe
    2016-04-13 10:50:58 ----A---- C:\WINDOWS\system32\AccountsRt.dll
    2016-04-13 10:50:57 ----A---- C:\WINDOWS\SYSWOW64\msv1_0.dll
    2016-04-13 10:50:57 ----A---- C:\WINDOWS\SYSWOW64\LockAppHost.exe
    2016-04-13 10:50:57 ----A---- C:\WINDOWS\SYSWOW64\InputLocaleManager.dll
    2016-04-13 10:50:57 ----A---- C:\WINDOWS\system32\Windows.Web.Http.dll
    2016-04-13 10:50:57 ----A---- C:\WINDOWS\system32\Windows.Internal.Shell.Broker.dll
    2016-04-13 10:50:57 ----A---- C:\WINDOWS\system32\SyncController.dll
    2016-04-13 10:50:57 ----A---- C:\WINDOWS\system32\RDXTaskFactory.dll
    2016-04-13 10:50:57 ----A---- C:\WINDOWS\system32\msv1_0.dll
    2016-04-13 10:50:57 ----A---- C:\WINDOWS\system32\MsSpellCheckingFacility.dll
    2016-04-13 10:50:57 ----A---- C:\WINDOWS\system32\MessagingDataModel2.dll
    2016-04-13 10:50:57 ----A---- C:\WINDOWS\system32\JpMapControl.dll
    2016-04-13 10:50:56 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Cred.dll
    2016-04-13 10:50:56 ----A---- C:\WINDOWS\SYSWOW64\JpMapControl.dll
    2016-04-13 10:50:56 ----A---- C:\WINDOWS\system32\wuapi.dll
    2016-04-13 10:50:56 ----A---- C:\WINDOWS\system32\Windows.Networking.Connectivity.dll
    2016-04-13 10:50:56 ----A---- C:\WINDOWS\system32\Windows.Devices.Bluetooth.dll
    2016-04-13 10:50:56 ----A---- C:\WINDOWS\system32\moshostcore.dll
    2016-04-13 10:50:56 ----A---- C:\WINDOWS\system32\bdesvc.dll
    2016-04-13 10:50:55 ----A---- C:\WINDOWS\SYSWOW64\msxml3.dll
    2016-04-13 10:50:55 ----A---- C:\WINDOWS\SYSWOW64\msi.dll
    2016-04-13 10:50:55 ----A---- C:\WINDOWS\system32\mdmmigrator.dll
    2016-04-13 10:50:55 ----A---- C:\WINDOWS\system32\drivers\tcpip.sys
    2016-04-13 10:50:55 ----A---- C:\WINDOWS\system32\CredProvDataModel.dll
    2016-04-13 10:50:54 ----A---- C:\WINDOWS\SYSWOW64\Windows.Web.dll
    2016-04-13 10:50:54 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Input.Inking.dll
    2016-04-13 10:50:54 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Speech.dll
    2016-04-13 10:50:54 ----A---- C:\WINDOWS\SYSWOW64\TokenBroker.dll
    2016-04-13 10:50:54 ----A---- C:\WINDOWS\SYSWOW64\policymanager.dll
    2016-04-13 10:50:54 ----A---- C:\WINDOWS\SYSWOW64\NetSetupApi.dll
    2016-04-13 10:50:54 ----A---- C:\WINDOWS\SYSWOW64\MsSpellCheckingFacility.dll
    2016-04-13 10:50:54 ----A---- C:\WINDOWS\SYSWOW64\dnsapi.dll
    2016-04-13 10:50:54 ----A---- C:\WINDOWS\system32\Windows.Web.dll
    2016-04-13 10:50:54 ----A---- C:\WINDOWS\system32\Windows.UI.Input.Inking.dll
    2016-04-13 10:50:54 ----A---- C:\WINDOWS\system32\msi.dll
    2016-04-13 10:50:54 ----A---- C:\WINDOWS\system32\LsaIso.exe
    2016-04-13 10:50:54 ----A---- C:\WINDOWS\system32\enrollmentapi.dll
    2016-04-13 10:50:54 ----A---- C:\WINDOWS\system32\drivers\USBXHCI.SYS
    2016-04-13 10:50:54 ----A---- C:\WINDOWS\system32\drivers\ufx01000.sys
    2016-04-13 10:50:54 ----A---- C:\WINDOWS\system32\dnsapi.dll
    2016-04-13 10:50:54 ----A---- C:\WINDOWS\system32\dafBth.dll
    2016-04-13 10:50:54 ----A---- C:\WINDOWS\system32\AppxSysprep.dll
    2016-04-13 10:50:54 ----A---- C:\WINDOWS\system32\accountaccessor.dll
    2016-04-13 10:50:53 ----A---- C:\WINDOWS\SYSWOW64\Windows.Networking.Connectivity.dll
    2016-04-13 10:50:53 ----A---- C:\WINDOWS\SYSWOW64\msorcl32.dll
    2016-04-13 10:50:53 ----A---- C:\WINDOWS\SYSWOW64\MosStorage.dll
    2016-04-13 10:50:53 ----A---- C:\WINDOWS\system32\VEDataLayerHelpers.dll
    2016-04-13 10:50:53 ----A---- C:\WINDOWS\system32\profsvc.dll
    2016-04-13 10:50:53 ----A---- C:\WINDOWS\system32\policymanagerprecheck.dll
    2016-04-13 10:50:53 ----A---- C:\WINDOWS\system32\MosStorage.dll
    2016-04-13 10:50:53 ----A---- C:\WINDOWS\system32\drivers\ndis.sys
    2016-04-13 10:50:53 ----A---- C:\WINDOWS\system32\AboveLockAppHost.dll
    2016-04-13 10:50:52 ----A---- C:\WINDOWS\SYSWOW64\wuapi.dll
    2016-04-13 10:50:52 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Devices.dll
    2016-04-13 10:50:52 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Bluetooth.dll
    2016-04-13 10:50:52 ----A---- C:\WINDOWS\SYSWOW64\VEDataLayerHelpers.dll
    2016-04-13 10:50:52 ----A---- C:\WINDOWS\SYSWOW64\srvcli.dll
    2016-04-13 10:50:52 ----A---- C:\WINDOWS\SYSWOW64\netapi32.dll
    2016-04-13 10:50:52 ----A---- C:\WINDOWS\SYSWOW64\mdmregistration.dll
    2016-04-13 10:50:52 ----A---- C:\WINDOWS\SYSWOW64\AboveLockAppHost.dll
    2016-04-13 10:50:52 ----A---- C:\WINDOWS\system32\wkscli.dll
    2016-04-13 10:50:52 ----A---- C:\WINDOWS\system32\Windows.Security.Authentication.Web.Core.dll
    2016-04-13 10:50:52 ----A---- C:\WINDOWS\system32\Windows.Networking.dll
    2016-04-13 10:50:52 ----A---- C:\WINDOWS\system32\Windows.Media.Devices.dll
    2016-04-13 10:50:52 ----A---- C:\WINDOWS\system32\SystemSettingsAdminFlows.exe
    2016-04-13 10:50:52 ----A---- C:\WINDOWS\system32\srvcli.dll
    2016-04-13 10:50:52 ----A---- C:\WINDOWS\system32\samsrv.dll
    2016-04-13 10:50:52 ----A---- C:\WINDOWS\system32\policymanager.dll
    2016-04-13 10:50:52 ----A---- C:\WINDOWS\system32\omadmapi.dll
    2016-04-13 10:50:52 ----A---- C:\WINDOWS\system32\NetSetupApi.dll
    2016-04-13 10:50:52 ----A---- C:\WINDOWS\system32\netapi32.dll
    2016-04-13 10:50:52 ----A---- C:\WINDOWS\system32\ncbservice.dll
    2016-04-13 10:50:52 ----A---- C:\WINDOWS\system32\mdmregistration.dll
    2016-04-13 10:50:52 ----A---- C:\WINDOWS\system32\fveui.dll
    2016-04-13 10:50:52 ----A---- C:\WINDOWS\system32\drivers\xinputhid.sys
    2016-04-13 10:50:52 ----A---- C:\WINDOWS\system32\drivers\dfsc.sys
    2016-04-13 10:50:51 ----A---- C:\WINDOWS\SYSWOW64\WSDApi.dll
    2016-04-13 10:50:51 ----A---- C:\WINDOWS\SYSWOW64\wkscli.dll
    2016-04-13 10:50:51 ----A---- C:\WINDOWS\SYSWOW64\Windows.Networking.dll
    2016-04-13 10:50:51 ----A---- C:\WINDOWS\SYSWOW64\VEEventDispatcher.dll
    2016-04-13 10:50:51 ----A---- C:\WINDOWS\SYSWOW64\SensorsNativeApi.dll
    2016-04-13 10:50:51 ----A---- C:\WINDOWS\SYSWOW64\oleacc.dll
    2016-04-13 10:50:51 ----A---- C:\WINDOWS\system32\wsdchngr.dll
    2016-04-13 10:50:51 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
    2016-04-13 10:50:51 ----A---- C:\WINDOWS\system32\win32spl.dll
    2016-04-13 10:50:51 ----A---- C:\WINDOWS\system32\SensorsNativeApi.dll
    2016-04-13 10:50:51 ----A---- C:\WINDOWS\system32\oleacc.dll
    2016-04-13 10:50:51 ----A---- C:\WINDOWS\system32\iuilp.dll
    2016-04-13 10:50:51 ----A---- C:\WINDOWS\system32\IKEEXT.DLL
    2016-04-13 10:50:51 ----A---- C:\WINDOWS\system32\ieproxy.dll
    2016-04-13 10:50:51 ----A---- C:\WINDOWS\system32\easinvoker.exe
    2016-04-13 10:50:51 ----A---- C:\WINDOWS\system32\drivers\WdiWiFi.sys
    2016-04-13 10:50:51 ----A---- C:\WINDOWS\system32\drivers\sdbus.sys
    2016-04-13 10:50:51 ----A---- C:\WINDOWS\system32\drivers\nwifi.sys
    2016-04-13 10:50:51 ----A---- C:\WINDOWS\system32\drivers\dumpsd.sys
    2016-04-13 10:50:51 ----A---- C:\WINDOWS\system32\dnsrslvr.dll
    2016-04-13 10:50:51 ----A---- C:\WINDOWS\system32\DAFWSD.dll
    2016-04-13 10:50:51 ----A---- C:\WINDOWS\system32\credprovhost.dll
    2016-04-13 10:50:51 ----A---- C:\WINDOWS\system32\BitLockerDeviceEncryption.exe
    2016-04-13 10:50:50 ----A---- C:\WINDOWS\SYSWOW64\wsdchngr.dll
    2016-04-13 10:50:50 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
    2016-04-13 10:50:50 ----A---- C:\WINDOWS\SYSWOW64\NotificationObjFactory.dll
    2016-04-13 10:50:50 ----A---- C:\WINDOWS\SYSWOW64\ieproxy.dll
    2016-04-13 10:50:50 ----A---- C:\WINDOWS\SYSWOW64\credprovhost.dll
    2016-04-13 10:50:50 ----A---- C:\WINDOWS\system32\wuautoappupdate.dll
    2016-04-13 10:50:50 ----A---- C:\WINDOWS\system32\WSDApi.dll
    2016-04-13 10:50:50 ----A---- C:\WINDOWS\system32\VEStoreEventHandlers.dll
    2016-04-13 10:50:50 ----A---- C:\WINDOWS\system32\VEEventDispatcher.dll
    2016-04-13 10:50:50 ----A---- C:\WINDOWS\system32\tzautoupdate.dll
    2016-04-13 10:50:50 ----A---- C:\WINDOWS\system32\NotificationObjFactory.dll
    2016-04-13 10:50:50 ----A---- C:\WINDOWS\system32\easwrt.dll
    2016-04-13 10:50:50 ----A---- C:\WINDOWS\system32\dmcsps.dll
    2016-04-13 10:50:50 ----A---- C:\WINDOWS\system32\browserbroker.dll
    2016-04-13 10:50:49 ----A---- C:\WINDOWS\SYSWOW64\Windows.Security.Authentication.Web.Core.dll
    2016-04-13 10:50:49 ----A---- C:\WINDOWS\SYSWOW64\SyncController.dll
    2016-04-13 10:50:49 ----A---- C:\WINDOWS\SYSWOW64\easwrt.dll
    2016-04-13 10:50:49 ----A---- C:\WINDOWS\SYSWOW64\browcli.dll
    2016-04-13 10:50:49 ----A---- C:\WINDOWS\system32\tbauth.dll
    2016-04-13 10:50:49 ----A---- C:\WINDOWS\system32\SensorsNativeApi.V2.dll
    2016-04-13 10:50:49 ----A---- C:\WINDOWS\system32\OnDemandConnRouteHelper.dll
    2016-04-13 10:50:49 ----A---- C:\WINDOWS\system32\LicenseManagerShellext.exe
    2016-04-13 10:50:49 ----A---- C:\WINDOWS\system32\FWPUCLNT.DLL
    2016-04-13 10:50:49 ----A---- C:\WINDOWS\system32\fvewiz.dll
    2016-04-13 10:50:49 ----A---- C:\WINDOWS\system32\fveskybackup.dll
    2016-04-13 10:50:49 ----A---- C:\WINDOWS\system32\fvecpl.dll
    2016-04-13 10:50:49 ----A---- C:\WINDOWS\system32\drivers\serial.sys
    2016-04-13 10:50:49 ----A---- C:\WINDOWS\system32\browser.dll
    2016-04-13 10:50:49 ----A---- C:\WINDOWS\system32\browcli.dll
    2016-04-13 10:50:49 ----A---- C:\WINDOWS\system32\BFE.DLL
    2016-04-13 10:50:49 ----A---- C:\WINDOWS\system32\basesrv.dll
    2016-04-13 10:50:49 ----A---- C:\WINDOWS\system32\actxprxy.dll
    2016-04-13 10:50:48 ----A---- C:\WINDOWS\SYSWOW64\TokenBrokerCookies.exe
    2016-04-13 10:50:48 ----A---- C:\WINDOWS\SYSWOW64\tbauth.dll
    2016-04-13 10:50:48 ----A---- C:\WINDOWS\SYSWOW64\FWPUCLNT.DLL
    2016-04-13 10:50:48 ----A---- C:\WINDOWS\system32\wups.dll
    2016-04-13 10:50:48 ----A---- C:\WINDOWS\system32\TokenBrokerCookies.exe
    2016-04-13 10:50:48 ----A---- C:\WINDOWS\system32\SystemSettings.DeviceEncryptionHandlers.dll
    2016-04-13 10:50:48 ----A---- C:\WINDOWS\system32\samlib.dll
    2016-04-13 10:50:48 ----A---- C:\WINDOWS\system32\moshost.dll
    2016-04-13 10:50:48 ----A---- C:\WINDOWS\system32\mos.dll
    2016-04-13 10:50:48 ----A---- C:\WINDOWS\system32\mapsupdatetask.dll
    2016-04-13 10:50:48 ----A---- C:\WINDOWS\system32\FontProvider.dll
    2016-04-13 10:50:48 ----A---- C:\WINDOWS\system32\drivers\portcls.sys
    2016-04-13 10:50:48 ----A---- C:\WINDOWS\system32\dmenterprisediagnostics.dll
    2016-04-13 10:50:47 ----A---- C:\WINDOWS\SYSWOW64\SensorsNativeApi.V2.dll
    2016-04-13 10:50:47 ----A---- C:\WINDOWS\SYSWOW64\samlib.dll
    2016-04-13 10:50:47 ----A---- C:\WINDOWS\SYSWOW64\OnDemandConnRouteHelper.dll
    2016-04-13 10:50:47 ----A---- C:\WINDOWS\SYSWOW64\oleacchooks.dll
    2016-04-13 10:50:47 ----A---- C:\WINDOWS\SYSWOW64\NMAA.dll
    2016-04-13 10:50:47 ----A---- C:\WINDOWS\SYSWOW64\mtxoci.dll
    2016-04-13 10:50:47 ----A---- C:\WINDOWS\SYSWOW64\mos.dll
    2016-04-13 10:50:47 ----A---- C:\WINDOWS\SYSWOW64\actxprxy.dll
    2016-04-13 10:50:47 ----A---- C:\WINDOWS\system32\oleacchooks.dll
    2016-04-13 10:50:47 ----A---- C:\WINDOWS\system32\NetCfgNotifyObjectHost.exe
    2016-04-13 10:50:47 ----A---- C:\WINDOWS\system32\mtxoci.dll
    2016-04-13 10:50:47 ----A---- C:\WINDOWS\system32\MapsCSP.dll
    2016-04-13 10:50:47 ----A---- C:\WINDOWS\system32\MapsBtSvc.dll
    2016-04-13 10:50:47 ----A---- C:\WINDOWS\system32\fveapibase.dll
    2016-04-13 10:50:47 ----A---- C:\WINDOWS\system32\BdeHdCfgLib.dll
    2016-04-13 10:50:46 ----A---- C:\WINDOWS\SYSWOW64\MTF.dll
    2016-04-13 10:50:46 ----A---- C:\WINDOWS\SYSWOW64\MapsBtSvc.dll
    2016-04-13 10:50:46 ----A---- C:\WINDOWS\SYSWOW64\InstallAgent.exe
    2016-04-13 10:50:46 ----A---- C:\WINDOWS\system32\MTF.dll
    2016-04-13 10:50:46 ----A---- C:\WINDOWS\system32\InstallAgent.exe
    2016-04-13 10:50:46 ----A---- C:\WINDOWS\system32\Chakradiag.dll
    2016-04-13 10:50:46 ----A---- C:\WINDOWS\system32\drivers\BTHUSB.SYS
    2016-04-13 10:50:46 ----A---- C:\WINDOWS\system32\bcastdvr.exe
    2016-04-13 10:50:46 ----A---- C:\WINDOWS\system32\AppCapture.dll
    2016-04-09 19:01:51 ----D---- C:\Users\Ondra K\AppData\Roaming\TeamViewer
    2016-04-09 19:01:41 ----AD---- C:\Program Files (x86)\TeamViewer
    2016-04-07 18:16:17 ----D---- C:\ProgramData\Comodo Downloader

    ======List of files/folders modified in the last 1 month======

    2016-04-27 18:48:55 ----D---- C:\Program Files\trend micro
    2016-04-27 18:45:11 ----D---- C:\WINDOWS\Prefetch
    2016-04-27 18:44:41 ----D---- C:\Users\Ondra K\AppData\Roaming\Skype
    2016-04-27 18:43:51 ----D---- C:\WINDOWS\Temp
    2016-04-27 18:35:18 ----D---- C:\WINDOWS\system32\sru
    2016-04-27 18:34:46 ----D---- C:\WINDOWS\System32
    2016-04-27 18:34:45 ----D---- C:\WINDOWS\Minidump
    2016-04-27 18:34:40 ----D---- C:\Windows
    2016-04-27 18:32:43 ----D---- C:\WINDOWS\Microsoft.NET
    2016-04-27 18:23:03 ----HD---- C:\Program Files\WindowsApps
    2016-04-27 18:22:05 ----D---- C:\Users\Ondra K\AppData\Roaming\vlc
    2016-04-27 18:07:55 ----D---- C:\WINDOWS\AppReadiness
    2016-04-26 20:27:30 ----SHD---- C:\System Volume Information
    2016-04-25 19:17:19 ----D---- C:\WINDOWS\system32\config
    2016-04-25 18:12:32 ----D---- C:\WINDOWS\INF
    2016-04-25 18:12:32 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
    2016-04-24 18:42:45 ----D---- C:\Users\Ondra K\AppData\Roaming\uTorrent
    2016-04-23 18:52:13 ----AD---- C:\WINDOWS\SysWOW64
    2016-04-23 18:51:41 ----D---- C:\WINDOWS\system32\drivers
    2016-04-23 18:51:06 ----D---- C:\WINDOWS\system32\DriverStore
    2016-04-23 18:50:25 ----A---- C:\WINDOWS\system32\atiesrxx.exe
    2016-04-23 18:50:24 ----A---- C:\WINDOWS\system32\atieclxx.exe
    2016-04-23 18:50:21 ----A---- C:\WINDOWS\SYSWOW64\atiumdva.dll
    2016-04-23 18:50:21 ----A---- C:\WINDOWS\system32\atidemgy.dll
    2016-04-23 18:50:21 ----A---- C:\WINDOWS\system32\atiadlxx.dll
    2016-04-23 18:50:20 ----A---- C:\WINDOWS\SYSWOW64\atiumdag.dll
    2016-04-23 18:50:18 ----A---- C:\WINDOWS\system32\atiumd6a.dll
    2016-04-23 18:50:18 ----A---- C:\WINDOWS\system32\atidxx64.dll
    2016-04-23 18:50:17 ----A---- C:\WINDOWS\system32\atiumd64.dll
    2016-04-23 18:01:06 ----D---- C:\Stahování
    2016-04-18 21:32:25 ----SHD---- C:\WINDOWS\Installer
    2016-04-18 21:32:24 ----SHD---- C:\Config.Msi
    2016-04-16 10:23:54 ----D---- C:\WINDOWS\rescache
    2016-04-16 09:30:41 ----D---- C:\ProgramData\Skype
    2016-04-16 09:30:06 ----RD---- C:\Program Files (x86)\Skype
    2016-04-16 09:30:06 ----D---- C:\Program Files (x86)\Common Files
    2016-04-14 08:26:28 ----RSD---- C:\WINDOWS\assembly
    2016-04-14 07:30:21 ----D---- C:\WINDOWS\WinSxS
    2016-04-14 07:26:10 ----D---- C:\ProgramData\Microsoft Help
    2016-04-14 07:24:21 ----A---- C:\WINDOWS\win.ini
    2016-04-14 07:10:47 ----D---- C:\Users\Ondra K\AppData\Roaming\Dropbox
    2016-04-14 07:07:25 ----D---- C:\Program Files (x86)\Dropbox
    2016-04-13 23:02:35 ----D---- C:\WINDOWS\SYSWOW64\en-US
    2016-04-13 23:02:35 ----D---- C:\WINDOWS\SYSWOW64\cs-CZ
    2016-04-13 23:02:20 ----D---- C:\WINDOWS\system32\WinBioPlugIns
    2016-04-13 23:02:20 ----D---- C:\WINDOWS\system32\en-US
    2016-04-13 23:02:19 ----D---- C:\WINDOWS\system32\cs-CZ
    2016-04-13 23:02:19 ----D---- C:\WINDOWS\system32\Boot
    2016-04-13 23:02:19 ----D---- C:\WINDOWS\system32\appraiser
    2016-04-13 23:02:16 ----D---- C:\WINDOWS\PolicyDefinitions
    2016-04-13 23:02:11 ----D---- C:\WINDOWS\bcastdvr
    2016-04-13 23:02:11 ----D---- C:\WINDOWS\AppPatch
    2016-04-13 20:06:02 ----D---- C:\WINDOWS\CbsTemp
    2016-04-13 20:03:41 ----D---- C:\WINDOWS\system32\MRT
    2016-04-13 19:51:56 ----A---- C:\WINDOWS\system32\MRT.exe
    2016-04-13 16:28:38 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe
    2016-04-13 10:25:49 ----D---- C:\WINDOWS\system32\catroot2
    2016-04-11 19:48:31 ----D---- C:\WINDOWS\system32\NDF
    2016-04-09 19:02:12 ----D---- C:\WINDOWS\system32\Tasks
    2016-04-09 19:01:56 ----RSD---- C:\WINDOWS\Fonts
    2016-04-09 19:01:41 ----RD---- C:\Program Files (x86)
    2016-04-08 21:01:54 ----AD---- C:\Program Files (x86)\Overwolf
    2016-04-07 18:16:17 ----HD---- C:\ProgramData
    2016-04-06 14:17:08 ----A---- C:\WINDOWS\system32\cmdcsr.dll
    2016-04-06 14:16:56 ----A---- C:\WINDOWS\SYSWOW64\guard32.dll
    2016-04-06 14:16:50 ----A---- C:\WINDOWS\system32\guard64.dll
    2016-04-06 14:14:56 ----A---- C:\WINDOWS\system32\cmdvrt64.dll
    2016-04-06 14:14:01 ----A---- C:\WINDOWS\system32\cmdkbd64.dll
    2016-04-06 14:12:07 ----A---- C:\WINDOWS\SYSWOW64\cmdvrt32.dll
    2016-04-06 14:11:12 ----A---- C:\WINDOWS\SYSWOW64\cmdkbd32.dll

    ======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

    R0 amd_sata;amd_sata; C:\WINDOWS\System32\drivers\amd_sata.sys [2013-07-23 80640]
    R0 amd_xata;amd_xata; C:\WINDOWS\System32\drivers\amd_xata.sys [2013-07-23 25344]
    R0 amdkmpfd;@oem1.inf,%AMDKMPFD_svcdesc%;AMD PCI Root Bus Lower Filter; C:\WINDOWS\System32\drivers\amdkmpfd.sys [2013-05-21 36096]
    R0 LHDmgr;LHDmgr; C:\WINDOWS\System32\DRIVERS\LhdX64.sys [2014-06-19 39008]
    R1 CFRMD;CFRMD; C:\WINDOWS\system32\DRIVERS\CFRMD.sys [2014-06-26 40224]
    R1 cfywlan2;@oem86.inf,%cfywlan2_Desc%;Connectify WLAN LightWeight Filter; C:\WINDOWS\system32\DRIVERS\cfywlan2.sys [2016-02-14 46088]
    R1 cmderd;COMODO Internet Security Eradication Driver; C:\WINDOWS\System32\DRIVERS\cmderd.sys [2016-04-06 32224]
    R1 cmdGuard;COMODO Internet Security Sandbox Driver; C:\WINDOWS\system32\DRIVERS\cmdguard.sys [2016-04-06 846104]
    R1 cmdHlp;COMODO Internet Security Helper Driver; C:\WINDOWS\system32\DRIVERS\cmdhlp.sys [2016-04-06 45600]
    R1 cnnctfy4;cnnctfy4; C:\WINDOWS\system32\DRIVERS\cnnctfy4.sys [2016-02-14 53216]
    R1 dtsoftbus01;@oem64.inf,%DTSoftBus.SVCDESC%;DAEMON Tools Virtual Bus Driver; C:\WINDOWS\System32\drivers\dtsoftbus01.sys [2014-10-06 283064]
    R1 FileCrypt;@%systemroot%\system32\drivers\filecrypt.sys,-100; C:\WINDOWS\system32\drivers\filecrypt.sys [2015-10-30 87040]
    R1 GpuEnergyDrv;@%SystemRoot%\system32\drivers\gpuenergydrv.sys,-100; C:\WINDOWS\System32\drivers\gpuenergydrv.sys [2015-10-30 8192]
    R1 HMD;COMODO livePCsupport Hardware Monitor Driver; C:\WINDOWS\system32\DRIVERS\hmd.sys [2014-06-26 14888]
    R1 inspect;COMODO Internet Security Firewall Driver; C:\WINDOWS\system32\DRIVERS\inspect.sys [2016-04-06 138560]
    R2 AODDriver4.2.0;AODDriver4.2.0; \??\C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys [2014-02-11 59616]
    R2 APXACC;@oem51.inf,%APPEX_ACC_SERVICE_NAME%;AppEx Networks Accelerator LWF; C:\WINDOWS\system32\DRIVERS\appexDrv.sys [2013-04-18 219360]
    R2 IDMWFP;IDMWFP; C:\WINDOWS\system32\DRIVERS\idmwfp.sys [2015-05-26 197616]
    R2 MMCSS;@%systemroot%\system32\drivers\mmcss.sys,-100; C:\WINDOWS\system32\drivers\mmcss.sys [2015-10-30 47616]
    R3 ACPIVPC;@oem2.inf,%ACPIVPC.SvcDesc%;Lenovo Virtual Power Controller Driver; C:\WINDOWS\System32\drivers\AcpiVpc.sys [2014-06-19 35600]
    R3 amdkmdag;amdkmdag; C:\WINDOWS\system32\DRIVERS\atikmdag.sys [2016-04-23 23969776]
    R3 amdkmdap;amdkmdap; C:\WINDOWS\system32\DRIVERS\atikmpag.sys [2015-12-17 674288]
    R3 AtiHDAudioService;@oem56.inf,%ATIHdAudioDriver.SvcDesc%;AMD Function Driver for HD Audio Service; C:\WINDOWS\system32\drivers\AtihdWT6.sys [2015-05-28 102912]
    R3 bcbtums;@oem60.inf,%BCBTUMS.SvcDesc%;Bluetooth RAM Firmware Download USB Filter; C:\WINDOWS\system32\drivers\bcbtums.sys [2015-03-27 173312]
    R3 BCM43XX;@netbc64.inf,%BCM43XX_Service_DispName%;Broadcom 802.11 – ovladač síťového adaptéru; C:\WINDOWS\system32\DRIVERS\bcmwl63a.sys [2015-10-30 7585280]
    R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Ovladač rozhraní USB radiostanice Bluetooth; C:\WINDOWS\System32\drivers\BTHUSB.sys [2016-04-13 84992]
    R3 CnxtHdAudService;@oem77.inf,%UAAFunctionDriverForHdAudio.SvcDesc%;Conexant UAA Function Driver for High Definition Audio Service; C:\WINDOWS\system32\drivers\CHDRT64.sys [2015-10-25 1561728]
    R3 ETD;@oem11.inf,%PS2.DeviceDesc%;ELAN Input Device; C:\WINDOWS\system32\DRIVERS\ETD.sys [2015-10-07 525512]
    R3 L1C;@oem59.inf,%L1C.Service.DispName%;NDIS Miniport Driver for Qualcomm Atheros AR81xx PCI-E Ethernet Controller; C:\WINDOWS\System32\drivers\L1C63x64.sys [2013-07-18 130248]
    R3 rtsuvc;@oem63.inf,%rtsuvc.DeviceDesc%;Lenovo EasyCamera; C:\WINDOWS\system32\DRIVERS\rtsuvc.sys [2015-06-02 3057920]
    S0 LSI_SAS2i;LSI_SAS2i; C:\WINDOWS\System32\drivers\lsi_sas2i.sys [2015-10-30 104800]
    S0 LSI_SAS3i;LSI_SAS3i; C:\WINDOWS\System32\drivers\lsi_sas3i.sys [2015-10-30 99168]
    S0 percsas2i;percsas2i; C:\WINDOWS\System32\drivers\percsas2i.sys [2015-10-30 58208]
    S0 percsas3i;percsas3i; C:\WINDOWS\System32\drivers\percsas3i.sys [2015-10-30 58720]
    S1 cnnctfy3;Connectify LightWeight Filter; C:\WINDOWS\system32\DRIVERS\cnnctfy3.sys [2014-12-14 42152]
    S3 AndNetDiag;LGE AndroidNet USB Serial Port; C:\WINDOWS\system32\DRIVERS\lgandnetdiag64.sys [2015-02-02 29184]
    S3 ANDNetModem;LGE AndroidNet USB Modem; C:\WINDOWS\system32\DRIVERS\lgandnetmodem64.sys [2015-02-02 36352]
    S3 bcmfn;@bcmfn.inf,%bcmfn.SVCDESC%;bcmfn Service; C:\WINDOWS\System32\drivers\bcmfn.sys [2015-10-30 9728]
    S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Ovladač portu Bluetooth; C:\WINDOWS\System32\drivers\BTHport.sys [2016-04-13 954368]
    S3 btwampfl;@oem60.inf,%btwampfl.ServiceName%;btwampfl; C:\WINDOWS\system32\DRIVERS\btwampfl.sys [2015-03-27 188160]
    S3 buttonconverter;@buttonconverter.inf,%btnconv.SvcDesc%;Service for Portable Device Control devices; C:\WINDOWS\System32\drivers\buttonconverter.sys [2015-10-30 37376]
    S3 CapImg;@capimg.inf,%CapImgHid_Service%;HID driver for CapImg touch screen; C:\WINDOWS\System32\drivers\capimg.sys [2015-12-09 117248]
    S3 genericusbfn;@genericusbfn.inf,%genericusbfn.ServiceName%;Generic USB Function Class; C:\WINDOWS\System32\drivers\genericusbfn.sys [2015-10-30 20992]
    S3 hidinterrupt;@hidinterrupt.inf,%HID_Interrupt.SvcDesc%;Common Driver for HID Buttons implemented with interrupts; C:\WINDOWS\System32\drivers\hidinterrupt.sys [2015-10-30 50016]
    S3 iai2c;@iai2c.inf,%iai2c.SVCDESC%;Intel(R) Serial IO I2C Host Controller; C:\WINDOWS\System32\drivers\iai2c.sys [2015-10-30 81408]
    S3 iaLPSS2i_I2C;@iaLPSS2i_I2C_SKL.inf,%iaLPSS2i_I2C.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [2015-10-30 165888]
    S3 ibbus;@mlx4_bus.inf,%Ibbus.ServiceDesc%;Mellanox InfiniBand Bus/AL (Filter Driver); C:\WINDOWS\System32\drivers\ibbus.sys [2015-10-30 424800]
    S3 IoQos;@%SystemRoot%\system32\drivers\ioqos.sys,-100; C:\WINDOWS\system32\drivers\ioqos.sys [2015-10-30 26624]
    S3 mlx4_bus;@mlx4_bus.inf,%MLX4BUS.ServiceDesc%;Mellanox ConnectX Bus Enumerator; C:\WINDOWS\System32\drivers\mlx4_bus.sys [2015-10-30 705376]
    S3 ndfltr;@mlx4_bus.inf,%ndfltr.ServiceDesc%;NetworkDirect Service; C:\WINDOWS\System32\drivers\ndfltr.sys [2015-10-30 76128]
    S3 ReFSv1;ReFSv1; C:\WINDOWS\system32\drivers\ReFSv1.sys [2015-10-30 930656]
    S3 RTSUER;@oem15.inf,%RtsUER%;Realtek USB Card Reader - UER; C:\WINDOWS\system32\Drivers\RtsUer.sys [2015-12-09 410880]

    ======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

    R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2016-01-14 82128]
    R2 AMD External Events Utility;AMD External Events Utility; C:\WINDOWS\system32\atiesrxx.exe [2016-04-23 254960]
    R2 AMD FUEL Service;AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [2015-08-21 344064]
    R2 AppHostSvc;@%windir%\system32\inetsrv\iisres.dll,-30011; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
    R2 BcmBtRSupport;@oem60.inf,%BlueBcmBtRSupport.SVCNAME%;Bluetooth Driver Management Service; C:\WINDOWS\system32\BtwRSupportService.exe [2015-10-25 2251992]
    R2 c2cautoupdatesvc;Skype Click to Call Updater; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [2016-01-17 1433216]
    R2 c2cpnrsvc;Skype Click to Call PNR Service; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [2016-01-17 1773696]
    R2 CLPSLauncher;COMODO LPS Launcher; C:\Program Files (x86)\Common Files\COMODO\launcher_service.exe [2014-09-25 70864]
    R2 CmdAgent;COMODO Internet Security Helper Service; C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe [2016-04-07 5799552]
    R2 Connectify;Connectify; C:\Program Files (x86)\Connectify\ConnectifyService.exe [2016-02-14 256568]
    R2 CoreMessagingRegistrar;@%SystemRoot%\system32\coremessaging.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
    R2 CxAudMsg;@C:\WINDOWS\system32\CxAudMsg64.exe,-100; C:\WINDOWS\system32\CxAudMsg64.exe [2013-07-25 206552]
    R2 DiagTrack;@%SystemRoot%\system32\diagtrack.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
    R2 DoSvc;@%systemroot%\system32\dosvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
    R2 DragonUpdater;COMODO Dragon Update Service; C:\Program Files (x86)\Comodo\Dragon\dragon_updater.exe [2016-03-23 2295992]
    R2 ETDService;Elan Service; C:\Program Files\Elantech\ETDService.exe [2015-10-25 144072]
    R2 GeekBuddyRSP;GeekBuddyRSP Server; C:\Program Files (x86)\Common Files\COMODO\GeekBuddyRSP.exe [2014-09-24 2327248]
    R2 NetPipeActivator;@%systemroot%\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\ServiceModelInstallRC.dll,-8197; C:\WINDOWS\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\SMSvcHost.exe [2015-12-09 117400]
    R2 OneSyncSvc_691738;Hostitel synchronizace_691738; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
    R2 RichVideo64;Cyberlink RichVideo64 Service(CRVS); C:\Program Files\CyberLink\Shared files\RichVideo64.exe [2012-04-24 390632]
    S2 dbupdate;Dropbox Update Service (dbupdate); C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [2015-10-25 136048]
    S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-09-03 144200]
    S2 MapsBroker;@%SystemRoot%\System32\moshost.dll,-100; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
    S2 NetTcpActivator;@C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\ServiceModelInstallRC.dll,-8199; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2015-10-30 135848]
    S2 OneSyncSvc;@%SystemRoot%\system32\APHostRes.dll,-10002; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
    S2 OneSyncSvc_100bc7;Hostitel synchronizace_100bc7; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
    S2 OneSyncSvc_102c52c;Hostitel synchronizace_102c52c; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
    S2 OneSyncSvc_10621dbe;Hostitel synchronizace_10621dbe; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
    S2 OneSyncSvc_106c6b;Hostitel synchronizace_106c6b; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
    S2 OneSyncSvc_17dc1c;Hostitel synchronizace_17dc1c; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
    S2 OneSyncSvc_19f326;Hostitel synchronizace_19f326; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
    S2 OneSyncSvc_2422d54;Hostitel synchronizace_2422d54; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
    S2 OneSyncSvc_2e42839;Hostitel synchronizace_2e42839; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
    S2 OneSyncSvc_327afe;Hostitel synchronizace_327afe; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
    S2 OneSyncSvc_41777d;Hostitel synchronizace_41777d; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
    S2 OneSyncSvc_4b55ad5;Hostitel synchronizace_4b55ad5; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
    S2 OneSyncSvc_4bee083;Hostitel synchronizace_4bee083; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
    S2 OneSyncSvc_556f9a8;Hostitel synchronizace_556f9a8; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
    S2 OneSyncSvc_5c08bdb;Hostitel synchronizace_5c08bdb; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
    S2 OneSyncSvc_6d648b;Hostitel synchronizace_6d648b; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
    S2 OneSyncSvc_803da95;Hostitel synchronizace_803da95; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
    S2 OneSyncSvc_91ee0;Hostitel synchronizace_91ee0; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
    S2 OneSyncSvc_a434f1;Hostitel synchronizace_a434f1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
    S2 OneSyncSvc_c3f74cc;Hostitel synchronizace_c3f74cc; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
    S2 OneSyncSvc_c877353;Hostitel synchronizace_c877353; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
    S2 OneSyncSvc_e0c7a;Hostitel synchronizace_e0c7a; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
    S2 SAService;Conexant SmartAudio service; C:\WINDOWS\system32\SAsrv.exe []
    S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2016-01-29 327296]
    S3 AJRouter;@%SystemRoot%\system32\AJRouter.dll,-2; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
    S3 aspnet_state;@%SystemRoot%\Microsoft.NET\Framework64\v4.0.30319\aspnet_rc.dll,-1; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2015-10-30 51376]
    S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
    S3 ClipSVC;@%SystemRoot%\system32\ClipSVC.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
    S3 cmdvirth;COMODO Virtual Service Manager; C:\Program Files\COMODO\COMODO Internet Security\cmdvirth.exe [2016-04-07 2271928]
    S3 dbupdatem;Dropbox Update Service (dbupdatem); C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [2015-10-25 136048]
    S3 DcpSvc;@%SystemRoot%\system32\dcpsvc.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
    S3 DevQueryBroker;@%SystemRoot%\system32\DevQueryBroker.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
    S3 diagnosticshub.standardcollector.service;@%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000; C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe [2015-10-30 31744]
    S3 DialComService;DIAL Communication Service; C:\Program Files (x86)\DIAL GmbH\DIAL Communication Framework\DialComService.exe [2013-12-17 1934608]
    S3 DmEnrollmentSvc;@%systemroot%\system32\Windows.Internal.Management.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
    S3 dmwappushservice;@%SystemRoot%\system32\dmwappushsvc.dll,-200; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
    S3 DsSvc;@%SystemRoot%\system32\dssvc.dll,-10003; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
    S3 embeddedmode;@%SystemRoot%\system32\embeddedmodesvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
    S3 EntAppSvc;@EnterpriseAppMgmtSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
    S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2015-10-23 43696]
    S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-09-03 144200]
    S3 icssvc;@%SystemRoot%\System32\tetheringservice.dll,-4097; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
    S3 LicenseManager;@%SystemRoot%\system32\licensemanagersvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
    S3 LSCWinService;LSCWinService; C:\Program Files\Lenovo\Lenovo Solution Center\App\LSCWinService.exe [2015-08-17 272424]
    S3 MessagingService;@%SystemRoot%\system32\MessagingService.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
    S3 MessagingService_100bc7;Služba zasílání zpráv_100bc7; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
    S3 MessagingService_102c52c;Služba zasílání zpráv_102c52c; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
    S3 MessagingService_10621dbe;Služba zasílání zpráv_10621dbe; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
    S3 MessagingService_106c6b;Služba zasílání zpráv_106c6b; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
    S3 MessagingService_17dc1c;Služba zasílání zpráv_17dc1c; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
    S3 MessagingService_19f326;Služba zasílání zpráv_19f326; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
    S3 MessagingService_2422d54;Služba zasílání zpráv_2422d54; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
    S3 MessagingService_2e42839;Služba zasílání zpráv_2e42839; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
    S3 MessagingService_327afe;Služba zasílání zpráv_327afe; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
    S3 MessagingService_41777d;Služba zasílání zpráv_41777d; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
    S3 MessagingService_4b55ad5;Služba zasílání zpráv_4b55ad5; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
    S3 MessagingService_4bee083;Služba zasílání zpráv_4bee083; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
    S3 MessagingService_556f9a8;Služba zasílání zpráv_556f9a8; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
    S3 MessagingService_5c08bdb;Služba zasílání zpráv_5c08bdb; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
    S3 MessagingService_691738;Služba zasílání zpráv_691738; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
    S3 MessagingService_6d648b;Služba zasílání zpráv_6d648b; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
    S3 MessagingService_803da95;Služba zasílání zpráv_803da95; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
    S3 MessagingService_91ee0;Služba zasílání zpráv_91ee0; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
    S3 MessagingService_a434f1;Služba zasílání zpráv_a434f1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
    S3 MessagingService_c3f74cc;Služba zasílání zpráv_c3f74cc; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
    S3 MessagingService_c877353;Služba zasílání zpráv_c877353; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
    S3 MessagingService_e0c7a;Služba zasílání zpráv_e0c7a; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
    S3 NetSetupSvc;@%SystemRoot%\system32\NetSetupSvc.dll,-3; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
    S3 NgcCtnrSvc;@%SystemRoot%\System32\NgcCtnrSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
    S3 NgcSvc;@%SystemRoot%\System32\ngcsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
    S3 ose64;Office 64 Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2012-12-08 178760]
    S3 OverwolfUpdater;Overwolf Updater Windows SCM; C:\Program Files (x86)\Overwolf\OverwolfUpdater.exe [2016-04-07 1286896]
    S3 PhoneSvc;@%SystemRoot%\system32\PhoneserviceRes.dll,-10000; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
    S3 PimIndexMaintenanceSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-15001; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
    S3 PimIndexMaintenanceSvc_100bc7;Data kontaktů_100bc7; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
    S3 PimIndexMaintenanceSvc_102c52c;Data kontaktů_102c52c; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
    S3 PimIndexMaintenanceSvc_10621dbe;Data kontaktů_10621dbe; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
    S3 PimIndexMaintenanceSvc_106c6b;Data kontaktů_106c6b; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
    S3 PimIndexMaintenanceSvc_17dc1c;Data kontaktů_17dc1c; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
    S3 PimIndexMaintenanceSvc_19f326;Data kontaktů_19f326; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
    S3 PimIndexMaintenanceSvc_2422d54;Data kontaktů_2422d54; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
    S3 PimIndexMaintenanceSvc_2e42839;Data kontaktů_2e42839; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
    S3 PimIndexMaintenanceSvc_327afe;Data kontaktů_327afe; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
    S3 PimIndexMaintenanceSvc_41777d;Data kontaktů_41777d; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
    S3 PimIndexMaintenanceSvc_4b55ad5;Data kontaktů_4b55ad5; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
    S3 PimIndexMaintenanceSvc_4bee083;Data kontaktů_4bee083; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
    S3 PimIndexMaintenanceSvc_556f9a8;Data kontaktů_556f9a8; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
    S3 PimIndexMaintenanceSvc_5c08bdb;Data kontaktů_5c08bdb; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
    S3 PimIndexMaintenanceSvc_691738;Data kontaktů_691738; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
    S3 PimIndexMaintenanceSvc_6d648b;Data kontaktů_6d648b; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
    S3 PimIndexMaintenanceSvc_803da95;Data kontaktů_803da95; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
    S3 PimIndexMaintenanceSvc_91ee0;Data kontaktů_91ee0; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
    S3 PimIndexMaintenanceSvc_a434f1;Data kontaktů_a434f1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
    S3 PimIndexMaintenanceSvc_c3f74cc;Data kontaktů_c3f74cc; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
    S3 PimIndexMaintenanceSvc_c877353;Data kontaktů_c877353; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
    S3 PimIndexMaintenanceSvc_e0c7a;Data kontaktů_e0c7a; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
    S3 RetailDemo;@%SystemRoot%\System32\RDXService.dll,-256; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
    S3 SensorDataService;@%SystemRoot%\system32\SensorDataService.exe,-101; C:\WINDOWS\System32\SensorDataService.exe [2015-10-30 1297408]
    S3 SensorService;@%SystemRoot%\System32\sensorservice.dll,-1000; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
    S4 CDPSvc;@%SystemRoot%\system32\cdpsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
    S4 NetMsmqActivator;@%systemroot%\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\ServiceModelInstallRC.dll,-8195; C:\WINDOWS\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\SMSvcHost.exe [2015-12-09 117400]

    -----------------EOF-----------------

Re: Samovolné restartování notebooku

Napsal: 27 dub 2016 18:06
od Rudy
Zdravím!
Spusťte tuto utilitu:
Stáhněte AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
Uložte na plochu
Ukončete všechny programy
Klikněte nejprve na >Scan< a pak na >Clean<.
Proběhne skenováni a pak se objeví log, který sem vložte.

Re: Samovolné restartování notebooku

Napsal: 28 dub 2016 07:45
od Stoone
Čau, díky za zprávu, tady je ten LOG:

# AdwCleaner v5.114 - Log soubor vytvořen 28/04/2016 o 08:33:26
# Aktualizováno 27/04/2016 by Xplode
# Databáze : 2016-04-24.3 [Místní]
# Operační systém : Windows 10 Home (X64)
# Jméno uživatele : Ondra K - ONDRA
# Spuštěno z : C:\Users\Ondra K\Desktop\adwcleaner_5.114.exe
# Volba : Čištění
# Podpora : http://toolslib.net/forum

***** [ Služby ] *****


***** [ Složky ] *****

[#] Složka smazáno : C:\Users\Ondra K\AppData\Local\pokki
[#] Složka smazáno : C:\Users\Ondra K\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\cmaiofennmphjldldcpphcechfnnohja

***** [ Soubory ] *****

[#] Soubor smazáno : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PC App Store.lnk
[#] Soubor smazáno : C:\Users\Ondra K\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pokki Menu.lnk
[#] Soubor smazáno : C:\Users\Ondra K\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PC App Store.lnk
[#] Soubor smazáno : C:\Users\Ondra K\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_wlogin.icq.com_0.localstorage
[#] Soubor smazáno : C:\Users\Ondra K\AppData\Local\Comodo\Dragon\User Data\Default\Local Storage\chrome-extension_cmaiofennmphjldldcpphcechfnnohja_0.localstorage
[#] Soubor smazáno : C:\Users\Ondra K\AppData\Local\Comodo\Dragon\User Data\Default\Local Storage\chrome-extension_cmaiofennmphjldldcpphcechfnnohja_0.localstorage-journal

***** [ DLLs ] *****


***** [ WMI ] *****


***** [ Zástupci ] *****


***** [ Naplánované úkoly ] *****


***** [ Registr ] *****

[#] Hodnota smazáno : HKU\S-1-5-21-1067718225-367633953-3890117072-1002\Software\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run [Pokki]

***** [ Webové prohlížeče ] *****


*************************

:: "Tracing" odstraněných kláves
:: Nastavení Winsock odstraněno

*************************

C:\AdwCleaner\AdwCleaner[C1].txt - [2777 bytes] - [28/04/2016 08:31:30]
C:\AdwCleaner\AdwCleaner[C2].txt - [1977 bytes] - [28/04/2016 08:33:26]
C:\AdwCleaner\AdwCleaner[S1].txt - [2699 bytes] - [28/04/2016 08:22:50]

########## EOF - C:\AdwCleaner\AdwCleaner[C2].txt - [2123 bytes] ##########

Re: Samovolné restartování notebooku

Napsal: 28 dub 2016 17:04
od Rudy

Re: Samovolné restartování notebooku

Napsal: 28 dub 2016 17:44
od Stoone
Zatím se mi PC porad restartuje -> to predchozi nepomohlo. Jinak na plose se mi ulozil textovy soubor FRST a ten je prazdny, tak sem davam to co se ulozilo do FRST3.txt




Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:27-04-2016
Ran by Ondra K (administrator) on ONDRA (28-04-2016 18:35:12)
Running from C:\Users\Ondra K\Desktop
Loaded Profiles: Ondra K (Available Profiles: Ondra K & DefaultAppPool)
Platform: Windows 10 Home Version 1511 (X64) Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Comodo Security Solutions, Inc.) C:\Program Files (x86)\Common Files\COMODO\launcher_service.exe
(COMODO) C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
(AMD) C:\Windows\System32\atiesrxx.exe
(AMD) C:\Windows\System32\atieclxx.exe
(Conexant Systems Inc.) C:\Windows\System32\CxAudMsg64.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDService.exe
(Broadcom Corporation.) C:\Windows\System32\BtwRSupportService.exe
(Connectify) C:\Program Files (x86)\Connectify\ConnectifyService.exe
(Advanced Micro Devices, Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
(Comodo) C:\Program Files (x86)\Comodo\Dragon\dragon_updater.exe
() C:\Program Files\CyberLink\Shared files\RichVideo64.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe
(Comodo Security Solutions, Inc.) C:\Program Files (x86)\Common Files\COMODO\GeekBuddyRSP.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
(Connectify) C:\Program Files (x86)\Connectify\Connectifyd.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\SMSvcHost.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe
(COMODO) C:\Program Files\COMODO\COMODO Internet Security\cistray.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe
(CyberLink Corp.) C:\Program Files (x86)\Lenovo\PowerDVD10\PDVD10Serv.exe
(Conexant Systems, Inc.) C:\Program Files\CONEXANT\cAudioFilterAgent\CAudioFilterAgent64.exe
(Realtek semiconductor) C:\Windows\RTFTrack.exe
(Lenovo (Beijing) Limited) C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe
(Lenovo(beijing) Limited) C:\Program Files (x86)\Lenovo\Energy Management\utility.exe
(Google Inc.) C:\Users\Ondra K\AppData\Local\Google\Update\1.3.29.5\GoogleCrashHandler.exe
(Comodo Security Solutions, Inc.) C:\Program Files (x86)\Common Files\COMODO\GeekBuddyRSP.exe
(Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(Google Inc.) C:\Users\Ondra K\AppData\Local\Google\Update\1.3.29.5\GoogleCrashHandler64.exe
(Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(COMODO) C:\Program Files\COMODO\COMODO Internet Security\cavwp.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Lenovo) C:\Program Files\Lenovo\Lenovo Solution Center\LSCNotify.exe
(Microsoft Corporation) C:\Windows\SysWOW64\wbem\WmiPrvSE.exe
() C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkypeHost.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(COMODO) C:\Program Files\COMODO\COMODO Internet Security\cis.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(forum.viry.cz) C:\Users\Ondra K\Desktop\FRSTLauncher.exe
(Lenovo) C:\Program Files\Lenovo\Lenovo Solution Center\App\LSCTaskService.exe


==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [cAudioFilterAgent] => C:\Program Files\Conexant\cAudioFilterAgent\cAudioFilterAgent64.exe [935104 2014-11-25] (Conexant Systems, Inc.)
HKLM\...\Run: [SmartAudio] => C:\Program Files\CONEXANT\SAII\SACpl.exe [1830616 2014-04-10] (Conexant Systems, Inc.)
HKLM\...\Run: [ETDCtrl] => C:\Program Files\Elantech\ETDCtrl.exe [3242696 2015-10-25] (ELAN Microelectronics Corp.)
HKLM\...\Run: [RtsFT] => C:\WINDOWS\RTFTrack.exe [9308416 2015-10-25] (Realtek semiconductor)
HKLM\...\Run: [Energy Management] => C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe [17111056 2014-06-19] (Lenovo (Beijing) Limited)
HKLM\...\Run: [EnergyUtility] => C:\Program Files (x86)\Lenovo\Energy Management\Utility.exe [193008 2014-06-19] (Lenovo(beijing) Limited)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [500936 2015-04-28] (Adobe Systems Incorporated)
HKLM\...\Run: [Connectify Hotspot] => C:\Program Files (x86)\Connectify\Connectify.exe [4140600 2016-02-14] (Connectify)
HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [767176 2015-12-18] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [tvncontrol] => C:\Program Files (x86)\Common Files\COMODO\GeekBuddyRSP.exe [2327248 2014-09-24] (Comodo Security Solutions, Inc.)
HKLM-x32\...\Run: [Dropbox] => C:\Program Files (x86)\Dropbox\Client\Dropbox.exe [23248560 2016-04-14] (Dropbox, Inc.)
HKLM-x32\...\Run: [SafeQ Client] => C:\Program Files (x86)\Y Soft\SafeQ Client\Client\SafeQ Client.exe [259584 2015-12-15] ()
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [596528 2015-11-29] (Oracle Corporation)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1085656 2016-01-14] (Adobe Systems Incorporated)
HKU\S-1-5-21-1067718225-367633953-3890117072-1002\...\Run: [AppEx Accelerator UI] => C:\Program Files\AMD Quick Stream\AMDQuickStream.exe [429792 2013-04-11] (AppEx Networks Corporation)
HKU\S-1-5-21-1067718225-367633953-3890117072-1002\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3696912 2014-03-04] (Disc Soft Ltd)
HKU\S-1-5-21-1067718225-367633953-3890117072-1002\...\Run: [Overwolf] => C:\Program Files (x86)\Overwolf\Overwolf.exe [45296 2016-04-07] (Overwolf LTD)
HKU\S-1-5-21-1067718225-367633953-3890117072-1002\...\Run: [Google Update] => C:\Users\Ondra K\AppData\Local\Google\Update\GoogleUpdate.exe [144200 2015-09-03] (Google Inc.)
HKU\S-1-5-21-1067718225-367633953-3890117072-1002\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [50670720 2016-03-01] (Skype Technologies S.A.)
HKU\S-1-5-21-1067718225-367633953-3890117072-1002\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [8619224 2016-02-13] (Piriform Ltd)
HKU\S-1-5-21-1067718225-367633953-3890117072-1002\...\MountPoints2: {0a6629f3-4df1-11e4-8259-142d27f3a96e} - "F:\setup.exe"
ShellIconOverlayIdentifiers: [ GoogleDriveBlacklisted] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2016-04-25] (Google)
ShellIconOverlayIdentifiers: [ GoogleDriveSynced] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2016-04-25] (Google)
ShellIconOverlayIdentifiers: [ GoogleDriveSyncing] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2016-04-25] (Google)
ShellIconOverlayIdentifiers: [ DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.30.dll [2016-04-08] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.30.dll [2016-04-08] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt3] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.30.dll [2016-04-08] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt4] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.30.dll [2016-04-08] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt5] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.30.dll [2016-04-08] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt6] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.30.dll [2016-04-08] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt7] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.30.dll [2016-04-08] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt8] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.30.dll [2016-04-08] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [IDM Shell Extension] -> {CDC95B92-E27C-4745-A8C5-64A52A78855D} => C:\Program Files (x86)\Internet Download Manager\IDMShellExt64.dll [2014-04-21] (Tonec Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.30.dll [2016-04-08] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.30.dll [2016-04-08] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt3] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.30.dll [2016-04-08] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt4] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.30.dll [2016-04-08] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt5] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.30.dll [2016-04-08] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt6] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.30.dll [2016-04-08] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt7] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.30.dll [2016-04-08] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt8] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.30.dll [2016-04-08] (Dropbox, Inc.)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 192.168.5.1 185.60.104.1 93.157.130.65
Tcpip\..\Interfaces\{0499735e-4947-4b89-b1a5-812606dd7c6c}: [DhcpNameServer] 147.32.127.214 195.113.144.194
Tcpip\..\Interfaces\{a051744b-f074-40fd-b78a-fcb2947558eb}: [DhcpNameServer] 192.168.5.1 185.60.104.1 93.157.130.65
Tcpip\..\Interfaces\{a4e9369d-6619-4477-a4d1-a987d74b9818}: [DhcpNameServer] 192.168.5.1 185.60.104.1 93.157.130.65
Tcpip\..\Interfaces\{C884E2B2-1556-4707-8712-FB418D8C3858}: [DhcpNameServer] 7.254.254.254

Internet Explorer:
==================
HKU\S-1-5-21-1067718225-367633953-3890117072-1002\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://www.seznam.cz/
HKU\S-1-5-21-1067718225-367633953-3890117072-1002\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://lenovo13.msn.com/?pc=LCJB
HKU\S-1-5-21-1067718225-367633953-3890117072-1002\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = hxxp://www.lenovo.com
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-1067718225-367633953-3890117072-1002 -> DefaultScope {178D9161-8542-463B-9D8E-CD0505C5DC82} URL =
SearchScopes: HKU\S-1-5-21-1067718225-367633953-3890117072-1002 -> {178D9161-8542-463B-9D8E-CD0505C5DC82} URL =
BHO: IDM integration (IDMIEHlprObj Class) -> {0055C089-8582-441B-A0BF-17B458C2A3A8} -> C:\Program Files (x86)\Internet Download Manager\IDMIECC64.dll [2015-05-20] (Internet Download Manager, Tonec Inc.)
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2016-02-09] (Microsoft Corporation)
BHO: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2016-01-08] (Microsoft Corporation)
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL [2016-03-15] (Microsoft Corporation)
BHO: DIALux Browser Helper Object -> {F586CB96-7091-42ec-9829-F5D5CE65AFC1} -> C:\Program Files\DIAL GmbH\DIALux\Dialux.BHO_x64.dll [2014-05-09] (DIAL GmbH)
BHO-x32: IDM integration (IDMIEHlprObj Class) -> {0055C089-8582-441B-A0BF-17B458C2A3A8} -> C:\Program Files (x86)\Internet Download Manager\IDMIECC.dll [2015-05-20] (Internet Download Manager, Tonec Inc.)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2016-02-09] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_66\bin\ssv.dll [2015-11-29] (Oracle Corporation)
BHO-x32: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2016-01-08] (Microsoft Corporation)
BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL [2016-03-15] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_66\bin\jp2ssv.dll [2015-11-29] (Oracle Corporation)
BHO-x32: DIALux Browser Helper Object -> {F586CB96-7091-42ec-9829-F5D5CE65AFC1} -> C:\Program Files (x86)\DIALux\Dialux.BHO_x86.dll [2013-12-10] (DIAL GmbH)
Handler-x32: dialux - {8352FA4C-39C6-11D3-ADBA-00A0244FB1A2} - C:\Program Files (x86)\DIALux\DLXToolBox.dll [2014-04-01] (DIAL GmbH, Germany)
Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL [2014-04-01] (Microsoft Corporation)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll [2016-02-01] (Skype Technologies)
Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2016-01-08] (Microsoft Corporation)
Handler-x32: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2016-01-08] (Microsoft Corporation)

FireFox:
========
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~1\Office15\NPSPWRAP.DLL [2014-01-23] (Microsoft Corporation)
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll [2015-03-09] (Adobe Systems)
FF Plugin-x32: @canon.com/EPPEX -> C:\Program Files\Canon\Easy-PhotoPrint EX\NPEZFFPI.DLL [2013-04-19] (CANON INC.)
FF Plugin-x32: @java.com/DTPlugin,version=11.66.2 -> C:\Program Files (x86)\Java\jre1.8.0_66\bin\dtplugin\npDeployJava1.dll [2015-11-29] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.66.2 -> C:\Program Files (x86)\Java\jre1.8.0_66\bin\plugin2\npjp2.dll [2015-11-29] (Oracle Corporation)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2015-11-18] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office15\NPSPWRAP.DLL [2014-01-22] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-02-03] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-02-03] (Google Inc.)
FF Plugin-x32: @wolfram.com/Mathematica -> C:\Program Files (x86)\Common Files\Wolfram Research\Browser\10.0.1.5157423\npmathplugin.dll [2015-02-27] (Wolfram Research, Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2016-02-27] (Adobe Systems Inc.)
FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll [2015-03-09] (Adobe Systems)
FF Plugin HKU\S-1-5-21-1067718225-367633953-3890117072-1002: @tools.google.com/Google Update;version=3 -> C:\Users\Ondra K\AppData\Local\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-02-01] (Google Inc.)
FF Plugin HKU\S-1-5-21-1067718225-367633953-3890117072-1002: @tools.google.com/Google Update;version=9 -> C:\Users\Ondra K\AppData\Local\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-02-01] (Google Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npMeetingJoinPluginOC.dll [2015-11-18] (Microsoft Corporation)
FF HKU\S-1-5-21-1067718225-367633953-3890117072-1002\...\SeaMonkey\Extensions: [mozilla_cc@internetdownloadmanager.com] - C:\Users\Ondra K\AppData\Roaming\IDM\idmmzcc5
FF Extension: IDM CC - C:\Users\Ondra K\AppData\Roaming\IDM\idmmzcc5 [2016-01-05] [not signed]

Chrome:
=======
CHR HomePage: Default -> hxxp://www.seznam.cz/
CHR StartupUrls: Default -> "hxxp://seznam.cz/"
CHR Profile: C:\Users\Ondra K\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Prezentace Google) - C:\Users\Ondra K\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-02-04]
CHR Extension: (Dokumenty Google) - C:\Users\Ondra K\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-02-04]
CHR Extension: (Disk Google) - C:\Users\Ondra K\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-10-21]
CHR Extension: (SocialReviver) - C:\Users\Ondra K\AppData\Local\Google\Chrome\User Data\Default\Extensions\bfipfkeoidmndggnnpobeenlamiclald [2016-03-12]
CHR Extension: (YouTube) - C:\Users\Ondra K\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-09-25]
CHR Extension: (Vyhledávání Google) - C:\Users\Ondra K\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-10-27]
CHR Extension: (Tabulky Google) - C:\Users\Ondra K\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-02-04]
CHR Extension: (Dokumenty Google offline) - C:\Users\Ondra K\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-03-16]
CHR Extension: (AdBlock) - C:\Users\Ondra K\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2016-04-16]
CHR Extension: (Dropbox) - C:\Users\Ondra K\AppData\Local\Google\Chrome\User Data\Default\Extensions\ioekoebejdcmnlefjiknokhhafglcjdl [2015-07-01]
CHR Extension: (Application Launcher for Drive (by Google)) - C:\Users\Ondra K\AppData\Local\Google\Chrome\User Data\Default\Extensions\lmjegmlicamnimmfhcmpkclmigmmcbeh [2015-03-08]
CHR Extension: (F.B Purity-Clean Up Facebook) - C:\Users\Ondra K\AppData\Local\Google\Chrome\User Data\Default\Extensions\ncdlagniojmheiklojdcpdaeepochckl [2016-04-27]
CHR Extension: (IDM Integration Module) - C:\Users\Ondra K\AppData\Local\Google\Chrome\User Data\Default\Extensions\ngpampappnmepgilojfohadhhmbhlaek [2016-04-19]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Ondra K\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-04-02]
CHR Extension: (Gmail) - C:\Users\Ondra K\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-03-29]
CHR Profile: C:\Users\Ondra K\AppData\Local\Google\Chrome\User Data\Profile 1
CHR Extension: (Prezentace Google) - C:\Users\Ondra K\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-07-16]
CHR Extension: (Dokumenty Google) - C:\Users\Ondra K\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aohghmighlieiainnegkcijnfilokake [2015-07-16]
CHR Extension: (Disk Google) - C:\Users\Ondra K\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-07-16]
CHR Extension: (YouTube) - C:\Users\Ondra K\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-07-16]
CHR Extension: (Vyhledávání Google) - C:\Users\Ondra K\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-07-16]
CHR Extension: (Tabulky Google) - C:\Users\Ondra K\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-07-16]
CHR Extension: (Skype Click to Call) - C:\Users\Ondra K\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl [2015-07-16]
CHR Extension: (Application Launcher for Drive (by Google)) - C:\Users\Ondra K\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\lmjegmlicamnimmfhcmpkclmigmmcbeh [2015-07-16]
CHR Extension: (IDM Integration Module) - C:\Users\Ondra K\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ngpampappnmepgilojfohadhhmbhlaek [2015-07-16]
CHR Extension: (Peněženka Google) - C:\Users\Ondra K\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-07-16]
CHR Extension: (Gmail) - C:\Users\Ondra K\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-07-16]
CHR Profile: C:\Users\Ondra K\AppData\Local\Google\Chrome\User Data\Profile 2
CHR Extension: (Prezentace Google) - C:\Users\Ondra K\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-08-13]
CHR Extension: (Dokumenty Google) - C:\Users\Ondra K\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\aohghmighlieiainnegkcijnfilokake [2015-08-13]
CHR Extension: (Disk Google) - C:\Users\Ondra K\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-08-13]
CHR Extension: (YouTube) - C:\Users\Ondra K\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-08-13]
CHR Extension: (Vyhledávání Google) - C:\Users\Ondra K\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-08-13]
CHR Extension: (Tabulky Google) - C:\Users\Ondra K\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-08-13]
CHR Extension: (Skype Click to Call) - C:\Users\Ondra K\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl [2015-08-13]
CHR Extension: (Application Launcher for Drive (by Google)) - C:\Users\Ondra K\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\lmjegmlicamnimmfhcmpkclmigmmcbeh [2015-08-13]
CHR Extension: (IDM Integration Module) - C:\Users\Ondra K\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\ngpampappnmepgilojfohadhhmbhlaek [2015-08-24]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Ondra K\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-08-13]
CHR Extension: (Gmail) - C:\Users\Ondra K\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-08-13]
CHR HKLM\...\Chrome\Extension: [ngpampappnmepgilojfohadhhmbhlaek] - C:\Program Files (x86)\Internet Download Manager\IDMGCExt.crx [2015-05-20]
CHR HKU\S-1-5-21-1067718225-367633953-3890117072-1002\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx [2016-01-08]
CHR HKLM-x32\...\Chrome\Extension: [ngpampappnmepgilojfohadhhmbhlaek] - C:\Program Files (x86)\Internet Download Manager\IDMGCExt.crx [2015-05-20]

==================== Services (Whitelisted) ========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [344064 2015-08-21] (Advanced Micro Devices, Inc.) [File not signed]
R2 BcmBtRSupport; C:\Windows\system32\BtwRSupportService.exe [2251992 2015-10-25] (Broadcom Corporation.)
R2 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1433216 2016-01-17] (Microsoft Corporation)
R2 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1773696 2016-01-17] (Microsoft Corporation)
R2 CLPSLauncher; C:\Program Files (x86)\Common Files\COMODO\launcher_service.exe [70864 2014-09-25] (Comodo Security Solutions, Inc.)
R2 CmdAgent; C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe [5799552 2016-04-07] (COMODO)
S3 cmdvirth; C:\Program Files\COMODO\COMODO Internet Security\cmdvirth.exe [2271928 2016-04-07] (COMODO)
R2 Connectify; C:\Program Files (x86)\Connectify\ConnectifyService.exe [256568 2016-02-14] (Connectify)
S2 dbupdate; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [136048 2015-10-25] (Dropbox, Inc.)
S3 dbupdatem; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [136048 2015-10-25] (Dropbox, Inc.)
S3 DialComService; C:\Program Files (x86)\DIAL GmbH\DIAL Communication Framework\DialComService.exe [1934608 2013-12-17] (DIAL GmbH)
R2 DragonUpdater; C:\Program Files (x86)\Comodo\Dragon\dragon_updater.exe [2295992 2016-03-23] (Comodo)
R2 ETDService; C:\Program Files\Elantech\ETDService.exe [144072 2015-10-25] (ELAN Microelectronics Corp.)
R2 GeekBuddyRSP; C:\Program Files (x86)\Common Files\COMODO\GeekBuddyRSP.exe [2327248 2014-09-24] (Comodo Security Solutions, Inc.)
S3 LSCWinService; C:\Program Files\Lenovo\Lenovo Solution Center\App\LSCWinService.exe [272424 2015-08-17] (Lenovo)
S3 OverwolfUpdater; C:\Program Files (x86)\Overwolf\OverwolfUpdater.exe [1286896 2016-04-07] (Overwolf LTD)
R2 RichVideo64; C:\Program Files\CyberLink\Shared files\RichVideo64.exe [390632 2012-04-24] ()
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [6942480 2016-04-09] (TeamViewer GmbH)
S3 TunngleService; C:\Program Files (x86)\Tunngle\TnglCtrl.exe [762320 2015-01-03] (Tunngle.net GmbH) [File not signed]
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [364464 2015-10-30] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [24864 2015-10-30] (Microsoft Corporation)

===================== Drivers (Whitelisted) ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R0 amdkmpfd; C:\Windows\System32\drivers\amdkmpfd.sys [36096 2013-05-21] (Advanced Micro Devices, Inc.)
S3 AndNetDiag; C:\Windows\system32\DRIVERS\lgandnetdiag64.sys [29184 2015-02-02] (LG Electronics Inc.)
S3 ANDNetModem; C:\Windows\system32\DRIVERS\lgandnetmodem64.sys [36352 2015-02-02] (LG Electronics Inc.)
R2 AODDriver4.2.0; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys [59616 2014-02-11] (Advanced Micro Devices)
R2 APXACC; C:\Windows\system32\DRIVERS\appexDrv.sys [219360 2013-04-18] (AppEx Networks Corporation)
R3 AtiHDAudioService; C:\Windows\system32\drivers\AtihdWT6.sys [102912 2015-05-28] (Advanced Micro Devices)
R3 bcbtums; C:\Windows\system32\drivers\bcbtums.sys [173312 2015-03-27] (Broadcom Corporation.)
R3 BCM43XX; C:\Windows\system32\DRIVERS\bcmwl63a.sys [7585280 2015-10-30] (Broadcom Corporation)
R1 CFRMD; C:\Windows\System32\DRIVERS\CFRMD.sys [40224 2014-06-26] (Windows (R) Win 7 DDK provider)
R1 cfywlan2; C:\Windows\system32\DRIVERS\cfywlan2.sys [46088 2016-02-14] (Connectify)
R1 cmderd; C:\Windows\System32\DRIVERS\cmderd.sys [32224 2016-04-06] (COMODO)
R1 cmdGuard; C:\Windows\System32\DRIVERS\cmdguard.sys [846104 2016-04-06] (COMODO)
R1 cmdHlp; C:\Windows\system32\DRIVERS\cmdhlp.sys [45600 2016-04-06] (COMODO)
S1 cnnctfy3; C:\Windows\system32\DRIVERS\cnnctfy3.sys [42152 2014-12-14] (Connectify)
R1 cnnctfy4; C:\Windows\system32\DRIVERS\cnnctfy4.sys [53216 2016-02-14] (Connectify)
R1 dtsoftbus01; C:\Windows\System32\drivers\dtsoftbus01.sys [283064 2014-10-06] (Disc Soft Ltd)
R1 HMD; C:\Windows\system32\DRIVERS\hmd.sys [14888 2014-06-26] ()
R1 inspect; C:\Windows\system32\DRIVERS\inspect.sys [138560 2016-04-06] (COMODO)
S3 RTSUER; C:\Windows\system32\Drivers\RtsUer.sys [410880 2015-12-09] (Realsil Semiconductor Corporation)
R3 rtsuvc; C:\Windows\system32\DRIVERS\rtsuvc.sys [3057920 2015-06-02] (Realtek Semiconductor Corp.)
S3 tap0901t; C:\Windows\System32\drivers\tap0901t.sys [31232 2015-01-03] (Tunngle.net)
S3 usbbus; C:\Windows\System32\drivers\lgx64bus.sys [17920 2013-04-24] (LG Electronics Inc.)
S3 UsbDiag; C:\Windows\system32\DRIVERS\lgx64diag.sys [28160 2013-04-24] (LG Electronics Inc.)
S3 USBModem; C:\Windows\system32\DRIVERS\lgx64modem.sys [34816 2013-04-24] (LG Electronics Inc.)
S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [44568 2015-10-30] (Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [293216 2015-10-30] (Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [118112 2015-10-30] (Microsoft Corporation)
S3 wsvd; C:\Windows\system32\DRIVERS\wsvd.sys [102376 2012-06-14] ("CyberLink)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2016-04-28 18:35 - 2016-04-28 18:37 - 00031703 _____ C:\Users\Ondra K\Desktop\FRST.txt
2016-04-28 18:34 - 2016-04-28 18:35 - 00000000 ____D C:\FRST
2016-04-28 18:33 - 2016-04-28 18:33 - 00112640 _____ (forum.viry.cz) C:\Users\Ondra K\Desktop\FRSTLauncher.exe
2016-04-28 18:31 - 2016-04-28 18:31 - 02376704 _____ (Farbar) C:\Users\Ondra K\Downloads\FRST64 (1).exe
2016-04-28 18:30 - 2016-04-28 18:30 - 02376704 _____ (Farbar) C:\Users\Ondra K\Desktop\FRST64.exe
2016-04-28 18:23 - 2016-04-28 18:24 - 00262116 _____ C:\WINDOWS\Minidump\042816-35062-01.dmp
2016-04-28 14:08 - 2016-04-28 14:09 - 00281140 _____ C:\WINDOWS\Minidump\042816-29046-01.dmp
2016-04-28 14:02 - 2016-04-28 14:04 - 00277060 _____ C:\WINDOWS\Minidump\042816-31859-01.dmp
2016-04-28 08:22 - 2016-04-28 08:33 - 00000000 ____D C:\AdwCleaner
2016-04-28 08:21 - 2016-04-28 08:16 - 03581504 _____ C:\Users\Ondra K\Desktop\adwcleaner_5.114.exe
2016-04-28 08:16 - 2016-04-28 08:19 - 00277116 _____ C:\WINDOWS\Minidump\042816-31406-01.dmp
2016-04-27 19:19 - 2016-04-27 19:20 - 00281132 _____ C:\WINDOWS\Minidump\042716-28140-01.dmp
2016-04-27 19:05 - 2016-04-27 19:05 - 00281108 _____ C:\WINDOWS\Minidump\042716-34203-01.dmp
2016-04-27 18:48 - 2016-04-27 18:49 - 00000000 ____D C:\rsit
2016-04-27 18:48 - 2016-04-27 18:48 - 01222144 _____ C:\Users\Ondra K\Downloads\RSITx64.exe
2016-04-27 18:34 - 2016-04-27 18:36 - 00281276 _____ C:\WINDOWS\Minidump\042716-33078-01.dmp
2016-04-27 18:09 - 2016-04-27 18:11 - 00277052 _____ C:\WINDOWS\Minidump\042716-30250-01.dmp
2016-04-26 22:09 - 2016-04-26 22:10 - 00276956 _____ C:\WINDOWS\Minidump\042616-31656-01.dmp
2016-04-26 20:29 - 2016-04-26 20:29 - 00000000 _____ C:\WINDOWS\Minidump\042616-27421-01.dmp
2016-04-26 17:56 - 2016-04-26 17:58 - 00281100 _____ C:\WINDOWS\Minidump\042616-30578-01.dmp
2016-04-25 18:26 - 2016-04-25 18:26 - 00535082 _____ C:\Users\Ondra K\Downloads\10-maki.pdf
2016-04-25 18:26 - 2016-04-25 18:26 - 00136857 _____ C:\Users\Ondra K\Downloads\9-sushi.pdf
2016-04-25 18:05 - 2016-04-25 18:05 - 00000000 _____ C:\WINDOWS\Minidump\042516-26437-01.dmp
2016-04-24 18:39 - 2016-04-24 18:39 - 00020389 _____ C:\Users\Ondra K\Downloads\The.Blacklist.S03E19.HDTV.x264-FLEET.srt
2016-04-24 11:17 - 2016-04-24 11:17 - 00233980 _____ C:\Users\Ondra K\Downloads\10297641.pdf
2016-04-24 09:32 - 2016-04-28 18:22 - 618791791 _____ C:\WINDOWS\MEMORY.DMP
2016-04-24 09:32 - 2016-04-24 09:32 - 00281020 _____ C:\WINDOWS\Minidump\042416-39515-01.dmp
2016-04-23 18:51 - 2016-04-23 18:52 - 00000000 ____D C:\WINDOWS\LastGood.Tmp
2016-04-23 09:40 - 2016-04-23 09:40 - 00433437 _____ C:\Users\Ondra K\Downloads\One-Hundred-Years-of-Solitude--Gabriel-Garcia-Marquez-Ebook.rar
2016-04-22 17:52 - 2016-04-23 18:50 - 31385584 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atio6axx.dll
2016-04-22 17:52 - 2016-04-23 18:50 - 27604976 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\amdocl12cl64.dll
2016-04-22 17:52 - 2016-04-23 18:50 - 25848808 _____ C:\WINDOWS\SysWOW64\SET2A47.tmp
2016-04-22 17:52 - 2016-04-23 18:50 - 15720424 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\aticaldd64.dll
2016-04-22 17:52 - 2016-04-23 18:50 - 06651888 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdmantle64.dll
2016-04-22 17:52 - 2016-04-23 18:50 - 00950256 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\atiadlxy.dll
2016-04-22 17:52 - 2016-04-23 18:50 - 00950256 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\atiadlxx.dll
2016-04-22 17:52 - 2016-04-23 18:50 - 00686576 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\amdlvr64.dll
2016-04-22 17:52 - 2016-04-23 18:50 - 00375784 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atiapfxx.exe
2016-04-22 17:52 - 2016-04-23 18:50 - 00232424 _____ C:\WINDOWS\system32\dgtrayicon.exe
2016-04-22 17:52 - 2016-04-23 18:50 - 00213488 _____ C:\WINDOWS\system32\amdgfxinfo64.dll
2016-04-22 17:52 - 2016-04-23 18:50 - 00203760 _____ C:\WINDOWS\system32\hsa-thunk64.dll
2016-04-22 17:52 - 2016-04-23 18:50 - 00199664 _____ (AMD) C:\WINDOWS\system32\atitmm64.dll
2016-04-22 17:52 - 2016-04-23 18:50 - 00170992 _____ C:\WINDOWS\system32\atieah64.exe
2016-04-22 17:52 - 2016-04-23 18:50 - 00143344 _____ C:\WINDOWS\system32\amdhdl64.dll
2016-04-22 17:52 - 2016-04-23 18:50 - 00136168 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\mantle64.dll
2016-04-22 17:52 - 2016-04-23 18:50 - 00104944 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\mantleaxl64.dll
2016-04-22 17:52 - 2016-04-23 18:50 - 00071152 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\aticalrt64.dll
2016-04-22 17:52 - 2016-04-23 18:50 - 00064496 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\aticalcl64.dll
2016-04-22 17:52 - 2016-04-23 18:50 - 00059376 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdmmcl6.dll
2016-04-22 17:52 - 2016-04-23 18:50 - 00052200 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\Drivers\ati2erec.dll
2016-04-22 17:52 - 2016-04-23 18:50 - 00048112 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdmmcl.dll
2016-04-22 17:52 - 2016-04-23 18:50 - 00040432 _____ (AMD) C:\WINDOWS\system32\atimuixx.dll
2016-04-22 17:52 - 2016-04-23 18:50 - 00012776 _____ (Microsoft Corporation) C:\WINDOWS\system32\detoured.dll
2016-04-22 17:50 - 2016-04-23 18:50 - 00471320 _____ C:\WINDOWS\system32\amdmiracast.dll
2016-04-22 17:50 - 2016-04-23 18:50 - 00088000 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atimpc64.dll
2016-04-22 17:50 - 2016-04-23 18:50 - 00088000 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdpcom64.dll
2016-04-22 17:50 - 2016-04-23 18:50 - 00081168 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atimpc32.dll
2016-04-22 17:50 - 2016-04-23 18:50 - 00081168 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdpcom32.dll
2016-04-18 18:32 - 2016-04-18 18:32 - 00033727 _____ C:\Users\Ondra K\Downloads\11.22.63.S01E08.zip
2016-04-18 18:32 - 2016-04-18 18:32 - 00032816 _____ C:\Users\Ondra K\Downloads\The.Blacklist.S03E18.HDTV.x264-FLEET.srt
2016-04-18 16:35 - 2016-04-18 16:35 - 00234013 _____ C:\Users\Ondra K\Downloads\10236909.pdf
2016-04-17 13:58 - 2016-04-17 13:58 - 02118208 _____ C:\Users\Ondra K\Downloads\DP_Kratky_2016_04_10 (1).pdf
2016-04-17 13:58 - 2016-04-17 13:58 - 01203830 _____ C:\Users\Ondra K\Downloads\losses_orient.ai
2016-04-15 18:31 - 2016-04-15 18:31 - 00020293 _____ C:\Users\Ondra K\Downloads\[TreZzoR]Symptom.pandorum.2009.DVDRip.XviD.CZ .torrent
2016-04-14 07:07 - 2016-04-14 07:07 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dropbox
2016-04-13 10:51 - 2016-04-13 10:51 - 24602112 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 22378496 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 19340800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 18673664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 16985600 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 13382656 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 13018624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 12125184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 11545600 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 09918976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 07836160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 07474016 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2016-04-13 10:51 - 2016-04-13 10:51 - 07199232 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingMaps.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 05662208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 05202944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BingMaps.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 03994624 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 03592704 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2016-04-13 10:51 - 2016-04-13 10:51 - 03575296 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsThresholdAdminFlowUI.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 03428864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 03078144 _____ (Microsoft Corporation) C:\WINDOWS\system32\esent.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 02798080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 02755584 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 02722816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\esent.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 02656952 _____ C:\WINDOWS\system32\CoreUIComponents.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 02635776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Logon.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 02624512 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputService.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 02275328 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 02229760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 02158592 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 02152280 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys
2016-04-13 10:51 - 2016-04-13 10:51 - 01946112 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 01944576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputService.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 01862008 _____ C:\WINDOWS\SysWOW64\CoreUIComponents.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 01832448 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 01799680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Logon.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 01731584 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 01714688 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRHInproc.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 01626624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 01500672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 01444352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SRHInproc.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 01395712 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCore.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 01390080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Shell.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 01388544 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2016-04-13 10:51 - 2016-04-13 10:51 - 01388032 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 01317640 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2016-04-13 10:51 - 2016-04-13 10:51 - 01297752 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 01213440 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 01211904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Cred.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 01141504 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2016-04-13 10:51 - 2016-04-13 10:51 - 01139712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIAutomationCore.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 01098240 _____ (Microsoft Corporation) C:\WINDOWS\system32\dosvc.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 01090048 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXService.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 01054208 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 01030416 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2016-04-13 10:51 - 2016-04-13 10:51 - 00989536 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi
2016-04-13 10:51 - 2016-04-13 10:51 - 00988160 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedStartModel.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 00986976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicenseManager.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 00970752 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 00965632 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRH.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 00958976 _____ (Microsoft Corporation) C:\WINDOWS\system32\RemoteNaturalLanguage.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 00948736 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblAuthManager.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 00938496 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapControlCore.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 00874968 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2016-04-13 10:51 - 2016-04-13 10:51 - 00859136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 00852480 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsStore.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 00799744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SRH.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 00792064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 00711680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapControlCore.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 00696664 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupEngine.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 00649728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 00641536 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 00630632 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe
2016-04-13 10:51 - 2016-04-13 10:51 - 00630272 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneProviders.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 00605440 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2016-04-13 10:51 - 2016-04-13 10:51 - 00587776 _____ (Microsoft Corporation) C:\WINDOWS\system32\bisrv.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 00541304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe
2016-04-13 10:51 - 2016-04-13 10:51 - 00471552 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupShim.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 00365568 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\atmfd.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 00354304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupShim.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 00345600 _____ (Microsoft Corporation) C:\WINDOWS\system32\TextInputFramework.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 00303104 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\atmfd.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 00245760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TextInputFramework.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 00209408 _____ (Microsoft Corporation) C:\WINDOWS\system32\storewuauth.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 00118272 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontsub.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 00108544 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputLocaleManager.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininetlui.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 00065536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininetlui.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 00052224 _____ (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 00045568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jsproxy.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 00045568 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 00037376 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 07979008 _____ (Microsoft Corporation) C:\WINDOWS\system32\mos.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 06297088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mos.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 04774912 _____ (Microsoft Corporation) C:\WINDOWS\system32\actxprxy.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 03671040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msi.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 03351040 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 02403680 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys
2016-04-13 10:50 - 2016-04-13 10:50 - 02193408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\actxprxy.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 01902592 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 01588224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml3.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 01575936 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Speech.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 01410560 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.Http.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 01239552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Bluetooth.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 01152864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys
2016-04-13 10:50 - 2016-04-13 10:50 - 01117184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Speech.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 01089888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\http.sys
2016-04-13 10:50 - 2016-04-13 10:50 - 01072128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Web.Http.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 01056256 _____ (Microsoft Corporation) C:\WINDOWS\system32\JpMapControl.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 01052160 _____ (Microsoft Corporation) C:\WINDOWS\system32\MsSpellCheckingFacility.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00988160 _____ (Microsoft Corporation) C:\WINDOWS\system32\NMAA.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00957952 _____ (Microsoft Corporation) C:\WINDOWS\system32\IKEEXT.DLL
2016-04-13 10:50 - 2016-04-13 10:50 - 00954368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthport.sys
2016-04-13 10:50 - 2016-04-13 10:50 - 00888320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00881664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Input.Inking.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00854528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Bluetooth.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00848896 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00848896 _____ (Microsoft Corporation) C:\WINDOWS\system32\samsrv.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00841216 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32spl.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00821760 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBroker.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00821248 _____ (Microsoft Corporation) C:\WINDOWS\system32\fvewiz.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\JpMapControl.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00794112 _____ (Microsoft Corporation) C:\WINDOWS\system32\BFE.DLL
2016-04-13 10:50 - 2016-04-13 10:50 - 00787456 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00784896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NMAA.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00777728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MsSpellCheckingFacility.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00770640 _____ (Microsoft Corporation) C:\WINDOWS\system32\iuilp.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00765952 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapi.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00764928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Cred.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00764928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00730344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Shell.Broker.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00712704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RemoteNaturalLanguage.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00708608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.Web.Core.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00705536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00694784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdiWiFi.sys
2016-04-13 10:50 - 2016-04-13 10:50 - 00688640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.Connectivity.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00686976 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsapi.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00686592 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieproxy.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00682496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Input.Inking.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00676352 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSDApi.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00638464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00638464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TokenBroker.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00628736 _____ (Microsoft Corporation) C:\WINDOWS\system32\MessagingDataModel2.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00617984 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00592384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Web.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00564224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSDApi.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00556032 _____ (Microsoft Corporation) C:\WINDOWS\system32\PsmServiceExtHost.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00555520 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncController.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00550912 _____ (Microsoft Corporation) C:\WINDOWS\system32\StoreAgent.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00535080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dnsapi.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00530432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\nwifi.sys
2016-04-13 10:50 - 2016-04-13 10:50 - 00521728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.Connectivity.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00502104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupEngine.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00498688 _____ (Microsoft Corporation) C:\WINDOWS\system32\tileobjserver.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00498176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MessagingDataModel2.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00496128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.Web.Core.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00460288 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapConfiguration.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00450560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SyncController.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00440320 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredProvDataModel.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00438784 _____ (Microsoft Corporation) C:\WINDOWS\system32\AccountsRt.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00418304 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenrollengine.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00415232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StoreAgent.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00414720 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvr.exe
2016-04-13 10:50 - 2016-04-13 10:50 - 00411648 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleacc.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00402432 _____ (Microsoft Corporation) C:\WINDOWS\system32\FWPUCLNT.DLL
2016-04-13 10:50 - 2016-04-13 10:50 - 00378208 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBXHCI.SYS
2016-04-13 10:50 - 2016-04-13 10:50 - 00374008 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlows.exe
2016-04-13 10:50 - 2016-04-13 10:50 - 00369912 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe
2016-04-13 10:50 - 2016-04-13 10:50 - 00361472 _____ (Microsoft Corporation) C:\WINDOWS\system32\bdesvc.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00358752 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00358400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AccountsRt.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00350720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CredProvDataModel.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00346624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapConfiguration.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00339968 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorService.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00338432 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncbservice.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00334736 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanager.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00333824 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\portcls.sys
2016-04-13 10:50 - 2016-04-13 10:50 - 00330240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00328192 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvc.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00324608 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXTaskFactory.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00324608 _____ (Microsoft Corporation) C:\WINDOWS\system32\fvecpl.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00323072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleacc.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00306176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieproxy.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00300104 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppHost.exe
2016-04-13 10:50 - 2016-04-13 10:50 - 00296488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\policymanager.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00294752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00288256 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveui.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00285696 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEEventDispatcher.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00284672 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsrslvr.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00278528 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationObjFactory.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00277856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdbus.sys
2016-04-13 10:50 - 2016-04-13 10:50 - 00269824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FWPUCLNT.DLL
2016-04-13 10:50 - 2016-04-13 10:50 - 00269824 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshostcore.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00261376 _____ (Microsoft Corporation) C:\WINDOWS\system32\LsaIso.exe
2016-04-13 10:50 - 2016-04-13 10:50 - 00258912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ufx01000.sys
2016-04-13 10:50 - 2016-04-13 10:50 - 00256000 _____ (Microsoft Corporation) C:\WINDOWS\system32\accountaccessor.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00253088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LockAppHost.exe
2016-04-13 10:50 - 2016-04-13 10:50 - 00250880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00239616 _____ (Microsoft Corporation) C:\WINDOWS\system32\credprovhost.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00239104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NotificationObjFactory.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00235008 _____ C:\WINDOWS\system32\MTF.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00230400 _____ (Microsoft Corporation) C:\WINDOWS\system32\DAFWSD.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00223232 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapibase.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00219648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VEEventDispatcher.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00207360 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupSvc.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00199168 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgent.exe
2016-04-13 10:50 - 2016-04-13 10:50 - 00193024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\credprovhost.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00185184 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpsd.sys
2016-04-13 10:50 - 2016-04-13 10:50 - 00176640 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmregistration.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00176128 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.DeviceEncryptionHandlers.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00175616 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00174592 _____ (Microsoft Corporation) C:\WINDOWS\system32\easwrt.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00169472 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmmigrator.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00167936 _____ (Microsoft Corporation) C:\WINDOWS\system32\dafBth.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00166400 _____ (Microsoft Corporation) C:\WINDOWS\system32\AboveLockAppHost.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00162816 _____ C:\WINDOWS\SysWOW64\MTF.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00162816 _____ (Microsoft Corporation) C:\WINDOWS\system32\enrollmentapi.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00161792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msorcl32.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00161280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallAgent.exe
2016-04-13 10:50 - 2016-04-13 10:50 - 00151040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mdmregistration.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00151040 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEStoreEventHandlers.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00148480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dfsc.sys
2016-04-13 10:50 - 2016-04-13 10:50 - 00147456 _____ (Microsoft Corporation) C:\WINDOWS\system32\mtxoci.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00144896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Devices.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00141824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\easwrt.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00134656 _____ (Microsoft Corporation) C:\WINDOWS\system32\browser.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00133632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Core.TextInput.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00129024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AboveLockAppHost.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00128512 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmcsps.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00127488 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEDataLayerHelpers.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00120320 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsBtSvc.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00119808 _____ (Microsoft Corporation) C:\WINDOWS\system32\BitLockerDeviceEncryption.exe
2016-04-13 10:50 - 2016-04-13 10:50 - 00118272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mtxoci.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00116224 _____ (Microsoft Corporation) C:\WINDOWS\system32\FontProvider.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00115040 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupApi.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00110584 _____ (Microsoft Corporation) C:\WINDOWS\system32\srvcli.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00107520 _____ (Microsoft Corporation) C:\WINDOWS\system32\BdeHdCfgLib.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00103936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Devices.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00100232 _____ (Microsoft Corporation) C:\WINDOWS\system32\omadmapi.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00095744 _____ (Microsoft Corporation) C:\WINDOWS\system32\samlib.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00093696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontsub.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsNativeApi.V2.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanagerprecheck.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00091136 _____ (Microsoft Corporation) C:\WINDOWS\system32\browserbroker.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00089088 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsCSP.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00088576 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxSysprep.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapsBtSvc.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\system32\tzautoupdate.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00086528 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppCapture.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00084992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BTHUSB.SYS
2016-04-13 10:50 - 2016-04-13 10:50 - 00084832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupApi.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00083968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VEDataLayerHelpers.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00083968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\serial.sys
2016-04-13 10:50 - 2016-04-13 10:50 - 00083456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputLocaleManager.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00081144 _____ (Microsoft Corporation) C:\WINDOWS\system32\netapi32.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00080384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SensorsNativeApi.V2.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00078040 _____ (Microsoft Corporation) C:\WINDOWS\system32\wkscli.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00076800 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetCfgNotifyObjectHost.exe
2016-04-13 10:50 - 2016-04-13 10:50 - 00074752 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosStorage.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00074424 _____ (Microsoft Corporation) C:\WINDOWS\system32\easinvoker.exe
2016-04-13 10:50 - 2016-04-13 10:50 - 00073872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\srvcli.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00069744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netapi32.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveskybackup.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00066560 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshost.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00066048 _____ (Microsoft Corporation) C:\WINDOWS\system32\OnDemandConnRouteHelper.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00065536 _____ (Microsoft Corporation) C:\WINDOWS\system32\basesrv.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00061440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\samlib.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00059904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MosStorage.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00058400 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsNativeApi.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00058368 _____ (Microsoft Corporation) C:\WINDOWS\system32\browcli.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00056320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wkscli.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00052736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OnDemandConnRouteHelper.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00051128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SensorsNativeApi.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00048128 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00043520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\browcli.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00036352 _____ (Microsoft Corporation) C:\WINDOWS\system32\tbauth.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00034816 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenterprisediagnostics.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00033280 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuautoappupdate.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsdchngr.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tbauth.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\mapsupdatetask.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00027648 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManagerShellext.exe
2016-04-13 10:50 - 2016-04-13 10:50 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsdchngr.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBrokerCookies.exe
2016-04-13 10:50 - 2016-04-13 10:50 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\xinputhid.sys
2016-04-13 10:50 - 2016-04-13 10:50 - 00022528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TokenBrokerCookies.exe
2016-04-13 10:50 - 2016-04-13 10:50 - 00012800 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleacchooks.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleacchooks.dll
2016-04-12 20:17 - 2016-04-12 20:17 - 00050443 _____ C:\Users\Ondra K\Downloads\Limitless.S01E20.720p.x264-LOL.srt
2016-04-11 15:33 - 2016-04-11 15:33 - 00231467 _____ C:\Users\Ondra K\Downloads\10158073.pdf
2016-04-11 09:04 - 2016-04-11 09:04 - 02118208 _____ C:\Users\Ondra K\Downloads\DP_Kratky_2016_04_10.pdf
2016-04-10 21:23 - 2016-04-10 21:24 - 27715041 _____ C:\Users\Ondra K\Downloads\Honor 7 Fantasy.pdf
2016-04-10 20:28 - 2016-04-10 20:28 - 00049556 _____ C:\Users\Ondra K\Downloads\Grimm.S05E16.The.Believer.720p.WEB-DL.DD5.1.H.264-VietHD.srt
2016-04-10 20:22 - 2016-04-10 20:22 - 00049528 _____ C:\Users\Ondra K\Downloads\Grimm.S05E16.HDTV.x264-FLEET.srt
2016-04-10 08:49 - 2016-04-10 08:50 - 00017324 _____ C:\Users\Ondra K\Downloads\[TreZzoR]Mezi nahrobnimi kameny _ A.Walk.Among.the.Tombstones.2014.BDRip.x264.CZ-TreZzoR.torrent
2016-04-09 20:06 - 2016-04-09 20:06 - 00017754 _____ C:\Users\Ondra K\Downloads\blindspot-S01E16-hdtv-By-jeriska03-lukascoolarik.zip
2016-04-09 19:06 - 2016-04-09 19:06 - 00000000 ____D C:\Users\Ondra K\AppData\Local\TeamViewer
2016-04-09 19:01 - 2016-04-19 16:11 - 00000000 ____D C:\Program Files (x86)\TeamViewer
2016-04-09 19:01 - 2016-04-11 10:56 - 00000000 ____D C:\Users\Ondra K\AppData\Roaming\TeamViewer
2016-04-09 19:01 - 2016-04-09 19:01 - 00001123 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer 11.lnk
2016-04-09 19:01 - 2016-04-09 19:01 - 00001111 _____ C:\Users\Public\Desktop\TeamViewer 11.lnk
2016-04-09 19:00 - 2016-04-09 19:00 - 09790120 _____ (TeamViewer GmbH) C:\Users\Ondra K\Downloads\TeamViewer_Setup_cs.exe
2016-04-08 19:42 - 2016-04-08 19:42 - 00015261 _____ C:\Users\Ondra K\Downloads\[TreZzoR]Star Wars_ Sila se probouzi _ Star.Wars.Episode.VII.The.Force.Awakens.2015.BDRip.x264.CZ-TreZzoR.torrent
2016-04-07 20:11 - 2016-04-07 20:11 - 00234948 _____ C:\Users\Ondra K\Downloads\10118383.pdf
2016-04-07 18:16 - 2016-04-07 18:16 - 00000000 ____D C:\ProgramData\Comodo Downloader
2016-04-03 18:31 - 2016-04-03 18:31 - 00038592 _____ C:\Users\Ondra K\Downloads\Grimm-S05E15.zip
2016-04-03 13:08 - 2016-04-03 13:08 - 00230818 _____ C:\Users\Ondra K\Downloads\10070371.pdf
2016-04-02 20:13 - 2016-04-02 20:13 - 00042792 _____ C:\Users\Ondra K\Downloads\11.22.63.S01E07.hdtv-lol.srt
2016-03-31 11:44 - 2016-03-31 11:44 - 00235936 _____ C:\Users\Ondra K\Downloads\10039104.pdf

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2016-04-28 18:34 - 2016-02-13 16:33 - 00000562 ____H C:\WINDOWS\Tasks\MATLAB R2015b Startup Accelerator.job
2016-04-28 18:32 - 2014-10-06 20:38 - 01474832 _____ C:\WINDOWS\system32\Drivers\sfi.dat
2016-04-28 18:30 - 2015-10-25 14:25 - 00000922 _____ C:\WINDOWS\Tasks\DropboxUpdateTaskMachineUA.job
2016-04-28 18:30 - 2014-10-11 15:20 - 00000000 ____D C:\Users\Ondra K\AppData\Roaming\Skype
2016-04-28 18:29 - 2014-10-06 20:27 - 00000000 ___RD C:\Users\Ondra K\Dropbox
2016-04-28 18:25 - 2015-02-05 10:00 - 00000968 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2016-04-28 18:24 - 2015-12-09 05:47 - 00000000 ____D C:\Users\Ondra K
2016-04-28 18:24 - 2015-10-25 14:25 - 00000918 _____ C:\WINDOWS\Tasks\DropboxUpdateTaskMachineCore.job
2016-04-28 18:23 - 2015-12-13 22:50 - 00000000 ____D C:\WINDOWS\Minidump
2016-04-28 18:22 - 2015-12-09 06:16 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2016-04-28 18:19 - 2014-10-09 20:29 - 00000000 ____D C:\Users\Ondra K\AppData\Roaming\uTorrent
2016-04-28 08:54 - 2015-02-05 10:00 - 00000972 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2016-04-28 08:46 - 2015-09-07 10:18 - 00000982 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-1067718225-367633953-3890117072-1002UA.job
2016-04-28 08:41 - 2015-12-09 05:46 - 02381342 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2016-04-28 08:41 - 2015-10-30 20:31 - 01092442 _____ C:\WINDOWS\system32\perfh005.dat
2016-04-28 08:41 - 2015-10-30 20:31 - 00283672 _____ C:\WINDOWS\system32\perfc005.dat
2016-04-28 08:41 - 2015-10-30 09:21 - 00000000 ____D C:\WINDOWS\INF
2016-04-28 08:35 - 2015-10-30 08:28 - 00524288 ___SH C:\WINDOWS\system32\config\BBI
2016-04-28 08:35 - 2015-10-25 12:54 - 00065536 _____ C:\WINDOWS\system32\spu_storage.bin
2016-04-28 08:27 - 2014-10-07 09:30 - 00000000 ____D C:\Users\Ondra K\AppData\Local\Adobe
2016-04-27 18:55 - 2015-03-07 17:42 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive
2016-04-27 18:52 - 2015-09-07 10:21 - 00002524 _____ C:\Users\Ondra K\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome Canary.lnk
2016-04-27 18:52 - 2015-09-07 10:21 - 00002516 _____ C:\Users\Ondra K\Desktop\Google Chrome Canary.lnk
2016-04-27 18:48 - 2015-01-31 12:47 - 00000000 ____D C:\Program Files\trend micro
2016-04-27 18:23 - 2015-10-30 09:24 - 00000000 ___HD C:\Program Files\WindowsApps
2016-04-27 18:23 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\AppReadiness
2016-04-27 18:22 - 2015-10-26 22:02 - 00000000 ____D C:\Users\Ondra K\AppData\Roaming\vlc
2016-04-24 20:46 - 2015-09-07 10:18 - 00000930 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-1067718225-367633953-3890117072-1002Core.job
2016-04-23 18:50 - 2015-10-21 03:11 - 23969776 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\Drivers\atikmdag.sys
2016-04-23 18:50 - 2015-10-21 03:11 - 01281512 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atiadlxx.dll
2016-04-23 18:50 - 2015-10-21 03:11 - 00561136 _____ (AMD) C:\WINDOWS\system32\atieclxx.exe
2016-04-23 18:50 - 2015-10-21 03:11 - 00451056 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atidemgy.dll
2016-04-23 18:50 - 2015-10-21 03:11 - 00254960 _____ (AMD) C:\WINDOWS\system32\atiesrxx.exe
2016-04-23 18:50 - 2015-10-21 03:10 - 13313512 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atidxx64.dll
2016-04-23 18:50 - 2015-10-21 03:10 - 10919072 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiumd64.dll
2016-04-23 18:50 - 2015-10-21 03:10 - 09158464 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiumdag.dll
2016-04-23 18:50 - 2015-10-21 03:10 - 09105520 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiumd6a.dll
2016-04-23 18:50 - 2015-10-21 03:10 - 08168824 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiumdva.dll
2016-04-23 18:01 - 2014-10-09 20:35 - 00000000 ____D C:\Stahování
2016-04-23 11:52 - 2016-01-02 17:37 - 00000034 _____ C:\Users\Ondra K\AppData\Roaming\AdobeWLCMCache.dat
2016-04-17 10:02 - 2014-10-07 09:12 - 00000000 ____D C:\Users\Ondra K\AppData\Local\Packages
2016-04-16 10:23 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\rescache
2016-04-16 09:30 - 2014-10-11 15:20 - 00000000 ___RD C:\Program Files (x86)\Skype
2016-04-16 09:30 - 2014-10-11 15:20 - 00000000 ____D C:\ProgramData\Skype
2016-04-14 07:26 - 2014-10-06 22:28 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013
2016-04-14 07:24 - 2013-08-22 15:25 - 00000167 _____ C:\WINDOWS\win.ini
2016-04-14 07:10 - 2014-10-06 20:20 - 00000000 ____D C:\Users\Ondra K\AppData\Roaming\Dropbox
2016-04-14 07:08 - 2015-06-17 11:35 - 00000000 ____D C:\Users\Ondra K\AppData\Local\Dropbox
2016-04-14 07:07 - 2015-10-25 14:25 - 00000000 ____D C:\Program Files (x86)\Dropbox
2016-04-14 06:56 - 2015-12-09 05:34 - 00372816 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2016-04-13 23:02 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2016-04-13 23:02 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\appraiser
2016-04-13 23:02 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\PolicyDefinitions
2016-04-13 23:02 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\bcastdvr
2016-04-13 20:06 - 2015-10-30 09:11 - 00000000 ____D C:\WINDOWS\CbsTemp
2016-04-13 20:03 - 2014-10-07 10:02 - 00000000 ____D C:\WINDOWS\system32\MRT
2016-04-13 19:51 - 2014-10-07 10:02 - 135176864 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2016-04-13 16:28 - 2015-10-30 09:26 - 00829944 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2016-04-13 16:28 - 2015-10-30 09:26 - 00176632 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2016-04-11 21:58 - 2015-09-07 09:39 - 00002283 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2016-04-11 21:58 - 2015-09-07 09:39 - 00002271 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2016-04-11 19:48 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\NDF
2016-04-11 11:00 - 2014-12-12 22:52 - 00005472 _____ C:\WINDOWS\system32\Drivers\fvstore.dat
2016-04-08 21:01 - 2015-06-24 09:00 - 00000000 ____D C:\Program Files (x86)\Overwolf
2016-04-07 18:16 - 2014-10-06 20:39 - 00002001 _____ C:\Users\Public\Desktop\COMODO Internet Security.lnk
2016-04-06 14:19 - 2015-08-13 10:20 - 00138560 _____ (COMODO) C:\WINDOWS\system32\Drivers\inspect.sys
2016-04-06 14:19 - 2014-04-16 22:13 - 00846104 _____ (COMODO) C:\WINDOWS\system32\Drivers\cmdguard.sys
2016-04-06 14:19 - 2014-04-16 22:13 - 00045600 _____ (COMODO) C:\WINDOWS\system32\Drivers\cmdhlp.sys
2016-04-06 14:19 - 2014-04-16 22:13 - 00032224 _____ (COMODO) C:\WINDOWS\system32\Drivers\cmderd.sys
2016-04-06 14:17 - 2014-03-25 20:22 - 00051800 _____ (COMODO) C:\WINDOWS\system32\cmdcsr.dll
2016-04-06 14:16 - 2014-03-25 20:22 - 00596232 _____ (COMODO) C:\WINDOWS\system32\guard64.dll
2016-04-06 14:16 - 2014-03-25 20:22 - 00461648 _____ (COMODO) C:\WINDOWS\SysWOW64\guard32.dll
2016-04-06 14:14 - 2014-03-25 20:22 - 00365752 _____ (COMODO) C:\WINDOWS\system32\cmdvrt64.dll
2016-04-06 14:14 - 2014-03-25 20:22 - 00051896 _____ (COMODO) C:\WINDOWS\system32\cmdkbd64.dll
2016-04-06 14:12 - 2014-03-25 20:22 - 00296120 _____ (COMODO) C:\WINDOWS\SysWOW64\cmdvrt32.dll
2016-04-06 14:11 - 2014-03-25 20:22 - 00046776 _____ (COMODO) C:\WINDOWS\SysWOW64\cmdkbd32.dll

==================== Files in the root of some directories =======

2016-01-02 17:37 - 2016-04-23 11:52 - 0000034 _____ () C:\Users\Ondra K\AppData\Roaming\AdobeWLCMCache.dat
2015-07-09 11:44 - 2015-07-09 11:44 - 0003127 _____ () C:\Users\Ondra K\AppData\Roaming\gmshrc
2015-02-19 14:07 - 2015-02-25 13:54 - 0000600 _____ () C:\Users\Ondra K\AppData\Roaming\winscp.rnd
2015-07-29 13:24 - 2015-07-29 13:24 - 0000337 _____ () C:\Users\Ondra K\AppData\Local\Perfmon.PerfmonCfg
2014-12-08 13:55 - 2016-03-20 16:12 - 0007599 _____ () C:\Users\Ondra K\AppData\Local\Resmon.ResmonCfg
2015-12-09 05:39 - 2015-12-09 05:39 - 0000000 ____H () C:\ProgramData\DP45977C.lfl

Some files in TEMP:
====================
C:\Users\Ondra K\AppData\Local\Temp\libeay32.dll
C:\Users\Ondra K\AppData\Local\Temp\msvcr120.dll
C:\Users\Ondra K\AppData\Local\Temp\sqlite3.dll


==================== Bamital & volsnap =================

(There is no automatic fix for files that do not pass verification.)

C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\wininit.exe => File is digitally signed
C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\SysWOW64\explorer.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\SysWOW64\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\SysWOW64\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\SysWOW64\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
C:\WINDOWS\SysWOW64\dnsapi.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed



===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===

==================== Drive and Memory info ===================



==================== MBR and Partition Table ==================


==================== Scheduled Tasks (whitelisted) ==================

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\WINDOWS\Tasks\DropboxUpdateTaskMachineCore.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
Task: C:\WINDOWS\Tasks\DropboxUpdateTaskMachineUA.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-1067718225-367633953-3890117072-1002Core.job => C:\Users\Ondra K\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-1067718225-367633953-3890117072-1002UA.job => C:\Users\Ondra K\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\MATLAB R2015b Startup Accelerator.job => C:\Program Files\MATLAB\R2015b\bin\win64\MATLABStartupAccelerator.exe

==================== Alternate Data Streams (whitelisted) ==================


==================== Security Center ==================

AV: COMODO Antivirus (Enabled - Up to date) {D0CC7563-ABD2-DEBE-138E-FDD553335AF2}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Comodo Defense+ (Enabled - Up to date) {6BAD9487-8DE8-D130-293E-C6A728B4104F}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
FW: COMODO Firewall (Enabled) {E8F7F446-E1BD-DFE6-38D1-54E0ADE01D89}



===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)


***** Velikost "Plochy" *****

Velikost slozky "C:\Users\Ondra K\Desktop" je 3759 MB.


***** Startup Programs *****


***** Firewall rules *****

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]


***** System Restore *****

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]


==================== End Of Log ==============================

Re: Samovolné restartování notebooku

Napsal: 28 dub 2016 17:44
od Stoone
Zatím se mi PC porad restartuje -> to predchozi nepomohlo. Jinak na plose se mi ulozil textovy soubor FRST a ten je prazdny, tak sem davam to co se ulozilo do FRST3.txt




Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:27-04-2016
Ran by Ondra K (administrator) on ONDRA (28-04-2016 18:35:12)
Running from C:\Users\Ondra K\Desktop
Loaded Profiles: Ondra K (Available Profiles: Ondra K & DefaultAppPool)
Platform: Windows 10 Home Version 1511 (X64) Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Comodo Security Solutions, Inc.) C:\Program Files (x86)\Common Files\COMODO\launcher_service.exe
(COMODO) C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
(AMD) C:\Windows\System32\atiesrxx.exe
(AMD) C:\Windows\System32\atieclxx.exe
(Conexant Systems Inc.) C:\Windows\System32\CxAudMsg64.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDService.exe
(Broadcom Corporation.) C:\Windows\System32\BtwRSupportService.exe
(Connectify) C:\Program Files (x86)\Connectify\ConnectifyService.exe
(Advanced Micro Devices, Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
(Comodo) C:\Program Files (x86)\Comodo\Dragon\dragon_updater.exe
() C:\Program Files\CyberLink\Shared files\RichVideo64.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe
(Comodo Security Solutions, Inc.) C:\Program Files (x86)\Common Files\COMODO\GeekBuddyRSP.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
(Connectify) C:\Program Files (x86)\Connectify\Connectifyd.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\SMSvcHost.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe
(COMODO) C:\Program Files\COMODO\COMODO Internet Security\cistray.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe
(CyberLink Corp.) C:\Program Files (x86)\Lenovo\PowerDVD10\PDVD10Serv.exe
(Conexant Systems, Inc.) C:\Program Files\CONEXANT\cAudioFilterAgent\CAudioFilterAgent64.exe
(Realtek semiconductor) C:\Windows\RTFTrack.exe
(Lenovo (Beijing) Limited) C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe
(Lenovo(beijing) Limited) C:\Program Files (x86)\Lenovo\Energy Management\utility.exe
(Google Inc.) C:\Users\Ondra K\AppData\Local\Google\Update\1.3.29.5\GoogleCrashHandler.exe
(Comodo Security Solutions, Inc.) C:\Program Files (x86)\Common Files\COMODO\GeekBuddyRSP.exe
(Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(Google Inc.) C:\Users\Ondra K\AppData\Local\Google\Update\1.3.29.5\GoogleCrashHandler64.exe
(Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(COMODO) C:\Program Files\COMODO\COMODO Internet Security\cavwp.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Lenovo) C:\Program Files\Lenovo\Lenovo Solution Center\LSCNotify.exe
(Microsoft Corporation) C:\Windows\SysWOW64\wbem\WmiPrvSE.exe
() C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkypeHost.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(COMODO) C:\Program Files\COMODO\COMODO Internet Security\cis.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(forum.viry.cz) C:\Users\Ondra K\Desktop\FRSTLauncher.exe
(Lenovo) C:\Program Files\Lenovo\Lenovo Solution Center\App\LSCTaskService.exe


==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [cAudioFilterAgent] => C:\Program Files\Conexant\cAudioFilterAgent\cAudioFilterAgent64.exe [935104 2014-11-25] (Conexant Systems, Inc.)
HKLM\...\Run: [SmartAudio] => C:\Program Files\CONEXANT\SAII\SACpl.exe [1830616 2014-04-10] (Conexant Systems, Inc.)
HKLM\...\Run: [ETDCtrl] => C:\Program Files\Elantech\ETDCtrl.exe [3242696 2015-10-25] (ELAN Microelectronics Corp.)
HKLM\...\Run: [RtsFT] => C:\WINDOWS\RTFTrack.exe [9308416 2015-10-25] (Realtek semiconductor)
HKLM\...\Run: [Energy Management] => C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe [17111056 2014-06-19] (Lenovo (Beijing) Limited)
HKLM\...\Run: [EnergyUtility] => C:\Program Files (x86)\Lenovo\Energy Management\Utility.exe [193008 2014-06-19] (Lenovo(beijing) Limited)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [500936 2015-04-28] (Adobe Systems Incorporated)
HKLM\...\Run: [Connectify Hotspot] => C:\Program Files (x86)\Connectify\Connectify.exe [4140600 2016-02-14] (Connectify)
HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [767176 2015-12-18] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [tvncontrol] => C:\Program Files (x86)\Common Files\COMODO\GeekBuddyRSP.exe [2327248 2014-09-24] (Comodo Security Solutions, Inc.)
HKLM-x32\...\Run: [Dropbox] => C:\Program Files (x86)\Dropbox\Client\Dropbox.exe [23248560 2016-04-14] (Dropbox, Inc.)
HKLM-x32\...\Run: [SafeQ Client] => C:\Program Files (x86)\Y Soft\SafeQ Client\Client\SafeQ Client.exe [259584 2015-12-15] ()
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [596528 2015-11-29] (Oracle Corporation)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1085656 2016-01-14] (Adobe Systems Incorporated)
HKU\S-1-5-21-1067718225-367633953-3890117072-1002\...\Run: [AppEx Accelerator UI] => C:\Program Files\AMD Quick Stream\AMDQuickStream.exe [429792 2013-04-11] (AppEx Networks Corporation)
HKU\S-1-5-21-1067718225-367633953-3890117072-1002\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3696912 2014-03-04] (Disc Soft Ltd)
HKU\S-1-5-21-1067718225-367633953-3890117072-1002\...\Run: [Overwolf] => C:\Program Files (x86)\Overwolf\Overwolf.exe [45296 2016-04-07] (Overwolf LTD)
HKU\S-1-5-21-1067718225-367633953-3890117072-1002\...\Run: [Google Update] => C:\Users\Ondra K\AppData\Local\Google\Update\GoogleUpdate.exe [144200 2015-09-03] (Google Inc.)
HKU\S-1-5-21-1067718225-367633953-3890117072-1002\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [50670720 2016-03-01] (Skype Technologies S.A.)
HKU\S-1-5-21-1067718225-367633953-3890117072-1002\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [8619224 2016-02-13] (Piriform Ltd)
HKU\S-1-5-21-1067718225-367633953-3890117072-1002\...\MountPoints2: {0a6629f3-4df1-11e4-8259-142d27f3a96e} - "F:\setup.exe"
ShellIconOverlayIdentifiers: [ GoogleDriveBlacklisted] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2016-04-25] (Google)
ShellIconOverlayIdentifiers: [ GoogleDriveSynced] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2016-04-25] (Google)
ShellIconOverlayIdentifiers: [ GoogleDriveSyncing] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2016-04-25] (Google)
ShellIconOverlayIdentifiers: [ DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.30.dll [2016-04-08] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.30.dll [2016-04-08] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt3] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.30.dll [2016-04-08] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt4] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.30.dll [2016-04-08] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt5] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.30.dll [2016-04-08] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt6] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.30.dll [2016-04-08] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt7] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.30.dll [2016-04-08] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt8] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.30.dll [2016-04-08] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [IDM Shell Extension] -> {CDC95B92-E27C-4745-A8C5-64A52A78855D} => C:\Program Files (x86)\Internet Download Manager\IDMShellExt64.dll [2014-04-21] (Tonec Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.30.dll [2016-04-08] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.30.dll [2016-04-08] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt3] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.30.dll [2016-04-08] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt4] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.30.dll [2016-04-08] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt5] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.30.dll [2016-04-08] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt6] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.30.dll [2016-04-08] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt7] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.30.dll [2016-04-08] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt8] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.30.dll [2016-04-08] (Dropbox, Inc.)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 192.168.5.1 185.60.104.1 93.157.130.65
Tcpip\..\Interfaces\{0499735e-4947-4b89-b1a5-812606dd7c6c}: [DhcpNameServer] 147.32.127.214 195.113.144.194
Tcpip\..\Interfaces\{a051744b-f074-40fd-b78a-fcb2947558eb}: [DhcpNameServer] 192.168.5.1 185.60.104.1 93.157.130.65
Tcpip\..\Interfaces\{a4e9369d-6619-4477-a4d1-a987d74b9818}: [DhcpNameServer] 192.168.5.1 185.60.104.1 93.157.130.65
Tcpip\..\Interfaces\{C884E2B2-1556-4707-8712-FB418D8C3858}: [DhcpNameServer] 7.254.254.254

Internet Explorer:
==================
HKU\S-1-5-21-1067718225-367633953-3890117072-1002\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://www.seznam.cz/
HKU\S-1-5-21-1067718225-367633953-3890117072-1002\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://lenovo13.msn.com/?pc=LCJB
HKU\S-1-5-21-1067718225-367633953-3890117072-1002\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = hxxp://www.lenovo.com
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-1067718225-367633953-3890117072-1002 -> DefaultScope {178D9161-8542-463B-9D8E-CD0505C5DC82} URL =
SearchScopes: HKU\S-1-5-21-1067718225-367633953-3890117072-1002 -> {178D9161-8542-463B-9D8E-CD0505C5DC82} URL =
BHO: IDM integration (IDMIEHlprObj Class) -> {0055C089-8582-441B-A0BF-17B458C2A3A8} -> C:\Program Files (x86)\Internet Download Manager\IDMIECC64.dll [2015-05-20] (Internet Download Manager, Tonec Inc.)
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2016-02-09] (Microsoft Corporation)
BHO: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2016-01-08] (Microsoft Corporation)
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL [2016-03-15] (Microsoft Corporation)
BHO: DIALux Browser Helper Object -> {F586CB96-7091-42ec-9829-F5D5CE65AFC1} -> C:\Program Files\DIAL GmbH\DIALux\Dialux.BHO_x64.dll [2014-05-09] (DIAL GmbH)
BHO-x32: IDM integration (IDMIEHlprObj Class) -> {0055C089-8582-441B-A0BF-17B458C2A3A8} -> C:\Program Files (x86)\Internet Download Manager\IDMIECC.dll [2015-05-20] (Internet Download Manager, Tonec Inc.)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2016-02-09] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_66\bin\ssv.dll [2015-11-29] (Oracle Corporation)
BHO-x32: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2016-01-08] (Microsoft Corporation)
BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL [2016-03-15] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_66\bin\jp2ssv.dll [2015-11-29] (Oracle Corporation)
BHO-x32: DIALux Browser Helper Object -> {F586CB96-7091-42ec-9829-F5D5CE65AFC1} -> C:\Program Files (x86)\DIALux\Dialux.BHO_x86.dll [2013-12-10] (DIAL GmbH)
Handler-x32: dialux - {8352FA4C-39C6-11D3-ADBA-00A0244FB1A2} - C:\Program Files (x86)\DIALux\DLXToolBox.dll [2014-04-01] (DIAL GmbH, Germany)
Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL [2014-04-01] (Microsoft Corporation)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll [2016-02-01] (Skype Technologies)
Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2016-01-08] (Microsoft Corporation)
Handler-x32: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2016-01-08] (Microsoft Corporation)

FireFox:
========
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~1\Office15\NPSPWRAP.DLL [2014-01-23] (Microsoft Corporation)
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll [2015-03-09] (Adobe Systems)
FF Plugin-x32: @canon.com/EPPEX -> C:\Program Files\Canon\Easy-PhotoPrint EX\NPEZFFPI.DLL [2013-04-19] (CANON INC.)
FF Plugin-x32: @java.com/DTPlugin,version=11.66.2 -> C:\Program Files (x86)\Java\jre1.8.0_66\bin\dtplugin\npDeployJava1.dll [2015-11-29] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.66.2 -> C:\Program Files (x86)\Java\jre1.8.0_66\bin\plugin2\npjp2.dll [2015-11-29] (Oracle Corporation)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2015-11-18] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office15\NPSPWRAP.DLL [2014-01-22] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-02-03] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-02-03] (Google Inc.)
FF Plugin-x32: @wolfram.com/Mathematica -> C:\Program Files (x86)\Common Files\Wolfram Research\Browser\10.0.1.5157423\npmathplugin.dll [2015-02-27] (Wolfram Research, Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2016-02-27] (Adobe Systems Inc.)
FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll [2015-03-09] (Adobe Systems)
FF Plugin HKU\S-1-5-21-1067718225-367633953-3890117072-1002: @tools.google.com/Google Update;version=3 -> C:\Users\Ondra K\AppData\Local\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-02-01] (Google Inc.)
FF Plugin HKU\S-1-5-21-1067718225-367633953-3890117072-1002: @tools.google.com/Google Update;version=9 -> C:\Users\Ondra K\AppData\Local\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-02-01] (Google Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npMeetingJoinPluginOC.dll [2015-11-18] (Microsoft Corporation)
FF HKU\S-1-5-21-1067718225-367633953-3890117072-1002\...\SeaMonkey\Extensions: [mozilla_cc@internetdownloadmanager.com] - C:\Users\Ondra K\AppData\Roaming\IDM\idmmzcc5
FF Extension: IDM CC - C:\Users\Ondra K\AppData\Roaming\IDM\idmmzcc5 [2016-01-05] [not signed]

Chrome:
=======
CHR HomePage: Default -> hxxp://www.seznam.cz/
CHR StartupUrls: Default -> "hxxp://seznam.cz/"
CHR Profile: C:\Users\Ondra K\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Prezentace Google) - C:\Users\Ondra K\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-02-04]
CHR Extension: (Dokumenty Google) - C:\Users\Ondra K\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-02-04]
CHR Extension: (Disk Google) - C:\Users\Ondra K\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-10-21]
CHR Extension: (SocialReviver) - C:\Users\Ondra K\AppData\Local\Google\Chrome\User Data\Default\Extensions\bfipfkeoidmndggnnpobeenlamiclald [2016-03-12]
CHR Extension: (YouTube) - C:\Users\Ondra K\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-09-25]
CHR Extension: (Vyhledávání Google) - C:\Users\Ondra K\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-10-27]
CHR Extension: (Tabulky Google) - C:\Users\Ondra K\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-02-04]
CHR Extension: (Dokumenty Google offline) - C:\Users\Ondra K\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-03-16]
CHR Extension: (AdBlock) - C:\Users\Ondra K\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2016-04-16]
CHR Extension: (Dropbox) - C:\Users\Ondra K\AppData\Local\Google\Chrome\User Data\Default\Extensions\ioekoebejdcmnlefjiknokhhafglcjdl [2015-07-01]
CHR Extension: (Application Launcher for Drive (by Google)) - C:\Users\Ondra K\AppData\Local\Google\Chrome\User Data\Default\Extensions\lmjegmlicamnimmfhcmpkclmigmmcbeh [2015-03-08]
CHR Extension: (F.B Purity-Clean Up Facebook) - C:\Users\Ondra K\AppData\Local\Google\Chrome\User Data\Default\Extensions\ncdlagniojmheiklojdcpdaeepochckl [2016-04-27]
CHR Extension: (IDM Integration Module) - C:\Users\Ondra K\AppData\Local\Google\Chrome\User Data\Default\Extensions\ngpampappnmepgilojfohadhhmbhlaek [2016-04-19]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Ondra K\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-04-02]
CHR Extension: (Gmail) - C:\Users\Ondra K\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-03-29]
CHR Profile: C:\Users\Ondra K\AppData\Local\Google\Chrome\User Data\Profile 1
CHR Extension: (Prezentace Google) - C:\Users\Ondra K\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-07-16]
CHR Extension: (Dokumenty Google) - C:\Users\Ondra K\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aohghmighlieiainnegkcijnfilokake [2015-07-16]
CHR Extension: (Disk Google) - C:\Users\Ondra K\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-07-16]
CHR Extension: (YouTube) - C:\Users\Ondra K\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-07-16]
CHR Extension: (Vyhledávání Google) - C:\Users\Ondra K\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-07-16]
CHR Extension: (Tabulky Google) - C:\Users\Ondra K\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-07-16]
CHR Extension: (Skype Click to Call) - C:\Users\Ondra K\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl [2015-07-16]
CHR Extension: (Application Launcher for Drive (by Google)) - C:\Users\Ondra K\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\lmjegmlicamnimmfhcmpkclmigmmcbeh [2015-07-16]
CHR Extension: (IDM Integration Module) - C:\Users\Ondra K\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ngpampappnmepgilojfohadhhmbhlaek [2015-07-16]
CHR Extension: (Peněženka Google) - C:\Users\Ondra K\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-07-16]
CHR Extension: (Gmail) - C:\Users\Ondra K\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-07-16]
CHR Profile: C:\Users\Ondra K\AppData\Local\Google\Chrome\User Data\Profile 2
CHR Extension: (Prezentace Google) - C:\Users\Ondra K\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-08-13]
CHR Extension: (Dokumenty Google) - C:\Users\Ondra K\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\aohghmighlieiainnegkcijnfilokake [2015-08-13]
CHR Extension: (Disk Google) - C:\Users\Ondra K\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-08-13]
CHR Extension: (YouTube) - C:\Users\Ondra K\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-08-13]
CHR Extension: (Vyhledávání Google) - C:\Users\Ondra K\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-08-13]
CHR Extension: (Tabulky Google) - C:\Users\Ondra K\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-08-13]
CHR Extension: (Skype Click to Call) - C:\Users\Ondra K\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl [2015-08-13]
CHR Extension: (Application Launcher for Drive (by Google)) - C:\Users\Ondra K\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\lmjegmlicamnimmfhcmpkclmigmmcbeh [2015-08-13]
CHR Extension: (IDM Integration Module) - C:\Users\Ondra K\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\ngpampappnmepgilojfohadhhmbhlaek [2015-08-24]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Ondra K\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-08-13]
CHR Extension: (Gmail) - C:\Users\Ondra K\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-08-13]
CHR HKLM\...\Chrome\Extension: [ngpampappnmepgilojfohadhhmbhlaek] - C:\Program Files (x86)\Internet Download Manager\IDMGCExt.crx [2015-05-20]
CHR HKU\S-1-5-21-1067718225-367633953-3890117072-1002\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx [2016-01-08]
CHR HKLM-x32\...\Chrome\Extension: [ngpampappnmepgilojfohadhhmbhlaek] - C:\Program Files (x86)\Internet Download Manager\IDMGCExt.crx [2015-05-20]

==================== Services (Whitelisted) ========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [344064 2015-08-21] (Advanced Micro Devices, Inc.) [File not signed]
R2 BcmBtRSupport; C:\Windows\system32\BtwRSupportService.exe [2251992 2015-10-25] (Broadcom Corporation.)
R2 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1433216 2016-01-17] (Microsoft Corporation)
R2 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1773696 2016-01-17] (Microsoft Corporation)
R2 CLPSLauncher; C:\Program Files (x86)\Common Files\COMODO\launcher_service.exe [70864 2014-09-25] (Comodo Security Solutions, Inc.)
R2 CmdAgent; C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe [5799552 2016-04-07] (COMODO)
S3 cmdvirth; C:\Program Files\COMODO\COMODO Internet Security\cmdvirth.exe [2271928 2016-04-07] (COMODO)
R2 Connectify; C:\Program Files (x86)\Connectify\ConnectifyService.exe [256568 2016-02-14] (Connectify)
S2 dbupdate; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [136048 2015-10-25] (Dropbox, Inc.)
S3 dbupdatem; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [136048 2015-10-25] (Dropbox, Inc.)
S3 DialComService; C:\Program Files (x86)\DIAL GmbH\DIAL Communication Framework\DialComService.exe [1934608 2013-12-17] (DIAL GmbH)
R2 DragonUpdater; C:\Program Files (x86)\Comodo\Dragon\dragon_updater.exe [2295992 2016-03-23] (Comodo)
R2 ETDService; C:\Program Files\Elantech\ETDService.exe [144072 2015-10-25] (ELAN Microelectronics Corp.)
R2 GeekBuddyRSP; C:\Program Files (x86)\Common Files\COMODO\GeekBuddyRSP.exe [2327248 2014-09-24] (Comodo Security Solutions, Inc.)
S3 LSCWinService; C:\Program Files\Lenovo\Lenovo Solution Center\App\LSCWinService.exe [272424 2015-08-17] (Lenovo)
S3 OverwolfUpdater; C:\Program Files (x86)\Overwolf\OverwolfUpdater.exe [1286896 2016-04-07] (Overwolf LTD)
R2 RichVideo64; C:\Program Files\CyberLink\Shared files\RichVideo64.exe [390632 2012-04-24] ()
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [6942480 2016-04-09] (TeamViewer GmbH)
S3 TunngleService; C:\Program Files (x86)\Tunngle\TnglCtrl.exe [762320 2015-01-03] (Tunngle.net GmbH) [File not signed]
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [364464 2015-10-30] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [24864 2015-10-30] (Microsoft Corporation)

===================== Drivers (Whitelisted) ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R0 amdkmpfd; C:\Windows\System32\drivers\amdkmpfd.sys [36096 2013-05-21] (Advanced Micro Devices, Inc.)
S3 AndNetDiag; C:\Windows\system32\DRIVERS\lgandnetdiag64.sys [29184 2015-02-02] (LG Electronics Inc.)
S3 ANDNetModem; C:\Windows\system32\DRIVERS\lgandnetmodem64.sys [36352 2015-02-02] (LG Electronics Inc.)
R2 AODDriver4.2.0; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys [59616 2014-02-11] (Advanced Micro Devices)
R2 APXACC; C:\Windows\system32\DRIVERS\appexDrv.sys [219360 2013-04-18] (AppEx Networks Corporation)
R3 AtiHDAudioService; C:\Windows\system32\drivers\AtihdWT6.sys [102912 2015-05-28] (Advanced Micro Devices)
R3 bcbtums; C:\Windows\system32\drivers\bcbtums.sys [173312 2015-03-27] (Broadcom Corporation.)
R3 BCM43XX; C:\Windows\system32\DRIVERS\bcmwl63a.sys [7585280 2015-10-30] (Broadcom Corporation)
R1 CFRMD; C:\Windows\System32\DRIVERS\CFRMD.sys [40224 2014-06-26] (Windows (R) Win 7 DDK provider)
R1 cfywlan2; C:\Windows\system32\DRIVERS\cfywlan2.sys [46088 2016-02-14] (Connectify)
R1 cmderd; C:\Windows\System32\DRIVERS\cmderd.sys [32224 2016-04-06] (COMODO)
R1 cmdGuard; C:\Windows\System32\DRIVERS\cmdguard.sys [846104 2016-04-06] (COMODO)
R1 cmdHlp; C:\Windows\system32\DRIVERS\cmdhlp.sys [45600 2016-04-06] (COMODO)
S1 cnnctfy3; C:\Windows\system32\DRIVERS\cnnctfy3.sys [42152 2014-12-14] (Connectify)
R1 cnnctfy4; C:\Windows\system32\DRIVERS\cnnctfy4.sys [53216 2016-02-14] (Connectify)
R1 dtsoftbus01; C:\Windows\System32\drivers\dtsoftbus01.sys [283064 2014-10-06] (Disc Soft Ltd)
R1 HMD; C:\Windows\system32\DRIVERS\hmd.sys [14888 2014-06-26] ()
R1 inspect; C:\Windows\system32\DRIVERS\inspect.sys [138560 2016-04-06] (COMODO)
S3 RTSUER; C:\Windows\system32\Drivers\RtsUer.sys [410880 2015-12-09] (Realsil Semiconductor Corporation)
R3 rtsuvc; C:\Windows\system32\DRIVERS\rtsuvc.sys [3057920 2015-06-02] (Realtek Semiconductor Corp.)
S3 tap0901t; C:\Windows\System32\drivers\tap0901t.sys [31232 2015-01-03] (Tunngle.net)
S3 usbbus; C:\Windows\System32\drivers\lgx64bus.sys [17920 2013-04-24] (LG Electronics Inc.)
S3 UsbDiag; C:\Windows\system32\DRIVERS\lgx64diag.sys [28160 2013-04-24] (LG Electronics Inc.)
S3 USBModem; C:\Windows\system32\DRIVERS\lgx64modem.sys [34816 2013-04-24] (LG Electronics Inc.)
S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [44568 2015-10-30] (Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [293216 2015-10-30] (Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [118112 2015-10-30] (Microsoft Corporation)
S3 wsvd; C:\Windows\system32\DRIVERS\wsvd.sys [102376 2012-06-14] ("CyberLink)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2016-04-28 18:35 - 2016-04-28 18:37 - 00031703 _____ C:\Users\Ondra K\Desktop\FRST.txt
2016-04-28 18:34 - 2016-04-28 18:35 - 00000000 ____D C:\FRST
2016-04-28 18:33 - 2016-04-28 18:33 - 00112640 _____ (forum.viry.cz) C:\Users\Ondra K\Desktop\FRSTLauncher.exe
2016-04-28 18:31 - 2016-04-28 18:31 - 02376704 _____ (Farbar) C:\Users\Ondra K\Downloads\FRST64 (1).exe
2016-04-28 18:30 - 2016-04-28 18:30 - 02376704 _____ (Farbar) C:\Users\Ondra K\Desktop\FRST64.exe
2016-04-28 18:23 - 2016-04-28 18:24 - 00262116 _____ C:\WINDOWS\Minidump\042816-35062-01.dmp
2016-04-28 14:08 - 2016-04-28 14:09 - 00281140 _____ C:\WINDOWS\Minidump\042816-29046-01.dmp
2016-04-28 14:02 - 2016-04-28 14:04 - 00277060 _____ C:\WINDOWS\Minidump\042816-31859-01.dmp
2016-04-28 08:22 - 2016-04-28 08:33 - 00000000 ____D C:\AdwCleaner
2016-04-28 08:21 - 2016-04-28 08:16 - 03581504 _____ C:\Users\Ondra K\Desktop\adwcleaner_5.114.exe
2016-04-28 08:16 - 2016-04-28 08:19 - 00277116 _____ C:\WINDOWS\Minidump\042816-31406-01.dmp
2016-04-27 19:19 - 2016-04-27 19:20 - 00281132 _____ C:\WINDOWS\Minidump\042716-28140-01.dmp
2016-04-27 19:05 - 2016-04-27 19:05 - 00281108 _____ C:\WINDOWS\Minidump\042716-34203-01.dmp
2016-04-27 18:48 - 2016-04-27 18:49 - 00000000 ____D C:\rsit
2016-04-27 18:48 - 2016-04-27 18:48 - 01222144 _____ C:\Users\Ondra K\Downloads\RSITx64.exe
2016-04-27 18:34 - 2016-04-27 18:36 - 00281276 _____ C:\WINDOWS\Minidump\042716-33078-01.dmp
2016-04-27 18:09 - 2016-04-27 18:11 - 00277052 _____ C:\WINDOWS\Minidump\042716-30250-01.dmp
2016-04-26 22:09 - 2016-04-26 22:10 - 00276956 _____ C:\WINDOWS\Minidump\042616-31656-01.dmp
2016-04-26 20:29 - 2016-04-26 20:29 - 00000000 _____ C:\WINDOWS\Minidump\042616-27421-01.dmp
2016-04-26 17:56 - 2016-04-26 17:58 - 00281100 _____ C:\WINDOWS\Minidump\042616-30578-01.dmp
2016-04-25 18:26 - 2016-04-25 18:26 - 00535082 _____ C:\Users\Ondra K\Downloads\10-maki.pdf
2016-04-25 18:26 - 2016-04-25 18:26 - 00136857 _____ C:\Users\Ondra K\Downloads\9-sushi.pdf
2016-04-25 18:05 - 2016-04-25 18:05 - 00000000 _____ C:\WINDOWS\Minidump\042516-26437-01.dmp
2016-04-24 18:39 - 2016-04-24 18:39 - 00020389 _____ C:\Users\Ondra K\Downloads\The.Blacklist.S03E19.HDTV.x264-FLEET.srt
2016-04-24 11:17 - 2016-04-24 11:17 - 00233980 _____ C:\Users\Ondra K\Downloads\10297641.pdf
2016-04-24 09:32 - 2016-04-28 18:22 - 618791791 _____ C:\WINDOWS\MEMORY.DMP
2016-04-24 09:32 - 2016-04-24 09:32 - 00281020 _____ C:\WINDOWS\Minidump\042416-39515-01.dmp
2016-04-23 18:51 - 2016-04-23 18:52 - 00000000 ____D C:\WINDOWS\LastGood.Tmp
2016-04-23 09:40 - 2016-04-23 09:40 - 00433437 _____ C:\Users\Ondra K\Downloads\One-Hundred-Years-of-Solitude--Gabriel-Garcia-Marquez-Ebook.rar
2016-04-22 17:52 - 2016-04-23 18:50 - 31385584 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atio6axx.dll
2016-04-22 17:52 - 2016-04-23 18:50 - 27604976 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\amdocl12cl64.dll
2016-04-22 17:52 - 2016-04-23 18:50 - 25848808 _____ C:\WINDOWS\SysWOW64\SET2A47.tmp
2016-04-22 17:52 - 2016-04-23 18:50 - 15720424 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\aticaldd64.dll
2016-04-22 17:52 - 2016-04-23 18:50 - 06651888 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdmantle64.dll
2016-04-22 17:52 - 2016-04-23 18:50 - 00950256 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\atiadlxy.dll
2016-04-22 17:52 - 2016-04-23 18:50 - 00950256 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\atiadlxx.dll
2016-04-22 17:52 - 2016-04-23 18:50 - 00686576 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\amdlvr64.dll
2016-04-22 17:52 - 2016-04-23 18:50 - 00375784 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atiapfxx.exe
2016-04-22 17:52 - 2016-04-23 18:50 - 00232424 _____ C:\WINDOWS\system32\dgtrayicon.exe
2016-04-22 17:52 - 2016-04-23 18:50 - 00213488 _____ C:\WINDOWS\system32\amdgfxinfo64.dll
2016-04-22 17:52 - 2016-04-23 18:50 - 00203760 _____ C:\WINDOWS\system32\hsa-thunk64.dll
2016-04-22 17:52 - 2016-04-23 18:50 - 00199664 _____ (AMD) C:\WINDOWS\system32\atitmm64.dll
2016-04-22 17:52 - 2016-04-23 18:50 - 00170992 _____ C:\WINDOWS\system32\atieah64.exe
2016-04-22 17:52 - 2016-04-23 18:50 - 00143344 _____ C:\WINDOWS\system32\amdhdl64.dll
2016-04-22 17:52 - 2016-04-23 18:50 - 00136168 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\mantle64.dll
2016-04-22 17:52 - 2016-04-23 18:50 - 00104944 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\mantleaxl64.dll
2016-04-22 17:52 - 2016-04-23 18:50 - 00071152 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\aticalrt64.dll
2016-04-22 17:52 - 2016-04-23 18:50 - 00064496 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\aticalcl64.dll
2016-04-22 17:52 - 2016-04-23 18:50 - 00059376 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdmmcl6.dll
2016-04-22 17:52 - 2016-04-23 18:50 - 00052200 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\Drivers\ati2erec.dll
2016-04-22 17:52 - 2016-04-23 18:50 - 00048112 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdmmcl.dll
2016-04-22 17:52 - 2016-04-23 18:50 - 00040432 _____ (AMD) C:\WINDOWS\system32\atimuixx.dll
2016-04-22 17:52 - 2016-04-23 18:50 - 00012776 _____ (Microsoft Corporation) C:\WINDOWS\system32\detoured.dll
2016-04-22 17:50 - 2016-04-23 18:50 - 00471320 _____ C:\WINDOWS\system32\amdmiracast.dll
2016-04-22 17:50 - 2016-04-23 18:50 - 00088000 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atimpc64.dll
2016-04-22 17:50 - 2016-04-23 18:50 - 00088000 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdpcom64.dll
2016-04-22 17:50 - 2016-04-23 18:50 - 00081168 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atimpc32.dll
2016-04-22 17:50 - 2016-04-23 18:50 - 00081168 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdpcom32.dll
2016-04-18 18:32 - 2016-04-18 18:32 - 00033727 _____ C:\Users\Ondra K\Downloads\11.22.63.S01E08.zip
2016-04-18 18:32 - 2016-04-18 18:32 - 00032816 _____ C:\Users\Ondra K\Downloads\The.Blacklist.S03E18.HDTV.x264-FLEET.srt
2016-04-18 16:35 - 2016-04-18 16:35 - 00234013 _____ C:\Users\Ondra K\Downloads\10236909.pdf
2016-04-17 13:58 - 2016-04-17 13:58 - 02118208 _____ C:\Users\Ondra K\Downloads\DP_Kratky_2016_04_10 (1).pdf
2016-04-17 13:58 - 2016-04-17 13:58 - 01203830 _____ C:\Users\Ondra K\Downloads\losses_orient.ai
2016-04-15 18:31 - 2016-04-15 18:31 - 00020293 _____ C:\Users\Ondra K\Downloads\[TreZzoR]Symptom.pandorum.2009.DVDRip.XviD.CZ .torrent
2016-04-14 07:07 - 2016-04-14 07:07 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dropbox
2016-04-13 10:51 - 2016-04-13 10:51 - 24602112 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 22378496 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 19340800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 18673664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 16985600 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 13382656 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 13018624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 12125184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 11545600 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 09918976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 07836160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 07474016 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2016-04-13 10:51 - 2016-04-13 10:51 - 07199232 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingMaps.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 05662208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 05202944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BingMaps.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 03994624 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 03592704 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2016-04-13 10:51 - 2016-04-13 10:51 - 03575296 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsThresholdAdminFlowUI.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 03428864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 03078144 _____ (Microsoft Corporation) C:\WINDOWS\system32\esent.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 02798080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 02755584 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 02722816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\esent.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 02656952 _____ C:\WINDOWS\system32\CoreUIComponents.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 02635776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Logon.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 02624512 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputService.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 02275328 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 02229760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 02158592 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 02152280 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys
2016-04-13 10:51 - 2016-04-13 10:51 - 01946112 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 01944576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputService.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 01862008 _____ C:\WINDOWS\SysWOW64\CoreUIComponents.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 01832448 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 01799680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Logon.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 01731584 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 01714688 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRHInproc.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 01626624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 01500672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 01444352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SRHInproc.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 01395712 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCore.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 01390080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Shell.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 01388544 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2016-04-13 10:51 - 2016-04-13 10:51 - 01388032 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 01317640 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2016-04-13 10:51 - 2016-04-13 10:51 - 01297752 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 01213440 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 01211904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Cred.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 01141504 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2016-04-13 10:51 - 2016-04-13 10:51 - 01139712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIAutomationCore.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 01098240 _____ (Microsoft Corporation) C:\WINDOWS\system32\dosvc.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 01090048 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXService.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 01054208 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 01030416 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2016-04-13 10:51 - 2016-04-13 10:51 - 00989536 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi
2016-04-13 10:51 - 2016-04-13 10:51 - 00988160 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedStartModel.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 00986976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicenseManager.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 00970752 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 00965632 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRH.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 00958976 _____ (Microsoft Corporation) C:\WINDOWS\system32\RemoteNaturalLanguage.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 00948736 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblAuthManager.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 00938496 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapControlCore.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 00874968 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2016-04-13 10:51 - 2016-04-13 10:51 - 00859136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 00852480 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsStore.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 00799744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SRH.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 00792064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 00711680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapControlCore.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 00696664 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupEngine.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 00649728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 00641536 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 00630632 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe
2016-04-13 10:51 - 2016-04-13 10:51 - 00630272 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneProviders.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 00605440 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2016-04-13 10:51 - 2016-04-13 10:51 - 00587776 _____ (Microsoft Corporation) C:\WINDOWS\system32\bisrv.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 00541304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe
2016-04-13 10:51 - 2016-04-13 10:51 - 00471552 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupShim.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 00365568 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\atmfd.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 00354304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupShim.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 00345600 _____ (Microsoft Corporation) C:\WINDOWS\system32\TextInputFramework.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 00303104 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\atmfd.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 00245760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TextInputFramework.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 00209408 _____ (Microsoft Corporation) C:\WINDOWS\system32\storewuauth.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 00118272 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontsub.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 00108544 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputLocaleManager.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininetlui.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 00065536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininetlui.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 00052224 _____ (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 00045568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jsproxy.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 00045568 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll
2016-04-13 10:51 - 2016-04-13 10:51 - 00037376 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 07979008 _____ (Microsoft Corporation) C:\WINDOWS\system32\mos.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 06297088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mos.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 04774912 _____ (Microsoft Corporation) C:\WINDOWS\system32\actxprxy.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 03671040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msi.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 03351040 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 02403680 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys
2016-04-13 10:50 - 2016-04-13 10:50 - 02193408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\actxprxy.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 01902592 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 01588224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml3.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 01575936 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Speech.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 01410560 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.Http.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 01239552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Bluetooth.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 01152864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys
2016-04-13 10:50 - 2016-04-13 10:50 - 01117184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Speech.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 01089888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\http.sys
2016-04-13 10:50 - 2016-04-13 10:50 - 01072128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Web.Http.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 01056256 _____ (Microsoft Corporation) C:\WINDOWS\system32\JpMapControl.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 01052160 _____ (Microsoft Corporation) C:\WINDOWS\system32\MsSpellCheckingFacility.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00988160 _____ (Microsoft Corporation) C:\WINDOWS\system32\NMAA.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00957952 _____ (Microsoft Corporation) C:\WINDOWS\system32\IKEEXT.DLL
2016-04-13 10:50 - 2016-04-13 10:50 - 00954368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthport.sys
2016-04-13 10:50 - 2016-04-13 10:50 - 00888320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00881664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Input.Inking.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00854528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Bluetooth.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00848896 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00848896 _____ (Microsoft Corporation) C:\WINDOWS\system32\samsrv.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00841216 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32spl.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00821760 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBroker.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00821248 _____ (Microsoft Corporation) C:\WINDOWS\system32\fvewiz.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\JpMapControl.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00794112 _____ (Microsoft Corporation) C:\WINDOWS\system32\BFE.DLL
2016-04-13 10:50 - 2016-04-13 10:50 - 00787456 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00784896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NMAA.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00777728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MsSpellCheckingFacility.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00770640 _____ (Microsoft Corporation) C:\WINDOWS\system32\iuilp.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00765952 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapi.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00764928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Cred.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00764928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00730344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Shell.Broker.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00712704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RemoteNaturalLanguage.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00708608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.Web.Core.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00705536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00694784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdiWiFi.sys
2016-04-13 10:50 - 2016-04-13 10:50 - 00688640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.Connectivity.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00686976 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsapi.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00686592 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieproxy.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00682496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Input.Inking.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00676352 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSDApi.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00638464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00638464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TokenBroker.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00628736 _____ (Microsoft Corporation) C:\WINDOWS\system32\MessagingDataModel2.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00617984 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00592384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Web.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00564224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSDApi.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00556032 _____ (Microsoft Corporation) C:\WINDOWS\system32\PsmServiceExtHost.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00555520 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncController.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00550912 _____ (Microsoft Corporation) C:\WINDOWS\system32\StoreAgent.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00535080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dnsapi.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00530432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\nwifi.sys
2016-04-13 10:50 - 2016-04-13 10:50 - 00521728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.Connectivity.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00502104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupEngine.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00498688 _____ (Microsoft Corporation) C:\WINDOWS\system32\tileobjserver.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00498176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MessagingDataModel2.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00496128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.Web.Core.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00460288 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapConfiguration.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00450560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SyncController.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00440320 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredProvDataModel.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00438784 _____ (Microsoft Corporation) C:\WINDOWS\system32\AccountsRt.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00418304 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenrollengine.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00415232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StoreAgent.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00414720 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvr.exe
2016-04-13 10:50 - 2016-04-13 10:50 - 00411648 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleacc.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00402432 _____ (Microsoft Corporation) C:\WINDOWS\system32\FWPUCLNT.DLL
2016-04-13 10:50 - 2016-04-13 10:50 - 00378208 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBXHCI.SYS
2016-04-13 10:50 - 2016-04-13 10:50 - 00374008 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlows.exe
2016-04-13 10:50 - 2016-04-13 10:50 - 00369912 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe
2016-04-13 10:50 - 2016-04-13 10:50 - 00361472 _____ (Microsoft Corporation) C:\WINDOWS\system32\bdesvc.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00358752 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00358400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AccountsRt.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00350720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CredProvDataModel.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00346624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapConfiguration.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00339968 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorService.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00338432 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncbservice.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00334736 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanager.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00333824 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\portcls.sys
2016-04-13 10:50 - 2016-04-13 10:50 - 00330240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00328192 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvc.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00324608 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXTaskFactory.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00324608 _____ (Microsoft Corporation) C:\WINDOWS\system32\fvecpl.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00323072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleacc.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00306176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieproxy.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00300104 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppHost.exe
2016-04-13 10:50 - 2016-04-13 10:50 - 00296488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\policymanager.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00294752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00288256 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveui.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00285696 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEEventDispatcher.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00284672 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsrslvr.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00278528 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationObjFactory.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00277856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdbus.sys
2016-04-13 10:50 - 2016-04-13 10:50 - 00269824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FWPUCLNT.DLL
2016-04-13 10:50 - 2016-04-13 10:50 - 00269824 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshostcore.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00261376 _____ (Microsoft Corporation) C:\WINDOWS\system32\LsaIso.exe
2016-04-13 10:50 - 2016-04-13 10:50 - 00258912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ufx01000.sys
2016-04-13 10:50 - 2016-04-13 10:50 - 00256000 _____ (Microsoft Corporation) C:\WINDOWS\system32\accountaccessor.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00253088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LockAppHost.exe
2016-04-13 10:50 - 2016-04-13 10:50 - 00250880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00239616 _____ (Microsoft Corporation) C:\WINDOWS\system32\credprovhost.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00239104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NotificationObjFactory.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00235008 _____ C:\WINDOWS\system32\MTF.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00230400 _____ (Microsoft Corporation) C:\WINDOWS\system32\DAFWSD.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00223232 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapibase.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00219648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VEEventDispatcher.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00207360 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupSvc.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00199168 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgent.exe
2016-04-13 10:50 - 2016-04-13 10:50 - 00193024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\credprovhost.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00185184 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpsd.sys
2016-04-13 10:50 - 2016-04-13 10:50 - 00176640 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmregistration.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00176128 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.DeviceEncryptionHandlers.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00175616 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00174592 _____ (Microsoft Corporation) C:\WINDOWS\system32\easwrt.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00169472 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmmigrator.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00167936 _____ (Microsoft Corporation) C:\WINDOWS\system32\dafBth.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00166400 _____ (Microsoft Corporation) C:\WINDOWS\system32\AboveLockAppHost.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00162816 _____ C:\WINDOWS\SysWOW64\MTF.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00162816 _____ (Microsoft Corporation) C:\WINDOWS\system32\enrollmentapi.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00161792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msorcl32.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00161280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallAgent.exe
2016-04-13 10:50 - 2016-04-13 10:50 - 00151040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mdmregistration.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00151040 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEStoreEventHandlers.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00148480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dfsc.sys
2016-04-13 10:50 - 2016-04-13 10:50 - 00147456 _____ (Microsoft Corporation) C:\WINDOWS\system32\mtxoci.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00144896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Devices.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00141824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\easwrt.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00134656 _____ (Microsoft Corporation) C:\WINDOWS\system32\browser.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00133632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Core.TextInput.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00129024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AboveLockAppHost.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00128512 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmcsps.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00127488 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEDataLayerHelpers.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00120320 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsBtSvc.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00119808 _____ (Microsoft Corporation) C:\WINDOWS\system32\BitLockerDeviceEncryption.exe
2016-04-13 10:50 - 2016-04-13 10:50 - 00118272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mtxoci.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00116224 _____ (Microsoft Corporation) C:\WINDOWS\system32\FontProvider.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00115040 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupApi.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00110584 _____ (Microsoft Corporation) C:\WINDOWS\system32\srvcli.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00107520 _____ (Microsoft Corporation) C:\WINDOWS\system32\BdeHdCfgLib.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00103936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Devices.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00100232 _____ (Microsoft Corporation) C:\WINDOWS\system32\omadmapi.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00095744 _____ (Microsoft Corporation) C:\WINDOWS\system32\samlib.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00093696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontsub.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsNativeApi.V2.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanagerprecheck.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00091136 _____ (Microsoft Corporation) C:\WINDOWS\system32\browserbroker.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00089088 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsCSP.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00088576 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxSysprep.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapsBtSvc.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\system32\tzautoupdate.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00086528 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppCapture.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00084992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BTHUSB.SYS
2016-04-13 10:50 - 2016-04-13 10:50 - 00084832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupApi.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00083968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VEDataLayerHelpers.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00083968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\serial.sys
2016-04-13 10:50 - 2016-04-13 10:50 - 00083456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputLocaleManager.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00081144 _____ (Microsoft Corporation) C:\WINDOWS\system32\netapi32.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00080384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SensorsNativeApi.V2.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00078040 _____ (Microsoft Corporation) C:\WINDOWS\system32\wkscli.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00076800 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetCfgNotifyObjectHost.exe
2016-04-13 10:50 - 2016-04-13 10:50 - 00074752 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosStorage.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00074424 _____ (Microsoft Corporation) C:\WINDOWS\system32\easinvoker.exe
2016-04-13 10:50 - 2016-04-13 10:50 - 00073872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\srvcli.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00069744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netapi32.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveskybackup.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00066560 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshost.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00066048 _____ (Microsoft Corporation) C:\WINDOWS\system32\OnDemandConnRouteHelper.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00065536 _____ (Microsoft Corporation) C:\WINDOWS\system32\basesrv.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00061440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\samlib.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00059904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MosStorage.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00058400 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsNativeApi.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00058368 _____ (Microsoft Corporation) C:\WINDOWS\system32\browcli.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00056320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wkscli.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00052736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OnDemandConnRouteHelper.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00051128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SensorsNativeApi.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00048128 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00043520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\browcli.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00036352 _____ (Microsoft Corporation) C:\WINDOWS\system32\tbauth.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00034816 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenterprisediagnostics.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00033280 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuautoappupdate.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsdchngr.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tbauth.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\mapsupdatetask.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00027648 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManagerShellext.exe
2016-04-13 10:50 - 2016-04-13 10:50 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsdchngr.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBrokerCookies.exe
2016-04-13 10:50 - 2016-04-13 10:50 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\xinputhid.sys
2016-04-13 10:50 - 2016-04-13 10:50 - 00022528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TokenBrokerCookies.exe
2016-04-13 10:50 - 2016-04-13 10:50 - 00012800 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleacchooks.dll
2016-04-13 10:50 - 2016-04-13 10:50 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleacchooks.dll
2016-04-12 20:17 - 2016-04-12 20:17 - 00050443 _____ C:\Users\Ondra K\Downloads\Limitless.S01E20.720p.x264-LOL.srt
2016-04-11 15:33 - 2016-04-11 15:33 - 00231467 _____ C:\Users\Ondra K\Downloads\10158073.pdf
2016-04-11 09:04 - 2016-04-11 09:04 - 02118208 _____ C:\Users\Ondra K\Downloads\DP_Kratky_2016_04_10.pdf
2016-04-10 21:23 - 2016-04-10 21:24 - 27715041 _____ C:\Users\Ondra K\Downloads\Honor 7 Fantasy.pdf
2016-04-10 20:28 - 2016-04-10 20:28 - 00049556 _____ C:\Users\Ondra K\Downloads\Grimm.S05E16.The.Believer.720p.WEB-DL.DD5.1.H.264-VietHD.srt
2016-04-10 20:22 - 2016-04-10 20:22 - 00049528 _____ C:\Users\Ondra K\Downloads\Grimm.S05E16.HDTV.x264-FLEET.srt
2016-04-10 08:49 - 2016-04-10 08:50 - 00017324 _____ C:\Users\Ondra K\Downloads\[TreZzoR]Mezi nahrobnimi kameny _ A.Walk.Among.the.Tombstones.2014.BDRip.x264.CZ-TreZzoR.torrent
2016-04-09 20:06 - 2016-04-09 20:06 - 00017754 _____ C:\Users\Ondra K\Downloads\blindspot-S01E16-hdtv-By-jeriska03-lukascoolarik.zip
2016-04-09 19:06 - 2016-04-09 19:06 - 00000000 ____D C:\Users\Ondra K\AppData\Local\TeamViewer
2016-04-09 19:01 - 2016-04-19 16:11 - 00000000 ____D C:\Program Files (x86)\TeamViewer
2016-04-09 19:01 - 2016-04-11 10:56 - 00000000 ____D C:\Users\Ondra K\AppData\Roaming\TeamViewer
2016-04-09 19:01 - 2016-04-09 19:01 - 00001123 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer 11.lnk
2016-04-09 19:01 - 2016-04-09 19:01 - 00001111 _____ C:\Users\Public\Desktop\TeamViewer 11.lnk
2016-04-09 19:00 - 2016-04-09 19:00 - 09790120 _____ (TeamViewer GmbH) C:\Users\Ondra K\Downloads\TeamViewer_Setup_cs.exe
2016-04-08 19:42 - 2016-04-08 19:42 - 00015261 _____ C:\Users\Ondra K\Downloads\[TreZzoR]Star Wars_ Sila se probouzi _ Star.Wars.Episode.VII.The.Force.Awakens.2015.BDRip.x264.CZ-TreZzoR.torrent
2016-04-07 20:11 - 2016-04-07 20:11 - 00234948 _____ C:\Users\Ondra K\Downloads\10118383.pdf
2016-04-07 18:16 - 2016-04-07 18:16 - 00000000 ____D C:\ProgramData\Comodo Downloader
2016-04-03 18:31 - 2016-04-03 18:31 - 00038592 _____ C:\Users\Ondra K\Downloads\Grimm-S05E15.zip
2016-04-03 13:08 - 2016-04-03 13:08 - 00230818 _____ C:\Users\Ondra K\Downloads\10070371.pdf
2016-04-02 20:13 - 2016-04-02 20:13 - 00042792 _____ C:\Users\Ondra K\Downloads\11.22.63.S01E07.hdtv-lol.srt
2016-03-31 11:44 - 2016-03-31 11:44 - 00235936 _____ C:\Users\Ondra K\Downloads\10039104.pdf

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2016-04-28 18:34 - 2016-02-13 16:33 - 00000562 ____H C:\WINDOWS\Tasks\MATLAB R2015b Startup Accelerator.job
2016-04-28 18:32 - 2014-10-06 20:38 - 01474832 _____ C:\WINDOWS\system32\Drivers\sfi.dat
2016-04-28 18:30 - 2015-10-25 14:25 - 00000922 _____ C:\WINDOWS\Tasks\DropboxUpdateTaskMachineUA.job
2016-04-28 18:30 - 2014-10-11 15:20 - 00000000 ____D C:\Users\Ondra K\AppData\Roaming\Skype
2016-04-28 18:29 - 2014-10-06 20:27 - 00000000 ___RD C:\Users\Ondra K\Dropbox
2016-04-28 18:25 - 2015-02-05 10:00 - 00000968 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2016-04-28 18:24 - 2015-12-09 05:47 - 00000000 ____D C:\Users\Ondra K
2016-04-28 18:24 - 2015-10-25 14:25 - 00000918 _____ C:\WINDOWS\Tasks\DropboxUpdateTaskMachineCore.job
2016-04-28 18:23 - 2015-12-13 22:50 - 00000000 ____D C:\WINDOWS\Minidump
2016-04-28 18:22 - 2015-12-09 06:16 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2016-04-28 18:19 - 2014-10-09 20:29 - 00000000 ____D C:\Users\Ondra K\AppData\Roaming\uTorrent
2016-04-28 08:54 - 2015-02-05 10:00 - 00000972 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2016-04-28 08:46 - 2015-09-07 10:18 - 00000982 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-1067718225-367633953-3890117072-1002UA.job
2016-04-28 08:41 - 2015-12-09 05:46 - 02381342 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2016-04-28 08:41 - 2015-10-30 20:31 - 01092442 _____ C:\WINDOWS\system32\perfh005.dat
2016-04-28 08:41 - 2015-10-30 20:31 - 00283672 _____ C:\WINDOWS\system32\perfc005.dat
2016-04-28 08:41 - 2015-10-30 09:21 - 00000000 ____D C:\WINDOWS\INF
2016-04-28 08:35 - 2015-10-30 08:28 - 00524288 ___SH C:\WINDOWS\system32\config\BBI
2016-04-28 08:35 - 2015-10-25 12:54 - 00065536 _____ C:\WINDOWS\system32\spu_storage.bin
2016-04-28 08:27 - 2014-10-07 09:30 - 00000000 ____D C:\Users\Ondra K\AppData\Local\Adobe
2016-04-27 18:55 - 2015-03-07 17:42 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive
2016-04-27 18:52 - 2015-09-07 10:21 - 00002524 _____ C:\Users\Ondra K\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome Canary.lnk
2016-04-27 18:52 - 2015-09-07 10:21 - 00002516 _____ C:\Users\Ondra K\Desktop\Google Chrome Canary.lnk
2016-04-27 18:48 - 2015-01-31 12:47 - 00000000 ____D C:\Program Files\trend micro
2016-04-27 18:23 - 2015-10-30 09:24 - 00000000 ___HD C:\Program Files\WindowsApps
2016-04-27 18:23 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\AppReadiness
2016-04-27 18:22 - 2015-10-26 22:02 - 00000000 ____D C:\Users\Ondra K\AppData\Roaming\vlc
2016-04-24 20:46 - 2015-09-07 10:18 - 00000930 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-1067718225-367633953-3890117072-1002Core.job
2016-04-23 18:50 - 2015-10-21 03:11 - 23969776 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\Drivers\atikmdag.sys
2016-04-23 18:50 - 2015-10-21 03:11 - 01281512 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atiadlxx.dll
2016-04-23 18:50 - 2015-10-21 03:11 - 00561136 _____ (AMD) C:\WINDOWS\system32\atieclxx.exe
2016-04-23 18:50 - 2015-10-21 03:11 - 00451056 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atidemgy.dll
2016-04-23 18:50 - 2015-10-21 03:11 - 00254960 _____ (AMD) C:\WINDOWS\system32\atiesrxx.exe
2016-04-23 18:50 - 2015-10-21 03:10 - 13313512 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atidxx64.dll
2016-04-23 18:50 - 2015-10-21 03:10 - 10919072 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiumd64.dll
2016-04-23 18:50 - 2015-10-21 03:10 - 09158464 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiumdag.dll
2016-04-23 18:50 - 2015-10-21 03:10 - 09105520 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiumd6a.dll
2016-04-23 18:50 - 2015-10-21 03:10 - 08168824 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiumdva.dll
2016-04-23 18:01 - 2014-10-09 20:35 - 00000000 ____D C:\Stahování
2016-04-23 11:52 - 2016-01-02 17:37 - 00000034 _____ C:\Users\Ondra K\AppData\Roaming\AdobeWLCMCache.dat
2016-04-17 10:02 - 2014-10-07 09:12 - 00000000 ____D C:\Users\Ondra K\AppData\Local\Packages
2016-04-16 10:23 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\rescache
2016-04-16 09:30 - 2014-10-11 15:20 - 00000000 ___RD C:\Program Files (x86)\Skype
2016-04-16 09:30 - 2014-10-11 15:20 - 00000000 ____D C:\ProgramData\Skype
2016-04-14 07:26 - 2014-10-06 22:28 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013
2016-04-14 07:24 - 2013-08-22 15:25 - 00000167 _____ C:\WINDOWS\win.ini
2016-04-14 07:10 - 2014-10-06 20:20 - 00000000 ____D C:\Users\Ondra K\AppData\Roaming\Dropbox
2016-04-14 07:08 - 2015-06-17 11:35 - 00000000 ____D C:\Users\Ondra K\AppData\Local\Dropbox
2016-04-14 07:07 - 2015-10-25 14:25 - 00000000 ____D C:\Program Files (x86)\Dropbox
2016-04-14 06:56 - 2015-12-09 05:34 - 00372816 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2016-04-13 23:02 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2016-04-13 23:02 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\appraiser
2016-04-13 23:02 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\PolicyDefinitions
2016-04-13 23:02 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\bcastdvr
2016-04-13 20:06 - 2015-10-30 09:11 - 00000000 ____D C:\WINDOWS\CbsTemp
2016-04-13 20:03 - 2014-10-07 10:02 - 00000000 ____D C:\WINDOWS\system32\MRT
2016-04-13 19:51 - 2014-10-07 10:02 - 135176864 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2016-04-13 16:28 - 2015-10-30 09:26 - 00829944 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2016-04-13 16:28 - 2015-10-30 09:26 - 00176632 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2016-04-11 21:58 - 2015-09-07 09:39 - 00002283 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2016-04-11 21:58 - 2015-09-07 09:39 - 00002271 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2016-04-11 19:48 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\NDF
2016-04-11 11:00 - 2014-12-12 22:52 - 00005472 _____ C:\WINDOWS\system32\Drivers\fvstore.dat
2016-04-08 21:01 - 2015-06-24 09:00 - 00000000 ____D C:\Program Files (x86)\Overwolf
2016-04-07 18:16 - 2014-10-06 20:39 - 00002001 _____ C:\Users\Public\Desktop\COMODO Internet Security.lnk
2016-04-06 14:19 - 2015-08-13 10:20 - 00138560 _____ (COMODO) C:\WINDOWS\system32\Drivers\inspect.sys
2016-04-06 14:19 - 2014-04-16 22:13 - 00846104 _____ (COMODO) C:\WINDOWS\system32\Drivers\cmdguard.sys
2016-04-06 14:19 - 2014-04-16 22:13 - 00045600 _____ (COMODO) C:\WINDOWS\system32\Drivers\cmdhlp.sys
2016-04-06 14:19 - 2014-04-16 22:13 - 00032224 _____ (COMODO) C:\WINDOWS\system32\Drivers\cmderd.sys
2016-04-06 14:17 - 2014-03-25 20:22 - 00051800 _____ (COMODO) C:\WINDOWS\system32\cmdcsr.dll
2016-04-06 14:16 - 2014-03-25 20:22 - 00596232 _____ (COMODO) C:\WINDOWS\system32\guard64.dll
2016-04-06 14:16 - 2014-03-25 20:22 - 00461648 _____ (COMODO) C:\WINDOWS\SysWOW64\guard32.dll
2016-04-06 14:14 - 2014-03-25 20:22 - 00365752 _____ (COMODO) C:\WINDOWS\system32\cmdvrt64.dll
2016-04-06 14:14 - 2014-03-25 20:22 - 00051896 _____ (COMODO) C:\WINDOWS\system32\cmdkbd64.dll
2016-04-06 14:12 - 2014-03-25 20:22 - 00296120 _____ (COMODO) C:\WINDOWS\SysWOW64\cmdvrt32.dll
2016-04-06 14:11 - 2014-03-25 20:22 - 00046776 _____ (COMODO) C:\WINDOWS\SysWOW64\cmdkbd32.dll

==================== Files in the root of some directories =======

2016-01-02 17:37 - 2016-04-23 11:52 - 0000034 _____ () C:\Users\Ondra K\AppData\Roaming\AdobeWLCMCache.dat
2015-07-09 11:44 - 2015-07-09 11:44 - 0003127 _____ () C:\Users\Ondra K\AppData\Roaming\gmshrc
2015-02-19 14:07 - 2015-02-25 13:54 - 0000600 _____ () C:\Users\Ondra K\AppData\Roaming\winscp.rnd
2015-07-29 13:24 - 2015-07-29 13:24 - 0000337 _____ () C:\Users\Ondra K\AppData\Local\Perfmon.PerfmonCfg
2014-12-08 13:55 - 2016-03-20 16:12 - 0007599 _____ () C:\Users\Ondra K\AppData\Local\Resmon.ResmonCfg
2015-12-09 05:39 - 2015-12-09 05:39 - 0000000 ____H () C:\ProgramData\DP45977C.lfl

Some files in TEMP:
====================
C:\Users\Ondra K\AppData\Local\Temp\libeay32.dll
C:\Users\Ondra K\AppData\Local\Temp\msvcr120.dll
C:\Users\Ondra K\AppData\Local\Temp\sqlite3.dll


==================== Bamital & volsnap =================

(There is no automatic fix for files that do not pass verification.)

C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\wininit.exe => File is digitally signed
C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\SysWOW64\explorer.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\SysWOW64\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\SysWOW64\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\SysWOW64\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
C:\WINDOWS\SysWOW64\dnsapi.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed



===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===

==================== Drive and Memory info ===================



==================== MBR and Partition Table ==================


==================== Scheduled Tasks (whitelisted) ==================

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\WINDOWS\Tasks\DropboxUpdateTaskMachineCore.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
Task: C:\WINDOWS\Tasks\DropboxUpdateTaskMachineUA.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-1067718225-367633953-3890117072-1002Core.job => C:\Users\Ondra K\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-1067718225-367633953-3890117072-1002UA.job => C:\Users\Ondra K\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\MATLAB R2015b Startup Accelerator.job => C:\Program Files\MATLAB\R2015b\bin\win64\MATLABStartupAccelerator.exe

==================== Alternate Data Streams (whitelisted) ==================


==================== Security Center ==================

AV: COMODO Antivirus (Enabled - Up to date) {D0CC7563-ABD2-DEBE-138E-FDD553335AF2}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Comodo Defense+ (Enabled - Up to date) {6BAD9487-8DE8-D130-293E-C6A728B4104F}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
FW: COMODO Firewall (Enabled) {E8F7F446-E1BD-DFE6-38D1-54E0ADE01D89}



===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)


***** Velikost "Plochy" *****

Velikost slozky "C:\Users\Ondra K\Desktop" je 3759 MB.


***** Startup Programs *****


***** Firewall rules *****

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]


***** System Restore *****

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]


==================== End Of Log ==============================

Re: Samovolné restartování notebooku

Napsal: 28 dub 2016 18:08
od Stoone
Jinak me napadlo udelat obnoveni systemu, a to podle vseho selhalo.

Re: Samovolné restartování notebooku

Napsal: 28 dub 2016 19:05
od Rudy
Nepovedlo se, musíte zkusit jiný bod obnovení. Otevřte poznámkový blok a zkopírujte do něj:
Start
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [596528 2015-11-29] (Oracle Corporation)
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-1067718225-367633953-3890117072-1002 -> DefaultScope {178D9161-8542-463B-9D8E-CD0505C5DC82} URL =
SearchScopes: HKU\S-1-5-21-1067718225-367633953-3890117072-1002 -> {178D9161-8542-463B-9D8E-CD0505C5DC82} URL =
BHO: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2016-01-08] (Microsoft Corporation)
C:\Program Files (x86)\Skype\Toolbars
BHO-x32: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2016-01-08] (Microsoft Corporation)
Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2016-01-08] (Microsoft Corporation)
Handler-x32: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2016-01-08] (Microsoft Corporation)
R2 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1433216 2016-01-17] (Microsoft Corporation)
R2 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1773696 2016-01-17] (Microsoft Corporation)
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-1067718225-367633953-3890117072-1002UA.job
C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-1067718225-367633953-3890117072-1002Core.job
C:\ProgramData\DP45977C.lfl
C:\Users\Ondra K\AppData\Local\Temp
Task: {4EC0F976-59CD-4EA9-B379-6B6434DE197E} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> No File <==== ATTENTION
Task: {50661364-E7F6-4E3F-BC13-2151A61E467A} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> No File <==== ATTENTION
Task: {762C806B-CC86-4D69-9B6E-06E950D0A635} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> No File <==== ATTENTION
Task: {767CB050-4A7C-4339-9E70-42A4D1A8AF26} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> No File <==== ATTENTION
Task: {7FFF133E-7357-46FE-B421-6F7916DF86ED} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> No File <==== ATTENTION
Task: {BA7568B8-B0AD-4144-8EEF-2B8E74B9D54A} - \Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd -> No File <==== ATTENTION
Task: {BABD0AA2-0C0F-43A8-952E-AC9592C90B68} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> No File <==== ATTENTION
Task: {A1804ADA-0272-4D9E-ACAD-63E1DBF09D06} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> No File <==== ATTENTION
Task: {E460B513-0E5E-4DF9-97AB-981A73B13C5C} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> No File <==== ATTENTION
Task: {EA10E6AF-DE3A-458C-82E2-F8EF1D3B7A85} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> No File <==== ATTENTION
Task: {F4255167-1DF6-42C4-B390-03BE3F37E10C} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> No File <==== ATTENTION
AlternateDataStreams: C:\WINDOWS\system32\mfps.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\mfreadwrite.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\mfsrcsnk.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\mfsvr.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\mftranscode.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\microsoft-windows-system-events.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\modernexecserver.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\mos.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\moshost.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\moshostcore.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\MosStorage.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\MP3DMOD.DLL:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\MPSSVC.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\MRT.exe:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\msctf.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\msfeeds.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\MSFlacDecoder.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\mshtml.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\msi.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\MSMPEG2ENC.DLL:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\MsSpellCheckingFacility.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\mstscax.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\msv1_0.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\msvproc.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\msxml3.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\msxml6.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\MTF.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\MTFServer.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\mtxoci.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\MusNotification.exe:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\MusNotificationUx.exe:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\MusUpdateHandlers.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\ncbservice.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\netapi32.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\NetCfgNotifyObjectHost.exe:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\netlogon.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\NetSetupApi.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\NetSetupEngine.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\NetSetupShim.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\NetSetupSvc.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\NetworkMobileSettings.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\ngckeyenum.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\ngcsvc.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\NMAA.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\NotificationObjFactory.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\ntdll.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\ntoskrnl.exe:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\ole32.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\oleacc.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\oleacchooks.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\omadmapi.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\omadmclient.exe:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\OnDemandConnRouteHelper.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\OpenCL.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\OpenWith.exe:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\PackageStateRoaming.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\pcaui.exe:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\PhoneCallHistoryApis.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\PhoneProviders.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\PhoneService.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\PimIndexMaintenance.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\PimIndexMaintenanceClient.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\policymanager.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\policymanagerprecheck.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\POSyncServices.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\profext.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\profsvc.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\provdatastore.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\provengine.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\provhandlers.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\provisioningcsp.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\provpackageapidll.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\ProvPluginEng.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\provtool.exe:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\ProximityCommon.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\PsmServiceExtHost.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\psmsrv.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\qdvd.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\qedit.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\quartz.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\QuickActionsDataModel.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\rasadhlp.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\rasapi32.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\rasauto.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\rasautou.exe:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\rasdlg.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\rastls.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\rastlsext.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\RDXService.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\RDXTaskFactory.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\readingviewresources.dll:$CmdTcID [130]
AlternateDataStreams: C:\WINDOWS\system32\RecoveryDrive.exe:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\RemoteNaturalLanguage.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\reseteng.dll:$CmdTcID [130]
AlternateDataStreams: C:\WINDOWS\system32\RMSRoamingSecurity.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\RtCRX64.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\SAFEQ64UI.DLL:$CmdZnID [26]
AlternateDataStreams: C:\WINDOWS\system32\SafeQCairoLib64.DLL:$CmdZnID [26]
AlternateDataStreams: C:\WINDOWS\system32\SafeQEvent.dll:$CmdZnID [26]
AlternateDataStreams: C:\WINDOWS\system32\SAFEQVS64.DLL:$CmdZnID [26]
AlternateDataStreams: C:\WINDOWS\system32\samlib.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\samsrv.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\scapi.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\schannel.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\schedsvc.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\SecConfig.efi:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\seclogon.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\SensorsApi.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\SensorService.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\SensorsNativeApi.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\SensorsNativeApi.V2.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\services.exe:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\SET101C.tmp:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\SETA845.tmp:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\SETAD87.tmp:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\SETAF51.tmp:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\SETB313.tmp:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\SETB3C1.tmp:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\SETB49E.tmp:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\SettingsHandlers_nt.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\SettingSync.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\SettingSyncCore.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\SharedStartModel.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\sharemediacpl.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\shell32.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\shutdownux.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\SimAuth.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\SimCfg.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\SMSRouter.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\SmsRouterSvc.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\spoolsv.exe:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\sqmapi.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\srcore.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\SRH.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\SRHInproc.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\srpapi.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\srvcli.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\sscoreext.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\StorageUsage.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\StoreAgent.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\storewuauth.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\StorSvc.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\SyncController.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\systemreset.exe:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\SystemSettings.DeviceEncryptionHandlers.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\SystemSettingsAdminFlows.exe:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\SystemSettingsThresholdAdminFlowUI.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\taskschd.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\tbauth.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\TextInputFramework.dll:$CmdTcID [130]
AlternateDataStreams: C:\WINDOWS\system32\thumbcache.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\tileobjserver.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\TimeBrokerClient.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\TimeBrokerServer.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\TokenBroker.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\TokenBrokerCookies.exe:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\twinui.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\tzautoupdate.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\UCI64A96.DLL:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\uDWM.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\UIAutomationCore.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\Unistore.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\uReFS.dll:$CmdTcID [130]
AlternateDataStreams: C:\WINDOWS\system32\urlmon.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\usbmon.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\user32.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\UserDataAccountApis.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\UserDataLanguageUtil.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\UserDataPlatformHelperUtil.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\UserDataService.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\UserDataTimeUtil.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\UserDataTypeHelperUtil.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\usermgr.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\usermgrcli.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\UserMgrProxy.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\UtcResources.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\vaultcli.dll:$CmdTcID [130]
AlternateDataStreams: C:\WINDOWS\system32\vaultsvc.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\vbscript.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\VCardParser.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\VEDataLayerHelpers.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\VEEventDispatcher.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\VEStoreEventHandlers.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\vfcompat.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\wbiosrvc.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\wcmcsp.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\wcmsvc.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\wer.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\wermgr.exe:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\werui.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\wfapigp.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\wfdprov.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\WiFiConfigSP.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\wificonnapi.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\WiFiDisplay.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\wifinetworkmanager.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\wifiprofilessettinghandler.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\wifitask.exe:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\win32k.sys:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\win32kbase.sys:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\win32kfull.sys:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\win32spl.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\winbio.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\Windows.AccountsControl.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\Windows.Data.Pdf.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\Windows.Devices.Bluetooth.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\Windows.Devices.Scanners.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\Windows.Internal.Shell.Broker.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\Windows.Media.Audio.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\Windows.Media.Devices.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\Windows.Media.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\Windows.Media.MediaControl.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\Windows.Media.Speech.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\Windows.Networking.BackgroundTransfer.dll:$CmdTcID [32]
AlternateDataStreams: C:\WINDOWS\system32\Windows.Networking.Connectivity.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\Windows.Networking.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\Windows.Networking.UX.EapRequestHandler.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\Windows.Networking.XboxLive.ProxyStub.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\Windows.Security.Authentication.Web.Core.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\windows.storage.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\Windows.UI.Cred.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\Windows.UI.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\Windows.UI.Input.Inking.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\Windows.UI.Logon.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\Windows.UI.Shell.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\Windows.UI.Xaml.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\Windows.Web.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\Windows.Web.Http.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\winhttp.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\winhttpcom.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\wininet.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\wininetlui.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\winload.efi:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\winload.exe:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\winlogon.exe:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\winresume.efi:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\winresume.exe:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\winspool.drv:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\WinTypes.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\wkscli.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\wlanapi.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\wlanmsm.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\wlansec.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\wlansvc.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\wlansvcpal.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\wlidcli.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\wlidsvc.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\WMADMOD.DLL:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\wmp.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\WMPDMC.exe:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\WMSPDMOD.DLL:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\WMSPDMOE.DLL:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\WpcMon.exe:$CmdTcID [130]
AlternateDataStreams: C:\WINDOWS\system32\WpcWebFilter.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\wpninprc.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\wscapi.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\wscsvc.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\WSDApi.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\wsdchngr.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\wshom.ocx:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\wshrm.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\wsqmcons.exe:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\WSService.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\wu.upgrade.ps.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\wuapi.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\wuaueng.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\wuautoappupdate.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\wups.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\wuuhext.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\WWAHost.exe:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\WWanAPI.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\wwansvc.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\XblAuthManager.dll:$CmdTcID [130]
AlternateDataStreams: C:\WINDOWS\system32\XblGameSave.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\XboxNetApiSvc.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\ztrace_maps.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\AboveLockAppHost.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\AccountsRt.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\ActiveSyncProvider.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\actxprxy.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\advapi32.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\amdave32.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\amdgfxinfo32.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\amdhcp32.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\amdhdl32.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\amdlvr32.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\amdmantle32.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\amdmmcl.dll:$CmdTcID [130]
AlternateDataStreams: C:\WINDOWS\SysWOW64\amdocl.dll:$CmdTcID [130]
AlternateDataStreams: C:\WINDOWS\SysWOW64\amdocl12cl.dll:$CmdTcID [130]
AlternateDataStreams: C:\WINDOWS\SysWOW64\amdocl_as32.exe:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\amdocl_ld32.exe:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\amdpcom32.dll:$CmdTcID [130]
AlternateDataStreams: C:\WINDOWS\SysWOW64\amdxc32.dll:$CmdTcID [130]
AlternateDataStreams: C:\WINDOWS\SysWOW64\api-ms-win-crt-conio-l1-1-0.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\api-ms-win-crt-convert-l1-1-0.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\api-ms-win-crt-environment-l1-1-0.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\api-ms-win-crt-filesystem-l1-1-0.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\api-ms-win-crt-heap-l1-1-0.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\api-ms-win-crt-locale-l1-1-0.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\api-ms-win-crt-math-l1-1-0.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\api-ms-win-crt-multibyte-l1-1-0.dll:$CmdTcID [130]
AlternateDataStreams: C:\WINDOWS\SysWOW64\api-ms-win-crt-private-l1-1-0.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\api-ms-win-crt-process-l1-1-0.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\api-ms-win-crt-runtime-l1-1-0.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\api-ms-win-crt-stdio-l1-1-0.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\api-ms-win-crt-string-l1-1-0.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\api-ms-win-crt-time-l1-1-0.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\api-ms-win-crt-utility-l1-1-0.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\AppointmentActivation.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\AppointmentApis.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\appverif.exe:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\AppxAllUserStore.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\AppxPackaging.dll:$CmdTcID [130]
AlternateDataStreams: C:\WINDOWS\SysWOW64\AppxSip.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\asycfilt.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\atiadlxx.dll:$CmdTcID [130]
AlternateDataStreams: C:\WINDOWS\SysWOW64\atiadlxy.dll:$CmdTcID [130]
AlternateDataStreams: C:\WINDOWS\SysWOW64\aticalcl.dll:$CmdTcID [130]
AlternateDataStreams: C:\WINDOWS\SysWOW64\aticaldd.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\aticalrt.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\aticfx32.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\atidxx32.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\atieah32.exe:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\atigktxx.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\atiglpxx.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\atimpc32.dll:$CmdTcID [130]
AlternateDataStreams: C:\WINDOWS\SysWOW64\atioglxx.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\atisamu32.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\atiu9pag.dll:$CmdTcID [130]
AlternateDataStreams: C:\WINDOWS\SysWOW64\atiumdag.dll:$CmdTcID [130]
AlternateDataStreams: C:\WINDOWS\SysWOW64\atiumdva.dll:$CmdTcID [130]
AlternateDataStreams: C:\WINDOWS\SysWOW64\atiuxpag.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\atmfd.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\atmlib.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\AUDIOKSE.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\AudioSes.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\authui.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\BackgroundTransferHost.exe:$CmdTcID [130]
AlternateDataStreams: C:\WINDOWS\SysWOW64\BingMaps.dll:$CmdTcID [130]
AlternateDataStreams: C:\WINDOWS\SysWOW64\browcli.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\CallHistoryClient.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\catsrvut.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\cemapi.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\CertEnroll.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\cfgbkend.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\Chakra.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\ChatApis.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\CNC550L.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\CNC550U.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\CNHMCA.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\combase.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\comsvcs.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\ContactApis.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\CoreUIComponents.dll:$CmdTcID [130]
AlternateDataStreams: C:\WINDOWS\SysWOW64\CredProvDataModel.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\credprovhost.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\d2d1.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\d3d11.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\detoured.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\deviceaccess.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\DisplayManager.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\dnsapi.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\dwmcore.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\dxgi.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\easwrt.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\edgehtml.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\EmailApis.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\esent.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\evr.dll:$CmdTcID [130]
AlternateDataStreams: C:\WINDOWS\SysWOW64\explorer.exe:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\ExplorerFrame.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\ExSMime.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\ExtrasXmlParser.dll:$CmdTcID [130]
AlternateDataStreams: C:\WINDOWS\SysWOW64\FirewallAPI.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\FlashPlayerApp.exe:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\fontdrvhost.exe:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\fontsub.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\fwbase.dll:$CmdTcID [130]
AlternateDataStreams: C:\WINDOWS\SysWOW64\fwpolicyiomgr.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\FWPUCLNT.DLL:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\gdi32.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\GdiPlus.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\hlink.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\hsa-thunk.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\iassam.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\iedkcs32.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\ieframe.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\ieproxy.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\iertutil.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\inetcpl.cpl:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\InputLocaleManager.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\InputService.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\InstallAgent.exe:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\JpMapControl.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\jscript9.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\jsproxy.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\kerberos.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\KernelBase.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\ksproxy.ax:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\LaunchWinApp.exe:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\libeay32.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\libssl32.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\LicenseManager.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\LockAppHost.exe:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\mantle32.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\mantleaxl32.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\MapConfiguration.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\MapControlCore.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\MapsBtSvc.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\MCRecvSrc.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\mdmregistration.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\MessagingDataModel2.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\mfasfsrcsnk.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\MFCaptureEngine.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\mfcore.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\mfds.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\MFMediaEngine.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\mfmkvsrcsnk.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\mfmp4srcsnk.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\mfmpeg2srcsnk.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\mfnetcore.dll:$CmdTcID [130]
AlternateDataStreams: C:\WINDOWS\SysWOW64\mfnetsrc.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\mfplat.dll:$CmdTcID [130]
AlternateDataStreams: C:\WINDOWS\SysWOW64\MFPlay.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\mfps.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\mfreadwrite.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\mfsrcsnk.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\mfsvr.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\mftranscode.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\mos.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\MosStorage.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\MP3DMOD.DLL:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\msctf.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\msfeeds.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\MSFlacDecoder.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\mshtml.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\msi.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\MSMPEG2ENC.DLL:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\msorcl32.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\MsSpellCheckingFacility.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\mstscax.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\msv1_0.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\msvproc.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\msxml3.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\msxml6.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\MTF.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\mtxoci.dll:$CmdTcID [32]
AlternateDataStreams: C:\WINDOWS\SysWOW64\netapi32.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\netlogon.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\NetSetupApi.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\NetSetupEngine.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\NetSetupShim.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\NMAA.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\NotificationObjFactory.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\ntdll.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\ole32.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\oleacc.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\oleacchooks.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\olepro32.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\OnDemandConnRouteHelper.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\OpenCL.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\OpenWith.exe:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\PackageStateRoaming.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\pcaui.exe:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\PhoneCallHistoryApis.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\PimIndexMaintenanceClient.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\policymanager.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\POSyncServices.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\profext.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\ProximityCommon.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\qdvd.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\qedit.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\quartz.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\rasadhlp.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\rasapi32.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\rasautou.exe:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\rasdlg.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\rastls.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\rastlsext.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\RemoteNaturalLanguage.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\RsCRIcon.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\samlib.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\schannel.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\SensorsApi.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\SensorsNativeApi.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\SensorsNativeApi.V2.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\SET187B.tmp:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\SET1CB3.tmp:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\SET2A47.tmp:$CmdTcID [130]
AlternateDataStreams: C:\WINDOWS\SysWOW64\SettingSync.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\SettingSyncCore.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\shell32.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\SimAuth.dll:$CmdTcID [130]
AlternateDataStreams: C:\WINDOWS\SysWOW64\SimCfg.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\sqmapi.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\SRH.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\SRHInproc.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\srvcli.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\ssleay32.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\StoreAgent.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\SyncController.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\taskschd.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\tbauth.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\TextInputFramework.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\thumbcache.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\TimeBrokerClient.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\TokenBroker.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\TokenBrokerCookies.exe:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\twinui.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\UIAutomationCore.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\Unistore.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\uReFS.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\urlmon.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\user32.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\UserDataAccountApis.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\UserDataLanguageUtil.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\UserDataPlatformHelperUtil.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\UserDataTimeUtil.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\UserDataTypeHelperUtil.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\usermgrcli.dll:$CmdTcID [130]
AlternateDataStreams: C:\WINDOWS\SysWOW64\UserMgrProxy.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\vbscript.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\VCardParser.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\VEDataLayerHelpers.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\VEEventDispatcher.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\wer.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\wermgr.exe:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\werui.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\wfapigp.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\WiFiDisplay.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\winbio.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\Windows.AccountsControl.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\Windows.Devices.Bluetooth.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\Windows.Devices.Scanners.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\Windows.Internal.Bluetooth.dll:$CmdTcID [130]
AlternateDataStreams: C:\WINDOWS\SysWOW64\Windows.Media.Audio.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\Windows.Media.Devices.dll:$CmdTcID [32]
AlternateDataStreams: C:\WINDOWS\SysWOW64\Windows.Media.dll:$CmdTcID [130]
AlternateDataStreams: C:\WINDOWS\SysWOW64\Windows.Media.MediaControl.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\Windows.Media.Speech.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\Windows.Networking.BackgroundTransfer.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\Windows.Networking.Connectivity.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\Windows.Networking.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\Windows.Security.Authentication.Web.Core.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\windows.storage.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\Windows.UI.Core.TextInput.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\Windows.UI.Cred.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\Windows.UI.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\Windows.UI.Input.Inking.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\Windows.UI.Logon.dll:$CmdTcID [130]
AlternateDataStreams: C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\Windows.Web.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\Windows.Web.Http.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\winhttp.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\winhttpcom.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\wininet.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\wininetlui.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\winspool.drv:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\WinTypes.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\wkscli.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\wlidcli.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\WMADMOD.DLL:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\wmp.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\WMPDMC.exe:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\WMSPDMOD.DLL:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\WMSPDMOE.DLL:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\WpcWebFilter.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\WSDApi.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\wsdchngr.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\wshom.ocx:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\wuapi.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\WWAHost.exe:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\WWanAPI.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\SysWOW64\ztrace_maps.dll:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\Drivers\acpi.sys:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\Drivers\appid.sys:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\Drivers\ati2erec.dll:$CmdTcID [130]
AlternateDataStreams: C:\WINDOWS\system32\Drivers\atikmdag.sys:$CmdTcID [130]
AlternateDataStreams: C:\WINDOWS\system32\Drivers\atikmpag.sys:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\Drivers\bridge.sys:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\Drivers\browserMon.sys:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\Drivers\bthport.sys:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\Drivers\BTHUSB.SYS:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\Drivers\cfywlan2.sys:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\Drivers\CHDRT64.sys:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\Drivers\cng.sys:$CmdTcID [130]
AlternateDataStreams: C:\WINDOWS\system32\Drivers\cnnctfy4.sys:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\Drivers\dfsc.sys:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\Drivers\dumpsd.sys:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\Drivers\dxgkrnl.sys:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\Drivers\dxgmms1.sys:$CmdTcID [130]
AlternateDataStreams: C:\WINDOWS\system32\Drivers\dxgmms2.sys:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\Drivers\http.sys:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\Drivers\idmwfp.sys:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\Drivers\lgandnetdiag64.sys:$CmdTcID [32]
AlternateDataStreams: C:\WINDOWS\system32\Drivers\lgandnetmodem64.sys:$CmdTcID [32]
AlternateDataStreams: C:\WINDOWS\system32\Drivers\mrxdav.sys:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\Drivers\mrxsmb.sys:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\Drivers\mrxsmb10.sys:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\Drivers\ndis.sys:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\Drivers\ntfs.sys:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\Drivers\nwifi.sys:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\Drivers\portcls.sys:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\Drivers\rasl2tp.sys:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\Drivers\rmcast.sys:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\Drivers\RtsUer.sys:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\Drivers\sdbus.sys:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\Drivers\serial.sys:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\Drivers\SETA40C.tmp:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\Drivers\tap0901t.sys:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\Drivers\tcpip.sys:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\Drivers\ufx01000.sys:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\Drivers\USBHUB3.SYS:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\Drivers\usbscan.sys:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\Drivers\usbser.sys:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\Drivers\USBSTOR.SYS:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\Drivers\USBXHCI.SYS:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\Drivers\wdcsam64.sys:$CmdTcID [32]
AlternateDataStreams: C:\WINDOWS\system32\Drivers\WdiWiFi.sys:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\Drivers\xboxgip.sys:$CmdTcID [64]
AlternateDataStreams: C:\WINDOWS\system32\Drivers\xinputhid.sys:$CmdTcID [64]
AlternateDataStreams: C:\Users\Ondra K\Desktop\!!!!! TVN otázky.pdf:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Desktop\021_Osobni_dotazník_valid_OR2016.xlsx:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Desktop\A1M14P02_Otazky_ke_zkousce.pdf:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Desktop\czech_republic_mesh.pdf:$CmdTcID [64]
AlternateDataStreams: C:\Users\Ondra K\Desktop\czech_republic_mesh.pdf:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Desktop\FRST64.exe:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Desktop\FRSTLauncher.exe:$CmdTcID [64]
AlternateDataStreams: C:\Users\Ondra K\Desktop\FRSTLauncher.exe:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Desktop\Hussein-AccurateRepresentationOfExcitationAndLoadingForArbitrarilyShapedAntennasComposedOfConductingSurfacesInTheMOM.pdf:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Desktop\Hussein-AccurateRepresentationOfExcitationAndLoadingForArbitrarilyShapedAntennasComposedOfConductingSurfacesInTheMOM.pdf.part:$CmdTcID [64]
AlternateDataStreams: C:\Users\Ondra K\Desktop\LM.bat:$CmdTcID [64]
AlternateDataStreams: C:\Users\Ondra K\Desktop\Matlab_lecivo:com.dropbox.attributes [168]
AlternateDataStreams: C:\Users\Ondra K\Desktop\termo.png:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Desktop\_primitives_and_their_products.zip:$CmdTcID [64]
AlternateDataStreams: C:\Users\Ondra K\Desktop\_primitives_and_their_products.zip:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\10-maki.pdf:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\10039104.pdf:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\10070371.pdf:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\10118383.pdf:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\10158073.pdf:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\10236909.pdf:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\10297641.pdf:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\11.22.63.S01E02.HDTV.X264-LOL (+720p.H.264-TOPLEL).srt:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\11.22.63.S01E03.720p.HULU.WEBRip.AAC2.0.H.264-TOPLEL (+LOL).srt:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\11.22.63.s01e05.hdtv-lol (+720 DIMENSION).srt:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\11.22.63.S01E06.HDTV.X264-LOL.srt:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\11.22.63.S01E07.hdtv-lol.srt:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\11.22.63.S01E08.zip:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\115_cz (1).rar:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\115_cz.rar:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\12-Kabát-ÓDA-NA-KONOPÍ.mp3:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\12493634_10207456416759994_6363333904015696540_o.jpg:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\16_Zakazany_ovoce.mp3:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\504_navod_xv535.pdf:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\7.deadly.sins.104.rar:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\8203520.pdf:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\8243488.pdf:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\8280919.pdf:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\8346192.pdf:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\8381398.pdf:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\8414413.pdf:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\8634267.pdf:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\8667873.pdf:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\8707492.pdf:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\8739716.pdf:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\8773890.pdf:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\8810584.pdf:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\882350_10201831462060424_88946137410011591_o.jpg:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\8846890.pdf:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\8882508.pdf:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\8920780.pdf:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\8956861.pdf:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\9-sushi.pdf:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\9.-semestr.rar:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\9004551.pdf:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\9028316.pdf:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\9043732.pdf:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\9142748.pdf:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\9176977.pdf:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\9209637.pdf:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\9255436.pdf:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\9343657.pdf:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\9442934.pdf:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\9459738.pdf:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\9480551.pdf:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\9495658.pdf:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\9622192.pdf:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\9742221.pdf:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\9940101.pdf:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\A1M13EZF----Elektrochemické-zdroje-a-fotovoltaika.zip:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\A1M15ENY----Elektrárny.zip:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\Afroman---Because-I-Got-High.mp3:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\airbank_1304979013_2015-09-24_11-53.csv:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\airbank_1304979013_2016-01-08_11-40.csv:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\akafrivolity.zip:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\akatype_akadora.zip:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\Alkehol---Travička-zelená.mp3:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\associateFiles.zip:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\Automaticke_Vypnuti_PC.zip:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\Biologie.doc:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\blindspot-S01E01-hdtv-By-jeriska03-lukascoolarik(1).zip:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\blindspot-S01E16-hdtv-By-jeriska03-lukascoolarik.zip:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\blindspot.114.hdtv-lol.srt:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\blindspot.pilot.(2015).eng.1cd.(6267469).zip:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\Blindspot_1x01_HDTV.x264-LOL.en.zip:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\Bow-Wave-Paserak.mp3:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\BPTX_2013_1_11410_0_352218_0_142301.pdf:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\BP_Krátký_kalibrace_citace_vsude.docx:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\cb523d6f64d7161f0118c433ec669226581afd65.doc:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\ccsetup514.exe:$CmdTcID [130]
AlternateDataStreams: C:\Users\Ondra K\Downloads\ccsetup514.exe:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\clipper.zip:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\Co-jsme-komu-udelali.mp4:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\Co-jsme-komu-udělali-2014-(český-dabing).avi:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\Connectify2016Installer.exe:$CmdTcID [130]
AlternateDataStreams: C:\Users\Ondra K\Downloads\Connectify2016Installer.exe:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\CZ_Brunel_Developer_MATLAB_SIMULINK_070915 (1).pdf:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\CZ_Brunel_Developer_MATLAB_SIMULINK_070915.pdf:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\da-vincis-demons-subtitles-cz-3.zip:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\DIPLOMKA_Kratky_Jelinek.docx:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\DIPLOMKA_stare.docx:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\distance2curve.zip:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\DistBetween2Segment.zip:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\Doklad_2131966364.pdf:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\dpsimplify.zip:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\DPTX_2010_2__0_80488_0_95503.pdf:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\DP_Kratky_2016_04_10 (1).pdf:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\DP_Kratky_2016_04_10.pdf:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\Dritecsky-zpravodaj-podzim-2014.pdf:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\dritecsky-zpravodaj-zima-2015.pdf:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\Elementary - 04x07.srt:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\Elementary.04x17.hdtv-lol.srt:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\elementary.410.hdtv-lol.srt:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\elementary.411.hdtv-lol[ettv].srt:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\Elementary.S04E03.HDTV.x264-LOL.srt:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\Elementary.S04E06.HDTV.x264-LOL.srt:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\EZF.rar:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\Form_CVUT-CZ-ZU.pdf:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\Form_CVUT-CZ-ZUP.UA.pdf:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\Form_CVUT-CZ-ZUP1.pdf:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\Fousatej-Hat---Tráva.mp3:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\FRST64 (1).exe:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\FV_EZF_zkouska_otazky.pdf:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\geom3d-2014.10.13.zip:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\geom3d-2015.11.13.zip:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\gephi-0.8.2-beta.setup.exe:$CmdTcID [64]
AlternateDataStreams: C:\Users\Ondra K\Downloads\gephi-0.8.2-beta.setup.exe:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\gmsh-2.9.3-Windows64.zip:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\GraphMLViewer.zip:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\graphml_lep.zip:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\Grimm S05E11 PROPER HDTV XviD-AFG.srt:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\Grimm-S05E02-Clear-and-Wesen-Danger-CZ-Titulky.avi:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\Grimm-S05E06.zip:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\Grimm-S05E15.zip:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\Grimm.S05E16.HDTV.x264-FLEET.srt:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\Grimm.S05E16.The.Believer.720p.WEB-DL.DD5.1.H.264-VietHD.srt:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\Honor 7 Fantasy.pdf:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\IM.zip:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\IMG.jpg:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\IMGP0274.JPG:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\IMGP0324.JPG:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\IMGP0368.JPG:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\IMG_3472.JPG:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\IZ_CLNO_final.pdf:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\jessica-jones-s01e09-webripx264wr.srt:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\Jessica-Jones-s01e10-WebRip-x264-WR.srt:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\Jessica.Jones.S01E08.AKA.WWJD.WEBRip.x264-WR.srt:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\jre-8u60-windows-i586.exe:$CmdTcID [64]
AlternateDataStreams: C:\Users\Ondra K\Downloads\jre-8u60-windows-i586.exe:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\Kabát---Joint.mp3:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\Karticka_51062645.pdf:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\Kompenzace.pdf:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\LencinPornoKanal.wmv:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\letecke-muzeum-je-otevreno-.jpg:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\limitless.103.rar:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\limitless.113.rar:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\limitless.114.rar:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\Limitless.S01E16.HDTV.x264-LOL.srt:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\Limitless.S01E20.720p.x264-LOL.srt:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\Linusn.ZIP:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\losses_orient.ai:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\lucifer-S01E03-hdtv-By-umpalumpa3-luan-torak-lucifrid-thedarkknight(1).zip:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\Lucifer.S01E06.HDTV.x264-LOL (+720).srt:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\Lucifer.S01E07.zip:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\Map Amsterdam Centre.pdf:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\Matlab_Polygons_intersection.zip:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\mereni2.doc:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\Mesh2d_v24.zip:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\meshStrip2D.m:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\MetodickyPokyn_1_2009_EP.pdf:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\minority-report-S01E01-hdtv-By-titulkomat(1).zip:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\minority.report.(2015).eng.1cd.(6270786).zip:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\minority.report.(2015).spa.1cd.(6271812) (1).zip:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\minority.report.(2015).spa.1cd.(6271812).zip:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\minority.report.(2015).tur.1cd.(6284970).zip:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\MrCocoman-A-DrKary--Tak-Uz-To-Bal-High-Passion-Riddim-By-Coco-Jammin-[mp3s.nadruhou.net].mp3:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\Nabídka prevence do škol (1).pdf:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\Nabídka prevence do škol.pdf:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\Nabídkový dopis._Ondrej_Kratky (1).doc:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\Nabídkový dopis._Ondrej_Kratky.doc:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\Nabíjecí-charakteristiky (1).docx:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\Nabíjecí-charakteristiky.docx:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\okruhy.pdf:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\Ond ejKrátký.pdf:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\Ondřej Krátký, CV, EN.pdf:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\Ondřej+Krátký%2C+CV.pdf:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\One-Hundred-Years-of-Solitude--Gabriel-Garcia-Marquez-Ebook.rar:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\PHaSvatovitskyPoklad2St (1).pdf:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\PHaSvatovitskyPoklad2St.pdf:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\PHaSvatovitskyPoklad2st.Reseni (1).pdf:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\PHaSvatovitskyPoklad2st.Reseni.pdf:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\Point-LineDistance3-Dimensional.nb:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\Polarisability_Extraction.pdf:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\PolygonClipper (1).zip:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\PolygonClipper.zip:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\Posli-mi-jointa.mp3:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\posudek_oponent.pdf:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\posudek_vedouci.pdf:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\potvrzeni-o-prijeti-platby.pdf:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\Potvrzeni_objednavky_ZSSezemice_Z1130061015.pdf:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\prilohy_8470.zip:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\protokol.docx:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\Rectify-S01E01(0000217936).srt:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\reduce_poly.zip:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\route.gpx:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\route.kml:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\route.wpt:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\RSITx64.exe:$CmdTcID [64]
AlternateDataStreams: C:\Users\Ondra K\Downloads\RSITx64.exe:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\Sasha-Grey--The-Juliette-Society-(Book-ENG).epub:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\Sasha-Grey-The-Juliette-Society-_Book-ENG_.docx:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\saveTightFigure.zip:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\SCIO - výsledky PP srovnání (1).xls:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\SCIO - výsledky PP srovnání.xls:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\second-chance-S01E08-hdtv-By-lukascoolarik.zip:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\seminarka25.doc:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\Seznamte-se,-Joe-Black-(Meet-Joe-Black---1998).Picaso11.avi:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\skolni-zpravodaj-2014-2015-2-pololeti.pdf:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\slevomat-cz-voucher-vanocni-masaze-dle-vaseho-vyberu-4890240870A-162 (1).pdf:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\slevomat-cz-voucher-vanocni-masaze-dle-vaseho-vyberu-4890240870A-162.pdf:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\smime.p7s:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\Smlouva_51062645.pdf:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\Standard_ucitele.zip:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\Statnice.pdf:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\studio-d-A1.zip:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\suits.503.rar:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\suits.507.rar:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\suits.509.rar:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\suits.511 (1).rar:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\suits.511.rar:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\Suits.S05E15.HDTV.x264-KILLERS.srt:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\symboly_zkratky_ram.doc:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\T8381398.pdf:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\tc102851224fniso690nmericalsquare0comments.zip:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\TeamViewer_Setup_cs.exe:$CmdTcID [64]
AlternateDataStreams: C:\Users\Ondra K\Downloads\TeamViewer_Setup_cs.exe:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\Termografie-Kott.docx:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\TermografieA.rar:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\The Big Bang Theory - 09x08 - The Mystery Date Observation.DIMENSION.srt:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\The Whispers - 01x05 - What Lies Beneath (HDTV).srt:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\The-Blacklist-S03E08---3x08-CZ-titulky-v-obraze.avi:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\The-Expanse-S01E01---CZ-titulky.avi:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\the-x-files-s10e02-hdtv-x264-killers-czb (1).srt:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\the-x-files-s10e02-hdtv-x264-killers-czb.srt:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\The.Big.Bang.Theory.S09E05.HDTV.x264-LOL.srt:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\The.Big.Bang.Theory.S09E12.HDTV.x264-LOL.srt:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\the.blacklist.307.rar:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\the.blacklist.308.rar:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\the.blacklist.309.rar:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\the.blacklist.311.rar:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\the.blacklist.312.rar:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\the.blacklist.314.rar:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\the.blacklist.315.rar:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\The.Blacklist.S03E16.HDTV.x264-KILLERS.srt:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\The.Blacklist.S03E18.HDTV.x264-FLEET.srt:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\The.Blacklist.S03E19.HDTV.x264-FLEET.srt:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\the.flash.2014.s02e06.hdtv.x264-lol.srt:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\the.flash.2014.s02e16.1080p.web-dl.dd5.1.h264-rarbg.srt:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\The.Originals.S03E15.HDTV.x264-LOL.srt:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\the.strain.204.rar:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\the.strain.211.rar:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\The.Strain.S02E02.REPACK.HDTV.x264-KILLERS (720).srt:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\TINA_x64.zip:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\TINA_x86.zip:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\Totální-Nasazení---Don-Quijote-de-la-Ganja.mp3:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\TrojuhelnikovaProuzkoveKce.wrl:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\True.Detective.S02E04.HDTV.x264-ASAP.srt:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\Tucker-a-Dale-vs-Zlo-CZ-dabing.avi:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\Uloz.to_Uploader-setup.exe:$CmdTcID [64]
AlternateDataStreams: C:\Users\Ondra K\Downloads\Uloz.to_Uploader-setup.exe:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\usneseni-zastupitelstva-7-2015-16-10-2015 (1).pdf:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\usneseni-zastupitelstva-7-2015-16-10-2015.pdf:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\usneseni-zastupitelstva-8-2015-4-11-2015.pdf:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\uvodni_strany.doc:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\VA-So-Fresh---The-Hits-of-Summer-2015-Dj.s.Carlos.zip:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\VE2_rezonancni_stridace.docx:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\Vládci-kouzel-1x01---Velky-tresk.avi:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\Vládci-kouzel-1x02---Kde-jsem.avi:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\VybijeciCharakteristiky (1).docx:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\VybijeciCharakteristiky.docx:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\Vybijeni-akumulatoru.docx:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\Vylomeniny---2.Díl----OD-PepaSimek.avi.mp4:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\vyuctovani.xlsx:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\winsdk_web.exe:$CmdTcID [130]
AlternateDataStreams: C:\Users\Ondra K\Downloads\winsdk_web.exe:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\xf5x5.gif:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\yEd-3.10.2_with-JRE_setup.exe:$CmdTcID [64]
AlternateDataStreams: C:\Users\Ondra K\Downloads\yEd-3.10.2_with-JRE_setup.exe:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\YesMan-CZ-dabing-Komedie-Romanticky.avi:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\zamer-pronajem-obecni-restaurace-dritec.pdf:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\zaverecna_prace (1).pdf:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\zaverecna_prace.pdf:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\zdravot způs odp.pdf:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\Zkouska ENY.doc:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\Zkouska-ENY.doc:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\zkouška.pdf:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\Zombieland-HD-1080p-CZ.mp4:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\zpravodaj-leto-2015.pdf:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\[kat.cr]sins.kissa.sins.aj.applegate.karmen.karma.katrina.jade.maddy.oreilly.johnny.and.kissas.leaving.las.vegas.orgy.full.movie.new.june.21.2015.new.torrent:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\[kat.cr]sins.kissa.sins.aj.applegate.karmen.karma.katrina.jade.maddy.oreilly.johnny.and.kissas.leaving.las.vegas.orgy.part.2.new.june.21.2015.new.torrent:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\[kat.cr]sins.kissa.sins.aj.applegate.karmen.karma.katrina.jade.maddy.oreilly.johnny.and.kissas.leaving.las.vegas.orgy.part.3.new.june.21.2015.new.torrent:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\[TreZzoR] Avengers_ Age of Ultron _ Avengers_ Age of Ultron 2015.torrent:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\[TreZzoR]Ant-Man.2015.BDRip.DivX-CZ.torrent:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\[TreZzoR]Asterix_ Sidliste bohu _ Asterix.Le.domaine.des.dieux.2014.BDRip.x264.CZ.SK-TreZzoR.torrent:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\[TreZzoR]Automata.2014.BDRip.x264.CZ-TreZzoR.torrent:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\[TreZzoR]Babi _ Grandma.2015.BDRip.XviD.CZ-TreZzoR.torrent:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\[TreZzoR]Brana temnoty _ Pay.the.Ghost.2015.BDRip.x264.CZ-TreZzoR.torrent:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\[TreZzoR]Cernocerna.tma.2000.DVDRip.XviD.AC3.CZ-microbes.torrent:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\[TreZzoR]Darek _ The.Gift.2015.BDRip.x264.CZ-TreZzoR.torrent:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\[TreZzoR]Divosi _ Savages.2012.BDRip.XviD.CZ-TreZzoR.torrent:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\[TreZzoR]Domaci.pece.2015.DVDRip.x264.CZ-TreZzoR.torrent:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\[TreZzoR]Dredd.2012.BRRip.XviD.AC3.CZ-TreZzoR.torrent:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\[TreZzoR]Everest.2015.REPACK.BDRip.XviD.CZ-TreZzoR.torrent:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\[TreZzoR]Exmanzelka.za.Odmenu.2010.BRRip.XviD.CZ-JeLeN.torrent:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\[TreZzoR]Fakju pane uciteli 2 _ Fack.ju.Gohte.2.2015.BDRip.x264.CZ-TreZzoR.torrent:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\[TreZzoR]Gangster.Ka.2015.WEB-DL.x264.CZ-TreZzoR.torrent:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\[TreZzoR]Hricky prirody _ Freaks.of.Nature.2015.BDRip.x264.CZ-TreZzoR.torrent:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\[TreZzoR]Ja, Earl a holka na umreni _ Me.and.Earl.and.the.Dying.Girl.2015.BDRip.x264.CZ-TreZzoR.torrent:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\[TreZzoR]Kalvarie _ Calvary.2014.BDRip.x264.CZ-TreZzoR.torrent:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\[TreZzoR]Kingsman_ Tajna sluzba _ Kingsman.The.Secret.Service.2014.BDRip.x264.CZ-TreZzoR.torrent:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\[TreZzoR]Kniha zivota _ The.Book.of.Life.2014.BDRip.x264.CZ-TreZzoR.torrent:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\[TreZzoR]Kod Enigmy _ The.Imitation.Game.2014.BDRip.x264.CZ-TreZzoR.torrent:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\[TreZzoR]Kralovstvi opic _ Monkey.Kingdom.2015.BDRip.XviD.CZ-TreZzoR.torrent:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\[TreZzoR]Labyrint_ Zkousky ohnem _ Maze.Runner.The Scorch Trials.2015.BDRip.x264.CZ-TreZzoR.torrent:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\[TreZzoR]Lovelace_ Pravdiva zpoved kralovny porna _ Lovelace.2013.BDRip.XviD.AC3.CZ-TreZzoR.torrent:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\[TreZzoR]Martan _ The.Martian.2015.BDRip.x264.CZ-TreZzoR.torrent:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\[TreZzoR]Mezi nahrobnimi kameny _ A.Walk.Among.the.Tombstones.2014.BDRip.x264.CZ-TreZzoR.torrent:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\[TreZzoR]Mission.Impossible.Narod.grazlu.2015.BDRip.XviD.AC3.CZ.avi.torrent:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\[TreZzoR]Mosazna konvice _ The.Brass.Teapot.2012.BDRip.x264.CZ-TreZzoR.torrent:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\[TreZzoR]Most spionu _ Bridge.of.Spies.2015.BDRip.x264.CZ-TreZzoR.torrent:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\[TreZzoR]Mr.Holmes.2015.BDRip.x264.CZ-TreZzoR.torrent:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\[TreZzoR]Muz na lane _ The.Walk.2015.BDRip.x264.CZ-TreZzoR.torrent:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\[TreZzoR]Muz na lane _ The.Walk.2015.BDRip.XviD.CZ-TreZzoR.torrent:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\[TreZzoR]Nesmrtelny _ Self_less (2015) 720p.BRRip.CZ.EN.sub.CZ.torrent:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\[TreZzoR]Parizska blbka _ Connasse.Princesse.des.coeurs.2015.BDRip.x264.CZ-TreZzoR.torrent:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\[TreZzoR]Pixely _ Pixels (2015)(CZ)[WebRip].torrent:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\[TreZzoR]Posledni lovec carodejnic _ The.Last.Witch.Hunter.2015.BDRip.x264.CZ-TreZzoR.torrent:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\[TreZzoR]Prav_aacute; tv_aacute;r ISL_Aacute;MU.torrent:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\[TreZzoR]Projekt minulost _ Project.Almanac.2014.BDRip.x264.CZ-TreZzoR.torrent:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\[TreZzoR]Purpurovy vrch _ Crimson.Peak.2015.BDRip.x264.CZ-TreZzoR.torrent:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\[TreZzoR]Rezistence _ Insurgent.2015.BDRip.x264.CZ-TreZzoR (1).torrent:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\[TreZzoR]Rezistence _ Insurgent.2015.BDRip.x264.CZ-TreZzoR.torrent:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\[TreZzoR]Room (2015) Cz.torrent:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\[TreZzoR]Scouts.Guide.To.The.Zombie.Apocalypse.2015.BDRip.x264.CZ-TreZzoR.torrent:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\[TreZzoR]Sedmero.krkavcu.2015.DVDRip.x264.CZ-TreZzoR.torrent:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\[TreZzoR]Sileny Max_ Zbesila cesta _ Mad.Max.Fury.Road.2015.BDRip.x264.CZ-TreZzoR.torrent:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\[TreZzoR]Simpsonovi _ The Simpsons S26E09 - Vanocni vyhazov (2015) CZ (1).torrent:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\[TreZzoR]Simpsonovi _ The Simpsons S26E10 - Hadej, kdo neprijde na veceri (2015) CZ.torrent:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\[TreZzoR]Simpsonovi _ The Simpsons S26E11 - Bartuv novy kamarad (2015) CZ.torrent:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\[TreZzoR]Simpsonovi _ The Simpsons S26E12 - Vynalezce, jenz spadl z nebe (2015) CZ.torrent:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\[TreZzoR]Simpsonovi _ The Simpsons S26E13 - Velci a hrdi (2015) CZ .torrent:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\[TreZzoR]Simpsonovi _ The Simpsons S26E14 - Marge taxikarkou (2015) CZ.torrent:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\[TreZzoR]Simpsonovi _ The Simpsons S26E15 - Pruvodce pro princeznu (2015) CZ.torrent:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\[TreZzoR]Simpsonovi _ The Simpsons S26E16 - Nebesky polda (2015) CZ.torrent:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\[TreZzoR]Simpsonovi _ The Simpsons S26E17 - Cekani na Duffmana (2015) CZ.torrent:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\[TreZzoR]Simpsonovi _ The Simpsons S26E18 - Matka na strazi (2015) CZ .torrent:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\[TreZzoR]Simpsonovi _ The Simpsons S26E19 - Decka jsou ve pri (2015) CZ .torrent:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\[TreZzoR]Simpsonovi _ The Simpsons S26E20 - Letecky hrdina (2015) CZ .torrent:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\[TreZzoR]Simpsonovi _ The Simpsons S26E21 - Sikanator (2015) CZ .torrent:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\[TreZzoR]Simpsonovi _ The Simpsons S26E22 - Matleti ze Springieldu (2015) CZ .torrent:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\[TreZzoR]Star Wars_ Sila se probouzi _ Star.Wars.Episode.VII.The.Force.Awakens.2015.BDRip.x264.CZ-TreZzoR.torrent:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\[TreZzoR]Stazista _ The Intern (2015) 480p.BRRip.Xvid.CZ.torrent:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\[TreZzoR]Steve-Jobs-2015-BDRip-x264-CZ.torrent:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\[TreZzoR]Sygic GPS Navigation 15.4.4 SK_CZ mapa downloader TeleAtlas 06_2015 speedcams 07_2015.torrent:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\[TreZzoR]Symptom.pandorum.2009.DVDRip.XviD.CZ .torrent:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\[TreZzoR]Tarra White - Porno a ja (2013)(CZ).torrent:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\[TreZzoR]Terminator.Genisys.2015.BDRip.x264.CZ-TreZzoR.torrent:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\[TreZzoR]To byl zitra flam 2 _ Hot.Tub.Time.Machine.2.2015.Theatrical.Cut.BDRip.XviD.CZ-TreZzoR.torrent:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\[TreZzoR]Utek.ze.Sibire.2010.DVDRip.XviD.CZ-havo.torrent:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\[TreZzoR]Vecne mlada _ The.Age.Of.Adaline.2015.BDRip.x264.CZ-TreZzoR.torrent:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\[TreZzoR]Victor.Frankenstein.2015.ReRiP.BDRip.XviD.CZ-TreZzoR.torrent:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\[TreZzoR]Vychozi bod _ I.Origins.2014.BDRip.x264.CZ-TreZzoR.torrent:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\[TreZzoR]X-Men_ Budouci minulost _ X-Men.Days.of.Future.Past.2014.The.Rogue.Cut.Hybrid.BDRip.x264.CZ-TreZzoR.torrent:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\[TreZzoR]Zeme zitrka Tomorrowland 2015 BDRip.XviD.CZ-HiDE .torrent:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\[TreZzoR]Zena v kleci _ Kvinden.i.buret.2013.BDRip.x264.CZ-TreZzoR.torrent:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\[TreZzoR]Zivot.je.zivot.2015.DVDRip.x264.CZ-TreZzoR.torrent:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\[TreZzoR]Ztraceni.v.Mnichove.2015.WEB-DL.x264.CZ-TreZzoR.torrent:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\[TreZzoR]Špi_oacute;n _ Spy _ 2015 _ .480p.EXTENDED.BDRip.XviD.AC3.CZ-HiDE.torrent:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Downloads\Žádost o posouzení zdravotní způsobilosti_RC_201509.docx:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\AppData\Local\MSGBOX.EXE:$CmdTcID [0]
AlternateDataStreams: C:\Users\Ondra K\Documents\Sasha-Grey-The-Juliette-Society-_Book-ENG_.pdf:$CmdZnID [26]
AlternateDataStreams: C:\Users\Ondra K\Documents\slevomat-cz-voucher-vanocni-masaze-dle-vaseho-vyberu-4890240870A-162 (1).pdf:$CmdZnID [26]
End
Uložte na plochu jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.

Re: Samovolné restartování notebooku

Napsal: 28 dub 2016 19:29
od Stoone
Tak tady to je... Už máte nějaký nápad čím to je způsobeno? Moc díky za pomoc.
musel sjem to dát do přílohy, je to moc dlouhé.

Re: Samovolné restartování notebooku

Napsal: 28 dub 2016 20:11
od Rudy
Smazáno. Obávám se ale, že váš problém nezpůsobuje malware. Otevřte adresář c:\windows\minidump, jeho obsah zabalte do raru a přiložte k vašemu příštímu postu.

Re: Samovolné restartování notebooku

Napsal: 28 dub 2016 20:19
od Stoone
myslíte, že to je spíše hardwarový problém?

Re: Samovolné restartování notebooku

Napsal: 28 dub 2016 20:22
od Rudy
Shazuje to ovladač graf. karty. Buď je poškozen ovladač, nebo grafika. Ovladač zkuste přeinstalovat.