Stránka 1 z 1

Preventivna kontrola

Napsal: 28 kvě 2016 16:38
od hladac
Dobry den,

mohol by som poprosit o skontrolovanie logu? V poslednej dobe mi blbne net a neviem ci to je zavinene virom alebo providerom.

Dakujem


Logfile of random's system information tool 1.10 (written by random/random)
Run by Juraj at 2016-05-28 17:31:03
Microsoft Windows 10 Home
System drive C: has 19 GB (8%) free of 237 GB
Total RAM: 8143 MB (58% free)

HijackThis download failed

======Listing Processes======




C:\WINDOWS\system32\lsass.exe
winlogon.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
C:\WINDOWS\system32\svchost.exe -k netsvcs
"dwm.exe"
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\WINDOWS\system32\atiesrxx.exe
C:\WINDOWS\system32\svchost.exe -k LocalService
atieclxx
C:\WINDOWS\System32\svchost.exe -k NetworkService
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe -k NetworkServiceNetworkRestricted
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
C:\WINDOWS\System32\svchost.exe -k utcsvc
"C:\Program Files\Bonjour\mDNSResponder.exe"
"C:\Program Files\AMD\{920DEC42-4CA5-4d1d-9487-67BE645CDDFC}\amdacpusrsvc.exe"
"C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.1\avp.exe" -r
"C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe"
"C:\Program Files (x86)\VMware\VMware Player\vmware-authd.exe"
"C:\Program Files (x86)\Raptr Inc\PlaysTV\plays_service.exe"
C:\WINDOWS\SysWOW64\vmnetdhcp.exe
C:\WINDOWS\SysWOW64\vmnat.exe
"C:\Program Files (x86)\Common Files\VMware\USB\vmware-usbarbitrator64.exe"
C:\WINDOWS\system32\svchost.exe -k appmodel
C:\WINDOWS\SysWOW64\PnkBstrA.exe
sihost.exe
taskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E}
C:\WINDOWS\Explorer.EXE
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.1\avpui.exe" -hidden
"C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
"C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe" -ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Users\Juraj\AppData\Local\Akamai\netsession_win.exe"
"C:/Users/Juraj/AppData/Local/Akamai/netsession_win.exe" --client
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --no-startup-window /prefetch:5
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=crashpad-handler /prefetch:7 --no-rate-limit "--database=C:\Users\Juraj\AppData\Local\Google\Chrome\User Data\Crashpad" --url=https://clients2.google.com/cr/report --annotation=channel=m --annotation=plat=Win64 --annotation=prod=Chrome --annotation=ver=50.0.2661.102 --handshake-handle=0x16c
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="6524.0.1231317799\1000090828" --supports-dual-gpus=false --gpu-driver-bug-workarounds=4,12,24,53 --gpu-vendor-id=0x1002 --gpu-device-id=0x6939 --gpu-driver-vendor="Advanced Micro Devices, Inc." --gpu-driver-version=16.150.2401.1002 --ignored=" --type=renderer " /prefetch:2
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,IncidentReportingModuleLoadAnalysis<SafeBrowsingIncidentReportingServiceFeatures,IncidentReportingSuspiciousModuleReporting<SafeBrowsingIncidentReportingServiceFeatures,WebFontsIntervention<WebFontsIntervention --disable-features=UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=sk --force-fieldtrials=AppBannerTriggering/Aggressive/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_10-gen2/BrotliEncoding/Default/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ClientSideDetectionModel/Model0/CrossDevicePromo/28DaySingleProfile/*DataReductionProxyConfigService/Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/OmniboxBundledExperimentV1/Unused_2/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*PasswordManagerSettingsMigration/Disable/PreRead/Default/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Launch50pct_11011_1_1_10/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/Off/SSLCommonNameMismatchHandling/Control/*SafeBrowsingIncidentReportingService/Default/*SafeBrowsingIncidentReportingServiceFeatures/WithSuspiciousModuleReporting/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Control/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_49/*UMA-Uniformity-Trial-10-Percent/default/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_03/*UMA-Uniformity-Trial-5-Percent/group_16/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/WebFontsIntervention/Enabled/WebRTC-LocalIPPermissionCheck/Enabled/ --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --blink-settings=fetchDeferLateScripts=true,fetchIncreaseFontPriority=true,fetchIncreasePriorities=true --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --channel="6524.1.417871647\1970658502" /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,IncidentReportingModuleLoadAnalysis<SafeBrowsingIncidentReportingServiceFeatures,IncidentReportingSuspiciousModuleReporting<SafeBrowsingIncidentReportingServiceFeatures,WebFontsIntervention<WebFontsIntervention --disable-features=UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=sk --force-fieldtrials=AppBannerTriggering/Aggressive/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_10-gen2/BrotliEncoding/Default/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ClientSideDetectionModel/Model0/CrossDevicePromo/28DaySingleProfile/*DataReductionProxyConfigService/Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/OmniboxBundledExperimentV1/Unused_2/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*PasswordManagerSettingsMigration/Disable/PreRead/Default/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Launch50pct_11011_1_1_10/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/Off/SSLCommonNameMismatchHandling/Control/*SafeBrowsingIncidentReportingService/Default/*SafeBrowsingIncidentReportingServiceFeatures/WithSuspiciousModuleReporting/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Control/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_49/*UMA-Uniformity-Trial-10-Percent/default/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_03/*UMA-Uniformity-Trial-5-Percent/group_16/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/WebFontsIntervention/Enabled/WebRTC-LocalIPPermissionCheck/Enabled/ --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --blink-settings=fetchDeferLateScripts=true,fetchIncreaseFontPriority=true,fetchIncreasePriorities=true --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --channel="6524.2.827279506\1922479779" /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,IncidentReportingModuleLoadAnalysis<SafeBrowsingIncidentReportingServiceFeatures,IncidentReportingSuspiciousModuleReporting<SafeBrowsingIncidentReportingServiceFeatures,WebFontsIntervention<WebFontsIntervention --disable-features=UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=sk --force-fieldtrials=AppBannerTriggering/Aggressive/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_10-gen2/BrotliEncoding/Default/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ClientSideDetectionModel/Model0/CrossDevicePromo/28DaySingleProfile/*DataReductionProxyConfigService/Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/OmniboxBundledExperimentV1/Unused_2/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*PasswordManagerSettingsMigration/Disable/PreRead/Default/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Launch50pct_11011_1_1_10/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/Off/SSLCommonNameMismatchHandling/Control/*SafeBrowsingIncidentReportingService/Default/*SafeBrowsingIncidentReportingServiceFeatures/WithSuspiciousModuleReporting/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Control/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_49/*UMA-Uniformity-Trial-10-Percent/default/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_03/*UMA-Uniformity-Trial-5-Percent/group_16/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/WebFontsIntervention/Enabled/WebRTC-LocalIPPermissionCheck/Enabled/ --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --blink-settings=fetchDeferLateScripts=true,fetchIncreaseFontPriority=true,fetchIncreasePriorities=true --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --channel="6524.4.1715901259\1197373939" /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,IncidentReportingModuleLoadAnalysis<SafeBrowsingIncidentReportingServiceFeatures,IncidentReportingSuspiciousModuleReporting<SafeBrowsingIncidentReportingServiceFeatures,WebFontsIntervention<WebFontsIntervention --disable-features=UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=sk --force-fieldtrials=AppBannerTriggering/Aggressive/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_10-gen2/BrotliEncoding/Default/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ClientSideDetectionModel/Model0/CrossDevicePromo/28DaySingleProfile/*DataReductionProxyConfigService/Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/OmniboxBundledExperimentV1/Unused_2/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*PasswordManagerSettingsMigration/Disable/PreRead/Default/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Launch50pct_11011_1_1_10/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/Off/SSLCommonNameMismatchHandling/Control/*SafeBrowsingIncidentReportingService/Default/*SafeBrowsingIncidentReportingServiceFeatures/WithSuspiciousModuleReporting/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Control/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_49/*UMA-Uniformity-Trial-10-Percent/default/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_03/*UMA-Uniformity-Trial-5-Percent/group_16/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/WebFontsIntervention/Enabled/WebRTC-LocalIPPermissionCheck/Enabled/ --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --blink-settings=fetchDeferLateScripts=true,fetchIncreaseFontPriority=true,fetchIncreasePriorities=true --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --channel="6524.5.495498469\307796512" /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,IncidentReportingModuleLoadAnalysis<SafeBrowsingIncidentReportingServiceFeatures,IncidentReportingSuspiciousModuleReporting<SafeBrowsingIncidentReportingServiceFeatures,WebFontsIntervention<WebFontsIntervention --disable-features=UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=sk --force-fieldtrials=AppBannerTriggering/Aggressive/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_10-gen2/BrotliEncoding/Default/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ClientSideDetectionModel/Model0/CrossDevicePromo/28DaySingleProfile/*DataReductionProxyConfigService/Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/OmniboxBundledExperimentV1/Unused_2/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*PasswordManagerSettingsMigration/Disable/PreRead/Default/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Launch50pct_11011_1_1_10/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/Off/SSLCommonNameMismatchHandling/Control/*SafeBrowsingIncidentReportingService/Default/*SafeBrowsingIncidentReportingServiceFeatures/WithSuspiciousModuleReporting/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Control/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_49/*UMA-Uniformity-Trial-10-Percent/default/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_03/*UMA-Uniformity-Trial-5-Percent/group_16/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/WebFontsIntervention/Enabled/WebRTC-LocalIPPermissionCheck/Enabled/ --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --blink-settings=fetchDeferLateScripts=true,fetchIncreaseFontPriority=true,fetchIncreasePriorities=true --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --channel="6524.6.101383984\783527847" /prefetch:1
"C:\Program Files\CCleaner\CCleaner.exe" /MONITOR /uac
"C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe"
"C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe"
C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
C:\WINDOWS\system32\ApplicationFrameHost.exe -Embedding
"C:\Program Files\WindowsApps\Microsoft.Windows.Photos_16.325.12390.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe" -ServerName:App.AppXzst44mncqdg84v7sv6p7yznqwssy6f7f.mca
"C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe" /service
"C:\Program Files\Common Files\Microsoft Shared\ClickToRun\AppVShNotify.exe"
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
"C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkypeHost.exe" -ServerName:SkypeHost.ServerServer
taskhostw.exe
"fontdrvhost.exe"
"C:\Program Files\WindowsApps\Microsoft.ZuneVideo_3.6.20961.0_x64__8wekyb3d8bbwe\Video.UI.exe" -ServerName:Microsoft.ZuneVideo.AppX758ya5sqdjd98rx6z7g95nw6jy7bqx9y.mca
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,IncidentReportingModuleLoadAnalysis<SafeBrowsingIncidentReportingServiceFeatures,IncidentReportingSuspiciousModuleReporting<SafeBrowsingIncidentReportingServiceFeatures,WebFontsIntervention<WebFontsIntervention --disable-features=UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=sk --force-fieldtrials=AppBannerTriggering/Aggressive/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_10-gen2/BrotliEncoding/Default/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ClientSideDetectionModel/Model0/*CrossDevicePromo/28DaySingleProfile/*DataReductionProxyConfigService/Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Unused_2/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*PasswordManagerSettingsMigration/Disable/*PreRead/Default/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Launch50pct_11011_1_1_10/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/Off/SSLCommonNameMismatchHandling/Control/*SafeBrowsingIncidentReportingService/Default/*SafeBrowsingIncidentReportingServiceFeatures/WithSuspiciousModuleReporting/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/*SafeBrowsingUpdateFrequency/Control/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_49/*UMA-Uniformity-Trial-10-Percent/default/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_03/*UMA-Uniformity-Trial-5-Percent/group_16/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*WebFontsIntervention/Enabled/WebRTC-LocalIPPermissionCheck/Enabled/ --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --blink-settings=fetchDeferLateScripts=true,fetchIncreaseFontPriority=true,fetchIncreasePriorities=true --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --channel="6524.50.1831095292\1475688251" /prefetch:1
"C:\Program Files\Andy\HandyAndy.exe" startandy
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,IncidentReportingModuleLoadAnalysis<SafeBrowsingIncidentReportingServiceFeatures,IncidentReportingSuspiciousModuleReporting<SafeBrowsingIncidentReportingServiceFeatures,WebFontsIntervention<WebFontsIntervention --disable-features=UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=sk --force-fieldtrials=AppBannerTriggering/Aggressive/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_10-gen2/BrotliEncoding/Default/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ClientSideDetectionModel/Model0/*CrossDevicePromo/28DaySingleProfile/*DataReductionProxyConfigService/Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Unused_2/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*PasswordManagerSettingsMigration/Disable/*PreRead/Default/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Launch50pct_11011_1_1_10/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/Off/SSLCommonNameMismatchHandling/Control/*SafeBrowsingIncidentReportingService/Default/*SafeBrowsingIncidentReportingServiceFeatures/WithSuspiciousModuleReporting/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/*SafeBrowsingUpdateFrequency/Control/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_49/*UMA-Uniformity-Trial-10-Percent/default/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_03/*UMA-Uniformity-Trial-5-Percent/group_16/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*WebFontsIntervention/Enabled/WebRTC-LocalIPPermissionCheck/Enabled/ --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --blink-settings=fetchDeferLateScripts=true,fetchIncreaseFontPriority=true,fetchIncreasePriorities=true --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --channel="6524.63.964750915\260122827" /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,IncidentReportingModuleLoadAnalysis<SafeBrowsingIncidentReportingServiceFeatures,IncidentReportingSuspiciousModuleReporting<SafeBrowsingIncidentReportingServiceFeatures,WebFontsIntervention<WebFontsIntervention --disable-features=UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=sk --force-fieldtrials=AppBannerTriggering/Aggressive/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_10-gen2/BrotliEncoding/Default/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ClientSideDetectionModel/Model0/*CrossDevicePromo/28DaySingleProfile/*DataReductionProxyConfigService/Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Unused_2/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*PasswordManagerSettingsMigration/Disable/*PreRead/Default/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Launch50pct_11011_1_1_10/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/Off/SSLCommonNameMismatchHandling/Control/*SafeBrowsingIncidentReportingService/Default/*SafeBrowsingIncidentReportingServiceFeatures/WithSuspiciousModuleReporting/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/*SafeBrowsingUpdateFrequency/Control/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_49/*UMA-Uniformity-Trial-10-Percent/default/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_03/*UMA-Uniformity-Trial-5-Percent/group_16/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*WebFontsIntervention/Enabled/WebRTC-LocalIPPermissionCheck/Enabled/ --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --blink-settings=fetchDeferLateScripts=true,fetchIncreaseFontPriority=true,fetchIncreasePriorities=true --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --channel="6524.67.1539516419\1778842568" /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,IncidentReportingModuleLoadAnalysis<SafeBrowsingIncidentReportingServiceFeatures,IncidentReportingSuspiciousModuleReporting<SafeBrowsingIncidentReportingServiceFeatures,WebFontsIntervention<WebFontsIntervention --disable-features=UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=sk --force-fieldtrials=AppBannerTriggering/Aggressive/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_10-gen2/BrotliEncoding/Default/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ClientSideDetectionModel/Model0/*CrossDevicePromo/28DaySingleProfile/*DataReductionProxyConfigService/Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Unused_2/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*PasswordManagerSettingsMigration/Disable/*PreRead/Default/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Launch50pct_11011_1_1_10/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/Off/SSLCommonNameMismatchHandling/Control/*SafeBrowsingIncidentReportingService/Default/*SafeBrowsingIncidentReportingServiceFeatures/WithSuspiciousModuleReporting/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/*SafeBrowsingUpdateFrequency/Control/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_49/*UMA-Uniformity-Trial-10-Percent/default/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_03/*UMA-Uniformity-Trial-5-Percent/group_16/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*WebFontsIntervention/Enabled/WebRTC-LocalIPPermissionCheck/Enabled/ --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --blink-settings=fetchDeferLateScripts=true,fetchIncreaseFontPriority=true,fetchIncreasePriorities=true --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --channel="6524.74.457769292\682401630" /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,IncidentReportingModuleLoadAnalysis<SafeBrowsingIncidentReportingServiceFeatures,IncidentReportingSuspiciousModuleReporting<SafeBrowsingIncidentReportingServiceFeatures,WebFontsIntervention<WebFontsIntervention --disable-features=UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=sk --force-fieldtrials=AppBannerTriggering/Aggressive/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_10-gen2/BrotliEncoding/Default/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ClientSideDetectionModel/Model0/*CrossDevicePromo/28DaySingleProfile/*DataReductionProxyConfigService/Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Unused_2/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*PasswordManagerSettingsMigration/Disable/*PreRead/Default/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Launch50pct_11011_1_1_10/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/Off/SSLCommonNameMismatchHandling/Control/*SafeBrowsingIncidentReportingService/Default/*SafeBrowsingIncidentReportingServiceFeatures/WithSuspiciousModuleReporting/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/*SafeBrowsingUpdateFrequency/Control/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_49/*UMA-Uniformity-Trial-10-Percent/default/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_03/*UMA-Uniformity-Trial-5-Percent/group_16/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*WebFontsIntervention/Enabled/WebRTC-LocalIPPermissionCheck/Enabled/ --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --blink-settings=fetchDeferLateScripts=true,fetchIncreaseFontPriority=true,fetchIncreasePriorities=true --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --channel="6524.75.1284296059\735069545" /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,IncidentReportingModuleLoadAnalysis<SafeBrowsingIncidentReportingServiceFeatures,IncidentReportingSuspiciousModuleReporting<SafeBrowsingIncidentReportingServiceFeatures,WebFontsIntervention<WebFontsIntervention --disable-features=UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=sk --force-fieldtrials=AppBannerTriggering/Aggressive/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_10-gen2/BrotliEncoding/Default/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ClientSideDetectionModel/Model0/*CrossDevicePromo/28DaySingleProfile/*DataReductionProxyConfigService/Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Unused_2/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*PasswordManagerSettingsMigration/Disable/*PreRead/Default/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Launch50pct_11011_1_1_10/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/Off/SSLCommonNameMismatchHandling/Control/*SafeBrowsingIncidentReportingService/Default/*SafeBrowsingIncidentReportingServiceFeatures/WithSuspiciousModuleReporting/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/*SafeBrowsingUpdateFrequency/Control/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_49/*UMA-Uniformity-Trial-10-Percent/default/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_03/*UMA-Uniformity-Trial-5-Percent/group_16/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*WebFontsIntervention/Enabled/WebRTC-LocalIPPermissionCheck/Enabled/ --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --blink-settings=fetchDeferLateScripts=true,fetchIncreaseFontPriority=true,fetchIncreasePriorities=true --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --channel="6524.103.598146271\251946445" /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,IncidentReportingModuleLoadAnalysis<SafeBrowsingIncidentReportingServiceFeatures,IncidentReportingSuspiciousModuleReporting<SafeBrowsingIncidentReportingServiceFeatures,WebFontsIntervention<WebFontsIntervention --disable-features=UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=sk --force-fieldtrials=AppBannerTriggering/Aggressive/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_10-gen2/BrotliEncoding/Default/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ClientSideDetectionModel/Model0/*CrossDevicePromo/28DaySingleProfile/*DataReductionProxyConfigService/Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Unused_2/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*PasswordManagerSettingsMigration/Disable/*PreRead/Default/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Launch50pct_11011_1_1_10/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/Off/SSLCommonNameMismatchHandling/Control/*SafeBrowsingIncidentReportingService/Default/*SafeBrowsingIncidentReportingServiceFeatures/WithSuspiciousModuleReporting/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/*SafeBrowsingUpdateFrequency/Control/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_49/*UMA-Uniformity-Trial-10-Percent/default/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_03/*UMA-Uniformity-Trial-5-Percent/group_16/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*WebFontsIntervention/Enabled/WebRTC-LocalIPPermissionCheck/Enabled/ --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --blink-settings=fetchDeferLateScripts=true,fetchIncreaseFontPriority=true,fetchIncreasePriorities=true --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --channel="6524.107.1581764013\947335658" /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,IncidentReportingModuleLoadAnalysis<SafeBrowsingIncidentReportingServiceFeatures,IncidentReportingSuspiciousModuleReporting<SafeBrowsingIncidentReportingServiceFeatures,WebFontsIntervention<WebFontsIntervention --disable-features=UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=sk --force-fieldtrials=AppBannerTriggering/Aggressive/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_10-gen2/BrotliEncoding/Default/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ClientSideDetectionModel/Model0/*CrossDevicePromo/28DaySingleProfile/*DataReductionProxyConfigService/Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Unused_2/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*PasswordManagerSettingsMigration/Disable/*PreRead/Default/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Launch50pct_11011_1_1_10/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/Off/SSLCommonNameMismatchHandling/Control/*SafeBrowsingIncidentReportingService/Default/*SafeBrowsingIncidentReportingServiceFeatures/WithSuspiciousModuleReporting/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/*SafeBrowsingUpdateFrequency/Control/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_49/*UMA-Uniformity-Trial-10-Percent/default/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_03/*UMA-Uniformity-Trial-5-Percent/group_16/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*WebFontsIntervention/Enabled/WebRTC-LocalIPPermissionCheck/Enabled/ --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --blink-settings=fetchDeferLateScripts=true,fetchIncreaseFontPriority=true,fetchIncreasePriorities=true --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --channel="6524.129.1748343871\1003969530" /prefetch:1
"C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.1601.49020.0_x64__8wekyb3d8bbwe\Calculator.exe" -ServerName:App.AppXsm3pg4n7er43kdh1qp4e79f1j7am68r8.mca
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,IncidentReportingModuleLoadAnalysis<SafeBrowsingIncidentReportingServiceFeatures,IncidentReportingSuspiciousModuleReporting<SafeBrowsingIncidentReportingServiceFeatures,WebFontsIntervention<WebFontsIntervention --disable-features=UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=sk --force-fieldtrials=AppBannerTriggering/Aggressive/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_10-gen2/BrotliEncoding/Default/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ClientSideDetectionModel/Model0/*CrossDevicePromo/28DaySingleProfile/*DataReductionProxyConfigService/Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Unused_2/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*PasswordManagerSettingsMigration/Disable/*PreRead/Default/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Launch50pct_11011_1_1_10/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/Off/SSLCommonNameMismatchHandling/Control/*SafeBrowsingIncidentReportingService/Default/*SafeBrowsingIncidentReportingServiceFeatures/WithSuspiciousModuleReporting/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/*SafeBrowsingUpdateFrequency/Control/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_49/*UMA-Uniformity-Trial-10-Percent/default/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_03/*UMA-Uniformity-Trial-5-Percent/group_16/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*WebFontsIntervention/Enabled/WebRTC-LocalIPPermissionCheck/Enabled/ --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --blink-settings=fetchDeferLateScripts=true,fetchIncreaseFontPriority=true,fetchIncreasePriorities=true --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --channel="6524.169.1128075989\2054361907" /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,IncidentReportingModuleLoadAnalysis<SafeBrowsingIncidentReportingServiceFeatures,IncidentReportingSuspiciousModuleReporting<SafeBrowsingIncidentReportingServiceFeatures,WebFontsIntervention<WebFontsIntervention --disable-features=UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=sk --force-fieldtrials=AppBannerTriggering/Aggressive/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_10-gen2/BrotliEncoding/Default/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ClientSideDetectionModel/Model0/*CrossDevicePromo/28DaySingleProfile/*DataReductionProxyConfigService/Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Unused_2/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*PasswordManagerSettingsMigration/Disable/*PreRead/Default/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Launch50pct_11011_1_1_10/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/Off/SSLCommonNameMismatchHandling/Control/*SafeBrowsingIncidentReportingService/Default/*SafeBrowsingIncidentReportingServiceFeatures/WithSuspiciousModuleReporting/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/*SafeBrowsingUpdateFrequency/Control/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_49/*UMA-Uniformity-Trial-10-Percent/default/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_03/*UMA-Uniformity-Trial-5-Percent/group_16/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*WebFontsIntervention/Enabled/WebRTC-LocalIPPermissionCheck/Enabled/ --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --blink-settings=fetchDeferLateScripts=true,fetchIncreaseFontPriority=true,fetchIncreasePriorities=true --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --channel="6524.172.2079669462\2055267913" /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,IncidentReportingModuleLoadAnalysis<SafeBrowsingIncidentReportingServiceFeatures,IncidentReportingSuspiciousModuleReporting<SafeBrowsingIncidentReportingServiceFeatures,WebFontsIntervention<WebFontsIntervention --disable-features=UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=sk --force-fieldtrials=AppBannerTriggering/Aggressive/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_10-gen2/BrotliEncoding/Default/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ClientSideDetectionModel/Model0/*CrossDevicePromo/28DaySingleProfile/*DataReductionProxyConfigService/Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Unused_2/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*PasswordManagerSettingsMigration/Disable/*PreRead/Default/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Launch50pct_11011_1_1_10/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/Off/SSLCommonNameMismatchHandling/Control/*SafeBrowsingIncidentReportingService/Default/*SafeBrowsingIncidentReportingServiceFeatures/WithSuspiciousModuleReporting/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/*SafeBrowsingUpdateFrequency/Control/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_49/*UMA-Uniformity-Trial-10-Percent/default/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_03/*UMA-Uniformity-Trial-5-Percent/group_16/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*WebFontsIntervention/Enabled/WebRTC-LocalIPPermissionCheck/Enabled/ --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --blink-settings=fetchDeferLateScripts=true,fetchIncreaseFontPriority=true,fetchIncreasePriorities=true --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --channel="6524.176.13884622\1308744424" /prefetch:1
SndVol.exe -m 77137694
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,IncidentReportingModuleLoadAnalysis<SafeBrowsingIncidentReportingServiceFeatures,IncidentReportingSuspiciousModuleReporting<SafeBrowsingIncidentReportingServiceFeatures,WebFontsIntervention<WebFontsIntervention --disable-features=UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=sk --force-fieldtrials=AppBannerTriggering/Aggressive/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_10-gen2/BrotliEncoding/Default/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ClientSideDetectionModel/Model0/*CrossDevicePromo/28DaySingleProfile/*DataReductionProxyConfigService/Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Unused_2/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*PasswordManagerSettingsMigration/Disable/*PreRead/Default/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Launch50pct_11011_1_1_10/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/Off/SSLCommonNameMismatchHandling/Control/*SafeBrowsingIncidentReportingService/Default/*SafeBrowsingIncidentReportingServiceFeatures/WithSuspiciousModuleReporting/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/*SafeBrowsingUpdateFrequency/Control/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_49/*UMA-Uniformity-Trial-10-Percent/default/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_03/*UMA-Uniformity-Trial-5-Percent/group_16/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*WebFontsIntervention/Enabled/WebRTC-LocalIPPermissionCheck/Enabled/ --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --blink-settings=fetchDeferLateScripts=true,fetchIncreaseFontPriority=true,fetchIncreasePriorities=true --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --channel="6524.195.1594079007\1903331564" /prefetch:1
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe45_ Global\UsGthrCtrlFltPipeMssGthrPipe45 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 628 632 640 8192 636
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,IncidentReportingModuleLoadAnalysis<SafeBrowsingIncidentReportingServiceFeatures,IncidentReportingSuspiciousModuleReporting<SafeBrowsingIncidentReportingServiceFeatures,WebFontsIntervention<WebFontsIntervention --disable-features=UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=sk --force-fieldtrials=AppBannerTriggering/Aggressive/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_10-gen2/BrotliEncoding/Default/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ClientSideDetectionModel/Model0/*CrossDevicePromo/28DaySingleProfile/*DataReductionProxyConfigService/Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Unused_2/*PasswordBranding/Disabled/*PasswordGeneration/Disabled/*PasswordManagerSettingsMigration/Disable/*PreRead/Default/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Launch50pct_11011_1_1_10/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/Off/SSLCommonNameMismatchHandling/Control/*SafeBrowsingIncidentReportingService/Default/*SafeBrowsingIncidentReportingServiceFeatures/WithSuspiciousModuleReporting/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/*SafeBrowsingUpdateFrequency/Control/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_49/*UMA-Uniformity-Trial-10-Percent/default/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_03/*UMA-Uniformity-Trial-5-Percent/group_16/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*WebFontsIntervention/Enabled/WebRTC-LocalIPPermissionCheck/Enabled/ --instant-process --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --blink-settings=fetchDeferLateScripts=true,fetchIncreaseFontPriority=true,fetchIncreasePriorities=true --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --channel="6524.199.287625048\1001161574" /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,IncidentReportingModuleLoadAnalysis<SafeBrowsingIncidentReportingServiceFeatures,IncidentReportingSuspiciousModuleReporting<SafeBrowsingIncidentReportingServiceFeatures,WebFontsIntervention<WebFontsIntervention --disable-features=UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=sk --force-fieldtrials=AppBannerTriggering/Aggressive/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_10-gen2/BrotliEncoding/Default/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ClientSideDetectionModel/Model0/*CrossDevicePromo/28DaySingleProfile/*DataReductionProxyConfigService/Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Unused_2/*PasswordBranding/Disabled/*PasswordGeneration/Disabled/*PasswordManagerSettingsMigration/Disable/*PreRead/Default/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Launch50pct_11011_1_1_10/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/Off/SSLCommonNameMismatchHandling/Control/*SafeBrowsingIncidentReportingService/Default/*SafeBrowsingIncidentReportingServiceFeatures/WithSuspiciousModuleReporting/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/*SafeBrowsingUpdateFrequency/Control/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_49/*UMA-Uniformity-Trial-10-Percent/default/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_03/*UMA-Uniformity-Trial-5-Percent/group_16/*UMA-Uniformity-Trial-50-Percent/default/*UseDelayAgnosticAEC/DefaultEnabled/*WebFontsIntervention/Enabled/WebRTC-LocalIPPermissionCheck/Enabled/ --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --blink-settings=fetchDeferLateScripts=true,fetchIncreaseFontPriority=true,fetchIncreasePriorities=true --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --channel="6524.200.1769359376\11582865" /prefetch:1

"C:\Users\Juraj\Downloads\RSITx64.exe"
C:\WINDOWS\system32\wbem\wmiprvse.exe

======Scheduled tasks folder======

C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{03993315-5CE9-4F00-8790-D14A94F1D91A}]
Kaspersky Protection - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.1\x64\IEExt\ie_plugin.dll [2015-12-22 969696]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Lync Browser Helper - C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2016-05-15 213192]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft OneDrive for Business Browser Helper - C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\GROOVEEX.DLL [2016-05-15 2096432]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{03993315-5CE9-4F00-8790-D14A94F1D91A}]
Kaspersky Protection - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.1\IEExt\ie_plugin.dll [2015-12-22 749024]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{001032CB-B0AC-4F2C-A650-AD4B2B26E5DA} - Kaspersky Protection Toolbar - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.1\x64\IEExt\ie_plugin.dll [2015-12-22 969696]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{001032CB-B0AC-4F2C-A650-AD4B2B26E5DA} - Kaspersky Protection Toolbar - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.1\IEExt\ie_plugin.dll [2015-12-22 749024]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2013-07-26 13636824]
"IAStorIcon"=C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe [2014-05-28 36352]
"StartCN"=C:\Program Files\AMD\CNext\CNext\RadeonSettings.exe atlogon []

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Steam"=C:\Program Files (x86)\Steam\steam.exe [2016-04-30 3077712]
"Akamai NetSession Interface"=C:\Users\Juraj\AppData\Local\Akamai\netsession_win.exe [2015-09-10 4691384]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2015-12-08 8590760]
"Voobly"=C:\Program Files (x86)\Voobly\voobly.exe --startup []
"GoogleChromeAutoLaunch_DA1AC66AAEC15AF034F8035EC85E4FEE"=C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [2016-05-11 1008280]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"Uninstall C:\Users\Juraj\AppData\Local\Microsoft\OneDrive\17.3.5951.0827_1\amd64"=C:\WINDOWS\system32\cmd.exe [2015-10-30 233984]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"BlueStacks Agent"=C:\Program Files (x86)\BlueStacks\HD-Agent.exe []
"PlaysTV"=C:\Program Files (x86)\Raptr Inc\PlaysTV\playstv_launcher.exe [2016-05-09 71440]
"Raptr"=C:\Program Files (x86)\Raptr Inc\Raptr\raptrstub.exe [2016-04-27 58640]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
HandyAndy.lnk - C:\Program Files\Andy\HandyAndy.exe

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iai2c.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SpbCx.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TileDataModelSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\uefi.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SpbCx.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TileDataModelSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\uefi.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DSCAutomationHostEnabled"=2

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave5"=wdmaud.drv
"midi5"=wdmaud.drv
"mixer5"=wdmaud.drv
"aux5"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"aux2"=wdmaud.drv
"VIDC.WVC1"=d3dgeardecoder64.dll
"VIDC.WMV3"=d3dgeardecoder64.dll
"VIDC.MJPG"=d3dgeardecoder64.dll
"VIDC.M4S2"=d3dgeardecoder64.dll
"VIDC.FVFW"=d3dgeardecoder64.dll
"VIDC.FFVH"=d3dgeardecoder64.dll
"VIDC.H264"=d3dgeardecoder64.dll

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2016-05-28 17:31:03 ----D---- C:\rsit
2016-05-28 17:31:03 ----D---- C:\Program Files\trend micro
2016-05-15 19:42:59 ----D---- C:\Users\Juraj\AppData\Roaming\PlaysTV
2016-05-12 22:07:25 ----AD---- C:\Program Files (x86)\PokerStars.EU
2016-05-11 22:37:19 ----D---- C:\WINDOWS\SYSWOW64\directx
2016-05-11 19:06:08 ----A---- C:\WINDOWS\SYSWOW64\MosStorage.dll
2016-05-11 19:06:08 ----A---- C:\WINDOWS\SYSWOW64\MapsBtSvc.dll
2016-05-11 19:06:08 ----A---- C:\WINDOWS\SYSWOW64\MapConfiguration.dll
2016-05-11 19:06:08 ----A---- C:\WINDOWS\SYSWOW64\JpMapControl.dll
2016-05-11 19:06:07 ----A---- C:\WINDOWS\SYSWOW64\MFMediaEngine.dll
2016-05-11 19:06:07 ----A---- C:\WINDOWS\SYSWOW64\BingMaps.dll
2016-05-11 19:06:07 ----A---- C:\WINDOWS\system32\MapsStore.dll
2016-05-11 19:06:07 ----A---- C:\WINDOWS\system32\MapConfiguration.dll
2016-05-11 19:06:06 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll
2016-05-11 19:06:06 ----A---- C:\WINDOWS\system32\JpMapControl.dll
2016-05-11 19:06:06 ----A---- C:\WINDOWS\system32\BingMaps.dll
2016-05-11 19:06:03 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.dll
2016-05-11 19:05:59 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.dll
2016-05-11 19:05:59 ----A---- C:\WINDOWS\system32\mshtml.dll
2016-05-11 19:05:58 ----A---- C:\WINDOWS\SYSWOW64\NMAA.dll
2016-05-11 19:05:58 ----A---- C:\WINDOWS\SYSWOW64\mos.dll
2016-05-11 19:05:58 ----A---- C:\WINDOWS\SYSWOW64\MapControlCore.dll
2016-05-11 19:05:58 ----A---- C:\WINDOWS\system32\NMAA.dll
2016-05-11 19:05:58 ----A---- C:\WINDOWS\system32\mos.dll
2016-05-11 19:05:58 ----A---- C:\WINDOWS\system32\MapControlCore.dll
2016-05-11 19:05:57 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2016-05-11 19:05:57 ----A---- C:\WINDOWS\SYSWOW64\kerberos.dll
2016-05-11 19:05:57 ----A---- C:\WINDOWS\system32\kerberos.dll
2016-05-11 19:05:57 ----A---- C:\WINDOWS\system32\edgehtml.dll
2016-05-11 19:05:56 ----A---- C:\WINDOWS\SYSWOW64\edgehtml.dll
2016-05-11 19:05:54 ----A---- C:\WINDOWS\system32\shell32.dll
2016-05-11 19:05:54 ----A---- C:\WINDOWS\system32\modernexecserver.dll
2016-05-11 19:05:53 ----A---- C:\WINDOWS\system32\windows.storage.dll
2016-05-11 19:05:53 ----A---- C:\WINDOWS\system32\twinui.dll
2016-05-11 19:05:53 ----A---- C:\WINDOWS\system32\CredProvDataModel.dll
2016-05-11 19:05:52 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
2016-05-11 19:05:52 ----A---- C:\WINDOWS\SYSWOW64\CredProvDataModel.dll
2016-05-11 19:05:52 ----A---- C:\WINDOWS\system32\Windows.Data.Pdf.dll
2016-05-11 19:05:52 ----A---- C:\WINDOWS\system32\ieframe.dll
2016-05-11 19:05:51 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2016-05-11 19:05:51 ----A---- C:\WINDOWS\system32\Chakra.dll
2016-05-11 19:05:50 ----A---- C:\WINDOWS\SYSWOW64\windows.storage.dll
2016-05-11 19:05:50 ----A---- C:\WINDOWS\SYSWOW64\ntdll.dll
2016-05-11 19:05:50 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2016-05-11 19:05:50 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2016-05-11 19:05:50 ----A---- C:\WINDOWS\SYSWOW64\Chakra.dll
2016-05-11 19:05:50 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2016-05-11 19:05:50 ----A---- C:\WINDOWS\system32\ntdll.dll
2016-05-11 19:05:49 ----A---- C:\WINDOWS\SYSWOW64\Windows.Data.Pdf.dll
2016-05-11 19:05:49 ----A---- C:\WINDOWS\system32\d2d1.dll
2016-05-11 19:05:48 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2016-05-11 19:05:48 ----A---- C:\WINDOWS\SYSWOW64\explorer.exe
2016-05-11 19:05:48 ----A---- C:\WINDOWS\SYSWOW64\d2d1.dll
2016-05-11 19:05:48 ----A---- C:\WINDOWS\system32\twinui.appcore.dll
2016-05-11 19:05:48 ----A---- C:\WINDOWS\system32\jscript9.dll
2016-05-11 19:05:48 ----A---- C:\WINDOWS\system32\generaltel.dll
2016-05-11 19:05:48 ----A---- C:\WINDOWS\system32\DeviceCensus.exe
2016-05-11 19:05:48 ----A---- C:\WINDOWS\system32\appraiser.dll
2016-05-11 19:05:48 ----A---- C:\WINDOWS\explorer.exe
2016-05-11 19:05:47 ----A---- C:\WINDOWS\SYSWOW64\twinui.appcore.dll
2016-05-11 19:05:47 ----A---- C:\WINDOWS\system32\wuaueng.dll
2016-05-11 19:05:47 ----A---- C:\WINDOWS\system32\win32kfull.sys
2016-05-11 19:05:47 ----A---- C:\WINDOWS\system32\wcmsvc.dll
2016-05-11 19:05:47 ----A---- C:\WINDOWS\system32\MosStorage.dll
2016-05-11 19:05:47 ----A---- C:\WINDOWS\system32\moshostcore.dll
2016-05-11 19:05:47 ----A---- C:\WINDOWS\system32\moshost.dll
2016-05-11 19:05:47 ----A---- C:\WINDOWS\system32\mapsupdatetask.dll
2016-05-11 19:05:47 ----A---- C:\WINDOWS\system32\MapsCSP.dll
2016-05-11 19:05:47 ----A---- C:\WINDOWS\system32\MapsBtSvc.dll
2016-05-11 19:05:47 ----A---- C:\WINDOWS\system32\iertutil.dll
2016-05-11 19:05:47 ----A---- C:\WINDOWS\system32\dwmcore.dll
2016-05-11 19:05:47 ----A---- C:\WINDOWS\system32\drivers\dxgkrnl.sys
2016-05-11 19:05:47 ----A---- C:\WINDOWS\system32\CompatTelRunner.exe
2016-05-11 19:05:47 ----A---- C:\WINDOWS\system32\AppXDeploymentServer.dll
2016-05-11 19:05:47 ----A---- C:\WINDOWS\system32\aeinv.dll
2016-05-11 19:05:46 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2016-05-11 19:05:46 ----A---- C:\WINDOWS\SYSWOW64\TokenBroker.dll
2016-05-11 19:05:46 ----A---- C:\WINDOWS\SYSWOW64\SettingSyncCore.dll
2016-05-11 19:05:46 ----A---- C:\WINDOWS\SYSWOW64\mfplat.dll
2016-05-11 19:05:46 ----A---- C:\WINDOWS\SYSWOW64\KernelBase.dll
2016-05-11 19:05:46 ----A---- C:\WINDOWS\SYSWOW64\dxgi.dll
2016-05-11 19:05:46 ----A---- C:\WINDOWS\SYSWOW64\dwmcore.dll
2016-05-11 19:05:46 ----A---- C:\WINDOWS\system32\winlogon.exe
2016-05-11 19:05:46 ----A---- C:\WINDOWS\system32\Windows.UI.dll
2016-05-11 19:05:46 ----A---- C:\WINDOWS\system32\wifinetworkmanager.dll
2016-05-11 19:05:46 ----A---- C:\WINDOWS\system32\urlmon.dll
2016-05-11 19:05:46 ----A---- C:\WINDOWS\system32\TokenBroker.dll
2016-05-11 19:05:46 ----A---- C:\WINDOWS\system32\SettingSyncCore.dll
2016-05-11 19:05:46 ----A---- C:\WINDOWS\system32\NetworkMobileSettings.dll
2016-05-11 19:05:46 ----A---- C:\WINDOWS\system32\MPSSVC.dll
2016-05-11 19:05:46 ----A---- C:\WINDOWS\system32\mfplat.dll
2016-05-11 19:05:46 ----A---- C:\WINDOWS\system32\MFCaptureEngine.dll
2016-05-11 19:05:46 ----A---- C:\WINDOWS\system32\LogonController.dll
2016-05-11 19:05:46 ----A---- C:\WINDOWS\system32\KernelBase.dll
2016-05-11 19:05:46 ----A---- C:\WINDOWS\system32\dxgi.dll
2016-05-11 19:05:46 ----A---- C:\WINDOWS\system32\devinv.dll
2016-05-11 19:05:46 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2016-05-11 19:05:45 ----A---- C:\WINDOWS\SYSWOW64\wuapi.dll
2016-05-11 19:05:45 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.dll
2016-05-11 19:05:45 ----A---- C:\WINDOWS\SYSWOW64\vbscript.dll
2016-05-11 19:05:45 ----A---- C:\WINDOWS\SYSWOW64\schannel.dll
2016-05-11 19:05:45 ----A---- C:\WINDOWS\SYSWOW64\SettingSync.dll
2016-05-11 19:05:45 ----A---- C:\WINDOWS\SYSWOW64\NetSetupShim.dll
2016-05-11 19:05:45 ----A---- C:\WINDOWS\SYSWOW64\MFCaptureEngine.dll
2016-05-11 19:05:45 ----A---- C:\WINDOWS\SYSWOW64\LogonController.dll
2016-05-11 19:05:45 ----A---- C:\WINDOWS\SYSWOW64\LockAppHost.exe
2016-05-11 19:05:45 ----A---- C:\WINDOWS\SYSWOW64\jscript.dll
2016-05-11 19:05:45 ----A---- C:\WINDOWS\SYSWOW64\gdi32.dll
2016-05-11 19:05:45 ----A---- C:\WINDOWS\system32\wwansvc.dll
2016-05-11 19:05:45 ----A---- C:\WINDOWS\system32\wuapi.dll
2016-05-11 19:05:45 ----A---- C:\WINDOWS\system32\Windows.UI.Shell.dll
2016-05-11 19:05:45 ----A---- C:\WINDOWS\system32\win32kbase.sys
2016-05-11 19:05:45 ----A---- C:\WINDOWS\system32\wifitask.exe
2016-05-11 19:05:45 ----A---- C:\WINDOWS\system32\vbscript.dll
2016-05-11 19:05:45 ----A---- C:\WINDOWS\system32\user32.dll
2016-05-11 19:05:45 ----A---- C:\WINDOWS\system32\tileobjserver.dll
2016-05-11 19:05:45 ----A---- C:\WINDOWS\system32\schannel.dll
2016-05-11 19:05:45 ----A---- C:\WINDOWS\system32\SHCore.dll
2016-05-11 19:05:45 ----A---- C:\WINDOWS\system32\SettingSync.dll
2016-05-11 19:05:45 ----A---- C:\WINDOWS\system32\RDXTaskFactory.dll
2016-05-11 19:05:45 ----A---- C:\WINDOWS\system32\RDXService.dll
2016-05-11 19:05:45 ----A---- C:\WINDOWS\system32\provhandlers.dll
2016-05-11 19:05:45 ----A---- C:\WINDOWS\system32\provengine.dll
2016-05-11 19:05:45 ----A---- C:\WINDOWS\system32\NetSetupShim.dll
2016-05-11 19:05:45 ----A---- C:\WINDOWS\system32\LockAppHost.exe
2016-05-11 19:05:45 ----A---- C:\WINDOWS\system32\jscript.dll
2016-05-11 19:05:45 ----A---- C:\WINDOWS\system32\invagent.dll
2016-05-11 19:05:45 ----A---- C:\WINDOWS\system32\ieproxy.dll
2016-05-11 19:05:45 ----A---- C:\WINDOWS\system32\gdi32.dll
2016-05-11 19:05:45 ----A---- C:\WINDOWS\system32\drivers\USBHUB3.SYS
2016-05-11 19:05:45 ----A---- C:\WINDOWS\system32\drivers\dxgmms2.sys
2016-05-11 19:05:45 ----A---- C:\WINDOWS\system32\crypt32.dll
2016-05-11 19:05:45 ----A---- C:\WINDOWS\system32\CoreMessaging.dll
2016-05-11 19:05:45 ----A---- C:\WINDOWS\system32\AzureSettingSyncProvider.dll
2016-05-11 19:05:45 ----A---- C:\WINDOWS\system32\aepic.dll
2016-05-11 19:05:45 ----A---- C:\WINDOWS\system32\ActivationManager.dll
2016-05-11 19:05:44 ----A---- C:\WINDOWS\SYSWOW64\wlanapi.dll
2016-05-11 19:05:44 ----A---- C:\WINDOWS\SYSWOW64\WindowsCodecs.dll
2016-05-11 19:05:44 ----A---- C:\WINDOWS\SYSWOW64\user32.dll
2016-05-11 19:05:44 ----A---- C:\WINDOWS\SYSWOW64\SHCore.dll
2016-05-11 19:05:44 ----A---- C:\WINDOWS\SYSWOW64\shacct.dll
2016-05-11 19:05:44 ----A---- C:\WINDOWS\SYSWOW64\rpcrt4.dll
2016-05-11 19:05:44 ----A---- C:\WINDOWS\SYSWOW64\OneDriveSettingSyncProvider.dll
2016-05-11 19:05:44 ----A---- C:\WINDOWS\SYSWOW64\MosHostClient.dll
2016-05-11 19:05:44 ----A---- C:\WINDOWS\SYSWOW64\ieproxy.dll
2016-05-11 19:05:44 ----A---- C:\WINDOWS\SYSWOW64\directmanipulation.dll
2016-05-11 19:05:44 ----A---- C:\WINDOWS\SYSWOW64\d3d10level9.dll
2016-05-11 19:05:44 ----A---- C:\WINDOWS\SYSWOW64\crypt32.dll
2016-05-11 19:05:44 ----A---- C:\WINDOWS\SYSWOW64\CoreMessaging.dll
2016-05-11 19:05:44 ----A---- C:\WINDOWS\SYSWOW64\AzureSettingSyncProvider.dll
2016-05-11 19:05:44 ----A---- C:\WINDOWS\SYSWOW64\AppXDeploymentClient.dll
2016-05-11 19:05:44 ----A---- C:\WINDOWS\SYSWOW64\AppxAllUserStore.dll
2016-05-11 19:05:44 ----A---- C:\WINDOWS\system32\wlanapi.dll
2016-05-11 19:05:44 ----A---- C:\WINDOWS\system32\wininit.exe
2016-05-11 19:05:44 ----A---- C:\WINDOWS\system32\WindowsCodecs.dll
2016-05-11 19:05:44 ----A---- C:\WINDOWS\system32\wcmcsp.dll
2016-05-11 19:05:44 ----A---- C:\WINDOWS\system32\SubscriptionMgr.dll
2016-05-11 19:05:44 ----A---- C:\WINDOWS\system32\StorSvc.dll
2016-05-11 19:05:44 ----A---- C:\WINDOWS\system32\SharedStartModel.dll
2016-05-11 19:05:44 ----A---- C:\WINDOWS\system32\shacct.dll
2016-05-11 19:05:44 ----A---- C:\WINDOWS\system32\SettingSyncHost.exe
2016-05-11 19:05:44 ----A---- C:\WINDOWS\system32\samsrv.dll
2016-05-11 19:05:44 ----A---- C:\WINDOWS\system32\rpcrt4.dll
2016-05-11 19:05:44 ----A---- C:\WINDOWS\system32\PhoneProviders.dll
2016-05-11 19:05:44 ----A---- C:\WINDOWS\system32\OneDriveSettingSyncProvider.dll
2016-05-11 19:05:44 ----A---- C:\WINDOWS\system32\ngcsvc.dll
2016-05-11 19:05:44 ----A---- C:\WINDOWS\system32\ngcpopkeysrv.dll
2016-05-11 19:05:44 ----A---- C:\WINDOWS\system32\NgcCtnrSvc.dll
2016-05-11 19:05:44 ----A---- C:\WINDOWS\system32\NgcCtnr.dll
2016-05-11 19:05:44 ----A---- C:\WINDOWS\system32\ngccredprov.dll
2016-05-11 19:05:44 ----A---- C:\WINDOWS\system32\MosHostClient.dll
2016-05-11 19:05:44 ----A---- C:\WINDOWS\system32\MDMAppInstaller.exe
2016-05-11 19:05:44 ----A---- C:\WINDOWS\system32\EnterpriseDesktopAppMgmtCSP.dll
2016-05-11 19:05:44 ----A---- C:\WINDOWS\system32\drivers\sdport.sys
2016-05-11 19:05:44 ----A---- C:\WINDOWS\system32\drivers\pci.sys
2016-05-11 19:05:44 ----A---- C:\WINDOWS\system32\drivers\dxgmms1.sys
2016-05-11 19:05:44 ----A---- C:\WINDOWS\system32\directmanipulation.dll
2016-05-11 19:05:44 ----A---- C:\WINDOWS\system32\DataSenseHandlers.dll
2016-05-11 19:05:44 ----A---- C:\WINDOWS\system32\d3d10level9.dll
2016-05-11 19:05:44 ----A---- C:\WINDOWS\system32\CloudDomainJoinDataModelServer.dll
2016-05-11 19:05:44 ----A---- C:\WINDOWS\system32\AppxAllUserStore.dll
2016-05-11 19:05:44 ----A---- C:\WINDOWS\system32\actxprxy.dll
2016-05-11 19:05:44 ----A---- C:\WINDOWS\system32\acmigration.dll
2016-05-11 19:05:43 ----A---- C:\WINDOWS\SYSWOW64\wups.dll
2016-05-11 19:05:43 ----A---- C:\WINDOWS\SYSWOW64\wshbth.dll
2016-05-11 19:05:43 ----A---- C:\WINDOWS\SYSWOW64\wlansec.dll
2016-05-11 19:05:43 ----A---- C:\WINDOWS\SYSWOW64\wlanmsm.dll
2016-05-11 19:05:43 ----A---- C:\WINDOWS\SYSWOW64\wfdprov.dll
2016-05-11 19:05:43 ----A---- C:\WINDOWS\SYSWOW64\VEEventDispatcher.dll
2016-05-11 19:05:43 ----A---- C:\WINDOWS\SYSWOW64\VEDataLayerHelpers.dll
2016-05-11 19:05:43 ----A---- C:\WINDOWS\SYSWOW64\updatepolicy.dll
2016-05-11 19:05:43 ----A---- C:\WINDOWS\SYSWOW64\SettingSyncHost.exe
2016-05-11 19:05:43 ----A---- C:\WINDOWS\SYSWOW64\rsaenh.dll
2016-05-11 19:05:43 ----A---- C:\WINDOWS\SYSWOW64\NetSetupEngine.dll
2016-05-11 19:05:43 ----A---- C:\WINDOWS\SYSWOW64\NetSetupApi.dll
2016-05-11 19:05:43 ----A---- C:\WINDOWS\SYSWOW64\hmkd.dll
2016-05-11 19:05:43 ----A---- C:\WINDOWS\SYSWOW64\cryptngc.dll
2016-05-11 19:05:43 ----A---- C:\WINDOWS\SYSWOW64\ByteCodeGenerator.exe
2016-05-11 19:05:43 ----A---- C:\WINDOWS\SYSWOW64\BrowserSettingSync.dll
2016-05-11 19:05:43 ----A---- C:\WINDOWS\SYSWOW64\BluetoothApis.dll
2016-05-11 19:05:43 ----A---- C:\WINDOWS\SYSWOW64\actxprxy.dll
2016-05-11 19:05:43 ----A---- C:\WINDOWS\system32\wups.dll
2016-05-11 19:05:43 ----A---- C:\WINDOWS\system32\wuauclt.exe
2016-05-11 19:05:43 ----A---- C:\WINDOWS\system32\wshbth.dll
2016-05-11 19:05:43 ----A---- C:\WINDOWS\system32\wpdbusenum.dll
2016-05-11 19:05:43 ----A---- C:\WINDOWS\system32\wificonnapi.dll
2016-05-11 19:05:43 ----A---- C:\WINDOWS\system32\VEStoreEventHandlers.dll
2016-05-11 19:05:43 ----A---- C:\WINDOWS\system32\VEEventDispatcher.dll
2016-05-11 19:05:43 ----A---- C:\WINDOWS\system32\VEDataLayerHelpers.dll
2016-05-11 19:05:43 ----A---- C:\WINDOWS\system32\updatepolicy.dll
2016-05-11 19:05:43 ----A---- C:\WINDOWS\system32\rsaenh.dll
2016-05-11 19:05:43 ----A---- C:\WINDOWS\system32\provisioningcsp.dll
2016-05-11 19:05:43 ----A---- C:\WINDOWS\system32\NFCProvisioningPlugin.dll
2016-05-11 19:05:43 ----A---- C:\WINDOWS\system32\NetSetupSvc.dll
2016-05-11 19:05:43 ----A---- C:\WINDOWS\system32\NetSetupEngine.dll
2016-05-11 19:05:43 ----A---- C:\WINDOWS\system32\NetSetupApi.dll
2016-05-11 19:05:43 ----A---- C:\WINDOWS\system32\ListSvc.dll
2016-05-11 19:05:43 ----A---- C:\WINDOWS\system32\Chakradiag.dll
2016-05-11 19:05:43 ----A---- C:\WINDOWS\system32\hmkd.dll
2016-05-11 19:05:43 ----A---- C:\WINDOWS\system32\dwminit.dll
2016-05-11 19:05:43 ----A---- C:\WINDOWS\system32\drivers\usbser.sys
2016-05-11 19:05:43 ----A---- C:\WINDOWS\system32\drivers\ufxsynopsys.sys
2016-05-11 19:05:43 ----A---- C:\WINDOWS\system32\drivers\UcmCx.sys
2016-05-11 19:05:43 ----A---- C:\WINDOWS\system32\drivers\pdc.sys
2016-05-11 19:05:43 ----A---- C:\WINDOWS\system32\drivers\hidclass.sys
2016-05-11 19:05:43 ----A---- C:\WINDOWS\system32\drivers\fvevol.sys
2016-05-11 19:05:43 ----A---- C:\WINDOWS\system32\drivers\filecrypt.sys
2016-05-11 19:05:43 ----A---- C:\WINDOWS\system32\drivers\fastfat.sys
2016-05-11 19:05:43 ----A---- C:\WINDOWS\system32\cryptngc.dll
2016-05-11 19:05:43 ----A---- C:\WINDOWS\system32\ByteCodeGenerator.exe
2016-05-11 19:05:43 ----A---- C:\WINDOWS\system32\BrowserSettingSync.dll
2016-05-11 19:05:43 ----A---- C:\WINDOWS\system32\BluetoothApis.dll
2016-05-11 19:05:43 ----A---- C:\WINDOWS\system32\bcastdvr.exe
2016-05-11 19:05:43 ----A---- C:\WINDOWS\system32\AppXDeploymentClient.dll
2016-05-11 19:05:43 ----A---- C:\WINDOWS\system32\AppCapture.dll
2016-05-09 22:08:07 ----D---- C:\Users\Juraj\AppData\Roaming\Publish Providers
2016-05-09 22:06:01 ----D---- C:\ProgramData\Sony
2016-05-09 22:06:01 ----D---- C:\Program Files\Sony
2016-05-09 22:06:01 ----D---- C:\Program Files (x86)\Sony
2016-05-09 22:05:46 ----D---- C:\Users\Juraj\AppData\Roaming\Sony
2016-05-09 19:05:19 ----D---- C:\Users\Juraj\AppData\Roaming\MPC-HC
2016-05-09 18:14:21 ----D---- C:\Users\Juraj\AppData\Roaming\Raptr
2016-05-09 17:57:11 ----A---- C:\WINDOWS\SYSWOW64\libx264.dll
2016-05-09 17:57:11 ----A---- C:\WINDOWS\system32\libx264_64.dll
2016-05-09 17:57:09 ----AD---- C:\Program Files (x86)\ffdshow
2016-05-09 17:57:08 ----AD---- C:\Program Files (x86)\MPC-HC
2016-05-09 17:57:06 ----A---- C:\WINDOWS\system32\swscale_64-2.dll
2016-05-09 17:57:06 ----A---- C:\WINDOWS\system32\libiomp5md.dll
2016-05-09 17:57:06 ----A---- C:\WINDOWS\system32\D3DGearIntelQuickSyncMFT64.dll
2016-05-09 17:57:06 ----A---- C:\WINDOWS\system32\D3DGearCodec64.dll
2016-05-09 17:57:06 ----A---- C:\WINDOWS\system32\avutil_64-51.dll
2016-05-09 17:57:06 ----A---- C:\WINDOWS\system32\avformat_64-54.dll
2016-05-09 17:57:06 ----A---- C:\WINDOWS\system32\avfilter_64-2.dll
2016-05-09 17:57:05 ----A---- C:\WINDOWS\SYSWOW64\libiomp5md.dll
2016-05-09 17:57:05 ----A---- C:\WINDOWS\SYSWOW64\D3DGearIntelQuickSyncMFT.dll
2016-05-09 17:57:05 ----A---- C:\WINDOWS\system32\d3dGearLoad64.dll
2016-05-09 17:57:05 ----A---- C:\WINDOWS\system32\d3dGearDecoder64.dll
2016-05-09 17:57:05 ----A---- C:\WINDOWS\system32\d3dGear64.dll
2016-05-09 17:57:05 ----A---- C:\WINDOWS\system32\avcodec_64-54.dll
2016-05-09 17:57:04 ----A---- C:\WINDOWS\SYSWOW64\swscale_32-2.dll
2016-05-09 17:57:04 ----A---- C:\WINDOWS\SYSWOW64\d3dGearLoad.dll
2016-05-09 17:57:04 ----A---- C:\WINDOWS\SYSWOW64\d3dGearDecoder.dll
2016-05-09 17:57:04 ----A---- C:\WINDOWS\SYSWOW64\D3DGearCodec.dll
2016-05-09 17:57:04 ----A---- C:\WINDOWS\SYSWOW64\d3dGear.dll
2016-05-09 17:57:04 ----A---- C:\WINDOWS\SYSWOW64\avutil_32-51.dll
2016-05-09 17:57:04 ----A---- C:\WINDOWS\SYSWOW64\avformat_32-54.dll
2016-05-09 17:57:04 ----A---- C:\WINDOWS\SYSWOW64\avfilter_32-2.dll
2016-05-09 17:57:04 ----A---- C:\WINDOWS\SYSWOW64\avcodec_32-54.dll
2016-05-09 17:57:02 ----AD---- C:\Program Files\D3DGear
2016-05-08 14:30:22 ----D---- C:\Users\Juraj\AppData\Roaming\OBS
2016-05-08 14:27:42 ----D---- C:\Users\Juraj\AppData\Roaming\obs-studio
2016-05-08 14:27:28 ----D---- C:\Program Files (x86)\obs-studio
2016-04-29 21:49:12 ----A---- C:\WINDOWS\system32\amdave64.dll
2016-04-29 21:49:06 ----A---- C:\WINDOWS\system32\amdmiracast.dll
2016-04-29 21:49:04 ----A---- C:\WINDOWS\system32\amdhcp64.dll
2016-04-29 21:49:02 ----A---- C:\WINDOWS\SYSWOW64\amdhcp32.dll
2016-04-29 21:49:00 ----A---- C:\WINDOWS\system32\atimpc64.dll
2016-04-29 21:48:58 ----A---- C:\WINDOWS\SYSWOW64\atimpc32.dll
2016-04-29 21:48:50 ----A---- C:\WINDOWS\system32\amdpcom64.dll
2016-04-29 21:48:48 ----A---- C:\WINDOWS\SYSWOW64\amdpcom32.dll
2016-04-29 21:48:44 ----A---- C:\WINDOWS\SYSWOW64\atiuxpag.dll
2016-04-29 21:48:42 ----A---- C:\WINDOWS\system32\atiu9p64.dll
2016-04-29 21:48:22 ----A---- C:\WINDOWS\SYSWOW64\atidxx32.dll
2016-04-29 21:47:52 ----A---- C:\WINDOWS\system32\atiumd64.dll
2016-04-29 21:43:40 ----A---- C:\WINDOWS\system32\drivers\amdkmafd.sys
2016-04-29 21:36:38 ----A---- C:\WINDOWS\system32\amdvlk64.dll
2016-04-29 21:32:54 ----A---- C:\WINDOWS\system32\clinfo.exe
2016-04-29 21:32:48 ----A---- C:\WINDOWS\system32\amdocl64.dll
2016-04-29 21:32:00 ----A---- C:\WINDOWS\SYSWOW64\amdvlk32.dll
2016-04-29 21:30:28 ----A---- C:\WINDOWS\SYSWOW64\OpenCL.dll
2016-04-29 21:30:28 ----A---- C:\WINDOWS\system32\OpenCL.dll
2016-04-29 21:28:28 ----A---- C:\WINDOWS\system32\amdocl12cl64.dll
2016-04-29 21:07:36 ----A---- C:\WINDOWS\system32\amdlvr64.dll
2016-04-29 21:07:22 ----A---- C:\WINDOWS\SYSWOW64\amdlvr32.dll
2016-04-29 21:07:10 ----A---- C:\WINDOWS\system32\mantle64.dll
2016-04-29 21:07:04 ----A---- C:\WINDOWS\SYSWOW64\mantle32.dll
2016-04-29 21:06:58 ----A---- C:\WINDOWS\system32\amdmantle64.dll
2016-04-29 21:06:46 ----A---- C:\WINDOWS\system32\amdhdl64.dll
2016-04-29 21:06:42 ----A---- C:\WINDOWS\SYSWOW64\amdhdl32.dll
2016-04-29 21:06:00 ----A---- C:\WINDOWS\system32\atio6axx.dll
2016-04-29 21:03:56 ----A---- C:\WINDOWS\system32\coinst_16.15.dll
2016-04-29 21:02:52 ----A---- C:\WINDOWS\SYSWOW64\amdmantle32.dll
2016-04-29 21:02:30 ----A---- C:\WINDOWS\system32\amdmmcl6.dll
2016-04-29 21:02:26 ----A---- C:\WINDOWS\SYSWOW64\amdmmcl.dll
2016-04-29 21:00:10 ----A---- C:\WINDOWS\SYSWOW64\atioglxx.dll
2016-04-29 20:59:36 ----A---- C:\WINDOWS\system32\mantleaxl64.dll
2016-04-29 20:59:32 ----A---- C:\WINDOWS\SYSWOW64\mantleaxl32.dll
2016-04-29 20:58:48 ----A---- C:\WINDOWS\system32\amdxc64.dll
2016-04-29 20:57:58 ----A---- C:\WINDOWS\system32\atiapfxx.exe
2016-04-29 20:57:56 ----A---- C:\WINDOWS\system32\aticalrt64.dll
2016-04-29 20:57:54 ----A---- C:\WINDOWS\SYSWOW64\aticalrt.dll
2016-04-29 20:57:52 ----A---- C:\WINDOWS\SYSWOW64\aticalcl.dll
2016-04-29 20:57:52 ----A---- C:\WINDOWS\system32\aticalcl64.dll
2016-04-29 20:57:46 ----A---- C:\WINDOWS\system32\aticaldd64.dll
2016-04-29 20:56:54 ----A---- C:\WINDOWS\SYSWOW64\aticaldd.dll
2016-04-29 20:56:14 ----A---- C:\WINDOWS\SYSWOW64\amdxc32.dll
2016-04-29 20:53:38 ----A---- C:\WINDOWS\system32\dgtrayicon.exe
2016-04-29 20:53:38 ----A---- C:\WINDOWS\system32\atidemgy.dll
2016-04-29 20:53:34 ----A---- C:\WINDOWS\system32\GameManager64.dll
2016-04-29 20:53:32 ----A---- C:\WINDOWS\SYSWOW64\atieah32.exe
2016-04-29 20:53:32 ----A---- C:\WINDOWS\system32\atieah64.exe
2016-04-29 20:53:30 ----A---- C:\WINDOWS\SYSWOW64\amdgfxinfo32.dll
2016-04-29 20:53:30 ----A---- C:\WINDOWS\system32\amdgfxinfo64.dll
2016-04-29 20:53:28 ----A---- C:\WINDOWS\system32\atimuixx.dll
2016-04-29 20:53:28 ----A---- C:\WINDOWS\system32\atieclxx.exe
2016-04-29 20:53:20 ----A---- C:\WINDOWS\system32\atiesrxx.exe
2016-04-29 20:53:06 ----A---- C:\WINDOWS\system32\atitmm64.dll
2016-04-29 20:50:56 ----A---- C:\WINDOWS\system32\atisamu64.dll
2016-04-29 20:50:52 ----A---- C:\WINDOWS\SYSWOW64\atisamu32.dll
2016-04-29 20:49:56 ----A---- C:\WINDOWS\system32\drivers\ati2erec.dll
2016-04-29 20:49:34 ----A---- C:\WINDOWS\SYSWOW64\atiadlxx.dll
2016-04-29 20:49:32 ----A---- C:\WINDOWS\system32\atig6pxx.dll
2016-04-29 20:49:30 ----A---- C:\WINDOWS\SYSWOW64\atiglpxx.dll
2016-04-29 20:49:30 ----A---- C:\WINDOWS\system32\atiglpxx.dll
2016-04-29 20:49:30 ----A---- C:\WINDOWS\system32\atig6txx.dll
2016-04-29 20:48:32 ----A---- C:\WINDOWS\system32\hsa-thunk64.dll
2016-04-29 20:48:30 ----A---- C:\WINDOWS\SYSWOW64\hsa-thunk.dll
2016-04-29 14:59:20 ----A---- C:\WINDOWS\system32\amdacpusl.dll
2016-04-29 14:59:18 ----A---- C:\WINDOWS\SYSWOW64\amdacpusl.dll

======List of files/folders modified in the last 1 month======

2016-05-28 17:31:03 ----RD---- C:\Program Files
2016-05-28 17:05:00 ----D---- C:\WINDOWS\system32\sru
2016-05-28 16:58:33 ----D---- C:\WINDOWS\Temp
2016-05-28 16:19:31 ----D---- C:\ProgramData\Kaspersky Lab
2016-05-28 12:50:43 ----D---- C:\Users\Juraj\AppData\Roaming\Andy
2016-05-28 12:45:12 ----D---- C:\Users\Juraj\AppData\Roaming\TS3Client
2016-05-28 12:22:46 ----D---- C:\Program Files (x86)\Steam
2016-05-28 11:59:03 ----AD---- C:\ProgramData\VMware
2016-05-28 11:58:57 ----D---- C:\Users\Juraj\AppData\Roaming\VMware
2016-05-28 11:45:12 ----SHD---- C:\System Volume Information
2016-05-28 11:43:23 ----D---- C:\WINDOWS\Microsoft.NET
2016-05-28 11:43:19 ----D---- C:\WINDOWS\Prefetch
2016-05-28 10:11:09 ----SHD---- C:\WINDOWS\Installer
2016-05-28 10:11:09 ----SHD---- C:\Config.Msi
2016-05-28 10:11:09 ----AD---- C:\ProgramData\regid.1991-06.com.microsoft
2016-05-28 10:10:59 ----D---- C:\Program Files (x86)\Common Files
2016-05-28 10:10:30 ----AD---- C:\Program Files (x86)\Microsoft Office
2016-05-28 10:08:33 ----D---- C:\WINDOWS\AppReadiness
2016-05-28 10:08:32 ----HD---- C:\Program Files\WindowsApps
2016-05-28 10:05:09 ----D---- C:\WINDOWS\System32
2016-05-28 10:05:09 ----D---- C:\WINDOWS\INF
2016-05-28 10:05:09 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2016-05-25 14:40:53 ----AD---- C:\Program Files\AMD
2016-05-25 14:40:46 ----D---- C:\ProgramData\AMD
2016-05-23 21:35:08 ----D---- C:\Users\Juraj\AppData\Roaming\SpaceEngineers
2016-05-22 23:50:20 ----D---- C:\Users\Juraj\AppData\Roaming\uTorrent
2016-05-21 23:06:49 ----D---- C:\WINDOWS\SysWOW64
2016-05-15 19:42:02 ----RD---- C:\Program Files (x86)
2016-05-15 19:40:53 ----D---- C:\Program Files (x86)\RivaTuner Statistics Server
2016-05-15 19:40:16 ----D---- C:\WINDOWS\system32\Tasks
2016-05-15 19:40:05 ----D---- C:\Program Files (x86)\MSI Afterburner
2016-05-14 17:39:18 ----D---- C:\WINDOWS\system32\config
2016-05-13 20:03:34 ----D---- C:\WINDOWS\rescache
2016-05-13 20:01:07 ----D---- C:\WINDOWS\WinSxS
2016-05-13 20:00:21 ----D---- C:\WINDOWS\CbsTemp
2016-05-12 12:03:00 ----D---- C:\WINDOWS\system32\DriverStore
2016-05-12 12:02:57 ----RSD---- C:\WINDOWS\assembly
2016-05-12 12:02:38 ----D---- C:\WINDOWS\system32\catroot2
2016-05-12 06:06:10 ----D---- C:\WINDOWS\system32\drivers
2016-05-11 23:07:09 ----D---- C:\WINDOWS\SYSWOW64\sk-SK
2016-05-11 23:07:09 ----D---- C:\WINDOWS\SYSWOW64\migration
2016-05-11 23:07:07 ----D---- C:\WINDOWS\system32\sk-SK
2016-05-11 23:07:07 ----D---- C:\WINDOWS\system32\oobe
2016-05-11 23:07:07 ----D---- C:\WINDOWS\system32\migration
2016-05-11 23:07:07 ----D---- C:\WINDOWS\system32\en-US
2016-05-11 23:07:07 ----D---- C:\WINDOWS\system32\drivers\UMDF
2016-05-11 23:07:07 ----D---- C:\WINDOWS\system32\appraiser
2016-05-11 23:07:05 ----D---- C:\WINDOWS\Provisioning
2016-05-11 23:07:04 ----D---- C:\WINDOWS\bcastdvr
2016-05-11 23:07:04 ----D---- C:\WINDOWS\AppPatch
2016-05-11 23:07:03 ----D---- C:\Windows
2016-05-11 23:07:03 ----D---- C:\Program Files\Windows Journal
2016-05-11 23:07:03 ----D---- C:\Program Files\Internet Explorer
2016-05-11 23:07:03 ----D---- C:\Program Files (x86)\Internet Explorer
2016-05-11 22:56:18 ----D---- C:\Users\Juraj\AppData\Roaming\Victor Vran
2016-05-11 21:57:14 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe
2016-05-11 19:23:18 ----D---- C:\WINDOWS\system32\MRT
2016-05-11 19:18:55 ----A---- C:\WINDOWS\system32\MRT.exe
2016-05-11 08:12:35 ----D---- C:\WINDOWS\Tasks
2016-05-09 22:54:34 ----D---- C:\Users\Juraj\AppData\Roaming\vlc
2016-05-09 22:06:01 ----HD---- C:\ProgramData
2016-05-08 22:03:57 ----D---- C:\WINDOWS\system32\CatRoot
2016-05-08 21:00:49 ----D---- C:\Program Files (x86)\VulkanRT
2016-05-08 20:58:34 ----D---- C:\AMD
2016-05-08 14:30:23 ----D---- C:\Program Files (x86)\OBS
2016-05-08 14:30:20 ----D---- C:\Program Files\OBS
2016-04-29 21:49:10 ----A---- C:\WINDOWS\SYSWOW64\amdave32.dll
2016-04-29 21:48:46 ----A---- C:\WINDOWS\system32\atiuxp64.dll
2016-04-29 21:48:40 ----A---- C:\WINDOWS\SYSWOW64\atiu9pag.dll
2016-04-29 21:48:36 ----A---- C:\WINDOWS\system32\aticfx64.dll
2016-04-29 21:48:32 ----A---- C:\WINDOWS\SYSWOW64\aticfx32.dll
2016-04-29 21:48:26 ----A---- C:\WINDOWS\system32\atidxx64.dll
2016-04-29 21:48:12 ----A---- C:\WINDOWS\SYSWOW64\atiumdva.dll
2016-04-29 21:48:06 ----A---- C:\WINDOWS\SYSWOW64\atiumdag.dll
2016-04-29 21:47:56 ----A---- C:\WINDOWS\system32\atiumd6a.dll
2016-04-29 21:31:36 ----A---- C:\WINDOWS\SYSWOW64\amdocl.dll
2016-04-29 21:28:20 ----A---- C:\WINDOWS\SYSWOW64\amdocl12cl.dll
2016-04-29 20:53:34 ----A---- C:\WINDOWS\SYSWOW64\GameManager32.dll
2016-04-29 20:49:38 ----A---- C:\WINDOWS\system32\atiadlxx.dll
2016-04-29 20:49:34 ----A---- C:\WINDOWS\SYSWOW64\atiadlxy.dll
2016-04-29 20:49:26 ----A---- C:\WINDOWS\SYSWOW64\atigktxx.dll
2016-04-29 16:12:05 ----AD---- C:\Program Files\TeamSpeak 3 Client



// CAST 1

Re: Preventivna kontrola

Napsal: 28 kvě 2016 16:38
od hladac
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 cm_km;Kaspersky Lab ZAO Cryptographic Module x64 (Weak); C:\WINDOWS\system32\DRIVERS\cm_km.sys [2015-07-06 389816]
R0 iaStorA;iaStorA; C:\WINDOWS\System32\drivers\iaStorA.sys [2014-05-28 672104]
R0 kl1;kl1; C:\WINDOWS\system32\DRIVERS\kl1.sys [2015-09-11 478392]
R0 klbackupdisk;Kaspersky Lab klbackupdisk; C:\WINDOWS\system32\DRIVERS\klbackupdisk.sys [2015-06-06 53432]
R0 PxHlpa64;PxHlpa64; C:\WINDOWS\System32\drivers\PxHlpa64.sys [2013-09-03 56336]
R1 AsrAppCharger;AsrAppCharger; C:\WINDOWS\system32\DRIVERS\AsrAppCharger.sys [2011-11-07 17192]
R1 FileCrypt;@%systemroot%\system32\drivers\filecrypt.sys,-100; C:\WINDOWS\system32\drivers\filecrypt.sys [2016-04-23 87552]
R1 GpuEnergyDrv;@%SystemRoot%\system32\drivers\gpuenergydrv.sys,-100; C:\WINDOWS\System32\drivers\gpuenergydrv.sys [2015-10-30 8192]
R1 klbackupflt;Kaspersky Lab klbackupflt; C:\WINDOWS\system32\DRIVERS\klbackupflt.sys [2015-12-01 79752]
R1 klhk;@oem60.inf,%klhkDisplayName%;Kaspersky Lab service driver; C:\WINDOWS\System32\drivers\klhk.sys [2016-04-27 237488]
R1 KLIF;Kaspersky Lab Driver; C:\WINDOWS\system32\DRIVERS\klif.sys [2016-04-27 987568]
R1 KLIM6;@oem3.inf,%KLIM6_Desc%;Kaspersky Anti-Virus NDIS 6 Filter; C:\WINDOWS\system32\DRIVERS\klim6.sys [2016-04-17 51288]
R1 klpd;Kaspersky Lab format recognizer driver; C:\WINDOWS\system32\DRIVERS\klpd.sys [2015-12-07 45960]
R1 klwfp;klwfp; C:\WINDOWS\system32\DRIVERS\klwfp.sys [2015-10-06 87944]
R1 Klwtp;KLwtp - WFP callout traffic inspector; C:\WINDOWS\system32\DRIVERS\klwtp.sys [2015-12-03 112520]
R1 kneps;kneps; C:\WINDOWS\system32\DRIVERS\kneps.sys [2015-12-03 194440]
R2 amdacpksd;ACP Kernel Service Driver; \??\C:\WINDOWS\system32\drivers\amdacpksd.sys [2016-04-29 296648]
R2 hcmon;VMware hcmon; \??\C:\WINDOWS\system32\drivers\hcmon.sys [2016-03-10 57536]
R2 kldisk;kldisk; C:\WINDOWS\system32\DRIVERS\kldisk.sys [2015-12-02 78200]
R2 MMCSS;@%systemroot%\system32\drivers\mmcss.sys,-100; C:\WINDOWS\system32\drivers\mmcss.sys [2015-10-30 47616]
R2 storqosflt;@%SystemRoot%\System32\drivers\storqosflt.sys,-101; C:\WINDOWS\system32\drivers\storqosflt.sys [2015-10-30 78848]
R3 amdkmdag;amdkmdag; C:\WINDOWS\system32\DRIVERS\atikmdag.sys [2016-04-29 26345984]
R3 amdkmdap;amdkmdap; C:\WINDOWS\system32\DRIVERS\atikmpag.sys [2016-04-29 676864]
R3 AtiHDAudioService;@oem48.inf,%ATIHdAudioDriver.SvcDesc%;AMD Function Driver for HD Audio Service; C:\WINDOWS\system32\drivers\AtihdWT6.sys [2016-03-01 111120]
R3 e1dexpress;@oem10.inf,%e1dExpress.Service.DispName%;Intel(R) PRO/1000 PCI Express Network Connection Driver D; C:\WINDOWS\system32\DRIVERS\e1d65x64.sys [2015-11-24 541672]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RTKVHD64.sys [2013-07-30 3564376]
R3 klflt;Kaspersky Lab Kernel DLL; C:\WINDOWS\system32\DRIVERS\klflt.sys [2015-12-11 182664]
R3 klids;klids; \??\C:\ProgramData\Kaspersky Lab\AVP16.0.1\Bases\klids.sys [2016-04-28 178872]
R3 klkbdflt;Kaspersky Lab KLKBDFLT; C:\WINDOWS\system32\DRIVERS\klkbdflt.sys [2015-11-11 52608]
R3 klmouflt;Kaspersky Lab KLMOUFLT; C:\WINDOWS\system32\DRIVERS\klmouflt.sys [2015-06-07 41656]
R3 MEIx64;@oem36.inf,%TEE_SvcDesc%;Intel(R) Management Engine Interface ; C:\WINDOWS\system32\DRIVERS\TeeDriverx64.sys [2014-09-30 129312]
R3 sshid;@oem45.inf,%sshid.SvcDesc%;SteelSeries HID Service; C:\WINDOWS\System32\drivers\sshid.sys [2016-01-28 51400]
S0 amdkmafd;@oem61.inf,%AMDKMAFD_svcdesc%;AMD Audio Bus Lower Filter; C:\WINDOWS\System32\drivers\amdkmafd.sys [2016-04-29 23240]
S0 klelam;klelam; C:\WINDOWS\system32\DRIVERS\klelam.sys [2015-06-24 30328]
S0 LSI_SAS2i;LSI_SAS2i; C:\WINDOWS\System32\drivers\lsi_sas2i.sys [2015-10-30 104800]
S0 LSI_SAS3i;LSI_SAS3i; C:\WINDOWS\System32\drivers\lsi_sas3i.sys [2015-10-30 99168]
S0 percsas2i;percsas2i; C:\WINDOWS\System32\drivers\percsas2i.sys [2015-10-30 58208]
S0 percsas3i;percsas3i; C:\WINDOWS\System32\drivers\percsas3i.sys [2015-10-30 58720]
S0 storufs;@storufs.inf,%UfsServiceDesc%;Microsoft Universal Flash Storage (UFS) Driver; C:\WINDOWS\System32\drivers\storufs.sys [2015-10-30 34144]
S3 bcmfn;@bcmfn.inf,%bcmfn.SVCDESC%;bcmfn Service; C:\WINDOWS\System32\drivers\bcmfn.sys [2015-10-30 9728]
S3 buttonconverter;@buttonconverter.inf,%btnconv.SvcDesc%;Service for Portable Device Control devices; C:\WINDOWS\System32\drivers\buttonconverter.sys [2015-10-30 37376]
S3 CapImg;@capimg.inf,%CapImgHid_Service%;HID driver for CapImg touch screen; C:\WINDOWS\System32\drivers\capimg.sys [2015-12-19 117248]
S3 e1iexpress;@net1ic64.inf,%e1iExpress.Service.DispName%;Intel(R) PRO/1000 PCI Express Network Connection Driver I; C:\WINDOWS\System32\drivers\e1i63x64.sys [2015-10-30 472576]
S3 genericusbfn;@genericusbfn.inf,%genericusbfn.ServiceName%;Generic USB Function Class; C:\WINDOWS\System32\drivers\genericusbfn.sys [2015-10-30 20992]
S3 Hamachi;@oem44.inf,%Hamachi.Service.DispName%;LogMeIn Hamachi Virtual Miniport); C:\WINDOWS\system32\DRIVERS\Hamdrv.sys [2015-11-12 45680]
S3 hidinterrupt;@hidinterrupt.inf,%HID_Interrupt.SvcDesc%;Common Driver for HID Buttons implemented with interrupts; C:\WINDOWS\System32\drivers\hidinterrupt.sys [2015-10-30 50016]
S3 iai2c;@iai2c.inf,%iai2c.SVCDESC%;Intel(R) Serial IO I2C Host Controller; C:\WINDOWS\System32\drivers\iai2c.sys [2015-10-30 81408]
S3 iaLPSS2i_I2C;@iaLPSS2i_I2C_SKL.inf,%iaLPSS2i_I2C.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [2015-10-30 165888]
S3 ibbus;@mlx4_bus.inf,%Ibbus.ServiceDesc%;Mellanox InfiniBand Bus/AL (Filter Driver); C:\WINDOWS\System32\drivers\ibbus.sys [2015-10-30 424800]
S3 IoQos;@%SystemRoot%\system32\drivers\ioqos.sys,-100; C:\WINDOWS\system32\drivers\ioqos.sys [2015-10-30 26624]
S3 mlx4_bus;@mlx4_bus.inf,%MLX4BUS.ServiceDesc%;Mellanox ConnectX Bus Enumerator; C:\WINDOWS\System32\drivers\mlx4_bus.sys [2015-10-30 705376]
S3 NAL;Nal Service ; \??\C:\WINDOWS\system32\Drivers\iqvw64e.sys []
S3 ndfltr;@mlx4_bus.inf,%ndfltr.ServiceDesc%;NetworkDirect Service; C:\WINDOWS\System32\drivers\ndfltr.sys [2015-10-30 76128]
S3 ReFSv1;ReFSv1; C:\WINDOWS\system32\drivers\ReFSv1.sys [2015-10-30 930656]
S4 klkbdflt2;Kaspersky Lab KlKbdFlt2; C:\WINDOWS\system32\DRIVERS\klkbdflt2.sys []

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2016-04-22 82128]
R2 AGSService;Adobe Genuine Software Integrity Service; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2016-04-05 2021592]
R2 AMD External Events Utility;AMD External Events Utility; C:\WINDOWS\system32\atiesrxx.exe [2016-04-29 251392]
R2 amdacpusrsvc;ACP User Service; C:\Program Files\AMD\{920DEC42-4CA5-4d1d-9487-67BE645CDDFC}\amdacpusrsvc.exe [2016-04-29 121856]
R2 AVP16.0.1;Kaspersky Anti-Virus Service 16.0.1; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.1\avp.exe [2015-12-22 236928]
R2 Bonjour Service;Bonjour Service; C:\Program Files\Bonjour\mDNSResponder.exe [2011-08-30 462184]
R2 ClickToRunSvc;Služba Microsoft Office Klikni a spusti; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [2016-05-15 2911472]
R2 CoreMessagingRegistrar;@%SystemRoot%\system32\coremessaging.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 DiagTrack;@%SystemRoot%\system32\diagtrack.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
R2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2014-05-28 16232]
R2 Intel(R) ME Service;Intel® ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [2014-03-20 131544]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2014-03-20 154584]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2014-03-20 398296]
R2 OneSyncSvc_34104;Sync Host_34104; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 PlaysService;Plays.tv Update Service; C:\Program Files (x86)\Raptr Inc\PlaysTV\plays_service.exe [2016-05-09 32528]
R2 PnkBstrA;PnkBstrA; C:\WINDOWS\syswow64\PnkBstrA.exe [2015-11-14 76888]
R3 DsSvc;@%SystemRoot%\system32\dssvc.dll,-10003; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
R3 LicenseManager;@%SystemRoot%\system32\licensemanagersvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
R3 StateRepository;@%SystemRoot%\system32\windows.staterepository.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 DoSvc;@%systemroot%\system32\dosvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-01-16 144200]
S2 MapsBroker;@%SystemRoot%\System32\moshost.dll,-100; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc;@%SystemRoot%\system32\APHostRes.dll,-10002; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_15a3626f;Sync Host_15a3626f; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_198788b;Sync Host_198788b; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_27f1394;Sync Host_27f1394; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_2beb578;Sync Host_2beb578; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_3326d;Sync Host_3326d; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_33611;Sync Host_33611; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_348d6;Sync Host_348d6; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_34fe6;Sync Host_34fe6; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_3641c;Sync Host_3641c; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_3a0360b;Sync Host_3a0360b; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_527c5;Sync Host_527c5; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_a549e7d;Sync Host_a549e7d; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_b92dd18;Sync Host_b92dd18; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_e76c5fe;Sync Host_e76c5fe; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2015-07-09 327296]
S3 AJRouter;@%SystemRoot%\system32\AJRouter.dll,-2; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 BEService;BattlEye Service; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [2016-01-19 1314848]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 ClipSVC;@%SystemRoot%\system32\ClipSVC.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 DcpSvc;@%SystemRoot%\system32\dcpsvc.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 DevQueryBroker;@%SystemRoot%\system32\DevQueryBroker.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 diagnosticshub.standardcollector.service;@%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000; C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe [2015-10-30 31744]
S3 DmEnrollmentSvc;@%systemroot%\system32\Windows.Internal.Management.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 dmwappushservice;@%SystemRoot%\system32\dmwappushsvc.dll,-200; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 embeddedmode;@%SystemRoot%\system32\embeddedmodesvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 EntAppSvc;@EnterpriseAppMgmtSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2015-10-23 43696]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-01-16 144200]
S3 icssvc;@%SystemRoot%\System32\tetheringservice.dll,-4097; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 Intel(R) Capability Licensing Service TCP IP Interface;Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [2014-01-31 887232]
S3 iumsvc;Intel(R) Update Manager; C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe [2015-09-25 178312]
S3 klvssbrigde64;klvssbrigde64; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.1\x64\vssbridge64.exe [2015-12-22 152488]
S3 MessagingService;@%SystemRoot%\system32\MessagingService.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_15a3626f;MessagingService_15a3626f; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_198788b;MessagingService_198788b; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_27f1394;MessagingService_27f1394; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_2beb578;MessagingService_2beb578; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3326d;MessagingService_3326d; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_33611;MessagingService_33611; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_34104;MessagingService_34104; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_348d6;MessagingService_348d6; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_34fe6;MessagingService_34fe6; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3641c;MessagingService_3641c; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_3a0360b;MessagingService_3a0360b; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_527c5;MessagingService_527c5; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_a549e7d;MessagingService_a549e7d; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_b92dd18;MessagingService_b92dd18; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_e76c5fe;MessagingService_e76c5fe; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 NetSetupSvc;@%SystemRoot%\system32\NetSetupSvc.dll,-3; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 NgcCtnrSvc;@%SystemRoot%\System32\NgcCtnrSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 NgcSvc;@%SystemRoot%\System32\ngcsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 Origin Client Service;Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2015-11-13 2099720]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2016-05-16 211160]
S3 PhoneSvc;@%SystemRoot%\system32\PhoneserviceRes.dll,-10000; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-15001; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_15a3626f;Kontaktné údaje_15a3626f; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_198788b;Kontaktné údaje_198788b; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_27f1394;Kontaktné údaje_27f1394; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_2beb578;Kontaktné údaje_2beb578; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_3326d;Kontaktné údaje_3326d; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_33611;Kontaktné údaje_33611; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_34104;Kontaktné údaje_34104; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_348d6;Kontaktné údaje_348d6; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_34fe6;Kontaktné údaje_34fe6; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_3641c;Kontaktné údaje_3641c; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_3a0360b;Kontaktné údaje_3a0360b; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_527c5;Kontaktné údaje_527c5; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_a549e7d;Kontaktné údaje_a549e7d; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_b92dd18;Kontaktné údaje_b92dd18; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_e76c5fe;Kontaktné údaje_e76c5fe; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 RetailDemo;@%SystemRoot%\System32\RDXService.dll,-256; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 SensorDataService;@%SystemRoot%\system32\SensorDataService.exe,-101; C:\WINDOWS\System32\SensorDataService.exe [2015-10-30 1297408]
S3 SensorService;@%SystemRoot%\System32\sensorservice.dll,-1000; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 SmsRouter;@%SystemRoot%\System32\SmsRouterSvc.dll,-10001; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2016-04-30 835664]
S4 CDPSvc;@%SystemRoot%\system32\cdpsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]

-----------------EOF-----------------



// CAST 2

Re: Preventivna kontrola

Napsal: 29 kvě 2016 21:09
od altrok
Krasny den Vam preju :bye:


:arrow: V ramci cisteni Vam budou vyprazdneny docasne adresare (vcetne Kose).


:arrow: Ulozte na plochu AdwCleaner https://toolslib.net/downloads/viewdown ... dwcleaner/ (nebo http://www.bleepingcomputer.com/download/adwcleaner/ )
  • ukoncete vsechny programy
  • kliknete pravym na ikonu AdwCleaneru a vyberte Spustit jako spravce (v pripade Win XP spustte obycejne dvojklikem)
  • kliknete na Scan (Skenovani), pote na Cleaning (Cisteni)
  • po restartu na Vas vyskoci log (pripadne jej najdete v C:\AdwCleaner\AdwCleaner[Cx].txt), jehoz obsah zkopirujte do pristi odpovedi

Re: Preventivna kontrola

Napsal: 30 kvě 2016 14:46
od hladac
Vsetko ciste, tak to bude asi chybny router.

# AdwCleaner v5.118 - Log vytvorený 30/05/2016 v 15:46:16
# Aktualizované 23/05/2016 by Xplode
# Databáza : 2016-05-30.1 [Server]
# Operačný systém : Windows 10 Home (X64)
# Užívateľské meno : Juraj - JURIKE
# Spustené z : C:\Users\Juraj\Downloads\AdwCleaner.exe
# Nastavenie : Čistenie
# Podpora : http://toolslib.net/forum

***** [ Služby ] *****


***** [ Priečinky ] *****


***** [ Súbory ] *****


***** [ DLLs ] *****


***** [ WMI ] *****


***** [ Zástupcovia ] *****


***** [ Naplánované úlohy ] *****


***** [ Registre ] *****


***** [ Webové prehliadače ] *****


*************************

:: "Tracing" kľúče zmazané
:: Nastavenia Winsock resetované.

*************************

C:\AdwCleaner\AdwCleaner[C1].txt - [765 bajtov] - [30/05/2016 15:46:16]
C:\AdwCleaner\AdwCleaner[S1].txt - [817 bajtov] - [30/05/2016 15:43:16]

########## EOF - C:\AdwCleaner\AdwCleaner[C1].txt - [911 bajtov] ##########


// Upraveny prispevok, nechtiac som dal zly log.

Re: Preventivna kontrola

Napsal: 30 kvě 2016 21:43
od altrok
:arrow: Nainstalujte MBAM a udelejte vlastni sken vsech disku - http://forum.viry.cz/viewtopic.php?f=29&t=144868
  • Upozorneni: tento sken zabere od 30 minut po nekolik hodin

Re: Preventivna kontrola

Napsal: 02 čer 2016 19:49
od hladac
Malwarebytes Anti-Malware
www.malwarebytes.org

Dátum kontroly: 2.6.2016
Čas kontroly: 19:34
Protokol: log.txt
Správca: Áno

Verzia: 2.2.1.1043
Dazabáza malware: v2016.06.02.05
Databáza rootkitov: v2016.05.27.01
Licencia: Skúšobná verzia
Ochrana pred škodlivým softvérom: Zapnuté
Ochrana pred škodlivými webstránkami: Zapnuté
Vlastná ochrana: Vypnuté

OS: Windows 10
CPU: x64
Súborový systém: NTFS
Používateľ: Juraj

Typ kontroly: Vlastná kontrola
Výsledok: Dokončená
Skontrolovaných objektov: 598709
Uplynulý čas: 1 hod, 5 min 48 s

Pamäť: Zapnuté
Pri spustení: Zapnuté
Súborový systém: Zapnuté
Archívy: Zapnuté
Rootkity: Zapnuté
Heuristika: Zapnuté
PUP: Zapnuté
PUM: Zapnuté

Procesy: 0
(Žiadne škodlivé položky neboli zistené)

Moduly: 0
(Žiadne škodlivé položky neboli zistené)

Kľúče databázy Registry: 0
(Žiadne škodlivé položky neboli zistené)

Hodnoty databázy Registry: 0
(Žiadne škodlivé položky neboli zistené)

Údaj databázy Registry: 0
(Žiadne škodlivé položky neboli zistené)

Priečinky: 0
(Žiadne škodlivé položky neboli zistené)

Súbory: 0
(Žiadne škodlivé položky neboli zistené)

Fyzické sektory: 0
(Žiadne škodlivé položky neboli zistené)


(end)

Re: Preventivna kontrola

Napsal: 02 čer 2016 19:53
od altrok
:arrow: Dejte logy FRST.txt a Addition.txt - http://forum.viry.cz/viewtopic.php?f=30&t=133101
Pozn. pri druhem a dalsim spusteni FRST je pro vytvoreni logu Addition.txt nutne tuto volbu explicitne zatrhnout pred zacatkem skenu.

Re: Preventivna kontrola

Napsal: 09 čer 2016 20:16
od hladac
Sice troska neskoro, lebo mi to moc cas nedovoloval, ale predca :)

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:09-06-2016
Ran by Juraj (administrator) on JURIKE (09-06-2016 21:12:43)
Running from C:\Users\Juraj\Downloads
Loaded Profiles: Juraj & (Available Profiles: Juraj)
Platform: Windows 10 Home Version 1511 (X64) Language: Slovenčina (Slovensko)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(AMD) C:\Windows\System32\atiesrxx.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(AO Kaspersky Lab) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.1\avp.exe
(Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe
(Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(Advanced Micro Devices) C:\Program Files\AMD\{920DEC42-4CA5-4d1d-9487-67BE645CDDFC}\amdacpusrsvc.exe
(VMware, Inc.) C:\Program Files (x86)\VMware\VMware Player\vmware-authd.exe
(VMware, Inc.) C:\Windows\SysWOW64\vmnat.exe
(VMware, Inc.) C:\Windows\SysWOW64\vmnetdhcp.exe
() C:\Windows\SysWOW64\PnkBstrA.exe
(Plays.tv, LLC) C:\Program Files (x86)\Raptr Inc\PlaysTV\plays_service.exe
(Malwarebytes) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe
(Malwarebytes) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(AMD) C:\Windows\System32\atieclxx.exe
() C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkypeHost.exe
(Malwarebytes) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe
(AO Kaspersky Lab) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.1\avpui.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Akamai Technologies, Inc.) C:\Users\Juraj\AppData\Local\Akamai\netsession_win.exe
(Akamai Technologies, Inc.) C:\Users\Juraj\AppData\Local\Akamai\netsession_win.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(Andy OS, inc.) C:\Program Files\Andy\HandyAndy.exe
(Plays.tv, LLC) C:\Program Files (x86)\Raptr Inc\PlaysTV\playstv.exe
(Raptr, Inc) C:\Program Files (x86)\Raptr Inc\Raptr\raptr.exe
(Raptr, Inc) C:\Program Files (x86)\Raptr Inc\Raptr\raptr_im.exe
(Raptr Inc.) C:\Program Files (x86)\Raptr Inc\PlaysTV\plays_ep64.exe
(Raptr Inc.) C:\Program Files (x86)\Raptr Inc\Raptr\raptr_ep64.exe
(Valve Corporation) C:\Program Files (x86)\Steam\Steam.exe
(Valve Corporation) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
(Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(Valve Corporation) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe


==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13636824 2013-07-26] (Realtek Semiconductor)
HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [287592 2014-05-28] (Intel Corporation)
HKLM-x32\...\Run: [PlaysTV] => C:\Program Files (x86)\Raptr Inc\PlaysTV\playstv_launcher.exe [71440 2016-06-07] (Plays.tv, LLC)
HKLM-x32\...\Run: [Raptr] => C:\Program Files (x86)\Raptr Inc\Raptr\raptrstub.exe [58640 2016-04-27] (Raptr, Inc)
HKU\S-1-5-21-711820806-2850004305-1715212440-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [3077712 2016-04-30] (Valve Corporation)
HKU\S-1-5-21-711820806-2850004305-1715212440-1001\...\Run: [Akamai NetSession Interface] => C:\Users\Juraj\AppData\Local\Akamai\netsession_win.exe [4691384 2015-09-10] (Akamai Technologies, Inc.)
HKU\S-1-5-21-711820806-2850004305-1715212440-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [8590760 2015-12-08] (Piriform Ltd)
HKU\S-1-5-21-711820806-2850004305-1715212440-1001\...\Run: [GoogleChromeAutoLaunch_DA1AC66AAEC15AF034F8035EC85E4FEE] => C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1122968 2016-06-04] (Google Inc.)
HKU\S-1-5-21-711820806-2850004305-1715212440-1001\...\Run: [NETGEARGenie] => C:\Program Files (x86)\NETGEAR Genie\bin\NETGEARGenie.exe [611584 2016-03-09] (NETGEAR Inc.)
HKU\S-1-5-21-711820806-2850004305-1715212440-1001\...\RunOnce: [Uninstall C:\Users\Juraj\AppData\Local\Microsoft\OneDrive\17.3.5951.0827_1\amd64] => C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Juraj\AppData\Local\Microsoft\OneDrive\17.3.5951.0827_1\amd64"
HKU\S-1-5-21-711820806-2850004305-1715212440-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [3077712 2016-04-30] (Valve Corporation)
HKU\S-1-5-21-711820806-2850004305-1715212440-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Run: [Akamai NetSession Interface] => C:\Users\Juraj\AppData\Local\Akamai\netsession_win.exe [4691384 2015-09-10] (Akamai Technologies, Inc.)
HKU\S-1-5-21-711820806-2850004305-1715212440-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [8590760 2015-12-08] (Piriform Ltd)
HKU\S-1-5-21-711820806-2850004305-1715212440-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Run: [GoogleChromeAutoLaunch_DA1AC66AAEC15AF034F8035EC85E4FEE] => C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1122968 2016-06-04] (Google Inc.)
HKU\S-1-5-21-711820806-2850004305-1715212440-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Run: [NETGEARGenie] => C:\Program Files (x86)\NETGEAR Genie\bin\NETGEARGenie.exe [611584 2016-03-09] (NETGEAR Inc.)
HKU\S-1-5-21-711820806-2850004305-1715212440-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\RunOnce: [Uninstall C:\Users\Juraj\AppData\Local\Microsoft\OneDrive\17.3.5951.0827_1\amd64] => C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Juraj\AppData\Local\Microsoft\OneDrive\17.3.5951.0827_1\amd64"
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\HandyAndy.lnk [2016-04-26]
ShortcutTarget: HandyAndy.lnk -> C:\Program Files\Andy\HandyAndy.exe (Andy OS, inc.)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\..\Interfaces\{71f7393f-1002-4c1f-a61a-4bb0250f0da1}: [DhcpNameServer] 192.168.1.1

Internet Explorer:
==================
BHO: Kaspersky Protection -> {03993315-5CE9-4F00-8790-D14A94F1D91A} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.1\x64\IEExt\ie_plugin.dll [2015-12-22] (AO Kaspersky Lab)
BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2016-05-15] (Microsoft Corporation)
BHO: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\GROOVEEX.DLL [2016-05-15] (Microsoft Corporation)
BHO-x32: Kaspersky Protection -> {03993315-5CE9-4F00-8790-D14A94F1D91A} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.1\IEExt\ie_plugin.dll [2015-12-22] (AO Kaspersky Lab)
Toolbar: HKLM - Kaspersky Protection Toolbar - {001032CB-B0AC-4F2C-A650-AD4B2B26E5DA} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.1\x64\IEExt\ie_plugin.dll [2015-12-22] (AO Kaspersky Lab)
Toolbar: HKLM-x32 - Kaspersky Protection Toolbar - {001032CB-B0AC-4F2C-A650-AD4B2B26E5DA} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.1\IEExt\ie_plugin.dll [2015-12-22] (AO Kaspersky Lab)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2016-05-15] (Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2016-05-15] (Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2016-05-15] (Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2016-05-15] (Microsoft Corporation)

FireFox:
========
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32.dll [2016-01-22] ()
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2014-03-20] (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2014-03-20] (Intel Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2016-05-15] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.30.3\npGoogleUpdate3.dll [2016-05-11] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.30.3\npGoogleUpdate3.dll [2016-05-11] (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.2.1 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2016-05-27] (Adobe Systems Inc.)
FF HKLM-x32\...\Firefox\Extensions: [light_plugin_ACF0E80077C511E59DED005056C00008@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.1\FFExt\light_plugin_firefox\addon.xpi
FF Extension: Kaspersky Protection - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.1\FFExt\light_plugin_firefox\addon.xpi [2016-04-27]

Chrome:
=======
CHR Profile: C:\Users\Juraj\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Prezentácie Google) - C:\Users\Juraj\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-09-26]
CHR Extension: (Dokumenty Google) - C:\Users\Juraj\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-09-26]
CHR Extension: (Disk Google) - C:\Users\Juraj\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-10-22]
CHR Extension: (YouTube) - C:\Users\Juraj\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-09-26]
CHR Extension: (Plays.tv Chrome Extension) - C:\Users\Juraj\AppData\Local\Google\Chrome\User Data\Default\Extensions\cbpfcepjgonbhjiaokfnomnfpfljabkh [2016-05-26]
CHR Extension: (Google Search) - C:\Users\Juraj\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-10-27]
CHR Extension: (Tabuľky Google) - C:\Users\Juraj\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-09-26]
CHR Extension: (CSSViewer) - C:\Users\Juraj\AppData\Local\Google\Chrome\User Data\Default\Extensions\ggfgijbpiheegefliciemofobhmofgce [2016-04-24]
CHR Extension: (Dokumenty Google v režime offline) - C:\Users\Juraj\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-03-15]
CHR Extension: (AdBlock) - C:\Users\Juraj\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2016-06-03]
CHR Extension: (Viewport Resizer) - C:\Users\Juraj\AppData\Local\Google\Chrome\User Data\Default\Extensions\kapnjjcfcncngkadhpmijlkblpibdcgm [2016-04-24]
CHR Extension: (Viewport Dimensions) - C:\Users\Juraj\AppData\Local\Google\Chrome\User Data\Default\Extensions\kchdfagjljmhgapoonapmfngpadcjkhk [2016-04-24]
CHR Extension: (Kaspersky Protection) - C:\Users\Juraj\AppData\Local\Google\Chrome\User Data\Default\Extensions\lpeeaghdjmhlakojjcgfdhgcejdaefmi [2016-04-17]
CHR Extension: (Twitch Now) - C:\Users\Juraj\AppData\Local\Google\Chrome\User Data\Default\Extensions\nlmbdmpjmlijibeockamioakdpmhjnpk [2016-03-30]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Juraj\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-04-02]
CHR Extension: (Gmail) - C:\Users\Juraj\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-09-26]
CHR HKLM\...\Chrome\Extension: [lpeeaghdjmhlakojjcgfdhgcejdaefmi] - hxxps://chrome.google.com/webstore/detail/lpeeaghdjmhlakojjcgfdhgcejdaefmi
CHR HKLM-x32\...\Chrome\Extension: [lpeeaghdjmhlakojjcgfdhgcejdaefmi] - hxxps://chrome.google.com/webstore/detail/lpeeaghdjmhlakojjcgfdhgcejdaefmi

==================== Services (Whitelisted) ========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2021592 2016-04-05] (Adobe Systems, Incorporated)
R2 amdacpusrsvc; C:\Program Files\AMD\{920DEC42-4CA5-4d1d-9487-67BE645CDDFC}\amdacpusrsvc.exe [121856 2016-04-29] (Advanced Micro Devices) [File not signed]
R2 AVP16.0.1; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.1\avp.exe [236928 2015-12-22] (AO Kaspersky Lab)
S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [1314848 2016-01-19] ()
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [2911472 2016-05-15] (Microsoft Corporation)
R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [16232 2014-05-28] (Intel Corporation)
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [887232 2014-01-31] (Intel(R) Corporation)
R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [131544 2014-03-20] (Intel Corporation)
S3 iumsvc; C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe [178312 2015-09-25] (Intel Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [154584 2014-03-20] (Intel Corporation)
S3 klvssbrigde64; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.1\x64\vssbridge64.exe [152488 2015-12-22] (AO Kaspersky Lab)
R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [1514464 2016-03-10] (Malwarebytes)
R2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [1136608 2016-03-10] (Malwarebytes)
S3 NETGEARGenieDaemon; C:\Program Files (x86)\NETGEAR Genie\bin\NETGEARGenieDaemon64.exe [232192 2016-03-09] (NETGEAR)
S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2120712 2016-06-03] (Electronic Arts)
R2 PlaysService; C:\Program Files (x86)\Raptr Inc\PlaysTV\plays_service.exe [32528 2016-06-07] (Plays.tv, LLC)
R2 PnkBstrA; C:\WINDOWS\SysWOW64\PnkBstrA.exe [76888 2015-11-14] ()
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [364464 2015-10-30] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [24864 2015-10-30] (Microsoft Corporation)

===================== Drivers (Whitelisted) ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 amdacpksd; C:\WINDOWS\system32\drivers\amdacpksd.sys [296648 2016-04-29] (Advanced Micro Devices)
S0 amdkmafd; C:\Windows\System32\drivers\amdkmafd.sys [23240 2016-04-29] (Advanced Micro Devices, Inc.)
R3 AtiHDAudioService; C:\Windows\system32\drivers\AtihdWT6.sys [111120 2016-03-01] (Advanced Micro Devices)
R0 cm_km; C:\Windows\System32\DRIVERS\cm_km.sys [389816 2015-07-06] (Kaspersky Lab ZAO)
R3 e1dexpress; C:\Windows\system32\DRIVERS\e1d65x64.sys [541672 2015-11-24] (Intel Corporation)
S3 Hamachi; C:\Windows\system32\DRIVERS\Hamdrv.sys [45680 2015-11-12] (LogMeIn Inc.)
R0 kl1; C:\Windows\System32\DRIVERS\kl1.sys [478392 2015-09-11] (Kaspersky Lab ZAO)
R0 klbackupdisk; C:\Windows\System32\DRIVERS\klbackupdisk.sys [53432 2015-06-06] (Kaspersky Lab ZAO)
R1 klbackupflt; C:\Windows\System32\DRIVERS\klbackupflt.sys [79752 2015-12-01] (AO Kaspersky Lab)
R2 kldisk; C:\Windows\system32\DRIVERS\kldisk.sys [78200 2015-12-02] (AO Kaspersky Lab)
S0 klelam; C:\Windows\System32\DRIVERS\klelam.sys [30328 2015-06-24] (Kaspersky Lab)
R3 klflt; C:\Windows\system32\DRIVERS\klflt.sys [182664 2015-12-11] (AO Kaspersky Lab)
R1 klhk; C:\Windows\System32\drivers\klhk.sys [237488 2016-04-27] (AO Kaspersky Lab)
R3 klids; C:\ProgramData\Kaspersky Lab\AVP16.0.1\Bases\klids.sys [178872 2016-04-28] (AO Kaspersky Lab)
R1 KLIF; C:\Windows\System32\DRIVERS\klif.sys [987568 2016-04-27] (AO Kaspersky Lab)
R1 KLIM6; C:\Windows\system32\DRIVERS\klim6.sys [51288 2016-04-17] (AO Kaspersky Lab)
R3 klkbdflt; C:\Windows\system32\DRIVERS\klkbdflt.sys [52608 2015-11-11] (AO Kaspersky Lab)
R3 klmouflt; C:\Windows\system32\DRIVERS\klmouflt.sys [41656 2015-06-07] (Kaspersky Lab ZAO)
R1 klpd; C:\Windows\System32\DRIVERS\klpd.sys [45960 2015-12-07] (AO Kaspersky Lab)
R1 klwfp; C:\Windows\system32\DRIVERS\klwfp.sys [87944 2015-10-06] (Kaspersky Lab ZAO)
R1 Klwtp; C:\Windows\system32\DRIVERS\klwtp.sys [112520 2015-12-03] (AO Kaspersky Lab)
R1 kneps; C:\Windows\system32\DRIVERS\kneps.sys [194440 2015-12-03] (AO Kaspersky Lab)
R3 MBAMProtector; C:\WINDOWS\system32\drivers\mbam.sys [27008 2016-03-10] (Malwarebytes)
R3 MBAMSwissArmy; C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys [192216 2016-06-09] (Malwarebytes)
R3 MBAMWebAccessControl; C:\WINDOWS\system32\drivers\mwac.sys [65408 2016-03-10] (Malwarebytes Corporation)
R3 MEIx64; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [129312 2014-09-30] (Intel Corporation)
R2 NPF; C:\WINDOWS\system32\drivers\npf.sys [35344 2016-06-01] (CACE Technologies, Inc.)
R0 PxHlpa64; C:\Windows\System32\drivers\PxHlpa64.sys [56336 2013-09-03] (Corel Corporation)
R3 sshid; C:\Windows\System32\drivers\sshid.sys [51400 2016-01-28] (SteelSeries ApS)
S1 VBoxNetAdp; C:\Windows\system32\DRIVERS\VBoxNetAdp6.sys [117768 2016-01-19] (Oracle Corporation)
R0 vsock; C:\Windows\System32\drivers\vsock.sys [75512 2015-11-05] (VMware, Inc.)
S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [44568 2015-10-30] (Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [293216 2015-10-30] (Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [118112 2015-10-30] (Microsoft Corporation)
U4 klkbdflt2; \SystemRoot\system32\DRIVERS\klkbdflt2.sys [X]
S3 NAL; \??\C:\WINDOWS\system32\Drivers\iqvw64e.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2016-06-09 21:12 - 2016-06-09 21:12 - 00021030 _____ C:\Users\Juraj\Downloads\FRST.txt
2016-06-09 21:12 - 2016-06-09 21:12 - 00000000 ____D C:\FRST
2016-06-09 21:11 - 2016-06-09 21:11 - 02385408 _____ (Farbar) C:\Users\Juraj\Downloads\FRST64.exe
2016-06-09 21:10 - 2016-06-09 21:10 - 00123546 _____ C:\Users\Juraj\Documents\cc_20160609_211001.reg
2016-06-09 21:10 - 2016-06-09 21:10 - 00000984 _____ C:\Users\Juraj\Documents\cc_20160609_211011.reg
2016-06-09 17:13 - 2016-06-09 17:13 - 00192216 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\3D2758C5.sys
2016-06-08 17:23 - 2016-06-08 21:31 - 00192216 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\6BC8121A.sys
2016-06-07 18:04 - 2016-06-07 18:04 - 00192216 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\2353640C.sys
2016-06-07 17:15 - 2016-06-07 17:15 - 00274923 _____ C:\Users\Juraj\Downloads\beetle_pa_cabriolet_2_6_2016_a.pdf
2016-06-07 17:14 - 2016-06-07 17:14 - 00316220 _____ C:\Users\Juraj\Downloads\beetle_pa_2_6_2016_a.pdf
2016-06-06 17:56 - 2016-06-06 17:56 - 00192216 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\1B8D0F35.sys
2016-06-05 19:15 - 2016-06-05 19:15 - 00192216 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\69E37D83.sys
2016-06-04 19:21 - 2016-06-04 19:21 - 00192216 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\5BA933FC.sys
2016-06-03 23:58 - 2016-06-04 09:55 - 00000000 ____D C:\Users\Juraj\Documents\FIFA 16
2016-06-03 23:48 - 2016-06-03 23:48 - 00000663 _____ C:\Users\Public\Desktop\FIFA 16.lnk
2016-06-03 23:48 - 2016-06-03 23:48 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FIFA 16
2016-06-03 23:42 - 2016-06-03 23:42 - 00000000 ____D C:\Program Files (x86)\Origin Games
2016-06-03 19:56 - 2016-06-03 19:56 - 00000000 ____D C:\Users\Juraj\AppData\LocalLow\SKS
2016-06-03 19:55 - 2016-06-03 19:55 - 00000222 _____ C:\Users\Juraj\Desktop\The Forest.url
2016-06-01 21:58 - 2016-06-09 21:10 - 00192216 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys
2016-06-01 21:58 - 2016-06-01 21:58 - 00001171 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2016-06-01 21:58 - 2016-06-01 21:58 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2016-06-01 21:58 - 2016-06-01 21:58 - 00000000 ____D C:\ProgramData\Malwarebytes
2016-06-01 21:58 - 2016-06-01 21:58 - 00000000 ____D C:\Program Files (x86)\Malwarebytes Anti-Malware
2016-06-01 21:58 - 2016-03-10 14:09 - 00065408 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mwac.sys
2016-06-01 21:58 - 2016-03-10 14:08 - 00140672 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamchameleon.sys
2016-06-01 21:58 - 2016-03-10 14:08 - 00027008 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbam.sys
2016-06-01 21:57 - 2016-06-01 21:58 - 22851472 _____ (Malwarebytes ) C:\Users\Juraj\Downloads\mbam-setup-2.2.1.1043.exe
2016-06-01 15:53 - 2016-06-09 20:25 - 00000000 ____D C:\Users\Juraj\AppData\Local\NETGEARGenie
2016-06-01 15:53 - 2016-06-01 15:53 - 00369168 _____ (CACE Technologies, Inc.) C:\WINDOWS\system32\wpcap.dll
2016-06-01 15:53 - 2016-06-01 15:53 - 00281104 _____ (CACE Technologies, Inc.) C:\WINDOWS\SysWOW64\wpcap.dll
2016-06-01 15:53 - 2016-06-01 15:53 - 00106000 _____ (CACE Technologies, Inc.) C:\WINDOWS\system32\packet.dll
2016-06-01 15:53 - 2016-06-01 15:53 - 00096784 _____ (CACE Technologies, Inc.) C:\WINDOWS\SysWOW64\packet.dll
2016-06-01 15:53 - 2016-06-01 15:53 - 00035344 _____ (CACE Technologies, Inc.) C:\WINDOWS\system32\Drivers\npf.sys
2016-06-01 15:53 - 2016-06-01 15:53 - 00002135 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NETGEAR Genie.lnk
2016-06-01 15:53 - 2016-06-01 15:53 - 00002123 _____ C:\Users\Public\Desktop\NETGEAR Genie.lnk
2016-06-01 15:53 - 2016-06-01 15:53 - 00000000 ____D C:\Program Files (x86)\NETGEAR Genie
2016-06-01 15:50 - 2016-06-01 15:53 - 46059976 _____ (NETGEAR Inc.) C:\Users\Juraj\Downloads\NETGEARGenie-install.exe
2016-05-31 21:07 - 2016-05-31 21:07 - 00264694 _____ C:\Users\Juraj\Downloads\passat_gte_1_6_2016.pdf
2016-05-31 21:06 - 2016-05-31 21:06 - 00315100 _____ C:\Users\Juraj\Downloads\passat_1_6_2016.pdf
2016-05-30 20:37 - 2016-05-30 20:37 - 00148824 _____ C:\Users\Juraj\Downloads\UPC_05512529_FA_160505_1 (1).pdf
2016-05-30 19:47 - 2016-05-30 20:04 - 320346112 _____ C:\Users\Juraj\Downloads\The-Simpsons-S27E22-CZtit-V-OBRAZE.avi
2016-05-30 17:33 - 2016-05-30 17:33 - 00000752 _____ C:\Users\Juraj\Downloads\mailFilters.xml
2016-05-30 15:42 - 2016-05-30 15:46 - 00000000 ____D C:\AdwCleaner
2016-05-30 15:42 - 2016-05-30 15:42 - 03678272 _____ C:\Users\Juraj\Downloads\AdwCleaner.exe
2016-05-28 17:31 - 2016-05-28 17:31 - 00000000 ____D C:\rsit
2016-05-28 17:31 - 2016-05-28 17:31 - 00000000 ____D C:\Program Files\trend micro
2016-05-28 17:27 - 2016-05-28 17:30 - 01222144 _____ C:\Users\Juraj\Downloads\RSITx64.exe
2016-05-22 23:06 - 2016-05-22 23:06 - 00000000 ____D C:\Users\Juraj\AppData\LocalLow\uTorrent
2016-05-22 17:36 - 2016-05-22 17:36 - 00000000 ____D C:\Users\Juraj\Downloads\Taylor Swift Discography (2006-2014) {FLAC} vtwin88cube
2016-05-20 22:54 - 2016-05-20 22:54 - 00000222 _____ C:\Users\Juraj\Desktop\Space Engineers.url
2016-05-20 07:21 - 2016-05-20 07:21 - 00232386 _____ C:\Users\Juraj\Downloads\Ponuka RTVS.pdf
2016-05-20 07:21 - 2016-05-20 07:21 - 00232386 _____ C:\Users\Juraj\Downloads\Ponuka RTVS (1).pdf
2016-05-20 07:13 - 2016-05-20 07:13 - 00279132 _____ C:\Users\Juraj\Downloads\SK3565516051013450.pdf
2016-05-20 07:13 - 2016-05-20 07:13 - 00279132 _____ C:\Users\Juraj\Downloads\SK3565516051013450 (1).pdf
2016-05-20 07:12 - 2016-05-20 07:12 - 00000112 _____ C:\Users\Juraj\Downloads\34 dovolenky 04.16.xlsx
2016-05-15 19:43 - 2016-05-15 19:43 - 00002092 _____ C:\Users\Public\Desktop\Raptr.lnk
2016-05-15 19:43 - 2016-05-15 19:43 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Raptr
2016-05-15 19:43 - 2016-05-15 19:43 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Gaming Evolved
2016-05-15 19:42 - 2016-06-09 20:26 - 00000000 ____D C:\Users\Juraj\AppData\Roaming\PlaysTV
2016-05-15 19:41 - 2016-05-15 19:41 - 00192816 _____ C:\Users\Juraj\Downloads\raptr_installer (2).exe
2016-05-14 13:26 - 2016-05-14 13:26 - 00101049 _____ C:\Users\Juraj\Downloads\ulohy_6_7.zip
2016-05-14 13:22 - 2016-05-14 13:22 - 02124574 _____ C:\Users\Juraj\Downloads\vzhuru-do-css3-1-2.pdf
2016-05-14 13:21 - 2016-05-14 13:21 - 00052780 _____ C:\Users\Juraj\Downloads\1-2016-0193.pdf
2016-05-12 23:04 - 2016-05-12 23:07 - 436504579 _____ C:\Users\Juraj\Downloads\Best FemaleMale Vocals Future House Style 2016 Dance Music Mix 20.flac
2016-05-12 22:07 - 2016-05-12 22:10 - 00000000 ____D C:\Users\Juraj\AppData\Local\PokerStars.EU
2016-05-12 22:07 - 2016-05-12 22:07 - 00002045 _____ C:\Users\Juraj\Desktop\PokerStars.eu.lnk
2016-05-12 22:07 - 2016-05-12 22:07 - 00000000 ____D C:\Users\Juraj\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PokerStars.EU
2016-05-12 22:07 - 2016-05-12 22:07 - 00000000 ____D C:\Program Files (x86)\PokerStars.EU
2016-05-12 21:52 - 2016-05-12 22:07 - 86712560 _____ (PokerStars) C:\Users\Juraj\Downloads\PokerStarsInstallEU.exe
2016-05-12 06:30 - 2016-05-12 06:30 - 00087992 _____ C:\Users\Juraj\Downloads\OV2030806_objednávka (3).pdf
2016-05-12 06:30 - 2016-05-12 06:30 - 00087992 _____ C:\Users\Juraj\Downloads\OV2030806_objednávka (2).pdf
2016-05-12 06:29 - 2016-05-12 06:29 - 00087992 _____ C:\Users\Juraj\Downloads\OV2030806_objednávka.pdf
2016-05-12 06:29 - 2016-05-12 06:29 - 00087992 _____ C:\Users\Juraj\Downloads\OV2030806_objednávka (1).pdf
2016-05-12 06:28 - 2016-05-12 06:28 - 00094488 _____ C:\Users\Juraj\Downloads\OV2030805_objednávka.pdf
2016-05-12 06:28 - 2016-05-12 06:28 - 00094488 _____ C:\Users\Juraj\Downloads\OV2030805_objednávka (1).pdf
2016-05-12 06:26 - 2016-05-12 06:26 - 00114813 _____ C:\Users\Juraj\Downloads\OV2030805_CP.pdf
2016-05-11 22:37 - 2016-05-11 22:37 - 00000000 ____D C:\WINDOWS\SysWOW64\directx
2016-05-11 22:36 - 2016-05-11 22:36 - 00000000 ____D C:\Users\Juraj\Downloads\MSIAfterburnerSetup
2016-05-11 22:19 - 2016-05-11 22:19 - 38094793 _____ C:\Users\Juraj\Downloads\MSIAfterburnerSetup.zip
2016-05-11 19:06 - 2016-04-23 06:28 - 16984576 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2016-05-11 19:06 - 2016-04-23 06:26 - 00059904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MosStorage.dll
2016-05-11 19:06 - 2016-04-23 06:25 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapsBtSvc.dll
2016-05-11 19:06 - 2016-04-23 06:22 - 00460800 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapConfiguration.dll
2016-05-11 19:06 - 2016-04-23 06:19 - 01056256 _____ (Microsoft Corporation) C:\WINDOWS\system32\JpMapControl.dll
2016-05-11 19:06 - 2016-04-23 06:19 - 00853504 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsStore.dll
2016-05-11 19:06 - 2016-04-23 06:18 - 00349696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapConfiguration.dll
2016-05-11 19:06 - 2016-04-23 06:16 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\JpMapControl.dll
2016-05-11 19:06 - 2016-04-23 06:13 - 07200256 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingMaps.dll
2016-05-11 19:06 - 2016-04-23 06:09 - 02582016 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll
2016-05-11 19:06 - 2016-04-23 06:08 - 02061824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll
2016-05-11 19:06 - 2016-04-23 06:07 - 05205504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BingMaps.dll
2016-05-11 19:05 - 2016-05-06 06:53 - 00095072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdport.sys
2016-05-11 19:05 - 2016-05-06 06:05 - 00241664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptngc.dll
2016-05-11 19:05 - 2016-05-06 06:03 - 00649216 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcsvc.dll
2016-05-11 19:05 - 2016-05-06 05:53 - 00351232 _____ (Microsoft Corporation) C:\WINDOWS\system32\NgcCtnr.dll
2016-05-11 19:05 - 2016-05-06 05:49 - 00289792 _____ (Microsoft Corporation) C:\WINDOWS\system32\NgcCtnrSvc.dll
2016-05-11 19:05 - 2016-05-06 05:44 - 00582656 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngccredprov.dll
2016-05-11 19:05 - 2016-05-06 05:43 - 00320000 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptngc.dll
2016-05-11 19:05 - 2016-05-06 05:23 - 00076288 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcpopkeysrv.dll
2016-05-11 19:05 - 2016-04-30 08:42 - 01387520 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2016-05-11 19:05 - 2016-04-30 08:31 - 03591168 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2016-05-11 19:05 - 2016-04-23 08:12 - 01401024 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll
2016-05-11 19:05 - 2016-04-23 08:12 - 01184960 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll
2016-05-11 19:05 - 2016-04-23 08:12 - 00713920 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll
2016-05-11 19:05 - 2016-04-23 08:12 - 00514752 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll
2016-05-11 19:05 - 2016-04-23 08:12 - 00294592 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll
2016-05-11 19:05 - 2016-04-23 08:12 - 00190144 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCensus.exe
2016-05-11 19:05 - 2016-04-23 08:12 - 00092352 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll
2016-05-11 19:05 - 2016-04-23 08:12 - 00046784 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompatTelRunner.exe
2016-05-11 19:05 - 2016-04-23 07:28 - 01557768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2016-05-11 19:05 - 2016-04-23 07:28 - 01542816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
2016-05-11 19:05 - 2016-04-23 07:26 - 00707608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rpcrt4.dll
2016-05-11 19:05 - 2016-04-23 07:24 - 07474528 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2016-05-11 19:05 - 2016-04-23 07:24 - 01997328 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2016-05-11 19:05 - 2016-04-23 07:24 - 01819208 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2016-05-11 19:05 - 2016-04-23 07:24 - 00754664 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreMessaging.dll
2016-05-11 19:05 - 2016-04-23 07:24 - 00638816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fvevol.sys
2016-05-11 19:05 - 2016-04-23 07:24 - 00335712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fastfat.sys
2016-05-11 19:05 - 2016-04-23 07:24 - 00099680 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pdc.sys
2016-05-11 19:05 - 2016-04-23 07:22 - 01161120 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcrt4.dll
2016-05-11 19:05 - 2016-04-23 07:18 - 00026408 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
2016-05-11 19:05 - 2016-04-23 07:13 - 00502104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupEngine.dll
2016-05-11 19:05 - 2016-04-23 07:13 - 00306832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlanapi.dll
2016-05-11 19:05 - 2016-04-23 07:13 - 00084832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupApi.dll
2016-05-11 19:05 - 2016-04-23 07:12 - 00925064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfplat.dll
2016-05-11 19:05 - 2016-04-23 07:12 - 00451928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFCaptureEngine.dll
2016-05-11 19:05 - 2016-04-23 07:12 - 00413536 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifitask.exe
2016-05-11 19:05 - 2016-04-23 07:11 - 01092464 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll
2016-05-11 19:05 - 2016-04-23 07:11 - 00696672 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupEngine.dll
2016-05-11 19:05 - 2016-04-23 07:11 - 00498960 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFCaptureEngine.dll
2016-05-11 19:05 - 2016-04-23 07:11 - 00390496 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanapi.dll
2016-05-11 19:05 - 2016-04-23 07:11 - 00131424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ufxsynopsys.sys
2016-05-11 19:05 - 2016-04-23 07:11 - 00115040 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupApi.dll
2016-05-11 19:05 - 2016-04-23 07:10 - 03673424 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2016-05-11 19:05 - 2016-04-23 07:10 - 02919832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2016-05-11 19:05 - 2016-04-23 07:10 - 00330072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pci.sys
2016-05-11 19:05 - 2016-04-23 07:09 - 22561256 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2016-05-11 19:05 - 2016-04-23 07:09 - 21123320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2016-05-11 19:05 - 2016-04-23 07:09 - 05240960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
2016-05-11 19:05 - 2016-04-23 07:09 - 04074160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
2016-05-11 19:05 - 2016-04-23 07:09 - 00569744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SHCore.dll
2016-05-11 19:05 - 2016-04-23 07:09 - 00565600 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncHost.exe
2016-05-11 19:05 - 2016-04-23 07:09 - 00465760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncHost.exe
2016-05-11 19:05 - 2016-04-23 07:09 - 00303216 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppHost.exe
2016-05-11 19:05 - 2016-04-23 07:09 - 00255168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LockAppHost.exe
2016-05-11 19:05 - 2016-04-23 07:08 - 06605504 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2016-05-11 19:05 - 2016-04-23 07:08 - 04515256 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2016-05-11 19:05 - 2016-04-23 07:08 - 00725776 _____ (Microsoft Corporation) C:\WINDOWS\system32\SHCore.dll
2016-05-11 19:05 - 2016-04-23 07:07 - 01848072 _____ (Microsoft Corporation) C:\WINDOWS\system32\crypt32.dll
2016-05-11 19:05 - 2016-04-23 07:07 - 01536088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\crypt32.dll
2016-05-11 19:05 - 2016-04-23 07:07 - 00204048 _____ (Microsoft Corporation) C:\WINDOWS\system32\rsaenh.dll
2016-05-11 19:05 - 2016-04-23 07:07 - 00183904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rsaenh.dll
2016-05-11 19:05 - 2016-04-23 07:06 - 00291360 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininit.exe
2016-05-11 19:05 - 2016-04-23 07:02 - 00188256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxAllUserStore.dll
2016-05-11 19:05 - 2016-04-23 07:01 - 01996640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2016-05-11 19:05 - 2016-04-23 07:01 - 00650304 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll
2016-05-11 19:05 - 2016-04-23 07:01 - 00619296 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d10level9.dll
2016-05-11 19:05 - 2016-04-23 07:01 - 00577368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2016-05-11 19:05 - 2016-04-23 07:01 - 00522176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxgi.dll
2016-05-11 19:05 - 2016-04-23 07:01 - 00513368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d10level9.dll
2016-05-11 19:05 - 2016-04-23 07:01 - 00393568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2016-05-11 19:05 - 2016-04-23 07:01 - 00217440 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll
2016-05-11 19:05 - 2016-04-23 07:00 - 01776768 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecs.dll
2016-05-11 19:05 - 2016-04-23 07:00 - 01594920 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32.dll
2016-05-11 19:05 - 2016-04-23 07:00 - 01522152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WindowsCodecs.dll
2016-05-11 19:05 - 2016-04-23 07:00 - 01399224 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll
2016-05-11 19:05 - 2016-04-23 07:00 - 01372304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32.dll
2016-05-11 19:05 - 2016-04-23 07:00 - 01337240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll
2016-05-11 19:05 - 2016-04-23 07:00 - 00550656 _____ (Microsoft Corporation) C:\WINDOWS\system32\directmanipulation.dll
2016-05-11 19:05 - 2016-04-23 07:00 - 00453472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\directmanipulation.dll
2016-05-11 19:05 - 2016-04-23 07:00 - 00058208 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwminit.dll
2016-05-11 19:05 - 2016-04-23 06:56 - 00534872 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBHUB3.SYS
2016-05-11 19:05 - 2016-04-23 06:39 - 00089088 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsCSP.dll
2016-05-11 19:05 - 2016-04-23 06:35 - 00066560 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosHostClient.dll
2016-05-11 19:05 - 2016-04-23 06:34 - 00067072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbser.sys
2016-05-11 19:05 - 2016-04-23 06:34 - 00059392 _____ (Microsoft Corporation) C:\WINDOWS\system32\hmkd.dll
2016-05-11 19:05 - 2016-04-23 06:34 - 00048128 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups.dll
2016-05-11 19:05 - 2016-04-23 06:33 - 00089600 _____ (Microsoft Corporation) C:\WINDOWS\system32\NFCProvisioningPlugin.dll
2016-05-11 19:05 - 2016-04-23 06:33 - 00063488 _____ (Microsoft Corporation) C:\WINDOWS\system32\wshbth.dll
2016-05-11 19:05 - 2016-04-23 06:33 - 00063488 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\UcmCx.sys
2016-05-11 19:05 - 2016-04-23 06:33 - 00038400 _____ (Microsoft Corporation) C:\WINDOWS\system32\ByteCodeGenerator.exe
2016-05-11 19:05 - 2016-04-23 06:32 - 00134656 _____ (Microsoft Corporation) C:\WINDOWS\system32\wificonnapi.dll
2016-05-11 19:05 - 2016-04-23 06:32 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\EnterpriseDesktopAppMgmtCSP.dll
2016-05-11 19:05 - 2016-04-23 06:32 - 00028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\mapsupdatetask.dll
2016-05-11 19:05 - 2016-04-23 06:31 - 13018112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2016-05-11 19:05 - 2016-04-23 06:31 - 00074752 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosStorage.dll
2016-05-11 19:05 - 2016-04-23 06:30 - 22379008 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2016-05-11 19:05 - 2016-04-23 06:30 - 00120320 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsBtSvc.dll
2016-05-11 19:05 - 2016-04-23 06:30 - 00050176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MosHostClient.dll
2016-05-11 19:05 - 2016-04-23 06:29 - 00192000 _____ (Microsoft Corporation) C:\WINDOWS\system32\provisioningcsp.dll
2016-05-11 19:05 - 2016-04-23 06:29 - 00151040 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEStoreEventHandlers.dll
2016-05-11 19:05 - 2016-04-23 06:29 - 00087552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\filecrypt.sys
2016-05-11 19:05 - 2016-04-23 06:29 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAppInstaller.exe
2016-05-11 19:05 - 2016-04-23 06:29 - 00072704 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshost.dll
2016-05-11 19:05 - 2016-04-23 06:29 - 00047104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hmkd.dll
2016-05-11 19:05 - 2016-04-23 06:29 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ByteCodeGenerator.exe
2016-05-11 19:05 - 2016-04-23 06:29 - 00023552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wups.dll
2016-05-11 19:05 - 2016-04-23 06:28 - 00130560 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudDomainJoinDataModelServer.dll
2016-05-11 19:05 - 2016-04-23 06:28 - 00127488 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEDataLayerHelpers.dll
2016-05-11 19:05 - 2016-04-23 06:28 - 00104448 _____ (Microsoft Corporation) C:\WINDOWS\system32\BluetoothApis.dll
2016-05-11 19:05 - 2016-04-23 06:28 - 00086528 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppCapture.dll
2016-05-11 19:05 - 2016-04-23 06:28 - 00051712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wshbth.dll
2016-05-11 19:05 - 2016-04-23 06:27 - 00155136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidclass.sys
2016-05-11 19:05 - 2016-04-23 06:27 - 00039424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wfdprov.dll
2016-05-11 19:05 - 2016-04-23 06:26 - 00269824 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshostcore.dll
2016-05-11 19:05 - 2016-04-23 06:26 - 00086528 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpdbusenum.dll
2016-05-11 19:05 - 2016-04-23 06:25 - 00630784 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneProviders.dll
2016-05-11 19:05 - 2016-04-23 06:25 - 00617984 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll
2016-05-11 19:05 - 2016-04-23 06:25 - 00210432 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmcsp.dll
2016-05-11 19:05 - 2016-04-23 06:25 - 00207360 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupSvc.dll
2016-05-11 19:05 - 2016-04-23 06:24 - 00764928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll
2016-05-11 19:05 - 2016-04-23 06:24 - 00689152 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieproxy.dll
2016-05-11 19:05 - 2016-04-23 06:24 - 00292864 _____ (Microsoft Corporation) C:\WINDOWS\system32\provengine.dll
2016-05-11 19:05 - 2016-04-23 06:24 - 00287232 _____ (Microsoft Corporation) C:\WINDOWS\system32\provhandlers.dll
2016-05-11 19:05 - 2016-04-23 06:24 - 00181248 _____ (Microsoft Corporation) C:\WINDOWS\system32\shacct.dll
2016-05-11 19:05 - 2016-04-23 06:24 - 00166400 _____ (Microsoft Corporation) C:\WINDOWS\system32\SubscriptionMgr.dll
2016-05-11 19:05 - 2016-04-23 06:24 - 00084480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VEDataLayerHelpers.dll
2016-05-11 19:05 - 2016-04-23 06:23 - 11545088 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2016-05-11 19:05 - 2016-04-23 06:23 - 00414720 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvr.exe
2016-05-11 19:05 - 2016-04-23 06:23 - 00279040 _____ (Microsoft Corporation) C:\WINDOWS\system32\ListSvc.dll
2016-05-11 19:05 - 2016-04-23 06:23 - 00179712 _____ (Microsoft Corporation) C:\WINDOWS\system32\BrowserSettingSync.dll
2016-05-11 19:05 - 2016-04-23 06:23 - 00080896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BluetoothApis.dll
2016-05-11 19:05 - 2016-04-23 06:22 - 09918976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2016-05-11 19:05 - 2016-04-23 06:22 - 00285696 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEEventDispatcher.dll
2016-05-11 19:05 - 2016-04-23 06:21 - 00479232 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll
2016-05-11 19:05 - 2016-04-23 06:21 - 00314880 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXTaskFactory.dll
2016-05-11 19:05 - 2016-04-23 06:20 - 19344384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2016-05-11 19:05 - 2016-04-23 06:20 - 18676224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2016-05-11 19:05 - 2016-04-23 06:20 - 00606720 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll
2016-05-11 19:05 - 2016-04-23 06:20 - 00497152 _____ (Microsoft Corporation) C:\WINDOWS\system32\tileobjserver.dll
2016-05-11 19:05 - 2016-04-23 06:20 - 00484352 _____ (Microsoft Corporation) C:\WINDOWS\system32\DataSenseHandlers.dll
2016-05-11 19:05 - 2016-04-23 06:20 - 00356864 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActivationManager.dll
2016-05-11 19:05 - 2016-04-23 06:20 - 00307200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieproxy.dll
2016-05-11 19:05 - 2016-04-23 06:20 - 00137728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shacct.dll
2016-05-11 19:05 - 2016-04-23 06:19 - 07977472 _____ (Microsoft Corporation) C:\WINDOWS\system32\mos.dll
2016-05-11 19:05 - 2016-04-23 06:19 - 00970752 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2016-05-11 19:05 - 2016-04-23 06:19 - 00440320 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredProvDataModel.dll
2016-05-11 19:05 - 2016-04-23 06:19 - 00395264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlansec.dll
2016-05-11 19:05 - 2016-04-23 06:19 - 00140800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BrowserSettingSync.dll
2016-05-11 19:05 - 2016-04-23 06:18 - 24604672 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2016-05-11 19:05 - 2016-04-23 06:18 - 00988672 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedStartModel.dll
2016-05-11 19:05 - 2016-04-23 06:18 - 00988160 _____ (Microsoft Corporation) C:\WINDOWS\system32\NMAA.dll
2016-05-11 19:05 - 2016-04-23 06:18 - 00939520 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapControlCore.dll
2016-05-11 19:05 - 2016-04-23 06:18 - 00870400 _____ (Microsoft Corporation) C:\WINDOWS\system32\modernexecserver.dll
2016-05-11 19:05 - 2016-04-23 06:18 - 00804352 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2016-05-11 19:05 - 2016-04-23 06:18 - 00605184 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2016-05-11 19:05 - 2016-04-23 06:18 - 00585728 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe
2016-05-11 19:05 - 2016-04-23 06:18 - 00515072 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneDriveSettingSyncProvider.dll
2016-05-11 19:05 - 2016-04-23 06:18 - 00471552 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupShim.dll
2016-05-11 19:05 - 2016-04-23 06:18 - 00436736 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll
2016-05-11 19:05 - 2016-04-23 06:18 - 00219648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VEEventDispatcher.dll
2016-05-11 19:05 - 2016-04-23 06:17 - 01213440 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll
2016-05-11 19:05 - 2016-04-23 06:17 - 00529920 _____ (Microsoft Corporation) C:\WINDOWS\system32\LogonController.dll
2016-05-11 19:05 - 2016-04-23 06:17 - 00388608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\schannel.dll
2016-05-11 19:05 - 2016-04-23 06:17 - 00337920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlanmsm.dll
2016-05-11 19:05 - 2016-04-23 06:16 - 01319424 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifinetworkmanager.dll
2016-05-11 19:05 - 2016-04-23 06:16 - 00848896 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll
2016-05-11 19:05 - 2016-04-23 06:15 - 01073152 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXService.dll
2016-05-11 19:05 - 2016-04-23 06:15 - 00865792 _____ (Microsoft Corporation) C:\WINDOWS\system32\AzureSettingSyncProvider.dll
2016-05-11 19:05 - 2016-04-23 06:15 - 00792064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll
2016-05-11 19:05 - 2016-04-23 06:15 - 00784896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NMAA.dll
2016-05-11 19:05 - 2016-04-23 06:15 - 00673280 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.dll
2016-05-11 19:05 - 2016-04-23 06:15 - 00400896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OneDriveSettingSyncProvider.dll
2016-05-11 19:05 - 2016-04-23 06:15 - 00348672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CredProvDataModel.dll
2016-05-11 19:05 - 2016-04-23 06:14 - 13383168 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2016-05-11 19:05 - 2016-04-23 06:14 - 00870912 _____ (Microsoft Corporation) C:\WINDOWS\system32\MPSSVC.dll
2016-05-11 19:05 - 2016-04-23 06:14 - 00821760 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBroker.dll
2016-05-11 19:05 - 2016-04-23 06:14 - 00711680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapControlCore.dll
2016-05-11 19:05 - 2016-04-23 06:14 - 00647680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
2016-05-11 19:05 - 2016-04-23 06:14 - 00503296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2016-05-11 19:05 - 2016-04-23 06:14 - 00354304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupShim.dll
2016-05-11 19:05 - 2016-04-23 06:14 - 00342528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll
2016-05-11 19:05 - 2016-04-23 06:13 - 06295552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mos.dll
2016-05-11 19:05 - 2016-04-23 06:13 - 00705536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll
2016-05-11 19:05 - 2016-04-23 06:13 - 00489984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.dll
2016-05-11 19:05 - 2016-04-23 06:13 - 00434688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LogonController.dll
2016-05-11 19:05 - 2016-04-23 06:12 - 00667648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AzureSettingSyncProvider.dll
2016-05-11 19:05 - 2016-04-23 06:10 - 12125696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2016-05-11 19:05 - 2016-04-23 06:10 - 00639488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TokenBroker.dll
2016-05-11 19:05 - 2016-04-23 06:09 - 03666432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2016-05-11 19:05 - 2016-04-23 06:08 - 05324288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll
2016-05-11 19:05 - 2016-04-23 06:07 - 02598912 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkMobileSettings.dll
2016-05-11 19:05 - 2016-04-23 06:07 - 01500160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2016-05-11 19:05 - 2016-04-23 06:07 - 00848896 _____ (Microsoft Corporation) C:\WINDOWS\system32\samsrv.dll
2016-05-11 19:05 - 2016-04-23 06:06 - 06974464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll
2016-05-11 19:05 - 2016-04-23 06:05 - 05502976 _____ (Microsoft Corporation) C:\WINDOWS\system32\d2d1.dll
2016-05-11 19:05 - 2016-04-23 06:05 - 02166784 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2016-05-11 19:05 - 2016-04-23 06:05 - 02066432 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2016-05-11 19:05 - 2016-04-23 06:05 - 01946112 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2016-05-11 19:05 - 2016-04-23 06:05 - 01626624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll
2016-05-11 19:05 - 2016-04-23 06:05 - 00613376 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSync.dll
2016-05-11 19:05 - 2016-04-23 06:05 - 00111616 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatepolicy.dll
2016-05-11 19:05 - 2016-04-23 06:05 - 00103936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\updatepolicy.dll
2016-05-11 19:05 - 2016-04-23 06:04 - 04759040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d2d1.dll
2016-05-11 19:05 - 2016-04-23 06:04 - 01731072 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2016-05-11 19:05 - 2016-04-23 06:03 - 05660160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2016-05-11 19:05 - 2016-04-23 06:03 - 04894208 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2016-05-11 19:05 - 2016-04-23 06:03 - 02280960 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2016-05-11 19:05 - 2016-04-23 06:03 - 02193408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\actxprxy.dll
2016-05-11 19:05 - 2016-04-23 06:03 - 02000896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.appcore.dll
2016-05-11 19:05 - 2016-04-23 06:03 - 00754176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncCore.dll
2016-05-11 19:05 - 2016-04-23 06:03 - 00503296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSync.dll
2016-05-11 19:05 - 2016-04-23 06:02 - 07832576 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2016-05-11 19:05 - 2016-04-23 06:02 - 02444288 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll
2016-05-11 19:05 - 2016-04-23 06:01 - 04775424 _____ (Microsoft Corporation) C:\WINDOWS\system32\actxprxy.dll
2016-05-11 19:05 - 2016-04-23 06:00 - 01390080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Shell.dll
2016-05-11 19:05 - 2016-04-23 06:00 - 00984576 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncCore.dll
2016-05-11 19:05 - 2016-04-23 05:45 - 00461824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CoreMessaging.dll
2016-05-11 19:05 - 2016-04-23 04:10 - 00215040 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepic.dll
2016-05-11 19:05 - 2016-04-23 04:10 - 00002186 _____ C:\WINDOWS\system32\AppxProvisioning.xml
2016-05-11 19:05 - 2016-04-19 00:30 - 00002186 _____ C:\WINDOWS\SysWOW64\AppxProvisioning.xml
2016-05-11 15:27 - 2016-05-11 15:27 - 00071001 _____ C:\Users\Juraj\Downloads\10688_VyplatnaPaska_201603.pdf
2016-05-11 15:27 - 2016-05-11 15:27 - 00070917 _____ C:\Users\Juraj\Downloads\10688_VyplatnaPaska_201602.pdf
2016-05-11 15:26 - 2016-05-11 15:26 - 00070459 _____ C:\Users\Juraj\Downloads\10688_VyplatnaPaska_201604.pdf
2016-05-11 08:43 - 2016-05-11 08:43 - 00262778 _____ C:\Users\Juraj\Downloads\SK3565516042911481 (2).pdf
2016-05-11 08:43 - 2016-05-11 08:43 - 00030304 _____ C:\Users\Juraj\Downloads\0136 - Ši%28okná ID 8000a110E%29 TN (1).pdf
2016-05-11 08:39 - 2016-05-11 08:39 - 00286708 _____ C:\Users\Juraj\Downloads\opravena fa siko (1).PDF
2016-05-11 08:25 - 2016-05-11 08:25 - 00003525 _____ C:\Users\Juraj\Downloads\Časť priloženej správy (3)
2016-05-11 08:25 - 2016-05-11 08:25 - 00003525 _____ C:\Users\Juraj\Downloads\Časť priloženej správy (2)
2016-05-11 08:24 - 2016-05-11 08:24 - 00003525 _____ C:\Users\Juraj\Downloads\Časť priloženej správy (1)
2016-05-11 08:24 - 2016-05-11 08:24 - 00003525 _____ C:\Users\Juraj\Downloads\Časť priloženej správy
2016-05-11 08:22 - 2016-05-11 08:22 - 00085116 _____ C:\Users\Juraj\Downloads\OV2029799_201603151506086928.pdf
2016-05-11 08:21 - 2016-05-11 08:21 - 00218169 _____ C:\Users\Juraj\Downloads\Untitled %28002%29.pdf
2016-05-11 08:20 - 2016-05-11 08:20 - 08459829 _____ C:\Users\Juraj\Downloads\VID-20150925-WA0001.mp4
2016-05-11 08:18 - 2016-05-11 08:18 - 00237840 _____ C:\Users\Juraj\Downloads\SK3565516041113490.pdf
2016-05-10 14:53 - 2016-05-10 14:53 - 06895442 _____ C:\Users\Juraj\Downloads\Ja uz na hriby nechodim1 (1).wmv
2016-05-10 14:46 - 2016-05-10 14:46 - 01625526 _____ C:\Users\Juraj\Downloads\Přístroj do každé české rodiny.mp4
2016-05-10 14:42 - 2016-05-10 14:42 - 00819546 _____ C:\Users\Juraj\Downloads\Chata pod Matterhornem.pdf
2016-05-10 14:39 - 2016-05-10 14:39 - 02857620 _____ C:\Users\Juraj\Downloads\Psí příběh1.mp4
2016-05-10 14:36 - 2016-05-10 14:36 - 07047680 _____ C:\Users\Juraj\Downloads\Synfonia v bielom.pps
2016-05-10 13:55 - 2016-05-10 13:55 - 06895442 _____ C:\Users\Juraj\Downloads\Ja uz na hriby nechodim1.wmv
2016-05-10 13:29 - 2016-05-10 13:29 - 00148824 _____ C:\Users\Juraj\Downloads\UPC_05512529_FA_160505_1.pdf
2016-05-10 06:57 - 2016-05-10 06:57 - 01924972 _____ C:\Users\Juraj\Downloads\SCX-4600_20140219_11295604 (1).pdf
2016-05-10 06:56 - 2016-05-10 06:56 - 01924972 _____ C:\Users\Juraj\Downloads\SCX-4600_20140219_11295604.pdf
2016-05-10 06:54 - 2016-05-10 06:54 - 00196274 _____ C:\Users\Juraj\Downloads\Sa-kopirka16032411410.pdf
2016-05-10 06:49 - 2016-05-10 06:49 - 00909751 _____ C:\Users\Juraj\Downloads\SK2910216050515550.pdf

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2016-06-09 21:09 - 2016-05-09 19:05 - 00000000 ____D C:\Users\Juraj\AppData\Roaming\MPC-HC
2016-06-09 21:09 - 2015-12-23 21:15 - 00000000 ____D C:\WINDOWS\Minidump
2016-06-09 21:09 - 2015-12-21 16:28 - 00000000 ____D C:\Users\Juraj\AppData\Local\CrashDumps
2016-06-09 21:09 - 2015-11-25 18:45 - 00000000 ____D C:\Users\Juraj\AppData\Roaming\TS3Client
2016-06-09 21:09 - 2015-10-30 09:21 - 00000000 ____D C:\WINDOWS\INF
2016-06-09 21:09 - 2015-09-26 01:24 - 00000000 ____D C:\Program Files (x86)\Steam
2016-06-09 21:09 - 2015-09-26 00:25 - 00000000 ____D C:\Users\Juraj\AppData\Roaming\uTorrent
2016-06-09 20:35 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\NDF
2016-06-09 20:33 - 2016-04-17 12:26 - 00000000 ____D C:\ProgramData\Kaspersky Lab
2016-06-09 20:33 - 2016-01-16 15:00 - 00000954 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2016-06-09 20:32 - 2015-10-12 19:38 - 00965884 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2016-06-09 20:32 - 2015-09-27 11:21 - 00075534 _____ C:\WINDOWS\system32\perfh01B.dat
2016-06-09 20:32 - 2015-09-27 11:21 - 00021046 _____ C:\WINDOWS\system32\perfc01B.dat
2016-06-09 20:27 - 2016-05-09 18:14 - 00000000 ____D C:\Users\Juraj\AppData\Roaming\Raptr
2016-06-09 20:26 - 2016-04-26 19:10 - 00000000 ____D C:\ProgramData\VMware
2016-06-09 20:26 - 2015-12-19 11:10 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2016-06-09 20:26 - 2015-12-19 11:06 - 00065536 _____ C:\WINDOWS\system32\spu_storage.bin
2016-06-09 20:26 - 2015-10-30 08:28 - 00524288 ___SH C:\WINDOWS\system32\config\BBI
2016-06-09 20:26 - 2015-09-29 17:35 - 00000000 ____D C:\ProgramData\Origin
2016-06-09 20:17 - 2016-01-16 15:00 - 00000958 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2016-06-09 15:26 - 2016-01-16 15:01 - 00002284 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2016-06-09 15:25 - 2015-10-30 09:24 - 00000000 ___HD C:\Program Files\WindowsApps
2016-06-09 15:25 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\AppReadiness
2016-06-09 15:19 - 2015-09-25 23:43 - 00004192 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{13E89A97-F891-4907-93D6-DA6CDF445105}
2016-06-07 17:04 - 2016-04-26 19:12 - 00000000 ____D C:\Users\Juraj\AppData\Roaming\VMware
2016-06-06 22:43 - 2015-12-19 11:07 - 00000000 ____D C:\Users\Juraj
2016-06-05 20:01 - 2015-10-12 19:31 - 00000000 ____D C:\ProgramData\Package Cache
2016-06-05 17:55 - 2016-05-08 14:30 - 00000000 ____D C:\Users\Juraj\AppData\Roaming\OBS
2016-06-03 23:58 - 2015-09-29 17:35 - 00000000 ____D C:\ProgramData\Electronic Arts
2016-06-03 23:40 - 2015-09-29 17:35 - 00000000 ____D C:\Program Files (x86)\Origin
2016-06-03 18:20 - 2015-10-27 00:06 - 00002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2016-06-01 15:54 - 2015-10-20 19:51 - 00000000 ____D C:\Users\Juraj\AppData\Local\ElevatedDiagnostics
2016-05-31 15:19 - 2015-11-08 19:45 - 00000000 ____D C:\Users\Juraj\AppData\Roaming\SpinTires
2016-05-31 15:14 - 2015-11-08 19:39 - 00000222 _____ C:\Users\Juraj\Desktop\Spintires.url
2016-05-30 18:20 - 2016-04-16 10:12 - 00000000 ____D C:\Users\Juraj\AppData\Roaming\Victor Vran
2016-05-30 15:42 - 2016-04-26 19:09 - 00000000 ____D C:\Users\Juraj\AppData\Roaming\Andy
2016-05-29 16:04 - 2016-05-09 22:06 - 00000000 ____D C:\Users\Juraj\AppData\Local\Sony
2016-05-29 13:56 - 2015-11-20 21:37 - 00000000 ____D C:\Users\Juraj\AppData\Roaming\SpaceEngineers
2016-05-28 10:11 - 2015-10-30 09:24 - 00000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2016-05-28 10:10 - 2015-09-27 10:59 - 00000000 ____D C:\Program Files (x86)\Microsoft Office
2016-05-25 14:40 - 2016-04-27 06:52 - 00000000 ____D C:\ProgramData\AMD
2016-05-25 14:40 - 2015-12-19 11:06 - 00000000 ____D C:\Program Files\AMD
2016-05-25 14:40 - 2015-12-06 20:42 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Settings
2016-05-21 23:19 - 2016-02-20 12:36 - 00000000 ____D C:\Users\Juraj\Documents\OpenTTD
2016-05-20 07:43 - 2015-09-25 23:29 - 00000000 ____D C:\Users\Juraj\AppData\Local\Packages
2016-05-15 19:40 - 2015-11-13 16:12 - 00003108 _____ C:\WINDOWS\System32\Tasks\RTSS
2016-05-15 19:40 - 2015-10-25 03:22 - 00000000 ____D C:\Program Files (x86)\RivaTuner Statistics Server
2016-05-15 19:40 - 2015-10-25 03:12 - 00000000 ____D C:\Program Files (x86)\MSI Afterburner
2016-05-15 19:39 - 2015-11-13 16:12 - 00003124 _____ C:\WINDOWS\System32\Tasks\MSIAfterburner
2016-05-13 20:03 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\rescache
2016-05-13 20:00 - 2015-10-30 09:11 - 00000000 ____D C:\WINDOWS\CbsTemp
2016-05-12 20:21 - 2015-10-27 00:06 - 00003972 _____ C:\WINDOWS\System32\Tasks\Adobe Acrobat Update Task
2016-05-12 06:07 - 2015-09-10 07:44 - 00000000 __RHD C:\Users\Public\AccountPictures
2016-05-11 23:07 - 2015-10-30 20:02 - 00000000 ____D C:\Program Files\Windows Journal
2016-05-11 23:07 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\oobe
2016-05-11 23:07 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\appraiser
2016-05-11 23:07 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\Provisioning
2016-05-11 23:07 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\bcastdvr
2016-05-11 23:06 - 2015-10-30 09:24 - 00015703 _____ C:\WINDOWS\system32\OEMDefaultAssociations.xml
2016-05-11 21:57 - 2015-10-30 09:26 - 00829944 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2016-05-11 21:57 - 2015-10-30 09:26 - 00176632 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2016-05-11 19:23 - 2015-09-28 15:55 - 00000000 ____D C:\WINDOWS\system32\MRT
2016-05-11 19:18 - 2015-09-28 15:55 - 139319312 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2016-05-11 08:12 - 2016-01-16 15:00 - 00004016 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA
2016-05-11 08:12 - 2016-01-16 15:00 - 00003784 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore

==================== Files in the root of some directories =======

2015-11-22 17:59 - 2015-11-22 17:59 - 0003461 _____ () C:\Users\Juraj\AppData\Local\recently-used.xbel
2015-12-19 11:06 - 2015-12-19 11:06 - 0000000 ____H () C:\ProgramData\DP45977C.lfl

==================== Bamital & volsnap =================

(There is no automatic fix for files that do not pass verification.)

C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\wininit.exe => File is digitally signed
C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\SysWOW64\explorer.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\SysWOW64\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\SysWOW64\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\SysWOW64\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
C:\WINDOWS\SysWOW64\dnsapi.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2016-06-01 16:12

==================== End of FRST.txt ============================

Re: Preventivna kontrola

Napsal: 10 čer 2016 11:05
od altrok
:arrow: MBAM odinstalujte.


  • Do Poznamkoveho bloku (Start -> spustit -> notepad) zkopirujte obsah bileho pole
  • ulozte na plochu jako fixlist (Typ souboru: Textovy dokument)
  • znovu spustte FRST a kliknete na Fix
  • po restartu bude na plose ulozen fixlog, jehoz obsah vlozte do pristi odpovedi

    Kód: Vybrat vše

    Start
    CreateRestorePoint:
    CloseProcesses:
    HKU\S-1-5-21-711820806-2850004305-1715212440-1001\...\Run: [Akamai NetSession Interface] => C:\Users\Juraj\AppData\Local\Akamai\netsession_win.exe [4691384 2015-09-10] (Akamai Technologies, Inc.)
    HKU\S-1-5-21-711820806-2850004305-1715212440-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Run: [Akamai NetSession Interface] => C:\Users\Juraj\AppData\Local\Akamai\netsession_win.exe [4691384 2015-09-10] (Akamai Technologies, Inc.)
    U4 klkbdflt2; \SystemRoot\system32\DRIVERS\klkbdflt2.sys [X]
    S3 NAL; \??\C:\WINDOWS\system32\Drivers\iqvw64e.sys [X]
    2016-05-30 15:42 - 2016-05-30 15:46 - 00000000 ____D C:\AdwCleaner
    2016-05-30 15:42 - 2016-05-30 15:42 - 03678272 _____ C:\Users\Juraj\Downloads\AdwCleaner.exe
    2016-05-28 17:31 - 2016-05-28 17:31 - 00000000 ____D C:\rsit
    2016-05-28 17:31 - 2016-05-28 17:31 - 00000000 ____D C:\Program Files\trend micro
    2016-05-28 17:27 - 2016-05-28 17:30 - 01222144 _____ C:\Users\Juraj\Downloads\RSITx64.exe
    Hosts:
    EmptyTemp:
    End

Re: Preventivna kontrola

Napsal: 10 čer 2016 15:39
od hladac
Fix result of Farbar Recovery Scan Tool (x64) Version:09-06-2016
Ran by Juraj (2016-06-10 16:34:25) Run:1
Running from C:\Users\Juraj\Desktop
Loaded Profiles: Juraj (Available Profiles: Juraj)
Boot Mode: Normal
==============================================

fixlist content:
*****************
Start
CreateRestorePoint:
CloseProcesses:
HKU\S-1-5-21-711820806-2850004305-1715212440-1001\...\Run: [Akamai NetSession Interface] => C:\Users\Juraj\AppData\Local\Akamai\netsession_win.exe [4691384 2015-09-10] (Akamai Technologies, Inc.)
HKU\S-1-5-21-711820806-2850004305-1715212440-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Run: [Akamai NetSession Interface] => C:\Users\Juraj\AppData\Local\Akamai\netsession_win.exe [4691384 2015-09-10] (Akamai Technologies, Inc.)
U4 klkbdflt2; \SystemRoot\system32\DRIVERS\klkbdflt2.sys [X]
S3 NAL; \??\C:\WINDOWS\system32\Drivers\iqvw64e.sys [X]
2016-05-30 15:42 - 2016-05-30 15:46 - 00000000 ____D C:\AdwCleaner
2016-05-30 15:42 - 2016-05-30 15:42 - 03678272 _____ C:\Users\Juraj\Downloads\AdwCleaner.exe
2016-05-28 17:31 - 2016-05-28 17:31 - 00000000 ____D C:\rsit
2016-05-28 17:31 - 2016-05-28 17:31 - 00000000 ____D C:\Program Files\trend micro
2016-05-28 17:27 - 2016-05-28 17:30 - 01222144 _____ C:\Users\Juraj\Downloads\RSITx64.exe
Hosts:
EmptyTemp:
End
*****************

Restore point was successfully created.
Processes closed successfully.
HKU\S-1-5-21-711820806-2850004305-1715212440-1001\Software\Microsoft\Windows\CurrentVersion\Run\\Akamai NetSession Interface => value removed successfully
HKU\S-1-5-21-711820806-2850004305-1715212440-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Software\Microsoft\Windows\CurrentVersion\Run\\Akamai NetSession Interface => value not found.
klkbdflt2 => service could not remove
NAL => service removed successfully
C:\AdwCleaner => moved successfully
C:\Users\Juraj\Downloads\AdwCleaner.exe => moved successfully
C:\rsit => moved successfully
C:\Program Files\trend micro => moved successfully
C:\Users\Juraj\Downloads\RSITx64.exe => moved successfully
"C:\Windows\System32\Drivers\etc\hosts" => Could not move.
Could not restore Hosts.
EmptyTemp: => 619.1 MB temporary data Removed.


The system needed a reboot.

==== End of Fixlog 16:34:36 ====

Re: Preventivna kontrola

Napsal: 10 čer 2016 15:42
od altrok
Takze jeste uklidime.
A pokud nejsou dotazy ci jine problemy, je to ode mne vse.

Re: Preventivna kontrola

Napsal: 10 čer 2016 15:53
od hladac
Vsetko je v poriadku, aj nefunkcny facebook uz ide :D Dakujem velmi pekne za pomoc

Re: Preventivna kontrola

Napsal: 10 čer 2016 16:04
od altrok
Nemate zac, rad jsem pomohl :worship:


Mejte se krasne a treba zase nekdy :bye: