Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 26-06-2016 02
Ran by Home (administrator) on HOME (27-06-2016 10:39:47)
Running from C:\Users\Home\Desktop
Loaded Profiles: Home (Available Profiles: Home)
Platform: Microsoft Windows 10 Pro Version 1511 (X86) Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: Opera)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool:
http://www.geekstogo.com/forum/topic/33 ... scan-tool/==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(QIHU 360 SOFTWARE CO. LIMITED) C:\Program Files\360\Total Security\safemon\QHActiveDefense.exe
(SecureMix LLC) C:\Program Files\GlassWire\GWCtlSrv.exe
() C:\Program Files\Intel Driver Update Utility\SUR\SurSvc.exe
(QIHU 360 SOFTWARE CO. LIMITED) C:\Program Files\360\Total Security\safemon\QHWatchdog.exe
() C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\esrv_svc.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Vimicro) C:\Program Files\USB Camera\VM331STI.EXE
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Oracle Corporation) C:\Program Files\Common Files\Java\Java Update\jusched.exe
(SecureMix LLC) C:\Program Files\GlassWire\GWIdlMon.exe
(Microsoft Corporation) C:\Windows\System32\NetworkUXBroker.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
==================== Registry (Whitelisted) ===========================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [331BigDog] => C:\Program Files\USB Camera\VM331STI.EXE [571928 2015-09-03] (Vimicro)
HKLM\...\Run: [QHSafeTray] => C:\Program Files\360\Total Security\safemon\360Tray.exe [345000 2016-06-21] (QIHU 360 SOFTWARE CO. LIMITED)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [3531952 2016-01-07] (Synaptics Incorporated)
HKLM\...\Run: [SunJavaUpdateSched] => C:\Program Files\Common Files\Java\Java Update\jusched.exe [595992 2016-05-20] (Oracle Corporation)
HKU\S-1-5-21-2126595664-2476610434-670128951-1001\...\Run: [GlassWire] => C:\Program Files\GlassWire\glasswire.exe [5513216 2016-05-11] (SecureMix LLC)
HKU\S-1-5-21-2126595664-2476610434-670128951-1001\...\Run: [GarminExpressTrayApp] => C:\Program Files\Garmin\Express Tray\ExpressTray.exe [1400232 2016-05-25] (Garmin Ltd. or its subsidiaries)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{45bf815e-f173-4829-8576-5f855f9ded52}: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{52542723-eeab-4b1a-8295-f3d84b48e0ae}: [DhcpNameServer] 192.168.1.1
Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
hxxp://www.google.comSearchScopes: HKLM -> DefaultScope {59E9C8B1-74FD-4CB6-A815-9E96102F97BD} URL =
hxxp://www.google.com/search?hl={language}&q={searchTerms}
SearchScopes: HKLM -> {59E9C8B1-74FD-4CB6-A815-9E96102F97BD} URL =
hxxp://www.google.com/search?hl={language}&q={searchTerms}
SearchScopes: HKU\S-1-5-21-2126595664-2476610434-670128951-1001 -> DefaultScope {59E9C8B1-74FD-4CB6-A815-9E96102F97BD} URL =
hxxp://www.google.com/search?hl={language}&q={searchTerms}
SearchScopes: HKU\S-1-5-21-2126595664-2476610434-670128951-1001 -> {012E1000-F331-11DB-8314-0800200C9A66} URL =
hxxp://www.google.com/search?q={searchTerms}
SearchScopes: HKU\S-1-5-21-2126595664-2476610434-670128951-1001 -> {59E9C8B1-74FD-4CB6-A815-9E96102F97BD} URL =
hxxp://www.google.com/search?hl={language}&q={searchTerms}
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_91\bin\ssv.dll [2016-06-25] (Oracle Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_91\bin\jp2ssv.dll [2016-06-25] (Oracle Corporation)
FireFox:
========
FF Plugin: @java.com/DTPlugin,version=11.91.2 -> C:\Program Files\Java\jre1.8.0_91\bin\dtplugin\npDeployJava1.dll [2016-06-25] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.91.2 -> C:\Program Files\Java\jre1.8.0_91\bin\plugin2\npjp2.dll [2016-06-25] (Oracle Corporation)
Opera:
=======
OPR Extension: (360 Internet Protection) - C:\Users\Home\AppData\Roaming\Opera Software\Opera Stable\Extensions\cnpeghmjdfdmneiljeibjnemfdkojdhl [2016-06-25]
==================== Services (Whitelisted) ========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 cphs; C:\WINDOWS\system32\IntelCpHeciSvc.exe [290224 2015-06-01] (Intel Corporation)
S2 Garmin Device Interaction Service; C:\Program Files\Garmin\Device Interaction Service\GarminService.exe [795664 2016-05-25] (Garmin Ltd. or its subsidiaries)
R2 GlassWire; C:\Program Files\GlassWire\GWCtlSrv.exe [4293632 2016-05-11] (SecureMix LLC)
R2 QHActiveDefense; C:\Program Files\360\Total Security\safemon\QHActiveDefense.exe [913832 2016-06-21] (QIHU 360 SOFTWARE CO. LIMITED)
R2 SystemUsageReportSvc_WILLAMETTE; C:\Program Files\Intel Driver Update Utility\SUR\SurSvc.exe [118424 2016-03-09] ()
R3 USER_ESRV_SVC_WILLAMETTE; C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\esrv_svc.exe [396952 2016-03-09] ()
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [280376 2015-10-30] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23256 2015-10-30] (Microsoft Corporation)
===================== Drivers (Whitelisted) ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 360AntiHacker; C:\WINDOWS\System32\Drivers\360AntiHacker.sys [135400 2016-06-21] (360.cn)
R3 360AvFlt; C:\WINDOWS\System32\DRIVERS\360AvFlt.sys [66128 2016-06-21] (360.cn)
R1 360Box; C:\WINDOWS\System32\DRIVERS\360Box.sys [212712 2016-06-21] (360.cn)
S3 360Camera; C:\WINDOWS\System32\Drivers\360Camera.sys [34888 2016-06-21] (360.cn)
R1 360SelfProtection; C:\WINDOWS\System32\drivers\360SelfProtection.sys [189160 2016-06-21] (360安全中心)
R3 ACPIVPC; C:\WINDOWS\System32\drivers\AcpiVpc.sys [36176 2015-06-15] (Lenovo Corporation)
R1 BAPIDRV; C:\WINDOWS\System32\DRIVERS\BAPIDRV.sys [177232 2016-06-21] (360.cn)
R3 BCM43XX; C:\WINDOWS\system32\DRIVERS\bcmwl63.sys [6811648 2015-10-30] (Broadcom Corporation)
S3 dtlitescsibus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [26168 2016-05-31] (Disc Soft Ltd)
S3 dtliteusbbus; C:\WINDOWS\System32\drivers\dtliteusbbus.sys [40504 2016-05-31] (Disc Soft Ltd)
R1 EfiMon; C:\WINDOWS\System32\Drivers\Efimon.sys [23248 2016-06-21] (360.cn)
R1 gwdrv; C:\WINDOWS\system32\DRIVERS\gwdrv.sys [27448 2015-05-29] (SecureMix LLC)
R0 HookPort; C:\WINDOWS\System32\Drivers\Hookport.sys [72936 2016-06-21] (360安全中心)
R3 MEI; C:\WINDOWS\System32\drivers\HECI.sys [41088 2010-10-19] (Intel Corporation)
R1 qutmdserv; C:\WINDOWS\system32\drivers\qutmdrv.sys [313448 2016-06-21] (360.cn)
R1 qutmipc; C:\WINDOWS\system32\drivers\qutmipc.sys [64872 2016-06-21] (360.cn)
S3 RSUSBVSTOR; C:\WINDOWS\System32\Drivers\RtsUVStor.sys [218624 2010-09-30] (Realtek Semiconductor Corp.)
S3 vm331avs; C:\WINDOWS\System32\Drivers\vm331avs.sys [597784 2015-09-03] (Vimicro Corporation)
S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [37400 2015-10-30] (Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\WdFilter.sys [246104 2015-10-30] (Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [98648 2015-10-30] (Microsoft Corporation)
S3 SmbDrv; \SystemRoot\System32\drivers\Smb_driver_AMDASF.sys [X]
S3 SmbDrvI; \SystemRoot\System32\drivers\Smb_driver_Intel.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2016-06-27 10:39 - 2016-06-27 10:40 - 00008349 _____ C:\Users\Home\Desktop\FRST.txt
2016-06-27 10:39 - 2016-06-27 10:39 - 01739776 _____ (Farbar) C:\Users\Home\Desktop\FRST.exe
2016-06-27 10:39 - 2016-06-27 10:39 - 00000000 ____D C:\FRST
2016-06-26 21:32 - 2016-06-26 21:32 - 00000000 ____D C:\WINDOWS\system32\SleepStudy
2016-06-26 20:13 - 2016-06-26 20:13 - 00000000 ____D C:\Users\Home\AppData\Local\PeerDistRepub
2016-06-26 20:05 - 2016-06-26 20:06 - 00000000 ____D C:\Users\Home\AppData\Local\Garmin_Ltd._or_its_subsid
2016-06-26 20:05 - 2016-06-26 20:05 - 00001933 _____ C:\Users\Public\Desktop\Garmin Express.lnk
2016-06-26 20:05 - 2016-06-26 20:05 - 00000000 ____D C:\Users\Home\AppData\Roaming\Garmin
2016-06-26 20:05 - 2016-06-26 20:05 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Garmin
2016-06-26 20:05 - 2016-06-26 20:05 - 00000000 ____D C:\ProgramData\Garmin
2016-06-26 20:05 - 2016-06-26 20:05 - 00000000 ____D C:\Program Files\Garmin
2016-06-26 20:05 - 2016-06-26 20:05 - 00000000 ____D C:\Program Files\DIFX
2016-06-26 20:04 - 2016-06-26 20:04 - 00000000 ____D C:\ProgramData\Package Cache
2016-06-26 00:29 - 2016-06-26 14:43 - 00002009 _____ C:\Users\Home\Desktop\CrystalDiskInfo.lnk
2016-06-26 00:29 - 2016-06-26 00:29 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CrystalDiskInfo
2016-06-26 00:29 - 2016-06-26 00:29 - 00000000 ____D C:\Program Files\CrystalDiskInfo
2016-06-25 19:46 - 2016-06-25 20:01 - 00000000 ____D C:\Users\Home\Downloads\MemTest
2016-06-25 19:45 - 2016-06-25 19:45 - 00015654 _____ C:\Users\Home\Downloads\MemTest.zip
2016-06-25 19:35 - 2016-06-25 19:35 - 00000000 ____D C:\Users\Home\AppData\Local\CrashDumps
2016-06-25 19:33 - 2016-06-25 19:34 - 15782607 _____ C:\Users\Home\Downloads\broadcom_bcm_43xx_wlan_6_30_223_234_driver.zip
2016-06-25 19:29 - 2016-06-25 19:29 - 00004306 _____ C:\Users\Home\Desktop\zoek-resultss.txt
2016-06-25 19:24 - 2016-06-25 19:24 - 00000000 ____D C:\Users\Home\AppData\Local\ActiveSync
2016-06-25 19:17 - 2016-06-25 19:05 - 00024064 _____ C:\WINDOWS\zoek-delete.exe
2016-06-25 19:05 - 2016-06-25 19:16 - 00000000 ____D C:\zoek_backup
2016-06-25 19:04 - 2016-06-25 19:04 - 01309184 _____ C:\Users\Home\Desktop\zoek.exe
2016-06-25 18:23 - 2016-06-25 18:23 - 19925576 _____ C:\Users\Home\Desktop\RogueKiller.exe
2016-06-25 18:03 - 2016-06-25 18:03 - 00000545 _____ C:\Users\Home\Desktop\JRT.txt
2016-06-25 18:00 - 2016-06-25 18:00 - 01610816 _____ (Malwarebytes) C:\Users\Home\Desktop\JRT.exe
2016-06-25 16:53 - 2016-06-25 16:54 - 00000000 ____D C:\AdwCleaner
2016-06-25 16:51 - 2016-06-25 16:51 - 58768719 _____ C:\Users\Home\Desktop\GWIdlMon.exe.2920.dmp
2016-06-25 16:36 - 2016-06-25 16:36 - 03703360 _____ C:\Users\Home\Desktop\adwcleaner_5.200.exe
2016-06-25 16:36 - 2016-06-25 16:36 - 00448512 _____ (OldTimer Tools) C:\Users\Home\Desktop\TFC.exe
2016-06-25 16:36 - 2016-06-25 16:36 - 00050688 _____ (Atribune.org) C:\Users\Home\Desktop\ATF-Cleaner.exe
2016-06-25 15:23 - 2016-06-25 15:23 - 00388608 _____ (Trend Micro Inc.) C:\Users\Home\Desktop\HijackThis.exe
2016-06-25 15:10 - 2016-06-25 15:10 - 00000000 ____D C:\Program Files\Common Files\Java
2016-06-25 15:09 - 2016-06-25 15:10 - 00000000 ____D C:\ProgramData\Oracle
2016-06-25 15:09 - 2016-06-25 15:09 - 00095808 _____ (Oracle Corporation) C:\WINDOWS\system32\WindowsAccessBridge.dll
2016-06-25 15:09 - 2016-06-25 15:09 - 00000000 ____D C:\Users\Home\AppData\Roaming\Sun
2016-06-25 15:09 - 2016-06-25 15:09 - 00000000 ____D C:\Users\Home\AppData\LocalLow\Sun
2016-06-25 15:09 - 2016-06-25 15:09 - 00000000 ____D C:\Users\Home\AppData\Local\Intel
2016-06-25 15:09 - 2016-06-25 15:09 - 00000000 ____D C:\Users\Home\.oracle_jre_usage
2016-06-25 15:09 - 2016-06-25 15:09 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2016-06-25 15:09 - 2016-06-25 15:09 - 00000000 ____D C:\Program Files\Java
2016-06-25 15:08 - 2016-06-25 15:08 - 00001197 _____ C:\Users\Public\Desktop\Intel(R) Driver Update Utility 2.5.lnk
2016-06-25 15:08 - 2016-06-25 15:08 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel Driver Update Utility
2016-06-25 15:07 - 2016-06-25 15:07 - 00000000 ____D C:\ProgramData\Intel
2016-06-25 15:06 - 2016-06-25 15:07 - 00000000 ____D C:\Program Files\Intel
2016-06-25 15:06 - 2016-06-25 15:06 - 00000000 ____D C:\Program Files\Intel Driver Update Utility
2016-06-25 15:05 - 2016-06-25 15:05 - 00000000 ____D C:\Users\Home\AppData\LocalLow\Oracle
2016-06-25 15:04 - 2016-06-25 15:04 - 06525488 _____ (Intel) C:\Users\Home\Desktop\Intel Driver Update Utility Installer.exe
2016-06-25 15:03 - 2016-06-25 15:03 - 00000990 _____ C:\Users\Home\Desktop\TechPowerUp GPU-Z.lnk
2016-06-25 15:03 - 2016-06-25 15:03 - 00000000 ____D C:\Program Files\GPU-Z
2016-06-25 14:52 - 2016-06-25 14:52 - 00001006 _____ C:\Users\Public\Desktop\Speccy.lnk
2016-06-25 14:52 - 2016-06-25 14:52 - 00000000 ____D C:\Program Files\Speccy
2016-06-25 14:51 - 2016-06-25 14:52 - 05111240 _____ (Piriform Ltd) C:\Users\Home\Desktop\spsetup129.exe
2016-06-25 14:15 - 2016-06-25 14:15 - 00000000 ____D C:\WINDOWS\system32\appmgmt
2016-06-25 10:55 - 2016-06-27 10:39 - 01771468 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2016-06-25 10:52 - 2016-06-25 10:52 - 00000000 ____D C:\ProgramData\USOShared
2016-06-25 10:50 - 2016-06-26 00:32 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2016-06-25 10:50 - 2016-06-25 10:50 - 00000000 _SHDL C:\Users\Public\Documents\Obrázky
2016-06-25 10:50 - 2016-06-25 10:50 - 00000000 _SHDL C:\Users\Public\Documents\Hudba
2016-06-25 10:50 - 2016-06-25 10:50 - 00000000 _SHDL C:\Users\Public\Documents\Filmy
2016-06-25 10:50 - 2016-06-25 10:50 - 00000000 _SHDL C:\Users\Default\Šablony
2016-06-25 10:50 - 2016-06-25 10:50 - 00000000 _SHDL C:\Users\Default\Soubory cookie
2016-06-25 10:50 - 2016-06-25 10:50 - 00000000 _SHDL C:\Users\Default\Poslední
2016-06-25 10:50 - 2016-06-25 10:50 - 00000000 _SHDL C:\Users\Default\Okolní tiskárny
2016-06-25 10:50 - 2016-06-25 10:50 - 00000000 _SHDL C:\Users\Default\Okolní síť
2016-06-25 10:50 - 2016-06-25 10:50 - 00000000 _SHDL C:\Users\Default\Nabídka Start
2016-06-25 10:50 - 2016-06-25 10:50 - 00000000 _SHDL C:\Users\Default\Dokumenty
2016-06-25 10:50 - 2016-06-25 10:50 - 00000000 _SHDL C:\Users\Default\Documents\Obrázky
2016-06-25 10:50 - 2016-06-25 10:50 - 00000000 _SHDL C:\Users\Default\Documents\Hudba
2016-06-25 10:50 - 2016-06-25 10:50 - 00000000 _SHDL C:\Users\Default\Documents\Filmy
2016-06-25 10:50 - 2016-06-25 10:50 - 00000000 _SHDL C:\Users\Default\Data aplikací
2016-06-25 10:50 - 2016-06-25 10:50 - 00000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2016-06-25 10:50 - 2016-06-25 10:50 - 00000000 _SHDL C:\Users\Default\AppData\Local\Data aplikací
2016-06-25 10:50 - 2016-06-25 10:50 - 00000000 _SHDL C:\Users\Default User\Documents\Obrázky
2016-06-25 10:50 - 2016-06-25 10:50 - 00000000 _SHDL C:\Users\Default User\Documents\Hudba
2016-06-25 10:50 - 2016-06-25 10:50 - 00000000 _SHDL C:\Users\Default User\Documents\Filmy
2016-06-25 10:50 - 2016-06-25 10:50 - 00000000 _SHDL C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2016-06-25 10:50 - 2016-06-25 10:50 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Data aplikací
2016-06-25 10:50 - 2016-06-25 10:50 - 00000000 _SHDL C:\Users\Default User
2016-06-25 10:50 - 2016-06-25 10:50 - 00000000 _SHDL C:\Users\All Users
2016-06-25 10:50 - 2016-06-25 10:50 - 00000000 _SHDL C:\ProgramData\Šablony
2016-06-25 10:50 - 2016-06-25 10:50 - 00000000 _SHDL C:\ProgramData\Plocha
2016-06-25 10:50 - 2016-06-25 10:50 - 00000000 _SHDL C:\ProgramData\Nabídka Start
2016-06-25 10:50 - 2016-06-25 10:50 - 00000000 _SHDL C:\ProgramData\Microsoft\Windows\Start Menu\Programy
2016-06-25 10:50 - 2016-06-25 10:50 - 00000000 _SHDL C:\ProgramData\Dokumenty
2016-06-25 10:50 - 2016-06-25 10:50 - 00000000 _SHDL C:\ProgramData\Data aplikací
2016-06-25 10:50 - 2016-06-25 10:50 - 00000000 _SHDL C:\Documents and Settings
2016-06-25 10:45 - 2016-06-25 10:45 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_Kernel_SynTP_01011.Wdf
2016-06-25 10:45 - 2016-06-25 10:45 - 00000000 ____D C:\Program Files\USB Camera
2016-06-25 10:44 - 2016-06-25 10:44 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_Kernel_Smb_driver_Intel_01011.Wdf
2016-06-25 10:44 - 2016-06-25 10:44 - 00000000 ____D C:\Intel
2016-06-25 10:42 - 2016-06-25 10:42 - 00000000 ____D C:\WINDOWS\ServiceProfiles
2016-06-25 08:21 - 2016-06-25 08:22 - 00001283 _____ C:\DelFix.txt
2016-06-25 08:19 - 2016-06-25 15:24 - 00000000 ____D C:\Users\Home\AppData\Local\VirtualStore
2016-06-25 07:17 - 2016-06-25 18:25 - 00024688 _____ C:\WINDOWS\system32\Drivers\TrueSight.sys
2016-06-25 07:15 - 2016-06-25 07:16 - 00000000 ____D C:\ProgramData\RogueKiller
2016-06-25 06:44 - 2016-06-25 06:45 - 00148908 _____ C:\WINDOWS\Minidump\062516-25125-01.dmp
2016-06-25 06:44 - 2016-06-25 06:44 - 00000000 ____D C:\WINDOWS\Minidump
2016-06-25 06:43 - 2016-06-25 06:43 - 214586428 _____ C:\WINDOWS\MEMORY.DMP
2016-06-25 06:37 - 2016-06-25 14:12 - 00000000 ____D C:\Users\Home\AppData\Roaming\Skype
2016-06-25 06:27 - 2016-06-25 14:24 - 00193104 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2016-06-25 06:19 - 2016-06-25 06:23 - 00000000 ____D C:\WINDOWS\system32\MRT
2016-06-25 06:19 - 2016-06-25 06:19 - 139785240 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2016-06-25 06:13 - 2016-06-25 06:13 - 00000000 ____D C:\Users\Home\AppData\Roaming\Opera Software
2016-06-25 06:13 - 2016-06-25 06:13 - 00000000 ____D C:\Users\Home\AppData\Local\Opera Software
2016-06-25 06:09 - 2016-06-25 06:20 - 00000000 __SHD C:\$360Section
2016-06-25 06:00 - 2016-06-25 06:00 - 00000000 ____D C:\Users\Home\AppData\Roaming\Macromedia
2016-06-25 05:54 - 2016-06-25 06:20 - 00000000 ____D C:\ProgramData\360Quarant
2016-06-25 05:51 - 2016-06-25 14:15 - 00000000 ____D C:\ProgramData\Skype
2016-06-25 05:50 - 2016-06-25 05:50 - 00001162 _____ C:\Users\Public\Desktop\Opera.lnk
2016-06-25 05:50 - 2016-06-25 05:50 - 00001162 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Opera.lnk
2016-06-25 05:47 - 2016-06-25 05:47 - 00001916 _____ C:\Users\Public\Desktop\GlassWire.lnk
2016-06-25 05:47 - 2016-06-25 05:47 - 00000000 ____D C:\Users\Home\AppData\Local\GlassWire
2016-06-25 05:47 - 2016-06-25 05:47 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GlassWire
2016-06-25 05:47 - 2016-06-25 05:47 - 00000000 ____D C:\ProgramData\GlassWire
2016-06-25 05:47 - 2015-05-29 06:30 - 00008392 _____ C:\WINDOWS\system32\Drivers\gwdrv.cat
2016-06-25 05:47 - 2015-05-29 06:15 - 00027448 _____ (SecureMix LLC) C:\WINDOWS\system32\Drivers\gwdrv.sys
2016-06-25 05:46 - 2016-06-25 05:47 - 00000000 ____D C:\Program Files\GlassWire
2016-06-25 05:42 - 2016-06-25 05:42 - 00000000 ____D C:\WINDOWS\Tasks\360Disabled
2016-06-25 05:41 - 2016-06-25 06:14 - 00000000 ____D C:\Program Files\Opera
2016-06-25 05:41 - 2016-06-25 05:45 - 41774720 _____ (Skype Technologies S.A.) C:\Users\Public\Downloads\SkypeSetupFull_7.24.85.104_is.exe
2016-06-25 05:41 - 2016-06-25 05:41 - 01106469 _____ (Igor Pavlov) C:\Users\Public\Downloads\7Zip_16.20_is.exe
2016-06-25 05:41 - 2016-06-25 05:41 - 00961744 _____ (Opera Software) C:\Users\Public\Downloads\OperaSetup_is.exe
2016-06-25 05:41 - 2016-06-25 05:41 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip
2016-06-25 05:41 - 2016-06-25 05:41 - 00000000 ____D C:\Program Files\7-Zip
2016-06-25 05:40 - 2016-06-27 10:38 - 00000000 ____D C:\Users\Home\AppData\Roaming\360safe
2016-06-25 05:40 - 2016-06-27 10:38 - 00000000 ____D C:\Users\Home\AppData\LocalLow\360WD
2016-06-25 05:40 - 2016-06-25 05:42 - 00000000 ____D C:\ProgramData\360safe
2016-06-25 05:40 - 2016-06-25 05:40 - 00001180 _____ C:\Users\Public\Desktop\360 Total Security.lnk
2016-06-25 05:40 - 2016-06-25 05:40 - 00000000 _RSHD C:\360SANDBOX
2016-06-25 05:40 - 2016-06-25 05:40 - 00000000 ____D C:\Users\Home\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\360 Security Center
2016-06-25 05:40 - 2016-06-25 05:40 - 00000000 ____D C:\Users\Home\AppData\Roaming\360TotalSecurity
2016-06-25 05:40 - 2016-06-25 05:40 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\360 Security Center
2016-06-25 05:40 - 2016-06-25 05:40 - 00000000 ____D C:\ProgramData\360TotalSecurity
2016-06-25 05:40 - 2016-06-21 06:02 - 00212712 _____ (360.cn) C:\WINDOWS\system32\Drivers\360Box.sys
2016-06-25 05:40 - 2016-06-21 06:02 - 00189160 _____ (360安全中心) C:\WINDOWS\system32\Drivers\360SelfProtection.sys
2016-06-25 05:40 - 2016-06-21 06:02 - 00135400 _____ (360.cn) C:\WINDOWS\system32\Drivers\360AntiHacker.sys
2016-06-25 05:40 - 2016-06-21 06:02 - 00064872 _____ (360.cn) C:\WINDOWS\system32\Drivers\qutmipc.sys
2016-06-25 05:40 - 2016-06-21 06:02 - 00034888 _____ (360.cn) C:\WINDOWS\system32\Drivers\360Camera.sys
2016-06-25 05:39 - 2016-06-25 05:39 - 00000000 ____D C:\WINDOWS\system32\sk
2016-06-25 05:39 - 2016-06-21 06:02 - 00313448 _____ (360.cn) C:\WINDOWS\system32\Drivers\qutmdrv.sys
2016-06-25 05:39 - 2016-06-21 06:02 - 00177232 _____ (360.cn) C:\WINDOWS\system32\Drivers\BAPIDRV.SYS
2016-06-25 05:39 - 2016-06-21 06:02 - 00072936 _____ (360安全中心) C:\WINDOWS\system32\Drivers\hookport.sys
2016-06-25 05:39 - 2016-06-21 06:02 - 00066128 _____ (360.cn) C:\WINDOWS\system32\Drivers\360AvFlt.sys
2016-06-25 05:39 - 2016-06-21 06:02 - 00023248 _____ (360.cn) C:\WINDOWS\system32\Drivers\efimon.sys
2016-06-25 05:38 - 2016-06-25 16:58 - 00170200 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys
2016-06-25 05:38 - 2016-06-25 05:38 - 00000000 ____D C:\Program Files\360
2016-06-25 05:37 - 2016-06-25 05:37 - 00001129 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2016-06-25 05:37 - 2016-06-25 05:37 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2016-06-25 05:36 - 2016-06-25 05:38 - 44203952 _____ C:\Users\Home\Downloads\360TS_Setup.exe
2016-06-25 05:36 - 2016-06-25 05:37 - 00000000 ____D C:\Program Files\Malwarebytes Anti-Malware
2016-06-25 05:36 - 2016-06-25 05:36 - 00000000 ____D C:\ProgramData\Malwarebytes
2016-06-25 05:36 - 2016-03-10 14:09 - 00053120 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mwac.sys
2016-06-25 05:36 - 2016-03-10 14:08 - 00126336 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamchameleon.sys
2016-06-25 05:36 - 2016-03-10 14:08 - 00024448 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbam.sys
2016-06-25 05:35 - 2016-06-25 05:36 - 01411496 _____ (QIHU 360 SOFTWARE CO. LIMITED) C:\Users\Home\Downloads\360TS_Setup_Mini.exe
2016-06-25 05:34 - 2016-06-25 05:35 - 22851472 _____ (Malwarebytes ) C:\Users\Home\Downloads\mbam-setup-2.2.1.1043.exe
2016-06-25 05:32 - 2016-06-25 05:32 - 00000000 ____D C:\Users\Home\AppData\Local\MicrosoftEdge
2016-06-25 05:30 - 2016-06-25 05:30 - 00000000 ____D C:\Users\Home\AppData\Roaming\Synaptics
2016-06-25 03:44 - 2016-06-25 03:44 - 00001047 _____ C:\Users\Home\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Volitelné funkce.lnk
2016-06-25 03:44 - 2015-10-29 19:41 - 06586880 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsLexicons001b.dll
2016-06-25 03:44 - 2015-10-29 19:35 - 00131072 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData001b.dll
2016-06-25 03:44 - 2015-10-29 19:27 - 01870848 _____ (Microsoft Corporation) C:\WINDOWS\system32\MLS2.dll
2016-06-25 02:37 - 2016-06-25 02:37 - 00008192 _____ C:\WINDOWS\system32\config\userdiff
2016-06-25 02:37 - 2016-06-25 02:37 - 00000000 ____D C:\WINDOWS\InfusedApps
2016-06-25 02:37 - 2016-06-25 01:57 - 00000000 ___DC C:\WINDOWS\Panther
2016-06-25 02:36 - 2016-06-25 02:36 - 00000000 ____D C:\WINDOWS\system32\sda
2016-06-25 02:36 - 2016-06-25 02:36 - 00000000 ____D C:\Program Files\Synaptics
2016-06-25 02:35 - 2016-06-25 02:35 - 00000000 ____D C:\WINDOWS\Setup
2016-06-25 02:32 - 2016-06-27 10:39 - 00741172 _____ C:\WINDOWS\system32\perfh005.dat
2016-06-25 02:32 - 2016-06-27 10:39 - 00150730 _____ C:\WINDOWS\system32\perfc005.dat
2016-06-25 02:32 - 2016-06-25 05:28 - 00000000 ____D C:\WINDOWS\OCR
2016-06-25 02:32 - 2016-06-25 02:32 - 00000000 ____D C:\WINDOWS\system32\XPSViewer
2016-06-25 02:32 - 2016-06-25 02:32 - 00000000 ____D C:\Program Files\Reference Assemblies
2016-06-25 02:32 - 2016-06-25 02:32 - 00000000 ____D C:\Program Files\MSBuild
2016-06-25 02:32 - 2016-06-25 02:31 - 00296654 _____ C:\WINDOWS\system32\perfi005.dat
2016-06-25 02:32 - 2016-06-25 02:31 - 00038682 _____ C:\WINDOWS\system32\perfd005.dat
2016-06-25 02:31 - 2016-06-25 05:39 - 00000000 ____D C:\WINDOWS\system32\winrm
2016-06-25 02:31 - 2016-06-25 05:39 - 00000000 ____D C:\WINDOWS\system32\WCN
2016-06-25 02:31 - 2016-06-25 05:39 - 00000000 ____D C:\WINDOWS\system32\slmgr
2016-06-25 02:31 - 2016-06-25 05:39 - 00000000 ____D C:\WINDOWS\system32\Printing_Admin_Scripts
2016-06-25 02:31 - 2016-06-25 02:31 - 00000000 ____D C:\WINDOWS\system32\cs
2016-06-25 02:31 - 2016-06-25 02:31 - 00000000 ____D C:\WINDOWS\system32\0409
2016-06-25 02:31 - 2016-06-25 02:31 - 00000000 ____D C:\WINDOWS\DigitalLocker
2016-06-25 02:28 - 2016-06-14 20:33 - 00828408 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerApp.exe
2016-06-25 02:28 - 2016-06-14 20:33 - 00176632 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerCPLApp.cpl
2016-06-25 02:27 - 2016-06-25 14:21 - 00015703 _____ C:\WINDOWS\system32\OEMDefaultAssociations.xml
2016-06-25 02:27 - 2016-06-25 02:41 - 00028672 _____ C:\WINDOWS\system32\config\BCD-Template
2016-06-25 02:27 - 2016-06-25 02:24 - 00215943 _____ C:\WINDOWS\system32\dssec.dat
2016-06-25 02:27 - 2016-06-25 02:24 - 00209408 _____ (Microsoft Corporation) C:\WINDOWS\system32\msclmd.dll
2016-06-25 02:27 - 2016-06-25 02:24 - 00017463 _____ C:\WINDOWS\system32\Drivers\etc\services
2016-06-25 02:27 - 2016-06-25 02:24 - 00008798 _____ C:\WINDOWS\system32\icrav03.rat
2016-06-25 02:27 - 2016-06-25 02:24 - 00003683 _____ C:\WINDOWS\system32\Drivers\etc\lmhosts.sam
2016-06-25 02:27 - 2016-06-25 02:24 - 00002577 _____ C:\WINDOWS\system32\config.nt
2016-06-25 02:27 - 2016-06-25 02:24 - 00001988 _____ C:\WINDOWS\system32\ticrf.rat
2016-06-25 02:27 - 2016-06-25 02:24 - 00001688 _____ C:\WINDOWS\system32\autoexec.nt
2016-06-25 02:27 - 2016-06-25 02:24 - 00001358 _____ C:\WINDOWS\system32\Drivers\etc\protocol
2016-06-25 02:27 - 2016-06-25 02:24 - 00000858 _____ C:\WINDOWS\system32\DefaultQuestions.json
2016-06-25 02:27 - 2016-06-25 02:24 - 00000741 _____ C:\WINDOWS\system32\NOISE.DAT
2016-06-25 02:27 - 2016-06-25 02:24 - 00000407 _____ C:\WINDOWS\system32\Drivers\etc\networks
2016-06-25 02:27 - 2016-06-25 02:24 - 00000389 _____ C:\WINDOWS\system32\AutoWorkplace.exe.config
2016-06-25 02:26 - 2016-06-27 03:40 - 00000000 ___HD C:\Program Files\WindowsApps
2016-06-25 02:26 - 2016-06-27 03:40 - 00000000 ____D C:\WINDOWS\AppReadiness
2016-06-25 02:26 - 2016-06-26 14:44 - 00000000 ____D C:\WINDOWS\system32\WinBioDatabase
2016-06-25 02:26 - 2016-06-26 14:42 - 00000000 ____D C:\WINDOWS\AppCompat
2016-06-25 02:26 - 2016-06-25 14:34 - 00000000 ____D C:\WINDOWS\system32\NDF
2016-06-25 02:26 - 2016-06-25 14:22 - 00000000 ___SD C:\WINDOWS\system32\DiagSvcs
2016-06-25 02:26 - 2016-06-25 14:22 - 00000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2016-06-25 02:26 - 2016-06-25 14:22 - 00000000 ____D C:\WINDOWS\system32\SystemResetPlatform
2016-06-25 02:26 - 2016-06-25 14:22 - 00000000 ____D C:\WINDOWS\system32\oobe
2016-06-25 02:26 - 2016-06-25 14:21 - 00000000 ____D C:\WINDOWS\system32\appraiser
2016-06-25 02:26 - 2016-06-25 14:21 - 00000000 ____D C:\WINDOWS\Provisioning
2016-06-25 02:26 - 2016-06-25 14:21 - 00000000 ____D C:\WINDOWS\PolicyDefinitions
2016-06-25 02:26 - 2016-06-25 14:21 - 00000000 ____D C:\WINDOWS\bcastdvr
2016-06-25 02:26 - 2016-06-25 14:21 - 00000000 ____D C:\Program Files\Windows Journal
2016-06-25 02:26 - 2016-06-25 10:53 - 00000000 ____D C:\WINDOWS\system32\spool
2016-06-25 02:26 - 2016-06-25 10:53 - 00000000 ____D C:\WINDOWS\system32\FxsTmp
2016-06-25 02:26 - 2016-06-25 10:53 - 00000000 ____D C:\WINDOWS\rescache
2016-06-25 02:26 - 2016-06-25 10:52 - 00000000 ____D C:\ProgramData\USOPrivate
2016-06-25 02:26 - 2016-06-25 10:50 - 00000000 ____D C:\WINDOWS\CSC
2016-06-25 02:26 - 2016-06-25 10:50 - 00000000 ____D C:\Program Files\Windows NT
2016-06-25 02:26 - 2016-06-25 10:45 - 00000000 ____D C:\WINDOWS\System
2016-06-25 02:26 - 2016-06-25 05:39 - 00000000 ___SD C:\WINDOWS\system32\F12
2016-06-25 02:26 - 2016-06-25 05:39 - 00000000 ____D C:\WINDOWS\system32\Sysprep
2016-06-25 02:26 - 2016-06-25 05:39 - 00000000 ____D C:\WINDOWS\system32\migwiz
2016-06-25 02:26 - 2016-06-25 05:38 - 00000000 ___RD C:\WINDOWS\PurchaseDialog
2016-06-25 02:26 - 2016-06-25 05:38 - 00000000 ___RD C:\WINDOWS\MiracastView
2016-06-25 02:26 - 2016-06-25 05:38 - 00000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2016-06-25 02:26 - 2016-06-25 05:38 - 00000000 ___RD C:\WINDOWS\DevicesFlow
2016-06-25 02:26 - 2016-06-25 05:38 - 00000000 ____D C:\WINDOWS\IME
2016-06-25 02:26 - 2016-06-25 05:38 - 00000000 ____D C:\WINDOWS\Help
2016-06-25 02:26 - 2016-06-25 05:38 - 00000000 ____D C:\Program Files\Windows Photo Viewer
2016-06-25 02:26 - 2016-06-25 05:38 - 00000000 ____D C:\Program Files\Windows Defender
2016-06-25 02:26 - 2016-06-25 05:38 - 00000000 ____D C:\Program Files\Common Files\System
2016-06-25 02:26 - 2016-06-25 02:35 - 00000000 __RSD C:\WINDOWS\Media
2016-06-25 02:26 - 2016-06-25 02:35 - 00000000 ____D C:\WINDOWS\system32\Dism
2016-06-25 02:26 - 2016-06-25 02:35 - 00000000 ____D C:\Program Files\Windows Portable Devices
2016-06-25 02:26 - 2016-06-25 02:35 - 00000000 ____D C:\Program Files\Windows Multimedia Platform
2016-06-25 02:26 - 2016-06-25 02:32 - 00000000 ____D C:\WINDOWS\SystemApps
2016-06-25 02:26 - 2016-06-25 02:32 - 00000000 ____D C:\WINDOWS\system32\MUI
2016-06-25 02:26 - 2016-06-25 02:31 - 00000000 ___SD C:\WINDOWS\system32\dsc
2016-06-25 02:26 - 2016-06-25 02:31 - 00000000 ____D C:\WINDOWS\system32\setup
2016-06-25 02:26 - 2016-06-25 02:31 - 00000000 ____D C:\WINDOWS\system32\Com
2016-06-25 02:26 - 2016-06-25 02:31 - 00000000 ____D C:\Program Files\Common Files\Microsoft Shared
2016-06-25 02:26 - 2016-06-25 02:27 - 00000000 ___SD C:\WINDOWS\system32\Nui
2016-06-25 02:26 - 2016-06-25 02:27 - 00000000 ___RD C:\WINDOWS\Offline Web Pages
2016-06-25 02:26 - 2016-06-25 02:27 - 00000000 ____D C:\WINDOWS\system32\WinMetadata
2016-06-25 02:26 - 2016-06-25 02:27 - 00000000 ____D C:\WINDOWS\system32\SecureBootUpdates
2016-06-25 02:26 - 2016-06-25 02:27 - 00000000 ____D C:\WINDOWS\system32\MsDtc
2016-06-25 02:26 - 2016-06-25 02:27 - 00000000 ____D C:\WINDOWS\system32\MailContactsCalendarSync
2016-06-25 02:26 - 2016-06-25 02:27 - 00000000 ____D C:\WINDOWS\system32\icsxml
2016-06-25 02:26 - 2016-06-25 02:27 - 00000000 ____D C:\WINDOWS\system32\ias
2016-06-25 02:26 - 2016-06-25 02:27 - 00000000 ____D C:\WINDOWS\system32\downlevel
2016-06-25 02:26 - 2016-06-25 02:27 - 00000000 ____D C:\WINDOWS\system32\Bthprops
2016-06-25 02:26 - 2016-06-25 02:27 - 00000000 ____D C:\WINDOWS\system32\AdvancedInstallers
2016-06-25 02:26 - 2016-06-25 02:27 - 00000000 ____D C:\WINDOWS\ShellNew
2016-06-25 02:26 - 2016-06-25 02:27 - 00000000 ____D C:\WINDOWS\Registration
2016-06-25 02:26 - 2016-06-25 02:27 - 00000000 ____D C:\WINDOWS\L2Schemas
2016-06-25 02:26 - 2016-06-25 02:26 - 00000000 __SHD C:\WINDOWS\BitLockerDiscoveryVolumeContents
2016-06-25 02:26 - 2016-06-25 02:26 - 00000000 __SHD C:\Program Files\Windows Sidebar
2016-06-25 02:26 - 2016-06-25 02:26 - 00000000 __RHD C:\Users\Public\Libraries
2016-06-25 02:26 - 2016-06-25 02:26 - 00000000 ___SD C:\WINDOWS\system32\Configuration
2016-06-25 02:26 - 2016-06-25 02:26 - 00000000 ___SD C:\WINDOWS\Downloaded Program Files
2016-06-25 02:26 - 2016-06-25 02:26 - 00000000 ___RD C:\WINDOWS\DesktopTileResources
2016-06-25 02:26 - 2016-06-25 02:26 - 00000000 ___HD C:\WINDOWS\ELAMBKUP
2016-06-25 02:26 - 2016-06-25 02:26 - 00000000 ____D C:\WINDOWS\Web
2016-06-25 02:26 - 2016-06-25 02:26 - 00000000 ____D C:\WINDOWS\Vss
2016-06-25 02:26 - 2016-06-25 02:26 - 00000000 ____D C:\WINDOWS\tracing
2016-06-25 02:26 - 2016-06-25 02:26 - 00000000 ____D C:\WINDOWS\TAPI
2016-06-25 02:26 - 2016-06-25 02:26 - 00000000 ____D C:\WINDOWS\SystemResources
2016-06-25 02:26 - 2016-06-25 02:26 - 00000000 ____D C:\WINDOWS\system32\winevt
2016-06-25 02:26 - 2016-06-25 02:26 - 00000000 ____D C:\WINDOWS\system32\ras
2016-06-25 02:26 - 2016-06-25 02:26 - 00000000 ____D C:\WINDOWS\system32\ProximityToast
2016-06-25 02:26 - 2016-06-25 02:26 - 00000000 ____D C:\WINDOWS\system32\PointOfService
2016-06-25 02:26 - 2016-06-25 02:26 - 00000000 ____D C:\WINDOWS\system32\Macromed
2016-06-25 02:26 - 2016-06-25 02:26 - 00000000 ____D C:\WINDOWS\system32\Ipmi
2016-06-25 02:26 - 2016-06-25 02:26 - 00000000 ____D C:\WINDOWS\system32\InputMethod
2016-06-25 02:26 - 2016-06-25 02:26 - 00000000 ____D C:\WINDOWS\system32\inetsrv
2016-06-25 02:26 - 2016-06-25 02:26 - 00000000 ____D C:\WINDOWS\system32\IME
2016-06-25 02:26 - 2016-06-25 02:26 - 00000000 ____D C:\WINDOWS\system32\GroupPolicyUsers
2016-06-25 02:26 - 2016-06-25 02:26 - 00000000 ____D C:\WINDOWS\system32\GroupPolicy
2016-06-25 02:26 - 2016-06-25 02:26 - 00000000 ____D C:\WINDOWS\system32\config\Journal
2016-06-25 02:26 - 2016-06-25 02:26 - 00000000 ____D C:\WINDOWS\system32\AppLocker
2016-06-25 02:26 - 2016-06-25 02:26 - 00000000 ____D C:\WINDOWS\SKB
2016-06-25 02:26 - 2016-06-25 02:26 - 00000000 ____D C:\WINDOWS\schemas
2016-06-25 02:26 - 2016-06-25 02:26 - 00000000 ____D C:\WINDOWS\SchCache
2016-06-25 02:26 - 2016-06-25 02:26 - 00000000 ____D C:\WINDOWS\security
2016-06-25 02:26 - 2016-06-25 02:26 - 00000000 ____D C:\WINDOWS\Resources
2016-06-25 02:26 - 2016-06-25 02:26 - 00000000 ____D C:\WINDOWS\PLA
2016-06-25 02:26 - 2016-06-25 02:26 - 00000000 ____D C:\WINDOWS\Performance
2016-06-25 02:26 - 2016-06-25 02:26 - 00000000 ____D C:\WINDOWS\ModemLogs
2016-06-25 02:26 - 2016-06-25 02:26 - 00000000 ____D C:\WINDOWS\LiveKernelReports
2016-06-25 02:26 - 2016-06-25 02:26 - 00000000 ____D C:\WINDOWS\InputMethod
2016-06-25 02:26 - 2016-06-25 02:26 - 00000000 ____D C:\WINDOWS\Globalization
2016-06-25 02:26 - 2016-06-25 02:26 - 00000000 ____D C:\WINDOWS\Cursors
2016-06-25 02:26 - 2016-06-25 02:26 - 00000000 ____D C:\WINDOWS\Branding
2016-06-25 02:26 - 2016-06-25 02:26 - 00000000 ____D C:\WINDOWS\addins
2016-06-25 02:26 - 2016-06-25 02:26 - 00000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2016-06-25 02:26 - 2016-06-25 02:26 - 00000000 ____D C:\Program Files\Common Files\Services
2016-06-25 02:26 - 2016-06-25 02:24 - 00000219 _____ C:\WINDOWS\system.ini
2016-06-25 02:26 - 2016-06-25 02:24 - 00000092 _____ C:\WINDOWS\win.ini
2016-06-25 02:26 - 2016-06-25 02:01 - 00000000 ___RD C:\WINDOWS\PrintDialog
2016-06-25 02:25 - 2016-06-27 10:39 - 00000000 ____D C:\WINDOWS\INF
2016-06-25 02:20 - 2016-06-25 02:20 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf
2016-06-25 02:18 - 2016-06-25 16:38 - 00000000 ____D C:\WINDOWS\CbsTemp
2016-06-25 02:15 - 2016-06-26 00:31 - 00262144 ___SH C:\WINDOWS\system32\config\BBI
2016-06-25 02:15 - 2016-06-25 10:52 - 00032768 ___SH C:\WINDOWS\system32\config\ELAM
2016-06-25 02:15 - 2016-06-25 05:38 - 00000000 ____D C:\WINDOWS\servicing
2016-06-25 02:15 - 2016-06-25 02:26 - 00000000 ____D C:\WINDOWS\system32\SMI
2016-06-25 02:15 - 2015-10-30 07:18 - 00000164 _____ C:\WINDOWS\system32\config\FP
2016-06-25 02:04 - 2016-06-25 02:05 - 00002384 _____ C:\Users\Home\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2016-06-25 02:04 - 2016-06-25 02:05 - 00000000 ___RD C:\Users\Home\OneDrive
2016-06-25 02:03 - 2016-06-25 02:03 - 00000000 ____D C:\ProgramData\Microsoft OneDrive
2016-06-25 02:01 - 2016-06-25 02:01 - 00000000 ____D C:\Users\Home\AppData\Local\Publishers
2016-06-25 02:00 - 2016-06-27 02:11 - 00000000 ____D C:\Users\Home\AppData\Local\Packages
2016-06-25 02:00 - 2016-06-25 14:26 - 00000000 __RHD C:\Users\Public\AccountPictures
2016-06-25 02:00 - 2016-06-25 02:00 - 00000020 ___SH C:\Users\Home\ntuser.ini
2016-06-25 02:00 - 2016-06-25 02:00 - 00000000 _SHDL C:\Users\Home\Šablony
2016-06-25 02:00 - 2016-06-25 02:00 - 00000000 _SHDL C:\Users\Home\Soubory cookie
2016-06-25 02:00 - 2016-06-25 02:00 - 00000000 _SHDL C:\Users\Home\Poslední
2016-06-25 02:00 - 2016-06-25 02:00 - 00000000 _SHDL C:\Users\Home\Okolní tiskárny