log z OTL - OTL 5/4, nějak sem neodhad rozdělení
[2017.03.04 07:34:03 | 000,226,304 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MusNotification.exe
[2017.03.04 07:34:03 | 000,116,224 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\msctfui.dll
[2017.03.04 07:33:56 | 000,057,344 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\BluetoothDesktopHandlers.dll
[2017.03.04 07:33:56 | 000,046,592 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\XInputUap.dll
[2017.03.04 07:33:29 | 000,185,344 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\DisplayManager.dll
[2017.03.04 07:33:28 | 000,095,232 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\tzautoupdate.dll
[2017.03.04 07:33:28 | 000,030,208 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\netiougc.exe
[2017.03.04 07:33:26 | 000,035,840 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\tbauth.dll
[2017.03.04 07:33:15 | 000,162,304 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dmcertinst.exe
[2017.03.04 07:33:09 | 000,259,072 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Family.SyncEngine.dll
[2017.03.04 07:33:06 | 000,087,040 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Gaming.UI.GameBar.dll
[2017.03.04 07:33:00 | 000,295,424 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\unimdm.tsp
[2017.03.04 07:32:57 | 000,263,680 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ExSMime.dll
[2017.03.04 07:32:56 | 000,073,216 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.StateRepositoryBroker.dll
[2017.03.04 07:32:46 | 000,249,856 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\scksp.dll
[2017.03.04 07:32:35 | 000,113,664 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Networking.ServiceDiscovery.Dnssd.dll
[2017.03.04 07:32:10 | 000,196,096 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\UserDeviceRegistration.dll
[2017.03.04 07:32:10 | 000,133,632 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MediaFoundation.DefaultPerceptionProvider.dll
[2017.03.04 07:32:09 | 000,193,536 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WinRtTracing.dll
[2017.03.04 07:32:09 | 000,193,536 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Devices.WiFi.dll
[2017.03.04 07:32:08 | 000,179,712 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MCCSEngineShared.dll
[2017.03.04 07:31:59 | 000,187,904 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\VCardParser.dll
[2017.03.04 07:31:56 | 000,149,504 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.ApplicationModel.Core.dll
[2017.03.04 07:31:39 | 000,280,064 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SettingsHandlers_WorkAccess.dll
[2017.03.04 07:31:36 | 000,467,968 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Gaming.XboxLive.Storage.dll
[2017.03.04 07:31:33 | 000,322,048 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\accountaccessor.dll
[2017.03.04 07:31:28 | 000,122,880 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.StateRepositoryClient.dll
[2017.03.04 07:31:15 | 000,567,296 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\DevicePairing.dll
[2017.03.04 07:31:06 | 000,266,240 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dhcpcore6.dll
[2017.03.04 07:31:01 | 000,247,808 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\icm32.dll
[2017.03.04 07:30:55 | 000,186,368 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Devices.Radios.dll
[2017.03.04 07:30:52 | 000,635,904 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\FlightSettings.dll
[2017.03.04 07:30:52 | 000,418,304 | ---- | M] () -- C:\WINDOWS\SysNative\Windows.Perception.Stub.dll
[2017.03.04 07:30:48 | 000,058,880 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Shell.Search.UriHandler.dll
[2017.03.04 07:30:45 | 000,236,544 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SettingsHandlers_Flights.dll
[2017.03.04 07:30:44 | 000,095,232 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\UserDataTimeUtil.dll
[2017.03.04 07:30:40 | 000,231,424 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\shutdownux.dll
[2017.03.04 07:30:36 | 000,205,824 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\netiohlp.dll
[2017.03.04 07:30:35 | 001,631,232 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.UI.Xaml.Resources.dll
[2017.03.04 07:30:27 | 000,547,840 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Gaming.Input.dll
[2017.03.04 07:30:27 | 000,025,600 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\TokenBrokerCookies.exe
[2017.03.04 07:30:24 | 000,127,488 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Security.Credentials.UI.UserConsentVerifier.dll
[2017.03.04 07:30:22 | 000,051,712 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\usoapi.dll
[2017.03.04 07:30:12 | 000,120,320 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\DafPrintProvider.dll
[2017.03.04 07:30:11 | 000,463,872 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\daxexec.dll
[2017.03.04 07:30:11 | 000,300,544 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mscandui.dll
[2017.03.04 07:30:09 | 000,034,304 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\LaunchWinApp.exe
[2017.03.04 07:30:09 | 000,026,112 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\odbcconf.dll
[2017.03.04 07:30:08 | 000,206,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SearchFilterHost.exe
[2017.03.04 07:30:01 | 000,180,224 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Cortana.OneCore.dll
[2017.03.04 07:29:58 | 000,019,968 | ---- | M] () -- C:\WINDOWS\SysWow64\GamePanelExternalHook.dll
[2017.03.04 07:29:56 | 000,235,008 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\tapi32.dll
[2017.03.04 07:29:50 | 000,343,552 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Devices.SmartCards.Phone.dll
[2017.03.04 07:29:46 | 000,418,304 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.UI.BlockedShutdown.dll
[2017.03.04 07:29:46 | 000,171,520 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Devices.SerialCommunication.dll
[2017.03.04 07:29:45 | 000,289,792 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\DeveloperOptionsSettingsHandlers.dll
[2017.03.04 07:29:39 | 000,082,944 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\moshost.dll
[2017.03.04 07:29:34 | 000,091,648 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\msctfp.dll
[2017.03.04 07:29:31 | 001,291,264 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MSVPXENC.dll
[2017.03.04 07:29:22 | 000,126,464 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\XblGameSaveExt.dll
[2017.03.04 07:29:22 | 000,112,640 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mssitlb.dll
[2017.03.04 07:29:21 | 000,203,264 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\PimIndexMaintenance.dll
[2017.03.04 07:29:20 | 000,505,856 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Devices.WiFiDirect.dll
[2017.03.04 07:29:20 | 000,039,424 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\XInputUap.dll
[2017.03.04 07:29:15 | 000,730,112 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\nshwfp.dll
[2017.03.04 07:29:08 | 000,156,672 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\BrowserSettingSync.dll
[2017.03.04 07:29:00 | 000,249,856 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\cemapi.dll
[2017.03.04 07:28:56 | 000,349,696 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\icsvcext.dll
[2017.03.04 07:28:54 | 000,587,776 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\vpnike.dll
[2017.03.04 07:28:46 | 000,741,888 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\internetmail.dll
[2017.03.04 07:28:40 | 001,507,840 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Media.FaceAnalysis.dll
[2017.03.04 07:28:39 | 000,651,264 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Devices.AllJoyn.dll
[2017.03.04 07:28:39 | 000,268,800 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\UserMgrProxy.dll
[2017.03.04 07:28:38 | 000,556,544 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\iprtrmgr.dll
[2017.03.04 07:28:37 | 000,947,712 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SystemSettings.Handlers.dll
[2017.03.04 07:28:36 | 000,279,552 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Devices.HumanInterfaceDevice.dll
[2017.03.04 07:28:34 | 000,568,320 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Devices.LowLevel.dll
[2017.03.04 07:28:32 | 000,623,104 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\PCPTpm12.dll
[2017.03.04 07:28:30 | 000,223,744 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Networking.HostName.dll
[2017.03.04 07:28:29 | 000,390,144 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Search.ProtocolHandler.MAPI2.dll
[2017.03.04 07:28:26 | 000,224,256 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ExSMime.dll
[2017.03.04 07:28:18 | 000,462,848 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wlansec.dll
[2017.03.04 07:28:12 | 000,912,384 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Devices.SmartCards.dll
[2017.03.04 07:28:07 | 000,216,576 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Devices.Scanners.dll
[2017.03.04 07:28:04 | 000,147,456 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\winsrv.dll
[2017.03.04 07:28:01 | 000,267,264 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\vaultcli.dll
[2017.03.04 07:27:57 | 000,141,824 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Devices.Radios.dll
[2017.03.04 07:27:56 | 000,719,872 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\WdiWiFi.sys
[2017.03.04 07:27:53 | 000,055,296 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\findnetprinters.dll
[2017.03.04 07:27:50 | 000,324,608 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.ApplicationModel.LockScreen.dll
[2017.03.04 07:27:47 | 000,852,480 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Media.Import.dll
[2017.03.04 07:27:46 | 000,275,968 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\accountaccessor.dll
[2017.03.04 07:27:44 | 000,590,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\efswrt.dll
[2017.03.04 07:27:40 | 000,311,296 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SyncSettings.dll
[2017.03.04 07:27:40 | 000,200,192 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\puiapi.dll
[2017.03.04 07:27:40 | 000,020,992 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\dplaysvr.exe
[2017.03.04 07:27:38 | 000,292,864 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\updatehandlers.dll
[2017.03.04 07:27:37 | 006,574,592 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wwanmm.dll
[2017.03.04 07:27:33 | 000,252,928 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ubpm.dll
[2017.03.04 07:27:31 | 000,456,192 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\puiobj.dll
[2017.03.04 07:27:30 | 000,379,392 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\apprepsync.dll
[2017.03.04 07:27:30 | 000,176,128 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\apprepapi.dll
[2017.03.04 07:27:27 | 000,549,376 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MusUpdateHandlers.dll
[2017.03.04 07:27:21 | 000,349,184 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SearchProtocolHost.exe
[2017.03.04 07:27:18 | 000,446,976 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MapConfiguration.dll
[2017.03.04 07:27:09 | 000,391,168 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\oleacc.dll
[2017.03.04 07:27:08 | 000,432,128 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WpAXHolder.dll
[2017.03.04 07:27:05 | 000,778,752 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mssvp.dll
[2017.03.04 07:27:05 | 000,252,416 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Security.Authentication.Identity.Provider.dll
[2017.03.04 07:27:04 | 000,460,288 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\CredProvDataModel.dll
[2017.03.04 07:27:01 | 000,358,912 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.ApplicationModel.dll
[2017.03.04 07:27:00 | 000,295,424 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\CloudBackupSettings.dll
[2017.03.04 07:26:58 | 000,038,912 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wfdprov.dll
[2017.03.04 07:26:55 | 000,561,664 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.ApplicationModel.Wallet.dll
[2017.03.04 07:26:48 | 000,643,072 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\main.cpl
[2017.03.04 07:26:48 | 000,431,616 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Cortana.Desktop.dll
[2017.03.04 07:26:45 | 000,579,072 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ddraw.dll
[2017.03.04 07:26:42 | 000,407,552 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Internal.Management.dll
[2017.03.04 07:26:40 | 000,584,192 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\UIRibbonRes.dll
[2017.03.04 07:26:40 | 000,025,600 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\netiougc.exe
[2017.03.04 07:26:38 | 000,631,296 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WlanMediaManager.dll
[2017.03.04 07:26:36 | 000,450,048 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\werui.dll
[2017.03.04 07:26:35 | 000,307,200 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\PrintDialogs3D.dll
[2017.03.04 07:26:34 | 000,464,896 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\msutb.dll
[2017.03.04 07:26:32 | 000,065,024 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Gaming.UI.GameBar.dll
[2017.03.04 07:26:31 | 000,468,992 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wwanconn.dll
[2017.03.04 07:26:31 | 000,337,408 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Devices.Picker.dll
[2017.03.04 07:26:25 | 000,409,600 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wlanui.dll
[2017.03.04 07:26:24 | 000,156,672 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\BcastDVRHelper.dll
[2017.03.04 07:26:23 | 000,156,672 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\UserDeviceRegistration.dll
[2017.03.04 07:26:20 | 000,383,488 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\DavSyncProvider.dll
[2017.03.04 07:26:18 | 000,949,248 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Devices.PointOfService.dll
[2017.03.04 07:26:17 | 000,138,240 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\DisplayManager.dll
[2017.03.04 07:26:13 | 000,047,104 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Shell.Search.UriHandler.dll
[2017.03.04 07:26:12 | 000,366,080 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SearchFolder.dll
[2017.03.04 07:26:11 | 000,090,112 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\updatepolicy.dll
[2017.03.04 07:26:10 | 000,261,632 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\indexeddbserver.dll
[2017.03.04 07:26:04 | 000,177,664 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Web.Diagnostics.dll
[2017.03.04 07:26:04 | 000,147,456 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\VCardParser.dll
[2017.03.04 07:26:03 | 000,123,904 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Networking.HostName.dll
[2017.03.04 07:26:03 | 000,049,152 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.UI.Shell.dll
[2017.03.04 07:25:57 | 000,152,064 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MCCSEngineShared.dll
[2017.03.04 07:25:56 | 000,097,792 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.System.SystemManagement.dll
[2017.03.04 07:25:51 | 001,016,320 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\XblAuthManager.dll
[2017.03.04 07:25:51 | 000,175,104 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\puiapi.dll
[2017.03.04 07:25:49 | 000,128,000 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\BrowserSettingSync.dll
[2017.03.04 07:25:47 | 000,251,904 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mscandui.dll
[2017.03.04 07:25:44 | 001,388,544 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.UI.Cred.dll
[2017.03.04 07:25:43 | 000,255,488 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\unimdm.tsp
[2017.03.04 07:25:40 | 000,168,448 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mssph.dll
[2017.03.04 07:25:39 | 000,748,544 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ChatApis.dll
[2017.03.04 07:25:38 | 000,579,584 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Networking.UX.EapRequestHandler.dll
[2017.03.04 07:25:37 | 000,320,000 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.ApplicationModel.Store.TestingFramework.dll
[2017.03.04 07:25:37 | 000,245,760 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WwaApi.dll
[2017.03.04 07:25:36 | 001,060,352 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AppContracts.dll
[2017.03.04 07:25:35 | 000,526,848 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\OneDriveSettingSyncProvider.dll
[2017.03.04 07:25:35 | 000,425,984 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\aadcloudap.dll
[2017.03.04 07:25:25 | 000,548,864 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\usocore.dll
[2017.03.04 07:25:20 | 000,284,160 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AboveLockAppHost.dll
[2017.03.04 07:25:18 | 000,030,208 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\tbauth.dll
[2017.03.04 07:25:08 | 000,136,192 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\WinRtTracing.dll
[2017.03.04 07:25:06 | 000,437,248 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Devices.Usb.dll
[2017.03.04 07:24:59 | 000,655,872 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\sud.dll
[2017.03.04 07:24:59 | 000,495,104 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\DataSenseHandlers.dll
[2017.03.04 07:24:57 | 000,087,040 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Networking.ServiceDiscovery.Dnssd.dll
[2017.03.04 07:24:56 | 000,093,184 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\msctfui.dll
[2017.03.04 07:24:51 | 000,671,744 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mbsmsapi.dll
[2017.03.04 07:24:50 | 001,293,312 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wcnwiz.dll
[2017.03.04 07:24:48 | 000,329,728 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\deviceaccess.dll
[2017.03.04 07:24:47 | 000,129,024 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Devices.SerialCommunication.dll
[2017.03.04 07:24:47 | 000,022,016 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\TokenBrokerCookies.exe
[2017.03.04 07:24:45 | 000,328,192 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\daxexec.dll
[2017.03.04 07:24:44 | 000,478,208 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\DXP.dll
[2017.03.04 07:24:39 | 001,092,096 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ApplicationFrame.dll
[2017.03.04 07:24:38 | 001,025,536 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\XboxNetApiSvc.dll
[2017.03.04 07:24:12 | 000,088,576 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\UserDeviceRegistration.Ngc.dll
[2017.03.04 07:24:11 | 000,142,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Devices.WiFi.dll
[2017.03.04 07:24:07 | 000,956,416 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AppXDeploymentExtensions.desktop.dll
[2017.03.04 07:24:06 | 000,223,232 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\scksp.dll
[2017.03.04 07:24:03 | 000,560,128 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AppReadiness.dll
[2017.03.04 07:23:52 | 000,896,512 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.AccountsControl.dll
[2017.03.04 07:23:52 | 000,506,368 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\bcastdvr.exe
[2017.03.04 07:23:47 | 001,145,856 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\EmailApis.dll
[2017.03.04 07:23:47 | 000,820,224 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\PrintRenderAPIHost.DLL
[2017.03.04 07:23:45 | 000,184,320 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\UserMgrProxy.dll
[2017.03.04 07:23:43 | 001,184,256 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Unistore.dll
[2017.03.04 07:23:43 | 000,334,848 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\DavSyncProvider.dll
[2017.03.04 07:23:43 | 000,172,032 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\netiohlp.dll
[2017.03.04 07:23:40 | 000,291,840 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Search.ProtocolHandler.MAPI2.dll
[2017.03.04 07:23:38 | 000,775,168 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\GamePanel.exe
[2017.03.04 07:23:34 | 000,583,680 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\PrintDialogs.dll
[2017.03.04 07:23:34 | 000,392,192 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Gaming.Input.dll
[2017.03.04 07:23:33 | 000,496,128 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SystemSettings.UserAccountsHandlers.dll
[2017.03.04 07:23:29 | 000,231,936 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.ApplicationModel.LockScreen.dll
[2017.03.04 07:23:28 | 000,945,152 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\rasgcw.dll
[2017.03.04 07:23:25 | 000,315,904 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Gaming.XboxLive.Storage.dll
[2017.03.04 07:23:24 | 000,374,784 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Devices.LowLevel.dll
[2017.03.04 07:23:23 | 000,963,584 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WebcamUi.dll
[2017.03.04 07:23:18 | 000,715,776 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wcmsvc.dll
[2017.03.04 07:23:17 | 000,330,752 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\NgcCtnrSvc.dll
[2017.03.04 07:23:16 | 003,753,984 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\bootux.dll
[2017.03.04 07:23:16 | 000,526,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\winspool.drv
[2017.03.04 07:23:13 | 000,634,368 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\StructuredQuery.dll
[2017.03.04 07:23:09 | 000,320,512 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\thumbcache.dll
[2017.03.04 07:23:02 | 000,531,456 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\iprtrmgr.dll
[2017.03.04 07:23:01 | 000,299,520 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\UserDataAccountApis.dll
[2017.03.04 07:22:59 | 000,254,464 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mssphtb.dll
[2017.03.04 07:22:53 | 000,332,288 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MapConfiguration.dll
[2017.03.04 07:22:53 | 000,237,568 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\SyncSettings.dll
[2017.03.04 07:22:48 | 000,212,992 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\cemapi.dll
[2017.03.04 07:22:48 | 000,092,160 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\DafPrintProvider.dll
[2017.03.04 07:22:27 | 000,822,784 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Chakradiag.dll
[2017.03.04 07:22:26 | 000,231,424 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\CloudBackupSettings.dll
[2017.03.04 07:22:18 | 000,410,112 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AppXDeploymentClient.dll
[2017.03.04 07:22:07 | 001,299,968 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MSVPXENC.dll
[2017.03.04 07:22:06 | 000,117,760 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\AuthBroker.dll
[2017.03.04 07:22:01 | 000,869,888 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wuapi.dll
[2017.03.04 07:22:01 | 000,265,728 | ---- | M] () -- C:\WINDOWS\SysWow64\Windows.Perception.Stub.dll
[2017.03.04 07:21:51 | 006,285,824 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Media.dll
[2017.03.04 07:21:51 | 001,937,920 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mmc.exe
[2017.03.04 07:21:46 | 000,776,192 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\TabletPC.cpl
[2017.03.04 07:21:40 | 000,809,984 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Storage.Search.dll
[2017.03.04 07:21:34 | 000,945,664 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WpcWebFilter.dll
[2017.03.04 07:21:34 | 000,298,496 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Internal.Management.dll
[2017.03.04 07:21:33 | 000,591,360 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\vbscript.dll
[2017.03.04 07:21:23 | 000,670,208 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Devices.PointOfService.dll
[2017.03.04 07:21:20 | 000,609,280 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Media.Import.dll
[2017.03.04 07:21:18 | 000,483,840 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Devices.AllJoyn.dll
[2017.03.04 07:21:15 | 000,575,488 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\nshwfp.dll
[2017.03.04 07:21:10 | 000,202,752 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Devices.HumanInterfaceDevice.dll
[2017.03.04 07:21:05 | 000,631,296 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\main.cpl
[2017.03.04 07:21:05 | 000,347,648 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\rascustom.dll
[2017.03.04 07:21:03 | 001,243,136 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Media.FaceAnalysis.dll
[2017.03.04 07:21:03 | 000,185,856 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Security.Authentication.Identity.Provider.dll
[2017.03.04 07:20:57 | 000,800,768 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Security.Authentication.Web.Core.dll
[2017.03.04 07:20:50 | 000,386,048 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Devices.WiFiDirect.dll
[2017.03.04 07:20:50 | 000,203,776 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AppXApplicabilityBlob.dll
[2017.03.04 07:20:49 | 000,424,960 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\msutb.dll
[2017.03.04 07:20:37 | 001,361,408 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SharedStartModel.dll
[2017.03.04 07:20:36 | 000,426,496 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.ApplicationModel.Wallet.dll
[2017.03.04 07:20:33 | 001,280,512 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\werconcpl.dll
[2017.03.04 07:20:33 | 000,632,832 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\sud.dll
[2017.03.04 07:20:27 | 000,206,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\vaultcli.dll
[2017.03.04 07:20:25 | 000,218,624 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\WwaApi.dll
[2017.03.04 07:20:24 | 013,873,664 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.UI.Xaml.dll
[2017.03.04 07:20:23 | 000,506,880 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\DevicePairing.dll
[2017.03.04 07:20:20 | 000,368,128 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wlanui.dll
[2017.03.04 07:20:18 | 000,562,176 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Devices.SmartCards.dll
[2017.03.04 07:20:18 | 000,271,360 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\deviceaccess.dll
[2017.03.04 07:20:17 | 000,534,528 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\PCPTpm12.dll
[2017.03.04 07:20:17 | 000,175,616 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Devices.Scanners.dll
[2017.03.04 07:20:13 | 000,125,952 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\apprepapi.dll
[2017.03.04 07:20:10 | 000,650,752 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\RDXService.dll
[2017.03.04 07:20:10 | 000,426,496 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\OneDriveSettingSyncProvider.dll
[2017.03.04 07:20:08 | 000,611,328 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Graphics.Printing.dll
[2017.03.04 07:20:08 | 000,282,112 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WsmWmiPl.dll
[2017.03.04 07:20:07 | 000,284,672 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\apprepsync.dll
[2017.03.04 07:20:05 | 001,913,856 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wsp_fs.dll
[2017.03.04 07:19:58 | 000,181,760 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\tcpipcfg.dll
[2017.03.04 07:19:55 | 000,431,616 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\efswrt.dll
[2017.03.04 07:19:54 | 001,584,128 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wsp_health.dll
[2017.03.04 07:19:49 | 000,376,832 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\CryptoWinRT.dll
[2017.03.04 07:19:44 | 001,639,424 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\comsvcs.dll
[2017.03.04 07:19:42 | 000,390,656 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\CredProvDataModel.dll
[2017.03.04 07:19:36 | 000,226,816 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\dhcpcore6.dll
[2017.03.04 07:19:34 | 001,403,392 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Media.Editing.dll
[2017.03.04 07:19:31 | 000,498,688 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mbsmsapi.dll
[2017.03.04 07:19:30 | 000,083,456 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\tabcal.exe
[2017.03.04 07:19:29 | 000,458,752 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\RTMediaFrame.dll
[2017.03.04 07:19:27 | 000,714,752 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mssvp.dll
[2017.03.04 07:19:25 | 001,589,760 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\msdtctm.dll
[2017.03.04 07:19:21 | 003,777,536 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MFMediaEngine.dll
[2017.03.04 07:19:12 | 000,166,912 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Tabbtn.dll
[2017.03.04 07:19:05 | 000,262,144 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Devices.Picker.dll
[2017.03.04 07:19:02 | 000,635,904 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\jscript9diag.dll
[2017.03.04 07:18:57 | 001,762,816 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MSPhotography.dll
[2017.03.04 07:18:55 | 000,747,520 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Media.Ocr.dll
[2017.03.04 07:18:49 | 000,819,200 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\AppContracts.dll
[2017.03.04 07:18:48 | 000,156,672 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\RelPost.exe
[2017.03.04 07:18:47 | 017,198,592 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.UI.Xaml.dll
[2017.03.04 07:18:41 | 001,189,376 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\sdengin2.dll
[2017.03.04 07:18:41 | 000,567,808 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ChatApis.dll
[2017.03.04 07:18:32 | 000,198,656 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\indexeddbserver.dll
[2017.03.04 07:18:28 | 000,284,672 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.ApplicationModel.dll
[2017.03.04 07:18:22 | 000,896,512 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\fontext.dll
[2017.03.04 07:18:20 | 000,525,824 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\PrintDialogs.dll
[2017.03.04 07:18:17 | 001,231,360 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wcnwiz.dll
[2017.03.04 07:18:15 | 000,074,752 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\updatepolicy.dll
[2017.03.04 07:18:12 | 000,140,800 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mssph.dll
[2017.03.04 07:18:06 | 000,314,368 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Devices.Usb.dll
[2017.03.04 07:18:06 | 000,253,952 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.ApplicationModel.Store.TestingFramework.dll
[2017.03.04 07:17:50 | 001,082,368 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\reseteng.dll
[2017.03.04 07:17:49 | 000,238,080 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\AboveLockAppHost.dll
[2017.03.04 07:17:42 | 001,105,408 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MiracastReceiver.dll
[2017.03.04 07:17:37 | 000,440,320 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\fhcfg.dll
[2017.03.04 07:17:35 | 000,730,624 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\clusapi.dll
[2017.03.04 07:17:31 | 007,812,096 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\BingMaps.dll
[2017.03.04 07:17:26 | 000,442,368 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\PlayToDevice.dll
[2017.03.04 07:17:19 | 000,864,256 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wpnapps.dll
[2017.03.04 07:17:06 | 000,661,504 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\WpcWebFilter.dll
[2017.03.04 07:16:57 | 000,858,112 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\EmailApis.dll
[2017.03.04 07:16:51 | 000,711,680 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wuapi.dll
[2017.03.04 07:16:47 | 000,584,192 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Security.Authentication.Web.Core.dll
[2017.03.04 07:16:47 | 000,187,904 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dialclient.dll
[2017.03.04 07:16:43 | 000,846,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\WebcamUi.dll
[2017.03.04 07:16:41 | 000,762,880 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mprddm.dll
[2017.03.04 07:16:39 | 000,288,256 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\CryptoWinRT.dll
[2017.03.04 07:16:35 | 000,850,432 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\rasgcw.dll
[2017.03.04 07:16:32 | 013,441,536 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wmp.dll
[2017.03.04 07:16:29 | 000,760,832 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\appwiz.cpl
[2017.03.04 07:16:29 | 000,465,920 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\LockAppBroker.dll
[2017.03.04 07:16:22 | 001,456,640 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\GdiPlus.dll
[2017.03.04 07:16:20 | 000,968,704 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Unistore.dll
[2017.03.04 07:16:17 | 000,500,224 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Graphics.Printing.dll
[2017.03.04 07:16:15 | 000,626,688 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SpaceControl.dll
[2017.03.04 07:16:13 | 001,908,224 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AzureSettingSyncProvider.dll
[2017.03.04 07:16:11 | 003,289,088 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mispace.dll
[2017.03.04 07:16:09 | 000,870,400 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mfmkvsrcsnk.dll
[2017.03.04 07:16:05 | 000,368,128 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\puiobj.dll
[2017.03.04 07:16:05 | 000,100,864 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wpninprc.dll
[2017.03.04 07:16:00 | 000,583,168 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\BootMenuUX.dll
[2017.03.04 07:15:54 | 009,130,496 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\twinui.dll
[2017.03.04 07:15:48 | 001,078,784 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Media.Streaming.dll
[2017.03.04 07:15:39 | 000,313,856 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\AppXDeploymentClient.dll
[2017.03.04 07:15:33 | 018,362,368 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\edgehtml.dll
[2017.03.04 07:15:33 | 001,543,680 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mmc.exe
[2017.03.04 07:15:29 | 001,837,056 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\workfolderssvc.dll
[2017.03.04 07:15:16 | 000,336,384 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\azroleui.dll
[2017.03.04 07:15:08 | 002,860,032 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\storagewmi.dll
[2017.03.04 07:14:57 | 000,279,552 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\PlayToReceiver.dll
[2017.03.04 07:14:40 | 000,374,784 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\resutils.dll
[2017.03.04 07:14:31 | 000,588,288 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wlidprov.dll
[2017.03.04 07:14:29 | 001,562,112 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\vssapi.dll
[2017.03.04 07:14:27 | 000,236,032 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\WsmWmiPl.dll
[2017.03.04 07:14:20 | 000,167,936 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ErrorDetails.dll
[2017.03.04 07:14:07 | 001,534,464 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Graphics.Printing.3D.dll
[2017.03.04 07:14:07 | 000,130,560 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SpaceAgent.exe
[2017.03.04 07:14:02 | 004,749,312 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SettingsHandlers_nt.dll
[2017.03.04 07:13:59 | 000,628,736 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\uReFS.dll
[2017.03.04 07:13:59 | 000,112,128 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WorkFoldersGPExt.dll
[2017.03.04 07:13:58 | 000,125,952 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\sdshext.dll
[2017.03.04 07:13:57 | 001,217,024 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Media.Audio.dll
[2017.03.04 07:13:54 | 000,222,720 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WorkFoldersShell.dll
[2017.03.04 07:13:49 | 000,112,640 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\CameraCaptureUI.dll
[2017.03.04 07:13:44 | 000,653,312 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.AccountsControl.dll
[2017.03.04 07:13:40 | 007,626,752 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\twinui.dll
[2017.03.04 07:13:38 | 000,947,200 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wsp_sr.dll
[2017.03.04 07:13:34 | 006,474,752 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mspaint.exe
[2017.03.04 07:13:33 | 002,458,112 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\themecpl.dll
[2017.03.04 07:13:29 | 000,710,144 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\AppointmentApis.dll
[2017.03.04 07:13:27 | 000,937,472 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MCRecvSrc.dll
[2017.03.04 07:13:27 | 000,858,112 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mprddm.dll
[2017.03.04 07:13:23 | 001,366,016 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wpncore.dll
[2017.03.04 07:13:20 | 003,733,504 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\D3DCompiler_47.dll
[2017.03.04 07:13:20 | 000,961,024 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\imapi2fs.dll
[2017.03.04 07:13:19 | 005,114,368 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\cdp.dll
[2017.03.04 07:13:08 | 001,228,288 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\usercpl.dll
[2017.03.04 07:13:05 | 000,539,136 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\PlayToManager.dll
[2017.03.04 07:13:05 | 000,497,152 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\LogonController.dll
[2017.03.04 07:13:01 | 004,613,120 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Media.dll
[2017.03.04 07:13:00 | 000,675,840 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Networking.dll
[2017.03.04 07:13:00 | 000,054,272 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MultiDigiMon.exe
[2017.03.04 07:12:59 | 000,901,120 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Devices.Bluetooth.dll
[2017.03.04 07:12:59 | 000,700,416 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Storage.Search.dll
[2017.03.04 07:12:58 | 000,805,888 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\FrameServer.dll
[2017.03.04 07:12:45 | 007,654,912 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mos.dll
[2017.03.04 07:12:44 | 001,040,896 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\NaturalLanguage6.dll
[2017.03.04 07:12:39 | 000,828,416 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\appwiz.cpl
[2017.03.04 07:12:39 | 000,395,264 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\dmenrollengine.dll
[2017.03.04 07:12:31 | 000,886,272 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\aadtb.dll
[2017.03.04 07:12:22 | 000,467,968 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Geolocation.dll
[2017.03.04 07:12:20 | 004,596,224 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\xpsrchvw.exe
[2017.03.04 07:12:18 | 000,589,312 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Devices.Sensors.dll
[2017.03.04 07:12:04 | 001,692,160 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AppXDeploymentExtensions.onecore.dll
kontrola logu - využití disku 100%
Re: kontrola logu - využití disku 100%
►Case: NZXT Noctis 450◄►Zdroj: EVGA Supernova 750W G2◄►MB: Asus MAXIMUS VIII Ranger◄►CPU: Intel core i5-6600K◄►GPU: Gainward Phoenix GTX 1060 GS◄►Chladič: Scythe Ninja 4◄►SSD: Samsung 850 EVO 250GB◄►HDD: 2x Seagate Barracuda 2TB◄►RAM: Crucial Ballistix Sport LT 2x8GB 2400Mhz DDR4◄
Re: kontrola logu - využití disku 100%
log z OTL - OTL 6/4, nějak sem neodhad rozdělení
[2017.03.04 07:12:00 | 000,947,712 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MSVP9DEC.dll
[2017.03.04 07:11:42 | 001,323,008 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wsp_fs.dll
[2017.03.04 07:11:38 | 002,278,400 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AppXDeploymentServer.dll
[2017.03.04 07:11:38 | 000,572,416 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\PhotoScreensaver.scr
[2017.03.04 07:11:29 | 001,320,448 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\comsvcs.dll
[2017.03.04 07:11:29 | 000,821,248 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\uDWM.dll
[2017.03.04 07:11:26 | 004,474,368 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\D3DCompiler_47.dll
[2017.03.04 07:11:26 | 001,357,312 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MSPhotography.dll
[2017.03.04 07:11:26 | 001,137,152 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wsp_health.dll
[2017.03.04 07:11:22 | 001,312,768 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SensorDataService.exe
[2017.03.04 07:11:15 | 001,891,328 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\pnidui.dll
[2017.03.04 07:11:15 | 000,355,328 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\RTMediaFrame.dll
[2017.03.04 07:11:07 | 000,975,872 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\HelpPane.exe
[2017.03.04 07:11:06 | 001,643,008 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Media.Speech.dll
[2017.03.04 07:11:05 | 003,441,664 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MapRouter.dll
[2017.03.04 07:11:05 | 001,656,832 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\GdiPlus.dll
[2017.03.04 07:11:02 | 000,774,656 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WorkfoldersControl.dll
[2017.03.04 07:11:01 | 002,611,200 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\gameux.dll
[2017.03.04 07:11:00 | 002,953,216 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MapGeocoder.dll
[2017.03.04 07:10:59 | 001,077,760 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Media.Editing.dll
[2017.03.04 07:10:58 | 000,960,000 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\modernexecserver.dll
[2017.03.04 07:10:57 | 000,460,800 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Devices.Midi.dll
[2017.03.04 07:10:50 | 000,913,920 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Networking.dll
[2017.03.04 07:10:47 | 001,399,296 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Pimstore.dll
[2017.03.04 07:10:45 | 000,579,072 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\LockAppBroker.dll
[2017.03.04 07:10:44 | 000,971,264 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\twinui.appcore.dll
[2017.03.04 07:10:37 | 000,104,960 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WorkFolders.exe
[2017.03.04 07:10:36 | 002,095,616 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\inetcpl.cpl
[2017.03.04 07:10:31 | 002,208,768 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Graphics.Printing.3D.dll
[2017.03.04 07:10:31 | 001,275,392 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Devices.Bluetooth.dll
[2017.03.04 07:10:24 | 000,816,640 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.UI.dll
[2017.03.04 07:10:23 | 000,770,560 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\bisrv.dll
[2017.03.04 07:10:21 | 000,259,584 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\msdtcuiu.dll
[2017.03.04 07:10:20 | 001,536,000 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SpeechPal.dll
[2017.03.04 07:10:17 | 002,852,864 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SystemSettingsThresholdAdminFlowUI.dll
[2017.03.04 07:10:17 | 000,471,552 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Media.BackgroundMediaPlayback.dll
[2017.03.04 07:10:12 | 001,555,456 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WMPDMC.exe
[2017.03.04 07:10:10 | 001,586,176 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Globalization.dll
[2017.03.04 07:10:05 | 001,917,440 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ActiveSyncProvider.dll
[2017.03.04 07:10:02 | 003,307,008 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MFMediaEngine.dll
[2017.03.04 07:10:01 | 001,033,216 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MapsStore.dll
[2017.03.04 07:10:00 | 006,664,192 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mspaint.exe
[2017.03.04 07:09:57 | 008,125,952 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Chakra.dll
[2017.03.04 07:09:55 | 000,653,824 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\UserLanguagesCpl.dll
[2017.03.04 07:09:40 | 000,771,072 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AppointmentApis.dll
[2017.03.04 07:09:38 | 000,846,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MbaeApiPublic.dll
[2017.03.04 07:09:27 | 001,359,360 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\usercpl.dll
[2017.03.04 07:09:26 | 000,765,440 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Devices.Sensors.dll
[2017.03.04 07:09:22 | 001,633,792 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\quartz.dll
[2017.03.04 07:09:12 | 000,795,648 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MiracastReceiver.dll
[2017.03.04 07:09:10 | 000,123,904 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ProximityCommon.dll
[2017.03.04 07:09:08 | 000,570,368 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\clusapi.dll
[2017.03.04 07:09:04 | 000,343,040 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\PlayToDevice.dll
[2017.03.04 07:08:55 | 003,405,312 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\tquery.dll
[2017.03.04 07:08:52 | 001,266,176 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.UI.Input.Inking.dll
[2017.03.04 07:08:52 | 000,713,216 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wpnapps.dll
[2017.03.04 07:08:45 | 000,629,248 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\hgcpl.dll
[2017.03.04 07:08:32 | 000,540,160 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SettingSync.dll
[2017.03.04 07:08:30 | 012,349,952 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wmp.dll
[2017.03.04 07:08:22 | 001,981,440 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\diagtrack.dll
[2017.03.04 07:08:16 | 002,424,320 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Devices.Perception.dll
[2017.03.04 07:08:11 | 008,076,288 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mstscax.dll
[2017.03.04 07:08:06 | 001,714,688 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dui70.dll
[2017.03.04 07:08:02 | 000,834,048 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\win32spl.dll
[2017.03.04 07:08:01 | 002,800,128 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\netshell.dll
[2017.03.04 07:07:54 | 000,389,632 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\stobject.dll
[2017.03.04 07:07:49 | 002,512,384 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\themecpl.dll
[2017.03.04 07:07:49 | 000,774,656 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Web.dll
[2017.03.04 07:07:48 | 000,909,312 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.UI.Search.dll
[2017.03.04 07:07:46 | 001,490,944 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\lsasrv.dll
[2017.03.04 07:07:46 | 001,064,448 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SettingSyncCore.dll
[2017.03.04 07:07:42 | 002,748,928 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mispace.dll
[2017.03.04 07:07:42 | 000,875,520 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\TokenBroker.dll
[2017.03.04 07:07:35 | 001,792,512 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Wpc.dll
[2017.03.04 07:07:32 | 000,545,280 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mfmkvsrcsnk.dll
[2017.03.04 07:07:30 | 001,348,608 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wifinetworkmanager.dll
[2017.03.04 07:07:23 | 000,716,800 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ShareHost.dll
[2017.03.04 07:07:20 | 001,255,936 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\AzureSettingSyncProvider.dll
[2017.03.04 07:07:19 | 002,643,456 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\tquery.dll
[2017.03.04 07:07:14 | 001,512,448 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\UserDataService.dll
[2017.03.04 07:07:12 | 001,513,472 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\win32kbase.sys
[2017.03.04 07:07:10 | 000,707,584 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\LogonController.dll
[2017.03.04 07:07:06 | 002,914,816 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\CertEnroll.dll
[2017.03.04 07:07:05 | 000,895,488 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Media.Streaming.dll
[2017.03.04 07:07:04 | 000,391,168 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wuuhext.dll
[2017.03.04 07:06:59 | 001,424,896 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.UI.Xaml.Maps.dll
[2017.03.04 07:06:57 | 004,060,672 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\UIRibbon.dll
[2017.03.04 07:06:56 | 003,198,464 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\cdp.dll
[2017.03.04 07:06:52 | 004,746,752 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\jscript9.dll
[2017.03.04 07:06:52 | 002,538,496 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mssrch.dll
[2017.03.04 07:06:41 | 002,287,104 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dwmcore.dll
[2017.03.04 07:06:38 | 004,708,864 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ExplorerFrame.dll
[2017.03.04 07:06:34 | 000,483,328 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\twinapi.dll
[2017.03.04 07:06:33 | 001,013,760 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ContactApis.dll
[2017.03.04 07:06:31 | 003,202,048 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\msftedit.dll
[2017.03.04 07:06:28 | 002,153,984 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\storagewmi.dll
[2017.03.04 07:06:27 | 005,384,192 | ---- | M] (Microsoft) -- C:\WINDOWS\SysNative\dbgeng.dll
[2017.03.04 07:06:24 | 005,380,608 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\BingMaps.dll
[2017.03.04 07:06:22 | 002,820,096 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\InputService.dll
[2017.03.04 07:06:19 | 000,842,240 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ntshrui.dll
[2017.03.04 07:06:17 | 001,131,008 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\localspl.dll
[2017.03.04 07:06:13 | 000,220,672 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\PlayToReceiver.dll
[2017.03.04 07:06:11 | 002,475,008 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\DWrite.dll
[2017.03.04 07:06:11 | 001,369,088 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.UI.Xaml.Phone.dll
[2017.03.04 07:06:10 | 003,614,720 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\win32kfull.sys
[2017.03.04 07:06:04 | 000,881,664 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\authui.dll
[2017.03.04 07:06:00 | 006,109,184 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mos.dll
[2017.03.04 07:05:56 | 001,328,640 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Web.Http.dll
[2017.03.04 07:05:49 | 001,726,976 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.UI.Immersive.dll
[2017.03.04 07:05:47 | 000,458,752 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wlidprov.dll
[2017.03.04 07:05:46 | 000,298,496 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\resutils.dll
[2017.03.04 07:05:44 | 000,180,224 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\enrollmentapi.dll
[2017.03.04 07:05:41 | 000,134,144 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ErrorDetails.dll
[2017.03.04 07:05:32 | 007,468,544 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mstscax.dll
[2017.03.04 07:05:17 | 000,545,792 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\uReFS.dll
[2017.03.04 07:05:12 | 000,089,600 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\CameraCaptureUI.dll
[2017.03.04 07:05:11 | 001,221,120 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Media.Audio.dll
[2017.03.04 07:05:09 | 001,121,280 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\aadtb.dll
[2017.03.04 07:05:08 | 003,520,512 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\xpsrchvw.exe
[2017.03.04 07:05:05 | 000,924,672 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Networking.BackgroundTransfer.dll
[2017.03.04 07:04:50 | 000,719,872 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wsp_sr.dll
[2017.03.04 07:04:38 | 000,531,456 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\TpmCoreProvisioning.dll
[2017.03.04 07:04:31 | 000,433,152 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\TextInputFramework.dll
[2017.03.04 07:04:30 | 000,753,152 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\imapi2fs.dll
[2017.03.04 07:04:19 | 000,998,912 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\TSWorkspace.dll
[2017.03.04 07:04:11 | 000,035,328 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\spaceman.exe
[2017.03.04 07:04:06 | 000,340,992 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\RADCUI.dll
[2017.03.04 07:04:05 | 000,640,000 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MCRecvSrc.dll
[2017.03.04 07:03:55 | 000,359,936 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mtxclu.dll
[2017.03.04 07:03:32 | 001,247,232 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Globalization.dll
[2017.03.04 07:03:32 | 000,400,384 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\PlayToManager.dll
[2017.03.04 07:03:30 | 001,817,088 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ResetEngine.dll
[2017.03.04 07:03:24 | 006,044,672 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Chakra.dll
[2017.03.04 07:03:20 | 000,409,600 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\WMVSENCD.DLL
[2017.03.04 07:03:11 | 002,109,952 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MapGeocoder.dll
[2017.03.04 07:03:02 | 002,363,904 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MapRouter.dll
[2017.03.04 07:02:51 | 004,423,680 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ExplorerFrame.dll
[2017.03.04 07:02:49 | 001,155,072 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MSVP9DEC.dll
[2017.03.04 07:02:40 | 002,484,736 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\gameux.dll
[2017.03.04 07:02:37 | 002,740,224 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\msftedit.dll
[2017.03.04 07:02:32 | 001,709,056 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ActiveSyncProvider.dll
[2017.03.04 07:02:30 | 002,138,112 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\InputService.dll
[2017.03.04 07:02:25 | 001,170,944 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Media.Speech.dll
[2017.03.04 07:02:23 | 000,510,464 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\PhotoScreensaver.scr
[2017.03.04 07:02:19 | 000,580,608 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\hgcpl.dll
[2017.03.04 07:02:00 | 001,004,544 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.UI.Input.Inking.dll
[2017.03.04 07:01:58 | 002,646,528 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\CertEnroll.dll
[2017.03.04 07:01:53 | 000,827,904 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\twinui.appcore.dll
[2017.03.04 07:01:48 | 002,682,880 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\netshell.dll
[2017.03.04 07:01:40 | 001,293,312 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\WMPDMC.exe
[2017.03.04 07:01:37 | 001,656,320 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Devices.Perception.dll
[2017.03.04 07:01:36 | 001,988,096 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mssrch.dll
[2017.03.04 07:01:35 | 001,493,504 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Wpc.dll
[2017.03.04 07:01:35 | 000,560,640 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\UserLanguagesCpl.dll
[2017.03.04 07:01:31 | 001,993,216 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\dwmcore.dll
[2017.03.04 07:01:27 | 000,620,544 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.UI.dll
[2017.03.04 07:01:26 | 000,566,784 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ShareHost.dll
[2017.03.04 07:01:24 | 001,556,992 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.UI.Immersive.dll
[2017.03.04 07:01:24 | 000,422,400 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\twinapi.dll
[2017.03.04 07:01:22 | 003,478,528 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\UIRibbon.dll
[2017.03.04 07:01:15 | 001,564,160 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\quartz.dll
[2017.03.04 07:01:12 | 001,013,248 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Web.Http.dll
[2017.03.04 07:01:11 | 001,154,560 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Pimstore.dll
[2017.03.04 07:01:07 | 001,232,384 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.UI.Xaml.Maps.dll
[2017.03.04 07:00:59 | 000,598,528 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Web.dll
[2017.03.04 07:00:58 | 000,654,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MbaeApiPublic.dll
[2017.03.04 07:00:55 | 002,026,496 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\inetcpl.cpl
[2017.03.04 07:00:53 | 000,798,208 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\authui.dll
[2017.03.04 07:00:50 | 000,348,160 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Devices.Midi.dll
[2017.03.04 07:00:46 | 000,444,416 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\SettingSync.dll
[2017.03.04 07:00:45 | 004,557,824 | ---- | M] (Microsoft) -- C:\WINDOWS\SysWow64\dbgeng.dll
[2017.03.04 07:00:42 | 000,711,680 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.UI.Search.dll
[2017.03.04 07:00:42 | 000,691,200 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\TokenBroker.dll
[2017.03.04 07:00:30 | 000,751,104 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Networking.BackgroundTransfer.dll
[2017.03.04 07:00:27 | 002,996,736 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\win32kfull.sys
[2017.03.04 07:00:22 | 000,850,944 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ContactApis.dll
[2017.03.04 07:00:19 | 000,862,208 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\SettingSyncCore.dll
[2017.03.04 07:00:02 | 001,170,944 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.UI.Xaml.Phone.dll
[2017.03.04 06:59:01 | 000,353,280 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\TextInputFramework.dll
[2017.03.04 06:59:01 | 000,206,848 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.UI.Core.TextInput.dll
[2017.03.04 06:57:44 | 000,449,024 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\TpmCoreProvisioning.dll
[2017.03.04 06:57:41 | 003,106,304 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mstsc.exe
[2017.03.04 06:57:11 | 000,783,360 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\TSWorkspace.dll
[2017.03.04 06:57:09 | 000,299,008 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\RADCUI.dll
[2017.03.04 06:36:58 | 000,483,840 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\CoreMessaging.dll
[2017.02.24 06:23:20 | 000,077,408 | ---- | M] () -- C:\WINDOWS\SysNative\drivers\mbae64.sys
[3 C:\WINDOWS\SysNative\drivers\*.tmp files -> C:\WINDOWS\SysNative\drivers\*.tmp -> ]
========== Files Created - No Company Name ==========
[2017.03.24 15:25:09 | 000,027,182 | ---- | C] () -- C:\Users\Endon\Desktop\Výstřižeka.PNG
[2017.03.21 16:15:29 | 000,000,512 | ---- | C] () -- C:\Users\Endon\Desktop\MBR.dat
[2017.03.20 17:07:44 | 002,048,496 | ---- | C] () -- C:\WINDOWS\SysWow64\CoreUIComponents.dll
[2017.03.20 17:07:37 | 000,265,728 | ---- | C] () -- C:\WINDOWS\SysWow64\Windows.Perception.Stub.dll
[2017.03.20 17:07:12 | 000,019,968 | ---- | C] () -- C:\WINDOWS\SysWow64\GamePanelExternalHook.dll
[2017.03.20 17:06:42 | 000,448,285 | ---- | C] () -- C:\WINDOWS\SysNative\ApnDatabase.xml
[2017.03.20 17:06:05 | 000,418,304 | ---- | C] () -- C:\WINDOWS\SysNative\Windows.Perception.Stub.dll
[2017.03.20 17:05:20 | 002,681,200 | ---- | C] () -- C:\WINDOWS\SysNative\CoreUIComponents.dll
[2017.03.20 17:04:06 | 000,025,088 | ---- | C] () -- C:\WINDOWS\SysNative\GamePanelExternalHook.dll
[2017.03.20 16:33:07 | 000,517,163 | ---- | C] () -- C:\WINDOWS\ZAM.krnl.trace
[2017.03.20 16:33:07 | 000,489,087 | ---- | C] () -- C:\WINDOWS\ZAM_Guard.krnl.trace
[2017.03.20 16:33:00 | 000,001,228 | ---- | C] () -- C:\Users\Public\Desktop\Zemana AntiMalware.lnk
[2017.03.20 16:24:27 | 000,024,064 | ---- | C] () -- C:\WINDOWS\zoek-delete.exe
[2017.03.16 17:49:06 | 000,028,272 | ---- | C] () -- C:\WINDOWS\SysNative\drivers\TrueSight.sys
[2017.03.16 17:45:51 | 026,131,528 | ---- | C] () -- C:\Users\Endon\Desktop\RogueKillerX64.exe
[2017.03.15 21:23:51 | 000,002,775 | ---- | C] () -- C:\Users\Public\Desktop\Sophos Virus Removal Tool.lnk
[2017.03.15 18:23:10 | 000,001,919 | ---- | C] () -- C:\Users\Public\Desktop\Malwarebytes.lnk
[2017.03.15 18:23:05 | 000,077,408 | ---- | C] () -- C:\WINDOWS\SysNative\drivers\mbae64.sys
[2017.03.15 18:15:34 | 004,031,440 | ---- | C] () -- C:\Users\Endon\Desktop\AdwCleaner.exe
[2017.03.15 15:53:08 | 000,000,870 | ---- | C] () -- C:\Users\Public\Desktop\CCleaner.lnk
[2017.03.14 18:45:11 | 000,001,006 | ---- | C] () -- C:\Users\Endon\Desktop\HD Tune.lnk
[2017.03.14 15:09:19 | 000,000,000 | ---- | C] () -- C:\WINDOWS\SysNative\GfxValDisplayLog.bin
[2017.03.09 14:05:24 | 000,063,162 | ---- | C] () -- C:\Users\Endon\Desktop\Výstřižek4.PNG
[2017.03.09 14:05:05 | 000,407,775 | ---- | C] () -- C:\Users\Endon\Desktop\Výstřižek3.PNG
[2017.03.09 14:04:50 | 000,393,865 | ---- | C] () -- C:\Users\Endon\Desktop\Výstřižek2.PNG
[2017.03.06 14:35:02 | 000,001,110 | ---- | C] () -- C:\Users\Public\Desktop\Stronghold Crusader.lnk
[2017.02.22 21:33:16 | 000,331,870 | ---- | C] () -- C:\Users\Endon\Desktop\Výstřižek.PNG
[2017.02.22 01:45:56 | 000,150,032 | ---- | C] () -- C:\WINDOWS\SysWow64\libEGL.dll
[2017.02.22 01:45:56 | 000,120,848 | ---- | C] () -- C:\WINDOWS\SysWow64\libGLESv2.dll
[2017.02.22 01:45:56 | 000,110,088 | ---- | C] () -- C:\WINDOWS\SysWow64\libGLESv1_CM.dll
[2017.02.15 14:57:47 | 000,326,656 | ---- | C] () -- C:\WINDOWS\SysWow64\vulkan-1.dll
[2017.02.15 14:57:47 | 000,103,936 | ---- | C] () -- C:\WINDOWS\SysWow64\vulkaninfo.exe
[2017.02.15 14:52:06 | 035,272,760 | ---- | C] () -- C:\WINDOWS\SysWow64\nvcompiler.dll
[2017.01.26 02:24:10 | 000,226,168 | ---- | C] () -- C:\WINDOWS\SysWow64\PnkBstrB.exe
[2017.01.26 02:24:09 | 000,076,888 | ---- | C] () -- C:\WINDOWS\SysWow64\PnkBstrA.exe
[2017.01.26 01:13:16 | 000,103,936 | ---- | C] () -- C:\WINDOWS\SysWow64\vulkaninfo-1-1-0-39-1.exe
[2017.01.26 01:12:46 | 000,326,656 | ---- | C] () -- C:\WINDOWS\SysWow64\vulkan-1-1-0-39-1.dll
[2016.09.02 19:40:29 | 001,462,352 | ---- | C] () -- C:\WINDOWS\SysWow64\PerfStringBackup.INI
[2016.09.02 19:33:11 | 000,067,584 | --S- | C] () -- C:\WINDOWS\bootstat.dat
[2016.09.02 14:56:53 | 000,000,036 | ---- | C] () -- C:\WINDOWS\progress.ini
[2016.07.16 12:47:57 | 000,215,943 | ---- | C] () -- C:\WINDOWS\SysWow64\dssec.dat
[2016.07.16 12:47:57 | 000,000,741 | ---- | C] () -- C:\WINDOWS\SysWow64\NOISE.DAT
[2016.07.16 12:43:04 | 000,055,296 | ---- | C] () -- C:\WINDOWS\SysWow64\BWContextHandler.dll
[2016.07.16 12:42:55 | 000,167,640 | ---- | C] () -- C:\WINDOWS\SysWow64\chs_singlechar_pinyin.dat
[2016.07.16 12:42:53 | 000,673,088 | ---- | C] () -- C:\WINDOWS\SysWow64\mlang.dat
[2016.07.16 12:42:49 | 000,304,640 | ---- | C] () -- C:\WINDOWS\SysWow64\HrtfApo.dll
[2016.07.16 12:42:48 | 000,364,544 | ---- | C] () -- C:\WINDOWS\SysWow64\msjetoledb40.dll
[2016.07.16 12:42:43 | 000,002,307 | ---- | C] () -- C:\WINDOWS\SysWow64\WimBootCompress.ini
[2016.07.16 12:42:12 | 000,043,131 | ---- | C] () -- C:\WINDOWS\mib.bin
========== ZeroAccess Check ==========
[2016.10.14 21:48:38 | 000,000,227 | RHS- | M] () -- C:\WINDOWS\assembly\Desktop.ini
[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64
[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
"" = C:\Windows\SysNative\windows.storage.dll -- [2017.03.04 08:09:21 | 007,220,696 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\windows.storage.dll -- [2017.03.04 07:53:19 | 005,722,320 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\fastprox.dll -- [2016.07.16 12:42:31 | 000,977,920 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2016.07.16 12:42:56 | 000,779,776 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\wbemess.dll -- [2016.07.16 12:42:31 | 000,518,656 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
========== LOP Check ==========
[2016.12.03 10:15:38 | 000,000,000 | ---D | M] -- C:\Users\Endon\AppData\Roaming\Audacity
[2016.08.24 10:59:57 | 000,000,000 | ---D | M] -- C:\Users\Endon\AppData\Roaming\AVAST Software
[2017.03.15 16:05:49 | 000,000,000 | ---D | M] -- C:\Users\Endon\AppData\Roaming\DAEMON Tools Lite
[2016.08.26 08:24:21 | 000,000,000 | ---D | M] -- C:\Users\Endon\AppData\Roaming\DropboxOEM
[2016.11.02 17:28:28 | 000,000,000 | ---D | M] -- C:\Users\Endon\AppData\Roaming\HeroesAndGeneralsDesktop
[2017.03.15 15:34:19 | 000,000,000 | ---D | M] -- C:\Users\Endon\AppData\Roaming\Origin
[2016.08.23 10:37:25 | 000,000,000 | ---D | M] -- C:\Users\Endon\AppData\Roaming\Synaptics
[2017.03.14 14:02:47 | 000,000,000 | ---D | M] -- C:\Users\Endon\AppData\Roaming\uTorrent
[2016.09.24 19:20:27 | 000,000,000 | ---D | M] -- C:\Users\Endon\AppData\Roaming\Wargaming.net
========== Purity Check ==========
< End of report >
[2017.03.04 07:12:00 | 000,947,712 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MSVP9DEC.dll
[2017.03.04 07:11:42 | 001,323,008 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wsp_fs.dll
[2017.03.04 07:11:38 | 002,278,400 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AppXDeploymentServer.dll
[2017.03.04 07:11:38 | 000,572,416 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\PhotoScreensaver.scr
[2017.03.04 07:11:29 | 001,320,448 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\comsvcs.dll
[2017.03.04 07:11:29 | 000,821,248 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\uDWM.dll
[2017.03.04 07:11:26 | 004,474,368 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\D3DCompiler_47.dll
[2017.03.04 07:11:26 | 001,357,312 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MSPhotography.dll
[2017.03.04 07:11:26 | 001,137,152 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wsp_health.dll
[2017.03.04 07:11:22 | 001,312,768 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SensorDataService.exe
[2017.03.04 07:11:15 | 001,891,328 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\pnidui.dll
[2017.03.04 07:11:15 | 000,355,328 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\RTMediaFrame.dll
[2017.03.04 07:11:07 | 000,975,872 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\HelpPane.exe
[2017.03.04 07:11:06 | 001,643,008 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Media.Speech.dll
[2017.03.04 07:11:05 | 003,441,664 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MapRouter.dll
[2017.03.04 07:11:05 | 001,656,832 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\GdiPlus.dll
[2017.03.04 07:11:02 | 000,774,656 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WorkfoldersControl.dll
[2017.03.04 07:11:01 | 002,611,200 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\gameux.dll
[2017.03.04 07:11:00 | 002,953,216 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MapGeocoder.dll
[2017.03.04 07:10:59 | 001,077,760 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Media.Editing.dll
[2017.03.04 07:10:58 | 000,960,000 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\modernexecserver.dll
[2017.03.04 07:10:57 | 000,460,800 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Devices.Midi.dll
[2017.03.04 07:10:50 | 000,913,920 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Networking.dll
[2017.03.04 07:10:47 | 001,399,296 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Pimstore.dll
[2017.03.04 07:10:45 | 000,579,072 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\LockAppBroker.dll
[2017.03.04 07:10:44 | 000,971,264 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\twinui.appcore.dll
[2017.03.04 07:10:37 | 000,104,960 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WorkFolders.exe
[2017.03.04 07:10:36 | 002,095,616 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\inetcpl.cpl
[2017.03.04 07:10:31 | 002,208,768 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Graphics.Printing.3D.dll
[2017.03.04 07:10:31 | 001,275,392 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Devices.Bluetooth.dll
[2017.03.04 07:10:24 | 000,816,640 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.UI.dll
[2017.03.04 07:10:23 | 000,770,560 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\bisrv.dll
[2017.03.04 07:10:21 | 000,259,584 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\msdtcuiu.dll
[2017.03.04 07:10:20 | 001,536,000 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SpeechPal.dll
[2017.03.04 07:10:17 | 002,852,864 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SystemSettingsThresholdAdminFlowUI.dll
[2017.03.04 07:10:17 | 000,471,552 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Media.BackgroundMediaPlayback.dll
[2017.03.04 07:10:12 | 001,555,456 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WMPDMC.exe
[2017.03.04 07:10:10 | 001,586,176 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Globalization.dll
[2017.03.04 07:10:05 | 001,917,440 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ActiveSyncProvider.dll
[2017.03.04 07:10:02 | 003,307,008 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MFMediaEngine.dll
[2017.03.04 07:10:01 | 001,033,216 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MapsStore.dll
[2017.03.04 07:10:00 | 006,664,192 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mspaint.exe
[2017.03.04 07:09:57 | 008,125,952 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Chakra.dll
[2017.03.04 07:09:55 | 000,653,824 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\UserLanguagesCpl.dll
[2017.03.04 07:09:40 | 000,771,072 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AppointmentApis.dll
[2017.03.04 07:09:38 | 000,846,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MbaeApiPublic.dll
[2017.03.04 07:09:27 | 001,359,360 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\usercpl.dll
[2017.03.04 07:09:26 | 000,765,440 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Devices.Sensors.dll
[2017.03.04 07:09:22 | 001,633,792 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\quartz.dll
[2017.03.04 07:09:12 | 000,795,648 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MiracastReceiver.dll
[2017.03.04 07:09:10 | 000,123,904 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ProximityCommon.dll
[2017.03.04 07:09:08 | 000,570,368 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\clusapi.dll
[2017.03.04 07:09:04 | 000,343,040 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\PlayToDevice.dll
[2017.03.04 07:08:55 | 003,405,312 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\tquery.dll
[2017.03.04 07:08:52 | 001,266,176 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.UI.Input.Inking.dll
[2017.03.04 07:08:52 | 000,713,216 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wpnapps.dll
[2017.03.04 07:08:45 | 000,629,248 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\hgcpl.dll
[2017.03.04 07:08:32 | 000,540,160 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SettingSync.dll
[2017.03.04 07:08:30 | 012,349,952 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wmp.dll
[2017.03.04 07:08:22 | 001,981,440 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\diagtrack.dll
[2017.03.04 07:08:16 | 002,424,320 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Devices.Perception.dll
[2017.03.04 07:08:11 | 008,076,288 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mstscax.dll
[2017.03.04 07:08:06 | 001,714,688 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dui70.dll
[2017.03.04 07:08:02 | 000,834,048 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\win32spl.dll
[2017.03.04 07:08:01 | 002,800,128 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\netshell.dll
[2017.03.04 07:07:54 | 000,389,632 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\stobject.dll
[2017.03.04 07:07:49 | 002,512,384 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\themecpl.dll
[2017.03.04 07:07:49 | 000,774,656 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Web.dll
[2017.03.04 07:07:48 | 000,909,312 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.UI.Search.dll
[2017.03.04 07:07:46 | 001,490,944 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\lsasrv.dll
[2017.03.04 07:07:46 | 001,064,448 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SettingSyncCore.dll
[2017.03.04 07:07:42 | 002,748,928 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mispace.dll
[2017.03.04 07:07:42 | 000,875,520 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\TokenBroker.dll
[2017.03.04 07:07:35 | 001,792,512 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Wpc.dll
[2017.03.04 07:07:32 | 000,545,280 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mfmkvsrcsnk.dll
[2017.03.04 07:07:30 | 001,348,608 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wifinetworkmanager.dll
[2017.03.04 07:07:23 | 000,716,800 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ShareHost.dll
[2017.03.04 07:07:20 | 001,255,936 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\AzureSettingSyncProvider.dll
[2017.03.04 07:07:19 | 002,643,456 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\tquery.dll
[2017.03.04 07:07:14 | 001,512,448 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\UserDataService.dll
[2017.03.04 07:07:12 | 001,513,472 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\win32kbase.sys
[2017.03.04 07:07:10 | 000,707,584 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\LogonController.dll
[2017.03.04 07:07:06 | 002,914,816 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\CertEnroll.dll
[2017.03.04 07:07:05 | 000,895,488 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Media.Streaming.dll
[2017.03.04 07:07:04 | 000,391,168 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wuuhext.dll
[2017.03.04 07:06:59 | 001,424,896 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.UI.Xaml.Maps.dll
[2017.03.04 07:06:57 | 004,060,672 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\UIRibbon.dll
[2017.03.04 07:06:56 | 003,198,464 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\cdp.dll
[2017.03.04 07:06:52 | 004,746,752 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\jscript9.dll
[2017.03.04 07:06:52 | 002,538,496 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mssrch.dll
[2017.03.04 07:06:41 | 002,287,104 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dwmcore.dll
[2017.03.04 07:06:38 | 004,708,864 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ExplorerFrame.dll
[2017.03.04 07:06:34 | 000,483,328 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\twinapi.dll
[2017.03.04 07:06:33 | 001,013,760 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ContactApis.dll
[2017.03.04 07:06:31 | 003,202,048 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\msftedit.dll
[2017.03.04 07:06:28 | 002,153,984 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\storagewmi.dll
[2017.03.04 07:06:27 | 005,384,192 | ---- | M] (Microsoft) -- C:\WINDOWS\SysNative\dbgeng.dll
[2017.03.04 07:06:24 | 005,380,608 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\BingMaps.dll
[2017.03.04 07:06:22 | 002,820,096 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\InputService.dll
[2017.03.04 07:06:19 | 000,842,240 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ntshrui.dll
[2017.03.04 07:06:17 | 001,131,008 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\localspl.dll
[2017.03.04 07:06:13 | 000,220,672 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\PlayToReceiver.dll
[2017.03.04 07:06:11 | 002,475,008 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\DWrite.dll
[2017.03.04 07:06:11 | 001,369,088 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.UI.Xaml.Phone.dll
[2017.03.04 07:06:10 | 003,614,720 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\win32kfull.sys
[2017.03.04 07:06:04 | 000,881,664 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\authui.dll
[2017.03.04 07:06:00 | 006,109,184 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mos.dll
[2017.03.04 07:05:56 | 001,328,640 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Web.Http.dll
[2017.03.04 07:05:49 | 001,726,976 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.UI.Immersive.dll
[2017.03.04 07:05:47 | 000,458,752 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wlidprov.dll
[2017.03.04 07:05:46 | 000,298,496 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\resutils.dll
[2017.03.04 07:05:44 | 000,180,224 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\enrollmentapi.dll
[2017.03.04 07:05:41 | 000,134,144 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ErrorDetails.dll
[2017.03.04 07:05:32 | 007,468,544 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mstscax.dll
[2017.03.04 07:05:17 | 000,545,792 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\uReFS.dll
[2017.03.04 07:05:12 | 000,089,600 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\CameraCaptureUI.dll
[2017.03.04 07:05:11 | 001,221,120 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Media.Audio.dll
[2017.03.04 07:05:09 | 001,121,280 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\aadtb.dll
[2017.03.04 07:05:08 | 003,520,512 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\xpsrchvw.exe
[2017.03.04 07:05:05 | 000,924,672 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Networking.BackgroundTransfer.dll
[2017.03.04 07:04:50 | 000,719,872 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wsp_sr.dll
[2017.03.04 07:04:38 | 000,531,456 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\TpmCoreProvisioning.dll
[2017.03.04 07:04:31 | 000,433,152 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\TextInputFramework.dll
[2017.03.04 07:04:30 | 000,753,152 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\imapi2fs.dll
[2017.03.04 07:04:19 | 000,998,912 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\TSWorkspace.dll
[2017.03.04 07:04:11 | 000,035,328 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\spaceman.exe
[2017.03.04 07:04:06 | 000,340,992 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\RADCUI.dll
[2017.03.04 07:04:05 | 000,640,000 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MCRecvSrc.dll
[2017.03.04 07:03:55 | 000,359,936 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mtxclu.dll
[2017.03.04 07:03:32 | 001,247,232 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Globalization.dll
[2017.03.04 07:03:32 | 000,400,384 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\PlayToManager.dll
[2017.03.04 07:03:30 | 001,817,088 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ResetEngine.dll
[2017.03.04 07:03:24 | 006,044,672 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Chakra.dll
[2017.03.04 07:03:20 | 000,409,600 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\WMVSENCD.DLL
[2017.03.04 07:03:11 | 002,109,952 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MapGeocoder.dll
[2017.03.04 07:03:02 | 002,363,904 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MapRouter.dll
[2017.03.04 07:02:51 | 004,423,680 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ExplorerFrame.dll
[2017.03.04 07:02:49 | 001,155,072 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MSVP9DEC.dll
[2017.03.04 07:02:40 | 002,484,736 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\gameux.dll
[2017.03.04 07:02:37 | 002,740,224 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\msftedit.dll
[2017.03.04 07:02:32 | 001,709,056 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ActiveSyncProvider.dll
[2017.03.04 07:02:30 | 002,138,112 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\InputService.dll
[2017.03.04 07:02:25 | 001,170,944 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Media.Speech.dll
[2017.03.04 07:02:23 | 000,510,464 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\PhotoScreensaver.scr
[2017.03.04 07:02:19 | 000,580,608 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\hgcpl.dll
[2017.03.04 07:02:00 | 001,004,544 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.UI.Input.Inking.dll
[2017.03.04 07:01:58 | 002,646,528 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\CertEnroll.dll
[2017.03.04 07:01:53 | 000,827,904 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\twinui.appcore.dll
[2017.03.04 07:01:48 | 002,682,880 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\netshell.dll
[2017.03.04 07:01:40 | 001,293,312 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\WMPDMC.exe
[2017.03.04 07:01:37 | 001,656,320 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Devices.Perception.dll
[2017.03.04 07:01:36 | 001,988,096 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mssrch.dll
[2017.03.04 07:01:35 | 001,493,504 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Wpc.dll
[2017.03.04 07:01:35 | 000,560,640 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\UserLanguagesCpl.dll
[2017.03.04 07:01:31 | 001,993,216 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\dwmcore.dll
[2017.03.04 07:01:27 | 000,620,544 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.UI.dll
[2017.03.04 07:01:26 | 000,566,784 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ShareHost.dll
[2017.03.04 07:01:24 | 001,556,992 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.UI.Immersive.dll
[2017.03.04 07:01:24 | 000,422,400 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\twinapi.dll
[2017.03.04 07:01:22 | 003,478,528 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\UIRibbon.dll
[2017.03.04 07:01:15 | 001,564,160 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\quartz.dll
[2017.03.04 07:01:12 | 001,013,248 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Web.Http.dll
[2017.03.04 07:01:11 | 001,154,560 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Pimstore.dll
[2017.03.04 07:01:07 | 001,232,384 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.UI.Xaml.Maps.dll
[2017.03.04 07:00:59 | 000,598,528 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Web.dll
[2017.03.04 07:00:58 | 000,654,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MbaeApiPublic.dll
[2017.03.04 07:00:55 | 002,026,496 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\inetcpl.cpl
[2017.03.04 07:00:53 | 000,798,208 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\authui.dll
[2017.03.04 07:00:50 | 000,348,160 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Devices.Midi.dll
[2017.03.04 07:00:46 | 000,444,416 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\SettingSync.dll
[2017.03.04 07:00:45 | 004,557,824 | ---- | M] (Microsoft) -- C:\WINDOWS\SysWow64\dbgeng.dll
[2017.03.04 07:00:42 | 000,711,680 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.UI.Search.dll
[2017.03.04 07:00:42 | 000,691,200 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\TokenBroker.dll
[2017.03.04 07:00:30 | 000,751,104 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Networking.BackgroundTransfer.dll
[2017.03.04 07:00:27 | 002,996,736 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\win32kfull.sys
[2017.03.04 07:00:22 | 000,850,944 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ContactApis.dll
[2017.03.04 07:00:19 | 000,862,208 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\SettingSyncCore.dll
[2017.03.04 07:00:02 | 001,170,944 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.UI.Xaml.Phone.dll
[2017.03.04 06:59:01 | 000,353,280 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\TextInputFramework.dll
[2017.03.04 06:59:01 | 000,206,848 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.UI.Core.TextInput.dll
[2017.03.04 06:57:44 | 000,449,024 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\TpmCoreProvisioning.dll
[2017.03.04 06:57:41 | 003,106,304 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mstsc.exe
[2017.03.04 06:57:11 | 000,783,360 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\TSWorkspace.dll
[2017.03.04 06:57:09 | 000,299,008 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\RADCUI.dll
[2017.03.04 06:36:58 | 000,483,840 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\CoreMessaging.dll
[2017.02.24 06:23:20 | 000,077,408 | ---- | M] () -- C:\WINDOWS\SysNative\drivers\mbae64.sys
[3 C:\WINDOWS\SysNative\drivers\*.tmp files -> C:\WINDOWS\SysNative\drivers\*.tmp -> ]
========== Files Created - No Company Name ==========
[2017.03.24 15:25:09 | 000,027,182 | ---- | C] () -- C:\Users\Endon\Desktop\Výstřižeka.PNG
[2017.03.21 16:15:29 | 000,000,512 | ---- | C] () -- C:\Users\Endon\Desktop\MBR.dat
[2017.03.20 17:07:44 | 002,048,496 | ---- | C] () -- C:\WINDOWS\SysWow64\CoreUIComponents.dll
[2017.03.20 17:07:37 | 000,265,728 | ---- | C] () -- C:\WINDOWS\SysWow64\Windows.Perception.Stub.dll
[2017.03.20 17:07:12 | 000,019,968 | ---- | C] () -- C:\WINDOWS\SysWow64\GamePanelExternalHook.dll
[2017.03.20 17:06:42 | 000,448,285 | ---- | C] () -- C:\WINDOWS\SysNative\ApnDatabase.xml
[2017.03.20 17:06:05 | 000,418,304 | ---- | C] () -- C:\WINDOWS\SysNative\Windows.Perception.Stub.dll
[2017.03.20 17:05:20 | 002,681,200 | ---- | C] () -- C:\WINDOWS\SysNative\CoreUIComponents.dll
[2017.03.20 17:04:06 | 000,025,088 | ---- | C] () -- C:\WINDOWS\SysNative\GamePanelExternalHook.dll
[2017.03.20 16:33:07 | 000,517,163 | ---- | C] () -- C:\WINDOWS\ZAM.krnl.trace
[2017.03.20 16:33:07 | 000,489,087 | ---- | C] () -- C:\WINDOWS\ZAM_Guard.krnl.trace
[2017.03.20 16:33:00 | 000,001,228 | ---- | C] () -- C:\Users\Public\Desktop\Zemana AntiMalware.lnk
[2017.03.20 16:24:27 | 000,024,064 | ---- | C] () -- C:\WINDOWS\zoek-delete.exe
[2017.03.16 17:49:06 | 000,028,272 | ---- | C] () -- C:\WINDOWS\SysNative\drivers\TrueSight.sys
[2017.03.16 17:45:51 | 026,131,528 | ---- | C] () -- C:\Users\Endon\Desktop\RogueKillerX64.exe
[2017.03.15 21:23:51 | 000,002,775 | ---- | C] () -- C:\Users\Public\Desktop\Sophos Virus Removal Tool.lnk
[2017.03.15 18:23:10 | 000,001,919 | ---- | C] () -- C:\Users\Public\Desktop\Malwarebytes.lnk
[2017.03.15 18:23:05 | 000,077,408 | ---- | C] () -- C:\WINDOWS\SysNative\drivers\mbae64.sys
[2017.03.15 18:15:34 | 004,031,440 | ---- | C] () -- C:\Users\Endon\Desktop\AdwCleaner.exe
[2017.03.15 15:53:08 | 000,000,870 | ---- | C] () -- C:\Users\Public\Desktop\CCleaner.lnk
[2017.03.14 18:45:11 | 000,001,006 | ---- | C] () -- C:\Users\Endon\Desktop\HD Tune.lnk
[2017.03.14 15:09:19 | 000,000,000 | ---- | C] () -- C:\WINDOWS\SysNative\GfxValDisplayLog.bin
[2017.03.09 14:05:24 | 000,063,162 | ---- | C] () -- C:\Users\Endon\Desktop\Výstřižek4.PNG
[2017.03.09 14:05:05 | 000,407,775 | ---- | C] () -- C:\Users\Endon\Desktop\Výstřižek3.PNG
[2017.03.09 14:04:50 | 000,393,865 | ---- | C] () -- C:\Users\Endon\Desktop\Výstřižek2.PNG
[2017.03.06 14:35:02 | 000,001,110 | ---- | C] () -- C:\Users\Public\Desktop\Stronghold Crusader.lnk
[2017.02.22 21:33:16 | 000,331,870 | ---- | C] () -- C:\Users\Endon\Desktop\Výstřižek.PNG
[2017.02.22 01:45:56 | 000,150,032 | ---- | C] () -- C:\WINDOWS\SysWow64\libEGL.dll
[2017.02.22 01:45:56 | 000,120,848 | ---- | C] () -- C:\WINDOWS\SysWow64\libGLESv2.dll
[2017.02.22 01:45:56 | 000,110,088 | ---- | C] () -- C:\WINDOWS\SysWow64\libGLESv1_CM.dll
[2017.02.15 14:57:47 | 000,326,656 | ---- | C] () -- C:\WINDOWS\SysWow64\vulkan-1.dll
[2017.02.15 14:57:47 | 000,103,936 | ---- | C] () -- C:\WINDOWS\SysWow64\vulkaninfo.exe
[2017.02.15 14:52:06 | 035,272,760 | ---- | C] () -- C:\WINDOWS\SysWow64\nvcompiler.dll
[2017.01.26 02:24:10 | 000,226,168 | ---- | C] () -- C:\WINDOWS\SysWow64\PnkBstrB.exe
[2017.01.26 02:24:09 | 000,076,888 | ---- | C] () -- C:\WINDOWS\SysWow64\PnkBstrA.exe
[2017.01.26 01:13:16 | 000,103,936 | ---- | C] () -- C:\WINDOWS\SysWow64\vulkaninfo-1-1-0-39-1.exe
[2017.01.26 01:12:46 | 000,326,656 | ---- | C] () -- C:\WINDOWS\SysWow64\vulkan-1-1-0-39-1.dll
[2016.09.02 19:40:29 | 001,462,352 | ---- | C] () -- C:\WINDOWS\SysWow64\PerfStringBackup.INI
[2016.09.02 19:33:11 | 000,067,584 | --S- | C] () -- C:\WINDOWS\bootstat.dat
[2016.09.02 14:56:53 | 000,000,036 | ---- | C] () -- C:\WINDOWS\progress.ini
[2016.07.16 12:47:57 | 000,215,943 | ---- | C] () -- C:\WINDOWS\SysWow64\dssec.dat
[2016.07.16 12:47:57 | 000,000,741 | ---- | C] () -- C:\WINDOWS\SysWow64\NOISE.DAT
[2016.07.16 12:43:04 | 000,055,296 | ---- | C] () -- C:\WINDOWS\SysWow64\BWContextHandler.dll
[2016.07.16 12:42:55 | 000,167,640 | ---- | C] () -- C:\WINDOWS\SysWow64\chs_singlechar_pinyin.dat
[2016.07.16 12:42:53 | 000,673,088 | ---- | C] () -- C:\WINDOWS\SysWow64\mlang.dat
[2016.07.16 12:42:49 | 000,304,640 | ---- | C] () -- C:\WINDOWS\SysWow64\HrtfApo.dll
[2016.07.16 12:42:48 | 000,364,544 | ---- | C] () -- C:\WINDOWS\SysWow64\msjetoledb40.dll
[2016.07.16 12:42:43 | 000,002,307 | ---- | C] () -- C:\WINDOWS\SysWow64\WimBootCompress.ini
[2016.07.16 12:42:12 | 000,043,131 | ---- | C] () -- C:\WINDOWS\mib.bin
========== ZeroAccess Check ==========
[2016.10.14 21:48:38 | 000,000,227 | RHS- | M] () -- C:\WINDOWS\assembly\Desktop.ini
[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64
[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
"" = C:\Windows\SysNative\windows.storage.dll -- [2017.03.04 08:09:21 | 007,220,696 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\windows.storage.dll -- [2017.03.04 07:53:19 | 005,722,320 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\fastprox.dll -- [2016.07.16 12:42:31 | 000,977,920 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2016.07.16 12:42:56 | 000,779,776 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\wbemess.dll -- [2016.07.16 12:42:31 | 000,518,656 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
========== LOP Check ==========
[2016.12.03 10:15:38 | 000,000,000 | ---D | M] -- C:\Users\Endon\AppData\Roaming\Audacity
[2016.08.24 10:59:57 | 000,000,000 | ---D | M] -- C:\Users\Endon\AppData\Roaming\AVAST Software
[2017.03.15 16:05:49 | 000,000,000 | ---D | M] -- C:\Users\Endon\AppData\Roaming\DAEMON Tools Lite
[2016.08.26 08:24:21 | 000,000,000 | ---D | M] -- C:\Users\Endon\AppData\Roaming\DropboxOEM
[2016.11.02 17:28:28 | 000,000,000 | ---D | M] -- C:\Users\Endon\AppData\Roaming\HeroesAndGeneralsDesktop
[2017.03.15 15:34:19 | 000,000,000 | ---D | M] -- C:\Users\Endon\AppData\Roaming\Origin
[2016.08.23 10:37:25 | 000,000,000 | ---D | M] -- C:\Users\Endon\AppData\Roaming\Synaptics
[2017.03.14 14:02:47 | 000,000,000 | ---D | M] -- C:\Users\Endon\AppData\Roaming\uTorrent
[2016.09.24 19:20:27 | 000,000,000 | ---D | M] -- C:\Users\Endon\AppData\Roaming\Wargaming.net
========== Purity Check ==========
< End of report >
►Case: NZXT Noctis 450◄►Zdroj: EVGA Supernova 750W G2◄►MB: Asus MAXIMUS VIII Ranger◄►CPU: Intel core i5-6600K◄►GPU: Gainward Phoenix GTX 1060 GS◄►Chladič: Scythe Ninja 4◄►SSD: Samsung 850 EVO 250GB◄►HDD: 2x Seagate Barracuda 2TB◄►RAM: Crucial Ballistix Sport LT 2x8GB 2400Mhz DDR4◄
Re: kontrola logu - využití disku 100%
log z OTL - Extras 1/2
OTL Extras logfile created on: 24.03.2017 15:26:17 - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Endon\Desktop
64bit- An unknown product (Version = 6.2.9200) - Type = NTWorkstation
Internet Explorer (Version = 9.11.14393.0)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: dd.MM.yyyy
3,84 Gb Total Physical Memory | 1,94 Gb Available Physical Memory | 50,43% Memory free
5,59 Gb Paging File | 3,39 Gb Available in Paging File | 60,63% Paging File free
Paging file location(s): ?:\pagefile.sys
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 910,59 Gb Total Space | 682,91 Gb Free Space | 75,00% Space Free | Partition Type: NTFS
Drive D: | 19,70 Gb Total Space | 2,27 Gb Free Space | 11,51% Space Free | Partition Type: NTFS
Drive F: | 647,83 Mb Total Space | 0,00 Mb Free Space | 0,00% Space Free | Partition Type: CDFS
Drive H: | 676,74 Mb Total Space | 0,00 Mb Free Space | 0,00% Space Free | Partition Type: CDFS
Computer Name: DESKTOP-84BQ2CB | User Name: Endon | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
========== Extra Registry (SafeList) ==========
========== File Associations ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.html[@ = htmlfile] -- C:\Program Files\Internet Explorer\IEXPLORE.EXE (Microsoft Corporation)
.url[@ = InternetShortcut] -- C:\WINDOWS\SysNative\rundll32.exe (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\WINDOWS\SysWow64\control.exe (Microsoft Corporation)
.html [@ = htmlfile] -- C:\Program Files\Internet Explorer\IEXPLORE.EXE (Microsoft Corporation)
========== Shell Spawning ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation)
htmlfile [opennew] -- Reg Error: Key error.
http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
InternetShortcut [open] -- "C:\WINDOWS\system32\rundll32.exe" "C:\WINDOWS\system32\ieframe.dll",OpenURL %l (Microsoft Corporation)
InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\OpenWith.exe "%1" (Microsoft Corporation)
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [Powershell] -- powershell.exe -noexit -command Set-Location '%V' (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation)
htmlfile [opennew] -- Reg Error: Key error.
http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\OpenWith.exe "%1" (Microsoft Corporation)
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [Powershell] -- powershell.exe -noexit -command Set-Location '%V' (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Value error.
========== Security Center Settings ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = 79 AD CF 1A 4D 05 D2 01 [binary data]
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Upgrade]
"UpgradeTime" = [binary data]
"DontEnumerateCommonFilesUpgradeExe" = 1
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Upgrade]
"UpgradeTime" = Reg Error: Unknown registry data type -- File not found
========== Firewall Settings ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
========== Authorized Applications List ==========
========== Vista Active Open Ports Exception List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{0A3298A8-49C3-416B-8FEC-55DAE9278C31}" = lport=47995 | protocol=17 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamer.exe |
"{2B9C8A56-1AB2-4B98-B7BD-A6D2C5E5F48C}" = lport=5353 | protocol=17 | dir=in | app=c:\program files (x86)\google\chrome\application\chrome.exe |
"{3977E5EE-C0C0-4B52-B93F-9312C488FF70}" = lport=5353 | protocol=17 | dir=in | app=c:\program files\nvidia corporation\nvcontainer\nvcontainer.exe |
"{6B3C3D7E-A0FA-4C4C-AFA1-452F5069CA5D}" = lport=35043 | protocol=6 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamer.exe |
"{971417C2-6796-4F1E-B566-C7DE35FF01F6}" = lport=1900 | protocol=17 | dir=in | name=windows live communications platform (ssdp) |
"{A3F0CA69-5747-465C-801F-3B7A961A6323}" = lport=47984 | protocol=6 | dir=in | app=c:\program files\nvidia corporation\nvcontainer\nvcontainer.exe |
"{B3A9C9AF-7CB7-4A6E-938B-97418ED2E3C0}" = lport=6004 | protocol=17 | dir=in | app=c:\program files\microsoft office\office15\outlook.exe |
"{F5546776-7D86-4C8A-B9B9-C7DCAEB8CB08}" = lport=2869 | protocol=6 | dir=in | name=windows live communications platform (upnp) |
"{F7BD8906-2087-4B14-8F0A-6075F066CDC9}" = lport=6004 | protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\root\office16\outlook.exe |
"{FAFED13C-7B1A-4406-A24C-F92B1D9DD23C}" = lport=47998 | protocol=17 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamuseragent.exe |
========== Vista Active Application Exception List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{00714156-AFBB-4CD6-A73B-26A4D24750DE}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{019D497C-065A-40AF-AB6B-8C91EA55E5D9}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{01AC8B7F-72E2-4849-A3ED-7BAF129AB32F}" = dir=out | name=xbox |
"{01B6D724-5E12-4FB6-9163-B17402CD4955}" = dir=in | app=c:\program files\intel\wifi\bin\pandhcpdns.exe |
"{01CFBCD2-B41C-4CC6-8418-8812C460322C}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{024713E7-9AB4-4A57-81D8-6270F8625FAB}" = dir=out | name=@{microsoft.getstarted_4.5.6.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.getstarted/resources/appstorename} |
"{02563C76-BEB9-4BD0-AFDB-212D4E647632}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{04012258-9816-4C53-8D1E-B9CFF41E0F9C}" = dir=in | name=@{microsoft.windows.cortana_1.4.8.152_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.cortana/resources/displayname} |
"{05A4366A-9D27-4837-AB2A-AAEDE51DDD38}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\bin\cef\cef.win7\steamwebhelper.exe |
"{05C8E907-0BA1-4A66-904A-E580257E93B3}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{07DDF4F7-1CD6-4090-B257-4F1290ADC7E2}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{088CA138-08C5-4B4E-960A-9965FB62735F}" = dir=out | name=@{microsoft.microsoftedge_38.14393.0.0_neutral__8wekyb3d8bbwe?ms-resource://microsoft.microsoftedge/resources/appname} |
"{099863B5-6E5C-47FA-92DC-20370A953604}" = protocol=6 | dir=in | app=c:\windows\syswow64\pnkbstrb.exe |
"{0A41EABF-4D27-487F-82DB-C048D62226A3}" = protocol=17 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe |
"{0CBC54FC-FB8A-42CA-977E-4F90A16E7102}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{0D0649D4-8C91-4CCA-B30C-9E90503CA745}" = dir=in | name=@{microsoft.windows.cloudexperiencehost_10.0.10240.16384_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.cloudexperiencehost/resources/appdescription} |
"{0D2DDBB0-37F6-4C36-BB43-5C9238C7274F}" = dir=in | name=@{microsoft.windows.cloudexperiencehost_10.0.10240.16384_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.cloudexperiencehost/resources/appdescription} |
"{0D4FA08B-D1C2-4F52-B93A-21E7E9FADA5E}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{0E4392BC-8D45-45C8-863A-4E19FB2A509F}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{0E80765A-273D-475C-9C55-9B0A621E9268}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{0FB5E690-5EA3-480D-8376-C6178FF8E6C7}" = dir=in | app=c:\program files (x86)\windows live\contacts\wlcomm.exe |
"{0FCF626A-66FA-4099-9D92-068E8BC6F383}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{10C0B4F6-A866-44ED-A0D3-B622D91EDB4E}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{1162E98A-8F97-4582-A529-B12DB4F0D3D1}" = dir=in | name=xbox |
"{11C10308-9473-40C8-B476-F9B854FECB8D}" = dir=out | name=@{microsoft.accountscontrol_10.0.10240.16384_neutral__cw5n1h2txyewy?ms-resource://microsoft.accountscontrol/resources/displayname} |
"{1284ADC3-03EF-435F-9EED-84FAA85D13B8}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{13B0E241-8A58-4737-BDBF-1E3E6C683278}" = dir=out | name=@{microsoft.windowsstore_11701.1001.79.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsstore/resources/storetitle} |
"{153BC4F0-98EA-40CD-AF4C-D72F702BEFB8}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{15C8F5E6-34F8-4286-8999-6F18504FD8B9}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{165C9700-19C0-4763-83ED-F5E2E869EB9D}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{17B2DB77-6A01-4A93-A94F-A0E8412EBAC4}" = dir=in | app=c:\program files\intel corporation\intel widi\smartagenttest.exe |
"{198E1E45-A1BA-4406-895C-92B935110FEE}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{1ACBB945-7512-4E82-B6FA-DE7EE3D266EE}" = dir=in | name=onenote |
"{1ADDAE2D-F3EE-48E5-9327-1C63A6992464}" = dir=in | name=@{microsoft.microsoftofficehub_17.8017.5925.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.microsoftofficehub/officehubintl/appmanifest_getoffice_displayname} |
"{1CD3390A-C1D7-48EE-8A06-88C9DE3B36C7}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{1D0F8993-B3E5-464A-9A68-B7D0529884A1}" = dir=in | name=@{windows.contactsupport_10.0.10240.16384_neutral_neutral_cw5n1h2txyewy?ms-resource://windows.contactsupport/resources/appdisplayname} |
"{1E9CC3EA-FCAA-4695-9A6A-E7D5C7F386A0}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{205F0202-EC67-4DDB-B30D-6469D09C074B}" = dir=out | name=windows_ie_ac_001 |
"{2067D819-4B09-46B2-B1DC-2C0701BCEC9E}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{20F9156F-EF1B-4901-9DDB-B30E690A36CB}" = dir=out | name=@{microsoft.bingweather_4.18.37.0_x86__8wekyb3d8bbwe?ms-resource://microsoft.bingweather/resources/applicationtitlewithbranding} |
"{20FB94E9-2967-47AF-903D-A39E08C30C2D}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{217FB283-D690-476F-8A86-4BFB42E89299}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{218EED03-163C-4ECB-BC39-1CACF5AE1500}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{22035C0E-022C-43B0-80D9-471CB47C0EA8}" = protocol=17 | dir=in | app=c:\program files (x86)\origin games\battlefield 4\bf4x86webhelper.exe |
"{224147E2-1CDF-4514-B369-66A5560DC5B0}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{2247D275-E749-47F4-9FAF-61589A352831}" = dir=out | name=@{microsoft.windowsmaps_5.1611.3342.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsmaps/resources/appstorename} |
"{22CC2F58-9ACF-42B5-BDD2-97F9C7C324DD}" = dir=in | app=c:\program files\intel corporation\intel widi\widiappold.exe |
"{23EB6AD5-666C-4E9E-AD70-15D5BFD6A44A}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{25C421D0-60FE-494A-AC83-61E43CC8CE92}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{26E7328C-C5E9-4488-8A52-0F1EBAD54EB5}" = dir=out | name=@{microsoft.bingfinance_4.18.37.0_x86__8wekyb3d8bbwe?ms-resource://microsoft.bingfinance/resources/applicationtitlewithbranding} |
"{28B19D36-1C7F-4BFA-A5A3-B51CF479A7BA}" = dir=in | name=@{microsoft.zunemusic_10.17012.10311.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.zunemusic/resources/ids_manifest_music_app_name} |
"{28D8AA05-D303-4354-B021-6508B2AA565A}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{2A36F034-87EE-4EB8-BC2A-65BE7C12FE9E}" = protocol=17 | dir=in | app=c:\program files (x86)\origin games\battlefield 4\bf4.exe |
"{2AC410F6-B8E2-4719-BDA6-2BA1EDD1F0C5}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{2AFD25C9-618B-494B-9262-13DCBBD1D0F1}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{2BDFC450-9C4C-44DF-BF97-122FEB2DC314}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{2E5B3BFA-F6F1-400C-97F7-FB1B031FB933}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{2E73D80F-B883-477F-91D1-55D5710090F4}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{2F22DA8C-03BD-428B-A2CF-87508C5AD24A}" = dir=out | name=@{microsoft.windowsphone_10.1609.2561.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsphone/resources/appstorename} |
"{2F6770D0-CDBB-45F2-AC3D-4AC4DDB4D928}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{2FDCC0D8-9270-416D-B2D4-8487E0476405}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2cfg.exe |
"{305E01C3-08DC-45F6-9EEA-26FD737ABE95}" = dir=in | name=microsoft sticky notes |
"{319E9FCC-2585-4C41-8F72-F06DB4F322E7}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{32301E01-74F7-451A-8927-CF054956CAC3}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{3292B7C2-D09B-4AAE-BB23-20B4F1C8F56D}" = dir=in | name=@{microsoft.oneconnect_1.1607.6.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.oneconnect/oneconnect/appstorename} |
"{36319567-1851-410A-8731-B731FAC01CD0}" = dir=in | name=@{microsoft.windows.cortana_1.4.8.176_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.cortana/resources/displayname} |
"{369D7C25-3A57-4E8B-8373-091377306A26}" = dir=out | name=@{microsoft.ppiprojection_10.0.14393.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.ppiprojection/resources/productname} |
"{3887FD82-0B70-4BB2-97EE-24BEE4B602AB}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{39D55820-3786-4250-B6CB-07C841EF40A9}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{3AB9CFA5-A2B7-4A30-B34B-4EC78EA80FFF}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steam.exe |
"{3AE4A2A9-68CB-47F6-85C7-07D240D2961A}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{3B232B92-B481-4B37-B631-811F57106122}" = dir=out | name=@{microsoft.windows.parentalcontrols_1000.14393.0.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.parentalcontrols/resources/displayname} |
"{3CA11D9F-09E5-453A-BD60-2FCD6F0C2AEE}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{3E801CC4-BFDF-4F95-BB23-3B816A605EDC}" = dir=in | app=c:\program files\intel corporation\usb over ip\bin\uoipservice.exe |
"{3F2C7FCD-8F5E-4F56-8523-A54E3B5C798E}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{3F33B167-ED3C-4EBB-93BA-825199A24DB2}" = dir=out | name=twitter |
"{3FA2E721-CBE4-4AEB-9DF3-BBC82F814FB7}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{407793E5-6628-4B2A-A992-973943FE99C7}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{4155CCDF-C5E4-4145-A2D3-163301133CD0}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{42046D32-067C-4541-AD75-CF654F762530}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{42A6E13C-22E7-4E96-BDF0-C99894A7A5B6}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{42BF20AF-8DD9-4690-B452-2A20E12BA0E0}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{44AAE735-674D-4632-B09F-F4DD62472156}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{4543453F-4003-4DA8-BB3A-543CB44A67E0}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{47E85FC7-D336-4808-87E0-7C70DA7674AC}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{482C0801-FC2C-4DED-9F99-0F324041FB19}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{48F33E25-A4C9-408A-A0FF-69A52203F77B}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{49E6FB68-E792-451E-A7DD-B8BCB1FE339F}" = dir=out | name=microsoft sticky notes |
"{4A576500-3BD5-44EF-9A67-AEBD43DED730}" = dir=in | app=c:\program files (x86)\cyberlink\powerdvd14\powerdvd.exe |
"{4A6FE153-5B59-47F3-8AD9-BBBFBE14335E}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{4B8C13D5-D827-4296-BDAA-5A6D09396F5B}" = dir=out | name=@{microsoft.zunemusic_10.17012.10311.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.zunemusic/resources/ids_manifest_music_app_name} |
"{4BBCB0DF-826A-4033-9E05-2B4B805CC8D8}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{4C8982CD-8D5C-42B7-B836-F21D9B3E8AD6}" = dir=out | name=@{microsoft.windows.photos_17.214.10010.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.windows.photos/resources/appstorename} |
"{4ED0CB3F-F03B-4ABA-A9B4-D051DFB6D64F}" = protocol=17 | dir=in | app=c:\windows\syswow64\pnkbstrb.exe |
"{50E9FF5D-88B5-4ECE-BA92-7B880D097841}" = dir=out | name=@{microsoft.accountscontrol_10.0.14393.953_neutral__cw5n1h2txyewy?ms-resource://microsoft.accountscontrol/resources/displayname} |
"{50EED65F-0A4C-499E-8F0D-A94AC6EC0F50}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{5185A73E-7ADB-41F1-A5D2-AAAFD1BD8A70}" = dir=out | name=@{microsoft.people_10.2.431.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.people/resources/appstorename} |
"{51F74BA2-F0BE-48E3-82E4-FA286CC2ED9E}" = protocol=6 | dir=in | app=c:\program files\microsoft office\office15\ucmapi.exe |
"{520C0139-D7AA-4FDE-AF48-E514ECB62825}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\bin\cef\cef.win7\steamwebhelper.exe |
"{529EDD65-2EE1-4BBD-ABC5-DDCB54A097F8}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{5309E4AC-FD8C-46CC-B57E-8BE1B0267F10}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{5408170C-A068-44DE-A8C9-980EC94402E1}" = dir=out | name=tripadvisor hotels flights restaurants |
"{553105A8-5725-41E9-BE70-7D8E752E3F56}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{561C157D-5B00-47D0-848A-52CD490B5F45}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{5657B439-7DDB-4CFA-B5CF-BB4A13B9857E}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{585EE6E3-7534-4CAE-9828-17367B8D0161}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{58FD1703-87D5-48ED-9512-66E6ACCB805B}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{5A5029E4-213F-41A6-A589-783807EABA84}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{5AA9DEEF-A2E6-4C37-A085-1BA69231976D}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{5B011881-D6E0-4476-B9CC-AC4884229513}" = dir=in | name=@{microsoft.microsoftedge_20.10240.16384.0_neutral__8wekyb3d8bbwe?ms-resource://microsoft.microsoftedge/resources/appname} |
"{5E46586A-EABA-4B30-8255-E9764EDEC9EE}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{5EB50599-EE31-4945-B19E-257FBA12BA10}" = protocol=17 | dir=in | app=c:\program files (x86)\battlelog web plugins\sonar\0.70.4\sonarhost.exe |
"{5F29C536-F4CE-46E8-B927-A3EE8830D03C}" = dir=out | name=candy crush soda saga |
"{606F0C92-8CD6-4465-8791-0F771F1052E1}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{61875924-F9D7-44C7-802A-D2AC9DFB71AA}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{61977925-4994-4587-B23B-4DA5B07E6B89}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{61BCDF57-B2A1-4ECB-B15D-BD660F3C0A4B}" = dir=out | name=@{windows.contactsupport_10.0.10240.16384_neutral_neutral_cw5n1h2txyewy?ms-resource://windows.contactsupport/resources/appdisplayname} |
"{61E75F2C-5DCA-4B7B-9319-8B5798B62FE0}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2cfg.exe |
"{62239439-5C97-40AB-81F4-FB64FABBAE66}" = protocol=6 | dir=in | app=c:\windows\syswow64\pnkbstra.exe |
"{636F0DE1-9A8A-4F4A-954B-53DA5704C1FA}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{64EE77A9-F44F-4040-8087-C11AEBD30D12}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{64F5E0C4-D519-4F4C-9DB5-B66C9615D0F5}" = dir=out | name=windows_ie_ac_001 |
"{655D7C63-5562-471B-9DC2-F5CF079BC11B}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{66B8BD4D-4CD1-473D-8443-FEFEDBFEADCD}" = protocol=17 | dir=in | app=c:\program files (x86)\origin games\battlefield 4\bf4webhelper.exe |
"{67179EAB-D28A-4A86-996B-EAF8DAACF830}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{6754A1AC-2398-4C07-BCF1-12A2C3E30E0B}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{67589632-6FCB-49DF-8821-7B80A22C3C4C}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{682E3414-5F60-493B-9724-440D600EC108}" = dir=out | name=@{microsoft.windows.cortana_1.7.0.14393_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.cortana/resources/packagedisplayname} |
"{682EEF9E-4C4F-4DD1-AE65-87E558BF1B26}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{69735FCA-A7BB-49C9-B2A0-9B3B54376D63}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{6DF91F78-4FBC-4AC4-89CE-B4482978ACC9}" = dir=in | name=@{microsoft.aad.brokerplugin_1000.10240.16384.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.aad.brokerplugin/resources/packagedisplayname} |
"{6E68B88F-8E5B-4AF3-A748-6028BB8F4F0B}" = protocol=6 | dir=in | app=c:\nexon\library\combatarms\appdata\nmservice.exe |
"{6E77296E-2145-4173-9E26-CC3254535B85}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{6EA661EC-397F-43E8-B838-EF7291CBBCCF}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{6F713C57-802C-4758-814A-A446A41039F6}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{6FEC02A8-31CD-4838-8E1F-DA5F8FD26DD8}" = dir=in | name=microsoft solitaire collection |
"{70E196A2-AE88-4387-AFB1-E7658A6AB6D8}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{731704C2-FC86-439B-AAA1-C62BAEC7559F}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{74373EE0-66DC-4507-9245-2D986ACC0859}" = dir=out | name=@{microsoft.windows.contentdeliverymanager_10.0.14393.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.contentdeliverymanager/resources/appdisplayname} |
"{7440AC27-3E15-4173-A4AB-3600328204FC}" = dir=in | name=@{microsoft.ppiprojection_10.0.14393.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.ppiprojection/resources/productname} |
"{74B9A1B4-02FE-4BDE-83BF-EC15611CA773}" = protocol=6 | dir=in | app=c:\program files (x86)\origin games\battlefield 4\bf4x86webhelper.exe |
"{77744BFC-10D3-4BB5-8B22-BFA9745DB1A1}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{782BD277-E2D5-4CB5-9914-327AEBC93A2F}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{78DE4420-697D-42EB-8B68-D903D60C3477}" = dir=out | name=store purchase app |
"{7986E877-9F43-42D1-926C-659BB5EEC239}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{79B10739-3318-43AC-9FD1-F38A5CADB27A}" = dir=out | name=@{microsoft.windowscommunicationsapps_17.8016.42007.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowscommunicationsapps/hxoutlookintl/appmanifest_outlookdesktop_displayname} |
"{7A819F54-1647-4536-B9A0-35E6EFC71D26}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{7B24C34D-A970-498D-A7CE-D3F8680DCC4F}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{7BBF7484-45D6-4CED-9E3F-5AC0B9245573}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{7C4CA72D-4FA8-4A3A-851D-CEA28B00E5E5}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{7F6A4444-E4C3-47BF-B81C-E0AEB95779E3}" = dir=out | name=@{microsoft.windows.apprep.chxapp_1000.14393.0.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.apprep.chxapp/resources/displayname} |
"{7FAD33AD-40E2-4EEC-AF83-9E3F1380A1A8}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{7FF4411A-A2D8-4B26-B1D7-7B8A614D4141}" = dir=out | name=@{microsoft.windowsfeedback_10.0.10240.16384_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windowsfeedback/feedbackapp.resources/appname/text} |
"{800EEDDB-60F1-496A-9753-C8E20371CDFA}" = dir=out | name=@{microsoft.3dbuilder_12.0.3131.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.3dbuilder/resources/appstorename} |
"{805A30BB-7603-467C-B932-8A44776A51A2}" = protocol=6 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe |
"{8100EAAC-5CCA-4A59-AFA2-E9A49F6A6B2D}" = dir=out | name=@{windows.purchasedialog_6.2.0.0_neutral_neutral_cw5n1h2txyewy?ms-resource://windows.purchasedialog/resources/displayname} |
"{81E27C88-3220-4784-8A22-ABB7F3363E4A}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{82BCF370-D07D-4D49-9485-88BFC7CE4001}" = protocol=6 | dir=in | app=c:\program files (x86)\origin games\battlefield 4\bf4.exe |
"{83324F97-423C-4288-AAA9-8065FD386D92}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{83942D75-B6DE-49F5-A1FD-38C55BEB34C9}" = dir=in | name=@{microsoft.ppiprojection_10.0.14393.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.ppiprojection/resources/productname} |
"{8446C17C-E60B-4253-A4F2-0FC9CDF9CA9F}" = dir=out | name=@{microsoft.windowsfeedback_10.0.10240.16393_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windowsfeedback/feedbackapp.resources/appname/text} |
"{84B3D56E-BDE3-455D-B302-5200B7459EA6}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{853BEE53-4F1F-4D61-8456-D1F0173EF32E}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{86D102D2-6F20-4867-B44A-EE07D29C03E8}" = dir=out | name=@{microsoft.xboxgamecallableui_1000.14393.0.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.xboxgamecallableui/resources/pkgdisplayname} |
"{87951C03-00AB-44CB-9B0C-B395B79ABD60}" = dir=out | name=@{windows.contactsupport_10.0.14393.0_neutral_neutral_cw5n1h2txyewy?ms-resource://windows.contactsupport/resources/appdisplayname} |
"{879E6029-541A-4E34-B8BE-798F079922C1}" = dir=out | name=@{microsoft.windows.cloudexperiencehost_10.0.10240.16384_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.cloudexperiencehost/resources/appdescription} |
"{87B62394-DC84-47B5-8CC8-0FC4AD79A2C4}" = dir=out | name=onenote |
"{87B7386F-540C-41C1-8CFB-C88C3CFA799E}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{87C3FD7E-FBBE-4CEC-AA20-C8A19EDF6ED5}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{89AB22DF-8217-4274-B977-5CB7B49C6B68}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{8A6DDD12-80F1-4DD7-825A-DB8E1A1311B7}" = dir=in | name=@{microsoft.aad.brokerplugin_1000.14393.0.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.aad.brokerplugin/resources/packagedisplayname} |
"{8CBE1BA0-B29F-42B4-AC0F-0BC74F57E1D7}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{8D153AC4-DAA0-413F-96F2-FF3851155DDB}" = dir=out | name=@{microsoft.xboxgamecallableui_1000.10240.16384.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.xboxgamecallableui/resources/pkgdisplayname} |
"{8D2321A2-F67A-485B-B611-85080D4D9B15}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{8D7B3061-9571-4F95-8F2F-D749C7050F60}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{8DDD5E18-032F-4429-9AD3-F3DC62323EB2}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{8E213329-2E95-421D-99A5-2B79D3F139E2}" = dir=out | name=@{microsoft.xboxidentityprovider_1000.10240.16384.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.xboxidentityprovider/resources/pkgdisplayname} |
"{8F29C526-50DE-4A42-AC13-953E69654848}" = dir=out | name=@{microsoft.messaging_3.19.1001.0_x86__8wekyb3d8bbwe?ms-resource://microsoft.messaging/resources/appstorename} |
"{8FFB19E1-6388-46FA-B569-5CBE617FE70F}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{904CD48E-C80C-43D7-B6FB-E07D136EA7F3}" = dir=in | name=@{microsoft.windowscommunicationsapps_17.8016.42007.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowscommunicationsapps/hxoutlookintl/appmanifest_outlookdesktop_displayname} |
"{92257C58-9965-4ED3-8265-8BAE999FB4E3}" = protocol=6 | dir=in | app=c:\program files (x86)\battlelog web plugins\sonar\0.70.4\sonarhost.exe |
"{92F239D3-7F3A-49BB-913D-724E1E0640D3}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{935F0574-CBD7-4702-9FF4-B9742F056093}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{95EDD498-E606-403A-A48E-319CC003F26B}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{95F1A76E-80D7-4766-B2F6-F78CC7C25904}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{978198DD-30FB-4F9B-9364-0187D031CAA6}" = dir=out | name=@{microsoft.windows.cloudexperiencehost_10.0.14393.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.cloudexperiencehost/resources/appdescription} |
"{987FE19B-57C4-45B2-AF32-74A06C82C9C7}" = dir=out | name=@{microsoft.oneconnect_1.1607.6.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.oneconnect/oneconnect/appstorename} |
"{98F2F7D6-B9F0-47DD-9809-6BB95F419CF8}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{999D146E-3FE3-413E-BF10-CF998C1052A5}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{9A55DE83-710D-439B-A820-D441C8297D95}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{9B79EDCA-3067-4B02-B987-308474A68A7B}" = dir=out | name=@{microsoft.aad.brokerplugin_1000.14393.0.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.aad.brokerplugin/resources/packagedisplayname} |
"{9BA71884-0C46-4EF1-AE93-A9096363C126}" = dir=out | name=the weather channel for hp |
"{9BC08BFE-7EA7-40A5-A635-059B28D7C8FC}" = dir=out | name=microsoft solitaire collection |
"{9CC5C01B-C92E-456E-A9DD-8EE7E08DB299}" = dir=out | name=@{microsoft.xboxidentityprovider_11.19.19003.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.xboxidentityprovider/resources/displayname} |
"{9D266246-BD84-4864-9B99-4F153A15AD89}" = dir=out | name=@{microsoft.windowsfeedbackhub_1.1702.653.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsfeedbackhub/resources/appstorename} |
"{9E44A7AD-53CA-4A31-9C29-BDB926FE2671}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{A01067AE-CADC-44A4-A141-85C4A947E6E8}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{A0910C64-9254-42C7-BEF1-AA4829EFF3D7}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{A0B23296-6759-48D2-A148-424041C93F12}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{A118F5D0-775A-4BCE-98BD-5C4955600C16}" = dir=out | name=@{microsoft.skypeapp_11.12.112.0_x64__kzf8qxf38zg5c?ms-resource://microsoft.skypeapp/resources/skypevideo_productname} |
"{A16B5E30-C2E2-4A59-BC7E-A41718E3A0BF}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{A203E86E-3415-4978-B730-0F9E73E8621D}" = dir=out | name=@{microsoft.windows.contentdeliverymanager_10.0.10240.16384_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.contentdeliverymanager/resources/appdisplayname} |
"{A2BB7B29-F8C3-4762-8C7A-AC50B985C9E6}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{A2E4C7CC-66E3-457E-8683-18A1DDFE5300}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{A2E5D4C6-DEA5-4557-B4E0-D07BFB5F2702}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{A33003CE-288A-449C-BB8E-0F63C82EDBCD}" = dir=out | name=@{microsoft.windows.shellexperiencehost_10.0.14393.953_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.shellexperiencehost/resources/pkgdisplayname} |
"{A38805C1-0F9D-41AF-9F99-E8EF60905F76}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{A3BC4D4E-6262-48B8-B85C-2CD434A30998}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{A46E5A6D-B450-4DED-9C4B-E4C63F23721F}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{A4D5F872-DF02-4818-B85F-61768D0B1912}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{A58EE8FF-0739-4C60-9C4B-8CF65D92F41F}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{A6AF67C5-4EDC-43DD-937E-FFC9C48726B6}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{A6CC831F-7744-44C7-B2D2-10ABE539BC6A}" = dir=in | name=@{microsoft.microsoftedge_38.14393.0.0_neutral__8wekyb3d8bbwe?ms-resource://microsoft.microsoftedge/resources/appname} |
"{A7E2594A-4934-4338-8EF4-1070A1BFA6AF}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{A8F672C1-0D99-46F5-B264-6EC49C4A2C21}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{A9469753-88FF-4A74-AC96-3179A666EE25}" = protocol=17 | dir=in | app=c:\program files\microsoft office\office15\lync.exe |
"{AA601AFF-CD00-4EDC-AAA2-CCDC779D9922}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{AC019DDB-1069-4C6A-B5DB-F365F8FAE21D}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{AD1A8927-FE35-4B37-A026-2EF63CBF2000}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{B18044D1-14BF-44A9-8993-258C054820CC}" = dir=in | name=@{microsoft.skypeapp_11.12.112.0_x64__kzf8qxf38zg5c?ms-resource://microsoft.skypeapp/resources/skypevideo_productname} |
"{B33D0815-5B22-48C8-8985-164193F00DED}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{B40093D2-7F1A-4866-8A61-930D973CA5D9}" = dir=out | name=@{microsoft.windows.cortana_1.4.8.176_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.cortana/resources/displayname} |
"{B68A1BB5-3789-4098-B5F4-F068CF02A8AC}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{B7530137-0883-4803-94F2-3977BDEF87A2}" = dir=out | name=@{microsoft.microsoftofficehub_17.8017.5925.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.microsoftofficehub/officehubintl/appmanifest_getoffice_displayname} |
"{B7FDC131-CE99-49CA-AC1C-C6A95AC471D5}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{B7FEB83B-CD8E-4CFB-B648-A9EA1E482790}" = dir=in | name=@{microsoft.zunevideo_10.17012.10301.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.zunevideo/resources/ids_manifest_video_app_name} |
"{B936B371-0ECC-4D9E-9B80-242E105E5BC7}" = dir=in | name=@{microsoft.windowsfeedbackhub_1.1702.653.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsfeedbackhub/resources/appstorename} |
"{BA15519B-1D9C-49C3-82BF-17949A19D52E}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{BA297554-E315-427E-BFA3-BE8E4E22E562}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{BAD0C97A-11DF-4815-B213-A369A7204391}" = dir=in | name=@{microsoft.windowsstore_11701.1001.79.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsstore/resources/storetitle} |
"{BE4A9AB5-8D08-4DA6-9D24-5B06E7A752FB}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{BEBCDF43-2230-49D0-9D42-319F716F85CF}" = protocol=17 | dir=in | app=c:\program files\microsoft office\office15\ucmapi.exe |
"{BF00216B-7EDA-4157-84AE-D55C60C7A11C}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steam.exe |
"{C11A4516-A9BC-43CD-86DF-707E78AABE93}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{C159D554-2CB0-4DAD-A9C6-CFAF852915AC}" = protocol=6 | dir=in | app=c:\program files (x86)\origin games\battlefield 4\bf4webhelper.exe |
"{C21D8A62-D5B9-4C6F-B053-3590D4C2D0E1}" = dir=out | name=@{microsoft.zunevideo_10.17012.10301.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.zunevideo/resources/ids_manifest_video_app_name} |
"{C2CC84F4-0FD3-43D8-908B-5E153BC26FC0}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{C6B36121-B8F1-4331-8EA3-3E2601C40ABE}" = dir=in | name=@{microsoft.messaging_3.19.1001.0_x86__8wekyb3d8bbwe?ms-resource://microsoft.messaging/resources/appstorename} |
"{C7E2C767-70F1-40E4-9BD3-6B62FC831894}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{C808F94E-8D18-4046-B71A-B712024A3045}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{C8C44F6F-B1EF-4E6D-BC5D-78DF7145BAD9}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{C8EFE8C9-641D-41A6-8E17-51F0E3246827}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{C90F77DE-8112-4DCF-98C7-4D526AAAA72D}" = dir=out | name=@{microsoft.windows.cortana_1.4.8.152_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.cortana/resources/displayname} |
"{CB63994E-6B1D-4C2E-AABA-001E568F090D}" = dir=in | name=@{microsoft.windows.cortana_1.7.0.14393_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.cortana/resources/packagedisplayname} |
"{CC19FAEF-0683-4064-B09A-D680ABA98E82}" = dir=in | name=@{microsoft.bingweather_4.18.37.0_x86__8wekyb3d8bbwe?ms-resource://microsoft.bingweather/resources/applicationtitlewithbranding} |
"{CDE27551-4D56-46F4-BD60-C4BBCB70CB02}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{CDE46CB7-C390-4DAE-9E88-D671D003179F}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{CDF682E1-8843-434C-92AE-4D5248F4281A}" = dir=out | name=@{microsoft.bingsports_4.18.37.0_x86__8wekyb3d8bbwe?ms-resource://microsoft.bingsports/resources/applicationtitlewithbranding} |
"{CE12958A-CF77-4439-9829-8E4D26ED1E3F}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{CE68B468-DC26-4297-B92E-A24A8AF1F262}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{CED8FDEE-BC5E-41E8-B778-90704F734D5A}" = dir=in | app=c:\program files (x86)\cyberlink\powerdvd14\movie\powerdvd cinema\powerdvdcinema.exe |
"{D0A5C7F1-3764-449F-B4AC-E97484C22382}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{D116422C-A176-42F9-A33E-4F6FAB2AFA5A}" = dir=in | app=c:\program files (x86)\cyberlink\powerdvd14\movie\powerdvdmovie.exe |
"{D1202E82-56B0-4314-AB68-7D8B205C81D9}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{D4079F76-79AB-482D-B74D-39B9FE4C0AC0}" = dir=in | name=@{microsoft.bingfinance_4.18.37.0_x86__8wekyb3d8bbwe?ms-resource://microsoft.bingfinance/resources/applicationtitlewithbranding} |
"{D41EFB1F-8FC8-4B9C-9170-8CCBB9A19A47}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{D44E73A1-B340-40CF-AFD9-93DA03122C5A}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{D46AB2E1-4994-47BB-92A2-F8186A3C5BF5}" = dir=out | name=@{microsoft.windows.parentalcontrols_1000.10240.16384.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.parentalcontrols/resources/displayname} |
"{D59BB378-CB5E-4CA8-A021-5B36DB3DCEA0}" = dir=in | name=@{microsoft.windows.cloudexperiencehost_10.0.14393.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.cloudexperiencehost/resources/appdescription} |
"{DA46094C-F066-4E90-BB52-4F6E14EADD13}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{DB436190-428A-4933-9032-2AE8B1CDC51A}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{DC081538-F93D-4BC4-835E-079FEF04AFD9}" = dir=in | name=@{windows.contactsupport_10.0.14393.0_neutral_neutral_cw5n1h2txyewy?ms-resource://windows.contactsupport/resources/appdisplayname} |
"{DC08903F-FD1B-4208-AB13-7EB00F88480F}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{DC62F197-AAD4-491C-BD83-97A25274A998}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{DC9394A7-3CF3-4877-9977-96CD7F1CEC69}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{DD438027-C6B3-4AED-B726-C3C9C9613DC9}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{DD937E1F-E65A-453D-924A-B276C6D70F35}" = dir=out | name=@{microsoft.windows.cloudexperiencehost_10.0.10240.16384_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.cloudexperiencehost/resources/appdescription} |
"{DE230F4A-259A-4525-A682-4079082146EF}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{DEF1B276-5A89-45CB-8DFF-79EB8AB7222F}" = dir=out | name=@{microsoft.microsoftedge_20.10240.16384.0_neutral__8wekyb3d8bbwe?ms-resource://microsoft.microsoftedge/resources/appname} |
"{DF2C5421-24A8-45F0-9D10-13B410A8E07B}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{E0687A9D-411E-4884-A58F-74E8A7EFBAEF}" = dir=out | name=hearts deluxe |
OTL Extras logfile created on: 24.03.2017 15:26:17 - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Endon\Desktop
64bit- An unknown product (Version = 6.2.9200) - Type = NTWorkstation
Internet Explorer (Version = 9.11.14393.0)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: dd.MM.yyyy
3,84 Gb Total Physical Memory | 1,94 Gb Available Physical Memory | 50,43% Memory free
5,59 Gb Paging File | 3,39 Gb Available in Paging File | 60,63% Paging File free
Paging file location(s): ?:\pagefile.sys
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 910,59 Gb Total Space | 682,91 Gb Free Space | 75,00% Space Free | Partition Type: NTFS
Drive D: | 19,70 Gb Total Space | 2,27 Gb Free Space | 11,51% Space Free | Partition Type: NTFS
Drive F: | 647,83 Mb Total Space | 0,00 Mb Free Space | 0,00% Space Free | Partition Type: CDFS
Drive H: | 676,74 Mb Total Space | 0,00 Mb Free Space | 0,00% Space Free | Partition Type: CDFS
Computer Name: DESKTOP-84BQ2CB | User Name: Endon | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
========== Extra Registry (SafeList) ==========
========== File Associations ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.html[@ = htmlfile] -- C:\Program Files\Internet Explorer\IEXPLORE.EXE (Microsoft Corporation)
.url[@ = InternetShortcut] -- C:\WINDOWS\SysNative\rundll32.exe (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\WINDOWS\SysWow64\control.exe (Microsoft Corporation)
.html [@ = htmlfile] -- C:\Program Files\Internet Explorer\IEXPLORE.EXE (Microsoft Corporation)
========== Shell Spawning ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation)
htmlfile [opennew] -- Reg Error: Key error.
http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
InternetShortcut [open] -- "C:\WINDOWS\system32\rundll32.exe" "C:\WINDOWS\system32\ieframe.dll",OpenURL %l (Microsoft Corporation)
InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\OpenWith.exe "%1" (Microsoft Corporation)
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [Powershell] -- powershell.exe -noexit -command Set-Location '%V' (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation)
htmlfile [opennew] -- Reg Error: Key error.
http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\OpenWith.exe "%1" (Microsoft Corporation)
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [Powershell] -- powershell.exe -noexit -command Set-Location '%V' (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Value error.
========== Security Center Settings ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = 79 AD CF 1A 4D 05 D2 01 [binary data]
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Upgrade]
"UpgradeTime" = [binary data]
"DontEnumerateCommonFilesUpgradeExe" = 1
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Upgrade]
"UpgradeTime" = Reg Error: Unknown registry data type -- File not found
========== Firewall Settings ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
========== Authorized Applications List ==========
========== Vista Active Open Ports Exception List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{0A3298A8-49C3-416B-8FEC-55DAE9278C31}" = lport=47995 | protocol=17 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamer.exe |
"{2B9C8A56-1AB2-4B98-B7BD-A6D2C5E5F48C}" = lport=5353 | protocol=17 | dir=in | app=c:\program files (x86)\google\chrome\application\chrome.exe |
"{3977E5EE-C0C0-4B52-B93F-9312C488FF70}" = lport=5353 | protocol=17 | dir=in | app=c:\program files\nvidia corporation\nvcontainer\nvcontainer.exe |
"{6B3C3D7E-A0FA-4C4C-AFA1-452F5069CA5D}" = lport=35043 | protocol=6 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamer.exe |
"{971417C2-6796-4F1E-B566-C7DE35FF01F6}" = lport=1900 | protocol=17 | dir=in | name=windows live communications platform (ssdp) |
"{A3F0CA69-5747-465C-801F-3B7A961A6323}" = lport=47984 | protocol=6 | dir=in | app=c:\program files\nvidia corporation\nvcontainer\nvcontainer.exe |
"{B3A9C9AF-7CB7-4A6E-938B-97418ED2E3C0}" = lport=6004 | protocol=17 | dir=in | app=c:\program files\microsoft office\office15\outlook.exe |
"{F5546776-7D86-4C8A-B9B9-C7DCAEB8CB08}" = lport=2869 | protocol=6 | dir=in | name=windows live communications platform (upnp) |
"{F7BD8906-2087-4B14-8F0A-6075F066CDC9}" = lport=6004 | protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\root\office16\outlook.exe |
"{FAFED13C-7B1A-4406-A24C-F92B1D9DD23C}" = lport=47998 | protocol=17 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamuseragent.exe |
========== Vista Active Application Exception List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{00714156-AFBB-4CD6-A73B-26A4D24750DE}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{019D497C-065A-40AF-AB6B-8C91EA55E5D9}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{01AC8B7F-72E2-4849-A3ED-7BAF129AB32F}" = dir=out | name=xbox |
"{01B6D724-5E12-4FB6-9163-B17402CD4955}" = dir=in | app=c:\program files\intel\wifi\bin\pandhcpdns.exe |
"{01CFBCD2-B41C-4CC6-8418-8812C460322C}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{024713E7-9AB4-4A57-81D8-6270F8625FAB}" = dir=out | name=@{microsoft.getstarted_4.5.6.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.getstarted/resources/appstorename} |
"{02563C76-BEB9-4BD0-AFDB-212D4E647632}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{04012258-9816-4C53-8D1E-B9CFF41E0F9C}" = dir=in | name=@{microsoft.windows.cortana_1.4.8.152_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.cortana/resources/displayname} |
"{05A4366A-9D27-4837-AB2A-AAEDE51DDD38}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\bin\cef\cef.win7\steamwebhelper.exe |
"{05C8E907-0BA1-4A66-904A-E580257E93B3}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{07DDF4F7-1CD6-4090-B257-4F1290ADC7E2}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{088CA138-08C5-4B4E-960A-9965FB62735F}" = dir=out | name=@{microsoft.microsoftedge_38.14393.0.0_neutral__8wekyb3d8bbwe?ms-resource://microsoft.microsoftedge/resources/appname} |
"{099863B5-6E5C-47FA-92DC-20370A953604}" = protocol=6 | dir=in | app=c:\windows\syswow64\pnkbstrb.exe |
"{0A41EABF-4D27-487F-82DB-C048D62226A3}" = protocol=17 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe |
"{0CBC54FC-FB8A-42CA-977E-4F90A16E7102}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{0D0649D4-8C91-4CCA-B30C-9E90503CA745}" = dir=in | name=@{microsoft.windows.cloudexperiencehost_10.0.10240.16384_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.cloudexperiencehost/resources/appdescription} |
"{0D2DDBB0-37F6-4C36-BB43-5C9238C7274F}" = dir=in | name=@{microsoft.windows.cloudexperiencehost_10.0.10240.16384_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.cloudexperiencehost/resources/appdescription} |
"{0D4FA08B-D1C2-4F52-B93A-21E7E9FADA5E}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{0E4392BC-8D45-45C8-863A-4E19FB2A509F}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{0E80765A-273D-475C-9C55-9B0A621E9268}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{0FB5E690-5EA3-480D-8376-C6178FF8E6C7}" = dir=in | app=c:\program files (x86)\windows live\contacts\wlcomm.exe |
"{0FCF626A-66FA-4099-9D92-068E8BC6F383}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{10C0B4F6-A866-44ED-A0D3-B622D91EDB4E}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{1162E98A-8F97-4582-A529-B12DB4F0D3D1}" = dir=in | name=xbox |
"{11C10308-9473-40C8-B476-F9B854FECB8D}" = dir=out | name=@{microsoft.accountscontrol_10.0.10240.16384_neutral__cw5n1h2txyewy?ms-resource://microsoft.accountscontrol/resources/displayname} |
"{1284ADC3-03EF-435F-9EED-84FAA85D13B8}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{13B0E241-8A58-4737-BDBF-1E3E6C683278}" = dir=out | name=@{microsoft.windowsstore_11701.1001.79.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsstore/resources/storetitle} |
"{153BC4F0-98EA-40CD-AF4C-D72F702BEFB8}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{15C8F5E6-34F8-4286-8999-6F18504FD8B9}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{165C9700-19C0-4763-83ED-F5E2E869EB9D}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{17B2DB77-6A01-4A93-A94F-A0E8412EBAC4}" = dir=in | app=c:\program files\intel corporation\intel widi\smartagenttest.exe |
"{198E1E45-A1BA-4406-895C-92B935110FEE}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{1ACBB945-7512-4E82-B6FA-DE7EE3D266EE}" = dir=in | name=onenote |
"{1ADDAE2D-F3EE-48E5-9327-1C63A6992464}" = dir=in | name=@{microsoft.microsoftofficehub_17.8017.5925.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.microsoftofficehub/officehubintl/appmanifest_getoffice_displayname} |
"{1CD3390A-C1D7-48EE-8A06-88C9DE3B36C7}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{1D0F8993-B3E5-464A-9A68-B7D0529884A1}" = dir=in | name=@{windows.contactsupport_10.0.10240.16384_neutral_neutral_cw5n1h2txyewy?ms-resource://windows.contactsupport/resources/appdisplayname} |
"{1E9CC3EA-FCAA-4695-9A6A-E7D5C7F386A0}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{205F0202-EC67-4DDB-B30D-6469D09C074B}" = dir=out | name=windows_ie_ac_001 |
"{2067D819-4B09-46B2-B1DC-2C0701BCEC9E}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{20F9156F-EF1B-4901-9DDB-B30E690A36CB}" = dir=out | name=@{microsoft.bingweather_4.18.37.0_x86__8wekyb3d8bbwe?ms-resource://microsoft.bingweather/resources/applicationtitlewithbranding} |
"{20FB94E9-2967-47AF-903D-A39E08C30C2D}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{217FB283-D690-476F-8A86-4BFB42E89299}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{218EED03-163C-4ECB-BC39-1CACF5AE1500}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{22035C0E-022C-43B0-80D9-471CB47C0EA8}" = protocol=17 | dir=in | app=c:\program files (x86)\origin games\battlefield 4\bf4x86webhelper.exe |
"{224147E2-1CDF-4514-B369-66A5560DC5B0}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{2247D275-E749-47F4-9FAF-61589A352831}" = dir=out | name=@{microsoft.windowsmaps_5.1611.3342.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsmaps/resources/appstorename} |
"{22CC2F58-9ACF-42B5-BDD2-97F9C7C324DD}" = dir=in | app=c:\program files\intel corporation\intel widi\widiappold.exe |
"{23EB6AD5-666C-4E9E-AD70-15D5BFD6A44A}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{25C421D0-60FE-494A-AC83-61E43CC8CE92}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{26E7328C-C5E9-4488-8A52-0F1EBAD54EB5}" = dir=out | name=@{microsoft.bingfinance_4.18.37.0_x86__8wekyb3d8bbwe?ms-resource://microsoft.bingfinance/resources/applicationtitlewithbranding} |
"{28B19D36-1C7F-4BFA-A5A3-B51CF479A7BA}" = dir=in | name=@{microsoft.zunemusic_10.17012.10311.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.zunemusic/resources/ids_manifest_music_app_name} |
"{28D8AA05-D303-4354-B021-6508B2AA565A}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{2A36F034-87EE-4EB8-BC2A-65BE7C12FE9E}" = protocol=17 | dir=in | app=c:\program files (x86)\origin games\battlefield 4\bf4.exe |
"{2AC410F6-B8E2-4719-BDA6-2BA1EDD1F0C5}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{2AFD25C9-618B-494B-9262-13DCBBD1D0F1}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{2BDFC450-9C4C-44DF-BF97-122FEB2DC314}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{2E5B3BFA-F6F1-400C-97F7-FB1B031FB933}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{2E73D80F-B883-477F-91D1-55D5710090F4}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{2F22DA8C-03BD-428B-A2CF-87508C5AD24A}" = dir=out | name=@{microsoft.windowsphone_10.1609.2561.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsphone/resources/appstorename} |
"{2F6770D0-CDBB-45F2-AC3D-4AC4DDB4D928}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{2FDCC0D8-9270-416D-B2D4-8487E0476405}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2cfg.exe |
"{305E01C3-08DC-45F6-9EEA-26FD737ABE95}" = dir=in | name=microsoft sticky notes |
"{319E9FCC-2585-4C41-8F72-F06DB4F322E7}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{32301E01-74F7-451A-8927-CF054956CAC3}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{3292B7C2-D09B-4AAE-BB23-20B4F1C8F56D}" = dir=in | name=@{microsoft.oneconnect_1.1607.6.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.oneconnect/oneconnect/appstorename} |
"{36319567-1851-410A-8731-B731FAC01CD0}" = dir=in | name=@{microsoft.windows.cortana_1.4.8.176_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.cortana/resources/displayname} |
"{369D7C25-3A57-4E8B-8373-091377306A26}" = dir=out | name=@{microsoft.ppiprojection_10.0.14393.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.ppiprojection/resources/productname} |
"{3887FD82-0B70-4BB2-97EE-24BEE4B602AB}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{39D55820-3786-4250-B6CB-07C841EF40A9}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{3AB9CFA5-A2B7-4A30-B34B-4EC78EA80FFF}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steam.exe |
"{3AE4A2A9-68CB-47F6-85C7-07D240D2961A}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{3B232B92-B481-4B37-B631-811F57106122}" = dir=out | name=@{microsoft.windows.parentalcontrols_1000.14393.0.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.parentalcontrols/resources/displayname} |
"{3CA11D9F-09E5-453A-BD60-2FCD6F0C2AEE}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{3E801CC4-BFDF-4F95-BB23-3B816A605EDC}" = dir=in | app=c:\program files\intel corporation\usb over ip\bin\uoipservice.exe |
"{3F2C7FCD-8F5E-4F56-8523-A54E3B5C798E}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{3F33B167-ED3C-4EBB-93BA-825199A24DB2}" = dir=out | name=twitter |
"{3FA2E721-CBE4-4AEB-9DF3-BBC82F814FB7}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{407793E5-6628-4B2A-A992-973943FE99C7}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{4155CCDF-C5E4-4145-A2D3-163301133CD0}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{42046D32-067C-4541-AD75-CF654F762530}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{42A6E13C-22E7-4E96-BDF0-C99894A7A5B6}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{42BF20AF-8DD9-4690-B452-2A20E12BA0E0}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{44AAE735-674D-4632-B09F-F4DD62472156}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{4543453F-4003-4DA8-BB3A-543CB44A67E0}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{47E85FC7-D336-4808-87E0-7C70DA7674AC}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{482C0801-FC2C-4DED-9F99-0F324041FB19}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{48F33E25-A4C9-408A-A0FF-69A52203F77B}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{49E6FB68-E792-451E-A7DD-B8BCB1FE339F}" = dir=out | name=microsoft sticky notes |
"{4A576500-3BD5-44EF-9A67-AEBD43DED730}" = dir=in | app=c:\program files (x86)\cyberlink\powerdvd14\powerdvd.exe |
"{4A6FE153-5B59-47F3-8AD9-BBBFBE14335E}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{4B8C13D5-D827-4296-BDAA-5A6D09396F5B}" = dir=out | name=@{microsoft.zunemusic_10.17012.10311.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.zunemusic/resources/ids_manifest_music_app_name} |
"{4BBCB0DF-826A-4033-9E05-2B4B805CC8D8}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{4C8982CD-8D5C-42B7-B836-F21D9B3E8AD6}" = dir=out | name=@{microsoft.windows.photos_17.214.10010.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.windows.photos/resources/appstorename} |
"{4ED0CB3F-F03B-4ABA-A9B4-D051DFB6D64F}" = protocol=17 | dir=in | app=c:\windows\syswow64\pnkbstrb.exe |
"{50E9FF5D-88B5-4ECE-BA92-7B880D097841}" = dir=out | name=@{microsoft.accountscontrol_10.0.14393.953_neutral__cw5n1h2txyewy?ms-resource://microsoft.accountscontrol/resources/displayname} |
"{50EED65F-0A4C-499E-8F0D-A94AC6EC0F50}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{5185A73E-7ADB-41F1-A5D2-AAAFD1BD8A70}" = dir=out | name=@{microsoft.people_10.2.431.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.people/resources/appstorename} |
"{51F74BA2-F0BE-48E3-82E4-FA286CC2ED9E}" = protocol=6 | dir=in | app=c:\program files\microsoft office\office15\ucmapi.exe |
"{520C0139-D7AA-4FDE-AF48-E514ECB62825}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\bin\cef\cef.win7\steamwebhelper.exe |
"{529EDD65-2EE1-4BBD-ABC5-DDCB54A097F8}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{5309E4AC-FD8C-46CC-B57E-8BE1B0267F10}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{5408170C-A068-44DE-A8C9-980EC94402E1}" = dir=out | name=tripadvisor hotels flights restaurants |
"{553105A8-5725-41E9-BE70-7D8E752E3F56}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{561C157D-5B00-47D0-848A-52CD490B5F45}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{5657B439-7DDB-4CFA-B5CF-BB4A13B9857E}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{585EE6E3-7534-4CAE-9828-17367B8D0161}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{58FD1703-87D5-48ED-9512-66E6ACCB805B}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{5A5029E4-213F-41A6-A589-783807EABA84}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{5AA9DEEF-A2E6-4C37-A085-1BA69231976D}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{5B011881-D6E0-4476-B9CC-AC4884229513}" = dir=in | name=@{microsoft.microsoftedge_20.10240.16384.0_neutral__8wekyb3d8bbwe?ms-resource://microsoft.microsoftedge/resources/appname} |
"{5E46586A-EABA-4B30-8255-E9764EDEC9EE}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{5EB50599-EE31-4945-B19E-257FBA12BA10}" = protocol=17 | dir=in | app=c:\program files (x86)\battlelog web plugins\sonar\0.70.4\sonarhost.exe |
"{5F29C536-F4CE-46E8-B927-A3EE8830D03C}" = dir=out | name=candy crush soda saga |
"{606F0C92-8CD6-4465-8791-0F771F1052E1}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{61875924-F9D7-44C7-802A-D2AC9DFB71AA}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{61977925-4994-4587-B23B-4DA5B07E6B89}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{61BCDF57-B2A1-4ECB-B15D-BD660F3C0A4B}" = dir=out | name=@{windows.contactsupport_10.0.10240.16384_neutral_neutral_cw5n1h2txyewy?ms-resource://windows.contactsupport/resources/appdisplayname} |
"{61E75F2C-5DCA-4B7B-9319-8B5798B62FE0}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2cfg.exe |
"{62239439-5C97-40AB-81F4-FB64FABBAE66}" = protocol=6 | dir=in | app=c:\windows\syswow64\pnkbstra.exe |
"{636F0DE1-9A8A-4F4A-954B-53DA5704C1FA}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{64EE77A9-F44F-4040-8087-C11AEBD30D12}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{64F5E0C4-D519-4F4C-9DB5-B66C9615D0F5}" = dir=out | name=windows_ie_ac_001 |
"{655D7C63-5562-471B-9DC2-F5CF079BC11B}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{66B8BD4D-4CD1-473D-8443-FEFEDBFEADCD}" = protocol=17 | dir=in | app=c:\program files (x86)\origin games\battlefield 4\bf4webhelper.exe |
"{67179EAB-D28A-4A86-996B-EAF8DAACF830}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{6754A1AC-2398-4C07-BCF1-12A2C3E30E0B}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{67589632-6FCB-49DF-8821-7B80A22C3C4C}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{682E3414-5F60-493B-9724-440D600EC108}" = dir=out | name=@{microsoft.windows.cortana_1.7.0.14393_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.cortana/resources/packagedisplayname} |
"{682EEF9E-4C4F-4DD1-AE65-87E558BF1B26}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{69735FCA-A7BB-49C9-B2A0-9B3B54376D63}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{6DF91F78-4FBC-4AC4-89CE-B4482978ACC9}" = dir=in | name=@{microsoft.aad.brokerplugin_1000.10240.16384.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.aad.brokerplugin/resources/packagedisplayname} |
"{6E68B88F-8E5B-4AF3-A748-6028BB8F4F0B}" = protocol=6 | dir=in | app=c:\nexon\library\combatarms\appdata\nmservice.exe |
"{6E77296E-2145-4173-9E26-CC3254535B85}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{6EA661EC-397F-43E8-B838-EF7291CBBCCF}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{6F713C57-802C-4758-814A-A446A41039F6}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{6FEC02A8-31CD-4838-8E1F-DA5F8FD26DD8}" = dir=in | name=microsoft solitaire collection |
"{70E196A2-AE88-4387-AFB1-E7658A6AB6D8}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{731704C2-FC86-439B-AAA1-C62BAEC7559F}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{74373EE0-66DC-4507-9245-2D986ACC0859}" = dir=out | name=@{microsoft.windows.contentdeliverymanager_10.0.14393.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.contentdeliverymanager/resources/appdisplayname} |
"{7440AC27-3E15-4173-A4AB-3600328204FC}" = dir=in | name=@{microsoft.ppiprojection_10.0.14393.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.ppiprojection/resources/productname} |
"{74B9A1B4-02FE-4BDE-83BF-EC15611CA773}" = protocol=6 | dir=in | app=c:\program files (x86)\origin games\battlefield 4\bf4x86webhelper.exe |
"{77744BFC-10D3-4BB5-8B22-BFA9745DB1A1}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{782BD277-E2D5-4CB5-9914-327AEBC93A2F}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{78DE4420-697D-42EB-8B68-D903D60C3477}" = dir=out | name=store purchase app |
"{7986E877-9F43-42D1-926C-659BB5EEC239}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{79B10739-3318-43AC-9FD1-F38A5CADB27A}" = dir=out | name=@{microsoft.windowscommunicationsapps_17.8016.42007.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowscommunicationsapps/hxoutlookintl/appmanifest_outlookdesktop_displayname} |
"{7A819F54-1647-4536-B9A0-35E6EFC71D26}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{7B24C34D-A970-498D-A7CE-D3F8680DCC4F}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{7BBF7484-45D6-4CED-9E3F-5AC0B9245573}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{7C4CA72D-4FA8-4A3A-851D-CEA28B00E5E5}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{7F6A4444-E4C3-47BF-B81C-E0AEB95779E3}" = dir=out | name=@{microsoft.windows.apprep.chxapp_1000.14393.0.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.apprep.chxapp/resources/displayname} |
"{7FAD33AD-40E2-4EEC-AF83-9E3F1380A1A8}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{7FF4411A-A2D8-4B26-B1D7-7B8A614D4141}" = dir=out | name=@{microsoft.windowsfeedback_10.0.10240.16384_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windowsfeedback/feedbackapp.resources/appname/text} |
"{800EEDDB-60F1-496A-9753-C8E20371CDFA}" = dir=out | name=@{microsoft.3dbuilder_12.0.3131.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.3dbuilder/resources/appstorename} |
"{805A30BB-7603-467C-B932-8A44776A51A2}" = protocol=6 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe |
"{8100EAAC-5CCA-4A59-AFA2-E9A49F6A6B2D}" = dir=out | name=@{windows.purchasedialog_6.2.0.0_neutral_neutral_cw5n1h2txyewy?ms-resource://windows.purchasedialog/resources/displayname} |
"{81E27C88-3220-4784-8A22-ABB7F3363E4A}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{82BCF370-D07D-4D49-9485-88BFC7CE4001}" = protocol=6 | dir=in | app=c:\program files (x86)\origin games\battlefield 4\bf4.exe |
"{83324F97-423C-4288-AAA9-8065FD386D92}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{83942D75-B6DE-49F5-A1FD-38C55BEB34C9}" = dir=in | name=@{microsoft.ppiprojection_10.0.14393.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.ppiprojection/resources/productname} |
"{8446C17C-E60B-4253-A4F2-0FC9CDF9CA9F}" = dir=out | name=@{microsoft.windowsfeedback_10.0.10240.16393_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windowsfeedback/feedbackapp.resources/appname/text} |
"{84B3D56E-BDE3-455D-B302-5200B7459EA6}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{853BEE53-4F1F-4D61-8456-D1F0173EF32E}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{86D102D2-6F20-4867-B44A-EE07D29C03E8}" = dir=out | name=@{microsoft.xboxgamecallableui_1000.14393.0.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.xboxgamecallableui/resources/pkgdisplayname} |
"{87951C03-00AB-44CB-9B0C-B395B79ABD60}" = dir=out | name=@{windows.contactsupport_10.0.14393.0_neutral_neutral_cw5n1h2txyewy?ms-resource://windows.contactsupport/resources/appdisplayname} |
"{879E6029-541A-4E34-B8BE-798F079922C1}" = dir=out | name=@{microsoft.windows.cloudexperiencehost_10.0.10240.16384_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.cloudexperiencehost/resources/appdescription} |
"{87B62394-DC84-47B5-8CC8-0FC4AD79A2C4}" = dir=out | name=onenote |
"{87B7386F-540C-41C1-8CFB-C88C3CFA799E}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{87C3FD7E-FBBE-4CEC-AA20-C8A19EDF6ED5}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{89AB22DF-8217-4274-B977-5CB7B49C6B68}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{8A6DDD12-80F1-4DD7-825A-DB8E1A1311B7}" = dir=in | name=@{microsoft.aad.brokerplugin_1000.14393.0.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.aad.brokerplugin/resources/packagedisplayname} |
"{8CBE1BA0-B29F-42B4-AC0F-0BC74F57E1D7}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{8D153AC4-DAA0-413F-96F2-FF3851155DDB}" = dir=out | name=@{microsoft.xboxgamecallableui_1000.10240.16384.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.xboxgamecallableui/resources/pkgdisplayname} |
"{8D2321A2-F67A-485B-B611-85080D4D9B15}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{8D7B3061-9571-4F95-8F2F-D749C7050F60}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{8DDD5E18-032F-4429-9AD3-F3DC62323EB2}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{8E213329-2E95-421D-99A5-2B79D3F139E2}" = dir=out | name=@{microsoft.xboxidentityprovider_1000.10240.16384.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.xboxidentityprovider/resources/pkgdisplayname} |
"{8F29C526-50DE-4A42-AC13-953E69654848}" = dir=out | name=@{microsoft.messaging_3.19.1001.0_x86__8wekyb3d8bbwe?ms-resource://microsoft.messaging/resources/appstorename} |
"{8FFB19E1-6388-46FA-B569-5CBE617FE70F}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{904CD48E-C80C-43D7-B6FB-E07D136EA7F3}" = dir=in | name=@{microsoft.windowscommunicationsapps_17.8016.42007.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowscommunicationsapps/hxoutlookintl/appmanifest_outlookdesktop_displayname} |
"{92257C58-9965-4ED3-8265-8BAE999FB4E3}" = protocol=6 | dir=in | app=c:\program files (x86)\battlelog web plugins\sonar\0.70.4\sonarhost.exe |
"{92F239D3-7F3A-49BB-913D-724E1E0640D3}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{935F0574-CBD7-4702-9FF4-B9742F056093}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{95EDD498-E606-403A-A48E-319CC003F26B}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{95F1A76E-80D7-4766-B2F6-F78CC7C25904}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{978198DD-30FB-4F9B-9364-0187D031CAA6}" = dir=out | name=@{microsoft.windows.cloudexperiencehost_10.0.14393.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.cloudexperiencehost/resources/appdescription} |
"{987FE19B-57C4-45B2-AF32-74A06C82C9C7}" = dir=out | name=@{microsoft.oneconnect_1.1607.6.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.oneconnect/oneconnect/appstorename} |
"{98F2F7D6-B9F0-47DD-9809-6BB95F419CF8}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{999D146E-3FE3-413E-BF10-CF998C1052A5}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{9A55DE83-710D-439B-A820-D441C8297D95}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{9B79EDCA-3067-4B02-B987-308474A68A7B}" = dir=out | name=@{microsoft.aad.brokerplugin_1000.14393.0.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.aad.brokerplugin/resources/packagedisplayname} |
"{9BA71884-0C46-4EF1-AE93-A9096363C126}" = dir=out | name=the weather channel for hp |
"{9BC08BFE-7EA7-40A5-A635-059B28D7C8FC}" = dir=out | name=microsoft solitaire collection |
"{9CC5C01B-C92E-456E-A9DD-8EE7E08DB299}" = dir=out | name=@{microsoft.xboxidentityprovider_11.19.19003.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.xboxidentityprovider/resources/displayname} |
"{9D266246-BD84-4864-9B99-4F153A15AD89}" = dir=out | name=@{microsoft.windowsfeedbackhub_1.1702.653.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsfeedbackhub/resources/appstorename} |
"{9E44A7AD-53CA-4A31-9C29-BDB926FE2671}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{A01067AE-CADC-44A4-A141-85C4A947E6E8}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{A0910C64-9254-42C7-BEF1-AA4829EFF3D7}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{A0B23296-6759-48D2-A148-424041C93F12}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{A118F5D0-775A-4BCE-98BD-5C4955600C16}" = dir=out | name=@{microsoft.skypeapp_11.12.112.0_x64__kzf8qxf38zg5c?ms-resource://microsoft.skypeapp/resources/skypevideo_productname} |
"{A16B5E30-C2E2-4A59-BC7E-A41718E3A0BF}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{A203E86E-3415-4978-B730-0F9E73E8621D}" = dir=out | name=@{microsoft.windows.contentdeliverymanager_10.0.10240.16384_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.contentdeliverymanager/resources/appdisplayname} |
"{A2BB7B29-F8C3-4762-8C7A-AC50B985C9E6}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{A2E4C7CC-66E3-457E-8683-18A1DDFE5300}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{A2E5D4C6-DEA5-4557-B4E0-D07BFB5F2702}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{A33003CE-288A-449C-BB8E-0F63C82EDBCD}" = dir=out | name=@{microsoft.windows.shellexperiencehost_10.0.14393.953_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.shellexperiencehost/resources/pkgdisplayname} |
"{A38805C1-0F9D-41AF-9F99-E8EF60905F76}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{A3BC4D4E-6262-48B8-B85C-2CD434A30998}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{A46E5A6D-B450-4DED-9C4B-E4C63F23721F}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{A4D5F872-DF02-4818-B85F-61768D0B1912}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{A58EE8FF-0739-4C60-9C4B-8CF65D92F41F}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{A6AF67C5-4EDC-43DD-937E-FFC9C48726B6}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{A6CC831F-7744-44C7-B2D2-10ABE539BC6A}" = dir=in | name=@{microsoft.microsoftedge_38.14393.0.0_neutral__8wekyb3d8bbwe?ms-resource://microsoft.microsoftedge/resources/appname} |
"{A7E2594A-4934-4338-8EF4-1070A1BFA6AF}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{A8F672C1-0D99-46F5-B264-6EC49C4A2C21}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{A9469753-88FF-4A74-AC96-3179A666EE25}" = protocol=17 | dir=in | app=c:\program files\microsoft office\office15\lync.exe |
"{AA601AFF-CD00-4EDC-AAA2-CCDC779D9922}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{AC019DDB-1069-4C6A-B5DB-F365F8FAE21D}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{AD1A8927-FE35-4B37-A026-2EF63CBF2000}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{B18044D1-14BF-44A9-8993-258C054820CC}" = dir=in | name=@{microsoft.skypeapp_11.12.112.0_x64__kzf8qxf38zg5c?ms-resource://microsoft.skypeapp/resources/skypevideo_productname} |
"{B33D0815-5B22-48C8-8985-164193F00DED}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{B40093D2-7F1A-4866-8A61-930D973CA5D9}" = dir=out | name=@{microsoft.windows.cortana_1.4.8.176_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.cortana/resources/displayname} |
"{B68A1BB5-3789-4098-B5F4-F068CF02A8AC}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{B7530137-0883-4803-94F2-3977BDEF87A2}" = dir=out | name=@{microsoft.microsoftofficehub_17.8017.5925.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.microsoftofficehub/officehubintl/appmanifest_getoffice_displayname} |
"{B7FDC131-CE99-49CA-AC1C-C6A95AC471D5}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{B7FEB83B-CD8E-4CFB-B648-A9EA1E482790}" = dir=in | name=@{microsoft.zunevideo_10.17012.10301.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.zunevideo/resources/ids_manifest_video_app_name} |
"{B936B371-0ECC-4D9E-9B80-242E105E5BC7}" = dir=in | name=@{microsoft.windowsfeedbackhub_1.1702.653.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsfeedbackhub/resources/appstorename} |
"{BA15519B-1D9C-49C3-82BF-17949A19D52E}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{BA297554-E315-427E-BFA3-BE8E4E22E562}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{BAD0C97A-11DF-4815-B213-A369A7204391}" = dir=in | name=@{microsoft.windowsstore_11701.1001.79.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsstore/resources/storetitle} |
"{BE4A9AB5-8D08-4DA6-9D24-5B06E7A752FB}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{BEBCDF43-2230-49D0-9D42-319F716F85CF}" = protocol=17 | dir=in | app=c:\program files\microsoft office\office15\ucmapi.exe |
"{BF00216B-7EDA-4157-84AE-D55C60C7A11C}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steam.exe |
"{C11A4516-A9BC-43CD-86DF-707E78AABE93}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{C159D554-2CB0-4DAD-A9C6-CFAF852915AC}" = protocol=6 | dir=in | app=c:\program files (x86)\origin games\battlefield 4\bf4webhelper.exe |
"{C21D8A62-D5B9-4C6F-B053-3590D4C2D0E1}" = dir=out | name=@{microsoft.zunevideo_10.17012.10301.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.zunevideo/resources/ids_manifest_video_app_name} |
"{C2CC84F4-0FD3-43D8-908B-5E153BC26FC0}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{C6B36121-B8F1-4331-8EA3-3E2601C40ABE}" = dir=in | name=@{microsoft.messaging_3.19.1001.0_x86__8wekyb3d8bbwe?ms-resource://microsoft.messaging/resources/appstorename} |
"{C7E2C767-70F1-40E4-9BD3-6B62FC831894}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{C808F94E-8D18-4046-B71A-B712024A3045}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{C8C44F6F-B1EF-4E6D-BC5D-78DF7145BAD9}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{C8EFE8C9-641D-41A6-8E17-51F0E3246827}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{C90F77DE-8112-4DCF-98C7-4D526AAAA72D}" = dir=out | name=@{microsoft.windows.cortana_1.4.8.152_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.cortana/resources/displayname} |
"{CB63994E-6B1D-4C2E-AABA-001E568F090D}" = dir=in | name=@{microsoft.windows.cortana_1.7.0.14393_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.cortana/resources/packagedisplayname} |
"{CC19FAEF-0683-4064-B09A-D680ABA98E82}" = dir=in | name=@{microsoft.bingweather_4.18.37.0_x86__8wekyb3d8bbwe?ms-resource://microsoft.bingweather/resources/applicationtitlewithbranding} |
"{CDE27551-4D56-46F4-BD60-C4BBCB70CB02}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{CDE46CB7-C390-4DAE-9E88-D671D003179F}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{CDF682E1-8843-434C-92AE-4D5248F4281A}" = dir=out | name=@{microsoft.bingsports_4.18.37.0_x86__8wekyb3d8bbwe?ms-resource://microsoft.bingsports/resources/applicationtitlewithbranding} |
"{CE12958A-CF77-4439-9829-8E4D26ED1E3F}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{CE68B468-DC26-4297-B92E-A24A8AF1F262}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{CED8FDEE-BC5E-41E8-B778-90704F734D5A}" = dir=in | app=c:\program files (x86)\cyberlink\powerdvd14\movie\powerdvd cinema\powerdvdcinema.exe |
"{D0A5C7F1-3764-449F-B4AC-E97484C22382}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{D116422C-A176-42F9-A33E-4F6FAB2AFA5A}" = dir=in | app=c:\program files (x86)\cyberlink\powerdvd14\movie\powerdvdmovie.exe |
"{D1202E82-56B0-4314-AB68-7D8B205C81D9}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{D4079F76-79AB-482D-B74D-39B9FE4C0AC0}" = dir=in | name=@{microsoft.bingfinance_4.18.37.0_x86__8wekyb3d8bbwe?ms-resource://microsoft.bingfinance/resources/applicationtitlewithbranding} |
"{D41EFB1F-8FC8-4B9C-9170-8CCBB9A19A47}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{D44E73A1-B340-40CF-AFD9-93DA03122C5A}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{D46AB2E1-4994-47BB-92A2-F8186A3C5BF5}" = dir=out | name=@{microsoft.windows.parentalcontrols_1000.10240.16384.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.parentalcontrols/resources/displayname} |
"{D59BB378-CB5E-4CA8-A021-5B36DB3DCEA0}" = dir=in | name=@{microsoft.windows.cloudexperiencehost_10.0.14393.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.cloudexperiencehost/resources/appdescription} |
"{DA46094C-F066-4E90-BB52-4F6E14EADD13}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{DB436190-428A-4933-9032-2AE8B1CDC51A}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{DC081538-F93D-4BC4-835E-079FEF04AFD9}" = dir=in | name=@{windows.contactsupport_10.0.14393.0_neutral_neutral_cw5n1h2txyewy?ms-resource://windows.contactsupport/resources/appdisplayname} |
"{DC08903F-FD1B-4208-AB13-7EB00F88480F}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{DC62F197-AAD4-491C-BD83-97A25274A998}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{DC9394A7-3CF3-4877-9977-96CD7F1CEC69}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{DD438027-C6B3-4AED-B726-C3C9C9613DC9}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{DD937E1F-E65A-453D-924A-B276C6D70F35}" = dir=out | name=@{microsoft.windows.cloudexperiencehost_10.0.10240.16384_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.cloudexperiencehost/resources/appdescription} |
"{DE230F4A-259A-4525-A682-4079082146EF}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{DEF1B276-5A89-45CB-8DFF-79EB8AB7222F}" = dir=out | name=@{microsoft.microsoftedge_20.10240.16384.0_neutral__8wekyb3d8bbwe?ms-resource://microsoft.microsoftedge/resources/appname} |
"{DF2C5421-24A8-45F0-9D10-13B410A8E07B}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{E0687A9D-411E-4884-A58F-74E8A7EFBAEF}" = dir=out | name=hearts deluxe |
►Case: NZXT Noctis 450◄►Zdroj: EVGA Supernova 750W G2◄►MB: Asus MAXIMUS VIII Ranger◄►CPU: Intel core i5-6600K◄►GPU: Gainward Phoenix GTX 1060 GS◄►Chladič: Scythe Ninja 4◄►SSD: Samsung 850 EVO 250GB◄►HDD: 2x Seagate Barracuda 2TB◄►RAM: Crucial Ballistix Sport LT 2x8GB 2400Mhz DDR4◄
Re: kontrola logu - využití disku 100%
log z OTL - Extras 2/2
"{E0839EDA-1694-4F8E-9366-890EC6EDC364}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{E167624B-657E-4FAC-8277-52F5B3CBB0BF}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{E24FDB30-42BB-4CEB-A04A-3CA0118F7C63}" = dir=out | name=@{microsoft.bingnews_4.18.41.0_x86__8wekyb3d8bbwe?ms-resource://microsoft.bingnews/resources/applicationtitlewithbranding} |
"{E3A0A101-C2CD-492F-AABF-9FB8C2481021}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{E3D37181-4715-40C6-8999-7F87B0D80743}" = dir=in | app=c:\program files (x86)\cyberlink\powerdvd14\kernel\dms\clmsserverpdvd14.exe |
"{E51C80CA-4CC0-40EC-8864-35FCB574BE5A}" = dir=out | name=@{26720randomsaladgamesllc.simplesolitaire_5.4.0.40_x64__kx24dqmazqk8j?ms-resource://26720randomsaladgamesllc.simplesolitaire/resources/gamename} |
"{E661ADE1-F90E-4D6F-8583-C7AE17C731A8}" = protocol=6 | dir=in | app=c:\program files\microsoft office\office15\lync.exe |
"{E73090AA-A71F-40F1-A3A2-524A9C2B5C60}" = dir=in | name=@{microsoft.bingsports_4.18.37.0_x86__8wekyb3d8bbwe?ms-resource://microsoft.bingsports/resources/applicationtitlewithbranding} |
"{E760D856-EC29-46AE-AB3E-FA304E845C5E}" = dir=out | name=@{microsoft.aad.brokerplugin_1000.10240.16384.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.aad.brokerplugin/resources/packagedisplayname} |
"{E785891B-9BD1-4AA4-8B98-284CA0275CAE}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{E8313815-1251-4061-8C2B-FC2FBD6216B8}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{E8408F21-3BB6-403B-8790-3CEF4281368E}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{E99E75C3-B64A-49C0-9BC5-68E6E858D6B8}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{EA2255B8-0EE7-41F9-A0C6-CCC6D0C1F72F}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{EAA82C27-4DB4-4446-94A4-0973A06E9DDC}" = dir=out | name=@{microsoft.lockapp_10.0.10240.16384_neutral__cw5n1h2txyewy?ms-resource://microsoft.lockapp/resources/appdisplayname} |
"{EB33F1C6-7CBA-44BF-81F8-FBB5DD304FBA}" = protocol=17 | dir=in | app=c:\nexon\library\combatarms\appdata\nmservice.exe |
"{EC96479A-95CF-4974-9127-616BFD237821}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{EF044260-654B-475A-A3C4-55DBF68959B5}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{EFC979DE-AA86-43B1-B785-3DE72BCDE6F7}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{F21E0D91-DCDE-42E7-BA47-18402C895D96}" = protocol=17 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
"{F4EBDA08-496D-4A43-93B8-356587421319}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{F6E36D9B-B390-4CF3-8B45-107C1C1403CF}" = dir=in | name=@{microsoft.windows.photos_17.214.10010.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.windows.photos/resources/appstorename} |
"{F77C4EDE-0101-41EB-80DA-B4CC43D7128B}" = dir=out | name=@{microsoft.lockapp_10.0.14393.0_neutral__cw5n1h2txyewy?ms-resource://microsoft.lockapp/resources/appdisplayname} |
"{F901CB2F-7314-4766-A16E-7E34CAF2F012}" = dir=out | name=@{microsoft.ppiprojection_10.0.14393.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.ppiprojection/resources/productname} |
"{F92B5DF3-A827-41CD-A75E-E16C9EF0711F}" = protocol=6 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
"{F97D0398-B76B-485F-BEE3-F394E7ECE279}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{F9D12310-E1A3-41F9-9014-63B5805B38C7}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{F9DC3729-7D62-42AE-8851-0D54C8409344}" = dir=out | name=@{microsoft.appconnector_1.3.3.0_neutral__8wekyb3d8bbwe?ms-resource://microsoft.appconnector/resources/connectorstubtitle} |
"{FA118D6E-061E-40F1-9CE0-D4401DAC2870}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{FB6AE280-3624-4C42-8FB5-54145B8E25AB}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{FB8FFBBD-5F6F-4FF8-8C8B-1B0115F7BAD8}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{FC73B029-EDE3-49FC-AEBF-62DC555DE5C7}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{FD788F41-EF0B-4668-A7F1-27125F887171}" = protocol=17 | dir=in | app=c:\windows\syswow64\pnkbstra.exe |
"{FDE37255-01DB-4DA3-BB3E-810C3417F5B5}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{FE869468-64F8-42A2-8B13-9581EEE9FE58}" = dir=in | name=@{microsoft.bingnews_4.18.41.0_x86__8wekyb3d8bbwe?ms-resource://microsoft.bingnews/resources/applicationtitlewithbranding} |
"TCP Query User{50E5A9A9-50AF-41E8-A683-B8D90EAF862C}C:\program files (x86)\origin games\battlefield 4\bf4.exe" = protocol=6 | dir=in | app=c:\program files (x86)\origin games\battlefield 4\bf4.exe |
"TCP Query User{C2E36DCD-99EB-4D1E-9009-7C6B06E6EF1B}C:\users\endon\appdata\roaming\utorrent\utorrent.exe" = protocol=6 | dir=in | app=c:\users\endon\appdata\roaming\utorrent\utorrent.exe |
"UDP Query User{84BFE415-0D32-4210-B1BF-2B0CD810EAEA}C:\users\endon\appdata\roaming\utorrent\utorrent.exe" = protocol=17 | dir=in | app=c:\users\endon\appdata\roaming\utorrent\utorrent.exe |
"UDP Query User{9405F578-8AFC-4707-964B-6E8C7AA44DAA}C:\program files (x86)\origin games\battlefield 4\bf4.exe" = protocol=17 | dir=in | app=c:\program files (x86)\origin games\battlefield 4\bf4.exe |
========== HKEY_LOCAL_MACHINE Uninstall List ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{10307C17-F7FD-405D-9F3B-0BF66EA43857}" = Intel® Software Guard Extensions Platform Software
"{1CEAC85D-2590-4760-800F-8DE5E91F3700}" = Intel(R) Management Engine Components
"{1D8E6291-B0D5-35EC-8441-6616F567A0F7}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219
"{303C5CD6-2525-49C5-9E49-DBD92F9F63BD}" = Intel(R) Rapid Storage Technology
"{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1" = Malwarebytes verze 3.0.6.1469
"{362FC667-C52E-4985-AEFB-8533A2F3C49C}" = Intel® PROSet/Wireless WiFi Software
"{37B8F9C7-03FB-3253-8781-2517C99D7C00}" = Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030
"{3BC36736-66B5-4C48-AF0A-C41C335ABCB0}" = HP ePrint Windows Driver
"{409CB30E-E457-4008-9B1A-ED1B9EA21140}" = Intel(R) Rapid Storage Technology
"{465CA2B6-98AF-4E77-BE22-A908C34BB9EC}" = Energy Star
"{55398EAC-F58E-4F19-B553-BDF8B9EFD839}" = Intel(R) Chipset Device Software
"{5A454EC5-217A-42a5-8CE1-2DDEC4E70E01}" = CyberLink PhotoDirector
"{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161
"{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}" = Bonjour
"{74FE39A0-FB76-47CD-84BA-91E2BBB17EF2}" = DisableMSDefender
"{7D84E343-A23D-451C-B123-0195B2D903A6}" = Intel® Trusted Connect Service Client
"{8220EEFE-38CD-377E-8595-13398D740ACE}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17
"{8736f7db-10ee-4722-b588-3a7296eafc38}" = Intel(R) PRO/Wireless Driver
"{8C775E70-A791-4DA8-BCC3-6AB7136F4484}" = Visual Studio 2012 x64 Redistributables
"{90150000-0015-0405-1000-0000000FF1CE}" = Microsoft Access MUI (Czech) 2013
"{90150000-0016-0405-1000-0000000FF1CE}" = Microsoft Excel MUI (Czech) 2013
"{90150000-0018-0405-1000-0000000FF1CE}" = Microsoft PowerPoint MUI (Czech) 2013
"{90150000-0019-0405-1000-0000000FF1CE}" = Microsoft Publisher MUI (Czech) 2013
"{90150000-001A-0405-1000-0000000FF1CE}" = Microsoft Outlook MUI (Czech) 2013
"{90150000-001B-0405-1000-0000000FF1CE}" = Microsoft Word MUI (Czech) 2013
"{90150000-001F-0405-1000-0000000FF1CE}" = Nástroje kontroly pravopisu pro Microsoft Office 2013 – čeština
"{90150000-001F-0407-1000-0000000FF1CE}" = Microsoft Office Korrekturhilfen 2013 - Deutsch
"{90150000-001F-0409-1000-0000000FF1CE}" = Microsoft Office Proofing Tools 2013 - English
"{90150000-001F-041B-1000-0000000FF1CE}" = Nástroje korektúry balíka Microsoft Office 2013 - slovenčina
"{90150000-002C-0405-1000-0000000FF1CE}" = Microsoft Office Proofing (Czech) 2013
"{90150000-0044-0405-1000-0000000FF1CE}" = Microsoft InfoPath MUI (Czech) 2013
"{90150000-006E-0405-1000-0000000FF1CE}" = Microsoft Office Shared MUI (Czech) 2013
"{90150000-0090-0405-1000-0000000FF1CE}" = Microsoft DCF MUI (Czech) 2013
"{90150000-00A1-0405-1000-0000000FF1CE}" = Microsoft OneNote MUI (Czech) 2013
"{90150000-00BA-0405-1000-0000000FF1CE}" = Microsoft Groove MUI (Czech) 2013
"{90150000-00C1-0000-1000-0000000FF1CE}" = Microsoft Office 32-bit Components 2013
"{90150000-00C1-0405-1000-0000000FF1CE}" = Microsoft Office Shared 32-bit MUI (Czech) 2013
"{90150000-00E1-0405-1000-0000000FF1CE}" = Microsoft Office OSM MUI (Czech) 2013
"{90150000-00E2-0405-1000-0000000FF1CE}" = Microsoft Office OSM UX MUI (Czech) 2013
"{90150000-012B-0405-1000-0000000FF1CE}" = Microsoft Lync MUI (Czech) 2013
"{90160000-008F-0000-1000-0000000FF1CE}" = Office 16 Click-to-Run Licensing Component
"{90160000-00DD-0000-1000-0000000FF1CE}" = Office 16 Click-to-Run Extensibility Component 64-bit Registration
"{91150000-0011-0000-1000-0000000FF1CE}" = Microsoft Office Professional Plus 2013
"{929FBD26-9020-399B-9A7A-751D61F0B942}" = Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.21005
"{9495AEB4-AB97-39DE-8C42-806EEF75ECA7}" = Microsoft Visual Studio 2010 Tools for Office Runtime (x64)
"{95120000-00B9-0409-1000-0000000FF1CE}" = Microsoft Application Error Reporting
"{95265B86-188E-3F62-9CDB-60FCE59EC721}" = Microsoft Visual C++ 2015 x64 Additional Runtime - 14.0.24210
"{A749D8E6-B613-3BE3-8F5F-045C84EBA29B}" = Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.21005
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Ansel" = Ansel
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel" = Ovládací panel NVIDIA 378.66
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver" = NVIDIA Ovladače grafiky 378.66
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience" = NVIDIA GeForce Experience 3.3.0.95
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Optimus" = NVIDIA Optimus Update 23.23.0.0
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX" = NVIDIA Systémový software PhysX 9.16.0318
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update" = Aktualizace NVIDIA 23.23.0.0
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.NvStreamSrv" = SHIELD Streaming
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer" = NVIDIA Install Application
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvBackend" = NVIDIA Backend
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer" = NVIDIA Container
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.LocalSystem" = NVIDIA LocalSystem Container
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.MessageBus" = NVIDIA Message Bus for NvContainer
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.NetworkService" = NVIDIA NetworkService Container
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.Session" = NVIDIA Session Container
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.User" = NVIDIA User Container
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NVDisplayContainer" = NVIDIA Display Container
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NVDisplayContainerLS" = NVIDIA Display Container LS
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvNodejs" = NvNodejs
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvPlugin.Watchdog" = NVIDIA Watchdog Plugin for NvContainer
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvTelemetry" = NvTelemetry
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvTelemetryContainer" = NVIDIA Telemetry Container
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvvHci" = NvvHci
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_OSC" = Nvidia Share
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_ShadowPlay" = NVIDIA ShadowPlay 3.3.0.95
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_ShieldWirelessController" = SHIELD Wireless Controller Driver
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Update.Core" = NVIDIA Update Core
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_VirtualAudio.Driver" = NVIDIA Virtual Audio 3.51.2
"{BFACB3F5-7091-429E-A6A9-59C0696B710E}" = Intel(R) Management Engine Components
"{C0B2C673-ECAA-372D-94E5-E89440D087AD}" = Microsoft Visual C++ 2015 x64 Minimum Runtime - 14.0.24210
"{C7CD6D54-26AF-4D93-B06F-D81ACE8624CB}" = Intel(R) WiDi
"{CCCB484E-79D5-4398-9377-CA6EEB6B53AE}" = Intel(R) Management Engine Components
"{CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97}" = Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030
"{D1E8F2D7-7794-4245-B286-87ED86C1893C}" = HP Registration Service
"{DF17C0DB-76D8-4A45-B26E-674F8455B803}" = Intel(R) ME UninstallLegacy
"{E1646825-D391-42A0-93AA-27FA810DA093}" = CyberLink PowerDirector 12
"{E9FA781F-3E80-4399-825A-AD3E11C28C77}" = MSVCRT110_amd64
"CCleaner" = CCleaner
"DAEMON Tools Lite" = DAEMON Tools Lite
"HP_Documentation" = HP Documentation
"HPWelcome" = HP Welcome
"Microsoft Visual Studio 2010 Tools for Office Runtime (x64)" = Microsoft Visual Studio 2010 Tools for Office Runtime (x64)
"O365HomePremRetail - cs-cz" = Microsoft Office 365 - cs-cz
"Office15.PROPLUSR" = Microsoft Office Professional Plus 2013
"ProfessionalRetail - cs-cz" = Microsoft Office 2016 pro profesionály - cs-cz
"Steam App 570" = Dota 2
"SynTPDeinstKey" = Synaptics ClickPad Driver
"VulkanRT1.0.39.1" = Vulkan Run Time Libraries 1.0.39.1
"WinRAR archiver" = WinRAR 5.40 (64-bit)
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{00F9DB8C-65D7-4D47-AB5F-F698EE38580D}" = Windows Live UX Platform
"{050d4fc8-5d48-4b8f-8972-47c82c46020f}" = Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501
"{07AAB66E-4718-422D-9218-4AFB3C922A71}" = Photo Gallery
"{139493B2-F1BC-4F05-A974-B49297C1EB04}" = UpdateAssistant
"{13A4EE12-23EA-3371-91EE-EFB36DDFFF3E}" = Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005
"{15BFD731-A10E-43E9-9D18-0F682BC0480F}" = Photo Common
"{1A13FE59-6F7E-44DC-9AA7-2D7B9E08C2D4}" = HP System Event Utility
"{1D6432B4-E24D-405E-A4AB-D7E6D088CBC9}" = Windows Live Photo Common
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{23658c02-145e-483d-ba6b-1eb82c580529}" = Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24210
"{32C8E300-BDB4-4398-92C2-E9B7D8A233DB}" = CyberLink Power Media Player 14
"{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}" = Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030
"{3D2CF65C-B544-4308-B996-700D3E5F6C4C}" = Movie Maker
"{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}" = Microsoft ASP.NET MVC 4 Runtime
"{41C61308-6CFD-4D54-AB6A-7136ED08A18E}" = Windows Live Communications Platform
"{4EBD7408-E5EF-4D98-A931-50B9CAC2BAB2}" = R2-D2
"{597A58EC-42D6-4940-8739-FB94491B013C}" = Dropbox 25 GB
"{5B5CD20C-29F0-4857-A4FA-A4F4C716B019}" = Intel(R) WiDi Software Asset Manager
"{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}" = Realtek Card Reader
"{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}" = Google Update Helper
"{612C34C7-5E90-47D8-9B5C-0F717DD82726}" = swMSM
"{61EB474B-67A6-47F4-B1B7-386851BAB3D0}" = HP Support Assistant
"{64BAA990-F1FC-4145-A7B1-E41FBBC9DA47}" = HP Recovery Manager
"{654EE65D-FAA4-4EA6-8C07-DC94E6A304D4}" = Intel(R) Dynamic Platform and Thermal Framework
"{659CB81C-B54E-4DF1-B618-F35777393A54}" = Windows Live Installer
"{67F42018-F647-4D3C-BE62-F8CB4FE2FCD5}" = Microsoft Games for Windows Marketplace
"{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
"{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
"{74F1230A-64B6-4E37-86D4-866219DA02AB}" = Star Wars Command Center
"{832D9DE0-8AFC-4689-9819-4DBBDEBD3E4F}" = Microsoft Games for Windows - LIVE Redistributable
"{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable
"{8833FFB6-5B0C-4764-81AA-06DFEED9A476}" = Realtek Ethernet Controller Driver
"{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}" = MSVCRT
"{8E14DDC8-EA60-4E18-B3E3-1937104D5BDA}" = MSVCRT110
"{8F0CD7D1-42F3-4195-95CD-833578D45057}_is1" = Zemana AntiMalware
"{8FD71E98-EE44-3844-9DAD-9CB0BBBC603C}" = Microsoft Visual C++ 2015 x86 Minimum Runtime - 14.0.24210
"{90160000-008C-0000-0000-0000000FF1CE}" = Office 16 Click-to-Run Extensibility Component
"{90160000-008C-0405-0000-0000000FF1CE}" = Office 16 Click-to-Run Localization Component
"{909F8EBC-EC7F-48FF-0085-475D818F0F31}" = Need for Speed Underground 2
"{95716cce-fc71-413f-8ad5-56c2892d4b3a}" = Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610
"{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}" = Visual Studio 2012 x86 Redistributables
"{9A470EA9-FF86-4C0E-992C-572BF2B9D6FF}" = Windows Live Essentials
"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
"{a1909659-0a08-4554-8af1-2175904903a1}" = Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610
"{A354DC98-2677-4967-8AA0-3B867EE10202}" = Intel(R) Wireless Bluetooth(R)
"{A9CEDD6E-4792-493e-BB35-D86D2E188A5A}" = CyberLink YouCam
"{ABADE36E-EC37-413B-8179-B432AD3FACE7}" = Battlefield 4™
"{B175520C-86A2-35A7-8619-86DC379688B9}" = Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030
"{B2611F8A-EFE7-4E88-875D-19F0EFAE87E4}" = Windows Live PIMT Platform
"{B829E117-D072-41EA-9606-9826A38D34C1}" = Sophos Virus Removal Tool
"{BD95A8CD-1D9F-35AD-981A-3E7925026EBB}" = Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030
"{c7f54569-0018-439c-809a-48046a4d4ebc}" = Intel® Chipset Device Software
"{C9EF1AAF-B542-41C8-A537-1142DA5D4AEC}" = HP Customer Experience Enhancements
"{C9F1F770-9A43-4BC1-9C8F-DEE6C9A91F4A}" = HP Support Solutions Framework
"{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}" = Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030
"{CDC1AB00-01FF-4FC7-816A-16C67F0923C0}" = Windows Live SOXE
"{D1893000-EA77-493C-8DDD-E262436E959B}" = Windows Live SOXE Definitions
"{d5572863-793c-4ec8-872a-43cccc68b948}" = Aplikace Intel® PROSet/Wireless
"{D5C69738-B486-402E-85AC-2456D98A64E4}" = Pomocník při upgradu na Windows 10
"{D8C8656B-0BD8-39C3-B741-F889B7C144E5}" = Microsoft Visual C++ 2015 x86 Additional Runtime - 14.0.24210
"{DD67BE4B-7E62-4215-AFA3-F123A800A389}" = Movie Maker
"{E09C4DB7-630C-4F06-A631-8EA7239923AF}" = D3DX10
"{E100E2B5-F2EF-4955-AB7A-C3F2125A3BCD}" = Windows Live UX Platform Language Pack
"{E8D0E2B8-B64B-44BC-8E01-00DDACBDF78A}" = HP 3D DriveGuard
"{E9727CBE-5BEF-487F-ABF0-2215C7274A35}" = Stronghold Crusader
"{EFA01423-3857-468C-B7B6-F30AA08E50BC}" = HP Wireless Button Driver
"{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU]
"{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219
"{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}" = Intel(R) Processor Graphics
"{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver
"{f144e08f-9cbe-4f09-9a8c-f2b858b7ee7f}" = Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24210
"{F37D360D-9308-4BB1-8515-DC6B637B9486}" = Fotogalerie
"{f65db027-aff3-4070-886a-0d87064aabb1}" = Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501
"{F8CFEB22-A2E7-3971-9EDA-4B11EDEFC185}" = Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005
"{FC965A47-4839-40CA-B618-18F486F042C6}" = Skype™ 7.32
"{FEDC7C10-EF67-11E4-9B07-00505695D7B0}" = Evernote v. 5.8.6
"Adobe Shockwave Player" = Adobe Shockwave Player 12.2
"Battlelog Web Plugins" = Battlelog Web Plugins
"ESN Sonar-0.70.4" = ESN Sonar
"Google Chrome" = Google Chrome
"HD Tune_is1" = HD Tune 2.55
"InstallShield_{5A454EC5-217A-42a5-8CE1-2DDEC4E70E01}" = CyberLink PhotoDirector
"InstallShield_{E1646825-D391-42A0-93AA-27FA810DA093}" = CyberLink PowerDirector 12
"Origin" = Origin
"PunkBusterSvc" = PunkBuster Services
"Steam" = Steam
"Uplay" = Uplay
"WinLiveSuite" = Windows Live Essentials
========== HKEY_CURRENT_USER Uninstall List ==========
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"OneDriveSetup.exe" = Microsoft OneDrive
========== Last 20 Event Log Errors ==========
[ Application Events ]
Error - 10.01.2017 12:30:44 | Computer Name = DESKTOP-84BQ2CB | Source = DPTF | ID = 256
Description = Intel(R) Dynamic Platform and Thermal Framework : ESIF(8.1.10600.150)
TYPE: ERROR DPTF Build Version: 8.1.10600.150 DPTF Build Date: Jun 26 2015 11:46:12
Source
File: ..\..\..\Sources\Manager\EsifApplicationInterface.cpp @ line 737 Executing
Function: DptfEvent Message: Received unexpected event Framework Event: DptfResume
[3]
Error - 10.01.2017 12:30:47 | Computer Name = DESKTOP-84BQ2CB | Source = Bonjour Service | ID = 100
Description = mDNSCoreReceiveResponse: Received from FE80:0000:0000:0000:299B:723D:EF9C:886F:5353
4 DESKTOP-84BQ2CB.local. Addr 192.168.0.105
Error - 10.01.2017 12:30:47 | Computer Name = DESKTOP-84BQ2CB | Source = Bonjour Service | ID = 100
Description = mDNSCoreReceiveResponse: ProbeCount 2; will deregister 16 DESKTOP-84BQ2CB.local.
AAAA FE80:0000:0000:0000:299B:723D:EF9C:886F
Error - 10.01.2017 12:30:47 | Computer Name = DESKTOP-84BQ2CB | Source = Bonjour Service | ID = 100
Description = Local Hostname DESKTOP-84BQ2CB.local already in use; will try DESKTOP-84BQ2CB-2.local
instead
Error - 10.01.2017 14:30:22 | Computer Name = DESKTOP-84BQ2CB | Source = DPTF | ID = 256
Description = Intel(R) Dynamic Platform and Thermal Framework : ESIF(8.1.10600.150)
TYPE: ERROR DPTF Build Version: 8.1.10600.150 DPTF Build Date: Jun 26 2015 11:46:12
Source
File: ..\..\..\Sources\Manager\EsifApplicationInterface.cpp @ line 737 Executing
Function: DptfEvent Message: Received unexpected event Framework Event: DptfResume
[3]
Error - 10.01.2017 14:30:43 | Computer Name = DESKTOP-84BQ2CB | Source = Application Error | ID = 1000
Description = Název chybující aplikace: NvStreamUserAgent.exe, verze: 7.1.2084.9592,
časové razítko: 0x57605c64 Název chybujícího modulu: ntdll.dll, verze: 10.0.14393.479,
časové razítko: 0x5825887f Kód výjimky: 0xc0000005 Posun chyby: 0x0000000000030bdd
ID
chybujícího procesu: 0x1098 Čas spuštění chybující aplikace: 0x01d26b6fa3f64988 Cesta
k chybující aplikaci: C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe
Cesta
k chybujícímu modulu: C:\WINDOWS\SYSTEM32\ntdll.dll ID zprávy: 2e3ecfc5-1209-47de-9a74-6ee2eb1fe241
Úplný
název chybujícího balíčku: ID aplikace související s chybujícím balíčkem:
Error - 10.01.2017 15:50:16 | Computer Name = DESKTOP-84BQ2CB | Source = Perflib | ID = 1008
Description =
Error - 10.01.2017 16:39:07 | Computer Name = DESKTOP-84BQ2CB | Source = Bonjour Service | ID = 100
Description = Task Scheduling Error: Continuously busy for more than a second
Error - 10.01.2017 16:39:07 | Computer Name = DESKTOP-84BQ2CB | Source = Bonjour Service | ID = 100
Description = Task Scheduling Error: m->NextScheduledEvent 15578
Error - 10.01.2017 16:39:07 | Computer Name = DESKTOP-84BQ2CB | Source = Bonjour Service | ID = 100
Description = Task Scheduling Error: m->NextScheduledSPRetry 15578
Error - 11.01.2017 15:28:29 | Computer Name = DESKTOP-84BQ2CB | Source = DPTF | ID = 256
Description = Intel(R) Dynamic Platform and Thermal Framework : ESIF(8.1.10600.150)
TYPE: ERROR DPTF Build Version: 8.1.10600.150 DPTF Build Date: Jun 26 2015 11:46:12
Source
File: ..\..\..\Sources\Manager\EsifApplicationInterface.cpp @ line 737 Executing
Function: DptfEvent Message: Received unexpected event Framework Event: DptfResume
[3]
Error - 12.01.2017 8:17:35 | Computer Name = DESKTOP-84BQ2CB | Source = DPTF | ID = 256
Description = Intel(R) Dynamic Platform and Thermal Framework : ESIF(8.1.10600.150)
TYPE: ERROR DPTF Build Version: 8.1.10600.150 DPTF Build Date: Jun 26 2015 11:46:12
Source
File: ..\..\..\Sources\Manager\EsifApplicationInterface.cpp @ line 737 Executing
Function: DptfEvent Message: Received unexpected event Framework Event: DptfResume
[3]
Error - 12.01.2017 8:38:00 | Computer Name = DESKTOP-84BQ2CB | Source = Perflib | ID = 1008
Description =
Error - 12.01.2017 8:41:00 | Computer Name = DESKTOP-84BQ2CB | Source = Microsoft-Windows-Immersive-Shell | ID = 5973
Description = Aplikaci Microsoft.WindowsStore_8wekyb3d8bbwe!App se nepovedlo aktivovat,
protože došlo k chybě: -2144927141. Další informace najdete v protokolu Microsoft-Windows-TWinUI/Operational.
Error - 12.01.2017 11:37:42 | Computer Name = DESKTOP-84BQ2CB | Source = DPTF | ID = 256
Description = Intel(R) Dynamic Platform and Thermal Framework : ESIF(8.1.10600.150)
TYPE: ERROR DPTF Build Version: 8.1.10600.150 DPTF Build Date: Jun 26 2015 11:46:12
Source
File: ..\..\..\Sources\Manager\EsifApplicationInterface.cpp @ line 737 Executing
Function: DptfEvent Message: Received unexpected event Framework Event: DptfResume
[3]
Error - 12.01.2017 11:37:52 | Computer Name = DESKTOP-84BQ2CB | Source = Application Error | ID = 1000
Description = Název chybující aplikace: NvStreamUserAgent.exe, verze: 7.1.2084.9592,
časové razítko: 0x57605c64 Název chybujícího modulu: ntdll.dll, verze: 10.0.14393.479,
časové razítko: 0x5825887f Kód výjimky: 0xc0000005 Posun chyby: 0x0000000000030bdd
ID
chybujícího procesu: 0x1140 Čas spuštění chybující aplikace: 0x01d26ce9d32af5a9 Cesta
k chybující aplikaci: C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe
Cesta
k chybujícímu modulu: C:\WINDOWS\SYSTEM32\ntdll.dll ID zprávy: 9b1f2ab8-1cfb-4390-a713-de2eaef8b987
Úplný
název chybujícího balíčku: ID aplikace související s chybujícím balíčkem:
Error - 12.01.2017 11:38:08 | Computer Name = DESKTOP-84BQ2CB | Source = Application Error | ID = 1000
Description = Název chybující aplikace: NvStreamUserAgent.exe, verze: 7.1.2084.9592,
časové razítko: 0x57605c64 Název chybujícího modulu: ntdll.dll, verze: 10.0.14393.479,
časové razítko: 0x5825887f Kód výjimky: 0xc0000005 Posun chyby: 0x0000000000030bdd
ID
chybujícího procesu: 0x1c88 Čas spuštění chybující aplikace: 0x01d26ce9dfc2419d Cesta
k chybující aplikaci: C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe
Cesta
k chybujícímu modulu: C:\WINDOWS\SYSTEM32\ntdll.dll ID zprávy: 32bd75a2-8897-4d87-9ccd-0956dce4930a
Úplný
název chybujícího balíčku: ID aplikace související s chybujícím balíčkem:
Error - 12.01.2017 11:38:19 | Computer Name = DESKTOP-84BQ2CB | Source = Application Error | ID = 1000
Description = Název chybující aplikace: NvStreamUserAgent.exe, verze: 7.1.2084.9592,
časové razítko: 0x57605c64 Název chybujícího modulu: ntdll.dll, verze: 10.0.14393.479,
časové razítko: 0x5825887f Kód výjimky: 0xc0000005 Posun chyby: 0x0000000000030bdd
ID
chybujícího procesu: 0xa10 Čas spuštění chybující aplikace: 0x01d26ce9e65530e2 Cesta
k chybující aplikaci: C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe
Cesta
k chybujícímu modulu: C:\WINDOWS\SYSTEM32\ntdll.dll ID zprávy: 7a231540-1fe8-49ef-b11a-3622bdd48667
Úplný
název chybujícího balíčku: ID aplikace související s chybujícím balíčkem:
Error - 12.01.2017 11:54:52 | Computer Name = DESKTOP-84BQ2CB | Source = Software Protection Platform Service | ID = 8200
Description = Podrobnosti chyby získávání licence hr=0xC004C003
Error - 12.01.2017 11:54:52 | Computer Name = DESKTOP-84BQ2CB | Source = Software Protection Platform Service | ID = 1014
Description = Získání licence koncového uživatele se nezdařilo. hr=0xC004C003 ID
SKU=39a1be8c-9e7f-4a75-81f4-21cfac7cbecb
[ System Events ]
Error - 22.03.2017 16:57:58 | Computer Name = DESKTOP-84BQ2CB | Source = DCOM | ID = 10016
Description =
Error - 22.03.2017 16:58:04 | Computer Name = DESKTOP-84BQ2CB | Source = DCOM | ID = 10010
Description =
Error - 23.03.2017 15:00:07 | Computer Name = DESKTOP-84BQ2CB | Source = DCOM | ID = 10016
Description =
Error - 23.03.2017 15:00:07 | Computer Name = DESKTOP-84BQ2CB | Source = DCOM | ID = 10016
Description =
Error - 23.03.2017 15:00:09 | Computer Name = DESKTOP-84BQ2CB | Source = DCOM | ID = 10016
Description =
Error - 23.03.2017 15:03:54 | Computer Name = DESKTOP-84BQ2CB | Source = Service Control Manager | ID = 7034
Description = Služba Správce stažených map byla neočekávaně ukončena. Tento stav
nastal již 1krát.
Error - 23.03.2017 16:46:16 | Computer Name = DESKTOP-84BQ2CB | Source = DCOM | ID = 10016
Description =
Error - 24.03.2017 3:52:05 | Computer Name = DESKTOP-84BQ2CB | Source = DCOM | ID = 10016
Description =
Error - 24.03.2017 3:52:05 | Computer Name = DESKTOP-84BQ2CB | Source = DCOM | ID = 10016
Description =
Error - 24.03.2017 3:52:07 | Computer Name = DESKTOP-84BQ2CB | Source = DCOM | ID = 10016
Description =
< End of report >
"{E0839EDA-1694-4F8E-9366-890EC6EDC364}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{E167624B-657E-4FAC-8277-52F5B3CBB0BF}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{E24FDB30-42BB-4CEB-A04A-3CA0118F7C63}" = dir=out | name=@{microsoft.bingnews_4.18.41.0_x86__8wekyb3d8bbwe?ms-resource://microsoft.bingnews/resources/applicationtitlewithbranding} |
"{E3A0A101-C2CD-492F-AABF-9FB8C2481021}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{E3D37181-4715-40C6-8999-7F87B0D80743}" = dir=in | app=c:\program files (x86)\cyberlink\powerdvd14\kernel\dms\clmsserverpdvd14.exe |
"{E51C80CA-4CC0-40EC-8864-35FCB574BE5A}" = dir=out | name=@{26720randomsaladgamesllc.simplesolitaire_5.4.0.40_x64__kx24dqmazqk8j?ms-resource://26720randomsaladgamesllc.simplesolitaire/resources/gamename} |
"{E661ADE1-F90E-4D6F-8583-C7AE17C731A8}" = protocol=6 | dir=in | app=c:\program files\microsoft office\office15\lync.exe |
"{E73090AA-A71F-40F1-A3A2-524A9C2B5C60}" = dir=in | name=@{microsoft.bingsports_4.18.37.0_x86__8wekyb3d8bbwe?ms-resource://microsoft.bingsports/resources/applicationtitlewithbranding} |
"{E760D856-EC29-46AE-AB3E-FA304E845C5E}" = dir=out | name=@{microsoft.aad.brokerplugin_1000.10240.16384.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.aad.brokerplugin/resources/packagedisplayname} |
"{E785891B-9BD1-4AA4-8B98-284CA0275CAE}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{E8313815-1251-4061-8C2B-FC2FBD6216B8}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{E8408F21-3BB6-403B-8790-3CEF4281368E}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{E99E75C3-B64A-49C0-9BC5-68E6E858D6B8}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{EA2255B8-0EE7-41F9-A0C6-CCC6D0C1F72F}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{EAA82C27-4DB4-4446-94A4-0973A06E9DDC}" = dir=out | name=@{microsoft.lockapp_10.0.10240.16384_neutral__cw5n1h2txyewy?ms-resource://microsoft.lockapp/resources/appdisplayname} |
"{EB33F1C6-7CBA-44BF-81F8-FBB5DD304FBA}" = protocol=17 | dir=in | app=c:\nexon\library\combatarms\appdata\nmservice.exe |
"{EC96479A-95CF-4974-9127-616BFD237821}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{EF044260-654B-475A-A3C4-55DBF68959B5}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{EFC979DE-AA86-43B1-B785-3DE72BCDE6F7}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{F21E0D91-DCDE-42E7-BA47-18402C895D96}" = protocol=17 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
"{F4EBDA08-496D-4A43-93B8-356587421319}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{F6E36D9B-B390-4CF3-8B45-107C1C1403CF}" = dir=in | name=@{microsoft.windows.photos_17.214.10010.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.windows.photos/resources/appstorename} |
"{F77C4EDE-0101-41EB-80DA-B4CC43D7128B}" = dir=out | name=@{microsoft.lockapp_10.0.14393.0_neutral__cw5n1h2txyewy?ms-resource://microsoft.lockapp/resources/appdisplayname} |
"{F901CB2F-7314-4766-A16E-7E34CAF2F012}" = dir=out | name=@{microsoft.ppiprojection_10.0.14393.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.ppiprojection/resources/productname} |
"{F92B5DF3-A827-41CD-A75E-E16C9EF0711F}" = protocol=6 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
"{F97D0398-B76B-485F-BEE3-F394E7ECE279}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{F9D12310-E1A3-41F9-9014-63B5805B38C7}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{F9DC3729-7D62-42AE-8851-0D54C8409344}" = dir=out | name=@{microsoft.appconnector_1.3.3.0_neutral__8wekyb3d8bbwe?ms-resource://microsoft.appconnector/resources/connectorstubtitle} |
"{FA118D6E-061E-40F1-9CE0-D4401DAC2870}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{FB6AE280-3624-4C42-8FB5-54145B8E25AB}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{FB8FFBBD-5F6F-4FF8-8C8B-1B0115F7BAD8}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{FC73B029-EDE3-49FC-AEBF-62DC555DE5C7}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{FD788F41-EF0B-4668-A7F1-27125F887171}" = protocol=17 | dir=in | app=c:\windows\syswow64\pnkbstra.exe |
"{FDE37255-01DB-4DA3-BB3E-810C3417F5B5}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe |
"{FE869468-64F8-42A2-8B13-9581EEE9FE58}" = dir=in | name=@{microsoft.bingnews_4.18.41.0_x86__8wekyb3d8bbwe?ms-resource://microsoft.bingnews/resources/applicationtitlewithbranding} |
"TCP Query User{50E5A9A9-50AF-41E8-A683-B8D90EAF862C}C:\program files (x86)\origin games\battlefield 4\bf4.exe" = protocol=6 | dir=in | app=c:\program files (x86)\origin games\battlefield 4\bf4.exe |
"TCP Query User{C2E36DCD-99EB-4D1E-9009-7C6B06E6EF1B}C:\users\endon\appdata\roaming\utorrent\utorrent.exe" = protocol=6 | dir=in | app=c:\users\endon\appdata\roaming\utorrent\utorrent.exe |
"UDP Query User{84BFE415-0D32-4210-B1BF-2B0CD810EAEA}C:\users\endon\appdata\roaming\utorrent\utorrent.exe" = protocol=17 | dir=in | app=c:\users\endon\appdata\roaming\utorrent\utorrent.exe |
"UDP Query User{9405F578-8AFC-4707-964B-6E8C7AA44DAA}C:\program files (x86)\origin games\battlefield 4\bf4.exe" = protocol=17 | dir=in | app=c:\program files (x86)\origin games\battlefield 4\bf4.exe |
========== HKEY_LOCAL_MACHINE Uninstall List ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{10307C17-F7FD-405D-9F3B-0BF66EA43857}" = Intel® Software Guard Extensions Platform Software
"{1CEAC85D-2590-4760-800F-8DE5E91F3700}" = Intel(R) Management Engine Components
"{1D8E6291-B0D5-35EC-8441-6616F567A0F7}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219
"{303C5CD6-2525-49C5-9E49-DBD92F9F63BD}" = Intel(R) Rapid Storage Technology
"{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1" = Malwarebytes verze 3.0.6.1469
"{362FC667-C52E-4985-AEFB-8533A2F3C49C}" = Intel® PROSet/Wireless WiFi Software
"{37B8F9C7-03FB-3253-8781-2517C99D7C00}" = Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030
"{3BC36736-66B5-4C48-AF0A-C41C335ABCB0}" = HP ePrint Windows Driver
"{409CB30E-E457-4008-9B1A-ED1B9EA21140}" = Intel(R) Rapid Storage Technology
"{465CA2B6-98AF-4E77-BE22-A908C34BB9EC}" = Energy Star
"{55398EAC-F58E-4F19-B553-BDF8B9EFD839}" = Intel(R) Chipset Device Software
"{5A454EC5-217A-42a5-8CE1-2DDEC4E70E01}" = CyberLink PhotoDirector
"{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161
"{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}" = Bonjour
"{74FE39A0-FB76-47CD-84BA-91E2BBB17EF2}" = DisableMSDefender
"{7D84E343-A23D-451C-B123-0195B2D903A6}" = Intel® Trusted Connect Service Client
"{8220EEFE-38CD-377E-8595-13398D740ACE}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17
"{8736f7db-10ee-4722-b588-3a7296eafc38}" = Intel(R) PRO/Wireless Driver
"{8C775E70-A791-4DA8-BCC3-6AB7136F4484}" = Visual Studio 2012 x64 Redistributables
"{90150000-0015-0405-1000-0000000FF1CE}" = Microsoft Access MUI (Czech) 2013
"{90150000-0016-0405-1000-0000000FF1CE}" = Microsoft Excel MUI (Czech) 2013
"{90150000-0018-0405-1000-0000000FF1CE}" = Microsoft PowerPoint MUI (Czech) 2013
"{90150000-0019-0405-1000-0000000FF1CE}" = Microsoft Publisher MUI (Czech) 2013
"{90150000-001A-0405-1000-0000000FF1CE}" = Microsoft Outlook MUI (Czech) 2013
"{90150000-001B-0405-1000-0000000FF1CE}" = Microsoft Word MUI (Czech) 2013
"{90150000-001F-0405-1000-0000000FF1CE}" = Nástroje kontroly pravopisu pro Microsoft Office 2013 – čeština
"{90150000-001F-0407-1000-0000000FF1CE}" = Microsoft Office Korrekturhilfen 2013 - Deutsch
"{90150000-001F-0409-1000-0000000FF1CE}" = Microsoft Office Proofing Tools 2013 - English
"{90150000-001F-041B-1000-0000000FF1CE}" = Nástroje korektúry balíka Microsoft Office 2013 - slovenčina
"{90150000-002C-0405-1000-0000000FF1CE}" = Microsoft Office Proofing (Czech) 2013
"{90150000-0044-0405-1000-0000000FF1CE}" = Microsoft InfoPath MUI (Czech) 2013
"{90150000-006E-0405-1000-0000000FF1CE}" = Microsoft Office Shared MUI (Czech) 2013
"{90150000-0090-0405-1000-0000000FF1CE}" = Microsoft DCF MUI (Czech) 2013
"{90150000-00A1-0405-1000-0000000FF1CE}" = Microsoft OneNote MUI (Czech) 2013
"{90150000-00BA-0405-1000-0000000FF1CE}" = Microsoft Groove MUI (Czech) 2013
"{90150000-00C1-0000-1000-0000000FF1CE}" = Microsoft Office 32-bit Components 2013
"{90150000-00C1-0405-1000-0000000FF1CE}" = Microsoft Office Shared 32-bit MUI (Czech) 2013
"{90150000-00E1-0405-1000-0000000FF1CE}" = Microsoft Office OSM MUI (Czech) 2013
"{90150000-00E2-0405-1000-0000000FF1CE}" = Microsoft Office OSM UX MUI (Czech) 2013
"{90150000-012B-0405-1000-0000000FF1CE}" = Microsoft Lync MUI (Czech) 2013
"{90160000-008F-0000-1000-0000000FF1CE}" = Office 16 Click-to-Run Licensing Component
"{90160000-00DD-0000-1000-0000000FF1CE}" = Office 16 Click-to-Run Extensibility Component 64-bit Registration
"{91150000-0011-0000-1000-0000000FF1CE}" = Microsoft Office Professional Plus 2013
"{929FBD26-9020-399B-9A7A-751D61F0B942}" = Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.21005
"{9495AEB4-AB97-39DE-8C42-806EEF75ECA7}" = Microsoft Visual Studio 2010 Tools for Office Runtime (x64)
"{95120000-00B9-0409-1000-0000000FF1CE}" = Microsoft Application Error Reporting
"{95265B86-188E-3F62-9CDB-60FCE59EC721}" = Microsoft Visual C++ 2015 x64 Additional Runtime - 14.0.24210
"{A749D8E6-B613-3BE3-8F5F-045C84EBA29B}" = Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.21005
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Ansel" = Ansel
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel" = Ovládací panel NVIDIA 378.66
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver" = NVIDIA Ovladače grafiky 378.66
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience" = NVIDIA GeForce Experience 3.3.0.95
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Optimus" = NVIDIA Optimus Update 23.23.0.0
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX" = NVIDIA Systémový software PhysX 9.16.0318
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update" = Aktualizace NVIDIA 23.23.0.0
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.NvStreamSrv" = SHIELD Streaming
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer" = NVIDIA Install Application
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvBackend" = NVIDIA Backend
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer" = NVIDIA Container
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.LocalSystem" = NVIDIA LocalSystem Container
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.MessageBus" = NVIDIA Message Bus for NvContainer
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.NetworkService" = NVIDIA NetworkService Container
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.Session" = NVIDIA Session Container
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.User" = NVIDIA User Container
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NVDisplayContainer" = NVIDIA Display Container
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NVDisplayContainerLS" = NVIDIA Display Container LS
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvNodejs" = NvNodejs
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvPlugin.Watchdog" = NVIDIA Watchdog Plugin for NvContainer
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvTelemetry" = NvTelemetry
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvTelemetryContainer" = NVIDIA Telemetry Container
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvvHci" = NvvHci
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_OSC" = Nvidia Share
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_ShadowPlay" = NVIDIA ShadowPlay 3.3.0.95
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_ShieldWirelessController" = SHIELD Wireless Controller Driver
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Update.Core" = NVIDIA Update Core
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_VirtualAudio.Driver" = NVIDIA Virtual Audio 3.51.2
"{BFACB3F5-7091-429E-A6A9-59C0696B710E}" = Intel(R) Management Engine Components
"{C0B2C673-ECAA-372D-94E5-E89440D087AD}" = Microsoft Visual C++ 2015 x64 Minimum Runtime - 14.0.24210
"{C7CD6D54-26AF-4D93-B06F-D81ACE8624CB}" = Intel(R) WiDi
"{CCCB484E-79D5-4398-9377-CA6EEB6B53AE}" = Intel(R) Management Engine Components
"{CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97}" = Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030
"{D1E8F2D7-7794-4245-B286-87ED86C1893C}" = HP Registration Service
"{DF17C0DB-76D8-4A45-B26E-674F8455B803}" = Intel(R) ME UninstallLegacy
"{E1646825-D391-42A0-93AA-27FA810DA093}" = CyberLink PowerDirector 12
"{E9FA781F-3E80-4399-825A-AD3E11C28C77}" = MSVCRT110_amd64
"CCleaner" = CCleaner
"DAEMON Tools Lite" = DAEMON Tools Lite
"HP_Documentation" = HP Documentation
"HPWelcome" = HP Welcome
"Microsoft Visual Studio 2010 Tools for Office Runtime (x64)" = Microsoft Visual Studio 2010 Tools for Office Runtime (x64)
"O365HomePremRetail - cs-cz" = Microsoft Office 365 - cs-cz
"Office15.PROPLUSR" = Microsoft Office Professional Plus 2013
"ProfessionalRetail - cs-cz" = Microsoft Office 2016 pro profesionály - cs-cz
"Steam App 570" = Dota 2
"SynTPDeinstKey" = Synaptics ClickPad Driver
"VulkanRT1.0.39.1" = Vulkan Run Time Libraries 1.0.39.1
"WinRAR archiver" = WinRAR 5.40 (64-bit)
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{00F9DB8C-65D7-4D47-AB5F-F698EE38580D}" = Windows Live UX Platform
"{050d4fc8-5d48-4b8f-8972-47c82c46020f}" = Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501
"{07AAB66E-4718-422D-9218-4AFB3C922A71}" = Photo Gallery
"{139493B2-F1BC-4F05-A974-B49297C1EB04}" = UpdateAssistant
"{13A4EE12-23EA-3371-91EE-EFB36DDFFF3E}" = Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005
"{15BFD731-A10E-43E9-9D18-0F682BC0480F}" = Photo Common
"{1A13FE59-6F7E-44DC-9AA7-2D7B9E08C2D4}" = HP System Event Utility
"{1D6432B4-E24D-405E-A4AB-D7E6D088CBC9}" = Windows Live Photo Common
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{23658c02-145e-483d-ba6b-1eb82c580529}" = Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24210
"{32C8E300-BDB4-4398-92C2-E9B7D8A233DB}" = CyberLink Power Media Player 14
"{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}" = Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030
"{3D2CF65C-B544-4308-B996-700D3E5F6C4C}" = Movie Maker
"{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}" = Microsoft ASP.NET MVC 4 Runtime
"{41C61308-6CFD-4D54-AB6A-7136ED08A18E}" = Windows Live Communications Platform
"{4EBD7408-E5EF-4D98-A931-50B9CAC2BAB2}" = R2-D2
"{597A58EC-42D6-4940-8739-FB94491B013C}" = Dropbox 25 GB
"{5B5CD20C-29F0-4857-A4FA-A4F4C716B019}" = Intel(R) WiDi Software Asset Manager
"{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}" = Realtek Card Reader
"{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}" = Google Update Helper
"{612C34C7-5E90-47D8-9B5C-0F717DD82726}" = swMSM
"{61EB474B-67A6-47F4-B1B7-386851BAB3D0}" = HP Support Assistant
"{64BAA990-F1FC-4145-A7B1-E41FBBC9DA47}" = HP Recovery Manager
"{654EE65D-FAA4-4EA6-8C07-DC94E6A304D4}" = Intel(R) Dynamic Platform and Thermal Framework
"{659CB81C-B54E-4DF1-B618-F35777393A54}" = Windows Live Installer
"{67F42018-F647-4D3C-BE62-F8CB4FE2FCD5}" = Microsoft Games for Windows Marketplace
"{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
"{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
"{74F1230A-64B6-4E37-86D4-866219DA02AB}" = Star Wars Command Center
"{832D9DE0-8AFC-4689-9819-4DBBDEBD3E4F}" = Microsoft Games for Windows - LIVE Redistributable
"{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable
"{8833FFB6-5B0C-4764-81AA-06DFEED9A476}" = Realtek Ethernet Controller Driver
"{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}" = MSVCRT
"{8E14DDC8-EA60-4E18-B3E3-1937104D5BDA}" = MSVCRT110
"{8F0CD7D1-42F3-4195-95CD-833578D45057}_is1" = Zemana AntiMalware
"{8FD71E98-EE44-3844-9DAD-9CB0BBBC603C}" = Microsoft Visual C++ 2015 x86 Minimum Runtime - 14.0.24210
"{90160000-008C-0000-0000-0000000FF1CE}" = Office 16 Click-to-Run Extensibility Component
"{90160000-008C-0405-0000-0000000FF1CE}" = Office 16 Click-to-Run Localization Component
"{909F8EBC-EC7F-48FF-0085-475D818F0F31}" = Need for Speed Underground 2
"{95716cce-fc71-413f-8ad5-56c2892d4b3a}" = Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610
"{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}" = Visual Studio 2012 x86 Redistributables
"{9A470EA9-FF86-4C0E-992C-572BF2B9D6FF}" = Windows Live Essentials
"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
"{a1909659-0a08-4554-8af1-2175904903a1}" = Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610
"{A354DC98-2677-4967-8AA0-3B867EE10202}" = Intel(R) Wireless Bluetooth(R)
"{A9CEDD6E-4792-493e-BB35-D86D2E188A5A}" = CyberLink YouCam
"{ABADE36E-EC37-413B-8179-B432AD3FACE7}" = Battlefield 4™
"{B175520C-86A2-35A7-8619-86DC379688B9}" = Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030
"{B2611F8A-EFE7-4E88-875D-19F0EFAE87E4}" = Windows Live PIMT Platform
"{B829E117-D072-41EA-9606-9826A38D34C1}" = Sophos Virus Removal Tool
"{BD95A8CD-1D9F-35AD-981A-3E7925026EBB}" = Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030
"{c7f54569-0018-439c-809a-48046a4d4ebc}" = Intel® Chipset Device Software
"{C9EF1AAF-B542-41C8-A537-1142DA5D4AEC}" = HP Customer Experience Enhancements
"{C9F1F770-9A43-4BC1-9C8F-DEE6C9A91F4A}" = HP Support Solutions Framework
"{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}" = Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030
"{CDC1AB00-01FF-4FC7-816A-16C67F0923C0}" = Windows Live SOXE
"{D1893000-EA77-493C-8DDD-E262436E959B}" = Windows Live SOXE Definitions
"{d5572863-793c-4ec8-872a-43cccc68b948}" = Aplikace Intel® PROSet/Wireless
"{D5C69738-B486-402E-85AC-2456D98A64E4}" = Pomocník při upgradu na Windows 10
"{D8C8656B-0BD8-39C3-B741-F889B7C144E5}" = Microsoft Visual C++ 2015 x86 Additional Runtime - 14.0.24210
"{DD67BE4B-7E62-4215-AFA3-F123A800A389}" = Movie Maker
"{E09C4DB7-630C-4F06-A631-8EA7239923AF}" = D3DX10
"{E100E2B5-F2EF-4955-AB7A-C3F2125A3BCD}" = Windows Live UX Platform Language Pack
"{E8D0E2B8-B64B-44BC-8E01-00DDACBDF78A}" = HP 3D DriveGuard
"{E9727CBE-5BEF-487F-ABF0-2215C7274A35}" = Stronghold Crusader
"{EFA01423-3857-468C-B7B6-F30AA08E50BC}" = HP Wireless Button Driver
"{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU]
"{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219
"{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}" = Intel(R) Processor Graphics
"{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver
"{f144e08f-9cbe-4f09-9a8c-f2b858b7ee7f}" = Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24210
"{F37D360D-9308-4BB1-8515-DC6B637B9486}" = Fotogalerie
"{f65db027-aff3-4070-886a-0d87064aabb1}" = Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501
"{F8CFEB22-A2E7-3971-9EDA-4B11EDEFC185}" = Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005
"{FC965A47-4839-40CA-B618-18F486F042C6}" = Skype™ 7.32
"{FEDC7C10-EF67-11E4-9B07-00505695D7B0}" = Evernote v. 5.8.6
"Adobe Shockwave Player" = Adobe Shockwave Player 12.2
"Battlelog Web Plugins" = Battlelog Web Plugins
"ESN Sonar-0.70.4" = ESN Sonar
"Google Chrome" = Google Chrome
"HD Tune_is1" = HD Tune 2.55
"InstallShield_{5A454EC5-217A-42a5-8CE1-2DDEC4E70E01}" = CyberLink PhotoDirector
"InstallShield_{E1646825-D391-42A0-93AA-27FA810DA093}" = CyberLink PowerDirector 12
"Origin" = Origin
"PunkBusterSvc" = PunkBuster Services
"Steam" = Steam
"Uplay" = Uplay
"WinLiveSuite" = Windows Live Essentials
========== HKEY_CURRENT_USER Uninstall List ==========
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"OneDriveSetup.exe" = Microsoft OneDrive
========== Last 20 Event Log Errors ==========
[ Application Events ]
Error - 10.01.2017 12:30:44 | Computer Name = DESKTOP-84BQ2CB | Source = DPTF | ID = 256
Description = Intel(R) Dynamic Platform and Thermal Framework : ESIF(8.1.10600.150)
TYPE: ERROR DPTF Build Version: 8.1.10600.150 DPTF Build Date: Jun 26 2015 11:46:12
Source
File: ..\..\..\Sources\Manager\EsifApplicationInterface.cpp @ line 737 Executing
Function: DptfEvent Message: Received unexpected event Framework Event: DptfResume
[3]
Error - 10.01.2017 12:30:47 | Computer Name = DESKTOP-84BQ2CB | Source = Bonjour Service | ID = 100
Description = mDNSCoreReceiveResponse: Received from FE80:0000:0000:0000:299B:723D:EF9C:886F:5353
4 DESKTOP-84BQ2CB.local. Addr 192.168.0.105
Error - 10.01.2017 12:30:47 | Computer Name = DESKTOP-84BQ2CB | Source = Bonjour Service | ID = 100
Description = mDNSCoreReceiveResponse: ProbeCount 2; will deregister 16 DESKTOP-84BQ2CB.local.
AAAA FE80:0000:0000:0000:299B:723D:EF9C:886F
Error - 10.01.2017 12:30:47 | Computer Name = DESKTOP-84BQ2CB | Source = Bonjour Service | ID = 100
Description = Local Hostname DESKTOP-84BQ2CB.local already in use; will try DESKTOP-84BQ2CB-2.local
instead
Error - 10.01.2017 14:30:22 | Computer Name = DESKTOP-84BQ2CB | Source = DPTF | ID = 256
Description = Intel(R) Dynamic Platform and Thermal Framework : ESIF(8.1.10600.150)
TYPE: ERROR DPTF Build Version: 8.1.10600.150 DPTF Build Date: Jun 26 2015 11:46:12
Source
File: ..\..\..\Sources\Manager\EsifApplicationInterface.cpp @ line 737 Executing
Function: DptfEvent Message: Received unexpected event Framework Event: DptfResume
[3]
Error - 10.01.2017 14:30:43 | Computer Name = DESKTOP-84BQ2CB | Source = Application Error | ID = 1000
Description = Název chybující aplikace: NvStreamUserAgent.exe, verze: 7.1.2084.9592,
časové razítko: 0x57605c64 Název chybujícího modulu: ntdll.dll, verze: 10.0.14393.479,
časové razítko: 0x5825887f Kód výjimky: 0xc0000005 Posun chyby: 0x0000000000030bdd
ID
chybujícího procesu: 0x1098 Čas spuštění chybující aplikace: 0x01d26b6fa3f64988 Cesta
k chybující aplikaci: C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe
Cesta
k chybujícímu modulu: C:\WINDOWS\SYSTEM32\ntdll.dll ID zprávy: 2e3ecfc5-1209-47de-9a74-6ee2eb1fe241
Úplný
název chybujícího balíčku: ID aplikace související s chybujícím balíčkem:
Error - 10.01.2017 15:50:16 | Computer Name = DESKTOP-84BQ2CB | Source = Perflib | ID = 1008
Description =
Error - 10.01.2017 16:39:07 | Computer Name = DESKTOP-84BQ2CB | Source = Bonjour Service | ID = 100
Description = Task Scheduling Error: Continuously busy for more than a second
Error - 10.01.2017 16:39:07 | Computer Name = DESKTOP-84BQ2CB | Source = Bonjour Service | ID = 100
Description = Task Scheduling Error: m->NextScheduledEvent 15578
Error - 10.01.2017 16:39:07 | Computer Name = DESKTOP-84BQ2CB | Source = Bonjour Service | ID = 100
Description = Task Scheduling Error: m->NextScheduledSPRetry 15578
Error - 11.01.2017 15:28:29 | Computer Name = DESKTOP-84BQ2CB | Source = DPTF | ID = 256
Description = Intel(R) Dynamic Platform and Thermal Framework : ESIF(8.1.10600.150)
TYPE: ERROR DPTF Build Version: 8.1.10600.150 DPTF Build Date: Jun 26 2015 11:46:12
Source
File: ..\..\..\Sources\Manager\EsifApplicationInterface.cpp @ line 737 Executing
Function: DptfEvent Message: Received unexpected event Framework Event: DptfResume
[3]
Error - 12.01.2017 8:17:35 | Computer Name = DESKTOP-84BQ2CB | Source = DPTF | ID = 256
Description = Intel(R) Dynamic Platform and Thermal Framework : ESIF(8.1.10600.150)
TYPE: ERROR DPTF Build Version: 8.1.10600.150 DPTF Build Date: Jun 26 2015 11:46:12
Source
File: ..\..\..\Sources\Manager\EsifApplicationInterface.cpp @ line 737 Executing
Function: DptfEvent Message: Received unexpected event Framework Event: DptfResume
[3]
Error - 12.01.2017 8:38:00 | Computer Name = DESKTOP-84BQ2CB | Source = Perflib | ID = 1008
Description =
Error - 12.01.2017 8:41:00 | Computer Name = DESKTOP-84BQ2CB | Source = Microsoft-Windows-Immersive-Shell | ID = 5973
Description = Aplikaci Microsoft.WindowsStore_8wekyb3d8bbwe!App se nepovedlo aktivovat,
protože došlo k chybě: -2144927141. Další informace najdete v protokolu Microsoft-Windows-TWinUI/Operational.
Error - 12.01.2017 11:37:42 | Computer Name = DESKTOP-84BQ2CB | Source = DPTF | ID = 256
Description = Intel(R) Dynamic Platform and Thermal Framework : ESIF(8.1.10600.150)
TYPE: ERROR DPTF Build Version: 8.1.10600.150 DPTF Build Date: Jun 26 2015 11:46:12
Source
File: ..\..\..\Sources\Manager\EsifApplicationInterface.cpp @ line 737 Executing
Function: DptfEvent Message: Received unexpected event Framework Event: DptfResume
[3]
Error - 12.01.2017 11:37:52 | Computer Name = DESKTOP-84BQ2CB | Source = Application Error | ID = 1000
Description = Název chybující aplikace: NvStreamUserAgent.exe, verze: 7.1.2084.9592,
časové razítko: 0x57605c64 Název chybujícího modulu: ntdll.dll, verze: 10.0.14393.479,
časové razítko: 0x5825887f Kód výjimky: 0xc0000005 Posun chyby: 0x0000000000030bdd
ID
chybujícího procesu: 0x1140 Čas spuštění chybující aplikace: 0x01d26ce9d32af5a9 Cesta
k chybující aplikaci: C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe
Cesta
k chybujícímu modulu: C:\WINDOWS\SYSTEM32\ntdll.dll ID zprávy: 9b1f2ab8-1cfb-4390-a713-de2eaef8b987
Úplný
název chybujícího balíčku: ID aplikace související s chybujícím balíčkem:
Error - 12.01.2017 11:38:08 | Computer Name = DESKTOP-84BQ2CB | Source = Application Error | ID = 1000
Description = Název chybující aplikace: NvStreamUserAgent.exe, verze: 7.1.2084.9592,
časové razítko: 0x57605c64 Název chybujícího modulu: ntdll.dll, verze: 10.0.14393.479,
časové razítko: 0x5825887f Kód výjimky: 0xc0000005 Posun chyby: 0x0000000000030bdd
ID
chybujícího procesu: 0x1c88 Čas spuštění chybující aplikace: 0x01d26ce9dfc2419d Cesta
k chybující aplikaci: C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe
Cesta
k chybujícímu modulu: C:\WINDOWS\SYSTEM32\ntdll.dll ID zprávy: 32bd75a2-8897-4d87-9ccd-0956dce4930a
Úplný
název chybujícího balíčku: ID aplikace související s chybujícím balíčkem:
Error - 12.01.2017 11:38:19 | Computer Name = DESKTOP-84BQ2CB | Source = Application Error | ID = 1000
Description = Název chybující aplikace: NvStreamUserAgent.exe, verze: 7.1.2084.9592,
časové razítko: 0x57605c64 Název chybujícího modulu: ntdll.dll, verze: 10.0.14393.479,
časové razítko: 0x5825887f Kód výjimky: 0xc0000005 Posun chyby: 0x0000000000030bdd
ID
chybujícího procesu: 0xa10 Čas spuštění chybující aplikace: 0x01d26ce9e65530e2 Cesta
k chybující aplikaci: C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe
Cesta
k chybujícímu modulu: C:\WINDOWS\SYSTEM32\ntdll.dll ID zprávy: 7a231540-1fe8-49ef-b11a-3622bdd48667
Úplný
název chybujícího balíčku: ID aplikace související s chybujícím balíčkem:
Error - 12.01.2017 11:54:52 | Computer Name = DESKTOP-84BQ2CB | Source = Software Protection Platform Service | ID = 8200
Description = Podrobnosti chyby získávání licence hr=0xC004C003
Error - 12.01.2017 11:54:52 | Computer Name = DESKTOP-84BQ2CB | Source = Software Protection Platform Service | ID = 1014
Description = Získání licence koncového uživatele se nezdařilo. hr=0xC004C003 ID
SKU=39a1be8c-9e7f-4a75-81f4-21cfac7cbecb
[ System Events ]
Error - 22.03.2017 16:57:58 | Computer Name = DESKTOP-84BQ2CB | Source = DCOM | ID = 10016
Description =
Error - 22.03.2017 16:58:04 | Computer Name = DESKTOP-84BQ2CB | Source = DCOM | ID = 10010
Description =
Error - 23.03.2017 15:00:07 | Computer Name = DESKTOP-84BQ2CB | Source = DCOM | ID = 10016
Description =
Error - 23.03.2017 15:00:07 | Computer Name = DESKTOP-84BQ2CB | Source = DCOM | ID = 10016
Description =
Error - 23.03.2017 15:00:09 | Computer Name = DESKTOP-84BQ2CB | Source = DCOM | ID = 10016
Description =
Error - 23.03.2017 15:03:54 | Computer Name = DESKTOP-84BQ2CB | Source = Service Control Manager | ID = 7034
Description = Služba Správce stažených map byla neočekávaně ukončena. Tento stav
nastal již 1krát.
Error - 23.03.2017 16:46:16 | Computer Name = DESKTOP-84BQ2CB | Source = DCOM | ID = 10016
Description =
Error - 24.03.2017 3:52:05 | Computer Name = DESKTOP-84BQ2CB | Source = DCOM | ID = 10016
Description =
Error - 24.03.2017 3:52:05 | Computer Name = DESKTOP-84BQ2CB | Source = DCOM | ID = 10016
Description =
Error - 24.03.2017 3:52:07 | Computer Name = DESKTOP-84BQ2CB | Source = DCOM | ID = 10016
Description =
< End of report >
►Case: NZXT Noctis 450◄►Zdroj: EVGA Supernova 750W G2◄►MB: Asus MAXIMUS VIII Ranger◄►CPU: Intel core i5-6600K◄►GPU: Gainward Phoenix GTX 1060 GS◄►Chladič: Scythe Ninja 4◄►SSD: Samsung 850 EVO 250GB◄►HDD: 2x Seagate Barracuda 2TB◄►RAM: Crucial Ballistix Sport LT 2x8GB 2400Mhz DDR4◄
- Orcus
- člen Security týmu
-
Elite Level 10.5
- Příspěvky: 10645
- Registrován: duben 10
- Bydliště: Okolo rostou 3 růže =o)
- Pohlaví:
- Stav:
Offline
Re: kontrola logu - využití disku 100%
Poklepej na ikonu OTL na ploše. Ujisti se , že máš všechny ostatní aplikace a prohlížeče zavřeny.
Pod Vlastní skenování/opravy do okénka vlož následující text, zobrazený zeleně:
Poté klikni nahoře na Opravit. Nech program nerušeně běžet, na konci se provede restart PC.
Po restartu se objeví log , prosím zkopíruj sem celý jeho obsah.
+
V možnostech složky si povol zobrazování skrytých souborů a složek+ odškrtni zatržítko skrýt chráněné soubory operačního systému.
Toto otestuj na Virustotal:
C:\Windows\xhunter1.sys
Klikni vpravo od okénka na Vybrat a v Exploreru najdi požadovaný soubor v Tvém PC. Označ ho myší a klikni na Otevřít , poté klikni na Send File. Pokud už byl soubor testován , objeví se okno ve kterém klikni na Reanalyze. Soubor se začne postupně testovat více antivirovými programy. Až skončí test posledního antiviru , objeví se nahoře result a červeně počet nákaz , např. 0/43 , nebo 1/43. Pak zkopíruj myší odkaz na tuto stránku a vlož ji do svého příspěvku.
Koukni co je v této složce:
C:\WINDOWS\pss
Pod Vlastní skenování/opravy do okénka vlož následující text, zobrazený zeleně:
Kód: Vybrat vše
:OTL
IE:64bit: - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE:64bit: - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE:64bit: - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&form=PRHPR1&src=IE11TR&pc=HRTS
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page_TIMESTAMP = 16 A5 F8 9A F7 10 D2 01 [binary data]
IE - HKCU\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKCU\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&form=PRHPR1&src=IE11TR&pc=HRTS
O18:64bit: - Protocol\Handler\mso-minsb.16 - No CLSID value found
O18:64bit: - Protocol\Handler\mso-minsb-roaming.16 - No CLSID value found
O18:64bit: - Protocol\Handler\osf.16 - No CLSID value found
O18:64bit: - Protocol\Handler\osf-roaming.16 - No CLSID value found
O18:64bit: - Protocol\Handler\wlpg - No CLSID value found
O18 - Protocol\Handler\ms-help - No CLSID value found
:Files
C:\WINDOWS\tasks\HPCeeScheduleForEndon.job
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Value error.
ipconfig /flushdns /c
netsh int ip reset c:\resetlog.txt /c
ipconfig /release /c
ipconfig /renew /c
netsh winsock reset all /c
netsh int ip reset all /c
:Reg
:Commands
[resethosts]
[purity]
[emptytemp]
[EMPTYFLASH]
[EMPTYJAVA]
[start explorer]
[Reboot]
Poté klikni nahoře na Opravit. Nech program nerušeně běžet, na konci se provede restart PC.
Po restartu se objeví log , prosím zkopíruj sem celý jeho obsah.
+
V možnostech složky si povol zobrazování skrytých souborů a složek+ odškrtni zatržítko skrýt chráněné soubory operačního systému.
Toto otestuj na Virustotal:
C:\Windows\xhunter1.sys
Klikni vpravo od okénka na Vybrat a v Exploreru najdi požadovaný soubor v Tvém PC. Označ ho myší a klikni na Otevřít , poté klikni na Send File. Pokud už byl soubor testován , objeví se okno ve kterém klikni na Reanalyze. Soubor se začne postupně testovat více antivirovými programy. Až skončí test posledního antiviru , objeví se nahoře result a červeně počet nákaz , např. 0/43 , nebo 1/43. Pak zkopíruj myší odkaz na tuto stránku a vlož ji do svého příspěvku.
Koukni co je v této složce:
C:\WINDOWS\pss
Láska hřeje, ale uhlí je uhlí.
Log z HJT vkládejte do HJT sekce. Je-li moc dlouhý, rozděl jej do více zpráv.
Pár rad k bezpečnosti PC.
Po dobu mé nepřítomnosti mě zastupuje memphisto, jaro3 a Diallix
Pokud budete spokojeni , můžete podpořit naše fórum.
Log z HJT vkládejte do HJT sekce. Je-li moc dlouhý, rozděl jej do více zpráv.
Pár rad k bezpečnosti PC.
Po dobu mé nepřítomnosti mě zastupuje memphisto, jaro3 a Diallix
Pokud budete spokojeni , můžete podpořit naše fórum.
Re: kontrola logu - využití disku 100%
tak po delší době pokračuju
log z OTL
All processes killed
========== OTL ==========
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope| /E : value set successfully!
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope| /E : value set successfully!
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ not found.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope| /E : value set successfully!
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ not found.
HKCU\SOFTWARE\Microsoft\Internet Explorer\Main\\Start Page_TIMESTAMP| /E : value set successfully!
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope| /E : value set successfully!
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ not found.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\mso-minsb.16\ deleted successfully.
File Protocol\Handler\mso-minsb.16 - No CLSID value found not found.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\mso-minsb-roaming.16\ deleted successfully.
File Protocol\Handler\mso-minsb-roaming.16 - No CLSID value found not found.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\osf.16\ deleted successfully.
File Protocol\Handler\osf.16 - No CLSID value found not found.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\osf-roaming.16\ deleted successfully.
File Protocol\Handler\osf-roaming.16 - No CLSID value found not found.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\wlpg\ deleted successfully.
File Protocol\Handler\wlpg - No CLSID value found not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\ms-help\ deleted successfully.
File Protocol\Handler\ms-help - No CLSID value found not found.
========== FILES ==========
C:\WINDOWS\tasks\HPCeeScheduleForEndon.job moved successfully.
File\Folder CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Value error. not found.
< ipconfig /flushdns /c >
Windows IP Configuration
Successfully flushed the DNS Resolver Cache.
C:\Users\Endon\Desktop\cmd.bat deleted successfully.
C:\Users\Endon\Desktop\cmd.txt deleted successfully.
< netsh int ip reset c:\resetlog.txt /c >
Resetting Global, OK!
Resetting Interface, OK!
Resetting Unicast Address, OK!
Resetting Neighbor, OK!
Resetting Path, OK!
Resetting , failed.
Pýˇstup byl odepýen.
Resetting , OK!
Restart the computer to complete this action.
C:\Users\Endon\Desktop\cmd.bat deleted successfully.
C:\Users\Endon\Desktop\cmd.txt deleted successfully.
< ipconfig /release /c >
Windows IP Configuration
No operation can be performed on Ethernet 2 while it has its media disconnected.
No operation can be performed on Pýipojenˇ k mˇstnˇ sˇti* 1 while it has its media disconnected.
No operation can be performed on Sˇśov‚ pýipojenˇ Bluetooth while it has its media disconnected.
Ethernet adapter Ethernet 2:
Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . :
Wireless LAN adapter Pýipojenˇ k mˇstnˇ sˇti* 1:
Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . :
Wireless LAN adapter Wi-Fi:
Connection-specific DNS Suffix . :
Link-local IPv6 Address . . . . . : fe80::299b:723d:ef9c:886f%4
Default Gateway . . . . . . . . . :
Ethernet adapter Sˇśov‚ pýipojenˇ Bluetooth:
Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . :
Tunnel adapter Pýipojenˇ k mˇstnˇ sˇti* 2:
Connection-specific DNS Suffix . :
IPv6 Address. . . . . . . . . . . : 2001:0:9d38:6ab8:28ea:187f:3cd8:e25d
Link-local IPv6 Address . . . . . : fe80::28ea:187f:3cd8:e25d%15
Default Gateway . . . . . . . . . : ::
C:\Users\Endon\Desktop\cmd.bat deleted successfully.
C:\Users\Endon\Desktop\cmd.txt deleted successfully.
< ipconfig /renew /c >
Windows IP Configuration
No operation can be performed on Ethernet 2 while it has its media disconnected.
No operation can be performed on Pýipojenˇ k mˇstnˇ sˇti* 1 while it has its media disconnected.
No operation can be performed on Sˇśov‚ pýipojenˇ Bluetooth while it has its media disconnected.
Ethernet adapter Ethernet 2:
Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . :
Wireless LAN adapter Pýipojenˇ k mˇstnˇ sˇti* 1:
Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . :
Wireless LAN adapter Wi-Fi:
Connection-specific DNS Suffix . :
Link-local IPv6 Address . . . . . : fe80::299b:723d:ef9c:886f%4
IPv4 Address. . . . . . . . . . . : 192.168.0.104
Subnet Mask . . . . . . . . . . . : 255.255.255.0
Default Gateway . . . . . . . . . : 192.168.0.254
Ethernet adapter Sˇśov‚ pýipojenˇ Bluetooth:
Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . :
Tunnel adapter Pýipojenˇ k mˇstnˇ sˇti* 2:
Connection-specific DNS Suffix . :
IPv6 Address. . . . . . . . . . . : 2001:0:9d38:6ab8:28ea:187f:3cd8:e25d
Link-local IPv6 Address . . . . . : fe80::28ea:187f:3cd8:e25d%15
Default Gateway . . . . . . . . . : ::
Tunnel adapter isatap.{40BCDB8E-F8FE-413F-9112-44F836FA8EA9}:
Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . :
C:\Users\Endon\Desktop\cmd.bat deleted successfully.
C:\Users\Endon\Desktop\cmd.txt deleted successfully.
< netsh winsock reset all /c >
Sucessfully reset the Winsock Catalog.
You must restart the computer in order to complete the reset.
C:\Users\Endon\Desktop\cmd.bat deleted successfully.
C:\Users\Endon\Desktop\cmd.txt deleted successfully.
< netsh int ip reset all /c >
Resetting Interface, OK!
Resetting , failed.
Pýˇstup byl odepýen.
Restart the computer to complete this action.
C:\Users\Endon\Desktop\cmd.bat deleted successfully.
C:\Users\Endon\Desktop\cmd.txt deleted successfully.
========== REGISTRY ==========
========== COMMANDS ==========
C:\WINDOWS\System32\drivers\etc\Hosts moved successfully.
HOSTS file reset successfully
[EMPTYTEMP]
User: All Users
User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
User: Default.migrated
User: Endon
->Temp folder emptied: 24871098 bytes
->Temporary Internet Files folder emptied: 842 bytes
->Google Chrome cache emptied: 405817382 bytes
->Flash cache emptied: 0 bytes
User: Public
%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32 (64bit) .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 3655058 bytes
%systemroot%\sysnative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 0 bytes
RecycleBin emptied: 157111733 bytes
Total Files Cleaned = 564,00 mb
[EMPTYFLASH]
User: All Users
User: Default
User: Default User
User: Default.migrated
User: Endon
->Flash cache emptied: 0 bytes
User: Public
Total Flash Files Cleaned = 0,00 mb
[EMPTYJAVA]
User: All Users
User: Default
User: Default User
User: Default.migrated
User: Endon
User: Public
Total Java Files Cleaned = 0,00 mb
OTL by OldTimer - Version 3.2.69.0 log created on 03312017_142836
Files\Folders moved on Reboot...
C:\Users\Endon\AppData\Local\Microsoft\Windows\INetCache\counters.dat moved successfully.
C:\WINDOWS\temp\HP Support Framework\HPSF_Config1.dll moved successfully.
C:\WINDOWS\temp\DPTF\dptf_pnmwlanproxy.dll moved successfully.
C:\WINDOWS\temp\DPTF\dptf_wwanproxy.dll moved successfully.
C:\WINDOWS\temp\DPTF\esif_assist_64.exe moved successfully.
File\Folder C:\WINDOWS\temp\APPX.15p4o0yysykhs0jk0_dn8o7ie.tmp not found!
File\Folder C:\WINDOWS\temp\APPX.44pa401x0gixw6v2zx3p2e7pg.tmp not found!
File\Folder C:\WINDOWS\temp\APPX.7b9kjcsg8vbcqip3cd9n2dxp.tmp not found!
File\Folder C:\WINDOWS\temp\APPX.an8k4h65wla_fpihceksx7h_b.tmp not found!
File\Folder C:\WINDOWS\temp\APPX.e9t5rsqcugqy71k8ria9s9r6.tmp not found!
File\Folder C:\WINDOWS\temp\APPX.g0fu4l6rn02ly5094eru7m5zd.tmp not found!
File\Folder C:\WINDOWS\temp\APPX.gy_ye3rwju5ahivy4qp7a9adh.tmp not found!
File\Folder C:\WINDOWS\temp\APPX.qbrjshoahfpn6co3t6pi5e0qc.tmp not found!
File\Folder C:\WINDOWS\temp\APPX.s6k1ipne8oszonyt1er_4_ofh.tmp not found!
File\Folder C:\WINDOWS\temp\APPX.shq3_zyojxeqt7z3p5yx5walg.tmp not found!
File\Folder C:\WINDOWS\temp\APPX.v3r0nupxh_xcjdgsb0r374hfd.tmp not found!
File\Folder C:\WINDOWS\temp\APPX.wo2du7d63v_bm6_54j3v07x5g.tmp not found!
File\Folder C:\WINDOWS\temp\APPX.yadrk5xc8ld7ls3w98nyeg6kg.tmp not found!
C:\WINDOWS\temp\DESKTOP-84BQ2CB-20170330-1825.log moved successfully.
File\Folder C:\WINDOWS\temp\officeclicktorun.exe_streamserver(201703301825051A1C).log not found!
PendingFileRenameOperations files...
Registry entries deleted on Reboot...
odkaz na scan xhunter1.sys z Virustotal
https://www.virustotal.com/cs/file/daaf67c90c35dc1839cec6962ad001961efde00ddfcdc702882afa234d71248b/analysis/1490964009/
ve složce C:\WINDOWS\pss je
log z OTL
All processes killed
========== OTL ==========
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope| /E : value set successfully!
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope| /E : value set successfully!
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ not found.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope| /E : value set successfully!
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ not found.
HKCU\SOFTWARE\Microsoft\Internet Explorer\Main\\Start Page_TIMESTAMP| /E : value set successfully!
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope| /E : value set successfully!
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ not found.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\mso-minsb.16\ deleted successfully.
File Protocol\Handler\mso-minsb.16 - No CLSID value found not found.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\mso-minsb-roaming.16\ deleted successfully.
File Protocol\Handler\mso-minsb-roaming.16 - No CLSID value found not found.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\osf.16\ deleted successfully.
File Protocol\Handler\osf.16 - No CLSID value found not found.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\osf-roaming.16\ deleted successfully.
File Protocol\Handler\osf-roaming.16 - No CLSID value found not found.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\wlpg\ deleted successfully.
File Protocol\Handler\wlpg - No CLSID value found not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\ms-help\ deleted successfully.
File Protocol\Handler\ms-help - No CLSID value found not found.
========== FILES ==========
C:\WINDOWS\tasks\HPCeeScheduleForEndon.job moved successfully.
File\Folder CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Value error. not found.
< ipconfig /flushdns /c >
Windows IP Configuration
Successfully flushed the DNS Resolver Cache.
C:\Users\Endon\Desktop\cmd.bat deleted successfully.
C:\Users\Endon\Desktop\cmd.txt deleted successfully.
< netsh int ip reset c:\resetlog.txt /c >
Resetting Global, OK!
Resetting Interface, OK!
Resetting Unicast Address, OK!
Resetting Neighbor, OK!
Resetting Path, OK!
Resetting , failed.
Pýˇstup byl odepýen.
Resetting , OK!
Restart the computer to complete this action.
C:\Users\Endon\Desktop\cmd.bat deleted successfully.
C:\Users\Endon\Desktop\cmd.txt deleted successfully.
< ipconfig /release /c >
Windows IP Configuration
No operation can be performed on Ethernet 2 while it has its media disconnected.
No operation can be performed on Pýipojenˇ k mˇstnˇ sˇti* 1 while it has its media disconnected.
No operation can be performed on Sˇśov‚ pýipojenˇ Bluetooth while it has its media disconnected.
Ethernet adapter Ethernet 2:
Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . :
Wireless LAN adapter Pýipojenˇ k mˇstnˇ sˇti* 1:
Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . :
Wireless LAN adapter Wi-Fi:
Connection-specific DNS Suffix . :
Link-local IPv6 Address . . . . . : fe80::299b:723d:ef9c:886f%4
Default Gateway . . . . . . . . . :
Ethernet adapter Sˇśov‚ pýipojenˇ Bluetooth:
Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . :
Tunnel adapter Pýipojenˇ k mˇstnˇ sˇti* 2:
Connection-specific DNS Suffix . :
IPv6 Address. . . . . . . . . . . : 2001:0:9d38:6ab8:28ea:187f:3cd8:e25d
Link-local IPv6 Address . . . . . : fe80::28ea:187f:3cd8:e25d%15
Default Gateway . . . . . . . . . : ::
C:\Users\Endon\Desktop\cmd.bat deleted successfully.
C:\Users\Endon\Desktop\cmd.txt deleted successfully.
< ipconfig /renew /c >
Windows IP Configuration
No operation can be performed on Ethernet 2 while it has its media disconnected.
No operation can be performed on Pýipojenˇ k mˇstnˇ sˇti* 1 while it has its media disconnected.
No operation can be performed on Sˇśov‚ pýipojenˇ Bluetooth while it has its media disconnected.
Ethernet adapter Ethernet 2:
Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . :
Wireless LAN adapter Pýipojenˇ k mˇstnˇ sˇti* 1:
Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . :
Wireless LAN adapter Wi-Fi:
Connection-specific DNS Suffix . :
Link-local IPv6 Address . . . . . : fe80::299b:723d:ef9c:886f%4
IPv4 Address. . . . . . . . . . . : 192.168.0.104
Subnet Mask . . . . . . . . . . . : 255.255.255.0
Default Gateway . . . . . . . . . : 192.168.0.254
Ethernet adapter Sˇśov‚ pýipojenˇ Bluetooth:
Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . :
Tunnel adapter Pýipojenˇ k mˇstnˇ sˇti* 2:
Connection-specific DNS Suffix . :
IPv6 Address. . . . . . . . . . . : 2001:0:9d38:6ab8:28ea:187f:3cd8:e25d
Link-local IPv6 Address . . . . . : fe80::28ea:187f:3cd8:e25d%15
Default Gateway . . . . . . . . . : ::
Tunnel adapter isatap.{40BCDB8E-F8FE-413F-9112-44F836FA8EA9}:
Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . :
C:\Users\Endon\Desktop\cmd.bat deleted successfully.
C:\Users\Endon\Desktop\cmd.txt deleted successfully.
< netsh winsock reset all /c >
Sucessfully reset the Winsock Catalog.
You must restart the computer in order to complete the reset.
C:\Users\Endon\Desktop\cmd.bat deleted successfully.
C:\Users\Endon\Desktop\cmd.txt deleted successfully.
< netsh int ip reset all /c >
Resetting Interface, OK!
Resetting , failed.
Pýˇstup byl odepýen.
Restart the computer to complete this action.
C:\Users\Endon\Desktop\cmd.bat deleted successfully.
C:\Users\Endon\Desktop\cmd.txt deleted successfully.
========== REGISTRY ==========
========== COMMANDS ==========
C:\WINDOWS\System32\drivers\etc\Hosts moved successfully.
HOSTS file reset successfully
[EMPTYTEMP]
User: All Users
User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
User: Default.migrated
User: Endon
->Temp folder emptied: 24871098 bytes
->Temporary Internet Files folder emptied: 842 bytes
->Google Chrome cache emptied: 405817382 bytes
->Flash cache emptied: 0 bytes
User: Public
%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32 (64bit) .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 3655058 bytes
%systemroot%\sysnative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 0 bytes
RecycleBin emptied: 157111733 bytes
Total Files Cleaned = 564,00 mb
[EMPTYFLASH]
User: All Users
User: Default
User: Default User
User: Default.migrated
User: Endon
->Flash cache emptied: 0 bytes
User: Public
Total Flash Files Cleaned = 0,00 mb
[EMPTYJAVA]
User: All Users
User: Default
User: Default User
User: Default.migrated
User: Endon
User: Public
Total Java Files Cleaned = 0,00 mb
OTL by OldTimer - Version 3.2.69.0 log created on 03312017_142836
Files\Folders moved on Reboot...
C:\Users\Endon\AppData\Local\Microsoft\Windows\INetCache\counters.dat moved successfully.
C:\WINDOWS\temp\HP Support Framework\HPSF_Config1.dll moved successfully.
C:\WINDOWS\temp\DPTF\dptf_pnmwlanproxy.dll moved successfully.
C:\WINDOWS\temp\DPTF\dptf_wwanproxy.dll moved successfully.
C:\WINDOWS\temp\DPTF\esif_assist_64.exe moved successfully.
File\Folder C:\WINDOWS\temp\APPX.15p4o0yysykhs0jk0_dn8o7ie.tmp not found!
File\Folder C:\WINDOWS\temp\APPX.44pa401x0gixw6v2zx3p2e7pg.tmp not found!
File\Folder C:\WINDOWS\temp\APPX.7b9kjcsg8vbcqip3cd9n2dxp.tmp not found!
File\Folder C:\WINDOWS\temp\APPX.an8k4h65wla_fpihceksx7h_b.tmp not found!
File\Folder C:\WINDOWS\temp\APPX.e9t5rsqcugqy71k8ria9s9r6.tmp not found!
File\Folder C:\WINDOWS\temp\APPX.g0fu4l6rn02ly5094eru7m5zd.tmp not found!
File\Folder C:\WINDOWS\temp\APPX.gy_ye3rwju5ahivy4qp7a9adh.tmp not found!
File\Folder C:\WINDOWS\temp\APPX.qbrjshoahfpn6co3t6pi5e0qc.tmp not found!
File\Folder C:\WINDOWS\temp\APPX.s6k1ipne8oszonyt1er_4_ofh.tmp not found!
File\Folder C:\WINDOWS\temp\APPX.shq3_zyojxeqt7z3p5yx5walg.tmp not found!
File\Folder C:\WINDOWS\temp\APPX.v3r0nupxh_xcjdgsb0r374hfd.tmp not found!
File\Folder C:\WINDOWS\temp\APPX.wo2du7d63v_bm6_54j3v07x5g.tmp not found!
File\Folder C:\WINDOWS\temp\APPX.yadrk5xc8ld7ls3w98nyeg6kg.tmp not found!
C:\WINDOWS\temp\DESKTOP-84BQ2CB-20170330-1825.log moved successfully.
File\Folder C:\WINDOWS\temp\officeclicktorun.exe_streamserver(201703301825051A1C).log not found!
PendingFileRenameOperations files...
Registry entries deleted on Reboot...
odkaz na scan xhunter1.sys z Virustotal
https://www.virustotal.com/cs/file/daaf67c90c35dc1839cec6962ad001961efde00ddfcdc702882afa234d71248b/analysis/1490964009/
ve složce C:\WINDOWS\pss je
►Case: NZXT Noctis 450◄►Zdroj: EVGA Supernova 750W G2◄►MB: Asus MAXIMUS VIII Ranger◄►CPU: Intel core i5-6600K◄►GPU: Gainward Phoenix GTX 1060 GS◄►Chladič: Scythe Ninja 4◄►SSD: Samsung 850 EVO 250GB◄►HDD: 2x Seagate Barracuda 2TB◄►RAM: Crucial Ballistix Sport LT 2x8GB 2400Mhz DDR4◄
- jaro3
- člen Security týmu
-
Guru Level 15
- Příspěvky: 43061
- Registrován: červen 07
- Bydliště: Jižní Čechy
- Pohlaví:
- Stav:
Offline
Re: kontrola logu - využití disku 100%
Co problémy?
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Re: kontrola logu - využití disku 100%
Ahoj,
omlouvám se za zase delší odmlku. Bratr řiká že mu to příde OK, disk co jsem koukal jede normálně. Akorát mi přijde, že má nějak moc využití RAM kolem 40-50% se zapnutym akorát správcem úloh. Je pravda, že na ntb jsou jenom 4gb a W10. Nemůže tam bejt nějakej skrytej zbytečnej proces? Nebo má prostě jenom moc málo RAM?
omlouvám se za zase delší odmlku. Bratr řiká že mu to příde OK, disk co jsem koukal jede normálně. Akorát mi přijde, že má nějak moc využití RAM kolem 40-50% se zapnutym akorát správcem úloh. Je pravda, že na ntb jsou jenom 4gb a W10. Nemůže tam bejt nějakej skrytej zbytečnej proces? Nebo má prostě jenom moc málo RAM?
►Case: NZXT Noctis 450◄►Zdroj: EVGA Supernova 750W G2◄►MB: Asus MAXIMUS VIII Ranger◄►CPU: Intel core i5-6600K◄►GPU: Gainward Phoenix GTX 1060 GS◄►Chladič: Scythe Ninja 4◄►SSD: Samsung 850 EVO 250GB◄►HDD: 2x Seagate Barracuda 2TB◄►RAM: Crucial Ballistix Sport LT 2x8GB 2400Mhz DDR4◄
- jaro3
- člen Security týmu
-
Guru Level 15
- Příspěvky: 43061
- Registrován: červen 07
- Bydliště: Jižní Čechy
- Pohlaví:
- Stav:
Offline
Re: kontrola logu - využití disku 100%
RAM stále pracují , to je normální. Já mám 6GB a vytížení RAM mám 35-40% při nečinnosti. Záleží kolik má vytíženost a které procesy vytěžují ramky. Má to ve správci úloh.
Spusť OTL a klikni na Vyčisti.
Spusť OTL a klikni na Vyčisti.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Kdo je online
Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 18 hostů