Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Prosim o kontrolu logu

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zamčeno
Zpráva
Autor
ertenkanz
Návštěvník
Návštěvník
Příspěvky: 11
Registrován: 12 dub 2015 13:50

Prosim o kontrolu logu

#1 Příspěvek od ertenkanz »

Zdravim,
mam win 7 - system ide velmi pomaly,rovnako pomaly sa aj spusta, odinstaloval som vsetko co so nepotreboval, mam AVG ten nic nenasiel, spustil so ccleaner, po nom mierne zrychlenie.
Prosim o kontrolu logu:

Logfile of random's system information tool 1.10 (written by random/random)
Run by Vladko at 2016-06-24 16:11:40
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 260 GB (57%) free of 460 GB
Total RAM: 3986 MB (32% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 16:11:45, on 24. 6. 2016
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.18347)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe
C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\ismagent.exe
C:\ProgramData\DatacardService\DCSHelper.exe
C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtMng.exe
C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe
C:\Program Files (x86)\AVG\AVG2015\avgui.exe
C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ArcCon.ac
C:\Program Files (x86)\AVG\Framework\Common\avguix.exe
C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosA2dp.exe
C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtHid.exe
C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtHsp.exe
C:\windows\SysWOW64\ctfmon.exe
C:\Program Files\trend micro\Vladko.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://us.yahoo.com?fr=fp-comodo
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: (no name) - - (no file)
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre6\bin\ssv.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
O2 - BHO: TOSHIBA Media Controller Plug-in - {F3C88694-EFFA-4d78-B409-54B7B2535B14} - C:\Program Files (x86)\TOSHIBA\TOSHIBA Media Controller Plug-in\TOSHIBAMediaControllerIE.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
O4 - HKLM\..\Run: [USB3MON] "C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
O4 - HKLM\..\Run: [ToshibaServiceStation] "C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\ToshibaServiceStation.exe" /hide:60
O4 - HKLM\..\Run: [ArcSoft Connection Service] C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe
O4 - HKLM\..\Run: [AVG_UI] "C:\Program Files (x86)\AVG\AVG2015\avuirunnerx.exe" C:\Program Files (x86)\AVG\AVG2015\avgui.exe
O4 - HKLM\..\Run: [AvgUi] "C:\Program Files (x86)\AVG\Framework\Common\avguirnx.exe" /lps=fmw
O4 - HKCU\..\Run: [Google Update] "C:\Users\Vladko\AppData\Local\Google\Update\GoogleUpdate.exe" /c
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\Run: [TOPI.EXE] C:\Program Files (x86)\TOSHIBA\TOSHIBA Online Product Information\topi.exe /STARTUP (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [TOPI.EXE] C:\Program Files (x86)\TOSHIBA\TOSHIBA Online Product Information\topi.exe /STARTUP (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [TOPI.EXE] C:\Program Files (x86)\TOSHIBA\TOSHIBA Online Product Information\topi.exe /STARTUP (User 'Default user')
O4 - .DEFAULT User Startup: TRDCReminder.lnk = C:\Program Files (x86)\TOSHIBA\TRDCReminder\TRDCReminder.exe (User 'Default user')
O4 - Global Startup: Bluetooth Manager.lnk = ?
O4 - Global Startup: Toshiba Places Icon Utility.lnk = ?
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: PrivDog - {2F5C139F-79BD-4C84-A95A-E7140525BC55} - (no file)
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O20 - AppInit_DLLs:
O23 - Service: ArcSoft Connect Daemon (ACDaemon) - ArcSoft Inc. - C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\windows\System32\alg.exe (file missing)
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: AVGIDSAgent - AVG Technologies CZ, s.r.o. - C:\Program Files (x86)\AVG\AVG2015\avgidsagent.exe
O23 - Service: AVG Service (avgsvc) - AVG Technologies CZ, s.r.o. - C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe
O23 - Service: AVG WatchDog (avgwd) - AVG Technologies CZ, s.r.o. - C:\Program Files (x86)\AVG\AVG2015\avgwdsvc.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\windows\SysWow64\IntelCpHeciSvc.exe
O23 - Service: DCService.exe - Unknown owner - C:\ProgramData\DatacardService\DCService.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\windows\system32\fxssvc.exe (file missing)
O23 - Service: Garmin Device Interaction Service - Garmin Ltd. or its subsidiaries - C:\Program Files (x86)\Garmin\Device Interaction Service\GarminService.exe
O23 - Service: GFNEX Service (GFNEXSrv) - Unknown owner - C:\Windows\System32\GFNEXSrv.exe (file missing)
O23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Update Service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) ME Service - Unknown owner - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\windows\system32\sppsvc.exe (file missing)
O23 - Service: Notebook Performance Tuning Service (TEMPRO) (TemproMonitoringService) - Toshiba Europe GmbH - C:\Program Files (x86)\Toshiba TEMPRO\TemproSvc.exe
O23 - Service: TMachInfo - TOSHIBA Corporation - C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe
O23 - Service: TOSHIBA Optical Disc Drive Service (TODDSrv) - Unknown owner - C:\windows\system32\TODDSrv.exe (file missing)
O23 - Service: TOSHIBA Power Saver (TosCoSrv) - TOSHIBA Corporation - C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe
O23 - Service: TOSHIBA Bluetooth Service - TOSHIBA CORPORATION - C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe
O23 - Service: TOSHIBA eco Utility Service - TOSHIBA Corporation - C:\Program Files\TOSHIBA\TECO\TecoService.exe
O23 - Service: TOSHIBA HDD SSD Alert Service - TOSHIBA Corporation - C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe
O23 - Service: TPCH Service (TPCHSrv) - TOSHIBA Corporation - C:\Program Files\TOSHIBA\TPHM\TPCHSrv.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\windows\system32\UI0Detect.exe (file missing)
O23 - Service: Ulead Burning Helper (UleadBurningHelper) - Ulead Systems, Inc. - C:\Program Files (x86)\Common Files\Ulead Systems\DVD\ULCDRSvr.exe
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 12989 bytes

======Listing Processes======



\SystemRoot\System32\smss.exe
c:\PROGRA~2\AVG\AVG2015\avgrsa.exe /boot
C:\Program Files (x86)\AVG\AVG2015\avgcsrva.exe /pipeName=c2feea3f-0200-0000-81b1-e75fc8ef0a1d /binaryPath="C:\Program Files (x86)\AVG\AVG2015\"
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
winlogon.exe
C:\windows\system32\services.exe
C:\windows\system32\lsass.exe
C:\windows\system32\lsm.exe
C:\windows\system32\svchost.exe -k DcomLaunch
C:\windows\system32\svchost.exe -k RPCSS
C:\windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\windows\system32\svchost.exe -k LocalService
C:\windows\system32\svchost.exe -k netsvcs

C:\windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\GFNEXSrv.exe
C:\windows\System32\spoolsv.exe
C:\windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
taskeng.exe {D115FEC8-93B7-4FF7-AA65-454CB463D53D}
C:\windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe"
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe"
"taskhost.exe"
"C:\Program Files (x86)\AVG\AVG2015\avgidsagent.exe"
"C:\windows\system32\Dwm.exe"
"C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /c
C:\windows\Explorer.EXE
"C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe"
"C:\Program Files (x86)\AVG\AVG2015\avgwdsvc.exe"
"C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe" --domain-id 4e00205a-2ab1-4423-8f77-cc25b82cde1d --caller winlogon
"C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\ismagent.exe" --domain-id 4e00205a-2ab1-4423-8f77-cc25b82cde1d
"C:\Program Files\Bonjour\mDNSResponder.exe"
C:\ProgramData\DatacardService\DCService.exe
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
C:\windows\System32\svchost.exe -k utcsvc
"C:\Program Files\SRS Labs\SRS Control Panel\SRSPanel_64.exe" /f="C:\Program Files\SRS Labs\SRS Control Panel\SRS_Premium_Sound_HD.zip" /h
"C:\ProgramData\DatacardService\DCSHelper.exe"
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
"C:\Program Files\TOSHIBA\Power Saver\TPwrMain.exe"
"C:\Program Files\TOSHIBA\FlashCards\TCrdMain.exe"
"C:\Program Files\TOSHIBA\TECO\Teco.exe" /r
"C:\Program Files (x86)\Toshiba TEMPRO\TemproTray.exe"
"C:\Windows\System32\igfxtray.exe"
"C:\Windows\System32\hkcmd.exe"
"C:\Windows\System32\igfxpers.exe"
"C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtMng.exe"
"C:\Program Files\TOSHIBA\TOSHIBA Places Icon Utility\TosDIMonitor.exe"
"C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
"C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\ToshibaServiceStation.exe" /hide:60
"C:\windows\system32\GWX\GWX.exe"
"C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe"
/TRAYONLY
ArcCon.ac 196648 0
"C:\windows\system32\NOTEPAD.EXE" C:\AdwCleaner\AdwCleaner[C2].txt
/fmw.trayonly
"C:\Program Files (x86)\AVG\AVG2015\avgnsa.exe"
"C:\Program Files (x86)\AVG\AVG2015\avgemca.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=crashpad-handler /prefetch:7 --no-rate-limit "--database=C:\Users\Vladko\AppData\Local\Google\Chrome\User Data\Crashpad" --url=https://clients2.google.com/cr/report --annotation=channel=m --annotation=plat=Win64 --annotation=prod=Chrome --annotation=ver=51.0.2704.103 --handshake-handle=0xb8
"C:\Program Files\Intel\iCLS Client\HeciServer.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,IncidentReportingModuleLoadAnalysis<SafeBrowsingIncidentReportingServiceFeatures,IncidentReportingSuspiciousModuleReporting<SafeBrowsingIncidentReportingServiceFeatures,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup,UsePasswordSeparatedSigninFlow<PasswordSeparatedSigninFlow,WebFontsIntervention<WebFontsIntervention,*WebRTC-EnableWebRtcEcdsa<WebRTC-EnableWebRtcEcdsa,brotli-encoding<BrotliEncoding --disable-features=DocumentWriteEvaluator<DisallowFetchForDocWrittenScriptsInMainFrame,RenderingPipelineThrottling<RenderingPipelineThrottling --force-fieldtrials=AppBannerTriggering/Aggressive/AutofillProfileOrderByFrecency/Enabled/AutomaticTabDiscarding/Enabled_Once_10-gen2/*BrotliEncoding/Enabled/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/ClientSideDetectionModel/Model0/DirectWriteFontProxy/UseDirectWriteFontProxy/DisallowFetchForDocWrittenScriptsInMainFrame/Default/EnableMediaRouter/Disabled/ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*GFE/Default/GoogleBrandedContextMenu/default/InstanceID/Enabled/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/OmniboxBundledExperimentV1/Unused_2/OutOfProcessPac/Default/PasswordBranding/Disabled/*PasswordGeneration/Disabled/PasswordManagerSettingsMigration/Disable/PasswordSeparatedSigninFlow/Enabled/PreRead/Default/*QUIC/Control/RenderingPipelineThrottling/Disabled/ReportCertificateErrors/ShowAndPossiblySend/ResourcePriorities/Control50Permanent/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/SSLCommonNameMismatchHandling/Control/SafeBrowsingIncidentReportingService/Default/SafeBrowsingIncidentReportingServiceFeatures/WithSuspiciousModuleReporting/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/SyncHttpContentCompression/Enabled/TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_55/*UMA-Uniformity-Trial-10-Percent/default/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/default/*UMA-Uniformity-Trial-5-Percent/group_09/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/WebFontsIntervention/Enabled/WebRTC-EnableWebRtcEcdsa/Default/ --type=gpu-process --channel="4712.0.165586361\736800919" --disable-d3d11 --disable-direct-composition --supports-dual-gpus=false --gpu-driver-bug-workarounds=4,10,12,13,25,46,54 --gpu-vendor-id=0x8086 --gpu-device-id=0x0116 --gpu-driver-vendor="Intel Corporation" --gpu-driver-version=8.15.10.2752 --mojo-platform-channel-handle=1096 --ignored=" --type=renderer " /prefetch:2
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,IncidentReportingModuleLoadAnalysis<SafeBrowsingIncidentReportingServiceFeatures,IncidentReportingSuspiciousModuleReporting<SafeBrowsingIncidentReportingServiceFeatures,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup,UsePasswordSeparatedSigninFlow<PasswordSeparatedSigninFlow,WebFontsIntervention<WebFontsIntervention,*WebRTC-EnableWebRtcEcdsa<WebRTC-EnableWebRtcEcdsa,brotli-encoding<BrotliEncoding --disable-features=DocumentWriteEvaluator<DisallowFetchForDocWrittenScriptsInMainFrame,RenderingPipelineThrottling<RenderingPipelineThrottling --force-fieldtrials=AppBannerTriggering/Aggressive/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_10-gen2/*BrotliEncoding/Enabled/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/*ClientSideDetectionModel/Model0/DirectWriteFontProxy/UseDirectWriteFontProxy/DisallowFetchForDocWrittenScriptsInMainFrame/Default/*EnableMediaRouter/Disabled/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*GFE/Default/GoogleBrandedContextMenu/default/InstanceID/Enabled/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Unused_2/*OutOfProcessPac/Default/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*PasswordManagerSettingsMigration/Disable/PasswordSeparatedSigninFlow/Enabled/PreRead/Default/*QUIC/Control/RenderingPipelineThrottling/Disabled/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Control50Permanent/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/SSLCommonNameMismatchHandling/Control/*SafeBrowsingIncidentReportingService/Default/*SafeBrowsingIncidentReportingServiceFeatures/WithSuspiciousModuleReporting/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/SyncHttpContentCompression/Enabled/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_55/*UMA-Uniformity-Trial-10-Percent/default/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/default/*UMA-Uniformity-Trial-5-Percent/group_09/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/WebFontsIntervention/Enabled/WebRTC-EnableWebRtcEcdsa/Default/ --primordial-pipe-token=2AB5D8997FF6D9E6AA57D60B8319F52D --lang=sk --instant-process --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --channel="4712.1.2110337317\888105963" --mojo-platform-channel-handle=1832 /prefetch:1
C:\windows\system32\svchost.exe -k imgsvc
C:\windows\system32\TODDSrv.exe
"C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe"
"C:\Program Files (x86)\Common Files\Ulead Systems\DVD\ULCDRSvr.exe"
"C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE"
"C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe"
WLIDSvcM.exe 5652
"C:\Program Files\TOSHIBA\TECO\TecoService.exe"
C:\windows\system32\wbem\wmiprvse.exe
C:\windows\system32\wbem\wmiprvse.exe
C:\windows\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE"
C:\windows\system32\SearchIndexer.exe /Embedding
C:\windows\system32\sppsvc.exe
C:\windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
"C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe"
C:\windows\servicing\TrustedInstaller.exe
"C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE"
"C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\\TosA2dp.exe"
"C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\\TosBtHid.exe"
"C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\\TosBtHsp.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,IncidentReportingModuleLoadAnalysis<SafeBrowsingIncidentReportingServiceFeatures,IncidentReportingSuspiciousModuleReporting<SafeBrowsingIncidentReportingServiceFeatures,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup,UsePasswordSeparatedSigninFlow<PasswordSeparatedSigninFlow,WebFontsIntervention<WebFontsIntervention,*WebRTC-EnableWebRtcEcdsa<WebRTC-EnableWebRtcEcdsa,brotli-encoding<BrotliEncoding --disable-features=DocumentWriteEvaluator<DisallowFetchForDocWrittenScriptsInMainFrame,RenderingPipelineThrottling<RenderingPipelineThrottling --force-fieldtrials=AppBannerTriggering/Aggressive/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_10-gen2/*BrotliEncoding/Enabled/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/*ClientSideDetectionModel/Model0/DirectWriteFontProxy/UseDirectWriteFontProxy/*DisallowFetchForDocWrittenScriptsInMainFrame/Default/*EnableMediaRouter/Disabled/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*GFE/Default/GoogleBrandedContextMenu/default/InstanceID/Enabled/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Unused_2/*OutOfProcessPac/Default/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*PasswordManagerSettingsMigration/Disable/PasswordSeparatedSigninFlow/Enabled/*PreRead/Default/*QUIC/Control/*RenderingPipelineThrottling/Disabled/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Control50Permanent/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/SSLCommonNameMismatchHandling/Control/*SafeBrowsingIncidentReportingService/Default/*SafeBrowsingIncidentReportingServiceFeatures/WithSuspiciousModuleReporting/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/SyncHttpContentCompression/Enabled/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_55/*UMA-Uniformity-Trial-10-Percent/default/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/default/*UMA-Uniformity-Trial-5-Percent/group_09/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/*WebFontsIntervention/Enabled/WebRTC-EnableWebRtcEcdsa/Default/ --primordial-pipe-token=04C5A10E03414AEB4DF8014D1DD14419 --lang=sk --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --channel="4712.12.1479935053\1923530701" --mojo-platform-channel-handle=2620 /prefetch:1
ctfmon.exe
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe1_ Global\UsGthrCtrlFltPipeMssGthrPipe1 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
C:\windows\System32\svchost.exe -k LocalServicePeerNet
"C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe"
C:\windows\system32\DllHost.exe /Processid:{30D49246-D217-465F-B00B-AC9DDD652EB7}
"C:\Program Files\TOSHIBA\TPHM\TPCHSrv.exe"
"C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe"
"C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSENotify.exe"
"C:\Program Files\TOSHIBA\TPHM\TPCHWMsg.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,IncidentReportingModuleLoadAnalysis<SafeBrowsingIncidentReportingServiceFeatures,IncidentReportingSuspiciousModuleReporting<SafeBrowsingIncidentReportingServiceFeatures,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup,UsePasswordSeparatedSigninFlow<PasswordSeparatedSigninFlow,WebFontsIntervention<WebFontsIntervention,*WebRTC-EnableWebRtcEcdsa<WebRTC-EnableWebRtcEcdsa,brotli-encoding<BrotliEncoding --disable-features=DocumentWriteEvaluator<DisallowFetchForDocWrittenScriptsInMainFrame,RenderingPipelineThrottling<RenderingPipelineThrottling --force-fieldtrials=AppBannerTriggering/Aggressive/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_10-gen2/*BrotliEncoding/Enabled/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/*ClientSideDetectionModel/Model0/DirectWriteFontProxy/UseDirectWriteFontProxy/*DisallowFetchForDocWrittenScriptsInMainFrame/Default/*EnableMediaRouter/Disabled/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*GFE/Default/GoogleBrandedContextMenu/default/InstanceID/Enabled/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Unused_2/*OutOfProcessPac/Default/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*PasswordManagerSettingsMigration/Disable/PasswordSeparatedSigninFlow/Enabled/*PreRead/Default/*QUIC/Control/*RenderingPipelineThrottling/Disabled/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Control50Permanent/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/SSLCommonNameMismatchHandling/Control/*SafeBrowsingIncidentReportingService/Default/*SafeBrowsingIncidentReportingServiceFeatures/WithSuspiciousModuleReporting/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/SyncHttpContentCompression/Enabled/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_55/*UMA-Uniformity-Trial-10-Percent/default/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/default/*UMA-Uniformity-Trial-5-Percent/group_09/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/*WebFontsIntervention/Enabled/WebRTC-EnableWebRtcEcdsa/Default/ --primordial-pipe-token=F680146B41226030E30E0F7F9B00DE7D --lang=sk --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --channel="4712.13.1332541887\908786704" --mojo-platform-channel-handle=2332 /prefetch:1
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
"C:\Users\Vladko\Downloads\RSITx64.exe"
"C:\windows\system32\SearchFilterHost.exe" 0 532 536 544 65536 540
"C:\Program Files (x86)\Opera\launcher.exe" --scheduledautoupdate $(Arg0)
wmiadap.exe /F /T /R

======Scheduled tasks folder======

C:\windows\tasks\Adobe Flash Player PPAPI Notifier.job - C:\windows\SysWOW64\Macromed\Flash\FlashUtil32_22_0_0_192_pepper.exe -check pepperplugin
C:\windows\tasks\Adobe Flash Player Updater.job - C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\windows\tasks\GoogleUpdateTaskUserS-1-5-21-3711641026-1665954617-3788946107-1000Core.job - C:\Users\Vladko\AppData\Local\Google\Update\GoogleUpdate.exe /c
C:\windows\tasks\GoogleUpdateTaskUserS-1-5-21-3711641026-1665954617-3788946107-1000UA.job - C:\Users\Vladko\AppData\Local\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\windows\tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d-Logon.job - C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe --domain-id 4e00205a-2ab1-4423-8f77-cc25b82cde1d --caller winlogon-impersonate
C:\windows\tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d.job - C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe --domain-id 4e00205a-2ab1-4423-8f77-cc25b82cde1d --caller scheduler-impersonate

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2011-03-29 529280]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2016-06-20 255088]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F3C88694-EFFA-4d78-B409-54B7B2535B14}]
TOSHIBA Media Controller Plug-in - C:\Program Files (x86)\TOSHIBA\TOSHIBA Media Controller Plug-in\x64\TOSHIBAMediaControllerIE.dll [2011-11-03 700800]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre6\bin\ssv.dll [2012-05-13 325408]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2011-03-29 441216]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2016-06-20 193136]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll [2012-05-13 42272]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F3C88694-EFFA-4d78-B409-54B7B2535B14}]
TOSHIBA Media Controller Plug-in - C:\Program Files (x86)\TOSHIBA\TOSHIBA Media Controller Plug-in\TOSHIBAMediaControllerIE.dll [2011-11-03 534400]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2016-06-20 255088]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2016-06-20 193136]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
""= []
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2012-03-16 12459112]
"SRS Premium Sound HD"=C:\Program Files\SRS Labs\SRS Control Panel\SRSPanel_64.exe [2012-03-22 2165120]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2011-12-19 2866960]
"TPwrMain"=C:\Program Files\TOSHIBA\Power Saver\TPwrMain.EXE [2011-09-23 590256]
"TCrdMain"=C:\Program Files\TOSHIBA\FlashCards\TCrdMain.exe [2011-12-14 989056]
"Teco"=C:\Program Files\TOSHIBA\TECO\Teco.exe [2011-11-24 1548208]
"TosWaitSrv"=C:\Program Files\TOSHIBA\TPHM\TosWaitSrv.exe [2011-12-15 712096]
"TosSENotify"=C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosWaitSrv.exe [2011-11-26 710560]
"TosVolRegulator"=C:\Program Files\TOSHIBA\TosVolRegulator\TosVolRegulator.exe [2009-11-11 24376]
"Toshiba TEMPRO"=C:\Program Files (x86)\Toshiba TEMPRO\TemproTray.exe [2011-02-10 1546720]
"Toshiba Registration"=C:\Program Files\TOSHIBA\Registration\ToshibaReminder.exe [2012-05-13 150992]
"IgfxTray"=C:\windows\system32\igfxtray.exe [2012-05-10 170264]
"HotKeysCmds"=C:\windows\system32\hkcmd.exe [2012-05-10 398616]
"Persistence"=C:\windows\system32\igfxpers.exe [2012-05-10 440088]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Google Update"=C:\Users\Vladko\AppData\Local\Google\Update\GoogleUpdate.exe [2015-09-25 144200]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\APSDaemon]
C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [2014-04-23 43848]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\eIDCertPropagator]
C:\Program Files (x86)\eID klient\eIDCertPropagator.exe [2015-11-04 530736]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\eID_klient]
C:\Program Files (x86)\eID klient\eID_klient.exe [2016-01-05 6347680]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GarminExpressTrayApp]
C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe [2016-01-28 1403304]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\iTunesHelper]
C:\Program Files (x86)\iTunes\iTunesHelper.exe [2014-05-26 152392]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NBAgent]
C:\Program Files (x86)\Nero\Nero 11\Nero BackItUp\NBAgent.exe /WinStart []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\swg]
C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [2012-05-14 39408]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WinampAgent]
C:\Program Files (x86)\Winamp\winampa.exe [2010-12-02 74752]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WinFast Schedule]
C:\Program Files\WinFast\WFDTV\WFWIZ.exe [2008-06-20 2887680]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WinFastDTV]
C:\Program Files\WinFast\WFDTV\DTVSchdl.exe [2008-07-11 90112]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^eOne Client.lnk]
C:\PROGRA~2\SECURE~1\ENCRYP~1\Client\smdaemon.exe [2014-01-07 1358848]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"USB3MON"=C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [2012-01-05 291608]
"ToshibaServiceStation"=C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\ToshibaServiceStation.exe [2011-07-12 1298816]
"ArcSoft Connection Service"=C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe [2010-10-27 207424]
"AVG_UI"=C:\Program Files (x86)\AVG\AVG2015\avuirunnerx.exe [2016-06-20 25496]
"AvgUi"=C:\Program Files (x86)\AVG\Framework\Common\avguirnx.exe [2016-06-21 186640]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Bluetooth Manager.lnk - C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtMng.exe
Toshiba Places Icon Utility.lnk - C:\Program Files\TOSHIBA\TOSHIBA Places Icon Utility\TosDIMonitor.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"=" "

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\windows\system32\igfxdev.dll [2012-05-10 436224]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MCODS]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"wave5"=wdmaud.drv
"mixer5"=wdmaud.drv
"wave7"=wdmaud.drv
"mixer7"=wdmaud.drv
"wave6"=wdmaud.drv
"mixer6"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - %SystemRoot%\SysWow64\CScript.exe "%1" %*
.vbs - open - %SystemRoot%\SysWow64\CScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2016-06-24 16:11:40 ----D---- C:\rsit
2016-06-24 16:11:40 ----D---- C:\Program Files\trend micro
2016-06-22 17:59:06 ----A---- C:\windows\SYSWOW64\tzres.dll
2016-06-22 17:59:06 ----A---- C:\windows\system32\tzres.dll
2016-06-22 17:59:02 ----A---- C:\windows\system32\drivers\srv2.sys
2016-06-22 17:59:02 ----A---- C:\windows\system32\drivers\srv.sys
2016-06-22 17:59:02 ----A---- C:\windows\system32\drivers\cng.sys
2016-06-22 17:59:01 ----A---- C:\windows\SYSWOW64\wdigest.dll
2016-06-22 17:59:01 ----A---- C:\windows\SYSWOW64\TSpkg.dll
2016-06-22 17:59:01 ----A---- C:\windows\SYSWOW64\sspicli.dll
2016-06-22 17:59:01 ----A---- C:\windows\SYSWOW64\schannel.dll
2016-06-22 17:59:01 ----A---- C:\windows\SYSWOW64\secur32.dll
2016-06-22 17:59:01 ----A---- C:\windows\SYSWOW64\rpchttp.dll
2016-06-22 17:59:01 ----A---- C:\windows\SYSWOW64\rpcrt4.dll
2016-06-22 17:59:01 ----A---- C:\windows\SYSWOW64\ncrypt.dll
2016-06-22 17:59:01 ----A---- C:\windows\SYSWOW64\msv1_0.dll
2016-06-22 17:59:01 ----A---- C:\windows\SYSWOW64\msobjs.dll
2016-06-22 17:59:01 ----A---- C:\windows\SYSWOW64\msaudite.dll
2016-06-22 17:59:01 ----A---- C:\windows\SYSWOW64\kerberos.dll
2016-06-22 17:59:01 ----A---- C:\windows\SYSWOW64\cryptbase.dll
2016-06-22 17:59:01 ----A---- C:\windows\SYSWOW64\credssp.dll
2016-06-22 17:59:01 ----A---- C:\windows\SYSWOW64\certcli.dll
2016-06-22 17:59:01 ----A---- C:\windows\SYSWOW64\bcryptprimitives.dll
2016-06-22 17:59:01 ----A---- C:\windows\SYSWOW64\auditpol.exe
2016-06-22 17:59:01 ----A---- C:\windows\SYSWOW64\adtschema.dll
2016-06-22 17:59:01 ----A---- C:\windows\system32\wdigest.dll
2016-06-22 17:59:01 ----A---- C:\windows\system32\TSpkg.dll
2016-06-22 17:59:01 ----A---- C:\windows\system32\sspisrv.dll
2016-06-22 17:59:01 ----A---- C:\windows\system32\sspicli.dll
2016-06-22 17:59:01 ----A---- C:\windows\system32\schannel.dll
2016-06-22 17:59:01 ----A---- C:\windows\system32\secur32.dll
2016-06-22 17:59:01 ----A---- C:\windows\system32\rpchttp.dll
2016-06-22 17:59:01 ----A---- C:\windows\system32\rpcrt4.dll
2016-06-22 17:59:01 ----A---- C:\windows\system32\ncrypt.dll
2016-06-22 17:59:01 ----A---- C:\windows\system32\msv1_0.dll
2016-06-22 17:59:01 ----A---- C:\windows\system32\msobjs.dll
2016-06-22 17:59:01 ----A---- C:\windows\system32\msaudite.dll
2016-06-22 17:59:01 ----A---- C:\windows\system32\lsass.exe
2016-06-22 17:59:01 ----A---- C:\windows\system32\lsasrv.dll
2016-06-22 17:59:01 ----A---- C:\windows\system32\kerberos.dll
2016-06-22 17:59:01 ----A---- C:\windows\system32\drivers\srvnet.sys
2016-06-22 17:59:01 ----A---- C:\windows\system32\drivers\mrxsmb20.sys
2016-06-22 17:59:01 ----A---- C:\windows\system32\drivers\mrxsmb10.sys
2016-06-22 17:59:01 ----A---- C:\windows\system32\drivers\mrxsmb.sys
2016-06-22 17:59:01 ----A---- C:\windows\system32\drivers\ksecpkg.sys
2016-06-22 17:59:01 ----A---- C:\windows\system32\drivers\ksecdd.sys
2016-06-22 17:59:01 ----A---- C:\windows\system32\cryptbase.dll
2016-06-22 17:59:01 ----A---- C:\windows\system32\credssp.dll
2016-06-22 17:59:01 ----A---- C:\windows\system32\certcli.dll
2016-06-22 17:59:01 ----A---- C:\windows\system32\bcryptprimitives.dll
2016-06-22 17:59:01 ----A---- C:\windows\system32\auditpol.exe
2016-06-22 17:59:01 ----A---- C:\windows\system32\adtschema.dll
2016-06-22 17:58:52 ----A---- C:\windows\system32\appraiser.dll
2016-06-22 17:58:52 ----A---- C:\windows\system32\aeinv.dll
2016-06-22 17:58:51 ----A---- C:\windows\system32\invagent.dll
2016-06-22 17:58:51 ----A---- C:\windows\system32\generaltel.dll
2016-06-22 17:58:51 ----A---- C:\windows\system32\devinv.dll
2016-06-22 17:58:51 ----A---- C:\windows\system32\CompatTelRunner.exe
2016-06-22 17:58:51 ----A---- C:\windows\system32\centel.dll
2016-06-22 17:58:51 ----A---- C:\windows\system32\acmigration.dll
2016-06-22 17:58:50 ----A---- C:\windows\SYSWOW64\StructuredQuery.dll
2016-06-22 17:58:50 ----A---- C:\windows\SYSWOW64\lpk.dll
2016-06-22 17:58:50 ----A---- C:\windows\SYSWOW64\fontsub.dll
2016-06-22 17:58:50 ----A---- C:\windows\SYSWOW64\dciman32.dll
2016-06-22 17:58:50 ----A---- C:\windows\SYSWOW64\atmlib.dll
2016-06-22 17:58:50 ----A---- C:\windows\SYSWOW64\atmfd.dll
2016-06-22 17:58:50 ----A---- C:\windows\system32\StructuredQuery.dll
2016-06-22 17:58:50 ----A---- C:\windows\system32\lpk.dll
2016-06-22 17:58:50 ----A---- C:\windows\system32\fontsub.dll
2016-06-22 17:58:50 ----A---- C:\windows\system32\dciman32.dll
2016-06-22 17:58:50 ----A---- C:\windows\system32\atmlib.dll
2016-06-22 17:58:50 ----A---- C:\windows\system32\atmfd.dll
2016-06-22 17:58:49 ----A---- C:\windows\system32\win32k.sys
2016-06-22 17:58:48 ----A---- C:\windows\SYSWOW64\ws2_32.dll
2016-06-22 17:58:48 ----A---- C:\windows\SYSWOW64\winhttp.dll
2016-06-22 17:58:48 ----A---- C:\windows\SYSWOW64\netbtugc.exe
2016-06-22 17:58:48 ----A---- C:\windows\SYSWOW64\mswsock.dll
2016-06-22 17:58:48 ----A---- C:\windows\system32\ws2_32.dll
2016-06-22 17:58:48 ----A---- C:\windows\system32\winhttp.dll
2016-06-22 17:58:48 ----A---- C:\windows\system32\netbtugc.exe
2016-06-22 17:58:48 ----A---- C:\windows\system32\mswsock.dll
2016-06-22 17:58:48 ----A---- C:\windows\system32\drivers\netbt.sys
2016-06-22 17:58:46 ----A---- C:\windows\system32\IPSECSVC.DLL
2016-06-22 17:58:46 ----A---- C:\windows\system32\gpsvc.dll
2016-06-22 17:58:45 ----A---- C:\windows\SYSWOW64\winipsec.dll
2016-06-22 17:58:45 ----A---- C:\windows\SYSWOW64\polstore.dll
2016-06-22 17:58:45 ----A---- C:\windows\SYSWOW64\gpapi.dll
2016-06-22 17:58:45 ----A---- C:\windows\SYSWOW64\FwRemoteSvr.dll
2016-06-22 17:58:45 ----A---- C:\windows\system32\winipsec.dll
2016-06-22 17:58:45 ----A---- C:\windows\system32\polstore.dll
2016-06-22 17:58:45 ----A---- C:\windows\system32\gpapi.dll
2016-06-22 17:58:45 ----A---- C:\windows\system32\FwRemoteSvr.dll
2016-06-22 17:58:41 ----A---- C:\windows\SYSWOW64\gdi32.dll
2016-06-22 17:58:41 ----A---- C:\windows\system32\gdi32.dll
2016-06-22 17:58:40 ----A---- C:\windows\SYSWOW64\webio.dll
2016-06-22 17:58:40 ----A---- C:\windows\system32\webio.dll
2016-06-22 17:58:36 ----A---- C:\windows\system32\shell32.dll
2016-06-22 17:58:34 ----A---- C:\windows\SYSWOW64\shell32.dll
2016-06-22 17:58:34 ----A---- C:\windows\explorer.exe
2016-06-22 17:58:33 ----A---- C:\windows\SYSWOW64\ExplorerFrame.dll
2016-06-22 17:58:33 ----A---- C:\windows\SYSWOW64\explorer.exe
2016-06-22 17:58:33 ----A---- C:\windows\system32\ExplorerFrame.dll
2016-06-22 17:58:23 ----A---- C:\windows\system32\authui.dll
2016-06-22 17:58:22 ----A---- C:\windows\SYSWOW64\msi.dll
2016-06-22 17:58:22 ----A---- C:\windows\system32\msi.dll
2016-06-22 17:58:22 ----A---- C:\windows\system32\consent.exe
2016-06-22 17:58:21 ----A---- C:\windows\SYSWOW64\authui.dll
2016-06-22 17:58:21 ----A---- C:\windows\system32\appinfo.dll
2016-06-22 17:58:20 ----A---- C:\windows\SYSWOW64\msimsg.dll
2016-06-22 17:58:20 ----A---- C:\windows\SYSWOW64\msihnd.dll
2016-06-22 17:58:20 ----A---- C:\windows\SYSWOW64\msiexec.exe
2016-06-22 17:58:20 ----A---- C:\windows\system32\msimsg.dll
2016-06-22 17:58:20 ----A---- C:\windows\system32\msihnd.dll
2016-06-22 17:58:20 ----A---- C:\windows\system32\msiexec.exe
2016-06-22 17:58:08 ----A---- C:\windows\SYSWOW64\mshtmled.dll
2016-06-22 17:58:08 ----A---- C:\windows\SYSWOW64\inseng.dll
2016-06-22 17:58:08 ----A---- C:\windows\SYSWOW64\iernonce.dll
2016-06-22 17:58:08 ----A---- C:\windows\SYSWOW64\ieetwproxystub.dll
2016-06-22 17:58:08 ----A---- C:\windows\system32\iernonce.dll
2016-06-22 17:58:08 ----A---- C:\windows\system32\ieetwproxystub.dll
2016-06-22 17:58:08 ----A---- C:\windows\system32\ieetwcollector.exe
2016-06-22 17:58:07 ----A---- C:\windows\SYSWOW64\urlmon.dll
2016-06-22 17:58:07 ----A---- C:\windows\SYSWOW64\occache.dll
2016-06-22 17:58:07 ----A---- C:\windows\SYSWOW64\MshtmlDac.dll
2016-06-22 17:58:07 ----A---- C:\windows\SYSWOW64\iedkcs32.dll
2016-06-22 17:58:07 ----A---- C:\windows\system32\inseng.dll
2016-06-22 17:58:07 ----A---- C:\windows\system32\ie4uinit.exe
2016-06-22 17:58:06 ----A---- C:\windows\SYSWOW64\vbscript.dll
2016-06-22 17:58:06 ----A---- C:\windows\SYSWOW64\mshtml.dll
2016-06-22 17:58:06 ----A---- C:\windows\SYSWOW64\msfeeds.dll
2016-06-22 17:58:06 ----A---- C:\windows\SYSWOW64\JavaScriptCollectionAgent.dll
2016-06-22 17:58:06 ----A---- C:\windows\SYSWOW64\dxtrans.dll
2016-06-22 17:58:06 ----A---- C:\windows\system32\JavaScriptCollectionAgent.dll
2016-06-22 17:58:05 ----A---- C:\windows\SYSWOW64\iesetup.dll
2016-06-22 17:58:05 ----A---- C:\windows\SYSWOW64\iertutil.dll
2016-06-22 17:58:05 ----A---- C:\windows\SYSWOW64\ieapfltr.dll
2016-06-22 17:58:05 ----A---- C:\windows\system32\urlmon.dll
2016-06-22 17:58:05 ----A---- C:\windows\system32\occache.dll
2016-06-22 17:58:05 ----A---- C:\windows\system32\ieetwcollectorres.dll
2016-06-22 17:58:05 ----A---- C:\windows\system32\iedkcs32.dll
2016-06-22 17:58:04 ----A---- C:\windows\SYSWOW64\jsproxy.dll
2016-06-22 17:58:04 ----A---- C:\windows\SYSWOW64\jscript9diag.dll
2016-06-22 17:58:04 ----A---- C:\windows\SYSWOW64\jscript.dll
2016-06-22 17:58:04 ----A---- C:\windows\SYSWOW64\ieui.dll
2016-06-22 17:58:04 ----A---- C:\windows\SYSWOW64\ieframe.dll
2016-06-22 17:58:04 ----A---- C:\windows\SYSWOW64\dxtmsft.dll
2016-06-22 17:58:04 ----A---- C:\windows\system32\MsSpellCheckingFacility.exe
2016-06-22 17:58:04 ----A---- C:\windows\system32\msfeeds.dll
2016-06-22 17:58:04 ----A---- C:\windows\system32\dxtrans.dll
2016-06-22 17:58:03 ----A---- C:\windows\system32\iesetup.dll
2016-06-22 17:58:03 ----A---- C:\windows\system32\ieapfltr.dll
2016-06-22 17:58:02 ----A---- C:\windows\SYSWOW64\wininet.dll
2016-06-22 17:58:02 ----A---- C:\windows\SYSWOW64\webcheck.dll
2016-06-22 17:58:02 ----A---- C:\windows\SYSWOW64\mshtmlmedia.dll
2016-06-22 17:58:02 ----A---- C:\windows\SYSWOW64\jscript9.dll
2016-06-22 17:58:02 ----A---- C:\windows\SYSWOW64\ieUnatt.exe
2016-06-22 17:58:02 ----A---- C:\windows\system32\vbscript.dll
2016-06-22 17:58:02 ----A---- C:\windows\system32\iertutil.dll
2016-06-22 17:58:01 ----A---- C:\windows\SYSWOW64\msrating.dll
2016-06-22 17:58:01 ----A---- C:\windows\system32\jsproxy.dll
2016-06-22 17:58:01 ----A---- C:\windows\system32\ieui.dll
2016-06-22 17:58:01 ----A---- C:\windows\system32\dxtmsft.dll
2016-06-22 17:58:00 ----A---- C:\windows\system32\mshtmlmedia.dll
2016-06-22 17:58:00 ----A---- C:\windows\system32\mshtmled.dll
2016-06-22 17:58:00 ----A---- C:\windows\system32\ieframe.dll
2016-06-22 17:57:59 ----A---- C:\windows\system32\webcheck.dll
2016-06-22 17:57:59 ----A---- C:\windows\system32\jscript9diag.dll
2016-06-22 17:57:59 ----A---- C:\windows\system32\jscript9.dll
2016-06-22 17:57:59 ----A---- C:\windows\system32\jscript.dll
2016-06-22 17:57:59 ----A---- C:\windows\system32\ieUnatt.exe
2016-06-22 17:57:58 ----A---- C:\windows\system32\wininet.dll
2016-06-22 17:57:58 ----A---- C:\windows\system32\msrating.dll
2016-06-22 17:57:58 ----A---- C:\windows\system32\MshtmlDac.dll
2016-06-22 17:57:57 ----A---- C:\windows\system32\mshtml.dll
2016-06-21 22:17:22 ----D---- C:\windows\pss
2016-06-20 22:25:29 ----A---- C:\windows\SYSWOW64\FlashPlayerInstaller.exe
2016-06-17 17:55:31 ----A---- C:\windows\system32\jnwmon.dll
2016-06-11 11:33:44 ----A---- C:\windows\system32\drivers\dxgmms1.sys
2016-06-11 11:33:44 ----A---- C:\windows\system32\drivers\dxgkrnl.sys
2016-06-11 11:33:44 ----A---- C:\windows\system32\cdd.dll
2016-06-11 11:33:26 ----A---- C:\windows\SYSWOW64\d3d10level9.dll
2016-06-11 11:33:26 ----A---- C:\windows\system32\d3d10level9.dll
2016-06-11 11:33:23 ----A---- C:\windows\SYSWOW64\InkEd.dll
2016-06-11 11:33:23 ----A---- C:\windows\system32\InkEd.dll
2016-06-11 11:28:55 ----A---- C:\windows\system32\ntoskrnl.exe
2016-06-11 11:28:53 ----A---- C:\windows\SYSWOW64\ntoskrnl.exe
2016-06-11 11:28:53 ----A---- C:\windows\SYSWOW64\ntkrnlpa.exe
2016-06-11 11:28:53 ----A---- C:\windows\SYSWOW64\ntdll.dll
2016-06-11 11:28:52 ----A---- C:\windows\SYSWOW64\KernelBase.dll
2016-06-11 11:28:52 ----A---- C:\windows\SYSWOW64\advapi32.dll
2016-06-11 11:28:52 ----A---- C:\windows\system32\wow64win.dll
2016-06-11 11:28:52 ----A---- C:\windows\system32\wow64.dll
2016-06-11 11:28:52 ----A---- C:\windows\system32\winsrv.dll
2016-06-11 11:28:52 ----A---- C:\windows\system32\srcore.dll
2016-06-11 11:28:52 ----A---- C:\windows\system32\smss.exe
2016-06-11 11:28:52 ----A---- C:\windows\system32\ntdll.dll
2016-06-11 11:28:52 ----A---- C:\windows\system32\KernelBase.dll
2016-06-11 11:28:52 ----A---- C:\windows\system32\kernel32.dll
2016-06-11 11:28:52 ----A---- C:\windows\system32\advapi32.dll
2016-06-11 11:28:51 ----AH---- C:\windows\SYSWOW64\api-ms-win-security-base-l1-1-0.dll
2016-06-11 11:28:51 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-xstate-l1-1-0.dll
2016-06-11 11:28:51 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-util-l1-1-0.dll
2016-06-11 11:28:51 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2016-06-11 11:28:51 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2016-06-11 11:28:51 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-synch-l1-1-0.dll
2016-06-11 11:28:51 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-string-l1-1-0.dll
2016-06-11 11:28:51 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2016-06-11 11:28:51 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-profile-l1-1-0.dll
2016-06-11 11:28:51 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2016-06-11 11:28:51 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2016-06-11 11:28:51 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2016-06-11 11:28:51 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-misc-l1-1-0.dll
2016-06-11 11:28:51 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-memory-l1-1-0.dll
2016-06-11 11:28:51 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2016-06-11 11:28:51 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-localization-l1-1-0.dll
2016-06-11 11:28:51 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2016-06-11 11:28:51 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-io-l1-1-0.dll
2016-06-11 11:28:51 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2016-06-11 11:28:51 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-heap-l1-1-0.dll
2016-06-11 11:28:51 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-handle-l1-1-0.dll
2016-06-11 11:28:51 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-file-l1-1-0.dll
2016-06-11 11:28:51 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-fibers-l1-1-0.dll
2016-06-11 11:28:51 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2016-06-11 11:28:51 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-delayload-l1-1-0.dll
2016-06-11 11:28:51 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-debug-l1-1-0.dll
2016-06-11 11:28:51 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-datetime-l1-1-0.dll
2016-06-11 11:28:51 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-console-l1-1-0.dll
2016-06-11 11:28:51 ----AH---- C:\windows\system32\api-ms-win-security-base-l1-1-0.dll
2016-06-11 11:28:51 ----AH---- C:\windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2016-06-11 11:28:51 ----AH---- C:\windows\system32\api-ms-win-core-util-l1-1-0.dll
2016-06-11 11:28:51 ----AH---- C:\windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2016-06-11 11:28:51 ----AH---- C:\windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2016-06-11 11:28:51 ----AH---- C:\windows\system32\api-ms-win-core-synch-l1-1-0.dll
2016-06-11 11:28:51 ----AH---- C:\windows\system32\api-ms-win-core-string-l1-1-0.dll
2016-06-11 11:28:51 ----AH---- C:\windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2016-06-11 11:28:51 ----AH---- C:\windows\system32\api-ms-win-core-profile-l1-1-0.dll
2016-06-11 11:28:51 ----AH---- C:\windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2016-06-11 11:28:51 ----AH---- C:\windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2016-06-11 11:28:51 ----AH---- C:\windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2016-06-11 11:28:51 ----AH---- C:\windows\system32\api-ms-win-core-misc-l1-1-0.dll
2016-06-11 11:28:51 ----AH---- C:\windows\system32\api-ms-win-core-memory-l1-1-0.dll
2016-06-11 11:28:51 ----AH---- C:\windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2016-06-11 11:28:51 ----AH---- C:\windows\system32\api-ms-win-core-localization-l1-1-0.dll
2016-06-11 11:28:51 ----AH---- C:\windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2016-06-11 11:28:51 ----AH---- C:\windows\system32\api-ms-win-core-io-l1-1-0.dll
2016-06-11 11:28:51 ----AH---- C:\windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2016-06-11 11:28:51 ----AH---- C:\windows\system32\api-ms-win-core-heap-l1-1-0.dll
2016-06-11 11:28:51 ----AH---- C:\windows\system32\api-ms-win-core-handle-l1-1-0.dll
2016-06-11 11:28:51 ----AH---- C:\windows\system32\api-ms-win-core-file-l1-1-0.dll
2016-06-11 11:28:51 ----AH---- C:\windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2016-06-11 11:28:51 ----AH---- C:\windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2016-06-11 11:28:51 ----AH---- C:\windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2016-06-11 11:28:51 ----AH---- C:\windows\system32\api-ms-win-core-debug-l1-1-0.dll
2016-06-11 11:28:51 ----AH---- C:\windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2016-06-11 11:28:51 ----AH---- C:\windows\system32\api-ms-win-core-console-l1-1-0.dll
2016-06-11 11:28:51 ----A---- C:\windows\SYSWOW64\wow32.dll
2016-06-11 11:28:51 ----A---- C:\windows\SYSWOW64\user.exe
2016-06-11 11:28:51 ----A---- C:\windows\SYSWOW64\srclient.dll
2016-06-11 11:28:51 ----A---- C:\windows\SYSWOW64\setup16.exe
2016-06-11 11:28:51 ----A---- C:\windows\SYSWOW64\ntvdm64.dll
2016-06-11 11:28:51 ----A---- C:\windows\SYSWOW64\kernel32.dll
2016-06-11 11:28:51 ----A---- C:\windows\SYSWOW64\instnm.exe
2016-06-11 11:28:51 ----A---- C:\windows\SYSWOW64\appidapi.dll
2016-06-11 11:28:51 ----A---- C:\windows\SYSWOW64\apisetschema.dll
2016-06-11 11:28:51 ----A---- C:\windows\system32\wow64cpu.dll
2016-06-11 11:28:51 ----A---- C:\windows\system32\srclient.dll
2016-06-11 11:28:51 ----A---- C:\windows\system32\setbcdlocale.dll
2016-06-11 11:28:51 ----A---- C:\windows\system32\rstrui.exe
2016-06-11 11:28:51 ----A---- C:\windows\system32\ntvdm64.dll
2016-06-11 11:28:51 ----A---- C:\windows\system32\drivers\appid.sys
2016-06-11 11:28:51 ----A---- C:\windows\system32\csrsrv.dll
2016-06-11 11:28:51 ----A---- C:\windows\system32\conhost.exe
2016-06-11 11:28:51 ----A---- C:\windows\system32\appidsvc.dll
2016-06-11 11:28:51 ----A---- C:\windows\system32\appidpolicyconverter.exe
2016-06-11 11:28:51 ----A---- C:\windows\system32\appidcertstorecheck.exe
2016-06-11 11:28:51 ----A---- C:\windows\system32\appidapi.dll
2016-06-11 11:28:51 ----A---- C:\windows\system32\apisetschema.dll
2016-06-11 11:28:17 ----A---- C:\windows\SYSWOW64\WindowsCodecs.dll
2016-06-11 11:28:17 ----A---- C:\windows\system32\WindowsCodecs.dll

======List of files/folders modified in the last 1 month======

2016-06-24 16:11:40 ----RD---- C:\Program Files
2016-06-24 16:09:53 ----A---- C:\windows\SYSWOW64\log.txt
2016-06-24 16:08:25 ----D---- C:\windows\Temp
2016-06-24 16:08:01 ----D---- C:\windows\system32\config
2016-06-24 16:04:21 ----D---- C:\ProgramData\MFAData
2016-06-24 16:04:17 ----D---- C:\windows\system32\Tasks
2016-06-24 16:04:14 ----RD---- C:\Program Files (x86)
2016-06-24 16:04:13 ----D---- C:\AdwCleaner
2016-06-24 15:45:46 ----D---- C:\windows\Microsoft.NET
2016-06-24 15:36:46 ----SHD---- C:\windows\Installer
2016-06-24 15:36:45 ----SHD---- C:\Config.Msi
2016-06-24 15:28:53 ----D---- C:\windows\inf
2016-06-24 15:28:53 ----AD---- C:\windows\System32
2016-06-24 15:28:53 ----A---- C:\windows\system32\PerfStringBackup.INI
2016-06-22 20:10:35 ----AD---- C:\Windows
2016-06-22 20:00:07 ----SHD---- C:\System Volume Information
2016-06-22 19:33:29 ----D---- C:\Program Files (x86)\Google
2016-06-22 19:22:59 ----D---- C:\windows\SoftwareDistribution
2016-06-22 19:21:21 ----D---- C:\Users\Vladko\AppData\Roaming\Winamp
2016-06-22 19:21:19 ----D---- C:\windows\debug
2016-06-22 19:17:59 ----D---- C:\windows\winsxs
2016-06-22 19:13:04 ----D---- C:\windows\SYSWOW64\sk-SK
2016-06-22 19:13:04 ----D---- C:\windows\SysWOW64
2016-06-22 19:13:04 ----D---- C:\windows\system32\sk-SK
2016-06-22 19:13:02 ----D---- C:\windows\SYSWOW64\en-US
2016-06-22 19:13:02 ----D---- C:\windows\system32\en-US
2016-06-22 19:13:02 ----D---- C:\windows\system32\drivers
2016-06-22 19:13:01 ----D---- C:\windows\system32\wbem
2016-06-22 19:13:01 ----D---- C:\windows\system32\appraiser
2016-06-22 19:13:01 ----D---- C:\windows\AppPatch
2016-06-22 19:12:57 ----D---- C:\windows\sk-SK
2016-06-22 19:12:56 ----D---- C:\Program Files\Internet Explorer
2016-06-22 19:12:55 ----D---- C:\Program Files (x86)\Internet Explorer
2016-06-22 19:12:45 ----D---- C:\Users\Vladko\AppData\Roaming\SoftGrid Client
2016-06-22 19:08:33 ----D---- C:\Users\Vladko\AppData\Roaming\Toshiba
2016-06-22 19:06:03 ----D---- C:\windows\system32\MRT
2016-06-22 19:00:54 ----A---- C:\windows\system32\MRT.exe
2016-06-22 17:56:20 ----D---- C:\windows\system32\catroot2
2016-06-21 22:24:49 ----DC---- C:\windows\system32\DRVSTORE
2016-06-21 22:22:44 ----D---- C:\Program Files (x86)\Nero
2016-06-21 22:15:13 ----D---- C:\Users\Vladko\AppData\Roaming\vlc
2016-06-21 22:08:49 ----D---- C:\windows\ModemLogs
2016-06-21 21:58:15 ----D---- C:\Users\Vladko\AppData\Roaming\SecureMedia
2016-06-20 22:35:12 ----RSD---- C:\windows\assembly
2016-06-20 22:27:52 ----A---- C:\windows\SYSWOW64\FlashPlayerApp.exe
2016-06-19 22:24:08 ----D---- C:\Program Files\Windows Journal
2016-06-19 22:04:24 ----A---- C:\windows\SYSWOW64\PerfStringBackup.INI
2016-06-17 18:39:41 ----SD---- C:\windows\SYSWOW64\GWX
2016-06-17 18:39:41 ----SD---- C:\windows\system32\GWX
2016-06-17 18:39:41 ----D---- C:\windows\ehome
2016-06-17 18:39:34 ----D---- C:\windows\system32\Boot
2016-06-17 18:21:36 ----D---- C:\ProgramData\Package Cache
2016-06-17 18:20:50 ----D---- C:\Program Files (x86)\Garmin
2016-06-17 18:15:10 ----D---- C:\Program Files (x86)\Opera
2016-06-11 11:24:09 ----D---- C:\Users\Vladko\AppData\Roaming\Skype
2016-06-02 17:04:21 ----D---- C:\windows\Prefetch
2016-05-30 12:45:50 ----D---- C:\windows\Tasks

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 AVGIDSHA;AVGIDSHA; C:\windows\system32\DRIVERS\avgidsha.sys [2016-01-13 299440]
R0 Avgloga;AVG Logging Driver; C:\windows\system32\DRIVERS\avgloga.sys [2015-05-07 378336]
R0 Avgmfx64;AVG Mini-Filter Resident Anti-Virus Shield; C:\windows\system32\DRIVERS\avgmfx64.sys [2016-01-22 255920]
R0 Avgrkx64;AVG Anti-Rootkit Driver; C:\windows\system32\DRIVERS\avgrkx64.sys [2015-03-20 40928]
R0 iaStor;Intel AHCI Controller; C:\windows\system32\DRIVERS\iaStor.sys [2011-11-30 568600]
R0 iusb3hcs;Intel(R) USB 3.0 Host Controller Switch Driver; C:\windows\system32\DRIVERS\iusb3hcs.sys [2012-01-05 16152]
R0 pciide;pciide; C:\windows\system32\drivers\pciide.sys [2009-07-14 12352]
R0 rdyboost;ReadyBoost; C:\windows\System32\drivers\rdyboost.sys [2011-05-23 213888]
R0 tos_sps64;TOSHIBA tos_sps64 Service; C:\windows\system32\DRIVERS\tos_sps64.sys [2009-06-25 482384]
R0 TVALZ;TOSHIBA ACPI-Based Value Added Logical and General Purpose Device Driver; C:\windows\system32\DRIVERS\TVALZ_O.SYS [2009-07-15 26840]
R1 Avgdiska;AVG Disk Driver; C:\windows\system32\DRIVERS\avgdiska.sys [2015-03-11 162784]
R1 AVGIDSDriver;AVGIDSDriver; C:\windows\system32\DRIVERS\avgidsdrivera.sys [2015-12-16 315312]
R1 Avgldx64;AVG AVI Loader Driver; C:\windows\system32\DRIVERS\avgldx64.sys [2015-12-16 296368]
R1 Avgtdia;AVG TDI Driver; C:\windows\system32\DRIVERS\avgtdia.sys [2015-08-04 300464]
R1 avgtp;avgtp; \??\C:\windows\system32\drivers\avgtpx64.sys [2014-09-15 50976]
R1 Tosrfcom;Bluetooth RFCOMM; C:\windows\System32\Drivers\tosrfcom.sys [2010-11-29 82224]
R1 vwififlt;Virtual WiFi Filter Driver; C:\windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 TVALZFL;TOSHIBA ACPI-Based Value Added Logical and General Purpose Device Filter Driver; C:\windows\system32\DRIVERS\TVALZFL.sys [2009-06-20 14472]
R3 Afc;PPdus ASPI Shell; C:\windows\SysWOW64\drivers\Afc.sys [2006-11-14 22784]
R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\windows\system32\DRIVERS\GEARAspiWDM.sys [2012-08-21 33240]
R3 huawei_enumerator;huawei_enumerator; C:\windows\system32\DRIVERS\ew_jubusenum.sys [2010-07-27 86016]
R3 igfx;igfx; C:\windows\system32\DRIVERS\igdkmd64.sys [2012-05-10 14759136]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\windows\system32\drivers\RTKVHD64.sys [2012-03-21 4013928]
R3 IntcDAud;Intel(R) Display Audio; C:\windows\system32\DRIVERS\IntcDAud.sys [2011-12-06 331264]
R3 iusb3hub;Intel(R) USB 3.0 Hub Driver; C:\windows\system32\DRIVERS\iusb3hub.sys [2012-01-05 355096]
R3 iusb3xhc;Intel(R) USB 3.0 eXtensible Host Controller Driver; C:\windows\system32\DRIVERS\iusb3xhc.sys [2012-01-05 786200]
R3 MEIx64;Intel(R) Management Engine Interface ; C:\windows\system32\DRIVERS\HECIx64.sys [2011-11-10 60184]
R3 PGEffect;Pangu effect driver; C:\windows\system32\DRIVERS\pgeffect.sys [2011-02-09 38096]
R3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader; C:\windows\System32\Drivers\RtsUStor.sys [2011-08-17 251496]
R3 RTL8167;Realtek 8167 NT Driver; C:\windows\system32\DRIVERS\Rt64win7.sys [2011-08-24 565352]
R3 RTL8192Ce;Realtek Wireless LAN 802.11n PCI-E NIC Driver; C:\windows\system32\DRIVERS\rtwlane.sys [2012-01-17 1082472]
R3 Sftfs;Sftfs; C:\windows\system32\DRIVERS\Sftfslh.sys [2009-12-02 721768]
R3 Sftplay;Sftplay; C:\windows\system32\DRIVERS\Sftplaylh.sys [2009-12-02 269672]
R3 Sftredir;Sftredir; C:\windows\system32\DRIVERS\Sftredirlh.sys [2009-12-02 25960]
R3 Sftvol;Sftvol; C:\windows\system32\DRIVERS\Sftvollh.sys [2009-12-02 22376]
R3 SynTP;Synaptics TouchPad Driver; C:\windows\system32\DRIVERS\SynTP.sys [2011-12-19 411920]
R3 tdcmdpst;TOSHIBA Writing Engine Filter Driver; C:\windows\system32\DRIVERS\tdcmdpst.sys [2009-07-31 27784]
R3 tosporte;Bluetooth COM Port; C:\windows\system32\DRIVERS\tosporte.sys [2009-06-17 54664]
R3 tosrfec;Bluetooth ACPI; C:\windows\system32\DRIVERS\tosrfec.sys [2010-06-19 18872]
S3 BthEnum;Bluetooth Request Block Driver; C:\windows\system32\drivers\BthEnum.sys [2009-07-14 41984]
S3 BthPan;Bluetooth Device (Personal Area Network); C:\windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
S3 BTHPORT;Bluetooth Port Driver; C:\windows\System32\Drivers\BTHport.sys [2012-07-06 552960]
S3 BTHUSB;Bluetooth Radio USB Driver; C:\windows\System32\Drivers\BTHUSB.sys [2011-04-28 80384]
S3 emAudio;USB EMP Audio Device; C:\windows\system32\drivers\emAudio64.sys [2012-10-14 34304]
S3 EsgScanner;EsgScanner; C:\windows\system32\DRIVERS\EsgScanner.sys [2016-04-10 22704]
S3 ew_hwusbdev;Huawei MobileBroadband USB PNP Device; C:\windows\system32\DRIVERS\ew_hwusbdev.sys [2010-07-27 117248]
S3 GemCCID;GemCCID; C:\windows\system32\DRIVERS\GemCCID.sys [2014-11-10 130944]
S3 huawei_cdcacm;huawei_cdcacm; C:\windows\system32\DRIVERS\ew_jucdcacm.sys [2010-08-24 91648]
S3 IT9135BDA;IT9135 BDA Devices; C:\windows\System32\Drivers\IT9135BDA.sys [2012-10-14 113280]
S3 mod7700;WinFast based TV tuner device; C:\windows\system32\DRIVERS\mod7700.sys [2007-10-11 628480]
S3 MODRC;WinFast TV Dongle With Infrared Receiver; C:\windows\system32\DRIVERS\modrc.sys [2007-07-13 24200]
S3 RFCOMM;Bluetooth Device (RFCOMM Protocol TDI); C:\windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
S3 RtkBtFilter;Realtek Bluetooth Filter Driver; C:\windows\system32\DRIVERS\RtkBtfilter.sys [2012-01-05 21096]
S3 TDEIO;TDEIO; \??\C:\Windows\SysWOW64\sysprep\BOOTPRIO\tdeio64.sys []
S3 tosrfbd;Bluetooth RFBUS; C:\windows\system32\DRIVERS\tosrfbd.sys [2012-01-30 304696]
S3 tosrfbnp;Bluetooth RFBNEP; C:\windows\System32\Drivers\tosrfbnp.sys [2010-11-11 50864]
S3 Tosrfhid;Bluetooth RFHID; C:\windows\system32\DRIVERS\Tosrfhid.sys [2010-08-30 94528]
S3 tosrfnds;Bluetooth Personal Area Network; C:\windows\system32\DRIVERS\tosrfnds.sys [2009-07-24 26472]
S3 TosRfSnd;Bluetooth Audio; C:\windows\system32\drivers\tosrfsnd.sys [2010-04-26 63488]
S3 Tosrfusb;Bluetooth USB Controller; C:\windows\system32\DRIVERS\tosrfusb.sys [2011-12-17 79040]
S3 TsUsbFlt;TsUsbFlt; C:\windows\system32\drivers\tsusbflt.sys [2010-11-21 59392]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\windows\system32\drivers\TsUsbGD.sys [2010-11-21 31232]
S3 ULCDRHlp;ULCDRHlp; C:\windows\System32\Drivers\ULCDRHlp.sys []
S3 USB28xxBGA;USB 2881 Device; C:\windows\system32\DRIVERS\emBDA64.sys [2012-10-14 649728]
S3 USB28xxOEM;USB 28xx OEM Filter; C:\windows\system32\DRIVERS\emOEM64.sys [2012-10-14 626688]
S3 USBAAPL64;Apple Mobile USB Driver; C:\windows\System32\Drivers\usbaapl64.sys [2013-03-18 54784]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 ACDaemon;ArcSoft Connect Daemon; C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [2010-03-18 113152]
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2016-04-22 82128]
R2 Apple Mobile Device;Apple Mobile Device; C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [2014-02-12 43336]
R2 AVGIDSAgent;AVGIDSAgent; C:\Program Files (x86)\AVG\AVG2015\avgidsagent.exe [2016-04-21 3647384]
R2 avgsvc;AVG Service; C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe [2016-06-21 1080080]
R2 avgwd;AVG WatchDog; C:\Program Files (x86)\AVG\AVG2015\avgwdsvc.exe [2016-04-21 336152]
R2 Bonjour Service;Bonjour Service; C:\Program Files\Bonjour\mDNSResponder.exe [2011-08-31 462184]
R2 cvhsvc;Client Virtualization Handler; C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE [2010-02-28 821664]
R2 DCService.exe;DCService.exe; C:\ProgramData\DatacardService\DCService.exe [2010-09-29 249856]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\windows\System32\svchost.exe [2011-03-01 27648]
R2 GFNEXSrv;GFNEX Service; C:\Windows\System32\GFNEXSrv.exe [2010-09-10 162824]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [2012-02-03 628448]
R2 Intel(R) ME Service;Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [2012-02-21 128280]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2012-02-21 161560]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2012-02-29 277784]
R2 sftlist;Application Virtualization Client; C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe [2009-12-02 483688]
R2 TODDSrv;TOSHIBA Optical Disc Drive Service; C:\windows\system32\TODDSrv.exe [2010-10-20 138656]
R2 TosCoSrv;TOSHIBA Power Saver; C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe [2011-12-16 583088]
R2 TOSHIBA eco Utility Service;TOSHIBA eco Utility Service; C:\Program Files\TOSHIBA\TECO\TecoService.exe [2011-11-24 294848]
R2 UleadBurningHelper;Ulead Burning Helper; C:\Program Files (x86)\Common Files\Ulead Systems\DVD\ULCDRSvr.exe [2004-12-13 49152]
R2 UNS;Intel(R) Management and Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2012-02-29 363800]
R3 sftvsa;Application Virtualization Service Agent; C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe [2009-12-02 209768]
R3 TMachInfo;TMachInfo; C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe [2011-07-12 57216]
R3 TOSHIBA Bluetooth Service;TOSHIBA Bluetooth Service; C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe [2011-04-02 198064]
R3 TOSHIBA HDD SSD Alert Service;TOSHIBA HDD SSD Alert Service; C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe [2011-11-26 138152]
R3 TPCHSrv;TPCH Service; C:\Program Files\TOSHIBA\TPHM\TPCHSrv.exe [2011-12-15 833976]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2015-11-05 105144]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2015-11-05 125112]
S2 Garmin Device Interaction Service;Garmin Device Interaction Service; C:\Program Files (x86)\Garmin\Device Interaction Service\GarminService.exe [2016-04-08 792592]
S2 gupdate;Google Update Service (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-09-25 144200]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2016-01-29 327296]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-06-20 270016]
S3 cphs;Intel(R) Content Protection HECI Service; C:\windows\SysWow64\IntelCpHeciSvc.exe [2012-05-10 276248]
S3 gupdatem;Google Update Service (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-09-25 144200]
S3 gusvc;Google Software Updater; C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe [2012-10-02 194032]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\windows\system32\IEEtwCollector.exe [2016-05-20 114688]
S3 iPod Service;iPod Service; C:\Program Files\iPod\bin\iPodService.exe [2014-05-26 641352]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352]
S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]
S3 TemproMonitoringService;Notebook Performance Tuning Service (TEMPRO); C:\Program Files (x86)\Toshiba TEMPRO\TemproSvc.exe [2011-02-10 112080]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\windows\system32\Wat\WatAdminSvc.exe [2012-10-03 1255736]
S4 aspnet_state;ASP.NET State Service; C:\windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2015-11-05 51376]
S4 NetMsmqActivator;@C:\windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2015-11-05 135848]
S4 NetPipeActivator;@C:\windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2015-11-05 135848]
S4 NetTcpActivator;@C:\windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2015-11-05 135848]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118275
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosim o kontrolu logu

#2 Příspěvek od Rudy »

Zdravím!
Spusťte tuto utilitu:
Stáhněte AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
Uložte na plochu
Ukončete všechny programy
Klikněte nejprve na >Scan< a pak na >Clean<.
Proběhne skenováni a pak se objeví log, který sem vložte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

ertenkanz
Návštěvník
Návštěvník
Příspěvky: 11
Registrován: 12 dub 2015 13:50

Re: Prosim o kontrolu logu

#3 Příspěvek od ertenkanz »

# AdwCleaner v5.200 - Logfile created 24/06/2016 at 17:09:54
# Updated 14/06/2016 by ToolsLib
# Database : 2016-06-23.1 [Server]
# Operating system : Windows 7 Home Premium Service Pack 1 (X64)
# Username : Vladko - TOSHIBA
# Running from : C:\Users\Vladko\Desktop\adwcleaner_5.200.exe
# Option : Clean
# Support : https://toolslib.net/forum

***** [ Services ] *****


***** [ Folders ] *****


***** [ Files ] *****


***** [ DLLs ] *****


***** [ WMI ] *****


***** [ Shortcuts ] *****


***** [ Scheduled tasks ] *****


***** [ Registry ] *****


***** [ Web browsers ] *****


*************************

:: "Tracing" keys deleted
:: Winsock settings cleared

*************************

C:\AdwCleaner\AdwCleaner[C1].txt - [9981 bytes] - [10/04/2016 14:40:08]
C:\AdwCleaner\AdwCleaner[C2].txt - [1695 bytes] - [24/06/2016 16:04:13]
C:\AdwCleaner\AdwCleaner[C3].txt - [883 bytes] - [24/06/2016 17:09:54]
C:\AdwCleaner\AdwCleaner[S1].txt - [9335 bytes] - [10/04/2016 14:38:25]
C:\AdwCleaner\AdwCleaner[S2].txt - [1473 bytes] - [24/06/2016 16:00:06]
C:\AdwCleaner\AdwCleaner[S3].txt - [1091 bytes] - [24/06/2016 17:08:13]

########## EOF - C:\AdwCleaner\AdwCleaner[C3].txt - [1174 bytes] ##########

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118275
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosim o kontrolu logu

#4 Příspěvek od Rudy »

Toto je OK. Stáhněte OTM: http://oldtimer.geekstogo.com/OTM.exe a uložte na plochu. Spusťte a do levého okna zkopírujte:
:files
C:\Program Files (x86)\Google\Google Toolbar
C:\windows\tasks\GoogleUpdateTaskMachineCore.job
C:\windows\tasks\GoogleUpdateTaskMachineUA.job
C:\windows\tasks\GoogleUpdateTaskUserS-1-5-21-3711641026-1665954617-3788946107-1000Core.job
C:\windows\tasks\GoogleUpdateTaskUserS-1-5-21-3711641026-1665954617-3788946107-1000UA.job
C:\Program Files (x86)\Google\GoogleToolbarNotifier

:reg
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]/64
[-HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]/64
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]/64
[-HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]/64
[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\swg]/64

:services
Bonjour Service

:commands
[Purity]
[Emptytemp]
[Emptyflash]
a klikněte na >MoveIt!<. Před skenem vypněte antivir a po něm restartujte PC. Dejte nový log RSIT.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

ertenkanz
Návštěvník
Návštěvník
Příspěvky: 11
Registrován: 12 dub 2015 13:50

Re: Prosim o kontrolu logu

#5 Příspěvek od ertenkanz »

Logfile of random's system information tool 1.10 (written by random/random)
Run by Vladko at 2016-06-24 21:48:35
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 258 GB (56%) free of 460 GB
Total RAM: 3986 MB (46% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 21:48:40, on 24. 6. 2016
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.18347)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe
C:\ProgramData\DatacardService\DCSHelper.exe
C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\ismagent.exe
C:\Users\Vladko\AppData\Local\Google\Update\GoogleUpdate.exe
C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtMng.exe
C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe
C:\Program Files (x86)\AVG\AVG2015\avgui.exe
C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ArcCon.ac
C:\Program Files (x86)\AVG\Framework\Common\avguix.exe
C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosA2dp.exe
C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtHid.exe
C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtHsp.exe
C:\windows\SysWOW64\ctfmon.exe
C:\Program Files\trend micro\Vladko.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://us.yahoo.com?fr=fp-comodo
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: (no name) - - (no file)
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre6\bin\ssv.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
O2 - BHO: TOSHIBA Media Controller Plug-in - {F3C88694-EFFA-4d78-B409-54B7B2535B14} - C:\Program Files (x86)\TOSHIBA\TOSHIBA Media Controller Plug-in\TOSHIBAMediaControllerIE.dll
O4 - HKLM\..\Run: [USB3MON] "C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
O4 - HKLM\..\Run: [ToshibaServiceStation] "C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\ToshibaServiceStation.exe" /hide:60
O4 - HKLM\..\Run: [ArcSoft Connection Service] C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe
O4 - HKLM\..\Run: [AVG_UI] "C:\Program Files (x86)\AVG\AVG2015\avuirunnerx.exe" C:\Program Files (x86)\AVG\AVG2015\avgui.exe
O4 - HKLM\..\Run: [AvgUi] "C:\Program Files (x86)\AVG\Framework\Common\avguirnx.exe" /lps=fmw
O4 - HKCU\..\Run: [Google Update] "C:\Users\Vladko\AppData\Local\Google\Update\GoogleUpdate.exe" /c
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\Run: [TOPI.EXE] C:\Program Files (x86)\TOSHIBA\TOSHIBA Online Product Information\topi.exe /STARTUP (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [TOPI.EXE] C:\Program Files (x86)\TOSHIBA\TOSHIBA Online Product Information\topi.exe /STARTUP (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [TOPI.EXE] C:\Program Files (x86)\TOSHIBA\TOSHIBA Online Product Information\topi.exe /STARTUP (User 'Default user')
O4 - .DEFAULT User Startup: TRDCReminder.lnk = C:\Program Files (x86)\TOSHIBA\TRDCReminder\TRDCReminder.exe (User 'Default user')
O4 - Global Startup: Bluetooth Manager.lnk = ?
O4 - Global Startup: Toshiba Places Icon Utility.lnk = ?
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: PrivDog - {2F5C139F-79BD-4C84-A95A-E7140525BC55} - (no file)
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O20 - AppInit_DLLs:
O23 - Service: ArcSoft Connect Daemon (ACDaemon) - ArcSoft Inc. - C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\windows\System32\alg.exe (file missing)
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: AVGIDSAgent - AVG Technologies CZ, s.r.o. - C:\Program Files (x86)\AVG\AVG2015\avgidsagent.exe
O23 - Service: AVG Service (avgsvc) - AVG Technologies CZ, s.r.o. - C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe
O23 - Service: AVG WatchDog (avgwd) - AVG Technologies CZ, s.r.o. - C:\Program Files (x86)\AVG\AVG2015\avgwdsvc.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\windows\SysWow64\IntelCpHeciSvc.exe
O23 - Service: DCService.exe - Unknown owner - C:\ProgramData\DatacardService\DCService.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\windows\system32\fxssvc.exe (file missing)
O23 - Service: Garmin Device Interaction Service - Garmin Ltd. or its subsidiaries - C:\Program Files (x86)\Garmin\Device Interaction Service\GarminService.exe
O23 - Service: GFNEX Service (GFNEXSrv) - Unknown owner - C:\Windows\System32\GFNEXSrv.exe (file missing)
O23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Update Service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) ME Service - Unknown owner - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\windows\system32\sppsvc.exe (file missing)
O23 - Service: Notebook Performance Tuning Service (TEMPRO) (TemproMonitoringService) - Toshiba Europe GmbH - C:\Program Files (x86)\Toshiba TEMPRO\TemproSvc.exe
O23 - Service: TMachInfo - TOSHIBA Corporation - C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe
O23 - Service: TOSHIBA Optical Disc Drive Service (TODDSrv) - Unknown owner - C:\windows\system32\TODDSrv.exe (file missing)
O23 - Service: TOSHIBA Power Saver (TosCoSrv) - TOSHIBA Corporation - C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe
O23 - Service: TOSHIBA Bluetooth Service - TOSHIBA CORPORATION - C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe
O23 - Service: TOSHIBA eco Utility Service - TOSHIBA Corporation - C:\Program Files\TOSHIBA\TECO\TecoService.exe
O23 - Service: TOSHIBA HDD SSD Alert Service - TOSHIBA Corporation - C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe
O23 - Service: TPCH Service (TPCHSrv) - TOSHIBA Corporation - C:\Program Files\TOSHIBA\TPHM\TPCHSrv.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\windows\system32\UI0Detect.exe (file missing)
O23 - Service: Ulead Burning Helper (UleadBurningHelper) - Ulead Systems, Inc. - C:\Program Files (x86)\Common Files\Ulead Systems\DVD\ULCDRSvr.exe
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 12680 bytes

======Listing Processes======



\SystemRoot\System32\smss.exe
c:\PROGRA~2\AVG\AVG2015\avgrsa.exe /boot
C:\Program Files (x86)\AVG\AVG2015\avgcsrva.exe /pipeName=c2feea3f-0200-0000-3a5d-5b5acd20eb68 /binaryPath="C:\Program Files (x86)\AVG\AVG2015\"
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\windows\system32\services.exe
C:\windows\system32\lsass.exe
C:\windows\system32\lsm.exe
C:\windows\system32\svchost.exe -k DcomLaunch
C:\windows\system32\svchost.exe -k RPCSS
winlogon.exe
C:\windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\windows\system32\svchost.exe -k LocalService
C:\windows\system32\svchost.exe -k netsvcs

C:\windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\GFNEXSrv.exe
C:\windows\System32\spoolsv.exe
C:\windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
taskeng.exe {8C45C503-B5C7-4FD2-BEEB-87846819278C}
C:\windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe"
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe"
"taskhost.exe"
"C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /c
"C:\windows\system32\Dwm.exe"
"C:\Program Files (x86)\AVG\AVG2015\avgidsagent.exe"
C:\windows\Explorer.EXE
"C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe"
"C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe" --domain-id 4e00205a-2ab1-4423-8f77-cc25b82cde1d --caller winlogon
"C:\Program Files (x86)\AVG\AVG2015\avgwdsvc.exe"
C:\ProgramData\DatacardService\DCService.exe
C:\windows\System32\svchost.exe -k utcsvc
"C:\ProgramData\DatacardService\DCSHelper.exe"
"C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\ismagent.exe" --domain-id 4e00205a-2ab1-4423-8f77-cc25b82cde1d
"C:\Program Files (x86)\Garmin\Device Interaction Service\GarminService.exe"
"C:\Program Files (x86)\AVG\AVG2015\avgnsa.exe"
"C:\Program Files (x86)\AVG\AVG2015\avgemca.exe"
"C:\windows\system32\GWX\GWX.exe"
"C:\Program Files\Intel\iCLS Client\HeciServer.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe"
"C:\Program Files (x86)\Skype\Updater\Updater.exe"
C:\windows\system32\svchost.exe -k imgsvc
C:\windows\system32\TODDSrv.exe
"C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe"
"C:\Program Files (x86)\Common Files\Ulead Systems\DVD\ULCDRSvr.exe"
"C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE"
"C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe"
WLIDSvcM.exe 4116
"C:\Program Files\TOSHIBA\TECO\TecoService.exe"
C:\windows\system32\wbem\wmiprvse.exe
C:\windows\system32\wbem\wmiprvse.exe
C:\windows\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE"
C:\windows\system32\sppsvc.exe
C:\windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\windows\servicing\TrustedInstaller.exe
C:\windows\System32\rundll32.exe shell32.dll,SHCreateLocalServerRunDll {995C996E-D918-4a8c-A302-45719A6F4EA7} -Embedding
C:\windows\system32\SearchIndexer.exe /Embedding
"C:\windows\notepad.exe" C:\_OTM\MovedFiles\06242016_214435.log
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files\SRS Labs\SRS Control Panel\SRSPanel_64.exe" /f="C:\Program Files\SRS Labs\SRS Control Panel\SRS_Premium_Sound_HD.zip" /h
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
"C:\Program Files\TOSHIBA\Power Saver\TPwrMain.exe"
"C:\Program Files\TOSHIBA\FlashCards\TCrdMain.exe"
"C:\Program Files\TOSHIBA\TECO\Teco.exe" /r
"C:\windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe1_ Global\UsGthrCtrlFltPipeMssGthrPipe1 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\windows\system32\SearchFilterHost.exe" 0 520 524 532 65536 528
"C:\Program Files\TOSHIBA\TPHM\TosWaitSrv.exe"
"C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosWaitSrv.exe"
"C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE"
"C:\Program Files\TOSHIBA\TosVolRegulator\TosVolRegulator.exe"
"C:\Program Files (x86)\Toshiba TEMPRO\TemproTray.exe"
"C:\Windows\System32\igfxtray.exe"
"C:\Windows\System32\hkcmd.exe"
"C:\Windows\System32\igfxpers.exe"
"C:\Users\Vladko\AppData\Local\Google\Update\GoogleUpdate.exe" /c
"C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtMng.exe"
"C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
"C:\Program Files\TOSHIBA\TOSHIBA Places Icon Utility\TosDIMonitor.exe"
"C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\ToshibaServiceStation.exe" /hide:60
"C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe"
/TRAYONLY
ArcCon.ac 66150 0
/fmw.trayonly
"C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe"
"C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\\TosA2dp.exe"
"C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\\TosBtHid.exe"
"C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\\TosBtHsp.exe"
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
C:\windows\System32\svchost.exe -k LocalServicePeerNet
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=crashpad-handler /prefetch:7 --no-rate-limit "--database=C:\Users\Vladko\AppData\Local\Google\Chrome\User Data\Crashpad" --url=https://clients2.google.com/cr/report --annotation=channel=m --annotation=plat=Win64 --annotation=prod=Chrome --annotation=ver=51.0.2704.103 --handshake-handle=0xb8
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,IncidentReportingModuleLoadAnalysis<SafeBrowsingIncidentReportingServiceFeatures,IncidentReportingSuspiciousModuleReporting<SafeBrowsingIncidentReportingServiceFeatures,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup,UsePasswordSeparatedSigninFlow<PasswordSeparatedSigninFlow,WebFontsIntervention<WebFontsIntervention,*WebRTC-EnableWebRtcEcdsa<WebRTC-EnableWebRtcEcdsa,brotli-encoding<BrotliEncoding --disable-features=DocumentWriteEvaluator<DisallowFetchForDocWrittenScriptsInMainFrame,RenderingPipelineThrottling<RenderingPipelineThrottling --force-fieldtrials=AppBannerTriggering/Aggressive/AutofillProfileOrderByFrecency/Enabled/AutomaticTabDiscarding/Enabled_Once_10-gen2/*BrotliEncoding/Enabled/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/ClientSideDetectionModel/Model0/DirectWriteFontProxy/UseDirectWriteFontProxy/DisallowFetchForDocWrittenScriptsInMainFrame/Default/EnableMediaRouter/Disabled/ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*GFE/Default/GoogleBrandedContextMenu/default/InstanceID/Enabled/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/OmniboxBundledExperimentV1/Unused_2/OutOfProcessPac/Default/PasswordBranding/Disabled/*PasswordGeneration/Disabled/PasswordManagerSettingsMigration/Disable/PasswordSeparatedSigninFlow/Enabled/PreRead/Default/*QUIC/EnabledNoId/RenderingPipelineThrottling/Disabled/ReportCertificateErrors/ShowAndPossiblySend/ResourcePriorities/Control50Permanent/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/SSLCommonNameMismatchHandling/Control/SafeBrowsingIncidentReportingService/Default/SafeBrowsingIncidentReportingServiceFeatures/WithSuspiciousModuleReporting/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/SyncHttpContentCompression/Enabled/TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_55/*UMA-Uniformity-Trial-10-Percent/default/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/default/*UMA-Uniformity-Trial-5-Percent/group_09/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/WebFontsIntervention/Enabled/WebRTC-EnableWebRtcEcdsa/Default/ --type=gpu-process --channel="2544.0.203601874\657932915" --disable-d3d11 --disable-direct-composition --supports-dual-gpus=false --gpu-driver-bug-workarounds=4,10,12,13,25,46,54 --gpu-vendor-id=0x8086 --gpu-device-id=0x0116 --gpu-driver-vendor="Intel Corporation" --gpu-driver-version=8.15.10.2752 --mojo-platform-channel-handle=1044 --ignored=" --type=renderer " /prefetch:2
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,IncidentReportingModuleLoadAnalysis<SafeBrowsingIncidentReportingServiceFeatures,IncidentReportingSuspiciousModuleReporting<SafeBrowsingIncidentReportingServiceFeatures,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup,UsePasswordSeparatedSigninFlow<PasswordSeparatedSigninFlow,WebFontsIntervention<WebFontsIntervention,*WebRTC-EnableWebRtcEcdsa<WebRTC-EnableWebRtcEcdsa,brotli-encoding<BrotliEncoding --disable-features=DocumentWriteEvaluator<DisallowFetchForDocWrittenScriptsInMainFrame,RenderingPipelineThrottling<RenderingPipelineThrottling --force-fieldtrials=AppBannerTriggering/Aggressive/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_10-gen2/*BrotliEncoding/Enabled/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/*ClientSideDetectionModel/Model0/DirectWriteFontProxy/UseDirectWriteFontProxy/DisallowFetchForDocWrittenScriptsInMainFrame/Default/*EnableMediaRouter/Disabled/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*GFE/Default/GoogleBrandedContextMenu/default/InstanceID/Enabled/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Unused_2/*OutOfProcessPac/Default/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*PasswordManagerSettingsMigration/Disable/PasswordSeparatedSigninFlow/Enabled/PreRead/Default/*QUIC/EnabledNoId/RenderingPipelineThrottling/Disabled/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Control50Permanent/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/SSLCommonNameMismatchHandling/Control/*SafeBrowsingIncidentReportingService/Default/*SafeBrowsingIncidentReportingServiceFeatures/WithSuspiciousModuleReporting/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/SyncHttpContentCompression/Enabled/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_55/*UMA-Uniformity-Trial-10-Percent/default/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/default/*UMA-Uniformity-Trial-5-Percent/group_09/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/WebFontsIntervention/Enabled/WebRTC-EnableWebRtcEcdsa/Default/ --primordial-pipe-token=0C6BAF64EFA12AAB9F9B9FEAE60FD691 --lang=sk --instant-process --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --channel="2544.1.2038898513\2023859010" --mojo-platform-channel-handle=1664 /prefetch:1
C:\windows\system32\DllHost.exe /Processid:{30D49246-D217-465F-B00B-AC9DDD652EB7}
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,IncidentReportingModuleLoadAnalysis<SafeBrowsingIncidentReportingServiceFeatures,IncidentReportingSuspiciousModuleReporting<SafeBrowsingIncidentReportingServiceFeatures,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup,UsePasswordSeparatedSigninFlow<PasswordSeparatedSigninFlow,WebFontsIntervention<WebFontsIntervention,*WebRTC-EnableWebRtcEcdsa<WebRTC-EnableWebRtcEcdsa,brotli-encoding<BrotliEncoding --disable-features=DocumentWriteEvaluator<DisallowFetchForDocWrittenScriptsInMainFrame,RenderingPipelineThrottling<RenderingPipelineThrottling --force-fieldtrials=AppBannerTriggering/Aggressive/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_10-gen2/*BrotliEncoding/Enabled/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/*ClientSideDetectionModel/Model0/DirectWriteFontProxy/UseDirectWriteFontProxy/*DisallowFetchForDocWrittenScriptsInMainFrame/Default/*EnableMediaRouter/Disabled/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*GFE/Default/GoogleBrandedContextMenu/default/InstanceID/Enabled/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Unused_2/*OutOfProcessPac/Default/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*PasswordManagerSettingsMigration/Disable/PasswordSeparatedSigninFlow/Enabled/*PreRead/Default/*QUIC/EnabledNoId/*RenderingPipelineThrottling/Disabled/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Control50Permanent/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/SSLCommonNameMismatchHandling/Control/*SafeBrowsingIncidentReportingService/Default/*SafeBrowsingIncidentReportingServiceFeatures/WithSuspiciousModuleReporting/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/SyncHttpContentCompression/Enabled/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_55/*UMA-Uniformity-Trial-10-Percent/default/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/default/*UMA-Uniformity-Trial-5-Percent/group_09/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/*WebFontsIntervention/Enabled/WebRTC-EnableWebRtcEcdsa/Default/ --primordial-pipe-token=8C7C456BBE3688DFB9DFBA427CD41CA6 --lang=sk --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --channel="2544.13.229873226\959087888" --mojo-platform-channel-handle=3252 /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,IncidentReportingModuleLoadAnalysis<SafeBrowsingIncidentReportingServiceFeatures,IncidentReportingSuspiciousModuleReporting<SafeBrowsingIncidentReportingServiceFeatures,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup,UsePasswordSeparatedSigninFlow<PasswordSeparatedSigninFlow,WebFontsIntervention<WebFontsIntervention,*WebRTC-EnableWebRtcEcdsa<WebRTC-EnableWebRtcEcdsa,brotli-encoding<BrotliEncoding --disable-features=DocumentWriteEvaluator<DisallowFetchForDocWrittenScriptsInMainFrame,RenderingPipelineThrottling<RenderingPipelineThrottling --force-fieldtrials=AppBannerTriggering/Aggressive/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_10-gen2/*BrotliEncoding/Enabled/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/*ClientSideDetectionModel/Model0/DirectWriteFontProxy/UseDirectWriteFontProxy/*DisallowFetchForDocWrittenScriptsInMainFrame/Default/*EnableMediaRouter/Disabled/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*GFE/Default/GoogleBrandedContextMenu/default/InstanceID/Enabled/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Unused_2/*OutOfProcessPac/Default/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*PasswordManagerSettingsMigration/Disable/PasswordSeparatedSigninFlow/Enabled/*PreRead/Default/*QUIC/EnabledNoId/*RenderingPipelineThrottling/Disabled/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Control50Permanent/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/SSLCommonNameMismatchHandling/Control/*SafeBrowsingIncidentReportingService/Default/*SafeBrowsingIncidentReportingServiceFeatures/WithSuspiciousModuleReporting/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/SyncHttpContentCompression/Enabled/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_55/*UMA-Uniformity-Trial-10-Percent/default/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/default/*UMA-Uniformity-Trial-5-Percent/group_09/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/*WebFontsIntervention/Enabled/WebRTC-EnableWebRtcEcdsa/Default/ --primordial-pipe-token=4EAB4EF403401591F4FCF87281D54C48 --lang=sk --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --channel="2544.14.1392104480\286512653" --mojo-platform-channel-handle=3240 /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,IncidentReportingModuleLoadAnalysis<SafeBrowsingIncidentReportingServiceFeatures,IncidentReportingSuspiciousModuleReporting<SafeBrowsingIncidentReportingServiceFeatures,UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup,UsePasswordSeparatedSigninFlow<PasswordSeparatedSigninFlow,WebFontsIntervention<WebFontsIntervention,*WebRTC-EnableWebRtcEcdsa<WebRTC-EnableWebRtcEcdsa,brotli-encoding<BrotliEncoding --disable-features=DocumentWriteEvaluator<DisallowFetchForDocWrittenScriptsInMainFrame,RenderingPipelineThrottling<RenderingPipelineThrottling --force-fieldtrials=AppBannerTriggering/Aggressive/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_10-gen2/*BrotliEncoding/Enabled/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/*ClientSideDetectionModel/Model0/DirectWriteFontProxy/UseDirectWriteFontProxy/*DisallowFetchForDocWrittenScriptsInMainFrame/Default/*EnableMediaRouter/Disabled/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*GFE/Default/GoogleBrandedContextMenu/default/InstanceID/Enabled/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Unused_2/*OutOfProcessPac/Default/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*PasswordManagerSettingsMigration/Disable/PasswordSeparatedSigninFlow/Enabled/*PreRead/Default/*QUIC/EnabledNoId/*RenderingPipelineThrottling/Disabled/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Control50Permanent/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/SSLCommonNameMismatchHandling/Control/*SafeBrowsingIncidentReportingService/Default/*SafeBrowsingIncidentReportingServiceFeatures/WithSuspiciousModuleReporting/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/SyncHttpContentCompression/Enabled/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_55/*UMA-Uniformity-Trial-10-Percent/default/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/default/*UMA-Uniformity-Trial-5-Percent/group_09/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/*WebFontsIntervention/Enabled/WebRTC-EnableWebRtcEcdsa/Default/ --primordial-pipe-token=45A6DFC22E708997551D6F59F9AE00E1 --lang=sk --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --channel="2544.16.1151861529\1328166484" --mojo-platform-channel-handle=3016 /prefetch:1
"C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe"
ctfmon.exe
"C:\Users\Vladko\Downloads\RSITx64.exe"
C:\windows\system32\DllHost.exe /Processid:{F9717507-6651-4EDB-BFF7-AE615179BCCF}

======Scheduled tasks folder======

C:\windows\tasks\Adobe Flash Player PPAPI Notifier.job - C:\windows\SysWOW64\Macromed\Flash\FlashUtil32_22_0_0_192_pepper.exe -check pepperplugin
C:\windows\tasks\Adobe Flash Player Updater.job - C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\windows\tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d-Logon.job - C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe --domain-id 4e00205a-2ab1-4423-8f77-cc25b82cde1d --caller winlogon-impersonate
C:\windows\tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d.job - C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe --domain-id 4e00205a-2ab1-4423-8f77-cc25b82cde1d --caller scheduler-impersonate

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2011-03-29 529280]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F3C88694-EFFA-4d78-B409-54B7B2535B14}]
TOSHIBA Media Controller Plug-in - C:\Program Files (x86)\TOSHIBA\TOSHIBA Media Controller Plug-in\x64\TOSHIBAMediaControllerIE.dll [2011-11-03 700800]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre6\bin\ssv.dll [2012-05-13 325408]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2011-03-29 441216]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll [2012-05-13 42272]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F3C88694-EFFA-4d78-B409-54B7B2535B14}]
TOSHIBA Media Controller Plug-in - C:\Program Files (x86)\TOSHIBA\TOSHIBA Media Controller Plug-in\TOSHIBAMediaControllerIE.dll [2011-11-03 534400]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
""= []
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2012-03-16 12459112]
"SRS Premium Sound HD"=C:\Program Files\SRS Labs\SRS Control Panel\SRSPanel_64.exe [2012-03-22 2165120]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2011-12-19 2866960]
"TPwrMain"=C:\Program Files\TOSHIBA\Power Saver\TPwrMain.EXE [2011-09-23 590256]
"TCrdMain"=C:\Program Files\TOSHIBA\FlashCards\TCrdMain.exe [2011-12-14 989056]
"Teco"=C:\Program Files\TOSHIBA\TECO\Teco.exe [2011-11-24 1548208]
"TosWaitSrv"=C:\Program Files\TOSHIBA\TPHM\TosWaitSrv.exe [2011-12-15 712096]
"TosSENotify"=C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosWaitSrv.exe [2011-11-26 710560]
"TosVolRegulator"=C:\Program Files\TOSHIBA\TosVolRegulator\TosVolRegulator.exe [2009-11-11 24376]
"Toshiba TEMPRO"=C:\Program Files (x86)\Toshiba TEMPRO\TemproTray.exe [2011-02-10 1546720]
"Toshiba Registration"=C:\Program Files\TOSHIBA\Registration\ToshibaReminder.exe [2012-05-13 150992]
"IgfxTray"=C:\windows\system32\igfxtray.exe [2012-05-10 170264]
"HotKeysCmds"=C:\windows\system32\hkcmd.exe [2012-05-10 398616]
"Persistence"=C:\windows\system32\igfxpers.exe [2012-05-10 440088]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Google Update"=C:\Users\Vladko\AppData\Local\Google\Update\GoogleUpdate.exe [2015-09-25 144200]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\APSDaemon]
C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [2014-04-23 43848]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\eIDCertPropagator]
C:\Program Files (x86)\eID klient\eIDCertPropagator.exe [2015-11-04 530736]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\eID_klient]
C:\Program Files (x86)\eID klient\eID_klient.exe [2016-01-05 6347680]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GarminExpressTrayApp]
C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe [2016-01-28 1403304]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\iTunesHelper]
C:\Program Files (x86)\iTunes\iTunesHelper.exe [2014-05-26 152392]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NBAgent]
C:\Program Files (x86)\Nero\Nero 11\Nero BackItUp\NBAgent.exe /WinStart []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WinampAgent]
C:\Program Files (x86)\Winamp\winampa.exe [2010-12-02 74752]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WinFast Schedule]
C:\Program Files\WinFast\WFDTV\WFWIZ.exe [2008-06-20 2887680]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WinFastDTV]
C:\Program Files\WinFast\WFDTV\DTVSchdl.exe [2008-07-11 90112]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^eOne Client.lnk]
C:\PROGRA~2\SECURE~1\ENCRYP~1\Client\smdaemon.exe [2014-01-07 1358848]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"USB3MON"=C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [2012-01-05 291608]
"ToshibaServiceStation"=C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\ToshibaServiceStation.exe [2011-07-12 1298816]
"ArcSoft Connection Service"=C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe [2010-10-27 207424]
"AVG_UI"=C:\Program Files (x86)\AVG\AVG2015\avuirunnerx.exe [2016-06-20 25496]
"AvgUi"=C:\Program Files (x86)\AVG\Framework\Common\avguirnx.exe [2016-06-21 186640]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Bluetooth Manager.lnk - C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtMng.exe
Toshiba Places Icon Utility.lnk - C:\Program Files\TOSHIBA\TOSHIBA Places Icon Utility\TosDIMonitor.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"=" "

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\windows\system32\igfxdev.dll [2012-05-10 436224]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MCODS]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"wave5"=wdmaud.drv
"mixer5"=wdmaud.drv
"wave7"=wdmaud.drv
"mixer7"=wdmaud.drv
"wave6"=wdmaud.drv
"mixer6"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - %SystemRoot%\SysWow64\CScript.exe "%1" %*
.vbs - open - %SystemRoot%\SysWow64\CScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2016-06-24 21:44:35 ----D---- C:\_OTM
2016-06-24 16:11:40 ----D---- C:\rsit
2016-06-24 16:11:40 ----D---- C:\Program Files\trend micro
2016-06-22 17:59:06 ----A---- C:\windows\SYSWOW64\tzres.dll
2016-06-22 17:59:06 ----A---- C:\windows\system32\tzres.dll
2016-06-22 17:59:02 ----A---- C:\windows\system32\drivers\srv2.sys
2016-06-22 17:59:02 ----A---- C:\windows\system32\drivers\srv.sys
2016-06-22 17:59:02 ----A---- C:\windows\system32\drivers\cng.sys
2016-06-22 17:59:01 ----A---- C:\windows\SYSWOW64\wdigest.dll
2016-06-22 17:59:01 ----A---- C:\windows\SYSWOW64\TSpkg.dll
2016-06-22 17:59:01 ----A---- C:\windows\SYSWOW64\sspicli.dll
2016-06-22 17:59:01 ----A---- C:\windows\SYSWOW64\schannel.dll
2016-06-22 17:59:01 ----A---- C:\windows\SYSWOW64\secur32.dll
2016-06-22 17:59:01 ----A---- C:\windows\SYSWOW64\rpchttp.dll
2016-06-22 17:59:01 ----A---- C:\windows\SYSWOW64\rpcrt4.dll
2016-06-22 17:59:01 ----A---- C:\windows\SYSWOW64\ncrypt.dll
2016-06-22 17:59:01 ----A---- C:\windows\SYSWOW64\msv1_0.dll
2016-06-22 17:59:01 ----A---- C:\windows\SYSWOW64\msobjs.dll
2016-06-22 17:59:01 ----A---- C:\windows\SYSWOW64\msaudite.dll
2016-06-22 17:59:01 ----A---- C:\windows\SYSWOW64\kerberos.dll
2016-06-22 17:59:01 ----A---- C:\windows\SYSWOW64\cryptbase.dll
2016-06-22 17:59:01 ----A---- C:\windows\SYSWOW64\credssp.dll
2016-06-22 17:59:01 ----A---- C:\windows\SYSWOW64\certcli.dll
2016-06-22 17:59:01 ----A---- C:\windows\SYSWOW64\bcryptprimitives.dll
2016-06-22 17:59:01 ----A---- C:\windows\SYSWOW64\auditpol.exe
2016-06-22 17:59:01 ----A---- C:\windows\SYSWOW64\adtschema.dll
2016-06-22 17:59:01 ----A---- C:\windows\system32\wdigest.dll
2016-06-22 17:59:01 ----A---- C:\windows\system32\TSpkg.dll
2016-06-22 17:59:01 ----A---- C:\windows\system32\sspisrv.dll
2016-06-22 17:59:01 ----A---- C:\windows\system32\sspicli.dll
2016-06-22 17:59:01 ----A---- C:\windows\system32\schannel.dll
2016-06-22 17:59:01 ----A---- C:\windows\system32\secur32.dll
2016-06-22 17:59:01 ----A---- C:\windows\system32\rpchttp.dll
2016-06-22 17:59:01 ----A---- C:\windows\system32\rpcrt4.dll
2016-06-22 17:59:01 ----A---- C:\windows\system32\ncrypt.dll
2016-06-22 17:59:01 ----A---- C:\windows\system32\msv1_0.dll
2016-06-22 17:59:01 ----A---- C:\windows\system32\msobjs.dll
2016-06-22 17:59:01 ----A---- C:\windows\system32\msaudite.dll
2016-06-22 17:59:01 ----A---- C:\windows\system32\lsass.exe
2016-06-22 17:59:01 ----A---- C:\windows\system32\lsasrv.dll
2016-06-22 17:59:01 ----A---- C:\windows\system32\kerberos.dll
2016-06-22 17:59:01 ----A---- C:\windows\system32\drivers\srvnet.sys
2016-06-22 17:59:01 ----A---- C:\windows\system32\drivers\mrxsmb20.sys
2016-06-22 17:59:01 ----A---- C:\windows\system32\drivers\mrxsmb10.sys
2016-06-22 17:59:01 ----A---- C:\windows\system32\drivers\mrxsmb.sys
2016-06-22 17:59:01 ----A---- C:\windows\system32\drivers\ksecpkg.sys
2016-06-22 17:59:01 ----A---- C:\windows\system32\drivers\ksecdd.sys
2016-06-22 17:59:01 ----A---- C:\windows\system32\cryptbase.dll
2016-06-22 17:59:01 ----A---- C:\windows\system32\credssp.dll
2016-06-22 17:59:01 ----A---- C:\windows\system32\certcli.dll
2016-06-22 17:59:01 ----A---- C:\windows\system32\bcryptprimitives.dll
2016-06-22 17:59:01 ----A---- C:\windows\system32\auditpol.exe
2016-06-22 17:59:01 ----A---- C:\windows\system32\adtschema.dll
2016-06-22 17:58:52 ----A---- C:\windows\system32\appraiser.dll
2016-06-22 17:58:52 ----A---- C:\windows\system32\aeinv.dll
2016-06-22 17:58:51 ----A---- C:\windows\system32\invagent.dll
2016-06-22 17:58:51 ----A---- C:\windows\system32\generaltel.dll
2016-06-22 17:58:51 ----A---- C:\windows\system32\devinv.dll
2016-06-22 17:58:51 ----A---- C:\windows\system32\CompatTelRunner.exe
2016-06-22 17:58:51 ----A---- C:\windows\system32\centel.dll
2016-06-22 17:58:51 ----A---- C:\windows\system32\acmigration.dll
2016-06-22 17:58:50 ----A---- C:\windows\SYSWOW64\StructuredQuery.dll
2016-06-22 17:58:50 ----A---- C:\windows\SYSWOW64\lpk.dll
2016-06-22 17:58:50 ----A---- C:\windows\SYSWOW64\fontsub.dll
2016-06-22 17:58:50 ----A---- C:\windows\SYSWOW64\dciman32.dll
2016-06-22 17:58:50 ----A---- C:\windows\SYSWOW64\atmlib.dll
2016-06-22 17:58:50 ----A---- C:\windows\SYSWOW64\atmfd.dll
2016-06-22 17:58:50 ----A---- C:\windows\system32\StructuredQuery.dll
2016-06-22 17:58:50 ----A---- C:\windows\system32\lpk.dll
2016-06-22 17:58:50 ----A---- C:\windows\system32\fontsub.dll
2016-06-22 17:58:50 ----A---- C:\windows\system32\dciman32.dll
2016-06-22 17:58:50 ----A---- C:\windows\system32\atmlib.dll
2016-06-22 17:58:50 ----A---- C:\windows\system32\atmfd.dll
2016-06-22 17:58:49 ----A---- C:\windows\system32\win32k.sys
2016-06-22 17:58:48 ----A---- C:\windows\SYSWOW64\ws2_32.dll
2016-06-22 17:58:48 ----A---- C:\windows\SYSWOW64\winhttp.dll
2016-06-22 17:58:48 ----A---- C:\windows\SYSWOW64\netbtugc.exe
2016-06-22 17:58:48 ----A---- C:\windows\SYSWOW64\mswsock.dll
2016-06-22 17:58:48 ----A---- C:\windows\system32\ws2_32.dll
2016-06-22 17:58:48 ----A---- C:\windows\system32\winhttp.dll
2016-06-22 17:58:48 ----A---- C:\windows\system32\netbtugc.exe
2016-06-22 17:58:48 ----A---- C:\windows\system32\mswsock.dll
2016-06-22 17:58:48 ----A---- C:\windows\system32\drivers\netbt.sys
2016-06-22 17:58:46 ----A---- C:\windows\system32\IPSECSVC.DLL
2016-06-22 17:58:46 ----A---- C:\windows\system32\gpsvc.dll
2016-06-22 17:58:45 ----A---- C:\windows\SYSWOW64\winipsec.dll
2016-06-22 17:58:45 ----A---- C:\windows\SYSWOW64\polstore.dll
2016-06-22 17:58:45 ----A---- C:\windows\SYSWOW64\gpapi.dll
2016-06-22 17:58:45 ----A---- C:\windows\SYSWOW64\FwRemoteSvr.dll
2016-06-22 17:58:45 ----A---- C:\windows\system32\winipsec.dll
2016-06-22 17:58:45 ----A---- C:\windows\system32\polstore.dll
2016-06-22 17:58:45 ----A---- C:\windows\system32\gpapi.dll
2016-06-22 17:58:45 ----A---- C:\windows\system32\FwRemoteSvr.dll
2016-06-22 17:58:41 ----A---- C:\windows\SYSWOW64\gdi32.dll
2016-06-22 17:58:41 ----A---- C:\windows\system32\gdi32.dll
2016-06-22 17:58:40 ----A---- C:\windows\SYSWOW64\webio.dll
2016-06-22 17:58:40 ----A---- C:\windows\system32\webio.dll
2016-06-22 17:58:36 ----A---- C:\windows\system32\shell32.dll
2016-06-22 17:58:34 ----A---- C:\windows\SYSWOW64\shell32.dll
2016-06-22 17:58:34 ----A---- C:\windows\explorer.exe
2016-06-22 17:58:33 ----A---- C:\windows\SYSWOW64\ExplorerFrame.dll
2016-06-22 17:58:33 ----A---- C:\windows\SYSWOW64\explorer.exe
2016-06-22 17:58:33 ----A---- C:\windows\system32\ExplorerFrame.dll
2016-06-22 17:58:23 ----A---- C:\windows\system32\authui.dll
2016-06-22 17:58:22 ----A---- C:\windows\SYSWOW64\msi.dll
2016-06-22 17:58:22 ----A---- C:\windows\system32\msi.dll
2016-06-22 17:58:22 ----A---- C:\windows\system32\consent.exe
2016-06-22 17:58:21 ----A---- C:\windows\SYSWOW64\authui.dll
2016-06-22 17:58:21 ----A---- C:\windows\system32\appinfo.dll
2016-06-22 17:58:20 ----A---- C:\windows\SYSWOW64\msimsg.dll
2016-06-22 17:58:20 ----A---- C:\windows\SYSWOW64\msihnd.dll
2016-06-22 17:58:20 ----A---- C:\windows\SYSWOW64\msiexec.exe
2016-06-22 17:58:20 ----A---- C:\windows\system32\msimsg.dll
2016-06-22 17:58:20 ----A---- C:\windows\system32\msihnd.dll
2016-06-22 17:58:20 ----A---- C:\windows\system32\msiexec.exe
2016-06-22 17:58:08 ----A---- C:\windows\SYSWOW64\mshtmled.dll
2016-06-22 17:58:08 ----A---- C:\windows\SYSWOW64\inseng.dll
2016-06-22 17:58:08 ----A---- C:\windows\SYSWOW64\iernonce.dll
2016-06-22 17:58:08 ----A---- C:\windows\SYSWOW64\ieetwproxystub.dll
2016-06-22 17:58:08 ----A---- C:\windows\system32\iernonce.dll
2016-06-22 17:58:08 ----A---- C:\windows\system32\ieetwproxystub.dll
2016-06-22 17:58:08 ----A---- C:\windows\system32\ieetwcollector.exe
2016-06-22 17:58:07 ----A---- C:\windows\SYSWOW64\urlmon.dll
2016-06-22 17:58:07 ----A---- C:\windows\SYSWOW64\occache.dll
2016-06-22 17:58:07 ----A---- C:\windows\SYSWOW64\MshtmlDac.dll
2016-06-22 17:58:07 ----A---- C:\windows\SYSWOW64\iedkcs32.dll
2016-06-22 17:58:07 ----A---- C:\windows\system32\inseng.dll
2016-06-22 17:58:07 ----A---- C:\windows\system32\ie4uinit.exe
2016-06-22 17:58:06 ----A---- C:\windows\SYSWOW64\vbscript.dll
2016-06-22 17:58:06 ----A---- C:\windows\SYSWOW64\mshtml.dll
2016-06-22 17:58:06 ----A---- C:\windows\SYSWOW64\msfeeds.dll
2016-06-22 17:58:06 ----A---- C:\windows\SYSWOW64\JavaScriptCollectionAgent.dll
2016-06-22 17:58:06 ----A---- C:\windows\SYSWOW64\dxtrans.dll
2016-06-22 17:58:06 ----A---- C:\windows\system32\JavaScriptCollectionAgent.dll
2016-06-22 17:58:05 ----A---- C:\windows\SYSWOW64\iesetup.dll
2016-06-22 17:58:05 ----A---- C:\windows\SYSWOW64\iertutil.dll
2016-06-22 17:58:05 ----A---- C:\windows\SYSWOW64\ieapfltr.dll
2016-06-22 17:58:05 ----A---- C:\windows\system32\urlmon.dll
2016-06-22 17:58:05 ----A---- C:\windows\system32\occache.dll
2016-06-22 17:58:05 ----A---- C:\windows\system32\ieetwcollectorres.dll
2016-06-22 17:58:05 ----A---- C:\windows\system32\iedkcs32.dll
2016-06-22 17:58:04 ----A---- C:\windows\SYSWOW64\jsproxy.dll
2016-06-22 17:58:04 ----A---- C:\windows\SYSWOW64\jscript9diag.dll
2016-06-22 17:58:04 ----A---- C:\windows\SYSWOW64\jscript.dll
2016-06-22 17:58:04 ----A---- C:\windows\SYSWOW64\ieui.dll
2016-06-22 17:58:04 ----A---- C:\windows\SYSWOW64\ieframe.dll
2016-06-22 17:58:04 ----A---- C:\windows\SYSWOW64\dxtmsft.dll
2016-06-22 17:58:04 ----A---- C:\windows\system32\MsSpellCheckingFacility.exe
2016-06-22 17:58:04 ----A---- C:\windows\system32\msfeeds.dll
2016-06-22 17:58:04 ----A---- C:\windows\system32\dxtrans.dll
2016-06-22 17:58:03 ----A---- C:\windows\system32\iesetup.dll
2016-06-22 17:58:03 ----A---- C:\windows\system32\ieapfltr.dll
2016-06-22 17:58:02 ----A---- C:\windows\SYSWOW64\wininet.dll
2016-06-22 17:58:02 ----A---- C:\windows\SYSWOW64\webcheck.dll
2016-06-22 17:58:02 ----A---- C:\windows\SYSWOW64\mshtmlmedia.dll
2016-06-22 17:58:02 ----A---- C:\windows\SYSWOW64\jscript9.dll
2016-06-22 17:58:02 ----A---- C:\windows\SYSWOW64\ieUnatt.exe
2016-06-22 17:58:02 ----A---- C:\windows\system32\vbscript.dll
2016-06-22 17:58:02 ----A---- C:\windows\system32\iertutil.dll
2016-06-22 17:58:01 ----A---- C:\windows\SYSWOW64\msrating.dll
2016-06-22 17:58:01 ----A---- C:\windows\system32\jsproxy.dll
2016-06-22 17:58:01 ----A---- C:\windows\system32\ieui.dll
2016-06-22 17:58:01 ----A---- C:\windows\system32\dxtmsft.dll
2016-06-22 17:58:00 ----A---- C:\windows\system32\mshtmlmedia.dll
2016-06-22 17:58:00 ----A---- C:\windows\system32\mshtmled.dll
2016-06-22 17:58:00 ----A---- C:\windows\system32\ieframe.dll
2016-06-22 17:57:59 ----A---- C:\windows\system32\webcheck.dll
2016-06-22 17:57:59 ----A---- C:\windows\system32\jscript9diag.dll
2016-06-22 17:57:59 ----A---- C:\windows\system32\jscript9.dll
2016-06-22 17:57:59 ----A---- C:\windows\system32\jscript.dll
2016-06-22 17:57:59 ----A---- C:\windows\system32\ieUnatt.exe
2016-06-22 17:57:58 ----A---- C:\windows\system32\wininet.dll
2016-06-22 17:57:58 ----A---- C:\windows\system32\msrating.dll
2016-06-22 17:57:58 ----A---- C:\windows\system32\MshtmlDac.dll
2016-06-22 17:57:57 ----A---- C:\windows\system32\mshtml.dll
2016-06-21 22:17:22 ----D---- C:\windows\pss
2016-06-20 22:25:29 ----A---- C:\windows\SYSWOW64\FlashPlayerInstaller.exe
2016-06-17 17:55:31 ----A---- C:\windows\system32\jnwmon.dll
2016-06-11 11:33:44 ----A---- C:\windows\system32\drivers\dxgmms1.sys
2016-06-11 11:33:44 ----A---- C:\windows\system32\drivers\dxgkrnl.sys
2016-06-11 11:33:44 ----A---- C:\windows\system32\cdd.dll
2016-06-11 11:33:26 ----A---- C:\windows\SYSWOW64\d3d10level9.dll
2016-06-11 11:33:26 ----A---- C:\windows\system32\d3d10level9.dll
2016-06-11 11:33:23 ----A---- C:\windows\SYSWOW64\InkEd.dll
2016-06-11 11:33:23 ----A---- C:\windows\system32\InkEd.dll
2016-06-11 11:28:55 ----A---- C:\windows\system32\ntoskrnl.exe
2016-06-11 11:28:53 ----A---- C:\windows\SYSWOW64\ntoskrnl.exe
2016-06-11 11:28:53 ----A---- C:\windows\SYSWOW64\ntkrnlpa.exe
2016-06-11 11:28:53 ----A---- C:\windows\SYSWOW64\ntdll.dll
2016-06-11 11:28:52 ----A---- C:\windows\SYSWOW64\KernelBase.dll
2016-06-11 11:28:52 ----A---- C:\windows\SYSWOW64\advapi32.dll
2016-06-11 11:28:52 ----A---- C:\windows\system32\wow64win.dll
2016-06-11 11:28:52 ----A---- C:\windows\system32\wow64.dll
2016-06-11 11:28:52 ----A---- C:\windows\system32\winsrv.dll
2016-06-11 11:28:52 ----A---- C:\windows\system32\srcore.dll
2016-06-11 11:28:52 ----A---- C:\windows\system32\smss.exe
2016-06-11 11:28:52 ----A---- C:\windows\system32\ntdll.dll
2016-06-11 11:28:52 ----A---- C:\windows\system32\KernelBase.dll
2016-06-11 11:28:52 ----A---- C:\windows\system32\kernel32.dll
2016-06-11 11:28:52 ----A---- C:\windows\system32\advapi32.dll
2016-06-11 11:28:51 ----AH---- C:\windows\SYSWOW64\api-ms-win-security-base-l1-1-0.dll
2016-06-11 11:28:51 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-xstate-l1-1-0.dll
2016-06-11 11:28:51 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-util-l1-1-0.dll
2016-06-11 11:28:51 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2016-06-11 11:28:51 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2016-06-11 11:28:51 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-synch-l1-1-0.dll
2016-06-11 11:28:51 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-string-l1-1-0.dll
2016-06-11 11:28:51 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2016-06-11 11:28:51 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-profile-l1-1-0.dll
2016-06-11 11:28:51 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2016-06-11 11:28:51 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2016-06-11 11:28:51 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2016-06-11 11:28:51 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-misc-l1-1-0.dll
2016-06-11 11:28:51 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-memory-l1-1-0.dll
2016-06-11 11:28:51 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2016-06-11 11:28:51 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-localization-l1-1-0.dll
2016-06-11 11:28:51 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2016-06-11 11:28:51 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-io-l1-1-0.dll
2016-06-11 11:28:51 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2016-06-11 11:28:51 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-heap-l1-1-0.dll
2016-06-11 11:28:51 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-handle-l1-1-0.dll
2016-06-11 11:28:51 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-file-l1-1-0.dll
2016-06-11 11:28:51 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-fibers-l1-1-0.dll
2016-06-11 11:28:51 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2016-06-11 11:28:51 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-delayload-l1-1-0.dll
2016-06-11 11:28:51 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-debug-l1-1-0.dll
2016-06-11 11:28:51 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-datetime-l1-1-0.dll
2016-06-11 11:28:51 ----AH---- C:\windows\SYSWOW64\api-ms-win-core-console-l1-1-0.dll
2016-06-11 11:28:51 ----AH---- C:\windows\system32\api-ms-win-security-base-l1-1-0.dll
2016-06-11 11:28:51 ----AH---- C:\windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2016-06-11 11:28:51 ----AH---- C:\windows\system32\api-ms-win-core-util-l1-1-0.dll
2016-06-11 11:28:51 ----AH---- C:\windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2016-06-11 11:28:51 ----AH---- C:\windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2016-06-11 11:28:51 ----AH---- C:\windows\system32\api-ms-win-core-synch-l1-1-0.dll
2016-06-11 11:28:51 ----AH---- C:\windows\system32\api-ms-win-core-string-l1-1-0.dll
2016-06-11 11:28:51 ----AH---- C:\windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2016-06-11 11:28:51 ----AH---- C:\windows\system32\api-ms-win-core-profile-l1-1-0.dll
2016-06-11 11:28:51 ----AH---- C:\windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2016-06-11 11:28:51 ----AH---- C:\windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2016-06-11 11:28:51 ----AH---- C:\windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2016-06-11 11:28:51 ----AH---- C:\windows\system32\api-ms-win-core-misc-l1-1-0.dll
2016-06-11 11:28:51 ----AH---- C:\windows\system32\api-ms-win-core-memory-l1-1-0.dll
2016-06-11 11:28:51 ----AH---- C:\windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2016-06-11 11:28:51 ----AH---- C:\windows\system32\api-ms-win-core-localization-l1-1-0.dll
2016-06-11 11:28:51 ----AH---- C:\windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2016-06-11 11:28:51 ----AH---- C:\windows\system32\api-ms-win-core-io-l1-1-0.dll
2016-06-11 11:28:51 ----AH---- C:\windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2016-06-11 11:28:51 ----AH---- C:\windows\system32\api-ms-win-core-heap-l1-1-0.dll
2016-06-11 11:28:51 ----AH---- C:\windows\system32\api-ms-win-core-handle-l1-1-0.dll
2016-06-11 11:28:51 ----AH---- C:\windows\system32\api-ms-win-core-file-l1-1-0.dll
2016-06-11 11:28:51 ----AH---- C:\windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2016-06-11 11:28:51 ----AH---- C:\windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2016-06-11 11:28:51 ----AH---- C:\windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2016-06-11 11:28:51 ----AH---- C:\windows\system32\api-ms-win-core-debug-l1-1-0.dll
2016-06-11 11:28:51 ----AH---- C:\windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2016-06-11 11:28:51 ----AH---- C:\windows\system32\api-ms-win-core-console-l1-1-0.dll
2016-06-11 11:28:51 ----A---- C:\windows\SYSWOW64\wow32.dll
2016-06-11 11:28:51 ----A---- C:\windows\SYSWOW64\user.exe
2016-06-11 11:28:51 ----A---- C:\windows\SYSWOW64\srclient.dll
2016-06-11 11:28:51 ----A---- C:\windows\SYSWOW64\setup16.exe
2016-06-11 11:28:51 ----A---- C:\windows\SYSWOW64\ntvdm64.dll
2016-06-11 11:28:51 ----A---- C:\windows\SYSWOW64\kernel32.dll
2016-06-11 11:28:51 ----A---- C:\windows\SYSWOW64\instnm.exe
2016-06-11 11:28:51 ----A---- C:\windows\SYSWOW64\appidapi.dll
2016-06-11 11:28:51 ----A---- C:\windows\SYSWOW64\apisetschema.dll
2016-06-11 11:28:51 ----A---- C:\windows\system32\wow64cpu.dll
2016-06-11 11:28:51 ----A---- C:\windows\system32\srclient.dll
2016-06-11 11:28:51 ----A---- C:\windows\system32\setbcdlocale.dll
2016-06-11 11:28:51 ----A---- C:\windows\system32\rstrui.exe
2016-06-11 11:28:51 ----A---- C:\windows\system32\ntvdm64.dll
2016-06-11 11:28:51 ----A---- C:\windows\system32\drivers\appid.sys
2016-06-11 11:28:51 ----A---- C:\windows\system32\csrsrv.dll
2016-06-11 11:28:51 ----A---- C:\windows\system32\conhost.exe
2016-06-11 11:28:51 ----A---- C:\windows\system32\appidsvc.dll
2016-06-11 11:28:51 ----A---- C:\windows\system32\appidpolicyconverter.exe
2016-06-11 11:28:51 ----A---- C:\windows\system32\appidcertstorecheck.exe
2016-06-11 11:28:51 ----A---- C:\windows\system32\appidapi.dll
2016-06-11 11:28:51 ----A---- C:\windows\system32\apisetschema.dll
2016-06-11 11:28:17 ----A---- C:\windows\SYSWOW64\WindowsCodecs.dll
2016-06-11 11:28:17 ----A---- C:\windows\system32\WindowsCodecs.dll

======List of files/folders modified in the last 1 month======

2016-06-24 21:48:41 ----D---- C:\windows\Prefetch
2016-06-24 21:48:38 ----D---- C:\windows\Temp
2016-06-24 21:47:03 ----D---- C:\windows\system32\config
2016-06-24 21:45:15 ----A---- C:\windows\SYSWOW64\log.txt
2016-06-24 21:45:01 ----D---- C:\windows\SysWOW64
2016-06-24 21:44:35 ----D---- C:\windows\Tasks
2016-06-24 21:44:35 ----D---- C:\Program Files (x86)\Google
2016-06-24 18:18:20 ----D---- C:\windows\rescache
2016-06-24 17:23:38 ----D---- C:\windows\winsxs
2016-06-24 17:17:29 ----D---- C:\windows\inf
2016-06-24 17:17:29 ----AD---- C:\windows\System32
2016-06-24 17:17:29 ----A---- C:\windows\system32\PerfStringBackup.INI
2016-06-24 17:10:31 ----D---- C:\ProgramData\MFAData
2016-06-24 17:09:54 ----D---- C:\AdwCleaner
2016-06-24 16:11:40 ----RD---- C:\Program Files
2016-06-24 16:04:17 ----D---- C:\windows\system32\Tasks
2016-06-24 16:04:14 ----RD---- C:\Program Files (x86)
2016-06-24 15:45:46 ----D---- C:\windows\Microsoft.NET
2016-06-24 15:36:46 ----SHD---- C:\windows\Installer
2016-06-24 15:36:45 ----SHD---- C:\Config.Msi
2016-06-22 20:10:35 ----AD---- C:\Windows
2016-06-22 20:00:07 ----SHD---- C:\System Volume Information
2016-06-22 19:22:59 ----D---- C:\windows\SoftwareDistribution
2016-06-22 19:21:21 ----D---- C:\Users\Vladko\AppData\Roaming\Winamp
2016-06-22 19:21:19 ----D---- C:\windows\debug
2016-06-22 19:13:04 ----D---- C:\windows\SYSWOW64\sk-SK
2016-06-22 19:13:04 ----D---- C:\windows\system32\sk-SK
2016-06-22 19:13:02 ----D---- C:\windows\SYSWOW64\en-US
2016-06-22 19:13:02 ----D---- C:\windows\system32\en-US
2016-06-22 19:13:02 ----D---- C:\windows\system32\drivers
2016-06-22 19:13:01 ----D---- C:\windows\system32\wbem
2016-06-22 19:13:01 ----D---- C:\windows\system32\appraiser
2016-06-22 19:13:01 ----D---- C:\windows\AppPatch
2016-06-22 19:12:57 ----D---- C:\windows\sk-SK
2016-06-22 19:12:56 ----D---- C:\Program Files\Internet Explorer
2016-06-22 19:12:55 ----D---- C:\Program Files (x86)\Internet Explorer
2016-06-22 19:12:45 ----D---- C:\Users\Vladko\AppData\Roaming\SoftGrid Client
2016-06-22 19:08:33 ----D---- C:\Users\Vladko\AppData\Roaming\Toshiba
2016-06-22 19:06:03 ----D---- C:\windows\system32\MRT
2016-06-22 19:00:54 ----A---- C:\windows\system32\MRT.exe
2016-06-22 17:56:20 ----D---- C:\windows\system32\catroot2
2016-06-21 22:24:49 ----DC---- C:\windows\system32\DRVSTORE
2016-06-21 22:22:44 ----D---- C:\Program Files (x86)\Nero
2016-06-21 22:15:13 ----D---- C:\Users\Vladko\AppData\Roaming\vlc
2016-06-21 22:08:49 ----D---- C:\windows\ModemLogs
2016-06-21 21:58:15 ----D---- C:\Users\Vladko\AppData\Roaming\SecureMedia
2016-06-20 22:35:12 ----RSD---- C:\windows\assembly
2016-06-20 22:27:52 ----A---- C:\windows\SYSWOW64\FlashPlayerApp.exe
2016-06-19 22:24:08 ----D---- C:\Program Files\Windows Journal
2016-06-19 22:04:24 ----A---- C:\windows\SYSWOW64\PerfStringBackup.INI
2016-06-17 18:39:41 ----SD---- C:\windows\SYSWOW64\GWX
2016-06-17 18:39:41 ----SD---- C:\windows\system32\GWX
2016-06-17 18:39:41 ----D---- C:\windows\ehome
2016-06-17 18:39:34 ----D---- C:\windows\system32\Boot
2016-06-17 18:21:36 ----D---- C:\ProgramData\Package Cache
2016-06-17 18:20:50 ----D---- C:\Program Files (x86)\Garmin
2016-06-17 18:15:10 ----D---- C:\Program Files (x86)\Opera
2016-06-11 11:24:09 ----D---- C:\Users\Vladko\AppData\Roaming\Skype

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 AVGIDSHA;AVGIDSHA; C:\windows\system32\DRIVERS\avgidsha.sys [2016-01-13 299440]
R0 Avgloga;AVG Logging Driver; C:\windows\system32\DRIVERS\avgloga.sys [2015-05-07 378336]
R0 Avgmfx64;AVG Mini-Filter Resident Anti-Virus Shield; C:\windows\system32\DRIVERS\avgmfx64.sys [2016-01-22 255920]
R0 Avgrkx64;AVG Anti-Rootkit Driver; C:\windows\system32\DRIVERS\avgrkx64.sys [2015-03-20 40928]
R0 iaStor;Intel AHCI Controller; C:\windows\system32\DRIVERS\iaStor.sys [2011-11-30 568600]
R0 iusb3hcs;Intel(R) USB 3.0 Host Controller Switch Driver; C:\windows\system32\DRIVERS\iusb3hcs.sys [2012-01-05 16152]
R0 pciide;pciide; C:\windows\system32\drivers\pciide.sys [2009-07-14 12352]
R0 rdyboost;ReadyBoost; C:\windows\System32\drivers\rdyboost.sys [2011-05-23 213888]
R0 tos_sps64;TOSHIBA tos_sps64 Service; C:\windows\system32\DRIVERS\tos_sps64.sys [2009-06-25 482384]
R0 TVALZ;TOSHIBA ACPI-Based Value Added Logical and General Purpose Device Driver; C:\windows\system32\DRIVERS\TVALZ_O.SYS [2009-07-15 26840]
R1 Avgdiska;AVG Disk Driver; C:\windows\system32\DRIVERS\avgdiska.sys [2015-03-11 162784]
R1 AVGIDSDriver;AVGIDSDriver; C:\windows\system32\DRIVERS\avgidsdrivera.sys [2015-12-16 315312]
R1 Avgldx64;AVG AVI Loader Driver; C:\windows\system32\DRIVERS\avgldx64.sys [2015-12-16 296368]
R1 Avgtdia;AVG TDI Driver; C:\windows\system32\DRIVERS\avgtdia.sys [2015-08-04 300464]
R1 avgtp;avgtp; \??\C:\windows\system32\drivers\avgtpx64.sys [2014-09-15 50976]
R1 Tosrfcom;Bluetooth RFCOMM; C:\windows\System32\Drivers\tosrfcom.sys [2010-11-29 82224]
R1 vwififlt;Virtual WiFi Filter Driver; C:\windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 TVALZFL;TOSHIBA ACPI-Based Value Added Logical and General Purpose Device Filter Driver; C:\windows\system32\DRIVERS\TVALZFL.sys [2009-06-20 14472]
R3 Afc;PPdus ASPI Shell; C:\windows\SysWOW64\drivers\Afc.sys [2006-11-14 22784]
R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\windows\system32\DRIVERS\GEARAspiWDM.sys [2012-08-21 33240]
R3 huawei_enumerator;huawei_enumerator; C:\windows\system32\DRIVERS\ew_jubusenum.sys [2010-07-27 86016]
R3 igfx;igfx; C:\windows\system32\DRIVERS\igdkmd64.sys [2012-05-10 14759136]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\windows\system32\drivers\RTKVHD64.sys [2012-03-21 4013928]
R3 IntcDAud;Intel(R) Display Audio; C:\windows\system32\DRIVERS\IntcDAud.sys [2011-12-06 331264]
R3 iusb3hub;Intel(R) USB 3.0 Hub Driver; C:\windows\system32\DRIVERS\iusb3hub.sys [2012-01-05 355096]
R3 iusb3xhc;Intel(R) USB 3.0 eXtensible Host Controller Driver; C:\windows\system32\DRIVERS\iusb3xhc.sys [2012-01-05 786200]
R3 MEIx64;Intel(R) Management Engine Interface ; C:\windows\system32\DRIVERS\HECIx64.sys [2011-11-10 60184]
R3 PGEffect;Pangu effect driver; C:\windows\system32\DRIVERS\pgeffect.sys [2011-02-09 38096]
R3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader; C:\windows\System32\Drivers\RtsUStor.sys [2011-08-17 251496]
R3 RTL8167;Realtek 8167 NT Driver; C:\windows\system32\DRIVERS\Rt64win7.sys [2011-08-24 565352]
R3 RTL8192Ce;Realtek Wireless LAN 802.11n PCI-E NIC Driver; C:\windows\system32\DRIVERS\rtwlane.sys [2012-01-17 1082472]
R3 Sftfs;Sftfs; C:\windows\system32\DRIVERS\Sftfslh.sys [2009-12-02 721768]
R3 Sftplay;Sftplay; C:\windows\system32\DRIVERS\Sftplaylh.sys [2009-12-02 269672]
R3 Sftredir;Sftredir; C:\windows\system32\DRIVERS\Sftredirlh.sys [2009-12-02 25960]
R3 Sftvol;Sftvol; C:\windows\system32\DRIVERS\Sftvollh.sys [2009-12-02 22376]
R3 SynTP;Synaptics TouchPad Driver; C:\windows\system32\DRIVERS\SynTP.sys [2011-12-19 411920]
R3 tdcmdpst;TOSHIBA Writing Engine Filter Driver; C:\windows\system32\DRIVERS\tdcmdpst.sys [2009-07-31 27784]
R3 tosporte;Bluetooth COM Port; C:\windows\system32\DRIVERS\tosporte.sys [2009-06-17 54664]
R3 tosrfec;Bluetooth ACPI; C:\windows\system32\DRIVERS\tosrfec.sys [2010-06-19 18872]
S3 BthEnum;Bluetooth Request Block Driver; C:\windows\system32\drivers\BthEnum.sys [2009-07-14 41984]
S3 BthPan;Bluetooth Device (Personal Area Network); C:\windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
S3 BTHPORT;Bluetooth Port Driver; C:\windows\System32\Drivers\BTHport.sys [2012-07-06 552960]
S3 BTHUSB;Bluetooth Radio USB Driver; C:\windows\System32\Drivers\BTHUSB.sys [2011-04-28 80384]
S3 emAudio;USB EMP Audio Device; C:\windows\system32\drivers\emAudio64.sys [2012-10-14 34304]
S3 EsgScanner;EsgScanner; C:\windows\system32\DRIVERS\EsgScanner.sys [2016-04-10 22704]
S3 ew_hwusbdev;Huawei MobileBroadband USB PNP Device; C:\windows\system32\DRIVERS\ew_hwusbdev.sys [2010-07-27 117248]
S3 GemCCID;GemCCID; C:\windows\system32\DRIVERS\GemCCID.sys [2014-11-10 130944]
S3 huawei_cdcacm;huawei_cdcacm; C:\windows\system32\DRIVERS\ew_jucdcacm.sys [2010-08-24 91648]
S3 IT9135BDA;IT9135 BDA Devices; C:\windows\System32\Drivers\IT9135BDA.sys [2012-10-14 113280]
S3 mod7700;WinFast based TV tuner device; C:\windows\system32\DRIVERS\mod7700.sys [2007-10-11 628480]
S3 MODRC;WinFast TV Dongle With Infrared Receiver; C:\windows\system32\DRIVERS\modrc.sys [2007-07-13 24200]
S3 RFCOMM;Bluetooth Device (RFCOMM Protocol TDI); C:\windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
S3 RtkBtFilter;Realtek Bluetooth Filter Driver; C:\windows\system32\DRIVERS\RtkBtfilter.sys [2012-01-05 21096]
S3 TDEIO;TDEIO; \??\C:\Windows\SysWOW64\sysprep\BOOTPRIO\tdeio64.sys []
S3 tosrfbd;Bluetooth RFBUS; C:\windows\system32\DRIVERS\tosrfbd.sys [2012-01-30 304696]
S3 tosrfbnp;Bluetooth RFBNEP; C:\windows\System32\Drivers\tosrfbnp.sys [2010-11-11 50864]
S3 Tosrfhid;Bluetooth RFHID; C:\windows\system32\DRIVERS\Tosrfhid.sys [2010-08-30 94528]
S3 tosrfnds;Bluetooth Personal Area Network; C:\windows\system32\DRIVERS\tosrfnds.sys [2009-07-24 26472]
S3 TosRfSnd;Bluetooth Audio; C:\windows\system32\drivers\tosrfsnd.sys [2010-04-26 63488]
S3 Tosrfusb;Bluetooth USB Controller; C:\windows\system32\DRIVERS\tosrfusb.sys [2011-12-17 79040]
S3 TsUsbFlt;TsUsbFlt; C:\windows\system32\drivers\tsusbflt.sys [2010-11-21 59392]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\windows\system32\drivers\TsUsbGD.sys [2010-11-21 31232]
S3 ULCDRHlp;ULCDRHlp; C:\windows\System32\Drivers\ULCDRHlp.sys []
S3 USB28xxBGA;USB 2881 Device; C:\windows\system32\DRIVERS\emBDA64.sys [2012-10-14 649728]
S3 USB28xxOEM;USB 28xx OEM Filter; C:\windows\system32\DRIVERS\emOEM64.sys [2012-10-14 626688]
S3 USBAAPL64;Apple Mobile USB Driver; C:\windows\System32\Drivers\usbaapl64.sys [2013-03-18 54784]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 ACDaemon;ArcSoft Connect Daemon; C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [2010-03-18 113152]
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2016-04-22 82128]
R2 Apple Mobile Device;Apple Mobile Device; C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [2014-02-12 43336]
R2 AVGIDSAgent;AVGIDSAgent; C:\Program Files (x86)\AVG\AVG2015\avgidsagent.exe [2016-04-21 3647384]
R2 avgsvc;AVG Service; C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe [2016-06-21 1080080]
R2 avgwd;AVG WatchDog; C:\Program Files (x86)\AVG\AVG2015\avgwdsvc.exe [2016-04-21 336152]
R2 cvhsvc;Client Virtualization Handler; C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE [2010-02-28 821664]
R2 DCService.exe;DCService.exe; C:\ProgramData\DatacardService\DCService.exe [2010-09-29 249856]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\windows\System32\svchost.exe [2011-03-01 27648]
R2 Garmin Device Interaction Service;Garmin Device Interaction Service; C:\Program Files (x86)\Garmin\Device Interaction Service\GarminService.exe [2016-04-08 792592]
R2 GFNEXSrv;GFNEX Service; C:\Windows\System32\GFNEXSrv.exe [2010-09-10 162824]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [2012-02-03 628448]
R2 Intel(R) ME Service;Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [2012-02-21 128280]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2012-02-21 161560]
R2 sftlist;Application Virtualization Client; C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe [2009-12-02 483688]
R2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2016-01-29 327296]
R2 TODDSrv;TOSHIBA Optical Disc Drive Service; C:\windows\system32\TODDSrv.exe [2010-10-20 138656]
R2 TosCoSrv;TOSHIBA Power Saver; C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe [2011-12-16 583088]
R2 TOSHIBA eco Utility Service;TOSHIBA eco Utility Service; C:\Program Files\TOSHIBA\TECO\TecoService.exe [2011-11-24 294848]
R2 UleadBurningHelper;Ulead Burning Helper; C:\Program Files (x86)\Common Files\Ulead Systems\DVD\ULCDRSvr.exe [2004-12-13 49152]
R3 sftvsa;Application Virtualization Service Agent; C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe [2009-12-02 209768]
R3 TMachInfo;TMachInfo; C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe [2011-07-12 57216]
R3 TOSHIBA Bluetooth Service;TOSHIBA Bluetooth Service; C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe [2011-04-02 198064]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2015-11-05 105144]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2015-11-05 125112]
S2 gupdate;Google Update Service (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-09-25 144200]
S2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2012-02-29 277784]
S2 UNS;Intel(R) Management and Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2012-02-29 363800]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-06-20 270016]
S3 cphs;Intel(R) Content Protection HECI Service; C:\windows\SysWow64\IntelCpHeciSvc.exe [2012-05-10 276248]
S3 gupdatem;Google Update Service (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-09-25 144200]
S3 gusvc;Google Software Updater; C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe [2012-10-02 194032]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\windows\system32\IEEtwCollector.exe [2016-05-20 114688]
S3 iPod Service;iPod Service; C:\Program Files\iPod\bin\iPodService.exe [2014-05-26 641352]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352]
S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]
S3 TemproMonitoringService;Notebook Performance Tuning Service (TEMPRO); C:\Program Files (x86)\Toshiba TEMPRO\TemproSvc.exe [2011-02-10 112080]
S3 TOSHIBA HDD SSD Alert Service;TOSHIBA HDD SSD Alert Service; C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe [2011-11-26 138152]
S3 TPCHSrv;TPCH Service; C:\Program Files\TOSHIBA\TPHM\TPCHSrv.exe [2011-12-15 833976]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\windows\system32\Wat\WatAdminSvc.exe [2012-10-03 1255736]
S4 aspnet_state;ASP.NET State Service; C:\windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2015-11-05 51376]
S4 NetMsmqActivator;@C:\windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2015-11-05 135848]
S4 NetPipeActivator;@C:\windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2015-11-05 135848]
S4 NetTcpActivator;@C:\windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2015-11-05 135848]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118275
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosim o kontrolu logu

#6 Příspěvek od Rudy »

Smazáno. Znovu spusťte OTM a klikněte na >CleanUp!<. OTM po sobě uklidí. Nakonec restartujte PC. Nastala nějaká změna?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

ertenkanz
Návštěvník
Návštěvník
Příspěvky: 11
Registrován: 12 dub 2015 13:50

Re: Prosim o kontrolu logu

#7 Příspěvek od ertenkanz »

super, mal som pocit ze sa PC zrychlilo uz pocas jednotlivych krokov

DAKUJEM :)

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118275
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosim o kontrolu logu

#8 Příspěvek od Rudy »

Nemáte zač! :)
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Zamčeno