Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
Vytížený procesor
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Vytížený procesor
Dobrý den,
prosím o radu, nedávno jsem si všiml, že mi něco vytěžuje procesor i při nečinnosti počítače na 50-60%. Po otevření správce úloh, nebo sledování prostředků ten problém okamžitě zmizí. Nicméně se mi podařilo udělět v tom krátkém okamžiku screen. Ten proces jménem Attribute Utility je tam vidět, ale nestačím o něm nic zjistit a na googlu jsem taky nic nenašel. Adw Cleaner ani Win Defendr nic nedetekují a tím taky končí mé odborné znalosti v oblasti PC. Podle instrukcí přikládám log, třeba se dozvím i něco dalšího
Aha, můj log. je o 4467 znaků delší než můžu odeslat, zkusím to na dvakrát, snad to zvládnu
Logfile of random's system information tool 1.16 (written by random/random)
Run by David at 2017-05-22 07:58:40
Microsoft Windows 10 Pro
System drive C: has 76 GB (33%) free of 228 GB
Total RAM: 16322 MB (81% free)
X64
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 7:58:41, on 22.05.2017
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.15063.0000)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\NVIDIA Corporation\NvContainer\nvcontainer.exe
C:\Program Files (x86)\ASUS\GPU Tweak\GPUTweak.exe
C:\Program Files (x86)\ASUS\GPU Tweak\Monitor.exe
C:\WINDOWS\SysWOW64\UMonit64.exe
C:\Program Files\Logitech Gaming Software\Applets\LCDMedia.exe
C:\Users\David\AppData\Roaming\Seznam.cz\bin\szndesktop.exe
C:\Users\David\AppData\Local\Microsoft\OneDrive\OneDrive.exe
C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe
C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe
C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
C:\Games\World_of_Tanks\WargamingGameUpdater.exe
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Program Files (x86)\ControlCenter4\BrCtrlCntr.exe
C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe
C:\Program Files (x86)\ControlCenter4\BrCcUxSys.exe
C:\Program Files (x86)\Brother\Brother Help\BrotherHelp.exe
C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe
C:\Program Files (x86)\Bloody5\Bloody5\Bloody5.exe
C:\Program Files (x86)\Skype\Browser\SkypeBrowserHost.exe
C:\Program Files\trend micro\David_RSITx64.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = Preserve
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=
O1 - Hosts: ::1 localhost #[IPv6]
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_111\bin\ssv.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_111\bin\jp2ssv.dll
O2 - BHO: Adblock Plus for IE Browser Helper Object - {FFCB3198-32F3-4E8B-9539-4324694ED664} - C:\Program Files\Adblock Plus for IE\AdblockPlus32.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
O4 - HKLM\..\Run: [ControlCenter4] C:\Program Files (x86)\ControlCenter4\BrCcBoot.exe /autorun
O4 - HKLM\..\Run: [BrStsMon00] C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe /AUTORUN
O4 - HKLM\..\Run: [BrHelp] C:\Program Files (x86)\Brother\Brother Help\BrotherHelp.exe /AUTORUN
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [seznam-listicka-distribuce] "C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe" -s -d listicka 1 szn-software-listicka cz.seznam.software.autoupdate
O4 - HKLM\..\Run: [Wondershare Helper Compact.exe] C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKCU\..\Run: [cz.seznam.software.autoupdate] "C:\Users\David\AppData\Roaming\Seznam.cz\szninstall.exe" -c
O4 - HKCU\..\Run: [cz.seznam.software.szndesktop] "C:\Users\David\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" -q
O4 - HKCU\..\Run: [OneDrive] "C:\Users\David\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
O4 - HKCU\..\Run: [Bloody2] "C:\Program Files (x86)\Bloody5\Bloody5\Bloody5.exe" Minimum
O4 - HKCU\..\Run: [GarminExpressTrayApp] "C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe"
O4 - HKCU\..\Run: [DAEMON Tools Lite Automount] "C:\Program Files (x86)\DAEMON Tools Lite\DTAgent.exe" -autorun
O4 - HKCU\..\Run: [World of Tanks] "C:\Games\World_of_Tanks\WargamingGameUpdater.exe"
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O8 - Extra context menu item: &Block This Image (ABP) - C:\Program Files (x86)\Adblock Pro\blockimg.html
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\Program Files (x86)\Microsoft Office\Office12\EXCEL.EXE/3000
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~3\Office12\REFIEBAR.DLL
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - Trusted Zone: *.starstable.com
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: ASUS Com Service (asComSvc) - Unknown owner - C:\Program Files (x86)\ASUS\AXSP\1.01.02\atkexComSvc.exe
O23 - Service: ASGT - Unknown owner - C:\Windows\SysWOW64\ASGT.exe
O23 - Service: ASUS HM Com Service (asHmComSvc) - ASUSTeK Computer Inc. - C:\Program Files (x86)\ASUS\AAHM\1.00.22\aaHMSvc.exe
O23 - Service: AsusFanControlService - ASUSTeK Computer Inc. - C:\Program Files (x86)\ASUS\AsusFanControlService\1.02.22\AsusFanControlService.exe
O23 - Service: @oem112.inf,%BlueBcmBtRSupport.SVCNAME%;Bluetooth Driver Management Service (BcmBtRSupport) - Unknown owner - C:\WINDOWS\system32\BtwRSupportService.exe (file missing)
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: BrYNSvc - Brother Industries, Ltd. - C:\Program Files (x86)\Browny02\BrYNSvc.exe
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: Disc Soft Lite Bus Service - Disc Soft Ltd - C:\Program Files (x86)\DAEMON Tools Lite\DiscSoftBusServiceLite.exe
O23 - Service: DTSAudioSvc - DTS, Inc - C:\Program Files\Realtek\Audio\HDA\DTSU2PAuSrv64.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: Ext2Fsd Service Manager (Ext2Srv) - www.ext2fsd.com - C:\Program Files\Ext2Fsd\Ext2Srv.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: Garmin Device Interaction Service - Garmin Ltd. or its subsidiaries - C:\Program Files (x86)\Garmin\Device Interaction Service\GarminService.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: HuaweiHiSuiteService64.exe - Unknown owner - C:\Program Files (x86)\HiSuite\HandSetService\HuaweiHiSuiteService64.exe
O23 - Service: Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
O23 - Service: Intel(R) PROSet Monitoring Service - Unknown owner - C:\Windows\system32\IProsetMonitor.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Logitech Gaming Registry Service (LogiRegistryService) - Logitech Inc. - C:\Program Files\Logitech Gaming Software\Drivers\APOService\LogiRegistryService.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @mqutil.dll,-6102 (MSMQ) - Unknown owner - C:\WINDOWS\system32\mqsvc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: NVIDIA LocalSystem Container (NvContainerLocalSystem) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
O23 - Service: NVIDIA NetworkService Container (NvContainerNetworkService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
O23 - Service: NVIDIA Display Container LS (NVDisplay.ContainerLocalSystem) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
O23 - Service: NVIDIA Telemetry Container (NvTelemetryContainer) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\SecurityHealthAgent.dll,-1002 (SecurityHealthService) - Unknown owner - C:\WINDOWS\system32\SecurityHealthService.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender Advanced Threat Protection\MsSense.exe,-1001 (Sense) - Unknown owner - C:\Program Files (x86)\Windows Defender Advanced Threat Protection\MsSense.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spectrum.exe,-101 (spectrum) - Unknown owner - C:\WINDOWS\system32\spectrum.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\WINDOWS\system32\TieringEngineService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 14231 bytes
====== Enumerating Processes ======
C:\WINDOWS\system32\lsass.exe
c:\windows\system32\svchost.exe -k dcomlaunch -s PlugPlay
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\fontdrvhost.exe
c:\windows\system32\svchost.exe -k rpcss
c:\windows\system32\svchost.exe -k dcomlaunch -s LSM
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted
c:\windows\system32\svchost.exe -k localservice -s bthserv
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-6f35972b-5821-473a-8aa0-1e99462f2b5d -SystemEventPortName:HostProcess-35168bff-0492-4bf6-becf-269829b98441 -IoCancelEventPortName:HostProcess-3ff23121-2375-449d-b259-b8153a7059b7 -NonStateChangingEventPortName:HostProcess-4086566f-dc88-4378-8456-2027a2745daa -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:6609702e-a9ce-465f-b3ee-1765f2fa7d75 -DeviceGroupId:WudfDefaultDevicePool
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -s NcbService
c:\windows\system32\svchost.exe -k localservicenetworkrestricted -s TimeBrokerSvc
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -s hidserv
c:\windows\system32\svchost.exe -k netsvcs -s Schedule
c:\windows\system32\svchost.exe -k netsvcs -s ProfSvc
c:\windows\system32\svchost.exe -k localservicenetworkrestricted -s EventLog
c:\windows\system32\svchost.exe -k netsvcs -s UserManager
"C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem" -r -p 30000
c:\windows\system32\svchost.exe -k localservice -s nsi
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
c:\windows\system32\svchost.exe -k netsvcs -s Themes
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -s CscService
c:\windows\system32\svchost.exe -k localservicenetworkrestricted -s Dhcp
c:\windows\system32\svchost.exe -k localservice -s EventSystem
c:\windows\system32\svchost.exe -k appmodel -s StateRepository
c:\windows\system32\svchost.exe -k netsvcs -s SENS
c:\windows\system32\svchost.exe -k networkservice -s NlaSvc
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -s AudioEndpointBuilder
c:\windows\system32\svchost.exe -k localservice -s FontCache
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -s DeviceAssociationService
c:\windows\system32\svchost.exe -k localservice -s netprofm
C:\WINDOWS\system32\dashost.exe
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
c:\windows\system32\svchost.exe -k networkservice -s Dnscache
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted
c:\windows\system32\svchost.exe -k netsvcs -s ShellHWDetection
C:\WINDOWS\System32\spoolsv.exe
c:\windows\system32\svchost.exe -k networkservice -s LanmanWorkstation
C:\Windows\system32\IProsetMonitor.exe
c:\windows\system32\svchost.exe -k apphost -s AppHostSvc
C:\WINDOWS\system32\BtwRSupportService.exe
"C:\Program Files (x86)\ASUS\AAHM\1.00.22\aaHMSvc.exe"
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files\Realtek\Audio\HDA\DTSU2PAuSrv64.exe"
c:\windows\system32\svchost.exe -k netsvcs -s Winmgmt
C:\WINDOWS\System32\svchost.exe -k utcsvc
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -s SysMain
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -s PcaSvc
"C:\Program Files\Bonjour\mDNSResponder.exe"
"C:\Program Files (x86)\HiSuite\HandSetService\HuaweiHiSuiteService64.exe" -/service
C:\Windows\SysWOW64\ASGT.exe
c:\windows\system32\svchost.exe -k appmodel -s tiledatamodelsvc
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -s TrkWks
C:\WINDOWS\system32\svchost.exe -k imgsvc
c:\windows\system32\svchost.exe -k netsvcs -s WpnService
c:\windows\system32\svchost.exe -k localservicenonetwork -s DPS
c:\windows\system32\svchost.exe -k localservice -s WinHttpAutoProxySvc
c:\windows\system32\svchost.exe -k iissvcs
c:\windows\system32\svchost.exe -k networkservice -s CryptSvc
C:\WINDOWS\system32\mqsvc.exe
"C:\Program Files\Logitech Gaming Software\Drivers\APOService\LogiRegistryService.exe"
"C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe" -s NvTelemetryContainer -f "C:\ProgramData\NVIDIA\NvTelemetryContainer.log" -l 3 -d "C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\plugin"
"C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe" -s NvContainerLocalSystem -f "C:\ProgramData\NVIDIA\NvContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\NvContainer\plugins\LocalSystem" -r -p 30000
c:\windows\system32\svchost.exe -k netsvcs -s LanmanServer
c:\windows\system32\svchost.exe -k localservice -s WdiServiceHost
c:\windows\system32\svchost.exe -k netsvcs -s iphlpsvc
c:\windows\microsoft.net\framework64\v4.0.30319\smsvchost.exe
c:\windows\system32\svchost.exe -k localserviceandnoimpersonation -s SSDPSRV
"c:\windows\microsoft.net\framework64\v4.0.30319\smsvchost.exe" -netmsmqactivator
c:\windows\system32\svchost.exe -k localservicenetworkrestricted -s NgcCtnrSvc
c:\windows\system32\svchost.exe -k localservice -s fdPHost
c:\windows\system32\svchost.exe -k localserviceandnoimpersonation -s FDResPub
c:\windows\system32\svchost.exe -k networkservicenetworkrestricted -s PolicyAgent
c:\windows\system32\svchost.exe -k localservicenetworkrestricted -s HomeGroupProvider
c:\windows\system32\svchost.exe -k netsvcs -s Browser
c:\windows\system32\svchost.exe -k netsvcs -s TokenBroker
c:\windows\system32\svchost.exe -k localservice -s CDPSvc
c:\windows\system32\svchost.exe -k localservice -s LicenseManager
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -s WdiSystemHost
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\DAEMON Tools Lite\DiscSoftBusServiceLite.exe"
"C:\Program Files (x86)\Browny02\BrYNSvc.exe"
c:\windows\system32\svchost.exe -k netsvcs -s DoSvc
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -s fhsvc
c:\windows\system32\svchost.exe -k localservicenetworkrestricted -s wscsvc
C:\WINDOWS\system32\svchost.exe -k SDRSVC
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -s StorSvc
c:\windows\system32\svchost.exe -k netsvcs -s lfsvc
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -s DsSvc
c:\windows\system32\svchost.exe -k netsvcs -s Appinfo
"C:\Program Files\Ext2Fsd\Ext2Srv.exe"
C:\WINDOWS\System32\WinLogon.exe -SpecialSession
C:\WINDOWS\System32\fontdrvhost.exe
C:\WINDOWS\System32\dwm.exe
"C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -f "C:\ProgramData\NVIDIA\DisplaySessionContainer%d.log" -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\Session" -r -l 3 -p 30000 -c
C:\WINDOWS\system32\WLANExt.exe 1769323578752
\??\C:\WINDOWS\system32\conhost.exe 0x4
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -s NgcSvc
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted -s lmhosts
C:\WINDOWS\System32\svchost.exe -k LocalServiceNoNetwork -s NcdAutoSetup
c:\windows\system32\sihost.exe
c:\windows\system32\svchost.exe -k unistacksvcgroup -s CDPUserSvc
"C:\Program Files (x86)\NVIDIA Corporation\NvContainer\nvcontainer.exe" -f "C:\ProgramData\NVIDIA\NvContainerUser%d.log" -d "C:\Program Files (x86)\NVIDIA Corporation\NvContainer\plugins\User" -r -l 3 -p 30000 -c
c:\windows\system32\svchost.exe -k unistacksvcgroup -s WpnUserService
c:\windows\system32\taskhostw.exe
C:\WINDOWS\Explorer.EXE
"C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
"C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe" -ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca
C:\Windows\System32\RuntimeBroker.exe -Embedding
C:\Program Files (x86)\ASUS\GPU Tweak\GPUTweak.exe
C:\WINDOWS\system32\SettingSyncHost.exe -Embedding
C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
c:\windows\system32\svchost.exe -k unistacksvcgroup
"C:\Program Files (x86)\ASUS\GPU Tweak\Monitor.exe" min
C:\WINDOWS\SysWOW64\UMonit64.exe
"C:\Program Files\Windows Defender\MSASCuiL.exe"
"C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe" -s
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /DTSU2P
"C:\Program Files\Intel\Thunderbolt Software\Thunderbolt.exe"
"C:\Program Files\Logitech Gaming Software\LCore.exe" /minimized
"C:\Program Files\Logitech Gaming Software\Applets\LCDMedia.exe"
"C:\Program Files\Logitech Gaming Software\Applets\LCDCountdown.exe"
"C:\Program Files\Logitech Gaming Software\Applets\LCDClock.exe"
"C:\Program Files\Logitech Gaming Software\Applets\LCDPop3.exe"
"C:\Program Files\Logitech Gaming Software\Applets\LCDRSS.exe"
C:\Users\David\AppData\Roaming\Seznam.cz\bin\szndesktop.exe
"C:\Users\David\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
"C:\Users\David\AppData\Roaming\Seznam.cz\bin\listicka-x64.exe"
\??\C:\WINDOWS\system32\conhost.exe 0x4
C:\Program Files\CCleaner\CCleaner64.exe
"C:\Program Files\NVIDIA Corporation\ShadowPlay\nvspcaps64.exe" -Embedding
"C:\Program Files\NVIDIA Corporation\ShadowPlay\nvsphelper64.exe"
"C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe"
"C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe" --type=renderer --disable-gpu-compositing --no-sandbox --primordial-pipe-token=B51A4633878D9C92AE37D05E16369B0A --lang=en-US --lang=en-US --log-file="C:\Users\David\AppData\Local\NVIDIA Corporation\NVIDIA Share\CefCache\debug.log" --enable-pinch --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --content-image-texture-target=0,0,3553;0,1,3553;0,2,3553;0,3,3553;0,4,3553;0,5,3553;0,6,3553;0,7,3553;0,8,3553;0,9,3553;0,10,3553;0,11,3553;0,12,3553;0,13,3553;0,14,3553;0,15,3553;1,0,3553;1,1,3553;1,2,3553;1,3,3553;1,4,3553;1,5,3553;1,6,3553;1,7,3553;1,8,3553;1,9,3553;1,10,3553;1,11,3553;1,12,3553;1,13,3553;1,14,3553;1,15,3553;2,0,3553;2,1,3553;2,2,3553;2,3,3553;2,4,3553;2,5,3553;2,6,3553;2,7,3553;2,8,3553;2,9,3553;2,10,3553;2,11,3553;2,12,3553;2,13,3553;2,14,3553;2,15,3553;3,0,3553;3,1,3553;3,2,3553;3,3,3553;3,4,3553;3,5,3553;3,6,3553;3,7,3553;3,8,3553;3,9,3553;3,10,3553;3,11,3553;3,12,3553;3,13,3553;3,14,3553;3,15,3553 --disable-accelerated-video-decode --disable-webrtc-hw-encoding --disable-gpu-compositing --service-request-channel-token=B51A4633878D9C92AE37D05E16369B0A --renderer-client-id=2 --mojo-platform-channel-handle=1732 /prefetch:1
"C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe" index.js
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Games\World_of_Tanks\WargamingGameUpdater.exe"
"C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
C:\Program Files (x86)\ControlCenter4\BrCtrlCntr.exe
"C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe" /AUTORUN
C:\Program Files (x86)\ControlCenter4\BrCcUxSys.exe
"C:\Program Files (x86)\Brother\Brother Help\BrotherHelp.exe" /AUTORUN
"C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe"
C:\WINDOWS\system32\ApplicationFrameHost.exe -Embedding
C:\WINDOWS\system32\DllHost.exe /Processid:{973D20D7-562D-44B9-B70B-5A0F49CCDF3F}
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -s SensorService
C:\Windows\System32\smartscreen.exe -Embedding
"C:\Program Files (x86)\Bloody5\Bloody5\Bloody5.exe"
"C:\Program Files (x86)\Skype\Browser\SkypeBrowserHost.exe" -Embedding
"C:\Windows\System32\GameBarPresenceWriter.exe" -ServerName:Windows.Gaming.GameBar.Internal.PresenceWriterServer
"C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe" -ServerName:MicrosoftEdge.AppXdnhjhccw3zf0j06tkg3jtqr00qdm0khc.mca
C:\WINDOWS\system32\svchost.exe -k netsvcs -s XblAuthManager
C:\WINDOWS\system32\browser_broker.exe -Embedding
"C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe" -ServerName:ContentProcess.AppX6z3cwk4fvgady6zya12j1cw28d228a7k.mca
"C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe" -ServerName:ContentProcess.AppX6z3cwk4fvgady6zya12j1cw28d228a7k.mca
"C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe" -ServerName:ContentProcess.AppX6z3cwk4fvgady6zya12j1cw28d228a7k.mca
"C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe" -ServerName:ContentProcess.AppX6z3cwk4fvgady6zya12j1cw28d228a7k.mca
C:\Users\David\AppData\Roaming\Microsoft\Windows\svchost.exe -WindowsCheck
c:\Windows\System32\attrib.exe
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\WINDOWS\system32\NOTEPAD.EXE" C:\rsit\info.txt
C:\WINDOWS\System32\svchost.exe -k WerSvcGroup
C:\WINDOWS\system32\wermgr.exe -upload
C:\WINDOWS\system32\svchost.exe -k netsvcs -s wisvc
C:\WINDOWS\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
C:\WINDOWS\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
"C:\Users\David\Desktop\RSITx64.exe"
C:\WINDOWS\system32\wbem\wmiprvse.exe
====== Scheduled tasks folder ======
C:\WINDOWS\system32\tasks\Adobe Acrobat Update Task - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
C:\WINDOWS\system32\tasks\Adobe Flash Player Updater - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\WINDOWS\system32\tasks\bandicam_start - C:\Program Files (x86)\Bandicam\bdcam.exe /nosplash
C:\WINDOWS\system32\tasks\CCleanerSkipUAC - "C:\Program Files\CCleaner\CCleaner.exe" $(Arg0)
C:\WINDOWS\system32\tasks\CreateExplorerShellUnelevatedTask - C:\WINDOWS\Explorer.exe /NOUACCHECK
C:\WINDOWS\system32\tasks\GarminUpdaterTask - C:\Program Files (x86)\Garmin\Express SelfUpdater\ExpressSelfUpdater.exe
C:\WINDOWS\system32\tasks\GoogleUpdateTaskMachineCore - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\system32\tasks\GoogleUpdateTaskMachineUA - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\WINDOWS\system32\tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} - C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe -d "C:\Program Files\NVIDIA Corporation\NvDriverUpdateCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerDriverUpdateCheck.log
C:\WINDOWS\system32\tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} - "C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe"
C:\WINDOWS\system32\tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} - C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe --launcher=TaskScheduler
C:\WINDOWS\system32\tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} - C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe
C:\WINDOWS\system32\tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} - C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe
C:\WINDOWS\system32\tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} - C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmMon.exe
C:\WINDOWS\system32\tasks\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} - C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe --logon
C:\WINDOWS\system32\tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} - C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe
C:\WINDOWS\system32\tasks\OneDrive Standalone Update Task v2 - %localappdata%\Microsoft\OneDrive\OneDriveStandaloneUpdater.exe
C:\WINDOWS\system32\tasks\UMonitor Task - C:\WINDOWS\SysWOW64\UMonit64.exe
C:\WINDOWS\system32\tasks\User_Feed_Synchronization-{DB603BE7-AA25-44FC-89A1-268DCE49E2E7} - C:\Windows\system32\msfeedssync.exe sync
C:\WINDOWS\system32\tasks\{3DDB0906-2559-4AE1-AE89-512F37C00993} - "c:\windows\system32\launchwinapp.exe" https://ui.skype.com/ui/0/7.33.0.104/cs ... =tsInstall
C:\WINDOWS\system32\tasks\{655BDB67-48EE-4586-9667-B3F1E9F799EF} - C:\WINDOWS\system32\pcalua.exe -a C:\Users\David\AppData\Local\Temp\Temp1_IB-863_864_Realtek_6.2.9200.30161_XPW7W8_WHQL_20130626_nD3.zip\RtsUStor_6.2.9200.30161_XPW7W8_WHQL_20130626_nD3\setup.exe
C:\WINDOWS\system32\tasks\{7E18AE32-7483-4A33-BE63-ADA8E4911D94} - C:\Games\World_of_Tanks\WoTLauncher.exe
C:\WINDOWS\system32\tasks\{CF43F21A-8762-4956-B755-AC1EFDECE850} - C:\Games\World_of_Tanks\WoTLauncher.exe
C:\WINDOWS\system32\tasks\WPD\SqmUpload_S-1-5-21-793213919-1041953031-1442403603-1000 - %windir%\system32\rundll32.exe portabledeviceapi.dll,#1
C:\WINDOWS\system32\tasks\System\SystemCheck - %userprofile%\AppData\Roaming\Microsoft\Windows\svchost.exe -WindowsCheck
C:\WINDOWS\system32\tasks\Microsoft\XblGameSave\XblGameSaveTask - %windir%\System32\XblGameSaveTask.exe standby
C:\WINDOWS\system32\tasks\Microsoft\XblGameSave\XblGameSaveTaskLogon - %windir%\System32\XblGameSaveTask.exe logon
C:\WINDOWS\system32\tasks\Microsoft\Windows\WwanSvc\NotificationTask - %SystemRoot%\System32\WiFiTask.exe wwan
C:\WINDOWS\system32\tasks\Microsoft\Windows\Workplace Join\Automatic-Device-Join - %SystemRoot%\System32\dsregcmd.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start - C:\WINDOWS\system32\sc.exe start wuauserv
C:\WINDOWS\system32\tasks\Microsoft\Windows\WindowsUpdate\sih - %systemroot%\System32\sihclient.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\WindowsUpdate\sihboot - %systemroot%\System32\sihclient.exe /boot
C:\WINDOWS\system32\tasks\Microsoft\Windows\WindowsBackup\AutomaticBackup - %systemroot%\system32\rundll32.exe /d sdengin2.dll,ExecuteScheduledBackup
C:\WINDOWS\system32\tasks\Microsoft\Windows\WindowsBackup\Windows Backup Monitor - %systemroot%\system32\sdclt.exe /CHECKSKIPPED
C:\WINDOWS\system32\tasks\Microsoft\Windows\Windows Media Sharing\UpdateLibrary - "%ProgramFiles%\Windows Media Player\wmpnscfg.exe"
C:\WINDOWS\system32\tasks\Microsoft\Windows\Windows Filtering Platform\BfeOnServiceStartTypeChange - %windir%\system32\rundll32.exe bfe.dll,BfeOnServiceStartTypeChange
C:\WINDOWS\system32\tasks\Microsoft\Windows\Windows Error Reporting\QueueReporting - %windir%\system32\wermgr.exe -upload
C:\WINDOWS\system32\tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance - C:\Program Files\Windows Defender\MpCmdRun.exe -IdleTask -TaskName WdCacheMaintenance
C:\WINDOWS\system32\tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup - C:\Program Files\Windows Defender\MpCmdRun.exe -IdleTask -TaskName WdCleanup
C:\WINDOWS\system32\tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan - C:\Program Files\Windows Defender\MpCmdRun.exe Scan -ScheduleJob -ScanTrigger 55
C:\WINDOWS\system32\tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification - C:\Program Files\Windows Defender\MpCmdRun.exe -IdleTask -TaskName WdVerification
C:\WINDOWS\system32\tasks\Microsoft\Windows\WCM\WiFiTask - %SystemRoot%\System32\WiFiTask.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\UPnP\UPnPHostConfig - sc.exe config upnphost start= auto
C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\Combined Scan Download Install - %systemroot%\system32\usoclient.exe ScanInstallWait
C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\Maintenance Install - %systemroot%\system32\usoclient.exe StartInstall
C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\MusUx_UpdateInterval - %systemroot%\system32\MusNotification.exe Display
C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\Policy Install - %systemroot%\system32\usoclient.exe StartInstall
C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\Reboot - %systemroot%\system32\MusNotification.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\Refresh Settings - %systemroot%\system32\usoclient.exe RefreshSettings
C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\Resume On Boot - %systemroot%\system32\usoclient.exe ResumeUpdate
C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\Schedule Scan - %systemroot%\system32\usoclient.exe StartScan
C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker_Display - C:\windows\system32\MusNotification.exe Display
C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker_ReadyToReboot - C:\windows\system32\MusNotification.exe ReadyToReboot
C:\WINDOWS\system32\tasks\Microsoft\Windows\UNP\RunCampaignManager - %windir%\System32\UNP\UNPCampaignManager.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Time Zone\SynchronizeTimeZone - %windir%\system32\tzsync.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Time Synchronization\SynchronizeTime - %windir%\system32\sc.exe start w32time task_started
C:\WINDOWS\system32\tasks\Microsoft\Windows\Tcpip\IpAddressConflict1 - %windir%\system32\rundll32.exe ndfapi.dll,NdfRunDllDuplicateIPOffendingSystem
C:\WINDOWS\system32\tasks\Microsoft\Windows\Tcpip\IpAddressConflict2 - %windir%\system32\rundll32.exe ndfapi.dll,NdfRunDllDuplicateIPDefendingSystem
C:\WINDOWS\system32\tasks\Microsoft\Windows\SystemRestore\SR - %windir%\system32\srtasks.exe ExecuteScheduledSPPCreation
C:\WINDOWS\system32\tasks\Microsoft\Windows\Sysmain\WsSwapAssessmentTask - %windir%\system32\rundll32.exe sysmain.dll,PfSvWsSwapAssessmentTask
C:\WINDOWS\system32\tasks\Microsoft\Windows\Subscription\EnableLicenseAcquisition - %SystemRoot%\system32\ClipRenew.exe -e
C:\WINDOWS\system32\tasks\Microsoft\Windows\Subscription\LicenseAcquisition - %SystemRoot%\system32\ClipRenew.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Storage Tiers Management\Storage Tiers Optimization - %windir%\system32\defrag.exe -c -h -g -# -m 8 -i 13500
C:\WINDOWS\system32\tasks\Microsoft\Windows\Speech\SpeechModelDownloadTask - %windir%\system32\speech_onecore\common\SpeechModelDownload.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\SpacePort\SpaceAgentTask - %windir%\system32\SpaceAgent.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\SpacePort\SpaceManagerTask - %windir%\system32\spaceman.exe /Work
C:\WINDOWS\system32\tasks\Microsoft\Windows\Shell\FamilySafetyMonitor - %windir%\System32\wpcmon.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\SharedPC\Account Cleanup - %windir%\System32\rundll32.exe %windir%\System32\Windows.SharedPC.AccountManager.dll,StartMaintenance
C:\WINDOWS\system32\tasks\Microsoft\Windows\RemovalTools\MRT_HB - C:\WINDOWS\system32\MRT.exe /EHB /Q
C:\WINDOWS\system32\tasks\Microsoft\Windows\RemoteAssistance\RemoteAssistanceTask - %windir%\system32\RAServer.exe /offerraupdate
C:\WINDOWS\system32\tasks\Microsoft\Windows\Plug and Play\Sysprep Generalize Drivers - %SystemRoot%\System32\drvinst.exe 6
C:\WINDOWS\system32\tasks\Microsoft\Windows\NlaSvc\WiFiTask - %SystemRoot%\System32\WiFiTask.exe nla
C:\WINDOWS\system32\tasks\Microsoft\Windows\NetTrace\GatherNetworkInfo - %windir%\system32\gatherNetworkInfo.vbs
C:\WINDOWS\system32\tasks\Microsoft\Windows\MUI\LPRemove - %windir%\system32\lpremove.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser - %SystemRoot%\System32\MbaeParserTask.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Media Center\ActivateWindowsSearch - %SystemRoot%\ehome\ehPrivJob.exe /DoActivateWindowsSearch
C:\WINDOWS\system32\tasks\Microsoft\Windows\Media Center\ConfigureInternetTimeService - %SystemRoot%\ehome\ehPrivJob.exe /DoConfigureInternetTimeService
C:\WINDOWS\system32\tasks\Microsoft\Windows\Media Center\DispatchRecoveryTasks - %SystemRoot%\ehome\ehPrivJob.exe /DoRecoveryTasks $(Arg0)
C:\WINDOWS\system32\tasks\Microsoft\Windows\Media Center\ehDRMInit - %SystemRoot%\ehome\ehPrivJob.exe /DRMInit
C:\WINDOWS\system32\tasks\Microsoft\Windows\Media Center\InstallPlayReady - %SystemRoot%\ehome\ehPrivJob.exe /InstallPlayReady $(Arg0)
C:\WINDOWS\system32\tasks\Microsoft\Windows\Media Center\mcupdate - %SystemRoot%\ehome\mcupdate $(Arg0)
C:\WINDOWS\system32\tasks\Microsoft\Windows\Media Center\mcupdate_scheduled - %SystemRoot%\ehome\mcupdate -crl -hms -pscn 15
C:\WINDOWS\system32\tasks\Microsoft\Windows\Media Center\MediaCenterRecoveryTask - %SystemRoot%\ehome\mcupdate.exe -MediaCenterRecoveryTask
C:\WINDOWS\system32\tasks\Microsoft\Windows\Media Center\ObjectStoreRecoveryTask - %SystemRoot%\ehome\mcupdate.exe -ObjectStoreRecoveryTask
C:\WINDOWS\system32\tasks\Microsoft\Windows\Media Center\OCURActivate - %SystemRoot%\ehome\ehPrivJob.exe /OCURActivate
C:\WINDOWS\system32\tasks\Microsoft\Windows\Media Center\OCURDiscovery - %SystemRoot%\ehome\ehPrivJob.exe /OCURDiscovery $(Arg0)
C:\WINDOWS\system32\tasks\Microsoft\Windows\Media Center\PBDADiscovery - %SystemRoot%\ehome\ehPrivJob.exe /PBDADiscovery
C:\WINDOWS\system32\tasks\Microsoft\Windows\Media Center\PBDADiscoveryW1 - %SystemRoot%\ehome\ehPrivJob.exe /wait:7 /PBDADiscovery
C:\WINDOWS\system32\tasks\Microsoft\Windows\Media Center\PBDADiscoveryW2 - %SystemRoot%\ehome\ehPrivJob.exe /wait:90 /PBDADiscovery
C:\WINDOWS\system32\tasks\Microsoft\Windows\Media Center\PeriodicScanRetry - %windir%\ehome\MCUpdate.exe -pscn 0
C:\WINDOWS\system32\tasks\Microsoft\Windows\Media Center\PvrRecoveryTask - %SystemRoot%\ehome\mcupdate.exe -PvrRecoveryTask
C:\WINDOWS\system32\tasks\Microsoft\Windows\Media Center\PvrScheduleTask - %SystemRoot%\ehome\mcupdate.exe -PvrSchedule
C:\WINDOWS\system32\tasks\Microsoft\Windows\Media Center\RecordingRestart - %SystemRoot%\ehome\ehrec /RestartRecording
C:\WINDOWS\system32\tasks\Microsoft\Windows\Media Center\RegisterSearch - %SystemRoot%\ehome\ehPrivJob.exe /DoRegisterSearch $(Arg0)
C:\WINDOWS\system32\tasks\Microsoft\Windows\Media Center\ReindexSearchRoot - %SystemRoot%\ehome\ehPrivJob.exe /DoReindexSearchRoot
C:\WINDOWS\system32\tasks\Microsoft\Windows\Media Center\SqlLiteRecoveryTask - %SystemRoot%\ehome\mcupdate.exe -SqlLiteRecoveryTask
C:\WINDOWS\system32\tasks\Microsoft\Windows\Media Center\StartRecording - %SystemRoot%\ehome\ehrec /StartRecording
C:\WINDOWS\system32\tasks\Microsoft\Windows\Media Center\UpdateRecordPath - %SystemRoot%\ehome\ehPrivJob.exe /DoUpdateRecordPath $(Arg0)
C:\WINDOWS\system32\tasks\Microsoft\Windows\Management\Provisioning\Cellular - %windir%\system32\ProvTool.exe /turn 7 /source CellStateChangeTask
C:\WINDOWS\system32\tasks\Microsoft\Windows\Management\Provisioning\Logon - %windir%\system32\ProvTool.exe /turn 5 /source LogonIdleTask
C:\WINDOWS\system32\tasks\Microsoft\Windows\Location\Notifications - %windir%\System32\LocationNotificationWindows.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Location\WindowsActionDialog - %windir%\System32\WindowsActionDialog.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Feedback\Siuf\DmClient - %windir%\system32\dmclient.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Feedback\Siuf\DmClientOnScenarioDownload - %windir%\system32\dmclient.exe utcwnf
C:\WINDOWS\system32\tasks\Microsoft\Windows\EnterpriseMgmt\MDMMaintenenceTask - %windir%\system32\MDMAgent.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\DUSM\dusmtask - %SystemRoot%\System32\dusmtask.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\DiskFootprint\Diagnostics - %windir%\system32\disksnapshot.exe -z
C:\WINDOWS\system32\tasks\Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticDataCollector - %windir%\system32\rundll32.exe dfdts.dll,DfdGetDefaultPolicyAndSMART
C:\WINDOWS\system32\tasks\Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticResolver - %windir%\system32\DFDWiz.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\DiskCleanup\SilentCleanup - %windir%\system32\cleanmgr.exe /autoclean /d %systemdrive%
C:\WINDOWS\system32\tasks\Microsoft\Windows\Device Information\Device - %windir%\system32\devicecensus.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Defrag\ScheduledDefrag - %windir%\system32\defrag.exe -c -h -o -$
C:\WINDOWS\system32\tasks\Microsoft\Windows\Customer Experience Improvement Program\Consolidator - %SystemRoot%\System32\wsqmcons.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Clip\License Validation - %SystemRoot%\system32\ClipUp.exe -p -s -o
C:\WINDOWS\system32\tasks\Microsoft\Windows\Bluetooth\UninstallDeviceTask - BthUdTask.exe $(Arg0)
C:\WINDOWS\system32\tasks\Microsoft\Windows\Autochk\Proxy - %windir%\system32\rundll32.exe /d acproxy.dll,PerformAutochkOperations
C:\WINDOWS\system32\tasks\Microsoft\Windows\AppxDeploymentClient\Pre-staged app cleanup - %windir%\system32\rundll32.exe %windir%\system32\AppxDeploymentClient.dll,AppxPreStageCleanupRunTask
C:\WINDOWS\system32\tasks\Microsoft\Windows\ApplicationData\appuriverifierdaily - %windir%\system32\AppHostRegistrationVerifier.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\ApplicationData\appuriverifierinstall - %windir%\system32\AppHostRegistrationVerifier.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\ApplicationData\CleanupTemporaryState - %windir%\system32\rundll32.exe Windows.Storage.ApplicationData.dll,CleanupTemporaryState
C:\WINDOWS\system32\tasks\Microsoft\Windows\ApplicationData\DsSvcCleanup - %windir%\system32\dstokenclean.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Application Experience\Microsoft Compatibility Appraiser - %windir%\system32\compattelrunner.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Application Experience\ProgramDataUpdater - %windir%\system32\compattelrunner.exe -maintenance
C:\WINDOWS\system32\tasks\Microsoft\Windows\Application Experience\StartupAppTask - %windir%\system32\rundll32.exe Startupscan.dll,SusRunTask
C:\WINDOWS\system32\tasks\Microsoft\Windows\AppID\PolicyConverter - %windir%\system32\appidpolicyconverter.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\AppID\VerifiedPublisherCertStoreCheck - %windir%\system32\appidcertstorecheck.exe
C:\WINDOWS\system32\tasks\Microsoft\Microsoft Antimalware\MpIdleTask - C:\Program Files\Microsoft Security Client\MpCmdRun.exe -IdleTask -TaskName MpIdleTask
======Registry dump ======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"={0633EE93-D776-472f-A0FF-E1416B8B2E3A}
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}]
"URL"=http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"={0633EE93-D776-472f-A0FF-E1416B8B2E3A}
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}]
"URL"=http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2016-04-22 255088]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FFCB3198-32F3-4E8B-9539-4324694ED664}]
Adblock Plus for IE Browser Helper Object - C:\Program Files\Adblock Plus for IE\AdblockPlus64.dll [2015-09-22 857792]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_111\bin\ssv.dll [2016-10-19 473152]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2016-04-22 193136]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_111\bin\jp2ssv.dll [2016-10-19 186944]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FFCB3198-32F3-4E8B-9539-4324694ED664}]
Adblock Plus for IE Browser Helper Object - C:\Program Files\Adblock Plus for IE\AdblockPlus32.dll [2015-09-22 755392]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2016-04-22 255088]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2016-04-22 193136]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SecurityHealth"=C:\Program Files\Windows Defender\MSASCuiL.exe [2017-03-18 629152]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [2015-06-24 8492800]
"RtHDVBg_DTS"=C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2015-06-24 1402624]
"Thunderbolt"=C:\Program Files\Intel\Thunderbolt Software\Thunderbolt.exe [2013-04-09 767752]
"UMonit"=C:\WINDOWS\SysWOW64\UMonit64.exe [2015-08-30 62560]
"Launch LCore"=C:\Program Files\Logitech Gaming Software\LCore.exe [2016-03-30 15642744]
"ShadowPlay"=C:\WINDOWS\system32\nvspcap64.dll [2017-05-03 1893496]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2017-04-11 9532120]
"cz.seznam.software.autoupdate"=C:\Users\David\AppData\Roaming\Seznam.cz\szninstall.exe [2013-05-16 1062472]
"cz.seznam.software.szndesktop"=C:\Users\David\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [2015-05-26 103080]
"OneDrive"=C:\Users\David\AppData\Local\Microsoft\OneDrive\OneDrive.exe [2017-05-15 1504888]
"Bloody2"=C:\Program Files (x86)\Bloody5\Bloody5\Bloody5.exe [2015-06-16 18923008]
"GarminExpressTrayApp"=C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe [2017-03-28 1421736]
"DAEMON Tools Lite Automount"=C:\Program Files (x86)\DAEMON Tools Lite\DTAgent.exe [2016-10-06 4557504]
"World of Tanks"=C:\Games\World_of_Tanks\WargamingGameUpdater.exe [2017-02-28 3135752]
"Skype"=C:\Program Files (x86)\Skype\Phone\Skype.exe [2017-05-05 27793888]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"ControlCenter4"=C:\Program Files (x86)\ControlCenter4\BrCcBoot.exe [2016-02-03 139776]
"BrStsMon00"=C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe [2014-05-22 4513792]
"BrHelp"=C:\Program Files (x86)\Brother\Brother Help\BrotherHelp.exe [2013-01-18 2009088]
"GrooveMonitor"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [2009-02-26 30040]
"seznam-listicka-distribuce"=C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe [2013-05-16 1062472]
"Wondershare Helper Compact.exe"=C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe [2016-10-08 2137744]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders" = credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetSetupSvc]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"DSCAutomationHostEnabled"=2
"EnableCursorSuppression"=1
"EnableUIADesktopToggle"=0
"undockwithoutlogon"=1
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"ForceActiveDesktopOn"=0
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Active Setup\Installed Components\>{22d6f312-b0f6-11d0-94ab-0080c74c7e95}]
"StubPath" = %SystemRoot%\inf\unregmp2.exe /ShowWMP
[HKEY_LOCAL_MACHINE\Software\Microsoft\Active Setup\Installed Components\{8A69D345-D564-463c-AFF1-A69D9E530F96}]
"StubPath" = "C:\Program Files (x86)\Google\Chrome\Application\58.0.3029.110\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"msacm.l3codecp"=l3codecp.acm
"vidc.mjpg"=bdmjpeg64.dll
"vidc.mpeg"=bdmpegv64.dll
"msacm.bdmpeg"=bdmpega64.acm
====== File associations ======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
====== List of files/folders created in the last 1 month ======
2017-05-22 07:52:55 ----D---- C:\rsit
2017-05-22 07:52:55 ----D---- C:\Program Files\trend micro
2017-05-20 20:37:09 ----D---- C:\WINDOWS\Microsoft Antimalware
2017-05-20 18:22:35 ----D---- C:\Users\David\AppData\Roaming\SmartSteamEmu
2017-05-15 20:01:50 ----D---- C:\WINDOWS\Panther
2017-05-15 12:50:46 ----D---- C:\ProgramData\Microsoft OneDrive
2017-05-15 12:09:14 ----A---- C:\WINDOWS\SYSWOW64\XpsPrint.dll
2017-05-15 12:09:14 ----A---- C:\WINDOWS\SYSWOW64\XpsDocumentTargetPrint.dll
2017-05-15 12:09:14 ----A---- C:\WINDOWS\SYSWOW64\wpnapps.dll
2017-05-15 12:09:14 ----A---- C:\WINDOWS\SYSWOW64\WpcWebFilter.dll
2017-05-15 12:09:14 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2017-05-15 12:09:14 ----A---- C:\WINDOWS\SYSWOW64\WindowsCodecs.dll
2017-05-15 12:09:14 ----A---- C:\WINDOWS\SYSWOW64\WiFiDisplay.dll
2017-05-15 12:09:14 ----A---- C:\WINDOWS\SYSWOW64\VEEventDispatcher.dll
2017-05-15 12:09:14 ----A---- C:\WINDOWS\SYSWOW64\UserDataTimeUtil.dll
2017-05-15 12:09:14 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2017-05-15 12:09:14 ----A---- C:\WINDOWS\SYSWOW64\StoreAgent.dll
2017-05-15 12:09:14 ----A---- C:\WINDOWS\SYSWOW64\SettingSyncHost.exe
2017-05-15 12:09:14 ----A---- C:\WINDOWS\SYSWOW64\SettingSyncCore.dll
2017-05-15 12:09:14 ----A---- C:\WINDOWS\SYSWOW64\quartz.dll
2017-05-15 12:09:14 ----A---- C:\WINDOWS\SYSWOW64\PackageStateRoaming.dll
2017-05-15 12:09:14 ----A---- C:\WINDOWS\SYSWOW64\OneDriveSettingSyncProvider.dll
2017-05-15 12:09:14 ----A---- C:\WINDOWS\SYSWOW64\MSVPXENC.dll
2017-05-15 12:09:14 ----A---- C:\WINDOWS\SYSWOW64\msIso.dll
2017-05-15 12:09:14 ----A---- C:\WINDOWS\SYSWOW64\mfmjpegdec.dll
2017-05-15 12:09:14 ----A---- C:\WINDOWS\SYSWOW64\InstallAgentUserBroker.exe
2017-05-15 12:09:14 ----A---- C:\WINDOWS\SYSWOW64\InstallAgent.exe
2017-05-15 12:09:14 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2017-05-15 12:09:14 ----A---- C:\WINDOWS\SYSWOW64\dwmcore.dll
2017-05-15 12:09:14 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_47.dll
2017-05-15 12:09:14 ----A---- C:\WINDOWS\SYSWOW64\d2d1.dll
2017-05-15 12:09:14 ----A---- C:\WINDOWS\SYSWOW64\CloudBackupSettings.dll
2017-05-15 12:09:14 ----A---- C:\WINDOWS\SYSWOW64\AzureSettingSyncProvider.dll
2017-05-15 12:09:14 ----A---- C:\WINDOWS\SYSWOW64\aadtb.dll
2017-05-15 12:09:14 ----A---- C:\WINDOWS\system32\wmpps.dll
2017-05-15 12:09:14 ----A---- C:\WINDOWS\system32\MSVPXENC.dll
2017-05-15 12:09:14 ----A---- C:\WINDOWS\system32\MSVideoDSP.dll
2017-05-15 12:09:14 ----A---- C:\WINDOWS\system32\mfmjpegdec.dll
2017-05-15 12:09:14 ----A---- C:\WINDOWS\system32\fveapi.dll
2017-05-15 12:09:14 ----A---- C:\WINDOWS\system32\drivers\srv.sys
2017-05-15 12:09:12 ----A---- C:\WINDOWS\SYSWOW64\webplatstorageserver.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\SYSWOW64\webcheck.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\SYSWOW64\vbscript.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\SYSWOW64\UIRibbonRes.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\SYSWOW64\olepro32.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\SYSWOW64\ole32.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\SYSWOW64\offreg.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\SYSWOW64\mshtmled.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\SYSWOW64\msfeeds.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\SYSWOW64\kernel32.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\SYSWOW64\InputSwitch.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\SYSWOW64\imagehlp.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\SYSWOW64\ieproxy.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\SYSWOW64\iepeers.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\SYSWOW64\iedkcs32.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\SYSWOW64\ieapfltr.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\SYSWOW64\Chakra.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\SYSWOW64\edgehtml.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\SYSWOW64\dxtrans.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\SYSWOW64\daxexec.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\SYSWOW64\asycfilt.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\XpsPrint.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\XpsDocumentTargetPrint.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\wpx.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\wpnapps.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\WpcWebFilter.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\winsrv.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\winlogon.exe
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\wininet.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\Windows.UI.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\Windows.UI.AppDefaults.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\Windows.Shell.UnifiedTile.CuratedTileCollections.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\Windows.Internal.Shell.Broker.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\WiFiDisplay.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\webplatstorageserver.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\webcheck.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\wcmcsp.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\vbscript.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\usocore.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\urlmon.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\updatehandlers.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\UIRibbonRes.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\twinui.pcshell.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\twinui.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\TSWorkspace.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\SystemSettings.Handlers.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\StorSvc.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\StartTileData.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\shell32.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\SharedStartModel.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\SettingsHandlers_nt.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\SettingsEnvironment.Desktop.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\ResetEngine.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\reseteng.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\RDXService.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\quartz.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\ole32.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\odbcconf.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\NotificationController.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\msIso.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\mshtmled.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\MshtmlDac.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\mshtml.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\msfeeds.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\mmgaserver.exe
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\LogonController.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\LockHostingFramework.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\LockAppBroker.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\KernelBase.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\kernel32.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\jscript9.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\InputSwitch.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\imagehlp.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\iertutil.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\ieproxy.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\iepeers.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\ieframe.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\iedkcs32.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\ieapfltr.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\ie4uinit.exe
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\Chakra.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\gdi32full.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\GamePanel.exe
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\fontdrvhost.exe
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\EnterpriseModernAppMgmtCSP.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\enterprisecsps.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\EnterpriseAppMgmtSvc.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\edgehtml.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\dxtrans.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\dwmcore.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\drivers\srv2.sys
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\dosvc.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\domgmt.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\daxexec.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\CoreMessaging.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\comsvcs.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\CloudBackupSettings.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\cldapi.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\catsrvps.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\bcdedit.exe
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\autochk.exe
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\audiosrv.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\AudioEndpointBuilder.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\atmlib.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\atmfd.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\asycfilt.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\AppXDeploymentServer.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\AppResolver.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\explorer.exe
2017-05-15 12:09:11 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.dll
2017-05-15 12:09:11 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Protection.PlayReady.dll
2017-05-15 12:09:11 ----A---- C:\WINDOWS\SYSWOW64\win32kfull.sys
2017-05-15 12:09:11 ----A---- C:\WINDOWS\SYSWOW64\TokenBroker.dll
2017-05-15 12:09:11 ----A---- C:\WINDOWS\SYSWOW64\PlayToManager.dll
2017-05-15 12:09:11 ----A---- C:\WINDOWS\SYSWOW64\oleaut32.dll
2017-05-15 12:09:11 ----A---- C:\WINDOWS\SYSWOW64\odbcconf.dll
2017-05-15 12:09:11 ----A---- C:\WINDOWS\SYSWOW64\mmgaserver.exe
2017-05-15 12:09:11 ----A---- C:\WINDOWS\SYSWOW64\KernelBase.dll
2017-05-15 12:09:11 ----A---- C:\WINDOWS\SYSWOW64\gdi32full.dll
2017-05-15 12:09:11 ----A---- C:\WINDOWS\SYSWOW64\fontdrvhost.exe
2017-05-15 12:09:11 ----A---- C:\WINDOWS\SYSWOW64\explorer.exe
2017-05-15 12:09:11 ----A---- C:\WINDOWS\SYSWOW64\dbghelp.dll
2017-05-15 12:09:11 ----A---- C:\WINDOWS\SYSWOW64\dbgeng.dll
2017-05-15 12:09:11 ----A---- C:\WINDOWS\SYSWOW64\crypt32.dll
2017-05-15 12:09:11 ----A---- C:\WINDOWS\SYSWOW64\CoreUIComponents.dll
2017-05-15 12:09:11 ----A---- C:\WINDOWS\SYSWOW64\CoreMessaging.dll
2017-05-15 12:09:11 ----A---- C:\WINDOWS\SYSWOW64\combase.dll
2017-05-15 12:09:11 ----A---- C:\WINDOWS\SYSWOW64\cldapi.dll
2017-05-15 12:09:11 ----A---- C:\WINDOWS\SYSWOW64\bcryptprimitives.dll
2017-05-15 12:09:11 ----A---- C:\WINDOWS\SYSWOW64\autochk.exe
2017-05-15 12:09:11 ----A---- C:\WINDOWS\SYSWOW64\atmlib.dll
2017-05-15 12:09:11 ----A---- C:\WINDOWS\SYSWOW64\atmfd.dll
2017-05-15 12:09:11 ----A---- C:\WINDOWS\SYSWOW64\AppResolver.dll
2017-05-15 12:09:11 ----A---- C:\WINDOWS\system32\wuaueng.dll
2017-05-15 12:09:11 ----A---- C:\WINDOWS\system32\WpAXHolder.dll
2017-05-15 12:09:11 ----A---- C:\WINDOWS\system32\WindowsCodecs.dll
2017-05-15 12:09:11 ----A---- C:\WINDOWS\system32\Windows.Media.Streaming.ps.dll
2017-05-15 12:09:11 ----A---- C:\WINDOWS\system32\Windows.Gaming.Preview.dll
2017-05-15 12:09:11 ----A---- C:\WINDOWS\system32\win32kfull.sys
2017-05-15 12:09:11 ----A---- C:\WINDOWS\system32\win32kbase.sys
2017-05-15 12:09:11 ----A---- C:\WINDOWS\system32\wc_storage.dll
2017-05-15 12:09:11 ----A---- C:\WINDOWS\system32\VEStoreEventHandlers.dll
2017-05-15 12:09:11 ----A---- C:\WINDOWS\system32\UserDataTimeUtil.dll
2017-05-15 12:09:11 ----A---- C:\WINDOWS\system32\UpdateAgent.dll
2017-05-15 12:09:11 ----A---- C:\WINDOWS\system32\TokenBroker.dll
2017-05-15 12:09:11 ----A---- C:\WINDOWS\system32\TileDataRepository.dll
2017-05-15 12:09:11 ----A---- C:\WINDOWS\system32\TDLMigration.dll
2017-05-15 12:09:11 ----A---- C:\WINDOWS\system32\StoreAgent.dll
2017-05-15 12:09:11 ----A---- C:\WINDOWS\system32\SpeechPal.dll
2017-05-15 12:09:11 ----A---- C:\WINDOWS\system32\SettingSyncHost.exe
2017-05-15 12:09:11 ----A---- C:\WINDOWS\system32\SettingSyncCore.dll
2017-05-15 12:09:11 ----A---- C:\WINDOWS\system32\securekernel.exe
2017-05-15 12:09:11 ----A---- C:\WINDOWS\system32\rpcss.dll
2017-05-15 12:09:11 ----A---- C:\WINDOWS\system32\PackageStateRoaming.dll
2017-05-15 12:09:11 ----A---- C:\WINDOWS\system32\OneDriveSettingSyncProvider.dll
2017-05-15 12:09:11 ----A---- C:\WINDOWS\system32\OneCoreUAPCommonProxyStub.dll
2017-05-15 12:09:11 ----A---- C:\WINDOWS\system32\oleaut32.dll
2017-05-15 12:09:11 ----A---- C:\WINDOWS\system32\offreg.dll
2017-05-15 12:09:11 ----A---- C:\WINDOWS\system32\NotificationObjFactory.dll
2017-05-15 12:09:11 ----A---- C:\WINDOWS\system32\musdialoghandlers.dll
2017-05-15 12:09:11 ----A---- C:\WINDOWS\system32\mssprxy.dll
2017-05-15 12:09:11 ----A---- C:\WINDOWS\system32\modernexecserver.dll
2017-05-15 12:09:11 ----A---- C:\WINDOWS\system32\InstallAgentUserBroker.exe
2017-05-15 12:09:11 ----A---- C:\WINDOWS\system32\InstallAgent.exe
2017-05-15 12:09:11 ----A---- C:\WINDOWS\system32\hvix64.exe
2017-05-15 12:09:11 ----A---- C:\WINDOWS\system32\hvax64.exe
2017-05-15 12:09:11 ----A---- C:\WINDOWS\system32\drivers\wcifs.sys
2017-05-15 12:09:11 ----A---- C:\WINDOWS\system32\drivers\USBXHCI.SYS
2017-05-15 12:09:11 ----A---- C:\WINDOWS\system32\drivers\netvsc.sys
2017-05-15 12:09:11 ----A---- C:\WINDOWS\system32\drivers\dxgmms2.sys
2017-05-15 12:09:11 ----A---- C:\WINDOWS\system32\drivers\dxgmms1.sys
2017-05-15 12:09:11 ----A---- C:\WINDOWS\system32\drivers\dxgkrnl.sys
2017-05-15 12:09:11 ----A---- C:\WINDOWS\system32\drivers\bthport.sys
2017-05-15 12:09:11 ----A---- C:\WINDOWS\system32\drivers\BasicRender.sys
2017-05-15 12:09:11 ----A---- C:\WINDOWS\system32\dbghelp.dll
2017-05-15 12:09:11 ----A---- C:\WINDOWS\system32\dbgeng.dll
2017-05-15 12:09:11 ----A---- C:\WINDOWS\system32\D3DCompiler_47.dll
2017-05-15 12:09:11 ----A---- C:\WINDOWS\system32\crypt32.dll
2017-05-15 12:09:11 ----A---- C:\WINDOWS\system32\CoreUIComponents.dll
2017-05-15 12:09:11 ----A---- C:\WINDOWS\system32\combase.dll
2017-05-15 12:09:11 ----A---- C:\WINDOWS\system32\ClipSVC.dll
2017-05-15 12:09:11 ----A---- C:\WINDOWS\system32\ci.dll
2017-05-15 12:09:11 ----A---- C:\WINDOWS\system32\browserbroker.dll
2017-05-15 12:09:11 ----A---- C:\WINDOWS\system32\browser_broker.exe
2017-05-15 12:09:11 ----A---- C:\WINDOWS\system32\AzureSettingSyncProvider.dll
2017-05-15 12:09:11 ----A---- C:\WINDOWS\system32\AppVEntVirtualization.dll
2017-05-15 12:09:11 ----A---- C:\WINDOWS\system32\AppVEntSubsystemController.dll
2017-05-15 12:09:11 ----A---- C:\WINDOWS\system32\aadtb.dll
2017-05-15 12:09:11 ----A---- C:\WINDOWS\system32\aadcloudap.dll
2017-05-15 12:07:50 ----D---- C:\WINDOWS\system32\Microsoft
2017-05-15 12:07:50 ----D---- C:\WINDOWS\ServiceProfiles
2017-05-15 12:06:36 ----D---- C:\WINDOWS\SYSWOW64\XPSViewer
2017-05-15 12:06:36 ----D---- C:\WINDOWS\SYSWOW64\BestPractices
2017-05-15 12:06:36 ----D---- C:\WINDOWS\system32\msmq
2017-05-15 12:06:36 ----D---- C:\WINDOWS\system32\BestPractices
2017-05-15 12:06:35 ----D---- C:\Program Files\Reference Assemblies
2017-05-15 12:06:35 ----D---- C:\Program Files\MSBuild
2017-05-15 12:06:35 ----D---- C:\Program Files (x86)\Reference Assemblies
2017-05-15 12:06:35 ----D---- C:\inetpub
2017-05-15 12:06:35 ----AD---- C:\Program Files (x86)\MSBuild
2017-05-15 12:06:24 ----A---- C:\WINDOWS\SYSWOW64\TsWpfWrp.exe
2017-05-15 12:06:24 ----A---- C:\WINDOWS\SYSWOW64\PresentationNative_v0300.dll
2017-05-15 12:06:24 ----A---- C:\WINDOWS\SYSWOW64\PresentationCFFRasterizerNative_v0300.dll
2017-05-15 12:06:23 ----A---- C:\WINDOWS\system32\TsWpfWrp.exe
2017-05-15 12:06:23 ----A---- C:\WINDOWS\system32\PresentationNative_v0300.dll
2017-05-15 12:06:23 ----A---- C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2017-05-15 11:27:57 ----D---- C:\ProgramData\USOShared
2017-05-15 11:21:06 ----SHD---- C:\Recovery
2017-05-15 11:17:44 ----ASH---- C:\hiberfil.sys
2017-05-15 11:15:09 ----D---- C:\Program Files\Common Files\SpeechEngines
2017-05-15 11:14:29 ----SD---- C:\Users\David\AppData\Roaming\Microsoft
2017-05-15 11:14:12 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2017-05-15 11:14:09 ----A---- C:\WINDOWS\SYSWOW64\PerfStringBackup.INI
2017-05-15 11:13:42 ----D---- C:\WINDOWS\system32\DAX2
2017-05-15 11:13:39 ----D---- C:\WINDOWS\SYSWOW64\RTCOM
2017-05-15 11:13:39 ----D---- C:\Program Files\Realtek
2017-05-15 11:13:38 ----A---- C:\WINDOWS\system32\nvsvcr.dll
2017-05-15 11:13:38 ----A---- C:\WINDOWS\system32\nvsvc64.dll
2017-05-15 11:13:38 ----A---- C:\WINDOWS\system32\nvshext.dll
2017-05-15 11:13:38 ----A---- C:\WINDOWS\system32\nvmctray.dll
2017-05-15 11:13:38 ----A---- C:\WINDOWS\system32\nvcpl.dll
2017-05-15 11:13:38 ----A---- C:\WINDOWS\system32\nv3dappshextr.dll
2017-05-15 11:13:38 ----A---- C:\WINDOWS\system32\nv3dappshext.dll
2017-05-15 11:13:35 ----D---- C:\ProgramData\NVIDIA
2017-05-15 11:13:35 ----A---- C:\WINDOWS\NvContainerRecovery.bat
2017-05-15 11:13:33 ----D---- C:\ProgramData\NVIDIA Corporation
2017-05-15 11:13:30 ----D---- C:\Program Files\NVIDIA Corporation
2017-05-15 11:13:30 ----D---- C:\Program Files (x86)\NVIDIA Corporation
2017-05-15 11:12:40 ----AS---- C:\WINDOWS\bootstat.dat
2017-05-15 11:12:17 ----HD---- C:\Program Files (x86)\Uninstall Information
2017-05-15 11:12:16 ----D---- C:\Program Files\ASUS
2017-05-15 11:12:16 ----D---- C:\Program Files (x86)\ASUS
2017-05-15 11:12:16 ----A---- C:\WINDOWS\SYSWOW64\drivers\AsIO.sys
2017-05-15 11:12:16 ----A---- C:\WINDOWS\SYSWOW64\AsIO.dll
2017-05-15 11:12:15 ----A---- C:\WINDOWS\SYSWOW64\PrintConfig.dll
2017-05-15 11:12:09 ----D---- C:\WINDOWS\Prefetch
2017-05-15 11:11:56 ----D---- C:\WINDOWS\system32\SleepStudy
2017-05-15 11:11:55 ----A---- C:\WINDOWS\system32\FNTCACHE.DAT
2017-05-15 09:42:52 ----ASH---- C:\swapfile.sys
2017-05-15 09:42:52 ----ASH---- C:\pagefile.sys
2017-05-10 18:08:37 ----A---- C:\WINDOWS\system32\indexeddbserver.dll
2017-05-10 15:17:27 ----A---- C:\WINDOWS\SYSWOW64\nvStreaming.exe
2017-05-10 15:17:24 ----D---- C:\Program Files (x86)\VulkanRT
2017-05-10 15:17:24 ----A---- C:\WINDOWS\SYSWOW64\vulkaninfo.exe
2017-05-10 15:17:24 ----A---- C:\WINDOWS\SYSWOW64\vulkan-1.dll
2017-05-10 15:17:24 ----A---- C:\WINDOWS\system32\vulkaninfo.exe
2017-05-10 15:17:24 ----A---- C:\WINDOWS\system32\vulkan-1.dll
2017-05-10 15:15:53 ----A---- C:\WINDOWS\system32\drivers\nvvhci.sys
2017-05-10 15:15:52 ----A---- C:\WINDOWS\SYSWOW64\nvptxJitCompiler.dll
2017-05-10 15:15:52 ----A---- C:\WINDOWS\SYSWOW64\nvopencl.dll
2017-05-10 15:15:52 ----A---- C:\WINDOWS\SYSWOW64\nvoglv32.dll
2017-05-10 15:15:52 ----A---- C:\WINDOWS\SYSWOW64\NvIFROpenGL.dll
2017-05-10 15:15:52 ----A---- C:\WINDOWS\SYSWOW64\NvIFR.dll
2017-05-10 15:15:52 ----A---- C:\WINDOWS\SYSWOW64\NvFBC.dll
2017-05-10 15:15:52 ----A---- C:\WINDOWS\SYSWOW64\nvfatbinaryLoader.dll
2017-05-10 15:15:52 ----A---- C:\WINDOWS\SYSWOW64\nvEncodeAPI.dll
2017-05-10 15:15:52 ----A---- C:\WINDOWS\SYSWOW64\nvEncMFTH264.dll
2017-05-10 15:15:52 ----A---- C:\WINDOWS\SYSWOW64\nvDecMFTMjpeg.dll
2017-05-10 15:15:52 ----A---- C:\WINDOWS\SYSWOW64\nvcuvid.dll
2017-05-10 15:15:52 ----A---- C:\WINDOWS\SYSWOW64\nvcuda.dll
2017-05-10 15:15:52 ----A---- C:\WINDOWS\system32\nvptxJitCompiler.dll
2017-05-10 15:15:52 ----A---- C:\WINDOWS\system32\nvopencl.dll
2017-05-10 15:15:52 ----A---- C:\WINDOWS\system32\nvoglv64.dll
2017-05-10 15:15:52 ----A---- C:\WINDOWS\system32\NvIFROpenGL.dll
2017-05-10 15:15:52 ----A---- C:\WINDOWS\system32\NvIFR64.dll
2017-05-10 15:15:52 ----A---- C:\WINDOWS\system32\nvhdap64.dll
2017-05-10 15:15:52 ----A---- C:\WINDOWS\system32\nvhdagenco6420103.dll
2017-05-10 15:15:52 ----A---- C:\WINDOWS\system32\NvFBC64.dll
2017-05-10 15:15:52 ----A---- C:\WINDOWS\system32\nvfatbinaryLoader.dll
2017-05-10 15:15:52 ----A---- C:\WINDOWS\system32\nvEncodeAPI64.dll
2017-05-10 15:15:52 ----A---- C:\WINDOWS\system32\nvEncMFTH264.dll
2017-05-10 15:15:52 ----A---- C:\WINDOWS\system32\nvdispgenco6438205.dll
2017-05-10 15:15:52 ----A---- C:\WINDOWS\system32\nvdispco6438205.dll
2017-05-10 15:15:52 ----A---- C:\WINDOWS\system32\nvDecMFTMjpeg.dll
2017-05-10 15:15:52 ----A---- C:\WINDOWS\system32\nvcuvid.dll
2017-05-10 15:15:52 ----A---- C:\WINDOWS\system32\nvcuda.dll
2017-05-10 15:15:52 ----A---- C:\WINDOWS\system32\drivers\nvhda64v.sys
2017-05-10 15:15:51 ----A---- C:\WINDOWS\SYSWOW64\nvcompiler.dll
2017-05-10 15:15:51 ----A---- C:\WINDOWS\SYSWOW64\nvapi.dll
2017-05-10 15:15:51 ----A---- C:\WINDOWS\system32\nvcompiler.dll
2017-05-10 15:15:51 ----A---- C:\WINDOWS\system32\nvapi64.dll
2017-05-10 15:12:30 ----A---- C:\WINDOWS\SYSWOW64\nvaudcap32v.dll
2017-05-10 15:12:30 ----A---- C:\WINDOWS\system32\nvaudcap64v.dll
2017-05-10 15:12:30 ----A---- C:\WINDOWS\system32\drivers\nvvad64v.sys
2017-05-09 22:02:35 ----D---- C:\Users\David\AppData\Roaming\Seznam Browser
2017-04-26 10:31:45 ----A---- C:\WINDOWS\system32\nvdispgenco6438189.dll
2017-04-26 10:31:45 ----A---- C:\WINDOWS\system32\nvdispco6438189.dll
2017-04-25 16:18:00 ----AD---- C:\Program Files (x86)\Star Stable Online
====== List of files/folders modified in the last 1 month ======
2017-05-22 07:57:44 ----D---- C:\WINDOWS\Temp
2017-05-22 07:52:55 ----RD---- C:\Program Files
2017-05-22 07:50:14 ----D---- C:\Users\David\AppData\Roaming\Skype
2017-05-22 07:40:52 ----D---- C:\Users\David\AppData\Roaming\MPC-HC
2017-05-22 07:40:52 ----D---- C:\ProgramData\VSO
2017-05-22 07:40:51 ----D---- C:\WINDOWS\SoftwareDistribution
2017-05-22 07:40:51 ----D---- C:\WINDOWS\INF
2017-05-22 07:40:51 ----D---- C:\WINDOWS\debug
2017-05-22 07:40:51 ----D---- C:\Windows
2017-05-22 07:37:45 ----RD---- C:\Program Files (x86)
2017-05-22 07:36:25 ----D---- C:\WINDOWS\SysWOW64
2017-05-22 07:36:24 ----D---- C:\Users\David\AppData\Roaming\Vso
2017-05-22 07:36:24 ----A---- C:\Users\David\AppData\Roaming\inst.exe
2017-05-22 07:30:00 ----D---- C:\WINDOWS\system32\sru
2017-05-22 06:36:06 ----D---- C:\Users\David\AppData\Roaming\Seznam.cz
2017-05-21 19:27:26 ----A---- C:\WINDOWS\SYSWOW64\Ext2Srv.EXE
2017-05-21 19:11:28 ----RD---- C:\WINDOWS\Microsoft.NET
2017-05-21 19:07:31 ----SHD---- C:\System Volume Information
2017-05-21 19:07:20 ----D---- C:\WINDOWS\System32
2017-05-21 19:06:42 ----HD---- C:\Program Files\WindowsApps
2017-05-21 19:06:42 ----D---- C:\WINDOWS\AppReadiness
2017-05-20 20:12:19 ----D---- C:\WINDOWS\system32\wbem
2017-05-20 20:12:19 ----D---- C:\WINDOWS\system32\config
2017-05-20 20:11:32 ----D---- C:\WINDOWS\Tasks
2017-05-20 20:11:32 ----D---- C:\WINDOWS\system32\Tasks
2017-05-20 20:11:31 ----D---- C:\ProgramData\Package Cache
2017-05-20 20:11:31 ----D---- C:\AdwCleaner
2017-05-20 20:11:31 ----AD---- C:\Program Files\CCleaner
2017-05-20 20:10:56 ----D---- C:\WINDOWS\registration
2017-05-20 20:10:55 ----HD---- C:\ProgramData
2017-05-20 20:09:34 ----D---- C:\WINDOWS\Logs
2017-05-20 08:26:26 ----RD---- C:\WINDOWS\assembly
2017-05-20 08:25:48 ----D---- C:\WINDOWS\rescache
2017-05-18 15:50:00 ----D---- C:\WINDOWS\system32\WDI
2017-05-18 15:46:15 ----D---- C:\WINDOWS\system32\catroot2
2017-05-18 15:46:02 ----D---- C:\WINDOWS\system32\NDF
2017-05-18 07:15:46 ----D---- C:\WINDOWS\WinSxS
2017-05-18 07:15:46 ----D---- C:\WINDOWS\CbsTemp
2017-05-18 07:15:39 ----D---- C:\WINDOWS\system32\restore
2017-05-16 19:58:47 ----D---- C:\WINDOWS\appcompat
2017-05-15 20:03:50 ----D---- C:\WINDOWS\system32\LogFiles
2017-05-15 17:51:38 ----D---- C:\Program Files (x86)\Google
2017-05-15 17:50:41 ----D---- C:\WINDOWS\system32\DriverStore
2017-05-15 15:53:21 ----D---- C:\WINDOWS\system32\drivers
2017-05-15 12:52:24 ----SD---- C:\ProgramData\Microsoft
2017-05-15 12:49:09 ----RD---- C:\WINDOWS\ImmersiveControlPanel
2017-05-15 12:09:38 ----D---- C:\WINDOWS\Setup
2017-05-15 12:09:30 ----SD---- C:\WINDOWS\SYSWOW64\F12
2017-05-15 12:09:30 ----SD---- C:\WINDOWS\system32\F12
2017-05-15 12:09:30 ----D---- C:\WINDOWS\SYSWOW64\Dism
2017-05-15 12:09:30 ----D---- C:\WINDOWS\system32\WinBioPlugIns
2017-05-15 12:09:30 ----D---- C:\WINDOWS\system32\Dism
2017-05-15 12:09:30 ----D---- C:\WINDOWS\system32\appraiser
2017-05-15 12:09:30 ----D---- C:\WINDOWS\ShellExperiences
2017-05-15 12:09:30 ----D---- C:\WINDOWS\Provisioning
2017-05-15 12:09:30 ----D---- C:\WINDOWS\AppPatch
2017-05-15 12:09:30 ----D---- C:\Program Files\Windows Photo Viewer
2017-05-15 12:09:30 ----D---- C:\Program Files (x86)\Windows Photo Viewer
2017-05-15 12:06:36 ----D---- C:\WINDOWS\SYSWOW64\MUI
2017-05-15 12:06:36 ----D---- C:\WINDOWS\system32\MUI
2017-05-15 12:06:36 ----D---- C:\WINDOWS\system32\inetsrv
2017-05-15 12:06:34 ----A---- C:\WINDOWS\SYSWOW64\mqsnap.dll
2017-05-15 12:06:34 ----A---- C:\WINDOWS\SYSWOW64\mqcertui.dll
2017-05-15 12:06:34 ----A---- C:\WINDOWS\system32\wamregps.dll
2017-05-15 12:06:34 ----A---- C:\WINDOWS\system32\iisRtl.dll
2017-05-15 12:06:34 ----A---- C:\WINDOWS\system32\iisrstap.dll
2017-05-15 12:06:34 ----A---- C:\WINDOWS\system32\iisreset.exe
2017-05-15 12:06:34 ----A---- C:\WINDOWS\system32\cngkeyhelper.dll
2017-05-15 12:06:34 ----A---- C:\WINDOWS\system32\ahadmin.dll
2017-05-15 12:06:34 ----A---- C:\WINDOWS\system32\admwprox.dll
2017-05-15 12:06:33 ----A---- C:\WINDOWS\SYSWOW64\wamregps.dll
2017-05-15 12:06:33 ----A---- C:\WINDOWS\SYSWOW64\mqrt.dll
2017-05-15 12:06:33 ----A---- C:\WINDOWS\SYSWOW64\mqoa.dll
2017-05-15 12:06:33 ----A---- C:\WINDOWS\SYSWOW64\iisRtl.dll
2017-05-15 12:06:33 ----A---- C:\WINDOWS\SYSWOW64\iisrstap.dll
2017-05-15 12:06:33 ----A---- C:\WINDOWS\SYSWOW64\iisreset.exe
2017-05-15 12:06:33 ----A---- C:\WINDOWS\SYSWOW64\cngkeyhelper.dll
2017-05-15 12:06:33 ----A---- C:\WINDOWS\SYSWOW64\ahadmin.dll
2017-05-15 12:06:33 ----A---- C:\WINDOWS\SYSWOW64\admwprox.dll
2017-05-15 12:06:33 ----A---- C:\WINDOWS\system32\mqutil.dll
2017-05-15 12:06:33 ----A---- C:\WINDOWS\system32\mqsnap.dll
2017-05-15 12:06:33 ----A---- C:\WINDOWS\system32\mqrt.dll
2017-05-15 12:06:33 ----A---- C:\WINDOWS\system32\mqoa.dll
2017-05-15 12:06:33 ----A---- C:\WINDOWS\system32\mqlogmgr.dll
2017-05-15 12:06:33 ----A---- C:\WINDOWS\system32\mqcertui.dll
2017-05-15 12:06:32 ----A---- C:\WINDOWS\SYSWOW64\mqutil.dll
2017-05-15 12:06:32 ----A---- C:\WINDOWS\system32\mqsvc.exe
2017-05-15 12:06:32 ----A---- C:\WINDOWS\system32\mqqm.dll
2017-05-15 12:06:32 ----A---- C:\WINDOWS\system32\mqbkup.exe
2017-05-15 11:28:40 ----D---- C:\WINDOWS\system32\CodeIntegrity
2017-05-15 11:27:57 ----D---- C:\ProgramData\USOPrivate
2017-05-15 11:21:12 ----HD---- C:\$GetCurrent
2017-05-15 11:21:06 ----D---- C:\Program Files\Windows NT
2017-05-15 11:20:33 ----D---- C:\WINDOWS\system32\WinBioDatabase
2017-05-15 11:19:51 ----RSD---- C:\WINDOWS\Fonts
2017-05-15 11:19:51 ----D---- C:\WINDOWS\system32\Tasks_Migrated
2017-05-15 11:19:50 ----D---- C:\ProgramData\regid.1991-06.com.microsoft
2017-05-15 11:19:25 ----D---- C:\WINDOWS\HoloShell
2017-05-15 11:18:50 ----RSD---- C:\WINDOWS\Media
2017-05-15 11:18:49 ----D---- C:\WINDOWS\SYSWOW64\wbem
2017-05-15 11:18:49 ----D---- C:\WINDOWS\system32\drivers\etc
2017-05-15 11:17:00 ----D---- C:\WINDOWS\SYSWOW64\Side 9 Screensaver dir
2017-05-15 11:17:00 ----D---- C:\WINDOWS\SYSWOW64\drivers
2017-05-15 11:16:59 ----HD---- C:\WINDOWS\Installer
2017-05-15 11:16:59 ----D---- C:\WINDOWS\system32\zh-TW
2017-05-15 11:16:59 ----D---- C:\WINDOWS\system32\zh-HK
2017-05-15 11:16:59 ----D---- C:\WINDOWS\system32\zh-CN
2017-05-15 11:16:59 ----D---- C:\WINDOWS\system32\UNP
2017-05-15 11:16:59 ----D---- C:\WINDOWS\system32\tr-TR
2017-05-15 11:16:59 ----D---- C:\WINDOWS\system32\th-TH
2017-05-15 11:16:59 ----D---- C:\WINDOWS\system32\sv-SE
2017-05-15 11:16:59 ----D---- C:\WINDOWS\system32\sl-SI
2017-05-15 11:16:59 ----D---- C:\WINDOWS\system32\sk-SK
2017-05-15 11:16:59 ----D---- C:\WINDOWS\system32\ru-RU
2017-05-15 11:16:59 ----D---- C:\WINDOWS\system32\ro-RO
2017-05-15 11:16:59 ----D---- C:\WINDOWS\system32\pt-PT
2017-05-15 11:16:59 ----D---- C:\WINDOWS\system32\pt-BR
2017-05-15 11:16:59 ----D---- C:\WINDOWS\system32\pl-PL
2017-05-15 11:16:59 ----D---- C:\WINDOWS\system32\nl-NL
2017-05-15 11:16:59 ----D---- C:\WINDOWS\system32\nb-NO
2017-05-15 11:16:59 ----D---- C:\WINDOWS\system32\lv-LV
2017-05-15 11:16:59 ----D---- C:\WINDOWS\system32\lt-LT
2017-05-15 11:16:59 ----D---- C:\WINDOWS\system32\ko-KR
2017-05-15 11:16:59 ----D---- C:\WINDOWS\system32\ja-jp
2017-05-15 11:16:59 ----D---- C:\WINDOWS\system32\it-IT
2017-05-15 11:16:59 ----D---- C:\WINDOWS\system32\hu-HU
2017-05-15 11:16:59 ----D---- C:\WINDOWS\system32\hr-HR
2017-05-15 11:16:59 ----D---- C:\WINDOWS\system32\he-IL
2017-05-15 11:16:59 ----D---- C:\WINDOWS\system32\fr-FR
2017-05-15 11:16:59 ----D---- C:\WINDOWS\system32\fi-FI
2017-05-15 11:16:59 ----D---- C:\WINDOWS\system32\et-EE
2017-05-15 11:16:59 ----D---- C:\WINDOWS\system32\es-ES
2017-05-15 11:16:59 ----D---- C:\WINDOWS\system32\en-US
2017-05-15 11:16:59 ----D---- C:\WINDOWS\system32\el-GR
2017-05-15 11:16:59 ----D---- C:\WINDOWS\system32\de-DE
2017-05-15 11:16:59 ----D---- C:\WINDOWS\system32\da-DK
2017-05-15 11:16:59 ----D---- C:\WINDOWS\system32\cs-CZ
2017-05-15 11:16:59 ----D---- C:\WINDOWS\system32\bg-BG
2017-05-15 11:16:59 ----D---- C:\WINDOWS\system32\ar-SA
2017-05-15 11:16:59 ----D---- C:\WINDOWS\ShellNew
2017-05-15 11:16:59 ----D---- C:\WINDOWS\cs
2017-05-15 11:15:23 ----D---- C:\WINDOWS\SYSWOW64\sda
2017-05-15 11:15:23 ----D---- C:\WINDOWS\SYSWOW64\migration
2017-05-15 11:15:23 ----D---- C:\WINDOWS\SYSWOW64\Macromed
2017-05-15 11:15:23 ----D---- C:\WINDOWS\SYSWOW64\IME
2017-05-15 11:15:23 ----D---- C:\WINDOWS\SYSWOW64\en-US
2017-05-15 11:15:23 ----D---- C:\WINDOWS\SYSWOW64\drivers\UMDF
2017-05-15 11:15:23 ----D---- C:\WINDOWS\SYSWOW64\cs-CZ
2017-05-15 11:15:21 ----D---- C:\WINDOWS\system32\SPReview
2017-05-15 11:15:21 ----D---- C:\WINDOWS\system32\spool
2017-05-15 11:15:20 ----D---- C:\WINDOWS\system32\migration
2017-05-15 11:15:20 ----D---- C:\WINDOWS\system32\Macromed
2017-05-15 11:15:20 ----D---- C:\WINDOWS\system32\IME
2017-05-15 11:15:20 ----D---- C:\WINDOWS\system32\EventProviders
2017-05-15 11:15:20 ----D---- C:\WINDOWS\system32\drivers\cs-CZ
2017-05-15 11:15:16 ----D---- C:\WINDOWS\system32\appmgmt
2017-05-15 11:15:15 ----D---- C:\WINDOWS\schemas
2017-05-15 11:15:15 ----D---- C:\WINDOWS\PolicyDefinitions
2017-05-15 11:15:15 ----D---- C:\WINDOWS\OCR
2017-05-15 11:15:15 ----D---- C:\WINDOWS\LiveKernelReports
2017-05-15 11:15:13 ----D---- C:\WINDOWS\ehome
2017-05-15 11:15:12 ----RD---- C:\Users
2017-05-15 11:15:11 ----SHD---- C:\Program Files (x86)\Windows Sidebar
2017-05-15 11:15:11 ----D---- C:\Program Files (x86)\Windows Mail
2017-05-15 11:15:11 ----D---- C:\Program Files (x86)\Microsoft.NET
2017-05-15 11:15:11 ----D---- C:\Program Files (x86)\Common Files
2017-05-15 11:15:10 ----SHD---- C:\Program Files\Windows Sidebar
2017-05-15 11:15:10 ----D---- C:\Program Files\Windows Mail
2017-05-15 11:15:09 ----D---- C:\Program Files\Common Files
2017-05-15 11:15:09 ----AD---- C:\Program Files\Intel
2017-05-15 11:15:09 ----AD---- C:\Program Files\Common Files\microsoft shared
2017-05-15 11:14:59 ----D---- C:\WINDOWS\SYSWOW64\inetsrv
2017-05-15 11:14:58 ----D---- C:\WINDOWS\system32\Recovery
2017-05-15 11:14:03 ----D---- C:\WINDOWS\system32\Sysprep
2017-05-15 11:13:39 ----D---- C:\Temp
2017-05-15 11:13:38 ----D---- C:\WINDOWS\Help
2017-05-15 11:12:16 ----D---- C:\WINDOWS\system32\drivers\UMDF
2017-05-15 11:12:13 ----D---- C:\WINDOWS\twain_32
2017-05-15 10:26:28 ----A---- C:\WINDOWS\progress.ini
2017-05-10 21:47:14 ----D---- C:\WINDOWS\SYSWOW64\sr-Latn-CS
2017-05-10 21:47:14 ----D---- C:\WINDOWS\system32\sr-Latn-CS
2017-05-10 16:14:56 ----SHD---- C:\Config.Msi
2017-05-10 16:14:56 ----D---- C:\ProgramData\Skype
2017-05-10 16:14:55 ----RD---- C:\Program Files (x86)\Skype
2017-05-09 20:46:58 ----D---- C:\WINDOWS\system32\MRT
2017-05-09 20:46:05 ----AC---- C:\WINDOWS\system32\MRT.exe
2017-05-09 20:45:59 ----D---- C:\ProgramData\Microsoft Help
2017-05-03 22:21:33 ----A---- C:\WINDOWS\SYSWOW64\nvspcap.dll
2017-05-03 22:21:33 ----A---- C:\WINDOWS\system32\nvspcap64.dll
2017-05-03 22:21:32 ----A---- C:\WINDOWS\SYSWOW64\nvspbridge.dll
2017-05-03 22:21:32 ----A---- C:\WINDOWS\system32\nvspbridge64.dll
2017-05-03 22:21:32 ----A---- C:\WINDOWS\system32\NvRtmpStreamer64.dll
2017-05-03 21:28:28 ----A---- C:\WINDOWS\NvTelemetryContainerRecovery.bat
2017-04-29 03:05:09 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe
File C:\WINDOWS\system32\winlogon.exe is digitally signed
File C:\WINDOWS\system32\wininit.exe is digitally signed
File C:\WINDOWS\explorer.exe is digitally signed
File C:\WINDOWS\SysWOW64\explorer.exe is digitally signed
File C:\WINDOWS\system32\svchost.exe is digitally signed
File C:\WINDOWS\SysWOW64\svchost.exe is digitally signed
File C:\WINDOWS\system32\services.exe is digitally signed
File C:\WINDOWS\system32\User32.dll is digitally signed
File C:\WINDOWS\SysWOW64\User32.dll is digitally signed
File C:\WINDOWS\system32\userinit.exe is digitally signed
File C:\WINDOWS\SysWOW64\userinit.exe is digitally signed
File C:\WINDOWS\system32\rpcss.dll is digitally signed
File C:\WINDOWS\system32\Drivers\volsnap.sys is digitally signed
====== List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled) ======
R0 asstahci64;asstahci64; C:\WINDOWS\System32\drivers\asstahci64.sys [2015-10-01 89448]
R0 iaStorA;iaStorA; C:\WINDOWS\System32\drivers\iaStorA.sys [2015-09-23 1462208]
R0 iorate;@%SystemRoot%\system32\drivers\iorate.sys,-101; C:\WINDOWS\system32\drivers\iorate.sys [2017-03-18 49568]
R1 AsIO;AsIO; c:\windows\SysWow64\drivers\AsIO.sys [2015-11-15 15232]
R1 AsUpIO;AsUpIO; c:\windows\SysWow64\drivers\AsUpIO.sys [2012-09-14 14464]
R1 Ext2Fsd;Ext2 File System; \??\C:\WINDOWS\system32\Drivers\Ext2Fsd.sys [2016-07-09 799744]
R2 clreg;@%SystemRoot%\system32\drivers\registry.sys,-100; C:\WINDOWS\System32\drivers\registry.sys [2017-03-18 14336]
R2 LGCoreTemp;Logitech CPU Core Tempurature; \??\C:\Program Files\Logitech Gaming Software\Drivers\LgCoreTemp\lgcoretemp.sys [2015-06-21 14184]
R3 AiChargerPlus;AiChargerPlus; c:\windows\SysWow64\drivers\AiChargerPlus.sys [2013-01-28 14848]
R3 ASMTFilter;ASMTFilter; c:\windows\SysWow64\drivers\asmtufdriver.sys [2013-01-28 21400]
R3 bcbtums;@oem112.inf,%BCBTUMS.SvcDesc%;Bluetooth RAM Firmware Download USB Filter; C:\WINDOWS\system32\drivers\bcbtums.sys [2015-10-07 170712]
R3 BCM43XX;@oem8.inf,%BCM43XX_Service_DispName%;Ovladač síťového adaptéru Broadcom 802.11; C:\WINDOWS\system32\DRIVERS\bcmwl664.sys [2015-02-15 7765240]
R3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Služba Bluetooth Enumerator; C:\WINDOWS\system32\DRIVERS\BthEnum.sys [2017-03-18 105472]
R3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Ovladač úspory energie technologie Bluetooth; C:\WINDOWS\system32\DRIVERS\Microsoft.Bluetooth.Legacy.LEEnumerator.sys [2017-03-18 96768]
R3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Bluetooth Device (Personal Area Network); C:\WINDOWS\System32\drivers\bthpan.sys [2017-03-18 129536]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Ovladač rozhraní USB radiostanice Bluetooth; C:\WINDOWS\system32\DRIVERS\BTHUSB.sys [2017-03-18 85504]
R3 dtlitescsibus;@oem24.inf,%DTLITESCSIBUS.DeviceDesc%;DAEMON Tools Lite Virtual SCSI Bus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [2016-04-06 30264]
R3 dtliteusbbus;@oem19.inf,%DTLITEUSBBUS.DeviceDesc%;DAEMON Tools Lite Virtual USB Bus; C:\WINDOWS\System32\drivers\dtliteusbbus.sys [2016-04-06 47672]
R3 GeneStor;@oem72.inf,%GENESTOR.SvcDesc%;Genesys Logic Storage Driver; C:\WINDOWS\system32\DRIVERS\GeneStor.sys [2015-08-30 188840]
R3 int0800;@oem43.inf,%Flashud_svcdesc%;Intel 28F320C3 Flash Update Device Driver v6.4; C:\WINDOWS\System32\drivers\flashud.sys [2009-09-09 51712]
R3 IOMap;IOMap; \??\C:\WINDOWS\system32\drivers\IOMap64.sys [2013-07-02 24824]
R3 LGBusEnum;@oem28.inf,%LGBusEnum.SVCDESC%;Logitech Gaming Virtual Bus Enumerator Driver; C:\WINDOWS\system32\drivers\LGBusEnum.sys [2015-06-11 37408]
R3 LGJoyXlCore;@oem28.inf,%LGJoyXlCore.SVCDESC%;Logitech Translation Layer Driver (LGS); C:\WINDOWS\system32\drivers\LGJoyXlCore.sys [2015-06-11 68384]
R3 LGVirHid;@oem52.inf,%LGVirHid.SVCDESC%;Logitech Gamepanel Virtual HID Device Driver; C:\WINDOWS\system32\drivers\LGVirHid.sys [2015-06-11 26912]
R3 MQAC;@mqutil.dll,-6101; C:\WINDOWS\system32\drivers\mqac.sys [2017-05-15 177664]
R3 NVHDA;@oem16.inf,%NVHDA.SvcDesc%;Service for NVIDIA High Definition Audio Driver; C:\WINDOWS\system32\drivers\nvhda64v.sys [2017-05-02 218040]
R3 nvlddmkm;nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_a2b0acab06663645\nvlddmkm.sys [2017-05-02 14456944]
R3 nvvad_WaveExtensible;@oem4.inf,%nvvad_WaveExtensible.SvcDesc%;NVIDIA Virtual Audio Device (Wave Extensible) (WDM); C:\WINDOWS\system32\drivers\nvvad64v.sys [2017-05-03 48248]
R3 nvvhci;@oem66.inf,%ServiceDesc%;NVVHCI Enumerator Service; C:\WINDOWS\System32\drivers\nvvhci.sys [2017-05-02 59448]
R3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Zařízení Bluetooth (RFCOMM protokol TDI); C:\WINDOWS\System32\drivers\rfcomm.sys [2017-03-18 180736]
R3 rt640x64;@oem102.inf,%rt640.Service.DispName%;Realtek RT640 NT Driver; C:\WINDOWS\System32\drivers\rt640x64.sys [2015-10-21 888064]
S0 megasas2i;megasas2i; C:\WINDOWS\System32\drivers\MegaSas2i.sys [2017-03-18 64416]
S0 scmbus;@scmbus.inf,%scmbus.SvcDesc%;Microsoft Storage Class Memory Bus Driver; C:\WINDOWS\System32\drivers\scmbus.sys [2017-03-18 91040]
S2 CldFlt;Windows Cloud Files Filter Driver; C:\WINDOWS\system32\drivers\cldflt.sys [2017-03-18 12288]
S3 AcpiDev;@acpidev.inf,%AcpiDev.SvcDesc%;ACPI Devices driver; C:\WINDOWS\System32\drivers\AcpiDev.sys [2017-03-18 20480]
S3 ALSysIO;ALSysIO; \??\C:\Users\David\AppData\Local\Temp\ALSysIO64.sys []
S3 applockerfltr;@%systemroot%\system32\srpapi.dll,-102; C:\WINDOWS\system32\drivers\applockerfltr.sys [2017-03-18 17920]
S3 AppvStrm;@%systemroot%\system32\drivers\AppvStrm.sys,-101; C:\WINDOWS\system32\drivers\AppvStrm.sys [2017-03-20 127904]
S3 AppvVemgr;@%systemroot%\system32\drivers\AppvVemgr.sys,-101; C:\WINDOWS\system32\drivers\AppvVemgr.sys [2017-03-20 161696]
S3 AppvVfs;@%systemroot%\system32\drivers\AppvVfs.sys,-101; C:\WINDOWS\system32\drivers\AppvVfs.sys [2017-03-20 143776]
S3 ASUSfilter;ASUS USB Hub filter driver; C:\WINDOWS\System32\drivers\ASUSfilter.sys [2013-03-28 48384]
S3 ASUSstpt;ASUS USB 3.0 Boost Storage Driver (Storage Driver); C:\WINDOWS\System32\drivers\ASUSstpt.sys [2013-03-28 27392]
S3 ASUSumsc;ASUS USB 3.0 Boost Storage Driver (WDM); C:\WINDOWS\System32\drivers\ASUSumsc.sys [2013-03-28 151808]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Ovladač portu Bluetooth; C:\WINDOWS\system32\DRIVERS\BTHport.sys [2017-05-15 980992]
S3 btwampfl;@oem112.inf,%btwampfl.ServiceName%;btwampfl; C:\WINDOWS\system32\DRIVERS\btwampfl.sys [2015-10-07 166104]
S3 CAD;@ChargeArbitration.inf,%CAD_DevDesc%;Charge Arbitration Driver; C:\WINDOWS\System32\drivers\CAD.sys [2017-03-18 53664]
S3 DSI_SiUSBXp_3_1;DSI_SiUSBXp_3_1; C:\WINDOWS\system32\drivers\DSI_SiUSBXp_3_1.sys [2007-09-06 16384]
S3 hvservice;@%SystemRoot%\system32\drivers\hvservice.sys,-16; C:\WINDOWS\system32\drivers\hvservice.sys [2017-03-18 74648]
S3 cht4iscsi;cht4iscsi; C:\WINDOWS\System32\drivers\cht4sx64.sys [2017-03-18 347032]
S3 cht4vbd;@cht4vx64.inf,%cht4vbd.generic%;Chelsio Virtual Bus Driver; C:\WINDOWS\System32\drivers\cht4vx64.sys [2017-03-18 2104224]
S3 iagpio;@iagpio.inf,%iagpio.SVCDESC%;Intel Serial IO GPIO Controller Driver; C:\WINDOWS\System32\drivers\iagpio.sys [2017-03-18 33280]
S3 iaLPSS2i_GPIO2;@iaLPSS2i_GPIO2_SKL.inf,%iaLPSS2i_GPIO2.SVCDESC%;Intel(R) Serial IO GPIO Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2.sys [2017-03-18 70656]
S3 iaLPSS2i_GPIO2_BXT_P;@iaLPSS2i_GPIO2_BXT_P.inf,%iaLPSS2i_GPIO2_BXT_P.SVCDESC%;Intel(R) Serial IO GPIO Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_BXT_P.sys [2017-03-18 85504]
S3 iaLPSS2i_I2C_BXT_P;@iaLPSS2i_I2C_BXT_P.inf,%iaLPSS2i_I2C_BXT_P.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_BXT_P.sys [2017-03-18 168448]
S3 IAMTVE;Driver for Intel(R) Active Management Technology - KCS; C:\WINDOWS\System32\drivers\IAMTVE.sys [2007-04-12 43416]
S3 IndirectKmd;@%SystemRoot%\system32\drivers\IndirectKmd.sys,-100; C:\WINDOWS\System32\drivers\IndirectKmd.sys [2017-03-18 36864]
S3 irda;IrDA; C:\WINDOWS\system32\drivers\irda.sys [2017-03-18 120320]
S3 mausbhost;@mausbhost.inf,%MAUSBHost.ServiceName%;MA-USB Host Controller Driver; C:\WINDOWS\System32\drivers\mausbhost.sys [2017-03-18 405408]
S3 mausbip;@mausbhost.inf,%MAUSBIP.ServiceName%;MA-USB IP Filter Driver; C:\WINDOWS\System32\drivers\mausbip.sys [2017-03-18 51104]
S3 MsSecFlt;@%SystemRoot%\System32\Drivers\mssecflt.sys,-1001; C:\WINDOWS\system32\drivers\mssecflt.sys [2017-03-20 230816]
S3 NetAdapterCx;Network Adapter Wdf Class Extension Library; C:\WINDOWS\system32\drivers\NetAdapterCx.sys [2017-03-18 122368]
S3 netvsc;netvsc; C:\WINDOWS\System32\drivers\netvsc.sys [2017-05-15 118784]
S3 nvdimmn;@nvdimmn.inf,%nvdimmn.SvcDesc%;Microsoft NVDIMM-N device driver; C:\WINDOWS\System32\drivers\nvdimmn.sys [2017-03-18 80896]
S3 NvStreamKms;NVIDIA KMS; \??\C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [2017-05-03 30328]
S3 NvStUSB;NVIDIA Stereoscopic 3D USB driver; C:\WINDOWS\System32\drivers\nvstusb.sys [2015-08-11 469688]
S3 pmem;@pmem.inf,%pmem.SvcDesc%;Microsoft persistent memory disk driver; C:\WINDOWS\System32\drivers\pmem.sys [2017-03-18 101376]
S3 ReFS;ReFS; C:\WINDOWS\system32\drivers\ReFS.sys [2017-03-18 1735584]
S3 SDFRd;@SDFRd.inf,%SDFRd.ServiceDesc%;SDF Reflector; C:\WINDOWS\System32\drivers\SDFRd.sys [2017-03-18 31128]
====== List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled) ======
R2 AppHostSvc;@%windir%\system32\inetsrv\iisres.dll,-30011; %windir%\system32\svchost.exe -k apphost;"ServiceDll" = %windir%\system32\inetsrv\apphostsvc.dll
R2 ASGT;ASGT; C:\Windows\SysWOW64\ASGT.exe [2012-01-17 55296]
R2 asHmComSvc;ASUS HM Com Service; C:\Program Files (x86)\ASUS\AAHM\1.00.22\aaHMSvc.exe [2013-05-07 945152]
R2 BcmBtRSupport;@oem112.inf,%BlueBcmBtRSupport.SVCNAME%;Bluetooth Driver Management Service; C:\WINDOWS\system32\BtwRSupportService.exe [2015-10-07 2255064]
R2 Bonjour Service;Bonjour Service; C:\Program Files\Bonjour\mDNSResponder.exe [2011-08-31 462184]
R2 CDPUserSvc_1f7b1d4;Uživatelská služba platformy připojených zařízení_1f7b1d4; C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup;"ServiceDll" =
R2 DTSAudioSvc;DTSAudioSvc; C:\Program Files\Realtek\Audio\HDA\DTSU2PAuSrv64.exe [2015-06-24 249328]
R2 DusmSvc;@%SystemRoot%\System32\dusmsvc.dll,-1; %SystemRoot%\System32\svchost.exe -k LocalServiceNetworkRestricted;"ServiceDll" = %SystemRoot%\System32\dusmsvc.dll
R2 HuaweiHiSuiteService64.exe;HuaweiHiSuiteService64.exe; C:\Program Files (x86)\HiSuite\HandSetService\HuaweiHiSuiteService64.exe [2016-11-17 192200]
R2 Intel(R) PROSet Monitoring Service;Intel(R) PROSet Monitoring Service; C:\Windows\system32\IProsetMonitor.exe [2013-01-03 183200]
R2 LogiRegistryService;Logitech Gaming Registry Service; C:\Program Files\Logitech Gaming Software\Drivers\APOService\LogiRegistryService.exe [2016-03-30 193656]
R2 MSMQ;@mqutil.dll,-6102; C:\WINDOWS\system32\mqsvc.exe [2017-05-15 26112]
R2 NetMsmqActivator;@%systemroot%\Microsoft.NET\Framework64\v4.0.30319\ServiceModelInstallRC.dll,-8195; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2017-03-18 136360]
R2 NetPipeActivator;@%systemroot%\Microsoft.NET\Framework64\v4.0.30319\ServiceModelInstallRC.dll,-8197; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2017-03-18 136360]
R2 NvContainerLocalSystem;NVIDIA LocalSystem Container; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [2017-05-03 495224]
R2 NVDisplay.ContainerLocalSystem;NVIDIA Display Container LS; C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe [2017-05-01 462968]
prosím o radu, nedávno jsem si všiml, že mi něco vytěžuje procesor i při nečinnosti počítače na 50-60%. Po otevření správce úloh, nebo sledování prostředků ten problém okamžitě zmizí. Nicméně se mi podařilo udělět v tom krátkém okamžiku screen. Ten proces jménem Attribute Utility je tam vidět, ale nestačím o něm nic zjistit a na googlu jsem taky nic nenašel. Adw Cleaner ani Win Defendr nic nedetekují a tím taky končí mé odborné znalosti v oblasti PC. Podle instrukcí přikládám log, třeba se dozvím i něco dalšího
Aha, můj log. je o 4467 znaků delší než můžu odeslat, zkusím to na dvakrát, snad to zvládnu
Logfile of random's system information tool 1.16 (written by random/random)
Run by David at 2017-05-22 07:58:40
Microsoft Windows 10 Pro
System drive C: has 76 GB (33%) free of 228 GB
Total RAM: 16322 MB (81% free)
X64
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 7:58:41, on 22.05.2017
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.15063.0000)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\NVIDIA Corporation\NvContainer\nvcontainer.exe
C:\Program Files (x86)\ASUS\GPU Tweak\GPUTweak.exe
C:\Program Files (x86)\ASUS\GPU Tweak\Monitor.exe
C:\WINDOWS\SysWOW64\UMonit64.exe
C:\Program Files\Logitech Gaming Software\Applets\LCDMedia.exe
C:\Users\David\AppData\Roaming\Seznam.cz\bin\szndesktop.exe
C:\Users\David\AppData\Local\Microsoft\OneDrive\OneDrive.exe
C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe
C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe
C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
C:\Games\World_of_Tanks\WargamingGameUpdater.exe
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Program Files (x86)\ControlCenter4\BrCtrlCntr.exe
C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe
C:\Program Files (x86)\ControlCenter4\BrCcUxSys.exe
C:\Program Files (x86)\Brother\Brother Help\BrotherHelp.exe
C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe
C:\Program Files (x86)\Bloody5\Bloody5\Bloody5.exe
C:\Program Files (x86)\Skype\Browser\SkypeBrowserHost.exe
C:\Program Files\trend micro\David_RSITx64.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = Preserve
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=
O1 - Hosts: ::1 localhost #[IPv6]
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_111\bin\ssv.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_111\bin\jp2ssv.dll
O2 - BHO: Adblock Plus for IE Browser Helper Object - {FFCB3198-32F3-4E8B-9539-4324694ED664} - C:\Program Files\Adblock Plus for IE\AdblockPlus32.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
O4 - HKLM\..\Run: [ControlCenter4] C:\Program Files (x86)\ControlCenter4\BrCcBoot.exe /autorun
O4 - HKLM\..\Run: [BrStsMon00] C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe /AUTORUN
O4 - HKLM\..\Run: [BrHelp] C:\Program Files (x86)\Brother\Brother Help\BrotherHelp.exe /AUTORUN
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [seznam-listicka-distribuce] "C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe" -s -d listicka 1 szn-software-listicka cz.seznam.software.autoupdate
O4 - HKLM\..\Run: [Wondershare Helper Compact.exe] C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKCU\..\Run: [cz.seznam.software.autoupdate] "C:\Users\David\AppData\Roaming\Seznam.cz\szninstall.exe" -c
O4 - HKCU\..\Run: [cz.seznam.software.szndesktop] "C:\Users\David\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" -q
O4 - HKCU\..\Run: [OneDrive] "C:\Users\David\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
O4 - HKCU\..\Run: [Bloody2] "C:\Program Files (x86)\Bloody5\Bloody5\Bloody5.exe" Minimum
O4 - HKCU\..\Run: [GarminExpressTrayApp] "C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe"
O4 - HKCU\..\Run: [DAEMON Tools Lite Automount] "C:\Program Files (x86)\DAEMON Tools Lite\DTAgent.exe" -autorun
O4 - HKCU\..\Run: [World of Tanks] "C:\Games\World_of_Tanks\WargamingGameUpdater.exe"
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O8 - Extra context menu item: &Block This Image (ABP) - C:\Program Files (x86)\Adblock Pro\blockimg.html
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\Program Files (x86)\Microsoft Office\Office12\EXCEL.EXE/3000
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~3\Office12\REFIEBAR.DLL
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - Trusted Zone: *.starstable.com
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: ASUS Com Service (asComSvc) - Unknown owner - C:\Program Files (x86)\ASUS\AXSP\1.01.02\atkexComSvc.exe
O23 - Service: ASGT - Unknown owner - C:\Windows\SysWOW64\ASGT.exe
O23 - Service: ASUS HM Com Service (asHmComSvc) - ASUSTeK Computer Inc. - C:\Program Files (x86)\ASUS\AAHM\1.00.22\aaHMSvc.exe
O23 - Service: AsusFanControlService - ASUSTeK Computer Inc. - C:\Program Files (x86)\ASUS\AsusFanControlService\1.02.22\AsusFanControlService.exe
O23 - Service: @oem112.inf,%BlueBcmBtRSupport.SVCNAME%;Bluetooth Driver Management Service (BcmBtRSupport) - Unknown owner - C:\WINDOWS\system32\BtwRSupportService.exe (file missing)
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: BrYNSvc - Brother Industries, Ltd. - C:\Program Files (x86)\Browny02\BrYNSvc.exe
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: Disc Soft Lite Bus Service - Disc Soft Ltd - C:\Program Files (x86)\DAEMON Tools Lite\DiscSoftBusServiceLite.exe
O23 - Service: DTSAudioSvc - DTS, Inc - C:\Program Files\Realtek\Audio\HDA\DTSU2PAuSrv64.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: Ext2Fsd Service Manager (Ext2Srv) - www.ext2fsd.com - C:\Program Files\Ext2Fsd\Ext2Srv.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: Garmin Device Interaction Service - Garmin Ltd. or its subsidiaries - C:\Program Files (x86)\Garmin\Device Interaction Service\GarminService.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: HuaweiHiSuiteService64.exe - Unknown owner - C:\Program Files (x86)\HiSuite\HandSetService\HuaweiHiSuiteService64.exe
O23 - Service: Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
O23 - Service: Intel(R) PROSet Monitoring Service - Unknown owner - C:\Windows\system32\IProsetMonitor.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Logitech Gaming Registry Service (LogiRegistryService) - Logitech Inc. - C:\Program Files\Logitech Gaming Software\Drivers\APOService\LogiRegistryService.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @mqutil.dll,-6102 (MSMQ) - Unknown owner - C:\WINDOWS\system32\mqsvc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: NVIDIA LocalSystem Container (NvContainerLocalSystem) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
O23 - Service: NVIDIA NetworkService Container (NvContainerNetworkService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
O23 - Service: NVIDIA Display Container LS (NVDisplay.ContainerLocalSystem) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
O23 - Service: NVIDIA Telemetry Container (NvTelemetryContainer) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\SecurityHealthAgent.dll,-1002 (SecurityHealthService) - Unknown owner - C:\WINDOWS\system32\SecurityHealthService.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender Advanced Threat Protection\MsSense.exe,-1001 (Sense) - Unknown owner - C:\Program Files (x86)\Windows Defender Advanced Threat Protection\MsSense.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spectrum.exe,-101 (spectrum) - Unknown owner - C:\WINDOWS\system32\spectrum.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\WINDOWS\system32\TieringEngineService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 14231 bytes
====== Enumerating Processes ======
C:\WINDOWS\system32\lsass.exe
c:\windows\system32\svchost.exe -k dcomlaunch -s PlugPlay
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\fontdrvhost.exe
c:\windows\system32\svchost.exe -k rpcss
c:\windows\system32\svchost.exe -k dcomlaunch -s LSM
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted
c:\windows\system32\svchost.exe -k localservice -s bthserv
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-6f35972b-5821-473a-8aa0-1e99462f2b5d -SystemEventPortName:HostProcess-35168bff-0492-4bf6-becf-269829b98441 -IoCancelEventPortName:HostProcess-3ff23121-2375-449d-b259-b8153a7059b7 -NonStateChangingEventPortName:HostProcess-4086566f-dc88-4378-8456-2027a2745daa -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:6609702e-a9ce-465f-b3ee-1765f2fa7d75 -DeviceGroupId:WudfDefaultDevicePool
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -s NcbService
c:\windows\system32\svchost.exe -k localservicenetworkrestricted -s TimeBrokerSvc
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -s hidserv
c:\windows\system32\svchost.exe -k netsvcs -s Schedule
c:\windows\system32\svchost.exe -k netsvcs -s ProfSvc
c:\windows\system32\svchost.exe -k localservicenetworkrestricted -s EventLog
c:\windows\system32\svchost.exe -k netsvcs -s UserManager
"C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem" -r -p 30000
c:\windows\system32\svchost.exe -k localservice -s nsi
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
c:\windows\system32\svchost.exe -k netsvcs -s Themes
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -s CscService
c:\windows\system32\svchost.exe -k localservicenetworkrestricted -s Dhcp
c:\windows\system32\svchost.exe -k localservice -s EventSystem
c:\windows\system32\svchost.exe -k appmodel -s StateRepository
c:\windows\system32\svchost.exe -k netsvcs -s SENS
c:\windows\system32\svchost.exe -k networkservice -s NlaSvc
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -s AudioEndpointBuilder
c:\windows\system32\svchost.exe -k localservice -s FontCache
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -s DeviceAssociationService
c:\windows\system32\svchost.exe -k localservice -s netprofm
C:\WINDOWS\system32\dashost.exe
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
c:\windows\system32\svchost.exe -k networkservice -s Dnscache
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted
c:\windows\system32\svchost.exe -k netsvcs -s ShellHWDetection
C:\WINDOWS\System32\spoolsv.exe
c:\windows\system32\svchost.exe -k networkservice -s LanmanWorkstation
C:\Windows\system32\IProsetMonitor.exe
c:\windows\system32\svchost.exe -k apphost -s AppHostSvc
C:\WINDOWS\system32\BtwRSupportService.exe
"C:\Program Files (x86)\ASUS\AAHM\1.00.22\aaHMSvc.exe"
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files\Realtek\Audio\HDA\DTSU2PAuSrv64.exe"
c:\windows\system32\svchost.exe -k netsvcs -s Winmgmt
C:\WINDOWS\System32\svchost.exe -k utcsvc
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -s SysMain
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -s PcaSvc
"C:\Program Files\Bonjour\mDNSResponder.exe"
"C:\Program Files (x86)\HiSuite\HandSetService\HuaweiHiSuiteService64.exe" -/service
C:\Windows\SysWOW64\ASGT.exe
c:\windows\system32\svchost.exe -k appmodel -s tiledatamodelsvc
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -s TrkWks
C:\WINDOWS\system32\svchost.exe -k imgsvc
c:\windows\system32\svchost.exe -k netsvcs -s WpnService
c:\windows\system32\svchost.exe -k localservicenonetwork -s DPS
c:\windows\system32\svchost.exe -k localservice -s WinHttpAutoProxySvc
c:\windows\system32\svchost.exe -k iissvcs
c:\windows\system32\svchost.exe -k networkservice -s CryptSvc
C:\WINDOWS\system32\mqsvc.exe
"C:\Program Files\Logitech Gaming Software\Drivers\APOService\LogiRegistryService.exe"
"C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe" -s NvTelemetryContainer -f "C:\ProgramData\NVIDIA\NvTelemetryContainer.log" -l 3 -d "C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\plugin"
"C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe" -s NvContainerLocalSystem -f "C:\ProgramData\NVIDIA\NvContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\NvContainer\plugins\LocalSystem" -r -p 30000
c:\windows\system32\svchost.exe -k netsvcs -s LanmanServer
c:\windows\system32\svchost.exe -k localservice -s WdiServiceHost
c:\windows\system32\svchost.exe -k netsvcs -s iphlpsvc
c:\windows\microsoft.net\framework64\v4.0.30319\smsvchost.exe
c:\windows\system32\svchost.exe -k localserviceandnoimpersonation -s SSDPSRV
"c:\windows\microsoft.net\framework64\v4.0.30319\smsvchost.exe" -netmsmqactivator
c:\windows\system32\svchost.exe -k localservicenetworkrestricted -s NgcCtnrSvc
c:\windows\system32\svchost.exe -k localservice -s fdPHost
c:\windows\system32\svchost.exe -k localserviceandnoimpersonation -s FDResPub
c:\windows\system32\svchost.exe -k networkservicenetworkrestricted -s PolicyAgent
c:\windows\system32\svchost.exe -k localservicenetworkrestricted -s HomeGroupProvider
c:\windows\system32\svchost.exe -k netsvcs -s Browser
c:\windows\system32\svchost.exe -k netsvcs -s TokenBroker
c:\windows\system32\svchost.exe -k localservice -s CDPSvc
c:\windows\system32\svchost.exe -k localservice -s LicenseManager
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -s WdiSystemHost
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\DAEMON Tools Lite\DiscSoftBusServiceLite.exe"
"C:\Program Files (x86)\Browny02\BrYNSvc.exe"
c:\windows\system32\svchost.exe -k netsvcs -s DoSvc
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -s fhsvc
c:\windows\system32\svchost.exe -k localservicenetworkrestricted -s wscsvc
C:\WINDOWS\system32\svchost.exe -k SDRSVC
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -s StorSvc
c:\windows\system32\svchost.exe -k netsvcs -s lfsvc
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -s DsSvc
c:\windows\system32\svchost.exe -k netsvcs -s Appinfo
"C:\Program Files\Ext2Fsd\Ext2Srv.exe"
C:\WINDOWS\System32\WinLogon.exe -SpecialSession
C:\WINDOWS\System32\fontdrvhost.exe
C:\WINDOWS\System32\dwm.exe
"C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -f "C:\ProgramData\NVIDIA\DisplaySessionContainer%d.log" -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\Session" -r -l 3 -p 30000 -c
C:\WINDOWS\system32\WLANExt.exe 1769323578752
\??\C:\WINDOWS\system32\conhost.exe 0x4
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -s NgcSvc
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted -s lmhosts
C:\WINDOWS\System32\svchost.exe -k LocalServiceNoNetwork -s NcdAutoSetup
c:\windows\system32\sihost.exe
c:\windows\system32\svchost.exe -k unistacksvcgroup -s CDPUserSvc
"C:\Program Files (x86)\NVIDIA Corporation\NvContainer\nvcontainer.exe" -f "C:\ProgramData\NVIDIA\NvContainerUser%d.log" -d "C:\Program Files (x86)\NVIDIA Corporation\NvContainer\plugins\User" -r -l 3 -p 30000 -c
c:\windows\system32\svchost.exe -k unistacksvcgroup -s WpnUserService
c:\windows\system32\taskhostw.exe
C:\WINDOWS\Explorer.EXE
"C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
"C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe" -ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca
C:\Windows\System32\RuntimeBroker.exe -Embedding
C:\Program Files (x86)\ASUS\GPU Tweak\GPUTweak.exe
C:\WINDOWS\system32\SettingSyncHost.exe -Embedding
C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
c:\windows\system32\svchost.exe -k unistacksvcgroup
"C:\Program Files (x86)\ASUS\GPU Tweak\Monitor.exe" min
C:\WINDOWS\SysWOW64\UMonit64.exe
"C:\Program Files\Windows Defender\MSASCuiL.exe"
"C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe" -s
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /DTSU2P
"C:\Program Files\Intel\Thunderbolt Software\Thunderbolt.exe"
"C:\Program Files\Logitech Gaming Software\LCore.exe" /minimized
"C:\Program Files\Logitech Gaming Software\Applets\LCDMedia.exe"
"C:\Program Files\Logitech Gaming Software\Applets\LCDCountdown.exe"
"C:\Program Files\Logitech Gaming Software\Applets\LCDClock.exe"
"C:\Program Files\Logitech Gaming Software\Applets\LCDPop3.exe"
"C:\Program Files\Logitech Gaming Software\Applets\LCDRSS.exe"
C:\Users\David\AppData\Roaming\Seznam.cz\bin\szndesktop.exe
"C:\Users\David\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
"C:\Users\David\AppData\Roaming\Seznam.cz\bin\listicka-x64.exe"
\??\C:\WINDOWS\system32\conhost.exe 0x4
C:\Program Files\CCleaner\CCleaner64.exe
"C:\Program Files\NVIDIA Corporation\ShadowPlay\nvspcaps64.exe" -Embedding
"C:\Program Files\NVIDIA Corporation\ShadowPlay\nvsphelper64.exe"
"C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe"
"C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe" --type=renderer --disable-gpu-compositing --no-sandbox --primordial-pipe-token=B51A4633878D9C92AE37D05E16369B0A --lang=en-US --lang=en-US --log-file="C:\Users\David\AppData\Local\NVIDIA Corporation\NVIDIA Share\CefCache\debug.log" --enable-pinch --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --content-image-texture-target=0,0,3553;0,1,3553;0,2,3553;0,3,3553;0,4,3553;0,5,3553;0,6,3553;0,7,3553;0,8,3553;0,9,3553;0,10,3553;0,11,3553;0,12,3553;0,13,3553;0,14,3553;0,15,3553;1,0,3553;1,1,3553;1,2,3553;1,3,3553;1,4,3553;1,5,3553;1,6,3553;1,7,3553;1,8,3553;1,9,3553;1,10,3553;1,11,3553;1,12,3553;1,13,3553;1,14,3553;1,15,3553;2,0,3553;2,1,3553;2,2,3553;2,3,3553;2,4,3553;2,5,3553;2,6,3553;2,7,3553;2,8,3553;2,9,3553;2,10,3553;2,11,3553;2,12,3553;2,13,3553;2,14,3553;2,15,3553;3,0,3553;3,1,3553;3,2,3553;3,3,3553;3,4,3553;3,5,3553;3,6,3553;3,7,3553;3,8,3553;3,9,3553;3,10,3553;3,11,3553;3,12,3553;3,13,3553;3,14,3553;3,15,3553 --disable-accelerated-video-decode --disable-webrtc-hw-encoding --disable-gpu-compositing --service-request-channel-token=B51A4633878D9C92AE37D05E16369B0A --renderer-client-id=2 --mojo-platform-channel-handle=1732 /prefetch:1
"C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe" index.js
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Games\World_of_Tanks\WargamingGameUpdater.exe"
"C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
C:\Program Files (x86)\ControlCenter4\BrCtrlCntr.exe
"C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe" /AUTORUN
C:\Program Files (x86)\ControlCenter4\BrCcUxSys.exe
"C:\Program Files (x86)\Brother\Brother Help\BrotherHelp.exe" /AUTORUN
"C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe"
C:\WINDOWS\system32\ApplicationFrameHost.exe -Embedding
C:\WINDOWS\system32\DllHost.exe /Processid:{973D20D7-562D-44B9-B70B-5A0F49CCDF3F}
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -s SensorService
C:\Windows\System32\smartscreen.exe -Embedding
"C:\Program Files (x86)\Bloody5\Bloody5\Bloody5.exe"
"C:\Program Files (x86)\Skype\Browser\SkypeBrowserHost.exe" -Embedding
"C:\Windows\System32\GameBarPresenceWriter.exe" -ServerName:Windows.Gaming.GameBar.Internal.PresenceWriterServer
"C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe" -ServerName:MicrosoftEdge.AppXdnhjhccw3zf0j06tkg3jtqr00qdm0khc.mca
C:\WINDOWS\system32\svchost.exe -k netsvcs -s XblAuthManager
C:\WINDOWS\system32\browser_broker.exe -Embedding
"C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe" -ServerName:ContentProcess.AppX6z3cwk4fvgady6zya12j1cw28d228a7k.mca
"C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe" -ServerName:ContentProcess.AppX6z3cwk4fvgady6zya12j1cw28d228a7k.mca
"C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe" -ServerName:ContentProcess.AppX6z3cwk4fvgady6zya12j1cw28d228a7k.mca
"C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe" -ServerName:ContentProcess.AppX6z3cwk4fvgady6zya12j1cw28d228a7k.mca
C:\Users\David\AppData\Roaming\Microsoft\Windows\svchost.exe -WindowsCheck
c:\Windows\System32\attrib.exe
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\WINDOWS\system32\NOTEPAD.EXE" C:\rsit\info.txt
C:\WINDOWS\System32\svchost.exe -k WerSvcGroup
C:\WINDOWS\system32\wermgr.exe -upload
C:\WINDOWS\system32\svchost.exe -k netsvcs -s wisvc
C:\WINDOWS\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
C:\WINDOWS\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
"C:\Users\David\Desktop\RSITx64.exe"
C:\WINDOWS\system32\wbem\wmiprvse.exe
====== Scheduled tasks folder ======
C:\WINDOWS\system32\tasks\Adobe Acrobat Update Task - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
C:\WINDOWS\system32\tasks\Adobe Flash Player Updater - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\WINDOWS\system32\tasks\bandicam_start - C:\Program Files (x86)\Bandicam\bdcam.exe /nosplash
C:\WINDOWS\system32\tasks\CCleanerSkipUAC - "C:\Program Files\CCleaner\CCleaner.exe" $(Arg0)
C:\WINDOWS\system32\tasks\CreateExplorerShellUnelevatedTask - C:\WINDOWS\Explorer.exe /NOUACCHECK
C:\WINDOWS\system32\tasks\GarminUpdaterTask - C:\Program Files (x86)\Garmin\Express SelfUpdater\ExpressSelfUpdater.exe
C:\WINDOWS\system32\tasks\GoogleUpdateTaskMachineCore - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\system32\tasks\GoogleUpdateTaskMachineUA - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\WINDOWS\system32\tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} - C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe -d "C:\Program Files\NVIDIA Corporation\NvDriverUpdateCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerDriverUpdateCheck.log
C:\WINDOWS\system32\tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} - "C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe"
C:\WINDOWS\system32\tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} - C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe --launcher=TaskScheduler
C:\WINDOWS\system32\tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} - C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe
C:\WINDOWS\system32\tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} - C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe
C:\WINDOWS\system32\tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} - C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmMon.exe
C:\WINDOWS\system32\tasks\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} - C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe --logon
C:\WINDOWS\system32\tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} - C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe
C:\WINDOWS\system32\tasks\OneDrive Standalone Update Task v2 - %localappdata%\Microsoft\OneDrive\OneDriveStandaloneUpdater.exe
C:\WINDOWS\system32\tasks\UMonitor Task - C:\WINDOWS\SysWOW64\UMonit64.exe
C:\WINDOWS\system32\tasks\User_Feed_Synchronization-{DB603BE7-AA25-44FC-89A1-268DCE49E2E7} - C:\Windows\system32\msfeedssync.exe sync
C:\WINDOWS\system32\tasks\{3DDB0906-2559-4AE1-AE89-512F37C00993} - "c:\windows\system32\launchwinapp.exe" https://ui.skype.com/ui/0/7.33.0.104/cs ... =tsInstall
C:\WINDOWS\system32\tasks\{655BDB67-48EE-4586-9667-B3F1E9F799EF} - C:\WINDOWS\system32\pcalua.exe -a C:\Users\David\AppData\Local\Temp\Temp1_IB-863_864_Realtek_6.2.9200.30161_XPW7W8_WHQL_20130626_nD3.zip\RtsUStor_6.2.9200.30161_XPW7W8_WHQL_20130626_nD3\setup.exe
C:\WINDOWS\system32\tasks\{7E18AE32-7483-4A33-BE63-ADA8E4911D94} - C:\Games\World_of_Tanks\WoTLauncher.exe
C:\WINDOWS\system32\tasks\{CF43F21A-8762-4956-B755-AC1EFDECE850} - C:\Games\World_of_Tanks\WoTLauncher.exe
C:\WINDOWS\system32\tasks\WPD\SqmUpload_S-1-5-21-793213919-1041953031-1442403603-1000 - %windir%\system32\rundll32.exe portabledeviceapi.dll,#1
C:\WINDOWS\system32\tasks\System\SystemCheck - %userprofile%\AppData\Roaming\Microsoft\Windows\svchost.exe -WindowsCheck
C:\WINDOWS\system32\tasks\Microsoft\XblGameSave\XblGameSaveTask - %windir%\System32\XblGameSaveTask.exe standby
C:\WINDOWS\system32\tasks\Microsoft\XblGameSave\XblGameSaveTaskLogon - %windir%\System32\XblGameSaveTask.exe logon
C:\WINDOWS\system32\tasks\Microsoft\Windows\WwanSvc\NotificationTask - %SystemRoot%\System32\WiFiTask.exe wwan
C:\WINDOWS\system32\tasks\Microsoft\Windows\Workplace Join\Automatic-Device-Join - %SystemRoot%\System32\dsregcmd.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start - C:\WINDOWS\system32\sc.exe start wuauserv
C:\WINDOWS\system32\tasks\Microsoft\Windows\WindowsUpdate\sih - %systemroot%\System32\sihclient.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\WindowsUpdate\sihboot - %systemroot%\System32\sihclient.exe /boot
C:\WINDOWS\system32\tasks\Microsoft\Windows\WindowsBackup\AutomaticBackup - %systemroot%\system32\rundll32.exe /d sdengin2.dll,ExecuteScheduledBackup
C:\WINDOWS\system32\tasks\Microsoft\Windows\WindowsBackup\Windows Backup Monitor - %systemroot%\system32\sdclt.exe /CHECKSKIPPED
C:\WINDOWS\system32\tasks\Microsoft\Windows\Windows Media Sharing\UpdateLibrary - "%ProgramFiles%\Windows Media Player\wmpnscfg.exe"
C:\WINDOWS\system32\tasks\Microsoft\Windows\Windows Filtering Platform\BfeOnServiceStartTypeChange - %windir%\system32\rundll32.exe bfe.dll,BfeOnServiceStartTypeChange
C:\WINDOWS\system32\tasks\Microsoft\Windows\Windows Error Reporting\QueueReporting - %windir%\system32\wermgr.exe -upload
C:\WINDOWS\system32\tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance - C:\Program Files\Windows Defender\MpCmdRun.exe -IdleTask -TaskName WdCacheMaintenance
C:\WINDOWS\system32\tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup - C:\Program Files\Windows Defender\MpCmdRun.exe -IdleTask -TaskName WdCleanup
C:\WINDOWS\system32\tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan - C:\Program Files\Windows Defender\MpCmdRun.exe Scan -ScheduleJob -ScanTrigger 55
C:\WINDOWS\system32\tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification - C:\Program Files\Windows Defender\MpCmdRun.exe -IdleTask -TaskName WdVerification
C:\WINDOWS\system32\tasks\Microsoft\Windows\WCM\WiFiTask - %SystemRoot%\System32\WiFiTask.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\UPnP\UPnPHostConfig - sc.exe config upnphost start= auto
C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\Combined Scan Download Install - %systemroot%\system32\usoclient.exe ScanInstallWait
C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\Maintenance Install - %systemroot%\system32\usoclient.exe StartInstall
C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\MusUx_UpdateInterval - %systemroot%\system32\MusNotification.exe Display
C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\Policy Install - %systemroot%\system32\usoclient.exe StartInstall
C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\Reboot - %systemroot%\system32\MusNotification.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\Refresh Settings - %systemroot%\system32\usoclient.exe RefreshSettings
C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\Resume On Boot - %systemroot%\system32\usoclient.exe ResumeUpdate
C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\Schedule Scan - %systemroot%\system32\usoclient.exe StartScan
C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker_Display - C:\windows\system32\MusNotification.exe Display
C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker_ReadyToReboot - C:\windows\system32\MusNotification.exe ReadyToReboot
C:\WINDOWS\system32\tasks\Microsoft\Windows\UNP\RunCampaignManager - %windir%\System32\UNP\UNPCampaignManager.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Time Zone\SynchronizeTimeZone - %windir%\system32\tzsync.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Time Synchronization\SynchronizeTime - %windir%\system32\sc.exe start w32time task_started
C:\WINDOWS\system32\tasks\Microsoft\Windows\Tcpip\IpAddressConflict1 - %windir%\system32\rundll32.exe ndfapi.dll,NdfRunDllDuplicateIPOffendingSystem
C:\WINDOWS\system32\tasks\Microsoft\Windows\Tcpip\IpAddressConflict2 - %windir%\system32\rundll32.exe ndfapi.dll,NdfRunDllDuplicateIPDefendingSystem
C:\WINDOWS\system32\tasks\Microsoft\Windows\SystemRestore\SR - %windir%\system32\srtasks.exe ExecuteScheduledSPPCreation
C:\WINDOWS\system32\tasks\Microsoft\Windows\Sysmain\WsSwapAssessmentTask - %windir%\system32\rundll32.exe sysmain.dll,PfSvWsSwapAssessmentTask
C:\WINDOWS\system32\tasks\Microsoft\Windows\Subscription\EnableLicenseAcquisition - %SystemRoot%\system32\ClipRenew.exe -e
C:\WINDOWS\system32\tasks\Microsoft\Windows\Subscription\LicenseAcquisition - %SystemRoot%\system32\ClipRenew.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Storage Tiers Management\Storage Tiers Optimization - %windir%\system32\defrag.exe -c -h -g -# -m 8 -i 13500
C:\WINDOWS\system32\tasks\Microsoft\Windows\Speech\SpeechModelDownloadTask - %windir%\system32\speech_onecore\common\SpeechModelDownload.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\SpacePort\SpaceAgentTask - %windir%\system32\SpaceAgent.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\SpacePort\SpaceManagerTask - %windir%\system32\spaceman.exe /Work
C:\WINDOWS\system32\tasks\Microsoft\Windows\Shell\FamilySafetyMonitor - %windir%\System32\wpcmon.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\SharedPC\Account Cleanup - %windir%\System32\rundll32.exe %windir%\System32\Windows.SharedPC.AccountManager.dll,StartMaintenance
C:\WINDOWS\system32\tasks\Microsoft\Windows\RemovalTools\MRT_HB - C:\WINDOWS\system32\MRT.exe /EHB /Q
C:\WINDOWS\system32\tasks\Microsoft\Windows\RemoteAssistance\RemoteAssistanceTask - %windir%\system32\RAServer.exe /offerraupdate
C:\WINDOWS\system32\tasks\Microsoft\Windows\Plug and Play\Sysprep Generalize Drivers - %SystemRoot%\System32\drvinst.exe 6
C:\WINDOWS\system32\tasks\Microsoft\Windows\NlaSvc\WiFiTask - %SystemRoot%\System32\WiFiTask.exe nla
C:\WINDOWS\system32\tasks\Microsoft\Windows\NetTrace\GatherNetworkInfo - %windir%\system32\gatherNetworkInfo.vbs
C:\WINDOWS\system32\tasks\Microsoft\Windows\MUI\LPRemove - %windir%\system32\lpremove.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser - %SystemRoot%\System32\MbaeParserTask.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Media Center\ActivateWindowsSearch - %SystemRoot%\ehome\ehPrivJob.exe /DoActivateWindowsSearch
C:\WINDOWS\system32\tasks\Microsoft\Windows\Media Center\ConfigureInternetTimeService - %SystemRoot%\ehome\ehPrivJob.exe /DoConfigureInternetTimeService
C:\WINDOWS\system32\tasks\Microsoft\Windows\Media Center\DispatchRecoveryTasks - %SystemRoot%\ehome\ehPrivJob.exe /DoRecoveryTasks $(Arg0)
C:\WINDOWS\system32\tasks\Microsoft\Windows\Media Center\ehDRMInit - %SystemRoot%\ehome\ehPrivJob.exe /DRMInit
C:\WINDOWS\system32\tasks\Microsoft\Windows\Media Center\InstallPlayReady - %SystemRoot%\ehome\ehPrivJob.exe /InstallPlayReady $(Arg0)
C:\WINDOWS\system32\tasks\Microsoft\Windows\Media Center\mcupdate - %SystemRoot%\ehome\mcupdate $(Arg0)
C:\WINDOWS\system32\tasks\Microsoft\Windows\Media Center\mcupdate_scheduled - %SystemRoot%\ehome\mcupdate -crl -hms -pscn 15
C:\WINDOWS\system32\tasks\Microsoft\Windows\Media Center\MediaCenterRecoveryTask - %SystemRoot%\ehome\mcupdate.exe -MediaCenterRecoveryTask
C:\WINDOWS\system32\tasks\Microsoft\Windows\Media Center\ObjectStoreRecoveryTask - %SystemRoot%\ehome\mcupdate.exe -ObjectStoreRecoveryTask
C:\WINDOWS\system32\tasks\Microsoft\Windows\Media Center\OCURActivate - %SystemRoot%\ehome\ehPrivJob.exe /OCURActivate
C:\WINDOWS\system32\tasks\Microsoft\Windows\Media Center\OCURDiscovery - %SystemRoot%\ehome\ehPrivJob.exe /OCURDiscovery $(Arg0)
C:\WINDOWS\system32\tasks\Microsoft\Windows\Media Center\PBDADiscovery - %SystemRoot%\ehome\ehPrivJob.exe /PBDADiscovery
C:\WINDOWS\system32\tasks\Microsoft\Windows\Media Center\PBDADiscoveryW1 - %SystemRoot%\ehome\ehPrivJob.exe /wait:7 /PBDADiscovery
C:\WINDOWS\system32\tasks\Microsoft\Windows\Media Center\PBDADiscoveryW2 - %SystemRoot%\ehome\ehPrivJob.exe /wait:90 /PBDADiscovery
C:\WINDOWS\system32\tasks\Microsoft\Windows\Media Center\PeriodicScanRetry - %windir%\ehome\MCUpdate.exe -pscn 0
C:\WINDOWS\system32\tasks\Microsoft\Windows\Media Center\PvrRecoveryTask - %SystemRoot%\ehome\mcupdate.exe -PvrRecoveryTask
C:\WINDOWS\system32\tasks\Microsoft\Windows\Media Center\PvrScheduleTask - %SystemRoot%\ehome\mcupdate.exe -PvrSchedule
C:\WINDOWS\system32\tasks\Microsoft\Windows\Media Center\RecordingRestart - %SystemRoot%\ehome\ehrec /RestartRecording
C:\WINDOWS\system32\tasks\Microsoft\Windows\Media Center\RegisterSearch - %SystemRoot%\ehome\ehPrivJob.exe /DoRegisterSearch $(Arg0)
C:\WINDOWS\system32\tasks\Microsoft\Windows\Media Center\ReindexSearchRoot - %SystemRoot%\ehome\ehPrivJob.exe /DoReindexSearchRoot
C:\WINDOWS\system32\tasks\Microsoft\Windows\Media Center\SqlLiteRecoveryTask - %SystemRoot%\ehome\mcupdate.exe -SqlLiteRecoveryTask
C:\WINDOWS\system32\tasks\Microsoft\Windows\Media Center\StartRecording - %SystemRoot%\ehome\ehrec /StartRecording
C:\WINDOWS\system32\tasks\Microsoft\Windows\Media Center\UpdateRecordPath - %SystemRoot%\ehome\ehPrivJob.exe /DoUpdateRecordPath $(Arg0)
C:\WINDOWS\system32\tasks\Microsoft\Windows\Management\Provisioning\Cellular - %windir%\system32\ProvTool.exe /turn 7 /source CellStateChangeTask
C:\WINDOWS\system32\tasks\Microsoft\Windows\Management\Provisioning\Logon - %windir%\system32\ProvTool.exe /turn 5 /source LogonIdleTask
C:\WINDOWS\system32\tasks\Microsoft\Windows\Location\Notifications - %windir%\System32\LocationNotificationWindows.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Location\WindowsActionDialog - %windir%\System32\WindowsActionDialog.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Feedback\Siuf\DmClient - %windir%\system32\dmclient.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Feedback\Siuf\DmClientOnScenarioDownload - %windir%\system32\dmclient.exe utcwnf
C:\WINDOWS\system32\tasks\Microsoft\Windows\EnterpriseMgmt\MDMMaintenenceTask - %windir%\system32\MDMAgent.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\DUSM\dusmtask - %SystemRoot%\System32\dusmtask.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\DiskFootprint\Diagnostics - %windir%\system32\disksnapshot.exe -z
C:\WINDOWS\system32\tasks\Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticDataCollector - %windir%\system32\rundll32.exe dfdts.dll,DfdGetDefaultPolicyAndSMART
C:\WINDOWS\system32\tasks\Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticResolver - %windir%\system32\DFDWiz.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\DiskCleanup\SilentCleanup - %windir%\system32\cleanmgr.exe /autoclean /d %systemdrive%
C:\WINDOWS\system32\tasks\Microsoft\Windows\Device Information\Device - %windir%\system32\devicecensus.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Defrag\ScheduledDefrag - %windir%\system32\defrag.exe -c -h -o -$
C:\WINDOWS\system32\tasks\Microsoft\Windows\Customer Experience Improvement Program\Consolidator - %SystemRoot%\System32\wsqmcons.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Clip\License Validation - %SystemRoot%\system32\ClipUp.exe -p -s -o
C:\WINDOWS\system32\tasks\Microsoft\Windows\Bluetooth\UninstallDeviceTask - BthUdTask.exe $(Arg0)
C:\WINDOWS\system32\tasks\Microsoft\Windows\Autochk\Proxy - %windir%\system32\rundll32.exe /d acproxy.dll,PerformAutochkOperations
C:\WINDOWS\system32\tasks\Microsoft\Windows\AppxDeploymentClient\Pre-staged app cleanup - %windir%\system32\rundll32.exe %windir%\system32\AppxDeploymentClient.dll,AppxPreStageCleanupRunTask
C:\WINDOWS\system32\tasks\Microsoft\Windows\ApplicationData\appuriverifierdaily - %windir%\system32\AppHostRegistrationVerifier.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\ApplicationData\appuriverifierinstall - %windir%\system32\AppHostRegistrationVerifier.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\ApplicationData\CleanupTemporaryState - %windir%\system32\rundll32.exe Windows.Storage.ApplicationData.dll,CleanupTemporaryState
C:\WINDOWS\system32\tasks\Microsoft\Windows\ApplicationData\DsSvcCleanup - %windir%\system32\dstokenclean.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Application Experience\Microsoft Compatibility Appraiser - %windir%\system32\compattelrunner.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Application Experience\ProgramDataUpdater - %windir%\system32\compattelrunner.exe -maintenance
C:\WINDOWS\system32\tasks\Microsoft\Windows\Application Experience\StartupAppTask - %windir%\system32\rundll32.exe Startupscan.dll,SusRunTask
C:\WINDOWS\system32\tasks\Microsoft\Windows\AppID\PolicyConverter - %windir%\system32\appidpolicyconverter.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\AppID\VerifiedPublisherCertStoreCheck - %windir%\system32\appidcertstorecheck.exe
C:\WINDOWS\system32\tasks\Microsoft\Microsoft Antimalware\MpIdleTask - C:\Program Files\Microsoft Security Client\MpCmdRun.exe -IdleTask -TaskName MpIdleTask
======Registry dump ======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"={0633EE93-D776-472f-A0FF-E1416B8B2E3A}
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}]
"URL"=http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"={0633EE93-D776-472f-A0FF-E1416B8B2E3A}
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}]
"URL"=http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2016-04-22 255088]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FFCB3198-32F3-4E8B-9539-4324694ED664}]
Adblock Plus for IE Browser Helper Object - C:\Program Files\Adblock Plus for IE\AdblockPlus64.dll [2015-09-22 857792]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_111\bin\ssv.dll [2016-10-19 473152]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2016-04-22 193136]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_111\bin\jp2ssv.dll [2016-10-19 186944]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FFCB3198-32F3-4E8B-9539-4324694ED664}]
Adblock Plus for IE Browser Helper Object - C:\Program Files\Adblock Plus for IE\AdblockPlus32.dll [2015-09-22 755392]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2016-04-22 255088]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2016-04-22 193136]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SecurityHealth"=C:\Program Files\Windows Defender\MSASCuiL.exe [2017-03-18 629152]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [2015-06-24 8492800]
"RtHDVBg_DTS"=C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2015-06-24 1402624]
"Thunderbolt"=C:\Program Files\Intel\Thunderbolt Software\Thunderbolt.exe [2013-04-09 767752]
"UMonit"=C:\WINDOWS\SysWOW64\UMonit64.exe [2015-08-30 62560]
"Launch LCore"=C:\Program Files\Logitech Gaming Software\LCore.exe [2016-03-30 15642744]
"ShadowPlay"=C:\WINDOWS\system32\nvspcap64.dll [2017-05-03 1893496]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2017-04-11 9532120]
"cz.seznam.software.autoupdate"=C:\Users\David\AppData\Roaming\Seznam.cz\szninstall.exe [2013-05-16 1062472]
"cz.seznam.software.szndesktop"=C:\Users\David\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [2015-05-26 103080]
"OneDrive"=C:\Users\David\AppData\Local\Microsoft\OneDrive\OneDrive.exe [2017-05-15 1504888]
"Bloody2"=C:\Program Files (x86)\Bloody5\Bloody5\Bloody5.exe [2015-06-16 18923008]
"GarminExpressTrayApp"=C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe [2017-03-28 1421736]
"DAEMON Tools Lite Automount"=C:\Program Files (x86)\DAEMON Tools Lite\DTAgent.exe [2016-10-06 4557504]
"World of Tanks"=C:\Games\World_of_Tanks\WargamingGameUpdater.exe [2017-02-28 3135752]
"Skype"=C:\Program Files (x86)\Skype\Phone\Skype.exe [2017-05-05 27793888]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"ControlCenter4"=C:\Program Files (x86)\ControlCenter4\BrCcBoot.exe [2016-02-03 139776]
"BrStsMon00"=C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe [2014-05-22 4513792]
"BrHelp"=C:\Program Files (x86)\Brother\Brother Help\BrotherHelp.exe [2013-01-18 2009088]
"GrooveMonitor"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [2009-02-26 30040]
"seznam-listicka-distribuce"=C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe [2013-05-16 1062472]
"Wondershare Helper Compact.exe"=C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe [2016-10-08 2137744]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders" = credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetSetupSvc]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"DSCAutomationHostEnabled"=2
"EnableCursorSuppression"=1
"EnableUIADesktopToggle"=0
"undockwithoutlogon"=1
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"ForceActiveDesktopOn"=0
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Active Setup\Installed Components\>{22d6f312-b0f6-11d0-94ab-0080c74c7e95}]
"StubPath" = %SystemRoot%\inf\unregmp2.exe /ShowWMP
[HKEY_LOCAL_MACHINE\Software\Microsoft\Active Setup\Installed Components\{8A69D345-D564-463c-AFF1-A69D9E530F96}]
"StubPath" = "C:\Program Files (x86)\Google\Chrome\Application\58.0.3029.110\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"msacm.l3codecp"=l3codecp.acm
"vidc.mjpg"=bdmjpeg64.dll
"vidc.mpeg"=bdmpegv64.dll
"msacm.bdmpeg"=bdmpega64.acm
====== File associations ======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
====== List of files/folders created in the last 1 month ======
2017-05-22 07:52:55 ----D---- C:\rsit
2017-05-22 07:52:55 ----D---- C:\Program Files\trend micro
2017-05-20 20:37:09 ----D---- C:\WINDOWS\Microsoft Antimalware
2017-05-20 18:22:35 ----D---- C:\Users\David\AppData\Roaming\SmartSteamEmu
2017-05-15 20:01:50 ----D---- C:\WINDOWS\Panther
2017-05-15 12:50:46 ----D---- C:\ProgramData\Microsoft OneDrive
2017-05-15 12:09:14 ----A---- C:\WINDOWS\SYSWOW64\XpsPrint.dll
2017-05-15 12:09:14 ----A---- C:\WINDOWS\SYSWOW64\XpsDocumentTargetPrint.dll
2017-05-15 12:09:14 ----A---- C:\WINDOWS\SYSWOW64\wpnapps.dll
2017-05-15 12:09:14 ----A---- C:\WINDOWS\SYSWOW64\WpcWebFilter.dll
2017-05-15 12:09:14 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2017-05-15 12:09:14 ----A---- C:\WINDOWS\SYSWOW64\WindowsCodecs.dll
2017-05-15 12:09:14 ----A---- C:\WINDOWS\SYSWOW64\WiFiDisplay.dll
2017-05-15 12:09:14 ----A---- C:\WINDOWS\SYSWOW64\VEEventDispatcher.dll
2017-05-15 12:09:14 ----A---- C:\WINDOWS\SYSWOW64\UserDataTimeUtil.dll
2017-05-15 12:09:14 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2017-05-15 12:09:14 ----A---- C:\WINDOWS\SYSWOW64\StoreAgent.dll
2017-05-15 12:09:14 ----A---- C:\WINDOWS\SYSWOW64\SettingSyncHost.exe
2017-05-15 12:09:14 ----A---- C:\WINDOWS\SYSWOW64\SettingSyncCore.dll
2017-05-15 12:09:14 ----A---- C:\WINDOWS\SYSWOW64\quartz.dll
2017-05-15 12:09:14 ----A---- C:\WINDOWS\SYSWOW64\PackageStateRoaming.dll
2017-05-15 12:09:14 ----A---- C:\WINDOWS\SYSWOW64\OneDriveSettingSyncProvider.dll
2017-05-15 12:09:14 ----A---- C:\WINDOWS\SYSWOW64\MSVPXENC.dll
2017-05-15 12:09:14 ----A---- C:\WINDOWS\SYSWOW64\msIso.dll
2017-05-15 12:09:14 ----A---- C:\WINDOWS\SYSWOW64\mfmjpegdec.dll
2017-05-15 12:09:14 ----A---- C:\WINDOWS\SYSWOW64\InstallAgentUserBroker.exe
2017-05-15 12:09:14 ----A---- C:\WINDOWS\SYSWOW64\InstallAgent.exe
2017-05-15 12:09:14 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2017-05-15 12:09:14 ----A---- C:\WINDOWS\SYSWOW64\dwmcore.dll
2017-05-15 12:09:14 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_47.dll
2017-05-15 12:09:14 ----A---- C:\WINDOWS\SYSWOW64\d2d1.dll
2017-05-15 12:09:14 ----A---- C:\WINDOWS\SYSWOW64\CloudBackupSettings.dll
2017-05-15 12:09:14 ----A---- C:\WINDOWS\SYSWOW64\AzureSettingSyncProvider.dll
2017-05-15 12:09:14 ----A---- C:\WINDOWS\SYSWOW64\aadtb.dll
2017-05-15 12:09:14 ----A---- C:\WINDOWS\system32\wmpps.dll
2017-05-15 12:09:14 ----A---- C:\WINDOWS\system32\MSVPXENC.dll
2017-05-15 12:09:14 ----A---- C:\WINDOWS\system32\MSVideoDSP.dll
2017-05-15 12:09:14 ----A---- C:\WINDOWS\system32\mfmjpegdec.dll
2017-05-15 12:09:14 ----A---- C:\WINDOWS\system32\fveapi.dll
2017-05-15 12:09:14 ----A---- C:\WINDOWS\system32\drivers\srv.sys
2017-05-15 12:09:12 ----A---- C:\WINDOWS\SYSWOW64\webplatstorageserver.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\SYSWOW64\webcheck.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\SYSWOW64\vbscript.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\SYSWOW64\UIRibbonRes.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\SYSWOW64\olepro32.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\SYSWOW64\ole32.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\SYSWOW64\offreg.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\SYSWOW64\mshtmled.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\SYSWOW64\msfeeds.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\SYSWOW64\kernel32.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\SYSWOW64\InputSwitch.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\SYSWOW64\imagehlp.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\SYSWOW64\ieproxy.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\SYSWOW64\iepeers.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\SYSWOW64\iedkcs32.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\SYSWOW64\ieapfltr.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\SYSWOW64\Chakra.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\SYSWOW64\edgehtml.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\SYSWOW64\dxtrans.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\SYSWOW64\daxexec.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\SYSWOW64\asycfilt.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\XpsPrint.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\XpsDocumentTargetPrint.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\wpx.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\wpnapps.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\WpcWebFilter.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\winsrv.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\winlogon.exe
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\wininet.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\Windows.UI.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\Windows.UI.AppDefaults.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\Windows.Shell.UnifiedTile.CuratedTileCollections.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\Windows.Internal.Shell.Broker.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\WiFiDisplay.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\webplatstorageserver.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\webcheck.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\wcmcsp.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\vbscript.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\usocore.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\urlmon.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\updatehandlers.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\UIRibbonRes.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\twinui.pcshell.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\twinui.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\TSWorkspace.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\SystemSettings.Handlers.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\StorSvc.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\StartTileData.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\shell32.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\SharedStartModel.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\SettingsHandlers_nt.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\SettingsEnvironment.Desktop.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\ResetEngine.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\reseteng.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\RDXService.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\quartz.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\ole32.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\odbcconf.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\NotificationController.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\msIso.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\mshtmled.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\MshtmlDac.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\mshtml.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\msfeeds.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\mmgaserver.exe
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\LogonController.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\LockHostingFramework.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\LockAppBroker.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\KernelBase.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\kernel32.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\jscript9.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\InputSwitch.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\imagehlp.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\iertutil.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\ieproxy.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\iepeers.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\ieframe.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\iedkcs32.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\ieapfltr.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\ie4uinit.exe
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\Chakra.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\gdi32full.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\GamePanel.exe
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\fontdrvhost.exe
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\EnterpriseModernAppMgmtCSP.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\enterprisecsps.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\EnterpriseAppMgmtSvc.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\edgehtml.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\dxtrans.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\dwmcore.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\drivers\srv2.sys
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\dosvc.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\domgmt.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\daxexec.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\CoreMessaging.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\comsvcs.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\CloudBackupSettings.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\cldapi.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\catsrvps.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\bcdedit.exe
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\autochk.exe
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\audiosrv.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\AudioEndpointBuilder.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\atmlib.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\atmfd.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\asycfilt.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\AppXDeploymentServer.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\system32\AppResolver.dll
2017-05-15 12:09:12 ----A---- C:\WINDOWS\explorer.exe
2017-05-15 12:09:11 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.dll
2017-05-15 12:09:11 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Protection.PlayReady.dll
2017-05-15 12:09:11 ----A---- C:\WINDOWS\SYSWOW64\win32kfull.sys
2017-05-15 12:09:11 ----A---- C:\WINDOWS\SYSWOW64\TokenBroker.dll
2017-05-15 12:09:11 ----A---- C:\WINDOWS\SYSWOW64\PlayToManager.dll
2017-05-15 12:09:11 ----A---- C:\WINDOWS\SYSWOW64\oleaut32.dll
2017-05-15 12:09:11 ----A---- C:\WINDOWS\SYSWOW64\odbcconf.dll
2017-05-15 12:09:11 ----A---- C:\WINDOWS\SYSWOW64\mmgaserver.exe
2017-05-15 12:09:11 ----A---- C:\WINDOWS\SYSWOW64\KernelBase.dll
2017-05-15 12:09:11 ----A---- C:\WINDOWS\SYSWOW64\gdi32full.dll
2017-05-15 12:09:11 ----A---- C:\WINDOWS\SYSWOW64\fontdrvhost.exe
2017-05-15 12:09:11 ----A---- C:\WINDOWS\SYSWOW64\explorer.exe
2017-05-15 12:09:11 ----A---- C:\WINDOWS\SYSWOW64\dbghelp.dll
2017-05-15 12:09:11 ----A---- C:\WINDOWS\SYSWOW64\dbgeng.dll
2017-05-15 12:09:11 ----A---- C:\WINDOWS\SYSWOW64\crypt32.dll
2017-05-15 12:09:11 ----A---- C:\WINDOWS\SYSWOW64\CoreUIComponents.dll
2017-05-15 12:09:11 ----A---- C:\WINDOWS\SYSWOW64\CoreMessaging.dll
2017-05-15 12:09:11 ----A---- C:\WINDOWS\SYSWOW64\combase.dll
2017-05-15 12:09:11 ----A---- C:\WINDOWS\SYSWOW64\cldapi.dll
2017-05-15 12:09:11 ----A---- C:\WINDOWS\SYSWOW64\bcryptprimitives.dll
2017-05-15 12:09:11 ----A---- C:\WINDOWS\SYSWOW64\autochk.exe
2017-05-15 12:09:11 ----A---- C:\WINDOWS\SYSWOW64\atmlib.dll
2017-05-15 12:09:11 ----A---- C:\WINDOWS\SYSWOW64\atmfd.dll
2017-05-15 12:09:11 ----A---- C:\WINDOWS\SYSWOW64\AppResolver.dll
2017-05-15 12:09:11 ----A---- C:\WINDOWS\system32\wuaueng.dll
2017-05-15 12:09:11 ----A---- C:\WINDOWS\system32\WpAXHolder.dll
2017-05-15 12:09:11 ----A---- C:\WINDOWS\system32\WindowsCodecs.dll
2017-05-15 12:09:11 ----A---- C:\WINDOWS\system32\Windows.Media.Streaming.ps.dll
2017-05-15 12:09:11 ----A---- C:\WINDOWS\system32\Windows.Gaming.Preview.dll
2017-05-15 12:09:11 ----A---- C:\WINDOWS\system32\win32kfull.sys
2017-05-15 12:09:11 ----A---- C:\WINDOWS\system32\win32kbase.sys
2017-05-15 12:09:11 ----A---- C:\WINDOWS\system32\wc_storage.dll
2017-05-15 12:09:11 ----A---- C:\WINDOWS\system32\VEStoreEventHandlers.dll
2017-05-15 12:09:11 ----A---- C:\WINDOWS\system32\UserDataTimeUtil.dll
2017-05-15 12:09:11 ----A---- C:\WINDOWS\system32\UpdateAgent.dll
2017-05-15 12:09:11 ----A---- C:\WINDOWS\system32\TokenBroker.dll
2017-05-15 12:09:11 ----A---- C:\WINDOWS\system32\TileDataRepository.dll
2017-05-15 12:09:11 ----A---- C:\WINDOWS\system32\TDLMigration.dll
2017-05-15 12:09:11 ----A---- C:\WINDOWS\system32\StoreAgent.dll
2017-05-15 12:09:11 ----A---- C:\WINDOWS\system32\SpeechPal.dll
2017-05-15 12:09:11 ----A---- C:\WINDOWS\system32\SettingSyncHost.exe
2017-05-15 12:09:11 ----A---- C:\WINDOWS\system32\SettingSyncCore.dll
2017-05-15 12:09:11 ----A---- C:\WINDOWS\system32\securekernel.exe
2017-05-15 12:09:11 ----A---- C:\WINDOWS\system32\rpcss.dll
2017-05-15 12:09:11 ----A---- C:\WINDOWS\system32\PackageStateRoaming.dll
2017-05-15 12:09:11 ----A---- C:\WINDOWS\system32\OneDriveSettingSyncProvider.dll
2017-05-15 12:09:11 ----A---- C:\WINDOWS\system32\OneCoreUAPCommonProxyStub.dll
2017-05-15 12:09:11 ----A---- C:\WINDOWS\system32\oleaut32.dll
2017-05-15 12:09:11 ----A---- C:\WINDOWS\system32\offreg.dll
2017-05-15 12:09:11 ----A---- C:\WINDOWS\system32\NotificationObjFactory.dll
2017-05-15 12:09:11 ----A---- C:\WINDOWS\system32\musdialoghandlers.dll
2017-05-15 12:09:11 ----A---- C:\WINDOWS\system32\mssprxy.dll
2017-05-15 12:09:11 ----A---- C:\WINDOWS\system32\modernexecserver.dll
2017-05-15 12:09:11 ----A---- C:\WINDOWS\system32\InstallAgentUserBroker.exe
2017-05-15 12:09:11 ----A---- C:\WINDOWS\system32\InstallAgent.exe
2017-05-15 12:09:11 ----A---- C:\WINDOWS\system32\hvix64.exe
2017-05-15 12:09:11 ----A---- C:\WINDOWS\system32\hvax64.exe
2017-05-15 12:09:11 ----A---- C:\WINDOWS\system32\drivers\wcifs.sys
2017-05-15 12:09:11 ----A---- C:\WINDOWS\system32\drivers\USBXHCI.SYS
2017-05-15 12:09:11 ----A---- C:\WINDOWS\system32\drivers\netvsc.sys
2017-05-15 12:09:11 ----A---- C:\WINDOWS\system32\drivers\dxgmms2.sys
2017-05-15 12:09:11 ----A---- C:\WINDOWS\system32\drivers\dxgmms1.sys
2017-05-15 12:09:11 ----A---- C:\WINDOWS\system32\drivers\dxgkrnl.sys
2017-05-15 12:09:11 ----A---- C:\WINDOWS\system32\drivers\bthport.sys
2017-05-15 12:09:11 ----A---- C:\WINDOWS\system32\drivers\BasicRender.sys
2017-05-15 12:09:11 ----A---- C:\WINDOWS\system32\dbghelp.dll
2017-05-15 12:09:11 ----A---- C:\WINDOWS\system32\dbgeng.dll
2017-05-15 12:09:11 ----A---- C:\WINDOWS\system32\D3DCompiler_47.dll
2017-05-15 12:09:11 ----A---- C:\WINDOWS\system32\crypt32.dll
2017-05-15 12:09:11 ----A---- C:\WINDOWS\system32\CoreUIComponents.dll
2017-05-15 12:09:11 ----A---- C:\WINDOWS\system32\combase.dll
2017-05-15 12:09:11 ----A---- C:\WINDOWS\system32\ClipSVC.dll
2017-05-15 12:09:11 ----A---- C:\WINDOWS\system32\ci.dll
2017-05-15 12:09:11 ----A---- C:\WINDOWS\system32\browserbroker.dll
2017-05-15 12:09:11 ----A---- C:\WINDOWS\system32\browser_broker.exe
2017-05-15 12:09:11 ----A---- C:\WINDOWS\system32\AzureSettingSyncProvider.dll
2017-05-15 12:09:11 ----A---- C:\WINDOWS\system32\AppVEntVirtualization.dll
2017-05-15 12:09:11 ----A---- C:\WINDOWS\system32\AppVEntSubsystemController.dll
2017-05-15 12:09:11 ----A---- C:\WINDOWS\system32\aadtb.dll
2017-05-15 12:09:11 ----A---- C:\WINDOWS\system32\aadcloudap.dll
2017-05-15 12:07:50 ----D---- C:\WINDOWS\system32\Microsoft
2017-05-15 12:07:50 ----D---- C:\WINDOWS\ServiceProfiles
2017-05-15 12:06:36 ----D---- C:\WINDOWS\SYSWOW64\XPSViewer
2017-05-15 12:06:36 ----D---- C:\WINDOWS\SYSWOW64\BestPractices
2017-05-15 12:06:36 ----D---- C:\WINDOWS\system32\msmq
2017-05-15 12:06:36 ----D---- C:\WINDOWS\system32\BestPractices
2017-05-15 12:06:35 ----D---- C:\Program Files\Reference Assemblies
2017-05-15 12:06:35 ----D---- C:\Program Files\MSBuild
2017-05-15 12:06:35 ----D---- C:\Program Files (x86)\Reference Assemblies
2017-05-15 12:06:35 ----D---- C:\inetpub
2017-05-15 12:06:35 ----AD---- C:\Program Files (x86)\MSBuild
2017-05-15 12:06:24 ----A---- C:\WINDOWS\SYSWOW64\TsWpfWrp.exe
2017-05-15 12:06:24 ----A---- C:\WINDOWS\SYSWOW64\PresentationNative_v0300.dll
2017-05-15 12:06:24 ----A---- C:\WINDOWS\SYSWOW64\PresentationCFFRasterizerNative_v0300.dll
2017-05-15 12:06:23 ----A---- C:\WINDOWS\system32\TsWpfWrp.exe
2017-05-15 12:06:23 ----A---- C:\WINDOWS\system32\PresentationNative_v0300.dll
2017-05-15 12:06:23 ----A---- C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2017-05-15 11:27:57 ----D---- C:\ProgramData\USOShared
2017-05-15 11:21:06 ----SHD---- C:\Recovery
2017-05-15 11:17:44 ----ASH---- C:\hiberfil.sys
2017-05-15 11:15:09 ----D---- C:\Program Files\Common Files\SpeechEngines
2017-05-15 11:14:29 ----SD---- C:\Users\David\AppData\Roaming\Microsoft
2017-05-15 11:14:12 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2017-05-15 11:14:09 ----A---- C:\WINDOWS\SYSWOW64\PerfStringBackup.INI
2017-05-15 11:13:42 ----D---- C:\WINDOWS\system32\DAX2
2017-05-15 11:13:39 ----D---- C:\WINDOWS\SYSWOW64\RTCOM
2017-05-15 11:13:39 ----D---- C:\Program Files\Realtek
2017-05-15 11:13:38 ----A---- C:\WINDOWS\system32\nvsvcr.dll
2017-05-15 11:13:38 ----A---- C:\WINDOWS\system32\nvsvc64.dll
2017-05-15 11:13:38 ----A---- C:\WINDOWS\system32\nvshext.dll
2017-05-15 11:13:38 ----A---- C:\WINDOWS\system32\nvmctray.dll
2017-05-15 11:13:38 ----A---- C:\WINDOWS\system32\nvcpl.dll
2017-05-15 11:13:38 ----A---- C:\WINDOWS\system32\nv3dappshextr.dll
2017-05-15 11:13:38 ----A---- C:\WINDOWS\system32\nv3dappshext.dll
2017-05-15 11:13:35 ----D---- C:\ProgramData\NVIDIA
2017-05-15 11:13:35 ----A---- C:\WINDOWS\NvContainerRecovery.bat
2017-05-15 11:13:33 ----D---- C:\ProgramData\NVIDIA Corporation
2017-05-15 11:13:30 ----D---- C:\Program Files\NVIDIA Corporation
2017-05-15 11:13:30 ----D---- C:\Program Files (x86)\NVIDIA Corporation
2017-05-15 11:12:40 ----AS---- C:\WINDOWS\bootstat.dat
2017-05-15 11:12:17 ----HD---- C:\Program Files (x86)\Uninstall Information
2017-05-15 11:12:16 ----D---- C:\Program Files\ASUS
2017-05-15 11:12:16 ----D---- C:\Program Files (x86)\ASUS
2017-05-15 11:12:16 ----A---- C:\WINDOWS\SYSWOW64\drivers\AsIO.sys
2017-05-15 11:12:16 ----A---- C:\WINDOWS\SYSWOW64\AsIO.dll
2017-05-15 11:12:15 ----A---- C:\WINDOWS\SYSWOW64\PrintConfig.dll
2017-05-15 11:12:09 ----D---- C:\WINDOWS\Prefetch
2017-05-15 11:11:56 ----D---- C:\WINDOWS\system32\SleepStudy
2017-05-15 11:11:55 ----A---- C:\WINDOWS\system32\FNTCACHE.DAT
2017-05-15 09:42:52 ----ASH---- C:\swapfile.sys
2017-05-15 09:42:52 ----ASH---- C:\pagefile.sys
2017-05-10 18:08:37 ----A---- C:\WINDOWS\system32\indexeddbserver.dll
2017-05-10 15:17:27 ----A---- C:\WINDOWS\SYSWOW64\nvStreaming.exe
2017-05-10 15:17:24 ----D---- C:\Program Files (x86)\VulkanRT
2017-05-10 15:17:24 ----A---- C:\WINDOWS\SYSWOW64\vulkaninfo.exe
2017-05-10 15:17:24 ----A---- C:\WINDOWS\SYSWOW64\vulkan-1.dll
2017-05-10 15:17:24 ----A---- C:\WINDOWS\system32\vulkaninfo.exe
2017-05-10 15:17:24 ----A---- C:\WINDOWS\system32\vulkan-1.dll
2017-05-10 15:15:53 ----A---- C:\WINDOWS\system32\drivers\nvvhci.sys
2017-05-10 15:15:52 ----A---- C:\WINDOWS\SYSWOW64\nvptxJitCompiler.dll
2017-05-10 15:15:52 ----A---- C:\WINDOWS\SYSWOW64\nvopencl.dll
2017-05-10 15:15:52 ----A---- C:\WINDOWS\SYSWOW64\nvoglv32.dll
2017-05-10 15:15:52 ----A---- C:\WINDOWS\SYSWOW64\NvIFROpenGL.dll
2017-05-10 15:15:52 ----A---- C:\WINDOWS\SYSWOW64\NvIFR.dll
2017-05-10 15:15:52 ----A---- C:\WINDOWS\SYSWOW64\NvFBC.dll
2017-05-10 15:15:52 ----A---- C:\WINDOWS\SYSWOW64\nvfatbinaryLoader.dll
2017-05-10 15:15:52 ----A---- C:\WINDOWS\SYSWOW64\nvEncodeAPI.dll
2017-05-10 15:15:52 ----A---- C:\WINDOWS\SYSWOW64\nvEncMFTH264.dll
2017-05-10 15:15:52 ----A---- C:\WINDOWS\SYSWOW64\nvDecMFTMjpeg.dll
2017-05-10 15:15:52 ----A---- C:\WINDOWS\SYSWOW64\nvcuvid.dll
2017-05-10 15:15:52 ----A---- C:\WINDOWS\SYSWOW64\nvcuda.dll
2017-05-10 15:15:52 ----A---- C:\WINDOWS\system32\nvptxJitCompiler.dll
2017-05-10 15:15:52 ----A---- C:\WINDOWS\system32\nvopencl.dll
2017-05-10 15:15:52 ----A---- C:\WINDOWS\system32\nvoglv64.dll
2017-05-10 15:15:52 ----A---- C:\WINDOWS\system32\NvIFROpenGL.dll
2017-05-10 15:15:52 ----A---- C:\WINDOWS\system32\NvIFR64.dll
2017-05-10 15:15:52 ----A---- C:\WINDOWS\system32\nvhdap64.dll
2017-05-10 15:15:52 ----A---- C:\WINDOWS\system32\nvhdagenco6420103.dll
2017-05-10 15:15:52 ----A---- C:\WINDOWS\system32\NvFBC64.dll
2017-05-10 15:15:52 ----A---- C:\WINDOWS\system32\nvfatbinaryLoader.dll
2017-05-10 15:15:52 ----A---- C:\WINDOWS\system32\nvEncodeAPI64.dll
2017-05-10 15:15:52 ----A---- C:\WINDOWS\system32\nvEncMFTH264.dll
2017-05-10 15:15:52 ----A---- C:\WINDOWS\system32\nvdispgenco6438205.dll
2017-05-10 15:15:52 ----A---- C:\WINDOWS\system32\nvdispco6438205.dll
2017-05-10 15:15:52 ----A---- C:\WINDOWS\system32\nvDecMFTMjpeg.dll
2017-05-10 15:15:52 ----A---- C:\WINDOWS\system32\nvcuvid.dll
2017-05-10 15:15:52 ----A---- C:\WINDOWS\system32\nvcuda.dll
2017-05-10 15:15:52 ----A---- C:\WINDOWS\system32\drivers\nvhda64v.sys
2017-05-10 15:15:51 ----A---- C:\WINDOWS\SYSWOW64\nvcompiler.dll
2017-05-10 15:15:51 ----A---- C:\WINDOWS\SYSWOW64\nvapi.dll
2017-05-10 15:15:51 ----A---- C:\WINDOWS\system32\nvcompiler.dll
2017-05-10 15:15:51 ----A---- C:\WINDOWS\system32\nvapi64.dll
2017-05-10 15:12:30 ----A---- C:\WINDOWS\SYSWOW64\nvaudcap32v.dll
2017-05-10 15:12:30 ----A---- C:\WINDOWS\system32\nvaudcap64v.dll
2017-05-10 15:12:30 ----A---- C:\WINDOWS\system32\drivers\nvvad64v.sys
2017-05-09 22:02:35 ----D---- C:\Users\David\AppData\Roaming\Seznam Browser
2017-04-26 10:31:45 ----A---- C:\WINDOWS\system32\nvdispgenco6438189.dll
2017-04-26 10:31:45 ----A---- C:\WINDOWS\system32\nvdispco6438189.dll
2017-04-25 16:18:00 ----AD---- C:\Program Files (x86)\Star Stable Online
====== List of files/folders modified in the last 1 month ======
2017-05-22 07:57:44 ----D---- C:\WINDOWS\Temp
2017-05-22 07:52:55 ----RD---- C:\Program Files
2017-05-22 07:50:14 ----D---- C:\Users\David\AppData\Roaming\Skype
2017-05-22 07:40:52 ----D---- C:\Users\David\AppData\Roaming\MPC-HC
2017-05-22 07:40:52 ----D---- C:\ProgramData\VSO
2017-05-22 07:40:51 ----D---- C:\WINDOWS\SoftwareDistribution
2017-05-22 07:40:51 ----D---- C:\WINDOWS\INF
2017-05-22 07:40:51 ----D---- C:\WINDOWS\debug
2017-05-22 07:40:51 ----D---- C:\Windows
2017-05-22 07:37:45 ----RD---- C:\Program Files (x86)
2017-05-22 07:36:25 ----D---- C:\WINDOWS\SysWOW64
2017-05-22 07:36:24 ----D---- C:\Users\David\AppData\Roaming\Vso
2017-05-22 07:36:24 ----A---- C:\Users\David\AppData\Roaming\inst.exe
2017-05-22 07:30:00 ----D---- C:\WINDOWS\system32\sru
2017-05-22 06:36:06 ----D---- C:\Users\David\AppData\Roaming\Seznam.cz
2017-05-21 19:27:26 ----A---- C:\WINDOWS\SYSWOW64\Ext2Srv.EXE
2017-05-21 19:11:28 ----RD---- C:\WINDOWS\Microsoft.NET
2017-05-21 19:07:31 ----SHD---- C:\System Volume Information
2017-05-21 19:07:20 ----D---- C:\WINDOWS\System32
2017-05-21 19:06:42 ----HD---- C:\Program Files\WindowsApps
2017-05-21 19:06:42 ----D---- C:\WINDOWS\AppReadiness
2017-05-20 20:12:19 ----D---- C:\WINDOWS\system32\wbem
2017-05-20 20:12:19 ----D---- C:\WINDOWS\system32\config
2017-05-20 20:11:32 ----D---- C:\WINDOWS\Tasks
2017-05-20 20:11:32 ----D---- C:\WINDOWS\system32\Tasks
2017-05-20 20:11:31 ----D---- C:\ProgramData\Package Cache
2017-05-20 20:11:31 ----D---- C:\AdwCleaner
2017-05-20 20:11:31 ----AD---- C:\Program Files\CCleaner
2017-05-20 20:10:56 ----D---- C:\WINDOWS\registration
2017-05-20 20:10:55 ----HD---- C:\ProgramData
2017-05-20 20:09:34 ----D---- C:\WINDOWS\Logs
2017-05-20 08:26:26 ----RD---- C:\WINDOWS\assembly
2017-05-20 08:25:48 ----D---- C:\WINDOWS\rescache
2017-05-18 15:50:00 ----D---- C:\WINDOWS\system32\WDI
2017-05-18 15:46:15 ----D---- C:\WINDOWS\system32\catroot2
2017-05-18 15:46:02 ----D---- C:\WINDOWS\system32\NDF
2017-05-18 07:15:46 ----D---- C:\WINDOWS\WinSxS
2017-05-18 07:15:46 ----D---- C:\WINDOWS\CbsTemp
2017-05-18 07:15:39 ----D---- C:\WINDOWS\system32\restore
2017-05-16 19:58:47 ----D---- C:\WINDOWS\appcompat
2017-05-15 20:03:50 ----D---- C:\WINDOWS\system32\LogFiles
2017-05-15 17:51:38 ----D---- C:\Program Files (x86)\Google
2017-05-15 17:50:41 ----D---- C:\WINDOWS\system32\DriverStore
2017-05-15 15:53:21 ----D---- C:\WINDOWS\system32\drivers
2017-05-15 12:52:24 ----SD---- C:\ProgramData\Microsoft
2017-05-15 12:49:09 ----RD---- C:\WINDOWS\ImmersiveControlPanel
2017-05-15 12:09:38 ----D---- C:\WINDOWS\Setup
2017-05-15 12:09:30 ----SD---- C:\WINDOWS\SYSWOW64\F12
2017-05-15 12:09:30 ----SD---- C:\WINDOWS\system32\F12
2017-05-15 12:09:30 ----D---- C:\WINDOWS\SYSWOW64\Dism
2017-05-15 12:09:30 ----D---- C:\WINDOWS\system32\WinBioPlugIns
2017-05-15 12:09:30 ----D---- C:\WINDOWS\system32\Dism
2017-05-15 12:09:30 ----D---- C:\WINDOWS\system32\appraiser
2017-05-15 12:09:30 ----D---- C:\WINDOWS\ShellExperiences
2017-05-15 12:09:30 ----D---- C:\WINDOWS\Provisioning
2017-05-15 12:09:30 ----D---- C:\WINDOWS\AppPatch
2017-05-15 12:09:30 ----D---- C:\Program Files\Windows Photo Viewer
2017-05-15 12:09:30 ----D---- C:\Program Files (x86)\Windows Photo Viewer
2017-05-15 12:06:36 ----D---- C:\WINDOWS\SYSWOW64\MUI
2017-05-15 12:06:36 ----D---- C:\WINDOWS\system32\MUI
2017-05-15 12:06:36 ----D---- C:\WINDOWS\system32\inetsrv
2017-05-15 12:06:34 ----A---- C:\WINDOWS\SYSWOW64\mqsnap.dll
2017-05-15 12:06:34 ----A---- C:\WINDOWS\SYSWOW64\mqcertui.dll
2017-05-15 12:06:34 ----A---- C:\WINDOWS\system32\wamregps.dll
2017-05-15 12:06:34 ----A---- C:\WINDOWS\system32\iisRtl.dll
2017-05-15 12:06:34 ----A---- C:\WINDOWS\system32\iisrstap.dll
2017-05-15 12:06:34 ----A---- C:\WINDOWS\system32\iisreset.exe
2017-05-15 12:06:34 ----A---- C:\WINDOWS\system32\cngkeyhelper.dll
2017-05-15 12:06:34 ----A---- C:\WINDOWS\system32\ahadmin.dll
2017-05-15 12:06:34 ----A---- C:\WINDOWS\system32\admwprox.dll
2017-05-15 12:06:33 ----A---- C:\WINDOWS\SYSWOW64\wamregps.dll
2017-05-15 12:06:33 ----A---- C:\WINDOWS\SYSWOW64\mqrt.dll
2017-05-15 12:06:33 ----A---- C:\WINDOWS\SYSWOW64\mqoa.dll
2017-05-15 12:06:33 ----A---- C:\WINDOWS\SYSWOW64\iisRtl.dll
2017-05-15 12:06:33 ----A---- C:\WINDOWS\SYSWOW64\iisrstap.dll
2017-05-15 12:06:33 ----A---- C:\WINDOWS\SYSWOW64\iisreset.exe
2017-05-15 12:06:33 ----A---- C:\WINDOWS\SYSWOW64\cngkeyhelper.dll
2017-05-15 12:06:33 ----A---- C:\WINDOWS\SYSWOW64\ahadmin.dll
2017-05-15 12:06:33 ----A---- C:\WINDOWS\SYSWOW64\admwprox.dll
2017-05-15 12:06:33 ----A---- C:\WINDOWS\system32\mqutil.dll
2017-05-15 12:06:33 ----A---- C:\WINDOWS\system32\mqsnap.dll
2017-05-15 12:06:33 ----A---- C:\WINDOWS\system32\mqrt.dll
2017-05-15 12:06:33 ----A---- C:\WINDOWS\system32\mqoa.dll
2017-05-15 12:06:33 ----A---- C:\WINDOWS\system32\mqlogmgr.dll
2017-05-15 12:06:33 ----A---- C:\WINDOWS\system32\mqcertui.dll
2017-05-15 12:06:32 ----A---- C:\WINDOWS\SYSWOW64\mqutil.dll
2017-05-15 12:06:32 ----A---- C:\WINDOWS\system32\mqsvc.exe
2017-05-15 12:06:32 ----A---- C:\WINDOWS\system32\mqqm.dll
2017-05-15 12:06:32 ----A---- C:\WINDOWS\system32\mqbkup.exe
2017-05-15 11:28:40 ----D---- C:\WINDOWS\system32\CodeIntegrity
2017-05-15 11:27:57 ----D---- C:\ProgramData\USOPrivate
2017-05-15 11:21:12 ----HD---- C:\$GetCurrent
2017-05-15 11:21:06 ----D---- C:\Program Files\Windows NT
2017-05-15 11:20:33 ----D---- C:\WINDOWS\system32\WinBioDatabase
2017-05-15 11:19:51 ----RSD---- C:\WINDOWS\Fonts
2017-05-15 11:19:51 ----D---- C:\WINDOWS\system32\Tasks_Migrated
2017-05-15 11:19:50 ----D---- C:\ProgramData\regid.1991-06.com.microsoft
2017-05-15 11:19:25 ----D---- C:\WINDOWS\HoloShell
2017-05-15 11:18:50 ----RSD---- C:\WINDOWS\Media
2017-05-15 11:18:49 ----D---- C:\WINDOWS\SYSWOW64\wbem
2017-05-15 11:18:49 ----D---- C:\WINDOWS\system32\drivers\etc
2017-05-15 11:17:00 ----D---- C:\WINDOWS\SYSWOW64\Side 9 Screensaver dir
2017-05-15 11:17:00 ----D---- C:\WINDOWS\SYSWOW64\drivers
2017-05-15 11:16:59 ----HD---- C:\WINDOWS\Installer
2017-05-15 11:16:59 ----D---- C:\WINDOWS\system32\zh-TW
2017-05-15 11:16:59 ----D---- C:\WINDOWS\system32\zh-HK
2017-05-15 11:16:59 ----D---- C:\WINDOWS\system32\zh-CN
2017-05-15 11:16:59 ----D---- C:\WINDOWS\system32\UNP
2017-05-15 11:16:59 ----D---- C:\WINDOWS\system32\tr-TR
2017-05-15 11:16:59 ----D---- C:\WINDOWS\system32\th-TH
2017-05-15 11:16:59 ----D---- C:\WINDOWS\system32\sv-SE
2017-05-15 11:16:59 ----D---- C:\WINDOWS\system32\sl-SI
2017-05-15 11:16:59 ----D---- C:\WINDOWS\system32\sk-SK
2017-05-15 11:16:59 ----D---- C:\WINDOWS\system32\ru-RU
2017-05-15 11:16:59 ----D---- C:\WINDOWS\system32\ro-RO
2017-05-15 11:16:59 ----D---- C:\WINDOWS\system32\pt-PT
2017-05-15 11:16:59 ----D---- C:\WINDOWS\system32\pt-BR
2017-05-15 11:16:59 ----D---- C:\WINDOWS\system32\pl-PL
2017-05-15 11:16:59 ----D---- C:\WINDOWS\system32\nl-NL
2017-05-15 11:16:59 ----D---- C:\WINDOWS\system32\nb-NO
2017-05-15 11:16:59 ----D---- C:\WINDOWS\system32\lv-LV
2017-05-15 11:16:59 ----D---- C:\WINDOWS\system32\lt-LT
2017-05-15 11:16:59 ----D---- C:\WINDOWS\system32\ko-KR
2017-05-15 11:16:59 ----D---- C:\WINDOWS\system32\ja-jp
2017-05-15 11:16:59 ----D---- C:\WINDOWS\system32\it-IT
2017-05-15 11:16:59 ----D---- C:\WINDOWS\system32\hu-HU
2017-05-15 11:16:59 ----D---- C:\WINDOWS\system32\hr-HR
2017-05-15 11:16:59 ----D---- C:\WINDOWS\system32\he-IL
2017-05-15 11:16:59 ----D---- C:\WINDOWS\system32\fr-FR
2017-05-15 11:16:59 ----D---- C:\WINDOWS\system32\fi-FI
2017-05-15 11:16:59 ----D---- C:\WINDOWS\system32\et-EE
2017-05-15 11:16:59 ----D---- C:\WINDOWS\system32\es-ES
2017-05-15 11:16:59 ----D---- C:\WINDOWS\system32\en-US
2017-05-15 11:16:59 ----D---- C:\WINDOWS\system32\el-GR
2017-05-15 11:16:59 ----D---- C:\WINDOWS\system32\de-DE
2017-05-15 11:16:59 ----D---- C:\WINDOWS\system32\da-DK
2017-05-15 11:16:59 ----D---- C:\WINDOWS\system32\cs-CZ
2017-05-15 11:16:59 ----D---- C:\WINDOWS\system32\bg-BG
2017-05-15 11:16:59 ----D---- C:\WINDOWS\system32\ar-SA
2017-05-15 11:16:59 ----D---- C:\WINDOWS\ShellNew
2017-05-15 11:16:59 ----D---- C:\WINDOWS\cs
2017-05-15 11:15:23 ----D---- C:\WINDOWS\SYSWOW64\sda
2017-05-15 11:15:23 ----D---- C:\WINDOWS\SYSWOW64\migration
2017-05-15 11:15:23 ----D---- C:\WINDOWS\SYSWOW64\Macromed
2017-05-15 11:15:23 ----D---- C:\WINDOWS\SYSWOW64\IME
2017-05-15 11:15:23 ----D---- C:\WINDOWS\SYSWOW64\en-US
2017-05-15 11:15:23 ----D---- C:\WINDOWS\SYSWOW64\drivers\UMDF
2017-05-15 11:15:23 ----D---- C:\WINDOWS\SYSWOW64\cs-CZ
2017-05-15 11:15:21 ----D---- C:\WINDOWS\system32\SPReview
2017-05-15 11:15:21 ----D---- C:\WINDOWS\system32\spool
2017-05-15 11:15:20 ----D---- C:\WINDOWS\system32\migration
2017-05-15 11:15:20 ----D---- C:\WINDOWS\system32\Macromed
2017-05-15 11:15:20 ----D---- C:\WINDOWS\system32\IME
2017-05-15 11:15:20 ----D---- C:\WINDOWS\system32\EventProviders
2017-05-15 11:15:20 ----D---- C:\WINDOWS\system32\drivers\cs-CZ
2017-05-15 11:15:16 ----D---- C:\WINDOWS\system32\appmgmt
2017-05-15 11:15:15 ----D---- C:\WINDOWS\schemas
2017-05-15 11:15:15 ----D---- C:\WINDOWS\PolicyDefinitions
2017-05-15 11:15:15 ----D---- C:\WINDOWS\OCR
2017-05-15 11:15:15 ----D---- C:\WINDOWS\LiveKernelReports
2017-05-15 11:15:13 ----D---- C:\WINDOWS\ehome
2017-05-15 11:15:12 ----RD---- C:\Users
2017-05-15 11:15:11 ----SHD---- C:\Program Files (x86)\Windows Sidebar
2017-05-15 11:15:11 ----D---- C:\Program Files (x86)\Windows Mail
2017-05-15 11:15:11 ----D---- C:\Program Files (x86)\Microsoft.NET
2017-05-15 11:15:11 ----D---- C:\Program Files (x86)\Common Files
2017-05-15 11:15:10 ----SHD---- C:\Program Files\Windows Sidebar
2017-05-15 11:15:10 ----D---- C:\Program Files\Windows Mail
2017-05-15 11:15:09 ----D---- C:\Program Files\Common Files
2017-05-15 11:15:09 ----AD---- C:\Program Files\Intel
2017-05-15 11:15:09 ----AD---- C:\Program Files\Common Files\microsoft shared
2017-05-15 11:14:59 ----D---- C:\WINDOWS\SYSWOW64\inetsrv
2017-05-15 11:14:58 ----D---- C:\WINDOWS\system32\Recovery
2017-05-15 11:14:03 ----D---- C:\WINDOWS\system32\Sysprep
2017-05-15 11:13:39 ----D---- C:\Temp
2017-05-15 11:13:38 ----D---- C:\WINDOWS\Help
2017-05-15 11:12:16 ----D---- C:\WINDOWS\system32\drivers\UMDF
2017-05-15 11:12:13 ----D---- C:\WINDOWS\twain_32
2017-05-15 10:26:28 ----A---- C:\WINDOWS\progress.ini
2017-05-10 21:47:14 ----D---- C:\WINDOWS\SYSWOW64\sr-Latn-CS
2017-05-10 21:47:14 ----D---- C:\WINDOWS\system32\sr-Latn-CS
2017-05-10 16:14:56 ----SHD---- C:\Config.Msi
2017-05-10 16:14:56 ----D---- C:\ProgramData\Skype
2017-05-10 16:14:55 ----RD---- C:\Program Files (x86)\Skype
2017-05-09 20:46:58 ----D---- C:\WINDOWS\system32\MRT
2017-05-09 20:46:05 ----AC---- C:\WINDOWS\system32\MRT.exe
2017-05-09 20:45:59 ----D---- C:\ProgramData\Microsoft Help
2017-05-03 22:21:33 ----A---- C:\WINDOWS\SYSWOW64\nvspcap.dll
2017-05-03 22:21:33 ----A---- C:\WINDOWS\system32\nvspcap64.dll
2017-05-03 22:21:32 ----A---- C:\WINDOWS\SYSWOW64\nvspbridge.dll
2017-05-03 22:21:32 ----A---- C:\WINDOWS\system32\nvspbridge64.dll
2017-05-03 22:21:32 ----A---- C:\WINDOWS\system32\NvRtmpStreamer64.dll
2017-05-03 21:28:28 ----A---- C:\WINDOWS\NvTelemetryContainerRecovery.bat
2017-04-29 03:05:09 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe
File C:\WINDOWS\system32\winlogon.exe is digitally signed
File C:\WINDOWS\system32\wininit.exe is digitally signed
File C:\WINDOWS\explorer.exe is digitally signed
File C:\WINDOWS\SysWOW64\explorer.exe is digitally signed
File C:\WINDOWS\system32\svchost.exe is digitally signed
File C:\WINDOWS\SysWOW64\svchost.exe is digitally signed
File C:\WINDOWS\system32\services.exe is digitally signed
File C:\WINDOWS\system32\User32.dll is digitally signed
File C:\WINDOWS\SysWOW64\User32.dll is digitally signed
File C:\WINDOWS\system32\userinit.exe is digitally signed
File C:\WINDOWS\SysWOW64\userinit.exe is digitally signed
File C:\WINDOWS\system32\rpcss.dll is digitally signed
File C:\WINDOWS\system32\Drivers\volsnap.sys is digitally signed
====== List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled) ======
R0 asstahci64;asstahci64; C:\WINDOWS\System32\drivers\asstahci64.sys [2015-10-01 89448]
R0 iaStorA;iaStorA; C:\WINDOWS\System32\drivers\iaStorA.sys [2015-09-23 1462208]
R0 iorate;@%SystemRoot%\system32\drivers\iorate.sys,-101; C:\WINDOWS\system32\drivers\iorate.sys [2017-03-18 49568]
R1 AsIO;AsIO; c:\windows\SysWow64\drivers\AsIO.sys [2015-11-15 15232]
R1 AsUpIO;AsUpIO; c:\windows\SysWow64\drivers\AsUpIO.sys [2012-09-14 14464]
R1 Ext2Fsd;Ext2 File System; \??\C:\WINDOWS\system32\Drivers\Ext2Fsd.sys [2016-07-09 799744]
R2 clreg;@%SystemRoot%\system32\drivers\registry.sys,-100; C:\WINDOWS\System32\drivers\registry.sys [2017-03-18 14336]
R2 LGCoreTemp;Logitech CPU Core Tempurature; \??\C:\Program Files\Logitech Gaming Software\Drivers\LgCoreTemp\lgcoretemp.sys [2015-06-21 14184]
R3 AiChargerPlus;AiChargerPlus; c:\windows\SysWow64\drivers\AiChargerPlus.sys [2013-01-28 14848]
R3 ASMTFilter;ASMTFilter; c:\windows\SysWow64\drivers\asmtufdriver.sys [2013-01-28 21400]
R3 bcbtums;@oem112.inf,%BCBTUMS.SvcDesc%;Bluetooth RAM Firmware Download USB Filter; C:\WINDOWS\system32\drivers\bcbtums.sys [2015-10-07 170712]
R3 BCM43XX;@oem8.inf,%BCM43XX_Service_DispName%;Ovladač síťového adaptéru Broadcom 802.11; C:\WINDOWS\system32\DRIVERS\bcmwl664.sys [2015-02-15 7765240]
R3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Služba Bluetooth Enumerator; C:\WINDOWS\system32\DRIVERS\BthEnum.sys [2017-03-18 105472]
R3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Ovladač úspory energie technologie Bluetooth; C:\WINDOWS\system32\DRIVERS\Microsoft.Bluetooth.Legacy.LEEnumerator.sys [2017-03-18 96768]
R3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Bluetooth Device (Personal Area Network); C:\WINDOWS\System32\drivers\bthpan.sys [2017-03-18 129536]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Ovladač rozhraní USB radiostanice Bluetooth; C:\WINDOWS\system32\DRIVERS\BTHUSB.sys [2017-03-18 85504]
R3 dtlitescsibus;@oem24.inf,%DTLITESCSIBUS.DeviceDesc%;DAEMON Tools Lite Virtual SCSI Bus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [2016-04-06 30264]
R3 dtliteusbbus;@oem19.inf,%DTLITEUSBBUS.DeviceDesc%;DAEMON Tools Lite Virtual USB Bus; C:\WINDOWS\System32\drivers\dtliteusbbus.sys [2016-04-06 47672]
R3 GeneStor;@oem72.inf,%GENESTOR.SvcDesc%;Genesys Logic Storage Driver; C:\WINDOWS\system32\DRIVERS\GeneStor.sys [2015-08-30 188840]
R3 int0800;@oem43.inf,%Flashud_svcdesc%;Intel 28F320C3 Flash Update Device Driver v6.4; C:\WINDOWS\System32\drivers\flashud.sys [2009-09-09 51712]
R3 IOMap;IOMap; \??\C:\WINDOWS\system32\drivers\IOMap64.sys [2013-07-02 24824]
R3 LGBusEnum;@oem28.inf,%LGBusEnum.SVCDESC%;Logitech Gaming Virtual Bus Enumerator Driver; C:\WINDOWS\system32\drivers\LGBusEnum.sys [2015-06-11 37408]
R3 LGJoyXlCore;@oem28.inf,%LGJoyXlCore.SVCDESC%;Logitech Translation Layer Driver (LGS); C:\WINDOWS\system32\drivers\LGJoyXlCore.sys [2015-06-11 68384]
R3 LGVirHid;@oem52.inf,%LGVirHid.SVCDESC%;Logitech Gamepanel Virtual HID Device Driver; C:\WINDOWS\system32\drivers\LGVirHid.sys [2015-06-11 26912]
R3 MQAC;@mqutil.dll,-6101; C:\WINDOWS\system32\drivers\mqac.sys [2017-05-15 177664]
R3 NVHDA;@oem16.inf,%NVHDA.SvcDesc%;Service for NVIDIA High Definition Audio Driver; C:\WINDOWS\system32\drivers\nvhda64v.sys [2017-05-02 218040]
R3 nvlddmkm;nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_a2b0acab06663645\nvlddmkm.sys [2017-05-02 14456944]
R3 nvvad_WaveExtensible;@oem4.inf,%nvvad_WaveExtensible.SvcDesc%;NVIDIA Virtual Audio Device (Wave Extensible) (WDM); C:\WINDOWS\system32\drivers\nvvad64v.sys [2017-05-03 48248]
R3 nvvhci;@oem66.inf,%ServiceDesc%;NVVHCI Enumerator Service; C:\WINDOWS\System32\drivers\nvvhci.sys [2017-05-02 59448]
R3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Zařízení Bluetooth (RFCOMM protokol TDI); C:\WINDOWS\System32\drivers\rfcomm.sys [2017-03-18 180736]
R3 rt640x64;@oem102.inf,%rt640.Service.DispName%;Realtek RT640 NT Driver; C:\WINDOWS\System32\drivers\rt640x64.sys [2015-10-21 888064]
S0 megasas2i;megasas2i; C:\WINDOWS\System32\drivers\MegaSas2i.sys [2017-03-18 64416]
S0 scmbus;@scmbus.inf,%scmbus.SvcDesc%;Microsoft Storage Class Memory Bus Driver; C:\WINDOWS\System32\drivers\scmbus.sys [2017-03-18 91040]
S2 CldFlt;Windows Cloud Files Filter Driver; C:\WINDOWS\system32\drivers\cldflt.sys [2017-03-18 12288]
S3 AcpiDev;@acpidev.inf,%AcpiDev.SvcDesc%;ACPI Devices driver; C:\WINDOWS\System32\drivers\AcpiDev.sys [2017-03-18 20480]
S3 ALSysIO;ALSysIO; \??\C:\Users\David\AppData\Local\Temp\ALSysIO64.sys []
S3 applockerfltr;@%systemroot%\system32\srpapi.dll,-102; C:\WINDOWS\system32\drivers\applockerfltr.sys [2017-03-18 17920]
S3 AppvStrm;@%systemroot%\system32\drivers\AppvStrm.sys,-101; C:\WINDOWS\system32\drivers\AppvStrm.sys [2017-03-20 127904]
S3 AppvVemgr;@%systemroot%\system32\drivers\AppvVemgr.sys,-101; C:\WINDOWS\system32\drivers\AppvVemgr.sys [2017-03-20 161696]
S3 AppvVfs;@%systemroot%\system32\drivers\AppvVfs.sys,-101; C:\WINDOWS\system32\drivers\AppvVfs.sys [2017-03-20 143776]
S3 ASUSfilter;ASUS USB Hub filter driver; C:\WINDOWS\System32\drivers\ASUSfilter.sys [2013-03-28 48384]
S3 ASUSstpt;ASUS USB 3.0 Boost Storage Driver (Storage Driver); C:\WINDOWS\System32\drivers\ASUSstpt.sys [2013-03-28 27392]
S3 ASUSumsc;ASUS USB 3.0 Boost Storage Driver (WDM); C:\WINDOWS\System32\drivers\ASUSumsc.sys [2013-03-28 151808]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Ovladač portu Bluetooth; C:\WINDOWS\system32\DRIVERS\BTHport.sys [2017-05-15 980992]
S3 btwampfl;@oem112.inf,%btwampfl.ServiceName%;btwampfl; C:\WINDOWS\system32\DRIVERS\btwampfl.sys [2015-10-07 166104]
S3 CAD;@ChargeArbitration.inf,%CAD_DevDesc%;Charge Arbitration Driver; C:\WINDOWS\System32\drivers\CAD.sys [2017-03-18 53664]
S3 DSI_SiUSBXp_3_1;DSI_SiUSBXp_3_1; C:\WINDOWS\system32\drivers\DSI_SiUSBXp_3_1.sys [2007-09-06 16384]
S3 hvservice;@%SystemRoot%\system32\drivers\hvservice.sys,-16; C:\WINDOWS\system32\drivers\hvservice.sys [2017-03-18 74648]
S3 cht4iscsi;cht4iscsi; C:\WINDOWS\System32\drivers\cht4sx64.sys [2017-03-18 347032]
S3 cht4vbd;@cht4vx64.inf,%cht4vbd.generic%;Chelsio Virtual Bus Driver; C:\WINDOWS\System32\drivers\cht4vx64.sys [2017-03-18 2104224]
S3 iagpio;@iagpio.inf,%iagpio.SVCDESC%;Intel Serial IO GPIO Controller Driver; C:\WINDOWS\System32\drivers\iagpio.sys [2017-03-18 33280]
S3 iaLPSS2i_GPIO2;@iaLPSS2i_GPIO2_SKL.inf,%iaLPSS2i_GPIO2.SVCDESC%;Intel(R) Serial IO GPIO Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2.sys [2017-03-18 70656]
S3 iaLPSS2i_GPIO2_BXT_P;@iaLPSS2i_GPIO2_BXT_P.inf,%iaLPSS2i_GPIO2_BXT_P.SVCDESC%;Intel(R) Serial IO GPIO Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_BXT_P.sys [2017-03-18 85504]
S3 iaLPSS2i_I2C_BXT_P;@iaLPSS2i_I2C_BXT_P.inf,%iaLPSS2i_I2C_BXT_P.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_BXT_P.sys [2017-03-18 168448]
S3 IAMTVE;Driver for Intel(R) Active Management Technology - KCS; C:\WINDOWS\System32\drivers\IAMTVE.sys [2007-04-12 43416]
S3 IndirectKmd;@%SystemRoot%\system32\drivers\IndirectKmd.sys,-100; C:\WINDOWS\System32\drivers\IndirectKmd.sys [2017-03-18 36864]
S3 irda;IrDA; C:\WINDOWS\system32\drivers\irda.sys [2017-03-18 120320]
S3 mausbhost;@mausbhost.inf,%MAUSBHost.ServiceName%;MA-USB Host Controller Driver; C:\WINDOWS\System32\drivers\mausbhost.sys [2017-03-18 405408]
S3 mausbip;@mausbhost.inf,%MAUSBIP.ServiceName%;MA-USB IP Filter Driver; C:\WINDOWS\System32\drivers\mausbip.sys [2017-03-18 51104]
S3 MsSecFlt;@%SystemRoot%\System32\Drivers\mssecflt.sys,-1001; C:\WINDOWS\system32\drivers\mssecflt.sys [2017-03-20 230816]
S3 NetAdapterCx;Network Adapter Wdf Class Extension Library; C:\WINDOWS\system32\drivers\NetAdapterCx.sys [2017-03-18 122368]
S3 netvsc;netvsc; C:\WINDOWS\System32\drivers\netvsc.sys [2017-05-15 118784]
S3 nvdimmn;@nvdimmn.inf,%nvdimmn.SvcDesc%;Microsoft NVDIMM-N device driver; C:\WINDOWS\System32\drivers\nvdimmn.sys [2017-03-18 80896]
S3 NvStreamKms;NVIDIA KMS; \??\C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [2017-05-03 30328]
S3 NvStUSB;NVIDIA Stereoscopic 3D USB driver; C:\WINDOWS\System32\drivers\nvstusb.sys [2015-08-11 469688]
S3 pmem;@pmem.inf,%pmem.SvcDesc%;Microsoft persistent memory disk driver; C:\WINDOWS\System32\drivers\pmem.sys [2017-03-18 101376]
S3 ReFS;ReFS; C:\WINDOWS\system32\drivers\ReFS.sys [2017-03-18 1735584]
S3 SDFRd;@SDFRd.inf,%SDFRd.ServiceDesc%;SDF Reflector; C:\WINDOWS\System32\drivers\SDFRd.sys [2017-03-18 31128]
====== List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled) ======
R2 AppHostSvc;@%windir%\system32\inetsrv\iisres.dll,-30011; %windir%\system32\svchost.exe -k apphost;"ServiceDll" = %windir%\system32\inetsrv\apphostsvc.dll
R2 ASGT;ASGT; C:\Windows\SysWOW64\ASGT.exe [2012-01-17 55296]
R2 asHmComSvc;ASUS HM Com Service; C:\Program Files (x86)\ASUS\AAHM\1.00.22\aaHMSvc.exe [2013-05-07 945152]
R2 BcmBtRSupport;@oem112.inf,%BlueBcmBtRSupport.SVCNAME%;Bluetooth Driver Management Service; C:\WINDOWS\system32\BtwRSupportService.exe [2015-10-07 2255064]
R2 Bonjour Service;Bonjour Service; C:\Program Files\Bonjour\mDNSResponder.exe [2011-08-31 462184]
R2 CDPUserSvc_1f7b1d4;Uživatelská služba platformy připojených zařízení_1f7b1d4; C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup;"ServiceDll" =
R2 DTSAudioSvc;DTSAudioSvc; C:\Program Files\Realtek\Audio\HDA\DTSU2PAuSrv64.exe [2015-06-24 249328]
R2 DusmSvc;@%SystemRoot%\System32\dusmsvc.dll,-1; %SystemRoot%\System32\svchost.exe -k LocalServiceNetworkRestricted;"ServiceDll" = %SystemRoot%\System32\dusmsvc.dll
R2 HuaweiHiSuiteService64.exe;HuaweiHiSuiteService64.exe; C:\Program Files (x86)\HiSuite\HandSetService\HuaweiHiSuiteService64.exe [2016-11-17 192200]
R2 Intel(R) PROSet Monitoring Service;Intel(R) PROSet Monitoring Service; C:\Windows\system32\IProsetMonitor.exe [2013-01-03 183200]
R2 LogiRegistryService;Logitech Gaming Registry Service; C:\Program Files\Logitech Gaming Software\Drivers\APOService\LogiRegistryService.exe [2016-03-30 193656]
R2 MSMQ;@mqutil.dll,-6102; C:\WINDOWS\system32\mqsvc.exe [2017-05-15 26112]
R2 NetMsmqActivator;@%systemroot%\Microsoft.NET\Framework64\v4.0.30319\ServiceModelInstallRC.dll,-8195; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2017-03-18 136360]
R2 NetPipeActivator;@%systemroot%\Microsoft.NET\Framework64\v4.0.30319\ServiceModelInstallRC.dll,-8197; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2017-03-18 136360]
R2 NvContainerLocalSystem;NVIDIA LocalSystem Container; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [2017-05-03 495224]
R2 NVDisplay.ContainerLocalSystem;NVIDIA Display Container LS; C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe [2017-05-01 462968]
- Přílohy
-
- Výstřižek.JPG (66.32 KiB) Zobrazeno 2951 x
Re: Vytížený procesor
zbytek zde:
R2 NvTelemetryContainer;NVIDIA Telemetry Container; C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe [2017-05-03 450168]
R2 OneSyncSvc_1f7b1d4;Hostitel synchronizace_1f7b1d4; C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup;"ServiceDll" =
R2 SecurityHealthService;@%systemroot%\system32\SecurityHealthAgent.dll,-1002; C:\WINDOWS\system32\SecurityHealthService.exe [2017-03-18 335808]
R3 BrYNSvc;BrYNSvc; C:\Program Files (x86)\Browny02\BrYNSvc.exe [2013-09-25 282112]
R3 Disc Soft Lite Bus Service;Disc Soft Lite Bus Service; C:\Program Files (x86)\DAEMON Tools Lite\DiscSoftBusServiceLite.exe [2016-10-06 1468608]
R3 Ext2Srv;Ext2Fsd Service Manager; C:\Program Files\Ext2Fsd\Ext2Srv.exe [2016-07-09 34816]
R3 PimIndexMaintenanceSvc_1f7b1d4;Data kontaktů_1f7b1d4; C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup;"ServiceDll" =
S2 asComSvc;ASUS Com Service; C:\Program Files (x86)\ASUS\AXSP\1.01.02\atkexComSvc.exe [2015-11-15 936728]
S2 AsusFanControlService;AsusFanControlService; C:\Program Files (x86)\ASUS\AsusFanControlService\1.02.22\AsusFanControlService.exe [2013-05-09 1639424]
S2 CDPUserSvc;@%SystemRoot%\system32\cdpusersvc.dll,-100; %SystemRoot%\system32\svchost.exe -k UnistackSvcGroup;"ServiceDll" = %SystemRoot%\System32\CDPUserSvc.dll
S2 NetTcpActivator;@%systemroot%\Microsoft.NET\Framework64\v4.0.30319\ServiceModelInstallRC.dll,-8199; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2017-03-18 136360]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2017-03-14 317400]
S3 aspnet_state;@%SystemRoot%\Microsoft.NET\Framework64\v4.0.30319\aspnet_rc.dll,-1; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2017-03-18 52920]
S3 DevicesFlowUserSvc;@%SystemRoot%\system32\DevicesFlowBroker.dll,-103; %SystemRoot%\system32\svchost.exe -k DevicesFlow;"ServiceDll" = %SystemRoot%\System32\DevicesFlowBroker.dll
S3 DevicesFlowUserSvc_1f7b1d4;Tok zařízení_1f7b1d4; C:\WINDOWS\system32\svchost.exe -k DevicesFlow;"ServiceDll" =
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2017-02-10 43696]
S3 FrameServer;@%systemroot%\system32\FrameServer.dll,-100; %SystemRoot%\System32\svchost.exe -k Camera;"ServiceDll" = %SystemRoot%\system32\FrameServer.dll
S3 Garmin Device Interaction Service;Garmin Device Interaction Service; C:\Program Files (x86)\Garmin\Device Interaction Service\GarminService.exe [2017-03-28 1099280]
S3 gusvc;Google Software Updater; C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe [2015-01-24 194032]
S3 HvHost;@%SystemRoot%\system32\hvhostsvc.dll,-100; %SystemRoot%\system32\svchost.exe -k LocalSystemNetworkRestricted;"ServiceDll" = %SystemRoot%\System32\hvhostsvc.dll
S3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS; C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [2013-01-02 171632]
S3 IpxlatCfgSvc;@%Systemroot%\system32\ipxlatcfg.dll,-500; %SystemRoot%\System32\svchost.exe -k LocalSystemNetworkRestricted;"ServiceDll" = %SystemRoot%\System32\IpxlatCfg.dll
S3 irmon;@%SystemRoot%\System32\irmon.dll,-2000; %SystemRoot%\system32\svchost.exe -k LocalSystemNetworkRestricted;"ServiceDll" = %SystemRoot%\System32\irmon.dll
S3 MessagingService_1f7b1d4;Služba zasílání zpráv_1f7b1d4; C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup;"ServiceDll" =
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files (x86)\Microsoft Office\Office12\GrooveAuditService.exe [2009-02-26 64856]
S3 NaturalAuthentication;@%systemroot%\system32\NaturalAuth.dll,-100; %SystemRoot%\system32\svchost.exe -k netsvcs;"ServiceDll" = %SystemRoot%\System32\NaturalAuth.dll
S3 NvContainerNetworkService;NVIDIA NetworkService Container; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [2017-05-03 495224]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 RmSvc;@%SystemRoot%\system32\RMapi.dll,-1001; %SystemRoot%\System32\svchost.exe -k LocalServiceNetworkRestricted;"ServiceDll" = %SystemRoot%\System32\RMapi.dll
S3 SEMgrSvc;@%SystemRoot%\System32\SEMgrSvc.dll,-1001; %SystemRoot%\system32\svchost.exe -k LocalService;"ServiceDll" = %SystemRoot%\system32\SEMgrSvc.dll
S3 Sense;@%ProgramFiles%\Windows Defender Advanced Threat Protection\MsSense.exe,-1001; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [2017-03-20 3913064]
S4 AppVClient;@%systemroot%\system32\AppVClient.exe,-102; C:\WINDOWS\system32\AppVClient.exe [2017-03-20 846752]
S4 shpamsvc;@%SystemRoot%\System32\Windows.SharedPC.AccountManager.dll,-100; %SystemRoot%\System32\svchost.exe -k netsvcs;"ServiceDll" = %systemroot%\system32\Windows.SharedPC.AccountManager.dll
-----------------EOF----------------
R2 NvTelemetryContainer;NVIDIA Telemetry Container; C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe [2017-05-03 450168]
R2 OneSyncSvc_1f7b1d4;Hostitel synchronizace_1f7b1d4; C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup;"ServiceDll" =
R2 SecurityHealthService;@%systemroot%\system32\SecurityHealthAgent.dll,-1002; C:\WINDOWS\system32\SecurityHealthService.exe [2017-03-18 335808]
R3 BrYNSvc;BrYNSvc; C:\Program Files (x86)\Browny02\BrYNSvc.exe [2013-09-25 282112]
R3 Disc Soft Lite Bus Service;Disc Soft Lite Bus Service; C:\Program Files (x86)\DAEMON Tools Lite\DiscSoftBusServiceLite.exe [2016-10-06 1468608]
R3 Ext2Srv;Ext2Fsd Service Manager; C:\Program Files\Ext2Fsd\Ext2Srv.exe [2016-07-09 34816]
R3 PimIndexMaintenanceSvc_1f7b1d4;Data kontaktů_1f7b1d4; C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup;"ServiceDll" =
S2 asComSvc;ASUS Com Service; C:\Program Files (x86)\ASUS\AXSP\1.01.02\atkexComSvc.exe [2015-11-15 936728]
S2 AsusFanControlService;AsusFanControlService; C:\Program Files (x86)\ASUS\AsusFanControlService\1.02.22\AsusFanControlService.exe [2013-05-09 1639424]
S2 CDPUserSvc;@%SystemRoot%\system32\cdpusersvc.dll,-100; %SystemRoot%\system32\svchost.exe -k UnistackSvcGroup;"ServiceDll" = %SystemRoot%\System32\CDPUserSvc.dll
S2 NetTcpActivator;@%systemroot%\Microsoft.NET\Framework64\v4.0.30319\ServiceModelInstallRC.dll,-8199; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2017-03-18 136360]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2017-03-14 317400]
S3 aspnet_state;@%SystemRoot%\Microsoft.NET\Framework64\v4.0.30319\aspnet_rc.dll,-1; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2017-03-18 52920]
S3 DevicesFlowUserSvc;@%SystemRoot%\system32\DevicesFlowBroker.dll,-103; %SystemRoot%\system32\svchost.exe -k DevicesFlow;"ServiceDll" = %SystemRoot%\System32\DevicesFlowBroker.dll
S3 DevicesFlowUserSvc_1f7b1d4;Tok zařízení_1f7b1d4; C:\WINDOWS\system32\svchost.exe -k DevicesFlow;"ServiceDll" =
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2017-02-10 43696]
S3 FrameServer;@%systemroot%\system32\FrameServer.dll,-100; %SystemRoot%\System32\svchost.exe -k Camera;"ServiceDll" = %SystemRoot%\system32\FrameServer.dll
S3 Garmin Device Interaction Service;Garmin Device Interaction Service; C:\Program Files (x86)\Garmin\Device Interaction Service\GarminService.exe [2017-03-28 1099280]
S3 gusvc;Google Software Updater; C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe [2015-01-24 194032]
S3 HvHost;@%SystemRoot%\system32\hvhostsvc.dll,-100; %SystemRoot%\system32\svchost.exe -k LocalSystemNetworkRestricted;"ServiceDll" = %SystemRoot%\System32\hvhostsvc.dll
S3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS; C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [2013-01-02 171632]
S3 IpxlatCfgSvc;@%Systemroot%\system32\ipxlatcfg.dll,-500; %SystemRoot%\System32\svchost.exe -k LocalSystemNetworkRestricted;"ServiceDll" = %SystemRoot%\System32\IpxlatCfg.dll
S3 irmon;@%SystemRoot%\System32\irmon.dll,-2000; %SystemRoot%\system32\svchost.exe -k LocalSystemNetworkRestricted;"ServiceDll" = %SystemRoot%\System32\irmon.dll
S3 MessagingService_1f7b1d4;Služba zasílání zpráv_1f7b1d4; C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup;"ServiceDll" =
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files (x86)\Microsoft Office\Office12\GrooveAuditService.exe [2009-02-26 64856]
S3 NaturalAuthentication;@%systemroot%\system32\NaturalAuth.dll,-100; %SystemRoot%\system32\svchost.exe -k netsvcs;"ServiceDll" = %SystemRoot%\System32\NaturalAuth.dll
S3 NvContainerNetworkService;NVIDIA NetworkService Container; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [2017-05-03 495224]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 RmSvc;@%SystemRoot%\system32\RMapi.dll,-1001; %SystemRoot%\System32\svchost.exe -k LocalServiceNetworkRestricted;"ServiceDll" = %SystemRoot%\System32\RMapi.dll
S3 SEMgrSvc;@%SystemRoot%\System32\SEMgrSvc.dll,-1001; %SystemRoot%\system32\svchost.exe -k LocalService;"ServiceDll" = %SystemRoot%\system32\SEMgrSvc.dll
S3 Sense;@%ProgramFiles%\Windows Defender Advanced Threat Protection\MsSense.exe,-1001; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [2017-03-20 3913064]
S4 AppVClient;@%systemroot%\system32\AppVClient.exe,-102; C:\WINDOWS\system32\AppVClient.exe [2017-03-20 846752]
S4 shpamsvc;@%SystemRoot%\System32\Windows.SharedPC.AccountManager.dll,-100; %SystemRoot%\System32\svchost.exe -k netsvcs;"ServiceDll" = %systemroot%\system32\Windows.SharedPC.AccountManager.dll
-----------------EOF----------------
Re: Vytížený procesor
Tak se omlouvám,že tu zabírám místo, nakonec MBAM zdá se zabral, nicméně kdyby někdo mrknul když už jsem to sem dal jestli tam není ještě něco dalšího...
Přikládám log. z MBAM ale nevím jestli jsem ho udělal správně.
Malwarebytes
www.malwarebytes.com
-Podrobnosti logovacího souboru-
Datum skenování: 22.05.17
Čas skenování: 11:04
Logovací soubor: Sken MBAM.txt
Správce: Ano
-Informace o softwaru-
Verze: 3.1.2.1733
Verze komponentů: 1.0.122
Aktualizovat verzi balíku komponent: 1.0.1991
Licence: Zkušební
-Systémová informace-
OS: Windows 10
CPU: x64
Systém souborů: NTFS
Uživatel: DAVID-PC\David
-Shrnutí skenování-
Typ skenování: Skenování hrozeb (Threat Scan)
Výsledek: Dokončeno
Skenované objekty: 457882
Zjištěné hrozby: 2
Hrozby umístěné do karantény: 0
(Nebyly zjištěny žádné škodlivé položky)
Uplynulý čas: 1 min, 25 sek
-Možnosti skenování-
Paměť: Povoleno
Start: Povoleno
Systém souborů: Povoleno
Archivy: Povoleno
Rootkity: Zakázáno
Heuristika: Povoleno
Potenciálně nežádoucí program: Povoleno
Potenciálně nežádoucí modifikace: Povoleno
-Podrobnosti skenování-
Proces: 0
(Nebyly zjištěny žádné škodlivé položky)
Modul: 0
(Nebyly zjištěny žádné škodlivé položky)
Klíč registru: 2
PUP.Optional.StormFall, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\StormFall FM, Žádná uživatelská akce, [12998], [186767],1.0.1991
PUP.Optional.StormFall, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\StormFall TM, Žádná uživatelská akce, [12998], [186767],1.0.1991
Hodnota v registru: 0
(Nebyly zjištěny žádné škodlivé položky)
Data registrů: 0
(Nebyly zjištěny žádné škodlivé položky)
Datové proudy: 0
(Nebyly zjištěny žádné škodlivé položky)
Adresář: 0
(Nebyly zjištěny žádné škodlivé položky)
Soubor: 0
(Nebyly zjištěny žádné škodlivé položky)
Fyzický sektor: 0
(Nebyly zjištěny žádné škodlivé položky)
(end)
Přikládám log. z MBAM ale nevím jestli jsem ho udělal správně.
Malwarebytes
www.malwarebytes.com
-Podrobnosti logovacího souboru-
Datum skenování: 22.05.17
Čas skenování: 11:04
Logovací soubor: Sken MBAM.txt
Správce: Ano
-Informace o softwaru-
Verze: 3.1.2.1733
Verze komponentů: 1.0.122
Aktualizovat verzi balíku komponent: 1.0.1991
Licence: Zkušební
-Systémová informace-
OS: Windows 10
CPU: x64
Systém souborů: NTFS
Uživatel: DAVID-PC\David
-Shrnutí skenování-
Typ skenování: Skenování hrozeb (Threat Scan)
Výsledek: Dokončeno
Skenované objekty: 457882
Zjištěné hrozby: 2
Hrozby umístěné do karantény: 0
(Nebyly zjištěny žádné škodlivé položky)
Uplynulý čas: 1 min, 25 sek
-Možnosti skenování-
Paměť: Povoleno
Start: Povoleno
Systém souborů: Povoleno
Archivy: Povoleno
Rootkity: Zakázáno
Heuristika: Povoleno
Potenciálně nežádoucí program: Povoleno
Potenciálně nežádoucí modifikace: Povoleno
-Podrobnosti skenování-
Proces: 0
(Nebyly zjištěny žádné škodlivé položky)
Modul: 0
(Nebyly zjištěny žádné škodlivé položky)
Klíč registru: 2
PUP.Optional.StormFall, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\StormFall FM, Žádná uživatelská akce, [12998], [186767],1.0.1991
PUP.Optional.StormFall, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\StormFall TM, Žádná uživatelská akce, [12998], [186767],1.0.1991
Hodnota v registru: 0
(Nebyly zjištěny žádné škodlivé položky)
Data registrů: 0
(Nebyly zjištěny žádné škodlivé položky)
Datové proudy: 0
(Nebyly zjištěny žádné škodlivé položky)
Adresář: 0
(Nebyly zjištěny žádné škodlivé položky)
Soubor: 0
(Nebyly zjištěny žádné škodlivé položky)
Fyzický sektor: 0
(Nebyly zjištěny žádné škodlivé položky)
(end)
Re: Vytížený procesor
ahoj,
preventivne daj vyhladat na disku subor reader_s.exe - vysledky vloz sem
preventivne daj vyhladat na disku subor reader_s.exe - vysledky vloz sem
FRST |ADWCleaner |MBAM |CCleaner |AVPTool
V prípade spokojnosti je možné podporiť fórum https://platba.viry.cz/payment/
V prípade spokojnosti je možné podporiť fórum https://platba.viry.cz/payment/
Re: Vytížený procesor
Ahoj, vyhledat jsem dal, ale nic jsem nenašel. To je dobrá zpráva, nebo špatná?
Re: Vytížený procesor
asi dobra, obcas sa smejd ukryva za tento subor
preventivne prescanuj PC s CureIT https://forum.viry.cz/viewtopic.php?f=29&t=151000
preventivne prescanuj PC s CureIT https://forum.viry.cz/viewtopic.php?f=29&t=151000
FRST |ADWCleaner |MBAM |CCleaner |AVPTool
V prípade spokojnosti je možné podporiť fórum https://platba.viry.cz/payment/
V prípade spokojnosti je možné podporiť fórum https://platba.viry.cz/payment/
Re: Vytížený procesor
Proskenoval jsem a vyjelo toto.
- Přílohy
-
- Výstřižek2.JPG (20.45 KiB) Zobrazeno 2902 x
Re: Vytížený procesor
Mozes to ignorovat ☺
FRST |ADWCleaner |MBAM |CCleaner |AVPTool
V prípade spokojnosti je možné podporiť fórum https://platba.viry.cz/payment/
V prípade spokojnosti je možné podporiť fórum https://platba.viry.cz/payment/
Re: Vytížený procesor
Moc děkuju za tvůj čas, každý umí něco jiného, ale tohle stejně obdivuju jak se někdo vyzná v hromadách nic neříkajících čísel, atd.
Díky.
Díky.
Re: Vytížený procesor
Rado sa stalo
FRST |ADWCleaner |MBAM |CCleaner |AVPTool
V prípade spokojnosti je možné podporiť fórum https://platba.viry.cz/payment/
V prípade spokojnosti je možné podporiť fórum https://platba.viry.cz/payment/