Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Zasekaný systém po spuštění počítače

Patříte mezi Vzorné návštěvníky? Pak je tato sekce pro vás.

Moderátor: Moderátoři

Pravidla fóra
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
Zamčeno
Zpráva
Autor
ivankrato
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 77
Registrován: 13 bře 2009 14:08

Zasekaný systém po spuštění počítače

#1 Příspěvek od ivankrato »

Zdravím, poslední dobou mě zlobí počítač. Po spuštění systému se často seká, jako kdyby stále něco načítal. Střídají se stavy, kdy počítač normálně funguje a stavy, kdy na nic nereaguje. Většinou tak po 5-10 sekundách, ale počítač je někdy zaseknutý třeba 3 minuty. Takhle to trvá zhruba 30-45 minut, pak začne všechno fungovat normálně a počítač se dá konečně používat. Zatížení procesoru v tuhle dobu nevyskakuje na žádné vysoké hodnoty. Dávám log z RSIT:

Logfile of random's system information tool 1.10 (written by random/random)
Run by Trams at 2015-09-17 20:46:57
Microsoft Windows 10 Pro
System drive C: has 45 GB (30%) free of 150 GB
Total RAM: 8175 MB (63% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 20:47:05, on 17.09.2015
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.10240.16412)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\TeamViewer\TeamViewer.exe
C:\WINDOWS\SysWOW64\rundll32.exe
C:\Program Files (x86)\Common Files\Microsoft Shared\Ink\TabTip32.exe
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
K:\Program Files\Steam\Steam.exe
C:\Users\Kratochvil\AppData\Local\Microsoft\OneDrive\OneDrive.exe
K:\Program Files\Steam\bin\steamwebhelper.exe
C:\Program Files\trend micro\Trams.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local;127.0.0.1:9421;<local>
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=
O2 - BHO: ContributeBHO Class - {074C1DC5-9320-4A9A-947D-C042949C6216} - E:\Program Files\Adobe\Adobe Contribute CS5.1\Plugins\IEPlugin\contributeieplugin.dll
O2 - BHO: Skype for Business Click to Call BHO - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Microsoft Office\Office15\OCHelper.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_31\bin\ssv.dll
O2 - BHO: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll
O2 - BHO: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Microsoft Office\Office15\GROOVEEX.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_31\bin\jp2ssv.dll
O2 - BHO: SmartSelect - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll
O3 - Toolbar: Contribute Toolbar - {517BDDE4-E3A7-4570-B21E-2B52B6139FC7} - E:\Program Files\Adobe\Adobe Contribute CS5.1\Plugins\IEPlugin\contributeieplugin.dll
O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll
O4 - HKLM\..\Run: [JMB36X IDE Setup] C:\Windows\RaidTool\xInsIDE.exe
O4 - HKCU\..\Run: [Steam] "K:\Program Files\Steam\steam.exe" -silent
O4 - HKCU\..\Run: [SteelSeries Engine] C:\Program Files\SteelSeries\SteelSeries Engine\SteelSeriesEngine.exe
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [OneDrive] "C:\Users\Kratochvil\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
O4 - HKCU\..\RunOnce: [Uninstall C:\Users\Kratochvil\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64] C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Kratochvil\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64"
O4 - HKCU\..\RunOnce: [Uninstall C:\Users\Kratochvil\AppData\Local\Microsoft\OneDrive\17.3.5930.0814\amd64] C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Kratochvil\AppData\Local\Microsoft\OneDrive\17.3.5930.0814\amd64"
O4 - HKCU\..\RunOnce: [Uninstall C:\Users\Kratochvil\AppData\Local\Microsoft\OneDrive\17.3.5907.0716_2\amd64] C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Kratochvil\AppData\Local\Microsoft\OneDrive\17.3.5907.0716_2\amd64"
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O4 - Startup: Odeslat do OneNote.lnk = C:\Program Files\Microsoft Office 15\root\office15\ONENOTEM.EXE
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\Program Files\Microsoft Office\Office15\EXCEL.EXE/3000
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\Program Files (x86)\Microsoft Office\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Se&nd to OneNote - res://C:\Program Files\Microsoft Office 15\Root\Office15\ONBttnIE.dll/105
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Microsoft Office\Office15\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Microsoft Office\Office15\ONBttnIE.dll
O9 - Extra button: PrivDog - {2F5C139F-79BD-4C84-A95A-E7140525BC55} - (no file)
O9 - Extra button: Skype for Business Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Microsoft Office\Office15\OCHelper.dll
O9 - Extra 'Tools' menuitem: Skype for Business Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Microsoft Office\Office15\OCHelper.dll
O9 - Extra button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - Trusted Zone: *.clonewarsadventures.com
O15 - Trusted Zone: *.freerealms.com
O15 - Trusted Zone: *.soe.com
O15 - Trusted Zone: *.sony.com
O17 - HKLM\System\CCS\Services\Tcpip\..\{1c59516f-dd8a-4491-bfef-7b892907cde5}: NameServer = 8.8.8.8,8.8.4.4
O17 - HKLM\System\CS1\Services\Tcpip\..\{1c59516f-dd8a-4491-bfef-7b892907cde5}: NameServer = 8.8.8.8,8.8.4.4
O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Microsoft Office\Office15\MSOSB.DLL
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O23 - Service: SAS Core Service (!SASCORE) - SUPERAntiSpyware.com - C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: AVerRECentral - AVerMedia TECHNOLOGIES, Inc. - C:\Program Files (x86)\Common Files\AVerMedia\Service\AVerRECentral.exe
O23 - Service: AVerUpdateServer - AVerMedia TECHNOLOGIES, Inc. - C:\Program Files (x86)\AVerMedia\AVerUpdate\AVerUpdateServer.exe
O23 - Service: BattlEye Service (BEService) - Unknown owner - C:\Program Files (x86)\Common Files\BattlEye\BEService.exe
O23 - Service: Xamarin Bonjour Service (Bonjour Service) - Apple Inc. - C:\Program Files (x86)\Xamarin\Bonjour\mDNSResponder.exe
O23 - Service: COMODO Internet Security Helper Service (CmdAgent) - COMODO - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
O23 - Service: COMODO Virtual Service Manager (cmdvirth) - COMODO - C:\Program Files\COMODO\COMODO Internet Security\cmdvirth.exe
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @mqutil.dll,-6102 (MSMQ) - Unknown owner - C:\WINDOWS\system32\mqsvc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\System32\ngcsvc.dll,-100 (NgcSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: Origin Client Service - Electronic Arts - E:\Program Files\Origin\OriginClientService.exe
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: SAMSUNG Mobile Connectivity Service (ss_conn_service) - DEVGURU Co., LTD. - C:\Program Files\SAMSUNG\USB Drivers\25_escape\conn\ss_conn_service.exe
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: SwitchBoard - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O23 - Service: TeamViewer 10 (TeamViewer) - TeamViewer GmbH - C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vmms.exe,-10 (vmms) - Unknown owner - C:\WINDOWS\system32\vmms.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: Wacom Professional Service (WTabletServicePro) - Wacom Technology, Corp. - C:\Program Files\Tablet\Wacom\WTabletServicePro.exe

--
End of file - 13962 bytes

======Listing Processes======







C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\System32\svchost.exe -k NetworkService
"C:\Windows\system32\nvvsvc.exe"
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-23198efd-f716-42e1-be35-a1cc817ae112 -SystemEventPortName:HostProcess-19dba51e-6f70-4568-a216-f8416ddd738f -IoCancelEventPortName:HostProcess-71148606-5e1e-4bfd-a1ae-311c8ed17100 -NonStateChangingEventPortName:HostProcess-586ade86-8b84-443f-809c-efb2db74250a -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:bcd729b4-c5d7-468f-bfc0-b264a1ab8186 -DeviceGroupId:WudfDefaultDevicePool
"C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe"
C:\WINDOWS\system32\svchost.exe -k LocalService
"C:\Program Files\Tablet\Wacom\WTabletServicePro.exe"

C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
C:\WINDOWS\System32\svchost.exe -k utcsvc
dashost.exe {bd2b81a6-0c83-44a9-9c30a6e10c2821d5}
"C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE"
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files (x86)\Xamarin\Bonjour\mDNSResponder.exe"
"C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe"
C:\WINDOWS\system32\svchost.exe -k apphost
"C:\Program Files (x86)\AVerMedia\AVerUpdate\AVerUpdateServer.exe"
"C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe" /service
"C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe"
"C:\Program Files (x86)\Common Files\AVerMedia\Service\AVerRECentral.exe"
C:\Windows\system32\PnkBstrA.exe
C:\WINDOWS\system32\svchost.exe -k imgsvc
C:\WINDOWS\system32\svchost.exe -k appmodel
"C:\Program Files\SAMSUNG\USB Drivers\25_escape\conn\ss_conn_service.exe"
C:\WINDOWS\system32\mqsvc.exe
"C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe"
"C:\Program Files (x86)\Common Files\Microsoft Shared\Phone Tools\CoreCon\11.0\bin\IpOverUsbSvc.exe"
C:\WINDOWS\system32\svchost.exe -k NetworkServiceNetworkRestricted
"C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe"
C:\WINDOWS\system32\vmms.exe
C:\WINDOWS\System32\svchost.exe -k LocalServicePeerNet

C:\WINDOWS\system32\DllHost.exe /Processid:{30D49246-D217-465F-B00B-AC9DDD652EB7}
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
"C:\Program Files (x86)\Google\Update\1.3.28.15\GoogleCrashHandler.exe"
"C:\Program Files (x86)\Google\Update\1.3.28.15\GoogleCrashHandler64.exe"
C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe

C:\WINDOWS\System32\WinLogon.exe -SpecialSession
"dwm.exe"
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\WINDOWS\system32\nvvsvc.exe -session
"C:\Program Files (x86)\TeamViewer\TeamViewer.exe"
taskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E}
C:\WINDOWS\SysWOW64\rundll32.exe "E:\Program Files\Garena\Garena Plus\ggspawn.dll",rundll_entry -p 0
"C:\Program Files\COMODO\COMODO Internet Security\cistray.exe"
sihost.exe
C:\Windows\System32\RuntimeBroker.exe -Embedding
C:\WINDOWS\Explorer.EXE
"C:\Program Files (x86)\TeamViewer\tv_w32.exe" --action hooks --log C:\Program Files (x86)\TeamViewer\TeamViewer10_Logfile.log
"C:\Program Files (x86)\TeamViewer\tv_x64.exe" --action hooks --log C:\Program Files (x86)\TeamViewer\TeamViewer10_Logfile.log
"C:\Program Files\Tablet\Wacom\Wacom_TabletUser.exe"
"C:\Program Files\Tablet\Wacom\WacomHost.exe" "C:\Program Files\Tablet\Wacom\Wacom_Tablet.exe" au
"C:\Program Files\Tablet\Wacom\Wacom_Tablet.exe" au
"C:\Program Files\Tablet\Wacom\Wacom_TouchUser.exe"
"C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
"C:\WINDOWS\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe" -ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca
/QuitInfo:0000000000000A68;0000000000001258;
/loadhooks /Parent:0000000000001e64
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
"C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
"C:\Program Files\Logitech Gaming Software\LCore.exe" /minimized
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"K:\Program Files\Steam\Steam.exe" -silent
"C:\Program Files\SteelSeries\SteelSeries Engine\SteelSeriesEngine.exe"
"C:\Users\Kratochvil\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
"C:\Program Files\Microsoft Office 15\root\office15\ONENOTEM.EXE" /tsr
"K:\Program Files\Steam\bin\steamwebhelper.exe" -cefhost -cachedir "C:\Users\Kratochvil\AppData\Local\Steam\htmlcache" -steampid 4912 -buildid 1440016726 -steamid "0" --disable-gpu-compositing --disable-gpu --process-per-tab --enable-system-flash --disable-spell-checking --enable-direct-write
"C:\Program Files (x86)\Common Files\Steam\SteamService.exe" /RunAsService
"C:\Program Files\COMODO\COMODO Internet Security\cis.exe" --alertsUI
"C:\Program Files\Microsoft Office 15\Root\VFS\ProgramFilesCommonX64\Microsoft Shared\OFFICE15\CSISYNCCLIENT.EXE" "C:\Program Files\Microsoft Office 15\Root\VFS\ProgramFilesCommonX64\Microsoft Shared\OFFICE15\CSISYNCCLIENT.EXE" -Embedding
C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
"C:\Program Files\Common Files\Microsoft Shared\Ink\InputPersonalization.exe"
C:\WINDOWS\system32\SettingSyncHost.exe -Embedding
C:\WINDOWS\system32\ApplicationFrameHost.exe -Embedding
"C:\Program Files\WindowsApps\Microsoft.Windows.Photos_15.827.16340.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe" -ServerName:App.AppXzst44mncqdg84v7sv6p7yznqwssy6f7f.mca
"C:\Program Files\WindowsApps\Microsoft.ZuneVideo_3.6.12711.0_x64__8wekyb3d8bbwe\Video.UI.exe" -ServerName:Microsoft.ZuneVideo.AppX758ya5sqdjd98rx6z7g95nw6jy7bqx9y.mca
"C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.1508.14010.0_x64__8wekyb3d8bbwe\Calculator.exe" -ServerName:App.AppXsm3pg4n7er43kdh1qp4e79f1j7am68r8.mca
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=watcher --on-initialized-event-handle=860 --parent-handle=864
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="8808.0.154022945\1567281155" --supports-dual-gpus=false --gpu-driver-bug-workarounds=2,20,45,55 --gpu-vendor-id=0x10de --gpu-device-id=0x1187 --gpu-driver-vendor=NVIDIA --gpu-driver-version=10.18.13.5354 --ignored=" --type=renderer " /prefetch:822062411
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AffiliationBasedMatching/Enabled/AudioProcessing48kHzSupport/Default/AutofillEnabled/Default/BrowserBlacklist/Enabled/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/ChromeDashboard/Default/*ClientSideDetectionModel/Model0/*DomRel-Enable/enable/*EmbeddedSearch/Group1 pct:10a stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnableSessionCrashedBubbleUI/Disabled/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GoogleNow/Enable/*IconNTP/Default/InstanceID/Enabled/IntelligentSessionRestore/Disabled/*NetworkQualityEstimator/Enabled/*NewProfileManagement/Enabled/NewVideoRendererTrial/Enabled/*OmniboxBundledExperimentV1/Unused_2/*PasswordGeneration/Disabled/PasswordLinkInSettings/Enabled/*PluginPowerSaver/Enabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/*QUIC/EnabledNoId/RefreshTokenDeviceId/Enabled/RememberCertificateErrorDecisions/Default/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingSocialEngineeringStrings/Disabled/*SdchPersistence/Default/SessionRestoreBackgroundLoading/Restore/*SettingsEnforcement/enforce_always_with_extensions_and_dse/SlimmingPaint/EnableSlimmingPaint/SyncBackingDatabase32K/Enabled/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_67/*UMA-Uniformity-Trial-10-Percent/group_08/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_04/*UMA-Uniformity-Trial-5-Percent/group_02/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/VoiceTrigger/Install/WebRTC-UDPSocketNonBlockingIO/Default/" --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-delegated-renderer --num-raster-threads=4 --gpu-rasterization-msaa-sample-count=8 --content-image-texture-target=3553 --video-image-texture-target=3553 --channel="8808.1.1389531141\1320176599" --font-cache-shared-handle=2472 /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AffiliationBasedMatching/Enabled/AudioProcessing48kHzSupport/Default/AutofillEnabled/Default/*BrowserBlacklist/Enabled/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/ChromeDashboard/Default/*ClientSideDetectionModel/Model0/*DomRel-Enable/enable/*EmbeddedSearch/Group1 pct:10a stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnableSessionCrashedBubbleUI/Disabled/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GoogleNow/Enable/*IconNTP/Default/InstanceID/Enabled/*IntelligentSessionRestore/Disabled/*NetworkQualityEstimator/Enabled/*NewProfileManagement/Enabled/NewVideoRendererTrial/Enabled/*OmniboxBundledExperimentV1/Unused_2/*PasswordGeneration/Disabled/PasswordLinkInSettings/Enabled/*PluginPowerSaver/Enabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/*QUIC/EnabledNoId/*RefreshTokenDeviceId/Enabled/RememberCertificateErrorDecisions/Default/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingSocialEngineeringStrings/Disabled/*SdchPersistence/Default/SessionRestoreBackgroundLoading/Restore/*SettingsEnforcement/enforce_always_with_extensions_and_dse/*SlimmingPaint/EnableSlimmingPaint/SyncBackingDatabase32K/Enabled/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_67/*UMA-Uniformity-Trial-10-Percent/group_08/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_04/*UMA-Uniformity-Trial-5-Percent/group_02/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/VoiceTrigger/Install/WebRTC-UDPSocketNonBlockingIO/Default/" --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-delegated-renderer --num-raster-threads=4 --gpu-rasterization-msaa-sample-count=8 --content-image-texture-target=3553 --video-image-texture-target=3553 --channel="8808.2.1613090860\1063751900" --font-cache-shared-handle=3200 /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AffiliationBasedMatching/Enabled/AudioProcessing48kHzSupport/Default/AutofillEnabled/Default/*BrowserBlacklist/Enabled/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/ChromeDashboard/Default/*ClientSideDetectionModel/Model0/*DomRel-Enable/enable/*EmbeddedSearch/Group1 pct:10a stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnableSessionCrashedBubbleUI/Disabled/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GoogleNow/Enable/*IconNTP/Default/InstanceID/Enabled/*IntelligentSessionRestore/Disabled/*NetworkQualityEstimator/Enabled/*NewProfileManagement/Enabled/NewVideoRendererTrial/Enabled/*OmniboxBundledExperimentV1/Unused_2/*PasswordGeneration/Disabled/PasswordLinkInSettings/Enabled/*PluginPowerSaver/Enabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/*QUIC/EnabledNoId/*RefreshTokenDeviceId/Enabled/RememberCertificateErrorDecisions/Default/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingSocialEngineeringStrings/Disabled/*SdchPersistence/Default/SessionRestoreBackgroundLoading/Restore/*SettingsEnforcement/enforce_always_with_extensions_and_dse/*SlimmingPaint/EnableSlimmingPaint/SyncBackingDatabase32K/Enabled/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_67/*UMA-Uniformity-Trial-10-Percent/group_08/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_04/*UMA-Uniformity-Trial-5-Percent/group_02/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/VoiceTrigger/Install/WebRTC-UDPSocketNonBlockingIO/Default/" --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-delegated-renderer --num-raster-threads=4 --gpu-rasterization-msaa-sample-count=8 --content-image-texture-target=3553 --video-image-texture-target=3553 --channel="8808.3.1585257283\1096843099" --font-cache-shared-handle=3496 /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AffiliationBasedMatching/Enabled/AudioProcessing48kHzSupport/Default/AutofillEnabled/Default/*BrowserBlacklist/Enabled/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/ChromeDashboard/Default/*ClientSideDetectionModel/Model0/*DomRel-Enable/enable/*EmbeddedSearch/Group1 pct:10a stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnableSessionCrashedBubbleUI/Disabled/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GoogleNow/Enable/*IconNTP/Default/InstanceID/Enabled/*IntelligentSessionRestore/Disabled/*NetworkQualityEstimator/Enabled/*NewProfileManagement/Enabled/NewVideoRendererTrial/Enabled/*OmniboxBundledExperimentV1/Unused_2/*PasswordGeneration/Disabled/PasswordLinkInSettings/Enabled/*PluginPowerSaver/Enabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/*QUIC/EnabledNoId/*RefreshTokenDeviceId/Enabled/RememberCertificateErrorDecisions/Default/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingSocialEngineeringStrings/Disabled/*SdchPersistence/Default/SessionRestoreBackgroundLoading/Restore/*SettingsEnforcement/enforce_always_with_extensions_and_dse/*SlimmingPaint/EnableSlimmingPaint/SyncBackingDatabase32K/Enabled/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_67/*UMA-Uniformity-Trial-10-Percent/group_08/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_04/*UMA-Uniformity-Trial-5-Percent/group_02/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/VoiceTrigger/Install/WebRTC-UDPSocketNonBlockingIO/Default/" --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-delegated-renderer --num-raster-threads=4 --gpu-rasterization-msaa-sample-count=8 --content-image-texture-target=3553 --video-image-texture-target=3553 --channel="8808.4.1340216134\2119131420" --font-cache-shared-handle=3596 /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AffiliationBasedMatching/Enabled/AudioProcessing48kHzSupport/Default/AutofillEnabled/Default/*BrowserBlacklist/Enabled/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/ChromeDashboard/Default/*ClientSideDetectionModel/Model0/*DomRel-Enable/enable/*EmbeddedSearch/Group1 pct:10a stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnableSessionCrashedBubbleUI/Disabled/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GoogleNow/Enable/*IconNTP/Default/InstanceID/Enabled/*IntelligentSessionRestore/Disabled/*NetworkQualityEstimator/Enabled/*NewProfileManagement/Enabled/NewVideoRendererTrial/Enabled/*OmniboxBundledExperimentV1/Unused_2/*PasswordGeneration/Disabled/PasswordLinkInSettings/Enabled/*PluginPowerSaver/Enabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/*QUIC/EnabledNoId/*RefreshTokenDeviceId/Enabled/RememberCertificateErrorDecisions/Default/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingSocialEngineeringStrings/Disabled/*SdchPersistence/Default/SessionRestoreBackgroundLoading/Restore/*SettingsEnforcement/enforce_always_with_extensions_and_dse/*SlimmingPaint/EnableSlimmingPaint/SyncBackingDatabase32K/Enabled/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_67/*UMA-Uniformity-Trial-10-Percent/group_08/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_04/*UMA-Uniformity-Trial-5-Percent/group_02/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/VoiceTrigger/Install/WebRTC-UDPSocketNonBlockingIO/Default/" --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-delegated-renderer --num-raster-threads=4 --gpu-rasterization-msaa-sample-count=8 --content-image-texture-target=3553 --video-image-texture-target=3553 --channel="8808.5.1272817540\1926142633" --font-cache-shared-handle=3704 /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="*AffiliationBasedMatching/Enabled/AudioProcessing48kHzSupport/Default/AutofillEnabled/Default/*BrowserBlacklist/Enabled/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/ChromeDashboard/Default/*ClientSideDetectionModel/Model0/*DomRel-Enable/enable/*EmbeddedSearch/Group1 pct:10a stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnableSessionCrashedBubbleUI/Disabled/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GoogleNow/Enable/*IconNTP/Default/InstanceID/Enabled/*IntelligentSessionRestore/Disabled/*NetworkQualityEstimator/Enabled/*NewProfileManagement/Enabled/NewVideoRendererTrial/Enabled/*OmniboxBundledExperimentV1/Unused_2/*PasswordGeneration/Disabled/PasswordLinkInSettings/Enabled/*PluginPowerSaver/Enabled/*PrerenderFromOmnibox/OmniboxPrerenderEnabled/*QUIC/EnabledNoId/*RefreshTokenDeviceId/Enabled/RememberCertificateErrorDecisions/Default/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingSocialEngineeringStrings/Disabled/*SdchPersistence/Default/SessionRestoreBackgroundLoading/Restore/*SettingsEnforcement/enforce_always_with_extensions_and_dse/*SlimmingPaint/EnableSlimmingPaint/*SyncBackingDatabase32K/Enabled/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_67/*UMA-Uniformity-Trial-10-Percent/group_08/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_04/*UMA-Uniformity-Trial-5-Percent/group_02/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/VoiceTrigger/Install/WebRTC-UDPSocketNonBlockingIO/Default/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-delegated-renderer --num-raster-threads=4 --gpu-rasterization-msaa-sample-count=8 --content-image-texture-target=3553 --video-image-texture-target=3553 --channel="8808.9.1938984672\199340336" --font-cache-shared-handle=7008 /prefetch:673131151
taskeng.exe {1CACDB94-F292-4ED7-8859-9518FE511125}
"C:\Users\Kratochvil\Desktop\RSITx64.exe"
"C:\Program Files\COMODO\COMODO Internet Security\cavwp.exe" /ModeAvMonitor -Embedding

======Scheduled tasks folder======

C:\WINDOWS\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre1.8.0_31\bin\ssv.dll [2015-02-06 551848]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre1.8.0_31\bin\jp2ssv.dll [2015-02-06 212904]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FB16E5C3-A9E2-47A2-8EFC-319E775E62CC}]
PrivDog Extension - C:\Program Files\AdTrustMedia\PrivDog\2.2.0.14\trustedads.dll [2014-06-17 1093800]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{074C1DC5-9320-4A9A-947D-C042949C6216}]
ContributeBHO Class - E:\Program Files\Adobe\Adobe Contribute CS5.1\Plugins\IEPlugin\contributeieplugin.dll [2011-03-19 164496]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Skype for Business Browser Helper - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Microsoft Office\Office15\OCHelper.dll [2015-08-04 153768]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_31\bin\ssv.dll [2015-02-06 460712]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE7CD045-E861-484f-8273-0445EE161910}]
Adobe PDF Conversion Toolbar Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2013-09-03 343424]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft SkyDrive Pro Browser Helper - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Microsoft Office\Office15\GROOVEEX.DLL [2015-08-12 1733240]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_31\bin\jp2ssv.dll [2015-02-06 172968]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F4971EE7-DAA0-4053-9964-665D8EE6A077}]
SmartSelect Class - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2013-09-03 343424]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{517BDDE4-E3A7-4570-B21E-2B52B6139FC7} - Contribute Toolbar - E:\Program Files\Adobe\Adobe Contribute CS5.1\Plugins\IEPlugin\contributeieplugin.dll [2011-03-19 164496]
{47833539-D0C5-4125-9FA8-0819E2EAAC93} - Adobe PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2013-09-03 343424]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"NvBackend"=C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2015-08-14 1795728]
"Launch LCore"=C:\Program Files\Logitech Gaming Software\LCore.exe [2014-07-28 10801944]
"COMODO Autostart {D5EFF3B3-E126-4AF6-BCE9-852A72129E10}"=C:\Program Files\COMODO\COMODO Internet Security\cistray.exe [2015-08-05 1427648]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2015-08-22 14021336]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Steam"=K:\Program Files\Steam\steam.exe [2015-08-21 2899136]
"SteelSeries Engine"=C:\Program Files\SteelSeries\SteelSeries Engine\SteelSeriesEngine.exe [2014-06-26 87040]
"Skype"=C:\Program Files (x86)\Skype\Phone\Skype.exe [2015-07-28 53661824]
"OneDrive"=C:\Users\Kratochvil\AppData\Local\Microsoft\OneDrive\OneDrive.exe [2015-09-12 405584]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"Uninstall C:\Users\Kratochvil\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64"=C:\WINDOWS\system32\cmd.exe [2015-07-10 232448]
"Uninstall C:\Users\Kratochvil\AppData\Local\Microsoft\OneDrive\17.3.5930.0814\amd64"=C:\WINDOWS\system32\cmd.exe [2015-07-10 232448]
"Uninstall C:\Users\Kratochvil\AppData\Local\Microsoft\OneDrive\17.3.5907.0716_2\amd64"=C:\WINDOWS\system32\cmd.exe [2015-07-10 232448]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Acrobat Assistant 8.0]
E:\Program Files\Adobe\Acrobat 10.0\Acrobat\Acrotray.exe [2013-09-03 840568]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Acrobat Speed Launcher]
E:\Program Files\Adobe\Acrobat 10.0\Acrobat\Acrobat_sl.exe [2013-09-03 41336]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-04-04 958576]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AdobeAAMUpdater-1.0]
C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2011-03-30 499608]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AdobeCS5.5ServiceManager]
C:\Program Files (x86)\Common Files\Adobe\CS5.5ServiceManager\CS5.5ServiceManager.exe [2011-01-12 1523360]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Battle.net]
C:\Program Files (x86)\Battle.net\Battle.net Launcher.exe [2015-09-04 2924080]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DivXMediaServer]
C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ShadowPlay]
C:\Windows\system32\nvspcap64.dll [2014-04-30 1225920]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SwitchBoard]
C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WinampAgent]
C:\Program Files (x86)\Winamp\winampa.exe [2015-09-02 85600]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Xvid]
C:\Program Files (x86)\Xvid\CheckUpdate.exe [2011-01-17 8192]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"JMB36X IDE Setup"=C:\Windows\RaidTool\xInsIDE.exe [2010-09-07 43608]
""= []

C:\Users\Kratochvil\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Odeslat do OneNote.lnk - C:\Program Files\Microsoft Office 15\root\office15\ONENOTEM.EXE

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"=" "

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\!SASCORE]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TileDataModelSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\!SASCORE]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TileDataModelSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DisableTaskMgr"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DSCAutomationHostEnabled"=2
"SoftwareSASGeneration"=1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"aux1"=wdmaud.drv
"VIDC.FPS1"=frapsv64.dll
"vidc.XVID"=xvidvfw.dll
"vidc.xtor"=DxtoryCodec64.dll
"VIDC.XFR1"=xfcodec64.dll
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - "E:\Program Files\Adobe\Adobe Dreamweaver CS5.5\Dreamweaver.exe","%1"

======List of files/folders created in the last 1 month======

2015-09-17 20:46:57 ----D---- C:\rsit
2015-09-17 20:46:57 ----D---- C:\Program Files\trend micro
2015-09-14 16:27:30 ----A---- C:\WINDOWS\system32\vccorlib110.dll
2015-09-14 16:27:30 ----A---- C:\WINDOWS\system32\LogiLDA.DLL
2015-09-14 16:27:30 ----A---- C:\WINDOWS\system32\LdaCx2.dll
2015-09-14 00:27:05 ----D---- C:\usb_driver
2015-09-14 00:27:05 ----A---- C:\WINDOWS\system32\WinUSBCoInstaller2.dll
2015-09-13 23:52:45 ----A---- C:\WINDOWS\system32\drivers\ssudmdm.sys
2015-09-13 23:52:45 ----A---- C:\WINDOWS\system32\drivers\ssudbus.sys
2015-09-13 23:52:30 ----AD---- C:\adb
2015-09-13 23:46:43 ----D---- C:\WINDOWS\LastGood
2015-09-13 23:37:42 ----A---- C:\WINDOWS\system32\drivers\SETA725.tmp
2015-09-13 23:37:42 ----A---- C:\WINDOWS\system32\drivers\SET6BB3.tmp
2015-09-13 22:55:20 ----D---- C:\WINDOWS\LastGood.Tmp
2015-09-13 22:55:18 ----A---- C:\WINDOWS\system32\WdfCoInstaller01007.dll
2015-09-12 13:19:57 ----D---- C:\Program Files (x86)\HomeDev
2015-09-12 12:47:10 ----D---- C:\Users\Kratochvil\AppData\Roaming\LockAP
2015-09-10 13:06:18 ----D---- C:\Program Files (x86)\BlueJ
2015-09-10 12:48:04 ----D---- C:\Program Files\Hyper-V
2015-09-10 12:07:42 ----D---- C:\Program Files (x86)\Xamarin
2015-09-10 12:07:15 ----D---- C:\ProgramData\Monodoc
2015-09-10 12:03:03 ----D---- C:\Program Files (x86)\Git
2015-09-10 12:02:43 ----D---- C:\Program Files (x86)\nodejs
2015-09-10 11:52:23 ----D---- C:\Program Files (x86)\Microsoft Emulator Manager
2015-09-10 11:52:19 ----D---- C:\Program Files (x86)\Microsoft Visual Studio Emulator for Android
2015-09-10 11:49:50 ----D---- C:\Program Files (x86)\Microsoft Visual Studio 14.0
2015-09-10 11:47:33 ----D---- C:\Program Files\Application Verifier
2015-09-10 11:47:33 ----D---- C:\Program Files (x86)\Application Verifier
2015-09-10 11:47:18 ----D---- C:\ProgramData\Windows App Certification Kit
2015-09-10 11:45:16 ----D---- C:\Program Files (x86)\AppInsights
2015-09-10 11:44:57 ----D---- C:\ProgramData\NuGet
2015-09-10 11:44:57 ----D---- C:\Program Files (x86)\NuGet
2015-09-10 11:29:22 ----D---- C:\ProgramData\PreEmptive Solutions
2015-09-10 11:29:17 ----D---- C:\Program Files (x86)\ShellDir
2015-09-10 11:28:37 ----D---- C:\Program Files (x86)\Microsoft ASP.NET
2015-09-10 11:28:02 ----D---- C:\ProgramData\Microsoft DNX
2015-09-10 11:28:02 ----D---- C:\Program Files\Microsoft DNX
2015-09-10 11:23:37 ----D---- C:\Program Files (x86)\Microsoft Web Tools
2015-09-10 11:22:56 ----D---- C:\Program Files\IIS Express
2015-09-10 11:22:56 ----D---- C:\Program Files (x86)\IIS Express
2015-09-10 11:22:27 ----D---- C:\Program Files (x86)\Microsoft Office365 Tools
2015-09-10 11:21:56 ----D---- C:\Program Files (x86)\Microsoft WCF Data Services
2015-09-10 11:21:47 ----D---- C:\Program Files\IIS
2015-09-10 11:21:47 ----D---- C:\Program Files (x86)\IIS
2015-09-10 11:19:18 ----D---- C:\Program Files (x86)\Windows Phone Silverlight Kits
2015-09-10 11:19:03 ----D---- C:\Program Files (x86)\Windows Phone Kits
2015-09-10 11:19:03 ----D---- C:\Program Files (x86)\Microsoft XDE
2015-09-10 11:17:19 ----D---- C:\Program Files (x86)\Microsoft Visual Studio 11.0
2015-09-10 11:14:10 ----D---- C:\Program Files\Microsoft Visual Studio 12.0
2015-09-10 11:14:04 ----D---- C:\Program Files (x86)\HTML Help Workshop
2015-09-10 11:10:52 ----D---- C:\WINDOWS\symbols
2015-09-10 11:08:32 ----A---- C:\WINDOWS\SYSWOW64\VsGraphicsRemoteEngine.exe
2015-09-10 11:08:32 ----A---- C:\WINDOWS\SYSWOW64\VsGraphicsProxyStub.dll
2015-09-10 11:08:32 ----A---- C:\WINDOWS\SYSWOW64\VsGraphicsExperiment.dll
2015-09-10 11:08:32 ----A---- C:\WINDOWS\SYSWOW64\VsGraphicsDesktopEngine.exe
2015-09-10 11:08:32 ----A---- C:\WINDOWS\SYSWOW64\VsGraphicsCapture.dll
2015-09-10 11:08:32 ----A---- C:\WINDOWS\SYSWOW64\VSD3DWARPDebug.dll
2015-09-10 11:08:32 ----A---- C:\WINDOWS\SYSWOW64\VSD3DWARP12Debug.dll
2015-09-10 11:08:32 ----A---- C:\WINDOWS\SYSWOW64\perf_gputiming.dll
2015-09-10 11:08:32 ----A---- C:\WINDOWS\SYSWOW64\DXToolsReporting.dll
2015-09-10 11:08:32 ----A---- C:\WINDOWS\SYSWOW64\DxToolsReportGenerator.dll
2015-09-10 11:08:32 ----A---- C:\WINDOWS\SYSWOW64\DXToolsOfflineAnalysis.dll
2015-09-10 11:08:32 ----A---- C:\WINDOWS\SYSWOW64\DXToolsMonitor.dll
2015-09-10 11:08:32 ----A---- C:\WINDOWS\SYSWOW64\DXGIDebug.dll
2015-09-10 11:08:32 ----A---- C:\WINDOWS\SYSWOW64\DXCpl.exe
2015-09-10 11:08:32 ----A---- C:\WINDOWS\SYSWOW64\DXCaptureReplay.dll
2015-09-10 11:08:32 ----A---- C:\WINDOWS\SYSWOW64\DXCap.exe
2015-09-10 11:08:32 ----A---- C:\WINDOWS\SYSWOW64\d3d12warp.dll
2015-09-10 11:08:32 ----A---- C:\WINDOWS\SYSWOW64\d3d12SDKLayers.dll
2015-09-10 11:08:32 ----A---- C:\WINDOWS\SYSWOW64\d3d11_3SDKLayers.dll
2015-09-10 11:08:32 ----A---- C:\WINDOWS\SYSWOW64\d2d1debug3.dll
2015-09-10 11:08:32 ----A---- C:\WINDOWS\system32\VsGraphicsRemoteEngine.exe
2015-09-10 11:08:32 ----A---- C:\WINDOWS\system32\VsGraphicsExperiment.dll
2015-09-10 11:08:32 ----A---- C:\WINDOWS\system32\VsGraphicsCapture.dll
2015-09-10 11:08:32 ----A---- C:\WINDOWS\system32\VSD3DWARPDebug.dll
2015-09-10 11:08:32 ----A---- C:\WINDOWS\system32\DXToolsReporting.dll
2015-09-10 11:08:32 ----A---- C:\WINDOWS\system32\DXToolsOfflineAnalysis.dll
2015-09-10 11:08:32 ----A---- C:\WINDOWS\system32\DXToolsMonitor.dll
2015-09-10 11:08:32 ----A---- C:\WINDOWS\system32\DXGIDebug.dll
2015-09-10 11:08:32 ----A---- C:\WINDOWS\system32\DXCaptureReplay.dll
2015-09-10 11:08:32 ----A---- C:\WINDOWS\system32\DXCap.exe
2015-09-10 11:08:32 ----A---- C:\WINDOWS\system32\d3d12warp.dll
2015-09-10 11:08:32 ----A---- C:\WINDOWS\system32\d3d12SDKLayers.dll
2015-09-10 11:08:31 ----A---- C:\WINDOWS\system32\VsGraphicsProxyStub.dll
2015-09-10 11:08:31 ----A---- C:\WINDOWS\system32\VsGraphicsDesktopEngine.exe
2015-09-10 11:08:31 ----A---- C:\WINDOWS\system32\VSD3DWARP12Debug.dll
2015-09-10 11:08:31 ----A---- C:\WINDOWS\system32\perf_gputiming.dll
2015-09-10 11:08:31 ----A---- C:\WINDOWS\system32\DxToolsReportGenerator.dll
2015-09-10 11:08:31 ----A---- C:\WINDOWS\system32\DXCpl.exe
2015-09-10 11:08:31 ----A---- C:\WINDOWS\system32\d3d11_3SDKLayers.dll
2015-09-10 11:08:31 ----A---- C:\WINDOWS\system32\d2d1debug3.dll
2015-09-09 23:10:15 ----D---- C:\ProgramData\VsTelemetry
2015-09-09 23:09:10 ----D---- C:\Program Files\Microsoft Mathematics
2015-09-09 10:45:47 ----A---- C:\WINDOWS\SYSWOW64\edgehtml.dll
2015-09-09 10:45:47 ----A---- C:\WINDOWS\system32\edgehtml.dll
2015-09-09 10:45:46 ----A---- C:\WINDOWS\system32\mshtml.dll
2015-09-09 10:45:43 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2015-09-09 10:45:42 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2015-09-09 10:45:42 ----A---- C:\WINDOWS\system32\win32kfull.sys
2015-09-09 10:45:42 ----A---- C:\WINDOWS\system32\ieframe.dll
2015-09-09 10:45:41 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Immersive.dll
2015-09-09 10:45:41 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2015-09-09 10:45:41 ----A---- C:\WINDOWS\SYSWOW64\authui.dll
2015-09-09 10:45:41 ----A---- C:\WINDOWS\system32\Windows.UI.Immersive.dll
2015-09-09 10:45:41 ----A---- C:\WINDOWS\system32\authui.dll
2015-09-09 10:45:40 ----A---- C:\WINDOWS\system32\win32kbase.sys
2015-09-09 10:45:40 ----A---- C:\WINDOWS\system32\jscript.dll
2015-09-09 10:45:39 ----A---- C:\WINDOWS\system32\SettingSync.dll
2015-09-09 10:45:39 ----A---- C:\WINDOWS\system32\iertutil.dll
2015-09-09 10:45:38 ----A---- C:\WINDOWS\SYSWOW64\vbscript.dll
2015-09-09 10:45:38 ----A---- C:\WINDOWS\SYSWOW64\shacct.dll
2015-09-09 10:45:38 ----A---- C:\WINDOWS\SYSWOW64\SettingSync.dll
2015-09-09 10:45:38 ----A---- C:\WINDOWS\SYSWOW64\jscript.dll
2015-09-09 10:45:38 ----A---- C:\WINDOWS\SYSWOW64\fontdrvhost.exe
2015-09-09 10:45:38 ----A---- C:\WINDOWS\SYSWOW64\atmlib.dll
2015-09-09 10:45:38 ----A---- C:\WINDOWS\SYSWOW64\atmfd.dll
2015-09-09 10:45:38 ----A---- C:\WINDOWS\system32\winlogon.exe
2015-09-09 10:45:38 ----A---- C:\WINDOWS\system32\Windows.UI.PicturePassword.dll
2015-09-09 10:45:38 ----A---- C:\WINDOWS\system32\vbscript.dll
2015-09-09 10:45:38 ----A---- C:\WINDOWS\system32\schedsvc.dll
2015-09-09 10:45:38 ----A---- C:\WINDOWS\system32\shacct.dll
2015-09-09 10:45:38 ----A---- C:\WINDOWS\system32\fontdrvhost.exe
2015-09-09 10:45:38 ----A---- C:\WINDOWS\system32\drivers\vmswitch.sys
2015-09-09 10:45:38 ----A---- C:\WINDOWS\system32\atmlib.dll
2015-09-09 10:45:38 ----A---- C:\WINDOWS\system32\atmfd.dll
2015-09-09 10:45:38 ----A---- C:\WINDOWS\system32\acmigration.dll
2015-09-07 18:52:15 ----D---- C:\Users\Kratochvil\AppData\Roaming\SUPERAntiSpyware.com
2015-09-07 18:52:03 ----D---- C:\ProgramData\SUPERAntiSpyware.com
2015-09-06 23:45:12 ----D---- C:\Users\Kratochvil\AppData\Roaming\GHISLER
2015-09-06 23:45:12 ----D---- C:\Program Files\totalcmd
2015-09-06 19:44:16 ----D---- C:\Program Files (x86)\MSECACHE
2015-08-29 14:36:41 ----A---- C:\WINDOWS\system32\shell32.dll
2015-08-29 14:36:39 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2015-08-29 14:36:37 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2015-08-29 14:36:37 ----A---- C:\WINDOWS\system32\CoreUIComponents.dll
2015-08-29 14:36:36 ----A---- C:\WINDOWS\system32\wuaueng.dll
2015-08-29 14:36:35 ----A---- C:\WINDOWS\SYSWOW64\CoreUIComponents.dll
2015-08-29 14:36:35 ----A---- C:\WINDOWS\system32\NetworkMobileSettings.dll
2015-08-29 14:36:35 ----A---- C:\WINDOWS\system32\LicenseManager.dll
2015-08-29 14:36:35 ----A---- C:\WINDOWS\system32\dwmcore.dll
2015-08-29 14:36:34 ----A---- C:\WINDOWS\SYSWOW64\NetSetupShim.dll
2015-08-29 14:36:34 ----A---- C:\WINDOWS\SYSWOW64\LicenseManager.dll
2015-08-29 14:36:34 ----A---- C:\WINDOWS\SYSWOW64\dwmcore.dll
2015-08-29 14:36:34 ----A---- C:\WINDOWS\system32\reseteng.dll
2015-08-29 14:36:34 ----A---- C:\WINDOWS\system32\NetSetupShim.dll
2015-08-29 14:36:34 ----A---- C:\WINDOWS\system32\modernexecserver.dll
2015-08-29 14:36:34 ----A---- C:\WINDOWS\system32\facecredentialprovider.dll
2015-08-29 14:36:33 ----A---- C:\WINDOWS\system32\WlanMediaManager.dll
2015-08-29 14:36:33 ----A---- C:\WINDOWS\system32\NetSetupSvc.dll
2015-08-29 14:36:33 ----A---- C:\WINDOWS\system32\InstallAgent.exe
2015-08-29 14:36:33 ----A---- C:\WINDOWS\system32\drivers\USBXHCI.SYS
2015-08-29 14:36:33 ----A---- C:\WINDOWS\system32\ci.dll
2015-08-29 14:36:33 ----A---- C:\WINDOWS\system32\BthRadioMedia.dll
2015-08-29 14:36:32 ----A---- C:\WINDOWS\system32\wlansvc.dll
2015-08-29 14:36:32 ----A---- C:\WINDOWS\system32\wfdprov.dll
2015-08-29 14:36:32 ----A---- C:\WINDOWS\system32\wcnwiz.dll
2015-08-29 14:36:32 ----A---- C:\WINDOWS\system32\WcnNetsh.dll
2015-08-29 14:36:32 ----A---- C:\WINDOWS\system32\aitstatic.exe
2015-08-29 14:36:31 ----A---- C:\WINDOWS\SYSWOW64\wfdprov.dll
2015-08-29 14:36:31 ----A---- C:\WINDOWS\SYSWOW64\wcnwiz.dll
2015-08-29 14:36:31 ----A---- C:\WINDOWS\SYSWOW64\WcnApi.dll
2015-08-29 14:36:31 ----A---- C:\WINDOWS\system32\WcnApi.dll
2015-08-29 14:36:31 ----A---- C:\WINDOWS\system32\fdWCN.dll
2015-08-29 14:36:31 ----A---- C:\WINDOWS\system32\EnterpriseModernAppMgmtCSP.dll
2015-08-29 14:36:31 ----A---- C:\WINDOWS\system32\dafWCN.dll
2015-08-29 14:36:31 ----A---- C:\WINDOWS\system32\AppXDeploymentServer.dll
2015-08-29 14:36:30 ----A---- C:\WINDOWS\SYSWOW64\PackageStateRoaming.dll
2015-08-29 14:36:30 ----A---- C:\WINDOWS\SYSWOW64\fdWCN.dll
2015-08-29 14:36:30 ----A---- C:\WINDOWS\system32\vaultsvc.dll
2015-08-29 14:36:30 ----A---- C:\WINDOWS\system32\PackageStateRoaming.dll
2015-08-29 14:36:30 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2015-08-22 17:10:53 ----A---- C:\WINDOWS\system32\RtPgEx64.dll
2015-08-22 17:10:53 ----A---- C:\WINDOWS\system32\RtlCPAPI64.dll
2015-08-22 17:10:53 ----A---- C:\WINDOWS\system32\RtkCfg64.dll
2015-08-22 17:10:53 ----A---- C:\WINDOWS\system32\RtkApi64.dll
2015-08-22 17:10:52 ----A---- C:\WINDOWS\system32\RtDataProc64.dll
2015-08-22 17:10:52 ----A---- C:\WINDOWS\system32\RTCOM64.dll
2015-08-22 17:10:51 ----A---- C:\WINDOWS\system32\drivers\RTAIODAT.DAT
2015-08-22 17:10:47 ----A---- C:\WINDOWS\system32\RCoRes64.dat
2015-08-22 17:10:47 ----A---- C:\WINDOWS\system32\RCoInstII64.dll
2015-08-22 17:10:45 ----A---- C:\WINDOWS\system32\R4EEP64A.dll
2015-08-22 17:10:45 ----A---- C:\WINDOWS\system32\R4EEL64A.dll
2015-08-22 17:10:45 ----A---- C:\WINDOWS\system32\R4EEG64A.dll
2015-08-22 17:10:45 ----A---- C:\WINDOWS\system32\R4EED64A.dll
2015-08-22 17:10:45 ----A---- C:\WINDOWS\system32\R4EEA64A.dll
2015-08-22 17:10:14 ----A---- C:\WINDOWS\system32\DTSVoiceClarityDLL64.dll
2015-08-22 17:10:13 ----A---- C:\WINDOWS\system32\DTSSymmetryDLL64.dll
2015-08-22 17:10:12 ----A---- C:\WINDOWS\system32\DTSS2SpeakerDLL64.dll
2015-08-22 17:10:12 ----A---- C:\WINDOWS\system32\DTSS2HeadphoneDLL64.dll
2015-08-22 17:10:12 ----A---- C:\WINDOWS\system32\DTSNeoPCDLL64.dll
2015-08-22 17:10:12 ----A---- C:\WINDOWS\system32\DTSLimiterDLL64.dll
2015-08-22 17:10:12 ----A---- C:\WINDOWS\system32\DTSLFXAPO64.dll
2015-08-22 17:10:12 ----A---- C:\WINDOWS\system32\DTSGFXAPONS64.dll
2015-08-22 17:10:12 ----A---- C:\WINDOWS\system32\DTSGFXAPO64.dll
2015-08-22 17:10:12 ----A---- C:\WINDOWS\system32\DTSGainCompensatorDLL64.dll
2015-08-22 17:10:12 ----A---- C:\WINDOWS\system32\DTSBoostDLL64.dll
2015-08-22 17:10:11 ----A---- C:\WINDOWS\system32\DTSBassEnhancementDLL64.dll
2015-08-22 17:10:10 ----A---- C:\WINDOWS\system32\DDPP64A.dll
2015-08-22 17:10:09 ----A---- C:\WINDOWS\system32\DDPO64A.dll
2015-08-22 17:10:09 ----A---- C:\WINDOWS\system32\DDPD64A.dll
2015-08-22 17:10:08 ----A---- C:\WINDOWS\system32\DDPA64.dll
2015-08-22 17:10:06 ----A---- C:\WINDOWS\system32\audioLibVc.dll
2015-08-22 17:10:05 ----A---- C:\WINDOWS\system32\AcpiServiceVnA64.dll
2015-08-22 17:07:15 ----D---- C:\Program Files\Realtek
2015-08-22 17:05:53 ----A---- C:\WINDOWS\system32\RtkCoLDR64.dll
2015-08-22 17:05:53 ----A---- C:\WINDOWS\system32\drivers\RTKVHD64.sys
2015-08-22 17:05:52 ----A---- C:\WINDOWS\system32\RltkAPO64.dll
2015-08-22 17:04:42 ----A---- C:\WINDOWS\RtlExUpd.dll
2015-08-19 17:27:14 ----A---- C:\WINDOWS\system32\vmms.exe
2015-08-19 17:27:11 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.dll
2015-08-19 17:27:08 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.dll
2015-08-19 17:27:06 ----A---- C:\WINDOWS\system32\Windows.UI.Logon.dll
2015-08-19 17:27:05 ----A---- C:\WINDOWS\system32\tquery.dll
2015-08-19 17:27:04 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Logon.dll
2015-08-19 17:27:04 ----A---- C:\WINDOWS\system32\mssrch.dll
2015-08-19 17:27:04 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll
2015-08-19 17:27:04 ----A---- C:\WINDOWS\explorer.exe
2015-08-19 17:27:03 ----A---- C:\WINDOWS\SYSWOW64\explorer.exe
2015-08-19 17:27:03 ----A---- C:\WINDOWS\system32\wlidsvc.dll
2015-08-19 17:27:03 ----A---- C:\WINDOWS\system32\Chakra.dll
2015-08-19 17:27:03 ----A---- C:\WINDOWS\system32\diagtrack.dll
2015-08-19 17:27:02 ----A---- C:\WINDOWS\SYSWOW64\mssrch.dll
2015-08-19 17:27:02 ----A---- C:\WINDOWS\SYSWOW64\mfcore.dll
2015-08-19 17:27:01 ----A---- C:\WINDOWS\SYSWOW64\tquery.dll
2015-08-19 17:27:01 ----A---- C:\WINDOWS\SYSWOW64\MFMediaEngine.dll
2015-08-19 17:27:01 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2015-08-19 17:27:01 ----A---- C:\WINDOWS\system32\InputService.dll
2015-08-19 17:27:00 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.dll
2015-08-19 17:27:00 ----A---- C:\WINDOWS\system32\wwansvc.dll
2015-08-19 17:27:00 ----A---- C:\WINDOWS\system32\RDXService.dll
2015-08-19 17:27:00 ----A---- C:\WINDOWS\system32\LockAppHost.exe
2015-08-19 17:26:59 ----A---- C:\WINDOWS\SYSWOW64\LockAppHost.exe
2015-08-19 17:26:59 ----A---- C:\WINDOWS\SYSWOW64\Chakra.dll
2015-08-19 17:26:58 ----A---- C:\WINDOWS\SYSWOW64\mfplat.dll
2015-08-19 17:26:58 ----A---- C:\WINDOWS\SYSWOW64\InputService.dll
2015-08-19 17:26:58 ----A---- C:\WINDOWS\system32\UIAutomationCore.dll
2015-08-19 17:26:58 ----A---- C:\WINDOWS\system32\MbaeApiPublic.dll
2015-08-19 17:26:58 ----A---- C:\WINDOWS\system32\directmanipulation.dll
2015-08-19 17:26:58 ----A---- C:\WINDOWS\system32\diagtrack_wininternal.dll
2015-08-19 17:26:58 ----A---- C:\WINDOWS\system32\diagtrack_win.dll
2015-08-19 17:26:57 ----A---- C:\WINDOWS\SYSWOW64\UIAutomationCore.dll
2015-08-19 17:26:57 ----A---- C:\WINDOWS\SYSWOW64\directmanipulation.dll
2015-08-19 17:26:57 ----A---- C:\WINDOWS\system32\wcmsvc.dll
2015-08-19 17:26:57 ----A---- C:\WINDOWS\system32\ReAgent.dll
2015-08-19 17:26:57 ----A---- C:\WINDOWS\system32\mfplat.dll
2015-08-19 17:26:57 ----A---- C:\WINDOWS\system32\MbaeApi.dll
2015-08-19 17:26:57 ----A---- C:\WINDOWS\system32\LocationPermissions.dll
2015-08-19 17:26:56 ----A---- C:\WINDOWS\SYSWOW64\MbaeApiPublic.dll
2015-08-19 17:26:56 ----A---- C:\WINDOWS\SYSWOW64\MbaeApi.dll
2015-08-19 17:26:56 ----A---- C:\WINDOWS\system32\UserMgrProxy.dll
2015-08-19 17:26:56 ----A---- C:\WINDOWS\system32\TextInputFramework.dll
2015-08-19 17:26:56 ----A---- C:\WINDOWS\system32\tetheringservice.dll
2015-08-19 17:26:56 ----A---- C:\WINDOWS\system32\SettingsHandlers_Notifications.dll
2015-08-19 17:26:56 ----A---- C:\WINDOWS\system32\SearchProtocolHost.exe
2015-08-19 17:26:56 ----A---- C:\WINDOWS\system32\MbaeParserTask.exe
2015-08-19 17:26:56 ----A---- C:\WINDOWS\system32\drivers\stornvme.sys
2015-08-19 17:26:56 ----A---- C:\WINDOWS\system32\cloudAP.dll
2015-08-19 17:26:55 ----A---- C:\WINDOWS\SYSWOW64\UserMgrProxy.dll
2015-08-19 17:26:55 ----A---- C:\WINDOWS\system32\sysmain.dll
2015-08-19 17:26:55 ----A---- C:\WINDOWS\system32\rdbui.dll
2015-08-19 17:26:55 ----A---- C:\WINDOWS\system32\LocationGeofences.dll
2015-08-19 17:26:54 ----A---- C:\WINDOWS\SYSWOW64\TextInputFramework.dll
2015-08-19 17:26:54 ----A---- C:\WINDOWS\SYSWOW64\ReAgent.dll
2015-08-19 17:26:54 ----A---- C:\WINDOWS\SYSWOW64\AppXDeploymentClient.dll
2015-08-19 17:26:54 ----A---- C:\WINDOWS\system32\syncutil.dll
2015-08-19 17:26:54 ----A---- C:\WINDOWS\system32\OneDriveSettingSyncProvider.dll
2015-08-19 17:26:54 ----A---- C:\WINDOWS\system32\mfcore.dll
2015-08-19 17:26:54 ----A---- C:\WINDOWS\system32\LocationFramework.dll
2015-08-19 17:26:54 ----A---- C:\WINDOWS\system32\drivers\storport.sys
2015-08-19 17:26:54 ----A---- C:\WINDOWS\system32\AppXDeploymentClient.dll
2015-08-19 17:26:53 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Core.TextInput.dll
2015-08-19 17:26:53 ----A---- C:\WINDOWS\SYSWOW64\tetheringclient.dll
2015-08-19 17:26:53 ----A---- C:\WINDOWS\SYSWOW64\SearchProtocolHost.exe
2015-08-19 17:26:53 ----A---- C:\WINDOWS\SYSWOW64\OneDriveSettingSyncProvider.dll
2015-08-19 17:26:53 ----A---- C:\WINDOWS\system32\wuautoappupdate.dll
2015-08-19 17:26:53 ----A---- C:\WINDOWS\system32\tetheringclient.dll
2015-08-19 17:26:53 ----A---- C:\WINDOWS\system32\mssprxy.dll
2015-08-19 17:26:53 ----A---- C:\WINDOWS\system32\LocationFrameworkInternalPS.dll
2015-08-19 17:26:53 ----A---- C:\WINDOWS\system32\GamePanel.exe
2015-08-19 17:26:53 ----A---- C:\WINDOWS\system32\enterprisecsps.dll
2015-08-19 17:26:52 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2015-08-19 17:26:52 ----A---- C:\WINDOWS\SYSWOW64\ReInfo.dll
2015-08-19 17:26:52 ----A---- C:\WINDOWS\SYSWOW64\GamePanel.exe
2015-08-19 17:26:52 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll

======List of files/folders modified in the last 1 month======

2015-09-17 20:46:57 ----RD---- C:\Program Files
2015-09-17 20:42:19 ----D---- C:\WINDOWS\Temp
2015-09-17 20:40:21 ----D---- C:\WINDOWS\Prefetch
2015-09-17 20:38:40 ----D---- C:\WINDOWS\system32\sru
2015-09-17 20:32:52 ----D---- C:\Users\Kratochvil\AppData\Roaming\Skype
2015-09-17 20:11:45 ----D---- C:\WINDOWS\System32
2015-09-17 19:57:22 ----D---- C:\WINDOWS\system32\Tasks
2015-09-17 15:19:37 ----D---- C:\Users\Kratochvil\AppData\Roaming\vlc
2015-09-17 14:45:56 ----D---- C:\Program Files (x86)\Battle.net
2015-09-17 14:44:16 ----HD---- C:\Program Files\WindowsApps
2015-09-17 13:01:45 ----D---- C:\WINDOWS\system32\config
2015-09-17 11:52:02 ----SHDC---- C:\WINDOWS\Installer
2015-09-17 11:52:02 ----SHD---- C:\Config.Msi
2015-09-17 11:48:41 ----RD---- C:\Program Files (x86)
2015-09-17 11:47:54 ----D---- C:\WINDOWS\Tasks
2015-09-17 11:29:42 ----D---- C:\WINDOWS\AppReadiness
2015-09-17 11:23:33 ----D---- C:\ProgramData\NVIDIA
2015-09-16 14:52:03 ----D---- C:\WINDOWS\Microsoft.NET
2015-09-16 14:11:16 ----D---- C:\ProgramData\Origin
2015-09-16 14:01:29 ----D---- C:\Users\Kratochvil\AppData\Roaming\Awesomium
2015-09-15 21:46:55 ----D---- C:\WINDOWS\INF
2015-09-15 21:44:17 ----D---- C:\WINDOWS\system32\DriverStore
2015-09-15 21:43:08 ----D---- C:\WINDOWS\SysWOW64
2015-09-15 20:31:09 ----HD---- C:\ProgramData
2015-09-15 20:22:36 ----RD---- C:\WINDOWS\assembly
2015-09-15 20:22:34 ----D---- C:\ProgramData\regid.1991-06.com.microsoft
2015-09-15 20:20:43 ----D---- C:\Program Files\Microsoft Office 15
2015-09-15 00:22:40 ----D---- C:\Users\Kratochvil\AppData\Roaming\Winamp
2015-09-14 19:04:17 ----D---- C:\Program Files (x86)\TeamViewer
2015-09-14 18:09:25 ----HD---- C:\GrandeDevice
2015-09-14 17:07:05 ----D---- C:\WINDOWS\SYSWOW64\drivers
2015-09-14 17:06:35 ----SHD---- C:\System Volume Information
2015-09-14 16:29:10 ----D---- C:\WINDOWS\Minidump
2015-09-14 16:29:04 ----D---- C:\Windows
2015-09-14 16:27:31 ----A---- C:\WINDOWS\system32\msvcr110.dll
2015-09-14 16:27:31 ----A---- C:\WINDOWS\system32\msvcp110.dll
2015-09-14 00:01:51 ----D---- C:\WINDOWS\system32\drivers
2015-09-13 23:54:27 ----D---- C:\WINDOWS\system32\CatRoot
2015-09-13 23:53:22 ----D---- C:\Program Files\DIFX
2015-09-13 23:47:23 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2015-09-13 23:37:41 ----D---- C:\Program Files\Samsung
2015-09-13 23:11:03 ----D---- C:\Users\Kratochvil\AppData\Roaming\BitTorrent
2015-09-12 13:40:53 ----D---- C:\WINDOWS\rescache
2015-09-12 13:15:54 ----D---- C:\WINDOWS\Logs
2015-09-12 13:15:54 ----D---- C:\WINDOWS\debug
2015-09-10 13:43:03 ----D---- C:\ProgramData\Epic
2015-09-10 13:31:36 ----D---- C:\ProgramData\PMB Files
2015-09-10 12:54:04 ----D---- C:\WINDOWS\WinSxS
2015-09-10 12:48:05 ----D---- C:\WINDOWS\system32\wbem
2015-09-10 12:48:05 ----D---- C:\WINDOWS\system32\migration
2015-09-10 12:48:05 ----D---- C:\WINDOWS\system32\en-US
2015-09-10 12:48:05 ----D---- C:\WINDOWS\system32\drivers\en-US
2015-09-10 12:48:05 ----D---- C:\WINDOWS\system32\drivers\cs-CZ
2015-09-10 12:48:05 ----D---- C:\WINDOWS\system32\cs-CZ
2015-09-10 12:48:04 ----D---- C:\WINDOWS\schemas
2015-09-10 12:37:04 ----D---- C:\Program Files\Android Studio
2015-09-10 12:27:24 ----D---- C:\ProgramData\Package Cache
2015-09-10 12:26:29 ----SD---- C:\Users\Kratochvil\AppData\Roaming\Microsoft
2015-09-10 12:26:02 ----SD---- C:\ProgramData\Microsoft
2015-09-10 12:07:15 ----D---- C:\Program Files (x86)\MSBuild
2015-09-10 12:01:28 ----D---- C:\Program Files (x86)\Microsoft SDKs
2015-09-10 11:54:07 ----D---- C:\WINDOWS\CbsTemp
2015-09-10 11:54:03 ----A---- C:\WINDOWS\system32\RdvgmProxy.dll
2015-09-10 11:54:01 ----A---- C:\WINDOWS\system32\sbresources.dll
2015-09-10 11:53:59 ----A---- C:\WINDOWS\system32\vmsmb.dll
2015-09-10 11:53:56 ----A---- C:\WINDOWS\system32\vmusrv.dll
2015-09-10 11:53:56 ----A---- C:\WINDOWS\system32\vmbuspiper.dll
2015-09-10 11:53:54 ----A---- C:\WINDOWS\system32\VmEmulatedStorage.dll
2015-09-10 11:53:53 ----A---- C:\WINDOWS\system32\rdvgm.exe
2015-09-10 11:53:52 ----A---- C:\WINDOWS\system32\wshhypervr.dll
2015-09-10 11:53:51 ----A---- C:\WINDOWS\SYSWOW64\RdvgmProxy.dll
2015-09-10 11:53:48 ----A---- C:\WINDOWS\system32\vmsntfy.dll
2015-09-10 11:53:46 ----A---- C:\WINDOWS\system32\VmsNetSetupPlugin.dll
2015-09-10 11:53:46 ----A---- C:\WINDOWS\system32\vmsif.dll
2015-09-10 11:53:46 ----A---- C:\WINDOWS\system32\RdvGpuInfo.dll
2015-09-10 11:53:45 ----A---- C:\WINDOWS\system32\vsconfig.dll
2015-09-10 11:53:45 ----A---- C:\WINDOWS\system32\vmdynmem.dll
2015-09-10 11:53:43 ----A---- C:\WINDOWS\system32\kdhvcom.dll
2015-09-10 11:53:43 ----A---- C:\WINDOWS\system32\hvloader.exe
2015-09-10 11:53:43 ----A---- C:\WINDOWS\system32\hvax64.exe
2015-09-10 11:53:39 ----A---- C:\WINDOWS\system32\vmserial.dll
2015-09-10 11:53:39 ----A---- C:\WINDOWS\system32\hvix64.exe
2015-09-10 11:53:36 ----A---- C:\WINDOWS\system32\vmwp.exe
2015-09-10 11:53:36 ----A---- C:\WINDOWS\system32\VmSynthNic.dll
2015-09-10 11:53:34 ----A---- C:\WINDOWS\system32\wnvapi.dll
2015-09-10 11:53:33 ----A---- C:\WINDOWS\system32\vmuidevices.dll
2015-09-10 11:53:33 ----A---- C:\WINDOWS\system32\VmEmulatedNic.dll
2015-09-10 11:53:32 ----A---- C:\WINDOWS\system32\vmbusvdev.dll
2015-09-10 11:53:30 ----A---- C:\WINDOWS\system32\vmicvdev.dll
2015-09-10 11:53:29 ----A---- C:\WINDOWS\system32\vmwpmgr.dll
2015-09-10 11:53:29 ----A---- C:\WINDOWS\system32\vmemulateddevices.dll
2015-09-10 11:53:28 ----A---- C:\WINDOWS\system32\vmdebug.dll
2015-09-10 11:53:26 ----A---- C:\WINDOWS\system32\vmconnect.exe
2015-09-10 11:53:26 ----A---- C:\WINDOWS\system32\virtmgmt.msc
2015-09-10 11:53:25 ----A---- C:\WINDOWS\system32\vmsynthstor.dll
2015-09-10 11:53:24 ----A---- C:\WINDOWS\system32\HyperVSysprepProvider.dll
2015-09-10 11:53:23 ----A---- C:\WINDOWS\system32\vmsynthfcvdev.dll
2015-09-10 11:53:22 ----A---- C:\WINDOWS\system32\TpmEngUM.dll
2015-09-10 11:53:18 ----A---- C:\WINDOWS\system32\RemoteFileBrowse.dll
2015-09-10 11:53:17 ----A---- C:\WINDOWS\system32\rdp4vs.dll
2015-09-10 11:53:13 ----A---- C:\WINDOWS\system32\vmicrdv.dll
2015-09-10 11:53:11 ----A---- C:\WINDOWS\system32\vmsp.exe
2015-09-10 11:53:10 ----A---- C:\WINDOWS\system32\hvhostsvc.dll
2015-09-10 11:53:09 ----A---- C:\WINDOWS\system32\ActivationVdev.dll
2015-09-10 11:53:08 ----A---- C:\WINDOWS\system32\vmwpctrl.dll
2015-09-10 11:53:08 ----A---- C:\WINDOWS\system32\vmtpm.dll
2015-09-10 11:53:08 ----A---- C:\WINDOWS\system32\vmprox.dll
2015-09-10 11:53:08 ----A---- C:\WINDOWS\system32\vid.dll
2015-09-10 11:53:05 ----A---- C:\WINDOWS\system32\vmsynth3dvideo.dll
2015-09-10 11:53:05 ----A---- C:\WINDOWS\system32\synth3dvideoproxy.dll
2015-09-10 11:53:03 ----A---- C:\WINDOWS\system32\vmchipset.dll
2015-09-10 11:47:33 ----A---- C:\WINDOWS\SYSWOW64\appverif.exe
2015-09-10 11:47:33 ----A---- C:\WINDOWS\system32\microsoft.windows.softwarelogo.showdesktop.exe
2015-09-10 11:47:33 ----A---- C:\WINDOWS\system32\appverif.exe
2015-09-10 11:32:15 ----D---- C:\Program Files\Microsoft SQL Server
2015-09-10 11:31:49 ----D---- C:\Program Files (x86)\Windows Kits
2015-09-10 11:29:29 ----D---- C:\Program Files (x86)\Common Files
2015-09-10 11:19:39 ----RSD---- C:\WINDOWS\Fonts
2015-09-10 11:18:37 ----D---- C:\Program Files (x86)\Microsoft Visual Studio 12.0
2015-09-10 11:12:20 ----D---- C:\WINDOWS\SYSWOW64\1033
2015-09-10 11:10:59 ----A---- C:\WINDOWS\SYSWOW64\vsjitdebugger.exe
2015-09-10 11:10:52 ----D---- C:\Program Files (x86)\Microsoft Help Viewer
2015-09-10 11:07:55 ----D---- C:\WINDOWS\system32\1033
2015-09-10 11:07:08 ----D---- C:\Program Files (x86)\Microsoft SQL Server
2015-09-10 11:05:43 ----A---- C:\WINDOWS\SYSWOW64\vcamp140.dll
2015-09-10 11:04:23 ----D---- C:\Program Files\Common Files\microsoft shared
2015-09-10 11:03:17 ----D---- C:\WINDOWS\system32\drivers\UMDF
2015-09-10 11:03:11 ----SD---- C:\WINDOWS\system32\Microsoft
2015-09-10 11:03:06 ----A---- C:\WINDOWS\system32\vsjitdebugger.exe
2015-09-10 10:58:23 ----D---- C:\WINDOWS\SYSWOW64\inetsrv
2015-09-10 10:58:23 ----D---- C:\WINDOWS\system32\inetsrv
2015-09-10 10:58:23 ----D---- C:\inetpub
2015-09-09 23:16:51 ----D---- C:\WINDOWS\system32\appraiser
2015-09-09 23:16:50 ----D---- C:\WINDOWS\AppPatch
2015-09-09 23:16:50 ----D---- C:\Program Files\Windows Journal
2015-09-09 21:20:02 ----D---- C:\Users\Kratochvil\AppData\Roaming\CodeBlocks
2015-09-09 19:38:06 ----D---- C:\ProgramData\Microsoft Help
2015-09-09 19:37:49 ----A---- C:\WINDOWS\win.ini
2015-09-09 19:35:19 ----D---- C:\WINDOWS\system32\MRT
2015-09-09 19:27:58 ----A---- C:\WINDOWS\system32\MRT.exe
2015-09-09 10:41:20 ----D---- C:\WINDOWS\system32\catroot2
2015-09-07 18:52:14 ----D---- C:\Program Files\SUPERAntiSpyware
2015-09-06 19:52:23 ----D---- C:\Program Files (x86)\Google
2015-09-05 12:26:53 ----D---- C:\ProgramData\ManiaPlanet
2015-09-05 12:25:40 ----D---- C:\Program Files\SNIP (NOW PLAYING)
2015-09-04 20:22:25 ----D---- C:\Users\Kratochvil\AppData\Roaming\Mozilla
2015-09-04 20:01:57 ----D---- C:\WINDOWS\SoftwareDistribution
2015-09-04 19:42:16 ----DC---- C:\WINDOWS\Panther
2015-09-03 13:52:03 ----A---- C:\WINDOWS\SYSWOW64\guard32.dll
2015-09-03 13:52:00 ----A---- C:\WINDOWS\system32\guard64.dll
2015-09-02 14:09:56 ----D---- C:\WINDOWS\system32\oobe
2015-09-02 12:42:15 ----D---- C:\Program Files (x86)\Winamp
2015-08-25 14:51:03 ----D---- C:\WINDOWS\SYSWOW64\en-US
2015-08-25 14:17:14 ----D---- C:\Program Files (x86)\Rockstar Games
2015-08-25 14:17:08 ----D---- C:\Program Files\Rockstar Games
2015-08-22 17:11:54 ----HD---- C:\Program Files (x86)\Temp
2015-08-22 17:11:22 ----D---- C:\WINDOWS\SYSWOW64\RTCOM
2015-08-21 14:07:36 ----A---- C:\WINDOWS\system32\xrhk1ausb.dll
2015-08-21 14:07:35 ----A---- C:\WINDOWS\system32\xrhk1alm.dll
2015-08-21 14:06:33 ----A---- C:\WINDOWS\system32\xrsk1aimghelper.dll
2015-08-21 14:06:33 ----A---- C:\WINDOWS\system32\xrsk1aimgfilter.dll
2015-08-21 14:06:33 ----A---- C:\WINDOWS\system32\xrqsreg.dll
2015-08-21 14:06:32 ----A---- C:\WINDOWS\system32\xrsk1awia.dll
2015-08-20 21:39:38 ----SHD---- C:\$Recycle.Bin
2015-08-19 18:50:47 ----D---- C:\WINDOWS\system32\WDI
2015-08-19 18:22:38 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2015-08-19 18:22:38 ----D---- C:\Program Files (x86)\LG Electronics
2015-08-19 18:20:33 ----D---- C:\WINDOWS\SYSWOW64\oobe
2015-08-19 18:20:33 ----D---- C:\WINDOWS\SYSWOW64\Dism
2015-08-19 18:20:33 ----D---- C:\WINDOWS\SYSWOW64\cs-CZ
2015-08-19 18:20:20 ----D---- C:\WINDOWS\system32\WinBioPlugIns
2015-08-19 18:20:20 ----D---- C:\WINDOWS\system32\SystemResetPlatform
2015-08-19 18:20:20 ----D---- C:\WINDOWS\system32\Dism
2015-08-19 18:20:20 ----D---- C:\WINDOWS\system32\Boot
2015-08-19 18:20:12 ----RD---- C:\WINDOWS\PurchaseDialog
2015-08-19 18:20:12 ----D---- C:\WINDOWS\Provisioning
2015-08-19 18:20:11 ----RD---- C:\WINDOWS\ImmersiveControlPanel
2015-08-19 18:20:11 ----RD---- C:\WINDOWS\DevicesFlow
2015-08-19 18:20:10 ----D---- C:\Program Files (x86)\Internet Explorer
2015-08-19 18:20:09 ----D---- C:\Program Files\Internet Explorer
2015-08-18 12:56:58 ----D---- C:\Users\Kratochvil\AppData\Roaming\dvdcss

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 AVPCIFilter;@oem5.inf,%AVPCIFilter.SvcDesc%;Avatron PCI Bus Device Filter; C:\WINDOWS\System32\drivers\AVPCIFilter.sys [2013-12-04 36344]
R0 JRAID;JRAID; C:\WINDOWS\System32\drivers\jraid.sys [2010-11-25 120408]
R0 PxHlpa64;PxHlpa64; C:\WINDOWS\System32\Drivers\PxHlpa64.sys [2011-03-04 55856]
R0 speedfan;speedfan; C:\Windows\SysWOW64\speedfan.sys [2011-03-18 29592]
R1 cmderd;COMODO Internet Security Eradication Driver; C:\WINDOWS\System32\DRIVERS\cmderd.sys [2015-08-05 21720]
R1 cmdGuard;COMODO Internet Security Sandbox Driver; C:\WINDOWS\system32\DRIVERS\cmdguard.sys [2015-08-05 827632]
R1 cmdhlp;COMODO Internet Security Helper Driver; C:\WINDOWS\system32\DRIVERS\cmdhlp.sys [2015-08-05 35056]
R1 FileCrypt;@%systemroot%\system32\drivers\filecrypt.sys,-100; C:\WINDOWS\system32\drivers\filecrypt.sys [2015-07-10 83968]
R1 GpuEnergyDrv;@%SystemRoot%\system32\drivers\gpuenergydrv.sys,-100; C:\WINDOWS\System32\drivers\gpuenergydrv.sys [2015-07-10 8192]
R1 hvservice;@%SystemRoot%\system32\drivers\hvservice.sys,-16; C:\WINDOWS\system32\drivers\hvservice.sys [2015-09-10 70496]
R1 inspect;COMODO Internet Security Firewall Driver; C:\WINDOWS\system32\DRIVERS\inspect.sys [2015-08-05 127232]
R1 SASDIFSV;SASDIFSV; \??\C:\Program Files\SUPERAntiSpyware\SASDIFSV64.SYS [2011-07-22 14928]
R1 SASKUTIL;SASKUTIL; \??\C:\Program Files\SUPERAntiSpyware\SASKUTIL64.SYS [2011-07-12 12368]
R2 MMCSS;@%systemroot%\system32\drivers\mmcss.sys,-100; C:\WINDOWS\system32\drivers\mmcss.sys [2015-07-10 48128]
R2 storqosflt;@%SystemRoot%\System32\drivers\storqosflt.sys,-101; C:\WINDOWS\system32\drivers\storqosflt.sys [2015-07-10 61952]
R3 busenum;@oem38.inf,%SvcDesc%;SteelBusSvc; C:\WINDOWS\System32\drivers\SteelBus64.sys [2014-05-29 146944]
R3 hidkmdf;@oem76.inf,%hidkmdf.SVCDESC%;KMDF Driver; C:\WINDOWS\System32\drivers\hidkmdf.sys [2013-04-30 14136]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RTKVHD64.sys [2015-08-22 4496600]
R3 LADF_CaptureOnly;@oem37.inf,%GSeries_Capture_DisplayName%;LADF Capture Filter Driver; C:\WINDOWS\system32\DRIVERS\ladfGSCamd64.sys [2013-04-15 410008]
R3 LADF_RenderOnly;@oem37.inf,%GSeries_Render_DisplayName%;LADF Render Filter Driver; C:\WINDOWS\system32\DRIVERS\ladfGSRamd64.sys [2013-04-15 102808]
R3 lgbusenum;@oem28.inf,%LGBusEnum.SVCDESC%;Logitech GamePanel Virtual Bus Enumerator Driver; C:\WINDOWS\system32\drivers\LGBusEnum.sys [2009-11-24 22408]
R3 LGVirHid;@oem21.inf,%LGVirHid.SVCDESC%;Logitech Gamepanel Virtual HID Device Driver; C:\WINDOWS\system32\drivers\LGVirHid.sys [2015-08-14 16008]
R3 MEIx64;@oem117.inf,%HECI_SvcDesc%;Intel(R) Management Engine Interface ; C:\WINDOWS\System32\drivers\HECIx64.sys [2010-10-19 56344]
R3 MQAC;@mqutil.dll,-6101; C:\WINDOWS\system32\drivers\mqac.sys [2015-08-14 175104]
R3 NVHDA;@oem113.inf,%NVHDA.SvcDesc%;Service for NVIDIA High Definition Audio Driver; C:\WINDOWS\system32\drivers\nvhda64v.sys [2015-04-16 195912]
R3 nvlddmkm;nvlddmkm; C:\WINDOWS\system32\DRIVERS\nvlddmkm.sys [2015-08-14 11139216]
R3 nvvad_WaveExtensible;@oem77.inf,%nvvad_WaveExtensible.SvcDesc%;NVIDIA Virtual Audio Device (Wave Extensible) (WDM); C:\WINDOWS\system32\drivers\nvvad64v.sys [2014-03-31 40392]
R3 rt640x64;@rt640x64.inf,%rt640.Service.DispName%;Realtek RT640 NT Driver; C:\WINDOWS\System32\drivers\rt640x64.sys [2015-07-10 587264]
R3 SAlphamHid;@oem87.inf,%SvcDesc%;SteelHIDSvc; C:\WINDOWS\System32\drivers\SAlpham64.sys [2014-05-27 39168]
R3 SensorsSimulatorDriver;@oem41.inf,%WudfSensorsSimulatorDriverDisplayName%;UMDF Reflector service for SensorsSimulatorDriver; C:\WINDOWS\system32\DRIVERS\WUDFRd.sys [2015-07-10 214016]
R3 Synth3dVsp;Synth3dVsp; C:\WINDOWS\System32\drivers\synth3dvsp.sys [2015-09-10 101888]
S0 LSI_SAS2i;LSI_SAS2i; C:\WINDOWS\System32\drivers\lsi_sas2i.sys [2015-07-10 104800]
S0 LSI_SAS3i;LSI_SAS3i; C:\WINDOWS\System32\drivers\lsi_sas3i.sys [2015-07-10 99168]
S0 percsas2i;percsas2i; C:\WINDOWS\System32\drivers\percsas2i.sys [2015-07-10 58208]
S0 percsas3i;percsas3i; C:\WINDOWS\System32\drivers\percsas3i.sys [2015-07-10 58720]
S0 storufs;@storufs.inf,%UfsServiceDesc%;Microsoft Universal Flash Storage (UFS) Driver; C:\WINDOWS\System32\drivers\storufs.sys [2015-07-10 40288]
S3 AirDisplay;Air Display Support; C:\WINDOWS\system32\DRIVERS\AVVideoCard.sys [2013-12-04 15352]
S3 AirDisplayMirror;Air Display Mirror Support; C:\WINDOWS\system32\DRIVERS\AVVideoCardMirror.sys [2013-12-04 15352]
S3 asusgsb;ASUS Virtual Video Capture Device Driver; C:\WINDOWS\system32\drivers\asusgsb.sys [2009-02-17 17792]
S3 buttonconverter;@buttonconverter.inf,%btnconv.SvcDesc%;Service for Portable Device Control devices; C:\WINDOWS\System32\drivers\buttonconverter.sys [2015-07-10 32256]
S3 CapImg;@capimg.inf,%CapImgHid_Service%;HID driver for CapImg touch screen; C:\WINDOWS\System32\drivers\capimg.sys [2015-07-10 116736]
S3 dg_ssudbus;@oem33.inf,%ssud.Service.DeviceDesc%;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\WINDOWS\system32\DRIVERS\ssudbus.sys [2015-09-13 110488]
S3 epmntdrv;epmntdrv; \??\C:\WINDOWS\syswow64\epmntdrv.sys [2011-07-29 14216]
S3 ESLvnic1;ESLvnic Virtual Network 64 Bit; C:\WINDOWS\system32\DRIVERS\ESLvnic.sys [2012-01-24 25528]
S3 etdrv;etdrv; \??\C:\Windows\etdrv.sys [2011-11-27 25640]
S3 EuGdiDrv;EuGdiDrv; \??\C:\WINDOWS\syswow64\EuGdiDrv.sys [2011-07-29 8456]
S3 fcvsc;fcvsc; C:\WINDOWS\System32\drivers\fcvsc.sys [2015-07-10 31232]
S3 gdrv;gdrv; \??\C:\Windows\gdrv.sys [2011-11-27 25640]
S3 genericusbfn;@genericusbfn.inf,%genericusbfn.ServiceName%;Generic USB Function Class; C:\WINDOWS\System32\drivers\genericusbfn.sys [2015-07-10 20992]
S3 GVTDrv64;GVTDrv64; \??\C:\Windows\GVTDrv64.sys [2011-11-27 30528]
S3 hamachi;Hamachi Network Interface; C:\WINDOWS\system32\DRIVERS\hamachi.sys [2012-01-21 33344]
S3 hidinterrupt;@hidinterrupt.inf,%HID.SvcDesc%;Common Driver for HID Buttons implemented with interrupts; C:\WINDOWS\System32\drivers\hidinterrupt.sys [2015-07-10 50016]
S3 HTCAND64;HTC Device Driver; C:\WINDOWS\System32\Drivers\ANDROIDUSB.sys [2009-11-02 33736]
S3 ibbus;@mlx4_bus.inf,%Ibbus.ServiceDesc%;Mellanox InfiniBand Bus/AL (Filter Driver); C:\WINDOWS\System32\drivers\ibbus.sys [2015-07-10 424800]
S3 iDispService;iDispService; C:\WINDOWS\system32\DRIVERS\idisplayminiport.sys [2012-08-31 14248]
S3 IoQos;@%SystemRoot%\system32\drivers\ioqos.sys,-100; C:\WINDOWS\system32\drivers\ioqos.sys [2015-07-10 26624]
S3 lunparser;@%systemroot%\system32\drivers\lunparser.sys,-10010; C:\WINDOWS\system32\drivers\lunparser.sys [2015-09-10 20992]
S3 mlx4_bus;@mlx4_bus.inf,%MLX4BUS.ServiceDesc%;Mellanox ConnectX Bus Enumerator; C:\WINDOWS\System32\drivers\mlx4_bus.sys [2015-07-10 705376]
S3 Mo3Fltr;MMO Mouse; C:\WINDOWS\system32\drivers\Mo3Fltr.sys [2010-08-11 12800]
S3 ndfltr;@mlx4_bus.inf,%ndfltr.ServiceDesc%;NetworkDirect Service; C:\WINDOWS\System32\drivers\ndfltr.sys [2015-07-10 76128]
S3 NVFLASH;NVFLASH; \??\C:\Windows\system32\drivers\nvflash.sys [2013-04-19 15648]
S3 passthruparser;@%systemroot%\system32\drivers\passthruparser.sys,-10010; C:\WINDOWS\system32\drivers\passthruparser.sys [2015-09-10 22528]
S3 pvhdparser;@%systemroot%\system32\drivers\pvhdparser.sys,-10010; C:\WINDOWS\system32\drivers\pvhdparser.sys [2015-09-10 49152]
S3 ReFSv1;ReFSv1; C:\WINDOWS\system32\drivers\ReFSv1.sys [2015-08-16 934752]
S3 ssudmdm;@oem69.inf,%ssud.Service.Name%;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.); C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [2015-09-13 206104]
S3 tap0901;TAP-Win32 Adapter V9; C:\WINDOWS\system32\DRIVERS\tap0901.sys [2009-11-20 31232]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 !SASCORE;SAS Core Service; C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE [2015-09-07 172344]
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2013-09-03 65640]
R2 AppHostSvc;@%windir%\system32\inetsrv\iisres.dll,-30011; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
R2 AVerRECentral;AVerRECentral; C:\Program Files (x86)\Common Files\AVerMedia\Service\AVerRECentral.exe [2014-06-25 373248]
R2 AVerUpdateServer;AVerUpdateServer; C:\Program Files (x86)\AVerMedia\AVerUpdate\AVerUpdateServer.exe [2011-10-31 167936]
R2 Bonjour Service;Xamarin Bonjour Service; C:\Program Files (x86)\Xamarin\Bonjour\mDNSResponder.exe [2015-09-10 384512]
R2 ClickToRunSvc;Služba Microsoft Office ClickToRun; C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe [2015-09-15 2768472]
R2 CmdAgent;COMODO Internet Security Helper Service; C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe [2015-09-15 5542472]
R2 CoreMessagingRegistrar;@%SystemRoot%\system32\coremessaging.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
R2 DiagTrack;@%SystemRoot%\system32\diagtrack.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]
R2 HvHost;@%SystemRoot%\system32\hvhostsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
R2 IpOverUsbSvc;Windows Phone IP over USB Transport (IpOverUsbSvc); C:\Program Files (x86)\Common Files\Microsoft Shared\Phone Tools\CoreCon\11.0\bin\IpOverUsbSvc.exe [2015-09-10 21744]
R2 MSMQ;@mqutil.dll,-6102; C:\WINDOWS\system32\mqsvc.exe [2015-08-14 26112]
R2 NvNetworkService;NVIDIA Network Service; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [2014-04-30 1617696]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2015-07-13 937616]
R2 OneSyncSvc_Session2;Hostitel synchronizace_Session2; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
R2 PnkBstrA;PnkBstrA; C:\Windows\system32\PnkBstrA.exe [2014-07-04 76152]
R2 SQLWriter;SQL Server VSS Writer; C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe [2015-09-10 134336]
R2 ss_conn_service;SAMSUNG Mobile Connectivity Service; C:\Program Files\SAMSUNG\USB Drivers\25_escape\conn\ss_conn_service.exe [2015-09-13 743688]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2015-07-13 410768]
R2 TeamViewer;TeamViewer 10; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [2015-08-07 5611280]
R3 ClipSVC;@%SystemRoot%\system32\ClipSVC.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]
R3 DsSvc;@%SystemRoot%\system32\dssvc.dll,-10003; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]
R3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2015-06-17 43696]
R3 LicenseManager;@%SystemRoot%\system32\licensemanagersvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]
R3 PimIndexMaintenanceSvc_Session2;Data kontaktů_Session2; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
R3 StateRepository;@%SystemRoot%\system32\windows.staterepository.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
R3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2015-08-21 838336]
S2 dmwappushservice;@%SystemRoot%\system32\dmwappushsvc.dll,-200; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S2 DoSvc;@%systemroot%\system32\dosvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-27 144200]
S2 MapsBroker;@%SystemRoot%\System32\moshost.dll,-100; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]
S2 OneSyncSvc;@%SystemRoot%\system32\APHostRes.dll,-10002; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2015-06-25 327296]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-08-12 269000]
S3 AJRouter;@%SystemRoot%\system32\AJRouter.dll,-2; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S3 aspnet_state;@%SystemRoot%\Microsoft.NET\Framework64\v4.0.30319\aspnet_rc.dll,-1; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2015-07-10 50352]
S3 BEService;BattlEye Service; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [2014-01-18 49152]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]
S3 CDPSvc;@%SystemRoot%\system32\cdpsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S3 cmdvirth;COMODO Virtual Service Manager; C:\Program Files\COMODO\COMODO Internet Security\cmdvirth.exe [2015-08-05 2265792]
S3 DcpSvc;@%SystemRoot%\system32\dcpsvc.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]
S3 DevQueryBroker;@%SystemRoot%\system32\DevQueryBroker.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S3 diagnosticshub.standardcollector.service;@%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000; C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe [2015-07-10 27136]
S3 DmEnrollmentSvc;@%systemroot%\system32\Windows.Internal.Management.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S3 embeddedmode;@%SystemRoot%\system32\embeddedmodesvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]
S3 EntAppSvc;@EnterpriseAppMgmtSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-27 144200]
S3 icssvc;@%SystemRoot%\System32\tetheringservice.dll,-4097; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files (x86)\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe [2004-10-22 73728]
S3 NetSetupSvc;@%SystemRoot%\system32\NetSetupSvc.dll,-3; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]
S3 NgcCtnrSvc;@%SystemRoot%\System32\NgcCtnrSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S3 NgcSvc;@%SystemRoot%\System32\ngcsvc.dll,-100; C:\WINDOWS\system32\lsass.exe [2015-07-10 56344]
S3 Origin Client Service;Origin Client Service; E:\Program Files\Origin\OriginClientService.exe [2015-09-16 2057736]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 ose64;Office 64 Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2012-12-08 178760]
S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2012-10-01 5132888]
S3 PimIndexMaintenanceSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-15001; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S3 RetailDemo;@%SystemRoot%\System32\RDXService.dll,-256; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]
S3 SensorDataService;@%SystemRoot%\system32\SensorDataService.exe,-101; C:\WINDOWS\System32\SensorDataService.exe [2015-08-16 1031680]
S3 SensorService;@%SystemRoot%\System32\sensorservice.dll,-1000; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S3 SmsRouter;@%SystemRoot%\System32\SmsRouterSvc.dll,-10001; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S3 SwitchBoard;SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
S3 Te.Service;Te.Service; C:\Program Files (x86)\Windows Kits\10\Testing\Runtimes\TAEF\Wex.Services.exe [2015-09-10 134656]
S4 NvStreamSvc;NVIDIA Streamer Service; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [2014-04-30 21007192]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118238
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Zasekaný systém po spuštění počítače

#2 Příspěvek od Rudy »

Zdravím!
Spusťte tuto utilitu:
Stáhněte AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
Uložte na plochu
Ukončete všechny programy
Klikněte nejprve na >Scan< a pak na >Clean<.
Proběhne skenováni a pak se objeví log, který sem vložte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

ivankrato
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 77
Registrován: 13 bře 2009 14:08

Re: Zasekaný systém po spuštění počítače

#3 Příspěvek od ivankrato »

AdwCleaner něco smazal, zdá se mi, že došlo ke zlepšení, ještě uvidím zítra. Log je zde:

# AdwCleaner v5.008 - Logfile created 17/09/2015 at 23:38:44
# Updated 18/09/2015 by Xplode
# Database : 2015-09-17.3 [Server]
# Operating system : Windows 10 Pro (x64)
# Username : Trams - TRAMS-PC
# Running from : C:\Users\Kratochvil\Desktop\adwcleaner_5.008.exe
# Option : Cleaning
# Support : http://toolslib.net/forum

***** [ Services ] *****


***** [ Folders ] *****

[-] Folder Deleted : C:\Program Files\AdTrustMedia
[-] Folder Deleted : C:\Users\Kratochvil\AppData\Local\AdTrustMedia
[-] Folder Deleted : C:\Users\Kratochvil\AppData\Roaming\RHEng

***** [ Files ] *****


***** [ Shortcuts ] *****


***** [ Scheduled tasks ] *****


***** [ Registry ] *****

[-] Key Deleted : HKLM\SOFTWARE\Classes\pc-mechanic
[-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{FB16E5C3-A9E2-47A2-8EFC-319E775E62CC}
[-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{FB16E5C3-A9E2-47A2-8EFC-319E775E62CC}
[-] Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{FB16E5C3-A9E2-47A2-8EFC-319E775E62CC}
[-] Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FB16E5C3-A9E2-47A2-8EFC-319E775E62CC}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{FAD0F79E-5EA4-542B-76A3-46093E52C1F5}

***** [ Web browsers ] *****


*************************

:: Winsock settings cleared

########## EOF - C:\AdwCleaner\AdwCleaner[C3].txt - [1423 bytes] ##########

ivankrato
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 77
Registrován: 13 bře 2009 14:08

Re: Zasekaný systém po spuštění počítače

#4 Příspěvek od ivankrato »

Jop, už to vypadá lépe :) a to jsem AdwCleaner pouštěl celkem nedavno...

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118238
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Zasekaný systém po spuštění počítače

#5 Příspěvek od Rudy »

To jsem rád. Dejte ještě nový log RSIT.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

ivankrato
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 77
Registrován: 13 bře 2009 14:08

Re: Zasekaný systém po spuštění počítače

#6 Příspěvek od ivankrato »

Logfile of random's system information tool 1.10 (written by random/random)
Run by Trams at 2015-09-18 18:14:35
Microsoft Windows 10 Pro
System drive C: has 47 GB (31%) free of 150 GB
Total RAM: 8175 MB (65% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 18:14:40, on 18.09.2015
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.10240.16412)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\TeamViewer\TeamViewer.exe
C:\WINDOWS\SysWOW64\rundll32.exe
C:\Program Files (x86)\Common Files\Microsoft Shared\Ink\TabTip32.exe
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
K:\Program Files\Steam\Steam.exe
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Users\Kratochvil\AppData\Local\Microsoft\OneDrive\OneDrive.exe
K:\Program Files\Steam\bin\steamwebhelper.exe
C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\AAM Updates Notifier.exe
C:\Program Files\trend micro\Trams.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local;127.0.0.1:9421;<local>
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=
O2 - BHO: ContributeBHO Class - {074C1DC5-9320-4A9A-947D-C042949C6216} - E:\Program Files\Adobe\Adobe Contribute CS5.1\Plugins\IEPlugin\contributeieplugin.dll
O2 - BHO: Skype for Business Click to Call BHO - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Microsoft Office\Office15\OCHelper.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_31\bin\ssv.dll
O2 - BHO: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll
O2 - BHO: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Microsoft Office\Office15\GROOVEEX.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_31\bin\jp2ssv.dll
O2 - BHO: SmartSelect - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll
O3 - Toolbar: Contribute Toolbar - {517BDDE4-E3A7-4570-B21E-2B52B6139FC7} - E:\Program Files\Adobe\Adobe Contribute CS5.1\Plugins\IEPlugin\contributeieplugin.dll
O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll
O4 - HKLM\..\Run: [JMB36X IDE Setup] C:\Windows\RaidTool\xInsIDE.exe
O4 - HKCU\..\Run: [Steam] "K:\Program Files\Steam\steam.exe" -silent
O4 - HKCU\..\Run: [SteelSeries Engine] C:\Program Files\SteelSeries\SteelSeries Engine\SteelSeriesEngine.exe
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [OneDrive] "C:\Users\Kratochvil\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
O4 - HKCU\..\RunOnce: [Uninstall C:\Users\Kratochvil\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64] C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Kratochvil\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64"
O4 - HKCU\..\RunOnce: [Uninstall C:\Users\Kratochvil\AppData\Local\Microsoft\OneDrive\17.3.5930.0814\amd64] C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Kratochvil\AppData\Local\Microsoft\OneDrive\17.3.5930.0814\amd64"
O4 - HKCU\..\RunOnce: [Uninstall C:\Users\Kratochvil\AppData\Local\Microsoft\OneDrive\17.3.5907.0716_2\amd64] C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Kratochvil\AppData\Local\Microsoft\OneDrive\17.3.5907.0716_2\amd64"
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O4 - Startup: Odeslat do OneNote.lnk = C:\Program Files\Microsoft Office 15\root\office15\ONENOTEM.EXE
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\Program Files\Microsoft Office\Office15\EXCEL.EXE/3000
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\Program Files (x86)\Microsoft Office\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Se&nd to OneNote - res://C:\Program Files\Microsoft Office 15\Root\Office15\ONBttnIE.dll/105
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Microsoft Office\Office15\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Microsoft Office\Office15\ONBttnIE.dll
O9 - Extra button: PrivDog - {2F5C139F-79BD-4C84-A95A-E7140525BC55} - (no file)
O9 - Extra button: Skype for Business Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Microsoft Office\Office15\OCHelper.dll
O9 - Extra 'Tools' menuitem: Skype for Business Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Microsoft Office\Office15\OCHelper.dll
O9 - Extra button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - Trusted Zone: *.clonewarsadventures.com
O15 - Trusted Zone: *.freerealms.com
O15 - Trusted Zone: *.soe.com
O15 - Trusted Zone: *.sony.com
O17 - HKLM\System\CCS\Services\Tcpip\..\{1c59516f-dd8a-4491-bfef-7b892907cde5}: NameServer = 8.8.8.8,8.8.4.4
O17 - HKLM\System\CS1\Services\Tcpip\..\{1c59516f-dd8a-4491-bfef-7b892907cde5}: NameServer = 8.8.8.8,8.8.4.4
O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Microsoft Office\Office15\MSOSB.DLL
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O23 - Service: SAS Core Service (!SASCORE) - SUPERAntiSpyware.com - C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: AVerRECentral - AVerMedia TECHNOLOGIES, Inc. - C:\Program Files (x86)\Common Files\AVerMedia\Service\AVerRECentral.exe
O23 - Service: AVerUpdateServer - AVerMedia TECHNOLOGIES, Inc. - C:\Program Files (x86)\AVerMedia\AVerUpdate\AVerUpdateServer.exe
O23 - Service: BattlEye Service (BEService) - Unknown owner - C:\Program Files (x86)\Common Files\BattlEye\BEService.exe
O23 - Service: Xamarin Bonjour Service (Bonjour Service) - Apple Inc. - C:\Program Files (x86)\Xamarin\Bonjour\mDNSResponder.exe
O23 - Service: COMODO Internet Security Helper Service (CmdAgent) - COMODO - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
O23 - Service: COMODO Virtual Service Manager (cmdvirth) - COMODO - C:\Program Files\COMODO\COMODO Internet Security\cmdvirth.exe
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @mqutil.dll,-6102 (MSMQ) - Unknown owner - C:\WINDOWS\system32\mqsvc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\System32\ngcsvc.dll,-100 (NgcSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: Origin Client Service - Electronic Arts - E:\Program Files\Origin\OriginClientService.exe
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: SAMSUNG Mobile Connectivity Service (ss_conn_service) - DEVGURU Co., LTD. - C:\Program Files\SAMSUNG\USB Drivers\25_escape\conn\ss_conn_service.exe
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: SwitchBoard - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O23 - Service: TeamViewer 10 (TeamViewer) - TeamViewer GmbH - C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vmms.exe,-10 (vmms) - Unknown owner - C:\WINDOWS\system32\vmms.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: Wacom Professional Service (WTabletServicePro) - Wacom Technology, Corp. - C:\Program Files\Tablet\Wacom\WTabletServicePro.exe

--
End of file - 14091 bytes

======Listing Processes======







C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\System32\svchost.exe -k NetworkService
"C:\Windows\system32\nvvsvc.exe"
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
"C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe"
C:\WINDOWS\system32\svchost.exe -k LocalService
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-23cccbcc-8001-4b5b-b6c8-8a6787e45b46 -SystemEventPortName:HostProcess-f029494d-0c7a-43fc-848e-79988c6e09ee -IoCancelEventPortName:HostProcess-bf24724c-93a1-4c9e-8651-f9a266a3e667 -NonStateChangingEventPortName:HostProcess-dd7a5b74-f996-48ff-9a37-b09aa73667ea -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:40e5dd7e-5131-4709-b512-17473f36f14d -DeviceGroupId:WudfDefaultDevicePool

C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
C:\WINDOWS\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\WINDOWS\System32\svchost.exe -k LocalServicePeerNet
dashost.exe {31c0ff46-1d96-4010-8d926ff6fc1889da}
"C:\Program Files\Tablet\Wacom\WTabletServicePro.exe"
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe -k apphost
C:\WINDOWS\System32\svchost.exe -k utcsvc
"C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE"
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files (x86)\Common Files\Microsoft Shared\Phone Tools\CoreCon\11.0\bin\IpOverUsbSvc.exe"
C:\Windows\system32\PnkBstrA.exe
"C:\Program Files (x86)\Xamarin\Bonjour\mDNSResponder.exe"
"C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe"
C:\WINDOWS\system32\mqsvc.exe
"C:\Program Files (x86)\AVerMedia\AVerUpdate\AVerUpdateServer.exe"
"C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe" /service
"C:\Program Files (x86)\Common Files\AVerMedia\Service\AVerRECentral.exe"
"C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe"
"C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe"
C:\WINDOWS\system32\svchost.exe -k imgsvc
C:\WINDOWS\system32\svchost.exe -k appmodel
"C:\Program Files\SAMSUNG\USB Drivers\25_escape\conn\ss_conn_service.exe"
C:\WINDOWS\system32\vmms.exe
"C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe"
"C:\Program Files (x86)\Google\Update\1.3.28.15\GoogleCrashHandler.exe"

"C:\Program Files\COMODO\COMODO Internet Security\cavwp.exe" /ModeAvMonitor -Embedding
"C:\Program Files (x86)\Google\Update\1.3.28.15\GoogleCrashHandler64.exe"
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
C:\WINDOWS\system32\wbem\wmiprvse.exe

C:\WINDOWS\System32\WinLogon.exe -SpecialSession
"dwm.exe"
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\WINDOWS\system32\nvvsvc.exe -session
"C:\Program Files (x86)\TeamViewer\TeamViewer.exe"
sihost.exe
"C:\Program Files\COMODO\COMODO Internet Security\cistray.exe"
taskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E}
C:\WINDOWS\SysWOW64\rundll32.exe "E:\Program Files\Garena\Garena Plus\ggspawn.dll",rundll_entry -p 0
"C:\Program Files\Tablet\Wacom\Wacom_TabletUser.exe"
C:\WINDOWS\Explorer.EXE
"C:\Program Files\Tablet\Wacom\WacomHost.exe" "C:\Program Files\Tablet\Wacom\Wacom_Tablet.exe" au
"C:\Program Files\Tablet\Wacom\Wacom_Tablet.exe" au
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\Program Files (x86)\TeamViewer\tv_w32.exe" --action hooks --log C:\Program Files (x86)\TeamViewer\TeamViewer10_Logfile.log
"C:\Program Files (x86)\TeamViewer\tv_x64.exe" --action hooks --log C:\Program Files (x86)\TeamViewer\TeamViewer10_Logfile.log
"C:\Program Files\Tablet\Wacom\Wacom_TouchUser.exe"
"C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
"C:\WINDOWS\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe" -ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca
/QuitInfo:0000000000000E24;00000000000012AC;
/loadhooks /Parent:0000000000001440
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
"C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
C:\WINDOWS\system32\SettingSyncHost.exe -Embedding
"C:\Program Files\Logitech Gaming Software\LCore.exe" /minimized
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"K:\Program Files\Steam\Steam.exe" -silent
"C:\Program Files\SteelSeries\SteelSeries Engine\SteelSeriesEngine.exe"
"C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
"C:\Users\Kratochvil\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
"C:\Program Files\Microsoft Office 15\root\office15\ONENOTEM.EXE" /tsr
"K:\Program Files\Steam\bin\steamwebhelper.exe" -cefhost -cachedir "C:\Users\Kratochvil\AppData\Local\Steam\htmlcache" -steampid 6420 -buildid 1440016726 -steamid "0" --disable-gpu-compositing --disable-gpu --process-per-tab --enable-system-flash --disable-spell-checking --enable-direct-write
"C:\Program Files (x86)\Common Files\Steam\SteamService.exe" /RunAsService
"C:\Program Files\COMODO\COMODO Internet Security\cis.exe" --alertsUI
"C:\Program Files\Microsoft Office 15\Root\VFS\ProgramFilesCommonX64\Microsoft Shared\OFFICE15\CSISYNCCLIENT.EXE" "C:\Program Files\Microsoft Office 15\Root\VFS\ProgramFilesCommonX64\Microsoft Shared\OFFICE15\CSISYNCCLIENT.EXE" -Embedding
C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
"C:\Program Files\Common Files\Microsoft Shared\Ink\InputPersonalization.exe"
"C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\AAM Updates Notifier.exe"
C:\WINDOWS\system32\ApplicationFrameHost.exe -Embedding
"C:\Program Files\WindowsApps\Microsoft.Windows.Photos_15.827.16340.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe" -ServerName:App.AppXzst44mncqdg84v7sv6p7yznqwssy6f7f.mca
"C:\Program Files\WindowsApps\Microsoft.ZuneVideo_3.6.12711.0_x64__8wekyb3d8bbwe\Video.UI.exe" -ServerName:Microsoft.ZuneVideo.AppX758ya5sqdjd98rx6z7g95nw6jy7bqx9y.mca
"C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.1509.14010.0_x64__8wekyb3d8bbwe\Calculator.exe" -ServerName:App.AppXsm3pg4n7er43kdh1qp4e79f1j7am68r8.mca
"C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.6208.42001.0_x64__8wekyb3d8bbwe\HxMail.exe" -ServerName:microsoft.windowslive.mail.AppX7fgs1v31b27fq9zen50wdw83aappcatm.mca
"C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.6208.42001.0_x64__8wekyb3d8bbwe\HxTsr.exe" -ServerName:Hx.IPC.Server
"c:\program files (x86)\teamviewer\TeamViewer_Desktop.exe" --IPCport 5939
"C:\Users\Kratochvil\Desktop\RSITx64.exe"

======Scheduled tasks folder======

C:\WINDOWS\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre1.8.0_31\bin\ssv.dll [2015-02-06 551848]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre1.8.0_31\bin\jp2ssv.dll [2015-02-06 212904]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{074C1DC5-9320-4A9A-947D-C042949C6216}]
ContributeBHO Class - E:\Program Files\Adobe\Adobe Contribute CS5.1\Plugins\IEPlugin\contributeieplugin.dll [2011-03-19 164496]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Skype for Business Browser Helper - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Microsoft Office\Office15\OCHelper.dll [2015-08-04 153768]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_31\bin\ssv.dll [2015-02-06 460712]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE7CD045-E861-484f-8273-0445EE161910}]
Adobe PDF Conversion Toolbar Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2013-09-03 343424]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft SkyDrive Pro Browser Helper - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Microsoft Office\Office15\GROOVEEX.DLL [2015-08-12 1733240]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_31\bin\jp2ssv.dll [2015-02-06 172968]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F4971EE7-DAA0-4053-9964-665D8EE6A077}]
SmartSelect Class - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2013-09-03 343424]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{517BDDE4-E3A7-4570-B21E-2B52B6139FC7} - Contribute Toolbar - E:\Program Files\Adobe\Adobe Contribute CS5.1\Plugins\IEPlugin\contributeieplugin.dll [2011-03-19 164496]
{47833539-D0C5-4125-9FA8-0819E2EAAC93} - Adobe PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2013-09-03 343424]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"NvBackend"=C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2015-08-14 1795728]
"Launch LCore"=C:\Program Files\Logitech Gaming Software\LCore.exe [2014-07-28 10801944]
"COMODO Autostart {D5EFF3B3-E126-4AF6-BCE9-852A72129E10}"=C:\Program Files\COMODO\COMODO Internet Security\cistray.exe [2015-08-05 1427648]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2015-08-22 14021336]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Steam"=K:\Program Files\Steam\steam.exe [2015-08-21 2899136]
"SteelSeries Engine"=C:\Program Files\SteelSeries\SteelSeries Engine\SteelSeriesEngine.exe [2014-06-26 87040]
"Skype"=C:\Program Files (x86)\Skype\Phone\Skype.exe [2015-07-28 53661824]
"OneDrive"=C:\Users\Kratochvil\AppData\Local\Microsoft\OneDrive\OneDrive.exe [2015-09-12 405584]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"Uninstall C:\Users\Kratochvil\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64"=C:\WINDOWS\system32\cmd.exe [2015-07-10 232448]
"Uninstall C:\Users\Kratochvil\AppData\Local\Microsoft\OneDrive\17.3.5930.0814\amd64"=C:\WINDOWS\system32\cmd.exe [2015-07-10 232448]
"Uninstall C:\Users\Kratochvil\AppData\Local\Microsoft\OneDrive\17.3.5907.0716_2\amd64"=C:\WINDOWS\system32\cmd.exe [2015-07-10 232448]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Acrobat Assistant 8.0]
E:\Program Files\Adobe\Acrobat 10.0\Acrobat\Acrotray.exe [2013-09-03 840568]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Acrobat Speed Launcher]
E:\Program Files\Adobe\Acrobat 10.0\Acrobat\Acrobat_sl.exe [2013-09-03 41336]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-04-04 958576]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AdobeAAMUpdater-1.0]
C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2011-03-30 499608]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AdobeCS5.5ServiceManager]
C:\Program Files (x86)\Common Files\Adobe\CS5.5ServiceManager\CS5.5ServiceManager.exe [2011-01-12 1523360]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Battle.net]
C:\Program Files (x86)\Battle.net\Battle.net Launcher.exe [2015-09-04 2924080]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DivXMediaServer]
C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ShadowPlay]
C:\Windows\system32\nvspcap64.dll [2014-04-30 1225920]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SwitchBoard]
C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WinampAgent]
C:\Program Files (x86)\Winamp\winampa.exe [2015-09-02 85600]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Xvid]
C:\Program Files (x86)\Xvid\CheckUpdate.exe [2011-01-17 8192]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"JMB36X IDE Setup"=C:\Windows\RaidTool\xInsIDE.exe [2010-09-07 43608]
""= []

C:\Users\Kratochvil\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Odeslat do OneNote.lnk - C:\Program Files\Microsoft Office 15\root\office15\ONENOTEM.EXE

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"=" "

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\!SASCORE]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TileDataModelSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\!SASCORE]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TileDataModelSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DisableTaskMgr"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DSCAutomationHostEnabled"=2
"SoftwareSASGeneration"=1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"aux1"=wdmaud.drv
"VIDC.FPS1"=frapsv64.dll
"vidc.XVID"=xvidvfw.dll
"vidc.xtor"=DxtoryCodec64.dll
"VIDC.XFR1"=xfcodec64.dll
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - "E:\Program Files\Adobe\Adobe Dreamweaver CS5.5\Dreamweaver.exe","%1"

======List of files/folders created in the last 1 month======

2015-09-17 23:37:18 ----D---- C:\AdwCleaner
2015-09-17 20:46:57 ----D---- C:\rsit
2015-09-17 20:46:57 ----D---- C:\Program Files\trend micro
2015-09-14 16:27:30 ----A---- C:\WINDOWS\system32\vccorlib110.dll
2015-09-14 16:27:30 ----A---- C:\WINDOWS\system32\LogiLDA.DLL
2015-09-14 16:27:30 ----A---- C:\WINDOWS\system32\LdaCx2.dll
2015-09-14 00:27:05 ----D---- C:\usb_driver
2015-09-14 00:27:05 ----A---- C:\WINDOWS\system32\WinUSBCoInstaller2.dll
2015-09-13 23:52:45 ----A---- C:\WINDOWS\system32\drivers\ssudmdm.sys
2015-09-13 23:52:45 ----A---- C:\WINDOWS\system32\drivers\ssudbus.sys
2015-09-13 23:52:30 ----AD---- C:\adb
2015-09-13 23:46:43 ----D---- C:\WINDOWS\LastGood
2015-09-13 23:37:42 ----A---- C:\WINDOWS\system32\drivers\SETA725.tmp
2015-09-13 23:37:42 ----A---- C:\WINDOWS\system32\drivers\SET6BB3.tmp
2015-09-13 22:55:20 ----D---- C:\WINDOWS\LastGood.Tmp
2015-09-13 22:55:18 ----A---- C:\WINDOWS\system32\WdfCoInstaller01007.dll
2015-09-12 13:19:57 ----D---- C:\Program Files (x86)\HomeDev
2015-09-12 12:47:10 ----D---- C:\Users\Kratochvil\AppData\Roaming\LockAP
2015-09-10 13:06:18 ----D---- C:\Program Files (x86)\BlueJ
2015-09-10 12:48:04 ----D---- C:\Program Files\Hyper-V
2015-09-10 12:07:42 ----D---- C:\Program Files (x86)\Xamarin
2015-09-10 12:07:15 ----D---- C:\ProgramData\Monodoc
2015-09-10 12:03:03 ----D---- C:\Program Files (x86)\Git
2015-09-10 12:02:43 ----D---- C:\Program Files (x86)\nodejs
2015-09-10 11:52:23 ----D---- C:\Program Files (x86)\Microsoft Emulator Manager
2015-09-10 11:52:19 ----D---- C:\Program Files (x86)\Microsoft Visual Studio Emulator for Android
2015-09-10 11:49:50 ----D---- C:\Program Files (x86)\Microsoft Visual Studio 14.0
2015-09-10 11:47:33 ----D---- C:\Program Files\Application Verifier
2015-09-10 11:47:33 ----D---- C:\Program Files (x86)\Application Verifier
2015-09-10 11:47:18 ----D---- C:\ProgramData\Windows App Certification Kit
2015-09-10 11:45:16 ----D---- C:\Program Files (x86)\AppInsights
2015-09-10 11:44:57 ----D---- C:\ProgramData\NuGet
2015-09-10 11:44:57 ----D---- C:\Program Files (x86)\NuGet
2015-09-10 11:29:22 ----D---- C:\ProgramData\PreEmptive Solutions
2015-09-10 11:29:17 ----D---- C:\Program Files (x86)\ShellDir
2015-09-10 11:28:37 ----D---- C:\Program Files (x86)\Microsoft ASP.NET
2015-09-10 11:28:02 ----D---- C:\ProgramData\Microsoft DNX
2015-09-10 11:28:02 ----D---- C:\Program Files\Microsoft DNX
2015-09-10 11:23:37 ----D---- C:\Program Files (x86)\Microsoft Web Tools
2015-09-10 11:22:56 ----D---- C:\Program Files\IIS Express
2015-09-10 11:22:56 ----D---- C:\Program Files (x86)\IIS Express
2015-09-10 11:22:27 ----D---- C:\Program Files (x86)\Microsoft Office365 Tools
2015-09-10 11:21:56 ----D---- C:\Program Files (x86)\Microsoft WCF Data Services
2015-09-10 11:21:47 ----D---- C:\Program Files\IIS
2015-09-10 11:21:47 ----D---- C:\Program Files (x86)\IIS
2015-09-10 11:19:18 ----D---- C:\Program Files (x86)\Windows Phone Silverlight Kits
2015-09-10 11:19:03 ----D---- C:\Program Files (x86)\Windows Phone Kits
2015-09-10 11:19:03 ----D---- C:\Program Files (x86)\Microsoft XDE
2015-09-10 11:17:19 ----D---- C:\Program Files (x86)\Microsoft Visual Studio 11.0
2015-09-10 11:14:10 ----D---- C:\Program Files\Microsoft Visual Studio 12.0
2015-09-10 11:14:04 ----D---- C:\Program Files (x86)\HTML Help Workshop
2015-09-10 11:10:52 ----D---- C:\WINDOWS\symbols
2015-09-10 11:08:32 ----A---- C:\WINDOWS\SYSWOW64\VsGraphicsRemoteEngine.exe
2015-09-10 11:08:32 ----A---- C:\WINDOWS\SYSWOW64\VsGraphicsProxyStub.dll
2015-09-10 11:08:32 ----A---- C:\WINDOWS\SYSWOW64\VsGraphicsExperiment.dll
2015-09-10 11:08:32 ----A---- C:\WINDOWS\SYSWOW64\VsGraphicsDesktopEngine.exe
2015-09-10 11:08:32 ----A---- C:\WINDOWS\SYSWOW64\VsGraphicsCapture.dll
2015-09-10 11:08:32 ----A---- C:\WINDOWS\SYSWOW64\VSD3DWARPDebug.dll
2015-09-10 11:08:32 ----A---- C:\WINDOWS\SYSWOW64\VSD3DWARP12Debug.dll
2015-09-10 11:08:32 ----A---- C:\WINDOWS\SYSWOW64\perf_gputiming.dll
2015-09-10 11:08:32 ----A---- C:\WINDOWS\SYSWOW64\DXToolsReporting.dll
2015-09-10 11:08:32 ----A---- C:\WINDOWS\SYSWOW64\DxToolsReportGenerator.dll
2015-09-10 11:08:32 ----A---- C:\WINDOWS\SYSWOW64\DXToolsOfflineAnalysis.dll
2015-09-10 11:08:32 ----A---- C:\WINDOWS\SYSWOW64\DXToolsMonitor.dll
2015-09-10 11:08:32 ----A---- C:\WINDOWS\SYSWOW64\DXGIDebug.dll
2015-09-10 11:08:32 ----A---- C:\WINDOWS\SYSWOW64\DXCpl.exe
2015-09-10 11:08:32 ----A---- C:\WINDOWS\SYSWOW64\DXCaptureReplay.dll
2015-09-10 11:08:32 ----A---- C:\WINDOWS\SYSWOW64\DXCap.exe
2015-09-10 11:08:32 ----A---- C:\WINDOWS\SYSWOW64\d3d12warp.dll
2015-09-10 11:08:32 ----A---- C:\WINDOWS\SYSWOW64\d3d12SDKLayers.dll
2015-09-10 11:08:32 ----A---- C:\WINDOWS\SYSWOW64\d3d11_3SDKLayers.dll
2015-09-10 11:08:32 ----A---- C:\WINDOWS\SYSWOW64\d2d1debug3.dll
2015-09-10 11:08:32 ----A---- C:\WINDOWS\system32\VsGraphicsRemoteEngine.exe
2015-09-10 11:08:32 ----A---- C:\WINDOWS\system32\VsGraphicsExperiment.dll
2015-09-10 11:08:32 ----A---- C:\WINDOWS\system32\VsGraphicsCapture.dll
2015-09-10 11:08:32 ----A---- C:\WINDOWS\system32\VSD3DWARPDebug.dll
2015-09-10 11:08:32 ----A---- C:\WINDOWS\system32\DXToolsReporting.dll
2015-09-10 11:08:32 ----A---- C:\WINDOWS\system32\DXToolsOfflineAnalysis.dll
2015-09-10 11:08:32 ----A---- C:\WINDOWS\system32\DXToolsMonitor.dll
2015-09-10 11:08:32 ----A---- C:\WINDOWS\system32\DXGIDebug.dll
2015-09-10 11:08:32 ----A---- C:\WINDOWS\system32\DXCaptureReplay.dll
2015-09-10 11:08:32 ----A---- C:\WINDOWS\system32\DXCap.exe
2015-09-10 11:08:32 ----A---- C:\WINDOWS\system32\d3d12warp.dll
2015-09-10 11:08:32 ----A---- C:\WINDOWS\system32\d3d12SDKLayers.dll
2015-09-10 11:08:31 ----A---- C:\WINDOWS\system32\VsGraphicsProxyStub.dll
2015-09-10 11:08:31 ----A---- C:\WINDOWS\system32\VsGraphicsDesktopEngine.exe
2015-09-10 11:08:31 ----A---- C:\WINDOWS\system32\VSD3DWARP12Debug.dll
2015-09-10 11:08:31 ----A---- C:\WINDOWS\system32\perf_gputiming.dll
2015-09-10 11:08:31 ----A---- C:\WINDOWS\system32\DxToolsReportGenerator.dll
2015-09-10 11:08:31 ----A---- C:\WINDOWS\system32\DXCpl.exe
2015-09-10 11:08:31 ----A---- C:\WINDOWS\system32\d3d11_3SDKLayers.dll
2015-09-10 11:08:31 ----A---- C:\WINDOWS\system32\d2d1debug3.dll
2015-09-09 23:10:15 ----D---- C:\ProgramData\VsTelemetry
2015-09-09 23:09:10 ----D---- C:\Program Files\Microsoft Mathematics
2015-09-09 10:45:47 ----A---- C:\WINDOWS\SYSWOW64\edgehtml.dll
2015-09-09 10:45:47 ----A---- C:\WINDOWS\system32\edgehtml.dll
2015-09-09 10:45:46 ----A---- C:\WINDOWS\system32\mshtml.dll
2015-09-09 10:45:43 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2015-09-09 10:45:42 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2015-09-09 10:45:42 ----A---- C:\WINDOWS\system32\win32kfull.sys
2015-09-09 10:45:42 ----A---- C:\WINDOWS\system32\ieframe.dll
2015-09-09 10:45:41 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Immersive.dll
2015-09-09 10:45:41 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2015-09-09 10:45:41 ----A---- C:\WINDOWS\SYSWOW64\authui.dll
2015-09-09 10:45:41 ----A---- C:\WINDOWS\system32\Windows.UI.Immersive.dll
2015-09-09 10:45:41 ----A---- C:\WINDOWS\system32\authui.dll
2015-09-09 10:45:40 ----A---- C:\WINDOWS\system32\win32kbase.sys
2015-09-09 10:45:40 ----A---- C:\WINDOWS\system32\jscript.dll
2015-09-09 10:45:39 ----A---- C:\WINDOWS\system32\SettingSync.dll
2015-09-09 10:45:39 ----A---- C:\WINDOWS\system32\iertutil.dll
2015-09-09 10:45:38 ----A---- C:\WINDOWS\SYSWOW64\vbscript.dll
2015-09-09 10:45:38 ----A---- C:\WINDOWS\SYSWOW64\shacct.dll
2015-09-09 10:45:38 ----A---- C:\WINDOWS\SYSWOW64\SettingSync.dll
2015-09-09 10:45:38 ----A---- C:\WINDOWS\SYSWOW64\jscript.dll
2015-09-09 10:45:38 ----A---- C:\WINDOWS\SYSWOW64\fontdrvhost.exe
2015-09-09 10:45:38 ----A---- C:\WINDOWS\SYSWOW64\atmlib.dll
2015-09-09 10:45:38 ----A---- C:\WINDOWS\SYSWOW64\atmfd.dll
2015-09-09 10:45:38 ----A---- C:\WINDOWS\system32\winlogon.exe
2015-09-09 10:45:38 ----A---- C:\WINDOWS\system32\Windows.UI.PicturePassword.dll
2015-09-09 10:45:38 ----A---- C:\WINDOWS\system32\vbscript.dll
2015-09-09 10:45:38 ----A---- C:\WINDOWS\system32\schedsvc.dll
2015-09-09 10:45:38 ----A---- C:\WINDOWS\system32\shacct.dll
2015-09-09 10:45:38 ----A---- C:\WINDOWS\system32\fontdrvhost.exe
2015-09-09 10:45:38 ----A---- C:\WINDOWS\system32\drivers\vmswitch.sys
2015-09-09 10:45:38 ----A---- C:\WINDOWS\system32\atmlib.dll
2015-09-09 10:45:38 ----A---- C:\WINDOWS\system32\atmfd.dll
2015-09-09 10:45:38 ----A---- C:\WINDOWS\system32\acmigration.dll
2015-09-07 18:52:15 ----D---- C:\Users\Kratochvil\AppData\Roaming\SUPERAntiSpyware.com
2015-09-07 18:52:03 ----D---- C:\ProgramData\SUPERAntiSpyware.com
2015-09-06 23:45:12 ----D---- C:\Users\Kratochvil\AppData\Roaming\GHISLER
2015-09-06 23:45:12 ----D---- C:\Program Files\totalcmd
2015-09-06 19:44:16 ----D---- C:\Program Files (x86)\MSECACHE
2015-08-29 14:36:41 ----A---- C:\WINDOWS\system32\shell32.dll
2015-08-29 14:36:39 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2015-08-29 14:36:37 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2015-08-29 14:36:37 ----A---- C:\WINDOWS\system32\CoreUIComponents.dll
2015-08-29 14:36:36 ----A---- C:\WINDOWS\system32\wuaueng.dll
2015-08-29 14:36:35 ----A---- C:\WINDOWS\SYSWOW64\CoreUIComponents.dll
2015-08-29 14:36:35 ----A---- C:\WINDOWS\system32\NetworkMobileSettings.dll
2015-08-29 14:36:35 ----A---- C:\WINDOWS\system32\LicenseManager.dll
2015-08-29 14:36:35 ----A---- C:\WINDOWS\system32\dwmcore.dll
2015-08-29 14:36:34 ----A---- C:\WINDOWS\SYSWOW64\NetSetupShim.dll
2015-08-29 14:36:34 ----A---- C:\WINDOWS\SYSWOW64\LicenseManager.dll
2015-08-29 14:36:34 ----A---- C:\WINDOWS\SYSWOW64\dwmcore.dll
2015-08-29 14:36:34 ----A---- C:\WINDOWS\system32\reseteng.dll
2015-08-29 14:36:34 ----A---- C:\WINDOWS\system32\NetSetupShim.dll
2015-08-29 14:36:34 ----A---- C:\WINDOWS\system32\modernexecserver.dll
2015-08-29 14:36:34 ----A---- C:\WINDOWS\system32\facecredentialprovider.dll
2015-08-29 14:36:33 ----A---- C:\WINDOWS\system32\WlanMediaManager.dll
2015-08-29 14:36:33 ----A---- C:\WINDOWS\system32\NetSetupSvc.dll
2015-08-29 14:36:33 ----A---- C:\WINDOWS\system32\InstallAgent.exe
2015-08-29 14:36:33 ----A---- C:\WINDOWS\system32\drivers\USBXHCI.SYS
2015-08-29 14:36:33 ----A---- C:\WINDOWS\system32\ci.dll
2015-08-29 14:36:33 ----A---- C:\WINDOWS\system32\BthRadioMedia.dll
2015-08-29 14:36:32 ----A---- C:\WINDOWS\system32\wlansvc.dll
2015-08-29 14:36:32 ----A---- C:\WINDOWS\system32\wfdprov.dll
2015-08-29 14:36:32 ----A---- C:\WINDOWS\system32\wcnwiz.dll
2015-08-29 14:36:32 ----A---- C:\WINDOWS\system32\WcnNetsh.dll
2015-08-29 14:36:32 ----A---- C:\WINDOWS\system32\aitstatic.exe
2015-08-29 14:36:31 ----A---- C:\WINDOWS\SYSWOW64\wfdprov.dll
2015-08-29 14:36:31 ----A---- C:\WINDOWS\SYSWOW64\wcnwiz.dll
2015-08-29 14:36:31 ----A---- C:\WINDOWS\SYSWOW64\WcnApi.dll
2015-08-29 14:36:31 ----A---- C:\WINDOWS\system32\WcnApi.dll
2015-08-29 14:36:31 ----A---- C:\WINDOWS\system32\fdWCN.dll
2015-08-29 14:36:31 ----A---- C:\WINDOWS\system32\EnterpriseModernAppMgmtCSP.dll
2015-08-29 14:36:31 ----A---- C:\WINDOWS\system32\dafWCN.dll
2015-08-29 14:36:31 ----A---- C:\WINDOWS\system32\AppXDeploymentServer.dll
2015-08-29 14:36:30 ----A---- C:\WINDOWS\SYSWOW64\PackageStateRoaming.dll
2015-08-29 14:36:30 ----A---- C:\WINDOWS\SYSWOW64\fdWCN.dll
2015-08-29 14:36:30 ----A---- C:\WINDOWS\system32\vaultsvc.dll
2015-08-29 14:36:30 ----A---- C:\WINDOWS\system32\PackageStateRoaming.dll
2015-08-29 14:36:30 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2015-08-22 17:10:53 ----A---- C:\WINDOWS\system32\RtPgEx64.dll
2015-08-22 17:10:53 ----A---- C:\WINDOWS\system32\RtlCPAPI64.dll
2015-08-22 17:10:53 ----A---- C:\WINDOWS\system32\RtkCfg64.dll
2015-08-22 17:10:53 ----A---- C:\WINDOWS\system32\RtkApi64.dll
2015-08-22 17:10:52 ----A---- C:\WINDOWS\system32\RtDataProc64.dll
2015-08-22 17:10:52 ----A---- C:\WINDOWS\system32\RTCOM64.dll
2015-08-22 17:10:51 ----A---- C:\WINDOWS\system32\drivers\RTAIODAT.DAT
2015-08-22 17:10:47 ----A---- C:\WINDOWS\system32\RCoRes64.dat
2015-08-22 17:10:47 ----A---- C:\WINDOWS\system32\RCoInstII64.dll
2015-08-22 17:10:45 ----A---- C:\WINDOWS\system32\R4EEP64A.dll
2015-08-22 17:10:45 ----A---- C:\WINDOWS\system32\R4EEL64A.dll
2015-08-22 17:10:45 ----A---- C:\WINDOWS\system32\R4EEG64A.dll
2015-08-22 17:10:45 ----A---- C:\WINDOWS\system32\R4EED64A.dll
2015-08-22 17:10:45 ----A---- C:\WINDOWS\system32\R4EEA64A.dll
2015-08-22 17:10:14 ----A---- C:\WINDOWS\system32\DTSVoiceClarityDLL64.dll
2015-08-22 17:10:13 ----A---- C:\WINDOWS\system32\DTSSymmetryDLL64.dll
2015-08-22 17:10:12 ----A---- C:\WINDOWS\system32\DTSS2SpeakerDLL64.dll
2015-08-22 17:10:12 ----A---- C:\WINDOWS\system32\DTSS2HeadphoneDLL64.dll
2015-08-22 17:10:12 ----A---- C:\WINDOWS\system32\DTSNeoPCDLL64.dll
2015-08-22 17:10:12 ----A---- C:\WINDOWS\system32\DTSLimiterDLL64.dll
2015-08-22 17:10:12 ----A---- C:\WINDOWS\system32\DTSLFXAPO64.dll
2015-08-22 17:10:12 ----A---- C:\WINDOWS\system32\DTSGFXAPONS64.dll
2015-08-22 17:10:12 ----A---- C:\WINDOWS\system32\DTSGFXAPO64.dll
2015-08-22 17:10:12 ----A---- C:\WINDOWS\system32\DTSGainCompensatorDLL64.dll
2015-08-22 17:10:12 ----A---- C:\WINDOWS\system32\DTSBoostDLL64.dll
2015-08-22 17:10:11 ----A---- C:\WINDOWS\system32\DTSBassEnhancementDLL64.dll
2015-08-22 17:10:10 ----A---- C:\WINDOWS\system32\DDPP64A.dll
2015-08-22 17:10:09 ----A---- C:\WINDOWS\system32\DDPO64A.dll
2015-08-22 17:10:09 ----A---- C:\WINDOWS\system32\DDPD64A.dll
2015-08-22 17:10:08 ----A---- C:\WINDOWS\system32\DDPA64.dll
2015-08-22 17:10:06 ----A---- C:\WINDOWS\system32\audioLibVc.dll
2015-08-22 17:10:05 ----A---- C:\WINDOWS\system32\AcpiServiceVnA64.dll
2015-08-22 17:07:15 ----D---- C:\Program Files\Realtek
2015-08-22 17:05:53 ----A---- C:\WINDOWS\system32\RtkCoLDR64.dll
2015-08-22 17:05:53 ----A---- C:\WINDOWS\system32\drivers\RTKVHD64.sys
2015-08-22 17:05:52 ----A---- C:\WINDOWS\system32\RltkAPO64.dll
2015-08-22 17:04:42 ----A---- C:\WINDOWS\RtlExUpd.dll
2015-08-19 17:27:14 ----A---- C:\WINDOWS\system32\vmms.exe
2015-08-19 17:27:11 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.dll
2015-08-19 17:27:08 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.dll
2015-08-19 17:27:06 ----A---- C:\WINDOWS\system32\Windows.UI.Logon.dll
2015-08-19 17:27:05 ----A---- C:\WINDOWS\system32\tquery.dll
2015-08-19 17:27:04 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Logon.dll
2015-08-19 17:27:04 ----A---- C:\WINDOWS\system32\mssrch.dll
2015-08-19 17:27:04 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll
2015-08-19 17:27:04 ----A---- C:\WINDOWS\explorer.exe
2015-08-19 17:27:03 ----A---- C:\WINDOWS\SYSWOW64\explorer.exe
2015-08-19 17:27:03 ----A---- C:\WINDOWS\system32\wlidsvc.dll
2015-08-19 17:27:03 ----A---- C:\WINDOWS\system32\Chakra.dll
2015-08-19 17:27:03 ----A---- C:\WINDOWS\system32\diagtrack.dll
2015-08-19 17:27:02 ----A---- C:\WINDOWS\SYSWOW64\mssrch.dll
2015-08-19 17:27:02 ----A---- C:\WINDOWS\SYSWOW64\mfcore.dll
2015-08-19 17:27:01 ----A---- C:\WINDOWS\SYSWOW64\tquery.dll
2015-08-19 17:27:01 ----A---- C:\WINDOWS\SYSWOW64\MFMediaEngine.dll
2015-08-19 17:27:01 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2015-08-19 17:27:01 ----A---- C:\WINDOWS\system32\InputService.dll
2015-08-19 17:27:00 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.dll
2015-08-19 17:27:00 ----A---- C:\WINDOWS\system32\wwansvc.dll
2015-08-19 17:27:00 ----A---- C:\WINDOWS\system32\RDXService.dll
2015-08-19 17:27:00 ----A---- C:\WINDOWS\system32\LockAppHost.exe
2015-08-19 17:26:59 ----A---- C:\WINDOWS\SYSWOW64\LockAppHost.exe
2015-08-19 17:26:59 ----A---- C:\WINDOWS\SYSWOW64\Chakra.dll
2015-08-19 17:26:58 ----A---- C:\WINDOWS\SYSWOW64\mfplat.dll
2015-08-19 17:26:58 ----A---- C:\WINDOWS\SYSWOW64\InputService.dll
2015-08-19 17:26:58 ----A---- C:\WINDOWS\system32\UIAutomationCore.dll
2015-08-19 17:26:58 ----A---- C:\WINDOWS\system32\MbaeApiPublic.dll
2015-08-19 17:26:58 ----A---- C:\WINDOWS\system32\directmanipulation.dll
2015-08-19 17:26:58 ----A---- C:\WINDOWS\system32\diagtrack_wininternal.dll
2015-08-19 17:26:58 ----A---- C:\WINDOWS\system32\diagtrack_win.dll
2015-08-19 17:26:57 ----A---- C:\WINDOWS\SYSWOW64\UIAutomationCore.dll
2015-08-19 17:26:57 ----A---- C:\WINDOWS\SYSWOW64\directmanipulation.dll
2015-08-19 17:26:57 ----A---- C:\WINDOWS\system32\wcmsvc.dll
2015-08-19 17:26:57 ----A---- C:\WINDOWS\system32\ReAgent.dll
2015-08-19 17:26:57 ----A---- C:\WINDOWS\system32\mfplat.dll
2015-08-19 17:26:57 ----A---- C:\WINDOWS\system32\MbaeApi.dll
2015-08-19 17:26:57 ----A---- C:\WINDOWS\system32\LocationPermissions.dll
2015-08-19 17:26:56 ----A---- C:\WINDOWS\SYSWOW64\MbaeApiPublic.dll
2015-08-19 17:26:56 ----A---- C:\WINDOWS\SYSWOW64\MbaeApi.dll
2015-08-19 17:26:56 ----A---- C:\WINDOWS\system32\UserMgrProxy.dll
2015-08-19 17:26:56 ----A---- C:\WINDOWS\system32\TextInputFramework.dll
2015-08-19 17:26:56 ----A---- C:\WINDOWS\system32\tetheringservice.dll
2015-08-19 17:26:56 ----A---- C:\WINDOWS\system32\SettingsHandlers_Notifications.dll
2015-08-19 17:26:56 ----A---- C:\WINDOWS\system32\SearchProtocolHost.exe
2015-08-19 17:26:56 ----A---- C:\WINDOWS\system32\MbaeParserTask.exe
2015-08-19 17:26:56 ----A---- C:\WINDOWS\system32\drivers\stornvme.sys
2015-08-19 17:26:56 ----A---- C:\WINDOWS\system32\cloudAP.dll
2015-08-19 17:26:55 ----A---- C:\WINDOWS\SYSWOW64\UserMgrProxy.dll
2015-08-19 17:26:55 ----A---- C:\WINDOWS\system32\sysmain.dll
2015-08-19 17:26:55 ----A---- C:\WINDOWS\system32\rdbui.dll
2015-08-19 17:26:55 ----A---- C:\WINDOWS\system32\LocationGeofences.dll
2015-08-19 17:26:54 ----A---- C:\WINDOWS\SYSWOW64\TextInputFramework.dll
2015-08-19 17:26:54 ----A---- C:\WINDOWS\SYSWOW64\ReAgent.dll
2015-08-19 17:26:54 ----A---- C:\WINDOWS\SYSWOW64\AppXDeploymentClient.dll
2015-08-19 17:26:54 ----A---- C:\WINDOWS\system32\syncutil.dll
2015-08-19 17:26:54 ----A---- C:\WINDOWS\system32\OneDriveSettingSyncProvider.dll
2015-08-19 17:26:54 ----A---- C:\WINDOWS\system32\mfcore.dll
2015-08-19 17:26:54 ----A---- C:\WINDOWS\system32\LocationFramework.dll
2015-08-19 17:26:54 ----A---- C:\WINDOWS\system32\drivers\storport.sys
2015-08-19 17:26:54 ----A---- C:\WINDOWS\system32\AppXDeploymentClient.dll
2015-08-19 17:26:53 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Core.TextInput.dll
2015-08-19 17:26:53 ----A---- C:\WINDOWS\SYSWOW64\tetheringclient.dll
2015-08-19 17:26:53 ----A---- C:\WINDOWS\SYSWOW64\SearchProtocolHost.exe
2015-08-19 17:26:53 ----A---- C:\WINDOWS\SYSWOW64\OneDriveSettingSyncProvider.dll
2015-08-19 17:26:53 ----A---- C:\WINDOWS\system32\wuautoappupdate.dll
2015-08-19 17:26:53 ----A---- C:\WINDOWS\system32\tetheringclient.dll
2015-08-19 17:26:53 ----A---- C:\WINDOWS\system32\mssprxy.dll
2015-08-19 17:26:53 ----A---- C:\WINDOWS\system32\LocationFrameworkInternalPS.dll
2015-08-19 17:26:53 ----A---- C:\WINDOWS\system32\GamePanel.exe
2015-08-19 17:26:53 ----A---- C:\WINDOWS\system32\enterprisecsps.dll
2015-08-19 17:26:52 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2015-08-19 17:26:52 ----A---- C:\WINDOWS\SYSWOW64\ReInfo.dll
2015-08-19 17:26:52 ----A---- C:\WINDOWS\SYSWOW64\GamePanel.exe
2015-08-19 17:26:52 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll

======List of files/folders modified in the last 1 month======

2015-09-18 18:14:26 ----D---- C:\WINDOWS\Prefetch
2015-09-18 18:14:23 ----D---- C:\WINDOWS\Temp
2015-09-18 18:14:23 ----D---- C:\WINDOWS\System32
2015-09-18 18:09:15 ----D---- C:\Users\Kratochvil\AppData\Roaming\Skype
2015-09-18 17:19:00 ----D---- C:\WINDOWS\system32\sru
2015-09-18 16:08:33 ----D---- C:\WINDOWS\system32\config
2015-09-18 15:49:24 ----D---- C:\WINDOWS\Microsoft.NET
2015-09-18 15:22:18 ----D---- C:\WINDOWS\AppReadiness
2015-09-18 15:22:16 ----HD---- C:\Program Files\WindowsApps
2015-09-18 15:18:25 ----D---- C:\WINDOWS\system32\Tasks
2015-09-17 23:57:06 ----D---- C:\ProgramData\NVIDIA
2015-09-17 23:38:46 ----RD---- C:\Program Files
2015-09-17 15:19:37 ----D---- C:\Users\Kratochvil\AppData\Roaming\vlc
2015-09-17 14:45:56 ----D---- C:\Program Files (x86)\Battle.net
2015-09-17 11:52:02 ----SHDC---- C:\WINDOWS\Installer
2015-09-17 11:52:02 ----SHD---- C:\Config.Msi
2015-09-17 11:48:41 ----RD---- C:\Program Files (x86)
2015-09-17 11:47:54 ----D---- C:\WINDOWS\Tasks
2015-09-16 14:11:16 ----D---- C:\ProgramData\Origin
2015-09-16 14:01:29 ----D---- C:\Users\Kratochvil\AppData\Roaming\Awesomium
2015-09-15 21:46:55 ----D---- C:\WINDOWS\INF
2015-09-15 21:44:17 ----D---- C:\WINDOWS\system32\DriverStore
2015-09-15 21:43:08 ----D---- C:\WINDOWS\SysWOW64
2015-09-15 20:31:09 ----HD---- C:\ProgramData
2015-09-15 20:22:36 ----RD---- C:\WINDOWS\assembly
2015-09-15 20:22:34 ----D---- C:\ProgramData\regid.1991-06.com.microsoft
2015-09-15 20:20:43 ----D---- C:\Program Files\Microsoft Office 15
2015-09-15 00:22:40 ----D---- C:\Users\Kratochvil\AppData\Roaming\Winamp
2015-09-14 19:04:17 ----D---- C:\Program Files (x86)\TeamViewer
2015-09-14 18:09:25 ----HD---- C:\GrandeDevice
2015-09-14 17:07:05 ----D---- C:\WINDOWS\SYSWOW64\drivers
2015-09-14 17:06:35 ----SHD---- C:\System Volume Information
2015-09-14 16:29:10 ----D---- C:\WINDOWS\Minidump
2015-09-14 16:29:04 ----D---- C:\Windows
2015-09-14 16:27:31 ----A---- C:\WINDOWS\system32\msvcr110.dll
2015-09-14 16:27:31 ----A---- C:\WINDOWS\system32\msvcp110.dll
2015-09-14 00:01:51 ----D---- C:\WINDOWS\system32\drivers
2015-09-13 23:54:27 ----D---- C:\WINDOWS\system32\CatRoot
2015-09-13 23:53:22 ----D---- C:\Program Files\DIFX
2015-09-13 23:47:23 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2015-09-13 23:37:41 ----D---- C:\Program Files\Samsung
2015-09-13 23:11:03 ----D---- C:\Users\Kratochvil\AppData\Roaming\BitTorrent
2015-09-12 13:40:53 ----D---- C:\WINDOWS\rescache
2015-09-12 13:15:54 ----D---- C:\WINDOWS\Logs
2015-09-12 13:15:54 ----D---- C:\WINDOWS\debug
2015-09-10 13:43:03 ----D---- C:\ProgramData\Epic
2015-09-10 13:31:36 ----D---- C:\ProgramData\PMB Files
2015-09-10 12:54:04 ----D---- C:\WINDOWS\WinSxS
2015-09-10 12:48:05 ----D---- C:\WINDOWS\system32\wbem
2015-09-10 12:48:05 ----D---- C:\WINDOWS\system32\migration
2015-09-10 12:48:05 ----D---- C:\WINDOWS\system32\en-US
2015-09-10 12:48:05 ----D---- C:\WINDOWS\system32\drivers\en-US
2015-09-10 12:48:05 ----D---- C:\WINDOWS\system32\drivers\cs-CZ
2015-09-10 12:48:05 ----D---- C:\WINDOWS\system32\cs-CZ
2015-09-10 12:48:04 ----D---- C:\WINDOWS\schemas
2015-09-10 12:37:04 ----D---- C:\Program Files\Android Studio
2015-09-10 12:27:24 ----D---- C:\ProgramData\Package Cache
2015-09-10 12:26:29 ----SD---- C:\Users\Kratochvil\AppData\Roaming\Microsoft
2015-09-10 12:26:02 ----SD---- C:\ProgramData\Microsoft
2015-09-10 12:07:15 ----D---- C:\Program Files (x86)\MSBuild
2015-09-10 12:01:28 ----D---- C:\Program Files (x86)\Microsoft SDKs
2015-09-10 11:54:07 ----D---- C:\WINDOWS\CbsTemp
2015-09-10 11:54:03 ----A---- C:\WINDOWS\system32\RdvgmProxy.dll
2015-09-10 11:54:01 ----A---- C:\WINDOWS\system32\sbresources.dll
2015-09-10 11:53:59 ----A---- C:\WINDOWS\system32\vmsmb.dll
2015-09-10 11:53:56 ----A---- C:\WINDOWS\system32\vmusrv.dll
2015-09-10 11:53:56 ----A---- C:\WINDOWS\system32\vmbuspiper.dll
2015-09-10 11:53:54 ----A---- C:\WINDOWS\system32\VmEmulatedStorage.dll
2015-09-10 11:53:53 ----A---- C:\WINDOWS\system32\rdvgm.exe
2015-09-10 11:53:52 ----A---- C:\WINDOWS\system32\wshhypervr.dll
2015-09-10 11:53:51 ----A---- C:\WINDOWS\SYSWOW64\RdvgmProxy.dll
2015-09-10 11:53:48 ----A---- C:\WINDOWS\system32\vmsntfy.dll
2015-09-10 11:53:46 ----A---- C:\WINDOWS\system32\VmsNetSetupPlugin.dll
2015-09-10 11:53:46 ----A---- C:\WINDOWS\system32\vmsif.dll
2015-09-10 11:53:46 ----A---- C:\WINDOWS\system32\RdvGpuInfo.dll
2015-09-10 11:53:45 ----A---- C:\WINDOWS\system32\vsconfig.dll
2015-09-10 11:53:45 ----A---- C:\WINDOWS\system32\vmdynmem.dll
2015-09-10 11:53:43 ----A---- C:\WINDOWS\system32\kdhvcom.dll
2015-09-10 11:53:43 ----A---- C:\WINDOWS\system32\hvloader.exe
2015-09-10 11:53:43 ----A---- C:\WINDOWS\system32\hvax64.exe
2015-09-10 11:53:39 ----A---- C:\WINDOWS\system32\vmserial.dll
2015-09-10 11:53:39 ----A---- C:\WINDOWS\system32\hvix64.exe
2015-09-10 11:53:36 ----A---- C:\WINDOWS\system32\vmwp.exe
2015-09-10 11:53:36 ----A---- C:\WINDOWS\system32\VmSynthNic.dll
2015-09-10 11:53:34 ----A---- C:\WINDOWS\system32\wnvapi.dll
2015-09-10 11:53:33 ----A---- C:\WINDOWS\system32\vmuidevices.dll
2015-09-10 11:53:33 ----A---- C:\WINDOWS\system32\VmEmulatedNic.dll
2015-09-10 11:53:32 ----A---- C:\WINDOWS\system32\vmbusvdev.dll
2015-09-10 11:53:30 ----A---- C:\WINDOWS\system32\vmicvdev.dll
2015-09-10 11:53:29 ----A---- C:\WINDOWS\system32\vmwpmgr.dll
2015-09-10 11:53:29 ----A---- C:\WINDOWS\system32\vmemulateddevices.dll
2015-09-10 11:53:28 ----A---- C:\WINDOWS\system32\vmdebug.dll
2015-09-10 11:53:26 ----A---- C:\WINDOWS\system32\vmconnect.exe
2015-09-10 11:53:26 ----A---- C:\WINDOWS\system32\virtmgmt.msc
2015-09-10 11:53:25 ----A---- C:\WINDOWS\system32\vmsynthstor.dll
2015-09-10 11:53:24 ----A---- C:\WINDOWS\system32\HyperVSysprepProvider.dll
2015-09-10 11:53:23 ----A---- C:\WINDOWS\system32\vmsynthfcvdev.dll
2015-09-10 11:53:22 ----A---- C:\WINDOWS\system32\TpmEngUM.dll
2015-09-10 11:53:18 ----A---- C:\WINDOWS\system32\RemoteFileBrowse.dll
2015-09-10 11:53:17 ----A---- C:\WINDOWS\system32\rdp4vs.dll
2015-09-10 11:53:13 ----A---- C:\WINDOWS\system32\vmicrdv.dll
2015-09-10 11:53:11 ----A---- C:\WINDOWS\system32\vmsp.exe
2015-09-10 11:53:10 ----A---- C:\WINDOWS\system32\hvhostsvc.dll
2015-09-10 11:53:09 ----A---- C:\WINDOWS\system32\ActivationVdev.dll
2015-09-10 11:53:08 ----A---- C:\WINDOWS\system32\vmwpctrl.dll
2015-09-10 11:53:08 ----A---- C:\WINDOWS\system32\vmtpm.dll
2015-09-10 11:53:08 ----A---- C:\WINDOWS\system32\vmprox.dll
2015-09-10 11:53:08 ----A---- C:\WINDOWS\system32\vid.dll
2015-09-10 11:53:05 ----A---- C:\WINDOWS\system32\vmsynth3dvideo.dll
2015-09-10 11:53:05 ----A---- C:\WINDOWS\system32\synth3dvideoproxy.dll
2015-09-10 11:53:03 ----A---- C:\WINDOWS\system32\vmchipset.dll
2015-09-10 11:47:33 ----A---- C:\WINDOWS\SYSWOW64\appverif.exe
2015-09-10 11:47:33 ----A---- C:\WINDOWS\system32\microsoft.windows.softwarelogo.showdesktop.exe
2015-09-10 11:47:33 ----A---- C:\WINDOWS\system32\appverif.exe
2015-09-10 11:32:15 ----D---- C:\Program Files\Microsoft SQL Server
2015-09-10 11:31:49 ----D---- C:\Program Files (x86)\Windows Kits
2015-09-10 11:29:29 ----D---- C:\Program Files (x86)\Common Files
2015-09-10 11:19:39 ----RSD---- C:\WINDOWS\Fonts
2015-09-10 11:18:37 ----D---- C:\Program Files (x86)\Microsoft Visual Studio 12.0
2015-09-10 11:12:28 ----D---- C:\WINDOWS\SYSWOW64\1033
2015-09-10 11:10:59 ----A---- C:\WINDOWS\SYSWOW64\vsjitdebugger.exe
2015-09-10 11:10:52 ----D---- C:\Program Files (x86)\Microsoft Help Viewer
2015-09-10 11:07:55 ----D---- C:\WINDOWS\system32\1033
2015-09-10 11:07:08 ----D---- C:\Program Files (x86)\Microsoft SQL Server
2015-09-10 11:05:43 ----A---- C:\WINDOWS\SYSWOW64\vcamp140.dll
2015-09-10 11:04:23 ----D---- C:\Program Files\Common Files\microsoft shared
2015-09-10 11:03:17 ----D---- C:\WINDOWS\system32\drivers\UMDF
2015-09-10 11:03:11 ----SD---- C:\WINDOWS\system32\Microsoft
2015-09-10 11:03:06 ----A---- C:\WINDOWS\system32\vsjitdebugger.exe
2015-09-10 10:58:23 ----D---- C:\WINDOWS\SYSWOW64\inetsrv
2015-09-10 10:58:23 ----D---- C:\WINDOWS\system32\inetsrv
2015-09-10 10:58:23 ----D---- C:\inetpub
2015-09-09 23:16:51 ----D---- C:\WINDOWS\system32\appraiser
2015-09-09 23:16:50 ----D---- C:\WINDOWS\AppPatch
2015-09-09 23:16:50 ----D---- C:\Program Files\Windows Journal
2015-09-09 21:20:02 ----D---- C:\Users\Kratochvil\AppData\Roaming\CodeBlocks
2015-09-09 19:38:06 ----D---- C:\ProgramData\Microsoft Help
2015-09-09 19:37:49 ----A---- C:\WINDOWS\win.ini
2015-09-09 19:35:19 ----D---- C:\WINDOWS\system32\MRT
2015-09-09 19:27:58 ----A---- C:\WINDOWS\system32\MRT.exe
2015-09-09 10:41:20 ----D---- C:\WINDOWS\system32\catroot2
2015-09-07 18:52:14 ----D---- C:\Program Files\SUPERAntiSpyware
2015-09-06 19:52:23 ----D---- C:\Program Files (x86)\Google
2015-09-05 12:26:53 ----D---- C:\ProgramData\ManiaPlanet
2015-09-05 12:25:40 ----D---- C:\Program Files\SNIP (NOW PLAYING)
2015-09-04 20:22:25 ----D---- C:\Users\Kratochvil\AppData\Roaming\Mozilla
2015-09-04 20:01:57 ----D---- C:\WINDOWS\SoftwareDistribution
2015-09-04 19:42:16 ----DC---- C:\WINDOWS\Panther
2015-09-03 13:52:03 ----A---- C:\WINDOWS\SYSWOW64\guard32.dll
2015-09-03 13:52:00 ----A---- C:\WINDOWS\system32\guard64.dll
2015-09-02 14:09:56 ----D---- C:\WINDOWS\system32\oobe
2015-09-02 12:42:15 ----D---- C:\Program Files (x86)\Winamp
2015-08-25 14:51:03 ----D---- C:\WINDOWS\SYSWOW64\en-US
2015-08-25 14:17:14 ----D---- C:\Program Files (x86)\Rockstar Games
2015-08-25 14:17:08 ----D---- C:\Program Files\Rockstar Games
2015-08-22 17:11:54 ----HD---- C:\Program Files (x86)\Temp
2015-08-22 17:11:22 ----D---- C:\WINDOWS\SYSWOW64\RTCOM
2015-08-21 14:07:36 ----A---- C:\WINDOWS\system32\xrhk1ausb.dll
2015-08-21 14:07:35 ----A---- C:\WINDOWS\system32\xrhk1alm.dll
2015-08-21 14:06:33 ----A---- C:\WINDOWS\system32\xrsk1aimghelper.dll
2015-08-21 14:06:33 ----A---- C:\WINDOWS\system32\xrsk1aimgfilter.dll
2015-08-21 14:06:33 ----A---- C:\WINDOWS\system32\xrqsreg.dll
2015-08-21 14:06:32 ----A---- C:\WINDOWS\system32\xrsk1awia.dll
2015-08-20 21:39:38 ----SHD---- C:\$Recycle.Bin
2015-08-19 18:50:47 ----D---- C:\WINDOWS\system32\WDI
2015-08-19 18:22:38 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2015-08-19 18:22:38 ----D---- C:\Program Files (x86)\LG Electronics
2015-08-19 18:20:33 ----D---- C:\WINDOWS\SYSWOW64\oobe
2015-08-19 18:20:33 ----D---- C:\WINDOWS\SYSWOW64\Dism
2015-08-19 18:20:33 ----D---- C:\WINDOWS\SYSWOW64\cs-CZ
2015-08-19 18:20:20 ----D---- C:\WINDOWS\system32\WinBioPlugIns
2015-08-19 18:20:20 ----D---- C:\WINDOWS\system32\SystemResetPlatform
2015-08-19 18:20:20 ----D---- C:\WINDOWS\system32\Dism
2015-08-19 18:20:20 ----D---- C:\WINDOWS\system32\Boot
2015-08-19 18:20:12 ----RD---- C:\WINDOWS\PurchaseDialog
2015-08-19 18:20:12 ----D---- C:\WINDOWS\Provisioning
2015-08-19 18:20:11 ----RD---- C:\WINDOWS\ImmersiveControlPanel
2015-08-19 18:20:11 ----RD---- C:\WINDOWS\DevicesFlow
2015-08-19 18:20:10 ----D---- C:\Program Files (x86)\Internet Explorer
2015-08-19 18:20:09 ----D---- C:\Program Files\Internet Explorer

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 AVPCIFilter;@oem5.inf,%AVPCIFilter.SvcDesc%;Avatron PCI Bus Device Filter; C:\WINDOWS\System32\drivers\AVPCIFilter.sys [2013-12-04 36344]
R0 JRAID;JRAID; C:\WINDOWS\System32\drivers\jraid.sys [2010-11-25 120408]
R0 PxHlpa64;PxHlpa64; C:\WINDOWS\System32\Drivers\PxHlpa64.sys [2011-03-04 55856]
R0 speedfan;speedfan; C:\Windows\SysWOW64\speedfan.sys [2011-03-18 29592]
R1 cmderd;COMODO Internet Security Eradication Driver; C:\WINDOWS\System32\DRIVERS\cmderd.sys [2015-08-05 21720]
R1 cmdGuard;COMODO Internet Security Sandbox Driver; C:\WINDOWS\system32\DRIVERS\cmdguard.sys [2015-08-05 827632]
R1 cmdhlp;COMODO Internet Security Helper Driver; C:\WINDOWS\system32\DRIVERS\cmdhlp.sys [2015-08-05 35056]
R1 FileCrypt;@%systemroot%\system32\drivers\filecrypt.sys,-100; C:\WINDOWS\system32\drivers\filecrypt.sys [2015-07-10 83968]
R1 GpuEnergyDrv;@%SystemRoot%\system32\drivers\gpuenergydrv.sys,-100; C:\WINDOWS\System32\drivers\gpuenergydrv.sys [2015-07-10 8192]
R1 hvservice;@%SystemRoot%\system32\drivers\hvservice.sys,-16; C:\WINDOWS\system32\drivers\hvservice.sys [2015-09-10 70496]
R1 inspect;COMODO Internet Security Firewall Driver; C:\WINDOWS\system32\DRIVERS\inspect.sys [2015-08-05 127232]
R1 SASDIFSV;SASDIFSV; \??\C:\Program Files\SUPERAntiSpyware\SASDIFSV64.SYS [2011-07-22 14928]
R1 SASKUTIL;SASKUTIL; \??\C:\Program Files\SUPERAntiSpyware\SASKUTIL64.SYS [2011-07-12 12368]
R2 MMCSS;@%systemroot%\system32\drivers\mmcss.sys,-100; C:\WINDOWS\system32\drivers\mmcss.sys [2015-07-10 48128]
R2 storqosflt;@%SystemRoot%\System32\drivers\storqosflt.sys,-101; C:\WINDOWS\system32\drivers\storqosflt.sys [2015-07-10 61952]
R3 busenum;@oem38.inf,%SvcDesc%;SteelBusSvc; C:\WINDOWS\System32\drivers\SteelBus64.sys [2014-05-29 146944]
R3 hidkmdf;@oem76.inf,%hidkmdf.SVCDESC%;KMDF Driver; C:\WINDOWS\System32\drivers\hidkmdf.sys [2013-04-30 14136]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RTKVHD64.sys [2015-08-22 4496600]
R3 LADF_CaptureOnly;@oem37.inf,%GSeries_Capture_DisplayName%;LADF Capture Filter Driver; C:\WINDOWS\system32\DRIVERS\ladfGSCamd64.sys [2013-04-15 410008]
R3 LADF_RenderOnly;@oem37.inf,%GSeries_Render_DisplayName%;LADF Render Filter Driver; C:\WINDOWS\system32\DRIVERS\ladfGSRamd64.sys [2013-04-15 102808]
R3 lgbusenum;@oem28.inf,%LGBusEnum.SVCDESC%;Logitech GamePanel Virtual Bus Enumerator Driver; C:\WINDOWS\system32\drivers\LGBusEnum.sys [2009-11-24 22408]
R3 LGVirHid;@oem21.inf,%LGVirHid.SVCDESC%;Logitech Gamepanel Virtual HID Device Driver; C:\WINDOWS\system32\drivers\LGVirHid.sys [2015-08-14 16008]
R3 MEIx64;@oem117.inf,%HECI_SvcDesc%;Intel(R) Management Engine Interface ; C:\WINDOWS\System32\drivers\HECIx64.sys [2010-10-19 56344]
R3 MQAC;@mqutil.dll,-6101; C:\WINDOWS\system32\drivers\mqac.sys [2015-08-14 175104]
R3 NVHDA;@oem113.inf,%NVHDA.SvcDesc%;Service for NVIDIA High Definition Audio Driver; C:\WINDOWS\system32\drivers\nvhda64v.sys [2015-04-16 195912]
R3 nvlddmkm;nvlddmkm; C:\WINDOWS\system32\DRIVERS\nvlddmkm.sys [2015-08-14 11139216]
R3 nvvad_WaveExtensible;@oem77.inf,%nvvad_WaveExtensible.SvcDesc%;NVIDIA Virtual Audio Device (Wave Extensible) (WDM); C:\WINDOWS\system32\drivers\nvvad64v.sys [2014-03-31 40392]
R3 rt640x64;@rt640x64.inf,%rt640.Service.DispName%;Realtek RT640 NT Driver; C:\WINDOWS\System32\drivers\rt640x64.sys [2015-07-10 587264]
R3 SAlphamHid;@oem87.inf,%SvcDesc%;SteelHIDSvc; C:\WINDOWS\System32\drivers\SAlpham64.sys [2014-05-27 39168]
R3 SensorsSimulatorDriver;@oem41.inf,%WudfSensorsSimulatorDriverDisplayName%;UMDF Reflector service for SensorsSimulatorDriver; C:\WINDOWS\system32\DRIVERS\WUDFRd.sys [2015-07-10 214016]
R3 Synth3dVsp;Synth3dVsp; C:\WINDOWS\System32\drivers\synth3dvsp.sys [2015-09-10 101888]
S0 LSI_SAS2i;LSI_SAS2i; C:\WINDOWS\System32\drivers\lsi_sas2i.sys [2015-07-10 104800]
S0 LSI_SAS3i;LSI_SAS3i; C:\WINDOWS\System32\drivers\lsi_sas3i.sys [2015-07-10 99168]
S0 percsas2i;percsas2i; C:\WINDOWS\System32\drivers\percsas2i.sys [2015-07-10 58208]
S0 percsas3i;percsas3i; C:\WINDOWS\System32\drivers\percsas3i.sys [2015-07-10 58720]
S0 storufs;@storufs.inf,%UfsServiceDesc%;Microsoft Universal Flash Storage (UFS) Driver; C:\WINDOWS\System32\drivers\storufs.sys [2015-07-10 40288]
S3 AirDisplay;Air Display Support; C:\WINDOWS\system32\DRIVERS\AVVideoCard.sys [2013-12-04 15352]
S3 AirDisplayMirror;Air Display Mirror Support; C:\WINDOWS\system32\DRIVERS\AVVideoCardMirror.sys [2013-12-04 15352]
S3 asusgsb;ASUS Virtual Video Capture Device Driver; C:\WINDOWS\system32\drivers\asusgsb.sys [2009-02-17 17792]
S3 buttonconverter;@buttonconverter.inf,%btnconv.SvcDesc%;Service for Portable Device Control devices; C:\WINDOWS\System32\drivers\buttonconverter.sys [2015-07-10 32256]
S3 CapImg;@capimg.inf,%CapImgHid_Service%;HID driver for CapImg touch screen; C:\WINDOWS\System32\drivers\capimg.sys [2015-07-10 116736]
S3 dg_ssudbus;@oem33.inf,%ssud.Service.DeviceDesc%;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\WINDOWS\system32\DRIVERS\ssudbus.sys [2015-09-13 110488]
S3 epmntdrv;epmntdrv; \??\C:\WINDOWS\syswow64\epmntdrv.sys [2011-07-29 14216]
S3 ESLvnic1;ESLvnic Virtual Network 64 Bit; C:\WINDOWS\system32\DRIVERS\ESLvnic.sys [2012-01-24 25528]
S3 etdrv;etdrv; \??\C:\Windows\etdrv.sys [2011-11-27 25640]
S3 EuGdiDrv;EuGdiDrv; \??\C:\WINDOWS\syswow64\EuGdiDrv.sys [2011-07-29 8456]
S3 fcvsc;fcvsc; C:\WINDOWS\System32\drivers\fcvsc.sys [2015-07-10 31232]
S3 gdrv;gdrv; \??\C:\Windows\gdrv.sys [2011-11-27 25640]
S3 genericusbfn;@genericusbfn.inf,%genericusbfn.ServiceName%;Generic USB Function Class; C:\WINDOWS\System32\drivers\genericusbfn.sys [2015-07-10 20992]
S3 GVTDrv64;GVTDrv64; \??\C:\Windows\GVTDrv64.sys [2011-11-27 30528]
S3 hamachi;Hamachi Network Interface; C:\WINDOWS\system32\DRIVERS\hamachi.sys [2012-01-21 33344]
S3 hidinterrupt;@hidinterrupt.inf,%HID.SvcDesc%;Common Driver for HID Buttons implemented with interrupts; C:\WINDOWS\System32\drivers\hidinterrupt.sys [2015-07-10 50016]
S3 HTCAND64;HTC Device Driver; C:\WINDOWS\System32\Drivers\ANDROIDUSB.sys [2009-11-02 33736]
S3 ibbus;@mlx4_bus.inf,%Ibbus.ServiceDesc%;Mellanox InfiniBand Bus/AL (Filter Driver); C:\WINDOWS\System32\drivers\ibbus.sys [2015-07-10 424800]
S3 iDispService;iDispService; C:\WINDOWS\system32\DRIVERS\idisplayminiport.sys [2012-08-31 14248]
S3 IoQos;@%SystemRoot%\system32\drivers\ioqos.sys,-100; C:\WINDOWS\system32\drivers\ioqos.sys [2015-07-10 26624]
S3 lunparser;@%systemroot%\system32\drivers\lunparser.sys,-10010; C:\WINDOWS\system32\drivers\lunparser.sys [2015-09-10 20992]
S3 mlx4_bus;@mlx4_bus.inf,%MLX4BUS.ServiceDesc%;Mellanox ConnectX Bus Enumerator; C:\WINDOWS\System32\drivers\mlx4_bus.sys [2015-07-10 705376]
S3 Mo3Fltr;MMO Mouse; C:\WINDOWS\system32\drivers\Mo3Fltr.sys [2010-08-11 12800]
S3 ndfltr;@mlx4_bus.inf,%ndfltr.ServiceDesc%;NetworkDirect Service; C:\WINDOWS\System32\drivers\ndfltr.sys [2015-07-10 76128]
S3 NVFLASH;NVFLASH; \??\C:\Windows\system32\drivers\nvflash.sys [2013-04-19 15648]
S3 passthruparser;@%systemroot%\system32\drivers\passthruparser.sys,-10010; C:\WINDOWS\system32\drivers\passthruparser.sys [2015-09-10 22528]
S3 pvhdparser;@%systemroot%\system32\drivers\pvhdparser.sys,-10010; C:\WINDOWS\system32\drivers\pvhdparser.sys [2015-09-10 49152]
S3 ReFSv1;ReFSv1; C:\WINDOWS\system32\drivers\ReFSv1.sys [2015-08-16 934752]
S3 ssudmdm;@oem69.inf,%ssud.Service.Name%;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.); C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [2015-09-13 206104]
S3 tap0901;TAP-Win32 Adapter V9; C:\WINDOWS\system32\DRIVERS\tap0901.sys [2009-11-20 31232]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 !SASCORE;SAS Core Service; C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE [2015-09-07 172344]
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2013-09-03 65640]
R2 AppHostSvc;@%windir%\system32\inetsrv\iisres.dll,-30011; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
R2 AVerRECentral;AVerRECentral; C:\Program Files (x86)\Common Files\AVerMedia\Service\AVerRECentral.exe [2014-06-25 373248]
R2 AVerUpdateServer;AVerUpdateServer; C:\Program Files (x86)\AVerMedia\AVerUpdate\AVerUpdateServer.exe [2011-10-31 167936]
R2 Bonjour Service;Xamarin Bonjour Service; C:\Program Files (x86)\Xamarin\Bonjour\mDNSResponder.exe [2015-09-10 384512]
R2 ClickToRunSvc;Služba Microsoft Office ClickToRun; C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe [2015-09-15 2768472]
R2 CmdAgent;COMODO Internet Security Helper Service; C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe [2015-09-15 5542472]
R2 CoreMessagingRegistrar;@%SystemRoot%\system32\coremessaging.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
R2 DiagTrack;@%SystemRoot%\system32\diagtrack.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]
R2 HvHost;@%SystemRoot%\system32\hvhostsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
R2 IpOverUsbSvc;Windows Phone IP over USB Transport (IpOverUsbSvc); C:\Program Files (x86)\Common Files\Microsoft Shared\Phone Tools\CoreCon\11.0\bin\IpOverUsbSvc.exe [2015-09-10 21744]
R2 MSMQ;@mqutil.dll,-6102; C:\WINDOWS\system32\mqsvc.exe [2015-08-14 26112]
R2 NvNetworkService;NVIDIA Network Service; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [2014-04-30 1617696]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2015-07-13 937616]
R2 OneSyncSvc_Session2;Hostitel synchronizace_Session2; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
R2 PnkBstrA;PnkBstrA; C:\Windows\system32\PnkBstrA.exe [2014-07-04 76152]
R2 SQLWriter;SQL Server VSS Writer; C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe [2015-09-10 134336]
R2 ss_conn_service;SAMSUNG Mobile Connectivity Service; C:\Program Files\SAMSUNG\USB Drivers\25_escape\conn\ss_conn_service.exe [2015-09-13 743688]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2015-07-13 410768]
R2 TeamViewer;TeamViewer 10; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [2015-08-07 5611280]
R3 ClipSVC;@%SystemRoot%\system32\ClipSVC.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]
R3 DsSvc;@%SystemRoot%\system32\dssvc.dll,-10003; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]
R3 LicenseManager;@%SystemRoot%\system32\licensemanagersvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]
R3 PimIndexMaintenanceSvc_Session2;Data kontaktů_Session2; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
R3 StateRepository;@%SystemRoot%\system32\windows.staterepository.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
R3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2015-08-21 838336]
S2 dmwappushservice;@%SystemRoot%\system32\dmwappushsvc.dll,-200; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S2 DoSvc;@%systemroot%\system32\dosvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-27 144200]
S2 MapsBroker;@%SystemRoot%\System32\moshost.dll,-100; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]
S2 OneSyncSvc;@%SystemRoot%\system32\APHostRes.dll,-10002; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2015-06-25 327296]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-08-12 269000]
S3 AJRouter;@%SystemRoot%\system32\AJRouter.dll,-2; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S3 aspnet_state;@%SystemRoot%\Microsoft.NET\Framework64\v4.0.30319\aspnet_rc.dll,-1; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2015-07-10 50352]
S3 BEService;BattlEye Service; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [2014-01-18 49152]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]
S3 CDPSvc;@%SystemRoot%\system32\cdpsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S3 cmdvirth;COMODO Virtual Service Manager; C:\Program Files\COMODO\COMODO Internet Security\cmdvirth.exe [2015-08-05 2265792]
S3 DcpSvc;@%SystemRoot%\system32\dcpsvc.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]
S3 DevQueryBroker;@%SystemRoot%\system32\DevQueryBroker.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S3 diagnosticshub.standardcollector.service;@%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000; C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe [2015-07-10 27136]
S3 DmEnrollmentSvc;@%systemroot%\system32\Windows.Internal.Management.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S3 embeddedmode;@%SystemRoot%\system32\embeddedmodesvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]
S3 EntAppSvc;@EnterpriseAppMgmtSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2015-06-17 43696]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-27 144200]
S3 icssvc;@%SystemRoot%\System32\tetheringservice.dll,-4097; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files (x86)\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe [2004-10-22 73728]
S3 NetSetupSvc;@%SystemRoot%\system32\NetSetupSvc.dll,-3; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]
S3 NgcCtnrSvc;@%SystemRoot%\System32\NgcCtnrSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S3 NgcSvc;@%SystemRoot%\System32\ngcsvc.dll,-100; C:\WINDOWS\system32\lsass.exe [2015-07-10 56344]
S3 Origin Client Service;Origin Client Service; E:\Program Files\Origin\OriginClientService.exe [2015-09-16 2057736]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 ose64;Office 64 Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2012-12-08 178760]
S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2012-10-01 5132888]
S3 PimIndexMaintenanceSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-15001; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S3 RetailDemo;@%SystemRoot%\System32\RDXService.dll,-256; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]
S3 SensorDataService;@%SystemRoot%\system32\SensorDataService.exe,-101; C:\WINDOWS\System32\SensorDataService.exe [2015-08-16 1031680]
S3 SensorService;@%SystemRoot%\System32\sensorservice.dll,-1000; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S3 SmsRouter;@%SystemRoot%\System32\SmsRouterSvc.dll,-10001; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S3 SwitchBoard;SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
S3 Te.Service;Te.Service; C:\Program Files (x86)\Windows Kits\10\Testing\Runtimes\TAEF\Wex.Services.exe [2015-09-10 134656]
S4 NvStreamSvc;NVIDIA Streamer Service; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [2014-04-30 21007192]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118238
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Zasekaný systém po spuštění počítače

#7 Příspěvek od Rudy »

Stáhněte OTM: http://oldtimer.geekstogo.com/OTM.exe a uložte na plochu. Spusťte a do levého okna zkopírujte:
:files
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
C:\WINDOWS\system32\drivers\SET*.tmp

:commands
[Purity]
[Emptytemp]
[Emptyflash]
a klikněte na >MoveIt!<. Po skenu restartujte PC a dejte nový log RSIT.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

ivankrato
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 77
Registrován: 13 bře 2009 14:08

Re: Zasekaný systém po spuštění počítače

#8 Příspěvek od ivankrato »

Log z OTM:

All processes killed
========== FILES ==========
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job moved successfully.
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job moved successfully.
File/Folder C:\WINDOWS\system32\drivers\SET*.tmp not found.
========== COMMANDS ==========

[EMPTYTEMP]

User: All Users

User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
->Flash cache emptied: 56466 bytes

User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
->Flash cache emptied: 0 bytes

User: Default.migrated

User: DefaultAppPool
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
->Flash cache emptied: 56466 bytes

User: Kratochvil
->Temp folder emptied: 112426642 bytes
->Temporary Internet Files folder emptied: 54047271 bytes
->Java cache emptied: 18309677 bytes
->Google Chrome cache emptied: 277605197 bytes
->Flash cache emptied: 58125 bytes

User: Public

%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 1679720 bytes
%systemroot%\System32 .tmp files removed: 5 bytes
%systemroot%\System32 (64bit) .tmp files removed: 1510816 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 11113227 bytes
%systemroot%\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 0 bytes
RecycleBin emptied: 12142 bytes

Total Files Cleaned = 455,00 mb


[EMPTYFLASH]

User: All Users

User: Default
->Flash cache emptied: 0 bytes

User: Default User
->Flash cache emptied: 0 bytes

User: Default.migrated

User: DefaultAppPool
->Flash cache emptied: 0 bytes

User: Kratochvil
->Flash cache emptied: 0 bytes

User: Public

Total Flash Files Cleaned = 0,00 mb


OTM by OldTimer - Version 3.1.21.0 log created on 09182015_203700

Files moved on Reboot...
File C:\Users\Kratochvil\AppData\Local\Temp\etilqs_4LXuZu6Akrz2f5b not found!
File C:\Users\Kratochvil\AppData\Local\Temp\etilqs_VAoAyHkR2mkKOGb not found!
File C:\Users\Kratochvil\AppData\Local\Temp\JET2D99.tmp not found!
File move failed. C:\Users\Kratochvil\AppData\Local\Microsoft\Windows\INetCache\counters.dat scheduled to be moved on reboot.
C:\Users\Kratochvil\AppData\Local\Google\Chrome\User Data\Default\Cache\data_0 moved successfully.
C:\Users\Kratochvil\AppData\Local\Google\Chrome\User Data\Default\Cache\data_1 moved successfully.
C:\Users\Kratochvil\AppData\Local\Google\Chrome\User Data\Default\Cache\data_2 moved successfully.
C:\Users\Kratochvil\AppData\Local\Google\Chrome\User Data\Default\Cache\data_3 moved successfully.
C:\Users\Kratochvil\AppData\Local\Google\Chrome\User Data\Default\Cache\index moved successfully.
File C:\WINDOWS\temp\officeclicktorun.exe_c2ruidll(20150917235726AEC).log not found!
File C:\WINDOWS\temp\officeclicktorun.exe_streamserver(20150917235732AEC).log not found!
File move failed. C:\WINDOWS\temp\TimeInfo.txt scheduled to be moved on reboot.
C:\WINDOWS\temp\TRAMS-PC-20150917-2357.log moved successfully.
File move failed. C:\WINDOWS\temp\TrcInfo.txt scheduled to be moved on reboot.

Registry entries deleted on Reboot...


Log z RSIT:

Logfile of random's system information tool 1.10 (written by random/random)
Run by Trams at 2015-09-18 20:51:27
Microsoft Windows 10 Pro
System drive C: has 47 GB (32%) free of 150 GB
Total RAM: 8175 MB (68% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 20:51:30, on 18.09.2015
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.10240.16412)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\TeamViewer\TeamViewer.exe
C:\WINDOWS\SysWOW64\rundll32.exe
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Program Files (x86)\Common Files\Microsoft Shared\Ink\TabTip32.exe
K:\Program Files\Steam\Steam.exe
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Users\Kratochvil\AppData\Local\Microsoft\OneDrive\OneDrive.exe
K:\Program Files\Steam\bin\steamwebhelper.exe
C:\Program Files\trend micro\Trams.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local;127.0.0.1:9421;<local>
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=
O2 - BHO: ContributeBHO Class - {074C1DC5-9320-4A9A-947D-C042949C6216} - E:\Program Files\Adobe\Adobe Contribute CS5.1\Plugins\IEPlugin\contributeieplugin.dll
O2 - BHO: Skype for Business Click to Call BHO - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Microsoft Office\Office15\OCHelper.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_31\bin\ssv.dll
O2 - BHO: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll
O2 - BHO: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Microsoft Office\Office15\GROOVEEX.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_31\bin\jp2ssv.dll
O2 - BHO: SmartSelect - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll
O3 - Toolbar: Contribute Toolbar - {517BDDE4-E3A7-4570-B21E-2B52B6139FC7} - E:\Program Files\Adobe\Adobe Contribute CS5.1\Plugins\IEPlugin\contributeieplugin.dll
O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll
O4 - HKLM\..\Run: [JMB36X IDE Setup] C:\Windows\RaidTool\xInsIDE.exe
O4 - HKCU\..\Run: [Steam] "K:\Program Files\Steam\steam.exe" -silent
O4 - HKCU\..\Run: [SteelSeries Engine] C:\Program Files\SteelSeries\SteelSeries Engine\SteelSeriesEngine.exe
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [OneDrive] "C:\Users\Kratochvil\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
O4 - HKCU\..\RunOnce: [Uninstall C:\Users\Kratochvil\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64] C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Kratochvil\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64"
O4 - HKCU\..\RunOnce: [Uninstall C:\Users\Kratochvil\AppData\Local\Microsoft\OneDrive\17.3.5930.0814\amd64] C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Kratochvil\AppData\Local\Microsoft\OneDrive\17.3.5930.0814\amd64"
O4 - HKCU\..\RunOnce: [Uninstall C:\Users\Kratochvil\AppData\Local\Microsoft\OneDrive\17.3.5907.0716_2\amd64] C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Kratochvil\AppData\Local\Microsoft\OneDrive\17.3.5907.0716_2\amd64"
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O4 - Startup: Odeslat do OneNote.lnk = C:\Program Files\Microsoft Office 15\root\office15\ONENOTEM.EXE
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\Program Files\Microsoft Office\Office15\EXCEL.EXE/3000
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\Program Files (x86)\Microsoft Office\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Se&nd to OneNote - res://C:\Program Files\Microsoft Office 15\Root\Office15\ONBttnIE.dll/105
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Microsoft Office\Office15\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Microsoft Office\Office15\ONBttnIE.dll
O9 - Extra button: PrivDog - {2F5C139F-79BD-4C84-A95A-E7140525BC55} - (no file)
O9 - Extra button: Skype for Business Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Microsoft Office\Office15\OCHelper.dll
O9 - Extra 'Tools' menuitem: Skype for Business Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Microsoft Office\Office15\OCHelper.dll
O9 - Extra button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - Trusted Zone: *.clonewarsadventures.com
O15 - Trusted Zone: *.freerealms.com
O15 - Trusted Zone: *.soe.com
O15 - Trusted Zone: *.sony.com
O17 - HKLM\System\CCS\Services\Tcpip\..\{1c59516f-dd8a-4491-bfef-7b892907cde5}: NameServer = 8.8.8.8,8.8.4.4
O17 - HKLM\System\CS1\Services\Tcpip\..\{1c59516f-dd8a-4491-bfef-7b892907cde5}: NameServer = 8.8.8.8,8.8.4.4
O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Microsoft Office\Office15\MSOSB.DLL
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O23 - Service: SAS Core Service (!SASCORE) - SUPERAntiSpyware.com - C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: AVerRECentral - AVerMedia TECHNOLOGIES, Inc. - C:\Program Files (x86)\Common Files\AVerMedia\Service\AVerRECentral.exe
O23 - Service: AVerUpdateServer - AVerMedia TECHNOLOGIES, Inc. - C:\Program Files (x86)\AVerMedia\AVerUpdate\AVerUpdateServer.exe
O23 - Service: BattlEye Service (BEService) - Unknown owner - C:\Program Files (x86)\Common Files\BattlEye\BEService.exe
O23 - Service: Xamarin Bonjour Service (Bonjour Service) - Apple Inc. - C:\Program Files (x86)\Xamarin\Bonjour\mDNSResponder.exe
O23 - Service: COMODO Internet Security Helper Service (CmdAgent) - COMODO - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
O23 - Service: COMODO Virtual Service Manager (cmdvirth) - COMODO - C:\Program Files\COMODO\COMODO Internet Security\cmdvirth.exe
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @mqutil.dll,-6102 (MSMQ) - Unknown owner - C:\WINDOWS\system32\mqsvc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\System32\ngcsvc.dll,-100 (NgcSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: Origin Client Service - Electronic Arts - E:\Program Files\Origin\OriginClientService.exe
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: SAMSUNG Mobile Connectivity Service (ss_conn_service) - DEVGURU Co., LTD. - C:\Program Files\SAMSUNG\USB Drivers\25_escape\conn\ss_conn_service.exe
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: SwitchBoard - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O23 - Service: TeamViewer 10 (TeamViewer) - TeamViewer GmbH - C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vmms.exe,-10 (vmms) - Unknown owner - C:\WINDOWS\system32\vmms.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: Wacom Professional Service (WTabletServicePro) - Wacom Technology, Corp. - C:\Program Files\Tablet\Wacom\WTabletServicePro.exe

--
End of file - 14008 bytes

======Listing Processes======








C:\WINDOWS\system32\lsass.exe
winlogon.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\System32\svchost.exe -k NetworkService
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted
"dwm.exe"
"C:\Windows\system32\nvvsvc.exe"
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
"C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe"
C:\WINDOWS\system32\svchost.exe -k LocalService
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-2c19e95a-88b2-46bd-ad21-3c8adcaed897 -SystemEventPortName:HostProcess-aa9d83a6-ada3-40c2-9260-3e6b3df3808a -IoCancelEventPortName:HostProcess-8a0140cb-ed8a-4aa9-b2aa-e3f5bf6d1bbc -NonStateChangingEventPortName:HostProcess-ca2a8375-e98d-48ba-a78a-a5c9741346b0 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:60bd6d9a-fae7-4d9d-a517-2f135481d356 -DeviceGroupId:WudfDefaultDevicePool
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\WINDOWS\system32\nvvsvc.exe -session -first
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork

"C:\Program Files\Tablet\Wacom\WTabletServicePro.exe"
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe -k apphost
C:\WINDOWS\System32\svchost.exe -k utcsvc
"C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE"
dashost.exe {166582e2-1b62-4aa9-97f9b3e110eec2a1}
C:\WINDOWS\system32\svchost.exe -k imgsvc
"C:\Program Files (x86)\Common Files\Microsoft Shared\Phone Tools\CoreCon\11.0\bin\IpOverUsbSvc.exe"
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files (x86)\AVerMedia\AVerUpdate\AVerUpdateServer.exe"
"C:\Program Files (x86)\Xamarin\Bonjour\mDNSResponder.exe"
C:\Windows\system32\PnkBstrA.exe
C:\WINDOWS\system32\mqsvc.exe
"C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe"
C:\WINDOWS\system32\svchost.exe -k appmodel
C:\WINDOWS\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\WINDOWS\system32\vmms.exe
"C:\Program Files\SAMSUNG\USB Drivers\25_escape\conn\ss_conn_service.exe"
"C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe"
"C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe"
"C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe" /service
"C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe"
"C:\Program Files (x86)\Common Files\AVerMedia\Service\AVerRECentral.exe"
C:\WINDOWS\System32\svchost.exe -k LocalServicePeerNet
taskeng.exe {37B20E82-2934-4B83-AE62-9268F89CB8E7}
sihost.exe
"C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /c

C:\Windows\System32\RuntimeBroker.exe -Embedding
C:\WINDOWS\Explorer.EXE
"C:\Program Files (x86)\Google\Update\1.3.28.15\GoogleCrashHandler.exe"
"C:\Program Files (x86)\TeamViewer\TeamViewer.exe"
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\system32\DllHost.exe /Processid:{30D49246-D217-465F-B00B-AC9DDD652EB7}
"C:\Program Files\Tablet\Wacom\Wacom_TabletUser.exe"
"C:\Program Files\Tablet\Wacom\WacomHost.exe" "C:\Program Files\Tablet\Wacom\Wacom_Tablet.exe" au
"C:\Program Files\Tablet\Wacom\Wacom_Tablet.exe" au
"C:\Program Files\Tablet\Wacom\Wacom_TouchUser.exe"
taskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E}
C:\WINDOWS\SysWOW64\rundll32.exe "E:\Program Files\Garena\Garena Plus\ggspawn.dll",rundll_entry -p 0
"C:\Program Files\COMODO\COMODO Internet Security\cistray.exe"
"C:\Program Files (x86)\TeamViewer\tv_w32.exe" --action hooks --log C:\Program Files (x86)\TeamViewer\TeamViewer10_Logfile.log
"C:\Program Files (x86)\TeamViewer\tv_x64.exe" --action hooks --log C:\Program Files (x86)\TeamViewer\TeamViewer10_Logfile.log
"C:\Program Files (x86)\Google\Update\1.3.28.15\GoogleCrashHandler64.exe"
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
"C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
"C:\WINDOWS\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe" -ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca
"C:\Program Files\COMODO\COMODO Internet Security\cavwp.exe" /ModeAvMonitor -Embedding
"C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
/QuitInfo:0000000000001014;0000000000001010;
/loadhooks /Parent:00000000000004b8
"C:\Program Files\Logitech Gaming Software\LCore.exe" /minimized
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"K:\Program Files\Steam\Steam.exe" -silent
"C:\Program Files\SteelSeries\SteelSeries Engine\SteelSeriesEngine.exe"
"C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
"C:\Users\Kratochvil\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
"C:\Program Files\Microsoft Office 15\root\office15\ONENOTEM.EXE" /tsr
"K:\Program Files\Steam\bin\steamwebhelper.exe" -cefhost -cachedir "C:\Users\Kratochvil\AppData\Local\Steam\htmlcache" -steampid 6584 -buildid 1440016726 -steamid "0" --disable-gpu-compositing --disable-gpu --process-per-tab --enable-system-flash --disable-spell-checking --enable-direct-write
"C:\Program Files (x86)\Common Files\Steam\SteamService.exe" /RunAsService
C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
"C:\Program Files\COMODO\COMODO Internet Security\cis.exe" --alertsUI
"C:\Program Files\Microsoft Office 15\Root\VFS\ProgramFilesCommonX64\Microsoft Shared\OFFICE15\CSISYNCCLIENT.EXE" "C:\Program Files\Microsoft Office 15\Root\VFS\ProgramFilesCommonX64\Microsoft Shared\OFFICE15\CSISYNCCLIENT.EXE" -Embedding
"C:\Program Files\Common Files\Microsoft Shared\Ink\InputPersonalization.exe"
C:\WINDOWS\system32\SettingSyncHost.exe -Embedding
"C:\Program Files\Microsoft Office 15\Root\Office15\MsoSync.exe"
C:\WINDOWS\system32\wbem\wmiprvse.exe
"c:\program files (x86)\teamviewer\TeamViewer_Desktop.exe" --IPCport 5939
"C:\Program Files (x86)\Google\Chrome\Application\45.0.2454.93\delegate_execute.exe" -Embedding
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\Users\Kratochvil\Desktop\RSITx64.exe"

======Scheduled tasks folder======

C:\WINDOWS\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre1.8.0_31\bin\ssv.dll [2015-02-06 551848]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre1.8.0_31\bin\jp2ssv.dll [2015-02-06 212904]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{074C1DC5-9320-4A9A-947D-C042949C6216}]
ContributeBHO Class - E:\Program Files\Adobe\Adobe Contribute CS5.1\Plugins\IEPlugin\contributeieplugin.dll [2011-03-19 164496]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Skype for Business Browser Helper - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Microsoft Office\Office15\OCHelper.dll [2015-08-04 153768]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_31\bin\ssv.dll [2015-02-06 460712]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE7CD045-E861-484f-8273-0445EE161910}]
Adobe PDF Conversion Toolbar Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2013-09-03 343424]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft SkyDrive Pro Browser Helper - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Microsoft Office\Office15\GROOVEEX.DLL [2015-08-12 1733240]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_31\bin\jp2ssv.dll [2015-02-06 172968]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F4971EE7-DAA0-4053-9964-665D8EE6A077}]
SmartSelect Class - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2013-09-03 343424]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{517BDDE4-E3A7-4570-B21E-2B52B6139FC7} - Contribute Toolbar - E:\Program Files\Adobe\Adobe Contribute CS5.1\Plugins\IEPlugin\contributeieplugin.dll [2011-03-19 164496]
{47833539-D0C5-4125-9FA8-0819E2EAAC93} - Adobe PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2013-09-03 343424]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"NvBackend"=C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2015-08-14 1795728]
"Launch LCore"=C:\Program Files\Logitech Gaming Software\LCore.exe [2014-07-28 10801944]
"COMODO Autostart {D5EFF3B3-E126-4AF6-BCE9-852A72129E10}"=C:\Program Files\COMODO\COMODO Internet Security\cistray.exe [2015-08-05 1427648]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2015-08-22 14021336]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Steam"=K:\Program Files\Steam\steam.exe [2015-08-21 2899136]
"SteelSeries Engine"=C:\Program Files\SteelSeries\SteelSeries Engine\SteelSeriesEngine.exe [2014-06-26 87040]
"Skype"=C:\Program Files (x86)\Skype\Phone\Skype.exe [2015-07-28 53661824]
"OneDrive"=C:\Users\Kratochvil\AppData\Local\Microsoft\OneDrive\OneDrive.exe [2015-09-12 405584]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"Uninstall C:\Users\Kratochvil\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64"=C:\WINDOWS\system32\cmd.exe [2015-07-10 232448]
"Uninstall C:\Users\Kratochvil\AppData\Local\Microsoft\OneDrive\17.3.5930.0814\amd64"=C:\WINDOWS\system32\cmd.exe [2015-07-10 232448]
"Uninstall C:\Users\Kratochvil\AppData\Local\Microsoft\OneDrive\17.3.5907.0716_2\amd64"=C:\WINDOWS\system32\cmd.exe [2015-07-10 232448]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Acrobat Assistant 8.0]
E:\Program Files\Adobe\Acrobat 10.0\Acrobat\Acrotray.exe [2013-09-03 840568]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Acrobat Speed Launcher]
E:\Program Files\Adobe\Acrobat 10.0\Acrobat\Acrobat_sl.exe [2013-09-03 41336]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-04-04 958576]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AdobeAAMUpdater-1.0]
C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2011-03-30 499608]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AdobeCS5.5ServiceManager]
C:\Program Files (x86)\Common Files\Adobe\CS5.5ServiceManager\CS5.5ServiceManager.exe [2011-01-12 1523360]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Battle.net]
C:\Program Files (x86)\Battle.net\Battle.net Launcher.exe [2015-09-04 2924080]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DivXMediaServer]
C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ShadowPlay]
C:\Windows\system32\nvspcap64.dll [2014-04-30 1225920]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SwitchBoard]
C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WinampAgent]
C:\Program Files (x86)\Winamp\winampa.exe [2015-09-02 85600]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Xvid]
C:\Program Files (x86)\Xvid\CheckUpdate.exe [2011-01-17 8192]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"JMB36X IDE Setup"=C:\Windows\RaidTool\xInsIDE.exe [2010-09-07 43608]
""= []

C:\Users\Kratochvil\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Odeslat do OneNote.lnk - C:\Program Files\Microsoft Office 15\root\office15\ONENOTEM.EXE

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"=" "

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\!SASCORE]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TileDataModelSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\!SASCORE]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TileDataModelSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DisableTaskMgr"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DSCAutomationHostEnabled"=2
"SoftwareSASGeneration"=1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"aux1"=wdmaud.drv
"VIDC.FPS1"=frapsv64.dll
"vidc.XVID"=xvidvfw.dll
"vidc.xtor"=DxtoryCodec64.dll
"VIDC.XFR1"=xfcodec64.dll
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - "E:\Program Files\Adobe\Adobe Dreamweaver CS5.5\Dreamweaver.exe","%1"

======List of files/folders created in the last 1 month======

2015-09-18 20:37:00 ----D---- C:\_OTM
2015-09-17 23:37:18 ----D---- C:\AdwCleaner
2015-09-17 20:46:57 ----D---- C:\rsit
2015-09-17 20:46:57 ----D---- C:\Program Files\trend micro
2015-09-14 16:27:30 ----A---- C:\WINDOWS\system32\vccorlib110.dll
2015-09-14 16:27:30 ----A---- C:\WINDOWS\system32\LogiLDA.DLL
2015-09-14 16:27:30 ----A---- C:\WINDOWS\system32\LdaCx2.dll
2015-09-14 00:27:05 ----D---- C:\usb_driver
2015-09-14 00:27:05 ----A---- C:\WINDOWS\system32\WinUSBCoInstaller2.dll
2015-09-13 23:52:45 ----A---- C:\WINDOWS\system32\drivers\ssudmdm.sys
2015-09-13 23:52:45 ----A---- C:\WINDOWS\system32\drivers\ssudbus.sys
2015-09-13 23:52:30 ----AD---- C:\adb
2015-09-13 23:46:43 ----D---- C:\WINDOWS\LastGood.Tmp
2015-09-13 23:37:42 ----A---- C:\WINDOWS\system32\drivers\SETA725.tmp
2015-09-13 23:37:42 ----A---- C:\WINDOWS\system32\drivers\SET6BB3.tmp
2015-09-13 22:55:18 ----A---- C:\WINDOWS\system32\WdfCoInstaller01007.dll
2015-09-12 13:19:57 ----D---- C:\Program Files (x86)\HomeDev
2015-09-12 12:47:10 ----D---- C:\Users\Kratochvil\AppData\Roaming\LockAP
2015-09-10 13:06:18 ----D---- C:\Program Files (x86)\BlueJ
2015-09-10 12:48:04 ----D---- C:\Program Files\Hyper-V
2015-09-10 12:07:42 ----D---- C:\Program Files (x86)\Xamarin
2015-09-10 12:07:15 ----D---- C:\ProgramData\Monodoc
2015-09-10 12:03:03 ----D---- C:\Program Files (x86)\Git
2015-09-10 12:02:43 ----D---- C:\Program Files (x86)\nodejs
2015-09-10 11:52:23 ----D---- C:\Program Files (x86)\Microsoft Emulator Manager
2015-09-10 11:52:19 ----D---- C:\Program Files (x86)\Microsoft Visual Studio Emulator for Android
2015-09-10 11:49:50 ----D---- C:\Program Files (x86)\Microsoft Visual Studio 14.0
2015-09-10 11:47:33 ----D---- C:\Program Files\Application Verifier
2015-09-10 11:47:33 ----D---- C:\Program Files (x86)\Application Verifier
2015-09-10 11:47:18 ----D---- C:\ProgramData\Windows App Certification Kit
2015-09-10 11:45:16 ----D---- C:\Program Files (x86)\AppInsights
2015-09-10 11:44:57 ----D---- C:\ProgramData\NuGet
2015-09-10 11:44:57 ----D---- C:\Program Files (x86)\NuGet
2015-09-10 11:29:22 ----D---- C:\ProgramData\PreEmptive Solutions
2015-09-10 11:29:17 ----D---- C:\Program Files (x86)\ShellDir
2015-09-10 11:28:37 ----D---- C:\Program Files (x86)\Microsoft ASP.NET
2015-09-10 11:28:02 ----D---- C:\ProgramData\Microsoft DNX
2015-09-10 11:28:02 ----D---- C:\Program Files\Microsoft DNX
2015-09-10 11:23:37 ----D---- C:\Program Files (x86)\Microsoft Web Tools
2015-09-10 11:22:56 ----D---- C:\Program Files\IIS Express
2015-09-10 11:22:56 ----D---- C:\Program Files (x86)\IIS Express
2015-09-10 11:22:27 ----D---- C:\Program Files (x86)\Microsoft Office365 Tools
2015-09-10 11:21:56 ----D---- C:\Program Files (x86)\Microsoft WCF Data Services
2015-09-10 11:21:47 ----D---- C:\Program Files\IIS
2015-09-10 11:21:47 ----D---- C:\Program Files (x86)\IIS
2015-09-10 11:19:18 ----D---- C:\Program Files (x86)\Windows Phone Silverlight Kits
2015-09-10 11:19:03 ----D---- C:\Program Files (x86)\Windows Phone Kits
2015-09-10 11:19:03 ----D---- C:\Program Files (x86)\Microsoft XDE
2015-09-10 11:17:19 ----D---- C:\Program Files (x86)\Microsoft Visual Studio 11.0
2015-09-10 11:14:10 ----D---- C:\Program Files\Microsoft Visual Studio 12.0
2015-09-10 11:14:04 ----D---- C:\Program Files (x86)\HTML Help Workshop
2015-09-10 11:10:52 ----D---- C:\WINDOWS\symbols
2015-09-10 11:08:32 ----A---- C:\WINDOWS\SYSWOW64\VsGraphicsRemoteEngine.exe
2015-09-10 11:08:32 ----A---- C:\WINDOWS\SYSWOW64\VsGraphicsProxyStub.dll
2015-09-10 11:08:32 ----A---- C:\WINDOWS\SYSWOW64\VsGraphicsExperiment.dll
2015-09-10 11:08:32 ----A---- C:\WINDOWS\SYSWOW64\VsGraphicsDesktopEngine.exe
2015-09-10 11:08:32 ----A---- C:\WINDOWS\SYSWOW64\VsGraphicsCapture.dll
2015-09-10 11:08:32 ----A---- C:\WINDOWS\SYSWOW64\VSD3DWARPDebug.dll
2015-09-10 11:08:32 ----A---- C:\WINDOWS\SYSWOW64\VSD3DWARP12Debug.dll
2015-09-10 11:08:32 ----A---- C:\WINDOWS\SYSWOW64\perf_gputiming.dll
2015-09-10 11:08:32 ----A---- C:\WINDOWS\SYSWOW64\DXToolsReporting.dll
2015-09-10 11:08:32 ----A---- C:\WINDOWS\SYSWOW64\DxToolsReportGenerator.dll
2015-09-10 11:08:32 ----A---- C:\WINDOWS\SYSWOW64\DXToolsOfflineAnalysis.dll
2015-09-10 11:08:32 ----A---- C:\WINDOWS\SYSWOW64\DXToolsMonitor.dll
2015-09-10 11:08:32 ----A---- C:\WINDOWS\SYSWOW64\DXGIDebug.dll
2015-09-10 11:08:32 ----A---- C:\WINDOWS\SYSWOW64\DXCpl.exe
2015-09-10 11:08:32 ----A---- C:\WINDOWS\SYSWOW64\DXCaptureReplay.dll
2015-09-10 11:08:32 ----A---- C:\WINDOWS\SYSWOW64\DXCap.exe
2015-09-10 11:08:32 ----A---- C:\WINDOWS\SYSWOW64\d3d12warp.dll
2015-09-10 11:08:32 ----A---- C:\WINDOWS\SYSWOW64\d3d12SDKLayers.dll
2015-09-10 11:08:32 ----A---- C:\WINDOWS\SYSWOW64\d3d11_3SDKLayers.dll
2015-09-10 11:08:32 ----A---- C:\WINDOWS\SYSWOW64\d2d1debug3.dll
2015-09-10 11:08:32 ----A---- C:\WINDOWS\system32\VsGraphicsRemoteEngine.exe
2015-09-10 11:08:32 ----A---- C:\WINDOWS\system32\VsGraphicsExperiment.dll
2015-09-10 11:08:32 ----A---- C:\WINDOWS\system32\VsGraphicsCapture.dll
2015-09-10 11:08:32 ----A---- C:\WINDOWS\system32\VSD3DWARPDebug.dll
2015-09-10 11:08:32 ----A---- C:\WINDOWS\system32\DXToolsReporting.dll
2015-09-10 11:08:32 ----A---- C:\WINDOWS\system32\DXToolsOfflineAnalysis.dll
2015-09-10 11:08:32 ----A---- C:\WINDOWS\system32\DXToolsMonitor.dll
2015-09-10 11:08:32 ----A---- C:\WINDOWS\system32\DXGIDebug.dll
2015-09-10 11:08:32 ----A---- C:\WINDOWS\system32\DXCaptureReplay.dll
2015-09-10 11:08:32 ----A---- C:\WINDOWS\system32\DXCap.exe
2015-09-10 11:08:32 ----A---- C:\WINDOWS\system32\d3d12warp.dll
2015-09-10 11:08:32 ----A---- C:\WINDOWS\system32\d3d12SDKLayers.dll
2015-09-10 11:08:31 ----A---- C:\WINDOWS\system32\VsGraphicsProxyStub.dll
2015-09-10 11:08:31 ----A---- C:\WINDOWS\system32\VsGraphicsDesktopEngine.exe
2015-09-10 11:08:31 ----A---- C:\WINDOWS\system32\VSD3DWARP12Debug.dll
2015-09-10 11:08:31 ----A---- C:\WINDOWS\system32\perf_gputiming.dll
2015-09-10 11:08:31 ----A---- C:\WINDOWS\system32\DxToolsReportGenerator.dll
2015-09-10 11:08:31 ----A---- C:\WINDOWS\system32\DXCpl.exe
2015-09-10 11:08:31 ----A---- C:\WINDOWS\system32\d3d11_3SDKLayers.dll
2015-09-10 11:08:31 ----A---- C:\WINDOWS\system32\d2d1debug3.dll
2015-09-09 23:10:15 ----D---- C:\ProgramData\VsTelemetry
2015-09-09 23:09:10 ----D---- C:\Program Files\Microsoft Mathematics
2015-09-09 10:45:47 ----A---- C:\WINDOWS\SYSWOW64\edgehtml.dll
2015-09-09 10:45:47 ----A---- C:\WINDOWS\system32\edgehtml.dll
2015-09-09 10:45:46 ----A---- C:\WINDOWS\system32\mshtml.dll
2015-09-09 10:45:43 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2015-09-09 10:45:42 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2015-09-09 10:45:42 ----A---- C:\WINDOWS\system32\win32kfull.sys
2015-09-09 10:45:42 ----A---- C:\WINDOWS\system32\ieframe.dll
2015-09-09 10:45:41 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Immersive.dll
2015-09-09 10:45:41 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2015-09-09 10:45:41 ----A---- C:\WINDOWS\SYSWOW64\authui.dll
2015-09-09 10:45:41 ----A---- C:\WINDOWS\system32\Windows.UI.Immersive.dll
2015-09-09 10:45:41 ----A---- C:\WINDOWS\system32\authui.dll
2015-09-09 10:45:40 ----A---- C:\WINDOWS\system32\win32kbase.sys
2015-09-09 10:45:40 ----A---- C:\WINDOWS\system32\jscript.dll
2015-09-09 10:45:39 ----A---- C:\WINDOWS\system32\SettingSync.dll
2015-09-09 10:45:39 ----A---- C:\WINDOWS\system32\iertutil.dll
2015-09-09 10:45:38 ----A---- C:\WINDOWS\SYSWOW64\vbscript.dll
2015-09-09 10:45:38 ----A---- C:\WINDOWS\SYSWOW64\shacct.dll
2015-09-09 10:45:38 ----A---- C:\WINDOWS\SYSWOW64\SettingSync.dll
2015-09-09 10:45:38 ----A---- C:\WINDOWS\SYSWOW64\jscript.dll
2015-09-09 10:45:38 ----A---- C:\WINDOWS\SYSWOW64\fontdrvhost.exe
2015-09-09 10:45:38 ----A---- C:\WINDOWS\SYSWOW64\atmlib.dll
2015-09-09 10:45:38 ----A---- C:\WINDOWS\SYSWOW64\atmfd.dll
2015-09-09 10:45:38 ----A---- C:\WINDOWS\system32\winlogon.exe
2015-09-09 10:45:38 ----A---- C:\WINDOWS\system32\Windows.UI.PicturePassword.dll
2015-09-09 10:45:38 ----A---- C:\WINDOWS\system32\vbscript.dll
2015-09-09 10:45:38 ----A---- C:\WINDOWS\system32\schedsvc.dll
2015-09-09 10:45:38 ----A---- C:\WINDOWS\system32\shacct.dll
2015-09-09 10:45:38 ----A---- C:\WINDOWS\system32\fontdrvhost.exe
2015-09-09 10:45:38 ----A---- C:\WINDOWS\system32\drivers\vmswitch.sys
2015-09-09 10:45:38 ----A---- C:\WINDOWS\system32\atmlib.dll
2015-09-09 10:45:38 ----A---- C:\WINDOWS\system32\atmfd.dll
2015-09-09 10:45:38 ----A---- C:\WINDOWS\system32\acmigration.dll
2015-09-07 18:52:15 ----D---- C:\Users\Kratochvil\AppData\Roaming\SUPERAntiSpyware.com
2015-09-07 18:52:03 ----D---- C:\ProgramData\SUPERAntiSpyware.com
2015-09-06 23:45:12 ----D---- C:\Users\Kratochvil\AppData\Roaming\GHISLER
2015-09-06 23:45:12 ----D---- C:\Program Files\totalcmd
2015-09-06 19:44:16 ----D---- C:\Program Files (x86)\MSECACHE
2015-08-29 14:36:41 ----A---- C:\WINDOWS\system32\shell32.dll
2015-08-29 14:36:39 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2015-08-29 14:36:37 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2015-08-29 14:36:37 ----A---- C:\WINDOWS\system32\CoreUIComponents.dll
2015-08-29 14:36:36 ----A---- C:\WINDOWS\system32\wuaueng.dll
2015-08-29 14:36:35 ----A---- C:\WINDOWS\SYSWOW64\CoreUIComponents.dll
2015-08-29 14:36:35 ----A---- C:\WINDOWS\system32\NetworkMobileSettings.dll
2015-08-29 14:36:35 ----A---- C:\WINDOWS\system32\LicenseManager.dll
2015-08-29 14:36:35 ----A---- C:\WINDOWS\system32\dwmcore.dll
2015-08-29 14:36:34 ----A---- C:\WINDOWS\SYSWOW64\NetSetupShim.dll
2015-08-29 14:36:34 ----A---- C:\WINDOWS\SYSWOW64\LicenseManager.dll
2015-08-29 14:36:34 ----A---- C:\WINDOWS\SYSWOW64\dwmcore.dll
2015-08-29 14:36:34 ----A---- C:\WINDOWS\system32\reseteng.dll
2015-08-29 14:36:34 ----A---- C:\WINDOWS\system32\NetSetupShim.dll
2015-08-29 14:36:34 ----A---- C:\WINDOWS\system32\modernexecserver.dll
2015-08-29 14:36:34 ----A---- C:\WINDOWS\system32\facecredentialprovider.dll
2015-08-29 14:36:33 ----A---- C:\WINDOWS\system32\WlanMediaManager.dll
2015-08-29 14:36:33 ----A---- C:\WINDOWS\system32\NetSetupSvc.dll
2015-08-29 14:36:33 ----A---- C:\WINDOWS\system32\InstallAgent.exe
2015-08-29 14:36:33 ----A---- C:\WINDOWS\system32\drivers\USBXHCI.SYS
2015-08-29 14:36:33 ----A---- C:\WINDOWS\system32\ci.dll
2015-08-29 14:36:33 ----A---- C:\WINDOWS\system32\BthRadioMedia.dll
2015-08-29 14:36:32 ----A---- C:\WINDOWS\system32\wlansvc.dll
2015-08-29 14:36:32 ----A---- C:\WINDOWS\system32\wfdprov.dll
2015-08-29 14:36:32 ----A---- C:\WINDOWS\system32\wcnwiz.dll
2015-08-29 14:36:32 ----A---- C:\WINDOWS\system32\WcnNetsh.dll
2015-08-29 14:36:32 ----A---- C:\WINDOWS\system32\aitstatic.exe
2015-08-29 14:36:31 ----A---- C:\WINDOWS\SYSWOW64\wfdprov.dll
2015-08-29 14:36:31 ----A---- C:\WINDOWS\SYSWOW64\wcnwiz.dll
2015-08-29 14:36:31 ----A---- C:\WINDOWS\SYSWOW64\WcnApi.dll
2015-08-29 14:36:31 ----A---- C:\WINDOWS\system32\WcnApi.dll
2015-08-29 14:36:31 ----A---- C:\WINDOWS\system32\fdWCN.dll
2015-08-29 14:36:31 ----A---- C:\WINDOWS\system32\EnterpriseModernAppMgmtCSP.dll
2015-08-29 14:36:31 ----A---- C:\WINDOWS\system32\dafWCN.dll
2015-08-29 14:36:31 ----A---- C:\WINDOWS\system32\AppXDeploymentServer.dll
2015-08-29 14:36:30 ----A---- C:\WINDOWS\SYSWOW64\PackageStateRoaming.dll
2015-08-29 14:36:30 ----A---- C:\WINDOWS\SYSWOW64\fdWCN.dll
2015-08-29 14:36:30 ----A---- C:\WINDOWS\system32\vaultsvc.dll
2015-08-29 14:36:30 ----A---- C:\WINDOWS\system32\PackageStateRoaming.dll
2015-08-29 14:36:30 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2015-08-22 17:10:53 ----A---- C:\WINDOWS\system32\RtPgEx64.dll
2015-08-22 17:10:53 ----A---- C:\WINDOWS\system32\RtlCPAPI64.dll
2015-08-22 17:10:53 ----A---- C:\WINDOWS\system32\RtkCfg64.dll
2015-08-22 17:10:53 ----A---- C:\WINDOWS\system32\RtkApi64.dll
2015-08-22 17:10:52 ----A---- C:\WINDOWS\system32\RtDataProc64.dll
2015-08-22 17:10:52 ----A---- C:\WINDOWS\system32\RTCOM64.dll
2015-08-22 17:10:51 ----A---- C:\WINDOWS\system32\drivers\RTAIODAT.DAT
2015-08-22 17:10:47 ----A---- C:\WINDOWS\system32\RCoRes64.dat
2015-08-22 17:10:47 ----A---- C:\WINDOWS\system32\RCoInstII64.dll
2015-08-22 17:10:45 ----A---- C:\WINDOWS\system32\R4EEP64A.dll
2015-08-22 17:10:45 ----A---- C:\WINDOWS\system32\R4EEL64A.dll
2015-08-22 17:10:45 ----A---- C:\WINDOWS\system32\R4EEG64A.dll
2015-08-22 17:10:45 ----A---- C:\WINDOWS\system32\R4EED64A.dll
2015-08-22 17:10:45 ----A---- C:\WINDOWS\system32\R4EEA64A.dll
2015-08-22 17:10:14 ----A---- C:\WINDOWS\system32\DTSVoiceClarityDLL64.dll
2015-08-22 17:10:13 ----A---- C:\WINDOWS\system32\DTSSymmetryDLL64.dll
2015-08-22 17:10:12 ----A---- C:\WINDOWS\system32\DTSS2SpeakerDLL64.dll
2015-08-22 17:10:12 ----A---- C:\WINDOWS\system32\DTSS2HeadphoneDLL64.dll
2015-08-22 17:10:12 ----A---- C:\WINDOWS\system32\DTSNeoPCDLL64.dll
2015-08-22 17:10:12 ----A---- C:\WINDOWS\system32\DTSLimiterDLL64.dll
2015-08-22 17:10:12 ----A---- C:\WINDOWS\system32\DTSLFXAPO64.dll
2015-08-22 17:10:12 ----A---- C:\WINDOWS\system32\DTSGFXAPONS64.dll
2015-08-22 17:10:12 ----A---- C:\WINDOWS\system32\DTSGFXAPO64.dll
2015-08-22 17:10:12 ----A---- C:\WINDOWS\system32\DTSGainCompensatorDLL64.dll
2015-08-22 17:10:12 ----A---- C:\WINDOWS\system32\DTSBoostDLL64.dll
2015-08-22 17:10:11 ----A---- C:\WINDOWS\system32\DTSBassEnhancementDLL64.dll
2015-08-22 17:10:10 ----A---- C:\WINDOWS\system32\DDPP64A.dll
2015-08-22 17:10:09 ----A---- C:\WINDOWS\system32\DDPO64A.dll
2015-08-22 17:10:09 ----A---- C:\WINDOWS\system32\DDPD64A.dll
2015-08-22 17:10:08 ----A---- C:\WINDOWS\system32\DDPA64.dll
2015-08-22 17:10:06 ----A---- C:\WINDOWS\system32\audioLibVc.dll
2015-08-22 17:10:05 ----A---- C:\WINDOWS\system32\AcpiServiceVnA64.dll
2015-08-22 17:07:15 ----D---- C:\Program Files\Realtek
2015-08-22 17:05:53 ----A---- C:\WINDOWS\system32\RtkCoLDR64.dll
2015-08-22 17:05:53 ----A---- C:\WINDOWS\system32\drivers\RTKVHD64.sys
2015-08-22 17:05:52 ----A---- C:\WINDOWS\system32\RltkAPO64.dll
2015-08-22 17:04:42 ----A---- C:\WINDOWS\RtlExUpd.dll
2015-08-19 17:27:14 ----A---- C:\WINDOWS\system32\vmms.exe
2015-08-19 17:27:11 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.dll
2015-08-19 17:27:08 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.dll
2015-08-19 17:27:06 ----A---- C:\WINDOWS\system32\Windows.UI.Logon.dll
2015-08-19 17:27:05 ----A---- C:\WINDOWS\system32\tquery.dll
2015-08-19 17:27:04 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Logon.dll
2015-08-19 17:27:04 ----A---- C:\WINDOWS\system32\mssrch.dll
2015-08-19 17:27:04 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll
2015-08-19 17:27:04 ----A---- C:\WINDOWS\explorer.exe
2015-08-19 17:27:03 ----A---- C:\WINDOWS\SYSWOW64\explorer.exe
2015-08-19 17:27:03 ----A---- C:\WINDOWS\system32\wlidsvc.dll
2015-08-19 17:27:03 ----A---- C:\WINDOWS\system32\Chakra.dll
2015-08-19 17:27:03 ----A---- C:\WINDOWS\system32\diagtrack.dll
2015-08-19 17:27:02 ----A---- C:\WINDOWS\SYSWOW64\mssrch.dll
2015-08-19 17:27:02 ----A---- C:\WINDOWS\SYSWOW64\mfcore.dll
2015-08-19 17:27:01 ----A---- C:\WINDOWS\SYSWOW64\tquery.dll
2015-08-19 17:27:01 ----A---- C:\WINDOWS\SYSWOW64\MFMediaEngine.dll
2015-08-19 17:27:01 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2015-08-19 17:27:01 ----A---- C:\WINDOWS\system32\InputService.dll
2015-08-19 17:27:00 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.dll
2015-08-19 17:27:00 ----A---- C:\WINDOWS\system32\wwansvc.dll
2015-08-19 17:27:00 ----A---- C:\WINDOWS\system32\RDXService.dll
2015-08-19 17:27:00 ----A---- C:\WINDOWS\system32\LockAppHost.exe
2015-08-19 17:26:59 ----A---- C:\WINDOWS\SYSWOW64\LockAppHost.exe
2015-08-19 17:26:59 ----A---- C:\WINDOWS\SYSWOW64\Chakra.dll
2015-08-19 17:26:58 ----A---- C:\WINDOWS\SYSWOW64\mfplat.dll
2015-08-19 17:26:58 ----A---- C:\WINDOWS\SYSWOW64\InputService.dll
2015-08-19 17:26:58 ----A---- C:\WINDOWS\system32\UIAutomationCore.dll
2015-08-19 17:26:58 ----A---- C:\WINDOWS\system32\MbaeApiPublic.dll
2015-08-19 17:26:58 ----A---- C:\WINDOWS\system32\directmanipulation.dll
2015-08-19 17:26:58 ----A---- C:\WINDOWS\system32\diagtrack_wininternal.dll
2015-08-19 17:26:58 ----A---- C:\WINDOWS\system32\diagtrack_win.dll
2015-08-19 17:26:57 ----A---- C:\WINDOWS\SYSWOW64\UIAutomationCore.dll
2015-08-19 17:26:57 ----A---- C:\WINDOWS\SYSWOW64\directmanipulation.dll
2015-08-19 17:26:57 ----A---- C:\WINDOWS\system32\wcmsvc.dll
2015-08-19 17:26:57 ----A---- C:\WINDOWS\system32\ReAgent.dll
2015-08-19 17:26:57 ----A---- C:\WINDOWS\system32\mfplat.dll
2015-08-19 17:26:57 ----A---- C:\WINDOWS\system32\MbaeApi.dll
2015-08-19 17:26:57 ----A---- C:\WINDOWS\system32\LocationPermissions.dll
2015-08-19 17:26:56 ----A---- C:\WINDOWS\SYSWOW64\MbaeApiPublic.dll
2015-08-19 17:26:56 ----A---- C:\WINDOWS\SYSWOW64\MbaeApi.dll
2015-08-19 17:26:56 ----A---- C:\WINDOWS\system32\UserMgrProxy.dll
2015-08-19 17:26:56 ----A---- C:\WINDOWS\system32\TextInputFramework.dll
2015-08-19 17:26:56 ----A---- C:\WINDOWS\system32\tetheringservice.dll
2015-08-19 17:26:56 ----A---- C:\WINDOWS\system32\SettingsHandlers_Notifications.dll
2015-08-19 17:26:56 ----A---- C:\WINDOWS\system32\SearchProtocolHost.exe
2015-08-19 17:26:56 ----A---- C:\WINDOWS\system32\MbaeParserTask.exe
2015-08-19 17:26:56 ----A---- C:\WINDOWS\system32\drivers\stornvme.sys
2015-08-19 17:26:56 ----A---- C:\WINDOWS\system32\cloudAP.dll
2015-08-19 17:26:55 ----A---- C:\WINDOWS\SYSWOW64\UserMgrProxy.dll
2015-08-19 17:26:55 ----A---- C:\WINDOWS\system32\sysmain.dll
2015-08-19 17:26:55 ----A---- C:\WINDOWS\system32\rdbui.dll
2015-08-19 17:26:55 ----A---- C:\WINDOWS\system32\LocationGeofences.dll
2015-08-19 17:26:54 ----A---- C:\WINDOWS\SYSWOW64\TextInputFramework.dll
2015-08-19 17:26:54 ----A---- C:\WINDOWS\SYSWOW64\ReAgent.dll
2015-08-19 17:26:54 ----A---- C:\WINDOWS\SYSWOW64\AppXDeploymentClient.dll
2015-08-19 17:26:54 ----A---- C:\WINDOWS\system32\syncutil.dll
2015-08-19 17:26:54 ----A---- C:\WINDOWS\system32\OneDriveSettingSyncProvider.dll
2015-08-19 17:26:54 ----A---- C:\WINDOWS\system32\mfcore.dll
2015-08-19 17:26:54 ----A---- C:\WINDOWS\system32\LocationFramework.dll
2015-08-19 17:26:54 ----A---- C:\WINDOWS\system32\drivers\storport.sys
2015-08-19 17:26:54 ----A---- C:\WINDOWS\system32\AppXDeploymentClient.dll
2015-08-19 17:26:53 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Core.TextInput.dll
2015-08-19 17:26:53 ----A---- C:\WINDOWS\SYSWOW64\tetheringclient.dll
2015-08-19 17:26:53 ----A---- C:\WINDOWS\SYSWOW64\SearchProtocolHost.exe
2015-08-19 17:26:53 ----A---- C:\WINDOWS\SYSWOW64\OneDriveSettingSyncProvider.dll
2015-08-19 17:26:53 ----A---- C:\WINDOWS\system32\wuautoappupdate.dll
2015-08-19 17:26:53 ----A---- C:\WINDOWS\system32\tetheringclient.dll
2015-08-19 17:26:53 ----A---- C:\WINDOWS\system32\mssprxy.dll
2015-08-19 17:26:53 ----A---- C:\WINDOWS\system32\LocationFrameworkInternalPS.dll
2015-08-19 17:26:53 ----A---- C:\WINDOWS\system32\GamePanel.exe
2015-08-19 17:26:53 ----A---- C:\WINDOWS\system32\enterprisecsps.dll
2015-08-19 17:26:52 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2015-08-19 17:26:52 ----A---- C:\WINDOWS\SYSWOW64\ReInfo.dll
2015-08-19 17:26:52 ----A---- C:\WINDOWS\SYSWOW64\GamePanel.exe
2015-08-19 17:26:52 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll

======List of files/folders modified in the last 1 month======

2015-09-18 20:47:39 ----D---- C:\WINDOWS\Prefetch
2015-09-18 20:46:20 ----D---- C:\Users\Kratochvil\AppData\Roaming\Skype
2015-09-18 20:45:29 ----D---- C:\WINDOWS\Temp
2015-09-18 20:44:55 ----D---- C:\WINDOWS\system32\Tasks
2015-09-18 20:42:33 ----D---- C:\WINDOWS\System32
2015-09-18 20:42:08 ----D---- C:\ProgramData\NVIDIA
2015-09-18 20:41:49 ----D---- C:\Windows
2015-09-18 20:41:06 ----D---- C:\WINDOWS\system32\sru
2015-09-18 20:38:05 ----D---- C:\WINDOWS\SysWOW64
2015-09-18 20:37:01 ----D---- C:\WINDOWS\Tasks
2015-09-18 16:08:33 ----D---- C:\WINDOWS\system32\config
2015-09-18 15:49:24 ----D---- C:\WINDOWS\Microsoft.NET
2015-09-18 15:22:18 ----D---- C:\WINDOWS\AppReadiness
2015-09-18 15:22:16 ----HD---- C:\Program Files\WindowsApps
2015-09-17 23:38:46 ----RD---- C:\Program Files
2015-09-17 15:19:37 ----D---- C:\Users\Kratochvil\AppData\Roaming\vlc
2015-09-17 14:45:56 ----D---- C:\Program Files (x86)\Battle.net
2015-09-17 11:52:02 ----SHDC---- C:\WINDOWS\Installer
2015-09-17 11:52:02 ----SHD---- C:\Config.Msi
2015-09-17 11:48:41 ----RD---- C:\Program Files (x86)
2015-09-16 14:11:16 ----D---- C:\ProgramData\Origin
2015-09-16 14:01:29 ----D---- C:\Users\Kratochvil\AppData\Roaming\Awesomium
2015-09-15 21:46:55 ----D---- C:\WINDOWS\INF
2015-09-15 21:44:17 ----D---- C:\WINDOWS\system32\DriverStore
2015-09-15 20:31:09 ----HD---- C:\ProgramData
2015-09-15 20:22:36 ----RD---- C:\WINDOWS\assembly
2015-09-15 20:22:34 ----D---- C:\ProgramData\regid.1991-06.com.microsoft
2015-09-15 20:20:43 ----D---- C:\Program Files\Microsoft Office 15
2015-09-15 00:22:40 ----D---- C:\Users\Kratochvil\AppData\Roaming\Winamp
2015-09-14 19:04:17 ----D---- C:\Program Files (x86)\TeamViewer
2015-09-14 18:09:25 ----HD---- C:\GrandeDevice
2015-09-14 17:07:05 ----D---- C:\WINDOWS\SYSWOW64\drivers
2015-09-14 17:06:35 ----SHD---- C:\System Volume Information
2015-09-14 16:29:10 ----D---- C:\WINDOWS\Minidump
2015-09-14 16:27:31 ----A---- C:\WINDOWS\system32\msvcr110.dll
2015-09-14 16:27:31 ----A---- C:\WINDOWS\system32\msvcp110.dll
2015-09-14 00:01:51 ----D---- C:\WINDOWS\system32\drivers
2015-09-13 23:54:27 ----D---- C:\WINDOWS\system32\CatRoot
2015-09-13 23:53:22 ----D---- C:\Program Files\DIFX
2015-09-13 23:47:23 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2015-09-13 23:37:41 ----D---- C:\Program Files\Samsung
2015-09-13 23:11:03 ----D---- C:\Users\Kratochvil\AppData\Roaming\BitTorrent
2015-09-12 13:40:53 ----D---- C:\WINDOWS\rescache
2015-09-12 13:15:54 ----D---- C:\WINDOWS\Logs
2015-09-12 13:15:54 ----D---- C:\WINDOWS\debug
2015-09-10 13:43:03 ----D---- C:\ProgramData\Epic
2015-09-10 13:31:36 ----D---- C:\ProgramData\PMB Files
2015-09-10 12:54:04 ----D---- C:\WINDOWS\WinSxS
2015-09-10 12:48:05 ----D---- C:\WINDOWS\system32\wbem
2015-09-10 12:48:05 ----D---- C:\WINDOWS\system32\migration
2015-09-10 12:48:05 ----D---- C:\WINDOWS\system32\en-US
2015-09-10 12:48:05 ----D---- C:\WINDOWS\system32\drivers\en-US
2015-09-10 12:48:05 ----D---- C:\WINDOWS\system32\drivers\cs-CZ
2015-09-10 12:48:05 ----D---- C:\WINDOWS\system32\cs-CZ
2015-09-10 12:48:04 ----D---- C:\WINDOWS\schemas
2015-09-10 12:37:04 ----D---- C:\Program Files\Android Studio
2015-09-10 12:27:24 ----D---- C:\ProgramData\Package Cache
2015-09-10 12:26:29 ----SD---- C:\Users\Kratochvil\AppData\Roaming\Microsoft
2015-09-10 12:26:02 ----SD---- C:\ProgramData\Microsoft
2015-09-10 12:07:15 ----D---- C:\Program Files (x86)\MSBuild
2015-09-10 12:01:28 ----D---- C:\Program Files (x86)\Microsoft SDKs
2015-09-10 11:54:07 ----D---- C:\WINDOWS\CbsTemp
2015-09-10 11:54:03 ----A---- C:\WINDOWS\system32\RdvgmProxy.dll
2015-09-10 11:54:01 ----A---- C:\WINDOWS\system32\sbresources.dll
2015-09-10 11:53:59 ----A---- C:\WINDOWS\system32\vmsmb.dll
2015-09-10 11:53:56 ----A---- C:\WINDOWS\system32\vmusrv.dll
2015-09-10 11:53:56 ----A---- C:\WINDOWS\system32\vmbuspiper.dll
2015-09-10 11:53:54 ----A---- C:\WINDOWS\system32\VmEmulatedStorage.dll
2015-09-10 11:53:53 ----A---- C:\WINDOWS\system32\rdvgm.exe
2015-09-10 11:53:52 ----A---- C:\WINDOWS\system32\wshhypervr.dll
2015-09-10 11:53:51 ----A---- C:\WINDOWS\SYSWOW64\RdvgmProxy.dll
2015-09-10 11:53:48 ----A---- C:\WINDOWS\system32\vmsntfy.dll
2015-09-10 11:53:46 ----A---- C:\WINDOWS\system32\VmsNetSetupPlugin.dll
2015-09-10 11:53:46 ----A---- C:\WINDOWS\system32\vmsif.dll
2015-09-10 11:53:46 ----A---- C:\WINDOWS\system32\RdvGpuInfo.dll
2015-09-10 11:53:45 ----A---- C:\WINDOWS\system32\vsconfig.dll
2015-09-10 11:53:45 ----A---- C:\WINDOWS\system32\vmdynmem.dll
2015-09-10 11:53:43 ----A---- C:\WINDOWS\system32\kdhvcom.dll
2015-09-10 11:53:43 ----A---- C:\WINDOWS\system32\hvloader.exe
2015-09-10 11:53:43 ----A---- C:\WINDOWS\system32\hvax64.exe
2015-09-10 11:53:39 ----A---- C:\WINDOWS\system32\vmserial.dll
2015-09-10 11:53:39 ----A---- C:\WINDOWS\system32\hvix64.exe
2015-09-10 11:53:36 ----A---- C:\WINDOWS\system32\vmwp.exe
2015-09-10 11:53:36 ----A---- C:\WINDOWS\system32\VmSynthNic.dll
2015-09-10 11:53:34 ----A---- C:\WINDOWS\system32\wnvapi.dll
2015-09-10 11:53:33 ----A---- C:\WINDOWS\system32\vmuidevices.dll
2015-09-10 11:53:33 ----A---- C:\WINDOWS\system32\VmEmulatedNic.dll
2015-09-10 11:53:32 ----A---- C:\WINDOWS\system32\vmbusvdev.dll
2015-09-10 11:53:30 ----A---- C:\WINDOWS\system32\vmicvdev.dll
2015-09-10 11:53:29 ----A---- C:\WINDOWS\system32\vmwpmgr.dll
2015-09-10 11:53:29 ----A---- C:\WINDOWS\system32\vmemulateddevices.dll
2015-09-10 11:53:28 ----A---- C:\WINDOWS\system32\vmdebug.dll
2015-09-10 11:53:26 ----A---- C:\WINDOWS\system32\vmconnect.exe
2015-09-10 11:53:26 ----A---- C:\WINDOWS\system32\virtmgmt.msc
2015-09-10 11:53:25 ----A---- C:\WINDOWS\system32\vmsynthstor.dll
2015-09-10 11:53:24 ----A---- C:\WINDOWS\system32\HyperVSysprepProvider.dll
2015-09-10 11:53:23 ----A---- C:\WINDOWS\system32\vmsynthfcvdev.dll
2015-09-10 11:53:22 ----A---- C:\WINDOWS\system32\TpmEngUM.dll
2015-09-10 11:53:18 ----A---- C:\WINDOWS\system32\RemoteFileBrowse.dll
2015-09-10 11:53:17 ----A---- C:\WINDOWS\system32\rdp4vs.dll
2015-09-10 11:53:13 ----A---- C:\WINDOWS\system32\vmicrdv.dll
2015-09-10 11:53:11 ----A---- C:\WINDOWS\system32\vmsp.exe
2015-09-10 11:53:10 ----A---- C:\WINDOWS\system32\hvhostsvc.dll
2015-09-10 11:53:09 ----A---- C:\WINDOWS\system32\ActivationVdev.dll
2015-09-10 11:53:08 ----A---- C:\WINDOWS\system32\vmwpctrl.dll
2015-09-10 11:53:08 ----A---- C:\WINDOWS\system32\vmtpm.dll
2015-09-10 11:53:08 ----A---- C:\WINDOWS\system32\vmprox.dll
2015-09-10 11:53:08 ----A---- C:\WINDOWS\system32\vid.dll
2015-09-10 11:53:05 ----A---- C:\WINDOWS\system32\vmsynth3dvideo.dll
2015-09-10 11:53:05 ----A---- C:\WINDOWS\system32\synth3dvideoproxy.dll
2015-09-10 11:53:03 ----A---- C:\WINDOWS\system32\vmchipset.dll
2015-09-10 11:47:33 ----A---- C:\WINDOWS\SYSWOW64\appverif.exe
2015-09-10 11:47:33 ----A---- C:\WINDOWS\system32\microsoft.windows.softwarelogo.showdesktop.exe
2015-09-10 11:47:33 ----A---- C:\WINDOWS\system32\appverif.exe
2015-09-10 11:32:15 ----D---- C:\Program Files\Microsoft SQL Server
2015-09-10 11:31:49 ----D---- C:\Program Files (x86)\Windows Kits
2015-09-10 11:29:29 ----D---- C:\Program Files (x86)\Common Files
2015-09-10 11:19:39 ----RSD---- C:\WINDOWS\Fonts
2015-09-10 11:18:37 ----D---- C:\Program Files (x86)\Microsoft Visual Studio 12.0
2015-09-10 11:12:28 ----D---- C:\WINDOWS\SYSWOW64\1033
2015-09-10 11:10:59 ----A---- C:\WINDOWS\SYSWOW64\vsjitdebugger.exe
2015-09-10 11:10:52 ----D---- C:\Program Files (x86)\Microsoft Help Viewer
2015-09-10 11:07:55 ----D---- C:\WINDOWS\system32\1033
2015-09-10 11:07:08 ----D---- C:\Program Files (x86)\Microsoft SQL Server
2015-09-10 11:05:43 ----A---- C:\WINDOWS\SYSWOW64\vcamp140.dll
2015-09-10 11:04:23 ----D---- C:\Program Files\Common Files\microsoft shared
2015-09-10 11:03:17 ----D---- C:\WINDOWS\system32\drivers\UMDF
2015-09-10 11:03:11 ----SD---- C:\WINDOWS\system32\Microsoft
2015-09-10 11:03:06 ----A---- C:\WINDOWS\system32\vsjitdebugger.exe
2015-09-10 10:58:23 ----D---- C:\WINDOWS\SYSWOW64\inetsrv
2015-09-10 10:58:23 ----D---- C:\WINDOWS\system32\inetsrv
2015-09-10 10:58:23 ----D---- C:\inetpub
2015-09-09 23:16:51 ----D---- C:\WINDOWS\system32\appraiser
2015-09-09 23:16:50 ----D---- C:\WINDOWS\AppPatch
2015-09-09 23:16:50 ----D---- C:\Program Files\Windows Journal
2015-09-09 21:20:02 ----D---- C:\Users\Kratochvil\AppData\Roaming\CodeBlocks
2015-09-09 19:38:06 ----D---- C:\ProgramData\Microsoft Help
2015-09-09 19:37:49 ----A---- C:\WINDOWS\win.ini
2015-09-09 19:35:19 ----D---- C:\WINDOWS\system32\MRT
2015-09-09 19:27:58 ----A---- C:\WINDOWS\system32\MRT.exe
2015-09-09 10:41:20 ----D---- C:\WINDOWS\system32\catroot2
2015-09-07 18:52:14 ----D---- C:\Program Files\SUPERAntiSpyware
2015-09-06 19:52:23 ----D---- C:\Program Files (x86)\Google
2015-09-05 12:26:53 ----D---- C:\ProgramData\ManiaPlanet
2015-09-05 12:25:40 ----D---- C:\Program Files\SNIP (NOW PLAYING)
2015-09-04 20:22:25 ----D---- C:\Users\Kratochvil\AppData\Roaming\Mozilla
2015-09-04 20:01:57 ----D---- C:\WINDOWS\SoftwareDistribution
2015-09-04 19:42:16 ----DC---- C:\WINDOWS\Panther
2015-09-03 13:52:03 ----A---- C:\WINDOWS\SYSWOW64\guard32.dll
2015-09-03 13:52:00 ----A---- C:\WINDOWS\system32\guard64.dll
2015-09-02 14:09:56 ----D---- C:\WINDOWS\system32\oobe
2015-09-02 12:42:15 ----D---- C:\Program Files (x86)\Winamp
2015-08-25 14:51:03 ----D---- C:\WINDOWS\SYSWOW64\en-US
2015-08-25 14:17:14 ----D---- C:\Program Files (x86)\Rockstar Games
2015-08-25 14:17:08 ----D---- C:\Program Files\Rockstar Games
2015-08-22 17:11:54 ----HD---- C:\Program Files (x86)\Temp
2015-08-22 17:11:22 ----D---- C:\WINDOWS\SYSWOW64\RTCOM
2015-08-21 14:07:36 ----A---- C:\WINDOWS\system32\xrhk1ausb.dll
2015-08-21 14:07:35 ----A---- C:\WINDOWS\system32\xrhk1alm.dll
2015-08-21 14:06:33 ----A---- C:\WINDOWS\system32\xrsk1aimghelper.dll
2015-08-21 14:06:33 ----A---- C:\WINDOWS\system32\xrsk1aimgfilter.dll
2015-08-21 14:06:33 ----A---- C:\WINDOWS\system32\xrqsreg.dll
2015-08-21 14:06:32 ----A---- C:\WINDOWS\system32\xrsk1awia.dll
2015-08-20 21:39:38 ----SHD---- C:\$Recycle.Bin
2015-08-19 18:50:47 ----D---- C:\WINDOWS\system32\WDI
2015-08-19 18:22:38 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2015-08-19 18:22:38 ----D---- C:\Program Files (x86)\LG Electronics
2015-08-19 18:20:33 ----D---- C:\WINDOWS\SYSWOW64\oobe
2015-08-19 18:20:33 ----D---- C:\WINDOWS\SYSWOW64\Dism
2015-08-19 18:20:33 ----D---- C:\WINDOWS\SYSWOW64\cs-CZ
2015-08-19 18:20:20 ----D---- C:\WINDOWS\system32\WinBioPlugIns
2015-08-19 18:20:20 ----D---- C:\WINDOWS\system32\SystemResetPlatform
2015-08-19 18:20:20 ----D---- C:\WINDOWS\system32\Dism
2015-08-19 18:20:20 ----D---- C:\WINDOWS\system32\Boot
2015-08-19 18:20:12 ----RD---- C:\WINDOWS\PurchaseDialog
2015-08-19 18:20:12 ----D---- C:\WINDOWS\Provisioning
2015-08-19 18:20:11 ----RD---- C:\WINDOWS\ImmersiveControlPanel
2015-08-19 18:20:11 ----RD---- C:\WINDOWS\DevicesFlow
2015-08-19 18:20:10 ----D---- C:\Program Files (x86)\Internet Explorer
2015-08-19 18:20:09 ----D---- C:\Program Files\Internet Explorer

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 AVPCIFilter;@oem5.inf,%AVPCIFilter.SvcDesc%;Avatron PCI Bus Device Filter; C:\WINDOWS\System32\drivers\AVPCIFilter.sys [2013-12-04 36344]
R0 JRAID;JRAID; C:\WINDOWS\System32\drivers\jraid.sys [2010-11-25 120408]
R0 PxHlpa64;PxHlpa64; C:\WINDOWS\System32\Drivers\PxHlpa64.sys [2011-03-04 55856]
R0 speedfan;speedfan; C:\Windows\SysWOW64\speedfan.sys [2011-03-18 29592]
R1 cmderd;COMODO Internet Security Eradication Driver; C:\WINDOWS\System32\DRIVERS\cmderd.sys [2015-08-05 21720]
R1 cmdGuard;COMODO Internet Security Sandbox Driver; C:\WINDOWS\system32\DRIVERS\cmdguard.sys [2015-08-05 827632]
R1 cmdhlp;COMODO Internet Security Helper Driver; C:\WINDOWS\system32\DRIVERS\cmdhlp.sys [2015-08-05 35056]
R1 FileCrypt;@%systemroot%\system32\drivers\filecrypt.sys,-100; C:\WINDOWS\system32\drivers\filecrypt.sys [2015-07-10 83968]
R1 GpuEnergyDrv;@%SystemRoot%\system32\drivers\gpuenergydrv.sys,-100; C:\WINDOWS\System32\drivers\gpuenergydrv.sys [2015-07-10 8192]
R1 hvservice;@%SystemRoot%\system32\drivers\hvservice.sys,-16; C:\WINDOWS\system32\drivers\hvservice.sys [2015-09-10 70496]
R1 inspect;COMODO Internet Security Firewall Driver; C:\WINDOWS\system32\DRIVERS\inspect.sys [2015-08-05 127232]
R1 SASDIFSV;SASDIFSV; \??\C:\Program Files\SUPERAntiSpyware\SASDIFSV64.SYS [2011-07-22 14928]
R1 SASKUTIL;SASKUTIL; \??\C:\Program Files\SUPERAntiSpyware\SASKUTIL64.SYS [2011-07-12 12368]
R2 MMCSS;@%systemroot%\system32\drivers\mmcss.sys,-100; C:\WINDOWS\system32\drivers\mmcss.sys [2015-07-10 48128]
R2 storqosflt;@%SystemRoot%\System32\drivers\storqosflt.sys,-101; C:\WINDOWS\system32\drivers\storqosflt.sys [2015-07-10 61952]
R3 busenum;@oem38.inf,%SvcDesc%;SteelBusSvc; C:\WINDOWS\System32\drivers\SteelBus64.sys [2014-05-29 146944]
R3 hidkmdf;@oem76.inf,%hidkmdf.SVCDESC%;KMDF Driver; C:\WINDOWS\System32\drivers\hidkmdf.sys [2013-04-30 14136]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RTKVHD64.sys [2015-08-22 4496600]
R3 LADF_CaptureOnly;@oem37.inf,%GSeries_Capture_DisplayName%;LADF Capture Filter Driver; C:\WINDOWS\system32\DRIVERS\ladfGSCamd64.sys [2013-04-15 410008]
R3 LADF_RenderOnly;@oem37.inf,%GSeries_Render_DisplayName%;LADF Render Filter Driver; C:\WINDOWS\system32\DRIVERS\ladfGSRamd64.sys [2013-04-15 102808]
R3 lgbusenum;@oem28.inf,%LGBusEnum.SVCDESC%;Logitech GamePanel Virtual Bus Enumerator Driver; C:\WINDOWS\system32\drivers\LGBusEnum.sys [2009-11-24 22408]
R3 LGVirHid;@oem21.inf,%LGVirHid.SVCDESC%;Logitech Gamepanel Virtual HID Device Driver; C:\WINDOWS\system32\drivers\LGVirHid.sys [2015-08-14 16008]
R3 MEIx64;@oem117.inf,%HECI_SvcDesc%;Intel(R) Management Engine Interface ; C:\WINDOWS\System32\drivers\HECIx64.sys [2010-10-19 56344]
R3 MQAC;@mqutil.dll,-6101; C:\WINDOWS\system32\drivers\mqac.sys [2015-08-14 175104]
R3 NVHDA;@oem113.inf,%NVHDA.SvcDesc%;Service for NVIDIA High Definition Audio Driver; C:\WINDOWS\system32\drivers\nvhda64v.sys [2015-04-16 195912]
R3 nvlddmkm;nvlddmkm; C:\WINDOWS\system32\DRIVERS\nvlddmkm.sys [2015-08-14 11139216]
R3 nvvad_WaveExtensible;@oem77.inf,%nvvad_WaveExtensible.SvcDesc%;NVIDIA Virtual Audio Device (Wave Extensible) (WDM); C:\WINDOWS\system32\drivers\nvvad64v.sys [2014-03-31 40392]
R3 rt640x64;@rt640x64.inf,%rt640.Service.DispName%;Realtek RT640 NT Driver; C:\WINDOWS\System32\drivers\rt640x64.sys [2015-07-10 587264]
R3 SAlphamHid;@oem87.inf,%SvcDesc%;SteelHIDSvc; C:\WINDOWS\System32\drivers\SAlpham64.sys [2014-05-27 39168]
R3 SensorsSimulatorDriver;@oem41.inf,%WudfSensorsSimulatorDriverDisplayName%;UMDF Reflector service for SensorsSimulatorDriver; C:\WINDOWS\system32\DRIVERS\WUDFRd.sys [2015-07-10 214016]
R3 Synth3dVsp;Synth3dVsp; C:\WINDOWS\System32\drivers\synth3dvsp.sys [2015-09-10 101888]
S0 LSI_SAS2i;LSI_SAS2i; C:\WINDOWS\System32\drivers\lsi_sas2i.sys [2015-07-10 104800]
S0 LSI_SAS3i;LSI_SAS3i; C:\WINDOWS\System32\drivers\lsi_sas3i.sys [2015-07-10 99168]
S0 percsas2i;percsas2i; C:\WINDOWS\System32\drivers\percsas2i.sys [2015-07-10 58208]
S0 percsas3i;percsas3i; C:\WINDOWS\System32\drivers\percsas3i.sys [2015-07-10 58720]
S0 storufs;@storufs.inf,%UfsServiceDesc%;Microsoft Universal Flash Storage (UFS) Driver; C:\WINDOWS\System32\drivers\storufs.sys [2015-07-10 40288]
S3 AirDisplay;Air Display Support; C:\WINDOWS\system32\DRIVERS\AVVideoCard.sys [2013-12-04 15352]
S3 AirDisplayMirror;Air Display Mirror Support; C:\WINDOWS\system32\DRIVERS\AVVideoCardMirror.sys [2013-12-04 15352]
S3 asusgsb;ASUS Virtual Video Capture Device Driver; C:\WINDOWS\system32\drivers\asusgsb.sys [2009-02-17 17792]
S3 buttonconverter;@buttonconverter.inf,%btnconv.SvcDesc%;Service for Portable Device Control devices; C:\WINDOWS\System32\drivers\buttonconverter.sys [2015-07-10 32256]
S3 CapImg;@capimg.inf,%CapImgHid_Service%;HID driver for CapImg touch screen; C:\WINDOWS\System32\drivers\capimg.sys [2015-07-10 116736]
S3 dg_ssudbus;@oem33.inf,%ssud.Service.DeviceDesc%;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\WINDOWS\system32\DRIVERS\ssudbus.sys [2015-09-13 110488]
S3 epmntdrv;epmntdrv; \??\C:\WINDOWS\syswow64\epmntdrv.sys [2011-07-29 14216]
S3 ESLvnic1;ESLvnic Virtual Network 64 Bit; C:\WINDOWS\system32\DRIVERS\ESLvnic.sys [2012-01-24 25528]
S3 etdrv;etdrv; \??\C:\Windows\etdrv.sys [2011-11-27 25640]
S3 EuGdiDrv;EuGdiDrv; \??\C:\WINDOWS\syswow64\EuGdiDrv.sys [2011-07-29 8456]
S3 fcvsc;fcvsc; C:\WINDOWS\System32\drivers\fcvsc.sys [2015-07-10 31232]
S3 gdrv;gdrv; \??\C:\Windows\gdrv.sys [2011-11-27 25640]
S3 genericusbfn;@genericusbfn.inf,%genericusbfn.ServiceName%;Generic USB Function Class; C:\WINDOWS\System32\drivers\genericusbfn.sys [2015-07-10 20992]
S3 GVTDrv64;GVTDrv64; \??\C:\Windows\GVTDrv64.sys [2011-11-27 30528]
S3 hamachi;Hamachi Network Interface; C:\WINDOWS\system32\DRIVERS\hamachi.sys [2012-01-21 33344]
S3 hidinterrupt;@hidinterrupt.inf,%HID.SvcDesc%;Common Driver for HID Buttons implemented with interrupts; C:\WINDOWS\System32\drivers\hidinterrupt.sys [2015-07-10 50016]
S3 HTCAND64;HTC Device Driver; C:\WINDOWS\System32\Drivers\ANDROIDUSB.sys [2009-11-02 33736]
S3 ibbus;@mlx4_bus.inf,%Ibbus.ServiceDesc%;Mellanox InfiniBand Bus/AL (Filter Driver); C:\WINDOWS\System32\drivers\ibbus.sys [2015-07-10 424800]
S3 iDispService;iDispService; C:\WINDOWS\system32\DRIVERS\idisplayminiport.sys [2012-08-31 14248]
S3 IoQos;@%SystemRoot%\system32\drivers\ioqos.sys,-100; C:\WINDOWS\system32\drivers\ioqos.sys [2015-07-10 26624]
S3 lunparser;@%systemroot%\system32\drivers\lunparser.sys,-10010; C:\WINDOWS\system32\drivers\lunparser.sys [2015-09-10 20992]
S3 mlx4_bus;@mlx4_bus.inf,%MLX4BUS.ServiceDesc%;Mellanox ConnectX Bus Enumerator; C:\WINDOWS\System32\drivers\mlx4_bus.sys [2015-07-10 705376]
S3 Mo3Fltr;MMO Mouse; C:\WINDOWS\system32\drivers\Mo3Fltr.sys [2010-08-11 12800]
S3 ndfltr;@mlx4_bus.inf,%ndfltr.ServiceDesc%;NetworkDirect Service; C:\WINDOWS\System32\drivers\ndfltr.sys [2015-07-10 76128]
S3 NVFLASH;NVFLASH; \??\C:\Windows\system32\drivers\nvflash.sys [2013-04-19 15648]
S3 passthruparser;@%systemroot%\system32\drivers\passthruparser.sys,-10010; C:\WINDOWS\system32\drivers\passthruparser.sys [2015-09-10 22528]
S3 pvhdparser;@%systemroot%\system32\drivers\pvhdparser.sys,-10010; C:\WINDOWS\system32\drivers\pvhdparser.sys [2015-09-10 49152]
S3 ReFSv1;ReFSv1; C:\WINDOWS\system32\drivers\ReFSv1.sys [2015-08-16 934752]
S3 ssudmdm;@oem69.inf,%ssud.Service.Name%;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.); C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [2015-09-13 206104]
S3 tap0901;TAP-Win32 Adapter V9; C:\WINDOWS\system32\DRIVERS\tap0901.sys [2009-11-20 31232]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 !SASCORE;SAS Core Service; C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE [2015-09-07 172344]
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2013-09-03 65640]
R2 AppHostSvc;@%windir%\system32\inetsrv\iisres.dll,-30011; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
R2 AVerRECentral;AVerRECentral; C:\Program Files (x86)\Common Files\AVerMedia\Service\AVerRECentral.exe [2014-06-25 373248]
R2 AVerUpdateServer;AVerUpdateServer; C:\Program Files (x86)\AVerMedia\AVerUpdate\AVerUpdateServer.exe [2011-10-31 167936]
R2 Bonjour Service;Xamarin Bonjour Service; C:\Program Files (x86)\Xamarin\Bonjour\mDNSResponder.exe [2015-09-10 384512]
R2 ClickToRunSvc;Služba Microsoft Office ClickToRun; C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe [2015-09-15 2768472]
R2 CmdAgent;COMODO Internet Security Helper Service; C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe [2015-09-15 5542472]
R2 CoreMessagingRegistrar;@%SystemRoot%\system32\coremessaging.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
R2 DiagTrack;@%SystemRoot%\system32\diagtrack.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]
R2 HvHost;@%SystemRoot%\system32\hvhostsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
R2 IpOverUsbSvc;Windows Phone IP over USB Transport (IpOverUsbSvc); C:\Program Files (x86)\Common Files\Microsoft Shared\Phone Tools\CoreCon\11.0\bin\IpOverUsbSvc.exe [2015-09-10 21744]
R2 MSMQ;@mqutil.dll,-6102; C:\WINDOWS\system32\mqsvc.exe [2015-08-14 26112]
R2 NvNetworkService;NVIDIA Network Service; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [2014-04-30 1617696]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2015-07-13 937616]
R2 OneSyncSvc_Session1;Hostitel synchronizace_Session1; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
R2 PnkBstrA;PnkBstrA; C:\Windows\system32\PnkBstrA.exe [2014-07-04 76152]
R2 SQLWriter;SQL Server VSS Writer; C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe [2015-09-10 134336]
R2 ss_conn_service;SAMSUNG Mobile Connectivity Service; C:\Program Files\SAMSUNG\USB Drivers\25_escape\conn\ss_conn_service.exe [2015-09-13 743688]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2015-07-13 410768]
R2 TeamViewer;TeamViewer 10; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [2015-08-07 5611280]
R3 ClipSVC;@%SystemRoot%\system32\ClipSVC.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]
R3 DsSvc;@%SystemRoot%\system32\dssvc.dll,-10003; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]
R3 LicenseManager;@%SystemRoot%\system32\licensemanagersvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]
R3 PimIndexMaintenanceSvc_Session1;Data kontaktů_Session1; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
R3 StateRepository;@%SystemRoot%\system32\windows.staterepository.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
R3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2015-08-21 838336]
S2 dmwappushservice;@%SystemRoot%\system32\dmwappushsvc.dll,-200; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S2 DoSvc;@%systemroot%\system32\dosvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-27 144200]
S2 MapsBroker;@%SystemRoot%\System32\moshost.dll,-100; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]
S2 OneSyncSvc;@%SystemRoot%\system32\APHostRes.dll,-10002; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2015-06-25 327296]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-08-12 269000]
S3 AJRouter;@%SystemRoot%\system32\AJRouter.dll,-2; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S3 aspnet_state;@%SystemRoot%\Microsoft.NET\Framework64\v4.0.30319\aspnet_rc.dll,-1; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2015-07-10 50352]
S3 BEService;BattlEye Service; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [2014-01-18 49152]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]
S3 CDPSvc;@%SystemRoot%\system32\cdpsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S3 cmdvirth;COMODO Virtual Service Manager; C:\Program Files\COMODO\COMODO Internet Security\cmdvirth.exe [2015-08-05 2265792]
S3 DcpSvc;@%SystemRoot%\system32\dcpsvc.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]
S3 DevQueryBroker;@%SystemRoot%\system32\DevQueryBroker.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S3 diagnosticshub.standardcollector.service;@%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000; C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe [2015-07-10 27136]
S3 DmEnrollmentSvc;@%systemroot%\system32\Windows.Internal.Management.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S3 embeddedmode;@%SystemRoot%\system32\embeddedmodesvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]
S3 EntAppSvc;@EnterpriseAppMgmtSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2015-06-17 43696]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-27 144200]
S3 icssvc;@%SystemRoot%\System32\tetheringservice.dll,-4097; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files (x86)\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe [2004-10-22 73728]
S3 NetSetupSvc;@%SystemRoot%\system32\NetSetupSvc.dll,-3; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]
S3 NgcCtnrSvc;@%SystemRoot%\System32\NgcCtnrSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S3 NgcSvc;@%SystemRoot%\System32\ngcsvc.dll,-100; C:\WINDOWS\system32\lsass.exe [2015-07-10 56344]
S3 Origin Client Service;Origin Client Service; E:\Program Files\Origin\OriginClientService.exe [2015-09-16 2057736]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 ose64;Office 64 Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2012-12-08 178760]
S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2012-10-01 5132888]
S3 PimIndexMaintenanceSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-15001; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S3 RetailDemo;@%SystemRoot%\System32\RDXService.dll,-256; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]
S3 SensorDataService;@%SystemRoot%\system32\SensorDataService.exe,-101; C:\WINDOWS\System32\SensorDataService.exe [2015-08-16 1031680]
S3 SensorService;@%SystemRoot%\System32\sensorservice.dll,-1000; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S3 SmsRouter;@%SystemRoot%\System32\SmsRouterSvc.dll,-10001; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S3 SwitchBoard;SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
S3 Te.Service;Te.Service; C:\Program Files (x86)\Windows Kits\10\Testing\Runtimes\TAEF\Wex.Services.exe [2015-09-10 134656]
S4 NvStreamSvc;NVIDIA Streamer Service; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [2014-04-30 21007192]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118238
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Zasekaný systém po spuštění počítače

#9 Příspěvek od Rudy »

Smazáno. Znovu spusťte OTM a klikněte na >CleanUp!<. OTM po sobě uklidí. Nakonec restartujte PC. Nastala nějaká změna?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

ivankrato
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 77
Registrován: 13 bře 2009 14:08

Re: Zasekaný systém po spuštění počítače

#10 Příspěvek od ivankrato »

Ano, PC se mi zdá celkově rychlejší, problémy po startu zmizeli. Díky za pomoc :)

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118238
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Zasekaný systém po spuštění počítače

#11 Příspěvek od Rudy »

Rádo se stalo! :)
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Zamčeno