Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

prosím o kontrolu - spomalený NB

Patříte mezi Vzorné návštěvníky? Pak je tato sekce pro vás.

Moderátor: Moderátoři

Pravidla fóra
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
Zamčeno
Zpráva
Autor
skrob
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 148
Registrován: 18 čer 2007 12:18

prosím o kontrolu - spomalený NB

#1 Příspěvek od skrob »

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 12:15:25, on 27.2.2016
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.10586.0020)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\ASUS\Splendid\ACMON.exe
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Users\Gabriela\AppData\Local\Microsoft\OneDrive\OneDrive.exe
C:\Users\Gabriela\AppData\Local\Viber\Viber.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\ASUS\WebStorage\2.1.11.399\ASUSWSLoader.exe
C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\IPC\AdobeIPCBroker.exe
C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\HEX\Adobe CEF Helper.exe
C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ADS\Adobe Desktop Service.exe
C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\HEX\Adobe CEF Helper.exe
C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSync\CoreSync.exe
C:\Program Files\trend micro\Gabriela.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://asus13.msn.com/?pc=ASJB
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://asus13.msn.com/?pc=ASJB
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=
O2 - BHO: Skype for Business Click to Call BHO - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Microsoft Office\Office15\OCHelper.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_73\bin\ssv.dll
O2 - BHO: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Microsoft Office\Office15\GROOVEEX.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_73\bin\jp2ssv.dll
O4 - HKLM\..\Run: [WebStorage] C:\Program Files (x86)\ASUS\WebStorage\2.1.11.399\ASUSWSLoader.exe
O4 - HKLM\..\Run: [Adobe Creative Cloud] "C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe" --showwindow=false --onOSstartup=true
O4 - HKLM\..\Run: [AdobeCS6ServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe" -launchedbylogin
O4 - HKCU\..\Run: [OneDrive] "C:\Users\Gabriela\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
O4 - HKCU\..\Run: [Viber] "C:\Users\Gabriela\AppData\Local\Viber\Viber.exe" StartMinimized
O4 - HKCU\..\Run: [GoogleChromeAutoLaunch_074FE7EE84003F273122FC8E21D021D8] "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --no-startup-window
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKCU\..\RunOnce: [Uninstall C:\Users\Gabriela\AppData\Local\Microsoft\OneDrive\17.3.6281.1202_1\amd64] C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Gabriela\AppData\Local\Microsoft\OneDrive\17.3.6281.1202_1\amd64"
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\Program Files\Microsoft Office 15\Root\Office15\EXCEL.EXE/3000
O8 - Extra context menu item: Se&nd to OneNote - res://C:\Program Files\Microsoft Office 15\Root\Office15\ONBttnIE.dll/105
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Microsoft Office\Office15\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Microsoft Office\Office15\ONBttnIE.dll
O9 - Extra button: Skype for Business Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Microsoft Office\Office15\OCHelper.dll
O9 - Extra 'Tools' menuitem: Skype for Business Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Microsoft Office\Office15\OCHelper.dll
O9 - Extra button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Microsoft Office\Office15\MSOSB.DLL
O18 - Protocol: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (file missing)
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O23 - Service: AdobeUpdateService - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: Apple Mobile Device Service - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: ASLDR Service (ASLDRService) - ASUSTek Computer Inc. - C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe
O23 - Service: Asus WebStorage Windows Service - ASUS Cloud Corporation - C:\Program Files (x86)\ASUS\WebStorage\2.1.11.399\AsusWSWinService.exe
O23 - Service: ATKGFNEX Service (ATKGFNEXSrv) - ASUS - C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: DriverMFTService - ASUSTek Computer Inc. - C:\Program Files (x86)\Asus\ASUS Video DSP\DriverMFTService.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe
O23 - Service: ExpressCache - Condusiv Technologies - C:\Program Files\Condusiv Technologies\ExpressCache\ExpressCache.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: GamesAppIntegrationService - WildTangent - C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe
O23 - Service: GamesAppService - WildTangent, Inc. - C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Intel Bluetooth Service (iBtSiva) - Intel Corporation - C:\Program Files (x86)\Intel\Bluetooth\ibtsiva.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService2.0.0.0) - Unknown owner - C:\WINDOWS\system32\igfxCUIService.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\WINDOWS\system32\nvvsvc.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\WINDOWS\system32\TieringEngineService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 13291 bytes

Uživatelský avatar
Roli
VIP
VIP
Příspěvky: 13400
Registrován: 26 lis 2006 13:37
Bydliště: ČR

Re: prosím o kontrolu - spomalený NB

#2 Příspěvek od Roli »

Zdravím, poprosím o log.txt z Rsit protože je podrobnější než HJT.
| Rsit | Mbam | AVPTool | Cure It |

O víkendu odpočívám :all_coholic:

skrob
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 148
Registrován: 18 čer 2007 12:18

Re: prosím o kontrolu - spomalený NB

#3 Příspěvek od skrob »

Logfile of random's system information tool 1.10 (written by random/random)
Run by Gabriela at 2016-03-29 16:28:15
Microsoft Windows 10 Home
System drive C: has 170 GB (59%) free of 286 GB
Total RAM: 8081 MB (68% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 16:28:18, on 29.3.2016
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.10586.0020)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe
C:\Program Files (x86)\ASUS\Splendid\ACMON.exe
C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Gabriela\AppData\Local\Microsoft\OneDrive\OneDrive.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\ASUS\WebStorage\2.1.11.399\ASUSWSLoader.exe
C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe
C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\IPC\AdobeIPCBroker.exe
C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\HEX\Adobe CEF Helper.exe
C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ADS\Adobe Desktop Service.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\HEX\Adobe CEF Helper.exe
C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSync\CoreSync.exe
C:\Program Files\trend micro\Gabriela.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://asus13.msn.com/?pc=ASJB
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://asus13.msn.com/?pc=ASJB
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=
O2 - BHO: Skype for Business Click to Call BHO - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Microsoft Office\Office15\OCHelper.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_73\bin\ssv.dll
O2 - BHO: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Microsoft Office\Office15\GROOVEEX.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_73\bin\jp2ssv.dll
O4 - HKLM\..\Run: [WebStorage] C:\Program Files (x86)\ASUS\WebStorage\2.1.11.399\ASUSWSLoader.exe
O4 - HKLM\..\Run: [Adobe Creative Cloud] "C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe" --showwindow=false --onOSstartup=true
O4 - HKLM\..\Run: [AdobeCS6ServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe" -launchedbylogin
O4 - HKCU\..\Run: [OneDrive] "C:\Users\Gabriela\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKCU\..\RunOnce: [Uninstall C:\Users\Gabriela\AppData\Local\Microsoft\OneDrive\17.3.6281.1202_1\amd64] C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Gabriela\AppData\Local\Microsoft\OneDrive\17.3.6281.1202_1\amd64"
O4 - HKCU\..\RunOnce: [Uninstall C:\Users\Gabriela\AppData\Local\Microsoft\OneDrive\17.3.6301.0127\amd64] C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Gabriela\AppData\Local\Microsoft\OneDrive\17.3.6301.0127\amd64"
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\Program Files\Microsoft Office 15\Root\Office15\EXCEL.EXE/3000
O8 - Extra context menu item: Se&nd to OneNote - res://C:\Program Files\Microsoft Office 15\Root\Office15\ONBttnIE.dll/105
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Microsoft Office\Office15\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Microsoft Office\Office15\ONBttnIE.dll
O9 - Extra button: Skype for Business Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Microsoft Office\Office15\OCHelper.dll
O9 - Extra 'Tools' menuitem: Skype for Business Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Microsoft Office\Office15\OCHelper.dll
O9 - Extra button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Microsoft Office\Office15\MSOSB.DLL
O18 - Protocol: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - (no file)
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O23 - Service: AdobeUpdateService - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: Apple Mobile Device Service - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: ASLDR Service (ASLDRService) - ASUSTek Computer Inc. - C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe
O23 - Service: Asus WebStorage Windows Service - ASUS Cloud Corporation - C:\Program Files (x86)\ASUS\WebStorage\2.1.11.399\AsusWSWinService.exe
O23 - Service: ATKGFNEX Service (ATKGFNEXSrv) - ASUS - C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: DriverMFTService - ASUSTek Computer Inc. - C:\Program Files (x86)\Asus\ASUS Video DSP\DriverMFTService.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe
O23 - Service: ExpressCache - Condusiv Technologies - C:\Program Files\Condusiv Technologies\ExpressCache\ExpressCache.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: GamesAppIntegrationService - WildTangent - C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe
O23 - Service: GamesAppService - WildTangent, Inc. - C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Intel Bluetooth Service (iBtSiva) - Intel Corporation - C:\Program Files (x86)\Intel\Bluetooth\ibtsiva.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService2.0.0.0) - Unknown owner - C:\WINDOWS\system32\igfxCUIService.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\WINDOWS\system32\nvvsvc.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\WINDOWS\system32\TieringEngineService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 13931 bytes

======Listing Processes======







C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\WINDOWS\system32\nvvsvc.exe"
C:\WINDOWS\system32\igfxCUIService.exe
dashost.exe {2541fbb3-07dd-4903-89c463a21d1aa129}
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
C:\WINDOWS\system32\svchost.exe -k NetworkService
"C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe"
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\System32\svchost.exe -k utcsvc
"C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe" /service
"C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe"
"C:\Program Files (x86)\Intel\Bluetooth\ibtsiva.exe"
"C:\Program Files (x86)\Asus\ASUS Video DSP\DriverMFTService.exe"

C:\WINDOWS\system32\svchost.exe -k imgsvc
C:\WINDOWS\system32\svchost.exe -k appmodel
"C:\Program Files\Condusiv Technologies\ExpressCache\ExpressCache.exe"
"C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe"
"C:\Program Files (x86)\ASUS\WebStorage\2.1.11.399\AsusWSWinService.exe"
"C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe"
"C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe"
C:\WINDOWS\system32\svchost.exe -k NetworkServiceNetworkRestricted

C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
taskeng.exe {BDA6ABF9-404C-4429-9EB2-35E1FA957B55}
"C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /c

"C:\Program Files\Windows Defender\MpCmdRun.exe" SpyNetServiceDss -RestrictPrivileges -AccessKey D9C30928-FA3B-237A-A9E6-7E7A3989C472 -Reinvoke
"C:\Program Files\iPod\bin\iPodService.exe"
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe1_ Global\UsGthrCtrlFltPipeMssGthrPipe1 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 644 648 656 8192 652
C:\windows\system32\MusNotification.exe Display
C:\WINDOWS\System32\svchost.exe -k WerSvcGroup

C:\WINDOWS\System32\WinLogon.exe -SpecialSession
"dwm.exe"
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\WINDOWS\system32\nvvsvc.exe -session
"C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe"
sihost.exe
taskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E}
"C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe"
"C:\Program Files (x86)\ASUS\Splendid\ACMON.exe"
taskhostw.exe USER
KBFiltr.exe
C:\WINDOWS\Explorer.EXE
"C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe"
C:\WINDOWS\System32\svchost.exe -k AppReadiness
igfxEM.exe
igfxTray.exe
"C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPLauncher.exe"
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=crashpad-handler /prefetch:7 --no-rate-limit "--database=C:\Users\Gabriela\AppData\Local\Google\Chrome\User Data\Crashpad" --url=https://clients2.google.com/cr/report --annotation=channel=m --annotation=plat=Win32 --annotation=prod=Chrome --annotation=ver=49.0.2623.110 --handshake-handle=0x1ac
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="6340.0.1980365702\64537245" --supports-dual-gpus=false --gpu-driver-bug-workarounds=3,11,16,25,54 --gpu-vendor-id=0x8086 --gpu-device-id=0x0416 --gpu-driver-vendor="Intel Corporation" --gpu-driver-version=20.19.15.4331 --ignored=" --type=renderer " /prefetch:2
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding --disable-features=UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=sk --force-fieldtrials=AppBannerTriggering/Aggressive/AutofillProfileOrderByFrecency/Control/*AutomaticTabDiscarding/Enabled_Once_10-gen2/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/CrossDevicePromo/1DaySingleProfile/*DataReductionProxyConfigService/Control_Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/OmniboxBundledExperimentV1/NewSuggestType_A5_Stable_R2/PasswordBranding/Disabled/*PasswordGeneration/Disabled/PreRead/Default/*QUIC/Enabled/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/SpdyEnableDependencies/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group5/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_66/*UMA-Uniformity-Trial-10-Percent/group_09/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/default/*UMA-Uniformity-Trial-5-Percent/group_13/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/WebFontsIntervention/Default/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="6340.1.301553441\1405432636" /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding --disable-features=UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=sk --force-fieldtrials=AppBannerTriggering/Aggressive/AutofillProfileOrderByFrecency/Control/*AutomaticTabDiscarding/Enabled_Once_10-gen2/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/CrossDevicePromo/1DaySingleProfile/*DataReductionProxyConfigService/Control_Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/NewSuggestType_A5_Stable_R2/PasswordBranding/Disabled/*PasswordGeneration/Disabled/PreRead/Default/*QUIC/Enabled/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/SpdyEnableDependencies/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group5/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_66/*UMA-Uniformity-Trial-10-Percent/group_09/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/default/*UMA-Uniformity-Trial-5-Percent/group_13/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/WebFontsIntervention/Default/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="6340.2.231987753\1141398651" /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding --disable-features=UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=sk --force-fieldtrials=AppBannerTriggering/Aggressive/AutofillProfileOrderByFrecency/Control/*AutomaticTabDiscarding/Enabled_Once_10-gen2/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/1DaySingleProfile/*DataReductionProxyConfigService/Control_Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/NewSuggestType_A5_Stable_R2/PasswordBranding/Disabled/*PasswordGeneration/Disabled/PreRead/Default/*QUIC/Enabled/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/*SpdyEnableDependencies/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group5/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_66/*UMA-Uniformity-Trial-10-Percent/group_09/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/default/*UMA-Uniformity-Trial-5-Percent/group_13/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/WebFontsIntervention/Default/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="6340.3.134016132\2005131789" /prefetch:1
"C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
"C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe" /hide /waitservice
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding --disable-features=UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=sk --force-fieldtrials=AppBannerTriggering/Aggressive/AutofillProfileOrderByFrecency/Control/*AutomaticTabDiscarding/Enabled_Once_10-gen2/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/1DaySingleProfile/*DataReductionProxyConfigService/Control_Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/NewSuggestType_A5_Stable_R2/PasswordBranding/Disabled/*PasswordGeneration/Disabled/PreRead/Default/*QUIC/Enabled/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/*SpdyEnableDependencies/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group5/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_66/*UMA-Uniformity-Trial-10-Percent/group_09/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/default/*UMA-Uniformity-Trial-5-Percent/group_13/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/WebFontsIntervention/Default/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="6340.4.1860395215\1405268940" /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding --disable-features=UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=sk --force-fieldtrials=AppBannerTriggering/Aggressive/AutofillProfileOrderByFrecency/Control/*AutomaticTabDiscarding/Enabled_Once_10-gen2/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/1DaySingleProfile/*DataReductionProxyConfigService/Control_Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/NewSuggestType_A5_Stable_R2/PasswordBranding/Disabled/*PasswordGeneration/Disabled/PreRead/Default/*QUIC/Enabled/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/*SpdyEnableDependencies/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group5/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_66/*UMA-Uniformity-Trial-10-Percent/group_09/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/default/*UMA-Uniformity-Trial-5-Percent/group_13/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/WebFontsIntervention/Default/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="6340.5.614366699\316566065" /prefetch:1
"C:\Program Files\iTunes\iTunesHelper.exe"
"C:\Users\Gabriela\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding --disable-features=UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=sk --force-fieldtrials=AppBannerTriggering/Aggressive/AutofillProfileOrderByFrecency/Control/*AutomaticTabDiscarding/Enabled_Once_10-gen2/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/1DaySingleProfile/*DataReductionProxyConfigService/Control_Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/NewSuggestType_A5_Stable_R2/PasswordBranding/Disabled/*PasswordGeneration/Disabled/PreRead/Default/*QUIC/Enabled/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/*SpdyEnableDependencies/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group5/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_66/*UMA-Uniformity-Trial-10-Percent/group_09/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/default/*UMA-Uniformity-Trial-5-Percent/group_13/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/WebFontsIntervention/Default/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="6340.6.1782280680\1308142021" /prefetch:1
"C:\Program Files (x86)\ASUS\WebStorage\2.1.11.399\ASUSWSLoader.exe"
"C:\Program Files\CCleaner\CCleaner.exe" /MONITOR /uac
"C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe" --showwindow=false --onOSstartup=true
"C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\IPC\AdobeIPCBroker.exe" "-launchedbyvulcan"
"fontdrvhost.exe"
"C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\HEX\Adobe CEF Helper.exe" --type=renderer --no-sandbox --user-agent="Mozilla/5.0 (Windows NT 10.0.0; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Safari/537.36 CreativeCloud/2.2.0.127" --lang=en-US --lang=en-US --locales-dir-path="C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\CEF\locales" --log-severity=disable --channel="8044.0.1465085328\2024374388" /prefetch:673131151
"C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ADS\Adobe Desktop Service.exe" --onOSstartup=true --showwindow=false --waitForRegistration=true
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding --disable-features=UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=sk --force-fieldtrials=AppBannerTriggering/Aggressive/AutofillProfileOrderByFrecency/Control/*AutomaticTabDiscarding/Enabled_Once_10-gen2/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/1DaySingleProfile/*DataReductionProxyConfigService/Control_Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/NewSuggestType_A5_Stable_R2/PasswordBranding/Disabled/*PasswordGeneration/Disabled/PreRead/Default/*QUIC/Enabled/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/*SpdyEnableDependencies/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group5/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_66/*UMA-Uniformity-Trial-10-Percent/group_09/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/default/*UMA-Uniformity-Trial-5-Percent/group_13/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/WebFontsIntervention/Default/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="6340.7.1366185527\1134621453" /prefetch:1
"C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\HEX\Adobe CEF Helper.exe" --type=renderer --no-sandbox --user-agent="Mozilla/5.0 (Windows NT 10.0.0; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Safari/537.36 CreativeCloud/2.2.0.127" --lang=en-US --lang=en-US --locales-dir-path="C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\CEF\locales" --log-severity=disable --channel="8044.1.1758452031\1014424453" /prefetch:673131151
"C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSync\CoreSync.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s

"C:\Users\Gabriela\Desktop\RSITx64.exe"

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Skype for Business Browser Helper - C:\Program Files\Microsoft Office 15\root\Office15\OCHelper.dll [2016-03-16 228552]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft SkyDrive Pro Browser Helper - C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL [2016-03-16 2348336]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Skype for Business Browser Helper - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Microsoft Office\Office15\OCHelper.dll [2016-03-16 163016]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_73\bin\ssv.dll [2016-02-26 460384]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft SkyDrive Pro Browser Helper - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Microsoft Office\Office15\GROOVEEX.DLL [2016-03-16 1741096]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_73\bin\jp2ssv.dll [2016-02-26 172640]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"NvBackend"=C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2014-12-13 2531472]
"egui"=C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe [2015-07-08 5595848]
"AdobeAAMUpdater-1.0"=C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2015-07-22 500936]
"iTunesHelper"=C:\Program Files\iTunes\iTunesHelper.exe [2015-12-09 170256]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"OneDrive"=C:\Users\Gabriela\AppData\Local\Microsoft\OneDrive\OneDrive.exe [2016-03-13 551104]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2016-02-12 8641240]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"Uninstall C:\Users\Gabriela\AppData\Local\Microsoft\OneDrive\17.3.6281.1202_1\amd64"=C:\WINDOWS\system32\cmd.exe [2015-10-30 233984]
"Uninstall C:\Users\Gabriela\AppData\Local\Microsoft\OneDrive\17.3.6301.0127\amd64"=C:\WINDOWS\system32\cmd.exe [2015-10-30 233984]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"WebStorage"=C:\Program Files (x86)\ASUS\WebStorage\2.1.11.399\ASUSWSLoader.exe [2014-08-20 63296]
"Adobe Creative Cloud"=C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe [2015-07-23 2303152]
"AdobeCS6ServiceManager"=C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe [2013-04-25 1075296]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iai2c.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SpbCx.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TileDataModelSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\uefi.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SpbCx.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TileDataModelSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\uefi.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DSCAutomationHostEnabled"=2

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2016-03-28 22:15:09 ----D---- C:\rsit
2016-03-09 16:10:11 ----A---- C:\WINDOWS\system32\edgehtml.dll
2016-03-09 16:10:10 ----A---- C:\WINDOWS\system32\wuaueng.dll
2016-03-09 16:10:10 ----A---- C:\WINDOWS\system32\win32kfull.sys
2016-03-09 16:10:10 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2016-03-09 16:10:10 ----A---- C:\WINDOWS\system32\mshtml.dll
2016-03-09 16:10:09 ----A---- C:\WINDOWS\SYSWOW64\edgehtml.dll
2016-03-09 16:10:08 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2016-03-09 16:10:07 ----A---- C:\WINDOWS\system32\WSService.dll
2016-03-09 16:10:07 ----A---- C:\WINDOWS\system32\wmp.dll
2016-03-09 16:10:06 ----A---- C:\WINDOWS\system32\Windows.Data.Pdf.dll
2016-03-09 16:10:05 ----A---- C:\WINDOWS\SYSWOW64\wmp.dll
2016-03-09 16:10:05 ----A---- C:\WINDOWS\system32\windows.storage.dll
2016-03-09 16:10:05 ----A---- C:\WINDOWS\system32\Chakra.dll
2016-03-09 16:10:04 ----A---- C:\WINDOWS\SYSWOW64\windows.storage.dll
2016-03-09 16:10:04 ----A---- C:\WINDOWS\SYSWOW64\Windows.Data.Pdf.dll
2016-03-09 16:10:04 ----A---- C:\WINDOWS\SYSWOW64\Chakra.dll
2016-03-09 16:10:02 ----A---- C:\WINDOWS\SYSWOW64\ActiveSyncProvider.dll
2016-03-09 16:10:02 ----A---- C:\WINDOWS\system32\drivers\dxgkrnl.sys
2016-03-09 16:10:02 ----A---- C:\WINDOWS\system32\dosvc.dll
2016-03-09 16:10:02 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2016-03-09 16:10:02 ----A---- C:\WINDOWS\system32\ActiveSyncProvider.dll
2016-03-09 16:10:01 ----A---- C:\WINDOWS\SYSWOW64\KernelBase.dll
2016-03-09 16:10:01 ----A---- C:\WINDOWS\system32\win32kbase.sys
2016-03-09 16:10:01 ----A---- C:\WINDOWS\system32\mfsvr.dll
2016-03-09 16:10:00 ----A---- C:\WINDOWS\SYSWOW64\Unistore.dll
2016-03-09 16:10:00 ----A---- C:\WINDOWS\SYSWOW64\mfsvr.dll
2016-03-09 16:10:00 ----A---- C:\WINDOWS\system32\WWAHost.exe
2016-03-09 16:10:00 ----A---- C:\WINDOWS\system32\SRHInproc.dll
2016-03-09 16:10:00 ----A---- C:\WINDOWS\system32\KernelBase.dll
2016-03-09 16:10:00 ----A---- C:\WINDOWS\system32\diagtrack.dll
2016-03-09 16:10:00 ----A---- C:\WINDOWS\system32\ContactApis.dll
2016-03-09 16:09:59 ----A---- C:\WINDOWS\SYSWOW64\WWAHost.exe
2016-03-09 16:09:59 ----A---- C:\WINDOWS\SYSWOW64\WMPDMC.exe
2016-03-09 16:09:59 ----A---- C:\WINDOWS\SYSWOW64\SRHInproc.dll
2016-03-09 16:09:59 ----A---- C:\WINDOWS\SYSWOW64\mfds.dll
2016-03-09 16:09:59 ----A---- C:\WINDOWS\SYSWOW64\dxgi.dll
2016-03-09 16:09:59 ----A---- C:\WINDOWS\SYSWOW64\ContactApis.dll
2016-03-09 16:09:59 ----A---- C:\WINDOWS\system32\Unistore.dll
2016-03-09 16:09:59 ----A---- C:\WINDOWS\system32\ole32.dll
2016-03-09 16:09:59 ----A---- C:\WINDOWS\system32\dxgi.dll
2016-03-09 16:09:59 ----A---- C:\WINDOWS\system32\drivers\dxgmms2.sys
2016-03-09 16:09:58 ----A---- C:\WINDOWS\SYSWOW64\SRH.dll
2016-03-09 16:09:58 ----A---- C:\WINDOWS\SYSWOW64\ole32.dll
2016-03-09 16:09:58 ----A---- C:\WINDOWS\SYSWOW64\AppointmentApis.dll
2016-03-09 16:09:58 ----A---- C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll
2016-03-09 16:09:58 ----A---- C:\WINDOWS\system32\mfds.dll
2016-03-09 16:09:58 ----A---- C:\WINDOWS\system32\invagent.dll
2016-03-09 16:09:58 ----A---- C:\WINDOWS\system32\ClipSVC.dll
2016-03-09 16:09:58 ----A---- C:\WINDOWS\system32\AppxPackaging.dll
2016-03-09 16:09:58 ----A---- C:\WINDOWS\system32\AppointmentApis.dll
2016-03-09 16:09:57 ----A---- C:\WINDOWS\SYSWOW64\Windows.Internal.Bluetooth.dll
2016-03-09 16:09:57 ----A---- C:\WINDOWS\SYSWOW64\wer.dll
2016-03-09 16:09:57 ----A---- C:\WINDOWS\SYSWOW64\msv1_0.dll
2016-03-09 16:09:57 ----A---- C:\WINDOWS\SYSWOW64\deviceaccess.dll
2016-03-09 16:09:57 ----A---- C:\WINDOWS\SYSWOW64\AppxPackaging.dll
2016-03-09 16:09:57 ----A---- C:\WINDOWS\system32\SRH.dll
2016-03-09 16:09:57 ----A---- C:\WINDOWS\system32\msv1_0.dll
2016-03-09 16:09:57 ----A---- C:\WINDOWS\system32\fontdrvhost.exe
2016-03-09 16:09:57 ----A---- C:\WINDOWS\system32\deviceaccess.dll
2016-03-09 16:09:56 ----A---- C:\WINDOWS\SYSWOW64\PackageStateRoaming.dll
2016-03-09 16:09:56 ----A---- C:\WINDOWS\SYSWOW64\fontdrvhost.exe
2016-03-09 16:09:56 ----A---- C:\WINDOWS\SYSWOW64\AppXDeploymentClient.dll
2016-03-09 16:09:56 ----A---- C:\WINDOWS\system32\WMPDMC.exe
2016-03-09 16:09:56 ----A---- C:\WINDOWS\system32\wer.dll
2016-03-09 16:09:56 ----A---- C:\WINDOWS\system32\dafBth.dll
2016-03-09 16:09:56 ----A---- C:\WINDOWS\system32\atmfd.dll
2016-03-09 16:09:56 ----A---- C:\WINDOWS\system32\AppXDeploymentServer.dll
2016-03-09 16:09:56 ----A---- C:\WINDOWS\system32\AppXDeploymentClient.dll
2016-03-09 16:09:55 ----A---- C:\WINDOWS\SYSWOW64\sqmapi.dll
2016-03-09 16:09:55 ----A---- C:\WINDOWS\SYSWOW64\ChatApis.dll
2016-03-09 16:09:55 ----A---- C:\WINDOWS\SYSWOW64\FirewallAPI.dll
2016-03-09 16:09:55 ----A---- C:\WINDOWS\SYSWOW64\AppxAllUserStore.dll
2016-03-09 16:09:55 ----A---- C:\WINDOWS\system32\MPSSVC.dll
2016-03-09 16:09:55 ----A---- C:\WINDOWS\system32\ChatApis.dll
2016-03-09 16:09:55 ----A---- C:\WINDOWS\system32\EmailApis.dll
2016-03-09 16:09:55 ----A---- C:\WINDOWS\system32\CallHistoryClient.dll
2016-03-09 16:09:55 ----A---- C:\WINDOWS\system32\AppxAllUserStore.dll
2016-03-09 16:09:54 ----A---- C:\WINDOWS\SYSWOW64\EmailApis.dll
2016-03-09 16:09:54 ----A---- C:\WINDOWS\SYSWOW64\atmfd.dll
2016-03-09 16:09:54 ----A---- C:\WINDOWS\SYSWOW64\AppointmentActivation.dll
2016-03-09 16:09:54 ----A---- C:\WINDOWS\system32\VCardParser.dll
2016-03-09 16:09:54 ----A---- C:\WINDOWS\system32\sqmapi.dll
2016-03-09 16:09:54 ----A---- C:\WINDOWS\system32\sharemediacpl.dll
2016-03-09 16:09:54 ----A---- C:\WINDOWS\system32\drivers\dxgmms1.sys
2016-03-09 16:09:54 ----A---- C:\WINDOWS\system32\AuthBroker.dll
2016-03-09 16:09:53 ----A---- C:\WINDOWS\SYSWOW64\cemapi.dll
2016-03-09 16:09:53 ----A---- C:\WINDOWS\system32\PackageStateRoaming.dll
2016-03-09 16:09:53 ----A---- C:\WINDOWS\system32\domgmt.dll
2016-03-09 16:09:52 ----A---- C:\WINDOWS\SYSWOW64\PhoneCallHistoryApis.dll
2016-03-09 16:09:52 ----A---- C:\WINDOWS\SYSWOW64\fwbase.dll
2016-03-09 16:09:52 ----A---- C:\WINDOWS\system32\UserDataAccountApis.dll
2016-03-09 16:09:52 ----A---- C:\WINDOWS\system32\cemapi.dll
2016-03-09 16:09:51 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Scanners.dll
2016-03-09 16:09:51 ----A---- C:\WINDOWS\SYSWOW64\olepro32.dll
2016-03-09 16:09:51 ----A---- C:\WINDOWS\system32\storewuauth.dll
2016-03-09 16:09:51 ----A---- C:\WINDOWS\system32\PimIndexMaintenance.dll
2016-03-09 16:09:51 ----A---- C:\WINDOWS\system32\AuthHost.exe
2016-03-09 16:09:51 ----A---- C:\WINDOWS\system32\AppointmentActivation.dll
2016-03-09 16:09:50 ----A---- C:\WINDOWS\SYSWOW64\wermgr.exe
2016-03-09 16:09:50 ----A---- C:\WINDOWS\SYSWOW64\VCardParser.dll
2016-03-09 16:09:50 ----A---- C:\WINDOWS\SYSWOW64\asycfilt.dll
2016-03-09 16:09:50 ----A---- C:\WINDOWS\system32\wsqmcons.exe
2016-03-09 16:09:50 ----A---- C:\WINDOWS\system32\wermgr.exe
2016-03-09 16:09:50 ----A---- C:\WINDOWS\system32\PhoneCallHistoryApis.dll
2016-03-09 16:09:50 ----A---- C:\WINDOWS\system32\drivers\USBSTOR.SYS
2016-03-09 16:09:50 ----A---- C:\WINDOWS\system32\aeinv.dll
2016-03-09 16:09:49 ----A---- C:\WINDOWS\SYSWOW64\POSyncServices.dll
2016-03-09 16:09:49 ----A---- C:\WINDOWS\SYSWOW64\ExSMime.dll
2016-03-09 16:09:49 ----A---- C:\WINDOWS\SYSWOW64\AppxSip.dll
2016-03-09 16:09:49 ----A---- C:\WINDOWS\system32\UserDataPlatformHelperUtil.dll
2016-03-09 16:09:49 ----A---- C:\WINDOWS\system32\asycfilt.dll
2016-03-09 16:09:49 ----A---- C:\WINDOWS\system32\AppxSysprep.dll
2016-03-09 16:09:48 ----A---- C:\WINDOWS\SYSWOW64\UserDataAccountApis.dll
2016-03-09 16:09:48 ----A---- C:\WINDOWS\SYSWOW64\ExtrasXmlParser.dll
2016-03-09 16:09:48 ----A---- C:\WINDOWS\system32\wpninprc.dll
2016-03-09 16:09:48 ----A---- C:\WINDOWS\system32\seclogon.dll
2016-03-09 16:09:48 ----A---- C:\WINDOWS\system32\PimIndexMaintenanceClient.dll
2016-03-09 16:09:48 ----A---- C:\WINDOWS\system32\FirewallAPI.dll
2016-03-09 16:09:48 ----A---- C:\WINDOWS\system32\ExSMime.dll
2016-03-09 16:09:48 ----A---- C:\WINDOWS\system32\dssvc.dll
2016-03-09 16:09:48 ----A---- C:\WINDOWS\system32\devinv.dll
2016-03-09 16:09:48 ----A---- C:\WINDOWS\system32\AppxSip.dll
2016-03-09 16:09:47 ----A---- C:\WINDOWS\SYSWOW64\UserDataTimeUtil.dll
2016-03-09 16:09:47 ----A---- C:\WINDOWS\SYSWOW64\UserDataPlatformHelperUtil.dll
2016-03-09 16:09:47 ----A---- C:\WINDOWS\SYSWOW64\profext.dll
2016-03-09 16:09:47 ----A---- C:\WINDOWS\SYSWOW64\PimIndexMaintenanceClient.dll
2016-03-09 16:09:47 ----A---- C:\WINDOWS\SYSWOW64\CallHistoryClient.dll
2016-03-09 16:09:47 ----A---- C:\WINDOWS\system32\Windows.Devices.Scanners.dll
2016-03-09 16:09:47 ----A---- C:\WINDOWS\system32\wfapigp.dll
2016-03-09 16:09:47 ----A---- C:\WINDOWS\system32\UserDataTypeHelperUtil.dll
2016-03-09 16:09:47 ----A---- C:\WINDOWS\system32\UserDataTimeUtil.dll
2016-03-09 16:09:47 ----A---- C:\WINDOWS\system32\UserDataLanguageUtil.dll
2016-03-09 16:09:47 ----A---- C:\WINDOWS\system32\POSyncServices.dll
2016-03-09 16:09:47 ----A---- C:\WINDOWS\system32\fwbase.dll
2016-03-09 16:09:47 ----A---- C:\WINDOWS\system32\ExtrasXmlParser.dll
2016-03-09 16:09:47 ----A---- C:\WINDOWS\system32\drivers\BTHUSB.SYS
2016-03-09 16:09:46 ----A---- C:\WINDOWS\SYSWOW64\UserDataTypeHelperUtil.dll
2016-03-09 16:09:46 ----A---- C:\WINDOWS\SYSWOW64\UserDataLanguageUtil.dll
2016-03-09 16:09:46 ----A---- C:\WINDOWS\system32\drivers\bthport.sys
2016-03-09 16:09:45 ----A---- C:\WINDOWS\SYSWOW64\wfapigp.dll
2016-03-09 16:09:45 ----A---- C:\WINDOWS\SYSWOW64\werui.dll
2016-03-09 16:09:45 ----A---- C:\WINDOWS\SYSWOW64\fwpolicyiomgr.dll
2016-03-09 16:09:45 ----A---- C:\WINDOWS\system32\werui.dll
2016-03-09 16:09:45 ----A---- C:\WINDOWS\system32\vaultsvc.dll
2016-03-09 16:09:45 ----A---- C:\WINDOWS\system32\vaultcli.dll
2016-03-09 16:09:45 ----A---- C:\WINDOWS\system32\UserDataService.dll
2016-03-09 16:09:45 ----A---- C:\WINDOWS\system32\profext.dll
2016-03-09 16:09:45 ----A---- C:\WINDOWS\system32\Chakradiag.dll
2016-03-09 16:09:45 ----A---- C:\WINDOWS\system32\fwpolicyiomgr.dll
2016-03-09 16:09:45 ----A---- C:\WINDOWS\system32\configurationclient.dll
2016-03-09 16:09:44 ----A---- C:\WINDOWS\SYSWOW64\fontsub.dll
2016-03-09 16:09:44 ----A---- C:\WINDOWS\SYSWOW64\atmlib.dll
2016-03-09 16:09:44 ----A---- C:\WINDOWS\system32\scapi.dll
2016-03-09 16:09:44 ----A---- C:\WINDOWS\system32\fontsub.dll
2016-03-09 16:09:44 ----A---- C:\WINDOWS\system32\drivers\bthenum.sys
2016-03-09 16:09:44 ----A---- C:\WINDOWS\system32\atmlib.dll
2016-03-09 13:12:37 ----D---- C:\$SysReset
2016-03-06 15:07:13 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Protection.PlayReady.dll
2016-03-06 15:07:13 ----A---- C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2016-03-06 15:07:12 ----A---- C:\WINDOWS\SYSWOW64\jsproxy.dll
2016-03-06 15:07:11 ----A---- C:\WINDOWS\SYSWOW64\wininetlui.dll
2016-03-06 15:07:11 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2016-03-06 15:07:11 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2016-03-06 15:07:11 ----A---- C:\WINDOWS\SYSWOW64\ntdll.dll
2016-03-06 15:07:11 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2016-03-06 15:07:11 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2016-03-06 15:07:11 ----A---- C:\WINDOWS\SYSWOW64\dwmcore.dll
2016-03-06 15:07:10 ----A---- C:\WINDOWS\system32\wininetlui.dll
2016-03-06 15:07:10 ----A---- C:\WINDOWS\system32\wininet.dll
2016-03-06 15:07:10 ----A---- C:\WINDOWS\system32\urlmon.dll
2016-03-06 15:07:10 ----A---- C:\WINDOWS\system32\ntdll.dll
2016-03-06 15:07:10 ----A---- C:\WINDOWS\system32\dwmcore.dll
2016-03-06 15:07:09 ----A---- C:\WINDOWS\system32\jscript9.dll
2016-03-06 15:07:09 ----A---- C:\WINDOWS\system32\ieframe.dll
2016-03-06 15:07:07 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
2016-03-06 15:07:07 ----A---- C:\WINDOWS\SYSWOW64\TextInputFramework.dll
2016-03-06 15:07:07 ----A---- C:\WINDOWS\SYSWOW64\InputService.dll
2016-03-06 15:07:07 ----A---- C:\WINDOWS\system32\twinui.dll
2016-03-06 15:07:07 ----A---- C:\WINDOWS\system32\TextInputFramework.dll
2016-03-06 15:07:07 ----A---- C:\WINDOWS\system32\InputService.dll
2016-03-06 15:07:07 ----A---- C:\WINDOWS\system32\enterprisecsps.dll
2016-03-06 15:07:07 ----A---- C:\WINDOWS\system32\audiosrv.dll
2016-03-06 15:07:07 ----A---- C:\WINDOWS\system32\AudioSes.dll
2016-03-06 15:07:07 ----A---- C:\WINDOWS\system32\AudioEndpointBuilder.dll
2016-03-06 15:07:07 ----A---- C:\WINDOWS\system32\audiodg.exe
2016-03-06 15:07:06 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2016-03-06 15:07:05 ----A---- C:\WINDOWS\system32\jsproxy.dll
2016-03-06 15:07:05 ----A---- C:\WINDOWS\system32\ipnathlp.dll
2016-03-06 15:07:04 ----A---- C:\WINDOWS\system32\shell32.dll
2016-03-06 15:07:02 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2016-03-06 15:07:01 ----A---- C:\WINDOWS\SYSWOW64\MFMediaEngine.dll
2016-03-06 15:07:01 ----A---- C:\WINDOWS\system32\wifinetworkmanager.dll
2016-03-06 15:07:01 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll
2016-03-06 15:07:01 ----A---- C:\WINDOWS\system32\d3d11.dll
2016-03-06 15:07:01 ----A---- C:\WINDOWS\system32\CoreUIComponents.dll
2016-03-06 15:07:00 ----A---- C:\WINDOWS\SYSWOW64\d3d11.dll
2016-03-06 15:07:00 ----A---- C:\WINDOWS\SYSWOW64\CoreUIComponents.dll
2016-03-06 15:07:00 ----A---- C:\WINDOWS\system32\StorSvc.dll
2016-03-06 15:07:00 ----A---- C:\WINDOWS\system32\SmsRouterSvc.dll
2016-03-06 15:07:00 ----A---- C:\WINDOWS\system32\AUDIOKSE.dll
2016-03-06 15:06:59 ----A---- C:\WINDOWS\SYSWOW64\mfmp4srcsnk.dll
2016-03-06 15:06:59 ----A---- C:\WINDOWS\SYSWOW64\mfasfsrcsnk.dll
2016-03-06 15:06:59 ----A---- C:\WINDOWS\system32\Windows.UI.Logon.dll
2016-03-06 15:06:59 ----A---- C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2016-03-06 15:06:59 ----A---- C:\WINDOWS\system32\mfmp4srcsnk.dll
2016-03-06 15:06:59 ----A---- C:\WINDOWS\system32\drivers\ntfs.sys
2016-03-06 15:06:58 ----A---- C:\WINDOWS\SYSWOW64\mfsrcsnk.dll
2016-03-06 15:06:58 ----A---- C:\WINDOWS\system32\wwansvc.dll
2016-03-06 15:06:58 ----A---- C:\WINDOWS\system32\mfsrcsnk.dll
2016-03-06 15:06:58 ----A---- C:\WINDOWS\system32\mfcore.dll
2016-03-06 15:06:58 ----A---- C:\WINDOWS\system32\iertutil.dll
2016-03-06 15:06:58 ----A---- C:\WINDOWS\system32\CertEnroll.dll
2016-03-06 15:06:57 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Audio.dll
2016-03-06 15:06:57 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.dll
2016-03-06 15:06:57 ----A---- C:\WINDOWS\SYSWOW64\mfmpeg2srcsnk.dll
2016-03-06 15:06:57 ----A---- C:\WINDOWS\SYSWOW64\mfcore.dll
2016-03-06 15:06:57 ----A---- C:\WINDOWS\system32\XblGameSave.dll
2016-03-06 15:06:57 ----A---- C:\WINDOWS\system32\XblAuthManager.dll
2016-03-06 15:06:57 ----A---- C:\WINDOWS\system32\Windows.UI.Shell.dll
2016-03-06 15:06:57 ----A---- C:\WINDOWS\system32\Windows.UI.dll
2016-03-06 15:06:57 ----A---- C:\WINDOWS\system32\Windows.Media.Audio.dll
2016-03-06 15:06:57 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2016-03-06 15:06:57 ----A---- C:\WINDOWS\system32\schedsvc.dll
2016-03-06 15:06:57 ----A---- C:\WINDOWS\system32\mfasfsrcsnk.dll
2016-03-06 15:06:57 ----A---- C:\WINDOWS\system32\DisplayManager.dll
2016-03-06 15:06:56 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.dll
2016-03-06 15:06:56 ----A---- C:\WINDOWS\SYSWOW64\mstscax.dll
2016-03-06 15:06:56 ----A---- C:\WINDOWS\SYSWOW64\MFCaptureEngine.dll
2016-03-06 15:06:56 ----A---- C:\WINDOWS\SYSWOW64\DisplayManager.dll
2016-03-06 15:06:56 ----A---- C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2016-03-06 15:06:56 ----A---- C:\WINDOWS\system32\Windows.Media.dll
2016-03-06 15:06:56 ----A---- C:\WINDOWS\system32\Windows.AccountsControl.dll
2016-03-06 15:06:56 ----A---- C:\WINDOWS\system32\wcmsvc.dll
2016-03-06 15:06:56 ----A---- C:\WINDOWS\system32\NetSetupEngine.dll
2016-03-06 15:06:56 ----A---- C:\WINDOWS\system32\mstscax.dll
2016-03-06 15:06:56 ----A---- C:\WINDOWS\system32\MFCaptureEngine.dll
2016-03-06 15:06:55 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Logon.dll
2016-03-06 15:06:55 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Core.TextInput.dll
2016-03-06 15:06:55 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.dll
2016-03-06 15:06:55 ----A---- C:\WINDOWS\SYSWOW64\Windows.AccountsControl.dll
2016-03-06 15:06:55 ----A---- C:\WINDOWS\SYSWOW64\mfmkvsrcsnk.dll
2016-03-06 15:06:55 ----A---- C:\WINDOWS\SYSWOW64\ExplorerFrame.dll
2016-03-06 15:06:55 ----A---- C:\WINDOWS\SYSWOW64\CertEnroll.dll
2016-03-06 15:06:55 ----A---- C:\WINDOWS\system32\SMSRouter.dll
2016-03-06 15:06:55 ----A---- C:\WINDOWS\system32\ngcsvc.dll
2016-03-06 15:06:55 ----A---- C:\WINDOWS\system32\ngckeyenum.dll
2016-03-06 15:06:55 ----A---- C:\WINDOWS\system32\modernexecserver.dll
2016-03-06 15:06:55 ----A---- C:\WINDOWS\system32\ExplorerFrame.dll
2016-03-06 15:06:54 ----A---- C:\WINDOWS\SYSWOW64\NetSetupEngine.dll
2016-03-06 15:06:54 ----A---- C:\WINDOWS\SYSWOW64\MSFlacDecoder.dll
2016-03-06 15:06:54 ----A---- C:\WINDOWS\system32\Windows.Media.MediaControl.dll
2016-03-06 15:06:54 ----A---- C:\WINDOWS\system32\TimeBrokerServer.dll
2016-03-06 15:06:54 ----A---- C:\WINDOWS\system32\SharedStartModel.dll
2016-03-06 15:06:54 ----A---- C:\WINDOWS\system32\SettingSyncCore.dll
2016-03-06 15:06:54 ----A---- C:\WINDOWS\system32\SettingSync.dll
2016-03-06 15:06:54 ----A---- C:\WINDOWS\system32\QuickActionsDataModel.dll
2016-03-06 15:06:54 ----A---- C:\WINDOWS\system32\NetSetupSvc.dll
2016-03-06 15:06:54 ----A---- C:\WINDOWS\system32\NetSetupShim.dll
2016-03-06 15:06:54 ----A---- C:\WINDOWS\system32\MSFlacDecoder.dll
2016-03-06 15:06:54 ----A---- C:\WINDOWS\system32\mfmkvsrcsnk.dll
2016-03-06 15:06:54 ----A---- C:\WINDOWS\system32\MDEServer.exe
2016-03-06 15:06:54 ----A---- C:\WINDOWS\system32\generaltel.dll
2016-03-06 15:06:53 ----A---- C:\WINDOWS\system32\usbmon.dll
2016-03-06 15:06:52 ----A---- C:\WINDOWS\system32\wlansvc.dll
2016-03-06 15:06:52 ----A---- C:\WINDOWS\system32\winload.exe
2016-03-06 15:06:52 ----A---- C:\WINDOWS\system32\DeviceEnroller.exe
2016-03-06 15:06:51 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.MediaControl.dll
2016-03-06 15:06:51 ----A---- C:\WINDOWS\SYSWOW64\WiFiDisplay.dll
2016-03-06 15:06:51 ----A---- C:\WINDOWS\SYSWOW64\thumbcache.dll
2016-03-06 15:06:51 ----A---- C:\WINDOWS\SYSWOW64\taskschd.dll
2016-03-06 15:06:51 ----A---- C:\WINDOWS\SYSWOW64\SyncController.dll
2016-03-06 15:06:51 ----A---- C:\WINDOWS\SYSWOW64\SettingSyncCore.dll
2016-03-06 15:06:51 ----A---- C:\WINDOWS\SYSWOW64\SettingSync.dll
2016-03-06 15:06:51 ----A---- C:\WINDOWS\SYSWOW64\NetSetupShim.dll
2016-03-06 15:06:51 ----A---- C:\WINDOWS\SYSWOW64\netlogon.dll
2016-03-06 15:06:51 ----A---- C:\WINDOWS\SYSWOW64\msvproc.dll
2016-03-06 15:06:51 ----A---- C:\WINDOWS\SYSWOW64\MCRecvSrc.dll
2016-03-06 15:06:51 ----A---- C:\WINDOWS\SYSWOW64\InstallAgent.exe
2016-03-06 15:06:51 ----A---- C:\WINDOWS\system32\wuuhext.dll
2016-03-06 15:06:51 ----A---- C:\WINDOWS\system32\winresume.exe
2016-03-06 15:06:51 ----A---- C:\WINDOWS\system32\wifiprofilessettinghandler.dll
2016-03-06 15:06:51 ----A---- C:\WINDOWS\system32\WiFiDisplay.dll
2016-03-06 15:06:51 ----A---- C:\WINDOWS\system32\uDWM.dll
2016-03-06 15:06:51 ----A---- C:\WINDOWS\system32\thumbcache.dll
2016-03-06 15:06:51 ----A---- C:\WINDOWS\system32\taskschd.dll
2016-03-06 15:06:51 ----A---- C:\WINDOWS\system32\SyncController.dll
2016-03-06 15:06:51 ----A---- C:\WINDOWS\system32\spoolsv.exe
2016-03-06 15:06:51 ----A---- C:\WINDOWS\system32\netlogon.dll
2016-03-06 15:06:51 ----A---- C:\WINDOWS\system32\msvproc.dll
2016-03-06 15:06:51 ----A---- C:\WINDOWS\system32\MCRecvSrc.dll
2016-03-06 15:06:51 ----A---- C:\WINDOWS\system32\localspl.dll
2016-03-06 15:06:51 ----A---- C:\WINDOWS\system32\InstallAgent.exe
2016-03-06 15:06:51 ----A---- C:\WINDOWS\system32\flvprophandler.dll
2016-03-06 15:06:51 ----A---- C:\WINDOWS\system32\drivers\xinputhid.sys
2016-03-06 15:06:51 ----A---- C:\WINDOWS\system32\drivers\xboxgip.sys
2016-03-06 15:06:51 ----A---- C:\WINDOWS\system32\drivers\sdbus.sys
2016-03-06 15:06:51 ----A---- C:\WINDOWS\system32\drivers\rfcomm.sys
2016-03-06 15:06:51 ----A---- C:\WINDOWS\system32\drivers\mrxsmb.sys
2016-03-06 15:06:51 ----A---- C:\WINDOWS\system32\drivers\dumpsd.sys
2016-03-06 15:06:51 ----A---- C:\WINDOWS\system32\drivers\bridge.sys
2016-03-06 15:06:51 ----A---- C:\WINDOWS\system32\drivers\appid.sys
2016-03-06 15:06:51 ----A---- C:\WINDOWS\system32\drivers\acpi.sys
2016-03-06 15:06:51 ----A---- C:\WINDOWS\system32\DeviceCensus.exe
2016-03-06 15:06:51 ----A---- C:\WINDOWS\system32\bisrv.dll
2016-03-06 15:06:50 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2016-03-06 15:06:50 ----A---- C:\WINDOWS\SYSWOW64\TimeBrokerClient.dll
2016-03-06 15:06:50 ----A---- C:\WINDOWS\SYSWOW64\LaunchWinApp.exe
2016-03-06 15:06:50 ----A---- C:\WINDOWS\SYSWOW64\InputLocaleManager.dll
2016-03-06 15:06:50 ----A---- C:\WINDOWS\system32\wlansvcpal.dll
2016-03-06 15:06:50 ----A---- C:\WINDOWS\system32\wlansec.dll
2016-03-06 15:06:50 ----A---- C:\WINDOWS\system32\wlanmsm.dll
2016-03-06 15:06:50 ----A---- C:\WINDOWS\system32\wlanapi.dll
2016-03-06 15:06:50 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2016-03-06 15:06:50 ----A---- C:\WINDOWS\system32\WiFiConfigSP.dll
2016-03-06 15:06:50 ----A---- C:\WINDOWS\system32\wfdprov.dll
2016-03-06 15:06:50 ----A---- C:\WINDOWS\system32\TimeBrokerClient.dll
2016-03-06 15:06:50 ----A---- C:\WINDOWS\system32\srpapi.dll
2016-03-06 15:06:50 ----A---- C:\WINDOWS\system32\psmsrv.dll
2016-03-06 15:06:50 ----A---- C:\WINDOWS\system32\PsmServiceExtHost.dll
2016-03-06 15:06:50 ----A---- C:\WINDOWS\system32\provpackageapidll.dll
2016-03-06 15:06:50 ----A---- C:\WINDOWS\system32\MDMAppInstaller.exe
2016-03-06 15:06:50 ----A---- C:\WINDOWS\system32\MBMediaManager.dll
2016-03-06 15:06:50 ----A---- C:\WINDOWS\system32\LaunchWinApp.exe
2016-03-06 15:06:50 ----A---- C:\WINDOWS\system32\irmon.dll
2016-03-06 15:06:50 ----A---- C:\WINDOWS\system32\InputLocaleManager.dll
2016-03-06 15:06:50 ----A---- C:\WINDOWS\system32\EnterpriseDesktopAppMgmtCSP.dll
2016-03-06 15:06:50 ----A---- C:\WINDOWS\system32\drivers\USBHUB3.SYS
2016-03-06 15:06:50 ----A---- C:\WINDOWS\system32\drivers\rasl2tp.sys
2016-03-06 15:06:50 ----A---- C:\WINDOWS\system32\drivers\mrxsmb10.sys
2016-03-06 15:06:50 ----A---- C:\WINDOWS\system32\bcastdvr.exe
2016-03-06 15:06:50 ----A---- C:\WINDOWS\system32\AppCapture.dll
2016-03-06 15:06:50 ----A---- C:\WINDOWS\system32\accountaccessor.dll

======List of files/folders modified in the last 1 month======

2016-03-29 16:28:17 ----D---- C:\Program Files\trend micro
2016-03-29 16:27:40 ----D---- C:\WINDOWS\Temp
2016-03-29 16:27:40 ----D---- C:\WINDOWS\System32
2016-03-29 16:27:40 ----A---- C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2016-03-29 16:10:51 ----D---- C:\WINDOWS\system32\config
2016-03-29 16:08:46 ----D---- C:\WINDOWS\CbsTemp
2016-03-29 16:08:27 ----D---- C:\WINDOWS\INF
2016-03-29 16:08:27 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2016-03-29 16:07:00 ----D---- C:\WINDOWS\Prefetch
2016-03-29 16:06:54 ----D---- C:\WINDOWS\AppReadiness
2016-03-29 16:06:27 ----D---- C:\ProgramData\boost_interprocess
2016-03-29 16:06:13 ----D---- C:\ProgramData\ASUS Smart Gesture
2016-03-29 16:05:33 ----D---- C:\Windows
2016-03-29 15:39:46 ----HD---- C:\Program Files\WindowsApps
2016-03-29 15:35:22 ----D---- C:\WINDOWS\system32\sru
2016-03-28 23:29:23 ----D---- C:\WINDOWS\system32\catroot2
2016-03-28 23:29:19 ----D---- C:\WINDOWS\WinSxS
2016-03-28 23:29:01 ----D---- C:\Users\Gabriela\AppData\Roaming\vlc
2016-03-28 22:31:46 ----D---- C:\WINDOWS\debug
2016-03-28 22:31:41 ----D---- C:\WINDOWS\Microsoft.NET
2016-03-28 22:31:39 ----RD---- C:\WINDOWS\assembly
2016-03-16 17:29:20 ----SHD---- C:\System Volume Information
2016-03-16 14:16:44 ----SHDC---- C:\WINDOWS\Installer
2016-03-16 14:16:28 ----AD---- C:\ProgramData\regid.1991-06.com.microsoft
2016-03-16 14:10:21 ----AD---- C:\Program Files\Microsoft Office 15
2016-03-13 14:51:00 ----D---- C:\WINDOWS\system32\DriverStore
2016-03-13 14:48:29 ----D---- C:\WINDOWS\SysWOW64
2016-03-10 05:03:29 ----D---- C:\WINDOWS\rescache
2016-03-10 04:31:44 ----D---- C:\WINDOWS\system32\drivers
2016-03-10 04:30:44 ----D---- C:\WINDOWS\system32\migration
2016-03-10 04:30:41 ----D---- C:\WINDOWS\AppPatch
2016-03-10 04:30:41 ----D---- C:\Program Files\Windows Portable Devices
2016-03-10 04:30:41 ----D---- C:\Program Files\Windows Multimedia Platform
2016-03-10 04:30:41 ----D---- C:\Program Files\Windows Media Player
2016-03-10 04:30:41 ----D---- C:\Program Files\Internet Explorer
2016-03-10 04:30:41 ----D---- C:\Program Files (x86)\Windows Portable Devices
2016-03-10 04:30:41 ----D---- C:\Program Files (x86)\Windows Multimedia Platform
2016-03-10 04:30:41 ----D---- C:\Program Files (x86)\Internet Explorer
2016-03-09 18:05:48 ----D---- C:\WINDOWS\system32\MRT
2016-03-09 18:03:41 ----A---- C:\WINDOWS\system32\MRT.exe
2016-03-09 11:54:13 ----D---- C:\Users\Gabriela\AppData\Roaming\Skype
2016-03-08 09:12:26 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe
2016-03-06 20:46:59 ----D---- C:\WINDOWS\SYSWOW64\migration
2016-03-06 20:46:59 ----D---- C:\WINDOWS\SYSWOW64\Dism
2016-03-06 20:46:56 ----D---- C:\WINDOWS\system32\WinBioPlugIns
2016-03-06 20:46:56 ----D---- C:\WINDOWS\system32\wbem
2016-03-06 20:46:56 ----D---- C:\WINDOWS\system32\SystemResetPlatform
2016-03-06 20:46:56 ----D---- C:\WINDOWS\system32\Dism
2016-03-06 20:46:56 ----D---- C:\WINDOWS\system32\Boot
2016-03-06 20:46:56 ----D---- C:\WINDOWS\system32\appraiser
2016-03-06 20:46:54 ----RSD---- C:\WINDOWS\Media
2016-03-06 20:46:54 ----RSD---- C:\WINDOWS\Fonts
2016-03-06 20:46:54 ----RD---- C:\WINDOWS\PurchaseDialog
2016-03-06 20:46:54 ----D---- C:\WINDOWS\bcastdvr
2016-03-06 20:46:53 ----D---- C:\Program Files\Windows Journal
2016-03-06 15:00:45 ----D---- C:\WINDOWS\system32\WDI
2016-03-06 13:49:14 ----D---- C:\WINDOWS\system32\NDF

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 edevmon;edevmon; C:\WINDOWS\system32\DRIVERS\edevmon.sys [2015-07-14 251632]
R0 excsd;ExpressCache Storage Filter Driver; C:\WINDOWS\system32\DRIVERS\excsd.sys [2013-11-18 117488]
R0 iaStorA;iaStorA; C:\WINDOWS\System32\drivers\iaStorA.sys [2014-06-26 670056]
R0 IntelHSWPcc;IntelHSWPcc; C:\WINDOWS\System32\drivers\IntelPcc.sys [2014-10-16 79528]
R1 ATKWMIACPIIO;ATKWMIACPI Driver; \??\C:\Program Files (x86)\ASUS\ATK Package\ATK WMIACPI\atkwmiacpi64.sys [2013-07-02 19768]
R1 eamonm;eamonm; C:\WINDOWS\system32\DRIVERS\eamonm.sys [2015-07-14 255240]
R1 ehdrv;ehdrv; C:\WINDOWS\system32\DRIVERS\ehdrv.sys [2015-07-14 178520]
R1 excfs;ExpressCache File System Filter Driver; C:\WINDOWS\system32\DRIVERS\excfs.sys [2013-11-18 25840]
R1 FileCrypt;@%systemroot%\system32\drivers\filecrypt.sys,-100; C:\WINDOWS\system32\drivers\filecrypt.sys [2015-10-30 87040]
R1 GpuEnergyDrv;@%SystemRoot%\system32\drivers\gpuenergydrv.sys,-100; C:\WINDOWS\System32\drivers\gpuenergydrv.sys [2015-10-30 8192]
R2 ASMMAP64;ASMMAP64; \??\C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\ASMMAP64.sys [2009-07-02 15416]
R2 epfwwfpr;epfwwfpr; C:\WINDOWS\system32\DRIVERS\epfwwfpr.sys [2015-07-14 168208]
R2 MMCSS;@%systemroot%\system32\drivers\mmcss.sys,-100; C:\WINDOWS\system32\drivers\mmcss.sys [2015-10-30 47616]
R2 storqosflt;@%SystemRoot%\System32\drivers\storqosflt.sys,-101; C:\WINDOWS\system32\drivers\storqosflt.sys [2015-10-30 78848]
R3 ATP;@oem9.inf,%PS2.DeviceDesc%;ASUS Input Device; C:\WINDOWS\System32\drivers\AsusTP.sys [2015-12-14 101368]
R3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Bluetooth Enumerator Service; C:\WINDOWS\System32\drivers\BthEnum.sys [2016-02-24 112640]
R3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Bluetooth Low Energy Driver; C:\WINDOWS\System32\drivers\BthLEEnum.sys [2016-01-05 245760]
R3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Bluetooth Device (Personal Area Network); C:\WINDOWS\System32\drivers\bthpan.sys [2015-10-30 128512]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Bluetooth Radio USB Driver; C:\WINDOWS\System32\drivers\BTHUSB.sys [2016-02-24 84992]
R3 HIDSwitch;@oem33.inf,%ASSW.DisplayName%;ASUS Wireless Radio Control; C:\WINDOWS\System32\drivers\AsHIDSwitch64.sys [2015-05-13 19976]
R3 ibtusb;@oem15.inf,%ibtusb.SVCDESC_IBT%;Intel(R) Wireless Bluetooth(R); C:\WINDOWS\system32\DRIVERS\ibtusb.sys [2015-07-14 263952]
R3 igfx;igfx; C:\WINDOWS\system32\DRIVERS\igdkmd64.sys [2015-12-23 7858088]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RTKVHD64.sys [2014-12-26 4363864]
R3 iwdbus;@oem31.inf,%iwdbus.SVCDESC%;IWD Bus Enumerator; C:\WINDOWS\System32\drivers\iwdbus.sys [2014-12-11 30512]
R3 kbfiltr;@oem14.inf,%kbfiltr.SvcDesc%;Keyboard Filter; C:\WINDOWS\System32\drivers\kbfiltr.sys [2012-08-06 17280]
R3 MEIx64;@oem13.inf,%TEE_SvcDesc%;Intel(R) Management Engine Interface ; C:\WINDOWS\system32\DRIVERS\TeeDriverx64.sys [2014-09-03 126976]
R3 NETwNb64;___ Intel(R) Wireless Adapter Driver for Windows 8.1 - 64 Bit; C:\WINDOWS\System32\drivers\Netwbw02.sys [2015-10-30 3485696]
R3 nvlddmkm;nvlddmkm; C:\WINDOWS\system32\DRIVERS\nvlddmkm.sys [2015-07-13 11139216]
R3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Bluetooth Device (RFCOMM Protocol TDI); C:\WINDOWS\System32\drivers\rfcomm.sys [2016-02-23 176640]
R3 rt640x64;@oem24.inf,%rt640.Service.DispName%;Realtek RT640 NT Driver; C:\WINDOWS\System32\drivers\rt640x64.sys [2015-07-07 895256]
R3 RTSPER;@oem16.inf,%Rts5227PER%;Realtek PCIE Card Reader - PER; C:\WINDOWS\system32\DRIVERS\RtsPer.sys [2015-05-14 751632]
S0 LSI_SAS2i;LSI_SAS2i; C:\WINDOWS\System32\drivers\lsi_sas2i.sys [2015-10-30 104800]
S0 LSI_SAS3i;LSI_SAS3i; C:\WINDOWS\System32\drivers\lsi_sas3i.sys [2015-10-30 99168]
S0 mfeelamk;McAfee Inc. mfeelamk; C:\WINDOWS\system32\drivers\mfeelamk.sys [2015-07-02 80920]
S0 percsas2i;percsas2i; C:\WINDOWS\System32\drivers\percsas2i.sys [2015-10-30 58208]
S0 percsas3i;percsas3i; C:\WINDOWS\System32\drivers\percsas3i.sys [2015-10-30 58720]
S0 storufs;@storufs.inf,%UfsServiceDesc%;Microsoft Universal Flash Storage (UFS) Driver; C:\WINDOWS\System32\drivers\storufs.sys [2015-10-30 34144]
S3 bcmfn;@bcmfn.inf,%bcmfn.SVCDESC%;bcmfn Service; C:\WINDOWS\System32\drivers\bcmfn.sys [2015-10-30 9728]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Bluetooth Port Driver; C:\WINDOWS\System32\drivers\BTHport.sys [2016-02-24 954368]
S3 buttonconverter;@buttonconverter.inf,%btnconv.SvcDesc%;Service for Portable Device Control devices; C:\WINDOWS\System32\drivers\buttonconverter.sys [2015-10-30 37376]
S3 CapImg;@capimg.inf,%CapImgHid_Service%;HID driver for CapImg touch screen; C:\WINDOWS\System32\drivers\capimg.sys [2016-01-10 117248]
S3 dg_ssudbus;@oem43.inf,%ssud.Service.DeviceDesc%;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\WINDOWS\system32\DRIVERS\ssudbus.sys [2014-01-22 108800]
S3 genericusbfn;@genericusbfn.inf,%genericusbfn.ServiceName%;Generic USB Function Class; C:\WINDOWS\System32\drivers\genericusbfn.sys [2015-10-30 20992]
S3 hidinterrupt;@hidinterrupt.inf,%HID_Interrupt.SvcDesc%;Common Driver for HID Buttons implemented with interrupts; C:\WINDOWS\System32\drivers\hidinterrupt.sys [2015-10-30 50016]
S3 iai2c;@iai2c.inf,%iai2c.SVCDESC%;Intel(R) Serial IO I2C Host Controller; C:\WINDOWS\System32\drivers\iai2c.sys [2015-10-30 81408]
S3 iaLPSS2i_I2C;@iaLPSS2i_I2C_SKL.inf,%iaLPSS2i_I2C.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [2015-10-30 165888]
S3 ibbus;@mlx4_bus.inf,%Ibbus.ServiceDesc%;Mellanox InfiniBand Bus/AL (Filter Driver); C:\WINDOWS\System32\drivers\ibbus.sys [2015-10-30 424800]
S3 IntcDAud;@oem21.inf,%IntcDAud.SvcDesc%;Intel(R) Zvuk pre obrazovky; C:\WINDOWS\system32\DRIVERS\IntcDAud.sys [2014-12-22 455440]
S3 IoQos;@%SystemRoot%\system32\drivers\ioqos.sys,-100; C:\WINDOWS\system32\drivers\ioqos.sys [2015-10-30 26624]
S3 mlx4_bus;@mlx4_bus.inf,%MLX4BUS.ServiceDesc%;Mellanox ConnectX Bus Enumerator; C:\WINDOWS\System32\drivers\mlx4_bus.sys [2015-10-30 705376]
S3 ndfltr;@mlx4_bus.inf,%ndfltr.ServiceDesc%;NetworkDirect Service; C:\WINDOWS\System32\drivers\ndfltr.sys [2015-10-30 76128]
S3 ReFSv1;ReFSv1; C:\WINDOWS\system32\drivers\ReFSv1.sys [2015-10-30 930656]
S3 ssudmdm;@oem44.inf,%ssud.Service.Name%;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.); C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [2014-01-22 206080]
S3 UcmCx0101;USB Connector Manager KMDF Class Extension; C:\WINDOWS\System32\Drivers\UcmCx.sys [2015-10-30 61952]
S3 UcmUcsi;@UcmUcsi.inf,%UcmUcsi.ServiceName%;USB Connector Manager UCSI Client; C:\WINDOWS\System32\drivers\UcmUcsi.sys [2015-10-30 46592]
S3 UdeCx;USB Device Emulation Support Library; C:\WINDOWS\system32\drivers\udecx.sys [2015-10-30 45056]
S3 Ufx01000;USB Function Class Extension; C:\WINDOWS\system32\drivers\ufx01000.sys [2015-10-30 254816]
S3 UfxChipidea;@ufxchipidea.inf,%UfxChipidea.ServiceName%;USB Chipidea Controller; C:\WINDOWS\System32\drivers\UfxChipidea.sys [2015-10-30 94048]
S3 ufxsynopsys;@ufxsynopsys.inf,%ufxsynopsys.ServiceName%;USB Synopsys Controller; C:\WINDOWS\System32\drivers\ufxsynopsys.sys [2015-10-30 131424]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeUpdateService;AdobeUpdateService; C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe [2015-07-22 680112]
R2 Apple Mobile Device Service;Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [2015-10-07 77104]
R2 ASLDRService;ASLDR Service; C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe [2014-03-26 115512]
R2 Asus WebStorage Windows Service;Asus WebStorage Windows Service; C:\Program Files (x86)\ASUS\WebStorage\2.1.11.399\AsusWSWinService.exe [2014-08-20 71168]
R2 ATKGFNEXSrv;ATKGFNEX Service; C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe [2011-11-21 96896]
R2 ClickToRunSvc;Služba Klikni a spusti balíka Microsoft Office; C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe [2016-02-09 2828016]
R2 CoreMessagingRegistrar;@%SystemRoot%\system32\coremessaging.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 DiagTrack;@%SystemRoot%\system32\diagtrack.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
R2 DoSvc;@%systemroot%\system32\dosvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 DriverMFTService;DriverMFTService; C:\Program Files (x86)\Asus\ASUS Video DSP\DriverMFTService.exe [2014-10-29 9728]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe [2015-07-08 1353720]
R2 ExpressCache;ExpressCache; C:\Program Files\Condusiv Technologies\ExpressCache\ExpressCache.exe [2013-11-18 828656]
R2 GamesAppIntegrationService;GamesAppIntegrationService; C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe [2014-04-24 227904]
R2 iBtSiva;Intel Bluetooth Service; C:\Program Files (x86)\Intel\Bluetooth\ibtsiva.exe [2014-10-21 124520]
R2 igfxCUIService2.0.0.0;Intel(R) HD Graphics Control Panel Service; C:\WINDOWS\system32\igfxCUIService.exe [2015-12-23 373160]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2014-09-03 154584]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2014-09-03 405976]
R2 NvNetworkService;NVIDIA Network Service; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [2014-12-13 1701520]
R2 nvsvc;NVIDIA Display Driver Service; C:\WINDOWS\system32\nvvsvc.exe [2015-07-13 937616]
R2 tiledatamodelsvc;@%SystemRoot%\system32\tileobjserver.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R3 ClipSVC;@%SystemRoot%\system32\ClipSVC.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
R3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2015-10-23 43696]
R3 iPod Service;iPod Service; C:\Program Files\iPod\bin\iPodService.exe [2015-12-09 644880]
R3 NgcCtnrSvc;@%SystemRoot%\System32\NgcCtnrSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R3 NgcSvc;@%SystemRoot%\System32\ngcsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R3 StateRepository;@%SystemRoot%\system32\windows.staterepository.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-30 144200]
S2 MapsBroker;@%SystemRoot%\System32\moshost.dll,-100; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc;@%SystemRoot%\system32\APHostRes.dll,-10002; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_2408aab;Sync Host_2408aab; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_2b3dcd;Sync Host_2b3dcd; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_45fb9;Sync Host_45fb9; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_483f4;Sync Host_483f4; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_5260e;Sync Host_5260e; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_8c812;Sync Host_8c812; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2015-07-09 327296]
S3 AJRouter;@%SystemRoot%\system32\AJRouter.dll,-2; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 cphs;Intel(R) Content Protection HECI Service; C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe [2015-12-23 300968]
S3 DcpSvc;@%SystemRoot%\system32\dcpsvc.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 DevQueryBroker;@%SystemRoot%\system32\DevQueryBroker.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 diagnosticshub.standardcollector.service;@%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000; C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe [2015-10-30 31744]
S3 DmEnrollmentSvc;@%systemroot%\system32\Windows.Internal.Management.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 dmwappushservice;@%SystemRoot%\system32\dmwappushsvc.dll,-200; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 DsSvc;@%SystemRoot%\system32\dssvc.dll,-10003; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 embeddedmode;@%SystemRoot%\system32\embeddedmodesvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 EntAppSvc;@EnterpriseAppMgmtSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 GamesAppService;GamesAppService; C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe [2014-04-24 203344]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-30 144200]
S3 icssvc;@%SystemRoot%\System32\tetheringservice.dll,-4097; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 Intel(R) Capability Licensing Service TCP IP Interface;Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [2014-05-13 887256]
S3 LicenseManager;@%SystemRoot%\system32\licensemanagersvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 MessagingService;@%SystemRoot%\system32\MessagingService.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_2408aab;MessagingService_2408aab; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_2b3dcd;MessagingService_2b3dcd; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_483f4;MessagingService_483f4; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_5260e;MessagingService_5260e; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_8c812;MessagingService_8c812; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 NetSetupSvc;@%SystemRoot%\system32\NetSetupSvc.dll,-3; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 ose64;Office 64 Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2015-09-01 178760]
S3 PhoneSvc;@%SystemRoot%\system32\PhoneserviceRes.dll,-10000; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-15001; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_2408aab;Kontaktné údaje_2408aab; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_2b3dcd;Kontaktné údaje_2b3dcd; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_483f4;Kontaktné údaje_483f4; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_5260e;Kontaktné údaje_5260e; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_8c812;Kontaktné údaje_8c812; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 RetailDemo;@%SystemRoot%\System32\RDXService.dll,-256; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 SensorDataService;@%SystemRoot%\system32\SensorDataService.exe,-101; C:\WINDOWS\System32\SensorDataService.exe [2015-10-30 1297408]
S3 SensorService;@%SystemRoot%\System32\sensorservice.dll,-1000; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 SmsRouter;@%SystemRoot%\System32\SmsRouterSvc.dll,-10001; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 TieringEngineService;@%SystemRoot%\system32\TieringEngineService.exe,-702; C:\WINDOWS\system32\TieringEngineService.exe [2015-10-30 290304]
S4 CDPSvc;@%SystemRoot%\system32\cdpsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S4 tzautoupdate;@%SystemRoot%\system32\tzautoupdate.dll,-200; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]

-----------------EOF-----------------

Uživatelský avatar
Roli
VIP
VIP
Příspěvky: 13400
Registrován: 26 lis 2006 13:37
Bydliště: ČR

Re: prosím o kontrolu - spomalený NB

#4 Příspěvek od Roli »

Stáhni a spusť AdwCleaner,

ukonči všechny programy včetně prohlížeče a dvojklikem jej spusť,

objeví se okno kde vlevo nahoře klikni na Scan.

Po dokončení skenu klikni na Clean,

proběhne restart PC kdy dojde ke smazání nepořádku.

Po té mi sem zkopíruj Report.


Spusť skener Cure It podle TOHOTO návodu

po skončení skenu mi sem nakopíruj výsledky - stačí konec logu se souhrnem.

(Upozornění je úchylně pomalý a je zapotřebí ho sledovat občas se na něco ptá)
| Rsit | Mbam | AVPTool | Cure It |

O víkendu odpočívám :all_coholic:

skrob
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 148
Registrován: 18 čer 2007 12:18

Re: prosím o kontrolu - spomalený NB

#5 Příspěvek od skrob »

# AdwCleaner v5.036 - Logfile created 26/02/2016 at 14:16:32
# Updated 22/02/2016 by Xplode
# Database : 2016-02-24.1 [Server]
# Operating system : Windows 10 Home (x64)
# Username : Gabriela - GABIKA
# Running from : C:\Users\Gabriela\Desktop\adwcleaner_5.036.exe
# Option : Cleaning
# Support : http://toolslib.net/forum

***** [ Services ] *****


***** [ Folders ] *****


***** [ Files ] *****


***** [ DLLs ] *****


***** [ Shortcuts ] *****


***** [ Scheduled tasks ] *****


***** [ Registry ] *****


***** [ Web browsers ] *****


*************************

:: "Tracing" keys removed
:: Winsock settings cleared

*************************

C:\AdwCleaner\AdwCleaner[C1].txt - [694 bytes] - [26/02/2016 14:16:32]
C:\AdwCleaner\AdwCleaner[S1].txt - [752 bytes] - [26/02/2016 14:15:19]

########## EOF - C:\AdwCleaner\AdwCleaner[C1].txt - [838 bytes] ##########
# AdwCleaner v5.108 - Logfile created 31/03/2016 at 11:35:37
# Updated 30/03/2016 by Xplode
# Database : 2016-03-30.1 [Server]
# Operating system : Windows 10 Home (x64)
# Username : Gabriela - GABIKA
# Running from : C:\Users\Gabriela\Downloads\adwcleaner_5.108.exe
# Option : Clean
# Support : http://toolslib.net/forum

***** [ Services ] *****


***** [ Folders ] *****


***** [ Files ] *****


***** [ DLLs ] *****


***** [ Shortcuts ] *****


***** [ Scheduled tasks ] *****


***** [ Registry ] *****


***** [ Web browsers ] *****

[-] [C:\Users\Gabriela\AppData\Local\Google\Chrome\User Data\Default\Web Data] [Search Provider] Deleted : windows-movie-maker-vista.en.softonic.com
[-] [C:\Users\Gabriela\AppData\Local\Google\Chrome\User Data\Default\Web Data] [Search Provider] Deleted : vlc-media-player.en.softonic.com

*************************

:: "Tracing" keys deleted
:: Winsock settings cleared

*************************

C:\AdwCleaner\AdwCleaner[C1].txt - [1900 bytes] - [26/02/2016 15:16:32]
C:\AdwCleaner\AdwCleaner[S1].txt - [1859 bytes] - [26/02/2016 15:15:19]

########## EOF - C:\AdwCleaner\AdwCleaner[C1].txt - [2046 bytes] ##########

skrob
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 148
Registrován: 18 čer 2007 12:18

Re: prosím o kontrolu - spomalený NB

#6 Příspěvek od skrob »

Total 9009742255 bytes in 28224 files scanned (35607 objects)
Total 28170 files (35544 objects) are clean
There are no infected objects detected
Total 63 files are raised error condition
Scan time is 00:40:06.743

skrob
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 148
Registrován: 18 čer 2007 12:18

Re: prosím o kontrolu - spomalený NB

#7 Příspěvek od skrob »


Uživatelský avatar
Roli
VIP
VIP
Příspěvky: 13400
Registrován: 26 lis 2006 13:37
Bydliště: ČR

Re: prosím o kontrolu - spomalený NB

#8 Příspěvek od Roli »

skrob píše:ten navod na Dr. Web je uz stary
Ano je, ale jak je vidět poradil sis.

Jinak je pročištěno, co na to PC ?
| Rsit | Mbam | AVPTool | Cure It |

O víkendu odpočívám :all_coholic:

skrob
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 148
Registrován: 18 čer 2007 12:18

Re: prosím o kontrolu - spomalený NB

#9 Příspěvek od skrob »

stale pomaly, neda sa na nom pracovat, zacalo to s win 10, indem dat fabricke nastavenie, dik

Uživatelský avatar
Roli
VIP
VIP
Příspěvky: 13400
Registrován: 26 lis 2006 13:37
Bydliště: ČR

Re: prosím o kontrolu - spomalený NB

#10 Příspěvek od Roli »

Není zač a :closed:
| Rsit | Mbam | AVPTool | Cure It |

O víkendu odpočívám :all_coholic:

Zamčeno