Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Pro Rudy, prosím o kontrolu

Patříte mezi Vzorné návštěvníky? Pak je tato sekce pro vás.

Moderátor: Moderátoři

Pravidla fóra
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
Zamčeno
Zpráva
Autor
Uživatelský avatar
jaruneczka
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 417
Registrován: 09 čer 2008 11:45
Bydliště: Ostrava

Pro Rudy, prosím o kontrolu

#1 Příspěvek od jaruneczka »

Logfile of random's system information tool 1.10 (written by random/random)
Run by Jarka at 2016-09-02 16:56:43
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 420 GB (88%) free of 476 GB
Total RAM: 3955 MB (42% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 16:56:46, on 2.9.2016
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.18427)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\Trusteer\Rapport\bin\RapportService.exe
C:\Program Files\Lenovo\Lenovo Solution Center\LSCNotify.exe
C:\Program Files\trend micro\Jarka.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe,
O1 - Hosts: ::1 localhost
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O10 - Broken Internet access because of LSP provider 'c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll' missing
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - Trusted Zone: http://help.eset.com (HKLM)
O15 - ESC Trusted Zone: http://help.eset.com (HKLM)
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\Windows\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET Smart Security\ekrn.exe
O23 - Service: Energy Server Service WILLAMETTE (ESRV_SVC_WILLAMETTE) - Unknown owner - C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\esrv_svc.exe
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel(R) Corporation - C:\Program Files\Intel\WiFi\bin\EvtEng.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService2.0.0.0) - Unknown owner - C:\Windows\system32\igfxCUIService.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: Lenovo Solution Center System Service (LSC.Services.SystemService) - Lenovo - C:\Program Files\Lenovo\Lenovo Solution Center\App\LSC.Services.SystemService.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: Wireless PAN DHCP Server (MyWiFiDHCPDNS) - Unknown owner - C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Rapport Management Service (RapportMgmtService) - IBM Corp. - C:\Program Files (x86)\Trusteer\Rapport\bin\RapportMgmtService.exe
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel(R) Corporation - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: System Update (SUService) - Unknown owner - C:\Program Files (x86)\Lenovo\System Update\SUService.exe
O23 - Service: SynTPEnh Caller Service (SynTPEnhService) - Synaptics Incorporated - C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
O23 - Service: Intel(R) System Usage Report Service SystemUsageReportSvc_WILLAMETTE (SystemUsageReportSvc_WILLAMETTE) - Unknown owner - C:\Program Files (x86)\Intel Driver Update Utility\SUR\SurSvc.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: User Energy Server Service WILLAMETTE (USER_ESRV_SVC_WILLAMETTE) - Unknown owner - C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\esrv_svc.exe
O23 - Service: Synaptics FP WBF Policy Service (valWBFPolicyService) - Unknown owner - C:\Windows\system32\valWBFPolicyService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: Stínová kopie svazku (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: WMI Performance Adapter (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Zero Configuration Service (ZeroConfigService) - Intel® Corporation - C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe

--
End of file - 8293 bytes

======Listing Processes======



\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
winlogon.exe
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
"C:\Program Files\ESET\ESET Smart Security\ekrn.exe"
C:\Windows\system32\svchost.exe -k RPCSS
"C:\Program Files (x86)\Trusteer\Rapport\bin\RapportMgmtService.exe"
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs

C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\system32\igfxCUIService.exe
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-1d797e8c-4a53-455b-a944-fdfd85d9f74a -SystemEventPortName:HostProcess-76abaf5d-2c0c-4766-b7dc-4bf3cf50a864 -IoCancelEventPortName:HostProcess-0461beaa-4485-41ca-a2f5-dbe2a6dcacc1 -NonStateChangingEventPortName:HostProcess-551c172e-e85f-4efd-aa8f-89a043925257 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:f0e472bc-11d0-4d21-ab81-69def62a06db -DeviceGroupId:
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Windows\system32\WLANExt.exe 31929088
\??\C:\Windows\system32\conhost.exe "1415751943-1558800653589029798378602755-6787885271517766416-19049165211320826465
"taskhost.exe"
C:\Windows\System32\svchost.exe -k utcsvc
"C:\Program Files\Intel\WiFi\bin\EvtEng.exe"
"C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe"
"C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe"
"C:\Program Files (x86)\Intel Driver Update Utility\SUR\SurSvc.exe"
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
C:\Windows\system32\valWBFPolicyService.exe
"C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe"
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\system32\wbem\unsecapp.exe -Embedding
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\svchost.exe -k bthsvcs
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
igfxEM.exe
igfxHK.exe
igfxTray.exe
"C:\Program Files\ESET\ESET Smart Security\egui.exe" /hide
"C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE"
"taskhost.exe"
taskeng.exe {8A17ED97-3F6D-41CB-A8A8-82AB27714495}
"C:\Program Files\CCleaner\CCleaner.exe" /MONITOR /uac
"C:\Program Files (x86)\Trusteer\Rapport\bin\RapportService.exe" -servicelaunch=true
C:\Windows\system32\sppsvc.exe
"" "--start" "--register_port" "--address" "127.0.0.1" "--port" "49331" "--pause_on_user_switching" "--depend_on_key" "SYSTEM\CurrentControlSet\Services\ESRV_SVC_WILLAMETTE" "--depend_on_value" "run" "--time_in_ms" "--pause" "5000" "--library" "C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\intel_modeler.dll" "--no_pl" "--watchdog" "10" "--watchdog_cpu_usage_limit" "50" "--end_on_error" "--kernel_priority_boost" "--shutdown_priority_boost" "--device_options" " time=no output=no output_folder='C:\ProgramData\Intel\SUR\WILLAMETTE\IntelData\userlogs' limit_output_by=time output_limit=3600000 output_buffer=1024 il='C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\foreground_window_input.dll' "
\??\C:\Windows\system32\conhost.exe "187870543-35072755715956939904047958101692288546-91618406917206670141585459889
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
C:\Windows\servicing\TrustedInstaller.exe
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\Program Files\Lenovo\Lenovo Solution Center\LSCNotify.exe" /showasync
"C:\Users\Jarka\AppData\Local\Apps\2.0\8DXGNX62.36E\W7T2PHD5.J7H\lsb...tion_2d7b41b05b24775e_0001.0006_6c5982beb50abfca\LSB.exe"
"C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\esrv_svc.exe" "--AUTO_START" "--start" "--address" "127.0.0.1" "--port" "49330" "--depend_on_key" "SYSTEM\CurrentControlSet\Services\ESRV_SVC_WILLAMETTE" "--depend_on_value" "run" "--time_in_ms" "--pause" "5000" "--library" "C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\intel_modeler.dll" "--no_pl" "--watchdog" "10" "--watchdog_cpu_usage_limit" "50" "--end_on_error" "--kernel_priority_boost" "--shutdown_priority_boost" "--device_options" " time=no output=w output_folder='C:\ProgramData\Intel\SUR\WILLAMETTE\IntelData' limit_output_by=time output_limit=3600000 output_buffer=1024 il='C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\intel_process_input.dll','process_input_options.txt' il='C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\intel_system_power_state_input.dll' il='C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\intel_quality_and_reliability_input.dll' il='C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\acpi_battery_input.dll' il='C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\sema_thermal_input.dll' il='C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\wifi_input.dll' il='C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\devices_use_input.dll','service=yes' il='C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\intel_disktrace_input.dll','pause=60000 working_dir=C:\ProgramData\Intel\SUR\WILLAMETTE\IntelData override_existing_tracing=no limit_output_by_filesize_mb=10' os='C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\os_counters.txt' "
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
C:\Windows\System32\svchost.exe -k SDRSVC
"C:\Users\Jarka\Desktop\RSITx64.exe"
C:\Windows\system32\DllHost.exe /Processid:{F9717507-6651-4EDB-BFF7-AE615179BCCF}

======Scheduled tasks folder======

C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe

=========Mozilla firefox=========

ProfilePath - C:\Users\Jarka\AppData\Roaming\Mozilla\Firefox\Profiles\g5c2z47r.default

prefs.js - "browser.startup.homepage" - "www.seznam.cz"

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 22.0.0.209 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_22_0_0_209.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.68]
"Description"=Intel IPT WebApi plugin
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI updater]
"Description"=This plugin updates Intel WebAPI component
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files (x86)\Microsoft Silverlight\5.1.50428.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.2.2]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.2.4]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 22.0.0.209 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_22_0_0_209.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files\Microsoft Silverlight\5.1.50428.0\npctrl.dll


C:\Program Files (x86)\Mozilla Firefox\plugins\
np-mswmp.dll
WMP Firefox Plugin License.rtf
WMP Firefox Plugin RelNotes.txt

======Registry dump======

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2016-08-05 8894680]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Advanced SystemCare 9]
[]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DUP]
[]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IAStorIcon]
C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe [2015-11-17 71168]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LenovoUtility]
[]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Logitech Download Assistant]
C:\Windows\System32\LogiLDA.dll [2012-09-20 1832760]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NETGEARGenie]
[]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RtHDVBg_Dolby]
C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2015-09-17 1409264]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RtHDVBg_LENOVO_DOLBYDRAGON]
C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2015-09-17 1409264]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RtHDVBg_LENOVO_MICPKEY]
C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2015-09-17 1409264]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RTHDVCPL]
C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2015-09-17 16404224]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SynTPEnh]
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2015-09-15 2811560]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\USB3MON]
C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [2016-06-20 299504]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\Windows\system32\wpdshserviceobj.dll [2010-11-20 115200]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoSimpleNetIDList"=1
"NoDriveTypeAutoRun"=221

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1

======List of files/folders created in the last 1 month======

2016-09-02 16:56:43 ----D---- C:\rsit
2016-09-02 16:41:26 ----A---- C:\Windows\system32\drivers\RtsUVC.sys
2016-09-02 16:41:25 ----A---- C:\Windows\SYSWOW64\RtCamX.dll
2016-09-02 16:41:25 ----A---- C:\Windows\system32\RtCamX64.dll
2016-09-02 16:41:24 ----A---- C:\Windows\SYSWOW64\RsDecode.dll
2016-09-02 16:41:24 ----A---- C:\Windows\RtCamU64.exe
2016-09-02 16:31:25 ----D---- C:\ProgramData\Downloaded Installations
2016-09-02 10:23:58 ----D---- C:\Users\Jarka\AppData\Roaming\driveridentifier
2016-09-02 08:47:00 ----D---- C:\Program Files\SoftPerfect WiFi Guard
2016-09-02 08:11:34 ----D---- C:\ProgramData\TuneUp Software
2016-09-02 08:11:26 ----SHD---- C:\ProgramData\{C4ABDBC8-1C81-42C9-BFFC-4A68511E9E4F}
2016-09-02 08:11:26 ----HD---- C:\ProgramData\Common Files
2016-09-02 07:55:50 ----D---- C:\Program Files (x86)\Mozilla Thunderbird
2016-09-01 20:21:08 ----A---- C:\Windows\system32\drivers\SAMSFPA.DAT
2016-09-01 20:19:32 ----A---- C:\Windows\system32\SRSWOW64.dll
2016-09-01 20:19:32 ----A---- C:\Windows\system32\SRSTSX64.dll
2016-09-01 20:19:32 ----A---- C:\Windows\system32\SRSTSH64.dll
2016-09-01 20:19:32 ----A---- C:\Windows\system32\SRSHP64.dll
2016-09-01 20:19:30 ----A---- C:\Windows\SYSWOW64\SFCOM.dll
2016-09-01 20:19:30 ----A---- C:\Windows\system32\SFSS_APO.dll
2016-09-01 20:19:30 ----A---- C:\Windows\system32\SFNHK64.dll
2016-09-01 20:19:30 ----A---- C:\Windows\system32\SFCOM64.dll
2016-09-01 20:19:30 ----A---- C:\Windows\system32\SFAPO64.dll
2016-09-01 20:19:28 ----A---- C:\Windows\system32\RtPgEx64.dll
2016-09-01 20:19:28 ----A---- C:\Windows\system32\RtlCPAPI64.dll
2016-09-01 20:19:28 ----A---- C:\Windows\system32\RtkCoLDR64.dll
2016-09-01 20:19:28 ----A---- C:\Windows\system32\RtkCfg64.dll
2016-09-01 20:19:28 ----A---- C:\Windows\system32\drivers\RTKVHD64.sys
2016-09-01 20:19:27 ----A---- C:\Windows\system32\RtkApi64.dll
2016-09-01 20:19:27 ----A---- C:\Windows\system32\RTEEP64A.dll
2016-09-01 20:19:27 ----A---- C:\Windows\system32\RTEEL64A.dll
2016-09-01 20:19:27 ----A---- C:\Windows\system32\RTEEG64A.dll
2016-09-01 20:19:27 ----A---- C:\Windows\system32\RTEED64A.dll
2016-09-01 20:19:26 ----A---- C:\Windows\system32\RtDataProc64.dll
2016-09-01 20:19:26 ----A---- C:\Windows\system32\RTCOM64.dll
2016-09-01 20:19:26 ----A---- C:\Windows\system32\RP3DHT64.dll
2016-09-01 20:19:26 ----A---- C:\Windows\system32\RP3DAA64.dll
2016-09-01 20:19:26 ----A---- C:\Windows\system32\RltkAPO64.dll
2016-09-01 20:19:26 ----A---- C:\Windows\system32\drivers\RTAIODAT.DAT
2016-09-01 20:19:24 ----A---- C:\Windows\system32\RCoRes64.dat
2016-09-01 20:19:24 ----A---- C:\Windows\system32\RCoInstII64.dll
2016-09-01 20:19:24 ----A---- C:\Windows\system32\R4EEP64A.dll
2016-09-01 20:19:23 ----A---- C:\Windows\system32\R4EEL64A.dll
2016-09-01 20:19:23 ----A---- C:\Windows\system32\R4EEG64A.dll
2016-09-01 20:19:23 ----A---- C:\Windows\system32\R4EED64A.dll
2016-09-01 20:19:23 ----A---- C:\Windows\system32\R4EEA64A.dll
2016-09-01 20:19:22 ----A---- C:\Windows\system32\MaxxVolumeSDAPO.dll
2016-09-01 20:19:20 ----A---- C:\Windows\system32\MaxxAudioEQ64.dll
2016-09-01 20:19:19 ----A---- C:\Windows\system32\MaxxAudioAPO30.dll
2016-09-01 20:19:19 ----A---- C:\Windows\system32\MaxxAudioAPO20.dll
2016-09-01 20:19:18 ----A---- C:\Windows\system32\HiFiDAX2API.dll
2016-09-01 20:19:14 ----A---- C:\Windows\system32\FMAPO64.dll
2016-09-01 20:19:14 ----A---- C:\Windows\system32\DTSVoiceClarityDLL64.dll
2016-09-01 20:19:14 ----A---- C:\Windows\system32\DTSSymmetryDLL64.dll
2016-09-01 20:19:13 ----A---- C:\Windows\system32\DTSS2SpeakerDLL64.dll
2016-09-01 20:19:13 ----A---- C:\Windows\system32\DTSS2HeadphoneDLL64.dll
2016-09-01 20:19:13 ----A---- C:\Windows\system32\DTSNeoPCDLL64.dll
2016-09-01 20:19:13 ----A---- C:\Windows\system32\DTSLimiterDLL64.dll
2016-09-01 20:19:13 ----A---- C:\Windows\system32\DTSLFXAPO64.dll
2016-09-01 20:19:13 ----A---- C:\Windows\system32\DTSGFXAPONS64.dll
2016-09-01 20:19:13 ----A---- C:\Windows\system32\DTSGFXAPO64.dll
2016-09-01 20:19:13 ----A---- C:\Windows\system32\DTSGainCompensatorDLL64.dll
2016-09-01 20:19:12 ----A---- C:\Windows\system32\DTSBoostDLL64.dll
2016-09-01 20:19:12 ----A---- C:\Windows\system32\DTSBassEnhancementDLL64.dll
2016-09-01 20:19:12 ----A---- C:\Windows\system32\DolbyDAX2APOv211.dll
2016-09-01 20:19:12 ----A---- C:\Windows\system32\DolbyDAX2APOProp.dll
2016-09-01 20:19:12 ----A---- C:\Windows\system32\DDPP64AF3.dll
2016-09-01 20:19:12 ----A---- C:\Windows\system32\DDPP64A.dll
2016-09-01 20:19:12 ----A---- C:\Windows\system32\DDPO64AF3.dll
2016-09-01 20:19:12 ----A---- C:\Windows\system32\DDPO64A.dll
2016-09-01 20:19:12 ----A---- C:\Windows\system32\DDPD64AF3.dll
2016-09-01 20:19:12 ----A---- C:\Windows\system32\DDPD64A.dll
2016-09-01 20:19:11 ----A---- C:\Windows\system32\DDPA64F3.dll
2016-09-01 20:19:11 ----A---- C:\Windows\system32\DDPA64.dll
2016-09-01 20:19:10 ----A---- C:\Windows\system32\CONEQMSAPOGUILibrary.dll
2016-09-01 20:19:10 ----A---- C:\Windows\system32\AERTAR64.dll
2016-09-01 20:19:10 ----A---- C:\Windows\system32\AERTAC64.dll
2016-09-01 06:04:48 ----SHD---- C:\Config.Msi
2016-08-31 17:13:57 ----D---- C:\Program Files (x86)\Dolby Advanced Audio v2
2016-08-31 17:13:21 ----D---- C:\Windows\system32\DAX2
2016-08-31 16:36:17 ----HD---- C:\Program Files (x86)\Temp
2016-08-31 16:25:36 ----A---- C:\Windows\system32\SynTPCo20.dll
2016-08-31 16:25:36 ----A---- C:\Windows\system32\SynTPAPI.dll
2016-08-31 16:25:36 ----A---- C:\Windows\system32\SET511E.tmp
2016-08-31 16:25:36 ----A---- C:\Windows\system32\SET3B9A.tmp
2016-08-31 16:25:36 ----A---- C:\Windows\system32\drivers\SynTP.sys
2016-08-31 16:25:34 ----A---- C:\Windows\SYSWOW64\SynCom.dll
2016-08-31 06:45:11 ----A---- C:\Windows\system32\drivers\TeeDriverx64.sys
2016-08-30 20:12:22 ----A---- C:\Windows\system32\drivers\ekbdflt.sys
2016-08-30 20:11:50 ----D---- C:\Users\Jarka\AppData\Roaming\ESET
2016-08-30 20:06:12 ----D---- C:\ProgramData\ESET
2016-08-30 20:06:01 ----D---- C:\Program Files\ESET
2016-08-30 16:56:21 ----D---- C:\Temp
2016-08-30 16:55:39 ----D---- C:\Users\Jarka\AppData\Roaming\TeamViewer
2016-08-30 14:01:39 ----D---- C:\Program Files\CCleaner
2016-08-26 17:39:32 ----D---- C:\Složky souborů
2016-08-26 16:26:10 ----A---- C:\Windows\system32\drivers\ESETCleanersDriver.sys
2016-08-25 06:44:42 ----D---- C:\Program Files (x86)\Mozilla Firefox
2016-08-17 11:24:43 ----D---- C:\Program Files (x86)\Intel Driver Update Utility
2016-08-17 08:46:11 ----D---- C:\Program Files (x86)\Google
2016-08-17 06:39:19 ----A---- C:\Windows\system32\drivers\tcpip.sys
2016-08-17 06:39:19 ----A---- C:\Windows\system32\drivers\netio.sys
2016-08-17 06:39:18 ----A---- C:\Windows\SYSWOW64\INETRES.dll
2016-08-17 06:39:18 ----A---- C:\Windows\SYSWOW64\inetcomm.dll
2016-08-17 06:39:18 ----A---- C:\Windows\system32\INETRES.dll
2016-08-17 06:39:18 ----A---- C:\Windows\system32\inetcomm.dll
2016-08-17 06:39:18 ----A---- C:\Windows\system32\drivers\tcpipreg.sys
2016-08-17 06:39:18 ----A---- C:\Windows\system32\drivers\srvnet.sys
2016-08-17 06:39:18 ----A---- C:\Windows\system32\drivers\srv2.sys
2016-08-17 06:39:18 ----A---- C:\Windows\system32\drivers\srv.sys
2016-08-17 06:39:18 ----A---- C:\Windows\system32\drivers\FWPKCLNT.SYS
2016-08-17 06:38:56 ----A---- C:\Windows\SYSWOW64\tzres.dll
2016-08-17 06:38:56 ----A---- C:\Windows\system32\tzres.dll
2016-08-15 08:39:19 ----D---- C:\Program Files\Reason
2016-08-15 08:03:37 ----A---- C:\Windows\system32\{F33C3B9B-72AF-418A-B3FD-560646F7CDA2}.bat
2016-08-15 08:03:37 ----A---- C:\Windows\system32\{86F549EB-A66B-4D6C-958D-CDDD66410751}.bat
2016-08-15 07:54:16 ----A---- C:\Windows\system32\igfxCoIn_v4248.dll
2016-08-15 07:54:04 ----A---- C:\Windows\system32\igfxCUIService.exe
2016-08-14 17:15:13 ----D---- C:\Windows\SoftwareDistribution
2016-08-14 17:14:41 ----D---- C:\Windows\system32\catroot2
2016-08-14 09:57:51 ----A---- C:\Windows\system32\drivers\IntcDAud.sys
2016-08-14 09:55:51 ----D---- C:\Windows\SYSWOW64\RTCOM
2016-08-14 09:55:00 ----D---- C:\Program Files\Realtek
2016-08-14 09:54:56 ----A---- C:\Windows\system32\YamahaAE2.dll
2016-08-14 09:54:56 ----A---- C:\Windows\system32\YamahaAE.dll
2016-08-14 09:54:56 ----A---- C:\Windows\system32\WavesGUILib64.dll
2016-08-14 09:54:56 ----A---- C:\Windows\system32\tossaemaxapo64.dll
2016-08-14 09:54:56 ----A---- C:\Windows\system32\tossaeapo64.dll
2016-08-14 09:54:56 ----A---- C:\Windows\system32\toseaeapo64.dll
2016-08-14 09:54:56 ----A---- C:\Windows\system32\tosasfapo64.dll
2016-08-14 09:54:56 ----A---- C:\Windows\system32\tosade.dll
2016-08-14 09:54:56 ----A---- C:\Windows\system32\tepeqapo64.dll
2016-08-14 09:54:56 ----A---- C:\Windows\system32\tadefxapo264.dll
2016-08-14 09:54:55 ----A---- C:\Windows\SYSWOW64\SRCOM.dll
2016-08-14 09:54:55 ----A---- C:\Windows\system32\tadefxapo.dll
2016-08-14 09:54:55 ----A---- C:\Windows\system32\SRRPTR64.dll
2016-08-14 09:54:55 ----A---- C:\Windows\system32\SRCOM64.dll
2016-08-14 09:54:55 ----A---- C:\Windows\system32\SRCOM.dll
2016-08-14 09:54:55 ----A---- C:\Windows\system32\SRAPO64.dll
2016-08-14 09:54:54 ----A---- C:\Windows\system32\sltech64.dll
2016-08-14 09:54:54 ----A---- C:\Windows\system32\slprp64.dll
2016-08-14 09:54:53 ----A---- C:\Windows\system32\slcnt64.dll
2016-08-14 09:54:50 ----A---- C:\Windows\system32\sl3apo64.dll
2016-08-14 09:54:49 ----A---- C:\Windows\system32\SEHDRA64.dll
2016-08-14 09:54:49 ----A---- C:\Windows\system32\SECOMN64.dll
2016-08-14 09:54:48 ----A---- C:\Windows\SYSWOW64\SECOMN32.DLL
2016-08-14 09:54:48 ----A---- C:\Windows\system32\SEAPO64.dll
2016-08-14 09:54:48 ----A---- C:\Windows\system32\drivers\rtvienna.dat
2016-08-14 09:54:37 ----A---- C:\Windows\SYSWOW64\RltkAPO.dll
2016-08-14 09:54:34 ----A---- C:\Windows\system32\NAHIMICV2apo.dll
2016-08-14 09:54:34 ----A---- C:\Windows\system32\NahimicAPONSControl.dll
2016-08-14 09:54:33 ----A---- C:\Windows\system32\NAHIMICAPOlfx.dll
2016-08-14 09:54:33 ----A---- C:\Windows\system32\MISS_APO.dll
2016-08-14 09:54:30 ----A---- C:\Windows\system32\MaxxVoiceAPO3064.dll
2016-08-14 09:54:29 ----A---- C:\Windows\system32\MaxxVoiceAPO2064.dll
2016-08-14 09:54:29 ----A---- C:\Windows\system32\MaxxSpeechAPO64.dll
2016-08-14 09:54:29 ----A---- C:\Windows\system32\MaxxAudioRealtek64.dll
2016-08-14 09:54:29 ----A---- C:\Windows\system32\MaxxAudioAPOShell64.dll
2016-08-14 09:54:29 ----A---- C:\Windows\system32\MaxxAudioAPO6064.dll
2016-08-14 09:54:29 ----A---- C:\Windows\system32\MaxxAudioAPO5064.dll
2016-08-14 09:54:29 ----A---- C:\Windows\system32\MaxxAudioAPO4064.dll
2016-08-14 09:54:29 ----A---- C:\Windows\system32\KAAPORT64.dll
2016-08-14 09:54:28 ----A---- C:\Windows\system32\ICEsoundAPO64.dll
2016-08-14 09:54:24 ----A---- C:\Windows\system32\DTSU2PREC64.dll
2016-08-14 09:54:24 ----A---- C:\Windows\system32\DTSU2PLFX64.dll
2016-08-14 09:54:24 ----A---- C:\Windows\system32\DTSU2PGFX64.dll
2016-08-14 09:54:20 ----A---- C:\Windows\system32\CX64APO.dll
2016-08-14 09:54:19 ----A---- C:\Windows\system32\audioLibVc.dll
2016-08-14 09:54:19 ----A---- C:\Windows\system32\AcpiServiceVnA64.dll
2016-08-14 09:40:55 ----A---- C:\Windows\system32\RtNicProp64.dll
2016-08-14 09:40:55 ----A---- C:\Windows\system32\drivers\Rt64win7.sys
2016-08-14 08:50:30 ----A---- C:\Windows\RtlExUpd.dll
2016-08-14 08:47:35 ----D---- C:\ProgramData\Thunder Network
2016-08-14 08:30:43 ----D---- C:\DTLFolder
2016-08-13 18:24:25 ----A---- C:\Windows\SYSWOW64\mstscax.dll
2016-08-13 18:24:25 ----A---- C:\Windows\system32\wksprt.exe
2016-08-13 18:24:25 ----A---- C:\Windows\system32\mstscax.dll
2016-08-13 18:24:24 ----A---- C:\Windows\SYSWOW64\tsgqec.dll
2016-08-13 18:24:24 ----A---- C:\Windows\SYSWOW64\rdvidcrl.dll
2016-08-13 18:24:24 ----A---- C:\Windows\system32\tsgqec.dll
2016-08-13 18:24:24 ----A---- C:\Windows\system32\rdvidcrl.dll
2016-08-13 18:14:18 ----A---- C:\Windows\system32\rdpudd.dll
2016-08-13 18:14:18 ----A---- C:\Windows\system32\RdpGroupPolicyExtension.dll
2016-08-13 18:14:18 ----A---- C:\Windows\system32\rdpcorets.dll
2016-08-13 18:14:01 ----A---- C:\Windows\system32\TSWbPrxy.exe
2016-08-13 17:41:52 ----A---- C:\Windows\system32\TsUsbGDCoInstaller.dll
2016-08-13 17:41:46 ----A---- C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll
2016-08-13 17:41:46 ----A---- C:\Windows\system32\TsUsbRedirectionGroupPolicyControl.exe
2016-08-13 17:41:45 ----A---- C:\Windows\system32\drivers\TsUsbFlt.sys
2016-08-13 17:41:43 ----A---- C:\Windows\SYSWOW64\wksprtPS.dll
2016-08-13 17:41:43 ----A---- C:\Windows\SYSWOW64\mstsc.exe
2016-08-13 17:41:43 ----A---- C:\Windows\SYSWOW64\MsRdpWebAccess.dll
2016-08-13 17:41:43 ----A---- C:\Windows\system32\wksprtPS.dll
2016-08-13 17:41:43 ----A---- C:\Windows\system32\mstsc.exe
2016-08-13 17:41:43 ----A---- C:\Windows\system32\MsRdpWebAccess.dll
2016-08-13 17:40:23 ----A---- C:\Windows\system32\drivers\rdpvideominiport.sys
2016-08-13 17:40:17 ----A---- C:\Windows\SYSWOW64\rdpendp_winip.dll
2016-08-13 17:40:17 ----A---- C:\Windows\system32\rdpendp_winip.dll
2016-08-13 17:38:25 ----A---- C:\Windows\SYSWOW64\wuwebv.dll
2016-08-13 17:38:25 ----A---- C:\Windows\SYSWOW64\wudriver.dll
2016-08-13 17:38:25 ----A---- C:\Windows\SYSWOW64\wuapp.exe
2016-08-13 17:38:25 ----A---- C:\Windows\SYSWOW64\wuapi.dll
2016-08-13 17:38:25 ----A---- C:\Windows\system32\wuwebv.dll
2016-08-13 17:38:25 ----A---- C:\Windows\system32\wudriver.dll
2016-08-13 17:38:25 ----A---- C:\Windows\system32\wucltux.dll
2016-08-13 17:38:25 ----A---- C:\Windows\system32\wuaueng.dll
2016-08-13 17:38:25 ----A---- C:\Windows\system32\wuauclt.exe
2016-08-13 17:38:25 ----A---- C:\Windows\system32\wuapp.exe
2016-08-13 17:38:25 ----A---- C:\Windows\system32\wuapi.dll
2016-08-13 17:38:25 ----A---- C:\Windows\system32\WinSetupUI.dll
2016-08-13 17:38:25 ----A---- C:\Windows\system32\oleaut32.dll
2016-08-13 17:38:25 ----A---- C:\Windows\system32\ntdll.dll
2016-08-13 17:38:25 ----A---- C:\Windows\system32\crypt32.dll
2016-08-13 17:38:24 ----A---- C:\Windows\SYSWOW64\wups.dll
2016-08-13 17:38:24 ----A---- C:\Windows\SYSWOW64\oleaut32.dll
2016-08-13 17:38:24 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2016-08-13 17:38:24 ----A---- C:\Windows\system32\wups2.dll
2016-08-13 17:38:24 ----A---- C:\Windows\system32\wups.dll
2016-08-13 17:38:24 ----A---- C:\Windows\system32\wu.upgrade.ps.dll
2016-08-13 17:38:23 ----A---- C:\Windows\SYSWOW64\olepro32.dll
2016-08-13 17:38:23 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2016-08-13 17:38:23 ----A---- C:\Windows\SYSWOW64\msiexec.exe
2016-08-13 17:38:23 ----A---- C:\Windows\SYSWOW64\msi.dll
2016-08-13 17:38:23 ----A---- C:\Windows\SYSWOW64\crypt32.dll
2016-08-13 17:38:23 ----A---- C:\Windows\system32\wintrust.dll
2016-08-13 17:38:23 ----A---- C:\Windows\system32\ntoskrnl.exe
2016-08-13 17:38:23 ----A---- C:\Windows\system32\msiexec.exe
2016-08-13 17:38:23 ----A---- C:\Windows\system32\msi.dll
2016-08-13 17:38:23 ----A---- C:\Windows\system32\cryptsvc.dll
2016-08-13 17:38:23 ----A---- C:\Windows\system32\cryptnet.dll
2016-08-13 17:38:23 ----A---- C:\Windows\system32\consent.exe
2016-08-13 17:38:23 ----A---- C:\Windows\system32\asycfilt.dll
2016-08-13 17:38:22 ----A---- C:\Windows\SYSWOW64\wintrust.dll
2016-08-13 17:38:22 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2016-08-13 17:38:22 ----A---- C:\Windows\SYSWOW64\cryptsvc.dll
2016-08-13 17:38:22 ----A---- C:\Windows\SYSWOW64\cryptnet.dll
2016-08-13 17:38:22 ----A---- C:\Windows\SYSWOW64\asycfilt.dll
2016-08-13 17:38:22 ----A---- C:\Windows\SYSWOW64\advapi32.dll
2016-08-13 17:38:22 ----A---- C:\Windows\system32\wow64win.dll
2016-08-13 17:38:22 ----A---- C:\Windows\system32\srcore.dll
2016-08-13 17:38:22 ----A---- C:\Windows\system32\smss.exe
2016-08-13 17:38:22 ----A---- C:\Windows\system32\KernelBase.dll
2016-08-13 17:38:22 ----A---- C:\Windows\system32\kernel32.dll
2016-08-13 17:38:22 ----A---- C:\Windows\system32\authui.dll
2016-08-13 17:38:22 ----A---- C:\Windows\system32\advapi32.dll
2016-08-13 17:38:21 ----A---- C:\Windows\SYSWOW64\msihnd.dll
2016-08-13 17:38:21 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2016-08-13 17:38:21 ----A---- C:\Windows\SYSWOW64\authui.dll
2016-08-13 17:38:21 ----A---- C:\Windows\system32\wow64cpu.dll
2016-08-13 17:38:21 ----A---- C:\Windows\system32\wow64.dll
2016-08-13 17:38:21 ----A---- C:\Windows\system32\winsrv.dll
2016-08-13 17:38:21 ----A---- C:\Windows\system32\srclient.dll
2016-08-13 17:38:21 ----A---- C:\Windows\system32\msihnd.dll
2016-08-13 17:38:21 ----A---- C:\Windows\system32\drivers\appid.sys
2016-08-13 17:38:21 ----A---- C:\Windows\system32\csrsrv.dll
2016-08-13 17:38:21 ----A---- C:\Windows\system32\conhost.exe
2016-08-13 17:38:21 ----A---- C:\Windows\system32\appinfo.dll
2016-08-13 17:38:21 ----A---- C:\Windows\system32\appidapi.dll
2016-08-13 17:38:20 ----A---- C:\Windows\SYSWOW64\wow32.dll
2016-08-13 17:38:20 ----A---- C:\Windows\SYSWOW64\srclient.dll
2016-08-13 17:38:20 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2016-08-13 17:38:20 ----A---- C:\Windows\SYSWOW64\kernel32.dll
2016-08-13 17:38:20 ----A---- C:\Windows\SYSWOW64\appidapi.dll
2016-08-13 17:38:20 ----A---- C:\Windows\system32\setbcdlocale.dll
2016-08-13 17:38:20 ----A---- C:\Windows\system32\rstrui.exe
2016-08-13 17:38:20 ----A---- C:\Windows\system32\ntvdm64.dll
2016-08-13 17:38:20 ----A---- C:\Windows\system32\appidsvc.dll
2016-08-13 17:38:20 ----A---- C:\Windows\system32\appidpolicyconverter.exe
2016-08-13 17:38:20 ----A---- C:\Windows\system32\appidcertstorecheck.exe
2016-08-13 17:38:19 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2016-08-13 17:38:19 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-1-0.dll
2016-08-13 17:38:19 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-profile-l1-1-0.dll
2016-08-13 17:38:19 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2016-08-13 17:38:19 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2016-08-13 17:38:19 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2016-08-13 17:38:19 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-misc-l1-1-0.dll
2016-08-13 17:38:19 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-memory-l1-1-0.dll
2016-08-13 17:38:19 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2016-08-13 17:38:19 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-io-l1-1-0.dll
2016-08-13 17:38:19 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2016-08-13 17:38:19 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-heap-l1-1-0.dll
2016-08-13 17:38:19 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-1-0.dll
2016-08-13 17:38:19 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2016-08-13 17:38:19 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2016-08-13 17:38:19 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2016-08-13 17:38:19 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2016-08-13 17:38:19 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2016-08-13 17:38:19 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2016-08-13 17:38:19 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2016-08-13 17:38:19 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2016-08-13 17:38:19 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2016-08-13 17:38:19 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2016-08-13 17:38:19 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2016-08-13 17:38:19 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2016-08-13 17:38:19 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2016-08-13 17:38:19 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2016-08-13 17:38:19 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2016-08-13 17:38:19 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2016-08-13 17:38:19 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2016-08-13 17:38:19 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2016-08-13 17:38:19 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2016-08-13 17:38:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-security-base-l1-1-0.dll
2016-08-13 17:38:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l1-1-0.dll
2016-08-13 17:38:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-util-l1-1-0.dll
2016-08-13 17:38:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2016-08-13 17:38:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-string-l1-1-0.dll
2016-08-13 17:38:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2016-08-13 17:38:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2016-08-13 17:38:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-1-0.dll
2016-08-13 17:38:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-handle-l1-1-0.dll
2016-08-13 17:38:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-fibers-l1-1-0.dll
2016-08-13 17:38:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2016-08-13 17:38:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-delayload-l1-1-0.dll
2016-08-13 17:38:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-debug-l1-1-0.dll
2016-08-13 17:38:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-datetime-l1-1-0.dll
2016-08-13 17:38:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-console-l1-1-0.dll
2016-08-13 17:38:18 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2016-08-13 17:38:18 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2016-08-13 17:38:18 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2016-08-13 17:38:18 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2016-08-13 17:38:18 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2016-08-13 17:38:18 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2016-08-13 17:38:18 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2016-08-13 17:38:18 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2016-08-13 17:38:18 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2016-08-13 17:38:18 ----A---- C:\Windows\SYSWOW64\user.exe
2016-08-13 17:38:18 ----A---- C:\Windows\SYSWOW64\setup16.exe
2016-08-13 17:38:18 ----A---- C:\Windows\SYSWOW64\instnm.exe
2016-08-13 17:38:18 ----A---- C:\Windows\SYSWOW64\apisetschema.dll
2016-08-13 17:38:18 ----A---- C:\Windows\system32\apisetschema.dll
2016-08-13 17:38:17 ----A---- C:\Windows\SYSWOW64\msimsg.dll
2016-08-13 17:38:17 ----A---- C:\Windows\system32\msimsg.dll
2016-08-13 17:11:04 ----N---- C:\Windows\system32\MpSigStub.exe
2016-08-13 17:04:33 ----A---- C:\Windows\SYSWOW64\d3d10level9.dll
2016-08-13 17:04:33 ----A---- C:\Windows\system32\d3d10level9.dll
2016-08-13 17:04:32 ----A---- C:\Windows\SYSWOW64\win32spl.dll
2016-08-13 17:04:32 ----A---- C:\Windows\SYSWOW64\ntprint.exe
2016-08-13 17:04:32 ----A---- C:\Windows\SYSWOW64\ntprint.dll
2016-08-13 17:04:32 ----A---- C:\Windows\system32\wpnpinst.exe
2016-08-13 17:04:32 ----A---- C:\Windows\system32\win32spl.dll
2016-08-13 17:04:32 ----A---- C:\Windows\system32\ntprint.exe
2016-08-13 17:04:32 ----A---- C:\Windows\system32\ntprint.dll
2016-08-13 17:04:32 ----A---- C:\Windows\system32\localspl.dll
2016-08-13 17:04:32 ----A---- C:\Windows\system32\inetppui.dll
2016-08-13 17:04:32 ----A---- C:\Windows\system32\inetpp.dll
2016-08-13 17:04:20 ----A---- C:\Windows\SYSWOW64\winipsec.dll
2016-08-13 17:04:20 ----A---- C:\Windows\SYSWOW64\polstore.dll
2016-08-13 17:04:20 ----A---- C:\Windows\SYSWOW64\gpapi.dll
2016-08-13 17:04:20 ----A---- C:\Windows\SYSWOW64\FwRemoteSvr.dll
2016-08-13 17:04:20 ----A---- C:\Windows\system32\winipsec.dll
2016-08-13 17:04:20 ----A---- C:\Windows\system32\polstore.dll
2016-08-13 17:04:20 ----A---- C:\Windows\system32\IPSECSVC.DLL
2016-08-13 17:04:20 ----A---- C:\Windows\system32\gpsvc.dll
2016-08-13 17:04:20 ----A---- C:\Windows\system32\gpapi.dll
2016-08-13 17:04:20 ----A---- C:\Windows\system32\FwRemoteSvr.dll
2016-08-13 17:04:14 ----A---- C:\Windows\system32\invagent.dll
2016-08-13 17:04:14 ----A---- C:\Windows\system32\generaltel.dll
2016-08-13 17:04:14 ----A---- C:\Windows\system32\devinv.dll
2016-08-13 17:04:14 ----A---- C:\Windows\system32\CompatTelRunner.exe
2016-08-13 17:04:14 ----A---- C:\Windows\system32\centel.dll
2016-08-13 17:04:14 ----A---- C:\Windows\system32\appraiser.dll
2016-08-13 17:04:14 ----A---- C:\Windows\system32\aepic.dll
2016-08-13 17:04:14 ----A---- C:\Windows\system32\aeinv.dll
2016-08-13 17:04:14 ----A---- C:\Windows\system32\acmigration.dll
2016-08-13 17:04:02 ----A---- C:\Windows\system32\drivers\dxgmms1.sys
2016-08-13 17:04:02 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys
2016-08-13 17:04:02 ----A---- C:\Windows\system32\cdd.dll
2016-08-13 17:03:52 ----A---- C:\Windows\SYSWOW64\inseng.dll
2016-08-13 17:03:52 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2016-08-13 17:03:52 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2016-08-13 17:03:52 ----A---- C:\Windows\system32\iernonce.dll
2016-08-13 17:03:52 ----A---- C:\Windows\system32\ieetwproxystub.dll
2016-08-13 17:03:52 ----A---- C:\Windows\system32\ieetwcollector.exe
2016-08-13 17:03:51 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2016-08-13 17:03:51 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2016-08-13 17:03:51 ----A---- C:\Windows\SYSWOW64\occache.dll
2016-08-13 17:03:51 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2016-08-13 17:03:51 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2016-08-13 17:03:51 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2016-08-13 17:03:51 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2016-08-13 17:03:51 ----A---- C:\Windows\system32\inseng.dll
2016-08-13 17:03:51 ----A---- C:\Windows\system32\ie4uinit.exe
2016-08-13 17:03:50 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2016-08-13 17:03:50 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2016-08-13 17:03:50 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2016-08-13 17:03:50 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2016-08-13 17:03:49 ----A---- C:\Windows\SYSWOW64\jscript.dll
2016-08-13 17:03:49 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2016-08-13 17:03:49 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2016-08-13 17:03:49 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2016-08-13 17:03:49 ----A---- C:\Windows\system32\urlmon.dll
2016-08-13 17:03:49 ----A---- C:\Windows\system32\occache.dll
2016-08-13 17:03:49 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2016-08-13 17:03:49 ----A---- C:\Windows\system32\iedkcs32.dll
2016-08-13 17:03:48 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2016-08-13 17:03:48 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2016-08-13 17:03:48 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2016-08-13 17:03:47 ----A---- C:\Windows\SYSWOW64\ieui.dll
2016-08-13 17:03:47 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2016-08-13 17:03:47 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2016-08-13 17:03:47 ----A---- C:\Windows\system32\msfeeds.dll
2016-08-13 17:03:47 ----A---- C:\Windows\system32\iesetup.dll
2016-08-13 17:03:47 ----A---- C:\Windows\system32\ieapfltr.dll
2016-08-13 17:03:47 ----A---- C:\Windows\system32\dxtrans.dll
2016-08-13 17:03:46 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2016-08-13 17:03:46 ----A---- C:\Windows\system32\iertutil.dll
2016-08-13 17:03:45 ----A---- C:\Windows\SYSWOW64\wininet.dll
2016-08-13 17:03:45 ----A---- C:\Windows\SYSWOW64\webcheck.dll
2016-08-13 17:03:45 ----A---- C:\Windows\SYSWOW64\msrating.dll
2016-08-13 17:03:45 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2016-08-13 17:03:45 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2016-08-13 17:03:45 ----A---- C:\Windows\system32\vbscript.dll
2016-08-13 17:03:45 ----A---- C:\Windows\system32\jsproxy.dll
2016-08-13 17:03:44 ----A---- C:\Windows\system32\ieui.dll
2016-08-13 17:03:44 ----A---- C:\Windows\system32\ieframe.dll
2016-08-13 17:03:44 ----A---- C:\Windows\system32\dxtmsft.dll
2016-08-13 17:03:43 ----A---- C:\Windows\system32\webcheck.dll
2016-08-13 17:03:43 ----A---- C:\Windows\system32\mshtmlmedia.dll
2016-08-13 17:03:43 ----A---- C:\Windows\system32\mshtmled.dll
2016-08-13 17:03:43 ----A---- C:\Windows\system32\jscript9diag.dll
2016-08-13 17:03:43 ----A---- C:\Windows\system32\jscript9.dll
2016-08-13 17:03:43 ----A---- C:\Windows\system32\jscript.dll
2016-08-13 17:03:43 ----A---- C:\Windows\system32\ieUnatt.exe
2016-08-13 17:03:42 ----A---- C:\Windows\system32\wininet.dll
2016-08-13 17:03:42 ----A---- C:\Windows\system32\MshtmlDac.dll
2016-08-13 17:03:41 ----A---- C:\Windows\system32\msrating.dll
2016-08-13 17:03:41 ----A---- C:\Windows\system32\mshtml.dll
2016-08-13 17:03:05 ----A---- C:\Windows\SYSWOW64\gdi32.dll
2016-08-13 17:03:05 ----A---- C:\Windows\system32\gdi32.dll
2016-08-13 17:03:00 ----A---- C:\Windows\SYSWOW64\schannel.dll
2016-08-13 17:03:00 ----A---- C:\Windows\SYSWOW64\rpchttp.dll
2016-08-13 17:03:00 ----A---- C:\Windows\SYSWOW64\rpcrt4.dll
2016-08-13 17:03:00 ----A---- C:\Windows\SYSWOW64\ncrypt.dll
2016-08-13 17:03:00 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2016-08-13 17:03:00 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2016-08-13 17:03:00 ----A---- C:\Windows\SYSWOW64\adtschema.dll
2016-08-13 17:03:00 ----A---- C:\Windows\system32\wdigest.dll
2016-08-13 17:03:00 ----A---- C:\Windows\system32\schannel.dll
2016-08-13 17:03:00 ----A---- C:\Windows\system32\rpchttp.dll
2016-08-13 17:03:00 ----A---- C:\Windows\system32\rpcrt4.dll
2016-08-13 17:03:00 ----A---- C:\Windows\system32\ncrypt.dll
2016-08-13 17:03:00 ----A---- C:\Windows\system32\msv1_0.dll
2016-08-13 17:03:00 ----A---- C:\Windows\system32\lsasrv.dll
2016-08-13 17:03:00 ----A---- C:\Windows\system32\kerberos.dll
2016-08-13 17:03:00 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2016-08-13 17:03:00 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2016-08-13 17:03:00 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2016-08-13 17:03:00 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2016-08-13 17:03:00 ----A---- C:\Windows\system32\drivers\cng.sys
2016-08-13 17:03:00 ----A---- C:\Windows\system32\certcli.dll
2016-08-13 17:03:00 ----A---- C:\Windows\system32\bcryptprimitives.dll
2016-08-13 17:03:00 ----A---- C:\Windows\system32\adtschema.dll
2016-08-13 17:02:59 ----A---- C:\Windows\SYSWOW64\wdigest.dll
2016-08-13 17:02:59 ----A---- C:\Windows\SYSWOW64\TSpkg.dll
2016-08-13 17:02:59 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2016-08-13 17:02:59 ----A---- C:\Windows\SYSWOW64\secur32.dll
2016-08-13 17:02:59 ----A---- C:\Windows\SYSWOW64\msobjs.dll
2016-08-13 17:02:59 ----A---- C:\Windows\SYSWOW64\msaudite.dll
2016-08-13 17:02:59 ----A---- C:\Windows\SYSWOW64\cryptbase.dll
2016-08-13 17:02:59 ----A---- C:\Windows\SYSWOW64\credssp.dll
2016-08-13 17:02:59 ----A---- C:\Windows\SYSWOW64\certcli.dll
2016-08-13 17:02:59 ----A---- C:\Windows\SYSWOW64\bcryptprimitives.dll
2016-08-13 17:02:59 ----A---- C:\Windows\SYSWOW64\auditpol.exe
2016-08-13 17:02:59 ----A---- C:\Windows\system32\TSpkg.dll
2016-08-13 17:02:59 ----A---- C:\Windows\system32\sspisrv.dll
2016-08-13 17:02:59 ----A---- C:\Windows\system32\sspicli.dll
2016-08-13 17:02:59 ----A---- C:\Windows\system32\secur32.dll
2016-08-13 17:02:59 ----A---- C:\Windows\system32\msobjs.dll
2016-08-13 17:02:59 ----A---- C:\Windows\system32\msaudite.dll
2016-08-13 17:02:59 ----A---- C:\Windows\system32\lsass.exe
2016-08-13 17:02:59 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2016-08-13 17:02:59 ----A---- C:\Windows\system32\cryptbase.dll
2016-08-13 17:02:59 ----A---- C:\Windows\system32\credssp.dll
2016-08-13 17:02:59 ----A---- C:\Windows\system32\auditpol.exe
2016-08-13 17:02:53 ----A---- C:\Windows\SYSWOW64\StructuredQuery.dll
2016-08-13 17:02:53 ----A---- C:\Windows\system32\StructuredQuery.dll
2016-08-13 17:02:31 ----A---- C:\Windows\SYSWOW64\WindowsCodecs.dll
2016-08-13 17:02:31 ----A---- C:\Windows\system32\WindowsCodecs.dll
2016-08-13 16:46:03 ----A---- C:\Windows\SYSWOW64\winhttp.dll
2016-08-13 16:46:03 ----A---- C:\Windows\SYSWOW64\netbtugc.exe
2016-08-13 16:46:03 ----A---- C:\Windows\SYSWOW64\mswsock.dll
2016-08-13 16:46:03 ----A---- C:\Windows\system32\winhttp.dll
2016-08-13 16:46:03 ----A---- C:\Windows\system32\netbtugc.exe
2016-08-13 16:46:03 ----A---- C:\Windows\system32\drivers\netbt.sys
2016-08-13 16:46:02 ----A---- C:\Windows\SYSWOW64\ws2_32.dll
2016-08-13 16:46:02 ----A---- C:\Windows\system32\ws2_32.dll
2016-08-13 16:46:02 ----A---- C:\Windows\system32\mswsock.dll
2016-08-13 16:19:56 ----A---- C:\Windows\SYSWOW64\lpk.dll
2016-08-13 16:19:56 ----A---- C:\Windows\SYSWOW64\fontsub.dll
2016-08-13 16:19:56 ----A---- C:\Windows\SYSWOW64\dciman32.dll
2016-08-13 16:19:56 ----A---- C:\Windows\SYSWOW64\atmlib.dll
2016-08-13 16:19:56 ----A---- C:\Windows\SYSWOW64\atmfd.dll
2016-08-13 16:19:56 ----A---- C:\Windows\system32\lpk.dll
2016-08-13 16:19:56 ----A---- C:\Windows\system32\fontsub.dll
2016-08-13 16:19:56 ----A---- C:\Windows\system32\dciman32.dll
2016-08-13 16:19:56 ----A---- C:\Windows\system32\atmlib.dll
2016-08-13 16:19:56 ----A---- C:\Windows\system32\atmfd.dll
2016-08-13 15:33:49 ----A---- C:\Windows\system32\win32k.sys
2016-08-13 10:27:52 ----D---- C:\Windows\IObit
2016-08-13 10:27:51 ----A---- C:\Windows\SYSWOW64\drivers\HWiNFO64A.SYS
2016-08-13 09:57:57 ----D---- C:\Users\Jarka\AppData\Roaming\Apple Computer
2016-08-13 09:56:37 ----D---- C:\Users\Jarka\AppData\Roaming\ProductData
2016-08-13 09:56:35 ----D---- C:\ProgramData\ProductData
2016-08-12 06:12:19 ----A---- C:\Windows\tweaking.com-regbackup-JARUNECZKA-PC-Windows-7-Home-Premium-(64-bit).dat
2016-08-12 06:12:17 ----D---- C:\RegBackup
2016-08-10 17:05:07 ----D---- C:\Users\Jarka\AppData\Roaming\vlc
2016-08-10 16:57:22 ----D---- C:\Users\Jarka\AppData\Roaming\Lenovo
2016-08-10 12:37:39 ----A---- C:\Windows\SYSWOW64\wpcap.dll
2016-08-10 12:37:39 ----A---- C:\Windows\SYSWOW64\packet.dll
2016-08-10 12:37:39 ----A---- C:\Windows\system32\wpcap.dll
2016-08-10 12:37:39 ----A---- C:\Windows\system32\packet.dll
2016-08-10 12:37:39 ----A---- C:\Windows\system32\drivers\npf.sys
2016-08-10 12:22:17 ----D---- C:\Users\Jarka\AppData\Roaming\Wise Euask
2016-08-10 12:01:49 ----D---- C:\Program Files\Common Files\Intel
2016-08-10 12:01:45 ----D---- C:\Program Files (x86)\Cisco

======List of files/folders modified in the last 1 month======

2016-09-02 16:56:45 ----D---- C:\Program Files\trend micro
2016-09-02 16:56:11 ----D---- C:\Windows\Temp
2016-09-02 16:54:05 ----D---- C:\Windows\inf
2016-09-02 16:53:29 ----D---- C:\Users\Jarka\AppData\Roaming\Wise Disk Cleaner
2016-09-02 16:53:11 ----D---- C:\Windows\System32
2016-09-02 16:53:11 ----D---- C:\Windows
2016-09-02 16:51:27 ----D---- C:\Windows\SysWOW64
2016-09-02 16:50:19 ----D---- C:\Windows\system32\config
2016-09-02 16:49:35 ----D---- C:\Windows\system32\Tasks
2016-09-02 16:49:18 ----A---- C:\Windows\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2016-09-02 16:49:10 ----D---- C:\ProgramData\Validity
2016-09-02 16:49:06 ----D---- C:\Windows\debug
2016-09-02 16:42:11 ----D---- C:\Windows\system32\DriverStore
2016-09-02 16:41:52 ----D---- C:\Windows\twain_32
2016-09-02 16:41:26 ----D---- C:\Windows\system32\drivers
2016-09-02 16:41:22 ----SHD---- C:\System Volume Information
2016-09-02 16:41:22 ----D---- C:\Program Files (x86)\Realtek
2016-09-02 16:40:02 ----RD---- C:\Program Files (x86)
2016-09-02 16:38:30 ----D---- C:\Windows\system32\catroot
2016-09-02 16:37:05 ----HD---- C:\ProgramData
2016-09-02 16:35:01 ----SHD---- C:\Windows\Installer
2016-09-02 16:22:50 ----D---- C:\Windows\Tasks
2016-09-02 16:22:47 ----D---- C:\Program Files
2016-09-02 16:19:00 ----D---- C:\Windows\system32\NDF
2016-09-02 16:17:07 ----D---- C:\ProgramData\Intel
2016-09-02 08:27:22 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2016-09-02 06:22:57 ----D---- C:\Windows\Prefetch
2016-09-01 21:42:07 ----D---- C:\Windows\Logs
2016-09-01 20:28:38 ----A---- C:\Windows\system32\PerfStringBackup.INI
2016-09-01 10:19:32 ----D---- C:\AdwCleaner
2016-09-01 09:57:18 ----D---- C:\ProgramData\Lenovo
2016-09-01 09:44:27 ----D---- C:\Windows\system32\wfp
2016-09-01 09:44:27 ----D---- C:\Windows\system32\drivers\UMDF
2016-09-01 09:44:24 ----D---- C:\Windows\system32\wbem
2016-09-01 09:43:00 ----HD---- C:\Windows\system32\WLANProfiles
2016-09-01 09:43:00 ----D---- C:\Windows\winsxs
2016-09-01 09:43:00 ----D---- C:\Windows\system32\WinBioPlugIns
2016-09-01 09:42:59 ----SD---- C:\Windows\system32\GWX
2016-09-01 09:42:57 ----RSD---- C:\Windows\assembly
2016-09-01 09:42:57 ----D---- C:\Windows\system32\CodeIntegrity
2016-09-01 09:42:57 ----D---- C:\Windows\security
2016-09-01 09:42:57 ----D---- C:\Users\Jarka\AppData\Roaming\Wise Registry Cleaner
2016-09-01 09:42:39 ----D---- C:\ProgramData\Package Cache
2016-09-01 09:42:38 ----D---- C:\Program Files\Synaptics
2016-09-01 09:42:35 ----D---- C:\Program Files (x86)\Lenovo
2016-09-01 09:41:52 ----D---- C:\Windows\registration
2016-09-01 09:38:40 ----D---- C:\Program Files\Intel
2016-09-01 09:38:27 ----D---- C:\Program Files\Common Files
2016-09-01 09:37:25 ----D---- C:\Program Files (x86)\Intel
2016-09-01 09:37:21 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2016-09-01 09:37:16 ----D---- C:\drivers
2016-08-30 18:14:20 ----D---- C:\Zálohy
2016-08-29 19:05:24 ----D---- C:\Users\Jarka\AppData\Roaming\Skype
2016-08-28 06:34:34 ----D---- C:\Users\Jarka\AppData\Roaming\WiseUpdate
2016-08-28 06:29:16 ----D---- C:\Windows\SYSWOW64\drivers
2016-08-26 06:56:24 ----RD---- C:\Program Files (x86)\Skype
2016-08-26 06:56:22 ----D---- C:\ProgramData\Skype
2016-08-25 06:50:43 ----D---- C:\Fotky
2016-08-22 16:56:20 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2016-08-19 07:43:57 ----D---- C:\Windows\rescache
2016-08-17 06:41:18 ----D---- C:\Windows\SYSWOW64\cs-CZ
2016-08-17 06:41:18 ----D---- C:\Windows\system32\cs-CZ
2016-08-15 09:38:53 ----D---- C:\Program Files\Lenovo
2016-08-15 08:03:37 ----A---- C:\Windows\system32\{EC94D02F-D200-4428-9531-05AF7F9799CB}.bat
2016-08-14 09:47:18 ----D---- C:\Program Files (x86)\Common Files
2016-08-13 18:45:18 ----D---- C:\Windows\Microsoft.NET
2016-08-13 17:42:48 ----D---- C:\Windows\SYSWOW64\wbem
2016-08-13 17:42:48 ----D---- C:\Windows\system32\drivers\en-US
2016-08-13 17:42:43 ----D---- C:\Windows\system32\en-US
2016-08-13 17:42:42 ----D---- C:\Windows\AppPatch
2016-08-13 17:42:41 ----D---- C:\Windows\SYSWOW64\en-US
2016-08-13 17:42:41 ----D---- C:\Windows\system32\Boot
2016-08-13 17:42:41 ----D---- C:\Windows\PolicyDefinitions
2016-08-13 17:28:25 ----D---- C:\Program Files\Microsoft Silverlight
2016-08-13 17:28:25 ----D---- C:\Program Files (x86)\Microsoft Silverlight
2016-08-13 17:25:58 ----D---- C:\Windows\system32\appraiser
2016-08-13 17:25:57 ----D---- C:\Windows\ehome
2016-08-13 17:25:56 ----D---- C:\Program Files\Internet Explorer
2016-08-13 17:25:53 ----D---- C:\Program Files (x86)\Internet Explorer
2016-08-13 17:16:47 ----D---- C:\Windows\system32\MRT
2016-08-13 17:12:58 ----AC---- C:\Windows\system32\MRT.exe
2016-08-13 10:04:13 ----D---- C:\Windows\Panther
2016-08-13 05:25:52 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI
2016-08-13 05:16:09 ----D---- C:\Windows\system32\drivers\etc
2016-08-13 05:15:41 ----A---- C:\Windows\win.ini
2016-08-11 10:57:32 ----D---- C:\Windows\SYSWOW64\config
2016-08-10 11:58:05 ----D---- C:\Windows\Downloaded Installations
2016-08-10 11:18:28 ----D---- C:\Windows\system32\Macromed
2016-08-10 11:18:26 ----D---- C:\Windows\SYSWOW64\Macromed

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 edevmon;edevmon; C:\Windows\system32\DRIVERS\edevmon.sys [2016-06-28 199328]
R0 epfwwfp;epfwwfp; C:\Windows\system32\DRIVERS\epfwwfp.sys [2016-06-28 84640]
R0 iaStorA;iaStorA; C:\Windows\system32\DRIVERS\iaStorA.sys [2015-11-12 1467912]
R0 iaStorF;iaStorF; C:\Windows\system32\DRIVERS\iaStorF.sys [2015-11-12 31728]
R0 RapportHades64;RapportHades64; C:\Windows\System32\Drivers\RapportHades64.sys [2016-07-11 215560]
R0 RapportKE64;RapportKE64; C:\Windows\System32\Drivers\RapportKE64.sys [2016-07-11 470056]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R1 eamonm;eamonm; C:\Windows\system32\DRIVERS\eamonm.sys [2016-08-30 263296]
R1 ehdrv;ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [2016-06-28 197288]
R1 epfw;epfw; C:\Windows\system32\DRIVERS\epfw.sys [2016-06-28 208552]
R1 EpfwLWF;ESET Personal Firewall; C:\Windows\system32\DRIVERS\EpfwLWF.sys [2016-06-28 61608]
R1 HWiNFO32;HWiNFO32/64 Kernel Driver; \??\C:\Windows\SysWOW64\drivers\HWiNFO64A.SYS [2016-08-13 27552]
R1 RapportCerberus_1609042;RapportCerberus_1609042; \??\C:\ProgramData\Trusteer\Rapport\store\exts\RapportCerberus\baseline\RapportCerberus64_1609042.sys [2016-08-10 1157960]
R1 RapportEI64;RapportEI64; \??\C:\Program Files (x86)\Trusteer\Rapport\bin\x64\RapportEI64.sys [2016-07-11 544360]
R1 RapportPG64;RapportPG64; \??\C:\Program Files (x86)\Trusteer\Rapport\bin\x64\RapportPG64.sys [2016-07-11 525992]
R1 VWiFiFlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 ekbdflt;ekbdflt; C:\Windows\system32\DRIVERS\ekbdflt.sys [2016-08-30 153248]
R2 NPF;NetGroup Packet Filter Driver; \??\C:\Windows\system32\drivers\npf.sys [2016-08-10 35344]
R2 RMCAST;@%SystemRoot%\system32\wshrm.dll,-102; C:\Windows\system32\DRIVERS\RMCAST.sys [2015-11-05 146944]
R3 BthEnum;Služba Bluetooth Enumerator; C:\Windows\system32\DRIVERS\BthEnum.sys [2009-07-14 41984]
R3 BthPan;Zařízení Bluetooth (síť PAN); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
R3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2011-04-28 80384]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys [2016-01-20 7876072]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2015-09-17 4603136]
R3 IntcDAud;Intel(R) Display Audio; C:\Windows\system32\DRIVERS\IntcDAud.sys [2015-06-25 464144]
R3 iusb3hub;Ovladač rozbočovače Intel(R) USB 3.0; C:\Windows\system32\DRIVERS\iusb3hub.sys [2016-07-26 407048]
R3 iusb3xhc;Ovladač rozšiřitelného hostitelského řadiče Intel(R) USB 3.0; C:\Windows\system32\DRIVERS\iusb3xhc.sys [2016-07-26 816648]
R3 MEIx64;Intel(R) Management Engine Interface ; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [2016-08-31 181304]
R3 NETwNs64;___ Ovladač adaptéru Intel(R) Wireless pro systém Windows 7 64 Bit; C:\Windows\system32\DRIVERS\Netwsw04.sys [2016-07-24 3441424]
R3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
R3 RSP2STOR;Realtek PCIE CardReader Driver - P2; C:\Windows\system32\DRIVERS\RtsP2Stor.sys [2000-01-01 294104]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2015-05-19 986368]
R3 rtsuvc;Lenovo EasyCamera; C:\Windows\system32\DRIVERS\rtsuvc.sys [2015-06-23 3059928]
R3 semav6msr64;semav6msr64; \??\C:\Windows\system32\drivers\semav6msr64.sys [2015-06-04 21984]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2015-09-15 555176]
R3 Tpm;Čip TPM; C:\Windows\system32\drivers\tpm.sys [2016-02-05 147904]
R3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\Windows\system32\DRIVERS\vwifimp.sys [2009-07-14 17920]
R3 WinUsb;WinUSB Driver; C:\Windows\system32\DRIVERS\WinUSB.sys [2010-11-20 41984]
S3 ACPIVPC;Lenovo Virtual Power Controller Driver; C:\Windows\system32\DRIVERS\AcpiVpc.sys []
S3 BTHPORT;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2012-07-06 552960]
S3 btmhsf;btmhsf; C:\Windows\system32\DRIVERS\btmhsf.sys []
S3 ESETCleanersDriver;ESET Cleaner Service; \??\C:\Windows\system32\Drivers\ESETCleanersDriver.sys [2016-08-31 181160]
S3 ibtusb;Aplikace Intel(R) Wireless Bluetooth(R); C:\Windows\system32\DRIVERS\ibtusb.sys []
S3 netw5v64;Intel(R) Wireless WiFi Link 5000 Series – ovladač adaptéru pro 64bitový systém Windows Vista; C:\Windows\system32\DRIVERS\netw5v64.sys [2009-06-10 5434368]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 19456]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2013-10-02 56832]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET Smart Security\ekrn.exe [2016-08-30 2780160]
R2 ESRV_SVC_WILLAMETTE;Energy Server Service WILLAMETTE; C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\esrv_svc.exe [2016-06-08 416408]
R2 EvtEng;Intel(R) PROSet/Wireless Event Log; C:\Program Files\Intel\WiFi\bin\EvtEng.exe [2016-06-23 642464]
R2 igfxCUIService2.0.0.0;Intel(R) HD Graphics Control Panel Service; C:\Windows\system32\igfxCUIService.exe [2016-01-20 365032]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2015-10-16 207648]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2015-10-16 415520]
R2 RapportMgmtService;Rapport Management Service; C:\Program Files (x86)\Trusteer\Rapport\bin\RapportMgmtService.exe [2016-07-11 2383344]
R2 RegSrvc;Intel(R) PROSet/Wireless Registry Service; C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe [2016-06-23 157088]
R2 SynTPEnhService;SynTPEnh Caller Service; C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [2015-09-15 190632]
R2 SystemUsageReportSvc_WILLAMETTE;Intel(R) System Usage Report Service SystemUsageReportSvc_WILLAMETTE; C:\Program Files (x86)\Intel Driver Update Utility\SUR\SurSvc.exe [2016-06-08 117400]
R2 valWBFPolicyService;Synaptics FP WBF Policy Service; C:\Windows\system32\valWBFPolicyService.exe [2015-03-03 49968]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2015-11-05 105144]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2015-11-05 125112]
S2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2015-11-04 19440]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2016-07-25 324224]
S3 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2016-06-25 82128]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-08-22 270016]
S3 cphs;Intel(R) Content Protection HECI Service; C:\Windows\SysWow64\IntelCpHeciSvc.exe [2016-01-20 292840]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2016-08-02 114688]
S3 Intel(R) Capability Licensing Service TCP IP Interface;Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [2015-05-22 881152]
S3 LSC.Services.SystemService;Lenovo Solution Center System Service; C:\Program Files\Lenovo\Lenovo Solution Center\App\LSC.Services.SystemService.exe [2016-06-02 273232]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2016-08-25 146888]
S3 MyWiFiDHCPDNS;Wireless PAN DHCP Server; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [2016-06-23 268704]
S3 SUService;System Update; C:\Program Files (x86)\Lenovo\System Update\SUService.exe [2016-07-07 28544]
S3 USER_ESRV_SVC_WILLAMETTE;User Energy Server Service WILLAMETTE; C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\esrv_svc.exe [2016-06-08 416408]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2016-04-04 1255736]
S4 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2015-11-05 51376]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2015-11-05 135848]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2015-11-05 135848]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2015-11-05 135848]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118275
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Pro Rudy, prosím o kontrolu

#2 Příspěvek od Rudy »

Zdravím!
Stáhněte OTM: http://oldtimer.geekstogo.com/OTM.exe a uložte na plochu. Spusťte a do levého okna zkopírujte:
:files
C:\Windows\system32\SET*.tmp
C:\Windows\system32\{F33C3B9B-72AF-418A-B3FD-560646F7CDA2}.bat
C:\Windows\system32\{86F549EB-A66B-4D6C-958D-CDDD66410751}.bat
C:\Windows\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
C:\Windows\system32\{EC94D02F-D200-4428-9531-05AF7F9799CB}.bat

:commands
[Purity]
[Emptytemp]
[Emptyflash]
a klikněte na >MoveIt!<. Po skenu restartujte PC a dejte nový log RSIT.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Uživatelský avatar
jaruneczka
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 417
Registrován: 09 čer 2008 11:45
Bydliště: Ostrava

Re: Pro Rudy, prosím o kontrolu

#3 Příspěvek od jaruneczka »

Logfile of random's system information tool 1.10 (written by random/random)
Run by Jarka at 2016-09-03 05:15:01
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 418 GB (88%) free of 476 GB
Total RAM: 3955 MB (42% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 5:15:05, on 3.9.2016
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.18427)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\Trusteer\Rapport\bin\RapportService.exe
C:\Program Files\Lenovo\Lenovo Solution Center\LSCNotify.exe
C:\Program Files\trend micro\Jarka.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe,
O1 - Hosts: ::1 localhost
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O10 - Broken Internet access because of LSP provider 'c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll' missing
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - Trusted Zone: http://help.eset.com (HKLM)
O15 - ESC Trusted Zone: http://help.eset.com (HKLM)
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\Windows\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET Smart Security\ekrn.exe
O23 - Service: Energy Server Service WILLAMETTE (ESRV_SVC_WILLAMETTE) - Unknown owner - C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\esrv_svc.exe
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel(R) Corporation - C:\Program Files\Intel\WiFi\bin\EvtEng.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService2.0.0.0) - Unknown owner - C:\Windows\system32\igfxCUIService.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: Lenovo Solution Center System Service (LSC.Services.SystemService) - Lenovo - C:\Program Files\Lenovo\Lenovo Solution Center\App\LSC.Services.SystemService.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: Wireless PAN DHCP Server (MyWiFiDHCPDNS) - Unknown owner - C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Rapport Management Service (RapportMgmtService) - IBM Corp. - C:\Program Files (x86)\Trusteer\Rapport\bin\RapportMgmtService.exe
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel(R) Corporation - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: System Update (SUService) - Unknown owner - C:\Program Files (x86)\Lenovo\System Update\SUService.exe
O23 - Service: SynTPEnh Caller Service (SynTPEnhService) - Synaptics Incorporated - C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
O23 - Service: Intel(R) System Usage Report Service SystemUsageReportSvc_WILLAMETTE (SystemUsageReportSvc_WILLAMETTE) - Unknown owner - C:\Program Files (x86)\Intel Driver Update Utility\SUR\SurSvc.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: User Energy Server Service WILLAMETTE (USER_ESRV_SVC_WILLAMETTE) - Unknown owner - C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\esrv_svc.exe
O23 - Service: Synaptics FP WBF Policy Service (valWBFPolicyService) - Unknown owner - C:\Windows\system32\valWBFPolicyService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: Stínová kopie svazku (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: WMI Performance Adapter (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Zero Configuration Service (ZeroConfigService) - Intel® Corporation - C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe

--
End of file - 8292 bytes

======Listing Processes======



\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
winlogon.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
"C:\Program Files\ESET\ESET Smart Security\ekrn.exe"
C:\Windows\system32\svchost.exe -k RPCSS
"C:\Program Files (x86)\Trusteer\Rapport\bin\RapportMgmtService.exe"
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs

C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\system32\igfxCUIService.exe
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-8f456c99-6a7c-4f70-9f70-64390d93c05f -SystemEventPortName:HostProcess-a9fafccc-fcca-4c43-8091-e09642b3edbb -IoCancelEventPortName:HostProcess-cf1a9299-a17c-44f2-8b92-171de32b1856 -NonStateChangingEventPortName:HostProcess-734cf89b-bfb5-4b8f-986f-0b3ca348484b -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:a8a7d7d1-8ce5-46b2-ae6c-8530de0dec17 -DeviceGroupId:
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Windows\system32\WLANExt.exe 3264272
\??\C:\Windows\system32\conhost.exe "-161220779017288814571120874371741926406-370430029-1633837913-656196782169679956
"taskhost.exe"
C:\Windows\system32\svchost.exe -k WbioSvcGroup
C:\Windows\System32\svchost.exe -k utcsvc
"C:\Program Files\Intel\WiFi\bin\EvtEng.exe"
"C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe"
"C:\Program Files (x86)\Skype\Updater\Updater.exe"
"C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe"
"C:\Program Files (x86)\Intel Driver Update Utility\SUR\SurSvc.exe"
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
C:\Windows\system32\valWBFPolicyService.exe
C:\Windows\system32\vssvc.exe
"C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe"
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\system32\wbem\unsecapp.exe -Embedding
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
C:\Windows\system32\svchost.exe -k bthsvcs
igfxEM.exe
igfxHK.exe
igfxTray.exe
"C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE"
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Program Files\ESET\ESET Smart Security\egui.exe" /hide
"C:\Program Files (x86)\Trusteer\Rapport\bin\RapportService.exe" -servicelaunch=true
C:\Windows\system32\sppsvc.exe
C:\Windows\System32\svchost.exe -k swprv
taskeng.exe {99B99E87-F7D7-4E39-955C-13EA06F964DD}
"" "--start" "--register_port" "--address" "127.0.0.1" "--port" "49331" "--pause_on_user_switching" "--depend_on_key" "SYSTEM\CurrentControlSet\Services\ESRV_SVC_WILLAMETTE" "--depend_on_value" "run" "--time_in_ms" "--pause" "5000" "--library" "C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\intel_modeler.dll" "--no_pl" "--watchdog" "10" "--watchdog_cpu_usage_limit" "50" "--end_on_error" "--kernel_priority_boost" "--shutdown_priority_boost" "--device_options" " time=no output=no output_folder='C:\ProgramData\Intel\SUR\WILLAMETTE\IntelData\userlogs' limit_output_by=time output_limit=3600000 output_buffer=1024 il='C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\foreground_window_input.dll' "
\??\C:\Windows\system32\conhost.exe "-1076684263127354571-188828924483069694013638163611590970042744978429-412164207
taskeng.exe {C82AC03C-7907-42DE-984E-C8A26BC0DA7E}
"C:\Program Files\CCleaner\CCleaner.exe" /MONITOR /uac
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
taskeng.exe {B8D56C6B-6B39-4BEB-903E-DF68781E6B49}
"C:\Program Files\Lenovo\Lenovo Solution Center\LSCNotify.exe" /showasync
"C:\Users\Jarka\Desktop\RSITx64.exe"
C:\Windows\system32\DllHost.exe /Processid:{F9717507-6651-4EDB-BFF7-AE615179BCCF}

======Scheduled tasks folder======

C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe

=========Mozilla firefox=========

ProfilePath - C:\Users\Jarka\AppData\Roaming\Mozilla\Firefox\Profiles\g5c2z47r.default

prefs.js - "browser.startup.homepage" - "www.seznam.cz"

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 22.0.0.209 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_22_0_0_209.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.68]
"Description"=Intel IPT WebApi plugin
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI updater]
"Description"=This plugin updates Intel WebAPI component
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files (x86)\Microsoft Silverlight\5.1.50428.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.2.2]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.2.4]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 22.0.0.209 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_22_0_0_209.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files\Microsoft Silverlight\5.1.50428.0\npctrl.dll


C:\Program Files (x86)\Mozilla Firefox\plugins\
np-mswmp.dll
WMP Firefox Plugin License.rtf
WMP Firefox Plugin RelNotes.txt

======Registry dump======

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2016-08-05 8894680]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Advanced SystemCare 9]
[]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DUP]
[]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IAStorIcon]
C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe [2015-11-17 71168]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LenovoUtility]
[]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Logitech Download Assistant]
C:\Windows\System32\LogiLDA.dll [2012-09-20 1832760]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NETGEARGenie]
[]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RtHDVBg_Dolby]
C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2015-09-17 1409264]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RtHDVBg_LENOVO_DOLBYDRAGON]
C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2015-09-17 1409264]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RtHDVBg_LENOVO_MICPKEY]
C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2015-09-17 1409264]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RTHDVCPL]
C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2015-09-17 16404224]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SynTPEnh]
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2015-09-15 2811560]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\USB3MON]
C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [2016-06-20 299504]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\Windows\system32\wpdshserviceobj.dll [2010-11-20 115200]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoSimpleNetIDList"=1
"NoDriveTypeAutoRun"=221

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1

======List of files/folders created in the last 1 month======

2016-09-03 05:11:36 ----D---- C:\_OTM
2016-09-03 05:04:07 ----A---- C:\Windows\system32\FNTCACHE.DAT
2016-09-02 16:56:43 ----D---- C:\rsit
2016-09-02 16:41:26 ----A---- C:\Windows\system32\drivers\RtsUVC.sys
2016-09-02 16:41:25 ----A---- C:\Windows\SYSWOW64\RtCamX.dll
2016-09-02 16:41:25 ----A---- C:\Windows\system32\RtCamX64.dll
2016-09-02 16:41:24 ----A---- C:\Windows\SYSWOW64\RsDecode.dll
2016-09-02 16:41:24 ----A---- C:\Windows\RtCamU64.exe
2016-09-02 16:31:25 ----D---- C:\ProgramData\Downloaded Installations
2016-09-02 10:23:58 ----D---- C:\Users\Jarka\AppData\Roaming\driveridentifier
2016-09-02 08:47:00 ----D---- C:\Program Files\SoftPerfect WiFi Guard
2016-09-02 08:11:34 ----D---- C:\ProgramData\TuneUp Software
2016-09-02 08:11:26 ----SHD---- C:\ProgramData\{C4ABDBC8-1C81-42C9-BFFC-4A68511E9E4F}
2016-09-02 08:11:26 ----HD---- C:\ProgramData\Common Files
2016-09-02 07:55:50 ----D---- C:\Program Files (x86)\Mozilla Thunderbird
2016-09-01 20:21:08 ----A---- C:\Windows\system32\drivers\SAMSFPA.DAT
2016-09-01 20:19:32 ----A---- C:\Windows\system32\SRSWOW64.dll
2016-09-01 20:19:32 ----A---- C:\Windows\system32\SRSTSX64.dll
2016-09-01 20:19:32 ----A---- C:\Windows\system32\SRSTSH64.dll
2016-09-01 20:19:32 ----A---- C:\Windows\system32\SRSHP64.dll
2016-09-01 20:19:30 ----A---- C:\Windows\SYSWOW64\SFCOM.dll
2016-09-01 20:19:30 ----A---- C:\Windows\system32\SFSS_APO.dll
2016-09-01 20:19:30 ----A---- C:\Windows\system32\SFNHK64.dll
2016-09-01 20:19:30 ----A---- C:\Windows\system32\SFCOM64.dll
2016-09-01 20:19:30 ----A---- C:\Windows\system32\SFAPO64.dll
2016-09-01 20:19:28 ----A---- C:\Windows\system32\RtPgEx64.dll
2016-09-01 20:19:28 ----A---- C:\Windows\system32\RtlCPAPI64.dll
2016-09-01 20:19:28 ----A---- C:\Windows\system32\RtkCoLDR64.dll
2016-09-01 20:19:28 ----A---- C:\Windows\system32\RtkCfg64.dll
2016-09-01 20:19:28 ----A---- C:\Windows\system32\drivers\RTKVHD64.sys
2016-09-01 20:19:27 ----A---- C:\Windows\system32\RtkApi64.dll
2016-09-01 20:19:27 ----A---- C:\Windows\system32\RTEEP64A.dll
2016-09-01 20:19:27 ----A---- C:\Windows\system32\RTEEL64A.dll
2016-09-01 20:19:27 ----A---- C:\Windows\system32\RTEEG64A.dll
2016-09-01 20:19:27 ----A---- C:\Windows\system32\RTEED64A.dll
2016-09-01 20:19:26 ----A---- C:\Windows\system32\RtDataProc64.dll
2016-09-01 20:19:26 ----A---- C:\Windows\system32\RTCOM64.dll
2016-09-01 20:19:26 ----A---- C:\Windows\system32\RP3DHT64.dll
2016-09-01 20:19:26 ----A---- C:\Windows\system32\RP3DAA64.dll
2016-09-01 20:19:26 ----A---- C:\Windows\system32\RltkAPO64.dll
2016-09-01 20:19:26 ----A---- C:\Windows\system32\drivers\RTAIODAT.DAT
2016-09-01 20:19:24 ----A---- C:\Windows\system32\RCoRes64.dat
2016-09-01 20:19:24 ----A---- C:\Windows\system32\RCoInstII64.dll
2016-09-01 20:19:24 ----A---- C:\Windows\system32\R4EEP64A.dll
2016-09-01 20:19:23 ----A---- C:\Windows\system32\R4EEL64A.dll
2016-09-01 20:19:23 ----A---- C:\Windows\system32\R4EEG64A.dll
2016-09-01 20:19:23 ----A---- C:\Windows\system32\R4EED64A.dll
2016-09-01 20:19:23 ----A---- C:\Windows\system32\R4EEA64A.dll
2016-09-01 20:19:22 ----A---- C:\Windows\system32\MaxxVolumeSDAPO.dll
2016-09-01 20:19:20 ----A---- C:\Windows\system32\MaxxAudioEQ64.dll
2016-09-01 20:19:19 ----A---- C:\Windows\system32\MaxxAudioAPO30.dll
2016-09-01 20:19:19 ----A---- C:\Windows\system32\MaxxAudioAPO20.dll
2016-09-01 20:19:18 ----A---- C:\Windows\system32\HiFiDAX2API.dll
2016-09-01 20:19:14 ----A---- C:\Windows\system32\FMAPO64.dll
2016-09-01 20:19:14 ----A---- C:\Windows\system32\DTSVoiceClarityDLL64.dll
2016-09-01 20:19:14 ----A---- C:\Windows\system32\DTSSymmetryDLL64.dll
2016-09-01 20:19:13 ----A---- C:\Windows\system32\DTSS2SpeakerDLL64.dll
2016-09-01 20:19:13 ----A---- C:\Windows\system32\DTSS2HeadphoneDLL64.dll
2016-09-01 20:19:13 ----A---- C:\Windows\system32\DTSNeoPCDLL64.dll
2016-09-01 20:19:13 ----A---- C:\Windows\system32\DTSLimiterDLL64.dll
2016-09-01 20:19:13 ----A---- C:\Windows\system32\DTSLFXAPO64.dll
2016-09-01 20:19:13 ----A---- C:\Windows\system32\DTSGFXAPONS64.dll
2016-09-01 20:19:13 ----A---- C:\Windows\system32\DTSGFXAPO64.dll
2016-09-01 20:19:13 ----A---- C:\Windows\system32\DTSGainCompensatorDLL64.dll
2016-09-01 20:19:12 ----A---- C:\Windows\system32\DTSBoostDLL64.dll
2016-09-01 20:19:12 ----A---- C:\Windows\system32\DTSBassEnhancementDLL64.dll
2016-09-01 20:19:12 ----A---- C:\Windows\system32\DolbyDAX2APOv211.dll
2016-09-01 20:19:12 ----A---- C:\Windows\system32\DolbyDAX2APOProp.dll
2016-09-01 20:19:12 ----A---- C:\Windows\system32\DDPP64AF3.dll
2016-09-01 20:19:12 ----A---- C:\Windows\system32\DDPP64A.dll
2016-09-01 20:19:12 ----A---- C:\Windows\system32\DDPO64AF3.dll
2016-09-01 20:19:12 ----A---- C:\Windows\system32\DDPO64A.dll
2016-09-01 20:19:12 ----A---- C:\Windows\system32\DDPD64AF3.dll
2016-09-01 20:19:12 ----A---- C:\Windows\system32\DDPD64A.dll
2016-09-01 20:19:11 ----A---- C:\Windows\system32\DDPA64F3.dll
2016-09-01 20:19:11 ----A---- C:\Windows\system32\DDPA64.dll
2016-09-01 20:19:10 ----A---- C:\Windows\system32\CONEQMSAPOGUILibrary.dll
2016-09-01 20:19:10 ----A---- C:\Windows\system32\AERTAR64.dll
2016-09-01 20:19:10 ----A---- C:\Windows\system32\AERTAC64.dll
2016-09-01 06:04:48 ----SHD---- C:\Config.Msi
2016-08-31 17:13:57 ----D---- C:\Program Files (x86)\Dolby Advanced Audio v2
2016-08-31 17:13:21 ----D---- C:\Windows\system32\DAX2
2016-08-31 16:36:17 ----HD---- C:\Program Files (x86)\Temp
2016-08-31 16:25:36 ----A---- C:\Windows\system32\SynTPCo20.dll
2016-08-31 16:25:36 ----A---- C:\Windows\system32\SynTPAPI.dll
2016-08-31 16:25:36 ----A---- C:\Windows\system32\drivers\SynTP.sys
2016-08-31 16:25:34 ----A---- C:\Windows\SYSWOW64\SynCom.dll
2016-08-31 06:45:11 ----A---- C:\Windows\system32\drivers\TeeDriverx64.sys
2016-08-30 20:12:22 ----A---- C:\Windows\system32\drivers\ekbdflt.sys
2016-08-30 20:11:50 ----D---- C:\Users\Jarka\AppData\Roaming\ESET
2016-08-30 20:06:12 ----D---- C:\ProgramData\ESET
2016-08-30 20:06:01 ----D---- C:\Program Files\ESET
2016-08-30 16:56:21 ----D---- C:\Temp
2016-08-30 16:55:39 ----D---- C:\Users\Jarka\AppData\Roaming\TeamViewer
2016-08-30 14:01:39 ----D---- C:\Program Files\CCleaner
2016-08-26 17:39:32 ----D---- C:\Složky souborů
2016-08-26 16:26:10 ----A---- C:\Windows\system32\drivers\ESETCleanersDriver.sys
2016-08-25 06:44:42 ----D---- C:\Program Files (x86)\Mozilla Firefox
2016-08-17 11:24:43 ----D---- C:\Program Files (x86)\Intel Driver Update Utility
2016-08-17 08:46:11 ----D---- C:\Program Files (x86)\Google
2016-08-17 06:39:19 ----A---- C:\Windows\system32\drivers\tcpip.sys
2016-08-17 06:39:19 ----A---- C:\Windows\system32\drivers\netio.sys
2016-08-17 06:39:18 ----A---- C:\Windows\SYSWOW64\INETRES.dll
2016-08-17 06:39:18 ----A---- C:\Windows\SYSWOW64\inetcomm.dll
2016-08-17 06:39:18 ----A---- C:\Windows\system32\INETRES.dll
2016-08-17 06:39:18 ----A---- C:\Windows\system32\inetcomm.dll
2016-08-17 06:39:18 ----A---- C:\Windows\system32\drivers\tcpipreg.sys
2016-08-17 06:39:18 ----A---- C:\Windows\system32\drivers\srvnet.sys
2016-08-17 06:39:18 ----A---- C:\Windows\system32\drivers\srv2.sys
2016-08-17 06:39:18 ----A---- C:\Windows\system32\drivers\srv.sys
2016-08-17 06:39:18 ----A---- C:\Windows\system32\drivers\FWPKCLNT.SYS
2016-08-17 06:38:56 ----A---- C:\Windows\SYSWOW64\tzres.dll
2016-08-17 06:38:56 ----A---- C:\Windows\system32\tzres.dll
2016-08-15 08:39:19 ----D---- C:\Program Files\Reason
2016-08-15 08:03:37 ----A---- C:\Windows\system32\{F33C3B9B-72AF-418A-B3FD-560646F7CDA2}.bat
2016-08-15 08:03:37 ----A---- C:\Windows\system32\{86F549EB-A66B-4D6C-958D-CDDD66410751}.bat
2016-08-15 07:54:16 ----A---- C:\Windows\system32\igfxCoIn_v4248.dll
2016-08-15 07:54:04 ----A---- C:\Windows\system32\igfxCUIService.exe
2016-08-14 17:15:13 ----D---- C:\Windows\SoftwareDistribution
2016-08-14 17:14:41 ----D---- C:\Windows\system32\catroot2
2016-08-14 09:57:51 ----A---- C:\Windows\system32\drivers\IntcDAud.sys
2016-08-14 09:55:51 ----D---- C:\Windows\SYSWOW64\RTCOM
2016-08-14 09:55:00 ----D---- C:\Program Files\Realtek
2016-08-14 09:54:56 ----A---- C:\Windows\system32\YamahaAE2.dll
2016-08-14 09:54:56 ----A---- C:\Windows\system32\YamahaAE.dll
2016-08-14 09:54:56 ----A---- C:\Windows\system32\WavesGUILib64.dll
2016-08-14 09:54:56 ----A---- C:\Windows\system32\tossaemaxapo64.dll
2016-08-14 09:54:56 ----A---- C:\Windows\system32\tossaeapo64.dll
2016-08-14 09:54:56 ----A---- C:\Windows\system32\toseaeapo64.dll
2016-08-14 09:54:56 ----A---- C:\Windows\system32\tosasfapo64.dll
2016-08-14 09:54:56 ----A---- C:\Windows\system32\tosade.dll
2016-08-14 09:54:56 ----A---- C:\Windows\system32\tepeqapo64.dll
2016-08-14 09:54:56 ----A---- C:\Windows\system32\tadefxapo264.dll
2016-08-14 09:54:55 ----A---- C:\Windows\SYSWOW64\SRCOM.dll
2016-08-14 09:54:55 ----A---- C:\Windows\system32\tadefxapo.dll
2016-08-14 09:54:55 ----A---- C:\Windows\system32\SRRPTR64.dll
2016-08-14 09:54:55 ----A---- C:\Windows\system32\SRCOM64.dll
2016-08-14 09:54:55 ----A---- C:\Windows\system32\SRCOM.dll
2016-08-14 09:54:55 ----A---- C:\Windows\system32\SRAPO64.dll
2016-08-14 09:54:54 ----A---- C:\Windows\system32\sltech64.dll
2016-08-14 09:54:54 ----A---- C:\Windows\system32\slprp64.dll
2016-08-14 09:54:53 ----A---- C:\Windows\system32\slcnt64.dll
2016-08-14 09:54:50 ----A---- C:\Windows\system32\sl3apo64.dll
2016-08-14 09:54:49 ----A---- C:\Windows\system32\SEHDRA64.dll
2016-08-14 09:54:49 ----A---- C:\Windows\system32\SECOMN64.dll
2016-08-14 09:54:48 ----A---- C:\Windows\SYSWOW64\SECOMN32.DLL
2016-08-14 09:54:48 ----A---- C:\Windows\system32\SEAPO64.dll
2016-08-14 09:54:48 ----A---- C:\Windows\system32\drivers\rtvienna.dat
2016-08-14 09:54:37 ----A---- C:\Windows\SYSWOW64\RltkAPO.dll
2016-08-14 09:54:34 ----A---- C:\Windows\system32\NAHIMICV2apo.dll
2016-08-14 09:54:34 ----A---- C:\Windows\system32\NahimicAPONSControl.dll
2016-08-14 09:54:33 ----A---- C:\Windows\system32\NAHIMICAPOlfx.dll
2016-08-14 09:54:33 ----A---- C:\Windows\system32\MISS_APO.dll
2016-08-14 09:54:30 ----A---- C:\Windows\system32\MaxxVoiceAPO3064.dll
2016-08-14 09:54:29 ----A---- C:\Windows\system32\MaxxVoiceAPO2064.dll
2016-08-14 09:54:29 ----A---- C:\Windows\system32\MaxxSpeechAPO64.dll
2016-08-14 09:54:29 ----A---- C:\Windows\system32\MaxxAudioRealtek64.dll
2016-08-14 09:54:29 ----A---- C:\Windows\system32\MaxxAudioAPOShell64.dll
2016-08-14 09:54:29 ----A---- C:\Windows\system32\MaxxAudioAPO6064.dll
2016-08-14 09:54:29 ----A---- C:\Windows\system32\MaxxAudioAPO5064.dll
2016-08-14 09:54:29 ----A---- C:\Windows\system32\MaxxAudioAPO4064.dll
2016-08-14 09:54:29 ----A---- C:\Windows\system32\KAAPORT64.dll
2016-08-14 09:54:28 ----A---- C:\Windows\system32\ICEsoundAPO64.dll
2016-08-14 09:54:24 ----A---- C:\Windows\system32\DTSU2PREC64.dll
2016-08-14 09:54:24 ----A---- C:\Windows\system32\DTSU2PLFX64.dll
2016-08-14 09:54:24 ----A---- C:\Windows\system32\DTSU2PGFX64.dll
2016-08-14 09:54:20 ----A---- C:\Windows\system32\CX64APO.dll
2016-08-14 09:54:19 ----A---- C:\Windows\system32\audioLibVc.dll
2016-08-14 09:54:19 ----A---- C:\Windows\system32\AcpiServiceVnA64.dll
2016-08-14 09:40:55 ----A---- C:\Windows\system32\RtNicProp64.dll
2016-08-14 09:40:55 ----A---- C:\Windows\system32\drivers\Rt64win7.sys
2016-08-14 08:50:30 ----A---- C:\Windows\RtlExUpd.dll
2016-08-14 08:47:35 ----D---- C:\ProgramData\Thunder Network
2016-08-14 08:30:43 ----D---- C:\DTLFolder
2016-08-13 18:24:25 ----A---- C:\Windows\SYSWOW64\mstscax.dll
2016-08-13 18:24:25 ----A---- C:\Windows\system32\wksprt.exe
2016-08-13 18:24:25 ----A---- C:\Windows\system32\mstscax.dll
2016-08-13 18:24:24 ----A---- C:\Windows\SYSWOW64\tsgqec.dll
2016-08-13 18:24:24 ----A---- C:\Windows\SYSWOW64\rdvidcrl.dll
2016-08-13 18:24:24 ----A---- C:\Windows\system32\tsgqec.dll
2016-08-13 18:24:24 ----A---- C:\Windows\system32\rdvidcrl.dll
2016-08-13 18:14:18 ----A---- C:\Windows\system32\rdpudd.dll
2016-08-13 18:14:18 ----A---- C:\Windows\system32\RdpGroupPolicyExtension.dll
2016-08-13 18:14:18 ----A---- C:\Windows\system32\rdpcorets.dll
2016-08-13 18:14:01 ----A---- C:\Windows\system32\TSWbPrxy.exe
2016-08-13 17:41:52 ----A---- C:\Windows\system32\TsUsbGDCoInstaller.dll
2016-08-13 17:41:46 ----A---- C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll
2016-08-13 17:41:46 ----A---- C:\Windows\system32\TsUsbRedirectionGroupPolicyControl.exe
2016-08-13 17:41:45 ----A---- C:\Windows\system32\drivers\TsUsbFlt.sys
2016-08-13 17:41:43 ----A---- C:\Windows\SYSWOW64\wksprtPS.dll
2016-08-13 17:41:43 ----A---- C:\Windows\SYSWOW64\mstsc.exe
2016-08-13 17:41:43 ----A---- C:\Windows\SYSWOW64\MsRdpWebAccess.dll
2016-08-13 17:41:43 ----A---- C:\Windows\system32\wksprtPS.dll
2016-08-13 17:41:43 ----A---- C:\Windows\system32\mstsc.exe
2016-08-13 17:41:43 ----A---- C:\Windows\system32\MsRdpWebAccess.dll
2016-08-13 17:40:23 ----A---- C:\Windows\system32\drivers\rdpvideominiport.sys
2016-08-13 17:40:17 ----A---- C:\Windows\SYSWOW64\rdpendp_winip.dll
2016-08-13 17:40:17 ----A---- C:\Windows\system32\rdpendp_winip.dll
2016-08-13 17:38:25 ----A---- C:\Windows\SYSWOW64\wuwebv.dll
2016-08-13 17:38:25 ----A---- C:\Windows\SYSWOW64\wudriver.dll
2016-08-13 17:38:25 ----A---- C:\Windows\SYSWOW64\wuapp.exe
2016-08-13 17:38:25 ----A---- C:\Windows\SYSWOW64\wuapi.dll
2016-08-13 17:38:25 ----A---- C:\Windows\system32\wuwebv.dll
2016-08-13 17:38:25 ----A---- C:\Windows\system32\wudriver.dll
2016-08-13 17:38:25 ----A---- C:\Windows\system32\wucltux.dll
2016-08-13 17:38:25 ----A---- C:\Windows\system32\wuaueng.dll
2016-08-13 17:38:25 ----A---- C:\Windows\system32\wuauclt.exe
2016-08-13 17:38:25 ----A---- C:\Windows\system32\wuapp.exe
2016-08-13 17:38:25 ----A---- C:\Windows\system32\wuapi.dll
2016-08-13 17:38:25 ----A---- C:\Windows\system32\WinSetupUI.dll
2016-08-13 17:38:25 ----A---- C:\Windows\system32\oleaut32.dll
2016-08-13 17:38:25 ----A---- C:\Windows\system32\ntdll.dll
2016-08-13 17:38:25 ----A---- C:\Windows\system32\crypt32.dll
2016-08-13 17:38:24 ----A---- C:\Windows\SYSWOW64\wups.dll
2016-08-13 17:38:24 ----A---- C:\Windows\SYSWOW64\oleaut32.dll
2016-08-13 17:38:24 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2016-08-13 17:38:24 ----A---- C:\Windows\system32\wups2.dll
2016-08-13 17:38:24 ----A---- C:\Windows\system32\wups.dll
2016-08-13 17:38:24 ----A---- C:\Windows\system32\wu.upgrade.ps.dll
2016-08-13 17:38:23 ----A---- C:\Windows\SYSWOW64\olepro32.dll
2016-08-13 17:38:23 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2016-08-13 17:38:23 ----A---- C:\Windows\SYSWOW64\msiexec.exe
2016-08-13 17:38:23 ----A---- C:\Windows\SYSWOW64\msi.dll
2016-08-13 17:38:23 ----A---- C:\Windows\SYSWOW64\crypt32.dll
2016-08-13 17:38:23 ----A---- C:\Windows\system32\wintrust.dll
2016-08-13 17:38:23 ----A---- C:\Windows\system32\ntoskrnl.exe
2016-08-13 17:38:23 ----A---- C:\Windows\system32\msiexec.exe
2016-08-13 17:38:23 ----A---- C:\Windows\system32\msi.dll
2016-08-13 17:38:23 ----A---- C:\Windows\system32\cryptsvc.dll
2016-08-13 17:38:23 ----A---- C:\Windows\system32\cryptnet.dll
2016-08-13 17:38:23 ----A---- C:\Windows\system32\consent.exe
2016-08-13 17:38:23 ----A---- C:\Windows\system32\asycfilt.dll
2016-08-13 17:38:22 ----A---- C:\Windows\SYSWOW64\wintrust.dll
2016-08-13 17:38:22 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2016-08-13 17:38:22 ----A---- C:\Windows\SYSWOW64\cryptsvc.dll
2016-08-13 17:38:22 ----A---- C:\Windows\SYSWOW64\cryptnet.dll
2016-08-13 17:38:22 ----A---- C:\Windows\SYSWOW64\asycfilt.dll
2016-08-13 17:38:22 ----A---- C:\Windows\SYSWOW64\advapi32.dll
2016-08-13 17:38:22 ----A---- C:\Windows\system32\wow64win.dll
2016-08-13 17:38:22 ----A---- C:\Windows\system32\srcore.dll
2016-08-13 17:38:22 ----A---- C:\Windows\system32\smss.exe
2016-08-13 17:38:22 ----A---- C:\Windows\system32\KernelBase.dll
2016-08-13 17:38:22 ----A---- C:\Windows\system32\kernel32.dll
2016-08-13 17:38:22 ----A---- C:\Windows\system32\authui.dll
2016-08-13 17:38:22 ----A---- C:\Windows\system32\advapi32.dll
2016-08-13 17:38:21 ----A---- C:\Windows\SYSWOW64\msihnd.dll
2016-08-13 17:38:21 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2016-08-13 17:38:21 ----A---- C:\Windows\SYSWOW64\authui.dll
2016-08-13 17:38:21 ----A---- C:\Windows\system32\wow64cpu.dll
2016-08-13 17:38:21 ----A---- C:\Windows\system32\wow64.dll
2016-08-13 17:38:21 ----A---- C:\Windows\system32\winsrv.dll
2016-08-13 17:38:21 ----A---- C:\Windows\system32\srclient.dll
2016-08-13 17:38:21 ----A---- C:\Windows\system32\msihnd.dll
2016-08-13 17:38:21 ----A---- C:\Windows\system32\drivers\appid.sys
2016-08-13 17:38:21 ----A---- C:\Windows\system32\csrsrv.dll
2016-08-13 17:38:21 ----A---- C:\Windows\system32\conhost.exe
2016-08-13 17:38:21 ----A---- C:\Windows\system32\appinfo.dll
2016-08-13 17:38:21 ----A---- C:\Windows\system32\appidapi.dll
2016-08-13 17:38:20 ----A---- C:\Windows\SYSWOW64\wow32.dll
2016-08-13 17:38:20 ----A---- C:\Windows\SYSWOW64\srclient.dll
2016-08-13 17:38:20 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2016-08-13 17:38:20 ----A---- C:\Windows\SYSWOW64\kernel32.dll
2016-08-13 17:38:20 ----A---- C:\Windows\SYSWOW64\appidapi.dll
2016-08-13 17:38:20 ----A---- C:\Windows\system32\setbcdlocale.dll
2016-08-13 17:38:20 ----A---- C:\Windows\system32\rstrui.exe
2016-08-13 17:38:20 ----A---- C:\Windows\system32\ntvdm64.dll
2016-08-13 17:38:20 ----A---- C:\Windows\system32\appidsvc.dll
2016-08-13 17:38:20 ----A---- C:\Windows\system32\appidpolicyconverter.exe
2016-08-13 17:38:20 ----A---- C:\Windows\system32\appidcertstorecheck.exe
2016-08-13 17:38:19 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2016-08-13 17:38:19 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-1-0.dll
2016-08-13 17:38:19 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-profile-l1-1-0.dll
2016-08-13 17:38:19 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2016-08-13 17:38:19 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2016-08-13 17:38:19 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2016-08-13 17:38:19 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-misc-l1-1-0.dll
2016-08-13 17:38:19 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-memory-l1-1-0.dll
2016-08-13 17:38:19 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2016-08-13 17:38:19 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-io-l1-1-0.dll
2016-08-13 17:38:19 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2016-08-13 17:38:19 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-heap-l1-1-0.dll
2016-08-13 17:38:19 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-1-0.dll
2016-08-13 17:38:19 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2016-08-13 17:38:19 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2016-08-13 17:38:19 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2016-08-13 17:38:19 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2016-08-13 17:38:19 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2016-08-13 17:38:19 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2016-08-13 17:38:19 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2016-08-13 17:38:19 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2016-08-13 17:38:19 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2016-08-13 17:38:19 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2016-08-13 17:38:19 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2016-08-13 17:38:19 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2016-08-13 17:38:19 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2016-08-13 17:38:19 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2016-08-13 17:38:19 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2016-08-13 17:38:19 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2016-08-13 17:38:19 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2016-08-13 17:38:19 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2016-08-13 17:38:19 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2016-08-13 17:38:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-security-base-l1-1-0.dll
2016-08-13 17:38:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l1-1-0.dll
2016-08-13 17:38:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-util-l1-1-0.dll
2016-08-13 17:38:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2016-08-13 17:38:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-string-l1-1-0.dll
2016-08-13 17:38:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2016-08-13 17:38:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2016-08-13 17:38:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-1-0.dll
2016-08-13 17:38:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-handle-l1-1-0.dll
2016-08-13 17:38:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-fibers-l1-1-0.dll
2016-08-13 17:38:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2016-08-13 17:38:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-delayload-l1-1-0.dll
2016-08-13 17:38:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-debug-l1-1-0.dll
2016-08-13 17:38:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-datetime-l1-1-0.dll
2016-08-13 17:38:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-console-l1-1-0.dll
2016-08-13 17:38:18 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2016-08-13 17:38:18 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2016-08-13 17:38:18 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2016-08-13 17:38:18 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2016-08-13 17:38:18 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2016-08-13 17:38:18 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2016-08-13 17:38:18 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2016-08-13 17:38:18 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2016-08-13 17:38:18 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2016-08-13 17:38:18 ----A---- C:\Windows\SYSWOW64\user.exe
2016-08-13 17:38:18 ----A---- C:\Windows\SYSWOW64\setup16.exe
2016-08-13 17:38:18 ----A---- C:\Windows\SYSWOW64\instnm.exe
2016-08-13 17:38:18 ----A---- C:\Windows\SYSWOW64\apisetschema.dll
2016-08-13 17:38:18 ----A---- C:\Windows\system32\apisetschema.dll
2016-08-13 17:38:17 ----A---- C:\Windows\SYSWOW64\msimsg.dll
2016-08-13 17:38:17 ----A---- C:\Windows\system32\msimsg.dll
2016-08-13 17:11:04 ----N---- C:\Windows\system32\MpSigStub.exe
2016-08-13 17:04:33 ----A---- C:\Windows\SYSWOW64\d3d10level9.dll
2016-08-13 17:04:33 ----A---- C:\Windows\system32\d3d10level9.dll
2016-08-13 17:04:32 ----A---- C:\Windows\SYSWOW64\win32spl.dll
2016-08-13 17:04:32 ----A---- C:\Windows\SYSWOW64\ntprint.exe
2016-08-13 17:04:32 ----A---- C:\Windows\SYSWOW64\ntprint.dll
2016-08-13 17:04:32 ----A---- C:\Windows\system32\wpnpinst.exe
2016-08-13 17:04:32 ----A---- C:\Windows\system32\win32spl.dll
2016-08-13 17:04:32 ----A---- C:\Windows\system32\ntprint.exe
2016-08-13 17:04:32 ----A---- C:\Windows\system32\ntprint.dll
2016-08-13 17:04:32 ----A---- C:\Windows\system32\localspl.dll
2016-08-13 17:04:32 ----A---- C:\Windows\system32\inetppui.dll
2016-08-13 17:04:32 ----A---- C:\Windows\system32\inetpp.dll
2016-08-13 17:04:20 ----A---- C:\Windows\SYSWOW64\winipsec.dll
2016-08-13 17:04:20 ----A---- C:\Windows\SYSWOW64\polstore.dll
2016-08-13 17:04:20 ----A---- C:\Windows\SYSWOW64\gpapi.dll
2016-08-13 17:04:20 ----A---- C:\Windows\SYSWOW64\FwRemoteSvr.dll
2016-08-13 17:04:20 ----A---- C:\Windows\system32\winipsec.dll
2016-08-13 17:04:20 ----A---- C:\Windows\system32\polstore.dll
2016-08-13 17:04:20 ----A---- C:\Windows\system32\IPSECSVC.DLL
2016-08-13 17:04:20 ----A---- C:\Windows\system32\gpsvc.dll
2016-08-13 17:04:20 ----A---- C:\Windows\system32\gpapi.dll
2016-08-13 17:04:20 ----A---- C:\Windows\system32\FwRemoteSvr.dll
2016-08-13 17:04:14 ----A---- C:\Windows\system32\invagent.dll
2016-08-13 17:04:14 ----A---- C:\Windows\system32\generaltel.dll
2016-08-13 17:04:14 ----A---- C:\Windows\system32\devinv.dll
2016-08-13 17:04:14 ----A---- C:\Windows\system32\CompatTelRunner.exe
2016-08-13 17:04:14 ----A---- C:\Windows\system32\centel.dll
2016-08-13 17:04:14 ----A---- C:\Windows\system32\appraiser.dll
2016-08-13 17:04:14 ----A---- C:\Windows\system32\aepic.dll
2016-08-13 17:04:14 ----A---- C:\Windows\system32\aeinv.dll
2016-08-13 17:04:14 ----A---- C:\Windows\system32\acmigration.dll
2016-08-13 17:04:02 ----A---- C:\Windows\system32\drivers\dxgmms1.sys
2016-08-13 17:04:02 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys
2016-08-13 17:04:02 ----A---- C:\Windows\system32\cdd.dll
2016-08-13 17:03:52 ----A---- C:\Windows\SYSWOW64\inseng.dll
2016-08-13 17:03:52 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2016-08-13 17:03:52 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2016-08-13 17:03:52 ----A---- C:\Windows\system32\iernonce.dll
2016-08-13 17:03:52 ----A---- C:\Windows\system32\ieetwproxystub.dll
2016-08-13 17:03:52 ----A---- C:\Windows\system32\ieetwcollector.exe
2016-08-13 17:03:51 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2016-08-13 17:03:51 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2016-08-13 17:03:51 ----A---- C:\Windows\SYSWOW64\occache.dll
2016-08-13 17:03:51 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2016-08-13 17:03:51 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2016-08-13 17:03:51 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2016-08-13 17:03:51 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2016-08-13 17:03:51 ----A---- C:\Windows\system32\inseng.dll
2016-08-13 17:03:51 ----A---- C:\Windows\system32\ie4uinit.exe
2016-08-13 17:03:50 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2016-08-13 17:03:50 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2016-08-13 17:03:50 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2016-08-13 17:03:50 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2016-08-13 17:03:49 ----A---- C:\Windows\SYSWOW64\jscript.dll
2016-08-13 17:03:49 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2016-08-13 17:03:49 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2016-08-13 17:03:49 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2016-08-13 17:03:49 ----A---- C:\Windows\system32\urlmon.dll
2016-08-13 17:03:49 ----A---- C:\Windows\system32\occache.dll
2016-08-13 17:03:49 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2016-08-13 17:03:49 ----A---- C:\Windows\system32\iedkcs32.dll
2016-08-13 17:03:48 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2016-08-13 17:03:48 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2016-08-13 17:03:48 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2016-08-13 17:03:47 ----A---- C:\Windows\SYSWOW64\ieui.dll
2016-08-13 17:03:47 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2016-08-13 17:03:47 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2016-08-13 17:03:47 ----A---- C:\Windows\system32\msfeeds.dll
2016-08-13 17:03:47 ----A---- C:\Windows\system32\iesetup.dll
2016-08-13 17:03:47 ----A---- C:\Windows\system32\ieapfltr.dll
2016-08-13 17:03:47 ----A---- C:\Windows\system32\dxtrans.dll
2016-08-13 17:03:46 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2016-08-13 17:03:46 ----A---- C:\Windows\system32\iertutil.dll
2016-08-13 17:03:45 ----A---- C:\Windows\SYSWOW64\wininet.dll
2016-08-13 17:03:45 ----A---- C:\Windows\SYSWOW64\webcheck.dll
2016-08-13 17:03:45 ----A---- C:\Windows\SYSWOW64\msrating.dll
2016-08-13 17:03:45 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2016-08-13 17:03:45 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2016-08-13 17:03:45 ----A---- C:\Windows\system32\vbscript.dll
2016-08-13 17:03:45 ----A---- C:\Windows\system32\jsproxy.dll
2016-08-13 17:03:44 ----A---- C:\Windows\system32\ieui.dll
2016-08-13 17:03:44 ----A---- C:\Windows\system32\ieframe.dll
2016-08-13 17:03:44 ----A---- C:\Windows\system32\dxtmsft.dll
2016-08-13 17:03:43 ----A---- C:\Windows\system32\webcheck.dll
2016-08-13 17:03:43 ----A---- C:\Windows\system32\mshtmlmedia.dll
2016-08-13 17:03:43 ----A---- C:\Windows\system32\mshtmled.dll
2016-08-13 17:03:43 ----A---- C:\Windows\system32\jscript9diag.dll
2016-08-13 17:03:43 ----A---- C:\Windows\system32\jscript9.dll
2016-08-13 17:03:43 ----A---- C:\Windows\system32\jscript.dll
2016-08-13 17:03:43 ----A---- C:\Windows\system32\ieUnatt.exe
2016-08-13 17:03:42 ----A---- C:\Windows\system32\wininet.dll
2016-08-13 17:03:42 ----A---- C:\Windows\system32\MshtmlDac.dll
2016-08-13 17:03:41 ----A---- C:\Windows\system32\msrating.dll
2016-08-13 17:03:41 ----A---- C:\Windows\system32\mshtml.dll
2016-08-13 17:03:05 ----A---- C:\Windows\SYSWOW64\gdi32.dll
2016-08-13 17:03:05 ----A---- C:\Windows\system32\gdi32.dll
2016-08-13 17:03:00 ----A---- C:\Windows\SYSWOW64\schannel.dll
2016-08-13 17:03:00 ----A---- C:\Windows\SYSWOW64\rpchttp.dll
2016-08-13 17:03:00 ----A---- C:\Windows\SYSWOW64\rpcrt4.dll
2016-08-13 17:03:00 ----A---- C:\Windows\SYSWOW64\ncrypt.dll
2016-08-13 17:03:00 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2016-08-13 17:03:00 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2016-08-13 17:03:00 ----A---- C:\Windows\SYSWOW64\adtschema.dll
2016-08-13 17:03:00 ----A---- C:\Windows\system32\wdigest.dll
2016-08-13 17:03:00 ----A---- C:\Windows\system32\schannel.dll
2016-08-13 17:03:00 ----A---- C:\Windows\system32\rpchttp.dll
2016-08-13 17:03:00 ----A---- C:\Windows\system32\rpcrt4.dll
2016-08-13 17:03:00 ----A---- C:\Windows\system32\ncrypt.dll
2016-08-13 17:03:00 ----A---- C:\Windows\system32\msv1_0.dll
2016-08-13 17:03:00 ----A---- C:\Windows\system32\lsasrv.dll
2016-08-13 17:03:00 ----A---- C:\Windows\system32\kerberos.dll
2016-08-13 17:03:00 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2016-08-13 17:03:00 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2016-08-13 17:03:00 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2016-08-13 17:03:00 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2016-08-13 17:03:00 ----A---- C:\Windows\system32\drivers\cng.sys
2016-08-13 17:03:00 ----A---- C:\Windows\system32\certcli.dll
2016-08-13 17:03:00 ----A---- C:\Windows\system32\bcryptprimitives.dll
2016-08-13 17:03:00 ----A---- C:\Windows\system32\adtschema.dll
2016-08-13 17:02:59 ----A---- C:\Windows\SYSWOW64\wdigest.dll
2016-08-13 17:02:59 ----A---- C:\Windows\SYSWOW64\TSpkg.dll
2016-08-13 17:02:59 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2016-08-13 17:02:59 ----A---- C:\Windows\SYSWOW64\secur32.dll
2016-08-13 17:02:59 ----A---- C:\Windows\SYSWOW64\msobjs.dll
2016-08-13 17:02:59 ----A---- C:\Windows\SYSWOW64\msaudite.dll
2016-08-13 17:02:59 ----A---- C:\Windows\SYSWOW64\cryptbase.dll
2016-08-13 17:02:59 ----A---- C:\Windows\SYSWOW64\credssp.dll
2016-08-13 17:02:59 ----A---- C:\Windows\SYSWOW64\certcli.dll
2016-08-13 17:02:59 ----A---- C:\Windows\SYSWOW64\bcryptprimitives.dll
2016-08-13 17:02:59 ----A---- C:\Windows\SYSWOW64\auditpol.exe
2016-08-13 17:02:59 ----A---- C:\Windows\system32\TSpkg.dll
2016-08-13 17:02:59 ----A---- C:\Windows\system32\sspisrv.dll
2016-08-13 17:02:59 ----A---- C:\Windows\system32\sspicli.dll
2016-08-13 17:02:59 ----A---- C:\Windows\system32\secur32.dll
2016-08-13 17:02:59 ----A---- C:\Windows\system32\msobjs.dll
2016-08-13 17:02:59 ----A---- C:\Windows\system32\msaudite.dll
2016-08-13 17:02:59 ----A---- C:\Windows\system32\lsass.exe
2016-08-13 17:02:59 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2016-08-13 17:02:59 ----A---- C:\Windows\system32\cryptbase.dll
2016-08-13 17:02:59 ----A---- C:\Windows\system32\credssp.dll
2016-08-13 17:02:59 ----A---- C:\Windows\system32\auditpol.exe
2016-08-13 17:02:53 ----A---- C:\Windows\SYSWOW64\StructuredQuery.dll
2016-08-13 17:02:53 ----A---- C:\Windows\system32\StructuredQuery.dll
2016-08-13 17:02:31 ----A---- C:\Windows\SYSWOW64\WindowsCodecs.dll
2016-08-13 17:02:31 ----A---- C:\Windows\system32\WindowsCodecs.dll
2016-08-13 16:46:03 ----A---- C:\Windows\SYSWOW64\winhttp.dll
2016-08-13 16:46:03 ----A---- C:\Windows\SYSWOW64\netbtugc.exe
2016-08-13 16:46:03 ----A---- C:\Windows\SYSWOW64\mswsock.dll
2016-08-13 16:46:03 ----A---- C:\Windows\system32\winhttp.dll
2016-08-13 16:46:03 ----A---- C:\Windows\system32\netbtugc.exe
2016-08-13 16:46:03 ----A---- C:\Windows\system32\drivers\netbt.sys
2016-08-13 16:46:02 ----A---- C:\Windows\SYSWOW64\ws2_32.dll
2016-08-13 16:46:02 ----A---- C:\Windows\system32\ws2_32.dll
2016-08-13 16:46:02 ----A---- C:\Windows\system32\mswsock.dll
2016-08-13 16:19:56 ----A---- C:\Windows\SYSWOW64\lpk.dll
2016-08-13 16:19:56 ----A---- C:\Windows\SYSWOW64\fontsub.dll
2016-08-13 16:19:56 ----A---- C:\Windows\SYSWOW64\dciman32.dll
2016-08-13 16:19:56 ----A---- C:\Windows\SYSWOW64\atmlib.dll
2016-08-13 16:19:56 ----A---- C:\Windows\SYSWOW64\atmfd.dll
2016-08-13 16:19:56 ----A---- C:\Windows\system32\lpk.dll
2016-08-13 16:19:56 ----A---- C:\Windows\system32\fontsub.dll
2016-08-13 16:19:56 ----A---- C:\Windows\system32\dciman32.dll
2016-08-13 16:19:56 ----A---- C:\Windows\system32\atmlib.dll
2016-08-13 16:19:56 ----A---- C:\Windows\system32\atmfd.dll
2016-08-13 15:33:49 ----A---- C:\Windows\system32\win32k.sys
2016-08-13 10:27:52 ----D---- C:\Windows\IObit
2016-08-13 10:27:51 ----A---- C:\Windows\SYSWOW64\drivers\HWiNFO64A.SYS
2016-08-13 09:57:57 ----D---- C:\Users\Jarka\AppData\Roaming\Apple Computer
2016-08-13 09:56:37 ----D---- C:\Users\Jarka\AppData\Roaming\ProductData
2016-08-13 09:56:35 ----D---- C:\ProgramData\ProductData
2016-08-12 06:12:19 ----A---- C:\Windows\tweaking.com-regbackup-JARUNECZKA-PC-Windows-7-Home-Premium-(64-bit).dat
2016-08-12 06:12:17 ----D---- C:\RegBackup
2016-08-10 17:05:07 ----D---- C:\Users\Jarka\AppData\Roaming\vlc
2016-08-10 16:57:22 ----D---- C:\Users\Jarka\AppData\Roaming\Lenovo
2016-08-10 12:37:39 ----A---- C:\Windows\SYSWOW64\wpcap.dll
2016-08-10 12:37:39 ----A---- C:\Windows\SYSWOW64\packet.dll
2016-08-10 12:37:39 ----A---- C:\Windows\system32\wpcap.dll
2016-08-10 12:37:39 ----A---- C:\Windows\system32\packet.dll
2016-08-10 12:37:39 ----A---- C:\Windows\system32\drivers\npf.sys
2016-08-10 12:22:17 ----D---- C:\Users\Jarka\AppData\Roaming\Wise Euask
2016-08-10 12:01:49 ----D---- C:\Program Files\Common Files\Intel
2016-08-10 12:01:45 ----D---- C:\Program Files (x86)\Cisco

======List of files/folders modified in the last 1 month======

2016-09-03 05:15:03 ----D---- C:\Program Files\trend micro
2016-09-03 05:13:08 ----D---- C:\Windows\System32
2016-09-03 05:13:08 ----A---- C:\Windows\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2016-09-03 05:13:06 ----D---- C:\Windows
2016-09-03 05:13:03 ----D---- C:\ProgramData\Validity
2016-09-03 05:12:02 ----D---- C:\Windows\system32\config
2016-09-03 05:12:01 ----D---- C:\Windows\Temp
2016-09-03 05:09:00 ----A---- C:\Windows\system32\PerfStringBackup.INI
2016-09-03 05:08:59 ----D---- C:\Windows\inf
2016-09-02 16:53:29 ----D---- C:\Users\Jarka\AppData\Roaming\Wise Disk Cleaner
2016-09-02 16:51:27 ----D---- C:\Windows\SysWOW64
2016-09-02 16:49:35 ----D---- C:\Windows\system32\Tasks
2016-09-02 16:49:06 ----D---- C:\Windows\debug
2016-09-02 16:42:11 ----D---- C:\Windows\system32\DriverStore
2016-09-02 16:41:52 ----D---- C:\Windows\twain_32
2016-09-02 16:41:26 ----D---- C:\Windows\system32\drivers
2016-09-02 16:41:22 ----SHD---- C:\System Volume Information
2016-09-02 16:41:22 ----D---- C:\Program Files (x86)\Realtek
2016-09-02 16:40:02 ----RD---- C:\Program Files (x86)
2016-09-02 16:38:30 ----D---- C:\Windows\system32\catroot
2016-09-02 16:37:05 ----HD---- C:\ProgramData
2016-09-02 16:35:01 ----SHD---- C:\Windows\Installer
2016-09-02 16:22:50 ----D---- C:\Windows\Tasks
2016-09-02 16:22:47 ----D---- C:\Program Files
2016-09-02 16:19:00 ----D---- C:\Windows\system32\NDF
2016-09-02 16:17:07 ----D---- C:\ProgramData\Intel
2016-09-02 08:27:22 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2016-09-02 06:22:57 ----D---- C:\Windows\Prefetch
2016-09-01 21:42:07 ----D---- C:\Windows\Logs
2016-09-01 10:19:32 ----D---- C:\AdwCleaner
2016-09-01 09:57:18 ----D---- C:\ProgramData\Lenovo
2016-09-01 09:44:27 ----D---- C:\Windows\system32\wfp
2016-09-01 09:44:27 ----D---- C:\Windows\system32\drivers\UMDF
2016-09-01 09:44:24 ----D---- C:\Windows\system32\wbem
2016-09-01 09:43:00 ----HD---- C:\Windows\system32\WLANProfiles
2016-09-01 09:43:00 ----D---- C:\Windows\winsxs
2016-09-01 09:43:00 ----D---- C:\Windows\system32\WinBioPlugIns
2016-09-01 09:42:59 ----SD---- C:\Windows\system32\GWX
2016-09-01 09:42:57 ----RSD---- C:\Windows\assembly
2016-09-01 09:42:57 ----D---- C:\Windows\system32\CodeIntegrity
2016-09-01 09:42:57 ----D---- C:\Windows\security
2016-09-01 09:42:57 ----D---- C:\Users\Jarka\AppData\Roaming\Wise Registry Cleaner
2016-09-01 09:42:39 ----D---- C:\ProgramData\Package Cache
2016-09-01 09:42:38 ----D---- C:\Program Files\Synaptics
2016-09-01 09:42:35 ----D---- C:\Program Files (x86)\Lenovo
2016-09-01 09:41:52 ----D---- C:\Windows\registration
2016-09-01 09:38:40 ----D---- C:\Program Files\Intel
2016-09-01 09:38:27 ----D---- C:\Program Files\Common Files
2016-09-01 09:37:25 ----D---- C:\Program Files (x86)\Intel
2016-09-01 09:37:21 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2016-09-01 09:37:16 ----D---- C:\drivers
2016-08-30 18:14:20 ----D---- C:\Zálohy
2016-08-29 19:05:24 ----D---- C:\Users\Jarka\AppData\Roaming\Skype
2016-08-28 06:34:34 ----D---- C:\Users\Jarka\AppData\Roaming\WiseUpdate
2016-08-28 06:29:16 ----D---- C:\Windows\SYSWOW64\drivers
2016-08-26 06:56:24 ----RD---- C:\Program Files (x86)\Skype
2016-08-26 06:56:22 ----D---- C:\ProgramData\Skype
2016-08-25 06:50:43 ----D---- C:\Fotky
2016-08-22 16:56:20 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2016-08-19 07:43:57 ----D---- C:\Windows\rescache
2016-08-17 06:41:18 ----D---- C:\Windows\SYSWOW64\cs-CZ
2016-08-17 06:41:18 ----D---- C:\Windows\system32\cs-CZ
2016-08-15 09:38:53 ----D---- C:\Program Files\Lenovo
2016-08-15 08:03:37 ----A---- C:\Windows\system32\{EC94D02F-D200-4428-9531-05AF7F9799CB}.bat
2016-08-14 09:47:18 ----D---- C:\Program Files (x86)\Common Files
2016-08-13 18:45:18 ----D---- C:\Windows\Microsoft.NET
2016-08-13 17:42:48 ----D---- C:\Windows\SYSWOW64\wbem
2016-08-13 17:42:48 ----D---- C:\Windows\system32\drivers\en-US
2016-08-13 17:42:43 ----D---- C:\Windows\system32\en-US
2016-08-13 17:42:42 ----D---- C:\Windows\AppPatch
2016-08-13 17:42:41 ----D---- C:\Windows\SYSWOW64\en-US
2016-08-13 17:42:41 ----D---- C:\Windows\system32\Boot
2016-08-13 17:42:41 ----D---- C:\Windows\PolicyDefinitions
2016-08-13 17:28:25 ----D---- C:\Program Files\Microsoft Silverlight
2016-08-13 17:28:25 ----D---- C:\Program Files (x86)\Microsoft Silverlight
2016-08-13 17:25:58 ----D---- C:\Windows\system32\appraiser
2016-08-13 17:25:57 ----D---- C:\Windows\ehome
2016-08-13 17:25:56 ----D---- C:\Program Files\Internet Explorer
2016-08-13 17:25:53 ----D---- C:\Program Files (x86)\Internet Explorer
2016-08-13 17:16:47 ----D---- C:\Windows\system32\MRT
2016-08-13 17:12:58 ----AC---- C:\Windows\system32\MRT.exe
2016-08-13 10:04:13 ----D---- C:\Windows\Panther
2016-08-13 05:25:52 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI
2016-08-13 05:16:09 ----D---- C:\Windows\system32\drivers\etc
2016-08-13 05:15:41 ----A---- C:\Windows\win.ini
2016-08-11 10:57:32 ----D---- C:\Windows\SYSWOW64\config
2016-08-10 11:58:05 ----D---- C:\Windows\Downloaded Installations
2016-08-10 11:18:28 ----D---- C:\Windows\system32\Macromed
2016-08-10 11:18:26 ----D---- C:\Windows\SYSWOW64\Macromed

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 edevmon;edevmon; C:\Windows\system32\DRIVERS\edevmon.sys [2016-06-28 199328]
R0 epfwwfp;epfwwfp; C:\Windows\system32\DRIVERS\epfwwfp.sys [2016-06-28 84640]
R0 iaStorA;iaStorA; C:\Windows\system32\DRIVERS\iaStorA.sys [2015-11-12 1467912]
R0 iaStorF;iaStorF; C:\Windows\system32\DRIVERS\iaStorF.sys [2015-11-12 31728]
R0 RapportHades64;RapportHades64; C:\Windows\System32\Drivers\RapportHades64.sys [2016-07-11 215560]
R0 RapportKE64;RapportKE64; C:\Windows\System32\Drivers\RapportKE64.sys [2016-07-11 470056]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R1 eamonm;eamonm; C:\Windows\system32\DRIVERS\eamonm.sys [2016-08-30 263296]
R1 ehdrv;ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [2016-06-28 197288]
R1 epfw;epfw; C:\Windows\system32\DRIVERS\epfw.sys [2016-06-28 208552]
R1 EpfwLWF;ESET Personal Firewall; C:\Windows\system32\DRIVERS\EpfwLWF.sys [2016-06-28 61608]
R1 HWiNFO32;HWiNFO32/64 Kernel Driver; \??\C:\Windows\SysWOW64\drivers\HWiNFO64A.SYS [2016-08-13 27552]
R1 RapportCerberus_1609042;RapportCerberus_1609042; \??\C:\ProgramData\Trusteer\Rapport\store\exts\RapportCerberus\baseline\RapportCerberus64_1609042.sys [2016-08-10 1157960]
R1 RapportEI64;RapportEI64; \??\C:\Program Files (x86)\Trusteer\Rapport\bin\x64\RapportEI64.sys [2016-07-11 544360]
R1 RapportPG64;RapportPG64; \??\C:\Program Files (x86)\Trusteer\Rapport\bin\x64\RapportPG64.sys [2016-07-11 525992]
R1 VWiFiFlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 ekbdflt;ekbdflt; C:\Windows\system32\DRIVERS\ekbdflt.sys [2016-08-30 153248]
R2 NPF;NetGroup Packet Filter Driver; \??\C:\Windows\system32\drivers\npf.sys [2016-08-10 35344]
R2 RMCAST;@%SystemRoot%\system32\wshrm.dll,-102; C:\Windows\system32\DRIVERS\RMCAST.sys [2015-11-05 146944]
R3 BthEnum;Služba Bluetooth Enumerator; C:\Windows\system32\DRIVERS\BthEnum.sys [2009-07-14 41984]
R3 BthPan;Zařízení Bluetooth (síť PAN); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
R3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2011-04-28 80384]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys [2016-01-20 7876072]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2015-09-17 4603136]
R3 IntcDAud;Intel(R) Display Audio; C:\Windows\system32\DRIVERS\IntcDAud.sys [2015-06-25 464144]
R3 iusb3hub;Ovladač rozbočovače Intel(R) USB 3.0; C:\Windows\system32\DRIVERS\iusb3hub.sys [2016-07-26 407048]
R3 iusb3xhc;Ovladač rozšiřitelného hostitelského řadiče Intel(R) USB 3.0; C:\Windows\system32\DRIVERS\iusb3xhc.sys [2016-07-26 816648]
R3 MEIx64;Intel(R) Management Engine Interface ; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [2016-08-31 181304]
R3 NETwNs64;___ Ovladač adaptéru Intel(R) Wireless pro systém Windows 7 64 Bit; C:\Windows\system32\DRIVERS\Netwsw04.sys [2016-07-24 3441424]
R3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
R3 RSP2STOR;Realtek PCIE CardReader Driver - P2; C:\Windows\system32\DRIVERS\RtsP2Stor.sys [2000-01-01 294104]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2015-05-19 986368]
R3 rtsuvc;Lenovo EasyCamera; C:\Windows\system32\DRIVERS\rtsuvc.sys [2015-06-23 3059928]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2015-09-15 555176]
R3 Tpm;Čip TPM; C:\Windows\system32\drivers\tpm.sys [2016-02-05 147904]
R3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\Windows\system32\DRIVERS\vwifimp.sys [2009-07-14 17920]
R3 WinUsb;WinUSB Driver; C:\Windows\system32\DRIVERS\WinUSB.sys [2010-11-20 41984]
S3 ACPIVPC;Lenovo Virtual Power Controller Driver; C:\Windows\system32\DRIVERS\AcpiVpc.sys []
S3 BTHPORT;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2012-07-06 552960]
S3 btmhsf;btmhsf; C:\Windows\system32\DRIVERS\btmhsf.sys []
S3 ESETCleanersDriver;ESET Cleaner Service; \??\C:\Windows\system32\Drivers\ESETCleanersDriver.sys [2016-08-31 181160]
S3 ibtusb;Aplikace Intel(R) Wireless Bluetooth(R); C:\Windows\system32\DRIVERS\ibtusb.sys []
S3 netw5v64;Intel(R) Wireless WiFi Link 5000 Series – ovladač adaptéru pro 64bitový systém Windows Vista; C:\Windows\system32\DRIVERS\netw5v64.sys [2009-06-10 5434368]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 19456]
S3 semav6msr64;semav6msr64; \??\C:\Windows\system32\drivers\semav6msr64.sys [2015-06-04 21984]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2013-10-02 56832]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET Smart Security\ekrn.exe [2016-08-30 2780160]
R2 ESRV_SVC_WILLAMETTE;Energy Server Service WILLAMETTE; C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\esrv_svc.exe [2016-06-08 416408]
R2 EvtEng;Intel(R) PROSet/Wireless Event Log; C:\Program Files\Intel\WiFi\bin\EvtEng.exe [2016-06-23 642464]
R2 igfxCUIService2.0.0.0;Intel(R) HD Graphics Control Panel Service; C:\Windows\system32\igfxCUIService.exe [2016-01-20 365032]
R2 RapportMgmtService;Rapport Management Service; C:\Program Files (x86)\Trusteer\Rapport\bin\RapportMgmtService.exe [2016-07-11 2383344]
R2 RegSrvc;Intel(R) PROSet/Wireless Registry Service; C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe [2016-06-23 157088]
R2 SynTPEnhService;SynTPEnh Caller Service; C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [2015-09-15 190632]
R2 SystemUsageReportSvc_WILLAMETTE;Intel(R) System Usage Report Service SystemUsageReportSvc_WILLAMETTE; C:\Program Files (x86)\Intel Driver Update Utility\SUR\SurSvc.exe [2016-06-08 117400]
R2 valWBFPolicyService;Synaptics FP WBF Policy Service; C:\Windows\system32\valWBFPolicyService.exe [2015-03-03 49968]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2015-11-05 105144]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2015-11-05 125112]
S2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2015-11-04 19440]
S2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2015-10-16 207648]
S2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2015-10-16 415520]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2016-07-25 324224]
S3 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2016-06-25 82128]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-08-22 270016]
S3 cphs;Intel(R) Content Protection HECI Service; C:\Windows\SysWow64\IntelCpHeciSvc.exe [2016-01-20 292840]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2016-08-02 114688]
S3 Intel(R) Capability Licensing Service TCP IP Interface;Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [2015-05-22 881152]
S3 LSC.Services.SystemService;Lenovo Solution Center System Service; C:\Program Files\Lenovo\Lenovo Solution Center\App\LSC.Services.SystemService.exe [2016-06-02 273232]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2016-08-25 146888]
S3 MyWiFiDHCPDNS;Wireless PAN DHCP Server; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [2016-06-23 268704]
S3 SUService;System Update; C:\Program Files (x86)\Lenovo\System Update\SUService.exe [2016-07-07 28544]
S3 USER_ESRV_SVC_WILLAMETTE;User Energy Server Service WILLAMETTE; C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\esrv_svc.exe [2016-06-08 416408]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2016-04-04 1255736]
S4 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2015-11-05 51376]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2015-11-05 135848]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2015-11-05 135848]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2015-11-05 135848]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118275
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Pro Rudy, prosím o kontrolu

#4 Příspěvek od Rudy »

Smazáno, log je OK.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Uživatelský avatar
jaruneczka
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 417
Registrován: 09 čer 2008 11:45
Bydliště: Ostrava

Re: Pro Rudy, prosím o kontrolu

#5 Příspěvek od jaruneczka »

Děkuji....zapoměla napsat problém, na začátku: připojení-wifi mi startuje skoro 2 minuty...dlouho nic, pak omezený a nakonec naskočí...

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118275
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Pro Rudy, prosím o kontrolu

#6 Příspěvek od Rudy »

OK. To asi spíš bude problém sítě, než systému, či malware. Zkuste restatovat wifi router a modem.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Uživatelský avatar
jaruneczka
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 417
Registrován: 09 čer 2008 11:45
Bydliště: Ostrava

Re: Pro Rudy, prosím o kontrolu

#7 Příspěvek od jaruneczka »

ok. děkuji

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118275
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Pro Rudy, prosím o kontrolu

#8 Příspěvek od Rudy »

Rádo se stalo! :)
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Zamčeno