Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

pro Rudy, prosím o ko logu

Patříte mezi Vzorné návštěvníky? Pak je tato sekce pro vás.

Moderátor: Moderátoři

Pravidla fóra
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
Odpovědět
Zpráva
Autor
Uživatelský avatar
jaruneczka
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 417
Registrován: 09 čer 2008 11:45
Bydliště: Ostrava

pro Rudy, prosím o ko logu

#1 Příspěvek od jaruneczka »

Logfile of random's system information tool 1.10 (written by random/random)
Run by Jarka at 2016-09-19 16:38:22
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 443 GB (93%) free of 477 GB
Total RAM: 3955 MB (61% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 16:38:25, on 19.9.2016
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.18450)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\Lenovo\Lenovo Smart Fingerprint\fplmonitor.exe
C:\Program Files (x86)\Trusteer\Rapport\bin\RapportService.exe
C:\Program Files\Lenovo\Lenovo Solution Center\LSCNotify.exe
C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallMonitor.exe
C:\Program Files\trend micro\Jarka.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O1 - Hosts: ::1 localhost
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - Trusted Zone: http://help.eset.com (HKLM)
O15 - ESC Trusted Zone: http://help.eset.com (HKLM)
O16 - DPF: {5AE58FCF-6F6A-49B2-B064-02492C66E3F4} (MUCatalogWebControl Class) - http://catalog.update.microsoft.com/v7/ ... 4139660906
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: Bluetooth Device Monitor - Motorola Solutions, Inc. - C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe
O23 - Service: Bluetooth Media Service - Motorola Solutions, Inc. - C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe
O23 - Service: Bluetooth OBEX Service - Motorola Solutions, Inc. - C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\Windows\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET Smart Security\ekrn.exe
O23 - Service: Energy Server Service WILLAMETTE (ESRV_SVC_WILLAMETTE) - Unknown owner - C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\esrv_svc.exe
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel(R) Corporation - C:\Program Files\Intel\WiFi\bin\EvtEng.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: Intel Bluetooth Service (iBtSiva) - Intel Corporation - C:\Program Files (x86)\Intel\Bluetooth\ibtsiva.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService2.0.0.0) - Unknown owner - C:\Windows\system32\igfxCUIService.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: LenovoSetSvr - Lenovo(beijing) Limited - C:\Program Files\Lenovo\LenovoUtility\LenovoSetSvr.exe
O23 - Service: LiveUpdate (LiveUpdateSvc) - IObit - C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Rapport Management Service (RapportMgmtService) - IBM Corp. - C:\Program Files (x86)\Trusteer\Rapport\bin\RapportMgmtService.exe
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel(R) Corporation - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: System Update (SUService) - Unknown owner - C:\Program Files (x86)\Lenovo\System Update\SUService.exe
O23 - Service: Intel(R) System Usage Report Service SystemUsageReportSvc_WILLAMETTE (SystemUsageReportSvc_WILLAMETTE) - Unknown owner - C:\Program Files (x86)\Intel Driver Update Utility\SUR\SurSvc.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: User Energy Server Service WILLAMETTE (USER_ESRV_SVC_WILLAMETTE) - Unknown owner - C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\esrv_svc.exe
O23 - Service: Synaptics FP WBF Policy Service (valWBFPolicyService) - Unknown owner - C:\Windows\system32\valWBFPolicyService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Zero Configuration Service (ZeroConfigService) - Intel® Corporation - C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe

--
End of file - 8331 bytes

======Listing Processes======



\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
winlogon.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
"C:\Program Files\ESET\ESET Smart Security\ekrn.exe"
C:\Windows\system32\svchost.exe -k RPCSS
"C:\Program Files (x86)\Trusteer\Rapport\bin\RapportMgmtService.exe"
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs

C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\system32\igfxCUIService.exe
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-1f77cac6-d997-4d38-8f41-e10f6a54ee59 -SystemEventPortName:HostProcess-e972506a-dc98-4dd4-8747-c4d7338b2b3d -IoCancelEventPortName:HostProcess-f32397e4-1953-4daf-9661-a96538f0cbcb -NonStateChangingEventPortName:HostProcess-fa9692e5-f035-4055-8845-11cd90880281 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:5bd0f906-c7d8-4ff0-a2c3-a03b9b4abc35 -DeviceGroupId:
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\system32\WLANExt.exe 2029264
\??\C:\Windows\system32\conhost.exe "139085239154795486710206722012101930199-17067814961122573491618773308967473765
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
C:\Windows\System32\spoolsv.exe
"taskhost.exe"
C:\Windows\system32\svchost.exe -k WbioSvcGroup
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files\ESET\ESET Smart Security\egui.exe" /hide
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
C:\Windows\System32\svchost.exe -k utcsvc
"C:\Program Files\Intel\WiFi\bin\EvtEng.exe"
"C:\Program Files (x86)\Intel\Bluetooth\ibtsiva.exe"
"C:\Program Files\Lenovo\LenovoUtility\LenovoSetSvr.exe"
taskeng.exe {C9CB3CC7-43F7-4AF4-BFE3-D7C0B59AADEF}
"C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe"
"C:\Program Files (x86)\Intel Driver Update Utility\SUR\SurSvc.exe"
taskeng.exe {CEB1D363-E24C-467F-BC2F-09A13AED04E9}
"C:\Program Files (x86)\Lenovo\Lenovo Smart Fingerprint\fplmonitor.exe"
C:\Windows\system32\valWBFPolicyService.exe
"C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe"
"C:\Program Files (x86)\Lenovo\System Update\SUService.exe"
C:\Windows\system32\wbem\unsecapp.exe -Embedding
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
C:\Windows\system32\svchost.exe -k bthsvcs
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
igfxEM.exe
igfxHK.exe
"C:\Program Files\CCleaner\CCleaner.exe" /MONITOR /uac
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files (x86)\Trusteer\Rapport\bin\RapportService.exe" -servicelaunch=true
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe1_ Global\UsGthrCtrlFltPipeMssGthrPipe1 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Windows\system32\SearchFilterHost.exe" 0 520 524 532 65536 528
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
C:\Windows\system32\sppsvc.exe
C:\Windows\system32\vssvc.exe
C:\Windows\System32\svchost.exe -k swprv
taskeng.exe {66D28A2F-5269-45E4-A6FD-CA5DC1A4C5CF}
"" "--start" "--register_port" "--address" "127.0.0.1" "--port" "49331" "--pause_on_user_switching" "--depend_on_key" "SYSTEM\CurrentControlSet\Services\ESRV_SVC_WILLAMETTE" "--depend_on_value" "run" "--time_in_ms" "--pause" "5000" "--library" "C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\intel_modeler.dll" "--no_pl" "--watchdog" "10" "--watchdog_cpu_usage_limit" "50" "--end_on_error" "--kernel_priority_boost" "--shutdown_priority_boost" "--device_options" " time=no output=no output_folder='C:\ProgramData\Intel\SUR\WILLAMETTE\IntelData\userlogs' limit_output_by=time output_limit=3600000 output_buffer=1024 il='C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\foreground_window_input.dll' "
\??\C:\Windows\system32\conhost.exe "11705507058657334071936086494-17758389991248868429-1860200398-833646482-2026681160
"C:\Program Files\Lenovo\Lenovo Solution Center\LSCNotify.exe" /showasync
"C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallMonitor.exe"
"C:\Users\Jarka\AppData\Local\Apps\2.0\D27NM6C3.WCM\1RTBAX39.JN0\lsb...tion_2d7b41b05b24775e_0001.0006_6e55c1acac1ba44a\LSB.exe"
"C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe"
"C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe"
"C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe"
"C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\esrv_svc.exe" "--AUTO_START" "--start" "--address" "127.0.0.1" "--port" "49330" "--depend_on_key" "SYSTEM\CurrentControlSet\Services\ESRV_SVC_WILLAMETTE" "--depend_on_value" "run" "--time_in_ms" "--pause" "5000" "--library" "C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\intel_modeler.dll" "--no_pl" "--watchdog" "10" "--watchdog_cpu_usage_limit" "50" "--end_on_error" "--kernel_priority_boost" "--shutdown_priority_boost" "--device_options" " time=no output=w output_folder='C:\ProgramData\Intel\SUR\WILLAMETTE\IntelData' limit_output_by=time output_limit=3600000 output_buffer=1024 il='C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\intel_process_input.dll','process_input_options.txt' il='C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\intel_system_power_state_input.dll' il='C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\intel_quality_and_reliability_input.dll' il='C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\acpi_battery_input.dll' il='C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\sema_thermal_input.dll' il='C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\wifi_input.dll' il='C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\devices_use_input.dll','service=yes' il='C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\intel_disktrace_input.dll','pause=60000 working_dir=C:\ProgramData\Intel\SUR\WILLAMETTE\IntelData override_existing_tracing=no limit_output_by_filesize_mb=10' os='C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\os_counters.txt' "
"C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe"
C:\Windows\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
C:\Windows\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
"C:\Users\Jarka\Desktop\RSITx64.exe"
C:\Windows\system32\DllHost.exe /Processid:{F9717507-6651-4EDB-BFF7-AE615179BCCF}

=========Mozilla firefox=========

ProfilePath - C:\Users\Jarka\AppData\Roaming\Mozilla\Firefox\Profiles\q7xx2k53.default

prefs.js - "browser.startup.homepage" - "http://www.seznam.cz/"

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 23.0.0.162 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_23_0_0_162.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 23.0.0.162 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_23_0_0_162.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@videolan.org/vlc,version=2.2.4]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files\VideoLAN\VLC\npvlc.dll


======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{10921475-03CE-4E04-90CE-E2E7EF20C814}]
ExplorerWnd Helper - C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallExplorer.dll [2016-05-23 2478880]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"!NETMOF"=cmd.exe /c cd C:\Windows\MICROSOFT.NET\FRAMEWORK64\V4.0.30319 & mofcomp.exe -AUTORECOVER .\MOF\SERVICEMODEL.MOF & mofcomp.exe -AUTORECOVER .\MOF\SERVICEMODEL35.MOF & mofcomp.exe -AUTORECOVER .\ASPNET.MOF & cd C:\Windows\MICROSOFT.NET\FRAMEWORK\V4.0.30319 & mofcomp.exe -AUTORECOVER .\MOF\SERVICEMODEL.MOF & mofcomp.exe -AUTORECOVER .\MOF\SERVICEMODEL35.MOF & mofcomp.exe -AUTORECOVER .\ASPNET.MOF []

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2016-08-26 8912088]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BTMTrayAgent]
C:\Program Files (x86)\Intel\Bluetooth\btmshellex.dll [2015-04-20 7822312]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Energy Management]
C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe [2016-09-16 8079408]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\EnergyUtility]
C:\Program Files (x86)\Lenovo\Energy Management\Utility.exe [2016-09-16 6200368]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IAStorIcon]
C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe [2015-07-25 36352]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Lenovo Smart Fingerprint]
C:\Program Files (x86)\Lenovo\Lenovo Smart Fingerprint\fplmonitor.exe [2015-07-31 1761208]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LenovoUtility]
C:\Program Files\Lenovo\LenovoUtility\utility.exe [2016-09-17 791368]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Logitech Download Assistant]
C:\Windows\System32\LogiLDA.dll [2012-09-20 1832760]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RtHDVBg_Dolby]
C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2015-09-17 1409264]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RtHDVBg_LENOVO_DOLBYDRAGON]
C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2015-09-17 1409264]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RtHDVBg_LENOVO_MICPKEY]
C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2015-09-17 1409264]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RtHDVCpl]
C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2015-09-17 16404224]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SynTPEnh]
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2015-09-15 2811560]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\USB3MON]
C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [2015-09-04 296216]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\Windows\system32\wpdshserviceobj.dll [2010-11-21 115200]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\91239450.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\91239450.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoSimpleNetIDList"=1
"NoDriveTypeAutoRun"=221

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1

======List of files/folders created in the last 1 month======

2016-09-19 16:38:22 ----D---- C:\rsit
2016-09-19 16:31:15 ----A---- C:\Windows\system32\FNTCACHE.DAT
2016-09-19 16:26:25 ----D---- C:\Program Files\trend micro
2016-09-19 15:40:30 ----D---- C:\ProgramData\ESET
2016-09-19 15:40:30 ----D---- C:\Program Files\ESET
2016-09-19 15:07:26 ----A---- C:\Windows\system32\zoom_search.js
2016-09-19 15:07:26 ----A---- C:\Windows\system32\zoom_pageinfo.js
2016-09-19 15:07:26 ----A---- C:\Windows\system32\zoom_index.js
2016-09-19 15:07:26 ----A---- C:\Windows\system32\settings.js
2016-09-19 15:07:26 ----A---- C:\Windows\system32\jquery.js
2016-09-19 15:07:26 ----A---- C:\Windows\system32\hmcontextids.js
2016-09-19 15:07:26 ----A---- C:\Windows\system32\highlight.js
2016-09-19 15:07:26 ----A---- C:\Windows\system32\helpman_topicinit.js
2016-09-19 15:07:26 ----A---- C:\Windows\system32\helpman_settings.js
2016-09-19 15:07:26 ----A---- C:\Windows\system32\helpman_navigation.js
2016-09-19 15:07:26 ----A---- C:\Windows\system32\additionalLayout.js
2016-09-19 14:50:34 ----A---- C:\Windows\system32\SmartDefragBootTime.exe
2016-09-19 14:50:34 ----A---- C:\Windows\system32\IObitSmartDefragExtension.dll
2016-09-19 08:00:20 ----D---- C:\ProgramData\{FD6F83C0-EC70-4581-8361-C70CD1AA4B98}
2016-09-19 08:00:20 ----D---- C:\ProgramData\{BAF091CA-86C4-4627-ADA1-897E2621C1B0}
2016-09-19 06:00:58 ----ASH---- C:\pagefile.sys
2016-09-19 06:00:52 ----ASH---- C:\hiberfil.sys
2016-09-19 05:51:27 ----HD---- C:\$SysReset
2016-09-18 22:16:39 ----D---- C:\Users\Jarka\AppData\Roaming\Lenovo
2016-09-18 20:02:28 ----D---- C:\Program Files\Common Files\Intel
2016-09-18 18:12:33 ----SHD---- C:\Recovery
2016-09-18 16:12:17 ----A---- C:\Windows\progress.ini
2016-09-18 15:50:02 ----HD---- C:\$GetCurrent
2016-09-18 14:10:27 ----D---- C:\Windows\system32\catroot2
2016-09-18 14:09:46 ----D---- C:\Windows\CheckSur
2016-09-18 13:32:51 ----D---- C:\Windows\SoftwareDistribution
2016-09-18 13:32:45 ----D---- C:\Windows\SYSWOW64\catroot2.bak
2016-09-18 11:10:21 ----D---- C:\Users\Jarka\AppData\Roaming\vlc
2016-09-18 11:10:01 ----D---- C:\Program Files\VideoLAN
2016-09-17 22:24:22 ----D---- C:\f23630008194fbda2c95e8
2016-09-17 22:20:37 ----D---- C:\8b6ff87793841bd932a41ad0
2016-09-17 17:02:20 ----AC---- C:\Windows\SYSWOW64\MRT.exe
2016-09-17 16:12:39 ----D---- C:\Windows\IObit
2016-09-17 16:12:35 ----A---- C:\Windows\SYSWOW64\drivers\HWiNFO64A.SYS
2016-09-17 12:48:24 ----D---- C:\ProgramData\Licenses
2016-09-17 12:48:23 ----AD---- C:\ProgramData\TEMP
2016-09-17 08:40:43 ----D---- C:\Users\Jarka\AppData\Roaming\IrfanView
2016-09-17 08:34:26 ----A---- C:\Windows\system32\drivers\AcpiVpc.sys
2016-09-16 22:38:00 ----D---- C:\AdwCleaner
2016-09-16 22:19:25 ----D---- C:\Users\Jarka\AppData\Roaming\ProductData
2016-09-16 22:19:21 ----D---- C:\ProgramData\ProductData
2016-09-16 22:19:21 ----D---- C:\ProgramData\IObit
2016-09-16 22:19:08 ----D---- C:\Users\Jarka\AppData\Roaming\IObit
2016-09-16 22:19:08 ----D---- C:\Program Files (x86)\IObit
2016-09-16 21:38:41 ----D---- C:\Users\Jarka\AppData\Roaming\OpenOffice
2016-09-16 21:02:44 ----D---- C:\Users\Jarka\AppData\Roaming\WinRAR
2016-09-16 20:51:49 ----D---- C:\a063cd4886b365085d
2016-09-16 20:19:58 ----D---- C:\Users\Jarka\AppData\Roaming\Wise Registry Cleaner
2016-09-16 20:17:24 ----D---- C:\Users\Jarka\AppData\Roaming\Wise Euask
2016-09-16 20:17:22 ----D---- C:\Users\Jarka\AppData\Roaming\Wise Disk Cleaner
2016-09-16 20:16:50 ----D---- C:\Program Files (x86)\Wise
2016-09-16 18:07:42 ----D---- C:\ProgramData\Synaptics
2016-09-16 17:48:06 ----D---- C:\Users\Jarka\AppData\Roaming\Thunderbird
2016-09-16 17:46:38 ----D---- C:\Instalačky
2016-09-16 17:46:08 ----D---- C:\Program Files (x86)\Mozilla Thunderbird
2016-09-16 17:40:18 ----D---- C:\Program Files (x86)\IrfanView
2016-09-16 17:34:52 ----D---- C:\Program Files (x86)\OpenOffice 4
2016-09-16 17:16:06 ----A---- C:\Windows\system32\drivers\RapportKE64.sys
2016-09-16 17:16:06 ----A---- C:\Windows\system32\drivers\RapportHades64.sys
2016-09-16 17:15:39 ----D---- C:\Program Files (x86)\Trusteer
2016-09-16 17:13:31 ----D---- C:\ProgramData\Trusteer
2016-09-16 17:13:25 ----D---- C:\Users\Jarka\AppData\Roaming\Macromedia
2016-09-16 17:06:45 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2016-09-16 17:06:41 ----D---- C:\Windows\system32\Macromed
2016-09-16 17:06:33 ----D---- C:\Windows\SYSWOW64\Macromed
2016-09-16 17:03:35 ----D---- C:\Users\Jarka\AppData\Roaming\Mozilla
2016-09-16 17:03:28 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2016-09-16 17:03:26 ----D---- C:\Program Files (x86)\Mozilla Firefox
2016-09-16 16:33:22 ----D---- C:\drivers
2016-09-16 16:30:48 ----D---- C:\Windows\Downloaded Installations
2016-09-16 16:16:40 ----D---- C:\Users\Jarka\AppData\Roaming\Skype
2016-09-16 16:16:34 ----RD---- C:\Program Files (x86)\Skype
2016-09-16 16:16:29 ----D---- C:\ProgramData\Skype
2016-09-16 16:15:57 ----D---- C:\Program Files\WinRAR
2016-09-16 16:13:10 ----D---- C:\Program Files (x86)\Adobe
2016-09-16 15:50:22 ----D---- C:\Zálohy 8-2016
2016-09-16 15:36:06 ----D---- C:\Program Files\CCleaner
2016-09-16 15:34:57 ----A---- C:\Windows\system32\drivers\semav6msr64.sys
2016-09-16 15:34:53 ----D---- C:\Program Files (x86)\Intel Driver Update Utility
2016-09-16 15:28:31 ----D---- C:\Zálohy 9-2016
2016-09-16 11:15:00 ----D---- C:\Windows\system32\MRT
2016-09-16 11:14:51 ----AC---- C:\Windows\system32\MRT.exe
2016-09-16 11:12:25 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2016-09-16 11:12:25 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2016-09-16 11:12:25 ----A---- C:\Windows\SYSWOW64\occache.dll
2016-09-16 11:12:25 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2016-09-16 11:12:25 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2016-09-16 11:12:25 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2016-09-16 11:12:25 ----A---- C:\Windows\SYSWOW64\inseng.dll
2016-09-16 11:12:25 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2016-09-16 11:12:25 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2016-09-16 11:12:25 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2016-09-16 11:12:25 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2016-09-16 11:12:25 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2016-09-16 11:12:25 ----A---- C:\Windows\system32\inseng.dll
2016-09-16 11:12:25 ----A---- C:\Windows\system32\iernonce.dll
2016-09-16 11:12:25 ----A---- C:\Windows\system32\ieetwproxystub.dll
2016-09-16 11:12:25 ----A---- C:\Windows\system32\ieetwcollector.exe
2016-09-16 11:12:25 ----A---- C:\Windows\system32\ie4uinit.exe
2016-09-16 11:12:24 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2016-09-16 11:12:23 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2016-09-16 11:12:23 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2016-09-16 11:12:23 ----A---- C:\Windows\SYSWOW64\jscript.dll
2016-09-16 11:12:23 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2016-09-16 11:12:23 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2016-09-16 11:12:23 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2016-09-16 11:12:23 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2016-09-16 11:12:23 ----A---- C:\Windows\system32\urlmon.dll
2016-09-16 11:12:23 ----A---- C:\Windows\system32\occache.dll
2016-09-16 11:12:23 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2016-09-16 11:12:23 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2016-09-16 11:12:23 ----A---- C:\Windows\system32\iedkcs32.dll
2016-09-16 11:12:22 ----A---- C:\Windows\SYSWOW64\ieui.dll
2016-09-16 11:12:22 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2016-09-16 11:12:22 ----A---- C:\Windows\system32\msfeeds.dll
2016-09-16 11:12:22 ----A---- C:\Windows\system32\dxtrans.dll
2016-09-16 11:12:21 ----A---- C:\Windows\system32\iesetup.dll
2016-09-16 11:12:21 ----A---- C:\Windows\system32\iertutil.dll
2016-09-16 11:12:21 ----A---- C:\Windows\system32\ieapfltr.dll
2016-09-16 11:12:20 ----A---- C:\Windows\SYSWOW64\wininet.dll
2016-09-16 11:12:20 ----A---- C:\Windows\SYSWOW64\webcheck.dll
2016-09-16 11:12:20 ----A---- C:\Windows\SYSWOW64\msrating.dll
2016-09-16 11:12:20 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2016-09-16 11:12:20 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2016-09-16 11:12:20 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2016-09-16 11:12:20 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2016-09-16 11:12:20 ----A---- C:\Windows\system32\vbscript.dll
2016-09-16 11:12:20 ----A---- C:\Windows\system32\jsproxy.dll
2016-09-16 11:12:19 ----A---- C:\Windows\system32\ieui.dll
2016-09-16 11:12:19 ----A---- C:\Windows\system32\ieframe.dll
2016-09-16 11:12:19 ----A---- C:\Windows\system32\dxtmsft.dll
2016-09-16 11:12:18 ----A---- C:\Windows\system32\webcheck.dll
2016-09-16 11:12:18 ----A---- C:\Windows\system32\mshtmlmedia.dll
2016-09-16 11:12:18 ----A---- C:\Windows\system32\mshtmled.dll
2016-09-16 11:12:18 ----A---- C:\Windows\system32\jscript.dll
2016-09-16 11:12:18 ----A---- C:\Windows\system32\ieUnatt.exe
2016-09-16 11:12:17 ----A---- C:\Windows\system32\wininet.dll
2016-09-16 11:12:17 ----A---- C:\Windows\system32\jscript9diag.dll
2016-09-16 11:12:17 ----A---- C:\Windows\system32\jscript9.dll
2016-09-16 11:12:16 ----A---- C:\Windows\system32\msrating.dll
2016-09-16 11:12:16 ----A---- C:\Windows\system32\MshtmlDac.dll
2016-09-16 11:12:15 ----A---- C:\Windows\system32\mshtml.dll
2016-09-16 11:11:37 ----A---- C:\Windows\system32\rpcrt4.dll
2016-09-16 11:11:37 ----A---- C:\Windows\system32\ntoskrnl.exe
2016-09-16 11:11:37 ----A---- C:\Windows\system32\lsasrv.dll
2016-09-16 11:11:36 ----A---- C:\Windows\SYSWOW64\schannel.dll
2016-09-16 11:11:36 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2016-09-16 11:11:36 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2016-09-16 11:11:36 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2016-09-16 11:11:36 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2016-09-16 11:11:36 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2016-09-16 11:11:36 ----A---- C:\Windows\system32\schannel.dll
2016-09-16 11:11:36 ----A---- C:\Windows\system32\ntdll.dll
2016-09-16 11:11:36 ----A---- C:\Windows\system32\msv1_0.dll
2016-09-16 11:11:36 ----A---- C:\Windows\system32\kernel32.dll
2016-09-16 11:11:36 ----A---- C:\Windows\system32\kerberos.dll
2016-09-16 11:11:35 ----A---- C:\Windows\SYSWOW64\wdigest.dll
2016-09-16 11:11:35 ----A---- C:\Windows\SYSWOW64\rpchttp.dll
2016-09-16 11:11:35 ----A---- C:\Windows\SYSWOW64\rpcrt4.dll
2016-09-16 11:11:35 ----A---- C:\Windows\SYSWOW64\ncrypt.dll
2016-09-16 11:11:35 ----A---- C:\Windows\SYSWOW64\kernel32.dll
2016-09-16 11:11:35 ----A---- C:\Windows\SYSWOW64\certcli.dll
2016-09-16 11:11:35 ----A---- C:\Windows\SYSWOW64\adtschema.dll
2016-09-16 11:11:35 ----A---- C:\Windows\system32\wdigest.dll
2016-09-16 11:11:35 ----A---- C:\Windows\system32\TSpkg.dll
2016-09-16 11:11:35 ----A---- C:\Windows\system32\rpchttp.dll
2016-09-16 11:11:35 ----A---- C:\Windows\system32\ncrypt.dll
2016-09-16 11:11:35 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2016-09-16 11:11:35 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2016-09-16 11:11:35 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2016-09-16 11:11:35 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2016-09-16 11:11:35 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2016-09-16 11:11:35 ----A---- C:\Windows\system32\certcli.dll
2016-09-16 11:11:35 ----A---- C:\Windows\system32\adtschema.dll
2016-09-16 11:11:34 ----A---- C:\Windows\SYSWOW64\TSpkg.dll
2016-09-16 11:11:34 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2016-09-16 11:11:34 ----A---- C:\Windows\SYSWOW64\secur32.dll
2016-09-16 11:11:34 ----A---- C:\Windows\SYSWOW64\msobjs.dll
2016-09-16 11:11:34 ----A---- C:\Windows\SYSWOW64\msaudite.dll
2016-09-16 11:11:34 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2016-09-16 11:11:34 ----A---- C:\Windows\SYSWOW64\cryptbase.dll
2016-09-16 11:11:34 ----A---- C:\Windows\SYSWOW64\credssp.dll
2016-09-16 11:11:34 ----A---- C:\Windows\SYSWOW64\auditpol.exe
2016-09-16 11:11:34 ----A---- C:\Windows\SYSWOW64\advapi32.dll
2016-09-16 11:11:34 ----A---- C:\Windows\system32\wow64win.dll
2016-09-16 11:11:34 ----A---- C:\Windows\system32\wow64cpu.dll
2016-09-16 11:11:34 ----A---- C:\Windows\system32\wow64.dll
2016-09-16 11:11:34 ----A---- C:\Windows\system32\winsrv.dll
2016-09-16 11:11:34 ----A---- C:\Windows\system32\sspisrv.dll
2016-09-16 11:11:34 ----A---- C:\Windows\system32\sspicli.dll
2016-09-16 11:11:34 ----A---- C:\Windows\system32\srcore.dll
2016-09-16 11:11:34 ----A---- C:\Windows\system32\srclient.dll
2016-09-16 11:11:34 ----A---- C:\Windows\system32\smss.exe
2016-09-16 11:11:34 ----A---- C:\Windows\system32\setbcdlocale.dll
2016-09-16 11:11:34 ----A---- C:\Windows\system32\secur32.dll
2016-09-16 11:11:34 ----A---- C:\Windows\system32\rstrui.exe
2016-09-16 11:11:34 ----A---- C:\Windows\system32\msobjs.dll
2016-09-16 11:11:34 ----A---- C:\Windows\system32\msaudite.dll
2016-09-16 11:11:34 ----A---- C:\Windows\system32\lsass.exe
2016-09-16 11:11:34 ----A---- C:\Windows\system32\KernelBase.dll
2016-09-16 11:11:34 ----A---- C:\Windows\system32\drivers\appid.sys
2016-09-16 11:11:34 ----A---- C:\Windows\system32\csrsrv.dll
2016-09-16 11:11:34 ----A---- C:\Windows\system32\cryptbase.dll
2016-09-16 11:11:34 ----A---- C:\Windows\system32\credssp.dll
2016-09-16 11:11:34 ----A---- C:\Windows\system32\conhost.exe
2016-09-16 11:11:34 ----A---- C:\Windows\system32\auditpol.exe
2016-09-16 11:11:34 ----A---- C:\Windows\system32\appidsvc.dll
2016-09-16 11:11:34 ----A---- C:\Windows\system32\appidapi.dll
2016-09-16 11:11:34 ----A---- C:\Windows\system32\advapi32.dll
2016-09-16 11:11:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-security-base-l1-1-0.dll
2016-09-16 11:11:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l1-1-0.dll
2016-09-16 11:11:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-util-l1-1-0.dll
2016-09-16 11:11:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2016-09-16 11:11:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2016-09-16 11:11:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-1-0.dll
2016-09-16 11:11:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-string-l1-1-0.dll
2016-09-16 11:11:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2016-09-16 11:11:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-profile-l1-1-0.dll
2016-09-16 11:11:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2016-09-16 11:11:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2016-09-16 11:11:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2016-09-16 11:11:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-misc-l1-1-0.dll
2016-09-16 11:11:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-memory-l1-1-0.dll
2016-09-16 11:11:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2016-09-16 11:11:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-1-0.dll
2016-09-16 11:11:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2016-09-16 11:11:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-io-l1-1-0.dll
2016-09-16 11:11:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2016-09-16 11:11:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-heap-l1-1-0.dll
2016-09-16 11:11:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-handle-l1-1-0.dll
2016-09-16 11:11:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-1-0.dll
2016-09-16 11:11:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-fibers-l1-1-0.dll
2016-09-16 11:11:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2016-09-16 11:11:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-delayload-l1-1-0.dll
2016-09-16 11:11:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-debug-l1-1-0.dll
2016-09-16 11:11:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-datetime-l1-1-0.dll
2016-09-16 11:11:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-console-l1-1-0.dll
2016-09-16 11:11:33 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2016-09-16 11:11:33 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2016-09-16 11:11:33 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2016-09-16 11:11:33 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2016-09-16 11:11:33 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2016-09-16 11:11:33 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2016-09-16 11:11:33 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2016-09-16 11:11:33 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2016-09-16 11:11:33 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2016-09-16 11:11:33 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2016-09-16 11:11:33 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2016-09-16 11:11:33 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2016-09-16 11:11:33 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2016-09-16 11:11:33 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2016-09-16 11:11:33 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2016-09-16 11:11:33 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2016-09-16 11:11:33 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2016-09-16 11:11:33 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2016-09-16 11:11:33 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2016-09-16 11:11:33 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2016-09-16 11:11:33 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2016-09-16 11:11:33 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2016-09-16 11:11:33 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2016-09-16 11:11:33 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2016-09-16 11:11:33 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2016-09-16 11:11:33 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2016-09-16 11:11:33 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2016-09-16 11:11:33 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2016-09-16 11:11:33 ----A---- C:\Windows\SYSWOW64\wow32.dll
2016-09-16 11:11:33 ----A---- C:\Windows\SYSWOW64\user.exe
2016-09-16 11:11:33 ----A---- C:\Windows\SYSWOW64\srclient.dll
2016-09-16 11:11:33 ----A---- C:\Windows\SYSWOW64\setup16.exe
2016-09-16 11:11:33 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2016-09-16 11:11:33 ----A---- C:\Windows\SYSWOW64\instnm.exe
2016-09-16 11:11:33 ----A---- C:\Windows\SYSWOW64\appidapi.dll
2016-09-16 11:11:33 ----A---- C:\Windows\SYSWOW64\apisetschema.dll
2016-09-16 11:11:33 ----A---- C:\Windows\system32\ntvdm64.dll
2016-09-16 11:11:33 ----A---- C:\Windows\system32\appidpolicyconverter.exe
2016-09-16 11:11:33 ----A---- C:\Windows\system32\appidcertstorecheck.exe
2016-09-16 11:11:33 ----A---- C:\Windows\system32\apisetschema.dll
2016-09-16 11:11:21 ----A---- C:\Windows\system32\mtxoci.dll
2016-09-16 11:11:20 ----A---- C:\Windows\SYSWOW64\mtxoci.dll
2016-09-16 11:11:20 ----A---- C:\Windows\SYSWOW64\msorcl32.dll
2016-09-16 11:11:11 ----A---- C:\Windows\SYSWOW64\tzres.dll
2016-09-16 11:11:11 ----A---- C:\Windows\system32\tzres.dll
2016-09-16 11:11:08 ----A---- C:\Windows\SYSWOW64\ole32.dll
2016-09-16 11:11:08 ----A---- C:\Windows\system32\ole32.dll
2016-09-16 11:11:02 ----A---- C:\Windows\system32\win32k.sys
2016-09-16 11:11:01 ----A---- C:\Windows\SYSWOW64\user32.dll
2016-09-16 11:11:01 ----A---- C:\Windows\system32\user32.dll
2016-09-16 11:11:00 ----A---- C:\Windows\SYSWOW64\win32spl.dll
2016-09-16 11:11:00 ----A---- C:\Windows\SYSWOW64\ntprint.exe
2016-09-16 11:11:00 ----A---- C:\Windows\SYSWOW64\ntprint.dll
2016-09-16 11:11:00 ----A---- C:\Windows\system32\wpnpinst.exe
2016-09-16 11:11:00 ----A---- C:\Windows\system32\win32spl.dll
2016-09-16 11:11:00 ----A---- C:\Windows\system32\ntprint.exe
2016-09-16 11:11:00 ----A---- C:\Windows\system32\ntprint.dll
2016-09-16 11:11:00 ----A---- C:\Windows\system32\localspl.dll
2016-09-16 11:11:00 ----A---- C:\Windows\system32\inetppui.dll
2016-09-16 11:11:00 ----A---- C:\Windows\system32\inetpp.dll
2016-09-16 11:11:00 ----A---- C:\Windows\system32\drivers\tcpip.sys
2016-09-16 11:10:59 ----A---- C:\Windows\SYSWOW64\INETRES.dll
2016-09-16 11:10:59 ----A---- C:\Windows\SYSWOW64\inetcomm.dll
2016-09-16 11:10:59 ----A---- C:\Windows\system32\INETRES.dll
2016-09-16 11:10:59 ----A---- C:\Windows\system32\inetcomm.dll
2016-09-16 11:10:59 ----A---- C:\Windows\system32\drivers\tcpipreg.sys
2016-09-16 11:10:59 ----A---- C:\Windows\system32\drivers\srvnet.sys
2016-09-16 11:10:59 ----A---- C:\Windows\system32\drivers\srv2.sys
2016-09-16 11:10:59 ----A---- C:\Windows\system32\drivers\srv.sys
2016-09-16 11:10:59 ----A---- C:\Windows\system32\drivers\netio.sys
2016-09-16 11:10:59 ----A---- C:\Windows\system32\drivers\FWPKCLNT.SYS
2016-09-16 11:10:58 ----A---- C:\Windows\SYSWOW64\lpk.dll
2016-09-16 11:10:58 ----A---- C:\Windows\SYSWOW64\fontsub.dll
2016-09-16 11:10:58 ----A---- C:\Windows\SYSWOW64\dciman32.dll
2016-09-16 11:10:58 ----A---- C:\Windows\SYSWOW64\atmlib.dll
2016-09-16 11:10:58 ----A---- C:\Windows\SYSWOW64\atmfd.dll
2016-09-16 11:10:58 ----A---- C:\Windows\system32\lpk.dll
2016-09-16 11:10:58 ----A---- C:\Windows\system32\fontsub.dll
2016-09-16 11:10:58 ----A---- C:\Windows\system32\dciman32.dll
2016-09-16 11:10:58 ----A---- C:\Windows\system32\atmlib.dll
2016-09-16 11:10:58 ----A---- C:\Windows\system32\atmfd.dll
2016-09-16 11:10:57 ----A---- C:\Windows\SYSWOW64\msxml3r.dll
2016-09-16 11:10:57 ----A---- C:\Windows\SYSWOW64\msxml3.dll
2016-09-16 11:10:57 ----A---- C:\Windows\system32\msxml3r.dll
2016-09-16 11:10:57 ----A---- C:\Windows\system32\msxml3.dll
2016-09-16 11:10:57 ----A---- C:\Windows\system32\drivers\dxgmms1.sys
2016-09-16 11:10:57 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys
2016-09-16 11:10:57 ----A---- C:\Windows\system32\cdd.dll
2016-09-16 11:10:54 ----A---- C:\Windows\SYSWOW64\samlib.dll
2016-09-16 11:10:54 ----A---- C:\Windows\system32\samsrv.dll
2016-09-16 11:10:54 ----A---- C:\Windows\system32\samlib.dll
2016-09-16 11:10:44 ----A---- C:\Windows\SYSWOW64\d3d10level9.dll
2016-09-16 11:10:44 ----A---- C:\Windows\system32\d3d10level9.dll
2016-09-16 11:10:43 ----A---- C:\Windows\system32\invagent.dll
2016-09-16 11:10:43 ----A---- C:\Windows\system32\generaltel.dll
2016-09-16 11:10:43 ----A---- C:\Windows\system32\devinv.dll
2016-09-16 11:10:43 ----A---- C:\Windows\system32\CompatTelRunner.exe
2016-09-16 11:10:43 ----A---- C:\Windows\system32\centel.dll
2016-09-16 11:10:43 ----A---- C:\Windows\system32\appraiser.dll
2016-09-16 11:10:43 ----A---- C:\Windows\system32\aepic.dll
2016-09-16 11:10:43 ----A---- C:\Windows\system32\aeinv.dll
2016-09-16 11:10:43 ----A---- C:\Windows\system32\acmigration.dll
2016-09-16 11:10:41 ----A---- C:\Windows\SYSWOW64\oleaut32.dll
2016-09-16 11:10:41 ----A---- C:\Windows\system32\oleaut32.dll
2016-09-16 11:07:28 ----A---- C:\Windows\SYSWOW64\StructuredQuery.dll
2016-09-16 11:07:28 ----A---- C:\Windows\system32\StructuredQuery.dll
2016-09-16 11:07:27 ----A---- C:\Windows\SYSWOW64\polstore.dll
2016-09-16 11:07:27 ----A---- C:\Windows\SYSWOW64\gpapi.dll
2016-09-16 11:07:27 ----A---- C:\Windows\system32\polstore.dll
2016-09-16 11:07:27 ----A---- C:\Windows\system32\IPSECSVC.DLL
2016-09-16 11:07:27 ----A---- C:\Windows\system32\gpsvc.dll
2016-09-16 11:07:27 ----A---- C:\Windows\system32\gpapi.dll
2016-09-16 11:07:26 ----A---- C:\Windows\SYSWOW64\winipsec.dll
2016-09-16 11:07:26 ----A---- C:\Windows\SYSWOW64\FwRemoteSvr.dll
2016-09-16 11:07:26 ----A---- C:\Windows\system32\winipsec.dll
2016-09-16 11:07:26 ----A---- C:\Windows\system32\FwRemoteSvr.dll
2016-09-16 11:07:11 ----A---- C:\Windows\SYSWOW64\InkEd.dll
2016-09-16 11:07:11 ----A---- C:\Windows\system32\InkEd.dll
2016-09-16 11:07:06 ----A---- C:\Windows\SYSWOW64\ws2_32.dll
2016-09-16 11:07:06 ----A---- C:\Windows\SYSWOW64\winhttp.dll
2016-09-16 11:07:06 ----A---- C:\Windows\SYSWOW64\netbtugc.exe
2016-09-16 11:07:06 ----A---- C:\Windows\SYSWOW64\mswsock.dll
2016-09-16 11:07:06 ----A---- C:\Windows\SYSWOW64\gdi32.dll
2016-09-16 11:07:06 ----A---- C:\Windows\system32\ws2_32.dll
2016-09-16 11:07:06 ----A---- C:\Windows\system32\winhttp.dll
2016-09-16 11:07:06 ----A---- C:\Windows\system32\netbtugc.exe
2016-09-16 11:07:06 ----A---- C:\Windows\system32\mswsock.dll
2016-09-16 11:07:06 ----A---- C:\Windows\system32\gdi32.dll
2016-09-16 11:07:06 ----A---- C:\Windows\system32\drivers\netbt.sys
2016-09-16 11:07:05 ----A---- C:\Windows\SYSWOW64\WindowsCodecs.dll
2016-09-16 11:07:05 ----A---- C:\Windows\system32\WindowsCodecs.dll
2016-09-16 11:07:04 ----A---- C:\Windows\SYSWOW64\webio.dll
2016-09-16 11:07:04 ----A---- C:\Windows\system32\webio.dll
2016-09-16 10:54:55 ----A---- C:\Windows\SYSWOW64\wintrust.dll
2016-09-16 10:54:55 ----A---- C:\Windows\SYSWOW64\cryptsvc.dll
2016-09-16 10:54:55 ----A---- C:\Windows\SYSWOW64\cryptnet.dll
2016-09-16 10:54:55 ----A---- C:\Windows\system32\wintrust.dll
2016-09-16 10:54:55 ----A---- C:\Windows\system32\cryptsvc.dll
2016-09-16 10:54:55 ----A---- C:\Windows\system32\cryptnet.dll
2016-09-16 10:54:54 ----A---- C:\Windows\SYSWOW64\msimsg.dll
2016-09-16 10:54:54 ----A---- C:\Windows\system32\msimsg.dll
2016-09-16 10:54:53 ----A---- C:\Windows\SYSWOW64\wups.dll
2016-09-16 10:54:53 ----A---- C:\Windows\system32\appinfo.dll
2016-09-16 10:54:52 ----A---- C:\Windows\SYSWOW64\msiexec.exe
2016-09-16 10:54:52 ----A---- C:\Windows\system32\WinSetupUI.dll
2016-09-16 10:54:52 ----A---- C:\Windows\system32\msiexec.exe
2016-09-16 10:54:52 ----A---- C:\Windows\system32\consent.exe
2016-09-16 10:54:50 ----A---- C:\Windows\SYSWOW64\olepro32.dll
2016-09-16 10:54:50 ----A---- C:\Windows\system32\wups2.dll
2016-09-16 10:54:50 ----A---- C:\Windows\system32\wups.dll
2016-09-16 10:54:50 ----A---- C:\Windows\system32\wu.upgrade.ps.dll
2016-09-16 10:54:49 ----A---- C:\Windows\SYSWOW64\msihnd.dll
2016-09-16 10:54:49 ----A---- C:\Windows\SYSWOW64\authui.dll
2016-09-16 10:54:49 ----A---- C:\Windows\SYSWOW64\asycfilt.dll
2016-09-16 10:54:49 ----A---- C:\Windows\system32\msihnd.dll
2016-09-16 10:54:49 ----A---- C:\Windows\system32\authui.dll
2016-09-16 10:54:49 ----A---- C:\Windows\system32\asycfilt.dll
2016-09-16 10:54:48 ----A---- C:\Windows\SYSWOW64\crypt32.dll
2016-09-16 10:54:48 ----A---- C:\Windows\SYSWOW64\bcryptprimitives.dll
2016-09-16 10:54:48 ----A---- C:\Windows\system32\drivers\cng.sys
2016-09-16 10:54:48 ----A---- C:\Windows\system32\crypt32.dll
2016-09-16 10:54:48 ----A---- C:\Windows\system32\bcryptprimitives.dll
2016-09-16 10:54:46 ----A---- C:\Windows\SYSWOW64\wuapp.exe
2016-09-16 10:54:46 ----A---- C:\Windows\system32\wuauclt.exe
2016-09-16 10:54:46 ----A---- C:\Windows\system32\wuapp.exe
2016-09-16 10:54:45 ----A---- C:\Windows\SYSWOW64\wuwebv.dll
2016-09-16 10:54:45 ----A---- C:\Windows\SYSWOW64\wudriver.dll
2016-09-16 10:54:45 ----A---- C:\Windows\SYSWOW64\msi.dll
2016-09-16 10:54:45 ----A---- C:\Windows\system32\wuwebv.dll
2016-09-16 10:54:45 ----A---- C:\Windows\system32\wudriver.dll
2016-09-16 10:54:45 ----A---- C:\Windows\system32\msi.dll
2016-09-16 10:54:44 ----A---- C:\Windows\SYSWOW64\wuapi.dll
2016-09-16 10:54:44 ----A---- C:\Windows\system32\wucltux.dll
2016-09-16 10:54:44 ----A---- C:\Windows\system32\wuaueng.dll
2016-09-16 10:54:44 ----A---- C:\Windows\system32\wuapi.dll
2016-09-16 10:44:10 ----D---- C:\58fd13cf3409b3ee94
2016-09-16 10:42:36 ----D---- C:\ProgramData\Adobe
2016-09-16 10:37:53 ----D---- C:\Program Files\DIFX
2016-09-16 10:37:50 ----D---- C:\Program Files\Lenovo
2016-09-16 10:37:50 ----A---- C:\Windows\system32\LenovoSDKEmSubSystem.dll
2016-09-16 10:37:50 ----A---- C:\Windows\system32\drivers\LhdX64.sys
2016-09-16 10:37:19 ----D---- C:\ProgramData\Downloaded Installations
2016-09-16 10:30:55 ----HD---- C:\Windows\system32\WLANProfiles
2016-09-16 10:30:46 ----D---- C:\Users\Jarka\AppData\Roaming\Intel
2016-09-16 10:30:39 ----D---- C:\ProgramData\Roaming
2016-09-16 10:24:59 ----D---- C:\Windows\SYSWOW64\sda
2016-09-16 10:24:43 ----A---- C:\Windows\SYSWOW64\RsCRIcon.dll
2016-09-16 10:24:43 ----A---- C:\Windows\system32\RtCRX64.dll
2016-09-16 10:24:43 ----A---- C:\Windows\system32\drivers\RtsP2Stor.sys
2016-09-16 10:22:32 ----A---- C:\Windows\SYSWOW64\RtCamX.dll
2016-09-16 10:22:32 ----A---- C:\Windows\SYSWOW64\RsDecode.dll
2016-09-16 10:22:32 ----A---- C:\Windows\system32\RtCamX64.dll
2016-09-16 10:22:32 ----A---- C:\Windows\system32\drivers\RtsUVC.sys
2016-09-16 10:22:32 ----A---- C:\Windows\RtCamU64.exe
2016-09-16 10:17:56 ----D---- C:\Program Files (x86)\Dolby Advanced Audio v2
2016-09-16 10:17:40 ----A---- C:\Windows\system32\drivers\SAMSFPA.DAT
2016-09-16 10:17:37 ----D---- C:\Windows\system32\DAX2
2016-09-16 10:17:34 ----D---- C:\Windows\SYSWOW64\RTCOM
2016-09-16 10:17:34 ----D---- C:\Program Files\Realtek
2016-09-16 10:17:09 ----D---- C:\Windows\Panther
2016-09-16 10:16:34 ----A---- C:\Windows\system32\SRSWOW64.dll
2016-09-16 10:16:34 ----A---- C:\Windows\system32\SRSTSX64.dll
2016-09-16 10:16:34 ----A---- C:\Windows\system32\SRSTSH64.dll
2016-09-16 10:16:34 ----A---- C:\Windows\system32\SRSHP64.dll
2016-09-16 10:16:33 ----A---- C:\Windows\SYSWOW64\SFCOM.dll
2016-09-16 10:16:33 ----A---- C:\Windows\system32\SFSS_APO.dll
2016-09-16 10:16:33 ----A---- C:\Windows\system32\SFNHK64.dll
2016-09-16 10:16:33 ----A---- C:\Windows\system32\SFCOM64.dll
2016-09-16 10:16:33 ----A---- C:\Windows\system32\SFAPO64.dll
2016-09-16 10:16:33 ----A---- C:\Windows\system32\drivers\rtvienna.dat
2016-09-16 10:16:32 ----A---- C:\Windows\system32\RtPgEx64.dll
2016-09-16 10:16:32 ----A---- C:\Windows\system32\RtlCPAPI64.dll
2016-09-16 10:16:31 ----A---- C:\Windows\system32\RtkCoLDR64.dll
2016-09-16 10:16:31 ----A---- C:\Windows\system32\RtkCfg64.dll
2016-09-16 10:16:31 ----A---- C:\Windows\system32\RtkApi64.dll
2016-09-16 10:16:31 ----A---- C:\Windows\system32\RTEEP64A.dll
2016-09-16 10:16:31 ----A---- C:\Windows\system32\RTEEL64A.dll
2016-09-16 10:16:31 ----A---- C:\Windows\system32\RTEEG64A.dll
2016-09-16 10:16:31 ----A---- C:\Windows\system32\RTEED64A.dll
2016-09-16 10:16:31 ----A---- C:\Windows\system32\RtDataProc64.dll
2016-09-16 10:16:31 ----A---- C:\Windows\system32\RTCOM64.dll
2016-09-16 10:16:31 ----A---- C:\Windows\system32\RP3DHT64.dll
2016-09-16 10:16:31 ----A---- C:\Windows\system32\RP3DAA64.dll
2016-09-16 10:16:31 ----A---- C:\Windows\system32\RltkAPO64.dll
2016-09-16 10:16:31 ----A---- C:\Windows\system32\drivers\RTKVHD64.sys
2016-09-16 10:16:31 ----A---- C:\Windows\system32\drivers\RTAIODAT.DAT
2016-09-16 10:16:29 ----A---- C:\Windows\system32\RCoRes64.dat
2016-09-16 10:16:29 ----A---- C:\Windows\system32\RCoInstII64.dll
2016-09-16 10:16:29 ----A---- C:\Windows\system32\R4EEP64A.dll
2016-09-16 10:16:29 ----A---- C:\Windows\system32\R4EEL64A.dll
2016-09-16 10:16:29 ----A---- C:\Windows\system32\R4EEG64A.dll
2016-09-16 10:16:29 ----A---- C:\Windows\system32\R4EED64A.dll
2016-09-16 10:16:29 ----A---- C:\Windows\system32\R4EEA64A.dll
2016-09-16 10:16:28 ----A---- C:\Windows\system32\MaxxVolumeSDAPO.dll
2016-09-16 10:16:28 ----A---- C:\Windows\system32\MaxxAudioEQ64.dll
2016-09-16 10:16:27 ----A---- C:\Windows\system32\MaxxAudioAPO30.dll
2016-09-16 10:16:27 ----A---- C:\Windows\system32\MaxxAudioAPO20.dll
2016-09-16 10:16:27 ----A---- C:\Windows\system32\HiFiDAX2API.dll
2016-09-16 10:16:26 ----A---- C:\Windows\system32\FMAPO64.dll
2016-09-16 10:16:25 ----A---- C:\Windows\system32\DTSVoiceClarityDLL64.dll
2016-09-16 10:16:25 ----A---- C:\Windows\system32\DTSSymmetryDLL64.dll
2016-09-16 10:16:25 ----A---- C:\Windows\system32\DTSS2SpeakerDLL64.dll
2016-09-16 10:16:25 ----A---- C:\Windows\system32\DTSS2HeadphoneDLL64.dll
2016-09-16 10:16:25 ----A---- C:\Windows\system32\DTSNeoPCDLL64.dll
2016-09-16 10:16:25 ----A---- C:\Windows\system32\DTSLimiterDLL64.dll
2016-09-16 10:16:25 ----A---- C:\Windows\system32\DTSLFXAPO64.dll
2016-09-16 10:16:25 ----A---- C:\Windows\system32\DTSGFXAPONS64.dll
2016-09-16 10:16:25 ----A---- C:\Windows\system32\DTSGFXAPO64.dll
2016-09-16 10:16:25 ----A---- C:\Windows\system32\DTSGainCompensatorDLL64.dll
2016-09-16 10:16:25 ----A---- C:\Windows\system32\DTSBoostDLL64.dll
2016-09-16 10:16:25 ----A---- C:\Windows\system32\DTSBassEnhancementDLL64.dll
2016-09-16 10:16:25 ----A---- C:\Windows\system32\DolbyDAX2APOv211.dll
2016-09-16 10:16:25 ----A---- C:\Windows\system32\DolbyDAX2APOProp.dll
2016-09-16 10:16:25 ----A---- C:\Windows\system32\DDPP64AF3.dll
2016-09-16 10:16:25 ----A---- C:\Windows\system32\DDPP64A.dll
2016-09-16 10:16:25 ----A---- C:\Windows\system32\DDPO64AF3.dll
2016-09-16 10:16:25 ----A---- C:\Windows\system32\DDPO64A.dll
2016-09-16 10:16:25 ----A---- C:\Windows\system32\DDPD64AF3.dll
2016-09-16 10:16:25 ----A---- C:\Windows\system32\DDPD64A.dll
2016-09-16 10:16:25 ----A---- C:\Windows\system32\DDPA64F3.dll
2016-09-16 10:16:21 ----A---- C:\Windows\system32\DDPA64.dll
2016-09-16 10:16:21 ----A---- C:\Windows\system32\CONEQMSAPOGUILibrary.dll
2016-09-16 10:16:21 ----A---- C:\Windows\system32\AERTAR64.dll
2016-09-16 10:16:21 ----A---- C:\Windows\system32\AERTAC64.dll
2016-09-16 10:16:05 ----HD---- C:\Program Files (x86)\Temp
2016-09-16 10:16:05 ----A---- C:\Windows\RtlExUpd.dll
2016-09-16 10:11:44 ----A---- C:\Windows\SYSWOW64\OpenCL.DLL
2016-09-16 10:11:44 ----A---- C:\Windows\system32\OpenCL.DLL
2016-09-16 10:10:51 ----A---- C:\Windows\system32\{EC94D02F-D200-4428-9531-05AF7F9799CB}.bat
2016-09-16 10:10:51 ----A---- C:\Windows\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2016-09-16 10:08:34 ----A---- C:\Windows\system32\igfxCoIn_v4279.dll
2016-09-16 10:08:33 ----A---- C:\Windows\system32\igfxLHM.dll
2016-09-16 10:08:33 ----A---- C:\Windows\system32\igfxHK.exe
2016-09-16 10:08:33 ----A---- C:\Windows\system32\igfxEM.exe
2016-09-16 10:08:33 ----A---- C:\Windows\system32\igfxDI.dll
2016-09-16 10:08:33 ----A---- C:\Windows\system32\igfxDH.dll
2016-09-16 10:08:31 ----A---- C:\Windows\system32\igfxCUIService.exe
2016-09-16 10:08:28 ----A---- C:\Windows\system32\igdumdim64.dll
2016-09-16 10:08:19 ----A---- C:\Windows\system32\igd10iumd64.dll
2016-09-16 10:08:17 ----A---- C:\Windows\system32\igc64.dll
2016-09-16 10:05:23 ----D---- C:\Users\Jarka\AppData\Roaming\GHISLER
2016-09-16 10:04:28 ----D---- C:\Users\Jarka\AppData\Roaming\ESET
2016-09-16 09:54:48 ----D---- C:\Program Files\Synaptics
2016-09-16 09:54:19 ----A---- C:\Windows\system32\SynTPCo20.dll
2016-09-16 09:54:19 ----A---- C:\Windows\system32\SynTPAPI.dll
2016-09-16 09:54:19 ----A---- C:\Windows\system32\drivers\SynTP.sys
2016-09-16 09:54:18 ----A---- C:\Windows\SYSWOW64\SynCom.dll
2016-09-16 09:54:18 ----A---- C:\Windows\system32\SynCOM.dll
2016-09-16 09:53:33 ----D---- C:\ProgramData\Validity
2016-09-16 09:50:25 ----D---- C:\Program Files (x86)\Lenovo
2016-09-16 09:49:55 ----D---- C:\ProgramData\Lenovo
2016-09-16 09:47:40 ----A---- C:\Windows\system32\drivers\USB3Ver.dll
2016-09-16 09:47:37 ----D---- C:\Intel
2016-09-16 09:47:33 ----A---- C:\Windows\system32\drivers\iusb3xhc.sys
2016-09-16 09:47:33 ----A---- C:\Windows\system32\drivers\iusb3hub.sys
2016-09-16 09:46:12 ----A---- C:\Windows\system32\RTNUninst64.dll
2016-09-16 09:46:12 ----A---- C:\Windows\system32\RtNicProp64.dll
2016-09-16 09:46:12 ----A---- C:\Windows\system32\drivers\Rt64win7.sys
2016-09-16 09:46:08 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2016-09-16 09:46:08 ----D---- C:\Program Files (x86)\Realtek
2016-09-16 09:45:32 ----D---- C:\Program Files (x86)\Intel
2016-09-16 09:43:31 ----D---- C:\Users\Jarka\AppData\Roaming\Intel Corporation
2016-09-16 09:43:26 ----D---- C:\ProgramData\Intel
2016-09-16 09:41:49 ----D---- C:\Program Files\Intel
2016-09-16 09:41:46 ----D---- C:\ProgramData\Package Cache
2016-09-16 09:28:34 ----D---- C:\Users\Jarka\AppData\Roaming\Adobe
2016-09-16 09:28:25 ----D---- C:\Users\Jarka\AppData\Roaming\Identities
2016-09-16 09:27:58 ----SD---- C:\Users\Jarka\AppData\Roaming\Microsoft
2016-09-16 09:27:58 ----D---- C:\Users\Jarka\AppData\Roaming\Media Center Programs
2016-09-16 09:27:52 ----SHD---- C:\ProgramData\Šablony
2016-09-16 09:27:52 ----SHD---- C:\ProgramData\Plocha
2016-09-16 09:27:52 ----SHD---- C:\ProgramData\Oblíbené položky
2016-09-16 09:27:52 ----SHD---- C:\ProgramData\Nabídka Start
2016-09-16 09:27:52 ----SHD---- C:\ProgramData\Dokumenty
2016-09-16 09:27:52 ----SHD---- C:\ProgramData\Data aplikací
2016-09-16 09:18:25 ----D---- C:\Windows\Prefetch
2016-09-16 09:17:36 ----SHD---- C:\System Volume Information

======List of files/folders modified in the last 1 month======

2016-09-19 16:37:50 ----D---- C:\Windows\System32
2016-09-19 16:37:50 ----D---- C:\Windows\inf
2016-09-19 16:37:50 ----A---- C:\Windows\system32\PerfStringBackup.INI
2016-09-19 16:37:29 ----D---- C:\Windows\system32\Tasks
2016-09-19 16:37:26 ----D---- C:\Windows\system32\drivers
2016-09-19 16:36:36 ----D---- C:\Windows
2016-09-19 16:35:56 ----D---- C:\Windows\Temp
2016-09-19 16:32:33 ----D---- C:\Windows\system32\config
2016-09-19 16:31:19 ----D---- C:\Windows\debug
2016-09-19 16:26:25 ----RD---- C:\Program Files
2016-09-19 15:41:01 ----D---- C:\Windows\system32\DriverStore
2016-09-19 15:40:57 ----SHD---- C:\Windows\Installer
2016-09-19 15:40:30 ----HD---- C:\ProgramData
2016-09-19 10:20:55 ----RD---- C:\Program Files (x86)
2016-09-19 09:52:23 ----D---- C:\Windows\Microsoft.NET
2016-09-19 08:08:23 ----D---- C:\Windows\SYSWOW64\wbem
2016-09-19 08:00:25 ----D---- C:\Windows\Tasks
2016-09-19 06:53:46 ----D---- C:\Windows\system32\WinBioDatabase
2016-09-19 06:53:46 ----D---- C:\Windows\system32\drivers\etc
2016-09-19 06:53:45 ----RSD---- C:\Windows\Media
2016-09-19 06:53:44 ----D---- C:\Windows\SYSWOW64\zh-TW
2016-09-19 06:53:44 ----D---- C:\Windows\SYSWOW64\zh-HK
2016-09-19 06:53:44 ----D---- C:\Windows\SYSWOW64\zh-CN
2016-09-19 06:53:44 ----D---- C:\Windows\SYSWOW64\tr-TR
2016-09-19 06:53:44 ----D---- C:\Windows\SYSWOW64\sv-SE
2016-09-19 06:53:44 ----D---- C:\Windows\SYSWOW64\ru-RU
2016-09-19 06:53:44 ----D---- C:\Windows\SYSWOW64\pt-PT
2016-09-19 06:53:44 ----D---- C:\Windows\SYSWOW64\pt-BR
2016-09-19 06:53:44 ----D---- C:\Windows\SYSWOW64\pl-PL
2016-09-19 06:53:44 ----D---- C:\Windows\SYSWOW64\nl-NL
2016-09-19 06:53:44 ----D---- C:\Windows\SYSWOW64\nb-NO
2016-09-19 06:53:44 ----D---- C:\Windows\SYSWOW64\migration
2016-09-19 06:53:43 ----D---- C:\Windows\SYSWOW64\ko-KR
2016-09-19 06:53:43 ----D---- C:\Windows\SYSWOW64\ja-JP
2016-09-19 06:53:43 ----D---- C:\Windows\SYSWOW64\it-IT
2016-09-19 06:53:43 ----D---- C:\Windows\SYSWOW64\hu-HU
2016-09-19 06:53:42 ----D---- C:\Windows\SYSWOW64\fr-FR
2016-09-19 06:53:42 ----D---- C:\Windows\SYSWOW64\fi-FI
2016-09-19 06:53:42 ----D---- C:\Windows\SYSWOW64\es-ES
2016-09-19 06:53:42 ----D---- C:\Windows\SYSWOW64\en-US
2016-09-19 06:53:42 ----D---- C:\Windows\SYSWOW64\el-GR
2016-09-19 06:53:42 ----D---- C:\Windows\SYSWOW64\drivers
2016-09-19 06:53:42 ----D---- C:\Windows\SYSWOW64\de-DE
2016-09-19 06:53:42 ----D---- C:\Windows\SYSWOW64\da-DK
2016-09-19 06:53:42 ----D---- C:\Windows\SYSWOW64\cs-CZ
2016-09-19 06:53:42 ----D---- C:\Windows\SysWOW64
2016-09-19 06:53:42 ----D---- C:\Windows\system32\zh-TW
2016-09-19 06:53:42 ----D---- C:\Windows\system32\zh-HK
2016-09-19 06:53:42 ----D---- C:\Windows\system32\zh-CN
2016-09-19 06:53:42 ----D---- C:\Windows\system32\tr-TR
2016-09-19 06:53:42 ----D---- C:\Windows\system32\sv-SE
2016-09-19 06:53:41 ----D---- C:\Windows\system32\ru-RU
2016-09-19 06:53:41 ----D---- C:\Windows\system32\pt-PT
2016-09-19 06:53:41 ----D---- C:\Windows\system32\pt-BR
2016-09-19 06:53:41 ----D---- C:\Windows\system32\pl-PL
2016-09-19 06:53:41 ----D---- C:\Windows\system32\nl-NL
2016-09-19 06:53:41 ----D---- C:\Windows\system32\nb-NO
2016-09-19 06:53:41 ----D---- C:\Windows\system32\migration
2016-09-19 06:53:41 ----D---- C:\Windows\system32\ko-KR
2016-09-19 06:53:41 ----D---- C:\Windows\system32\ja-JP
2016-09-19 06:53:41 ----D---- C:\Windows\system32\it-IT
2016-09-19 06:53:41 ----D---- C:\Windows\system32\hu-HU
2016-09-19 06:53:41 ----D---- C:\Windows\system32\fr-FR
2016-09-19 06:53:41 ----D---- C:\Windows\system32\fi-FI
2016-09-19 06:53:41 ----D---- C:\Windows\system32\es-ES
2016-09-19 06:53:41 ----D---- C:\Windows\system32\en-US
2016-09-19 06:53:41 ----D---- C:\Windows\system32\el-GR
2016-09-19 06:53:41 ----D---- C:\Windows\system32\drivers\cs-CZ
2016-09-19 06:53:41 ----D---- C:\Windows\system32\de-DE
2016-09-19 06:53:41 ----D---- C:\Windows\system32\da-DK
2016-09-19 06:53:41 ----D---- C:\Windows\system32\cs-CZ
2016-09-19 06:53:41 ----D---- C:\Windows\system32\CodeIntegrity
2016-09-19 06:53:41 ----D---- C:\Windows\PolicyDefinitions
2016-09-19 06:53:40 ----SD---- C:\ProgramData\Microsoft
2016-09-19 06:53:40 ----RSD---- C:\Windows\assembly
2016-09-19 06:53:40 ----D---- C:\Program Files\Common Files\Microsoft Shared
2016-09-19 06:53:40 ----D---- C:\Program Files\Common Files
2016-09-19 06:53:40 ----D---- C:\Program Files (x86)\Common Files
2016-09-19 06:53:39 ----D---- C:\Windows\system32\Recovery
2016-09-18 20:01:35 ----SHD---- C:\$Recycle.Bin
2016-09-18 19:44:33 ----A---- C:\Windows\system32\MpSigStub.exe
2016-09-18 17:30:55 ----D---- C:\Windows\registration
2016-09-18 16:16:13 ----D---- C:\Windows\Logs
2016-09-18 04:19:22 ----D---- C:\Windows\winsxs
2016-09-17 23:58:24 ----D---- C:\Windows\rescache
2016-09-17 22:31:55 ----D---- C:\Windows\Downloaded Program Files
2016-09-17 21:44:13 ----RD---- C:\Users
2016-09-17 17:22:16 ----D---- C:\Windows\SYSWOW64\config
2016-09-17 09:35:34 ----D---- C:\Windows\AppCompat
2016-09-17 09:35:33 ----SD---- C:\Windows\system32\GWX
2016-09-17 08:35:11 ----D---- C:\Windows\system32\catroot
2016-09-17 08:18:28 ----RSD---- C:\Windows\Fonts
2016-09-17 08:14:46 ----D---- C:\Windows\system32\wfp
2016-09-17 08:14:46 ----D---- C:\Windows\system32\wbem
2016-09-17 08:14:45 ----D---- C:\Windows\system32\Boot
2016-09-17 08:12:27 ----D---- C:\Windows\SYSWOW64\Setup
2016-09-17 08:12:27 ----D---- C:\Windows\SYSWOW64\ras
2016-09-17 08:12:27 ----D---- C:\Windows\SYSWOW64\icsxml
2016-09-17 08:12:27 ----D---- C:\Windows\SYSWOW64\drivers\cs-CZ
2016-09-17 08:12:27 ----D---- C:\Windows\SYSWOW64\Dism
2016-09-17 08:12:27 ----D---- C:\Windows\system32\Setup
2016-09-17 08:12:27 ----D---- C:\Windows\system32\ras
2016-09-17 08:12:27 ----D---- C:\Windows\system32\oobe
2016-09-17 08:12:26 ----D---- C:\Windows\system32\icsxml
2016-09-17 08:12:26 ----D---- C:\Windows\system32\Dism
2016-09-17 08:12:26 ----D---- C:\Windows\system32\AdvancedInstallers
2016-09-17 08:12:25 ----D---- C:\Windows\L2Schemas
2016-09-17 08:12:25 ----D---- C:\Windows\ehome
2016-09-17 08:12:25 ----D---- C:\Windows\cs-CZ
2016-09-17 08:12:25 ----D---- C:\Windows\AppPatch
2016-09-17 08:12:25 ----D---- C:\Windows\addins
2016-09-17 08:12:25 ----D---- C:\Program Files\Windows Photo Viewer
2016-09-17 08:12:25 ----D---- C:\Program Files\Windows Media Player
2016-09-17 08:12:25 ----D---- C:\Program Files\Windows Mail
2016-09-17 08:12:25 ----D---- C:\Program Files\Windows Defender
2016-09-17 08:12:25 ----D---- C:\Program Files\DVD Maker
2016-09-17 08:12:25 ----D---- C:\Program Files\Common Files\System
2016-09-17 08:12:25 ----D---- C:\Program Files (x86)\Windows Photo Viewer
2016-09-17 08:12:25 ----D---- C:\Program Files (x86)\Windows Media Player
2016-09-17 08:12:25 ----D---- C:\Program Files (x86)\Windows Mail
2016-09-17 08:12:25 ----D---- C:\Program Files (x86)\Windows Defender
2016-09-17 08:11:38 ----D---- C:\Windows\SYSWOW64\XPSViewer
2016-09-17 08:11:37 ----D---- C:\Windows\SYSWOW64\MUI
2016-09-17 08:11:34 ----D---- C:\Windows\system32\spp
2016-09-17 08:11:33 ----D---- C:\Windows\system32\MUI
2016-09-17 08:11:24 ----D---- C:\Windows\servicing
2016-09-17 08:11:24 ----D---- C:\Windows\security
2016-09-17 08:05:50 ----D---- C:\Windows\system32\wdi
2016-09-16 16:03:04 ----D---- C:\Windows\system32\LogFiles
2016-09-16 11:28:37 ----D---- C:\Program Files\Internet Explorer
2016-09-16 11:28:36 ----D---- C:\Program Files (x86)\Internet Explorer
2016-09-16 11:28:31 ----D---- C:\Windows\system32\appraiser
2016-09-16 10:27:00 ----D---- C:\Windows\system32\drivers\UMDF
2016-09-16 10:25:37 ----D---- C:\Windows\system32\WinBioPlugIns
2016-09-16 10:22:49 ----D---- C:\Windows\twain_32
2016-09-16 10:02:38 ----SD---- C:\Windows\system32\Microsoft
2016-09-16 09:43:35 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI
2016-09-16 09:43:12 ----D---- C:\Windows\system32\restore
2016-09-16 09:27:52 ----D---- C:\Program Files\Windows NT
2016-09-16 09:23:23 ----D---- C:\Windows\system32\sysprep

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 edevmon;edevmon; C:\Windows\system32\DRIVERS\edevmon.sys [2016-08-08 209544]
R0 iaStorA;iaStorA; C:\Windows\system32\DRIVERS\iaStorA.sys [2015-07-24 1455552]
R0 iaStorF;iaStorF; C:\Windows\system32\DRIVERS\iaStorF.sys [2015-07-24 31144]
R0 LHDmgr;LHDmgr; C:\Windows\System32\DRIVERS\LhdX64.sys [2016-09-16 39008]
R0 RapportHades64;RapportHades64; C:\Windows\System32\Drivers\RapportHades64.sys [2016-09-12 236264]
R0 RapportKE64;RapportKE64; C:\Windows\System32\Drivers\RapportKE64.sys [2016-09-12 490792]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-21 213888]
R1 eamonm;eamonm; C:\Windows\system32\DRIVERS\eamonm.sys [2016-08-08 227456]
R1 ehdrv;ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [2016-08-08 176288]
R1 epfw;epfw; C:\Windows\system32\DRIVERS\epfw.sys [2016-08-08 76456]
R1 EpfwLWF;ESET Personal Firewall; C:\Windows\system32\DRIVERS\EpfwLWF.sys [2016-08-08 59560]
R1 epfwwfp;epfwwfp; C:\Windows\system32\DRIVERS\epfwwfp.sys [2016-08-08 91816]
R1 HWiNFO32;HWiNFO32/64 Kernel Driver; \??\C:\Windows\SysWOW64\drivers\HWiNFO64A.SYS [2016-09-17 27552]
R1 RapportCerberus_1609053;RapportCerberus_1609053; \??\C:\ProgramData\Trusteer\Rapport\store\exts\RapportCerberus\baseline\RapportCerberus64_1609053.sys [2016-09-17 1181672]
R1 RapportEI64;RapportEI64; \??\C:\Program Files (x86)\Trusteer\Rapport\bin\x64\RapportEI64.sys [2016-09-12 567336]
R1 RapportPG64;RapportPG64; \??\C:\Program Files (x86)\Trusteer\Rapport\bin\x64\RapportPG64.sys [2016-09-12 548968]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 ekbdflt;ekbdflt; C:\Windows\system32\DRIVERS\ekbdflt.sys [2016-08-08 48776]
R3 ACPIVPC;Lenovo Virtual Power Controller Driver; C:\Windows\system32\DRIVERS\AcpiVpc.sys [2016-09-17 34552]
R3 BthEnum;Ovladač pro Bluetooth Request Block; C:\Windows\system32\DRIVERS\BthEnum.sys [2009-07-14 41984]
R3 BthPan;Zařízení Bluetooth (síť PAN); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
R3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2016-03-19 80384]
R3 btmaux;Intel Bluetooth Auxiliary Service; C:\Windows\system32\DRIVERS\btmaux.sys [2015-05-12 141800]
R3 btmhsf;btmhsf; C:\Windows\system32\DRIVERS\btmhsf.sys [2015-01-13 1448248]
R3 ibtusb;Aplikace Intel(R) Wireless Bluetooth(R); C:\Windows\system32\DRIVERS\ibtusb.sys [2015-08-07 257264]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys [2016-01-20 7876072]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2015-09-17 4603136]
R3 IntcDAud;Intel(R) Display Audio; C:\Windows\system32\DRIVERS\IntcDAud.sys [2015-12-08 481032]
R3 iusb3hub;Ovladač rozbočovače Intel(R) USB 3.0; C:\Windows\system32\DRIVERS\iusb3hub.sys [2015-09-04 394992]
R3 iusb3xhc;Ovladač rozšiřitelného hostitelského řadiče Intel(R) USB 3.0; C:\Windows\system32\DRIVERS\iusb3xhc.sys [2015-09-04 805616]
R3 MEIx64;Intel(R) Management Engine Interface ; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [2015-07-07 178976]
R3 NETwNs64;___ Ovladač adaptéru Intel(R) Wireless pro systém Windows 7 64 Bit; C:\Windows\system32\DRIVERS\Netwsw04.sys [2016-07-24 3441424]
R3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
R3 RSP2STOR;Realtek PCIE CardReader Driver - P2; C:\Windows\system32\DRIVERS\RtsP2Stor.sys [2015-06-01 301784]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2015-05-19 986368]
R3 rtsuvc;Lenovo EasyCamera; C:\Windows\system32\DRIVERS\rtsuvc.sys [2015-06-11 3059416]
R3 semav6msr64;semav6msr64; \??\C:\Windows\system32\drivers\semav6msr64.sys [2015-06-04 21984]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2015-09-15 555176]
R3 Tpm;Čip TPM; C:\Windows\system32\drivers\tpm.sys [2016-03-19 147904]
R3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\Windows\system32\DRIVERS\vwifimp.sys [2009-07-14 17920]
R3 WinUsb;WinUSB Driver; C:\Windows\system32\DRIVERS\WinUSB.sys [2010-11-21 41984]
S3 BTHPORT;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2016-03-19 552960]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2016-03-19 19456]
S3 terminpt;Microsoft Remote Desktop Input Driver; C:\Windows\system32\drivers\terminpt.sys [2016-03-19 29696]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2016-03-19 56832]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2016-03-19 29696]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2016-09-08 82128]
R2 Bluetooth Device Monitor;Bluetooth Device Monitor; C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe [2015-01-27 1198456]
R2 Bluetooth Media Service;Bluetooth Media Service; C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe [2015-05-06 1714216]
R2 Bluetooth OBEX Service;Bluetooth OBEX Service; C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe [2015-01-27 1161592]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET Smart Security\ekrn.exe [2016-08-05 2816032]
R2 ESRV_SVC_WILLAMETTE;Energy Server Service WILLAMETTE; C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\esrv_svc.exe [2016-06-08 416408]
R2 EvtEng;Intel(R) PROSet/Wireless Event Log; C:\Program Files\Intel\WiFi\bin\EvtEng.exe [2016-06-23 642464]
R2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2015-07-22 18856]
R2 iBtSiva;Intel Bluetooth Service; C:\Program Files (x86)\Intel\Bluetooth\ibtsiva.exe [2015-09-04 149608]
R2 igfxCUIService2.0.0.0;Intel(R) HD Graphics Control Panel Service; C:\Windows\system32\igfxCUIService.exe [2016-01-20 365032]
R2 LenovoSetSvr;LenovoSetSvr; C:\Program Files\Lenovo\LenovoUtility\LenovoSetSvr.exe [2016-09-17 461640]
R2 RapportMgmtService;Rapport Management Service; C:\Program Files (x86)\Trusteer\Rapport\bin\RapportMgmtService.exe [2016-09-12 2387952]
R2 RegSrvc;Intel(R) PROSet/Wireless Registry Service; C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe [2016-06-23 157088]
R2 SUService;System Update; C:\Program Files (x86)\Lenovo\System Update\SUService.exe [2016-07-07 28544]
R2 SystemUsageReportSvc_WILLAMETTE;Intel(R) System Usage Report Service SystemUsageReportSvc_WILLAMETTE; C:\Program Files (x86)\Intel Driver Update Utility\SUR\SurSvc.exe [2016-06-08 117400]
R2 valWBFPolicyService;Synaptics FP WBF Policy Service; C:\Windows\system32\valWBFPolicyService.exe [2015-03-03 49968]
R2 ZeroConfigService;Intel(R) PROSet/Wireless Zero Configuration Service; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [2016-06-23 3732896]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2016-02-03 105144]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2016-02-03 125112]
S2 LiveUpdateSvc;LiveUpdate; C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe [2016-07-29 3046688]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2016-07-25 324224]
S3 cphs;Intel(R) Content Protection HECI Service; C:\Windows\SysWow64\IntelCpHeciSvc.exe [2016-01-20 292840]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2016-09-01 114688]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2016-08-24 146888]
S3 USER_ESRV_SVC_WILLAMETTE;User Energy Server Service WILLAMETTE; C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\esrv_svc.exe [2016-06-08 416408]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2016-03-19 1255736]
S4 aspnet_state;ASP.NET State Service; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2016-02-03 51384]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2016-02-03 135848]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2016-02-03 135848]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2016-02-03 135848]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118269
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: pro Rudy, prosím o ko logu

#2 Příspěvek od Rudy »

Zdravím!
Zkuste spustit ADWCleaner a dát log.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Uživatelský avatar
jaruneczka
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 417
Registrován: 09 čer 2008 11:45
Bydliště: Ostrava

Re: pro Rudy, prosím o ko logu

#3 Příspěvek od jaruneczka »

stále se opakující, několikrát denně! i po výmazu z registru přímo
# AdwCleaner v6.020 - Log soubor vytvořen 19/09/2016 na 18:48:47
# Aktualizováno dne 14/09/2016 z ToolsLib
# Databáze : 2016-09-19.1 [Server]
# Operační systém : Windows 7 Home Premium Service Pack 1 (X64)
# Uživatelské jméno : Jarka - JARUSZKA-PC
# Beží od : C:\Users\Jarka\Desktop\adwcleaner_6.020.exe
# Mod: Čištění
# Podpora : https://toolslib.net/forum



***** [ Služby ] *****



***** [ Adresáře ] *****



***** [ Soubory ] *****



***** [ DLL ] *****



***** [ WMI ] *****



***** [ Zástupce ] *****



***** [ Plánovač úloh ] *****



***** [ Registry ] *****

[-] Klíč smazán:HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{10921475-03CE-4E04-90CE-E2E7EF20C814}


***** [ Prohlížeče ] *****



*************************

:: "Tracing" klíč smazán
:: Winsock nastavení vyčištěno

*************************

C:\AdwCleaner\AdwCleaner[C0].txt - [1143 Bajtů] - [16/09/2016 22:40:56]
C:\AdwCleaner\AdwCleaner[C10].txt - [2481 Bajtů] - [19/09/2016 07:14:09]
C:\AdwCleaner\AdwCleaner[C11].txt - [2794 Bajtů] - [19/09/2016 16:35:12]
C:\AdwCleaner\AdwCleaner[C12].txt - [1144 Bajtů] - [19/09/2016 18:48:47]
C:\AdwCleaner\AdwCleaner[C2].txt - [1295 Bajtů] - [17/09/2016 10:42:22]
C:\AdwCleaner\AdwCleaner[C3].txt - [1444 Bajtů] - [17/09/2016 12:04:14]
C:\AdwCleaner\AdwCleaner[C4].txt - [1933 Bajtů] - [17/09/2016 18:15:07]
C:\AdwCleaner\AdwCleaner[C5].txt - [1758 Bajtů] - [17/09/2016 20:15:10]
C:\AdwCleaner\AdwCleaner[C6].txt - [1888 Bajtů] - [17/09/2016 22:30:33]
C:\AdwCleaner\AdwCleaner[C7].txt - [2036 Bajtů] - [18/09/2016 09:10:44]
C:\AdwCleaner\AdwCleaner[C8].txt - [2163 Bajtů] - [18/09/2016 22:55:45]
C:\AdwCleaner\AdwCleaner[C9].txt - [2332 Bajtů] - [19/09/2016 06:24:05]
C:\AdwCleaner\AdwCleaner[S0].txt - [1453 Bajtů] - [16/09/2016 22:40:32]
C:\AdwCleaner\AdwCleaner[S10].txt - [3184 Bajtů] - [19/09/2016 16:34:56]
C:\AdwCleaner\AdwCleaner[S11].txt - [3090 Bajtů] - [19/09/2016 18:48:32]
C:\AdwCleaner\AdwCleaner[S1].txt - [1605 Bajtů] - [17/09/2016 10:39:32]
C:\AdwCleaner\AdwCleaner[S2].txt - [1753 Bajtů] - [17/09/2016 11:56:55]
C:\AdwCleaner\AdwCleaner[S3].txt - [2144 Bajtů] - [17/09/2016 18:13:28]
C:\AdwCleaner\AdwCleaner[S4].txt - [2049 Bajtů] - [17/09/2016 20:12:56]
C:\AdwCleaner\AdwCleaner[S5].txt - [2197 Bajtů] - [17/09/2016 22:30:18]
C:\AdwCleaner\AdwCleaner[S6].txt - [2345 Bajtů] - [18/09/2016 09:10:32]
C:\AdwCleaner\AdwCleaner[S7].txt - [2472 Bajtů] - [18/09/2016 22:55:35]
C:\AdwCleaner\AdwCleaner[S8].txt - [2641 Bajtů] - [19/09/2016 06:23:57]
C:\AdwCleaner\AdwCleaner[S9].txt - [2789 Bajtů] - [19/09/2016 07:13:57]

########## EOF - C:\AdwCleaner\AdwCleaner[C12].txt - [2701 Bajtů] ##########

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118269
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: pro Rudy, prosím o ko logu

#4 Příspěvek od Rudy »

OK. Stáhněte OTM: http://oldtimer.geekstogo.com/OTM.exe a uložte na plochu. Spusťte a do levého okna zkopírujte:
:files
C:\Windows\system32\zoom_search.js
C:\Windows\system32\zoom_pageinfo.js
C:\Windows\system32\zoom_index.js
C:\Windows\system32\settings.js
C:\Windows\system32\jquery.js
C:\Windows\system32\hmcontextids.js
C:\Windows\system32\highlight.js
C:\Windows\system32\helpman_topicinit.js
C:\Windows\system32\helpman_settings.js
C:\Windows\system32\helpman_navigation.js
C:\Windows\system32\additionalLayout.js
C:\ProgramData\{FD6F83C0-EC70-4581-8361-C70CD1AA4B98}
C:\ProgramData\{BAF091CA-86C4-4627-ADA1-897E2621C1B0}

:commands
[Purity]
[Emptytemp]
[Emptyflash]
a klikněte na >MoveIt!<. Po skenu restartujte PC a dejte nový log RSIT.

Ještě prolezu internet a zkusím zjistit, kčemu ten klíč patří. Ona to také může být jen chyba ve virové databázi.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Uživatelský avatar
jaruneczka
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 417
Registrován: 09 čer 2008 11:45
Bydliště: Ostrava

Re: pro Rudy, prosím o ko logu

#5 Příspěvek od jaruneczka »

před oběma "servisními" zásahy se to v adw.cl. neobjevovalo :James008:
Logfile of random's system information tool 1.10 (written by random/random)
Run by Jarka at 2016-09-19 19:49:35
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 443 GB (93%) free of 477 GB
Total RAM: 3955 MB (66% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 19:49:39, on 19.9.2016
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.18450)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\Lenovo\Lenovo Smart Fingerprint\fplmonitor.exe
C:\Program Files (x86)\Trusteer\Rapport\bin\RapportService.exe
C:\Program Files\Lenovo\Lenovo Solution Center\LSCNotify.exe
C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallMonitor.exe
C:\Program Files\trend micro\Jarka.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O1 - Hosts: ::1 localhost
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - Trusted Zone: http://help.eset.com (HKLM)
O15 - ESC Trusted Zone: http://help.eset.com (HKLM)
O16 - DPF: {5AE58FCF-6F6A-49B2-B064-02492C66E3F4} (MUCatalogWebControl Class) - http://catalog.update.microsoft.com/v7/ ... 4139660906
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: Bluetooth Device Monitor - Motorola Solutions, Inc. - C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe
O23 - Service: Bluetooth Media Service - Motorola Solutions, Inc. - C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe
O23 - Service: Bluetooth OBEX Service - Motorola Solutions, Inc. - C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\Windows\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET Smart Security\ekrn.exe
O23 - Service: Energy Server Service WILLAMETTE (ESRV_SVC_WILLAMETTE) - Unknown owner - C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\esrv_svc.exe
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel(R) Corporation - C:\Program Files\Intel\WiFi\bin\EvtEng.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: Intel Bluetooth Service (iBtSiva) - Intel Corporation - C:\Program Files (x86)\Intel\Bluetooth\ibtsiva.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService2.0.0.0) - Unknown owner - C:\Windows\system32\igfxCUIService.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: LenovoSetSvr - Lenovo(beijing) Limited - C:\Program Files\Lenovo\LenovoUtility\LenovoSetSvr.exe
O23 - Service: LiveUpdate (LiveUpdateSvc) - IObit - C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Rapport Management Service (RapportMgmtService) - IBM Corp. - C:\Program Files (x86)\Trusteer\Rapport\bin\RapportMgmtService.exe
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel(R) Corporation - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: System Update (SUService) - Unknown owner - C:\Program Files (x86)\Lenovo\System Update\SUService.exe
O23 - Service: Intel(R) System Usage Report Service SystemUsageReportSvc_WILLAMETTE (SystemUsageReportSvc_WILLAMETTE) - Unknown owner - C:\Program Files (x86)\Intel Driver Update Utility\SUR\SurSvc.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: User Energy Server Service WILLAMETTE (USER_ESRV_SVC_WILLAMETTE) - Unknown owner - C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\esrv_svc.exe
O23 - Service: Synaptics FP WBF Policy Service (valWBFPolicyService) - Unknown owner - C:\Windows\system32\valWBFPolicyService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Zero Configuration Service (ZeroConfigService) - Intel® Corporation - C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe

--
End of file - 8331 bytes

======Listing Processes======



\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
winlogon.exe
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
"C:\Program Files\ESET\ESET Smart Security\ekrn.exe"
C:\Windows\system32\svchost.exe -k RPCSS
"C:\Program Files (x86)\Trusteer\Rapport\bin\RapportMgmtService.exe"
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs

C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\system32\igfxCUIService.exe
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-c92150af-0b81-4f45-929b-e55a195e27ff -SystemEventPortName:HostProcess-7d0bd496-f55f-4d35-bf2d-6f8121d24993 -IoCancelEventPortName:HostProcess-ef2941d2-054b-4535-8a2c-7650bcbb6946 -NonStateChangingEventPortName:HostProcess-d7b48ddf-098b-4756-924f-6a87e0ed36af -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:ac59e458-af41-4d29-9519-bb5450021889 -DeviceGroupId:
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\system32\WLANExt.exe 3746112
\??\C:\Windows\system32\conhost.exe "-708816488-12681164791023532812217012936-13374957231921072646-1671704313-778700978
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k WbioSvcGroup
"C:\Windows\system32\Dwm.exe"
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Windows\Explorer.EXE
"taskhost.exe"
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files\ESET\ESET Smart Security\egui.exe" /hide
C:\Windows\System32\svchost.exe -k utcsvc
"C:\Program Files\Intel\WiFi\bin\EvtEng.exe"
"C:\Program Files (x86)\Intel\Bluetooth\ibtsiva.exe"
"C:\Program Files\Lenovo\LenovoUtility\LenovoSetSvr.exe"
taskeng.exe {ADF2D46D-5CB4-4978-93B6-D81AFCB04B9F}
"C:\Program Files (x86)\Lenovo\Lenovo Smart Fingerprint\fplmonitor.exe"
"C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe"
"C:\Program Files (x86)\Skype\Updater\Updater.exe"
"C:\Program Files (x86)\Intel Driver Update Utility\SUR\SurSvc.exe"
C:\Windows\system32\valWBFPolicyService.exe
"C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe"
"C:\Program Files (x86)\Lenovo\System Update\SUService.exe"
C:\Windows\system32\wbem\unsecapp.exe -Embedding
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
C:\Windows\system32\svchost.exe -k bthsvcs
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
igfxEM.exe
igfxHK.exe
C:\Windows\System32\rundll32.exe shell32.dll,SHCreateLocalServerRunDll {995C996E-D918-4a8c-A302-45719A6F4EA7} -Embedding
C:\Windows\system32\sppsvc.exe
"C:\Program Files (x86)\Trusteer\Rapport\bin\RapportService.exe" -servicelaunch=true
C:\Windows\system32\vssvc.exe
C:\Windows\System32\svchost.exe -k swprv
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe1_ Global\UsGthrCtrlFltPipeMssGthrPipe1 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
taskeng.exe {53ECD314-ACEA-447F-A1F4-DDC4FEDD024E}
"C:\Windows\system32\SearchFilterHost.exe" 0 520 524 532 65536 528
taskeng.exe {124474B1-ABC1-4254-A360-2D49C6A61751}
"C:\Program Files\CCleaner\CCleaner.exe" /MONITOR /uac
"" "--start" "--register_port" "--address" "127.0.0.1" "--port" "49331" "--pause_on_user_switching" "--depend_on_key" "SYSTEM\CurrentControlSet\Services\ESRV_SVC_WILLAMETTE" "--depend_on_value" "run" "--time_in_ms" "--pause" "5000" "--library" "C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\intel_modeler.dll" "--no_pl" "--watchdog" "10" "--watchdog_cpu_usage_limit" "50" "--end_on_error" "--kernel_priority_boost" "--shutdown_priority_boost" "--device_options" " time=no output=no output_folder='C:\ProgramData\Intel\SUR\WILLAMETTE\IntelData\userlogs' limit_output_by=time output_limit=3600000 output_buffer=1024 il='C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\foreground_window_input.dll' "
\??\C:\Windows\system32\conhost.exe "-654154209-16963702893739396371284673737-1946785763-700420738-1744352559155605393
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
"C:\Program Files\Lenovo\Lenovo Solution Center\LSCNotify.exe" /showasync
"C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallMonitor.exe"
"C:\Users\Jarka\Desktop\RSITx64.exe"
C:\Windows\system32\DllHost.exe /Processid:{F9717507-6651-4EDB-BFF7-AE615179BCCF}

=========Mozilla firefox=========

ProfilePath - C:\Users\Jarka\AppData\Roaming\Mozilla\Firefox\Profiles\q7xx2k53.default

prefs.js - "browser.startup.homepage" - "http://www.seznam.cz/"

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 23.0.0.162 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_23_0_0_162.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 23.0.0.162 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_23_0_0_162.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@videolan.org/vlc,version=2.2.4]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files\VideoLAN\VLC\npvlc.dll


======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{10921475-03CE-4E04-90CE-E2E7EF20C814}]
ExplorerWnd Helper - C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallExplorer.dll [2016-05-23 2478880]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"!NETMOF"=cmd.exe /c cd C:\Windows\MICROSOFT.NET\FRAMEWORK64\V4.0.30319 & mofcomp.exe -AUTORECOVER .\MOF\SERVICEMODEL.MOF & mofcomp.exe -AUTORECOVER .\MOF\SERVICEMODEL35.MOF & mofcomp.exe -AUTORECOVER .\ASPNET.MOF & cd C:\Windows\MICROSOFT.NET\FRAMEWORK\V4.0.30319 & mofcomp.exe -AUTORECOVER .\MOF\SERVICEMODEL.MOF & mofcomp.exe -AUTORECOVER .\MOF\SERVICEMODEL35.MOF & mofcomp.exe -AUTORECOVER .\ASPNET.MOF []

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2016-08-26 8912088]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BTMTrayAgent]
C:\Program Files (x86)\Intel\Bluetooth\btmshellex.dll [2015-04-20 7822312]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Energy Management]
C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe [2016-09-16 8079408]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\EnergyUtility]
C:\Program Files (x86)\Lenovo\Energy Management\Utility.exe [2016-09-16 6200368]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IAStorIcon]
C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe [2015-07-25 36352]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Lenovo Smart Fingerprint]
C:\Program Files (x86)\Lenovo\Lenovo Smart Fingerprint\fplmonitor.exe [2015-07-31 1761208]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LenovoUtility]
C:\Program Files\Lenovo\LenovoUtility\utility.exe [2016-09-17 791368]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Logitech Download Assistant]
C:\Windows\System32\LogiLDA.dll [2012-09-20 1832760]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RtHDVBg_Dolby]
C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2015-09-17 1409264]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RtHDVBg_LENOVO_DOLBYDRAGON]
C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2015-09-17 1409264]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RtHDVBg_LENOVO_MICPKEY]
C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2015-09-17 1409264]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RtHDVCpl]
C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2015-09-17 16404224]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SynTPEnh]
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2015-09-15 2811560]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\USB3MON]
C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [2015-09-04 296216]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\Windows\system32\wpdshserviceobj.dll [2010-11-21 115200]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\91239450.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\91239450.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoSimpleNetIDList"=1
"NoDriveTypeAutoRun"=221

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1

======List of files/folders created in the last 1 month======

2016-09-19 19:46:47 ----D---- C:\_OTM
2016-09-19 16:38:22 ----D---- C:\rsit
2016-09-19 16:31:15 ----A---- C:\Windows\system32\FNTCACHE.DAT
2016-09-19 16:26:25 ----D---- C:\Program Files\trend micro
2016-09-19 15:40:30 ----D---- C:\ProgramData\ESET
2016-09-19 15:40:30 ----D---- C:\Program Files\ESET
2016-09-19 15:07:26 ----A---- C:\Windows\system32\zoom_search.js
2016-09-19 15:07:26 ----A---- C:\Windows\system32\zoom_pageinfo.js
2016-09-19 15:07:26 ----A---- C:\Windows\system32\zoom_index.js
2016-09-19 15:07:26 ----A---- C:\Windows\system32\settings.js
2016-09-19 15:07:26 ----A---- C:\Windows\system32\jquery.js
2016-09-19 15:07:26 ----A---- C:\Windows\system32\hmcontextids.js
2016-09-19 15:07:26 ----A---- C:\Windows\system32\highlight.js
2016-09-19 15:07:26 ----A---- C:\Windows\system32\helpman_topicinit.js
2016-09-19 15:07:26 ----A---- C:\Windows\system32\helpman_settings.js
2016-09-19 15:07:26 ----A---- C:\Windows\system32\helpman_navigation.js
2016-09-19 15:07:26 ----A---- C:\Windows\system32\additionalLayout.js
2016-09-19 14:50:34 ----A---- C:\Windows\system32\SmartDefragBootTime.exe
2016-09-19 14:50:34 ----A---- C:\Windows\system32\IObitSmartDefragExtension.dll
2016-09-19 06:00:58 ----ASH---- C:\pagefile.sys
2016-09-19 06:00:52 ----ASH---- C:\hiberfil.sys
2016-09-19 05:51:27 ----HD---- C:\$SysReset
2016-09-18 22:16:39 ----D---- C:\Users\Jarka\AppData\Roaming\Lenovo
2016-09-18 20:02:28 ----D---- C:\Program Files\Common Files\Intel
2016-09-18 18:12:33 ----SHD---- C:\Recovery
2016-09-18 16:12:17 ----A---- C:\Windows\progress.ini
2016-09-18 15:50:02 ----HD---- C:\$GetCurrent
2016-09-18 14:10:27 ----D---- C:\Windows\system32\catroot2
2016-09-18 14:09:46 ----D---- C:\Windows\CheckSur
2016-09-18 13:32:51 ----D---- C:\Windows\SoftwareDistribution
2016-09-18 13:32:45 ----D---- C:\Windows\SYSWOW64\catroot2.bak
2016-09-18 11:10:21 ----D---- C:\Users\Jarka\AppData\Roaming\vlc
2016-09-18 11:10:01 ----D---- C:\Program Files\VideoLAN
2016-09-17 22:24:22 ----D---- C:\f23630008194fbda2c95e8
2016-09-17 22:20:37 ----D---- C:\8b6ff87793841bd932a41ad0
2016-09-17 17:02:20 ----AC---- C:\Windows\SYSWOW64\MRT.exe
2016-09-17 16:12:39 ----D---- C:\Windows\IObit
2016-09-17 16:12:35 ----A---- C:\Windows\SYSWOW64\drivers\HWiNFO64A.SYS
2016-09-17 12:48:24 ----D---- C:\ProgramData\Licenses
2016-09-17 12:48:23 ----AD---- C:\ProgramData\TEMP
2016-09-17 08:40:43 ----D---- C:\Users\Jarka\AppData\Roaming\IrfanView
2016-09-17 08:34:26 ----A---- C:\Windows\system32\drivers\AcpiVpc.sys
2016-09-16 22:38:00 ----D---- C:\AdwCleaner
2016-09-16 22:19:25 ----D---- C:\Users\Jarka\AppData\Roaming\ProductData
2016-09-16 22:19:21 ----D---- C:\ProgramData\ProductData
2016-09-16 22:19:21 ----D---- C:\ProgramData\IObit
2016-09-16 22:19:08 ----D---- C:\Users\Jarka\AppData\Roaming\IObit
2016-09-16 22:19:08 ----D---- C:\Program Files (x86)\IObit
2016-09-16 21:38:41 ----D---- C:\Users\Jarka\AppData\Roaming\OpenOffice
2016-09-16 21:02:44 ----D---- C:\Users\Jarka\AppData\Roaming\WinRAR
2016-09-16 20:51:49 ----D---- C:\a063cd4886b365085d
2016-09-16 20:19:58 ----D---- C:\Users\Jarka\AppData\Roaming\Wise Registry Cleaner
2016-09-16 20:17:24 ----D---- C:\Users\Jarka\AppData\Roaming\Wise Euask
2016-09-16 20:17:22 ----D---- C:\Users\Jarka\AppData\Roaming\Wise Disk Cleaner
2016-09-16 20:16:50 ----D---- C:\Program Files (x86)\Wise
2016-09-16 18:07:42 ----D---- C:\ProgramData\Synaptics
2016-09-16 17:48:06 ----D---- C:\Users\Jarka\AppData\Roaming\Thunderbird
2016-09-16 17:46:38 ----D---- C:\Instalačky
2016-09-16 17:46:08 ----D---- C:\Program Files (x86)\Mozilla Thunderbird
2016-09-16 17:40:18 ----D---- C:\Program Files (x86)\IrfanView
2016-09-16 17:34:52 ----D---- C:\Program Files (x86)\OpenOffice 4
2016-09-16 17:16:06 ----A---- C:\Windows\system32\drivers\RapportKE64.sys
2016-09-16 17:16:06 ----A---- C:\Windows\system32\drivers\RapportHades64.sys
2016-09-16 17:15:39 ----D---- C:\Program Files (x86)\Trusteer
2016-09-16 17:13:31 ----D---- C:\ProgramData\Trusteer
2016-09-16 17:13:25 ----D---- C:\Users\Jarka\AppData\Roaming\Macromedia
2016-09-16 17:06:45 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2016-09-16 17:06:41 ----D---- C:\Windows\system32\Macromed
2016-09-16 17:06:33 ----D---- C:\Windows\SYSWOW64\Macromed
2016-09-16 17:03:35 ----D---- C:\Users\Jarka\AppData\Roaming\Mozilla
2016-09-16 17:03:28 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2016-09-16 17:03:26 ----D---- C:\Program Files (x86)\Mozilla Firefox
2016-09-16 16:33:22 ----D---- C:\drivers
2016-09-16 16:30:48 ----D---- C:\Windows\Downloaded Installations
2016-09-16 16:16:40 ----D---- C:\Users\Jarka\AppData\Roaming\Skype
2016-09-16 16:16:34 ----RD---- C:\Program Files (x86)\Skype
2016-09-16 16:16:29 ----D---- C:\ProgramData\Skype
2016-09-16 16:15:57 ----D---- C:\Program Files\WinRAR
2016-09-16 16:13:10 ----D---- C:\Program Files (x86)\Adobe
2016-09-16 15:50:22 ----D---- C:\Zálohy 8-2016
2016-09-16 15:36:06 ----D---- C:\Program Files\CCleaner
2016-09-16 15:34:57 ----A---- C:\Windows\system32\drivers\semav6msr64.sys
2016-09-16 15:34:53 ----D---- C:\Program Files (x86)\Intel Driver Update Utility
2016-09-16 15:28:31 ----D---- C:\Zálohy 9-2016
2016-09-16 11:15:00 ----D---- C:\Windows\system32\MRT
2016-09-16 11:14:51 ----AC---- C:\Windows\system32\MRT.exe
2016-09-16 11:12:25 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2016-09-16 11:12:25 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2016-09-16 11:12:25 ----A---- C:\Windows\SYSWOW64\occache.dll
2016-09-16 11:12:25 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2016-09-16 11:12:25 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2016-09-16 11:12:25 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2016-09-16 11:12:25 ----A---- C:\Windows\SYSWOW64\inseng.dll
2016-09-16 11:12:25 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2016-09-16 11:12:25 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2016-09-16 11:12:25 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2016-09-16 11:12:25 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2016-09-16 11:12:25 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2016-09-16 11:12:25 ----A---- C:\Windows\system32\inseng.dll
2016-09-16 11:12:25 ----A---- C:\Windows\system32\iernonce.dll
2016-09-16 11:12:25 ----A---- C:\Windows\system32\ieetwproxystub.dll
2016-09-16 11:12:25 ----A---- C:\Windows\system32\ieetwcollector.exe
2016-09-16 11:12:25 ----A---- C:\Windows\system32\ie4uinit.exe
2016-09-16 11:12:24 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2016-09-16 11:12:23 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2016-09-16 11:12:23 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2016-09-16 11:12:23 ----A---- C:\Windows\SYSWOW64\jscript.dll
2016-09-16 11:12:23 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2016-09-16 11:12:23 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2016-09-16 11:12:23 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2016-09-16 11:12:23 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2016-09-16 11:12:23 ----A---- C:\Windows\system32\urlmon.dll
2016-09-16 11:12:23 ----A---- C:\Windows\system32\occache.dll
2016-09-16 11:12:23 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2016-09-16 11:12:23 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2016-09-16 11:12:23 ----A---- C:\Windows\system32\iedkcs32.dll
2016-09-16 11:12:22 ----A---- C:\Windows\SYSWOW64\ieui.dll
2016-09-16 11:12:22 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2016-09-16 11:12:22 ----A---- C:\Windows\system32\msfeeds.dll
2016-09-16 11:12:22 ----A---- C:\Windows\system32\dxtrans.dll
2016-09-16 11:12:21 ----A---- C:\Windows\system32\iesetup.dll
2016-09-16 11:12:21 ----A---- C:\Windows\system32\iertutil.dll
2016-09-16 11:12:21 ----A---- C:\Windows\system32\ieapfltr.dll
2016-09-16 11:12:20 ----A---- C:\Windows\SYSWOW64\wininet.dll
2016-09-16 11:12:20 ----A---- C:\Windows\SYSWOW64\webcheck.dll
2016-09-16 11:12:20 ----A---- C:\Windows\SYSWOW64\msrating.dll
2016-09-16 11:12:20 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2016-09-16 11:12:20 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2016-09-16 11:12:20 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2016-09-16 11:12:20 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2016-09-16 11:12:20 ----A---- C:\Windows\system32\vbscript.dll
2016-09-16 11:12:20 ----A---- C:\Windows\system32\jsproxy.dll
2016-09-16 11:12:19 ----A---- C:\Windows\system32\ieui.dll
2016-09-16 11:12:19 ----A---- C:\Windows\system32\ieframe.dll
2016-09-16 11:12:19 ----A---- C:\Windows\system32\dxtmsft.dll
2016-09-16 11:12:18 ----A---- C:\Windows\system32\webcheck.dll
2016-09-16 11:12:18 ----A---- C:\Windows\system32\mshtmlmedia.dll
2016-09-16 11:12:18 ----A---- C:\Windows\system32\mshtmled.dll
2016-09-16 11:12:18 ----A---- C:\Windows\system32\jscript.dll
2016-09-16 11:12:18 ----A---- C:\Windows\system32\ieUnatt.exe
2016-09-16 11:12:17 ----A---- C:\Windows\system32\wininet.dll
2016-09-16 11:12:17 ----A---- C:\Windows\system32\jscript9diag.dll
2016-09-16 11:12:17 ----A---- C:\Windows\system32\jscript9.dll
2016-09-16 11:12:16 ----A---- C:\Windows\system32\msrating.dll
2016-09-16 11:12:16 ----A---- C:\Windows\system32\MshtmlDac.dll
2016-09-16 11:12:15 ----A---- C:\Windows\system32\mshtml.dll
2016-09-16 11:11:37 ----A---- C:\Windows\system32\rpcrt4.dll
2016-09-16 11:11:37 ----A---- C:\Windows\system32\ntoskrnl.exe
2016-09-16 11:11:37 ----A---- C:\Windows\system32\lsasrv.dll
2016-09-16 11:11:36 ----A---- C:\Windows\SYSWOW64\schannel.dll
2016-09-16 11:11:36 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2016-09-16 11:11:36 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2016-09-16 11:11:36 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2016-09-16 11:11:36 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2016-09-16 11:11:36 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2016-09-16 11:11:36 ----A---- C:\Windows\system32\schannel.dll
2016-09-16 11:11:36 ----A---- C:\Windows\system32\ntdll.dll
2016-09-16 11:11:36 ----A---- C:\Windows\system32\msv1_0.dll
2016-09-16 11:11:36 ----A---- C:\Windows\system32\kernel32.dll
2016-09-16 11:11:36 ----A---- C:\Windows\system32\kerberos.dll
2016-09-16 11:11:35 ----A---- C:\Windows\SYSWOW64\wdigest.dll
2016-09-16 11:11:35 ----A---- C:\Windows\SYSWOW64\rpchttp.dll
2016-09-16 11:11:35 ----A---- C:\Windows\SYSWOW64\rpcrt4.dll
2016-09-16 11:11:35 ----A---- C:\Windows\SYSWOW64\ncrypt.dll
2016-09-16 11:11:35 ----A---- C:\Windows\SYSWOW64\kernel32.dll
2016-09-16 11:11:35 ----A---- C:\Windows\SYSWOW64\certcli.dll
2016-09-16 11:11:35 ----A---- C:\Windows\SYSWOW64\adtschema.dll
2016-09-16 11:11:35 ----A---- C:\Windows\system32\wdigest.dll
2016-09-16 11:11:35 ----A---- C:\Windows\system32\TSpkg.dll
2016-09-16 11:11:35 ----A---- C:\Windows\system32\rpchttp.dll
2016-09-16 11:11:35 ----A---- C:\Windows\system32\ncrypt.dll
2016-09-16 11:11:35 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2016-09-16 11:11:35 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2016-09-16 11:11:35 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2016-09-16 11:11:35 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2016-09-16 11:11:35 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2016-09-16 11:11:35 ----A---- C:\Windows\system32\certcli.dll
2016-09-16 11:11:35 ----A---- C:\Windows\system32\adtschema.dll
2016-09-16 11:11:34 ----A---- C:\Windows\SYSWOW64\TSpkg.dll
2016-09-16 11:11:34 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2016-09-16 11:11:34 ----A---- C:\Windows\SYSWOW64\secur32.dll
2016-09-16 11:11:34 ----A---- C:\Windows\SYSWOW64\msobjs.dll
2016-09-16 11:11:34 ----A---- C:\Windows\SYSWOW64\msaudite.dll
2016-09-16 11:11:34 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2016-09-16 11:11:34 ----A---- C:\Windows\SYSWOW64\cryptbase.dll
2016-09-16 11:11:34 ----A---- C:\Windows\SYSWOW64\credssp.dll
2016-09-16 11:11:34 ----A---- C:\Windows\SYSWOW64\auditpol.exe
2016-09-16 11:11:34 ----A---- C:\Windows\SYSWOW64\advapi32.dll
2016-09-16 11:11:34 ----A---- C:\Windows\system32\wow64win.dll
2016-09-16 11:11:34 ----A---- C:\Windows\system32\wow64cpu.dll
2016-09-16 11:11:34 ----A---- C:\Windows\system32\wow64.dll
2016-09-16 11:11:34 ----A---- C:\Windows\system32\winsrv.dll
2016-09-16 11:11:34 ----A---- C:\Windows\system32\sspisrv.dll
2016-09-16 11:11:34 ----A---- C:\Windows\system32\sspicli.dll
2016-09-16 11:11:34 ----A---- C:\Windows\system32\srcore.dll
2016-09-16 11:11:34 ----A---- C:\Windows\system32\srclient.dll
2016-09-16 11:11:34 ----A---- C:\Windows\system32\smss.exe
2016-09-16 11:11:34 ----A---- C:\Windows\system32\setbcdlocale.dll
2016-09-16 11:11:34 ----A---- C:\Windows\system32\secur32.dll
2016-09-16 11:11:34 ----A---- C:\Windows\system32\rstrui.exe
2016-09-16 11:11:34 ----A---- C:\Windows\system32\msobjs.dll
2016-09-16 11:11:34 ----A---- C:\Windows\system32\msaudite.dll
2016-09-16 11:11:34 ----A---- C:\Windows\system32\lsass.exe
2016-09-16 11:11:34 ----A---- C:\Windows\system32\KernelBase.dll
2016-09-16 11:11:34 ----A---- C:\Windows\system32\drivers\appid.sys
2016-09-16 11:11:34 ----A---- C:\Windows\system32\csrsrv.dll
2016-09-16 11:11:34 ----A---- C:\Windows\system32\cryptbase.dll
2016-09-16 11:11:34 ----A---- C:\Windows\system32\credssp.dll
2016-09-16 11:11:34 ----A---- C:\Windows\system32\conhost.exe
2016-09-16 11:11:34 ----A---- C:\Windows\system32\auditpol.exe
2016-09-16 11:11:34 ----A---- C:\Windows\system32\appidsvc.dll
2016-09-16 11:11:34 ----A---- C:\Windows\system32\appidapi.dll
2016-09-16 11:11:34 ----A---- C:\Windows\system32\advapi32.dll
2016-09-16 11:11:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-security-base-l1-1-0.dll
2016-09-16 11:11:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l1-1-0.dll
2016-09-16 11:11:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-util-l1-1-0.dll
2016-09-16 11:11:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2016-09-16 11:11:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2016-09-16 11:11:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-1-0.dll
2016-09-16 11:11:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-string-l1-1-0.dll
2016-09-16 11:11:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2016-09-16 11:11:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-profile-l1-1-0.dll
2016-09-16 11:11:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2016-09-16 11:11:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2016-09-16 11:11:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2016-09-16 11:11:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-misc-l1-1-0.dll
2016-09-16 11:11:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-memory-l1-1-0.dll
2016-09-16 11:11:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2016-09-16 11:11:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-1-0.dll
2016-09-16 11:11:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2016-09-16 11:11:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-io-l1-1-0.dll
2016-09-16 11:11:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2016-09-16 11:11:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-heap-l1-1-0.dll
2016-09-16 11:11:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-handle-l1-1-0.dll
2016-09-16 11:11:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-1-0.dll
2016-09-16 11:11:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-fibers-l1-1-0.dll
2016-09-16 11:11:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2016-09-16 11:11:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-delayload-l1-1-0.dll
2016-09-16 11:11:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-debug-l1-1-0.dll
2016-09-16 11:11:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-datetime-l1-1-0.dll
2016-09-16 11:11:33 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-console-l1-1-0.dll
2016-09-16 11:11:33 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2016-09-16 11:11:33 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2016-09-16 11:11:33 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2016-09-16 11:11:33 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2016-09-16 11:11:33 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2016-09-16 11:11:33 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2016-09-16 11:11:33 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2016-09-16 11:11:33 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2016-09-16 11:11:33 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2016-09-16 11:11:33 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2016-09-16 11:11:33 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2016-09-16 11:11:33 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2016-09-16 11:11:33 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2016-09-16 11:11:33 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2016-09-16 11:11:33 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2016-09-16 11:11:33 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2016-09-16 11:11:33 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2016-09-16 11:11:33 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2016-09-16 11:11:33 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2016-09-16 11:11:33 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2016-09-16 11:11:33 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2016-09-16 11:11:33 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2016-09-16 11:11:33 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2016-09-16 11:11:33 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2016-09-16 11:11:33 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2016-09-16 11:11:33 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2016-09-16 11:11:33 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2016-09-16 11:11:33 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2016-09-16 11:11:33 ----A---- C:\Windows\SYSWOW64\wow32.dll
2016-09-16 11:11:33 ----A---- C:\Windows\SYSWOW64\user.exe
2016-09-16 11:11:33 ----A---- C:\Windows\SYSWOW64\srclient.dll
2016-09-16 11:11:33 ----A---- C:\Windows\SYSWOW64\setup16.exe
2016-09-16 11:11:33 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2016-09-16 11:11:33 ----A---- C:\Windows\SYSWOW64\instnm.exe
2016-09-16 11:11:33 ----A---- C:\Windows\SYSWOW64\appidapi.dll
2016-09-16 11:11:33 ----A---- C:\Windows\SYSWOW64\apisetschema.dll
2016-09-16 11:11:33 ----A---- C:\Windows\system32\ntvdm64.dll
2016-09-16 11:11:33 ----A---- C:\Windows\system32\appidpolicyconverter.exe
2016-09-16 11:11:33 ----A---- C:\Windows\system32\appidcertstorecheck.exe
2016-09-16 11:11:33 ----A---- C:\Windows\system32\apisetschema.dll
2016-09-16 11:11:21 ----A---- C:\Windows\system32\mtxoci.dll
2016-09-16 11:11:20 ----A---- C:\Windows\SYSWOW64\mtxoci.dll
2016-09-16 11:11:20 ----A---- C:\Windows\SYSWOW64\msorcl32.dll
2016-09-16 11:11:11 ----A---- C:\Windows\SYSWOW64\tzres.dll
2016-09-16 11:11:11 ----A---- C:\Windows\system32\tzres.dll
2016-09-16 11:11:08 ----A---- C:\Windows\SYSWOW64\ole32.dll
2016-09-16 11:11:08 ----A---- C:\Windows\system32\ole32.dll
2016-09-16 11:11:02 ----A---- C:\Windows\system32\win32k.sys
2016-09-16 11:11:01 ----A---- C:\Windows\SYSWOW64\user32.dll
2016-09-16 11:11:01 ----A---- C:\Windows\system32\user32.dll
2016-09-16 11:11:00 ----A---- C:\Windows\SYSWOW64\win32spl.dll
2016-09-16 11:11:00 ----A---- C:\Windows\SYSWOW64\ntprint.exe
2016-09-16 11:11:00 ----A---- C:\Windows\SYSWOW64\ntprint.dll
2016-09-16 11:11:00 ----A---- C:\Windows\system32\wpnpinst.exe
2016-09-16 11:11:00 ----A---- C:\Windows\system32\win32spl.dll
2016-09-16 11:11:00 ----A---- C:\Windows\system32\ntprint.exe
2016-09-16 11:11:00 ----A---- C:\Windows\system32\ntprint.dll
2016-09-16 11:11:00 ----A---- C:\Windows\system32\localspl.dll
2016-09-16 11:11:00 ----A---- C:\Windows\system32\inetppui.dll
2016-09-16 11:11:00 ----A---- C:\Windows\system32\inetpp.dll
2016-09-16 11:11:00 ----A---- C:\Windows\system32\drivers\tcpip.sys
2016-09-16 11:10:59 ----A---- C:\Windows\SYSWOW64\INETRES.dll
2016-09-16 11:10:59 ----A---- C:\Windows\SYSWOW64\inetcomm.dll
2016-09-16 11:10:59 ----A---- C:\Windows\system32\INETRES.dll
2016-09-16 11:10:59 ----A---- C:\Windows\system32\inetcomm.dll
2016-09-16 11:10:59 ----A---- C:\Windows\system32\drivers\tcpipreg.sys
2016-09-16 11:10:59 ----A---- C:\Windows\system32\drivers\srvnet.sys
2016-09-16 11:10:59 ----A---- C:\Windows\system32\drivers\srv2.sys
2016-09-16 11:10:59 ----A---- C:\Windows\system32\drivers\srv.sys
2016-09-16 11:10:59 ----A---- C:\Windows\system32\drivers\netio.sys
2016-09-16 11:10:59 ----A---- C:\Windows\system32\drivers\FWPKCLNT.SYS
2016-09-16 11:10:58 ----A---- C:\Windows\SYSWOW64\lpk.dll
2016-09-16 11:10:58 ----A---- C:\Windows\SYSWOW64\fontsub.dll
2016-09-16 11:10:58 ----A---- C:\Windows\SYSWOW64\dciman32.dll
2016-09-16 11:10:58 ----A---- C:\Windows\SYSWOW64\atmlib.dll
2016-09-16 11:10:58 ----A---- C:\Windows\SYSWOW64\atmfd.dll
2016-09-16 11:10:58 ----A---- C:\Windows\system32\lpk.dll
2016-09-16 11:10:58 ----A---- C:\Windows\system32\fontsub.dll
2016-09-16 11:10:58 ----A---- C:\Windows\system32\dciman32.dll
2016-09-16 11:10:58 ----A---- C:\Windows\system32\atmlib.dll
2016-09-16 11:10:58 ----A---- C:\Windows\system32\atmfd.dll
2016-09-16 11:10:57 ----A---- C:\Windows\SYSWOW64\msxml3r.dll
2016-09-16 11:10:57 ----A---- C:\Windows\SYSWOW64\msxml3.dll
2016-09-16 11:10:57 ----A---- C:\Windows\system32\msxml3r.dll
2016-09-16 11:10:57 ----A---- C:\Windows\system32\msxml3.dll
2016-09-16 11:10:57 ----A---- C:\Windows\system32\drivers\dxgmms1.sys
2016-09-16 11:10:57 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys
2016-09-16 11:10:57 ----A---- C:\Windows\system32\cdd.dll
2016-09-16 11:10:54 ----A---- C:\Windows\SYSWOW64\samlib.dll
2016-09-16 11:10:54 ----A---- C:\Windows\system32\samsrv.dll
2016-09-16 11:10:54 ----A---- C:\Windows\system32\samlib.dll
2016-09-16 11:10:44 ----A---- C:\Windows\SYSWOW64\d3d10level9.dll
2016-09-16 11:10:44 ----A---- C:\Windows\system32\d3d10level9.dll
2016-09-16 11:10:43 ----A---- C:\Windows\system32\invagent.dll
2016-09-16 11:10:43 ----A---- C:\Windows\system32\generaltel.dll
2016-09-16 11:10:43 ----A---- C:\Windows\system32\devinv.dll
2016-09-16 11:10:43 ----A---- C:\Windows\system32\CompatTelRunner.exe
2016-09-16 11:10:43 ----A---- C:\Windows\system32\centel.dll
2016-09-16 11:10:43 ----A---- C:\Windows\system32\appraiser.dll
2016-09-16 11:10:43 ----A---- C:\Windows\system32\aepic.dll
2016-09-16 11:10:43 ----A---- C:\Windows\system32\aeinv.dll
2016-09-16 11:10:43 ----A---- C:\Windows\system32\acmigration.dll
2016-09-16 11:10:41 ----A---- C:\Windows\SYSWOW64\oleaut32.dll
2016-09-16 11:10:41 ----A---- C:\Windows\system32\oleaut32.dll
2016-09-16 11:07:28 ----A---- C:\Windows\SYSWOW64\StructuredQuery.dll
2016-09-16 11:07:28 ----A---- C:\Windows\system32\StructuredQuery.dll
2016-09-16 11:07:27 ----A---- C:\Windows\SYSWOW64\polstore.dll
2016-09-16 11:07:27 ----A---- C:\Windows\SYSWOW64\gpapi.dll
2016-09-16 11:07:27 ----A---- C:\Windows\system32\polstore.dll
2016-09-16 11:07:27 ----A---- C:\Windows\system32\IPSECSVC.DLL
2016-09-16 11:07:27 ----A---- C:\Windows\system32\gpsvc.dll
2016-09-16 11:07:27 ----A---- C:\Windows\system32\gpapi.dll
2016-09-16 11:07:26 ----A---- C:\Windows\SYSWOW64\winipsec.dll
2016-09-16 11:07:26 ----A---- C:\Windows\SYSWOW64\FwRemoteSvr.dll
2016-09-16 11:07:26 ----A---- C:\Windows\system32\winipsec.dll
2016-09-16 11:07:26 ----A---- C:\Windows\system32\FwRemoteSvr.dll
2016-09-16 11:07:11 ----A---- C:\Windows\SYSWOW64\InkEd.dll
2016-09-16 11:07:11 ----A---- C:\Windows\system32\InkEd.dll
2016-09-16 11:07:06 ----A---- C:\Windows\SYSWOW64\ws2_32.dll
2016-09-16 11:07:06 ----A---- C:\Windows\SYSWOW64\winhttp.dll
2016-09-16 11:07:06 ----A---- C:\Windows\SYSWOW64\netbtugc.exe
2016-09-16 11:07:06 ----A---- C:\Windows\SYSWOW64\mswsock.dll
2016-09-16 11:07:06 ----A---- C:\Windows\SYSWOW64\gdi32.dll
2016-09-16 11:07:06 ----A---- C:\Windows\system32\ws2_32.dll
2016-09-16 11:07:06 ----A---- C:\Windows\system32\winhttp.dll
2016-09-16 11:07:06 ----A---- C:\Windows\system32\netbtugc.exe
2016-09-16 11:07:06 ----A---- C:\Windows\system32\mswsock.dll
2016-09-16 11:07:06 ----A---- C:\Windows\system32\gdi32.dll
2016-09-16 11:07:06 ----A---- C:\Windows\system32\drivers\netbt.sys
2016-09-16 11:07:05 ----A---- C:\Windows\SYSWOW64\WindowsCodecs.dll
2016-09-16 11:07:05 ----A---- C:\Windows\system32\WindowsCodecs.dll
2016-09-16 11:07:04 ----A---- C:\Windows\SYSWOW64\webio.dll
2016-09-16 11:07:04 ----A---- C:\Windows\system32\webio.dll
2016-09-16 10:54:55 ----A---- C:\Windows\SYSWOW64\wintrust.dll
2016-09-16 10:54:55 ----A---- C:\Windows\SYSWOW64\cryptsvc.dll
2016-09-16 10:54:55 ----A---- C:\Windows\SYSWOW64\cryptnet.dll
2016-09-16 10:54:55 ----A---- C:\Windows\system32\wintrust.dll
2016-09-16 10:54:55 ----A---- C:\Windows\system32\cryptsvc.dll
2016-09-16 10:54:55 ----A---- C:\Windows\system32\cryptnet.dll
2016-09-16 10:54:54 ----A---- C:\Windows\SYSWOW64\msimsg.dll
2016-09-16 10:54:54 ----A---- C:\Windows\system32\msimsg.dll
2016-09-16 10:54:53 ----A---- C:\Windows\SYSWOW64\wups.dll
2016-09-16 10:54:53 ----A---- C:\Windows\system32\appinfo.dll
2016-09-16 10:54:52 ----A---- C:\Windows\SYSWOW64\msiexec.exe
2016-09-16 10:54:52 ----A---- C:\Windows\system32\WinSetupUI.dll
2016-09-16 10:54:52 ----A---- C:\Windows\system32\msiexec.exe
2016-09-16 10:54:52 ----A---- C:\Windows\system32\consent.exe
2016-09-16 10:54:50 ----A---- C:\Windows\SYSWOW64\olepro32.dll
2016-09-16 10:54:50 ----A---- C:\Windows\system32\wups2.dll
2016-09-16 10:54:50 ----A---- C:\Windows\system32\wups.dll
2016-09-16 10:54:50 ----A---- C:\Windows\system32\wu.upgrade.ps.dll
2016-09-16 10:54:49 ----A---- C:\Windows\SYSWOW64\msihnd.dll
2016-09-16 10:54:49 ----A---- C:\Windows\SYSWOW64\authui.dll
2016-09-16 10:54:49 ----A---- C:\Windows\SYSWOW64\asycfilt.dll
2016-09-16 10:54:49 ----A---- C:\Windows\system32\msihnd.dll
2016-09-16 10:54:49 ----A---- C:\Windows\system32\authui.dll
2016-09-16 10:54:49 ----A---- C:\Windows\system32\asycfilt.dll
2016-09-16 10:54:48 ----A---- C:\Windows\SYSWOW64\crypt32.dll
2016-09-16 10:54:48 ----A---- C:\Windows\SYSWOW64\bcryptprimitives.dll
2016-09-16 10:54:48 ----A---- C:\Windows\system32\drivers\cng.sys
2016-09-16 10:54:48 ----A---- C:\Windows\system32\crypt32.dll
2016-09-16 10:54:48 ----A---- C:\Windows\system32\bcryptprimitives.dll
2016-09-16 10:54:46 ----A---- C:\Windows\SYSWOW64\wuapp.exe
2016-09-16 10:54:46 ----A---- C:\Windows\system32\wuauclt.exe
2016-09-16 10:54:46 ----A---- C:\Windows\system32\wuapp.exe
2016-09-16 10:54:45 ----A---- C:\Windows\SYSWOW64\wuwebv.dll
2016-09-16 10:54:45 ----A---- C:\Windows\SYSWOW64\wudriver.dll
2016-09-16 10:54:45 ----A---- C:\Windows\SYSWOW64\msi.dll
2016-09-16 10:54:45 ----A---- C:\Windows\system32\wuwebv.dll
2016-09-16 10:54:45 ----A---- C:\Windows\system32\wudriver.dll
2016-09-16 10:54:45 ----A---- C:\Windows\system32\msi.dll
2016-09-16 10:54:44 ----A---- C:\Windows\SYSWOW64\wuapi.dll
2016-09-16 10:54:44 ----A---- C:\Windows\system32\wucltux.dll
2016-09-16 10:54:44 ----A---- C:\Windows\system32\wuaueng.dll
2016-09-16 10:54:44 ----A---- C:\Windows\system32\wuapi.dll
2016-09-16 10:44:10 ----D---- C:\58fd13cf3409b3ee94
2016-09-16 10:42:36 ----D---- C:\ProgramData\Adobe
2016-09-16 10:37:53 ----D---- C:\Program Files\DIFX
2016-09-16 10:37:50 ----D---- C:\Program Files\Lenovo
2016-09-16 10:37:50 ----A---- C:\Windows\system32\LenovoSDKEmSubSystem.dll
2016-09-16 10:37:50 ----A---- C:\Windows\system32\drivers\LhdX64.sys
2016-09-16 10:37:19 ----D---- C:\ProgramData\Downloaded Installations
2016-09-16 10:30:55 ----HD---- C:\Windows\system32\WLANProfiles
2016-09-16 10:30:46 ----D---- C:\Users\Jarka\AppData\Roaming\Intel
2016-09-16 10:30:39 ----D---- C:\ProgramData\Roaming
2016-09-16 10:24:59 ----D---- C:\Windows\SYSWOW64\sda
2016-09-16 10:24:43 ----A---- C:\Windows\SYSWOW64\RsCRIcon.dll
2016-09-16 10:24:43 ----A---- C:\Windows\system32\RtCRX64.dll
2016-09-16 10:24:43 ----A---- C:\Windows\system32\drivers\RtsP2Stor.sys
2016-09-16 10:22:32 ----A---- C:\Windows\SYSWOW64\RtCamX.dll
2016-09-16 10:22:32 ----A---- C:\Windows\SYSWOW64\RsDecode.dll
2016-09-16 10:22:32 ----A---- C:\Windows\system32\RtCamX64.dll
2016-09-16 10:22:32 ----A---- C:\Windows\system32\drivers\RtsUVC.sys
2016-09-16 10:22:32 ----A---- C:\Windows\RtCamU64.exe
2016-09-16 10:17:56 ----D---- C:\Program Files (x86)\Dolby Advanced Audio v2
2016-09-16 10:17:40 ----A---- C:\Windows\system32\drivers\SAMSFPA.DAT
2016-09-16 10:17:37 ----D---- C:\Windows\system32\DAX2
2016-09-16 10:17:34 ----D---- C:\Windows\SYSWOW64\RTCOM
2016-09-16 10:17:34 ----D---- C:\Program Files\Realtek
2016-09-16 10:17:09 ----D---- C:\Windows\Panther
2016-09-16 10:16:34 ----A---- C:\Windows\system32\SRSWOW64.dll
2016-09-16 10:16:34 ----A---- C:\Windows\system32\SRSTSX64.dll
2016-09-16 10:16:34 ----A---- C:\Windows\system32\SRSTSH64.dll
2016-09-16 10:16:34 ----A---- C:\Windows\system32\SRSHP64.dll
2016-09-16 10:16:33 ----A---- C:\Windows\SYSWOW64\SFCOM.dll
2016-09-16 10:16:33 ----A---- C:\Windows\system32\SFSS_APO.dll
2016-09-16 10:16:33 ----A---- C:\Windows\system32\SFNHK64.dll
2016-09-16 10:16:33 ----A---- C:\Windows\system32\SFCOM64.dll
2016-09-16 10:16:33 ----A---- C:\Windows\system32\SFAPO64.dll
2016-09-16 10:16:33 ----A---- C:\Windows\system32\drivers\rtvienna.dat
2016-09-16 10:16:32 ----A---- C:\Windows\system32\RtPgEx64.dll
2016-09-16 10:16:32 ----A---- C:\Windows\system32\RtlCPAPI64.dll
2016-09-16 10:16:31 ----A---- C:\Windows\system32\RtkCoLDR64.dll
2016-09-16 10:16:31 ----A---- C:\Windows\system32\RtkCfg64.dll
2016-09-16 10:16:31 ----A---- C:\Windows\system32\RtkApi64.dll
2016-09-16 10:16:31 ----A---- C:\Windows\system32\RTEEP64A.dll
2016-09-16 10:16:31 ----A---- C:\Windows\system32\RTEEL64A.dll
2016-09-16 10:16:31 ----A---- C:\Windows\system32\RTEEG64A.dll
2016-09-16 10:16:31 ----A---- C:\Windows\system32\RTEED64A.dll
2016-09-16 10:16:31 ----A---- C:\Windows\system32\RtDataProc64.dll
2016-09-16 10:16:31 ----A---- C:\Windows\system32\RTCOM64.dll
2016-09-16 10:16:31 ----A---- C:\Windows\system32\RP3DHT64.dll
2016-09-16 10:16:31 ----A---- C:\Windows\system32\RP3DAA64.dll
2016-09-16 10:16:31 ----A---- C:\Windows\system32\RltkAPO64.dll
2016-09-16 10:16:31 ----A---- C:\Windows\system32\drivers\RTKVHD64.sys
2016-09-16 10:16:31 ----A---- C:\Windows\system32\drivers\RTAIODAT.DAT
2016-09-16 10:16:29 ----A---- C:\Windows\system32\RCoRes64.dat
2016-09-16 10:16:29 ----A---- C:\Windows\system32\RCoInstII64.dll
2016-09-16 10:16:29 ----A---- C:\Windows\system32\R4EEP64A.dll
2016-09-16 10:16:29 ----A---- C:\Windows\system32\R4EEL64A.dll
2016-09-16 10:16:29 ----A---- C:\Windows\system32\R4EEG64A.dll
2016-09-16 10:16:29 ----A---- C:\Windows\system32\R4EED64A.dll
2016-09-16 10:16:29 ----A---- C:\Windows\system32\R4EEA64A.dll
2016-09-16 10:16:28 ----A---- C:\Windows\system32\MaxxVolumeSDAPO.dll
2016-09-16 10:16:28 ----A---- C:\Windows\system32\MaxxAudioEQ64.dll
2016-09-16 10:16:27 ----A---- C:\Windows\system32\MaxxAudioAPO30.dll
2016-09-16 10:16:27 ----A---- C:\Windows\system32\MaxxAudioAPO20.dll
2016-09-16 10:16:27 ----A---- C:\Windows\system32\HiFiDAX2API.dll
2016-09-16 10:16:26 ----A---- C:\Windows\system32\FMAPO64.dll
2016-09-16 10:16:25 ----A---- C:\Windows\system32\DTSVoiceClarityDLL64.dll
2016-09-16 10:16:25 ----A---- C:\Windows\system32\DTSSymmetryDLL64.dll
2016-09-16 10:16:25 ----A---- C:\Windows\system32\DTSS2SpeakerDLL64.dll
2016-09-16 10:16:25 ----A---- C:\Windows\system32\DTSS2HeadphoneDLL64.dll
2016-09-16 10:16:25 ----A---- C:\Windows\system32\DTSNeoPCDLL64.dll
2016-09-16 10:16:25 ----A---- C:\Windows\system32\DTSLimiterDLL64.dll
2016-09-16 10:16:25 ----A---- C:\Windows\system32\DTSLFXAPO64.dll
2016-09-16 10:16:25 ----A---- C:\Windows\system32\DTSGFXAPONS64.dll
2016-09-16 10:16:25 ----A---- C:\Windows\system32\DTSGFXAPO64.dll
2016-09-16 10:16:25 ----A---- C:\Windows\system32\DTSGainCompensatorDLL64.dll
2016-09-16 10:16:25 ----A---- C:\Windows\system32\DTSBoostDLL64.dll
2016-09-16 10:16:25 ----A---- C:\Windows\system32\DTSBassEnhancementDLL64.dll
2016-09-16 10:16:25 ----A---- C:\Windows\system32\DolbyDAX2APOv211.dll
2016-09-16 10:16:25 ----A---- C:\Windows\system32\DolbyDAX2APOProp.dll
2016-09-16 10:16:25 ----A---- C:\Windows\system32\DDPP64AF3.dll
2016-09-16 10:16:25 ----A---- C:\Windows\system32\DDPP64A.dll
2016-09-16 10:16:25 ----A---- C:\Windows\system32\DDPO64AF3.dll
2016-09-16 10:16:25 ----A---- C:\Windows\system32\DDPO64A.dll
2016-09-16 10:16:25 ----A---- C:\Windows\system32\DDPD64AF3.dll
2016-09-16 10:16:25 ----A---- C:\Windows\system32\DDPD64A.dll
2016-09-16 10:16:25 ----A---- C:\Windows\system32\DDPA64F3.dll
2016-09-16 10:16:21 ----A---- C:\Windows\system32\DDPA64.dll
2016-09-16 10:16:21 ----A---- C:\Windows\system32\CONEQMSAPOGUILibrary.dll
2016-09-16 10:16:21 ----A---- C:\Windows\system32\AERTAR64.dll
2016-09-16 10:16:21 ----A---- C:\Windows\system32\AERTAC64.dll
2016-09-16 10:16:05 ----HD---- C:\Program Files (x86)\Temp
2016-09-16 10:16:05 ----A---- C:\Windows\RtlExUpd.dll
2016-09-16 10:11:44 ----A---- C:\Windows\SYSWOW64\OpenCL.DLL
2016-09-16 10:11:44 ----A---- C:\Windows\system32\OpenCL.DLL
2016-09-16 10:10:51 ----A---- C:\Windows\system32\{EC94D02F-D200-4428-9531-05AF7F9799CB}.bat
2016-09-16 10:10:51 ----A---- C:\Windows\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2016-09-16 10:08:34 ----A---- C:\Windows\system32\igfxCoIn_v4279.dll
2016-09-16 10:08:33 ----A---- C:\Windows\system32\igfxLHM.dll
2016-09-16 10:08:33 ----A---- C:\Windows\system32\igfxHK.exe
2016-09-16 10:08:33 ----A---- C:\Windows\system32\igfxEM.exe
2016-09-16 10:08:33 ----A---- C:\Windows\system32\igfxDI.dll
2016-09-16 10:08:33 ----A---- C:\Windows\system32\igfxDH.dll
2016-09-16 10:08:31 ----A---- C:\Windows\system32\igfxCUIService.exe
2016-09-16 10:08:28 ----A---- C:\Windows\system32\igdumdim64.dll
2016-09-16 10:08:19 ----A---- C:\Windows\system32\igd10iumd64.dll
2016-09-16 10:08:17 ----A---- C:\Windows\system32\igc64.dll
2016-09-16 10:05:23 ----D---- C:\Users\Jarka\AppData\Roaming\GHISLER
2016-09-16 10:04:28 ----D---- C:\Users\Jarka\AppData\Roaming\ESET
2016-09-16 09:54:48 ----D---- C:\Program Files\Synaptics
2016-09-16 09:54:19 ----A---- C:\Windows\system32\SynTPCo20.dll
2016-09-16 09:54:19 ----A---- C:\Windows\system32\SynTPAPI.dll
2016-09-16 09:54:19 ----A---- C:\Windows\system32\drivers\SynTP.sys
2016-09-16 09:54:18 ----A---- C:\Windows\SYSWOW64\SynCom.dll
2016-09-16 09:54:18 ----A---- C:\Windows\system32\SynCOM.dll
2016-09-16 09:53:33 ----D---- C:\ProgramData\Validity
2016-09-16 09:50:25 ----D---- C:\Program Files (x86)\Lenovo
2016-09-16 09:49:55 ----D---- C:\ProgramData\Lenovo
2016-09-16 09:47:40 ----A---- C:\Windows\system32\drivers\USB3Ver.dll
2016-09-16 09:47:37 ----D---- C:\Intel
2016-09-16 09:47:33 ----A---- C:\Windows\system32\drivers\iusb3xhc.sys
2016-09-16 09:47:33 ----A---- C:\Windows\system32\drivers\iusb3hub.sys
2016-09-16 09:46:12 ----A---- C:\Windows\system32\RTNUninst64.dll
2016-09-16 09:46:12 ----A---- C:\Windows\system32\RtNicProp64.dll
2016-09-16 09:46:12 ----A---- C:\Windows\system32\drivers\Rt64win7.sys
2016-09-16 09:46:08 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2016-09-16 09:46:08 ----D---- C:\Program Files (x86)\Realtek
2016-09-16 09:45:32 ----D---- C:\Program Files (x86)\Intel
2016-09-16 09:43:31 ----D---- C:\Users\Jarka\AppData\Roaming\Intel Corporation
2016-09-16 09:43:26 ----D---- C:\ProgramData\Intel
2016-09-16 09:41:49 ----D---- C:\Program Files\Intel
2016-09-16 09:41:46 ----D---- C:\ProgramData\Package Cache
2016-09-16 09:28:34 ----D---- C:\Users\Jarka\AppData\Roaming\Adobe
2016-09-16 09:28:25 ----D---- C:\Users\Jarka\AppData\Roaming\Identities
2016-09-16 09:27:58 ----SD---- C:\Users\Jarka\AppData\Roaming\Microsoft
2016-09-16 09:27:58 ----D---- C:\Users\Jarka\AppData\Roaming\Media Center Programs
2016-09-16 09:27:52 ----SHD---- C:\ProgramData\Šablony
2016-09-16 09:27:52 ----SHD---- C:\ProgramData\Plocha
2016-09-16 09:27:52 ----SHD---- C:\ProgramData\Oblíbené položky
2016-09-16 09:27:52 ----SHD---- C:\ProgramData\Nabídka Start
2016-09-16 09:27:52 ----SHD---- C:\ProgramData\Dokumenty
2016-09-16 09:27:52 ----SHD---- C:\ProgramData\Data aplikací
2016-09-16 09:18:25 ----D---- C:\Windows\Prefetch
2016-09-16 09:17:36 ----SHD---- C:\System Volume Information

======List of files/folders modified in the last 1 month======

2016-09-19 19:49:09 ----D---- C:\Windows\inf
2016-09-19 19:49:09 ----D---- C:\Windows
2016-09-19 19:48:16 ----D---- C:\Windows\System32
2016-09-19 19:48:08 ----D---- C:\Windows\Temp
2016-09-19 19:47:21 ----D---- C:\Windows\system32\config
2016-09-19 19:46:47 ----HD---- C:\ProgramData
2016-09-19 18:54:45 ----A---- C:\Windows\system32\PerfStringBackup.INI
2016-09-19 16:37:29 ----D---- C:\Windows\system32\Tasks
2016-09-19 16:37:26 ----D---- C:\Windows\system32\drivers
2016-09-19 16:31:19 ----D---- C:\Windows\debug
2016-09-19 16:26:25 ----RD---- C:\Program Files
2016-09-19 15:41:01 ----D---- C:\Windows\system32\DriverStore
2016-09-19 15:40:57 ----SHD---- C:\Windows\Installer
2016-09-19 10:20:55 ----RD---- C:\Program Files (x86)
2016-09-19 09:52:23 ----D---- C:\Windows\Microsoft.NET
2016-09-19 08:08:23 ----D---- C:\Windows\SYSWOW64\wbem
2016-09-19 08:00:25 ----D---- C:\Windows\Tasks
2016-09-19 06:53:46 ----D---- C:\Windows\system32\WinBioDatabase
2016-09-19 06:53:46 ----D---- C:\Windows\system32\drivers\etc
2016-09-19 06:53:45 ----RSD---- C:\Windows\Media
2016-09-19 06:53:44 ----D---- C:\Windows\SYSWOW64\zh-TW
2016-09-19 06:53:44 ----D---- C:\Windows\SYSWOW64\zh-HK
2016-09-19 06:53:44 ----D---- C:\Windows\SYSWOW64\zh-CN
2016-09-19 06:53:44 ----D---- C:\Windows\SYSWOW64\tr-TR
2016-09-19 06:53:44 ----D---- C:\Windows\SYSWOW64\sv-SE
2016-09-19 06:53:44 ----D---- C:\Windows\SYSWOW64\ru-RU
2016-09-19 06:53:44 ----D---- C:\Windows\SYSWOW64\pt-PT
2016-09-19 06:53:44 ----D---- C:\Windows\SYSWOW64\pt-BR
2016-09-19 06:53:44 ----D---- C:\Windows\SYSWOW64\pl-PL
2016-09-19 06:53:44 ----D---- C:\Windows\SYSWOW64\nl-NL
2016-09-19 06:53:44 ----D---- C:\Windows\SYSWOW64\nb-NO
2016-09-19 06:53:44 ----D---- C:\Windows\SYSWOW64\migration
2016-09-19 06:53:43 ----D---- C:\Windows\SYSWOW64\ko-KR
2016-09-19 06:53:43 ----D---- C:\Windows\SYSWOW64\ja-JP
2016-09-19 06:53:43 ----D---- C:\Windows\SYSWOW64\it-IT
2016-09-19 06:53:43 ----D---- C:\Windows\SYSWOW64\hu-HU
2016-09-19 06:53:42 ----D---- C:\Windows\SYSWOW64\fr-FR
2016-09-19 06:53:42 ----D---- C:\Windows\SYSWOW64\fi-FI
2016-09-19 06:53:42 ----D---- C:\Windows\SYSWOW64\es-ES
2016-09-19 06:53:42 ----D---- C:\Windows\SYSWOW64\en-US
2016-09-19 06:53:42 ----D---- C:\Windows\SYSWOW64\el-GR
2016-09-19 06:53:42 ----D---- C:\Windows\SYSWOW64\drivers
2016-09-19 06:53:42 ----D---- C:\Windows\SYSWOW64\de-DE
2016-09-19 06:53:42 ----D---- C:\Windows\SYSWOW64\da-DK
2016-09-19 06:53:42 ----D---- C:\Windows\SYSWOW64\cs-CZ
2016-09-19 06:53:42 ----D---- C:\Windows\SysWOW64
2016-09-19 06:53:42 ----D---- C:\Windows\system32\zh-TW
2016-09-19 06:53:42 ----D---- C:\Windows\system32\zh-HK
2016-09-19 06:53:42 ----D---- C:\Windows\system32\zh-CN
2016-09-19 06:53:42 ----D---- C:\Windows\system32\tr-TR
2016-09-19 06:53:42 ----D---- C:\Windows\system32\sv-SE
2016-09-19 06:53:41 ----D---- C:\Windows\system32\ru-RU
2016-09-19 06:53:41 ----D---- C:\Windows\system32\pt-PT
2016-09-19 06:53:41 ----D---- C:\Windows\system32\pt-BR
2016-09-19 06:53:41 ----D---- C:\Windows\system32\pl-PL
2016-09-19 06:53:41 ----D---- C:\Windows\system32\nl-NL
2016-09-19 06:53:41 ----D---- C:\Windows\system32\nb-NO
2016-09-19 06:53:41 ----D---- C:\Windows\system32\migration
2016-09-19 06:53:41 ----D---- C:\Windows\system32\ko-KR
2016-09-19 06:53:41 ----D---- C:\Windows\system32\ja-JP
2016-09-19 06:53:41 ----D---- C:\Windows\system32\it-IT
2016-09-19 06:53:41 ----D---- C:\Windows\system32\hu-HU
2016-09-19 06:53:41 ----D---- C:\Windows\system32\fr-FR
2016-09-19 06:53:41 ----D---- C:\Windows\system32\fi-FI
2016-09-19 06:53:41 ----D---- C:\Windows\system32\es-ES
2016-09-19 06:53:41 ----D---- C:\Windows\system32\en-US
2016-09-19 06:53:41 ----D---- C:\Windows\system32\el-GR
2016-09-19 06:53:41 ----D---- C:\Windows\system32\drivers\cs-CZ
2016-09-19 06:53:41 ----D---- C:\Windows\system32\de-DE
2016-09-19 06:53:41 ----D---- C:\Windows\system32\da-DK
2016-09-19 06:53:41 ----D---- C:\Windows\system32\cs-CZ
2016-09-19 06:53:41 ----D---- C:\Windows\system32\CodeIntegrity
2016-09-19 06:53:41 ----D---- C:\Windows\PolicyDefinitions
2016-09-19 06:53:40 ----SD---- C:\ProgramData\Microsoft
2016-09-19 06:53:40 ----RSD---- C:\Windows\assembly
2016-09-19 06:53:40 ----D---- C:\Program Files\Common Files\Microsoft Shared
2016-09-19 06:53:40 ----D---- C:\Program Files\Common Files
2016-09-19 06:53:40 ----D---- C:\Program Files (x86)\Common Files
2016-09-19 06:53:39 ----D---- C:\Windows\system32\Recovery
2016-09-18 20:01:35 ----SHD---- C:\$Recycle.Bin
2016-09-18 19:44:33 ----A---- C:\Windows\system32\MpSigStub.exe
2016-09-18 17:30:55 ----D---- C:\Windows\registration
2016-09-18 16:16:13 ----D---- C:\Windows\Logs
2016-09-18 04:19:22 ----D---- C:\Windows\winsxs
2016-09-17 23:58:24 ----D---- C:\Windows\rescache
2016-09-17 22:31:55 ----D---- C:\Windows\Downloaded Program Files
2016-09-17 21:44:13 ----RD---- C:\Users
2016-09-17 17:22:16 ----D---- C:\Windows\SYSWOW64\config
2016-09-17 09:35:34 ----D---- C:\Windows\AppCompat
2016-09-17 09:35:33 ----SD---- C:\Windows\system32\GWX
2016-09-17 08:35:11 ----D---- C:\Windows\system32\catroot
2016-09-17 08:18:28 ----RSD---- C:\Windows\Fonts
2016-09-17 08:14:46 ----D---- C:\Windows\system32\wfp
2016-09-17 08:14:46 ----D---- C:\Windows\system32\wbem
2016-09-17 08:14:45 ----D---- C:\Windows\system32\Boot
2016-09-17 08:12:27 ----D---- C:\Windows\SYSWOW64\Setup
2016-09-17 08:12:27 ----D---- C:\Windows\SYSWOW64\ras
2016-09-17 08:12:27 ----D---- C:\Windows\SYSWOW64\icsxml
2016-09-17 08:12:27 ----D---- C:\Windows\SYSWOW64\drivers\cs-CZ
2016-09-17 08:12:27 ----D---- C:\Windows\SYSWOW64\Dism
2016-09-17 08:12:27 ----D---- C:\Windows\system32\Setup
2016-09-17 08:12:27 ----D---- C:\Windows\system32\ras
2016-09-17 08:12:27 ----D---- C:\Windows\system32\oobe
2016-09-17 08:12:26 ----D---- C:\Windows\system32\icsxml
2016-09-17 08:12:26 ----D---- C:\Windows\system32\Dism
2016-09-17 08:12:26 ----D---- C:\Windows\system32\AdvancedInstallers
2016-09-17 08:12:25 ----D---- C:\Windows\L2Schemas
2016-09-17 08:12:25 ----D---- C:\Windows\ehome
2016-09-17 08:12:25 ----D---- C:\Windows\cs-CZ
2016-09-17 08:12:25 ----D---- C:\Windows\AppPatch
2016-09-17 08:12:25 ----D---- C:\Windows\addins
2016-09-17 08:12:25 ----D---- C:\Program Files\Windows Photo Viewer
2016-09-17 08:12:25 ----D---- C:\Program Files\Windows Media Player
2016-09-17 08:12:25 ----D---- C:\Program Files\Windows Mail
2016-09-17 08:12:25 ----D---- C:\Program Files\Windows Defender
2016-09-17 08:12:25 ----D---- C:\Program Files\DVD Maker
2016-09-17 08:12:25 ----D---- C:\Program Files\Common Files\System
2016-09-17 08:12:25 ----D---- C:\Program Files (x86)\Windows Photo Viewer
2016-09-17 08:12:25 ----D---- C:\Program Files (x86)\Windows Media Player
2016-09-17 08:12:25 ----D---- C:\Program Files (x86)\Windows Mail
2016-09-17 08:12:25 ----D---- C:\Program Files (x86)\Windows Defender
2016-09-17 08:11:38 ----D---- C:\Windows\SYSWOW64\XPSViewer
2016-09-17 08:11:37 ----D---- C:\Windows\SYSWOW64\MUI
2016-09-17 08:11:34 ----D---- C:\Windows\system32\spp
2016-09-17 08:11:33 ----D---- C:\Windows\system32\MUI
2016-09-17 08:11:24 ----D---- C:\Windows\servicing
2016-09-17 08:11:24 ----D---- C:\Windows\security
2016-09-17 08:05:50 ----D---- C:\Windows\system32\wdi
2016-09-16 16:03:04 ----D---- C:\Windows\system32\LogFiles
2016-09-16 11:28:37 ----D---- C:\Program Files\Internet Explorer
2016-09-16 11:28:36 ----D---- C:\Program Files (x86)\Internet Explorer
2016-09-16 11:28:31 ----D---- C:\Windows\system32\appraiser
2016-09-16 10:27:00 ----D---- C:\Windows\system32\drivers\UMDF
2016-09-16 10:25:37 ----D---- C:\Windows\system32\WinBioPlugIns
2016-09-16 10:22:49 ----D---- C:\Windows\twain_32
2016-09-16 10:02:38 ----SD---- C:\Windows\system32\Microsoft
2016-09-16 09:43:35 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI
2016-09-16 09:43:12 ----D---- C:\Windows\system32\restore
2016-09-16 09:27:52 ----D---- C:\Program Files\Windows NT
2016-09-16 09:23:23 ----D---- C:\Windows\system32\sysprep

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 edevmon;edevmon; C:\Windows\system32\DRIVERS\edevmon.sys [2016-08-08 209544]
R0 iaStorA;iaStorA; C:\Windows\system32\DRIVERS\iaStorA.sys [2015-07-24 1455552]
R0 iaStorF;iaStorF; C:\Windows\system32\DRIVERS\iaStorF.sys [2015-07-24 31144]
R0 LHDmgr;LHDmgr; C:\Windows\System32\DRIVERS\LhdX64.sys [2016-09-16 39008]
R0 RapportHades64;RapportHades64; C:\Windows\System32\Drivers\RapportHades64.sys [2016-09-12 236264]
R0 RapportKE64;RapportKE64; C:\Windows\System32\Drivers\RapportKE64.sys [2016-09-12 490792]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-21 213888]
R1 eamonm;eamonm; C:\Windows\system32\DRIVERS\eamonm.sys [2016-08-08 227456]
R1 ehdrv;ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [2016-08-08 176288]
R1 epfw;epfw; C:\Windows\system32\DRIVERS\epfw.sys [2016-08-08 76456]
R1 EpfwLWF;ESET Personal Firewall; C:\Windows\system32\DRIVERS\EpfwLWF.sys [2016-08-08 59560]
R1 epfwwfp;epfwwfp; C:\Windows\system32\DRIVERS\epfwwfp.sys [2016-08-08 91816]
R1 HWiNFO32;HWiNFO32/64 Kernel Driver; \??\C:\Windows\SysWOW64\drivers\HWiNFO64A.SYS [2016-09-17 27552]
R1 RapportCerberus_1609053;RapportCerberus_1609053; \??\C:\ProgramData\Trusteer\Rapport\store\exts\RapportCerberus\baseline\RapportCerberus64_1609053.sys [2016-09-17 1181672]
R1 RapportEI64;RapportEI64; \??\C:\Program Files (x86)\Trusteer\Rapport\bin\x64\RapportEI64.sys [2016-09-12 567336]
R1 RapportPG64;RapportPG64; \??\C:\Program Files (x86)\Trusteer\Rapport\bin\x64\RapportPG64.sys [2016-09-12 548968]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 ekbdflt;ekbdflt; C:\Windows\system32\DRIVERS\ekbdflt.sys [2016-08-08 48776]
R3 ACPIVPC;Lenovo Virtual Power Controller Driver; C:\Windows\system32\DRIVERS\AcpiVpc.sys [2016-09-17 34552]
R3 BthEnum;Ovladač pro Bluetooth Request Block; C:\Windows\system32\DRIVERS\BthEnum.sys [2009-07-14 41984]
R3 BthPan;Zařízení Bluetooth (síť PAN); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
R3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2016-03-19 80384]
R3 btmaux;Intel Bluetooth Auxiliary Service; C:\Windows\system32\DRIVERS\btmaux.sys [2015-05-12 141800]
R3 btmhsf;btmhsf; C:\Windows\system32\DRIVERS\btmhsf.sys [2015-01-13 1448248]
R3 ibtusb;Aplikace Intel(R) Wireless Bluetooth(R); C:\Windows\system32\DRIVERS\ibtusb.sys [2015-08-07 257264]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys [2016-01-20 7876072]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2015-09-17 4603136]
R3 IntcDAud;Intel(R) Display Audio; C:\Windows\system32\DRIVERS\IntcDAud.sys [2015-12-08 481032]
R3 iusb3hub;Ovladač rozbočovače Intel(R) USB 3.0; C:\Windows\system32\DRIVERS\iusb3hub.sys [2015-09-04 394992]
R3 iusb3xhc;Ovladač rozšiřitelného hostitelského řadiče Intel(R) USB 3.0; C:\Windows\system32\DRIVERS\iusb3xhc.sys [2015-09-04 805616]
R3 MEIx64;Intel(R) Management Engine Interface ; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [2015-07-07 178976]
R3 NETwNs64;___ Ovladač adaptéru Intel(R) Wireless pro systém Windows 7 64 Bit; C:\Windows\system32\DRIVERS\Netwsw04.sys [2016-07-24 3441424]
R3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
R3 RSP2STOR;Realtek PCIE CardReader Driver - P2; C:\Windows\system32\DRIVERS\RtsP2Stor.sys [2015-06-01 301784]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2015-05-19 986368]
R3 rtsuvc;Lenovo EasyCamera; C:\Windows\system32\DRIVERS\rtsuvc.sys [2015-06-11 3059416]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2015-09-15 555176]
R3 Tpm;Čip TPM; C:\Windows\system32\drivers\tpm.sys [2016-03-19 147904]
R3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\Windows\system32\DRIVERS\vwifimp.sys [2009-07-14 17920]
R3 WinUsb;WinUSB Driver; C:\Windows\system32\DRIVERS\WinUSB.sys [2010-11-21 41984]
S3 BTHPORT;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2016-03-19 552960]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2016-03-19 19456]
S3 semav6msr64;semav6msr64; \??\C:\Windows\system32\drivers\semav6msr64.sys [2015-06-04 21984]
S3 terminpt;Microsoft Remote Desktop Input Driver; C:\Windows\system32\drivers\terminpt.sys [2016-03-19 29696]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2016-03-19 56832]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2016-03-19 29696]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2016-09-08 82128]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET Smart Security\ekrn.exe [2016-08-05 2816032]
R2 EvtEng;Intel(R) PROSet/Wireless Event Log; C:\Program Files\Intel\WiFi\bin\EvtEng.exe [2016-06-23 642464]
R2 iBtSiva;Intel Bluetooth Service; C:\Program Files (x86)\Intel\Bluetooth\ibtsiva.exe [2015-09-04 149608]
R2 igfxCUIService2.0.0.0;Intel(R) HD Graphics Control Panel Service; C:\Windows\system32\igfxCUIService.exe [2016-01-20 365032]
R2 LenovoSetSvr;LenovoSetSvr; C:\Program Files\Lenovo\LenovoUtility\LenovoSetSvr.exe [2016-09-17 461640]
R2 RapportMgmtService;Rapport Management Service; C:\Program Files (x86)\Trusteer\Rapport\bin\RapportMgmtService.exe [2016-09-12 2387952]
R2 RegSrvc;Intel(R) PROSet/Wireless Registry Service; C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe [2016-06-23 157088]
R2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2016-07-25 324224]
R2 SUService;System Update; C:\Program Files (x86)\Lenovo\System Update\SUService.exe [2016-07-07 28544]
R2 SystemUsageReportSvc_WILLAMETTE;Intel(R) System Usage Report Service SystemUsageReportSvc_WILLAMETTE; C:\Program Files (x86)\Intel Driver Update Utility\SUR\SurSvc.exe [2016-06-08 117400]
R2 valWBFPolicyService;Synaptics FP WBF Policy Service; C:\Windows\system32\valWBFPolicyService.exe [2015-03-03 49968]
R2 ZeroConfigService;Intel(R) PROSet/Wireless Zero Configuration Service; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [2016-06-23 3732896]
S2 Bluetooth Device Monitor;Bluetooth Device Monitor; C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe [2015-01-27 1198456]
S2 Bluetooth Media Service;Bluetooth Media Service; C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe [2015-05-06 1714216]
S2 Bluetooth OBEX Service;Bluetooth OBEX Service; C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe [2015-01-27 1161592]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2016-02-03 105144]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2016-02-03 125112]
S2 ESRV_SVC_WILLAMETTE;Energy Server Service WILLAMETTE; C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\esrv_svc.exe [2016-06-08 416408]
S2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2015-07-22 18856]
S2 LiveUpdateSvc;LiveUpdate; C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe [2016-07-29 3046688]
S3 cphs;Intel(R) Content Protection HECI Service; C:\Windows\SysWow64\IntelCpHeciSvc.exe [2016-01-20 292840]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2016-09-01 114688]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2016-08-24 146888]
S3 USER_ESRV_SVC_WILLAMETTE;User Energy Server Service WILLAMETTE; C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\esrv_svc.exe [2016-06-08 416408]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2016-03-19 1255736]
S4 aspnet_state;ASP.NET State Service; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2016-02-03 51384]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2016-02-03 135848]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2016-02-03 135848]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2016-02-03 135848]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118269
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: pro Rudy, prosím o ko logu

#6 Příspěvek od Rudy »

Ještě to zkuste projet MBAM. Dejte log, předem nic nemažte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Uživatelský avatar
jaruneczka
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 417
Registrován: 09 čer 2008 11:45
Bydliště: Ostrava

Re: pro Rudy, prosím o ko logu

#7 Příspěvek od jaruneczka »

log mbam je o.k. čisté...

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118269
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: pro Rudy, prosím o ko logu

#8 Příspěvek od Rudy »

No, myslím, že to bude nějaký bug. Na netu nemohu k tom najít žádnou podrobnost. Kdyby to byl šmejd MBAM by ho našel. ještě je tu možnost proskenovat AVPTool: http://www.viry.cz/forum/viewtopic.php?f=29&t=58179 a smazat vše, co najde. Osobně si myslím, že ten klíč je cosi, co je regulérní a systém ho po restratu obnoví. Projevuje se to nějak negativně?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Uživatelský avatar
jaruneczka
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 417
Registrován: 09 čer 2008 11:45
Bydliště: Ostrava

Re: pro Rudy, prosím o ko logu

#9 Příspěvek od jaruneczka »

Kaspersky removal mi našel ihned po přinesení ze servisu 6 kusů, původních...: Win 32. trojan prikormka, eset mi však stále tvrdí, ze je to planý poplach, ač všechny byly v modulech ESS!!! udělám ho tedy, jinak ty win update i pro jiné aktualisace nejdou ani za boha..od pátku hledám, zkouším...

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118269
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: pro Rudy, prosím o ko logu

#10 Příspěvek od Rudy »

Tak možné to je, některé AV mohou být paranoidní. Fakt je, že jsem na netu žádný popis k tomu klíči nenašel. Takže nemohu říci, jestli je korektní, či ne. Vyložené varování, že je to šmejd jsem ale také nenašel.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Uživatelský avatar
jaruneczka
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 417
Registrován: 09 čer 2008 11:45
Bydliště: Ostrava

Re: pro Rudy, prosím o ko logu

#11 Příspěvek od jaruneczka »

jak jsem předpokládala, Trojani.ukraina...používají se v ukrain army...na Virus radar je o nich zmínka..posílám screen jednoho z nich jsou celkem 4, vždy v modulech Esetu, nejdou odstranit,nyní se KVRT zcela vypnul, na při s Esetem už nemám nervy!
http://leteckaposta.cz/586258094
http://leteckaposta.cz/451862377

Uživatelský avatar
jaruneczka
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 417
Registrován: 09 čer 2008 11:45
Bydliště: Ostrava

Re: pro Rudy, prosím o ko logu

#12 Příspěvek od jaruneczka »

jen doplním: po odebrání ESS a instalaci jiného AV, zmizely i Trojany.... :shock:
http://leteckaposta.cz/991787588

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118269
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: pro Rudy, prosím o ko logu

#13 Příspěvek od Rudy »

OK. Tak to nějakou dobu sledujte, jak se bude PC chovat. Po pár dnech můžeme provést nový sken.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Odpovědět