Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Prosím o kontrolu, blbne počítač

Nemáte v tuto chvíli žádný problém s pc a chcete se jen ujistit, že je vše v pořádku?
Vložte log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Odpovědět
Zpráva
Autor
wormik
Návštěvník
Návštěvník
Příspěvky: 12
Registrován: 17 srp 2015 10:55

Prosím o kontrolu, blbne počítač

#1 Příspěvek od wormik »

Dobrý deň, niekedy keď dohrám a vypnem online hru (CSGO, Rocket league a podobne), tak mi nechce načítať žiadnu webovú stránku ani v Opere ani v Chrome. Niekedy sa to po pár minútach napraví, inokedy musím reštartovať PC. Na inom zariadení mi pripojenie na Internet funguje bez problémov. Tiež sa mi zdá že Windows sa načítava dlhšie ako by mal.
Prikladám RSIT log a prosím o kontrolu.

Logfile of random's system information tool 1.10 (written by random/random)
Run by Roman at 2017-04-07 16:24:09
Microsoft Windows 7 Ultimate Service Pack 1
System drive C: has 143 GB (60%) free of 238 GB
Total RAM: 16327 MB (87% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 16:24:11, on 7. 4. 2017
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.18618)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\NVIDIA Corporation\NvContainer\nvcontainer.exe
C:\Windows\SysWOW64\muachost.exe
C:\Program Files (x86)\ASUS\AI Suite III\DIP4\DIPAwayMode\DipAwayMode.exe
C:\Program Files (x86)\3RVX-2.9.1\3RVX.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe
C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe
C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
C:\Program Files\trend micro\Roman.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe,
O1 - Hosts: ˙ţ127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O2 - BHO: Lync Click to Call BHO - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office15\URLREDIR.DLL
O2 - BHO: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\PROGRA~2\MICROS~1\Office15\GROOVEEX.DLL
O4 - HKLM\..\Run: [USB3MON] "C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [3RVX] C:\Program Files (x86)\3RVX-2.9.1\3RVX.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CtxfiReg] CTXFIREG.exe /FAIL1 (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CtxfiReg] CTXFIREG.exe /FAIL1 (User 'Default user')
O8 - Extra context menu item: E&xportovať do programu Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office15\EXCEL.EXE/3000
O8 - Extra context menu item: Od&oslať do programu OneNote - res://C:\PROGRA~1\MICROS~3\Office15\ONBttnIE.dll/105
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIE.dll
O9 - Extra button: Lync Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
O9 - Extra 'Tools' menuitem: Lync Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
O9 - Extra button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - Trusted Zone: *.line6.net
O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files (x86)\Microsoft Office\Office15\MSOSB.DLL
O18 - Filter hijack: text/xml - {807583E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\MSOXMLMF.DLL
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: ASUS Com Service (asComSvc) - Unknown owner - C:\Program Files (x86)\ASUS\AXSP\1.02.00\atkexComSvc.exe
O23 - Service: ASUS HM Com Service (asHmComSvc) - ASUSTeK Computer Inc. - C:\Program Files (x86)\ASUS\AAHM\1.00.22\aaHMSvc.exe
O23 - Service: AsusFanControlService - ASUSTeK Computer Inc. - C:\Program Files (x86)\ASUS\AsusFanControlService\1.06.13\AsusFanControlService.exe
O23 - Service: aswbIDSAgent - AVAST Software s.r.o. - C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Creative Audio Engine Licensing Service - Creative Labs - C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\CTAELicensing.exe
O23 - Service: Creative Audio Service (CTAudSvcService) - Creative Technology Ltd - C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe
O23 - Service: Dropbox Update Service (dbupdate) (dbupdate) - Dropbox, Inc. - C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
O23 - Service: Dropbox Update Service (dbupdatem) (dbupdatem) - Dropbox, Inc. - C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
O23 - Service: DbxSvc - Unknown owner - C:\Windows\system32\DbxSvc.exe (file missing)
O23 - Service: Disc Soft Lite Bus Service - Disc Soft Ltd - D:\Programy\DAEMON Tools Lite\DiscSoftBusService.exe
O23 - Service: EasyAntiCheat - EasyAntiCheat Ltd - C:\Windows\system32\EasyAntiCheat.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NIHardwareService - Native Instruments GmbH - C:\Program Files\Common Files\Native Instruments\Hardware\NIHardwareService.exe
O23 - Service: NVIDIA LocalSystem Container (NvContainerLocalSystem) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
O23 - Service: NVIDIA NetworkService Container (NvContainerNetworkService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
O23 - Service: NVIDIA Display Container LS (NVDisplay.ContainerLocalSystem) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
O23 - Service: NVIDIA Telemetry Container (NvTelemetryContainer) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - Riverbed Technology, Inc. - C:\Program Files (x86)\WinPcap\rpcapd.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: SwitchBoard - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O23 - Service: TeamViewer 11 (TeamViewer) - TeamViewer GmbH - C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 10610 bytes

======Listing Processes======



\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
winlogon.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs

"C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe"
C:\Windows\system32\svchost.exe -k GPSvcGroup
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
taskeng.exe {7EF2054D-05D0-4B2F-B461-7E88A88B3C22}
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Windows\System32\svchost.exe -k NetworkService
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files (x86)\ASUS\AXSP\1.02.00\atkexComSvc.exe"
"C:\Program Files (x86)\ASUS\AAHM\1.00.22\aaHMSvc.exe"
"C:\Program Files (x86)\ASUS\AsusFanControlService\1.06.13\AsusFanControlService.exe"
C:\Windows\system32\DbxSvc.exe
C:\Windows\System32\svchost.exe -k utcsvc
"C:\Program Files\Common Files\Native Instruments\Hardware\NIHardwareService.exe"
"C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe" -s NvContainerLocalSystem -f "C:\ProgramData\NVIDIA\NvContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\NvContainer\plugins\LocalSystem" -r -p 30000
"C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem" -r -p 30000
"C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe" -s NvTelemetryContainer -f "C:\ProgramData\NVIDIA\NvTelemetryContainer.log" -l 3 -d "C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\plugin"
C:\Windows\SysWOW64\PnkBstrA.exe
C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe -first
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe"
C:\Windows\system32\wbem\wmiprvse.exe
"taskhost.exe"
"C:\Program Files (x86)\NVIDIA Corporation\NvContainer\nvcontainer.exe" -f "C:\ProgramData\NVIDIA\NvContainerUser%d.log" -d "C:\Program Files (x86)\NVIDIA Corporation\NvContainer\plugins\User" -r -l 3 -p 30000 -c
"C:\Windows\system32\Dwm.exe"
taskeng.exe {7CBE6389-0686-443E-817F-5A4770CF0814}
C:\Windows\Explorer.EXE
C:\Windows\SysWOW64\muachost.exe
"C:\Program Files (x86)\ASUS\AI Suite III\DIP4\DIPAwayMode\DipAwayMode.exe"
"C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe" -s
"C:\Program Files (x86)\3RVX-2.9.1\3RVX.exe"
AvastUI.exe /nogui
"C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
"C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe"
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-0cf73947-d068-4b76-90b0-fec84785bcbd -SystemEventPortName:HostProcess-62859cd4-0b42-48ed-a8d2-10cd79280fdd -IoCancelEventPortName:HostProcess-212e8884-0f46-4a36-923a-55f19636d2fb -NonStateChangingEventPortName:HostProcess-60558657-bcb8-455e-b1bd-1888740fd3d9 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:1bcd7b95-4bcf-4b90-b851-a3b7d2f19503 -DeviceGroupId:
"C:\Program Files\NVIDIA Corporation\ShadowPlay\nvspcaps64.exe" -Embedding
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1"
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
"C:\Program Files\NVIDIA Corporation\ShadowPlay\nvsphelper64.exe"
"C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe"
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe" --type=renderer --disable-gpu-compositing --no-sandbox --primordial-pipe-token=F83D3D570C595E8239913253335F06E2 --lang=en-US --lang=en-US --log-file="C:\Users\Roman\AppData\Local\NVIDIA Corporation\NVIDIA Share\CefCache\debug.log" --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --enable-main-frame-before-activation --content-image-texture-target=0,0,3553;0,1,3553;0,2,3553;0,3,3553;0,4,3553;0,5,3553;0,6,3553;0,7,3553;0,8,3553;0,9,3553;0,10,3553;0,11,3553;0,12,3553;0,13,3553;0,14,3553;0,15,3553;1,0,3553;1,1,3553;1,2,3553;1,3,3553;1,4,3553;1,5,3553;1,6,3553;1,7,3553;1,8,3553;1,9,3553;1,10,3553;1,11,3553;1,12,3553;1,13,3553;1,14,3553;1,15,3553;2,0,3553;2,1,3553;2,2,3553;2,3,3553;2,4,3553;2,5,3553;2,6,3553;2,7,3553;2,8,3553;2,9,3553;2,10,3553;2,11,3553;2,12,3553;2,13,3553;2,14,3553;2,15,3553;3,0,3553;3,1,3553;3,2,3553;3,3,3553;3,4,3553;3,5,3553;3,6,3553;3,7,3553;3,8,3553;3,9,3553;3,10,3553;3,11,3553;3,12,3553;3,13,3553;3,14,3553;3,15,3553 --disable-accelerated-video-decode --disable-webrtc-hw-encoding --disable-gpu-compositing --service-request-channel-token=F83D3D570C595E8239913253335F06E2 --renderer-client-id=2 --mojo-platform-channel-handle=1484 /prefetch:1
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe" index.js
\??\C:\Windows\system32\conhost.exe "-11268428571880074412-1100785679-1262079821123209697110072796931448143926553932360
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
"C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe"
C:\Windows\system32\sppsvc.exe
taskeng.exe {357F4C70-A6BA-481A-BA8E-E32A4649165C}
C:\Windows\System32\svchost.exe -k WerSvcGroup
wmiadap.exe /F /T /R
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe3_ Global\UsGthrCtrlFltPipeMssGthrPipe3 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Windows\system32\SearchFilterHost.exe" 0 520 524 532 65536 528
"C:\Users\Roman\Desktop\RSITx64.exe"
C:\Windows\system32\DllHost.exe /Processid:{F9717507-6651-4EDB-BFF7-AE615179BCCF}

======Scheduled tasks folder======

C:\Windows\tasks\DropboxUpdateTaskMachineCore.job - C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe /c
C:\Windows\tasks\DropboxUpdateTaskMachineUA.job - C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe /ua /installsource scheduler

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Lync Browser Helper - C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2012-10-01 205416]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre1.8.0_121\bin\ssv.dll [2017-02-06 571456]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2017-04-03 895528]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~3\Office15\URLREDIR.DLL [2014-01-23 881880]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre1.8.0_121\bin\jp2ssv.dll [2017-02-06 234560]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Lync Browser Helper - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2014-01-21 153248]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2017-04-03 773920]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MICROS~1\Office15\URLREDIR.DLL [2014-01-21 707800]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft SkyDrive Pro Browser Helper - C:\PROGRA~2\MICROS~1\Office15\GROOVEEX.DLL [2014-01-21 1728216]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [2015-06-12 8484056]
"ShadowPlay"=C:\Windows\system32\nvspcap64.dll [2017-02-23 1880512]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvLaunch.exe [2017-04-03 213824]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"3RVX"=C:\Program Files (x86)\3RVX-2.9.1\3RVX.exe [2015-09-19 622592]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AdobeAAMUpdater-1.0]
C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2012-04-04 446392]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AdobeCS6ServiceManager]
C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe [2012-03-09 1073312]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\APSDaemon]
C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [2013-09-13 59720]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CAM]
C:\Program Files (x86)\NZXT\CAM\CAMLauncher.exe -autostart []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CCleaner Monitoring]
C:\Program Files\CCleaner\CCleaner64.exe [2016-08-26 8912088]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CTxfiHlp]
CTXFIHLP.EXE []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite Automount]
D:\Programy\DAEMON Tools Lite\DTAgent.exe [2015-11-18 4179288]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Dropbox]
C:\Program Files (x86)\Dropbox\Client\Dropbox.exe [2017-03-21 28065728]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
C:\Program Files (x86)\QuickTime\QTTask.exe [2015-12-09 421888]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Spotify]
C:\Users\Roman\AppData\Roaming\Spotify\Spotify.exe -autostart -minimized []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Spotify Web Helper]
C:\Users\Roman\AppData\Roaming\Spotify\SpotifyWebHelper.exe []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SwitchBoard]
C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\tvncontrol]
C:\Program Files\TightVNC\tvnserver.exe [2013-07-19 2179056]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^SteelSeries Engine 3.lnk]
C:\PROGRA~1\STEELS~1\STEELS~1\STEELS~1.EXE -dataPath=C:\ProgramData\SteelSeries\SteelSeries Engine 3 -dbEnv=production -auto=true []

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"USB3MON"=C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [2014-08-25 293872]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2016-12-12 587288]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MBAMService]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"SoftwareSASGeneration"=1

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"aux2"=wdmaud.drv
"wave5"=wdmaud.drv
"midi5"=wdmaud.drv
"mixer5"=wdmaud.drv
"wave7"=wdmaud.drv
"midi7"=wdmaud.drv
"mixer7"=wdmaud.drv
"aux3"=wdmaud.drv
"wave8"=wdmaud.drv
"midi8"=wdmaud.drv
"mixer8"=wdmaud.drv
"aux4"=wdmaud.drv
"wave9"=wdmaud.drv
"midi9"=wdmaud.drv
"mixer9"=wdmaud.drv
"aux5"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"aux6"=wdmaud.drv
"aux7"=wdmaud.drv
"VIDC.FPS1"=frapsv64.dll
"aux8"=wdmaud.drv
"aux9"=wdmaud.drv
"VIDC.RTV1"=rtvcvfw64.dll
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"wave6"=wdmaud.drv
"midi6"=wdmaud.drv
"mixer6"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 2 months======

2017-04-07 16:24:09 ----D---- C:\rsit
2017-04-07 16:11:54 ----D---- C:\ProgramData\SWCUTemp
2017-04-06 22:34:24 ----A---- C:\Windows\ntbtlog.txt
2017-04-03 17:05:55 ----A---- C:\Windows\SYSWOW64\wuwebv.dll
2017-04-03 17:05:55 ----A---- C:\Windows\SYSWOW64\wups.dll
2017-04-03 17:05:55 ----A---- C:\Windows\SYSWOW64\wudriver.dll
2017-04-03 17:05:55 ----A---- C:\Windows\SYSWOW64\wuapp.exe
2017-04-03 17:05:55 ----A---- C:\Windows\SYSWOW64\wuapi.dll
2017-04-03 17:05:55 ----A---- C:\Windows\SYSWOW64\win32spl.dll
2017-04-03 17:05:55 ----A---- C:\Windows\SYSWOW64\ucrtbase.dll
2017-04-03 17:05:55 ----A---- C:\Windows\SYSWOW64\tzres.dll
2017-04-03 17:05:55 ----A---- C:\Windows\SYSWOW64\samlib.dll
2017-04-03 17:05:55 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-utility-l1-1-0.dll
2017-04-03 17:05:55 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-time-l1-1-0.dll
2017-04-03 17:05:55 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-string-l1-1-0.dll
2017-04-03 17:05:55 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-stdio-l1-1-0.dll
2017-04-03 17:05:55 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-runtime-l1-1-0.dll
2017-04-03 17:05:55 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-process-l1-1-0.dll
2017-04-03 17:05:55 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-private-l1-1-0.dll
2017-04-03 17:05:55 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-multibyte-l1-1-0.dll
2017-04-03 17:05:55 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-math-l1-1-0.dll
2017-04-03 17:05:55 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-locale-l1-1-0.dll
2017-04-03 17:05:55 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-heap-l1-1-0.dll
2017-04-03 17:05:55 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-filesystem-l1-1-0.dll
2017-04-03 17:05:55 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-environment-l1-1-0.dll
2017-04-03 17:05:55 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-convert-l1-1-0.dll
2017-04-03 17:05:55 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-conio-l1-1-0.dll
2017-04-03 17:05:55 ----A---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l2-1-0.dll
2017-04-03 17:05:55 ----A---- C:\Windows\SYSWOW64\api-ms-win-core-timezone-l1-1-0.dll
2017-04-03 17:05:55 ----A---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-2-0.dll
2017-04-03 17:05:55 ----A---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-1.dll
2017-04-03 17:05:55 ----A---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-2-0.dll
2017-04-03 17:05:55 ----A---- C:\Windows\SYSWOW64\api-ms-win-core-file-l2-1-0.dll
2017-04-03 17:05:55 ----A---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-2-0.dll
2017-04-03 17:05:55 ----A---- C:\Windows\system32\wuwebv.dll
2017-04-03 17:05:55 ----A---- C:\Windows\system32\wups2.dll
2017-04-03 17:05:55 ----A---- C:\Windows\system32\wups.dll
2017-04-03 17:05:55 ----A---- C:\Windows\system32\wudriver.dll
2017-04-03 17:05:55 ----A---- C:\Windows\system32\wucltux.dll
2017-04-03 17:05:55 ----A---- C:\Windows\system32\wuaueng.dll
2017-04-03 17:05:55 ----A---- C:\Windows\system32\wuauclt.exe
2017-04-03 17:05:55 ----A---- C:\Windows\system32\wuapp.exe
2017-04-03 17:05:55 ----A---- C:\Windows\system32\wuapi.dll
2017-04-03 17:05:55 ----A---- C:\Windows\system32\wu.upgrade.ps.dll
2017-04-03 17:05:55 ----A---- C:\Windows\system32\WinSetupUI.dll
2017-04-03 17:05:55 ----A---- C:\Windows\system32\win32spl.dll
2017-04-03 17:05:55 ----A---- C:\Windows\system32\ucrtbase.dll
2017-04-03 17:05:55 ----A---- C:\Windows\system32\tzres.dll
2017-04-03 17:05:55 ----A---- C:\Windows\system32\samsrv.dll
2017-04-03 17:05:55 ----A---- C:\Windows\system32\samlib.dll
2017-04-03 17:05:55 ----A---- C:\Windows\system32\api-ms-win-crt-utility-l1-1-0.dll
2017-04-03 17:05:55 ----A---- C:\Windows\system32\api-ms-win-crt-time-l1-1-0.dll
2017-04-03 17:05:55 ----A---- C:\Windows\system32\api-ms-win-crt-string-l1-1-0.dll
2017-04-03 17:05:55 ----A---- C:\Windows\system32\api-ms-win-crt-stdio-l1-1-0.dll
2017-04-03 17:05:55 ----A---- C:\Windows\system32\api-ms-win-crt-runtime-l1-1-0.dll
2017-04-03 17:05:55 ----A---- C:\Windows\system32\api-ms-win-crt-process-l1-1-0.dll
2017-04-03 17:05:55 ----A---- C:\Windows\system32\api-ms-win-crt-private-l1-1-0.dll
2017-04-03 17:05:55 ----A---- C:\Windows\system32\api-ms-win-crt-multibyte-l1-1-0.dll
2017-04-03 17:05:55 ----A---- C:\Windows\system32\api-ms-win-crt-math-l1-1-0.dll
2017-04-03 17:05:55 ----A---- C:\Windows\system32\api-ms-win-crt-locale-l1-1-0.dll
2017-04-03 17:05:55 ----A---- C:\Windows\system32\api-ms-win-crt-heap-l1-1-0.dll
2017-04-03 17:05:55 ----A---- C:\Windows\system32\api-ms-win-crt-filesystem-l1-1-0.dll
2017-04-03 17:05:55 ----A---- C:\Windows\system32\api-ms-win-crt-environment-l1-1-0.dll
2017-04-03 17:05:55 ----A---- C:\Windows\system32\api-ms-win-crt-convert-l1-1-0.dll
2017-04-03 17:05:55 ----A---- C:\Windows\system32\api-ms-win-crt-conio-l1-1-0.dll
2017-04-03 17:05:55 ----A---- C:\Windows\system32\api-ms-win-core-xstate-l2-1-0.dll
2017-04-03 17:05:55 ----A---- C:\Windows\system32\api-ms-win-core-timezone-l1-1-0.dll
2017-04-03 17:05:55 ----A---- C:\Windows\system32\api-ms-win-core-synch-l1-2-0.dll
2017-04-03 17:05:55 ----A---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-1.dll
2017-04-03 17:05:55 ----A---- C:\Windows\system32\api-ms-win-core-localization-l1-2-0.dll
2017-04-03 17:05:55 ----A---- C:\Windows\system32\api-ms-win-core-file-l2-1-0.dll
2017-04-03 17:05:55 ----A---- C:\Windows\system32\api-ms-win-core-file-l1-2-0.dll
2017-04-03 16:28:46 ----A---- C:\Windows\system32\aswBoot.exe
2017-03-27 20:00:15 ----A---- C:\deriuz.txt
2017-03-27 02:25:40 ----D---- C:\Program Files\Microsoft.NET
2017-03-27 02:25:35 ----D---- C:\Program Files (x86)\Mozilla Firefox
2017-03-27 02:21:15 ----D---- C:\ProgramData\regid.1991-06.com.microsoft
2017-03-27 02:21:12 ----D---- C:\Program Files\Common Files\DESIGNER
2017-03-27 02:21:10 ----D---- C:\Windows\PCHEALTH
2017-03-27 02:20:53 ----D---- C:\Program Files\Microsoft Analysis Services
2017-03-27 02:20:50 ----D---- C:\Program Files (x86)\Microsoft Office
2017-03-27 02:20:42 ----RHD---- C:\MSOCache
2017-03-27 02:18:59 ----D---- C:\Program Files\Microsoft Office
2017-03-25 16:14:49 ----D---- C:\barber
2017-03-24 12:15:36 ----AD---- C:\Bakalárka
2017-03-21 09:49:25 ----A---- C:\Windows\SYSWOW64\nvStreaming.exe
2017-03-21 09:47:25 ----A---- C:\Windows\SYSWOW64\nvumdshim.dll
2017-03-21 09:47:25 ----A---- C:\Windows\SYSWOW64\nvptxJitCompiler.dll
2017-03-21 09:47:25 ----A---- C:\Windows\SYSWOW64\nvopencl.dll
2017-03-21 09:47:25 ----A---- C:\Windows\SYSWOW64\nvoglshim32.dll
2017-03-21 09:47:25 ----A---- C:\Windows\SYSWOW64\nvinit.dll
2017-03-21 09:47:25 ----A---- C:\Windows\SYSWOW64\NvIFROpenGL.dll
2017-03-21 09:47:25 ----A---- C:\Windows\SYSWOW64\NvIFR.dll
2017-03-21 09:47:25 ----A---- C:\Windows\SYSWOW64\NvFBC.dll
2017-03-21 09:47:25 ----A---- C:\Windows\SYSWOW64\nvfatbinaryLoader.dll
2017-03-21 09:47:25 ----A---- C:\Windows\SYSWOW64\nvEncodeAPI.dll
2017-03-21 09:47:25 ----A---- C:\Windows\SYSWOW64\nvd3dum.dll
2017-03-21 09:47:25 ----A---- C:\Windows\SYSWOW64\nvcuvid.dll
2017-03-21 09:47:25 ----A---- C:\Windows\SYSWOW64\nvcuda.dll
2017-03-21 09:47:25 ----A---- C:\Windows\system32\nvptxJitCompiler.dll
2017-03-21 09:47:25 ----A---- C:\Windows\system32\nvopencl.dll
2017-03-21 09:47:25 ----A---- C:\Windows\system32\nvoglv64.dll
2017-03-21 09:47:25 ----A---- C:\Windows\system32\nvoglshim64.dll
2017-03-21 09:47:25 ----A---- C:\Windows\system32\nvinitx.dll
2017-03-21 09:47:25 ----A---- C:\Windows\system32\NvIFROpenGL.dll
2017-03-21 09:47:25 ----A---- C:\Windows\system32\NvIFR64.dll
2017-03-21 09:47:25 ----A---- C:\Windows\system32\NvFBC64.dll
2017-03-21 09:47:25 ----A---- C:\Windows\system32\nvfatbinaryLoader.dll
2017-03-21 09:47:25 ----A---- C:\Windows\system32\nvEncodeAPI64.dll
2017-03-21 09:47:25 ----A---- C:\Windows\system32\nvdispgenco6437892.dll
2017-03-21 09:47:25 ----A---- C:\Windows\system32\nvdispco6437892.dll
2017-03-21 09:47:25 ----A---- C:\Windows\system32\nvd3dumx.dll
2017-03-21 09:47:25 ----A---- C:\Windows\system32\nvcuvid.dll
2017-03-21 09:47:25 ----A---- C:\Windows\system32\nvcuda.dll
2017-03-21 09:47:25 ----A---- C:\Windows\system32\nvcompiler.dll
2017-03-21 09:47:25 ----A---- C:\Windows\system32\drivers\nvlddmkm.sys
2017-03-21 09:47:24 ----A---- C:\Windows\SYSWOW64\nvcompiler.dll
2017-03-20 20:16:01 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2017-03-20 20:16:01 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2017-03-20 20:16:01 ----A---- C:\Windows\SYSWOW64\occache.dll
2017-03-20 20:16:01 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2017-03-20 20:16:01 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2017-03-20 20:16:01 ----A---- C:\Windows\SYSWOW64\inseng.dll
2017-03-20 20:16:01 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2017-03-20 20:16:01 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2017-03-20 20:16:01 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2017-03-20 20:16:01 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2017-03-20 20:16:01 ----A---- C:\Windows\system32\inseng.dll
2017-03-20 20:16:01 ----A---- C:\Windows\system32\iertutil.dll
2017-03-20 20:16:01 ----A---- C:\Windows\system32\iernonce.dll
2017-03-20 20:16:01 ----A---- C:\Windows\system32\ieetwproxystub.dll
2017-03-20 20:16:01 ----A---- C:\Windows\system32\ieetwcollector.exe
2017-03-20 20:16:01 ----A---- C:\Windows\system32\ie4uinit.exe
2017-03-20 20:16:00 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2017-03-20 20:16:00 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2017-03-20 20:16:00 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2017-03-20 20:16:00 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2017-03-20 20:16:00 ----A---- C:\Windows\SYSWOW64\jscript.dll
2017-03-20 20:16:00 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2017-03-20 20:16:00 ----A---- C:\Windows\SYSWOW64\ieui.dll
2017-03-20 20:16:00 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2017-03-20 20:16:00 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2017-03-20 20:16:00 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2017-03-20 20:16:00 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2017-03-20 20:16:00 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2017-03-20 20:16:00 ----A---- C:\Windows\system32\urlmon.dll
2017-03-20 20:16:00 ----A---- C:\Windows\system32\occache.dll
2017-03-20 20:16:00 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2017-03-20 20:16:00 ----A---- C:\Windows\system32\msfeeds.dll
2017-03-20 20:16:00 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2017-03-20 20:16:00 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2017-03-20 20:16:00 ----A---- C:\Windows\system32\iedkcs32.dll
2017-03-20 20:16:00 ----A---- C:\Windows\system32\dxtrans.dll
2017-03-20 20:15:59 ----A---- C:\Windows\SYSWOW64\wininet.dll
2017-03-20 20:15:59 ----A---- C:\Windows\SYSWOW64\webcheck.dll
2017-03-20 20:15:59 ----A---- C:\Windows\SYSWOW64\msrating.dll
2017-03-20 20:15:59 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2017-03-20 20:15:59 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2017-03-20 20:15:59 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2017-03-20 20:15:59 ----A---- C:\Windows\system32\vbscript.dll
2017-03-20 20:15:59 ----A---- C:\Windows\system32\jsproxy.dll
2017-03-20 20:15:59 ----A---- C:\Windows\system32\ieUnatt.exe
2017-03-20 20:15:59 ----A---- C:\Windows\system32\iesetup.dll
2017-03-20 20:15:59 ----A---- C:\Windows\system32\ieapfltr.dll
2017-03-20 20:15:58 ----A---- C:\Windows\system32\mshtmled.dll
2017-03-20 20:15:58 ----A---- C:\Windows\system32\ieui.dll
2017-03-20 20:15:58 ----A---- C:\Windows\system32\ieframe.dll
2017-03-20 20:15:58 ----A---- C:\Windows\system32\dxtmsft.dll
2017-03-20 20:15:57 ----A---- C:\Windows\system32\wininet.dll
2017-03-20 20:15:57 ----A---- C:\Windows\system32\webcheck.dll
2017-03-20 20:15:57 ----A---- C:\Windows\system32\mshtmlmedia.dll
2017-03-20 20:15:57 ----A---- C:\Windows\system32\jscript9diag.dll
2017-03-20 20:15:57 ----A---- C:\Windows\system32\jscript9.dll
2017-03-20 20:15:57 ----A---- C:\Windows\system32\jscript.dll
2017-03-20 20:15:56 ----A---- C:\Windows\system32\msrating.dll
2017-03-20 20:15:56 ----A---- C:\Windows\system32\MshtmlDac.dll
2017-03-20 20:15:56 ----A---- C:\Windows\system32\mshtml.dll
2017-03-20 20:15:55 ----A---- C:\Windows\SYSWOW64\schannel.dll
2017-03-20 20:15:55 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2017-03-20 20:15:55 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2017-03-20 20:15:55 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2017-03-20 20:15:55 ----A---- C:\Windows\SYSWOW64\DWrite.dll
2017-03-20 20:15:55 ----A---- C:\Windows\system32\win32k.sys
2017-03-20 20:15:55 ----A---- C:\Windows\system32\schannel.dll
2017-03-20 20:15:55 ----A---- C:\Windows\system32\rpcrt4.dll
2017-03-20 20:15:55 ----A---- C:\Windows\system32\ntoskrnl.exe
2017-03-20 20:15:55 ----A---- C:\Windows\system32\ntdll.dll
2017-03-20 20:15:55 ----A---- C:\Windows\system32\msxml3.dll
2017-03-20 20:15:55 ----A---- C:\Windows\system32\msv1_0.dll
2017-03-20 20:15:55 ----A---- C:\Windows\system32\lsasrv.dll
2017-03-20 20:15:55 ----A---- C:\Windows\system32\KernelBase.dll
2017-03-20 20:15:55 ----A---- C:\Windows\system32\kerberos.dll
2017-03-20 20:15:55 ----A---- C:\Windows\system32\DWrite.dll
2017-03-20 20:15:55 ----A---- C:\Windows\system32\advapi32.dll
2017-03-20 20:15:54 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2017-03-20 20:15:54 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-1-0.dll
2017-03-20 20:15:54 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2017-03-20 20:15:54 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2017-03-20 20:15:54 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2017-03-20 20:15:54 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2017-03-20 20:15:54 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2017-03-20 20:15:54 ----A---- C:\Windows\SYSWOW64\wow32.dll
2017-03-20 20:15:54 ----A---- C:\Windows\SYSWOW64\wdigest.dll
2017-03-20 20:15:54 ----A---- C:\Windows\SYSWOW64\WcsPlugInService.dll
2017-03-20 20:15:54 ----A---- C:\Windows\SYSWOW64\usp10.dll
2017-03-20 20:15:54 ----A---- C:\Windows\SYSWOW64\TSpkg.dll
2017-03-20 20:15:54 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2017-03-20 20:15:54 ----A---- C:\Windows\SYSWOW64\srclient.dll
2017-03-20 20:15:54 ----A---- C:\Windows\SYSWOW64\setup16.exe
2017-03-20 20:15:54 ----A---- C:\Windows\SYSWOW64\secur32.dll
2017-03-20 20:15:54 ----A---- C:\Windows\SYSWOW64\rpchttp.dll
2017-03-20 20:15:54 ----A---- C:\Windows\SYSWOW64\rpcrt4.dll
2017-03-20 20:15:54 ----A---- C:\Windows\SYSWOW64\quartz.dll
2017-03-20 20:15:54 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2017-03-20 20:15:54 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2017-03-20 20:15:54 ----A---- C:\Windows\SYSWOW64\ncrypt.dll
2017-03-20 20:15:54 ----A---- C:\Windows\SYSWOW64\msxml3.dll
2017-03-20 20:15:54 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2017-03-20 20:15:54 ----A---- C:\Windows\SYSWOW64\mscms.dll
2017-03-20 20:15:54 ----A---- C:\Windows\SYSWOW64\msaudite.dll
2017-03-20 20:15:54 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2017-03-20 20:15:54 ----A---- C:\Windows\SYSWOW64\kernel32.dll
2017-03-20 20:15:54 ----A---- C:\Windows\SYSWOW64\instnm.exe
2017-03-20 20:15:54 ----A---- C:\Windows\SYSWOW64\inetcomm.dll
2017-03-20 20:15:54 ----A---- C:\Windows\SYSWOW64\icm32.dll
2017-03-20 20:15:54 ----A---- C:\Windows\SYSWOW64\gdi32.dll
2017-03-20 20:15:54 ----A---- C:\Windows\SYSWOW64\cryptbase.dll
2017-03-20 20:15:54 ----A---- C:\Windows\SYSWOW64\credssp.dll
2017-03-20 20:15:54 ----A---- C:\Windows\SYSWOW64\certcli.dll
2017-03-20 20:15:54 ----A---- C:\Windows\SYSWOW64\bcrypt.dll
2017-03-20 20:15:54 ----A---- C:\Windows\SYSWOW64\auditpol.exe
2017-03-20 20:15:54 ----A---- C:\Windows\SYSWOW64\appidapi.dll
2017-03-20 20:15:54 ----A---- C:\Windows\SYSWOW64\advapi32.dll
2017-03-20 20:15:54 ----A---- C:\Windows\SYSWOW64\adtschema.dll
2017-03-20 20:15:54 ----A---- C:\Windows\system32\wow64win.dll
2017-03-20 20:15:54 ----A---- C:\Windows\system32\wow64cpu.dll
2017-03-20 20:15:54 ----A---- C:\Windows\system32\wow64.dll
2017-03-20 20:15:54 ----A---- C:\Windows\system32\winsrv.dll
2017-03-20 20:15:54 ----A---- C:\Windows\system32\wdigest.dll
2017-03-20 20:15:54 ----A---- C:\Windows\system32\WcsPlugInService.dll
2017-03-20 20:15:54 ----A---- C:\Windows\system32\usp10.dll
2017-03-20 20:15:54 ----A---- C:\Windows\system32\TSpkg.dll
2017-03-20 20:15:54 ----A---- C:\Windows\system32\sspisrv.dll
2017-03-20 20:15:54 ----A---- C:\Windows\system32\sspicli.dll
2017-03-20 20:15:54 ----A---- C:\Windows\system32\srcore.dll
2017-03-20 20:15:54 ----A---- C:\Windows\system32\srclient.dll
2017-03-20 20:15:54 ----A---- C:\Windows\system32\smss.exe
2017-03-20 20:15:54 ----A---- C:\Windows\system32\setbcdlocale.dll
2017-03-20 20:15:54 ----A---- C:\Windows\system32\secur32.dll
2017-03-20 20:15:54 ----A---- C:\Windows\system32\rstrui.exe
2017-03-20 20:15:54 ----A---- C:\Windows\system32\rpchttp.dll
2017-03-20 20:15:54 ----A---- C:\Windows\system32\quartz.dll
2017-03-20 20:15:54 ----A---- C:\Windows\system32\ntvdm64.dll
2017-03-20 20:15:54 ----A---- C:\Windows\system32\ncrypt.dll
2017-03-20 20:15:54 ----A---- C:\Windows\system32\mscms.dll
2017-03-20 20:15:54 ----A---- C:\Windows\system32\msaudite.dll
2017-03-20 20:15:54 ----A---- C:\Windows\system32\lsass.exe
2017-03-20 20:15:54 ----A---- C:\Windows\system32\kernel32.dll
2017-03-20 20:15:54 ----A---- C:\Windows\system32\inetcomm.dll
2017-03-20 20:15:54 ----A---- C:\Windows\system32\icm32.dll
2017-03-20 20:15:54 ----A---- C:\Windows\system32\gdi32.dll
2017-03-20 20:15:54 ----A---- C:\Windows\system32\FntCache.dll
2017-03-20 20:15:54 ----A---- C:\Windows\system32\drivers\srv.sys
2017-03-20 20:15:54 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2017-03-20 20:15:54 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2017-03-20 20:15:54 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2017-03-20 20:15:54 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2017-03-20 20:15:54 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2017-03-20 20:15:54 ----A---- C:\Windows\system32\drivers\appid.sys
2017-03-20 20:15:54 ----A---- C:\Windows\system32\csrsrv.dll
2017-03-20 20:15:54 ----A---- C:\Windows\system32\cryptbase.dll
2017-03-20 20:15:54 ----A---- C:\Windows\system32\credssp.dll
2017-03-20 20:15:54 ----A---- C:\Windows\system32\conhost.exe
2017-03-20 20:15:54 ----A---- C:\Windows\system32\certcli.dll
2017-03-20 20:15:54 ----A---- C:\Windows\system32\bcrypt.dll
2017-03-20 20:15:54 ----A---- C:\Windows\system32\auditpol.exe
2017-03-20 20:15:54 ----A---- C:\Windows\system32\appidsvc.dll
2017-03-20 20:15:54 ----A---- C:\Windows\system32\appidpolicyconverter.exe
2017-03-20 20:15:54 ----A---- C:\Windows\system32\appidcertstorecheck.exe
2017-03-20 20:15:54 ----A---- C:\Windows\system32\appidapi.dll
2017-03-20 20:15:54 ----A---- C:\Windows\system32\adtschema.dll
2017-03-20 20:15:54 ----A---- C:\Windows\HelpPane.exe
2017-03-20 20:15:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-security-base-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-util-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-string-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-profile-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-misc-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-memory-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-io-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-heap-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-handle-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-fibers-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-delayload-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-debug-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-datetime-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-console-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2017-03-20 20:15:53 ----A---- C:\Windows\SYSWOW64\user.exe
2017-03-20 20:15:53 ----A---- C:\Windows\SYSWOW64\msxml3r.dll
2017-03-20 20:15:53 ----A---- C:\Windows\SYSWOW64\msobjs.dll
2017-03-20 20:15:53 ----A---- C:\Windows\SYSWOW64\INETRES.dll
2017-03-20 20:15:53 ----A---- C:\Windows\SYSWOW64\apisetschema.dll
2017-03-20 20:15:53 ----A---- C:\Windows\system32\msxml3r.dll
2017-03-20 20:15:53 ----A---- C:\Windows\system32\msobjs.dll
2017-03-20 20:15:53 ----A---- C:\Windows\system32\INETRES.dll
2017-03-20 20:15:53 ----A---- C:\Windows\system32\drivers\srvnet.sys
2017-03-20 20:15:53 ----A---- C:\Windows\system32\drivers\srv2.sys
2017-03-20 20:15:53 ----A---- C:\Windows\system32\apisetschema.dll
2017-03-20 20:15:41 ----A---- C:\Windows\system32\generaltel.dll
2017-03-20 20:15:41 ----A---- C:\Windows\system32\CompatTelRunner.exe
2017-03-20 20:15:41 ----A---- C:\Windows\system32\appraiser.dll
2017-03-20 20:15:41 ----A---- C:\Windows\system32\aeinv.dll
2017-03-15 22:40:52 ----RD---- C:\Program Files (x86)\Skype
2017-03-13 01:43:34 ----A---- C:\Windows\SYSWOW64\nvwgf2um.dll
2017-03-13 01:43:34 ----A---- C:\Windows\system32\nvhdap64.dll
2017-03-13 01:43:34 ----A---- C:\Windows\system32\nvdispgenco6437878.dll
2017-03-13 01:43:34 ----A---- C:\Windows\system32\nvdispco6437878.dll
2017-03-13 01:43:34 ----A---- C:\Windows\system32\drivers\nvhda64v.sys
2017-03-11 01:17:46 ----A---- C:\Windows\system32\drivers\dbx-stable.sys
2017-03-11 01:17:46 ----A---- C:\Windows\system32\drivers\dbx-dev.sys
2017-03-11 01:17:46 ----A---- C:\Windows\system32\drivers\dbx-canary.sys
2017-03-11 01:17:46 ----A---- C:\Windows\system32\DbxSvc.exe
2017-03-10 01:06:16 ----A---- C:\Windows\system32\drivers\aswbuniva.sys
2017-03-10 01:06:16 ----A---- C:\Windows\system32\drivers\aswbloga.sys
2017-03-10 01:06:16 ----A---- C:\Windows\system32\drivers\aswbidsha.sys
2017-03-10 01:06:16 ----A---- C:\Windows\system32\drivers\aswbidsdrivera.sys
2017-02-26 03:35:12 ----D---- C:\Program Files (x86)\Vypínač na dobrou noc
2017-02-25 15:58:33 ----A---- C:\Windows\system32\aepic.dll
2017-02-25 15:58:32 ----A---- C:\Windows\system32\invagent.dll
2017-02-25 15:58:32 ----A---- C:\Windows\system32\devinv.dll
2017-02-25 15:58:32 ----A---- C:\Windows\system32\centel.dll
2017-02-25 15:58:32 ----A---- C:\Windows\system32\acmigration.dll
2017-02-15 12:25:14 ----A---- C:\Windows\system32\drivers\FACEIT.sys
2017-02-15 12:24:57 ----D---- C:\Program Files\FACEIT Client
2017-02-14 18:08:23 ----A---- C:\Windows\SYSWOW64\nvoglv32.dll
2017-02-14 18:08:23 ----A---- C:\Windows\system32\nvdispgenco6437866.dll
2017-02-14 18:08:23 ----A---- C:\Windows\system32\nvdispco6437866.dll
2017-02-08 09:45:24 ----SD---- C:\Windows\SYSWOW64\Microsoft

======List of files/folders modified in the last 2 months======

2017-04-07 16:24:10 ----D---- C:\Program Files\trend micro
2017-04-07 16:23:22 ----D---- C:\Windows\Temp
2017-04-07 16:23:00 ----RD---- C:\Program Files
2017-04-07 16:23:00 ----D---- C:\Windows\system32\drivers
2017-04-07 16:23:00 ----D---- C:\ProgramData\Malwarebytes
2017-04-07 16:18:42 ----D---- C:\Windows\system32\Tasks
2017-04-07 16:18:39 ----D---- C:\ProgramData\NVIDIA
2017-04-07 16:18:32 ----D---- C:\Program Files (x86)\TeamViewer
2017-04-07 16:17:09 ----D---- C:\Windows\System32
2017-04-07 16:17:09 ----D---- C:\Windows\inf
2017-04-07 16:17:09 ----A---- C:\Windows\system32\PerfStringBackup.INI
2017-04-07 16:11:54 ----HD---- C:\ProgramData
2017-04-07 16:10:30 ----D---- C:\Program Files (x86)\Steam
2017-04-07 16:00:41 ----D---- C:\Users\Roman\AppData\Roaming\vlc
2017-04-07 15:56:01 ----D---- C:\Users\Roman\AppData\Roaming\TS3Client
2017-04-06 22:34:31 ----D---- C:\Windows
2017-04-06 22:33:11 ----D---- C:\Users\Roman\AppData\Roaming\DAEMON Tools Lite
2017-04-06 22:33:11 ----D---- C:\Users\Roman\AppData\Roaming\BitTorrent
2017-04-04 11:46:11 ----D---- C:\Windows\system32\config
2017-04-04 11:25:51 ----D---- C:\Windows\rescache
2017-04-04 09:56:20 ----D---- C:\Windows\winsxs
2017-04-03 23:39:45 ----D---- C:\Windows\SYSWOW64\sk-SK
2017-04-03 23:39:45 ----D---- C:\Windows\SYSWOW64\en-US
2017-04-03 23:39:45 ----D---- C:\Windows\SysWOW64
2017-04-03 23:39:45 ----D---- C:\Windows\system32\sk-SK
2017-04-03 23:39:45 ----D---- C:\Windows\system32\en-US
2017-04-03 22:45:14 ----RSD---- C:\Windows\Fonts
2017-04-03 17:06:05 ----SHD---- C:\System Volume Information
2017-04-03 17:05:41 ----D---- C:\Windows\system32\catroot2
2017-03-27 15:43:05 ----D---- C:\Windows\Microsoft.NET
2017-03-27 13:17:15 ----RSD---- C:\Windows\assembly
2017-03-27 02:27:35 ----SD---- C:\Users\Roman\AppData\Roaming\Microsoft
2017-03-27 02:26:55 ----SHD---- C:\Windows\Installer
2017-03-27 02:26:32 ----D---- C:\ProgramData\Microsoft Help
2017-03-27 02:25:46 ----D---- C:\Windows\ShellNew
2017-03-27 02:25:44 ----D---- C:\Program Files\Common Files\Microsoft Shared
2017-03-27 02:25:35 ----RD---- C:\Program Files (x86)
2017-03-27 02:24:54 ----D---- C:\Program Files\Common Files\System
2017-03-27 02:24:54 ----A---- C:\Windows\win.ini
2017-03-27 02:21:12 ----D---- C:\Program Files\Common Files
2017-03-27 02:21:10 ----SD---- C:\ProgramData\Microsoft
2017-03-25 16:07:35 ----D---- C:\Users\Roman\AppData\Roaming\TeamViewer
2017-03-25 16:07:34 ----D---- C:\Windows\debug
2017-03-25 10:51:08 ----D---- C:\Windows\Tasks
2017-03-25 10:51:07 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2017-03-25 10:51:06 ----D---- C:\Windows\system32\Macromed
2017-03-25 10:51:04 ----D---- C:\Windows\SYSWOW64\Macromed
2017-03-24 22:12:03 ----D---- C:\Program Files (x86)\Dropbox
2017-03-24 17:44:45 ----D---- C:\Program Files (x86)\Opera
2017-03-21 09:49:53 ----D---- C:\ProgramData\NVIDIA Corporation
2017-03-21 09:49:24 ----D---- C:\Windows\system32\DriverStore
2017-03-21 09:49:19 ----D---- C:\Program Files (x86)\VulkanRT
2017-03-20 20:19:54 ----D---- C:\Windows\SYSWOW64\migration
2017-03-20 20:19:54 ----D---- C:\Windows\system32\migration
2017-03-20 20:19:54 ----D---- C:\Windows\system32\Boot
2017-03-20 20:19:54 ----D---- C:\Windows\AppPatch
2017-03-20 20:19:54 ----D---- C:\Program Files\Internet Explorer
2017-03-20 20:19:54 ----D---- C:\Program Files\DVD Maker
2017-03-20 20:19:54 ----D---- C:\Program Files (x86)\Internet Explorer
2017-03-20 20:18:00 ----D---- C:\Windows\system32\MRT
2017-03-20 20:16:46 ----AC---- C:\Windows\system32\MRT.exe
2017-03-20 20:16:10 ----D---- C:\Windows\system32\appraiser
2017-03-17 02:59:25 ----A---- C:\Windows\SYSWOW64\nvapi.dll
2017-03-17 02:59:25 ----A---- C:\Windows\system32\nvwgf2umx.dll
2017-03-17 02:59:25 ----A---- C:\Windows\system32\nvumdshimx.dll
2017-03-17 02:59:25 ----A---- C:\Windows\system32\nvapi64.dll
2017-03-17 01:31:01 ----A---- C:\Windows\NvContainerRecovery.bat
2017-03-17 01:16:11 ----A---- C:\Windows\system32\nvsvc64.dll
2017-03-17 01:16:11 ----A---- C:\Windows\system32\nvcpl.dll
2017-03-17 01:16:09 ----A---- C:\Windows\system32\nvsvcr.dll
2017-03-17 01:16:09 ----A---- C:\Windows\system32\nvshext.dll
2017-03-17 01:16:09 ----A---- C:\Windows\system32\nvmctray.dll
2017-03-17 01:16:09 ----A---- C:\Windows\system32\nv3dappshextr.dll
2017-03-17 01:16:09 ----A---- C:\Windows\system32\nv3dappshext.dll
2017-03-16 08:01:20 ----D---- C:\Windows\SoftwareDistribution
2017-03-15 22:40:53 ----D---- C:\ProgramData\Skype
2017-03-15 22:40:52 ----D---- C:\Program Files (x86)\Common Files
2017-03-15 22:40:41 ----D---- C:\ProgramData\Package Cache
2017-03-13 01:45:41 ----D---- C:\Program Files (x86)\NVIDIA Corporation
2017-03-13 01:37:59 ----D---- C:\Program Files\NVIDIA Corporation
2017-03-12 23:21:32 ----D---- C:\ProgramData\AVAST Software
2017-02-26 19:13:00 ----D---- C:\Windows\system32\LogFiles
2017-02-26 16:02:50 ----D---- C:\Users\Roman\AppData\Roaming\Skype
2017-02-25 16:25:43 ----SD---- C:\Windows\system32\CompatTel
2017-02-24 00:56:01 ----A---- C:\Windows\system32\nvhdagenco6420103.dll
2017-02-23 20:35:22 ----A---- C:\Windows\system32\nvspcap64.dll
2017-02-23 20:35:21 ----A---- C:\Windows\SYSWOW64\nvspcap.dll
2017-02-23 20:35:21 ----A---- C:\Windows\SYSWOW64\nvspbridge.dll
2017-02-23 20:35:21 ----A---- C:\Windows\system32\nvspbridge64.dll
2017-02-23 20:35:21 ----A---- C:\Windows\system32\NvRtmpStreamer64.dll
2017-02-23 16:30:51 ----A---- C:\Windows\NvTelemetryContainerRecovery.bat
2017-02-22 23:40:47 ----D---- C:\Users\Roman\AppData\Roaming\Audacity

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 aswbidsh;aswbidsh; C:\Windows\system32\drivers\aswbidsha.sys [2017-04-03 189768]
R0 aswblog;aswblog; C:\Windows\system32\drivers\aswbloga.sys [2017-04-03 334088]
R0 aswbuniv;aswbuniv; C:\Windows\system32\drivers\aswbuniva.sys [2017-04-03 48528]
R0 aswRvrt;aswRvrt; C:\Windows\system32\drivers\aswRvrt.sys [2017-04-03 75704]
R0 aswVmm;aswVmm; C:\Windows\system32\drivers\aswVmm.sys [2017-04-03 339696]
R0 iusb3hcs;Ovládač prepínača hostiteľského radiča Intel(R) USB 3.0; C:\Windows\system32\DRIVERS\iusb3hcs.sys [2014-08-25 20464]
R0 PxHlpa64;PxHlpa64; C:\Windows\System32\Drivers\PxHlpa64.sys [2011-11-03 56208]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-21 213888]
R1 AsIO;AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [2015-10-27 15232]
R1 AsUpIO;AsUpIO; C:\Windows\SysWow64\drivers\AsUpIO.sys [2014-02-24 14464]
R1 aswbidsdriver;aswbidsdriver; C:\Windows\system32\drivers\aswbidsdrivera.sys [2017-04-03 307736]
R1 aswKbd;aswKbd; C:\Windows\system32\drivers\aswKbd.sys [2017-04-03 32600]
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [2017-04-03 101152]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2017-04-03 1005048]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2017-04-03 556784]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-21 514560]
R1 FACEIT;FACEIT; \??\C:\Windows\System32\Drivers\FACEIT.sys [2017-03-27 5143032]
R1 VBoxDrv;VirtualBox Service; C:\Windows\system32\DRIVERS\VBoxDrv.sys [2016-11-21 933088]
R1 VBoxNetAdp;VirtualBox NDIS 6.0 Miniport Service; C:\Windows\system32\DRIVERS\VBoxNetAdp6.sys [2016-11-21 132120]
R1 VBoxNetLwf;VirtualBox NDIS6 Bridged Networking Service; C:\Windows\system32\DRIVERS\VBoxNetLwf.sys [2016-11-21 206416]
R1 VBoxUSBMon;VirtualBox USB Monitor Driver; C:\Windows\system32\DRIVERS\VBoxUSBMon.sys [2016-11-21 150280]
R2 aswMonFlt;aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [2017-04-03 127112]
R2 aswStm;aswStm; C:\Windows\system32\drivers\aswStm.sys [2017-04-03 164064]
R2 MBAMChameleon;MBAMChameleon; C:\Windows\system32\drivers\MBAMChameleon.sys []
R2 NPF;NetGroup Packet Filter Driver; C:\Windows\system32\drivers\npf.sys [2013-03-01 36600]
R3 CT20XUT.SYS;CT20XUT.SYS; C:\Windows\System32\drivers\CT20XUT.SYS [2015-12-19 205056]
R3 ctac32k;Creative AC3 Software Decoder; C:\Windows\system32\drivers\ctac32k.sys [2015-12-19 582912]
R3 ctaud2k;Creative Audio Driver (WDM); C:\Windows\system32\drivers\ctaud2k.sys [2015-12-19 689024]
R3 CTEXFIFX.SYS;CTEXFIFX.SYS; C:\Windows\System32\drivers\CTEXFIFX.SYS [2015-12-19 1419520]
R3 CTHWIUT.SYS;CTHWIUT.SYS; C:\Windows\System32\drivers\CTHWIUT.SYS [2015-12-19 97024]
R3 ctprxy2k;Creative Proxy Driver; C:\Windows\system32\drivers\ctprxy2k.sys [2015-12-19 18176]
R3 ctsfm2k;Creative SoundFont Management Device Driver; C:\Windows\system32\drivers\ctsfm2k.sys [2015-12-19 215296]
R3 dtlitescsibus;DAEMON Tools Lite Virtual SCSI Bus; C:\Windows\system32\DRIVERS\dtlitescsibus.sys [2015-11-25 30264]
R3 dtliteusbbus;DAEMON Tools Lite Virtual USB Bus; C:\Windows\system32\DRIVERS\dtliteusbbus.sys [2015-11-25 47160]
R3 emupia;E-mu Plug-in Architecture Driver; C:\Windows\system32\drivers\emupia2k.sys [2015-12-19 120576]
R3 ha20x2k;Creative 20X HAL Driver; C:\Windows\system32\drivers\ha20x2k.sys [2015-12-19 1564416]
R3 hidkmdf;Filter Driver Service for HID-KMDF Interface layer; C:\Windows\system32\DRIVERS\hidkmdf.sys [2016-05-27 25656]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2015-06-18 4496600]
R3 iusb3hub;Ovládač rozbočovača Intel(R) USB 3.0; C:\Windows\system32\DRIVERS\iusb3hub.sys [2014-08-25 383984]
R3 iusb3xhc;Ovládač hostiteľského radiča Intel(R) USB 3.0 eXtensible; C:\Windows\system32\DRIVERS\iusb3xhc.sys [2014-08-25 795120]
R3 MEIx64;Intel(R) Management Engine Interface ; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [2014-09-30 129312]
R3 NVHDA;Service for NVIDIA High Definition Audio Driver; C:\Windows\system32\drivers\nvhda64v.sys [2017-02-24 217528]
R3 nvvad_WaveExtensible;NVIDIA Virtual Audio Device (Wave Extensible) (WDM); C:\Windows\system32\drivers\nvvad64v.sys [2017-01-06 47672]
R3 nvvhci;NVVHCI Enumerator Service; C:\Windows\system32\DRIVERS\nvvhci.sys [2017-01-20 57792]
R3 ossrv;Creative OS Services Driver; C:\Windows\system32\drivers\ctoss2k.sys [2015-12-19 181504]
R3 RTL8169;Realtek 8169 NT Driver; C:\Windows\system32\DRIVERS\Rtlh64.sys [2014-12-10 797400]
R3 sshid;SteelSeries HID Service; C:\Windows\system32\DRIVERS\sshid.sys [2016-05-27 51400]
R3 teamviewervpn;TeamViewer VPN Adapter; C:\Windows\system32\DRIVERS\teamviewervpn.sys [2015-08-18 35112]
R4 IOMap;IOMap; \??\C:\Windows\system32\drivers\IOMap64.sys []
S3 ASUSFILTER;ASUSFILTER; C:\Windows\SysWow64\drivers\ASUSFILTER.sys [2011-09-20 46152]
S3 aswHwid;aswHwid; C:\Windows\system32\drivers\aswHwid.sys [2017-04-03 38296]
S3 cpuz137;cpuz137; \??\C:\Users\Roman\AppData\Local\Temp\cpuz137\cpuz137_x64.sys []
S3 cpuz139;cpuz139; \??\C:\Users\Roman\AppData\Local\Temp\cpuz139\cpuz139_x64.sys []
S3 CT20XUT;CT20XUT; C:\Windows\system32\drivers\CT20XUT.SYS [2015-12-19 205056]
S3 CTEXFIFX;CTEXFIFX; C:\Windows\system32\drivers\CTEXFIFX.SYS [2015-12-19 1419520]
S3 CTHWIUT;CTHWIUT; C:\Windows\system32\drivers\CTHWIUT.SYS [2015-12-19 97024]
S3 dbx;dbx; C:\Windows\system32\DRIVERS\dbx.sys []
S3 dmvsc;dmvsc; C:\Windows\system32\drivers\dmvsc.sys [2010-11-21 71168]
S3 I2cHkBurn;I2cHkBurn; C:\Windows\system32\drivers\I2cHkBurn.sys [2015-07-27 41760]
S3 L6GX;Service - Line 6 GX; C:\Windows\System32\Drivers\L6GX64.sys [2015-08-01 772864]
S3 NvStreamKms;NVIDIA KMS; \??\C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [2017-02-23 27584]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-21 165888]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 19456]
S3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2014-05-29 940760]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-21 6656]
S3 ssdevfactory;SteelSeries Device Factory Service; C:\Windows\system32\DRIVERS\ssdevfactory.sys [2015-10-27 40576]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-21 34688]
S3 Synth3dVsc;Synth3dVsc; C:\Windows\System32\drivers\synth3dvsc.sys [2010-11-21 88960]
S3 terminpt;Microsoft Remote Desktop Input Driver; C:\Windows\system32\drivers\terminpt.sys [2012-08-23 29696]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2013-10-02 56832]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2012-08-23 30208]
S3 tsusbhub;@%SystemRoot%\system32\drivers\tsusbhub.sys,-1; C:\Windows\system32\drivers\tsusbhub.sys [2010-11-21 117248]
S3 USBAAPL64;Apple Mobile USB Driver; C:\Windows\System32\Drivers\usbaapl64.sys [2015-06-17 54784]
S3 VGPU;VGPU; C:\Windows\System32\drivers\rdvgkmd.sys []
S3 vmbus;vmbus; C:\Windows\system32\drivers\vmbus.sys [2010-11-21 199552]
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-21 21760]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2016-12-19 82640]
R2 asComSvc;ASUS Com Service; C:\Program Files (x86)\ASUS\AXSP\1.02.00\atkexComSvc.exe [2014-09-09 936728]
R2 asHmComSvc;ASUS HM Com Service; C:\Program Files (x86)\ASUS\AAHM\1.00.22\aaHMSvc.exe [2014-09-09 954648]
R2 AsusFanControlService;AsusFanControlService; C:\Program Files (x86)\ASUS\AsusFanControlService\1.06.13\AsusFanControlService.exe [2014-08-04 384000]
R2 avast! Antivirus;Avast Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2017-04-03 261712]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 CTAudSvcService;Creative Audio Service; C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe [2010-02-12 286720]
R2 DbxSvc;DbxSvc; C:\Windows\system32\DbxSvc.exe [2017-03-11 46408]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 NIHardwareService;NIHardwareService; C:\Program Files\Common Files\Native Instruments\Hardware\NIHardwareService.exe [2012-09-05 6364024]
R2 NvContainerLocalSystem;NVIDIA LocalSystem Container; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [2017-02-23 462784]
R2 NVDisplay.ContainerLocalSystem;NVIDIA Display Container LS; C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe [2017-03-17 464440]
R2 NvTelemetryContainer;NVIDIA Telemetry Container; C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe [2017-02-23 425408]
R2 PnkBstrA;PnkBstrA; C:\Windows\syswow64\PnkBstrA.exe [2015-11-25 66872]
R2 TeamViewer;TeamViewer 11; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [2016-07-18 7183632]
R3 aswbIDSAgent;aswbIDSAgent; C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe [2017-04-03 7398336]
R3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS; C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [2013-01-02 171632]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2016-11-29 105144]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2016-11-29 125112]
S2 dbupdate;Dropbox Update Service (dbupdate); C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [2016-11-05 143144]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-10-27 144200]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2017-02-27 317400]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 27136]
S3 Creative Audio Engine Licensing Service;Creative Audio Engine Licensing Service; C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\CTAELicensing.exe [2016-02-13 79360]
S3 dbupdatem;Dropbox Update Service (dbupdatem); C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [2016-11-05 143144]
S3 Disc Soft Lite Bus Service;Disc Soft Lite Bus Service; D:\Programy\DAEMON Tools Lite\DiscSoftBusService.exe [2015-11-18 1369432]
S3 EasyAntiCheat;EasyAntiCheat; C:\Windows\syswow64\EasyAntiCheat.exe [2016-04-19 242960]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-10-27 144200]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2017-03-04 114688]
S3 NvContainerNetworkService;NVIDIA NetworkService Container; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [2017-02-23 462784]
S3 ose64;Office 64 Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2014-01-23 178760]
S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2014-01-23 5132888]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 rpcapd;Remote Packet Capture Protocol v.0 (experimental); C:\Program Files (x86)\WinPcap\rpcapd.exe [2013-03-01 118520]
S3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2017-03-23 1590560]
S3 SwitchBoard;SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S4 aspnet_state;ASP.NET State Service; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2016-11-29 51384]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2016-11-29 135848]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2016-11-29 135848]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2016-11-29 135848]
S4 tvnserver;TightVNC Server; C:\Program Files\TightVNC\tvnserver.exe [2013-07-19 2179056]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118274
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o kontrolu, blbne počítač

#2 Příspěvek od Rudy »

Zdravím!
Jak je na tom váš oper. systém s legalitou?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

wormik
Návštěvník
Návštěvník
Příspěvky: 12
Registrován: 17 srp 2015 10:55

Re: Prosím o kontrolu, blbne počítač

#3 Příspěvek od wormik »

Zdravím!
Používam školskú licenciu Windows 7

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118274
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o kontrolu, blbne počítač

#4 Příspěvek od Rudy »

OK. Spusťte tuto utilitu:
Stáhněte AdwCleaner https://toolslib.net/downloads/viewdown ... dwcleaner/
Uložte na plochu
Ukončete všechny programy
Klikněte nejprve na >Scan<(hledání) a pak na >Clean< (mazání).
Proběhne skenováni a pak se objeví log, který sem vložte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

wormik
Návštěvník
Návštěvník
Příspěvky: 12
Registrován: 17 srp 2015 10:55

Re: Prosím o kontrolu, blbne počítač

#5 Příspěvek od wormik »

# AdwCleaner v6.045 - *Logfile created 09/04/2017 *at 20:20:31
# *Updated on 28/03/2017 by Malwarebytes
# *Database : 2017-04-06.1 [*Server]
# *Operating System : Windows 7 Ultimate Service Pack 1 (X64)
# *Username : Roman - ROMAN-PC
# *Running from : C:\Users\Roman\Desktop\adwcleaner_6.045.exe
# *Mode: Clean
# *Support : https://www.malwarebytes.com/support



***** [ *Services ] *****



***** [ *Folders ] *****



***** [ *Files ] *****



***** [ DLL ] *****



***** [ WMI ] *****



***** [ *Shortcuts ] *****



***** [ *Scheduled Tasks ] *****



***** [ *Registry ] *****

[-] *Key deleted: HKLM\SOFTWARE\Classes\Interface\{FA7B2795-C0C8-4A58-8672-3F8D80CC0270}
[-] *Key deleted: HKLM\SOFTWARE\Classes\Interface\{47A1DF02-BCE4-40C3-AE47-E3EA09A65E4A}
[-] *Key deleted: HKLM\SOFTWARE\Classes\TypeLib\{1112F282-7099-4624-A439-DB29D6551552}


***** [ *Browsers ] *****

[-] [C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default] [startup_urls] *Deleted: hxxp://www.yoursites123.com/?type=hp&ts=144966 ... 32F00A5399
[-] [C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default] [favicon_url] *Deleted: hxxp://www.yoursites123.com/webfavicon.ico
[-] [C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default] [homepage] *Deleted: hxxp://www.yoursites123.com/?type=hp&ts=144966 ... 32F00A5399


*************************

:: *"Tracing" keys deleted
:: *Winsock settings cleared

*************************

C:\AdwCleaner\AdwCleaner[C0].txt - [1653 *Bytes] - [09/04/2017 20:20:31]
C:\AdwCleaner\AdwCleaner[S0].txt - [1948 *Bytes] - [09/04/2017 20:19:47]

########## EOF - C:\AdwCleaner\AdwCleaner[C0].txt - [1801 *Bytes] ##########

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118274
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o kontrolu, blbne počítač

#6 Příspěvek od Rudy »

Dejte nový log RSIT.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

wormik
Návštěvník
Návštěvník
Příspěvky: 12
Registrován: 17 srp 2015 10:55

Re: Prosím o kontrolu, blbne počítač

#7 Příspěvek od wormik »

Logfile of random's system information tool 1.10 (written by random/random)
Run by Roman at 2017-04-09 21:39:05
Microsoft Windows 7 Ultimate Service Pack 1
System drive C: has 141 GB (59%) free of 238 GB
Total RAM: 16327 MB (86% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 21:39:05, on 9. 4. 2017
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.18618)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\NVIDIA Corporation\NvContainer\nvcontainer.exe
C:\Windows\SysWOW64\muachost.exe
C:\Program Files (x86)\ASUS\AI Suite III\DIP4\DIPAwayMode\DipAwayMode.exe
C:\Program Files (x86)\3RVX-2.9.1\3RVX.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe
C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe
C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
C:\Program Files (x86)\Opera\44.0.2510.857\opera_autoupdate.exe
C:\Program Files\trend micro\Roman.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe,
O1 - Hosts: ˙ţ127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O2 - BHO: Lync Click to Call BHO - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office15\URLREDIR.DLL
O2 - BHO: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\PROGRA~2\MICROS~1\Office15\GROOVEEX.DLL
O4 - HKLM\..\Run: [USB3MON] "C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [Dropbox] "C:\Program Files (x86)\Dropbox\Client\Dropbox.exe" /systemstartup
O4 - HKCU\..\Run: [3RVX] C:\Program Files (x86)\3RVX-2.9.1\3RVX.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CtxfiReg] CTXFIREG.exe /FAIL1 (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CtxfiReg] CTXFIREG.exe /FAIL1 (User 'Default user')
O8 - Extra context menu item: E&xportovať do programu Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office15\EXCEL.EXE/3000
O8 - Extra context menu item: Od&oslať do programu OneNote - res://C:\PROGRA~1\MICROS~3\Office15\ONBttnIE.dll/105
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIE.dll
O9 - Extra button: Lync Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
O9 - Extra 'Tools' menuitem: Lync Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
O9 - Extra button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - Trusted Zone: *.line6.net
O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files (x86)\Microsoft Office\Office15\MSOSB.DLL
O18 - Filter hijack: text/xml - {807583E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\MSOXMLMF.DLL
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: ASUS Com Service (asComSvc) - Unknown owner - C:\Program Files (x86)\ASUS\AXSP\1.02.00\atkexComSvc.exe
O23 - Service: ASUS HM Com Service (asHmComSvc) - ASUSTeK Computer Inc. - C:\Program Files (x86)\ASUS\AAHM\1.00.22\aaHMSvc.exe
O23 - Service: AsusFanControlService - ASUSTeK Computer Inc. - C:\Program Files (x86)\ASUS\AsusFanControlService\1.06.13\AsusFanControlService.exe
O23 - Service: aswbIDSAgent - AVAST Software s.r.o. - C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Creative Audio Engine Licensing Service - Creative Labs - C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\CTAELicensing.exe
O23 - Service: Creative Audio Service (CTAudSvcService) - Creative Technology Ltd - C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe
O23 - Service: Dropbox Update Service (dbupdate) (dbupdate) - Dropbox, Inc. - C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
O23 - Service: Dropbox Update Service (dbupdatem) (dbupdatem) - Dropbox, Inc. - C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
O23 - Service: DbxSvc - Unknown owner - C:\Windows\system32\DbxSvc.exe (file missing)
O23 - Service: Disc Soft Lite Bus Service - Disc Soft Ltd - D:\Programy\DAEMON Tools Lite\DiscSoftBusService.exe
O23 - Service: EasyAntiCheat - EasyAntiCheat Ltd - C:\Windows\system32\EasyAntiCheat.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NIHardwareService - Native Instruments GmbH - C:\Program Files\Common Files\Native Instruments\Hardware\NIHardwareService.exe
O23 - Service: NVIDIA LocalSystem Container (NvContainerLocalSystem) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
O23 - Service: NVIDIA NetworkService Container (NvContainerNetworkService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
O23 - Service: NVIDIA Display Container LS (NVDisplay.ContainerLocalSystem) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
O23 - Service: NVIDIA Telemetry Container (NvTelemetryContainer) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - Riverbed Technology, Inc. - C:\Program Files (x86)\WinPcap\rpcapd.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: SwitchBoard - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O23 - Service: TeamViewer 11 (TeamViewer) - TeamViewer GmbH - C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 10771 bytes

======Listing Processes======



\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
winlogon.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
"C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe"
C:\Windows\system32\svchost.exe -k GPSvcGroup
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Windows\System32\svchost.exe -k NetworkService
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files (x86)\ASUS\AXSP\1.02.00\atkexComSvc.exe"
"C:\Program Files (x86)\ASUS\AAHM\1.00.22\aaHMSvc.exe"
"C:\Program Files (x86)\ASUS\AsusFanControlService\1.06.13\AsusFanControlService.exe"
C:\Windows\system32\DbxSvc.exe
C:\Windows\System32\svchost.exe -k utcsvc
"C:\Program Files\Common Files\Native Instruments\Hardware\NIHardwareService.exe"
"C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe" -s NvContainerLocalSystem -f "C:\ProgramData\NVIDIA\NvContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\NvContainer\plugins\LocalSystem" -r -p 30000
"C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem" -r -p 30000
"C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe" -s NvTelemetryContainer -f "C:\ProgramData\NVIDIA\NvTelemetryContainer.log" -l 3 -d "C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\plugin"
C:\Windows\SysWOW64\PnkBstrA.exe
C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe -first
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe"
"C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe"
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-b3ec8542-c1e0-48b1-be4c-04a4971d6ff6 -SystemEventPortName:HostProcess-9bd68d23-af7f-4f69-a3b5-8a1552c34bfb -IoCancelEventPortName:HostProcess-ec800208-2bcb-4511-9e5c-9c93e8737300 -NonStateChangingEventPortName:HostProcess-bc729a7e-fa5f-46f0-a92c-35d090af8362 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:72067bcd-7add-46c0-bd1a-3cbc83ac633c -DeviceGroupId:
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
"taskhost.exe"
"C:\Program Files (x86)\NVIDIA Corporation\NvContainer\nvcontainer.exe" -f "C:\ProgramData\NVIDIA\NvContainerUser%d.log" -d "C:\Program Files (x86)\NVIDIA Corporation\NvContainer\plugins\User" -r -l 3 -p 30000 -c
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
taskeng.exe {667C1244-CE30-4372-B41E-C85C7F356C85}
C:\Windows\SysWOW64\muachost.exe
"C:\Program Files (x86)\ASUS\AI Suite III\DIP4\DIPAwayMode\DipAwayMode.exe"
"C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe" -s
"C:\Program Files (x86)\3RVX-2.9.1\3RVX.exe"
AvastUI.exe /nogui
"C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
"C:\Program Files\NVIDIA Corporation\ShadowPlay\nvspcaps64.exe" -Embedding
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1"
"C:\Program Files\NVIDIA Corporation\ShadowPlay\nvsphelper64.exe"
"C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe"
"C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe" --type=renderer --disable-gpu-compositing --no-sandbox --primordial-pipe-token=20F7B05E4D662B78DBA02720DF31105C --lang=en-US --lang=en-US --log-file="C:\Users\Roman\AppData\Local\NVIDIA Corporation\NVIDIA Share\CefCache\debug.log" --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --enable-main-frame-before-activation --content-image-texture-target=0,0,3553;0,1,3553;0,2,3553;0,3,3553;0,4,3553;0,5,3553;0,6,3553;0,7,3553;0,8,3553;0,9,3553;0,10,3553;0,11,3553;0,12,3553;0,13,3553;0,14,3553;0,15,3553;1,0,3553;1,1,3553;1,2,3553;1,3,3553;1,4,3553;1,5,3553;1,6,3553;1,7,3553;1,8,3553;1,9,3553;1,10,3553;1,11,3553;1,12,3553;1,13,3553;1,14,3553;1,15,3553;2,0,3553;2,1,3553;2,2,3553;2,3,3553;2,4,3553;2,5,3553;2,6,3553;2,7,3553;2,8,3553;2,9,3553;2,10,3553;2,11,3553;2,12,3553;2,13,3553;2,14,3553;2,15,3553;3,0,3553;3,1,3553;3,2,3553;3,3,3553;3,4,3553;3,5,3553;3,6,3553;3,7,3553;3,8,3553;3,9,3553;3,10,3553;3,11,3553;3,12,3553;3,13,3553;3,14,3553;3,15,3553 --disable-accelerated-video-decode --disable-webrtc-hw-encoding --disable-gpu-compositing --service-request-channel-token=20F7B05E4D662B78DBA02720DF31105C --renderer-client-id=2 --mojo-platform-channel-handle=1488 /prefetch:1
"C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe" index.js
\??\C:\Windows\system32\conhost.exe "1507431708154468773-825876119-2578322861732521298-11913366776937082032009732035
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
"C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe"
C:\Windows\system32\wbem\wmiprvse.exe
taskeng.exe {3ED9B65B-F9D1-4ACF-8A06-83D8B38B9FA5}
"C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /c
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe5_ Global\UsGthrCtrlFltPipeMssGthrPipe5 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Windows\system32\SearchFilterHost.exe" 0 520 524 532 65536 528
C:\Windows\system32\wbem\wmiprvse.exe
taskeng.exe {89BE3962-9E24-4594-B1B4-77F26F35091E}
C:\Windows\system32\vssvc.exe
"C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe" /ua /installsource scheduler
C:\Windows\System32\svchost.exe -k swprv

"C:\Program Files (x86)\Opera\44.0.2510.857\opera_autoupdate.exe" --host=https://autoupdate.geo.opera.com/ --pipeid=oauc_pipe40ee93086a9508547b77ff7267c27571 --version=44.0.2510.857 --edition --lang=sk --producttype --requesttype=shutdown --operadir="C:\Program Files (x86)\Opera\44.0.2510.857" --installdir="C:\Program Files (x86)\Opera" --profile="C:\Users\Roman\AppData\Roaming\Opera Software\Opera Stable" --installationdatadir="C:\Program Files (x86)\Opera" --firstrunver=33.0.1990.43 --firstrunts=1446172725 --currentstats="C:\Users\Roman\AppData\Roaming\Opera Software\Opera Stable\ssdfp3784.1.1957520356"
C:\Windows\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
C:\Windows\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
"C:\Users\Roman\Desktop\RSITx64.exe"

======Scheduled tasks folder======

C:\Windows\tasks\DropboxUpdateTaskMachineCore.job - C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe /c
C:\Windows\tasks\DropboxUpdateTaskMachineUA.job - C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe /ua /installsource scheduler

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Lync Browser Helper - C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2012-10-01 205416]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre1.8.0_121\bin\ssv.dll [2017-02-06 571456]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2017-04-03 895528]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~3\Office15\URLREDIR.DLL [2014-01-23 881880]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre1.8.0_121\bin\jp2ssv.dll [2017-02-06 234560]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Lync Browser Helper - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2014-01-21 153248]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2017-04-03 773920]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MICROS~1\Office15\URLREDIR.DLL [2014-01-21 707800]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft SkyDrive Pro Browser Helper - C:\PROGRA~2\MICROS~1\Office15\GROOVEEX.DLL [2014-01-21 1728216]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [2015-06-12 8484056]
"ShadowPlay"=C:\Windows\system32\nvspcap64.dll [2017-02-23 1880512]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvLaunch.exe [2017-04-03 213824]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"3RVX"=C:\Program Files (x86)\3RVX-2.9.1\3RVX.exe [2015-09-19 622592]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AdobeAAMUpdater-1.0]
C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2012-04-04 446392]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AdobeCS6ServiceManager]
C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe [2012-03-09 1073312]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\APSDaemon]
C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [2013-09-13 59720]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CAM]
C:\Program Files (x86)\NZXT\CAM\CAMLauncher.exe -autostart []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CCleaner Monitoring]
C:\Program Files\CCleaner\CCleaner64.exe [2016-08-26 8912088]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CTxfiHlp]
CTXFIHLP.EXE []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite Automount]
D:\Programy\DAEMON Tools Lite\DTAgent.exe [2015-11-18 4179288]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Dropbox]
C:\Program Files (x86)\Dropbox\Client\Dropbox.exe [2017-04-06 28329912]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
C:\Program Files (x86)\QuickTime\QTTask.exe [2015-12-09 421888]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Spotify]
C:\Users\Roman\AppData\Roaming\Spotify\Spotify.exe -autostart -minimized []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Spotify Web Helper]
C:\Users\Roman\AppData\Roaming\Spotify\SpotifyWebHelper.exe []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SwitchBoard]
C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\tvncontrol]
C:\Program Files\TightVNC\tvnserver.exe [2013-07-19 2179056]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^SteelSeries Engine 3.lnk]
C:\PROGRA~1\STEELS~1\STEELS~1\STEELS~1.EXE -dataPath=C:\ProgramData\SteelSeries\SteelSeries Engine 3 -dbEnv=production -auto=true []

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"USB3MON"=C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [2014-08-25 293872]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2016-12-12 587288]
"Dropbox"=C:\Program Files (x86)\Dropbox\Client\Dropbox.exe [2017-04-06 28329912]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MBAMService]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"SoftwareSASGeneration"=1

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"aux2"=wdmaud.drv
"wave5"=wdmaud.drv
"midi5"=wdmaud.drv
"mixer5"=wdmaud.drv
"wave7"=wdmaud.drv
"midi7"=wdmaud.drv
"mixer7"=wdmaud.drv
"aux3"=wdmaud.drv
"wave8"=wdmaud.drv
"midi8"=wdmaud.drv
"mixer8"=wdmaud.drv
"aux4"=wdmaud.drv
"wave9"=wdmaud.drv
"midi9"=wdmaud.drv
"mixer9"=wdmaud.drv
"aux5"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"aux6"=wdmaud.drv
"aux7"=wdmaud.drv
"VIDC.FPS1"=frapsv64.dll
"aux8"=wdmaud.drv
"aux9"=wdmaud.drv
"VIDC.RTV1"=rtvcvfw64.dll
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"wave6"=wdmaud.drv
"midi6"=wdmaud.drv
"mixer6"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2017-04-09 20:19:05 ----D---- C:\AdwCleaner
2017-04-07 16:24:09 ----D---- C:\rsit
2017-04-06 22:34:24 ----A---- C:\Windows\ntbtlog.txt
2017-04-06 18:57:14 ----A---- C:\Windows\system32\DbxSvc.exe
2017-04-03 17:05:55 ----A---- C:\Windows\SYSWOW64\wuwebv.dll
2017-04-03 17:05:55 ----A---- C:\Windows\SYSWOW64\wups.dll
2017-04-03 17:05:55 ----A---- C:\Windows\SYSWOW64\wudriver.dll
2017-04-03 17:05:55 ----A---- C:\Windows\SYSWOW64\wuapp.exe
2017-04-03 17:05:55 ----A---- C:\Windows\SYSWOW64\wuapi.dll
2017-04-03 17:05:55 ----A---- C:\Windows\SYSWOW64\win32spl.dll
2017-04-03 17:05:55 ----A---- C:\Windows\SYSWOW64\ucrtbase.dll
2017-04-03 17:05:55 ----A---- C:\Windows\SYSWOW64\tzres.dll
2017-04-03 17:05:55 ----A---- C:\Windows\SYSWOW64\samlib.dll
2017-04-03 17:05:55 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-utility-l1-1-0.dll
2017-04-03 17:05:55 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-time-l1-1-0.dll
2017-04-03 17:05:55 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-string-l1-1-0.dll
2017-04-03 17:05:55 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-stdio-l1-1-0.dll
2017-04-03 17:05:55 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-runtime-l1-1-0.dll
2017-04-03 17:05:55 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-process-l1-1-0.dll
2017-04-03 17:05:55 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-private-l1-1-0.dll
2017-04-03 17:05:55 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-multibyte-l1-1-0.dll
2017-04-03 17:05:55 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-math-l1-1-0.dll
2017-04-03 17:05:55 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-locale-l1-1-0.dll
2017-04-03 17:05:55 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-heap-l1-1-0.dll
2017-04-03 17:05:55 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-filesystem-l1-1-0.dll
2017-04-03 17:05:55 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-environment-l1-1-0.dll
2017-04-03 17:05:55 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-convert-l1-1-0.dll
2017-04-03 17:05:55 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-conio-l1-1-0.dll
2017-04-03 17:05:55 ----A---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l2-1-0.dll
2017-04-03 17:05:55 ----A---- C:\Windows\SYSWOW64\api-ms-win-core-timezone-l1-1-0.dll
2017-04-03 17:05:55 ----A---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-2-0.dll
2017-04-03 17:05:55 ----A---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-1.dll
2017-04-03 17:05:55 ----A---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-2-0.dll
2017-04-03 17:05:55 ----A---- C:\Windows\SYSWOW64\api-ms-win-core-file-l2-1-0.dll
2017-04-03 17:05:55 ----A---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-2-0.dll
2017-04-03 17:05:55 ----A---- C:\Windows\system32\wuwebv.dll
2017-04-03 17:05:55 ----A---- C:\Windows\system32\wups2.dll
2017-04-03 17:05:55 ----A---- C:\Windows\system32\wups.dll
2017-04-03 17:05:55 ----A---- C:\Windows\system32\wudriver.dll
2017-04-03 17:05:55 ----A---- C:\Windows\system32\wucltux.dll
2017-04-03 17:05:55 ----A---- C:\Windows\system32\wuaueng.dll
2017-04-03 17:05:55 ----A---- C:\Windows\system32\wuauclt.exe
2017-04-03 17:05:55 ----A---- C:\Windows\system32\wuapp.exe
2017-04-03 17:05:55 ----A---- C:\Windows\system32\wuapi.dll
2017-04-03 17:05:55 ----A---- C:\Windows\system32\wu.upgrade.ps.dll
2017-04-03 17:05:55 ----A---- C:\Windows\system32\WinSetupUI.dll
2017-04-03 17:05:55 ----A---- C:\Windows\system32\win32spl.dll
2017-04-03 17:05:55 ----A---- C:\Windows\system32\ucrtbase.dll
2017-04-03 17:05:55 ----A---- C:\Windows\system32\tzres.dll
2017-04-03 17:05:55 ----A---- C:\Windows\system32\samsrv.dll
2017-04-03 17:05:55 ----A---- C:\Windows\system32\samlib.dll
2017-04-03 17:05:55 ----A---- C:\Windows\system32\api-ms-win-crt-utility-l1-1-0.dll
2017-04-03 17:05:55 ----A---- C:\Windows\system32\api-ms-win-crt-time-l1-1-0.dll
2017-04-03 17:05:55 ----A---- C:\Windows\system32\api-ms-win-crt-string-l1-1-0.dll
2017-04-03 17:05:55 ----A---- C:\Windows\system32\api-ms-win-crt-stdio-l1-1-0.dll
2017-04-03 17:05:55 ----A---- C:\Windows\system32\api-ms-win-crt-runtime-l1-1-0.dll
2017-04-03 17:05:55 ----A---- C:\Windows\system32\api-ms-win-crt-process-l1-1-0.dll
2017-04-03 17:05:55 ----A---- C:\Windows\system32\api-ms-win-crt-private-l1-1-0.dll
2017-04-03 17:05:55 ----A---- C:\Windows\system32\api-ms-win-crt-multibyte-l1-1-0.dll
2017-04-03 17:05:55 ----A---- C:\Windows\system32\api-ms-win-crt-math-l1-1-0.dll
2017-04-03 17:05:55 ----A---- C:\Windows\system32\api-ms-win-crt-locale-l1-1-0.dll
2017-04-03 17:05:55 ----A---- C:\Windows\system32\api-ms-win-crt-heap-l1-1-0.dll
2017-04-03 17:05:55 ----A---- C:\Windows\system32\api-ms-win-crt-filesystem-l1-1-0.dll
2017-04-03 17:05:55 ----A---- C:\Windows\system32\api-ms-win-crt-environment-l1-1-0.dll
2017-04-03 17:05:55 ----A---- C:\Windows\system32\api-ms-win-crt-convert-l1-1-0.dll
2017-04-03 17:05:55 ----A---- C:\Windows\system32\api-ms-win-crt-conio-l1-1-0.dll
2017-04-03 17:05:55 ----A---- C:\Windows\system32\api-ms-win-core-xstate-l2-1-0.dll
2017-04-03 17:05:55 ----A---- C:\Windows\system32\api-ms-win-core-timezone-l1-1-0.dll
2017-04-03 17:05:55 ----A---- C:\Windows\system32\api-ms-win-core-synch-l1-2-0.dll
2017-04-03 17:05:55 ----A---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-1.dll
2017-04-03 17:05:55 ----A---- C:\Windows\system32\api-ms-win-core-localization-l1-2-0.dll
2017-04-03 17:05:55 ----A---- C:\Windows\system32\api-ms-win-core-file-l2-1-0.dll
2017-04-03 17:05:55 ----A---- C:\Windows\system32\api-ms-win-core-file-l1-2-0.dll
2017-04-03 16:28:46 ----A---- C:\Windows\system32\aswBoot.exe
2017-03-27 20:00:15 ----A---- C:\deriuz.txt
2017-03-27 02:25:40 ----D---- C:\Program Files\Microsoft.NET
2017-03-27 02:25:35 ----D---- C:\Program Files (x86)\Mozilla Firefox
2017-03-27 02:21:15 ----D---- C:\ProgramData\regid.1991-06.com.microsoft
2017-03-27 02:21:12 ----D---- C:\Program Files\Common Files\DESIGNER
2017-03-27 02:21:10 ----D---- C:\Windows\PCHEALTH
2017-03-27 02:20:53 ----D---- C:\Program Files\Microsoft Analysis Services
2017-03-27 02:20:50 ----D---- C:\Program Files (x86)\Microsoft Office
2017-03-27 02:20:42 ----RHD---- C:\MSOCache
2017-03-27 02:18:59 ----D---- C:\Program Files\Microsoft Office
2017-03-25 16:14:49 ----D---- C:\barber
2017-03-24 12:15:36 ----AD---- C:\Bakalárka
2017-03-22 19:47:10 ----A---- C:\Windows\system32\drivers\dbx-stable.sys
2017-03-22 19:47:10 ----A---- C:\Windows\system32\drivers\dbx-dev.sys
2017-03-22 19:47:10 ----A---- C:\Windows\system32\drivers\dbx-canary.sys
2017-03-21 09:49:25 ----A---- C:\Windows\SYSWOW64\nvStreaming.exe
2017-03-21 09:47:25 ----A---- C:\Windows\SYSWOW64\nvumdshim.dll
2017-03-21 09:47:25 ----A---- C:\Windows\SYSWOW64\nvptxJitCompiler.dll
2017-03-21 09:47:25 ----A---- C:\Windows\SYSWOW64\nvopencl.dll
2017-03-21 09:47:25 ----A---- C:\Windows\SYSWOW64\nvoglshim32.dll
2017-03-21 09:47:25 ----A---- C:\Windows\SYSWOW64\nvinit.dll
2017-03-21 09:47:25 ----A---- C:\Windows\SYSWOW64\NvIFROpenGL.dll
2017-03-21 09:47:25 ----A---- C:\Windows\SYSWOW64\NvIFR.dll
2017-03-21 09:47:25 ----A---- C:\Windows\SYSWOW64\NvFBC.dll
2017-03-21 09:47:25 ----A---- C:\Windows\SYSWOW64\nvfatbinaryLoader.dll
2017-03-21 09:47:25 ----A---- C:\Windows\SYSWOW64\nvEncodeAPI.dll
2017-03-21 09:47:25 ----A---- C:\Windows\SYSWOW64\nvd3dum.dll
2017-03-21 09:47:25 ----A---- C:\Windows\SYSWOW64\nvcuvid.dll
2017-03-21 09:47:25 ----A---- C:\Windows\SYSWOW64\nvcuda.dll
2017-03-21 09:47:25 ----A---- C:\Windows\system32\nvptxJitCompiler.dll
2017-03-21 09:47:25 ----A---- C:\Windows\system32\nvopencl.dll
2017-03-21 09:47:25 ----A---- C:\Windows\system32\nvoglv64.dll
2017-03-21 09:47:25 ----A---- C:\Windows\system32\nvoglshim64.dll
2017-03-21 09:47:25 ----A---- C:\Windows\system32\nvinitx.dll
2017-03-21 09:47:25 ----A---- C:\Windows\system32\NvIFROpenGL.dll
2017-03-21 09:47:25 ----A---- C:\Windows\system32\NvIFR64.dll
2017-03-21 09:47:25 ----A---- C:\Windows\system32\NvFBC64.dll
2017-03-21 09:47:25 ----A---- C:\Windows\system32\nvfatbinaryLoader.dll
2017-03-21 09:47:25 ----A---- C:\Windows\system32\nvEncodeAPI64.dll
2017-03-21 09:47:25 ----A---- C:\Windows\system32\nvdispgenco6437892.dll
2017-03-21 09:47:25 ----A---- C:\Windows\system32\nvdispco6437892.dll
2017-03-21 09:47:25 ----A---- C:\Windows\system32\nvd3dumx.dll
2017-03-21 09:47:25 ----A---- C:\Windows\system32\nvcuvid.dll
2017-03-21 09:47:25 ----A---- C:\Windows\system32\nvcuda.dll
2017-03-21 09:47:25 ----A---- C:\Windows\system32\nvcompiler.dll
2017-03-21 09:47:25 ----A---- C:\Windows\system32\drivers\nvlddmkm.sys
2017-03-21 09:47:24 ----A---- C:\Windows\SYSWOW64\nvcompiler.dll
2017-03-20 20:16:01 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2017-03-20 20:16:01 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2017-03-20 20:16:01 ----A---- C:\Windows\SYSWOW64\occache.dll
2017-03-20 20:16:01 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2017-03-20 20:16:01 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2017-03-20 20:16:01 ----A---- C:\Windows\SYSWOW64\inseng.dll
2017-03-20 20:16:01 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2017-03-20 20:16:01 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2017-03-20 20:16:01 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2017-03-20 20:16:01 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2017-03-20 20:16:01 ----A---- C:\Windows\system32\inseng.dll
2017-03-20 20:16:01 ----A---- C:\Windows\system32\iertutil.dll
2017-03-20 20:16:01 ----A---- C:\Windows\system32\iernonce.dll
2017-03-20 20:16:01 ----A---- C:\Windows\system32\ieetwproxystub.dll
2017-03-20 20:16:01 ----A---- C:\Windows\system32\ieetwcollector.exe
2017-03-20 20:16:01 ----A---- C:\Windows\system32\ie4uinit.exe
2017-03-20 20:16:00 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2017-03-20 20:16:00 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2017-03-20 20:16:00 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2017-03-20 20:16:00 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2017-03-20 20:16:00 ----A---- C:\Windows\SYSWOW64\jscript.dll
2017-03-20 20:16:00 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2017-03-20 20:16:00 ----A---- C:\Windows\SYSWOW64\ieui.dll
2017-03-20 20:16:00 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2017-03-20 20:16:00 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2017-03-20 20:16:00 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2017-03-20 20:16:00 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2017-03-20 20:16:00 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2017-03-20 20:16:00 ----A---- C:\Windows\system32\urlmon.dll
2017-03-20 20:16:00 ----A---- C:\Windows\system32\occache.dll
2017-03-20 20:16:00 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2017-03-20 20:16:00 ----A---- C:\Windows\system32\msfeeds.dll
2017-03-20 20:16:00 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2017-03-20 20:16:00 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2017-03-20 20:16:00 ----A---- C:\Windows\system32\iedkcs32.dll
2017-03-20 20:16:00 ----A---- C:\Windows\system32\dxtrans.dll
2017-03-20 20:15:59 ----A---- C:\Windows\SYSWOW64\wininet.dll
2017-03-20 20:15:59 ----A---- C:\Windows\SYSWOW64\webcheck.dll
2017-03-20 20:15:59 ----A---- C:\Windows\SYSWOW64\msrating.dll
2017-03-20 20:15:59 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2017-03-20 20:15:59 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2017-03-20 20:15:59 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2017-03-20 20:15:59 ----A---- C:\Windows\system32\vbscript.dll
2017-03-20 20:15:59 ----A---- C:\Windows\system32\jsproxy.dll
2017-03-20 20:15:59 ----A---- C:\Windows\system32\ieUnatt.exe
2017-03-20 20:15:59 ----A---- C:\Windows\system32\iesetup.dll
2017-03-20 20:15:59 ----A---- C:\Windows\system32\ieapfltr.dll
2017-03-20 20:15:58 ----A---- C:\Windows\system32\mshtmled.dll
2017-03-20 20:15:58 ----A---- C:\Windows\system32\ieui.dll
2017-03-20 20:15:58 ----A---- C:\Windows\system32\ieframe.dll
2017-03-20 20:15:58 ----A---- C:\Windows\system32\dxtmsft.dll
2017-03-20 20:15:57 ----A---- C:\Windows\system32\wininet.dll
2017-03-20 20:15:57 ----A---- C:\Windows\system32\webcheck.dll
2017-03-20 20:15:57 ----A---- C:\Windows\system32\mshtmlmedia.dll
2017-03-20 20:15:57 ----A---- C:\Windows\system32\jscript9diag.dll
2017-03-20 20:15:57 ----A---- C:\Windows\system32\jscript9.dll
2017-03-20 20:15:57 ----A---- C:\Windows\system32\jscript.dll
2017-03-20 20:15:56 ----A---- C:\Windows\system32\msrating.dll
2017-03-20 20:15:56 ----A---- C:\Windows\system32\MshtmlDac.dll
2017-03-20 20:15:56 ----A---- C:\Windows\system32\mshtml.dll
2017-03-20 20:15:55 ----A---- C:\Windows\SYSWOW64\schannel.dll
2017-03-20 20:15:55 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2017-03-20 20:15:55 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2017-03-20 20:15:55 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2017-03-20 20:15:55 ----A---- C:\Windows\SYSWOW64\DWrite.dll
2017-03-20 20:15:55 ----A---- C:\Windows\system32\win32k.sys
2017-03-20 20:15:55 ----A---- C:\Windows\system32\schannel.dll
2017-03-20 20:15:55 ----A---- C:\Windows\system32\rpcrt4.dll
2017-03-20 20:15:55 ----A---- C:\Windows\system32\ntoskrnl.exe
2017-03-20 20:15:55 ----A---- C:\Windows\system32\ntdll.dll
2017-03-20 20:15:55 ----A---- C:\Windows\system32\msxml3.dll
2017-03-20 20:15:55 ----A---- C:\Windows\system32\msv1_0.dll
2017-03-20 20:15:55 ----A---- C:\Windows\system32\lsasrv.dll
2017-03-20 20:15:55 ----A---- C:\Windows\system32\KernelBase.dll
2017-03-20 20:15:55 ----A---- C:\Windows\system32\kerberos.dll
2017-03-20 20:15:55 ----A---- C:\Windows\system32\DWrite.dll
2017-03-20 20:15:55 ----A---- C:\Windows\system32\advapi32.dll
2017-03-20 20:15:54 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2017-03-20 20:15:54 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-1-0.dll
2017-03-20 20:15:54 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2017-03-20 20:15:54 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2017-03-20 20:15:54 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2017-03-20 20:15:54 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2017-03-20 20:15:54 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2017-03-20 20:15:54 ----A---- C:\Windows\SYSWOW64\wow32.dll
2017-03-20 20:15:54 ----A---- C:\Windows\SYSWOW64\wdigest.dll
2017-03-20 20:15:54 ----A---- C:\Windows\SYSWOW64\WcsPlugInService.dll
2017-03-20 20:15:54 ----A---- C:\Windows\SYSWOW64\usp10.dll
2017-03-20 20:15:54 ----A---- C:\Windows\SYSWOW64\TSpkg.dll
2017-03-20 20:15:54 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2017-03-20 20:15:54 ----A---- C:\Windows\SYSWOW64\srclient.dll
2017-03-20 20:15:54 ----A---- C:\Windows\SYSWOW64\setup16.exe
2017-03-20 20:15:54 ----A---- C:\Windows\SYSWOW64\secur32.dll
2017-03-20 20:15:54 ----A---- C:\Windows\SYSWOW64\rpchttp.dll
2017-03-20 20:15:54 ----A---- C:\Windows\SYSWOW64\rpcrt4.dll
2017-03-20 20:15:54 ----A---- C:\Windows\SYSWOW64\quartz.dll
2017-03-20 20:15:54 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2017-03-20 20:15:54 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2017-03-20 20:15:54 ----A---- C:\Windows\SYSWOW64\ncrypt.dll
2017-03-20 20:15:54 ----A---- C:\Windows\SYSWOW64\msxml3.dll
2017-03-20 20:15:54 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2017-03-20 20:15:54 ----A---- C:\Windows\SYSWOW64\mscms.dll
2017-03-20 20:15:54 ----A---- C:\Windows\SYSWOW64\msaudite.dll
2017-03-20 20:15:54 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2017-03-20 20:15:54 ----A---- C:\Windows\SYSWOW64\kernel32.dll
2017-03-20 20:15:54 ----A---- C:\Windows\SYSWOW64\instnm.exe
2017-03-20 20:15:54 ----A---- C:\Windows\SYSWOW64\inetcomm.dll
2017-03-20 20:15:54 ----A---- C:\Windows\SYSWOW64\icm32.dll
2017-03-20 20:15:54 ----A---- C:\Windows\SYSWOW64\gdi32.dll
2017-03-20 20:15:54 ----A---- C:\Windows\SYSWOW64\cryptbase.dll
2017-03-20 20:15:54 ----A---- C:\Windows\SYSWOW64\credssp.dll
2017-03-20 20:15:54 ----A---- C:\Windows\SYSWOW64\certcli.dll
2017-03-20 20:15:54 ----A---- C:\Windows\SYSWOW64\bcrypt.dll
2017-03-20 20:15:54 ----A---- C:\Windows\SYSWOW64\auditpol.exe
2017-03-20 20:15:54 ----A---- C:\Windows\SYSWOW64\appidapi.dll
2017-03-20 20:15:54 ----A---- C:\Windows\SYSWOW64\advapi32.dll
2017-03-20 20:15:54 ----A---- C:\Windows\SYSWOW64\adtschema.dll
2017-03-20 20:15:54 ----A---- C:\Windows\system32\wow64win.dll
2017-03-20 20:15:54 ----A---- C:\Windows\system32\wow64cpu.dll
2017-03-20 20:15:54 ----A---- C:\Windows\system32\wow64.dll
2017-03-20 20:15:54 ----A---- C:\Windows\system32\winsrv.dll
2017-03-20 20:15:54 ----A---- C:\Windows\system32\wdigest.dll
2017-03-20 20:15:54 ----A---- C:\Windows\system32\WcsPlugInService.dll
2017-03-20 20:15:54 ----A---- C:\Windows\system32\usp10.dll
2017-03-20 20:15:54 ----A---- C:\Windows\system32\TSpkg.dll
2017-03-20 20:15:54 ----A---- C:\Windows\system32\sspisrv.dll
2017-03-20 20:15:54 ----A---- C:\Windows\system32\sspicli.dll
2017-03-20 20:15:54 ----A---- C:\Windows\system32\srcore.dll
2017-03-20 20:15:54 ----A---- C:\Windows\system32\srclient.dll
2017-03-20 20:15:54 ----A---- C:\Windows\system32\smss.exe
2017-03-20 20:15:54 ----A---- C:\Windows\system32\setbcdlocale.dll
2017-03-20 20:15:54 ----A---- C:\Windows\system32\secur32.dll
2017-03-20 20:15:54 ----A---- C:\Windows\system32\rstrui.exe
2017-03-20 20:15:54 ----A---- C:\Windows\system32\rpchttp.dll
2017-03-20 20:15:54 ----A---- C:\Windows\system32\quartz.dll
2017-03-20 20:15:54 ----A---- C:\Windows\system32\ntvdm64.dll
2017-03-20 20:15:54 ----A---- C:\Windows\system32\ncrypt.dll
2017-03-20 20:15:54 ----A---- C:\Windows\system32\mscms.dll
2017-03-20 20:15:54 ----A---- C:\Windows\system32\msaudite.dll
2017-03-20 20:15:54 ----A---- C:\Windows\system32\lsass.exe
2017-03-20 20:15:54 ----A---- C:\Windows\system32\kernel32.dll
2017-03-20 20:15:54 ----A---- C:\Windows\system32\inetcomm.dll
2017-03-20 20:15:54 ----A---- C:\Windows\system32\icm32.dll
2017-03-20 20:15:54 ----A---- C:\Windows\system32\gdi32.dll
2017-03-20 20:15:54 ----A---- C:\Windows\system32\FntCache.dll
2017-03-20 20:15:54 ----A---- C:\Windows\system32\drivers\srv.sys
2017-03-20 20:15:54 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2017-03-20 20:15:54 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2017-03-20 20:15:54 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2017-03-20 20:15:54 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2017-03-20 20:15:54 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2017-03-20 20:15:54 ----A---- C:\Windows\system32\drivers\appid.sys
2017-03-20 20:15:54 ----A---- C:\Windows\system32\csrsrv.dll
2017-03-20 20:15:54 ----A---- C:\Windows\system32\cryptbase.dll
2017-03-20 20:15:54 ----A---- C:\Windows\system32\credssp.dll
2017-03-20 20:15:54 ----A---- C:\Windows\system32\conhost.exe
2017-03-20 20:15:54 ----A---- C:\Windows\system32\certcli.dll
2017-03-20 20:15:54 ----A---- C:\Windows\system32\bcrypt.dll
2017-03-20 20:15:54 ----A---- C:\Windows\system32\auditpol.exe
2017-03-20 20:15:54 ----A---- C:\Windows\system32\appidsvc.dll
2017-03-20 20:15:54 ----A---- C:\Windows\system32\appidpolicyconverter.exe
2017-03-20 20:15:54 ----A---- C:\Windows\system32\appidcertstorecheck.exe
2017-03-20 20:15:54 ----A---- C:\Windows\system32\appidapi.dll
2017-03-20 20:15:54 ----A---- C:\Windows\system32\adtschema.dll
2017-03-20 20:15:54 ----A---- C:\Windows\HelpPane.exe
2017-03-20 20:15:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-security-base-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-util-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-string-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-profile-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-misc-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-memory-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-io-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-heap-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-handle-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-fibers-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-delayload-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-debug-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-datetime-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-console-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2017-03-20 20:15:53 ----A---- C:\Windows\SYSWOW64\user.exe
2017-03-20 20:15:53 ----A---- C:\Windows\SYSWOW64\msxml3r.dll
2017-03-20 20:15:53 ----A---- C:\Windows\SYSWOW64\msobjs.dll
2017-03-20 20:15:53 ----A---- C:\Windows\SYSWOW64\INETRES.dll
2017-03-20 20:15:53 ----A---- C:\Windows\SYSWOW64\apisetschema.dll
2017-03-20 20:15:53 ----A---- C:\Windows\system32\msxml3r.dll
2017-03-20 20:15:53 ----A---- C:\Windows\system32\msobjs.dll
2017-03-20 20:15:53 ----A---- C:\Windows\system32\INETRES.dll
2017-03-20 20:15:53 ----A---- C:\Windows\system32\drivers\srvnet.sys
2017-03-20 20:15:53 ----A---- C:\Windows\system32\drivers\srv2.sys
2017-03-20 20:15:53 ----A---- C:\Windows\system32\apisetschema.dll
2017-03-20 20:15:41 ----A---- C:\Windows\system32\generaltel.dll
2017-03-20 20:15:41 ----A---- C:\Windows\system32\CompatTelRunner.exe
2017-03-20 20:15:41 ----A---- C:\Windows\system32\appraiser.dll
2017-03-20 20:15:41 ----A---- C:\Windows\system32\aeinv.dll
2017-03-15 22:40:52 ----RD---- C:\Program Files (x86)\Skype
2017-03-13 01:43:34 ----A---- C:\Windows\SYSWOW64\nvwgf2um.dll
2017-03-13 01:43:34 ----A---- C:\Windows\system32\nvhdap64.dll
2017-03-13 01:43:34 ----A---- C:\Windows\system32\nvdispgenco6437878.dll
2017-03-13 01:43:34 ----A---- C:\Windows\system32\nvdispco6437878.dll
2017-03-13 01:43:34 ----A---- C:\Windows\system32\drivers\nvhda64v.sys
2017-03-10 01:06:16 ----A---- C:\Windows\system32\drivers\aswbuniva.sys
2017-03-10 01:06:16 ----A---- C:\Windows\system32\drivers\aswbloga.sys
2017-03-10 01:06:16 ----A---- C:\Windows\system32\drivers\aswbidsha.sys
2017-03-10 01:06:16 ----A---- C:\Windows\system32\drivers\aswbidsdrivera.sys

======List of files/folders modified in the last 1 month======

2017-04-09 21:39:05 ----D---- C:\Program Files\trend micro
2017-04-09 21:38:52 ----D---- C:\Windows\Temp
2017-04-09 20:27:40 ----D---- C:\Windows\System32
2017-04-09 20:27:40 ----D---- C:\Windows\inf
2017-04-09 20:27:40 ----A---- C:\Windows\system32\PerfStringBackup.INI
2017-04-09 20:21:31 ----D---- C:\Windows\system32\Tasks
2017-04-09 20:21:23 ----D---- C:\ProgramData\NVIDIA
2017-04-09 20:21:22 ----D---- C:\Windows\system32\drivers
2017-04-09 20:20:47 ----HD---- C:\ProgramData
2017-04-09 20:19:01 ----D---- C:\Program Files (x86)\Steam
2017-04-08 11:21:52 ----D---- C:\Windows
2017-04-07 20:09:10 ----D---- C:\Program Files (x86)\Dropbox
2017-04-07 16:23:00 ----RD---- C:\Program Files
2017-04-07 16:23:00 ----D---- C:\ProgramData\Malwarebytes
2017-04-07 16:18:32 ----D---- C:\Program Files (x86)\TeamViewer
2017-04-07 16:00:41 ----D---- C:\Users\Roman\AppData\Roaming\vlc
2017-04-07 15:56:01 ----D---- C:\Users\Roman\AppData\Roaming\TS3Client
2017-04-06 22:33:11 ----D---- C:\Users\Roman\AppData\Roaming\DAEMON Tools Lite
2017-04-06 22:33:11 ----D---- C:\Users\Roman\AppData\Roaming\BitTorrent
2017-04-04 11:46:11 ----D---- C:\Windows\system32\config
2017-04-04 11:25:51 ----D---- C:\Windows\rescache
2017-04-04 09:56:20 ----D---- C:\Windows\winsxs
2017-04-03 23:39:45 ----D---- C:\Windows\SYSWOW64\sk-SK
2017-04-03 23:39:45 ----D---- C:\Windows\SYSWOW64\en-US
2017-04-03 23:39:45 ----D---- C:\Windows\SysWOW64
2017-04-03 23:39:45 ----D---- C:\Windows\system32\sk-SK
2017-04-03 23:39:45 ----D---- C:\Windows\system32\en-US
2017-04-03 22:45:14 ----RSD---- C:\Windows\Fonts
2017-04-03 17:06:05 ----SHD---- C:\System Volume Information
2017-04-03 17:05:41 ----D---- C:\Windows\system32\catroot2
2017-03-27 17:14:51 ----D---- C:\Program Files\FACEIT Client
2017-03-27 15:43:05 ----D---- C:\Windows\Microsoft.NET
2017-03-27 13:17:15 ----RSD---- C:\Windows\assembly
2017-03-27 02:27:35 ----SD---- C:\Users\Roman\AppData\Roaming\Microsoft
2017-03-27 02:26:55 ----SHD---- C:\Windows\Installer
2017-03-27 02:26:32 ----D---- C:\ProgramData\Microsoft Help
2017-03-27 02:25:46 ----D---- C:\Windows\ShellNew
2017-03-27 02:25:44 ----D---- C:\Program Files\Common Files\Microsoft Shared
2017-03-27 02:25:35 ----RD---- C:\Program Files (x86)
2017-03-27 02:24:54 ----D---- C:\Program Files\Common Files\System
2017-03-27 02:24:54 ----A---- C:\Windows\win.ini
2017-03-27 02:21:12 ----D---- C:\Program Files\Common Files
2017-03-27 02:21:10 ----SD---- C:\ProgramData\Microsoft
2017-03-25 16:07:35 ----D---- C:\Users\Roman\AppData\Roaming\TeamViewer
2017-03-25 16:07:34 ----D---- C:\Windows\debug
2017-03-25 10:51:08 ----D---- C:\Windows\Tasks
2017-03-25 10:51:07 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2017-03-25 10:51:06 ----D---- C:\Windows\system32\Macromed
2017-03-25 10:51:04 ----D---- C:\Windows\SYSWOW64\Macromed
2017-03-24 17:44:45 ----D---- C:\Program Files (x86)\Opera
2017-03-21 09:49:53 ----D---- C:\ProgramData\NVIDIA Corporation
2017-03-21 09:49:24 ----D---- C:\Windows\system32\DriverStore
2017-03-21 09:49:19 ----D---- C:\Program Files (x86)\VulkanRT
2017-03-20 20:19:54 ----D---- C:\Windows\SYSWOW64\migration
2017-03-20 20:19:54 ----D---- C:\Windows\system32\migration
2017-03-20 20:19:54 ----D---- C:\Windows\system32\Boot
2017-03-20 20:19:54 ----D---- C:\Windows\AppPatch
2017-03-20 20:19:54 ----D---- C:\Program Files\Internet Explorer
2017-03-20 20:19:54 ----D---- C:\Program Files\DVD Maker
2017-03-20 20:19:54 ----D---- C:\Program Files (x86)\Internet Explorer
2017-03-20 20:18:00 ----D---- C:\Windows\system32\MRT
2017-03-20 20:16:46 ----AC---- C:\Windows\system32\MRT.exe
2017-03-20 20:16:10 ----D---- C:\Windows\system32\appraiser
2017-03-17 02:59:25 ----A---- C:\Windows\SYSWOW64\nvoglv32.dll
2017-03-17 02:59:25 ----A---- C:\Windows\SYSWOW64\nvapi.dll
2017-03-17 02:59:25 ----A---- C:\Windows\system32\nvwgf2umx.dll
2017-03-17 02:59:25 ----A---- C:\Windows\system32\nvumdshimx.dll
2017-03-17 02:59:25 ----A---- C:\Windows\system32\nvapi64.dll
2017-03-17 01:31:01 ----A---- C:\Windows\NvContainerRecovery.bat
2017-03-17 01:16:11 ----A---- C:\Windows\system32\nvsvc64.dll
2017-03-17 01:16:11 ----A---- C:\Windows\system32\nvcpl.dll
2017-03-17 01:16:09 ----A---- C:\Windows\system32\nvsvcr.dll
2017-03-17 01:16:09 ----A---- C:\Windows\system32\nvshext.dll
2017-03-17 01:16:09 ----A---- C:\Windows\system32\nvmctray.dll
2017-03-17 01:16:09 ----A---- C:\Windows\system32\nv3dappshextr.dll
2017-03-17 01:16:09 ----A---- C:\Windows\system32\nv3dappshext.dll
2017-03-16 08:01:20 ----D---- C:\Windows\SoftwareDistribution
2017-03-15 22:40:53 ----D---- C:\ProgramData\Skype
2017-03-15 22:40:52 ----D---- C:\Program Files (x86)\Common Files
2017-03-15 22:40:41 ----D---- C:\ProgramData\Package Cache
2017-03-13 01:45:41 ----D---- C:\Program Files (x86)\NVIDIA Corporation
2017-03-13 01:37:59 ----D---- C:\Program Files\NVIDIA Corporation
2017-03-12 23:21:32 ----D---- C:\ProgramData\AVAST Software

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 aswbidsh;aswbidsh; C:\Windows\system32\drivers\aswbidsha.sys [2017-04-03 189768]
R0 aswblog;aswblog; C:\Windows\system32\drivers\aswbloga.sys [2017-04-03 334088]
R0 aswbuniv;aswbuniv; C:\Windows\system32\drivers\aswbuniva.sys [2017-04-03 48528]
R0 aswRvrt;aswRvrt; C:\Windows\system32\drivers\aswRvrt.sys [2017-04-03 75704]
R0 aswVmm;aswVmm; C:\Windows\system32\drivers\aswVmm.sys [2017-04-03 339696]
R0 iusb3hcs;Ovládač prepínača hostiteľského radiča Intel(R) USB 3.0; C:\Windows\system32\DRIVERS\iusb3hcs.sys [2014-08-25 20464]
R0 PxHlpa64;PxHlpa64; C:\Windows\System32\Drivers\PxHlpa64.sys [2011-11-03 56208]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-21 213888]
R1 AsIO;AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [2015-10-27 15232]
R1 AsUpIO;AsUpIO; C:\Windows\SysWow64\drivers\AsUpIO.sys [2014-02-24 14464]
R1 aswbidsdriver;aswbidsdriver; C:\Windows\system32\drivers\aswbidsdrivera.sys [2017-04-03 307736]
R1 aswKbd;aswKbd; C:\Windows\system32\drivers\aswKbd.sys [2017-04-03 32600]
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [2017-04-03 101152]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2017-04-03 1005048]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2017-04-03 556784]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-21 514560]
R1 FACEIT;FACEIT; \??\C:\Windows\System32\Drivers\FACEIT.sys [2017-03-27 5143032]
R1 VBoxDrv;VirtualBox Service; C:\Windows\system32\DRIVERS\VBoxDrv.sys [2016-11-21 933088]
R1 VBoxNetAdp;VirtualBox NDIS 6.0 Miniport Service; C:\Windows\system32\DRIVERS\VBoxNetAdp6.sys [2016-11-21 132120]
R1 VBoxNetLwf;VirtualBox NDIS6 Bridged Networking Service; C:\Windows\system32\DRIVERS\VBoxNetLwf.sys [2016-11-21 206416]
R1 VBoxUSBMon;VirtualBox USB Monitor Driver; C:\Windows\system32\DRIVERS\VBoxUSBMon.sys [2016-11-21 150280]
R2 aswMonFlt;aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [2017-04-03 127112]
R2 aswStm;aswStm; C:\Windows\system32\drivers\aswStm.sys [2017-04-03 164064]
R2 NPF;NetGroup Packet Filter Driver; C:\Windows\system32\drivers\npf.sys [2013-03-01 36600]
R3 CT20XUT.SYS;CT20XUT.SYS; C:\Windows\System32\drivers\CT20XUT.SYS [2015-12-19 205056]
R3 ctac32k;Creative AC3 Software Decoder; C:\Windows\system32\drivers\ctac32k.sys [2015-12-19 582912]
R3 ctaud2k;Creative Audio Driver (WDM); C:\Windows\system32\drivers\ctaud2k.sys [2015-12-19 689024]
R3 CTEXFIFX.SYS;CTEXFIFX.SYS; C:\Windows\System32\drivers\CTEXFIFX.SYS [2015-12-19 1419520]
R3 CTHWIUT.SYS;CTHWIUT.SYS; C:\Windows\System32\drivers\CTHWIUT.SYS [2015-12-19 97024]
R3 ctprxy2k;Creative Proxy Driver; C:\Windows\system32\drivers\ctprxy2k.sys [2015-12-19 18176]
R3 ctsfm2k;Creative SoundFont Management Device Driver; C:\Windows\system32\drivers\ctsfm2k.sys [2015-12-19 215296]
R3 dtlitescsibus;DAEMON Tools Lite Virtual SCSI Bus; C:\Windows\system32\DRIVERS\dtlitescsibus.sys [2015-11-25 30264]
R3 dtliteusbbus;DAEMON Tools Lite Virtual USB Bus; C:\Windows\system32\DRIVERS\dtliteusbbus.sys [2015-11-25 47160]
R3 emupia;E-mu Plug-in Architecture Driver; C:\Windows\system32\drivers\emupia2k.sys [2015-12-19 120576]
R3 ha20x2k;Creative 20X HAL Driver; C:\Windows\system32\drivers\ha20x2k.sys [2015-12-19 1564416]
R3 hidkmdf;Filter Driver Service for HID-KMDF Interface layer; C:\Windows\system32\DRIVERS\hidkmdf.sys [2016-05-27 25656]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2015-06-18 4496600]
R3 iusb3hub;Ovládač rozbočovača Intel(R) USB 3.0; C:\Windows\system32\DRIVERS\iusb3hub.sys [2014-08-25 383984]
R3 iusb3xhc;Ovládač hostiteľského radiča Intel(R) USB 3.0 eXtensible; C:\Windows\system32\DRIVERS\iusb3xhc.sys [2014-08-25 795120]
R3 MEIx64;Intel(R) Management Engine Interface ; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [2014-09-30 129312]
R3 NVHDA;Service for NVIDIA High Definition Audio Driver; C:\Windows\system32\drivers\nvhda64v.sys [2017-02-24 217528]
R3 nvvad_WaveExtensible;NVIDIA Virtual Audio Device (Wave Extensible) (WDM); C:\Windows\system32\drivers\nvvad64v.sys [2017-01-06 47672]
R3 nvvhci;NVVHCI Enumerator Service; C:\Windows\system32\DRIVERS\nvvhci.sys [2017-01-20 57792]
R3 ossrv;Creative OS Services Driver; C:\Windows\system32\drivers\ctoss2k.sys [2015-12-19 181504]
R3 RTL8169;Realtek 8169 NT Driver; C:\Windows\system32\DRIVERS\Rtlh64.sys [2014-12-10 797400]
R3 sshid;SteelSeries HID Service; C:\Windows\system32\DRIVERS\sshid.sys [2016-05-27 51400]
R3 teamviewervpn;TeamViewer VPN Adapter; C:\Windows\system32\DRIVERS\teamviewervpn.sys [2015-08-18 35112]
R4 IOMap;IOMap; \??\C:\Windows\system32\drivers\IOMap64.sys []
S2 MBAMChameleon;MBAMChameleon; C:\Windows\system32\drivers\MBAMChameleon.sys []
S3 ASUSFILTER;ASUSFILTER; C:\Windows\SysWow64\drivers\ASUSFILTER.sys [2011-09-20 46152]
S3 aswHwid;aswHwid; C:\Windows\system32\drivers\aswHwid.sys [2017-04-03 38296]
S3 cpuz137;cpuz137; \??\C:\Users\Roman\AppData\Local\Temp\cpuz137\cpuz137_x64.sys []
S3 cpuz139;cpuz139; \??\C:\Users\Roman\AppData\Local\Temp\cpuz139\cpuz139_x64.sys []
S3 CT20XUT;CT20XUT; C:\Windows\system32\drivers\CT20XUT.SYS [2015-12-19 205056]
S3 CTEXFIFX;CTEXFIFX; C:\Windows\system32\drivers\CTEXFIFX.SYS [2015-12-19 1419520]
S3 CTHWIUT;CTHWIUT; C:\Windows\system32\drivers\CTHWIUT.SYS [2015-12-19 97024]
S3 dbx;dbx; C:\Windows\system32\DRIVERS\dbx.sys []
S3 dmvsc;dmvsc; C:\Windows\system32\drivers\dmvsc.sys [2010-11-21 71168]
S3 I2cHkBurn;I2cHkBurn; C:\Windows\system32\drivers\I2cHkBurn.sys [2015-07-27 41760]
S3 L6GX;Service - Line 6 GX; C:\Windows\System32\Drivers\L6GX64.sys [2015-08-01 772864]
S3 NvStreamKms;NVIDIA KMS; \??\C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [2017-02-23 27584]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-21 165888]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 19456]
S3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2014-05-29 940760]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-21 6656]
S3 ssdevfactory;SteelSeries Device Factory Service; C:\Windows\system32\DRIVERS\ssdevfactory.sys [2015-10-27 40576]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-21 34688]
S3 Synth3dVsc;Synth3dVsc; C:\Windows\System32\drivers\synth3dvsc.sys [2010-11-21 88960]
S3 terminpt;Microsoft Remote Desktop Input Driver; C:\Windows\system32\drivers\terminpt.sys [2012-08-23 29696]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2013-10-02 56832]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2012-08-23 30208]
S3 tsusbhub;@%SystemRoot%\system32\drivers\tsusbhub.sys,-1; C:\Windows\system32\drivers\tsusbhub.sys [2010-11-21 117248]
S3 USBAAPL64;Apple Mobile USB Driver; C:\Windows\System32\Drivers\usbaapl64.sys [2015-06-17 54784]
S3 VGPU;VGPU; C:\Windows\System32\drivers\rdvgkmd.sys []
S3 vmbus;vmbus; C:\Windows\system32\drivers\vmbus.sys [2010-11-21 199552]
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-21 21760]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2016-12-19 82640]
R2 asComSvc;ASUS Com Service; C:\Program Files (x86)\ASUS\AXSP\1.02.00\atkexComSvc.exe [2014-09-09 936728]
R2 asHmComSvc;ASUS HM Com Service; C:\Program Files (x86)\ASUS\AAHM\1.00.22\aaHMSvc.exe [2014-09-09 954648]
R2 AsusFanControlService;AsusFanControlService; C:\Program Files (x86)\ASUS\AsusFanControlService\1.06.13\AsusFanControlService.exe [2014-08-04 384000]
R2 avast! Antivirus;Avast Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2017-04-03 261712]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 CTAudSvcService;Creative Audio Service; C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe [2010-02-12 286720]
R2 DbxSvc;DbxSvc; C:\Windows\system32\DbxSvc.exe [2017-04-06 46408]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 NIHardwareService;NIHardwareService; C:\Program Files\Common Files\Native Instruments\Hardware\NIHardwareService.exe [2012-09-05 6364024]
R2 NvContainerLocalSystem;NVIDIA LocalSystem Container; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [2017-02-23 462784]
R2 NVDisplay.ContainerLocalSystem;NVIDIA Display Container LS; C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe [2017-03-17 464440]
R2 NvTelemetryContainer;NVIDIA Telemetry Container; C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe [2017-02-23 425408]
R2 PnkBstrA;PnkBstrA; C:\Windows\syswow64\PnkBstrA.exe [2015-11-25 66872]
R2 TeamViewer;TeamViewer 11; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [2016-07-18 7183632]
R3 aswbIDSAgent;aswbIDSAgent; C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe [2017-04-03 7398336]
R3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS; C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [2013-01-02 171632]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2016-11-29 105144]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2016-11-29 125112]
S2 dbupdate;Dropbox Update Service (dbupdate); C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [2016-11-05 143144]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-10-27 144200]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2017-02-27 317400]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 27136]
S3 Creative Audio Engine Licensing Service;Creative Audio Engine Licensing Service; C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\CTAELicensing.exe [2016-02-13 79360]
S3 dbupdatem;Dropbox Update Service (dbupdatem); C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [2016-11-05 143144]
S3 Disc Soft Lite Bus Service;Disc Soft Lite Bus Service; D:\Programy\DAEMON Tools Lite\DiscSoftBusService.exe [2015-11-18 1369432]
S3 EasyAntiCheat;EasyAntiCheat; C:\Windows\syswow64\EasyAntiCheat.exe [2016-04-19 242960]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-10-27 144200]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2017-03-04 114688]
S3 NvContainerNetworkService;NVIDIA NetworkService Container; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [2017-02-23 462784]
S3 ose64;Office 64 Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2014-01-23 178760]
S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2014-01-23 5132888]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 rpcapd;Remote Packet Capture Protocol v.0 (experimental); C:\Program Files (x86)\WinPcap\rpcapd.exe [2013-03-01 118520]
S3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2017-03-23 1590560]
S3 SwitchBoard;SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S4 aspnet_state;ASP.NET State Service; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2016-11-29 51384]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2016-11-29 135848]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2016-11-29 135848]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2016-11-29 135848]
S4 tvnserver;TightVNC Server; C:\Program Files\TightVNC\tvnserver.exe [2013-07-19 2179056]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118274
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o kontrolu, blbne počítač

#8 Příspěvek od Rudy »

Stáhněte OTM: http://oldtimer.geekstogo.com/OTM.exe a uložte na plochu. Spusťte a do levého okna zkopírujte:
:files
C:\Windows\tasks\DropboxUpdateTaskMachineCore.job
C:\Windows\tasks\DropboxUpdateTaskMachineUA.job

:reg
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"SunJavaUpdateSched"=-

:commands
[Purity]
[Emptytemp]
[Emptyflash]
a klikněte na >MoveIt!<. Před skenem vypněte antivir a po něm restartujte PC. Dejte nový log RSIT.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

wormik
Návštěvník
Návštěvník
Příspěvky: 12
Registrován: 17 srp 2015 10:55

Re: Prosím o kontrolu, blbne počítač

#9 Příspěvek od wormik »

Logfile of random's system information tool 1.10 (written by random/random)
Run by Roman at 2017-04-09 22:28:51
Microsoft Windows 7 Ultimate Service Pack 1
System drive C: has 141 GB (59%) free of 238 GB
Total RAM: 16327 MB (87% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 22:28:52, on 9. 4. 2017
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.18618)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\NVIDIA Corporation\NvContainer\nvcontainer.exe
C:\Program Files (x86)\ASUS\AI Suite III\DIP4\DIPAwayMode\DipAwayMode.exe
C:\Windows\SysWOW64\muachost.exe
C:\Program Files (x86)\3RVX-2.9.1\3RVX.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe
C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe
C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
C:\Program Files (x86)\Opera\44.0.2510.857\opera_autoupdate.exe
C:\Program Files\trend micro\Roman.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe,
O1 - Hosts: ˙ţ127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O2 - BHO: Lync Click to Call BHO - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office15\URLREDIR.DLL
O2 - BHO: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\PROGRA~2\MICROS~1\Office15\GROOVEEX.DLL
O4 - HKLM\..\Run: [USB3MON] "C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
O4 - HKLM\..\Run: [Dropbox] "C:\Program Files (x86)\Dropbox\Client\Dropbox.exe" /systemstartup
O4 - HKCU\..\Run: [3RVX] C:\Program Files (x86)\3RVX-2.9.1\3RVX.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CtxfiReg] CTXFIREG.exe /FAIL1 (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CtxfiReg] CTXFIREG.exe /FAIL1 (User 'Default user')
O8 - Extra context menu item: E&xportovať do programu Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office15\EXCEL.EXE/3000
O8 - Extra context menu item: Od&oslať do programu OneNote - res://C:\PROGRA~1\MICROS~3\Office15\ONBttnIE.dll/105
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIE.dll
O9 - Extra button: Lync Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
O9 - Extra 'Tools' menuitem: Lync Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
O9 - Extra button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - Trusted Zone: *.line6.net
O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files (x86)\Microsoft Office\Office15\MSOSB.DLL
O18 - Filter hijack: text/xml - {807583E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\MSOXMLMF.DLL
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: ASUS Com Service (asComSvc) - Unknown owner - C:\Program Files (x86)\ASUS\AXSP\1.02.00\atkexComSvc.exe
O23 - Service: ASUS HM Com Service (asHmComSvc) - ASUSTeK Computer Inc. - C:\Program Files (x86)\ASUS\AAHM\1.00.22\aaHMSvc.exe
O23 - Service: AsusFanControlService - ASUSTeK Computer Inc. - C:\Program Files (x86)\ASUS\AsusFanControlService\1.06.13\AsusFanControlService.exe
O23 - Service: aswbIDSAgent - AVAST Software s.r.o. - C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Creative Audio Engine Licensing Service - Creative Labs - C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\CTAELicensing.exe
O23 - Service: Creative Audio Service (CTAudSvcService) - Creative Technology Ltd - C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe
O23 - Service: Dropbox Update Service (dbupdate) (dbupdate) - Dropbox, Inc. - C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
O23 - Service: Dropbox Update Service (dbupdatem) (dbupdatem) - Dropbox, Inc. - C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
O23 - Service: DbxSvc - Unknown owner - C:\Windows\system32\DbxSvc.exe (file missing)
O23 - Service: Disc Soft Lite Bus Service - Disc Soft Ltd - D:\Programy\DAEMON Tools Lite\DiscSoftBusService.exe
O23 - Service: EasyAntiCheat - EasyAntiCheat Ltd - C:\Windows\system32\EasyAntiCheat.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NIHardwareService - Native Instruments GmbH - C:\Program Files\Common Files\Native Instruments\Hardware\NIHardwareService.exe
O23 - Service: NVIDIA LocalSystem Container (NvContainerLocalSystem) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
O23 - Service: NVIDIA NetworkService Container (NvContainerNetworkService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
O23 - Service: NVIDIA Display Container LS (NVDisplay.ContainerLocalSystem) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
O23 - Service: NVIDIA Telemetry Container (NvTelemetryContainer) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - Riverbed Technology, Inc. - C:\Program Files (x86)\WinPcap\rpcapd.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: SwitchBoard - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O23 - Service: TeamViewer 11 (TeamViewer) - TeamViewer GmbH - C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 10598 bytes

======Listing Processes======



\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
winlogon.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs

"C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe"
C:\Windows\system32\svchost.exe -k GPSvcGroup
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
taskeng.exe {3C990BCB-9940-4726-B3FA-2E8B9158D12F}
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Windows\System32\svchost.exe -k NetworkService
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files (x86)\ASUS\AXSP\1.02.00\atkexComSvc.exe"
"C:\Program Files (x86)\ASUS\AAHM\1.00.22\aaHMSvc.exe"
"C:\Program Files (x86)\ASUS\AsusFanControlService\1.06.13\AsusFanControlService.exe"
C:\Windows\system32\DbxSvc.exe
C:\Windows\System32\svchost.exe -k utcsvc
"C:\Program Files\Common Files\Native Instruments\Hardware\NIHardwareService.exe"
"C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe" -s NvContainerLocalSystem -f "C:\ProgramData\NVIDIA\NvContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\NvContainer\plugins\LocalSystem" -r -p 30000
"C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem" -r -p 30000
"C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe" -s NvTelemetryContainer -f "C:\ProgramData\NVIDIA\NvTelemetryContainer.log" -l 3 -d "C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\plugin"
C:\Windows\SysWOW64\PnkBstrA.exe
C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe -first
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe"
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe"
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-bd42d4e4-56a5-4083-9790-72bdedf0c07d -SystemEventPortName:HostProcess-2c2cfd1e-2a08-4cbd-9037-400dbd2649c2 -IoCancelEventPortName:HostProcess-5cea911a-5be7-4dd9-9e64-2a5bd81a17ba -NonStateChangingEventPortName:HostProcess-5e93e6a7-81b3-43ae-8308-c99b209e3671 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:2e4334d9-fa2c-4809-adb0-9bd7b56662ce -DeviceGroupId:
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
"taskhost.exe"
"C:\Program Files (x86)\NVIDIA Corporation\NvContainer\nvcontainer.exe" -f "C:\ProgramData\NVIDIA\NvContainerUser%d.log" -d "C:\Program Files (x86)\NVIDIA Corporation\NvContainer\plugins\User" -r -l 3 -p 30000 -c
"C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe" /c
taskeng.exe {267CC6D0-7191-46FD-AA6D-F8EA85578385}
"C:\Windows\system32\Dwm.exe"
"C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE"
C:\Windows\Explorer.EXE
taskeng.exe {75C3DACD-DB00-4692-A233-AE46C3E04B97}
"C:\Program Files (x86)\ASUS\AI Suite III\DIP4\DIPAwayMode\DipAwayMode.exe"
C:\Windows\SysWOW64\muachost.exe
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe"
C:\Windows\system32\sppsvc.exe
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1"
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe" -s
"C:\Program Files (x86)\3RVX-2.9.1\3RVX.exe"
AvastUI.exe /nogui
"C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
"C:\Program Files\NVIDIA Corporation\ShadowPlay\nvspcaps64.exe" -Embedding
"C:\Program Files\NVIDIA Corporation\ShadowPlay\nvsphelper64.exe"
"C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe"
"C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe" --type=renderer --disable-gpu-compositing --no-sandbox --primordial-pipe-token=DBD1189505C4229A4FF496F947DDD963 --lang=en-US --lang=en-US --log-file="C:\Users\Roman\AppData\Local\NVIDIA Corporation\NVIDIA Share\CefCache\debug.log" --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --enable-main-frame-before-activation --content-image-texture-target=0,0,3553;0,1,3553;0,2,3553;0,3,3553;0,4,3553;0,5,3553;0,6,3553;0,7,3553;0,8,3553;0,9,3553;0,10,3553;0,11,3553;0,12,3553;0,13,3553;0,14,3553;0,15,3553;1,0,3553;1,1,3553;1,2,3553;1,3,3553;1,4,3553;1,5,3553;1,6,3553;1,7,3553;1,8,3553;1,9,3553;1,10,3553;1,11,3553;1,12,3553;1,13,3553;1,14,3553;1,15,3553;2,0,3553;2,1,3553;2,2,3553;2,3,3553;2,4,3553;2,5,3553;2,6,3553;2,7,3553;2,8,3553;2,9,3553;2,10,3553;2,11,3553;2,12,3553;2,13,3553;2,14,3553;2,15,3553;3,0,3553;3,1,3553;3,2,3553;3,3,3553;3,4,3553;3,5,3553;3,6,3553;3,7,3553;3,8,3553;3,9,3553;3,10,3553;3,11,3553;3,12,3553;3,13,3553;3,14,3553;3,15,3553 --disable-accelerated-video-decode --disable-webrtc-hw-encoding --disable-gpu-compositing --service-request-channel-token=DBD1189505C4229A4FF496F947DDD963 --renderer-client-id=2 --mojo-platform-channel-handle=1484 /prefetch:1
"C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe" index.js
\??\C:\Windows\system32\conhost.exe "203986403-5984767581559005322-1237806542-649192508-25534971204709687829413132
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
"C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe" /cr
"C:\Program Files (x86)\Opera\44.0.2510.857\opera_autoupdate.exe" --host=https://autoupdate.geo.opera.com/ --pipeid=oauc_pipe40ee93086a9508547b77ff7267c27571 --version=44.0.2510.857 --edition --lang=sk --producttype --requesttype=shutdown --operadir="C:\Program Files (x86)\Opera\44.0.2510.857" --installdir="C:\Program Files (x86)\Opera" --profile="C:\Users\Roman\AppData\Roaming\Opera Software\Opera Stable" --installationdatadir="C:\Program Files (x86)\Opera" --firstrunver=33.0.1990.43 --firstrunts=1446172725 --currentstats="C:\Users\Roman\AppData\Roaming\Opera Software\Opera Stable\ssdfp1176.1.702571824"
C:\Windows\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
C:\Windows\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
"C:\Users\Roman\Desktop\RSITx64.exe"
C:\Windows\system32\DllHost.exe /Processid:{F9717507-6651-4EDB-BFF7-AE615179BCCF}

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Lync Browser Helper - C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2012-10-01 205416]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre1.8.0_121\bin\ssv.dll [2017-02-06 571456]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2017-04-03 895528]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~3\Office15\URLREDIR.DLL [2014-01-23 881880]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre1.8.0_121\bin\jp2ssv.dll [2017-02-06 234560]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Lync Browser Helper - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2014-01-21 153248]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2017-04-03 773920]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MICROS~1\Office15\URLREDIR.DLL [2014-01-21 707800]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft SkyDrive Pro Browser Helper - C:\PROGRA~2\MICROS~1\Office15\GROOVEEX.DLL [2014-01-21 1728216]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [2015-06-12 8484056]
"ShadowPlay"=C:\Windows\system32\nvspcap64.dll [2017-02-23 1880512]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvLaunch.exe [2017-04-03 213824]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"3RVX"=C:\Program Files (x86)\3RVX-2.9.1\3RVX.exe [2015-09-19 622592]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AdobeAAMUpdater-1.0]
C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2012-04-04 446392]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AdobeCS6ServiceManager]
C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe [2012-03-09 1073312]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\APSDaemon]
C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [2013-09-13 59720]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CAM]
C:\Program Files (x86)\NZXT\CAM\CAMLauncher.exe -autostart []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CCleaner Monitoring]
C:\Program Files\CCleaner\CCleaner64.exe [2016-08-26 8912088]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CTxfiHlp]
CTXFIHLP.EXE []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite Automount]
D:\Programy\DAEMON Tools Lite\DTAgent.exe [2015-11-18 4179288]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Dropbox]
C:\Program Files (x86)\Dropbox\Client\Dropbox.exe [2017-04-06 28329912]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
C:\Program Files (x86)\QuickTime\QTTask.exe [2015-12-09 421888]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Spotify]
C:\Users\Roman\AppData\Roaming\Spotify\Spotify.exe -autostart -minimized []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Spotify Web Helper]
C:\Users\Roman\AppData\Roaming\Spotify\SpotifyWebHelper.exe []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SwitchBoard]
C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\tvncontrol]
C:\Program Files\TightVNC\tvnserver.exe [2013-07-19 2179056]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^SteelSeries Engine 3.lnk]
C:\PROGRA~1\STEELS~1\STEELS~1\STEELS~1.EXE -dataPath=C:\ProgramData\SteelSeries\SteelSeries Engine 3 -dbEnv=production -auto=true []

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"USB3MON"=C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [2014-08-25 293872]
"Dropbox"=C:\Program Files (x86)\Dropbox\Client\Dropbox.exe [2017-04-06 28329912]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MBAMService]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"SoftwareSASGeneration"=1

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"aux2"=wdmaud.drv
"wave5"=wdmaud.drv
"midi5"=wdmaud.drv
"mixer5"=wdmaud.drv
"wave7"=wdmaud.drv
"midi7"=wdmaud.drv
"mixer7"=wdmaud.drv
"aux3"=wdmaud.drv
"wave8"=wdmaud.drv
"midi8"=wdmaud.drv
"mixer8"=wdmaud.drv
"aux4"=wdmaud.drv
"wave9"=wdmaud.drv
"midi9"=wdmaud.drv
"mixer9"=wdmaud.drv
"aux5"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"aux6"=wdmaud.drv
"aux7"=wdmaud.drv
"VIDC.FPS1"=frapsv64.dll
"aux8"=wdmaud.drv
"aux9"=wdmaud.drv
"VIDC.RTV1"=rtvcvfw64.dll
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"wave6"=wdmaud.drv
"midi6"=wdmaud.drv
"mixer6"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2017-04-09 22:25:40 ----D---- C:\_OTM
2017-04-09 20:19:05 ----D---- C:\AdwCleaner
2017-04-07 16:24:09 ----D---- C:\rsit
2017-04-06 22:34:24 ----A---- C:\Windows\ntbtlog.txt
2017-04-06 18:57:14 ----A---- C:\Windows\system32\DbxSvc.exe
2017-04-03 17:05:55 ----A---- C:\Windows\SYSWOW64\wuwebv.dll
2017-04-03 17:05:55 ----A---- C:\Windows\SYSWOW64\wups.dll
2017-04-03 17:05:55 ----A---- C:\Windows\SYSWOW64\wudriver.dll
2017-04-03 17:05:55 ----A---- C:\Windows\SYSWOW64\wuapp.exe
2017-04-03 17:05:55 ----A---- C:\Windows\SYSWOW64\wuapi.dll
2017-04-03 17:05:55 ----A---- C:\Windows\SYSWOW64\win32spl.dll
2017-04-03 17:05:55 ----A---- C:\Windows\SYSWOW64\ucrtbase.dll
2017-04-03 17:05:55 ----A---- C:\Windows\SYSWOW64\tzres.dll
2017-04-03 17:05:55 ----A---- C:\Windows\SYSWOW64\samlib.dll
2017-04-03 17:05:55 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-utility-l1-1-0.dll
2017-04-03 17:05:55 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-time-l1-1-0.dll
2017-04-03 17:05:55 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-string-l1-1-0.dll
2017-04-03 17:05:55 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-stdio-l1-1-0.dll
2017-04-03 17:05:55 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-runtime-l1-1-0.dll
2017-04-03 17:05:55 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-process-l1-1-0.dll
2017-04-03 17:05:55 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-private-l1-1-0.dll
2017-04-03 17:05:55 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-multibyte-l1-1-0.dll
2017-04-03 17:05:55 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-math-l1-1-0.dll
2017-04-03 17:05:55 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-locale-l1-1-0.dll
2017-04-03 17:05:55 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-heap-l1-1-0.dll
2017-04-03 17:05:55 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-filesystem-l1-1-0.dll
2017-04-03 17:05:55 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-environment-l1-1-0.dll
2017-04-03 17:05:55 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-convert-l1-1-0.dll
2017-04-03 17:05:55 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-conio-l1-1-0.dll
2017-04-03 17:05:55 ----A---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l2-1-0.dll
2017-04-03 17:05:55 ----A---- C:\Windows\SYSWOW64\api-ms-win-core-timezone-l1-1-0.dll
2017-04-03 17:05:55 ----A---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-2-0.dll
2017-04-03 17:05:55 ----A---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-1.dll
2017-04-03 17:05:55 ----A---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-2-0.dll
2017-04-03 17:05:55 ----A---- C:\Windows\SYSWOW64\api-ms-win-core-file-l2-1-0.dll
2017-04-03 17:05:55 ----A---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-2-0.dll
2017-04-03 17:05:55 ----A---- C:\Windows\system32\wuwebv.dll
2017-04-03 17:05:55 ----A---- C:\Windows\system32\wups2.dll
2017-04-03 17:05:55 ----A---- C:\Windows\system32\wups.dll
2017-04-03 17:05:55 ----A---- C:\Windows\system32\wudriver.dll
2017-04-03 17:05:55 ----A---- C:\Windows\system32\wucltux.dll
2017-04-03 17:05:55 ----A---- C:\Windows\system32\wuaueng.dll
2017-04-03 17:05:55 ----A---- C:\Windows\system32\wuauclt.exe
2017-04-03 17:05:55 ----A---- C:\Windows\system32\wuapp.exe
2017-04-03 17:05:55 ----A---- C:\Windows\system32\wuapi.dll
2017-04-03 17:05:55 ----A---- C:\Windows\system32\wu.upgrade.ps.dll
2017-04-03 17:05:55 ----A---- C:\Windows\system32\WinSetupUI.dll
2017-04-03 17:05:55 ----A---- C:\Windows\system32\win32spl.dll
2017-04-03 17:05:55 ----A---- C:\Windows\system32\ucrtbase.dll
2017-04-03 17:05:55 ----A---- C:\Windows\system32\tzres.dll
2017-04-03 17:05:55 ----A---- C:\Windows\system32\samsrv.dll
2017-04-03 17:05:55 ----A---- C:\Windows\system32\samlib.dll
2017-04-03 17:05:55 ----A---- C:\Windows\system32\api-ms-win-crt-utility-l1-1-0.dll
2017-04-03 17:05:55 ----A---- C:\Windows\system32\api-ms-win-crt-time-l1-1-0.dll
2017-04-03 17:05:55 ----A---- C:\Windows\system32\api-ms-win-crt-string-l1-1-0.dll
2017-04-03 17:05:55 ----A---- C:\Windows\system32\api-ms-win-crt-stdio-l1-1-0.dll
2017-04-03 17:05:55 ----A---- C:\Windows\system32\api-ms-win-crt-runtime-l1-1-0.dll
2017-04-03 17:05:55 ----A---- C:\Windows\system32\api-ms-win-crt-process-l1-1-0.dll
2017-04-03 17:05:55 ----A---- C:\Windows\system32\api-ms-win-crt-private-l1-1-0.dll
2017-04-03 17:05:55 ----A---- C:\Windows\system32\api-ms-win-crt-multibyte-l1-1-0.dll
2017-04-03 17:05:55 ----A---- C:\Windows\system32\api-ms-win-crt-math-l1-1-0.dll
2017-04-03 17:05:55 ----A---- C:\Windows\system32\api-ms-win-crt-locale-l1-1-0.dll
2017-04-03 17:05:55 ----A---- C:\Windows\system32\api-ms-win-crt-heap-l1-1-0.dll
2017-04-03 17:05:55 ----A---- C:\Windows\system32\api-ms-win-crt-filesystem-l1-1-0.dll
2017-04-03 17:05:55 ----A---- C:\Windows\system32\api-ms-win-crt-environment-l1-1-0.dll
2017-04-03 17:05:55 ----A---- C:\Windows\system32\api-ms-win-crt-convert-l1-1-0.dll
2017-04-03 17:05:55 ----A---- C:\Windows\system32\api-ms-win-crt-conio-l1-1-0.dll
2017-04-03 17:05:55 ----A---- C:\Windows\system32\api-ms-win-core-xstate-l2-1-0.dll
2017-04-03 17:05:55 ----A---- C:\Windows\system32\api-ms-win-core-timezone-l1-1-0.dll
2017-04-03 17:05:55 ----A---- C:\Windows\system32\api-ms-win-core-synch-l1-2-0.dll
2017-04-03 17:05:55 ----A---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-1.dll
2017-04-03 17:05:55 ----A---- C:\Windows\system32\api-ms-win-core-localization-l1-2-0.dll
2017-04-03 17:05:55 ----A---- C:\Windows\system32\api-ms-win-core-file-l2-1-0.dll
2017-04-03 17:05:55 ----A---- C:\Windows\system32\api-ms-win-core-file-l1-2-0.dll
2017-04-03 16:28:46 ----A---- C:\Windows\system32\aswBoot.exe
2017-03-27 20:00:15 ----A---- C:\deriuz.txt
2017-03-27 02:25:40 ----D---- C:\Program Files\Microsoft.NET
2017-03-27 02:25:35 ----D---- C:\Program Files (x86)\Mozilla Firefox
2017-03-27 02:21:15 ----D---- C:\ProgramData\regid.1991-06.com.microsoft
2017-03-27 02:21:12 ----D---- C:\Program Files\Common Files\DESIGNER
2017-03-27 02:21:10 ----D---- C:\Windows\PCHEALTH
2017-03-27 02:20:53 ----D---- C:\Program Files\Microsoft Analysis Services
2017-03-27 02:20:50 ----D---- C:\Program Files (x86)\Microsoft Office
2017-03-27 02:20:42 ----RHD---- C:\MSOCache
2017-03-27 02:18:59 ----D---- C:\Program Files\Microsoft Office
2017-03-25 16:14:49 ----D---- C:\barber
2017-03-24 12:15:36 ----AD---- C:\Bakalárka
2017-03-22 19:47:10 ----A---- C:\Windows\system32\drivers\dbx-stable.sys
2017-03-22 19:47:10 ----A---- C:\Windows\system32\drivers\dbx-dev.sys
2017-03-22 19:47:10 ----A---- C:\Windows\system32\drivers\dbx-canary.sys
2017-03-21 09:49:25 ----A---- C:\Windows\SYSWOW64\nvStreaming.exe
2017-03-21 09:47:25 ----A---- C:\Windows\SYSWOW64\nvumdshim.dll
2017-03-21 09:47:25 ----A---- C:\Windows\SYSWOW64\nvptxJitCompiler.dll
2017-03-21 09:47:25 ----A---- C:\Windows\SYSWOW64\nvopencl.dll
2017-03-21 09:47:25 ----A---- C:\Windows\SYSWOW64\nvoglshim32.dll
2017-03-21 09:47:25 ----A---- C:\Windows\SYSWOW64\nvinit.dll
2017-03-21 09:47:25 ----A---- C:\Windows\SYSWOW64\NvIFROpenGL.dll
2017-03-21 09:47:25 ----A---- C:\Windows\SYSWOW64\NvIFR.dll
2017-03-21 09:47:25 ----A---- C:\Windows\SYSWOW64\NvFBC.dll
2017-03-21 09:47:25 ----A---- C:\Windows\SYSWOW64\nvfatbinaryLoader.dll
2017-03-21 09:47:25 ----A---- C:\Windows\SYSWOW64\nvEncodeAPI.dll
2017-03-21 09:47:25 ----A---- C:\Windows\SYSWOW64\nvd3dum.dll
2017-03-21 09:47:25 ----A---- C:\Windows\SYSWOW64\nvcuvid.dll
2017-03-21 09:47:25 ----A---- C:\Windows\SYSWOW64\nvcuda.dll
2017-03-21 09:47:25 ----A---- C:\Windows\system32\nvptxJitCompiler.dll
2017-03-21 09:47:25 ----A---- C:\Windows\system32\nvopencl.dll
2017-03-21 09:47:25 ----A---- C:\Windows\system32\nvoglv64.dll
2017-03-21 09:47:25 ----A---- C:\Windows\system32\nvoglshim64.dll
2017-03-21 09:47:25 ----A---- C:\Windows\system32\nvinitx.dll
2017-03-21 09:47:25 ----A---- C:\Windows\system32\NvIFROpenGL.dll
2017-03-21 09:47:25 ----A---- C:\Windows\system32\NvIFR64.dll
2017-03-21 09:47:25 ----A---- C:\Windows\system32\NvFBC64.dll
2017-03-21 09:47:25 ----A---- C:\Windows\system32\nvfatbinaryLoader.dll
2017-03-21 09:47:25 ----A---- C:\Windows\system32\nvEncodeAPI64.dll
2017-03-21 09:47:25 ----A---- C:\Windows\system32\nvdispgenco6437892.dll
2017-03-21 09:47:25 ----A---- C:\Windows\system32\nvdispco6437892.dll
2017-03-21 09:47:25 ----A---- C:\Windows\system32\nvd3dumx.dll
2017-03-21 09:47:25 ----A---- C:\Windows\system32\nvcuvid.dll
2017-03-21 09:47:25 ----A---- C:\Windows\system32\nvcuda.dll
2017-03-21 09:47:25 ----A---- C:\Windows\system32\nvcompiler.dll
2017-03-21 09:47:25 ----A---- C:\Windows\system32\drivers\nvlddmkm.sys
2017-03-21 09:47:24 ----A---- C:\Windows\SYSWOW64\nvcompiler.dll
2017-03-20 20:16:01 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2017-03-20 20:16:01 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2017-03-20 20:16:01 ----A---- C:\Windows\SYSWOW64\occache.dll
2017-03-20 20:16:01 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2017-03-20 20:16:01 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2017-03-20 20:16:01 ----A---- C:\Windows\SYSWOW64\inseng.dll
2017-03-20 20:16:01 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2017-03-20 20:16:01 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2017-03-20 20:16:01 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2017-03-20 20:16:01 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2017-03-20 20:16:01 ----A---- C:\Windows\system32\inseng.dll
2017-03-20 20:16:01 ----A---- C:\Windows\system32\iertutil.dll
2017-03-20 20:16:01 ----A---- C:\Windows\system32\iernonce.dll
2017-03-20 20:16:01 ----A---- C:\Windows\system32\ieetwproxystub.dll
2017-03-20 20:16:01 ----A---- C:\Windows\system32\ieetwcollector.exe
2017-03-20 20:16:01 ----A---- C:\Windows\system32\ie4uinit.exe
2017-03-20 20:16:00 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2017-03-20 20:16:00 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2017-03-20 20:16:00 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2017-03-20 20:16:00 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2017-03-20 20:16:00 ----A---- C:\Windows\SYSWOW64\jscript.dll
2017-03-20 20:16:00 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2017-03-20 20:16:00 ----A---- C:\Windows\SYSWOW64\ieui.dll
2017-03-20 20:16:00 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2017-03-20 20:16:00 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2017-03-20 20:16:00 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2017-03-20 20:16:00 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2017-03-20 20:16:00 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2017-03-20 20:16:00 ----A---- C:\Windows\system32\urlmon.dll
2017-03-20 20:16:00 ----A---- C:\Windows\system32\occache.dll
2017-03-20 20:16:00 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2017-03-20 20:16:00 ----A---- C:\Windows\system32\msfeeds.dll
2017-03-20 20:16:00 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2017-03-20 20:16:00 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2017-03-20 20:16:00 ----A---- C:\Windows\system32\iedkcs32.dll
2017-03-20 20:16:00 ----A---- C:\Windows\system32\dxtrans.dll
2017-03-20 20:15:59 ----A---- C:\Windows\SYSWOW64\wininet.dll
2017-03-20 20:15:59 ----A---- C:\Windows\SYSWOW64\webcheck.dll
2017-03-20 20:15:59 ----A---- C:\Windows\SYSWOW64\msrating.dll
2017-03-20 20:15:59 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2017-03-20 20:15:59 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2017-03-20 20:15:59 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2017-03-20 20:15:59 ----A---- C:\Windows\system32\vbscript.dll
2017-03-20 20:15:59 ----A---- C:\Windows\system32\jsproxy.dll
2017-03-20 20:15:59 ----A---- C:\Windows\system32\ieUnatt.exe
2017-03-20 20:15:59 ----A---- C:\Windows\system32\iesetup.dll
2017-03-20 20:15:59 ----A---- C:\Windows\system32\ieapfltr.dll
2017-03-20 20:15:58 ----A---- C:\Windows\system32\mshtmled.dll
2017-03-20 20:15:58 ----A---- C:\Windows\system32\ieui.dll
2017-03-20 20:15:58 ----A---- C:\Windows\system32\ieframe.dll
2017-03-20 20:15:58 ----A---- C:\Windows\system32\dxtmsft.dll
2017-03-20 20:15:57 ----A---- C:\Windows\system32\wininet.dll
2017-03-20 20:15:57 ----A---- C:\Windows\system32\webcheck.dll
2017-03-20 20:15:57 ----A---- C:\Windows\system32\mshtmlmedia.dll
2017-03-20 20:15:57 ----A---- C:\Windows\system32\jscript9diag.dll
2017-03-20 20:15:57 ----A---- C:\Windows\system32\jscript9.dll
2017-03-20 20:15:57 ----A---- C:\Windows\system32\jscript.dll
2017-03-20 20:15:56 ----A---- C:\Windows\system32\msrating.dll
2017-03-20 20:15:56 ----A---- C:\Windows\system32\MshtmlDac.dll
2017-03-20 20:15:56 ----A---- C:\Windows\system32\mshtml.dll
2017-03-20 20:15:55 ----A---- C:\Windows\SYSWOW64\schannel.dll
2017-03-20 20:15:55 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2017-03-20 20:15:55 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2017-03-20 20:15:55 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2017-03-20 20:15:55 ----A---- C:\Windows\SYSWOW64\DWrite.dll
2017-03-20 20:15:55 ----A---- C:\Windows\system32\win32k.sys
2017-03-20 20:15:55 ----A---- C:\Windows\system32\schannel.dll
2017-03-20 20:15:55 ----A---- C:\Windows\system32\rpcrt4.dll
2017-03-20 20:15:55 ----A---- C:\Windows\system32\ntoskrnl.exe
2017-03-20 20:15:55 ----A---- C:\Windows\system32\ntdll.dll
2017-03-20 20:15:55 ----A---- C:\Windows\system32\msxml3.dll
2017-03-20 20:15:55 ----A---- C:\Windows\system32\msv1_0.dll
2017-03-20 20:15:55 ----A---- C:\Windows\system32\lsasrv.dll
2017-03-20 20:15:55 ----A---- C:\Windows\system32\KernelBase.dll
2017-03-20 20:15:55 ----A---- C:\Windows\system32\kerberos.dll
2017-03-20 20:15:55 ----A---- C:\Windows\system32\DWrite.dll
2017-03-20 20:15:55 ----A---- C:\Windows\system32\advapi32.dll
2017-03-20 20:15:54 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2017-03-20 20:15:54 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-1-0.dll
2017-03-20 20:15:54 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2017-03-20 20:15:54 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2017-03-20 20:15:54 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2017-03-20 20:15:54 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2017-03-20 20:15:54 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2017-03-20 20:15:54 ----A---- C:\Windows\SYSWOW64\wow32.dll
2017-03-20 20:15:54 ----A---- C:\Windows\SYSWOW64\wdigest.dll
2017-03-20 20:15:54 ----A---- C:\Windows\SYSWOW64\WcsPlugInService.dll
2017-03-20 20:15:54 ----A---- C:\Windows\SYSWOW64\usp10.dll
2017-03-20 20:15:54 ----A---- C:\Windows\SYSWOW64\TSpkg.dll
2017-03-20 20:15:54 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2017-03-20 20:15:54 ----A---- C:\Windows\SYSWOW64\srclient.dll
2017-03-20 20:15:54 ----A---- C:\Windows\SYSWOW64\setup16.exe
2017-03-20 20:15:54 ----A---- C:\Windows\SYSWOW64\secur32.dll
2017-03-20 20:15:54 ----A---- C:\Windows\SYSWOW64\rpchttp.dll
2017-03-20 20:15:54 ----A---- C:\Windows\SYSWOW64\rpcrt4.dll
2017-03-20 20:15:54 ----A---- C:\Windows\SYSWOW64\quartz.dll
2017-03-20 20:15:54 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2017-03-20 20:15:54 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2017-03-20 20:15:54 ----A---- C:\Windows\SYSWOW64\ncrypt.dll
2017-03-20 20:15:54 ----A---- C:\Windows\SYSWOW64\msxml3.dll
2017-03-20 20:15:54 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2017-03-20 20:15:54 ----A---- C:\Windows\SYSWOW64\mscms.dll
2017-03-20 20:15:54 ----A---- C:\Windows\SYSWOW64\msaudite.dll
2017-03-20 20:15:54 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2017-03-20 20:15:54 ----A---- C:\Windows\SYSWOW64\kernel32.dll
2017-03-20 20:15:54 ----A---- C:\Windows\SYSWOW64\instnm.exe
2017-03-20 20:15:54 ----A---- C:\Windows\SYSWOW64\inetcomm.dll
2017-03-20 20:15:54 ----A---- C:\Windows\SYSWOW64\icm32.dll
2017-03-20 20:15:54 ----A---- C:\Windows\SYSWOW64\gdi32.dll
2017-03-20 20:15:54 ----A---- C:\Windows\SYSWOW64\cryptbase.dll
2017-03-20 20:15:54 ----A---- C:\Windows\SYSWOW64\credssp.dll
2017-03-20 20:15:54 ----A---- C:\Windows\SYSWOW64\certcli.dll
2017-03-20 20:15:54 ----A---- C:\Windows\SYSWOW64\bcrypt.dll
2017-03-20 20:15:54 ----A---- C:\Windows\SYSWOW64\auditpol.exe
2017-03-20 20:15:54 ----A---- C:\Windows\SYSWOW64\appidapi.dll
2017-03-20 20:15:54 ----A---- C:\Windows\SYSWOW64\advapi32.dll
2017-03-20 20:15:54 ----A---- C:\Windows\SYSWOW64\adtschema.dll
2017-03-20 20:15:54 ----A---- C:\Windows\system32\wow64win.dll
2017-03-20 20:15:54 ----A---- C:\Windows\system32\wow64cpu.dll
2017-03-20 20:15:54 ----A---- C:\Windows\system32\wow64.dll
2017-03-20 20:15:54 ----A---- C:\Windows\system32\winsrv.dll
2017-03-20 20:15:54 ----A---- C:\Windows\system32\wdigest.dll
2017-03-20 20:15:54 ----A---- C:\Windows\system32\WcsPlugInService.dll
2017-03-20 20:15:54 ----A---- C:\Windows\system32\usp10.dll
2017-03-20 20:15:54 ----A---- C:\Windows\system32\TSpkg.dll
2017-03-20 20:15:54 ----A---- C:\Windows\system32\sspisrv.dll
2017-03-20 20:15:54 ----A---- C:\Windows\system32\sspicli.dll
2017-03-20 20:15:54 ----A---- C:\Windows\system32\srcore.dll
2017-03-20 20:15:54 ----A---- C:\Windows\system32\srclient.dll
2017-03-20 20:15:54 ----A---- C:\Windows\system32\smss.exe
2017-03-20 20:15:54 ----A---- C:\Windows\system32\setbcdlocale.dll
2017-03-20 20:15:54 ----A---- C:\Windows\system32\secur32.dll
2017-03-20 20:15:54 ----A---- C:\Windows\system32\rstrui.exe
2017-03-20 20:15:54 ----A---- C:\Windows\system32\rpchttp.dll
2017-03-20 20:15:54 ----A---- C:\Windows\system32\quartz.dll
2017-03-20 20:15:54 ----A---- C:\Windows\system32\ntvdm64.dll
2017-03-20 20:15:54 ----A---- C:\Windows\system32\ncrypt.dll
2017-03-20 20:15:54 ----A---- C:\Windows\system32\mscms.dll
2017-03-20 20:15:54 ----A---- C:\Windows\system32\msaudite.dll
2017-03-20 20:15:54 ----A---- C:\Windows\system32\lsass.exe
2017-03-20 20:15:54 ----A---- C:\Windows\system32\kernel32.dll
2017-03-20 20:15:54 ----A---- C:\Windows\system32\inetcomm.dll
2017-03-20 20:15:54 ----A---- C:\Windows\system32\icm32.dll
2017-03-20 20:15:54 ----A---- C:\Windows\system32\gdi32.dll
2017-03-20 20:15:54 ----A---- C:\Windows\system32\FntCache.dll
2017-03-20 20:15:54 ----A---- C:\Windows\system32\drivers\srv.sys
2017-03-20 20:15:54 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2017-03-20 20:15:54 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2017-03-20 20:15:54 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2017-03-20 20:15:54 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2017-03-20 20:15:54 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2017-03-20 20:15:54 ----A---- C:\Windows\system32\drivers\appid.sys
2017-03-20 20:15:54 ----A---- C:\Windows\system32\csrsrv.dll
2017-03-20 20:15:54 ----A---- C:\Windows\system32\cryptbase.dll
2017-03-20 20:15:54 ----A---- C:\Windows\system32\credssp.dll
2017-03-20 20:15:54 ----A---- C:\Windows\system32\conhost.exe
2017-03-20 20:15:54 ----A---- C:\Windows\system32\certcli.dll
2017-03-20 20:15:54 ----A---- C:\Windows\system32\bcrypt.dll
2017-03-20 20:15:54 ----A---- C:\Windows\system32\auditpol.exe
2017-03-20 20:15:54 ----A---- C:\Windows\system32\appidsvc.dll
2017-03-20 20:15:54 ----A---- C:\Windows\system32\appidpolicyconverter.exe
2017-03-20 20:15:54 ----A---- C:\Windows\system32\appidcertstorecheck.exe
2017-03-20 20:15:54 ----A---- C:\Windows\system32\appidapi.dll
2017-03-20 20:15:54 ----A---- C:\Windows\system32\adtschema.dll
2017-03-20 20:15:54 ----A---- C:\Windows\HelpPane.exe
2017-03-20 20:15:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-security-base-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-util-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-string-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-profile-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-misc-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-memory-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-io-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-heap-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-handle-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-fibers-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-delayload-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-debug-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-datetime-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-console-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2017-03-20 20:15:53 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2017-03-20 20:15:53 ----A---- C:\Windows\SYSWOW64\user.exe
2017-03-20 20:15:53 ----A---- C:\Windows\SYSWOW64\msxml3r.dll
2017-03-20 20:15:53 ----A---- C:\Windows\SYSWOW64\msobjs.dll
2017-03-20 20:15:53 ----A---- C:\Windows\SYSWOW64\INETRES.dll
2017-03-20 20:15:53 ----A---- C:\Windows\SYSWOW64\apisetschema.dll
2017-03-20 20:15:53 ----A---- C:\Windows\system32\msxml3r.dll
2017-03-20 20:15:53 ----A---- C:\Windows\system32\msobjs.dll
2017-03-20 20:15:53 ----A---- C:\Windows\system32\INETRES.dll
2017-03-20 20:15:53 ----A---- C:\Windows\system32\drivers\srvnet.sys
2017-03-20 20:15:53 ----A---- C:\Windows\system32\drivers\srv2.sys
2017-03-20 20:15:53 ----A---- C:\Windows\system32\apisetschema.dll
2017-03-20 20:15:41 ----A---- C:\Windows\system32\generaltel.dll
2017-03-20 20:15:41 ----A---- C:\Windows\system32\CompatTelRunner.exe
2017-03-20 20:15:41 ----A---- C:\Windows\system32\appraiser.dll
2017-03-20 20:15:41 ----A---- C:\Windows\system32\aeinv.dll
2017-03-15 22:40:52 ----RD---- C:\Program Files (x86)\Skype
2017-03-13 01:43:34 ----A---- C:\Windows\SYSWOW64\nvwgf2um.dll
2017-03-13 01:43:34 ----A---- C:\Windows\system32\nvhdap64.dll
2017-03-13 01:43:34 ----A---- C:\Windows\system32\nvdispgenco6437878.dll
2017-03-13 01:43:34 ----A---- C:\Windows\system32\nvdispco6437878.dll
2017-03-13 01:43:34 ----A---- C:\Windows\system32\drivers\nvhda64v.sys
2017-03-10 01:06:16 ----A---- C:\Windows\system32\drivers\aswbuniva.sys
2017-03-10 01:06:16 ----A---- C:\Windows\system32\drivers\aswbloga.sys
2017-03-10 01:06:16 ----A---- C:\Windows\system32\drivers\aswbidsha.sys
2017-03-10 01:06:16 ----A---- C:\Windows\system32\drivers\aswbidsdrivera.sys

======List of files/folders modified in the last 1 month======

2017-04-09 22:28:52 ----D---- C:\Program Files\trend micro
2017-04-09 22:28:07 ----D---- C:\Windows\Temp
2017-04-09 22:27:34 ----D---- C:\ProgramData\NVIDIA
2017-04-09 22:26:59 ----D---- C:\Windows\system32\Tasks
2017-04-09 22:26:53 ----D---- C:\Windows\system32\drivers
2017-04-09 22:26:20 ----HD---- C:\ProgramData
2017-04-09 22:25:40 ----D---- C:\Windows\Tasks
2017-04-09 20:27:40 ----D---- C:\Windows\System32
2017-04-09 20:27:40 ----D---- C:\Windows\inf
2017-04-09 20:27:40 ----A---- C:\Windows\system32\PerfStringBackup.INI
2017-04-09 20:19:01 ----D---- C:\Program Files (x86)\Steam
2017-04-08 11:21:52 ----D---- C:\Windows
2017-04-07 20:09:10 ----D---- C:\Program Files (x86)\Dropbox
2017-04-07 16:23:00 ----RD---- C:\Program Files
2017-04-07 16:23:00 ----D---- C:\ProgramData\Malwarebytes
2017-04-07 16:18:32 ----D---- C:\Program Files (x86)\TeamViewer
2017-04-07 16:00:41 ----D---- C:\Users\Roman\AppData\Roaming\vlc
2017-04-07 15:56:01 ----D---- C:\Users\Roman\AppData\Roaming\TS3Client
2017-04-06 22:33:11 ----D---- C:\Users\Roman\AppData\Roaming\DAEMON Tools Lite
2017-04-06 22:33:11 ----D---- C:\Users\Roman\AppData\Roaming\BitTorrent
2017-04-04 11:46:11 ----D---- C:\Windows\system32\config
2017-04-04 11:25:51 ----D---- C:\Windows\rescache
2017-04-04 09:56:20 ----D---- C:\Windows\winsxs
2017-04-03 23:39:45 ----D---- C:\Windows\SYSWOW64\sk-SK
2017-04-03 23:39:45 ----D---- C:\Windows\SYSWOW64\en-US
2017-04-03 23:39:45 ----D---- C:\Windows\SysWOW64
2017-04-03 23:39:45 ----D---- C:\Windows\system32\sk-SK
2017-04-03 23:39:45 ----D---- C:\Windows\system32\en-US
2017-04-03 22:45:14 ----RSD---- C:\Windows\Fonts
2017-04-03 17:06:05 ----SHD---- C:\System Volume Information
2017-04-03 17:05:41 ----D---- C:\Windows\system32\catroot2
2017-03-27 17:14:51 ----D---- C:\Program Files\FACEIT Client
2017-03-27 15:43:05 ----D---- C:\Windows\Microsoft.NET
2017-03-27 13:17:15 ----RSD---- C:\Windows\assembly
2017-03-27 02:27:35 ----SD---- C:\Users\Roman\AppData\Roaming\Microsoft
2017-03-27 02:26:55 ----SHD---- C:\Windows\Installer
2017-03-27 02:26:32 ----D---- C:\ProgramData\Microsoft Help
2017-03-27 02:25:46 ----D---- C:\Windows\ShellNew
2017-03-27 02:25:44 ----D---- C:\Program Files\Common Files\Microsoft Shared
2017-03-27 02:25:35 ----RD---- C:\Program Files (x86)
2017-03-27 02:24:54 ----D---- C:\Program Files\Common Files\System
2017-03-27 02:24:54 ----A---- C:\Windows\win.ini
2017-03-27 02:21:12 ----D---- C:\Program Files\Common Files
2017-03-27 02:21:10 ----SD---- C:\ProgramData\Microsoft
2017-03-25 16:07:35 ----D---- C:\Users\Roman\AppData\Roaming\TeamViewer
2017-03-25 16:07:34 ----D---- C:\Windows\debug
2017-03-25 10:51:07 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2017-03-25 10:51:06 ----D---- C:\Windows\system32\Macromed
2017-03-25 10:51:04 ----D---- C:\Windows\SYSWOW64\Macromed
2017-03-24 17:44:45 ----D---- C:\Program Files (x86)\Opera
2017-03-21 09:49:53 ----D---- C:\ProgramData\NVIDIA Corporation
2017-03-21 09:49:24 ----D---- C:\Windows\system32\DriverStore
2017-03-21 09:49:19 ----D---- C:\Program Files (x86)\VulkanRT
2017-03-20 20:19:54 ----D---- C:\Windows\SYSWOW64\migration
2017-03-20 20:19:54 ----D---- C:\Windows\system32\migration
2017-03-20 20:19:54 ----D---- C:\Windows\system32\Boot
2017-03-20 20:19:54 ----D---- C:\Windows\AppPatch
2017-03-20 20:19:54 ----D---- C:\Program Files\Internet Explorer
2017-03-20 20:19:54 ----D---- C:\Program Files\DVD Maker
2017-03-20 20:19:54 ----D---- C:\Program Files (x86)\Internet Explorer
2017-03-20 20:18:00 ----D---- C:\Windows\system32\MRT
2017-03-20 20:16:46 ----AC---- C:\Windows\system32\MRT.exe
2017-03-20 20:16:10 ----D---- C:\Windows\system32\appraiser
2017-03-17 02:59:25 ----A---- C:\Windows\SYSWOW64\nvoglv32.dll
2017-03-17 02:59:25 ----A---- C:\Windows\SYSWOW64\nvapi.dll
2017-03-17 02:59:25 ----A---- C:\Windows\system32\nvwgf2umx.dll
2017-03-17 02:59:25 ----A---- C:\Windows\system32\nvumdshimx.dll
2017-03-17 02:59:25 ----A---- C:\Windows\system32\nvapi64.dll
2017-03-17 01:31:01 ----A---- C:\Windows\NvContainerRecovery.bat
2017-03-17 01:16:11 ----A---- C:\Windows\system32\nvsvc64.dll
2017-03-17 01:16:11 ----A---- C:\Windows\system32\nvcpl.dll
2017-03-17 01:16:09 ----A---- C:\Windows\system32\nvsvcr.dll
2017-03-17 01:16:09 ----A---- C:\Windows\system32\nvshext.dll
2017-03-17 01:16:09 ----A---- C:\Windows\system32\nvmctray.dll
2017-03-17 01:16:09 ----A---- C:\Windows\system32\nv3dappshextr.dll
2017-03-17 01:16:09 ----A---- C:\Windows\system32\nv3dappshext.dll
2017-03-16 08:01:20 ----D---- C:\Windows\SoftwareDistribution
2017-03-15 22:40:53 ----D---- C:\ProgramData\Skype
2017-03-15 22:40:52 ----D---- C:\Program Files (x86)\Common Files
2017-03-15 22:40:41 ----D---- C:\ProgramData\Package Cache
2017-03-13 01:45:41 ----D---- C:\Program Files (x86)\NVIDIA Corporation
2017-03-13 01:37:59 ----D---- C:\Program Files\NVIDIA Corporation
2017-03-12 23:21:32 ----D---- C:\ProgramData\AVAST Software

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 aswbidsh;aswbidsh; C:\Windows\system32\drivers\aswbidsha.sys [2017-04-03 189768]
R0 aswblog;aswblog; C:\Windows\system32\drivers\aswbloga.sys [2017-04-03 334088]
R0 aswbuniv;aswbuniv; C:\Windows\system32\drivers\aswbuniva.sys [2017-04-03 48528]
R0 aswRvrt;aswRvrt; C:\Windows\system32\drivers\aswRvrt.sys [2017-04-03 75704]
R0 aswVmm;aswVmm; C:\Windows\system32\drivers\aswVmm.sys [2017-04-03 339696]
R0 iusb3hcs;Ovládač prepínača hostiteľského radiča Intel(R) USB 3.0; C:\Windows\system32\DRIVERS\iusb3hcs.sys [2014-08-25 20464]
R0 PxHlpa64;PxHlpa64; C:\Windows\System32\Drivers\PxHlpa64.sys [2011-11-03 56208]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-21 213888]
R1 AsIO;AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [2015-10-27 15232]
R1 AsUpIO;AsUpIO; C:\Windows\SysWow64\drivers\AsUpIO.sys [2014-02-24 14464]
R1 aswbidsdriver;aswbidsdriver; C:\Windows\system32\drivers\aswbidsdrivera.sys [2017-04-03 307736]
R1 aswKbd;aswKbd; C:\Windows\system32\drivers\aswKbd.sys [2017-04-03 32600]
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [2017-04-03 101152]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2017-04-03 1005048]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2017-04-03 556784]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-21 514560]
R1 FACEIT;FACEIT; \??\C:\Windows\System32\Drivers\FACEIT.sys [2017-03-27 5143032]
R1 VBoxDrv;VirtualBox Service; C:\Windows\system32\DRIVERS\VBoxDrv.sys [2016-11-21 933088]
R1 VBoxNetAdp;VirtualBox NDIS 6.0 Miniport Service; C:\Windows\system32\DRIVERS\VBoxNetAdp6.sys [2016-11-21 132120]
R1 VBoxNetLwf;VirtualBox NDIS6 Bridged Networking Service; C:\Windows\system32\DRIVERS\VBoxNetLwf.sys [2016-11-21 206416]
R1 VBoxUSBMon;VirtualBox USB Monitor Driver; C:\Windows\system32\DRIVERS\VBoxUSBMon.sys [2016-11-21 150280]
R2 aswMonFlt;aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [2017-04-03 127112]
R2 aswStm;aswStm; C:\Windows\system32\drivers\aswStm.sys [2017-04-03 164064]
R2 NPF;NetGroup Packet Filter Driver; C:\Windows\system32\drivers\npf.sys [2013-03-01 36600]
R3 CT20XUT.SYS;CT20XUT.SYS; C:\Windows\System32\drivers\CT20XUT.SYS [2015-12-19 205056]
R3 ctac32k;Creative AC3 Software Decoder; C:\Windows\system32\drivers\ctac32k.sys [2015-12-19 582912]
R3 ctaud2k;Creative Audio Driver (WDM); C:\Windows\system32\drivers\ctaud2k.sys [2015-12-19 689024]
R3 CTEXFIFX.SYS;CTEXFIFX.SYS; C:\Windows\System32\drivers\CTEXFIFX.SYS [2015-12-19 1419520]
R3 CTHWIUT.SYS;CTHWIUT.SYS; C:\Windows\System32\drivers\CTHWIUT.SYS [2015-12-19 97024]
R3 ctprxy2k;Creative Proxy Driver; C:\Windows\system32\drivers\ctprxy2k.sys [2015-12-19 18176]
R3 ctsfm2k;Creative SoundFont Management Device Driver; C:\Windows\system32\drivers\ctsfm2k.sys [2015-12-19 215296]
R3 dtlitescsibus;DAEMON Tools Lite Virtual SCSI Bus; C:\Windows\system32\DRIVERS\dtlitescsibus.sys [2015-11-25 30264]
R3 dtliteusbbus;DAEMON Tools Lite Virtual USB Bus; C:\Windows\system32\DRIVERS\dtliteusbbus.sys [2015-11-25 47160]
R3 emupia;E-mu Plug-in Architecture Driver; C:\Windows\system32\drivers\emupia2k.sys [2015-12-19 120576]
R3 ha20x2k;Creative 20X HAL Driver; C:\Windows\system32\drivers\ha20x2k.sys [2015-12-19 1564416]
R3 hidkmdf;Filter Driver Service for HID-KMDF Interface layer; C:\Windows\system32\DRIVERS\hidkmdf.sys [2016-05-27 25656]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2015-06-18 4496600]
R3 iusb3hub;Ovládač rozbočovača Intel(R) USB 3.0; C:\Windows\system32\DRIVERS\iusb3hub.sys [2014-08-25 383984]
R3 iusb3xhc;Ovládač hostiteľského radiča Intel(R) USB 3.0 eXtensible; C:\Windows\system32\DRIVERS\iusb3xhc.sys [2014-08-25 795120]
R3 MEIx64;Intel(R) Management Engine Interface ; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [2014-09-30 129312]
R3 NVHDA;Service for NVIDIA High Definition Audio Driver; C:\Windows\system32\drivers\nvhda64v.sys [2017-02-24 217528]
R3 nvvad_WaveExtensible;NVIDIA Virtual Audio Device (Wave Extensible) (WDM); C:\Windows\system32\drivers\nvvad64v.sys [2017-01-06 47672]
R3 nvvhci;NVVHCI Enumerator Service; C:\Windows\system32\DRIVERS\nvvhci.sys [2017-01-20 57792]
R3 ossrv;Creative OS Services Driver; C:\Windows\system32\drivers\ctoss2k.sys [2015-12-19 181504]
R3 RTL8169;Realtek 8169 NT Driver; C:\Windows\system32\DRIVERS\Rtlh64.sys [2014-12-10 797400]
R3 sshid;SteelSeries HID Service; C:\Windows\system32\DRIVERS\sshid.sys [2016-05-27 51400]
R3 teamviewervpn;TeamViewer VPN Adapter; C:\Windows\system32\DRIVERS\teamviewervpn.sys [2015-08-18 35112]
R4 IOMap;IOMap; \??\C:\Windows\system32\drivers\IOMap64.sys []
S2 MBAMChameleon;MBAMChameleon; C:\Windows\system32\drivers\MBAMChameleon.sys []
S3 ASUSFILTER;ASUSFILTER; C:\Windows\SysWow64\drivers\ASUSFILTER.sys [2011-09-20 46152]
S3 aswHwid;aswHwid; C:\Windows\system32\drivers\aswHwid.sys [2017-04-03 38296]
S3 cpuz137;cpuz137; \??\C:\Users\Roman\AppData\Local\Temp\cpuz137\cpuz137_x64.sys []
S3 cpuz139;cpuz139; \??\C:\Users\Roman\AppData\Local\Temp\cpuz139\cpuz139_x64.sys []
S3 CT20XUT;CT20XUT; C:\Windows\system32\drivers\CT20XUT.SYS [2015-12-19 205056]
S3 CTEXFIFX;CTEXFIFX; C:\Windows\system32\drivers\CTEXFIFX.SYS [2015-12-19 1419520]
S3 CTHWIUT;CTHWIUT; C:\Windows\system32\drivers\CTHWIUT.SYS [2015-12-19 97024]
S3 dbx;dbx; C:\Windows\system32\DRIVERS\dbx.sys []
S3 dmvsc;dmvsc; C:\Windows\system32\drivers\dmvsc.sys [2010-11-21 71168]
S3 I2cHkBurn;I2cHkBurn; C:\Windows\system32\drivers\I2cHkBurn.sys [2015-07-27 41760]
S3 L6GX;Service - Line 6 GX; C:\Windows\System32\Drivers\L6GX64.sys [2015-08-01 772864]
S3 NvStreamKms;NVIDIA KMS; \??\C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [2017-02-23 27584]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-21 165888]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 19456]
S3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2014-05-29 940760]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-21 6656]
S3 ssdevfactory;SteelSeries Device Factory Service; C:\Windows\system32\DRIVERS\ssdevfactory.sys [2015-10-27 40576]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-21 34688]
S3 Synth3dVsc;Synth3dVsc; C:\Windows\System32\drivers\synth3dvsc.sys [2010-11-21 88960]
S3 terminpt;Microsoft Remote Desktop Input Driver; C:\Windows\system32\drivers\terminpt.sys [2012-08-23 29696]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2013-10-02 56832]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2012-08-23 30208]
S3 tsusbhub;@%SystemRoot%\system32\drivers\tsusbhub.sys,-1; C:\Windows\system32\drivers\tsusbhub.sys [2010-11-21 117248]
S3 USBAAPL64;Apple Mobile USB Driver; C:\Windows\System32\Drivers\usbaapl64.sys [2015-06-17 54784]
S3 VGPU;VGPU; C:\Windows\System32\drivers\rdvgkmd.sys []
S3 vmbus;vmbus; C:\Windows\system32\drivers\vmbus.sys [2010-11-21 199552]
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-21 21760]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2016-12-19 82640]
R2 asComSvc;ASUS Com Service; C:\Program Files (x86)\ASUS\AXSP\1.02.00\atkexComSvc.exe [2014-09-09 936728]
R2 asHmComSvc;ASUS HM Com Service; C:\Program Files (x86)\ASUS\AAHM\1.00.22\aaHMSvc.exe [2014-09-09 954648]
R2 AsusFanControlService;AsusFanControlService; C:\Program Files (x86)\ASUS\AsusFanControlService\1.06.13\AsusFanControlService.exe [2014-08-04 384000]
R2 avast! Antivirus;Avast Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2017-04-03 261712]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 CTAudSvcService;Creative Audio Service; C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe [2010-02-12 286720]
R2 DbxSvc;DbxSvc; C:\Windows\system32\DbxSvc.exe [2017-04-06 46408]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 NIHardwareService;NIHardwareService; C:\Program Files\Common Files\Native Instruments\Hardware\NIHardwareService.exe [2012-09-05 6364024]
R2 NvContainerLocalSystem;NVIDIA LocalSystem Container; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [2017-02-23 462784]
R2 NVDisplay.ContainerLocalSystem;NVIDIA Display Container LS; C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe [2017-03-17 464440]
R2 NvTelemetryContainer;NVIDIA Telemetry Container; C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe [2017-02-23 425408]
R2 PnkBstrA;PnkBstrA; C:\Windows\syswow64\PnkBstrA.exe [2015-11-25 66872]
R2 TeamViewer;TeamViewer 11; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [2016-07-18 7183632]
R3 aswbIDSAgent;aswbIDSAgent; C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe [2017-04-03 7398336]
R3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS; C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [2013-01-02 171632]
R3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2014-01-23 5132888]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2016-11-29 105144]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2016-11-29 125112]
S2 dbupdate;Dropbox Update Service (dbupdate); C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [2016-11-05 143144]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-10-27 144200]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2017-02-27 317400]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 27136]
S3 Creative Audio Engine Licensing Service;Creative Audio Engine Licensing Service; C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\CTAELicensing.exe [2016-02-13 79360]
S3 dbupdatem;Dropbox Update Service (dbupdatem); C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [2016-11-05 143144]
S3 Disc Soft Lite Bus Service;Disc Soft Lite Bus Service; D:\Programy\DAEMON Tools Lite\DiscSoftBusService.exe [2015-11-18 1369432]
S3 EasyAntiCheat;EasyAntiCheat; C:\Windows\syswow64\EasyAntiCheat.exe [2016-04-19 242960]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-10-27 144200]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2017-03-04 114688]
S3 NvContainerNetworkService;NVIDIA NetworkService Container; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [2017-02-23 462784]
S3 ose64;Office 64 Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2014-01-23 178760]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 rpcapd;Remote Packet Capture Protocol v.0 (experimental); C:\Program Files (x86)\WinPcap\rpcapd.exe [2013-03-01 118520]
S3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2017-03-23 1590560]
S3 SwitchBoard;SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S4 aspnet_state;ASP.NET State Service; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2016-11-29 51384]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2016-11-29 135848]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2016-11-29 135848]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2016-11-29 135848]
S4 tvnserver;TightVNC Server; C:\Program Files\TightVNC\tvnserver.exe [2013-07-19 2179056]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118274
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o kontrolu, blbne počítač

#10 Příspěvek od Rudy »

Smazáno. Nastala nějaká změna?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

wormik
Návštěvník
Návštěvník
Příspěvky: 12
Registrován: 17 srp 2015 10:55

Re: Prosím o kontrolu, blbne počítač

#11 Příspěvek od wormik »

Zatiaľ funguje všetko v poriadku, budem to sledovať.

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118274
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o kontrolu, blbne počítač

#12 Příspěvek od Rudy »

To jsem rád. :)
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

wormik
Návštěvník
Návštěvník
Příspěvky: 12
Registrován: 17 srp 2015 10:55

Re: Prosím o kontrolu, blbne počítač

#13 Příspěvek od wormik »

Vyzerá to tak že už všetko funguje ako má :)

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118274
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o kontrolu, blbne počítač

#14 Příspěvek od Rudy »

OK. :)
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Odpovědět