Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Prosím o preventivní kontrolu - díky.

Nemáte v tuto chvíli žádný problém s pc a chcete se jen ujistit, že je vše v pořádku?
Vložte log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zamčeno
Zpráva
Autor
plch
Návštěvník
Návštěvník
Příspěvky: 68
Registrován: 27 led 2008 12:33

Prosím o preventivní kontrolu - díky.

#1 Příspěvek od plch »

Logfile of random's system information tool 1.16 (written by random/random)
Run by Petr at 2017-04-18 17:16:37
Microsoft Windows 10 Home
System drive C: has 34 GB (21%) free of 160 GB
Total RAM: 3767 MB (48% free)
X64

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 17:16:40, on 18.4.2017
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.14393.0953)
Boot mode: Normal

Running processes:
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Users\Petr\AppData\Local\Microsoft\OneDrive\OneDrive.exe
C:\Program Files (x86)\Microsoft Office\Office14\MSOSYNC.EXE
C:\Program Files (x86)\NewTech Infosystems\Packard Bell MyBackup\BackupManagerTray.exe
C:\Program Files (x86)\Launch Manager\LManager.exe
C:\Program Files (x86)\TP-LINK\USB Printer Controller\USB Printer Controller.exe
C:\Program Files (x86)\Launch Manager\LMworker.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files\trend micro\Petr_RSITx64.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://packardbell.msn.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = www.google.com
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.centrum.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=
O2 - BHO: (no name) - {2DB66063-BB98-466A-AA0D-3E7ACF5ED853} - (no file)
O2 - BHO: Wondershare Video Converter Ultimate 7.1.0 - {451C804F-C205-4F03-B48E-537EC94937BF} - C:\PROGRA~3\WONDER~1\VIDEOC~1\WSBROW~1.DLL
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~4\Office14\GROOVEEX.DLL
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_121\bin\ssv.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: Adobe Acrobat Create PDF Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~4\Office14\URLREDIR.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_121\bin\jp2ssv.dll
O2 - BHO: SmartSelect - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll
O3 - Toolbar: (no name) - {BFC32E1D-EE75-4A48-BC60-104E11EE2431} - (no file)
O3 - Toolbar: Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
O4 - HKLM\..\Run: [BackupManagerTray] "C:\Program Files (x86)\NewTech Infosystems\Packard Bell MyBackup\BackupManagerTray.exe" -h -k
O4 - HKLM\..\Run: [LManager] C:\Program Files (x86)\Launch Manager\LManager.exe
O4 - HKLM\..\Run: [BCSSync] "C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe" /DelayServices
O4 - HKLM\..\Run: [REGSHAVE] C:\Program Files (x86)\REGSHAVE\REGSHAVE.EXE /AUTORUN
O4 - HKLM\..\Run: [Wondershare Helper Compact.exe] C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe
O4 - HKLM\..\Run: [DelaypluginInstall] C:\ProgramData\Wondershare\Video Converter Ultimate\DelayPluginI.exe
O4 - HKLM\..\Run: [TP-LINK USB Printer Controller] C:\Program Files (x86)\TP-LINK\USB Printer Controller\USB Printer Controller.exe -mini
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [GoogleChromeAutoLaunch_795A6C1EC44E0A41F3030B5EF87A210A] "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --no-startup-window /prefetch:5
O4 - HKCU\..\Run: [OneDrive] "C:\Users\Petr\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
O4 - HKCU\..\Run: [OfficeSyncProcess] "C:\Program Files (x86)\Microsoft Office\Office14\MSOSYNC.EXE"
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-21-1005467907-3126548956-2189493663-1000\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'UpdatusUser')
O4 - HKUS\S-1-5-21-1005467907-3126548956-2189493663-1000\..\RunOnce: [WAB Migrate] %ProgramFiles%\Windows Mail\wab.exe /Upgrade (User 'UpdatusUser')
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\Program Files (x86)\Microsoft Office\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do aplikace OneNote - res://C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll/105
O8 - Extra context menu item: Převést cíl vazby do Adobe PDF - res://C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll/AcroIECaptureSelLinks.html
O8 - Extra context menu item: Převést do Adobe PDF - res://C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Připojit cíl vazby k existujícímu PDF - res://C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
O8 - Extra context menu item: Připojit k existujícímu PDF - res://C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll/AcroIEAppend.html
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748449} - (no file)
O9 - Extra 'Tools' menuitem: &Nastavit překladač - {CC963627-B1DC-40E0-B52A-CF21EE748449} - (no file)
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748450} - (no file)
O9 - Extra 'Tools' menuitem: &Slovník - {CC963627-B1DC-40E0-B52A-CF21EE748450} - (no file)
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748451} - (no file)
O9 - Extra 'Tools' menuitem: Přeložit &označený text - {CC963627-B1DC-40E0-B52A-CF21EE748451} - (no file)
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748452} - (no file)
O9 - Extra 'Tools' menuitem: Přeložit &stránku - {CC963627-B1DC-40E0-B52A-CF21EE748452} - (no file)
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {1ABA5FAC-1417-422B-BA82-45C35E2C908B} (20-20 3D Viewer for IKEA) - http://kitchenplanner.ikea.com/CZ/Core/ ... _Win32.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O18 - Protocol: WSWSVCUchrome - {1CA93FF0-A218-44F1 - (no file)
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O20 - AppInit_DLLs: C:\WINDOWS\system32\DriverStore\FileRepository\nvacwu.inf_amd64_bdd6ea477d4e2fba\nvinit.dll
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files (x86)\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: Adobe Active File Monitor V9 (AdobeActiveFileMonitor9.0) - Adobe Systems Incorporated - c:\Program Files (x86)\Adobe\Elements 9 Organizer\PhotoshopElementsFileAgent.exe
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: aswbIDSAgent - AVAST Software s.r.o. - C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: Dritek WMI Service (DsiWMIService) - Dritek System Inc. - C:\Program Files (x86)\Launch Manager\dsiwmis.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: Acer ePower Service (ePowerSvc) - Acer Incorporated - C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerSvc.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: GamesAppIntegrationService - WildTangent - C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe
O23 - Service: GamesAppService - WildTangent, Inc. - C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Live Updater Service - Acer Incorporated - C:\Program Files\Packard Bell\Packard Bell Updater\UpdaterService.exe
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @mqutil.dll,-6102 (MSMQ) - Unknown owner - C:\WINDOWS\system32\mqsvc.exe (file missing)
O23 - Service: Nero Update (NAUpdate) - Nero AG - C:\Program Files (x86)\Nero\Update\NASvc.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: NTI IScheduleSvc - NewTech Infosystems, Inc. - C:\Program Files (x86)\NewTech Infosystems\Packard Bell MyBackup\IScheduleSvc.exe
O23 - Service: NVIDIA Display Container LS (NVDisplay.ContainerLocalSystem) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Samsung UPD Service - Unknown owner - C:\WINDOWS\System32\SUPDSvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: ServiceLayer - Nokia - C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\WINDOWS\system32\TieringEngineService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management & Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: ZAtheros Wlan Agent - Atheros - C:\Program Files (x86)\Qualcomm Atheros Fast Reconnect\Ath_WlanAgent.exe

--
End of file - 15954 bytes

====== Enumerating Processes ======

C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
C:\WINDOWS\system32\dwm.exe
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\System32\svchost.exe -k NetworkService
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\System32\spoolsv.exe
"c:\Program Files (x86)\Adobe\Elements 9 Organizer\PhotoshopElementsFileAgent.exe"
C:\WINDOWS\system32\svchost.exe -k apphost
C:\WINDOWS\System32\svchost.exe -k utcsvc
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files (x86)\Launch Manager\dsiwmis.exe"
"C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerSvc.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files\Packard Bell\Packard Bell Updater\UpdaterService.exe"
C:\WINDOWS\system32\svchost.exe -k iissvcs
C:\WINDOWS\system32\mqsvc.exe
"C:\Program Files (x86)\NewTech Infosystems\Packard Bell MyBackup\IScheduleSvc.exe"
"C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem"
C:\WINDOWS\system32\dashost.exe
C:\WINDOWS\system32\svchost.exe -k imgsvc
"C:\Program Files (x86)\Qualcomm Atheros Fast Reconnect\Ath_WlanAgent.exe"
C:\WINDOWS\system32\svchost.exe -k appmodel
C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe -first
C:\WINDOWS\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\WINDOWS\System32\svchost.exe -k LocalServicePeerNet
C:\WINDOWS\system32\sihost.exe
C:\WINDOWS\Explorer.EXE
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\WINDOWS\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
"C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe" -ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\system32\DllHost.exe /Processid:{3EB3C877-1F16-487C-9050-104DBCD66683}
C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
C:\WINDOWS\system32\taskhostw.exe
C:\WINDOWS\system32\DllHost.exe /Processid:{30D49246-D217-465F-B00B-AC9DDD652EB7}
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
C:\WINDOWS\system32\PrintIsolationHost.exe -Embedding
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
"C:\Windows\System32\igfxtray.exe"
"C:\Windows\System32\hkcmd.exe"
"C:\Windows\System32\igfxpers.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files\Elantech\ETDCtrl.exe"
C:\Program Files\AVAST Software\Avast\AvastUI.exe
"C:\Users\Petr\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
"C:\Program Files (x86)\Microsoft Office\Office14\MSOSYNC.EXE"
"C:\Program Files (x86)\NewTech Infosystems\Packard Bell MyBackup\BackupManagerTray.exe" -h -k
"C:\Program Files\Elantech\ETDCtrlHelper.exe"
"C:\Program Files (x86)\Launch Manager\LManager.exe"
"C:\Program Files (x86)\TP-LINK\USB Printer Controller\USB Printer Controller.exe" -mini
"C:\Program Files (x86)\Launch Manager\MMDx64Fx.exe"
"C:\Program Files (x86)\Launch Manager\LMworker.exe"
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files (x86)\Google\Update\1.3.33.3\GoogleCrashHandler.exe"
"C:\Program Files (x86)\Google\Update\1.3.33.3\GoogleCrashHandler64.exe"
"C:\Program Files (x86)\Nero\Update\NASvc.exe"
"C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe"
"C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.13.133.0_x64__kzf8qxf38zg5c\SkypeHost.exe" -ServerName:SkypeHost.ServerServer
C:\WINDOWS\system32\fontdrvhost.exe
C:\Windows\System32\InstallAgent.exe -Embedding
C:\Windows\System32\InstallAgentUserBroker.exe -Embedding
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
C:\WINDOWS\system32\ApplicationFrameHost.exe -Embedding
"C:\Program Files\WindowsApps\Microsoft.Windows.Photos_17.313.10010.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe" -ServerName:App.AppXzst44mncqdg84v7sv6p7yznqwssy6f7f.mca
"C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.1703.601.0_x64__8wekyb3d8bbwe\Calculator.exe" -ServerName:App.AppXsm3pg4n7er43kdh1qp4e79f1j7am68r8.mca
C:\Windows\System32\smartscreen.exe -Embedding
C:\WINDOWS\system32\taskhostw.exe
C:\WINDOWS\system32\DllHost.exe /Processid:{133EAC4F-5891-4D04-BADA-D84870380A80}
"C:\Users\Petr\Desktop\RSITx64.exe"

====== Scheduled tasks folder ======

C:\WINDOWS\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\WINDOWS\system32\tasks\Adobe Acrobat Update Task - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
C:\WINDOWS\system32\tasks\Adobe Flash Player Updater - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\WINDOWS\system32\tasks\Avast Emergency Update - C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe
C:\WINDOWS\system32\tasks\CCleanerSkipUAC - "C:\Program Files\CCleaner\CCleaner.exe" $(Arg0)
C:\WINDOWS\system32\tasks\CreateChoiceProcessTask - C:\Windows\System32\browserchoice.exe /launch
C:\WINDOWS\system32\tasks\GoogleUpdateTaskMachineCore - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\system32\tasks\GoogleUpdateTaskMachineUA - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\WINDOWS\system32\tasks\OneDrive Standalone Update Task - C:\Users\Petr\AppData\Local\Microsoft\OneDrive\17.3.6517.0809\OneDriveStandaloneUpdater.exe
C:\WINDOWS\system32\tasks\OneDrive Standalone Update Task v2 - %localappdata%\Microsoft\OneDrive\OneDriveStandaloneUpdater.exe
C:\WINDOWS\system32\tasks\SafeZone scheduled Autoupdate 1467417473 - C:\Program Files\AVAST Software\SZBrowser\launcher.exe --scheduledautoupdate $(Arg0)
C:\WINDOWS\system32\tasks\User_Feed_Synchronization-{57A9B1C3-CF21-4B7A-8418-16F207DFFEC3} - C:\WINDOWS\system32\msfeedssync.exe sync
C:\WINDOWS\system32\tasks\{06148A9C-DB04-45CC-9404-FB4A2E3CE3BC} - C:\Windows\system32\pcalua.exe -a "C:\Program Files (x86)\RealFlightG3\RealFlight3_50_033.exe" -d "C:\Program Files (x86)\RealFlightG3"
C:\WINDOWS\system32\tasks\{0B20319A-8861-470D-8235-B0A1CC760220} - msiexec.exe /package "G:\GMEApplication\GMEAPPLICATION.MSI"
C:\WINDOWS\system32\tasks\{11E43C3F-13CC-4742-B8DE-F79EC4DB2F84} - C:\Program Files (x86)\Rebellion\SniperEliteV2\bin\SniperEliteV2.exe
C:\WINDOWS\system32\tasks\{12770373-F2AD-4EC0-A0AA-C62CE5BC2748} - E:\Vecna cesta-Nová Antlantida\Aktivátor hry.exe
C:\WINDOWS\system32\tasks\{14DA07A9-33D6-4CFB-AE9E-4978EA3D091F} - msiexec.exe /package "G:\GMEApplication\GMEAPPLICATION.MSI"
C:\WINDOWS\system32\tasks\{161480A8-6EC3-49C1-980D-0E6167333C76} - C:\Users\Petr\Downloads\7.0_directx7.exe
C:\WINDOWS\system32\tasks\{1B4E1B63-6A6D-4A20-B1B4-EABD8A5610E7} - C:\Program Files (x86)\ArcSoft\Panorama Maker 6\PMK.exe
C:\WINDOWS\system32\tasks\{1B72434F-D574-4B35-96E4-0B4D7DEEE782} - "C:\Program Files (x86)\Internet Explorer\iexplore.exe" http://ui.skype.com/ui/0/5.10.0.116/cs/ ... Error=1618
C:\WINDOWS\system32\tasks\{1BB8B291-D1F5-4EB4-9B41-07DBCEB29ADF} - C:\WINDOWS\system32\pcalua.exe -a "C:\Program Files (x86)\Xilisoft\AVCHD Converter\Uninstall.exe"
C:\WINDOWS\system32\tasks\{25FA8440-EDB6-47EF-B733-E04A005D3272} - E:\Vecna cesta-Nová Antlantida\Aktivátor hry.exe
C:\WINDOWS\system32\tasks\{2667097F-06E1-4C39-92EF-68D055A99998} - C:\Program Files (x86)\Deep Silver\Secret Files Tunguska\AutoStarter.exe
C:\WINDOWS\system32\tasks\{2A7B961D-0EC4-4DF1-8E21-9A0CC4F8991A} - C:\Windows\system32\pcalua.exe -a "C:\Users\Petr\Downloads\fms2alpha85 (2).exe" -d C:\Users\Petr\Downloads
C:\WINDOWS\system32\tasks\{2F5BD4FF-321F-488D-8DC4-89202E1E0676} - E:\Vecna cesta-Nová Antlantida\Aktivátor hry.exe
C:\WINDOWS\system32\tasks\{345AF877-1A16-4C65-87D0-E006C20C9B06} - E:\Vecna cesta-NA_CZ_Hidden_Object_game_2012\Vecna cesta-Nová Antlantida\Aktivátor hry.exe
C:\WINDOWS\system32\tasks\{3AE62061-CA7C-4943-BFDD-40D88B8BDF08} - C:\Program Files (x86)\Deep Silver\Secret Files Tunguska\AutoStarter.exe
C:\WINDOWS\system32\tasks\{3D333F83-7EF5-4417-94E4-22D8DED171EE} - C:\Program Files (x86)\ArcSoft\Panorama Maker 6\PMK.exe
C:\WINDOWS\system32\tasks\{3EFD22A8-4419-478E-8B94-5856A9E8912D} - C:\Program Files (x86)\EDDICA\DUA1\Dua1.exe
C:\WINDOWS\system32\tasks\{3FF0FFCB-9825-4FCE-B80C-78B1B1E91F7D} - msiexec.exe /package "G:\GMGInfrastructure\GMGInfrastructure.msi"
C:\WINDOWS\system32\tasks\{43DDB344-04D5-4F67-AEE2-A4FFF1208F9D} - E:\Vecna cesta-Nová Antlantida\Aktivátor hry.exe
C:\WINDOWS\system32\tasks\{4658EF9A-0798-4D86-B816-03F1DED47E71} - C:\Program Files (x86)\FMS\FMS.exe
C:\WINDOWS\system32\tasks\{5E90DDB7-9079-4DAE-A952-80F6D603AA82} - E:\Vecna cesta-Nová Antlantida\Aktivátor hry.exe
C:\WINDOWS\system32\tasks\{636BB2AB-2242-49C8-8207-B90CE2B7D368} - C:\Program Files\ODEON\JAF\JAF.exe
C:\WINDOWS\system32\tasks\{7334F34D-EF0E-4633-8EA4-E1DE02AA7C7E} - E:\Vecna cesta-Nová Antlantida\Aktivátor hry.exe
C:\WINDOWS\system32\tasks\{84591A08-EE40-4200-B7A0-81A4D34795A7} - C:\Program Files (x86)\EDDICA\DUA2\Dua2.exe
C:\WINDOWS\system32\tasks\{853102B5-297F-402A-863A-2D8DD895816F} - E:\Vecna cesta-Nová Antlantida\Aktivátor hry.exe
C:\WINDOWS\system32\tasks\{8A21E136-B704-42AB-AD00-1E4F6308903B} - C:\Windows\system32\pcalua.exe -a G:\Pat_Mat.exe -d G:\
C:\WINDOWS\system32\tasks\{96844001-73E7-445E-B440-863BF1331EE3} - C:\Windows\system32\pcalua.exe -a G:\setup.exe -d G:\
C:\WINDOWS\system32\tasks\{97F9778B-9321-4139-9A1F-6A17E8C0F4EC} - C:\Program Files (x86)\Deep Silver\Secret Files Tunguska\AutoStarter.exe
C:\WINDOWS\system32\tasks\{98C42FA6-7F68-40F1-A0F8-6AE9DF7FB9BA} - C:\Program Files (x86)\EDDICA\DUA1\Dua1.exe
C:\WINDOWS\system32\tasks\{98EB232F-CE74-43A5-A128-9797D5C43D33} - C:\Windows\system32\pcalua.exe -a "C:\Users\Petr\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\22F23W8V\kodysetup.exe" -d C:\Users\Petr\Desktop
C:\WINDOWS\system32\tasks\{AA46717F-7131-4002-B280-BDEB3BF2673A} - E:\Vecna cesta-Nová Antlantida\Aktivátor hry.exe
C:\WINDOWS\system32\tasks\{B17F0F6C-9C80-4EE1-B5FD-6B86A1357E94} - C:\Program Files (x86)\EDDICA\DUA1\Dua1.exe
C:\WINDOWS\system32\tasks\{B3AC6726-DE6E-4CE5-B431-E57502CFC30C} - C:\Program Files (x86)\EDDICA\DUA2\Dua2.exe
C:\WINDOWS\system32\tasks\{B599DEB6-E92D-43EF-ACD4-81992B7C1C76} - C:\Program Files (x86)\Deep Silver\Secret Files Tunguska\AutoStarter.exe
C:\WINDOWS\system32\tasks\{BA7769C6-D774-4CC6-AFB4-C252DCB66ABC} - C:\Windows\system32\pcalua.exe -a "C:\Users\Petr\Downloads\Lord-of-the-Rings-The-Battle-for-Middle-Earth-2\Lord of the Rings The Battle for Middle-Earth 2\Čeština\BFME2_CZ.exe" -d "C:\Users\Petr\Downloads\Lord-of-the-Rings-The-Battle-for-Middle-Earth-2\Lord of the Rings The Battle for Middle-Earth 2\Čeština"
C:\WINDOWS\system32\tasks\{C57F0C08-F914-42A5-A45F-FD1CA3455942} - C:\Program Files (x86)\EDDICA\DUA1\Dua1.exe
C:\WINDOWS\system32\tasks\{CA01BF08-C52A-43C2-8159-5F9D6EA02A6A} - C:\Program Files (x86)\Rebellion\SniperEliteV2\bin\SniperEliteV2.exe
C:\WINDOWS\system32\tasks\{CC916649-546E-49C1-922E-19FB295B8F61} - C:\Program Files (x86)\Deep Silver\Secret Files Tunguska\AutoStarter.exe
C:\WINDOWS\system32\tasks\{D3AEE15B-8D40-49BF-9E0F-8914786153AA} - "C:\Program Files (x86)\Internet Explorer\iexplore.exe" http://ui.skype.com/ui/0/5.10.0.116/cs/ ... Error=1618
C:\WINDOWS\system32\tasks\{D885F3AE-7362-48A2-BEEA-2C2C12BF2507} - "C:\Program Files (x86)\Internet Explorer\iexplore.exe" http://ui.skype.com/ui/0/5.10.0.116/cs/ ... Error=1618
C:\WINDOWS\system32\tasks\{DA336989-AFF5-483F-9186-A1923B81DFC7} - C:\Windows\system32\pcalua.exe -a G:\setup.exe -d G:\
C:\WINDOWS\system32\tasks\{DD128326-5429-449D-ABA3-9A7FEA95B0D1} - E:\Vecna cesta-NA_CZ_Hidden_Object_game_2012\Vecna cesta-Nová Antlantida\Aktivátor hry.exe
C:\WINDOWS\system32\tasks\{E0E85B6F-A14C-4D16-82AB-913B53A24DDE} - C:\Program Files (x86)\Rebellion\SniperEliteV2\bin\SniperEliteV2.exe
C:\WINDOWS\system32\tasks\{EF6AD0C9-AD09-4007-87FF-1743A9EC099A} - msiexec.exe /package "G:\GMGInfrastructure\GMGInfrastructure.msi"
C:\WINDOWS\system32\tasks\{F10AF8AC-1B90-411E-8AF4-3124619ADED3} - C:\Program Files (x86)\EDDICA\DUA1\Dua1.exe
C:\WINDOWS\system32\tasks\{F82293CA-128D-42DB-B00B-533D53F27D6F} - C:\Windows\system32\pcalua.exe -a C:\Users\Petr\Downloads\realflight\realflight\update\RealFlight3_50_033.exe -d C:\Users\Petr\Downloads\realflight\realflight\update
C:\WINDOWS\system32\tasks\{FCED47B8-FC95-4CF4-AFBA-3DCF26344E97} - C:\Program Files (x86)\EDDICA\DUA1\Dua1.exe
C:\WINDOWS\system32\tasks\{FD39C632-5F5A-4975-83C5-CBBEBDE6D1F6} - C:\Program Files (x86)\Deep Silver\Secret Files Tunguska\AutoStarter.exe
C:\WINDOWS\system32\tasks\WPD\SqmUpload_S-1-5-21-1005467907-3126548956-2189493663-1001 - %windir%\system32\rundll32.exe portabledeviceapi.dll,#1
C:\WINDOWS\system32\tasks\Microsoft\XblGameSave\XblGameSaveTask - %windir%\System32\XblGameSaveTask.exe standby
C:\WINDOWS\system32\tasks\Microsoft\XblGameSave\XblGameSaveTaskLogon - %windir%\System32\XblGameSaveTask.exe logon
C:\WINDOWS\system32\tasks\Microsoft\Windows Defender\MP Scheduled Scan - c:\program files\windows defender\MpCmdRun.exe Scan -ScheduleJob -WinTask -RestrictPrivilegesScan
C:\WINDOWS\system32\tasks\Microsoft\Windows\Workplace Join\Automatic-Device-Join - %SystemRoot%\System32\dsregcmd.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start - C:\WINDOWS\system32\sc.exe start wuauserv
C:\WINDOWS\system32\tasks\Microsoft\Windows\WindowsUpdate\sih - %systemroot%\System32\sihclient.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\WindowsUpdate\sihboot - %systemroot%\System32\sihclient.exe /boot
C:\WINDOWS\system32\tasks\Microsoft\Windows\Windows Media Sharing\UpdateLibrary - "%ProgramFiles%\Windows Media Player\wmpnscfg.exe"
C:\WINDOWS\system32\tasks\Microsoft\Windows\Windows Filtering Platform\BfeOnServiceStartTypeChange - %windir%\system32\rundll32.exe bfe.dll,BfeOnServiceStartTypeChange
C:\WINDOWS\system32\tasks\Microsoft\Windows\Windows Error Reporting\QueueReporting - %windir%\system32\wermgr.exe -upload
C:\WINDOWS\system32\tasks\Microsoft\Windows\WCM\WiFiTask - %SystemRoot%\System32\WiFiTask.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\UPnP\UPnPHostConfig - sc.exe config upnphost start= auto
C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\Maintenance Install - %systemroot%\system32\usoclient.exe StartInstall
C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\MusUx_UpdateInterval - %systemroot%\system32\MusNotification.exe Display
C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\Policy Install - %systemroot%\system32\usoclient.exe StartInstall
C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\Reboot - %systemroot%\system32\MusNotification.exe RebootDialog
C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\Refresh Settings - %systemroot%\system32\usoclient.exe RefreshSettings
C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\Resume On Boot - %systemroot%\system32\usoclient.exe ResumeUpdate
C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\Schedule Scan - %systemroot%\system32\usoclient.exe StartScan
C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker_Display - C:\windows\system32\MusNotification.exe Display
C:\WINDOWS\system32\tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker_ReadyToReboot - C:\windows\system32\MusNotification.exe ReadyToReboot
C:\WINDOWS\system32\tasks\Microsoft\Windows\Time Zone\SynchronizeTimeZone - %windir%\system32\tzsync.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Time Synchronization\SynchronizeTime - %windir%\system32\sc.exe start w32time task_started
C:\WINDOWS\system32\tasks\Microsoft\Windows\Tcpip\IpAddressConflict1 - %windir%\system32\rundll32.exe ndfapi.dll,NdfRunDllDuplicateIPOffendingSystem
C:\WINDOWS\system32\tasks\Microsoft\Windows\Tcpip\IpAddressConflict2 - %windir%\system32\rundll32.exe ndfapi.dll,NdfRunDllDuplicateIPDefendingSystem
C:\WINDOWS\system32\tasks\Microsoft\Windows\SystemRestore\SR - %windir%\system32\srtasks.exe ExecuteScheduledSPPCreation
C:\WINDOWS\system32\tasks\Microsoft\Windows\Sysmain\WsSwapAssessmentTask - %windir%\system32\rundll32.exe sysmain.dll,PfSvWsSwapAssessmentTask
C:\WINDOWS\system32\tasks\Microsoft\Windows\Storage Tiers Management\Storage Tiers Optimization - %windir%\system32\defrag.exe -c -h -g -# -m 8 -i 13500
C:\WINDOWS\system32\tasks\Microsoft\Windows\Speech\SpeechModelDownloadTask - %windir%\system32\speech_onecore\common\SpeechModelDownload.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\SpacePort\SpaceAgentTask - %windir%\system32\SpaceAgent.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\SpacePort\SpaceManagerTask - %windir%\system32\spaceman.exe /Work
C:\WINDOWS\system32\tasks\Microsoft\Windows\Shell\FamilySafetyMonitor - %windir%\System32\wpcmon.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\SharedPC\Account Cleanup - %windir%\System32\rundll32.exe %windir%\System32\Windows.SharedPC.AccountManager.dll,StartMaintenance
C:\WINDOWS\system32\tasks\Microsoft\Windows\RemoteAssistance\RemoteAssistanceTask - %windir%\system32\RAServer.exe /offerraupdate
C:\WINDOWS\system32\tasks\Microsoft\Windows\Plug and Play\Sysprep Generalize Drivers - %SystemRoot%\System32\drvinst.exe 6
C:\WINDOWS\system32\tasks\Microsoft\Windows\NlaSvc\WiFiTask - %SystemRoot%\System32\WiFiTask.exe nla
C:\WINDOWS\system32\tasks\Microsoft\Windows\NetTrace\GatherNetworkInfo - %windir%\system32\gatherNetworkInfo.vbs
C:\WINDOWS\system32\tasks\Microsoft\Windows\MUI\Lpksetup - C:\Windows\System32\lpksetup.exe -v
C:\WINDOWS\system32\tasks\Microsoft\Windows\MUI\LPRemove - %windir%\system32\lpremove.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\MUI\Mcbuilder - C:\Windows\System32\mcbuilder.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser - %SystemRoot%\System32\MbaeParserTask.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Media Center\ActivateWindowsSearch - %SystemRoot%\ehome\ehPrivJob.exe /DoActivateWindowsSearch
C:\WINDOWS\system32\tasks\Microsoft\Windows\Media Center\ConfigureInternetTimeService - %SystemRoot%\ehome\ehPrivJob.exe /DoConfigureInternetTimeService
C:\WINDOWS\system32\tasks\Microsoft\Windows\Media Center\DispatchRecoveryTasks - %SystemRoot%\ehome\ehPrivJob.exe /DoRecoveryTasks $(Arg0)
C:\WINDOWS\system32\tasks\Microsoft\Windows\Media Center\ehDRMInit - %SystemRoot%\ehome\ehPrivJob.exe /DRMInit
C:\WINDOWS\system32\tasks\Microsoft\Windows\Media Center\InstallPlayReady - %SystemRoot%\ehome\ehPrivJob.exe /InstallPlayReady $(Arg0)
C:\WINDOWS\system32\tasks\Microsoft\Windows\Media Center\mcupdate - %SystemRoot%\ehome\mcupdate $(Arg0)
C:\WINDOWS\system32\tasks\Microsoft\Windows\Media Center\mcupdate_scheduled - %SystemRoot%\ehome\mcupdate -crl -hms -pscn 15
C:\WINDOWS\system32\tasks\Microsoft\Windows\Media Center\MediaCenterRecoveryTask - %SystemRoot%\ehome\mcupdate.exe -MediaCenterRecoveryTask
C:\WINDOWS\system32\tasks\Microsoft\Windows\Media Center\ObjectStoreRecoveryTask - %SystemRoot%\ehome\mcupdate.exe -ObjectStoreRecoveryTask
C:\WINDOWS\system32\tasks\Microsoft\Windows\Media Center\OCURActivate - %SystemRoot%\ehome\ehPrivJob.exe /OCURActivate
C:\WINDOWS\system32\tasks\Microsoft\Windows\Media Center\OCURDiscovery - %SystemRoot%\ehome\ehPrivJob.exe /OCURDiscovery $(Arg0)
C:\WINDOWS\system32\tasks\Microsoft\Windows\Media Center\PBDADiscovery - %SystemRoot%\ehome\ehPrivJob.exe /PBDADiscovery
C:\WINDOWS\system32\tasks\Microsoft\Windows\Media Center\PBDADiscoveryW1 - %SystemRoot%\ehome\ehPrivJob.exe /wait:7 /PBDADiscovery
C:\WINDOWS\system32\tasks\Microsoft\Windows\Media Center\PBDADiscoveryW2 - %SystemRoot%\ehome\ehPrivJob.exe /wait:90 /PBDADiscovery
C:\WINDOWS\system32\tasks\Microsoft\Windows\Media Center\PeriodicScanRetry - %windir%\ehome\MCUpdate.exe -pscn 0
C:\WINDOWS\system32\tasks\Microsoft\Windows\Media Center\PvrRecoveryTask - %SystemRoot%\ehome\mcupdate.exe -PvrRecoveryTask
C:\WINDOWS\system32\tasks\Microsoft\Windows\Media Center\PvrScheduleTask - %SystemRoot%\ehome\mcupdate.exe -PvrSchedule
C:\WINDOWS\system32\tasks\Microsoft\Windows\Media Center\RecordingRestart - %SystemRoot%\ehome\ehrec /RestartRecording
C:\WINDOWS\system32\tasks\Microsoft\Windows\Media Center\RegisterSearch - %SystemRoot%\ehome\ehPrivJob.exe /DoRegisterSearch $(Arg0)
C:\WINDOWS\system32\tasks\Microsoft\Windows\Media Center\ReindexSearchRoot - %SystemRoot%\ehome\ehPrivJob.exe /DoReindexSearchRoot
C:\WINDOWS\system32\tasks\Microsoft\Windows\Media Center\SqlLiteRecoveryTask - %SystemRoot%\ehome\mcupdate.exe -SqlLiteRecoveryTask
C:\WINDOWS\system32\tasks\Microsoft\Windows\Media Center\StartRecording - %SystemRoot%\ehome\ehrec /StartRecording
C:\WINDOWS\system32\tasks\Microsoft\Windows\Media Center\UpdateRecordPath - %SystemRoot%\ehome\ehPrivJob.exe /DoUpdateRecordPath $(Arg0)
C:\WINDOWS\system32\tasks\Microsoft\Windows\Management\Provisioning\Logon - %windir%\system32\ProvTool.exe /turn 5
C:\WINDOWS\system32\tasks\Microsoft\Windows\Location\Notifications - %windir%\System32\LocationNotificationWindows.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Location\WindowsActionDialog - %windir%\System32\WindowsActionDialog.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Feedback\Siuf\DmClient - %windir%\system32\dmclient.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Feedback\Siuf\DmClientOnScenarioDownload - %windir%\system32\dmclient.exe utcwnf
C:\WINDOWS\system32\tasks\Microsoft\Windows\EnterpriseMgmt\MDMMaintenenceTask - %windir%\system32\MDMAgent.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\DUSM\dusmtask - %SystemRoot%\System32\dusmtask.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\DiskFootprint\Diagnostics - %windir%\system32\disksnapshot.exe -z
C:\WINDOWS\system32\tasks\Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticDataCollector - %windir%\system32\rundll32.exe dfdts.dll,DfdGetDefaultPolicyAndSMART
C:\WINDOWS\system32\tasks\Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticResolver - %windir%\system32\DFDWiz.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\DiskCleanup\SilentCleanup - %windir%\system32\cleanmgr.exe /autoclean /d %systemdrive%
C:\WINDOWS\system32\tasks\Microsoft\Windows\Device Information\Device - %windir%\system32\devicecensus.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Defrag\ScheduledDefrag - %windir%\system32\defrag.exe -c -h -o -$
C:\WINDOWS\system32\tasks\Microsoft\Windows\Customer Experience Improvement Program\Consolidator - %SystemRoot%\System32\wsqmcons.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Clip\License Validation - %SystemRoot%\system32\ClipUp.exe -p -s -o
C:\WINDOWS\system32\tasks\Microsoft\Windows\Bluetooth\UninstallDeviceTask - BthUdTask.exe $(Arg0)
C:\WINDOWS\system32\tasks\Microsoft\Windows\Autochk\Proxy - %windir%\system32\rundll32.exe /d acproxy.dll,PerformAutochkOperations
C:\WINDOWS\system32\tasks\Microsoft\Windows\AppxDeploymentClient\Pre-staged app cleanup - %windir%\system32\rundll32.exe %windir%\system32\AppxDeploymentClient.dll,AppxPreStageCleanupRunTask
C:\WINDOWS\system32\tasks\Microsoft\Windows\ApplicationData\appuriverifierdaily - %windir%\system32\AppHostRegistrationVerifier.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\ApplicationData\appuriverifierinstall - %windir%\system32\AppHostRegistrationVerifier.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\ApplicationData\CleanupTemporaryState - %windir%\system32\rundll32.exe Windows.Storage.ApplicationData.dll,CleanupTemporaryState
C:\WINDOWS\system32\tasks\Microsoft\Windows\ApplicationData\DsSvcCleanup - %windir%\system32\dstokenclean.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Application Experience\Microsoft Compatibility Appraiser - %windir%\system32\compattelrunner.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\Application Experience\ProgramDataUpdater - %windir%\system32\compattelrunner.exe -maintenance
C:\WINDOWS\system32\tasks\Microsoft\Windows\Application Experience\StartupAppTask - %windir%\system32\rundll32.exe Startupscan.dll,SusRunTask
C:\WINDOWS\system32\tasks\Microsoft\Windows\AppID\PolicyConverter - %windir%\system32\appidpolicyconverter.exe
C:\WINDOWS\system32\tasks\Microsoft\Windows\AppID\VerifiedPublisherCertStoreCheck - %windir%\system32\appidcertstorecheck.exe
C:\WINDOWS\system32\tasks\AVAST Software\Avast settings backup - C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe /backup /iavs

=========Google Chrome=========

C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences
Extension ahfgeienlihckogmohjhadlkjgocpleb 1 Store 0.2
Extension aimnideehoepfoiniigacdpefnlngnob 1 GC little helper 11.6
Extension amhhdbdhoghppijbjfdkiaconkmfbbpa 1 CacheList 4.0.1
Extension aohghmighlieiainnegkcijnfilokake 1 Dokumenty Google 0.9
Extension apdfllckaahabafndbhieahigkjlhalf 1 Disk Google 14.1
Extension bepbmhgboaologfdajaanbcjmnhjmhfn 0
Extension blpcfgokakmgnkcojhhkbfbldkacnbeo 1 YouTube 4.2.8
Extension coobgpohoikkiipiblmjeljniedjpjpf 1 Vyhledávání Google 0.0.0.60
Extension eemcgdkfndhakfknompkggombfjjjeno 1 Bookmark Manager 0.1
Extension efaidnbmnnnibpcajpcglclefindmkaj 1 Adobe Acrobat 15.1.0.6
Extension ennkphjdgehloodpbhlhldgbnhmacadg Settings 0.2
Extension eofcbnmajmjmplflapaojjnihcjkigck 1 Avast SafePrice 12.0.199
Extension gfdkimpbcpahaombhbimeihdjnejgicl 1 Feedback 1.0
Extension ghbmnnjooekpmoecnnnilnnbdlolhkhi 1 Dokumenty Google offline 1.4
Extension gomekmidlodglbbmalcneegieacbdmki 2 avast! Online Security 9.0.2021.112
Extension kmendfapggjehodndflmmgagdbamhnfd 1 CryptoTokenExtension 0.9.46
Extension lmjegmlicamnimmfhcmpkclmigmmcbeh 1 Application Launcher for Drive (by Google) 3.2
Extension mfehgcgbbipciphmccgaenjidiccnmng 1 Cloud Print 0.1
Extension mfffpogegjflfpflabcdkioaeobkgjik 1 GaiaAuthExtension 0.0.1
Extension mgndgikekgjfcpckkfioiadnlibdjbkf Chrome 0.1
Extension mhjfbmdgcfjbbpaeojofohoefgiehjai 1 Chrome PDF Viewer 1
Extension neajdppkdcdipfabeoofebfddakdcjhd 1 Google Network Speech 1.0
Extension nkeimhogjdpnpccoofpliimaahmaaome 1 Google Hangouts 1.3.2
Extension nmmhkkegccagdldgiimedpiccmgmieda 1 Platby Internetového obchodu Chrome 1.0.0.2
Extension pafkbggdmjlpgkdkcbjmhmfcdpncadgh Google Now 1.2.0.1
Extension pjkljhegncpnkpknbcohdijeoejaedia 1 Gmail 8.1
Extension pkedcjkdefgpdelpbcmbmeomcjbeemfm 1 Chrome Media Router 5616.1121.0.3
Extension pkejgpgaflkeonkliblcplomemekogop 1 Geoseznam 2.46
Homepage: http://www.centrum.cz/
default_search_provider.search_url:
C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Preferences
Plugin 11.6.602.180 Shockwave Flash C:\Program Files (x86)\Google\Chrome\Application\56.0.2924.87\PepperFlash\pepflashplayer.dll
Plugin Chrome Remote Desktop Viewer internal-remoting-viewer
Plugin Native Client C:\Program Files (x86)\Google\Chrome\Application\56.0.2924.87\ppGoogleNaClPluginChrome.dll
Plugin Chrome PDF Viewer C:\Program Files (x86)\Google\Chrome\Application\56.0.2924.87\pdf.dll
Plugin 10.1.6.1 Adobe Acrobat C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll
Plugin 14.0.4730.1010 Microsoft Office 2010 C:\PROGRA~2\MICROS~4\Office14\NPAUTHZ.DLL
Plugin 14.0.4761.1000 Microsoft Office 2010 C:\PROGRA~2\MICROS~4\Office14\NPSPWRAP.DLL
Plugin 1.0.0.0 AdobeExManDetect C:\Program Files (x86)\Adobe\Adobe Extension Manager CS6\npAdobeExManDetectX86.dll
Plugin 1.0.0.0 AdobeAAMDetect C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll
Plugin 1.3.21.135 Google Update C:\Program Files (x86)\Google\Update\1.3.21.135\npGoogleUpdate3.dll
Plugin 10.17.2.02 Java(TM) Platform SE 7 U17 C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll
Plugin 5.1.20125.0 Silverlight Plug-In C:\Program Files (x86)\Microsoft Silverlight\5.1.20125.0\npctrl.dll
Plugin 2.0.2 VLC Web Plugin C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll
Plugin 4.0.5.13 WildTangent Games App V2 Presence Detector C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\1\NP_wtapp.dll
Plugin 15.4.3538.0513_ship.wlx.w4m4 (ship) Windows Live™ Photo Gallery C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
Plugin 10.17.2.02 Java Deployment Toolkit 7.0.170.2 C:\Windows\SysWOW64\npDeployJava1.dll
Homepage:
default_search_provider.search_url:

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\efaidnbmnnnibpcajpcglclefindmkaj]
"Path"=C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Browser\WCChromeExtn\WCChromeExtn.crx

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\eofcbnmajmjmplflapaojjnihcjkigck]
"Path"=

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\gomekmidlodglbbmalcneegieacbdmki]
"Path"=


======Registry dump ======


[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"={0633EE93-D776-472f-A0FF-E1416B8B2E3A}
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}]
"URL"=http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}]
"URL"=http://www.google.com/search?q={searchT ... urceid=ie7


[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"={0633EE93-D776-472f-A0FF-E1416B8B2E3A}
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}]
"URL"=http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}]
"URL"=http://www.google.com/search?q={searchT ... urceid=ie7

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL [2013-12-19 6671064]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre1.8.0_121\bin\ssv.dll [2017-03-06 571456]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2016-05-24 255088]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL [2013-03-06 690392]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre1.8.0_121\bin\jp2ssv.dll [2017-03-06 234560]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2DB66063-BB98-466A-AA0D-3E7ACF5ED853}]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{451C804F-C205-4F03-B48E-537EC94937BF}]
Wondershare Video Converter Ultimate 7.1.0 - C:\PROGRA~3\WONDER~1\VIDEOC~1\WSBROW~1.DLL [2015-08-13 622480]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~2\MICROS~4\Office14\GROOVEEX.DLL [2013-12-19 4171480]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_121\bin\ssv.dll [2017-03-06 473152]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2016-05-24 193136]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE7CD045-E861-484f-8273-0445EE161910}]
Adobe Acrobat Create PDF Toolbar Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll [2012-09-23 330392]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MICROS~4\Office14\URLREDIR.DLL [2013-03-06 562904]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_121\bin\jp2ssv.dll [2017-03-06 186944]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F4971EE7-DAA0-4053-9964-665D8EE6A077}]
Adobe Acrobat Create PDF from Selection - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll [2012-09-23 330392]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{318A227B-5E9F-45bd-8999-7F8F10CA4CF5} -
{CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F}
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2016-05-24 255088]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{BFC32E1D-EE75-4A48-BC60-104E11EE2431}
{47833539-D0C5-4125-9FA8-0819E2EAAC93} - Adobe Acrobat Create PDF Toolbar - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll [2012-09-23 330392]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2016-05-24 193136]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IgfxTray"=C:\WINDOWS\system32\igfxtray.exe [2012-11-27 168480]
"HotKeysCmds"=C:\WINDOWS\system32\hkcmd.exe [2012-11-27 393760]
"Persistence"=C:\WINDOWS\system32\igfxpers.exe [2012-11-27 418336]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2010-06-22 10920552]
"ETDWare"=C:\Program Files\Elantech\ETDCtrl.exe [2010-04-13 649608]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvLaunch.exe [2017-04-04 213824]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"GoogleChromeAutoLaunch_795A6C1EC44E0A41F3030B5EF87A210A"=C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [2017-03-29 1111896]
"OneDrive"=C:\Users\Petr\AppData\Local\Microsoft\OneDrive\OneDrive.exe [2017-04-12 1518808]
"OfficeSyncProcess"=C:\Program Files (x86)\Microsoft Office\Office14\MSOSYNC.EXE [2015-09-02 721504]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Acer ePower Management]
C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerTray.exe [2011-01-06 860040]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Acrobat Assistant 8.0]
C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Acrotray.exe [2012-12-18 3478752]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2017-02-02 1160408]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe [2015-09-24 40336]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AdobeAAMUpdater-1.0]
C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2012-09-20 444904]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AdobeCS5.5ServiceManager]
C:\Program Files (x86)\Common Files\Adobe\CS5.5ServiceManager\CS5.5ServiceManager.exe -launchedbylogin []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Akamai NetSession Interface]
C:\Users\Petr\AppData\Local\Akamai\netsession_win.exe []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CCleaner Monitoring]
C:\Program Files\CCleaner\CCleaner64.exe [2017-04-11 9532120]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\FlashPlayerUpdate]
C:\Windows\system32\Macromed\Flash\FlashUtil64_15_0_0_246_ActiveX.exe -update activex []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Nektra OEAPI]
[]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Nikon Message Center 2]
C:\Program Files (x86)\Nikon\Nikon Message Center 2\NkMC2.exe -s []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\OEXPRESS]
[]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RtHDVCpl]
C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2010-06-22 10920552]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2016-12-12 587288]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\YourFile DownloaderInstaller Starter]
C:\Users\Petr\AppData\Local\Temp\install2021398.exe -startup []

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"BackupManagerTray"=C:\Program Files (x86)\NewTech Infosystems\Packard Bell MyBackup\BackupManagerTray.exe [2010-06-29 263936]
"LManager"=C:\Program Files (x86)\Launch Manager\LManager.exe [2010-08-10 975952]
"BCSSync"=C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [2012-11-05 89184]
"REGSHAVE"=C:\Program Files (x86)\REGSHAVE\REGSHAVE.EXE [2002-02-04 53248]
"Wondershare Helper Compact.exe"=C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe [2016-11-15 3]
"DelaypluginInstall"=C:\ProgramData\Wondershare\Video Converter Ultimate\DelayPluginI.exe [2015-08-13 1960336]
"TP-LINK USB Printer Controller"=C:\Program Files (x86)\TP-LINK\USB Printer Controller\USB Printer Controller.exe [2014-06-19 4265984]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2016-12-12 587288]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\WINDOWS\system32\DriverStore\FileRepository\nvacwu.inf_amd64_bdd6ea477d4e2fba\nvinitx.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
igfxdev.dll []

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL [2013-12-19 6671064]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~2\MICROS~4\Office14\GROOVEEX.DLL [2013-12-19 4171480]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders" = credssp.dll

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"DSCAutomationHostEnabled"=2
"EnableCursorSuppression"=1
"EnableUIADesktopToggle"=0
"undockwithoutlogon"=1
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"SoftwareSASGeneration"=1

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"ForceActiveDesktopOn"=0
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]


[HKEY_LOCAL_MACHINE\Software\Microsoft\Active Setup\Installed Components\>{22d6f312-b0f6-11d0-94ab-0080c74c7e95}]
"StubPath" = %SystemRoot%\inf\unregmp2.exe /ShowWMP
[HKEY_LOCAL_MACHINE\Software\Microsoft\Active Setup\Installed Components\{8A69D345-D564-463c-AFF1-A69D9E530F96}]
"StubPath" = "C:\Program Files (x86)\Google\Chrome\Application\57.0.2987.133\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"vidc.ffds"=ff_vfw.dll
"msacm.ac3filter"=ac3filter64.acm

====== File associations ======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

plch
Návštěvník
Návštěvník
Příspěvky: 68
Registrován: 27 led 2008 12:33

Re: Prosím o preventivní kontrolu - díky.

#2 Příspěvek od plch »

Pokračování logu.

====== List of files/folders created in the last 1 month ======

2017-04-18 16:43:55 ----D---- C:\AdwCleaner
2017-04-18 16:32:54 ----D---- C:\rsit
2017-04-18 15:58:14 ----D---- C:\FRST
2017-04-14 09:21:44 ----HD---- C:\OneDriveTemp
2017-04-12 16:56:00 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Protection.PlayReady.dll
2017-04-12 16:55:58 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2017-04-12 16:55:56 ----A---- C:\WINDOWS\SYSWOW64\windows.storage.dll
2017-04-12 16:55:53 ----A---- C:\WINDOWS\SYSWOW64\mos.dll
2017-04-12 16:55:46 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.dll
2017-04-12 16:55:45 ----A---- C:\WINDOWS\SYSWOW64\MFMediaEngine.dll
2017-04-12 16:55:44 ----A---- C:\WINDOWS\SYSWOW64\win32kfull.sys
2017-04-12 16:55:44 ----A---- C:\WINDOWS\SYSWOW64\mfmp4srcsnk.dll
2017-04-12 16:55:44 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2017-04-12 16:55:43 ----A---- C:\WINDOWS\SYSWOW64\mfsrcsnk.dll
2017-04-12 16:55:43 ----A---- C:\WINDOWS\SYSWOW64\mfmpeg2srcsnk.dll
2017-04-12 16:55:43 ----A---- C:\WINDOWS\SYSWOW64\mfasfsrcsnk.dll
2017-04-12 16:55:42 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2017-04-12 16:55:42 ----A---- C:\WINDOWS\SYSWOW64\mstscax.dll
2017-04-12 16:55:42 ----A---- C:\WINDOWS\SYSWOW64\mfnetcore.dll
2017-04-12 16:55:41 ----A---- C:\WINDOWS\SYSWOW64\WindowsCodecs.dll
2017-04-12 16:55:41 ----A---- C:\WINDOWS\SYSWOW64\ole32.dll
2017-04-12 16:55:41 ----A---- C:\WINDOWS\SYSWOW64\MCRecvSrc.dll
2017-04-12 16:55:41 ----A---- C:\WINDOWS\SYSWOW64\gdi32full.dll
2017-04-12 16:55:40 ----A---- C:\WINDOWS\SYSWOW64\Windows.Networking.Connectivity.dll
2017-04-12 16:55:40 ----A---- C:\WINDOWS\SYSWOW64\TSWorkspace.dll
2017-04-12 16:55:40 ----A---- C:\WINDOWS\SYSWOW64\quartz.dll
2017-04-12 16:55:40 ----A---- C:\WINDOWS\SYSWOW64\oleaut32.dll
2017-04-12 16:55:40 ----A---- C:\WINDOWS\SYSWOW64\kerberos.dll
2017-04-12 16:55:39 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2017-04-12 16:55:39 ----A---- C:\WINDOWS\SYSWOW64\fontdrvhost.exe
2017-04-12 16:55:38 ----A---- C:\WINDOWS\SYSWOW64\LicenseManager.dll
2017-04-12 16:55:38 ----A---- C:\WINDOWS\SYSWOW64\cdp.dll
2017-04-12 16:55:38 ----A---- C:\WINDOWS\SYSWOW64\atmfd.dll
2017-04-12 16:55:38 ----A---- C:\WINDOWS\SYSWOW64\apprepsync.dll
2017-04-12 16:55:37 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Speech.dll
2017-04-12 16:55:37 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.dll
2017-04-12 16:55:37 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.LockScreen.dll
2017-04-12 16:55:37 ----A---- C:\WINDOWS\SYSWOW64\mbsmsapi.dll
2017-04-12 16:55:36 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Streaming.dll
2017-04-12 16:55:36 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Picker.dll
2017-04-12 16:55:36 ----A---- C:\WINDOWS\SYSWOW64\Windows.AccountsControl.dll
2017-04-12 16:55:36 ----A---- C:\WINDOWS\SYSWOW64\msxml6.dll
2017-04-12 16:55:35 ----A---- C:\WINDOWS\SYSWOW64\Windows.Data.Pdf.dll
2017-04-12 16:55:35 ----A---- C:\WINDOWS\SYSWOW64\UserDataTimeUtil.dll
2017-04-12 16:55:35 ----A---- C:\WINDOWS\SYSWOW64\updatepolicy.dll
2017-04-12 16:55:35 ----A---- C:\WINDOWS\system32\drivers\msiscsi.sys
2017-04-12 16:55:34 ----A---- C:\WINDOWS\SYSWOW64\Windows.Web.dll
2017-04-12 16:55:34 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.SerialCommunication.dll
2017-04-12 16:55:34 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.PointOfService.dll
2017-04-12 16:55:34 ----A---- C:\WINDOWS\SYSWOW64\mfcore.dll
2017-04-12 16:55:33 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Input.Inking.dll
2017-04-12 16:55:33 ----A---- C:\WINDOWS\SYSWOW64\Windows.Networking.dll
2017-04-12 16:55:33 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Perception.dll
2017-04-12 16:55:33 ----A---- C:\WINDOWS\SYSWOW64\aadtb.dll
2017-04-12 16:55:32 ----A---- C:\WINDOWS\SYSWOW64\WinTypes.dll
2017-04-12 16:55:32 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Editing.dll
2017-04-12 16:55:32 ----A---- C:\WINDOWS\SYSWOW64\twinapi.appcore.dll
2017-04-12 16:55:32 ----A---- C:\WINDOWS\SYSWOW64\StoreAgent.dll
2017-04-12 16:55:32 ----A---- C:\WINDOWS\SYSWOW64\MiracastReceiver.dll
2017-04-12 16:55:32 ----A---- C:\WINDOWS\SYSWOW64\mfnetsrc.dll
2017-04-12 16:55:32 ----A---- C:\WINDOWS\SYSWOW64\CompPkgSup.dll
2017-04-12 16:55:32 ----A---- C:\WINDOWS\SYSWOW64\CloudExperienceHostCommon.dll
2017-04-12 16:55:31 ----A---- C:\WINDOWS\SYSWOW64\twinui.appcore.dll
2017-04-12 16:55:31 ----A---- C:\WINDOWS\SYSWOW64\InputService.dll
2017-04-12 16:55:31 ----A---- C:\WINDOWS\SYSWOW64\AudioSes.dll
2017-04-12 16:55:30 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Usb.dll
2017-04-12 16:55:30 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.AllJoyn.dll
2017-04-12 16:55:30 ----A---- C:\WINDOWS\SYSWOW64\wer.dll
2017-04-12 16:55:30 ----A---- C:\WINDOWS\SYSWOW64\mstsc.exe
2017-04-12 16:55:29 ----A---- C:\WINDOWS\SYSWOW64\wscapi.dll
2017-04-12 16:55:29 ----A---- C:\WINDOWS\SYSWOW64\Windows.Storage.ApplicationData.dll
2017-04-12 16:55:29 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.MediaControl.dll
2017-04-12 16:55:29 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Audio.dll
2017-04-12 16:55:29 ----A---- C:\WINDOWS\SYSWOW64\ShareHost.dll
2017-04-12 16:55:29 ----A---- C:\WINDOWS\SYSWOW64\CloudExperienceHostUser.dll
2017-04-12 16:55:28 ----A---- C:\WINDOWS\SYSWOW64\Windows.Security.Authentication.Web.Core.dll
2017-04-12 16:55:28 ----A---- C:\WINDOWS\SYSWOW64\CoreUIComponents.dll
2017-04-12 16:55:27 ----A---- C:\WINDOWS\SYSWOW64\Windows.System.SystemManagement.dll
2017-04-12 16:55:27 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.SmartCards.dll
2017-04-12 16:55:27 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Bluetooth.dll
2017-04-12 16:55:27 ----A---- C:\WINDOWS\SYSWOW64\MbaeApiPublic.dll
2017-04-12 16:55:27 ----A---- C:\WINDOWS\SYSWOW64\efswrt.dll
2017-04-12 16:55:27 ----A---- C:\WINDOWS\SYSWOW64\asycfilt.dll
2017-04-12 16:55:26 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Import.dll
2017-04-12 16:55:26 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.LowLevel.dll
2017-04-12 16:55:26 ----A---- C:\WINDOWS\SYSWOW64\CertEnroll.dll
2017-04-12 16:55:25 ----A---- C:\WINDOWS\SYSWOW64\Windows.Graphics.Printing.dll
2017-04-12 16:55:25 ----A---- C:\WINDOWS\SYSWOW64\Windows.Gaming.Input.dll
2017-04-12 16:55:25 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.HumanInterfaceDevice.dll
2017-04-12 16:55:24 ----A---- C:\WINDOWS\SYSWOW64\Windows.Web.Http.dll
2017-04-12 16:55:24 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.Phone.dll
2017-04-12 16:55:24 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.Maps.dll
2017-04-12 16:55:23 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Sensors.dll
2017-04-12 16:55:23 ----A---- C:\WINDOWS\SYSWOW64\AppContracts.dll
2017-04-12 16:55:22 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.WiFiDirect.dll
2017-04-12 16:55:22 ----A---- C:\WINDOWS\SYSWOW64\PlayToManager.dll
2017-04-12 16:55:22 ----A---- C:\WINDOWS\SYSWOW64\dlnashext.dll
2017-04-12 16:55:22 ----A---- C:\WINDOWS\SYSWOW64\CryptoWinRT.dll
2017-04-12 16:55:21 ----A---- C:\WINDOWS\SYSWOW64\Windows.Gaming.XboxLive.Storage.dll
2017-04-12 16:55:21 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Midi.dll
2017-04-12 16:55:21 ----A---- C:\WINDOWS\SYSWOW64\TokenBroker.dll
2017-04-12 16:55:21 ----A---- C:\WINDOWS\SYSWOW64\SyncSettings.dll
2017-04-12 16:55:21 ----A---- C:\WINDOWS\SYSWOW64\PlayToDevice.dll
2017-04-12 16:55:20 ----A---- C:\WINDOWS\SYSWOW64\dialclient.dll
2017-04-12 16:55:19 ----A---- C:\WINDOWS\SYSWOW64\UserDataAccountApis.dll
2017-04-12 16:55:19 ----A---- C:\WINDOWS\SYSWOW64\RTMediaFrame.dll
2017-04-12 16:55:19 ----A---- C:\WINDOWS\SYSWOW64\msdtcprx.dll
2017-04-12 16:55:18 ----A---- C:\WINDOWS\SYSWOW64\WsmSvc.dll
2017-04-12 16:55:18 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Wallet.dll
2017-04-12 16:55:17 ----A---- C:\WINDOWS\SYSWOW64\wlidcli.dll
2017-04-12 16:55:17 ----A---- C:\WINDOWS\SYSWOW64\Windows.Perception.Stub.dll
2017-04-12 16:55:17 ----A---- C:\WINDOWS\SYSWOW64\bcastdvr.exe
2017-04-12 16:55:16 ----A---- C:\WINDOWS\SYSWOW64\Windows.Internal.Bluetooth.dll
2017-04-12 16:55:16 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Radios.dll
2017-04-12 16:55:16 ----A---- C:\WINDOWS\SYSWOW64\SettingSyncCore.dll
2017-04-12 16:55:16 ----A---- C:\WINDOWS\SYSWOW64\apprepapi.dll
2017-04-12 16:55:16 ----A---- C:\WINDOWS\system32\drivers\BasicRender.sys
2017-04-12 16:55:15 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.InkControls.dll
2017-04-12 16:55:15 ----A---- C:\WINDOWS\SYSWOW64\oleacc.dll
2017-04-12 16:55:15 ----A---- C:\WINDOWS\SYSWOW64\DisplayManager.dll
2017-04-12 16:55:14 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.dll
2017-04-12 16:55:14 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.FaceAnalysis.dll
2017-04-12 16:55:14 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Scanners.dll
2017-04-12 16:55:14 ----A---- C:\WINDOWS\SYSWOW64\UserDeviceRegistration.dll
2017-04-12 16:55:13 ----A---- C:\WINDOWS\SYSWOW64\WinRtTracing.dll
2017-04-12 16:55:13 ----A---- C:\WINDOWS\SYSWOW64\Windows.System.UserDeviceAssociation.dll
2017-04-12 16:55:13 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.WiFi.dll
2017-04-12 16:55:12 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.dll
2017-04-12 16:55:12 ----A---- C:\WINDOWS\SYSWOW64\RADCUI.dll
2017-04-12 16:55:12 ----A---- C:\WINDOWS\SYSWOW64\PlayToReceiver.dll
2017-04-12 16:55:12 ----A---- C:\WINDOWS\SYSWOW64\netshell.dll
2017-04-12 16:55:11 ----A---- C:\WINDOWS\SYSWOW64\Windows.Internal.Management.dll
2017-04-12 16:55:11 ----A---- C:\WINDOWS\SYSWOW64\AboveLockAppHost.dll
2017-04-12 16:55:10 ----A---- C:\WINDOWS\SYSWOW64\wpnapps.dll
2017-04-12 16:55:10 ----A---- C:\WINDOWS\SYSWOW64\Windows.Networking.BackgroundTransfer.dll
2017-04-12 16:55:09 ----A---- C:\WINDOWS\SYSWOW64\Windows.Graphics.Printing.3D.dll
2017-04-12 16:55:09 ----A---- C:\WINDOWS\SYSWOW64\Windows.Globalization.dll
2017-04-12 16:55:09 ----A---- C:\WINDOWS\SYSWOW64\ErrorDetails.dll
2017-04-12 16:55:08 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Ocr.dll
2017-04-12 16:55:08 ----A---- C:\WINDOWS\SYSWOW64\CredProvDataModel.dll
2017-04-12 16:55:07 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Background.SystemEventsBroker.dll
2017-04-12 16:55:07 ----A---- C:\WINDOWS\SYSWOW64\UserMgrProxy.dll
2017-04-12 16:55:07 ----A---- C:\WINDOWS\SYSWOW64\mfmjpegdec.dll
2017-04-12 16:55:07 ----A---- C:\WINDOWS\SYSWOW64\AppointmentActivation.dll
2017-04-12 16:55:06 ----A---- C:\WINDOWS\SYSWOW64\WwaApi.dll
2017-04-12 16:55:06 ----A---- C:\WINDOWS\SYSWOW64\wuapi.dll
2017-04-12 16:55:06 ----A---- C:\WINDOWS\SYSWOW64\Windows.Security.Authentication.Identity.Provider.dll
2017-04-12 16:55:06 ----A---- C:\WINDOWS\SYSWOW64\Geolocation.dll
2017-04-12 16:55:06 ----A---- C:\WINDOWS\SYSWOW64\deviceaccess.dll
2017-04-12 16:55:05 ----A---- C:\WINDOWS\SYSWOW64\Windows.StateRepositoryClient.dll
2017-04-12 16:55:05 ----A---- C:\WINDOWS\SYSWOW64\StructuredQuery.dll
2017-04-12 16:55:05 ----A---- C:\WINDOWS\SYSWOW64\olepro32.dll
2017-04-12 16:55:04 ----A---- C:\WINDOWS\SYSWOW64\vaultcli.dll
2017-04-12 16:55:04 ----A---- C:\WINDOWS\SYSWOW64\ipsecsnp.dll
2017-04-12 16:55:04 ----A---- C:\WINDOWS\SYSWOW64\apds.dll
2017-04-12 16:55:03 ----A---- C:\WINDOWS\SYSWOW64\mspaint.exe
2017-04-12 16:55:02 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Devices.dll
2017-04-12 16:55:02 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Lights.dll
2017-04-12 16:55:02 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Core.dll
2017-04-12 16:55:02 ----A---- C:\WINDOWS\SYSWOW64\ipsmsnap.dll
2017-04-12 16:55:01 ----A---- C:\WINDOWS\SYSWOW64\TokenBrokerUI.dll
2017-04-12 16:55:01 ----A---- C:\WINDOWS\SYSWOW64\sbe.dll
2017-04-12 16:55:01 ----A---- C:\WINDOWS\system32\drivers\BasicDisplay.sys
2017-04-12 16:55:00 ----A---- C:\WINDOWS\SYSWOW64\XblAuthTokenBrokerExt.dll
2017-04-12 16:55:00 ----A---- C:\WINDOWS\SYSWOW64\XblAuthManagerProxy.dll
2017-04-12 16:55:00 ----A---- C:\WINDOWS\SYSWOW64\dmenrollengine.dll
2017-04-12 16:55:00 ----A---- C:\WINDOWS\SYSWOW64\AzureSettingSyncProvider.dll
2017-04-12 16:55:00 ----A---- C:\WINDOWS\SYSWOW64\AuthBroker.dll
2017-04-12 16:54:59 ----A---- C:\WINDOWS\SYSWOW64\Windows.Networking.ServiceDiscovery.Dnssd.dll
2017-04-12 16:54:59 ----A---- C:\WINDOWS\SYSWOW64\actxprxy.dll
2017-04-12 16:54:58 ----A---- C:\WINDOWS\SYSWOW64\Windows.Networking.HostName.dll
2017-04-12 16:54:58 ----A---- C:\WINDOWS\SYSWOW64\enrollmentapi.dll
2017-04-12 16:54:58 ----A---- C:\WINDOWS\SYSWOW64\AppXDeploymentClient.dll
2017-04-12 16:54:57 ----A---- C:\WINDOWS\SYSWOW64\Windows.Web.Diagnostics.dll
2017-04-12 16:54:57 ----A---- C:\WINDOWS\SYSWOW64\InstallAgent.exe
2017-04-12 16:54:57 ----A---- C:\WINDOWS\SYSWOW64\ExSMime.dll
2017-04-12 16:54:56 ----A---- C:\WINDOWS\SYSWOW64\usoapi.dll
2017-04-12 16:54:56 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_47.dll
2017-04-12 16:54:55 ----A---- C:\WINDOWS\SYSWOW64\odbcconf.dll
2017-04-12 16:54:55 ----A---- C:\WINDOWS\SYSWOW64\NaturalLanguage6.dll
2017-04-12 16:54:55 ----A---- C:\WINDOWS\SYSWOW64\InstallAgentUserBroker.exe
2017-04-12 16:54:54 ----A---- C:\WINDOWS\SYSWOW64\CoreMessaging.dll
2017-04-12 16:54:54 ----A---- C:\WINDOWS\SYSWOW64\atmlib.dll
2017-04-12 16:54:51 ----A---- C:\WINDOWS\system32\MusUpdateHandlers.dll
2017-04-12 16:54:48 ----A---- C:\WINDOWS\system32\Windows.UI.Input.Inking.dll
2017-04-12 16:54:47 ----A---- C:\WINDOWS\system32\Windows.Devices.Perception.dll
2017-04-12 16:54:46 ----A---- C:\WINDOWS\system32\xpsrchvw.exe
2017-04-12 16:54:45 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.Phone.dll
2017-04-12 16:54:45 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.Maps.dll
2017-04-12 16:54:44 ----A---- C:\WINDOWS\SYSWOW64\xpsrchvw.exe
2017-04-12 16:54:44 ----A---- C:\WINDOWS\system32\Windows.Gaming.XboxLive.Storage.dll
2017-04-12 16:54:43 ----A---- C:\WINDOWS\SYSWOW64\WebcamUi.dll
2017-04-12 16:54:43 ----A---- C:\WINDOWS\system32\wuuhext.dll
2017-04-12 16:54:43 ----A---- C:\WINDOWS\system32\mssprxy.dll
2017-04-12 16:54:42 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.InkControls.dll
2017-04-12 16:54:42 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Wallet.dll
2017-04-12 16:54:42 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.dll
2017-04-12 16:54:41 ----A---- C:\WINDOWS\system32\WwaApi.dll
2017-04-12 16:54:41 ----A---- C:\WINDOWS\system32\Windows.UI.dll
2017-04-12 16:54:41 ----A---- C:\WINDOWS\system32\Windows.Media.Ocr.dll
2017-04-12 16:54:41 ----A---- C:\WINDOWS\system32\WebcamUi.dll
2017-04-12 16:54:40 ----A---- C:\WINDOWS\system32\WinRtTracing.dll
2017-04-12 16:54:40 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Core.dll
2017-04-12 16:54:39 ----A---- C:\WINDOWS\system32\Windows.Web.Diagnostics.dll
2017-04-12 16:54:39 ----A---- C:\WINDOWS\system32\Windows.UI.Cred.dll
2017-04-12 16:54:36 ----A---- C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2017-04-12 16:54:33 ----A---- C:\WINDOWS\system32\shell32.dll
2017-04-12 16:54:29 ----A---- C:\WINDOWS\system32\windows.storage.dll
2017-04-12 16:54:26 ----A---- C:\WINDOWS\system32\Windows.Media.dll
2017-04-12 16:54:25 ----A---- C:\WINDOWS\system32\mos.dll
2017-04-12 16:54:22 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll
2017-04-12 16:54:20 ----A---- C:\WINDOWS\system32\mfmp4srcsnk.dll
2017-04-12 16:54:18 ----A---- C:\WINDOWS\system32\mfsrcsnk.dll
2017-04-12 16:54:18 ----A---- C:\WINDOWS\system32\diagtrack.dll
2017-04-12 16:54:17 ----A---- C:\WINDOWS\system32\drivers\tcpip.sys
2017-04-12 16:54:16 ----A---- C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2017-04-12 16:54:16 ----A---- C:\WINDOWS\system32\mfasfsrcsnk.dll
2017-04-12 16:54:14 ----A---- C:\WINDOWS\system32\rdpcorets.dll
2017-04-12 16:54:13 ----A---- C:\WINDOWS\system32\mfnetcore.dll
2017-04-12 16:54:13 ----A---- C:\WINDOWS\system32\KernelBase.dll
2017-04-12 16:54:12 ----A---- C:\WINDOWS\system32\mstscax.dll
2017-04-12 16:54:11 ----A---- C:\WINDOWS\SYSWOW64\KernelBase.dll
2017-04-12 16:54:10 ----A---- C:\WINDOWS\system32\usocore.dll
2017-04-12 16:54:10 ----A---- C:\WINDOWS\system32\TSWorkspace.dll
2017-04-12 16:54:10 ----A---- C:\WINDOWS\system32\puiobj.dll
2017-04-12 16:54:09 ----A---- C:\WINDOWS\system32\updatehandlers.dll
2017-04-12 16:54:09 ----A---- C:\WINDOWS\system32\oleaut32.dll
2017-04-12 16:54:09 ----A---- C:\WINDOWS\system32\NetworkBindingEngineMigPlugin.dll
2017-04-12 16:54:09 ----A---- C:\WINDOWS\system32\MusNotification.exe
2017-04-12 16:54:09 ----A---- C:\WINDOWS\system32\LsaIso.exe
2017-04-12 16:54:08 ----A---- C:\WINDOWS\system32\smartscreen.exe
2017-04-12 16:54:08 ----A---- C:\WINDOWS\system32\drivers\ndis.sys
2017-04-12 16:54:07 ----A---- C:\WINDOWS\system32\wmpps.dll
2017-04-12 16:54:07 ----A---- C:\WINDOWS\system32\StoreAgent.dll
2017-04-12 16:54:06 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2017-04-12 16:54:06 ----A---- C:\WINDOWS\system32\MusNotificationUx.exe
2017-04-12 16:54:06 ----A---- C:\WINDOWS\system32\EmailApis.dll
2017-04-12 16:54:05 ----A---- C:\WINDOWS\system32\Windows.Media.Streaming.dll
2017-04-12 16:54:05 ----A---- C:\WINDOWS\system32\Windows.Media.Editing.dll
2017-04-12 16:54:05 ----A---- C:\WINDOWS\system32\MSVP9DEC.dll
2017-04-12 16:54:04 ----A---- C:\WINDOWS\system32\mfcore.dll
2017-04-12 16:54:03 ----A---- C:\WINDOWS\system32\Windows.Security.Credentials.UI.CredentialPicker.dll
2017-04-12 16:54:03 ----A---- C:\WINDOWS\system32\Windows.Devices.Sensors.dll
2017-04-12 16:54:03 ----A---- C:\WINDOWS\system32\UserDataTimeUtil.dll
2017-04-12 16:54:03 ----A---- C:\WINDOWS\system32\musdialoghandlers.dll
2017-04-12 16:54:02 ----A---- C:\WINDOWS\system32\wscapi.dll
2017-04-12 16:54:02 ----A---- C:\WINDOWS\system32\Windows.Graphics.Printing.dll
2017-04-12 16:54:02 ----A---- C:\WINDOWS\system32\SystemSettingsAdminFlows.exe
2017-04-12 16:54:02 ----A---- C:\WINDOWS\system32\LicenseManager.dll
2017-04-12 16:54:01 ----A---- C:\WINDOWS\system32\RTMediaFrame.dll
2017-04-12 16:54:01 ----A---- C:\WINDOWS\system32\rdpudd.dll
2017-04-12 16:54:01 ----A---- C:\WINDOWS\system32\mbsmsapi.dll
2017-04-12 16:54:00 ----A---- C:\WINDOWS\system32\efswrt.dll
2017-04-12 16:53:59 ----A---- C:\WINDOWS\system32\AccountsRt.dll
2017-04-12 16:53:58 ----A---- C:\WINDOWS\system32\Windows.Media.Audio.dll
2017-04-12 16:53:58 ----A---- C:\WINDOWS\system32\MbaeApiPublic.dll
2017-04-12 16:53:57 ----A---- C:\WINDOWS\system32\wpnapps.dll
2017-04-12 16:53:57 ----A---- C:\WINDOWS\system32\Windows.Devices.Scanners.dll
2017-04-12 16:53:57 ----A---- C:\WINDOWS\system32\SystemSettings.DeviceEncryptionHandlers.dll
2017-04-12 16:53:30 ----A---- C:\WINDOWS\system32\Windows.Perception.Stub.dll
2017-04-12 16:53:30 ----A---- C:\WINDOWS\system32\SensorsApi.dll
2017-04-12 16:53:30 ----A---- C:\WINDOWS\system32\AboveLockAppHost.dll
2017-04-12 16:53:29 ----A---- C:\WINDOWS\system32\RDXTaskFactory.dll
2017-04-12 16:53:28 ----A---- C:\WINDOWS\system32\Windows.Security.Authentication.Identity.Provider.dll
2017-04-12 16:53:28 ----A---- C:\WINDOWS\system32\Windows.Networking.ServiceDiscovery.Dnssd.dll
2017-04-12 16:53:28 ----A---- C:\WINDOWS\system32\rdpencom.dll
2017-04-12 16:53:27 ----A---- C:\WINDOWS\system32\localspl.dll
2017-04-12 16:53:24 ----A---- C:\WINDOWS\system32\wpninprc.dll
2017-04-12 16:53:24 ----A---- C:\WINDOWS\system32\RdpRelayTransport.dll
2017-04-12 16:53:24 ----A---- C:\WINDOWS\system32\AzureSettingSyncProvider.dll
2017-04-12 16:53:23 ----A---- C:\WINDOWS\system32\InstallAgentUserBroker.exe
2017-04-12 16:53:23 ----A---- C:\WINDOWS\system32\InstallAgent.exe
2017-04-12 16:53:19 ----A---- C:\WINDOWS\system32\mshtml.dll
2017-04-12 16:53:14 ----A---- C:\WINDOWS\system32\edgehtml.dll
2017-04-12 16:53:10 ----A---- C:\WINDOWS\system32\ieframe.dll
2017-04-12 16:53:07 ----A---- C:\WINDOWS\system32\Chakra.dll
2017-04-12 16:53:02 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2017-04-12 16:53:00 ----A---- C:\WINDOWS\SYSWOW64\Chakra.dll
2017-04-12 16:52:57 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2017-04-12 16:52:54 ----A---- C:\WINDOWS\system32\iertutil.dll
2017-04-12 16:52:53 ----A---- C:\WINDOWS\system32\WindowsCodecs.dll
2017-04-12 16:52:51 ----A---- C:\WINDOWS\SYSWOW64\edgehtml.dll
2017-04-12 16:52:47 ----A---- C:\WINDOWS\system32\urlmon.dll
2017-04-12 16:52:46 ----A---- C:\WINDOWS\system32\drivers\dxgkrnl.sys
2017-04-12 16:52:45 ----A---- C:\WINDOWS\system32\quartz.dll
2017-04-12 16:52:45 ----A---- C:\WINDOWS\system32\MCRecvSrc.dll
2017-04-12 16:52:45 ----A---- C:\WINDOWS\system32\kerberos.dll
2017-04-12 16:52:44 ----A---- C:\WINDOWS\system32\win32kbase.sys
2017-04-12 16:52:44 ----A---- C:\WINDOWS\system32\ole32.dll
2017-04-12 16:52:42 ----A---- C:\WINDOWS\SYSWOW64\msfeeds.dll
2017-04-12 16:52:42 ----A---- C:\WINDOWS\system32\wininet.dll
2017-04-12 16:52:42 ----A---- C:\WINDOWS\system32\msfeeds.dll
2017-04-12 16:52:41 ----A---- C:\WINDOWS\HelpPane.exe
2017-04-12 16:52:40 ----A---- C:\WINDOWS\system32\Windows.Networking.dll
2017-04-12 16:52:40 ----A---- C:\WINDOWS\system32\Windows.Devices.SmartCards.dll
2017-04-12 16:52:40 ----A---- C:\WINDOWS\system32\ieapfltr.dll
2017-04-12 16:52:38 ----A---- C:\WINDOWS\system32\twinapi.appcore.dll
2017-04-12 16:52:38 ----A---- C:\WINDOWS\system32\MiracastReceiver.dll
2017-04-12 16:52:38 ----A---- C:\WINDOWS\system32\drivers\dxgmms1.sys
2017-04-12 16:52:37 ----A---- C:\WINDOWS\system32\ContentDeliveryManager.Utilities.dll
2017-04-12 16:52:33 ----A---- C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll
2017-04-12 16:52:33 ----A---- C:\WINDOWS\system32\Windows.Devices.Bluetooth.dll
2017-04-12 16:52:32 ----A---- C:\WINDOWS\system32\FlightSettings.dll
2017-04-12 16:52:31 ----A---- C:\WINDOWS\system32\Windows.Devices.Usb.dll
2017-04-12 16:52:30 ----A---- C:\WINDOWS\system32\RDXService.dll
2017-04-12 16:52:29 ----A---- C:\WINDOWS\system32\Windows.Devices.Picker.dll
2017-04-12 16:52:29 ----A---- C:\WINDOWS\system32\msdtctm.dll
2017-04-12 16:52:28 ----A---- C:\WINDOWS\system32\Windows.Web.dll
2017-04-12 16:52:28 ----A---- C:\WINDOWS\system32\Windows.Storage.ApplicationData.dll
2017-04-12 16:52:28 ----A---- C:\WINDOWS\system32\Windows.Devices.LowLevel.dll
2017-04-12 16:52:28 ----A---- C:\WINDOWS\system32\CellularAPI.dll
2017-04-12 16:52:27 ----A---- C:\WINDOWS\system32\Windows.Devices.PointOfService.dll
2017-04-12 16:52:27 ----A---- C:\WINDOWS\system32\Windows.Devices.HumanInterfaceDevice.dll
2017-04-12 16:52:26 ----A---- C:\WINDOWS\system32\CoreUIComponents.dll
2017-04-12 16:52:25 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2017-04-12 16:52:24 ----A---- C:\WINDOWS\system32\CloudExperienceHost.dll
2017-04-12 16:52:23 ----A---- C:\WINDOWS\system32\d2d1.dll
2017-04-12 16:52:23 ----A---- C:\WINDOWS\system32\CloudExperienceHostBroker.dll
2017-04-12 16:52:22 ----A---- C:\WINDOWS\SYSWOW64\ieproxy.dll
2017-04-12 16:52:22 ----A---- C:\WINDOWS\system32\Windows.UI.Search.dll
2017-04-12 16:52:22 ----A---- C:\WINDOWS\system32\Windows.Security.Authentication.Web.Core.dll
2017-04-12 16:52:22 ----A---- C:\WINDOWS\system32\asycfilt.dll
2017-04-12 16:52:21 ----A---- C:\WINDOWS\system32\Windows.Web.Http.dll
2017-04-12 16:52:21 ----A---- C:\WINDOWS\system32\Windows.Devices.SmartCards.Phone.dll
2017-04-12 16:52:20 ----A---- C:\WINDOWS\system32\Windows.Devices.WiFiDirect.dll
2017-04-12 16:52:20 ----A---- C:\WINDOWS\system32\PlayToManager.dll
2017-04-12 16:52:19 ----A---- C:\WINDOWS\system32\Windows.Networking.Connectivity.dll
2017-04-12 16:52:19 ----A---- C:\WINDOWS\system32\Windows.Devices.Lights.dll
2017-04-12 16:52:19 ----A---- C:\WINDOWS\system32\SyncSettings.dll
2017-04-12 16:52:19 ----A---- C:\WINDOWS\system32\iedkcs32.dll
2017-04-12 16:52:18 ----A---- C:\WINDOWS\system32\Windows.Security.Authentication.OnlineId.dll
2017-04-12 16:52:18 ----A---- C:\WINDOWS\system32\Windows.Devices.SerialCommunication.dll
2017-04-12 16:52:17 ----A---- C:\WINDOWS\system32\TokenBroker.dll
2017-04-12 16:52:17 ----A---- C:\WINDOWS\system32\dafpos.dll
2017-04-12 16:52:16 ----A---- C:\WINDOWS\SYSWOW64\iedkcs32.dll
2017-04-12 16:52:16 ----A---- C:\WINDOWS\system32\WpAXHolder.dll
2017-04-12 16:52:16 ----A---- C:\WINDOWS\system32\PlayToDevice.dll
2017-04-12 16:52:15 ----A---- C:\WINDOWS\SYSWOW64\dxtrans.dll
2017-04-12 16:52:15 ----A---- C:\WINDOWS\system32\Windows.Networking.BackgroundTransfer.dll
2017-04-12 16:52:15 ----A---- C:\WINDOWS\system32\FontProvider.dll
2017-04-12 16:52:14 ----A---- C:\WINDOWS\system32\Windows.UI.BlockedShutdown.dll
2017-04-12 16:52:14 ----A---- C:\WINDOWS\system32\Geolocation.dll
2017-04-12 16:52:13 ----A---- C:\WINDOWS\system32\ie4uinit.exe
2017-04-12 16:52:12 ----A---- C:\WINDOWS\system32\Windows.Graphics.Printing.3D.dll
2017-04-12 16:52:12 ----A---- C:\WINDOWS\system32\mfmjpegdec.dll
2017-04-12 16:52:11 ----A---- C:\WINDOWS\SYSWOW64\ieapfltr.dll
2017-04-12 16:52:10 ----A---- C:\WINDOWS\system32\dxtrans.dll
2017-04-12 16:52:10 ----A---- C:\WINDOWS\system32\DisplayManager.dll
2017-04-12 16:52:09 ----A---- C:\WINDOWS\SYSWOW64\webcheck.dll
2017-04-12 16:52:09 ----A---- C:\WINDOWS\system32\webcheck.dll
2017-04-12 16:52:08 ----A---- C:\WINDOWS\system32\Windows.Devices.Printers.dll
2017-04-12 16:52:08 ----A---- C:\WINDOWS\system32\mshtmled.dll
2017-04-12 16:52:07 ----A---- C:\WINDOWS\SYSWOW64\WpcWebFilter.dll
2017-04-12 16:52:07 ----A---- C:\WINDOWS\system32\PlayToReceiver.dll
2017-04-12 16:52:07 ----A---- C:\WINDOWS\system32\DeviceDirectoryClient.dll
2017-04-12 16:52:06 ----A---- C:\WINDOWS\SYSWOW64\mshtmled.dll
2017-04-12 16:52:05 ----A---- C:\WINDOWS\system32\flvprophandler.dll
2017-04-12 16:52:05 ----A---- C:\WINDOWS\system32\DdcWnsListener.dll
2017-04-12 16:52:04 ----A---- C:\WINDOWS\system32\indexeddbserver.dll
2017-04-12 16:52:04 ----A---- C:\WINDOWS\system32\dosvc.dll
2017-04-12 16:52:04 ----A---- C:\WINDOWS\system32\aadtb.dll
2017-04-12 16:52:04 ----A---- C:\WINDOWS\system32\aadcloudap.dll
2017-04-12 16:52:02 ----A---- C:\WINDOWS\system32\D3DCompiler_47.dll
2017-04-12 16:52:01 ----A---- C:\WINDOWS\system32\WpcWebFilter.dll
2017-04-12 16:52:01 ----A---- C:\WINDOWS\system32\odbcconf.dll
2017-04-12 16:52:00 ----A---- C:\WINDOWS\system32\NaturalLanguage6.dll
2017-04-12 16:52:00 ----A---- C:\WINDOWS\system32\CastLaunch.dll
2017-04-12 16:51:46 ----A---- C:\WINDOWS\system32\wuaueng.dll
2017-04-12 16:51:46 ----A---- C:\WINDOWS\system32\win32kfull.sys
2017-04-12 16:51:44 ----A---- C:\WINDOWS\system32\SharedStartModel.dll
2017-04-12 16:51:44 ----A---- C:\WINDOWS\system32\AppXDeploymentServer.dll
2017-04-12 16:51:43 ----A---- C:\WINDOWS\system32\enterprisecsps.dll
2017-04-12 16:51:41 ----A---- C:\WINDOWS\system32\actxprxy.dll
2017-04-12 16:51:40 ----A---- C:\WINDOWS\system32\gdi32full.dll
2017-04-12 16:51:39 ----A---- C:\WINDOWS\system32\sppobjs.dll
2017-04-12 16:51:39 ----A---- C:\WINDOWS\system32\fontdrvhost.exe
2017-04-12 16:51:39 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2017-04-12 16:51:38 ----A---- C:\WINDOWS\system32\Windows.Media.Speech.dll
2017-04-12 16:51:38 ----A---- C:\WINDOWS\system32\Windows.AccountsControl.dll
2017-04-12 16:51:38 ----A---- C:\WINDOWS\system32\atmfd.dll
2017-04-12 16:51:37 ----A---- C:\WINDOWS\system32\twinui.dll
2017-04-12 16:51:36 ----A---- C:\WINDOWS\system32\Windows.Devices.Midi.dll
2017-04-12 16:51:35 ----A---- C:\WINDOWS\system32\Windows.Data.Pdf.dll
2017-04-12 16:51:34 ----A---- C:\WINDOWS\system32\updatepolicy.dll
2017-04-12 16:51:34 ----A---- C:\WINDOWS\system32\hvax64.exe
2017-04-12 16:51:34 ----A---- C:\WINDOWS\system32\drivers\cng.sys
2017-04-12 16:51:33 ----A---- C:\WINDOWS\system32\WinTypes.dll
2017-04-12 16:51:33 ----A---- C:\WINDOWS\system32\hvix64.exe
2017-04-12 16:51:33 ----A---- C:\WINDOWS\system32\CloudExperienceHostCommon.dll
2017-04-12 16:51:33 ----A---- C:\WINDOWS\system32\apprepsync.dll
2017-04-12 16:51:32 ----A---- C:\WINDOWS\system32\Windows.Devices.AllJoyn.dll
2017-04-12 16:51:32 ----A---- C:\WINDOWS\system32\ShareHost.dll
2017-04-12 16:51:32 ----A---- C:\WINDOWS\system32\sbe.dll
2017-04-12 16:51:32 ----A---- C:\WINDOWS\system32\qedit.dll
2017-04-12 16:51:32 ----A---- C:\WINDOWS\system32\CompPkgSup.dll
2017-04-12 16:51:31 ----A---- C:\WINDOWS\system32\Windows.Media.MediaControl.dll
2017-04-12 16:51:31 ----A---- C:\WINDOWS\system32\UserDeviceRegistration.dll
2017-04-12 16:51:31 ----A---- C:\WINDOWS\system32\OneBackupHandler.dll
2017-04-12 16:51:31 ----A---- C:\WINDOWS\system32\dlnashext.dll
2017-04-12 16:51:31 ----A---- C:\WINDOWS\system32\CertEnroll.dll
2017-04-12 16:51:30 ----A---- C:\WINDOWS\system32\wer.dll
2017-04-12 16:51:30 ----A---- C:\WINDOWS\system32\msxml6.dll
2017-04-12 16:51:30 ----A---- C:\WINDOWS\system32\CoreMessaging.dll
2017-04-12 16:51:30 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
2017-04-12 16:51:30 ----A---- C:\WINDOWS\system32\AppContracts.dll
2017-04-12 16:51:29 ----A---- C:\WINDOWS\system32\Windows.System.SystemManagement.dll
2017-04-12 16:51:29 ----A---- C:\WINDOWS\system32\dmcertinst.exe
2017-04-12 16:51:29 ----A---- C:\WINDOWS\system32\CloudExperienceHostUser.dll
2017-04-12 16:51:28 ----A---- C:\WINDOWS\system32\Windows.Gaming.Input.dll
2017-04-12 16:51:28 ----A---- C:\WINDOWS\system32\SettingSyncCore.dll
2017-04-12 16:51:28 ----A---- C:\WINDOWS\system32\SettingsHandlers_nt.dll
2017-04-12 16:51:28 ----A---- C:\WINDOWS\system32\DeveloperOptionsSettingsHandlers.dll
2017-04-12 16:51:27 ----A---- C:\WINDOWS\system32\psmsrv.dll
2017-04-12 16:51:27 ----A---- C:\WINDOWS\system32\invagent.dll
2017-04-12 16:51:27 ----A---- C:\WINDOWS\system32\devinv.dll
2017-04-12 16:51:27 ----A---- C:\WINDOWS\system32\appraiser.dll
2017-04-12 16:51:26 ----A---- C:\WINDOWS\system32\Windows.Media.Import.dll
2017-04-12 16:51:26 ----A---- C:\WINDOWS\system32\Windows.Media.Devices.dll
2017-04-12 16:51:26 ----A---- C:\WINDOWS\system32\Windows.Internal.Management.dll
2017-04-12 16:51:26 ----A---- C:\WINDOWS\system32\Windows.Globalization.dll
2017-04-12 16:51:26 ----A---- C:\WINDOWS\system32\CryptoWinRT.dll
2017-04-12 16:51:26 ----A---- C:\WINDOWS\system32\acmigration.dll
2017-04-12 16:51:25 ----A---- C:\WINDOWS\system32\Windows.System.UserDeviceAssociation.dll
2017-04-12 16:51:25 ----A---- C:\WINDOWS\system32\Windows.Devices.Radios.dll
2017-04-12 16:51:25 ----A---- C:\WINDOWS\system32\Family.SyncEngine.dll
2017-04-12 16:51:25 ----A---- C:\WINDOWS\system32\AppXDeploymentClient.dll
2017-04-12 16:51:24 ----A---- C:\WINDOWS\system32\Windows.Devices.WiFi.dll
2017-04-12 16:51:24 ----A---- C:\WINDOWS\system32\oleacc.dll
2017-04-12 16:51:24 ----A---- C:\WINDOWS\system32\apprepapi.dll
2017-04-12 16:51:24 ----A---- C:\WINDOWS\system32\aeinv.dll
2017-04-12 16:51:23 ----A---- C:\WINDOWS\system32\Windows.StateRepositoryClient.dll
2017-04-12 16:51:23 ----A---- C:\WINDOWS\system32\UserMgrProxy.dll
2017-04-12 16:51:23 ----A---- C:\WINDOWS\system32\deviceaccess.dll
2017-04-12 16:51:21 ----A---- C:\WINDOWS\system32\wuapi.dll
2017-04-12 16:51:21 ----A---- C:\WINDOWS\system32\UserDeviceRegistration.Ngc.dll
2017-04-12 16:51:21 ----A---- C:\WINDOWS\system32\SettingsHandlers_ClosedCaptioning.dll
2017-04-12 16:51:20 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.LockScreen.dll
2017-04-12 16:51:20 ----A---- C:\WINDOWS\system32\vss_ps.dll
2017-04-12 16:51:20 ----A---- C:\WINDOWS\system32\AuthBroker.dll
2017-04-12 16:51:19 ----A---- C:\WINDOWS\system32\ErrorDetails.dll
2017-04-12 16:51:19 ----A---- C:\WINDOWS\system32\CloudDomainJoinDataModelServer.dll
2017-04-12 16:51:18 ----A---- C:\WINDOWS\system32\XblAuthTokenBrokerExt.dll
2017-04-12 16:51:18 ----A---- C:\WINDOWS\system32\XblAuthManagerProxy.dll
2017-04-12 16:51:18 ----A---- C:\WINDOWS\system32\WSManMigrationPlugin.dll
2017-04-12 16:51:18 ----A---- C:\WINDOWS\system32\vaultcli.dll
2017-04-12 16:51:18 ----A---- C:\WINDOWS\system32\TokenBrokerUI.dll
2017-04-12 16:51:18 ----A---- C:\WINDOWS\system32\Family.Client.dll
2017-04-12 16:51:18 ----A---- C:\WINDOWS\system32\cdp.dll
2017-04-12 16:51:17 ----A---- C:\WINDOWS\SYSWOW64\UIRibbonRes.dll
2017-04-12 16:51:17 ----A---- C:\WINDOWS\system32\winsrv.dll
2017-04-12 16:51:17 ----A---- C:\WINDOWS\system32\UIRibbonRes.dll
2017-04-12 16:51:17 ----A---- C:\WINDOWS\system32\GamePanel.exe
2017-04-12 16:51:17 ----A---- C:\WINDOWS\system32\enrollmentapi.dll
2017-04-12 16:51:16 ----A---- C:\WINDOWS\system32\atmlib.dll
2017-04-04 13:59:08 ----A---- C:\WINDOWS\system32\aswBoot.exe
2017-03-24 16:54:52 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe
2017-03-19 22:21:05 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.dll
2017-03-19 22:21:03 ----A---- C:\WINDOWS\SYSWOW64\BingMaps.dll
2017-03-19 22:21:02 ----A---- C:\WINDOWS\SYSWOW64\tquery.dll
2017-03-19 22:20:59 ----A---- C:\WINDOWS\SYSWOW64\explorer.exe
2017-03-19 22:20:58 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
2017-03-19 22:20:57 ----A---- C:\WINDOWS\SYSWOW64\storagewmi.dll
2017-03-19 22:20:56 ----A---- C:\WINDOWS\SYSWOW64\mssrch.dll
2017-03-19 22:20:56 ----A---- C:\WINDOWS\SYSWOW64\mispace.dll
2017-03-19 22:20:56 ----A---- C:\WINDOWS\SYSWOW64\dwmcore.dll
2017-03-19 22:20:55 ----A---- C:\WINDOWS\SYSWOW64\d3d11.dll
2017-03-19 22:20:54 ----A---- C:\WINDOWS\SYSWOW64\dbgeng.dll
2017-03-19 22:20:52 ----A---- C:\WINDOWS\SYSWOW64\MapRouter.dll
2017-03-19 22:20:52 ----A---- C:\WINDOWS\SYSWOW64\CloudBackupSettings.dll
2017-03-19 22:20:51 ----A---- C:\WINDOWS\SYSWOW64\msctf.dll
2017-03-19 22:20:51 ----A---- C:\WINDOWS\SYSWOW64\MapGeocoder.dll
2017-03-19 22:20:51 ----A---- C:\WINDOWS\SYSWOW64\ExplorerFrame.dll
2017-03-19 22:20:50 ----A---- C:\WINDOWS\SYSWOW64\wsp_health.dll
2017-03-19 22:20:50 ----A---- C:\WINDOWS\SYSWOW64\wsp_fs.dll
2017-03-19 22:20:49 ----A---- C:\WINDOWS\SYSWOW64\WWAHost.exe
2017-03-19 22:20:49 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Immersive.dll
2017-03-19 22:20:49 ----A---- C:\WINDOWS\SYSWOW64\DWrite.dll
2017-03-19 22:20:48 ----A---- C:\WINDOWS\SYSWOW64\SearchIndexer.exe
2017-03-19 22:20:47 ----A---- C:\WINDOWS\SYSWOW64\hevcdecoder.dll
2017-03-19 22:20:46 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Search.dll
2017-03-19 22:20:46 ----A---- C:\WINDOWS\SYSWOW64\msftedit.dll
2017-03-19 22:20:46 ----A---- C:\WINDOWS\SYSWOW64\dxgi.dll
2017-03-19 22:20:45 ----A---- C:\WINDOWS\SYSWOW64\comsvcs.dll
2017-03-19 22:20:44 ----A---- C:\WINDOWS\SYSWOW64\inetcomm.dll
2017-03-19 22:20:44 ----A---- C:\WINDOWS\SYSWOW64\clusapi.dll
2017-03-19 22:20:43 ----A---- C:\WINDOWS\SYSWOW64\schannel.dll
2017-03-19 22:20:43 ----A---- C:\WINDOWS\SYSWOW64\ReAgent.dll
2017-03-19 22:20:42 ----A---- C:\WINDOWS\SYSWOW64\vbscript.dll
2017-03-19 22:20:42 ----A---- C:\WINDOWS\SYSWOW64\TextInputFramework.dll
2017-03-19 22:20:42 ----A---- C:\WINDOWS\SYSWOW64\mprddm.dll
2017-03-19 22:20:41 ----A---- C:\WINDOWS\SYSWOW64\mfsvr.dll
2017-03-19 22:20:40 ----A---- C:\WINDOWS\SYSWOW64\resutils.dll
2017-03-19 22:20:39 ----A---- C:\WINDOWS\SYSWOW64\usercpl.dll
2017-03-19 22:20:38 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Logon.dll
2017-03-19 22:20:38 ----A---- C:\WINDOWS\SYSWOW64\mf.dll
2017-03-19 22:20:38 ----A---- C:\WINDOWS\SYSWOW64\authui.dll
2017-03-19 22:20:37 ----A---- C:\WINDOWS\SYSWOW64\uReFS.dll
2017-03-19 22:20:37 ----A---- C:\WINDOWS\SYSWOW64\twinapi.dll
2017-03-19 22:20:37 ----A---- C:\WINDOWS\SYSWOW64\OneDriveSettingSyncProvider.dll
2017-03-19 22:20:37 ----A---- C:\WINDOWS\SYSWOW64\dnsapi.dll
2017-03-19 22:20:37 ----A---- C:\WINDOWS\system32\drivers\spaceport.sys
2017-03-19 22:20:36 ----A---- C:\WINDOWS\SYSWOW64\SettingSyncHost.exe
2017-03-19 22:20:36 ----A---- C:\WINDOWS\SYSWOW64\Search.ProtocolHandler.MAPI2.dll
2017-03-19 22:20:36 ----A---- C:\WINDOWS\SYSWOW64\GdiPlus.dll
2017-03-19 22:20:36 ----A---- C:\WINDOWS\SYSWOW64\dhcpcore6.dll
2017-03-19 22:20:35 ----A---- C:\WINDOWS\SYSWOW64\policymanager.dll
2017-03-19 22:20:35 ----A---- C:\WINDOWS\SYSWOW64\msxml3.dll
2017-03-19 22:20:34 ----A---- C:\WINDOWS\SYSWOW64\winmde.dll
2017-03-19 22:20:34 ----A---- C:\WINDOWS\SYSWOW64\TpmCoreProvisioning.dll
2017-03-19 22:20:34 ----A---- C:\WINDOWS\SYSWOW64\msmpeg2vdec.dll
2017-03-19 22:20:34 ----A---- C:\WINDOWS\SYSWOW64\gameux.dll
2017-03-19 22:20:33 ----A---- C:\WINDOWS\SYSWOW64\MMDevAPI.dll
2017-03-19 22:20:33 ----A---- C:\WINDOWS\SYSWOW64\LockAppHost.exe
2017-03-19 22:20:33 ----A---- C:\WINDOWS\SYSWOW64\daxexec.dll
2017-03-19 22:20:33 ----A---- C:\WINDOWS\SYSWOW64\AppointmentApis.dll
2017-03-19 22:20:33 ----A---- C:\WINDOWS\system32\drivers\storahci.sys
2017-03-19 22:20:31 ----A---- C:\WINDOWS\SYSWOW64\nshwfp.dll
2017-03-19 22:20:31 ----A---- C:\WINDOWS\SYSWOW64\mmc.exe
2017-03-19 22:20:31 ----A---- C:\WINDOWS\SYSWOW64\mfds.dll
2017-03-19 22:20:30 ----A---- C:\WINDOWS\SYSWOW64\wintrust.dll
2017-03-19 22:20:30 ----A---- C:\WINDOWS\SYSWOW64\winhttp.dll
2017-03-19 22:20:30 ----A---- C:\WINDOWS\SYSWOW64\PCPTpm12.dll
2017-03-19 22:20:30 ----A---- C:\WINDOWS\SYSWOW64\LogonController.dll
2017-03-19 22:20:29 ----A---- C:\WINDOWS\SYSWOW64\SHCore.dll
2017-03-19 22:20:29 ----A---- C:\WINDOWS\SYSWOW64\EmailApis.dll
2017-03-19 22:20:28 ----A---- C:\WINDOWS\SYSWOW64\basecsp.dll
2017-03-19 22:20:28 ----A---- C:\WINDOWS\system32\drivers\IPMIDrv.sys
2017-03-19 22:20:27 ----A---- C:\WINDOWS\SYSWOW64\wlanapi.dll
2017-03-19 22:20:27 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.Resources.dll
2017-03-19 22:20:27 ----A---- C:\WINDOWS\SYSWOW64\SearchProtocolHost.exe
2017-03-19 22:20:26 ----A---- C:\WINDOWS\SYSWOW64\mfplat.dll
2017-03-19 22:20:25 ----A---- C:\WINDOWS\SYSWOW64\IPHLPAPI.DLL
2017-03-19 22:20:25 ----A---- C:\WINDOWS\SYSWOW64\gpapi.dll
2017-03-19 22:20:24 ----A---- C:\WINDOWS\SYSWOW64\WMPDMC.exe
2017-03-19 22:20:24 ----A---- C:\WINDOWS\SYSWOW64\evr.dll
2017-03-19 22:20:23 ----A---- C:\WINDOWS\SYSWOW64\netiohlp.dll
2017-03-19 22:20:23 ----A---- C:\WINDOWS\SYSWOW64\MFPlay.dll
2017-03-19 22:20:23 ----A---- C:\WINDOWS\SYSWOW64\input.dll
2017-03-19 22:20:22 ----A---- C:\WINDOWS\SYSWOW64\mssph.dll
2017-03-19 22:20:21 ----A---- C:\WINDOWS\SYSWOW64\wsp_sr.dll
2017-03-19 22:20:20 ----A---- C:\WINDOWS\SYSWOW64\rasgcw.dll
2017-03-19 22:20:20 ----A---- C:\WINDOWS\SYSWOW64\mssvp.dll
2017-03-19 22:20:19 ----A---- C:\WINDOWS\SYSWOW64\netiougc.exe
2017-03-19 22:20:19 ----A---- C:\WINDOWS\SYSWOW64\MCCSEngineShared.dll
2017-03-19 22:20:18 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.BackgroundMediaPlayback.dll
2017-03-19 22:20:18 ----A---- C:\WINDOWS\SYSWOW64\imapi2fs.dll
2017-03-19 22:20:17 ----A---- C:\WINDOWS\SYSWOW64\icm32.dll
2017-03-19 22:20:16 ----A---- C:\WINDOWS\SYSWOW64\thumbcache.dll
2017-03-19 22:20:15 ----A---- C:\WINDOWS\SYSWOW64\wlidprov.dll
2017-03-19 22:20:15 ----A---- C:\WINDOWS\SYSWOW64\SearchFolder.dll
2017-03-19 22:20:15 ----A---- C:\WINDOWS\SYSWOW64\scksp.dll
2017-03-19 22:20:15 ----A---- C:\WINDOWS\SYSWOW64\mssphtb.dll
2017-03-19 22:20:13 ----A---- C:\WINDOWS\SYSWOW64\PrintDialogs.dll
2017-03-19 22:20:12 ----A---- C:\WINDOWS\SYSWOW64\wfdprov.dll
2017-03-19 22:20:12 ----A---- C:\WINDOWS\SYSWOW64\Pimstore.dll
2017-03-19 22:20:12 ----A---- C:\WINDOWS\SYSWOW64\mscms.dll
2017-03-19 22:20:12 ----A---- C:\WINDOWS\SYSWOW64\ChatApis.dll
2017-03-19 22:20:11 ----A---- C:\WINDOWS\SYSWOW64\SettingSync.dll
2017-03-19 22:20:11 ----A---- C:\WINDOWS\SYSWOW64\mtxclu.dll
2017-03-19 22:20:11 ----A---- C:\WINDOWS\SYSWOW64\msutb.dll
2017-03-19 22:20:11 ----A---- C:\WINDOWS\SYSWOW64\mfmkvsrcsnk.dll
2017-03-19 22:20:11 ----A---- C:\WINDOWS\SYSWOW64\BcastDVRHelper.dll
2017-03-19 22:20:10 ----A---- C:\WINDOWS\SYSWOW64\sud.dll
2017-03-19 22:20:10 ----A---- C:\WINDOWS\SYSWOW64\MSVPXENC.dll
2017-03-19 22:20:09 ----A---- C:\WINDOWS\SYSWOW64\UserLanguagesCpl.dll
2017-03-19 22:20:09 ----A---- C:\WINDOWS\SYSWOW64\themecpl.dll
2017-03-19 22:20:09 ----A---- C:\WINDOWS\SYSWOW64\msdtcuiu.dll
2017-03-19 22:20:09 ----A---- C:\WINDOWS\SYSWOW64\DevicePairing.dll
2017-03-19 22:20:08 ----A---- C:\WINDOWS\SYSWOW64\WsmWmiPl.dll
2017-03-19 22:20:08 ----A---- C:\WINDOWS\SYSWOW64\wlanui.dll
2017-03-19 22:20:08 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Core.TextInput.dll
2017-03-19 22:20:08 ----A---- C:\WINDOWS\SYSWOW64\azroleui.dll
2017-03-19 22:20:07 ----A---- C:\WINDOWS\SYSWOW64\regedit.exe
2017-03-19 22:20:07 ----A---- C:\WINDOWS\SYSWOW64\iprtrmgr.dll
2017-03-19 22:20:07 ----A---- C:\WINDOWS\SYSWOW64\ActiveSyncProvider.dll
2017-03-19 22:20:06 ----A---- C:\WINDOWS\SYSWOW64\SearchFilterHost.exe
2017-03-19 22:20:06 ----A---- C:\WINDOWS\SYSWOW64\MSPhotography.dll
2017-03-19 22:20:06 ----A---- C:\WINDOWS\system32\drivers\xboxgip.sys
2017-03-19 22:20:05 ----A---- C:\WINDOWS\SYSWOW64\Windows.Storage.Search.dll
2017-03-19 22:20:04 ----A---- C:\WINDOWS\SYSWOW64\wcnwiz.dll
2017-03-19 22:20:04 ----A---- C:\WINDOWS\SYSWOW64\vssapi.dll
2017-03-19 22:20:04 ----A---- C:\WINDOWS\SYSWOW64\puiobj.dll
2017-03-19 22:20:04 ----A---- C:\WINDOWS\SYSWOW64\LockAppBroker.dll
2017-03-19 22:20:03 ----A---- C:\WINDOWS\SYSWOW64\Unistore.dll
2017-03-19 22:20:03 ----A---- C:\WINDOWS\SYSWOW64\tcpipcfg.dll
2017-03-19 22:20:03 ----A---- C:\WINDOWS\SYSWOW64\ProximityCommon.dll
2017-03-19 22:20:03 ----A---- C:\WINDOWS\SYSWOW64\mscandui.dll
2017-03-19 22:20:03 ----A---- C:\WINDOWS\SYSWOW64\findnetprinters.dll
2017-03-19 22:20:02 ----A---- C:\WINDOWS\SYSWOW64\WMVSENCD.DLL
2017-03-19 22:20:02 ----A---- C:\WINDOWS\SYSWOW64\puiapi.dll
2017-03-19 22:20:02 ----A---- C:\WINDOWS\SYSWOW64\MapConfiguration.dll
2017-03-19 22:20:02 ----A---- C:\WINDOWS\SYSWOW64\DafPrintProvider.dll
2017-03-19 22:20:02 ----A---- C:\WINDOWS\SYSWOW64\BrowserSettingSync.dll
2017-03-19 22:20:01 ----A---- C:\WINDOWS\SYSWOW64\Windows.Gaming.UI.GameBar.dll
2017-03-19 22:20:01 ----A---- C:\WINDOWS\SYSWOW64\DavSyncProvider.dll
2017-03-19 22:20:01 ----A---- C:\WINDOWS\SYSWOW64\cemapi.dll
2017-03-19 22:20:01 ----A---- C:\WINDOWS\SYSWOW64\accountaccessor.dll
2017-03-19 22:20:00 ----A---- C:\WINDOWS\SYSWOW64\XInputUap.dll
2017-03-19 22:20:00 ----A---- C:\WINDOWS\SYSWOW64\tbauth.dll
2017-03-19 22:20:00 ----A---- C:\WINDOWS\SYSWOW64\mssitlb.dll
2017-03-19 22:19:59 ----A---- C:\WINDOWS\SYSWOW64\MSVP9DEC.dll
2017-03-19 22:19:59 ----A---- C:\WINDOWS\SYSWOW64\CameraCaptureUI.dll
2017-03-19 22:19:58 ----A---- C:\WINDOWS\SYSWOW64\TokenBrokerCookies.exe
2017-03-19 22:19:58 ----A---- C:\WINDOWS\SYSWOW64\tapi32.dll
2017-03-19 22:19:58 ----A---- C:\WINDOWS\SYSWOW64\msctfui.dll
2017-03-19 22:19:58 ----A---- C:\WINDOWS\SYSWOW64\ContactApis.dll
2017-03-19 22:19:57 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2017-03-19 22:19:56 ----A---- C:\WINDOWS\SYSWOW64\fontext.dll
2017-03-19 22:19:55 ----A---- C:\WINDOWS\SYSWOW64\UserDeviceRegistration.Ngc.dll
2017-03-19 22:19:55 ----A---- C:\WINDOWS\SYSWOW64\msctfp.dll
2017-03-19 22:19:55 ----A---- C:\WINDOWS\SYSWOW64\ddrawex.dll
2017-03-19 22:19:54 ----A---- C:\WINDOWS\SYSWOW64\Windows.Shell.Search.UriHandler.dll
2017-03-19 22:19:52 ----A---- C:\WINDOWS\SYSWOW64\LaunchWinApp.exe
2017-03-19 22:19:52 ----A---- C:\WINDOWS\SYSWOW64\hgcpl.dll
2017-03-19 22:19:51 ----A---- C:\WINDOWS\SYSWOW64\VCardParser.dll
2017-03-19 22:19:51 ----A---- C:\WINDOWS\SYSWOW64\GamePanelExternalHook.dll
2017-03-19 22:19:51 ----A---- C:\WINDOWS\SYSWOW64\ddraw.dll
2017-03-19 22:19:42 ----A---- C:\WINDOWS\system32\tquery.dll
2017-03-19 22:19:41 ----A---- C:\WINDOWS\system32\mssrch.dll
2017-03-19 22:19:40 ----A---- C:\WINDOWS\SYSWOW64\wmpmde.dll
2017-03-19 22:19:40 ----A---- C:\WINDOWS\system32\WWAHost.exe
2017-03-19 22:19:40 ----A---- C:\WINDOWS\system32\wmpmde.dll
2017-03-19 22:19:38 ----A---- C:\WINDOWS\system32\SearchIndexer.exe
2017-03-19 22:19:37 ----A---- C:\WINDOWS\system32\WWanAPI.dll
2017-03-19 22:19:36 ----A---- C:\WINDOWS\system32\SearchProtocolHost.exe
2017-03-19 22:19:32 ----A---- C:\WINDOWS\system32\Search.ProtocolHandler.MAPI2.dll
2017-03-19 22:19:31 ----A---- C:\WINDOWS\system32\XblGameSaveExt.dll
2017-03-19 22:19:22 ----A---- C:\WINDOWS\system32\WMPDMC.exe
2017-03-19 22:19:21 ----A---- C:\WINDOWS\system32\SearchFilterHost.exe
2017-03-19 22:19:20 ----A---- C:\WINDOWS\system32\mssvp.dll
2017-03-19 22:19:20 ----A---- C:\WINDOWS\system32\mssphtb.dll
2017-03-19 22:19:20 ----A---- C:\WINDOWS\system32\mssph.dll
2017-03-19 22:19:19 ----A---- C:\WINDOWS\system32\wwansvc.dll
2017-03-19 22:19:18 ----A---- C:\WINDOWS\system32\wwanmm.dll
2017-03-19 22:19:18 ----A---- C:\WINDOWS\system32\Windows.Media.FaceAnalysis.dll
2017-03-19 22:19:18 ----A---- C:\WINDOWS\system32\Windows.Gaming.UI.GameBar.dll
2017-03-19 22:19:17 ----A---- C:\WINDOWS\SYSWOW64\WPDShServiceObj.dll
2017-03-19 22:19:17 ----A---- C:\WINDOWS\system32\wlanui.dll
2017-03-19 22:19:17 ----A---- C:\WINDOWS\system32\wcnwiz.dll
2017-03-19 22:19:17 ----A---- C:\WINDOWS\system32\nshwfp.dll
2017-03-19 22:19:16 ----A---- C:\WINDOWS\system32\mssitlb.dll
2017-03-19 22:19:15 ----A---- C:\WINDOWS\system32\wwanconn.dll
2017-03-19 22:19:13 ----A---- C:\WINDOWS\system32\wmp.dll
2017-03-19 22:19:09 ----A---- C:\WINDOWS\SYSWOW64\wmp.dll
2017-03-19 22:19:04 ----A---- C:\WINDOWS\system32\BingMaps.dll
2017-03-19 22:19:03 ----A---- C:\WINDOWS\system32\msmpeg2vdec.dll
2017-03-19 22:19:01 ----A---- C:\WINDOWS\system32\mfnetsrc.dll
2017-03-19 22:18:59 ----A---- C:\WINDOWS\system32\MapGeocoder.dll
2017-03-19 22:18:58 ----A---- C:\WINDOWS\system32\MapRouter.dll
2017-03-19 22:18:57 ----A---- C:\WINDOWS\system32\Wpc.dll
2017-03-19 22:18:57 ----A---- C:\WINDOWS\system32\MapsStore.dll
2017-03-19 22:18:56 ----A---- C:\WINDOWS\system32\ContactApis.dll
2017-03-19 22:18:55 ----A---- C:\WINDOWS\system32\mfplat.dll
2017-03-19 22:18:54 ----A---- C:\WINDOWS\system32\SystemSettingsThresholdAdminFlowUI.dll
2017-03-19 22:18:52 ----A---- C:\WINDOWS\system32\wpncore.dll
2017-03-19 22:18:52 ----A---- C:\WINDOWS\system32\mmc.exe
2017-03-19 22:18:51 ----A---- C:\WINDOWS\system32\WpcMon.exe
2017-03-19 22:18:51 ----A---- C:\WINDOWS\system32\usercpl.dll
2017-03-19 22:18:51 ----A---- C:\WINDOWS\system32\TextInputFramework.dll
2017-03-19 22:18:50 ----A---- C:\WINDOWS\system32\wlansec.dll
2017-03-19 22:18:50 ----A---- C:\WINDOWS\system32\win32spl.dll
2017-03-19 22:18:50 ----A---- C:\WINDOWS\system32\msxml3.dll
2017-03-19 22:18:50 ----A---- C:\WINDOWS\system32\LockAppBroker.dll
2017-03-19 22:18:49 ----A---- C:\WINDOWS\system32\SpeechPal.dll
2017-03-19 22:18:49 ----A---- C:\WINDOWS\system32\hevcdecoder.dll
2017-03-19 22:18:48 ----A---- C:\WINDOWS\system32\wlansvc.dll
2017-03-19 22:18:48 ----A---- C:\WINDOWS\system32\ntshrui.dll
2017-03-19 22:18:48 ----A---- C:\WINDOWS\system32\mprddm.dll
2017-03-19 22:18:48 ----A---- C:\WINDOWS\system32\drivers\WdiWiFi.sys
2017-03-19 22:18:47 ----A---- C:\WINDOWS\SYSWOW64\Wpc.dll
2017-03-19 22:18:47 ----A---- C:\WINDOWS\system32\spoolsv.exe
2017-03-19 22:18:47 ----A---- C:\WINDOWS\system32\drivers\srv.sys
2017-03-19 22:18:46 ----A---- C:\WINDOWS\system32\Windows.Networking.UX.EapRequestHandler.dll
2017-03-19 22:18:46 ----A---- C:\WINDOWS\system32\SpaceControl.dll
2017-03-19 22:18:46 ----A---- C:\WINDOWS\system32\MMDevAPI.dll
2017-03-19 22:18:46 ----A---- C:\WINDOWS\system32\mf.dll
2017-03-19 22:18:45 ----A---- C:\WINDOWS\system32\PimIndexMaintenance.dll
2017-03-19 22:18:45 ----A---- C:\WINDOWS\system32\NgcCtnrSvc.dll
2017-03-19 22:18:45 ----A---- C:\WINDOWS\system32\MFCaptureEngine.dll
2017-03-19 22:18:44 ----A---- C:\WINDOWS\system32\WMVDECOD.DLL
2017-03-19 22:18:44 ----A---- C:\WINDOWS\system32\Pimstore.dll
2017-03-19 22:18:43 ----A---- C:\WINDOWS\system32\TpmCoreProvisioning.dll
2017-03-19 22:18:43 ----A---- C:\WINDOWS\system32\rasgcw.dll
2017-03-19 22:18:43 ----A---- C:\WINDOWS\system32\AuthHost.exe
2017-03-19 22:18:42 ----A---- C:\WINDOWS\system32\Windows.Internal.Shell.Broker.dll
2017-03-19 22:18:42 ----A---- C:\WINDOWS\system32\ChatApis.dll
2017-03-19 22:18:42 ----A---- C:\WINDOWS\system32\AppointmentApis.dll
2017-03-19 22:18:41 ----A---- C:\WINDOWS\system32\wlanapi.dll
2017-03-19 22:18:41 ----A---- C:\WINDOWS\system32\mfds.dll
2017-03-19 22:18:41 ----A---- C:\WINDOWS\system32\LockAppHost.exe
2017-03-19 22:18:41 ----A---- C:\WINDOWS\system32\drivers\nwifi.sys
2017-03-19 22:18:40 ----A---- C:\WINDOWS\system32\WlanMediaManager.dll
2017-03-19 22:18:40 ----A---- C:\WINDOWS\system32\UserDataService.dll
2017-03-19 22:18:40 ----A---- C:\WINDOWS\system32\moshost.dll
2017-03-19 22:18:40 ----A---- C:\WINDOWS\system32\InputService.dll
2017-03-19 22:18:39 ----A---- C:\WINDOWS\system32\SearchFolder.dll
2017-03-19 22:18:39 ----A---- C:\WINDOWS\system32\drivers\tdx.sys
2017-03-19 22:18:39 ----A---- C:\WINDOWS\system32\drivers\pdc.sys
2017-03-19 22:18:39 ----A---- C:\WINDOWS\system32\drivers\FWPKCLNT.SYS
2017-03-19 22:18:38 ----A---- C:\WINDOWS\system32\mfsvr.dll
2017-03-19 22:18:37 ----A---- C:\WINDOWS\system32\RADCUI.dll
2017-03-19 22:18:37 ----A---- C:\WINDOWS\system32\MCCSEngineShared.dll
2017-03-19 22:18:37 ----A---- C:\WINDOWS\system32\internetmail.dll
2017-03-19 22:18:37 ----A---- C:\WINDOWS\system32\FrameServer.dll
2017-03-19 22:18:36 ----A---- C:\WINDOWS\system32\usoapi.dll
2017-03-19 22:18:36 ----A---- C:\WINDOWS\system32\MSPhotography.dll
2017-03-19 22:18:35 ----A---- C:\WINDOWS\system32\RelPost.exe
2017-03-19 22:18:35 ----A---- C:\WINDOWS\system32\mqqm.dll
2017-03-19 22:18:35 ----A---- C:\WINDOWS\system32\ActiveSyncProvider.dll
2017-03-19 22:18:34 ----A---- C:\WINDOWS\system32\mfmkvsrcsnk.dll
2017-03-19 22:18:33 ----A---- C:\WINDOWS\system32\wfdprov.dll
2017-03-19 22:18:33 ----A---- C:\WINDOWS\system32\PrintDialogs.dll
2017-03-19 22:18:33 ----A---- C:\WINDOWS\system32\netshell.dll
2017-03-19 22:18:32 ----A---- C:\WINDOWS\system32\Windows.Storage.Search.dll
2017-03-19 22:18:32 ----A---- C:\WINDOWS\system32\MapConfiguration.dll
2017-03-19 22:18:32 ----A---- C:\WINDOWS\system32\ExSMime.dll
2017-03-19 22:18:31 ----A---- C:\WINDOWS\system32\sdengin2.dll
2017-03-19 22:18:31 ----A---- C:\WINDOWS\system32\PrintDialogs3D.dll
2017-03-19 22:18:31 ----A---- C:\WINDOWS\system32\iprtrmgr.dll
2017-03-19 22:18:30 ----A---- C:\WINDOWS\system32\Unistore.dll
2017-03-19 22:18:30 ----A---- C:\WINDOWS\system32\PrintRenderAPIHost.DLL
2017-03-19 22:18:30 ----A---- C:\WINDOWS\system32\MSVPXENC.dll
2017-03-19 22:18:30 ----A---- C:\WINDOWS\system32\drivers\tcpipreg.sys
2017-03-19 22:18:29 ----A---- C:\WINDOWS\system32\Windows.Security.Credentials.UI.UserConsentVerifier.dll
2017-03-19 22:18:29 ----A---- C:\WINDOWS\system32\puiapi.dll
2017-03-19 22:18:29 ----A---- C:\WINDOWS\system32\DavSyncProvider.dll
2017-03-19 22:18:29 ----A---- C:\WINDOWS\system32\DafPrintProvider.dll
2017-03-19 22:18:29 ----A---- C:\WINDOWS\system32\cemapi.dll
2017-03-19 22:18:29 ----A---- C:\WINDOWS\system32\accountaccessor.dll
2017-03-19 22:18:28 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2017-03-19 22:18:28 ----A---- C:\WINDOWS\system32\tapi32.dll
2017-03-19 22:18:28 ----A---- C:\WINDOWS\system32\sdshext.dll
2017-03-19 22:18:28 ----A---- C:\WINDOWS\system32\pnidui.dll
2017-03-19 22:18:28 ----A---- C:\WINDOWS\system32\netiougc.exe
2017-03-19 22:18:28 ----A---- C:\WINDOWS\system32\DuCsps.dll
2017-03-19 22:18:27 ----A---- C:\WINDOWS\system32\VCardParser.dll
2017-03-19 22:18:21 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.dll
2017-03-19 22:18:14 ----A---- C:\WINDOWS\system32\jscript9.dll
2017-03-19 22:18:11 ----A---- C:\WINDOWS\system32\drivers\dam.sys
2017-03-19 22:18:09 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2017-03-19 22:18:08 ----A---- C:\WINDOWS\system32\dwmcore.dll
2017-03-19 22:18:07 ----A---- C:\WINDOWS\system32\d3d11.dll
2017-03-19 22:18:06 ----A---- C:\WINDOWS\system32\DWrite.dll
2017-03-19 22:18:01 ----A---- C:\WINDOWS\system32\comsvcs.dll
2017-03-19 22:18:00 ----A---- C:\WINDOWS\system32\wifinetworkmanager.dll
2017-03-19 22:17:59 ----A---- C:\WINDOWS\system32\Windows.UI.Logon.dll
2017-03-19 22:17:59 ----A---- C:\WINDOWS\system32\dxgi.dll
2017-03-19 22:17:58 ----A---- C:\WINDOWS\system32\inetcomm.dll
2017-03-19 22:17:58 ----A---- C:\WINDOWS\system32\FntCache.dll
2017-03-19 22:17:58 ----A---- C:\WINDOWS\system32\CredProvDataModel.dll
2017-03-19 22:17:57 ----A---- C:\WINDOWS\system32\workfolderssvc.dll
2017-03-19 22:17:57 ----A---- C:\WINDOWS\system32\vbscript.dll
2017-03-19 22:17:57 ----A---- C:\WINDOWS\system32\schannel.dll
2017-03-19 22:17:57 ----A---- C:\WINDOWS\system32\CloudBackupSettings.dll
2017-03-19 22:17:56 ----A---- C:\WINDOWS\system32\iphlpsvc.dll
2017-03-19 22:17:56 ----A---- C:\WINDOWS\system32\drivers\dxgmms2.sys
2017-03-19 22:17:56 ----A---- C:\WINDOWS\system32\dnsapi.dll
2017-03-19 22:17:54 ----A---- C:\WINDOWS\system32\winmde.dll
2017-03-19 22:17:54 ----A---- C:\WINDOWS\system32\rasmans.dll
2017-03-19 22:17:53 ----A---- C:\WINDOWS\system32\drivers\rdbss.sys
2017-03-19 22:17:53 ----A---- C:\WINDOWS\system32\dhcpcore6.dll
2017-03-19 22:17:52 ----A---- C:\WINDOWS\system32\Windows.Cortana.Desktop.dll
2017-03-19 22:17:52 ----A---- C:\WINDOWS\system32\vpnike.dll
2017-03-19 22:17:51 ----A---- C:\WINDOWS\system32\uDWM.dll
2017-03-19 22:17:50 ----A---- C:\WINDOWS\system32\WorkfoldersControl.dll
2017-03-19 22:17:49 ----A---- C:\WINDOWS\system32\werconcpl.dll
2017-03-19 22:17:49 ----A---- C:\WINDOWS\system32\drivers\mrxsmb20.sys
2017-03-19 22:17:49 ----A---- C:\WINDOWS\system32\drivers\mrxsmb.sys
2017-03-19 22:17:49 ----A---- C:\WINDOWS\system32\drivers\dfsc.sys
2017-03-19 22:17:49 ----A---- C:\WINDOWS\system32\DMRServer.dll
2017-03-19 22:17:48 ----A---- C:\WINDOWS\system32\XboxNetApiSvc.dll
2017-03-19 22:17:48 ----A---- C:\WINDOWS\system32\twinui.appcore.dll
2017-03-19 22:17:48 ----A---- C:\WINDOWS\system32\SHCore.dll
2017-03-19 22:17:48 ----A---- C:\WINDOWS\system32\SettingSync.dll
2017-03-19 22:17:47 ----A---- C:\WINDOWS\system32\WorkFoldersGPExt.dll
2017-03-19 22:17:45 ----A---- C:\WINDOWS\system32\msftedit.dll
2017-03-19 22:17:42 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.Resources.dll
2017-03-19 22:17:41 ----A---- C:\WINDOWS\system32\wlidprov.dll
2017-03-19 22:17:41 ----A---- C:\WINDOWS\system32\IPHLPAPI.DLL
2017-03-19 22:17:41 ----A---- C:\WINDOWS\system32\evr.dll
2017-03-19 22:17:37 ----A---- C:\WINDOWS\system32\thumbcache.dll
2017-03-19 22:17:37 ----A---- C:\WINDOWS\system32\LogonController.dll
2017-03-19 22:17:36 ----A---- C:\WINDOWS\system32\PhotoScreensaver.scr
2017-03-19 22:17:36 ----A---- C:\WINDOWS\system32\MFPlay.dll
2017-03-19 22:17:34 ----A---- C:\WINDOWS\system32\Tabbtn.dll
2017-03-19 22:17:34 ----A---- C:\WINDOWS\system32\icm32.dll
2017-03-19 22:17:34 ----A---- C:\WINDOWS\system32\dnsrslvr.dll
2017-03-19 22:17:34 ----A---- C:\WINDOWS\system32\dialclient.dll
2017-03-19 22:17:33 ----A---- C:\WINDOWS\system32\drivers\ks.sys
2017-03-19 22:17:32 ----A---- C:\WINDOWS\system32\shutdownux.dll
2017-03-19 22:17:32 ----A---- C:\WINDOWS\system32\SettingsHandlers_WorkAccess.dll
2017-03-19 22:17:31 ----A---- C:\WINDOWS\SYSWOW64\PhotoScreensaver.scr
2017-03-19 22:17:31 ----A---- C:\WINDOWS\system32\drivers\mskssrv.sys
2017-03-19 22:17:30 ----A---- C:\WINDOWS\SYSWOW64\Chakradiag.dll
2017-03-19 22:17:30 ----A---- C:\WINDOWS\system32\StructuredQuery.dll
2017-03-19 22:17:29 ----A---- C:\WINDOWS\system32\WorkFoldersShell.dll
2017-03-19 22:17:29 ----A---- C:\WINDOWS\system32\WorkFolders.exe
2017-03-19 22:17:29 ----A---- C:\WINDOWS\system32\Windows.Cortana.OneCore.dll
2017-03-19 22:17:24 ----A---- C:\WINDOWS\system32\TokenBrokerCookies.exe
2017-03-19 22:17:24 ----A---- C:\WINDOWS\system32\tbauth.dll
2017-03-19 22:17:24 ----A---- C:\WINDOWS\system32\fhcfg.dll
2017-03-19 22:17:24 ----A---- C:\WINDOWS\system32\BrowserSettingSync.dll
2017-03-19 22:17:23 ----A---- C:\WINDOWS\SYSWOW64\jscript9diag.dll
2017-03-19 22:17:23 ----A---- C:\WINDOWS\SYSWOW64\indexeddbserver.dll
2017-03-19 22:17:23 ----A---- C:\WINDOWS\system32\CameraCaptureUI.dll
2017-03-19 22:17:22 ----A---- C:\WINDOWS\system32\ipnathlp.dll
2017-03-19 22:17:21 ----A---- C:\WINDOWS\system32\ddrawex.dll
2017-03-19 22:17:20 ----A---- C:\WINDOWS\system32\Windows.Shell.Search.UriHandler.dll
2017-03-19 22:17:20 ----A---- C:\WINDOWS\system32\Windows.Networking.HostName.dll
2017-03-19 22:17:19 ----A---- C:\WINDOWS\system32\ddraw.dll
2017-03-19 22:16:58 ----A---- C:\WINDOWS\system32\dbgeng.dll
2017-03-19 22:16:56 ----A---- C:\WINDOWS\SYSWOW64\aepic.dll
2017-03-19 22:16:56 ----A---- C:\WINDOWS\system32\aepic.dll
2017-03-19 22:16:55 ----A---- C:\WINDOWS\system32\CompatTelRunner.exe
2017-03-19 22:16:54 ----A---- C:\WINDOWS\explorer.exe
2017-03-19 22:16:52 ----A---- C:\WINDOWS\system32\bisrv.dll
2017-03-19 22:16:51 ----A---- C:\WINDOWS\system32\mispace.dll
2017-03-19 22:16:50 ----A---- C:\WINDOWS\system32\Windows.UI.Immersive.dll
2017-03-19 22:16:47 ----A---- C:\WINDOWS\system32\wsp_health.dll
2017-03-19 22:16:46 ----A---- C:\WINDOWS\system32\msctf.dll
2017-03-19 22:16:46 ----A---- C:\WINDOWS\system32\ExplorerFrame.dll
2017-03-19 22:16:45 ----A---- C:\WINDOWS\system32\storagewmi.dll
2017-03-19 22:16:43 ----A---- C:\WINDOWS\system32\drivers\ntfs.sys
2017-03-19 22:16:42 ----A---- C:\WINDOWS\system32\EnterpriseAPNCsp.dll
2017-03-19 22:16:42 ----A---- C:\WINDOWS\system32\DeviceCensus.exe
2017-03-19 22:16:42 ----A---- C:\WINDOWS\system32\dcntel.dll
2017-03-19 22:16:42 ----A---- C:\WINDOWS\system32\DataSenseHandlers.dll
2017-03-19 22:16:42 ----A---- C:\WINDOWS\system32\CspCellularSettings.dll
2017-03-19 22:16:42 ----A---- C:\WINDOWS\system32\CfgSPCellular.dll
2017-03-19 22:16:41 ----A---- C:\WINDOWS\system32\XblAuthManager.dll
2017-03-19 22:16:41 ----A---- C:\WINDOWS\system32\generaltel.dll
2017-03-19 22:16:40 ----A---- C:\WINDOWS\system32\wsp_fs.dll
2017-03-19 22:16:38 ----A---- C:\WINDOWS\system32\winload.exe
2017-03-19 22:16:37 ----A---- C:\WINDOWS\system32\modernexecserver.dll
2017-03-19 22:16:37 ----A---- C:\WINDOWS\system32\clusapi.dll
2017-03-19 22:16:36 ----A---- C:\WINDOWS\system32\winresume.exe
2017-03-19 22:16:36 ----A---- C:\WINDOWS\system32\ResetEngine.dll
2017-03-19 22:16:35 ----A---- C:\WINDOWS\system32\ReAgent.dll
2017-03-19 22:16:34 ----A---- C:\WINDOWS\system32\twinapi.dll
2017-03-19 22:16:34 ----A---- C:\WINDOWS\system32\resutils.dll
2017-03-19 22:16:34 ----A---- C:\WINDOWS\system32\hvloader.exe
2017-03-19 22:16:33 ----A---- C:\WINDOWS\system32\GdiPlus.dll
2017-03-19 22:16:32 ----A---- C:\WINDOWS\system32\imapi2fs.dll
2017-03-19 22:16:32 ----A---- C:\WINDOWS\system32\gameux.dll
2017-03-19 22:16:31 ----A---- C:\WINDOWS\system32\wcmsvc.dll
2017-03-19 22:16:31 ----A---- C:\WINDOWS\system32\uReFS.dll
2017-03-19 22:16:31 ----A---- C:\WINDOWS\system32\SettingSyncHost.exe
2017-03-19 22:16:30 ----A---- C:\WINDOWS\SYSWOW64\UIRibbon.dll
2017-03-19 22:16:30 ----A---- C:\WINDOWS\system32\UIRibbon.dll
2017-03-19 22:16:29 ----A---- C:\WINDOWS\system32\WinSetupUI.dll
2017-03-19 22:16:29 ----A---- C:\WINDOWS\system32\lsasrv.dll
2017-03-19 22:16:27 ----A---- C:\WINDOWS\system32\wintrust.dll
2017-03-19 22:16:27 ----A---- C:\WINDOWS\system32\ubpm.dll
2017-03-19 22:16:27 ----A---- C:\WINDOWS\system32\themecpl.dll
2017-03-19 22:16:26 ----A---- C:\WINDOWS\system32\policymanager.dll
2017-03-19 22:16:26 ----A---- C:\WINDOWS\system32\authui.dll
2017-03-19 22:16:26 ----A---- C:\WINDOWS\system32\AppXApplicabilityBlob.dll
2017-03-19 22:16:25 ----A---- C:\WINDOWS\system32\drivers\storport.sys
2017-03-19 22:16:25 ----A---- C:\WINDOWS\system32\bootux.dll
2017-03-19 22:16:24 ----A---- C:\WINDOWS\system32\ci.dll
2017-03-19 22:16:23 ----A---- C:\WINDOWS\system32\reseteng.dll
2017-03-19 22:16:23 ----A---- C:\WINDOWS\system32\daxexec.dll
2017-03-19 22:16:22 ----A---- C:\WINDOWS\system32\winhttp.dll
2017-03-19 22:16:22 ----A---- C:\WINDOWS\system32\stobject.dll
2017-03-19 22:16:22 ----A---- C:\WINDOWS\system32\dui70.dll
2017-03-19 22:16:21 ----A---- C:\WINDOWS\system32\VSSVC.exe
2017-03-19 22:16:21 ----A---- C:\WINDOWS\system32\UserLanguagesCpl.dll
2017-03-19 22:16:21 ----A---- C:\WINDOWS\system32\PCPTpm12.dll
2017-03-19 22:16:21 ----A---- C:\WINDOWS\system32\icsvcext.dll
2017-03-19 22:16:20 ----A---- C:\WINDOWS\system32\SystemSettings.UserAccountsHandlers.dll
2017-03-19 22:16:20 ----A---- C:\WINDOWS\system32\SpaceAgent.exe
2017-03-19 22:16:20 ----A---- C:\WINDOWS\system32\DXP.dll
2017-03-19 22:16:20 ----A---- C:\WINDOWS\system32\drivers\partmgr.sys
2017-03-19 22:16:19 ----A---- C:\WINDOWS\system32\wsp_sr.dll
2017-03-19 22:16:19 ----A---- C:\WINDOWS\system32\SensorDataService.exe
2017-03-19 22:16:19 ----A---- C:\WINDOWS\system32\drivers\vmbkmcl.sys
2017-03-19 22:16:19 ----A---- C:\WINDOWS\system32\combase.dll
2017-03-19 22:16:18 ----A---- C:\WINDOWS\system32\vssapi.dll
2017-03-19 22:16:18 ----A---- C:\WINDOWS\system32\drivers\Classpnp.sys
2017-03-19 22:16:18 ----A---- C:\WINDOWS\system32\BootMenuUX.dll
2017-03-19 22:16:18 ----A---- C:\WINDOWS\system32\basecsp.dll
2017-03-19 22:16:18 ----A---- C:\WINDOWS\system32\AppReadiness.dll
2017-03-19 22:16:17 ----A---- C:\WINDOWS\system32\WsmWmiPl.dll
2017-03-19 22:16:17 ----A---- C:\WINDOWS\system32\systemreset.exe
2017-03-19 22:16:17 ----A---- C:\WINDOWS\system32\sud.dll
2017-03-19 22:16:17 ----A---- C:\WINDOWS\system32\OneDriveSettingSyncProvider.dll
2017-03-19 22:16:17 ----A---- C:\WINDOWS\system32\icfupgd.dll
2017-03-19 22:16:16 ----A---- C:\WINDOWS\system32\certprop.dll
2017-03-19 22:16:15 ----A---- C:\WINDOWS\system32\gpapi.dll
2017-03-19 22:16:15 ----A---- C:\WINDOWS\system32\drivers\hvsocket.sys
2017-03-19 22:16:15 ----A---- C:\WINDOWS\system32\DevicePairing.dll
2017-03-19 22:16:14 ----A---- C:\WINDOWS\system32\wbengine.exe
2017-03-19 22:16:13 ----A---- C:\WINDOWS\system32\SystemSettings.Handlers.dll
2017-03-19 22:16:13 ----A---- C:\WINDOWS\system32\input.dll
2017-03-19 22:16:13 ----A---- C:\WINDOWS\system32\drivers\vmbkmclr.sys
2017-03-19 22:16:12 ----A---- C:\WINDOWS\system32\netiohlp.dll
2017-03-19 22:16:12 ----A---- C:\WINDOWS\system32\AudioSes.dll
2017-03-19 22:16:11 ----A---- C:\WINDOWS\system32\spaceman.exe
2017-03-19 22:16:11 ----A---- C:\WINDOWS\system32\scksp.dll
2017-03-19 22:16:10 ----A---- C:\WINDOWS\system32\appinfo.dll
2017-03-19 22:16:09 ----A---- C:\WINDOWS\system32\tabcal.exe
2017-03-19 22:16:09 ----A---- C:\WINDOWS\system32\SettingsHandlers_Flights.dll
2017-03-19 22:16:09 ----A---- C:\WINDOWS\system32\hgcpl.dll
2017-03-19 22:16:09 ----A---- C:\WINDOWS\system32\gpsvc.dll
2017-03-19 22:16:08 ----A---- C:\WINDOWS\system32\tzautoupdate.dll
2017-03-19 22:16:08 ----A---- C:\WINDOWS\system32\MPSSVC.dll
2017-03-19 22:16:08 ----A---- C:\WINDOWS\system32\MediaFoundation.DefaultPerceptionProvider.dll
2017-03-19 22:16:08 ----A---- C:\WINDOWS\system32\ApplicationFrame.dll
2017-03-19 22:16:07 ----A---- C:\WINDOWS\system32\wups.dll
2017-03-19 22:16:07 ----A---- C:\WINDOWS\system32\MultiDigiMon.exe
2017-03-19 22:16:07 ----A---- C:\WINDOWS\system32\msutb.dll
2017-03-19 22:16:05 ----A---- C:\WINDOWS\regedit.exe
2017-03-19 22:16:04 ----A---- C:\WINDOWS\system32\BluetoothDesktopHandlers.dll
2017-03-19 22:16:03 ----A---- C:\WINDOWS\system32\XInputUap.dll
2017-03-19 22:16:03 ----A---- C:\WINDOWS\system32\werui.dll
2017-03-19 22:16:02 ----A---- C:\WINDOWS\system32\vds.exe
2017-03-19 22:16:02 ----A---- C:\WINDOWS\system32\mscandui.dll
2017-03-19 22:16:01 ----A---- C:\WINDOWS\system32\Windows.StateRepositoryBroker.dll
2017-03-19 22:16:01 ----A---- C:\WINDOWS\system32\rascustom.dll
2017-03-19 22:16:01 ----A---- C:\WINDOWS\system32\mspaint.exe
2017-03-19 22:16:00 ----A---- C:\WINDOWS\system32\msctfui.dll
2017-03-19 22:15:59 ----A---- C:\WINDOWS\system32\Windows.UI.Shell.dll
2017-03-19 22:15:59 ----A---- C:\WINDOWS\system32\msctfp.dll
2017-03-19 22:15:58 ----A---- C:\WINDOWS\system32\GamePanelExternalHook.dll
2017-03-19 22:15:57 ----A---- C:\WINDOWS\system32\LaunchWinApp.exe
2017-03-19 22:14:38 ----A---- C:\WINDOWS\SYSWOW64\OneDriveSetup.exe

====== List of files/folders modified in the last 1 month ======

2017-04-18 17:16:39 ----D---- C:\Program Files\trend micro
2017-04-18 17:16:33 ----D---- C:\WINDOWS\Prefetch
2017-04-18 17:15:35 ----D---- C:\WINDOWS\Temp
2017-04-18 17:15:35 ----D---- C:\WINDOWS\system32\SleepStudy
2017-04-18 16:54:34 ----D---- C:\Windows
2017-04-18 16:54:30 ----D---- C:\WINDOWS\System32
2017-04-18 16:54:30 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2017-04-18 16:52:14 ----SD---- C:\Users\Petr\AppData\Roaming\Microsoft
2017-04-18 16:52:14 ----D---- C:\WINDOWS\system32\Tasks
2017-04-18 16:49:52 ----D---- C:\WINDOWS\system32\sru
2017-04-18 16:49:51 ----A---- C:\WINDOWS\SYSWOW64\log.txt
2017-04-18 16:49:50 ----D---- C:\ProgramData\NVIDIA
2017-04-18 16:48:54 ----HD---- C:\ProgramData
2017-04-18 16:48:52 ----D---- C:\WINDOWS\system32\catroot2
2017-04-18 16:48:22 ----D---- C:\WINDOWS\INF
2017-04-18 16:47:48 ----D---- C:\WINDOWS\Tasks
2017-04-18 16:47:47 ----RD---- C:\Program Files (x86)
2017-04-18 16:21:25 ----D---- C:\Users\Petr\AppData\Roaming\DAEMON Tools Lite
2017-04-18 16:21:13 ----D---- C:\WINDOWS\debug
2017-04-18 15:35:21 ----D---- C:\Users\Petr\AppData\Roaming\vlc
2017-04-18 12:53:54 ----D---- C:\WINDOWS\system32\config
2017-04-18 08:45:41 ----RD---- C:\WINDOWS\Microsoft.NET
2017-04-18 07:59:24 ----HD---- C:\Program Files\WindowsApps
2017-04-18 07:59:24 ----D---- C:\WINDOWS\AppReadiness
2017-04-18 07:13:33 ----D---- C:\WINDOWS\system32\drivers
2017-04-16 13:53:29 ----D---- C:\WINDOWS\rescache
2017-04-14 12:04:02 ----RD---- C:\WINDOWS\assembly
2017-04-14 10:27:46 ----D---- C:\WINDOWS\system32\DriverStore
2017-04-14 10:27:45 ----D---- C:\WINDOWS\WinSxS
2017-04-14 09:31:56 ----SHD---- C:\WINDOWS\Installer
2017-04-14 09:31:56 ----SHD---- C:\Config.Msi
2017-04-14 09:12:50 ----AD---- C:\Program Files\Microsoft Silverlight
2017-04-14 09:12:47 ----AD---- C:\Program Files (x86)\Microsoft Silverlight
2017-04-13 23:32:29 ----SD---- C:\WINDOWS\SYSWOW64\F12
2017-04-13 23:32:29 ----D---- C:\WINDOWS\SYSWOW64\sr-Latn-CS
2017-04-13 23:32:29 ----D---- C:\WINDOWS\SYSWOW64\setup
2017-04-13 23:32:29 ----D---- C:\WINDOWS\SYSWOW64\cs-CZ
2017-04-13 23:32:29 ----D---- C:\WINDOWS\SysWOW64
2017-04-13 23:32:22 ----SD---- C:\WINDOWS\system32\F12
2017-04-13 23:32:22 ----D---- C:\WINDOWS\system32\wbem
2017-04-13 23:32:22 ----D---- C:\WINDOWS\system32\sr-Latn-CS
2017-04-13 23:32:22 ----D---- C:\WINDOWS\system32\setup
2017-04-13 23:32:22 ----D---- C:\WINDOWS\system32\migration
2017-04-13 23:32:22 ----D---- C:\WINDOWS\system32\Dism
2017-04-13 23:32:21 ----D---- C:\WINDOWS\system32\cs-CZ
2017-04-13 23:32:21 ----D---- C:\WINDOWS\system32\appraiser
2017-04-13 23:32:11 ----D---- C:\WINDOWS\ShellExperiences
2017-04-13 23:32:11 ----D---- C:\WINDOWS\Provisioning
2017-04-13 23:32:10 ----RD---- C:\WINDOWS\ImmersiveControlPanel
2017-04-13 23:32:10 ----RD---- C:\Program Files\Windows Defender
2017-04-13 23:32:10 ----D---- C:\Program Files\Windows Photo Viewer
2017-04-13 23:32:10 ----D---- C:\Program Files (x86)\Windows Photo Viewer
2017-04-13 23:32:10 ----D---- C:\Program Files (x86)\Windows Defender
2017-04-12 17:42:22 ----SHD---- C:\System Volume Information
2017-04-12 17:34:18 ----D---- C:\WINDOWS\system32\MRT
2017-04-12 17:28:48 ----AC---- C:\WINDOWS\system32\MRT.exe
2017-04-12 17:28:40 ----D---- C:\WINDOWS\CbsTemp
2017-04-12 17:26:15 ----D---- C:\ProgramData\Microsoft Help
2017-04-12 17:26:14 ----A---- C:\WINDOWS\win.ini
2017-04-04 13:55:54 ----D---- C:\WINDOWS\system32\NDF
2017-03-28 08:20:43 ----A---- C:\WINDOWS\SYSWOW64\PrintConfig.dll
2017-03-23 16:11:44 ----D---- C:\WINDOWS\SYSWOW64\migration
2017-03-23 16:11:44 ----D---- C:\WINDOWS\SYSWOW64\en-US
2017-03-23 16:11:32 ----D---- C:\WINDOWS\system32\oobe
2017-03-23 16:11:29 ----D---- C:\WINDOWS\system32\en-US
2017-03-23 16:11:28 ----D---- C:\WINDOWS\system32\drivers\cs-CZ
2017-03-23 16:11:28 ----D---- C:\WINDOWS\system32\Boot
2017-03-23 16:11:18 ----RD---- C:\WINDOWS\PrintDialog
2017-03-23 16:11:12 ----D---- C:\WINDOWS\bcastdvr
2017-03-23 16:11:12 ----D---- C:\WINDOWS\AppPatch
2017-03-23 16:11:12 ----D---- C:\Program Files\Windows Mail
2017-03-23 16:11:12 ----D---- C:\Program Files\Internet Explorer
2017-03-23 16:11:12 ----D---- C:\Program Files (x86)\Windows Mail
2017-03-23 16:11:12 ----D---- C:\Program Files (x86)\Internet Explorer

File C:\WINDOWS\system32\winlogon.exe is digitally signed
File C:\WINDOWS\system32\wininit.exe is digitally signed
File C:\WINDOWS\explorer.exe is digitally signed
File C:\WINDOWS\SysWOW64\explorer.exe is digitally signed
File C:\WINDOWS\system32\svchost.exe is digitally signed
File C:\WINDOWS\SysWOW64\svchost.exe is digitally signed
File C:\WINDOWS\system32\services.exe is digitally signed
File C:\WINDOWS\system32\User32.dll is digitally signed
File C:\WINDOWS\SysWOW64\User32.dll is digitally signed
File C:\WINDOWS\system32\userinit.exe is digitally signed
File C:\WINDOWS\SysWOW64\userinit.exe is digitally signed
File C:\WINDOWS\system32\rpcss.dll is digitally signed
File C:\WINDOWS\system32\Drivers\volsnap.sys is digitally signed

====== List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled) ======

R0 aswbidsh;aswbidsh; C:\WINDOWS\system32\drivers\aswbidsha.sys [2017-04-04 189768]
R0 aswblog;aswblog; C:\WINDOWS\system32\drivers\aswbloga.sys [2017-04-04 334088]
R0 aswbuniv;aswbuniv; C:\WINDOWS\system32\drivers\aswbuniva.sys [2017-04-04 48528]
R0 aswRvrt;aswRvrt; C:\WINDOWS\system32\drivers\aswRvrt.sys [2017-04-04 75704]
R0 aswVmm;aswVmm; C:\WINDOWS\system32\drivers\aswVmm.sys [2017-04-04 339696]
R0 iaStor;@oem45.inf,%*PNP0600.DeviceDesc%;Intel AHCI Controller; C:\WINDOWS\System32\drivers\iaStor.sys [2010-04-13 540696]
R0 iorate;@%SystemRoot%\system32\drivers\iorate.sys,-100; C:\WINDOWS\system32\drivers\iorate.sys [2016-11-02 48992]
R0 nvpciflt;nvpciflt; C:\WINDOWS\system32\DRIVERS\nvpciflt.sys [2017-01-17 48696]
R0 PxHlpa64;PxHlpa64; C:\WINDOWS\System32\Drivers\PxHlpa64.sys [2010-03-19 55856]
R1 aswbidsdriver;aswbidsdriver; C:\WINDOWS\system32\drivers\aswbidsdrivera.sys [2017-04-04 307736]
R1 aswKbd;aswKbd; C:\WINDOWS\system32\drivers\aswKbd.sys [2017-04-04 32600]
R1 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr2.sys [2017-04-04 101152]
R1 aswSnx;aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [2017-04-04 1005048]
R1 aswSP;aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [2017-04-04 556784]
R1 dtsoftbus01;@oem60.inf,%DTSoftBus.SVCDESC%;DAEMON Tools Virtual Bus Driver; C:\WINDOWS\System32\drivers\dtsoftbus01.sys [2012-11-19 283200]
R2 aswMonFlt;aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [2017-04-04 127112]
R2 aswStm;aswStm; C:\WINDOWS\system32\drivers\aswStm.sys [2017-04-04 164064]
R2 clreg;@%SystemRoot%\system32\drivers\registry.sys,-100; C:\WINDOWS\System32\drivers\registry.sys [2016-07-16 70144]
R2 lirsgt;lirsgt; C:\WINDOWS\system32\DRIVERS\lirsgt.sys [2012-11-20 42696]
R2 SSPORT;SSPORT; \??\C:\Windows\system32\Drivers\SSPORT.sys [2009-03-02 11576]
R3 ETD;@oem23.inf,%PS2.DeviceDesc%;ELAN PS/2 Port Input Device; C:\WINDOWS\system32\DRIVERS\ETD.sys [2010-04-13 135560]
R3 HECIx64;@oem30.inf,%HECI_SvcDesc%;Intel(R) Management Engine Interface; C:\WINDOWS\System32\drivers\HECIx64.sys [2009-09-17 56344]
R3 Impcd;Impcd; C:\WINDOWS\System32\drivers\Impcd.sys [2010-02-27 158976]
R3 k57nd60a;@netk57a.inf,%SvcDispName%;Broadcom NetLink (TM) Gigabit Ethernet - NDIS 6.0; C:\WINDOWS\System32\drivers\k57nd60a.sys [2016-07-16 446464]
R3 MQAC;@mqutil.dll,-6101; C:\WINDOWS\system32\drivers\mqac.sys [2016-09-29 175616]
R3 NTIDrvr;NTIDrvr; \??\C:\Windows\system32\drivers\NTIDrvr.sys [2009-05-06 18432]
R3 nvlddmkm;nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nvacwu.inf_amd64_bdd6ea477d4e2fba\nvlddmkm.sys [2017-01-17 14190520]
R3 RtlWlanu_OldIC;@rtwlanu_oldIC.inf,%RtlWlanu_OldIC.DeviceDesc.DispName%;Realtek Wireless LAN 802.11n USB 2.0 Network Adapter; C:\WINDOWS\System32\drivers\rtwlanu_oldIC.sys [2016-07-16 3814400]
S0 megasas2i;megasas2i; C:\WINDOWS\System32\drivers\MegaSas2i.sys [2016-10-05 64352]
S0 scmbus;@scmbus.inf,%scmbus.SvcDesc%;Microsoft Storage Class Memory Bus Driver; C:\WINDOWS\System32\drivers\scmbus.sys [2016-07-16 88416]
S3 AcpiDev;@acpidev.inf,%AcpiDev.SvcDesc%;ACPI Devices driver; C:\WINDOWS\System32\drivers\AcpiDev.sys [2016-07-16 18432]
S3 applockerfltr;@%systemroot%\system32\srpapi.dll,-102; C:\WINDOWS\system32\drivers\applockerfltr.sys [2016-07-16 15360]
S3 aswHwid;aswHwid; C:\WINDOWS\system32\drivers\aswHwid.sys [2017-04-04 38296]
S3 BthA2DP;@wdma_bt.inf,%BthA2DP.SvcDesc%;Bluetooth stereo; C:\WINDOWS\system32\drivers\BthA2DP.sys [2016-09-15 168448]
S3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Služba Bluetooth Enumerator; C:\WINDOWS\system32\DRIVERS\BthEnum.sys [2016-09-29 114176]
S3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Bluetooth Device (Personal Area Network); C:\WINDOWS\System32\drivers\bthpan.sys [2016-10-05 128512]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Ovladač portu Bluetooth; C:\WINDOWS\system32\DRIVERS\BTHport.sys [2016-11-11 967168]
S3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Ovladač rozhraní USB radiostanice Bluetooth; C:\WINDOWS\system32\DRIVERS\BTHUSB.sys [2016-09-29 84992]
S3 epmntdrv;epmntdrv; \??\C:\WINDOWS\syswow64\epmntdrv.sys [2011-07-29 14216]
S3 EuGdiDrv;EuGdiDrv; \??\C:\WINDOWS\syswow64\EuGdiDrv.sys [2011-07-29 8456]
S3 hvservice;@%SystemRoot%\system32\drivers\hvservice.sys,-16; C:\WINDOWS\system32\drivers\hvservice.sys [2016-09-29 73568]
S3 cht4iscsi;cht4iscsi; C:\WINDOWS\System32\drivers\cht4sx64.sys [2016-07-16 346976]
S3 cht4vbd;@cht4vx64.inf,%cht4vbd.generic%;Chelsio Virtual Bus Driver; C:\WINDOWS\System32\drivers\cht4vx64.sys [2016-07-16 2104160]
S3 iagpio;@iagpio.inf,%iagpio.SVCDESC%;Intel Serial IO GPIO Controller Driver; C:\WINDOWS\System32\drivers\iagpio.sys [2016-07-16 33280]
S3 iaLPSS2i_GPIO2;@iaLPSS2i_GPIO2_SKL.inf,%iaLPSS2i_GPIO2.SVCDESC%;Intel(R) Serial IO GPIO Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2.sys [2016-07-16 64512]
S3 IndirectKmd;@%SystemRoot%\system32\drivers\IndirectKmd.sys,-100; C:\WINDOWS\System32\drivers\IndirectKmd.sys [2016-07-16 35840]
S3 irda;IrDA; C:\WINDOWS\system32\drivers\irda.sys [2016-07-16 120320]
S3 NetAdapterCx;Network Adapter Wdf Class Extension Library; C:\WINDOWS\system32\drivers\NetAdapterCx.sys [2016-07-16 90624]
S3 PPJoyBus;Parallel Port Joystick Bus Enumerator; C:\WINDOWS\system32\DRIVERS\PPJoyBus64.sys [2009-11-04 20032]
S3 PPortJoystick;Parallel Port Joystick Device Driver; C:\WINDOWS\system32\DRIVERS\PPortJoy64.sys [2009-11-04 39488]
S3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Zařízení Bluetooth (RFCOMM protokol TDI); C:\WINDOWS\System32\drivers\rfcomm.sys [2016-07-16 183808]
S3 RSUSBSTOR;@oem32.inf,%RSUSBSTOR.SvcDesc%;RtsUStor.Sys Realtek USB Card Reader; C:\WINDOWS\System32\Drivers\RtsUStor.sys [2010-09-22 243712]
S3 scmdisk0101;@scmdisk0101.inf,%scmdisk0101.SvcDesc%;Microsoft NVDIMM-N disk driver; C:\WINDOWS\System32\drivers\scmdisk0101.sys [2016-07-16 123904]

====== List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled) ======

R2 AdobeActiveFileMonitor9.0;Adobe Active File Monitor V9; c:\Program Files (x86)\Adobe\Elements 9 Organizer\PhotoshopElementsFileAgent.exe [2010-09-30 169408]
R2 AppHostSvc;@%windir%\system32\inetsrv\iisres.dll,-30011; %windir%\system32\svchost.exe -k apphost;"ServiceDll" = %windir%\system32\inetsrv\apphostsvc.dll
R2 avast! Antivirus;Avast Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2017-04-04 261712]
R2 CDPUserSvc_44eb0;CDPUserSvc_44eb0; C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup;"ServiceDll" =
R2 DsiWMIService;Dritek WMI Service; C:\Program Files (x86)\Launch Manager\dsiwmis.exe [2010-08-10 321104]
R2 ePowerSvc;Acer ePower Service; C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerSvc.exe [2011-01-06 867712]
R2 Live Updater Service;Live Updater Service; C:\Program Files\Packard Bell\Packard Bell Updater\UpdaterService.exe [2011-04-22 244624]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2010-03-18 268824]
R2 MSMQ;@mqutil.dll,-6102; C:\WINDOWS\system32\mqsvc.exe [2016-09-29 26112]
R2 NAUpdate;Nero Update; C:\Program Files (x86)\Nero\Update\NASvc.exe [2010-05-04 503080]
R2 NTI IScheduleSvc;NTI IScheduleSvc; C:\Program Files (x86)\NewTech Infosystems\Packard Bell MyBackup\IScheduleSvc.exe [2010-06-29 255744]
R2 NVDisplay.ContainerLocalSystem;NVIDIA Display Container LS; C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe [2016-12-29 458176]
R2 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [2013-09-05 1364256]
R2 OneSyncSvc_44eb0;Hostitel synchronizace_44eb0; C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup;"ServiceDll" =
R3 aswbIDSAgent;aswbIDSAgent; C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe [2017-04-04 7398336]
S2 CDPUserSvc;@%SystemRoot%\system32\cdpusersvc.dll,-100; %SystemRoot%\system32\svchost.exe -k UnistackSvcGroup;"ServiceDll" = %SystemRoot%\System32\CDPUserSvc.dll
S2 NetMsmqActivator;@%systemroot%\Microsoft.NET\Framework64\v4.0.30319\ServiceModelInstallRC.dll,-8195; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2016-07-16 136360]
S2 NetPipeActivator;@%systemroot%\Microsoft.NET\Framework64\v4.0.30319\ServiceModelInstallRC.dll,-8197; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2016-07-16 136360]
S2 NetTcpActivator;@%systemroot%\Microsoft.NET\Framework64\v4.0.30319\ServiceModelInstallRC.dll,-8199; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2016-07-16 136360]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2017-02-27 317400]
S3 Adobe LM Service;Adobe LM Service; C:\Program Files (x86)\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe [2012-11-29 72704]
S3 aspnet_state;@%SystemRoot%\Microsoft.NET\Framework64\v4.0.30319\aspnet_rc.dll,-1; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2016-07-16 52920]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2016-05-25 43696]
S3 FrameServer;@%systemroot%\system32\FrameServer.dll,-100; %SystemRoot%\System32\svchost.exe -k Camera;"ServiceDll" = %SystemRoot%\system32\FrameServer.dll
S3 GamesAppIntegrationService;GamesAppIntegrationService; C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe [2014-12-17 347200]
S3 GamesAppService;GamesAppService; C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe [2014-12-17 265808]
S3 gusvc;Google Software Updater; C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe [2013-03-14 194032]
S3 HvHost;@%SystemRoot%\system32\hvhostsvc.dll,-100; %SystemRoot%\system32\svchost.exe -k LocalSystemNetworkRestricted;"ServiceDll" = %SystemRoot%\System32\hvhostsvc.dll
S3 IDriverT;InstallDriver Table Manager; C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-04 69632]
S3 irmon;@%SystemRoot%\System32\irmon.dll,-2000; %SystemRoot%\system32\svchost.exe -k LocalSystemNetworkRestricted;"ServiceDll" = %SystemRoot%\System32\irmon.dll
S3 MessagingService_44eb0;Služba zasílání zpráv_44eb0; C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup;"ServiceDll" =
S3 Microsoft SharePoint Workspace Audit Service;Microsoft SharePoint Workspace Audit Service; C:\Program Files (x86)\Microsoft Office\Office14\GROOVE.EXE [2013-12-19 30814400]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352]
S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]
S3 PimIndexMaintenanceSvc_44eb0;Data kontaktů_44eb0; C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup;"ServiceDll" =
S3 RmSvc;@%SystemRoot%\system32\RMapi.dll,-1001; %SystemRoot%\System32\svchost.exe -k LocalServiceNetworkRestricted;"ServiceDll" = %SystemRoot%\System32\RMapi.dll
S3 Samsung UPD Service;Samsung UPD Service; C:\WINDOWS\System32\SUPDSvc.exe [2010-08-09 166704]
S3 ServiceLayer;ServiceLayer; C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe [2012-12-19 732648]
S4 shpamsvc;@%SystemRoot%\System32\Windows.SharedPC.AccountManager.dll,-100; %SystemRoot%\System32\svchost.exe -k netsvcs;"ServiceDll" = %systemroot%\system32\Windows.SharedPC.AccountManager.dll

-----------------EOF-----------------

Uživatelský avatar
Roli
VIP
VIP
Příspěvky: 13400
Registrován: 26 lis 2006 13:37
Bydliště: ČR

Re: Prosím o preventivní kontrolu - díky.

#3 Příspěvek od Roli »

Zdravím, jen trochu uklidíme :)


Smaž nepotřebné soubory

pomocí CCleaneru

návod :

Čistič - tady vyčistíš PC od nepotřebných souborů a vysypeš Koš

Registry - tady vyčistíš registry (před použitím doporučuji udělat jejich zálohu kterou CCleaner nabízí)

čištění registru je třeba několikrát zopakovat !

Nástroje - tady lze odinstalovat programy, upravit co se spustí po Startu systému a obnovit systém


Stáhni a spusť AdwCleaner,

ukonči všechny programy včetně prohlížeče a dvojklikem jej spusť,

objeví se okno kde vlevo nahoře klikni na Scan.

Po dokončení skenu klikni na Clean,

proběhne restart PC kdy dojde ke smazání nepořádku.

Po té mi sem zkopíruj Report.
| Rsit | Mbam | AVPTool | Cure It |

O víkendu odpočívám :all_coholic:

plch
Návštěvník
Návštěvník
Příspěvky: 68
Registrován: 27 led 2008 12:33

Re: Prosím o preventivní kontrolu - díky.

#4 Příspěvek od plch »

# AdwCleaner v6.045 - Log vytvořen 18/04/2017 v 16:46:15
# Aktualizováno dne 28/03/2017 z Malwarebytes
# Databáze : 2017-04-17.1 [Server]
# Operační systém : Windows 10 Home (X64)
# Uživatelské jméno : Petr - Petr-PC
# Spuštěno z : C:\Users\Petr\Desktop\adwcleaner_6.045.exe
# Mod: Skenování
# Podpora : https://www.malwarebytes.com/support



***** [ Služby ] *****

Nebyly nalezeny žádné škodlivé služby.


***** [ Složky ] *****

Složka nalezena: C:\Users\Petr\AppData\Local\Amigo
Složka nalezena: C:\Users\Petr\AppData\Local\DriverToolkit
Složka nalezena: C:\ProgramData\54F3DE4E-B7BA-4EBD-8B3B-385D272CC583
Složka nalezena: C:\Program Files (x86)\DriverToolkit


***** [ Soubory ] *****

Nebyly nalezeny žádné škodlivé soubory.


***** [ DLL ] *****

Nebyly nalezeny žádné škodlivé DLL.


***** [ WMI ] *****

Nebyly nalezeny žádné škodlivé klíče.


***** [ Zástupci ] *****

Žádný infikovaný zástupce nenalezen.


***** [ Naplánované úlohy ] *****

Naplánovaná úloha nalezena: DRIVERTOOLKIT AUTORUN


***** [ Registry ] *****

Klíč nalezen: HKLM\SOFTWARE\Classes\protector_dll.Protector
Klíč nalezen: HKLM\SOFTWARE\Classes\protector_dll.Protector.1
Klíč nalezen: HKLM\SOFTWARE\Classes\protector_dll.ProtectorLib
Klíč nalezen: HKLM\SOFTWARE\Classes\protector_dll.ProtectorLib.1
Klíč nalezen: [x64] HKLM\SOFTWARE\Classes\protector_dll.Protector
Klíč nalezen: [x64] HKLM\SOFTWARE\Classes\protector_dll.Protector.1
Klíč nalezen: [x64] HKLM\SOFTWARE\Classes\protector_dll.ProtectorLib
Klíč nalezen: [x64] HKLM\SOFTWARE\Classes\protector_dll.ProtectorLib.1
Klíč nalezen: HKU\S-1-5-21-1005467907-3126548956-2189493663-1001\Software\DriverToolkit
Klíč nalezen: HKCU\Software\DriverToolkit
Klíč nalezen: [x64] HKCU\Software\DriverToolkit
Klíč nalezen: HKLM\SOFTWARE\Classes\CLSID\ForeceRemove


***** [ Internetové prohlížeče ] *****

Nebyly nalezeny žádné škodlivé položky prohlížeče Firefox.
Chromium nastavení nalezeno: [C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Web data] - search.babylon.com
Chromium nastavení nalezeno: [C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Web data] - www2.inbox.com
Chromium nastavení nalezeno: [C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences ] - hidjnkeodmholilgafgdlgmgggbhnigl

*************************

C:\AdwCleaner\AdwCleaner[S0].txt - [2452 Bajty] - [18/04/2017 16:46:15]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [2525 Bajty] ##########

Uživatelský avatar
Roli
VIP
VIP
Příspěvky: 13400
Registrován: 26 lis 2006 13:37
Bydliště: ČR

Re: Prosím o preventivní kontrolu - díky.

#5 Příspěvek od Roli »

Ještě použij Mbam z mého podpisu a dej mi sem z něj log po smazání nepořádku.
| Rsit | Mbam | AVPTool | Cure It |

O víkendu odpočívám :all_coholic:

plch
Návštěvník
Návštěvník
Příspěvky: 68
Registrován: 27 led 2008 12:33

Re: Prosím o preventivní kontrolu - díky.

#6 Příspěvek od plch »

Vkládám log.


Malwarebytes
www.malwarebytes.com

-Podrobnosti logovacího souboru-
Datum skenování: 26.04.17
Čas skenování: 14:14
Logovací soubor: a.txt
Správce: Ano

-Informace o softwaru-
Verze: 3.0.6.1469
Verze komponentů: 1.0.103
Aktualizovat verzi balíku komponent: 1.0.1812
Licence: Zkušební

-Systémová informace-
OS: Windows 10
CPU: x64
Systém souborů: NTFS
Uživatel: Petr-PC\Petr

-Shrnutí skenování-
Typ skenování: Skenování hrozeb (Threat Scan)
Výsledek: Dokončeno
Skenované objekty: 488060
Uplynulý čas: 14 min, 9 sek

-Možnosti skenování-
Paměť: Povoleno
Start: Povoleno
Systém souborů: Povoleno
Archivy: Povoleno
Rootkity: Zakázáno
Heuristika: Povoleno
Potenciálně nežádoucí program: Povoleno
Potenciálně nežádoucí modifikace: Povoleno

-Podrobnosti skenování-
Proces: 0
(Nebyly zjištěny žádné škodlivé položky)

Modul: 0
(Nebyly zjištěny žádné škodlivé položky)

Klíč registru: 1
PUP.Optional.PrxySvrRST, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\NLASVC\PARAMETERS\INTERNET\MANUALPROXIES, Žádná uživatelská akce, [6911], [-1],0.0.0

Hodnota v registru: 4
PUP.Optional.PrxySvrRST, HKU\S-1-5-18\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\INTERNET SETTINGS|PROXYENABLE, Žádná uživatelská akce, [6911], [-1],0.0.0
PUP.Optional.PrxySvrRST, HKU\S-1-5-21-1005467907-3126548956-2189493663-1000\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\INTERNET SETTINGS|PROXYENABLE, Žádná uživatelská akce, [6911], [-1],0.0.0
PUP.Optional.PrxySvrRST, HKU\S-1-5-21-1005467907-3126548956-2189493663-1001\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\INTERNET SETTINGS|PROXYENABLE, Žádná uživatelská akce, [6911], [-1],0.0.0
PUP.Optional.PrxySvrRST, HKU\.DEFAULT\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\INTERNET SETTINGS|PROXYENABLE, Žádná uživatelská akce, [6911], [-1],0.0.0

Data registrů: 0
(Nebyly zjištěny žádné škodlivé položky)

Datové proudy: 0
(Nebyly zjištěny žádné škodlivé položky)

Adresář: 3
Adware.ChinAd, C:\ProgramData\Thunder Network\DownloadLib, Žádná uživatelská akce, [1096], [374745],1.0.1812
Adware.ChinAd, C:\PROGRAMDATA\THUNDER NETWORK, Žádná uživatelská akce, [1096], [374745],1.0.1812
PUP.Optional.PrxySvrRST, C:\USERS\PETR\APPDATA\ROAMING\UPDATER, Žádná uživatelská akce, [6911], [234117],1.0.1812

Soubor: 3
PUP.Optional.AshampooRegistryCleaner, C:\PROGRAMDATA\ASHAMPOO\ICO_ASHAMPOO_MARKETPLACE.ICO, Žádná uživatelská akce, [2576], [355157],1.0.1812
Adware.ChinAd, C:\PROGRAMDATA\THUNDER NETWORK\DOWNLOADLIB\PUB_STORE.DAT, Žádná uživatelská akce, [1096], [374745],1.0.1812
PUP.Optional.PrxySvrRST, C:\USERS\PETR\APPDATA\ROAMING\UPDATER\WINUPD.EXE, Žádná uživatelská akce, [6911], [74565],1.0.1812

Fyzický sektor: 0
(Nebyly zjištěny žádné škodlivé položky)


(end)

Uživatelský avatar
Roli
VIP
VIP
Příspěvky: 13400
Registrován: 26 lis 2006 13:37
Bydliště: ČR

Re: Prosím o preventivní kontrolu - díky.

#7 Příspěvek od Roli »

To co Mbam našel nech smazat a pokud není s PC nějaký problém je to z mé strany vše.
| Rsit | Mbam | AVPTool | Cure It |

O víkendu odpočívám :all_coholic:

plch
Návštěvník
Návštěvník
Příspěvky: 68
Registrován: 27 led 2008 12:33

Re: Prosím o preventivní kontrolu - díky.

#8 Příspěvek od plch »

Díky moc.

Uživatelský avatar
Roli
VIP
VIP
Příspěvky: 13400
Registrován: 26 lis 2006 13:37
Bydliště: ČR

Re: Prosím o preventivní kontrolu - díky.

#9 Příspěvek od Roli »

plch píše:Díky moc.
Není zač a :closed:
| Rsit | Mbam | AVPTool | Cure It |

O víkendu odpočívám :all_coholic:

Zamčeno