Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Preventivní kontrola

Nemáte v tuto chvíli žádný problém s pc a chcete se jen ujistit, že je vše v pořádku?
Vložte log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Odpovědět
Zpráva
Autor
Ejcej
Návštěvník
Návštěvník
Příspěvky: 29
Registrován: 24 črc 2011 20:31

Preventivní kontrola

#1 Příspěvek od Ejcej »

Dobrý den. Chtěl bych poprosit o preventivní kontrolu, zda je vše OK.

Kód: Vybrat vše

Logfile of random's system information tool 1.10 (written by random/random)
Run by OEM at 2017-07-25 20:47:53
Microsoft Windows 10 Home 
System drive C: has 505 GB (72%) free of 699 GB
Total RAM: 3911 MB (48% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 20:48:14, on 25. 7. 2017
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.15063.0000)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\Launch Manager\LManager.exe
C:\Users\OEM\AppData\Local\Microsoft\OneDrive\OneDrive.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe
C:\Program Files\trend micro\OEM.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://acer13.msn.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://acer13.msn.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = 
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = 
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = 
F2 - REG:system.ini: UserInit=
O2 - BHO: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\PROGRA~2\MICROS~1\Office15\GROOVEEX.DLL
O4 - HKLM\..\Run: [RadioController] "C:\Program Files (x86)\RadioController\RfBtnHelper.exe" Start_Run
O4 - HKLM\..\Run: [SDTray] "C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files (x86)\Common Files\Ahead\Lib\NMBgMonitor.exe"
O4 - HKCU\..\Run: [Zoner Photo Studio Autoupdate] "C:\PROGRAM FILES\ZONER\PHOTO STUDIO 16\Program32\ZPSTRAY.EXE"
O4 - HKCU\..\Run: [OneDrive] "C:\Users\OEM\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
O4 - HKLM\..\Policies\Explorer\Run: [BtvStack] "C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe"
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O4 - Startup: Sidebar.lnk = C:\Program Files\Windows Sidebar\sidebar.exe
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~1\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: E&xportovat do Microsoft Excelu - res://C:\PROGRA~1\MICROS~1\Office15\EXCEL.EXE/3000
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files (x86)\Microsoft Office\Office15\MSOSB.DLL
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O18 - Filter hijack: text/xml - {807583E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\MSOXMLMF.DLL
O20 - Winlogon Notify: SDWinLogon - SDWinLogon.dll (file missing)
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: AtherosSvc - Qualcomm Atheros Commnucations - C:\Program Files (x86)\Bluetooth Suite\adminservice.exe
O23 - Service: Broadcom Card Reader Service (BrcmCardReader) - Broadcom Corp. - C:\Program Files\Broadcom\MemoryCard\BrcmCardReader.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: Device Fast-lane Service (DeviceFastLaneService) - Acer Incorporated - C:\Program Files\Acer\Acer Device Fast-lane\DeviceFastLaneSvc.exe
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: Dritek WMI Service (DsiWMIService) - Dritek System Inc. - C:\Program Files (x86)\Launch Manager\dsiwmis.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET Smart Security\ekrn.exe
O23 - Service: ePower Service (ePowerSvc) - Acer Incorporated - C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe
O23 - Service: Elan Service (ETDService) - ELAN Microelectronics Corp. - C:\Program Files\Elantech\ETDService.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) - Unknown owner - C:\WINDOWS\system32\igfxCUIService.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: IviRegMgr - InterVideo - C:\Program Files (x86)\Common Files\InterVideo\RegMgr\iviRegMgr.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: NMIndexingService - Nero AG - C:\Program Files (x86)\Common Files\Ahead\Lib\NMIndexingService.exe
O23 - Service: Protexis Licensing V2 (PSI_SVC_2) - Protexis Inc. - C:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe
O23 - Service: Dritek RF Button Command Service (RfButtonDriverService) - Dritek System INC. - C:\Windows\RfBtnSvc64.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Spybot-S&D 2 Scanner Service (SDScannerService) - Safer-Networking Ltd. - C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe
O23 - Service: Spybot-S&D 2 Updating Service (SDUpdateService) - Safer-Networking Ltd. - C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe
O23 - Service: Spybot-S&D 2 Security Center Service (SDWSCService) - Safer-Networking Ltd. - C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe
O23 - Service: @%systemroot%\system32\SecurityHealthAgent.dll,-1002 (SecurityHealthService) - Unknown owner - C:\WINDOWS\system32\SecurityHealthService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spectrum.exe,-101 (spectrum) - Unknown owner - C:\WINDOWS\system32\spectrum.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\WINDOWS\system32\TieringEngineService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 11001 bytes

======Listing Processes======








winlogon.exe
C:\WINDOWS\system32\lsass.exe
"fontdrvhost.exe"
"fontdrvhost.exe"
c:\windows\system32\svchost.exe -k dcomlaunch -s PlugPlay
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
c:\windows\system32\svchost.exe -k rpcss
c:\windows\system32\svchost.exe -k dcomlaunch -s LSM
"dwm.exe"
c:\windows\system32\svchost.exe -k localservice -s bthserv
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
c:\windows\system32\svchost.exe -k netsvcs -s Schedule
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -s NcbService
c:\windows\system32\svchost.exe -k localservicenetworkrestricted -s TimeBrokerSvc
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -s hidserv
c:\windows\system32\svchost.exe -k netsvcs -s ProfSvc
c:\windows\system32\svchost.exe -k localservicenetworkrestricted -s EventLog
c:\windows\system32\svchost.exe -k localservice -s nsi
c:\windows\system32\svchost.exe -k netsvcs -s UserManager
c:\windows\system32\svchost.exe -k appmodel -s StateRepository
c:\windows\system32\svchost.exe -k localservicenetworkrestricted -s Dhcp
c:\windows\system32\svchost.exe -k networkservice -s NlaSvc

C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted
c:\windows\system32\svchost.exe -k localservice -s netprofm
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-5baaa7e8-0c95-47ff-a87c-1c008973e491 -SystemEventPortName:HostProcess-5b4534f7-4a75-4144-8ec8-a7b2618e0ddc -IoCancelEventPortName:HostProcess-e768610e-929c-4d45-a9fb-b7e6dd317070 -NonStateChangingEventPortName:HostProcess-d4e3427d-c506-43f2-8ad8-d3bc2773325f -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:daef5496-266c-4b07-acdb-7bfe3c509ed8 -DeviceGroupId:WpdFsGroup
c:\windows\system32\svchost.exe -k localservice -s EventSystem
c:\windows\system32\svchost.exe -k netsvcs -s Themes
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -s DeviceAssociationService
c:\windows\system32\svchost.exe -k netsvcs -s SENS
C:\WINDOWS\system32\igfxCUIService.exe
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -s AudioEndpointBuilder
c:\windows\system32\svchost.exe -k localservice -s FontCache
dashost.exe {a640032d-b991-4712-8db2d222de34c851}
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
c:\windows\system32\svchost.exe -k localserviceandnoimpersonation -s SSDPSRV
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
c:\windows\system32\svchost.exe -k networkservice -s Dnscache
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted
c:\windows\system32\svchost.exe -k netsvcs -s ShellHWDetection
C:\WINDOWS\System32\spoolsv.exe
c:\windows\system32\svchost.exe -k networkservice -s LanmanWorkstation
"C:\Program Files (x86)\Bluetooth Suite\adminservice.exe"
"C:\Program Files\Broadcom\MemoryCard\BrcmCardReader.exe"
c:\windows\system32\svchost.exe -k networkservice -s CryptSvc
C:\WINDOWS\System32\svchost.exe -k utcsvc
c:\windows\system32\svchost.exe -k localservicenonetwork -s DPS
"C:\Program Files\Elantech\ETDService.exe"
c:\windows\system32\svchost.exe -k localservice -s WinHttpAutoProxySvc
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -s PcaSvc
c:\windows\system32\svchost.exe -k netsvcs -s Winmgmt
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Program Files\Intel\iCLS Client\HeciServer.exe"
C:\Windows\RfBtnSvc64.exe
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -s TrkWks
c:\windows\system32\svchost.exe -k appmodel -s tiledatamodelsvc
c:\windows\system32\svchost.exe -k netsvcs -s WpnService
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -s SysMain
"C:\Program Files (x86)\Launch Manager\dsiwmis.exe"

c:\windows\system32\svchost.exe -k netsvcs -s iphlpsvc
c:\windows\system32\svchost.exe -k localservicenetworkrestricted -s wscsvc

c:\windows\system32\svchost.exe -k localservice -s WdiServiceHost
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe"
c:\windows\system32\svchost.exe -k netsvcs -s LanmanServer
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe"
c:\windows\system32\svchost.exe -k networkservicenetworkrestricted -s PolicyAgent
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\Program Files\ESET\ESET Smart Security\egui.exe" /hide
"C:\Program Files (x86)\Launch Manager\LMutilps32.exe" --system-level --system-level-mutex="Local\{B904A927-FE6B-48fd-8C83-6B807BED1F9C}" --enable-wmi-window --enable-setforeground-window --enable-kbhook-window
"C:\Program Files\Elantech\ETDCtrl.exe"
sihost.exe
c:\windows\system32\svchost.exe -k unistacksvcgroup -s CDPUserSvc
c:\windows\system32\svchost.exe -k unistacksvcgroup -s WpnUserService
taskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E}
c:\windows\system32\svchost.exe -k netsvcs -s TokenBroker
C:\WINDOWS\Explorer.EXE
"C:\Program Files (x86)\Launch Manager\LManager.exe"
c:\windows\system32\svchost.exe -k localservice -s CDPSvc
C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files\Acer\Acer Power Management\ePowerTray.exe"
igfxEM.exe 
igfxHK.exe 
"C:\Program Files (x86)\Launch Manager\MMDx64Fx.exe"
C:\WINDOWS\system32\igfxext.exe -Embedding
c:\windows\system32\svchost.exe -k netsvcs -s Appinfo
"C:\Program Files\Elantech\ETDCtrlHelper.exe" 
c:\windows\system32\svchost.exe -k netsvcs
"C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
"C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe" -ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.19.820.0_x64__kzf8qxf38zg5c\SkypeHost.exe" -ServerName:SkypeHost.ServerServer
c:\windows\system32\svchost.exe -k netsvcs -s DoSvc
c:\windows\system32\svchost.exe -k unistacksvcgroup
"C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe" 
"C:\Program Files\Windows Defender\MSASCuiL.exe" 
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Users\OEM\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -s WdiSystemHost
"C:\Program Files (x86)\Bluetooth Suite\ActivateDesktop.exe"
"C:\Program Files (x86)\Common Files\InterVideo\RegMgr\iviRegMgr.exe"
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -s StorSvc
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe" 
"C:\WINDOWS\system32\taskmgr.exe" /4
"C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe"
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files\Acer\Acer Power Management\ePowerEvent.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
C:\WINDOWS\system32\DllHost.exe /Processid:{973D20D7-562D-44B9-B70B-5A0F49CCDF3F}
C:\WINDOWS\system32\ApplicationFrameHost.exe -Embedding
c:\windows\system32\svchost.exe -k localservice -s LicenseManager
c:\windows\system32\svchost.exe -k netsvcs -s lfsvc
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -s DsSvc
"C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2017.18062.13720.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe" -ServerName:App.AppXzst44mncqdg84v7sv6p7yznqwssy6f7f.mca
"C:\WINDOWS\system32\wwahost.exe" -ServerName:App.wwa
C:\Windows\System32\smartscreen.exe -Embedding
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" 
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=crashpad-handler /prefetch:7 --monitor-self-annotation=ptype=crashpad-handler "--database=C:\Users\OEM\AppData\Local\Google\Chrome\User Data\Crashpad" "--metrics-dir=C:\Users\OEM\AppData\Local\Google\Chrome\User Data" --url=https://clients2.google.com/cr/report --annotation=channel= --annotation=plat=Win64 --annotation=prod=Chrome --annotation=ver=59.0.3071.115 --initial-client-data=0x1e8,0x1ec,0x1f0,0x1e4,0x1f4,0x7ffd24d519d0,0x7ffd24d519b8,0x7ffd24d519e8
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=watcher --main-thread-id=9968 --on-initialized-event-handle=636 --parent-handle=640 /prefetch:6
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --field-trial-handle=1672 --supports-dual-gpus=false --gpu-driver-bug-workarounds=7,10,11,20,24,26,43,63,76 --disable-gl-extensions="GL_KHR_blend_equation_advanced GL_KHR_blend_equation_advanced_coherent" --gpu-vendor-id=0x8086 --gpu-device-id=0x0156 --gpu-driver-vendor="Intel Corporation" --gpu-driver-version=10.18.10.4358 --gpu-driver-date=12-21-2015 --service-request-channel-token=28FF2A2D12D29FB615A715F3B5A576A9 --mojo-platform-channel-handle=1696 --ignored=" --type=renderer " /prefetch:2
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --field-trial-handle=1672 --primordial-pipe-token=009BCB8175891DB39EFC18261FA3C2AB --lang=cs --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --blink-settings=disallowFetchForDocWrittenScriptsInMainFrame=false,disallowFetchForDocWrittenScriptsInMainFrameOnSlowConnections=false --enable-pinch --device-scale-factor=1 --num-raster-threads=1 --content-image-texture-target=0,0,3553;0,1,3553;0,2,3553;0,3,3553;0,4,3553;0,5,3553;0,6,3553;0,7,3553;0,8,3553;0,9,3553;0,10,3553;0,11,3553;0,12,3553;0,13,3553;0,14,3553;0,15,3553;0,16,3553;1,0,3553;1,1,3553;1,2,3553;1,3,3553;1,4,3553;1,5,3553;1,6,3553;1,7,3553;1,8,3553;1,9,3553;1,10,3553;1,11,3553;1,12,3553;1,13,3553;1,14,3553;1,15,3553;1,16,3553;2,0,3553;2,1,3553;2,2,3553;2,3,3553;2,4,3553;2,5,3553;2,6,3553;2,7,3553;2,8,3553;2,9,3553;2,10,3553;2,11,3553;2,12,3553;2,13,3553;2,14,3553;2,15,3553;2,16,3553;3,0,3553;3,1,3553;3,2,3553;3,3,3553;3,4,3553;3,5,3553;3,6,3553;3,7,3553;3,8,3553;3,9,3553;3,10,3553;3,11,3553;3,12,3553;3,13,3553;3,14,3553;3,15,3553;3,16,3553;4,0,3553;4,1,3553;4,2,3553;4,3,3553;4,4,3553;4,5,3553;4,6,3553;4,7,3553;4,8,3553;4,9,3553;4,10,3553;4,11,3553;4,12,3553;4,13,3553;4,14,3553;4,15,3553;4,16,3553 --service-request-channel-token=009BCB8175891DB39EFC18261FA3C2AB --renderer-client-id=5 --mojo-platform-channel-handle=2404 /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --field-trial-handle=1672 --primordial-pipe-token=D7710E400A7F443EE1B8F4E25016C6D9 --lang=cs --extension-process --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --blink-settings=disallowFetchForDocWrittenScriptsInMainFrame=false,disallowFetchForDocWrittenScriptsInMainFrameOnSlowConnections=false --enable-pinch --device-scale-factor=1 --num-raster-threads=1 --content-image-texture-target=0,0,3553;0,1,3553;0,2,3553;0,3,3553;0,4,3553;0,5,3553;0,6,3553;0,7,3553;0,8,3553;0,9,3553;0,10,3553;0,11,3553;0,12,3553;0,13,3553;0,14,3553;0,15,3553;0,16,3553;1,0,3553;1,1,3553;1,2,3553;1,3,3553;1,4,3553;1,5,3553;1,6,3553;1,7,3553;1,8,3553;1,9,3553;1,10,3553;1,11,3553;1,12,3553;1,13,3553;1,14,3553;1,15,3553;1,16,3553;2,0,3553;2,1,3553;2,2,3553;2,3,3553;2,4,3553;2,5,3553;2,6,3553;2,7,3553;2,8,3553;2,9,3553;2,10,3553;2,11,3553;2,12,3553;2,13,3553;2,14,3553;2,15,3553;2,16,3553;3,0,3553;3,1,3553;3,2,3553;3,3,3553;3,4,3553;3,5,3553;3,6,3553;3,7,3553;3,8,3553;3,9,3553;3,10,3553;3,11,3553;3,12,3553;3,13,3553;3,14,3553;3,15,3553;3,16,3553;4,0,3553;4,1,3553;4,2,3553;4,3,3553;4,4,3553;4,5,3553;4,6,3553;4,7,3553;4,8,3553;4,9,3553;4,10,3553;4,11,3553;4,12,3553;4,13,3553;4,14,3553;4,15,3553;4,16,3553 --service-request-channel-token=D7710E400A7F443EE1B8F4E25016C6D9 --renderer-client-id=4 --mojo-platform-channel-handle=3780 /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --field-trial-handle=1672 --primordial-pipe-token=0438B58A0492C8377C657E40F6524CF0 --lang=cs --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --blink-settings=disallowFetchForDocWrittenScriptsInMainFrame=false,disallowFetchForDocWrittenScriptsInMainFrameOnSlowConnections=false --enable-pinch --device-scale-factor=1 --num-raster-threads=1 --content-image-texture-target=0,0,3553;0,1,3553;0,2,3553;0,3,3553;0,4,3553;0,5,3553;0,6,3553;0,7,3553;0,8,3553;0,9,3553;0,10,3553;0,11,3553;0,12,3553;0,13,3553;0,14,3553;0,15,3553;0,16,3553;1,0,3553;1,1,3553;1,2,3553;1,3,3553;1,4,3553;1,5,3553;1,6,3553;1,7,3553;1,8,3553;1,9,3553;1,10,3553;1,11,3553;1,12,3553;1,13,3553;1,14,3553;1,15,3553;1,16,3553;2,0,3553;2,1,3553;2,2,3553;2,3,3553;2,4,3553;2,5,3553;2,6,3553;2,7,3553;2,8,3553;2,9,3553;2,10,3553;2,11,3553;2,12,3553;2,13,3553;2,14,3553;2,15,3553;2,16,3553;3,0,3553;3,1,3553;3,2,3553;3,3,3553;3,4,3553;3,5,3553;3,6,3553;3,7,3553;3,8,3553;3,9,3553;3,10,3553;3,11,3553;3,12,3553;3,13,3553;3,14,3553;3,15,3553;3,16,3553;4,0,3553;4,1,3553;4,2,3553;4,3,3553;4,4,3553;4,5,3553;4,6,3553;4,7,3553;4,8,3553;4,9,3553;4,10,3553;4,11,3553;4,12,3553;4,13,3553;4,14,3553;4,15,3553;4,16,3553 --service-request-channel-token=0438B58A0492C8377C657E40F6524CF0 --renderer-client-id=9 --mojo-platform-channel-handle=4356 /prefetch:1
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe7_ Global\UsGthrCtrlFltPipeMssGthrPipe7 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon" 
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 688 692 700 8192 696 
taskhostw.exe
C:\WINDOWS\system32\AUDIODG.EXE 0x2cc
C:\WINDOWS\system32\DllHost.exe /Processid:{133EAC4F-5891-4D04-BADA-D84870380A80}
"C:\Users\OEM\Downloads\RSITx64.exe" 

======Scheduled tasks folder======

C:\WINDOWS\tasks\AutoKMS.job - C:\Windows\AutoKMS\AutoKMS.exe  
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA1cf6a9cc4df6bf3.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe  /ua /installsource scheduler 
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA1d0408858bc386c.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe  /ua /installsource scheduler 

=========Mozilla firefox=========

ProfilePath - C:\Users\OEM\AppData\Roaming\Mozilla\Firefox\Profiles\k1oa3f6d.default

prefs.js - "browser.startup.homepage" -  "http://www.seznam.cz/"
prefs.js - "keyword.URL" -  "http://www.bing.com/search?FORM=UP97DF&PC=UP97&q="

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 26.0.0.137 Plugin
"Path"=C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_26_0_0_137.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/ShockwavePlayer]
"Description"=Adobe Shockwave Player
"Path"=C:\WINDOWS\SysWOW64\Adobe\Director\np32dsw_1224194.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42]
"Description"=Intel IPT WebApi plugin
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI updater]
"Description"=This plugin updates Intel WebAPI component
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/Lync,version=15.0]
"Description"=Microsoft Lync Plug-in for Firefox
"Path"=C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files (x86)\Microsoft Silverlight\5.1.50907.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=C:\PROGRA~2\MICROS~1\Office15\NPSPWRAP.DLL

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/WLPG,version=16.4.3528.0331]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 26.0.0.137 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF64_26_0_0_137.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=11.141.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files\Java\jre1.8.0_141\bin\dtplugin\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin,version=11.141.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre1.8.0_141\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files\Microsoft Silverlight\5.1.50907.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=C:\PROGRA~1\MICROS~1\Office15\NPSPWRAP.DLL

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@videolan.org/vlc,version=2.2.2]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files\VideoLAN\VLC\npvlc.dll


C:\Program Files (x86)\Mozilla Firefox\plugins\
npMeetingJoinPluginOC.dll
nppdf32.dll

C:\Users\OEM\AppData\Roaming\Mozilla\Firefox\Profiles\k1oa3f6d.default\extensions\
{ea614400-e918-4741-9a97-7a972ff7c30b}

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Skype for Business Browser Helper - C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2017-06-13 229072]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre1.8.0_141\bin\ssv.dll [2017-07-25 571968]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8D10F6C4-0E01-4BD4-8601-11AC1FDF8126}]
CIESpeechBHO Class - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll [2013-01-25 66688]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre1.8.0_141\bin\jp2ssv.dll [2017-07-25 235584]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft SkyDrive Pro Browser Helper - C:\PROGRA~2\MICROS~1\Office15\GROOVEEX.DLL [2017-02-23 1743664]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SecurityHealth"=C:\Program Files\Windows Defender\MSASCuiL.exe [2017-03-18 629152]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2012-06-11 12503184]
"ETDCtrl"=C:\Program Files\Elantech\ETDCtrl.exe [2015-10-07 3242696]
"IgfxTray"=C:\WINDOWS\system32\igfxtray.exe [2016-05-03 391648]
"HotKeysCmds"=C:\WINDOWS\system32\hkcmd.exe []
"Persistence"=C:\WINDOWS\system32\igfxpers.exe []

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run]
"BtvStack"=C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe [2013-01-25 131712]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"=C:\Program Files (x86)\Common Files\Ahead\Lib\NMBgMonitor.exe [2008-01-22 152872]
"Zoner Photo Studio Autoupdate"=C:\PROGRAM FILES\ZONER\PHOTO STUDIO 16\Program32\ZPSTRAY.EXE [2014-12-23 833240]
"OneDrive"=C:\Users\OEM\AppData\Local\Microsoft\OneDrive\OneDrive.exe [2017-07-25 1536208]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"RadioController"=C:\Program Files (x86)\RadioController\RfBtnHelper.exe [2013-06-15 111216]
"SDTray"=C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe [2017-05-23 4174464]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2017-07-12 587288]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run]
"BtvStack"=C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe [2013-01-25 131712]

C:\Users\OEM\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Sidebar.lnk - C:\Program Files\Windows Sidebar\sidebar.exe

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iai2c.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SpbCx.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TileDataModelSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\uefi.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetSetupSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SpbCx.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TileDataModelSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\uefi.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DSCAutomationHostEnabled"=2

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe"="C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe:*:Enabled:Spybot - Search & Destroy tray access"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe"="C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe:*:Enabled:Spybot-S&D 2 Scanner Service"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe"="C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe:*:Enabled:Spybot-S&D 2 Updater"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe"="C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe:*:Enabled:Spybot-S&D 2 Background update service"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.l3acm"=l3codeca.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"wave2"=wdmaud.drv
"mixer2"=wdmaud.drv
"midi2"=wdmaud.drv
"VIDC.LAGS"=lagarith.dll
"VIDC.X264"=x264vfw64.dll
"VIDC.XVID"=xvidvfw.dll
"msacm.ac3acm"=ac3acm.acm
"msacm.l3codecp"=l3codecp.acm

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2017-07-25 20:47:54 ----D---- C:\Program Files\trend micro
2017-07-25 20:47:53 ----D---- C:\rsit
2017-07-25 20:14:34 ----D---- C:\WINDOWS\PCHEALTH
2017-07-25 19:37:22 ----D---- C:\Users\OEM\AppData\Roaming\Sun
2017-07-25 19:37:18 ----A---- C:\WINDOWS\system32\WindowsAccessBridge-64.dll
2017-07-25 19:36:27 ----D---- C:\Program Files\Java
2017-07-25 19:34:53 ----D---- C:\AdwCleaner
2017-07-25 19:32:35 ----D---- C:\Users\OEM\AppData\Roaming\MPC-HC
2017-07-25 19:25:07 ----A---- C:\WINDOWS\SYSWOW64\lagarith.dll
2017-07-25 19:25:07 ----A---- C:\WINDOWS\system32\lagarith.dll
2017-07-25 19:25:06 ----A---- C:\WINDOWS\system32\x264vfw64.dll
2017-07-25 19:25:05 ----A---- C:\WINDOWS\SYSWOW64\x264vfw.dll
2017-07-25 19:25:05 ----A---- C:\WINDOWS\system32\xvidvfw.dll
2017-07-25 19:25:05 ----A---- C:\WINDOWS\system32\xvidcore.dll
2017-07-25 19:25:04 ----A---- C:\WINDOWS\SYSWOW64\xvidcore.dll
2017-07-25 19:25:03 ----A---- C:\WINDOWS\SYSWOW64\xvidvfw.dll
2017-07-25 19:25:02 ----A---- C:\WINDOWS\SYSWOW64\ff_vfw.dll
2017-07-25 19:24:24 ----AD---- C:\Program Files (x86)\K-Lite Codec Pack
2017-07-25 19:06:42 ----A---- C:\WINDOWS\system32\sdnclean64.exe
2017-07-23 14:11:48 ----A---- C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2017-07-23 12:27:02 ----D---- C:\ProgramData\Microsoft OneDrive
2017-07-23 12:23:14 ----A---- C:\WINDOWS\system32\{F33C3B9B-72AF-418A-B3FD-560646F7CDA2}.bat
2017-07-23 11:38:54 ----SHD---- C:\Recovery
2017-07-23 11:34:18 ----D---- C:\Windows.old
2017-07-23 11:31:19 ----A---- C:\WINDOWS\SYSWOW64\wmpmde.dll
2017-07-23 11:31:19 ----A---- C:\WINDOWS\SYSWOW64\credprovhost.dll
2017-07-23 11:31:19 ----A---- C:\WINDOWS\system32\wmpmde.dll
2017-07-23 11:31:19 ----A---- C:\WINDOWS\system32\SecurityHealthService.exe
2017-07-23 11:31:18 ----A---- C:\WINDOWS\SYSWOW64\WindowsCodecsExt.dll
2017-07-23 11:31:18 ----A---- C:\WINDOWS\SYSWOW64\Windows.System.Profile.RetailInfo.dll
2017-07-23 11:31:18 ----A---- C:\WINDOWS\SYSWOW64\Windows.Payments.dll
2017-07-23 11:31:18 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Bluetooth.dll
2017-07-23 11:31:18 ----A---- C:\WINDOWS\SYSWOW64\thumbcache.dll
2017-07-23 11:31:18 ----A---- C:\WINDOWS\SYSWOW64\rasapi32.dll
2017-07-23 11:31:18 ----A---- C:\WINDOWS\SYSWOW64\policymanager.dll
2017-07-23 11:31:18 ----A---- C:\WINDOWS\SYSWOW64\MbaeApi.dll
2017-07-23 11:31:18 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2017-07-23 11:31:18 ----A---- C:\WINDOWS\SYSWOW64\gdi32.dll
2017-07-23 11:31:18 ----A---- C:\WINDOWS\SYSWOW64\CloudExperienceHostUser.dll
2017-07-23 11:31:18 ----A---- C:\WINDOWS\SYSWOW64\CloudExperienceHostCommon.dll
2017-07-23 11:31:18 ----A---- C:\WINDOWS\SYSWOW64\AzureSettingSyncProvider.dll
2017-07-23 11:31:18 ----A---- C:\WINDOWS\SYSWOW64\aadtb.dll
2017-07-23 11:31:17 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.Resources.dll
2017-07-23 11:31:17 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.dll
2017-07-23 11:31:17 ----A---- C:\WINDOWS\SYSWOW64\Unistore.dll
2017-07-23 11:31:17 ----A---- C:\WINDOWS\SYSWOW64\LicenseManager.dll
2017-07-23 11:31:17 ----A---- C:\WINDOWS\SYSWOW64\dwmcore.dll
2017-07-23 11:31:17 ----A---- C:\WINDOWS\SYSWOW64\d3d10warp.dll
2017-07-23 11:31:17 ----A---- C:\WINDOWS\SYSWOW64\ClipboardServer.dll
2017-07-23 11:31:17 ----A---- C:\WINDOWS\SYSWOW64\ActiveSyncProvider.dll
2017-07-23 11:31:16 ----A---- C:\WINDOWS\SYSWOW64\WWAHost.exe
2017-07-23 11:31:16 ----A---- C:\WINDOWS\SYSWOW64\WpcWebFilter.dll
2017-07-23 11:31:16 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2017-07-23 11:31:16 ----A---- C:\WINDOWS\SYSWOW64\Windows.Internal.Management.dll
2017-07-23 11:31:16 ----A---- C:\WINDOWS\SYSWOW64\Windows.Data.Pdf.dll
2017-07-23 11:31:11 ----A---- C:\WINDOWS\SYSWOW64\InstallAgentUserBroker.exe
2017-07-23 11:31:11 ----A---- C:\WINDOWS\SYSWOW64\InstallAgent.exe
2017-07-23 11:31:11 ----A---- C:\WINDOWS\SYSWOW64\dmcmnutils.dll
2017-07-23 11:31:11 ----A---- C:\WINDOWS\SYSWOW64\dcomp.dll
2017-07-23 11:31:11 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_47.dll
2017-07-23 11:31:10 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2017-07-23 11:31:10 ----A---- C:\WINDOWS\SYSWOW64\rastls.dll
2017-07-23 11:31:10 ----A---- C:\WINDOWS\SYSWOW64\msftedit.dll
2017-07-23 11:31:10 ----A---- C:\WINDOWS\SYSWOW64\mos.dll
2017-07-23 11:31:10 ----A---- C:\WINDOWS\SYSWOW64\MapRouter.dll
2017-07-23 11:31:10 ----A---- C:\WINDOWS\SYSWOW64\eapprovp.dll
2017-07-23 11:31:10 ----A---- C:\WINDOWS\SYSWOW64\BingMaps.dll
2017-07-23 11:31:09 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.Maps.dll
2017-07-23 11:31:09 ----A---- C:\WINDOWS\SYSWOW64\windows.storage.dll
2017-07-23 11:31:09 ----A---- C:\WINDOWS\SYSWOW64\Windows.Internal.Bluetooth.dll
2017-07-23 11:31:09 ----A---- C:\WINDOWS\SYSWOW64\raschap.dll
2017-07-23 11:31:09 ----A---- C:\WINDOWS\SYSWOW64\edputil.dll
2017-07-23 11:31:09 ----A---- C:\WINDOWS\SYSWOW64\ActivationManager.dll
2017-07-23 11:31:08 ----A---- C:\WINDOWS\SYSWOW64\winmde.dll
2017-07-23 11:31:08 ----A---- C:\WINDOWS\SYSWOW64\WindowsCodecs.dll
2017-07-23 11:31:08 ----A---- C:\WINDOWS\SYSWOW64\ucrtbase.dll
2017-07-23 11:31:08 ----A---- C:\WINDOWS\SYSWOW64\tquery.dll
2017-07-23 11:31:08 ----A---- C:\WINDOWS\SYSWOW64\SndVolSSO.dll
2017-07-23 11:31:08 ----A---- C:\WINDOWS\SYSWOW64\SearchProtocolHost.exe
2017-07-23 11:31:08 ----A---- C:\WINDOWS\SYSWOW64\ntdll.dll
2017-07-23 11:31:08 ----A---- C:\WINDOWS\SYSWOW64\mssrch.dll
2017-07-23 11:31:08 ----A---- C:\WINDOWS\SYSWOW64\d2d1.dll
2017-07-23 11:31:08 ----A---- C:\WINDOWS\SYSWOW64\bcastdvr.exe
2017-07-23 11:31:07 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.dll
2017-07-23 11:31:07 ----A---- C:\WINDOWS\SYSWOW64\MSAudDecMFT.dll
2017-07-23 11:31:07 ----A---- C:\WINDOWS\SYSWOW64\mfsvr.dll
2017-07-23 11:31:07 ----A---- C:\WINDOWS\SYSWOW64\MFMediaEngine.dll
2017-07-23 11:31:07 ----A---- C:\WINDOWS\SYSWOW64\MFCaptureEngine.dll
2017-07-23 11:31:07 ----A---- C:\WINDOWS\system32\Windows.Media.dll
2017-07-23 11:31:07 ----A---- C:\WINDOWS\system32\MSAudDecMFT.dll
2017-07-23 11:31:07 ----A---- C:\WINDOWS\system32\mfsvr.dll
2017-07-23 11:31:07 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll
2017-07-23 11:31:06 ----A---- C:\WINDOWS\system32\mfps.dll
2017-07-23 11:31:06 ----A---- C:\WINDOWS\system32\MFCaptureEngine.dll
2017-07-23 11:31:06 ----A---- C:\WINDOWS\system32\fveapi.dll
2017-07-23 11:31:06 ----A---- C:\WINDOWS\system32\drivers\mrxsmb10.sys
2017-07-23 11:31:04 ----A---- C:\WINDOWS\SYSWOW64\WindowsCodecsRaw.dll
2017-07-23 11:31:03 ----A---- C:\WINDOWS\SYSWOW64\PhotoScreensaver.scr
2017-07-23 11:31:03 ----A---- C:\WINDOWS\system32\WindowsCodecsRaw.dll
2017-07-23 11:31:03 ----A---- C:\WINDOWS\system32\PhotoScreensaver.scr
2017-07-23 11:30:59 ----A---- C:\WINDOWS\SYSWOW64\SensorsApi.dll
2017-07-23 11:30:59 ----A---- C:\WINDOWS\system32\sensrsvc.dll
2017-07-23 11:30:58 ----A---- C:\WINDOWS\system32\SensorsApi.dll
2017-07-23 11:30:57 ----A---- C:\WINDOWS\SYSWOW64\vbscript.dll
2017-07-23 11:30:57 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2017-07-23 11:30:57 ----A---- C:\WINDOWS\SYSWOW64\iepeers.dll
2017-07-23 11:30:57 ----A---- C:\WINDOWS\system32\iepeers.dll
2017-07-23 11:30:56 ----A---- C:\WINDOWS\SYSWOW64\MshtmlDac.dll
2017-07-23 11:30:56 ----A---- C:\WINDOWS\system32\MshtmlDac.dll
2017-07-23 11:30:56 ----A---- C:\WINDOWS\system32\mshtml.dll
2017-07-23 11:30:55 ----A---- C:\WINDOWS\SYSWOW64\mshtmled.dll
2017-07-23 11:30:55 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2017-07-23 11:30:55 ----A---- C:\WINDOWS\SYSWOW64\Chakra.dll
2017-07-23 11:30:55 ----A---- C:\WINDOWS\SYSWOW64\dxtrans.dll
2017-07-23 11:30:55 ----A---- C:\WINDOWS\system32\mshtmled.dll
2017-07-23 11:30:55 ----A---- C:\WINDOWS\system32\jscript9diag.dll
2017-07-23 11:30:55 ----A---- C:\WINDOWS\system32\jscript9.dll
2017-07-23 11:30:55 ----A---- C:\WINDOWS\system32\Chakradiag.dll
2017-07-23 11:30:55 ----A---- C:\WINDOWS\system32\Chakra.dll
2017-07-23 11:30:55 ----A---- C:\WINDOWS\system32\dxtrans.dll
2017-07-23 11:30:54 ----A---- C:\WINDOWS\SYSWOW64\webplatstorageserver.dll
2017-07-23 11:30:54 ----A---- C:\WINDOWS\SYSWOW64\msfeeds.dll
2017-07-23 11:30:54 ----A---- C:\WINDOWS\SYSWOW64\edgehtml.dll
2017-07-23 11:30:54 ----A---- C:\WINDOWS\system32\msfeeds.dll
2017-07-23 11:30:54 ----A---- C:\WINDOWS\system32\edgehtml.dll
2017-07-23 11:30:53 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2017-07-23 11:30:53 ----A---- C:\WINDOWS\system32\ieframe.dll
2017-07-23 11:30:52 ----A---- C:\WINDOWS\SYSWOW64\iedkcs32.dll
2017-07-23 11:30:52 ----A---- C:\WINDOWS\system32\iedkcs32.dll
2017-07-23 11:30:50 ----A---- C:\WINDOWS\system32\ieui.dll
2017-07-23 11:30:50 ----A---- C:\WINDOWS\system32\HoloSI.PCShell.dll
2017-07-23 11:30:49 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
2017-07-23 11:30:49 ----A---- C:\WINDOWS\SYSWOW64\themeui.dll
2017-07-23 11:30:49 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2017-07-23 11:30:49 ----A---- C:\WINDOWS\SYSWOW64\sendmail.dll
2017-07-23 11:30:49 ----A---- C:\WINDOWS\SYSWOW64\ExplorerFrame.dll
2017-07-23 11:30:49 ----A---- C:\WINDOWS\SYSWOW64\DevicePairing.dll
2017-07-23 11:30:49 ----A---- C:\WINDOWS\SYSWOW64\dataclen.dll
2017-07-23 11:30:49 ----A---- C:\WINDOWS\SYSWOW64\comdlg32.dll
2017-07-23 11:30:49 ----A---- C:\WINDOWS\SYSWOW64\AboveLockAppHost.dll
2017-07-23 11:30:45 ----A---- C:\WINDOWS\SYSWOW64\wininitext.dll
2017-07-23 11:30:45 ----A---- C:\WINDOWS\SYSWOW64\wdc.dll
2017-07-23 11:30:45 ----A---- C:\WINDOWS\SYSWOW64\VAN.dll
2017-07-23 11:30:45 ----A---- C:\WINDOWS\SYSWOW64\SmartcardCredentialProvider.dll
2017-07-23 11:30:45 ----A---- C:\WINDOWS\SYSWOW64\scksp.dll
2017-07-23 11:30:45 ----A---- C:\WINDOWS\SYSWOW64\rpchttp.dll
2017-07-23 11:30:45 ----A---- C:\WINDOWS\SYSWOW64\rpcrt4.dll
2017-07-23 11:30:45 ----A---- C:\WINDOWS\SYSWOW64\olepro32.dll
2017-07-23 11:30:45 ----A---- C:\WINDOWS\SYSWOW64\ole32.dll
2017-07-23 11:30:45 ----A---- C:\WINDOWS\SYSWOW64\msinfo32.exe
2017-07-23 11:30:45 ----A---- C:\WINDOWS\SYSWOW64\daxexec.dll
2017-07-23 11:30:45 ----A---- C:\WINDOWS\SYSWOW64\certutil.exe
2017-07-23 11:30:45 ----A---- C:\WINDOWS\SYSWOW64\basecsp.dll
2017-07-23 11:30:45 ----A---- C:\WINDOWS\SYSWOW64\apphelp.dll
2017-07-23 11:30:45 ----A---- C:\WINDOWS\system32\uDWM.dll
2017-07-23 11:30:45 ----A---- C:\WINDOWS\system32\GdiPlus.dll
2017-07-23 11:30:45 ----A---- C:\WINDOWS\system32\fontdrvhost.exe
2017-07-23 11:30:45 ----A---- C:\WINDOWS\system32\ConhostV2.dll
2017-07-23 11:30:44 ----A---- C:\WINDOWS\system32\oleacc.dll
2017-07-23 11:30:44 ----A---- C:\WINDOWS\system32\msctfuimanager.dll
2017-07-23 11:30:43 ----A---- C:\WINDOWS\system32\Windows.UI.dll
2017-07-23 11:30:43 ----A---- C:\WINDOWS\system32\TSWorkspace.dll
2017-07-23 11:30:43 ----A---- C:\WINDOWS\system32\mstscax.dll
2017-07-23 11:30:43 ----A---- C:\WINDOWS\system32\duser.dll
2017-07-23 11:30:42 ----A---- C:\WINDOWS\system32\Windows.Shell.BlueLightReduction.dll
2017-07-23 11:30:42 ----A---- C:\WINDOWS\system32\SettingsHandlers_Notifications.dll
2017-07-23 11:30:42 ----A---- C:\WINDOWS\system32\NetworkMobileSettings.dll
2017-07-23 11:30:42 ----A---- C:\WINDOWS\system32\CloudDomainJoinDataModelServer.dll
2017-07-23 11:30:42 ----A---- C:\WINDOWS\system32\CloudDomainJoinAUG.dll
2017-07-23 11:30:41 ----A---- C:\WINDOWS\system32\InputSwitch.dll
2017-07-23 11:30:41 ----A---- C:\WINDOWS\system32\CloudExperienceHost.dll
2017-07-23 11:30:41 ----A---- C:\WINDOWS\system32\AboveLockAppHost.dll
2017-07-23 11:30:40 ----A---- C:\WINDOWS\system32\themeui.dll
2017-07-23 11:30:40 ----A---- C:\WINDOWS\system32\shell32.dll
2017-07-23 11:30:40 ----A---- C:\WINDOWS\system32\sendmail.dll
2017-07-23 11:30:40 ----A---- C:\WINDOWS\system32\ExplorerFrame.dll
2017-07-23 11:30:40 ----A---- C:\WINDOWS\system32\DevicePairing.dll
2017-07-23 11:30:40 ----A---- C:\WINDOWS\system32\dataclen.dll
2017-07-23 11:30:40 ----A---- C:\WINDOWS\system32\CloudExperienceHostBroker.dll
2017-07-23 11:30:39 ----A---- C:\WINDOWS\system32\twinui.dll
2017-07-23 11:30:39 ----A---- C:\WINDOWS\system32\SettingsHandlers_nt.dll
2017-07-23 11:30:39 ----A---- C:\WINDOWS\system32\prntvpt.dll
2017-07-23 11:30:38 ----A---- C:\WINDOWS\system32\wpncore.dll
2017-07-23 11:30:38 ----A---- C:\WINDOWS\system32\Windows.System.Profile.RetailInfo.dll
2017-07-23 11:30:38 ----A---- C:\WINDOWS\system32\wincredui.dll
2017-07-23 11:30:38 ----A---- C:\WINDOWS\system32\vbscript.dll
2017-07-23 11:30:38 ----A---- C:\WINDOWS\system32\urlmon.dll
2017-07-23 11:30:38 ----A---- C:\WINDOWS\system32\twinui.pcshell.dll
2017-07-23 11:30:38 ----A---- C:\WINDOWS\system32\SystemSettingsThresholdAdminFlowUI.dll
2017-07-23 11:30:38 ----A---- C:\WINDOWS\system32\SettingsEnvironment.Desktop.dll
2017-07-23 11:30:38 ----A---- C:\WINDOWS\system32\RDXTaskFactory.dll
2017-07-23 11:30:38 ----A---- C:\WINDOWS\system32\rasmans.dll
2017-07-23 11:30:38 ----A---- C:\WINDOWS\system32\raschap.dll
2017-07-23 11:30:38 ----A---- C:\WINDOWS\system32\officecsp.dll
2017-07-23 11:30:38 ----A---- C:\WINDOWS\system32\LogonController.dll
2017-07-23 11:30:38 ----A---- C:\WINDOWS\system32\LockHostingFramework.dll
2017-07-23 11:30:38 ----A---- C:\WINDOWS\system32\localspl.dll
2017-07-23 11:30:38 ----A---- C:\WINDOWS\system32\eapprovp.dll
2017-07-23 11:30:38 ----A---- C:\WINDOWS\system32\CredentialUIBroker.exe
2017-07-23 11:30:38 ----A---- C:\WINDOWS\explorer.exe
2017-07-23 11:30:37 ----A---- C:\WINDOWS\system32\wwansvc.dll
2017-07-23 11:30:37 ----A---- C:\WINDOWS\system32\wwanprotdim.dll
2017-07-23 11:30:37 ----A---- C:\WINDOWS\system32\wininet.dll
2017-07-23 11:30:37 ----A---- C:\WINDOWS\system32\Windows.Internal.Management.dll
2017-07-23 11:30:37 ----A---- C:\WINDOWS\system32\WFDSConMgrSvc.dll
2017-07-23 11:30:37 ----A---- C:\WINDOWS\system32\WFDSConMgr.dll
2017-07-23 11:30:37 ----A---- C:\WINDOWS\system32\provengine.dll
2017-07-23 11:30:37 ----A---- C:\WINDOWS\system32\policymanager.dll
2017-07-23 11:30:37 ----A---- C:\WINDOWS\system32\omadmclient.exe
2017-07-23 11:30:37 ----A---- C:\WINDOWS\system32\iertutil.dll
2017-07-23 11:30:37 ----A---- C:\WINDOWS\system32\edputil.dll
2017-07-23 11:30:37 ----A---- C:\WINDOWS\system32\dwmcore.dll
2017-07-23 11:30:37 ----A---- C:\WINDOWS\system32\drivers\WdiWiFi.sys
2017-07-23 11:30:37 ----A---- C:\WINDOWS\system32\drivers\mskssrv.sys
2017-07-23 11:30:37 ----A---- C:\WINDOWS\system32\DMPushRouterCore.dll
2017-07-23 11:30:37 ----A---- C:\WINDOWS\system32\dmcmnutils.dll
2017-07-23 11:30:37 ----A---- C:\WINDOWS\system32\dcomp.dll
2017-07-23 11:30:37 ----A---- C:\WINDOWS\system32\ActiveSyncProvider.dll
2017-07-23 11:30:36 ----A---- C:\WINDOWS\system32\WpcWebFilter.dll
2017-07-23 11:30:36 ----A---- C:\WINDOWS\system32\wcmsvc.dll
2017-07-23 11:30:36 ----A---- C:\WINDOWS\system32\rastls.dll
2017-07-23 11:30:36 ----A---- C:\WINDOWS\system32\rascustom.dll
2017-07-23 11:30:36 ----A---- C:\WINDOWS\system32\rasapi32.dll
2017-07-23 11:30:36 ----A---- C:\WINDOWS\system32\PerceptionSimulationExtensions.dll
2017-07-23 11:30:36 ----A---- C:\WINDOWS\system32\ActiveSyncCsp.dll
2017-07-23 11:30:35 ----A---- C:\WINDOWS\system32\wuuhext.dll
2017-07-23 11:30:35 ----A---- C:\WINDOWS\system32\winsrv.dll
2017-07-23 11:30:35 ----A---- C:\WINDOWS\system32\usocore.dll
2017-07-23 11:30:35 ----A---- C:\WINDOWS\system32\updatehandlers.dll
2017-07-23 11:30:35 ----A---- C:\WINDOWS\system32\TokenBrokerUI.dll
2017-07-23 11:30:35 ----A---- C:\WINDOWS\system32\SRH.dll
2017-07-23 11:30:35 ----A---- C:\WINDOWS\system32\SndVolSSO.dll
2017-07-23 11:30:35 ----A---- C:\WINDOWS\system32\SIHClient.exe
2017-07-23 11:30:35 ----A---- C:\WINDOWS\system32\PsmServiceExtHost.dll
2017-07-23 11:30:35 ----A---- C:\WINDOWS\system32\OpcServices.dll
2017-07-23 11:30:35 ----A---- C:\WINDOWS\system32\GamePanel.exe
2017-07-23 11:30:35 ----A---- C:\WINDOWS\system32\drivers\pdc.sys
2017-07-23 11:30:35 ----A---- C:\WINDOWS\system32\drivers\mrxsmb20.sys
2017-07-23 11:30:35 ----A---- C:\WINDOWS\system32\drivers\bridge.sys
2017-07-23 11:30:35 ----A---- C:\WINDOWS\system32\dosvc.dll
2017-07-23 11:30:35 ----A---- C:\WINDOWS\system32\domgmt.dll
2017-07-23 11:30:35 ----A---- C:\WINDOWS\system32\cldapi.dll
2017-07-23 11:30:35 ----A---- C:\WINDOWS\system32\bcastdvr.exe
2017-07-23 11:30:35 ----A---- C:\WINDOWS\system32\AppXDeploymentServer.dll
2017-07-23 11:30:35 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2017-07-23 11:30:35 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
2017-07-23 11:30:35 ----A---- C:\WINDOWS\system32\AppxAllUserStore.dll
2017-07-23 11:30:34 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2017-07-23 11:30:34 ----A---- C:\WINDOWS\system32\ntdll.dll
2017-07-23 11:30:34 ----A---- C:\WINDOWS\system32\drivers\ntfs.sys
2017-07-23 11:30:34 ----A---- C:\WINDOWS\system32\drivers\clfs.sys
2017-07-23 11:30:34 ----A---- C:\WINDOWS\system32\csrsrv.dll
2017-07-23 11:30:33 ----A---- C:\WINDOWS\system32\winresume.exe
2017-07-23 11:30:33 ----A---- C:\WINDOWS\system32\winload.exe
2017-07-23 11:30:28 ----A---- C:\WINDOWS\system32\wudriver.dll
2017-07-23 11:30:28 ----A---- C:\WINDOWS\system32\winlogon.exe
2017-07-23 11:30:28 ----A---- C:\WINDOWS\system32\wininitext.dll
2017-07-23 11:30:28 ----A---- C:\WINDOWS\system32\SmartcardCredentialProvider.dll
2017-07-23 11:30:28 ----A---- C:\WINDOWS\system32\scksp.dll
2017-07-23 11:30:28 ----A---- C:\WINDOWS\system32\ScDeviceEnum.dll
2017-07-23 11:30:28 ----A---- C:\WINDOWS\system32\SCardSvr.dll
2017-07-23 11:30:28 ----A---- C:\WINDOWS\system32\Narrator.exe
2017-07-23 11:30:28 ----A---- C:\WINDOWS\system32\msxml3.dll
2017-07-23 11:30:28 ----A---- C:\WINDOWS\system32\lsass.exe
2017-07-23 11:30:28 ----A---- C:\WINDOWS\system32\KernelBase.dll
2017-07-23 11:30:28 ----A---- C:\WINDOWS\system32\EditionUpgradeManagerObj.dll
2017-07-23 11:30:28 ----A---- C:\WINDOWS\system32\EditionUpgradeHelper.dll
2017-07-23 11:30:28 ----A---- C:\WINDOWS\system32\drivers\tcpip.sys
2017-07-23 11:30:28 ----A---- C:\WINDOWS\system32\drivers\netio.sys
2017-07-23 11:30:28 ----A---- C:\WINDOWS\system32\drivers\ndis.sys
2017-07-23 11:30:28 ----A---- C:\WINDOWS\system32\drivers\http.sys
2017-07-23 11:30:28 ----A---- C:\WINDOWS\system32\CoreMessaging.dll
2017-07-23 11:30:28 ----A---- C:\WINDOWS\system32\certutil.exe
2017-07-23 11:30:28 ----A---- C:\WINDOWS\system32\certprop.dll
2017-07-23 11:30:28 ----A---- C:\WINDOWS\system32\basecsp.dll
2017-07-23 11:30:27 ----A---- C:\WINDOWS\system32\wdc.dll
2017-07-23 11:30:27 ----A---- C:\WINDOWS\system32\ole32.dll
2017-07-23 11:30:27 ----A---- C:\WINDOWS\system32\msinfo32.exe
2017-07-23 11:30:27 ----A---- C:\WINDOWS\system32\invagent.dll
2017-07-23 11:30:27 ----A---- C:\WINDOWS\system32\generaltel.dll
2017-07-23 11:30:27 ----A---- C:\WINDOWS\system32\devinv.dll
2017-07-23 11:30:27 ----A---- C:\WINDOWS\system32\CompatTelRunner.exe
2017-07-23 11:30:27 ----A---- C:\WINDOWS\system32\appraiser.dll
2017-07-23 11:30:27 ----A---- C:\WINDOWS\system32\aeinv.dll
2017-07-23 11:30:27 ----A---- C:\WINDOWS\system32\acmigration.dll
2017-07-23 11:30:26 ----A---- C:\WINDOWS\system32\WMPhoto.dll
2017-07-23 11:30:26 ----A---- C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2017-07-23 11:30:26 ----A---- C:\WINDOWS\system32\WinBioDataModelOOBE.exe
2017-07-23 11:30:26 ----A---- C:\WINDOWS\system32\WinBioDataModel.dll
2017-07-23 11:30:26 ----A---- C:\WINDOWS\system32\psmsrv.dll
2017-07-23 11:30:26 ----A---- C:\WINDOWS\system32\PlayToDevice.dll
2017-07-23 11:30:26 ----A---- C:\WINDOWS\system32\MMDevAPI.dll
2017-07-23 11:30:26 ----A---- C:\WINDOWS\system32\FrameServer.dll
2017-07-23 11:30:26 ----A---- C:\WINDOWS\system32\DolbyMATEnc.dll
2017-07-23 11:30:26 ----A---- C:\WINDOWS\system32\DolbyHrtfEnc.dll
2017-07-23 11:30:26 ----A---- C:\WINDOWS\system32\DmApiSetExtImplDesktop.dll
2017-07-23 11:30:26 ----A---- C:\WINDOWS\system32\daxexec.dll
2017-07-23 11:30:26 ----A---- C:\WINDOWS\system32\bisrv.dll
2017-07-23 11:30:26 ----A---- C:\WINDOWS\system32\audiosrv.dll
2017-07-23 11:30:26 ----A---- C:\WINDOWS\system32\AudioSes.dll
2017-07-23 11:30:26 ----A---- C:\WINDOWS\system32\AudioEng.dll
2017-07-23 11:30:26 ----A---- C:\WINDOWS\system32\AudioEndpointBuilder.dll
2017-07-23 11:30:26 ----A---- C:\WINDOWS\system32\audiodg.exe
2017-07-23 11:30:26 ----A---- C:\WINDOWS\system32\aitstatic.exe
2017-07-23 11:30:24 ----A---- C:\WINDOWS\system32\WWAHost.exe
2017-07-23 11:30:24 ----A---- C:\WINDOWS\system32\wuuhosdeployment.dll
2017-07-23 11:30:24 ----A---- C:\WINDOWS\system32\wuaueng.dll
2017-07-23 11:30:24 ----A---- C:\WINDOWS\system32\wuapi.dll
2017-07-23 11:30:24 ----A---- C:\WINDOWS\system32\winmde.dll
2017-07-23 11:30:24 ----A---- C:\WINDOWS\system32\Windows.Payments.dll
2017-07-23 11:30:24 ----A---- C:\WINDOWS\system32\Unistore.dll
2017-07-23 11:30:24 ----A---- C:\WINDOWS\system32\tileobjserver.dll
2017-07-23 11:30:24 ----A---- C:\WINDOWS\system32\TDLMigration.dll
2017-07-23 11:30:24 ----A---- C:\WINDOWS\system32\storewuauth.dll
2017-07-23 11:30:24 ----A---- C:\WINDOWS\system32\SensorService.dll
2017-07-23 11:30:24 ----A---- C:\WINDOWS\system32\PlayToReceiver.dll
2017-07-23 11:30:24 ----A---- C:\WINDOWS\system32\MusUpdateHandlers.dll
2017-07-23 11:30:24 ----A---- C:\WINDOWS\system32\MusNotification.exe
2017-07-23 11:30:24 ----A---- C:\WINDOWS\system32\mos.dll
2017-07-23 11:30:24 ----A---- C:\WINDOWS\system32\MbaeApi.dll
2017-07-23 11:30:24 ----A---- C:\WINDOWS\system32\MapRouter.dll
2017-07-23 11:30:24 ----A---- C:\WINDOWS\system32\LicenseManager.dll
2017-07-23 11:30:24 ----A---- C:\WINDOWS\system32\InstallAgentUserBroker.exe
2017-07-23 11:30:24 ----A---- C:\WINDOWS\system32\InstallAgent.exe
2017-07-23 11:30:24 ----A---- C:\WINDOWS\system32\dbgeng.dll
2017-07-23 11:30:23 ----A---- C:\WINDOWS\system32\Wldap32.dll
2017-07-23 11:30:23 ----A---- C:\WINDOWS\system32\wininit.exe
2017-07-23 11:30:23 ----A---- C:\WINDOWS\system32\WindowsCodecsExt.dll
2017-07-23 11:30:23 ----A---- C:\WINDOWS\system32\WindowsCodecs.dll
2017-07-23 11:30:23 ----A---- C:\WINDOWS\system32\win32kfull.sys
2017-07-23 11:30:23 ----A---- C:\WINDOWS\system32\win32kbase.sys
2017-07-23 11:30:23 ----A---- C:\WINDOWS\system32\tquery.dll
2017-07-23 11:30:23 ----A---- C:\WINDOWS\system32\SearchProtocolHost.exe
2017-07-23 11:30:23 ----A---- C:\WINDOWS\system32\msv1_0.dll
2017-07-23 11:30:23 ----A---- C:\WINDOWS\system32\mssrch.dll
2017-07-23 11:30:23 ----A---- C:\WINDOWS\system32\kerberos.dll
2017-07-23 11:30:23 ----A---- C:\WINDOWS\system32\InputService.dll
2017-07-23 11:30:23 ----A---- C:\WINDOWS\system32\hvloader.exe
2017-07-23 11:30:23 ----A---- C:\WINDOWS\system32\hvix64.exe
2017-07-23 11:30:23 ----A---- C:\WINDOWS\system32\hvax64.exe
2017-07-23 11:30:23 ----A---- C:\WINDOWS\system32\FntCache.dll
2017-07-23 11:30:23 ----A---- C:\WINDOWS\system32\DWrite.dll
2017-07-23 11:30:23 ----A---- C:\WINDOWS\system32\drivers\wcifs.sys
2017-07-23 11:30:23 ----A---- C:\WINDOWS\system32\drivers\dxgkrnl.sys
2017-07-23 11:30:23 ----A---- C:\WINDOWS\system32\DeviceCensus.exe
2017-07-23 11:30:23 ----A---- C:\WINDOWS\system32\dcntel.dll
2017-07-23 11:30:23 ----A---- C:\WINDOWS\system32\D3DCompiler_47.dll
2017-07-23 11:30:23 ----A---- C:\WINDOWS\system32\d2d1.dll
2017-07-23 11:30:23 ----A---- C:\WINDOWS\system32\CoreUIComponents.dll
2017-07-23 11:30:23 ----A---- C:\WINDOWS\system32\BingMaps.dll
2017-07-23 11:30:23 ----A---- C:\WINDOWS\system32\aepic.dll
2017-07-23 11:30:22 ----A---- C:\WINDOWS\system32\Microsoft.Bluetooth.Profiles.Gatt.Interface.dll
2017-07-23 11:30:22 ----A---- C:\WINDOWS\system32\Microsoft.Bluetooth.Profiles.Gatt.dll
2017-07-23 11:30:22 ----A---- C:\WINDOWS\system32\CloudExperienceHostUser.dll
2017-07-23 11:30:22 ----A---- C:\WINDOWS\system32\CloudExperienceHostCommon.dll
2017-07-23 11:30:22 ----A---- C:\WINDOWS\system32\BluetoothApis.dll
2017-07-23 11:30:21 ----A---- C:\WINDOWS\system32\windows.storage.dll
2017-07-23 11:30:21 ----A---- C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll
2017-07-23 11:30:21 ----A---- C:\WINDOWS\system32\Windows.Devices.Bluetooth.dll
2017-07-23 11:30:21 ----A---- C:\WINDOWS\system32\wbiosrvc.dll
2017-07-23 11:30:21 ----A---- C:\WINDOWS\system32\MrmCoreR.dll
2017-07-23 11:30:20 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.Maps.dll
2017-07-23 11:30:20 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.dll
2017-07-23 11:30:20 ----A---- C:\WINDOWS\system32\Windows.Data.Pdf.dll
2017-07-23 11:30:20 ----A---- C:\WINDOWS\system32\twinui.appcore.dll
2017-07-23 11:30:20 ----A---- C:\WINDOWS\system32\msftedit.dll
2017-07-23 11:30:20 ----A---- C:\WINDOWS\system32\aadtb.dll
2017-07-23 11:30:20 ----A---- C:\WINDOWS\system32\aadcloudap.dll
2017-07-23 11:30:19 ----A---- C:\WINDOWS\SYSWOW64\wudriver.dll
2017-07-23 11:30:19 ----A---- C:\WINDOWS\SYSWOW64\wuapi.dll
2017-07-23 11:30:19 ----A---- C:\WINDOWS\SYSWOW64\WMPhoto.dll
2017-07-23 11:30:19 ----A---- C:\WINDOWS\SYSWOW64\Wldap32.dll
2017-07-23 11:30:19 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.dll
2017-07-23 11:30:19 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Protection.PlayReady.dll
2017-07-23 11:30:19 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.dll
2017-07-23 11:30:19 ----A---- C:\WINDOWS\SYSWOW64\wincredui.dll
2017-07-23 11:30:19 ----A---- C:\WINDOWS\SYSWOW64\win32kfull.sys
2017-07-23 11:30:19 ----A---- C:\WINDOWS\SYSWOW64\webservices.dll
2017-07-23 11:30:19 ----A---- C:\WINDOWS\SYSWOW64\UIAutomationCore.dll
2017-07-23 11:30:19 ----A---- C:\WINDOWS\SYSWOW64\TokenBrokerUI.dll
2017-07-23 11:30:19 ----A---- C:\WINDOWS\SYSWOW64\SRH.dll
2017-07-23 11:30:19 ----A---- C:\WINDOWS\SYSWOW64\PlayToDevice.dll
2017-07-23 11:30:19 ----A---- C:\WINDOWS\SYSWOW64\OpcServices.dll
2017-07-23 11:30:19 ----A---- C:\WINDOWS\SYSWOW64\oleacc.dll
2017-07-23 11:30:19 ----A---- C:\WINDOWS\SYSWOW64\msxml3.dll
2017-07-23 11:30:19 ----A---- C:\WINDOWS\SYSWOW64\msv1_0.dll
2017-07-23 11:30:19 ----A---- C:\WINDOWS\SYSWOW64\mstscax.dll
2017-07-23 11:30:19 ----A---- C:\WINDOWS\SYSWOW64\msctfuimanager.dll
2017-07-23 11:30:19 ----A---- C:\WINDOWS\SYSWOW64\msasn1.dll
2017-07-23 11:30:19 ----A---- C:\WINDOWS\SYSWOW64\MMDevAPI.dll
2017-07-23 11:30:19 ----A---- C:\WINDOWS\SYSWOW64\Microsoft.Bluetooth.Profiles.Gatt.Interface.dll
2017-07-23 11:30:19 ----A---- C:\WINDOWS\SYSWOW64\KernelBase.dll
2017-07-23 11:30:19 ----A---- C:\WINDOWS\SYSWOW64\kerberos.dll
2017-07-23 11:30:19 ----A---- C:\WINDOWS\SYSWOW64\InputService.dll
2017-07-23 11:30:19 ----A---- C:\WINDOWS\SYSWOW64\GdiPlus.dll
2017-07-23 11:30:19 ----A---- C:\WINDOWS\SYSWOW64\fontdrvhost.exe
2017-07-23 11:30:19 ----A---- C:\WINDOWS\SYSWOW64\explorer.exe
2017-07-23 11:30:19 ----A---- C:\WINDOWS\SYSWOW64\dwmapi.dll
2017-07-23 11:30:19 ----A---- C:\WINDOWS\SYSWOW64\dbghelp.dll
2017-07-23 11:30:19 ----A---- C:\WINDOWS\SYSWOW64\dbgeng.dll
2017-07-23 11:30:19 ----A---- C:\WINDOWS\SYSWOW64\CoreUIComponents.dll
2017-07-23 11:30:19 ----A---- C:\WINDOWS\SYSWOW64\CoreMessaging.dll
2017-07-23 11:30:19 ----A---- C:\WINDOWS\SYSWOW64\combase.dll
2017-07-23 11:30:19 ----A---- C:\WINDOWS\SYSWOW64\Clipc.dll
2017-07-23 11:30:19 ----A---- C:\WINDOWS\SYSWOW64\cldapi.dll
2017-07-23 11:30:19 ----A---- C:\WINDOWS\SYSWOW64\CertEnroll.dll
2017-07-23 11:30:19 ----A---- C:\WINDOWS\SYSWOW64\certcli.dll
2017-07-23 11:30:19 ----A---- C:\WINDOWS\SYSWOW64\certca.dll
2017-07-23 11:30:19 ----A---- C:\WINDOWS\SYSWOW64\BluetoothApis.dll
2017-07-23 11:30:19 ----A---- C:\WINDOWS\SYSWOW64\AudioSes.dll
2017-07-23 11:30:19 ----A---- C:\WINDOWS\SYSWOW64\AudioEng.dll
2017-07-23 11:30:19 ----A---- C:\WINDOWS\SYSWOW64\AppxPackaging.dll
2017-07-23 11:30:19 ----A---- C:\WINDOWS\SYSWOW64\AppxAllUserStore.dll
2017-07-23 11:30:19 ----A---- C:\WINDOWS\SYSWOW64\aepic.dll
2017-07-23 11:30:19 ----A---- C:\WINDOWS\system32\WpAXHolder.dll
2017-07-23 11:30:19 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.Resources.dll
2017-07-23 11:30:19 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.dll
2017-07-23 11:30:19 ----A---- C:\WINDOWS\system32\UIAutomationCore.dll
2017-07-23 11:30:19 ----A---- C:\WINDOWS\system32\rdpudd.dll
2017-07-23 11:30:19 ----A---- C:\WINDOWS\system32\OneCoreUAPCommonProxyStub.dll
2017-07-23 11:30:19 ----A---- C:\WINDOWS\system32\drivers\usbvideo.sys
2017-07-23 11:30:19 ----A---- C:\WINDOWS\system32\drivers\USBHUB3.SYS
2017-07-23 11:30:19 ----A---- C:\WINDOWS\system32\drivers\msiscsi.sys
2017-07-23 11:30:19 ----A---- C:\WINDOWS\system32\drivers\hdaudbus.sys
2017-07-23 11:30:19 ----A---- C:\WINDOWS\system32\drivers\bthport.sys
2017-07-23 11:30:19 ----A---- C:\WINDOWS\system32\drivers\bthpan.sys
2017-07-23 11:30:19 ----A---- C:\WINDOWS\system32\ClipSVC.dll
2017-07-23 11:30:19 ----A---- C:\WINDOWS\system32\Clipc.dll
2017-07-23 11:30:19 ----A---- C:\WINDOWS\system32\ClipboardServer.dll
2017-07-23 11:30:19 ----A---- C:\WINDOWS\system32\CertEnroll.dll
2017-07-23 11:30:19 ----A---- C:\WINDOWS\system32\certcli.dll
2017-07-23 11:30:19 ----A---- C:\WINDOWS\system32\certca.dll
2017-07-23 11:30:19 ----A---- C:\WINDOWS\system32\AzureSettingSyncProvider.dll
2017-07-23 11:30:19 ----A---- C:\WINDOWS\system32\AppReadiness.dll
2017-07-23 11:30:19 ----A---- C:\WINDOWS\system32\ActivationManager.dll
2017-07-23 11:16:15 ----A---- C:\WINDOWS\system32\prm0019.dll
2017-07-23 11:15:31 ----A---- C:\WINDOWS\SYSWOW64\NlsLexicons0009.dll
2017-07-23 11:15:31 ----A---- C:\WINDOWS\SYSWOW64\NlsData0009.dll
2017-07-23 11:15:31 ----A---- C:\WINDOWS\system32\prm0009.dll
2017-07-23 11:15:30 ----A---- C:\WINDOWS\system32\NlsLexicons0009.dll
2017-07-23 11:15:30 ----A---- C:\WINDOWS\system32\NlsData0009.dll
2017-07-23 11:14:50 ----D---- C:\WINDOWS\system32\Microsoft
2017-07-23 11:12:05 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2017-07-23 11:11:55 ----D---- C:\WINDOWS\SYSWOW64\XPSViewer
2017-07-23 11:11:55 ----D---- C:\Program Files (x86)\Reference Assemblies
2017-07-23 11:11:55 ----D---- C:\Program Files (x86)\MSBuild
2017-07-23 11:11:54 ----D---- C:\Program Files\Reference Assemblies
2017-07-23 11:11:54 ----D---- C:\Program Files\MSBuild
2017-07-23 11:10:40 ----A---- C:\WINDOWS\SYSWOW64\TsWpfWrp.exe
2017-07-23 11:10:40 ----A---- C:\WINDOWS\SYSWOW64\PresentationNative_v0300.dll
2017-07-23 11:10:40 ----A---- C:\WINDOWS\SYSWOW64\PresentationCFFRasterizerNative_v0300.dll
2017-07-23 11:10:35 ----A---- C:\WINDOWS\system32\TsWpfWrp.exe
2017-07-23 11:10:35 ----A---- C:\WINDOWS\system32\PresentationNative_v0300.dll
2017-07-23 11:10:34 ----A---- C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2017-07-23 11:03:36 ----ASH---- C:\hiberfil.sys
2017-07-23 10:51:21 ----D---- C:\ProgramData\USOShared
2017-07-23 10:49:28 ----SD---- C:\Users\OEM\AppData\Roaming\Microsoft
2017-07-23 10:44:32 ----D---- C:\Program Files\Common Files\Atheros
2017-07-23 10:44:23 ----D---- C:\Program Files\Elantech
2017-07-23 10:44:04 ----D---- C:\Program Files\Realtek
2017-07-23 10:44:03 ----D---- C:\WINDOWS\SYSWOW64\RTCOM
2017-07-23 10:43:54 ----A---- C:\WINDOWS\SYSWOW64\OpenCL.DLL
2017-07-23 10:43:54 ----A---- C:\WINDOWS\system32\OpenCL.DLL
2017-07-23 10:43:42 ----A---- C:\WINDOWS\SYSWOW64\PrintConfig.dll
2017-07-23 10:43:34 ----D---- C:\Program Files\Intel
2017-07-23 10:41:53 ----AS---- C:\WINDOWS\bootstat.dat
2017-07-23 10:40:30 ----D---- C:\WINDOWS\Prefetch
2017-07-23 10:40:12 ----D---- C:\WINDOWS\system32\SleepStudy
2017-07-23 10:40:12 ----D---- C:\WINDOWS\ServiceProfiles
2017-07-23 10:40:05 ----A---- C:\WINDOWS\system32\FNTCACHE.DAT
2017-07-23 08:34:45 ----DC---- C:\WINDOWS\Panther
2017-07-23 08:34:40 ----HD---- C:\$WINDOWS.~BT
2017-07-23 08:27:15 ----A---- C:\WINDOWS\progress.ini
2017-07-23 07:59:19 ----HD---- C:\$GetCurrent
2017-07-23 07:58:08 ----D---- C:\Windows10Upgrade
2017-07-23 07:42:59 ----A---- C:\WINDOWS\system32\centel.dll
2017-07-23 07:37:17 ----A---- C:\WINDOWS\wininit.ini
2017-06-29 18:39:15 ----D---- C:\FFOutput
2017-06-29 18:37:51 ----D---- C:\Program Files (x86)\FormatFactory
2017-06-29 16:48:54 ----D---- C:\ProgramData\Movavi Video Editor 12
2017-06-29 16:34:50 ----D---- C:\ProgramData\Pinnacle

======List of files/folders modified in the last 1 month======

2017-07-25 20:47:54 ----RD---- C:\Program Files
2017-07-25 20:47:35 ----D---- C:\WINDOWS\Temp
2017-07-25 20:41:04 ----D---- C:\WINDOWS\system32\sru
2017-07-25 20:37:41 ----D---- C:\WINDOWS\LiveKernelReports
2017-07-25 20:34:14 ----D---- C:\WINDOWS\Logs
2017-07-25 20:34:13 ----D---- C:\WINDOWS\system32\LogFiles
2017-07-25 20:33:59 ----HD---- C:\Program Files\WindowsApps
2017-07-25 20:31:01 ----SHD---- C:\WINDOWS\Installer
2017-07-25 20:31:01 ----D---- C:\ProgramData\Microsoft Help
2017-07-25 20:29:21 ----RD---- C:\WINDOWS\assembly
2017-07-25 20:19:30 ----AD---- C:\Program Files\Microsoft Silverlight
2017-07-25 20:19:30 ----AD---- C:\Program Files (x86)\Microsoft Silverlight
2017-07-25 20:14:34 ----D---- C:\Windows
2017-07-25 20:12:06 ----D---- C:\WINDOWS\system32\config
2017-07-25 19:59:27 ----D---- C:\WINDOWS\CbsTemp
2017-07-25 19:59:25 ----D---- C:\WINDOWS\WinSxS
2017-07-25 19:59:25 ----D---- C:\WINDOWS\SysWOW64
2017-07-25 19:59:18 ----D---- C:\WINDOWS\system32\catroot2
2017-07-25 19:47:40 ----D---- C:\WINDOWS\System32
2017-07-25 19:46:20 ----D---- C:\WINDOWS\Tasks
2017-07-25 19:43:51 ----A---- C:\WINDOWS\SYSWOW64\log.txt
2017-07-25 19:41:42 ----D---- C:\WINDOWS\AppReadiness
2017-07-25 19:37:48 ----D---- C:\Program Files (x86)\Common Files
2017-07-25 19:36:34 ----D---- C:\ProgramData\Oracle
2017-07-25 19:25:43 ----D---- C:\WINDOWS\system32\Tasks
2017-07-25 19:24:24 ----RD---- C:\Program Files (x86)
2017-07-25 19:24:02 ----D---- C:\WINDOWS\system32\drivers\etc
2017-07-25 19:17:03 ----D---- C:\WINDOWS\system32\WDI
2017-07-25 19:09:45 ----AD---- C:\Program Files (x86)\Spybot - Search & Destroy 2
2017-07-25 19:07:55 ----D---- C:\ProgramData\Spybot - Search & Destroy
2017-07-25 19:06:50 ----SD---- C:\ProgramData\Microsoft
2017-07-25 19:04:35 ----D---- C:\WINDOWS\appcompat
2017-07-23 14:17:41 ----SHD---- C:\Program Files (x86)\Windows Sidebar
2017-07-23 14:17:40 ----SHD---- C:\Program Files\Windows Sidebar
2017-07-23 14:16:57 ----SHD---- C:\System Volume Information
2017-07-23 14:16:57 ----D---- C:\WINDOWS\INF
2017-07-23 14:16:03 ----D---- C:\WINDOWS\system32\restore
2017-07-23 14:13:54 ----D---- C:\WINDOWS\system32\drivers
2017-07-23 12:59:16 ----RD---- C:\WINDOWS\Microsoft.NET
2017-07-23 12:44:50 ----D---- C:\WINDOWS\SoftwareDistribution
2017-07-23 12:27:03 ----D---- C:\WINDOWS\Registration
2017-07-23 12:27:02 ----HD---- C:\ProgramData
2017-07-23 12:21:23 ----D---- C:\WINDOWS\rescache
2017-07-23 11:34:30 ----D---- C:\WINDOWS\Setup
2017-07-23 11:33:04 ----SD---- C:\WINDOWS\SYSWOW64\F12
2017-07-23 11:33:04 ----SD---- C:\WINDOWS\system32\F12
2017-07-23 11:33:04 ----D---- C:\WINDOWS\system32\migwiz
2017-07-23 11:33:03 ----RD---- C:\Program Files\Windows Defender
2017-07-23 11:33:03 ----D---- C:\WINDOWS\system32\appraiser
2017-07-23 11:33:03 ----D---- C:\WINDOWS\ShellExperiences
2017-07-23 11:33:03 ----D---- C:\WINDOWS\AppPatch
2017-07-23 11:33:03 ----D---- C:\Program Files (x86)\Windows Defender
2017-07-23 11:24:30 ----D---- C:\Program Files\Windows NT
2017-07-23 11:23:18 ----D---- C:\WINDOWS\system32\WinBioDatabase
2017-07-23 11:23:09 ----D---- C:\WINDOWS\debug
2017-07-23 11:20:24 ----RSD---- C:\WINDOWS\Fonts
2017-07-23 11:20:20 ----D---- C:\WINDOWS\system32\Tasks_Migrated
2017-07-23 11:16:23 ----D---- C:\WINDOWS\OCR
2017-07-23 11:11:55 ----D---- C:\WINDOWS\SYSWOW64\MUI
2017-07-23 11:11:55 ----D---- C:\WINDOWS\system32\MUI
2017-07-23 11:11:47 ----A---- C:\WINDOWS\SYSWOW64\dpwsockx.dll
2017-07-23 11:11:47 ----A---- C:\WINDOWS\SYSWOW64\dpmodemx.dll
2017-07-23 11:11:47 ----A---- C:\WINDOWS\SYSWOW64\dplayx.dll
2017-07-23 11:11:47 ----A---- C:\WINDOWS\SYSWOW64\dplaysvr.exe
2017-07-23 11:11:33 ----A---- C:\WINDOWS\SYSWOW64\dpnsvr.exe
2017-07-23 11:11:33 ----A---- C:\WINDOWS\SYSWOW64\dpnlobby.dll
2017-07-23 11:11:33 ----A---- C:\WINDOWS\SYSWOW64\dpnhupnp.dll
2017-07-23 11:11:33 ----A---- C:\WINDOWS\SYSWOW64\dpnhpast.dll
2017-07-23 11:11:33 ----A---- C:\WINDOWS\SYSWOW64\dpnet.dll
2017-07-23 11:11:33 ----A---- C:\WINDOWS\SYSWOW64\dpnathlp.dll
2017-07-23 11:11:33 ----A---- C:\WINDOWS\SYSWOW64\dpnaddr.dll
2017-07-23 11:11:31 ----D---- C:\WINDOWS\system32\wbem
2017-07-23 11:11:15 ----A---- C:\WINDOWS\system32\dpnsvr.exe
2017-07-23 11:11:15 ----A---- C:\WINDOWS\system32\dpnlobby.dll
2017-07-23 11:11:15 ----A---- C:\WINDOWS\system32\dpnhupnp.dll
2017-07-23 11:11:15 ----A---- C:\WINDOWS\system32\dpnhpast.dll
2017-07-23 11:11:15 ----A---- C:\WINDOWS\system32\dpnet.dll
2017-07-23 11:11:15 ----A---- C:\WINDOWS\system32\dpnathlp.dll
2017-07-23 11:11:15 ----A---- C:\WINDOWS\system32\dpnaddr.dll
2017-07-23 11:07:11 ----D---- C:\WINDOWS\system32\DriverStore
2017-07-23 11:03:05 ----D---- C:\WINDOWS\system32\CatRoot
2017-07-23 11:02:51 ----D---- C:\WINDOWS\SYSWOW64\drivers
2017-07-23 11:02:49 ----D---- C:\WINDOWS\system32\OEM
2017-07-23 11:02:48 ----D---- C:\WINDOWS\ShellNew
2017-07-23 11:02:47 ----D---- C:\WINDOWS\Help
2017-07-23 11:02:47 ----D---- C:\WINDOWS\cs
2017-07-23 10:57:32 ----D---- C:\WINDOWS\SYSWOW64\winrm
2017-07-23 10:57:31 ----D---- C:\WINDOWS\SYSWOW64\WCN
2017-07-23 10:57:31 ----D---- C:\WINDOWS\SYSWOW64\slmgr
2017-07-23 10:57:31 ----D---- C:\WINDOWS\SYSWOW64\Printing_Admin_Scripts
2017-07-23 10:57:31 ----D---- C:\WINDOWS\SYSWOW64\migration
2017-07-23 10:57:31 ----D---- C:\WINDOWS\SYSWOW64\Macromed
2017-07-23 10:57:30 ----D---- C:\WINDOWS\SYSWOW64\IME
2017-07-23 10:57:29 ----D---- C:\WINDOWS\SYSWOW64\en-US
2017-07-23 10:57:29 ----D---- C:\WINDOWS\SYSWOW64\cs-CZ
2017-07-23 10:57:29 ----AD---- C:\WINDOWS\SYSWOW64\Adobe
2017-07-23 10:57:26 ----D---- C:\WINDOWS\system32\winrm
2017-07-23 10:57:24 ----D---- C:\WINDOWS\system32\WindowsInternal.Inbox.Shared
2017-07-23 10:57:24 ----D---- C:\WINDOWS\system32\WindowsInternal.Inbox.Media.Shared
2017-07-23 10:57:24 ----D---- C:\WINDOWS\system32\WCN
2017-07-23 10:57:24 ----D---- C:\WINDOWS\system32\SystemResetPlatform
2017-07-23 10:57:24 ----D---- C:\WINDOWS\system32\spool
2017-07-23 10:57:23 ----D---- C:\WINDOWS\system32\slmgr
2017-07-23 10:57:23 ----D---- C:\WINDOWS\system32\Printing_Admin_Scripts
2017-07-23 10:57:22 ----D---- C:\WINDOWS\system32\oobe
2017-07-23 10:57:18 ----D---- C:\WINDOWS\system32\NDF
2017-07-23 10:57:18 ----D---- C:\WINDOWS\system32\migration
2017-07-23 10:57:18 ----D---- C:\WINDOWS\system32\Macromed
2017-07-23 10:57:18 ----D---- C:\WINDOWS\system32\InputMethod
2017-07-23 10:57:17 ----D---- C:\WINDOWS\system32\IME
2017-07-23 10:57:17 ----D---- C:\WINDOWS\system32\en-US
2017-07-23 10:57:16 ----D---- C:\WINDOWS\system32\en
2017-07-23 10:57:15 ----D---- C:\WINDOWS\system32\cs-CZ
2017-07-23 10:53:40 ----D---- C:\WINDOWS\system32\Boot
2017-07-23 10:53:37 ----D---- C:\WINDOWS\System
2017-07-23 10:53:35 ----D---- C:\WINDOWS\MediaViewer
2017-07-23 10:53:23 ----D---- C:\WINDOWS\InputMethod
2017-07-23 10:53:19 ----RD---- C:\Users
2017-07-23 10:53:18 ----D---- C:\ProgramData\PRICache
2017-07-23 10:53:18 ----AD---- C:\ProgramData\regid.1991-06.com.microsoft
2017-07-23 10:53:07 ----D---- C:\Program Files (x86)\Windows Photo Viewer
2017-07-23 10:53:06 ----D---- C:\Program Files (x86)\Windows Media Player
2017-07-23 10:53:06 ----D---- C:\Program Files (x86)\Windows Mail
2017-07-23 10:53:04 ----AD---- C:\Program Files (x86)\Microsoft.NET
2017-07-23 10:52:59 ----D---- C:\Program Files\Windows Photo Viewer
2017-07-23 10:52:59 ----D---- C:\Program Files\Windows Media Player
2017-07-23 10:52:59 ----D---- C:\Program Files\Windows Mail
2017-07-23 10:52:58 ----D---- C:\Program Files\Microsoft.NET
2017-07-23 10:52:57 ----AD---- C:\Program Files\Common Files\microsoft shared
2017-07-23 10:52:56 ----D---- C:\Program Files\Common Files
2017-07-23 10:52:09 ----D---- C:\WINDOWS\system32\Recovery
2017-07-23 10:51:21 ----D---- C:\ProgramData\USOPrivate
2017-07-23 10:50:08 ----D---- C:\WINDOWS\system32\CodeIntegrity
2017-07-23 10:48:36 ----D---- C:\WINDOWS\system32\Sysprep
2017-07-23 10:45:25 ----RD---- C:\WINDOWS\PrintDialog
2017-07-23 10:45:24 ----RD---- C:\WINDOWS\MiracastView
2017-07-23 10:45:22 ----RD---- C:\WINDOWS\ImmersiveControlPanel
2017-07-23 10:44:55 ----D---- C:\WINDOWS\HoloShell
2017-07-23 10:44:20 ----D---- C:\WINDOWS\system32\drivers\UMDF
2017-07-23 07:57:21 ----D---- C:\Users\OEM\AppData\Roaming\GHISLER
2017-07-23 07:57:10 ----D---- C:\Program Files\Total Commander
2017-07-23 07:45:01 ----D---- C:\WINDOWS\system32\MRT
2017-07-23 07:40:41 ----AC---- C:\WINDOWS\system32\MRT.exe
2017-07-23 07:36:41 ----D---- C:\Users\OEM\AppData\Roaming\Seznam.cz
2017-07-23 07:35:35 ----D---- C:\Program Files (x86)\Seznam.cz
2017-07-23 07:35:07 ----D---- C:\ProgramData\Norton
2017-07-23 07:30:28 ----DC---- C:\WINDOWS\system32\DRVSTORE
2017-07-23 07:30:00 ----AD---- C:\Program Files (x86)\Opera
2017-07-23 07:29:37 ----D---- C:\Program Files (x86)\Nero
2017-07-23 07:28:45 ----AD---- C:\ProgramData\Nero
2017-06-30 16:47:29 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe
2017-06-26 09:59:53 ----RD---- C:\WINDOWS\ToastData

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 edevmon;edevmon; C:\WINDOWS\system32\DRIVERS\edevmon.sys [2017-01-17 106768]
R0 iaStorA;iaStorA; C:\WINDOWS\System32\drivers\iaStorA.sys [2012-08-16 645952]
R0 iorate;@%SystemRoot%\system32\drivers\iorate.sys,-101; C:\WINDOWS\system32\drivers\iorate.sys [2017-03-18 49568]
R1 eamonm;eamonm; C:\WINDOWS\system32\DRIVERS\eamonm.sys [2017-01-17 132272]
R1 ehdrv;ehdrv; C:\WINDOWS\system32\DRIVERS\ehdrv.sys [2017-01-17 180544]
R1 epfw;epfw; C:\WINDOWS\system32\DRIVERS\epfw.sys [2017-01-17 77616]
R1 epfwwfp;epfwwfp; C:\WINDOWS\system32\DRIVERS\epfwwfp.sys [2017-01-17 96856]
R1 FileCrypt;@%systemroot%\system32\drivers\filecrypt.sys,-100; C:\WINDOWS\system32\drivers\filecrypt.sys [2017-03-18 54272]
R1 GpuEnergyDrv;@%SystemRoot%\system32\drivers\gpuenergydrv.sys,-100; C:\WINDOWS\System32\drivers\gpuenergydrv.sys [2017-03-18 8192]
R2 clreg;@%SystemRoot%\system32\drivers\registry.sys,-100; C:\WINDOWS\System32\drivers\registry.sys [2017-03-18 14336]
R2 ekbdflt;ekbdflt; C:\WINDOWS\system32\DRIVERS\ekbdflt.sys [2017-01-17 49672]
R2 MMCSS;@%systemroot%\system32\drivers\mmcss.sys,-100; C:\WINDOWS\system32\drivers\mmcss.sys [2017-03-18 50688]
R2 storqosflt;@%SystemRoot%\System32\drivers\storqosflt.sys,-101; C:\WINDOWS\system32\drivers\storqosflt.sys [2017-03-18 79872]
R3 athr;@athw8x.inf,%ATHR.Service.DispName%;Qualcomm Atheros Extensible Wireless LAN device driver; C:\WINDOWS\System32\drivers\athw8x.sys [2017-03-18 4233728]
R3 b57xdbd;@oem20.inf,%bcmxd_16bf_svcd%;Broadcom xD Picture Bus Driver Service; C:\WINDOWS\System32\drivers\b57xdbd.sys [2012-08-13 72280]
R3 b57xdmp;@oem20.inf,%BXD_SVCDESC%;Broadcom xD Picture vstorp client drv; C:\WINDOWS\System32\drivers\b57xdmp.sys [2012-08-13 21080]
R3 bScsiMSa;bScsiMSa; C:\WINDOWS\System32\drivers\bScsiMSa.sys [2012-06-19 55384]
R3 bScsiSDa;bScsiSDa; C:\WINDOWS\System32\drivers\bScsiSDa.sys [2012-08-14 70744]
R3 BTATH_HCRP;@oem11.inf,%BTATH_HCRP.SvcDesc%;Bluetooth HCRP Server driver; C:\WINDOWS\System32\drivers\btath_hcrp.sys [2013-01-25 179432]
R3 BTATH_RCP;@oem25.inf,%BTATH_RCP%;Bluetooth AVRCP Device; C:\WINDOWS\System32\drivers\btath_rcp.sys [2013-01-25 136424]
R3 BtFilter;BtFilter; C:\WINDOWS\system32\DRIVERS\btfilter.sys [2016-07-13 610336]
R3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Služba Bluetooth Enumerator; C:\WINDOWS\System32\drivers\BthEnum.sys [2017-03-18 105472]
R3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Ovladač úspory energie technologie Bluetooth; C:\WINDOWS\system32\DRIVERS\Microsoft.Bluetooth.Legacy.LEEnumerator.sys [2017-03-18 96768]
R3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Bluetooth Device (Personal Area Network); C:\WINDOWS\System32\drivers\bthpan.sys [2017-07-23 130048]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Ovladač rozhraní USB radiostanice Bluetooth; C:\WINDOWS\system32\DRIVERS\BTHUSB.sys [2017-03-18 85504]
R3 CAD;@ChargeArbitration.inf,%CAD_DevDesc%;Charge Arbitration Driver; C:\WINDOWS\System32\drivers\CAD.sys [2017-03-18 53664]
R3 ETD;@oem63.inf,%PS2.DeviceDesc%;ELAN Input Device; C:\WINDOWS\system32\DRIVERS\ETD.sys [2015-10-07 525512]
R3 igfx;igfx; C:\WINDOWS\system32\DRIVERS\igdkmd64.sys [2016-05-03 3811288]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RTKVHD64.sys [2012-06-12 4060560]
R3 iwdbus;@oem14.inf,%iwdbus.SVCDESC%;IWD Bus Enumerator; C:\WINDOWS\System32\drivers\iwdbus.sys [2015-12-01 38896]
R3 k57nd60a;@netk57a.inf,%SvcDispName%;Broadcom NetLink (TM) Gigabit Ethernet - NDIS 6.0; C:\WINDOWS\System32\drivers\k57nd60a.sys [2017-03-18 446464]
R3 MEIx64;@oem7.inf,%HECI_SvcDesc%;Intel(R) Management Engine Interface ; C:\WINDOWS\System32\drivers\HECIx64.sys [2012-07-03 62784]
R3 Ps2Kb2Hid;@oem33.inf,%Ps2Kb2Hid.SVCDESC%;PS/2 Keyboard to HID Driver; C:\WINDOWS\System32\drivers\aPs2Kb2Hid.sys [2013-06-15 26736]
R3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Zařízení Bluetooth (RFCOMM protokol TDI); C:\WINDOWS\System32\drivers\rfcomm.sys [2017-03-18 180736]
S0 eelam;eelam; C:\WINDOWS\system32\DRIVERS\eelam.sys [2016-06-28 15488]
S0 LSI_SAS2i;LSI_SAS2i; C:\WINDOWS\System32\drivers\lsi_sas2i.sys [2017-03-18 123808]
S0 LSI_SAS3i;LSI_SAS3i; C:\WINDOWS\System32\drivers\lsi_sas3i.sys [2017-03-18 103328]
S0 megasas2i;megasas2i; C:\WINDOWS\System32\drivers\MegaSas2i.sys [2017-03-18 64416]
S0 percsas2i;percsas2i; C:\WINDOWS\System32\drivers\percsas2i.sys [2017-03-18 58784]
S0 percsas3i;percsas3i; C:\WINDOWS\System32\drivers\percsas3i.sys [2017-03-18 61848]
S0 scmbus;@scmbus.inf,%scmbus.SvcDesc%;Microsoft Storage Class Memory Bus Driver; C:\WINDOWS\System32\drivers\scmbus.sys [2017-03-18 91040]
S0 storufs;@storufs.inf,%UfsServiceDesc%;Microsoft Universal Flash Storage (UFS) Driver; C:\WINDOWS\System32\drivers\storufs.sys [2017-03-18 36760]
S2 CldFlt;Windows Cloud Files Filter Driver; C:\WINDOWS\system32\drivers\cldflt.sys [2017-03-18 12288]
S3 AcpiDev;@acpidev.inf,%AcpiDev.SvcDesc%;ACPI Devices driver; C:\WINDOWS\System32\drivers\AcpiDev.sys [2017-03-18 20480]
S3 applockerfltr;@%systemroot%\system32\srpapi.dll,-102; C:\WINDOWS\system32\drivers\applockerfltr.sys [2017-03-18 17920]
S3 AthBTPort;@oem17.inf,%BTHSUPPORT.SvcDesc%;Qualcomm Atheros Virtual Bluetooth Class; C:\WINDOWS\system32\DRIVERS\btath_flt.sys [2013-01-25 89168]
S3 BTATH_A2DP;@oem23.inf,%BTATH_A2DP.SvcDesc%;Bluetooth A2DP Audio Driver; C:\WINDOWS\system32\drivers\btath_a2dp.sys [2013-01-25 346192]
S3 btath_avdt;@oem23.inf,%btath_avdt.SvcDesc%;Qualcomm Atheros Bluetooth AVDT Service; C:\WINDOWS\system32\drivers\btath_avdt.sys [2013-01-25 115280]
S3 BTATH_LWFLT;@oem13.inf,%BTATH_LWFLT%;Bluetooth LWFLT Device; C:\WINDOWS\system32\DRIVERS\btath_lwflt.sys [2013-01-25 77464]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Ovladač portu Bluetooth; C:\WINDOWS\system32\DRIVERS\BTHport.sys [2017-07-23 982016]
S3 buttonconverter;@buttonconverter.inf,%btnconv.SvcDesc%;Service for Portable Device Control devices; C:\WINDOWS\System32\drivers\buttonconverter.sys [2017-03-18 39424]
S3 CapImg;@capimg.inf,%CapImgHid_Service%;HID driver for CapImg touch screen; C:\WINDOWS\System32\drivers\capimg.sys [2017-03-18 122880]
S3 eeCtrl;Symantec Eraser Control driver; \??\C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys [2017-06-29 508032]
S3 genericusbfn;@genericusbfn.inf,%genericusbfn.ServiceName%;Generic USB Function Class; C:\WINDOWS\System32\drivers\genericusbfn.sys [2017-03-18 21504]
S3 hidinterrupt;@hidinterrupt.inf,%HID_Interrupt.SvcDesc%;Common Driver for HID Buttons implemented with interrupts; C:\WINDOWS\System32\drivers\hidinterrupt.sys [2017-03-18 51104]
S3 hvservice;@%SystemRoot%\system32\drivers\hvservice.sys,-16; C:\WINDOWS\system32\drivers\hvservice.sys [2017-03-18 74648]
S3 cht4iscsi;cht4iscsi; C:\WINDOWS\System32\drivers\cht4sx64.sys [2017-03-18 347032]
S3 cht4vbd;@cht4vx64.inf,%cht4vbd.generic%;Chelsio Virtual Bus Driver; C:\WINDOWS\System32\drivers\cht4vx64.sys [2017-03-18 2104224]
S3 iagpio;@iagpio.inf,%iagpio.SVCDESC%;Intel Serial IO GPIO Controller Driver; C:\WINDOWS\System32\drivers\iagpio.sys [2017-03-18 33280]
S3 iai2c;@iai2c.inf,%iai2c.SVCDESC%;Intel(R) Serial IO I2C Host Controller; C:\WINDOWS\System32\drivers\iai2c.sys [2017-03-18 81408]
S3 iaLPSS2i_GPIO2;@iaLPSS2i_GPIO2_SKL.inf,%iaLPSS2i_GPIO2.SVCDESC%;Intel(R) Serial IO GPIO Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2.sys [2017-03-18 70656]
S3 iaLPSS2i_GPIO2_BXT_P;@iaLPSS2i_GPIO2_BXT_P.inf,%iaLPSS2i_GPIO2_BXT_P.SVCDESC%;Intel(R) Serial IO GPIO Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_BXT_P.sys [2017-03-18 85504]
S3 iaLPSS2i_I2C;@iaLPSS2i_I2C_SKL.inf,%iaLPSS2i_I2C.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [2017-03-18 165376]
S3 iaLPSS2i_I2C_BXT_P;@iaLPSS2i_I2C_BXT_P.inf,%iaLPSS2i_I2C_BXT_P.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_BXT_P.sys [2017-03-18 168448]
S3 ibbus;@mlx4_bus.inf,%Ibbus.ServiceDesc%;Mellanox InfiniBand Bus/AL (Filter Driver); C:\WINDOWS\System32\drivers\ibbus.sys [2017-03-18 526240]
S3 IndirectKmd;@%SystemRoot%\system32\drivers\IndirectKmd.sys,-100; C:\WINDOWS\System32\drivers\IndirectKmd.sys [2017-03-18 36864]
S3 intaud_WaveExtensible;Intel WiDi Audio Device; C:\WINDOWS\system32\drivers\intelaud.sys [2013-09-26 39320]
S3 irda;IrDA; C:\WINDOWS\system32\drivers\irda.sys [2017-03-18 120320]
S3 mausbhost;@mausbhost.inf,%MAUSBHost.ServiceName%;MA-USB Host Controller Driver; C:\WINDOWS\System32\drivers\mausbhost.sys [2017-03-18 405408]
S3 mausbip;@mausbhost.inf,%MAUSBIP.ServiceName%;MA-USB IP Filter Driver; C:\WINDOWS\System32\drivers\mausbip.sys [2017-03-18 51104]
S3 mlx4_bus;@mlx4_bus.inf,%MLX4BUS.ServiceDesc%;Mellanox ConnectX Bus Enumerator; C:\WINDOWS\System32\drivers\mlx4_bus.sys [2017-03-18 842656]
S3 ndfltr;@mlx4_bus.inf,%ndfltr.ServiceDesc%;NetworkDirect Service; C:\WINDOWS\System32\drivers\ndfltr.sys [2017-03-18 108960]
S3 NetAdapterCx;Network Adapter Wdf Class Extension Library; C:\WINDOWS\system32\drivers\NetAdapterCx.sys [2017-03-18 122368]
S3 nvdimmn;@nvdimmn.inf,%nvdimmn.SvcDesc%;Microsoft NVDIMM-N device driver; C:\WINDOWS\System32\drivers\nvdimmn.sys [2017-03-18 80896]
S3 pmem;@pmem.inf,%pmem.SvcDesc%;Microsoft persistent memory disk driver; C:\WINDOWS\System32\drivers\pmem.sys [2017-03-18 101376]
S3 ReFSv1;ReFSv1; C:\WINDOWS\system32\drivers\ReFSv1.sys [2017-03-18 936864]
S3 SDFRd;@SDFRd.inf,%SDFRd.ServiceDesc%;SDF Reflector; C:\WINDOWS\System32\drivers\SDFRd.sys [2017-03-18 31128]
S3 SpatialGraphFilter;Holographic Spatial Graph Filter; C:\WINDOWS\System32\drivers\SpatialGraphFilter.sys [2017-03-20 40352]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2017-04-25 83056]
R2 AtherosSvc;AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [2013-01-25 227456]
R2 BrcmCardReader;Broadcom Card Reader Service; C:\Program Files\Broadcom\MemoryCard\BrcmCardReader.exe [2012-08-21 176640]
R2 CDPSvc;@%SystemRoot%\system32\cdpsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2017-03-18 47664]
R2 CDPUserSvc_4a55b;Uživatelská služba platformy připojených zařízení_4a55b; C:\WINDOWS\system32\svchost.exe [2017-03-18 47664]
R2 CoreMessagingRegistrar;@%SystemRoot%\system32\coremessaging.dll,-1; C:\WINDOWS\system32\svchost.exe [2017-03-18 47664]
R2 DiagTrack;@%SystemRoot%\system32\diagtrack.dll,-3001; C:\WINDOWS\System32\svchost.exe [2017-03-18 47664]
R2 DoSvc;@%systemroot%\system32\dosvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2017-03-18 47664]
R2 DsiWMIService;Dritek WMI Service; C:\Program Files (x86)\Launch Manager\dsiwmis.exe [2012-12-10 350544]
R2 DusmSvc;@%SystemRoot%\System32\dusmsvc.dll,-1; C:\WINDOWS\System32\svchost.exe [2017-03-18 47664]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET Smart Security\ekrn.exe [2016-12-14 2836296]
R2 ETDService;Elan Service; C:\Program Files\Elantech\ETDService.exe [2015-10-07 144072]
R2 igfxCUIService1.0.0.0;Intel(R) HD Graphics Control Panel Service; C:\WINDOWS\system32\igfxCUIService.exe [2016-05-03 337888]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [2012-04-20 635104]
R2 IviRegMgr;IviRegMgr; C:\Program Files (x86)\Common Files\InterVideo\RegMgr\iviRegMgr.exe [2010-05-21 110736]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2012-07-18 165760]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2012-07-18 276864]
R2 OneSyncSvc_4a55b;Hostitel synchronizace_4a55b; C:\WINDOWS\system32\svchost.exe [2017-03-18 47664]
R2 PSI_SVC_2;Protexis Licensing V2; C:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe [2010-03-11 193824]
R2 RfButtonDriverService;Dritek RF Button Command Service; C:\Windows\RfBtnSvc64.exe [2013-06-15 96880]
R2 SDWSCService;Spybot-S&D 2 Security Center Service; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [2017-05-23 233936]
R2 SecurityHealthService;@%systemroot%\system32\SecurityHealthAgent.dll,-1002; C:\WINDOWS\system32\SecurityHealthService.exe [2017-07-23 336320]
R3 DsSvc;@%SystemRoot%\system32\dssvc.dll,-10003; C:\WINDOWS\System32\svchost.exe [2017-03-18 47664]
R3 ePowerSvc;ePower Service; C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe [2013-03-16 662088]
R3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2017-02-10 43696]
R3 LicenseManager;@%SystemRoot%\system32\licensemanagersvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2017-03-18 47664]
R3 PimIndexMaintenanceSvc_4a55b;Data kontaktů_4a55b; C:\WINDOWS\system32\svchost.exe [2017-03-18 47664]
R3 StateRepository;@%SystemRoot%\system32\windows.staterepository.dll,-1; C:\WINDOWS\system32\svchost.exe [2017-03-18 47664]
S2 CDPUserSvc;@%SystemRoot%\system32\cdpusersvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2017-03-18 47664]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-28 144200]
S2 MapsBroker;@%SystemRoot%\System32\moshost.dll,-100; C:\WINDOWS\System32\svchost.exe [2017-03-18 47664]
S2 OneSyncSvc;@%SystemRoot%\system32\APHostRes.dll,-10002; C:\WINDOWS\system32\svchost.exe [2017-03-18 47664]
S2 SDScannerService;Spybot-S&D 2 Scanner Service; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [2017-05-23 1776864]
S2 SDUpdateService;Spybot-S&D 2 Updating Service; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [2017-05-23 2131760]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2016-03-23 327808]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2017-07-23 272384]
S3 AJRouter;@%SystemRoot%\system32\AJRouter.dll,-2; C:\WINDOWS\system32\svchost.exe [2017-03-18 47664]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\WINDOWS\System32\svchost.exe [2017-03-18 47664]
S3 ClipSVC;@%SystemRoot%\system32\ClipSVC.dll,-103; C:\WINDOWS\System32\svchost.exe [2017-03-18 47664]
S3 cphs;Intel(R) Content Protection HECI Service; C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe [2016-05-03 299488]
S3 DeviceFastLaneService;Device Fast-lane Service; C:\Program Files\Acer\Acer Device Fast-lane\DeviceFastLaneSvc.exe [2012-11-16 469648]
S3 DevicesFlowUserSvc;@%SystemRoot%\system32\DevicesFlowBroker.dll,-103; C:\WINDOWS\system32\svchost.exe [2017-03-18 47664]
S3 DevicesFlowUserSvc_4a55b;Tok zařízení_4a55b; C:\WINDOWS\system32\svchost.exe [2017-03-18 47664]
S3 DevQueryBroker;@%SystemRoot%\system32\DevQueryBroker.dll,-100; C:\WINDOWS\system32\svchost.exe [2017-03-18 47664]
S3 diagnosticshub.standardcollector.service;@%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000; C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe [2017-03-18 86528]
S3 DmEnrollmentSvc;@%systemroot%\system32\Windows.Internal.Management.dll,-100; C:\WINDOWS\system32\svchost.exe [2017-03-18 47664]
S3 dmwappushservice;@%SystemRoot%\system32\dmwappushsvc.dll,-200; C:\WINDOWS\system32\svchost.exe [2017-03-18 47664]
S3 embeddedmode;@%SystemRoot%\system32\embeddedmodesvc.dll,-201; C:\WINDOWS\System32\svchost.exe [2017-03-18 47664]
S3 EntAppSvc;@EnterpriseAppMgmtSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2017-03-18 47664]
S3 FrameServer;@%systemroot%\system32\FrameServer.dll,-100; C:\WINDOWS\System32\svchost.exe [2017-03-18 47664]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-28 144200]
S3 HvHost;@%SystemRoot%\system32\hvhostsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2017-03-18 47664]
S3 icssvc;@%SystemRoot%\System32\tetheringservice.dll,-4097; C:\WINDOWS\system32\svchost.exe [2017-03-18 47664]
S3 IpxlatCfgSvc;@%Systemroot%\system32\ipxlatcfg.dll,-500; C:\WINDOWS\System32\svchost.exe [2017-03-18 47664]
S3 irmon;@%SystemRoot%\System32\irmon.dll,-2000; C:\WINDOWS\system32\svchost.exe [2017-03-18 47664]
S3 MessagingService;@%SystemRoot%\system32\MessagingService.dll,-100; C:\WINDOWS\system32\svchost.exe [2017-03-18 47664]
S3 MessagingService_4a55b;Služba zasílání zpráv_4a55b; C:\WINDOWS\system32\svchost.exe [2017-03-18 47664]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2017-05-21 173512]
S3 NaturalAuthentication;@%systemroot%\system32\NaturalAuth.dll,-100; C:\WINDOWS\system32\svchost.exe [2017-03-18 47664]
S3 NetSetupSvc;@%SystemRoot%\system32\NetSetupSvc.dll,-3; C:\WINDOWS\System32\svchost.exe [2017-03-18 47664]
S3 NgcCtnrSvc;@%SystemRoot%\System32\NgcCtnrSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2017-03-18 47664]
S3 NgcSvc;@%SystemRoot%\System32\ngcsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2017-03-18 47664]
S3 NMIndexingService;NMIndexingService; C:\Program Files (x86)\Common Files\Ahead\Lib\NMIndexingService.exe [2008-01-22 275752]
S3 ose64;Office 64 Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2012-12-08 178760]
S3 PhoneSvc;@%SystemRoot%\system32\PhoneserviceRes.dll,-10000; C:\WINDOWS\system32\svchost.exe [2017-03-18 47664]
S3 PimIndexMaintenanceSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-15001; C:\WINDOWS\system32\svchost.exe [2017-03-18 47664]
S3 RetailDemo;@%SystemRoot%\System32\RDXService.dll,-256; C:\WINDOWS\System32\svchost.exe [2017-03-18 47664]
S3 RmSvc;@%SystemRoot%\system32\RMapi.dll,-1001; C:\WINDOWS\System32\svchost.exe [2017-03-18 47664]
S3 SEMgrSvc;@%SystemRoot%\System32\SEMgrSvc.dll,-1001; C:\WINDOWS\system32\svchost.exe [2017-03-18 47664]
S3 SensorDataService;@%SystemRoot%\system32\SensorDataService.exe,-101; C:\WINDOWS\System32\SensorDataService.exe [2017-03-18 1284608]
S3 SensorService;@%SystemRoot%\System32\sensorservice.dll,-1000; C:\WINDOWS\system32\svchost.exe [2017-03-18 47664]
S3 SmsRouter;@%SystemRoot%\System32\SmsRouterSvc.dll,-10001; C:\WINDOWS\system32\svchost.exe [2017-03-18 47664]
S3 spectrum;@%systemroot%\system32\spectrum.exe,-101; C:\WINDOWS\system32\spectrum.exe [2017-03-18 891904]
S4 shpamsvc;@%SystemRoot%\System32\Windows.SharedPC.AccountManager.dll,-100; C:\WINDOWS\System32\svchost.exe [2017-03-18 47664]

-----------------EOF-----------------
Děkuji za odpověď.

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118275
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Preventivní kontrola

#2 Příspěvek od Rudy »

Zdravím!
Spusťte tuto utilitu:
Stáhněte AdwCleaner https://toolslib.net/downloads/viewdown ... dwcleaner/
Uložte na plochu
Ukončete všechny programy
Klikněte nejprve na >Scan<(hledání) a pak na >Clean< (mazání).
Proběhne skenováni a pak se objeví log, který sem vložte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Odpovědět