Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Preventivka

Nemáte v tuto chvíli žádný problém s pc a chcete se jen ujistit, že je vše v pořádku?
Vložte log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zamčeno
Zpráva
Autor
Jarda62
Návštěvník
Návštěvník
Příspěvky: 170
Registrován: 28 črc 2008 17:59

Preventivka

#1 Příspěvek od Jarda62 »

Dobrý den,

PC mi běží zcela v pořádku, takže dávám jen pro jistotu :)
Děkuji


Logfile of random's system information tool 1.10 (written by random/random)
Run by jarda at 2017-09-14 18:49:21
Microsoft Windows 10 Home
System drive C: has 72 GB (30%) free of 238 GB
Total RAM: 16343 MB (82% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 18:49:24, on 14.09.2017
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.15063.0608)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\MSI Afterburner\MSIAfterburner.exe
C:\Program Files (x86)\Steam\Steam.exe
C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
C:\Program Files\trend micro\jarda.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = %11%\blank.htm
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=
O2 - BHO: Microsoft OneDrive for Business Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\PROGRA~2\MICROS~3\Office16\GROOVEEX.DLL
O4 - HKCU\..\Run: [Steam] "C:\Program Files (x86)\Steam\steam.exe" -silent
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O8 - Extra context menu item: E&xportovat do Microsoft Excelu - res://C:\PROGRA~1\MICROS~3\Office16\EXCEL.EXE/3000
O8 - Extra context menu item: Poslat do On&eNotu - res://C:\PROGRA~1\MICROS~3\Office16\ONBttnIE.dll/105
O9 - Extra button: Poslat do OneNotu - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office16\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Poslat do On&eNotu - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office16\ONBttnIE.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office16\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office16\ONBttnIELinkedNotes.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: mso-minsb.16 - {3459B272-CC19-4448-86C9-DDC3B4B2FAD3} - C:\Program Files (x86)\Microsoft Office\Office16\MSOSB.DLL
O18 - Protocol: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\Office16\MSOSB.DLL
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Filter hijack: text/xml - {807583E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE16\MSOXMLMF.DLL
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: BattlEye Service (BEService) - Unknown owner - C:\Program Files (x86)\Common Files\BattlEye\BEService.exe
O23 - Service: Corsair LINK 4 (CLink4Service) - Corsair Components, Inc. - C:\Program Files (x86)\CorsairLink4\CorsairLink4.Service.exe
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\Windows\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: EasyAntiCheat - EasyAntiCheat Ltd - C:\Windows\system32\EasyAntiCheat.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Služba Aktualizace Google (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Aktualizace Google (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Hi-Rez Studios Authenticate and Update Service (HiPatchService) - Hi-Rez Studios - C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe
O23 - Service: Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Logitech Gaming Registry Service (LogiRegistryService) - Logitech Inc. - C:\Program Files\Logitech Gaming Software\Drivers\APOService\LogiRegistryService.exe
O23 - Service: Malwarebytes Service (MBAMService) - Malwarebytes - C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Display Container LS (NVDisplay.ContainerLocalSystem) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
O23 - Service: NVIDIA Telemetry Container (NvTelemetryContainer) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe
O23 - Service: Origin Client Service - Electronic Arts - C:\Program Files (x86)\Origin\OriginClientService.exe
O23 - Service: Origin Web Helper Service - Electronic Arts - C:\Program Files (x86)\Origin\OriginWebHelperService.exe
O23 - Service: PAExec - Power Admin LLC - C:\Windows\PAExec.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\SecurityHealthAgent.dll,-1002 (SecurityHealthService) - Unknown owner - C:\Windows\system32\SecurityHealthService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\Windows\System32\SensorDataService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spectrum.exe,-101 (spectrum) - Unknown owner - C:\Windows\system32\spectrum.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\Windows\system32\TieringEngineService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: Intel(R) Extreme Tuning Utility Service (XTU3SERVICE) - Intel(R) Corporation - C:\Program Files (x86)\Intel\Intel(R) Extreme Tuning Utility\XtuService.exe

--
End of file - 9521 bytes

======Listing Processes======








C:\Windows\system32\lsass.exe
c:\windows\system32\svchost.exe -k dcomlaunch -s PlugPlay
C:\Windows\system32\svchost.exe -k DcomLaunch
"fontdrvhost.exe"
c:\windows\system32\svchost.exe -k rpcss
c:\windows\system32\svchost.exe -k dcomlaunch -s LSM
winlogon.exe
"fontdrvhost.exe"
c:\windows\system32\svchost.exe -k localservicenetworkrestricted -s lmhosts
"dwm.exe"
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -s NcbService
c:\windows\system32\svchost.exe -k localservicenetworkrestricted -s TimeBrokerSvc
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -s hidserv
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -s StorSvc
c:\windows\system32\svchost.exe -k netsvcs -s Schedule
c:\windows\system32\svchost.exe -k netsvcs -s ProfSvc
c:\windows\system32\svchost.exe -k localservicenetworkrestricted -s EventLog
c:\windows\system32\svchost.exe -k localservice -s nsi
c:\windows\system32\svchost.exe -k netsvcs -s UserManager
c:\windows\system32\svchost.exe -k localservicenetworkrestricted -s Dhcp
"C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem" -r -p 30000
c:\windows\system32\svchost.exe -k appmodel -s StateRepository
c:\windows\system32\svchost.exe -k netsvcs -s Themes
c:\windows\system32\svchost.exe -k localservice -s EventSystem
c:\windows\system32\svchost.exe -k networkservice -s NlaSvc
c:\windows\system32\svchost.exe -k netsvcs -s SENS
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -s AudioEndpointBuilder
c:\windows\system32\svchost.exe -k localservice -s FontCache
c:\windows\system32\svchost.exe -k localservice -s netprofm
"C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -f "C:\ProgramData\NVIDIA\DisplaySessionContainer%d.log" -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\Session" -r -l 3 -p 30000 -c
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
c:\windows\system32\svchost.exe -k networkservice -s Dnscache
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
c:\windows\system32\svchost.exe -k localservice -s WinHttpAutoProxySvc
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalServiceNetworkRestricted
c:\windows\system32\svchost.exe -k netsvcs -s ShellHWDetection
C:\Windows\System32\spoolsv.exe
c:\windows\system32\svchost.exe -k networkservice -s LanmanWorkstation
c:\windows\system32\svchost.exe -k networkservice -s CryptSvc
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -s PcaSvc
c:\windows\system32\svchost.exe -k netsvcs -s WpnService
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -s DeviceAssociationService
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -s SysMain
c:\windows\system32\svchost.exe -k localservicenonetwork -s DPS
C:\Windows\system32\svchost.exe -k imgsvc
C:\Windows\System32\svchost.exe -k utcsvc
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -s TrkWks
c:\windows\system32\svchost.exe -k netsvcs -s Winmgmt
c:\windows\system32\svchost.exe -k netsvcs -s IKEEXT
c:\windows\system32\svchost.exe -k appmodel -s tiledatamodelsvc

"C:\Program Files\Logitech Gaming Software\Drivers\APOService\LogiRegistryService.exe"

"C:\Program Files (x86)\Origin\OriginWebHelperService.exe"
c:\windows\system32\svchost.exe -k localservice -s WdiServiceHost

dashost.exe {6a8b3c66-7071-4bce-af0c46f1f311175b}
c:\windows\system32\svchost.exe -k netsvcs -s LanmanServer
c:\windows\system32\svchost.exe -k netsvcs -s iphlpsvc
c:\windows\system32\svchost.exe -k localserviceandnoimpersonation -s SSDPSRV
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -s NgcSvc
c:\windows\system32\svchost.exe -k localservicenetworkrestricted -s NgcCtnrSvc

C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\svchost.exe -k LocalService
c:\windows\system32\svchost.exe -k localservicenonetwork -s NcdAutoSetup
c:\windows\system32\svchost.exe -k localserviceandnoimpersonation -s FDResPub
c:\windows\system32\svchost.exe -k netsvcs -s Browser
c:\windows\system32\svchost.exe -k localservicenetworkrestricted -s HomeGroupProvider
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -s HomeGroupListener
c:\windows\system32\svchost.exe -k localservicepeernet -s p2pimsvc
c:\windows\system32\svchost.exe -k localservicepeernet -s PNRPsvc
c:\windows\system32\svchost.exe -k localservicepeernet -s p2psvc
c:\windows\system32\svchost.exe -k localservice -s CDPSvc
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\DllHost.exe /Processid:{30D49246-D217-465F-B00B-AC9DDD652EB7}
sihost.exe
c:\windows\system32\svchost.exe -k unistacksvcgroup -s CDPUserSvc
c:\windows\system32\svchost.exe -k unistacksvcgroup -s WpnUserService
taskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E}
"C:\Program Files (x86)\MSI Afterburner\MSIAfterburner.exe" /s
c:\windows\system32\svchost.exe -k netsvcs -s TokenBroker
C:\Windows\Explorer.EXE
"C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
"C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe" -ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca
C:\Windows\system32\SearchIndexer.exe /Embedding
C:\Windows\System32\RuntimeBroker.exe -Embedding
C:\Windows\system32\SettingSyncHost.exe -Embedding
"C:\Program Files\Windows Defender\MSASCuiL.exe"
"C:\Program Files\Logitech Gaming Software\LCore.exe" /minimized
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files (x86)\Steam\Steam.exe" -silent
"C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe" "-lang=cs_CZ" "-cachedir=C:\Users\jarda\AppData\Local\Steam\htmlcache" "-steampid=10276" "-buildid=1504757234" "-steamid=0" "-clientui=C:\Program Files (x86)\Steam\clientui" --disable-spell-checking --disable-out-of-process-pac --enable-blink-features=ResizeObserver --disable-smooth-scrolling --disable-gpu-compositing --disable-gpu --enable-direct-write "--log-file=C:\Program Files (x86)\Steam\logs\cef_log.txt"
"C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe" --type=crashpad-handler /prefetch:7 --max-uploads=5 --max-db-size=20 --max-db-age=5 --monitor-self-annotation=ptype=crashpad-handler "--database=C:\Users\jarda\AppData\Local\CEF\User Data\Crashpad" "--metrics-dir=C:\Users\jarda\AppData\Local\CEF\User Data" --url=http://crash.steampowered.com/submit --annotation=platform=win32 --annotation=product=cefwebhelper --annotation=version=1.0 --initial-client-data=0x2c4,0x2f0,0x2f4,0x2ec,0x2f8,0x6e9f81e4,0x6e9f81f4,0x6e9f8204
"C:\Program Files (x86)\Common Files\Steam\SteamService.exe" /RunAsService
"C:\Program Files (x86)\Intel\Intel(R) Extreme Tuning Utility\XtuService.exe"
"C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe"
c:\windows\system32\svchost.exe -k localservicenetworkrestricted -s wscsvc
c:\windows\system32\svchost.exe -k unistacksvcgroup
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
c:\windows\system32\svchost.exe -k localserviceandnoimpersonation -s upnphost
c:\windows\system32\svchost.exe -k netsvcs
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=crashpad-handler /prefetch:7 --monitor-self-annotation=ptype=crashpad-handler "--database=C:\Users\jarda\AppData\Local\Google\Chrome\User Data\Crashpad" "--metrics-dir=C:\Users\jarda\AppData\Local\Google\Chrome\User Data" --url=https://clients2.google.com/cr/report --annotation=channel= --annotation=plat=Win64 --annotation=prod=Chrome --annotation=ver=61.0.3163.79 --initial-client-data=0x1dc,0x1e0,0x1e4,0x1d8,0x1e8,0x7ffe03611960,0x7ffe03611978,0x7ffe03611930
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=watcher --main-thread-id=2476 --on-initialized-event-handle=636 --parent-handle=640 /prefetch:6
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --disable-smooth-scrolling --field-trial-handle=2252,10838499794713221093,11480595870359407727,131072 --service-pipe-token=516BAF5DDFB5499347B94D591C00E3ED --lang=cs --extension-process --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --blink-settings=disallowFetchForDocWrittenScriptsInMainFrame=false,disallowFetchForDocWrittenScriptsInMainFrameOnSlowConnections=true --enable-pinch --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --content-image-texture-target=0,0,3553;0,1,3553;0,2,3553;0,3,3553;0,4,3553;0,5,3553;0,6,3553;0,7,3553;0,8,3553;0,9,3553;0,10,3553;0,11,3553;0,12,3553;0,13,3553;0,14,3553;0,15,3553;0,16,3553;0,17,3553;1,0,3553;1,1,3553;1,2,3553;1,3,3553;1,4,3553;1,5,3553;1,6,3553;1,7,3553;1,8,3553;1,9,3553;1,10,3553;1,11,3553;1,12,3553;1,13,3553;1,14,3553;1,15,3553;1,16,3553;1,17,3553;2,0,3553;2,1,3553;2,2,3553;2,3,3553;2,4,3553;2,5,3553;2,6,3553;2,7,3553;2,8,3553;2,9,3553;2,10,3553;2,11,3553;2,12,3553;2,13,3553;2,14,3553;2,15,3553;2,16,3553;2,17,3553;3,0,3553;3,1,3553;3,2,3553;3,3,3553;3,4,3553;3,5,3553;3,6,3553;3,7,3553;3,8,3553;3,9,3553;3,10,3553;3,11,3553;3,12,3553;3,13,3553;3,14,3553;3,15,3553;3,16,3553;3,17,3553;4,0,3553;4,1,3553;4,2,3553;4,3,3553;4,4,3553;4,5,3553;4,6,3553;4,7,3553;4,8,3553;4,9,3553;4,10,3553;4,11,3553;4,12,3553;4,13,3553;4,14,3553;4,15,3553;4,16,3553;4,17,3553 --disable-accelerated-video-decode --disable-gpu-compositing --enable-gpu-async-worker-context --service-request-channel-token=516BAF5DDFB5499347B94D591C00E3ED --renderer-client-id=3 --mojo-platform-channel-handle=3108 /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --disable-smooth-scrolling --field-trial-handle=2252,10838499794713221093,11480595870359407727,131072 --service-pipe-token=70D5AA01F6E151CC864942BE2103AA37 --lang=cs --extension-process --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --blink-settings=disallowFetchForDocWrittenScriptsInMainFrame=false,disallowFetchForDocWrittenScriptsInMainFrameOnSlowConnections=true --enable-pinch --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --content-image-texture-target=0,0,3553;0,1,3553;0,2,3553;0,3,3553;0,4,3553;0,5,3553;0,6,3553;0,7,3553;0,8,3553;0,9,3553;0,10,3553;0,11,3553;0,12,3553;0,13,3553;0,14,3553;0,15,3553;0,16,3553;0,17,3553;1,0,3553;1,1,3553;1,2,3553;1,3,3553;1,4,3553;1,5,3553;1,6,3553;1,7,3553;1,8,3553;1,9,3553;1,10,3553;1,11,3553;1,12,3553;1,13,3553;1,14,3553;1,15,3553;1,16,3553;1,17,3553;2,0,3553;2,1,3553;2,2,3553;2,3,3553;2,4,3553;2,5,3553;2,6,3553;2,7,3553;2,8,3553;2,9,3553;2,10,3553;2,11,3553;2,12,3553;2,13,3553;2,14,3553;2,15,3553;2,16,3553;2,17,3553;3,0,3553;3,1,3553;3,2,3553;3,3,3553;3,4,3553;3,5,3553;3,6,3553;3,7,3553;3,8,3553;3,9,3553;3,10,3553;3,11,3553;3,12,3553;3,13,3553;3,14,3553;3,15,3553;3,16,3553;3,17,3553;4,0,3553;4,1,3553;4,2,3553;4,3,3553;4,4,3553;4,5,3553;4,6,3553;4,7,3553;4,8,3553;4,9,3553;4,10,3553;4,11,3553;4,12,3553;4,13,3553;4,14,3553;4,15,3553;4,16,3553;4,17,3553 --disable-accelerated-video-decode --disable-gpu-compositing --enable-gpu-async-worker-context --service-request-channel-token=70D5AA01F6E151CC864942BE2103AA37 --renderer-client-id=4 --mojo-platform-channel-handle=3164 /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --disable-smooth-scrolling --field-trial-handle=2252,10838499794713221093,11480595870359407727,131072 --service-pipe-token=00900B77EAEBB6F3E3A767673DCC27B1 --lang=cs --extension-process --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --blink-settings=disallowFetchForDocWrittenScriptsInMainFrame=false,disallowFetchForDocWrittenScriptsInMainFrameOnSlowConnections=true --enable-pinch --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --content-image-texture-target=0,0,3553;0,1,3553;0,2,3553;0,3,3553;0,4,3553;0,5,3553;0,6,3553;0,7,3553;0,8,3553;0,9,3553;0,10,3553;0,11,3553;0,12,3553;0,13,3553;0,14,3553;0,15,3553;0,16,3553;0,17,3553;1,0,3553;1,1,3553;1,2,3553;1,3,3553;1,4,3553;1,5,3553;1,6,3553;1,7,3553;1,8,3553;1,9,3553;1,10,3553;1,11,3553;1,12,3553;1,13,3553;1,14,3553;1,15,3553;1,16,3553;1,17,3553;2,0,3553;2,1,3553;2,2,3553;2,3,3553;2,4,3553;2,5,3553;2,6,3553;2,7,3553;2,8,3553;2,9,3553;2,10,3553;2,11,3553;2,12,3553;2,13,3553;2,14,3553;2,15,3553;2,16,3553;2,17,3553;3,0,3553;3,1,3553;3,2,3553;3,3,3553;3,4,3553;3,5,3553;3,6,3553;3,7,3553;3,8,3553;3,9,3553;3,10,3553;3,11,3553;3,12,3553;3,13,3553;3,14,3553;3,15,3553;3,16,3553;3,17,3553;4,0,3553;4,1,3553;4,2,3553;4,3,3553;4,4,3553;4,5,3553;4,6,3553;4,7,3553;4,8,3553;4,9,3553;4,10,3553;4,11,3553;4,12,3553;4,13,3553;4,14,3553;4,15,3553;4,16,3553;4,17,3553 --disable-accelerated-video-decode --disable-gpu-compositing --enable-gpu-async-worker-context --service-request-channel-token=00900B77EAEBB6F3E3A767673DCC27B1 --renderer-client-id=5 --mojo-platform-channel-handle=3244 /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --disable-smooth-scrolling --field-trial-handle=2252,10838499794713221093,11480595870359407727,131072 --service-pipe-token=A4D3BAEB124D62DA3394E3CD0F2F01AB --lang=cs --extension-process --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --blink-settings=disallowFetchForDocWrittenScriptsInMainFrame=false,disallowFetchForDocWrittenScriptsInMainFrameOnSlowConnections=true --enable-pinch --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --content-image-texture-target=0,0,3553;0,1,3553;0,2,3553;0,3,3553;0,4,3553;0,5,3553;0,6,3553;0,7,3553;0,8,3553;0,9,3553;0,10,3553;0,11,3553;0,12,3553;0,13,3553;0,14,3553;0,15,3553;0,16,3553;0,17,3553;1,0,3553;1,1,3553;1,2,3553;1,3,3553;1,4,3553;1,5,3553;1,6,3553;1,7,3553;1,8,3553;1,9,3553;1,10,3553;1,11,3553;1,12,3553;1,13,3553;1,14,3553;1,15,3553;1,16,3553;1,17,3553;2,0,3553;2,1,3553;2,2,3553;2,3,3553;2,4,3553;2,5,3553;2,6,3553;2,7,3553;2,8,3553;2,9,3553;2,10,3553;2,11,3553;2,12,3553;2,13,3553;2,14,3553;2,15,3553;2,16,3553;2,17,3553;3,0,3553;3,1,3553;3,2,3553;3,3,3553;3,4,3553;3,5,3553;3,6,3553;3,7,3553;3,8,3553;3,9,3553;3,10,3553;3,11,3553;3,12,3553;3,13,3553;3,14,3553;3,15,3553;3,16,3553;3,17,3553;4,0,3553;4,1,3553;4,2,3553;4,3,3553;4,4,3553;4,5,3553;4,6,3553;4,7,3553;4,8,3553;4,9,3553;4,10,3553;4,11,3553;4,12,3553;4,13,3553;4,14,3553;4,15,3553;4,16,3553;4,17,3553 --disable-accelerated-video-decode --disable-gpu-compositing --enable-gpu-async-worker-context --service-request-channel-token=A4D3BAEB124D62DA3394E3CD0F2F01AB --renderer-client-id=6 --mojo-platform-channel-handle=3332 /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --disable-smooth-scrolling --field-trial-handle=2252,10838499794713221093,11480595870359407727,131072 --service-pipe-token=F8E98AE161759537FCED4DF90A1AFDB5 --lang=cs --extension-process --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --blink-settings=disallowFetchForDocWrittenScriptsInMainFrame=false,disallowFetchForDocWrittenScriptsInMainFrameOnSlowConnections=true --enable-pinch --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --content-image-texture-target=0,0,3553;0,1,3553;0,2,3553;0,3,3553;0,4,3553;0,5,3553;0,6,3553;0,7,3553;0,8,3553;0,9,3553;0,10,3553;0,11,3553;0,12,3553;0,13,3553;0,14,3553;0,15,3553;0,16,3553;0,17,3553;1,0,3553;1,1,3553;1,2,3553;1,3,3553;1,4,3553;1,5,3553;1,6,3553;1,7,3553;1,8,3553;1,9,3553;1,10,3553;1,11,3553;1,12,3553;1,13,3553;1,14,3553;1,15,3553;1,16,3553;1,17,3553;2,0,3553;2,1,3553;2,2,3553;2,3,3553;2,4,3553;2,5,3553;2,6,3553;2,7,3553;2,8,3553;2,9,3553;2,10,3553;2,11,3553;2,12,3553;2,13,3553;2,14,3553;2,15,3553;2,16,3553;2,17,3553;3,0,3553;3,1,3553;3,2,3553;3,3,3553;3,4,3553;3,5,3553;3,6,3553;3,7,3553;3,8,3553;3,9,3553;3,10,3553;3,11,3553;3,12,3553;3,13,3553;3,14,3553;3,15,3553;3,16,3553;3,17,3553;4,0,3553;4,1,3553;4,2,3553;4,3,3553;4,4,3553;4,5,3553;4,6,3553;4,7,3553;4,8,3553;4,9,3553;4,10,3553;4,11,3553;4,12,3553;4,13,3553;4,14,3553;4,15,3553;4,16,3553;4,17,3553 --disable-accelerated-video-decode --disable-gpu-compositing --enable-gpu-async-worker-context --service-request-channel-token=F8E98AE161759537FCED4DF90A1AFDB5 --renderer-client-id=7 --mojo-platform-channel-handle=3368 /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --field-trial-handle=2252,10838499794713221093,11480595870359407727,131072 --use-gl=swiftshader-webgl --supports-dual-gpus=false --gpu-driver-bug-workarounds=9,12,20,23,24,27,49,84 --disable-gl-extensions="GL_KHR_blend_equation_advanced GL_KHR_blend_equation_advanced_coherent" --disable-accelerated-video-decode --gpu-vendor-id=0x10de --gpu-device-id=0x1b81 --gpu-driver-vendor="Google Inc." --gpu-driver-version=3.3.0.2 --gpu-driver-date=2017/04/07 --service-request-channel-token=47E15574E1F7EB394C989D9224138F97 --mojo-platform-channel-handle=5832 --ignored=" --type=renderer " /prefetch:2
"C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe" --type=renderer --disable-gpu-compositing --disable-smooth-scrolling --enable-blink-features=ResizeObserver --enable-pinch --service-pipe-token=480966FDEDBEF902582C9079E400FC23 --lang=en-US --lang=cs-CZ --log-file="C:\Program Files (x86)\Steam\logs\cef_log.txt" --product-version="Valve Steam Client" --disable-spell-checking --buildid=1504757234 --steamid=0 --enable-pinch --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --content-image-texture-target=0,0,3553;0,1,3553;0,2,3553;0,3,3553;0,4,3553;0,5,3553;0,6,3553;0,7,3553;0,8,3553;0,9,3553;0,10,3553;0,11,3553;0,12,3553;0,13,3553;0,14,3553;0,15,3553;0,16,3553;1,0,3553;1,1,3553;1,2,3553;1,3,3553;1,4,3553;1,5,3553;1,6,3553;1,7,3553;1,8,3553;1,9,3553;1,10,3553;1,11,3553;1,12,3553;1,13,3553;1,14,3553;1,15,3553;1,16,3553;2,0,3553;2,1,3553;2,2,3553;2,3,3553;2,4,3553;2,5,3553;2,6,3553;2,7,3553;2,8,3553;2,9,3553;2,10,3553;2,11,3553;2,12,3553;2,13,3553;2,14,3553;2,15,3553;2,16,3553;3,0,3553;3,1,3553;3,2,3553;3,3,3553;3,4,3553;3,5,3553;3,6,3553;3,7,3553;3,8,3553;3,9,3553;3,10,3553;3,11,3553;3,12,3553;3,13,3553;3,14,3553;3,15,3553;3,16,3553;4,0,3553;4,1,3553;4,2,3553;4,3,3553;4,4,3553;4,5,3553;4,6,3553;4,7,3553;4,8,3553;4,9,3553;4,10,3553;4,11,3553;4,12,3553;4,13,3553;4,14,3553;4,15,3553;4,16,3553 --disable-accelerated-video-decode --disable-gpu-compositing --service-request-channel-token=480966FDEDBEF902582C9079E400FC23 --renderer-client-id=3 --mojo-platform-channel-handle=2464 /prefetch:1
c:\windows\system32\svchost.exe -k localservice -s LicenseManager
c:\windows\system32\svchost.exe -k netsvcs -s lfsvc
C:\Windows\system32\AUDIODG.EXE 0x4cc
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --disable-smooth-scrolling --field-trial-handle=2252,10838499794713221093,11480595870359407727,131072 --service-pipe-token=5DD3E93C99F7B19F71AD6CD29B79B646 --lang=cs --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --blink-settings=disallowFetchForDocWrittenScriptsInMainFrame=false,disallowFetchForDocWrittenScriptsInMainFrameOnSlowConnections=true --enable-pinch --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --content-image-texture-target=0,0,3553;0,1,3553;0,2,3553;0,3,3553;0,4,3553;0,5,3553;0,6,3553;0,7,3553;0,8,3553;0,9,3553;0,10,3553;0,11,3553;0,12,3553;0,13,3553;0,14,3553;0,15,3553;0,16,3553;0,17,3553;1,0,3553;1,1,3553;1,2,3553;1,3,3553;1,4,3553;1,5,3553;1,6,3553;1,7,3553;1,8,3553;1,9,3553;1,10,3553;1,11,3553;1,12,3553;1,13,3553;1,14,3553;1,15,3553;1,16,3553;1,17,3553;2,0,3553;2,1,3553;2,2,3553;2,3,3553;2,4,3553;2,5,3553;2,6,3553;2,7,3553;2,8,3553;2,9,3553;2,10,3553;2,11,3553;2,12,3553;2,13,3553;2,14,3553;2,15,3553;2,16,3553;2,17,3553;3,0,3553;3,1,3553;3,2,3553;3,3,3553;3,4,3553;3,5,3553;3,6,3553;3,7,3553;3,8,3553;3,9,3553;3,10,3553;3,11,3553;3,12,3553;3,13,3553;3,14,3553;3,15,3553;3,16,3553;3,17,3553;4,0,3553;4,1,3553;4,2,3553;4,3,3553;4,4,3553;4,5,3553;4,6,3553;4,7,3553;4,8,3553;4,9,3553;4,10,3553;4,11,3553;4,12,3553;4,13,3553;4,14,3553;4,15,3553;4,16,3553;4,17,3553 --disable-accelerated-video-decode --disable-gpu-compositing --enable-gpu-async-worker-context --service-request-channel-token=5DD3E93C99F7B19F71AD6CD29B79B646 --renderer-client-id=37 --mojo-platform-channel-handle=7524 /prefetch:1
C:\Windows\system32\DllHost.exe /Processid:{973D20D7-562D-44B9-B70B-5A0F49CCDF3F}
c:\windows\system32\svchost.exe -k netsvcs -s Appinfo
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted -s WdiSystemHost
"C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe" --type=renderer --disable-gpu-compositing --disable-smooth-scrolling --enable-blink-features=ResizeObserver --enable-pinch --service-pipe-token=2A1A08B24B66F306B868789AC813C648 --lang=en-US --lang=cs-CZ --log-file="C:\Program Files (x86)\Steam\logs\cef_log.txt" --product-version="Valve Steam Client" --disable-spell-checking --buildid=1504757234 --steamid=0 --enable-pinch --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --content-image-texture-target=0,0,3553;0,1,3553;0,2,3553;0,3,3553;0,4,3553;0,5,3553;0,6,3553;0,7,3553;0,8,3553;0,9,3553;0,10,3553;0,11,3553;0,12,3553;0,13,3553;0,14,3553;0,15,3553;0,16,3553;1,0,3553;1,1,3553;1,2,3553;1,3,3553;1,4,3553;1,5,3553;1,6,3553;1,7,3553;1,8,3553;1,9,3553;1,10,3553;1,11,3553;1,12,3553;1,13,3553;1,14,3553;1,15,3553;1,16,3553;2,0,3553;2,1,3553;2,2,3553;2,3,3553;2,4,3553;2,5,3553;2,6,3553;2,7,3553;2,8,3553;2,9,3553;2,10,3553;2,11,3553;2,12,3553;2,13,3553;2,14,3553;2,15,3553;2,16,3553;3,0,3553;3,1,3553;3,2,3553;3,3,3553;3,4,3553;3,5,3553;3,6,3553;3,7,3553;3,8,3553;3,9,3553;3,10,3553;3,11,3553;3,12,3553;3,13,3553;3,14,3553;3,15,3553;3,16,3553;4,0,3553;4,1,3553;4,2,3553;4,3,3553;4,4,3553;4,5,3553;4,6,3553;4,7,3553;4,8,3553;4,9,3553;4,10,3553;4,11,3553;4,12,3553;4,13,3553;4,14,3553;4,15,3553;4,16,3553 --disable-accelerated-video-decode --disable-gpu-compositing --service-request-channel-token=2A1A08B24B66F306B868789AC813C648 --renderer-client-id=11 --mojo-platform-channel-handle=2880 /prefetch:1
C:\Windows\system32\svchost.exe -k netsvcs -s gpsvc
C:\Windows\System32\smartscreen.exe -Embedding
C:\Windows\system32\ApplicationFrameHost.exe -Embedding

C:\Windows\system32\svchost.exe -k netsvcs -s wlidsvc
C:\Windows\System32\SystemSettingsBroker.exe -Embedding
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -s SensorService
C:\Windows\system32\svchost.exe -k netsvcs -s XblAuthManager
c:\windows\system32\svchost.exe -k localserviceandnoimpersonation -s wcncsvc
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --disable-smooth-scrolling --field-trial-handle=2252,10838499794713221093,11480595870359407727,131072 --service-pipe-token=8C126B983C3616DF67F4A988947685CC --lang=cs --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --blink-settings=disallowFetchForDocWrittenScriptsInMainFrame=false,disallowFetchForDocWrittenScriptsInMainFrameOnSlowConnections=true --enable-pinch --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --content-image-texture-target=0,0,3553;0,1,3553;0,2,3553;0,3,3553;0,4,3553;0,5,3553;0,6,3553;0,7,3553;0,8,3553;0,9,3553;0,10,3553;0,11,3553;0,12,3553;0,13,3553;0,14,3553;0,15,3553;0,16,3553;0,17,3553;1,0,3553;1,1,3553;1,2,3553;1,3,3553;1,4,3553;1,5,3553;1,6,3553;1,7,3553;1,8,3553;1,9,3553;1,10,3553;1,11,3553;1,12,3553;1,13,3553;1,14,3553;1,15,3553;1,16,3553;1,17,3553;2,0,3553;2,1,3553;2,2,3553;2,3,3553;2,4,3553;2,5,3553;2,6,3553;2,7,3553;2,8,3553;2,9,3553;2,10,3553;2,11,3553;2,12,3553;2,13,3553;2,14,3553;2,15,3553;2,16,3553;2,17,3553;3,0,3553;3,1,3553;3,2,3553;3,3,3553;3,4,3553;3,5,3553;3,6,3553;3,7,3553;3,8,3553;3,9,3553;3,10,3553;3,11,3553;3,12,3553;3,13,3553;3,14,3553;3,15,3553;3,16,3553;3,17,3553;4,0,3553;4,1,3553;4,2,3553;4,3,3553;4,4,3553;4,5,3553;4,6,3553;4,7,3553;4,8,3553;4,9,3553;4,10,3553;4,11,3553;4,12,3553;4,13,3553;4,14,3553;4,15,3553;4,16,3553;4,17,3553 --disable-accelerated-video-decode --disable-gpu-compositing --enable-gpu-async-worker-context --service-request-channel-token=8C126B983C3616DF67F4A988947685CC --renderer-client-id=64 --mojo-platform-channel-handle=7356 /prefetch:1
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe6_ Global\UsGthrCtrlFltPipeMssGthrPipe6 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Windows\system32\SearchFilterHost.exe" 0 688 692 700 8192 696
"D:\Stažené soubory\RSITx64.exe"

======Scheduled tasks folder======

C:\Windows\tasks\CreateExplorerShellUnelevatedTask.job - C:\Windows\explorer.exe /NOUACCHECK

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft OneDrive for Business Browser Helper - C:\PROGRA~2\MICROS~3\Office16\GROOVEEX.DLL [2017-07-11 1524016]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SecurityHealth"=C:\Program Files\Windows Defender\MSASCuiL.exe [2017-03-18 629152]
"Launch LCore"=C:\Program Files\Logitech Gaming Software\LCore.exe [2017-07-11 17662072]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2017-01-25 16781312]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"ASRock A-Tuning"= []
"Steam"=C:\Program Files (x86)\Steam\steam.exe [2017-09-07 3071776]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iai2c.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SpbCx.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TileDataModelSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\uefi.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MBAMService]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetSetupSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SpbCx.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TileDataModelSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\uefi.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"DSCAutomationHostEnabled"=2
"PromptOnSecureDesktop"=0

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoPreviewPane"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"aux2"=wdmaud.drv
"VIDC.RTV1"=rtvcvfw64.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"aux3"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2017-09-14 18:49:21 ----D---- C:\rsit
2017-09-14 18:49:21 ----D---- C:\Program Files\trend micro
2017-09-12 21:54:49 ----A---- C:\Windows\SYSWOW64\XpsPrint.dll
2017-09-12 21:54:49 ----A---- C:\Windows\SYSWOW64\Windows.Data.Pdf.dll
2017-09-12 21:54:49 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2017-09-12 21:54:49 ----A---- C:\Windows\SYSWOW64\TpmCoreProvisioning.dll
2017-09-12 21:54:49 ----A---- C:\Windows\SYSWOW64\PCPKsp.dll
2017-09-12 21:54:49 ----A---- C:\Windows\SYSWOW64\OpcServices.dll
2017-09-12 21:54:49 ----A---- C:\Windows\SYSWOW64\olepro32.dll
2017-09-12 21:54:49 ----A---- C:\Windows\SYSWOW64\odbcconf.dll
2017-09-12 21:54:49 ----A---- C:\Windows\SYSWOW64\netlogon.dll
2017-09-12 21:54:49 ----A---- C:\Windows\SYSWOW64\fontdrvhost.exe
2017-09-12 21:54:49 ----A---- C:\Windows\SYSWOW64\D3DCompiler_47.dll
2017-09-12 21:54:49 ----A---- C:\Windows\SYSWOW64\d3d10warp.dll
2017-09-12 21:54:48 ----A---- C:\Windows\SYSWOW64\Windows.UI.Xaml.Resources.dll
2017-09-12 21:54:48 ----A---- C:\Windows\SYSWOW64\win32kfull.sys
2017-09-12 21:54:48 ----A---- C:\Windows\SYSWOW64\mstscax.dll
2017-09-12 21:54:48 ----A---- C:\Windows\SYSWOW64\msIso.dll
2017-09-12 21:54:48 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2017-09-12 21:54:48 ----A---- C:\Windows\SYSWOW64\d2d1.dll
2017-09-12 21:54:48 ----A---- C:\Windows\SYSWOW64\aadtb.dll
2017-09-12 21:54:47 ----A---- C:\Windows\SYSWOW64\WWAHost.exe
2017-09-12 21:54:47 ----A---- C:\Windows\SYSWOW64\Windows.UI.Xaml.dll
2017-09-12 21:54:47 ----A---- C:\Windows\SYSWOW64\Windows.Media.Protection.PlayReady.dll
2017-09-12 21:54:47 ----A---- C:\Windows\SYSWOW64\twinui.appcore.dll
2017-09-12 21:54:47 ----A---- C:\Windows\SYSWOW64\RstrtMgr.dll
2017-09-12 21:54:47 ----A---- C:\Windows\SYSWOW64\offreg.dll
2017-09-12 21:54:47 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2017-09-12 21:54:47 ----A---- C:\Windows\SYSWOW64\dbgeng.dll
2017-09-12 21:54:47 ----A---- C:\Windows\SYSWOW64\daxexec.dll
2017-09-12 21:54:47 ----A---- C:\Windows\SYSWOW64\CoreMessaging.dll
2017-09-12 21:54:47 ----A---- C:\Windows\SYSWOW64\combase.dll
2017-09-12 21:54:47 ----A---- C:\Windows\SYSWOW64\AzureSettingSyncProvider.dll
2017-09-12 21:54:47 ----A---- C:\Windows\SYSWOW64\ActivationManager.dll
2017-09-12 21:54:46 ----A---- C:\Windows\SYSWOW64\wudriver.dll
2017-09-12 21:54:46 ----A---- C:\Windows\SYSWOW64\wuapi.dll
2017-09-12 21:54:46 ----A---- C:\Windows\SYSWOW64\windows.storage.dll
2017-09-12 21:54:46 ----A---- C:\Windows\SYSWOW64\twinui.dll
2017-09-12 21:54:46 ----A---- C:\Windows\SYSWOW64\shell32.dll
2017-09-12 21:54:46 ----A---- C:\Windows\SYSWOW64\mfcore.dll
2017-09-12 21:54:46 ----A---- C:\Windows\SYSWOW64\gdi32full.dll
2017-09-12 21:54:46 ----A---- C:\Windows\SYSWOW64\explorer.exe
2017-09-12 21:54:46 ----A---- C:\Windows\SYSWOW64\CredentialUIBroker.exe
2017-09-12 21:54:46 ----A---- C:\Windows\SYSWOW64\CoreUIComponents.dll
2017-09-12 21:54:45 ----A---- C:\Windows\SYSWOW64\WpcWebFilter.dll
2017-09-12 21:54:45 ----A---- C:\Windows\SYSWOW64\wisp.dll
2017-09-12 21:54:45 ----A---- C:\Windows\SYSWOW64\wininet.dll
2017-09-12 21:54:45 ----A---- C:\Windows\SYSWOW64\winhttp.dll
2017-09-12 21:54:45 ----A---- C:\Windows\SYSWOW64\win32u.dll
2017-09-12 21:54:45 ----A---- C:\Windows\SYSWOW64\win32k.sys
2017-09-12 21:54:45 ----A---- C:\Windows\SYSWOW64\wevtapi.dll
2017-09-12 21:54:45 ----A---- C:\Windows\SYSWOW64\werui.dll
2017-09-12 21:54:45 ----A---- C:\Windows\SYSWOW64\wermgr.exe
2017-09-12 21:54:45 ----A---- C:\Windows\SYSWOW64\WerFault.exe
2017-09-12 21:54:45 ----A---- C:\Windows\SYSWOW64\wer.dll
2017-09-12 21:54:45 ----A---- C:\Windows\SYSWOW64\user32.dll
2017-09-12 21:54:45 ----A---- C:\Windows\SYSWOW64\tdh.dll
2017-09-12 21:54:45 ----A---- C:\Windows\SYSWOW64\tbs.dll
2017-09-12 21:54:45 ----A---- C:\Windows\SYSWOW64\srpapi.dll
2017-09-12 21:54:45 ----A---- C:\Windows\SYSWOW64\SHCore.dll
2017-09-12 21:54:45 ----A---- C:\Windows\SYSWOW64\setupapi.dll
2017-09-12 21:54:45 ----A---- C:\Windows\SYSWOW64\rasplap.dll
2017-09-12 21:54:45 ----A---- C:\Windows\SYSWOW64\rasman.dll
2017-09-12 21:54:45 ----A---- C:\Windows\SYSWOW64\rasgcw.dll
2017-09-12 21:54:45 ----A---- C:\Windows\SYSWOW64\rasdlg.dll
2017-09-12 21:54:45 ----A---- C:\Windows\SYSWOW64\rasapi32.dll
2017-09-12 21:54:45 ----A---- C:\Windows\SYSWOW64\ntprint.dll
2017-09-12 21:54:45 ----A---- C:\Windows\SYSWOW64\nshwfp.dll
2017-09-12 21:54:45 ----A---- C:\Windows\SYSWOW64\ngccredprov.dll
2017-09-12 21:54:45 ----A---- C:\Windows\SYSWOW64\msvproc.dll
2017-09-12 21:54:45 ----A---- C:\Windows\SYSWOW64\mfds.dll
2017-09-12 21:54:45 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2017-09-12 21:54:45 ----A---- C:\Windows\SYSWOW64\GdiPlus.dll
2017-09-12 21:54:45 ----A---- C:\Windows\SYSWOW64\Faultrep.dll
2017-09-12 21:54:45 ----A---- C:\Windows\SYSWOW64\DWWIN.EXE
2017-09-12 21:54:45 ----A---- C:\Windows\SYSWOW64\dsreg.dll
2017-09-12 21:54:45 ----A---- C:\Windows\SYSWOW64\dinput8.dll
2017-09-12 21:54:45 ----A---- C:\Windows\SYSWOW64\cryptngc.dll
2017-09-12 21:54:45 ----A---- C:\Windows\SYSWOW64\cldapi.dll
2017-09-12 21:54:45 ----A---- C:\Windows\SYSWOW64\AppXDeploymentClient.dll
2017-09-12 21:54:45 ----A---- C:\Windows\SYSWOW64\AppxAllUserStore.dll
2017-09-12 21:54:45 ----A---- C:\Windows\SYSWOW64\appidapi.dll
2017-09-12 21:54:45 ----A---- C:\Windows\system32\nshwfp.dll
2017-09-12 21:54:45 ----A---- C:\Windows\system32\mssprxy.dll
2017-09-12 21:54:45 ----A---- C:\Windows\system32\drivers\usbser.sys
2017-09-12 21:54:45 ----A---- C:\Windows\system32\drivers\sdbus.sys
2017-09-12 21:54:45 ----A---- C:\Windows\system32\drivers\hidbth.sys
2017-09-12 21:54:45 ----A---- C:\Windows\system32\drivers\dumpsd.sys
2017-09-12 21:54:45 ----A---- C:\Windows\system32\drivers\buttonconverter.sys
2017-09-12 21:54:45 ----A---- C:\Windows\system32\BthHFSrv.dll
2017-09-12 21:54:44 ----A---- C:\Windows\SYSWOW64\Windows.Networking.Vpn.dll
2017-09-12 21:54:44 ----A---- C:\Windows\SYSWOW64\shdocvw.dll
2017-09-12 21:54:44 ----A---- C:\Windows\SYSWOW64\Phoneutil.dll
2017-09-12 21:54:44 ----A---- C:\Windows\SYSWOW64\ntprint.exe
2017-09-12 21:54:44 ----A---- C:\Windows\SYSWOW64\dinput.dll
2017-09-12 21:54:44 ----A---- C:\Windows\SYSWOW64\authz.dll
2017-09-12 21:54:44 ----A---- C:\Windows\system32\Windows.Networking.Vpn.dll
2017-09-12 21:54:43 ----A---- C:\Windows\system32\WWAHost.exe
2017-09-12 21:54:43 ----A---- C:\Windows\system32\storewuauth.dll
2017-09-12 21:54:43 ----A---- C:\Windows\system32\mstscax.dll
2017-09-12 21:54:42 ----A---- C:\Windows\system32\drivers\tcpip.sys
2017-09-12 21:54:42 ----A---- C:\Windows\system32\drivers\storport.sys
2017-09-12 21:54:41 ----A---- C:\Windows\SYSWOW64\edgehtml.dll
2017-09-12 21:54:41 ----A---- C:\Windows\system32\WinBioDataModel.dll
2017-09-12 21:54:41 ----A---- C:\Windows\system32\Phoneutil.dll
2017-09-12 21:54:41 ----A---- C:\Windows\system32\ngcsvc.dll
2017-09-12 21:54:41 ----A---- C:\Windows\system32\ngcrecovery.dll
2017-09-12 21:54:41 ----A---- C:\Windows\system32\ngcpopkeysrv.dll
2017-09-12 21:54:41 ----A---- C:\Windows\system32\NgcCtnrSvc.dll
2017-09-12 21:54:41 ----A---- C:\Windows\system32\NgcCtnr.dll
2017-09-12 21:54:41 ----A---- C:\Windows\system32\ngccredprov.dll
2017-09-12 21:54:41 ----A---- C:\Windows\system32\drivers\UcmCx.sys
2017-09-12 21:54:41 ----A---- C:\Windows\system32\diagtrack.dll
2017-09-12 21:54:41 ----A---- C:\Windows\system32\cryptngc.dll
2017-09-12 21:54:40 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2017-09-12 21:54:40 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2017-09-12 21:54:40 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2017-09-12 21:54:40 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2017-09-12 21:54:40 ----A---- C:\Windows\SYSWOW64\ieproxy.dll
2017-09-12 21:54:40 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2017-09-12 21:54:39 ----A---- C:\Windows\SYSWOW64\iepeers.dll
2017-09-12 21:54:39 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2017-09-12 21:54:39 ----A---- C:\Windows\SYSWOW64\Chakra.dll
2017-09-12 21:54:39 ----A---- C:\Windows\system32\mshtmled.dll
2017-09-12 21:54:39 ----A---- C:\Windows\system32\MshtmlDac.dll
2017-09-12 21:54:39 ----A---- C:\Windows\system32\jscript9.dll
2017-09-12 21:54:39 ----A---- C:\Windows\system32\ieproxy.dll
2017-09-12 21:54:39 ----A---- C:\Windows\system32\Chakra.dll
2017-09-12 21:54:39 ----A---- C:\Windows\system32\dxtrans.dll
2017-09-12 21:54:38 ----A---- C:\Windows\system32\webplatstorageserver.dll
2017-09-12 21:54:38 ----A---- C:\Windows\system32\rdpudd.dll
2017-09-12 21:54:38 ----A---- C:\Windows\system32\mshtml.dll
2017-09-12 21:54:38 ----A---- C:\Windows\system32\mfcore.dll
2017-09-12 21:54:38 ----A---- C:\Windows\system32\iepeers.dll
2017-09-12 21:54:38 ----A---- C:\Windows\system32\ieapfltr.dll
2017-09-12 21:54:38 ----A---- C:\Windows\system32\drivers\netio.sys
2017-09-12 21:54:37 ----A---- C:\Windows\system32\XpsPrint.dll
2017-09-12 21:54:37 ----A---- C:\Windows\system32\wmpps.dll
2017-09-12 21:54:37 ----A---- C:\Windows\system32\win32spl.dll
2017-09-12 21:54:37 ----A---- C:\Windows\system32\rasgcw.dll
2017-09-12 21:54:37 ----A---- C:\Windows\system32\printfilterpipelinesvc.exe
2017-09-12 21:54:37 ----A---- C:\Windows\system32\offreg.dll
2017-09-12 21:54:37 ----A---- C:\Windows\system32\nettrace.dll
2017-09-12 21:54:37 ----A---- C:\Windows\system32\msvproc.dll
2017-09-12 21:54:37 ----A---- C:\Windows\system32\mfps.dll
2017-09-12 21:54:37 ----A---- C:\Windows\system32\mfds.dll
2017-09-12 21:54:37 ----A---- C:\Windows\system32\localspl.dll
2017-09-12 21:54:37 ----A---- C:\Windows\system32\KernelBase.dll
2017-09-12 21:54:37 ----A---- C:\Windows\system32\edgehtml.dll
2017-09-12 21:54:37 ----A---- C:\Windows\system32\drivers\ndis.sys
2017-09-12 21:54:37 ----A---- C:\Windows\system32\drivers\afd.sys
2017-09-12 21:54:36 ----A---- C:\Windows\SYSWOW64\webcheck.dll
2017-09-12 21:54:36 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2017-09-12 21:54:36 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2017-09-12 21:54:36 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2017-09-12 21:54:36 ----A---- C:\Windows\system32\wudriver.dll
2017-09-12 21:54:36 ----A---- C:\Windows\system32\wpnpinst.exe
2017-09-12 21:54:36 ----A---- C:\Windows\system32\WpAXHolder.dll
2017-09-12 21:54:36 ----A---- C:\Windows\system32\webcheck.dll
2017-09-12 21:54:36 ----A---- C:\Windows\system32\spoolsv.exe
2017-09-12 21:54:36 ----A---- C:\Windows\system32\SEMgrPS.dll
2017-09-12 21:54:36 ----A---- C:\Windows\system32\rasplap.dll
2017-09-12 21:54:36 ----A---- C:\Windows\system32\rasdlg.dll
2017-09-12 21:54:36 ----A---- C:\Windows\system32\ntprint.exe
2017-09-12 21:54:36 ----A---- C:\Windows\system32\ntprint.dll
2017-09-12 21:54:36 ----A---- C:\Windows\system32\msfeeds.dll
2017-09-12 21:54:36 ----A---- C:\Windows\system32\inetpp.dll
2017-09-12 21:54:36 ----A---- C:\Windows\system32\iedkcs32.dll
2017-09-12 21:54:36 ----A---- C:\Windows\system32\ie4uinit.exe
2017-09-12 21:54:36 ----A---- C:\Windows\system32\drivers\nsiproxy.sys
2017-09-12 21:54:36 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2017-09-12 21:54:36 ----A---- C:\Windows\system32\CoreUIComponents.dll
2017-09-12 21:54:35 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2017-09-12 21:54:35 ----A---- C:\Windows\system32\wersvc.dll
2017-09-12 21:54:35 ----A---- C:\Windows\system32\wermgr.exe
2017-09-12 21:54:35 ----A---- C:\Windows\system32\WerFault.exe
2017-09-12 21:54:35 ----A---- C:\Windows\system32\wer.dll
2017-09-12 21:54:35 ----A---- C:\Windows\system32\wc_storage.dll
2017-09-12 21:54:35 ----A---- C:\Windows\system32\odbcconf.dll
2017-09-12 21:54:35 ----A---- C:\Windows\system32\ntoskrnl.exe
2017-09-12 21:54:35 ----A---- C:\Windows\system32\ntdll.dll
2017-09-12 21:54:35 ----A---- C:\Windows\system32\ieframe.dll
2017-09-12 21:54:35 ----A---- C:\Windows\system32\Faultrep.dll
2017-09-12 21:54:35 ----A---- C:\Windows\system32\dbgeng.dll
2017-09-12 21:54:35 ----A---- C:\Windows\system32\D3DCompiler_47.dll
2017-09-12 21:54:34 ----A---- C:\Windows\system32\Windows.Media.Protection.PlayReady.dll
2017-09-12 21:54:34 ----A---- C:\Windows\system32\wercplsupport.dll
2017-09-12 21:54:34 ----A---- C:\Windows\system32\wcmsvc.dll
2017-09-12 21:54:34 ----A---- C:\Windows\system32\vss_ps.dll
2017-09-12 21:54:34 ----A---- C:\Windows\system32\OpcServices.dll
2017-09-12 21:54:34 ----A---- C:\Windows\system32\LocationFramework.dll
2017-09-12 21:54:34 ----A---- C:\Windows\system32\drivers\partmgr.sys
2017-09-12 21:54:34 ----A---- C:\Windows\system32\drivers\netbt.sys
2017-09-12 21:54:34 ----A---- C:\Windows\system32\dnsrslvr.dll
2017-09-12 21:54:34 ----A---- C:\Windows\system32\datamarketsvc.dll
2017-09-12 21:54:34 ----A---- C:\Windows\system32\d3d10warp.dll
2017-09-12 21:54:34 ----A---- C:\Windows\system32\CoreMessaging.dll
2017-09-12 21:54:34 ----A---- C:\Windows\system32\browserbroker.dll
2017-09-12 21:54:34 ----A---- C:\Windows\system32\AppXDeploymentClient.dll
2017-09-12 21:54:34 ----A---- C:\Windows\system32\ActivationManager.dll
2017-09-12 21:54:33 ----A---- C:\Windows\system32\wwansvc.dll
2017-09-12 21:54:33 ----A---- C:\Windows\system32\Windows.UI.Xaml.dll
2017-09-12 21:54:33 ----A---- C:\Windows\system32\windows.storage.dll
2017-09-12 21:54:33 ----A---- C:\Windows\system32\Windows.Shell.UnifiedTile.CuratedTileCollections.dll
2017-09-12 21:54:33 ----A---- C:\Windows\system32\Windows.Data.Pdf.dll
2017-09-12 21:54:33 ----A---- C:\Windows\system32\NotificationController.dll
2017-09-12 21:54:32 ----A---- C:\Windows\system32\twinui.pcshell.dll
2017-09-12 21:54:32 ----A---- C:\Windows\system32\twinui.dll
2017-09-12 21:54:32 ----A---- C:\Windows\system32\twinui.appcore.dll
2017-09-12 21:54:32 ----A---- C:\Windows\system32\StartTileData.dll
2017-09-12 21:54:32 ----A---- C:\Windows\system32\RstrtMgr.dll
2017-09-12 21:54:32 ----A---- C:\Windows\system32\OneCoreUAPCommonProxyStub.dll
2017-09-12 21:54:32 ----A---- C:\Windows\system32\NetworkMobileSettings.dll
2017-09-12 21:54:32 ----A---- C:\Windows\system32\msIso.dll
2017-09-12 21:54:32 ----A---- C:\Windows\system32\iertutil.dll
2017-09-12 21:54:32 ----A---- C:\Windows\system32\AzureSettingSyncProvider.dll
2017-09-12 21:54:31 ----A---- C:\Windows\system32\wuuhosdeployment.dll
2017-09-12 21:54:31 ----A---- C:\Windows\system32\wuuhext.dll
2017-09-12 21:54:31 ----A---- C:\Windows\system32\wsqmcons.exe
2017-09-12 21:54:31 ----A---- C:\Windows\system32\winlogon.exe
2017-09-12 21:54:31 ----A---- C:\Windows\system32\wininet.dll
2017-09-12 21:54:31 ----A---- C:\Windows\system32\Windows.UI.Xaml.Resources.dll
2017-09-12 21:54:31 ----A---- C:\Windows\system32\win32kfull.sys
2017-09-12 21:54:31 ----A---- C:\Windows\system32\TpmTasks.dll
2017-09-12 21:54:31 ----A---- C:\Windows\system32\TpmCoreProvisioning.dll
2017-09-12 21:54:31 ----A---- C:\Windows\system32\SIHClient.exe
2017-09-12 21:54:31 ----A---- C:\Windows\system32\rpcss.dll
2017-09-12 21:54:31 ----A---- C:\Windows\system32\rasmans.dll
2017-09-12 21:54:31 ----A---- C:\Windows\system32\hvloader.exe
2017-09-12 21:54:31 ----A---- C:\Windows\system32\hvax64.exe
2017-09-12 21:54:31 ----A---- C:\Windows\system32\fontdrvhost.exe
2017-09-12 21:54:31 ----A---- C:\Windows\system32\DWWIN.EXE
2017-09-12 21:54:31 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2017-09-12 21:54:31 ----A---- C:\Windows\system32\drivers\fvevol.sys
2017-09-12 21:54:31 ----A---- C:\Windows\system32\combase.dll
2017-09-12 21:54:31 ----A---- C:\Windows\system32\cldapi.dll
2017-09-12 21:54:31 ----A---- C:\Windows\system32\AppXDeploymentExtensions.onecore.dll
2017-09-12 21:54:31 ----A---- C:\Windows\explorer.exe
2017-09-12 21:54:30 ----A---- C:\Windows\system32\wuaueng.dll
2017-09-12 21:54:30 ----A---- C:\Windows\system32\wuapi.dll
2017-09-12 21:54:30 ----A---- C:\Windows\system32\winsrvext.dll
2017-09-12 21:54:30 ----A---- C:\Windows\system32\win32kbase.sys
2017-09-12 21:54:30 ----A---- C:\Windows\system32\werui.dll
2017-09-12 21:54:30 ----A---- C:\Windows\system32\werconcpl.dll
2017-09-12 21:54:30 ----A---- C:\Windows\system32\urlmon.dll
2017-09-12 21:54:30 ----A---- C:\Windows\system32\rasapi32.dll
2017-09-12 21:54:30 ----A---- C:\Windows\system32\PCPKsp.dll
2017-09-12 21:54:30 ----A---- C:\Windows\system32\kerberos.dll
2017-09-12 21:54:30 ----A---- C:\Windows\system32\hvix64.exe
2017-09-12 21:54:30 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys
2017-09-12 21:54:30 ----A---- C:\Windows\system32\AppXDeploymentServer.dll
2017-09-12 21:54:30 ----A---- C:\Windows\system32\AppxAllUserStore.dll
2017-09-12 21:54:29 ----A---- C:\Windows\system32\wpx.dll
2017-09-12 21:54:29 ----A---- C:\Windows\system32\shell32.dll
2017-09-12 21:54:29 ----A---- C:\Windows\system32\MrmCoreR.dll
2017-09-12 21:54:29 ----A---- C:\Windows\system32\modernexecserver.dll
2017-09-12 21:54:29 ----A---- C:\Windows\system32\gdi32full.dll
2017-09-12 21:54:29 ----A---- C:\Windows\system32\GamePanel.exe
2017-09-12 21:54:29 ----A---- C:\Windows\system32\ClipSVC.dll
2017-09-12 21:54:29 ----A---- C:\Windows\system32\aadtb.dll
2017-09-12 21:54:28 ----A---- C:\Windows\SYSWOW64\UIRibbonRes.dll
2017-09-12 21:54:28 ----A---- C:\Windows\system32\WpcWebFilter.dll
2017-09-12 21:54:28 ----A---- C:\Windows\system32\wlidsvc.dll
2017-09-12 21:54:28 ----A---- C:\Windows\system32\wisp.dll
2017-09-12 21:54:28 ----A---- C:\Windows\system32\winsrv.dll
2017-09-12 21:54:28 ----A---- C:\Windows\system32\winhttp.dll
2017-09-12 21:54:28 ----A---- C:\Windows\system32\Windows.CloudStore.dll
2017-09-12 21:54:28 ----A---- C:\Windows\system32\wevtsvc.dll
2017-09-12 21:54:28 ----A---- C:\Windows\system32\wevtapi.dll
2017-09-12 21:54:28 ----A---- C:\Windows\system32\user32.dll
2017-09-12 21:54:28 ----A---- C:\Windows\system32\UIRibbonRes.dll
2017-09-12 21:54:28 ----A---- C:\Windows\system32\tpmvsc.dll
2017-09-12 21:54:28 ----A---- C:\Windows\system32\sppobjs.dll
2017-09-12 21:54:28 ----A---- C:\Windows\system32\SHCore.dll
2017-09-12 21:54:28 ----A---- C:\Windows\system32\rascustom.dll
2017-09-12 21:54:28 ----A---- C:\Windows\system32\propsys.dll
2017-09-12 21:54:28 ----A---- C:\Windows\system32\netlogon.dll
2017-09-12 21:54:28 ----A---- C:\Windows\system32\lsasrv.dll
2017-09-12 21:54:28 ----A---- C:\Windows\system32\iphlpsvc.dll
2017-09-12 21:54:28 ----A---- C:\Windows\system32\httpprxm.dll
2017-09-12 21:54:28 ----A---- C:\Windows\system32\GdiPlus.dll
2017-09-12 21:54:28 ----A---- C:\Windows\system32\daxexec.dll
2017-09-12 21:54:28 ----A---- C:\Windows\system32\bcdedit.exe
2017-09-12 21:54:28 ----A---- C:\Windows\system32\aadcloudap.dll
2017-09-12 21:54:27 ----A---- C:\Windows\system32\wups.dll
2017-09-12 21:54:27 ----A---- C:\Windows\system32\windows.immersiveshell.serviceprovider.dll
2017-09-12 21:54:27 ----A---- C:\Windows\system32\win32u.dll
2017-09-12 21:54:27 ----A---- C:\Windows\system32\win32k.sys
2017-09-12 21:54:27 ----A---- C:\Windows\system32\tdh.dll
2017-09-12 21:54:27 ----A---- C:\Windows\system32\tbs.dll
2017-09-12 21:54:27 ----A---- C:\Windows\system32\srpapi.dll
2017-09-12 21:54:27 ----A---- C:\Windows\system32\shdocvw.dll
2017-09-12 21:54:27 ----A---- C:\Windows\system32\setupapi.dll
2017-09-12 21:54:27 ----A---- C:\Windows\system32\RasMediaManager.dll
2017-09-12 21:54:27 ----A---- C:\Windows\system32\rasman.dll
2017-09-12 21:54:27 ----A---- C:\Windows\system32\profsvc.dll
2017-09-12 21:54:27 ----A---- C:\Windows\system32\PhoneService.dll
2017-09-12 21:54:27 ----A---- C:\Windows\system32\PhoneProviders.dll
2017-09-12 21:54:27 ----A---- C:\Windows\system32\nltest.exe
2017-09-12 21:54:27 ----A---- C:\Windows\system32\EnterpriseAPNCsp.dll
2017-09-12 21:54:27 ----A---- C:\Windows\system32\dsreg.dll
2017-09-12 21:54:27 ----A---- C:\Windows\system32\drivers\srvnet.sys
2017-09-12 21:54:27 ----A---- C:\Windows\system32\dinput8.dll
2017-09-12 21:54:27 ----A---- C:\Windows\system32\dinput.dll
2017-09-12 21:54:27 ----A---- C:\Windows\system32\dab.dll
2017-09-12 21:54:27 ----A---- C:\Windows\system32\csplte.dll
2017-09-12 21:54:27 ----A---- C:\Windows\system32\CfgSPCellular.dll
2017-09-12 21:54:27 ----A---- C:\Windows\system32\authz.dll
2017-09-12 21:54:27 ----A---- C:\Windows\system32\appinfo.dll
2017-09-12 21:54:27 ----A---- C:\Windows\system32\appidapi.dll
2017-09-11 19:19:25 ----AD---- C:\Program Files\CrystalDiskMark5
2017-09-11 19:18:49 ----AD---- C:\Program Files (x86)\CrystalDiskInfo
2017-09-08 15:42:37 ----D---- C:\Users\jarda\AppData\Roaming\discord
2017-08-28 23:37:30 ----D---- C:\ProgramData\Blizzard Entertainment
2017-08-28 23:35:26 ----D---- C:\Users\jarda\AppData\Roaming\Battle.net
2017-08-28 23:34:18 ----AD---- C:\Program Files (x86)\Blizzard App
2017-08-28 23:33:33 ----D---- C:\ProgramData\Battle.net
2017-08-21 17:03:48 ----N---- C:\Windows\Ctregrun.exe
2017-08-21 17:03:46 ----N---- C:\Windows\system32\CTOPT352.dll
2017-08-21 17:03:45 ----N---- C:\Windows\system32\AddCat.exe
2017-08-21 17:03:42 ----N---- C:\Windows\system32\CTOPT399.dll
2017-08-21 17:03:42 ----N---- C:\Windows\system32\CTChkAud.dll
2017-08-17 18:16:31 ----D---- C:\Users\jarda\AppData\Roaming\Guild Wars 2

======List of files/folders modified in the last 1 month======

2017-09-14 18:49:21 ----RD---- C:\Program Files
2017-09-14 18:49:18 ----D---- C:\Windows\Prefetch
2017-09-14 18:27:00 ----D---- C:\Windows\system32\sru
2017-09-14 18:13:15 ----D---- C:\Program Files (x86)\Steam
2017-09-14 17:42:40 ----D---- C:\Program Files (x86)\MSI Afterburner
2017-09-14 17:35:12 ----D---- C:\Windows\Temp
2017-09-14 17:30:50 ----HD---- C:\Program Files\WindowsApps
2017-09-14 17:30:49 ----D---- C:\Windows\AppReadiness
2017-09-14 17:30:04 ----AD---- C:\Windows\System32
2017-09-14 17:30:04 ----A---- C:\Windows\system32\PerfStringBackup.INI
2017-09-14 17:24:06 ----D---- C:\ProgramData\NVIDIA
2017-09-14 00:47:29 ----D---- C:\Windows\system32\Tasks
2017-09-14 00:13:41 ----D---- C:\Windows\system32\SleepStudy
2017-09-13 23:22:36 ----D---- C:\Windows\INF
2017-09-13 23:17:57 ----D---- C:\ProgramData\Origin
2017-09-13 23:17:18 ----D---- C:\Users\jarda\AppData\Roaming\Origin
2017-09-13 21:24:41 ----D---- C:\Users\jarda\AppData\Roaming\EasyAntiCheat
2017-09-13 17:12:01 ----D---- C:\Windows\system32\config
2017-09-13 17:04:10 ----RD---- C:\Windows\Microsoft.NET
2017-09-13 17:04:10 ----D---- C:\Windows\WinSxS
2017-09-13 17:04:02 ----D---- C:\Windows\system32\DriverStore
2017-09-13 00:15:53 ----D---- C:\Windows\system32\catroot2
2017-09-13 00:15:45 ----SD---- C:\Windows\SYSWOW64\F12
2017-09-13 00:15:45 ----D---- C:\Windows\SYSWOW64\wbem
2017-09-13 00:15:45 ----D---- C:\Windows\SYSWOW64\setup
2017-09-13 00:15:45 ----D---- C:\Windows\SYSWOW64\en-US
2017-09-13 00:15:45 ----D---- C:\Windows\SYSWOW64\cs-CZ
2017-09-13 00:15:45 ----D---- C:\Windows\SysWOW64
2017-09-13 00:15:44 ----SD---- C:\Windows\system32\F12
2017-09-13 00:15:44 ----D---- C:\Windows\system32\WinBioPlugIns
2017-09-13 00:15:44 ----D---- C:\Windows\system32\wbem
2017-09-13 00:15:44 ----D---- C:\Windows\system32\setup
2017-09-13 00:15:44 ----D---- C:\Windows\system32\en-US
2017-09-13 00:15:44 ----D---- C:\Windows\system32\drivers\UMDF
2017-09-13 00:15:44 ----D---- C:\Windows\system32\drivers
2017-09-13 00:15:44 ----D---- C:\Windows\system32\cs-CZ
2017-09-13 00:15:44 ----D---- C:\Windows\system32\cs
2017-09-13 00:15:44 ----D---- C:\Windows\ShellExperiences
2017-09-13 00:15:43 ----D---- C:\Windows
2017-09-13 00:15:43 ----D---- C:\Program Files\Windows Photo Viewer
2017-09-13 00:15:43 ----D---- C:\Program Files\Windows Mail
2017-09-13 00:15:43 ----D---- C:\Program Files\Internet Explorer
2017-09-13 00:15:43 ----D---- C:\Program Files (x86)\Windows Photo Viewer
2017-09-13 00:15:43 ----D---- C:\Program Files (x86)\Windows Mail
2017-09-13 00:15:43 ----D---- C:\Program Files (x86)\Internet Explorer
2017-09-12 22:31:16 ----SHD---- C:\Windows\Installer
2017-09-12 22:31:16 ----D---- C:\ProgramData\Microsoft Help
2017-09-12 22:30:49 ----D---- C:\Windows\system32\MRT
2017-09-12 22:30:10 ----D---- C:\Windows\debug
2017-09-12 22:30:09 ----AC---- C:\Windows\system32\MRT.exe
2017-09-12 22:30:07 ----D---- C:\Windows\CbsTemp
2017-09-12 22:29:00 ----A---- C:\Windows\win.ini
2017-09-12 22:27:48 ----SHD---- C:\System Volume Information
2017-09-11 23:30:38 ----D---- C:\Users\jarda\AppData\Roaming\TS3Client
2017-09-11 19:18:49 ----RD---- C:\Program Files (x86)
2017-09-10 01:07:33 ----D---- C:\ProgramData\TruckersMP
2017-09-10 00:00:44 ----D---- C:\Program Files\Common Files
2017-09-09 11:05:42 ----D---- C:\Windows\system32\CatRoot
2017-09-09 11:04:46 ----AD---- C:\Program Files (x86)\Hi-Rez Studios
2017-09-09 00:56:30 ----RSD---- C:\Windows\assembly
2017-09-08 22:39:02 ----SD---- C:\Users\jarda\AppData\Roaming\Microsoft
2017-09-06 21:40:00 ----D---- C:\Windows\LiveKernelReports
2017-09-05 21:10:46 ----D---- C:\Program Files (x86)\Common Files
2017-09-05 21:09:02 ----HD---- C:\ProgramData
2017-09-04 20:58:08 ----AD---- C:\Program Files\HWiNFO64
2017-09-02 17:15:22 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2017-09-01 00:19:41 ----D---- C:\Users\jarda\AppData\Roaming\uTorrent
2017-08-31 23:36:27 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2017-08-29 23:42:11 ----AD---- C:\Program Files (x86)\Origin
2017-08-28 23:37:03 ----D---- C:\Users\jarda\AppData\Roaming\Notepad++
2017-08-18 22:18:27 ----D---- C:\Program Files (x86)\RivaTuner Statistics Server
2017-08-18 17:57:11 ----N---- C:\Windows\system32\MpSigStub.exe

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 iorate;@%SystemRoot%\system32\drivers\iorate.sys,-101; C:\Windows\system32\drivers\iorate.sys [2017-03-18 49568]
R1 FileCrypt;@%systemroot%\system32\drivers\filecrypt.sys,-100; C:\Windows\system32\drivers\filecrypt.sys [2017-03-18 54272]
R1 GpuEnergyDrv;@%SystemRoot%\system32\drivers\gpuenergydrv.sys,-100; C:\Windows\System32\drivers\gpuenergydrv.sys [2017-03-18 8192]
R1 HWiNFO32;HWiNFO32/64 Kernel Driver; \??\C:\Windows\system32\drivers\HWiNFO64A.SYS [2017-04-20 27552]
R1 MpKsl03ecb3a1;MpKsl03ecb3a1; \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{AAC18C02-4D1D-4FDD-9080-65147B749DCC}\MpKsl03ecb3a1.sys [2017-09-14 44928]
R2 clreg;@%SystemRoot%\system32\drivers\registry.sys,-100; C:\Windows\System32\drivers\registry.sys [2017-03-18 14336]
R2 iocbios2;iocbios2; \??\C:\Program Files (x86)\Intel\Intel(R) Extreme Tuning Utility\Drivers\IocDriver\64bit\iocbios2.sys [2016-08-24 37064]
R2 LGCoreTemp;Logitech CPU Core Tempurature; \??\C:\Program Files\Logitech Gaming Software\Drivers\LgCoreTemp\lgcoretemp.sys [2015-06-21 14184]
R2 MMCSS;@%systemroot%\system32\drivers\mmcss.sys,-100; C:\Windows\system32\drivers\mmcss.sys [2017-03-18 50688]
R2 speedfan;speedfan; \??\C:\Windows\SysWOW64\speedfan.sys [2012-12-29 28664]
R2 storqosflt;@%SystemRoot%\System32\drivers\storqosflt.sys,-101; C:\Windows\system32\drivers\storqosflt.sys [2017-03-18 79872]
R3 asmthub3;@oem10.inf,%asmthub3_ServiceDescription%;ASMedia USB3.1 Hub Service; C:\Windows\System32\drivers\asmthub3.sys [2016-09-02 149888]
R3 asmtxhci;@oem9.inf,%asmtxhci_ServiceDescription%;ASMedia XHCI Service; C:\Windows\system32\DRIVERS\asmtxhci.sys [2016-09-02 453504]
R3 e1iexpress;@net1ic64.inf,%e1iExpress.Service.DispName%;Intel(R) PRO/1000 PCI Express Network Connection Driver I; C:\Windows\System32\drivers\e1i63x64.sys [2017-03-18 524800]
R3 ICCWDT;@oem6.inf,%ICCWDT.SVCDESC%;Intel(R) Watchdog Timer Driver (Intel(R) WDT); C:\Windows\System32\drivers\ICCWDT.sys [2016-11-02 38680]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2017-01-25 5596160]
R3 LGBusEnum;@oem15.inf,%LGBusEnum.SVCDESC%;Logitech Gaming Virtual Bus Enumerator Driver; C:\Windows\system32\drivers\LGBusEnum.sys [2017-04-06 36496]
R3 LGJoyXlCore;@oem15.inf,%LGJoyXlCore.SVCDESC%;Logitech Translation Layer Driver (LGS); C:\Windows\system32\drivers\LGJoyXlCore.sys [2017-04-06 67736]
R3 LGVirHid;@oem16.inf,%LGVirHid.SVCDESC%;Logitech Gamepanel Virtual HID Device Driver; C:\Windows\system32\drivers\LGVirHid.sys [2017-04-06 26008]
R3 MEIx64;@oem3.inf,%TEE_SvcDesc%;Intel(R) Management Engine Interface ; C:\Windows\System32\drivers\TeeDriverW8x64.sys [2016-09-06 204896]
R3 nvlddmkm;nvlddmkm; C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_7209bde3180ef5f7\nvlddmkm.sys [2017-05-19 14458264]
R3 RTCore64;RTCore64; \??\C:\Program Files (x86)\MSI Afterburner\RTCore64.sys [2016-10-24 14024]
S0 LSI_SAS2i;LSI_SAS2i; C:\Windows\System32\drivers\lsi_sas2i.sys [2017-03-18 123808]
S0 LSI_SAS3i;LSI_SAS3i; C:\Windows\System32\drivers\lsi_sas3i.sys [2017-03-18 103328]
S0 megasas2i;megasas2i; C:\Windows\System32\drivers\MegaSas2i.sys [2017-03-18 64416]
S0 percsas2i;percsas2i; C:\Windows\System32\drivers\percsas2i.sys [2017-03-18 58784]
S0 percsas3i;percsas3i; C:\Windows\System32\drivers\percsas3i.sys [2017-03-18 61848]
S0 scmbus;@scmbus.inf,%scmbus.SvcDesc%;Microsoft Storage Class Memory Bus Driver; C:\Windows\System32\drivers\scmbus.sys [2017-03-18 91040]
S0 storufs;@storufs.inf,%UfsServiceDesc%;Microsoft Universal Flash Storage (UFS) Driver; C:\Windows\System32\drivers\storufs.sys [2017-03-18 36760]
S2 CldFlt;Windows Cloud Files Filter Driver; C:\Windows\system32\drivers\cldflt.sys [2017-03-18 12288]
S3 AcpiDev;@acpidev.inf,%AcpiDev.SvcDesc%;ACPI Devices driver; C:\Windows\System32\drivers\AcpiDev.sys [2017-03-18 20480]
S3 applockerfltr;@%systemroot%\system32\srpapi.dll,-102; C:\Windows\system32\drivers\applockerfltr.sys [2017-03-18 17920]
S3 AsrDrv101;AsrDrv101; \??\C:\Windows\SysWOW64\Drivers\AsrDrv101.sys [2017-04-20 22280]
S3 buttonconverter;@buttonconverter.inf,%btnconv.SvcDesc%;Service for Portable Device Control devices; C:\Windows\System32\drivers\buttonconverter.sys [2017-09-05 39424]
S3 CAD;@ChargeArbitration.inf,%CAD_DevDesc%;Charge Arbitration Driver; C:\Windows\System32\drivers\CAD.sys [2017-03-18 53664]
S3 CapImg;@capimg.inf,%CapImgHid_Service%;HID driver for CapImg touch screen; C:\Windows\System32\drivers\capimg.sys [2017-03-18 122880]
S3 cthda;@oem33.inf,%Creative.CTHdaDesc%;Sound Blaster Audio Driver; C:\Windows\system32\drivers\cthda.sys []
S3 cthdb;@oem33.inf,%Creative.CTHDBDesc%;Sound Blaster Audio Controller Driver; C:\Windows\system32\DRIVERS\cthdb.sys []
S3 dg_ssudbus;@oem25.inf,%ssud.Service.DeviceDesc%;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\Windows\system32\DRIVERS\ssudbus.sys [2016-09-05 131712]
S3 genericusbfn;@genericusbfn.inf,%genericusbfn.ServiceName%;Generic USB Function Class; C:\Windows\System32\drivers\genericusbfn.sys [2017-03-18 21504]
S3 GPU-Z;GPU-Z; \??\C:\Users\jarda\AppData\Local\Temp\GPU-Z.sys []
S3 hidinterrupt;@hidinterrupt.inf,%HID_Interrupt.SvcDesc%;Common Driver for HID Buttons implemented with interrupts; C:\Windows\System32\drivers\hidinterrupt.sys [2017-03-18 51104]
S3 hvservice;@%SystemRoot%\system32\drivers\hvservice.sys,-16; C:\Windows\system32\drivers\hvservice.sys [2017-03-18 74648]
S3 cht4iscsi;cht4iscsi; C:\Windows\System32\drivers\cht4sx64.sys [2017-03-18 347032]
S3 cht4vbd;@cht4vx64.inf,%cht4vbd.generic%;Chelsio Virtual Bus Driver; C:\Windows\System32\drivers\cht4vx64.sys [2017-03-18 2104224]
S3 iagpio;@iagpio.inf,%iagpio.SVCDESC%;Intel Serial IO GPIO Controller Driver; C:\Windows\System32\drivers\iagpio.sys [2017-03-18 33280]
S3 iai2c;@iai2c.inf,%iai2c.SVCDESC%;Intel(R) Serial IO I2C Host Controller; C:\Windows\System32\drivers\iai2c.sys [2017-03-18 81408]
S3 iaLPSS2i_GPIO2;@iaLPSS2i_GPIO2_SKL.inf,%iaLPSS2i_GPIO2.SVCDESC%;Intel(R) Serial IO GPIO Driver v2; C:\Windows\System32\drivers\iaLPSS2i_GPIO2.sys [2017-03-18 70656]
S3 iaLPSS2i_GPIO2_BXT_P;@iaLPSS2i_GPIO2_BXT_P.inf,%iaLPSS2i_GPIO2_BXT_P.SVCDESC%;Intel(R) Serial IO GPIO Driver v2; C:\Windows\System32\drivers\iaLPSS2i_GPIO2_BXT_P.sys [2017-03-18 85504]
S3 iaLPSS2i_I2C;@iaLPSS2i_I2C_SKL.inf,%iaLPSS2i_I2C.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\Windows\System32\drivers\iaLPSS2i_I2C.sys [2017-03-18 165376]
S3 iaLPSS2i_I2C_BXT_P;@iaLPSS2i_I2C_BXT_P.inf,%iaLPSS2i_I2C_BXT_P.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\Windows\System32\drivers\iaLPSS2i_I2C_BXT_P.sys [2017-03-18 168448]
S3 ibbus;@mlx4_bus.inf,%Ibbus.ServiceDesc%;Mellanox InfiniBand Bus/AL (Filter Driver); C:\Windows\System32\drivers\ibbus.sys [2017-03-18 526240]
S3 IndirectKmd;@%SystemRoot%\system32\drivers\IndirectKmd.sys,-100; C:\Windows\System32\drivers\IndirectKmd.sys [2017-03-18 36864]
S3 irda;IrDA; C:\Windows\system32\drivers\irda.sys [2017-03-18 120320]
S3 mausbhost;@mausbhost.inf,%MAUSBHost.ServiceName%;MA-USB Host Controller Driver; C:\Windows\System32\drivers\mausbhost.sys [2017-03-18 405408]
S3 mausbip;@mausbhost.inf,%MAUSBIP.ServiceName%;MA-USB IP Filter Driver; C:\Windows\System32\drivers\mausbip.sys [2017-03-18 51104]
S3 mlx4_bus;@mlx4_bus.inf,%MLX4BUS.ServiceDesc%;Mellanox ConnectX Bus Enumerator; C:\Windows\System32\drivers\mlx4_bus.sys [2017-03-18 842656]
S3 ndfltr;@mlx4_bus.inf,%ndfltr.ServiceDesc%;NetworkDirect Service; C:\Windows\System32\drivers\ndfltr.sys [2017-03-18 108960]
S3 NetAdapterCx;Network Adapter Wdf Class Extension Library; C:\Windows\system32\drivers\NetAdapterCx.sys [2017-03-18 122368]
S3 nvdimmn;@nvdimmn.inf,%nvdimmn.SvcDesc%;Microsoft NVDIMM-N device driver; C:\Windows\System32\drivers\nvdimmn.sys [2017-03-18 80896]
S3 pmem;@pmem.inf,%pmem.SvcDesc%;Microsoft persistent memory disk driver; C:\Windows\System32\drivers\pmem.sys [2017-03-18 101376]
S3 ReFSv1;ReFSv1; C:\Windows\system32\drivers\ReFSv1.sys [2017-03-18 936864]
S3 SDFRd;@SDFRd.inf,%SDFRd.ServiceDesc%;SDF Reflector; C:\Windows\System32\drivers\SDFRd.sys [2017-03-18 31128]
S3 SpatialGraphFilter;Holographic Spatial Graph Filter; C:\Windows\System32\drivers\SpatialGraphFilter.sys [2017-03-20 40352]
S3 ssudmdm;@oem31.inf,%ssud.Service.Name%;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.); C:\Windows\system32\DRIVERS\ssudmdm.sys [2017-05-18 166288]
S3 UcmCx0101;USB Connector Manager KMDF Class Extension; C:\Windows\System32\Drivers\UcmCx.sys [2017-09-05 104960]
S3 UcmTcpciCx0101;UCM-TCPCI KMDF Class Extension; C:\Windows\System32\Drivers\UcmTcpciCx.sys [2017-03-18 179200]
S3 UcmUcsi;@UcmUcsi.inf,%UcmUcsi.ServiceName%;USB Connector Manager UCSI Client; C:\Windows\System32\drivers\UcmUcsi.sys [2017-07-28 51712]
S3 UdeCx;USB Device Emulation Support Library; C:\Windows\system32\drivers\udecx.sys [2017-03-18 45568]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 CDPSvc;@%SystemRoot%\system32\cdpsvc.dll,-100; C:\Windows\system32\svchost.exe [2017-03-18 47664]
R2 CDPUserSvc_bc990;Uživatelská služba platformy připojených zařízení_bc990; C:\Windows\system32\svchost.exe [2017-03-18 47664]
R2 CoreMessagingRegistrar;@%SystemRoot%\system32\coremessaging.dll,-1; C:\Windows\system32\svchost.exe [2017-03-18 47664]
R2 DiagTrack;@%SystemRoot%\system32\diagtrack.dll,-3001; C:\Windows\System32\svchost.exe [2017-03-18 47664]
R2 DusmSvc;@%SystemRoot%\System32\dusmsvc.dll,-1; C:\Windows\System32\svchost.exe [2017-03-18 47664]
R2 LogiRegistryService;Logitech Gaming Registry Service; C:\Program Files\Logitech Gaming Software\Drivers\APOService\LogiRegistryService.exe [2017-07-11 225400]
R2 NVDisplay.ContainerLocalSystem;NVIDIA Display Container LS; C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe [2017-05-18 462968]
R2 OneSyncSvc_bc990;Hostitel synchronizace_bc990; C:\Windows\system32\svchost.exe [2017-03-18 47664]
R2 Origin Web Helper Service;Origin Web Helper Service; C:\Program Files (x86)\Origin\OriginWebHelperService.exe [2017-08-23 2977640]
R2 SecurityHealthService;@%systemroot%\system32\SecurityHealthAgent.dll,-1002; C:\Windows\system32\SecurityHealthService.exe [2017-07-07 336320]
R2 tiledatamodelsvc;@%SystemRoot%\system32\tileobjserver.dll,-1; C:\Windows\system32\svchost.exe [2017-03-18 47664]
R3 ClipSVC;@%SystemRoot%\system32\ClipSVC.dll,-103; C:\Windows\System32\svchost.exe [2017-03-18 47664]
R3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS; C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [2016-06-17 214816]
R3 LicenseManager;@%SystemRoot%\system32\licensemanagersvc.dll,-200; C:\Windows\System32\svchost.exe [2017-03-18 47664]
R3 NgcCtnrSvc;@%SystemRoot%\System32\NgcCtnrSvc.dll,-1; C:\Windows\system32\svchost.exe [2017-03-18 47664]
R3 NgcSvc;@%SystemRoot%\System32\ngcsvc.dll,-100; C:\Windows\system32\svchost.exe [2017-03-18 47664]
R3 PimIndexMaintenanceSvc_bc990;Data kontaktů_bc990; C:\Windows\system32\svchost.exe [2017-03-18 47664]
R3 SensorService;@%SystemRoot%\System32\sensorservice.dll,-1000; C:\Windows\system32\svchost.exe [2017-03-18 47664]
R3 StateRepository;@%SystemRoot%\system32\windows.staterepository.dll,-1; C:\Windows\system32\svchost.exe [2017-03-18 47664]
R3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2017-09-07 1610016]
R3 TimeBrokerSvc;@%windir%\system32\TimeBrokerServer.dll,-1001; C:\Windows\system32\svchost.exe [2017-03-18 47664]
R3 TokenBroker;@%systemroot%\system32\tokenbroker.dll,-100; C:\Windows\system32\svchost.exe [2017-03-18 47664]
S2 CDPUserSvc;@%SystemRoot%\system32\cdpusersvc.dll,-100; C:\Windows\system32\svchost.exe [2017-03-18 47664]
S2 DoSvc;@%systemroot%\system32\dosvc.dll,-100; C:\Windows\system32\svchost.exe [2017-03-18 47664]
S2 gupdate;Služba Aktualizace Google (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2017-04-20 153752]
S2 MapsBroker;@%SystemRoot%\System32\moshost.dll,-100; C:\Windows\System32\svchost.exe [2017-03-18 47664]
S2 OneSyncSvc;@%SystemRoot%\system32\APHostRes.dll,-10002; C:\Windows\system32\svchost.exe [2017-03-18 47664]
S3 AJRouter;@%SystemRoot%\system32\AJRouter.dll,-2; C:\Windows\system32\svchost.exe [2017-03-18 47664]
S3 BEService;BattlEye Service; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [2017-03-23 1522184]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\Windows\System32\svchost.exe [2017-03-18 47664]
S3 CLink4Service;Corsair LINK 4; C:\Program Files (x86)\CorsairLink4\CorsairLink4.Service.exe [2017-02-27 86224]
S3 DevicesFlowUserSvc;@%SystemRoot%\system32\DevicesFlowBroker.dll,-103; C:\Windows\system32\svchost.exe [2017-03-18 47664]
S3 DevicesFlowUserSvc_bc990;Tok zařízení_bc990; C:\Windows\system32\svchost.exe [2017-03-18 47664]
S3 DevQueryBroker;@%SystemRoot%\system32\DevQueryBroker.dll,-100; C:\Windows\system32\svchost.exe [2017-03-18 47664]
S3 diagnosticshub.standardcollector.service;@%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000; C:\Windows\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe [2017-03-18 86528]
S3 DmEnrollmentSvc;@%systemroot%\system32\Windows.Internal.Management.dll,-100; C:\Windows\system32\svchost.exe [2017-03-18 47664]
S3 dmwappushservice;@%SystemRoot%\system32\dmwappushsvc.dll,-200; C:\Windows\system32\svchost.exe [2017-03-18 47664]
S3 DsSvc;@%SystemRoot%\system32\dssvc.dll,-10003; C:\Windows\System32\svchost.exe [2017-03-18 47664]
S3 EasyAntiCheat;EasyAntiCheat; C:\Windows\syswow64\EasyAntiCheat.exe [2017-07-07 383016]
S3 embeddedmode;@%SystemRoot%\system32\embeddedmodesvc.dll,-201; C:\Windows\System32\svchost.exe [2017-03-18 47664]
S3 EntAppSvc;@EnterpriseAppMgmtSvc.dll,-1; C:\Windows\system32\svchost.exe [2017-03-18 47664]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2017-02-10 43696]
S3 FrameServer;@%systemroot%\system32\FrameServer.dll,-100; C:\Windows\System32\svchost.exe [2017-03-18 47664]
S3 gupdatem;Služba Aktualizace Google (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2017-04-20 153752]
S3 HiPatchService;Hi-Rez Studios Authenticate and Update Service; C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe [2017-07-12 9728]
S3 HvHost;@%SystemRoot%\system32\hvhostsvc.dll,-100; C:\Windows\system32\svchost.exe [2017-03-18 47664]
S3 icssvc;@%SystemRoot%\System32\tetheringservice.dll,-4097; C:\Windows\system32\svchost.exe [2017-03-18 47664]
S3 IpxlatCfgSvc;@%Systemroot%\system32\ipxlatcfg.dll,-500; C:\Windows\System32\svchost.exe [2017-03-18 47664]
S3 irmon;@%SystemRoot%\System32\irmon.dll,-2000; C:\Windows\system32\svchost.exe [2017-03-18 47664]
S3 MBAMService;Malwarebytes Service; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [2017-05-09 4470736]
S3 MessagingService;@%SystemRoot%\system32\MessagingService.dll,-100; C:\Windows\system32\svchost.exe [2017-03-18 47664]
S3 MessagingService_bc990;Služba zasílání zpráv_bc990; C:\Windows\system32\svchost.exe [2017-03-18 47664]
S3 NaturalAuthentication;@%systemroot%\system32\NaturalAuth.dll,-100; C:\Windows\system32\svchost.exe [2017-03-18 47664]
S3 NetSetupSvc;@%SystemRoot%\system32\NetSetupSvc.dll,-3; C:\Windows\System32\svchost.exe [2017-03-18 47664]
S3 NvTelemetryContainer;NVIDIA Telemetry Container; C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe [2017-05-18 449984]
S3 Origin Client Service;Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2017-08-23 2098528]
S3 ose64;Office 64 Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2015-07-31 242864]
S3 PAExec;PAExec; C:\Windows\PAExec.exe [2017-06-01 189112]
S3 PhoneSvc;@%SystemRoot%\system32\PhoneserviceRes.dll,-10000; C:\Windows\system32\svchost.exe [2017-03-18 47664]
S3 PimIndexMaintenanceSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-15001; C:\Windows\system32\svchost.exe [2017-03-18 47664]
S3 RetailDemo;@%SystemRoot%\System32\RDXService.dll,-256; C:\Windows\System32\svchost.exe [2017-03-18 47664]
S3 RmSvc;@%SystemRoot%\system32\RMapi.dll,-1001; C:\Windows\System32\svchost.exe [2017-03-18 47664]
S3 SEMgrSvc;@%SystemRoot%\System32\SEMgrSvc.dll,-1001; C:\Windows\system32\svchost.exe [2017-03-18 47664]
S3 SensorDataService;@%SystemRoot%\system32\SensorDataService.exe,-101; C:\Windows\System32\SensorDataService.exe [2017-03-18 1284608]
S3 SmsRouter;@%SystemRoot%\System32\SmsRouterSvc.dll,-10001; C:\Windows\system32\svchost.exe [2017-03-18 47664]
S3 spectrum;@%systemroot%\system32\spectrum.exe,-101; C:\Windows\system32\spectrum.exe [2017-03-18 891904]
S3 TieringEngineService;@%SystemRoot%\system32\TieringEngineService.exe,-702; C:\Windows\system32\TieringEngineService.exe [2017-03-18 302592]
S4 shpamsvc;@%SystemRoot%\System32\Windows.SharedPC.AccountManager.dll,-100; C:\Windows\System32\svchost.exe [2017-03-18 47664]
S4 tzautoupdate;@%SystemRoot%\system32\tzautoupdate.dll,-200; C:\Windows\system32\svchost.exe [2017-03-18 47664]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118200
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Preventivka

#2 Příspěvek od Rudy »

Zdravím!
Log vypadá OK.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Jarda62
Návštěvník
Návštěvník
Příspěvky: 170
Registrován: 28 črc 2008 17:59

Re: Preventivka

#3 Příspěvek od Jarda62 »

Děkuji za odpověď!
Asi teda můžete téma uzavřít.

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118200
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Preventivka

#4 Příspěvek od Rudy »

Rádo se stalo! :)
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Zamčeno