Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Prosím o kontrolu

Nemáte v tuto chvíli žádný problém s pc a chcete se jen ujistit, že je vše v pořádku?
Vložte log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Odpovědět
Zpráva
Autor
kosprojekt
Návštěvník
Návštěvník
Příspěvky: 5
Registrován: 07 lis 2017 10:13

Prosím o kontrolu

#1 Příspěvek od kosprojekt »

Logfile of random's system information tool 1.10 (written by random/random)
Run by kospr at 2017-11-07 10:15:11
Microsoft Windows 10 Home
System drive C: has 80 GB (70%) free of 114 GB
Total RAM: 3998 MB (24% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 10:15:13, on 07.11.2017
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.16299.0015)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 18.0.0\avpui.exe
C:\Program Files (x86)\Kaspersky Lab\Kaspersky Secure Connection 2.0\ksdeui.exe
C:\Program Files (x86)\Cobian Backup 11\Cobian.exe
C:\Program Files (x86)\Cobian Backup 11\cbInterface.exe
C:\Users\kospr\AppData\Local\Viber\Viber.exe
C:\Program Files (x86)\CodeMeter\Runtime\bin\CodeMeterCC.exe
C:\Program Files (x86)\USB Camera\VM331STI.EXE
C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe
C:\Program Files (x86)\WIBUKEY\Server\WkSvMgr.exe
C:\Program Files (x86)\PDF24\pdf24.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe
C:\Program Files (x86)\LibreOffice 5\program\swriter.exe
C:\Program Files (x86)\LibreOffice 5\program\soffice.exe
C:\Program Files (x86)\LibreOffice 5\program\soffice.bin
C:\Program Files\trend micro\kospr.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = %11%\blank.htm
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=
O2 - BHO: ScriptInjectionPluginBrowserHelperObject - {0E2877D3-2641-4970-B794-A553E295428D} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 18.0.0\IEExt\ie_plugin.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_121\bin\ssv.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_121\bin\jp2ssv.dll
O3 - Toolbar: Kaspersky Protection Toolbar - {4853DF44-7D6B-48E9-9258-D800EEE54AF6} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 18.0.0\IEExt\ie_plugin.dll
O4 - HKLM\..\Run: [331BigDog] "C:\Program Files (x86)\USB Camera\VM331STI.EXE"
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [PDFPrint] "C:\Program Files (x86)\PDF24\pdf24.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [Cobian Backup 11] "C:\Program Files (x86)\Cobian Backup 11\Cobian.exe"
O4 - HKCU\..\Run: [Viber] "C:\Users\kospr\AppData\Local\Viber\Viber.exe" StartMinimized
O4 - HKCU\..\Run: [GoogleDriveSync] "C:\Program Files (x86)\Google\Drive\googledrivesync.exe" /autostart
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O4 - Global Startup: CodeMeter Control Center.lnk = C:\Program Files (x86)\CodeMeter\Runtime\bin\CodeMeterCC.exe
O4 - Global Startup: Network Server.lnk = C:\Program Files (x86)\WIBUKEY\Server\WkSvMgr.exe
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: Služba Kaspersky Anti-Virus 18.0.0 (AVP18.0.0) - AO Kaspersky Lab - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 18.0.0\avp.exe
O23 - Service: CodeMeter Runtime Server (CodeMeter.exe) - WIBU-SYSTEMS AG - C:\Program Files (x86)\CodeMeter\Runtime\bin\CodeMeter.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\Windows\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @C:\Windows\system32\CxAudMsg64.exe,-100 (CxAudMsg) - Unknown owner - C:\Windows\system32\CxAudMsg64.exe (file missing)
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\Windows\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: DraftSight API Service - Dassault Systemes - C:\Program Files\Dassault Systemes\DraftSight\bin\dsHttpApiService.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: Elan Service (ETDService) - ELAN Microelectronics Corp. - C:\Program Files\Elantech\ETDService.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: FileOpenManager - FileOpen Systems Inc. - C:\Program Files\FileOpen\Services\FileOpenManager64.exe
O23 - Service: FlexNet Licensing Service 64 - Flexera Software LLC - C:\Program Files\Common Files\Macrovision Shared\FlexNet Publisher\FNPLicensingService64.exe
O23 - Service: Služba Aktualizace Google (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Aktualizace Google (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @oem20.inf,%llmdisp%;Sentinel LDK License Manager (hasplms) - Unknown owner - C:\Windows\system32\hasplms.exe (file missing)
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) - Unknown owner - C:\Windows\system32\igfxCUIService.exe (file missing)
O23 - Service: Canon Inkjet Printer/Scanner/Fax Extended Survey Program (IJPLMSVC) - Unknown owner - C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: klvssbridge64_18.0.0 - AO Kaspersky Lab - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 18.0.0\x64\vssbridge64.exe
O23 - Service: Služba Kaspersky Secure Connection 2.0.0 (KSDE2.0.0) - AO Kaspersky Lab - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Secure Connection 2.0\ksde.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Display Container LS (NVDisplay.ContainerLocalSystem) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
O23 - Service: PDF24 - Geek Software GmbH - C:\Program Files (x86)\PDF24\pdf24.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Conexant SmartAudio service (SAService) - Conexant Systems, Inc. - C:\Windows\system32\SAsrv.exe
O23 - Service: @%systemroot%\system32\SecurityHealthAgent.dll,-1002 (SecurityHealthService) - Unknown owner - C:\Windows\system32\SecurityHealthService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\Windows\System32\SensorDataService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spectrum.exe,-101 (spectrum) - Unknown owner - C:\Windows\system32\spectrum.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: SInstalátor (ssinstall) - PS Media s.r.o. - C:\Windows\SysWOW64\ssins.exe
O23 - Service: TeamViewer 12 (TeamViewer) - TeamViewer GmbH - C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\Windows\system32\TieringEngineService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: @%systemroot%\system32\xbgmsvc.exe,-100 (xbgm) - Unknown owner - C:\Windows\system32\xbgmsvc.exe (file missing)

--
End of file - 11218 bytes

======Listing Processes======








c:\windows\system32\svchost.exe -k dcomlaunch -p -s PlugPlay
"fontdrvhost.exe"
C:\Windows\system32\svchost.exe -k DcomLaunch -p
c:\windows\system32\svchost.exe -k rpcss -p
c:\windows\system32\svchost.exe -k dcomlaunch -p -s LSM
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -p -s NcbService
c:\windows\system32\svchost.exe -k localservicenetworkrestricted -p -s TimeBrokerSvc
c:\windows\system32\svchost.exe -k localservicenetworkrestricted -p -s EventLog
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -p -s hidserv
c:\windows\system32\svchost.exe -k netsvcs -p -s Schedule
c:\windows\system32\svchost.exe -k netsvcs -p -s ProfSvc
c:\windows\system32\svchost.exe -k netsvcs -p -s lfsvc
c:\windows\system32\svchost.exe -k localservice -p -s nsi
c:\windows\system32\svchost.exe -k localservicenetworkrestricted -p -s Dhcp
c:\windows\system32\svchost.exe -k netsvcs -p -s UserManager
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -p -s SysMain
c:\windows\system32\svchost.exe -k netsvcs -p -s Themes
c:\windows\system32\svchost.exe -k localservice -p -s EventSystem
c:\windows\system32\svchost.exe -k networkservice -p -s NlaSvc
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork -p
c:\windows\system32\svchost.exe -k networkservice -p -s Dnscache
c:\windows\system32\svchost.exe -k netsvcs -p -s SENS

C:\Windows\system32\igfxCUIService.exe
c:\windows\system32\svchost.exe -k localservice -p -s netprofm
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -p -s AudioEndpointBuilder
c:\windows\system32\svchost.exe -k localservice -p -s FontCache
c:\windows\system32\svchost.exe -k localservice -p -s fdPHost
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted -p
c:\windows\system32\svchost.exe -k localserviceandnoimpersonation -p -s FDResPub
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted -p
C:\Windows\system32\svchost.exe -k LocalServiceNetworkRestricted -p
c:\windows\system32\svchost.exe -k appmodel -p -s StateRepository
c:\windows\system32\svchost.exe -k netsvcs -p -s Winmgmt
C:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted -p
c:\windows\system32\svchost.exe -k netsvcs -p -s ShellHWDetection
c:\windows\system32\svchost.exe -k localservicenetworkrestricted -p -s HomeGroupProvider
C:\Windows\System32\spoolsv.exe
c:\windows\system32\svchost.exe -k networkservice -p -s LanmanWorkstation
c:\windows\system32\svchost.exe -k localservicepeernet -s p2pimsvc
c:\windows\system32\svchost.exe -k localservicepeernet -s PNRPsvc
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -p -s DeviceAssociationService
c:\windows\system32\svchost.exe -k networkservice -p -s CryptSvc
dashost.exe {c5680c74-14c0-43a2-95dc9519084a575e}
C:\Windows\System32\svchost.exe -k utcsvc -p
"C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 18.0.0\avp.exe" -r
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files\Dassault Systemes\DraftSight\bin\dsHttpApiService.exe" C:\Program Files\Dassault Systemes\DraftSight\bin\dsHttpApiService.exe
"C:\Program Files (x86)\CodeMeter\Runtime\bin\CodeMeter.exe"
c:\windows\system32\svchost.exe -k localservicenonetwork -p -s DPS
"C:\Program Files\Elantech\ETDService.exe"
"C:\Program Files\FileOpen\Services\FileOpenManager64.exe"
C:\Windows\system32\hasplms.exe -run
c:\windows\system32\svchost.exe -k netsvcs -p -s IKEEXT
"C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE"
c:\windows\system32\svchost.exe -k netsvcs -p -s iphlpsvc
c:\windows\system32\svchost.exe -k localservice -p -s SstpSvc

"C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem"
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -p -s TrkWks
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Windows\SysWOW64\SAsrv.exe"
c:\windows\system32\svchost.exe -k netsvcs -p -s WpnService
c:\windows\system32\svchost.exe -k localserviceandnoimpersonation -p -s SSDPSRV
c:\windows\system32\svchost.exe -k netsvcs -p -s LanmanServer
"C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe"
c:\windows\system32\svchost.exe -k localservice -p -s WdiServiceHost
c:\windows\system32\svchost.exe -k netsvcs
c:\windows\system32\svchost.exe -k localservicepeernet -s p2psvc
"C:\Windows\system32\CxAudMsg64.exe"
c:\windows\system32\svchost.exe -k netsvcs -p -s TokenBroker
c:\windows\system32\svchost.exe -k netsvcs -p -s Appinfo
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -p -s TabletInputService
c:\windows\system32\svchost.exe -k localservice -p -s CDPSvc
C:\Windows\system32\SearchIndexer.exe /Embedding
c:\windows\system32\svchost.exe -k netsvcs -p -s Browser
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -p -s PcaSvc
"C:\Program Files (x86)\Kaspersky Lab\Kaspersky Secure Connection 2.0\ksde.exe" -r
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -p -s StorSvc
c:\windows\system32\svchost.exe -k localservicenetworkrestricted -p -s wscsvc
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
c:\windows\system32\svchost.exe -k localserviceandnoimpersonation -p -s upnphost
c:\windows\system32\svchost.exe -k localservice -p -s LicenseManager
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -p -s SensorService
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-f375247a-2f64-4545-a864-e16b4c4b9b95 -SystemEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-a49b00a1-e9a6-4db9-a850-eb8bef374422 -IoCancelEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-fe00b9fa-57ff-4310-a0dc-46739be103dc -NonStateChangingEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-db0831c5-b69e-4970-97b0-1de2f9d7e1f0 -LifetimeId:72144480-83b1-4698-9e9f-a59508e918b2 -DeviceGroupId:WpdFsGroup
C:\Windows\system32\svchost.exe -k SDRSVC
C:\Windows\system32\svchost.exe -k LocalServiceNetworkRestricted -p -s WinHttpAutoProxySvc
"C:\Program Files (x86)\PDF24\pdf24.exe" -service
c:\windows\system32\svchost.exe -k localserviceandnoimpersonation -p -s wcncsvc
C:\Windows\system32\DllHost.exe /Processid:{3EB3C877-1F16-487C-9050-104DBCD66683}
C:\Windows\System32\svchost.exe -k LocalServiceNoNetwork -p -s NcdAutoSetup
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -p -s DsSvc
"C:\Program Files (x86)\Google\Update\1.3.33.5\GoogleCrashHandler.exe"
"C:\Program Files (x86)\Google\Update\1.3.33.5\GoogleCrashHandler64.exe"
C:\Windows\sysWOW64\wbem\wmiprvse.exe -Embedding
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted -p -s WdiSystemHost

C:\Windows\System32\WinLogon.exe -SpecialSession
"fontdrvhost.exe"
"dwm.exe"
C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
"C:\Program Files\Elantech\ETDCtrl.exe"
sihost.exe
c:\windows\system32\svchost.exe -k unistacksvcgroup -s CDPUserSvc
c:\windows\system32\svchost.exe -k unistacksvcgroup -s WpnUserService
C:\Windows\System32\rundll32.exe C:\Windows\System32\shell32.dll,SHCreateLocalServerRunDll {995C996E-D918-4a8c-A302-45719A6F4EA7} -Embedding
igfxEM.exe
igfxHK.exe
igfxTray.exe
taskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E}
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted -p -s lmhosts
"C:\Program Files\Elantech\ETDCtrlHelper.exe"
C:\Windows\Explorer.EXE
"C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
c:\windows\system32\svchost.exe -k unistacksvcgroup
"C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe" -ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca
C:\Windows\System32\RuntimeBroker.exe -Embedding
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\Program Files\WindowsApps\Microsoft.SkypeApp_12.7.597.0_x64__kzf8qxf38zg5c\SkypeHost.exe" -ServerName:SkypeHost.ServerServer
"ctfmon.exe"
"C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 18.0.0\avpui.exe" -hidden
"C:\Program Files (x86)\Kaspersky Lab\Kaspersky Secure Connection 2.0\ksdeui.exe" -hidden
C:\Windows\System32\RuntimeBroker.exe -Embedding
C:\Windows\system32\SettingSyncHost.exe -Embedding
C:\Windows\System32\RuntimeBroker.exe -Embedding
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\Program Files\Windows Defender\MSASCuiL.exe"
"C:\Program Files\CONEXANT\cAudioFilterAgent\CAudioFilterAgent64.exe"
"C:\Program Files\FileOpen\Services\FileOpenBroker64.exe"
"C:\Program Files (x86)\Cobian Backup 11\Cobian.exe"
"C:\Program Files (x86)\Cobian Backup 11\cbInterface.exe"
"C:\Users\kospr\AppData\Local\Viber\Viber.exe" StartMinimized
"C:\Program Files (x86)\CodeMeter\Runtime\bin\CodeMeterCC.exe"
"C:\Program Files (x86)\USB Camera\VM331STI.EXE"
"C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe"
"C:\Program Files (x86)\WIBUKEY\Server\WkSvMgr.exe"
"C:\Program Files (x86)\PDF24\pdf24.exe"
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
C:\Windows\system32\DllHost.exe /Processid:{AB8902B4-09CA-4BB6-B78D-A8F59079A8D5}
C:\Windows\system32\ApplicationFrameHost.exe -Embedding
"C:\Program Files\WindowsApps\Microsoft.WindowsStore_11709.1001.27.0_x64__8wekyb3d8bbwe\WinStore.App.exe" -ServerName:App.AppXc75wvwned5vhz4xyxxecvgdjhdkgsdza.mca
"C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.1710.2791.0_x64__8wekyb3d8bbwe\Calculator.exe" -ServerName:App.AppXsm3pg4n7er43kdh1qp4e79f1j7am68r8.mca
"C:\Program Files\Mozilla Firefox\firefox.exe"
"C:\Program Files\Mozilla Firefox\firefox.exe" -contentproc --channel="7768.0.605964767\1569474470" -greomni "C:\Program Files\Mozilla Firefox\omni.ja" -appomni "C:\Program Files\Mozilla Firefox\browser\omni.ja" -appdir "C:\Program Files\Mozilla Firefox\browser" 7768 "\\.\pipe\gecko-crash-server-pipe.7768" gpu
"C:\Program Files\Mozilla Firefox\firefox.exe" -contentproc --channel="7768.3.1101520778\1861441633" -childID 1 -isForBrowser -intPrefs 5:50|6:-1|28:1000|33:20|34:10|43:128|44:10000|49:0|51:400|52:1|53:0|54:0|59:0|60:120|61:120|92:2|93:1|107:5000|118:0|120:0|131:10000|143:-1|148:128|149:10000|150:0|156:24|157:32768|159:0|160:0|168:5|172:1048576|173:100|174:5000|176:600|178:1|187:3|191:0|201:60000| -boolPrefs 1:0|2:0|4:0|26:1|27:1|30:0|35:1|36:0|37:0|38:0|41:1|42:1|45:0|46:0|47:0|48:0|50:0|55:1|56:1|57:0|58:1|62:1|63:1|64:0|65:1|66:1|67:0|68:1|71:0|72:0|75:1|76:1|80:1|81:1|82:1|83:0|84:0|86:0|87:0|88:1|89:0|94:1|95:0|101:0|106:0|109:1|110:1|113:1|115:1|119:0|122:1|125:1|126:1|132:0|133:0|134:1|136:0|142:0|144:1|145:0|146:1|147:0|154:0|155:0|158:1|161:0|163:1|165:1|166:0|171:0|175:1|180:0|181:0|182:0|183:1|184:0|185:0|186:1|189:0|193:0|194:0|195:1|196:1|197:0|198:1|199:1|200:1|202:0|203:0|205:0|213:1|214:1|215:0|216:0|217:0| -stringPrefs "3:7;release|135:3;1.0|152:332;  ¼½¾ǃː̷̸։֊׃״؉؊٪۔܁܂܃܄ᅟᅠ᜵           ​‎‏‐’․‧

‪‫‬‭‮ ‹›⁁⁄⁒ ⅓⅔⅕⅖⅗⅘⅙⅚⅛⅜⅝⅞⅟∕∶⎮╱⧶⧸⫻⫽⿰⿱⿲⿳⿴⿵⿶⿷⿸⿹⿺⿻ 。〔〕〳゠ㅤ㈝㈞㎮㎯㏆㏟꞉︔︕︿﹝﹞./。ᅠ�|153:8;moderate|188:38;{61540de2-1601-4126-9eb5-a85154319cb5}|" -greomni "C:\Program Files\Mozilla Firefox\omni.ja" -appomni "C:\Program Files\Mozilla Firefox\browser\omni.ja" -appdir "C:\Program Files\Mozilla Firefox\browser" 7768 "\\.\pipe\gecko-crash-server-pipe.7768" tab
"C:\Program Files\Mozilla Firefox\firefox.exe" -contentproc --channel="7768.13.354742372\1426365799" -childID 2 -isForBrowser -intPrefs 5:50|6:-1|28:1000|33:20|34:10|43:128|44:10000|49:0|51:400|52:1|53:0|54:0|59:0|60:120|61:120|92:2|93:1|107:5000|118:0|120:0|131:10000|143:-1|148:128|149:10000|150:0|156:24|157:32768|159:0|160:0|168:5|172:1048576|173:100|174:5000|176:600|178:1|187:3|191:0|201:60000| -boolPrefs 1:0|2:0|4:0|26:1|27:1|30:0|35:1|36:0|37:0|38:0|41:1|42:1|45:0|46:0|47:0|48:0|50:0|55:1|56:1|57:0|58:1|62:1|63:1|64:0|65:1|66:1|67:0|68:1|71:0|72:0|75:1|76:1|80:1|81:1|82:1|83:0|84:0|86:0|87:0|88:1|89:0|94:1|95:0|101:0|106:0|109:1|110:1|113:1|115:1|119:0|122:1|125:1|126:1|132:0|133:0|134:1|136:0|142:0|144:1|145:0|146:1|147:0|154:0|155:0|158:1|161:0|163:1|165:1|166:0|171:0|175:1|180:0|181:0|182:0|183:1|184:0|185:0|186:1|189:0|193:0|194:0|195:1|196:1|197:0|198:1|199:1|200:1|202:0|203:0|205:0|213:1|214:1|215:0|216:0|217:0| -stringPrefs "3:7;release|135:3;1.0|152:332;  ¼½¾ǃː̷̸։֊׃״؉؊٪۔܁܂܃܄ᅟᅠ᜵           ​‎‏‐’․‧

‪‫‬‭‮ ‹›⁁⁄⁒ ⅓⅔⅕⅖⅗⅘⅙⅚⅛⅜⅝⅞⅟∕∶⎮╱⧶⧸⫻⫽⿰⿱⿲⿳⿴⿵⿶⿷⿸⿹⿺⿻ 。〔〕〳゠ㅤ㈝㈞㎮㎯㏆㏟꞉︔︕︿﹝﹞./。ᅠ�|153:8;moderate|188:38;{61540de2-1601-4126-9eb5-a85154319cb5}|" -greomni "C:\Program Files\Mozilla Firefox\omni.ja" -appomni "C:\Program Files\Mozilla Firefox\browser\omni.ja" -appdir "C:\Program Files\Mozilla Firefox\browser" 7768 "\\.\pipe\gecko-crash-server-pipe.7768" tab
"C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe" -auto
c:\windows\system32\svchost.exe -k localservicenetworkrestricted -s RmSvc
c:\windows\system32\svchost.exe -k netsvcs -p -s seclogon
C:\Windows\system32\DllHost.exe /Processid:{973D20D7-562D-44B9-B70B-5A0F49CCDF3F}
"C:\Program Files (x86)\LibreOffice 5\program\swriter.exe" -o "D:\Dozor\K16-128-RD Lebánek\01-statika\RD Lebánek-DPS-stat.doc"
"C:\Program Files (x86)\LibreOffice 5\program\swriter.exe" -o "D:\Dozor\K16-128-RD Lebánek\01-statika\RD Lebánek-DPS-stat.doc" --writer
"C:\Program Files (x86)\LibreOffice 5\program\swriter.exe" "-o" "D:\Dozor\K16-128-RD Lebánek\01-statika\RD Lebánek-DPS-stat.doc" "--writer" "-env:OOO_CWD=2D:\\Dozor\\K16-128-RD Lebánek\\01-statika"
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.17092.13511.0_x64__8wekyb3d8bbwe\Video.UI.exe" -ServerName:Microsoft.ZuneVideo.AppX758ya5sqdjd98rx6z7g95nw6jy7bqx9y.mca
"C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2017.39081.15820.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe" -ServerName:App.AppXzst44mncqdg84v7sv6p7yznqwssy6f7f.mca
"C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.8700.40485.0_x64__8wekyb3d8bbwe\HxCalendarAppImm.exe" -ServerName:microsoft.windowslive.calendar.AppXg9pag83k0brz0hvt3yj6hxda2h2y7w14.mca
"C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.8700.40485.0_x64__8wekyb3d8bbwe\HxTsr.exe" -ServerName:Hx.IPC.Server
C:\Windows\System32\RuntimeBroker.exe -Embedding
C:\Windows\System32\RuntimeBroker.exe -Embedding
C:\Windows\System32\smartscreen.exe -Embedding
C:\Windows\system32\svchost.exe -k netsvcs -p -s XblAuthManager
C:\Windows\system32\svchost.exe -k netsvcs -p -s wlidsvc
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe61_ Global\UsGthrCtrlFltPipeMssGthrPipe61 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Windows\system32\SearchFilterHost.exe" 0 744 748 756 8192 752
"C:\Windows\system32\backgroundTaskHost.exe" -ServerName:CortanaUI.AppXy7vb4pc2dr3kc93kfc509b1d0arkfb2x.mca
C:\Windows\system32\svchost.exe -k appmodel -p -s tiledatamodelsvc
"C:\Users\kospr\Desktop\RSITx64.exe"
C:\Windows\system32\wbem\wmiprvse.exe

======Scheduled tasks folder======

C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe

=========Mozilla firefox=========

ProfilePath - C:\Users\kospr\AppData\Roaming\Mozilla\Firefox\Profiles\x4od6qvu.default

prefs.js - "browser.startup.homepage" - "https://www.seznam.cz/#"

"light_plugin_448EC0843447455C9DA355B3C2811D6A@kaspersky.com"=C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 18.0.0\FFExt\light_plugin_firefox\addon.xpi


[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 21.0.0.182 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_21_0_0_182.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/DTPlugin,version=11.121.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files (x86)\Java\jre1.8.0_121\bin\dtplugin\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=11.121.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Java\jre1.8.0_121\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 21.0.0.182 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_21_0_0_182.dll


======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0E2877D3-2641-4970-B794-A553E295428D}]
Kaspersky Protection - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 18.0.0\x64\IEExt\ie_plugin.dll [2017-10-25 1429352]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0E2877D3-2641-4970-B794-A553E295428D}]
Kaspersky Protection - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 18.0.0\IEExt\ie_plugin.dll [2017-10-25 1150312]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_121\bin\ssv.dll [2017-10-30 473152]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_121\bin\jp2ssv.dll [2017-10-30 186944]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{4853DF44-7D6B-48E9-9258-D800EEE54AF6} - Kaspersky Protection Toolbar - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 18.0.0\x64\IEExt\ie_plugin.dll [2017-10-25 1429352]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{4853DF44-7D6B-48E9-9258-D800EEE54AF6} - Kaspersky Protection Toolbar - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 18.0.0\IEExt\ie_plugin.dll [2017-10-25 1150312]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SecurityHealth"=C:\Program Files\Windows Defender\MSASCuiL.exe [2017-09-29 630168]
"cAudioFilterAgent"=C:\Program Files\Conexant\cAudioFilterAgent\cAudioFilterAgent64.exe [2014-11-25 935104]
"SmartAudio"=C:\Program Files\CONEXANT\SAII\SACpl.exe [2014-04-10 1830616]
"ETDCtrl"=C:\Program Files\Elantech\ETDCtrl.exe [2015-10-07 3242696]
"FileOpenBroker"=C:\Program Files\FileOpen\Services\FileOpenBroker64.exe [2017-07-25 1540912]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Cobian Backup 11"=C:\Program Files (x86)\Cobian Backup 11\Cobian.exe [2013-03-07 720896]
"Viber"=C:\Users\kospr\AppData\Local\Viber\Viber.exe [2017-10-24 38871120]
"GoogleDriveSync"=C:\Program Files (x86)\Google\Drive\googledrivesync.exe /autostart []

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"331BigDog"=C:\Program Files (x86)\USB Camera\VM331STI.EXE [2015-09-03 571928]
"HP Software Update"=C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe [2013-05-30 96056]
""= []
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2017-03-28 1160408]
"PDFPrint"=C:\Program Files (x86)\PDF24\pdf24.exe [2017-09-14 413320]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2016-12-12 587288]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
CodeMeter Control Center.lnk - C:\Program Files (x86)\CodeMeter\Runtime\bin\CodeMeterCC.exe
Network Server.lnk - C:\Program Files (x86)\WIBUKEY\Server\WkSvMgr.exe

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iai2c.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SerCx2.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SpbCx.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TileDataModelSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\uefi.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetSetupSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SerCx2.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SpbCx.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TileDataModelSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\uefi.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DSCAutomationHostEnabled"=2
"EnableFullTrustStartupTasks"=2
"EnableUwpStartupTasks"=2
"SupportFullTrustStartupTasks"=1
"SupportUwpStartupTasks"=1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"C:\Program Files (x86)\CodeMeter\Runtime\bin\CodeMeter.exe"="C:\Program Files (x86)\CodeMeter\Runtime\bin\CodeMeter.exe:*:Enabled:CodeMeter Runtime Server"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"C:\Program Files (x86)\CodeMeter\Runtime\bin\CodeMeter.exe"="C:\Program Files (x86)\CodeMeter\Runtime\bin\CodeMeter.exe:*:Enabled:CodeMeter Runtime Server"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2017-11-07 10:11:03 ----D---- C:\rsit
2017-11-07 10:11:03 ----D---- C:\Program Files\trend micro
2017-11-07 09:45:18 ----SHD---- C:\Config.Msi
2017-11-03 15:31:27 ----D---- C:\Program Files (x86)\Google
2017-10-31 11:39:14 ----D---- C:\Users\kospr\AppData\Roaming\WhatsApp
2017-10-31 11:32:46 ----D---- C:\Users\kospr\AppData\Roaming\ViberPC
2017-10-31 10:10:31 ----D---- C:\ProgramData\Fine
2017-10-30 17:43:29 ----D---- C:\Users\kospr\AppData\Roaming\MAXON
2017-10-30 17:42:43 ----D---- C:\Users\kospr\AppData\Roaming\GRAPHISOFT
2017-10-30 17:13:08 ----A---- C:\Windows\SYSWOW64\WkExt32.dll
2017-10-30 17:13:08 ----A---- C:\Windows\SYSWOW64\wibuKJni.dll
2017-10-30 17:13:08 ----A---- C:\Windows\system32\WkExt64.dll
2017-10-30 17:13:08 ----A---- C:\Windows\system32\wibuKJni64.dll
2017-10-30 17:13:06 ----A---- C:\Windows\system32\drivers\Wibukey2_64.sys
2017-10-30 17:13:05 ----A---- C:\Windows\SYSWOW64\WkWin32.dll
2017-10-30 17:13:05 ----A---- C:\Windows\system32\WkWin64.dll
2017-10-30 17:13:05 ----A---- C:\Windows\system32\drivers\WibuKey64.sys
2017-10-30 17:13:00 ----D---- C:\Program Files (x86)\WIBU-SYSTEMS
2017-10-30 17:13:00 ----D---- C:\Program Files (x86)\WIBUKEY
2017-10-30 17:07:00 ----D---- C:\Program Files\WIBU-SYSTEMS
2017-10-30 17:06:56 ----D---- C:\ProgramData\CodeMeter
2017-10-30 17:06:56 ----D---- C:\Program Files\CodeMeter
2017-10-30 17:06:56 ----D---- C:\Program Files (x86)\CodeMeter
2017-10-30 17:05:13 ----D---- C:\Program Files\GRAPHISOFT
2017-10-30 17:04:14 ----D---- C:\Users\kospr\AppData\Roaming\Install.GS
2017-10-30 17:03:47 ----D---- C:\Users\kospr\AppData\Roaming\Sun
2017-10-30 17:03:44 ----A---- C:\Windows\SYSWOW64\WindowsAccessBridge-32.dll
2017-10-30 17:03:30 ----D---- C:\ProgramData\Oracle
2017-10-30 17:03:28 ----D---- C:\Program Files (x86)\Java
2017-10-30 15:35:05 ----A---- C:\Windows\system32\drivers\klupd_klif_kimul.sys
2017-10-27 09:02:44 ----D---- C:\Program Files\Common Files\Macrovision Shared
2017-10-27 09:02:34 ----D---- C:\ProgramData\Application Data
2017-10-26 09:38:52 ----D---- C:\Users\kospr\AppData\Roaming\TeamViewer
2017-10-26 09:38:46 ----D---- C:\Program Files (x86)\TeamViewer
2017-10-26 08:44:31 ----D---- C:\Windows\system32\MRT
2017-10-26 08:44:27 ----AC---- C:\Windows\system32\MRT-KB890830.exe
2017-10-26 08:44:25 ----AC---- C:\Windows\system32\MRT.exe
2017-10-26 08:43:35 ----A---- C:\Windows\system32\mshtml.dll
2017-10-26 08:43:35 ----A---- C:\Windows\system32\edgehtml.dll
2017-10-26 08:43:34 ----A---- C:\Windows\system32\Hydrogen.dll
2017-10-26 08:43:33 ----A---- C:\Windows\system32\HologramCompositor.dll
2017-10-26 08:43:32 ----A---- C:\Windows\system32\StartTileData.dll
2017-10-26 08:43:32 ----A---- C:\Windows\system32\Chakra.dll
2017-10-26 08:43:31 ----A---- C:\Windows\SYSWOW64\Chakra.dll
2017-10-26 08:43:31 ----A---- C:\Windows\SYSWOW64\edgehtml.dll
2017-10-26 08:43:30 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2017-10-26 08:43:30 ----A---- C:\Windows\system32\Windows.Mirage.dll
2017-10-26 08:43:30 ----A---- C:\Windows\system32\jscript9.dll
2017-10-26 08:43:29 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2017-10-26 08:43:29 ----A---- C:\Windows\system32\win32kfull.sys
2017-10-26 08:43:29 ----A---- C:\Windows\system32\twinapi.appcore.dll
2017-10-26 08:43:29 ----A---- C:\Windows\system32\ntoskrnl.exe
2017-10-26 08:43:28 ----A---- C:\Windows\SYSWOW64\wininet.dll
2017-10-26 08:43:28 ----A---- C:\Windows\SYSWOW64\Windows.Mirage.dll
2017-10-26 08:43:28 ----A---- C:\Windows\SYSWOW64\win32kfull.sys
2017-10-26 08:43:28 ----A---- C:\Windows\SYSWOW64\twinapi.appcore.dll
2017-10-26 08:43:28 ----A---- C:\Windows\SYSWOW64\msctf.dll
2017-10-26 08:43:28 ----A---- C:\Windows\SYSWOW64\gdi32full.dll
2017-10-26 08:43:28 ----A---- C:\Windows\system32\wininet.dll
2017-10-26 08:43:28 ----A---- C:\Windows\system32\win32kbase.sys
2017-10-26 08:43:28 ----A---- C:\Windows\system32\urlmon.dll
2017-10-26 08:43:28 ----A---- C:\Windows\system32\msctf.dll
2017-10-26 08:43:28 ----A---- C:\Windows\system32\ISM.dll
2017-10-26 08:43:28 ----A---- C:\Windows\system32\hvix64.exe
2017-10-26 08:43:28 ----A---- C:\Windows\system32\HolographicExtensions.dll
2017-10-26 08:43:28 ----A---- C:\Windows\system32\gdi32full.dll
2017-10-26 08:43:28 ----A---- C:\Windows\system32\fontdrvhost.exe
2017-10-26 08:43:28 ----A---- C:\Windows\system32\drivers\ntfs.sys
2017-10-26 08:43:28 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys
2017-10-26 08:43:27 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2017-10-26 08:43:27 ----A---- C:\Windows\SYSWOW64\msexcl40.dll
2017-10-26 08:43:27 ----A---- C:\Windows\SYSWOW64\GdiPlus.dll
2017-10-26 08:43:27 ----A---- C:\Windows\SYSWOW64\dnsapi.dll
2017-10-26 08:43:27 ----A---- C:\Windows\system32\NgcCtnr.dll
2017-10-26 08:43:27 ----A---- C:\Windows\system32\msxml3.dll
2017-10-26 08:43:27 ----A---- C:\Windows\system32\MPSSVC.dll
2017-10-26 08:43:27 ----A---- C:\Windows\system32\jscript.dll
2017-10-26 08:43:27 ----A---- C:\Windows\system32\hvax64.exe
2017-10-26 08:43:27 ----A---- C:\Windows\system32\HolographicRuntimes.dll
2017-10-26 08:43:27 ----A---- C:\Windows\system32\drivers\cng.sys
2017-10-26 08:43:27 ----A---- C:\Windows\system32\dnsapi.dll
2017-10-26 08:43:27 ----A---- C:\Windows\system32\DHolographicDisplay.dll
2017-10-26 08:43:27 ----A---- C:\Windows\system32\cryptngc.dll
2017-10-26 08:43:26 ----A---- C:\Windows\SYSWOW64\XblAuthTokenBrokerExt.dll
2017-10-26 08:43:26 ----A---- C:\Windows\SYSWOW64\user32.dll
2017-10-26 08:43:26 ----A---- C:\Windows\SYSWOW64\TpmCoreProvisioning.dll
2017-10-26 08:43:26 ----A---- C:\Windows\SYSWOW64\t2embed.dll
2017-10-26 08:43:26 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2017-10-26 08:43:26 ----A---- C:\Windows\SYSWOW64\PCPKsp.dll
2017-10-26 08:43:26 ----A---- C:\Windows\SYSWOW64\msxml3.dll
2017-10-26 08:43:26 ----A---- C:\Windows\SYSWOW64\mswstr10.dll
2017-10-26 08:43:26 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2017-10-26 08:43:26 ----A---- C:\Windows\SYSWOW64\msjint40.dll
2017-10-26 08:43:26 ----A---- C:\Windows\SYSWOW64\jscript.dll
2017-10-26 08:43:26 ----A---- C:\Windows\SYSWOW64\Chakradiag.dll
2017-10-26 08:43:26 ----A---- C:\Windows\SYSWOW64\fontdrvhost.exe
2017-10-26 08:43:26 ----A---- C:\Windows\SYSWOW64\FirewallAPI.dll
2017-10-26 08:43:26 ----A---- C:\Windows\SYSWOW64\cryptngc.dll
2017-10-26 08:43:26 ----A---- C:\Windows\system32\XblAuthTokenBrokerExt.dll
2017-10-26 08:43:26 ----A---- C:\Windows\system32\wlansec.dll
2017-10-26 08:43:26 ----A---- C:\Windows\system32\user32.dll
2017-10-26 08:43:26 ----A---- C:\Windows\system32\TpmTasks.dll
2017-10-26 08:43:26 ----A---- C:\Windows\system32\TpmCoreProvisioning.dll
2017-10-26 08:43:26 ----A---- C:\Windows\system32\t2embed.dll
2017-10-26 08:43:26 ----A---- C:\Windows\system32\sspisrv.dll
2017-10-26 08:43:26 ----A---- C:\Windows\system32\sspicli.dll
2017-10-26 08:43:26 ----A---- C:\Windows\system32\PCPKsp.dll
2017-10-26 08:43:26 ----A---- C:\Windows\system32\msv1_0.dll
2017-10-26 08:43:26 ----A---- C:\Windows\system32\lsasrv.dll
2017-10-26 08:43:26 ----A---- C:\Windows\system32\jscript9diag.dll
2017-10-26 08:43:26 ----A---- C:\Windows\system32\Chakradiag.dll
2017-10-26 08:43:26 ----A---- C:\Windows\system32\GdiPlus.dll
2017-10-26 08:43:26 ----A---- C:\Windows\system32\FirewallAPI.dll
2017-10-26 08:43:26 ----A---- C:\Windows\system32\drivers\urscx01000.sys
2017-10-26 08:43:26 ----A---- C:\Windows\system32\drivers\UcmUcsi.sys
2017-10-26 08:43:26 ----A---- C:\Windows\system32\drivers\storufs.sys
2017-10-26 08:43:26 ----A---- C:\Windows\system32\drivers\storport.sys
2017-10-26 08:43:26 ----A---- C:\Windows\system32\drivers\srv2.sys
2017-10-26 08:43:26 ----A---- C:\Windows\system32\drivers\nwifi.sys
2017-10-26 08:43:26 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2017-10-26 08:43:26 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2017-10-26 08:43:26 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2017-10-26 08:43:26 ----A---- C:\Windows\system32\drivers\clfs.sys
2017-10-26 08:43:26 ----A---- C:\Windows\system32\drivers\BasicRender.sys
2017-10-26 08:43:26 ----A---- C:\Windows\system32\browserbroker.dll
2017-10-26 08:43:26 ----A---- C:\Windows\system32\bcryptprimitives.dll
2017-10-25 16:07:45 ----A---- C:\Windows\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2017-10-25 15:28:14 ----D---- C:\Users\kospr\AppData\Roaming\NVIDIA
2017-10-25 15:28:11 ----D---- C:\Users\kospr\AppData\Roaming\LibreOffice
2017-10-25 15:27:18 ----D---- C:\Program Files (x86)\LibreOffice 5
2017-10-25 15:21:07 ----D---- C:\Program Files\7-Zip
2017-10-25 15:20:20 ----D---- C:\Program Files (x86)\PDF24
2017-10-25 15:15:04 ----D---- C:\Users\kospr\AppData\Roaming\FileOpen
2017-10-25 15:14:36 ----D---- C:\ProgramData\FileOpen
2017-10-25 15:14:36 ----D---- C:\Program Files\FileOpen
2017-10-25 15:13:56 ----A---- C:\Windows\system32\{F33C3B9B-72AF-418A-B3FD-560646F7CDA2}.bat
2017-10-25 15:13:30 ----D---- C:\Users\kospr\AppData\Roaming\1by1
2017-10-25 15:09:41 ----D---- C:\Program Files (x86)\Adobe
2017-10-25 15:09:32 ----D---- C:\ProgramData\Adobe
2017-10-25 15:09:03 ----A---- C:\Windows\SYSWOW64\ssleay32.dll
2017-10-25 15:09:03 ----A---- C:\Windows\SYSWOW64\ssinstall-uninstall.bat
2017-10-25 15:09:03 ----A---- C:\Windows\SYSWOW64\libeay32.dll
2017-10-25 15:09:02 ----A---- C:\Windows\SYSWOW64\ssins.exe
2017-10-25 14:55:06 ----D---- C:\Users\kospr\AppData\Roaming\DraftSight
2017-10-25 14:55:00 ----D---- C:\ProgramData\Dassault Systemes
2017-10-25 14:55:00 ----D---- C:\Program Files\Dassault Systemes
2017-10-25 14:53:27 ----D---- C:\Program Files (x86)\Cobian Backup 11
2017-10-25 14:52:40 ----D---- C:\Users\kospr\AppData\Roaming\ECtools
2017-10-25 14:49:35 ----D---- C:\Users\kospr\AppData\Roaming\HpUpdate
2017-10-25 14:49:28 ----D---- C:\Program Files\HP
2017-10-25 14:49:28 ----D---- C:\Program Files (x86)\HP
2017-10-25 14:44:54 ----D---- C:\Program Files (x86)\ARPlugin 2.2 (PRO) Scia Engineer
2017-10-25 14:44:43 ----D---- C:\Program Files (x86)\ECtools
2017-10-25 14:44:03 ----A---- C:\ProgramData\Ament.ini
2017-10-25 14:42:00 ----D---- C:\Users\kospr\AppData\Roaming\CADS
2017-10-25 14:41:58 ----A---- C:\Windows\SYSWOW64\vc10-re200l.dll
2017-10-25 14:41:58 ----A---- C:\Windows\SYSWOW64\RWUXThemeS10.dll
2017-10-25 14:41:58 ----A---- C:\Windows\SYSWOW64\CadsPCP10.dll
2017-10-25 14:41:58 ----A---- C:\Windows\SYSWOW64\CadsCmnDlgs10.dll
2017-10-25 14:41:58 ----A---- C:\Windows\SYSWOW64\cads.sfl504as.dll
2017-10-25 14:41:58 ----A---- C:\Windows\SYSWOW64\cads.ot1104as.dll
2017-10-25 14:41:58 ----A---- C:\Windows\SYSWOW64\cads.og1204as.dll
2017-10-25 14:41:57 ----D---- C:\Program Files (x86)\CADS
2017-10-25 14:41:57 ----A---- C:\Windows\SYSWOW64\Machnm1.exe
2017-10-25 14:41:07 ----D---- C:\ProgramData\CADS
2017-10-25 14:39:36 ----D---- C:\Program Files (x86)\1by1
2017-10-25 14:37:39 ----D---- C:\Users\kospr\AppData\Roaming\Ashampoo
2017-10-25 14:37:32 ----D---- C:\ProgramData\Ashampoo
2017-10-25 14:37:29 ----D---- C:\Program Files (x86)\Ashampoo
2017-10-25 14:36:37 ----D---- C:\ProgramData\SCIA
2017-10-25 14:35:06 ----D---- C:\ProgramData\CanonIJPLM
2017-10-25 14:35:00 ----D---- C:\ProgramData\Canon IJ Network Tool
2017-10-25 14:34:37 ----D---- C:\Windows\system32\STRING
2017-10-25 14:34:37 ----A---- C:\Windows\SYSWOW64\CNMNPPM.DLL
2017-10-25 14:34:37 ----A---- C:\Windows\system32\CNMN6UI.DLL
2017-10-25 14:34:37 ----A---- C:\Windows\system32\CNMN6PPM.DLL
2017-10-25 14:34:34 ----D---- C:\ProgramData\CanonIJWSpt
2017-10-25 14:34:31 ----HD---- C:\ProgramData\CanonBJ
2017-10-25 14:34:21 ----A---- C:\Windows\system32\CNMLMC0.DLL
2017-10-25 14:34:18 ----D---- C:\Program Files (x86)\SCIA
2017-10-25 14:34:14 ----HD---- C:\Program Files\CanonBJ
2017-10-25 14:32:45 ----D---- C:\Program Files (x86)\Canon
2017-10-25 14:28:09 ----SHD---- C:\System Volume Information
2017-10-25 14:28:07 ----D---- C:\ProgramData\HP
2017-10-25 14:27:39 ----D---- C:\Windows\Panther
2017-10-25 14:21:45 ----D---- C:\Program Files (x86)\SafeNet Sentinel
2017-10-25 14:21:26 ----HD---- C:\$SysReset
2017-10-25 14:21:15 ----D---- C:\ProgramData\Package Cache
2017-10-25 14:18:04 ----D---- C:\Users\kospr\AppData\Roaming\Fine
2017-10-25 14:11:02 ----D---- C:\Program Files (x86)\Fine
2017-10-25 14:08:57 ----A---- C:\Windows\system32\drivers\aksdf.sys
2017-10-25 14:08:50 ----D---- C:\ProgramData\SafeNet Sentinel
2017-10-25 14:08:50 ----A---- C:\Windows\system32\hasplms.exe
2017-10-25 14:08:50 ----A---- C:\Windows\system32\aksllmtp.exe
2017-10-25 14:08:49 ----A---- C:\Windows\system32\drivers\aksfridge.sys
2017-10-25 14:08:48 ----A---- C:\Windows\system32\drivers\hardlock.sys
2017-10-25 14:08:41 ----A---- C:\Windows\SYSWOW64\hlvdd.dll
2017-10-25 14:07:31 ----A---- C:\Windows\system32\drivers\aksusb.sys
2017-10-25 14:07:31 ----A---- C:\Windows\system32\drivers\akshhl.sys
2017-10-25 14:07:31 ----A---- C:\Windows\system32\drivers\akshasp.sys
2017-10-25 14:07:31 ----A---- C:\Windows\system32\drivers\aksclass.sys
2017-10-25 14:07:31 ----A---- C:\Windows\system32\aksusb4.dll
2017-10-25 14:07:31 ----A---- C:\Windows\system32\akshsp52.dll
2017-10-25 14:07:31 ----A---- C:\Windows\system32\akshhl32.dll
2017-10-25 14:02:44 ----A---- C:\Windows\system32\drivers\klupd_klif_klark.sys
2017-10-25 13:57:17 ----A---- C:\Windows\system32\drivers\klupd_klif_klbg.sys
2017-10-25 13:57:16 ----A---- C:\Windows\system32\drivers\klupd_klif_mark.sys
2017-10-25 13:57:16 ----A---- C:\Windows\system32\drivers\klupd_klif_arkmon.sys
2017-10-25 13:56:57 ----D---- C:\Program Files\Common Files\AV
2017-10-25 13:56:53 ----A---- C:\Windows\system32\klfphc.dll
2017-10-25 13:56:42 ----D---- C:\ProgramData\Kaspersky Lab
2017-10-25 13:56:42 ----D---- C:\Program Files (x86)\Kaspersky Lab
2017-10-25 13:56:37 ----A---- C:\Windows\system32\klhkum.dll
2017-10-25 13:56:37 ----A---- C:\Windows\system32\drivers\klif.sys
2017-10-25 13:56:37 ----A---- C:\Windows\system32\drivers\klhk.sys
2017-10-25 13:56:37 ----A---- C:\Windows\system32\drivers\klflt.sys
2017-10-25 13:55:23 ----A---- C:\Windows\SYSWOW64\vulkaninfo.exe
2017-10-25 13:55:23 ----A---- C:\Windows\SYSWOW64\vulkan-1.dll
2017-10-25 13:55:23 ----A---- C:\Windows\system32\vulkaninfo.exe
2017-10-25 13:55:23 ----A---- C:\Windows\system32\vulkan-1.dll
2017-10-25 13:55:22 ----D---- C:\Program Files (x86)\VulkanRT
2017-10-25 13:55:15 ----A---- C:\Windows\system32\nvsvcr.dll
2017-10-25 13:55:15 ----A---- C:\Windows\system32\nvsvc64.dll
2017-10-25 13:55:15 ----A---- C:\Windows\system32\nvshext.dll
2017-10-25 13:55:15 ----A---- C:\Windows\system32\nvmctray.dll
2017-10-25 13:55:15 ----A---- C:\Windows\system32\nvcpl.dll
2017-10-25 13:55:15 ----A---- C:\Windows\system32\nv3dappshextr.dll
2017-10-25 13:55:15 ----A---- C:\Windows\system32\nv3dappshext.dll
2017-10-25 13:55:14 ----A---- C:\Windows\SYSWOW64\oemdspif.dll
2017-10-25 13:54:59 ----D---- C:\ProgramData\NVIDIA
2017-10-25 13:54:59 ----A---- C:\Windows\NvContainerRecovery.bat
2017-10-25 13:54:15 ----D---- C:\ProgramData\NVIDIA Corporation
2017-10-25 13:54:11 ----D---- C:\Program Files\NVIDIA Corporation
2017-10-25 13:54:11 ----D---- C:\Program Files (x86)\NVIDIA Corporation
2017-10-25 13:48:12 ----D---- C:\Users\kospr\AppData\Roaming\Mozilla
2017-10-25 13:48:06 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2017-10-25 13:48:03 ----D---- C:\Program Files\Mozilla Firefox
2017-10-25 13:45:56 ----D---- C:\Program Files (x86)\USB Camera
2017-10-25 13:45:46 ----D---- C:\Windows\SYSWOW64\sda
2017-10-25 13:45:30 ----D---- C:\Program Files\Elantech
2017-10-25 13:44:37 ----D---- C:\Program Files (x86)\Intel
2017-10-25 13:44:35 ----D---- C:\Intel
2017-10-25 13:44:35 ----A---- C:\Windows\SYSWOW64\OpenCL.DLL
2017-10-25 13:44:35 ----A---- C:\Windows\system32\OpenCL.DLL
2017-10-25 13:44:34 ----D---- C:\Program Files\Intel
2017-10-25 13:38:20 ----A---- C:\Windows\SYSWOW64\SASrv.exe
2017-10-25 13:38:14 ----A---- C:\Windows\system32\drivers\CxSfPt.dat
2017-10-25 13:38:11 ----D---- C:\ProgramData\Microsoft OneDrive
2017-10-25 13:37:58 ----A---- C:\Windows\system32\CxAudMsg64.exe
2017-10-25 13:37:46 ----D---- C:\Program Files\Dolby Digital Plus
2017-10-25 13:37:42 ----A---- C:\Windows\system32\PerfStringBackup.INI
2017-10-25 13:37:32 ----D---- C:\ProgramData\Conexant
2017-10-25 13:37:30 ----D---- C:\Program Files\CONEXANT
2017-10-25 13:36:48 ----D---- C:\Users\kospr\AppData\Roaming\Adobe
2017-10-25 13:35:23 ----D---- C:\ProgramData\USOShared
2017-10-25 13:35:19 ----SD---- C:\Users\kospr\AppData\Roaming\Microsoft
2017-10-25 13:31:51 ----A---- C:\Windows\SYSWOW64\PrintConfig.dll
2017-10-25 13:31:48 ----D---- C:\Windows\SoftwareDistribution
2017-10-25 13:31:41 ----SHD---- C:\Recovery
2017-10-25 13:31:39 ----SHD---- C:\ProgramData\Šablony
2017-10-25 13:31:39 ----SHD---- C:\ProgramData\Plocha
2017-10-25 13:31:39 ----SHD---- C:\ProgramData\Nabídka Start
2017-10-25 13:31:39 ----SHD---- C:\ProgramData\Dokumenty
2017-10-25 13:31:39 ----SHD---- C:\ProgramData\Data aplikací
2017-10-25 13:31:39 ----SHD---- C:\Documents and Settings
2017-10-25 13:31:31 ----ASH---- C:\hiberfil.sys
2017-10-25 13:29:20 ----HD---- C:\Program Files\Uninstall Information
2017-10-25 13:29:16 ----AS---- C:\Windows\bootstat.dat
2017-10-25 13:29:12 ----D---- C:\Windows\Prefetch
2017-10-25 13:29:04 ----SD---- C:\Windows\system32\Microsoft
2017-10-25 13:29:04 ----D---- C:\Windows\system32\SleepStudy
2017-10-25 13:29:04 ----D---- C:\Windows\ServiceProfiles
2017-10-25 13:29:04 ----ASH---- C:\swapfile.sys
2017-10-25 13:29:04 ----A---- C:\Windows\system32\FNTCACHE.DAT
2017-10-25 13:29:03 ----ASH---- C:\pagefile.sys
2017-10-15 12:40:54 ----A---- C:\Windows\system32\drivers\kneps.sys
2017-10-15 12:40:54 ----A---- C:\Windows\system32\drivers\klwtp.sys
2017-10-15 12:40:54 ----A---- C:\Windows\system32\drivers\klpd.sys
2017-10-15 12:40:54 ----A---- C:\Windows\system32\drivers\klbackupflt.sys
2017-10-15 12:40:54 ----A---- C:\Windows\system32\drivers\klbackupdisk.sys

======List of files/folders modified in the last 1 month======

2017-11-07 10:15:11 ----D---- C:\Windows\Temp
2017-11-07 10:11:03 ----RD---- C:\Program Files
2017-11-07 09:45:21 ----SHD---- C:\Windows\Installer
2017-11-07 09:40:53 ----D---- C:\Windows\system32\catroot2
2017-11-07 09:36:56 ----D---- C:\Windows\system32\NDF
2017-11-07 09:24:29 ----D---- C:\Windows\system32\sru
2017-11-06 18:18:11 ----D---- C:\Windows\LiveKernelReports
2017-11-06 18:00:00 ----D---- C:\Windows\system32\LogFiles
2017-11-06 17:06:33 ----D---- C:\Windows\Logs
2017-11-06 17:02:48 ----RD---- C:\Windows\Microsoft.NET
2017-11-03 15:32:28 ----RD---- C:\Program Files (x86)
2017-11-03 15:31:29 ----D---- C:\Windows\system32\Tasks
2017-11-03 10:07:07 ----D---- C:\Windows\DeliveryOptimization
2017-11-03 08:48:10 ----D---- C:\Windows\system32\config
2017-11-03 08:28:31 ----HD---- C:\Program Files\WindowsApps
2017-11-03 08:28:31 ----D---- C:\Windows\AppReadiness
2017-11-01 16:38:51 ----SD---- C:\ProgramData\Microsoft
2017-11-01 16:37:10 ----D---- C:\Windows\INF
2017-11-01 15:59:45 ----D---- C:\Windows\System32
2017-11-01 15:55:24 ----HD---- C:\ProgramData
2017-11-01 14:17:08 ----D---- C:\Windows\system32\DriverStore
2017-11-01 14:17:07 ----D---- C:\Windows\WinSxS
2017-10-30 17:42:08 ----D---- C:\Windows\system32\drivers
2017-10-30 17:13:08 ----D---- C:\Windows\SysWOW64
2017-10-30 17:12:54 ----D---- C:\Windows
2017-10-30 17:07:03 ----RD---- C:\Windows\assembly
2017-10-30 17:03:52 ----D---- C:\Program Files (x86)\Common Files
2017-10-30 11:19:48 ----D---- C:\Windows\rescache
2017-10-27 09:03:05 ----D---- C:\Windows\system32\WDI
2017-10-27 09:02:44 ----D---- C:\Program Files\Common Files
2017-10-26 09:38:53 ----RSD---- C:\Windows\Fonts
2017-10-26 09:20:57 ----D---- C:\Windows\SYSWOW64\zu-ZA
2017-10-26 09:20:57 ----D---- C:\Windows\SYSWOW64\yo-NG
2017-10-26 09:20:57 ----D---- C:\Windows\SYSWOW64\xh-ZA
2017-10-26 09:20:57 ----D---- C:\Windows\SYSWOW64\wo-SN
2017-10-26 09:20:57 ----D---- C:\Windows\SYSWOW64\wbem
2017-10-26 09:20:57 ----D---- C:\Windows\SYSWOW64\vi-VN
2017-10-26 09:20:57 ----D---- C:\Windows\SYSWOW64\uz-Latn-UZ
2017-10-26 09:20:57 ----D---- C:\Windows\SYSWOW64\ur-PK
2017-10-26 09:20:57 ----D---- C:\Windows\SYSWOW64\ug-CN
2017-10-26 09:20:57 ----D---- C:\Windows\SYSWOW64\tt-RU
2017-10-26 09:20:57 ----D---- C:\Windows\SYSWOW64\tn-ZA
2017-10-26 09:20:57 ----D---- C:\Windows\SYSWOW64\tk-TM
2017-10-26 09:20:57 ----D---- C:\Windows\SYSWOW64\ti-ET
2017-10-26 09:20:57 ----D---- C:\Windows\SYSWOW64\tg-Cyrl-TJ
2017-10-26 09:20:57 ----D---- C:\Windows\SYSWOW64\te-IN
2017-10-26 09:20:57 ----D---- C:\Windows\SYSWOW64\ta-IN
2017-10-26 09:20:57 ----D---- C:\Windows\SYSWOW64\sw-KE
2017-10-26 09:20:57 ----D---- C:\Windows\SYSWOW64\sr-Cyrl-RS
2017-10-26 09:20:57 ----D---- C:\Windows\SYSWOW64\sr-Cyrl-BA
2017-10-26 09:20:57 ----D---- C:\Windows\SYSWOW64\sq-AL
2017-10-26 09:20:57 ----D---- C:\Windows\SYSWOW64\si-LK
2017-10-26 09:20:57 ----D---- C:\Windows\SYSWOW64\sd-Arab-PK
2017-10-26 09:20:57 ----D---- C:\Windows\SYSWOW64\rw-RW
2017-10-26 09:20:57 ----D---- C:\Windows\SYSWOW64\quz-PE
2017-10-26 09:20:57 ----D---- C:\Windows\SYSWOW64\quc-Latn-GT
2017-10-26 09:20:57 ----D---- C:\Windows\SYSWOW64\prs-AF
2017-10-26 09:20:57 ----D---- C:\Windows\SYSWOW64\pa-IN
2017-10-26 09:20:57 ----D---- C:\Windows\SYSWOW64\pa-Arab-PK
2017-10-26 09:20:57 ----D---- C:\Windows\SYSWOW64\or-IN
2017-10-26 09:20:57 ----D---- C:\Windows\SYSWOW64\nso-ZA
2017-10-26 09:20:57 ----D---- C:\Windows\SYSWOW64\nn-NO
2017-10-26 09:20:57 ----D---- C:\Windows\SYSWOW64\ne-NP
2017-10-26 09:20:57 ----D---- C:\Windows\SYSWOW64\mt-MT
2017-10-26 09:20:57 ----D---- C:\Windows\SYSWOW64\ms-MY
2017-10-26 09:20:57 ----D---- C:\Windows\SYSWOW64\mr-IN
2017-10-26 09:20:57 ----D---- C:\Windows\SYSWOW64\mn-MN
2017-10-26 09:20:57 ----D---- C:\Windows\SYSWOW64\ml-IN
2017-10-26 09:20:57 ----D---- C:\Windows\SYSWOW64\mk-MK
2017-10-26 09:20:57 ----D---- C:\Windows\SYSWOW64\mi-NZ
2017-10-26 09:20:57 ----D---- C:\Windows\SYSWOW64\lo-LA
2017-10-26 09:20:57 ----D---- C:\Windows\SYSWOW64\lb-LU
2017-10-26 09:20:57 ----D---- C:\Windows\SYSWOW64\ky-KG
2017-10-26 09:20:57 ----D---- C:\Windows\SYSWOW64\ku-Arab-IQ
2017-10-26 09:20:57 ----D---- C:\Windows\SYSWOW64\kok-IN
2017-10-26 09:20:57 ----D---- C:\Windows\SYSWOW64\kn-IN
2017-10-26 09:20:57 ----D---- C:\Windows\SYSWOW64\km-KH
2017-10-26 09:20:57 ----D---- C:\Windows\SYSWOW64\kk-KZ
2017-10-26 09:20:57 ----D---- C:\Windows\SYSWOW64\ka-GE
2017-10-26 09:20:57 ----D---- C:\Windows\SYSWOW64\is-IS
2017-10-26 09:20:57 ----D---- C:\Windows\SYSWOW64\ig-NG
2017-10-26 09:20:57 ----D---- C:\Windows\SYSWOW64\id-ID
2017-10-26 09:20:57 ----D---- C:\Windows\SYSWOW64\chr-CHER-US
2017-10-26 09:20:57 ----D---- C:\Windows\SYSWOW64\hy-AM
2017-10-26 09:20:57 ----D---- C:\Windows\SYSWOW64\ha-Latn-NG
2017-10-26 09:20:57 ----D---- C:\Windows\SYSWOW64\gu-IN
2017-10-26 09:20:57 ----D---- C:\Windows\SYSWOW64\gd-GB
2017-10-26 09:20:57 ----D---- C:\Windows\SYSWOW64\ga-IE
2017-10-26 09:20:57 ----D---- C:\Windows\SYSWOW64\fil-PH
2017-10-26 09:20:57 ----D---- C:\Windows\SYSWOW64\fa-IR
2017-10-26 09:20:57 ----D---- C:\Windows\SYSWOW64\cy-GB
2017-10-26 09:20:57 ----D---- C:\Windows\SYSWOW64\ca-ES-valencia
2017-10-26 09:20:57 ----D---- C:\Windows\SYSWOW64\bs-Latn-BA
2017-10-26 09:20:57 ----D---- C:\Windows\SYSWOW64\bn-IN
2017-10-26 09:20:57 ----D---- C:\Windows\SYSWOW64\bn-BD
2017-10-26 09:20:57 ----D---- C:\Windows\SYSWOW64\be-BY
2017-10-26 09:20:57 ----D---- C:\Windows\SYSWOW64\az-Latn-AZ
2017-10-26 09:20:57 ----D---- C:\Windows\SYSWOW64\as-IN
2017-10-26 09:20:57 ----D---- C:\Windows\SYSWOW64\am-ET
2017-10-26 09:20:57 ----D---- C:\Windows\SYSWOW64\af-ZA
2017-10-26 09:20:57 ----D---- C:\Windows\system32\zu-ZA
2017-10-26 09:20:57 ----D---- C:\Windows\system32\yo-NG
2017-10-26 09:20:57 ----D---- C:\Windows\system32\xh-ZA
2017-10-26 09:20:57 ----D---- C:\Windows\system32\wo-SN
2017-10-26 09:20:57 ----D---- C:\Windows\system32\wbem
2017-10-26 09:20:57 ----D---- C:\Windows\system32\vi-VN
2017-10-26 09:20:57 ----D---- C:\Windows\system32\uz-Latn-UZ
2017-10-26 09:20:57 ----D---- C:\Windows\system32\ur-PK
2017-10-26 09:20:57 ----D---- C:\Windows\system32\ug-CN
2017-10-26 09:20:57 ----D---- C:\Windows\system32\tt-RU
2017-10-26 09:20:57 ----D---- C:\Windows\system32\tn-ZA
2017-10-26 09:20:57 ----D---- C:\Windows\system32\tk-TM
2017-10-26 09:20:57 ----D---- C:\Windows\system32\ti-ET
2017-10-26 09:20:57 ----D---- C:\Windows\system32\tg-Cyrl-TJ
2017-10-26 09:20:57 ----D---- C:\Windows\system32\te-IN
2017-10-26 09:20:57 ----D---- C:\Windows\system32\ta-IN
2017-10-26 09:20:57 ----D---- C:\Windows\system32\sw-KE
2017-10-26 09:20:57 ----D---- C:\Windows\system32\sr-Cyrl-RS
2017-10-26 09:20:57 ----D---- C:\Windows\system32\sr-Cyrl-BA
2017-10-26 09:20:57 ----D---- C:\Windows\system32\sq-AL
2017-10-26 09:20:57 ----D---- C:\Windows\system32\si-LK
2017-10-26 09:20:57 ----D---- C:\Windows\system32\sd-Arab-PK
2017-10-26 09:20:57 ----D---- C:\Windows\system32\rw-RW
2017-10-26 09:20:57 ----D---- C:\Windows\system32\quz-PE
2017-10-26 09:20:57 ----D---- C:\Windows\system32\quc-Latn-GT
2017-10-26 09:20:57 ----D---- C:\Windows\system32\prs-AF
2017-10-26 09:20:57 ----D---- C:\Windows\system32\pa-IN
2017-10-26 09:20:57 ----D---- C:\Windows\system32\pa-Arab-PK
2017-10-26 09:20:57 ----D---- C:\Windows\system32\or-IN
2017-10-26 09:20:57 ----D---- C:\Windows\system32\nso-ZA
2017-10-26 09:20:57 ----D---- C:\Windows\system32\nn-NO
2017-10-26 09:20:57 ----D---- C:\Windows\system32\ne-NP
2017-10-26 09:20:57 ----D---- C:\Windows\system32\mt-MT
2017-10-26 09:20:57 ----D---- C:\Windows\system32\ms-MY
2017-10-26 09:20:57 ----D---- C:\Windows\system32\mr-IN
2017-10-26 09:20:57 ----D---- C:\Windows\system32\mn-MN
2017-10-26 09:20:57 ----D---- C:\Windows\system32\ml-IN
2017-10-26 09:20:57 ----D---- C:\Windows\system32\mk-MK
2017-10-26 09:20:57 ----D---- C:\Windows\system32\mi-NZ
2017-10-26 09:20:57 ----D---- C:\Windows\system32\lo-LA
2017-10-26 09:20:57 ----D---- C:\Windows\system32\lb-LU
2017-10-26 09:20:57 ----D---- C:\Windows\system32\ky-KG
2017-10-26 09:20:57 ----D---- C:\Windows\system32\ku-Arab-IQ
2017-10-26 09:20:57 ----D---- C:\Windows\system32\kok-IN
2017-10-26 09:20:57 ----D---- C:\Windows\system32\kn-IN
2017-10-26 09:20:57 ----D---- C:\Windows\system32\km-KH
2017-10-26 09:20:57 ----D---- C:\Windows\system32\kk-KZ
2017-10-26 09:20:57 ----D---- C:\Windows\system32\ka-GE
2017-10-26 09:20:57 ----D---- C:\Windows\system32\is-IS
2017-10-26 09:20:57 ----D---- C:\Windows\system32\ig-NG
2017-10-26 09:20:57 ----D---- C:\Windows\system32\id-ID
2017-10-26 09:20:57 ----D---- C:\Windows\system32\chr-CHER-US
2017-10-26 09:20:57 ----D---- C:\Windows\system32\hy-AM
2017-10-26 09:20:57 ----D---- C:\Windows\system32\ha-Latn-NG
2017-10-26 09:20:57 ----D---- C:\Windows\system32\gu-IN
2017-10-26 09:20:57 ----D---- C:\Windows\system32\gd-GB
2017-10-26 09:20:57 ----D---- C:\Windows\system32\ga-IE
2017-10-26 09:20:57 ----D---- C:\Windows\system32\fil-PH
2017-10-26 09:20:57 ----D---- C:\Windows\system32\fa-IR
2017-10-26 09:20:57 ----D---- C:\Windows\system32\cy-GB
2017-10-26 09:20:57 ----D---- C:\Windows\system32\ca-ES-valencia
2017-10-26 09:20:57 ----D---- C:\Windows\system32\bs-Latn-BA
2017-10-26 09:20:57 ----D---- C:\Windows\system32\bn-IN
2017-10-26 09:20:57 ----D---- C:\Windows\system32\bn-BD
2017-10-26 09:20:57 ----D---- C:\Windows\system32\be-BY
2017-10-26 09:20:57 ----D---- C:\Windows\system32\az-Latn-AZ
2017-10-26 09:20:57 ----D---- C:\Windows\system32\as-IN
2017-10-26 09:20:57 ----D---- C:\Windows\system32\appraiser
2017-10-26 09:20:57 ----D---- C:\Windows\system32\am-ET
2017-10-26 09:20:57 ----D---- C:\Windows\system32\af-ZA
2017-10-26 09:20:56 ----D---- C:\Windows\apppatch
2017-10-26 08:46:26 ----D---- C:\Windows\CbsTemp
2017-10-26 08:44:31 ----D---- C:\Windows\debug
2017-10-26 06:55:12 ----D---- C:\Windows\appcompat
2017-10-25 15:13:58 ----SHD---- C:\$Recycle.Bin
2017-10-25 15:13:34 ----D---- C:\Windows\system32\CatRoot
2017-10-25 15:10:24 ----D---- C:\Windows\Tasks
2017-10-25 14:49:28 ----D---- C:\Windows\twain_32
2017-10-25 14:21:03 ----D---- C:\Program Files\Common Files\microsoft shared
2017-10-25 14:07:31 ----D---- C:\Windows\system32\setup
2017-10-25 13:56:55 ----D---- C:\Windows\SYSWOW64\config
2017-10-25 13:56:42 ----HD---- C:\Windows\ELAMBKUP
2017-10-25 13:55:14 ----D---- C:\Windows\Help
2017-10-25 13:53:20 ----RD---- C:\Users
2017-10-25 13:45:56 ----D---- C:\Windows\System
2017-10-25 13:42:30 ----D---- C:\Windows\system32\CodeIntegrity
2017-10-25 13:35:24 ----D---- C:\Windows\system32\WinBioDatabase
2017-10-25 13:35:23 ----D---- C:\ProgramData\USOPrivate
2017-10-25 13:31:52 ----D---- C:\Windows\system32\spool
2017-10-25 13:31:52 ----D---- C:\Windows\system32\FxsTmp
2017-10-25 13:31:39 ----D---- C:\Program Files\windows nt
2017-10-25 13:30:06 ----D---- C:\Windows\system32\Recovery
2017-10-25 13:30:04 ----D---- C:\Windows\system32\Sysprep
2017-10-25 13:29:21 ----RD---- C:\Windows\PrintDialog
2017-10-25 13:29:21 ----RD---- C:\Windows\ImmersiveControlPanel
2017-10-25 13:29:13 ----D---- C:\Windows\system32\drivers\UMDF
2017-10-13 19:08:08 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 cm_km;AO Kaspersky Lab Cryptographic Module x64 (56 bit); C:\Windows\system32\DRIVERS\cm_km.sys [2016-12-26 247008]
R0 iorate;@%SystemRoot%\system32\drivers\iorate.sys,-101; C:\Windows\system32\drivers\iorate.sys [2017-09-29 56728]
R0 kl1;kl1; C:\Windows\system32\DRIVERS\kl1.sys [2016-10-01 554408]
R0 klbackupdisk;Kaspersky Lab klbackupdisk; C:\Windows\system32\DRIVERS\klbackupdisk.sys [2017-10-15 70872]
R0 klupd_klif_arkmon;klupd_klif_arkmon; C:\Windows\System32\Drivers\klupd_klif_arkmon.sys [2017-10-25 229288]
R0 klupd_klif_klbg;klupd_klif_klbg; C:\Windows\System32\Drivers\klupd_klif_klbg.sys [2017-10-25 112912]
R0 nvpciflt;nvpciflt; C:\Windows\system32\DRIVERS\nvpciflt.sys [2017-01-17 48696]
R1 bam;@%SystemRoot%\system32\drivers\bam.sys,-100; C:\Windows\system32\drivers\bam.sys [2017-09-29 60312]
R1 FileCrypt;@%systemroot%\system32\drivers\filecrypt.sys,-100; C:\Windows\system32\drivers\filecrypt.sys [2017-09-29 55808]
R1 GpuEnergyDrv;@%SystemRoot%\system32\drivers\gpuenergydrv.sys,-100; C:\Windows\System32\drivers\gpuenergydrv.sys [2017-09-29 8192]
R1 klbackupflt;Kaspersky Lab klbackupflt; C:\Windows\system32\DRIVERS\klbackupflt.sys [2017-10-15 89952]
R1 klhk;@oem16.inf,%klhkDisplayName%;Kaspersky Lab service driver; C:\Windows\System32\drivers\klhk.sys [2017-10-25 594144]
R1 KLIF;Kaspersky Lab Driver; C:\Windows\system32\DRIVERS\klif.sys [2017-10-25 1055448]
R1 KLIM6;@oem17.inf,%KLIM6_Desc%;Kaspersky Anti-Virus NDIS 6 Filter; C:\Windows\system32\DRIVERS\klim6.sys [2016-10-12 57424]
R1 klpd;Kaspersky Lab format recognizer driver; C:\Windows\system32\DRIVERS\klpd.sys [2017-10-15 50672]
R1 Klwtp;KLwtp - WFP callout traffic inspector; C:\Windows\system32\DRIVERS\klwtp.sys [2017-10-15 136176]
R1 kneps;kneps; C:\Windows\system32\DRIVERS\kneps.sys [2017-10-15 199360]
R2 aksdf;aksdf; \??\C:\Windows\system32\drivers\aksdf.sys [2015-09-24 109200]
R2 aksfridge;@oem20.inf,%AksFridgeServiceDisp%;Sentinel Fridge; C:\Windows\system32\DRIVERS\aksfridge.sys [2015-09-24 205528]
R2 CldFlt;Windows Cloud Files Filter Driver; C:\Windows\system32\drivers\cldflt.sys [2017-09-29 384000]
R2 hardlock;hardlock; \??\C:\Windows\system32\drivers\hardlock.sys [2015-09-24 350552]
R2 kldisk;kldisk; C:\Windows\system32\DRIVERS\kldisk.sys [2016-05-31 78216]
R2 MMCSS;@%systemroot%\system32\drivers\mmcss.sys,-100; C:\Windows\system32\drivers\mmcss.sys [2017-09-29 43520]
R2 storqosflt;@%SystemRoot%\System32\drivers\storqosflt.sys,-101; C:\Windows\system32\drivers\storqosflt.sys [2017-09-29 79872]
R3 ACPIVPC;@oem15.inf,%ACPIVPC.SvcDesc%;Lenovo Virtual Power Controller Driver; C:\Windows\System32\drivers\AcpiVpc.sys [2017-07-23 45040]
R3 BCM43XX;@netbc64.inf,%BCM43XX_Service_DispName%;Broadcom 802.11 – ovladač síťového adaptéru; C:\Windows\system32\DRIVERS\bcmwl63a.sys [2017-09-29 7585280]
R3 CAD;@ChargeArbitration.inf,%CAD_DevDesc%;Charge Arbitration Driver; C:\Windows\System32\drivers\CAD.sys [2017-09-29 60312]
R3 CnxtHdAudService;@oem2.inf,%UAAFunctionDriverForHdAudio.SvcDesc%;Conexant UAA Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\CHDRT64.sys [2015-08-05 1317096]
R3 ETD;@oem8.inf,%PS2.DeviceDesc%;ELAN Input Device; C:\Windows\system32\DRIVERS\ETD.sys [2015-10-07 525512]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys [2016-05-03 3811288]
R3 IntcDAud;@oem7.inf,%IntcDAud.SvcDesc%;Intel(R) Display Audio; C:\Windows\system32\DRIVERS\IntcDAud.sys [2015-08-21 463112]
R3 iwdbus;@oem5.inf,%iwdbus.SVCDESC%;IWD Bus Enumerator; C:\Windows\System32\drivers\iwdbus.sys [2015-12-01 38896]
R3 klflt;Kaspersky Lab Kernel DLL; C:\Windows\system32\DRIVERS\klflt.sys [2017-10-25 207576]
R3 klkbdflt;Kaspersky Lab KLKBDFLT; C:\Windows\system32\DRIVERS\klkbdflt.sys [2016-12-23 57056]
R3 klmouflt;Kaspersky Lab KLMOUFLT; C:\Windows\system32\DRIVERS\klmouflt.sys [2016-12-07 58592]
R3 kltap;@oem18.inf,%DeviceDescription%;Kaspersky Security Data Escort Adapter; C:\Windows\System32\drivers\kltap.sys [2016-06-07 52152]
R3 klupd_klif_kimul;klupd_klif_kimul; C:\Windows\System32\Drivers\klupd_klif_kimul.sys [2017-10-30 87584]
R3 klupd_klif_klark;klupd_klif_klark; C:\Windows\System32\Drivers\klupd_klif_klark.sys [2017-10-25 251656]
R3 klupd_klif_mark;klupd_klif_mark; C:\Windows\System32\Drivers\klupd_klif_mark.sys [2017-10-25 173144]
R3 L1C;@netl1c63x64.inf,%L1C.Service.DispName%;NDIS Miniport Driver for Qualcomm Atheros AR81xx PCI-E Ethernet Controller; C:\Windows\System32\drivers\L1C63x64.sys [2017-09-29 121344]
R3 MEIx64;@oem11.inf,%TEE_SvcDesc%;Intel(R) Management Engine Interface ; C:\Windows\System32\drivers\TeeDriverW8x64.sys [2016-02-10 194624]
R3 nvlddmkm;nvlddmkm; C:\Windows\System32\DriverStore\FileRepository\nvltwu.inf_amd64_0221ce4ec0827f74\nvlddmkm.sys [2017-01-17 14190520]
R3 RTSUER;@oem9.inf,%RtsUER%;Realtek USB Card Reader - UER; C:\Windows\system32\Drivers\RtsUer.sys [2016-03-09 422656]
R3 SNTUSB64;@oem22.inf,%SNTUSB64.SvcDesc%;SafeNet USB SuperPro/UltraPro/HardwareKey; C:\Windows\System32\drivers\SNTUSB64.SYS [2012-12-11 63568]
S0 bttflt;@virtdisk.inf,%service_desc%;Microsoft Hyper-V VHDPMEM BTT Filter; C:\Windows\System32\drivers\bttflt.sys [2017-09-29 37784]
S0 cht4iscsi;cht4iscsi; C:\Windows\System32\drivers\cht4sx64.sys [2017-09-29 357272]
S0 klelam;klelam; C:\Windows\system32\DRIVERS\klelam.sys [2016-10-14 29816]
S0 LSI_SAS2i;LSI_SAS2i; C:\Windows\System32\drivers\lsi_sas2i.sys [2017-09-29 123800]
S0 LSI_SAS3i;LSI_SAS3i; C:\Windows\System32\drivers\lsi_sas3i.sys [2017-09-29 103320]
S0 megasas2i;megasas2i; C:\Windows\System32\drivers\MegaSas2i.sys [2017-09-29 63520]
S0 percsas2i;percsas2i; C:\Windows\System32\drivers\percsas2i.sys [2017-09-29 58776]
S0 percsas3i;percsas3i; C:\Windows\System32\drivers\percsas3i.sys [2017-09-29 61848]
S0 Ramdisk;Windows RAM Disk Driver; C:\Windows\system32\DRIVERS\ramdisk.sys [2017-09-29 39832]
S0 scmbus;@scmbus.inf,%scmbus.SvcDesc%;Microsoft Storage Class Memory Bus Driver; C:\Windows\System32\drivers\scmbus.sys [2017-09-29 118168]
S0 storufs;@storufs.inf,%UfsServiceDesc%;Microsoft Universal Flash Storage (UFS) Driver; C:\Windows\System32\drivers\storufs.sys [2017-10-10 45976]
S3 AcpiDev;@acpidev.inf,%AcpiDev.SvcDesc%;ACPI Devices driver; C:\Windows\System32\drivers\AcpiDev.sys [2017-09-29 20480]
S3 akshasp;@oem19.inf,%svcdesc%;SafeNet Inc. HASP Key; C:\Windows\system32\DRIVERS\akshasp.sys [2015-09-24 77912]
S3 akshhl;@oem20.inf,%svcdesc%;SafeNet Inc. Sentinel HL Key; C:\Windows\system32\DRIVERS\akshhl.sys [2015-09-24 81368]
S3 aksusb;@oem21.inf,%svcdesc%;SafeNet Inc. USB Key; C:\Windows\system32\DRIVERS\aksusb.sys [2015-09-24 322560]
S3 applockerfltr;@%systemroot%\system32\srpapi.dll,-102; C:\Windows\system32\drivers\applockerfltr.sys [2017-09-29 18432]
S3 buttonconverter;@buttonconverter.inf,%btnconv.SvcDesc%;Service for Portable Device Control devices; C:\Windows\System32\drivers\buttonconverter.sys [2017-09-29 39424]
S3 CapImg;@capimg.inf,%CapImgHid_Service%;HID driver for CapImg touch screen; C:\Windows\System32\drivers\capimg.sys [2017-09-29 122368]
S3 genericusbfn;@genericusbfn.inf,%genericusbfn.ServiceName%;Generic USB Function Class; C:\Windows\System32\drivers\genericusbfn.sys [2017-09-29 20992]
S3 hidinterrupt;@hidinterrupt.inf,%HID_Interrupt.SvcDesc%;Common Driver for HID Buttons implemented with interrupts; C:\Windows\System32\drivers\hidinterrupt.sys [2017-09-29 50584]
S3 hvservice;@%SystemRoot%\system32\drivers\hvservice.sys,-16; C:\Windows\system32\drivers\hvservice.sys [2017-09-29 73112]
S3 HwNClx0101;Microsoft Hardware Notifications Class Extension Driver; C:\Windows\System32\Drivers\mshwnclx.sys [2017-09-29 27136]
S3 cht4vbd;@cht4vx64.inf,%cht4vbd.generic%;Chelsio Virtual Bus Driver; C:\Windows\System32\drivers\cht4vx64.sys [2017-09-29 1723288]
S3 iagpio;@iagpio.inf,%iagpio.SVCDESC%;Intel Serial IO GPIO Controller Driver; C:\Windows\System32\drivers\iagpio.sys [2017-09-29 36864]
S3 iai2c;@iai2c.inf,%iai2c.SVCDESC%;Intel(R) Serial IO I2C Host Controller; C:\Windows\System32\drivers\iai2c.sys [2017-09-29 91648]
S3 iaLPSS2i_GPIO2;@iaLPSS2i_GPIO2_SKL.inf,%iaLPSS2i_GPIO2.SVCDESC%;Intel(R) Serial IO GPIO Driver v2; C:\Windows\System32\drivers\iaLPSS2i_GPIO2.sys [2017-09-29 79360]
S3 iaLPSS2i_GPIO2_BXT_P;@iaLPSS2i_GPIO2_BXT_P.inf,%iaLPSS2i_GPIO2_BXT_P.SVCDESC%;Intel(R) Serial IO GPIO Driver v2; C:\Windows\System32\drivers\iaLPSS2i_GPIO2_BXT_P.sys [2017-09-29 88576]
S3 iaLPSS2i_I2C;@iaLPSS2i_I2C_SKL.inf,%iaLPSS2i_I2C.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\Windows\System32\drivers\iaLPSS2i_I2C.sys [2017-09-29 171520]
S3 iaLPSS2i_I2C_BXT_P;@iaLPSS2i_I2C_BXT_P.inf,%iaLPSS2i_I2C_BXT_P.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\Windows\System32\drivers\iaLPSS2i_I2C_BXT_P.sys [2017-09-29 174592]
S3 ibbus;@mlx4_bus.inf,%Ibbus.ServiceDesc%;Mellanox InfiniBand Bus/AL (Filter Driver); C:\Windows\System32\drivers\ibbus.sys [2017-09-29 526232]
S3 IndirectKmd;@%SystemRoot%\system32\drivers\IndirectKmd.sys,-100; C:\Windows\System32\drivers\IndirectKmd.sys [2017-09-29 39424]
S3 intaud_WaveExtensible;@oem4.inf,%INTAUD_WEX.SvcDesc%;Intel WiDi Audio Device; C:\Windows\system32\drivers\intelaud.sys [2015-12-01 50160]
S3 invdimm;@invdimm.inf,%invdimm.SvcDesc%;Microsoft iNVDIMM device driver; C:\Windows\System32\drivers\invdimm.sys [2017-09-29 38912]
S3 IPT;IPT; C:\Windows\System32\drivers\ipt.sys [2017-09-29 26112]
S3 irda;IrDA; C:\Windows\system32\drivers\irda.sys [2017-09-29 119808]
S3 klpnpflt;Kaspersky Lab klpnpflt; C:\Windows\system32\DRIVERS\klpnpflt.sys [2017-01-20 44768]
S3 mausbhost;@mausbhost.inf,%MAUSBHost.ServiceName%;MA-USB Host Controller Driver; C:\Windows\System32\drivers\mausbhost.sys [2017-09-29 505240]
S3 mausbip;@mausbhost.inf,%MAUSBIP.ServiceName%;MA-USB IP Filter Driver; C:\Windows\System32\drivers\mausbip.sys [2017-09-29 55840]
S3 mlx4_bus;@mlx4_bus.inf,%MLX4BUS.ServiceDesc%;Mellanox ConnectX Bus Enumerator; C:\Windows\System32\drivers\mlx4_bus.sys [2017-09-29 842648]
S3 ndfltr;@mlx4_bus.inf,%ndfltr.ServiceDesc%;NetworkDirect Service; C:\Windows\System32\drivers\ndfltr.sys [2017-09-29 108952]
S3 NetAdapterCx;Network Adapter Wdf Class Extension Library; C:\Windows\system32\drivers\NetAdapterCx.sys [2017-09-29 132608]
S3 nvdimmn;@nvdimmn.inf,%nvdimmn.SvcDesc%;Microsoft NVDIMM-N device driver; C:\Windows\System32\drivers\nvdimmn.sys [2017-09-29 88576]
S3 pmem;@pmem.inf,%pmem.SvcDesc%;Microsoft persistent memory disk driver; C:\Windows\System32\drivers\pmem.sys [2017-09-29 100352]
S3 PNPMEM;@memory.inf,%PNPMEM.SvcDesc%;Microsoft Memory Module Driver; C:\Windows\System32\drivers\pnpmem.sys [2017-09-29 16896]
S3 ReFSv1;ReFSv1; C:\Windows\system32\drivers\ReFSv1.sys [2017-09-29 936856]
S3 rhproxy;@rhproxy.inf,%rhproxy.SVCDESC%;Resource Hub proxy driver; C:\Windows\System32\drivers\rhproxy.sys [2017-09-29 103936]
S3 SDFRd;@SDFRd.inf,%SDFRd.ServiceDesc%;SDF Reflector; C:\Windows\System32\drivers\SDFRd.sys [2017-09-29 33176]
S3 SpatialGraphFilter;Holographic Spatial Graph Filter; C:\Windows\System32\drivers\SpatialGraphFilter.sys [2017-09-30 56216]
S3 StillCam;@sti.inf,%StillCam.SvcDesc%;Ovladač digitálního fotoaparátu pro sériový port; C:\Windows\system32\DRIVERS\serscan.sys [2017-09-29 13312]
S4 klwfp;klwfp; C:\Windows\system32\DRIVERS\klwfp.sys [2016-12-20 93920]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2017-03-28 82640]
R2 AVP18.0.0;Služba Kaspersky Anti-Virus 18.0.0; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 18.0.0\avp.exe [2017-01-24 354672]
R2 CDPSvc;@%SystemRoot%\system32\cdpsvc.dll,-100; C:\Windows\system32\svchost.exe [2017-09-29 48688]
R2 CDPUserSvc_8190c1d;Uživatelská služba platformy připojených zařízení_8190c1d; C:\Windows\system32\svchost.exe [2017-09-29 48688]
R2 CodeMeter.exe;CodeMeter Runtime Server; C:\Program Files (x86)\CodeMeter\Runtime\bin\CodeMeter.exe [2017-02-21 4817896]
R2 CoreMessagingRegistrar;@%SystemRoot%\system32\coremessaging.dll,-1; C:\Windows\system32\svchost.exe [2017-09-29 48688]
R2 CxAudMsg;@C:\Windows\system32\CxAudMsg64.exe,-100; C:\Windows\system32\CxAudMsg64.exe [2013-07-25 206552]
R2 DiagTrack;@%SystemRoot%\system32\diagtrack.dll,-3001; C:\Windows\System32\svchost.exe [2017-09-29 48688]
R2 DraftSight API Service;DraftSight API Service; C:\Program Files\Dassault Systemes\DraftSight\bin\dsHttpApiService.exe [2017-02-21 121344]
R2 DusmSvc;@%SystemRoot%\System32\dusmsvc.dll,-1; C:\Windows\System32\svchost.exe [2017-09-29 48688]
R2 ETDService;Elan Service; C:\Program Files\Elantech\ETDService.exe [2015-10-07 144072]
R2 FileOpenManager;FileOpenManager; C:\Program Files\FileOpen\Services\FileOpenManager64.exe [2017-03-21 385016]
R2 hasplms;@oem20.inf,%llmdisp%;Sentinel LDK License Manager; C:\Windows\system32\hasplms.exe [2015-09-24 4665168]
R2 igfxCUIService1.0.0.0;Intel(R) HD Graphics Control Panel Service; C:\Windows\system32\igfxCUIService.exe [2016-05-03 337888]
R2 IJPLMSVC;Canon Inkjet Printer/Scanner/Fax Extended Survey Program; C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE [2013-06-28 84616]
R2 KSDE2.0.0;Služba Kaspersky Secure Connection 2.0.0; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Secure Connection 2.0\ksde.exe [2017-01-24 354672]
R2 NVDisplay.ContainerLocalSystem;NVIDIA Display Container LS; C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe [2016-12-29 458176]
R2 OneSyncSvc_8190c1d;Hostitel synchronizace_8190c1d; C:\Windows\system32\svchost.exe [2017-09-29 48688]
R2 PDF24;PDF24; C:\Program Files (x86)\PDF24\pdf24.exe [2017-09-14 413320]
R2 SAService;Conexant SmartAudio service; C:\Windows\system32\SAsrv.exe []
R2 SecurityHealthService;@%systemroot%\system32\SecurityHealthAgent.dll,-1002; C:\Windows\system32\SecurityHealthService.exe [2017-09-29 518640]
R3 DsSvc;@%SystemRoot%\system32\dssvc.dll,-10003; C:\Windows\System32\svchost.exe [2017-09-29 48688]
R3 LicenseManager;@%SystemRoot%\system32\licensemanagersvc.dll,-200; C:\Windows\System32\svchost.exe [2017-09-29 48688]
R3 PimIndexMaintenanceSvc_8190c1d;Data kontaktů_8190c1d; C:\Windows\system32\svchost.exe [2017-09-29 48688]
R3 RmSvc;@%SystemRoot%\system32\RMapi.dll,-1001; C:\Windows\System32\svchost.exe [2017-09-29 48688]
R3 SensorService;@%SystemRoot%\System32\sensorservice.dll,-1000; C:\Windows\system32\svchost.exe [2017-09-29 48688]
R3 StateRepository;@%SystemRoot%\system32\windows.staterepository.dll,-1; C:\Windows\system32\svchost.exe [2017-09-29 48688]
S2 CDPUserSvc;@%SystemRoot%\system32\cdpusersvc.dll,-100; C:\Windows\system32\svchost.exe [2017-09-29 48688]
S2 DoSvc;@%systemroot%\system32\dosvc.dll,-100; C:\Windows\System32\svchost.exe [2017-09-29 48688]
S2 gupdate;Služba Aktualizace Google (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2017-11-03 153168]
S2 MapsBroker;@%SystemRoot%\System32\moshost.dll,-100; C:\Windows\System32\svchost.exe [2017-09-29 48688]
S2 OneSyncSvc;@%SystemRoot%\system32\APHostRes.dll,-10002; C:\Windows\system32\svchost.exe [2017-09-29 48688]
S2 ssinstall;SInstalátor; C:\Windows\SysWOW64\ssins.exe [2017-10-25 4058496]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2017-10-25 269504]
S3 AJRouter;@%SystemRoot%\system32\AJRouter.dll,-2; C:\Windows\system32\svchost.exe [2017-09-29 48688]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\Windows\System32\svchost.exe [2017-09-29 48688]
S3 camsvc;@%SystemRoot%\system32\CapabilityAccessManager.dll,-1; C:\Windows\system32\svchost.exe [2017-09-29 48688]
S3 ClipSVC;@%SystemRoot%\system32\ClipSVC.dll,-103; C:\Windows\System32\svchost.exe [2017-09-29 48688]
S3 cphs;Intel(R) Content Protection HECI Service; C:\Windows\SysWow64\IntelCpHeciSvc.exe [2016-05-03 299488]
S3 DevicesFlowUserSvc;@%SystemRoot%\system32\DevicesFlowBroker.dll,-103; C:\Windows\system32\svchost.exe [2017-09-29 48688]
S3 DevicesFlowUserSvc_8190c1d;Tok zařízení_8190c1d; C:\Windows\system32\svchost.exe [2017-09-29 48688]
S3 DevQueryBroker;@%SystemRoot%\system32\DevQueryBroker.dll,-100; C:\Windows\system32\svchost.exe [2017-09-29 48688]
S3 diagnosticshub.standardcollector.service;@%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000; C:\Windows\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe [2017-09-29 85504]
S3 diagsvc;@%systemroot%\system32\DiagSvc.dll,-100; C:\Windows\System32\svchost.exe [2017-09-29 48688]
S3 DmEnrollmentSvc;@%systemroot%\system32\Windows.Internal.Management.dll,-100; C:\Windows\system32\svchost.exe [2017-09-29 48688]
S3 dmwappushservice;@%SystemRoot%\system32\dmwappushsvc.dll,-200; C:\Windows\system32\svchost.exe [2017-09-29 48688]
S3 embeddedmode;@%SystemRoot%\system32\embeddedmodesvc.dll,-201; C:\Windows\System32\svchost.exe [2017-09-29 48688]
S3 EntAppSvc;@EnterpriseAppMgmtSvc.dll,-1; C:\Windows\system32\svchost.exe [2017-09-29 48688]
S3 FlexNet Licensing Service 64;FlexNet Licensing Service 64; C:\Program Files\Common Files\Macrovision Shared\FlexNet Publisher\FNPLicensingService64.exe [2017-10-27 1595400]
S3 FrameServer;@%systemroot%\system32\FrameServer.dll,-100; C:\Windows\System32\svchost.exe [2017-09-29 48688]
S3 GraphicsPerfSvc;@%SystemRoot%\system32\GraphicsPerfSvc.dll,-100; C:\Windows\System32\svchost.exe [2017-09-29 48688]
S3 gupdatem;Služba Aktualizace Google (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2017-11-03 153168]
S3 HvHost;@%SystemRoot%\system32\hvhostsvc.dll,-100; C:\Windows\system32\svchost.exe [2017-09-29 48688]
S3 icssvc;@%SystemRoot%\System32\tetheringservice.dll,-4097; C:\Windows\system32\svchost.exe [2017-09-29 48688]
S3 InstallService;@%SystemRoot%\system32\InstallService.dll,-200; C:\Windows\System32\svchost.exe [2017-09-29 48688]
S3 IpxlatCfgSvc;@%Systemroot%\system32\ipxlatcfg.dll,-500; C:\Windows\System32\svchost.exe [2017-09-29 48688]
S3 irmon;@%SystemRoot%\System32\irmon.dll,-2000; C:\Windows\system32\svchost.exe [2017-09-29 48688]
S3 klvssbridge64_18.0.0;klvssbridge64_18.0.0; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 18.0.0\x64\vssbridge64.exe [2017-10-25 426416]
S3 MessagingService;@%SystemRoot%\system32\MessagingService.dll,-100; C:\Windows\system32\svchost.exe [2017-09-29 48688]
S3 MessagingService_8190c1d;Služba zasílání zpráv_8190c1d; C:\Windows\system32\svchost.exe [2017-09-29 48688]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2017-10-27 194000]
S3 NaturalAuthentication;@%systemroot%\system32\NaturalAuth.dll,-100; C:\Windows\system32\svchost.exe [2017-09-29 48688]
S3 NetSetupSvc;@%SystemRoot%\system32\NetSetupSvc.dll,-3; C:\Windows\System32\svchost.exe [2017-09-29 48688]
S3 NgcCtnrSvc;@%SystemRoot%\System32\NgcCtnrSvc.dll,-1; C:\Windows\system32\svchost.exe [2017-09-29 48688]
S3 NgcSvc;@%SystemRoot%\System32\ngcsvc.dll,-100; C:\Windows\system32\svchost.exe [2017-09-29 48688]
S3 PhoneSvc;@%SystemRoot%\system32\PhoneserviceRes.dll,-10000; C:\Windows\system32\svchost.exe [2017-09-29 48688]
S3 PimIndexMaintenanceSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-15001; C:\Windows\system32\svchost.exe [2017-09-29 48688]
S3 PrintWorkflowUserSvc;@%SystemRoot%\system32\PrintWorkflowService.dll,-100; C:\Windows\system32\svchost.exe [2017-09-29 48688]
S3 PrintWorkflowUserSvc_8190c1d;PrintWorkflow_8190c1d; C:\Windows\system32\svchost.exe [2017-09-29 48688]
S3 PushToInstall;@%SystemRoot%\system32\pushtoinstall.dll,-200; C:\Windows\System32\svchost.exe [2017-09-29 48688]
S3 RetailDemo;@%SystemRoot%\System32\RDXService.dll,-256; C:\Windows\System32\svchost.exe [2017-09-29 48688]
S3 SEMgrSvc;@%SystemRoot%\System32\SEMgrSvc.dll,-1001; C:\Windows\system32\svchost.exe [2017-09-29 48688]
S3 SensorDataService;@%SystemRoot%\system32\SensorDataService.exe,-101; C:\Windows\System32\SensorDataService.exe [2017-09-29 1288704]
S3 SharedRealitySvc;@%SystemRoot%\system32\SharedRealitySvc.dll,-100; C:\Windows\system32\svchost.exe [2017-09-29 48688]
S3 SmsRouter;@%SystemRoot%\System32\SmsRouterSvc.dll,-10001; C:\Windows\system32\svchost.exe [2017-09-29 48688]
S3 spectrum;@%systemroot%\system32\spectrum.exe,-101; C:\Windows\system32\spectrum.exe [2017-09-29 956416]
S4 shpamsvc;@%SystemRoot%\System32\Windows.SharedPC.AccountManager.dll,-100; C:\Windows\System32\svchost.exe [2017-09-29 48688]

-----------------EOF-----------------

Uživatelský avatar
Roli
VIP
VIP
Příspěvky: 13400
Registrován: 26 lis 2006 13:37
Bydliště: ČR

Re: Prosím o kontrolu

#2 Příspěvek od Roli »

Zdravím, nic špatného tam nevidím je tedy nějaký problém s PC ?
| Rsit | Mbam | AVPTool | Cure It |

O víkendu odpočívám :all_coholic:

kosprojekt
Návštěvník
Návštěvník
Příspěvky: 5
Registrován: 07 lis 2017 10:13

Re: Prosím o kontrolu

#3 Příspěvek od kosprojekt »

Dobrý den. No nic dramatického, ale nějak se mi to zadrhávalo a zpoždovala se odezva u činností, které provádím běžně. Zkoušel jsem zálohu na Onedrive, tak možná to bylo tím. Teď se to jeví dobře. Děkuji

Uživatelský avatar
Roli
VIP
VIP
Příspěvky: 13400
Registrován: 26 lis 2006 13:37
Bydliště: ČR

Re: Prosím o kontrolu

#4 Příspěvek od Roli »

Můžeme mu trochu odlehčit.


Stiskni klávesy Windows + R do okna Spustit >> napiš - services.msc >> Enter. Najdi službu :

Služba Aktualizace Google (gupdate)
Služba Aktualizace Google (gupdatem)
Mozilla Maintenance Service


dvojklikem se otevře karta kde nejprve službu zastav tlačítkem Zastavit u položky Typ spouštění vyber Zakázáno a klik na OK.


V Knihovně Plánovače úloh zakaž Google Update může to tam být vícekrát.


Stáhni a spusť AdwCleaner,

ukonči všechny programy včetně prohlížeče a dvojklikem jej spusť,

objeví se okno kde vlevo nahoře klikni na Scan.

Po dokončení skenu klikni na Clean,

proběhne restart PC kdy dojde ke smazání nepořádku.

Po té mi sem zkopíruj Report.
| Rsit | Mbam | AVPTool | Cure It |

O víkendu odpočívám :all_coholic:

kosprojekt
Návštěvník
Návštěvník
Příspěvky: 5
Registrován: 07 lis 2017 10:13

Re: Prosím o kontrolu

#5 Příspěvek od kosprojekt »

No tak jsem pozastavoval a pozakazoval ty služby. Mělo by to být.

Tady je log:
# AdwCleaner 7.0.4.0 - Logfile created on Thu Nov 09 14:54:55 2017
# Updated on 2017/27/10 by Malwarebytes
# Database: 11-07-2017.2
# Running on Windows 10 Home (X64)
# Mode: scan
# Support: https://www.malwarebytes.com/support

***** [ Services ] *****

No malicious services found.

***** [ Folders ] *****

No malicious folders found.

***** [ Files ] *****

No malicious files found.

***** [ DLL ] *****

No malicious DLLs found.

***** [ WMI ] *****

No malicious WMI found.

***** [ Shortcuts ] *****

No malicious shortcuts found.

***** [ Tasks ] *****

No malicious tasks found.

***** [ Registry ] *****

PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Your Software Deals_is1


***** [ Firefox (and derivatives) ] *****

No malicious Firefox entries.

***** [ Chromium (and derivatives) ] *****

No malicious Chromium entries.

*************************



########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt ##########

Uživatelský avatar
Roli
VIP
VIP
Příspěvky: 13400
Registrován: 26 lis 2006 13:37
Bydliště: ČR

Re: Prosím o kontrolu

#6 Příspěvek od Roli »

Bezva, ještě použij Mbam z mého podpisu a dej mi sem z něj log po smazání nepořádku.
| Rsit | Mbam | AVPTool | Cure It |

O víkendu odpočívám :all_coholic:

Odpovědět