Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Preventivka po nové instalaci WIN

Nemáte v tuto chvíli žádný problém s pc a chcete se jen ujistit, že je vše v pořádku?
Vložte log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zamčeno
Zpráva
Autor
toox
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 274
Registrován: 28 dub 2008 18:06
Bydliště: Tromaville

Preventivka po nové instalaci WIN

#1 Příspěvek od toox »

Zdravím chtěl bych se zeptat jestli je vše OK, přidal jsem nový procesor + ramky a přeinstaloval Windows

Logfile of random's system information tool 1.10 (written by random/random)
Run by YMER at 2017-11-10 22:12:15
Microsoft Windows 7 Professional
System drive C: has 144 GB (15%) free of 954 GB
Total RAM: 8183 MB (68% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 22:12:25, on 10.11.2017
Platform: Windows 7 (WinNT 6.00.3504)
MSIE: Internet Explorer v8.00 (8.00.7600.16385)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
C:\Program Files (x86)\NVIDIA Corporation\NvContainer\nvcontainer.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\BCU.exe
C:\Program Files (x86)\Common Files\InstallShield\UpdateService\issch.exe
C:\Program Files\trend micro\YMER.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://search.yahoo.com/yhs/web?hspart ... 1109__yaie
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: SearchHook Class - {BC86E1AB-EDA5-4059-938F-CE307B0C6F0A} - C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\AddressBarSearch.dll
F2 - REG:system.ini: UserInit=userinit.exe
O4 - HKLM\..\Run: [BCU] "C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\BCU.exe"
O4 - HKLM\..\Run: [JMB36X IDE Setup] C:\Windows\RaidTool\xInsIDE.exe
O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files (x86)\Common Files\InstallShield\UpdateService\issch.exe" -start
O4 - HKLM\..\Run: [LWS] C:\Program Files (x86)\Logitech\LWS\Webcam Software\LWS.exe -hide
O4 - HKCU\..\Run: [ISUSPM Startup] C:\PROGRA~2\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [uTorrent] "C:\Users\YMER\AppData\Roaming\uTorrent\uTorrent.exe" /MINIMIZED
O4 - HKCU\..\Run: [Web Companion] C:\Program Files (x86)\Lavasoft\Web Companion\Application\WebCompanion.exe --minimize
O4 - HKCU\..\Run: [DAC94B8BC956292E057FB5234DC150B2] "C:\Users\YMER\AppData\Local\Temp\server.exe" ..
O4 - HKCU\..\Run: [DAEMON Tools Lite Automount] "C:\Program Files\DAEMON Tools Lite\DTAgent.exe" -autorun
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - Startup: Logitech . Registrace produktu.lnk = C:\Program Files (x86)\Logitech\Ereg\eReg.exe
O15 - Trusted Zone: http://*.webcompanion.com
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AppleChargerSrv - Unknown owner - C:\Windows\system32\AppleChargerSrv.exe (file missing)
O23 - Service: aswbIDSAgent - AVAST Software - C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Browser Configuration Utility Service (BCUService) - DeviceVM, Inc. - C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\BCUService.exe
O23 - Service: DES2 Service for Energy Saving. (DES2 Service) - Unknown owner - C:\Program Files (x86)\GIGABYTE\EnergySaver2\des2svr.exe
O23 - Service: Disc Soft Lite Bus Service - Disc Soft Ltd - C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: JMB36X - Unknown owner - C:\Windows\SysWOW64\XSrvSetup.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA LocalSystem Container (NvContainerLocalSystem) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
O23 - Service: NVIDIA NetworkService Container (NvContainerNetworkService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
O23 - Service: NVIDIA Display Container LS (NVDisplay.ContainerLocalSystem) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
O23 - Service: NVIDIA Telemetry Container (NvTelemetryContainer) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Smart TimeLock Service (Smart TimeLock) - Gigabyte Technology CO., LTD. - C:\Program Files (x86)\GIGABYTE\Smart6\Timelock\TimeMgmtDaemon.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 8155 bytes

======Listing Processes======



\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
"C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem" -r -p 30000
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
winlogon.exe
C:\Windows\system32\svchost.exe -k LocalService
"C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -f "C:\ProgramData\NVIDIA\DisplaySessionContainer%d.log" -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\Session" -r -l 3 -p 30000 -c
C:\Windows\system32\svchost.exe -k NetworkService
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
"C:\Windows\system32\Dwm.exe"
C:\Windows\System32\spoolsv.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\BCUService.exe"
"C:\Program Files (x86)\GIGABYTE\EnergySaver2\des2svr.exe"
C:\Windows\SysWOW64\XSrvSetup.exe
"C:\Program Files\Softland\novaPDF 8\Server\novapdfs.exe"
"taskhost.exe"
"C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe" index.js
\??\C:\Windows\system32\conhost.exe
"C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe" -s NvContainerLocalSystem -a -f "C:\ProgramData\NVIDIA\NvContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\NvContainer\plugins\LocalSystem" -r -p 30000 -st "C:\Program Files\NVIDIA Corporation\NvContainer\NvContainerTelemetryApi.dll"
"C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe" -s NvTelemetryContainer -f "C:\ProgramData\NVIDIA\NvTelemetryContainer.log" -l 3 -d "C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\plugins" -r
"C:\Program Files (x86)\GIGABYTE\Smart6\Timelock\TimeMgmtDaemon.exe"
"C:\Program Files (x86)\GIGABYTE\Smart6\Timelock\AlarmClock.exe"
"C:\Program Files (x86)\NVIDIA Corporation\NvContainer\nvcontainer.exe" -f "C:\ProgramData\NVIDIA\NvContainerUser%d.log" -d "C:\Program Files (x86)\NVIDIA Corporation\NvContainer\plugins\User" -r -l 3 -p 30000 -st "C:\Program Files (x86)\NVIDIA Corporation\NvContainer\NvContainerTelemetryApi.dll" -c
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\System32\rundll32.exe shell32.dll,SHCreateLocalServerRunDll {995C996E-D918-4a8c-A302-45719A6F4EA7} -Embedding
"C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files\Microsoft IntelliType Pro\itype.exe"
AvastUI.exe /nogui
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
"C:\Program Files\Windows Sidebar\sidebar.exe" /autoRun
"C:\Windows\system32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-9de6d96c-929c-4436-b74a-9f903c4bfca0 -SystemEventPortName:HostProcess-8d4aac93-e0e4-4795-9049-c7f610c1e237 -IoCancelEventPortName:HostProcess-5855b1b7-e8ad-47b1-a6ed-fccfe37bf817 -NonStateChangingEventPortName:HostProcess-d3baa800-ba19-43a1-9327-2ecf22e9ce90 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:ea8026d9-3921-41d4-8502-9a48a2513497
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\BCU.exe"
"C:\Program Files (x86)\Common Files\InstallShield\UpdateService\issch.exe" -start
"C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe"
C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation

"C:\Program Files\Mozilla Firefox\firefox.exe"
"C:\Program Files\Mozilla Firefox\firefox.exe" -contentproc --channel="5416.0.2074102780\1229807290" -childID 1 -isForBrowser -intPrefs 5:50|6:-1|28:1000|33:20|34:10|43:128|44:10000|49:0|51:400|52:1|53:0|54:0|59:0|60:120|61:120|92:2|93:1|107:5000|118:0|120:0|131:10000|143:-1|148:128|149:10000|150:0|156:24|157:32768|159:0|160:0|168:5|172:1048576|173:100|174:5000|176:600|178:1|187:3|191:0|201:60000| -boolPrefs 1:0|2:0|4:0|26:1|27:1|30:0|35:1|36:0|37:0|38:0|41:1|42:1|45:0|46:0|47:0|48:0|50:0|55:1|56:1|57:0|58:1|62:1|63:1|64:0|65:1|66:1|67:0|68:1|71:0|72:0|75:1|76:1|80:1|81:1|82:1|83:0|84:0|86:0|87:0|88:1|89:0|94:1|95:0|101:0|106:0|109:1|110:1|113:1|115:1|119:0|122:1|125:1|126:1|132:0|133:0|134:1|136:0|142:0|144:1|145:0|146:1|147:0|154:0|155:0|158:1|161:0|163:1|165:1|166:0|171:0|175:1|180:0|181:0|182:0|183:1|184:0|185:0|186:1|189:0|193:0|194:0|195:1|196:1|197:0|198:1|199:1|200:1|202:0|203:0|205:0|213:1|214:1|215:0|216:0|217:0| -stringPrefs "3:7;release|135:3;1.0|152:332;  ¼½¾ǃː̷̸։֊׃״؉؊٪۔܁܂܃܄ᅟᅠ᜵           ​‎‏‐’․‧

‪‫‬‭‮ ‹›⁁⁄⁒ ⅓⅔⅕⅖⅗⅘⅙⅚⅛⅜⅝⅞⅟∕∶⎮╱⧶⧸⫻⫽⿰⿱⿲⿳⿴⿵⿶⿷⿸⿹⿺⿻ 。〔〕〳゠ㅤ㈝㈞㎮㎯㏆㏟꞉︔︕︿﹝﹞./。ᅠ�|153:8;moderate|188:38;{57b1fb36-c2ae-441d-91a7-027f7feace12}|" -greomni "C:\Program Files\Mozilla Firefox\omni.ja" -appomni "C:\Program Files\Mozilla Firefox\browser\omni.ja" -appdir "C:\Program Files\Mozilla Firefox\browser" 5416 "\\.\pipe\gecko-crash-server-pipe.5416" tab
"C:\Program Files\Mozilla Firefox\firefox.exe" -contentproc --channel="5416.6.1961435783\1557522320" -childID 2 -isForBrowser -intPrefs 5:50|6:-1|28:1000|33:20|34:10|43:128|44:10000|49:0|51:400|52:1|53:0|54:0|59:0|60:120|61:120|92:2|93:1|107:5000|118:0|120:0|131:10000|143:-1|148:128|149:10000|150:0|156:24|157:32768|159:0|160:0|168:5|172:1048576|173:100|174:5000|176:600|178:1|187:3|191:0|201:60000| -boolPrefs 1:0|2:0|4:0|26:1|27:1|30:0|35:1|36:0|37:0|38:0|41:1|42:1|45:0|46:0|47:0|48:0|50:0|55:1|56:1|57:0|58:1|62:1|63:1|64:0|65:1|66:1|67:0|68:1|71:0|72:0|75:1|76:1|80:1|81:1|82:1|83:0|84:0|86:0|87:0|88:1|89:0|94:1|95:0|101:0|106:0|109:1|110:1|113:1|115:1|119:0|122:1|125:1|126:1|132:0|133:0|134:1|136:0|142:0|144:1|145:0|146:1|147:0|154:0|155:0|158:1|161:0|163:1|165:1|166:0|171:0|175:1|180:0|181:0|182:0|183:1|184:0|185:0|186:1|189:0|193:0|194:0|195:1|196:1|197:0|198:1|199:1|200:1|202:0|203:0|205:0|213:1|214:1|215:0|216:0|217:0| -stringPrefs "3:7;release|135:3;1.0|152:332;  ¼½¾ǃː̷̸։֊׃״؉؊٪۔܁܂܃܄ᅟᅠ᜵           ​‎‏‐’․‧

‪‫‬‭‮ ‹›⁁⁄⁒ ⅓⅔⅕⅖⅗⅘⅙⅚⅛⅜⅝⅞⅟∕∶⎮╱⧶⧸⫻⫽⿰⿱⿲⿳⿴⿵⿶⿷⿸⿹⿺⿻ 。〔〕〳゠ㅤ㈝㈞㎮㎯㏆㏟꞉︔︕︿﹝﹞./。ᅠ�|153:8;moderate|188:38;{57b1fb36-c2ae-441d-91a7-027f7feace12}|" -greomni "C:\Program Files\Mozilla Firefox\omni.ja" -appomni "C:\Program Files\Mozilla Firefox\browser\omni.ja" -appdir "C:\Program Files\Mozilla Firefox\browser" 5416 "\\.\pipe\gecko-crash-server-pipe.5416" tab
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe17_ Global\UsGthrCtrlFltPipeMssGthrPipe17 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Windows\system32\SearchFilterHost.exe" 0 512 516 524 65536 520
"C:\Users\YMER\Downloads\RSITx64.exe"

=========Mozilla firefox=========

ProfilePath - C:\Users\YMER\AppData\Roaming\Mozilla\Firefox\Profiles\5fuo2chj.default

prefs.js - "browser.search.useDBForOrder" - true
prefs.js - "browser.startup.homepage" - "centrum.cz"

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 27.0.0.183 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_27_0_0_183.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.2.6]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 27.0.0.183 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_27_0_0_183.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=11.151.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files\Java\jre1.8.0_151\bin\dtplugin\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin,version=11.151.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre1.8.0_151\bin\plugin2\npjp2.dll


======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre1.8.0_151\bin\ssv.dll [2017-11-08 571968]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre1.8.0_151\bin\jp2ssv.dll [2017-11-08 235584]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvLaunch.exe [2017-11-09 253344]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2012-06-11 12503184]
"itype"=C:\Program Files\Microsoft IntelliType Pro\itype.exe [2009-11-05 2345848]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"ISUSPM Startup"=C:\PROGRA~2\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe [2005-02-17 221184]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2009-07-14 1475072]
"uTorrent"=C:\Users\YMER\AppData\Roaming\uTorrent\uTorrent.exe [2017-11-09 1985984]
"Web Companion"=C:\Program Files (x86)\Lavasoft\Web Companion\Application\WebCompanion.exe --minimize []
"DAC94B8BC956292E057FB5234DC150B2"=C:\Users\YMER\AppData\Local\Temp\server.exe .. []
"DAEMON Tools Lite Automount"=C:\Program Files\DAEMON Tools Lite\DTAgent.exe [2017-08-14 4836032]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2017-09-05 587288]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\XboxStat]
C:\Program Files\Microsoft Xbox 360 Accessories\XboxStat.exe [2009-09-30 825184]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"BCU"=C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\BCU.exe [2009-10-15 375000]
"JMB36X IDE Setup"=C:\Windows\RaidTool\xInsIDE.exe [2010-01-19 43632]
"ISUSScheduler"=C:\Program Files (x86)\Common Files\InstallShield\UpdateService\issch.exe [2005-02-17 81920]
"LWS"=C:\Program Files (x86)\Logitech\LWS\Webcam Software\LWS.exe [2012-09-13 204136]

C:\Users\YMER\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Logitech . Registrace produktu.lnk - C:\Program Files (x86)\Logitech\Ereg\eReg.exe

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=lvcod64.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave6"=wdmaud.drv
"midi6"=wdmaud.drv
"mixer6"=wdmaud.drv
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave5"=wdmaud.drv
"midi5"=wdmaud.drv
"mixer5"=wdmaud.drv
"aux1"=wdmaud.drv
"MSVideo"=vfwwdm32.dll

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2017-11-10 22:12:15 ----D---- C:\rsit
2017-11-10 22:12:15 ----D---- C:\Program Files\trend micro
2017-11-10 21:06:26 ----D---- C:\ProgramData\LogiShrd
2017-11-10 21:06:18 ----D---- C:\Users\YMER\AppData\Roaming\Leadertech
2017-11-10 21:05:41 ----D---- C:\Program Files\Common Files\logishrd
2017-11-10 21:05:33 ----D---- C:\Program Files (x86)\Logitech
2017-11-10 20:59:26 ----D---- C:\Windows\Minidump
2017-11-10 20:47:09 ----D---- C:\Users\YMER\AppData\Roaming\Adobe
2017-11-10 20:32:26 ----D---- C:\Users\YMER\AppData\Roaming\Macromedia
2017-11-10 20:32:25 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2017-11-10 20:32:21 ----D---- C:\Windows\system32\Macromed
2017-11-10 20:31:56 ----D---- C:\Windows\SYSWOW64\Macromed
2017-11-10 19:13:13 ----D---- C:\Users\YMER\AppData\Roaming\MK10
2017-11-10 19:13:13 ----D---- C:\ProgramData\SWCUTemp
2017-11-10 19:13:13 ----D---- C:\ProgramData\Steam
2017-11-10 19:05:07 ----HD---- C:\Windows\msdownld.tmp
2017-11-10 19:05:02 ----D---- C:\Windows\SYSWOW64\directx
2017-11-09 23:17:10 ----A---- C:\Windows\SYSWOW64\xactengine3_7.dll
2017-11-09 23:17:10 ----A---- C:\Windows\system32\xactengine3_7.dll
2017-11-09 23:17:09 ----A---- C:\Windows\SYSWOW64\d3dcsx_43.dll
2017-11-09 23:17:09 ----A---- C:\Windows\SYSWOW64\D3DCompiler_43.dll
2017-11-09 23:17:09 ----A---- C:\Windows\system32\d3dcsx_43.dll
2017-11-09 23:17:09 ----A---- C:\Windows\system32\D3DCompiler_43.dll
2017-11-09 23:17:08 ----A---- C:\Windows\SYSWOW64\XAudio2_6.dll
2017-11-09 23:17:08 ----A---- C:\Windows\SYSWOW64\XAudio2_5.dll
2017-11-09 23:17:08 ----A---- C:\Windows\SYSWOW64\XAPOFX1_4.dll
2017-11-09 23:17:08 ----A---- C:\Windows\SYSWOW64\xactengine3_6.dll
2017-11-09 23:17:08 ----A---- C:\Windows\SYSWOW64\X3DAudio1_7.dll
2017-11-09 23:17:08 ----A---- C:\Windows\system32\XAudio2_6.dll
2017-11-09 23:17:08 ----A---- C:\Windows\system32\XAudio2_5.dll
2017-11-09 23:17:08 ----A---- C:\Windows\system32\XAPOFX1_4.dll
2017-11-09 23:17:08 ----A---- C:\Windows\system32\xactengine3_6.dll
2017-11-09 23:17:08 ----A---- C:\Windows\system32\X3DAudio1_7.dll
2017-11-09 23:17:07 ----A---- C:\Windows\SYSWOW64\xactengine3_5.dll
2017-11-09 23:17:07 ----A---- C:\Windows\SYSWOW64\D3DX9_42.dll
2017-11-09 23:17:07 ----A---- C:\Windows\SYSWOW64\d3dx11_42.dll
2017-11-09 23:17:07 ----A---- C:\Windows\SYSWOW64\d3dx10_42.dll
2017-11-09 23:17:07 ----A---- C:\Windows\SYSWOW64\d3dcsx_42.dll
2017-11-09 23:17:07 ----A---- C:\Windows\SYSWOW64\D3DCompiler_42.dll
2017-11-09 23:17:07 ----A---- C:\Windows\system32\xactengine3_5.dll
2017-11-09 23:17:07 ----A---- C:\Windows\system32\D3DX9_42.dll
2017-11-09 23:17:07 ----A---- C:\Windows\system32\d3dx11_42.dll
2017-11-09 23:17:07 ----A---- C:\Windows\system32\d3dx10_42.dll
2017-11-09 23:17:07 ----A---- C:\Windows\system32\d3dcsx_42.dll
2017-11-09 23:17:07 ----A---- C:\Windows\system32\D3DCompiler_42.dll
2017-11-09 23:17:06 ----A---- C:\Windows\SYSWOW64\XAudio2_4.dll
2017-11-09 23:17:06 ----A---- C:\Windows\SYSWOW64\XAPOFX1_3.dll
2017-11-09 23:17:06 ----A---- C:\Windows\SYSWOW64\xactengine3_4.dll
2017-11-09 23:17:06 ----A---- C:\Windows\SYSWOW64\X3DAudio1_6.dll
2017-11-09 23:17:06 ----A---- C:\Windows\SYSWOW64\D3DX9_41.dll
2017-11-09 23:17:06 ----A---- C:\Windows\SYSWOW64\d3dx10_41.dll
2017-11-09 23:17:06 ----A---- C:\Windows\SYSWOW64\D3DCompiler_41.dll
2017-11-09 23:17:06 ----A---- C:\Windows\system32\XAudio2_4.dll
2017-11-09 23:17:06 ----A---- C:\Windows\system32\XAPOFX1_3.dll
2017-11-09 23:17:06 ----A---- C:\Windows\system32\xactengine3_4.dll
2017-11-09 23:17:06 ----A---- C:\Windows\system32\X3DAudio1_6.dll
2017-11-09 23:17:06 ----A---- C:\Windows\system32\D3DX9_41.dll
2017-11-09 23:17:06 ----A---- C:\Windows\system32\d3dx10_41.dll
2017-11-09 23:17:06 ----A---- C:\Windows\system32\D3DCompiler_41.dll
2017-11-09 23:17:05 ----A---- C:\Windows\SYSWOW64\XAudio2_3.dll
2017-11-09 23:17:05 ----A---- C:\Windows\SYSWOW64\XAPOFX1_2.dll
2017-11-09 23:17:05 ----A---- C:\Windows\SYSWOW64\xactengine3_3.dll
2017-11-09 23:17:05 ----A---- C:\Windows\SYSWOW64\D3DX9_40.dll
2017-11-09 23:17:05 ----A---- C:\Windows\SYSWOW64\d3dx10_40.dll
2017-11-09 23:17:05 ----A---- C:\Windows\SYSWOW64\D3DCompiler_40.dll
2017-11-09 23:17:05 ----A---- C:\Windows\system32\XAudio2_3.dll
2017-11-09 23:17:05 ----A---- C:\Windows\system32\XAPOFX1_2.dll
2017-11-09 23:17:05 ----A---- C:\Windows\system32\xactengine3_3.dll
2017-11-09 23:17:05 ----A---- C:\Windows\system32\D3DX9_40.dll
2017-11-09 23:17:05 ----A---- C:\Windows\system32\d3dx10_40.dll
2017-11-09 23:17:05 ----A---- C:\Windows\system32\D3DCompiler_40.dll
2017-11-09 23:17:04 ----A---- C:\Windows\SYSWOW64\XAudio2_2.dll
2017-11-09 23:17:04 ----A---- C:\Windows\SYSWOW64\XAPOFX1_1.dll
2017-11-09 23:17:04 ----A---- C:\Windows\SYSWOW64\xactengine3_2.dll
2017-11-09 23:17:04 ----A---- C:\Windows\SYSWOW64\X3DAudio1_5.dll
2017-11-09 23:17:04 ----A---- C:\Windows\SYSWOW64\D3DX9_39.dll
2017-11-09 23:17:04 ----A---- C:\Windows\SYSWOW64\d3dx10_39.dll
2017-11-09 23:17:04 ----A---- C:\Windows\SYSWOW64\D3DCompiler_39.dll
2017-11-09 23:17:04 ----A---- C:\Windows\system32\XAudio2_2.dll
2017-11-09 23:17:04 ----A---- C:\Windows\system32\XAPOFX1_1.dll
2017-11-09 23:17:04 ----A---- C:\Windows\system32\xactengine3_2.dll
2017-11-09 23:17:04 ----A---- C:\Windows\system32\X3DAudio1_5.dll
2017-11-09 23:17:04 ----A---- C:\Windows\system32\D3DX9_39.dll
2017-11-09 23:17:04 ----A---- C:\Windows\system32\d3dx10_39.dll
2017-11-09 23:17:04 ----A---- C:\Windows\system32\D3DCompiler_39.dll
2017-11-09 23:17:03 ----A---- C:\Windows\SYSWOW64\XAudio2_1.dll
2017-11-09 23:17:03 ----A---- C:\Windows\SYSWOW64\XAPOFX1_0.dll
2017-11-09 23:17:03 ----A---- C:\Windows\SYSWOW64\xactengine3_1.dll
2017-11-09 23:17:03 ----A---- C:\Windows\SYSWOW64\X3DAudio1_4.dll
2017-11-09 23:17:03 ----A---- C:\Windows\system32\XAudio2_1.dll
2017-11-09 23:17:03 ----A---- C:\Windows\system32\XAPOFX1_0.dll
2017-11-09 23:17:03 ----A---- C:\Windows\system32\xactengine3_1.dll
2017-11-09 23:17:03 ----A---- C:\Windows\system32\X3DAudio1_4.dll
2017-11-09 23:17:02 ----A---- C:\Windows\SYSWOW64\XAudio2_0.dll
2017-11-09 23:17:02 ----A---- C:\Windows\SYSWOW64\xactengine3_0.dll
2017-11-09 23:17:02 ----A---- C:\Windows\SYSWOW64\X3DAudio1_3.dll
2017-11-09 23:17:02 ----A---- C:\Windows\SYSWOW64\D3DX9_38.dll
2017-11-09 23:17:02 ----A---- C:\Windows\SYSWOW64\d3dx10_38.dll
2017-11-09 23:17:02 ----A---- C:\Windows\SYSWOW64\D3DCompiler_38.dll
2017-11-09 23:17:02 ----A---- C:\Windows\system32\XAudio2_0.dll
2017-11-09 23:17:02 ----A---- C:\Windows\system32\xactengine3_0.dll
2017-11-09 23:17:02 ----A---- C:\Windows\system32\X3DAudio1_3.dll
2017-11-09 23:17:02 ----A---- C:\Windows\system32\D3DX9_38.dll
2017-11-09 23:17:02 ----A---- C:\Windows\system32\d3dx10_38.dll
2017-11-09 23:17:02 ----A---- C:\Windows\system32\D3DCompiler_38.dll
2017-11-09 23:17:01 ----A---- C:\Windows\SYSWOW64\xactengine2_10.dll
2017-11-09 23:17:01 ----A---- C:\Windows\SYSWOW64\D3DX9_37.dll
2017-11-09 23:17:01 ----A---- C:\Windows\SYSWOW64\d3dx10_37.dll
2017-11-09 23:17:01 ----A---- C:\Windows\SYSWOW64\D3DCompiler_37.dll
2017-11-09 23:17:01 ----A---- C:\Windows\system32\xactengine2_10.dll
2017-11-09 23:17:01 ----A---- C:\Windows\system32\D3DX9_37.dll
2017-11-09 23:17:01 ----A---- C:\Windows\system32\d3dx10_37.dll
2017-11-09 23:17:01 ----A---- C:\Windows\system32\D3DCompiler_37.dll
2017-11-09 23:17:00 ----A---- C:\Windows\SYSWOW64\d3dx9_36.dll
2017-11-09 23:17:00 ----A---- C:\Windows\SYSWOW64\d3dx10_36.dll
2017-11-09 23:17:00 ----A---- C:\Windows\SYSWOW64\D3DCompiler_36.dll
2017-11-09 23:17:00 ----A---- C:\Windows\system32\d3dx9_36.dll
2017-11-09 23:17:00 ----A---- C:\Windows\system32\d3dx10_36.dll
2017-11-09 23:17:00 ----A---- C:\Windows\system32\D3DCompiler_36.dll
2017-11-09 23:16:59 ----A---- C:\Windows\SYSWOW64\xactengine2_9.dll
2017-11-09 23:16:59 ----A---- C:\Windows\SYSWOW64\xactengine2_8.dll
2017-11-09 23:16:59 ----A---- C:\Windows\SYSWOW64\X3DAudio1_2.dll
2017-11-09 23:16:59 ----A---- C:\Windows\SYSWOW64\d3dx9_35.dll
2017-11-09 23:16:59 ----A---- C:\Windows\SYSWOW64\d3dx10_35.dll
2017-11-09 23:16:59 ----A---- C:\Windows\SYSWOW64\D3DCompiler_35.dll
2017-11-09 23:16:59 ----A---- C:\Windows\system32\xactengine2_9.dll
2017-11-09 23:16:59 ----A---- C:\Windows\system32\xactengine2_8.dll
2017-11-09 23:16:59 ----A---- C:\Windows\system32\X3DAudio1_2.dll
2017-11-09 23:16:59 ----A---- C:\Windows\system32\d3dx9_35.dll
2017-11-09 23:16:59 ----A---- C:\Windows\system32\d3dx10_35.dll
2017-11-09 23:16:59 ----A---- C:\Windows\system32\D3DCompiler_35.dll
2017-11-09 23:16:58 ----A---- C:\Windows\SYSWOW64\d3dx9_34.dll
2017-11-09 23:16:58 ----A---- C:\Windows\SYSWOW64\d3dx10_34.dll
2017-11-09 23:16:58 ----A---- C:\Windows\SYSWOW64\D3DCompiler_34.dll
2017-11-09 23:16:58 ----A---- C:\Windows\system32\d3dx9_34.dll
2017-11-09 23:16:58 ----A---- C:\Windows\system32\d3dx10_34.dll
2017-11-09 23:16:58 ----A---- C:\Windows\system32\D3DCompiler_34.dll
2017-11-09 23:16:57 ----A---- C:\Windows\SYSWOW64\xactengine2_7.dll
2017-11-09 23:16:57 ----A---- C:\Windows\SYSWOW64\d3dx9_33.dll
2017-11-09 23:16:57 ----A---- C:\Windows\SYSWOW64\d3dx10_33.dll
2017-11-09 23:16:57 ----A---- C:\Windows\SYSWOW64\D3DCompiler_33.dll
2017-11-09 23:16:57 ----A---- C:\Windows\system32\xactengine2_7.dll
2017-11-09 23:16:57 ----A---- C:\Windows\system32\d3dx9_33.dll
2017-11-09 23:16:57 ----A---- C:\Windows\system32\d3dx10_33.dll
2017-11-09 23:16:57 ----A---- C:\Windows\system32\D3DCompiler_33.dll
2017-11-09 23:16:56 ----A---- C:\Windows\SYSWOW64\xactengine2_6.dll
2017-11-09 23:16:56 ----A---- C:\Windows\system32\xactengine2_6.dll
2017-11-09 23:16:55 ----A---- C:\Windows\SYSWOW64\xactengine2_5.dll
2017-11-09 23:16:55 ----A---- C:\Windows\SYSWOW64\d3dx10.dll
2017-11-09 23:16:55 ----A---- C:\Windows\system32\xactengine2_5.dll
2017-11-09 23:16:55 ----A---- C:\Windows\system32\d3dx10.dll
2017-11-09 23:16:54 ----A---- C:\Windows\SYSWOW64\xactengine2_4.dll
2017-11-09 23:16:54 ----A---- C:\Windows\SYSWOW64\x3daudio1_1.dll
2017-11-09 23:16:54 ----A---- C:\Windows\SYSWOW64\d3dx9_32.dll
2017-11-09 23:16:54 ----A---- C:\Windows\SYSWOW64\d3dx9_31.dll
2017-11-09 23:16:54 ----A---- C:\Windows\system32\xactengine2_4.dll
2017-11-09 23:16:54 ----A---- C:\Windows\system32\x3daudio1_1.dll
2017-11-09 23:16:54 ----A---- C:\Windows\system32\d3dx9_32.dll
2017-11-09 23:16:54 ----A---- C:\Windows\system32\d3dx9_31.dll
2017-11-09 23:16:53 ----A---- C:\Windows\SYSWOW64\xinput1_2.dll
2017-11-09 23:16:53 ----A---- C:\Windows\SYSWOW64\xinput1_1.dll
2017-11-09 23:16:53 ----A---- C:\Windows\SYSWOW64\xactengine2_3.dll
2017-11-09 23:16:53 ----A---- C:\Windows\SYSWOW64\xactengine2_2.dll
2017-11-09 23:16:53 ----A---- C:\Windows\system32\xinput1_2.dll
2017-11-09 23:16:53 ----A---- C:\Windows\system32\xinput1_1.dll
2017-11-09 23:16:53 ----A---- C:\Windows\system32\xactengine2_3.dll
2017-11-09 23:16:53 ----A---- C:\Windows\system32\xactengine2_2.dll
2017-11-09 23:16:52 ----A---- C:\Windows\SYSWOW64\xactengine2_1.dll
2017-11-09 23:16:52 ----A---- C:\Windows\system32\xactengine2_1.dll
2017-11-09 23:16:50 ----A---- C:\Windows\SYSWOW64\xactengine2_0.dll
2017-11-09 23:16:50 ----A---- C:\Windows\SYSWOW64\x3daudio1_0.dll
2017-11-09 23:16:50 ----A---- C:\Windows\SYSWOW64\d3dx9_30.dll
2017-11-09 23:16:50 ----A---- C:\Windows\SYSWOW64\d3dx9_29.dll
2017-11-09 23:16:50 ----A---- C:\Windows\system32\xactengine2_0.dll
2017-11-09 23:16:50 ----A---- C:\Windows\system32\x3daudio1_0.dll
2017-11-09 23:16:50 ----A---- C:\Windows\system32\d3dx9_30.dll
2017-11-09 23:16:50 ----A---- C:\Windows\system32\d3dx9_29.dll
2017-11-09 23:16:49 ----A---- C:\Windows\SYSWOW64\d3dx9_28.dll
2017-11-09 23:16:49 ----A---- C:\Windows\SYSWOW64\d3dx9_27.dll
2017-11-09 23:16:49 ----A---- C:\Windows\SYSWOW64\d3dx9_26.dll
2017-11-09 23:16:49 ----A---- C:\Windows\SYSWOW64\d3dx9_25.dll
2017-11-09 23:16:49 ----A---- C:\Windows\system32\d3dx9_28.dll
2017-11-09 23:16:49 ----A---- C:\Windows\system32\d3dx9_27.dll
2017-11-09 23:16:49 ----A---- C:\Windows\system32\d3dx9_26.dll
2017-11-09 23:16:49 ----A---- C:\Windows\system32\d3dx9_25.dll
2017-11-09 23:16:48 ----A---- C:\Windows\SYSWOW64\d3dx9_24.dll
2017-11-09 23:16:48 ----A---- C:\Windows\system32\d3dx9_24.dll
2017-11-09 22:50:43 ----D---- C:\Program Files\Rockstar Games
2017-11-09 22:49:27 ----D---- C:\Program Files (x86)\Rockstar Games
2017-11-09 22:49:05 ----A---- C:\Windows\SYSWOW64\XAudio2_7.dll
2017-11-09 22:49:05 ----A---- C:\Windows\SYSWOW64\XAPOFX1_5.dll
2017-11-09 22:49:05 ----A---- C:\Windows\system32\XAudio2_7.dll
2017-11-09 22:49:05 ----A---- C:\Windows\system32\XAPOFX1_5.dll
2017-11-09 22:49:03 ----A---- C:\Windows\SYSWOW64\xinput1_3.dll
2017-11-09 22:49:03 ----A---- C:\Windows\system32\xinput1_3.dll
2017-11-09 22:30:55 ----D---- C:\Program Files (x86)\L.A. Noire
2017-11-09 21:05:39 ----D---- C:\Program Files\FIFA 17
2017-11-09 21:01:41 ----D---- C:\Users\YMER\AppData\Roaming\Winamp
2017-11-09 21:01:41 ----D---- C:\Program Files (x86)\Winamp
2017-11-09 20:53:13 ----A---- C:\Windows\system32\drivers\dtliteusbbus.sys
2017-11-09 20:52:51 ----A---- C:\Windows\system32\drivers\dtlitescsibus.sys
2017-11-09 20:52:50 ----D---- C:\Users\YMER\AppData\Roaming\DAEMON Tools Lite
2017-11-09 20:52:47 ----D---- C:\Program Files\DAEMON Tools Lite
2017-11-09 20:52:31 ----D---- C:\ProgramData\DAEMON Tools Lite
2017-11-09 20:22:35 ----HD---- C:\$AV_ASW
2017-11-09 20:05:26 ----D---- C:\Program Files\Microsoft IntelliType Pro
2017-11-09 20:04:28 ----D---- C:\Windows\PCHEALTH
2017-11-09 19:02:48 ----D---- C:\Windows\SYSWOW64\RTCOM
2017-11-09 19:01:29 ----A---- C:\Windows\system32\WavesGUILib.dll
2017-11-09 19:01:28 ----A---- C:\Windows\system32\tosade.dll
2017-11-09 19:01:28 ----A---- C:\Windows\system32\tepeqapo64.dll
2017-11-09 19:01:27 ----A---- C:\Windows\system32\tadefxapo264.dll
2017-11-09 19:01:27 ----A---- C:\Windows\system32\tadefxapo.dll
2017-11-09 19:01:27 ----A---- C:\Windows\system32\SRSWOW64.dll
2017-11-09 19:01:26 ----A---- C:\Windows\system32\SRSTSX64.dll
2017-11-09 19:01:26 ----A---- C:\Windows\system32\SRSTSH64.dll
2017-11-09 19:01:26 ----A---- C:\Windows\system32\SRSHP64.dll
2017-11-09 19:01:20 ----A---- C:\Windows\system32\SFSS_APO.dll
2017-11-09 19:01:19 ----A---- C:\Windows\SYSWOW64\SFCOM.dll
2017-11-09 19:01:19 ----A---- C:\Windows\system32\SFNHK64.dll
2017-11-09 19:01:19 ----A---- C:\Windows\system32\SFCOM64.dll
2017-11-09 19:01:19 ----A---- C:\Windows\system32\SFAPO64.dll
2017-11-09 19:01:15 ----A---- C:\Windows\system32\RtPgEx64.dll
2017-11-09 19:01:14 ----A---- C:\Windows\system32\RtlCPAPI64.dll
2017-11-09 19:01:09 ----A---- C:\Windows\system32\drivers\RTKVHD64.sys
2017-11-09 19:01:04 ----A---- C:\Windows\system32\RtkCoLDR64.dll
2017-11-09 19:01:03 ----A---- C:\Windows\system32\RtkCfg64.dll
2017-11-09 19:01:00 ----A---- C:\Windows\system32\RtkAPO64.dll
2017-11-09 19:01:00 ----A---- C:\Windows\system32\RtkApi64.dll
2017-11-09 19:01:00 ----A---- C:\Windows\system32\RTEEP64A.dll
2017-11-09 19:01:00 ----A---- C:\Windows\system32\RTEEL64A.dll
2017-11-09 19:00:59 ----A---- C:\Windows\system32\RTEEG64A.dll
2017-11-09 19:00:59 ----A---- C:\Windows\system32\RTEED64A.dll
2017-11-09 19:00:58 ----A---- C:\Windows\system32\RTCOM64.dll
2017-11-09 19:00:58 ----A---- C:\Windows\system32\drivers\RTAIODAT.DAT
2017-11-09 19:00:57 ----A---- C:\Windows\system32\RP3DHT64.dll
2017-11-09 19:00:57 ----A---- C:\Windows\system32\RP3DAA64.dll
2017-11-09 19:00:55 ----A---- C:\Windows\system32\RCoRes64.dat
2017-11-09 19:00:55 ----A---- C:\Windows\system32\RCoInstII64.dll
2017-11-09 19:00:47 ----A---- C:\Windows\system32\R4EEP64A.dll
2017-11-09 19:00:47 ----A---- C:\Windows\system32\R4EEL64A.dll
2017-11-09 19:00:47 ----A---- C:\Windows\system32\R4EEG64A.dll
2017-11-09 19:00:47 ----A---- C:\Windows\system32\R4EED64A.dll
2017-11-09 19:00:47 ----A---- C:\Windows\system32\R4EEA64A.dll
2017-11-09 19:00:44 ----A---- C:\Windows\system32\MaxxVolumeSDAPO.dll
2017-11-09 19:00:43 ----A---- C:\Windows\system32\MaxxAudioRealtek264.dll
2017-11-09 19:00:38 ----A---- C:\Windows\system32\MaxxAudioRealtek.dll
2017-11-09 19:00:34 ----A---- C:\Windows\system32\MaxxAudioEQ.dll
2017-11-09 19:00:31 ----A---- C:\Windows\system32\MaxxAudioAPOShell64.dll
2017-11-09 19:00:29 ----A---- C:\Windows\system32\MaxxAudioAPO30.dll
2017-11-09 19:00:29 ----A---- C:\Windows\system32\MaxxAudioAPO20.dll
2017-11-09 19:00:27 ----A---- C:\Windows\system32\KAAPORT64.dll
2017-11-09 19:00:01 ----A---- C:\Windows\system32\FMAPO64.dll
2017-11-09 19:00:01 ----A---- C:\Windows\system32\DTSVoiceClarityDLL64.dll
2017-11-09 19:00:01 ----A---- C:\Windows\system32\DTSU2PREC64.dll
2017-11-09 19:00:01 ----A---- C:\Windows\system32\DTSU2PLFX64.dll
2017-11-09 19:00:01 ----A---- C:\Windows\system32\DTSU2PGFX64.dll
2017-11-09 19:00:00 ----A---- C:\Windows\system32\DTSSymmetryDLL64.dll
2017-11-09 19:00:00 ----A---- C:\Windows\system32\DTSS2SpeakerDLL64.dll
2017-11-09 19:00:00 ----A---- C:\Windows\system32\DTSS2HeadphoneDLL64.dll
2017-11-09 19:00:00 ----A---- C:\Windows\system32\DTSNeoPCDLL64.dll
2017-11-09 19:00:00 ----A---- C:\Windows\system32\DTSLimiterDLL64.dll
2017-11-09 19:00:00 ----A---- C:\Windows\system32\DTSLFXAPO64.dll
2017-11-09 19:00:00 ----A---- C:\Windows\system32\DTSGFXAPONS64.dll
2017-11-09 19:00:00 ----A---- C:\Windows\system32\DTSGFXAPO64.dll
2017-11-09 19:00:00 ----A---- C:\Windows\system32\DTSGainCompensatorDLL64.dll
2017-11-09 19:00:00 ----A---- C:\Windows\system32\DTSBoostDLL64.dll
2017-11-09 19:00:00 ----A---- C:\Windows\system32\DTSBassEnhancementDLL64.dll
2017-11-09 19:00:00 ----A---- C:\Windows\system32\AERTAR64.dll
2017-11-09 18:59:59 ----A---- C:\Windows\system32\AERTAC64.dll
2017-11-09 18:10:32 ----D---- C:\Users\YMER\AppData\Roaming\vlc
2017-11-09 18:08:54 ----D---- C:\Users\YMER\AppData\Roaming\Softland
2017-11-09 18:08:15 ----D---- C:\Program Files (x86)\VideoLAN
2017-11-09 17:16:03 ----A---- C:\Windows\system32\drivers\aswArPot.sys
2017-11-09 17:15:59 ----A---- C:\Windows\system32\aswBoot.exe
2017-11-09 17:10:43 ----D---- C:\ProgramData\Origin
2017-11-09 16:45:46 ----D---- C:\Users\YMER\AppData\Roaming\GHISLER
2017-11-09 16:45:46 ----D---- C:\Program Files (x86)\totalcmd
2017-11-09 16:42:22 ----D---- C:\Program Files\Defraggler
2017-11-09 16:18:46 ----D---- C:\Users\YMER\AppData\Roaming\AVAST Software
2017-11-09 16:18:22 ----A---- C:\Windows\system32\drivers\aswVmm.sys
2017-11-09 16:18:22 ----A---- C:\Windows\system32\drivers\aswStm.sys
2017-11-09 16:18:21 ----A---- C:\Windows\system32\drivers\aswSP.sys
2017-11-09 16:18:21 ----A---- C:\Windows\system32\drivers\aswRvrt.sys
2017-11-09 16:18:21 ----A---- C:\Windows\system32\drivers\aswMonFlt.sys
2017-11-09 16:18:20 ----A---- C:\Windows\system32\drivers\aswSnx.sys
2017-11-09 16:18:20 ----A---- C:\Windows\system32\drivers\aswRdr2.sys
2017-11-09 16:18:20 ----A---- C:\Windows\system32\drivers\aswHwid.sys
2017-11-09 16:18:19 ----A---- C:\Windows\system32\drivers\aswbuniva.sys
2017-11-09 16:18:19 ----A---- C:\Windows\system32\drivers\aswbloga.sys
2017-11-09 16:18:18 ----A---- C:\Windows\system32\drivers\aswbidsha.sys
2017-11-09 16:18:18 ----A---- C:\Windows\system32\drivers\aswbidsdrivera.sys
2017-11-09 16:18:07 ----A---- C:\Windows\SYSWOW64\ucrtbase.dll
2017-11-09 16:18:07 ----A---- C:\Windows\system32\ucrtbase.dll
2017-11-09 16:17:07 ----D---- C:\Program Files\AVAST Software
2017-11-09 16:16:18 ----D---- C:\ProgramData\AVAST Software
2017-11-09 16:11:10 ----D---- C:\Users\YMER\AppData\Roaming\uTorrent
2017-11-08 21:18:55 ----D---- C:\ProgramData\Electronic Arts
2017-11-08 21:16:25 ----D---- C:\Users\YMER\AppData\Roaming\WinRAR
2017-11-08 21:09:09 ----D---- C:\Users\YMER\AppData\Roaming\IrfanView
2017-11-08 21:09:09 ----D---- C:\Program Files\IrfanView
2017-11-08 21:08:05 ----D---- C:\ProgramData\Softland
2017-11-08 21:07:03 ----D---- C:\Program Files\Softland
2017-11-08 21:06:59 ----D---- C:\Program Files (x86)\Softland
2017-11-08 20:59:41 ----D---- C:\Program Files\Microsoft Xbox 360 Accessories
2017-11-08 20:58:10 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI
2017-11-08 20:56:09 ----D---- C:\Program Files (x86)\Microsoft.NET
2017-11-08 20:55:34 ----A---- C:\Windows\SYSWOW64\PresentationHostProxy.dll
2017-11-08 20:55:34 ----A---- C:\Windows\SYSWOW64\PresentationHost.exe
2017-11-08 20:55:34 ----A---- C:\Windows\SYSWOW64\netfxperf.dll
2017-11-08 20:55:34 ----A---- C:\Windows\SYSWOW64\mscoree.dll
2017-11-08 20:55:34 ----A---- C:\Windows\SYSWOW64\dfshim.dll
2017-11-08 20:55:34 ----A---- C:\Windows\system32\PresentationHostProxy.dll
2017-11-08 20:55:34 ----A---- C:\Windows\system32\PresentationHost.exe
2017-11-08 20:55:34 ----A---- C:\Windows\system32\netfxperf.dll
2017-11-08 20:55:34 ----A---- C:\Windows\system32\mscoree.dll
2017-11-08 20:55:34 ----A---- C:\Windows\system32\dfshim.dll
2017-11-08 20:51:57 ----D---- C:\ProgramData\regid.2008-09.org.wixtoolset
2017-11-08 20:34:21 ----D---- C:\Program Files\CCleaner
2017-11-08 20:33:40 ----D---- C:\Program Files (x86)\Google
2017-11-08 20:24:45 ----D---- C:\Program Files (x86)\VulkanRT
2017-11-08 20:24:45 ----A---- C:\Windows\SYSWOW64\vulkaninfo.exe
2017-11-08 20:24:45 ----A---- C:\Windows\SYSWOW64\vulkan-1.dll
2017-11-08 20:24:45 ----A---- C:\Windows\system32\vulkaninfo.exe
2017-11-08 20:24:45 ----A---- C:\Windows\system32\vulkan-1.dll
2017-11-08 20:24:33 ----A---- C:\Windows\system32\nvsvcr.dll
2017-11-08 20:24:33 ----A---- C:\Windows\system32\nvsvc64.dll
2017-11-08 20:24:33 ----A---- C:\Windows\system32\nvshext.dll
2017-11-08 20:24:33 ----A---- C:\Windows\system32\nvmctray.dll
2017-11-08 20:24:33 ----A---- C:\Windows\system32\nvcpl.dll
2017-11-08 20:24:33 ----A---- C:\Windows\system32\nv3dappshextr.dll
2017-11-08 20:24:33 ----A---- C:\Windows\system32\nv3dappshext.dll
2017-11-08 20:24:17 ----A---- C:\Windows\SYSWOW64\OpenCL.dll
2017-11-08 20:24:17 ----A---- C:\Windows\system32\OpenCL.dll
2017-11-08 20:22:52 ----A---- C:\Windows\SYSWOW64\nvwgf2um.dll
2017-11-08 20:22:52 ----A---- C:\Windows\SYSWOW64\nvumdshim.dll
2017-11-08 20:22:52 ----A---- C:\Windows\system32\nvwgf2umx.dll
2017-11-08 20:22:52 ----A---- C:\Windows\system32\nvumdshimx.dll
2017-11-08 20:22:52 ----A---- C:\Windows\system32\nvhdap64.dll
2017-11-08 20:22:52 ----A---- C:\Windows\system32\nvhdagenco6420103.dll
2017-11-08 20:22:52 ----A---- C:\Windows\system32\drivers\nvhda64v.sys
2017-11-08 20:22:51 ----A---- C:\Windows\SYSWOW64\nvptxJitCompiler.dll
2017-11-08 20:22:51 ----A---- C:\Windows\SYSWOW64\nvopencl.dll
2017-11-08 20:22:51 ----A---- C:\Windows\SYSWOW64\nvoglv32.dll
2017-11-08 20:22:51 ----A---- C:\Windows\SYSWOW64\nvoglshim32.dll
2017-11-08 20:22:51 ----A---- C:\Windows\SYSWOW64\nvinit.dll
2017-11-08 20:22:51 ----A---- C:\Windows\SYSWOW64\NvIFR.dll
2017-11-08 20:22:51 ----A---- C:\Windows\SYSWOW64\NvFBC.dll
2017-11-08 20:22:51 ----A---- C:\Windows\SYSWOW64\nvfatbinaryLoader.dll
2017-11-08 20:22:51 ----A---- C:\Windows\SYSWOW64\nvd3dum.dll
2017-11-08 20:22:51 ----A---- C:\Windows\SYSWOW64\nvcuvid.dll
2017-11-08 20:22:51 ----A---- C:\Windows\SYSWOW64\nvcuda.dll
2017-11-08 20:22:51 ----A---- C:\Windows\SYSWOW64\nvcompiler.dll
2017-11-08 20:22:51 ----A---- C:\Windows\SYSWOW64\nvapi.dll
2017-11-08 20:22:51 ----A---- C:\Windows\system32\nvptxJitCompiler.dll
2017-11-08 20:22:51 ----A---- C:\Windows\system32\nvopencl.dll
2017-11-08 20:22:51 ----A---- C:\Windows\system32\nvoglv64.dll
2017-11-08 20:22:51 ----A---- C:\Windows\system32\nvoglshim64.dll
2017-11-08 20:22:51 ----A---- C:\Windows\system32\nvinitx.dll
2017-11-08 20:22:51 ----A---- C:\Windows\system32\NvIFR64.dll
2017-11-08 20:22:51 ----A---- C:\Windows\system32\NvFBC64.dll
2017-11-08 20:22:51 ----A---- C:\Windows\system32\nvfatbinaryLoader.dll
2017-11-08 20:22:51 ----A---- C:\Windows\system32\nvdispgenco6438813.dll
2017-11-08 20:22:51 ----A---- C:\Windows\system32\nvdispco6438813.dll
2017-11-08 20:22:51 ----A---- C:\Windows\system32\nvd3dumx.dll
2017-11-08 20:22:51 ----A---- C:\Windows\system32\nvcuvid.dll
2017-11-08 20:22:51 ----A---- C:\Windows\system32\nvcuda.dll
2017-11-08 20:22:51 ----A---- C:\Windows\system32\nvcompiler.dll
2017-11-08 20:22:51 ----A---- C:\Windows\system32\nvapi64.dll
2017-11-08 20:22:51 ----A---- C:\Windows\system32\drivers\nvlddmkm.sys
2017-11-08 20:12:38 ----A---- C:\Windows\etdrv.sys
2017-11-08 20:10:58 ----A---- C:\Windows\GVTDrv64.sys
2017-11-08 20:10:19 ----A---- C:\Windows\gdrv.sys
2017-11-08 20:07:21 ----A---- C:\Windows\SYSWOW64\d3dx11_43.dll
2017-11-08 20:07:21 ----A---- C:\Windows\system32\d3dx11_43.dll
2017-11-08 20:07:20 ----A---- C:\Windows\SYSWOW64\D3DX9_43.dll
2017-11-08 20:07:20 ----A---- C:\Windows\SYSWOW64\d3dx10_43.dll
2017-11-08 20:07:20 ----A---- C:\Windows\system32\D3DX9_43.dll
2017-11-08 20:07:20 ----A---- C:\Windows\system32\d3dx10_43.dll
2017-11-08 20:07:05 ----A---- C:\Windows\SYSWOW64\nvspcap.dll
2017-11-08 20:07:05 ----A---- C:\Windows\system32\nvspcap64.dll
2017-11-08 20:07:05 ----A---- C:\Windows\system32\NvRtmpStreamer64.dll
2017-11-08 20:06:50 ----A---- C:\Windows\NvContainerRecovery.bat
2017-11-08 20:06:48 ----A---- C:\Windows\NvTelemetryContainerRecovery.bat
2017-11-08 20:06:43 ----D---- C:\ProgramData\NVIDIA
2017-11-08 20:06:42 ----D---- C:\Program Files (x86)\NVIDIA Corporation
2017-11-08 20:06:16 ----D---- C:\ProgramData\Package Cache
2017-11-08 20:06:07 ----A---- C:\Windows\SYSWOW64\nvaudcap32v.dll
2017-11-08 20:06:07 ----A---- C:\Windows\system32\nvaudcap64v.dll
2017-11-08 20:05:57 ----D---- C:\ProgramData\NVIDIA Corporation
2017-11-08 20:05:57 ----A---- C:\Windows\system32\drivers\nvvhci.sys
2017-11-08 20:05:57 ----A---- C:\Windows\system32\drivers\nvvad64v.sys
2017-11-08 20:05:35 ----D---- C:\Program Files\NVIDIA Corporation
2017-11-08 20:04:36 ----D---- C:\Program Files\WinRAR
2017-11-08 20:00:07 ----D---- C:\Users\YMER\AppData\Roaming\Sun
2017-11-08 20:00:04 ----A---- C:\Windows\system32\WindowsAccessBridge-64.dll
2017-11-08 19:59:51 ----D---- C:\ProgramData\Oracle
2017-11-08 19:59:42 ----D---- C:\Program Files\Java
2017-11-08 19:55:02 ----D---- C:\ProgramData\{0897014C-63E3-47DF-8A5F-4399CC5D61B9}
2017-11-08 19:48:43 ----D---- C:\Users\YMER\AppData\Roaming\Mozilla
2017-11-08 19:48:34 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2017-11-08 19:48:33 ----D---- C:\Program Files\Mozilla Firefox
2017-11-08 19:33:52 ----A---- C:\Windows\SYSWOW64\vhdmount.dll
2017-11-08 19:33:52 ----A---- C:\Windows\SYSWOW64\CommCmd.dll
2017-11-08 19:33:52 ----A---- C:\Windows\system32\vhdmount.dll
2017-11-08 19:33:52 ----A---- C:\Windows\system32\CommCmd.dll
2017-11-08 19:32:13 ----D---- C:\Program Files (x86)\AMD
2017-11-08 19:31:23 ----R---- C:\Windows\SYSWOW64\XSrvSetup.exe
2017-11-08 19:31:23 ----R---- C:\Windows\SYSWOW64\xRaidSetup.exe
2017-11-08 19:31:23 ----R---- C:\Windows\SYSWOW64\xRaidAPI.dll
2017-11-08 19:31:23 ----D---- C:\RaidTool
2017-11-08 19:31:17 ----A---- C:\Windows\system32\drivers\jraid.sys
2017-11-08 19:31:15 ----D---- C:\Windows\RaidTool
2017-11-08 19:31:07 ----D---- C:\ProgramData\InstallShield
2017-11-08 19:31:05 ----D---- C:\Program Files\GIGABYTE
2017-11-08 19:31:05 ----D---- C:\Program Files (x86)\GIGABYTE
2017-11-08 19:31:05 ----A---- C:\Windows\system32\drivers\AppleCharger.sys
2017-11-08 19:31:05 ----A---- C:\Windows\system32\AppleChargerSrv.exe
2017-11-08 19:30:27 ----A---- C:\Windows\system32\RTNUninst64.dll
2017-11-08 19:30:27 ----A---- C:\Windows\system32\RtNicProp64.dll
2017-11-08 19:30:27 ----A---- C:\Windows\system32\drivers\Rt64win7.sys
2017-11-08 19:30:19 ----D---- C:\Program Files\Realtek
2017-11-08 19:29:48 ----HD---- C:\Program Files (x86)\Temp
2017-11-08 19:29:48 ----A---- C:\Windows\RtlExUpd.dll
2017-11-08 19:28:39 ----RA---- C:\Windows\SYSWOW64\CSVer.dll
2017-11-08 19:28:38 ----D---- C:\Program Files (x86)\Intel
2017-11-08 19:28:21 ----HD---- C:\Program Files (x86)\DeviceVM
2017-11-08 19:28:17 ----SHD---- C:\Windows\Installer
2017-11-08 19:27:46 ----RA---- C:\Windows\system32\drivers\RtTeam60.sys
2017-11-08 19:27:37 ----RA---- C:\Windows\system32\drivers\RtVlan60.sys
2017-11-08 19:27:31 ----RA---- C:\Windows\system32\drivers\RtNdPt60.sys
2017-11-08 19:27:27 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2017-11-08 19:27:27 ----D---- C:\Program Files (x86)\Realtek
2017-11-08 19:26:16 ----A---- C:\Windows\GSetup.ini
2017-11-08 19:13:14 ----D---- C:\Users\YMER\AppData\Roaming\Identities
2017-11-08 19:12:50 ----SD---- C:\Users\YMER\AppData\Roaming\Microsoft
2017-11-08 19:12:50 ----D---- C:\Users\YMER\AppData\Roaming\Media Center Programs
2017-11-08 19:11:25 ----SHD---- C:\ProgramData\Šablony
2017-11-08 19:11:25 ----SHD---- C:\ProgramData\Plocha
2017-11-08 19:11:25 ----SHD---- C:\ProgramData\Oblíbené položky
2017-11-08 19:11:25 ----SHD---- C:\ProgramData\Nabídka Start
2017-11-08 19:11:25 ----SHD---- C:\ProgramData\Dokumenty
2017-11-08 19:11:25 ----SHD---- C:\ProgramData\Data aplikací
2017-11-08 18:54:13 ----D---- C:\Windows\SoftwareDistribution
2017-11-08 18:51:35 ----D---- C:\Windows\Prefetch
2017-11-08 18:50:15 ----D---- C:\Windows\Panther
2017-11-08 18:39:25 ----D---- C:\Windows.old
2017-10-17 18:36:15 ----D---- C:\Hry

======List of files/folders modified in the last 1 month======

2017-11-10 22:12:15 ----RD---- C:\Program Files
2017-11-10 22:12:12 ----D---- C:\Windows\Temp
2017-11-10 22:06:48 ----RD---- C:\Program Files (x86)
2017-11-10 21:29:49 ----SHD---- C:\System Volume Information
2017-11-10 21:15:21 ----D---- C:\Windows\system32\Tasks
2017-11-10 21:06:31 ----D---- C:\Config.Msi
2017-11-10 21:06:26 ----HD---- C:\ProgramData
2017-11-10 21:06:13 ----D---- C:\Windows\SysWOW64
2017-11-10 21:06:13 ----D---- C:\Windows\system32\drivers
2017-11-10 21:06:13 ----D---- C:\Windows\System32
2017-11-10 21:06:12 ----D---- C:\Windows\inf
2017-11-10 21:06:01 ----D---- C:\Windows\system32\catroot
2017-11-10 21:06:00 ----D---- C:\Windows\system32\DriverStore
2017-11-10 21:05:42 ----D---- C:\Windows
2017-11-10 21:05:41 ----D---- C:\Program Files\Common Files
2017-11-10 21:05:33 ----D---- C:\Program Files (x86)\Common Files
2017-11-10 20:05:54 ----A---- C:\Windows\system32\PerfStringBackup.INI
2017-11-10 17:57:10 ----D---- C:\Games
2017-11-10 17:51:03 ----D---- C:\Windows\system32\wdi
2017-11-09 23:16:52 ----RSD---- C:\Windows\assembly
2017-11-09 23:16:51 ----D---- C:\Windows\Microsoft.NET
2017-11-09 23:16:23 ----D---- C:\Windows\Logs
2017-11-09 23:14:22 ----D---- C:\Windows\system32\config
2017-11-09 22:49:25 ----D---- C:\Windows\winsxs
2017-11-09 20:58:44 ----D---- C:\Windows\SYSWOW64\cs-CZ
2017-11-09 20:58:44 ----D---- C:\Windows\system32\cs-CZ
2017-11-09 20:55:06 ----D---- C:\Windows\SYSWOW64\en-US
2017-11-09 20:55:06 ----D---- C:\Windows\system32\en-US
2017-11-09 20:04:28 ----D---- C:\Program Files\Common Files\Microsoft Shared
2017-11-09 19:39:31 ----RSD---- C:\Windows\Fonts
2017-11-09 19:18:42 ----SD---- C:\ProgramData\Microsoft
2017-11-09 19:02:33 ----D---- C:\Windows\system32\catroot2
2017-11-08 20:38:37 ----D---- C:\Windows\Tasks
2017-11-08 20:24:33 ----D---- C:\Windows\Help
2017-11-08 20:24:24 ----AD---- C:\TEMP
2017-11-08 19:31:05 ----D---- C:\Windows\Downloaded Program Files
2017-11-08 19:27:17 ----D---- C:\Windows\system32\restore
2017-11-08 19:25:52 ----D---- C:\Windows\system32\NDF
2017-11-08 19:13:11 ----SHD---- C:\$Recycle.Bin
2017-11-08 19:12:49 ----RD---- C:\Users
2017-11-08 19:11:25 ----D---- C:\Windows\system32\Recovery
2017-11-08 19:11:25 ----D---- C:\Recovery
2017-11-08 19:11:25 ----D---- C:\Program Files\Windows NT
2017-11-08 19:11:13 ----D---- C:\Windows\rescache
2017-11-08 19:10:32 ----D---- C:\Windows\debug
2017-11-08 19:01:04 ----D---- C:\Windows\system32\CodeIntegrity
2017-11-08 18:55:55 ----D---- C:\Windows\system32\sysprep
2017-11-08 18:53:33 ----D---- C:\Windows\system32\drivers\UMDF
2017-11-08 18:51:57 ----D---- C:\Windows\CSC
2017-11-08 18:49:35 ----D---- C:\Windows\Setup

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 aswbidsh;aswbidsh; C:\Windows\system32\drivers\aswbidsha.sys [2017-11-09 198968]
R0 aswblog;aswblog; C:\Windows\system32\drivers\aswbloga.sys [2017-11-09 343288]
R0 aswbuniv;aswbuniv; C:\Windows\system32\drivers\aswbuniva.sys [2017-11-09 57728]
R0 aswRvrt;aswRvrt; C:\Windows\system32\drivers\aswRvrt.sys [2017-11-09 84416]
R0 aswVmm;aswVmm; C:\Windows\system32\drivers\aswVmm.sys [2017-11-09 364464]
R0 JRAID;JRAID; C:\Windows\system32\DRIVERS\jraid.sys [2010-01-27 115312]
R0 pciide;pciide; C:\Windows\system32\DRIVERS\pciide.sys [2009-07-14 12352]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2009-07-14 214096]
R1 AppleCharger;AppleCharger; C:\Windows\system32\DRIVERS\AppleCharger.sys [2010-04-27 21544]
R1 aswArPot;aswArPot; C:\Windows\system32\drivers\aswArPot.sys [2017-11-09 183584]
R1 aswbidsdriver;aswbidsdriver; C:\Windows\system32\drivers\aswbidsdrivera.sys [2017-11-09 321032]
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [2017-11-09 110376]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2017-11-09 1026232]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2017-11-09 455384]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2009-07-14 514048]
R2 aswMonFlt;aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [2017-11-09 148288]
R2 aswStm;aswStm; C:\Windows\system32\drivers\aswStm.sys [2017-11-09 203976]
R2 RtNdPt60;Realtek NDIS Protocol Driver; C:\Windows\system32\DRIVERS\RtNdPt60.sys [2009-07-20 27136]
R3 CompFilter64;UVCCompositeFilter; C:\Windows\system32\DRIVERS\lvbflt64.sys [2012-09-21 24608]
R3 dtlitescsibus;DAEMON Tools Lite Virtual SCSI Bus; C:\Windows\system32\DRIVERS\dtlitescsibus.sys [2017-11-09 30264]
R3 dtliteusbbus;DAEMON Tools Lite Virtual USB Bus; C:\Windows\system32\DRIVERS\dtliteusbbus.sys [2017-11-09 47672]
R3 gdrv;gdrv; \??\C:\Windows\gdrv.sys [2017-11-10 25640]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2012-06-19 4065296]
R3 LVRS64;Logitech RightSound Filter Driver; C:\Windows\system32\DRIVERS\lvrs64.sys [2012-09-21 351520]
R3 LVUVC64;Logitech HD Webcam C510(UVC); C:\Windows\system32\DRIVERS\lvuvc64.sys [2012-09-21 4763680]
R3 NVHDA;Service for NVIDIA High Definition Audio Driver; C:\Windows\system32\drivers\nvhda64v.sys [2017-10-27 225208]
R3 nvvad_WaveExtensible;NVIDIA Virtual Audio Device (Wave Extensible) (WDM); C:\Windows\system32\drivers\nvvad64v.sys [2017-10-11 50808]
R3 nvvhci;NVVHCI Enumerator Service; C:\Windows\system32\DRIVERS\nvvhci.sys [2017-10-11 57976]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2010-03-04 346144]
R3 xusb21;Xbox 360 Wireless Receiver Driver Service 21; C:\Windows\system32\DRIVERS\xusb21.sys [2009-08-21 79976]
S3 aswHwid;aswHwid; C:\Windows\system32\drivers\aswHwid.sys [2017-11-09 47008]
S3 etdrv;etdrv; \??\C:\Windows\etdrv.sys [2017-11-09 25640]
S3 GVTDrv64;GVTDrv64; \??\C:\Windows\GVTDrv64.sys [2017-11-09 30528]
S3 ManyCam;ManyCam Virtual Webcam; C:\Windows\system32\DRIVERS\mcvidrv.sys [2014-12-29 49304]
S3 mcaudrv_simple;ManyCam Virtual Microphone; C:\Windows\system32\drivers\mcaudrv_x64.sys [2014-12-29 35992]
S3 NvStreamKms;NVIDIA KMS; \??\C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [2017-10-11 30328]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2009-07-14 165376]
S3 RTTEAMPT;Realtek Teaming Protocol Driver (NDIS 6.0); C:\Windows\system32\DRIVERS\RtTeam60.sys [2009-12-21 51712]
S3 RTVLANPT;Realtek Vlan Protocol Driver (NDIS 6.2); C:\Windows\system32\DRIVERS\RtVlan60.sys [2007-12-03 24064]
S3 s3cap;s3cap; C:\Windows\system32\DRIVERS\vms3cap.sys [2009-07-14 6656]
S3 storvsc;storvsc; C:\Windows\system32\DRIVERS\storvsc.sys [2009-07-14 34896]
S3 TEAM;Realtek Virtual Miniport Driver for Teaming (NDIS 6.0); C:\Windows\system32\DRIVERS\RtTeam60.sys [2009-12-21 51712]
S3 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\Windows\system32\DRIVERS\vmbus.sys [2009-07-14 200272]
S3 VMBusHID;VMBusHID; C:\Windows\system32\DRIVERS\VMBusHID.sys [2009-07-14 21760]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 avast! Antivirus;Avast Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2017-11-09 281416]
R2 BCUService;Browser Configuration Utility Service; C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\BCUService.exe [2009-10-15 223464]
R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2012-07-09 104912]
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2012-07-08 123856]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 DES2 Service;DES2 Service for Energy Saving.; C:\Program Files (x86)\GIGABYTE\EnergySaver2\des2svr.exe [2009-06-17 68136]
R2 JMB36X;JMB36X; C:\Windows\SysWOW64\XSrvSetup.exe [2010-01-19 72304]
R2 NovaPdfServer;novaPDF Server; C:\Program Files\Softland\novaPDF 8\Server\novapdfs.exe [2017-08-16 53176]
R2 NvContainerLocalSystem;NVIDIA LocalSystem Container; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [2017-10-11 518264]
R2 NVDisplay.ContainerLocalSystem;NVIDIA Display Container LS; C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe [2017-10-27 462968]
R2 NvTelemetryContainer;NVIDIA Telemetry Container; C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe [2017-10-11 460920]
R2 Smart TimeLock;Smart TimeLock Service; C:\Program Files (x86)\GIGABYTE\Smart6\Timelock\TimeMgmtDaemon.exe [2009-10-13 114688]
R3 aswbIDSAgent;aswbIDSAgent; C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe [2017-11-09 7549928]
R3 Disc Soft Lite Bus Service;Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe [2017-08-14 2291904]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2017-11-08 153168]
S3 AppleChargerSrv;AppleChargerSrv; C:\Windows\system32\AppleChargerSrv.exe [2010-04-06 31272]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 27136]
S3 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2012-07-08 51648]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2017-11-08 153168]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-04 69632]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2017-10-25 194000]
S3 NvContainerNetworkService;NVIDIA NetworkService Container; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [2017-10-11 518264]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 StorSvc;@%SystemRoot%\System32\StorSvc.dll,-100; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2012-07-09 139696]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2012-07-09 139696]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2012-07-09 139696]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118271
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Preventivka po nové instalaci WIN

#2 Příspěvek od Rudy »

Zdravím!
Log vypadá OK.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

toox
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 274
Registrován: 28 dub 2008 18:06
Bydliště: Tromaville

Re: Preventivka po nové instalaci WIN

#3 Příspěvek od toox »

díky moc ;) LOCK

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118271
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Preventivka po nové instalaci WIN

#4 Příspěvek od Rudy »

Rádo se stalo! :)
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Zamčeno