Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Preventivní kontrola logu

Nemáte v tuto chvíli žádný problém s pc a chcete se jen ujistit, že je vše v pořádku?
Vložte log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Odpovědět
Zpráva
Autor
Novák Petr
Návštěvník
Návštěvník
Příspěvky: 12
Registrován: 14 říj 2003 21:43

Preventivní kontrola logu

#1 Příspěvek od Novák Petr »

Prosím o preventivní kontrolu logu.

Logfile of random's system information tool 1.10 (written by random/random)
Run by ireza at 2019-12-06 20:40:44
Microsoft Windows 10 Home
System drive C: has 905 GB (95%) free of 953 GB
Total RAM: 3973 MB (25% free)


======Listing Processes======








C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch -p -s PlugPlay
C:\WINDOWS\system32\svchost.exe -k DcomLaunch -p
"fontdrvhost.exe"
C:\WINDOWS\system32\svchost.exe -k RPCaSS -p
C:\WINDOWS\system32\svchost.exe -k DcomLaunch -p -s LSM
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted -s BTAGService
C:\WINDOWS\system32\svchost.exe -k LocalService -p -s bthserv
C:\WINDOWS\system32\svchost.exe -k LocalService -p -s BthAvctpSvc
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p -s NcbService
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted -p -s TimeBrokerSvc
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -p -s DisplayEnhancementService
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted -p -s EventLog
C:\WINDOWS\system32\svchost.exe -k LocalService -p -s nsi
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -p -s SysMain
C:\WINDOWS\System32\svchost.exe -k netsvcs -p -s Themes
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s ProfSvc
C:\WINDOWS\system32\svchost.exe -k LocalService -p -s EventSystem
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -p -s DeviceAssociationService

C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s SENS
C:\WINDOWS\System32\DriverStore\FileRepository\igdlh64.inf_amd64_57f66a4f0a97f1a3\igfxCUIService.exe
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted -p -s Dhcp
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s Schedule
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p -s AudioEndpointBuilder
C:\WINDOWS\system32\svchost.exe -k LocalService -p -s FontCache
C:\WINDOWS\system32\svchost.exe -k appmodel -p -s camsvc
C:\WINDOWS\system32\svchost.exe -k appmodel -p -s StateRepository
C:\WINDOWS\System32\svchost.exe -k NetworkService -p -s NlaSvc
C:\WINDOWS\system32\svchost.exe -k NetworkService -p -s Dnscache
C:\WINDOWS\System32\svchost.exe -k LocalService -p -s netprofm
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s UserManager
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted -p
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted -p
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted -p
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted -p -s WinHttpAutoProxySvc
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -p
C:\WINDOWS\System32\svchost.exe -k netsvcs -p -s ShellHWDetection
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetworkFirewall -p
C:\WINDOWS\System32\svchost.exe -k NetworkService -p -s LanmanWorkstation
C:\WINDOWS\System32\DriverStore\FileRepository\igdlh64.inf_amd64_57f66a4f0a97f1a3\IntelCpHDCPSvc.exe
C:\WINDOWS\System32\svchost.exe -k LocalServiceNoNetwork -p -s DPS
C:\WINDOWS\system32\svchost.exe -k NetworkService -p -s CryptSvc
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s Winmgmt
"C:\WINDOWS\system32\cAVS\Intel(R) Audio Service\IntelAudioService.exe"
"C:\Program Files (x86)\Bluetooth Suite\adminservice.exe"
C:\WINDOWS\System32\svchost.exe -k utcsvc -p
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s LanmanServer
"C:\Program Files\Norton Security\Engine\22.19.8.65\NortonSecurity.exe" /s "NortonSecurity" /m "C:\Program Files\Norton Security\Engine\22.19.8.65\diMaster.dll" /prefetch:1

C:\WINDOWS\system32\svchost.exe -k LocalService -p -s SstpSvc
C:\WINDOWS\system32\svchost.exe -k imgsvc
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork -p
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p -s TrkWks

C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s WpnService
C:\WINDOWS\System32\svchost.exe -k NetworkService -p -s TapiSrv
C:\WINDOWS\System32\svchost.exe -k NetSvcs -p -s iphlpsvc
C:\WINDOWS\System32\svchost.exe -k LocalService -p -s WdiServiceHost
C:\WINDOWS\System32\DriverStore\FileRepository\igdlh64.inf_amd64_57f66a4f0a97f1a3\IntelCpHeciSvc.exe
C:\WINDOWS\System32\svchost.exe -k netsvcs
C:\WINDOWS\system32\DllHost.exe /Processid:{3EB3C877-1F16-487C-9050-104DBCD66683}
C:\WINDOWS\system32\svchost.exe -k LocalService -p -s DispBrokerDesktopSvc

C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p -s Netman
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation -p -s SSDPSRV
C:\WINDOWS\system32\svchost.exe -k LocalService -p -s CDPSvc
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -p -s PcaSvc

C:\WINDOWS\system32\wbem\wmiprvse.exe

C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s UsoSvc
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p -s StorSvc
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Program Files (x86)\Google\Update\1.3.35.342\GoogleCrashHandler.exe"
"C:\Program Files (x86)\Google\Update\1.3.35.342\GoogleCrashHandler64.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"


C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s TokenBroker
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p -s TabletInputService
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted -p -s NgcCtnrSvc
"C:\Program Files\Acer\Acer Quick Access\QASvc.exe"
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s Appinfo
C:\WINDOWS\System32\svchost.exe -k LocalService -p -s LicenseManager
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted -s RmSvc
C:\WINDOWS\System32\svchost.exe -k netsvcs -p
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s lfsvc
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p -s DsSvc
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p -s WdiSystemHost
C:\WINDOWS\System32\svchost.exe -k netsvcs -p -s BITS
"C:\Program Files (x86)\WildTangent Games\Integration\WildTangentHelperService.exe"

C:\WINDOWS\System32\WinLogon.exe -SpecialSession
"fontdrvhost.exe"
"dwm.exe"
C:\Program Files (x86)\Citrix\ICA Client\ssonsvr.exe /HTC:480 /LUID:00000000013B8E35
sihost.exe
C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup -s CDPUserSvc
"C:\WINDOWS\System32\DriverStore\FileRepository\igdlh64.inf_amd64_57f66a4f0a97f1a3\igfxEM.exe"
C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup -s WpnUserService
taskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E}
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p -s cbdhsvc
"ctfmon.exe"
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -p -s NgcSvc
C:\WINDOWS\system32\DllHost.exe /Processid:{AB8902B4-09CA-4BB6-B78D-A8F59079A8D5}
"C:\WINDOWS\SystemApps\Microsoft.Windows.StartMenuExperienceHost_cw5n1h2txyewy\StartMenuExperienceHost.exe" -ServerName:App.AppXywbrabmsek0gm3tkwpr5kwzbs55tkqay.mca
C:\Windows\System32\RuntimeBroker.exe -Embedding
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.54.85.0_x64__kzf8qxf38zg5c\SkypeBackgroundHost.exe" -ServerName:SkypeBackgroundHost
C:\WINDOWS\system32\SettingSyncHost.exe -Embedding
"C:\WINDOWS\SystemApps\Microsoft.LockApp_cw5n1h2txyewy\LockApp.exe" -ServerName:WindowsDefaultLockScreen.AppX7y4nbzq37zn4ks9k7amqjywdat7d3j2z.mca
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\Program Files\Norton Security\Engine\22.19.8.65\NortonSecurity.exe" /c /a /s UserSession2
"C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe" -ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca
"C:\Program Files (x86)\Acer\Acer Collection\ACEMon.exe"
"C:\Windows\System32\SecurityHealthSystray.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Users\ireza\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
"C:\Program Files (x86)\Elektronicky_podpis\xcf\xcf.exe"
"C:\Program Files (x86)\Y Soft\SafeQ Client\Client\SafeQ Client.exe"
"C:\Program Files (x86)\Citrix\ICA Client\concentr.exe" /startup
"C:\Program Files (x86)\Citrix\ICA Client\redirector.exe" /startup
"C:\Program Files (x86)\Citrix\ICA Client\Receiver\Receiver.exe" -autoupdate -startplugins -disableshowcontrolpanel
"C:\PROGRAM FILES (X86)\CITRIX\ICA CLIENT\WFCRUN32.EXE" /HTC:480 -Embedding
"C:\Program Files\Acer\Acer Quick Access\QAAgent.exe"
"C:\Program Files\Acer\Acer Quick Access\QALockHandler.exe"
"C:\Program Files\Acer\Acer Quick Access\QAAdminAgent.exe"
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
"C:\WINDOWS\System32\DriverStore\FileRepository\igdlh64.inf_amd64_57f66a4f0a97f1a3\igfxext.exe" -Embedding
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
"C:\Users\ireza\AppData\Local\Host App Service\Engine\HostAppServiceUpdater.exe" /LOGON
C:\WINDOWS\system32\ApplicationFrameHost.exe -Embedding
"C:\Program Files\WindowsApps\Microsoft.WindowsStore_11911.1001.8.0_x64__8wekyb3d8bbwe\WinStore.App.exe" -ServerName:App.AppXc75wvwned5vhz4xyxxecvgdjhdkgsdza.mca
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\Program Files (x86)\Acer\Acer Collection\ACEStd.exe"
"C:\Program Files (x86)\Acer\Care Center\ACCStd.exe"
"C:\Program Files\Acer\Acer Quick Access\ePowerButton_NB.exe" -s
"C:\WINDOWS\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
C:\Windows\System32\RuntimeBroker.exe -Embedding
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted -p -s lmhosts
"C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.54.85.0_x64__kzf8qxf38zg5c\SkypeApp.exe" -ServerName:App.AppXffn3yxqvgawq9fpmnhy90fr3y01d1t5b.mca
"C:\Program Files\WindowsApps\Microsoft.YourPhone_1.19101.469.0_x64__8wekyb3d8bbwe\YourPhone.exe" -ServerName:App.AppX9yct9q388jvt4h7y0gn06smzkxcsnt8m.mca
C:\Windows\System32\RuntimeBroker.exe -Embedding
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=crashpad-handler "--user-data-dir=C:\Users\ireza\AppData\Local\Google\Chrome\User Data" /prefetch:7 --monitor-self-annotation=ptype=crashpad-handler "--database=C:\Users\ireza\AppData\Local\Google\Chrome\User Data\Crashpad" "--metrics-dir=C:\Users\ireza\AppData\Local\Google\Chrome\User Data" --url=https://clients2.google.com/cr/report --annotation=channel= --annotation=plat=Win64 --annotation=prod=Chrome --annotation=ver=78.0.3904.108 --initial-client-data=0x90,0x94,0x98,0x8c,0x9c,0x7fff4146ed58,0x7fff4146ed68,0x7fff4146ed78
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=watcher --main-thread-id=8028 --on-initialized-event-handle=156 --parent-handle=140 /prefetch:6
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --field-trial-handle=1544,16315692469734139858,4441912689578616811,131072 --gpu-preferences=KAAAAAAAAADgAAAwAAAAAAAAYAAAAAAAEAAAAAAAAAAAAAAAAAAAACgAAAAEAAAAIAAAAAAAAAAoAAAAAAAAADAAAAAAAAAAOAAAAAAAAAAQAAAAAAAAAAAAAAAFAAAAEAAAAAAAAAAAAAAABgAAABAAAAAAAAAAAQAAAAUAAAAQAAAAAAAAAAEAAAAGAAAA --service-request-channel-token=16524880315442600735 --mojo-platform-channel-handle=1536 --ignored=" --type=renderer " /prefetch:2
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=utility --field-trial-handle=1544,16315692469734139858,4441912689578616811,131072 --lang=cs --service-sandbox-type=network --service-request-channel-token=1583190406271319893 --mojo-platform-channel-handle=1800 /prefetch:8
C:\WINDOWS\system32\DllHost.exe /Processid:{973D20D7-562D-44B9-B70B-5A0F49CCDF3F}
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --field-trial-handle=1544,16315692469734139858,4441912689578616811,131072 --lang=cs --disable-client-side-phishing-detection --enable-auto-reload --device-scale-factor=1.25 --num-raster-threads=2 --enable-main-frame-before-activation --service-request-channel-token=15473636568811181997 --renderer-client-id=17 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=4684 /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --field-trial-handle=1544,16315692469734139858,4441912689578616811,131072 --lang=cs --disable-client-side-phishing-detection --enable-auto-reload --device-scale-factor=1.25 --num-raster-threads=2 --enable-main-frame-before-activation --service-request-channel-token=11370940249610428253 --renderer-client-id=21 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=4844 /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --field-trial-handle=1544,16315692469734139858,4441912689578616811,131072 --lang=cs --disable-client-side-phishing-detection --enable-auto-reload --device-scale-factor=1.25 --num-raster-threads=2 --enable-main-frame-before-activation --service-request-channel-token=9580120582966521035 --renderer-client-id=24 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=4544 /prefetch:1
"C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.54.85.0_x64__kzf8qxf38zg5c\SkypeBridge\SkypeBridge.exe" /InvokerPRAID: App
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --field-trial-handle=1544,16315692469734139858,4441912689578616811,131072 --lang=cs --disable-client-side-phishing-detection --enable-auto-reload --device-scale-factor=1.25 --num-raster-threads=2 --enable-main-frame-before-activation --service-request-channel-token=11526286787794548905 --renderer-client-id=61 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=4536 /prefetch:1
"C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.19101.10711.0_x64__8wekyb3d8bbwe\Video.UI.exe" -ServerName:Microsoft.ZuneVideo.AppX758ya5sqdjd98rx6z7g95nw6jy7bqx9y.mca
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe"
"C:\WINDOWS\SystemApps\InputApp_cw5n1h2txyewy\WindowsInternal.ComposableShell.Experiences.TextInput.InputApp.exe" -ServerName:App.AppXagta193n5rpf7mheremt3yyfa1g555vc.mca
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --field-trial-handle=1544,16315692469734139858,4441912689578616811,131072 --lang=cs --disable-client-side-phishing-detection --enable-auto-reload --device-scale-factor=1.25 --num-raster-threads=2 --enable-main-frame-before-activation --service-request-channel-token=7221965481815303489 --renderer-client-id=68 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=6512 /prefetch:1
"C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe" /service
"C:\Program Files\Common Files\Microsoft Shared\ClickToRun\AppVShNotify.exe"
"C:\Program Files\Common Files\Microsoft Shared\ClickToRun\AppVShNotify.exe"
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --field-trial-handle=1544,16315692469734139858,4441912689578616811,131072 --lang=cs --disable-client-side-phishing-detection --enable-auto-reload --device-scale-factor=1.25 --num-raster-threads=2 --enable-main-frame-before-activation --service-request-channel-token=11928608610183926663 --renderer-client-id=78 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=6140 /prefetch:1
C:\WINDOWS\system32\msiexec.exe /V
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --field-trial-handle=1544,16315692469734139858,4441912689578616811,131072 --lang=cs --disable-client-side-phishing-detection --enable-auto-reload --device-scale-factor=1.25 --num-raster-threads=2 --enable-main-frame-before-activation --service-request-channel-token=10206014134628484397 --renderer-client-id=79 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=4124 /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --field-trial-handle=1544,16315692469734139858,4441912689578616811,131072 --lang=cs --disable-client-side-phishing-detection --enable-auto-reload --device-scale-factor=1.25 --num-raster-threads=2 --enable-main-frame-before-activation --service-request-channel-token=9202108558669300610 --renderer-client-id=80 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=6720 /prefetch:1
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s wlidsvc
C:\WINDOWS\system32\AUDIODG.EXE 0x46c
C:\WINDOWS\system32\SearchIndexer.exe /Embedding

"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --field-trial-handle=1544,16315692469734139858,4441912689578616811,131072 --lang=cs --disable-client-side-phishing-detection --enable-auto-reload --device-scale-factor=1.25 --num-raster-threads=2 --enable-main-frame-before-activation --service-request-channel-token=17630969452286358523 --renderer-client-id=82 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=1204 /prefetch:1
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe1_ Global\UsGthrCtrlFltPipeMssGthrPipe1 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 784 788 796 8192 792
C:\Windows\System32\smartscreen.exe -Embedding
"C:\Users\ireza\Downloads\RSITx64.exe"

=========Mozilla firefox=========

ProfilePath - C:\Users\ireza\AppData\Roaming\Mozilla\Firefox\Profiles\8ib03mc0.default

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Citrix.com/npican]
"Description"=Citrix ICA Client Plugin
"Path"=C:\Program Files (x86)\Citrix\ICA Client\npicaN.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.35.342\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.35.342\npGoogleUpdate3.dll


C:\Users\ireza\AppData\Roaming\Mozilla\Firefox\Profiles\8ib03mc0.default\extensions\
partnerdefaults@mozilla.com

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Skype for Business Browser Helper - C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2019-12-06 212480]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SecurityHealth"=C:\WINDOWS\system32\SecurityHealthSystray.exe [2019-03-19 84992]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2017-04-16 18368512]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"OneDrive"=C:\Users\ireza\AppData\Local\Microsoft\OneDrive\OneDrive.exe [2019-11-15 1585000]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"SafeQ Client"=C:\Program Files (x86)\Y Soft\SafeQ Client\Client\SafeQ Client.exe [2016-08-30 255256]
"ConnectionCenter"=C:\Program Files (x86)\Citrix\ICA Client\concentr.exe [2019-08-19 558552]
"Redirector"=C:\Program Files (x86)\Citrix\ICA Client\redirector.exe [2019-08-19 404952]
"SDTray"=C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe [2018-04-20 6788032]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Elektronicky_podpis.lnk - C:\Program Files (x86)\Elektronicky_podpis\xcf\xcf.exe

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AudioEndpointBuilder]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AudioSrv]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CBDHSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\HdAudAddService.Sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\HdAudBus.Sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iai2c.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SerCx2.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SpbCx.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\uefi.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\usbaudio.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E96C-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AudioEndpointBuilder]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AudioSrv]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CBDHSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\HdAudAddService.Sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\HdAudBus.Sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetSetupSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SerCx2.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SpbCx.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\uefi.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\usbaudio.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WinQuic]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E96C-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DSCAutomationHostEnabled"=2
"EnableFullTrustStartupTasks"=2
"EnableUwpStartupTasks"=2
"SupportFullTrustStartupTasks"=1
"SupportUwpStartupTasks"=1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe"="C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe:*:Enabled:Spybot - Search & Destroy tray access"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe"="C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe:*:Enabled:Spybot-S&D 2 Scanner Service"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe"="C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe:*:Enabled:Spybot-S&D 2 Updater"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe"="C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe:*:Enabled:Spybot-S&D 2 Background update service"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"aux"=wdmaud.drv
"midi"=wdmaud.drv
"midimapper"=midimap.dll
"mixer"=wdmaud.drv
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wave"=wdmaud.drv
"wavemapper"=msacm32.drv
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2019-12-06 20:40:44 ----D---- C:\rsit
2019-12-06 20:40:44 ----D---- C:\Program Files\trend micro
2019-12-06 20:29:31 ----D---- C:\Dokumenty z plochy
2019-12-06 20:21:26 ----A---- C:\WINDOWS\system32\sdnclean64.exe
2019-12-06 20:21:17 ----D---- C:\ProgramData\Spybot - Search & Destroy
2019-12-06 20:21:10 ----D---- C:\Program Files (x86)\Spybot - Search & Destroy 2
2019-11-26 10:01:13 ----A---- C:\WINDOWS\SYSWOW64\wmploc.DLL
2019-11-26 10:01:13 ----A---- C:\WINDOWS\SYSWOW64\wmp.dll
2019-11-26 10:01:13 ----A---- C:\WINDOWS\SYSWOW64\spwmp.dll
2019-11-26 10:01:13 ----A---- C:\WINDOWS\SYSWOW64\gnsdk_fp.dll
2019-11-26 10:01:13 ----A---- C:\WINDOWS\SYSWOW64\dxmasf.dll
2019-11-26 10:01:12 ----A---- C:\WINDOWS\SYSWOW64\cdp.dll
2019-11-26 10:01:12 ----A---- C:\WINDOWS\system32\Windows.UI.BioFeedback.dll
2019-11-26 10:01:10 ----A---- C:\WINDOWS\system32\cdp.dll
2019-11-26 10:00:41 ----A---- C:\WINDOWS\SYSWOW64\mfmp4srcsnk.dll
2019-11-26 10:00:41 ----A---- C:\WINDOWS\system32\DolbyDecMFT.dll
2019-11-26 10:00:40 ----A---- C:\WINDOWS\system32\HologramCompositor.dll
2019-11-26 10:00:39 ----A---- C:\WINDOWS\system32\Hydrogen.dll
2019-11-26 10:00:38 ----A---- C:\WINDOWS\system32\mfmp4srcsnk.dll
2019-11-26 10:00:38 ----A---- C:\WINDOWS\system32\mfcore.dll
2019-11-26 10:00:38 ----A---- C:\WINDOWS\system32\mf.dll
2019-11-26 10:00:32 ----A---- C:\WINDOWS\SYSWOW64\wscinterop.dll
2019-11-26 10:00:32 ----A---- C:\WINDOWS\SYSWOW64\Windows.Mirage.Internal.dll
2019-11-26 10:00:32 ----A---- C:\WINDOWS\SYSWOW64\tsgqec.dll
2019-11-26 10:00:32 ----A---- C:\WINDOWS\SYSWOW64\AcXtrnal.dll
2019-11-26 10:00:32 ----A---- C:\WINDOWS\SYSWOW64\AcLayers.dll
2019-11-26 10:00:32 ----A---- C:\WINDOWS\SYSWOW64\AcGenral.dll
2019-11-26 10:00:31 ----A---- C:\WINDOWS\SYSWOW64\mstscax.dll
2019-11-26 10:00:31 ----A---- C:\WINDOWS\SYSWOW64\msjet40.dll
2019-11-26 10:00:31 ----A---- C:\WINDOWS\SYSWOW64\msimsg.dll
2019-11-26 10:00:31 ----A---- C:\WINDOWS\SYSWOW64\msi.dll
2019-11-26 10:00:31 ----A---- C:\WINDOWS\SYSWOW64\iemigplugin.dll
2019-11-26 10:00:30 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2019-11-26 10:00:30 ----A---- C:\WINDOWS\SYSWOW64\Chakrathunk.dll
2019-11-26 10:00:30 ----A---- C:\WINDOWS\SYSWOW64\Chakradiag.dll
2019-11-26 10:00:29 ----A---- C:\WINDOWS\SYSWOW64\IndexedDbLegacy.dll
2019-11-26 10:00:29 ----A---- C:\WINDOWS\SYSWOW64\Chakra.dll
2019-11-26 10:00:28 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2019-11-26 10:00:27 ----A---- C:\WINDOWS\SYSWOW64\werui.dll
2019-11-26 10:00:27 ----A---- C:\WINDOWS\SYSWOW64\upnphost.dll
2019-11-26 10:00:27 ----A---- C:\WINDOWS\SYSWOW64\upnpcont.exe
2019-11-26 10:00:27 ----A---- C:\WINDOWS\SYSWOW64\udhisapi.dll
2019-11-26 10:00:27 ----A---- C:\WINDOWS\SYSWOW64\reg.exe
2019-11-26 10:00:27 ----A---- C:\WINDOWS\SYSWOW64\jscript.dll
2019-11-26 10:00:27 ----A---- C:\WINDOWS\SYSWOW64\edgehtml.dll
2019-11-26 10:00:27 ----A---- C:\WINDOWS\SYSWOW64\DWWIN.EXE
2019-11-26 10:00:25 ----A---- C:\WINDOWS\system32\wscinterop.dll
2019-11-26 10:00:25 ----A---- C:\WINDOWS\system32\tsgqec.dll
2019-11-26 10:00:25 ----A---- C:\WINDOWS\system32\DiagSvc.dll
2019-11-26 10:00:25 ----A---- C:\WINDOWS\system32\AcXtrnal.dll
2019-11-26 10:00:25 ----A---- C:\WINDOWS\system32\AcLayers.dll
2019-11-26 10:00:25 ----A---- C:\WINDOWS\system32\AcGenral.dll
2019-11-26 10:00:24 ----A---- C:\WINDOWS\system32\mstscax.dll
2019-11-26 10:00:24 ----A---- C:\WINDOWS\system32\msimsg.dll
2019-11-26 10:00:24 ----A---- C:\WINDOWS\system32\msi.dll
2019-11-26 10:00:23 ----A---- C:\WINDOWS\system32\iemigplugin.dll
2019-11-26 10:00:23 ----A---- C:\WINDOWS\system32\ieframe.dll
2019-11-26 10:00:23 ----A---- C:\WINDOWS\system32\Chakradiag.dll
2019-11-26 10:00:07 ----A---- C:\WINDOWS\system32\Chakrathunk.dll
2019-11-26 10:00:07 ----A---- C:\WINDOWS\system32\Chakra.dll
2019-11-26 10:00:06 ----A---- C:\WINDOWS\system32\IndexedDbLegacy.dll
2019-11-26 10:00:05 ----A---- C:\WINDOWS\system32\mshtml.dll
2019-11-26 10:00:03 ----A---- C:\WINDOWS\system32\werui.dll
2019-11-26 10:00:03 ----A---- C:\WINDOWS\system32\wercplsupport.dll
2019-11-26 10:00:03 ----A---- C:\WINDOWS\system32\jscript.dll
2019-11-26 10:00:03 ----A---- C:\WINDOWS\system32\edgehtml.dll
2019-11-26 10:00:03 ----A---- C:\WINDOWS\system32\DWWIN.EXE
2019-11-26 10:00:03 ----A---- C:\WINDOWS\HelpPane.exe
2019-11-26 10:00:02 ----A---- C:\WINDOWS\system32\WinHvPlatform.dll
2019-11-26 10:00:02 ----A---- C:\WINDOWS\system32\werconcpl.dll
2019-11-26 10:00:02 ----A---- C:\WINDOWS\system32\StorSvc.dll
2019-11-26 10:00:02 ----A---- C:\WINDOWS\system32\reg.exe
2019-11-26 10:00:00 ----A---- C:\WINDOWS\system32\securekernel.exe
2019-11-26 10:00:00 ----A---- C:\WINDOWS\system32\kdhvcom.dll
2019-11-26 10:00:00 ----A---- C:\WINDOWS\system32\hvloader.dll
2019-11-26 10:00:00 ----A---- C:\WINDOWS\system32\hvix64.exe
2019-11-26 10:00:00 ----A---- C:\WINDOWS\system32\hvhostsvc.dll
2019-11-26 10:00:00 ----A---- C:\WINDOWS\system32\hvax64.exe
2019-11-26 10:00:00 ----A---- C:\WINDOWS\system32\drivers\winhvr.sys
2019-11-26 09:59:59 ----A---- C:\WINDOWS\system32\upnphost.dll
2019-11-26 09:59:59 ----A---- C:\WINDOWS\system32\upnpcont.exe
2019-11-26 09:59:59 ----A---- C:\WINDOWS\system32\udhisapi.dll
2019-11-26 09:59:59 ----A---- C:\WINDOWS\system32\Microsoft.Graphics.Display.DisplayEnhancementService.dll
2019-11-26 09:59:59 ----A---- C:\WINDOWS\system32\drivers\hvservice.sys
2019-11-26 09:59:58 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.FileExplorer.dll
2019-11-26 09:59:58 ----A---- C:\WINDOWS\SYSWOW64\vbscript.dll
2019-11-26 09:59:58 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2019-11-26 09:59:57 ----A---- C:\WINDOWS\SYSWOW64\wincredui.dll
2019-11-26 09:59:57 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2019-11-26 09:59:57 ----A---- C:\WINDOWS\SYSWOW64\omadmapi.dll
2019-11-26 09:59:57 ----A---- C:\WINDOWS\SYSWOW64\msIso.dll
2019-11-26 09:59:57 ----A---- C:\WINDOWS\SYSWOW64\KBDJPN.DLL
2019-11-26 09:59:57 ----A---- C:\WINDOWS\SYSWOW64\kbd106.dll
2019-11-26 09:59:57 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2019-11-26 09:59:57 ----A---- C:\WINDOWS\SYSWOW64\gdi32full.dll
2019-11-26 09:59:57 ----A---- C:\WINDOWS\SYSWOW64\edgeIso.dll
2019-11-26 09:59:57 ----A---- C:\WINDOWS\SYSWOW64\cryptui.dll
2019-11-26 09:59:57 ----A---- C:\WINDOWS\SYSWOW64\CredProvDataModel.dll
2019-11-26 09:59:56 ----A---- C:\WINDOWS\SYSWOW64\winhttp.dll
2019-11-26 09:59:56 ----A---- C:\WINDOWS\SYSWOW64\wermgr.exe
2019-11-26 09:59:56 ----A---- C:\WINDOWS\SYSWOW64\WerFault.exe
2019-11-26 09:59:56 ----A---- C:\WINDOWS\SYSWOW64\weretw.dll
2019-11-26 09:59:56 ----A---- C:\WINDOWS\SYSWOW64\werdiagcontroller.dll
2019-11-26 09:59:56 ----A---- C:\WINDOWS\SYSWOW64\wer.dll
2019-11-26 09:59:56 ----A---- C:\WINDOWS\SYSWOW64\webio.dll
2019-11-26 09:59:56 ----A---- C:\WINDOWS\SYSWOW64\usp10.dll
2019-11-26 09:59:56 ----A---- C:\WINDOWS\SYSWOW64\netlogon.dll
2019-11-26 09:59:56 ----A---- C:\WINDOWS\SYSWOW64\lpk.dll
2019-11-26 09:59:56 ----A---- C:\WINDOWS\SYSWOW64\fontsub.dll
2019-11-26 09:59:56 ----A---- C:\WINDOWS\SYSWOW64\fontdrvhost.exe
2019-11-26 09:59:56 ----A---- C:\WINDOWS\SYSWOW64\Faultrep.dll
2019-11-26 09:59:56 ----A---- C:\WINDOWS\SYSWOW64\dtdump.exe
2019-11-26 09:59:56 ----A---- C:\WINDOWS\SYSWOW64\dciman32.dll
2019-11-26 09:59:56 ----A---- C:\WINDOWS\SYSWOW64\atmlib.dll
2019-11-26 09:59:55 ----A---- C:\WINDOWS\SYSWOW64\Wldap32.dll
2019-11-26 09:59:55 ----A---- C:\WINDOWS\SYSWOW64\WinTypes.dll
2019-11-26 09:59:55 ----A---- C:\WINDOWS\SYSWOW64\wincorlib.dll
2019-11-26 09:59:55 ----A---- C:\WINDOWS\SYSWOW64\tzres.dll
2019-11-26 09:59:55 ----A---- C:\WINDOWS\SYSWOW64\msv1_0.dll
2019-11-26 09:59:55 ----A---- C:\WINDOWS\SYSWOW64\crypt32.dll
2019-11-26 09:59:55 ----A---- C:\WINDOWS\SYSWOW64\combase.dll
2019-11-26 09:59:55 ----A---- C:\WINDOWS\SYSWOW64\aepic.dll
2019-11-26 09:59:54 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Protection.PlayReady.dll
2019-11-26 09:59:54 ----A---- C:\WINDOWS\SYSWOW64\win32u.dll
2019-11-26 09:59:54 ----A---- C:\WINDOWS\SYSWOW64\win32kfull.sys
2019-11-26 09:59:54 ----A---- C:\WINDOWS\SYSWOW64\win32k.sys
2019-11-26 09:59:54 ----A---- C:\WINDOWS\SYSWOW64\Utilman.exe
2019-11-26 09:59:54 ----A---- C:\WINDOWS\SYSWOW64\sethc.exe
2019-11-26 09:59:54 ----A---- C:\WINDOWS\SYSWOW64\Magnify.exe
2019-11-26 09:59:54 ----A---- C:\WINDOWS\SYSWOW64\EaseOfAccessDialog.exe
2019-11-26 09:59:54 ----A---- C:\WINDOWS\SYSWOW64\cmd.exe
2019-11-26 09:59:54 ----A---- C:\WINDOWS\SYSWOW64\AtBroker.exe
2019-11-26 09:59:54 ----A---- C:\WINDOWS\SYSWOW64\accessibilitycpl.dll
2019-11-26 09:59:53 ----A---- C:\WINDOWS\SYSWOW64\Windows.AI.MachineLearning.dll
2019-11-26 09:59:53 ----A---- C:\WINDOWS\SYSWOW64\user32.dll
2019-11-26 09:59:53 ----A---- C:\WINDOWS\SYSWOW64\OneCoreUAPCommonProxyStub.dll
2019-11-26 09:59:53 ----A---- C:\WINDOWS\SYSWOW64\fwpolicyiomgr.dll
2019-11-26 09:59:18 ----A---- C:\WINDOWS\SYSWOW64\wfapigp.dll
2019-11-26 09:59:18 ----A---- C:\WINDOWS\SYSWOW64\fwbase.dll
2019-11-26 09:59:18 ----A---- C:\WINDOWS\SYSWOW64\FirewallAPI.dll
2019-11-26 09:59:18 ----A---- C:\WINDOWS\SYSWOW64\AppXDeploymentClient.dll
2019-11-26 09:59:17 ----A---- C:\WINDOWS\SYSWOW64\windows.storage.dll
2019-11-26 09:59:17 ----A---- C:\WINDOWS\SYSWOW64\tquery.dll
2019-11-26 09:59:17 ----A---- C:\WINDOWS\SYSWOW64\SearchIndexer.exe
2019-11-26 09:59:17 ----A---- C:\WINDOWS\SYSWOW64\SearchFilterHost.exe
2019-11-26 09:59:17 ----A---- C:\WINDOWS\SYSWOW64\Search.ProtocolHandler.MAPI2.dll
2019-11-26 09:59:17 ----A---- C:\WINDOWS\SYSWOW64\mssvp.dll
2019-11-26 09:59:17 ----A---- C:\WINDOWS\SYSWOW64\mssrch.dll
2019-11-26 09:59:17 ----A---- C:\WINDOWS\SYSWOW64\mssprxy.dll
2019-11-26 09:59:17 ----A---- C:\WINDOWS\SYSWOW64\mssph.dll
2019-11-26 09:59:17 ----A---- C:\WINDOWS\SYSWOW64\LicenseManager.dll
2019-11-26 09:59:16 ----A---- C:\WINDOWS\SYSWOW64\Windows.Data.Pdf.dll
2019-11-26 09:59:16 ----A---- C:\WINDOWS\SYSWOW64\SearchProtocolHost.exe
2019-11-26 09:59:16 ----A---- C:\WINDOWS\SYSWOW64\mssitlb.dll
2019-11-26 09:59:16 ----A---- C:\WINDOWS\SYSWOW64\msscntrs.dll
2019-11-26 09:59:16 ----A---- C:\WINDOWS\SYSWOW64\DWrite.dll
2019-11-26 09:59:16 ----A---- C:\WINDOWS\SYSWOW64\ApiSetHost.AppExecutionAlias.dll
2019-11-26 09:59:16 ----A---- C:\WINDOWS\SYSWOW64\ActivationManager.dll
2019-11-26 09:59:14 ----A---- C:\WINDOWS\SYSWOW64\wscapi.dll
2019-11-26 09:59:14 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.dll
2019-11-26 09:59:14 ----A---- C:\WINDOWS\SYSWOW64\uxtheme.dll
2019-11-26 09:59:14 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
2019-11-26 09:59:14 ----A---- C:\WINDOWS\SYSWOW64\LaunchWinApp.exe
2019-11-26 09:59:14 ----A---- C:\WINDOWS\SYSWOW64\explorer.exe
2019-11-26 09:59:14 ----A---- C:\WINDOWS\SYSWOW64\dmvdsitf.dll
2019-11-26 09:59:13 ----A---- C:\WINDOWS\SYSWOW64\WpcWebFilter.dll
2019-11-26 09:59:13 ----A---- C:\WINDOWS\SYSWOW64\Wpc.dll
2019-11-26 09:59:13 ----A---- C:\WINDOWS\SYSWOW64\SpatialAudioLicenseSrv.exe
2019-11-26 09:59:13 ----A---- C:\WINDOWS\SYSWOW64\rpcrt4.dll
2019-11-26 09:59:13 ----A---- C:\WINDOWS\SYSWOW64\remoteaudioendpoint.dll
2019-11-26 09:59:13 ----A---- C:\WINDOWS\SYSWOW64\BTAGService.dll
2019-11-26 09:59:13 ----A---- C:\WINDOWS\SYSWOW64\AudioSes.dll
2019-11-26 09:59:13 ----A---- C:\WINDOWS\SYSWOW64\AUDIOKSE.dll
2019-11-26 09:59:13 ----A---- C:\WINDOWS\SYSWOW64\AudioEng.dll
2019-11-26 09:59:12 ----A---- C:\WINDOWS\system32\vbscript.dll
2019-11-26 09:59:12 ----A---- C:\WINDOWS\system32\SettingsHandlers_nt.dll
2019-11-26 09:59:12 ----A---- C:\WINDOWS\system32\RMapi.dll
2019-11-26 09:59:12 ----A---- C:\WINDOWS\system32\posetup.dll
2019-11-26 09:59:12 ----A---- C:\WINDOWS\system32\iphlpsvc.dll
2019-11-26 09:59:12 ----A---- C:\WINDOWS\system32\drivers\tunnel.sys
2019-11-26 09:58:36 ----A---- C:\WINDOWS\system32\AxInstUI.exe
2019-11-26 09:58:36 ----A---- C:\WINDOWS\system32\AxInstSv.dll
2019-11-26 09:58:35 ----A---- C:\WINDOWS\system32\WebRuntimeManager.dll
2019-11-26 09:58:35 ----A---- C:\WINDOWS\system32\urlmon.dll
2019-11-26 09:58:35 ----A---- C:\WINDOWS\system32\msIso.dll
2019-11-26 09:58:35 ----A---- C:\WINDOWS\system32\iertutil.dll
2019-11-26 09:58:35 ----A---- C:\WINDOWS\system32\gdi32full.dll
2019-11-26 09:58:35 ----A---- C:\WINDOWS\system32\edgeIso.dll
2019-11-26 09:58:34 ----A---- C:\WINDOWS\system32\wow64win.dll
2019-11-26 09:58:34 ----A---- C:\WINDOWS\system32\winlogon.exe
2019-11-26 09:58:34 ----A---- C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2019-11-26 09:58:34 ----A---- C:\WINDOWS\system32\wincredui.dll
2019-11-26 09:58:34 ----A---- C:\WINDOWS\system32\usp10.dll
2019-11-26 09:58:34 ----A---- C:\WINDOWS\system32\omadmapi.dll
2019-11-26 09:58:34 ----A---- C:\WINDOWS\system32\cryptui.dll
2019-11-26 09:58:34 ----A---- C:\WINDOWS\system32\CredProvDataModel.dll
2019-11-26 09:58:33 ----A---- C:\WINDOWS\SYSWOW64\winnsi.dll
2019-11-26 09:58:33 ----A---- C:\WINDOWS\SYSWOW64\nsi.dll
2019-11-26 09:58:33 ----A---- C:\WINDOWS\SYSWOW64\KernelBase.dll
2019-11-26 09:58:33 ----A---- C:\WINDOWS\system32\netlogon.dll
2019-11-26 09:58:33 ----A---- C:\WINDOWS\system32\lpk.dll
2019-11-26 09:58:33 ----A---- C:\WINDOWS\system32\fontsub.dll
2019-11-26 09:58:33 ----A---- C:\WINDOWS\system32\fontdrvhost.exe
2019-11-26 09:58:33 ----A---- C:\WINDOWS\system32\drivers\tcpip.sys
2019-11-26 09:58:33 ----A---- C:\WINDOWS\system32\drivers\FWPKCLNT.SYS
2019-11-26 09:58:33 ----A---- C:\WINDOWS\system32\dciman32.dll
2019-11-26 09:58:33 ----A---- C:\WINDOWS\system32\atmlib.dll
2019-11-26 09:58:32 ----A---- C:\WINDOWS\system32\winnsi.dll
2019-11-26 09:58:32 ----A---- C:\WINDOWS\system32\rpcrt4.dll
2019-11-26 09:58:32 ----A---- C:\WINDOWS\system32\nsisvc.dll
2019-11-26 09:58:32 ----A---- C:\WINDOWS\system32\nsi.dll
2019-11-26 09:58:32 ----A---- C:\WINDOWS\system32\KernelBase.dll
2019-11-26 09:58:32 ----A---- C:\WINDOWS\system32\drivers\nsiproxy.sys
2019-11-26 09:58:32 ----A---- C:\WINDOWS\system32\drivers\netio.sys
2019-11-26 09:58:32 ----A---- C:\WINDOWS\system32\drivers\msrpc.sys
2019-11-26 09:58:31 ----A---- C:\WINDOWS\system32\wersvc.dll
2019-11-26 09:58:31 ----A---- C:\WINDOWS\system32\WerFault.exe
2019-11-26 09:58:31 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2019-11-26 09:58:31 ----A---- C:\WINDOWS\system32\Faultrep.dll
2019-11-26 09:58:31 ----A---- C:\WINDOWS\system32\drivers\ntfs.sys
2019-11-26 09:58:31 ----A---- C:\WINDOWS\system32\drivers\mountmgr.sys
2019-11-26 09:58:30 ----A---- C:\WINDOWS\system32\winhttp.dll
2019-11-26 09:58:30 ----A---- C:\WINDOWS\system32\wermgr.exe
2019-11-26 09:58:30 ----A---- C:\WINDOWS\system32\weretw.dll
2019-11-26 09:58:30 ----A---- C:\WINDOWS\system32\werdiagcontroller.dll
2019-11-26 09:58:30 ----A---- C:\WINDOWS\system32\wer.dll
2019-11-26 09:58:30 ----A---- C:\WINDOWS\system32\utcutil.dll
2019-11-26 09:58:30 ----A---- C:\WINDOWS\system32\pacjsworker.exe
2019-11-26 09:58:30 ----A---- C:\WINDOWS\system32\diagtrack.dll
2019-11-26 09:58:29 ----A---- C:\WINDOWS\system32\Wldap32.dll
2019-11-26 09:58:29 ----A---- C:\WINDOWS\system32\WinTypes.dll
2019-11-26 09:58:29 ----A---- C:\WINDOWS\system32\wincorlib.dll
2019-11-26 09:58:29 ----A---- C:\WINDOWS\system32\webio.dll
2019-11-26 09:58:29 ----A---- C:\WINDOWS\system32\tzres.dll
2019-11-26 09:58:29 ----A---- C:\WINDOWS\system32\rpcss.dll
2019-11-26 09:58:29 ----A---- C:\WINDOWS\system32\profsvc.dll
2019-11-26 09:58:29 ----A---- C:\WINDOWS\system32\msv1_0.dll
2019-11-26 09:58:29 ----A---- C:\WINDOWS\system32\DeviceCensus.exe
2019-11-26 09:58:29 ----A---- C:\WINDOWS\system32\dcntel.dll
2019-11-26 09:58:29 ----A---- C:\WINDOWS\system32\crypt32.dll
2019-11-26 09:58:28 ----A---- C:\WINDOWS\system32\LaunchWinApp.exe
2019-11-26 09:58:28 ----A---- C:\WINDOWS\system32\combase.dll
2019-11-26 09:58:28 ----A---- C:\WINDOWS\system32\aepic.dll
2019-11-26 09:58:27 ----A---- C:\WINDOWS\system32\wsqmcons.exe
2019-11-26 09:58:27 ----A---- C:\WINDOWS\system32\uxtheme.dll
2019-11-26 09:58:27 ----A---- C:\WINDOWS\system32\twinui.dll
2019-11-26 09:58:27 ----A---- C:\WINDOWS\system32\sppobjs.dll
2019-11-26 09:58:27 ----A---- C:\WINDOWS\system32\SppExtComObj.Exe
2019-11-26 09:58:25 ----A---- C:\WINDOWS\system32\uDWM.dll
2019-11-26 09:58:25 ----A---- C:\WINDOWS\system32\shell32.dll
2019-11-26 09:58:25 ----A---- C:\WINDOWS\system32\drivers\refs.sys
2019-11-26 09:58:25 ----A---- C:\WINDOWS\system32\drivers\cldflt.sys
2019-11-26 09:58:25 ----A---- C:\WINDOWS\system32\AppLockerCSP.dll
2019-11-26 09:58:25 ----A---- C:\WINDOWS\system32\appidtel.exe
2019-11-26 09:58:24 ----A---- C:\WINDOWS\system32\Win32CompatibilityAppraiserCSP.dll
2019-11-26 09:58:24 ----A---- C:\WINDOWS\system32\srpapi.dll
2019-11-26 09:58:24 ----A---- C:\WINDOWS\system32\generaltel.dll
2019-11-26 09:58:24 ----A---- C:\WINDOWS\system32\drivers\applockerfltr.sys
2019-11-26 09:58:24 ----A---- C:\WINDOWS\system32\drivers\appid.sys
2019-11-26 09:58:24 ----A---- C:\WINDOWS\system32\devinv.dll
2019-11-26 09:58:24 ----A---- C:\WINDOWS\system32\CompatTelRunner.exe
2019-11-26 09:58:24 ----A---- C:\WINDOWS\system32\appraiser.dll
2019-11-26 09:58:24 ----A---- C:\WINDOWS\system32\acmigration.dll
2019-11-26 09:58:23 ----A---- C:\WINDOWS\system32\win32appinventorycsp.dll
2019-11-26 09:58:23 ----A---- C:\WINDOWS\system32\pcasvc.dll
2019-11-26 09:58:23 ----A---- C:\WINDOWS\system32\pcalua.exe
2019-11-26 09:58:23 ----A---- C:\WINDOWS\system32\pcaevts.dll
2019-11-26 09:58:23 ----A---- C:\WINDOWS\system32\pcadm.dll
2019-11-26 09:58:23 ----A---- C:\WINDOWS\system32\invagent.dll
2019-11-26 09:58:23 ----A---- C:\WINDOWS\system32\aitstatic.exe
2019-11-26 09:58:23 ----A---- C:\WINDOWS\system32\aeinv.dll
2019-11-26 09:58:06 ----A---- C:\WINDOWS\system32\Utilman.exe
2019-11-26 09:58:06 ----A---- C:\WINDOWS\system32\tier2punctuations.dll
2019-11-26 09:58:06 ----A---- C:\WINDOWS\system32\SRH.dll
2019-11-26 09:58:06 ----A---- C:\WINDOWS\system32\EaseOfAccessDialog.exe
2019-11-26 09:58:05 ----A---- C:\WINDOWS\system32\sethc.exe
2019-11-26 09:58:05 ----A---- C:\WINDOWS\system32\osk.exe
2019-11-26 09:58:05 ----A---- C:\WINDOWS\system32\Narrator.exe
2019-11-26 09:58:05 ----A---- C:\WINDOWS\system32\Magnify.exe
2019-11-26 09:58:05 ----A---- C:\WINDOWS\system32\AtBroker.exe
2019-11-26 09:58:05 ----A---- C:\WINDOWS\system32\accessibilitycpl.dll
2019-11-26 09:58:04 ----A---- C:\WINDOWS\system32\DevicesFlowBroker.dll
2019-11-26 09:58:01 ----A---- C:\WINDOWS\system32\twinui.pcshell.dll
2019-11-26 09:58:01 ----A---- C:\WINDOWS\system32\SystemSettingsThresholdAdminFlowUI.dll
2019-11-26 09:58:00 ----A---- C:\WINDOWS\system32\vss_ps.dll
2019-11-26 09:58:00 ----A---- C:\WINDOWS\system32\usosvc.dll
2019-11-26 09:58:00 ----A---- C:\WINDOWS\system32\usocoreworker.exe
2019-11-26 09:58:00 ----A---- C:\WINDOWS\system32\SystemSettingsAdminFlows.exe
2019-11-26 09:58:00 ----A---- C:\WINDOWS\system32\MusUpdateHandlers.dll
2019-11-26 09:58:00 ----A---- C:\WINDOWS\system32\MusNotificationUx.exe
2019-11-26 09:58:00 ----A---- C:\WINDOWS\system32\MusNotification.exe
2019-11-26 09:57:59 ----A---- C:\WINDOWS\system32\SettingsHandlers_SpeechPrivacy.dll
2019-11-26 09:57:59 ----A---- C:\WINDOWS\system32\policymanagerprecheck.dll
2019-11-26 09:57:59 ----A---- C:\WINDOWS\system32\NetworkMobileSettings.dll
2019-11-26 09:57:59 ----A---- C:\WINDOWS\system32\cmd.exe
2019-11-26 09:57:58 ----A---- C:\WINDOWS\system32\wpnprv.dll
2019-11-26 09:57:58 ----A---- C:\WINDOWS\system32\win32u.dll
2019-11-26 09:57:58 ----A---- C:\WINDOWS\system32\win32kfull.sys
2019-11-26 09:57:58 ----A---- C:\WINDOWS\system32\win32k.sys
2019-11-26 09:57:58 ----A---- C:\WINDOWS\system32\wfapigp.dll
2019-11-26 09:57:58 ----A---- C:\WINDOWS\system32\user32.dll
2019-11-26 09:57:58 ----A---- C:\WINDOWS\system32\icfupgd.dll
2019-11-26 09:57:58 ----A---- C:\WINDOWS\system32\fwpolicyiomgr.dll
2019-11-26 09:57:58 ----A---- C:\WINDOWS\system32\fwbase.dll
2019-11-26 09:57:58 ----A---- C:\WINDOWS\system32\FirewallAPI.dll
2019-11-26 09:57:57 ----A---- C:\WINDOWS\system32\windows.storage.dll
2019-11-26 09:57:57 ----A---- C:\WINDOWS\system32\MPSSVC.dll
2019-11-26 09:57:57 ----A---- C:\WINDOWS\system32\AppXDeploymentClient.dll
2019-11-26 09:57:56 ----A---- C:\WINDOWS\system32\LicenseManager.dll
2019-11-26 09:57:55 ----A---- C:\WINDOWS\system32\tquery.dll
2019-11-26 09:57:55 ----A---- C:\WINDOWS\system32\Search.ProtocolHandler.MAPI2.dll
2019-11-26 09:57:55 ----A---- C:\WINDOWS\system32\mssvp.dll
2019-11-26 09:57:55 ----A---- C:\WINDOWS\system32\mssrch.dll
2019-11-26 09:57:55 ----A---- C:\WINDOWS\system32\mssprxy.dll
2019-11-26 09:57:55 ----A---- C:\WINDOWS\system32\mssph.dll
2019-11-26 09:57:54 ----A---- C:\WINDOWS\system32\SearchProtocolHost.exe
2019-11-26 09:57:54 ----A---- C:\WINDOWS\system32\SearchIndexer.exe
2019-11-26 09:57:54 ----A---- C:\WINDOWS\system32\SearchFilterHost.exe
2019-11-26 09:57:54 ----A---- C:\WINDOWS\system32\mssitlb.dll
2019-11-26 09:57:54 ----A---- C:\WINDOWS\system32\msscntrs.dll
2019-11-26 09:57:54 ----A---- C:\WINDOWS\system32\FntCache.dll
2019-11-26 09:57:54 ----A---- C:\WINDOWS\system32\EdgeContent.dll
2019-11-26 09:57:54 ----A---- C:\WINDOWS\system32\DWrite.dll
2019-11-26 09:57:39 ----A---- C:\WINDOWS\system32\wups2.dll
2019-11-26 09:57:39 ----A---- C:\WINDOWS\system32\wuaueng.dll
2019-11-26 09:57:39 ----A---- C:\WINDOWS\system32\wuauclt.exe
2019-11-26 09:57:39 ----A---- C:\WINDOWS\system32\UpdateDeploymentProvider.dll
2019-11-26 09:57:38 ----A---- C:\WINDOWS\system32\win32kbase.sys
2019-11-26 09:57:38 ----A---- C:\WINDOWS\system32\SettingsHandlers_CapabilityAccess.dll
2019-11-26 09:57:38 ----A---- C:\WINDOWS\system32\drivers\dxgmms2.sys
2019-11-26 09:57:38 ----A---- C:\WINDOWS\system32\drivers\dxgmms1.sys
2019-11-26 09:57:38 ----A---- C:\WINDOWS\system32\drivers\dxgkrnl.sys
2019-11-26 09:57:38 ----A---- C:\WINDOWS\system32\cdd.dll
2019-11-26 09:57:37 ----A---- C:\WINDOWS\system32\Windows.AI.MachineLearning.dll
2019-11-26 09:57:37 ----A---- C:\WINDOWS\system32\OneCoreUAPCommonProxyStub.dll
2019-11-26 09:57:37 ----A---- C:\WINDOWS\system32\ClipSVC.dll
2019-11-26 09:57:37 ----A---- C:\WINDOWS\system32\ActivationManager.dll
2019-11-26 09:57:36 ----A---- C:\WINDOWS\system32\Windows.Data.Pdf.dll
2019-11-26 09:57:36 ----A---- C:\WINDOWS\system32\Windows.CloudStore.dll
2019-11-26 09:57:36 ----A---- C:\WINDOWS\system32\dstokenclean.exe
2019-11-26 09:57:36 ----A---- C:\WINDOWS\system32\dssvc.dll
2019-11-26 09:57:36 ----A---- C:\WINDOWS\system32\ApiSetHost.AppExecutionAlias.dll
2019-11-26 09:57:35 ----A---- C:\WINDOWS\system32\CustomInstallExec.exe
2019-11-26 09:57:35 ----A---- C:\WINDOWS\system32\cdpusersvc.dll
2019-11-26 09:57:35 ----A---- C:\WINDOWS\system32\cdpsvc.dll
2019-11-26 09:57:35 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2019-11-26 09:57:35 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
2019-11-26 09:57:35 ----A---- C:\WINDOWS\system32\AppXApplicabilityBlob.dll
2019-11-26 09:57:35 ----A---- C:\WINDOWS\system32\ApplyTrustOffline.exe
2019-11-26 09:57:34 ----A---- C:\WINDOWS\system32\AppXDeploymentServer.dll
2019-11-26 09:57:33 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.dll
2019-11-26 09:57:32 ----A---- C:\WINDOWS\system32\vdsbas.dll
2019-11-26 09:57:32 ----A---- C:\WINDOWS\system32\dmvdsitf.dll
2019-11-26 09:57:31 ----A---- C:\WINDOWS\system32\StartTileData.dll
2019-11-26 09:57:30 ----A---- C:\WINDOWS\system32\wscsvc.dll
2019-11-26 09:57:30 ----A---- C:\WINDOWS\system32\wscproxystub.dll
2019-11-26 09:57:30 ----A---- C:\WINDOWS\system32\wscisvif.dll
2019-11-26 09:57:30 ----A---- C:\WINDOWS\system32\wscapi.dll
2019-11-26 09:57:30 ----A---- C:\WINDOWS\system32\wscadminui.exe
2019-11-26 09:57:30 ----A---- C:\WINDOWS\system32\WpcMon.exe
2019-11-26 09:57:30 ----A---- C:\WINDOWS\system32\Wpc.dll
2019-11-26 09:57:30 ----A---- C:\WINDOWS\system32\UtcDecoderHost.exe
2019-11-26 09:57:30 ----A---- C:\WINDOWS\system32\TpmTasks.dll
2019-11-26 09:57:30 ----A---- C:\WINDOWS\system32\spoolsv.exe
2019-11-26 09:57:30 ----A---- C:\WINDOWS\splwow64.exe
2019-11-26 09:57:30 ----A---- C:\WINDOWS\explorer.exe
2019-11-26 09:57:29 ----A---- C:\WINDOWS\system32\WpcWebFilter.dll
2019-11-26 09:57:29 ----A---- C:\WINDOWS\system32\WpcTok.exe
2019-11-26 09:57:29 ----A---- C:\WINDOWS\system32\WpcRefreshTask.dll
2019-11-26 09:57:29 ----A---- C:\WINDOWS\system32\WpcDesktopMonSvc.dll
2019-11-26 09:57:29 ----A---- C:\WINDOWS\system32\drivers\winnat.sys
2019-11-26 09:57:29 ----A---- C:\WINDOWS\system32\audioresourceregistrar.dll
2019-11-26 09:57:29 ----A---- C:\WINDOWS\system32\AUDIOKSE.dll
2019-11-26 09:57:28 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.ConversationalAgent.dll
2019-11-26 09:57:28 ----A---- C:\WINDOWS\system32\SpatialAudioLicenseSrv.exe
2019-11-26 09:57:28 ----A---- C:\WINDOWS\system32\remoteaudioendpoint.dll
2019-11-26 09:57:28 ----A---- C:\WINDOWS\system32\audiosrv.dll
2019-11-26 09:57:28 ----A---- C:\WINDOWS\system32\AudioSes.dll
2019-11-26 09:57:28 ----A---- C:\WINDOWS\system32\AudioEng.dll
2019-11-26 09:57:28 ----A---- C:\WINDOWS\system32\AudioEndpointBuilder.dll
2019-11-26 09:57:28 ----A---- C:\WINDOWS\system32\audiodg.exe
2019-11-26 09:57:28 ----A---- C:\WINDOWS\system32\agentactivationruntime.dll
2019-11-26 09:57:28 ----A---- C:\WINDOWS\system32\AarSvc.dll
2019-11-26 09:57:27 ----A---- C:\WINDOWS\system32\WindowsManagementServiceWinRt.ProxyStub.dll
2019-11-26 09:57:27 ----A---- C:\WINDOWS\system32\Windows.Management.Service.dll
2019-11-26 09:57:27 ----A---- C:\WINDOWS\system32\Windows.Management.EnrollmentStatusTracking.ConfigProvider.dll
2019-11-26 09:57:27 ----A---- C:\WINDOWS\system32\Microsoft.Bluetooth.UserService.dll
2019-11-26 09:57:27 ----A---- C:\WINDOWS\system32\drivers\MbbCx.sys
2019-11-26 09:57:27 ----A---- C:\WINDOWS\system32\BTAGService.dll
2019-11-26 09:57:27 ----A---- C:\WINDOWS\system32\autopilotdiag.dll
2019-11-26 09:57:27 ----A---- C:\WINDOWS\system32\autopilot.dll
2019-11-26 09:57:27 ----A---- C:\WINDOWS\system32\ApplicationControlCSP.dll
2019-11-26 09:57:27 ----A---- C:\WINDOWS\system32\agentactivationruntimewindows.dll
2019-11-26 09:57:26 ----A---- C:\WINDOWS\system32\iscsilog.dll
2019-11-26 09:57:26 ----A---- C:\WINDOWS\system32\drivers\Vid.sys
2019-11-26 09:57:26 ----A---- C:\WINDOWS\system32\drivers\spacedump.sys
2019-11-26 09:57:26 ----A---- C:\WINDOWS\system32\drivers\msiscsi.sys
2019-11-26 09:57:26 ----A---- C:\WINDOWS\system32\drivers\BTHUSB.SYS
2019-11-26 09:57:26 ----A---- C:\WINDOWS\system32\drivers\bthport.sys
2019-11-26 09:57:26 ----A---- C:\WINDOWS\system32\drivers\BthMini.SYS
2019-11-26 09:57:26 ----A---- C:\WINDOWS\system32\drivers\bthenum.sys
2019-11-26 09:57:25 ----A---- C:\WINDOWS\system32\drivers\spaceport.sys
2019-11-26 09:17:47 ----A---- C:\WINDOWS\system32\poqexec.exe
2019-11-26 09:17:42 ----A---- C:\WINDOWS\SYSWOW64\poqexec.exe

======List of files/folders modified in the last 1 month======

2019-12-06 20:40:47 ----D---- C:\WINDOWS\Prefetch
2019-12-06 20:40:44 ----RD---- C:\Program Files
2019-12-06 20:39:32 ----D---- C:\WINDOWS\INF
2019-12-06 20:38:37 ----D---- C:\WINDOWS\Temp
2019-12-06 20:38:33 ----SHD---- C:\WINDOWS\Installer
2019-12-06 20:38:31 ----D---- C:\ProgramData\regid.1991-06.com.microsoft
2019-12-06 20:38:09 ----RD---- C:\WINDOWS\Microsoft.NET
2019-12-06 20:36:10 ----AD---- C:\Program Files (x86)\Microsoft Office
2019-12-06 20:22:02 ----D---- C:\WINDOWS\system32\Tasks
2019-12-06 20:22:01 ----SHD---- C:\System Volume Information
2019-12-06 20:21:38 ----SD---- C:\ProgramData\Microsoft
2019-12-06 20:21:26 ----D---- C:\WINDOWS\System32
2019-12-06 20:21:17 ----HD---- C:\ProgramData
2019-12-06 20:21:10 ----RD---- C:\Program Files (x86)
2019-12-06 20:07:40 ----D---- C:\WINDOWS\system32\sru
2019-12-05 16:17:57 ----D---- C:\WINDOWS\AppReadiness
2019-11-29 13:56:31 ----D---- C:\WINDOWS\system32\WDI
2019-11-29 13:54:36 ----D---- C:\WINDOWS\system32\config
2019-11-29 13:49:22 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2019-11-29 13:48:07 ----HD---- C:\Program Files\WindowsApps
2019-11-29 13:47:37 ----D---- C:\WINDOWS\WinSxS
2019-11-29 13:42:59 ----D---- C:\WINDOWS\system32\DriverStore
2019-11-29 13:41:55 ----D---- C:\WINDOWS\system32\drivers
2019-11-26 16:33:00 ----D---- C:\WINDOWS\SYSWOW64\migration
2019-11-26 16:33:00 ----D---- C:\WINDOWS\SYSWOW64\en-US
2019-11-26 16:33:00 ----D---- C:\WINDOWS\SYSWOW64\cs-CZ
2019-11-26 16:33:00 ----D---- C:\WINDOWS\SysWOW64
2019-11-26 16:32:52 ----D---- C:\WINDOWS\SystemResources
2019-11-26 16:32:48 ----D---- C:\WINDOWS\system32\wbem
2019-11-26 16:32:48 ----D---- C:\WINDOWS\system32\ru-RU
2019-11-26 16:32:48 ----D---- C:\WINDOWS\system32\ro-RO
2019-11-26 16:32:48 ----D---- C:\WINDOWS\system32\pt-PT
2019-11-26 16:32:48 ----D---- C:\WINDOWS\system32\pl-PL
2019-11-26 16:32:48 ----D---- C:\WINDOWS\system32\nl-NL
2019-11-26 16:32:48 ----D---- C:\WINDOWS\system32\migration
2019-11-26 16:32:48 ----D---- C:\WINDOWS\system32\en-US
2019-11-26 16:32:48 ----D---- C:\WINDOWS\system32\en-GB
2019-11-26 16:32:47 ----D---- C:\WINDOWS\system32\el-GR
2019-11-26 16:32:47 ----D---- C:\WINDOWS\system32\drivers\en-US
2019-11-26 16:32:47 ----D---- C:\WINDOWS\system32\drivers\cs-CZ
2019-11-26 16:32:47 ----D---- C:\WINDOWS\system32\cs-CZ
2019-11-26 16:32:46 ----D---- C:\WINDOWS\system32\Boot
2019-11-26 16:32:46 ----D---- C:\WINDOWS\system32\ar-SA
2019-11-26 16:32:46 ----D---- C:\WINDOWS\system32\appraiser
2019-11-26 16:32:36 ----RD---- C:\WINDOWS\PrintDialog
2019-11-26 16:32:36 ----RD---- C:\WINDOWS\ImmersiveControlPanel
2019-11-26 16:32:36 ----D---- C:\WINDOWS\ShellExperiences
2019-11-26 16:32:36 ----D---- C:\WINDOWS\ShellComponents
2019-11-26 16:32:36 ----D---- C:\WINDOWS\PolicyDefinitions
2019-11-26 16:32:35 ----D---- C:\WINDOWS\DiagTrack
2019-11-26 16:32:35 ----D---- C:\WINDOWS\bcastdvr
2019-11-26 16:32:35 ----D---- C:\WINDOWS\apppatch
2019-11-26 16:32:35 ----D---- C:\Windows
2019-11-26 16:32:35 ----D---- C:\Program Files (x86)\Windows Media Player
2019-11-26 15:09:54 ----D---- C:\WINDOWS\system32\SleepStudy
2019-11-26 13:11:40 ----D---- C:\WINDOWS\system32\LogFiles
2019-11-26 10:17:25 ----D---- C:\WINDOWS\system32\MRT
2019-11-26 10:17:17 ----AC---- C:\WINDOWS\system32\MRT.exe
2019-11-26 10:16:45 ----D---- C:\WINDOWS\CbsTemp
2019-11-26 09:47:39 ----D---- C:\WINDOWS\system32\catroot2
2019-11-26 09:07:09 ----D---- C:\WINDOWS\Logs
2019-11-20 08:55:33 ----N---- C:\WINDOWS\system32\MpSigStub.exe
2019-11-17 21:51:21 ----RD---- C:\WINDOWS\assembly
2019-11-12 11:00:04 ----D---- C:\ProgramData\Packages
2019-11-11 09:29:38 ----D---- C:\Program Files (x86)\Google
2019-11-11 09:29:00 ----D---- C:\fotky auta

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 iaStorAC;@oem45.inf,%iaStorAC.DeviceDesc%;Intel(R) Chipset SATA/PCIe RST Premium Controller; C:\WINDOWS\System32\drivers\iaStorAC.sys [2018-12-24 1016496]
R0 iorate;@%SystemRoot%\system32\drivers\iorate.sys,-101; C:\WINDOWS\system32\drivers\iorate.sys [2019-03-19 56632]
R0 SgrmAgent;@%SystemRoot%\System32\Drivers\SgrmAgent.sys,-1001; C:\WINDOWS\system32\drivers\SgrmAgent.sys [2019-03-19 89096]
R1 afunix;afunix; C:\WINDOWS\system32\drivers\afunix.sys [2019-03-19 40960]
R1 bam;@%SystemRoot%\system32\drivers\bam.sys,-100; C:\WINDOWS\system32\drivers\bam.sys [2019-03-19 70456]
R1 ccSet_NGC;NGC Settings Manager; C:\WINDOWS\System32\drivers\NGCx64\1613080.041\ccSetx64.sys [2019-09-11 194416]
R1 ctxusbm;Citrix USB Monitor Driver; C:\WINDOWS\system32\DRIVERS\ctxusbm.sys [2019-08-19 140192]
R1 eeCtrl;Symantec Eraser Control driver; \??\C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys [2018-10-10 515776]
R1 FileCrypt;@%systemroot%\system32\drivers\filecrypt.sys,-100; C:\WINDOWS\system32\drivers\filecrypt.sys [2019-03-19 59392]
R1 GpuEnergyDrv;@%SystemRoot%\system32\drivers\gpuenergydrv.sys,-100; C:\WINDOWS\System32\drivers\gpuenergydrv.sys [2019-03-19 8704]
R1 IDSVia64;IDSVia64; \??\C:\Program Files\Norton Security\NortonData\22.9.2.3\Definitions\IPSDefs\20181009.061\IDSvia64.sys [2018-10-09 1305072]
R2 CldFlt;Windows Cloud Files Filter Driver; C:\WINDOWS\system32\drivers\cldflt.sys [2019-11-26 457216]
R2 MMCSS;@%systemroot%\system32\drivers\mmcss.sys,-100; C:\WINDOWS\system32\drivers\mmcss.sys [2019-03-19 53760]
R3 bindflt;@%systemroot%\system32\drivers\bindflt.sys,-100; C:\WINDOWS\system32\drivers\bindflt.sys [2019-10-15 117048]
R3 BtFilter;BtFilter; C:\WINDOWS\system32\DRIVERS\btfilter.sys [2017-04-24 605616]
R3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Služba Bluetooth Enumerator; C:\WINDOWS\System32\drivers\BthEnum.sys [2019-11-26 114688]
R3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Bluetooth Low Energy Driver; C:\WINDOWS\System32\drivers\Microsoft.Bluetooth.Legacy.LEEnumerator.sys [2019-03-19 97280]
R3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Bluetooth Device (Personal Area Network); C:\WINDOWS\System32\drivers\bthpan.sys [2019-03-19 133120]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Ovladač rozhraní USB radiostanice Bluetooth; C:\WINDOWS\System32\drivers\BTHUSB.sys [2019-11-26 98304]
R3 CAD;@ChargeArbitration.inf,%CAD_DevDesc%;Charge Arbitration Driver; C:\WINDOWS\System32\drivers\CAD.sys [2019-03-19 64312]
R3 EraserUtilRebootDrv;EraserUtilRebootDrv; \??\C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [2018-10-30 153280]
R3 iaLPSS2i_I2C;@iaLPSS2i_I2C_SKL.inf,%iaLPSS2i_I2C.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [2019-03-19 171520]
R3 igfx;igfx; C:\WINDOWS\System32\DriverStore\FileRepository\igdlh64.inf_amd64_57f66a4f0a97f1a3\igdkmd64.sys [2018-12-19 15448312]
R3 IntcAudioBus;@oem17.inf,%IntcAudioBus.SVCDESC%;Sběrnice technologie Intel(R) Smart Sound; C:\WINDOWS\System32\drivers\IntcAudioBus.sys [2017-08-04 237144]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RTKVHD64.sys [2017-04-16 5710848]
R3 IntcDAud;@oem36.inf,%IntcAud.SvcDesc%;Intel(R) Display Audio; C:\WINDOWS\System32\DriverStore\FileRepository\intcdaud.inf_amd64_ad5691824a5386fe\IntcDAud.sys [2018-12-19 631048]
R3 IntcOED;@oem9.inf,%IntcOED.SVCDESC%;Technologie Intel(R) Smart Sound OED; C:\WINDOWS\System32\drivers\IntcOED.sys [2017-08-04 757848]
R3 LMDriver;@oem16.inf,%LMDriver.SVCDESC%;Launch Manager Wireless Driver; C:\WINDOWS\System32\drivers\LMDriver.sys [2018-05-15 31000]
R3 MEIx64;@oem13.inf,%TEE_SvcDesc%;Intel(R) Management Engine Interface ; C:\WINDOWS\System32\drivers\TeeDriverW8x64.sys [2017-10-17 206496]
R3 Qcamain10x64;@oem1.inf,%ATHR.Service.DispName%;Qualcomm Atheros Extensible Wireless LAN 11AC device driver; C:\WINDOWS\System32\drivers\Qcamain10x64.sys [2018-08-29 2360048]
R3 RadioShim;@oem16.inf,%RadioShim.SVCDESC%;Shim for HID-KMDF Interface layer; C:\WINDOWS\System32\drivers\RadioShim.sys [2018-05-15 25368]
R3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Bluetooth Device (RFCOMM Protocol TDI); C:\WINDOWS\System32\drivers\rfcomm.sys [2019-03-19 211456]
R3 rt640x64;@oem4.inf,%rt640.Service.DispName%;Realtek RT640 NT Driver; C:\WINDOWS\System32\drivers\rt640x64.sys [2017-04-18 954368]
R3 RTSPER;@oem12.inf,%Rts5227PER%;Realtek PCIE Card Reader - PER; C:\WINDOWS\system32\DRIVERS\RtsPer.sys [2017-04-12 782304]
S0 bttflt;@virtdisk.inf,%service_desc%;Microsoft Hyper-V VHDPMEM BTT Filter; C:\WINDOWS\System32\drivers\bttflt.sys [2019-03-19 42808]
S0 cht4iscsi;cht4iscsi; C:\WINDOWS\System32\drivers\cht4sx64.sys [2019-03-19 319528]
S0 iaStorAVC;@iastorav.inf,%iaStorAVC.DeviceDesc%;Intel Chipset SATA RAID Controller; C:\WINDOWS\System32\drivers\iaStorAVC.sys [2019-03-19 885048]
S0 ItSas35i;ItSas35i; C:\WINDOWS\System32\drivers\ItSas35i.sys [2019-03-19 148520]
S0 LSI_SAS2i;LSI_SAS2i; C:\WINDOWS\System32\drivers\lsi_sas2i.sys [2019-03-19 124448]
S0 LSI_SAS3i;LSI_SAS3i; C:\WINDOWS\System32\drivers\lsi_sas3i.sys [2019-03-19 128528]
S0 megasas2i;megasas2i; C:\WINDOWS\System32\drivers\MegaSas2i.sys [2019-03-19 75280]
S0 megasas35i;megasas35i; C:\WINDOWS\System32\drivers\megasas35i.sys [2019-03-19 94736]
S0 percsas2i;percsas2i; C:\WINDOWS\System32\drivers\percsas2i.sys [2019-03-19 58896]
S0 percsas3i;percsas3i; C:\WINDOWS\System32\drivers\percsas3i.sys [2019-03-19 68624]
S0 Ramdisk;Windows RAM Disk Driver; C:\WINDOWS\system32\DRIVERS\ramdisk.sys [2019-03-19 41784]
S0 scmbus;@scmbus.inf,%scmbus.SvcDesc%;Microsoft Storage Class Memory Bus Driver; C:\WINDOWS\System32\drivers\scmbus.sys [2019-03-19 151352]
S1 BHDrvx64;BHDrvx64; \??\C:\Program Files\Norton Security\NortonData\22.9.2.3\Definitions\BASHDefs\20181008.007\BHDrvx64.sys [2018-09-18 1925104]
S3 AcpiDev;@acpidev.inf,%AcpiDev.SvcDesc%;ACPI Devices driver; C:\WINDOWS\System32\drivers\AcpiDev.sys [2019-03-19 20992]
S3 Acx01000;@%SystemRoot%\system32\drivers\Acx01000.sys,-1000; C:\WINDOWS\system32\drivers\Acx01000.sys [2019-03-19 337920]
S3 amdgpio2;@amdgpio2.inf,%GPIO.SvcDesc%;AMD GPIO Client Driver; C:\WINDOWS\System32\drivers\amdgpio2.sys [2019-03-19 18432]
S3 amdi2c;@amdi2c.inf,%amdi2c.SVCDESC%;AMD I2C Controller Service; C:\WINDOWS\System32\drivers\amdi2c.sys [2019-03-19 37888]
S3 applockerfltr;@%systemroot%\system32\srpapi.dll,-102; C:\WINDOWS\system32\drivers\applockerfltr.sys [2019-11-26 18432]
S3 BthA2dp;@microsoft_bluetooth_a2dp.inf,%BthA2dp.ServiceDescription%;Microsoft Bluetooth A2dp driver; C:\WINDOWS\System32\drivers\BthA2dp.sys [2019-10-04 231936]
S3 BthMini;@bth.inf,%BTHMINI.SvcDesc%;Bluetooth Radio Driver; C:\WINDOWS\System32\drivers\BTHMINI.sys [2019-11-26 36864]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Ovladač portu Bluetooth; C:\WINDOWS\System32\drivers\BTHport.sys [2019-11-26 1428992]
S3 buttonconverter;@buttonconverter.inf,%btnconv.SvcDesc%;Service for Portable Device Control devices; C:\WINDOWS\System32\drivers\buttonconverter.sys [2019-03-19 43008]
S3 dg_ssudbus;@oem33.inf,%ssud.Service.DeviceDesc%;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\WINDOWS\system32\DRIVERS\ssudbus.sys [2014-01-22 108800]
S3 genericusbfn;@genericusbfn.inf,%genericusbfn.ServiceName%;Generic USB Function Class; C:\WINDOWS\System32\DriverStore\FileRepository\genericusbfn.inf_amd64_b9c53b80e63af230\genericusbfn.sys [2019-10-04 20992]
S3 hidinterrupt;@hidinterrupt.inf,%HID_Interrupt.SvcDesc%;Common Driver for HID Buttons implemented with interrupts; C:\WINDOWS\System32\drivers\hidinterrupt.sys [2019-03-19 53560]
S3 hidspi;@hidspi_km.inf,%hidspi.SVCDESC%;Microsoft SPI HID Miniport Driver; C:\WINDOWS\System32\drivers\hidspi.sys [2019-10-15 64000]
S3 hvservice;@%SystemRoot%\system32\drivers\hvservice.sys,-16; C:\WINDOWS\system32\drivers\hvservice.sys [2019-11-26 84488]
S3 HwNClx0101;Microsoft Hardware Notifications Class Extension Driver; C:\WINDOWS\System32\Drivers\mshwnclx.sys [2019-03-19 28672]
S3 cht4vbd;@cht4vx64.inf,%cht4vbd.generic%;Chelsio Virtual Bus Driver; C:\WINDOWS\System32\drivers\cht4vx64.sys [2019-03-19 1866768]
S3 iagpio;@iagpio.inf,%iagpio.SVCDESC%;Intel Serial IO GPIO Controller Driver; C:\WINDOWS\System32\drivers\iagpio.sys [2019-03-19 36352]
S3 iai2c;@iai2c.inf,%iai2c.SVCDESC%;Intel(R) Serial IO I2C Host Controller; C:\WINDOWS\System32\drivers\iai2c.sys [2019-03-19 91136]
S3 iaLPSS2i_GPIO2;@iaLPSS2i_GPIO2_SKL.inf,%iaLPSS2i_GPIO2.SVCDESC%;Intel(R) Serial IO GPIO Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2.sys [2019-03-19 79360]
S3 iaLPSS2i_GPIO2_BXT_P;@iaLPSS2i_GPIO2_BXT_P.inf,%iaLPSS2i_GPIO2_BXT_P.SVCDESC%;Intel(R) Serial IO GPIO Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_BXT_P.sys [2019-03-19 93184]
S3 iaLPSS2i_GPIO2_CNL;@iaLPSS2i_GPIO2_CNL.inf,%iaLPSS2i_GPIO2_CNL.SVCDESC%;Intel(R) Serial IO GPIO Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_CNL.sys [2019-03-19 112128]
S3 iaLPSS2i_GPIO2_GLK;@iaLPSS2i_GPIO2_GLK.inf,%iaLPSS2i_GPIO2_GLK.SVCDESC%;Intel(R) Serial IO GPIO Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_GLK.sys [2019-03-19 96256]
S3 iaLPSS2i_I2C_BXT_P;@iaLPSS2i_I2C_BXT_P.inf,%iaLPSS2i_I2C_BXT_P.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_BXT_P.sys [2019-03-19 175104]
S3 iaLPSS2i_I2C_CNL;@iaLPSS2i_I2C_CNL.inf,%iaLPSS2i_I2C_CNL.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_CNL.sys [2019-03-19 180736]
S3 iaLPSS2i_I2C_GLK;@iaLPSS2i_I2C_GLK.inf,%iaLPSS2i_I2C_GLK.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_GLK.sys [2019-03-19 177664]
S3 ibbus;@mlx4_bus.inf,%Ibbus.ServiceDesc%;Mellanox InfiniBand Bus/AL (Filter Driver); C:\WINDOWS\System32\drivers\ibbus.sys [2019-03-19 566800]
S3 IndirectKmd;@%SystemRoot%\system32\drivers\IndirectKmd.sys,-100; C:\WINDOWS\System32\drivers\IndirectKmd.sys [2019-03-19 46592]
S3 intelpmax;@intelpmax.inf,%SvcDesc%;Intel Power Limit Driver; C:\WINDOWS\System32\drivers\intelpmax.sys [2019-03-19 28672]
S3 IPT;IPT; C:\WINDOWS\System32\drivers\ipt.sys [2019-03-19 54584]
S3 mausbhost;@mausbhost.inf,%MAUSBHost.ServiceName%;MA-USB Host Controller Driver; C:\WINDOWS\System32\drivers\mausbhost.sys [2019-03-19 535864]
S3 mausbip;@mausbhost.inf,%MAUSBIP.ServiceName%;MA-USB IP Filter Driver; C:\WINDOWS\System32\drivers\mausbip.sys [2019-03-19 62264]
S3 MbbCx;MBB Network Adapter Class Extension; C:\WINDOWS\system32\drivers\MbbCx.sys [2019-11-26 359424]
S3 Microsoft_Bluetooth_AvrcpTransport;@microsoft_bluetooth_avrcptransport.inf,%Microsoft_Bluetooth_AvrcpTransport.ServiceDescription%;Microsoft Bluetooth Avrcp Transport Driver; C:\WINDOWS\System32\drivers\Microsoft.Bluetooth.AvrcpTransport.sys [2019-03-19 64512]
S3 mlx4_bus;@mlx4_bus.inf,%MLX4BUS.ServiceDesc%;Mellanox ConnectX Bus Enumerator; C:\WINDOWS\System32\drivers\mlx4_bus.sys [2019-03-19 1150480]
S3 ndfltr;@mlx4_bus.inf,%ndfltr.ServiceDesc%;NetworkDirect Service; C:\WINDOWS\System32\drivers\ndfltr.sys [2019-03-19 153616]
S3 NDKPing;NDKPing Driver; C:\WINDOWS\system32\drivers\NDKPing.sys [2019-03-19 63488]
S3 NetAdapterCx;Network Adapter Wdf Class Extension Library; C:\WINDOWS\system32\drivers\NetAdapterCx.sys [2019-03-19 187904]
S3 nvdimm;@nvdimm.inf,%nvdimm.SvcDesc%;Microsoft NVDIMM device driver; C:\WINDOWS\System32\drivers\nvdimm.sys [2019-03-19 158520]
S3 PktMon;Packet Monitor Driver; C:\WINDOWS\system32\drivers\PktMon.sys [2019-03-19 96056]
S3 pmem;@pmem.inf,%pmem.SvcDesc%;Microsoft persistent memory disk driver; C:\WINDOWS\System32\drivers\pmem.sys [2019-03-19 127800]
S3 PNPMEM;@memory.inf,%PNPMEM.SvcDesc%;Microsoft Memory Module Driver; C:\WINDOWS\System32\drivers\pnpmem.sys [2019-03-19 17408]
S3 portcfg;portcfg; C:\WINDOWS\System32\drivers\portcfg.sys [2019-03-19 25600]
S3 ReFSv1;ReFSv1; C:\WINDOWS\system32\drivers\ReFSv1.sys [2019-03-19 987152]
S3 rhproxy;@rhproxy.inf,%rhproxy.SVCDESC%;Resource Hub proxy driver; C:\WINDOWS\System32\drivers\rhproxy.sys [2019-03-19 113152]
S3 SDFRd;@SDFRd.inf,%SDFRd.ServiceDesc%;SDF Reflector; C:\WINDOWS\System32\drivers\SDFRd.sys [2019-03-19 33592]
S4 hvcrash;hvcrash; C:\WINDOWS\System32\drivers\hvcrash.sys [2019-03-19 32568]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AtherosSvc;AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [2017-04-24 338312]
R2 CDPSvc;@%SystemRoot%\system32\cdpsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2019-03-19 53744]
R2 CDPUserSvc_13be4d9;Uživatelská služba platformy připojených zařízení_13be4d9; C:\WINDOWS\system32\svchost.exe [2019-03-19 53744]
R2 ClickToRunSvc;Služba Microsoft Office Klikni a spusť; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [2019-11-28 11345992]
R2 CoreMessagingRegistrar;@%SystemRoot%\system32\coremessaging.dll,-1; C:\WINDOWS\system32\svchost.exe [2019-03-19 53744]
R2 cplspcon;Intel(R) Content Protection HDCP Service; C:\WINDOWS\System32\DriverStore\FileRepository\igdlh64.inf_amd64_57f66a4f0a97f1a3\IntelCpHDCPSvc.exe [2018-12-19 506120]
R2 DiagTrack;@%SystemRoot%\system32\diagtrack.dll,-3001; C:\WINDOWS\System32\svchost.exe [2019-03-19 53744]
R2 DispBrokerDesktopSvc;@%SystemRoot%\system32\dispbroker.desktop.dll,-101; C:\WINDOWS\system32\svchost.exe [2019-03-19 53744]
R2 DoSvc;@%systemroot%\system32\dosvc.dll,-100; C:\WINDOWS\System32\svchost.exe [2019-03-19 53744]
R2 DusmSvc;@%SystemRoot%\System32\dusmsvc.dll,-1; C:\WINDOWS\System32\svchost.exe [2019-03-19 53744]
R2 igfxCUIService2.0.0.0;Intel(R) HD Graphics Control Panel Service; C:\WINDOWS\System32\DriverStore\FileRepository\igdlh64.inf_amd64_57f66a4f0a97f1a3\igfxCUIService.exe [2018-12-19 414456]
R2 IntelAudioService;Intel(R) Audio Service; C:\WINDOWS\system32\cAVS\Intel(R) Audio Service\IntelAudioService.exe [2017-08-04 161880]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2017-10-27 213648]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2017-10-27 419984]
R2 NortonSecurity;Norton Security; C:\Program Files\Norton Security\Engine\22.19.8.65\NortonSecurity.exe [2019-09-11 225608]
R2 nsWscSvc;Norton WSC Service; C:\Program Files\Norton Security\Engine\22.19.8.65\nsWscSvc.exe [2019-09-11 936808]
R2 OneSyncSvc_13be4d9;Hostitel synchronizace_13be4d9; C:\WINDOWS\system32\svchost.exe [2019-03-19 53744]
R2 SDScannerService;Spybot-S&D 2 Scanner Service; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [2018-04-20 3892256]
R2 SDUpdateService;Spybot-S&D 2 Updating Service; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [2018-04-20 3943664]
R2 SDWSCService;Spybot-S&D 2 Security Center Service; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [2018-02-06 233712]
R2 SgrmBroker;@%SystemRoot%\System32\SgrmBroker.exe,-100; C:\WINDOWS\system32\SgrmBroker.exe [2019-03-19 263904]
R3 BTAGService;@%SystemRoot%\system32\BTAGService.dll,-101; C:\WINDOWS\system32\svchost.exe [2019-03-19 53744]
R3 BthAvctpSvc;@%SystemRoot%\system32\BthAvctpSvc.dll,-101; C:\WINDOWS\system32\svchost.exe [2019-03-19 53744]
R3 camsvc;@%SystemRoot%\system32\CapabilityAccessManager.dll,-1; C:\WINDOWS\system32\svchost.exe [2019-03-19 53744]
R3 cbdhsvc_13be4d9;Uživatelská služba schránky_13be4d9; C:\WINDOWS\system32\svchost.exe [2019-03-19 53744]
R3 cphs;Intel(R) Content Protection HECI Service; C:\WINDOWS\System32\DriverStore\FileRepository\igdlh64.inf_amd64_57f66a4f0a97f1a3\IntelCpHeciSvc.exe [2018-12-19 509216]
R3 DisplayEnhancementService;@%SystemRoot%\System32\Microsoft.Graphics.Display.DisplayEnhancementService.dll,-1000; C:\WINDOWS\system32\svchost.exe [2019-03-19 53744]
R3 DsSvc;@%SystemRoot%\system32\dssvc.dll,-10003; C:\WINDOWS\System32\svchost.exe [2019-03-19 53744]
R3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2019-10-04 43704]
R3 InstallService;@%SystemRoot%\system32\InstallService.dll,-200; C:\WINDOWS\System32\svchost.exe [2019-03-19 53744]
R3 LicenseManager;@%SystemRoot%\system32\licensemanagersvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2019-03-19 53744]
R3 NgcCtnrSvc;@%SystemRoot%\System32\NgcCtnrSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2019-03-19 53744]
R3 NgcSvc;@%SystemRoot%\System32\ngcsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2019-03-19 53744]
R3 QASvc;Quick Access Service; C:\Program Files\Acer\Acer Quick Access\QASvc.exe [2019-09-26 508208]
R3 RmSvc;@%SystemRoot%\system32\RMapi.dll,-1001; C:\WINDOWS\System32\svchost.exe [2019-03-19 53744]
R3 SecurityHealthService;@%systemroot%\system32\SecurityHealthAgent.dll,-1002; C:\WINDOWS\system32\SecurityHealthService.exe [2019-10-04 913168]
S2 CDPUserSvc;@%SystemRoot%\system32\cdpusersvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2019-03-19 53744]
S2 Dashlane Upgrade Service;Dashlane Upgrade Service; C:\Program Files (x86)\Dashlane\Upgrade\DashlaneUpgradeService.exe [2017-08-23 83992]
S2 gupdate;Služba Aktualizace Google (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2018-08-21 153168]
S2 Intel(R) TPM Provisioning Service;Intel(R) TPM Provisioning Service; C:\Program Files\Intel\iCLS Client\TPMProvisioningService.exe [2017-09-21 668472]
S2 MapsBroker;@%SystemRoot%\System32\moshost.dll,-100; C:\WINDOWS\System32\svchost.exe [2019-03-19 53744]
S2 OneSyncSvc;@%SystemRoot%\system32\APHostRes.dll,-10002; C:\WINDOWS\system32\svchost.exe [2019-03-19 53744]
S3 AarSvc;@%SystemRoot%\system32\AarSvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2019-03-19 53744]
S3 AarSvc_13be4d9;Agent Activation Runtime_13be4d9; C:\WINDOWS\system32\svchost.exe [2019-03-19 53744]
S3 AJRouter;@%SystemRoot%\system32\AJRouter.dll,-2; C:\WINDOWS\system32\svchost.exe [2019-03-19 53744]
S3 autotimesvc;@%SystemRoot%\System32\autotimesvc.dll,-6; C:\WINDOWS\system32\svchost.exe [2019-03-19 53744]
S3 BcastDVRUserService;@%SystemRoot%\system32\BcastDVRUserService.dll,-100; C:\WINDOWS\system32\svchost.exe [2019-03-19 53744]
S3 BcastDVRUserService_13be4d9;Uživatelská služba pro GameDVR a vysílání her_13be4d9; C:\WINDOWS\system32\svchost.exe [2019-03-19 53744]
S3 BluetoothUserService;@%SystemRoot%\system32\Microsoft.Bluetooth.UserService.dll,-101; C:\WINDOWS\system32\svchost.exe [2019-03-19 53744]
S3 BluetoothUserService_13be4d9;Služba pro podporu uživatelů Bluetooth_13be4d9; C:\WINDOWS\system32\svchost.exe [2019-03-19 53744]
S3 CaptureService;@%SystemRoot%\system32\CaptureService.dll,-100; C:\WINDOWS\system32\svchost.exe [2019-03-19 53744]
S3 CaptureService_13be4d9;CaptureService_13be4d9; C:\WINDOWS\system32\svchost.exe [2019-03-19 53744]
S3 cbdhsvc;@%SystemRoot%\system32\cbdhsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2019-03-19 53744]
S3 ClipSVC;@%SystemRoot%\system32\ClipSVC.dll,-103; C:\WINDOWS\System32\svchost.exe [2019-03-19 53744]
S3 ConsentUxUserSvc;@%SystemRoot%\system32\ConsentUxClient.dll,-100; C:\WINDOWS\system32\svchost.exe [2019-03-19 53744]
S3 ConsentUxUserSvc_13be4d9;ConsentUX_13be4d9; C:\WINDOWS\system32\svchost.exe [2019-03-19 53744]
S3 CredentialEnrollmentManagerUserSvc;@%SystemRoot%\system32\CredentialEnrollmentManager.exe,-100; C:\WINDOWS\system32\CredentialEnrollmentManager.exe [2019-03-19 380120]
S3 CredentialEnrollmentManagerUserSvc_13be4d9;CredentialEnrollmentManagerUserSvc_13be4d9; C:\WINDOWS\system32\CredentialEnrollmentManager.exe [2019-03-19 380120]
S3 DeviceAssociationBrokerSvc;@%SystemRoot%\system32\deviceaccess.dll,-107; C:\WINDOWS\system32\svchost.exe [2019-03-19 53744]
S3 DeviceAssociationBrokerSvc_13be4d9;DeviceAssociationBroker_13be4d9; C:\WINDOWS\system32\svchost.exe [2019-03-19 53744]
S3 DevicePickerUserSvc;@%SystemRoot%\system32\Windows.Devices.Picker.dll,-1006; C:\WINDOWS\system32\svchost.exe [2019-03-19 53744]
S3 DevicePickerUserSvc_13be4d9;DevicePicker_13be4d9; C:\WINDOWS\system32\svchost.exe [2019-03-19 53744]
S3 DevicesFlowUserSvc;@%SystemRoot%\system32\DevicesFlowBroker.dll,-103; C:\WINDOWS\system32\svchost.exe [2019-03-19 53744]
S3 DevicesFlowUserSvc_13be4d9;Tok zařízení_13be4d9; C:\WINDOWS\system32\svchost.exe [2019-03-19 53744]
S3 DevQueryBroker;@%SystemRoot%\system32\DevQueryBroker.dll,-100; C:\WINDOWS\system32\svchost.exe [2019-03-19 53744]
S3 diagnosticshub.standardcollector.service;@%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000; C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe [2019-10-04 97792]
S3 diagsvc;@%systemroot%\system32\DiagSvc.dll,-100; C:\WINDOWS\System32\svchost.exe [2019-03-19 53744]
S3 DmEnrollmentSvc;@%systemroot%\system32\Windows.Internal.Management.dll,-100; C:\WINDOWS\system32\svchost.exe [2019-03-19 53744]
S3 dmwappushservice;@%SystemRoot%\system32\dmwappushsvc.dll,-200; C:\WINDOWS\system32\svchost.exe [2019-03-19 53744]
S3 embeddedmode;@%SystemRoot%\system32\embeddedmodesvc.dll,-201; C:\WINDOWS\System32\svchost.exe [2019-03-19 53744]
S3 EntAppSvc;@EnterpriseAppMgmtSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2019-03-19 53744]
S3 FrameServer;@%systemroot%\system32\FrameServer.dll,-100; C:\WINDOWS\System32\svchost.exe [2019-03-19 53744]
S3 GoogleChromeElevationService;Google Chrome Elevation Service; C:\Program Files (x86)\Google\Chrome\Application\78.0.3904.108\elevation_service.exe [2019-11-16 1110512]
S3 GraphicsPerfSvc;@%SystemRoot%\system32\GraphicsPerfSvc.dll,-100; C:\WINDOWS\System32\svchost.exe [2019-03-19 53744]
S3 gupdatem;Služba Aktualizace Google (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2018-08-21 153168]
S3 HvHost;@%SystemRoot%\system32\hvhostsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2019-03-19 53744]
S3 icssvc;@%SystemRoot%\System32\tetheringservice.dll,-4097; C:\WINDOWS\system32\svchost.exe [2019-03-19 53744]
S3 Intel(R) Capability Licensing Service TCP IP Interface;Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [2017-09-21 742704]
S3 IpxlatCfgSvc;@%Systemroot%\system32\ipxlatcfg.dll,-500; C:\WINDOWS\System32\svchost.exe [2019-03-19 53744]
S3 LxpSvc;@%SystemRoot%\system32\LanguageOverlayServer.dll,-100; C:\WINDOWS\system32\svchost.exe [2019-03-19 53744]
S3 MessagingService;@%SystemRoot%\system32\MessagingService.dll,-100; C:\WINDOWS\system32\svchost.exe [2019-03-19 53744]
S3 MessagingService_13be4d9;Služba zasílání zpráv_13be4d9; C:\WINDOWS\system32\svchost.exe [2019-03-19 53744]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2018-11-13 216528]
S3 NaturalAuthentication;@%systemroot%\system32\NaturalAuth.dll,-100; C:\WINDOWS\system32\svchost.exe [2019-03-19 53744]
S3 NetSetupSvc;@%SystemRoot%\system32\NetSetupSvc.dll,-3; C:\WINDOWS\System32\svchost.exe [2019-03-19 53744]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2002-02-01 214840]
S3 perceptionsimulation;@%systemroot%\system32\PerceptionSimulation\PerceptionSimulationService.exe,-101; C:\WINDOWS\system32\PerceptionSimulation\PerceptionSimulationService.exe [2019-03-19 103424]
S3 PhoneSvc;@%SystemRoot%\system32\PhoneserviceRes.dll,-10000; C:\WINDOWS\system32\svchost.exe [2019-03-19 53744]
S3 PimIndexMaintenanceSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-15001; C:\WINDOWS\system32\svchost.exe [2019-03-19 53744]
S3 PimIndexMaintenanceSvc_13be4d9;Data kontaktů_13be4d9; C:\WINDOWS\system32\svchost.exe [2019-03-19 53744]
S3 PrintWorkflowUserSvc;@%SystemRoot%\system32\PrintWorkflowService.dll,-100; C:\WINDOWS\system32\svchost.exe [2019-03-19 53744]
S3 PrintWorkflowUserSvc_13be4d9;PrintWorkflow_13be4d9; C:\WINDOWS\system32\svchost.exe [2019-03-19 53744]
S3 PushToInstall;@%SystemRoot%\system32\pushtoinstall.dll,-200; C:\WINDOWS\System32\svchost.exe [2019-03-19 53744]
S3 QALSvc;Quick Access Local Service; C:\Program Files\Acer\Acer Quick Access\QALSvc.exe [2019-09-26 466224]
S3 RetailDemo;@%SystemRoot%\System32\RDXService.dll,-256; C:\WINDOWS\System32\svchost.exe [2019-03-19 53744]
S3 SEMgrSvc;@%SystemRoot%\System32\SEMgrSvc.dll,-1001; C:\WINDOWS\system32\svchost.exe [2019-03-19 53744]
S3 SensorDataService;@%SystemRoot%\system32\SensorDataService.exe,-101; C:\WINDOWS\System32\SensorDataService.exe [2019-03-19 1264128]
S3 SensorService;@%SystemRoot%\System32\sensorservice.dll,-1000; C:\WINDOWS\system32\svchost.exe [2019-03-19 53744]
S3 SharedRealitySvc;@%SystemRoot%\system32\SharedRealitySvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2019-03-19 53744]

-----------------EOF-----------------


Děkuji.
Škodu nezjistí,kdo si odjistí !

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118199
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Preventivní kontrola logu

#2 Příspěvek od Rudy »

Zdravím!
Dejte logy FRST+Addition: https://forum.viry.cz/viewtopic.php?f=13&t=154679 . RSIT je v desítkách nepoužitelný.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Odpovědět