Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Prosím o kontrolu

Nemáte v tuto chvíli žádný problém s pc a chcete se jen ujistit, že je vše v pořádku?
Vložte log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Odpovědět
Zpráva
Autor
steren95
Návštěvník
Návštěvník
Příspěvky: 34
Registrován: 22 bře 2014 13:10

Prosím o kontrolu

#1 Příspěvek od steren95 »

Logfile of random's system information tool 1.10 (written by random/random)
Run by bdank_000 at 2015-08-15 17:13:07
Microsoft Windows 10 Home
System drive C: has 237 GB (52%) free of 455 GB
Total RAM: 3982 MB (52% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 17:13:18, on 15.08.2015
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.10240.16384)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\CyberLink\YouCam\YouCamService.exe
C:\Users\bdank_000\AppData\Local\Microsoft\OneDrive\OneDrive.exe
C:\Program Files\AVAST Software\Avast\avastui.exe
C:\Program Files (x86)\Hewlett-Packard\HP System Event\HPMSGSVC.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Users\bdank_000\AppData\Roaming\Dropbox\bin\Dropbox.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files\trend micro\bdank_000.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.bing.com?pc=HPDTDFJS
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=
O2 - BHO: Skype for Business Click to Call BHO - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\Office15\OCHelper.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_51\bin\ssv.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Evernote extension - {92EF2EAD-A7CE-4424-B0DB-499CF856608E} - C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll
O2 - BHO: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_51\bin\jp2ssv.dll
O2 - BHO: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll
O2 - BHO: Adblock Plus for IE Browser Helper Object - {FFCB3198-32F3-4E8B-9539-4324694ED664} - C:\Program Files\Adblock Plus for IE\AdblockPlus32.dll
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [HPMessageService] C:\Program Files (x86)\Hewlett-Packard\HP System Event\HPMSGSVC.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [Power2GoExpress8] "C:\Program Files (x86)\CyberLink\Power2Go8\Power2GoExpress8.exe"
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKCU\..\Run: [Dropbox Update] "C:\Users\bdank_000\AppData\Local\Dropbox\Update\DropboxUpdate.exe" /c
O4 - HKCU\..\Run: [OneDrive] "C:\Users\bdank_000\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
O4 - HKCU\..\RunOnce: [Uninstall C:\Users\bdank_000\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64] C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\bdank_000\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64"
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O4 - Startup: Dropbox.lnk = bdank_000\AppData\Roaming\Dropbox\bin\Dropbox.exe
O4 - Global Startup: Start GeekBuddy.lnk = C:\Program Files\COMODO\GeekBuddy\launcher.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\Program Files\Microsoft Office 15\Root\Office15\EXCEL.EXE/3000
O8 - Extra context menu item: Se&nd to OneNote - res://C:\Program Files\Microsoft Office 15\Root\Office15\ONBttnIE.dll/105
O9 - Extra button: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-103 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-102 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIE.dll
O9 - Extra button: Skype for Business Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\Office15\OCHelper.dll
O9 - Extra 'Tools' menuitem: Skype for Business Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\Office15\OCHelper.dll
O9 - Extra button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIELinkedNotes.dll
O9 - Extra button: @C:\Program Files (x86)\Evernote\Evernote\Resource.dll,-101 - {A95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\Program Files (x86)\Evernote\Evernote\\EvernoteIERes\AddNote.html
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Evernote\Evernote\Resource.dll,-101 - {A95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\Program Files (x86)\Evernote\Evernote\\EvernoteIERes\AddNote.html
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Andrea RT Filters Service (AERTFilters) - Andrea Electronics Corporation - C:\Program Files\Realtek\Audio\HDA\AERTSr64.EXE
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: ArcGIS License Manager - Flexera Software LLC - C:\Program Files (x86)\ArcGIS\License10.2\bin\lmgrd.exe
O23 - Service: Avast Antivirus (avast! Antivirus) - Avast Software s.r.o. - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: BTDevManager - Unknown owner - C:\Program Files (x86)\REALTEK\Realtek Bluetooth\BTDevMgr.exe
O23 - Service: COMODO Chromodo Update Service (ChromodoUpdater) - Comodo - C:\Program Files (x86)\Comodo\Chromodo\chromodo_updater.exe
O23 - Service: COMODO Internet Security Helper Service (CmdAgent) - COMODO - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
O23 - Service: COMODO Virtual Service Manager (cmdvirth) - COMODO - C:\Program Files\COMODO\COMODO Internet Security\cmdvirth.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: Disc Soft Lite Bus Service - Disc Soft Ltd - C:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: FlexNet Licensing Service - Flexera Software LLC - C:\Program Files (x86)\Common Files\Macrovision Shared\FlexNet Publisher\FNPLicensingService.exe
O23 - Service: HP Support Assistant Service - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe
O23 - Service: HP Software Framework Service (hpqwmiex) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe
O23 - Service: HPWMISVC - Hewlett-Packard Development Company, L.P. - c:\Program Files (x86)\Hewlett-Packard\HP System Event\HPWMISVC.exe
O23 - Service: Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) - Unknown owner - C:\WINDOWS\system32\igfxCUIService.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\TXE Components\TCS\HeciServer.exe
O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - C:\Program Files\Intel\TXE Components\TCS\SocketHeciServer.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\System32\ngcsvc.dll,-100 (NgcSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: DiRT Drivers Auto Removal (pr2ah4nc) (pr2ah4nc) - Unknown owner - C:\Windows\system32\pr2ah4nc.exe (file missing)
O23 - Service: Cyberlink RichVideo64 Service(CRVS) (RichVideo64) - Unknown owner - C:\Program Files\CyberLink\Shared files\RichVideo64.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: Realtek Audio Service (RtkAudioService) - Realtek Semiconductor - C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: SynTPEnh Caller Service (SynTPEnhService) - Synaptics Incorporated - C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 13945 bytes

======Listing Processes======







C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
dashost.exe {0dd2148e-af1c-4e98-9ca2992ffba2afa6}
C:\WINDOWS\System32\svchost.exe -k NetworkService
"C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe"
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files\Realtek\Audio\HDA\AERTSr64.EXE"
C:\WINDOWS\system32\svchost.exe -k apphost
"C:\Program Files\Bonjour\mDNSResponder.exe"
"C:\Program Files (x86)\REALTEK\Realtek Bluetooth\BTDevMgr.exe"
"C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe" /service
"C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe"
C:\WINDOWS\System32\svchost.exe -k utcsvc
"C:\Program Files\Intel\TXE Components\TCS\HeciServer.exe"
"C:\Program Files\CyberLink\Shared files\RichVideo64.exe"
"C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe"
C:\WINDOWS\system32\svchost.exe -k appmodel

"C:\Program Files\COMODO\COMODO Internet Security\cavwp.exe" /ModeAvMonitor -Embedding
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
"C:\Program Files (x86)\ArcGIS\License10.2\bin\lmgrd.exe"
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Program Files (x86)\ArcGIS\License10.2\bin\lmgrd.exe" -c "C:\Program Files (x86)\ArcGIS\License10.2\bin\service.txt" -l "C:\Program Files (x86)\ArcGIS\License10.2\bin\lmgrd9.log" -z -local
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe

C:\WINDOWS\System32\WinLogon.exe -SpecialSession
"dwm.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /SRSPS
sihost.exe
taskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E}
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
C:\WINDOWS\Explorer.EXE
"C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE"
"C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe" -ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe" -s
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /ANDREA_BF_BYPASS
"C:\Program Files (x86)\CyberLink\YouCam\YouCamService.exe"
"C:\Users\bdank_000\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
"C:\Program Files\AVAST Software\Avast\avastui.exe" /nogui
"C:\Program Files (x86)\Hewlett-Packard\HP System Event\HPMSGSVC.exe"
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
"fontdrvhost.exe"
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files\COMODO\COMODO Internet Security\cis.exe" --alertsUI
C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
C:\Windows\System32\InstallAgent.exe -Embedding
C:\WINDOWS\system32\SettingSyncHost.exe -Embedding
C:\WINDOWS\system32\ApplicationFrameHost.exe -Embedding
"C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
"C:\Program Files (x86)\Comodo\Chromodo\chromodo_updater.exe"
"C:\Users\bdank_000\AppData\Roaming\Dropbox\bin\Dropbox.exe" /firstrunupdate 0
"C:\Windows\SystemApps\Microsoft.LockApp_cw5n1h2txyewy\LockApp.exe" -ServerName:WindowsDefaultLockScreen.AppX7y4nbzq37zn4ks9k7amqjywdat7d3j2z.mca
"C:\WINDOWS\system32\backgroundTaskHost.exe" -ServerName:App.AppXmtcan0h2tfbfy7k9kn8hbxb6dmzz1zh0.mca
"C:\WINDOWS\system32\backgroundTaskHost.exe" -ServerName:CortanaUI.AppXy7vb4pc2dr3kc93kfc509b1d0arkfb2x.mca
"C:\WINDOWS\system32\backgroundTaskHost.exe" -ServerName:App.AppXe9cvj1thv1hmcw0cs98xm3r97tyzy2xs.mca
"C:\WINDOWS\system32\backgroundTaskHost.exe" -ServerName:App.AppXwmnqm0nvq2b90pwvr42qmtdjp7cj3w82.mca
"c:\Program Files (x86)\Hewlett-Packard\HP System Event\HPWMISVC.exe"
taskhostw.exe

"C:\Program Files\CCleaner\CCleaner64.exe" /monitor
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe"
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe112_ Global\UsGthrCtrlFltPipeMssGthrPipe112 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 968 972 980 8192 976
taskhostw.exe
"C:\Users\bdank_000\Downloads\RSITx64.exe"
C:\WINDOWS\system32\DllHost.exe /Processid:{133EAC4F-5891-4D04-BADA-D84870380A80}

======Scheduled tasks folder======

C:\WINDOWS\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119418
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o kontrolu

#2 Příspěvek od Rudy »

Zdravím!
Log není kompletní.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

steren95
Návštěvník
Návštěvník
Příspěvky: 34
Registrován: 22 bře 2014 13:10

Re: Prosím o kontrolu

#3 Příspěvek od steren95 »

Zdravím, omlouvám se. Teď už to je snad všechno


Logfile of random's system information tool 1.10 (written by random/random)
Run by bdank_000 at 2015-08-15 17:13:07
Microsoft Windows 10 Home
System drive C: has 237 GB (52%) free of 455 GB
Total RAM: 3982 MB (52% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 17:13:18, on 15.08.2015
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.10240.16384)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\CyberLink\YouCam\YouCamService.exe
C:\Users\bdank_000\AppData\Local\Microsoft\OneDrive\OneDrive.exe
C:\Program Files\AVAST Software\Avast\avastui.exe
C:\Program Files (x86)\Hewlett-Packard\HP System Event\HPMSGSVC.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Users\bdank_000\AppData\Roaming\Dropbox\bin\Dropbox.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files\trend micro\bdank_000.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.bing.com?pc=HPDTDFJS
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=
O2 - BHO: Skype for Business Click to Call BHO - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\Office15\OCHelper.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_51\bin\ssv.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Evernote extension - {92EF2EAD-A7CE-4424-B0DB-499CF856608E} - C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll
O2 - BHO: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_51\bin\jp2ssv.dll
O2 - BHO: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll
O2 - BHO: Adblock Plus for IE Browser Helper Object - {FFCB3198-32F3-4E8B-9539-4324694ED664} - C:\Program Files\Adblock Plus for IE\AdblockPlus32.dll
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [HPMessageService] C:\Program Files (x86)\Hewlett-Packard\HP System Event\HPMSGSVC.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [Power2GoExpress8] "C:\Program Files (x86)\CyberLink\Power2Go8\Power2GoExpress8.exe"
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKCU\..\Run: [Dropbox Update] "C:\Users\bdank_000\AppData\Local\Dropbox\Update\DropboxUpdate.exe" /c
O4 - HKCU\..\Run: [OneDrive] "C:\Users\bdank_000\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
O4 - HKCU\..\RunOnce: [Uninstall C:\Users\bdank_000\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64] C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\bdank_000\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64"
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O4 - Startup: Dropbox.lnk = bdank_000\AppData\Roaming\Dropbox\bin\Dropbox.exe
O4 - Global Startup: Start GeekBuddy.lnk = C:\Program Files\COMODO\GeekBuddy\launcher.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\Program Files\Microsoft Office 15\Root\Office15\EXCEL.EXE/3000
O8 - Extra context menu item: Se&nd to OneNote - res://C:\Program Files\Microsoft Office 15\Root\Office15\ONBttnIE.dll/105
O9 - Extra button: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-103 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-102 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIE.dll
O9 - Extra button: Skype for Business Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\Office15\OCHelper.dll
O9 - Extra 'Tools' menuitem: Skype for Business Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\Office15\OCHelper.dll
O9 - Extra button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIELinkedNotes.dll
O9 - Extra button: @C:\Program Files (x86)\Evernote\Evernote\Resource.dll,-101 - {A95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\Program Files (x86)\Evernote\Evernote\\EvernoteIERes\AddNote.html
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Evernote\Evernote\Resource.dll,-101 - {A95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\Program Files (x86)\Evernote\Evernote\\EvernoteIERes\AddNote.html
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Andrea RT Filters Service (AERTFilters) - Andrea Electronics Corporation - C:\Program Files\Realtek\Audio\HDA\AERTSr64.EXE
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: ArcGIS License Manager - Flexera Software LLC - C:\Program Files (x86)\ArcGIS\License10.2\bin\lmgrd.exe
O23 - Service: Avast Antivirus (avast! Antivirus) - Avast Software s.r.o. - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: BTDevManager - Unknown owner - C:\Program Files (x86)\REALTEK\Realtek Bluetooth\BTDevMgr.exe
O23 - Service: COMODO Chromodo Update Service (ChromodoUpdater) - Comodo - C:\Program Files (x86)\Comodo\Chromodo\chromodo_updater.exe
O23 - Service: COMODO Internet Security Helper Service (CmdAgent) - COMODO - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
O23 - Service: COMODO Virtual Service Manager (cmdvirth) - COMODO - C:\Program Files\COMODO\COMODO Internet Security\cmdvirth.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: Disc Soft Lite Bus Service - Disc Soft Ltd - C:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: FlexNet Licensing Service - Flexera Software LLC - C:\Program Files (x86)\Common Files\Macrovision Shared\FlexNet Publisher\FNPLicensingService.exe
O23 - Service: HP Support Assistant Service - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe
O23 - Service: HP Software Framework Service (hpqwmiex) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe
O23 - Service: HPWMISVC - Hewlett-Packard Development Company, L.P. - c:\Program Files (x86)\Hewlett-Packard\HP System Event\HPWMISVC.exe
O23 - Service: Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) - Unknown owner - C:\WINDOWS\system32\igfxCUIService.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\TXE Components\TCS\HeciServer.exe
O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - C:\Program Files\Intel\TXE Components\TCS\SocketHeciServer.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\System32\ngcsvc.dll,-100 (NgcSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: DiRT Drivers Auto Removal (pr2ah4nc) (pr2ah4nc) - Unknown owner - C:\Windows\system32\pr2ah4nc.exe (file missing)
O23 - Service: Cyberlink RichVideo64 Service(CRVS) (RichVideo64) - Unknown owner - C:\Program Files\CyberLink\Shared files\RichVideo64.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: Realtek Audio Service (RtkAudioService) - Realtek Semiconductor - C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: SynTPEnh Caller Service (SynTPEnhService) - Synaptics Incorporated - C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 13945 bytes

======Listing Processes======







C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
dashost.exe {0dd2148e-af1c-4e98-9ca2992ffba2afa6}
C:\WINDOWS\System32\svchost.exe -k NetworkService
"C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe"
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files\Realtek\Audio\HDA\AERTSr64.EXE"
C:\WINDOWS\system32\svchost.exe -k apphost
"C:\Program Files\Bonjour\mDNSResponder.exe"
"C:\Program Files (x86)\REALTEK\Realtek Bluetooth\BTDevMgr.exe"
"C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe" /service
"C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe"
C:\WINDOWS\System32\svchost.exe -k utcsvc
"C:\Program Files\Intel\TXE Components\TCS\HeciServer.exe"
"C:\Program Files\CyberLink\Shared files\RichVideo64.exe"
"C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe"
C:\WINDOWS\system32\svchost.exe -k appmodel

"C:\Program Files\COMODO\COMODO Internet Security\cavwp.exe" /ModeAvMonitor -Embedding
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
"C:\Program Files (x86)\ArcGIS\License10.2\bin\lmgrd.exe"
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Program Files (x86)\ArcGIS\License10.2\bin\lmgrd.exe" -c "C:\Program Files (x86)\ArcGIS\License10.2\bin\service.txt" -l "C:\Program Files (x86)\ArcGIS\License10.2\bin\lmgrd9.log" -z -local
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe

C:\WINDOWS\System32\WinLogon.exe -SpecialSession
"dwm.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /SRSPS
sihost.exe
taskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E}
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
C:\WINDOWS\Explorer.EXE
"C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE"
"C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe" -ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe" -s
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /ANDREA_BF_BYPASS
"C:\Program Files (x86)\CyberLink\YouCam\YouCamService.exe"
"C:\Users\bdank_000\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
"C:\Program Files\AVAST Software\Avast\avastui.exe" /nogui
"C:\Program Files (x86)\Hewlett-Packard\HP System Event\HPMSGSVC.exe"
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
"fontdrvhost.exe"
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files\COMODO\COMODO Internet Security\cis.exe" --alertsUI
C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
C:\Windows\System32\InstallAgent.exe -Embedding
C:\WINDOWS\system32\SettingSyncHost.exe -Embedding
C:\WINDOWS\system32\ApplicationFrameHost.exe -Embedding
"C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
"C:\Program Files (x86)\Comodo\Chromodo\chromodo_updater.exe"
"C:\Users\bdank_000\AppData\Roaming\Dropbox\bin\Dropbox.exe" /firstrunupdate 0
"C:\Windows\SystemApps\Microsoft.LockApp_cw5n1h2txyewy\LockApp.exe" -ServerName:WindowsDefaultLockScreen.AppX7y4nbzq37zn4ks9k7amqjywdat7d3j2z.mca
"C:\WINDOWS\system32\backgroundTaskHost.exe" -ServerName:App.AppXmtcan0h2tfbfy7k9kn8hbxb6dmzz1zh0.mca
"C:\WINDOWS\system32\backgroundTaskHost.exe" -ServerName:CortanaUI.AppXy7vb4pc2dr3kc93kfc509b1d0arkfb2x.mca
"C:\WINDOWS\system32\backgroundTaskHost.exe" -ServerName:App.AppXe9cvj1thv1hmcw0cs98xm3r97tyzy2xs.mca
"C:\WINDOWS\system32\backgroundTaskHost.exe" -ServerName:App.AppXwmnqm0nvq2b90pwvr42qmtdjp7cj3w82.mca
"c:\Program Files (x86)\Hewlett-Packard\HP System Event\HPWMISVC.exe"
taskhostw.exe

"C:\Program Files\CCleaner\CCleaner64.exe" /monitor
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe"
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe112_ Global\UsGthrCtrlFltPipeMssGthrPipe112 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 968 972 980 8192 976
taskhostw.exe
"C:\Users\bdank_000\Downloads\RSITx64.exe"
C:\WINDOWS\system32\DllHost.exe /Processid:{133EAC4F-5891-4D04-BADA-D84870380A80}

======Scheduled tasks folder======

C:\WINDOWS\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\WINDOWS\tasks\DropboxUpdateTaskUserS-1-5-21-1768221200-1659335568-1168367043-1001Core.job - C:\Users\bdank_000\AppData\Local\Dropbox\Update\DropboxUpdate.exe /c
C:\WINDOWS\tasks\DropboxUpdateTaskUserS-1-5-21-1768221200-1659335568-1168367043-1001UA.job - C:\Users\bdank_000\AppData\Local\Dropbox\Update\DropboxUpdate.exe /ua /installsource scheduler
C:\WINDOWS\tasks\HPCeeScheduleForbdank_000.job - C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe HPCeeScheduleForbdank_000 (null)

=========Mozilla firefox=========

ProfilePath - C:\Users\bdank_000\AppData\Roaming\Mozilla\Firefox\Profiles\09e379ej.default

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 18.0.0.232 Plugin
"Path"=C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_18_0_0_232.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/ShockwavePlayer]
"Description"=Adobe Shockwave Player
"Path"=C:\windows\SysWOW64\Adobe\Director\np32dsw_1204144.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/pdf]
"Description"=
"Path"=C:\Program Files (x86)\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.fdf]
"Description"=
"Path"=C:\Program Files (x86)\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/DTPlugin,version=11.51.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files (x86)\Java\jre1.8.0_51\bin\dtplugin\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=11.51.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Java\jre1.8.0_51\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/Lync,version=15.0]
"Description"=Microsoft Lync Plug-in for Firefox
"Path"=C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 18.0.0.232 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF64_18_0_0_232.dll


======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Skype for Business Browser Helper - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll [2015-06-09 219304]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2015-05-09 662672]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft SkyDrive Pro Browser Helper - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL [2015-06-16 2335448]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E76FD755-C1BA-4DCB-9F13-99BD91223ADE}]
HP Network Check Helper - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll [2013-08-28 303416]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FFCB3198-32F3-4E8B-9539-4324694ED664}]
Adblock Plus for IE Browser Helper Object - C:\Program Files\Adblock Plus for IE\AdblockPlus64.dll [2015-02-25 728840]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Skype for Business Browser Helper - C:\Program Files\Microsoft Office 15\root\Office15\OCHelper.dll [2015-06-09 153768]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_51\bin\ssv.dll [2015-07-18 460384]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2015-05-09 565304]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{92EF2EAD-A7CE-4424-B0DB-499CF856608E}]
Evernote extension - C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll [2014-04-04 585568]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft SkyDrive Pro Browser Helper - C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL [2015-06-16 1730264]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_51\bin\jp2ssv.dll [2015-07-18 172640]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E76FD755-C1BA-4DCB-9F13-99BD91223ADE}]
HP Network Check Helper - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2013-08-28 286520]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FFCB3198-32F3-4E8B-9539-4324694ED664}]
Adblock Plus for IE Browser Helper Object - C:\Program Files\Adblock Plus for IE\AdblockPlus32.dll [2015-02-25 617736]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [2014-06-24 7634288]
"RtHDVBg"=C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2014-06-24 1386712]
"COMODO Autostart {D5EFF3B3-E126-4AF6-BCE9-852A72129E10}"=C:\Program Files\COMODO\COMODO Internet Security\cistray.exe [2015-06-10 1427648]
"COMODO Internet Security"=C:\Program Files\COMODO\COMODO Internet Security\cistray.exe [2015-06-10 1427648]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2015-07-30 3944136]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"=C:\Program Files\DAEMON Tools Lite\DTLite.exe [2015-02-27 5583120]
"Skype"=C:\Program Files (x86)\Skype\Phone\Skype.exe [2015-06-29 53282944]
"Power2GoExpress8"=C:\Program Files (x86)\CyberLink\Power2Go8\Power2GoExpress8.exe [2015-02-09 1720584]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2015-04-23 8204056]
"Dropbox Update"=C:\Users\bdank_000\AppData\Local\Dropbox\Update\DropboxUpdate.exe [2015-06-19 134512]
"OneDrive"=C:\Users\bdank_000\AppData\Local\Microsoft\OneDrive\OneDrive.exe [2015-07-30 402632]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"Uninstall C:\Users\bdank_000\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64"=C:\WINDOWS\system32\cmd.exe [2015-07-10 232448]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2015-05-12 5515496]
"HPMessageService"=C:\Program Files (x86)\Hewlett-Packard\HP System Event\HPMSGSVC.exe [2015-06-13 654088]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2015-07-18 334896]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Start GeekBuddy.lnk - C:\Program Files\COMODO\GeekBuddy\launcher.exe

C:\Users\bdank_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Dropbox.lnk - C:\Users\bdank_000\AppData\Roaming\Dropbox\bin\Dropbox.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
igfxdev.dll []

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TileDataModelSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TileDataModelSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DSCAutomationHostEnabled"=2
"DisableTaskMgr"=0
"SoftwareSASGeneration"=1

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoRun"=0
"NoFolderOptions"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2015-08-15 17:13:08 ----D---- C:\Program Files\trend micro
2015-08-15 17:13:07 ----D---- C:\rsit
2015-08-15 10:59:58 ----D---- C:\Program Files (x86)\Mozilla Firefox
2015-08-15 10:02:22 ----D---- C:\Program Files (x86)\Comodo
2015-07-30 23:40:09 ----A---- C:\WINDOWS\system32\SynTPCo31.dll
2015-07-30 23:40:03 ----A---- C:\WINDOWS\SYSWOW64\SynCom.dll
2015-07-30 23:39:58 ----A---- C:\WINDOWS\system32\drivers\Smb_driver_Intel_Aux.sys
2015-07-30 23:39:58 ----A---- C:\WINDOWS\system32\drivers\Smb_driver_AMDASF_Aux.sys
2015-07-30 23:24:32 ----A---- C:\WINDOWS\system32\MetroIntelGenericUIFramework.dll
2015-07-30 23:24:31 ----A---- C:\WINDOWS\SYSWOW64\Intel_OpenCL_ICD32.dll
2015-07-30 23:24:31 ----A---- C:\WINDOWS\system32\IntelWiDiWinNextAgent64.dll
2015-07-30 23:24:31 ----A---- C:\WINDOWS\system32\IntelWiDiVAD64.exe
2015-07-30 23:24:31 ----A---- C:\WINDOWS\system32\IntelWiDiUtils64.dll
2015-07-30 23:24:31 ----A---- C:\WINDOWS\system32\IntelWiDiUMS64.exe
2015-07-30 23:24:31 ----A---- C:\WINDOWS\system32\IntelWiDiSilenceFilter64.dll
2015-07-30 23:24:31 ----A---- C:\WINDOWS\system32\IntelWiDiSecureSourceFilter64.dll
2015-07-30 23:24:31 ----A---- C:\WINDOWS\system32\IntelWiDiMux64.dll
2015-07-30 23:24:31 ----A---- C:\WINDOWS\system32\IntelWiDiMCUMD64.dll
2015-07-30 23:24:31 ----A---- C:\WINDOWS\system32\IntelWiDiLogServer64.dll
2015-07-30 23:24:31 ----A---- C:\WINDOWS\system32\IntelWiDiDDEAgent64.dll
2015-07-30 23:24:31 ----A---- C:\WINDOWS\system32\IntelWiDiAudioFilter64.dll
2015-07-30 23:24:31 ----A---- C:\WINDOWS\system32\Intel_OpenCL_ICD64.dll
2015-07-30 23:24:30 ----A---- C:\WINDOWS\SYSWOW64\IntelOpenCL32.dll
2015-07-30 23:24:30 ----A---- C:\WINDOWS\SYSWOW64\IntelCpHeciSvc.exe
2015-07-30 23:24:30 ----A---- C:\WINDOWS\SYSWOW64\iglhsip32.dll
2015-07-30 23:24:30 ----A---- C:\WINDOWS\SYSWOW64\iglhcp32.dll
2015-07-30 23:24:30 ----A---- C:\WINDOWS\system32\IntelWiDiAAC64.dll
2015-07-30 23:24:30 ----A---- C:\WINDOWS\system32\IntelOpenCL64.dll
2015-07-30 23:24:30 ----A---- C:\WINDOWS\system32\iglhsip64.dll
2015-07-30 23:24:30 ----A---- C:\WINDOWS\system32\iglhcp64.dll
2015-07-30 23:24:30 ----A---- C:\WINDOWS\system32\igfxTray.exe
2015-07-30 23:24:30 ----A---- C:\WINDOWS\system32\igfxOSP.dll
2015-07-30 23:24:30 ----A---- C:\WINDOWS\system32\igfxLHMLibv2_0.dll
2015-07-30 23:24:30 ----A---- C:\WINDOWS\system32\igfxCoIn_v4252.dll
2015-07-30 23:24:29 ----A---- C:\WINDOWS\SYSWOW64\igfxexps32.dll
2015-07-30 23:24:29 ----A---- C:\WINDOWS\system32\igfxLHMLib.dll
2015-07-30 23:24:29 ----A---- C:\WINDOWS\system32\igfxLHM.dll
2015-07-30 23:24:29 ----A---- C:\WINDOWS\system32\igfxHK.exe
2015-07-30 23:24:29 ----A---- C:\WINDOWS\system32\igfxext.exe
2015-07-30 23:24:29 ----A---- C:\WINDOWS\system32\igfxexps.dll
2015-07-30 23:24:29 ----A---- C:\WINDOWS\system32\igfxEMLibv2_0.dll
2015-07-30 23:24:29 ----A---- C:\WINDOWS\system32\igfxEMLib.dll
2015-07-30 23:24:29 ----A---- C:\WINDOWS\system32\igfxEM.exe
2015-07-30 23:24:29 ----A---- C:\WINDOWS\system32\igfxDTCM.dll
2015-07-30 23:24:29 ----A---- C:\WINDOWS\system32\igfxDILibv2_0.dll
2015-07-30 23:24:29 ----A---- C:\WINDOWS\system32\igfxDILib.dll
2015-07-30 23:24:29 ----A---- C:\WINDOWS\system32\igfxDI.dll
2015-07-30 23:24:29 ----A---- C:\WINDOWS\system32\igfxDHLibv2_0.dll
2015-07-30 23:24:29 ----A---- C:\WINDOWS\system32\igfxDHLib.dll
2015-07-30 23:24:29 ----A---- C:\WINDOWS\system32\igfxDH.dll
2015-07-30 23:24:29 ----A---- C:\WINDOWS\system32\igfxCUIServicePS.dll
2015-07-30 23:24:29 ----A---- C:\WINDOWS\system32\igfxCUIService.exe
2015-07-30 23:24:28 ----A---- C:\WINDOWS\SYSWOW64\igfxcmrt32.dll
2015-07-30 23:24:28 ----A---- C:\WINDOWS\SYSWOW64\igfxcmjit32.dll
2015-07-30 23:24:28 ----A---- C:\WINDOWS\SYSWOW64\igfx11cmrt32.dll
2015-07-30 23:24:28 ----A---- C:\WINDOWS\system32\igfxcmrt64.dll
2015-07-30 23:24:28 ----A---- C:\WINDOWS\system32\igfxcmjit64.dll
2015-07-30 23:24:28 ----A---- C:\WINDOWS\system32\igfx11cmrt64.dll
2015-07-30 23:24:28 ----A---- C:\WINDOWS\system32\igdusc64.dll
2015-07-30 23:24:27 ----A---- C:\WINDOWS\SYSWOW64\igdusc32.dll
2015-07-30 23:24:27 ----A---- C:\WINDOWS\system32\igdumdim64.dll
2015-07-30 23:24:26 ----A---- C:\WINDOWS\SYSWOW64\igdumdim32.dll
2015-07-30 23:24:26 ----A---- C:\WINDOWS\SYSWOW64\igdrcl32.dll
2015-07-30 23:24:26 ----A---- C:\WINDOWS\SYSWOW64\igdmd32.dll
2015-07-30 23:24:26 ----A---- C:\WINDOWS\system32\igdrcl64.dll
2015-07-30 23:24:26 ----A---- C:\WINDOWS\system32\igdmd64.dll
2015-07-30 23:24:26 ----A---- C:\WINDOWS\system32\drivers\igdkmd64.sys
2015-07-30 23:24:25 ----A---- C:\WINDOWS\system32\igdfcl64.dll
2015-07-30 23:24:24 ----A---- C:\WINDOWS\SYSWOW64\igdfcl32.dll
2015-07-30 23:24:24 ----A---- C:\WINDOWS\SYSWOW64\igdde32.dll
2015-07-30 23:24:24 ----A---- C:\WINDOWS\SYSWOW64\igdbcl32.dll
2015-07-30 23:24:24 ----A---- C:\WINDOWS\SYSWOW64\igdail32.dll
2015-07-30 23:24:24 ----A---- C:\WINDOWS\SYSWOW64\igd10iumd32.dll
2015-07-30 23:24:24 ----A---- C:\WINDOWS\system32\igdde64.dll
2015-07-30 23:24:24 ----A---- C:\WINDOWS\system32\igdbcl64.dll
2015-07-30 23:24:24 ----A---- C:\WINDOWS\system32\igdail64.dll
2015-07-30 23:24:24 ----A---- C:\WINDOWS\system32\igd10iumd64.dll
2015-07-30 23:24:23 ----A---- C:\WINDOWS\SYSWOW64\ig7icd32.dll
2015-07-30 23:24:23 ----A---- C:\WINDOWS\system32\ig7icd64.dll
2015-07-30 23:24:23 ----A---- C:\WINDOWS\system32\IccLibDll_x64.dll
2015-07-30 23:24:22 ----A---- C:\WINDOWS\system32\Gfxv4_0.exe
2015-07-30 23:24:22 ----A---- C:\WINDOWS\system32\Gfxv2_0.exe
2015-07-30 23:24:22 ----A---- C:\WINDOWS\system32\GfxUIEx.exe
2015-07-30 23:24:22 ----A---- C:\WINDOWS\system32\DPTopologyAppv2_0.exe
2015-07-30 23:24:22 ----A---- C:\WINDOWS\system32\DPTopologyApp.exe
2015-07-30 23:24:22 ----A---- C:\WINDOWS\system32\difx64.exe
2015-07-30 23:24:22 ----A---- C:\WINDOWS\system32\CustomModeAppv2_0.exe
2015-07-30 23:24:22 ----A---- C:\WINDOWS\system32\CustomModeApp.exe
2015-07-30 23:20:39 ----D---- C:\ProgramData\Microsoft OneDrive
2015-07-30 23:06:42 ----DC---- C:\WINDOWS\Panther
2015-07-30 23:04:17 ----A---- C:\WINDOWS\system32\RDXService.dll
2015-07-30 23:04:05 ----A---- C:\WINDOWS\SYSWOW64\explorer.exe
2015-07-30 23:04:05 ----A---- C:\WINDOWS\explorer.exe
2015-07-30 23:00:41 ----SHD---- C:\Recovery
2015-07-30 23:00:17 ----D---- C:\Windows.old
2015-07-30 22:57:32 ----A---- C:\WINDOWS\system32\emptyregdb.dat
2015-07-30 22:56:02 ----D---- C:\WINDOWS\SYSWOW64\XPSViewer
2015-07-30 22:55:59 ----D---- C:\Program Files\Reference Assemblies
2015-07-30 22:55:59 ----D---- C:\Program Files\MSBuild
2015-07-30 22:55:59 ----D---- C:\Program Files (x86)\Reference Assemblies
2015-07-30 22:55:59 ----D---- C:\Program Files (x86)\MSBuild
2015-07-30 22:55:59 ----D---- C:\inetpub
2015-07-30 22:54:52 ----A---- C:\WINDOWS\SYSWOW64\TsWpfWrp.exe
2015-07-30 22:54:52 ----A---- C:\WINDOWS\SYSWOW64\PresentationNative_v0300.dll
2015-07-30 22:54:51 ----A---- C:\WINDOWS\SYSWOW64\PresentationCFFRasterizerNative_v0300.dll
2015-07-30 22:54:45 ----A---- C:\WINDOWS\system32\TsWpfWrp.exe
2015-07-30 22:54:43 ----A---- C:\WINDOWS\system32\PresentationNative_v0300.dll
2015-07-30 22:54:40 ----A---- C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2015-07-30 22:45:24 ----A---- C:\WINDOWS\SYSWOW64\PrintConfig.dll
2015-07-30 22:19:01 ----SD---- C:\Users\bdank_000\AppData\Roaming\Microsoft
2015-07-30 22:16:38 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2015-07-30 22:16:28 ----A---- C:\WINDOWS\SYSWOW64\PerfStringBackup.INI
2015-07-30 22:12:37 ----D---- C:\WINDOWS\system32\SRSLabs
2015-07-30 22:12:33 ----D---- C:\WINDOWS\SYSWOW64\RTCOM
2015-07-30 22:12:33 ----D---- C:\Program Files\Realtek
2015-07-30 22:12:23 ----D---- C:\Program Files\Synaptics
2015-07-30 22:08:21 ----D---- C:\WINDOWS\Prefetch
2015-07-30 20:58:56 ----HD---- C:\$Windows.~BT
2015-07-30 20:19:27 ----HD---- C:\$Windows.~WS
2015-07-25 15:43:23 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service

======List of files/folders modified in the last 1 month======

2015-08-15 17:13:08 ----RD---- C:\Program Files
2015-08-15 17:06:16 ----D---- C:\WINDOWS\INF
2015-08-15 17:06:02 ----D---- C:\WINDOWS\SoftwareDistribution
2015-08-15 17:06:02 ----D---- C:\WINDOWS\debug
2015-08-15 17:06:02 ----D---- C:\Windows
2015-08-15 17:06:01 ----D---- C:\WINDOWS\Temp
2015-08-15 16:26:00 ----D---- C:\WINDOWS\system32\sru
2015-08-15 16:00:15 ----D---- C:\WINDOWS\system32\config
2015-08-15 15:57:36 ----D---- C:\WINDOWS\WinSxS
2015-08-15 15:55:44 ----D---- C:\WINDOWS\CbsTemp
2015-08-15 15:25:07 ----RD---- C:\Program Files (x86)
2015-08-15 15:24:48 ----D---- C:\WINDOWS\System32
2015-08-15 10:23:09 ----D---- C:\Users\bdank_000\AppData\Roaming\Dropbox
2015-08-14 20:53:20 ----D---- C:\WINDOWS\Microsoft.NET
2015-08-14 20:51:36 ----RSD---- C:\WINDOWS\assembly
2015-08-14 20:35:56 ----D---- C:\WINDOWS\SysWOW64
2015-08-14 20:34:19 ----D---- C:\WINDOWS\Logs
2015-08-14 19:35:53 ----HD---- C:\Program Files\WindowsApps
2015-08-14 19:35:45 ----D---- C:\WINDOWS\AppReadiness
2015-08-14 17:34:10 ----D---- C:\WINDOWS\system32\drivers
2015-08-14 17:31:06 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe
2015-08-14 17:28:25 ----HD---- C:\WINDOWS\Installer
2015-08-14 17:25:58 ----D---- C:\WINDOWS\system32\catroot2
2015-08-14 17:19:10 ----SHD---- C:\System Volume Information
2015-08-01 17:59:00 ----D---- C:\WINDOWS\system32\WinBioDatabase
2015-08-01 08:54:48 ----D---- C:\WINDOWS\system32\WDI
2015-07-31 09:24:47 ----D---- C:\Users\bdank_000\AppData\Roaming\DAEMON Tools Lite
2015-07-31 09:18:48 ----D---- C:\WINDOWS\system32\DriverStore
2015-07-31 09:18:46 ----D---- C:\WINDOWS\system32\CatRoot
2015-07-31 09:02:49 ----D---- C:\WINDOWS\appcompat
2015-07-30 23:40:35 ----A---- C:\WINDOWS\system32\SynTPAPI.dll
2015-07-30 23:40:26 ----A---- C:\WINDOWS\system32\WdfCoInstaller01011.dll
2015-07-30 23:40:21 ----A---- C:\WINDOWS\system32\SynCOM.dll
2015-07-30 23:36:43 ----RD---- C:\WINDOWS\DevicesFlow
2015-07-30 23:25:16 ----A---- C:\WINDOWS\SYSWOW64\OpenCL.DLL
2015-07-30 23:25:16 ----A---- C:\WINDOWS\system32\OpenCL.DLL
2015-07-30 23:20:39 ----HD---- C:\ProgramData
2015-07-30 23:16:40 ----RD---- C:\WINDOWS\PurchaseDialog
2015-07-30 23:16:36 ----RD---- C:\WINDOWS\PrintDialog
2015-07-30 23:16:33 ----RD---- C:\WINDOWS\MiracastView
2015-07-30 23:16:30 ----RD---- C:\WINDOWS\ImmersiveControlPanel
2015-07-30 23:05:16 ----D---- C:\WINDOWS\rescache
2015-07-30 23:04:22 ----D---- C:\WINDOWS\system32\restore
2015-07-30 23:00:46 ----D---- C:\Program Files\Windows NT
2015-07-30 22:58:34 ----D---- C:\WINDOWS\Registration
2015-07-30 22:58:29 ----D---- C:\WINDOWS\system32\Tasks
2015-07-30 22:56:02 ----D---- C:\WINDOWS\SYSWOW64\MUI
2015-07-30 22:56:02 ----D---- C:\WINDOWS\SYSWOW64\migration
2015-07-30 22:56:02 ----D---- C:\WINDOWS\SYSWOW64\inetsrv
2015-07-30 22:56:02 ----D---- C:\WINDOWS\system32\MUI
2015-07-30 22:56:02 ----D---- C:\WINDOWS\system32\inetsrv
2015-07-30 22:55:49 ----A---- C:\WINDOWS\system32\wamregps.dll
2015-07-30 22:55:49 ----A---- C:\WINDOWS\system32\iisRtl.dll
2015-07-30 22:55:49 ----A---- C:\WINDOWS\system32\iisrstap.dll
2015-07-30 22:55:49 ----A---- C:\WINDOWS\system32\iisreset.exe
2015-07-30 22:55:49 ----A---- C:\WINDOWS\system32\ahadmin.dll
2015-07-30 22:55:49 ----A---- C:\WINDOWS\system32\admwprox.dll
2015-07-30 22:55:47 ----A---- C:\WINDOWS\SYSWOW64\dpwsockx.dll
2015-07-30 22:55:47 ----A---- C:\WINDOWS\SYSWOW64\dpmodemx.dll
2015-07-30 22:55:47 ----A---- C:\WINDOWS\SYSWOW64\dplayx.dll
2015-07-30 22:55:47 ----A---- C:\WINDOWS\SYSWOW64\dplaysvr.exe
2015-07-30 22:55:46 ----A---- C:\WINDOWS\SYSWOW64\iisRtl.dll
2015-07-30 22:55:46 ----A---- C:\WINDOWS\SYSWOW64\admwprox.dll
2015-07-30 22:55:45 ----A---- C:\WINDOWS\SYSWOW64\wamregps.dll
2015-07-30 22:55:45 ----A---- C:\WINDOWS\SYSWOW64\iisrstap.dll
2015-07-30 22:55:45 ----A---- C:\WINDOWS\SYSWOW64\iisreset.exe
2015-07-30 22:55:45 ----A---- C:\WINDOWS\SYSWOW64\ahadmin.dll
2015-07-30 22:55:41 ----A---- C:\WINDOWS\SYSWOW64\dpnsvr.exe
2015-07-30 22:55:41 ----A---- C:\WINDOWS\SYSWOW64\dpnlobby.dll
2015-07-30 22:55:41 ----A---- C:\WINDOWS\SYSWOW64\dpnhupnp.dll
2015-07-30 22:55:41 ----A---- C:\WINDOWS\SYSWOW64\dpnhpast.dll
2015-07-30 22:55:41 ----A---- C:\WINDOWS\SYSWOW64\dpnet.dll
2015-07-30 22:55:41 ----A---- C:\WINDOWS\SYSWOW64\dpnathlp.dll
2015-07-30 22:55:41 ----A---- C:\WINDOWS\SYSWOW64\dpnaddr.dll
2015-07-30 22:55:33 ----A---- C:\WINDOWS\system32\dpnsvr.exe
2015-07-30 22:55:33 ----A---- C:\WINDOWS\system32\dpnlobby.dll
2015-07-30 22:55:33 ----A---- C:\WINDOWS\system32\dpnhupnp.dll
2015-07-30 22:55:33 ----A---- C:\WINDOWS\system32\dpnhpast.dll
2015-07-30 22:55:33 ----A---- C:\WINDOWS\system32\dpnet.dll
2015-07-30 22:55:33 ----A---- C:\WINDOWS\system32\dpnathlp.dll
2015-07-30 22:55:33 ----A---- C:\WINDOWS\system32\dpnaddr.dll
2015-07-30 22:52:09 ----D---- C:\WINDOWS\system32\LogFiles
2015-07-30 22:51:44 ----D---- C:\WINDOWS\system32\drivers\etc
2015-07-30 22:49:50 ----D---- C:\WINDOWS\system32\wbem
2015-07-30 22:40:19 ----RSD---- C:\WINDOWS\Fonts
2015-07-30 22:40:18 ----D---- C:\WINDOWS\Tasks
2015-07-30 22:40:18 ----D---- C:\ProgramData\regid.1991-06.com.microsoft
2015-07-30 22:26:57 ----D---- C:\WINDOWS\SYSWOW64\zh-TW
2015-07-30 22:26:57 ----D---- C:\WINDOWS\SYSWOW64\zh-HK
2015-07-30 22:26:57 ----D---- C:\WINDOWS\SYSWOW64\zh-CN
2015-07-30 22:26:55 ----D---- C:\WINDOWS\SYSWOW64\uk-UA
2015-07-30 22:26:55 ----D---- C:\WINDOWS\SYSWOW64\tr-TR
2015-07-30 22:26:55 ----D---- C:\WINDOWS\SYSWOW64\th-TH
2015-07-30 22:26:54 ----D---- C:\WINDOWS\SYSWOW64\sv-SE
2015-07-30 22:26:54 ----D---- C:\WINDOWS\SYSWOW64\sr-Latn-RS
2015-07-30 22:26:54 ----D---- C:\WINDOWS\SYSWOW64\sl-SI
2015-07-30 22:26:53 ----D---- C:\WINDOWS\SYSWOW64\sk-SK
2015-07-30 22:26:53 ----D---- C:\WINDOWS\SYSWOW64\sda
2015-07-30 22:26:53 ----D---- C:\WINDOWS\SYSWOW64\ru-RU
2015-07-30 22:26:52 ----D---- C:\WINDOWS\SYSWOW64\ro-RO
2015-07-30 22:26:52 ----D---- C:\WINDOWS\SYSWOW64\pt-PT
2015-07-30 22:26:52 ----D---- C:\WINDOWS\SYSWOW64\pt-BR
2015-07-30 22:26:51 ----D---- C:\WINDOWS\SYSWOW64\pl-PL
2015-07-30 22:26:51 ----D---- C:\WINDOWS\SYSWOW64\nl-NL
2015-07-30 22:26:51 ----D---- C:\WINDOWS\SYSWOW64\nb-NO
2015-07-30 22:26:51 ----D---- C:\WINDOWS\SYSWOW64\ms-my
2015-07-30 22:26:50 ----D---- C:\WINDOWS\SYSWOW64\lv-LV
2015-07-30 22:26:50 ----D---- C:\WINDOWS\SYSWOW64\lt-LT
2015-07-30 22:26:50 ----D---- C:\WINDOWS\SYSWOW64\ko-KR
2015-07-30 22:26:49 ----D---- C:\WINDOWS\SYSWOW64\ja-JP
2015-07-30 22:26:49 ----D---- C:\WINDOWS\SYSWOW64\it-IT
2015-07-30 22:26:48 ----D---- C:\WINDOWS\SYSWOW64\hu-HU
2015-07-30 22:26:47 ----D---- C:\WINDOWS\SYSWOW64\hr-HR
2015-07-30 22:26:47 ----D---- C:\WINDOWS\SYSWOW64\he-IL
2015-07-30 22:26:47 ----D---- C:\WINDOWS\SYSWOW64\gl-es
2015-07-30 22:26:47 ----D---- C:\WINDOWS\SYSWOW64\fr-FR
2015-07-30 22:26:47 ----D---- C:\WINDOWS\SYSWOW64\fi-FI
2015-07-30 22:26:47 ----D---- C:\WINDOWS\SYSWOW64\eu-es
2015-07-30 22:26:46 ----D---- C:\WINDOWS\SYSWOW64\et-EE
2015-07-30 22:26:46 ----D---- C:\WINDOWS\SYSWOW64\es-ES
2015-07-30 22:26:45 ----D---- C:\WINDOWS\SYSWOW64\en-GB
2015-07-30 22:26:44 ----D---- C:\WINDOWS\SYSWOW64\el-GR
2015-07-30 22:26:44 ----D---- C:\WINDOWS\SYSWOW64\drivers
2015-07-30 22:26:44 ----D---- C:\WINDOWS\SYSWOW64\de-DE
2015-07-30 22:26:44 ----D---- C:\WINDOWS\SYSWOW64\da-DK
2015-07-30 22:26:43 ----D---- C:\WINDOWS\SYSWOW64\cs-CZ
2015-07-30 22:26:43 ----D---- C:\WINDOWS\SYSWOW64\ca-es-valencia
2015-07-30 22:26:43 ----D---- C:\WINDOWS\SYSWOW64\ca-es
2015-07-30 22:26:42 ----D---- C:\WINDOWS\SYSWOW64\bg-BG
2015-07-30 22:26:42 ----D---- C:\WINDOWS\SYSWOW64\ar-SA
2015-07-30 22:26:42 ----D---- C:\WINDOWS\SYSWOW64\Adobe
2015-07-30 22:26:38 ----D---- C:\WINDOWS\system32\zh-TW
2015-07-30 22:26:38 ----D---- C:\WINDOWS\system32\zh-HK
2015-07-30 22:26:37 ----D---- C:\WINDOWS\system32\zh-CN
2015-07-30 22:26:35 ----D---- C:\WINDOWS\system32\WindowsInternal.Inbox.Shared
2015-07-30 22:26:35 ----D---- C:\WINDOWS\system32\WindowsInternal.Inbox.Media.Shared
2015-07-30 22:26:34 ----D---- C:\WINDOWS\system32\uk-UA
2015-07-30 22:26:34 ----D---- C:\WINDOWS\system32\tr-TR
2015-07-30 22:26:33 ----D---- C:\WINDOWS\system32\th-TH
2015-07-30 22:26:33 ----D---- C:\WINDOWS\system32\sv-SE
2015-07-30 22:26:32 ----D---- C:\WINDOWS\system32\sr-Latn-RS
2015-07-30 22:26:32 ----D---- C:\WINDOWS\system32\spool
2015-07-30 22:26:30 ----D---- C:\WINDOWS\system32\sl-SI
2015-07-30 22:26:30 ----D---- C:\WINDOWS\system32\sk-SK
2015-07-30 22:26:29 ----D---- C:\WINDOWS\system32\ru-RU
2015-07-30 22:26:29 ----D---- C:\WINDOWS\system32\ro-RO
2015-07-30 22:26:29 ----D---- C:\WINDOWS\system32\pt-PT
2015-07-30 22:26:29 ----D---- C:\WINDOWS\system32\pt-BR
2015-07-30 22:26:28 ----D---- C:\WINDOWS\system32\pl-PL
2015-07-30 22:26:28 ----D---- C:\WINDOWS\system32\oobe
2015-07-30 22:26:23 ----D---- C:\WINDOWS\system32\nl-NL
2015-07-30 22:26:23 ----D---- C:\WINDOWS\system32\NDF
2015-07-30 22:26:23 ----D---- C:\WINDOWS\system32\nb-NO
2015-07-30 22:26:23 ----D---- C:\WINDOWS\system32\ms-my
2015-07-30 22:26:23 ----D---- C:\WINDOWS\system32\migration
2015-07-30 22:26:22 ----D---- C:\WINDOWS\system32\lv-LV
2015-07-30 22:26:22 ----D---- C:\WINDOWS\system32\lt-LT
2015-07-30 22:26:21 ----D---- C:\WINDOWS\system32\ko-KR
2015-07-30 22:26:21 ----D---- C:\WINDOWS\system32\ja-JP
2015-07-30 22:26:21 ----D---- C:\WINDOWS\system32\it-IT
2015-07-30 22:26:21 ----D---- C:\WINDOWS\system32\InputMethod
2015-07-30 22:26:20 ----D---- C:\WINDOWS\system32\hu-HU
2015-07-30 22:26:19 ----D---- C:\WINDOWS\system32\hr-HR
2015-07-30 22:26:19 ----D---- C:\WINDOWS\system32\he-IL
2015-07-30 22:26:18 ----D---- C:\WINDOWS\system32\gl-es
2015-07-30 22:26:18 ----D---- C:\WINDOWS\system32\fr-FR
2015-07-30 22:26:18 ----D---- C:\WINDOWS\system32\fi-FI
2015-07-30 22:26:18 ----D---- C:\WINDOWS\system32\eu-es
2015-07-30 22:26:17 ----D---- C:\WINDOWS\system32\et-EE
2015-07-30 22:26:17 ----D---- C:\WINDOWS\system32\es-ES
2015-07-30 22:26:16 ----D---- C:\WINDOWS\system32\en-GB
2015-07-30 22:26:15 ----DC---- C:\WINDOWS\system32\DRVSTORE
2015-07-30 22:26:15 ----D---- C:\WINDOWS\system32\el-GR
2015-07-30 22:26:14 ----D---- C:\WINDOWS\system32\de-DE
2015-07-30 22:26:14 ----D---- C:\WINDOWS\system32\da-DK
2015-07-30 22:26:13 ----D---- C:\WINDOWS\system32\cs-CZ
2015-07-30 22:24:42 ----D---- C:\WINDOWS\system32\ca-es-valencia
2015-07-30 22:24:41 ----D---- C:\WINDOWS\system32\ca-es
2015-07-30 22:24:41 ----D---- C:\WINDOWS\system32\bg-BG
2015-07-30 22:24:41 ----D---- C:\WINDOWS\system32\ar-SA
2015-07-30 22:24:35 ----D---- C:\WINDOWS\MediaViewer
2015-07-30 22:24:30 ----D---- C:\WINDOWS\InputMethod
2015-07-30 22:24:22 ----SD---- C:\WINDOWS\Downloaded Program Files
2015-07-30 22:24:21 ----D---- C:\WINDOWS\ADFS
2015-07-30 22:24:17 ----RD---- C:\Users
2015-07-30 22:24:16 ----SD---- C:\ProgramData\Microsoft
2015-07-30 22:24:02 ----D---- C:\Program Files (x86)\Windows Mail
2015-07-30 22:24:01 ----D---- C:\Program Files (x86)\Microsoft.NET
2015-07-30 22:24:00 ----D---- C:\Program Files (x86)\Hewlett-Packard
2015-07-30 22:23:59 ----D---- C:\Program Files (x86)\Common Files
2015-07-30 22:23:57 ----D---- C:\Program Files\Windows Mail
2015-07-30 22:23:56 ----D---- C:\Program Files\Intel
2015-07-30 22:23:56 ----D---- C:\Program Files\Common Files\microsoft shared
2015-07-30 22:21:32 ----D---- C:\WINDOWS\system32\Recovery
2015-07-30 22:18:08 ----D---- C:\WINDOWS\system32\CodeIntegrity
2015-07-30 22:16:05 ----D---- C:\WINDOWS\system32\Sysprep
2015-07-27 16:13:12 ----D---- C:\Users\bdank_000\AppData\Roaming\uTorrent
2015-07-21 19:44:07 ----D---- C:\Program Files\Microsoft Office 15
2015-07-18 09:44:40 ----D---- C:\ProgramData\Oracle
2015-07-18 09:44:03 ----D---- C:\Program Files (x86)\Java
2015-07-18 09:41:01 ----A---- C:\WINDOWS\SYSWOW64\WindowsAccessBridge-32.dll
2015-07-17 21:38:08 ----RD---- C:\WINDOWS\ToastData
2015-07-17 19:28:05 ----D---- C:\Users\bdank_000\AppData\Roaming\Skype
2015-07-17 14:50:27 ----D---- C:\WINDOWS\system32\MRT
2015-07-17 14:38:13 ----N---- C:\WINDOWS\system32\MRT.exe

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 aswRvrt;avast! Revert; C:\WINDOWS\system32\drivers\aswRvrt.sys [2015-05-09 65736]
R0 aswVmm;avast! VM Monitor; C:\WINDOWS\system32\drivers\aswVmm.sys [2015-05-09 272248]
R0 MBI;@oem6.inf,%MBI.SVCDESC%;Intel(R) Sideband Fabric Device Service; C:\WINDOWS\System32\drivers\MBI.sys [2014-01-23 29464]
R0 pe3ah4nc;DiRT Environment Driver (pe3ah4nc); C:\WINDOWS\system32\drivers\pe3ah4nc.sys [2007-05-18 72560]
R0 ps6ah4nc;DiRT Synchronization Driver (ps6ah4nc); C:\WINDOWS\system32\drivers\ps6ah4nc.sys [2007-05-18 77176]
R1 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr2.sys [2015-05-09 93528]
R1 aswSP;aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [2015-06-27 442264]
R1 CFRMD;CFRMD; C:\WINDOWS\system32\DRIVERS\CFRMD.sys [2014-06-26 40224]
R1 CLVirtualDrive;CLVirtualDrive; C:\WINDOWS\system32\DRIVERS\CLVirtualDrive.sys [2013-11-12 91912]
R1 cmderd;COMODO Internet Security Eradication Driver; C:\WINDOWS\System32\DRIVERS\cmderd.sys [2015-06-05 20672]
R1 cmdGuard;COMODO Internet Security Sandbox Driver; C:\WINDOWS\system32\DRIVERS\cmdguard.sys [2015-06-05 820928]
R1 cmdhlp;COMODO Internet Security Helper Driver; C:\WINDOWS\system32\DRIVERS\cmdhlp.sys [2015-06-05 35056]
R1 FileCrypt;@%systemroot%\system32\drivers\filecrypt.sys,-100; C:\WINDOWS\system32\drivers\filecrypt.sys [2015-07-10 83968]
R1 GpuEnergyDrv;@%SystemRoot%\system32\drivers\gpuenergydrv.sys,-100; C:\WINDOWS\System32\drivers\gpuenergydrv.sys [2015-07-10 8192]
R1 inspect;COMODO Internet Security Firewall Driver; C:\WINDOWS\system32\DRIVERS\inspect.sys [2015-04-01 126720]
R2 aswHwid;avast! HardwareID; C:\WINDOWS\system32\drivers\aswHwid.sys [2015-05-09 29168]
R2 aswMonFlt;aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [2015-05-09 89944]
R2 aswStm;aswStm; C:\WINDOWS\system32\drivers\aswStm.sys [2015-05-09 137288]
R2 MMCSS;@%systemroot%\system32\drivers\mmcss.sys,-100; C:\WINDOWS\system32\drivers\mmcss.sys [2015-07-10 48128]
R2 storqosflt;@%SystemRoot%\System32\drivers\storqosflt.sys,-101; C:\WINDOWS\system32\drivers\storqosflt.sys [2015-07-10 61952]
R3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Služba Bluetooth Enumerator; C:\WINDOWS\System32\drivers\BthEnum.sys [2015-07-10 105984]
R3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Ovladač úspory energie technologie Bluetooth; C:\WINDOWS\system32\DRIVERS\BthLEEnum.sys [2015-07-10 237568]
R3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Bluetooth Device (Personal Area Network); C:\WINDOWS\System32\drivers\bthpan.sys [2015-07-10 128512]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Ovladač rozhraní USB radiostanice Bluetooth; C:\WINDOWS\System32\Drivers\BTHUSB.sys [2015-07-10 84992]
R3 clwvd;@oem0.inf,%clwvd.DeviceDesc%;CyberLink WebCam Virtual Driver; C:\WINDOWS\system32\DRIVERS\clwvd.sys [2014-01-28 41704]
R3 dtlitescsibus;@oem30.inf,%DTLITESCSIBUS.DeviceDesc%;DAEMON Tools Lite Virtual SCSI Bus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [2015-04-30 30352]
R3 GPIO;@oem12.inf,%GPIO.SVCDESC%;Intel SoC GPIO Controller Driver; C:\WINDOWS\System32\drivers\iaiogpioe.sys [2013-11-11 31232]
R3 igfx;igfx; C:\WINDOWS\system32\DRIVERS\igdkmd64.sys [2015-07-30 3789240]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RTKVHD64.sys [2014-06-24 4001752]
R3 IntcDAud;@oem16.inf,%IntcDAud.SvcDesc%;Intel(R) Display Audio; C:\WINDOWS\system32\DRIVERS\IntcDAud.sys [2015-05-01 454416]
R3 iwdbus;@oem17.inf,%iwdbus.SVCDESC%;IWD Bus Enumerator; C:\WINDOWS\System32\drivers\iwdbus.sys [2015-07-31 39480]
R3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Zařízení Bluetooth (RFCOMM protokol TDI); C:\WINDOWS\System32\drivers\rfcomm.sys [2015-07-10 167936]
R3 RSP2STOR;@oem31.inf,%Rts5229%;Realtek PCIE CardReader Driver - P2; C:\WINDOWS\system32\DRIVERS\RtsP2Stor.sys [2015-05-02 294104]
R3 RTL8168;@oem21.inf,%rtl8168.Service.DispName%;Realtek 8168 NT Driver; C:\WINDOWS\System32\drivers\Rt630x64.sys [2015-05-02 874712]
R3 RTWlanE;@netrtwlane.inf,%RTWlanE.DeviceDesc.DispName%;Realtek Wireless LAN 802.11n PCI-E – síťový adaptér; C:\WINDOWS\system32\DRIVERS\rtwlane.sys [2015-07-10 3453144]
R3 SmbDrvI;SmbDrvI; C:\WINDOWS\system32\DRIVERS\Smb_driver_Intel.sys [2015-07-30 42696]
R3 SynTP;@oem36.inf,%SynTP.SvcDesc%;Synaptics TouchPad Driver; C:\WINDOWS\system32\DRIVERS\SynTP.sys [2015-07-30 614088]
R3 TXEIx64;@oem7.inf,%TEE_SvcDesc%;Intel(R) Trusted Execution Engine Interface ; C:\WINDOWS\System32\drivers\TXEIx64.sys [2014-01-15 88592]
S0 LSI_SAS2i;LSI_SAS2i; C:\WINDOWS\System32\drivers\lsi_sas2i.sys [2015-07-10 104800]
S0 LSI_SAS3i;LSI_SAS3i; C:\WINDOWS\System32\drivers\lsi_sas3i.sys [2015-07-10 99168]
S0 percsas2i;percsas2i; C:\WINDOWS\System32\drivers\percsas2i.sys [2015-07-10 58208]
S0 percsas3i;percsas3i; C:\WINDOWS\System32\drivers\percsas3i.sys [2015-07-10 58720]
S0 storufs;@storufs.inf,%UfsServiceDesc%;Microsoft Universal Flash Storage (UFS) Driver; C:\WINDOWS\System32\drivers\storufs.sys [2015-07-10 40288]
S1 aswSnx;aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [2015-05-09 1047320]
S2 atksgt;atksgt; C:\WINDOWS\system32\DRIVERS\atksgt.sys [2015-07-13 303616]
S2 lirsgt;lirsgt; C:\WINDOWS\system32\DRIVERS\lirsgt.sys [2015-07-13 35328]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Ovladač portu Bluetooth; C:\WINDOWS\System32\Drivers\BTHport.sys [2015-07-10 928768]
S3 buttonconverter;@buttonconverter.inf,%btnconv.SvcDesc%;Service for Portable Device Control devices; C:\WINDOWS\System32\drivers\buttonconverter.sys [2015-07-10 32256]
S3 CapImg;@capimg.inf,%CapImgHid_Service%;HID driver for CapImg touch screen; C:\WINDOWS\System32\drivers\capimg.sys [2015-07-10 116736]
S3 fcvsc;fcvsc; C:\WINDOWS\System32\drivers\fcvsc.sys [2015-07-10 31232]
S3 genericusbfn;@genericusbfn.inf,%genericusbfn.ServiceName%;Generic USB Function Class; C:\WINDOWS\System32\drivers\genericusbfn.sys [2015-07-10 20992]
S3 hidinterrupt;@hidinterrupt.inf,%HID.SvcDesc%;Common Driver for HID Buttons implemented with interrupts; C:\WINDOWS\System32\drivers\hidinterrupt.sys [2015-07-10 50016]
S3 iaStorA;iaStorA; C:\WINDOWS\System32\drivers\iaStorA.sys [2013-11-06 632168]
S3 ibbus;@mlx4_bus.inf,%Ibbus.ServiceDesc%;Mellanox InfiniBand Bus/AL (Filter Driver); C:\WINDOWS\System32\drivers\ibbus.sys [2015-07-10 424800]
S3 intaud_WaveExtensible;@oem3.inf,%INTAUD_WEX.SvcDesc%;Intel WiDi Audio Device; C:\WINDOWS\system32\drivers\intelaud.sys [2015-07-31 50232]
S3 IoQos;@%SystemRoot%\system32\drivers\ioqos.sys,-100; C:\WINDOWS\system32\drivers\ioqos.sys [2015-07-10 26624]
S3 mlx4_bus;@mlx4_bus.inf,%MLX4BUS.ServiceDesc%;Mellanox ConnectX Bus Enumerator; C:\WINDOWS\System32\drivers\mlx4_bus.sys [2015-07-10 705376]
S3 ndfltr;@mlx4_bus.inf,%ndfltr.ServiceDesc%;NetworkDirect Service; C:\WINDOWS\System32\drivers\ndfltr.sys [2015-07-10 76128]
S3 ReFSv1;ReFSv1; C:\WINDOWS\system32\drivers\ReFSv1.sys [2015-07-10 934752]
S3 UcmCx0101;USB Connector Manager KMDF Class Extension; C:\WINDOWS\System32\Drivers\UcmCx.sys [2015-07-10 61952]
S3 UcmUcsi;@UcmUcsi.inf,%UcmUcsi.ServiceName%;USB Connector Manager UCSI Client; C:\WINDOWS\System32\drivers\UcmUcsi.sys [2015-07-10 45056]
S3 UdeCx;USB Device Emulation Support Library; C:\WINDOWS\system32\drivers\udecx.sys [2015-07-10 44032]
S3 Ufx01000;USB Function Class Extension; C:\WINDOWS\system32\drivers\ufx01000.sys [2015-07-10 245088]
S3 UfxChipidea;@ufxchipidea.inf,%UfxChipidea.ServiceName%;USB Chipidea Controller; C:\WINDOWS\System32\drivers\UfxChipidea.sys [2015-07-10 94048]
S3 ufxsynopsys;@ufxsynopsys.inf,%ufxsynopsys.ServiceName%;USB Synopsys Controller; C:\WINDOWS\System32\drivers\ufxsynopsys.sys [2015-07-10 127840]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2015-07-16 82128]
R2 AERTFilters;Andrea RT Filters Service; C:\Program Files\Realtek\Audio\HDA\AERTSr64.EXE [2014-06-24 98208]
R2 AppHostSvc;@%windir%\system32\inetsrv\iisres.dll,-30011; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
R2 ArcGIS License Manager;ArcGIS License Manager; C:\Program Files (x86)\ArcGIS\License10.2\bin\lmgrd.exe [2015-05-17 1452408]
R2 avast! Antivirus;Avast Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2015-05-09 343336]
R2 Bonjour Service;Bonjour Service; C:\Program Files\Bonjour\mDNSResponder.exe [2011-08-31 462184]
R2 BTDevManager;BTDevManager; C:\Program Files (x86)\REALTEK\Realtek Bluetooth\BTDevMgr.exe [2015-05-09 98816]
R2 ClickToRunSvc;Microsoft Office ClickToRun Service; C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe [2015-07-21 2753720]
R2 CmdAgent;COMODO Internet Security Helper Service; C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe [2015-06-10 5541960]
R2 CoreMessagingRegistrar;@%SystemRoot%\system32\coremessaging.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
R2 DiagTrack;@%SystemRoot%\system32\diagtrack.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]
R2 HPWMISVC;HPWMISVC; c:\Program Files (x86)\Hewlett-Packard\HP System Event\HPWMISVC.exe [2015-06-13 608520]
R2 ChromodoUpdater;COMODO Chromodo Update Service; C:\Program Files (x86)\Comodo\Chromodo\chromodo_updater.exe [2015-08-15 1995448]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\TXE Components\TCS\HeciServer.exe [2013-07-01 733696]
R2 OneSyncSvc_Session4;Hostitel synchronizace_Session4; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
R2 RichVideo64;Cyberlink RichVideo64 Service(CRVS); C:\Program Files\CyberLink\Shared files\RichVideo64.exe [2014-04-14 389896]
R2 RtkAudioService;Realtek Audio Service; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [2014-06-24 290520]
R2 SynTPEnhService;SynTPEnh Caller Service; C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [2015-07-30 246472]
R2 tiledatamodelsvc;@%SystemRoot%\system32\tileobjserver.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
R3 ClipSVC;@%SystemRoot%\system32\ClipSVC.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]
R3 DsSvc;@%SystemRoot%\system32\dssvc.dll,-10003; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]
R3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2015-06-17 43696]
R3 LicenseManager;@%SystemRoot%\system32\licensemanagersvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]
R3 PimIndexMaintenanceSvc_Session4;Data kontaktů_Session4; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
R3 StateRepository;@%SystemRoot%\system32\windows.staterepository.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S2 cphs;Intel(R) Content Protection HECI Service; C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe [2015-07-30 281488]
S2 dmwappushservice;@%SystemRoot%\system32\dmwappushsvc.dll,-200; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S2 DoSvc;@%systemroot%\system32\dosvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S2 HP Support Assistant Service;HP Support Assistant Service; C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe [2015-05-22 99128]
S2 igfxCUIService1.0.0.0;Intel(R) HD Graphics Control Panel Service; C:\WINDOWS\system32\igfxCUIService.exe [2015-07-30 319888]
S2 MapsBroker;@%SystemRoot%\System32\moshost.dll,-100; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]
S2 OneSyncSvc;@%SystemRoot%\system32\APHostRes.dll,-10002; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S2 pr2ah4nc;DiRT Drivers Auto Removal (pr2ah4nc); C:\Windows\system32\pr2ah4nc.exe [2015-05-10 754288]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2015-06-03 327296]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-08-14 269000]
S3 AJRouter;@%SystemRoot%\system32\AJRouter.dll,-2; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S3 aspnet_state;@%SystemRoot%\Microsoft.NET\Framework64\v4.0.30319\aspnet_rc.dll,-1; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2015-07-10 50352]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]
S3 CDPSvc;@%SystemRoot%\system32\cdpsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S3 cmdvirth;COMODO Virtual Service Manager; C:\Program Files\COMODO\COMODO Internet Security\cmdvirth.exe [2015-06-10 2265792]
S3 DcpSvc;@%SystemRoot%\system32\dcpsvc.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]
S3 DevQueryBroker;@%SystemRoot%\system32\DevQueryBroker.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S3 diagnosticshub.standardcollector.service;@%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000; C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe [2015-07-10 27136]
S3 Disc Soft Lite Bus Service;Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe [2015-02-27 1272592]
S3 DmEnrollmentSvc;@%systemroot%\system32\Windows.Internal.Management.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S3 embeddedmode;@%SystemRoot%\system32\embeddedmodesvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]
S3 EntAppSvc;@EnterpriseAppMgmtSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S3 FlexNet Licensing Service;FlexNet Licensing Service; C:\Program Files (x86)\Common Files\Macrovision Shared\FlexNet Publisher\FNPLicensingService.exe [2015-05-17 1074480]
S3 hpqwmiex;HP Software Framework Service; C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe [2013-05-13 1129760]
S3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS; C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [2012-04-24 169752]
S3 icssvc;@%SystemRoot%\System32\tetheringservice.dll,-4097; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S3 Intel(R) Capability Licensing Service TCP IP Interface;Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\TXE Components\TCS\SocketHeciServer.exe [2013-07-01 822232]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2015-08-15 149160]
S3 NetSetupSvc;@%SystemRoot%\system32\NetSetupSvc.dll,-3; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]
S3 NgcCtnrSvc;@%SystemRoot%\System32\NgcCtnrSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S3 NgcSvc;@%SystemRoot%\System32\ngcsvc.dll,-100; C:\WINDOWS\system32\lsass.exe [2015-07-10 56344]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2014-01-23 150600]
S3 PimIndexMaintenanceSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-15001; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S3 RetailDemo;@%SystemRoot%\System32\RDXService.dll,-256; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]
S3 SensorDataService;@%SystemRoot%\system32\SensorDataService.exe,-101; C:\WINDOWS\System32\SensorDataService.exe [2015-07-10 1031680]
S3 SensorService;@%SystemRoot%\System32\sensorservice.dll,-1000; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S3 SmsRouter;@%SystemRoot%\System32\SmsRouterSvc.dll,-10001; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119418
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o kontrolu

#4 Příspěvek od Rudy »

Teď je to v pořádku. Spusťte tuto utilitu:
Stáhněte AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
Uložte na plochu
Ukončete všechny programy
Klikněte nejprve na >Scan< a pak na >Clean<.
Proběhne skenováni a pak se objeví log, který sem vložte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

steren95
Návštěvník
Návštěvník
Příspěvky: 34
Registrován: 22 bře 2014 13:10

Re: Prosím o kontrolu

#5 Příspěvek od steren95 »

Tady to je.


# AdwCleaner v5.000 - Logfile created 17/08/2015 at 18:07:56
# Updated 14/08/2015 by Xplode
# Database : 2015-08-16.2 [Server]
# Operating system : Windows 10 Home (x64)
# Username : bdank_000 - MUJ-PC
# Running from : C:\Users\bdank_000\Desktop\adwcleaner_5.000.exe
# Option : Cleaning

***** [ Services ] *****


***** [ Folders ] *****


***** [ Files ] *****

[-] File Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Start GeekBuddy.lnk
[-] File Deleted : C:\Users\Public\Desktop\GeekBuddy.lnk
[-] File Deleted : C:\WINDOWS\Sysnative\roboot64.exe

***** [ Shortcuts ] *****


***** [ Scheduled tasks ] *****


***** [ Registry ] *****

[-] Key Deleted : HKLM\SOFTWARE\GeekBuddyRSP

***** [ Web browsers ] *****


*************************

:: Proxy settings cleared
:: Winsock settings cleared

*************************

C:\AdwCleaner[C1].txt - [890 octets] - [17/08/2015 18:07:56]
C:\AdwCleaner[S1].txt - [905 octets] - [17/08/2015 18:04:51]

########## EOF - C:\AdwCleaner[C1].txt - [1014 octets] ##########

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119418
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o kontrolu

#6 Příspěvek od Rudy »

Dejte nový log RSIT.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

steren95
Návštěvník
Návštěvník
Příspěvky: 34
Registrován: 22 bře 2014 13:10

Re: Prosím o kontrolu

#7 Příspěvek od steren95 »

Logfile of random's system information tool 1.10 (written by random/random)
Run by bdank_000 at 2015-08-17 20:13:27
Microsoft Windows 10 Home
System drive C: has 233 GB (51%) free of 455 GB
Total RAM: 3982 MB (50% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 20:13:32, on 17.08.2015
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.10240.16412)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\CyberLink\YouCam\YouCamService.exe
C:\Users\bdank_000\AppData\Local\Microsoft\OneDrive\OneDrive.exe
C:\Program Files\AVAST Software\Avast\avastui.exe
C:\Program Files (x86)\Hewlett-Packard\HP System Event\HPMSGSVC.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Users\bdank_000\AppData\Roaming\Dropbox\bin\Dropbox.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files\trend micro\bdank_000.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.bing.com?pc=HPDTDFJS
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=
O2 - BHO: Skype for Business Click to Call BHO - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\Office15\OCHelper.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_51\bin\ssv.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Evernote extension - {92EF2EAD-A7CE-4424-B0DB-499CF856608E} - C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll
O2 - BHO: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_51\bin\jp2ssv.dll
O2 - BHO: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll
O2 - BHO: Adblock Plus for IE Browser Helper Object - {FFCB3198-32F3-4E8B-9539-4324694ED664} - C:\Program Files\Adblock Plus for IE\AdblockPlus32.dll
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [HPMessageService] C:\Program Files (x86)\Hewlett-Packard\HP System Event\HPMSGSVC.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [Power2GoExpress8] "C:\Program Files (x86)\CyberLink\Power2Go8\Power2GoExpress8.exe"
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKCU\..\Run: [Dropbox Update] "C:\Users\bdank_000\AppData\Local\Dropbox\Update\DropboxUpdate.exe" /c
O4 - HKCU\..\Run: [OneDrive] "C:\Users\bdank_000\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
O4 - HKCU\..\RunOnce: [Uninstall C:\Users\bdank_000\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64] C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\bdank_000\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64"
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O4 - Startup: Dropbox.lnk = bdank_000\AppData\Roaming\Dropbox\bin\Dropbox.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\Program Files\Microsoft Office 15\Root\Office15\EXCEL.EXE/3000
O8 - Extra context menu item: Se&nd to OneNote - res://C:\Program Files\Microsoft Office 15\Root\Office15\ONBttnIE.dll/105
O9 - Extra button: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-103 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-102 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIE.dll
O9 - Extra button: Skype for Business Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\Office15\OCHelper.dll
O9 - Extra 'Tools' menuitem: Skype for Business Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\Office15\OCHelper.dll
O9 - Extra button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIELinkedNotes.dll
O9 - Extra button: @C:\Program Files (x86)\Evernote\Evernote\Resource.dll,-101 - {A95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\Program Files (x86)\Evernote\Evernote\\EvernoteIERes\AddNote.html
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Evernote\Evernote\Resource.dll,-101 - {A95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\Program Files (x86)\Evernote\Evernote\\EvernoteIERes\AddNote.html
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Andrea RT Filters Service (AERTFilters) - Andrea Electronics Corporation - C:\Program Files\Realtek\Audio\HDA\AERTSr64.EXE
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: ArcGIS License Manager - Flexera Software LLC - C:\Program Files (x86)\ArcGIS\License10.2\bin\lmgrd.exe
O23 - Service: Avast Antivirus (avast! Antivirus) - Avast Software s.r.o. - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: BTDevManager - Unknown owner - C:\Program Files (x86)\REALTEK\Realtek Bluetooth\BTDevMgr.exe
O23 - Service: COMODO Chromodo Update Service (ChromodoUpdater) - Comodo - C:\Program Files (x86)\Comodo\Chromodo\chromodo_updater.exe
O23 - Service: COMODO Internet Security Helper Service (CmdAgent) - COMODO - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
O23 - Service: COMODO Virtual Service Manager (cmdvirth) - COMODO - C:\Program Files\COMODO\COMODO Internet Security\cmdvirth.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: Disc Soft Lite Bus Service - Disc Soft Ltd - C:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: FlexNet Licensing Service - Flexera Software LLC - C:\Program Files (x86)\Common Files\Macrovision Shared\FlexNet Publisher\FNPLicensingService.exe
O23 - Service: HP Support Assistant Service - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe
O23 - Service: HP Software Framework Service (hpqwmiex) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe
O23 - Service: HPWMISVC - Hewlett-Packard Development Company, L.P. - c:\Program Files (x86)\Hewlett-Packard\HP System Event\HPWMISVC.exe
O23 - Service: Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) - Unknown owner - C:\WINDOWS\system32\igfxCUIService.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\TXE Components\TCS\HeciServer.exe
O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - C:\Program Files\Intel\TXE Components\TCS\SocketHeciServer.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\System32\ngcsvc.dll,-100 (NgcSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: DiRT Drivers Auto Removal (pr2ah4nc) (pr2ah4nc) - Unknown owner - C:\Windows\system32\pr2ah4nc.exe (file missing)
O23 - Service: Cyberlink RichVideo64 Service(CRVS) (RichVideo64) - Unknown owner - C:\Program Files\CyberLink\Shared files\RichVideo64.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: Realtek Audio Service (RtkAudioService) - Realtek Semiconductor - C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: SynTPEnh Caller Service (SynTPEnhService) - Synaptics Incorporated - C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 13854 bytes

======Listing Processes======







winlogon.exe

C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
C:\WINDOWS\system32\svchost.exe -k LocalService
"dwm.exe"
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\WINDOWS\system32\svchost.exe -k netsvcs
dashost.exe {927cd0ac-064e-4744-87aa0ea4dedf19cb}
C:\WINDOWS\system32\igfxCUIService.exe
"C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe"
C:\WINDOWS\system32\svchost.exe -k NetworkService
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /SRSPS
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
C:\WINDOWS\system32\svchost.exe -k apphost
"C:\Program Files\Realtek\Audio\HDA\AERTSr64.EXE"
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files\Bonjour\mDNSResponder.exe"
"C:\Program Files (x86)\REALTEK\Realtek Bluetooth\BTDevMgr.exe"
"C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe" /service
"C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe"
C:\WINDOWS\System32\svchost.exe -k utcsvc
"C:\Program Files\Intel\TXE Components\TCS\HeciServer.exe"
"C:\Program Files (x86)\Comodo\Chromodo\chromodo_updater.exe"
"C:\Program Files\CyberLink\Shared files\RichVideo64.exe"
"C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe"
C:\WINDOWS\system32\svchost.exe -k appmodel
"C:\Program Files\COMODO\COMODO Internet Security\cavwp.exe" /ModeAvMonitor -Embedding
taskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E}
sihost.exe
"C:\Program Files\COMODO\COMODO Internet Security\cistray.exe"
C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
"C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE"
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
igfxEM.exe
igfxHK.exe
"C:\Program Files (x86)\CyberLink\YouCam\YouCamService.exe"
C:\Windows\System32\RuntimeBroker.exe -Embedding
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\Program Files\COMODO\COMODO Internet Security\cis.exe" --alertsUI
C:\WINDOWS\system32\SettingSyncHost.exe -Embedding

"C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe" -s
"C:\Program Files (x86)\ArcGIS\License10.2\bin\lmgrd.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /ANDREA_BF_BYPASS
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Program Files (x86)\ArcGIS\License10.2\bin\lmgrd.exe" -c "C:\Program Files (x86)\ArcGIS\License10.2\bin\service.txt" -l "C:\Program Files (x86)\ArcGIS\License10.2\bin\lmgrd9.log" -z -local
"C:\Users\bdank_000\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
"C:\Program Files\AVAST Software\Avast\avastui.exe" /nogui
"C:\Program Files (x86)\Hewlett-Packard\HP System Event\HPMSGSVC.exe"
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
C:\WINDOWS\system32\wbem\wmiprvse.exe
"fontdrvhost.exe"
"C:\Users\bdank_000\AppData\Roaming\Dropbox\bin\Dropbox.exe" /systemstartup
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
"C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe"
C:\WINDOWS\system32\ApplicationFrameHost.exe -Embedding
C:\Windows\System32\InstallAgent.exe -Embedding

"c:\Program Files (x86)\Hewlett-Packard\HP System Event\HPWMISVC.exe"
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe"
C:\WINDOWS\System32\svchost.exe -k WerSvcGroup
werfault.exe /h /shared Global\4bfdd625a2404f55953231e1aae7e000 /t 4404 /p 1572
"C:\Windows\explorer.exe" /LOADSAVEDWINDOWS
"C:\Windows\explorer.exe" /LOADSAVEDWINDOWS
C:\WINDOWS\explorer.exe /factory,{682159d9-c321-47ca-b3f1-30e36b2ec8b9} -Embedding
"C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
"C:\WINDOWS\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe" -ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca
"C:\Users\bdank_000\Downloads\RSITx64.exe"

======Scheduled tasks folder======

C:\WINDOWS\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\WINDOWS\tasks\DropboxUpdateTaskUserS-1-5-21-1768221200-1659335568-1168367043-1001Core.job - C:\Users\bdank_000\AppData\Local\Dropbox\Update\DropboxUpdate.exe /c
C:\WINDOWS\tasks\DropboxUpdateTaskUserS-1-5-21-1768221200-1659335568-1168367043-1001UA.job - C:\Users\bdank_000\AppData\Local\Dropbox\Update\DropboxUpdate.exe /ua /installsource scheduler
C:\WINDOWS\tasks\HPCeeScheduleForbdank_000.job - C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe HPCeeScheduleForbdank_000 (null)

=========Mozilla firefox=========

ProfilePath - C:\Users\bdank_000\AppData\Roaming\Mozilla\Firefox\Profiles\09e379ej.default

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 18.0.0.232 Plugin
"Path"=C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_18_0_0_232.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/ShockwavePlayer]
"Description"=Adobe Shockwave Player
"Path"=C:\windows\SysWOW64\Adobe\Director\np32dsw_1204144.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/pdf]
"Description"=
"Path"=C:\Program Files (x86)\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.fdf]
"Description"=
"Path"=C:\Program Files (x86)\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/DTPlugin,version=11.51.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files (x86)\Java\jre1.8.0_51\bin\dtplugin\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=11.51.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Java\jre1.8.0_51\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/Lync,version=15.0]
"Description"=Microsoft Lync Plug-in for Firefox
"Path"=C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 18.0.0.232 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF64_18_0_0_232.dll


======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Skype for Business Browser Helper - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll [2015-06-09 219304]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2015-05-09 662672]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft SkyDrive Pro Browser Helper - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL [2015-06-16 2335448]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E76FD755-C1BA-4DCB-9F13-99BD91223ADE}]
HP Network Check Helper - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll [2013-08-28 303416]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FFCB3198-32F3-4E8B-9539-4324694ED664}]
Adblock Plus for IE Browser Helper Object - C:\Program Files\Adblock Plus for IE\AdblockPlus64.dll [2015-02-25 728840]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Skype for Business Browser Helper - C:\Program Files\Microsoft Office 15\root\Office15\OCHelper.dll [2015-06-09 153768]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_51\bin\ssv.dll [2015-07-18 460384]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2015-05-09 565304]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{92EF2EAD-A7CE-4424-B0DB-499CF856608E}]
Evernote extension - C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll [2014-04-04 585568]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft SkyDrive Pro Browser Helper - C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL [2015-06-16 1730264]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_51\bin\jp2ssv.dll [2015-07-18 172640]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E76FD755-C1BA-4DCB-9F13-99BD91223ADE}]
HP Network Check Helper - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2013-08-28 286520]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FFCB3198-32F3-4E8B-9539-4324694ED664}]
Adblock Plus for IE Browser Helper Object - C:\Program Files\Adblock Plus for IE\AdblockPlus32.dll [2015-02-25 617736]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [2014-06-24 7634288]
"RtHDVBg"=C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2014-06-24 1386712]
"COMODO Autostart {D5EFF3B3-E126-4AF6-BCE9-852A72129E10}"=C:\Program Files\COMODO\COMODO Internet Security\cistray.exe [2015-06-10 1427648]
"COMODO Internet Security"=C:\Program Files\COMODO\COMODO Internet Security\cistray.exe [2015-06-10 1427648]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2015-07-30 3944136]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"=C:\Program Files\DAEMON Tools Lite\DTLite.exe [2015-02-27 5583120]
"Skype"=C:\Program Files (x86)\Skype\Phone\Skype.exe [2015-06-29 53282944]
"Power2GoExpress8"=C:\Program Files (x86)\CyberLink\Power2Go8\Power2GoExpress8.exe [2015-02-09 1720584]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2015-04-23 8204056]
"Dropbox Update"=C:\Users\bdank_000\AppData\Local\Dropbox\Update\DropboxUpdate.exe [2015-06-19 134512]
"OneDrive"=C:\Users\bdank_000\AppData\Local\Microsoft\OneDrive\OneDrive.exe [2015-07-30 402632]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"Uninstall C:\Users\bdank_000\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64"=C:\WINDOWS\system32\cmd.exe [2015-07-10 232448]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2015-05-12 5515496]
"HPMessageService"=C:\Program Files (x86)\Hewlett-Packard\HP System Event\HPMSGSVC.exe [2015-06-13 654088]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2015-07-18 334896]

C:\Users\bdank_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Dropbox.lnk - C:\Users\bdank_000\AppData\Roaming\Dropbox\bin\Dropbox.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
igfxdev.dll []

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TileDataModelSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TileDataModelSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DSCAutomationHostEnabled"=2
"DisableTaskMgr"=0
"SoftwareSASGeneration"=1

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoRun"=0
"NoFolderOptions"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2015-08-17 18:07:56 ----A---- C:\AdwCleaner[C1].txt
2015-08-17 18:04:51 ----A---- C:\AdwCleaner[S1].txt
2015-08-17 18:04:44 ----D---- C:\AdwCleaner
2015-08-15 19:48:49 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Protection.PlayReady.dll
2015-08-15 19:48:48 ----A---- C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2015-08-15 19:48:40 ----A---- C:\WINDOWS\system32\edgehtml.dll
2015-08-15 19:48:36 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.dll
2015-08-15 19:48:31 ----A---- C:\WINDOWS\system32\mshtml.dll
2015-08-15 19:48:20 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2015-08-15 19:48:13 ----A---- C:\WINDOWS\SYSWOW64\edgehtml.dll
2015-08-15 19:48:07 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.dll
2015-08-15 19:47:53 ----A---- C:\WINDOWS\system32\twinui.dll
2015-08-15 19:47:46 ----A---- C:\WINDOWS\system32\shell32.dll
2015-08-15 19:47:43 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
2015-08-15 19:47:39 ----A---- C:\WINDOWS\system32\ieframe.dll
2015-08-15 19:47:36 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2015-08-15 19:47:31 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2015-08-15 19:47:28 ----A---- C:\WINDOWS\system32\Windows.UI.Logon.dll
2015-08-15 19:47:26 ----A---- C:\WINDOWS\system32\SettingsHandlers_nt.dll
2015-08-15 19:47:21 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll
2015-08-15 19:47:10 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Logon.dll
2015-08-15 19:47:08 ----A---- C:\WINDOWS\system32\CoreUIComponents.dll
2015-08-15 19:47:07 ----A---- C:\WINDOWS\SYSWOW64\MFMediaEngine.dll
2015-08-15 19:47:06 ----A---- C:\WINDOWS\system32\twinui.appcore.dll
2015-08-15 19:47:01 ----A---- C:\WINDOWS\SYSWOW64\mfcore.dll
2015-08-15 19:46:59 ----A---- C:\WINDOWS\system32\mfcore.dll
2015-08-15 19:46:58 ----A---- C:\WINDOWS\system32\LicenseManager.dll
2015-08-15 19:46:57 ----A---- C:\WINDOWS\SYSWOW64\twinui.appcore.dll
2015-08-15 19:46:55 ----A---- C:\WINDOWS\SYSWOW64\CoreUIComponents.dll
2015-08-15 19:46:53 ----A---- C:\WINDOWS\system32\drivers\dxgkrnl.sys
2015-08-15 19:46:51 ----A---- C:\WINDOWS\system32\winmde.dll
2015-08-15 19:46:50 ----A---- C:\WINDOWS\SYSWOW64\LicenseManager.dll
2015-08-15 19:46:50 ----A---- C:\WINDOWS\system32\d3d9.dll
2015-08-15 19:46:49 ----A---- C:\WINDOWS\SYSWOW64\d3d9.dll
2015-08-15 19:46:49 ----A---- C:\WINDOWS\system32\drivers\ntfs.sys
2015-08-15 19:46:48 ----A---- C:\WINDOWS\system32\modernexecserver.dll
2015-08-15 19:46:46 ----A---- C:\WINDOWS\system32\wmpmde.dll
2015-08-15 19:46:45 ----A---- C:\WINDOWS\system32\win32kfull.sys
2015-08-15 19:46:44 ----A---- C:\WINDOWS\system32\RDXService.dll
2015-08-15 19:46:44 ----A---- C:\WINDOWS\system32\mfmp4srcsnk.dll
2015-08-15 19:46:44 ----A---- C:\WINDOWS\system32\AppXDeploymentServer.dll
2015-08-15 19:46:43 ----A---- C:\WINDOWS\system32\RemoteNaturalLanguage.dll
2015-08-15 19:46:42 ----A---- C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2015-08-15 19:46:40 ----A---- C:\WINDOWS\system32\UserDataService.dll
2015-08-15 19:46:39 ----A---- C:\WINDOWS\system32\rpcrt4.dll
2015-08-15 19:46:38 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Speech.dll
2015-08-15 19:46:38 ----A---- C:\WINDOWS\system32\wpncore.dll
2015-08-15 19:46:37 ----A---- C:\WINDOWS\system32\LogonController.dll
2015-08-15 19:46:36 ----A---- C:\WINDOWS\SYSWOW64\winmde.dll
2015-08-15 19:46:33 ----A---- C:\WINDOWS\system32\DWrite.dll
2015-08-15 19:46:32 ----A---- C:\WINDOWS\SYSWOW64\RemoteNaturalLanguage.dll
2015-08-15 19:46:31 ----A---- C:\WINDOWS\SYSWOW64\mfmp4srcsnk.dll
2015-08-15 19:46:30 ----A---- C:\WINDOWS\system32\Windows.Media.Speech.dll
2015-08-15 19:46:29 ----A---- C:\WINDOWS\SYSWOW64\LogonController.dll
2015-08-15 19:46:29 ----A---- C:\WINDOWS\system32\schedsvc.dll
2015-08-15 19:46:29 ----A---- C:\WINDOWS\system32\NotificationController.dll
2015-08-15 19:46:28 ----A---- C:\WINDOWS\system32\PlayToManager.dll
2015-08-15 19:46:28 ----A---- C:\WINDOWS\system32\mf.dll
2015-08-15 19:46:27 ----A---- C:\WINDOWS\system32\FntCache.dll
2015-08-15 19:46:27 ----A---- C:\WINDOWS\system32\CredProvDataModel.dll
2015-08-15 19:46:25 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2015-08-15 19:46:24 ----A---- C:\WINDOWS\SYSWOW64\mfmpeg2srcsnk.dll
2015-08-15 19:46:23 ----A---- C:\WINDOWS\SYSWOW64\DWrite.dll
2015-08-15 19:46:22 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2015-08-15 19:46:21 ----A---- C:\WINDOWS\system32\wcmsvc.dll
2015-08-15 19:46:19 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2015-08-15 19:46:17 ----A---- C:\WINDOWS\SYSWOW64\InputService.dll
2015-08-15 19:46:16 ----A---- C:\WINDOWS\SYSWOW64\mfsvr.dll
2015-08-15 19:46:16 ----A---- C:\WINDOWS\system32\tileobjserver.dll
2015-08-15 19:46:15 ----A---- C:\WINDOWS\SYSWOW64\CredProvDataModel.dll
2015-08-15 19:46:10 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.dll
2015-08-15 19:46:07 ----A---- C:\WINDOWS\SYSWOW64\rpcrt4.dll
2015-08-15 19:46:07 ----A---- C:\WINDOWS\system32\PsmServiceExtHost.dll
2015-08-15 19:46:05 ----A---- C:\WINDOWS\system32\mfsvr.dll
2015-08-15 19:46:03 ----A---- C:\WINDOWS\system32\win32kbase.sys
2015-08-15 19:46:02 ----A---- C:\WINDOWS\system32\AudioEng.dll
2015-08-15 19:46:01 ----A---- C:\WINDOWS\SYSWOW64\PlayToManager.dll
2015-08-15 19:45:59 ----A---- C:\WINDOWS\system32\mfsrcsnk.dll
2015-08-15 19:45:59 ----A---- C:\WINDOWS\system32\drivers\dxgmms2.sys
2015-08-15 19:45:58 ----A---- C:\WINDOWS\SYSWOW64\VEEventDispatcher.dll
2015-08-15 19:45:58 ----A---- C:\WINDOWS\system32\wpnapps.dll
2015-08-15 19:45:58 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.LockScreen.dll
2015-08-15 19:45:58 ----A---- C:\WINDOWS\system32\provhandlers.dll
2015-08-15 19:45:58 ----A---- C:\WINDOWS\system32\facecredentialprovider.dll
2015-08-15 19:45:56 ----A---- C:\WINDOWS\SYSWOW64\wpnapps.dll
2015-08-15 19:45:56 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.LockScreen.dll
2015-08-15 19:45:56 ----A---- C:\WINDOWS\SYSWOW64\AudioEng.dll
2015-08-15 19:45:55 ----A---- C:\WINDOWS\system32\SettingsHandlers_UserAccount.dll
2015-08-15 19:45:54 ----A---- C:\WINDOWS\system32\provengine.dll
2015-08-15 19:45:54 ----A---- C:\WINDOWS\system32\atmfd.dll
2015-08-15 19:45:53 ----A---- C:\WINDOWS\system32\WWAHost.exe
2015-08-15 19:45:53 ----A---- C:\WINDOWS\system32\VEEventDispatcher.dll
2015-08-15 19:45:52 ----A---- C:\WINDOWS\system32\AudioSes.dll
2015-08-15 19:45:52 ----A---- C:\WINDOWS\system32\ActionCenter.dll
2015-08-15 19:45:51 ----A---- C:\WINDOWS\system32\SensorService.dll
2015-08-15 19:45:51 ----A---- C:\WINDOWS\system32\MFPlay.dll
2015-08-15 19:45:49 ----A---- C:\WINDOWS\SYSWOW64\atmfd.dll
2015-08-15 19:45:49 ----A---- C:\WINDOWS\system32\SubscriptionMgr.dll
2015-08-15 19:45:49 ----A---- C:\WINDOWS\system32\NetworkStatus.dll
2015-08-15 19:45:48 ----A---- C:\WINDOWS\SYSWOW64\WWAHost.exe
2015-08-15 19:45:48 ----A---- C:\WINDOWS\system32\fontdrvhost.exe
2015-08-15 19:45:48 ----A---- C:\WINDOWS\system32\drivers\WdiWiFi.sys
2015-08-15 19:45:48 ----A---- C:\WINDOWS\system32\drivers\rdyboost.sys
2015-08-15 19:45:47 ----A---- C:\WINDOWS\SYSWOW64\MFPlay.dll
2015-08-15 19:45:47 ----A---- C:\WINDOWS\SYSWOW64\ActionCenter.dll
2015-08-15 19:45:47 ----A---- C:\WINDOWS\system32\WinBioDataModel.dll
2015-08-15 19:45:47 ----A---- C:\WINDOWS\system32\AudioEndpointBuilder.dll
2015-08-15 19:45:45 ----A---- C:\WINDOWS\system32\wifinetworkmanager.dll
2015-08-15 19:45:45 ----A---- C:\WINDOWS\system32\msctfuimanager.dll
2015-08-15 19:45:45 ----A---- C:\WINDOWS\system32\drivers\mountmgr.sys
2015-08-15 19:45:44 ----A---- C:\WINDOWS\SYSWOW64\NotificationObjFactory.dll
2015-08-15 19:45:44 ----A---- C:\WINDOWS\system32\VEDataLayerHelpers.dll
2015-08-15 19:45:44 ----A---- C:\WINDOWS\system32\NotificationObjFactory.dll
2015-08-15 19:45:44 ----A---- C:\WINDOWS\system32\ContentDeliveryManager.Utilities.dll
2015-08-15 19:45:43 ----A---- C:\WINDOWS\SYSWOW64\msctfuimanager.dll
2015-08-15 19:45:43 ----A---- C:\WINDOWS\system32\drivers\USBHUB3.SYS
2015-08-15 19:45:42 ----A---- C:\WINDOWS\SYSWOW64\VEDataLayerHelpers.dll
2015-08-15 19:45:42 ----A---- C:\WINDOWS\SYSWOW64\TextInputFramework.dll
2015-08-15 19:45:42 ----A---- C:\WINDOWS\SYSWOW64\fontdrvhost.exe
2015-08-15 19:45:41 ----A---- C:\WINDOWS\SYSWOW64\mfmkvsrcsnk.dll
2015-08-15 19:45:41 ----A---- C:\WINDOWS\system32\TextInputFramework.dll
2015-08-15 19:45:41 ----A---- C:\WINDOWS\system32\drivers\dxgmms1.sys
2015-08-15 19:45:41 ----A---- C:\WINDOWS\system32\ACPBackgroundManagerPolicy.dll
2015-08-15 19:45:40 ----A---- C:\WINDOWS\system32\Windows.Cortana.Desktop.dll
2015-08-15 19:45:40 ----A---- C:\WINDOWS\system32\StoreAgent.dll
2015-08-15 19:45:39 ----A---- C:\WINDOWS\system32\wcmcsp.dll
2015-08-15 19:45:39 ----A---- C:\WINDOWS\system32\mfmkvsrcsnk.dll
2015-08-15 19:45:39 ----A---- C:\WINDOWS\system32\InstallAgent.exe
2015-08-15 19:45:38 ----A---- C:\WINDOWS\system32\VPNv2CSP.dll
2015-08-15 19:45:38 ----A---- C:\WINDOWS\system32\sysmain.dll
2015-08-15 19:45:38 ----A---- C:\WINDOWS\system32\MusNotificationUx.exe
2015-08-15 19:45:38 ----A---- C:\WINDOWS\system32\drivers\wof.sys
2015-08-15 19:45:38 ----A---- C:\WINDOWS\system32\configmanager2.dll
2015-08-15 19:45:37 ----A---- C:\WINDOWS\system32\provisioningcsp.dll
2015-08-15 19:45:36 ----A---- C:\WINDOWS\system32\AppxSysprep.dll
2015-08-15 19:45:36 ----A---- C:\WINDOWS\notepad.exe
2015-08-15 19:45:35 ----A---- C:\WINDOWS\system32\ntdll.dll
2015-08-15 19:45:35 ----A---- C:\WINDOWS\system32\notepad.exe
2015-08-15 19:45:34 ----A---- C:\WINDOWS\SYSWOW64\ntdll.dll
2015-08-15 19:45:34 ----A---- C:\WINDOWS\SYSWOW64\mfsrcsnk.dll
2015-08-15 19:45:33 ----A---- C:\WINDOWS\SYSWOW64\notepad.exe
2015-08-15 19:45:33 ----A---- C:\WINDOWS\SYSWOW64\AudioSes.dll
2015-08-15 19:45:33 ----A---- C:\WINDOWS\system32\LockAppHost.exe
2015-08-15 19:45:33 ----A---- C:\WINDOWS\system32\fwpolicyiomgr.dll
2015-08-15 19:45:32 ----A---- C:\WINDOWS\SYSWOW64\fwpolicyiomgr.dll
2015-08-15 19:45:32 ----A---- C:\WINDOWS\system32\coredpus.dll
2015-08-15 19:45:27 ----A---- C:\WINDOWS\system32\dxgi.dll
2015-08-15 19:45:24 ----A---- C:\WINDOWS\system32\drivers\wpcfltr.sys
2015-08-15 19:45:22 ----A---- C:\WINDOWS\system32\drivers\tunnel.sys
2015-08-15 19:45:20 ----A---- C:\WINDOWS\SYSWOW64\dxgi.dll
2015-08-15 19:45:17 ----A---- C:\WINDOWS\system32\drivers\msgpiowin32.sys
2015-08-15 19:45:16 ----A---- C:\WINDOWS\system32\NotificationControllerPS.dll
2015-08-15 19:45:15 ----A---- C:\WINDOWS\system32\Windows.Internal.Shell.Broker.dll
2015-08-15 19:45:14 ----A---- C:\WINDOWS\system32\diagtrack.dll
2015-08-15 19:45:09 ----A---- C:\WINDOWS\system32\VoiceActivationManager.dll
2015-08-15 19:44:58 ----A---- C:\WINDOWS\system32\LicenseManagerShellext.exe
2015-08-15 19:44:51 ----A---- C:\WINDOWS\SYSWOW64\VoiceActivationManager.dll
2015-08-15 19:44:50 ----A---- C:\WINDOWS\system32\mfps.dll
2015-08-15 19:44:49 ----A---- C:\WINDOWS\system32\SensorsNativeApi.V2.dll
2015-08-15 19:44:36 ----A---- C:\WINDOWS\SYSWOW64\SensorsNativeApi.V2.dll
2015-08-15 19:44:34 ----A---- C:\WINDOWS\system32\InputService.dll
2015-08-15 19:44:15 ----A---- C:\WINDOWS\system32\dwmcore.dll
2015-08-15 19:44:14 ----A---- C:\WINDOWS\SYSWOW64\dwmcore.dll
2015-08-15 19:44:12 ----A---- C:\WINDOWS\system32\rdbui.dll
2015-08-15 19:44:11 ----A---- C:\WINDOWS\system32\LockAppBroker.dll
2015-08-15 19:44:10 ----A---- C:\WINDOWS\SYSWOW64\LockAppBroker.dll
2015-08-15 19:44:09 ----A---- C:\WINDOWS\system32\SharedStartModelShim.dll
2015-08-15 19:44:09 ----A---- C:\WINDOWS\system32\drivers\bthhfenum.sys
2015-08-15 19:44:08 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2015-08-15 19:44:08 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2015-08-15 19:43:59 ----A---- C:\WINDOWS\system32\Windows.UI.Shell.dll
2015-08-15 19:43:58 ----A---- C:\WINDOWS\system32\SharedStartModel.dll
2015-08-15 17:47:25 ----A---- C:\WINDOWS\system32\{86F549EB-A66B-4D6C-958D-CDDD66410751}.bat
2015-08-15 17:13:08 ----D---- C:\Program Files\trend micro
2015-08-15 17:13:07 ----D---- C:\rsit
2015-08-15 10:59:58 ----D---- C:\Program Files (x86)\Mozilla Firefox
2015-08-15 10:02:22 ----D---- C:\Program Files (x86)\Comodo
2015-07-31 09:04:54 ----A---- C:\WINDOWS\system32\wmp.dll
2015-07-31 09:04:52 ----A---- C:\WINDOWS\system32\Windows.UI.Search.dll
2015-07-31 09:04:51 ----A---- C:\WINDOWS\SYSWOW64\wmp.dll
2015-07-31 09:04:40 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Search.dll
2015-07-31 09:04:33 ----A---- C:\WINDOWS\system32\mssrch.dll
2015-07-31 09:04:32 ----A---- C:\WINDOWS\system32\ClipUp.exe
2015-07-31 09:04:25 ----A---- C:\WINDOWS\system32\actxprxy.dll
2015-07-31 09:04:22 ----A---- C:\WINDOWS\SYSWOW64\mssrch.dll
2015-07-31 09:04:21 ----A---- C:\WINDOWS\system32\windows.storage.dll
2015-07-31 09:04:19 ----A---- C:\WINDOWS\system32\wuaueng.dll
2015-07-31 09:04:15 ----A---- C:\WINDOWS\SYSWOW64\msi.dll
2015-07-31 09:04:13 ----A---- C:\WINDOWS\SYSWOW64\UIRibbon.dll
2015-07-31 09:04:13 ----A---- C:\WINDOWS\system32\msftedit.dll
2015-07-31 09:04:04 ----A---- C:\WINDOWS\SYSWOW64\windows.storage.dll
2015-07-31 09:03:59 ----A---- C:\WINDOWS\system32\msi.dll
2015-07-31 09:03:53 ----A---- C:\WINDOWS\SYSWOW64\msftedit.dll
2015-07-31 09:03:52 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2015-07-31 09:03:52 ----A---- C:\WINDOWS\system32\wininet.dll
2015-07-31 09:03:51 ----A---- C:\WINDOWS\system32\dosvc.dll
2015-07-31 09:03:50 ----A---- C:\WINDOWS\system32\UIRibbon.dll
2015-07-31 09:03:49 ----A---- C:\WINDOWS\system32\UIAutomationCore.dll
2015-07-31 09:03:48 ----A---- C:\WINDOWS\SYSWOW64\actxprxy.dll
2015-07-31 09:03:47 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2015-07-31 09:03:46 ----A---- C:\WINDOWS\system32\audiosrv.dll
2015-07-31 09:03:46 ----A---- C:\WINDOWS\explorer.exe
2015-07-31 09:03:45 ----A---- C:\WINDOWS\system32\wwansvc.dll
2015-07-31 09:03:44 ----A---- C:\WINDOWS\system32\lsasrv.dll
2015-07-31 09:03:44 ----A---- C:\WINDOWS\system32\iertutil.dll
2015-07-31 09:03:44 ----A---- C:\WINDOWS\system32\AppContracts.dll
2015-07-31 09:03:43 ----A---- C:\WINDOWS\system32\NetworkMobileSettings.dll
2015-07-31 09:03:42 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Cred.dll
2015-07-31 09:03:42 ----A---- C:\WINDOWS\SYSWOW64\UIAutomationCore.dll
2015-07-31 09:03:42 ----A---- C:\WINDOWS\SYSWOW64\explorer.exe
2015-07-31 09:03:42 ----A---- C:\WINDOWS\system32\urlmon.dll
2015-07-31 09:03:41 ----A---- C:\WINDOWS\SYSWOW64\MrmCoreR.dll
2015-07-31 09:03:41 ----A---- C:\WINDOWS\system32\Windows.UI.Cred.dll
2015-07-31 09:03:40 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Immersive.dll
2015-07-31 09:03:40 ----A---- C:\WINDOWS\system32\SensorDataService.exe
2015-07-31 09:03:40 ----A---- C:\WINDOWS\system32\CoreMessaging.dll
2015-07-31 09:03:40 ----A---- C:\WINDOWS\system32\ActiveSyncProvider.dll
2015-07-31 09:03:39 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2015-07-31 09:03:39 ----A---- C:\WINDOWS\system32\Windows.UI.Immersive.dll
2015-07-31 09:03:39 ----A---- C:\WINDOWS\system32\twinapi.appcore.dll
2015-07-31 09:03:39 ----A---- C:\WINDOWS\system32\MrmCoreR.dll
2015-07-31 09:03:39 ----A---- C:\WINDOWS\system32\ContactApis.dll
2015-07-31 09:03:38 ----A---- C:\WINDOWS\SYSWOW64\twinapi.appcore.dll
2015-07-31 09:03:38 ----A---- C:\WINDOWS\SYSWOW64\mfplat.dll
2015-07-31 09:03:38 ----A---- C:\WINDOWS\system32\Windows.UI.BlockedShutdown.dll
2015-07-31 09:03:38 ----A---- C:\WINDOWS\system32\Windows.Media.Editing.dll
2015-07-31 09:03:38 ----A---- C:\WINDOWS\system32\ClipSVC.dll
2015-07-31 09:03:37 ----A---- C:\WINDOWS\system32\Windows.Devices.Sensors.dll
2015-07-31 09:03:37 ----A---- C:\WINDOWS\system32\Windows.Devices.Bluetooth.dll
2015-07-31 09:03:36 ----A---- C:\WINDOWS\SYSWOW64\wuapi.dll
2015-07-31 09:03:36 ----A---- C:\WINDOWS\SYSWOW64\gdi32.dll
2015-07-31 09:03:36 ----A---- C:\WINDOWS\SYSWOW64\AppContracts.dll
2015-07-31 09:03:35 ----A---- C:\WINDOWS\system32\wuapi.dll
2015-07-31 09:03:35 ----A---- C:\WINDOWS\system32\mfplat.dll
2015-07-31 09:03:33 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.BlockedShutdown.dll
2015-07-31 09:03:33 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Sensors.dll
2015-07-31 09:03:33 ----A---- C:\WINDOWS\SYSWOW64\ContactApis.dll
2015-07-31 09:03:33 ----A---- C:\WINDOWS\system32\gdi32.dll
2015-07-31 09:03:32 ----A---- C:\WINDOWS\system32\ieproxy.dll
2015-07-31 09:03:31 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Bluetooth.dll
2015-07-31 09:03:31 ----A---- C:\WINDOWS\system32\Windows.Media.Import.dll
2015-07-31 09:03:31 ----A---- C:\WINDOWS\system32\efscore.dll
2015-07-31 09:03:30 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Editing.dll
2015-07-31 09:03:30 ----A---- C:\WINDOWS\SYSWOW64\ExplorerFrame.dll
2015-07-31 09:03:29 ----A---- C:\WINDOWS\SYSWOW64\LockAppHost.exe
2015-07-31 09:03:29 ----A---- C:\WINDOWS\system32\MbaeApi.dll
2015-07-31 09:03:29 ----A---- C:\WINDOWS\system32\ExplorerFrame.dll
2015-07-31 09:03:28 ----A---- C:\WINDOWS\SYSWOW64\MbaeApi.dll
2015-07-31 09:03:28 ----A---- C:\WINDOWS\system32\ncsi.dll
2015-07-31 09:03:27 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Import.dll
2015-07-31 09:03:27 ----A---- C:\WINDOWS\SYSWOW64\MessagingDataModel2.dll
2015-07-31 09:03:27 ----A---- C:\WINDOWS\system32\Windows.UI.BioFeedback.dll
2015-07-31 09:03:27 ----A---- C:\WINDOWS\system32\OmaDmAgent.dll
2015-07-31 09:03:26 ----A---- C:\WINDOWS\SYSWOW64\efscore.dll
2015-07-31 09:03:26 ----A---- C:\WINDOWS\system32\Windows.Media.dll
2015-07-31 09:03:26 ----A---- C:\WINDOWS\system32\unenrollhook.dll
2015-07-31 09:03:26 ----A---- C:\WINDOWS\system32\MapControlCore.dll
2015-07-31 09:03:25 ----A---- C:\WINDOWS\SYSWOW64\SensorsApi.dll
2015-07-31 09:03:25 ----A---- C:\WINDOWS\SYSWOW64\SearchIndexer.exe
2015-07-31 09:03:23 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.BioFeedback.dll
2015-07-31 09:03:23 ----A---- C:\WINDOWS\system32\hal.dll
2015-07-31 09:03:23 ----A---- C:\WINDOWS\system32\drivers\refsv1.sys
2015-07-31 09:03:22 ----A---- C:\WINDOWS\system32\updatehandlers.dll
2015-07-31 09:03:22 ----A---- C:\WINDOWS\system32\mos.dll
2015-07-31 09:03:22 ----A---- C:\WINDOWS\system32\drivers\pci.sys
2015-07-31 09:03:21 ----A---- C:\WINDOWS\system32\wuuhext.dll
2015-07-31 09:03:21 ----A---- C:\WINDOWS\system32\SettingsHandlers_Notifications.dll
2015-07-31 09:03:21 ----A---- C:\WINDOWS\system32\SensorsApi.dll
2015-07-31 09:03:20 ----A---- C:\WINDOWS\SYSWOW64\winhttp.dll
2015-07-31 09:03:20 ----A---- C:\WINDOWS\system32\srumsvc.dll
2015-07-31 09:03:20 ----A---- C:\WINDOWS\system32\GamePanel.exe
2015-07-31 09:03:20 ----A---- C:\WINDOWS\system32\DevicesFlowBroker.dll
2015-07-31 09:03:19 ----A---- C:\WINDOWS\system32\RecoveryDrive.exe
2015-07-31 09:03:19 ----A---- C:\WINDOWS\system32\MessagingDataModel2.dll
2015-07-31 09:03:19 ----A---- C:\WINDOWS\system32\MCRecvSrc.dll
2015-07-31 09:03:18 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.dll
2015-07-31 09:03:18 ----A---- C:\WINDOWS\system32\winhttp.dll
2015-07-31 09:03:17 ----A---- C:\WINDOWS\SYSWOW64\srumsvc.dll
2015-07-31 09:03:17 ----A---- C:\WINDOWS\SYSWOW64\CoreMessaging.dll
2015-07-31 09:03:17 ----A---- C:\WINDOWS\system32\wintrust.dll
2015-07-31 09:03:17 ----A---- C:\WINDOWS\system32\drivers\usbhub.sys
2015-07-31 09:03:16 ----A---- C:\WINDOWS\SYSWOW64\wintrust.dll
2015-07-31 09:03:16 ----A---- C:\WINDOWS\SYSWOW64\MCRecvSrc.dll
2015-07-31 09:03:16 ----A---- C:\WINDOWS\SYSWOW64\ieproxy.dll
2015-07-31 09:03:16 ----A---- C:\WINDOWS\SYSWOW64\comdlg32.dll
2015-07-31 09:03:16 ----A---- C:\WINDOWS\system32\MusUpdateHandlers.dll
2015-07-31 09:03:16 ----A---- C:\WINDOWS\system32\DisplayManager.dll
2015-07-31 09:03:15 ----A---- C:\WINDOWS\SYSWOW64\DisplayManager.dll
2015-07-31 09:03:15 ----A---- C:\WINDOWS\system32\TabSvc.dll
2015-07-31 09:03:15 ----A---- C:\WINDOWS\system32\psmsrv.dll
2015-07-31 09:03:15 ----A---- C:\WINDOWS\system32\ci.dll
2015-07-31 09:03:14 ----A---- C:\WINDOWS\system32\uxtheme.dll
2015-07-31 09:03:14 ----A---- C:\WINDOWS\system32\ConsoleLogon.dll
2015-07-31 09:03:14 ----A---- C:\WINDOWS\system32\comdlg32.dll
2015-07-31 09:03:13 ----A---- C:\WINDOWS\SYSWOW64\Unistore.dll
2015-07-31 09:03:13 ----A---- C:\WINDOWS\system32\winlogon.exe
2015-07-31 09:03:13 ----A---- C:\WINDOWS\system32\winload.exe
2015-07-31 09:03:13 ----A---- C:\WINDOWS\system32\Windows.Cortana.OneCore.dll
2015-07-31 09:03:13 ----A---- C:\WINDOWS\system32\SearchIndexer.exe
2015-07-31 09:03:12 ----A---- C:\WINDOWS\SYSWOW64\uxtheme.dll
2015-07-31 09:03:12 ----A---- C:\WINDOWS\system32\MusNotification.exe
2015-07-31 09:03:12 ----A---- C:\WINDOWS\system32\cloudAP.dll
2015-07-31 09:03:11 ----A---- C:\WINDOWS\system32\Unistore.dll
2015-07-31 09:03:11 ----A---- C:\WINDOWS\system32\EnterpriseModernAppMgmtCSP.dll
2015-07-31 09:03:10 ----A---- C:\WINDOWS\system32\winresume.exe
2015-07-31 09:03:10 ----A---- C:\WINDOWS\system32\shutdownux.dll
2015-07-31 09:03:09 ----A---- C:\WINDOWS\SYSWOW64\bcastdvr.exe
2015-07-31 09:03:09 ----A---- C:\WINDOWS\system32\MBMediaManager.dll
2015-07-31 09:03:08 ----A---- C:\WINDOWS\system32\sppcomapi.dll
2015-07-31 09:03:08 ----A---- C:\WINDOWS\system32\drivers\ndis.sys
2015-07-31 09:03:07 ----A---- C:\WINDOWS\system32\omadmclient.exe
2015-07-31 09:03:06 ----A---- C:\WINDOWS\SYSWOW64\systemcpl.dll
2015-07-31 09:03:06 ----A---- C:\WINDOWS\SYSWOW64\ntshrui.dll
2015-07-31 09:03:06 ----A---- C:\WINDOWS\SYSWOW64\BingMaps.dll
2015-07-31 09:03:06 ----A---- C:\WINDOWS\system32\wininit.exe
2015-07-31 09:03:05 ----A---- C:\WINDOWS\system32\systemcpl.dll
2015-07-31 09:03:04 ----A---- C:\WINDOWS\system32\storewuauth.dll
2015-07-31 09:03:04 ----A---- C:\WINDOWS\system32\stobject.dll
2015-07-31 09:03:04 ----A---- C:\WINDOWS\system32\dwmapi.dll
2015-07-31 09:03:02 ----A---- C:\WINDOWS\system32\wimgapi.dll
2015-07-31 09:03:02 ----A---- C:\WINDOWS\system32\bcastdvr.exe
2015-07-31 09:03:01 ----A---- C:\WINDOWS\system32\usocore.dll
2015-07-31 09:03:01 ----A---- C:\WINDOWS\system32\drivers\dam.sys
2015-07-31 09:03:01 ----A---- C:\WINDOWS\system32\AppxAllUserStore.dll
2015-07-31 09:03:00 ----A---- C:\WINDOWS\SYSWOW64\dwmapi.dll
2015-07-31 09:02:59 ----A---- C:\WINDOWS\system32\SearchFolder.dll
2015-07-31 09:02:54 ----A---- C:\WINDOWS\SYSWOW64\wimgapi.dll
2015-07-31 09:02:54 ----A---- C:\WINDOWS\system32\ntshrui.dll
2015-07-31 09:02:54 ----A---- C:\WINDOWS\system32\drivers\UcmUcsi.sys
2015-07-31 09:02:53 ----A---- C:\WINDOWS\SYSWOW64\mos.dll
2015-07-31 09:02:53 ----A---- C:\WINDOWS\SYSWOW64\AppxAllUserStore.dll
2015-07-31 09:02:53 ----A---- C:\WINDOWS\system32\sendmail.dll
2015-07-31 09:02:52 ----A---- C:\WINDOWS\system32\BootMenuUX.dll
2015-07-31 09:02:51 ----A---- C:\WINDOWS\system32\ConhostV2.dll
2015-07-31 09:02:49 ----A---- C:\WINDOWS\system32\Windows.Cortana.ProxyStub.dll
2015-07-31 09:02:49 ----A---- C:\WINDOWS\system32\SettingsHandlers_SignInOptions.dll
2015-07-31 09:02:47 ----A---- C:\WINDOWS\SYSWOW64\sendmail.dll
2015-07-31 09:02:47 ----A---- C:\WINDOWS\system32\calc.exe
2015-07-31 09:02:46 ----A---- C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll
2015-07-31 09:02:46 ----A---- C:\WINDOWS\system32\EditionUpgradeManagerObj.dll
2015-07-31 09:02:45 ----A---- C:\WINDOWS\SYSWOW64\calc.exe
2015-07-31 09:02:44 ----A---- C:\WINDOWS\SYSWOW64\SearchFolder.dll
2015-07-31 09:02:43 ----A---- C:\WINDOWS\SYSWOW64\ReAgent.dll
2015-07-31 09:02:43 ----A---- C:\WINDOWS\system32\msiexec.exe
2015-07-31 09:02:42 ----A---- C:\WINDOWS\SYSWOW64\stobject.dll
2015-07-31 09:02:42 ----A---- C:\WINDOWS\system32\drivers\cng.sys
2015-07-31 09:02:41 ----A---- C:\WINDOWS\SYSWOW64\bcd.dll
2015-07-31 09:02:40 ----A---- C:\WINDOWS\system32\mssprxy.dll
2015-07-31 09:02:39 ----A---- C:\WINDOWS\system32\ReAgent.dll
2015-07-31 09:02:37 ----A---- C:\WINDOWS\system32\bcd.dll
2015-07-31 09:02:35 ----A---- C:\WINDOWS\system32\VEStoreEventHandlers.dll
2015-07-31 09:02:35 ----A---- C:\WINDOWS\system32\UIRibbonRes.dll
2015-07-31 09:02:34 ----A---- C:\WINDOWS\system32\tetheringservice.dll
2015-07-31 09:02:33 ----A---- C:\WINDOWS\SYSWOW64\msiexec.exe
2015-07-31 09:02:32 ----A---- C:\WINDOWS\system32\wer.dll
2015-07-31 09:02:32 ----A---- C:\WINDOWS\system32\hmkd.dll
2015-07-31 09:02:31 ----A---- C:\WINDOWS\system32\omadmprc.exe
2015-07-31 09:02:30 ----A---- C:\WINDOWS\SYSWOW64\hmkd.dll
2015-07-31 09:02:30 ----A---- C:\WINDOWS\system32\Windows.Networking.Connectivity.dll
2015-07-31 09:02:29 ----A---- C:\WINDOWS\system32\LicenseManagerApi.dll
2015-07-31 09:02:28 ----A---- C:\WINDOWS\system32\drivers\acpi.sys
2015-07-31 09:02:26 ----A---- C:\WINDOWS\system32\SettingsHandlers_Privacy.dll
2015-07-31 09:02:26 ----A---- C:\WINDOWS\system32\bcdboot.exe
2015-07-31 09:02:25 ----A---- C:\WINDOWS\system32\wimserv.exe
2015-07-31 09:02:25 ----A---- C:\WINDOWS\system32\setbcdlocale.dll
2015-07-31 09:02:24 ----A---- C:\WINDOWS\SYSWOW64\spbcd.dll
2015-07-31 09:02:24 ----A---- C:\WINDOWS\system32\spbcd.dll
2015-07-31 09:02:24 ----A---- C:\WINDOWS\system32\MapConfiguration.dll
2015-07-31 09:02:23 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2015-07-31 09:02:22 ----A---- C:\WINDOWS\system32\Windows.Cortana.PAL.Desktop.dll
2015-07-31 09:02:21 ----A---- C:\WINDOWS\system32\bcdedit.exe
2015-07-31 09:02:19 ----A---- C:\WINDOWS\SYSWOW64\Windows.Networking.Connectivity.dll
2015-07-31 09:02:19 ----A---- C:\WINDOWS\SYSWOW64\Windows.Internal.Bluetooth.dll
2015-07-31 09:02:18 ----A---- C:\WINDOWS\SYSWOW64\MapConfiguration.dll
2015-07-31 09:02:17 ----A---- C:\WINDOWS\system32\ReInfo.dll
2015-07-31 09:02:17 ----A---- C:\WINDOWS\system32\drivers\usbser.sys
2015-07-31 09:02:16 ----A---- C:\WINDOWS\system32\BingMaps.dll
2015-07-31 09:02:15 ----A---- C:\WINDOWS\system32\jscript9.dll
2015-07-31 09:02:13 ----A---- C:\WINDOWS\system32\diagtrack_win.dll
2015-07-31 09:02:12 ----A---- C:\WINDOWS\system32\MapsStore.dll
2015-07-31 09:02:11 ----A---- C:\WINDOWS\system32\diagtrack_wininternal.dll
2015-07-31 09:02:10 ----A---- C:\WINDOWS\system32\wpccpl.dll
2015-07-31 09:02:09 ----A---- C:\WINDOWS\SYSWOW64\Chakra.dll
2015-07-31 09:02:05 ----A---- C:\WINDOWS\system32\Chakra.dll
2015-07-31 09:02:01 ----A---- C:\WINDOWS\system32\reseteng.dll
2015-07-31 09:01:57 ----A---- C:\WINDOWS\SYSWOW64\GamePanel.exe
2015-07-31 09:01:56 ----A---- C:\WINDOWS\SYSWOW64\UIRibbonRes.dll
2015-07-31 09:01:55 ----A---- C:\WINDOWS\SYSWOW64\ReInfo.dll
2015-07-31 09:01:52 ----A---- C:\WINDOWS\SYSWOW64\atmlib.dll
2015-07-31 09:01:52 ----A---- C:\WINDOWS\system32\atmlib.dll
2015-07-30 23:40:09 ----A---- C:\WINDOWS\system32\SynTPCo31.dll
2015-07-30 23:40:03 ----A---- C:\WINDOWS\SYSWOW64\SynCom.dll
2015-07-30 23:39:58 ----A---- C:\WINDOWS\system32\drivers\Smb_driver_Intel_Aux.sys
2015-07-30 23:39:58 ----A---- C:\WINDOWS\system32\drivers\Smb_driver_AMDASF_Aux.sys
2015-07-30 23:24:32 ----A---- C:\WINDOWS\system32\MetroIntelGenericUIFramework.dll
2015-07-30 23:24:31 ----A---- C:\WINDOWS\SYSWOW64\Intel_OpenCL_ICD32.dll
2015-07-30 23:24:31 ----A---- C:\WINDOWS\system32\IntelWiDiWinNextAgent64.dll
2015-07-30 23:24:31 ----A---- C:\WINDOWS\system32\IntelWiDiVAD64.exe
2015-07-30 23:24:31 ----A---- C:\WINDOWS\system32\IntelWiDiUtils64.dll
2015-07-30 23:24:31 ----A---- C:\WINDOWS\system32\IntelWiDiUMS64.exe
2015-07-30 23:24:31 ----A---- C:\WINDOWS\system32\IntelWiDiSilenceFilter64.dll
2015-07-30 23:24:31 ----A---- C:\WINDOWS\system32\IntelWiDiSecureSourceFilter64.dll
2015-07-30 23:24:31 ----A---- C:\WINDOWS\system32\IntelWiDiMux64.dll
2015-07-30 23:24:31 ----A---- C:\WINDOWS\system32\IntelWiDiMCUMD64.dll
2015-07-30 23:24:31 ----A---- C:\WINDOWS\system32\IntelWiDiLogServer64.dll
2015-07-30 23:24:31 ----A---- C:\WINDOWS\system32\IntelWiDiDDEAgent64.dll
2015-07-30 23:24:31 ----A---- C:\WINDOWS\system32\IntelWiDiAudioFilter64.dll
2015-07-30 23:24:31 ----A---- C:\WINDOWS\system32\Intel_OpenCL_ICD64.dll
2015-07-30 23:24:30 ----A---- C:\WINDOWS\SYSWOW64\IntelOpenCL32.dll
2015-07-30 23:24:30 ----A---- C:\WINDOWS\SYSWOW64\IntelCpHeciSvc.exe
2015-07-30 23:24:30 ----A---- C:\WINDOWS\SYSWOW64\iglhsip32.dll
2015-07-30 23:24:30 ----A---- C:\WINDOWS\SYSWOW64\iglhcp32.dll
2015-07-30 23:24:30 ----A---- C:\WINDOWS\system32\IntelWiDiAAC64.dll
2015-07-30 23:24:30 ----A---- C:\WINDOWS\system32\IntelOpenCL64.dll
2015-07-30 23:24:30 ----A---- C:\WINDOWS\system32\iglhsip64.dll
2015-07-30 23:24:30 ----A---- C:\WINDOWS\system32\iglhcp64.dll
2015-07-30 23:24:30 ----A---- C:\WINDOWS\system32\igfxTray.exe
2015-07-30 23:24:30 ----A---- C:\WINDOWS\system32\igfxOSP.dll
2015-07-30 23:24:30 ----A---- C:\WINDOWS\system32\igfxLHMLibv2_0.dll
2015-07-30 23:24:30 ----A---- C:\WINDOWS\system32\igfxCoIn_v4252.dll
2015-07-30 23:24:29 ----A---- C:\WINDOWS\SYSWOW64\igfxexps32.dll
2015-07-30 23:24:29 ----A---- C:\WINDOWS\system32\igfxLHMLib.dll
2015-07-30 23:24:29 ----A---- C:\WINDOWS\system32\igfxLHM.dll
2015-07-30 23:24:29 ----A---- C:\WINDOWS\system32\igfxHK.exe
2015-07-30 23:24:29 ----A---- C:\WINDOWS\system32\igfxext.exe
2015-07-30 23:24:29 ----A---- C:\WINDOWS\system32\igfxexps.dll
2015-07-30 23:24:29 ----A---- C:\WINDOWS\system32\igfxEMLibv2_0.dll
2015-07-30 23:24:29 ----A---- C:\WINDOWS\system32\igfxEMLib.dll
2015-07-30 23:24:29 ----A---- C:\WINDOWS\system32\igfxEM.exe
2015-07-30 23:24:29 ----A---- C:\WINDOWS\system32\igfxDTCM.dll
2015-07-30 23:24:29 ----A---- C:\WINDOWS\system32\igfxDILibv2_0.dll
2015-07-30 23:24:29 ----A---- C:\WINDOWS\system32\igfxDILib.dll
2015-07-30 23:24:29 ----A---- C:\WINDOWS\system32\igfxDI.dll
2015-07-30 23:24:29 ----A---- C:\WINDOWS\system32\igfxDHLibv2_0.dll
2015-07-30 23:24:29 ----A---- C:\WINDOWS\system32\igfxDHLib.dll
2015-07-30 23:24:29 ----A---- C:\WINDOWS\system32\igfxDH.dll
2015-07-30 23:24:29 ----A---- C:\WINDOWS\system32\igfxCUIServicePS.dll
2015-07-30 23:24:29 ----A---- C:\WINDOWS\system32\igfxCUIService.exe
2015-07-30 23:24:28 ----A---- C:\WINDOWS\SYSWOW64\igfxcmrt32.dll
2015-07-30 23:24:28 ----A---- C:\WINDOWS\SYSWOW64\igfxcmjit32.dll
2015-07-30 23:24:28 ----A---- C:\WINDOWS\SYSWOW64\igfx11cmrt32.dll
2015-07-30 23:24:28 ----A---- C:\WINDOWS\system32\igfxcmrt64.dll
2015-07-30 23:24:28 ----A---- C:\WINDOWS\system32\igfxcmjit64.dll
2015-07-30 23:24:28 ----A---- C:\WINDOWS\system32\igfx11cmrt64.dll
2015-07-30 23:24:28 ----A---- C:\WINDOWS\system32\igdusc64.dll
2015-07-30 23:24:27 ----A---- C:\WINDOWS\SYSWOW64\igdusc32.dll
2015-07-30 23:24:27 ----A---- C:\WINDOWS\system32\igdumdim64.dll
2015-07-30 23:24:26 ----A---- C:\WINDOWS\SYSWOW64\igdumdim32.dll
2015-07-30 23:24:26 ----A---- C:\WINDOWS\SYSWOW64\igdrcl32.dll
2015-07-30 23:24:26 ----A---- C:\WINDOWS\SYSWOW64\igdmd32.dll
2015-07-30 23:24:26 ----A---- C:\WINDOWS\system32\igdrcl64.dll
2015-07-30 23:24:26 ----A---- C:\WINDOWS\system32\igdmd64.dll
2015-07-30 23:24:26 ----A---- C:\WINDOWS\system32\drivers\igdkmd64.sys
2015-07-30 23:24:25 ----A---- C:\WINDOWS\system32\igdfcl64.dll
2015-07-30 23:24:24 ----A---- C:\WINDOWS\SYSWOW64\igdfcl32.dll
2015-07-30 23:24:24 ----A---- C:\WINDOWS\SYSWOW64\igdde32.dll
2015-07-30 23:24:24 ----A---- C:\WINDOWS\SYSWOW64\igdbcl32.dll
2015-07-30 23:24:24 ----A---- C:\WINDOWS\SYSWOW64\igdail32.dll
2015-07-30 23:24:24 ----A---- C:\WINDOWS\SYSWOW64\igd10iumd32.dll
2015-07-30 23:24:24 ----A---- C:\WINDOWS\system32\igdde64.dll
2015-07-30 23:24:24 ----A---- C:\WINDOWS\system32\igdbcl64.dll
2015-07-30 23:24:24 ----A---- C:\WINDOWS\system32\igdail64.dll
2015-07-30 23:24:24 ----A---- C:\WINDOWS\system32\igd10iumd64.dll
2015-07-30 23:24:23 ----A---- C:\WINDOWS\SYSWOW64\ig7icd32.dll
2015-07-30 23:24:23 ----A---- C:\WINDOWS\system32\ig7icd64.dll
2015-07-30 23:24:23 ----A---- C:\WINDOWS\system32\IccLibDll_x64.dll
2015-07-30 23:24:22 ----A---- C:\WINDOWS\system32\Gfxv4_0.exe
2015-07-30 23:24:22 ----A---- C:\WINDOWS\system32\Gfxv2_0.exe
2015-07-30 23:24:22 ----A---- C:\WINDOWS\system32\GfxUIEx.exe
2015-07-30 23:24:22 ----A---- C:\WINDOWS\system32\DPTopologyAppv2_0.exe
2015-07-30 23:24:22 ----A---- C:\WINDOWS\system32\DPTopologyApp.exe
2015-07-30 23:24:22 ----A---- C:\WINDOWS\system32\difx64.exe
2015-07-30 23:24:22 ----A---- C:\WINDOWS\system32\CustomModeAppv2_0.exe
2015-07-30 23:24:22 ----A---- C:\WINDOWS\system32\CustomModeApp.exe
2015-07-30 23:20:39 ----D---- C:\ProgramData\Microsoft OneDrive
2015-07-30 23:06:42 ----DC---- C:\WINDOWS\Panther
2015-07-30 23:00:41 ----SHD---- C:\Recovery
2015-07-30 23:00:17 ----D---- C:\Windows.old
2015-07-30 22:57:32 ----A---- C:\WINDOWS\system32\emptyregdb.dat
2015-07-30 22:56:02 ----D---- C:\WINDOWS\SYSWOW64\XPSViewer
2015-07-30 22:55:59 ----D---- C:\Program Files\Reference Assemblies
2015-07-30 22:55:59 ----D---- C:\Program Files\MSBuild
2015-07-30 22:55:59 ----D---- C:\Program Files (x86)\Reference Assemblies
2015-07-30 22:55:59 ----D---- C:\Program Files (x86)\MSBuild
2015-07-30 22:55:59 ----D---- C:\inetpub
2015-07-30 22:54:52 ----A---- C:\WINDOWS\SYSWOW64\TsWpfWrp.exe
2015-07-30 22:54:52 ----A---- C:\WINDOWS\SYSWOW64\PresentationNative_v0300.dll
2015-07-30 22:54:51 ----A---- C:\WINDOWS\SYSWOW64\PresentationCFFRasterizerNative_v0300.dll
2015-07-30 22:54:45 ----A---- C:\WINDOWS\system32\TsWpfWrp.exe
2015-07-30 22:54:43 ----A---- C:\WINDOWS\system32\PresentationNative_v0300.dll
2015-07-30 22:54:40 ----A---- C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2015-07-30 22:45:24 ----A---- C:\WINDOWS\SYSWOW64\PrintConfig.dll
2015-07-30 22:19:01 ----SD---- C:\Users\bdank_000\AppData\Roaming\Microsoft
2015-07-30 22:16:38 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2015-07-30 22:16:28 ----A---- C:\WINDOWS\SYSWOW64\PerfStringBackup.INI
2015-07-30 22:12:37 ----D---- C:\WINDOWS\system32\SRSLabs
2015-07-30 22:12:33 ----D---- C:\WINDOWS\SYSWOW64\RTCOM
2015-07-30 22:12:33 ----D---- C:\Program Files\Realtek
2015-07-30 22:12:23 ----D---- C:\Program Files\Synaptics
2015-07-30 22:08:21 ----D---- C:\WINDOWS\Prefetch
2015-07-30 20:58:56 ----HD---- C:\$Windows.~BT
2015-07-30 20:19:27 ----HD---- C:\$Windows.~WS
2015-07-25 15:43:23 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service

======List of files/folders modified in the last 1 month======

2015-08-17 20:10:49 ----D---- C:\WINDOWS\Temp
2015-08-17 20:08:15 ----D---- C:\WINDOWS\System32
2015-08-17 19:36:08 ----D---- C:\WINDOWS\system32\sru
2015-08-17 18:22:40 ----D---- C:\WINDOWS\INF
2015-08-17 18:18:13 ----D---- C:\Users\bdank_000\AppData\Roaming\Dropbox
2015-08-17 18:15:13 ----D---- C:\WINDOWS\system32\config
2015-08-17 18:15:11 ----D---- C:\WINDOWS\Microsoft.NET
2015-08-17 18:15:06 ----D---- C:\WINDOWS\WinSxS
2015-08-17 18:11:56 ----D---- C:\WINDOWS\system32\drivers
2015-08-17 18:11:22 ----D---- C:\WINDOWS\system32\CatRoot
2015-08-17 18:10:10 ----D---- C:\WINDOWS\SYSWOW64\cs-CZ
2015-08-17 18:10:10 ----D---- C:\WINDOWS\SysWOW64
2015-08-17 18:10:07 ----D---- C:\WINDOWS\system32\WinBioPlugIns
2015-08-17 18:10:07 ----D---- C:\WINDOWS\system32\oobe
2015-08-17 18:10:07 ----D---- C:\WINDOWS\system32\drivers\UMDF
2015-08-17 18:10:07 ----D---- C:\WINDOWS\system32\drivers\cs-CZ
2015-08-17 18:10:07 ----D---- C:\WINDOWS\system32\cs-CZ
2015-08-17 18:10:07 ----D---- C:\WINDOWS\system32\appraiser
2015-08-17 18:10:04 ----D---- C:\WINDOWS\Provisioning
2015-08-17 18:10:03 ----D---- C:\WINDOWS\AppPatch
2015-08-17 18:10:03 ----D---- C:\Windows
2015-08-17 18:10:03 ----D---- C:\Program Files\Internet Explorer
2015-08-17 18:10:03 ----D---- C:\Program Files (x86)\Internet Explorer
2015-08-17 18:10:00 ----D---- C:\WINDOWS\system32\DriverStore
2015-08-17 08:50:47 ----RSD---- C:\WINDOWS\assembly
2015-08-17 08:48:01 ----D---- C:\WINDOWS\CbsTemp
2015-08-17 08:13:45 ----D---- C:\WINDOWS\Tasks
2015-08-17 08:13:45 ----D---- C:\WINDOWS\system32\Tasks
2015-08-16 10:15:12 ----D---- C:\Users\bdank_000\AppData\Roaming\Skype
2015-08-15 17:52:50 ----D---- C:\WINDOWS\system32\catroot2
2015-08-15 17:50:59 ----D---- C:\WINDOWS\system32\WDI
2015-08-15 17:48:16 ----D---- C:\WINDOWS\AppReadiness
2015-08-15 17:47:25 ----A---- C:\WINDOWS\system32\{F33C3B9B-72AF-418A-B3FD-560646F7CDA2}.bat
2015-08-15 17:38:22 ----D---- C:\WINDOWS\SYSWOW64\oobe
2015-08-15 17:38:22 ----D---- C:\WINDOWS\SYSWOW64\Dism
2015-08-15 17:38:06 ----D---- C:\WINDOWS\system32\SystemResetPlatform
2015-08-15 17:38:05 ----D---- C:\WINDOWS\system32\migration
2015-08-15 17:38:05 ----D---- C:\WINDOWS\system32\Dism
2015-08-15 17:38:05 ----D---- C:\WINDOWS\system32\Boot
2015-08-15 17:37:45 ----RD---- C:\WINDOWS\PurchaseDialog
2015-08-15 17:37:45 ----RD---- C:\WINDOWS\ImmersiveControlPanel
2015-08-15 17:14:05 ----D---- C:\WINDOWS\SoftwareDistribution
2015-08-15 17:13:08 ----RD---- C:\Program Files
2015-08-15 17:06:02 ----D---- C:\WINDOWS\debug
2015-08-15 15:25:07 ----RD---- C:\Program Files (x86)
2015-08-14 21:08:04 ----SHD---- C:\System Volume Information
2015-08-14 20:34:19 ----D---- C:\WINDOWS\Logs
2015-08-14 19:35:53 ----HD---- C:\Program Files\WindowsApps
2015-08-14 17:31:06 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe
2015-08-14 17:28:25 ----HD---- C:\WINDOWS\Installer
2015-08-01 17:59:00 ----D---- C:\WINDOWS\system32\WinBioDatabase
2015-07-31 09:24:47 ----D---- C:\Users\bdank_000\AppData\Roaming\DAEMON Tools Lite
2015-07-31 09:02:49 ----D---- C:\WINDOWS\appcompat
2015-07-30 23:40:35 ----A---- C:\WINDOWS\system32\SynTPAPI.dll
2015-07-30 23:40:26 ----A---- C:\WINDOWS\system32\WdfCoInstaller01011.dll
2015-07-30 23:40:21 ----A---- C:\WINDOWS\system32\SynCOM.dll
2015-07-30 23:36:43 ----RD---- C:\WINDOWS\DevicesFlow
2015-07-30 23:25:16 ----A---- C:\WINDOWS\SYSWOW64\OpenCL.DLL
2015-07-30 23:25:16 ----A---- C:\WINDOWS\system32\OpenCL.DLL
2015-07-30 23:20:39 ----HD---- C:\ProgramData
2015-07-30 23:16:36 ----RD---- C:\WINDOWS\PrintDialog
2015-07-30 23:16:33 ----RD---- C:\WINDOWS\MiracastView
2015-07-30 23:05:16 ----D---- C:\WINDOWS\rescache
2015-07-30 23:04:22 ----D---- C:\WINDOWS\system32\restore
2015-07-30 23:00:46 ----D---- C:\Program Files\Windows NT
2015-07-30 22:58:34 ----D---- C:\WINDOWS\Registration
2015-07-30 22:56:02 ----D---- C:\WINDOWS\SYSWOW64\MUI
2015-07-30 22:56:02 ----D---- C:\WINDOWS\SYSWOW64\migration
2015-07-30 22:56:02 ----D---- C:\WINDOWS\SYSWOW64\inetsrv
2015-07-30 22:56:02 ----D---- C:\WINDOWS\system32\MUI
2015-07-30 22:56:02 ----D---- C:\WINDOWS\system32\inetsrv
2015-07-30 22:55:49 ----A---- C:\WINDOWS\system32\wamregps.dll
2015-07-30 22:55:49 ----A---- C:\WINDOWS\system32\iisRtl.dll
2015-07-30 22:55:49 ----A---- C:\WINDOWS\system32\iisrstap.dll
2015-07-30 22:55:49 ----A---- C:\WINDOWS\system32\iisreset.exe
2015-07-30 22:55:49 ----A---- C:\WINDOWS\system32\ahadmin.dll
2015-07-30 22:55:49 ----A---- C:\WINDOWS\system32\admwprox.dll
2015-07-30 22:55:47 ----A---- C:\WINDOWS\SYSWOW64\dpwsockx.dll
2015-07-30 22:55:47 ----A---- C:\WINDOWS\SYSWOW64\dpmodemx.dll
2015-07-30 22:55:47 ----A---- C:\WINDOWS\SYSWOW64\dplayx.dll
2015-07-30 22:55:47 ----A---- C:\WINDOWS\SYSWOW64\dplaysvr.exe
2015-07-30 22:55:46 ----A---- C:\WINDOWS\SYSWOW64\iisRtl.dll
2015-07-30 22:55:46 ----A---- C:\WINDOWS\SYSWOW64\admwprox.dll
2015-07-30 22:55:45 ----A---- C:\WINDOWS\SYSWOW64\wamregps.dll
2015-07-30 22:55:45 ----A---- C:\WINDOWS\SYSWOW64\iisrstap.dll
2015-07-30 22:55:45 ----A---- C:\WINDOWS\SYSWOW64\iisreset.exe
2015-07-30 22:55:45 ----A---- C:\WINDOWS\SYSWOW64\ahadmin.dll
2015-07-30 22:55:41 ----A---- C:\WINDOWS\SYSWOW64\dpnsvr.exe
2015-07-30 22:55:41 ----A---- C:\WINDOWS\SYSWOW64\dpnlobby.dll
2015-07-30 22:55:41 ----A---- C:\WINDOWS\SYSWOW64\dpnhupnp.dll
2015-07-30 22:55:41 ----A---- C:\WINDOWS\SYSWOW64\dpnhpast.dll
2015-07-30 22:55:41 ----A---- C:\WINDOWS\SYSWOW64\dpnet.dll
2015-07-30 22:55:41 ----A---- C:\WINDOWS\SYSWOW64\dpnathlp.dll
2015-07-30 22:55:41 ----A---- C:\WINDOWS\SYSWOW64\dpnaddr.dll
2015-07-30 22:55:33 ----A---- C:\WINDOWS\system32\dpnsvr.exe
2015-07-30 22:55:33 ----A---- C:\WINDOWS\system32\dpnlobby.dll
2015-07-30 22:55:33 ----A---- C:\WINDOWS\system32\dpnhupnp.dll
2015-07-30 22:55:33 ----A---- C:\WINDOWS\system32\dpnhpast.dll
2015-07-30 22:55:33 ----A---- C:\WINDOWS\system32\dpnet.dll
2015-07-30 22:55:33 ----A---- C:\WINDOWS\system32\dpnathlp.dll
2015-07-30 22:55:33 ----A---- C:\WINDOWS\system32\dpnaddr.dll
2015-07-30 22:52:09 ----D---- C:\WINDOWS\system32\LogFiles
2015-07-30 22:51:44 ----D---- C:\WINDOWS\system32\drivers\etc
2015-07-30 22:49:50 ----D---- C:\WINDOWS\system32\wbem
2015-07-30 22:40:19 ----RSD---- C:\WINDOWS\Fonts
2015-07-30 22:40:18 ----D---- C:\ProgramData\regid.1991-06.com.microsoft
2015-07-30 22:26:57 ----D---- C:\WINDOWS\SYSWOW64\zh-TW
2015-07-30 22:26:57 ----D---- C:\WINDOWS\SYSWOW64\zh-HK
2015-07-30 22:26:57 ----D---- C:\WINDOWS\SYSWOW64\zh-CN
2015-07-30 22:26:55 ----D---- C:\WINDOWS\SYSWOW64\uk-UA
2015-07-30 22:26:55 ----D---- C:\WINDOWS\SYSWOW64\tr-TR
2015-07-30 22:26:55 ----D---- C:\WINDOWS\SYSWOW64\th-TH
2015-07-30 22:26:54 ----D---- C:\WINDOWS\SYSWOW64\sv-SE
2015-07-30 22:26:54 ----D---- C:\WINDOWS\SYSWOW64\sr-Latn-RS
2015-07-30 22:26:54 ----D---- C:\WINDOWS\SYSWOW64\sl-SI
2015-07-30 22:26:53 ----D---- C:\WINDOWS\SYSWOW64\sk-SK
2015-07-30 22:26:53 ----D---- C:\WINDOWS\SYSWOW64\sda
2015-07-30 22:26:53 ----D---- C:\WINDOWS\SYSWOW64\ru-RU
2015-07-30 22:26:52 ----D---- C:\WINDOWS\SYSWOW64\ro-RO
2015-07-30 22:26:52 ----D---- C:\WINDOWS\SYSWOW64\pt-PT
2015-07-30 22:26:52 ----D---- C:\WINDOWS\SYSWOW64\pt-BR
2015-07-30 22:26:51 ----D---- C:\WINDOWS\SYSWOW64\pl-PL
2015-07-30 22:26:51 ----D---- C:\WINDOWS\SYSWOW64\nl-NL
2015-07-30 22:26:51 ----D---- C:\WINDOWS\SYSWOW64\nb-NO
2015-07-30 22:26:51 ----D---- C:\WINDOWS\SYSWOW64\ms-my
2015-07-30 22:26:50 ----D---- C:\WINDOWS\SYSWOW64\lv-LV
2015-07-30 22:26:50 ----D---- C:\WINDOWS\SYSWOW64\lt-LT
2015-07-30 22:26:50 ----D---- C:\WINDOWS\SYSWOW64\ko-KR
2015-07-30 22:26:49 ----D---- C:\WINDOWS\SYSWOW64\ja-JP
2015-07-30 22:26:49 ----D---- C:\WINDOWS\SYSWOW64\it-IT
2015-07-30 22:26:48 ----D---- C:\WINDOWS\SYSWOW64\hu-HU
2015-07-30 22:26:47 ----D---- C:\WINDOWS\SYSWOW64\hr-HR
2015-07-30 22:26:47 ----D---- C:\WINDOWS\SYSWOW64\he-IL
2015-07-30 22:26:47 ----D---- C:\WINDOWS\SYSWOW64\gl-es
2015-07-30 22:26:47 ----D---- C:\WINDOWS\SYSWOW64\fr-FR
2015-07-30 22:26:47 ----D---- C:\WINDOWS\SYSWOW64\fi-FI
2015-07-30 22:26:47 ----D---- C:\WINDOWS\SYSWOW64\eu-es
2015-07-30 22:26:46 ----D---- C:\WINDOWS\SYSWOW64\et-EE
2015-07-30 22:26:46 ----D---- C:\WINDOWS\SYSWOW64\es-ES
2015-07-30 22:26:45 ----D---- C:\WINDOWS\SYSWOW64\en-GB
2015-07-30 22:26:44 ----D---- C:\WINDOWS\SYSWOW64\el-GR
2015-07-30 22:26:44 ----D---- C:\WINDOWS\SYSWOW64\drivers
2015-07-30 22:26:44 ----D---- C:\WINDOWS\SYSWOW64\de-DE
2015-07-30 22:26:44 ----D---- C:\WINDOWS\SYSWOW64\da-DK
2015-07-30 22:26:43 ----D---- C:\WINDOWS\SYSWOW64\ca-es-valencia
2015-07-30 22:26:43 ----D---- C:\WINDOWS\SYSWOW64\ca-es
2015-07-30 22:26:42 ----D---- C:\WINDOWS\SYSWOW64\bg-BG
2015-07-30 22:26:42 ----D---- C:\WINDOWS\SYSWOW64\ar-SA
2015-07-30 22:26:42 ----D---- C:\WINDOWS\SYSWOW64\Adobe
2015-07-30 22:26:38 ----D---- C:\WINDOWS\system32\zh-TW
2015-07-30 22:26:38 ----D---- C:\WINDOWS\system32\zh-HK
2015-07-30 22:26:37 ----D---- C:\WINDOWS\system32\zh-CN
2015-07-30 22:26:35 ----D---- C:\WINDOWS\system32\WindowsInternal.Inbox.Shared
2015-07-30 22:26:35 ----D---- C:\WINDOWS\system32\WindowsInternal.Inbox.Media.Shared
2015-07-30 22:26:34 ----D---- C:\WINDOWS\system32\uk-UA
2015-07-30 22:26:34 ----D---- C:\WINDOWS\system32\tr-TR
2015-07-30 22:26:33 ----D---- C:\WINDOWS\system32\th-TH
2015-07-30 22:26:33 ----D---- C:\WINDOWS\system32\sv-SE
2015-07-30 22:26:32 ----D---- C:\WINDOWS\system32\sr-Latn-RS
2015-07-30 22:26:32 ----D---- C:\WINDOWS\system32\spool
2015-07-30 22:26:30 ----D---- C:\WINDOWS\system32\sl-SI
2015-07-30 22:26:30 ----D---- C:\WINDOWS\system32\sk-SK
2015-07-30 22:26:29 ----D---- C:\WINDOWS\system32\ru-RU
2015-07-30 22:26:29 ----D---- C:\WINDOWS\system32\ro-RO
2015-07-30 22:26:29 ----D---- C:\WINDOWS\system32\pt-PT
2015-07-30 22:26:29 ----D---- C:\WINDOWS\system32\pt-BR
2015-07-30 22:26:28 ----D---- C:\WINDOWS\system32\pl-PL
2015-07-30 22:26:23 ----D---- C:\WINDOWS\system32\nl-NL
2015-07-30 22:26:23 ----D---- C:\WINDOWS\system32\NDF
2015-07-30 22:26:23 ----D---- C:\WINDOWS\system32\nb-NO
2015-07-30 22:26:23 ----D---- C:\WINDOWS\system32\ms-my
2015-07-30 22:26:22 ----D---- C:\WINDOWS\system32\lv-LV
2015-07-30 22:26:22 ----D---- C:\WINDOWS\system32\lt-LT
2015-07-30 22:26:21 ----D---- C:\WINDOWS\system32\ko-KR
2015-07-30 22:26:21 ----D---- C:\WINDOWS\system32\ja-JP
2015-07-30 22:26:21 ----D---- C:\WINDOWS\system32\it-IT
2015-07-30 22:26:21 ----D---- C:\WINDOWS\system32\InputMethod
2015-07-30 22:26:20 ----D---- C:\WINDOWS\system32\hu-HU
2015-07-30 22:26:19 ----D---- C:\WINDOWS\system32\hr-HR
2015-07-30 22:26:19 ----D---- C:\WINDOWS\system32\he-IL
2015-07-30 22:26:18 ----D---- C:\WINDOWS\system32\gl-es
2015-07-30 22:26:18 ----D---- C:\WINDOWS\system32\fr-FR
2015-07-30 22:26:18 ----D---- C:\WINDOWS\system32\fi-FI
2015-07-30 22:26:18 ----D---- C:\WINDOWS\system32\eu-es
2015-07-30 22:26:17 ----D---- C:\WINDOWS\system32\et-EE
2015-07-30 22:26:17 ----D---- C:\WINDOWS\system32\es-ES
2015-07-30 22:26:16 ----D---- C:\WINDOWS\system32\en-GB
2015-07-30 22:26:15 ----DC---- C:\WINDOWS\system32\DRVSTORE
2015-07-30 22:26:15 ----D---- C:\WINDOWS\system32\el-GR
2015-07-30 22:26:14 ----D---- C:\WINDOWS\system32\de-DE
2015-07-30 22:26:14 ----D---- C:\WINDOWS\system32\da-DK
2015-07-30 22:24:42 ----D---- C:\WINDOWS\system32\ca-es-valencia
2015-07-30 22:24:41 ----D---- C:\WINDOWS\system32\ca-es
2015-07-30 22:24:41 ----D---- C:\WINDOWS\system32\bg-BG
2015-07-30 22:24:41 ----D---- C:\WINDOWS\system32\ar-SA
2015-07-30 22:24:35 ----D---- C:\WINDOWS\MediaViewer
2015-07-30 22:24:30 ----D---- C:\WINDOWS\InputMethod
2015-07-30 22:24:22 ----SD---- C:\WINDOWS\Downloaded Program Files
2015-07-30 22:24:21 ----D---- C:\WINDOWS\ADFS
2015-07-30 22:24:17 ----RD---- C:\Users
2015-07-30 22:24:16 ----SD---- C:\ProgramData\Microsoft
2015-07-30 22:24:02 ----D---- C:\Program Files (x86)\Windows Mail
2015-07-30 22:24:01 ----D---- C:\Program Files (x86)\Microsoft.NET
2015-07-30 22:24:00 ----D---- C:\Program Files (x86)\Hewlett-Packard
2015-07-30 22:23:59 ----D---- C:\Program Files (x86)\Common Files
2015-07-30 22:23:57 ----D---- C:\Program Files\Windows Mail
2015-07-30 22:23:56 ----D---- C:\Program Files\Intel
2015-07-30 22:23:56 ----D---- C:\Program Files\Common Files\microsoft shared
2015-07-30 22:21:32 ----D---- C:\WINDOWS\system32\Recovery
2015-07-30 22:18:08 ----D---- C:\WINDOWS\system32\CodeIntegrity
2015-07-30 22:16:05 ----D---- C:\WINDOWS\system32\Sysprep
2015-07-27 16:13:12 ----D---- C:\Users\bdank_000\AppData\Roaming\uTorrent
2015-07-21 19:44:07 ----D---- C:\Program Files\Microsoft Office 15
2015-07-18 09:44:40 ----D---- C:\ProgramData\Oracle
2015-07-18 09:44:03 ----D---- C:\Program Files (x86)\Java
2015-07-18 09:41:01 ----A---- C:\WINDOWS\SYSWOW64\WindowsAccessBridge-32.dll

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 aswRvrt;avast! Revert; C:\WINDOWS\system32\drivers\aswRvrt.sys [2015-05-09 65736]
R0 aswVmm;avast! VM Monitor; C:\WINDOWS\system32\drivers\aswVmm.sys [2015-05-09 272248]
R0 MBI;@oem6.inf,%MBI.SVCDESC%;Intel(R) Sideband Fabric Device Service; C:\WINDOWS\System32\drivers\MBI.sys [2014-01-23 29464]
R0 pe3ah4nc;DiRT Environment Driver (pe3ah4nc); C:\WINDOWS\system32\drivers\pe3ah4nc.sys [2007-05-18 72560]
R0 ps6ah4nc;DiRT Synchronization Driver (ps6ah4nc); C:\WINDOWS\system32\drivers\ps6ah4nc.sys [2007-05-18 77176]
R1 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr2.sys [2015-05-09 93528]
R1 aswSP;aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [2015-06-27 442264]
R1 CFRMD;CFRMD; C:\WINDOWS\system32\DRIVERS\CFRMD.sys [2014-06-26 40224]
R1 CLVirtualDrive;CLVirtualDrive; C:\WINDOWS\system32\DRIVERS\CLVirtualDrive.sys [2013-11-12 91912]
R1 cmderd;COMODO Internet Security Eradication Driver; C:\WINDOWS\System32\DRIVERS\cmderd.sys [2015-06-05 20672]
R1 cmdGuard;COMODO Internet Security Sandbox Driver; C:\WINDOWS\system32\DRIVERS\cmdguard.sys [2015-06-05 820928]
R1 cmdhlp;COMODO Internet Security Helper Driver; C:\WINDOWS\system32\DRIVERS\cmdhlp.sys [2015-06-05 35056]
R1 FileCrypt;@%systemroot%\system32\drivers\filecrypt.sys,-100; C:\WINDOWS\system32\drivers\filecrypt.sys [2015-07-10 83968]
R1 GpuEnergyDrv;@%SystemRoot%\system32\drivers\gpuenergydrv.sys,-100; C:\WINDOWS\System32\drivers\gpuenergydrv.sys [2015-07-10 8192]
R1 inspect;COMODO Internet Security Firewall Driver; C:\WINDOWS\system32\DRIVERS\inspect.sys [2015-04-01 126720]
R2 aswHwid;avast! HardwareID; C:\WINDOWS\system32\drivers\aswHwid.sys [2015-05-09 29168]
R2 aswMonFlt;aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [2015-05-09 89944]
R2 aswStm;aswStm; C:\WINDOWS\system32\drivers\aswStm.sys [2015-05-09 137288]
R2 MMCSS;@%systemroot%\system32\drivers\mmcss.sys,-100; C:\WINDOWS\system32\drivers\mmcss.sys [2015-07-10 48128]
R2 storqosflt;@%SystemRoot%\System32\drivers\storqosflt.sys,-101; C:\WINDOWS\system32\drivers\storqosflt.sys [2015-07-10 61952]
R3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Služba Bluetooth Enumerator; C:\WINDOWS\System32\drivers\BthEnum.sys [2015-07-10 105984]
R3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Ovladač úspory energie technologie Bluetooth; C:\WINDOWS\system32\DRIVERS\BthLEEnum.sys [2015-07-10 237568]
R3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Bluetooth Device (Personal Area Network); C:\WINDOWS\System32\drivers\bthpan.sys [2015-07-10 128512]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Bluetooth Radio USB Driver; C:\WINDOWS\System32\Drivers\BTHUSB.sys [2015-07-10 84992]
R3 clwvd;@oem0.inf,%clwvd.DeviceDesc%;CyberLink WebCam Virtual Driver; C:\WINDOWS\system32\DRIVERS\clwvd.sys [2014-01-28 41704]
R3 dtlitescsibus;@oem30.inf,%DTLITESCSIBUS.DeviceDesc%;DAEMON Tools Lite Virtual SCSI Bus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [2015-04-30 30352]
R3 GPIO;@oem12.inf,%GPIO.SVCDESC%;Intel SoC GPIO Controller Driver; C:\WINDOWS\System32\drivers\iaiogpioe.sys [2013-11-11 31232]
R3 igfx;igfx; C:\WINDOWS\system32\DRIVERS\igdkmd64.sys [2015-07-30 3789240]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RTKVHD64.sys [2014-06-24 4001752]
R3 IntcDAud;@oem16.inf,%IntcDAud.SvcDesc%;Intel(R) Display Audio; C:\WINDOWS\system32\DRIVERS\IntcDAud.sys [2015-05-01 454416]
R3 iwdbus;@oem17.inf,%iwdbus.SVCDESC%;IWD Bus Enumerator; C:\WINDOWS\System32\drivers\iwdbus.sys [2015-07-31 39480]
R3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Zařízení Bluetooth (RFCOMM protokol TDI); C:\WINDOWS\System32\drivers\rfcomm.sys [2015-07-10 167936]
R3 RSP2STOR;@oem31.inf,%Rts5229%;Realtek PCIE CardReader Driver - P2; C:\WINDOWS\system32\DRIVERS\RtsP2Stor.sys [2015-05-02 294104]
R3 RTL8168;@oem21.inf,%rtl8168.Service.DispName%;Realtek 8168 NT Driver; C:\WINDOWS\System32\drivers\Rt630x64.sys [2015-05-02 874712]
R3 RTWlanE;@netrtwlane.inf,%RTWlanE.DeviceDesc.DispName%;Realtek Wireless LAN 802.11n PCI-E – síťový adaptér; C:\WINDOWS\system32\DRIVERS\rtwlane.sys [2015-07-10 3453144]
R3 SmbDrvI;SmbDrvI; C:\WINDOWS\system32\DRIVERS\Smb_driver_Intel.sys [2015-07-30 42696]
R3 SynTP;@oem36.inf,%SynTP.SvcDesc%;Synaptics TouchPad Driver; C:\WINDOWS\system32\DRIVERS\SynTP.sys [2015-07-30 614088]
R3 TXEIx64;@oem7.inf,%TEE_SvcDesc%;Intel(R) Trusted Execution Engine Interface ; C:\WINDOWS\System32\drivers\TXEIx64.sys [2014-01-15 88592]
S0 LSI_SAS2i;LSI_SAS2i; C:\WINDOWS\System32\drivers\lsi_sas2i.sys [2015-07-10 104800]
S0 LSI_SAS3i;LSI_SAS3i; C:\WINDOWS\System32\drivers\lsi_sas3i.sys [2015-07-10 99168]
S0 percsas2i;percsas2i; C:\WINDOWS\System32\drivers\percsas2i.sys [2015-07-10 58208]
S0 percsas3i;percsas3i; C:\WINDOWS\System32\drivers\percsas3i.sys [2015-07-10 58720]
S0 storufs;@storufs.inf,%UfsServiceDesc%;Microsoft Universal Flash Storage (UFS) Driver; C:\WINDOWS\System32\drivers\storufs.sys [2015-07-10 40288]
S1 aswSnx;aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [2015-05-09 1047320]
S2 atksgt;atksgt; C:\WINDOWS\system32\DRIVERS\atksgt.sys [2015-07-13 303616]
S2 lirsgt;lirsgt; C:\WINDOWS\system32\DRIVERS\lirsgt.sys [2015-07-13 35328]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Bluetooth Port Driver; C:\WINDOWS\System32\Drivers\BTHport.sys [2015-07-10 928768]
S3 buttonconverter;@buttonconverter.inf,%btnconv.SvcDesc%;Service for Portable Device Control devices; C:\WINDOWS\System32\drivers\buttonconverter.sys [2015-07-10 32256]
S3 CapImg;@capimg.inf,%CapImgHid_Service%;HID driver for CapImg touch screen; C:\WINDOWS\System32\drivers\capimg.sys [2015-07-10 116736]
S3 fcvsc;fcvsc; C:\WINDOWS\System32\drivers\fcvsc.sys [2015-07-10 31232]
S3 genericusbfn;@genericusbfn.inf,%genericusbfn.ServiceName%;Generic USB Function Class; C:\WINDOWS\System32\drivers\genericusbfn.sys [2015-07-10 20992]
S3 hidinterrupt;@hidinterrupt.inf,%HID.SvcDesc%;Common Driver for HID Buttons implemented with interrupts; C:\WINDOWS\System32\drivers\hidinterrupt.sys [2015-07-10 50016]
S3 iaStorA;iaStorA; C:\WINDOWS\System32\drivers\iaStorA.sys [2013-11-06 632168]
S3 ibbus;@mlx4_bus.inf,%Ibbus.ServiceDesc%;Mellanox InfiniBand Bus/AL (Filter Driver); C:\WINDOWS\System32\drivers\ibbus.sys [2015-07-10 424800]
S3 intaud_WaveExtensible;@oem3.inf,%INTAUD_WEX.SvcDesc%;Intel WiDi Audio Device; C:\WINDOWS\system32\drivers\intelaud.sys [2015-07-31 50232]
S3 IoQos;@%SystemRoot%\system32\drivers\ioqos.sys,-100; C:\WINDOWS\system32\drivers\ioqos.sys [2015-07-10 26624]
S3 mlx4_bus;@mlx4_bus.inf,%MLX4BUS.ServiceDesc%;Mellanox ConnectX Bus Enumerator; C:\WINDOWS\System32\drivers\mlx4_bus.sys [2015-07-10 705376]
S3 ndfltr;@mlx4_bus.inf,%ndfltr.ServiceDesc%;NetworkDirect Service; C:\WINDOWS\System32\drivers\ndfltr.sys [2015-07-10 76128]
S3 ReFSv1;ReFSv1; C:\WINDOWS\system32\drivers\ReFSv1.sys [2015-07-31 934752]
S3 UcmCx0101;USB Connector Manager KMDF Class Extension; C:\WINDOWS\System32\Drivers\UcmCx.sys [2015-07-10 61952]
S3 UcmUcsi;@ucmucsi.inf,%UcmUcsi.ServiceName%;USB Connector Manager UCSI Client; C:\WINDOWS\System32\drivers\UcmUcsi.sys [2015-07-31 46080]
S3 UdeCx;USB Device Emulation Support Library; C:\WINDOWS\system32\drivers\udecx.sys [2015-07-10 44032]
S3 Ufx01000;USB Function Class Extension; C:\WINDOWS\system32\drivers\ufx01000.sys [2015-07-10 245088]
S3 UfxChipidea;@ufxchipidea.inf,%UfxChipidea.ServiceName%;USB Chipidea Controller; C:\WINDOWS\System32\drivers\UfxChipidea.sys [2015-07-10 94048]
S3 ufxsynopsys;@ufxsynopsys.inf,%ufxsynopsys.ServiceName%;USB Synopsys Controller; C:\WINDOWS\System32\drivers\ufxsynopsys.sys [2015-07-10 127840]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2015-07-16 82128]
R2 AERTFilters;Andrea RT Filters Service; C:\Program Files\Realtek\Audio\HDA\AERTSr64.EXE [2014-06-24 98208]
R2 AppHostSvc;@%windir%\system32\inetsrv\iisres.dll,-30011; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
R2 ArcGIS License Manager;ArcGIS License Manager; C:\Program Files (x86)\ArcGIS\License10.2\bin\lmgrd.exe [2015-05-17 1452408]
R2 avast! Antivirus;Avast Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2015-05-09 343336]
R2 Bonjour Service;Bonjour Service; C:\Program Files\Bonjour\mDNSResponder.exe [2011-08-31 462184]
R2 BTDevManager;BTDevManager; C:\Program Files (x86)\REALTEK\Realtek Bluetooth\BTDevMgr.exe [2015-05-09 98816]
R2 ClickToRunSvc;Microsoft Office ClickToRun Service; C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe [2015-07-21 2753720]
R2 CmdAgent;COMODO Internet Security Helper Service; C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe [2015-06-10 5541960]
R2 CoreMessagingRegistrar;@%SystemRoot%\system32\coremessaging.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
R2 DiagTrack;@%SystemRoot%\system32\diagtrack.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]
R2 HP Support Assistant Service;HP Support Assistant Service; C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe [2015-05-22 99128]
R2 HPWMISVC;HPWMISVC; c:\Program Files (x86)\Hewlett-Packard\HP System Event\HPWMISVC.exe [2015-06-13 608520]
R2 ChromodoUpdater;COMODO Chromodo Update Service; C:\Program Files (x86)\Comodo\Chromodo\chromodo_updater.exe [2015-08-15 1995448]
R2 igfxCUIService1.0.0.0;Intel(R) HD Graphics Control Panel Service; C:\WINDOWS\system32\igfxCUIService.exe [2015-07-30 319888]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\TXE Components\TCS\HeciServer.exe [2013-07-01 733696]
R2 OneSyncSvc_Session1;Hostitel synchronizace_Session1; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
R2 RichVideo64;Cyberlink RichVideo64 Service(CRVS); C:\Program Files\CyberLink\Shared files\RichVideo64.exe [2014-04-14 389896]
R2 RtkAudioService;Realtek Audio Service; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [2014-06-24 290520]
R2 SynTPEnhService;SynTPEnh Caller Service; C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [2015-07-30 246472]
R2 tiledatamodelsvc;@%SystemRoot%\system32\tileobjserver.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
R3 ClipSVC;@%SystemRoot%\system32\ClipSVC.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]
R3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2015-06-17 43696]
R3 LicenseManager;@%SystemRoot%\system32\licensemanagersvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]
R3 PimIndexMaintenanceSvc_Session1;Data kontaktů_Session1; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
R3 StateRepository;@%SystemRoot%\system32\windows.staterepository.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S2 dmwappushservice;@%SystemRoot%\system32\dmwappushsvc.dll,-200; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S2 DoSvc;@%systemroot%\system32\dosvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S2 MapsBroker;@%SystemRoot%\System32\moshost.dll,-100; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]
S2 OneSyncSvc;@%SystemRoot%\system32\APHostRes.dll,-10002; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S2 pr2ah4nc;DiRT Drivers Auto Removal (pr2ah4nc); C:\Windows\system32\pr2ah4nc.exe [2015-05-10 754288]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2015-06-03 327296]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-08-14 269000]
S3 AJRouter;@%SystemRoot%\system32\AJRouter.dll,-2; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S3 aspnet_state;@%SystemRoot%\Microsoft.NET\Framework64\v4.0.30319\aspnet_rc.dll,-1; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2015-07-10 50352]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]
S3 CDPSvc;@%SystemRoot%\system32\cdpsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S3 cmdvirth;COMODO Virtual Service Manager; C:\Program Files\COMODO\COMODO Internet Security\cmdvirth.exe [2015-06-10 2265792]
S3 cphs;Intel(R) Content Protection HECI Service; C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe [2015-07-30 281488]
S3 DcpSvc;@%SystemRoot%\system32\dcpsvc.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]
S3 DevQueryBroker;@%SystemRoot%\system32\DevQueryBroker.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S3 diagnosticshub.standardcollector.service;@%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000; C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe [2015-07-10 27136]
S3 Disc Soft Lite Bus Service;Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe [2015-02-27 1272592]
S3 DmEnrollmentSvc;@%systemroot%\system32\Windows.Internal.Management.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S3 DsSvc;@%SystemRoot%\system32\dssvc.dll,-10003; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]
S3 embeddedmode;@%SystemRoot%\system32\embeddedmodesvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]
S3 EntAppSvc;@EnterpriseAppMgmtSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S3 FlexNet Licensing Service;FlexNet Licensing Service; C:\Program Files (x86)\Common Files\Macrovision Shared\FlexNet Publisher\FNPLicensingService.exe [2015-05-17 1074480]
S3 hpqwmiex;HP Software Framework Service; C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe [2013-05-13 1129760]
S3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS; C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [2012-04-24 169752]
S3 icssvc;@%SystemRoot%\System32\tetheringservice.dll,-4097; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S3 Intel(R) Capability Licensing Service TCP IP Interface;Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\TXE Components\TCS\SocketHeciServer.exe [2013-07-01 822232]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2015-08-15 149160]
S3 NetSetupSvc;@%SystemRoot%\system32\NetSetupSvc.dll,-3; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]
S3 NgcCtnrSvc;@%SystemRoot%\System32\NgcCtnrSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S3 NgcSvc;@%SystemRoot%\System32\ngcsvc.dll,-100; C:\WINDOWS\system32\lsass.exe [2015-07-10 56344]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2014-01-23 150600]
S3 PimIndexMaintenanceSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-15001; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S3 RetailDemo;@%SystemRoot%\System32\RDXService.dll,-256; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]
S3 SensorDataService;@%SystemRoot%\system32\SensorDataService.exe,-101; C:\WINDOWS\System32\SensorDataService.exe [2015-07-31 1031680]
S3 SensorService;@%SystemRoot%\System32\sensorservice.dll,-1000; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S3 SmsRouter;@%SystemRoot%\System32\SmsRouterSvc.dll,-10001; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119418
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o kontrolu

#8 Příspěvek od Rudy »

Stáhněte OTM: http://oldtimer.geekstogo.com/OTM.exe a uložte na plochu. Spusťte a do levého okna zkopírujte:
:reg
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"SunJavaUpdateSched"=-

:commands
[Purity]
[Emptytemp]
[Emptyflash]
a klikněte na >MoveIt!<. Před skenem vypněte antivir a po něm restartujte PC. Dejte nový log RSIT.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

steren95
Návštěvník
Návštěvník
Příspěvky: 34
Registrován: 22 bře 2014 13:10

Re: Prosím o kontrolu

#9 Příspěvek od steren95 »

Logfile of random's system information tool 1.10 (written by random/random)
Run by bdank_000 at 2015-08-19 16:46:30
Microsoft Windows 10 Home
System drive C: has 236 GB (52%) free of 455 GB
Total RAM: 3982 MB (50% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 16:46:49, on 19.08.2015
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.10240.16412)
Boot mode: Normal

Running processes:
C:\Program Files\Microsoft Office 15\root\Office15\msoia.exe
C:\Program Files (x86)\CyberLink\YouCam\YouCamService.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Users\bdank_000\AppData\Local\Microsoft\OneDrive\OneDrive.exe
C:\Program Files\AVAST Software\Avast\avastui.exe
C:\Program Files (x86)\Hewlett-Packard\HP System Event\HPMSGSVC.exe
C:\Users\bdank_000\AppData\Roaming\Dropbox\bin\Dropbox.exe
C:\Program Files\trend micro\bdank_000.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.bing.com?pc=HPDTDFJS
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=
O2 - BHO: Skype for Business Click to Call BHO - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\Office15\OCHelper.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_51\bin\ssv.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Evernote extension - {92EF2EAD-A7CE-4424-B0DB-499CF856608E} - C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll
O2 - BHO: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_51\bin\jp2ssv.dll
O2 - BHO: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll
O2 - BHO: Adblock Plus for IE Browser Helper Object - {FFCB3198-32F3-4E8B-9539-4324694ED664} - C:\Program Files\Adblock Plus for IE\AdblockPlus32.dll
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [HPMessageService] C:\Program Files (x86)\Hewlett-Packard\HP System Event\HPMSGSVC.exe
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [Power2GoExpress8] "C:\Program Files (x86)\CyberLink\Power2Go8\Power2GoExpress8.exe"
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKCU\..\Run: [Dropbox Update] "C:\Users\bdank_000\AppData\Local\Dropbox\Update\DropboxUpdate.exe" /c
O4 - HKCU\..\Run: [OneDrive] "C:\Users\bdank_000\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
O4 - HKCU\..\RunOnce: [Uninstall C:\Users\bdank_000\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64] C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\bdank_000\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64"
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O4 - Startup: Dropbox.lnk = bdank_000\AppData\Roaming\Dropbox\bin\Dropbox.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\Program Files\Microsoft Office 15\Root\Office15\EXCEL.EXE/3000
O8 - Extra context menu item: Se&nd to OneNote - res://C:\Program Files\Microsoft Office 15\Root\Office15\ONBttnIE.dll/105
O9 - Extra button: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-103 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-102 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIE.dll
O9 - Extra button: Skype for Business Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\Office15\OCHelper.dll
O9 - Extra 'Tools' menuitem: Skype for Business Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\Office15\OCHelper.dll
O9 - Extra button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIELinkedNotes.dll
O9 - Extra button: @C:\Program Files (x86)\Evernote\Evernote\Resource.dll,-101 - {A95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\Program Files (x86)\Evernote\Evernote\\EvernoteIERes\AddNote.html
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Evernote\Evernote\Resource.dll,-101 - {A95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\Program Files (x86)\Evernote\Evernote\\EvernoteIERes\AddNote.html
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Andrea RT Filters Service (AERTFilters) - Andrea Electronics Corporation - C:\Program Files\Realtek\Audio\HDA\AERTSr64.EXE
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: ArcGIS License Manager - Flexera Software LLC - C:\Program Files (x86)\ArcGIS\License10.2\bin\lmgrd.exe
O23 - Service: Avast Antivirus (avast! Antivirus) - Avast Software s.r.o. - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: BTDevManager - Unknown owner - C:\Program Files (x86)\REALTEK\Realtek Bluetooth\BTDevMgr.exe
O23 - Service: COMODO Chromodo Update Service (ChromodoUpdater) - Comodo - C:\Program Files (x86)\Comodo\Chromodo\chromodo_updater.exe
O23 - Service: COMODO Internet Security Helper Service (CmdAgent) - COMODO - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
O23 - Service: COMODO Virtual Service Manager (cmdvirth) - COMODO - C:\Program Files\COMODO\COMODO Internet Security\cmdvirth.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: Disc Soft Lite Bus Service - Disc Soft Ltd - C:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: FlexNet Licensing Service - Flexera Software LLC - C:\Program Files (x86)\Common Files\Macrovision Shared\FlexNet Publisher\FNPLicensingService.exe
O23 - Service: HP Support Assistant Service - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe
O23 - Service: HP Software Framework Service (hpqwmiex) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe
O23 - Service: HPWMISVC - Hewlett-Packard Development Company, L.P. - c:\Program Files (x86)\Hewlett-Packard\HP System Event\HPWMISVC.exe
O23 - Service: Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) - Unknown owner - C:\WINDOWS\system32\igfxCUIService.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\TXE Components\TCS\HeciServer.exe
O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - C:\Program Files\Intel\TXE Components\TCS\SocketHeciServer.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\System32\ngcsvc.dll,-100 (NgcSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: DiRT Drivers Auto Removal (pr2ah4nc) (pr2ah4nc) - Unknown owner - C:\Windows\system32\pr2ah4nc.exe (file missing)
O23 - Service: Cyberlink RichVideo64 Service(CRVS) (RichVideo64) - Unknown owner - C:\Program Files\CyberLink\Shared files\RichVideo64.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: Realtek Audio Service (RtkAudioService) - Realtek Semiconductor - C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: SynTPEnh Caller Service (SynTPEnhService) - Synaptics Incorporated - C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 13743 bytes

======Listing Processes======







winlogon.exe

C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
"dwm.exe"
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
dashost.exe {c1dd45c1-b8e4-4513-8d2c71ee367bd550}
C:\WINDOWS\system32\igfxCUIService.exe
"C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /SRSPS
C:\WINDOWS\system32\svchost.exe -k NetworkService
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
C:\WINDOWS\system32\svchost.exe -k apphost
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
C:\WINDOWS\System32\svchost.exe -k utcsvc
"C:\Program Files (x86)\REALTEK\Realtek Bluetooth\BTDevMgr.exe"
"C:\Program Files\Realtek\Audio\HDA\AERTSr64.EXE"
"C:\Program Files\Intel\TXE Components\TCS\HeciServer.exe"
"C:\Program Files\Bonjour\mDNSResponder.exe"
"c:\Program Files (x86)\Hewlett-Packard\HP System Event\HPWMISVC.exe"
"C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe" /service
"C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe"
"C:\Program Files (x86)\Comodo\Chromodo\chromodo_updater.exe"
C:\WINDOWS\system32\svchost.exe -k appmodel
"C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe"
"C:\Program Files\CyberLink\Shared files\RichVideo64.exe"
"C:\Program Files\COMODO\COMODO Internet Security\cavwp.exe" /ModeAvMonitor -Embedding
taskeng.exe {0A54FC3D-B7B4-433E-BF59-89C0E7E6D011}
"C:\Program Files\COMODO\COMODO Internet Security\cistray.exe"
taskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E}
"C:\Program Files\Microsoft Office 15\root\Office15\msoia.exe" scan upload
sihost.exe
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
C:\WINDOWS\Explorer.EXE
"C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE"
"C:\WINDOWS\system32\backgroundTaskHost.exe" -ServerName:App.AppXmtcan0h2tfbfy7k9kn8hbxb6dmzz1zh0.mca

C:\Windows\System32\RuntimeBroker.exe -Embedding
igfxEM.exe
igfxHK.exe
"C:\Program Files (x86)\CyberLink\YouCam\YouCamService.exe"
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
"C:\WINDOWS\notepad.exe" C:\_OTM\MovedFiles\08192015_163705.log
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe1_ Global\UsGthrCtrlFltPipeMssGthrPipe1 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
"C:\WINDOWS\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe" -ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca
"C:\Program Files\COMODO\COMODO Internet Security\cis.exe" --alertsUI
C:\WINDOWS\system32\SettingSyncHost.exe -Embedding
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe"
"C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe" -s
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /ANDREA_BF_BYPASS
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\Users\bdank_000\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
"C:\Program Files\AVAST Software\Avast\avastui.exe" /nogui
"C:\Program Files (x86)\Hewlett-Packard\HP System Event\HPMSGSVC.exe"
"fontdrvhost.exe"
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\Users\bdank_000\AppData\Roaming\Dropbox\bin\Dropbox.exe" /systemstartup
C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files (x86)\ArcGIS\License10.2\bin\lmgrd.exe"
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Program Files (x86)\ArcGIS\License10.2\bin\lmgrd.exe" -c "C:\Program Files (x86)\ArcGIS\License10.2\bin\service.txt" -l "C:\Program Files (x86)\ArcGIS\License10.2\bin\lmgrd9.log" -z -local
"C:\WINDOWS\system32\backgroundTaskHost.exe" -ServerName:CortanaUI.AppXy7vb4pc2dr3kc93kfc509b1d0arkfb2x.mca
C:\WINDOWS\servicing\TrustedInstaller.exe
C:\WINDOWS\winsxs\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.10240.16384_none_115fd2f761f7c508\TiWorker.exe -Embedding
C:\WINDOWS\sysWOW64\wbem\wmiprvse.exe -Embedding
wmiadap.exe /F /T /R

"C:\Users\bdank_000\Downloads\RSITx64.exe"

======Scheduled tasks folder======

C:\WINDOWS\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\WINDOWS\tasks\DropboxUpdateTaskUserS-1-5-21-1768221200-1659335568-1168367043-1001Core.job - C:\Users\bdank_000\AppData\Local\Dropbox\Update\DropboxUpdate.exe /c
C:\WINDOWS\tasks\DropboxUpdateTaskUserS-1-5-21-1768221200-1659335568-1168367043-1001UA.job - C:\Users\bdank_000\AppData\Local\Dropbox\Update\DropboxUpdate.exe /ua /installsource scheduler
C:\WINDOWS\tasks\HPCeeScheduleForbdank_000.job - C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe HPCeeScheduleForbdank_000 (null)

=========Mozilla firefox=========

ProfilePath - C:\Users\bdank_000\AppData\Roaming\Mozilla\Firefox\Profiles\09e379ej.default

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 18.0.0.232 Plugin
"Path"=C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_18_0_0_232.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/ShockwavePlayer]
"Description"=Adobe Shockwave Player
"Path"=C:\windows\SysWOW64\Adobe\Director\np32dsw_1204144.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/pdf]
"Description"=
"Path"=C:\Program Files (x86)\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.fdf]
"Description"=
"Path"=C:\Program Files (x86)\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/DTPlugin,version=11.51.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files (x86)\Java\jre1.8.0_51\bin\dtplugin\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=11.51.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Java\jre1.8.0_51\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/Lync,version=15.0]
"Description"=Microsoft Lync Plug-in for Firefox
"Path"=C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 18.0.0.232 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF64_18_0_0_232.dll


======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Skype for Business Browser Helper - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll [2015-06-09 219304]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2015-05-09 662672]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft SkyDrive Pro Browser Helper - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL [2015-06-16 2335448]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E76FD755-C1BA-4DCB-9F13-99BD91223ADE}]
HP Network Check Helper - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll [2013-08-28 303416]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FFCB3198-32F3-4E8B-9539-4324694ED664}]
Adblock Plus for IE Browser Helper Object - C:\Program Files\Adblock Plus for IE\AdblockPlus64.dll [2015-02-25 728840]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Skype for Business Browser Helper - C:\Program Files\Microsoft Office 15\root\Office15\OCHelper.dll [2015-06-09 153768]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_51\bin\ssv.dll [2015-07-18 460384]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2015-05-09 565304]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{92EF2EAD-A7CE-4424-B0DB-499CF856608E}]
Evernote extension - C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll [2014-04-04 585568]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft SkyDrive Pro Browser Helper - C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL [2015-06-16 1730264]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_51\bin\jp2ssv.dll [2015-07-18 172640]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E76FD755-C1BA-4DCB-9F13-99BD91223ADE}]
HP Network Check Helper - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2013-08-28 286520]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FFCB3198-32F3-4E8B-9539-4324694ED664}]
Adblock Plus for IE Browser Helper Object - C:\Program Files\Adblock Plus for IE\AdblockPlus32.dll [2015-02-25 617736]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [2014-06-24 7634288]
"RtHDVBg"=C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2014-06-24 1386712]
"COMODO Autostart {D5EFF3B3-E126-4AF6-BCE9-852A72129E10}"=C:\Program Files\COMODO\COMODO Internet Security\cistray.exe [2015-06-10 1427648]
"COMODO Internet Security"=C:\Program Files\COMODO\COMODO Internet Security\cistray.exe [2015-06-10 1427648]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2015-07-30 3944136]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"=C:\Program Files\DAEMON Tools Lite\DTLite.exe [2015-02-27 5583120]
"Skype"=C:\Program Files (x86)\Skype\Phone\Skype.exe [2015-06-29 53282944]
"Power2GoExpress8"=C:\Program Files (x86)\CyberLink\Power2Go8\Power2GoExpress8.exe [2015-02-09 1720584]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2015-04-23 8204056]
"Dropbox Update"=C:\Users\bdank_000\AppData\Local\Dropbox\Update\DropboxUpdate.exe [2015-06-19 134512]
"OneDrive"=C:\Users\bdank_000\AppData\Local\Microsoft\OneDrive\OneDrive.exe [2015-07-30 402632]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"Uninstall C:\Users\bdank_000\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64"=C:\WINDOWS\system32\cmd.exe [2015-07-10 232448]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2015-05-12 5515496]
"HPMessageService"=C:\Program Files (x86)\Hewlett-Packard\HP System Event\HPMSGSVC.exe [2015-06-13 654088]

C:\Users\bdank_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Dropbox.lnk - C:\Users\bdank_000\AppData\Roaming\Dropbox\bin\Dropbox.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
igfxdev.dll []

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TileDataModelSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TileDataModelSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DSCAutomationHostEnabled"=2
"DisableTaskMgr"=0
"SoftwareSASGeneration"=1

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoRun"=0
"NoFolderOptions"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2015-08-19 16:37:05 ----D---- C:\_OTM
2015-08-17 18:07:56 ----A---- C:\AdwCleaner[C1].txt
2015-08-17 18:04:51 ----A---- C:\AdwCleaner[S1].txt
2015-08-17 18:04:44 ----D---- C:\AdwCleaner
2015-08-15 19:48:49 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Protection.PlayReady.dll
2015-08-15 19:48:48 ----A---- C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2015-08-15 19:48:40 ----A---- C:\WINDOWS\system32\edgehtml.dll
2015-08-15 19:48:36 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.dll
2015-08-15 19:48:31 ----A---- C:\WINDOWS\system32\mshtml.dll
2015-08-15 19:48:20 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2015-08-15 19:48:13 ----A---- C:\WINDOWS\SYSWOW64\edgehtml.dll
2015-08-15 19:48:07 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.dll
2015-08-15 19:47:53 ----A---- C:\WINDOWS\system32\twinui.dll
2015-08-15 19:47:46 ----A---- C:\WINDOWS\system32\shell32.dll
2015-08-15 19:47:43 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
2015-08-15 19:47:39 ----A---- C:\WINDOWS\system32\ieframe.dll
2015-08-15 19:47:36 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2015-08-15 19:47:31 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2015-08-15 19:47:28 ----A---- C:\WINDOWS\system32\Windows.UI.Logon.dll
2015-08-15 19:47:26 ----A---- C:\WINDOWS\system32\SettingsHandlers_nt.dll
2015-08-15 19:47:21 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll
2015-08-15 19:47:10 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Logon.dll
2015-08-15 19:47:08 ----A---- C:\WINDOWS\system32\CoreUIComponents.dll
2015-08-15 19:47:07 ----A---- C:\WINDOWS\SYSWOW64\MFMediaEngine.dll
2015-08-15 19:47:06 ----A---- C:\WINDOWS\system32\twinui.appcore.dll
2015-08-15 19:47:01 ----A---- C:\WINDOWS\SYSWOW64\mfcore.dll
2015-08-15 19:46:59 ----A---- C:\WINDOWS\system32\mfcore.dll
2015-08-15 19:46:58 ----A---- C:\WINDOWS\system32\LicenseManager.dll
2015-08-15 19:46:57 ----A---- C:\WINDOWS\SYSWOW64\twinui.appcore.dll
2015-08-15 19:46:55 ----A---- C:\WINDOWS\SYSWOW64\CoreUIComponents.dll
2015-08-15 19:46:53 ----A---- C:\WINDOWS\system32\drivers\dxgkrnl.sys
2015-08-15 19:46:51 ----A---- C:\WINDOWS\system32\winmde.dll
2015-08-15 19:46:50 ----A---- C:\WINDOWS\SYSWOW64\LicenseManager.dll
2015-08-15 19:46:50 ----A---- C:\WINDOWS\system32\d3d9.dll
2015-08-15 19:46:49 ----A---- C:\WINDOWS\SYSWOW64\d3d9.dll
2015-08-15 19:46:49 ----A---- C:\WINDOWS\system32\drivers\ntfs.sys
2015-08-15 19:46:48 ----A---- C:\WINDOWS\system32\modernexecserver.dll
2015-08-15 19:46:46 ----A---- C:\WINDOWS\system32\wmpmde.dll
2015-08-15 19:46:45 ----A---- C:\WINDOWS\system32\win32kfull.sys
2015-08-15 19:46:44 ----A---- C:\WINDOWS\system32\RDXService.dll
2015-08-15 19:46:44 ----A---- C:\WINDOWS\system32\mfmp4srcsnk.dll
2015-08-15 19:46:44 ----A---- C:\WINDOWS\system32\AppXDeploymentServer.dll
2015-08-15 19:46:43 ----A---- C:\WINDOWS\system32\RemoteNaturalLanguage.dll
2015-08-15 19:46:42 ----A---- C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2015-08-15 19:46:40 ----A---- C:\WINDOWS\system32\UserDataService.dll
2015-08-15 19:46:39 ----A---- C:\WINDOWS\system32\rpcrt4.dll
2015-08-15 19:46:38 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Speech.dll
2015-08-15 19:46:38 ----A---- C:\WINDOWS\system32\wpncore.dll
2015-08-15 19:46:37 ----A---- C:\WINDOWS\system32\LogonController.dll
2015-08-15 19:46:36 ----A---- C:\WINDOWS\SYSWOW64\winmde.dll
2015-08-15 19:46:33 ----A---- C:\WINDOWS\system32\DWrite.dll
2015-08-15 19:46:32 ----A---- C:\WINDOWS\SYSWOW64\RemoteNaturalLanguage.dll
2015-08-15 19:46:31 ----A---- C:\WINDOWS\SYSWOW64\mfmp4srcsnk.dll
2015-08-15 19:46:30 ----A---- C:\WINDOWS\system32\Windows.Media.Speech.dll
2015-08-15 19:46:29 ----A---- C:\WINDOWS\SYSWOW64\LogonController.dll
2015-08-15 19:46:29 ----A---- C:\WINDOWS\system32\schedsvc.dll
2015-08-15 19:46:29 ----A---- C:\WINDOWS\system32\NotificationController.dll
2015-08-15 19:46:28 ----A---- C:\WINDOWS\system32\PlayToManager.dll
2015-08-15 19:46:28 ----A---- C:\WINDOWS\system32\mf.dll
2015-08-15 19:46:27 ----A---- C:\WINDOWS\system32\FntCache.dll
2015-08-15 19:46:27 ----A---- C:\WINDOWS\system32\CredProvDataModel.dll
2015-08-15 19:46:25 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2015-08-15 19:46:24 ----A---- C:\WINDOWS\SYSWOW64\mfmpeg2srcsnk.dll
2015-08-15 19:46:23 ----A---- C:\WINDOWS\SYSWOW64\DWrite.dll
2015-08-15 19:46:22 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2015-08-15 19:46:21 ----A---- C:\WINDOWS\system32\wcmsvc.dll
2015-08-15 19:46:19 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2015-08-15 19:46:17 ----A---- C:\WINDOWS\SYSWOW64\InputService.dll
2015-08-15 19:46:16 ----A---- C:\WINDOWS\SYSWOW64\mfsvr.dll
2015-08-15 19:46:16 ----A---- C:\WINDOWS\system32\tileobjserver.dll
2015-08-15 19:46:15 ----A---- C:\WINDOWS\SYSWOW64\CredProvDataModel.dll
2015-08-15 19:46:10 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.dll
2015-08-15 19:46:07 ----A---- C:\WINDOWS\SYSWOW64\rpcrt4.dll
2015-08-15 19:46:07 ----A---- C:\WINDOWS\system32\PsmServiceExtHost.dll
2015-08-15 19:46:05 ----A---- C:\WINDOWS\system32\mfsvr.dll
2015-08-15 19:46:03 ----A---- C:\WINDOWS\system32\win32kbase.sys
2015-08-15 19:46:02 ----A---- C:\WINDOWS\system32\AudioEng.dll
2015-08-15 19:46:01 ----A---- C:\WINDOWS\SYSWOW64\PlayToManager.dll
2015-08-15 19:45:59 ----A---- C:\WINDOWS\system32\mfsrcsnk.dll
2015-08-15 19:45:59 ----A---- C:\WINDOWS\system32\drivers\dxgmms2.sys
2015-08-15 19:45:58 ----A---- C:\WINDOWS\SYSWOW64\VEEventDispatcher.dll
2015-08-15 19:45:58 ----A---- C:\WINDOWS\system32\wpnapps.dll
2015-08-15 19:45:58 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.LockScreen.dll
2015-08-15 19:45:58 ----A---- C:\WINDOWS\system32\provhandlers.dll
2015-08-15 19:45:58 ----A---- C:\WINDOWS\system32\facecredentialprovider.dll
2015-08-15 19:45:56 ----A---- C:\WINDOWS\SYSWOW64\wpnapps.dll
2015-08-15 19:45:56 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.LockScreen.dll
2015-08-15 19:45:56 ----A---- C:\WINDOWS\SYSWOW64\AudioEng.dll
2015-08-15 19:45:55 ----A---- C:\WINDOWS\system32\SettingsHandlers_UserAccount.dll
2015-08-15 19:45:54 ----A---- C:\WINDOWS\system32\provengine.dll
2015-08-15 19:45:54 ----A---- C:\WINDOWS\system32\atmfd.dll
2015-08-15 19:45:53 ----A---- C:\WINDOWS\system32\WWAHost.exe
2015-08-15 19:45:53 ----A---- C:\WINDOWS\system32\VEEventDispatcher.dll
2015-08-15 19:45:52 ----A---- C:\WINDOWS\system32\AudioSes.dll
2015-08-15 19:45:52 ----A---- C:\WINDOWS\system32\ActionCenter.dll
2015-08-15 19:45:51 ----A---- C:\WINDOWS\system32\SensorService.dll
2015-08-15 19:45:51 ----A---- C:\WINDOWS\system32\MFPlay.dll
2015-08-15 19:45:49 ----A---- C:\WINDOWS\SYSWOW64\atmfd.dll
2015-08-15 19:45:49 ----A---- C:\WINDOWS\system32\SubscriptionMgr.dll
2015-08-15 19:45:49 ----A---- C:\WINDOWS\system32\NetworkStatus.dll
2015-08-15 19:45:48 ----A---- C:\WINDOWS\SYSWOW64\WWAHost.exe
2015-08-15 19:45:48 ----A---- C:\WINDOWS\system32\fontdrvhost.exe
2015-08-15 19:45:48 ----A---- C:\WINDOWS\system32\drivers\WdiWiFi.sys
2015-08-15 19:45:48 ----A---- C:\WINDOWS\system32\drivers\rdyboost.sys
2015-08-15 19:45:47 ----A---- C:\WINDOWS\SYSWOW64\MFPlay.dll
2015-08-15 19:45:47 ----A---- C:\WINDOWS\SYSWOW64\ActionCenter.dll
2015-08-15 19:45:47 ----A---- C:\WINDOWS\system32\WinBioDataModel.dll
2015-08-15 19:45:47 ----A---- C:\WINDOWS\system32\AudioEndpointBuilder.dll
2015-08-15 19:45:45 ----A---- C:\WINDOWS\system32\wifinetworkmanager.dll
2015-08-15 19:45:45 ----A---- C:\WINDOWS\system32\msctfuimanager.dll
2015-08-15 19:45:45 ----A---- C:\WINDOWS\system32\drivers\mountmgr.sys
2015-08-15 19:45:44 ----A---- C:\WINDOWS\SYSWOW64\NotificationObjFactory.dll
2015-08-15 19:45:44 ----A---- C:\WINDOWS\system32\VEDataLayerHelpers.dll
2015-08-15 19:45:44 ----A---- C:\WINDOWS\system32\NotificationObjFactory.dll
2015-08-15 19:45:44 ----A---- C:\WINDOWS\system32\ContentDeliveryManager.Utilities.dll
2015-08-15 19:45:43 ----A---- C:\WINDOWS\SYSWOW64\msctfuimanager.dll
2015-08-15 19:45:43 ----A---- C:\WINDOWS\system32\drivers\USBHUB3.SYS
2015-08-15 19:45:42 ----A---- C:\WINDOWS\SYSWOW64\VEDataLayerHelpers.dll
2015-08-15 19:45:42 ----A---- C:\WINDOWS\SYSWOW64\TextInputFramework.dll
2015-08-15 19:45:42 ----A---- C:\WINDOWS\SYSWOW64\fontdrvhost.exe
2015-08-15 19:45:41 ----A---- C:\WINDOWS\SYSWOW64\mfmkvsrcsnk.dll
2015-08-15 19:45:41 ----A---- C:\WINDOWS\system32\TextInputFramework.dll
2015-08-15 19:45:41 ----A---- C:\WINDOWS\system32\drivers\dxgmms1.sys
2015-08-15 19:45:41 ----A---- C:\WINDOWS\system32\ACPBackgroundManagerPolicy.dll
2015-08-15 19:45:40 ----A---- C:\WINDOWS\system32\Windows.Cortana.Desktop.dll
2015-08-15 19:45:40 ----A---- C:\WINDOWS\system32\StoreAgent.dll
2015-08-15 19:45:39 ----A---- C:\WINDOWS\system32\wcmcsp.dll
2015-08-15 19:45:39 ----A---- C:\WINDOWS\system32\mfmkvsrcsnk.dll
2015-08-15 19:45:39 ----A---- C:\WINDOWS\system32\InstallAgent.exe
2015-08-15 19:45:38 ----A---- C:\WINDOWS\system32\VPNv2CSP.dll
2015-08-15 19:45:38 ----A---- C:\WINDOWS\system32\sysmain.dll
2015-08-15 19:45:38 ----A---- C:\WINDOWS\system32\MusNotificationUx.exe
2015-08-15 19:45:38 ----A---- C:\WINDOWS\system32\drivers\wof.sys
2015-08-15 19:45:38 ----A---- C:\WINDOWS\system32\configmanager2.dll
2015-08-15 19:45:37 ----A---- C:\WINDOWS\system32\provisioningcsp.dll
2015-08-15 19:45:36 ----A---- C:\WINDOWS\system32\AppxSysprep.dll
2015-08-15 19:45:36 ----A---- C:\WINDOWS\notepad.exe
2015-08-15 19:45:35 ----A---- C:\WINDOWS\system32\ntdll.dll
2015-08-15 19:45:35 ----A---- C:\WINDOWS\system32\notepad.exe
2015-08-15 19:45:34 ----A---- C:\WINDOWS\SYSWOW64\ntdll.dll
2015-08-15 19:45:34 ----A---- C:\WINDOWS\SYSWOW64\mfsrcsnk.dll
2015-08-15 19:45:33 ----A---- C:\WINDOWS\SYSWOW64\notepad.exe
2015-08-15 19:45:33 ----A---- C:\WINDOWS\SYSWOW64\AudioSes.dll
2015-08-15 19:45:33 ----A---- C:\WINDOWS\system32\LockAppHost.exe
2015-08-15 19:45:33 ----A---- C:\WINDOWS\system32\fwpolicyiomgr.dll
2015-08-15 19:45:32 ----A---- C:\WINDOWS\SYSWOW64\fwpolicyiomgr.dll
2015-08-15 19:45:32 ----A---- C:\WINDOWS\system32\coredpus.dll
2015-08-15 19:45:27 ----A---- C:\WINDOWS\system32\dxgi.dll
2015-08-15 19:45:24 ----A---- C:\WINDOWS\system32\drivers\wpcfltr.sys
2015-08-15 19:45:22 ----A---- C:\WINDOWS\system32\drivers\tunnel.sys
2015-08-15 19:45:20 ----A---- C:\WINDOWS\SYSWOW64\dxgi.dll
2015-08-15 19:45:17 ----A---- C:\WINDOWS\system32\drivers\msgpiowin32.sys
2015-08-15 19:45:16 ----A---- C:\WINDOWS\system32\NotificationControllerPS.dll
2015-08-15 19:45:15 ----A---- C:\WINDOWS\system32\Windows.Internal.Shell.Broker.dll
2015-08-15 19:45:14 ----A---- C:\WINDOWS\system32\diagtrack.dll
2015-08-15 19:45:09 ----A---- C:\WINDOWS\system32\VoiceActivationManager.dll
2015-08-15 19:44:58 ----A---- C:\WINDOWS\system32\LicenseManagerShellext.exe
2015-08-15 19:44:51 ----A---- C:\WINDOWS\SYSWOW64\VoiceActivationManager.dll
2015-08-15 19:44:50 ----A---- C:\WINDOWS\system32\mfps.dll
2015-08-15 19:44:49 ----A---- C:\WINDOWS\system32\SensorsNativeApi.V2.dll
2015-08-15 19:44:36 ----A---- C:\WINDOWS\SYSWOW64\SensorsNativeApi.V2.dll
2015-08-15 19:44:34 ----A---- C:\WINDOWS\system32\InputService.dll
2015-08-15 19:44:15 ----A---- C:\WINDOWS\system32\dwmcore.dll
2015-08-15 19:44:14 ----A---- C:\WINDOWS\SYSWOW64\dwmcore.dll
2015-08-15 19:44:12 ----A---- C:\WINDOWS\system32\rdbui.dll
2015-08-15 19:44:11 ----A---- C:\WINDOWS\system32\LockAppBroker.dll
2015-08-15 19:44:10 ----A---- C:\WINDOWS\SYSWOW64\LockAppBroker.dll
2015-08-15 19:44:09 ----A---- C:\WINDOWS\system32\SharedStartModelShim.dll
2015-08-15 19:44:09 ----A---- C:\WINDOWS\system32\drivers\bthhfenum.sys
2015-08-15 19:44:08 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2015-08-15 19:44:08 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2015-08-15 19:43:59 ----A---- C:\WINDOWS\system32\Windows.UI.Shell.dll
2015-08-15 19:43:58 ----A---- C:\WINDOWS\system32\SharedStartModel.dll
2015-08-15 17:47:25 ----A---- C:\WINDOWS\system32\{86F549EB-A66B-4D6C-958D-CDDD66410751}.bat
2015-08-15 17:13:08 ----D---- C:\Program Files\trend micro
2015-08-15 17:13:07 ----D---- C:\rsit
2015-08-15 10:59:58 ----D---- C:\Program Files (x86)\Mozilla Firefox
2015-08-15 10:02:22 ----D---- C:\Program Files (x86)\Comodo
2015-07-31 09:04:54 ----A---- C:\WINDOWS\system32\wmp.dll
2015-07-31 09:04:52 ----A---- C:\WINDOWS\system32\Windows.UI.Search.dll
2015-07-31 09:04:51 ----A---- C:\WINDOWS\SYSWOW64\wmp.dll
2015-07-31 09:04:40 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Search.dll
2015-07-31 09:04:33 ----A---- C:\WINDOWS\system32\mssrch.dll
2015-07-31 09:04:32 ----A---- C:\WINDOWS\system32\ClipUp.exe
2015-07-31 09:04:25 ----A---- C:\WINDOWS\system32\actxprxy.dll
2015-07-31 09:04:22 ----A---- C:\WINDOWS\SYSWOW64\mssrch.dll
2015-07-31 09:04:21 ----A---- C:\WINDOWS\system32\windows.storage.dll
2015-07-31 09:04:19 ----A---- C:\WINDOWS\system32\wuaueng.dll
2015-07-31 09:04:15 ----A---- C:\WINDOWS\SYSWOW64\msi.dll
2015-07-31 09:04:13 ----A---- C:\WINDOWS\SYSWOW64\UIRibbon.dll
2015-07-31 09:04:13 ----A---- C:\WINDOWS\system32\msftedit.dll
2015-07-31 09:04:04 ----A---- C:\WINDOWS\SYSWOW64\windows.storage.dll
2015-07-31 09:03:59 ----A---- C:\WINDOWS\system32\msi.dll
2015-07-31 09:03:53 ----A---- C:\WINDOWS\SYSWOW64\msftedit.dll
2015-07-31 09:03:52 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2015-07-31 09:03:52 ----A---- C:\WINDOWS\system32\wininet.dll
2015-07-31 09:03:51 ----A---- C:\WINDOWS\system32\dosvc.dll
2015-07-31 09:03:50 ----A---- C:\WINDOWS\system32\UIRibbon.dll
2015-07-31 09:03:49 ----A---- C:\WINDOWS\system32\UIAutomationCore.dll
2015-07-31 09:03:48 ----A---- C:\WINDOWS\SYSWOW64\actxprxy.dll
2015-07-31 09:03:47 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2015-07-31 09:03:46 ----A---- C:\WINDOWS\system32\audiosrv.dll
2015-07-31 09:03:46 ----A---- C:\WINDOWS\explorer.exe
2015-07-31 09:03:45 ----A---- C:\WINDOWS\system32\wwansvc.dll
2015-07-31 09:03:44 ----A---- C:\WINDOWS\system32\lsasrv.dll
2015-07-31 09:03:44 ----A---- C:\WINDOWS\system32\iertutil.dll
2015-07-31 09:03:44 ----A---- C:\WINDOWS\system32\AppContracts.dll
2015-07-31 09:03:43 ----A---- C:\WINDOWS\system32\NetworkMobileSettings.dll
2015-07-31 09:03:42 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Cred.dll
2015-07-31 09:03:42 ----A---- C:\WINDOWS\SYSWOW64\UIAutomationCore.dll
2015-07-31 09:03:42 ----A---- C:\WINDOWS\SYSWOW64\explorer.exe
2015-07-31 09:03:42 ----A---- C:\WINDOWS\system32\urlmon.dll
2015-07-31 09:03:41 ----A---- C:\WINDOWS\SYSWOW64\MrmCoreR.dll
2015-07-31 09:03:41 ----A---- C:\WINDOWS\system32\Windows.UI.Cred.dll
2015-07-31 09:03:40 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Immersive.dll
2015-07-31 09:03:40 ----A---- C:\WINDOWS\system32\SensorDataService.exe
2015-07-31 09:03:40 ----A---- C:\WINDOWS\system32\CoreMessaging.dll
2015-07-31 09:03:40 ----A---- C:\WINDOWS\system32\ActiveSyncProvider.dll
2015-07-31 09:03:39 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2015-07-31 09:03:39 ----A---- C:\WINDOWS\system32\Windows.UI.Immersive.dll
2015-07-31 09:03:39 ----A---- C:\WINDOWS\system32\twinapi.appcore.dll
2015-07-31 09:03:39 ----A---- C:\WINDOWS\system32\MrmCoreR.dll
2015-07-31 09:03:39 ----A---- C:\WINDOWS\system32\ContactApis.dll
2015-07-31 09:03:38 ----A---- C:\WINDOWS\SYSWOW64\twinapi.appcore.dll
2015-07-31 09:03:38 ----A---- C:\WINDOWS\SYSWOW64\mfplat.dll
2015-07-31 09:03:38 ----A---- C:\WINDOWS\system32\Windows.UI.BlockedShutdown.dll
2015-07-31 09:03:38 ----A---- C:\WINDOWS\system32\Windows.Media.Editing.dll
2015-07-31 09:03:38 ----A---- C:\WINDOWS\system32\ClipSVC.dll
2015-07-31 09:03:37 ----A---- C:\WINDOWS\system32\Windows.Devices.Sensors.dll
2015-07-31 09:03:37 ----A---- C:\WINDOWS\system32\Windows.Devices.Bluetooth.dll
2015-07-31 09:03:36 ----A---- C:\WINDOWS\SYSWOW64\wuapi.dll
2015-07-31 09:03:36 ----A---- C:\WINDOWS\SYSWOW64\gdi32.dll
2015-07-31 09:03:36 ----A---- C:\WINDOWS\SYSWOW64\AppContracts.dll
2015-07-31 09:03:35 ----A---- C:\WINDOWS\system32\wuapi.dll
2015-07-31 09:03:35 ----A---- C:\WINDOWS\system32\mfplat.dll
2015-07-31 09:03:33 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.BlockedShutdown.dll
2015-07-31 09:03:33 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Sensors.dll
2015-07-31 09:03:33 ----A---- C:\WINDOWS\SYSWOW64\ContactApis.dll
2015-07-31 09:03:33 ----A---- C:\WINDOWS\system32\gdi32.dll
2015-07-31 09:03:32 ----A---- C:\WINDOWS\system32\ieproxy.dll
2015-07-31 09:03:31 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Bluetooth.dll
2015-07-31 09:03:31 ----A---- C:\WINDOWS\system32\Windows.Media.Import.dll
2015-07-31 09:03:31 ----A---- C:\WINDOWS\system32\efscore.dll
2015-07-31 09:03:30 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Editing.dll
2015-07-31 09:03:30 ----A---- C:\WINDOWS\SYSWOW64\ExplorerFrame.dll
2015-07-31 09:03:29 ----A---- C:\WINDOWS\SYSWOW64\LockAppHost.exe
2015-07-31 09:03:29 ----A---- C:\WINDOWS\system32\MbaeApi.dll
2015-07-31 09:03:29 ----A---- C:\WINDOWS\system32\ExplorerFrame.dll
2015-07-31 09:03:28 ----A---- C:\WINDOWS\SYSWOW64\MbaeApi.dll
2015-07-31 09:03:28 ----A---- C:\WINDOWS\system32\ncsi.dll
2015-07-31 09:03:27 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Import.dll
2015-07-31 09:03:27 ----A---- C:\WINDOWS\SYSWOW64\MessagingDataModel2.dll
2015-07-31 09:03:27 ----A---- C:\WINDOWS\system32\Windows.UI.BioFeedback.dll
2015-07-31 09:03:27 ----A---- C:\WINDOWS\system32\OmaDmAgent.dll
2015-07-31 09:03:26 ----A---- C:\WINDOWS\SYSWOW64\efscore.dll
2015-07-31 09:03:26 ----A---- C:\WINDOWS\system32\Windows.Media.dll
2015-07-31 09:03:26 ----A---- C:\WINDOWS\system32\unenrollhook.dll
2015-07-31 09:03:26 ----A---- C:\WINDOWS\system32\MapControlCore.dll
2015-07-31 09:03:25 ----A---- C:\WINDOWS\SYSWOW64\SensorsApi.dll
2015-07-31 09:03:25 ----A---- C:\WINDOWS\SYSWOW64\SearchIndexer.exe
2015-07-31 09:03:23 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.BioFeedback.dll
2015-07-31 09:03:23 ----A---- C:\WINDOWS\system32\hal.dll
2015-07-31 09:03:23 ----A---- C:\WINDOWS\system32\drivers\refsv1.sys
2015-07-31 09:03:22 ----A---- C:\WINDOWS\system32\updatehandlers.dll
2015-07-31 09:03:22 ----A---- C:\WINDOWS\system32\mos.dll
2015-07-31 09:03:22 ----A---- C:\WINDOWS\system32\drivers\pci.sys
2015-07-31 09:03:21 ----A---- C:\WINDOWS\system32\wuuhext.dll
2015-07-31 09:03:21 ----A---- C:\WINDOWS\system32\SettingsHandlers_Notifications.dll
2015-07-31 09:03:21 ----A---- C:\WINDOWS\system32\SensorsApi.dll
2015-07-31 09:03:20 ----A---- C:\WINDOWS\SYSWOW64\winhttp.dll
2015-07-31 09:03:20 ----A---- C:\WINDOWS\system32\srumsvc.dll
2015-07-31 09:03:20 ----A---- C:\WINDOWS\system32\GamePanel.exe
2015-07-31 09:03:20 ----A---- C:\WINDOWS\system32\DevicesFlowBroker.dll
2015-07-31 09:03:19 ----A---- C:\WINDOWS\system32\RecoveryDrive.exe
2015-07-31 09:03:19 ----A---- C:\WINDOWS\system32\MessagingDataModel2.dll
2015-07-31 09:03:19 ----A---- C:\WINDOWS\system32\MCRecvSrc.dll
2015-07-31 09:03:18 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.dll
2015-07-31 09:03:18 ----A---- C:\WINDOWS\system32\winhttp.dll
2015-07-31 09:03:17 ----A---- C:\WINDOWS\SYSWOW64\srumsvc.dll
2015-07-31 09:03:17 ----A---- C:\WINDOWS\SYSWOW64\CoreMessaging.dll
2015-07-31 09:03:17 ----A---- C:\WINDOWS\system32\wintrust.dll
2015-07-31 09:03:17 ----A---- C:\WINDOWS\system32\drivers\usbhub.sys
2015-07-31 09:03:16 ----A---- C:\WINDOWS\SYSWOW64\wintrust.dll
2015-07-31 09:03:16 ----A---- C:\WINDOWS\SYSWOW64\MCRecvSrc.dll
2015-07-31 09:03:16 ----A---- C:\WINDOWS\SYSWOW64\ieproxy.dll
2015-07-31 09:03:16 ----A---- C:\WINDOWS\SYSWOW64\comdlg32.dll
2015-07-31 09:03:16 ----A---- C:\WINDOWS\system32\MusUpdateHandlers.dll
2015-07-31 09:03:16 ----A---- C:\WINDOWS\system32\DisplayManager.dll
2015-07-31 09:03:15 ----A---- C:\WINDOWS\SYSWOW64\DisplayManager.dll
2015-07-31 09:03:15 ----A---- C:\WINDOWS\system32\TabSvc.dll
2015-07-31 09:03:15 ----A---- C:\WINDOWS\system32\psmsrv.dll
2015-07-31 09:03:15 ----A---- C:\WINDOWS\system32\ci.dll
2015-07-31 09:03:14 ----A---- C:\WINDOWS\system32\uxtheme.dll
2015-07-31 09:03:14 ----A---- C:\WINDOWS\system32\ConsoleLogon.dll
2015-07-31 09:03:14 ----A---- C:\WINDOWS\system32\comdlg32.dll
2015-07-31 09:03:13 ----A---- C:\WINDOWS\SYSWOW64\Unistore.dll
2015-07-31 09:03:13 ----A---- C:\WINDOWS\system32\winlogon.exe
2015-07-31 09:03:13 ----A---- C:\WINDOWS\system32\winload.exe
2015-07-31 09:03:13 ----A---- C:\WINDOWS\system32\Windows.Cortana.OneCore.dll
2015-07-31 09:03:13 ----A---- C:\WINDOWS\system32\SearchIndexer.exe
2015-07-31 09:03:12 ----A---- C:\WINDOWS\SYSWOW64\uxtheme.dll
2015-07-31 09:03:12 ----A---- C:\WINDOWS\system32\MusNotification.exe
2015-07-31 09:03:12 ----A---- C:\WINDOWS\system32\cloudAP.dll
2015-07-31 09:03:11 ----A---- C:\WINDOWS\system32\Unistore.dll
2015-07-31 09:03:11 ----A---- C:\WINDOWS\system32\EnterpriseModernAppMgmtCSP.dll
2015-07-31 09:03:10 ----A---- C:\WINDOWS\system32\winresume.exe
2015-07-31 09:03:10 ----A---- C:\WINDOWS\system32\shutdownux.dll
2015-07-31 09:03:09 ----A---- C:\WINDOWS\SYSWOW64\bcastdvr.exe
2015-07-31 09:03:09 ----A---- C:\WINDOWS\system32\MBMediaManager.dll
2015-07-31 09:03:08 ----A---- C:\WINDOWS\system32\sppcomapi.dll
2015-07-31 09:03:08 ----A---- C:\WINDOWS\system32\drivers\ndis.sys
2015-07-31 09:03:07 ----A---- C:\WINDOWS\system32\omadmclient.exe
2015-07-31 09:03:06 ----A---- C:\WINDOWS\SYSWOW64\systemcpl.dll
2015-07-31 09:03:06 ----A---- C:\WINDOWS\SYSWOW64\ntshrui.dll
2015-07-31 09:03:06 ----A---- C:\WINDOWS\SYSWOW64\BingMaps.dll
2015-07-31 09:03:06 ----A---- C:\WINDOWS\system32\wininit.exe
2015-07-31 09:03:05 ----A---- C:\WINDOWS\system32\systemcpl.dll
2015-07-31 09:03:04 ----A---- C:\WINDOWS\system32\storewuauth.dll
2015-07-31 09:03:04 ----A---- C:\WINDOWS\system32\stobject.dll
2015-07-31 09:03:04 ----A---- C:\WINDOWS\system32\dwmapi.dll
2015-07-31 09:03:02 ----A---- C:\WINDOWS\system32\wimgapi.dll
2015-07-31 09:03:02 ----A---- C:\WINDOWS\system32\bcastdvr.exe
2015-07-31 09:03:01 ----A---- C:\WINDOWS\system32\usocore.dll
2015-07-31 09:03:01 ----A---- C:\WINDOWS\system32\drivers\dam.sys
2015-07-31 09:03:01 ----A---- C:\WINDOWS\system32\AppxAllUserStore.dll
2015-07-31 09:03:00 ----A---- C:\WINDOWS\SYSWOW64\dwmapi.dll
2015-07-31 09:02:59 ----A---- C:\WINDOWS\system32\SearchFolder.dll
2015-07-31 09:02:54 ----A---- C:\WINDOWS\SYSWOW64\wimgapi.dll
2015-07-31 09:02:54 ----A---- C:\WINDOWS\system32\ntshrui.dll
2015-07-31 09:02:54 ----A---- C:\WINDOWS\system32\drivers\UcmUcsi.sys
2015-07-31 09:02:53 ----A---- C:\WINDOWS\SYSWOW64\mos.dll
2015-07-31 09:02:53 ----A---- C:\WINDOWS\SYSWOW64\AppxAllUserStore.dll
2015-07-31 09:02:53 ----A---- C:\WINDOWS\system32\sendmail.dll
2015-07-31 09:02:52 ----A---- C:\WINDOWS\system32\BootMenuUX.dll
2015-07-31 09:02:51 ----A---- C:\WINDOWS\system32\ConhostV2.dll
2015-07-31 09:02:49 ----A---- C:\WINDOWS\system32\Windows.Cortana.ProxyStub.dll
2015-07-31 09:02:49 ----A---- C:\WINDOWS\system32\SettingsHandlers_SignInOptions.dll
2015-07-31 09:02:47 ----A---- C:\WINDOWS\SYSWOW64\sendmail.dll
2015-07-31 09:02:47 ----A---- C:\WINDOWS\system32\calc.exe
2015-07-31 09:02:46 ----A---- C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll
2015-07-31 09:02:46 ----A---- C:\WINDOWS\system32\EditionUpgradeManagerObj.dll
2015-07-31 09:02:45 ----A---- C:\WINDOWS\SYSWOW64\calc.exe
2015-07-31 09:02:44 ----A---- C:\WINDOWS\SYSWOW64\SearchFolder.dll
2015-07-31 09:02:43 ----A---- C:\WINDOWS\SYSWOW64\ReAgent.dll
2015-07-31 09:02:43 ----A---- C:\WINDOWS\system32\msiexec.exe
2015-07-31 09:02:42 ----A---- C:\WINDOWS\SYSWOW64\stobject.dll
2015-07-31 09:02:42 ----A---- C:\WINDOWS\system32\drivers\cng.sys
2015-07-31 09:02:41 ----A---- C:\WINDOWS\SYSWOW64\bcd.dll
2015-07-31 09:02:40 ----A---- C:\WINDOWS\system32\mssprxy.dll
2015-07-31 09:02:39 ----A---- C:\WINDOWS\system32\ReAgent.dll
2015-07-31 09:02:37 ----A---- C:\WINDOWS\system32\bcd.dll
2015-07-31 09:02:35 ----A---- C:\WINDOWS\system32\VEStoreEventHandlers.dll
2015-07-31 09:02:35 ----A---- C:\WINDOWS\system32\UIRibbonRes.dll
2015-07-31 09:02:34 ----A---- C:\WINDOWS\system32\tetheringservice.dll
2015-07-31 09:02:33 ----A---- C:\WINDOWS\SYSWOW64\msiexec.exe
2015-07-31 09:02:32 ----A---- C:\WINDOWS\system32\wer.dll
2015-07-31 09:02:32 ----A---- C:\WINDOWS\system32\hmkd.dll
2015-07-31 09:02:31 ----A---- C:\WINDOWS\system32\omadmprc.exe
2015-07-31 09:02:30 ----A---- C:\WINDOWS\SYSWOW64\hmkd.dll
2015-07-31 09:02:30 ----A---- C:\WINDOWS\system32\Windows.Networking.Connectivity.dll
2015-07-31 09:02:29 ----A---- C:\WINDOWS\system32\LicenseManagerApi.dll
2015-07-31 09:02:28 ----A---- C:\WINDOWS\system32\drivers\acpi.sys
2015-07-31 09:02:26 ----A---- C:\WINDOWS\system32\SettingsHandlers_Privacy.dll
2015-07-31 09:02:26 ----A---- C:\WINDOWS\system32\bcdboot.exe
2015-07-31 09:02:25 ----A---- C:\WINDOWS\system32\wimserv.exe
2015-07-31 09:02:25 ----A---- C:\WINDOWS\system32\setbcdlocale.dll
2015-07-31 09:02:24 ----A---- C:\WINDOWS\SYSWOW64\spbcd.dll
2015-07-31 09:02:24 ----A---- C:\WINDOWS\system32\spbcd.dll
2015-07-31 09:02:24 ----A---- C:\WINDOWS\system32\MapConfiguration.dll
2015-07-31 09:02:23 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2015-07-31 09:02:22 ----A---- C:\WINDOWS\system32\Windows.Cortana.PAL.Desktop.dll
2015-07-31 09:02:21 ----A---- C:\WINDOWS\system32\bcdedit.exe
2015-07-31 09:02:19 ----A---- C:\WINDOWS\SYSWOW64\Windows.Networking.Connectivity.dll
2015-07-31 09:02:19 ----A---- C:\WINDOWS\SYSWOW64\Windows.Internal.Bluetooth.dll
2015-07-31 09:02:18 ----A---- C:\WINDOWS\SYSWOW64\MapConfiguration.dll
2015-07-31 09:02:17 ----A---- C:\WINDOWS\system32\ReInfo.dll
2015-07-31 09:02:17 ----A---- C:\WINDOWS\system32\drivers\usbser.sys
2015-07-31 09:02:16 ----A---- C:\WINDOWS\system32\BingMaps.dll
2015-07-31 09:02:15 ----A---- C:\WINDOWS\system32\jscript9.dll
2015-07-31 09:02:13 ----A---- C:\WINDOWS\system32\diagtrack_win.dll
2015-07-31 09:02:12 ----A---- C:\WINDOWS\system32\MapsStore.dll
2015-07-31 09:02:11 ----A---- C:\WINDOWS\system32\diagtrack_wininternal.dll
2015-07-31 09:02:10 ----A---- C:\WINDOWS\system32\wpccpl.dll
2015-07-31 09:02:09 ----A---- C:\WINDOWS\SYSWOW64\Chakra.dll
2015-07-31 09:02:05 ----A---- C:\WINDOWS\system32\Chakra.dll
2015-07-31 09:02:01 ----A---- C:\WINDOWS\system32\reseteng.dll
2015-07-31 09:01:57 ----A---- C:\WINDOWS\SYSWOW64\GamePanel.exe
2015-07-31 09:01:56 ----A---- C:\WINDOWS\SYSWOW64\UIRibbonRes.dll
2015-07-31 09:01:55 ----A---- C:\WINDOWS\SYSWOW64\ReInfo.dll
2015-07-31 09:01:52 ----A---- C:\WINDOWS\SYSWOW64\atmlib.dll
2015-07-31 09:01:52 ----A---- C:\WINDOWS\system32\atmlib.dll
2015-07-30 23:40:09 ----A---- C:\WINDOWS\system32\SynTPCo31.dll
2015-07-30 23:40:03 ----A---- C:\WINDOWS\SYSWOW64\SynCom.dll
2015-07-30 23:39:58 ----A---- C:\WINDOWS\system32\drivers\Smb_driver_Intel_Aux.sys
2015-07-30 23:39:58 ----A---- C:\WINDOWS\system32\drivers\Smb_driver_AMDASF_Aux.sys
2015-07-30 23:24:32 ----A---- C:\WINDOWS\system32\MetroIntelGenericUIFramework.dll
2015-07-30 23:24:31 ----A---- C:\WINDOWS\SYSWOW64\Intel_OpenCL_ICD32.dll
2015-07-30 23:24:31 ----A---- C:\WINDOWS\system32\IntelWiDiWinNextAgent64.dll
2015-07-30 23:24:31 ----A---- C:\WINDOWS\system32\IntelWiDiVAD64.exe
2015-07-30 23:24:31 ----A---- C:\WINDOWS\system32\IntelWiDiUtils64.dll
2015-07-30 23:24:31 ----A---- C:\WINDOWS\system32\IntelWiDiUMS64.exe
2015-07-30 23:24:31 ----A---- C:\WINDOWS\system32\IntelWiDiSilenceFilter64.dll
2015-07-30 23:24:31 ----A---- C:\WINDOWS\system32\IntelWiDiSecureSourceFilter64.dll
2015-07-30 23:24:31 ----A---- C:\WINDOWS\system32\IntelWiDiMux64.dll
2015-07-30 23:24:31 ----A---- C:\WINDOWS\system32\IntelWiDiMCUMD64.dll
2015-07-30 23:24:31 ----A---- C:\WINDOWS\system32\IntelWiDiLogServer64.dll
2015-07-30 23:24:31 ----A---- C:\WINDOWS\system32\IntelWiDiDDEAgent64.dll
2015-07-30 23:24:31 ----A---- C:\WINDOWS\system32\IntelWiDiAudioFilter64.dll
2015-07-30 23:24:31 ----A---- C:\WINDOWS\system32\Intel_OpenCL_ICD64.dll
2015-07-30 23:24:30 ----A---- C:\WINDOWS\SYSWOW64\IntelOpenCL32.dll
2015-07-30 23:24:30 ----A---- C:\WINDOWS\SYSWOW64\IntelCpHeciSvc.exe
2015-07-30 23:24:30 ----A---- C:\WINDOWS\SYSWOW64\iglhsip32.dll
2015-07-30 23:24:30 ----A---- C:\WINDOWS\SYSWOW64\iglhcp32.dll
2015-07-30 23:24:30 ----A---- C:\WINDOWS\system32\IntelWiDiAAC64.dll
2015-07-30 23:24:30 ----A---- C:\WINDOWS\system32\IntelOpenCL64.dll
2015-07-30 23:24:30 ----A---- C:\WINDOWS\system32\iglhsip64.dll
2015-07-30 23:24:30 ----A---- C:\WINDOWS\system32\iglhcp64.dll
2015-07-30 23:24:30 ----A---- C:\WINDOWS\system32\igfxTray.exe
2015-07-30 23:24:30 ----A---- C:\WINDOWS\system32\igfxOSP.dll
2015-07-30 23:24:30 ----A---- C:\WINDOWS\system32\igfxLHMLibv2_0.dll
2015-07-30 23:24:30 ----A---- C:\WINDOWS\system32\igfxCoIn_v4252.dll
2015-07-30 23:24:29 ----A---- C:\WINDOWS\SYSWOW64\igfxexps32.dll
2015-07-30 23:24:29 ----A---- C:\WINDOWS\system32\igfxLHMLib.dll
2015-07-30 23:24:29 ----A---- C:\WINDOWS\system32\igfxLHM.dll
2015-07-30 23:24:29 ----A---- C:\WINDOWS\system32\igfxHK.exe
2015-07-30 23:24:29 ----A---- C:\WINDOWS\system32\igfxext.exe
2015-07-30 23:24:29 ----A---- C:\WINDOWS\system32\igfxexps.dll
2015-07-30 23:24:29 ----A---- C:\WINDOWS\system32\igfxEMLibv2_0.dll
2015-07-30 23:24:29 ----A---- C:\WINDOWS\system32\igfxEMLib.dll
2015-07-30 23:24:29 ----A---- C:\WINDOWS\system32\igfxEM.exe
2015-07-30 23:24:29 ----A---- C:\WINDOWS\system32\igfxDTCM.dll
2015-07-30 23:24:29 ----A---- C:\WINDOWS\system32\igfxDILibv2_0.dll
2015-07-30 23:24:29 ----A---- C:\WINDOWS\system32\igfxDILib.dll
2015-07-30 23:24:29 ----A---- C:\WINDOWS\system32\igfxDI.dll
2015-07-30 23:24:29 ----A---- C:\WINDOWS\system32\igfxDHLibv2_0.dll
2015-07-30 23:24:29 ----A---- C:\WINDOWS\system32\igfxDHLib.dll
2015-07-30 23:24:29 ----A---- C:\WINDOWS\system32\igfxDH.dll
2015-07-30 23:24:29 ----A---- C:\WINDOWS\system32\igfxCUIServicePS.dll
2015-07-30 23:24:29 ----A---- C:\WINDOWS\system32\igfxCUIService.exe
2015-07-30 23:24:28 ----A---- C:\WINDOWS\SYSWOW64\igfxcmrt32.dll
2015-07-30 23:24:28 ----A---- C:\WINDOWS\SYSWOW64\igfxcmjit32.dll
2015-07-30 23:24:28 ----A---- C:\WINDOWS\SYSWOW64\igfx11cmrt32.dll
2015-07-30 23:24:28 ----A---- C:\WINDOWS\system32\igfxcmrt64.dll
2015-07-30 23:24:28 ----A---- C:\WINDOWS\system32\igfxcmjit64.dll
2015-07-30 23:24:28 ----A---- C:\WINDOWS\system32\igfx11cmrt64.dll
2015-07-30 23:24:28 ----A---- C:\WINDOWS\system32\igdusc64.dll
2015-07-30 23:24:27 ----A---- C:\WINDOWS\SYSWOW64\igdusc32.dll
2015-07-30 23:24:27 ----A---- C:\WINDOWS\system32\igdumdim64.dll
2015-07-30 23:24:26 ----A---- C:\WINDOWS\SYSWOW64\igdumdim32.dll
2015-07-30 23:24:26 ----A---- C:\WINDOWS\SYSWOW64\igdrcl32.dll
2015-07-30 23:24:26 ----A---- C:\WINDOWS\SYSWOW64\igdmd32.dll
2015-07-30 23:24:26 ----A---- C:\WINDOWS\system32\igdrcl64.dll
2015-07-30 23:24:26 ----A---- C:\WINDOWS\system32\igdmd64.dll
2015-07-30 23:24:26 ----A---- C:\WINDOWS\system32\drivers\igdkmd64.sys
2015-07-30 23:24:25 ----A---- C:\WINDOWS\system32\igdfcl64.dll
2015-07-30 23:24:24 ----A---- C:\WINDOWS\SYSWOW64\igdfcl32.dll
2015-07-30 23:24:24 ----A---- C:\WINDOWS\SYSWOW64\igdde32.dll
2015-07-30 23:24:24 ----A---- C:\WINDOWS\SYSWOW64\igdbcl32.dll
2015-07-30 23:24:24 ----A---- C:\WINDOWS\SYSWOW64\igdail32.dll
2015-07-30 23:24:24 ----A---- C:\WINDOWS\SYSWOW64\igd10iumd32.dll
2015-07-30 23:24:24 ----A---- C:\WINDOWS\system32\igdde64.dll
2015-07-30 23:24:24 ----A---- C:\WINDOWS\system32\igdbcl64.dll
2015-07-30 23:24:24 ----A---- C:\WINDOWS\system32\igdail64.dll
2015-07-30 23:24:24 ----A---- C:\WINDOWS\system32\igd10iumd64.dll
2015-07-30 23:24:23 ----A---- C:\WINDOWS\SYSWOW64\ig7icd32.dll
2015-07-30 23:24:23 ----A---- C:\WINDOWS\system32\ig7icd64.dll
2015-07-30 23:24:23 ----A---- C:\WINDOWS\system32\IccLibDll_x64.dll
2015-07-30 23:24:22 ----A---- C:\WINDOWS\system32\Gfxv4_0.exe
2015-07-30 23:24:22 ----A---- C:\WINDOWS\system32\Gfxv2_0.exe
2015-07-30 23:24:22 ----A---- C:\WINDOWS\system32\GfxUIEx.exe
2015-07-30 23:24:22 ----A---- C:\WINDOWS\system32\DPTopologyAppv2_0.exe
2015-07-30 23:24:22 ----A---- C:\WINDOWS\system32\DPTopologyApp.exe
2015-07-30 23:24:22 ----A---- C:\WINDOWS\system32\difx64.exe
2015-07-30 23:24:22 ----A---- C:\WINDOWS\system32\CustomModeAppv2_0.exe
2015-07-30 23:24:22 ----A---- C:\WINDOWS\system32\CustomModeApp.exe
2015-07-30 23:20:39 ----D---- C:\ProgramData\Microsoft OneDrive
2015-07-30 23:06:42 ----DC---- C:\WINDOWS\Panther
2015-07-30 23:00:41 ----SHD---- C:\Recovery
2015-07-30 23:00:17 ----D---- C:\Windows.old
2015-07-30 22:57:32 ----A---- C:\WINDOWS\system32\emptyregdb.dat
2015-07-30 22:56:02 ----D---- C:\WINDOWS\SYSWOW64\XPSViewer
2015-07-30 22:55:59 ----D---- C:\Program Files\Reference Assemblies
2015-07-30 22:55:59 ----D---- C:\Program Files\MSBuild
2015-07-30 22:55:59 ----D---- C:\Program Files (x86)\Reference Assemblies
2015-07-30 22:55:59 ----D---- C:\Program Files (x86)\MSBuild
2015-07-30 22:55:59 ----D---- C:\inetpub
2015-07-30 22:54:52 ----A---- C:\WINDOWS\SYSWOW64\TsWpfWrp.exe
2015-07-30 22:54:52 ----A---- C:\WINDOWS\SYSWOW64\PresentationNative_v0300.dll
2015-07-30 22:54:51 ----A---- C:\WINDOWS\SYSWOW64\PresentationCFFRasterizerNative_v0300.dll
2015-07-30 22:54:45 ----A---- C:\WINDOWS\system32\TsWpfWrp.exe
2015-07-30 22:54:43 ----A---- C:\WINDOWS\system32\PresentationNative_v0300.dll
2015-07-30 22:54:40 ----A---- C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2015-07-30 22:45:24 ----A---- C:\WINDOWS\SYSWOW64\PrintConfig.dll
2015-07-30 22:19:01 ----SD---- C:\Users\bdank_000\AppData\Roaming\Microsoft
2015-07-30 22:16:38 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2015-07-30 22:16:28 ----A---- C:\WINDOWS\SYSWOW64\PerfStringBackup.INI
2015-07-30 22:12:37 ----D---- C:\WINDOWS\system32\SRSLabs
2015-07-30 22:12:33 ----D---- C:\WINDOWS\SYSWOW64\RTCOM
2015-07-30 22:12:33 ----D---- C:\Program Files\Realtek
2015-07-30 22:12:23 ----D---- C:\Program Files\Synaptics
2015-07-30 22:08:21 ----D---- C:\WINDOWS\Prefetch
2015-07-30 20:58:56 ----HD---- C:\$Windows.~BT
2015-07-30 20:19:27 ----HD---- C:\$Windows.~WS
2015-07-25 15:43:23 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service

======List of files/folders modified in the last 1 month======

2015-08-19 16:46:35 ----D---- C:\WINDOWS\Temp
2015-08-19 16:46:16 ----D---- C:\Users\bdank_000\AppData\Roaming\Dropbox
2015-08-19 16:43:24 ----D---- C:\WINDOWS\System32
2015-08-19 16:39:49 ----D---- C:\WINDOWS\system32\sru
2015-08-19 16:39:17 ----D---- C:\Windows
2015-08-19 15:07:59 ----D---- C:\WINDOWS\system32\drivers
2015-08-18 20:50:51 ----D---- C:\WINDOWS\Microsoft.NET
2015-08-18 20:48:29 ----RSD---- C:\WINDOWS\assembly
2015-08-18 20:43:14 ----HD---- C:\Program Files\WindowsApps
2015-08-18 20:37:41 ----SHD---- C:\System Volume Information
2015-08-18 19:40:25 ----D---- C:\WINDOWS\AppReadiness
2015-08-18 19:36:56 ----D---- C:\WINDOWS\Tasks
2015-08-18 19:36:56 ----D---- C:\WINDOWS\system32\Tasks
2015-08-17 18:24:16 ----D---- C:\WINDOWS\system32\config
2015-08-17 18:22:40 ----D---- C:\WINDOWS\INF
2015-08-17 18:15:06 ----D---- C:\WINDOWS\WinSxS
2015-08-17 18:11:22 ----D---- C:\WINDOWS\system32\CatRoot
2015-08-17 18:10:10 ----D---- C:\WINDOWS\SYSWOW64\cs-CZ
2015-08-17 18:10:10 ----D---- C:\WINDOWS\SysWOW64
2015-08-17 18:10:07 ----D---- C:\WINDOWS\system32\WinBioPlugIns
2015-08-17 18:10:07 ----D---- C:\WINDOWS\system32\oobe
2015-08-17 18:10:07 ----D---- C:\WINDOWS\system32\drivers\UMDF
2015-08-17 18:10:07 ----D---- C:\WINDOWS\system32\drivers\cs-CZ
2015-08-17 18:10:07 ----D---- C:\WINDOWS\system32\cs-CZ
2015-08-17 18:10:07 ----D---- C:\WINDOWS\system32\appraiser
2015-08-17 18:10:04 ----D---- C:\WINDOWS\Provisioning
2015-08-17 18:10:03 ----D---- C:\WINDOWS\AppPatch
2015-08-17 18:10:03 ----D---- C:\Program Files\Internet Explorer
2015-08-17 18:10:03 ----D---- C:\Program Files (x86)\Internet Explorer
2015-08-17 18:10:00 ----D---- C:\WINDOWS\system32\DriverStore
2015-08-17 08:48:01 ----D---- C:\WINDOWS\CbsTemp
2015-08-16 10:15:12 ----D---- C:\Users\bdank_000\AppData\Roaming\Skype
2015-08-15 17:52:50 ----D---- C:\WINDOWS\system32\catroot2
2015-08-15 17:50:59 ----D---- C:\WINDOWS\system32\WDI
2015-08-15 17:47:25 ----A---- C:\WINDOWS\system32\{F33C3B9B-72AF-418A-B3FD-560646F7CDA2}.bat
2015-08-15 17:38:22 ----D---- C:\WINDOWS\SYSWOW64\oobe
2015-08-15 17:38:22 ----D---- C:\WINDOWS\SYSWOW64\Dism
2015-08-15 17:38:06 ----D---- C:\WINDOWS\system32\SystemResetPlatform
2015-08-15 17:38:05 ----D---- C:\WINDOWS\system32\migration
2015-08-15 17:38:05 ----D---- C:\WINDOWS\system32\Dism
2015-08-15 17:38:05 ----D---- C:\WINDOWS\system32\Boot
2015-08-15 17:37:45 ----RD---- C:\WINDOWS\PurchaseDialog
2015-08-15 17:37:45 ----RD---- C:\WINDOWS\ImmersiveControlPanel
2015-08-15 17:14:05 ----D---- C:\WINDOWS\SoftwareDistribution
2015-08-15 17:13:08 ----RD---- C:\Program Files
2015-08-15 17:06:02 ----D---- C:\WINDOWS\debug
2015-08-15 15:25:07 ----RD---- C:\Program Files (x86)
2015-08-14 20:34:19 ----D---- C:\WINDOWS\Logs
2015-08-14 17:31:06 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe
2015-08-14 17:28:25 ----HD---- C:\WINDOWS\Installer
2015-08-01 17:59:00 ----D---- C:\WINDOWS\system32\WinBioDatabase
2015-07-31 09:24:47 ----D---- C:\Users\bdank_000\AppData\Roaming\DAEMON Tools Lite
2015-07-31 09:02:49 ----D---- C:\WINDOWS\appcompat
2015-07-30 23:40:35 ----A---- C:\WINDOWS\system32\SynTPAPI.dll
2015-07-30 23:40:26 ----A---- C:\WINDOWS\system32\WdfCoInstaller01011.dll
2015-07-30 23:40:21 ----A---- C:\WINDOWS\system32\SynCOM.dll
2015-07-30 23:36:43 ----RD---- C:\WINDOWS\DevicesFlow
2015-07-30 23:25:16 ----A---- C:\WINDOWS\SYSWOW64\OpenCL.DLL
2015-07-30 23:25:16 ----A---- C:\WINDOWS\system32\OpenCL.DLL
2015-07-30 23:20:39 ----HD---- C:\ProgramData
2015-07-30 23:16:36 ----RD---- C:\WINDOWS\PrintDialog
2015-07-30 23:16:33 ----RD---- C:\WINDOWS\MiracastView
2015-07-30 23:05:16 ----D---- C:\WINDOWS\rescache
2015-07-30 23:04:22 ----D---- C:\WINDOWS\system32\restore
2015-07-30 23:00:46 ----D---- C:\Program Files\Windows NT
2015-07-30 22:58:34 ----D---- C:\WINDOWS\Registration
2015-07-30 22:56:02 ----D---- C:\WINDOWS\SYSWOW64\MUI
2015-07-30 22:56:02 ----D---- C:\WINDOWS\SYSWOW64\migration
2015-07-30 22:56:02 ----D---- C:\WINDOWS\SYSWOW64\inetsrv
2015-07-30 22:56:02 ----D---- C:\WINDOWS\system32\MUI
2015-07-30 22:56:02 ----D---- C:\WINDOWS\system32\inetsrv
2015-07-30 22:55:49 ----A---- C:\WINDOWS\system32\wamregps.dll
2015-07-30 22:55:49 ----A---- C:\WINDOWS\system32\iisRtl.dll
2015-07-30 22:55:49 ----A---- C:\WINDOWS\system32\iisrstap.dll
2015-07-30 22:55:49 ----A---- C:\WINDOWS\system32\iisreset.exe
2015-07-30 22:55:49 ----A---- C:\WINDOWS\system32\ahadmin.dll
2015-07-30 22:55:49 ----A---- C:\WINDOWS\system32\admwprox.dll
2015-07-30 22:55:47 ----A---- C:\WINDOWS\SYSWOW64\dpwsockx.dll
2015-07-30 22:55:47 ----A---- C:\WINDOWS\SYSWOW64\dpmodemx.dll
2015-07-30 22:55:47 ----A---- C:\WINDOWS\SYSWOW64\dplayx.dll
2015-07-30 22:55:47 ----A---- C:\WINDOWS\SYSWOW64\dplaysvr.exe
2015-07-30 22:55:46 ----A---- C:\WINDOWS\SYSWOW64\iisRtl.dll
2015-07-30 22:55:46 ----A---- C:\WINDOWS\SYSWOW64\admwprox.dll
2015-07-30 22:55:45 ----A---- C:\WINDOWS\SYSWOW64\wamregps.dll
2015-07-30 22:55:45 ----A---- C:\WINDOWS\SYSWOW64\iisrstap.dll
2015-07-30 22:55:45 ----A---- C:\WINDOWS\SYSWOW64\iisreset.exe
2015-07-30 22:55:45 ----A---- C:\WINDOWS\SYSWOW64\ahadmin.dll
2015-07-30 22:55:41 ----A---- C:\WINDOWS\SYSWOW64\dpnsvr.exe
2015-07-30 22:55:41 ----A---- C:\WINDOWS\SYSWOW64\dpnlobby.dll
2015-07-30 22:55:41 ----A---- C:\WINDOWS\SYSWOW64\dpnhupnp.dll
2015-07-30 22:55:41 ----A---- C:\WINDOWS\SYSWOW64\dpnhpast.dll
2015-07-30 22:55:41 ----A---- C:\WINDOWS\SYSWOW64\dpnet.dll
2015-07-30 22:55:41 ----A---- C:\WINDOWS\SYSWOW64\dpnathlp.dll
2015-07-30 22:55:41 ----A---- C:\WINDOWS\SYSWOW64\dpnaddr.dll
2015-07-30 22:55:33 ----A---- C:\WINDOWS\system32\dpnsvr.exe
2015-07-30 22:55:33 ----A---- C:\WINDOWS\system32\dpnlobby.dll
2015-07-30 22:55:33 ----A---- C:\WINDOWS\system32\dpnhupnp.dll
2015-07-30 22:55:33 ----A---- C:\WINDOWS\system32\dpnhpast.dll
2015-07-30 22:55:33 ----A---- C:\WINDOWS\system32\dpnet.dll
2015-07-30 22:55:33 ----A---- C:\WINDOWS\system32\dpnathlp.dll
2015-07-30 22:55:33 ----A---- C:\WINDOWS\system32\dpnaddr.dll
2015-07-30 22:52:09 ----D---- C:\WINDOWS\system32\LogFiles
2015-07-30 22:51:44 ----D---- C:\WINDOWS\system32\drivers\etc
2015-07-30 22:49:50 ----D---- C:\WINDOWS\system32\wbem
2015-07-30 22:40:19 ----RSD---- C:\WINDOWS\Fonts
2015-07-30 22:40:18 ----D---- C:\ProgramData\regid.1991-06.com.microsoft
2015-07-30 22:26:57 ----D---- C:\WINDOWS\SYSWOW64\zh-TW
2015-07-30 22:26:57 ----D---- C:\WINDOWS\SYSWOW64\zh-HK
2015-07-30 22:26:57 ----D---- C:\WINDOWS\SYSWOW64\zh-CN
2015-07-30 22:26:55 ----D---- C:\WINDOWS\SYSWOW64\uk-UA
2015-07-30 22:26:55 ----D---- C:\WINDOWS\SYSWOW64\tr-TR
2015-07-30 22:26:55 ----D---- C:\WINDOWS\SYSWOW64\th-TH
2015-07-30 22:26:54 ----D---- C:\WINDOWS\SYSWOW64\sv-SE
2015-07-30 22:26:54 ----D---- C:\WINDOWS\SYSWOW64\sr-Latn-RS
2015-07-30 22:26:54 ----D---- C:\WINDOWS\SYSWOW64\sl-SI
2015-07-30 22:26:53 ----D---- C:\WINDOWS\SYSWOW64\sk-SK
2015-07-30 22:26:53 ----D---- C:\WINDOWS\SYSWOW64\sda
2015-07-30 22:26:53 ----D---- C:\WINDOWS\SYSWOW64\ru-RU
2015-07-30 22:26:52 ----D---- C:\WINDOWS\SYSWOW64\ro-RO
2015-07-30 22:26:52 ----D---- C:\WINDOWS\SYSWOW64\pt-PT
2015-07-30 22:26:52 ----D---- C:\WINDOWS\SYSWOW64\pt-BR
2015-07-30 22:26:51 ----D---- C:\WINDOWS\SYSWOW64\pl-PL
2015-07-30 22:26:51 ----D---- C:\WINDOWS\SYSWOW64\nl-NL
2015-07-30 22:26:51 ----D---- C:\WINDOWS\SYSWOW64\nb-NO
2015-07-30 22:26:51 ----D---- C:\WINDOWS\SYSWOW64\ms-my
2015-07-30 22:26:50 ----D---- C:\WINDOWS\SYSWOW64\lv-LV
2015-07-30 22:26:50 ----D---- C:\WINDOWS\SYSWOW64\lt-LT
2015-07-30 22:26:50 ----D---- C:\WINDOWS\SYSWOW64\ko-KR
2015-07-30 22:26:49 ----D---- C:\WINDOWS\SYSWOW64\ja-JP
2015-07-30 22:26:49 ----D---- C:\WINDOWS\SYSWOW64\it-IT
2015-07-30 22:26:48 ----D---- C:\WINDOWS\SYSWOW64\hu-HU
2015-07-30 22:26:47 ----D---- C:\WINDOWS\SYSWOW64\hr-HR
2015-07-30 22:26:47 ----D---- C:\WINDOWS\SYSWOW64\he-IL
2015-07-30 22:26:47 ----D---- C:\WINDOWS\SYSWOW64\gl-es
2015-07-30 22:26:47 ----D---- C:\WINDOWS\SYSWOW64\fr-FR
2015-07-30 22:26:47 ----D---- C:\WINDOWS\SYSWOW64\fi-FI
2015-07-30 22:26:47 ----D---- C:\WINDOWS\SYSWOW64\eu-es
2015-07-30 22:26:46 ----D---- C:\WINDOWS\SYSWOW64\et-EE
2015-07-30 22:26:46 ----D---- C:\WINDOWS\SYSWOW64\es-ES
2015-07-30 22:26:45 ----D---- C:\WINDOWS\SYSWOW64\en-GB
2015-07-30 22:26:44 ----D---- C:\WINDOWS\SYSWOW64\el-GR
2015-07-30 22:26:44 ----D---- C:\WINDOWS\SYSWOW64\drivers
2015-07-30 22:26:44 ----D---- C:\WINDOWS\SYSWOW64\de-DE
2015-07-30 22:26:44 ----D---- C:\WINDOWS\SYSWOW64\da-DK
2015-07-30 22:26:43 ----D---- C:\WINDOWS\SYSWOW64\ca-es-valencia
2015-07-30 22:26:43 ----D---- C:\WINDOWS\SYSWOW64\ca-es
2015-07-30 22:26:42 ----D---- C:\WINDOWS\SYSWOW64\bg-BG
2015-07-30 22:26:42 ----D---- C:\WINDOWS\SYSWOW64\ar-SA
2015-07-30 22:26:42 ----D---- C:\WINDOWS\SYSWOW64\Adobe
2015-07-30 22:26:38 ----D---- C:\WINDOWS\system32\zh-TW
2015-07-30 22:26:38 ----D---- C:\WINDOWS\system32\zh-HK
2015-07-30 22:26:37 ----D---- C:\WINDOWS\system32\zh-CN
2015-07-30 22:26:35 ----D---- C:\WINDOWS\system32\WindowsInternal.Inbox.Shared
2015-07-30 22:26:35 ----D---- C:\WINDOWS\system32\WindowsInternal.Inbox.Media.Shared
2015-07-30 22:26:34 ----D---- C:\WINDOWS\system32\uk-UA
2015-07-30 22:26:34 ----D---- C:\WINDOWS\system32\tr-TR
2015-07-30 22:26:33 ----D---- C:\WINDOWS\system32\th-TH
2015-07-30 22:26:33 ----D---- C:\WINDOWS\system32\sv-SE
2015-07-30 22:26:32 ----D---- C:\WINDOWS\system32\sr-Latn-RS
2015-07-30 22:26:32 ----D---- C:\WINDOWS\system32\spool
2015-07-30 22:26:30 ----D---- C:\WINDOWS\system32\sl-SI
2015-07-30 22:26:30 ----D---- C:\WINDOWS\system32\sk-SK
2015-07-30 22:26:29 ----D---- C:\WINDOWS\system32\ru-RU
2015-07-30 22:26:29 ----D---- C:\WINDOWS\system32\ro-RO
2015-07-30 22:26:29 ----D---- C:\WINDOWS\system32\pt-PT
2015-07-30 22:26:29 ----D---- C:\WINDOWS\system32\pt-BR
2015-07-30 22:26:28 ----D---- C:\WINDOWS\system32\pl-PL
2015-07-30 22:26:23 ----D---- C:\WINDOWS\system32\nl-NL
2015-07-30 22:26:23 ----D---- C:\WINDOWS\system32\NDF
2015-07-30 22:26:23 ----D---- C:\WINDOWS\system32\nb-NO
2015-07-30 22:26:23 ----D---- C:\WINDOWS\system32\ms-my
2015-07-30 22:26:22 ----D---- C:\WINDOWS\system32\lv-LV
2015-07-30 22:26:22 ----D---- C:\WINDOWS\system32\lt-LT
2015-07-30 22:26:21 ----D---- C:\WINDOWS\system32\ko-KR
2015-07-30 22:26:21 ----D---- C:\WINDOWS\system32\ja-JP
2015-07-30 22:26:21 ----D---- C:\WINDOWS\system32\it-IT
2015-07-30 22:26:21 ----D---- C:\WINDOWS\system32\InputMethod
2015-07-30 22:26:20 ----D---- C:\WINDOWS\system32\hu-HU
2015-07-30 22:26:19 ----D---- C:\WINDOWS\system32\hr-HR
2015-07-30 22:26:19 ----D---- C:\WINDOWS\system32\he-IL
2015-07-30 22:26:18 ----D---- C:\WINDOWS\system32\gl-es
2015-07-30 22:26:18 ----D---- C:\WINDOWS\system32\fr-FR
2015-07-30 22:26:18 ----D---- C:\WINDOWS\system32\fi-FI
2015-07-30 22:26:18 ----D---- C:\WINDOWS\system32\eu-es
2015-07-30 22:26:17 ----D---- C:\WINDOWS\system32\et-EE
2015-07-30 22:26:17 ----D---- C:\WINDOWS\system32\es-ES
2015-07-30 22:26:16 ----D---- C:\WINDOWS\system32\en-GB
2015-07-30 22:26:15 ----DC---- C:\WINDOWS\system32\DRVSTORE
2015-07-30 22:26:15 ----D---- C:\WINDOWS\system32\el-GR
2015-07-30 22:26:14 ----D---- C:\WINDOWS\system32\de-DE
2015-07-30 22:26:14 ----D---- C:\WINDOWS\system32\da-DK
2015-07-30 22:24:42 ----D---- C:\WINDOWS\system32\ca-es-valencia
2015-07-30 22:24:41 ----D---- C:\WINDOWS\system32\ca-es
2015-07-30 22:24:41 ----D---- C:\WINDOWS\system32\bg-BG
2015-07-30 22:24:41 ----D---- C:\WINDOWS\system32\ar-SA
2015-07-30 22:24:35 ----D---- C:\WINDOWS\MediaViewer
2015-07-30 22:24:30 ----D---- C:\WINDOWS\InputMethod
2015-07-30 22:24:22 ----SD---- C:\WINDOWS\Downloaded Program Files
2015-07-30 22:24:21 ----D---- C:\WINDOWS\ADFS
2015-07-30 22:24:17 ----RD---- C:\Users
2015-07-30 22:24:16 ----SD---- C:\ProgramData\Microsoft
2015-07-30 22:24:02 ----D---- C:\Program Files (x86)\Windows Mail
2015-07-30 22:24:01 ----D---- C:\Program Files (x86)\Microsoft.NET
2015-07-30 22:24:00 ----D---- C:\Program Files (x86)\Hewlett-Packard
2015-07-30 22:23:59 ----D---- C:\Program Files (x86)\Common Files
2015-07-30 22:23:57 ----D---- C:\Program Files\Windows Mail
2015-07-30 22:23:56 ----D---- C:\Program Files\Intel
2015-07-30 22:23:56 ----D---- C:\Program Files\Common Files\microsoft shared
2015-07-30 22:21:32 ----D---- C:\WINDOWS\system32\Recovery
2015-07-30 22:18:08 ----D---- C:\WINDOWS\system32\CodeIntegrity
2015-07-30 22:16:05 ----D---- C:\WINDOWS\system32\Sysprep
2015-07-27 16:13:12 ----D---- C:\Users\bdank_000\AppData\Roaming\uTorrent
2015-07-21 19:44:07 ----D---- C:\Program Files\Microsoft Office 15

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 aswRvrt;avast! Revert; C:\WINDOWS\system32\drivers\aswRvrt.sys [2015-05-09 65736]
R0 aswVmm;avast! VM Monitor; C:\WINDOWS\system32\drivers\aswVmm.sys [2015-05-09 272248]
R0 MBI;@oem6.inf,%MBI.SVCDESC%;Intel(R) Sideband Fabric Device Service; C:\WINDOWS\System32\drivers\MBI.sys [2014-01-23 29464]
R0 pe3ah4nc;DiRT Environment Driver (pe3ah4nc); C:\WINDOWS\system32\drivers\pe3ah4nc.sys [2007-05-18 72560]
R0 ps6ah4nc;DiRT Synchronization Driver (ps6ah4nc); C:\WINDOWS\system32\drivers\ps6ah4nc.sys [2007-05-18 77176]
R1 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr2.sys [2015-05-09 93528]
R1 aswSP;aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [2015-06-27 442264]
R1 CFRMD;CFRMD; C:\WINDOWS\system32\DRIVERS\CFRMD.sys [2014-06-26 40224]
R1 CLVirtualDrive;CLVirtualDrive; C:\WINDOWS\system32\DRIVERS\CLVirtualDrive.sys [2013-11-12 91912]
R1 cmderd;COMODO Internet Security Eradication Driver; C:\WINDOWS\System32\DRIVERS\cmderd.sys [2015-06-05 20672]
R1 cmdGuard;COMODO Internet Security Sandbox Driver; C:\WINDOWS\system32\DRIVERS\cmdguard.sys [2015-06-05 820928]
R1 cmdhlp;COMODO Internet Security Helper Driver; C:\WINDOWS\system32\DRIVERS\cmdhlp.sys [2015-06-05 35056]
R1 FileCrypt;@%systemroot%\system32\drivers\filecrypt.sys,-100; C:\WINDOWS\system32\drivers\filecrypt.sys [2015-07-10 83968]
R1 GpuEnergyDrv;@%SystemRoot%\system32\drivers\gpuenergydrv.sys,-100; C:\WINDOWS\System32\drivers\gpuenergydrv.sys [2015-07-10 8192]
R1 inspect;COMODO Internet Security Firewall Driver; C:\WINDOWS\system32\DRIVERS\inspect.sys [2015-04-01 126720]
R2 aswHwid;avast! HardwareID; C:\WINDOWS\system32\drivers\aswHwid.sys [2015-05-09 29168]
R2 aswMonFlt;aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [2015-05-09 89944]
R2 aswStm;aswStm; C:\WINDOWS\system32\drivers\aswStm.sys [2015-05-09 137288]
R2 MMCSS;@%systemroot%\system32\drivers\mmcss.sys,-100; C:\WINDOWS\system32\drivers\mmcss.sys [2015-07-10 48128]
R2 storqosflt;@%SystemRoot%\System32\drivers\storqosflt.sys,-101; C:\WINDOWS\system32\drivers\storqosflt.sys [2015-07-10 61952]
R3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Služba Bluetooth Enumerator; C:\WINDOWS\System32\drivers\BthEnum.sys [2015-07-10 105984]
R3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Ovladač úspory energie technologie Bluetooth; C:\WINDOWS\system32\DRIVERS\BthLEEnum.sys [2015-07-10 237568]
R3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Bluetooth Device (Personal Area Network); C:\WINDOWS\System32\drivers\bthpan.sys [2015-07-10 128512]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Bluetooth Radio USB Driver; C:\WINDOWS\System32\Drivers\BTHUSB.sys [2015-07-10 84992]
R3 clwvd;@oem0.inf,%clwvd.DeviceDesc%;CyberLink WebCam Virtual Driver; C:\WINDOWS\system32\DRIVERS\clwvd.sys [2014-01-28 41704]
R3 dtlitescsibus;@oem30.inf,%DTLITESCSIBUS.DeviceDesc%;DAEMON Tools Lite Virtual SCSI Bus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [2015-04-30 30352]
R3 GPIO;@oem12.inf,%GPIO.SVCDESC%;Intel SoC GPIO Controller Driver; C:\WINDOWS\System32\drivers\iaiogpioe.sys [2013-11-11 31232]
R3 igfx;igfx; C:\WINDOWS\system32\DRIVERS\igdkmd64.sys [2015-07-30 3789240]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RTKVHD64.sys [2014-06-24 4001752]
R3 IntcDAud;@oem16.inf,%IntcDAud.SvcDesc%;Intel(R) Display Audio; C:\WINDOWS\system32\DRIVERS\IntcDAud.sys [2015-05-01 454416]
R3 iwdbus;@oem17.inf,%iwdbus.SVCDESC%;IWD Bus Enumerator; C:\WINDOWS\System32\drivers\iwdbus.sys [2015-07-31 39480]
R3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Zařízení Bluetooth (RFCOMM protokol TDI); C:\WINDOWS\System32\drivers\rfcomm.sys [2015-07-10 167936]
R3 RSP2STOR;@oem31.inf,%Rts5229%;Realtek PCIE CardReader Driver - P2; C:\WINDOWS\system32\DRIVERS\RtsP2Stor.sys [2015-05-02 294104]
R3 RTL8168;@oem21.inf,%rtl8168.Service.DispName%;Realtek 8168 NT Driver; C:\WINDOWS\System32\drivers\Rt630x64.sys [2015-05-02 874712]
R3 RTWlanE;@netrtwlane.inf,%RTWlanE.DeviceDesc.DispName%;Realtek Wireless LAN 802.11n PCI-E – síťový adaptér; C:\WINDOWS\system32\DRIVERS\rtwlane.sys [2015-07-10 3453144]
R3 SmbDrvI;SmbDrvI; C:\WINDOWS\system32\DRIVERS\Smb_driver_Intel.sys [2015-07-30 42696]
R3 SynTP;@oem36.inf,%SynTP.SvcDesc%;Synaptics TouchPad Driver; C:\WINDOWS\system32\DRIVERS\SynTP.sys [2015-07-30 614088]
R3 TXEIx64;@oem7.inf,%TEE_SvcDesc%;Intel(R) Trusted Execution Engine Interface ; C:\WINDOWS\System32\drivers\TXEIx64.sys [2014-01-15 88592]
S0 LSI_SAS2i;LSI_SAS2i; C:\WINDOWS\System32\drivers\lsi_sas2i.sys [2015-07-10 104800]
S0 LSI_SAS3i;LSI_SAS3i; C:\WINDOWS\System32\drivers\lsi_sas3i.sys [2015-07-10 99168]
S0 percsas2i;percsas2i; C:\WINDOWS\System32\drivers\percsas2i.sys [2015-07-10 58208]
S0 percsas3i;percsas3i; C:\WINDOWS\System32\drivers\percsas3i.sys [2015-07-10 58720]
S0 storufs;@storufs.inf,%UfsServiceDesc%;Microsoft Universal Flash Storage (UFS) Driver; C:\WINDOWS\System32\drivers\storufs.sys [2015-07-10 40288]
S1 aswSnx;aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [2015-05-09 1047320]
S2 atksgt;atksgt; C:\WINDOWS\system32\DRIVERS\atksgt.sys [2015-07-13 303616]
S2 lirsgt;lirsgt; C:\WINDOWS\system32\DRIVERS\lirsgt.sys [2015-07-13 35328]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Bluetooth Port Driver; C:\WINDOWS\System32\Drivers\BTHport.sys [2015-07-10 928768]
S3 buttonconverter;@buttonconverter.inf,%btnconv.SvcDesc%;Service for Portable Device Control devices; C:\WINDOWS\System32\drivers\buttonconverter.sys [2015-07-10 32256]
S3 CapImg;@capimg.inf,%CapImgHid_Service%;HID driver for CapImg touch screen; C:\WINDOWS\System32\drivers\capimg.sys [2015-07-10 116736]
S3 fcvsc;fcvsc; C:\WINDOWS\System32\drivers\fcvsc.sys [2015-07-10 31232]
S3 genericusbfn;@genericusbfn.inf,%genericusbfn.ServiceName%;Generic USB Function Class; C:\WINDOWS\System32\drivers\genericusbfn.sys [2015-07-10 20992]
S3 hidinterrupt;@hidinterrupt.inf,%HID.SvcDesc%;Common Driver for HID Buttons implemented with interrupts; C:\WINDOWS\System32\drivers\hidinterrupt.sys [2015-07-10 50016]
S3 iaStorA;iaStorA; C:\WINDOWS\System32\drivers\iaStorA.sys [2013-11-06 632168]
S3 ibbus;@mlx4_bus.inf,%Ibbus.ServiceDesc%;Mellanox InfiniBand Bus/AL (Filter Driver); C:\WINDOWS\System32\drivers\ibbus.sys [2015-07-10 424800]
S3 intaud_WaveExtensible;@oem3.inf,%INTAUD_WEX.SvcDesc%;Intel WiDi Audio Device; C:\WINDOWS\system32\drivers\intelaud.sys [2015-07-31 50232]
S3 IoQos;@%SystemRoot%\system32\drivers\ioqos.sys,-100; C:\WINDOWS\system32\drivers\ioqos.sys [2015-07-10 26624]
S3 mlx4_bus;@mlx4_bus.inf,%MLX4BUS.ServiceDesc%;Mellanox ConnectX Bus Enumerator; C:\WINDOWS\System32\drivers\mlx4_bus.sys [2015-07-10 705376]
S3 ndfltr;@mlx4_bus.inf,%ndfltr.ServiceDesc%;NetworkDirect Service; C:\WINDOWS\System32\drivers\ndfltr.sys [2015-07-10 76128]
S3 ReFSv1;ReFSv1; C:\WINDOWS\system32\drivers\ReFSv1.sys [2015-07-31 934752]
S3 UcmCx0101;USB Connector Manager KMDF Class Extension; C:\WINDOWS\System32\Drivers\UcmCx.sys [2015-07-10 61952]
S3 UcmUcsi;@ucmucsi.inf,%UcmUcsi.ServiceName%;USB Connector Manager UCSI Client; C:\WINDOWS\System32\drivers\UcmUcsi.sys [2015-07-31 46080]
S3 UdeCx;USB Device Emulation Support Library; C:\WINDOWS\system32\drivers\udecx.sys [2015-07-10 44032]
S3 Ufx01000;USB Function Class Extension; C:\WINDOWS\system32\drivers\ufx01000.sys [2015-07-10 245088]
S3 UfxChipidea;@ufxchipidea.inf,%UfxChipidea.ServiceName%;USB Chipidea Controller; C:\WINDOWS\System32\drivers\UfxChipidea.sys [2015-07-10 94048]
S3 ufxsynopsys;@ufxsynopsys.inf,%ufxsynopsys.ServiceName%;USB Synopsys Controller; C:\WINDOWS\System32\drivers\ufxsynopsys.sys [2015-07-10 127840]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2015-07-16 82128]
R2 AERTFilters;Andrea RT Filters Service; C:\Program Files\Realtek\Audio\HDA\AERTSr64.EXE [2014-06-24 98208]
R2 AppHostSvc;@%windir%\system32\inetsrv\iisres.dll,-30011; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
R2 ArcGIS License Manager;ArcGIS License Manager; C:\Program Files (x86)\ArcGIS\License10.2\bin\lmgrd.exe [2015-05-17 1452408]
R2 avast! Antivirus;Avast Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2015-05-09 343336]
R2 Bonjour Service;Bonjour Service; C:\Program Files\Bonjour\mDNSResponder.exe [2011-08-31 462184]
R2 BTDevManager;BTDevManager; C:\Program Files (x86)\REALTEK\Realtek Bluetooth\BTDevMgr.exe [2015-05-09 98816]
R2 ClickToRunSvc;Microsoft Office ClickToRun Service; C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe [2015-07-21 2753720]
R2 CmdAgent;COMODO Internet Security Helper Service; C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe [2015-06-10 5541960]
R2 CoreMessagingRegistrar;@%SystemRoot%\system32\coremessaging.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
R2 DiagTrack;@%SystemRoot%\system32\diagtrack.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]
R2 dmwappushservice;@%SystemRoot%\system32\dmwappushsvc.dll,-200; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
R2 DoSvc;@%systemroot%\system32\dosvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
R2 HP Support Assistant Service;HP Support Assistant Service; C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe [2015-05-22 99128]
R2 HPWMISVC;HPWMISVC; c:\Program Files (x86)\Hewlett-Packard\HP System Event\HPWMISVC.exe [2015-06-13 608520]
R2 ChromodoUpdater;COMODO Chromodo Update Service; C:\Program Files (x86)\Comodo\Chromodo\chromodo_updater.exe [2015-08-15 1995448]
R2 igfxCUIService1.0.0.0;Intel(R) HD Graphics Control Panel Service; C:\WINDOWS\system32\igfxCUIService.exe [2015-07-30 319888]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\TXE Components\TCS\HeciServer.exe [2013-07-01 733696]
R2 OneSyncSvc_Session1;Hostitel synchronizace_Session1; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
R2 RichVideo64;Cyberlink RichVideo64 Service(CRVS); C:\Program Files\CyberLink\Shared files\RichVideo64.exe [2014-04-14 389896]
R2 RtkAudioService;Realtek Audio Service; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [2014-06-24 290520]
R2 SynTPEnhService;SynTPEnh Caller Service; C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [2015-07-30 246472]
R2 tiledatamodelsvc;@%SystemRoot%\system32\tileobjserver.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
R3 ClipSVC;@%SystemRoot%\system32\ClipSVC.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]
R3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2015-06-17 43696]
R3 LicenseManager;@%SystemRoot%\system32\licensemanagersvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]
R3 PimIndexMaintenanceSvc_Session1;Data kontaktů_Session1; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
R3 StateRepository;@%SystemRoot%\system32\windows.staterepository.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S2 MapsBroker;@%SystemRoot%\System32\moshost.dll,-100; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]
S2 OneSyncSvc;@%SystemRoot%\system32\APHostRes.dll,-10002; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S2 pr2ah4nc;DiRT Drivers Auto Removal (pr2ah4nc); C:\Windows\system32\pr2ah4nc.exe [2015-05-10 754288]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2015-06-03 327296]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-08-14 269000]
S3 AJRouter;@%SystemRoot%\system32\AJRouter.dll,-2; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S3 aspnet_state;@%SystemRoot%\Microsoft.NET\Framework64\v4.0.30319\aspnet_rc.dll,-1; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2015-07-10 50352]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]
S3 CDPSvc;@%SystemRoot%\system32\cdpsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S3 cmdvirth;COMODO Virtual Service Manager; C:\Program Files\COMODO\COMODO Internet Security\cmdvirth.exe [2015-06-10 2265792]
S3 cphs;Intel(R) Content Protection HECI Service; C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe [2015-07-30 281488]
S3 DcpSvc;@%SystemRoot%\system32\dcpsvc.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]
S3 DevQueryBroker;@%SystemRoot%\system32\DevQueryBroker.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S3 diagnosticshub.standardcollector.service;@%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000; C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe [2015-07-10 27136]
S3 Disc Soft Lite Bus Service;Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe [2015-02-27 1272592]
S3 DmEnrollmentSvc;@%systemroot%\system32\Windows.Internal.Management.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S3 DsSvc;@%SystemRoot%\system32\dssvc.dll,-10003; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]
S3 embeddedmode;@%SystemRoot%\system32\embeddedmodesvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]
S3 EntAppSvc;@EnterpriseAppMgmtSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S3 FlexNet Licensing Service;FlexNet Licensing Service; C:\Program Files (x86)\Common Files\Macrovision Shared\FlexNet Publisher\FNPLicensingService.exe [2015-05-17 1074480]
S3 hpqwmiex;HP Software Framework Service; C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe [2013-05-13 1129760]
S3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS; C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [2012-04-24 169752]
S3 icssvc;@%SystemRoot%\System32\tetheringservice.dll,-4097; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S3 Intel(R) Capability Licensing Service TCP IP Interface;Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\TXE Components\TCS\SocketHeciServer.exe [2013-07-01 822232]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2015-08-15 149160]
S3 NetSetupSvc;@%SystemRoot%\system32\NetSetupSvc.dll,-3; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]
S3 NgcCtnrSvc;@%SystemRoot%\System32\NgcCtnrSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S3 NgcSvc;@%SystemRoot%\System32\ngcsvc.dll,-100; C:\WINDOWS\system32\lsass.exe [2015-07-10 56344]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2014-01-23 150600]
S3 PimIndexMaintenanceSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-15001; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S3 RetailDemo;@%SystemRoot%\System32\RDXService.dll,-256; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]
S3 SensorDataService;@%SystemRoot%\system32\SensorDataService.exe,-101; C:\WINDOWS\System32\SensorDataService.exe [2015-07-31 1031680]
S3 SensorService;@%SystemRoot%\System32\sensorservice.dll,-1000; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S3 SmsRouter;@%SystemRoot%\System32\SmsRouterSvc.dll,-10001; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119418
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o kontrolu

#10 Příspěvek od Rudy »

Smazáno. Znovu spusťte OTM a klikněte na >CleanUp!<. OTM po sobě uklidí. Nakonec restartujte PC. Log je již OK.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Odpovědět