Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Prosím o kontrolu - vyskajující okna CHROME

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Odpovědět
Zpráva
Autor
Smouke
Návštěvník
Návštěvník
Příspěvky: 11
Registrován: 21 srp 2015 14:52

Prosím o kontrolu - vyskajující okna CHROME

#1 Příspěvek od Smouke »

Dobrý den,

Prosím o kontrolu logu. V chrome mi vyskakují okna totaladperformance apod.

Problém, ale asi bude, že mám chrome jak na pracovním NTB tak na Stolním PC v kanclu. Log je z NTB.

TADY JE LOG Z RSIT část 1

Logfile of random's system information tool 1.10 (written by random/random)
Run by Pavel at 2015-08-21 15:50:15
Microsoft Windows 10 Home
System drive C: has 663 GB (73%) free of 911 GB
Total RAM: 8084 MB (56% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 15:50:20, on 21.08.2015
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.10240.16412)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe
C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Pavel\AppData\Roaming\Dropbox\bin\Dropbox.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\acrotray.exe
C:\Users\Pavel\AppData\Local\CloudStation\CloudStation.app\bin\cloud-ui.exe
C:\Program Files (x86)\Companion Suite Pro LL2\MFFSUM.exe
C:\Program Files (x86)\Companion Suite Pro LL2\MFPrintServer.exe
C:\Program Files (x86)\Companion Suite Pro LL2\MFServices.exe
C:\Users\Pavel\AppData\Local\CloudStation\CloudStation.app\bin\cloud-connect.exe
C:\Users\Pavel\AppData\Local\CloudStation\CloudStation.app\bin\cloud-daemon.exe
C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Program Files\totalcmd\TOTALCMD.EXE
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Pavel\AppData\Local\Microsoft\OneDrive\OneDrive.exe
C:\Program Files\Microsoft Office 15\Root\VFS\ProgramFilesCommonX86\Microsoft Shared\OFFICE15\CSISYNCCLIENT.EXE
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Pavel\AppData\Local\Dropbox\Update\DropboxUpdate.exe
C:\Program Files\trend micro\Pavel.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Adobe Acrobat Create PDF Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
O2 - BHO: SmartSelect - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll
O3 - Toolbar: Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll
O4 - HKLM\..\Run: [UpdateP2GShortCut] "C:\Program Files (x86)\Lenovo\Power2Go\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\Lenovo\Power2Go" UpdateWithCreateOnce "SOFTWARE\CyberLink\Power2Go\5.0"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [Acrobat Assistant 8.0] "C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Acrotray.exe"
O4 - HKLM\..\Run: [MFFSum_Pro_LL2] "C:\Program Files (x86)\Companion Suite Pro LL2\MFFSUM.exe"
O4 - HKLM\..\Run: [MFPrintServer_Pro_LL2] "C:\Program Files (x86)\Companion Suite Pro LL2\MFPrintServer.exe"
O4 - HKCU\..\Run: [GoogleChromeAutoLaunch_7629D47B6AAB0AC4663EF6E10C5E858F] "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --no-startup-window
O4 - HKCU\..\Run: [Dropbox Update] "C:\Users\Pavel\AppData\Local\Dropbox\Update\DropboxUpdate.exe" /c
O4 - HKCU\..\Run: [OneDrive] "C:\Users\Pavel\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
O4 - HKCU\..\RunOnce: [Uninstall C:\Users\Pavel\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64] C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Pavel\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64"
O4 - HKCU\..\RunOnce: [Uninstall C:\Users\Pavel\AppData\Local\Microsoft\OneDrive\17.3.5907.0716] C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Pavel\AppData\Local\Microsoft\OneDrive\17.3.5907.0716"
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-21-2777531458-1915258623-2836945587-1001\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'UpdatusUser')
O4 - HKUS\S-1-5-21-2777531458-1915258623-2836945587-1001\..\RunOnce: [WAB Migrate] %ProgramFiles%\Windows Mail\wab.exe /Upgrade (User 'UpdatusUser')
O4 - Startup: Dropbox.lnk = Pavel\AppData\Roaming\Dropbox\bin\Dropbox.exe
O4 - Startup: Synology Cloud Station.lnk = C:\Program Files (x86)\Synology\CloudStation\bin\launcher.exe
O8 - Extra context menu item: Převést cíl vazby do Adobe PDF - res://C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll/AcroIECaptureSelLinks.html
O8 - Extra context menu item: Převést do Adobe PDF - res://C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Připojit cíl vazby k existujícímu PDF - res://C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
O8 - Extra context menu item: Připojit k existujícímu PDF - res://C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Se&nd to OneNote - res://C:\Program Files\Microsoft Office 15\Root\Office15\ONBttnIE.dll/105
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIE.dll
O9 - Extra button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIELinkedNotes.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O17 - HKLM\System\CCS\Services\Tcpip\..\{12e35041-9545-4ca0-8d11-613a7ca13012}: NameServer = 8.8.8.8,8.8.4.4,4.2.2.1,4.2.2.2,208.67.222.222,208.67.220.220,8.26.56.26,8.20.247.20,156.154.70.1,156.154.71.1
O17 - HKLM\System\CCS\Services\Tcpip\..\{7edffeed-c0ac-4915-bdf6-bb762034a2c8}: NameServer = 8.8.8.8,8.8.4.4,4.2.2.1,4.2.2.2,208.67.222.222,208.67.220.220,8.26.56.26,8.20.247.20,156.154.70.1,156.154.71.1
O17 - HKLM\System\CCS\Services\Tcpip\..\{a5ef5c12-9513-41f9-aa7f-622b1bc458c7}: NameServer = 8.8.8.8,8.8.4.4,4.2.2.1,4.2.2.2,208.67.222.222,208.67.220.220,8.26.56.26,8.20.247.20,156.154.70.1,156.154.71.1
O17 - HKLM\System\CS1\Services\Tcpip\..\{12e35041-9545-4ca0-8d11-613a7ca13012}: NameServer = 8.8.8.8,8.8.4.4,4.2.2.1,4.2.2.2,208.67.222.222,208.67.220.220,8.26.56.26,8.20.247.20,156.154.70.1,156.154.71.1
O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O20 - Winlogon Notify: SDWinLogon - SDWinLogon.dll (file missing)
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: Autodesk Content Service - Autodesk, Inc. - C:\Program Files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: Conexant Audio Message Service (CxAudMsg) - Unknown owner - C:\windows\system32\CxAudMsg64.exe (file missing)
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: FlexNet Licensing Service 64 - Flexera Software LLC - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe
O23 - Service: Session Launcher Service (FUSServices) - Unknown owner - C:\windows\SysWOW64\FUSServices.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService2.0.0.0) - Unknown owner - C:\WINDOWS\system32\igfxCUIService.exe (file missing)
O23 - Service: Integral Connection Service (IntegralConnServer) - Unknown owner - C:\Program Files (x86)\Seconet\Integral\ICSServer\IntegralConnSrv.exe
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Lenovo EasyPlus Hotspot - Lenovo - C:\Program Files (x86)\Common Files\lenovo\easyplussdk\bin\EPHotspot64.exe
O23 - Service: Lenovo System Agent Service - LENOVO INCORPORATED. - C:\Program Files\Lenovo\iMController\SystemAgentService.exe
O23 - Service: Lenovo WiFiHotspot Service (LenovoWiFiHotspotSvr) - Unknown owner - C:\Windows\System32\LenovoWiFiHotspotSvr.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: Maxthon Core Update Service (MaxthonUpdateSvc) - Maxthon - C:\Program Files (x86)\Maxthon\Modules\Service\Update\MaxthonUpdateSvc.exe
O23 - Service: MBAMScheduler - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\System32\ngcsvc.dll,-100 (NgcSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\WINDOWS\system32\nvvsvc.exe (file missing)
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: Cyberlink RichVideo64 Service(CRVS) (RichVideo64) - Unknown owner - C:\Program Files\CyberLink\Shared files\RichVideo64.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: SynTPEnh Caller Service (SynTPEnhService) - Synaptics Incorporated - C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
O23 - Service: TeamViewer 10 (TeamViewer) - TeamViewer GmbH - C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: VMware Authorization Service (VMAuthdService) - VMware, Inc. - C:\Program Files (x86)\VMware\VMware Player\vmware-authd.exe
O23 - Service: VMware USB Arbitration Service (VMUSBArbService) - VMware, Inc. - C:\Program Files (x86)\Common Files\VMware\USB\vmware-usbarbitrator64.exe
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 16612 bytes

======Listing Processes======








C:\WINDOWS\system32\lsass.exe
winlogon.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted
"dwm.exe"
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\WINDOWS\system32\nvvsvc.exe"
C:\WINDOWS\system32\igfxCUIService.exe
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-f002d2f0-202b-43df-a1f8-90071bdf6b3e -SystemEventPortName:HostProcess-ad11ae87-031f-4b39-8aff-b9151f94f443 -IoCancelEventPortName:HostProcess-1867b4b2-e6b7-49f7-a3c0-8406a6e7e6c2 -NonStateChangingEventPortName:HostProcess-fb375d99-9240-4ca4-a450-c5b49b67b1c1 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:22ff8633-21bb-4078-908e-23d3fc85805d -DeviceGroupId:WudfDefaultDevicePool
C:\WINDOWS\System32\svchost.exe -k NetworkService
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\WINDOWS\system32\nvvsvc.exe -session -first
dashost.exe {42965f16-70bb-4c1f-be274305a62e8564}
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
C:\WINDOWS\System32\svchost.exe -k utcsvc
C:\windows\SysWOW64\FUSServices.exe
"C:\Program Files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe"
"C:\Program Files\Lenovo\iMController\SystemAgentService.exe"
C:\windows\system32\CxAudMsg64.exe
"C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe" /service
"C:\Program Files\Intel\iCLS Client\HeciServer.exe"
C:\Windows\System32\LenovoWiFiHotspotSvr.exe
"C:\Program Files (x86)\Seconet\Integral\ICSServer\IntegralConnSrv.exe"
"C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe"
"C:\Program Files (x86)\Common Files\Microsoft Shared\VS7DEBUG\mdm.exe"
"c:\Program Files (x86)\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe" -sSQLEXPRESS
"C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe"
"C:\Program Files (x86)\Maxthon\Modules\Service\Update\MaxthonUpdateSvc.exe"
"C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe"
"C:\Program Files\CyberLink\Shared files\RichVideo64.exe"
"c:\Program Files (x86)\Microsoft SQL Server\90\Shared\sqlbrowser.exe"
"c:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe"
"C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe"
C:\WINDOWS\system32\svchost.exe -k appmodel
C:\WINDOWS\system32\svchost.exe -k NetworkServiceNetworkRestricted
"C:\Program Files (x86)\VMware\VMware Player\vmware-authd.exe"
"C:\Program Files (x86)\Common Files\VMware\USB\vmware-usbarbitrator64.exe"
"C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe"

taskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E}
sihost.exe
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
"C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe" /starttray
C:\WINDOWS\Explorer.EXE
igfxEM.exe
igfxHK.exe
igfxTray.exe
"C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE"
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
"C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe" -ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca
"C:\Windows\RTFTrack.exe"
"C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe"
"C:\Program Files\CONEXANT\cAudioFilterAgent\CAudioFilterAgent64.exe"
"C:\Program Files\CONEXANT\ForteConfig\fmapp.exe"
"C:\Program Files\lenovo\Onekey Theater\OnekeyStudio.exe" -start
"C:\Program Files (x86)\Lenovo\Energy Manager\Energy Manager.exe"
"C:\Program Files (x86)\Lenovo\Energy Manager\utility.exe"
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --no-startup-window
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="6644.0.1199451181\809749721" --supports-dual-gpus=false --gpu-driver-bug-workarounds=2,22,45 --gpu-vendor-id=0x8086 --gpu-device-id=0x0a16 --gpu-driver-vendor="Intel Corporation" --gpu-driver-version=10.18.15.4256 --ignored=" --type=renderer " /prefetch:822062411
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="AffiliationBasedMatching/Enabled/AudioProcessing48kHzSupport/Default/*AutofillEnabled/Default/*AutofillFieldMetadata/Enabled/*BrowserBlacklist/Enabled/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/ChromeDashboard/Default/*DomRel-Enable/enable/*EmbeddedSearch/Group27 stable:pp1 prefetch_results:1 reuse_instant_search_base_page:1/EnableSessionCrashedBubbleUI/Disabled/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GoogleNow/Enable/*IconNTP/Default/*NewProfileManagement/Enabled/NewVideoRendererTrial/Enabled/OmniboxBundledExperimentV1/Unused_2/*PasswordGeneration/Disabled/PasswordLinkInSettings/Enabled/PermissionBubbleRollout/Enabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/*QUIC/EnabledNoIdForLargePopulation/*RefreshTokenDeviceId/Enabled/*RememberCertificateErrorDecisions/Default/ReportCertificateErrors/ShowAndPossiblySend/*ReportCertificateErrorsOverHttp/UploadReportsOverHttp/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/*SdchPersistence/Default/SessionRestoreBackgroundLoading/Restore/*SettingsEnforcement/enforce_always_with_extensions_and_dse/SyncBackingDatabase32K/Enabled/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_02/*UMA-Uniformity-Trial-10-Percent/group_01/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_04/*UMA-Uniformity-Trial-5-Percent/group_01/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/*VoiceTrigger/Install/WebRTC-UDPSocketNonBlockingIO/Default/" --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --gpu-rasterization-msaa-sample-count=8 --use-image-texture-target=3553 --channel="6644.1.64486713\5986571" --font-cache-shared-handle=2080 /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="AffiliationBasedMatching/Enabled/AudioProcessing48kHzSupport/Default/*AutofillEnabled/Default/*AutofillFieldMetadata/Enabled/*BrowserBlacklist/Enabled/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/ChromeDashboard/Default/*DomRel-Enable/enable/*EmbeddedSearch/Group27 stable:pp1 prefetch_results:1 reuse_instant_search_base_page:1/EnableSessionCrashedBubbleUI/Disabled/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GoogleNow/Enable/*IconNTP/Default/*NewProfileManagement/Enabled/NewVideoRendererTrial/Enabled/OmniboxBundledExperimentV1/Unused_2/*PasswordGeneration/Disabled/PasswordLinkInSettings/Enabled/PermissionBubbleRollout/Enabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/*QUIC/EnabledNoIdForLargePopulation/*RefreshTokenDeviceId/Enabled/*RememberCertificateErrorDecisions/Default/ReportCertificateErrors/ShowAndPossiblySend/*ReportCertificateErrorsOverHttp/UploadReportsOverHttp/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/*SdchPersistence/Default/SessionRestoreBackgroundLoading/Restore/*SettingsEnforcement/enforce_always_with_extensions_and_dse/SyncBackingDatabase32K/Enabled/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_02/*UMA-Uniformity-Trial-10-Percent/group_01/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_04/*UMA-Uniformity-Trial-5-Percent/group_01/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/*VoiceTrigger/Install/WebRTC-UDPSocketNonBlockingIO/Default/" --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --gpu-rasterization-msaa-sample-count=8 --use-image-texture-target=3553 --channel="6644.2.1690454999\2047738064" --font-cache-shared-handle=2120 /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="AffiliationBasedMatching/Enabled/AudioProcessing48kHzSupport/Default/*AutofillEnabled/Default/*AutofillFieldMetadata/Enabled/*BrowserBlacklist/Enabled/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/ChromeDashboard/Default/*DomRel-Enable/enable/*EmbeddedSearch/Group27 stable:pp1 prefetch_results:1 reuse_instant_search_base_page:1/EnableSessionCrashedBubbleUI/Disabled/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GoogleNow/Enable/*IconNTP/Default/*NewProfileManagement/Enabled/NewVideoRendererTrial/Enabled/OmniboxBundledExperimentV1/Unused_2/*PasswordGeneration/Disabled/PasswordLinkInSettings/Enabled/PermissionBubbleRollout/Enabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/*QUIC/EnabledNoIdForLargePopulation/*RefreshTokenDeviceId/Enabled/*RememberCertificateErrorDecisions/Default/ReportCertificateErrors/ShowAndPossiblySend/*ReportCertificateErrorsOverHttp/UploadReportsOverHttp/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/*SdchPersistence/Default/SessionRestoreBackgroundLoading/Restore/*SettingsEnforcement/enforce_always_with_extensions_and_dse/SyncBackingDatabase32K/Enabled/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_02/*UMA-Uniformity-Trial-10-Percent/group_01/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_04/*UMA-Uniformity-Trial-5-Percent/group_01/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/*VoiceTrigger/Install/WebRTC-UDPSocketNonBlockingIO/Default/" --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --gpu-rasterization-msaa-sample-count=8 --use-image-texture-target=3553 --channel="6644.3.1787294531\1027137178" --font-cache-shared-handle=2260 /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="AffiliationBasedMatching/Enabled/AudioProcessing48kHzSupport/Default/*AutofillEnabled/Default/*AutofillFieldMetadata/Enabled/*BrowserBlacklist/Enabled/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/ChromeDashboard/Default/*DomRel-Enable/enable/*EmbeddedSearch/Group27 stable:pp1 prefetch_results:1 reuse_instant_search_base_page:1/EnableSessionCrashedBubbleUI/Disabled/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GoogleNow/Enable/*IconNTP/Default/*NewProfileManagement/Enabled/NewVideoRendererTrial/Enabled/OmniboxBundledExperimentV1/Unused_2/*PasswordGeneration/Disabled/PasswordLinkInSettings/Enabled/PermissionBubbleRollout/Enabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/*QUIC/EnabledNoIdForLargePopulation/*RefreshTokenDeviceId/Enabled/*RememberCertificateErrorDecisions/Default/ReportCertificateErrors/ShowAndPossiblySend/*ReportCertificateErrorsOverHttp/UploadReportsOverHttp/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/*SdchPersistence/Default/SessionRestoreBackgroundLoading/Restore/*SettingsEnforcement/enforce_always_with_extensions_and_dse/SyncBackingDatabase32K/Enabled/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_02/*UMA-Uniformity-Trial-10-Percent/group_01/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_04/*UMA-Uniformity-Trial-5-Percent/group_01/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/*VoiceTrigger/Install/WebRTC-UDPSocketNonBlockingIO/Default/" --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --gpu-rasterization-msaa-sample-count=8 --use-image-texture-target=3553 --channel="6644.4.1069599078\621375306" --font-cache-shared-handle=2484 /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="AffiliationBasedMatching/Enabled/AudioProcessing48kHzSupport/Default/*AutofillEnabled/Default/*AutofillFieldMetadata/Enabled/*BrowserBlacklist/Enabled/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/ChromeDashboard/Default/*DomRel-Enable/enable/*EmbeddedSearch/Group27 stable:pp1 prefetch_results:1 reuse_instant_search_base_page:1/EnableSessionCrashedBubbleUI/Disabled/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GoogleNow/Enable/*IconNTP/Default/*NewProfileManagement/Enabled/NewVideoRendererTrial/Enabled/OmniboxBundledExperimentV1/Unused_2/*PasswordGeneration/Disabled/PasswordLinkInSettings/Enabled/PermissionBubbleRollout/Enabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/*QUIC/EnabledNoIdForLargePopulation/*RefreshTokenDeviceId/Enabled/*RememberCertificateErrorDecisions/Default/ReportCertificateErrors/ShowAndPossiblySend/*ReportCertificateErrorsOverHttp/UploadReportsOverHttp/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/*SdchPersistence/Default/SessionRestoreBackgroundLoading/Restore/*SettingsEnforcement/enforce_always_with_extensions_and_dse/SyncBackingDatabase32K/Enabled/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_02/*UMA-Uniformity-Trial-10-Percent/group_01/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_04/*UMA-Uniformity-Trial-5-Percent/group_01/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/*VoiceTrigger/Install/WebRTC-UDPSocketNonBlockingIO/Default/" --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --gpu-rasterization-msaa-sample-count=8 --use-image-texture-target=3553 --channel="6644.5.1951292697\459110580" --font-cache-shared-handle=2524 /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="AffiliationBasedMatching/Enabled/AudioProcessing48kHzSupport/Default/*AutofillEnabled/Default/*AutofillFieldMetadata/Enabled/*BrowserBlacklist/Enabled/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/ChromeDashboard/Default/*DomRel-Enable/enable/*EmbeddedSearch/Group27 stable:pp1 prefetch_results:1 reuse_instant_search_base_page:1/EnableSessionCrashedBubbleUI/Disabled/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GoogleNow/Enable/*IconNTP/Default/*NewProfileManagement/Enabled/NewVideoRendererTrial/Enabled/OmniboxBundledExperimentV1/Unused_2/*PasswordGeneration/Disabled/PasswordLinkInSettings/Enabled/PermissionBubbleRollout/Enabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/*QUIC/EnabledNoIdForLargePopulation/*RefreshTokenDeviceId/Enabled/*RememberCertificateErrorDecisions/Default/ReportCertificateErrors/ShowAndPossiblySend/*ReportCertificateErrorsOverHttp/UploadReportsOverHttp/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/*SdchPersistence/Default/SessionRestoreBackgroundLoading/Restore/*SettingsEnforcement/enforce_always_with_extensions_and_dse/SyncBackingDatabase32K/Enabled/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_02/*UMA-Uniformity-Trial-10-Percent/group_01/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_04/*UMA-Uniformity-Trial-5-Percent/group_01/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/*VoiceTrigger/Install/WebRTC-UDPSocketNonBlockingIO/Default/" --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --gpu-rasterization-msaa-sample-count=8 --use-image-texture-target=3553 --channel="6644.6.1863026803\1263693982" --font-cache-shared-handle=2256 /prefetch:673131151
"C:\Users\Pavel\AppData\Roaming\Dropbox\bin\Dropbox.exe" /systemstartup
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
"C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
"C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\acrotray.exe"
"C:\Users\Pavel\AppData\Local\CloudStation\CloudStation.app\bin\cloud-ui.exe"
"C:\Program Files (x86)\Companion Suite Pro LL2\MFFSUM.exe"
"C:\Program Files (x86)\Companion Suite Pro LL2\MFPrintServer.exe"
"fontdrvhost.exe"
-n
C:\Users\Pavel\AppData\Local\CloudStation\CloudStation.app\bin\cloud-connect.exe --log_folder log --info_folder . --log_level CloudStation.app/log_template/syncfolder_c.debug
\??\C:\WINDOWS\system32\conhost.exe 0x4
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
C:\Users\Pavel\AppData\Local\CloudStation\CloudStation.app\bin\cloud-daemon.exe C:/Users/Pavel/AppData/Local/CloudStation/data/config/client.conf 1024
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
C:\WINDOWS\splwow64.exe 8192
C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
"C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe"
C:\WINDOWS\system32\SettingSyncHost.exe -Embedding
C:\WINDOWS\system32\ApplicationFrameHost.exe -Embedding
"C:\Program Files\totalcmd\TOTALCMD.EXE"
C:\Windows\System32\SystemSettingsBroker.exe -Embedding
C:\WINDOWS\system32\DllHost.exe /Processid:{478B41E6-3257-4519-BDA8-E971F9843849}
"C:\WINDOWS\System32\NetworkUXBroker.exe" -ServerName:Windows.Networking.UX
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="*AffiliationBasedMatching/Enabled/AudioProcessing48kHzSupport/Default/*AutofillEnabled/Default/*AutofillFieldMetadata/Enabled/*BrowserBlacklist/Enabled/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/ChromeDashboard/Default/*DomRel-Enable/enable/*EmbeddedSearch/Group27 stable:pp1 prefetch_results:1 reuse_instant_search_base_page:1/EnableSessionCrashedBubbleUI/Disabled/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GoogleNow/Enable/*IconNTP/Default/*NewProfileManagement/Enabled/*NewVideoRendererTrial/Enabled/*OmniboxBundledExperimentV1/Unused_2/*PasswordGeneration/Disabled/PasswordLinkInSettings/Enabled/PermissionBubbleRollout/Enabled/*PrerenderFromOmnibox/OmniboxPrerenderEnabled/*QUIC/EnabledNoIdForLargePopulation/*RefreshTokenDeviceId/Enabled/*RememberCertificateErrorDecisions/Default/ReportCertificateErrors/ShowAndPossiblySend/*ReportCertificateErrorsOverHttp/UploadReportsOverHttp/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/*SdchPersistence/Default/SessionRestoreBackgroundLoading/Restore/*SettingsEnforcement/enforce_always_with_extensions_and_dse/*SyncBackingDatabase32K/Enabled/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_02/*UMA-Uniformity-Trial-10-Percent/group_01/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_04/*UMA-Uniformity-Trial-5-Percent/group_01/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/*VoiceTrigger/Install/WebRTC-UDPSocketNonBlockingIO/Default/" --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --gpu-rasterization-msaa-sample-count=8 --use-image-texture-target=3553 --channel="6644.18.1294941650\528204903" --font-cache-shared-handle=9112 /prefetch:673131151
"C:\Program Files\WindowsApps\Microsoft.WindowsAlarms_10.1508.17010.0_x64__8wekyb3d8bbwe\Time.exe" -ServerName:App.AppXq8avk61zazpy808ab5ppkf6taqp47km6.mca
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=ppapi --channel="6644.202.471758831\1533258490" --ppapi-flash-args=enable_hw_video_decode=1 --lang=cs --ignored=" --type=renderer " /prefetch:-632637702
taskhostw.exe
"C:\Program Files\WindowsApps\Microsoft.WindowsStore_2015.8.12.0_x64__8wekyb3d8bbwe\WinStore.Mobile.exe" -ServerName:App.AppXqagq4n4gvy0tjw576pgh6xr601s1h1mv.mca
/updateInstalled /background
"C:\Program Files\Microsoft Office 15\Root\VFS\ProgramFilesCommonX86\Microsoft Shared\OFFICE15\CSISYNCCLIENT.EXE" "C:\Program Files\Microsoft Office 15\Root\VFS\ProgramFilesCommonX86\Microsoft Shared\OFFICE15\CSISYNCCLIENT.EXE" -Embedding
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="*AffiliationBasedMatching/Enabled/AudioProcessing48kHzSupport/Default/*AutofillEnabled/Default/*AutofillFieldMetadata/Enabled/*BrowserBlacklist/Enabled/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/ChromeDashboard/Default/*DomRel-Enable/enable/*EmbeddedSearch/Group27 stable:pp1 prefetch_results:1 reuse_instant_search_base_page:1/EnableSessionCrashedBubbleUI/Disabled/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GoogleNow/Enable/*IconNTP/Default/*NewProfileManagement/Enabled/*NewVideoRendererTrial/Enabled/*OmniboxBundledExperimentV1/Unused_2/*PasswordGeneration/Disabled/PasswordLinkInSettings/Enabled/*PermissionBubbleRollout/Enabled/*PrerenderFromOmnibox/OmniboxPrerenderEnabled/*QUIC/EnabledNoIdForLargePopulation/*RefreshTokenDeviceId/Enabled/*RememberCertificateErrorDecisions/Default/ReportCertificateErrors/ShowAndPossiblySend/*ReportCertificateErrorsOverHttp/UploadReportsOverHttp/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/*SdchPersistence/Default/SessionRestoreBackgroundLoading/Restore/*SettingsEnforcement/enforce_always_with_extensions_and_dse/*SyncBackingDatabase32K/Enabled/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_02/*UMA-Uniformity-Trial-10-Percent/group_01/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_04/*UMA-Uniformity-Trial-5-Percent/group_01/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/*VoiceTrigger/Install/WebRTC-UDPSocketNonBlockingIO/Default/" --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --gpu-rasterization-msaa-sample-count=8 --use-image-texture-target=3553 --channel="6644.386.1103299741\219748464" --font-cache-shared-handle=13840 /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="*AffiliationBasedMatching/Enabled/AudioProcessing48kHzSupport/Default/*AutofillEnabled/Default/*AutofillFieldMetadata/Enabled/*BrowserBlacklist/Enabled/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/ChromeDashboard/Default/*DomRel-Enable/enable/*EmbeddedSearch/Group27 stable:pp1 prefetch_results:1 reuse_instant_search_base_page:1/EnableSessionCrashedBubbleUI/Disabled/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GoogleNow/Enable/*IconNTP/Default/*NewProfileManagement/Enabled/*NewVideoRendererTrial/Enabled/*OmniboxBundledExperimentV1/Unused_2/*PasswordGeneration/Disabled/PasswordLinkInSettings/Enabled/*PermissionBubbleRollout/Enabled/*PrerenderFromOmnibox/OmniboxPrerenderEnabled/*QUIC/EnabledNoIdForLargePopulation/*RefreshTokenDeviceId/Enabled/*RememberCertificateErrorDecisions/Default/ReportCertificateErrors/ShowAndPossiblySend/*ReportCertificateErrorsOverHttp/UploadReportsOverHttp/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/*SdchPersistence/Default/SessionRestoreBackgroundLoading/Restore/*SettingsEnforcement/enforce_always_with_extensions_and_dse/*SyncBackingDatabase32K/Enabled/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_02/*UMA-Uniformity-Trial-10-Percent/group_01/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_04/*UMA-Uniformity-Trial-5-Percent/group_01/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/*VoiceTrigger/Install/WebRTC-UDPSocketNonBlockingIO/Default/" --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --gpu-rasterization-msaa-sample-count=8 --use-image-texture-target=3553 --channel="6644.387.1902782766\1679325316" --font-cache-shared-handle=11912 /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="*AffiliationBasedMatching/Enabled/AudioProcessing48kHzSupport/Default/*AutofillEnabled/Default/*AutofillFieldMetadata/Enabled/*BrowserBlacklist/Enabled/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/ChromeDashboard/Default/*DomRel-Enable/enable/*EmbeddedSearch/Group27 stable:pp1 prefetch_results:1 reuse_instant_search_base_page:1/EnableSessionCrashedBubbleUI/Disabled/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GoogleNow/Enable/*IconNTP/Default/*NewProfileManagement/Enabled/*NewVideoRendererTrial/Enabled/*OmniboxBundledExperimentV1/Unused_2/*PasswordGeneration/Disabled/PasswordLinkInSettings/Enabled/*PermissionBubbleRollout/Enabled/*PrerenderFromOmnibox/OmniboxPrerenderEnabled/*QUIC/EnabledNoIdForLargePopulation/*RefreshTokenDeviceId/Enabled/*RememberCertificateErrorDecisions/Default/ReportCertificateErrors/ShowAndPossiblySend/*ReportCertificateErrorsOverHttp/UploadReportsOverHttp/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/*SdchPersistence/Default/SessionRestoreBackgroundLoading/Restore/*SettingsEnforcement/enforce_always_with_extensions_and_dse/*SyncBackingDatabase32K/Enabled/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_02/*UMA-Uniformity-Trial-10-Percent/group_01/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_04/*UMA-Uniformity-Trial-5-Percent/group_01/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/*VoiceTrigger/Install/WebRTC-UDPSocketNonBlockingIO/Default/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --gpu-rasterization-msaa-sample-count=8 --use-image-texture-target=3553 --channel="6644.407.470072104\534344131" --font-cache-shared-handle=12424 /prefetch:673131151
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe147_ Global\UsGthrCtrlFltPipeMssGthrPipe147 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"

"C:\WINDOWS\system32\SearchFilterHost.exe" 0 600 604 612 8192 608
C:\WINDOWS\System32\svchost.exe -k WerSvcGroup
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="*AffiliationBasedMatching/Enabled/AudioProcessing48kHzSupport/Default/*AutofillEnabled/Default/*AutofillFieldMetadata/Enabled/*BrowserBlacklist/Enabled/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/ChromeDashboard/Default/*DomRel-Enable/enable/*EmbeddedSearch/Group27 stable:pp1 prefetch_results:1 reuse_instant_search_base_page:1/EnableSessionCrashedBubbleUI/Disabled/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GoogleNow/Enable/*IconNTP/Default/*NewProfileManagement/Enabled/*NewVideoRendererTrial/Enabled/*OmniboxBundledExperimentV1/Unused_2/*PasswordGeneration/Disabled/PasswordLinkInSettings/Enabled/*PermissionBubbleRollout/Enabled/*PrerenderFromOmnibox/OmniboxPrerenderEnabled/*QUIC/EnabledNoIdForLargePopulation/*RefreshTokenDeviceId/Enabled/*RememberCertificateErrorDecisions/Default/ReportCertificateErrors/ShowAndPossiblySend/*ReportCertificateErrorsOverHttp/UploadReportsOverHttp/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/*SdchPersistence/Default/SessionRestoreBackgroundLoading/Restore/*SettingsEnforcement/enforce_always_with_extensions_and_dse/*SyncBackingDatabase32K/Enabled/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_02/*UMA-Uniformity-Trial-10-Percent/group_01/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_04/*UMA-Uniformity-Trial-5-Percent/group_01/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/*VoiceTrigger/Install/WebRTC-UDPSocketNonBlockingIO/Default/" --instant-process --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --gpu-rasterization-msaa-sample-count=8 --use-image-texture-target=3553 --channel="6644.461.1630700911\1325446286" --font-cache-shared-handle=11480 /prefetch:673131151
taskeng.exe {CD244BBF-6FD8-4ECC-B63F-5C1EE39EF72E}
C:\Users\Pavel\AppData\Local\Dropbox\Update\DropboxUpdate.exe /ua /installsource scheduler
"C:\Users\Pavel\Downloads\RSITx64.exe"


======Scheduled tasks folder======

C:\WINDOWS\tasks\Adobe Flash Player Updater.job - C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\WINDOWS\tasks\DropboxUpdateTaskUserS-1-5-21-2777531458-1915258623-2836945587-1002Core.job - C:\Users\Pavel\AppData\Local\Dropbox\Update\DropboxUpdate.exe /c
C:\WINDOWS\tasks\DropboxUpdateTaskUserS-1-5-21-2777531458-1915258623-2836945587-1002UA.job - C:\Users\Pavel\AppData\Local\Dropbox\Update\DropboxUpdate.exe /ua /installsource scheduler
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Skype for Business Browser Helper - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll [2015-06-09 219304]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2015-08-02 655480]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft SkyDrive Pro Browser Helper - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL [2015-06-16 2335448]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2015-08-02 559624]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE7CD045-E861-484f-8273-0445EE161910}]
Adobe Acrobat Create PDF Toolbar Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll [2012-09-23 330392]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll [2015-05-04 41760]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F4971EE7-DAA0-4053-9964-665D8EE6A077}]
Adobe Acrobat Create PDF from Selection - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll [2012-09-23 330392]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{47833539-D0C5-4125-9FA8-0819E2EAAC93} - Adobe Acrobat Create PDF Toolbar - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll [2012-09-23 330392]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RtsFT"=C:\WINDOWS\RTFTrack.exe [2015-06-16 5060864]
"IgfxTray"=C:\windows\system32\igfxtray.exe [2015-07-18 396688]
"HotKeysCmds"=C:\windows\system32\hkcmd.exe []
"Persistence"=C:\windows\system32\igfxpers.exe []
"Nvtmru"=C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe [2013-10-18 1028384]
"IAStorIcon"=C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe [2013-08-07 36352]
"cAudioFilterAgent"=C:\Program Files\Conexant\cAudioFilterAgent\cAudioFilterAgent64.exe [2013-09-05 907480]
"ForteConfig"=C:\Program Files\Conexant\ForteConfig\fmapp.exe [2010-10-26 49056]
"SmartAudio"=C:\Program Files\CONEXANT\SAII\SACpl.exe [2012-06-13 1647616]
"OnekeyStudio"=C:\Program Files\Lenovo\Onekey Theater\OnekeyStudio.exe [2012-09-15 4196432]
"Energy Manager"=C:\Program Files (x86)\Lenovo\Energy Manager\Energy Manager.exe [2014-10-18 15813616]
"Lenovo Utility"=C:\Program Files (x86)\Lenovo\Energy Manager\Utility.exe [2014-10-18 80880]
"AdobeAAMUpdater-1.0"=C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2012-09-20 444904]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2015-06-03 3944136]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"GoogleChromeAutoLaunch_7629D47B6AAB0AC4663EF6E10C5E858F"=C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [2015-08-08 813896]
"Dropbox Update"=C:\Users\Pavel\AppData\Local\Dropbox\Update\DropboxUpdate.exe [2015-06-17 134512]
"OneDrive"=C:\Users\Pavel\AppData\Local\Microsoft\OneDrive\OneDrive.exe [2015-08-21 404064]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"Uninstall C:\Users\Pavel\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64"=C:\WINDOWS\system32\cmd.exe [2015-07-10 232448]
"Uninstall C:\Users\Pavel\AppData\Local\Microsoft\OneDrive\17.3.5907.0716"=C:\WINDOWS\system32\cmd.exe [2015-07-10 232448]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"UpdateP2GShortCut"=C:\Program Files (x86)\Lenovo\Power2Go\MUITransfer\MUIStartMenu.exe [2011-12-07 214312]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2015-02-10 335232]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2015-08-02 6109776]
""= []
"Acrobat Assistant 8.0"=C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Acrotray.exe [2012-09-23 3477640]
"MFFSum_Pro_LL2"=C:\Program Files (x86)\Companion Suite Pro LL2\MFFSUM.exe [2010-01-08 24576]
"MFPrintServer_Pro_LL2"=C:\Program Files (x86)\Companion Suite Pro LL2\MFPrintServer.exe [2010-01-08 73728]

C:\Users\Pavel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Dropbox.lnk - C:\Users\Pavel\AppData\Roaming\Dropbox\bin\Dropbox.exe
Synology Cloud Station.lnk - C:\Program Files (x86)\Synology\CloudStation\bin\launcher.exe

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TileDataModelSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TileDataModelSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DSCAutomationHostEnabled"=2
"SoftwareSASGeneration"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
""=

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe"="C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe:*:Enabled:Spybot - Search & Destroy tray access"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe"="C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe:*:Enabled:Spybot-S&D 2 Scanner Service"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe"="C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe:*:Enabled:Spybot-S&D 2 Updater"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe"="C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe:*:Enabled:Spybot-S&D 2 Background update service"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
.scr - open -
.scr - install -
.scr - config -

Smouke
Návštěvník
Návštěvník
Příspěvky: 11
Registrován: 21 srp 2015 14:52

Re: Prosím o kontrolu - vyskajující okna CHROME

#2 Příspěvek od Smouke »

část 2

======List of files/folders created in the last 1 month======

2015-08-21 15:47:44 ----D---- C:\rsit
2015-08-21 15:47:44 ----D---- C:\Program Files\trend micro
2015-08-21 15:25:22 ----HD---- C:\OneDriveTemp
2015-08-18 16:49:15 ----A---- C:\WINDOWS\system32\mtusbnt64.sys
2015-08-18 16:49:15 ----A---- C:\WINDOWS\system32\fnetusb64.sys
2015-08-18 16:49:15 ----A---- C:\WINDOWS\system32\drivers\fnetusb64.sys
2015-08-18 16:49:01 ----D---- C:\Program Files (x86)\Fluke Networks
2015-08-18 16:48:32 ----HDC---- C:\ProgramData\{1FC82174-D437-4D1F-AFFF-BAE309F5E7F0}
2015-08-16 09:35:54 ----A---- C:\WINDOWS\system32\AppXDeploymentServer.dll
2015-08-16 09:35:54 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2015-08-12 22:49:19 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Protection.PlayReady.dll
2015-08-12 22:49:18 ----A---- C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2015-08-12 22:49:12 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.dll
2015-08-12 22:49:08 ----A---- C:\WINDOWS\system32\edgehtml.dll
2015-08-12 22:49:02 ----A---- C:\WINDOWS\system32\mshtml.dll
2015-08-12 22:48:55 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2015-08-12 22:48:54 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.dll
2015-08-12 22:48:52 ----A---- C:\WINDOWS\SYSWOW64\edgehtml.dll
2015-08-12 22:48:50 ----A---- C:\WINDOWS\system32\shell32.dll
2015-08-12 22:48:49 ----A---- C:\WINDOWS\system32\ieframe.dll
2015-08-12 22:48:48 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2015-08-12 22:48:47 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2015-08-12 22:48:46 ----A---- C:\WINDOWS\system32\SettingsHandlers_nt.dll
2015-08-12 22:48:45 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll
2015-08-12 22:48:44 ----A---- C:\WINDOWS\SYSWOW64\MFMediaEngine.dll
2015-08-12 22:48:44 ----A---- C:\WINDOWS\SYSWOW64\mfcore.dll
2015-08-12 22:48:44 ----A---- C:\WINDOWS\system32\mfcore.dll
2015-08-12 22:48:43 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Speech.dll
2015-08-12 22:48:43 ----A---- C:\WINDOWS\system32\win32kfull.sys
2015-08-12 22:48:43 ----A---- C:\WINDOWS\system32\RemoteNaturalLanguage.dll
2015-08-12 22:48:43 ----A---- C:\WINDOWS\system32\DWrite.dll
2015-08-12 22:48:43 ----A---- C:\WINDOWS\system32\drivers\dxgkrnl.sys
2015-08-12 22:48:42 ----A---- C:\WINDOWS\SYSWOW64\RemoteNaturalLanguage.dll
2015-08-12 22:48:42 ----A---- C:\WINDOWS\SYSWOW64\DWrite.dll
2015-08-12 22:48:42 ----A---- C:\WINDOWS\system32\Windows.Media.Speech.dll
2015-08-12 22:48:42 ----A---- C:\WINDOWS\system32\schedsvc.dll
2015-08-12 22:48:42 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2015-08-12 22:48:42 ----A---- C:\WINDOWS\system32\mf.dll
2015-08-12 22:48:42 ----A---- C:\WINDOWS\system32\LogonController.dll
2015-08-12 22:48:42 ----A---- C:\WINDOWS\system32\FntCache.dll
2015-08-12 22:48:41 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.LockScreen.dll
2015-08-12 22:48:41 ----A---- C:\WINDOWS\SYSWOW64\mfsvr.dll
2015-08-12 22:48:41 ----A---- C:\WINDOWS\SYSWOW64\LogonController.dll
2015-08-12 22:48:41 ----A---- C:\WINDOWS\SYSWOW64\InputService.dll
2015-08-12 22:48:41 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.LockScreen.dll
2015-08-12 22:48:41 ----A---- C:\WINDOWS\system32\win32kbase.sys
2015-08-12 22:48:41 ----A---- C:\WINDOWS\system32\mfsvr.dll
2015-08-12 22:48:41 ----A---- C:\WINDOWS\system32\facecredentialprovider.dll
2015-08-12 22:48:40 ----A---- C:\WINDOWS\SYSWOW64\WWAHost.exe
2015-08-12 22:48:40 ----A---- C:\WINDOWS\SYSWOW64\TextInputFramework.dll
2015-08-12 22:48:40 ----A---- C:\WINDOWS\SYSWOW64\NotificationObjFactory.dll
2015-08-12 22:48:40 ----A---- C:\WINDOWS\SYSWOW64\msctfuimanager.dll
2015-08-12 22:48:40 ----A---- C:\WINDOWS\SYSWOW64\fontdrvhost.exe
2015-08-12 22:48:40 ----A---- C:\WINDOWS\SYSWOW64\atmfd.dll
2015-08-12 22:48:40 ----A---- C:\WINDOWS\SYSWOW64\ActionCenter.dll
2015-08-12 22:48:40 ----A---- C:\WINDOWS\system32\WWAHost.exe
2015-08-12 22:48:40 ----A---- C:\WINDOWS\system32\Windows.Cortana.Desktop.dll
2015-08-12 22:48:40 ----A---- C:\WINDOWS\system32\WinBioDataModel.dll
2015-08-12 22:48:40 ----A---- C:\WINDOWS\system32\wifinetworkmanager.dll
2015-08-12 22:48:40 ----A---- C:\WINDOWS\system32\VPNv2CSP.dll
2015-08-12 22:48:40 ----A---- C:\WINDOWS\system32\TextInputFramework.dll
2015-08-12 22:48:40 ----A---- C:\WINDOWS\system32\SubscriptionMgr.dll
2015-08-12 22:48:40 ----A---- C:\WINDOWS\system32\NotificationObjFactory.dll
2015-08-12 22:48:40 ----A---- C:\WINDOWS\system32\NetworkStatus.dll
2015-08-12 22:48:40 ----A---- C:\WINDOWS\system32\msctfuimanager.dll
2015-08-12 22:48:40 ----A---- C:\WINDOWS\system32\fontdrvhost.exe
2015-08-12 22:48:40 ----A---- C:\WINDOWS\system32\drivers\WdiWiFi.sys
2015-08-12 22:48:40 ----A---- C:\WINDOWS\system32\drivers\USBHUB3.SYS
2015-08-12 22:48:40 ----A---- C:\WINDOWS\system32\drivers\rdyboost.sys
2015-08-12 22:48:40 ----A---- C:\WINDOWS\system32\drivers\mountmgr.sys
2015-08-12 22:48:40 ----A---- C:\WINDOWS\system32\drivers\dxgmms2.sys
2015-08-12 22:48:40 ----A---- C:\WINDOWS\system32\atmfd.dll
2015-08-12 22:48:40 ----A---- C:\WINDOWS\system32\ActionCenter.dll
2015-08-12 22:48:39 ----A---- C:\WINDOWS\SYSWOW64\ntdll.dll
2015-08-12 22:48:39 ----A---- C:\WINDOWS\SYSWOW64\notepad.exe
2015-08-12 22:48:39 ----A---- C:\WINDOWS\system32\sysmain.dll
2015-08-12 22:48:39 ----A---- C:\WINDOWS\system32\ntdll.dll
2015-08-12 22:48:39 ----A---- C:\WINDOWS\system32\notepad.exe
2015-08-12 22:48:39 ----A---- C:\WINDOWS\system32\LockAppHost.exe
2015-08-12 22:48:39 ----A---- C:\WINDOWS\system32\drivers\wpcfltr.sys
2015-08-12 22:48:39 ----A---- C:\WINDOWS\system32\drivers\wof.sys
2015-08-12 22:48:39 ----A---- C:\WINDOWS\system32\coredpus.dll
2015-08-12 22:48:39 ----A---- C:\WINDOWS\system32\configmanager2.dll
2015-08-12 22:48:39 ----A---- C:\WINDOWS\notepad.exe
2015-08-12 22:48:38 ----A---- C:\WINDOWS\system32\Windows.Internal.Shell.Broker.dll
2015-08-12 22:48:38 ----A---- C:\WINDOWS\system32\drivers\msgpiowin32.sys
2015-08-12 22:48:37 ----A---- C:\WINDOWS\system32\mfps.dll
2015-08-12 22:48:37 ----A---- C:\WINDOWS\system32\InputService.dll
2015-08-12 22:48:37 ----A---- C:\WINDOWS\system32\drivers\dxgmms1.sys
2015-08-12 22:48:36 ----A---- C:\WINDOWS\SYSWOW64\LockAppBroker.dll
2015-08-12 22:48:36 ----A---- C:\WINDOWS\SYSWOW64\dwmcore.dll
2015-08-12 22:48:36 ----A---- C:\WINDOWS\system32\SharedStartModelShim.dll
2015-08-12 22:48:36 ----A---- C:\WINDOWS\system32\rdbui.dll
2015-08-12 22:48:36 ----A---- C:\WINDOWS\system32\LockAppBroker.dll
2015-08-12 22:48:36 ----A---- C:\WINDOWS\system32\dwmcore.dll
2015-08-12 22:48:35 ----A---- C:\WINDOWS\SYSWOW64\VEEventDispatcher.dll
2015-08-12 22:48:35 ----A---- C:\WINDOWS\SYSWOW64\VEDataLayerHelpers.dll
2015-08-12 22:48:35 ----A---- C:\WINDOWS\system32\Windows.UI.Shell.dll
2015-08-12 22:48:35 ----A---- C:\WINDOWS\system32\VEEventDispatcher.dll
2015-08-12 22:48:35 ----A---- C:\WINDOWS\system32\VEDataLayerHelpers.dll
2015-08-12 22:48:35 ----A---- C:\WINDOWS\system32\tileobjserver.dll
2015-08-12 22:48:35 ----A---- C:\WINDOWS\system32\SharedStartModel.dll
2015-08-12 22:48:35 ----A---- C:\WINDOWS\system32\SettingsHandlers_UserAccount.dll
2015-08-12 22:48:35 ----A---- C:\WINDOWS\system32\RDXService.dll
2015-08-10 21:57:22 ----D---- C:\WINDOWS\system32\SleepStudy
2015-08-06 21:26:10 ----A---- C:\WINDOWS\system32\twinui.dll
2015-08-06 21:25:59 ----A---- C:\WINDOWS\system32\Windows.UI.Logon.dll
2015-08-06 21:25:53 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
2015-08-06 21:25:49 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Logon.dll
2015-08-06 21:25:49 ----A---- C:\WINDOWS\system32\LicenseManager.dll
2015-08-06 21:25:48 ----A---- C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2015-08-06 21:25:48 ----A---- C:\WINDOWS\system32\CoreUIComponents.dll
2015-08-06 21:25:43 ----A---- C:\WINDOWS\system32\twinui.appcore.dll
2015-08-06 21:25:37 ----A---- C:\WINDOWS\SYSWOW64\mfmpeg2srcsnk.dll
2015-08-06 21:25:37 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2015-08-06 21:25:36 ----A---- C:\WINDOWS\SYSWOW64\twinui.appcore.dll
2015-08-06 21:25:36 ----A---- C:\WINDOWS\SYSWOW64\CoreUIComponents.dll
2015-08-06 21:25:35 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.dll
2015-08-06 21:25:35 ----A---- C:\WINDOWS\system32\d3d9.dll
2015-08-06 21:25:33 ----A---- C:\WINDOWS\SYSWOW64\LicenseManager.dll
2015-08-06 21:25:31 ----A---- C:\WINDOWS\system32\modernexecserver.dll
2015-08-06 21:25:30 ----A---- C:\WINDOWS\system32\NotificationController.dll
2015-08-06 21:25:29 ----A---- C:\WINDOWS\system32\winmde.dll
2015-08-06 21:25:29 ----A---- C:\WINDOWS\system32\CredProvDataModel.dll
2015-08-06 21:25:28 ----A---- C:\WINDOWS\SYSWOW64\CredProvDataModel.dll
2015-08-06 21:25:28 ----A---- C:\WINDOWS\system32\rpcrt4.dll
2015-08-06 21:25:27 ----A---- C:\WINDOWS\SYSWOW64\d3d9.dll
2015-08-06 21:25:27 ----A---- C:\WINDOWS\system32\wmpmde.dll
2015-08-06 21:25:27 ----A---- C:\WINDOWS\system32\PsmServiceExtHost.dll
2015-08-06 21:25:27 ----A---- C:\WINDOWS\system32\mfmp4srcsnk.dll
2015-08-06 21:25:26 ----A---- C:\WINDOWS\SYSWOW64\winmde.dll
2015-08-06 21:25:25 ----A---- C:\WINDOWS\SYSWOW64\rpcrt4.dll
2015-08-06 21:25:25 ----A---- C:\WINDOWS\system32\drivers\ntfs.sys
2015-08-06 21:25:24 ----A---- C:\WINDOWS\system32\AudioEng.dll
2015-08-06 21:25:23 ----A---- C:\WINDOWS\SYSWOW64\mfmp4srcsnk.dll
2015-08-06 21:25:23 ----A---- C:\WINDOWS\system32\wpncore.dll
2015-08-06 21:25:23 ----A---- C:\WINDOWS\system32\provhandlers.dll
2015-08-06 21:25:23 ----A---- C:\WINDOWS\system32\PlayToManager.dll
2015-08-06 21:25:22 ----A---- C:\WINDOWS\system32\mfsrcsnk.dll
2015-08-06 21:25:21 ----A---- C:\WINDOWS\system32\UserDataService.dll
2015-08-06 21:25:20 ----A---- C:\WINDOWS\system32\wcmsvc.dll
2015-08-06 21:25:20 ----A---- C:\WINDOWS\system32\MFPlay.dll
2015-08-06 21:25:20 ----A---- C:\WINDOWS\system32\AudioSes.dll
2015-08-06 21:25:19 ----A---- C:\WINDOWS\system32\provengine.dll
2015-08-06 21:25:16 ----A---- C:\WINDOWS\SYSWOW64\AudioEng.dll
2015-08-06 21:25:16 ----A---- C:\WINDOWS\system32\SensorService.dll
2015-08-06 21:25:16 ----A---- C:\WINDOWS\system32\ContentDeliveryManager.Utilities.dll
2015-08-06 21:25:15 ----A---- C:\WINDOWS\SYSWOW64\PlayToManager.dll
2015-08-06 21:25:15 ----A---- C:\WINDOWS\SYSWOW64\MFPlay.dll
2015-08-06 21:25:15 ----A---- C:\WINDOWS\system32\wpnapps.dll
2015-08-06 21:25:15 ----A---- C:\WINDOWS\system32\AudioEndpointBuilder.dll
2015-08-06 21:25:15 ----A---- C:\WINDOWS\system32\ACPBackgroundManagerPolicy.dll
2015-08-06 21:25:14 ----A---- C:\WINDOWS\SYSWOW64\wpnapps.dll
2015-08-06 21:25:14 ----A---- C:\WINDOWS\SYSWOW64\mfsrcsnk.dll
2015-08-06 21:25:14 ----A---- C:\WINDOWS\system32\MusNotificationUx.exe
2015-08-06 21:25:13 ----A---- C:\WINDOWS\SYSWOW64\dxgi.dll
2015-08-06 21:25:13 ----A---- C:\WINDOWS\SYSWOW64\AudioSes.dll
2015-08-06 21:25:13 ----A---- C:\WINDOWS\system32\StoreAgent.dll
2015-08-06 21:25:13 ----A---- C:\WINDOWS\system32\provisioningcsp.dll
2015-08-06 21:25:13 ----A---- C:\WINDOWS\system32\mfmkvsrcsnk.dll
2015-08-06 21:25:13 ----A---- C:\WINDOWS\system32\InstallAgent.exe
2015-08-06 21:25:13 ----A---- C:\WINDOWS\system32\dxgi.dll
2015-08-06 21:25:12 ----A---- C:\WINDOWS\system32\wcmcsp.dll
2015-08-06 21:25:12 ----A---- C:\WINDOWS\system32\SensorsNativeApi.V2.dll
2015-08-06 21:25:12 ----A---- C:\WINDOWS\system32\NotificationControllerPS.dll
2015-08-06 21:25:12 ----A---- C:\WINDOWS\system32\LicenseManagerShellext.exe
2015-08-06 21:25:12 ----A---- C:\WINDOWS\system32\fwpolicyiomgr.dll
2015-08-06 21:25:12 ----A---- C:\WINDOWS\system32\diagtrack.dll
2015-08-06 21:25:12 ----A---- C:\WINDOWS\system32\AppxSysprep.dll
2015-08-06 21:25:11 ----A---- C:\WINDOWS\SYSWOW64\VoiceActivationManager.dll
2015-08-06 21:25:11 ----A---- C:\WINDOWS\SYSWOW64\SensorsNativeApi.V2.dll
2015-08-06 21:25:11 ----A---- C:\WINDOWS\SYSWOW64\mfmkvsrcsnk.dll
2015-08-06 21:25:11 ----A---- C:\WINDOWS\SYSWOW64\fwpolicyiomgr.dll
2015-08-06 21:25:11 ----A---- C:\WINDOWS\system32\VoiceActivationManager.dll
2015-08-06 21:25:11 ----A---- C:\WINDOWS\system32\drivers\tunnel.sys
2015-08-06 21:25:10 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2015-08-06 21:25:10 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2015-08-06 21:25:10 ----A---- C:\WINDOWS\system32\drivers\bthhfenum.sys
2015-08-05 22:58:18 ----DC---- C:\WINDOWS\Panther
2015-08-05 22:55:19 ----D---- C:\Windows.old
2015-08-05 22:54:03 ----A---- C:\WINDOWS\SYSWOW64\wmp.dll
2015-08-05 22:54:03 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Search.dll
2015-08-05 22:54:03 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Immersive.dll
2015-08-05 22:54:03 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Cred.dll
2015-08-05 22:54:03 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.BlockedShutdown.dll
2015-08-05 22:54:03 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.BioFeedback.dll
2015-08-05 22:54:03 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Editing.dll
2015-08-05 22:54:03 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.dll
2015-08-05 22:54:03 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Sensors.dll
2015-08-05 22:54:03 ----A---- C:\WINDOWS\SYSWOW64\wimgapi.dll
2015-08-05 22:54:03 ----A---- C:\WINDOWS\SYSWOW64\uxtheme.dll
2015-08-05 22:54:03 ----A---- C:\WINDOWS\SYSWOW64\UIRibbonRes.dll
2015-08-05 22:54:03 ----A---- C:\WINDOWS\SYSWOW64\UIRibbon.dll
2015-08-05 22:54:03 ----A---- C:\WINDOWS\SYSWOW64\systemcpl.dll
2015-08-05 22:54:03 ----A---- C:\WINDOWS\SYSWOW64\stobject.dll
2015-08-05 22:54:03 ----A---- C:\WINDOWS\SYSWOW64\srumsvc.dll
2015-08-05 22:54:03 ----A---- C:\WINDOWS\SYSWOW64\spbcd.dll
2015-08-05 22:54:03 ----A---- C:\WINDOWS\SYSWOW64\SensorsApi.dll
2015-08-05 22:54:03 ----A---- C:\WINDOWS\SYSWOW64\sendmail.dll
2015-08-05 22:54:03 ----A---- C:\WINDOWS\SYSWOW64\SearchFolder.dll
2015-08-05 22:54:03 ----A---- C:\WINDOWS\SYSWOW64\ReInfo.dll
2015-08-05 22:54:03 ----A---- C:\WINDOWS\SYSWOW64\ReAgent.dll
2015-08-05 22:54:03 ----A---- C:\WINDOWS\SYSWOW64\ntshrui.dll
2015-08-05 22:54:03 ----A---- C:\WINDOWS\SYSWOW64\msiexec.exe
2015-08-05 22:54:03 ----A---- C:\WINDOWS\SYSWOW64\msi.dll
2015-08-05 22:54:03 ----A---- C:\WINDOWS\SYSWOW64\mfplat.dll
2015-08-05 22:54:03 ----A---- C:\WINDOWS\SYSWOW64\MCRecvSrc.dll
2015-08-05 22:54:03 ----A---- C:\WINDOWS\SYSWOW64\LockAppHost.exe
2015-08-05 22:54:03 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2015-08-05 22:54:03 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2015-08-05 22:54:03 ----A---- C:\WINDOWS\SYSWOW64\ieproxy.dll
2015-08-05 22:54:03 ----A---- C:\WINDOWS\SYSWOW64\Chakra.dll
2015-08-05 22:54:03 ----A---- C:\WINDOWS\SYSWOW64\GamePanel.exe
2015-08-05 22:54:03 ----A---- C:\WINDOWS\SYSWOW64\ExplorerFrame.dll
2015-08-05 22:54:03 ----A---- C:\WINDOWS\SYSWOW64\explorer.exe
2015-08-05 22:54:03 ----A---- C:\WINDOWS\SYSWOW64\efscore.dll
2015-08-05 22:54:03 ----A---- C:\WINDOWS\SYSWOW64\comdlg32.dll
2015-08-05 22:54:03 ----A---- C:\WINDOWS\SYSWOW64\calc.exe
2015-08-05 22:54:03 ----A---- C:\WINDOWS\SYSWOW64\bcd.dll
2015-08-05 22:54:03 ----A---- C:\WINDOWS\SYSWOW64\bcastdvr.exe
2015-08-05 22:54:03 ----A---- C:\WINDOWS\SYSWOW64\AppxAllUserStore.dll
2015-08-05 22:54:03 ----A---- C:\WINDOWS\system32\wpccpl.dll
2015-08-05 22:54:03 ----A---- C:\WINDOWS\system32\wmp.dll
2015-08-05 22:54:03 ----A---- C:\WINDOWS\system32\Windows.UI.Cred.dll
2015-08-05 22:54:03 ----A---- C:\WINDOWS\system32\Windows.UI.BlockedShutdown.dll
2015-08-05 22:54:03 ----A---- C:\WINDOWS\system32\Windows.UI.BioFeedback.dll
2015-08-05 22:54:03 ----A---- C:\WINDOWS\system32\Windows.Media.Editing.dll
2015-08-05 22:54:03 ----A---- C:\WINDOWS\system32\Windows.Media.dll
2015-08-05 22:54:03 ----A---- C:\WINDOWS\system32\Windows.Devices.Sensors.dll
2015-08-05 22:54:03 ----A---- C:\WINDOWS\system32\Windows.Cortana.PAL.Desktop.dll
2015-08-05 22:54:03 ----A---- C:\WINDOWS\system32\UIRibbonRes.dll
2015-08-05 22:54:03 ----A---- C:\WINDOWS\system32\UIRibbon.dll
2015-08-05 22:54:03 ----A---- C:\WINDOWS\system32\systemcpl.dll
2015-08-05 22:54:03 ----A---- C:\WINDOWS\system32\stobject.dll
2015-08-05 22:54:03 ----A---- C:\WINDOWS\system32\SettingsHandlers_SignInOptions.dll
2015-08-05 22:54:03 ----A---- C:\WINDOWS\system32\SensorsApi.dll
2015-08-05 22:54:03 ----A---- C:\WINDOWS\system32\SensorDataService.exe
2015-08-05 22:54:03 ----A---- C:\WINDOWS\system32\sendmail.dll
2015-08-05 22:54:03 ----A---- C:\WINDOWS\system32\ntshrui.dll
2015-08-05 22:54:03 ----A---- C:\WINDOWS\system32\mfplat.dll
2015-08-05 22:54:03 ----A---- C:\WINDOWS\system32\MCRecvSrc.dll
2015-08-05 22:54:03 ----A---- C:\WINDOWS\system32\jscript9.dll
2015-08-05 22:54:03 ----A---- C:\WINDOWS\system32\ieproxy.dll
2015-08-05 22:54:03 ----A---- C:\WINDOWS\system32\Chakra.dll
2015-08-05 22:54:03 ----A---- C:\WINDOWS\system32\ExplorerFrame.dll
2015-08-05 22:54:03 ----A---- C:\WINDOWS\system32\drivers\ndis.sys
2015-08-05 22:54:03 ----A---- C:\WINDOWS\system32\diagtrack_wininternal.dll
2015-08-05 22:54:03 ----A---- C:\WINDOWS\system32\ConhostV2.dll
2015-08-05 22:54:03 ----A---- C:\WINDOWS\system32\calc.exe
2015-08-05 22:54:03 ----A---- C:\WINDOWS\system32\bcd.dll
2015-08-05 22:54:03 ----A---- C:\WINDOWS\system32\audiosrv.dll
2015-08-05 22:54:03 ----A---- C:\WINDOWS\system32\atmlib.dll
2015-08-05 22:54:03 ----A---- C:\WINDOWS\explorer.exe
2015-08-05 22:54:02 ----A---- C:\WINDOWS\system32\NetworkMobileSettings.dll
2015-08-05 22:54:00 ----A---- C:\WINDOWS\SYSWOW64\Unistore.dll
2015-08-05 22:54:00 ----A---- C:\WINDOWS\SYSWOW64\mos.dll
2015-08-05 22:54:00 ----A---- C:\WINDOWS\SYSWOW64\MbaeApi.dll
2015-08-05 22:54:00 ----A---- C:\WINDOWS\SYSWOW64\MapConfiguration.dll
2015-08-05 22:54:00 ----A---- C:\WINDOWS\SYSWOW64\hmkd.dll
2015-08-05 22:54:00 ----A---- C:\WINDOWS\SYSWOW64\ContactApis.dll
2015-08-05 22:54:00 ----A---- C:\WINDOWS\SYSWOW64\BingMaps.dll
2015-08-05 22:54:00 ----A---- C:\WINDOWS\system32\wwansvc.dll
2015-08-05 22:54:00 ----A---- C:\WINDOWS\system32\wuuhext.dll
2015-08-05 22:54:00 ----A---- C:\WINDOWS\system32\wuaueng.dll
2015-08-05 22:54:00 ----A---- C:\WINDOWS\system32\wuapi.dll
2015-08-05 22:54:00 ----A---- C:\WINDOWS\system32\winresume.exe
2015-08-05 22:54:00 ----A---- C:\WINDOWS\system32\winlogon.exe
2015-08-05 22:54:00 ----A---- C:\WINDOWS\system32\winload.exe
2015-08-05 22:54:00 ----A---- C:\WINDOWS\system32\wininet.dll
2015-08-05 22:54:00 ----A---- C:\WINDOWS\system32\Windows.UI.Search.dll
2015-08-05 22:54:00 ----A---- C:\WINDOWS\system32\Windows.UI.Immersive.dll
2015-08-05 22:54:00 ----A---- C:\WINDOWS\system32\Windows.Cortana.ProxyStub.dll
2015-08-05 22:54:00 ----A---- C:\WINDOWS\system32\Windows.Cortana.OneCore.dll
2015-08-05 22:54:00 ----A---- C:\WINDOWS\system32\wimserv.exe
2015-08-05 22:54:00 ----A---- C:\WINDOWS\system32\wimgapi.dll
2015-08-05 22:54:00 ----A---- C:\WINDOWS\system32\wer.dll
2015-08-05 22:54:00 ----A---- C:\WINDOWS\system32\VEStoreEventHandlers.dll
2015-08-05 22:54:00 ----A---- C:\WINDOWS\system32\uxtheme.dll
2015-08-05 22:54:00 ----A---- C:\WINDOWS\system32\usocore.dll
2015-08-05 22:54:00 ----A---- C:\WINDOWS\system32\urlmon.dll
2015-08-05 22:54:00 ----A---- C:\WINDOWS\system32\updatehandlers.dll
2015-08-05 22:54:00 ----A---- C:\WINDOWS\system32\Unistore.dll
2015-08-05 22:54:00 ----A---- C:\WINDOWS\system32\unenrollhook.dll
2015-08-05 22:54:00 ----A---- C:\WINDOWS\system32\tetheringservice.dll
2015-08-05 22:54:00 ----A---- C:\WINDOWS\system32\TabSvc.dll
2015-08-05 22:54:00 ----A---- C:\WINDOWS\system32\storewuauth.dll
2015-08-05 22:54:00 ----A---- C:\WINDOWS\system32\srumsvc.dll
2015-08-05 22:54:00 ----A---- C:\WINDOWS\system32\sppcomapi.dll
2015-08-05 22:54:00 ----A---- C:\WINDOWS\system32\spbcd.dll
2015-08-05 22:54:00 ----A---- C:\WINDOWS\system32\shutdownux.dll
2015-08-05 22:54:00 ----A---- C:\WINDOWS\system32\SettingsHandlers_Privacy.dll
2015-08-05 22:54:00 ----A---- C:\WINDOWS\system32\SettingsHandlers_Notifications.dll
2015-08-05 22:54:00 ----A---- C:\WINDOWS\system32\setbcdlocale.dll
2015-08-05 22:54:00 ----A---- C:\WINDOWS\system32\SearchFolder.dll
2015-08-05 22:54:00 ----A---- C:\WINDOWS\system32\reseteng.dll
2015-08-05 22:54:00 ----A---- C:\WINDOWS\system32\ReInfo.dll
2015-08-05 22:54:00 ----A---- C:\WINDOWS\system32\RecoveryDrive.exe
2015-08-05 22:54:00 ----A---- C:\WINDOWS\system32\ReAgent.dll
2015-08-05 22:54:00 ----A---- C:\WINDOWS\system32\psmsrv.dll
2015-08-05 22:54:00 ----A---- C:\WINDOWS\system32\omadmprc.exe
2015-08-05 22:54:00 ----A---- C:\WINDOWS\system32\omadmclient.exe
2015-08-05 22:54:00 ----A---- C:\WINDOWS\system32\OmaDmAgent.dll
2015-08-05 22:54:00 ----A---- C:\WINDOWS\system32\ncsi.dll
2015-08-05 22:54:00 ----A---- C:\WINDOWS\system32\MusUpdateHandlers.dll
2015-08-05 22:54:00 ----A---- C:\WINDOWS\system32\MusNotification.exe
2015-08-05 22:54:00 ----A---- C:\WINDOWS\system32\msiexec.exe
2015-08-05 22:54:00 ----A---- C:\WINDOWS\system32\msi.dll
2015-08-05 22:54:00 ----A---- C:\WINDOWS\system32\mos.dll
2015-08-05 22:54:00 ----A---- C:\WINDOWS\system32\MBMediaManager.dll
2015-08-05 22:54:00 ----A---- C:\WINDOWS\system32\MbaeApi.dll
2015-08-05 22:54:00 ----A---- C:\WINDOWS\system32\MapsStore.dll
2015-08-05 22:54:00 ----A---- C:\WINDOWS\system32\MapControlCore.dll
2015-08-05 22:54:00 ----A---- C:\WINDOWS\system32\MapConfiguration.dll
2015-08-05 22:54:00 ----A---- C:\WINDOWS\system32\LicenseManagerApi.dll
2015-08-05 22:54:00 ----A---- C:\WINDOWS\system32\iertutil.dll
2015-08-05 22:54:00 ----A---- C:\WINDOWS\system32\hmkd.dll
2015-08-05 22:54:00 ----A---- C:\WINDOWS\system32\hal.dll
2015-08-05 22:54:00 ----A---- C:\WINDOWS\system32\GamePanel.exe
2015-08-05 22:54:00 ----A---- C:\WINDOWS\system32\efscore.dll
2015-08-05 22:54:00 ----A---- C:\WINDOWS\system32\EditionUpgradeManagerObj.dll
2015-08-05 22:54:00 ----A---- C:\WINDOWS\system32\drivers\refsv1.sys
2015-08-05 22:54:00 ----A---- C:\WINDOWS\system32\drivers\dam.sys
2015-08-05 22:54:00 ----A---- C:\WINDOWS\system32\dosvc.dll
2015-08-05 22:54:00 ----A---- C:\WINDOWS\system32\diagtrack_win.dll
2015-08-05 22:54:00 ----A---- C:\WINDOWS\system32\DevicesFlowBroker.dll
2015-08-05 22:54:00 ----A---- C:\WINDOWS\system32\ContactApis.dll
2015-08-05 22:54:00 ----A---- C:\WINDOWS\system32\ConsoleLogon.dll
2015-08-05 22:54:00 ----A---- C:\WINDOWS\system32\comdlg32.dll
2015-08-05 22:54:00 ----A---- C:\WINDOWS\system32\ClipUp.exe
2015-08-05 22:54:00 ----A---- C:\WINDOWS\system32\BootMenuUX.dll
2015-08-05 22:54:00 ----A---- C:\WINDOWS\system32\BingMaps.dll
2015-08-05 22:54:00 ----A---- C:\WINDOWS\system32\bcdedit.exe
2015-08-05 22:54:00 ----A---- C:\WINDOWS\system32\bcdboot.exe
2015-08-05 22:54:00 ----A---- C:\WINDOWS\system32\bcastdvr.exe
2015-08-05 22:54:00 ----A---- C:\WINDOWS\system32\AppxAllUserStore.dll
2015-08-05 22:54:00 ----A---- C:\WINDOWS\system32\ActiveSyncProvider.dll
2015-08-05 22:53:59 ----A---- C:\WINDOWS\SYSWOW64\wuapi.dll
2015-08-05 22:53:59 ----A---- C:\WINDOWS\SYSWOW64\wintrust.dll
2015-08-05 22:53:59 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2015-08-05 22:53:59 ----A---- C:\WINDOWS\SYSWOW64\winhttp.dll
2015-08-05 22:53:59 ----A---- C:\WINDOWS\SYSWOW64\windows.storage.dll
2015-08-05 22:53:59 ----A---- C:\WINDOWS\SYSWOW64\Windows.Networking.Connectivity.dll
2015-08-05 22:53:59 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Import.dll
2015-08-05 22:53:59 ----A---- C:\WINDOWS\SYSWOW64\Windows.Internal.Bluetooth.dll
2015-08-05 22:53:59 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Bluetooth.dll
2015-08-05 22:53:59 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2015-08-05 22:53:59 ----A---- C:\WINDOWS\SYSWOW64\UIAutomationCore.dll
2015-08-05 22:53:59 ----A---- C:\WINDOWS\SYSWOW64\twinapi.appcore.dll
2015-08-05 22:53:59 ----A---- C:\WINDOWS\SYSWOW64\SearchIndexer.exe
2015-08-05 22:53:59 ----A---- C:\WINDOWS\SYSWOW64\mssrch.dll
2015-08-05 22:53:59 ----A---- C:\WINDOWS\SYSWOW64\msftedit.dll
2015-08-05 22:53:59 ----A---- C:\WINDOWS\SYSWOW64\MrmCoreR.dll
2015-08-05 22:53:59 ----A---- C:\WINDOWS\SYSWOW64\MessagingDataModel2.dll
2015-08-05 22:53:59 ----A---- C:\WINDOWS\SYSWOW64\gdi32.dll
2015-08-05 22:53:59 ----A---- C:\WINDOWS\SYSWOW64\dwmapi.dll
2015-08-05 22:53:59 ----A---- C:\WINDOWS\SYSWOW64\DisplayManager.dll
2015-08-05 22:53:59 ----A---- C:\WINDOWS\SYSWOW64\CoreMessaging.dll
2015-08-05 22:53:59 ----A---- C:\WINDOWS\SYSWOW64\atmlib.dll
2015-08-05 22:53:59 ----A---- C:\WINDOWS\SYSWOW64\AppContracts.dll
2015-08-05 22:53:59 ----A---- C:\WINDOWS\SYSWOW64\actxprxy.dll
2015-08-05 22:53:59 ----A---- C:\WINDOWS\system32\wintrust.dll
2015-08-05 22:53:59 ----A---- C:\WINDOWS\system32\wininit.exe
2015-08-05 22:53:59 ----A---- C:\WINDOWS\system32\winhttp.dll
2015-08-05 22:53:59 ----A---- C:\WINDOWS\system32\windows.storage.dll
2015-08-05 22:53:59 ----A---- C:\WINDOWS\system32\Windows.Networking.Connectivity.dll
2015-08-05 22:53:59 ----A---- C:\WINDOWS\system32\Windows.Media.Import.dll
2015-08-05 22:53:59 ----A---- C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll
2015-08-05 22:53:59 ----A---- C:\WINDOWS\system32\Windows.Devices.Bluetooth.dll
2015-08-05 22:53:59 ----A---- C:\WINDOWS\system32\UIAutomationCore.dll
2015-08-05 22:53:59 ----A---- C:\WINDOWS\system32\twinapi.appcore.dll
2015-08-05 22:53:59 ----A---- C:\WINDOWS\system32\SearchIndexer.exe
2015-08-05 22:53:59 ----A---- C:\WINDOWS\system32\mssrch.dll
2015-08-05 22:53:59 ----A---- C:\WINDOWS\system32\mssprxy.dll
2015-08-05 22:53:59 ----A---- C:\WINDOWS\system32\msftedit.dll
2015-08-05 22:53:59 ----A---- C:\WINDOWS\system32\MrmCoreR.dll
2015-08-05 22:53:59 ----A---- C:\WINDOWS\system32\MessagingDataModel2.dll
2015-08-05 22:53:59 ----A---- C:\WINDOWS\system32\lsasrv.dll
2015-08-05 22:53:59 ----A---- C:\WINDOWS\system32\gdi32.dll
2015-08-05 22:53:59 ----A---- C:\WINDOWS\system32\EnterpriseModernAppMgmtCSP.dll
2015-08-05 22:53:59 ----A---- C:\WINDOWS\system32\dwmapi.dll
2015-08-05 22:53:59 ----A---- C:\WINDOWS\system32\drivers\usbser.sys
2015-08-05 22:53:59 ----A---- C:\WINDOWS\system32\drivers\usbhub.sys
2015-08-05 22:53:59 ----A---- C:\WINDOWS\system32\drivers\UcmUcsi.sys
2015-08-05 22:53:59 ----A---- C:\WINDOWS\system32\drivers\pci.sys
2015-08-05 22:53:59 ----A---- C:\WINDOWS\system32\drivers\cng.sys
2015-08-05 22:53:59 ----A---- C:\WINDOWS\system32\drivers\acpi.sys
2015-08-05 22:53:59 ----A---- C:\WINDOWS\system32\DisplayManager.dll
2015-08-05 22:53:59 ----A---- C:\WINDOWS\system32\CoreMessaging.dll
2015-08-05 22:53:59 ----A---- C:\WINDOWS\system32\cloudAP.dll
2015-08-05 22:53:59 ----A---- C:\WINDOWS\system32\ClipSVC.dll
2015-08-05 22:53:59 ----A---- C:\WINDOWS\system32\ci.dll
2015-08-05 22:53:59 ----A---- C:\WINDOWS\system32\AppContracts.dll
2015-08-05 22:53:59 ----A---- C:\WINDOWS\system32\actxprxy.dll
2015-08-05 22:39:08 ----D---- C:\WINDOWS\SYSWOW64\XPSViewer
2015-08-05 22:39:04 ----D---- C:\Program Files\Reference Assemblies
2015-08-05 22:39:04 ----D---- C:\Program Files\MSBuild
2015-08-05 22:39:04 ----D---- C:\Program Files (x86)\Reference Assemblies
2015-08-05 22:39:04 ----D---- C:\Program Files (x86)\MSBuild
2015-08-05 22:38:31 ----A---- C:\WINDOWS\SYSWOW64\TsWpfWrp.exe
2015-08-05 22:38:31 ----A---- C:\WINDOWS\SYSWOW64\PresentationNative_v0300.dll
2015-08-05 22:38:31 ----A---- C:\WINDOWS\SYSWOW64\PresentationCFFRasterizerNative_v0300.dll
2015-08-05 22:38:27 ----A---- C:\WINDOWS\system32\TsWpfWrp.exe
2015-08-05 22:38:27 ----A---- C:\WINDOWS\system32\PresentationNative_v0300.dll
2015-08-05 22:38:27 ----A---- C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2015-08-05 22:32:41 ----SHD---- C:\ProgramData\Šablony
2015-08-05 22:32:41 ----SHD---- C:\ProgramData\Plocha
2015-08-05 22:32:41 ----SHD---- C:\ProgramData\Nabídka Start
2015-08-05 22:32:41 ----SHD---- C:\ProgramData\Dokumenty
2015-08-05 22:32:41 ----SHD---- C:\ProgramData\Data aplikací
2015-08-05 22:32:40 ----SHD---- C:\Recovery
2015-08-05 22:30:09 ----A---- C:\WINDOWS\system32\emptyregdb.dat
2015-08-05 22:26:35 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2015-08-05 22:18:37 ----A---- C:\WINDOWS\SYSWOW64\PrintConfig.dll
2015-08-05 22:08:13 ----SD---- C:\Users\Pavel\AppData\Roaming\Microsoft
2015-08-05 22:05:24 ----D---- C:\WINDOWS\SYSWOW64\sda
2015-08-05 22:05:12 ----D---- C:\ProgramData\Conexant
2015-08-05 22:05:11 ----D---- C:\Program Files\CONEXANT
2015-08-05 22:05:06 ----D---- C:\ProgramData\NVIDIA
2015-08-05 22:05:02 ----A---- C:\WINDOWS\system32\nvvsvc.exe
2015-08-05 22:05:02 ----A---- C:\WINDOWS\system32\nvsvcr.dll
2015-08-05 22:05:02 ----A---- C:\WINDOWS\system32\nvsvc64.dll
2015-08-05 22:05:02 ----A---- C:\WINDOWS\system32\nvshext.dll
2015-08-05 22:05:02 ----A---- C:\WINDOWS\system32\nvmctray.dll
2015-08-05 22:05:02 ----A---- C:\WINDOWS\system32\nvcpl.dll
2015-08-05 22:05:02 ----A---- C:\WINDOWS\system32\nv3dappshextr.dll
2015-08-05 22:05:02 ----A---- C:\WINDOWS\system32\nv3dappshext.dll
2015-08-05 22:05:01 ----A---- C:\WINDOWS\SYSWOW64\oemdspif.dll
2015-08-05 22:04:51 ----D---- C:\ProgramData\NVIDIA Corporation
2015-08-05 22:04:38 ----D---- C:\Program Files\NVIDIA Corporation
2015-08-05 22:04:28 ----A---- C:\WINDOWS\system32\{EC94D02F-D200-4428-9531-05AF7F9799CB}.bat
2015-08-05 22:04:28 ----A---- C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2015-08-05 22:04:25 ----A---- C:\WINDOWS\SYSWOW64\OpenCL.DLL
2015-08-05 22:04:25 ----A---- C:\WINDOWS\system32\OpenCL.DLL
2015-08-05 22:03:50 ----D---- C:\Program Files\Intel
2015-08-05 22:03:13 ----D---- C:\Program Files\Synaptics
2015-08-05 22:01:29 ----D---- C:\WINDOWS\Prefetch
2015-08-02 11:28:53 ----A---- C:\WINDOWS\system32\aswBoot.exe
2015-08-02 11:28:19 ----A---- C:\WINDOWS\avastSS.scr
2015-07-23 23:04:46 ----D---- C:\Users\Pavel\AppData\Roaming\Malwarebytes
2015-07-23 23:04:34 ----D---- C:\Program Files (x86)\Malwarebytes' Anti-Malware
2015-07-23 22:56:36 ----SHD---- C:\$RECYCLE.BIN
2015-07-23 22:49:07 ----A---- C:\WINDOWS\zoek-delete.exe
2015-07-23 22:14:19 ----D---- C:\zoek_backup
2015-07-23 04:02:12 ----A---- C:\WINDOWS\SYSWOW64\nvwgf2um.dll
2015-07-23 04:02:12 ----A---- C:\WINDOWS\SYSWOW64\nvopencl.dll
2015-07-23 04:02:12 ----A---- C:\WINDOWS\SYSWOW64\nvoglv32.dll
2015-07-23 04:02:12 ----A---- C:\WINDOWS\SYSWOW64\nvinit.dll
2015-07-23 04:02:12 ----A---- C:\WINDOWS\SYSWOW64\NvIFROpenGL.dll
2015-07-23 04:02:12 ----A---- C:\WINDOWS\SYSWOW64\NvIFR.dll
2015-07-23 04:02:12 ----A---- C:\WINDOWS\SYSWOW64\NvFBC.dll
2015-07-23 04:02:12 ----A---- C:\WINDOWS\SYSWOW64\nvEncodeAPI.dll
2015-07-23 04:02:12 ----A---- C:\WINDOWS\SYSWOW64\nvEncMFTH264.dll
2015-07-23 04:02:12 ----A---- C:\WINDOWS\SYSWOW64\nvd3dum.dll
2015-07-23 04:02:12 ----A---- C:\WINDOWS\SYSWOW64\nvcuvid.dll
2015-07-23 04:02:12 ----A---- C:\WINDOWS\SYSWOW64\nvcuda.dll
2015-07-23 04:02:12 ----A---- C:\WINDOWS\SYSWOW64\nvcompiler.dll
2015-07-23 04:02:12 ----A---- C:\WINDOWS\SYSWOW64\nvapi.dll
2015-07-23 04:02:12 ----A---- C:\WINDOWS\system32\nvwgf2umx.dll
2015-07-23 04:02:12 ----A---- C:\WINDOWS\system32\nvopencl.dll
2015-07-23 04:02:12 ----A---- C:\WINDOWS\system32\nvoglv64.dll
2015-07-23 04:02:12 ----A---- C:\WINDOWS\system32\nvinitx.dll
2015-07-23 04:02:12 ----A---- C:\WINDOWS\system32\NvIFROpenGL.dll
2015-07-23 04:02:12 ----A---- C:\WINDOWS\system32\NvIFR64.dll
2015-07-23 04:02:12 ----A---- C:\WINDOWS\system32\NvFBC64.dll
2015-07-23 04:02:12 ----A---- C:\WINDOWS\system32\nvEncodeAPI64.dll
2015-07-23 04:02:12 ----A---- C:\WINDOWS\system32\nvEncMFTH264.dll
2015-07-23 04:02:12 ----A---- C:\WINDOWS\system32\nvdispgenco6435362.dll
2015-07-23 04:02:12 ----A---- C:\WINDOWS\system32\nvdispco6435362.dll
2015-07-23 04:02:12 ----A---- C:\WINDOWS\system32\nvd3dumx.dll
2015-07-23 04:02:12 ----A---- C:\WINDOWS\system32\nvcuvid.dll
2015-07-23 04:02:12 ----A---- C:\WINDOWS\system32\nvcuda.dll
2015-07-23 04:02:12 ----A---- C:\WINDOWS\system32\nvcompiler.dll
2015-07-23 04:02:12 ----A---- C:\WINDOWS\system32\nvapi64.dll
2015-07-23 04:02:12 ----A---- C:\WINDOWS\system32\drivers\nvlddmkm.sys

======List of files/folders modified in the last 1 month======

2015-08-21 15:47:44 ----RD---- C:\Program Files
2015-08-21 15:32:32 ----D---- C:\WINDOWS\Temp
2015-08-21 15:31:12 ----D---- C:\WINDOWS\system32\config
2015-08-21 15:28:19 ----D---- C:\WINDOWS\CbsTemp
2015-08-21 15:28:09 ----D---- C:\WINDOWS\system32\catroot2
2015-08-21 15:27:51 ----D---- C:\WINDOWS\WinSxS
2015-08-21 15:27:32 ----D---- C:\WINDOWS\system32\sru
2015-08-21 15:25:51 ----D---- C:\WINDOWS\System32
2015-08-21 15:25:50 ----D---- C:\WINDOWS\INF
2015-08-21 15:25:17 ----D---- C:\WINDOWS\system32\Tasks
2015-08-19 08:21:40 ----D---- C:\WINDOWS\AppReadiness
2015-08-19 08:21:39 ----HD---- C:\Program Files\WindowsApps
2015-08-18 19:12:25 ----D---- C:\WINDOWS\system32\DriverStore
2015-08-18 17:41:35 ----D---- C:\WINDOWS\Microsoft.NET
2015-08-18 16:50:02 ----D---- C:\WINDOWS\system32\drivers
2015-08-18 16:49:22 ----D---- C:\WINDOWS\system32\CatRoot
2015-08-18 16:49:03 ----SHD---- C:\WINDOWS\Installer
2015-08-18 16:49:01 ----RD---- C:\Program Files (x86)
2015-08-18 16:48:32 ----HD---- C:\ProgramData
2015-08-18 09:45:04 ----SHD---- C:\System Volume Information
2015-08-17 16:25:31 ----RD---- C:\WINDOWS\assembly
2015-08-17 16:13:06 ----D---- C:\Users\Pavel\AppData\Roaming\Dropbox
2015-08-17 16:09:10 ----D---- C:\WINDOWS\SysWOW64
2015-08-17 16:09:09 ----D---- C:\WINDOWS\OCR
2015-08-13 04:43:43 ----D---- C:\WINDOWS\rescache
2015-08-13 03:31:03 ----D---- C:\WINDOWS\SYSWOW64\en-US
2015-08-13 03:31:03 ----D---- C:\WINDOWS\SYSWOW64\cs-CZ
2015-08-13 03:31:03 ----D---- C:\WINDOWS\system32\WinBioPlugIns
2015-08-13 03:31:02 ----D---- C:\WINDOWS\system32\oobe
2015-08-13 03:31:02 ----D---- C:\WINDOWS\system32\en-US
2015-08-13 03:31:02 ----D---- C:\WINDOWS\system32\drivers\en-US
2015-08-13 03:31:02 ----D---- C:\WINDOWS\system32\drivers\cs-CZ
2015-08-13 03:31:02 ----D---- C:\WINDOWS\system32\cs-CZ
2015-08-13 03:31:02 ----D---- C:\WINDOWS\system32\appraiser
2015-08-13 03:31:02 ----D---- C:\WINDOWS\AppPatch
2015-08-13 03:31:02 ----D---- C:\Windows
2015-08-12 23:05:34 ----D---- C:\WINDOWS\system32\MRT
2015-08-12 22:59:08 ----A---- C:\WINDOWS\system32\MRT.exe
2015-08-09 20:25:15 ----D---- C:\Program Files (x86)\FastShare
2015-08-09 14:01:38 ----D---- C:\WINDOWS\Logs
2015-08-09 13:34:17 ----D---- C:\WINDOWS\debug
2015-08-09 13:27:16 ----D---- C:\WINDOWS\system32\drivers\UMDF
2015-08-09 13:27:02 ----D---- C:\Users\Pavel\AppData\Roaming\vlc
2015-08-08 17:38:46 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe
2015-08-06 21:46:45 ----D---- C:\WINDOWS\system32\WDI
2015-08-06 21:38:35 ----D---- C:\WINDOWS\Provisioning
2015-08-06 21:38:35 ----D---- C:\Program Files\Internet Explorer
2015-08-06 21:38:35 ----D---- C:\Program Files (x86)\Internet Explorer
2015-08-06 21:26:57 ----D---- C:\WINDOWS\system32\restore
2015-08-06 05:45:42 ----D---- C:\WINDOWS\appcompat
2015-08-05 22:57:41 ----RD---- C:\WINDOWS\DevicesFlow
2015-08-05 22:54:47 ----D---- C:\WINDOWS\SYSWOW64\oobe
2015-08-05 22:54:47 ----D---- C:\WINDOWS\SYSWOW64\Dism
2015-08-05 22:54:47 ----D---- C:\WINDOWS\system32\SystemResetPlatform
2015-08-05 22:54:47 ----D---- C:\WINDOWS\system32\Dism
2015-08-05 22:54:47 ----D---- C:\WINDOWS\system32\Boot
2015-08-05 22:49:43 ----SD---- C:\WINDOWS\SYSWOW64\F12
2015-08-05 22:49:43 ----SD---- C:\WINDOWS\SYSWOW64\DiagSvcs
2015-08-05 22:49:43 ----SD---- C:\WINDOWS\system32\F12
2015-08-05 22:49:43 ----D---- C:\WINDOWS\SYSWOW64\winrm
2015-08-05 22:49:43 ----D---- C:\WINDOWS\SYSWOW64\WCN
2015-08-05 22:49:43 ----D---- C:\WINDOWS\SYSWOW64\slmgr
2015-08-05 22:49:43 ----D---- C:\WINDOWS\SYSWOW64\Printing_Admin_Scripts
2015-08-05 22:49:43 ----D---- C:\WINDOWS\SYSWOW64\en
2015-08-05 22:49:43 ----D---- C:\WINDOWS\SYSWOW64\drivers\en-US
2015-08-05 22:49:43 ----D---- C:\WINDOWS\system32\winrm
2015-08-05 22:49:43 ----D---- C:\WINDOWS\system32\WCN
2015-08-05 22:49:43 ----D---- C:\WINDOWS\system32\slmgr
2015-08-05 22:49:43 ----D---- C:\WINDOWS\system32\Printing_Admin_Scripts
2015-08-05 22:49:43 ----D---- C:\WINDOWS\system32\migwiz
2015-08-05 22:49:36 ----SD---- C:\WINDOWS\system32\DiagSvcs
2015-08-05 22:49:36 ----D---- C:\WINDOWS\system32\en
2015-08-05 22:49:36 ----D---- C:\WINDOWS\servicing
2015-08-05 22:49:36 ----D---- C:\WINDOWS\en-US
2015-08-05 22:49:36 ----D---- C:\Program Files\Windows Photo Viewer
2015-08-05 22:49:36 ----D---- C:\Program Files\Windows Media Player
2015-08-05 22:49:36 ----D---- C:\Program Files\Windows Journal
2015-08-05 22:49:36 ----D---- C:\Program Files\Windows Defender
2015-08-05 22:49:36 ----D---- C:\Program Files (x86)\Windows Photo Viewer
2015-08-05 22:49:36 ----D---- C:\Program Files (x86)\Windows Media Player
2015-08-05 22:49:36 ----D---- C:\Program Files (x86)\Windows Defender
2015-08-05 22:39:08 ----D---- C:\WINDOWS\SYSWOW64\MUI
2015-08-05 22:39:08 ----D---- C:\WINDOWS\system32\MUI
2015-08-05 22:36:59 ----RD---- C:\WINDOWS\PurchaseDialog
2015-08-05 22:36:58 ----RD---- C:\WINDOWS\PrintDialog
2015-08-05 22:36:57 ----RD---- C:\WINDOWS\MiracastView
2015-08-05 22:36:18 ----RD---- C:\WINDOWS\ImmersiveControlPanel
2015-08-05 22:35:39 ----HD---- C:\Intel
2015-08-05 22:32:18 ----D---- C:\WINDOWS\SoftwareDistribution
2015-08-05 22:30:41 ----D---- C:\WINDOWS\Registration
2015-08-05 22:26:36 ----D---- C:\WINDOWS\system32\LogFiles
2015-08-05 22:26:27 ----D---- C:\WINDOWS\system32\drivers\etc
2015-08-05 22:23:16 ----D---- C:\WINDOWS\system32\wbem
2015-08-05 22:22:11 ----A---- C:\WINDOWS\SYSWOW64\PerfStringBackup.INI
2015-08-05 22:16:31 ----D---- C:\WINDOWS\SYSWOW64\drivers
2015-08-05 22:16:29 ----RSD---- C:\WINDOWS\Fonts
2015-08-05 22:16:27 ----D---- C:\ProgramData\regid.1991-06.com.microsoft
2015-08-05 22:16:27 ----D---- C:\ProgramData\regid.1986-12.com.adobe
2015-08-05 22:16:22 ----D---- C:\WINDOWS\Tasks
2015-08-05 22:16:22 ----D---- C:\Program Files\Dolby Digital Plus
2015-08-05 22:11:35 ----D---- C:\WINDOWS\SYSWOW64\zh-TW
2015-08-05 22:11:35 ----D---- C:\WINDOWS\SYSWOW64\zh-HK
2015-08-05 22:11:35 ----D---- C:\WINDOWS\SYSWOW64\zh-CN
2015-08-05 22:11:35 ----D---- C:\WINDOWS\SYSWOW64\uk-UA
2015-08-05 22:11:35 ----D---- C:\WINDOWS\SYSWOW64\tr-TR
2015-08-05 22:11:35 ----D---- C:\WINDOWS\SYSWOW64\th-TH
2015-08-05 22:11:34 ----D---- C:\WINDOWS\SYSWOW64\sv-SE
2015-08-05 22:11:34 ----D---- C:\WINDOWS\SYSWOW64\sr-Latn-RS
2015-08-05 22:11:34 ----D---- C:\WINDOWS\SYSWOW64\sl-SI
2015-08-05 22:11:34 ----D---- C:\WINDOWS\SYSWOW64\sk-SK
2015-08-05 22:11:34 ----D---- C:\WINDOWS\SYSWOW64\ru-RU
2015-08-05 22:11:34 ----D---- C:\WINDOWS\SYSWOW64\ro-RO
2015-08-05 22:11:34 ----D---- C:\WINDOWS\SYSWOW64\pt-PT
2015-08-05 22:11:34 ----D---- C:\WINDOWS\SYSWOW64\pt-BR
2015-08-05 22:11:34 ----D---- C:\WINDOWS\SYSWOW64\pl-PL
2015-08-05 22:11:34 ----D---- C:\WINDOWS\SYSWOW64\nl-NL
2015-08-05 22:11:34 ----D---- C:\WINDOWS\SYSWOW64\nb-NO
2015-08-05 22:11:34 ----D---- C:\WINDOWS\SYSWOW64\lv-LV
2015-08-05 22:11:34 ----D---- C:\WINDOWS\SYSWOW64\lt-LT
2015-08-05 22:11:33 ----D---- C:\WINDOWS\SYSWOW64\ko-KR
2015-08-05 22:11:33 ----D---- C:\WINDOWS\SYSWOW64\ja-JP
2015-08-05 22:11:33 ----D---- C:\WINDOWS\SYSWOW64\it-IT
2015-08-05 22:11:32 ----D---- C:\WINDOWS\SYSWOW64\hu-HU
2015-08-05 22:11:32 ----D---- C:\WINDOWS\SYSWOW64\hr-HR
2015-08-05 22:11:32 ----D---- C:\WINDOWS\SYSWOW64\he-IL
2015-08-05 22:11:31 ----D---- C:\WINDOWS\SYSWOW64\fr-FR
2015-08-05 22:11:31 ----D---- C:\WINDOWS\SYSWOW64\fi-FI
2015-08-05 22:11:31 ----D---- C:\WINDOWS\SYSWOW64\et-EE
2015-08-05 22:11:31 ----D---- C:\WINDOWS\SYSWOW64\es-ES
2015-08-05 22:11:29 ----D---- C:\WINDOWS\SYSWOW64\en-GB
2015-08-05 22:11:28 ----D---- C:\WINDOWS\SYSWOW64\el-GR
2015-08-05 22:11:27 ----D---- C:\WINDOWS\SYSWOW64\de-DE
2015-08-05 22:11:27 ----D---- C:\WINDOWS\SYSWOW64\da-DK
2015-08-05 22:11:27 ----D---- C:\WINDOWS\SYSWOW64\bg-BG
2015-08-05 22:11:27 ----D---- C:\WINDOWS\SYSWOW64\ar-SA
2015-08-05 22:11:25 ----HD---- C:\WINDOWS\system32\WLANProfiles
2015-08-05 22:11:25 ----D---- C:\WINDOWS\system32\zh-TW
2015-08-05 22:11:25 ----D---- C:\WINDOWS\system32\zh-HK
2015-08-05 22:11:25 ----D---- C:\WINDOWS\system32\zh-CN
2015-08-05 22:11:24 ----D---- C:\WINDOWS\system32\WindowsInternal.Inbox.Shared
2015-08-05 22:11:24 ----D---- C:\WINDOWS\system32\WindowsInternal.Inbox.Media.Shared
2015-08-05 22:11:24 ----D---- C:\WINDOWS\system32\uk-UA
2015-08-05 22:11:24 ----D---- C:\WINDOWS\system32\tr-TR
2015-08-05 22:11:24 ----D---- C:\WINDOWS\system32\th-TH
2015-08-05 22:11:24 ----D---- C:\WINDOWS\system32\sv-SE
2015-08-05 22:11:24 ----D---- C:\WINDOWS\system32\sr-Latn-RS
2015-08-05 22:11:24 ----D---- C:\WINDOWS\system32\spool
2015-08-05 22:11:23 ----D---- C:\WINDOWS\system32\sl-SI
2015-08-05 22:11:23 ----D---- C:\WINDOWS\system32\sk-SK
2015-08-05 22:11:23 ----D---- C:\WINDOWS\system32\ru-RU
2015-08-05 22:11:23 ----D---- C:\WINDOWS\system32\ro-RO
2015-08-05 22:11:23 ----D---- C:\WINDOWS\system32\pt-PT
2015-08-05 22:11:22 ----D---- C:\WINDOWS\system32\pt-BR
2015-08-05 22:11:22 ----D---- C:\WINDOWS\system32\pl-PL
2015-08-05 22:11:21 ----D---- C:\WINDOWS\system32\nl-NL
2015-08-05 22:11:21 ----D---- C:\WINDOWS\system32\nb-NO
2015-08-05 22:11:21 ----D---- C:\WINDOWS\system32\migration
2015-08-05 22:11:21 ----D---- C:\WINDOWS\system32\lv-LV
2015-08-05 22:11:21 ----D---- C:\WINDOWS\system32\lt-LT
2015-08-05 22:11:21 ----D---- C:\WINDOWS\system32\ko-KR
2015-08-05 22:11:21 ----D---- C:\WINDOWS\system32\ja-JP
2015-08-05 22:11:21 ----D---- C:\WINDOWS\system32\it-IT
2015-08-05 22:11:21 ----D---- C:\WINDOWS\system32\InputMethod
2015-08-05 22:11:21 ----D---- C:\WINDOWS\system32\hu-HU
2015-08-05 22:11:21 ----D---- C:\WINDOWS\system32\hr-HR
2015-08-05 22:11:21 ----D---- C:\WINDOWS\system32\he-IL
2015-08-05 22:11:21 ----D---- C:\WINDOWS\system32\fr-FR
2015-08-05 22:11:21 ----D---- C:\WINDOWS\system32\fi-FI
2015-08-05 22:11:20 ----D---- C:\WINDOWS\system32\et-EE
2015-08-05 22:11:20 ----D---- C:\WINDOWS\system32\es-ES
2015-08-05 22:11:20 ----D---- C:\WINDOWS\system32\en-GB
2015-08-05 22:11:20 ----D---- C:\WINDOWS\system32\el-GR
2015-08-05 22:11:19 ----D---- C:\WINDOWS\system32\de-DE
2015-08-05 22:11:19 ----D---- C:\WINDOWS\system32\da-DK
2015-08-05 22:10:52 ----HD---- C:\WINDOWS\system32\CanonMF Uninstaller Information
2015-08-05 22:10:52 ----D---- C:\WINDOWS\system32\bg-BG
2015-08-05 22:10:52 ----D---- C:\WINDOWS\system32\ar-SA
2015-08-05 22:10:50 ----D---- C:\WINDOWS\MediaViewer
2015-08-05 22:10:50 ----D---- C:\WINDOWS\LiveKernelReports
2015-08-05 22:10:45 ----D---- C:\WINDOWS\InputMethod
2015-08-05 22:10:40 ----SD---- C:\WINDOWS\Downloaded Program Files
2015-08-05 22:10:40 ----D---- C:\WINDOWS\ADFS
2015-08-05 22:10:39 ----RD---- C:\Users
2015-08-05 22:10:37 ----SD---- C:\ProgramData\Microsoft
2015-08-05 22:10:26 ----D---- C:\ProgramData\Lenovo
2015-08-05 22:10:25 ----D---- C:\Program Files (x86)\Windows Mail
2015-08-05 22:10:24 ----D---- C:\Program Files (x86)\Microsoft.NET
2015-08-05 22:10:23 ----D---- C:\Program Files (x86)\Lenovo
2015-08-05 22:10:22 ----D---- C:\Program Files (x86)\Intel
2015-08-05 22:10:20 ----D---- C:\Program Files (x86)\Common Files
2015-08-05 22:10:17 ----D---- C:\Program Files\Windows Mail
2015-08-05 22:10:16 ----D---- C:\Program Files\lenovo
2015-08-05 22:10:12 ----D---- C:\Program Files\Common Files\microsoft shared
2015-08-05 22:10:12 ----D---- C:\Program Files\Common Files
2015-08-05 22:09:41 ----D---- C:\WINDOWS\system32\Recovery
2015-08-05 22:09:40 ----D---- C:\WINDOWS\system32\CodeIntegrity
2015-08-05 22:07:12 ----D---- C:\WINDOWS\system32\Sysprep
2015-08-05 22:05:28 ----D---- C:\WINDOWS\twain_32
2015-08-05 22:05:00 ----D---- C:\WINDOWS\Help
2015-08-05 21:24:06 ----HD---- C:\$Windows.~BT
2015-08-04 21:57:12 ----D---- C:\ProgramData\VMware
2015-07-23 23:04:35 ----D---- C:\ProgramData\Malwarebytes
2015-07-23 22:57:08 ----D---- C:\AdwCleaner
2015-07-23 21:19:04 ----D---- C:\Program Files\Microsoft Office 15
2015-07-23 21:17:12 ----RD---- C:\WINDOWS\ToastData
2015-07-22 09:57:22 ----D---- C:\Users\Pavel\AppData\Roaming\Skype
2015-07-22 08:36:50 ----RD---- C:\Program Files (x86)\Skype
2015-07-22 08:35:47 ----D---- C:\ProgramData\Skype

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 aswRvrt;avast! Revert; C:\WINDOWS\system32\drivers\aswRvrt.sys [2015-08-02 65224]
R0 aswVmm;avast! VM Monitor; C:\WINDOWS\system32\drivers\aswVmm.sys [2015-08-02 274808]
R0 iaStorA;iaStorA; C:\WINDOWS\System32\drivers\iaStorA.sys [2013-08-07 644968]
R1 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr2.sys [2015-08-02 93528]
R1 aswSnx;aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [2015-08-17 1048344]
R1 aswSP;aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [2015-08-02 447944]
R1 FileCrypt;@%systemroot%\system32\drivers\filecrypt.sys,-100; C:\WINDOWS\system32\drivers\filecrypt.sys [2015-07-10 83968]
R1 GpuEnergyDrv;@%SystemRoot%\system32\drivers\gpuenergydrv.sys,-100; C:\WINDOWS\System32\drivers\gpuenergydrv.sys [2015-07-10 8192]
R2 aswHwid;avast! HardwareID; C:\WINDOWS\system32\drivers\aswHwid.sys [2015-08-02 28656]
R2 aswMonFlt;aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [2015-08-02 90968]
R2 aswStm;aswStm; C:\WINDOWS\system32\drivers\aswStm.sys [2015-08-02 150672]
R2 hcmon;VMware hcmon; \??\C:\windows\system32\drivers\hcmon.sys [2015-01-07 55488]
R2 MMCSS;@%systemroot%\system32\drivers\mmcss.sys,-100; C:\WINDOWS\system32\drivers\mmcss.sys [2015-07-10 48128]
R2 storqosflt;@%SystemRoot%\System32\drivers\storqosflt.sys,-101; C:\WINDOWS\system32\drivers\storqosflt.sys [2015-07-10 61952]
R3 ACPIVPC;@oem42.inf,%ACPIVPC.SvcDesc%;Lenovo Virtual Power Controller Driver; C:\WINDOWS\System32\drivers\AcpiVpc.sys [2014-10-18 35600]
R3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Služba Bluetooth Enumerator; C:\WINDOWS\system32\DRIVERS\BthEnum.sys [2015-07-10 105984]
R3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Ovladač úspory energie technologie Bluetooth; C:\WINDOWS\system32\DRIVERS\BthLEEnum.sys [2015-07-10 237568]
R3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Bluetooth Device (Personal Area Network); C:\WINDOWS\System32\drivers\bthpan.sys [2015-07-10 128512]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Ovladač rozhraní USB radiostanice Bluetooth; C:\WINDOWS\System32\Drivers\BTHUSB.sys [2015-07-10 84992]
R3 CnxtHdAudService;@oem120.inf,%UAAFunctionDriverForHdAudio.SvcDesc%;Conexant UAA Function Driver for High Definition Audio Service; C:\WINDOWS\system32\drivers\CHDRT64.sys [2015-05-19 1543912]
R3 ibtusb;@oem111.inf,%ibtusb.SVCDESC_IBT%;Intel(R) Wireless Bluetooth(R); C:\WINDOWS\system32\DRIVERS\ibtusb.sys [2015-07-14 263952]
R3 igfx;igfx; C:\WINDOWS\system32\DRIVERS\igdkmd64.sys [2015-07-18 6389688]
R3 iwdbus;@oem54.inf,%iwdbus.SVCDESC%;IWD Bus Enumerator; C:\WINDOWS\System32\drivers\iwdbus.sys [2013-12-15 27032]
R3 MBAMProtector;MBAMProtector; \??\C:\windows\system32\drivers\mbam.sys [2013-04-04 25928]
R3 MEIx64;@oem104.inf,%TEE_SvcDesc%;Intel(R) Management Engine Interface ; C:\WINDOWS\system32\DRIVERS\TeeDriverx64.sys [2013-09-16 99288]
R3 NETwNb64;___ Intel(R) Wireless Adapter Driver for Windows 8.1 - 64 Bit; C:\WINDOWS\System32\drivers\Netwbw02.sys [2015-07-10 3496216]
R3 nvlddmkm;nvlddmkm; C:\WINDOWS\system32\DRIVERS\nvlddmkm.sys [2015-07-23 11142984]
R3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Zařízení Bluetooth (RFCOMM protokol TDI); C:\WINDOWS\System32\drivers\rfcomm.sys [2015-07-10 167936]
R3 rt640x64;@oem113.inf,%rt640.Service.DispName%;Realtek RT640 NT Driver; C:\WINDOWS\System32\drivers\rt640x64.sys [2015-06-18 895256]
R3 RTSUER;@oem117.inf,%RtsUER%;Realtek USB Card Reader - UER; C:\WINDOWS\system32\Drivers\RtsUer.sys [2015-07-03 410880]
R3 rtsuvc;@oem116.inf,%rtsuvc.DeviceDesc%;Lenovo EasyCamera; C:\WINDOWS\system32\DRIVERS\rtsuvc.sys [2015-06-16 3068160]
R3 SmbDrvI;SmbDrvI; C:\WINDOWS\system32\DRIVERS\Smb_driver_Intel.sys [2015-06-03 42696]
R3 SynTP;@oem105.inf,%SynTP.SvcDesc%;Synaptics TouchPad Driver; C:\WINDOWS\system32\DRIVERS\SynTP.sys [2015-06-03 613576]
S0 LSI_SAS2i;LSI_SAS2i; C:\WINDOWS\System32\drivers\lsi_sas2i.sys [2015-07-10 104800]
S0 LSI_SAS3i;LSI_SAS3i; C:\WINDOWS\System32\drivers\lsi_sas3i.sys [2015-07-10 99168]
S0 percsas2i;percsas2i; C:\WINDOWS\System32\drivers\percsas2i.sys [2015-07-10 58208]
S0 percsas3i;percsas3i; C:\WINDOWS\System32\drivers\percsas3i.sys [2015-07-10 58720]
S0 storufs;@storufs.inf,%UfsServiceDesc%;Microsoft Universal Flash Storage (UFS) Driver; C:\WINDOWS\System32\drivers\storufs.sys [2015-07-10 40288]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Ovladač portu Bluetooth; C:\WINDOWS\System32\Drivers\BTHport.sys [2015-07-10 928768]
S3 buttonconverter;@buttonconverter.inf,%btnconv.SvcDesc%;Service for Portable Device Control devices; C:\WINDOWS\System32\drivers\buttonconverter.sys [2015-07-10 32256]
S3 CapImg;@capimg.inf,%CapImgHid_Service%;HID driver for CapImg touch screen; C:\WINDOWS\System32\drivers\capimg.sys [2015-07-10 116736]
S3 FaxLffv2;Companion Suite Pro LL2 Modem Driver; C:\WINDOWS\System32\Drivers\FaxLffv2.sys [2008-06-18 31232]
S3 fcvsc;fcvsc; C:\WINDOWS\System32\drivers\fcvsc.sys [2015-07-10 31232]
S3 FnetUsbDrv;FnetUsbDrv; C:\WINDOWS\System32\drivers\fnetusb64.sys [2015-04-02 17280]
S3 FTDIBUS;@oem56.inf,%SvcDesc%;USB Serial Converter Driver; C:\WINDOWS\system32\drivers\ftdibus.sys [2014-09-10 98160]
S3 FTSER2K;@oem61.inf,%SvcDesc%;USB Serial Port Driver; C:\WINDOWS\system32\drivers\ftser2k.sys [2014-09-10 79872]
S3 genericusbfn;@genericusbfn.inf,%genericusbfn.ServiceName%;Generic USB Function Class; C:\WINDOWS\System32\drivers\genericusbfn.sys [2015-07-10 20992]
S3 hidinterrupt;@hidinterrupt.inf,%HID.SvcDesc%;Common Driver for HID Buttons implemented with interrupts; C:\WINDOWS\System32\drivers\hidinterrupt.sys [2015-07-10 50016]
S3 ibbus;@mlx4_bus.inf,%Ibbus.ServiceDesc%;Mellanox InfiniBand Bus/AL (Filter Driver); C:\WINDOWS\System32\drivers\ibbus.sys [2015-07-10 424800]
S3 intaud_WaveExtensible;Intel WiDi Audio Device; C:\WINDOWS\system32\drivers\intelaud.sys [2013-12-15 39320]
S3 IntcDAud;@oem48.inf,%IntcDAud.SvcDesc%;Intel(R) Display Audio; C:\WINDOWS\system32\DRIVERS\IntcDAud.sys [2013-12-18 450520]
S3 IoQos;@%SystemRoot%\system32\drivers\ioqos.sys,-100; C:\WINDOWS\system32\drivers\ioqos.sys [2015-07-10 26624]
S3 mlx4_bus;@mlx4_bus.inf,%MLX4BUS.ServiceDesc%;Mellanox ConnectX Bus Enumerator; C:\WINDOWS\System32\drivers\mlx4_bus.sys [2015-07-10 705376]
S3 ndfltr;@mlx4_bus.inf,%ndfltr.ServiceDesc%;NetworkDirect Service; C:\WINDOWS\System32\drivers\ndfltr.sys [2015-07-10 76128]
S3 ReFSv1;ReFSv1; C:\WINDOWS\system32\drivers\ReFSv1.sys [2015-08-05 934752]
S3 UcmCx0101;USB Connector Manager KMDF Class Extension; C:\WINDOWS\System32\Drivers\UcmCx.sys [2015-07-10 61952]
S3 UcmUcsi;@ucmucsi.inf,%UcmUcsi.ServiceName%;USB Connector Manager UCSI Client; C:\WINDOWS\System32\drivers\UcmUcsi.sys [2015-08-05 46080]
S3 UdeCx;USB Device Emulation Support Library; C:\WINDOWS\system32\drivers\udecx.sys [2015-07-10 44032]
S3 Ufx01000;USB Function Class Extension; C:\WINDOWS\system32\drivers\ufx01000.sys [2015-07-10 245088]
S3 UfxChipidea;@ufxchipidea.inf,%UfxChipidea.ServiceName%;USB Chipidea Controller; C:\WINDOWS\System32\drivers\UfxChipidea.sys [2015-07-10 94048]
S3 ufxsynopsys;@ufxsynopsys.inf,%ufxsynopsys.ServiceName%;USB Synopsys Controller; C:\WINDOWS\System32\drivers\ufxsynopsys.sys [2015-07-10 127840]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2015-07-07 82128]
R2 Autodesk Content Service;Autodesk Content Service; C:\Program Files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe [2012-12-13 12288]
R2 avast! Antivirus;Avast Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2015-08-02 146600]
R2 ClickToRunSvc;Služba Microsoft Office ClickToRun; C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe [2015-07-01 2753720]
R2 CoreMessagingRegistrar;@%SystemRoot%\system32\coremessaging.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
R2 CxAudMsg;Conexant Audio Message Service; C:\windows\system32\CxAudMsg64.exe [2013-07-25 206552]
R2 DiagTrack;@%SystemRoot%\system32\diagtrack.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]
R2 FUSServices;Session Launcher Service; C:\windows\SysWOW64\FUSServices.exe [2010-01-08 10752]
R2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2013-08-07 15720]
R2 igfxCUIService2.0.0.0;Intel(R) HD Graphics Control Panel Service; C:\WINDOWS\system32\igfxCUIService.exe [2015-07-18 351120]
R2 IntegralConnServer;Integral Connection Service; C:\Program Files (x86)\Seconet\Integral\ICSServer\IntegralConnSrv.exe [2011-05-31 1084024]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [2013-08-27 747520]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2013-09-16 169432]
R2 Lenovo System Agent Service;Lenovo System Agent Service; C:\Program Files\Lenovo\iMController\SystemAgentService.exe [2014-05-22 584960]
R2 LenovoWiFiHotspotSvr;Lenovo WiFiHotspot Service; C:\Windows\System32\LenovoWiFiHotspotSvr.exe [2014-10-18 198192]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2013-09-16 390616]
R2 MaxthonUpdateSvc;Maxthon Core Update Service; C:\Program Files (x86)\Maxthon\Modules\Service\Update\MaxthonUpdateSvc.exe [2015-07-06 1872152]
R2 MBAMService;MBAMService; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [2013-04-04 701512]
R2 MBAMScheduler;MBAMScheduler; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [2013-04-04 418376]
R2 MDM;Machine Debug Manager; C:\Program Files (x86)\Common Files\Microsoft Shared\VS7DEBUG\mdm.exe [2006-10-26 335872]
R2 MSSQL$SQLEXPRESS;SQL Server (SQLEXPRESS); c:\Program Files (x86)\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe [2008-11-24 29263712]
R2 nvsvc;NVIDIA Display Driver Service; C:\WINDOWS\system32\nvvsvc.exe [2015-07-23 937800]
R2 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [2013-10-18 1914656]
R2 OneSyncSvc_Session1;Hostitel synchronizace_Session1; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
R2 RichVideo64;Cyberlink RichVideo64 Service(CRVS); C:\Program Files\CyberLink\Shared files\RichVideo64.exe [2012-04-24 390632]
R2 SQLBrowser;SQL Server Browser; c:\Program Files (x86)\Microsoft SQL Server\90\Shared\sqlbrowser.exe [2008-11-24 239968]
R2 SQLWriter;SQL Server VSS Writer; c:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe [2008-11-25 153952]
R2 SynTPEnhService;SynTPEnh Caller Service; C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [2015-06-03 249032]
R2 TeamViewer;TeamViewer 10; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [2015-04-17 5448976]
R2 tiledatamodelsvc;@%SystemRoot%\system32\tileobjserver.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
R3 ClipSVC;@%SystemRoot%\system32\ClipSVC.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]
R3 DsSvc;@%SystemRoot%\system32\dssvc.dll,-10003; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]
R3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2015-06-17 43696]
R3 LicenseManager;@%SystemRoot%\system32\licensemanagersvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]
R3 PimIndexMaintenanceSvc_Session1;Data kontaktů_Session1; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
R3 StateRepository;@%SystemRoot%\system32\windows.staterepository.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S2 dmwappushservice;@%SystemRoot%\system32\dmwappushsvc.dll,-200; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S2 DoSvc;@%systemroot%\system32\dosvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-04-26 107848]
S2 MapsBroker;@%SystemRoot%\System32\moshost.dll,-100; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]
S2 OneSyncSvc;@%SystemRoot%\system32\APHostRes.dll,-10002; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2015-06-25 327296]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-08-12 269000]
S3 AJRouter;@%SystemRoot%\system32\AJRouter.dll,-2; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]
S3 CDPSvc;@%SystemRoot%\system32\cdpsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S3 cphs;Intel(R) Content Protection HECI Service; C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe [2015-07-18 283024]
S3 DcpSvc;@%SystemRoot%\system32\dcpsvc.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]
S3 DevQueryBroker;@%SystemRoot%\system32\DevQueryBroker.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S3 diagnosticshub.standardcollector.service;@%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000; C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe [2015-07-10 27136]
S3 DmEnrollmentSvc;@%systemroot%\system32\Windows.Internal.Management.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S3 embeddedmode;@%SystemRoot%\system32\embeddedmodesvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]
S3 EntAppSvc;@EnterpriseAppMgmtSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S3 FlexNet Licensing Service 64;FlexNet Licensing Service 64; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe [2015-05-17 1471352]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-04-26 107848]
S3 icssvc;@%SystemRoot%\System32\tetheringservice.dll,-4097; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S3 Intel(R) Capability Licensing Service TCP IP Interface;Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [2013-08-27 828376]
S3 Lenovo EasyPlus Hotspot;Lenovo EasyPlus Hotspot; C:\Program Files (x86)\Common Files\lenovo\easyplussdk\bin\EPHotspot64.exe [2014-06-03 533760]
S3 NetSetupSvc;@%SystemRoot%\system32\NetSetupSvc.dll,-3; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]
S3 NgcCtnrSvc;@%SystemRoot%\System32\NgcCtnrSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S3 NgcSvc;@%SystemRoot%\System32\ngcsvc.dll,-100; C:\WINDOWS\system32\lsass.exe [2015-07-10 56344]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2015-04-28 150600]
S3 PimIndexMaintenanceSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-15001; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S3 RetailDemo;@%SystemRoot%\System32\RDXService.dll,-256; C:\WINDOWS\System32\svchost.exe [2015-07-10 39856]
S3 SensorDataService;@%SystemRoot%\system32\SensorDataService.exe,-101; C:\WINDOWS\System32\SensorDataService.exe [2015-08-05 1031680]
S3 SensorService;@%SystemRoot%\System32\sensorservice.dll,-1000; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S3 SmsRouter;@%SystemRoot%\System32\SmsRouterSvc.dll,-10001; C:\WINDOWS\system32\svchost.exe [2015-07-10 39856]
S4 MSSQLServerADHelper;SQL Server Active Directory Helper; c:\Program Files (x86)\Microsoft SQL Server\90\Shared\sqladhlp90.exe [2008-11-24 45408]

-----------------EOF-----------------

Uživatelský avatar
Roli
VIP
VIP
Příspěvky: 13399
Registrován: 26 lis 2006 13:37
Bydliště: ČR

Re: Prosím o kontrolu - vyskajující okna CHROME

#3 Příspěvek od Roli »

Zdravím, pokud máš zapnutou synchronizaci raději postupně pročistíme oba.


Stáhni a ulož na plochu AdwCleaner,

ukonči všechny programy včetně prohlížeče a dvojklikem jej spusť,

objeví se okno kde vlevo nahoře klikni na Scan.

Po dokončení skenu klikni na Clean,

proběhne restart PC kdy dojde ke smazání nepořádku.

Po té mi sem zkopíruj Report.


Pak použij Mbam z mého podpisu a dej mi sem z něj log po smazání.
| Rsit | Mbam | AVPTool | Cure It |

O víkendu odpočívám :all_coholic:

Smouke
Návštěvník
Návštěvník
Příspěvky: 11
Registrován: 21 srp 2015 14:52

Re: Prosím o kontrolu - vyskajující okna CHROME

#4 Příspěvek od Smouke »

# AdwCleaner v5.003 - Logfile created 25/08/2015 at 11:39:17
# Updated 20/08/2015 by Xplode
# Database : 2015-08-23.3 [Server]
# Operating system : Windows 10 Home (x64)
# Username : Pavel - PAVEL-PC
# Running from : C:\Users\Pavel\Desktop\adwcleaner_5.003.exe
# Option : Cleaning

***** [ Services ] *****


***** [ Folders ] *****

[-] Folder Deleted : C:\Users\Pavel\AppData\Local\PackageAware

***** [ Files ] *****


***** [ Shortcuts ] *****


***** [ Scheduled tasks ] *****


***** [ Registry ] *****

[-] Key Deleted : HKLM\SOFTWARE\CLASSES\VISUALDISCOVERYLIB.WFPCONTROLLER.1
[-] Key Deleted : HKLM\SOFTWARE\CLASSES\VISUALDISCOVERYLIB.WFPCONTROLLER
[-] Key Deleted : HKLM\SOFTWARE\CLASSES\VISUALDISCOVERYLIB.READONLYMANAGER.1
[-] Key Deleted : HKLM\SOFTWARE\CLASSES\VISUALDISCOVERYLIB.READONLYMANAGER
[-] Key Deleted : HKLM\SOFTWARE\CLASSES\VISUALDISCOVERYLIB.LSPLOGIC.1
[-] Key Deleted : HKLM\SOFTWARE\CLASSES\VISUALDISCOVERYLIB.LSPLOGIC
[-] Key Deleted : HKLM\SOFTWARE\CLASSES\VISUALDISCOVERYLIB.DATATABLEHOLDER.1
[-] Key Deleted : HKLM\SOFTWARE\CLASSES\VISUALDISCOVERYLIB.DATATABLEHOLDER
[-] Key Deleted : HKLM\SOFTWARE\CLASSES\VISUALDISCOVERYLIB.DATATABLEFIELDS.1
[-] Key Deleted : HKLM\SOFTWARE\CLASSES\VISUALDISCOVERYLIB.DATATABLEFIELDS
[-] Key Deleted : HKLM\SOFTWARE\CLASSES\VISUALDISCOVERYLIB.DATATABLE.1
[-] Key Deleted : HKLM\SOFTWARE\CLASSES\VISUALDISCOVERYLIB.DATATABLE
[-] Key Deleted : HKLM\SOFTWARE\CLASSES\VISUALDISCOVERYLIB.DATACONTROLLER.1
[-] Key Deleted : HKLM\SOFTWARE\CLASSES\VISUALDISCOVERYLIB.DATACONTROLLER
[-] Key Deleted : HKLM\SOFTWARE\CLASSES\VISUALDISCOVERYLIB.DATACONTAINER.1
[-] Key Deleted : HKLM\SOFTWARE\CLASSES\VISUALDISCOVERYLIB.DATACONTAINER
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{02966FA9-C01A-47E7-A169-C83AEA1FB0BA}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{9AD5C084-B6E6-456A-8BA2-A559663780E5}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{70C7334A-66D9-46DE-A4E2-6B923C7DB94E}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{5780633B-414C-446F-8EB2-FF1C9A731C99}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{4EECDED2-40FB-4500-85B4-86FB0EBECA68}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{10A7F29D-4B00-40EC-B07D-8616DF8135E6}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{05FF6A00-76A3-4AA1-A9A4-A782152ABE60}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{2E5FA7B4-61A2-4662-BBCE-62BBB20FC649}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{5D7F05E3-075A-43AF-8BC7-21E2F7F38845}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{617E26CE-E6E1-4C75-A68A-A001F2B98491}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{79FBDBEA-A722-4ABD-BEC0-B7D463F6BA0E}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{8128586C-DF69-4266-873F-CF4C6F705A7C}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{C1F9CFCE-A7DC-4072-8B31-1DEA57004C86}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{EA4AD895-2A7F-430E-B973-DEE6C4E743A9}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{EBF4B60F-A863-426F-BE6F-5DFE83BC574F}
[-] Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{CB6BF8B6-E12B-42FA-A478-91BCCDE475DC}
[-] Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{2E5FA7B4-61A2-4662-BBCE-62BBB20FC649}
[-] Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{5D7F05E3-075A-43AF-8BC7-21E2F7F38845}
[-] Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{617E26CE-E6E1-4C75-A68A-A001F2B98491}
[-] Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{79FBDBEA-A722-4ABD-BEC0-B7D463F6BA0E}
[-] Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{8128586C-DF69-4266-873F-CF4C6F705A7C}
[-] Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{C1F9CFCE-A7DC-4072-8B31-1DEA57004C86}
[-] Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{EA4AD895-2A7F-430E-B973-DEE6C4E743A9}
[-] Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{EBF4B60F-A863-426F-BE6F-5DFE83BC574F}

***** [ Web browsers ] *****


*************************

:: Proxy settings cleared
:: Winsock settings cleared

########## EOF - C:\AdwCleaner\AdwCleaner[C4].txt - [4000 bytes] ##########

Smouke
Návštěvník
Návštěvník
Příspěvky: 11
Registrován: 21 srp 2015 14:52

Re: Prosím o kontrolu - vyskajující okna CHROME

#5 Příspěvek od Smouke »

Malwarebytes Anti-Malware (Zkušební verze Malwarebytes Anti-Malware.) 1.75.0.1300
www.malwarebytes.org

Verze: v2015.08.25.03

Windows 8 x64 NTFS
Internet Explorer 11.0.10240.16431
Pavel :: PAVEL-PC [administrátor]

Ochrana: Povolena

25.08.2015 11:46:57
mbam-log-2015-08-25 (11-46-57).txt

Typ: Kompletní kontrola (C:\|D:\|)
Nastavení kontroly povoleno: Paměť | Po spuštění | Registr | Systémové soubory | Heuristická analýza Extra | Heuristická analýza Shuriken | PUP | PUM
Nastavení kontroly zakázáno: P2P
Kontrolované objekty: 888471
Uplynulý čas: 2 hodin, 7 minut, 33 sekund

Nalezené procesy v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené moduly v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené klíče v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené hodnoty v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené datové položky v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené složky: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené soubory: 0
(Žádné škodlivé položky nebyly zjištěny)

(konec)

Uživatelský avatar
Roli
VIP
VIP
Příspěvky: 13399
Registrován: 26 lis 2006 13:37
Bydliště: ČR

Re: Prosím o kontrolu - vyskajující okna CHROME

#6 Příspěvek od Roli »

Mrkni ještě do rozšíření prohlížečů a odinstaluj Adblock Super - případně něco s podobným názvem.


Smaž nepotřebné soubory

pomocí CCleaneru

návod :

Čistič - tady vyčistíš PC od nepotřebných souborů a vysypeš Koš

Registry - tady vyčistíš registry (před použitím doporučuji udělat jejich zálohu kterou CCleaner nabízí)

čištění registru je třeba několikrát zopakovat !

Nástroje - tady lze odinstalovat programy, upravit co se spustí po Startu systému a obnovit systém



Pak dej vědět jak se PC respektive prohlížeče chovají.
| Rsit | Mbam | AVPTool | Cure It |

O víkendu odpočívám :all_coholic:

Smouke
Návštěvník
Návštěvník
Příspěvky: 11
Registrován: 21 srp 2015 14:52

Re: Prosím o kontrolu - vyskajující okna CHROME

#7 Příspěvek od Smouke »

Zdravím, ma NTB zatím všechno OK. V kanclu zjistím zítra, provedu očistu a pošlu Logy. Zatím díky

Smouke
Návštěvník
Návštěvník
Příspěvky: 11
Registrován: 21 srp 2015 14:52

Re: Prosím o kontrolu - vyskajující okna CHROME

#8 Příspěvek od Smouke »

Log z PC v kanclu


# AdwCleaner v5.005 - Logfile created 01/09/2015 at 16:11:27
# Updated 31/08/2015 by Xplode
# Database : 2015-08-31.2 [Server]
# Operating system : Windows 10 Pro (x86)
# Username : DELL - DELL-PC42
# Running from : C:\Users\DELL\Desktop\adwcleaner_5.005.exe
# Option : Cleaning
# Support : http://toolslib.net/forum

***** [ Services ] *****


***** [ Folders ] *****


***** [ Files ] *****


***** [ Shortcuts ] *****


***** [ Scheduled tasks ] *****


***** [ Registry ] *****

[-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}
[-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}

***** [ Web browsers ] *****


*************************

:: Winsock settings cleared

########## EOF - C:\AdwCleaner\AdwCleaner[C1].txt - [837 bytes] ##########

Smouke
Návštěvník
Návštěvník
Příspěvky: 11
Registrován: 21 srp 2015 14:52

Re: Prosím o kontrolu - vyskajující okna CHROME

#9 Příspěvek od Smouke »

Malwarebytes Anti-Malware (Zkušební verze Malwarebytes Anti-Malware.) 1.75.0.1300
www.malwarebytes.org

Verze: v2015.09.01.03

Windows 8 x86 NTFS
Internet Explorer 11.0.10240.16431
DELL :: DELL-PC42 [administrátor]

Ochrana: Povolena

1.9.2015 16:23:58
mbam-log-2015-09-01 (16-23-58).txt

Typ: Rychlá kontrola
Nastavení kontroly povoleno: Paměť | Po spuštění | Registr | Systémové soubory | Heuristická analýza Extra | Heuristická analýza Shuriken | PUP | PUM
Nastavení kontroly zakázáno: P2P
Kontrolované objekty: 340107
Uplynulý čas: 9 minut, 29 sekund

Nalezené procesy v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené moduly v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené klíče v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené hodnoty v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené datové položky v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené složky: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené soubory: 1
C:\Users\DELL\Desktop\adwcleaner_5.005.exe (Trojan.Autoit) -> Přesun do karantény a smazání se zdařilo.

(konec)

Uživatelský avatar
Roli
VIP
VIP
Příspěvky: 13399
Registrován: 26 lis 2006 13:37
Bydliště: ČR

Re: Prosím o kontrolu - vyskajující okna CHROME

#10 Příspěvek od Roli »

To co našel Mbam je v pohodě, ale rád bych viděl aktuální log.txt z Rsit.
| Rsit | Mbam | AVPTool | Cure It |

O víkendu odpočívám :all_coholic:

Odpovědět