Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Prosím o kontrolu logu, podezření na COM Surrogate

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Odpovědět
Zpráva
Autor
Gripen
Návštěvník
Návštěvník
Příspěvky: 6
Registrován: 28 říj 2015 19:11

Prosím o kontrolu logu, podezření na COM Surrogate

#1 Příspěvek od Gripen »

Dobrý den,
prosím o kontrolu logu, v mém NTB jsem objevil cca před měsícem vir COM Surrogate, značně mi zpomalil NTB a dělal si, co chtěl. Provedl jsem kompletní reinstalaci NTB a cca na 14 dní byl klid, pak se objevil znovu. Veškerá výměnná média jsem nechal zkontrolovat SpyHunterem a pak i zformátovat, kolega mi doporučil doplněk k IE EMET, poradil mi s vyšší možnou míru zabezpečení při surfování po netu, tak nevím, kde se mohl vzít znovu. Tentokrát mi teda NTB zatím nezpomalil, funguje dál a bez problémů, ale jestli je v pořádku, to nevím, proto prosím o kontrolu.
Děkuji

Logfile of random's system information tool 1.10 (written by random/random)
Run by Gripen at 2015-10-28 17:51:33
Microsoft Windows 8.1
System drive C: has 123 GB (72%) free of 171 GB
Total RAM: 8139 MB (68% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 17:58:44, on 28. 10. 2015
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.17840)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
E:\Stažené soubory\SpyHunter-Installer.exe
C:\Program Files\trend micro\Gripen.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: Adblock Plus for IE Browser Helper Object - {FFCB3198-32F3-4E8B-9539-4324694ED664} - C:\Program Files\Adblock Plus for IE\AdblockPlus32.dll
O4 - HKLM\..\Run: [IAStorIcon] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe "C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe" 60
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: Bluetooth Device Monitor - Motorola Solutions, Inc. - C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe
O23 - Service: Bluetooth OBEX Service - Motorola Solutions, Inc. - C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: NVIDIA GeForce Experience Service (GfExperienceService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
O23 - Service: Úložná technologie Intel® Rapid (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) Wireless Bluetooth(R) 4.0 Radio Management - Intel Corporation - C:\Program Files (x86)\Intel\Bluetooth\ibtrksrv.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: SpyHunter 4 Service - Enigma Software Group USA, LLC. - C:\Program Files\Enigma Software Group\SpyHunter\SH4Service.exe
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 7377 bytes

======Listing Processes======





wininit.exe


winlogon.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
"C:\Windows\system32\nvvsvc.exe"
"dwm.exe"
"C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe"
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\Windows\system32\nvvsvc.exe -session -first
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Windows\System32\svchost.exe -k utcsvc
"C:\Program Files (x86)\EMET 5.2\EMET_Service.exe"
taskhostex.exe
"\Program Files\Synaptics\SynTP\SynTPEnh.exe"
"C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe"
"C:\Program Files\Intel\iCLS Client\HeciServer.exe"
"C:\Program Files (x86)\Intel\Bluetooth\ibtrksrv.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe"
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe"
C:\Windows\Explorer.EXE

"C:\Program Files (x86)\EMET 5.2\EMET_Agent.exe"
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-29e6d6a1-db05-4eb8-8dbd-13206da33927 -SystemEventPortName:HostProcess-210d119a-80cb-4e6d-b90f-6d40dbfbba6c -IoCancelEventPortName:HostProcess-875acb8a-c0eb-4908-bf15-911847f4a01a -NonStateChangingEventPortName:HostProcess-0f978039-4a47-4491-924c-0871307c08ab -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:6b82dddc-530a-4db2-9140-e43a740aed24 -DeviceGroupId:WudfDefaultDevicePool
"C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE"
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
"C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /FORPCEE4
"C:\Windows\RTFTrack.exe"
"C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe"
"C:\Program Files (x86)\Lenovo\Energy Management\utility.exe"
"C:\Program Files\Synaptics\SynTP\SynLenovoGestureMgr.exe" /m
"C:\Windows\System32\rundll32.exe" "C:\Program Files (x86)\Intel\Bluetooth\btmshellex.dll",TrayApp
"C:\Program Files\Logitech Gaming Software\LCore.exe" /minimized
"C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe"
"C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe"
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe"
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe" 80253a3e-0a17-45e6-926a-bcde619a02c5
\??\C:\Windows\system32\conhost.exe 0x4
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe" serviceapp
\??\C:\Windows\system32\conhost.exe 0x4
"C:\Program Files\Internet Explorer\iexplore.exe"
"C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE" SCODEF:3432 CREDAT:267521 /prefetch:2
AdblockPlusEngine.exe cs-CZ
"C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE" SCODEF:3432 CREDAT:1119560 /prefetch:2
"C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE" SCODEF:3432 CREDAT:3544386 /prefetch:2
"C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE" SCODEF:3432 CREDAT:2102537 /prefetch:2
C:\Windows\system32\wbem\wmiprvse.exe
"E:\Stažené soubory\SpyHunter-Installer.exe"
"C:\Program Files\Enigma Software Group\SpyHunter\SH4Service.exe"
"C:\Program Files\Enigma Software Group\SpyHunter\SpyHunter4.exe" -nk -tt_on
"C:\Program Files\Windows Defender\MpCmdRun.exe" SpyNetServiceDss -RestrictPrivileges -AccessKey 3953684A-6DB5-C277-D273-88C382A349C8 -Reinvoke
taskhost.exe
"E:\Stažené soubory\RSITx64.exe"
C:\Windows\system32\wbem\wmiprvse.exe

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FFCB3198-32F3-4E8B-9539-4324694ED664}]
Adblock Plus for IE Browser Helper Object - C:\Program Files\Adblock Plus for IE\AdblockPlus64.dll [2015-09-22 857792]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FFCB3198-32F3-4E8B-9539-4324694ED664}]
Adblock Plus for IE Browser Helper Object - C:\Program Files\Adblock Plus for IE\AdblockPlus32.dll [2015-09-22 755392]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2013-04-10 13519432]
"RtHDVBg_Dolby"=C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2013-03-08 1278024]
"RtsFT"=C:\Windows\RTFTrack.exe [2013-09-25 6334096]
"Energy Management"=C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe [2015-09-29 17080376]
"EnergyUtility"=C:\Program Files (x86)\Lenovo\Energy Management\Utility.exe [2015-09-29 191544]
"SynLenovoGestureMgr"=C:\Program Files\Synaptics\SynTP\SynLenovoGestureMgr.exe [2013-09-25 665400]
"NvBackend"=C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2015-08-27 2634872]
"ShadowPlay"=C:\Windows\system32\nvspcap64.dll [2015-08-27 1710568]
"BTMTrayAgent"=C:\Program Files (x86)\Intel\Bluetooth\btmshellex.dll [2013-09-19 7818040]
"Launch LCore"=C:\Program Files\Logitech Gaming Software\LCore.exe [2015-07-02 14601160]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"IAStorIcon"=C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe [2012-09-12 56128]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"VIDC.YUY2"=msyuv.dll
"vidc.i420"=iyuv_32.dll
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"VIDC.YVYU"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"vidc.msvc"=msvidc32.dll
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2015-10-28 17:51:33 ----D---- C:\rsit
2015-10-28 17:51:33 ----D---- C:\Program Files\trend micro
2015-10-28 17:42:08 ----D---- C:\sh4ldr
2015-10-28 17:41:02 ----A---- C:\Windows\system32\drivers\EsgScanner.sys
2015-10-20 17:19:21 ----D---- C:\ProgramData\VIPRE
2015-10-20 17:14:00 ----D---- C:\ProgramData\STOPzilla!
2015-10-20 17:13:57 ----D---- C:\Program Files (x86)\iS3
2015-10-15 11:33:43 ----D---- C:\ProgramData\Adobe
2015-10-15 10:58:09 ----D---- C:\Program Files (x86)\HP
2015-10-15 10:58:07 ----D---- C:\Program Files\HP
2015-10-13 19:13:48 ----D---- C:\ProgramData\HP
2015-10-11 15:54:22 ----D---- C:\Program Files\Mad Catz
2015-10-11 12:54:11 ----A---- C:\autoexec.bat
2015-10-11 12:53:54 ----D---- C:\Users\Gripen\AppData\Roaming\Enigma Software Group
2015-10-11 12:52:19 ----D---- C:\Program Files\Enigma Software Group
2015-10-02 18:11:09 ----D---- C:\Program Files (x86)\Disc Soft
2015-10-02 18:09:49 ----D---- C:\Users\Gripen\AppData\Roaming\DAEMON Tools Lite
2015-10-02 18:08:48 ----D---- C:\ProgramData\DAEMON Tools Lite
2015-10-01 22:36:09 ----D---- C:\Windows\Minidump
2015-09-30 19:51:14 ----D---- C:\Users\Gripen\AppData\Roaming\TS3Client
2015-09-30 16:59:10 ----D---- C:\Users\Gripen\AppData\Roaming\Identities
2015-09-30 11:56:02 ----D---- C:\Users\Gripen\AppData\Roaming\WinRAR
2015-09-30 10:54:22 ----D---- C:\Program Files (x86)\Code Laboratories
2015-09-30 10:05:35 ----D---- C:\Program Files (x86)\Reference Assemblies
2015-09-30 09:48:48 ----D---- C:\Hry
2015-09-29 17:55:22 ----D---- C:\Users\Gripen\AppData\Roaming\MPC-HC
2015-09-29 17:53:10 ----D---- C:\Program Files\MPC-HC
2015-09-29 17:48:06 ----A---- C:\Windows\removeep.cmd
2015-09-29 17:35:46 ----D---- C:\ProgramData\LogiShrd
2015-09-29 17:35:34 ----A---- C:\Windows\system32\drivers\LNonPnP.sys
2015-09-29 17:35:23 ----D---- C:\Program Files\Logitech Gaming Software
2015-09-29 17:35:00 ----D---- C:\Users\Gripen\AppData\Roaming\Logitech
2015-09-29 17:35:00 ----D---- C:\Users\Gripen\AppData\Roaming\Logishrd
2015-09-29 16:09:03 ----D---- C:\ProgramData\Package Cache
2015-09-29 15:38:50 ----D---- C:\Program Files (x86)\EMET 5.2
2015-09-29 15:36:56 ----D---- C:\Users\Gripen\AppData\Roaming\Macromedia
2015-09-29 15:30:53 ----D---- C:\ProgramData\Malwarebytes
2015-09-29 15:27:33 ----D---- C:\Program Files\Adblock Plus for IE
2015-09-29 14:54:33 ----D---- C:\Program Files\Microsoft Silverlight
2015-09-29 14:54:33 ----D---- C:\Program Files (x86)\Microsoft Silverlight
2015-09-29 14:54:22 ----A---- C:\Windows\SYSWOW64\rascfg.dll
2015-09-29 14:54:22 ----A---- C:\Windows\system32\rascfg.dll
2015-09-29 14:54:22 ----A---- C:\Windows\system32\drivers\wanarp.sys
2015-09-29 14:54:22 ----A---- C:\Windows\system32\drivers\ndproxy.sys
2015-09-29 14:53:06 ----A---- C:\Windows\system32\SyncEngine.dll
2015-09-29 14:53:05 ----A---- C:\Windows\SYSWOW64\mfplat.dll
2015-09-29 14:53:05 ----A---- C:\Windows\system32\SkyDrive.exe
2015-09-29 14:53:05 ----A---- C:\Windows\system32\mfplat.dll
2015-09-29 14:53:05 ----A---- C:\Windows\system32\MFMediaEngine.dll
2015-09-29 14:53:05 ----A---- C:\Windows\system32\drivers\rasl2tp.sys
2015-09-29 14:53:05 ----A---- C:\Windows\system32\drivers\netio.sys
2015-09-29 14:53:05 ----A---- C:\Windows\system32\crypt32.dll
2015-09-29 14:53:04 ----AC---- C:\Windows\system32\drivers\vhdmp.sys
2015-09-29 14:53:04 ----AC---- C:\Windows\system32\drivers\intelpep.sys
2015-09-29 14:53:04 ----A---- C:\Windows\SYSWOW64\WSDApi.dll
2015-09-29 14:53:04 ----A---- C:\Windows\SYSWOW64\WinSCard.dll
2015-09-29 14:53:04 ----A---- C:\Windows\SYSWOW64\untfs.dll
2015-09-29 14:53:04 ----A---- C:\Windows\SYSWOW64\QSVRMGMT.DLL
2015-09-29 14:53:04 ----A---- C:\Windows\SYSWOW64\mfmp4srcsnk.dll
2015-09-29 14:53:04 ----A---- C:\Windows\SYSWOW64\MFMediaEngine.dll
2015-09-29 14:53:04 ----A---- C:\Windows\SYSWOW64\crypt32.dll
2015-09-29 14:53:04 ----A---- C:\Windows\SYSWOW64\AppxAllUserStore.dll
2015-09-29 14:53:04 ----A---- C:\Windows\system32\WSDMon.dll
2015-09-29 14:53:04 ----A---- C:\Windows\system32\WSDApi.dll
2015-09-29 14:53:04 ----A---- C:\Windows\system32\WinSCard.dll
2015-09-29 14:53:04 ----A---- C:\Windows\system32\vpnike.dll
2015-09-29 14:53:04 ----A---- C:\Windows\system32\untfs.dll
2015-09-29 14:53:04 ----A---- C:\Windows\system32\spoolsv.exe
2015-09-29 14:53:04 ----A---- C:\Windows\system32\rasapi32.dll
2015-09-29 14:53:04 ----A---- C:\Windows\system32\QSVRMGMT.DLL
2015-09-29 14:53:04 ----A---- C:\Windows\system32\QSHVHOST.DLL
2015-09-29 14:53:04 ----A---- C:\Windows\system32\mfmp4srcsnk.dll
2015-09-29 14:53:04 ----A---- C:\Windows\system32\drivers\wfplwfs.sys
2015-09-29 14:53:04 ----A---- C:\Windows\system32\drivers\pdc.sys
2015-09-29 14:53:04 ----A---- C:\Windows\system32\drivers\dam.sys
2015-09-29 14:53:04 ----A---- C:\Windows\system32\dnsrslvr.dll
2015-09-29 14:53:04 ----A---- C:\Windows\system32\AppxAllUserStore.dll
2015-09-29 14:53:03 ----A---- C:\Windows\SYSWOW64\vsstrace.dll
2015-09-29 14:53:03 ----A---- C:\Windows\SYSWOW64\vssapi.dll
2015-09-29 14:53:03 ----A---- C:\Windows\SYSWOW64\rasser.dll
2015-09-29 14:53:03 ----A---- C:\Windows\SYSWOW64\rasmxs.dll
2015-09-29 14:53:03 ----A---- C:\Windows\SYSWOW64\rasdiag.dll
2015-09-29 14:53:03 ----A---- C:\Windows\SYSWOW64\rasapi32.dll
2015-09-29 14:53:03 ----A---- C:\Windows\SYSWOW64\QSHVHOST.DLL
2015-09-29 14:53:03 ----A---- C:\Windows\SYSWOW64\eventcls.dll
2015-09-29 14:53:03 ----A---- C:\Windows\SYSWOW64\dnsapi.dll
2015-09-29 14:53:03 ----A---- C:\Windows\SYSWOW64\DevicePairing.dll
2015-09-29 14:53:03 ----A---- C:\Windows\system32\VSSVC.exe
2015-09-29 14:53:03 ----A---- C:\Windows\system32\vsstrace.dll
2015-09-29 14:53:03 ----A---- C:\Windows\system32\vssapi.dll
2015-09-29 14:53:03 ----A---- C:\Windows\system32\SkyDriveTelemetry.dll
2015-09-29 14:53:03 ----A---- C:\Windows\system32\rasser.dll
2015-09-29 14:53:03 ----A---- C:\Windows\system32\rasmxs.dll
2015-09-29 14:53:03 ----A---- C:\Windows\system32\rasdiag.dll
2015-09-29 14:53:03 ----A---- C:\Windows\system32\eventcls.dll
2015-09-29 14:53:03 ----A---- C:\Windows\system32\drivers\ndistapi.sys
2015-09-29 14:53:03 ----A---- C:\Windows\system32\drivers\agilevpn.sys
2015-09-29 14:53:03 ----A---- C:\Windows\system32\dnsapi.dll
2015-09-29 14:53:03 ----A---- C:\Windows\system32\DevicePairing.dll
2015-09-29 14:53:03 ----A---- C:\Windows\splwow64.exe
2015-09-29 14:53:01 ----A---- C:\Windows\system32\sppwinob.dll
2015-09-29 14:53:01 ----A---- C:\Windows\system32\sppsvc.exe
2015-09-29 14:53:01 ----A---- C:\Windows\system32\sppobjs.dll
2015-09-29 14:53:00 ----A---- C:\Windows\SYSWOW64\d2d1.dll
2015-09-29 14:53:00 ----A---- C:\Windows\system32\d2d1.dll
2015-09-29 14:52:50 ----A---- C:\Windows\system32\SystemSettingsAdminFlowUI.dll
2015-09-29 14:52:50 ----A---- C:\Windows\system32\SystemSettingsAdminFlows.exe
2015-09-29 14:52:50 ----A---- C:\Windows\system32\SystemSettings.Handlers.dll
2015-09-29 14:52:50 ----A---- C:\Windows\system32\MDMAgent.exe
2015-09-29 14:52:47 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2015-09-29 14:52:47 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2015-09-29 14:52:47 ----A---- C:\Windows\SYSWOW64\advapi32.dll
2015-09-29 14:52:47 ----A---- C:\Windows\system32\ntoskrnl.exe
2015-09-29 14:52:47 ----A---- C:\Windows\system32\ntdll.dll
2015-09-29 14:52:47 ----A---- C:\Windows\system32\KernelBase.dll
2015-09-29 14:52:47 ----A---- C:\Windows\system32\advapi32.dll
2015-09-29 14:52:34 ----A---- C:\Windows\SYSWOW64\ucrtbase.dll
2015-09-29 14:52:34 ----A---- C:\Windows\SYSWOW64\FWPUCLNT.DLL
2015-09-29 14:52:34 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-utility-l1-1-0.dll
2015-09-29 14:52:34 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-time-l1-1-0.dll
2015-09-29 14:52:34 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-string-l1-1-0.dll
2015-09-29 14:52:34 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-stdio-l1-1-0.dll
2015-09-29 14:52:34 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-runtime-l1-1-0.dll
2015-09-29 14:52:34 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-process-l1-1-0.dll
2015-09-29 14:52:34 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-private-l1-1-0.dll
2015-09-29 14:52:34 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-multibyte-l1-1-0.dll
2015-09-29 14:52:34 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-math-l1-1-0.dll
2015-09-29 14:52:34 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-locale-l1-1-0.dll
2015-09-29 14:52:34 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-heap-l1-1-0.dll
2015-09-29 14:52:34 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-filesystem-l1-1-0.dll
2015-09-29 14:52:34 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-environment-l1-1-0.dll
2015-09-29 14:52:34 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-convert-l1-1-0.dll
2015-09-29 14:52:34 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-conio-l1-1-0.dll
2015-09-29 14:52:34 ----A---- C:\Windows\system32\ucrtbase.dll
2015-09-29 14:52:34 ----A---- C:\Windows\system32\nshwfp.dll
2015-09-29 14:52:34 ----A---- C:\Windows\system32\NcdAutoSetup.dll
2015-09-29 14:52:34 ----A---- C:\Windows\system32\IKEEXT.DLL
2015-09-29 14:52:34 ----A---- C:\Windows\system32\FWPUCLNT.DLL
2015-09-29 14:52:34 ----A---- C:\Windows\system32\BFE.DLL
2015-09-29 14:52:34 ----A---- C:\Windows\system32\api-ms-win-crt-utility-l1-1-0.dll
2015-09-29 14:52:34 ----A---- C:\Windows\system32\api-ms-win-crt-time-l1-1-0.dll
2015-09-29 14:52:34 ----A---- C:\Windows\system32\api-ms-win-crt-string-l1-1-0.dll
2015-09-29 14:52:34 ----A---- C:\Windows\system32\api-ms-win-crt-stdio-l1-1-0.dll
2015-09-29 14:52:34 ----A---- C:\Windows\system32\api-ms-win-crt-runtime-l1-1-0.dll
2015-09-29 14:52:34 ----A---- C:\Windows\system32\api-ms-win-crt-process-l1-1-0.dll
2015-09-29 14:52:34 ----A---- C:\Windows\system32\api-ms-win-crt-private-l1-1-0.dll
2015-09-29 14:52:34 ----A---- C:\Windows\system32\api-ms-win-crt-multibyte-l1-1-0.dll
2015-09-29 14:52:34 ----A---- C:\Windows\system32\api-ms-win-crt-math-l1-1-0.dll
2015-09-29 14:52:34 ----A---- C:\Windows\system32\api-ms-win-crt-locale-l1-1-0.dll
2015-09-29 14:52:34 ----A---- C:\Windows\system32\api-ms-win-crt-heap-l1-1-0.dll
2015-09-29 14:52:34 ----A---- C:\Windows\system32\api-ms-win-crt-filesystem-l1-1-0.dll
2015-09-29 14:52:34 ----A---- C:\Windows\system32\api-ms-win-crt-environment-l1-1-0.dll
2015-09-29 14:52:34 ----A---- C:\Windows\system32\api-ms-win-crt-convert-l1-1-0.dll
2015-09-29 14:52:34 ----A---- C:\Windows\system32\api-ms-win-crt-conio-l1-1-0.dll
2015-09-29 14:52:33 ----AC---- C:\Windows\system32\drivers\BTHUSB.SYS
2015-09-29 14:52:33 ----AC---- C:\Windows\system32\drivers\bthport.sys
2015-09-29 14:52:33 ----AC---- C:\Windows\system32\drivers\bthenum.sys
2015-09-29 14:52:33 ----A---- C:\Windows\SYSWOW64\nshwfp.dll
2015-09-29 14:01:15 ----D---- C:\Windows\system32\appraiser
2015-09-29 14:01:14 ----D---- C:\Windows\Migration
2015-09-29 13:37:05 ----A---- C:\Windows\system32\aspnet_counters.dll
2015-09-29 13:37:04 ----A---- C:\Windows\SYSWOW64\aspnet_counters.dll
2015-09-29 13:32:27 ----D---- C:\Windows\system32\MRT
2015-09-29 13:32:25 ----A---- C:\Windows\system32\MRT.exe
2015-09-29 13:32:15 ----D---- C:\Program Files (x86)\Microsoft ASP.NET
2015-09-29 13:30:23 ----N---- C:\Windows\system32\MpSigStub.exe
2015-09-29 13:28:31 ----A---- C:\Windows\system32\iertutil.dll
2015-09-29 13:28:31 ----A---- C:\Windows\system32\actxprxy.dll
2015-09-29 13:28:30 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2015-09-29 13:28:30 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2015-09-29 13:28:30 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2015-09-29 13:28:30 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2015-09-29 13:28:30 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2015-09-29 13:28:30 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2015-09-29 13:28:30 ----A---- C:\Windows\SYSWOW64\iepeers.dll
2015-09-29 13:28:30 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2015-09-29 13:28:30 ----A---- C:\Windows\SYSWOW64\actxprxy.dll
2015-09-29 13:28:30 ----A---- C:\Windows\system32\inseng.dll
2015-09-29 13:28:30 ----A---- C:\Windows\system32\iepeers.dll
2015-09-29 13:28:30 ----A---- C:\Windows\system32\ie4uinit.exe
2015-09-29 13:28:29 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2015-09-29 13:28:29 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2015-09-29 13:28:29 ----A---- C:\Windows\system32\urlmon.dll
2015-09-29 13:28:29 ----A---- C:\Windows\system32\iedkcs32.dll
2015-09-29 13:28:28 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2015-09-29 13:28:28 ----A---- C:\Windows\SYSWOW64\jscript.dll
2015-09-29 13:28:28 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2015-09-29 13:28:28 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2015-09-29 13:28:28 ----A---- C:\Windows\system32\vbscript.dll
2015-09-29 13:28:28 ----A---- C:\Windows\system32\msfeeds.dll
2015-09-29 13:28:28 ----A---- C:\Windows\system32\dxtrans.dll
2015-09-29 13:28:27 ----A---- C:\Windows\SYSWOW64\wininet.dll
2015-09-29 13:28:27 ----A---- C:\Windows\SYSWOW64\webcheck.dll
2015-09-29 13:28:27 ----A---- C:\Windows\SYSWOW64\msrating.dll
2015-09-29 13:28:27 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2015-09-29 13:28:27 ----A---- C:\Windows\SYSWOW64\inetcomm.dll
2015-09-29 13:28:27 ----A---- C:\Windows\SYSWOW64\ieui.dll
2015-09-29 13:28:27 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2015-09-29 13:28:27 ----A---- C:\Windows\system32\jscript.dll
2015-09-29 13:28:26 ----A---- C:\Windows\system32\webcheck.dll
2015-09-29 13:28:26 ----A---- C:\Windows\system32\mshtmled.dll
2015-09-29 13:28:26 ----A---- C:\Windows\system32\jscript9diag.dll
2015-09-29 13:28:26 ----A---- C:\Windows\system32\jscript9.dll
2015-09-29 13:28:26 ----A---- C:\Windows\system32\ieframe.dll
2015-09-29 13:28:26 ----A---- C:\Windows\system32\dxtmsft.dll
2015-09-29 13:28:25 ----A---- C:\Windows\system32\wininet.dll
2015-09-29 13:28:25 ----A---- C:\Windows\system32\msrating.dll
2015-09-29 13:28:25 ----A---- C:\Windows\system32\MshtmlDac.dll
2015-09-29 13:28:25 ----A---- C:\Windows\system32\inetcomm.dll
2015-09-29 13:28:25 ----A---- C:\Windows\system32\ieui.dll
2015-09-29 13:28:25 ----A---- C:\Windows\system32\ieapfltr.dll
2015-09-29 13:28:24 ----A---- C:\Windows\system32\mshtml.dll
2015-09-29 13:27:11 ----A---- C:\Windows\SYSWOW64\shell32.dll
2015-09-29 13:27:11 ----A---- C:\Windows\SYSWOW64\ExplorerFrame.dll
2015-09-29 13:27:11 ----A---- C:\Windows\system32\shell32.dll
2015-09-29 13:27:11 ----A---- C:\Windows\system32\ExplorerFrame.dll
2015-09-29 13:26:21 ----A---- C:\Windows\SYSWOW64\wow32.dll
2015-09-29 13:26:21 ----A---- C:\Windows\SYSWOW64\user.exe
2015-09-29 13:26:21 ----A---- C:\Windows\SYSWOW64\setup16.exe
2015-09-29 13:26:21 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2015-09-29 13:26:21 ----A---- C:\Windows\SYSWOW64\instnm.exe
2015-09-29 13:26:21 ----A---- C:\Windows\system32\wow64cpu.dll
2015-09-29 13:26:21 ----A---- C:\Windows\system32\wow64.dll
2015-09-29 13:26:21 ----A---- C:\Windows\system32\ntvdm64.dll
2015-09-29 13:26:21 ----A---- C:\Windows\system32\microsoft-windows-system-events.dll
2015-09-29 13:26:21 ----A---- C:\Windows\system32\csrsrv.dll
2015-09-29 13:26:21 ----A---- C:\Windows\system32\basesrv.dll
2015-09-29 13:25:41 ----A---- C:\Windows\SYSWOW64\poqexec.exe
2015-09-29 13:25:41 ----A---- C:\Windows\system32\poqexec.exe
2015-09-29 13:25:24 ----A---- C:\Windows\SYSWOW64\SHCore.dll
2015-09-29 13:25:24 ----A---- C:\Windows\system32\SHCore.dll
2015-09-29 13:25:23 ----A---- C:\Windows\system32\sysmain.dll
2015-09-29 13:25:23 ----A---- C:\Windows\system32\drivers\mountmgr.sys
2015-09-29 13:25:14 ----A---- C:\Windows\SYSWOW64\rpcrt4.dll
2015-09-29 13:25:14 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2015-09-29 13:25:14 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2015-09-29 13:25:14 ----A---- C:\Windows\SYSWOW64\certcli.dll
2015-09-29 13:25:14 ----A---- C:\Windows\system32\rpcrt4.dll
2015-09-29 13:25:14 ----A---- C:\Windows\system32\msv1_0.dll
2015-09-29 13:25:14 ----A---- C:\Windows\system32\lsasrv.dll
2015-09-29 13:25:14 ----A---- C:\Windows\system32\kerberos.dll
2015-09-29 13:25:14 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2015-09-29 13:25:14 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2015-09-29 13:25:14 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2015-09-29 13:25:14 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2015-09-29 13:25:14 ----A---- C:\Windows\system32\drivers\cng.sys
2015-09-29 13:25:14 ----A---- C:\Windows\system32\certcli.dll
2015-09-29 13:24:55 ----A---- C:\Windows\SYSWOW64\tracerpt.exe
2015-09-29 13:24:55 ----A---- C:\Windows\SYSWOW64\sechost.dll
2015-09-29 13:24:55 ----A---- C:\Windows\system32\tracerpt.exe
2015-09-29 13:24:55 ----A---- C:\Windows\system32\sechost.dll
2015-09-29 13:24:46 ----A---- C:\Windows\SYSWOW64\wuwebv.dll
2015-09-29 13:24:46 ----A---- C:\Windows\SYSWOW64\wups.dll
2015-09-29 13:24:46 ----A---- C:\Windows\SYSWOW64\wudriver.dll
2015-09-29 13:24:46 ----A---- C:\Windows\SYSWOW64\wuapp.exe
2015-09-29 13:24:46 ----A---- C:\Windows\SYSWOW64\wuapi.dll
2015-09-29 13:24:46 ----A---- C:\Windows\system32\wuwebv.dll
2015-09-29 13:24:46 ----A---- C:\Windows\system32\WUSettingsProvider.dll
2015-09-29 13:24:46 ----A---- C:\Windows\system32\wups2.dll
2015-09-29 13:24:46 ----A---- C:\Windows\system32\wups.dll
2015-09-29 13:24:46 ----A---- C:\Windows\system32\wudriver.dll
2015-09-29 13:24:46 ----A---- C:\Windows\system32\wucltux.dll
2015-09-29 13:24:46 ----A---- C:\Windows\system32\wuaueng.dll
2015-09-29 13:24:46 ----A---- C:\Windows\system32\wuauclt.exe
2015-09-29 13:24:46 ----A---- C:\Windows\system32\wuapp.exe
2015-09-29 13:24:46 ----A---- C:\Windows\system32\wuapi.dll
2015-09-29 13:24:46 ----A---- C:\Windows\system32\wuaext.dll
2015-09-29 13:24:46 ----A---- C:\Windows\system32\wu.upgrade.ps.dll
2015-09-29 13:24:46 ----A---- C:\Windows\system32\WinSetupUI.dll
2015-09-29 13:24:40 ----A---- C:\Windows\SYSWOW64\WerFaultSecure.exe
2015-09-29 13:24:40 ----A---- C:\Windows\SYSWOW64\wer.dll
2015-09-29 13:24:40 ----A---- C:\Windows\SYSWOW64\Faultrep.dll
2015-09-29 13:24:40 ----A---- C:\Windows\system32\WerFaultSecure.exe
2015-09-29 13:24:40 ----A---- C:\Windows\system32\werdiagcontroller.dll
2015-09-29 13:24:40 ----A---- C:\Windows\system32\wer.dll
2015-09-29 13:24:40 ----A---- C:\Windows\system32\SystemSettingsDatabase.dll
2015-09-29 13:24:40 ----A---- C:\Windows\system32\Faultrep.dll
2015-09-29 13:24:40 ----A---- C:\Windows\system32\EncDump.dll
2015-09-29 13:24:40 ----A---- C:\Windows\system32\ci.dll
2015-09-29 13:24:40 ----A---- C:\Windows\system32\audiosrv.dll
2015-09-29 13:24:40 ----A---- C:\Windows\system32\AudioEndpointBuilder.dll
2015-09-29 13:24:34 ----A---- C:\Windows\system32\drivers\WdNisDrv.sys
2015-09-29 13:24:34 ----A---- C:\Windows\system32\drivers\WdFilter.sys
2015-09-29 13:24:34 ----A---- C:\Windows\system32\drivers\WdBoot.sys
2015-09-29 13:24:33 ----A---- C:\Windows\SYSWOW64\winshfhc.dll
2015-09-29 13:24:33 ----A---- C:\Windows\system32\winshfhc.dll
2015-09-29 13:24:32 ----A---- C:\Windows\SYSWOW64\msctf.dll
2015-09-29 13:24:32 ----A---- C:\Windows\system32\WiFiDisplay.dll
2015-09-29 13:24:32 ----A---- C:\Windows\system32\msctf.dll
2015-09-29 13:24:32 ----A---- C:\Windows\system32\invagent.dll
2015-09-29 13:24:32 ----A---- C:\Windows\system32\generaltel.dll
2015-09-29 13:24:32 ----A---- C:\Windows\system32\devinv.dll
2015-09-29 13:24:32 ----A---- C:\Windows\system32\CompatTelRunner.exe
2015-09-29 13:24:32 ----A---- C:\Windows\system32\appraiser.dll
2015-09-29 13:24:32 ----A---- C:\Windows\system32\aepic.dll
2015-09-29 13:24:32 ----A---- C:\Windows\system32\aepdu.dll
2015-09-29 13:24:32 ----A---- C:\Windows\system32\acmigration.dll
2015-09-29 13:24:31 ----AC---- C:\Windows\system32\drivers\USBHUB3.SYS
2015-09-29 13:24:31 ----A---- C:\Windows\SYSWOW64\msiexec.exe
2015-09-29 13:24:31 ----A---- C:\Windows\SYSWOW64\msi.dll
2015-09-29 13:24:31 ----A---- C:\Windows\SYSWOW64\DeviceSetupStatusProvider.dll
2015-09-29 13:24:31 ----A---- C:\Windows\system32\msiexec.exe
2015-09-29 13:24:31 ----A---- C:\Windows\system32\msi.dll
2015-09-29 13:24:31 ----A---- C:\Windows\system32\DeviceSetupStatusProvider.dll
2015-09-29 13:24:31 ----A---- C:\Windows\system32\aeinv.dll
2015-09-29 13:24:25 ----A---- C:\Windows\SYSWOW64\calc.exe
2015-09-29 13:24:25 ----A---- C:\Windows\system32\calc.exe
2015-09-29 13:24:24 ----AC---- C:\Windows\system32\drivers\bthhfenum.sys
2015-09-29 13:24:03 ----A---- C:\Windows\SYSWOW64\oleaut32.dll
2015-09-29 13:24:03 ----A---- C:\Windows\system32\oleaut32.dll
2015-09-29 13:24:01 ----A---- C:\Windows\SYSWOW64\GeofenceMonitorService.dll
2015-09-29 13:24:01 ----A---- C:\Windows\SYSWOW64\dwmcore.dll
2015-09-29 13:24:01 ----A---- C:\Windows\system32\GeofenceMonitorService.dll
2015-09-29 13:24:01 ----A---- C:\Windows\system32\dwmcore.dll
2015-09-29 13:23:44 ----A---- C:\Windows\SYSWOW64\msxml6.dll
2015-09-29 13:23:44 ----A---- C:\Windows\SYSWOW64\msxml3.dll
2015-09-29 13:23:44 ----A---- C:\Windows\system32\msxml6.dll
2015-09-29 13:23:44 ----A---- C:\Windows\system32\msxml3.dll
2015-09-29 13:23:40 ----A---- C:\Windows\SYSWOW64\tdh.dll
2015-09-29 13:23:40 ----A---- C:\Windows\SYSWOW64\dbghelp.dll
2015-09-29 13:23:40 ----A---- C:\Windows\SYSWOW64\dbgeng.dll
2015-09-29 13:23:40 ----A---- C:\Windows\system32\UtcResources.dll
2015-09-29 13:23:40 ----A---- C:\Windows\system32\tdh.dll
2015-09-29 13:23:40 ----A---- C:\Windows\system32\diagtrack.dll
2015-09-29 13:23:40 ----A---- C:\Windows\system32\dbghelp.dll
2015-09-29 13:23:40 ----A---- C:\Windows\system32\dbgeng.dll
2015-09-29 13:23:38 ----A---- C:\Windows\SYSWOW64\photowiz.dll
2015-09-29 13:23:38 ----A---- C:\Windows\system32\photowiz.dll
2015-09-29 13:23:37 ----A---- C:\Windows\system32\schannel.dll
2015-09-29 13:23:36 ----A---- C:\Windows\SYSWOW64\schannel.dll
2015-09-29 13:23:36 ----A---- C:\Windows\system32\Windows.UI.Xaml.dll
2015-09-29 13:23:35 ----A---- C:\Windows\SYSWOW64\Windows.UI.Xaml.dll
2015-09-29 13:23:34 ----A---- C:\Windows\SYSWOW64\scesrv.dll
2015-09-29 13:23:34 ----A---- C:\Windows\SYSWOW64\puiobj.dll
2015-09-29 13:23:34 ----A---- C:\Windows\system32\win32spl.dll
2015-09-29 13:23:34 ----A---- C:\Windows\system32\scesrv.dll
2015-09-29 13:23:34 ----A---- C:\Windows\system32\puiobj.dll
2015-09-29 13:23:34 ----A---- C:\Windows\system32\localspl.dll
2015-09-29 13:23:34 ----A---- C:\Windows\system32\compstui.dll
2015-09-29 13:23:33 ----A---- C:\Windows\SYSWOW64\Windows.UI.Input.Inking.dll
2015-09-29 13:23:33 ----A---- C:\Windows\SYSWOW64\rastapi.dll
2015-09-29 13:23:33 ----A---- C:\Windows\SYSWOW64\InkEd.dll
2015-09-29 13:23:33 ----A---- C:\Windows\system32\Windows.UI.Input.Inking.dll
2015-09-29 13:23:33 ----A---- C:\Windows\system32\rastapi.dll
2015-09-29 13:23:33 ----A---- C:\Windows\system32\InkEd.dll
2015-09-29 13:23:32 ----AC---- C:\Windows\system32\drivers\rfcomm.sys
2015-09-29 13:23:32 ----AC---- C:\Windows\system32\drivers\hidbth.sys
2015-09-29 13:23:32 ----A---- C:\Windows\SYSWOW64\mfc42u.dll
2015-09-29 13:23:32 ----A---- C:\Windows\SYSWOW64\mfc42.dll
2015-09-29 13:23:32 ----A---- C:\Windows\SYSWOW64\D3DCompiler_47.dll
2015-09-29 13:23:32 ----A---- C:\Windows\SYSWOW64\atmlib.dll
2015-09-29 13:23:32 ----A---- C:\Windows\SYSWOW64\atmfd.dll
2015-09-29 13:23:32 ----A---- C:\Windows\SYSWOW64\atlthunk.dll
2015-09-29 13:23:32 ----A---- C:\Windows\system32\mfc42u.dll
2015-09-29 13:23:32 ----A---- C:\Windows\system32\mfc42.dll
2015-09-29 13:23:32 ----A---- C:\Windows\system32\D3DCompiler_47.dll
2015-09-29 13:23:32 ----A---- C:\Windows\system32\consent.exe
2015-09-29 13:23:32 ----A---- C:\Windows\system32\atmlib.dll
2015-09-29 13:23:32 ----A---- C:\Windows\system32\atmfd.dll
2015-09-29 13:23:31 ----A---- C:\Windows\system32\win32k.sys
2015-09-29 13:23:27 ----A---- C:\Windows\system32\drivers\ahcache.sys
2015-09-29 13:23:15 ----A---- C:\Windows\SYSWOW64\authui.dll
2015-09-29 13:23:15 ----A---- C:\Windows\system32\authui.dll
2015-09-29 13:23:14 ----A---- C:\Windows\SYSWOW64\Windows.UI.Immersive.dll
2015-09-29 13:23:14 ----A---- C:\Windows\SYSWOW64\shacct.dll
2015-09-29 13:23:14 ----A---- C:\Windows\SYSWOW64\SettingSync.dll
2015-09-29 13:23:14 ----A---- C:\Windows\system32\Windows.UI.Immersive.dll
2015-09-29 13:23:14 ----A---- C:\Windows\system32\shacct.dll
2015-09-29 13:23:14 ----A---- C:\Windows\system32\SettingSync.dll
2015-09-29 13:23:05 ----AC---- C:\Windows\system32\drivers\sermouse.sys
2015-09-29 13:23:05 ----AC---- C:\Windows\system32\drivers\mouhid.sys
2015-09-29 13:23:05 ----AC---- C:\Windows\system32\drivers\mouclass.sys
2015-09-29 13:23:05 ----AC---- C:\Windows\system32\drivers\kbdhid.sys
2015-09-29 13:23:05 ----AC---- C:\Windows\system32\drivers\kbdclass.sys
2015-09-29 13:23:05 ----AC---- C:\Windows\system32\drivers\i8042prt.sys
2015-09-29 13:23:03 ----A---- C:\Windows\SYSWOW64\SRH.dll
2015-09-29 13:23:03 ----A---- C:\Windows\system32\SRH.dll
2015-09-29 13:22:59 ----A---- C:\Windows\SYSWOW64\gdi32.dll
2015-09-29 13:22:59 ----A---- C:\Windows\system32\gdi32.dll
2015-09-29 13:22:58 ----A---- C:\Windows\SYSWOW64\rgb9rast.dll
2015-09-29 13:22:58 ----A---- C:\Windows\SYSWOW64\PhotoMetadataHandler.dll
2015-09-29 13:22:58 ----A---- C:\Windows\system32\PhotoMetadataHandler.dll
2015-09-29 13:22:57 ----A---- C:\Windows\system32\drivers\mrxdav.sys
2015-09-29 13:22:56 ----A---- C:\Windows\system32\TSWbPrxy.exe
2015-09-29 13:22:50 ----A---- C:\Windows\system32\drivers\udfs.sys
2015-09-29 13:22:42 ----A---- C:\Windows\system32\SettingsHandlers.dll
2015-09-29 13:22:26 ----A---- C:\Windows\system32\lsm.dll
2015-09-29 13:22:22 ----A---- C:\Windows\SYSWOW64\WebClnt.dll
2015-09-29 13:22:22 ----A---- C:\Windows\SYSWOW64\davclnt.dll
2015-09-29 13:22:22 ----A---- C:\Windows\system32\WebClnt.dll
2015-09-29 13:22:22 ----A---- C:\Windows\system32\services.exe
2015-09-29 13:22:22 ----A---- C:\Windows\system32\drivers\usb8023.sys
2015-09-29 13:22:22 ----A---- C:\Windows\system32\davclnt.dll
2015-09-29 13:22:19 ----A---- C:\Windows\SYSWOW64\pku2u.dll
2015-09-29 13:22:19 ----A---- C:\Windows\system32\wevtsvc.dll
2015-09-29 13:22:19 ----A---- C:\Windows\system32\pku2u.dll
2015-09-29 13:22:05 ----A---- C:\Windows\SYSWOW64\WSShared.dll
2015-09-29 13:22:05 ----A---- C:\Windows\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2015-09-29 13:22:05 ----A---- C:\Windows\system32\WSShared.dll
2015-09-29 13:22:05 ----A---- C:\Windows\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2015-09-29 13:22:03 ----A---- C:\Windows\system32\dpapisrv.dll
2015-09-29 13:22:01 ----A---- C:\Windows\SYSWOW64\UIAutomationCore.dll
2015-09-29 13:22:01 ----A---- C:\Windows\system32\UIAutomationCore.dll
2015-09-29 13:21:59 ----A---- C:\Windows\SYSWOW64\StorageContextHandler.dll
2015-09-29 13:21:59 ----A---- C:\Windows\system32\StorageContextHandler.dll
2015-09-29 13:21:59 ----A---- C:\Windows\system32\profsvc.dll
2015-09-29 13:21:57 ----A---- C:\Windows\system32\rdpcorets.dll
2015-09-29 13:21:56 ----A---- C:\Windows\SYSWOW64\authz.dll
2015-09-29 13:21:56 ----A---- C:\Windows\system32\rdpudd.dll
2015-09-29 13:21:56 ----A---- C:\Windows\system32\authz.dll
2015-09-29 13:21:52 ----A---- C:\Windows\SYSWOW64\comctl32.dll
2015-09-29 13:21:52 ----A---- C:\Windows\system32\comctl32.dll
2015-09-29 13:21:41 ----A---- C:\Windows\system32\ubpm.dll
2015-09-29 13:21:39 ----AC---- C:\Windows\system32\drivers\USBXHCI.SYS
2015-09-29 13:21:29 ----A---- C:\Windows\SYSWOW64\tquery.dll
2015-09-29 13:21:29 ----A---- C:\Windows\SYSWOW64\netcfgx.dll
2015-09-29 13:21:29 ----A---- C:\Windows\SYSWOW64\mssrch.dll
2015-09-29 13:21:29 ----A---- C:\Windows\system32\tquery.dll
2015-09-29 13:21:29 ----A---- C:\Windows\system32\netcfgx.dll
2015-09-29 13:21:29 ----A---- C:\Windows\system32\mssrch.dll
2015-09-29 13:21:29 ----A---- C:\Windows\system32\mssph.dll
2015-09-29 13:21:29 ----A---- C:\Windows\system32\drivers\ndis.sys
2015-09-29 13:21:28 ----A---- C:\Windows\SYSWOW64\SearchProtocolHost.exe
2015-09-29 13:21:28 ----A---- C:\Windows\SYSWOW64\SearchIndexer.exe
2015-09-29 13:21:28 ----A---- C:\Windows\SYSWOW64\mssvp.dll
2015-09-29 13:21:28 ----A---- C:\Windows\SYSWOW64\mssph.dll
2015-09-29 13:21:28 ----A---- C:\Windows\system32\SearchProtocolHost.exe
2015-09-29 13:21:28 ----A---- C:\Windows\system32\SearchIndexer.exe
2015-09-29 13:21:28 ----A---- C:\Windows\system32\mssvp.dll
2015-09-29 13:21:28 ----A---- C:\Windows\system32\mssphtb.dll
2015-09-29 13:21:28 ----A---- C:\Windows\system32\drivers\http.sys
2015-09-29 13:21:27 ----AC---- C:\Windows\system32\drivers\sdbus.sys
2015-09-29 13:21:27 ----AC---- C:\Windows\system32\drivers\dumpsd.sys
2015-09-29 13:21:27 ----A---- C:\Windows\SYSWOW64\WindowsCodecs.dll
2015-09-29 13:21:27 ----A---- C:\Windows\SYSWOW64\notepad.exe
2015-09-29 13:21:27 ----A---- C:\Windows\system32\WindowsCodecs.dll
2015-09-29 13:21:27 ----A---- C:\Windows\system32\notepad.exe
2015-09-29 13:21:27 ----A---- C:\Windows\system32\nlasvc.dll
2015-09-29 13:21:27 ----A---- C:\Windows\system32\ncsi.dll
2015-09-29 13:21:27 ----A---- C:\Windows\system32\fhcpl.dll
2015-09-29 13:21:27 ----A---- C:\Windows\system32\eappcfg.dll
2015-09-29 13:21:27 ----A---- C:\Windows\system32\drivers\tcpip.sys
2015-09-29 13:21:27 ----A---- C:\Windows\system32\drivers\FWPKCLNT.SYS
2015-09-29 13:21:27 ----A---- C:\Windows\notepad.exe
2015-09-29 13:21:26 ----A---- C:\Windows\SYSWOW64\taskeng.exe
2015-09-29 13:21:26 ----A---- C:\Windows\SYSWOW64\schtasks.exe
2015-09-29 13:21:26 ----A---- C:\Windows\SYSWOW64\eapphost.dll
2015-09-29 13:21:26 ----A---- C:\Windows\SYSWOW64\eappgnui.dll
2015-09-29 13:21:26 ----A---- C:\Windows\SYSWOW64\eappcfg.dll
2015-09-29 13:21:26 ----A---- C:\Windows\SYSWOW64\eapp3hst.dll
2015-09-29 13:21:26 ----A---- C:\Windows\system32\taskeng.exe
2015-09-29 13:21:26 ----A---- C:\Windows\system32\schtasks.exe
2015-09-29 13:21:26 ----A---- C:\Windows\system32\schedsvc.dll
2015-09-29 13:21:26 ----A---- C:\Windows\system32\eapphost.dll
2015-09-29 13:21:26 ----A---- C:\Windows\system32\eappgnui.dll
2015-09-29 13:21:26 ----A---- C:\Windows\system32\eapp3hst.dll
2015-09-29 13:21:25 ----A---- C:\Windows\system32\DWrite.dll
2015-09-29 13:21:24 ----A---- C:\Windows\SYSWOW64\DWrite.dll
2015-09-29 13:21:24 ----A---- C:\Windows\system32\FntCache.dll
2015-09-29 13:21:19 ----A---- C:\Windows\system32\LockScreenContentServer.exe
2015-09-29 13:20:57 ----A---- C:\Windows\SYSWOW64\MrmCoreR.dll
2015-09-29 13:20:57 ----A---- C:\Windows\system32\MrmCoreR.dll
2015-09-29 13:20:56 ----A---- C:\Windows\SYSWOW64\appidapi.dll
2015-09-29 13:20:56 ----A---- C:\Windows\system32\appidsvc.dll
2015-09-29 13:20:56 ----A---- C:\Windows\system32\appidapi.dll
2015-09-29 13:20:55 ----A---- C:\Windows\SYSWOW64\rdvidcrl.dll
2015-09-29 13:20:55 ----A---- C:\Windows\SYSWOW64\mstscax.dll
2015-09-29 13:20:55 ----A---- C:\Windows\system32\rdvidcrl.dll
2015-09-29 13:20:55 ----A---- C:\Windows\system32\mstscax.dll
2015-09-29 13:20:48 ----A---- C:\Windows\SYSWOW64\ole32.dll
2015-09-29 13:20:48 ----A---- C:\Windows\system32\ole32.dll
2015-09-29 13:20:47 ----A---- C:\Windows\SYSWOW64\WMPhoto.dll
2015-09-29 13:20:47 ----A---- C:\Windows\SYSWOW64\msftedit.dll
2015-09-29 13:20:47 ----A---- C:\Windows\system32\WMPhoto.dll
2015-09-29 13:20:47 ----A---- C:\Windows\system32\msftedit.dll
2015-09-29 13:20:36 ----A---- C:\Windows\SYSWOW64\msvcr120_clr0400.dll
2015-09-29 13:20:36 ----A---- C:\Windows\system32\msvcr120_clr0400.dll
2015-09-29 13:20:32 ----A---- C:\Windows\system32\tzsync.exe
2015-09-29 13:20:30 ----AC---- C:\Windows\system32\drivers\bthpan.sys
2015-09-29 13:20:30 ----A---- C:\Windows\SYSWOW64\clfsw32.dll
2015-09-29 13:20:30 ----A---- C:\Windows\system32\storewuauth.dll
2015-09-29 13:20:30 ----A---- C:\Windows\system32\drivers\clfs.sys
2015-09-29 13:20:30 ----A---- C:\Windows\system32\clfsw32.dll
2015-09-29 13:20:29 ----A---- C:\Windows\SYSWOW64\wpdshext.dll
2015-09-29 13:20:29 ----A---- C:\Windows\SYSWOW64\sdbinst.exe
2015-09-29 13:20:29 ----A---- C:\Windows\SYSWOW64\explorer.exe
2015-09-29 13:20:29 ----A---- C:\Windows\system32\wpdshext.dll
2015-09-29 13:20:29 ----A---- C:\Windows\system32\sdbinst.exe
2015-09-29 13:20:29 ----A---- C:\Windows\system32\apphelp.dll
2015-09-29 13:20:29 ----A---- C:\Windows\explorer.exe
2015-09-29 13:20:24 ----A---- C:\Windows\system32\SystemEventsBrokerServer.dll
2015-09-29 13:20:15 ----A---- C:\Windows\SYSWOW64\Windows.Data.Pdf.dll
2015-09-29 13:20:15 ----A---- C:\Windows\system32\Windows.Data.Pdf.dll
2015-09-29 12:49:30 ----A---- C:\Windows\SYSWOW64\D3DX9_43.dll
2015-09-29 12:49:30 ----A---- C:\Windows\SYSWOW64\d3dx11_43.dll
2015-09-29 12:49:30 ----A---- C:\Windows\SYSWOW64\d3dx10_43.dll
2015-09-29 12:49:30 ----A---- C:\Windows\system32\D3DX9_43.dll
2015-09-29 12:49:30 ----A---- C:\Windows\system32\d3dx11_43.dll
2015-09-29 12:49:30 ----A---- C:\Windows\system32\d3dx10_43.dll
2015-09-29 12:49:28 ----A---- C:\Windows\SYSWOW64\nvspcap.dll
2015-09-29 12:49:28 ----A---- C:\Windows\SYSWOW64\nvspbridge.dll
2015-09-29 12:49:28 ----A---- C:\Windows\system32\nvspcap64.dll
2015-09-29 12:49:28 ----A---- C:\Windows\system32\nvspbridge64.dll
2015-09-29 12:49:05 ----A---- C:\Windows\SYSWOW64\nvStreaming.exe
2015-09-29 12:49:03 ----D---- C:\Program Files (x86)\NVIDIA Corporation
2015-09-29 12:49:01 ----D---- C:\ProgramData\NVIDIA
2015-09-29 12:48:59 ----A---- C:\Windows\SYSWOW64\oemdspif.dll
2015-09-29 12:48:59 ----A---- C:\Windows\system32\nvvsvc.exe
2015-09-29 12:48:59 ----A---- C:\Windows\system32\nvsvcr.dll
2015-09-29 12:48:59 ----A---- C:\Windows\system32\nvsvc64.dll
2015-09-29 12:48:59 ----A---- C:\Windows\system32\nvshext.dll
2015-09-29 12:48:59 ----A---- C:\Windows\system32\nvmctray.dll
2015-09-29 12:48:59 ----A---- C:\Windows\system32\nvcpl.dll
2015-09-29 12:48:52 ----A---- C:\Windows\SYSWOW64\OpenCL.dll
2015-09-29 12:48:52 ----A---- C:\Windows\system32\OpenCL.dll
2015-09-29 12:48:47 ----D---- C:\ProgramData\NVIDIA Corporation
2015-09-29 12:47:59 ----A---- C:\Windows\SYSWOW64\nvaudcap32v.dll
2015-09-29 12:47:59 ----A---- C:\Windows\system32\nvaudcap64v.dll
2015-09-29 12:47:59 ----A---- C:\Windows\system32\drivers\nvvad64v.sys
2015-09-29 12:47:58 ----A---- C:\Windows\SYSWOW64\nvwgf2um.dll
2015-09-29 12:47:58 ----A---- C:\Windows\SYSWOW64\nvopencl.dll
2015-09-29 12:47:58 ----A---- C:\Windows\SYSWOW64\nvoglv32.dll
2015-09-29 12:47:58 ----A---- C:\Windows\SYSWOW64\NvIFROpenGL.dll
2015-09-29 12:47:58 ----A---- C:\Windows\SYSWOW64\NvIFR.dll
2015-09-29 12:47:58 ----A---- C:\Windows\SYSWOW64\NvFBC.dll
2015-09-29 12:47:58 ----A---- C:\Windows\SYSWOW64\nvEncodeAPI.dll
2015-09-29 12:47:58 ----A---- C:\Windows\SYSWOW64\nvd3dum.dll
2015-09-29 12:47:58 ----A---- C:\Windows\SYSWOW64\nvcuvid.dll
2015-09-29 12:47:58 ----A---- C:\Windows\SYSWOW64\nvcuda.dll
2015-09-29 12:47:58 ----A---- C:\Windows\SYSWOW64\nvcompiler.dll
2015-09-29 12:47:58 ----A---- C:\Windows\SYSWOW64\nvapi.dll
2015-09-29 12:47:58 ----A---- C:\Windows\system32\nvwgf2umx.dll
2015-09-29 12:47:58 ----A---- C:\Windows\system32\nvopencl.dll
2015-09-29 12:47:58 ----A---- C:\Windows\system32\nvoglv64.dll
2015-09-29 12:47:58 ----A---- C:\Windows\system32\NvIFROpenGL.dll
2015-09-29 12:47:58 ----A---- C:\Windows\system32\NvIFR64.dll
2015-09-29 12:47:58 ----A---- C:\Windows\system32\nvhdap64.dll
2015-09-29 12:47:58 ----A---- C:\Windows\system32\nvhdagenco6420103.dll
2015-09-29 12:47:58 ----A---- C:\Windows\system32\NvFBC64.dll
2015-09-29 12:47:58 ----A---- C:\Windows\system32\nvEncodeAPI64.dll
2015-09-29 12:47:58 ----A---- C:\Windows\system32\nvdispgenco6435598.dll
2015-09-29 12:47:58 ----A---- C:\Windows\system32\nvdispco6435598.dll
2015-09-29 12:47:58 ----A---- C:\Windows\system32\nvd3dumx.dll
2015-09-29 12:47:58 ----A---- C:\Windows\system32\nvcuvid.dll
2015-09-29 12:47:58 ----A---- C:\Windows\system32\nvcuda.dll
2015-09-29 12:47:58 ----A---- C:\Windows\system32\nvcompiler.dll
2015-09-29 12:47:58 ----A---- C:\Windows\system32\nvapi64.dll
2015-09-29 12:47:58 ----A---- C:\Windows\system32\drivers\nvlddmkm.sys
2015-09-29 12:47:58 ----A---- C:\Windows\system32\drivers\nvhda64v.sys
2015-09-29 12:46:32 ----D---- C:\NVIDIA
2015-09-29 12:43:54 ----D---- C:\Program Files\Synaptics
2015-09-29 12:41:59 ----A---- C:\Windows\SYSWOW64\SynTPCOM.dll
2015-09-29 12:41:59 ----A---- C:\Windows\system32\SynTPCo15.dll
2015-09-29 12:41:59 ----A---- C:\Windows\system32\SynTPAPI.dll
2015-09-29 12:41:59 ----A---- C:\Windows\system32\drivers\SynTP.sys
2015-09-29 12:41:57 ----A---- C:\Windows\SYSWOW64\SynCOM.dll
2015-09-29 12:41:57 ----A---- C:\Windows\system32\SynCOM.dll
2015-09-29 12:41:54 ----A---- C:\Windows\system32\drivers\Smb_driver_Intel.sys
2015-09-29 12:41:25 ----D---- C:\Windows\Downloaded Installations
2015-09-29 12:41:11 ----D---- C:\SWTOOLS
2015-09-29 12:38:17 ----D---- C:\Program Files\NVIDIA Corporation
2015-09-29 12:36:46 ----D---- C:\Windows\SYSWOW64\Atheros_L1e
2015-09-29 12:36:36 ----A---- C:\Windows\system32\drivers\L1C63x64.sys
2015-09-29 12:33:26 ----D---- C:\Program Files\DIFX
2015-09-29 12:33:25 ----D---- C:\Program Files\Lenovo
2015-09-29 12:33:25 ----A---- C:\Windows\system32\LenovoSDKEmSubSystem.dll
2015-09-29 12:33:25 ----A---- C:\Windows\system32\drivers\LhdX64.sys
2015-09-29 12:33:21 ----D---- C:\Program Files (x86)\Lenovo
2015-09-29 12:32:54 ----D---- C:\ProgramData\Downloaded Installations
2015-09-29 12:28:19 ----D---- C:\Program Files (x86)\JMicron
2015-09-29 12:28:10 ----D---- C:\Windows\SYSWOW64\SDA
2015-09-29 12:28:04 ----A---- C:\Windows\SYSWOW64\jmcricon.dll
2015-09-29 12:28:04 ----A---- C:\Windows\system32\jmcricon.dll
2015-09-29 12:28:04 ----A---- C:\Windows\system32\drivers\jmcr.sys
2015-09-29 12:11:20 ----A---- C:\Windows\SYSWOW64\RtCamX.dll
2015-09-29 12:11:20 ----A---- C:\Windows\system32\RtCamX64.dll
2015-09-29 12:11:20 ----A---- C:\Windows\system32\drivers\rtsuvc.sys
2015-09-29 12:11:20 ----A---- C:\Windows\RTFTrack.exe
2015-09-29 12:11:20 ----A---- C:\Windows\RtCamU64.exe
2015-09-29 12:09:55 ----D---- C:\Program Files\Realtek
2015-09-29 12:09:54 ----D---- C:\Windows\SYSWOW64\RTCOM
2015-09-29 12:09:31 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI
2015-09-29 12:09:24 ----A---- C:\Windows\system32\drivers\SAMSfPa.dat
2015-09-29 12:09:22 ----A---- C:\Windows\system32\WavesGUILib64.dll
2015-09-29 12:09:22 ----A---- C:\Windows\system32\SRSWOW64.dll
2015-09-29 12:09:22 ----A---- C:\Windows\system32\SRSTSX64.dll
2015-09-29 12:09:22 ----A---- C:\Windows\system32\SRSTSH64.dll
2015-09-29 12:09:22 ----A---- C:\Windows\system32\SRSHP64.dll
2015-09-29 12:09:21 ----A---- C:\Windows\SYSWOW64\SFCOM.dll
2015-09-29 12:09:21 ----A---- C:\Windows\system32\SFSS_APO.dll
2015-09-29 12:09:21 ----A---- C:\Windows\system32\SFNHK64.dll
2015-09-29 12:09:21 ----A---- C:\Windows\system32\SFCOM64.dll
2015-09-29 12:09:21 ----A---- C:\Windows\system32\SFAPO64.dll
2015-09-29 12:09:21 ----A---- C:\Windows\system32\RtPgEx64.dll
2015-09-29 12:09:21 ----A---- C:\Windows\system32\RtlCPAPI64.dll
2015-09-29 12:09:21 ----A---- C:\Windows\system32\drivers\RTKVHD64.sys
2015-09-29 12:09:20 ----A---- C:\Windows\system32\RtkGuiCompLib.dll
2015-09-29 12:09:20 ----A---- C:\Windows\system32\RtkCoLDR64.dll
2015-09-29 12:09:20 ----A---- C:\Windows\system32\RtkCfg64.dll
2015-09-29 12:09:20 ----A---- C:\Windows\system32\RtkAPO64.dll
2015-09-29 12:09:20 ----A---- C:\Windows\system32\RtkApi64.dll
2015-09-29 12:09:20 ----A---- C:\Windows\system32\RTEEP64A.dll
2015-09-29 12:09:20 ----A---- C:\Windows\system32\RTEEL64A.dll
2015-09-29 12:09:20 ----A---- C:\Windows\system32\RTEEG64A.dll
2015-09-29 12:09:20 ----A---- C:\Windows\system32\RTEED64A.dll
2015-09-29 12:09:20 ----A---- C:\Windows\system32\RtDataProc64.dll
2015-09-29 12:09:20 ----A---- C:\Windows\system32\RTCOM64.dll
2015-09-29 12:09:20 ----A---- C:\Windows\system32\RP3DHT64.dll
2015-09-29 12:09:20 ----A---- C:\Windows\system32\RP3DAA64.dll
2015-09-29 12:09:20 ----A---- C:\Windows\system32\RCoRes64.dat
2015-09-29 12:09:20 ----A---- C:\Windows\system32\RCoInstII64.dll
2015-09-29 12:09:20 ----A---- C:\Windows\system32\R4EEP64A.dll
2015-09-29 12:09:20 ----A---- C:\Windows\system32\R4EEL64A.dll
2015-09-29 12:09:20 ----A---- C:\Windows\system32\R4EEG64A.dll
2015-09-29 12:09:20 ----A---- C:\Windows\system32\R4EED64A.dll
2015-09-29 12:09:20 ----A---- C:\Windows\system32\R4EEA64A.dll
2015-09-29 12:09:20 ----A---- C:\Windows\system32\drivers\RTAIODAT.DAT
2015-09-29 12:09:19 ----A---- C:\Windows\system32\MaxxVolumeSDAPO.dll
2015-09-29 12:09:19 ----A---- C:\Windows\system32\MaxxAudioRealtek64.dll
2015-09-29 12:09:19 ----A---- C:\Windows\system32\MaxxAudioRealtek264.dll
2015-09-29 12:09:19 ----A---- C:\Windows\system32\MaxxAudioEQ64.dll
2015-09-29 12:09:19 ----A---- C:\Windows\system32\MaxxAudioAPOShell64.dll
2015-09-29 12:09:19 ----A---- C:\Windows\system32\MaxxAudioAPO30.dll
2015-09-29 12:09:19 ----A---- C:\Windows\system32\MaxxAudioAPO20.dll
2015-09-29 12:09:18 ----A---- C:\Windows\system32\FMAPO64.dll
2015-09-29 12:09:18 ----A---- C:\Windows\system32\DTSVoiceClarityDLL64.dll
2015-09-29 12:09:17 ----D---- C:\Program Files (x86)\Realtek
2015-09-29 12:09:17 ----A---- C:\Windows\system32\DTSSymmetryDLL64.dll
2015-09-29 12:09:17 ----A---- C:\Windows\system32\DTSS2SpeakerDLL64.dll
2015-09-29 12:09:17 ----A---- C:\Windows\system32\DTSS2HeadphoneDLL64.dll
2015-09-29 12:09:17 ----A---- C:\Windows\system32\DTSNeoPCDLL64.dll
2015-09-29 12:09:17 ----A---- C:\Windows\system32\DTSLimiterDLL64.dll
2015-09-29 12:09:17 ----A---- C:\Windows\system32\DTSLFXAPO64.dll
2015-09-29 12:09:17 ----A---- C:\Windows\system32\DTSGFXAPONS64.dll
2015-09-29 12:09:17 ----A---- C:\Windows\system32\DTSGFXAPO64.dll
2015-09-29 12:09:17 ----A---- C:\Windows\system32\DTSGainCompensatorDLL64.dll
2015-09-29 12:09:17 ----A---- C:\Windows\system32\DTSBoostDLL64.dll
2015-09-29 12:09:17 ----A---- C:\Windows\system32\DTSBassEnhancementDLL64.dll
2015-09-29 12:09:17 ----A---- C:\Windows\system32\CONEQMSAPOGUILibrary.dll
2015-09-29 12:09:17 ----A---- C:\Windows\system32\AERTAR64.dll
2015-09-29 12:09:17 ----A---- C:\Windows\system32\AERTAC64.dll
2015-09-29 12:09:15 ----HD---- C:\Program Files (x86)\Temp
2015-09-29 12:09:15 ----A---- C:\Windows\RtlExUpd.dll
2015-09-29 12:08:41 ----D---- C:\Users\Gripen\AppData\Roaming\Intel Corporation
2015-09-29 12:06:41 ----A---- C:\Windows\system32\drivers\iaStorA.sys
2015-09-29 12:04:47 ----A---- C:\Windows\SYSWOW64\CSVer.dll
2015-09-29 12:03:43 ----A---- C:\Windows\system32\drivers\IntelMEFWVer.dll
2015-09-29 12:03:40 ----A---- C:\Windows\SYSWOW64\log.txt
2015-09-29 12:03:39 ----D---- C:\ProgramData\Intel
2015-09-29 12:03:37 ----D---- C:\Program Files\Intel
2015-09-29 12:03:12 ----D---- C:\Intel
2015-09-29 12:03:12 ----A---- C:\Windows\system32\drivers\HECIx64.sys
2015-09-29 12:03:09 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2015-09-29 12:03:09 ----D---- C:\Users\Gripen\AppData\Roaming\InstallShield
2015-09-29 12:03:09 ----D---- C:\Program Files (x86)\Intel
2015-09-29 12:03:07 ----D---- C:\Drivers
2015-09-29 11:53:50 ----D---- C:\Windows\Panther
2015-09-29 11:41:17 ----D---- C:\Program Files (x86)\MSECache
2015-09-29 11:30:59 ----D---- C:\Program Files (x86)\Microsoft Works
2015-09-29 11:30:54 ----D---- C:\Program Files (x86)\Microsoft Visual Studio
2015-09-29 11:30:47 ----D---- C:\Windows\PCHEALTH
2015-09-29 11:29:55 ----D---- C:\Program Files\Microsoft Office
2015-09-29 11:29:40 ----D---- C:\ProgramData\Microsoft Help
2015-09-29 11:29:40 ----D---- C:\Program Files (x86)\Microsoft Office
2015-09-29 11:29:29 ----RHD---- C:\MSOCache
2015-09-29 11:11:37 ----D---- C:\Windows\SoftwareDistribution
2015-09-29 11:01:08 ----D---- C:\Users\Gripen\AppData\Roaming\Adobe
2015-09-29 11:01:06 ----SD---- C:\Users\Gripen\AppData\Roaming\Microsoft
2015-09-29 10:55:12 ----SHD---- C:\ProgramData\Šablony
2015-09-29 10:55:12 ----SHD---- C:\ProgramData\Plocha
2015-09-29 10:55:12 ----SHD---- C:\ProgramData\Nabídka Start
2015-09-29 10:55:12 ----SHD---- C:\ProgramData\Dokumenty
2015-09-29 10:55:12 ----SHD---- C:\ProgramData\Data aplikací
2015-09-29 10:54:47 ----SHD---- C:\Recovery
2015-09-29 10:54:16 ----D---- C:\Windows\Prefetch
2015-09-29 10:54:02 ----SHD---- C:\System Volume Information
2015-09-29 10:54:02 ----ASH---- C:\swapfile.sys
2015-09-29 10:54:02 ----ASH---- C:\pagefile.sys

======List of files/folders modified in the last 1 month======

2015-10-28 17:53:54 ----D---- C:\Windows\Temp
2015-10-28 17:51:33 ----RD---- C:\Program Files
2015-10-28 17:42:31 ----D---- C:\Windows\system32\Tasks
2015-10-28 17:41:02 ----D---- C:\Windows\system32\drivers
2015-10-28 17:34:47 ----HD---- C:\Program Files\WindowsApps
2015-10-28 17:33:33 ----D---- C:\Windows\system32\config
2015-10-28 17:33:29 ----D---- C:\Windows\AppReadiness
2015-10-28 17:32:00 ----D---- C:\Windows\system32\sru
2015-10-28 17:31:28 ----D---- C:\Windows\AppCompat
2015-10-28 17:31:27 ----D---- C:\Windows\Inf
2015-10-28 15:04:49 ----SD---- C:\Windows\system32\CompatTel
2015-10-28 15:04:49 ----RSD---- C:\Windows\Media
2015-10-28 15:04:49 ----RD---- C:\Windows\ToastData
2015-10-28 15:04:49 ----D---- C:\Windows\Tasks
2015-10-28 15:04:49 ----D---- C:\Windows\SYSWOW64\wbem
2015-10-28 15:04:49 ----D---- C:\Windows\SYSWOW64\migration
2015-10-28 15:04:49 ----D---- C:\Windows\SYSWOW64\cs-CZ
2015-10-28 15:04:49 ----D---- C:\Windows\system32\migration
2015-10-28 15:04:49 ----D---- C:\Windows\system32\drivers\UMDF
2015-10-28 15:04:49 ----D---- C:\Windows\system32\drivers\etc
2015-10-28 15:04:49 ----D---- C:\Windows\system32\Dism
2015-10-28 15:04:49 ----D---- C:\Windows\system32\cs-CZ
2015-10-28 15:04:49 ----D---- C:\Windows\system32\CodeIntegrity
2015-10-28 15:04:49 ----D---- C:\Windows\system32\Boot
2015-10-28 15:04:49 ----D---- C:\Windows\rescache
2015-10-28 15:04:49 ----D---- C:\Windows\PolicyDefinitions
2015-10-28 15:04:49 ----D---- C:\Windows\apppatch
2015-10-28 15:04:49 ----D---- C:\Program Files\Internet Explorer
2015-10-28 15:04:49 ----D---- C:\Program Files (x86)\Internet Explorer
2015-10-28 15:04:48 ----D---- C:\Windows\SYSWOW64\Macromed
2015-10-28 15:04:48 ----D---- C:\Windows\system32\Sysprep
2015-10-28 15:04:48 ----D---- C:\Windows\system32\Macromed
2015-10-28 15:04:47 ----D---- C:\Windows\servicing
2015-10-28 15:04:47 ----D---- C:\Windows\security
2015-10-28 15:04:47 ----D---- C:\Windows\Help
2015-10-28 15:03:10 ----D---- C:\Windows\registration
2015-10-28 15:02:58 ----D---- C:\Windows\SYSWOW64\MUI
2015-10-28 15:02:54 ----D---- C:\Windows\system32\wdi
2015-10-28 15:02:49 ----D---- C:\Windows\system32\MUI
2015-10-28 15:02:44 ----D---- C:\Windows\system32\DriverStore
2015-10-28 15:02:42 ----D---- C:\Windows\system32\catroot
2015-10-28 15:02:36 ----D---- C:\Windows\Microsoft.NET
2015-10-28 15:02:34 ----SHD---- C:\Windows\Installer
2015-10-28 15:02:30 ----RD---- C:\Windows\assembly
2015-10-28 15:02:05 ----HD---- C:\ProgramData
2015-10-28 15:02:04 ----SD---- C:\ProgramData\Microsoft
2015-10-28 15:01:59 ----RD---- C:\Program Files (x86)
2015-10-28 15:01:55 ----D---- C:\Program Files (x86)\Common Files
2015-10-28 14:12:41 ----RD---- C:\Windows\System32
2015-10-28 14:12:41 ----A---- C:\Windows\system32\PerfStringBackup.INI
2015-10-28 14:05:56 ----D---- C:\Windows\system32\catroot2
2015-10-28 14:05:25 ----D---- C:\Windows\SysWOW64
2015-10-28 14:05:12 ----D---- C:\Windows\WinSxS
2015-10-28 14:05:12 ----D---- C:\Windows\system32\wbem
2015-10-28 14:05:12 ----D---- C:\Windows
2015-10-28 14:05:12 ----D---- C:\Program Files\Windows Defender
2015-10-21 19:10:12 ----D---- C:\Windows\CbsTemp
2015-10-15 11:40:37 ----D---- C:\Windows\system32\FxsTmp
2015-10-03 08:22:32 ----D---- C:\Windows\system32\NDF
2015-10-01 12:13:18 ----D---- C:\Windows\Logs
2015-09-29 15:48:13 ----SHD---- C:\$Recycle.Bin
2015-09-29 15:07:53 ----D---- C:\Windows\SYSWOW64\setup
2015-09-29 15:07:53 ----D---- C:\Windows\system32\sr-Latn-RS
2015-09-29 15:07:53 ----D---- C:\Windows\system32\sr-Latn-CS
2015-09-29 15:07:53 ----D---- C:\Windows\system32\setup
2015-09-29 14:55:12 ----D---- C:\Windows\system32\en-US
2015-09-29 14:01:18 ----RSD---- C:\Windows\Fonts
2015-09-29 14:01:18 ----RD---- C:\Windows\ImmersiveControlPanel
2015-09-29 14:01:18 ----D---- C:\Windows\system32\AdvancedInstallers
2015-09-29 14:01:17 ----D---- C:\Windows\system32\drivers\cs-CZ
2015-09-29 14:01:17 ----D---- C:\Program Files\Windows Journal
2015-09-29 14:01:16 ----D---- C:\Program Files (x86)\Windows Defender
2015-09-29 14:01:15 ----D---- C:\Windows\WinStore
2015-09-29 14:01:14 ----D---- C:\Program Files\Common Files\microsoft shared
2015-09-29 13:32:27 ----D---- C:\Windows\debug
2015-09-29 13:31:54 ----A---- C:\Windows\win.ini
2015-09-29 12:48:03 ----RD---- C:\Users
2015-09-29 12:33:24 ----D---- C:\Windows\SYSWOW64\drivers
2015-09-29 12:33:00 ----A---- C:\Windows\system32\WudfUpdate_01011.dll
2015-09-29 12:11:42 ----D---- C:\Windows\twain_32
2015-09-29 11:29:49 ----D---- C:\Windows\ShellNew
2015-09-29 11:29:23 ----D---- C:\Windows\system32\restore
2015-09-29 10:55:12 ----D---- C:\Program Files\Windows NT
2015-09-29 10:54:47 ----D---- C:\Windows\system32\Recovery

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 iaStorA;iaStorA; C:\Windows\System32\drivers\iaStorA.sys [2012-09-01 647736]
R0 LHDmgr;LHDmgr; C:\Windows\System32\DRIVERS\LhdX64.sys [2015-09-29 39008]
R0 Wof;Windows Overlay File System Filter Driver; C:\Windows\system32\drivers\Wof.sys [2014-11-21 157016]
R1 vwififlt;@%SystemRoot%\System32\drivers\vwififlt.sys,-259; C:\Windows\system32\DRIVERS\vwififlt.sys [2013-08-22 71680]
R2 LGCoreTemp;Logitech CPU Core Tempurature; \??\C:\Program Files\Logitech Gaming Software\Drivers\LgCoreTemp\lgcoretemp.sys [2015-06-21 14184]
R3 ACPIVPC;@oem37.inf,%ACPIVPC.SvcDesc%;Lenovo Virtual Power Controller Driver; C:\Windows\System32\drivers\AcpiVpc.sys [2015-09-29 33560]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2015-06-09 81920]
R3 btmhsf;btmhsf; C:\Windows\system32\DRIVERS\btmhsf.sys [2013-10-15 1390904]
R3 esgiguard;esgiguard; \??\C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys [2015-10-28 15920]
R3 iBtFltCoex;iBtFltCoex; C:\Windows\system32\DRIVERS\iBtFltCoex.sys [2013-10-15 69088]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2013-04-17 3355336]
R3 JMCR;JMCR; C:\Windows\System32\drivers\jmcr.sys [2012-06-22 174176]
R3 L1C;@oem39.inf,%L1C.Service.DispName%;NDIS Miniport Driver for Qualcomm Atheros AR81xx PCI-E Ethernet Controller; C:\Windows\system32\DRIVERS\L1C63x64.sys [2013-07-18 130248]
R3 LGBusEnum;@oem56.inf,%LGBusEnum.SVCDESC%;Logitech Gaming Virtual Bus Enumerator Driver; C:\Windows\system32\drivers\LGBusEnum.sys [2015-06-11 37408]
R3 LGJoyXlCore;@oem56.inf,%LGJoyXlCore.SVCDESC%;Logitech Translation Layer Driver (LGS); C:\Windows\system32\drivers\LGJoyXlCore.sys [2015-06-11 68384]
R3 LGSHidFilt;@oem54.inf,%LGSHidFilt.SvcDesc%;Logitech Gaming KMDF HID Filter Driver; C:\Windows\system32\DRIVERS\LGSHidFilt.Sys [2013-05-30 64280]
R3 LGVirHid;@oem57.inf,%LGVirHid.SVCDESC%;Logitech Gamepanel Virtual HID Device Driver; C:\Windows\system32\drivers\LGVirHid.sys [2015-06-11 26912]
R3 MEIx64;@oem1.inf,%HECI_SvcDesc%;Intel(R) Management Engine Interface ; C:\Windows\System32\drivers\HECIx64.sys [2012-07-02 62784]
R3 NETwNe64;@oem48.inf,___ %NIC_Service_DispName_WIN8_64%;___ Ovladač adaptéru řady Intel(R) Wireless WiFi Link 5000 pro systém Windows 8 64 Bit; C:\Windows\system32\DRIVERS\NETwew00.sys [2013-09-04 3345376]
R3 NVHDA;@oem43.inf,%NVHDA.SvcDesc%;Service for NVIDIA High Definition Audio Driver; C:\Windows\system32\drivers\nvhda64v.sys [2015-09-18 204648]
R3 nvlddmkm;nvlddmkm; C:\Windows\system32\DRIVERS\nvlddmkm.sys [2015-09-14 11096696]
R3 NvStreamKms;NvStreamKms; \??\C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [2015-08-27 19576]
R3 nvvad_WaveExtensible;@oem44.inf,%nvvad_WaveExtensible.SvcDesc%;NVIDIA Virtual Audio Device (Wave Extensible) (WDM); C:\Windows\system32\drivers\nvvad64v.sys [2015-08-11 50472]
R3 rtsuvc;@oem29.inf,%rtsuvc.DeviceDesc%;Lenovo EasyCamera; C:\Windows\system32\DRIVERS\rtsuvc.sys [2013-09-25 8230160]
R3 SmbDrvI;SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [2013-09-25 31032]
R3 SynTP;@oem42.inf,%SynTP.SvcDesc%;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2013-09-25 464184]
R3 vwifimp;@%SystemRoot%\System32\drivers\vwifimp.sys,-261; C:\Windows\system32\DRIVERS\vwifimp.sys [2013-08-22 36864]
S3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Služba Bluetooth Enumerator; C:\Windows\System32\drivers\BthEnum.sys [2015-06-09 53248]
S3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Ovladač úspory energie technologie Bluetooth; C:\Windows\system32\DRIVERS\BthLEEnum.sys [2014-11-21 226304]
S3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Bluetooth Device (Personal Area Network); C:\Windows\System32\drivers\bthpan.sys [2015-07-10 118272]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2015-06-09 1201664]
S3 btmaux;@oem49.inf,%BTMAUX.ServiceDesc%;Intel Bluetooth Auxiliary Service; C:\Windows\system32\DRIVERS\btmaux.sys [2013-07-22 140600]
S3 EsgScanner;EsgScanner; C:\Windows\system32\DRIVERS\EsgScanner.sys [2015-10-28 22704]
S3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Bluetooth Device (RFCOMM Protocol TDI); C:\Windows\System32\drivers\rfcomm.sys [2015-01-30 167424]
S3 usbvideo;@usbvideo.inf,%USBVideo.SvcDesc%;Zobrazovací zařízení USB (WDM); C:\Windows\System32\Drivers\usbvideo.sys [2014-11-21 212736]
S3 WDC_SAM;@oem46.inf,%WDC_SAM_ServiceName%;WD SCSI Pass Thru driver; C:\Windows\System32\drivers\wdcsam64.sys [2015-04-29 23200]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 Bluetooth Device Monitor;Bluetooth Device Monitor; C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe [2013-08-26 1137016]
R2 Bluetooth OBEX Service;Bluetooth OBEX Service; C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe [2013-08-26 1157496]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\Windows\System32\svchost.exe [2014-11-21 38792]
R2 EMET_Service;Microsoft EMET Service; C:\Program Files (x86)\EMET 5.2\EMET_Service.exe [2015-03-11 22680]
R2 GfExperienceService;NVIDIA GeForce Experience Service; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [2015-08-27 1155192]
R2 IAStorDataMgrSvc;Úložná technologie Intel® Rapid; C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2012-09-01 14904]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [2012-04-20 635104]
R2 Intel(R) Wireless Bluetooth(R) 4.0 Radio Management;Intel(R) Wireless Bluetooth(R) 4.0 Radio Management; C:\Program Files (x86)\Intel\Bluetooth\ibtrksrv.exe [2013-09-18 157128]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2012-06-25 166720]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2012-07-17 277824]
R2 NvNetworkService;NVIDIA Network Service; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [2015-08-27 1872504]
R2 NvStreamSvc;NVIDIA Streamer Service; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [2015-08-27 5544568]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2015-09-13 937776]
R2 SpyHunter 4 Service;SpyHunter 4 Service; C:\Program Files\Enigma Software Group\SpyHunter\SH4Service.exe [2015-10-28 1026944]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2015-09-13 410744]
R2 UNS;Intel(R) Management and Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2012-07-17 365376]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\Windows\System32\svchost.exe [2014-11-21 38792]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119674
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o kontrolu logu, podezření na COM Surrogate

#2 Příspěvek od Rudy »

Zdravím!
Spusťte tuto utilitu:
Stáhněte AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
Uložte na plochu
Ukončete všechny programy
Klikněte nejprve na >Scan< a pak na >Clean<.
Proběhne skenováni a pak se objeví log, který sem vložte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Gripen
Návštěvník
Návštěvník
Příspěvky: 6
Registrován: 28 říj 2015 19:11

Re: Prosím o kontrolu logu, podezření na COM Surrogate

#3 Příspěvek od Gripen »

Děkuji za rychlou odpověď, zde je log:

# AdwCleaner v5.015 - Logfile created 28/10/2015 at 18:31:51
# Updated 26/10/2015 by Xplode
# Database : 2015-10-26.2 [Server]
# Operating system : Windows 8.1 (x64)
# Username : Gripen - GRIPEN-NTB
# Running from : C:\Users\Gripen\Desktop\adwcleaner_5.015.exe
# Option : Cleaning
# Support : http://toolslib.net/forum

***** [ Services ] *****


***** [ Folders ] *****


***** [ Files ] *****


***** [ DLLs ] *****


***** [ Shortcuts ] *****


***** [ Scheduled tasks ] *****


***** [ Registry ] *****

[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{90120000-00B0-0405-0000-0000000FF1CE}

***** [ Web browsers ] *****


*************************

:: Winsock settings cleared

########## EOF - C:\AdwCleaner\AdwCleaner[C1].txt - [747 bytes] ##########

Gripen
Návštěvník
Návštěvník
Příspěvky: 6
Registrován: 28 říj 2015 19:11

Re: Prosím o kontrolu logu, podezření na COM Surrogate

#4 Příspěvek od Gripen »

Rovnou vkládám další log z RSIT:

Logfile of random's system information tool 1.10 (written by random/random)
Run by Gripen at 2015-10-28 18:37:20
Microsoft Windows 8.1
System drive C: has 122 GB (72%) free of 171 GB
Total RAM: 8139 MB (78% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 18:37:21, on 28. 10. 2015
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.17840)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
C:\Program Files\trend micro\Gripen.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: Adblock Plus for IE Browser Helper Object - {FFCB3198-32F3-4E8B-9539-4324694ED664} - C:\Program Files\Adblock Plus for IE\AdblockPlus32.dll
O4 - HKLM\..\Run: [IAStorIcon] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe "C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe" 60
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: Bluetooth Device Monitor - Motorola Solutions, Inc. - C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe
O23 - Service: Bluetooth OBEX Service - Motorola Solutions, Inc. - C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: NVIDIA GeForce Experience Service (GfExperienceService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
O23 - Service: Úložná technologie Intel® Rapid (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) Wireless Bluetooth(R) 4.0 Radio Management - Intel Corporation - C:\Program Files (x86)\Intel\Bluetooth\ibtrksrv.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: SpyHunter 4 Service - Enigma Software Group USA, LLC. - C:\Program Files\Enigma Software Group\SpyHunter\SH4Service.exe
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 7168 bytes

======Listing Processes======





wininit.exe

winlogon.exe

C:\Windows\system32\lsass.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
"C:\Program Files\Enigma Software Group\SpyHunter\SH4Service.exe"
"dwm.exe"
"C:\Windows\system32\nvvsvc.exe"
"C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe"
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\Windows\system32\nvvsvc.exe -session -first
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
taskhostex.exe
"\Program Files\Synaptics\SynTP\SynTPEnh.exe"
C:\Windows\System32\svchost.exe -k utcsvc
"C:\Program Files (x86)\EMET 5.2\EMET_Service.exe"
"C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe"
"C:\Program Files\Intel\iCLS Client\HeciServer.exe"
"C:\Program Files (x86)\Intel\Bluetooth\ibtrksrv.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
C:\Windows\Explorer.EXE
"C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe"
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe"

"C:\Program Files (x86)\EMET 5.2\EMET_Agent.exe"
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
"C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
C:\Windows\system32\SearchIndexer.exe /Embedding
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-417760b4-a13b-49ad-bdc3-6b0f170e6d80 -SystemEventPortName:HostProcess-af318723-ad03-4feb-9974-1cfd4d7faf9f -IoCancelEventPortName:HostProcess-01e437a4-c6e0-4b0a-9cd6-07108feb9e0b -NonStateChangingEventPortName:HostProcess-51ff70af-8675-4353-aedb-3c2ec57e6e5a -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:9b0f1985-2c52-4113-9fd5-94b6ec25001e -DeviceGroupId:WudfDefaultDevicePool
"C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE"
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /FORPCEE4
"C:\Windows\RTFTrack.exe"
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe" 80253a3e-0a17-45e6-926a-bcde619a02c5
\??\C:\Windows\system32\conhost.exe 0x4
"C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe"
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe" serviceapp
\??\C:\Windows\system32\conhost.exe 0x4
"C:\Program Files (x86)\Lenovo\Energy Management\utility.exe"
"C:\Program Files\Synaptics\SynTP\SynLenovoGestureMgr.exe" /m
"C:\Windows\System32\rundll32.exe" "C:\Program Files (x86)\Intel\Bluetooth\btmshellex.dll",TrayApp

"C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe"
"C:\Windows\system32\NOTEPAD.EXE" C:\AdwCleaner\AdwCleaner[C1].txt
"C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe"

"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe"
"C:\Program Files\Internet Explorer\iexplore.exe"
"C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE" SCODEF:4512 CREDAT:267521 /prefetch:2
AdblockPlusEngine.exe cs-CZ
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe_S-1-5-21-3417434039-3861459873-3769551306-10012_ Global\UsGthrCtrlFltPipeMssGthrPipe_S-1-5-21-3417434039-3861459873-3769551306-10012 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon" "1"
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
"C:\Windows\system32\SearchFilterHost.exe" 0 564 568 576 65536 572
C:\Windows\System32\RuntimeBroker.exe -Embedding
wmiadap.exe /F /T /R
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
C:\Windows\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
"E:\Stažené soubory\RSITx64.exe"
C:\Windows\system32\wbem\wmiprvse.exe

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FFCB3198-32F3-4E8B-9539-4324694ED664}]
Adblock Plus for IE Browser Helper Object - C:\Program Files\Adblock Plus for IE\AdblockPlus64.dll [2015-09-22 857792]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FFCB3198-32F3-4E8B-9539-4324694ED664}]
Adblock Plus for IE Browser Helper Object - C:\Program Files\Adblock Plus for IE\AdblockPlus32.dll [2015-09-22 755392]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2013-04-10 13519432]
"RtHDVBg_Dolby"=C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2013-03-08 1278024]
"RtsFT"=C:\Windows\RTFTrack.exe [2013-09-25 6334096]
"Energy Management"=C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe [2015-09-29 17080376]
"EnergyUtility"=C:\Program Files (x86)\Lenovo\Energy Management\Utility.exe [2015-09-29 191544]
"SynLenovoGestureMgr"=C:\Program Files\Synaptics\SynTP\SynLenovoGestureMgr.exe [2013-09-25 665400]
"NvBackend"=C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2015-08-27 2634872]
"ShadowPlay"=C:\Windows\system32\nvspcap64.dll [2015-08-27 1710568]
"BTMTrayAgent"=C:\Program Files (x86)\Intel\Bluetooth\btmshellex.dll [2013-09-19 7818040]
"Launch LCore"=C:\Program Files\Logitech Gaming Software\LCore.exe [2015-07-02 14601160]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"IAStorIcon"=C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe [2012-09-12 56128]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"VIDC.YUY2"=msyuv.dll
"vidc.i420"=iyuv_32.dll
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"VIDC.YVYU"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"vidc.msvc"=msvidc32.dll
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2015-10-28 18:29:39 ----D---- C:\AdwCleaner
2015-10-28 17:51:33 ----D---- C:\rsit
2015-10-28 17:51:33 ----D---- C:\Program Files\trend micro
2015-10-28 17:42:08 ----D---- C:\sh4ldr
2015-10-28 17:41:02 ----A---- C:\Windows\system32\drivers\EsgScanner.sys
2015-10-20 17:19:21 ----D---- C:\ProgramData\VIPRE
2015-10-20 17:14:00 ----D---- C:\ProgramData\STOPzilla!
2015-10-20 17:13:57 ----D---- C:\Program Files (x86)\iS3
2015-10-15 11:33:43 ----D---- C:\ProgramData\Adobe
2015-10-15 10:58:09 ----D---- C:\Program Files (x86)\HP
2015-10-15 10:58:07 ----D---- C:\Program Files\HP
2015-10-13 19:13:48 ----D---- C:\ProgramData\HP
2015-10-11 15:54:22 ----D---- C:\Program Files\Mad Catz
2015-10-11 12:54:11 ----A---- C:\autoexec.bat
2015-10-11 12:53:54 ----D---- C:\Users\Gripen\AppData\Roaming\Enigma Software Group
2015-10-11 12:52:19 ----D---- C:\Program Files\Enigma Software Group
2015-10-02 18:11:09 ----D---- C:\Program Files (x86)\Disc Soft
2015-10-02 18:09:49 ----D---- C:\Users\Gripen\AppData\Roaming\DAEMON Tools Lite
2015-10-02 18:08:48 ----D---- C:\ProgramData\DAEMON Tools Lite
2015-10-01 22:36:09 ----D---- C:\Windows\Minidump
2015-09-30 19:51:14 ----D---- C:\Users\Gripen\AppData\Roaming\TS3Client
2015-09-30 16:59:10 ----D---- C:\Users\Gripen\AppData\Roaming\Identities
2015-09-30 11:56:02 ----D---- C:\Users\Gripen\AppData\Roaming\WinRAR
2015-09-30 10:54:22 ----D---- C:\Program Files (x86)\Code Laboratories
2015-09-30 10:05:35 ----D---- C:\Program Files (x86)\Reference Assemblies
2015-09-30 09:48:48 ----D---- C:\Hry
2015-09-29 17:55:22 ----D---- C:\Users\Gripen\AppData\Roaming\MPC-HC
2015-09-29 17:53:10 ----D---- C:\Program Files\MPC-HC
2015-09-29 17:48:06 ----A---- C:\Windows\removeep.cmd
2015-09-29 17:35:46 ----D---- C:\ProgramData\LogiShrd
2015-09-29 17:35:34 ----A---- C:\Windows\system32\drivers\LNonPnP.sys
2015-09-29 17:35:23 ----D---- C:\Program Files\Logitech Gaming Software
2015-09-29 17:35:00 ----D---- C:\Users\Gripen\AppData\Roaming\Logitech
2015-09-29 17:35:00 ----D---- C:\Users\Gripen\AppData\Roaming\Logishrd
2015-09-29 16:09:03 ----D---- C:\ProgramData\Package Cache
2015-09-29 15:38:50 ----D---- C:\Program Files (x86)\EMET 5.2
2015-09-29 15:36:56 ----D---- C:\Users\Gripen\AppData\Roaming\Macromedia
2015-09-29 15:30:53 ----D---- C:\ProgramData\Malwarebytes
2015-09-29 15:27:33 ----D---- C:\Program Files\Adblock Plus for IE
2015-09-29 14:54:33 ----D---- C:\Program Files\Microsoft Silverlight
2015-09-29 14:54:33 ----D---- C:\Program Files (x86)\Microsoft Silverlight
2015-09-29 14:54:22 ----A---- C:\Windows\SYSWOW64\rascfg.dll
2015-09-29 14:54:22 ----A---- C:\Windows\system32\rascfg.dll
2015-09-29 14:54:22 ----A---- C:\Windows\system32\drivers\wanarp.sys
2015-09-29 14:54:22 ----A---- C:\Windows\system32\drivers\ndproxy.sys
2015-09-29 14:53:06 ----A---- C:\Windows\system32\SyncEngine.dll
2015-09-29 14:53:05 ----A---- C:\Windows\SYSWOW64\mfplat.dll
2015-09-29 14:53:05 ----A---- C:\Windows\system32\SkyDrive.exe
2015-09-29 14:53:05 ----A---- C:\Windows\system32\mfplat.dll
2015-09-29 14:53:05 ----A---- C:\Windows\system32\MFMediaEngine.dll
2015-09-29 14:53:05 ----A---- C:\Windows\system32\drivers\rasl2tp.sys
2015-09-29 14:53:05 ----A---- C:\Windows\system32\drivers\netio.sys
2015-09-29 14:53:05 ----A---- C:\Windows\system32\crypt32.dll
2015-09-29 14:53:04 ----AC---- C:\Windows\system32\drivers\vhdmp.sys
2015-09-29 14:53:04 ----AC---- C:\Windows\system32\drivers\intelpep.sys
2015-09-29 14:53:04 ----A---- C:\Windows\SYSWOW64\WSDApi.dll
2015-09-29 14:53:04 ----A---- C:\Windows\SYSWOW64\WinSCard.dll
2015-09-29 14:53:04 ----A---- C:\Windows\SYSWOW64\untfs.dll
2015-09-29 14:53:04 ----A---- C:\Windows\SYSWOW64\QSVRMGMT.DLL
2015-09-29 14:53:04 ----A---- C:\Windows\SYSWOW64\mfmp4srcsnk.dll
2015-09-29 14:53:04 ----A---- C:\Windows\SYSWOW64\MFMediaEngine.dll
2015-09-29 14:53:04 ----A---- C:\Windows\SYSWOW64\crypt32.dll
2015-09-29 14:53:04 ----A---- C:\Windows\SYSWOW64\AppxAllUserStore.dll
2015-09-29 14:53:04 ----A---- C:\Windows\system32\WSDMon.dll
2015-09-29 14:53:04 ----A---- C:\Windows\system32\WSDApi.dll
2015-09-29 14:53:04 ----A---- C:\Windows\system32\WinSCard.dll
2015-09-29 14:53:04 ----A---- C:\Windows\system32\vpnike.dll
2015-09-29 14:53:04 ----A---- C:\Windows\system32\untfs.dll
2015-09-29 14:53:04 ----A---- C:\Windows\system32\spoolsv.exe
2015-09-29 14:53:04 ----A---- C:\Windows\system32\rasapi32.dll
2015-09-29 14:53:04 ----A---- C:\Windows\system32\QSVRMGMT.DLL
2015-09-29 14:53:04 ----A---- C:\Windows\system32\QSHVHOST.DLL
2015-09-29 14:53:04 ----A---- C:\Windows\system32\mfmp4srcsnk.dll
2015-09-29 14:53:04 ----A---- C:\Windows\system32\drivers\wfplwfs.sys
2015-09-29 14:53:04 ----A---- C:\Windows\system32\drivers\pdc.sys
2015-09-29 14:53:04 ----A---- C:\Windows\system32\drivers\dam.sys
2015-09-29 14:53:04 ----A---- C:\Windows\system32\dnsrslvr.dll
2015-09-29 14:53:04 ----A---- C:\Windows\system32\AppxAllUserStore.dll
2015-09-29 14:53:03 ----A---- C:\Windows\SYSWOW64\vsstrace.dll
2015-09-29 14:53:03 ----A---- C:\Windows\SYSWOW64\vssapi.dll
2015-09-29 14:53:03 ----A---- C:\Windows\SYSWOW64\rasser.dll
2015-09-29 14:53:03 ----A---- C:\Windows\SYSWOW64\rasmxs.dll
2015-09-29 14:53:03 ----A---- C:\Windows\SYSWOW64\rasdiag.dll
2015-09-29 14:53:03 ----A---- C:\Windows\SYSWOW64\rasapi32.dll
2015-09-29 14:53:03 ----A---- C:\Windows\SYSWOW64\QSHVHOST.DLL
2015-09-29 14:53:03 ----A---- C:\Windows\SYSWOW64\eventcls.dll
2015-09-29 14:53:03 ----A---- C:\Windows\SYSWOW64\dnsapi.dll
2015-09-29 14:53:03 ----A---- C:\Windows\SYSWOW64\DevicePairing.dll
2015-09-29 14:53:03 ----A---- C:\Windows\system32\VSSVC.exe
2015-09-29 14:53:03 ----A---- C:\Windows\system32\vsstrace.dll
2015-09-29 14:53:03 ----A---- C:\Windows\system32\vssapi.dll
2015-09-29 14:53:03 ----A---- C:\Windows\system32\SkyDriveTelemetry.dll
2015-09-29 14:53:03 ----A---- C:\Windows\system32\rasser.dll
2015-09-29 14:53:03 ----A---- C:\Windows\system32\rasmxs.dll
2015-09-29 14:53:03 ----A---- C:\Windows\system32\rasdiag.dll
2015-09-29 14:53:03 ----A---- C:\Windows\system32\eventcls.dll
2015-09-29 14:53:03 ----A---- C:\Windows\system32\drivers\ndistapi.sys
2015-09-29 14:53:03 ----A---- C:\Windows\system32\drivers\agilevpn.sys
2015-09-29 14:53:03 ----A---- C:\Windows\system32\dnsapi.dll
2015-09-29 14:53:03 ----A---- C:\Windows\system32\DevicePairing.dll
2015-09-29 14:53:03 ----A---- C:\Windows\splwow64.exe
2015-09-29 14:53:01 ----A---- C:\Windows\system32\sppwinob.dll
2015-09-29 14:53:01 ----A---- C:\Windows\system32\sppsvc.exe
2015-09-29 14:53:01 ----A---- C:\Windows\system32\sppobjs.dll
2015-09-29 14:53:00 ----A---- C:\Windows\SYSWOW64\d2d1.dll
2015-09-29 14:53:00 ----A---- C:\Windows\system32\d2d1.dll
2015-09-29 14:52:50 ----A---- C:\Windows\system32\SystemSettingsAdminFlowUI.dll
2015-09-29 14:52:50 ----A---- C:\Windows\system32\SystemSettingsAdminFlows.exe
2015-09-29 14:52:50 ----A---- C:\Windows\system32\SystemSettings.Handlers.dll
2015-09-29 14:52:50 ----A---- C:\Windows\system32\MDMAgent.exe
2015-09-29 14:52:47 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2015-09-29 14:52:47 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2015-09-29 14:52:47 ----A---- C:\Windows\SYSWOW64\advapi32.dll
2015-09-29 14:52:47 ----A---- C:\Windows\system32\ntoskrnl.exe
2015-09-29 14:52:47 ----A---- C:\Windows\system32\ntdll.dll
2015-09-29 14:52:47 ----A---- C:\Windows\system32\KernelBase.dll
2015-09-29 14:52:47 ----A---- C:\Windows\system32\advapi32.dll
2015-09-29 14:52:34 ----A---- C:\Windows\SYSWOW64\ucrtbase.dll
2015-09-29 14:52:34 ----A---- C:\Windows\SYSWOW64\FWPUCLNT.DLL
2015-09-29 14:52:34 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-utility-l1-1-0.dll
2015-09-29 14:52:34 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-time-l1-1-0.dll
2015-09-29 14:52:34 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-string-l1-1-0.dll
2015-09-29 14:52:34 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-stdio-l1-1-0.dll
2015-09-29 14:52:34 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-runtime-l1-1-0.dll
2015-09-29 14:52:34 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-process-l1-1-0.dll
2015-09-29 14:52:34 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-private-l1-1-0.dll
2015-09-29 14:52:34 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-multibyte-l1-1-0.dll
2015-09-29 14:52:34 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-math-l1-1-0.dll
2015-09-29 14:52:34 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-locale-l1-1-0.dll
2015-09-29 14:52:34 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-heap-l1-1-0.dll
2015-09-29 14:52:34 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-filesystem-l1-1-0.dll
2015-09-29 14:52:34 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-environment-l1-1-0.dll
2015-09-29 14:52:34 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-convert-l1-1-0.dll
2015-09-29 14:52:34 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-conio-l1-1-0.dll
2015-09-29 14:52:34 ----A---- C:\Windows\system32\ucrtbase.dll
2015-09-29 14:52:34 ----A---- C:\Windows\system32\nshwfp.dll
2015-09-29 14:52:34 ----A---- C:\Windows\system32\NcdAutoSetup.dll
2015-09-29 14:52:34 ----A---- C:\Windows\system32\IKEEXT.DLL
2015-09-29 14:52:34 ----A---- C:\Windows\system32\FWPUCLNT.DLL
2015-09-29 14:52:34 ----A---- C:\Windows\system32\BFE.DLL
2015-09-29 14:52:34 ----A---- C:\Windows\system32\api-ms-win-crt-utility-l1-1-0.dll
2015-09-29 14:52:34 ----A---- C:\Windows\system32\api-ms-win-crt-time-l1-1-0.dll
2015-09-29 14:52:34 ----A---- C:\Windows\system32\api-ms-win-crt-string-l1-1-0.dll
2015-09-29 14:52:34 ----A---- C:\Windows\system32\api-ms-win-crt-stdio-l1-1-0.dll
2015-09-29 14:52:34 ----A---- C:\Windows\system32\api-ms-win-crt-runtime-l1-1-0.dll
2015-09-29 14:52:34 ----A---- C:\Windows\system32\api-ms-win-crt-process-l1-1-0.dll
2015-09-29 14:52:34 ----A---- C:\Windows\system32\api-ms-win-crt-private-l1-1-0.dll
2015-09-29 14:52:34 ----A---- C:\Windows\system32\api-ms-win-crt-multibyte-l1-1-0.dll
2015-09-29 14:52:34 ----A---- C:\Windows\system32\api-ms-win-crt-math-l1-1-0.dll
2015-09-29 14:52:34 ----A---- C:\Windows\system32\api-ms-win-crt-locale-l1-1-0.dll
2015-09-29 14:52:34 ----A---- C:\Windows\system32\api-ms-win-crt-heap-l1-1-0.dll
2015-09-29 14:52:34 ----A---- C:\Windows\system32\api-ms-win-crt-filesystem-l1-1-0.dll
2015-09-29 14:52:34 ----A---- C:\Windows\system32\api-ms-win-crt-environment-l1-1-0.dll
2015-09-29 14:52:34 ----A---- C:\Windows\system32\api-ms-win-crt-convert-l1-1-0.dll
2015-09-29 14:52:34 ----A---- C:\Windows\system32\api-ms-win-crt-conio-l1-1-0.dll
2015-09-29 14:52:33 ----AC---- C:\Windows\system32\drivers\BTHUSB.SYS
2015-09-29 14:52:33 ----AC---- C:\Windows\system32\drivers\bthport.sys
2015-09-29 14:52:33 ----AC---- C:\Windows\system32\drivers\bthenum.sys
2015-09-29 14:52:33 ----A---- C:\Windows\SYSWOW64\nshwfp.dll
2015-09-29 14:01:15 ----D---- C:\Windows\system32\appraiser
2015-09-29 14:01:14 ----D---- C:\Windows\Migration
2015-09-29 13:37:05 ----A---- C:\Windows\system32\aspnet_counters.dll
2015-09-29 13:37:04 ----A---- C:\Windows\SYSWOW64\aspnet_counters.dll
2015-09-29 13:32:27 ----D---- C:\Windows\system32\MRT
2015-09-29 13:32:25 ----A---- C:\Windows\system32\MRT.exe
2015-09-29 13:32:15 ----D---- C:\Program Files (x86)\Microsoft ASP.NET
2015-09-29 13:30:23 ----N---- C:\Windows\system32\MpSigStub.exe
2015-09-29 13:28:31 ----A---- C:\Windows\system32\iertutil.dll
2015-09-29 13:28:31 ----A---- C:\Windows\system32\actxprxy.dll
2015-09-29 13:28:30 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2015-09-29 13:28:30 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2015-09-29 13:28:30 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2015-09-29 13:28:30 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2015-09-29 13:28:30 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2015-09-29 13:28:30 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2015-09-29 13:28:30 ----A---- C:\Windows\SYSWOW64\iepeers.dll
2015-09-29 13:28:30 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2015-09-29 13:28:30 ----A---- C:\Windows\SYSWOW64\actxprxy.dll
2015-09-29 13:28:30 ----A---- C:\Windows\system32\inseng.dll
2015-09-29 13:28:30 ----A---- C:\Windows\system32\iepeers.dll
2015-09-29 13:28:30 ----A---- C:\Windows\system32\ie4uinit.exe
2015-09-29 13:28:29 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2015-09-29 13:28:29 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2015-09-29 13:28:29 ----A---- C:\Windows\system32\urlmon.dll
2015-09-29 13:28:29 ----A---- C:\Windows\system32\iedkcs32.dll
2015-09-29 13:28:28 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2015-09-29 13:28:28 ----A---- C:\Windows\SYSWOW64\jscript.dll
2015-09-29 13:28:28 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2015-09-29 13:28:28 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2015-09-29 13:28:28 ----A---- C:\Windows\system32\vbscript.dll
2015-09-29 13:28:28 ----A---- C:\Windows\system32\msfeeds.dll
2015-09-29 13:28:28 ----A---- C:\Windows\system32\dxtrans.dll
2015-09-29 13:28:27 ----A---- C:\Windows\SYSWOW64\wininet.dll
2015-09-29 13:28:27 ----A---- C:\Windows\SYSWOW64\webcheck.dll
2015-09-29 13:28:27 ----A---- C:\Windows\SYSWOW64\msrating.dll
2015-09-29 13:28:27 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2015-09-29 13:28:27 ----A---- C:\Windows\SYSWOW64\inetcomm.dll
2015-09-29 13:28:27 ----A---- C:\Windows\SYSWOW64\ieui.dll
2015-09-29 13:28:27 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2015-09-29 13:28:27 ----A---- C:\Windows\system32\jscript.dll
2015-09-29 13:28:26 ----A---- C:\Windows\system32\webcheck.dll
2015-09-29 13:28:26 ----A---- C:\Windows\system32\mshtmled.dll
2015-09-29 13:28:26 ----A---- C:\Windows\system32\jscript9diag.dll
2015-09-29 13:28:26 ----A---- C:\Windows\system32\jscript9.dll
2015-09-29 13:28:26 ----A---- C:\Windows\system32\ieframe.dll
2015-09-29 13:28:26 ----A---- C:\Windows\system32\dxtmsft.dll
2015-09-29 13:28:25 ----A---- C:\Windows\system32\wininet.dll
2015-09-29 13:28:25 ----A---- C:\Windows\system32\msrating.dll
2015-09-29 13:28:25 ----A---- C:\Windows\system32\MshtmlDac.dll
2015-09-29 13:28:25 ----A---- C:\Windows\system32\inetcomm.dll
2015-09-29 13:28:25 ----A---- C:\Windows\system32\ieui.dll
2015-09-29 13:28:25 ----A---- C:\Windows\system32\ieapfltr.dll
2015-09-29 13:28:24 ----A---- C:\Windows\system32\mshtml.dll
2015-09-29 13:27:11 ----A---- C:\Windows\SYSWOW64\shell32.dll
2015-09-29 13:27:11 ----A---- C:\Windows\SYSWOW64\ExplorerFrame.dll
2015-09-29 13:27:11 ----A---- C:\Windows\system32\shell32.dll
2015-09-29 13:27:11 ----A---- C:\Windows\system32\ExplorerFrame.dll
2015-09-29 13:26:21 ----A---- C:\Windows\SYSWOW64\wow32.dll
2015-09-29 13:26:21 ----A---- C:\Windows\SYSWOW64\user.exe
2015-09-29 13:26:21 ----A---- C:\Windows\SYSWOW64\setup16.exe
2015-09-29 13:26:21 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2015-09-29 13:26:21 ----A---- C:\Windows\SYSWOW64\instnm.exe
2015-09-29 13:26:21 ----A---- C:\Windows\system32\wow64cpu.dll
2015-09-29 13:26:21 ----A---- C:\Windows\system32\wow64.dll
2015-09-29 13:26:21 ----A---- C:\Windows\system32\ntvdm64.dll
2015-09-29 13:26:21 ----A---- C:\Windows\system32\microsoft-windows-system-events.dll
2015-09-29 13:26:21 ----A---- C:\Windows\system32\csrsrv.dll
2015-09-29 13:26:21 ----A---- C:\Windows\system32\basesrv.dll
2015-09-29 13:25:41 ----A---- C:\Windows\SYSWOW64\poqexec.exe
2015-09-29 13:25:41 ----A---- C:\Windows\system32\poqexec.exe
2015-09-29 13:25:24 ----A---- C:\Windows\SYSWOW64\SHCore.dll
2015-09-29 13:25:24 ----A---- C:\Windows\system32\SHCore.dll
2015-09-29 13:25:23 ----A---- C:\Windows\system32\sysmain.dll
2015-09-29 13:25:23 ----A---- C:\Windows\system32\drivers\mountmgr.sys
2015-09-29 13:25:14 ----A---- C:\Windows\SYSWOW64\rpcrt4.dll
2015-09-29 13:25:14 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2015-09-29 13:25:14 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2015-09-29 13:25:14 ----A---- C:\Windows\SYSWOW64\certcli.dll
2015-09-29 13:25:14 ----A---- C:\Windows\system32\rpcrt4.dll
2015-09-29 13:25:14 ----A---- C:\Windows\system32\msv1_0.dll
2015-09-29 13:25:14 ----A---- C:\Windows\system32\lsasrv.dll
2015-09-29 13:25:14 ----A---- C:\Windows\system32\kerberos.dll
2015-09-29 13:25:14 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2015-09-29 13:25:14 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2015-09-29 13:25:14 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2015-09-29 13:25:14 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2015-09-29 13:25:14 ----A---- C:\Windows\system32\drivers\cng.sys
2015-09-29 13:25:14 ----A---- C:\Windows\system32\certcli.dll
2015-09-29 13:24:55 ----A---- C:\Windows\SYSWOW64\tracerpt.exe
2015-09-29 13:24:55 ----A---- C:\Windows\SYSWOW64\sechost.dll
2015-09-29 13:24:55 ----A---- C:\Windows\system32\tracerpt.exe
2015-09-29 13:24:55 ----A---- C:\Windows\system32\sechost.dll
2015-09-29 13:24:46 ----A---- C:\Windows\SYSWOW64\wuwebv.dll
2015-09-29 13:24:46 ----A---- C:\Windows\SYSWOW64\wups.dll
2015-09-29 13:24:46 ----A---- C:\Windows\SYSWOW64\wudriver.dll
2015-09-29 13:24:46 ----A---- C:\Windows\SYSWOW64\wuapp.exe
2015-09-29 13:24:46 ----A---- C:\Windows\SYSWOW64\wuapi.dll
2015-09-29 13:24:46 ----A---- C:\Windows\system32\wuwebv.dll
2015-09-29 13:24:46 ----A---- C:\Windows\system32\WUSettingsProvider.dll
2015-09-29 13:24:46 ----A---- C:\Windows\system32\wups2.dll
2015-09-29 13:24:46 ----A---- C:\Windows\system32\wups.dll
2015-09-29 13:24:46 ----A---- C:\Windows\system32\wudriver.dll
2015-09-29 13:24:46 ----A---- C:\Windows\system32\wucltux.dll
2015-09-29 13:24:46 ----A---- C:\Windows\system32\wuaueng.dll
2015-09-29 13:24:46 ----A---- C:\Windows\system32\wuauclt.exe
2015-09-29 13:24:46 ----A---- C:\Windows\system32\wuapp.exe
2015-09-29 13:24:46 ----A---- C:\Windows\system32\wuapi.dll
2015-09-29 13:24:46 ----A---- C:\Windows\system32\wuaext.dll
2015-09-29 13:24:46 ----A---- C:\Windows\system32\wu.upgrade.ps.dll
2015-09-29 13:24:46 ----A---- C:\Windows\system32\WinSetupUI.dll
2015-09-29 13:24:40 ----A---- C:\Windows\SYSWOW64\WerFaultSecure.exe
2015-09-29 13:24:40 ----A---- C:\Windows\SYSWOW64\wer.dll
2015-09-29 13:24:40 ----A---- C:\Windows\SYSWOW64\Faultrep.dll
2015-09-29 13:24:40 ----A---- C:\Windows\system32\WerFaultSecure.exe
2015-09-29 13:24:40 ----A---- C:\Windows\system32\werdiagcontroller.dll
2015-09-29 13:24:40 ----A---- C:\Windows\system32\wer.dll
2015-09-29 13:24:40 ----A---- C:\Windows\system32\SystemSettingsDatabase.dll
2015-09-29 13:24:40 ----A---- C:\Windows\system32\Faultrep.dll
2015-09-29 13:24:40 ----A---- C:\Windows\system32\EncDump.dll
2015-09-29 13:24:40 ----A---- C:\Windows\system32\ci.dll
2015-09-29 13:24:40 ----A---- C:\Windows\system32\audiosrv.dll
2015-09-29 13:24:40 ----A---- C:\Windows\system32\AudioEndpointBuilder.dll
2015-09-29 13:24:34 ----A---- C:\Windows\system32\drivers\WdNisDrv.sys
2015-09-29 13:24:34 ----A---- C:\Windows\system32\drivers\WdFilter.sys
2015-09-29 13:24:34 ----A---- C:\Windows\system32\drivers\WdBoot.sys
2015-09-29 13:24:33 ----A---- C:\Windows\SYSWOW64\winshfhc.dll
2015-09-29 13:24:33 ----A---- C:\Windows\system32\winshfhc.dll
2015-09-29 13:24:32 ----A---- C:\Windows\SYSWOW64\msctf.dll
2015-09-29 13:24:32 ----A---- C:\Windows\system32\WiFiDisplay.dll
2015-09-29 13:24:32 ----A---- C:\Windows\system32\msctf.dll
2015-09-29 13:24:32 ----A---- C:\Windows\system32\invagent.dll
2015-09-29 13:24:32 ----A---- C:\Windows\system32\generaltel.dll
2015-09-29 13:24:32 ----A---- C:\Windows\system32\devinv.dll
2015-09-29 13:24:32 ----A---- C:\Windows\system32\CompatTelRunner.exe
2015-09-29 13:24:32 ----A---- C:\Windows\system32\appraiser.dll
2015-09-29 13:24:32 ----A---- C:\Windows\system32\aepic.dll
2015-09-29 13:24:32 ----A---- C:\Windows\system32\aepdu.dll
2015-09-29 13:24:32 ----A---- C:\Windows\system32\acmigration.dll
2015-09-29 13:24:31 ----AC---- C:\Windows\system32\drivers\USBHUB3.SYS
2015-09-29 13:24:31 ----A---- C:\Windows\SYSWOW64\msiexec.exe
2015-09-29 13:24:31 ----A---- C:\Windows\SYSWOW64\msi.dll
2015-09-29 13:24:31 ----A---- C:\Windows\SYSWOW64\DeviceSetupStatusProvider.dll
2015-09-29 13:24:31 ----A---- C:\Windows\system32\msiexec.exe
2015-09-29 13:24:31 ----A---- C:\Windows\system32\msi.dll
2015-09-29 13:24:31 ----A---- C:\Windows\system32\DeviceSetupStatusProvider.dll
2015-09-29 13:24:31 ----A---- C:\Windows\system32\aeinv.dll
2015-09-29 13:24:25 ----A---- C:\Windows\SYSWOW64\calc.exe
2015-09-29 13:24:25 ----A---- C:\Windows\system32\calc.exe
2015-09-29 13:24:24 ----AC---- C:\Windows\system32\drivers\bthhfenum.sys
2015-09-29 13:24:03 ----A---- C:\Windows\SYSWOW64\oleaut32.dll
2015-09-29 13:24:03 ----A---- C:\Windows\system32\oleaut32.dll
2015-09-29 13:24:01 ----A---- C:\Windows\SYSWOW64\GeofenceMonitorService.dll
2015-09-29 13:24:01 ----A---- C:\Windows\SYSWOW64\dwmcore.dll
2015-09-29 13:24:01 ----A---- C:\Windows\system32\GeofenceMonitorService.dll
2015-09-29 13:24:01 ----A---- C:\Windows\system32\dwmcore.dll
2015-09-29 13:23:44 ----A---- C:\Windows\SYSWOW64\msxml6.dll
2015-09-29 13:23:44 ----A---- C:\Windows\SYSWOW64\msxml3.dll
2015-09-29 13:23:44 ----A---- C:\Windows\system32\msxml6.dll
2015-09-29 13:23:44 ----A---- C:\Windows\system32\msxml3.dll
2015-09-29 13:23:40 ----A---- C:\Windows\SYSWOW64\tdh.dll
2015-09-29 13:23:40 ----A---- C:\Windows\SYSWOW64\dbghelp.dll
2015-09-29 13:23:40 ----A---- C:\Windows\SYSWOW64\dbgeng.dll
2015-09-29 13:23:40 ----A---- C:\Windows\system32\UtcResources.dll
2015-09-29 13:23:40 ----A---- C:\Windows\system32\tdh.dll
2015-09-29 13:23:40 ----A---- C:\Windows\system32\diagtrack.dll
2015-09-29 13:23:40 ----A---- C:\Windows\system32\dbghelp.dll
2015-09-29 13:23:40 ----A---- C:\Windows\system32\dbgeng.dll
2015-09-29 13:23:38 ----A---- C:\Windows\SYSWOW64\photowiz.dll
2015-09-29 13:23:38 ----A---- C:\Windows\system32\photowiz.dll
2015-09-29 13:23:37 ----A---- C:\Windows\system32\schannel.dll
2015-09-29 13:23:36 ----A---- C:\Windows\SYSWOW64\schannel.dll
2015-09-29 13:23:36 ----A---- C:\Windows\system32\Windows.UI.Xaml.dll
2015-09-29 13:23:35 ----A---- C:\Windows\SYSWOW64\Windows.UI.Xaml.dll
2015-09-29 13:23:34 ----A---- C:\Windows\SYSWOW64\scesrv.dll
2015-09-29 13:23:34 ----A---- C:\Windows\SYSWOW64\puiobj.dll
2015-09-29 13:23:34 ----A---- C:\Windows\system32\win32spl.dll
2015-09-29 13:23:34 ----A---- C:\Windows\system32\scesrv.dll
2015-09-29 13:23:34 ----A---- C:\Windows\system32\puiobj.dll
2015-09-29 13:23:34 ----A---- C:\Windows\system32\localspl.dll
2015-09-29 13:23:34 ----A---- C:\Windows\system32\compstui.dll
2015-09-29 13:23:33 ----A---- C:\Windows\SYSWOW64\Windows.UI.Input.Inking.dll
2015-09-29 13:23:33 ----A---- C:\Windows\SYSWOW64\rastapi.dll
2015-09-29 13:23:33 ----A---- C:\Windows\SYSWOW64\InkEd.dll
2015-09-29 13:23:33 ----A---- C:\Windows\system32\Windows.UI.Input.Inking.dll
2015-09-29 13:23:33 ----A---- C:\Windows\system32\rastapi.dll
2015-09-29 13:23:33 ----A---- C:\Windows\system32\InkEd.dll
2015-09-29 13:23:32 ----AC---- C:\Windows\system32\drivers\rfcomm.sys
2015-09-29 13:23:32 ----AC---- C:\Windows\system32\drivers\hidbth.sys
2015-09-29 13:23:32 ----A---- C:\Windows\SYSWOW64\mfc42u.dll
2015-09-29 13:23:32 ----A---- C:\Windows\SYSWOW64\mfc42.dll
2015-09-29 13:23:32 ----A---- C:\Windows\SYSWOW64\D3DCompiler_47.dll
2015-09-29 13:23:32 ----A---- C:\Windows\SYSWOW64\atmlib.dll
2015-09-29 13:23:32 ----A---- C:\Windows\SYSWOW64\atmfd.dll
2015-09-29 13:23:32 ----A---- C:\Windows\SYSWOW64\atlthunk.dll
2015-09-29 13:23:32 ----A---- C:\Windows\system32\mfc42u.dll
2015-09-29 13:23:32 ----A---- C:\Windows\system32\mfc42.dll
2015-09-29 13:23:32 ----A---- C:\Windows\system32\D3DCompiler_47.dll
2015-09-29 13:23:32 ----A---- C:\Windows\system32\consent.exe
2015-09-29 13:23:32 ----A---- C:\Windows\system32\atmlib.dll
2015-09-29 13:23:32 ----A---- C:\Windows\system32\atmfd.dll
2015-09-29 13:23:31 ----A---- C:\Windows\system32\win32k.sys
2015-09-29 13:23:27 ----A---- C:\Windows\system32\drivers\ahcache.sys
2015-09-29 13:23:15 ----A---- C:\Windows\SYSWOW64\authui.dll
2015-09-29 13:23:15 ----A---- C:\Windows\system32\authui.dll
2015-09-29 13:23:14 ----A---- C:\Windows\SYSWOW64\Windows.UI.Immersive.dll
2015-09-29 13:23:14 ----A---- C:\Windows\SYSWOW64\shacct.dll
2015-09-29 13:23:14 ----A---- C:\Windows\SYSWOW64\SettingSync.dll
2015-09-29 13:23:14 ----A---- C:\Windows\system32\Windows.UI.Immersive.dll
2015-09-29 13:23:14 ----A---- C:\Windows\system32\shacct.dll
2015-09-29 13:23:14 ----A---- C:\Windows\system32\SettingSync.dll
2015-09-29 13:23:05 ----AC---- C:\Windows\system32\drivers\sermouse.sys
2015-09-29 13:23:05 ----AC---- C:\Windows\system32\drivers\mouhid.sys
2015-09-29 13:23:05 ----AC---- C:\Windows\system32\drivers\mouclass.sys
2015-09-29 13:23:05 ----AC---- C:\Windows\system32\drivers\kbdhid.sys
2015-09-29 13:23:05 ----AC---- C:\Windows\system32\drivers\kbdclass.sys
2015-09-29 13:23:05 ----AC---- C:\Windows\system32\drivers\i8042prt.sys
2015-09-29 13:23:03 ----A---- C:\Windows\SYSWOW64\SRH.dll
2015-09-29 13:23:03 ----A---- C:\Windows\system32\SRH.dll
2015-09-29 13:22:59 ----A---- C:\Windows\SYSWOW64\gdi32.dll
2015-09-29 13:22:59 ----A---- C:\Windows\system32\gdi32.dll
2015-09-29 13:22:58 ----A---- C:\Windows\SYSWOW64\rgb9rast.dll
2015-09-29 13:22:58 ----A---- C:\Windows\SYSWOW64\PhotoMetadataHandler.dll
2015-09-29 13:22:58 ----A---- C:\Windows\system32\PhotoMetadataHandler.dll
2015-09-29 13:22:57 ----A---- C:\Windows\system32\drivers\mrxdav.sys
2015-09-29 13:22:56 ----A---- C:\Windows\system32\TSWbPrxy.exe
2015-09-29 13:22:50 ----A---- C:\Windows\system32\drivers\udfs.sys
2015-09-29 13:22:42 ----A---- C:\Windows\system32\SettingsHandlers.dll
2015-09-29 13:22:26 ----A---- C:\Windows\system32\lsm.dll
2015-09-29 13:22:22 ----A---- C:\Windows\SYSWOW64\WebClnt.dll
2015-09-29 13:22:22 ----A---- C:\Windows\SYSWOW64\davclnt.dll
2015-09-29 13:22:22 ----A---- C:\Windows\system32\WebClnt.dll
2015-09-29 13:22:22 ----A---- C:\Windows\system32\services.exe
2015-09-29 13:22:22 ----A---- C:\Windows\system32\drivers\usb8023.sys
2015-09-29 13:22:22 ----A---- C:\Windows\system32\davclnt.dll
2015-09-29 13:22:19 ----A---- C:\Windows\SYSWOW64\pku2u.dll
2015-09-29 13:22:19 ----A---- C:\Windows\system32\wevtsvc.dll
2015-09-29 13:22:19 ----A---- C:\Windows\system32\pku2u.dll
2015-09-29 13:22:05 ----A---- C:\Windows\SYSWOW64\WSShared.dll
2015-09-29 13:22:05 ----A---- C:\Windows\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2015-09-29 13:22:05 ----A---- C:\Windows\system32\WSShared.dll
2015-09-29 13:22:05 ----A---- C:\Windows\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2015-09-29 13:22:03 ----A---- C:\Windows\system32\dpapisrv.dll
2015-09-29 13:22:01 ----A---- C:\Windows\SYSWOW64\UIAutomationCore.dll
2015-09-29 13:22:01 ----A---- C:\Windows\system32\UIAutomationCore.dll
2015-09-29 13:21:59 ----A---- C:\Windows\SYSWOW64\StorageContextHandler.dll
2015-09-29 13:21:59 ----A---- C:\Windows\system32\StorageContextHandler.dll
2015-09-29 13:21:59 ----A---- C:\Windows\system32\profsvc.dll
2015-09-29 13:21:57 ----A---- C:\Windows\system32\rdpcorets.dll
2015-09-29 13:21:56 ----A---- C:\Windows\SYSWOW64\authz.dll
2015-09-29 13:21:56 ----A---- C:\Windows\system32\rdpudd.dll
2015-09-29 13:21:56 ----A---- C:\Windows\system32\authz.dll
2015-09-29 13:21:52 ----A---- C:\Windows\SYSWOW64\comctl32.dll
2015-09-29 13:21:52 ----A---- C:\Windows\system32\comctl32.dll
2015-09-29 13:21:41 ----A---- C:\Windows\system32\ubpm.dll
2015-09-29 13:21:39 ----AC---- C:\Windows\system32\drivers\USBXHCI.SYS
2015-09-29 13:21:29 ----A---- C:\Windows\SYSWOW64\tquery.dll
2015-09-29 13:21:29 ----A---- C:\Windows\SYSWOW64\netcfgx.dll
2015-09-29 13:21:29 ----A---- C:\Windows\SYSWOW64\mssrch.dll
2015-09-29 13:21:29 ----A---- C:\Windows\system32\tquery.dll
2015-09-29 13:21:29 ----A---- C:\Windows\system32\netcfgx.dll
2015-09-29 13:21:29 ----A---- C:\Windows\system32\mssrch.dll
2015-09-29 13:21:29 ----A---- C:\Windows\system32\mssph.dll
2015-09-29 13:21:29 ----A---- C:\Windows\system32\drivers\ndis.sys
2015-09-29 13:21:28 ----A---- C:\Windows\SYSWOW64\SearchProtocolHost.exe
2015-09-29 13:21:28 ----A---- C:\Windows\SYSWOW64\SearchIndexer.exe
2015-09-29 13:21:28 ----A---- C:\Windows\SYSWOW64\mssvp.dll
2015-09-29 13:21:28 ----A---- C:\Windows\SYSWOW64\mssph.dll
2015-09-29 13:21:28 ----A---- C:\Windows\system32\SearchProtocolHost.exe
2015-09-29 13:21:28 ----A---- C:\Windows\system32\SearchIndexer.exe
2015-09-29 13:21:28 ----A---- C:\Windows\system32\mssvp.dll
2015-09-29 13:21:28 ----A---- C:\Windows\system32\mssphtb.dll
2015-09-29 13:21:28 ----A---- C:\Windows\system32\drivers\http.sys
2015-09-29 13:21:27 ----AC---- C:\Windows\system32\drivers\sdbus.sys
2015-09-29 13:21:27 ----AC---- C:\Windows\system32\drivers\dumpsd.sys
2015-09-29 13:21:27 ----A---- C:\Windows\SYSWOW64\WindowsCodecs.dll
2015-09-29 13:21:27 ----A---- C:\Windows\SYSWOW64\notepad.exe
2015-09-29 13:21:27 ----A---- C:\Windows\system32\WindowsCodecs.dll
2015-09-29 13:21:27 ----A---- C:\Windows\system32\notepad.exe
2015-09-29 13:21:27 ----A---- C:\Windows\system32\nlasvc.dll
2015-09-29 13:21:27 ----A---- C:\Windows\system32\ncsi.dll
2015-09-29 13:21:27 ----A---- C:\Windows\system32\fhcpl.dll
2015-09-29 13:21:27 ----A---- C:\Windows\system32\eappcfg.dll
2015-09-29 13:21:27 ----A---- C:\Windows\system32\drivers\tcpip.sys
2015-09-29 13:21:27 ----A---- C:\Windows\system32\drivers\FWPKCLNT.SYS
2015-09-29 13:21:27 ----A---- C:\Windows\notepad.exe
2015-09-29 13:21:26 ----A---- C:\Windows\SYSWOW64\taskeng.exe
2015-09-29 13:21:26 ----A---- C:\Windows\SYSWOW64\schtasks.exe
2015-09-29 13:21:26 ----A---- C:\Windows\SYSWOW64\eapphost.dll
2015-09-29 13:21:26 ----A---- C:\Windows\SYSWOW64\eappgnui.dll
2015-09-29 13:21:26 ----A---- C:\Windows\SYSWOW64\eappcfg.dll
2015-09-29 13:21:26 ----A---- C:\Windows\SYSWOW64\eapp3hst.dll
2015-09-29 13:21:26 ----A---- C:\Windows\system32\taskeng.exe
2015-09-29 13:21:26 ----A---- C:\Windows\system32\schtasks.exe
2015-09-29 13:21:26 ----A---- C:\Windows\system32\schedsvc.dll
2015-09-29 13:21:26 ----A---- C:\Windows\system32\eapphost.dll
2015-09-29 13:21:26 ----A---- C:\Windows\system32\eappgnui.dll
2015-09-29 13:21:26 ----A---- C:\Windows\system32\eapp3hst.dll
2015-09-29 13:21:25 ----A---- C:\Windows\system32\DWrite.dll
2015-09-29 13:21:24 ----A---- C:\Windows\SYSWOW64\DWrite.dll
2015-09-29 13:21:24 ----A---- C:\Windows\system32\FntCache.dll
2015-09-29 13:21:19 ----A---- C:\Windows\system32\LockScreenContentServer.exe
2015-09-29 13:20:57 ----A---- C:\Windows\SYSWOW64\MrmCoreR.dll
2015-09-29 13:20:57 ----A---- C:\Windows\system32\MrmCoreR.dll
2015-09-29 13:20:56 ----A---- C:\Windows\SYSWOW64\appidapi.dll
2015-09-29 13:20:56 ----A---- C:\Windows\system32\appidsvc.dll
2015-09-29 13:20:56 ----A---- C:\Windows\system32\appidapi.dll
2015-09-29 13:20:55 ----A---- C:\Windows\SYSWOW64\rdvidcrl.dll
2015-09-29 13:20:55 ----A---- C:\Windows\SYSWOW64\mstscax.dll
2015-09-29 13:20:55 ----A---- C:\Windows\system32\rdvidcrl.dll
2015-09-29 13:20:55 ----A---- C:\Windows\system32\mstscax.dll
2015-09-29 13:20:48 ----A---- C:\Windows\SYSWOW64\ole32.dll
2015-09-29 13:20:48 ----A---- C:\Windows\system32\ole32.dll
2015-09-29 13:20:47 ----A---- C:\Windows\SYSWOW64\WMPhoto.dll
2015-09-29 13:20:47 ----A---- C:\Windows\SYSWOW64\msftedit.dll
2015-09-29 13:20:47 ----A---- C:\Windows\system32\WMPhoto.dll
2015-09-29 13:20:47 ----A---- C:\Windows\system32\msftedit.dll
2015-09-29 13:20:36 ----A---- C:\Windows\SYSWOW64\msvcr120_clr0400.dll
2015-09-29 13:20:36 ----A---- C:\Windows\system32\msvcr120_clr0400.dll
2015-09-29 13:20:32 ----A---- C:\Windows\system32\tzsync.exe
2015-09-29 13:20:30 ----AC---- C:\Windows\system32\drivers\bthpan.sys
2015-09-29 13:20:30 ----A---- C:\Windows\SYSWOW64\clfsw32.dll
2015-09-29 13:20:30 ----A---- C:\Windows\system32\storewuauth.dll
2015-09-29 13:20:30 ----A---- C:\Windows\system32\drivers\clfs.sys
2015-09-29 13:20:30 ----A---- C:\Windows\system32\clfsw32.dll
2015-09-29 13:20:29 ----A---- C:\Windows\SYSWOW64\wpdshext.dll
2015-09-29 13:20:29 ----A---- C:\Windows\SYSWOW64\sdbinst.exe
2015-09-29 13:20:29 ----A---- C:\Windows\SYSWOW64\explorer.exe
2015-09-29 13:20:29 ----A---- C:\Windows\system32\wpdshext.dll
2015-09-29 13:20:29 ----A---- C:\Windows\system32\sdbinst.exe
2015-09-29 13:20:29 ----A---- C:\Windows\system32\apphelp.dll
2015-09-29 13:20:29 ----A---- C:\Windows\explorer.exe
2015-09-29 13:20:24 ----A---- C:\Windows\system32\SystemEventsBrokerServer.dll
2015-09-29 13:20:15 ----A---- C:\Windows\SYSWOW64\Windows.Data.Pdf.dll
2015-09-29 13:20:15 ----A---- C:\Windows\system32\Windows.Data.Pdf.dll
2015-09-29 12:49:30 ----A---- C:\Windows\SYSWOW64\D3DX9_43.dll
2015-09-29 12:49:30 ----A---- C:\Windows\SYSWOW64\d3dx11_43.dll
2015-09-29 12:49:30 ----A---- C:\Windows\SYSWOW64\d3dx10_43.dll
2015-09-29 12:49:30 ----A---- C:\Windows\system32\D3DX9_43.dll
2015-09-29 12:49:30 ----A---- C:\Windows\system32\d3dx11_43.dll
2015-09-29 12:49:30 ----A---- C:\Windows\system32\d3dx10_43.dll
2015-09-29 12:49:28 ----A---- C:\Windows\SYSWOW64\nvspcap.dll
2015-09-29 12:49:28 ----A---- C:\Windows\SYSWOW64\nvspbridge.dll
2015-09-29 12:49:28 ----A---- C:\Windows\system32\nvspcap64.dll
2015-09-29 12:49:28 ----A---- C:\Windows\system32\nvspbridge64.dll
2015-09-29 12:49:05 ----A---- C:\Windows\SYSWOW64\nvStreaming.exe
2015-09-29 12:49:03 ----D---- C:\Program Files (x86)\NVIDIA Corporation
2015-09-29 12:49:01 ----D---- C:\ProgramData\NVIDIA
2015-09-29 12:48:59 ----A---- C:\Windows\SYSWOW64\oemdspif.dll
2015-09-29 12:48:59 ----A---- C:\Windows\system32\nvvsvc.exe
2015-09-29 12:48:59 ----A---- C:\Windows\system32\nvsvcr.dll
2015-09-29 12:48:59 ----A---- C:\Windows\system32\nvsvc64.dll
2015-09-29 12:48:59 ----A---- C:\Windows\system32\nvshext.dll
2015-09-29 12:48:59 ----A---- C:\Windows\system32\nvmctray.dll
2015-09-29 12:48:59 ----A---- C:\Windows\system32\nvcpl.dll
2015-09-29 12:48:52 ----A---- C:\Windows\SYSWOW64\OpenCL.dll
2015-09-29 12:48:52 ----A---- C:\Windows\system32\OpenCL.dll
2015-09-29 12:48:47 ----D---- C:\ProgramData\NVIDIA Corporation
2015-09-29 12:47:59 ----A---- C:\Windows\SYSWOW64\nvaudcap32v.dll
2015-09-29 12:47:59 ----A---- C:\Windows\system32\nvaudcap64v.dll
2015-09-29 12:47:59 ----A---- C:\Windows\system32\drivers\nvvad64v.sys
2015-09-29 12:47:58 ----A---- C:\Windows\SYSWOW64\nvwgf2um.dll
2015-09-29 12:47:58 ----A---- C:\Windows\SYSWOW64\nvopencl.dll
2015-09-29 12:47:58 ----A---- C:\Windows\SYSWOW64\nvoglv32.dll
2015-09-29 12:47:58 ----A---- C:\Windows\SYSWOW64\NvIFROpenGL.dll
2015-09-29 12:47:58 ----A---- C:\Windows\SYSWOW64\NvIFR.dll
2015-09-29 12:47:58 ----A---- C:\Windows\SYSWOW64\NvFBC.dll
2015-09-29 12:47:58 ----A---- C:\Windows\SYSWOW64\nvEncodeAPI.dll
2015-09-29 12:47:58 ----A---- C:\Windows\SYSWOW64\nvd3dum.dll
2015-09-29 12:47:58 ----A---- C:\Windows\SYSWOW64\nvcuvid.dll
2015-09-29 12:47:58 ----A---- C:\Windows\SYSWOW64\nvcuda.dll
2015-09-29 12:47:58 ----A---- C:\Windows\SYSWOW64\nvcompiler.dll
2015-09-29 12:47:58 ----A---- C:\Windows\SYSWOW64\nvapi.dll
2015-09-29 12:47:58 ----A---- C:\Windows\system32\nvwgf2umx.dll
2015-09-29 12:47:58 ----A---- C:\Windows\system32\nvopencl.dll
2015-09-29 12:47:58 ----A---- C:\Windows\system32\nvoglv64.dll
2015-09-29 12:47:58 ----A---- C:\Windows\system32\NvIFROpenGL.dll
2015-09-29 12:47:58 ----A---- C:\Windows\system32\NvIFR64.dll
2015-09-29 12:47:58 ----A---- C:\Windows\system32\nvhdap64.dll
2015-09-29 12:47:58 ----A---- C:\Windows\system32\nvhdagenco6420103.dll
2015-09-29 12:47:58 ----A---- C:\Windows\system32\NvFBC64.dll
2015-09-29 12:47:58 ----A---- C:\Windows\system32\nvEncodeAPI64.dll
2015-09-29 12:47:58 ----A---- C:\Windows\system32\nvdispgenco6435598.dll
2015-09-29 12:47:58 ----A---- C:\Windows\system32\nvdispco6435598.dll
2015-09-29 12:47:58 ----A---- C:\Windows\system32\nvd3dumx.dll
2015-09-29 12:47:58 ----A---- C:\Windows\system32\nvcuvid.dll
2015-09-29 12:47:58 ----A---- C:\Windows\system32\nvcuda.dll
2015-09-29 12:47:58 ----A---- C:\Windows\system32\nvcompiler.dll
2015-09-29 12:47:58 ----A---- C:\Windows\system32\nvapi64.dll
2015-09-29 12:47:58 ----A---- C:\Windows\system32\drivers\nvlddmkm.sys
2015-09-29 12:47:58 ----A---- C:\Windows\system32\drivers\nvhda64v.sys
2015-09-29 12:46:32 ----D---- C:\NVIDIA
2015-09-29 12:43:54 ----D---- C:\Program Files\Synaptics
2015-09-29 12:41:59 ----A---- C:\Windows\SYSWOW64\SynTPCOM.dll
2015-09-29 12:41:59 ----A---- C:\Windows\system32\SynTPCo15.dll
2015-09-29 12:41:59 ----A---- C:\Windows\system32\SynTPAPI.dll
2015-09-29 12:41:59 ----A---- C:\Windows\system32\drivers\SynTP.sys
2015-09-29 12:41:57 ----A---- C:\Windows\SYSWOW64\SynCOM.dll
2015-09-29 12:41:57 ----A---- C:\Windows\system32\SynCOM.dll
2015-09-29 12:41:54 ----A---- C:\Windows\system32\drivers\Smb_driver_Intel.sys
2015-09-29 12:41:25 ----D---- C:\Windows\Downloaded Installations
2015-09-29 12:41:11 ----D---- C:\SWTOOLS
2015-09-29 12:38:17 ----D---- C:\Program Files\NVIDIA Corporation
2015-09-29 12:36:46 ----D---- C:\Windows\SYSWOW64\Atheros_L1e
2015-09-29 12:36:36 ----A---- C:\Windows\system32\drivers\L1C63x64.sys
2015-09-29 12:33:26 ----D---- C:\Program Files\DIFX
2015-09-29 12:33:25 ----D---- C:\Program Files\Lenovo
2015-09-29 12:33:25 ----A---- C:\Windows\system32\LenovoSDKEmSubSystem.dll
2015-09-29 12:33:25 ----A---- C:\Windows\system32\drivers\LhdX64.sys
2015-09-29 12:33:21 ----D---- C:\Program Files (x86)\Lenovo
2015-09-29 12:32:54 ----D---- C:\ProgramData\Downloaded Installations
2015-09-29 12:28:19 ----D---- C:\Program Files (x86)\JMicron
2015-09-29 12:28:10 ----D---- C:\Windows\SYSWOW64\SDA
2015-09-29 12:28:04 ----A---- C:\Windows\SYSWOW64\jmcricon.dll
2015-09-29 12:28:04 ----A---- C:\Windows\system32\jmcricon.dll
2015-09-29 12:28:04 ----A---- C:\Windows\system32\drivers\jmcr.sys
2015-09-29 12:11:20 ----A---- C:\Windows\SYSWOW64\RtCamX.dll
2015-09-29 12:11:20 ----A---- C:\Windows\system32\RtCamX64.dll
2015-09-29 12:11:20 ----A---- C:\Windows\system32\drivers\rtsuvc.sys
2015-09-29 12:11:20 ----A---- C:\Windows\RTFTrack.exe
2015-09-29 12:11:20 ----A---- C:\Windows\RtCamU64.exe
2015-09-29 12:09:55 ----D---- C:\Program Files\Realtek
2015-09-29 12:09:54 ----D---- C:\Windows\SYSWOW64\RTCOM
2015-09-29 12:09:31 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI
2015-09-29 12:09:24 ----A---- C:\Windows\system32\drivers\SAMSfPa.dat
2015-09-29 12:09:22 ----A---- C:\Windows\system32\WavesGUILib64.dll
2015-09-29 12:09:22 ----A---- C:\Windows\system32\SRSWOW64.dll
2015-09-29 12:09:22 ----A---- C:\Windows\system32\SRSTSX64.dll
2015-09-29 12:09:22 ----A---- C:\Windows\system32\SRSTSH64.dll
2015-09-29 12:09:22 ----A---- C:\Windows\system32\SRSHP64.dll
2015-09-29 12:09:21 ----A---- C:\Windows\SYSWOW64\SFCOM.dll
2015-09-29 12:09:21 ----A---- C:\Windows\system32\SFSS_APO.dll
2015-09-29 12:09:21 ----A---- C:\Windows\system32\SFNHK64.dll
2015-09-29 12:09:21 ----A---- C:\Windows\system32\SFCOM64.dll
2015-09-29 12:09:21 ----A---- C:\Windows\system32\SFAPO64.dll
2015-09-29 12:09:21 ----A---- C:\Windows\system32\RtPgEx64.dll
2015-09-29 12:09:21 ----A---- C:\Windows\system32\RtlCPAPI64.dll
2015-09-29 12:09:21 ----A---- C:\Windows\system32\drivers\RTKVHD64.sys
2015-09-29 12:09:20 ----A---- C:\Windows\system32\RtkGuiCompLib.dll
2015-09-29 12:09:20 ----A---- C:\Windows\system32\RtkCoLDR64.dll
2015-09-29 12:09:20 ----A---- C:\Windows\system32\RtkCfg64.dll
2015-09-29 12:09:20 ----A---- C:\Windows\system32\RtkAPO64.dll
2015-09-29 12:09:20 ----A---- C:\Windows\system32\RtkApi64.dll
2015-09-29 12:09:20 ----A---- C:\Windows\system32\RTEEP64A.dll
2015-09-29 12:09:20 ----A---- C:\Windows\system32\RTEEL64A.dll
2015-09-29 12:09:20 ----A---- C:\Windows\system32\RTEEG64A.dll
2015-09-29 12:09:20 ----A---- C:\Windows\system32\RTEED64A.dll
2015-09-29 12:09:20 ----A---- C:\Windows\system32\RtDataProc64.dll
2015-09-29 12:09:20 ----A---- C:\Windows\system32\RTCOM64.dll
2015-09-29 12:09:20 ----A---- C:\Windows\system32\RP3DHT64.dll
2015-09-29 12:09:20 ----A---- C:\Windows\system32\RP3DAA64.dll
2015-09-29 12:09:20 ----A---- C:\Windows\system32\RCoRes64.dat
2015-09-29 12:09:20 ----A---- C:\Windows\system32\RCoInstII64.dll
2015-09-29 12:09:20 ----A---- C:\Windows\system32\R4EEP64A.dll
2015-09-29 12:09:20 ----A---- C:\Windows\system32\R4EEL64A.dll
2015-09-29 12:09:20 ----A---- C:\Windows\system32\R4EEG64A.dll
2015-09-29 12:09:20 ----A---- C:\Windows\system32\R4EED64A.dll
2015-09-29 12:09:20 ----A---- C:\Windows\system32\R4EEA64A.dll
2015-09-29 12:09:20 ----A---- C:\Windows\system32\drivers\RTAIODAT.DAT
2015-09-29 12:09:19 ----A---- C:\Windows\system32\MaxxVolumeSDAPO.dll
2015-09-29 12:09:19 ----A---- C:\Windows\system32\MaxxAudioRealtek64.dll
2015-09-29 12:09:19 ----A---- C:\Windows\system32\MaxxAudioRealtek264.dll
2015-09-29 12:09:19 ----A---- C:\Windows\system32\MaxxAudioEQ64.dll
2015-09-29 12:09:19 ----A---- C:\Windows\system32\MaxxAudioAPOShell64.dll
2015-09-29 12:09:19 ----A---- C:\Windows\system32\MaxxAudioAPO30.dll
2015-09-29 12:09:19 ----A---- C:\Windows\system32\MaxxAudioAPO20.dll
2015-09-29 12:09:18 ----A---- C:\Windows\system32\FMAPO64.dll
2015-09-29 12:09:18 ----A---- C:\Windows\system32\DTSVoiceClarityDLL64.dll
2015-09-29 12:09:17 ----D---- C:\Program Files (x86)\Realtek
2015-09-29 12:09:17 ----A---- C:\Windows\system32\DTSSymmetryDLL64.dll
2015-09-29 12:09:17 ----A---- C:\Windows\system32\DTSS2SpeakerDLL64.dll
2015-09-29 12:09:17 ----A---- C:\Windows\system32\DTSS2HeadphoneDLL64.dll
2015-09-29 12:09:17 ----A---- C:\Windows\system32\DTSNeoPCDLL64.dll
2015-09-29 12:09:17 ----A---- C:\Windows\system32\DTSLimiterDLL64.dll
2015-09-29 12:09:17 ----A---- C:\Windows\system32\DTSLFXAPO64.dll
2015-09-29 12:09:17 ----A---- C:\Windows\system32\DTSGFXAPONS64.dll
2015-09-29 12:09:17 ----A---- C:\Windows\system32\DTSGFXAPO64.dll
2015-09-29 12:09:17 ----A---- C:\Windows\system32\DTSGainCompensatorDLL64.dll
2015-09-29 12:09:17 ----A---- C:\Windows\system32\DTSBoostDLL64.dll
2015-09-29 12:09:17 ----A---- C:\Windows\system32\DTSBassEnhancementDLL64.dll
2015-09-29 12:09:17 ----A---- C:\Windows\system32\CONEQMSAPOGUILibrary.dll
2015-09-29 12:09:17 ----A---- C:\Windows\system32\AERTAR64.dll
2015-09-29 12:09:17 ----A---- C:\Windows\system32\AERTAC64.dll
2015-09-29 12:09:15 ----HD---- C:\Program Files (x86)\Temp
2015-09-29 12:09:15 ----A---- C:\Windows\RtlExUpd.dll
2015-09-29 12:08:41 ----D---- C:\Users\Gripen\AppData\Roaming\Intel Corporation
2015-09-29 12:06:41 ----A---- C:\Windows\system32\drivers\iaStorA.sys
2015-09-29 12:04:47 ----A---- C:\Windows\SYSWOW64\CSVer.dll
2015-09-29 12:03:43 ----A---- C:\Windows\system32\drivers\IntelMEFWVer.dll
2015-09-29 12:03:40 ----A---- C:\Windows\SYSWOW64\log.txt
2015-09-29 12:03:39 ----D---- C:\ProgramData\Intel
2015-09-29 12:03:37 ----D---- C:\Program Files\Intel
2015-09-29 12:03:12 ----D---- C:\Intel
2015-09-29 12:03:12 ----A---- C:\Windows\system32\drivers\HECIx64.sys
2015-09-29 12:03:09 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2015-09-29 12:03:09 ----D---- C:\Users\Gripen\AppData\Roaming\InstallShield
2015-09-29 12:03:09 ----D---- C:\Program Files (x86)\Intel
2015-09-29 12:03:07 ----D---- C:\Drivers
2015-09-29 11:53:50 ----D---- C:\Windows\Panther
2015-09-29 11:41:17 ----D---- C:\Program Files (x86)\MSECache
2015-09-29 11:30:59 ----D---- C:\Program Files (x86)\Microsoft Works
2015-09-29 11:30:54 ----D---- C:\Program Files (x86)\Microsoft Visual Studio
2015-09-29 11:30:47 ----D---- C:\Windows\PCHEALTH
2015-09-29 11:29:55 ----D---- C:\Program Files\Microsoft Office
2015-09-29 11:29:40 ----D---- C:\ProgramData\Microsoft Help
2015-09-29 11:29:40 ----D---- C:\Program Files (x86)\Microsoft Office
2015-09-29 11:29:29 ----RHD---- C:\MSOCache
2015-09-29 11:11:37 ----D---- C:\Windows\SoftwareDistribution
2015-09-29 11:01:08 ----D---- C:\Users\Gripen\AppData\Roaming\Adobe
2015-09-29 11:01:06 ----SD---- C:\Users\Gripen\AppData\Roaming\Microsoft
2015-09-29 10:55:12 ----SHD---- C:\ProgramData\Šablony
2015-09-29 10:55:12 ----SHD---- C:\ProgramData\Plocha
2015-09-29 10:55:12 ----SHD---- C:\ProgramData\Nabídka Start
2015-09-29 10:55:12 ----SHD---- C:\ProgramData\Dokumenty
2015-09-29 10:55:12 ----SHD---- C:\ProgramData\Data aplikací
2015-09-29 10:54:47 ----SHD---- C:\Recovery
2015-09-29 10:54:16 ----D---- C:\Windows\Prefetch
2015-09-29 10:54:02 ----SHD---- C:\System Volume Information
2015-09-29 10:54:02 ----ASH---- C:\swapfile.sys
2015-09-29 10:54:02 ----ASH---- C:\pagefile.sys

======List of files/folders modified in the last 1 month======

2015-10-28 18:33:25 ----D---- C:\Windows\system32\Tasks
2015-10-28 18:32:27 ----D---- C:\Windows\Temp
2015-10-28 18:02:00 ----D---- C:\Windows\system32\sru
2015-10-28 17:51:33 ----RD---- C:\Program Files
2015-10-28 17:41:02 ----D---- C:\Windows\system32\drivers
2015-10-28 17:34:47 ----HD---- C:\Program Files\WindowsApps
2015-10-28 17:33:33 ----D---- C:\Windows\system32\config
2015-10-28 17:33:29 ----D---- C:\Windows\AppReadiness
2015-10-28 17:31:28 ----D---- C:\Windows\AppCompat
2015-10-28 17:31:27 ----D---- C:\Windows\Inf
2015-10-28 15:04:49 ----SD---- C:\Windows\system32\CompatTel
2015-10-28 15:04:49 ----RSD---- C:\Windows\Media
2015-10-28 15:04:49 ----RD---- C:\Windows\ToastData
2015-10-28 15:04:49 ----D---- C:\Windows\Tasks
2015-10-28 15:04:49 ----D---- C:\Windows\SYSWOW64\wbem
2015-10-28 15:04:49 ----D---- C:\Windows\SYSWOW64\migration
2015-10-28 15:04:49 ----D---- C:\Windows\SYSWOW64\cs-CZ
2015-10-28 15:04:49 ----D---- C:\Windows\system32\migration
2015-10-28 15:04:49 ----D---- C:\Windows\system32\drivers\UMDF
2015-10-28 15:04:49 ----D---- C:\Windows\system32\drivers\etc
2015-10-28 15:04:49 ----D---- C:\Windows\system32\Dism
2015-10-28 15:04:49 ----D---- C:\Windows\system32\cs-CZ
2015-10-28 15:04:49 ----D---- C:\Windows\system32\CodeIntegrity
2015-10-28 15:04:49 ----D---- C:\Windows\system32\Boot
2015-10-28 15:04:49 ----D---- C:\Windows\rescache
2015-10-28 15:04:49 ----D---- C:\Windows\PolicyDefinitions
2015-10-28 15:04:49 ----D---- C:\Windows\apppatch
2015-10-28 15:04:49 ----D---- C:\Program Files\Internet Explorer
2015-10-28 15:04:49 ----D---- C:\Program Files (x86)\Internet Explorer
2015-10-28 15:04:48 ----D---- C:\Windows\SYSWOW64\Macromed
2015-10-28 15:04:48 ----D---- C:\Windows\system32\Sysprep
2015-10-28 15:04:48 ----D---- C:\Windows\system32\Macromed
2015-10-28 15:04:47 ----D---- C:\Windows\servicing
2015-10-28 15:04:47 ----D---- C:\Windows\security
2015-10-28 15:04:47 ----D---- C:\Windows\Help
2015-10-28 15:03:10 ----D---- C:\Windows\registration
2015-10-28 15:02:58 ----D---- C:\Windows\SYSWOW64\MUI
2015-10-28 15:02:54 ----D---- C:\Windows\system32\wdi
2015-10-28 15:02:49 ----D---- C:\Windows\system32\MUI
2015-10-28 15:02:44 ----D---- C:\Windows\system32\DriverStore
2015-10-28 15:02:42 ----D---- C:\Windows\system32\catroot
2015-10-28 15:02:36 ----D---- C:\Windows\Microsoft.NET
2015-10-28 15:02:34 ----SHD---- C:\Windows\Installer
2015-10-28 15:02:30 ----RD---- C:\Windows\assembly
2015-10-28 15:02:05 ----HD---- C:\ProgramData
2015-10-28 15:02:04 ----SD---- C:\ProgramData\Microsoft
2015-10-28 15:01:59 ----RD---- C:\Program Files (x86)
2015-10-28 15:01:55 ----D---- C:\Program Files (x86)\Common Files
2015-10-28 14:12:41 ----RD---- C:\Windows\System32
2015-10-28 14:12:41 ----A---- C:\Windows\system32\PerfStringBackup.INI
2015-10-28 14:05:56 ----D---- C:\Windows\system32\catroot2
2015-10-28 14:05:25 ----D---- C:\Windows\SysWOW64
2015-10-28 14:05:12 ----D---- C:\Windows\WinSxS
2015-10-28 14:05:12 ----D---- C:\Windows\system32\wbem
2015-10-28 14:05:12 ----D---- C:\Windows
2015-10-28 14:05:12 ----D---- C:\Program Files\Windows Defender
2015-10-21 19:10:12 ----D---- C:\Windows\CbsTemp
2015-10-15 11:40:37 ----D---- C:\Windows\system32\FxsTmp
2015-10-03 08:22:32 ----D---- C:\Windows\system32\NDF
2015-10-01 12:13:18 ----D---- C:\Windows\Logs
2015-09-29 15:48:13 ----SHD---- C:\$Recycle.Bin
2015-09-29 15:07:53 ----D---- C:\Windows\SYSWOW64\setup
2015-09-29 15:07:53 ----D---- C:\Windows\system32\sr-Latn-RS
2015-09-29 15:07:53 ----D---- C:\Windows\system32\sr-Latn-CS
2015-09-29 15:07:53 ----D---- C:\Windows\system32\setup
2015-09-29 14:55:12 ----D---- C:\Windows\system32\en-US
2015-09-29 14:01:18 ----RSD---- C:\Windows\Fonts
2015-09-29 14:01:18 ----RD---- C:\Windows\ImmersiveControlPanel
2015-09-29 14:01:18 ----D---- C:\Windows\system32\AdvancedInstallers
2015-09-29 14:01:17 ----D---- C:\Windows\system32\drivers\cs-CZ
2015-09-29 14:01:17 ----D---- C:\Program Files\Windows Journal
2015-09-29 14:01:16 ----D---- C:\Program Files (x86)\Windows Defender
2015-09-29 14:01:15 ----D---- C:\Windows\WinStore
2015-09-29 14:01:14 ----D---- C:\Program Files\Common Files\microsoft shared
2015-09-29 13:32:27 ----D---- C:\Windows\debug
2015-09-29 13:31:54 ----A---- C:\Windows\win.ini
2015-09-29 12:48:03 ----RD---- C:\Users
2015-09-29 12:33:24 ----D---- C:\Windows\SYSWOW64\drivers
2015-09-29 12:33:00 ----A---- C:\Windows\system32\WudfUpdate_01011.dll
2015-09-29 12:11:42 ----D---- C:\Windows\twain_32
2015-09-29 11:29:49 ----D---- C:\Windows\ShellNew
2015-09-29 11:29:23 ----D---- C:\Windows\system32\restore
2015-09-29 10:55:12 ----D---- C:\Program Files\Windows NT
2015-09-29 10:54:47 ----D---- C:\Windows\system32\Recovery

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 iaStorA;iaStorA; C:\Windows\System32\drivers\iaStorA.sys [2012-09-01 647736]
R0 LHDmgr;LHDmgr; C:\Windows\System32\DRIVERS\LhdX64.sys [2015-09-29 39008]
R0 Wof;Windows Overlay File System Filter Driver; C:\Windows\system32\drivers\Wof.sys [2014-11-21 157016]
R1 vwififlt;@%SystemRoot%\System32\drivers\vwififlt.sys,-259; C:\Windows\system32\DRIVERS\vwififlt.sys [2013-08-22 71680]
R2 LGCoreTemp;Logitech CPU Core Tempurature; \??\C:\Program Files\Logitech Gaming Software\Drivers\LgCoreTemp\lgcoretemp.sys [2015-06-21 14184]
R3 ACPIVPC;@oem37.inf,%ACPIVPC.SvcDesc%;Lenovo Virtual Power Controller Driver; C:\Windows\System32\drivers\AcpiVpc.sys [2015-09-29 33560]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2015-06-09 81920]
R3 btmhsf;btmhsf; C:\Windows\system32\DRIVERS\btmhsf.sys [2013-10-15 1390904]
R3 esgiguard;esgiguard; \??\C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys [2015-10-28 15920]
R3 iBtFltCoex;iBtFltCoex; C:\Windows\system32\DRIVERS\iBtFltCoex.sys [2013-10-15 69088]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2013-04-17 3355336]
R3 JMCR;JMCR; C:\Windows\System32\drivers\jmcr.sys [2012-06-22 174176]
R3 L1C;@oem39.inf,%L1C.Service.DispName%;NDIS Miniport Driver for Qualcomm Atheros AR81xx PCI-E Ethernet Controller; C:\Windows\system32\DRIVERS\L1C63x64.sys [2013-07-18 130248]
R3 LGBusEnum;@oem56.inf,%LGBusEnum.SVCDESC%;Logitech Gaming Virtual Bus Enumerator Driver; C:\Windows\system32\drivers\LGBusEnum.sys [2015-06-11 37408]
R3 LGJoyXlCore;@oem56.inf,%LGJoyXlCore.SVCDESC%;Logitech Translation Layer Driver (LGS); C:\Windows\system32\drivers\LGJoyXlCore.sys [2015-06-11 68384]
R3 LGSHidFilt;@oem54.inf,%LGSHidFilt.SvcDesc%;Logitech Gaming KMDF HID Filter Driver; C:\Windows\system32\DRIVERS\LGSHidFilt.Sys [2013-05-30 64280]
R3 LGVirHid;@oem57.inf,%LGVirHid.SVCDESC%;Logitech Gamepanel Virtual HID Device Driver; C:\Windows\system32\drivers\LGVirHid.sys [2015-06-11 26912]
R3 MEIx64;@oem1.inf,%HECI_SvcDesc%;Intel(R) Management Engine Interface ; C:\Windows\System32\drivers\HECIx64.sys [2012-07-02 62784]
R3 NETwNe64;@oem48.inf,___ %NIC_Service_DispName_WIN8_64%;___ Ovladač adaptéru řady Intel(R) Wireless WiFi Link 5000 pro systém Windows 8 64 Bit; C:\Windows\system32\DRIVERS\NETwew00.sys [2013-09-04 3345376]
R3 NVHDA;@oem43.inf,%NVHDA.SvcDesc%;Service for NVIDIA High Definition Audio Driver; C:\Windows\system32\drivers\nvhda64v.sys [2015-09-18 204648]
R3 nvlddmkm;nvlddmkm; C:\Windows\system32\DRIVERS\nvlddmkm.sys [2015-09-14 11096696]
R3 NvStreamKms;NvStreamKms; \??\C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [2015-08-27 19576]
R3 nvvad_WaveExtensible;@oem44.inf,%nvvad_WaveExtensible.SvcDesc%;NVIDIA Virtual Audio Device (Wave Extensible) (WDM); C:\Windows\system32\drivers\nvvad64v.sys [2015-08-11 50472]
R3 rtsuvc;@oem29.inf,%rtsuvc.DeviceDesc%;Lenovo EasyCamera; C:\Windows\system32\DRIVERS\rtsuvc.sys [2013-09-25 8230160]
R3 SmbDrvI;SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [2013-09-25 31032]
R3 SynTP;@oem42.inf,%SynTP.SvcDesc%;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2013-09-25 464184]
R3 vwifimp;@%SystemRoot%\System32\drivers\vwifimp.sys,-261; C:\Windows\system32\DRIVERS\vwifimp.sys [2013-08-22 36864]
S3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Služba Bluetooth Enumerator; C:\Windows\System32\drivers\BthEnum.sys [2015-06-09 53248]
S3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Ovladač úspory energie technologie Bluetooth; C:\Windows\system32\DRIVERS\BthLEEnum.sys [2014-11-21 226304]
S3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Bluetooth Device (Personal Area Network); C:\Windows\System32\drivers\bthpan.sys [2015-07-10 118272]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2015-06-09 1201664]
S3 btmaux;@oem49.inf,%BTMAUX.ServiceDesc%;Intel Bluetooth Auxiliary Service; C:\Windows\system32\DRIVERS\btmaux.sys [2013-07-22 140600]
S3 EsgScanner;EsgScanner; C:\Windows\system32\DRIVERS\EsgScanner.sys [2015-10-28 22704]
S3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Bluetooth Device (RFCOMM Protocol TDI); C:\Windows\System32\drivers\rfcomm.sys [2015-01-30 167424]
S3 usbvideo;@usbvideo.inf,%USBVideo.SvcDesc%;Zobrazovací zařízení USB (WDM); C:\Windows\System32\Drivers\usbvideo.sys [2014-11-21 212736]
S3 WDC_SAM;@oem46.inf,%WDC_SAM_ServiceName%;WD SCSI Pass Thru driver; C:\Windows\System32\drivers\wdcsam64.sys [2015-04-29 23200]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 Bluetooth Device Monitor;Bluetooth Device Monitor; C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe [2013-08-26 1137016]
R2 Bluetooth OBEX Service;Bluetooth OBEX Service; C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe [2013-08-26 1157496]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\Windows\System32\svchost.exe [2014-11-21 38792]
R2 EMET_Service;Microsoft EMET Service; C:\Program Files (x86)\EMET 5.2\EMET_Service.exe [2015-03-11 22680]
R2 GfExperienceService;NVIDIA GeForce Experience Service; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [2015-08-27 1155192]
R2 IAStorDataMgrSvc;Úložná technologie Intel® Rapid; C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2012-09-01 14904]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [2012-04-20 635104]
R2 Intel(R) Wireless Bluetooth(R) 4.0 Radio Management;Intel(R) Wireless Bluetooth(R) 4.0 Radio Management; C:\Program Files (x86)\Intel\Bluetooth\ibtrksrv.exe [2013-09-18 157128]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2012-06-25 166720]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2012-07-17 277824]
R2 NvNetworkService;NVIDIA Network Service; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [2015-08-27 1872504]
R2 NvStreamSvc;NVIDIA Streamer Service; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [2015-08-27 5544568]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2015-09-13 937776]
R2 SpyHunter 4 Service;SpyHunter 4 Service; C:\Program Files\Enigma Software Group\SpyHunter\SH4Service.exe [2015-10-28 1026944]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2015-09-13 410744]
R2 UNS;Intel(R) Management and Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2012-07-17 365376]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\Windows\System32\svchost.exe [2014-11-21 38792]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119674
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o kontrolu logu, podezření na COM Surrogate

#5 Příspěvek od Rudy »

Log je již OK, Udělejte kompletní sken MBAM: http://www.malwarebytes.org/mbam.php a dejte log. Předem nic nemažte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Gripen
Návštěvník
Návštěvník
Příspěvky: 6
Registrován: 28 říj 2015 19:11

Re: Prosím o kontrolu logu, podezření na COM Surrogate

#6 Příspěvek od Gripen »

Malwarebytes Anti-Malware
www.malwarebytes.org

Datum skenování: 28. 10. 2015
Čas skenování: 20:45
Protokol: MBAM log.txt
Správce: Ano

Verze: 2.2.0.1024
Databáze malwaru: v2015.10.28.06
Databáze rootkitů: v2015.10.23.01
Licence: Zkušební verze
Ochrana proti malwaru: Zapnuto
Ochrana proti škodlivým webovým stránkám: Zapnuto
Ochrana programu: Vypnuto

OS: Windows 8.1
CPU: x64
Souborový systém: NTFS
Uživatel: Gripen

Typ skenu: Sken hrozeb
Výsledek: Dokončeno
Prohledaných objektů: 308437
Uplynulý čas: 3 min, 38 sek

Paměť: Zapnuto
Po spuštění: Zapnuto
Souborový systém: Zapnuto
Archivy: Zapnuto
Rootkity: Vypnuto
Heuristika: Zapnuto
PUP: Zapnuto
PUM: Zapnuto

Procesy: 0
(Nenalezeny žádné škodlivé položky)

Moduly: 0
(Nenalezeny žádné škodlivé položky)

Klíče registru: 0
(Nenalezeny žádné škodlivé položky)

Hodnoty registru: 0
(Nenalezeny žádné škodlivé položky)

Data registru: 0
(Nenalezeny žádné škodlivé položky)

Složky: 0
(Nenalezeny žádné škodlivé položky)

Soubory: 0
(Nenalezeny žádné škodlivé položky)

Fyzické sektory: 0
(Nenalezeny žádné škodlivé položky)


(end)

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119674
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o kontrolu logu, podezření na COM Surrogate

#7 Příspěvek od Rudy »

Vypadá to, že PC je bez virů.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Gripen
Návštěvník
Návštěvník
Příspěvky: 6
Registrován: 28 říj 2015 19:11

Re: Prosím o kontrolu logu, podezření na COM Surrogate

#8 Příspěvek od Gripen »

Takže myslíte, že je vše v pořádku? A co ten zmíněný COM Surrogate? Tato stránka: http://odstranitvirus.cz/virus-com-surrogate/ mě trochu vyděsila, proto se ptám. Každopádně děkuji za Váš čas a pomoc.

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119674
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o kontrolu logu, podezření na COM Surrogate

#9 Příspěvek od Rudy »

Nikde ho v logu nevidím.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Gripen
Návštěvník
Návštěvník
Příspěvky: 6
Registrován: 28 říj 2015 19:11

Re: Prosím o kontrolu logu, podezření na COM Surrogate

#10 Příspěvek od Gripen »

Velice Vám děkuji za kontrolu. Můžete tedy toto vlákno uzamknout. :wink:

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119674
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o kontrolu logu, podezření na COM Surrogate

#11 Příspěvek od Rudy »

Rádo se stalo! :)
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Odpovědět