Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

přehřátý PC při surfování

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Odpovědět
Zpráva
Autor
Luki951
Návštěvník
Návštěvník
Příspěvky: 50
Registrován: 18 zář 2012 20:10

přehřátý PC při surfování

#1 Příspěvek od Luki951 »

Zdravím místní rádce. Včera jsem surfoval po netu (měl jsem zapnutý pouze prohlížeč a nic jiného) rozjely se mi větráčky a teplotu GPU i CPU mi speedfan ukazoval někdo kolem 65°C u obou. Prosím tedy okontrolu logu ať vím jestli je to SW, nebo HW, předem moc děkuji ;-)

Logfile of random's system information tool 1.10 (written by random/random)
Run by User007 at 2015-11-02 00:30:53
Microsoft Windows 7 Professional Service Pack 1
System drive C: has 64 GB (28%) free of 229 GB
Total RAM: 8134 MB (51% free)

HijackThis download failed

======Listing Processes======



\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
winlogon.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\system32\atiesrxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
atieclxx
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\spoolsv.exe
"taskhost.exe"
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
"C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedul2.exe"
"C:\Program Files (x86)\Common Files\Acronis\CDP\afcdpsrv.exe"
taskeng.exe {50959000-0B84-46A8-B726-70C1A68B543C}
"C:\Program Files\Core Temp\Core Temp.exe"
"C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe" -s
"C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe"
"C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe" /hide /waitservice
"C:\Program Files\OO Software\Defrag\oodtray.exe"
"C:\Program Files\Windows Sidebar\sidebar.exe" /autoRun
"C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
"C:\Windows\System32\spool\drivers\x64\3\NetFaxTray64.exe"
"C:\Users\User007\AppData\Roaming\Dropbox\bin\Dropbox.exe" /systemstartup
"C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
"C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\MOM" PriorityLow
"C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\CCC.exe" 0
"C:\Program Files (x86)\ASUS\AXSP\1.02.00\atkexComSvc.exe"
"C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.22\AsSysCtrlService.exe"
C:\Windows\System32\svchost.exe -k utcsvc
"C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe"
"C:\Program Files\Intel\iCLS Client\HeciServer.exe"
"C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe"
"C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe"
"C:\Program Files\OO Software\Defrag\oodag.exe"
"C:\Windows\system32\spool\drivers\x64\3\NetFaxServer64.exe"
C:\Windows\SysWOW64\SecUPDUtilSvc.exe
"C:\Program Files\KMSpico\Service_KMS.exe"
"C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe" /starttray
C:\Windows\system32\wbem\unsecapp.exe -Embedding
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\SearchIndexer.exe /Embedding
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Windows\system32\GWX\GWX.exe"
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
C:\Windows\servicing\TrustedInstaller.exe
"C:\Program Files (x86)\SpeedFan\speedfan.exe"
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files (x86)\Common Files\Acronis\SyncAgent\syncagentsrv.exe"
C:\Windows\System32\svchost.exe -k secsvcs
"C:\Windows\system32\mmc.exe" C:\Windows\system32\devmgmt.msc
C:\Windows\system32\svchost.exe -k SDRSVC
"D:\uTorrent\utorrent.exe" "magnet:?xt=urn:btih:28cd906b90253caa726acccbbb5bf120da3f3532&dn=everest+ultimate+edition+v5+50+2100+key+wl&tr=udp%3A%2F%2Ftracker.openbittorrent.com%3A80%2Fannounce&tr=udp%3A%2F%2Fopen.demonii.com%3A1337"
"C:\Windows\system32\NOTEPAD.EXE" D:\Software\Everest Ultimate 5.50\Everest Ultimate 5.50\READ ME !!.txt
"C:\Program Files (x86)\Lavalys\EVEREST Ultimate Edition\everest.exe"
"C:\Windows\system32\notepad.exe"
"C:\Program Files (x86)\Opera\32.0.1948.69\opera.exe" --ran-launcher
"C:\Program Files (x86)\Opera\32.0.1948.69\opera_crashreporter.exe" --ran-launcher --crash-reporter-parent-id=4552
"C:\Program Files (x86)\Opera\32.0.1948.69\opera.exe" --type=gpu-process --channel="4552.0.156653111\277534302" --with-feature:installer-experiment-test=off --with-feature:installer-ui-stats=off --crash-reporter-pid=2624 --supports-dual-gpus=false --gpu-driver-bug-workarounds=2,26,51 --gpu-vendor-id=0x1002 --gpu-device-id=0x679a --gpu-driver-vendor="Advanced Micro Devices, Inc." --gpu-driver-version=15.200.1062.1004 --with-feature:installer-experiment-test=off --with-feature:installer-ui-stats=off --crash-reporter-pid=2624 --ignored=" --type=renderer " /prefetch:822062411
"C:\Program Files (x86)\Opera\32.0.1948.69\opera.exe" --type=renderer --alt-high-dpi-setting=96 --system-dpi-setting=96 --disable-direct-npapi-requests --disable-win32k-renderer-lockdown --lang=cs --extension-process --enable-webrtc-hw-h264-encoding --disable-client-side-phishing-detection --with-feature:installer-experiment-test=off --with-feature:installer-ui-stats=off --crash-reporter-pid=2624 --device-scale-factor=1 --enable-delegated-renderer --num-raster-threads=2 --gpu-rasterization-msaa-sample-count=8 --content-image-texture-target=3553 --video-image-texture-target=3553 --channel="4552.2.2130927789\1018942515" /prefetch:673131151
"C:\Program Files (x86)\Opera\32.0.1948.69\opera.exe" --type=renderer --alt-high-dpi-setting=96 --system-dpi-setting=96 --disable-direct-npapi-requests --disable-win32k-renderer-lockdown --lang=cs --disable-client-side-phishing-detection --with-feature:installer-experiment-test=off --with-feature:installer-ui-stats=off --crash-reporter-pid=2624 --device-scale-factor=1 --enable-delegated-renderer --num-raster-threads=2 --gpu-rasterization-msaa-sample-count=8 --content-image-texture-target=3553 --video-image-texture-target=3553 --channel="4552.3.178617320\940999390" /prefetch:673131151
"C:\Program Files (x86)\Opera\32.0.1948.69\opera.exe" --type=renderer --alt-high-dpi-setting=96 --system-dpi-setting=96 --disable-direct-npapi-requests --disable-win32k-renderer-lockdown --lang=cs --disable-client-side-phishing-detection --with-feature:installer-experiment-test=off --with-feature:installer-ui-stats=off --crash-reporter-pid=2624 --device-scale-factor=1 --enable-delegated-renderer --num-raster-threads=2 --gpu-rasterization-msaa-sample-count=8 --content-image-texture-target=3553 --video-image-texture-target=3553 --channel="4552.5.2066151528\771307700" /prefetch:673131151
"C:\Program Files (x86)\Opera\32.0.1948.69\opera.exe" --type=renderer --alt-high-dpi-setting=96 --system-dpi-setting=96 --disable-direct-npapi-requests --disable-win32k-renderer-lockdown --lang=cs --disable-client-side-phishing-detection --with-feature:installer-experiment-test=off --with-feature:installer-ui-stats=off --crash-reporter-pid=2624 --device-scale-factor=1 --enable-delegated-renderer --num-raster-threads=2 --gpu-rasterization-msaa-sample-count=8 --content-image-texture-target=3553 --video-image-texture-target=3553 --channel="4552.6.1469840384\1460371698" /prefetch:673131151
"C:\Program Files (x86)\Opera\32.0.1948.69\opera.exe" --type=renderer --alt-high-dpi-setting=96 --system-dpi-setting=96 --disable-direct-npapi-requests --disable-win32k-renderer-lockdown --lang=cs --disable-client-side-phishing-detection --with-feature:installer-experiment-test=off --with-feature:installer-ui-stats=off --crash-reporter-pid=2624 --device-scale-factor=1 --enable-delegated-renderer --num-raster-threads=2 --gpu-rasterization-msaa-sample-count=8 --content-image-texture-target=3553 --video-image-texture-target=3553 --channel="4552.7.1271954776\1506025778" /prefetch:673131151
"C:\Program Files (x86)\Opera\32.0.1948.69\opera.exe" --type=renderer --alt-high-dpi-setting=96 --system-dpi-setting=96 --disable-direct-npapi-requests --disable-win32k-renderer-lockdown --lang=cs --disable-client-side-phishing-detection --with-feature:installer-experiment-test=off --with-feature:installer-ui-stats=off --crash-reporter-pid=2624 --device-scale-factor=1 --enable-delegated-renderer --num-raster-threads=2 --gpu-rasterization-msaa-sample-count=8 --content-image-texture-target=3553 --video-image-texture-target=3553 --channel="4552.8.203508697\1334537624" /prefetch:673131151
"C:\Program Files (x86)\Opera\32.0.1948.69\opera.exe" --type=renderer --alt-high-dpi-setting=96 --system-dpi-setting=96 --disable-direct-npapi-requests --disable-win32k-renderer-lockdown --lang=cs --disable-client-side-phishing-detection --with-feature:installer-experiment-test=off --with-feature:installer-ui-stats=off --crash-reporter-pid=2624 --device-scale-factor=1 --enable-delegated-renderer --num-raster-threads=2 --gpu-rasterization-msaa-sample-count=8 --content-image-texture-target=3553 --video-image-texture-target=3553 --channel="4552.9.781889347\2093593112" /prefetch:673131151
"C:\Program Files (x86)\Opera\32.0.1948.69\opera.exe" --type=renderer --alt-high-dpi-setting=96 --system-dpi-setting=96 --disable-direct-npapi-requests --disable-win32k-renderer-lockdown --lang=cs --disable-client-side-phishing-detection --with-feature:installer-experiment-test=off --with-feature:installer-ui-stats=off --crash-reporter-pid=2624 --device-scale-factor=1 --enable-delegated-renderer --num-raster-threads=2 --gpu-rasterization-msaa-sample-count=8 --content-image-texture-target=3553 --video-image-texture-target=3553 --channel="4552.12.228396108\1659610795" /prefetch:673131151
"C:\Program Files (x86)\Opera\32.0.1948.69\opera.exe" --type=renderer --alt-high-dpi-setting=96 --system-dpi-setting=96 --disable-direct-npapi-requests --disable-win32k-renderer-lockdown --lang=cs --disable-client-side-phishing-detection --with-feature:installer-experiment-test=off --with-feature:installer-ui-stats=off --crash-reporter-pid=2624 --device-scale-factor=1 --enable-delegated-renderer --num-raster-threads=2 --gpu-rasterization-msaa-sample-count=8 --content-image-texture-target=3553 --video-image-texture-target=3553 --channel="4552.13.598839688\249534842" /prefetch:673131151
C:\Windows\System32\svchost.exe -k WerSvcGroup
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe18_ Global\UsGthrCtrlFltPipeMssGthrPipe18 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Windows\system32\SearchFilterHost.exe" 0 520 524 532 65536 528
C:\Windows\SysWOW64\DllHost.exe /Processid:{1EF75F33-893B-4E8F-9655-C3D602BA4897}
"D:\Plocha\RSITx64.exe"

======Scheduled tasks folder======

C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\Windows\tasks\DropboxUpdateTaskUserS-1-5-21-4219553082-3292414727-2818567259-1000Core.job - C:\Users\User007\AppData\Local\Dropbox\Update\DropboxUpdate.exe /c
C:\Windows\tasks\DropboxUpdateTaskUserS-1-5-21-4219553082-3292414727-2818567259-1000UA.job - C:\Users\User007\AppData\Local\Dropbox\Update\DropboxUpdate.exe /ua /installsource scheduler

=========Mozilla firefox=========

ProfilePath - C:\Users\User007\AppData\Roaming\Mozilla\Firefox\Profiles\bb4f2o9z.default

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 19.0.0.226 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_19_0_0_226.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5]
"Description"=Intel IPT WebApi plugin
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI updater]
"Description"=This plugin updates Intel WebAPI component
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/DTPlugin,version=11.45.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files (x86)\Java\jre1.8.0_45\bin\dtplugin\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=11.45.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Java\jre1.8.0_45\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/Lync,version=15.0]
"Description"=Microsoft Lync Plug-in for Firefox
"Path"=C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files (x86)\Microsoft Silverlight\5.1.40728.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=C:\PROGRA~2\MICROS~3\Office15\NPSPWRAP.DLL


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 19.0.0.226 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_19_0_0_226.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files\Microsoft Silverlight\5.1.40728.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=C:\PROGRA~1\MICROS~2\Office15\NPSPWRAP.DLL


C:\Program Files (x86)\Mozilla Firefox\plugins\
npMeetingJoinPluginOC.dll

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Lync Browser Helper - C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2014-09-25 218784]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~2\Office15\URLREDIR.DLL [2014-01-23 881880]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft SkyDrive Pro Browser Helper - C:\PROGRA~1\MICROS~2\Office15\GROOVEEX.DLL [2014-09-16 2334416]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Lync Browser Helper - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2014-09-25 153240]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_45\bin\ssv.dll [2015-04-26 460712]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MICROS~3\Office15\URLREDIR.DLL [2014-01-22 707800]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{CC59E0F9-7E43-44FA-9FAA-8377850BF205}]
Free Download Manager - C:\Program Files (x86)\Free Download Manager\iefdm2.dll [2015-07-08 737896]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft SkyDrive Pro Browser Helper - C:\PROGRA~2\MICROS~3\Office15\GROOVEEX.DLL [2014-09-16 1729232]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_45\bin\jp2ssv.dll [2015-04-26 172968]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [2014-10-28 7660760]
"CDAServer"=C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe [2014-09-08 464608]
"egui"=C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe [2015-07-08 5595848]
"OODefragTray"=C:\Program Files\OO Software\Defrag\oodtray.exe [2015-09-14 4468984]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"=C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2014-03-04 3696912]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2010-11-21 1475584]
"Dropbox Update"=C:\Users\User007\AppData\Local\Dropbox\Update\DropboxUpdate.exe [2015-06-17 134512]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2015-10-19 8551848]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Acronis Scheduler2 Service]
C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedhlp.exe [2013-07-18 518424]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AcronisTibMounterMonitor]
C:\Program Files (x86)\Common Files\Acronis\TibMounter\TibMounterMonitor.exe [2013-10-10 1102192]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite]
C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2014-03-04 3696912]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Eraser]
C:\Program Files\Eraser\Eraser.exe /atRestart []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IAStorIcon]
C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe [2013-08-07 36352]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Raptr]
C:\Program Files (x86)\Raptr\raptrstub.exe --startup []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RGSC]
C:\Program Files (x86)\Rockstar Games\Rockstar Games Social Club\RGSCLauncher.exe /silent []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Sidebar]
C:\Program Files\Windows Sidebar\sidebar.exe [2010-11-21 1475584]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\StartCCC]
C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe MSRun []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TrueImageMonitor.exe]
C:\Program Files (x86)\Acronis\TrueImageHome\TrueImageMonitor.exe [2013-10-24 7805824]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\USB3MON]
C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [2014-08-25 293872]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"StartCCC"=C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\amd64\CLIStart.exe [2014-11-20 767176]
"USB3MON"=C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [2014-08-25 293872]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
O&O Defrag Tray.lnk - C:\Windows\Installer\{6F9CDC3F-27D8-4A38-B81D-7E2DE3AF8434}\app_icon.ico
Samsung Network PC Fax.lnk - C:\Windows\System32\spool\drivers\x64\3\NetFaxTray64.exe

C:\Users\User007\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Dropbox.lnk - C:\Users\User007\AppData\Roaming\Dropbox\bin\Dropbox.exe
SpeedFan.lnk - C:\Program Files (x86)\SpeedFan\speedfan.exe

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableLinkedConnections"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=177

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=l3codeca.acm
"msacm.l3codecp"=l3codecp.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"aux2"=wdmaud.drv
"wave3"=wdmaud.drv
"mixer3"=wdmaud.drv
"wave4"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer4"=wdmaud.drv
"aux3"=wdmaud.drv
"wave5"=wdmaud.drv
"mixer5"=wdmaud.drv
"wave6"=wdmaud.drv
"mixer6"=wdmaud.drv
"wave7"=wdmaud.drv
"mixer7"=wdmaud.drv
"wave8"=wdmaud.drv
"mixer8"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave9"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer9"=wdmaud.drv
"aux4"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2015-11-02 00:30:53 ----D---- C:\rsit
2015-11-02 00:30:53 ----D---- C:\Program Files\trend micro
2015-11-01 11:19:11 ----D---- C:\FRST
2015-10-17 09:54:39 ----D---- C:\ProgramData\eBook Converter
2015-10-17 09:54:36 ----D---- C:\Program Files (x86)\eBookConverter
2015-10-15 23:39:23 ----D---- C:\Program Files (x86)\Mozilla Firefox
2015-10-14 23:18:02 ----A---- C:\Windows\system32\invagent.dll
2015-10-14 23:18:02 ----A---- C:\Windows\system32\generaltel.dll
2015-10-14 23:18:02 ----A---- C:\Windows\system32\devinv.dll
2015-10-14 23:18:02 ----A---- C:\Windows\system32\CompatTelRunner.exe
2015-10-14 23:18:02 ----A---- C:\Windows\system32\appraiser.dll
2015-10-14 23:18:02 ----A---- C:\Windows\system32\aeinv.dll
2015-10-14 23:18:02 ----A---- C:\Windows\system32\acmigration.dll
2015-10-13 21:28:22 ----A---- C:\Windows\SYSWOW64\shell32.dll
2015-10-13 21:28:22 ----A---- C:\Windows\SYSWOW64\ExplorerFrame.dll
2015-10-13 21:28:22 ----A---- C:\Windows\system32\shell32.dll
2015-10-13 21:28:22 ----A---- C:\Windows\system32\ExplorerFrame.dll
2015-10-13 21:28:20 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2015-10-13 21:28:20 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2015-10-13 21:28:20 ----A---- C:\Windows\SYSWOW64\occache.dll
2015-10-13 21:28:20 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2015-10-13 21:28:20 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2015-10-13 21:28:20 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2015-10-13 21:28:20 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2015-10-13 21:28:20 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2015-10-13 21:28:20 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2015-10-13 21:28:20 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2015-10-13 21:28:20 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2015-10-13 21:28:20 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2015-10-13 21:28:20 ----A---- C:\Windows\system32\iernonce.dll
2015-10-13 21:28:20 ----A---- C:\Windows\system32\ieetwproxystub.dll
2015-10-13 21:28:20 ----A---- C:\Windows\system32\ieetwcollector.exe
2015-10-13 21:28:20 ----A---- C:\Windows\system32\ie4uinit.exe
2015-10-13 21:28:19 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2015-10-13 21:28:19 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2015-10-13 21:28:19 ----A---- C:\Windows\SYSWOW64\jscript.dll
2015-10-13 21:28:19 ----A---- C:\Windows\SYSWOW64\ieui.dll
2015-10-13 21:28:19 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2015-10-13 21:28:19 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2015-10-13 21:28:19 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2015-10-13 21:28:19 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2015-10-13 21:28:19 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2015-10-13 21:28:19 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2015-10-13 21:28:19 ----A---- C:\Windows\system32\urlmon.dll
2015-10-13 21:28:19 ----A---- C:\Windows\system32\occache.dll
2015-10-13 21:28:19 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2015-10-13 21:28:19 ----A---- C:\Windows\system32\msfeeds.dll
2015-10-13 21:28:19 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2015-10-13 21:28:19 ----A---- C:\Windows\system32\iedkcs32.dll
2015-10-13 21:28:19 ----A---- C:\Windows\system32\dxtrans.dll
2015-10-13 21:28:18 ----A---- C:\Windows\SYSWOW64\wininet.dll
2015-10-13 21:28:18 ----A---- C:\Windows\SYSWOW64\webcheck.dll
2015-10-13 21:28:18 ----A---- C:\Windows\SYSWOW64\msrating.dll
2015-10-13 21:28:18 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2015-10-13 21:28:18 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2015-10-13 21:28:18 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2015-10-13 21:28:18 ----A---- C:\Windows\system32\vbscript.dll
2015-10-13 21:28:18 ----A---- C:\Windows\system32\jsproxy.dll
2015-10-13 21:28:18 ----A---- C:\Windows\system32\iesetup.dll
2015-10-13 21:28:18 ----A---- C:\Windows\system32\iertutil.dll
2015-10-13 21:28:18 ----A---- C:\Windows\system32\ieapfltr.dll
2015-10-13 21:28:17 ----A---- C:\Windows\system32\webcheck.dll
2015-10-13 21:28:17 ----A---- C:\Windows\system32\mshtmlmedia.dll
2015-10-13 21:28:17 ----A---- C:\Windows\system32\mshtmled.dll
2015-10-13 21:28:17 ----A---- C:\Windows\system32\jscript9diag.dll
2015-10-13 21:28:17 ----A---- C:\Windows\system32\jscript.dll
2015-10-13 21:28:17 ----A---- C:\Windows\system32\ieUnatt.exe
2015-10-13 21:28:17 ----A---- C:\Windows\system32\ieui.dll
2015-10-13 21:28:17 ----A---- C:\Windows\system32\ieframe.dll
2015-10-13 21:28:17 ----A---- C:\Windows\system32\dxtmsft.dll
2015-10-13 21:28:16 ----A---- C:\Windows\system32\wininet.dll
2015-10-13 21:28:16 ----A---- C:\Windows\system32\msrating.dll
2015-10-13 21:28:16 ----A---- C:\Windows\system32\MshtmlDac.dll
2015-10-13 21:28:16 ----A---- C:\Windows\system32\mshtml.dll
2015-10-13 21:28:16 ----A---- C:\Windows\system32\jscript9.dll
2015-10-13 21:27:45 ----A---- C:\Windows\SYSWOW64\wuwebv.dll
2015-10-13 21:27:45 ----A---- C:\Windows\SYSWOW64\wups.dll
2015-10-13 21:27:45 ----A---- C:\Windows\SYSWOW64\wudriver.dll
2015-10-13 21:27:45 ----A---- C:\Windows\SYSWOW64\wuapp.exe
2015-10-13 21:27:45 ----A---- C:\Windows\SYSWOW64\wuapi.dll
2015-10-13 21:27:45 ----A---- C:\Windows\system32\wuwebv.dll
2015-10-13 21:27:45 ----A---- C:\Windows\system32\wups2.dll
2015-10-13 21:27:45 ----A---- C:\Windows\system32\wups.dll
2015-10-13 21:27:45 ----A---- C:\Windows\system32\wudriver.dll
2015-10-13 21:27:45 ----A---- C:\Windows\system32\wucltux.dll
2015-10-13 21:27:45 ----A---- C:\Windows\system32\wuaueng.dll
2015-10-13 21:27:45 ----A---- C:\Windows\system32\wuauclt.exe
2015-10-13 21:27:45 ----A---- C:\Windows\system32\wuapp.exe
2015-10-13 21:27:45 ----A---- C:\Windows\system32\wuapi.dll
2015-10-13 21:27:45 ----A---- C:\Windows\system32\wu.upgrade.ps.dll
2015-10-13 21:27:45 ----A---- C:\Windows\system32\WinSetupUI.dll
2015-10-13 21:27:43 ----A---- C:\Windows\SYSWOW64\schannel.dll
2015-10-13 21:27:43 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2015-10-13 21:27:43 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2015-10-13 21:27:43 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2015-10-13 21:27:43 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2015-10-13 21:27:43 ----A---- C:\Windows\SYSWOW64\kernel32.dll
2015-10-13 21:27:43 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2015-10-13 21:27:43 ----A---- C:\Windows\system32\wow64.dll
2015-10-13 21:27:43 ----A---- C:\Windows\system32\winsrv.dll
2015-10-13 21:27:43 ----A---- C:\Windows\system32\srcore.dll
2015-10-13 21:27:43 ----A---- C:\Windows\system32\schannel.dll
2015-10-13 21:27:43 ----A---- C:\Windows\system32\rstrui.exe
2015-10-13 21:27:43 ----A---- C:\Windows\system32\rpcrt4.dll
2015-10-13 21:27:43 ----A---- C:\Windows\system32\ntoskrnl.exe
2015-10-13 21:27:43 ----A---- C:\Windows\system32\ntdll.dll
2015-10-13 21:27:43 ----A---- C:\Windows\system32\lsasrv.dll
2015-10-13 21:27:43 ----A---- C:\Windows\system32\KernelBase.dll
2015-10-13 21:27:43 ----A---- C:\Windows\system32\kernel32.dll
2015-10-13 21:27:43 ----A---- C:\Windows\system32\kerberos.dll
2015-10-13 21:27:43 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2015-10-13 21:27:43 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2015-10-13 21:27:43 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2015-10-13 21:27:43 ----A---- C:\Windows\system32\conhost.exe
2015-10-13 21:27:42 ----AH---- C:\Windows\SYSWOW64\api-ms-win-security-base-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-util-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-string-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-profile-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-misc-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-memory-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-io-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-heap-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-handle-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-fibers-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-delayload-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-debug-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-datetime-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-console-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2015-10-13 21:27:42 ----A---- C:\Windows\SYSWOW64\wow32.dll
2015-10-13 21:27:42 ----A---- C:\Windows\SYSWOW64\wdigest.dll
2015-10-13 21:27:42 ----A---- C:\Windows\SYSWOW64\user.exe
2015-10-13 21:27:42 ----A---- C:\Windows\SYSWOW64\TSpkg.dll
2015-10-13 21:27:42 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2015-10-13 21:27:42 ----A---- C:\Windows\SYSWOW64\srclient.dll
2015-10-13 21:27:42 ----A---- C:\Windows\SYSWOW64\setup16.exe
2015-10-13 21:27:42 ----A---- C:\Windows\SYSWOW64\secur32.dll
2015-10-13 21:27:42 ----A---- C:\Windows\SYSWOW64\rpcrt4.dll
2015-10-13 21:27:42 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2015-10-13 21:27:42 ----A---- C:\Windows\SYSWOW64\ncrypt.dll
2015-10-13 21:27:42 ----A---- C:\Windows\SYSWOW64\msobjs.dll
2015-10-13 21:27:42 ----A---- C:\Windows\SYSWOW64\msaudite.dll
2015-10-13 21:27:42 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2015-10-13 21:27:42 ----A---- C:\Windows\SYSWOW64\instnm.exe
2015-10-13 21:27:42 ----A---- C:\Windows\SYSWOW64\cryptbase.dll
2015-10-13 21:27:42 ----A---- C:\Windows\SYSWOW64\credssp.dll
2015-10-13 21:27:42 ----A---- C:\Windows\SYSWOW64\auditpol.exe
2015-10-13 21:27:42 ----A---- C:\Windows\SYSWOW64\apisetschema.dll
2015-10-13 21:27:42 ----A---- C:\Windows\SYSWOW64\adtschema.dll
2015-10-13 21:27:42 ----A---- C:\Windows\system32\wow64win.dll
2015-10-13 21:27:42 ----A---- C:\Windows\system32\wow64cpu.dll
2015-10-13 21:27:42 ----A---- C:\Windows\system32\wdigest.dll
2015-10-13 21:27:42 ----A---- C:\Windows\system32\TSpkg.dll
2015-10-13 21:27:42 ----A---- C:\Windows\system32\sspisrv.dll
2015-10-13 21:27:42 ----A---- C:\Windows\system32\sspicli.dll
2015-10-13 21:27:42 ----A---- C:\Windows\system32\srclient.dll
2015-10-13 21:27:42 ----A---- C:\Windows\system32\smss.exe
2015-10-13 21:27:42 ----A---- C:\Windows\system32\secur32.dll
2015-10-13 21:27:42 ----A---- C:\Windows\system32\ntvdm64.dll
2015-10-13 21:27:42 ----A---- C:\Windows\system32\ncrypt.dll
2015-10-13 21:27:42 ----A---- C:\Windows\system32\msv1_0.dll
2015-10-13 21:27:42 ----A---- C:\Windows\system32\msobjs.dll
2015-10-13 21:27:42 ----A---- C:\Windows\system32\msaudite.dll
2015-10-13 21:27:42 ----A---- C:\Windows\system32\lsass.exe
2015-10-13 21:27:42 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2015-10-13 21:27:42 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2015-10-13 21:27:42 ----A---- C:\Windows\system32\csrsrv.dll
2015-10-13 21:27:42 ----A---- C:\Windows\system32\cryptbase.dll
2015-10-13 21:27:42 ----A---- C:\Windows\system32\credssp.dll
2015-10-13 21:27:42 ----A---- C:\Windows\system32\auditpol.exe
2015-10-13 21:27:42 ----A---- C:\Windows\system32\apisetschema.dll
2015-10-13 21:27:42 ----A---- C:\Windows\system32\adtschema.dll
2015-10-13 21:27:38 ----A---- C:\Windows\SYSWOW64\appidapi.dll
2015-10-13 21:27:38 ----A---- C:\Windows\system32\setbcdlocale.dll
2015-10-13 21:27:38 ----A---- C:\Windows\system32\drivers\appid.sys
2015-10-13 21:27:38 ----A---- C:\Windows\system32\appidsvc.dll
2015-10-13 21:27:38 ----A---- C:\Windows\system32\appidpolicyconverter.exe
2015-10-13 21:27:38 ----A---- C:\Windows\system32\appidcertstorecheck.exe
2015-10-13 21:27:38 ----A---- C:\Windows\system32\appidapi.dll
2015-10-13 21:27:32 ----A---- C:\Windows\SYSWOW64\ucrtbase.dll
2015-10-13 21:27:32 ----A---- C:\Windows\SYSWOW64\api-ms-win-eventing-provider-l1-1-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-utility-l1-1-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-time-l1-1-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-string-l1-1-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-stdio-l1-1-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-runtime-l1-1-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-process-l1-1-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-private-l1-1-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-multibyte-l1-1-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-math-l1-1-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-locale-l1-1-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-heap-l1-1-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-filesystem-l1-1-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-environment-l1-1-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-convert-l1-1-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-conio-l1-1-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l2-1-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\SYSWOW64\api-ms-win-core-timezone-l1-1-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-2-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-1.dll
2015-10-13 21:27:32 ----A---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-2-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\SYSWOW64\api-ms-win-core-file-l2-1-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-2-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\system32\ucrtbase.dll
2015-10-13 21:27:32 ----A---- C:\Windows\system32\api-ms-win-eventing-provider-l1-1-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\system32\api-ms-win-crt-utility-l1-1-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\system32\api-ms-win-crt-time-l1-1-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\system32\api-ms-win-crt-string-l1-1-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\system32\api-ms-win-crt-stdio-l1-1-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\system32\api-ms-win-crt-runtime-l1-1-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\system32\api-ms-win-crt-process-l1-1-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\system32\api-ms-win-crt-private-l1-1-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\system32\api-ms-win-crt-multibyte-l1-1-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\system32\api-ms-win-crt-math-l1-1-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\system32\api-ms-win-crt-locale-l1-1-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\system32\api-ms-win-crt-heap-l1-1-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\system32\api-ms-win-crt-filesystem-l1-1-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\system32\api-ms-win-crt-environment-l1-1-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\system32\api-ms-win-crt-convert-l1-1-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\system32\api-ms-win-crt-conio-l1-1-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\system32\api-ms-win-core-xstate-l2-1-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\system32\api-ms-win-core-timezone-l1-1-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\system32\api-ms-win-core-synch-l1-2-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-1.dll
2015-10-13 21:27:32 ----A---- C:\Windows\system32\api-ms-win-core-localization-l1-2-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\system32\api-ms-win-core-file-l2-1-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\system32\api-ms-win-core-file-l1-2-0.dll
2015-10-10 11:42:43 ----D---- C:\Program Files\ASUSTeKcomputer.Inc
2015-10-10 11:42:12 ----A---- C:\Windows\system32\drivers\DTSU2P.DAT
2015-10-10 11:42:10 ----A---- C:\Windows\system32\YamahaAE.dll
2015-10-10 11:42:10 ----A---- C:\Windows\system32\WavesGUILib64.dll
2015-10-10 11:42:10 ----A---- C:\Windows\system32\tossaeapo64.dll
2015-10-10 11:42:10 ----A---- C:\Windows\system32\toseaeapo64.dll
2015-10-10 11:42:10 ----A---- C:\Windows\system32\tosasfapo64.dll
2015-10-10 11:42:09 ----A---- C:\Windows\SYSWOW64\SRCOM.dll
2015-10-10 11:42:09 ----A---- C:\Windows\system32\tosade.dll
2015-10-10 11:42:09 ----A---- C:\Windows\system32\tepeqapo64.dll
2015-10-10 11:42:09 ----A---- C:\Windows\system32\tadefxapo264.dll
2015-10-10 11:42:09 ----A---- C:\Windows\system32\tadefxapo.dll
2015-10-10 11:42:09 ----A---- C:\Windows\system32\SRRPTR64.dll
2015-10-10 11:42:09 ----A---- C:\Windows\system32\SRCOM64.dll
2015-10-10 11:42:09 ----A---- C:\Windows\system32\SRCOM.dll
2015-10-10 11:42:09 ----A---- C:\Windows\system32\SRAPO64.dll
2015-10-10 11:42:08 ----A---- C:\Windows\system32\sltech64.dll
2015-10-10 11:42:08 ----A---- C:\Windows\system32\slprp64.dll
2015-10-10 11:42:08 ----A---- C:\Windows\system32\slcnt64.dll
2015-10-10 11:42:08 ----A---- C:\Windows\system32\sl3apo64.dll
2015-10-10 11:42:07 ----A---- C:\Windows\SYSWOW64\SFCOM.dll
2015-10-10 11:42:07 ----A---- C:\Windows\system32\SFSS_APO.dll
2015-10-10 11:42:07 ----A---- C:\Windows\system32\SFNHK64.dll
2015-10-10 11:42:07 ----A---- C:\Windows\system32\SFCOM64.dll
2015-10-10 11:42:07 ----A---- C:\Windows\system32\SFAPO64.dll
2015-10-10 11:42:07 ----A---- C:\Windows\system32\RtPgEx64.dll
2015-10-10 11:42:07 ----A---- C:\Windows\system32\drivers\rtvienna.dat
2015-10-10 11:42:06 ----A---- C:\Windows\system32\RtkApi64.dll
2015-10-10 11:42:06 ----A---- C:\Windows\system32\drivers\RTKVHD64.sys
2015-10-10 11:42:05 ----A---- C:\Windows\system32\RtDataProc64.dll
2015-10-10 11:42:05 ----A---- C:\Windows\system32\RTCOM64.dll
2015-10-10 11:42:05 ----A---- C:\Windows\system32\RltkAPO64.dll
2015-10-10 11:42:05 ----A---- C:\Windows\system32\drivers\RTAIODAT.DAT
2015-10-10 11:42:04 ----A---- C:\Windows\system32\RCoRes64.dat
2015-10-10 11:42:04 ----A---- C:\Windows\system32\RCoInstII64.dll
2015-10-10 11:42:04 ----A---- C:\Windows\system32\R4EEP64A.dll
2015-10-10 11:42:04 ----A---- C:\Windows\system32\R4EEL64A.dll
2015-10-10 11:42:04 ----A---- C:\Windows\system32\R4EEG64A.dll
2015-10-10 11:42:04 ----A---- C:\Windows\system32\R4EED64A.dll
2015-10-10 11:42:04 ----A---- C:\Windows\system32\R4EEA64A.dll
2015-10-10 11:42:04 ----A---- C:\Windows\system32\NahimicAPONSControl.dll
2015-10-10 11:42:03 ----A---- C:\Windows\system32\NAHIMICAPOlfx.dll
2015-10-10 11:42:03 ----A---- C:\Windows\system32\MISS_APO.dll
2015-10-10 11:42:03 ----A---- C:\Windows\system32\MaxxVolumeSDAPO.dll
2015-10-10 11:42:03 ----A---- C:\Windows\system32\MaxxVoiceAPO3064.dll
2015-10-10 11:42:02 ----A---- C:\Windows\system32\MaxxVoiceAPO2064.dll
2015-10-10 11:42:02 ----A---- C:\Windows\system32\MaxxSpeechAPO64.dll
2015-10-10 11:42:02 ----A---- C:\Windows\system32\MaxxAudioRealtek64.dll
2015-10-10 11:42:02 ----A---- C:\Windows\system32\MaxxAudioEQ64.dll
2015-10-10 11:42:02 ----A---- C:\Windows\system32\MaxxAudioAPOShell64.dll
2015-10-10 11:42:02 ----A---- C:\Windows\system32\MaxxAudioAPO6064.dll
2015-10-10 11:42:02 ----A---- C:\Windows\system32\MaxxAudioAPO5064.dll
2015-10-10 11:42:02 ----A---- C:\Windows\system32\MaxxAudioAPO4064.dll
2015-10-10 11:42:01 ----A---- C:\Windows\system32\MaxxAudioAPO30.dll
2015-10-10 11:42:01 ----A---- C:\Windows\system32\KAAPORT64.dll
2015-10-10 11:42:01 ----A---- C:\Windows\system32\ICEsoundAPO64.dll
2015-10-10 11:41:56 ----A---- C:\Windows\system32\FMAPO64.dll
2015-10-10 11:41:56 ----A---- C:\Windows\system32\DTSVoiceClarityDLL64.dll
2015-10-10 11:41:56 ----A---- C:\Windows\system32\DTSU2PREC64.dll
2015-10-10 11:41:56 ----A---- C:\Windows\system32\DTSU2PLFX64.dll
2015-10-10 11:41:56 ----A---- C:\Windows\system32\DTSU2PGFX64.dll
2015-10-10 11:41:56 ----A---- C:\Windows\system32\DTSSymmetryDLL64.dll
2015-10-10 11:41:55 ----A---- C:\Windows\system32\DTSS2SpeakerDLL64.dll
2015-10-10 11:41:55 ----A---- C:\Windows\system32\DTSS2HeadphoneDLL64.dll
2015-10-10 11:41:55 ----A---- C:\Windows\system32\DTSNeoPCDLL64.dll
2015-10-10 11:41:55 ----A---- C:\Windows\system32\DTSLimiterDLL64.dll
2015-10-10 11:41:55 ----A---- C:\Windows\system32\DTSLFXAPO64.dll
2015-10-10 11:41:55 ----A---- C:\Windows\system32\DTSGFXAPONS64.dll
2015-10-10 11:41:55 ----A---- C:\Windows\system32\DTSGFXAPO64.dll
2015-10-10 11:41:55 ----A---- C:\Windows\system32\DTSGainCompensatorDLL64.dll
2015-10-10 11:41:55 ----A---- C:\Windows\system32\DTSBoostDLL64.dll
2015-10-10 11:41:55 ----A---- C:\Windows\system32\DTSBassEnhancementDLL64.dll
2015-10-10 11:41:55 ----A---- C:\Windows\system32\DDPP64A.dll
2015-10-10 11:41:55 ----A---- C:\Windows\system32\DDPO64A.dll
2015-10-10 11:41:55 ----A---- C:\Windows\system32\DDPD64A.dll
2015-10-10 11:41:54 ----A---- C:\Windows\system32\DDPA64.dll
2015-10-10 11:41:54 ----A---- C:\Windows\system32\CX64APO.dll
2015-10-10 11:41:54 ----A---- C:\Windows\system32\audioLibVc.dll
2015-10-10 11:41:53 ----A---- C:\Windows\system32\AERTAC64.dll
2015-10-10 11:41:53 ----A---- C:\Windows\system32\AcpiServiceVnA64.dll
2015-10-10 11:41:12 ----D---- C:\Program Files (x86)\ASUS
2015-10-10 11:41:12 ----A---- C:\Windows\SYSWOW64\drivers\AsIO.sys
2015-10-10 11:41:12 ----A---- C:\Windows\SYSWOW64\AsIO.dll
2015-10-08 17:04:15 ----D---- C:\Users\User007\AppData\Roaming\Xiaomi
2015-10-08 16:35:46 ----A---- C:\Windows\SYSWOW64\qcCoInstaller.dll
2015-10-08 16:35:44 ----D---- C:\Program Files (x86)\Xiaomi
2015-10-07 21:07:05 ----D---- C:\Downloads
2015-10-07 21:06:49 ----D---- C:\ProgramData\FreeDownloadManager.ORG
2015-10-07 21:06:49 ----D---- C:\ProgramData\Free Download Manager
2015-10-07 21:06:46 ----D---- C:\Users\User007\AppData\Roaming\FreeDownloadManager.ORG
2015-10-07 21:06:46 ----D---- C:\Users\User007\AppData\Roaming\Free Download Manager
2015-10-07 21:06:40 ----D---- C:\Program Files (x86)\Free Download Manager
2015-10-06 19:11:28 ----D---- C:\Users\User007\AppData\Roaming\Subhra Das Gupta
2015-10-04 22:30:42 ----D---- C:\Program Files\OO Software
2015-10-04 22:26:37 ----D---- C:\Windows\system32\oodag
2015-10-04 22:26:01 ----D---- C:\ProgramData\OO Software
2015-10-03 09:18:44 ----D---- C:\ProgramData\ESET

======List of files/folders modified in the last 1 month======

2015-11-02 00:30:53 ----RD---- C:\Program Files
2015-11-02 00:30:52 ----D---- C:\Windows\Temp
2015-11-01 19:58:00 ----D---- C:\Windows\System32
2015-11-01 19:58:00 ----A---- C:\Windows\system32\PerfStringBackup.INI
2015-11-01 11:57:13 ----SHD---- C:\System Volume Information
2015-11-01 11:19:12 ----D---- C:\Windows
2015-11-01 10:02:30 ----D---- C:\Program Files (x86)\SpeedFan
2015-11-01 10:02:23 ----D---- C:\Windows\system32\config
2015-11-01 10:02:13 ----D---- C:\Users\User007\AppData\Roaming\Dropbox
2015-10-31 22:52:49 ----D---- C:\Windows\inf
2015-10-30 12:21:49 ----D---- C:\ProgramData\boost_interprocess
2015-10-28 12:45:48 ----D---- C:\Users\User007\AppData\Roaming\DAEMON Tools Lite
2015-10-28 12:45:45 ----D---- C:\Windows\Minidump
2015-10-28 12:45:45 ----D---- C:\Windows\Logs
2015-10-28 12:45:45 ----D---- C:\Windows\debug
2015-10-28 12:42:59 ----D---- C:\Program Files\CCleaner
2015-10-25 21:30:34 ----D---- C:\Users\User007\AppData\Roaming\BID
2015-10-25 21:29:53 ----D---- C:\Program Files (x86)\Bulk Image Downloader
2015-10-25 09:47:13 ----D---- C:\Windows\system32\catroot2
2015-10-19 13:57:38 ----D---- C:\Program Files (x86)\Malwarebytes Anti-Malware
2015-10-19 13:57:35 ----D---- C:\Windows\system32\drivers
2015-10-17 13:44:10 ----D---- C:\Windows\SysWOW64
2015-10-17 13:44:09 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2015-10-17 09:54:39 ----HD---- C:\ProgramData
2015-10-17 09:54:36 ----RD---- C:\Program Files (x86)
2015-10-16 10:04:01 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2015-10-15 00:17:07 ----D---- C:\Windows\winsxs
2015-10-15 00:17:06 ----SD---- C:\Windows\system32\CompatTel
2015-10-15 00:17:06 ----D---- C:\Windows\system32\appraiser
2015-10-15 00:17:06 ----D---- C:\Windows\AppPatch
2015-10-14 10:17:01 ----D---- C:\Windows\rescache
2015-10-13 23:42:44 ----D---- C:\Windows\SYSWOW64\en-US
2015-10-13 23:42:44 ----D---- C:\Windows\SYSWOW64\cs-CZ
2015-10-13 23:42:44 ----D---- C:\Windows\system32\en-US
2015-10-13 23:42:44 ----D---- C:\Windows\system32\cs-CZ
2015-10-13 23:42:44 ----D---- C:\Program Files\Internet Explorer
2015-10-13 23:42:44 ----D---- C:\Program Files (x86)\Internet Explorer
2015-10-13 23:42:42 ----D---- C:\Windows\system32\CodeIntegrity
2015-10-13 23:42:42 ----D---- C:\Windows\system32\Boot
2015-10-13 22:47:46 ----D---- C:\Windows\system32\MRT
2015-10-13 22:47:45 ----A---- C:\Windows\system32\MRT.exe
2015-10-13 22:47:41 ----SHD---- C:\Windows\Installer
2015-10-13 22:47:40 ----D---- C:\ProgramData\Microsoft Help
2015-10-10 11:56:09 ----D---- C:\Windows\Microsoft.NET
2015-10-10 11:43:00 ----HD---- C:\Program Files (x86)\Temp
2015-10-10 11:42:48 ----D---- C:\ProgramData\Package Cache
2015-10-10 11:42:25 ----D---- C:\Windows\SYSWOW64\RTCOM
2015-10-10 11:42:22 ----D---- C:\Windows\system32\DriverStore
2015-10-10 11:41:12 ----D---- C:\Windows\SYSWOW64\drivers
2015-10-09 08:14:13 ----SD---- C:\Windows\system32\GWX
2015-10-08 22:35:42 ----SD---- C:\Windows\SYSWOW64\GWX
2015-10-07 19:42:13 ----HD---- C:\$Windows.~BT
2015-10-07 19:19:47 ----D---- C:\Windows\Panther
2015-10-04 22:17:21 ----D---- C:\Program Files (x86)\Google
2015-10-03 09:37:11 ----D---- C:\Windows\system32\NDF

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 edevmon;edevmon; C:\Windows\system32\DRIVERS\edevmon.sys [2015-07-14 251632]
R0 fltsrv;Acronis Storage Filter Management; C:\Windows\system32\DRIVERS\fltsrv.sys [2014-09-13 118560]
R0 iaStorA;iaStorA; C:\Windows\system32\DRIVERS\iaStorA.sys [2013-08-07 644968]
R0 iaStorF;iaStorF; C:\Windows\system32\DRIVERS\iaStorF.sys [2013-08-07 28008]
R0 iusb3hcs;Ovladač přepínání hostitelského řadiče Intel(R) USB 3.0; C:\Windows\system32\DRIVERS\iusb3hcs.sys [2014-08-25 20464]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-21 213888]
R0 snapman;Acronis Snapshots Manager; C:\Windows\system32\DRIVERS\snapman.sys [2014-09-13 276256]
R0 tib;Acronis TIB Manager; C:\Windows\system32\DRIVERS\tib.sys [2014-09-13 1120032]
R0 tib_mounter;Acronis TIB Mounter; C:\Windows\system32\DRIVERS\tib_mounter.sys [2014-09-13 198432]
R0 vididr;Acronis Virtual Disk; C:\Windows\system32\DRIVERS\vididr.sys [2014-09-13 161568]
R0 vidsflt;Acronis Disk Storage Filter; C:\Windows\system32\DRIVERS\vidsflt.sys [2014-09-13 117024]
R1 AsIO;AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [2014-07-23 15232]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-21 514560]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2014-09-13 283064]
R1 eamonm;eamonm; C:\Windows\system32\DRIVERS\eamonm.sys [2015-07-14 255240]
R1 ehdrv;ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [2015-07-14 178520]
R2 epfwwfpr;epfwwfpr; C:\Windows\system32\DRIVERS\epfwwfpr.sys [2015-07-14 168208]
R2 speedfan;speedfan; \??\C:\Windows\SysWOW64\speedfan.sys [2012-12-29 28664]
R2 SSPORT;SSPORT; \??\C:\Windows\system32\Drivers\SSPORT.sys [2014-05-07 11576]
R3 afcdp;afcdp; C:\Windows\system32\DRIVERS\afcdp.sys [2014-09-13 367200]
R3 ALSysIO;ALSysIO; \??\C:\Users\User007\AppData\Local\Temp\ALSysIO64.sys []
R3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2015-08-04 21622784]
R3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2015-08-04 665088]
R3 AtiHDAudioService;AMD Function Driver for HD Audio Service; C:\Windows\system32\drivers\AtihdW76.sys [2015-07-15 96256]
R3 BEHRINGER_2902;usb-audio.de driver for BEHRINGER USB AUDIO; C:\Windows\System32\Drivers\BUSB2902.sys [2014-09-12 460864]
R3 BUSB_AUDIO_WDM;BEHRINGER USB WDM AUDIO; C:\Windows\system32\drivers\busbwdm.sys [2014-09-12 49728]
R3 e1dexpress;Intel(R) PRO/1000 PCI Express Network Connection Driver D; C:\Windows\system32\DRIVERS\e1d62x64.sys [2014-03-14 487704]
R3 EverestDriver;Lavalys EVEREST Kernel Driver; \??\C:\Program Files (x86)\Lavalys\EVEREST Ultimate Edition\kerneld.amd64 [2009-10-01 26240]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2014-10-28 4263128]
R3 iusb3hub;Ovladač rozbočovače Intel(R) USB 3.0; C:\Windows\system32\DRIVERS\iusb3hub.sys [2014-08-25 383984]
R3 iusb3xhc;Ovladač rozšiřitelného hostitelského řadiče Intel(R) USB 3.0; C:\Windows\system32\DRIVERS\iusb3xhc.sys [2014-08-25 795120]
R3 MBAMProtector;MBAMProtector; \??\C:\Windows\system32\drivers\mbam.sys [2015-10-05 25816]
R3 MBAMSwissArmy;MBAMSwissArmy; \??\C:\Windows\system32\drivers\MBAMSwissArmy.sys [2015-11-01 192216]
R3 MEIx64;Intel(R) Management Engine Interface ; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [2014-09-30 129312]
R3 StillCam;Ovladač digitálního fotoaparátu pro sériový port; C:\Windows\system32\DRIVERS\serscan.sys [2009-07-14 12288]
S3 dg_ssudbus;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\Windows\system32\DRIVERS\ssudbus.sys [2014-01-22 108800]
S3 dmvsc;dmvsc; C:\Windows\system32\drivers\dmvsc.sys [2010-11-21 71168]
S3 GPUZ;GPUZ; \??\C:\Windows\TEMP\GPUZ.sys []
S3 MBAMWebAccessControl;MBAMWebAccessControl; \??\C:\Windows\system32\drivers\mwac.sys [2015-10-05 63704]
S3 MBfilt;MBfilt; C:\Windows\system32\drivers\MBfilt64.sys [2009-11-18 32344]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-21 165888]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 19456]
S3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2013-11-26 888536]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-21 6656]
S3 ssudmdm;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.); C:\Windows\system32\DRIVERS\ssudmdm.sys [2014-01-22 206080]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-21 34688]
S3 tdrpman;Acronis Try&Decide and Restore Points filter; C:\Windows\system32\DRIVERS\tdrpman.sys [2014-09-13 1464096]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2013-10-02 56832]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2012-08-23 30208]
S3 vmbus;vmbus; C:\Windows\system32\drivers\vmbus.sys [2010-11-21 199552]
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-21 21760]
S3 WinUsb;Alcatel USB Driver; C:\Windows\system32\DRIVERS\WinUsb.sys [2010-11-21 41984]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AcrSch2Svc;Acronis Scheduler2 Service; C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedul2.exe [2013-07-18 1142584]
R2 afcdpsrv;Acronis Nonstop Backup Service; C:\Program Files (x86)\Common Files\Acronis\CDP\afcdpsrv.exe [2014-09-13 3873784]
R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2015-08-04 246784]
R2 asComSvc;ASUS Com Service; C:\Program Files (x86)\ASUS\AXSP\1.02.00\atkexComSvc.exe [2014-07-23 936728]
R2 AsSysCtrlService;ASUS System Control Service; C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.22\AsSysCtrlService.exe [2014-07-23 1360016]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe [2015-07-08 1353720]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [2013-08-27 747520]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2013-09-17 169432]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2013-09-17 390616]
R2 MBAMService;MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [2015-10-05 1135416]
R2 MBAMScheduler;MBAMScheduler; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [2015-10-05 1513784]
R2 OODefragAgent;O&O Defrag; C:\Program Files\OO Software\Defrag\oodag.exe [2015-09-14 1711352]
R2 Samsung Network Fax Server;Samsung Network Fax Server; C:\Windows\system32\spool\drivers\x64\3\NetFaxServer64.exe [2015-03-10 801472]
R2 SamsungUPDUtilSvc;Samsung UPD Utility Service; C:\Windows\SysWOW64\SecUPDUtilSvc.exe [2014-11-26 118576]
R2 Service KMSELDI;Service KMSELDI; C:\Program Files\KMSpico\Service_KMS.exe [2015-08-13 734400]
R2 syncagentsrv;Acronis Sync Agent Service; C:\Program Files (x86)\Common Files\Acronis\SyncAgent\syncagentsrv.exe [2013-10-22 7142320]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2014-04-11 103608]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2014-04-11 124088]
S2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2013-08-07 15720]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2015-07-09 327296]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-10-17 269000]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 27136]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2015-09-16 114688]
S3 Intel(R) Capability Licensing Service TCP IP Interface;Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [2013-08-27 828376]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2015-10-15 147624]
S3 ose64;Office 64 Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2012-12-08 178760]
S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2012-10-01 5132888]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 StorSvc;@%SystemRoot%\System32\StorSvc.dll,-100; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2014-09-10 1255736]
S4 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2014-04-11 50864]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119673
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: přehřátý PC při surfování

#2 Příspěvek od Rudy »

Zdravím!
Pokud teploty trvale nepřesahují těch 65°C, není třeba se obávat. Z PC můžeme ale odstranit nepotřebné věci. Spusťte tuto utilitu:
Stáhněte AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
Uložte na plochu
Ukončete všechny programy
Klikněte nejprve na >Scan< a pak na >Clean<.
Proběhne skenováni a pak se objeví log, který sem vložte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Luki951
Návštěvník
Návštěvník
Příspěvky: 50
Registrován: 18 zář 2012 20:10

Re: přehřátý PC při surfování

#3 Příspěvek od Luki951 »

# AdwCleaner v5.016 - Logfile created 02/11/2015 at 18:38:14
# Updated 01/11/2015 by Xplode
# Database : 2015-11-01.2 [Local]
# Operating system : Windows 7 Professional Service Pack 1 (x64)
# Username : User007 - USER007-PC
# Running from : D:\Plocha\adwcleaner_5.016.exe
# Option : Cleaning
# Support : http://toolslib.net/forum

***** [ Services ] *****


***** [ Folders ] *****


***** [ Files ] *****

[-] File Deleted : C:\Windows\SysNative\roboot64.exe

***** [ DLLs ] *****


***** [ Shortcuts ] *****


***** [ Scheduled tasks ] *****


***** [ Registry ] *****

[-] Key Deleted : HKCU\Software\Conduit
[-] Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\464AA55239C100F32AF2D438EDDC0F47
[-] Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5652BA3D5FB98AE31B337BF0AF939856
[-] Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\86EB95E1AFCBABE3DB9ECCC669B99494

***** [ Web browsers ] *****


*************************

:: "Tracing" keys removed
:: Winsock settings cleared

########## EOF - C:\AdwCleaner\AdwCleaner[C1].txt - [1185 bytes] ##########

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119673
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: přehřátý PC při surfování

#4 Příspěvek od Rudy »

Dejte nový log RSIT.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Luki951
Návštěvník
Návštěvník
Příspěvky: 50
Registrován: 18 zář 2012 20:10

Re: přehřátý PC při surfování

#5 Příspěvek od Luki951 »

Logfile of random's system information tool 1.10 (written by random/random)
Run by User007 at 2015-11-02 20:39:55
Microsoft Windows 7 Professional Service Pack 1
System drive C: has 70 GB (30%) free of 229 GB
Total RAM: 8134 MB (77% free)

HijackThis download failed

======Listing Processes======



\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
winlogon.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\system32\atiesrxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
atieclxx
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\spoolsv.exe
"taskhost.exe"
"C:\Windows\system32\Dwm.exe"
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Windows\Explorer.EXE
taskeng.exe {6EA32939-23D3-4048-A36F-41244FB7EFE7}
"C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedul2.exe"
"C:\Program Files (x86)\Common Files\Acronis\CDP\afcdpsrv.exe"
"C:\Program Files\Core Temp\Core Temp.exe"
"C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe" -s
"C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe"
"C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe" /hide /waitservice
"C:\Program Files\OO Software\Defrag\oodtray.exe"
"C:\Program Files\Windows Sidebar\sidebar.exe" /autoRun
"C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
"C:\Windows\System32\spool\drivers\x64\3\NetFaxTray64.exe"
"C:\Users\User007\AppData\Roaming\Dropbox\bin\Dropbox.exe" /systemstartup
"C:\Program Files (x86)\SpeedFan\speedfan.exe"
"C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
"C:\Program Files (x86)\ASUS\AXSP\1.02.00\atkexComSvc.exe"
"C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\MOM" PriorityLow
"C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.22\AsSysCtrlService.exe"
C:\Windows\System32\svchost.exe -k utcsvc
"C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe"
"C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\CCC.exe" 0
"C:\Program Files\Intel\iCLS Client\HeciServer.exe"
"C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe"
"C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe"
"C:\Program Files\OO Software\Defrag\oodag.exe"
"C:\Windows\system32\spool\drivers\x64\3\NetFaxServer64.exe"
C:\Windows\SysWOW64\SecUPDUtilSvc.exe
"C:\Program Files\KMSpico\Service_KMS.exe"
"C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe" /starttray
C:\Windows\system32\wbem\unsecapp.exe -Embedding
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\SearchIndexer.exe /Embedding
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
"C:\Windows\system32\GWX\GWX.exe"
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files (x86)\Common Files\Acronis\SyncAgent\syncagentsrv.exe"
C:\Windows\System32\svchost.exe -k secsvcs
C:\Windows\servicing\TrustedInstaller.exe

"D:\uTorrent\utorrent.exe" "C:\Users\User007\AppData\Local\Temp\[CzT]Andy_Weir_Martan_2015_CZ_.torrent"
C:\Windows\SysWOW64\DllHost.exe /Processid:{1EF75F33-893B-4E8F-9655-C3D602BA4897}
"D:\Plocha\RSITx64.exe"

======Scheduled tasks folder======

C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\Windows\tasks\DropboxUpdateTaskUserS-1-5-21-4219553082-3292414727-2818567259-1000Core.job - C:\Users\User007\AppData\Local\Dropbox\Update\DropboxUpdate.exe /c
C:\Windows\tasks\DropboxUpdateTaskUserS-1-5-21-4219553082-3292414727-2818567259-1000UA.job - C:\Users\User007\AppData\Local\Dropbox\Update\DropboxUpdate.exe /ua /installsource scheduler

=========Mozilla firefox=========

ProfilePath - C:\Users\User007\AppData\Roaming\Mozilla\Firefox\Profiles\bb4f2o9z.default

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 19.0.0.226 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_19_0_0_226.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5]
"Description"=Intel IPT WebApi plugin
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI updater]
"Description"=This plugin updates Intel WebAPI component
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/DTPlugin,version=11.45.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files (x86)\Java\jre1.8.0_45\bin\dtplugin\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=11.45.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Java\jre1.8.0_45\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/Lync,version=15.0]
"Description"=Microsoft Lync Plug-in for Firefox
"Path"=C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files (x86)\Microsoft Silverlight\5.1.40728.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=C:\PROGRA~2\MICROS~3\Office15\NPSPWRAP.DLL


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 19.0.0.226 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_19_0_0_226.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files\Microsoft Silverlight\5.1.40728.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=C:\PROGRA~1\MICROS~2\Office15\NPSPWRAP.DLL


C:\Program Files (x86)\Mozilla Firefox\plugins\
npMeetingJoinPluginOC.dll

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Lync Browser Helper - C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2014-09-25 218784]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~2\Office15\URLREDIR.DLL [2014-01-23 881880]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft SkyDrive Pro Browser Helper - C:\PROGRA~1\MICROS~2\Office15\GROOVEEX.DLL [2014-09-16 2334416]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Lync Browser Helper - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2014-09-25 153240]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_45\bin\ssv.dll [2015-04-26 460712]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MICROS~3\Office15\URLREDIR.DLL [2014-01-22 707800]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{CC59E0F9-7E43-44FA-9FAA-8377850BF205}]
Free Download Manager - C:\Program Files (x86)\Free Download Manager\iefdm2.dll [2015-07-08 737896]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft SkyDrive Pro Browser Helper - C:\PROGRA~2\MICROS~3\Office15\GROOVEEX.DLL [2014-09-16 1729232]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_45\bin\jp2ssv.dll [2015-04-26 172968]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [2014-10-28 7660760]
"CDAServer"=C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe [2014-09-08 464608]
"egui"=C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe [2015-07-08 5595848]
"OODefragTray"=C:\Program Files\OO Software\Defrag\oodtray.exe [2015-09-14 4468984]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"=C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2014-03-04 3696912]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2010-11-21 1475584]
"Dropbox Update"=C:\Users\User007\AppData\Local\Dropbox\Update\DropboxUpdate.exe [2015-06-17 134512]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2015-10-19 8551848]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Acronis Scheduler2 Service]
C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedhlp.exe [2013-07-18 518424]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AcronisTibMounterMonitor]
C:\Program Files (x86)\Common Files\Acronis\TibMounter\TibMounterMonitor.exe [2013-10-10 1102192]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite]
C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2014-03-04 3696912]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Eraser]
C:\Program Files\Eraser\Eraser.exe /atRestart []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IAStorIcon]
C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe [2013-08-07 36352]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Raptr]
C:\Program Files (x86)\Raptr\raptrstub.exe --startup []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RGSC]
C:\Program Files (x86)\Rockstar Games\Rockstar Games Social Club\RGSCLauncher.exe /silent []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Sidebar]
C:\Program Files\Windows Sidebar\sidebar.exe [2010-11-21 1475584]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\StartCCC]
C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe MSRun []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TrueImageMonitor.exe]
C:\Program Files (x86)\Acronis\TrueImageHome\TrueImageMonitor.exe [2013-10-24 7805824]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\USB3MON]
C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [2014-08-25 293872]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"StartCCC"=C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\amd64\CLIStart.exe [2014-11-20 767176]
"USB3MON"=C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [2014-08-25 293872]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
O&O Defrag Tray.lnk - C:\Windows\Installer\{6F9CDC3F-27D8-4A38-B81D-7E2DE3AF8434}\app_icon.ico
Samsung Network PC Fax.lnk - C:\Windows\System32\spool\drivers\x64\3\NetFaxTray64.exe

C:\Users\User007\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Dropbox.lnk - C:\Users\User007\AppData\Roaming\Dropbox\bin\Dropbox.exe
SpeedFan.lnk - C:\Program Files (x86)\SpeedFan\speedfan.exe

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableLinkedConnections"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=177

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=l3codeca.acm
"msacm.l3codecp"=l3codecp.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"aux2"=wdmaud.drv
"wave3"=wdmaud.drv
"mixer3"=wdmaud.drv
"wave4"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer4"=wdmaud.drv
"aux3"=wdmaud.drv
"wave5"=wdmaud.drv
"mixer5"=wdmaud.drv
"wave6"=wdmaud.drv
"mixer6"=wdmaud.drv
"wave7"=wdmaud.drv
"mixer7"=wdmaud.drv
"wave8"=wdmaud.drv
"mixer8"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave9"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer9"=wdmaud.drv
"aux4"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2015-11-02 18:37:42 ----D---- C:\AdwCleaner
2015-11-02 00:30:53 ----D---- C:\rsit
2015-11-02 00:30:53 ----D---- C:\Program Files\trend micro
2015-11-01 11:19:11 ----D---- C:\FRST
2015-10-17 09:54:39 ----D---- C:\ProgramData\eBook Converter
2015-10-17 09:54:36 ----D---- C:\Program Files (x86)\eBookConverter
2015-10-15 23:39:23 ----D---- C:\Program Files (x86)\Mozilla Firefox
2015-10-14 23:18:02 ----A---- C:\Windows\system32\invagent.dll
2015-10-14 23:18:02 ----A---- C:\Windows\system32\generaltel.dll
2015-10-14 23:18:02 ----A---- C:\Windows\system32\devinv.dll
2015-10-14 23:18:02 ----A---- C:\Windows\system32\CompatTelRunner.exe
2015-10-14 23:18:02 ----A---- C:\Windows\system32\appraiser.dll
2015-10-14 23:18:02 ----A---- C:\Windows\system32\aeinv.dll
2015-10-14 23:18:02 ----A---- C:\Windows\system32\acmigration.dll
2015-10-13 21:28:22 ----A---- C:\Windows\SYSWOW64\shell32.dll
2015-10-13 21:28:22 ----A---- C:\Windows\SYSWOW64\ExplorerFrame.dll
2015-10-13 21:28:22 ----A---- C:\Windows\system32\shell32.dll
2015-10-13 21:28:22 ----A---- C:\Windows\system32\ExplorerFrame.dll
2015-10-13 21:28:20 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2015-10-13 21:28:20 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2015-10-13 21:28:20 ----A---- C:\Windows\SYSWOW64\occache.dll
2015-10-13 21:28:20 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2015-10-13 21:28:20 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2015-10-13 21:28:20 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2015-10-13 21:28:20 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2015-10-13 21:28:20 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2015-10-13 21:28:20 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2015-10-13 21:28:20 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2015-10-13 21:28:20 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2015-10-13 21:28:20 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2015-10-13 21:28:20 ----A---- C:\Windows\system32\iernonce.dll
2015-10-13 21:28:20 ----A---- C:\Windows\system32\ieetwproxystub.dll
2015-10-13 21:28:20 ----A---- C:\Windows\system32\ieetwcollector.exe
2015-10-13 21:28:20 ----A---- C:\Windows\system32\ie4uinit.exe
2015-10-13 21:28:19 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2015-10-13 21:28:19 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2015-10-13 21:28:19 ----A---- C:\Windows\SYSWOW64\jscript.dll
2015-10-13 21:28:19 ----A---- C:\Windows\SYSWOW64\ieui.dll
2015-10-13 21:28:19 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2015-10-13 21:28:19 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2015-10-13 21:28:19 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2015-10-13 21:28:19 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2015-10-13 21:28:19 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2015-10-13 21:28:19 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2015-10-13 21:28:19 ----A---- C:\Windows\system32\urlmon.dll
2015-10-13 21:28:19 ----A---- C:\Windows\system32\occache.dll
2015-10-13 21:28:19 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2015-10-13 21:28:19 ----A---- C:\Windows\system32\msfeeds.dll
2015-10-13 21:28:19 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2015-10-13 21:28:19 ----A---- C:\Windows\system32\iedkcs32.dll
2015-10-13 21:28:19 ----A---- C:\Windows\system32\dxtrans.dll
2015-10-13 21:28:18 ----A---- C:\Windows\SYSWOW64\wininet.dll
2015-10-13 21:28:18 ----A---- C:\Windows\SYSWOW64\webcheck.dll
2015-10-13 21:28:18 ----A---- C:\Windows\SYSWOW64\msrating.dll
2015-10-13 21:28:18 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2015-10-13 21:28:18 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2015-10-13 21:28:18 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2015-10-13 21:28:18 ----A---- C:\Windows\system32\vbscript.dll
2015-10-13 21:28:18 ----A---- C:\Windows\system32\jsproxy.dll
2015-10-13 21:28:18 ----A---- C:\Windows\system32\iesetup.dll
2015-10-13 21:28:18 ----A---- C:\Windows\system32\iertutil.dll
2015-10-13 21:28:18 ----A---- C:\Windows\system32\ieapfltr.dll
2015-10-13 21:28:17 ----A---- C:\Windows\system32\webcheck.dll
2015-10-13 21:28:17 ----A---- C:\Windows\system32\mshtmlmedia.dll
2015-10-13 21:28:17 ----A---- C:\Windows\system32\mshtmled.dll
2015-10-13 21:28:17 ----A---- C:\Windows\system32\jscript9diag.dll
2015-10-13 21:28:17 ----A---- C:\Windows\system32\jscript.dll
2015-10-13 21:28:17 ----A---- C:\Windows\system32\ieUnatt.exe
2015-10-13 21:28:17 ----A---- C:\Windows\system32\ieui.dll
2015-10-13 21:28:17 ----A---- C:\Windows\system32\ieframe.dll
2015-10-13 21:28:17 ----A---- C:\Windows\system32\dxtmsft.dll
2015-10-13 21:28:16 ----A---- C:\Windows\system32\wininet.dll
2015-10-13 21:28:16 ----A---- C:\Windows\system32\msrating.dll
2015-10-13 21:28:16 ----A---- C:\Windows\system32\MshtmlDac.dll
2015-10-13 21:28:16 ----A---- C:\Windows\system32\mshtml.dll
2015-10-13 21:28:16 ----A---- C:\Windows\system32\jscript9.dll
2015-10-13 21:27:45 ----A---- C:\Windows\SYSWOW64\wuwebv.dll
2015-10-13 21:27:45 ----A---- C:\Windows\SYSWOW64\wups.dll
2015-10-13 21:27:45 ----A---- C:\Windows\SYSWOW64\wudriver.dll
2015-10-13 21:27:45 ----A---- C:\Windows\SYSWOW64\wuapp.exe
2015-10-13 21:27:45 ----A---- C:\Windows\SYSWOW64\wuapi.dll
2015-10-13 21:27:45 ----A---- C:\Windows\system32\wuwebv.dll
2015-10-13 21:27:45 ----A---- C:\Windows\system32\wups2.dll
2015-10-13 21:27:45 ----A---- C:\Windows\system32\wups.dll
2015-10-13 21:27:45 ----A---- C:\Windows\system32\wudriver.dll
2015-10-13 21:27:45 ----A---- C:\Windows\system32\wucltux.dll
2015-10-13 21:27:45 ----A---- C:\Windows\system32\wuaueng.dll
2015-10-13 21:27:45 ----A---- C:\Windows\system32\wuauclt.exe
2015-10-13 21:27:45 ----A---- C:\Windows\system32\wuapp.exe
2015-10-13 21:27:45 ----A---- C:\Windows\system32\wuapi.dll
2015-10-13 21:27:45 ----A---- C:\Windows\system32\wu.upgrade.ps.dll
2015-10-13 21:27:45 ----A---- C:\Windows\system32\WinSetupUI.dll
2015-10-13 21:27:43 ----A---- C:\Windows\SYSWOW64\schannel.dll
2015-10-13 21:27:43 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2015-10-13 21:27:43 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2015-10-13 21:27:43 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2015-10-13 21:27:43 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2015-10-13 21:27:43 ----A---- C:\Windows\SYSWOW64\kernel32.dll
2015-10-13 21:27:43 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2015-10-13 21:27:43 ----A---- C:\Windows\system32\wow64.dll
2015-10-13 21:27:43 ----A---- C:\Windows\system32\winsrv.dll
2015-10-13 21:27:43 ----A---- C:\Windows\system32\srcore.dll
2015-10-13 21:27:43 ----A---- C:\Windows\system32\schannel.dll
2015-10-13 21:27:43 ----A---- C:\Windows\system32\rstrui.exe
2015-10-13 21:27:43 ----A---- C:\Windows\system32\rpcrt4.dll
2015-10-13 21:27:43 ----A---- C:\Windows\system32\ntoskrnl.exe
2015-10-13 21:27:43 ----A---- C:\Windows\system32\ntdll.dll
2015-10-13 21:27:43 ----A---- C:\Windows\system32\lsasrv.dll
2015-10-13 21:27:43 ----A---- C:\Windows\system32\KernelBase.dll
2015-10-13 21:27:43 ----A---- C:\Windows\system32\kernel32.dll
2015-10-13 21:27:43 ----A---- C:\Windows\system32\kerberos.dll
2015-10-13 21:27:43 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2015-10-13 21:27:43 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2015-10-13 21:27:43 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2015-10-13 21:27:43 ----A---- C:\Windows\system32\conhost.exe
2015-10-13 21:27:42 ----AH---- C:\Windows\SYSWOW64\api-ms-win-security-base-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-util-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-string-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-profile-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-misc-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-memory-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-io-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-heap-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-handle-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-fibers-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-delayload-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-debug-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-datetime-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-console-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2015-10-13 21:27:42 ----A---- C:\Windows\SYSWOW64\wow32.dll
2015-10-13 21:27:42 ----A---- C:\Windows\SYSWOW64\wdigest.dll
2015-10-13 21:27:42 ----A---- C:\Windows\SYSWOW64\user.exe
2015-10-13 21:27:42 ----A---- C:\Windows\SYSWOW64\TSpkg.dll
2015-10-13 21:27:42 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2015-10-13 21:27:42 ----A---- C:\Windows\SYSWOW64\srclient.dll
2015-10-13 21:27:42 ----A---- C:\Windows\SYSWOW64\setup16.exe
2015-10-13 21:27:42 ----A---- C:\Windows\SYSWOW64\secur32.dll
2015-10-13 21:27:42 ----A---- C:\Windows\SYSWOW64\rpcrt4.dll
2015-10-13 21:27:42 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2015-10-13 21:27:42 ----A---- C:\Windows\SYSWOW64\ncrypt.dll
2015-10-13 21:27:42 ----A---- C:\Windows\SYSWOW64\msobjs.dll
2015-10-13 21:27:42 ----A---- C:\Windows\SYSWOW64\msaudite.dll
2015-10-13 21:27:42 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2015-10-13 21:27:42 ----A---- C:\Windows\SYSWOW64\instnm.exe
2015-10-13 21:27:42 ----A---- C:\Windows\SYSWOW64\cryptbase.dll
2015-10-13 21:27:42 ----A---- C:\Windows\SYSWOW64\credssp.dll
2015-10-13 21:27:42 ----A---- C:\Windows\SYSWOW64\auditpol.exe
2015-10-13 21:27:42 ----A---- C:\Windows\SYSWOW64\apisetschema.dll
2015-10-13 21:27:42 ----A---- C:\Windows\SYSWOW64\adtschema.dll
2015-10-13 21:27:42 ----A---- C:\Windows\system32\wow64win.dll
2015-10-13 21:27:42 ----A---- C:\Windows\system32\wow64cpu.dll
2015-10-13 21:27:42 ----A---- C:\Windows\system32\wdigest.dll
2015-10-13 21:27:42 ----A---- C:\Windows\system32\TSpkg.dll
2015-10-13 21:27:42 ----A---- C:\Windows\system32\sspisrv.dll
2015-10-13 21:27:42 ----A---- C:\Windows\system32\sspicli.dll
2015-10-13 21:27:42 ----A---- C:\Windows\system32\srclient.dll
2015-10-13 21:27:42 ----A---- C:\Windows\system32\smss.exe
2015-10-13 21:27:42 ----A---- C:\Windows\system32\secur32.dll
2015-10-13 21:27:42 ----A---- C:\Windows\system32\ntvdm64.dll
2015-10-13 21:27:42 ----A---- C:\Windows\system32\ncrypt.dll
2015-10-13 21:27:42 ----A---- C:\Windows\system32\msv1_0.dll
2015-10-13 21:27:42 ----A---- C:\Windows\system32\msobjs.dll
2015-10-13 21:27:42 ----A---- C:\Windows\system32\msaudite.dll
2015-10-13 21:27:42 ----A---- C:\Windows\system32\lsass.exe
2015-10-13 21:27:42 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2015-10-13 21:27:42 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2015-10-13 21:27:42 ----A---- C:\Windows\system32\csrsrv.dll
2015-10-13 21:27:42 ----A---- C:\Windows\system32\cryptbase.dll
2015-10-13 21:27:42 ----A---- C:\Windows\system32\credssp.dll
2015-10-13 21:27:42 ----A---- C:\Windows\system32\auditpol.exe
2015-10-13 21:27:42 ----A---- C:\Windows\system32\apisetschema.dll
2015-10-13 21:27:42 ----A---- C:\Windows\system32\adtschema.dll
2015-10-13 21:27:38 ----A---- C:\Windows\SYSWOW64\appidapi.dll
2015-10-13 21:27:38 ----A---- C:\Windows\system32\setbcdlocale.dll
2015-10-13 21:27:38 ----A---- C:\Windows\system32\drivers\appid.sys
2015-10-13 21:27:38 ----A---- C:\Windows\system32\appidsvc.dll
2015-10-13 21:27:38 ----A---- C:\Windows\system32\appidpolicyconverter.exe
2015-10-13 21:27:38 ----A---- C:\Windows\system32\appidcertstorecheck.exe
2015-10-13 21:27:38 ----A---- C:\Windows\system32\appidapi.dll
2015-10-13 21:27:32 ----A---- C:\Windows\SYSWOW64\ucrtbase.dll
2015-10-13 21:27:32 ----A---- C:\Windows\SYSWOW64\api-ms-win-eventing-provider-l1-1-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-utility-l1-1-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-time-l1-1-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-string-l1-1-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-stdio-l1-1-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-runtime-l1-1-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-process-l1-1-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-private-l1-1-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-multibyte-l1-1-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-math-l1-1-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-locale-l1-1-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-heap-l1-1-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-filesystem-l1-1-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-environment-l1-1-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-convert-l1-1-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-conio-l1-1-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l2-1-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\SYSWOW64\api-ms-win-core-timezone-l1-1-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-2-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-1.dll
2015-10-13 21:27:32 ----A---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-2-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\SYSWOW64\api-ms-win-core-file-l2-1-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-2-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\system32\ucrtbase.dll
2015-10-13 21:27:32 ----A---- C:\Windows\system32\api-ms-win-eventing-provider-l1-1-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\system32\api-ms-win-crt-utility-l1-1-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\system32\api-ms-win-crt-time-l1-1-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\system32\api-ms-win-crt-string-l1-1-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\system32\api-ms-win-crt-stdio-l1-1-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\system32\api-ms-win-crt-runtime-l1-1-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\system32\api-ms-win-crt-process-l1-1-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\system32\api-ms-win-crt-private-l1-1-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\system32\api-ms-win-crt-multibyte-l1-1-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\system32\api-ms-win-crt-math-l1-1-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\system32\api-ms-win-crt-locale-l1-1-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\system32\api-ms-win-crt-heap-l1-1-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\system32\api-ms-win-crt-filesystem-l1-1-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\system32\api-ms-win-crt-environment-l1-1-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\system32\api-ms-win-crt-convert-l1-1-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\system32\api-ms-win-crt-conio-l1-1-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\system32\api-ms-win-core-xstate-l2-1-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\system32\api-ms-win-core-timezone-l1-1-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\system32\api-ms-win-core-synch-l1-2-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-1.dll
2015-10-13 21:27:32 ----A---- C:\Windows\system32\api-ms-win-core-localization-l1-2-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\system32\api-ms-win-core-file-l2-1-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\system32\api-ms-win-core-file-l1-2-0.dll
2015-10-10 11:42:43 ----D---- C:\Program Files\ASUSTeKcomputer.Inc
2015-10-10 11:42:12 ----A---- C:\Windows\system32\drivers\DTSU2P.DAT
2015-10-10 11:42:10 ----A---- C:\Windows\system32\YamahaAE.dll
2015-10-10 11:42:10 ----A---- C:\Windows\system32\WavesGUILib64.dll
2015-10-10 11:42:10 ----A---- C:\Windows\system32\tossaeapo64.dll
2015-10-10 11:42:10 ----A---- C:\Windows\system32\toseaeapo64.dll
2015-10-10 11:42:10 ----A---- C:\Windows\system32\tosasfapo64.dll
2015-10-10 11:42:09 ----A---- C:\Windows\SYSWOW64\SRCOM.dll
2015-10-10 11:42:09 ----A---- C:\Windows\system32\tosade.dll
2015-10-10 11:42:09 ----A---- C:\Windows\system32\tepeqapo64.dll
2015-10-10 11:42:09 ----A---- C:\Windows\system32\tadefxapo264.dll
2015-10-10 11:42:09 ----A---- C:\Windows\system32\tadefxapo.dll
2015-10-10 11:42:09 ----A---- C:\Windows\system32\SRRPTR64.dll
2015-10-10 11:42:09 ----A---- C:\Windows\system32\SRCOM64.dll
2015-10-10 11:42:09 ----A---- C:\Windows\system32\SRCOM.dll
2015-10-10 11:42:09 ----A---- C:\Windows\system32\SRAPO64.dll
2015-10-10 11:42:08 ----A---- C:\Windows\system32\sltech64.dll
2015-10-10 11:42:08 ----A---- C:\Windows\system32\slprp64.dll
2015-10-10 11:42:08 ----A---- C:\Windows\system32\slcnt64.dll
2015-10-10 11:42:08 ----A---- C:\Windows\system32\sl3apo64.dll
2015-10-10 11:42:07 ----A---- C:\Windows\SYSWOW64\SFCOM.dll
2015-10-10 11:42:07 ----A---- C:\Windows\system32\SFSS_APO.dll
2015-10-10 11:42:07 ----A---- C:\Windows\system32\SFNHK64.dll
2015-10-10 11:42:07 ----A---- C:\Windows\system32\SFCOM64.dll
2015-10-10 11:42:07 ----A---- C:\Windows\system32\SFAPO64.dll
2015-10-10 11:42:07 ----A---- C:\Windows\system32\RtPgEx64.dll
2015-10-10 11:42:07 ----A---- C:\Windows\system32\drivers\rtvienna.dat
2015-10-10 11:42:06 ----A---- C:\Windows\system32\RtkApi64.dll
2015-10-10 11:42:06 ----A---- C:\Windows\system32\drivers\RTKVHD64.sys
2015-10-10 11:42:05 ----A---- C:\Windows\system32\RtDataProc64.dll
2015-10-10 11:42:05 ----A---- C:\Windows\system32\RTCOM64.dll
2015-10-10 11:42:05 ----A---- C:\Windows\system32\RltkAPO64.dll
2015-10-10 11:42:05 ----A---- C:\Windows\system32\drivers\RTAIODAT.DAT
2015-10-10 11:42:04 ----A---- C:\Windows\system32\RCoRes64.dat
2015-10-10 11:42:04 ----A---- C:\Windows\system32\RCoInstII64.dll
2015-10-10 11:42:04 ----A---- C:\Windows\system32\R4EEP64A.dll
2015-10-10 11:42:04 ----A---- C:\Windows\system32\R4EEL64A.dll
2015-10-10 11:42:04 ----A---- C:\Windows\system32\R4EEG64A.dll
2015-10-10 11:42:04 ----A---- C:\Windows\system32\R4EED64A.dll
2015-10-10 11:42:04 ----A---- C:\Windows\system32\R4EEA64A.dll
2015-10-10 11:42:04 ----A---- C:\Windows\system32\NahimicAPONSControl.dll
2015-10-10 11:42:03 ----A---- C:\Windows\system32\NAHIMICAPOlfx.dll
2015-10-10 11:42:03 ----A---- C:\Windows\system32\MISS_APO.dll
2015-10-10 11:42:03 ----A---- C:\Windows\system32\MaxxVolumeSDAPO.dll
2015-10-10 11:42:03 ----A---- C:\Windows\system32\MaxxVoiceAPO3064.dll
2015-10-10 11:42:02 ----A---- C:\Windows\system32\MaxxVoiceAPO2064.dll
2015-10-10 11:42:02 ----A---- C:\Windows\system32\MaxxSpeechAPO64.dll
2015-10-10 11:42:02 ----A---- C:\Windows\system32\MaxxAudioRealtek64.dll
2015-10-10 11:42:02 ----A---- C:\Windows\system32\MaxxAudioEQ64.dll
2015-10-10 11:42:02 ----A---- C:\Windows\system32\MaxxAudioAPOShell64.dll
2015-10-10 11:42:02 ----A---- C:\Windows\system32\MaxxAudioAPO6064.dll
2015-10-10 11:42:02 ----A---- C:\Windows\system32\MaxxAudioAPO5064.dll
2015-10-10 11:42:02 ----A---- C:\Windows\system32\MaxxAudioAPO4064.dll
2015-10-10 11:42:01 ----A---- C:\Windows\system32\MaxxAudioAPO30.dll
2015-10-10 11:42:01 ----A---- C:\Windows\system32\KAAPORT64.dll
2015-10-10 11:42:01 ----A---- C:\Windows\system32\ICEsoundAPO64.dll
2015-10-10 11:41:56 ----A---- C:\Windows\system32\FMAPO64.dll
2015-10-10 11:41:56 ----A---- C:\Windows\system32\DTSVoiceClarityDLL64.dll
2015-10-10 11:41:56 ----A---- C:\Windows\system32\DTSU2PREC64.dll
2015-10-10 11:41:56 ----A---- C:\Windows\system32\DTSU2PLFX64.dll
2015-10-10 11:41:56 ----A---- C:\Windows\system32\DTSU2PGFX64.dll
2015-10-10 11:41:56 ----A---- C:\Windows\system32\DTSSymmetryDLL64.dll
2015-10-10 11:41:55 ----A---- C:\Windows\system32\DTSS2SpeakerDLL64.dll
2015-10-10 11:41:55 ----A---- C:\Windows\system32\DTSS2HeadphoneDLL64.dll
2015-10-10 11:41:55 ----A---- C:\Windows\system32\DTSNeoPCDLL64.dll
2015-10-10 11:41:55 ----A---- C:\Windows\system32\DTSLimiterDLL64.dll
2015-10-10 11:41:55 ----A---- C:\Windows\system32\DTSLFXAPO64.dll
2015-10-10 11:41:55 ----A---- C:\Windows\system32\DTSGFXAPONS64.dll
2015-10-10 11:41:55 ----A---- C:\Windows\system32\DTSGFXAPO64.dll
2015-10-10 11:41:55 ----A---- C:\Windows\system32\DTSGainCompensatorDLL64.dll
2015-10-10 11:41:55 ----A---- C:\Windows\system32\DTSBoostDLL64.dll
2015-10-10 11:41:55 ----A---- C:\Windows\system32\DTSBassEnhancementDLL64.dll
2015-10-10 11:41:55 ----A---- C:\Windows\system32\DDPP64A.dll
2015-10-10 11:41:55 ----A---- C:\Windows\system32\DDPO64A.dll
2015-10-10 11:41:55 ----A---- C:\Windows\system32\DDPD64A.dll
2015-10-10 11:41:54 ----A---- C:\Windows\system32\DDPA64.dll
2015-10-10 11:41:54 ----A---- C:\Windows\system32\CX64APO.dll
2015-10-10 11:41:54 ----A---- C:\Windows\system32\audioLibVc.dll
2015-10-10 11:41:53 ----A---- C:\Windows\system32\AERTAC64.dll
2015-10-10 11:41:53 ----A---- C:\Windows\system32\AcpiServiceVnA64.dll
2015-10-10 11:41:12 ----D---- C:\Program Files (x86)\ASUS
2015-10-10 11:41:12 ----A---- C:\Windows\SYSWOW64\drivers\AsIO.sys
2015-10-10 11:41:12 ----A---- C:\Windows\SYSWOW64\AsIO.dll
2015-10-08 17:04:15 ----D---- C:\Users\User007\AppData\Roaming\Xiaomi
2015-10-08 16:35:46 ----A---- C:\Windows\SYSWOW64\qcCoInstaller.dll
2015-10-08 16:35:44 ----D---- C:\Program Files (x86)\Xiaomi
2015-10-07 21:07:05 ----D---- C:\Downloads
2015-10-07 21:06:49 ----D---- C:\ProgramData\FreeDownloadManager.ORG
2015-10-07 21:06:49 ----D---- C:\ProgramData\Free Download Manager
2015-10-07 21:06:46 ----D---- C:\Users\User007\AppData\Roaming\FreeDownloadManager.ORG
2015-10-07 21:06:46 ----D---- C:\Users\User007\AppData\Roaming\Free Download Manager
2015-10-07 21:06:40 ----D---- C:\Program Files (x86)\Free Download Manager
2015-10-06 19:11:28 ----D---- C:\Users\User007\AppData\Roaming\Subhra Das Gupta
2015-10-04 22:30:42 ----D---- C:\Program Files\OO Software
2015-10-04 22:26:37 ----D---- C:\Windows\system32\oodag
2015-10-04 22:26:01 ----D---- C:\ProgramData\OO Software
2015-10-03 09:18:44 ----D---- C:\ProgramData\ESET

======List of files/folders modified in the last 1 month======

2015-11-02 20:39:53 ----D---- C:\Windows\Temp
2015-11-02 19:03:05 ----D---- C:\Windows\system32\config
2015-11-02 18:43:11 ----D---- C:\Windows\System32
2015-11-02 18:43:11 ----A---- C:\Windows\system32\PerfStringBackup.INI
2015-11-02 18:39:11 ----D---- C:\Users\User007\AppData\Roaming\Dropbox
2015-11-02 18:38:56 ----D---- C:\Program Files (x86)\SpeedFan
2015-11-02 10:59:48 ----SHD---- C:\System Volume Information
2015-11-02 00:30:53 ----RD---- C:\Program Files
2015-11-01 11:19:12 ----D---- C:\Windows
2015-10-31 22:52:49 ----D---- C:\Windows\inf
2015-10-30 12:21:49 ----D---- C:\ProgramData\boost_interprocess
2015-10-28 12:45:48 ----D---- C:\Users\User007\AppData\Roaming\DAEMON Tools Lite
2015-10-28 12:45:45 ----D---- C:\Windows\Minidump
2015-10-28 12:45:45 ----D---- C:\Windows\Logs
2015-10-28 12:45:45 ----D---- C:\Windows\debug
2015-10-28 12:42:59 ----D---- C:\Program Files\CCleaner
2015-10-25 21:30:34 ----D---- C:\Users\User007\AppData\Roaming\BID
2015-10-25 21:29:53 ----D---- C:\Program Files (x86)\Bulk Image Downloader
2015-10-25 09:47:13 ----D---- C:\Windows\system32\catroot2
2015-10-19 13:57:38 ----D---- C:\Program Files (x86)\Malwarebytes Anti-Malware
2015-10-19 13:57:35 ----D---- C:\Windows\system32\drivers
2015-10-17 13:44:10 ----D---- C:\Windows\SysWOW64
2015-10-17 13:44:09 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2015-10-17 09:54:39 ----HD---- C:\ProgramData
2015-10-17 09:54:36 ----RD---- C:\Program Files (x86)
2015-10-16 10:04:01 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2015-10-15 00:17:07 ----D---- C:\Windows\winsxs
2015-10-15 00:17:06 ----SD---- C:\Windows\system32\CompatTel
2015-10-15 00:17:06 ----D---- C:\Windows\system32\appraiser
2015-10-15 00:17:06 ----D---- C:\Windows\AppPatch
2015-10-14 10:17:01 ----D---- C:\Windows\rescache
2015-10-13 23:42:44 ----D---- C:\Windows\SYSWOW64\en-US
2015-10-13 23:42:44 ----D---- C:\Windows\SYSWOW64\cs-CZ
2015-10-13 23:42:44 ----D---- C:\Windows\system32\en-US
2015-10-13 23:42:44 ----D---- C:\Windows\system32\cs-CZ
2015-10-13 23:42:44 ----D---- C:\Program Files\Internet Explorer
2015-10-13 23:42:44 ----D---- C:\Program Files (x86)\Internet Explorer
2015-10-13 23:42:42 ----D---- C:\Windows\system32\CodeIntegrity
2015-10-13 23:42:42 ----D---- C:\Windows\system32\Boot
2015-10-13 22:47:46 ----D---- C:\Windows\system32\MRT
2015-10-13 22:47:45 ----A---- C:\Windows\system32\MRT.exe
2015-10-13 22:47:41 ----SHD---- C:\Windows\Installer
2015-10-13 22:47:40 ----D---- C:\ProgramData\Microsoft Help
2015-10-10 11:56:09 ----D---- C:\Windows\Microsoft.NET
2015-10-10 11:43:00 ----HD---- C:\Program Files (x86)\Temp
2015-10-10 11:42:48 ----D---- C:\ProgramData\Package Cache
2015-10-10 11:42:25 ----D---- C:\Windows\SYSWOW64\RTCOM
2015-10-10 11:42:22 ----D---- C:\Windows\system32\DriverStore
2015-10-10 11:41:12 ----D---- C:\Windows\SYSWOW64\drivers
2015-10-09 08:14:13 ----SD---- C:\Windows\system32\GWX
2015-10-08 22:35:42 ----SD---- C:\Windows\SYSWOW64\GWX
2015-10-07 19:42:13 ----HD---- C:\$Windows.~BT
2015-10-07 19:19:47 ----D---- C:\Windows\Panther
2015-10-04 22:17:21 ----D---- C:\Program Files (x86)\Google
2015-10-03 09:37:11 ----D---- C:\Windows\system32\NDF

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 edevmon;edevmon; C:\Windows\system32\DRIVERS\edevmon.sys [2015-07-14 251632]
R0 fltsrv;Acronis Storage Filter Management; C:\Windows\system32\DRIVERS\fltsrv.sys [2014-09-13 118560]
R0 iaStorA;iaStorA; C:\Windows\system32\DRIVERS\iaStorA.sys [2013-08-07 644968]
R0 iaStorF;iaStorF; C:\Windows\system32\DRIVERS\iaStorF.sys [2013-08-07 28008]
R0 iusb3hcs;Ovladač přepínání hostitelského řadiče Intel(R) USB 3.0; C:\Windows\system32\DRIVERS\iusb3hcs.sys [2014-08-25 20464]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-21 213888]
R0 snapman;Acronis Snapshots Manager; C:\Windows\system32\DRIVERS\snapman.sys [2014-09-13 276256]
R0 tib;Acronis TIB Manager; C:\Windows\system32\DRIVERS\tib.sys [2014-09-13 1120032]
R0 tib_mounter;Acronis TIB Mounter; C:\Windows\system32\DRIVERS\tib_mounter.sys [2014-09-13 198432]
R0 vididr;Acronis Virtual Disk; C:\Windows\system32\DRIVERS\vididr.sys [2014-09-13 161568]
R0 vidsflt;Acronis Disk Storage Filter; C:\Windows\system32\DRIVERS\vidsflt.sys [2014-09-13 117024]
R1 AsIO;AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [2014-07-23 15232]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-21 514560]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2014-09-13 283064]
R1 eamonm;eamonm; C:\Windows\system32\DRIVERS\eamonm.sys [2015-07-14 255240]
R1 ehdrv;ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [2015-07-14 178520]
R2 epfwwfpr;epfwwfpr; C:\Windows\system32\DRIVERS\epfwwfpr.sys [2015-07-14 168208]
R2 speedfan;speedfan; \??\C:\Windows\SysWOW64\speedfan.sys [2012-12-29 28664]
R2 SSPORT;SSPORT; \??\C:\Windows\system32\Drivers\SSPORT.sys [2014-05-07 11576]
R3 afcdp;afcdp; C:\Windows\system32\DRIVERS\afcdp.sys [2014-09-13 367200]
R3 ALSysIO;ALSysIO; \??\C:\Users\User007\AppData\Local\Temp\ALSysIO64.sys []
R3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2015-08-04 21622784]
R3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2015-08-04 665088]
R3 AtiHDAudioService;AMD Function Driver for HD Audio Service; C:\Windows\system32\drivers\AtihdW76.sys [2015-07-15 96256]
R3 BEHRINGER_2902;usb-audio.de driver for BEHRINGER USB AUDIO; C:\Windows\System32\Drivers\BUSB2902.sys [2014-09-12 460864]
R3 BUSB_AUDIO_WDM;BEHRINGER USB WDM AUDIO; C:\Windows\system32\drivers\busbwdm.sys [2014-09-12 49728]
R3 e1dexpress;Intel(R) PRO/1000 PCI Express Network Connection Driver D; C:\Windows\system32\DRIVERS\e1d62x64.sys [2014-03-14 487704]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2014-10-28 4263128]
R3 iusb3hub;Ovladač rozbočovače Intel(R) USB 3.0; C:\Windows\system32\DRIVERS\iusb3hub.sys [2014-08-25 383984]
R3 iusb3xhc;Ovladač rozšiřitelného hostitelského řadiče Intel(R) USB 3.0; C:\Windows\system32\DRIVERS\iusb3xhc.sys [2014-08-25 795120]
R3 MBAMProtector;MBAMProtector; \??\C:\Windows\system32\drivers\mbam.sys [2015-10-05 25816]
R3 MBAMSwissArmy;MBAMSwissArmy; \??\C:\Windows\system32\drivers\MBAMSwissArmy.sys [2015-11-02 192216]
R3 MEIx64;Intel(R) Management Engine Interface ; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [2014-09-30 129312]
R3 StillCam;Ovladač digitálního fotoaparátu pro sériový port; C:\Windows\system32\DRIVERS\serscan.sys [2009-07-14 12288]
S3 dg_ssudbus;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\Windows\system32\DRIVERS\ssudbus.sys [2014-01-22 108800]
S3 dmvsc;dmvsc; C:\Windows\system32\drivers\dmvsc.sys [2010-11-21 71168]
S3 GPUZ;GPUZ; \??\C:\Windows\TEMP\GPUZ.sys []
S3 MBAMWebAccessControl;MBAMWebAccessControl; \??\C:\Windows\system32\drivers\mwac.sys [2015-10-05 63704]
S3 MBfilt;MBfilt; C:\Windows\system32\drivers\MBfilt64.sys [2009-11-18 32344]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-21 165888]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 19456]
S3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2013-11-26 888536]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-21 6656]
S3 ssudmdm;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.); C:\Windows\system32\DRIVERS\ssudmdm.sys [2014-01-22 206080]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-21 34688]
S3 tdrpman;Acronis Try&Decide and Restore Points filter; C:\Windows\system32\DRIVERS\tdrpman.sys [2014-09-13 1464096]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2013-10-02 56832]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2012-08-23 30208]
S3 vmbus;vmbus; C:\Windows\system32\drivers\vmbus.sys [2010-11-21 199552]
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-21 21760]
S3 WinUsb;Alcatel USB Driver; C:\Windows\system32\DRIVERS\WinUsb.sys [2010-11-21 41984]
S3 WSDPrintDevice;Podpora tisku WSD prostřednictvím funkce UMB; C:\Windows\system32\DRIVERS\WSDPrint.sys [2009-07-14 23040]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AcrSch2Svc;Acronis Scheduler2 Service; C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedul2.exe [2013-07-18 1142584]
R2 afcdpsrv;Acronis Nonstop Backup Service; C:\Program Files (x86)\Common Files\Acronis\CDP\afcdpsrv.exe [2014-09-13 3873784]
R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2015-08-04 246784]
R2 asComSvc;ASUS Com Service; C:\Program Files (x86)\ASUS\AXSP\1.02.00\atkexComSvc.exe [2014-07-23 936728]
R2 AsSysCtrlService;ASUS System Control Service; C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.22\AsSysCtrlService.exe [2014-07-23 1360016]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe [2015-07-08 1353720]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [2013-08-27 747520]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2013-09-17 169432]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2013-09-17 390616]
R2 MBAMService;MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [2015-10-05 1135416]
R2 MBAMScheduler;MBAMScheduler; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [2015-10-05 1513784]
R2 OODefragAgent;O&O Defrag; C:\Program Files\OO Software\Defrag\oodag.exe [2015-09-14 1711352]
R2 Samsung Network Fax Server;Samsung Network Fax Server; C:\Windows\system32\spool\drivers\x64\3\NetFaxServer64.exe [2015-03-10 801472]
R2 SamsungUPDUtilSvc;Samsung UPD Utility Service; C:\Windows\SysWOW64\SecUPDUtilSvc.exe [2014-11-26 118576]
R2 Service KMSELDI;Service KMSELDI; C:\Program Files\KMSpico\Service_KMS.exe [2015-08-13 734400]
R2 syncagentsrv;Acronis Sync Agent Service; C:\Program Files (x86)\Common Files\Acronis\SyncAgent\syncagentsrv.exe [2013-10-22 7142320]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2014-04-11 103608]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2014-04-11 124088]
S2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2013-08-07 15720]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2015-07-09 327296]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-10-17 269000]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 27136]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2015-09-16 114688]
S3 Intel(R) Capability Licensing Service TCP IP Interface;Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [2013-08-27 828376]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2015-10-15 147624]
S3 ose64;Office 64 Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2012-12-08 178760]
S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2012-10-01 5132888]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 StorSvc;@%SystemRoot%\System32\StorSvc.dll,-100; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2014-09-10 1255736]
S4 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2014-04-11 50864]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119673
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: přehřátý PC při surfování

#6 Příspěvek od Rudy »

Stáhněte OTM: http://oldtimer.geekstogo.com/OTM.exe a uložte na plochu. Spusťte a do levého okna zkopírujte:
:commands
[Purity]
[Emptytemp]
[Emptyflash]
a klikněte na >MoveIt!<. Po skenu restartujte PC a dejte nový log RSIT.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Luki951
Návštěvník
Návštěvník
Příspěvky: 50
Registrován: 18 zář 2012 20:10

Re: přehřátý PC při surfování

#7 Příspěvek od Luki951 »

Logfile of random's system information tool 1.10 (written by random/random)
Run by User007 at 2015-11-02 23:23:55
Microsoft Windows 7 Professional Service Pack 1
System drive C: has 70 GB (31%) free of 229 GB
Total RAM: 8134 MB (80% free)

HijackThis download failed

======Listing Processes======



\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
winlogon.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\system32\atiesrxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs

C:\Windows\system32\svchost.exe -k GPSvcGroup
atieclxx
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\spoolsv.exe
"taskhost.exe"
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
"C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedul2.exe"
"C:\Program Files (x86)\Common Files\Acronis\CDP\afcdpsrv.exe"
taskeng.exe {F1A085AE-AB01-4C23-AD30-16B79F631E40}
"C:\Program Files\Core Temp\Core Temp.exe"
"C:\Program Files (x86)\ASUS\AXSP\1.02.00\atkexComSvc.exe"
"C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.22\AsSysCtrlService.exe"
C:\Windows\System32\svchost.exe -k utcsvc
"C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe"
"C:\Program Files\Intel\iCLS Client\HeciServer.exe"
"C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe"
"C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe"
"C:\Program Files\OO Software\Defrag\oodag.exe"
"C:\Windows\system32\spool\drivers\x64\3\NetFaxServer64.exe"
C:\Windows\SysWOW64\SecUPDUtilSvc.exe
"C:\Program Files\KMSpico\Service_KMS.exe"
"C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe" /starttray
"C:\Program Files (x86)\Skype\Updater\Updater.exe"
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\sppsvc.exe
"C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE"
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
"C:\Windows\system32\GWX\GWX.exe"
"C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe" -s
"C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe"
"C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe" /hide /waitservice
"C:\Program Files\OO Software\Defrag\oodtray.exe"
"C:\Program Files\Windows Sidebar\sidebar.exe" /autoRun
"C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
"C:\Windows\System32\spool\drivers\x64\3\NetFaxTray64.exe"
"C:\Users\User007\AppData\Roaming\Dropbox\bin\Dropbox.exe" /systemstartup
"C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
"C:\Program Files (x86)\SpeedFan\speedfan.exe"
"C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\MOM" PriorityLow
C:\Windows\system32\wbem\unsecapp.exe -Embedding
C:\Windows\system32\PrintIsolationHost.exe -Embedding
"C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\CCC.exe" 0
C:\Windows\sysWOW64\wbem\wmiprvse.exe -Embedding
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\SearchIndexer.exe /Embedding
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe_S-1-5-21-4219553082-3292414727-2818567259-10001_ Global\UsGthrCtrlFltPipeMssGthrPipe_S-1-5-21-4219553082-3292414727-2818567259-10001 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon" "1"
"C:\Windows\system32\SearchFilterHost.exe" 0 520 524 532 65536 528
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
C:\Windows\SysWOW64\DllHost.exe /Processid:{1EF75F33-893B-4E8F-9655-C3D602BA4897}
"D:\Plocha\RSITx64.exe"

======Scheduled tasks folder======

C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\Windows\tasks\DropboxUpdateTaskUserS-1-5-21-4219553082-3292414727-2818567259-1000Core.job - C:\Users\User007\AppData\Local\Dropbox\Update\DropboxUpdate.exe /c
C:\Windows\tasks\DropboxUpdateTaskUserS-1-5-21-4219553082-3292414727-2818567259-1000UA.job - C:\Users\User007\AppData\Local\Dropbox\Update\DropboxUpdate.exe /ua /installsource scheduler

=========Mozilla firefox=========

ProfilePath - C:\Users\User007\AppData\Roaming\Mozilla\Firefox\Profiles\bb4f2o9z.default

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 19.0.0.226 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_19_0_0_226.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5]
"Description"=Intel IPT WebApi plugin
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI updater]
"Description"=This plugin updates Intel WebAPI component
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/DTPlugin,version=11.45.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files (x86)\Java\jre1.8.0_45\bin\dtplugin\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=11.45.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Java\jre1.8.0_45\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/Lync,version=15.0]
"Description"=Microsoft Lync Plug-in for Firefox
"Path"=C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files (x86)\Microsoft Silverlight\5.1.40728.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=C:\PROGRA~2\MICROS~3\Office15\NPSPWRAP.DLL


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 19.0.0.226 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_19_0_0_226.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files\Microsoft Silverlight\5.1.40728.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=C:\PROGRA~1\MICROS~2\Office15\NPSPWRAP.DLL


C:\Program Files (x86)\Mozilla Firefox\plugins\
npMeetingJoinPluginOC.dll

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Lync Browser Helper - C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2014-09-25 218784]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~2\Office15\URLREDIR.DLL [2014-01-23 881880]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft SkyDrive Pro Browser Helper - C:\PROGRA~1\MICROS~2\Office15\GROOVEEX.DLL [2014-09-16 2334416]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Lync Browser Helper - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2014-09-25 153240]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_45\bin\ssv.dll [2015-04-26 460712]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MICROS~3\Office15\URLREDIR.DLL [2014-01-22 707800]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{CC59E0F9-7E43-44FA-9FAA-8377850BF205}]
Free Download Manager - C:\Program Files (x86)\Free Download Manager\iefdm2.dll [2015-07-08 737896]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft SkyDrive Pro Browser Helper - C:\PROGRA~2\MICROS~3\Office15\GROOVEEX.DLL [2014-09-16 1729232]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_45\bin\jp2ssv.dll [2015-04-26 172968]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [2014-10-28 7660760]
"CDAServer"=C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe [2014-09-08 464608]
"egui"=C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe [2015-07-08 5595848]
"OODefragTray"=C:\Program Files\OO Software\Defrag\oodtray.exe [2015-09-14 4468984]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"=C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2014-03-04 3696912]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2010-11-21 1475584]
"Dropbox Update"=C:\Users\User007\AppData\Local\Dropbox\Update\DropboxUpdate.exe [2015-06-17 134512]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2015-10-19 8551848]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Acronis Scheduler2 Service]
C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedhlp.exe [2013-07-18 518424]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AcronisTibMounterMonitor]
C:\Program Files (x86)\Common Files\Acronis\TibMounter\TibMounterMonitor.exe [2013-10-10 1102192]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite]
C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2014-03-04 3696912]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Eraser]
C:\Program Files\Eraser\Eraser.exe /atRestart []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IAStorIcon]
C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe [2013-08-07 36352]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Raptr]
C:\Program Files (x86)\Raptr\raptrstub.exe --startup []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RGSC]
C:\Program Files (x86)\Rockstar Games\Rockstar Games Social Club\RGSCLauncher.exe /silent []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Sidebar]
C:\Program Files\Windows Sidebar\sidebar.exe [2010-11-21 1475584]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\StartCCC]
C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe MSRun []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TrueImageMonitor.exe]
C:\Program Files (x86)\Acronis\TrueImageHome\TrueImageMonitor.exe [2013-10-24 7805824]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\USB3MON]
C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [2014-08-25 293872]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"StartCCC"=C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\amd64\CLIStart.exe [2014-11-20 767176]
"USB3MON"=C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [2014-08-25 293872]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
O&O Defrag Tray.lnk - C:\Windows\Installer\{6F9CDC3F-27D8-4A38-B81D-7E2DE3AF8434}\app_icon.ico
Samsung Network PC Fax.lnk - C:\Windows\System32\spool\drivers\x64\3\NetFaxTray64.exe

C:\Users\User007\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Dropbox.lnk - C:\Users\User007\AppData\Roaming\Dropbox\bin\Dropbox.exe
SpeedFan.lnk - C:\Program Files (x86)\SpeedFan\speedfan.exe

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableLinkedConnections"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=177

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=l3codeca.acm
"msacm.l3codecp"=l3codecp.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"aux2"=wdmaud.drv
"wave3"=wdmaud.drv
"mixer3"=wdmaud.drv
"wave4"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer4"=wdmaud.drv
"aux3"=wdmaud.drv
"wave5"=wdmaud.drv
"mixer5"=wdmaud.drv
"wave6"=wdmaud.drv
"mixer6"=wdmaud.drv
"wave7"=wdmaud.drv
"mixer7"=wdmaud.drv
"wave8"=wdmaud.drv
"mixer8"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave9"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer9"=wdmaud.drv
"aux4"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2015-11-02 18:37:42 ----D---- C:\AdwCleaner
2015-11-02 00:30:53 ----D---- C:\rsit
2015-11-02 00:30:53 ----D---- C:\Program Files\trend micro
2015-11-01 11:19:11 ----D---- C:\FRST
2015-10-17 09:54:39 ----D---- C:\ProgramData\eBook Converter
2015-10-17 09:54:36 ----D---- C:\Program Files (x86)\eBookConverter
2015-10-15 23:39:23 ----D---- C:\Program Files (x86)\Mozilla Firefox
2015-10-14 23:18:02 ----A---- C:\Windows\system32\invagent.dll
2015-10-14 23:18:02 ----A---- C:\Windows\system32\generaltel.dll
2015-10-14 23:18:02 ----A---- C:\Windows\system32\devinv.dll
2015-10-14 23:18:02 ----A---- C:\Windows\system32\CompatTelRunner.exe
2015-10-14 23:18:02 ----A---- C:\Windows\system32\appraiser.dll
2015-10-14 23:18:02 ----A---- C:\Windows\system32\aeinv.dll
2015-10-14 23:18:02 ----A---- C:\Windows\system32\acmigration.dll
2015-10-13 21:28:22 ----A---- C:\Windows\SYSWOW64\shell32.dll
2015-10-13 21:28:22 ----A---- C:\Windows\SYSWOW64\ExplorerFrame.dll
2015-10-13 21:28:22 ----A---- C:\Windows\system32\shell32.dll
2015-10-13 21:28:22 ----A---- C:\Windows\system32\ExplorerFrame.dll
2015-10-13 21:28:20 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2015-10-13 21:28:20 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2015-10-13 21:28:20 ----A---- C:\Windows\SYSWOW64\occache.dll
2015-10-13 21:28:20 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2015-10-13 21:28:20 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2015-10-13 21:28:20 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2015-10-13 21:28:20 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2015-10-13 21:28:20 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2015-10-13 21:28:20 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2015-10-13 21:28:20 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2015-10-13 21:28:20 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2015-10-13 21:28:20 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2015-10-13 21:28:20 ----A---- C:\Windows\system32\iernonce.dll
2015-10-13 21:28:20 ----A---- C:\Windows\system32\ieetwproxystub.dll
2015-10-13 21:28:20 ----A---- C:\Windows\system32\ieetwcollector.exe
2015-10-13 21:28:20 ----A---- C:\Windows\system32\ie4uinit.exe
2015-10-13 21:28:19 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2015-10-13 21:28:19 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2015-10-13 21:28:19 ----A---- C:\Windows\SYSWOW64\jscript.dll
2015-10-13 21:28:19 ----A---- C:\Windows\SYSWOW64\ieui.dll
2015-10-13 21:28:19 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2015-10-13 21:28:19 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2015-10-13 21:28:19 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2015-10-13 21:28:19 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2015-10-13 21:28:19 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2015-10-13 21:28:19 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2015-10-13 21:28:19 ----A---- C:\Windows\system32\urlmon.dll
2015-10-13 21:28:19 ----A---- C:\Windows\system32\occache.dll
2015-10-13 21:28:19 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2015-10-13 21:28:19 ----A---- C:\Windows\system32\msfeeds.dll
2015-10-13 21:28:19 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2015-10-13 21:28:19 ----A---- C:\Windows\system32\iedkcs32.dll
2015-10-13 21:28:19 ----A---- C:\Windows\system32\dxtrans.dll
2015-10-13 21:28:18 ----A---- C:\Windows\SYSWOW64\wininet.dll
2015-10-13 21:28:18 ----A---- C:\Windows\SYSWOW64\webcheck.dll
2015-10-13 21:28:18 ----A---- C:\Windows\SYSWOW64\msrating.dll
2015-10-13 21:28:18 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2015-10-13 21:28:18 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2015-10-13 21:28:18 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2015-10-13 21:28:18 ----A---- C:\Windows\system32\vbscript.dll
2015-10-13 21:28:18 ----A---- C:\Windows\system32\jsproxy.dll
2015-10-13 21:28:18 ----A---- C:\Windows\system32\iesetup.dll
2015-10-13 21:28:18 ----A---- C:\Windows\system32\iertutil.dll
2015-10-13 21:28:18 ----A---- C:\Windows\system32\ieapfltr.dll
2015-10-13 21:28:17 ----A---- C:\Windows\system32\webcheck.dll
2015-10-13 21:28:17 ----A---- C:\Windows\system32\mshtmlmedia.dll
2015-10-13 21:28:17 ----A---- C:\Windows\system32\mshtmled.dll
2015-10-13 21:28:17 ----A---- C:\Windows\system32\jscript9diag.dll
2015-10-13 21:28:17 ----A---- C:\Windows\system32\jscript.dll
2015-10-13 21:28:17 ----A---- C:\Windows\system32\ieUnatt.exe
2015-10-13 21:28:17 ----A---- C:\Windows\system32\ieui.dll
2015-10-13 21:28:17 ----A---- C:\Windows\system32\ieframe.dll
2015-10-13 21:28:17 ----A---- C:\Windows\system32\dxtmsft.dll
2015-10-13 21:28:16 ----A---- C:\Windows\system32\wininet.dll
2015-10-13 21:28:16 ----A---- C:\Windows\system32\msrating.dll
2015-10-13 21:28:16 ----A---- C:\Windows\system32\MshtmlDac.dll
2015-10-13 21:28:16 ----A---- C:\Windows\system32\mshtml.dll
2015-10-13 21:28:16 ----A---- C:\Windows\system32\jscript9.dll
2015-10-13 21:27:45 ----A---- C:\Windows\SYSWOW64\wuwebv.dll
2015-10-13 21:27:45 ----A---- C:\Windows\SYSWOW64\wups.dll
2015-10-13 21:27:45 ----A---- C:\Windows\SYSWOW64\wudriver.dll
2015-10-13 21:27:45 ----A---- C:\Windows\SYSWOW64\wuapp.exe
2015-10-13 21:27:45 ----A---- C:\Windows\SYSWOW64\wuapi.dll
2015-10-13 21:27:45 ----A---- C:\Windows\system32\wuwebv.dll
2015-10-13 21:27:45 ----A---- C:\Windows\system32\wups2.dll
2015-10-13 21:27:45 ----A---- C:\Windows\system32\wups.dll
2015-10-13 21:27:45 ----A---- C:\Windows\system32\wudriver.dll
2015-10-13 21:27:45 ----A---- C:\Windows\system32\wucltux.dll
2015-10-13 21:27:45 ----A---- C:\Windows\system32\wuaueng.dll
2015-10-13 21:27:45 ----A---- C:\Windows\system32\wuauclt.exe
2015-10-13 21:27:45 ----A---- C:\Windows\system32\wuapp.exe
2015-10-13 21:27:45 ----A---- C:\Windows\system32\wuapi.dll
2015-10-13 21:27:45 ----A---- C:\Windows\system32\wu.upgrade.ps.dll
2015-10-13 21:27:45 ----A---- C:\Windows\system32\WinSetupUI.dll
2015-10-13 21:27:43 ----A---- C:\Windows\SYSWOW64\schannel.dll
2015-10-13 21:27:43 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2015-10-13 21:27:43 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2015-10-13 21:27:43 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2015-10-13 21:27:43 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2015-10-13 21:27:43 ----A---- C:\Windows\SYSWOW64\kernel32.dll
2015-10-13 21:27:43 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2015-10-13 21:27:43 ----A---- C:\Windows\system32\wow64.dll
2015-10-13 21:27:43 ----A---- C:\Windows\system32\winsrv.dll
2015-10-13 21:27:43 ----A---- C:\Windows\system32\srcore.dll
2015-10-13 21:27:43 ----A---- C:\Windows\system32\schannel.dll
2015-10-13 21:27:43 ----A---- C:\Windows\system32\rstrui.exe
2015-10-13 21:27:43 ----A---- C:\Windows\system32\rpcrt4.dll
2015-10-13 21:27:43 ----A---- C:\Windows\system32\ntoskrnl.exe
2015-10-13 21:27:43 ----A---- C:\Windows\system32\ntdll.dll
2015-10-13 21:27:43 ----A---- C:\Windows\system32\lsasrv.dll
2015-10-13 21:27:43 ----A---- C:\Windows\system32\KernelBase.dll
2015-10-13 21:27:43 ----A---- C:\Windows\system32\kernel32.dll
2015-10-13 21:27:43 ----A---- C:\Windows\system32\kerberos.dll
2015-10-13 21:27:43 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2015-10-13 21:27:43 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2015-10-13 21:27:43 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2015-10-13 21:27:43 ----A---- C:\Windows\system32\conhost.exe
2015-10-13 21:27:42 ----AH---- C:\Windows\SYSWOW64\api-ms-win-security-base-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-util-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-string-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-profile-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-misc-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-memory-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-io-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-heap-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-handle-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-fibers-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-delayload-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-debug-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-datetime-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-console-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2015-10-13 21:27:42 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2015-10-13 21:27:42 ----A---- C:\Windows\SYSWOW64\wow32.dll
2015-10-13 21:27:42 ----A---- C:\Windows\SYSWOW64\wdigest.dll
2015-10-13 21:27:42 ----A---- C:\Windows\SYSWOW64\user.exe
2015-10-13 21:27:42 ----A---- C:\Windows\SYSWOW64\TSpkg.dll
2015-10-13 21:27:42 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2015-10-13 21:27:42 ----A---- C:\Windows\SYSWOW64\srclient.dll
2015-10-13 21:27:42 ----A---- C:\Windows\SYSWOW64\setup16.exe
2015-10-13 21:27:42 ----A---- C:\Windows\SYSWOW64\secur32.dll
2015-10-13 21:27:42 ----A---- C:\Windows\SYSWOW64\rpcrt4.dll
2015-10-13 21:27:42 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2015-10-13 21:27:42 ----A---- C:\Windows\SYSWOW64\ncrypt.dll
2015-10-13 21:27:42 ----A---- C:\Windows\SYSWOW64\msobjs.dll
2015-10-13 21:27:42 ----A---- C:\Windows\SYSWOW64\msaudite.dll
2015-10-13 21:27:42 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2015-10-13 21:27:42 ----A---- C:\Windows\SYSWOW64\instnm.exe
2015-10-13 21:27:42 ----A---- C:\Windows\SYSWOW64\cryptbase.dll
2015-10-13 21:27:42 ----A---- C:\Windows\SYSWOW64\credssp.dll
2015-10-13 21:27:42 ----A---- C:\Windows\SYSWOW64\auditpol.exe
2015-10-13 21:27:42 ----A---- C:\Windows\SYSWOW64\apisetschema.dll
2015-10-13 21:27:42 ----A---- C:\Windows\SYSWOW64\adtschema.dll
2015-10-13 21:27:42 ----A---- C:\Windows\system32\wow64win.dll
2015-10-13 21:27:42 ----A---- C:\Windows\system32\wow64cpu.dll
2015-10-13 21:27:42 ----A---- C:\Windows\system32\wdigest.dll
2015-10-13 21:27:42 ----A---- C:\Windows\system32\TSpkg.dll
2015-10-13 21:27:42 ----A---- C:\Windows\system32\sspisrv.dll
2015-10-13 21:27:42 ----A---- C:\Windows\system32\sspicli.dll
2015-10-13 21:27:42 ----A---- C:\Windows\system32\srclient.dll
2015-10-13 21:27:42 ----A---- C:\Windows\system32\smss.exe
2015-10-13 21:27:42 ----A---- C:\Windows\system32\secur32.dll
2015-10-13 21:27:42 ----A---- C:\Windows\system32\ntvdm64.dll
2015-10-13 21:27:42 ----A---- C:\Windows\system32\ncrypt.dll
2015-10-13 21:27:42 ----A---- C:\Windows\system32\msv1_0.dll
2015-10-13 21:27:42 ----A---- C:\Windows\system32\msobjs.dll
2015-10-13 21:27:42 ----A---- C:\Windows\system32\msaudite.dll
2015-10-13 21:27:42 ----A---- C:\Windows\system32\lsass.exe
2015-10-13 21:27:42 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2015-10-13 21:27:42 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2015-10-13 21:27:42 ----A---- C:\Windows\system32\csrsrv.dll
2015-10-13 21:27:42 ----A---- C:\Windows\system32\cryptbase.dll
2015-10-13 21:27:42 ----A---- C:\Windows\system32\credssp.dll
2015-10-13 21:27:42 ----A---- C:\Windows\system32\auditpol.exe
2015-10-13 21:27:42 ----A---- C:\Windows\system32\apisetschema.dll
2015-10-13 21:27:42 ----A---- C:\Windows\system32\adtschema.dll
2015-10-13 21:27:38 ----A---- C:\Windows\SYSWOW64\appidapi.dll
2015-10-13 21:27:38 ----A---- C:\Windows\system32\setbcdlocale.dll
2015-10-13 21:27:38 ----A---- C:\Windows\system32\drivers\appid.sys
2015-10-13 21:27:38 ----A---- C:\Windows\system32\appidsvc.dll
2015-10-13 21:27:38 ----A---- C:\Windows\system32\appidpolicyconverter.exe
2015-10-13 21:27:38 ----A---- C:\Windows\system32\appidcertstorecheck.exe
2015-10-13 21:27:38 ----A---- C:\Windows\system32\appidapi.dll
2015-10-13 21:27:32 ----A---- C:\Windows\SYSWOW64\ucrtbase.dll
2015-10-13 21:27:32 ----A---- C:\Windows\SYSWOW64\api-ms-win-eventing-provider-l1-1-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-utility-l1-1-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-time-l1-1-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-string-l1-1-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-stdio-l1-1-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-runtime-l1-1-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-process-l1-1-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-private-l1-1-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-multibyte-l1-1-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-math-l1-1-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-locale-l1-1-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-heap-l1-1-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-filesystem-l1-1-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-environment-l1-1-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-convert-l1-1-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\SYSWOW64\api-ms-win-crt-conio-l1-1-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l2-1-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\SYSWOW64\api-ms-win-core-timezone-l1-1-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-2-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-1.dll
2015-10-13 21:27:32 ----A---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-2-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\SYSWOW64\api-ms-win-core-file-l2-1-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-2-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\system32\ucrtbase.dll
2015-10-13 21:27:32 ----A---- C:\Windows\system32\api-ms-win-eventing-provider-l1-1-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\system32\api-ms-win-crt-utility-l1-1-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\system32\api-ms-win-crt-time-l1-1-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\system32\api-ms-win-crt-string-l1-1-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\system32\api-ms-win-crt-stdio-l1-1-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\system32\api-ms-win-crt-runtime-l1-1-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\system32\api-ms-win-crt-process-l1-1-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\system32\api-ms-win-crt-private-l1-1-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\system32\api-ms-win-crt-multibyte-l1-1-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\system32\api-ms-win-crt-math-l1-1-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\system32\api-ms-win-crt-locale-l1-1-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\system32\api-ms-win-crt-heap-l1-1-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\system32\api-ms-win-crt-filesystem-l1-1-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\system32\api-ms-win-crt-environment-l1-1-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\system32\api-ms-win-crt-convert-l1-1-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\system32\api-ms-win-crt-conio-l1-1-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\system32\api-ms-win-core-xstate-l2-1-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\system32\api-ms-win-core-timezone-l1-1-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\system32\api-ms-win-core-synch-l1-2-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-1.dll
2015-10-13 21:27:32 ----A---- C:\Windows\system32\api-ms-win-core-localization-l1-2-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\system32\api-ms-win-core-file-l2-1-0.dll
2015-10-13 21:27:32 ----A---- C:\Windows\system32\api-ms-win-core-file-l1-2-0.dll
2015-10-10 11:42:43 ----D---- C:\Program Files\ASUSTeKcomputer.Inc
2015-10-10 11:42:12 ----A---- C:\Windows\system32\drivers\DTSU2P.DAT
2015-10-10 11:42:10 ----A---- C:\Windows\system32\YamahaAE.dll
2015-10-10 11:42:10 ----A---- C:\Windows\system32\WavesGUILib64.dll
2015-10-10 11:42:10 ----A---- C:\Windows\system32\tossaeapo64.dll
2015-10-10 11:42:10 ----A---- C:\Windows\system32\toseaeapo64.dll
2015-10-10 11:42:10 ----A---- C:\Windows\system32\tosasfapo64.dll
2015-10-10 11:42:09 ----A---- C:\Windows\SYSWOW64\SRCOM.dll
2015-10-10 11:42:09 ----A---- C:\Windows\system32\tosade.dll
2015-10-10 11:42:09 ----A---- C:\Windows\system32\tepeqapo64.dll
2015-10-10 11:42:09 ----A---- C:\Windows\system32\tadefxapo264.dll
2015-10-10 11:42:09 ----A---- C:\Windows\system32\tadefxapo.dll
2015-10-10 11:42:09 ----A---- C:\Windows\system32\SRRPTR64.dll
2015-10-10 11:42:09 ----A---- C:\Windows\system32\SRCOM64.dll
2015-10-10 11:42:09 ----A---- C:\Windows\system32\SRCOM.dll
2015-10-10 11:42:09 ----A---- C:\Windows\system32\SRAPO64.dll
2015-10-10 11:42:08 ----A---- C:\Windows\system32\sltech64.dll
2015-10-10 11:42:08 ----A---- C:\Windows\system32\slprp64.dll
2015-10-10 11:42:08 ----A---- C:\Windows\system32\slcnt64.dll
2015-10-10 11:42:08 ----A---- C:\Windows\system32\sl3apo64.dll
2015-10-10 11:42:07 ----A---- C:\Windows\SYSWOW64\SFCOM.dll
2015-10-10 11:42:07 ----A---- C:\Windows\system32\SFSS_APO.dll
2015-10-10 11:42:07 ----A---- C:\Windows\system32\SFNHK64.dll
2015-10-10 11:42:07 ----A---- C:\Windows\system32\SFCOM64.dll
2015-10-10 11:42:07 ----A---- C:\Windows\system32\SFAPO64.dll
2015-10-10 11:42:07 ----A---- C:\Windows\system32\RtPgEx64.dll
2015-10-10 11:42:07 ----A---- C:\Windows\system32\drivers\rtvienna.dat
2015-10-10 11:42:06 ----A---- C:\Windows\system32\RtkApi64.dll
2015-10-10 11:42:06 ----A---- C:\Windows\system32\drivers\RTKVHD64.sys
2015-10-10 11:42:05 ----A---- C:\Windows\system32\RtDataProc64.dll
2015-10-10 11:42:05 ----A---- C:\Windows\system32\RTCOM64.dll
2015-10-10 11:42:05 ----A---- C:\Windows\system32\RltkAPO64.dll
2015-10-10 11:42:05 ----A---- C:\Windows\system32\drivers\RTAIODAT.DAT
2015-10-10 11:42:04 ----A---- C:\Windows\system32\RCoRes64.dat
2015-10-10 11:42:04 ----A---- C:\Windows\system32\RCoInstII64.dll
2015-10-10 11:42:04 ----A---- C:\Windows\system32\R4EEP64A.dll
2015-10-10 11:42:04 ----A---- C:\Windows\system32\R4EEL64A.dll
2015-10-10 11:42:04 ----A---- C:\Windows\system32\R4EEG64A.dll
2015-10-10 11:42:04 ----A---- C:\Windows\system32\R4EED64A.dll
2015-10-10 11:42:04 ----A---- C:\Windows\system32\R4EEA64A.dll
2015-10-10 11:42:04 ----A---- C:\Windows\system32\NahimicAPONSControl.dll
2015-10-10 11:42:03 ----A---- C:\Windows\system32\NAHIMICAPOlfx.dll
2015-10-10 11:42:03 ----A---- C:\Windows\system32\MISS_APO.dll
2015-10-10 11:42:03 ----A---- C:\Windows\system32\MaxxVolumeSDAPO.dll
2015-10-10 11:42:03 ----A---- C:\Windows\system32\MaxxVoiceAPO3064.dll
2015-10-10 11:42:02 ----A---- C:\Windows\system32\MaxxVoiceAPO2064.dll
2015-10-10 11:42:02 ----A---- C:\Windows\system32\MaxxSpeechAPO64.dll
2015-10-10 11:42:02 ----A---- C:\Windows\system32\MaxxAudioRealtek64.dll
2015-10-10 11:42:02 ----A---- C:\Windows\system32\MaxxAudioEQ64.dll
2015-10-10 11:42:02 ----A---- C:\Windows\system32\MaxxAudioAPOShell64.dll
2015-10-10 11:42:02 ----A---- C:\Windows\system32\MaxxAudioAPO6064.dll
2015-10-10 11:42:02 ----A---- C:\Windows\system32\MaxxAudioAPO5064.dll
2015-10-10 11:42:02 ----A---- C:\Windows\system32\MaxxAudioAPO4064.dll
2015-10-10 11:42:01 ----A---- C:\Windows\system32\MaxxAudioAPO30.dll
2015-10-10 11:42:01 ----A---- C:\Windows\system32\KAAPORT64.dll
2015-10-10 11:42:01 ----A---- C:\Windows\system32\ICEsoundAPO64.dll
2015-10-10 11:41:56 ----A---- C:\Windows\system32\FMAPO64.dll
2015-10-10 11:41:56 ----A---- C:\Windows\system32\DTSVoiceClarityDLL64.dll
2015-10-10 11:41:56 ----A---- C:\Windows\system32\DTSU2PREC64.dll
2015-10-10 11:41:56 ----A---- C:\Windows\system32\DTSU2PLFX64.dll
2015-10-10 11:41:56 ----A---- C:\Windows\system32\DTSU2PGFX64.dll
2015-10-10 11:41:56 ----A---- C:\Windows\system32\DTSSymmetryDLL64.dll
2015-10-10 11:41:55 ----A---- C:\Windows\system32\DTSS2SpeakerDLL64.dll
2015-10-10 11:41:55 ----A---- C:\Windows\system32\DTSS2HeadphoneDLL64.dll
2015-10-10 11:41:55 ----A---- C:\Windows\system32\DTSNeoPCDLL64.dll
2015-10-10 11:41:55 ----A---- C:\Windows\system32\DTSLimiterDLL64.dll
2015-10-10 11:41:55 ----A---- C:\Windows\system32\DTSLFXAPO64.dll
2015-10-10 11:41:55 ----A---- C:\Windows\system32\DTSGFXAPONS64.dll
2015-10-10 11:41:55 ----A---- C:\Windows\system32\DTSGFXAPO64.dll
2015-10-10 11:41:55 ----A---- C:\Windows\system32\DTSGainCompensatorDLL64.dll
2015-10-10 11:41:55 ----A---- C:\Windows\system32\DTSBoostDLL64.dll
2015-10-10 11:41:55 ----A---- C:\Windows\system32\DTSBassEnhancementDLL64.dll
2015-10-10 11:41:55 ----A---- C:\Windows\system32\DDPP64A.dll
2015-10-10 11:41:55 ----A---- C:\Windows\system32\DDPO64A.dll
2015-10-10 11:41:55 ----A---- C:\Windows\system32\DDPD64A.dll
2015-10-10 11:41:54 ----A---- C:\Windows\system32\DDPA64.dll
2015-10-10 11:41:54 ----A---- C:\Windows\system32\CX64APO.dll
2015-10-10 11:41:54 ----A---- C:\Windows\system32\audioLibVc.dll
2015-10-10 11:41:53 ----A---- C:\Windows\system32\AERTAC64.dll
2015-10-10 11:41:53 ----A---- C:\Windows\system32\AcpiServiceVnA64.dll
2015-10-10 11:41:12 ----D---- C:\Program Files (x86)\ASUS
2015-10-10 11:41:12 ----A---- C:\Windows\SYSWOW64\drivers\AsIO.sys
2015-10-10 11:41:12 ----A---- C:\Windows\SYSWOW64\AsIO.dll
2015-10-08 17:04:15 ----D---- C:\Users\User007\AppData\Roaming\Xiaomi
2015-10-08 16:35:46 ----A---- C:\Windows\SYSWOW64\qcCoInstaller.dll
2015-10-08 16:35:44 ----D---- C:\Program Files (x86)\Xiaomi
2015-10-07 21:07:05 ----D---- C:\Downloads
2015-10-07 21:06:49 ----D---- C:\ProgramData\FreeDownloadManager.ORG
2015-10-07 21:06:49 ----D---- C:\ProgramData\Free Download Manager
2015-10-07 21:06:46 ----D---- C:\Users\User007\AppData\Roaming\FreeDownloadManager.ORG
2015-10-07 21:06:46 ----D---- C:\Users\User007\AppData\Roaming\Free Download Manager
2015-10-07 21:06:40 ----D---- C:\Program Files (x86)\Free Download Manager
2015-10-06 19:11:28 ----D---- C:\Users\User007\AppData\Roaming\Subhra Das Gupta
2015-10-04 22:30:42 ----D---- C:\Program Files\OO Software
2015-10-04 22:26:37 ----D---- C:\Windows\system32\oodag
2015-10-04 22:26:01 ----D---- C:\ProgramData\OO Software
2015-10-03 09:18:44 ----D---- C:\ProgramData\ESET

======List of files/folders modified in the last 1 month======

2015-11-02 23:23:41 ----D---- C:\Users\User007\AppData\Roaming\Dropbox
2015-11-02 23:23:37 ----D---- C:\Windows\Temp
2015-11-02 23:23:36 ----D---- C:\Program Files (x86)\SpeedFan
2015-11-02 19:03:05 ----D---- C:\Windows\system32\config
2015-11-02 18:43:11 ----D---- C:\Windows\System32
2015-11-02 18:43:11 ----A---- C:\Windows\system32\PerfStringBackup.INI
2015-11-02 10:59:48 ----SHD---- C:\System Volume Information
2015-11-02 00:30:53 ----RD---- C:\Program Files
2015-11-01 11:19:12 ----D---- C:\Windows
2015-10-31 22:52:49 ----D---- C:\Windows\inf
2015-10-30 12:21:49 ----D---- C:\ProgramData\boost_interprocess
2015-10-28 12:45:48 ----D---- C:\Users\User007\AppData\Roaming\DAEMON Tools Lite
2015-10-28 12:45:45 ----D---- C:\Windows\Minidump
2015-10-28 12:45:45 ----D---- C:\Windows\Logs
2015-10-28 12:45:45 ----D---- C:\Windows\debug
2015-10-28 12:42:59 ----D---- C:\Program Files\CCleaner
2015-10-25 21:30:34 ----D---- C:\Users\User007\AppData\Roaming\BID
2015-10-25 21:29:53 ----D---- C:\Program Files (x86)\Bulk Image Downloader
2015-10-25 09:47:13 ----D---- C:\Windows\system32\catroot2
2015-10-19 13:57:38 ----D---- C:\Program Files (x86)\Malwarebytes Anti-Malware
2015-10-19 13:57:35 ----D---- C:\Windows\system32\drivers
2015-10-17 13:44:10 ----D---- C:\Windows\SysWOW64
2015-10-17 13:44:09 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2015-10-17 09:54:39 ----HD---- C:\ProgramData
2015-10-17 09:54:36 ----RD---- C:\Program Files (x86)
2015-10-16 10:04:01 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2015-10-15 00:17:07 ----D---- C:\Windows\winsxs
2015-10-15 00:17:06 ----SD---- C:\Windows\system32\CompatTel
2015-10-15 00:17:06 ----D---- C:\Windows\system32\appraiser
2015-10-15 00:17:06 ----D---- C:\Windows\AppPatch
2015-10-14 10:17:01 ----D---- C:\Windows\rescache
2015-10-13 23:42:44 ----D---- C:\Windows\SYSWOW64\en-US
2015-10-13 23:42:44 ----D---- C:\Windows\SYSWOW64\cs-CZ
2015-10-13 23:42:44 ----D---- C:\Windows\system32\en-US
2015-10-13 23:42:44 ----D---- C:\Windows\system32\cs-CZ
2015-10-13 23:42:44 ----D---- C:\Program Files\Internet Explorer
2015-10-13 23:42:44 ----D---- C:\Program Files (x86)\Internet Explorer
2015-10-13 23:42:42 ----D---- C:\Windows\system32\CodeIntegrity
2015-10-13 23:42:42 ----D---- C:\Windows\system32\Boot
2015-10-13 22:47:46 ----D---- C:\Windows\system32\MRT
2015-10-13 22:47:45 ----A---- C:\Windows\system32\MRT.exe
2015-10-13 22:47:41 ----SHD---- C:\Windows\Installer
2015-10-13 22:47:40 ----D---- C:\ProgramData\Microsoft Help
2015-10-10 11:56:09 ----D---- C:\Windows\Microsoft.NET
2015-10-10 11:43:00 ----HD---- C:\Program Files (x86)\Temp
2015-10-10 11:42:48 ----D---- C:\ProgramData\Package Cache
2015-10-10 11:42:25 ----D---- C:\Windows\SYSWOW64\RTCOM
2015-10-10 11:42:22 ----D---- C:\Windows\system32\DriverStore
2015-10-10 11:41:12 ----D---- C:\Windows\SYSWOW64\drivers
2015-10-09 08:14:13 ----SD---- C:\Windows\system32\GWX
2015-10-08 22:35:42 ----SD---- C:\Windows\SYSWOW64\GWX
2015-10-07 19:42:13 ----HD---- C:\$Windows.~BT
2015-10-07 19:19:47 ----D---- C:\Windows\Panther
2015-10-04 22:17:21 ----D---- C:\Program Files (x86)\Google
2015-10-03 09:37:11 ----D---- C:\Windows\system32\NDF

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 edevmon;edevmon; C:\Windows\system32\DRIVERS\edevmon.sys [2015-07-14 251632]
R0 fltsrv;Acronis Storage Filter Management; C:\Windows\system32\DRIVERS\fltsrv.sys [2014-09-13 118560]
R0 iaStorA;iaStorA; C:\Windows\system32\DRIVERS\iaStorA.sys [2013-08-07 644968]
R0 iaStorF;iaStorF; C:\Windows\system32\DRIVERS\iaStorF.sys [2013-08-07 28008]
R0 iusb3hcs;Ovladač přepínání hostitelského řadiče Intel(R) USB 3.0; C:\Windows\system32\DRIVERS\iusb3hcs.sys [2014-08-25 20464]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-21 213888]
R0 snapman;Acronis Snapshots Manager; C:\Windows\system32\DRIVERS\snapman.sys [2014-09-13 276256]
R0 tib;Acronis TIB Manager; C:\Windows\system32\DRIVERS\tib.sys [2014-09-13 1120032]
R0 tib_mounter;Acronis TIB Mounter; C:\Windows\system32\DRIVERS\tib_mounter.sys [2014-09-13 198432]
R0 vididr;Acronis Virtual Disk; C:\Windows\system32\DRIVERS\vididr.sys [2014-09-13 161568]
R0 vidsflt;Acronis Disk Storage Filter; C:\Windows\system32\DRIVERS\vidsflt.sys [2014-09-13 117024]
R1 AsIO;AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [2014-07-23 15232]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-21 514560]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2014-09-13 283064]
R1 eamonm;eamonm; C:\Windows\system32\DRIVERS\eamonm.sys [2015-07-14 255240]
R1 ehdrv;ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [2015-07-14 178520]
R2 epfwwfpr;epfwwfpr; C:\Windows\system32\DRIVERS\epfwwfpr.sys [2015-07-14 168208]
R2 speedfan;speedfan; \??\C:\Windows\SysWOW64\speedfan.sys [2012-12-29 28664]
R2 SSPORT;SSPORT; \??\C:\Windows\system32\Drivers\SSPORT.sys [2014-05-07 11576]
R3 afcdp;afcdp; C:\Windows\system32\DRIVERS\afcdp.sys [2014-09-13 367200]
R3 ALSysIO;ALSysIO; \??\C:\Users\User007\AppData\Local\Temp\ALSysIO64.sys []
R3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2015-08-04 21622784]
R3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2015-08-04 665088]
R3 AtiHDAudioService;AMD Function Driver for HD Audio Service; C:\Windows\system32\drivers\AtihdW76.sys [2015-07-15 96256]
R3 BEHRINGER_2902;usb-audio.de driver for BEHRINGER USB AUDIO; C:\Windows\System32\Drivers\BUSB2902.sys [2014-09-12 460864]
R3 BUSB_AUDIO_WDM;BEHRINGER USB WDM AUDIO; C:\Windows\system32\drivers\busbwdm.sys [2014-09-12 49728]
R3 e1dexpress;Intel(R) PRO/1000 PCI Express Network Connection Driver D; C:\Windows\system32\DRIVERS\e1d62x64.sys [2014-03-14 487704]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2014-10-28 4263128]
R3 iusb3hub;Ovladač rozbočovače Intel(R) USB 3.0; C:\Windows\system32\DRIVERS\iusb3hub.sys [2014-08-25 383984]
R3 iusb3xhc;Ovladač rozšiřitelného hostitelského řadiče Intel(R) USB 3.0; C:\Windows\system32\DRIVERS\iusb3xhc.sys [2014-08-25 795120]
R3 MBAMProtector;MBAMProtector; \??\C:\Windows\system32\drivers\mbam.sys [2015-10-05 25816]
R3 MBAMSwissArmy;MBAMSwissArmy; \??\C:\Windows\system32\drivers\MBAMSwissArmy.sys [2015-11-02 192216]
R3 MEIx64;Intel(R) Management Engine Interface ; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [2014-09-30 129312]
R3 StillCam;Ovladač digitálního fotoaparátu pro sériový port; C:\Windows\system32\DRIVERS\serscan.sys [2009-07-14 12288]
S3 dg_ssudbus;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\Windows\system32\DRIVERS\ssudbus.sys [2014-01-22 108800]
S3 dmvsc;dmvsc; C:\Windows\system32\drivers\dmvsc.sys [2010-11-21 71168]
S3 GPUZ;GPUZ; \??\C:\Windows\TEMP\GPUZ.sys []
S3 MBAMWebAccessControl;MBAMWebAccessControl; \??\C:\Windows\system32\drivers\mwac.sys [2015-10-05 63704]
S3 MBfilt;MBfilt; C:\Windows\system32\drivers\MBfilt64.sys [2009-11-18 32344]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-21 165888]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 19456]
S3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2013-11-26 888536]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-21 6656]
S3 ssudmdm;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.); C:\Windows\system32\DRIVERS\ssudmdm.sys [2014-01-22 206080]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-21 34688]
S3 tdrpman;Acronis Try&Decide and Restore Points filter; C:\Windows\system32\DRIVERS\tdrpman.sys [2014-09-13 1464096]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2013-10-02 56832]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2012-08-23 30208]
S3 vmbus;vmbus; C:\Windows\system32\drivers\vmbus.sys [2010-11-21 199552]
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-21 21760]
S3 WinUsb;Alcatel USB Driver; C:\Windows\system32\DRIVERS\WinUsb.sys [2010-11-21 41984]
S3 WSDPrintDevice;Podpora tisku WSD prostřednictvím funkce UMB; C:\Windows\system32\DRIVERS\WSDPrint.sys [2009-07-14 23040]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AcrSch2Svc;Acronis Scheduler2 Service; C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedul2.exe [2013-07-18 1142584]
R2 afcdpsrv;Acronis Nonstop Backup Service; C:\Program Files (x86)\Common Files\Acronis\CDP\afcdpsrv.exe [2014-09-13 3873784]
R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2015-08-04 246784]
R2 asComSvc;ASUS Com Service; C:\Program Files (x86)\ASUS\AXSP\1.02.00\atkexComSvc.exe [2014-07-23 936728]
R2 AsSysCtrlService;ASUS System Control Service; C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.22\AsSysCtrlService.exe [2014-07-23 1360016]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe [2015-07-08 1353720]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [2013-08-27 747520]
R2 MBAMService;MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [2015-10-05 1135416]
R2 MBAMScheduler;MBAMScheduler; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [2015-10-05 1513784]
R2 OODefragAgent;O&O Defrag; C:\Program Files\OO Software\Defrag\oodag.exe [2015-09-14 1711352]
R2 Samsung Network Fax Server;Samsung Network Fax Server; C:\Windows\system32\spool\drivers\x64\3\NetFaxServer64.exe [2015-03-10 801472]
R2 SamsungUPDUtilSvc;Samsung UPD Utility Service; C:\Windows\SysWOW64\SecUPDUtilSvc.exe [2014-11-26 118576]
R2 Service KMSELDI;Service KMSELDI; C:\Program Files\KMSpico\Service_KMS.exe [2015-08-13 734400]
R2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2015-07-09 327296]
R3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2012-10-01 5132888]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2014-04-11 103608]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2014-04-11 124088]
S2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2013-08-07 15720]
S2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2013-09-17 169432]
S2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2013-09-17 390616]
S2 syncagentsrv;Acronis Sync Agent Service; C:\Program Files (x86)\Common Files\Acronis\SyncAgent\syncagentsrv.exe [2013-10-22 7142320]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-10-17 269000]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 27136]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2015-09-16 114688]
S3 Intel(R) Capability Licensing Service TCP IP Interface;Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [2013-08-27 828376]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2015-10-15 147624]
S3 ose64;Office 64 Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2012-12-08 178760]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 StorSvc;@%SystemRoot%\System32\StorSvc.dll,-100; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2014-09-10 1255736]
S4 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2014-04-11 50864]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119673
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: přehřátý PC při surfování

#8 Příspěvek od Rudy »

Smazáno. Nastala nějaká změna?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Luki951
Návštěvník
Návštěvník
Příspěvky: 50
Registrován: 18 zář 2012 20:10

Re: přehřátý PC při surfování

#9 Příspěvek od Luki951 »

Co se týče teplot, tak jsem již podobný stav nezaznamenal. Moc děkuji za pomoc, kdyby něco, tak bych se ozval. Ještě jednou děkuji.

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119673
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: přehřátý PC při surfování

#10 Příspěvek od Rudy »

OK a rádo se stalo! :)
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Odpovědět