Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Prosím o kontrolu logu

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Odpovědět
Zpráva
Autor
JiriHrabcuk
Návštěvník
Návštěvník
Příspěvky: 33
Registrován: 11 kvě 2006 19:44

Prosím o kontrolu logu

#1 Příspěvek od JiriHrabcuk »

Podivné chování PC při otevírání souborů i oken v prohlížeči, kopírování souborů i textu, jako by to všechno probíhalo na 2x


---------------------------------------------------------------------------

Logfile of random's system information tool 1.10 (written by random/random)
Run by Jiří at 2015-12-15 12:27:48
Microsoft Windows 10 Home
System drive C: has 461 GB (92%) free of 502 GB
Total RAM: 8130 MB (80% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 12:27:58, on 15.12.2015
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.10586.0020)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Program Files\WindowsApps\Microsoft.Messaging_1.11.19004.0_x86__8wekyb3d8bbwe\SkypeHost.exe
C:\Users\Jiří\AppData\Local\Microsoft\OneDrive\OneDrive.exe
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\WINDOWS\sysWow64\SearchProtocolHost.exe
C:\Program Files (x86)\IObit\Driver Booster\Scheduler.exe
C:\Program Files\trend micro\Jiří.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = %11%\blank.htm
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_66\bin\ssv.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_66\bin\jp2ssv.dll
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [OneDrive] "C:\Users\Jiří\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\Program Files (x86)\Microsoft Office\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do aplikace OneNote - res://C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll/105
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: NVIDIA GeForce Experience Service (GfExperienceService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: MBAMScheduler - Malwarebytes - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe
O23 - Service: MBAMService - Malwarebytes - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Streamer Network Service (NvStreamNetworkSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\WINDOWS\system32\nvvsvc.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\stlang64.dll,-10122 (STacSV) - Tempo Semiconductor Inc - C:\Program Files\IDT\WDM\STacSV64.exe
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\WINDOWS\system32\TieringEngineService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 9847 bytes

======Listing Processes======







winlogon.exe

C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
"dwm.exe"
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\WINDOWS\system32\nvvsvc.exe"
"C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe"
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
C:\WINDOWS\system32\svchost.exe -k LocalService
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\WINDOWS\system32\nvvsvc.exe -session -first
"C:\Program Files\IDT\WDM\STacSV64.exe"
taskeng.exe {47633ACF-8BCD-450B-BFA7-643AEF098DD6}
C:\WINDOWS\system32\svchost.exe -k NetworkService
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe -k WbioSvcGroup
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe"
"C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe"
"C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe"
"C:\Program Files (x86)\Skype\Updater\Updater.exe"
C:\WINDOWS\system32\svchost.exe -k appmodel
C:\WINDOWS\System32\svchost.exe -k utcsvc

dashost.exe {fd94927e-86c3-4fd8-80c12374188c4a73}
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe"
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe"
C:\WINDOWS\System32\svchost.exe -k LocalServicePeerNet
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe" serviceapp
sihost.exe
"C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
\??\C:\WINDOWS\system32\conhost.exe 0x4
taskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E}
"C:\Program Files\WindowsApps\Microsoft.Messaging_1.11.19004.0_x86__8wekyb3d8bbwe\SkypeHost.exe" -ServerName:SkypeHost.ServerServer
C:\Windows\System32\RuntimeBroker.exe -Embedding
C:\WINDOWS\system32\wbem\wmiprvse.exe

C:\WINDOWS\Explorer.EXE
"C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
"C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe" -ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\system32\DllHost.exe /Processid:{30D49246-D217-465F-B00B-AC9DDD652EB7}
"C:\Program Files\Windows Defender\MpCmdRun.exe" SpyNetService -RestrictPrivileges -AccessKey 95682A17-CC69-CF44-79CF-89B32BE9961B -Reinvoke
"C:\Program Files\IDT\WDM\sttray64.exe"
"C:\Program Files\IDT\WDM\Beats64.exe"
"C:\Users\Jiří\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
"C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"

"C:\Program Files\CCleaner\CCleaner.exe" /MONITOR /uac
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe1_ Global\UsGthrCtrlFltPipeMssGthrPipe1 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 632 636 644 8192 640
"C:\WINDOWS\sysWow64\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe_S-1-5-21-2847583399-4123638510-858312473-10012_ Global\UsGthrCtrlFltPipeMssGthrPipe_S-1-5-21-2847583399-4123638510-858312473-10012 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon" "1"
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe_S-1-5-21-2847583399-4123638510-858312473-10013_ Global\UsGthrCtrlFltPipeMssGthrPipe_S-1-5-21-2847583399-4123638510-858312473-10013 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon" "1"
"C:\Program Files (x86)\IObit\Driver Booster\Scheduler.exe" /scheduler
"C:\Users\Jiří\Desktop\RSITx64.exe"

======Scheduled tasks folder======

C:\WINDOWS\tasks\Adobe Flash Player Updater.job - C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\WINDOWS\tasks\AutoKMS.job - C:\Windows\AutoKMS.exe
C:\WINDOWS\tasks\AutoKMSDaily.job - C:\WINDOWS\AutoKMS.exe
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler

=========Mozilla firefox=========

ProfilePath - C:\Users\Jiří\AppData\Roaming\Mozilla\Firefox\Profiles\u2h81p8n.default

prefs.js - "browser.startup.homepage" - "www.seznam.cz"

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 20.0.0.235 Plugin
"Path"=C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_20_0_0_235.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/DTPlugin,version=11.66.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files (x86)\Java\jre1.8.0_66\bin\dtplugin\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=11.66.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Java\jre1.8.0_66\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0]
"Description"=Office Authorization plug-in for NPAPI browsers
"Path"=C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVision]
"Description"=NVIDIA stereo images plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVisionStreaming]
"Description"=NVIDIA 3D Vision Streaming plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.29.1\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.29.1\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 20.0.0.235 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF64_20_0_0_235.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0]
"Description"=Office Authorization plug-in for NPAPI browsers
"Path"=C:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL


======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~1\MICROS~1\Office14\GROOVEEX.DLL [2013-12-19 6671064]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~1\Office14\URLREDIR.DLL [2013-03-06 690392]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL [2013-12-19 4171480]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_66\bin\ssv.dll [2015-12-13 460384]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL [2013-03-06 562904]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_66\bin\jp2ssv.dll [2015-12-13 172640]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"NvBackend"=C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2015-11-25 2757424]
"ShadowPlay"=C:\Windows\system32\nvspcap64.dll [2015-11-25 1828160]
"SysTrayApp"=C:\Program Files\IDT\WDM\sttray64.exe [2015-12-10 1712656]
"BeatsOSDApp"=C:\Program Files\IDT\WDM\beats64.exe [2015-12-10 50416]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"OneDrive"=C:\Users\Jiří\AppData\Local\Microsoft\OneDrive\OneDrive.exe [2015-12-14 551112]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2015-11-16 8591272]
"Skype"=C:\Program Files (x86)\Skype\Phone\Skype.exe [2015-12-08 50749056]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2015-11-09 596528]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~1\MICROS~1\Office14\GROOVEEX.DLL [2013-12-19 6671064]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL [2013-12-19 4171480]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iai2c.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SpbCx.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TileDataModelSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\uefi.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SpbCx.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TileDataModelSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\uefi.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DSCAutomationHostEnabled"=2

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2015-12-15 12:27:49 ----D---- C:\Program Files\trend micro
2015-12-15 12:27:48 ----D---- C:\rsit
2015-12-15 12:23:12 ----D---- C:\AdwCleaner
2015-12-15 09:43:14 ----HD---- C:\OneDriveTemp
2015-12-13 19:39:54 ----HD---- C:\$Windows.~WS
2015-12-13 13:22:45 ----D---- C:\Users\Jiří\AppData\Roaming\VitySoft
2015-12-13 12:17:31 ----D---- C:\Users\Jiří\AppData\Roaming\Sun
2015-12-13 12:17:28 ----A---- C:\WINDOWS\SYSWOW64\WindowsAccessBridge-32.dll
2015-12-13 12:17:17 ----D---- C:\ProgramData\Oracle
2015-12-13 12:17:15 ----D---- C:\Program Files (x86)\Java
2015-12-12 18:20:03 ----D---- C:\Users\Jiří\AppData\Roaming\Identities
2015-12-11 21:04:27 ----D---- C:\Users\Jiří\AppData\Roaming\NVIDIA
2015-12-11 18:16:22 ----D---- C:\WINDOWS\system32\SleepStudy
2015-12-11 17:28:38 ----A---- C:\WINDOWS\system32\drivers\mwac.sys
2015-12-11 17:28:34 ----A---- C:\WINDOWS\system32\drivers\mbam.sys
2015-12-11 17:08:22 ----A---- C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys
2015-12-11 17:08:02 ----A---- C:\WINDOWS\system32\drivers\mbamchameleon.sys
2015-12-11 17:08:01 ----D---- C:\ProgramData\Malwarebytes
2015-12-11 17:08:01 ----D---- C:\Program Files (x86)\Malwarebytes Anti-Malware
2015-12-11 14:34:35 ----D---- C:\WINDOWS\Minidump
2015-12-10 22:36:27 ----D---- C:\Program Files (x86)\Womble Multimedia
2015-12-10 20:40:47 ----D---- C:\Program Files (x86)\Adobe
2015-12-10 18:38:24 ----RHD---- C:\ESD
2015-12-10 14:12:00 ----RD---- C:\Program Files (x86)\Skype
2015-12-10 13:42:59 ----D---- C:\Program Files (x86)\Microsoft ASP.NET
2015-12-10 13:41:27 ----D---- C:\WINDOWS\PCHEALTH
2015-12-10 13:32:05 ----D---- C:\Users\Jiří\AppData\Roaming\Skype
2015-12-10 13:31:59 ----D---- C:\ProgramData\Skype
2015-12-10 13:16:01 ----A---- C:\WINDOWS\system32\emptyregdb.dat
2015-12-10 13:11:55 ----ASH---- C:\hiberfil.sys
2015-12-10 13:08:43 ----SD---- C:\Users\Jiří\AppData\Roaming\Microsoft
2015-12-10 13:06:38 ----D---- C:\ProgramData\NVIDIA
2015-12-10 13:06:34 ----A---- C:\WINDOWS\system32\nvvsvc.exe
2015-12-10 13:06:34 ----A---- C:\WINDOWS\system32\nvsvcr.dll
2015-12-10 13:06:34 ----A---- C:\WINDOWS\system32\nvsvc64.dll
2015-12-10 13:06:34 ----A---- C:\WINDOWS\system32\nvshext.dll
2015-12-10 13:06:34 ----A---- C:\WINDOWS\system32\nvmctray.dll
2015-12-10 13:06:34 ----A---- C:\WINDOWS\system32\nvcpl.dll
2015-12-10 13:06:32 ----A---- C:\WINDOWS\SYSWOW64\PrintConfig.dll
2015-12-10 13:06:29 ----HD---- C:\Program Files (x86)\Uninstall Information
2015-12-10 13:06:22 ----D---- C:\ProgramData\NVIDIA Corporation
2015-12-10 13:06:13 ----D---- C:\Program Files\NVIDIA Corporation
2015-12-10 13:06:13 ----D---- C:\Program Files (x86)\NVIDIA Corporation
2015-12-10 13:06:04 ----D---- C:\WINDOWS\system32\SRSLabs
2015-12-10 13:05:03 ----AS---- C:\WINDOWS\bootstat.dat
2015-12-10 13:04:24 ----D---- C:\WINDOWS\Prefetch
2015-12-10 13:04:01 ----A---- C:\WINDOWS\system32\FNTCACHE.DAT
2015-12-10 13:03:16 ----SHD---- C:\Recovery
2015-12-10 13:03:13 ----DC---- C:\WINDOWS\Panther
2015-12-10 13:00:44 ----D---- C:\Windows.old
2015-12-10 13:00:17 ----A---- C:\WINDOWS\SYSWOW64\remoteaudioendpoint.dll
2015-12-10 13:00:17 ----A---- C:\WINDOWS\SYSWOW64\PlayToManager.dll
2015-12-10 13:00:17 ----A---- C:\WINDOWS\SYSWOW64\PlayToDevice.dll
2015-12-10 13:00:17 ----A---- C:\WINDOWS\SYSWOW64\ntdll.dll
2015-12-10 13:00:17 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2015-12-10 13:00:17 ----A---- C:\WINDOWS\SYSWOW64\msfeeds.dll
2015-12-10 13:00:17 ----A---- C:\WINDOWS\SYSWOW64\mfps.dll
2015-12-10 13:00:17 ----A---- C:\WINDOWS\SYSWOW64\mfmkvsrcsnk.dll
2015-12-10 13:00:17 ----A---- C:\WINDOWS\SYSWOW64\MFMediaEngine.dll
2015-12-10 13:00:17 ----A---- C:\WINDOWS\SYSWOW64\mfcore.dll
2015-12-10 13:00:17 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2015-12-10 13:00:17 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2015-12-10 13:00:17 ----A---- C:\WINDOWS\SYSWOW64\iedkcs32.dll
2015-12-10 13:00:17 ----A---- C:\WINDOWS\SYSWOW64\edgehtml.dll
2015-12-10 13:00:17 ----A---- C:\WINDOWS\SYSWOW64\bcastdvr.proxy.dll
2015-12-10 13:00:17 ----A---- C:\WINDOWS\SYSWOW64\bcastdvr.exe
2015-12-10 13:00:17 ----A---- C:\WINDOWS\SYSWOW64\AudioSes.dll
2015-12-10 13:00:17 ----A---- C:\WINDOWS\SYSWOW64\AUDIOKSE.dll
2015-12-10 13:00:17 ----A---- C:\WINDOWS\SYSWOW64\AudioEng.dll
2015-12-10 13:00:17 ----A---- C:\WINDOWS\SYSWOW64\AppCapture.dll
2015-12-10 13:00:17 ----A---- C:\WINDOWS\system32\wpncore.dll
2015-12-10 13:00:17 ----A---- C:\WINDOWS\system32\remoteaudioendpoint.dll
2015-12-10 13:00:17 ----A---- C:\WINDOWS\system32\readingviewresources.dll
2015-12-10 13:00:17 ----A---- C:\WINDOWS\system32\ntdll.dll
2015-12-10 13:00:17 ----A---- C:\WINDOWS\system32\mshtml.dll
2015-12-10 13:00:17 ----A---- C:\WINDOWS\system32\msfeeds.dll
2015-12-10 13:00:17 ----A---- C:\WINDOWS\system32\mfps.dll
2015-12-10 13:00:17 ----A---- C:\WINDOWS\system32\mfmkvsrcsnk.dll
2015-12-10 13:00:17 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll
2015-12-10 13:00:17 ----A---- C:\WINDOWS\system32\mfcore.dll
2015-12-10 13:00:17 ----A---- C:\WINDOWS\system32\jscript.dll
2015-12-10 13:00:17 ----A---- C:\WINDOWS\system32\iesetup.dll
2015-12-10 13:00:17 ----A---- C:\WINDOWS\system32\iernonce.dll
2015-12-10 13:00:17 ----A---- C:\WINDOWS\system32\ieframe.dll
2015-12-10 13:00:17 ----A---- C:\WINDOWS\system32\iedkcs32.dll
2015-12-10 13:00:17 ----A---- C:\WINDOWS\system32\ie4uinit.exe
2015-12-10 13:00:17 ----A---- C:\WINDOWS\system32\EncDump.dll
2015-12-10 13:00:17 ----A---- C:\WINDOWS\system32\edgehtml.dll
2015-12-10 13:00:17 ----A---- C:\WINDOWS\system32\drivers\tdx.sys
2015-12-10 13:00:17 ----A---- C:\WINDOWS\system32\drivers\ntfs.sys
2015-12-10 13:00:17 ----A---- C:\WINDOWS\system32\drivers\afd.sys
2015-12-10 13:00:17 ----A---- C:\WINDOWS\system32\audiosrv.dll
2015-12-10 13:00:17 ----A---- C:\WINDOWS\system32\AudioSes.dll
2015-12-10 13:00:17 ----A---- C:\WINDOWS\system32\AUDIOKSE.dll
2015-12-10 13:00:17 ----A---- C:\WINDOWS\system32\AudioEng.dll
2015-12-10 13:00:17 ----A---- C:\WINDOWS\system32\AudioEndpointBuilder.dll
2015-12-10 13:00:17 ----A---- C:\WINDOWS\system32\audiodg.exe
2015-12-10 13:00:14 ----A---- C:\WINDOWS\SYSWOW64\wwapi.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\SYSWOW64\WWanAPI.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\SYSWOW64\wimgapi.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\SYSWOW64\UserMgrProxy.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\SYSWOW64\policymanager.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\SYSWOW64\mssign32.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\SYSWOW64\LogonController.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\SYSWOW64\LaunchWinApp.exe
2015-12-10 13:00:14 ----A---- C:\WINDOWS\SYSWOW64\comsvcs.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\SYSWOW64\catsrvut.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\SYSWOW64\authui.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\SYSWOW64\ActiveSyncProvider.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\wwapi.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\wwansvc.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\wwanprotdim.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\Wwanpref.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\wwanmm.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\wwanconn.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\wwancfg.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\WWanAPI.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\wsplib.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\wshrm.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\wininetlui.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\wininet.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\Windows.UI.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\Windows.Management.Provisioning.ProxyStub.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\wcmsvc.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\wcmcsp.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\vbscript.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\UserMgrProxy.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\usermgr.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\urlmon.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\twinui.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\SRHInproc.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\SRH.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\shutdownux.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\shell32.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\SettingsHandlers_nt.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\services.exe
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\rilproxy.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\RemovableMediaProvisioningPlugin.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\provtool.exe
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\ProvPluginEng.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\provops.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\provisioningcsp.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\provhandlers.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\provengine.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\provdatastore.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\policymanager.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\pnidui.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\PhoneProviders.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\NFCProvisioningPlugin.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\NetworkMobileSettings.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\mssign32.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\mdmmigrator.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\lpk.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\LogonController.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\LaunchWinApp.exe
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\KnobsCsp.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\KnobsCore.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\jsproxy.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\ihvrilproxy.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\iertutil.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\generaltel.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\GdiPlus.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\fontsub.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\fontdrvhost.exe
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\enterprisecsps.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\enrollmentapi.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\drivers\rmcast.sys
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\dmenrollengine.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\dmcertinst.exe
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\dciman32.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\comsvcs.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\CellularAPI.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\catsrvut.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\bcastdvr.proxy.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\bcastdvr.exe
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\BarcodeProvisioningPlugin.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\authui.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\atmlib.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\atmfd.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\AppCapture.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\ActiveSyncProvider.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\acmigration.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\XblAuthTokenBrokerExt.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\XblAuthManagerProxy.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\WWAHost.exe
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\WordBreakers.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\wininetlui.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.Resources.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Core.TextInput.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\Windows.Internal.Bluetooth.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\vbscript.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\user32.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\Unistore.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\UIAutomationCoreRes.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\UIAutomationCore.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\twinui.appcore.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\TextInputFramework.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\StoreAgent.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\SRHInproc.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\SRH.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\offlinelsa.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\NmaDirect.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\NMAA.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\msftedit.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\MosStorage.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\MosResource.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\MosHostClient.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\mos.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\Microsoft-Windows-MosTrace.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\Microsoft-Windows-MosHost.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\Microsoft-Windows-MapControls.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\mfpmp.exe
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\mf.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\MbaeApi.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\MapsBtSvc.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\MapControlStringsRes.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\MapControlCore.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\MapConfiguration.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\lpk.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\LicenseManager.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\kerberos.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\jsproxy.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\jscript.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\JpMapControl.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\InstallAgent.exe
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\InputService.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\InputLocaleManager.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\GdiPlus.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\fontsub.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\fontdrvhost.exe
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\ETWCoreUIComponentsResources.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\EditBufferTestHook.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\deviceaccess.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\dcomp.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\dciman32.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\d3d11.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\cryptngc.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\CoreUIComponents.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\cdp.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\BingOnlineServices.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\BingMaps.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\atmlib.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\atmfd.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\XblAuthTokenBrokerExt.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\XblAuthManagerProxy.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\XblAuthManager.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\WWAHost.exe
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\wups2.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\wuaueng.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\wuauclt.exe
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\WordBreakers.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.Resources.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\win32kfull.sys
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\win32kbase.sys
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\win32k.sys
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\wimserv.exe
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\wimgapi.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\user32.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\Unistore.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\UIAutomationCoreRes.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\UIAutomationCore.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\tzautoupdate.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\twinui.appcore.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\TextInputFramework.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\tetheringservice.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\tetheringconfigsp.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\tetheringclient.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\StoreAgent.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\SensorsUtilsV2.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\SensorsNativeApi.V2.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\SensorsNativeApi.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\SensorService.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\PlayToManager.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\PlayToDevice.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\offlinelsa.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\NmaDirect.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\NMAA.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\nativemap.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\msftedit.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\MosStorage.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\MosResource.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\moshostcore.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\MosHostClient.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\moshost.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\mos.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\modernexecserver.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\Microsoft-Windows-MosTrace.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\Microsoft-Windows-MosHost.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\Microsoft-Windows-MapControls.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\Microsoft-Windows-AppModelExecEvents.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\mfpmp.exe
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\mf.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\MBMediaManager.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\MbaeApi.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\mapsupdatetask.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\mapstoasttask.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\MapsStore.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\MapsCSP.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\MapsBtSvcProxy.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\MapsBtSvc.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\MapControlStringsRes.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\MapControlCore.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\MapConfiguration.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\lsasrv.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\LicenseManager.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\kerberos.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\JpMapControl.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\InstallAgent.exe
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\InputService.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\InputLocaleManager.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\IcsEntitlementHost.exe
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\ETWCoreUIComponentsResources.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\EditBufferTestHook.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\drivers\wimmount.sys
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\drivers\sdstor.sys
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\drivers\ksecpkg.sys
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\drivers\cng.sys
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\drivers\capimg.sys
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\DeviceCensus.exe
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\deviceaccess.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\dcomp.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\d3d11.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\cryptngc.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\CoreUIComponents.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\cdp.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\BingOnlineServices.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\BingMaps.dll
2015-12-10 12:58:35 ----D---- C:\WINDOWS\system32\Microsoft
2015-12-10 12:57:31 ----D---- C:\WINDOWS\SYSWOW64\XPSViewer
2015-12-10 12:57:29 ----D---- C:\Program Files\Reference Assemblies
2015-12-10 12:57:29 ----D---- C:\Program Files\MSBuild
2015-12-10 12:57:29 ----D---- C:\Program Files (x86)\Reference Assemblies
2015-12-10 12:57:29 ----D---- C:\Program Files (x86)\MSBuild
2015-12-10 12:57:07 ----A---- C:\WINDOWS\SYSWOW64\TsWpfWrp.exe
2015-12-10 12:57:07 ----A---- C:\WINDOWS\SYSWOW64\PresentationNative_v0300.dll
2015-12-10 12:57:07 ----A---- C:\WINDOWS\SYSWOW64\PresentationCFFRasterizerNative_v0300.dll
2015-12-10 12:57:03 ----A---- C:\WINDOWS\system32\TsWpfWrp.exe
2015-12-10 12:57:03 ----A---- C:\WINDOWS\system32\PresentationNative_v0300.dll
2015-12-10 12:57:03 ----A---- C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2015-12-10 12:41:44 ----A---- C:\WINDOWS\system32\drivers\iaStorA.sys
2015-12-10 12:36:35 ----D---- C:\Program Files (x86)\FreeSmartSoft
2015-12-10 12:34:39 ----A---- C:\WINDOWS\SYSWOW64\D3DX9_43.dll
2015-12-10 12:34:39 ----A---- C:\WINDOWS\SYSWOW64\d3dx11_43.dll
2015-12-10 12:34:39 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_43.dll
2015-12-10 12:34:39 ----A---- C:\WINDOWS\system32\D3DX9_43.dll
2015-12-10 12:34:39 ----A---- C:\WINDOWS\system32\d3dx11_43.dll
2015-12-10 12:34:39 ----A---- C:\WINDOWS\system32\d3dx10_43.dll
2015-12-10 12:34:36 ----A---- C:\WINDOWS\system32\nvspcap64.dll
2015-12-10 12:34:36 ----A---- C:\WINDOWS\system32\nvspbridge64.dll
2015-12-10 12:34:36 ----A---- C:\WINDOWS\system32\NvRtmpStreamer64.dll
2015-12-10 12:34:35 ----A---- C:\WINDOWS\SYSWOW64\nvspcap.dll
2015-12-10 12:34:35 ----A---- C:\WINDOWS\SYSWOW64\nvspbridge.dll
2015-12-10 12:33:57 ----A---- C:\WINDOWS\SYSWOW64\nvStreaming.exe
2015-12-10 12:32:54 ----D---- C:\ProgramData\Package Cache
2015-12-10 12:32:45 ----A---- C:\WINDOWS\SYSWOW64\nvaudcap32v.dll
2015-12-10 12:32:45 ----A---- C:\WINDOWS\system32\nvaudcap64v.dll
2015-12-10 12:32:45 ----A---- C:\WINDOWS\system32\drivers\nvvad64v.sys
2015-12-10 12:32:44 ----A---- C:\WINDOWS\system32\nvhdap64.dll
2015-12-10 12:32:44 ----A---- C:\WINDOWS\system32\nvhdagenco6420103.dll
2015-12-10 12:32:44 ----A---- C:\WINDOWS\system32\drivers\nvhda64v.sys
2015-12-10 12:32:43 ----A---- C:\WINDOWS\SYSWOW64\nvwgf2um.dll
2015-12-10 12:32:43 ----A---- C:\WINDOWS\SYSWOW64\nvumdshim.dll
2015-12-10 12:32:43 ----A---- C:\WINDOWS\SYSWOW64\nvopencl.dll
2015-12-10 12:32:43 ----A---- C:\WINDOWS\SYSWOW64\nvoglv32.dll
2015-12-10 12:32:43 ----A---- C:\WINDOWS\SYSWOW64\nvoglshim32.dll
2015-12-10 12:32:43 ----A---- C:\WINDOWS\system32\nvwgf2umx.dll
2015-12-10 12:32:43 ----A---- C:\WINDOWS\system32\nvumdshimx.dll
2015-12-10 12:32:43 ----A---- C:\WINDOWS\system32\nvopencl.dll
2015-12-10 12:32:43 ----A---- C:\WINDOWS\system32\nvoglv64.dll
2015-12-10 12:32:43 ----A---- C:\WINDOWS\system32\nvoglshim64.dll
2015-12-10 12:32:42 ----A---- C:\WINDOWS\SYSWOW64\nvinit.dll
2015-12-10 12:32:42 ----A---- C:\WINDOWS\SYSWOW64\NvIFROpenGL.dll
2015-12-10 12:32:42 ----A---- C:\WINDOWS\SYSWOW64\NvIFR.dll
2015-12-10 12:32:42 ----A---- C:\WINDOWS\system32\nvinitx.dll
2015-12-10 12:32:42 ----A---- C:\WINDOWS\system32\NvIFROpenGL.dll
2015-12-10 12:32:42 ----A---- C:\WINDOWS\system32\drivers\nvlddmkm.sys
2015-12-10 12:32:41 ----A---- C:\WINDOWS\SYSWOW64\NvFBC.dll
2015-12-10 12:32:41 ----A---- C:\WINDOWS\SYSWOW64\nvEncodeAPI.dll
2015-12-10 12:32:41 ----A---- C:\WINDOWS\SYSWOW64\nvEncMFTH264.dll
2015-12-10 12:32:41 ----A---- C:\WINDOWS\SYSWOW64\nvDecMFTMjpeg.dll
2015-12-10 12:32:41 ----A---- C:\WINDOWS\SYSWOW64\nvd3dum.dll
2015-12-10 12:32:41 ----A---- C:\WINDOWS\SYSWOW64\nvcuvid.dll
2015-12-10 12:32:41 ----A---- C:\WINDOWS\system32\NvIFR64.dll
2015-12-10 12:32:41 ----A---- C:\WINDOWS\system32\NvFBC64.dll
2015-12-10 12:32:41 ----A---- C:\WINDOWS\system32\nvEncodeAPI64.dll
2015-12-10 12:32:41 ----A---- C:\WINDOWS\system32\nvEncMFTH264.dll
2015-12-10 12:32:41 ----A---- C:\WINDOWS\system32\nvdispgenco6435906.dll
2015-12-10 12:32:41 ----A---- C:\WINDOWS\system32\nvdispco6435906.dll
2015-12-10 12:32:41 ----A---- C:\WINDOWS\system32\nvDecMFTMjpeg.dll
2015-12-10 12:32:41 ----A---- C:\WINDOWS\system32\nvd3dumx.dll
2015-12-10 12:32:41 ----A---- C:\WINDOWS\system32\nvcuvid.dll
2015-12-10 12:32:41 ----A---- C:\WINDOWS\system32\nvcuda.dll
2015-12-10 12:32:39 ----A---- C:\WINDOWS\SYSWOW64\nvcuda.dll
2015-12-10 12:32:39 ----A---- C:\WINDOWS\SYSWOW64\nvcompiler.dll
2015-12-10 12:32:39 ----A---- C:\WINDOWS\SYSWOW64\nvapi.dll
2015-12-10 12:32:39 ----A---- C:\WINDOWS\system32\nvcompiler.dll
2015-12-10 12:32:39 ----A---- C:\WINDOWS\system32\nvapi64.dll
2015-12-10 12:31:08 ----D---- C:\Users\Jiří\AppData\Roaming\Ulozto File Manager
2015-12-10 12:31:05 ----D---- C:\Program Files (x86)\Ulozto File Manager
2015-12-10 12:27:22 ----D---- C:\Program Files\CCleaner
2015-12-10 12:25:45 ----D---- C:\Users\Jiří\AppData\Roaming\HellShare Upload Manager
2015-12-10 12:25:35 ----D---- C:\Program Files (x86)\HellShare Upload Client
2015-12-10 12:23:34 ----D---- C:\Users\Jiří\AppData\Roaming\Macromedia
2015-12-10 12:15:34 ----D---- C:\Users\Jiří\AppData\Roaming\MediaInfo
2015-12-10 12:04:49 ----D---- C:\Users\Jiří\AppData\Roaming\dcunningham.net
2015-12-10 12:03:17 ----D---- C:\Users\Jiří\AppData\Roaming\WinRAR
2015-12-10 11:56:51 ----D---- C:\Program Files (x86)\Google
2015-12-10 11:50:29 ----A---- C:\WINDOWS\SYSWOW64\SET9B30.tmp
2015-12-10 11:50:29 ----A---- C:\WINDOWS\system32\nvdispgenco6435850.dll
2015-12-10 11:50:29 ----A---- C:\WINDOWS\system32\nvdispco6435850.dll
2015-12-10 11:50:19 ----A---- C:\WINDOWS\system32\drivers\AmUStor.sys
2015-12-10 11:50:19 ----A---- C:\WINDOWS\system32\AmUStor.ini
2015-12-10 11:50:19 ----A---- C:\WINDOWS\system32\AmUStor.dll
2015-12-10 11:49:40 ----A---- C:\WINDOWS\system32\drivers\L1C63x64.sys
2015-12-10 11:49:32 ----A---- C:\WINDOWS\system32\drivers\TeeDriverW8x64.sys
2015-12-10 11:45:43 ----D---- C:\ProgramData\ProductData
2015-12-10 11:44:07 ----D---- C:\ProgramData\IObit
2015-12-10 11:44:07 ----A---- C:\WINDOWS\SYSWOW64\drivers\HWiNFO64A.SYS
2015-12-10 11:44:06 ----D---- C:\Users\Jiří\AppData\Roaming\IObit
2015-12-10 11:44:00 ----D---- C:\Program Files (x86)\IObit
2015-12-10 11:39:16 ----D---- C:\ProgramData\Aiseesoft Studio
2015-12-10 11:39:16 ----D---- C:\Program Files (x86)\Aiseesoft Studio
2015-12-10 11:36:58 ----D---- C:\ProgramData\Tipard Studio
2015-12-10 11:36:58 ----D---- C:\Program Files (x86)\Tipard Studio
2015-12-10 11:34:33 ----D---- C:\ShanaEncoder
2015-12-10 11:34:07 ----D---- C:\Program Files\MediaInfo
2015-12-10 11:30:28 ----D---- C:\ProgramData\Logs
2015-12-10 11:29:33 ----D---- C:\ProgramData\Licenses
2015-12-10 11:29:32 ----AD---- C:\ProgramData\TEMP
2015-12-10 11:29:16 ----D---- C:\Users\Jiří\AppData\Roaming\VideoReDo-TVSuite5
2015-12-10 11:29:16 ----D---- C:\Program Files (x86)\VideoReDoTVSuite5
2015-12-10 11:06:58 ----D---- C:\ProgramData\VS Revo Group
2015-12-10 11:06:58 ----A---- C:\WINDOWS\system32\drivers\revoflt.sys
2015-12-10 11:06:57 ----D---- C:\Program Files\VS Revo Group
2015-12-10 11:05:45 ----D---- C:\Program Files\WinRAR
2015-12-10 11:03:18 ----N---- C:\WINDOWS\system32\MpSigStub.exe
2015-12-10 11:01:34 ----D---- C:\WINDOWS\system32\MRT
2015-12-10 11:01:31 ----A---- C:\WINDOWS\system32\MRT.exe
2015-12-10 11:01:26 ----D---- C:\Users\Jiří\AppData\Roaming\Mozilla
2015-12-10 11:01:20 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2015-12-10 11:01:15 ----D---- C:\Program Files (x86)\Mozilla Firefox
2015-12-10 10:59:50 ----D---- C:\ProgramData\Adobe
2015-12-10 10:59:27 ----A---- C:\WINDOWS\AutoKMS.ini
2015-12-10 10:54:42 ----D---- C:\Program Files (x86)\Microsoft Sync Framework
2015-12-10 10:52:24 ----D---- C:\Program Files (x86)\Microsoft Visual Studio 8
2015-12-10 10:52:13 ----D---- C:\Program Files\Microsoft Office
2015-12-10 10:52:04 ----D---- C:\Program Files (x86)\Microsoft Analysis Services
2015-12-10 10:52:01 ----D---- C:\ProgramData\Microsoft Help
2015-12-10 10:52:01 ----D---- C:\Program Files (x86)\Microsoft Office
2015-12-10 10:51:55 ----RHD---- C:\MSOCache
2015-12-10 10:50:27 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2015-12-10 10:48:42 ----A---- C:\WINDOWS\system32\SET9FA8.tmp
2015-12-10 10:48:42 ----A---- C:\WINDOWS\system32\SET9D25.tmp
2015-12-10 10:48:42 ----A---- C:\WINDOWS\system32\SET8F7B.tmp
2015-12-10 10:48:40 ----A---- C:\WINDOWS\system32\drivers\SET9031.tmp
2015-12-10 10:48:40 ----A---- C:\WINDOWS\system32\drivers\SET7F0D.tmp
2015-12-10 10:48:39 ----A---- C:\WINDOWS\system32\SET4AC.tmp
2015-12-10 10:48:39 ----A---- C:\WINDOWS\system32\nvdispgenco6435382.dll
2015-12-10 10:48:39 ----A---- C:\WINDOWS\system32\nvdispco6435382.dll
2015-12-10 10:48:39 ----A---- C:\WINDOWS\system32\drivers\SET44B.tmp
2015-12-10 10:48:38 ----A---- C:\WINDOWS\system32\SET9153.tmp
2015-12-10 10:47:12 ----D---- C:\ProgramData\Microsoft OneDrive
2015-12-10 10:46:38 ----A---- C:\WINDOWS\system32\drivers\SET6FCE.tmp
2015-12-10 10:46:31 ----D---- C:\ProgramData\SoundResearch
2015-12-10 10:46:31 ----A---- C:\WINDOWS\system32\HPToneCtrls64.dll
2015-12-10 10:46:30 ----A---- C:\WINDOWS\system32\stlang64.dll
2015-12-10 10:46:30 ----A---- C:\WINDOWS\system32\Beats64.exe
2015-12-10 10:46:30 ----A---- C:\WINDOWS\sttray64.exe
2015-12-10 10:46:28 ----D---- C:\Program Files\IDT
2015-12-10 10:46:20 ----N---- C:\WINDOWS\system32\stapi64.dll
2015-12-10 10:46:20 ----A---- C:\WINDOWS\SYSWOW64\SRCOM.dll
2015-12-10 10:46:20 ----A---- C:\WINDOWS\system32\stapo64.dll
2015-12-10 10:46:20 ----A---- C:\WINDOWS\system32\st646504.dll
2015-12-10 10:46:20 ----A---- C:\WINDOWS\system32\SRRPTR64.DLL
2015-12-10 10:46:20 ----A---- C:\WINDOWS\system32\SRCOM64.DLL
2015-12-10 10:46:20 ----A---- C:\WINDOWS\system32\SRCOM.DLL
2015-12-10 10:46:20 ----A---- C:\WINDOWS\system32\SRAPO64.DLL
2015-12-10 10:46:20 ----A---- C:\WINDOWS\system32\drivers\stwrt64.sys
2015-12-10 10:46:17 ----A---- C:\WINDOWS\system32\AESTAR64.dll
2015-12-10 10:46:17 ----A---- C:\WINDOWS\system32\AESTAC64.dll
2015-12-10 10:45:18 ----D---- C:\Users\Jiří\AppData\Roaming\Adobe
2015-12-10 10:39:48 ----SHD---- C:\ProgramData\Šablony
2015-12-10 10:39:48 ----SHD---- C:\ProgramData\Plocha
2015-12-10 10:39:48 ----SHD---- C:\ProgramData\Nabídka Start
2015-12-10 10:39:48 ----SHD---- C:\ProgramData\Dokumenty
2015-12-10 10:39:48 ----SHD---- C:\ProgramData\Data aplikací
2015-12-10 10:38:45 ----D---- C:\WINDOWS\SoftwareDistribution
2015-12-10 10:36:08 ----ASH---- C:\swapfile.sys
2015-12-10 10:36:08 ----ASH---- C:\pagefile.sys
2015-12-10 10:36:06 ----SHD---- C:\System Volume Information

======List of files/folders modified in the last 1 month======

2015-12-15 12:27:49 ----RD---- C:\Program Files
2015-12-15 12:26:51 ----D---- C:\WINDOWS\Temp
2015-12-15 12:26:05 ----D---- C:\WINDOWS\system32\drivers
2015-12-15 12:26:05 ----D---- C:\Windows
2015-12-15 12:25:32 ----D---- C:\WINDOWS\system32\sru
2015-12-15 12:22:29 ----D---- C:\WINDOWS\debug
2015-12-15 12:09:13 ----D---- C:\WINDOWS\INF
2015-12-15 09:47:16 ----D---- C:\WINDOWS\AppReadiness
2015-12-15 09:47:15 ----HD---- C:\Program Files\WindowsApps
2015-12-14 17:35:00 ----D---- C:\WINDOWS\System32
2015-12-14 15:07:25 ----D---- C:\WINDOWS\Microsoft.NET
2015-12-13 15:45:51 ----SHDC---- C:\WINDOWS\Installer
2015-12-13 15:45:22 ----D---- C:\WINDOWS\SysWOW64
2015-12-13 13:40:42 ----D---- C:\WINDOWS\Logs
2015-12-13 12:19:48 ----D---- C:\WINDOWS\system32\Tasks
2015-12-13 12:17:38 ----D---- C:\Program Files (x86)\Common Files
2015-12-13 12:17:17 ----HD---- C:\ProgramData
2015-12-13 12:17:15 ----RD---- C:\Program Files (x86)
2015-12-12 20:02:42 ----SD---- C:\ProgramData\Microsoft
2015-12-11 17:23:12 ----D---- C:\WINDOWS\system32\WDI
2015-12-11 17:21:14 ----D---- C:\WINDOWS\Setup
2015-12-11 16:53:48 ----D---- C:\WINDOWS\Tasks
2015-12-11 15:06:20 ----D---- C:\WINDOWS\system32\DriverStore
2015-12-11 15:05:09 ----D---- C:\WINDOWS\system32\config
2015-12-11 15:04:31 ----RD---- C:\WINDOWS\assembly
2015-12-11 14:39:54 ----D---- C:\WINDOWS\WinSxS
2015-12-11 08:38:32 ----D---- C:\WINDOWS\appcompat
2015-12-10 13:53:07 ----A---- C:\WINDOWS\win.ini
2015-12-10 13:49:44 ----RSD---- C:\WINDOWS\Fonts
2015-12-10 13:43:51 ----D---- C:\WINDOWS\CbsTemp
2015-12-10 13:43:13 ----D---- C:\Program Files\Common Files\microsoft shared
2015-12-10 13:39:34 ----D---- C:\WINDOWS\system32\restore
2015-12-10 13:34:48 ----RD---- C:\WINDOWS\DevicesFlow
2015-12-10 13:31:24 ----D---- C:\WINDOWS\system32\drivers\UMDF
2015-12-10 13:18:56 ----D---- C:\WINDOWS\rescache
2015-12-10 13:18:10 ----RD---- C:\WINDOWS\PrintDialog
2015-12-10 13:18:09 ----RD---- C:\WINDOWS\MiracastView
2015-12-10 13:17:55 ----RD---- C:\WINDOWS\ImmersiveControlPanel
2015-12-10 13:17:14 ----D---- C:\Program Files\Windows NT
2015-12-10 13:17:06 ----D---- C:\WINDOWS\system32\WinBioDatabase
2015-12-10 13:16:33 ----D---- C:\WINDOWS\Registration
2015-12-10 13:16:21 ----D---- C:\WINDOWS\system32\wbem
2015-12-10 13:15:55 ----D---- C:\WINDOWS\system32\LogFiles
2015-12-10 13:13:23 ----D---- C:\WINDOWS\system32\drivers\etc
2015-12-10 13:12:37 ----D---- C:\WINDOWS\system32\catroot2
2015-12-10 13:11:19 ----D---- C:\WINDOWS\SYSWOW64\drivers
2015-12-10 13:11:19 ----D---- C:\WINDOWS\system32\CodeIntegrity
2015-12-10 13:11:19 ----D---- C:\WINDOWS\ShellNew
2015-12-10 13:10:01 ----D---- C:\WINDOWS\system32\spool
2015-12-10 13:10:00 ----D---- C:\WINDOWS\system32\en-US
2015-12-10 13:09:54 ----D---- C:\WINDOWS\system32\CatRoot
2015-12-10 13:09:53 ----RD---- C:\WINDOWS\PurchaseDialog
2015-12-10 13:09:50 ----RD---- C:\Users
2015-12-10 13:09:49 ----D---- C:\ProgramData\USOPrivate
2015-12-10 13:09:49 ----D---- C:\ProgramData\SoftwareDistribution
2015-12-10 13:09:45 ----D---- C:\Program Files (x86)\Microsoft.NET
2015-12-10 13:09:26 ----D---- C:\WINDOWS\system32\Recovery
2015-12-10 13:08:16 ----D---- C:\WINDOWS\system32\Sysprep
2015-12-10 13:06:34 ----D---- C:\WINDOWS\Help
2015-12-10 13:04:08 ----D---- C:\WINDOWS\ServiceProfiles
2015-12-10 13:00:34 ----D---- C:\WINDOWS\SYSWOW64\migration
2015-12-10 13:00:34 ----D---- C:\WINDOWS\SYSWOW64\Dism
2015-12-10 13:00:34 ----D---- C:\WINDOWS\SYSWOW64\cs-CZ
2015-12-10 13:00:34 ----D---- C:\WINDOWS\system32\SystemResetPlatform
2015-12-10 13:00:34 ----D---- C:\WINDOWS\system32\oobe
2015-12-10 13:00:34 ----D---- C:\WINDOWS\system32\migration
2015-12-10 13:00:34 ----D---- C:\WINDOWS\system32\Dism
2015-12-10 13:00:34 ----D---- C:\WINDOWS\system32\cs-CZ
2015-12-10 13:00:34 ----D---- C:\WINDOWS\system32\appraiser
2015-12-10 13:00:34 ----D---- C:\WINDOWS\Provisioning
2015-12-10 13:00:34 ----D---- C:\WINDOWS\AppPatch
2015-12-10 13:00:34 ----D---- C:\Program Files\Internet Explorer
2015-12-10 13:00:34 ----D---- C:\Program Files (x86)\Internet Explorer
2015-12-10 12:57:31 ----D---- C:\WINDOWS\SYSWOW64\MUI
2015-12-10 12:57:31 ----D---- C:\WINDOWS\system32\MUI
2015-12-10 12:47:55 ----HD---- C:\$WINDOWS.~BT
2015-12-10 11:49:27 ----SHD---- C:\$Recycle.Bin
2015-12-01 01:33:29 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 iaStorA;iaStorA; C:\WINDOWS\System32\drivers\iaStorA.sys [2015-12-10 644968]
R1 FileCrypt;@%systemroot%\system32\drivers\filecrypt.sys,-100; C:\WINDOWS\system32\drivers\filecrypt.sys [2015-10-30 87040]
R1 GpuEnergyDrv;@%SystemRoot%\system32\drivers\gpuenergydrv.sys,-100; C:\WINDOWS\System32\drivers\gpuenergydrv.sys [2015-10-30 8192]
R1 HWiNFO32;HWiNFO32/64 Kernel Driver; \??\C:\Windows\SysWOW64\drivers\HWiNFO64A.SYS [2015-12-10 26528]
R1 mbamchameleon;mbamchameleon; \??\C:\WINDOWS\system32\drivers\mbamchameleon.sys [2015-10-05 109272]
R2 MMCSS;@%systemroot%\system32\drivers\mmcss.sys,-100; C:\WINDOWS\system32\drivers\mmcss.sys [2015-10-30 47616]
R2 storqosflt;@%SystemRoot%\System32\drivers\storqosflt.sys,-101; C:\WINDOWS\system32\drivers\storqosflt.sys [2015-10-30 78848]
R3 AmUStor;@oem5.inf,%AmUStor.SvcDesc%;AM USB Stroage Driver; C:\WINDOWS\system32\drivers\AmUStor.SYS [2015-12-10 92312]
R3 L1C;@oem9.inf,%L1C.Service.DispName%;NDIS Miniport Driver for Qualcomm Atheros AR81xx PCI-E Ethernet Controller; C:\WINDOWS\System32\drivers\L1C63x64.sys [2015-12-10 130248]
R3 MBAMProtector;MBAMProtector; \??\C:\WINDOWS\system32\drivers\mbam.sys [2015-10-05 25816]
R3 MEIx64;@oem15.inf,%TEE_SvcDesc%;Intel(R) Management Engine Interface ; C:\WINDOWS\System32\drivers\TeeDriverW8x64.sys [2015-12-10 185088]
R3 NVHDA;@oem7.inf,%NVHDA.SvcDesc%;Service for NVIDIA High Definition Audio Driver; C:\WINDOWS\system32\drivers\nvhda64v.sys [2015-11-25 205456]
R3 nvlddmkm;nvlddmkm; C:\WINDOWS\system32\DRIVERS\nvlddmkm.sys [2015-11-26 11228488]
R3 NvStreamKms;NvStreamKms; \??\C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [2015-11-25 19760]
R3 nvvad_WaveExtensible;@oem2.inf,%nvvad_WaveExtensible.SvcDesc%;NVIDIA Virtual Audio Device (Wave Extensible) (WDM); C:\WINDOWS\system32\drivers\nvvad64v.sys [2015-11-25 50472]
R3 STHDA;@%SystemRoot%\system32\stlang64.dll,-10322; C:\WINDOWS\system32\DRIVERS\stwrt64.sys [2015-12-10 561672]
S0 LSI_SAS2i;LSI_SAS2i; C:\WINDOWS\System32\drivers\lsi_sas2i.sys [2015-10-30 104800]
S0 LSI_SAS3i;LSI_SAS3i; C:\WINDOWS\System32\drivers\lsi_sas3i.sys [2015-10-30 99168]
S0 percsas2i;percsas2i; C:\WINDOWS\System32\drivers\percsas2i.sys [2015-10-30 58208]
S0 percsas3i;percsas3i; C:\WINDOWS\System32\drivers\percsas3i.sys [2015-10-30 58720]
S0 storufs;@storufs.inf,%UfsServiceDesc%;Microsoft Universal Flash Storage (UFS) Driver; C:\WINDOWS\System32\drivers\storufs.sys [2015-10-30 34144]
S3 bcmfn;@bcmfn.inf,%bcmfn.SVCDESC%;bcmfn Service; C:\WINDOWS\System32\drivers\bcmfn.sys [2015-10-30 9728]
S3 buttonconverter;@buttonconverter.inf,%btnconv.SvcDesc%;Service for Portable Device Control devices; C:\WINDOWS\System32\drivers\buttonconverter.sys [2015-10-30 37376]
S3 CapImg;@capimg.inf,%CapImgHid_Service%;HID driver for CapImg touch screen; C:\WINDOWS\System32\drivers\capimg.sys [2015-12-10 117248]
S3 genericusbfn;@genericusbfn.inf,%genericusbfn.ServiceName%;Generic USB Function Class; C:\WINDOWS\System32\drivers\genericusbfn.sys [2015-10-30 20992]
S3 hidinterrupt;@hidinterrupt.inf,%HID_Interrupt.SvcDesc%;Common Driver for HID Buttons implemented with interrupts; C:\WINDOWS\System32\drivers\hidinterrupt.sys [2015-10-30 50016]
S3 iai2c;@iai2c.inf,%iai2c.SVCDESC%;Intel(R) Serial IO I2C Host Controller; C:\WINDOWS\System32\drivers\iai2c.sys [2015-10-30 81408]
S3 iaLPSS2i_I2C;@iaLPSS2i_I2C_SKL.inf,%iaLPSS2i_I2C.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [2015-10-30 165888]
S3 ibbus;@mlx4_bus.inf,%Ibbus.ServiceDesc%;Mellanox InfiniBand Bus/AL (Filter Driver); C:\WINDOWS\System32\drivers\ibbus.sys [2015-10-30 424800]
S3 IoQos;@%SystemRoot%\system32\drivers\ioqos.sys,-100; C:\WINDOWS\system32\drivers\ioqos.sys [2015-10-30 26624]
S3 MBAMSwissArmy;MBAMSwissArmy; \??\C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys [2015-12-15 192216]
S3 MBAMWebAccessControl;MBAMWebAccessControl; \??\C:\WINDOWS\system32\drivers\mwac.sys [2015-10-05 64216]
S3 mlx4_bus;@mlx4_bus.inf,%MLX4BUS.ServiceDesc%;Mellanox ConnectX Bus Enumerator; C:\WINDOWS\System32\drivers\mlx4_bus.sys [2015-10-30 705376]
S3 ndfltr;@mlx4_bus.inf,%ndfltr.ServiceDesc%;NetworkDirect Service; C:\WINDOWS\System32\drivers\ndfltr.sys [2015-10-30 76128]
S3 ReFSv1;ReFSv1; C:\WINDOWS\system32\drivers\ReFSv1.sys [2015-10-30 930656]
S3 Revoflt;Revoflt; C:\WINDOWS\system32\DRIVERS\revoflt.sys [2009-12-30 31800]
S3 UcmCx0101;USB Connector Manager KMDF Class Extension; C:\WINDOWS\System32\Drivers\UcmCx.sys [2015-10-30 61952]
S3 UcmUcsi;@UcmUcsi.inf,%UcmUcsi.ServiceName%;USB Connector Manager UCSI Client; C:\WINDOWS\System32\drivers\UcmUcsi.sys [2015-10-30 46592]
S3 UdeCx;USB Device Emulation Support Library; C:\WINDOWS\system32\drivers\udecx.sys [2015-10-30 45056]
S3 Ufx01000;USB Function Class Extension; C:\WINDOWS\system32\drivers\ufx01000.sys [2015-10-30 254816]
S3 UfxChipidea;@ufxchipidea.inf,%UfxChipidea.ServiceName%;USB Chipidea Controller; C:\WINDOWS\System32\drivers\UfxChipidea.sys [2015-10-30 94048]
S3 ufxsynopsys;@ufxsynopsys.inf,%ufxsynopsys.ServiceName%;USB Synopsys Controller; C:\WINDOWS\System32\drivers\ufxsynopsys.sys [2015-10-30 131424]
S3 UrsCx01000;USB Role-Switch Support Library; C:\WINDOWS\system32\drivers\urscx01000.sys [2015-10-30 57696]
S3 UrsChipidea;@urschipidea.inf,%UrsChipidea.ServiceName%;Chipidea USB Role-Switch Driver; C:\WINDOWS\System32\drivers\urschipidea.sys [2015-10-30 28512]
S3 UrsSynopsys;@urssynopsys.inf,%UrsSynopsys.ServiceName%;Synopsys USB Role-Switch Driver; C:\WINDOWS\System32\drivers\urssynopsys.sys [2015-10-30 27488]
S3 usbser;@usbser.inf,%UsbSerial.DriverDesc%;Microsoft USB Serial Driver; C:\WINDOWS\System32\drivers\usbser.sys [2015-10-30 67072]
S3 vhf;@%SystemRoot%\system32\drivers\vhf.sys,-100; C:\WINDOWS\System32\drivers\vhf.sys [2015-10-30 31744]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2015-10-28 82128]
R2 CoreMessagingRegistrar;@%SystemRoot%\system32\coremessaging.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 DiagTrack;@%SystemRoot%\system32\diagtrack.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
R2 GfExperienceService;NVIDIA GeForce Experience Service; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [2015-11-25 1156400]
R2 MBAMScheduler;MBAMScheduler; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [2015-10-05 1513784]
R2 NvNetworkService;NVIDIA Network Service; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [2015-11-25 1872688]
R2 NvStreamSvc;NVIDIA Streamer Service; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [2015-11-25 5915440]
R2 nvsvc;NVIDIA Display Driver Service; C:\WINDOWS\system32\nvvsvc.exe [2015-11-24 938616]
R2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2015-07-09 327296]
R2 STacSV;@%SystemRoot%\system32\stlang64.dll,-10122; C:\Program Files\IDT\WDM\STacSV64.exe [2015-12-10 350216]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2015-11-24 417584]
R2 tiledatamodelsvc;@%SystemRoot%\system32\tileobjserver.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 UserManager;@%systemroot%\system32\usermgr.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R3 NvStreamNetworkSvc;NVIDIA Streamer Network Service; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe [2015-11-25 8133424]
R3 StateRepository;@%SystemRoot%\system32\windows.staterepository.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R3 UsoSvc;@%systemroot%\system32\usocore.dll,-102; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 DoSvc;@%systemroot%\system32\dosvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-12-10 144200]
S2 MapsBroker;@%SystemRoot%\System32\moshost.dll,-100; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S2 MBAMService;MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [2015-10-05 1135416]
S2 OneSyncSvc;@%SystemRoot%\system32\APHostRes.dll,-10002; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_7392f;Hostitel synchronizace_7392f; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-12-10 269504]
S3 AJRouter;@%SystemRoot%\system32\AJRouter.dll,-2; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 ClipSVC;@%SystemRoot%\system32\ClipSVC.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 DcpSvc;@%SystemRoot%\system32\dcpsvc.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 DevQueryBroker;@%SystemRoot%\system32\DevQueryBroker.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 diagnosticshub.standardcollector.service;@%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000; C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe [2015-10-30 31744]
S3 DmEnrollmentSvc;@%systemroot%\system32\Windows.Internal.Management.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 dmwappushservice;@%SystemRoot%\system32\dmwappushsvc.dll,-200; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 DsSvc;@%SystemRoot%\system32\dssvc.dll,-10003; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 embeddedmode;@%SystemRoot%\system32\embeddedmodesvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 EntAppSvc;@EnterpriseAppMgmtSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2015-10-23 43696]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-12-10 144200]
S3 icssvc;@%SystemRoot%\System32\tetheringservice.dll,-4097; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 LicenseManager;@%SystemRoot%\system32\licensemanagersvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 MessagingService;@%SystemRoot%\system32\MessagingService.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_7392f;Služba zasílání zpráv_7392f; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 Microsoft SharePoint Workspace Audit Service;Microsoft SharePoint Workspace Audit Service; C:\Program Files (x86)\Microsoft Office\Office14\GROOVE.EXE [2013-12-19 30814400]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2015-10-30 147624]
S3 NetSetupSvc;@%SystemRoot%\system32\NetSetupSvc.dll,-3; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 NgcCtnrSvc;@%SystemRoot%\System32\NgcCtnrSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 NgcSvc;@%SystemRoot%\System32\ngcsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352]
S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]
S3 PhoneSvc;@%SystemRoot%\system32\PhoneserviceRes.dll,-10000; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-15001; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_7392f;Data kontaktů_7392f; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 RetailDemo;@%SystemRoot%\System32\RDXService.dll,-256; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 SensorDataService;@%SystemRoot%\system32\SensorDataService.exe,-101; C:\WINDOWS\System32\SensorDataService.exe [2015-10-30 1297408]
S3 SensorService;@%SystemRoot%\System32\sensorservice.dll,-1000; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 SmsRouter;@%SystemRoot%\System32\SmsRouterSvc.dll,-10001; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 TieringEngineService;@%SystemRoot%\system32\TieringEngineService.exe,-702; C:\WINDOWS\system32\TieringEngineService.exe [2015-10-30 290304]
S3 UnistoreSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-10003; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 UnistoreSvc_7392f;Úložiště uživatelských dat_7392f; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 UserDataSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-14001; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 UserDataSvc_7392f;Přístup k uživatelským datům_7392f; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S4 CDPSvc;@%SystemRoot%\system32\cdpsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S4 tzautoupdate;@%SystemRoot%\system32\tzautoupdate.dll,-200; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119673
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o kontrolu logu

#2 Příspěvek od Rudy »

Zdravím!
Spusťte tuto utilitu:
Stáhněte AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
Uložte na plochu
Ukončete všechny programy
Klikněte nejprve na >Scan< a pak na >Clean<.
Proběhne skenováni a pak se objeví log, který sem vložte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

JiriHrabcuk
Návštěvník
Návštěvník
Příspěvky: 33
Registrován: 11 kvě 2006 19:44

Re: Prosím o kontrolu logu

#3 Příspěvek od JiriHrabcuk »

# AdwCleaner v5.025 - Logfile created 15/12/2015 at 12:23:14
# Updated 13/12/2015 by Xplode
# Database : 2015-12-13.2 [Server]
# Operating system : Windows 10 Home (x64)
# Username : Jiří - PC-JIŘÍ
# Running from : C:\Users\Jiří\Desktop\adwcleaner_5.025.exe
# Option : Scan
# Support : http://toolslib.net/forum

***** [ Services ] *****


***** [ Folders ] *****


***** [ Files ] *****


***** [ DLL ] *****


***** [ Shortcuts ] *****


***** [ Scheduled tasks ] *****


***** [ Registry ] *****


***** [ Web browsers ] *****


########## EOF - C:\AdwCleaner\AdwCleaner[S1].txt - [570 bytes] ##########

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119673
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o kontrolu logu

#4 Příspěvek od Rudy »

Toto je OK. Stáhněte OTM: http://oldtimer.geekstogo.com/OTM.exe a uložte na plochu. Spusťte a do levého okna zkopírujte:
:files
C:\WINDOWS\tasks\AutoKMS.job
C:\Windows\AutoKMS.exe
C:\WINDOWS\tasks\AutoKMSDaily.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
C:\WINDOWS\SYSWOW64\SET9B30.tmp
C:\WINDOWS\AutoKMS.ini
C:\WINDOWS\system32\SET*.tmp
C:\WINDOWS\system32\drivers\SET*.tmp

:reg
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"SunJavaUpdateSched"=-

:commands
[Purity]
[Emptytemp]
[Emptyflash]
a klikněte na >MoveIt!<. Po skenu restartujte PC a dejte nový log RSIT.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

JiriHrabcuk
Návštěvník
Návštěvník
Příspěvky: 33
Registrován: 11 kvě 2006 19:44

Re: Prosím o kontrolu logu

#5 Příspěvek od JiriHrabcuk »

All processes killed
========== FILES ==========
C:\WINDOWS\tasks\AutoKMS.job moved successfully.
File/Folder C:\Windows\AutoKMS.exe not found.
C:\WINDOWS\tasks\AutoKMSDaily.job moved successfully.
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job moved successfully.
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job moved successfully.
C:\WINDOWS\SYSWOW64\SET9B30.tmp moved successfully.
C:\WINDOWS\AutoKMS.ini moved successfully.
File/Folder C:\WINDOWS\system32\SET*.tmp not found.
File/Folder C:\WINDOWS\system32\drivers\SET*.tmp not found.
========== REGISTRY ==========
Registry value HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run\\SunJavaUpdateSched deleted successfully.
========== COMMANDS ==========

[EMPTYTEMP]

User: All Users

User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: Default.migrated

User: Jiří
->Temp folder emptied: 7294896 bytes
->Temporary Internet Files folder emptied: 6721477 bytes
->Java cache emptied: 0 bytes
->FireFox cache emptied: 192357126 bytes
->Google Chrome cache emptied: 0 bytes
->Flash cache emptied: 1297 bytes

User: Public

%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32 (64bit) .tmp files removed: 42890808 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 34696 bytes
RecycleBin emptied: 0 bytes

Total Files Cleaned = 238,00 mb


[EMPTYFLASH]

User: All Users

User: Default

User: Default User

User: Default.migrated

User: Jiří
->Flash cache emptied: 0 bytes

User: Public

Total Flash Files Cleaned = 0,00 mb


OTM by OldTimer - Version 3.1.21.0 log created on 12152015_201355
All processes killed

OTM by OldTimer - Version 3.1.21.0 log created on 12152015_201354

Files moved on Reboot...
C:\Users\Jiří\AppData\Local\Temp\NVIDIA Corporation\NV_Cache\ff6b7342f7df13645302d84af2022ba_fce8395f8fd8a84b_84280b7c44cab9_0_0.bin moved successfully.
C:\Users\Jiří\AppData\Local\Temp\NVIDIA Corporation\NV_Cache\ff6b7342f7df13645302d84af2022ba_fce8395f8fd8a84b_84280b7c44cab9_0_0.toc moved successfully.
C:\Users\Jiří\AppData\Local\Microsoft\Windows\INetCache\counters.dat moved successfully.

Registry entries deleted on Reboot...


--------------------------------


Logfile of random's system information tool 1.10 (written by random/random)
Run by Jiří at 2015-12-15 20:18:34
Microsoft Windows 10 Home
System drive C: has 461 GB (92%) free of 502 GB
Total RAM: 8130 MB (77% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 20:18:39, on 15.12.2015
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.10586.0020)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Program Files\WindowsApps\Microsoft.Messaging_1.11.19004.0_x86__8wekyb3d8bbwe\SkypeHost.exe
C:\Users\Jiří\AppData\Local\Microsoft\OneDrive\OneDrive.exe
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Program Files (x86)\IObit\Driver Booster\Scheduler.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files\trend micro\Jiří.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = %11%\blank.htm
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_66\bin\ssv.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_66\bin\jp2ssv.dll
O4 - HKCU\..\Run: [OneDrive] "C:\Users\Jiří\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\Program Files (x86)\Microsoft Office\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do aplikace OneNote - res://C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll/105
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: NVIDIA GeForce Experience Service (GfExperienceService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: MBAMService - Malwarebytes - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Streamer Network Service (NvStreamNetworkSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\WINDOWS\system32\nvvsvc.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\stlang64.dll,-10122 (STacSV) - Tempo Semiconductor Inc - C:\Program Files\IDT\WDM\STacSV64.exe
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\WINDOWS\system32\TieringEngineService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 9568 bytes

======Listing Processes======







winlogon.exe

C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
"dwm.exe"
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\WINDOWS\system32\nvvsvc.exe"
"C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe"
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
C:\WINDOWS\system32\svchost.exe -k LocalService
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\WINDOWS\system32\nvvsvc.exe -session -first
taskeng.exe {2B8A1ACB-E6FD-4200-8E72-0251F86ED2AD}
"C:\Program Files\IDT\WDM\STacSV64.exe"
C:\WINDOWS\System32\svchost.exe -k NetworkService
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\System32\svchost.exe -k LocalServicePeerNet
C:\WINDOWS\system32\svchost.exe -k WbioSvcGroup
dashost.exe {7c114606-b441-4a78-bcc63180f40630dc}
"C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe"
C:\WINDOWS\System32\svchost.exe -k utcsvc
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe"
C:\WINDOWS\system32\svchost.exe -k appmodel

"C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe"
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe"
"C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /c
taskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E}
sihost.exe
"C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe" serviceapp
C:\Windows\System32\RuntimeBroker.exe -Embedding
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Program Files\WindowsApps\Microsoft.Messaging_1.11.19004.0_x86__8wekyb3d8bbwe\SkypeHost.exe" -ServerName:SkypeHost.ServerServer
C:\WINDOWS\Explorer.EXE

C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
"C:\WINDOWS\notepad.exe" C:\_OTM\MovedFiles\12152015_201355.log
"C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe" -ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe_S-1-5-21-2847583399-4123638510-858312473-10011_ Global\UsGthrCtrlFltPipeMssGthrPipe_S-1-5-21-2847583399-4123638510-858312473-10011 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon" "1"
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 628 632 640 8192 636
"C:\Program Files\IDT\WDM\sttray64.exe"
"C:\Program Files\IDT\WDM\Beats64.exe"
"C:\Users\Jiří\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
"C:\Program Files\Windows Defender\MpCmdRun.exe" SpyNetService -RestrictPrivileges -AccessKey 90627CEB-4474-9103-043A-A4383BEED44C -Reinvoke
"C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun

"C:\Program Files\CCleaner\CCleaner.exe" /MONITOR /uac
"C:\Program Files (x86)\IObit\Driver Booster\Scheduler.exe" /scheduler
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe"
C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\Users\Jiří\Desktop\RSITx64.exe"

======Scheduled tasks folder======

C:\WINDOWS\tasks\Adobe Flash Player Updater.job - C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe

=========Mozilla firefox=========

ProfilePath - C:\Users\Jiří\AppData\Roaming\Mozilla\Firefox\Profiles\u2h81p8n.default

prefs.js - "browser.startup.homepage" - "www.seznam.cz"

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 20.0.0.235 Plugin
"Path"=C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_20_0_0_235.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/DTPlugin,version=11.66.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files (x86)\Java\jre1.8.0_66\bin\dtplugin\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=11.66.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Java\jre1.8.0_66\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0]
"Description"=Office Authorization plug-in for NPAPI browsers
"Path"=C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVision]
"Description"=NVIDIA stereo images plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVisionStreaming]
"Description"=NVIDIA 3D Vision Streaming plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.29.1\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.29.1\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 20.0.0.235 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF64_20_0_0_235.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0]
"Description"=Office Authorization plug-in for NPAPI browsers
"Path"=C:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL


======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~1\MICROS~1\Office14\GROOVEEX.DLL [2013-12-19 6671064]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~1\Office14\URLREDIR.DLL [2013-03-06 690392]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL [2013-12-19 4171480]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_66\bin\ssv.dll [2015-12-13 460384]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL [2013-03-06 562904]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_66\bin\jp2ssv.dll [2015-12-13 172640]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"NvBackend"=C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2015-11-25 2757424]
"ShadowPlay"=C:\Windows\system32\nvspcap64.dll [2015-11-25 1828160]
"SysTrayApp"=C:\Program Files\IDT\WDM\sttray64.exe [2015-12-10 1712656]
"BeatsOSDApp"=C:\Program Files\IDT\WDM\beats64.exe [2015-12-10 50416]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"OneDrive"=C:\Users\Jiří\AppData\Local\Microsoft\OneDrive\OneDrive.exe [2015-12-14 551112]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2015-11-16 8591272]
"Skype"=C:\Program Files (x86)\Skype\Phone\Skype.exe [2015-12-08 50749056]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~1\MICROS~1\Office14\GROOVEEX.DLL [2013-12-19 6671064]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL [2013-12-19 4171480]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iai2c.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SpbCx.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TileDataModelSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\uefi.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SpbCx.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TileDataModelSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\uefi.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DSCAutomationHostEnabled"=2

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2015-12-15 20:13:54 ----D---- C:\_OTM
2015-12-15 17:36:22 ----D---- C:\Program Files (x86)\GetData
2015-12-15 14:31:27 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2015-12-15 14:31:27 ----A---- C:\WINDOWS\system32\drivers\athuw8x.sys
2015-12-15 14:31:27 ----A---- C:\WINDOWS\system32\athuw8x.sys
2015-12-15 14:31:02 ----D---- C:\ProgramData\TP-LINK
2015-12-15 12:27:49 ----D---- C:\Program Files\trend micro
2015-12-15 12:27:48 ----D---- C:\rsit
2015-12-15 12:23:12 ----D---- C:\AdwCleaner
2015-12-15 09:43:14 ----HD---- C:\OneDriveTemp
2015-12-13 19:39:54 ----HD---- C:\$Windows.~WS
2015-12-13 13:22:45 ----D---- C:\Users\Jiří\AppData\Roaming\VitySoft
2015-12-13 12:17:31 ----D---- C:\Users\Jiří\AppData\Roaming\Sun
2015-12-13 12:17:28 ----A---- C:\WINDOWS\SYSWOW64\WindowsAccessBridge-32.dll
2015-12-13 12:17:17 ----D---- C:\ProgramData\Oracle
2015-12-13 12:17:15 ----D---- C:\Program Files (x86)\Java
2015-12-12 18:20:03 ----D---- C:\Users\Jiří\AppData\Roaming\Identities
2015-12-11 21:04:27 ----D---- C:\Users\Jiří\AppData\Roaming\NVIDIA
2015-12-11 18:16:22 ----D---- C:\WINDOWS\system32\SleepStudy
2015-12-11 17:28:38 ----A---- C:\WINDOWS\system32\drivers\mwac.sys
2015-12-11 17:28:34 ----A---- C:\WINDOWS\system32\drivers\mbam.sys
2015-12-11 17:08:22 ----A---- C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys
2015-12-11 17:08:02 ----A---- C:\WINDOWS\system32\drivers\mbamchameleon.sys
2015-12-11 17:08:01 ----D---- C:\ProgramData\Malwarebytes
2015-12-11 17:08:01 ----D---- C:\Program Files (x86)\Malwarebytes Anti-Malware
2015-12-11 14:34:35 ----D---- C:\WINDOWS\Minidump
2015-12-10 22:36:27 ----D---- C:\Program Files (x86)\Womble Multimedia
2015-12-10 20:40:47 ----D---- C:\Program Files (x86)\Adobe
2015-12-10 18:38:24 ----RHD---- C:\ESD
2015-12-10 14:12:00 ----RD---- C:\Program Files (x86)\Skype
2015-12-10 13:42:59 ----D---- C:\Program Files (x86)\Microsoft ASP.NET
2015-12-10 13:41:27 ----D---- C:\WINDOWS\PCHEALTH
2015-12-10 13:32:05 ----D---- C:\Users\Jiří\AppData\Roaming\Skype
2015-12-10 13:31:59 ----D---- C:\ProgramData\Skype
2015-12-10 13:16:01 ----A---- C:\WINDOWS\system32\emptyregdb.dat
2015-12-10 13:11:55 ----ASH---- C:\hiberfil.sys
2015-12-10 13:08:43 ----SD---- C:\Users\Jiří\AppData\Roaming\Microsoft
2015-12-10 13:06:38 ----D---- C:\ProgramData\NVIDIA
2015-12-10 13:06:34 ----A---- C:\WINDOWS\system32\nvvsvc.exe
2015-12-10 13:06:34 ----A---- C:\WINDOWS\system32\nvsvcr.dll
2015-12-10 13:06:34 ----A---- C:\WINDOWS\system32\nvsvc64.dll
2015-12-10 13:06:34 ----A---- C:\WINDOWS\system32\nvshext.dll
2015-12-10 13:06:34 ----A---- C:\WINDOWS\system32\nvmctray.dll
2015-12-10 13:06:34 ----A---- C:\WINDOWS\system32\nvcpl.dll
2015-12-10 13:06:32 ----A---- C:\WINDOWS\SYSWOW64\PrintConfig.dll
2015-12-10 13:06:29 ----HD---- C:\Program Files (x86)\Uninstall Information
2015-12-10 13:06:22 ----D---- C:\ProgramData\NVIDIA Corporation
2015-12-10 13:06:13 ----D---- C:\Program Files\NVIDIA Corporation
2015-12-10 13:06:13 ----D---- C:\Program Files (x86)\NVIDIA Corporation
2015-12-10 13:06:04 ----D---- C:\WINDOWS\system32\SRSLabs
2015-12-10 13:05:03 ----AS---- C:\WINDOWS\bootstat.dat
2015-12-10 13:04:24 ----D---- C:\WINDOWS\Prefetch
2015-12-10 13:04:01 ----A---- C:\WINDOWS\system32\FNTCACHE.DAT
2015-12-10 13:03:16 ----SHD---- C:\Recovery
2015-12-10 13:03:13 ----DC---- C:\WINDOWS\Panther
2015-12-10 13:00:44 ----D---- C:\Windows.old
2015-12-10 13:00:17 ----A---- C:\WINDOWS\SYSWOW64\remoteaudioendpoint.dll
2015-12-10 13:00:17 ----A---- C:\WINDOWS\SYSWOW64\PlayToManager.dll
2015-12-10 13:00:17 ----A---- C:\WINDOWS\SYSWOW64\PlayToDevice.dll
2015-12-10 13:00:17 ----A---- C:\WINDOWS\SYSWOW64\ntdll.dll
2015-12-10 13:00:17 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2015-12-10 13:00:17 ----A---- C:\WINDOWS\SYSWOW64\msfeeds.dll
2015-12-10 13:00:17 ----A---- C:\WINDOWS\SYSWOW64\mfps.dll
2015-12-10 13:00:17 ----A---- C:\WINDOWS\SYSWOW64\mfmkvsrcsnk.dll
2015-12-10 13:00:17 ----A---- C:\WINDOWS\SYSWOW64\MFMediaEngine.dll
2015-12-10 13:00:17 ----A---- C:\WINDOWS\SYSWOW64\mfcore.dll
2015-12-10 13:00:17 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2015-12-10 13:00:17 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2015-12-10 13:00:17 ----A---- C:\WINDOWS\SYSWOW64\iedkcs32.dll
2015-12-10 13:00:17 ----A---- C:\WINDOWS\SYSWOW64\edgehtml.dll
2015-12-10 13:00:17 ----A---- C:\WINDOWS\SYSWOW64\bcastdvr.proxy.dll
2015-12-10 13:00:17 ----A---- C:\WINDOWS\SYSWOW64\bcastdvr.exe
2015-12-10 13:00:17 ----A---- C:\WINDOWS\SYSWOW64\AudioSes.dll
2015-12-10 13:00:17 ----A---- C:\WINDOWS\SYSWOW64\AUDIOKSE.dll
2015-12-10 13:00:17 ----A---- C:\WINDOWS\SYSWOW64\AudioEng.dll
2015-12-10 13:00:17 ----A---- C:\WINDOWS\SYSWOW64\AppCapture.dll
2015-12-10 13:00:17 ----A---- C:\WINDOWS\system32\wpncore.dll
2015-12-10 13:00:17 ----A---- C:\WINDOWS\system32\remoteaudioendpoint.dll
2015-12-10 13:00:17 ----A---- C:\WINDOWS\system32\readingviewresources.dll
2015-12-10 13:00:17 ----A---- C:\WINDOWS\system32\ntdll.dll
2015-12-10 13:00:17 ----A---- C:\WINDOWS\system32\mshtml.dll
2015-12-10 13:00:17 ----A---- C:\WINDOWS\system32\msfeeds.dll
2015-12-10 13:00:17 ----A---- C:\WINDOWS\system32\mfps.dll
2015-12-10 13:00:17 ----A---- C:\WINDOWS\system32\mfmkvsrcsnk.dll
2015-12-10 13:00:17 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll
2015-12-10 13:00:17 ----A---- C:\WINDOWS\system32\mfcore.dll
2015-12-10 13:00:17 ----A---- C:\WINDOWS\system32\jscript.dll
2015-12-10 13:00:17 ----A---- C:\WINDOWS\system32\iesetup.dll
2015-12-10 13:00:17 ----A---- C:\WINDOWS\system32\iernonce.dll
2015-12-10 13:00:17 ----A---- C:\WINDOWS\system32\ieframe.dll
2015-12-10 13:00:17 ----A---- C:\WINDOWS\system32\iedkcs32.dll
2015-12-10 13:00:17 ----A---- C:\WINDOWS\system32\ie4uinit.exe
2015-12-10 13:00:17 ----A---- C:\WINDOWS\system32\EncDump.dll
2015-12-10 13:00:17 ----A---- C:\WINDOWS\system32\edgehtml.dll
2015-12-10 13:00:17 ----A---- C:\WINDOWS\system32\drivers\tdx.sys
2015-12-10 13:00:17 ----A---- C:\WINDOWS\system32\drivers\ntfs.sys
2015-12-10 13:00:17 ----A---- C:\WINDOWS\system32\drivers\afd.sys
2015-12-10 13:00:17 ----A---- C:\WINDOWS\system32\audiosrv.dll
2015-12-10 13:00:17 ----A---- C:\WINDOWS\system32\AudioSes.dll
2015-12-10 13:00:17 ----A---- C:\WINDOWS\system32\AUDIOKSE.dll
2015-12-10 13:00:17 ----A---- C:\WINDOWS\system32\AudioEng.dll
2015-12-10 13:00:17 ----A---- C:\WINDOWS\system32\AudioEndpointBuilder.dll
2015-12-10 13:00:17 ----A---- C:\WINDOWS\system32\audiodg.exe
2015-12-10 13:00:14 ----A---- C:\WINDOWS\SYSWOW64\wwapi.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\SYSWOW64\WWanAPI.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\SYSWOW64\wimgapi.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\SYSWOW64\UserMgrProxy.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\SYSWOW64\policymanager.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\SYSWOW64\mssign32.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\SYSWOW64\LogonController.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\SYSWOW64\LaunchWinApp.exe
2015-12-10 13:00:14 ----A---- C:\WINDOWS\SYSWOW64\comsvcs.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\SYSWOW64\catsrvut.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\SYSWOW64\authui.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\SYSWOW64\ActiveSyncProvider.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\wwapi.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\wwansvc.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\wwanprotdim.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\Wwanpref.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\wwanmm.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\wwanconn.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\wwancfg.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\WWanAPI.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\wsplib.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\wshrm.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\wininetlui.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\wininet.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\Windows.UI.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\Windows.Management.Provisioning.ProxyStub.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\wcmsvc.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\wcmcsp.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\vbscript.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\UserMgrProxy.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\usermgr.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\urlmon.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\twinui.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\SRHInproc.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\SRH.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\shutdownux.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\shell32.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\SettingsHandlers_nt.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\services.exe
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\rilproxy.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\RemovableMediaProvisioningPlugin.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\provtool.exe
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\ProvPluginEng.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\provops.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\provisioningcsp.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\provhandlers.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\provengine.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\provdatastore.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\policymanager.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\pnidui.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\PhoneProviders.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\NFCProvisioningPlugin.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\NetworkMobileSettings.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\mssign32.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\mdmmigrator.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\lpk.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\LogonController.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\LaunchWinApp.exe
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\KnobsCsp.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\KnobsCore.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\jsproxy.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\ihvrilproxy.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\iertutil.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\generaltel.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\GdiPlus.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\fontsub.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\fontdrvhost.exe
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\enterprisecsps.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\enrollmentapi.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\drivers\rmcast.sys
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\dmenrollengine.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\dmcertinst.exe
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\dciman32.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\comsvcs.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\CellularAPI.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\catsrvut.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\bcastdvr.proxy.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\bcastdvr.exe
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\BarcodeProvisioningPlugin.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\authui.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\atmlib.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\atmfd.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\AppCapture.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\ActiveSyncProvider.dll
2015-12-10 13:00:14 ----A---- C:\WINDOWS\system32\acmigration.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\XblAuthTokenBrokerExt.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\XblAuthManagerProxy.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\WWAHost.exe
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\WordBreakers.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\wininetlui.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.Resources.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Core.TextInput.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\Windows.Internal.Bluetooth.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\vbscript.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\user32.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\Unistore.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\UIAutomationCoreRes.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\UIAutomationCore.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\twinui.appcore.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\TextInputFramework.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\StoreAgent.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\SRHInproc.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\SRH.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\offlinelsa.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\NmaDirect.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\NMAA.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\msftedit.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\MosStorage.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\MosResource.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\MosHostClient.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\mos.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\Microsoft-Windows-MosTrace.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\Microsoft-Windows-MosHost.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\Microsoft-Windows-MapControls.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\mfpmp.exe
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\mf.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\MbaeApi.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\MapsBtSvc.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\MapControlStringsRes.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\MapControlCore.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\MapConfiguration.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\lpk.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\LicenseManager.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\kerberos.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\jsproxy.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\jscript.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\JpMapControl.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\InstallAgent.exe
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\InputService.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\InputLocaleManager.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\GdiPlus.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\fontsub.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\fontdrvhost.exe
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\ETWCoreUIComponentsResources.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\EditBufferTestHook.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\deviceaccess.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\dcomp.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\dciman32.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\d3d11.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\cryptngc.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\CoreUIComponents.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\cdp.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\BingOnlineServices.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\BingMaps.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\atmlib.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\SYSWOW64\atmfd.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\XblAuthTokenBrokerExt.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\XblAuthManagerProxy.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\XblAuthManager.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\WWAHost.exe
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\wups2.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\wuaueng.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\wuauclt.exe
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\WordBreakers.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.Resources.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\win32kfull.sys
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\win32kbase.sys
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\win32k.sys
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\wimserv.exe
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\wimgapi.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\user32.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\Unistore.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\UIAutomationCoreRes.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\UIAutomationCore.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\tzautoupdate.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\twinui.appcore.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\TextInputFramework.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\tetheringservice.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\tetheringconfigsp.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\tetheringclient.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\StoreAgent.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\SensorsUtilsV2.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\SensorsNativeApi.V2.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\SensorsNativeApi.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\SensorService.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\PlayToManager.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\PlayToDevice.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\offlinelsa.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\NmaDirect.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\NMAA.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\nativemap.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\msftedit.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\MosStorage.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\MosResource.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\moshostcore.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\MosHostClient.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\moshost.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\mos.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\modernexecserver.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\Microsoft-Windows-MosTrace.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\Microsoft-Windows-MosHost.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\Microsoft-Windows-MapControls.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\Microsoft-Windows-AppModelExecEvents.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\mfpmp.exe
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\mf.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\MBMediaManager.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\MbaeApi.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\mapsupdatetask.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\mapstoasttask.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\MapsStore.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\MapsCSP.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\MapsBtSvcProxy.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\MapsBtSvc.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\MapControlStringsRes.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\MapControlCore.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\MapConfiguration.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\lsasrv.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\LicenseManager.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\kerberos.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\JpMapControl.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\InstallAgent.exe
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\InputService.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\InputLocaleManager.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\IcsEntitlementHost.exe
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\ETWCoreUIComponentsResources.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\EditBufferTestHook.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\drivers\wimmount.sys
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\drivers\sdstor.sys
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\drivers\ksecpkg.sys
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\drivers\cng.sys
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\drivers\capimg.sys
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\DeviceCensus.exe
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\deviceaccess.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\dcomp.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\d3d11.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\cryptngc.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\CoreUIComponents.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\cdp.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\BingOnlineServices.dll
2015-12-10 13:00:10 ----A---- C:\WINDOWS\system32\BingMaps.dll
2015-12-10 12:58:35 ----D---- C:\WINDOWS\system32\Microsoft
2015-12-10 12:57:31 ----D---- C:\WINDOWS\SYSWOW64\XPSViewer
2015-12-10 12:57:29 ----D---- C:\Program Files\Reference Assemblies
2015-12-10 12:57:29 ----D---- C:\Program Files\MSBuild
2015-12-10 12:57:29 ----D---- C:\Program Files (x86)\Reference Assemblies
2015-12-10 12:57:29 ----D---- C:\Program Files (x86)\MSBuild
2015-12-10 12:57:07 ----A---- C:\WINDOWS\SYSWOW64\TsWpfWrp.exe
2015-12-10 12:57:07 ----A---- C:\WINDOWS\SYSWOW64\PresentationNative_v0300.dll
2015-12-10 12:57:07 ----A---- C:\WINDOWS\SYSWOW64\PresentationCFFRasterizerNative_v0300.dll
2015-12-10 12:57:03 ----A---- C:\WINDOWS\system32\TsWpfWrp.exe
2015-12-10 12:57:03 ----A---- C:\WINDOWS\system32\PresentationNative_v0300.dll
2015-12-10 12:57:03 ----A---- C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2015-12-10 12:41:44 ----A---- C:\WINDOWS\system32\drivers\iaStorA.sys
2015-12-10 12:36:35 ----D---- C:\Program Files (x86)\FreeSmartSoft
2015-12-10 12:34:39 ----A---- C:\WINDOWS\SYSWOW64\D3DX9_43.dll
2015-12-10 12:34:39 ----A---- C:\WINDOWS\SYSWOW64\d3dx11_43.dll
2015-12-10 12:34:39 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_43.dll
2015-12-10 12:34:39 ----A---- C:\WINDOWS\system32\D3DX9_43.dll
2015-12-10 12:34:39 ----A---- C:\WINDOWS\system32\d3dx11_43.dll
2015-12-10 12:34:39 ----A---- C:\WINDOWS\system32\d3dx10_43.dll
2015-12-10 12:34:36 ----A---- C:\WINDOWS\system32\nvspcap64.dll
2015-12-10 12:34:36 ----A---- C:\WINDOWS\system32\nvspbridge64.dll
2015-12-10 12:34:36 ----A---- C:\WINDOWS\system32\NvRtmpStreamer64.dll
2015-12-10 12:34:35 ----A---- C:\WINDOWS\SYSWOW64\nvspcap.dll
2015-12-10 12:34:35 ----A---- C:\WINDOWS\SYSWOW64\nvspbridge.dll
2015-12-10 12:33:57 ----A---- C:\WINDOWS\SYSWOW64\nvStreaming.exe
2015-12-10 12:32:54 ----D---- C:\ProgramData\Package Cache
2015-12-10 12:32:45 ----A---- C:\WINDOWS\SYSWOW64\nvaudcap32v.dll
2015-12-10 12:32:45 ----A---- C:\WINDOWS\system32\nvaudcap64v.dll
2015-12-10 12:32:45 ----A---- C:\WINDOWS\system32\drivers\nvvad64v.sys
2015-12-10 12:32:44 ----A---- C:\WINDOWS\system32\nvhdap64.dll
2015-12-10 12:32:44 ----A---- C:\WINDOWS\system32\nvhdagenco6420103.dll
2015-12-10 12:32:44 ----A---- C:\WINDOWS\system32\drivers\nvhda64v.sys
2015-12-10 12:32:43 ----A---- C:\WINDOWS\SYSWOW64\nvwgf2um.dll
2015-12-10 12:32:43 ----A---- C:\WINDOWS\SYSWOW64\nvumdshim.dll
2015-12-10 12:32:43 ----A---- C:\WINDOWS\SYSWOW64\nvopencl.dll
2015-12-10 12:32:43 ----A---- C:\WINDOWS\SYSWOW64\nvoglv32.dll
2015-12-10 12:32:43 ----A---- C:\WINDOWS\SYSWOW64\nvoglshim32.dll
2015-12-10 12:32:43 ----A---- C:\WINDOWS\system32\nvwgf2umx.dll
2015-12-10 12:32:43 ----A---- C:\WINDOWS\system32\nvumdshimx.dll
2015-12-10 12:32:43 ----A---- C:\WINDOWS\system32\nvopencl.dll
2015-12-10 12:32:43 ----A---- C:\WINDOWS\system32\nvoglv64.dll
2015-12-10 12:32:43 ----A---- C:\WINDOWS\system32\nvoglshim64.dll
2015-12-10 12:32:42 ----A---- C:\WINDOWS\SYSWOW64\nvinit.dll
2015-12-10 12:32:42 ----A---- C:\WINDOWS\SYSWOW64\NvIFROpenGL.dll
2015-12-10 12:32:42 ----A---- C:\WINDOWS\SYSWOW64\NvIFR.dll
2015-12-10 12:32:42 ----A---- C:\WINDOWS\system32\nvinitx.dll
2015-12-10 12:32:42 ----A---- C:\WINDOWS\system32\NvIFROpenGL.dll
2015-12-10 12:32:42 ----A---- C:\WINDOWS\system32\drivers\nvlddmkm.sys
2015-12-10 12:32:41 ----A---- C:\WINDOWS\SYSWOW64\NvFBC.dll
2015-12-10 12:32:41 ----A---- C:\WINDOWS\SYSWOW64\nvEncodeAPI.dll
2015-12-10 12:32:41 ----A---- C:\WINDOWS\SYSWOW64\nvEncMFTH264.dll
2015-12-10 12:32:41 ----A---- C:\WINDOWS\SYSWOW64\nvDecMFTMjpeg.dll
2015-12-10 12:32:41 ----A---- C:\WINDOWS\SYSWOW64\nvd3dum.dll
2015-12-10 12:32:41 ----A---- C:\WINDOWS\SYSWOW64\nvcuvid.dll
2015-12-10 12:32:41 ----A---- C:\WINDOWS\system32\NvIFR64.dll
2015-12-10 12:32:41 ----A---- C:\WINDOWS\system32\NvFBC64.dll
2015-12-10 12:32:41 ----A---- C:\WINDOWS\system32\nvEncodeAPI64.dll
2015-12-10 12:32:41 ----A---- C:\WINDOWS\system32\nvEncMFTH264.dll
2015-12-10 12:32:41 ----A---- C:\WINDOWS\system32\nvdispgenco6435906.dll
2015-12-10 12:32:41 ----A---- C:\WINDOWS\system32\nvdispco6435906.dll
2015-12-10 12:32:41 ----A---- C:\WINDOWS\system32\nvDecMFTMjpeg.dll
2015-12-10 12:32:41 ----A---- C:\WINDOWS\system32\nvd3dumx.dll
2015-12-10 12:32:41 ----A---- C:\WINDOWS\system32\nvcuvid.dll
2015-12-10 12:32:41 ----A---- C:\WINDOWS\system32\nvcuda.dll
2015-12-10 12:32:39 ----A---- C:\WINDOWS\SYSWOW64\nvcuda.dll
2015-12-10 12:32:39 ----A---- C:\WINDOWS\SYSWOW64\nvcompiler.dll
2015-12-10 12:32:39 ----A---- C:\WINDOWS\SYSWOW64\nvapi.dll
2015-12-10 12:32:39 ----A---- C:\WINDOWS\system32\nvcompiler.dll
2015-12-10 12:32:39 ----A---- C:\WINDOWS\system32\nvapi64.dll
2015-12-10 12:31:08 ----D---- C:\Users\Jiří\AppData\Roaming\Ulozto File Manager
2015-12-10 12:31:05 ----D---- C:\Program Files (x86)\Ulozto File Manager
2015-12-10 12:27:22 ----D---- C:\Program Files\CCleaner
2015-12-10 12:25:45 ----D---- C:\Users\Jiří\AppData\Roaming\HellShare Upload Manager
2015-12-10 12:25:35 ----D---- C:\Program Files (x86)\HellShare Upload Client
2015-12-10 12:23:34 ----D---- C:\Users\Jiří\AppData\Roaming\Macromedia
2015-12-10 12:15:34 ----D---- C:\Users\Jiří\AppData\Roaming\MediaInfo
2015-12-10 12:04:49 ----D---- C:\Users\Jiří\AppData\Roaming\dcunningham.net
2015-12-10 12:03:17 ----D---- C:\Users\Jiří\AppData\Roaming\WinRAR
2015-12-10 11:56:51 ----D---- C:\Program Files (x86)\Google
2015-12-10 11:50:29 ----A---- C:\WINDOWS\system32\nvdispgenco6435850.dll
2015-12-10 11:50:29 ----A---- C:\WINDOWS\system32\nvdispco6435850.dll
2015-12-10 11:50:19 ----A---- C:\WINDOWS\system32\drivers\AmUStor.sys
2015-12-10 11:50:19 ----A---- C:\WINDOWS\system32\AmUStor.ini
2015-12-10 11:50:19 ----A---- C:\WINDOWS\system32\AmUStor.dll
2015-12-10 11:49:40 ----A---- C:\WINDOWS\system32\drivers\L1C63x64.sys
2015-12-10 11:49:32 ----A---- C:\WINDOWS\system32\drivers\TeeDriverW8x64.sys
2015-12-10 11:45:43 ----D---- C:\ProgramData\ProductData
2015-12-10 11:44:07 ----D---- C:\ProgramData\IObit
2015-12-10 11:44:07 ----A---- C:\WINDOWS\SYSWOW64\drivers\HWiNFO64A.SYS
2015-12-10 11:44:06 ----D---- C:\Users\Jiří\AppData\Roaming\IObit
2015-12-10 11:44:00 ----D---- C:\Program Files (x86)\IObit
2015-12-10 11:39:16 ----D---- C:\ProgramData\Aiseesoft Studio
2015-12-10 11:39:16 ----D---- C:\Program Files (x86)\Aiseesoft Studio
2015-12-10 11:36:58 ----D---- C:\ProgramData\Tipard Studio
2015-12-10 11:36:58 ----D---- C:\Program Files (x86)\Tipard Studio
2015-12-10 11:34:33 ----D---- C:\ShanaEncoder
2015-12-10 11:34:07 ----D---- C:\Program Files\MediaInfo
2015-12-10 11:30:28 ----D---- C:\ProgramData\Logs
2015-12-10 11:29:33 ----D---- C:\ProgramData\Licenses
2015-12-10 11:29:32 ----AD---- C:\ProgramData\TEMP
2015-12-10 11:29:16 ----D---- C:\Users\Jiří\AppData\Roaming\VideoReDo-TVSuite5
2015-12-10 11:29:16 ----D---- C:\Program Files (x86)\VideoReDoTVSuite5
2015-12-10 11:06:58 ----D---- C:\ProgramData\VS Revo Group
2015-12-10 11:06:58 ----A---- C:\WINDOWS\system32\drivers\revoflt.sys
2015-12-10 11:06:57 ----D---- C:\Program Files\VS Revo Group
2015-12-10 11:05:45 ----D---- C:\Program Files\WinRAR
2015-12-10 11:03:18 ----N---- C:\WINDOWS\system32\MpSigStub.exe
2015-12-10 11:01:34 ----D---- C:\WINDOWS\system32\MRT
2015-12-10 11:01:31 ----A---- C:\WINDOWS\system32\MRT.exe
2015-12-10 11:01:26 ----D---- C:\Users\Jiří\AppData\Roaming\Mozilla
2015-12-10 11:01:20 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2015-12-10 11:01:15 ----D---- C:\Program Files (x86)\Mozilla Firefox
2015-12-10 10:59:50 ----D---- C:\ProgramData\Adobe
2015-12-10 10:54:42 ----D---- C:\Program Files (x86)\Microsoft Sync Framework
2015-12-10 10:52:24 ----D---- C:\Program Files (x86)\Microsoft Visual Studio 8
2015-12-10 10:52:13 ----D---- C:\Program Files\Microsoft Office
2015-12-10 10:52:04 ----D---- C:\Program Files (x86)\Microsoft Analysis Services
2015-12-10 10:52:01 ----D---- C:\ProgramData\Microsoft Help
2015-12-10 10:52:01 ----D---- C:\Program Files (x86)\Microsoft Office
2015-12-10 10:51:55 ----RHD---- C:\MSOCache
2015-12-10 10:50:27 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2015-12-10 10:48:40 ----A---- C:\WINDOWS\system32\drivers\SET9031.tmp
2015-12-10 10:48:40 ----A---- C:\WINDOWS\system32\drivers\SET7F0D.tmp
2015-12-10 10:48:39 ----A---- C:\WINDOWS\system32\nvdispgenco6435382.dll
2015-12-10 10:48:39 ----A---- C:\WINDOWS\system32\nvdispco6435382.dll
2015-12-10 10:48:39 ----A---- C:\WINDOWS\system32\drivers\SET44B.tmp
2015-12-10 10:47:12 ----D---- C:\ProgramData\Microsoft OneDrive
2015-12-10 10:46:38 ----A---- C:\WINDOWS\system32\drivers\SET6FCE.tmp
2015-12-10 10:46:31 ----D---- C:\ProgramData\SoundResearch
2015-12-10 10:46:31 ----A---- C:\WINDOWS\system32\HPToneCtrls64.dll
2015-12-10 10:46:30 ----A---- C:\WINDOWS\system32\stlang64.dll
2015-12-10 10:46:30 ----A---- C:\WINDOWS\system32\Beats64.exe
2015-12-10 10:46:30 ----A---- C:\WINDOWS\sttray64.exe
2015-12-10 10:46:28 ----D---- C:\Program Files\IDT
2015-12-10 10:46:20 ----N---- C:\WINDOWS\system32\stapi64.dll
2015-12-10 10:46:20 ----A---- C:\WINDOWS\SYSWOW64\SRCOM.dll
2015-12-10 10:46:20 ----A---- C:\WINDOWS\system32\stapo64.dll
2015-12-10 10:46:20 ----A---- C:\WINDOWS\system32\st646504.dll
2015-12-10 10:46:20 ----A---- C:\WINDOWS\system32\SRRPTR64.DLL
2015-12-10 10:46:20 ----A---- C:\WINDOWS\system32\SRCOM64.DLL
2015-12-10 10:46:20 ----A---- C:\WINDOWS\system32\SRCOM.DLL
2015-12-10 10:46:20 ----A---- C:\WINDOWS\system32\SRAPO64.DLL
2015-12-10 10:46:20 ----A---- C:\WINDOWS\system32\drivers\stwrt64.sys
2015-12-10 10:46:17 ----A---- C:\WINDOWS\system32\AESTAR64.dll
2015-12-10 10:46:17 ----A---- C:\WINDOWS\system32\AESTAC64.dll
2015-12-10 10:45:18 ----D---- C:\Users\Jiří\AppData\Roaming\Adobe
2015-12-10 10:39:48 ----SHD---- C:\ProgramData\Šablony
2015-12-10 10:39:48 ----SHD---- C:\ProgramData\Plocha
2015-12-10 10:39:48 ----SHD---- C:\ProgramData\Nabídka Start
2015-12-10 10:39:48 ----SHD---- C:\ProgramData\Dokumenty
2015-12-10 10:39:48 ----SHD---- C:\ProgramData\Data aplikací
2015-12-10 10:38:45 ----D---- C:\WINDOWS\SoftwareDistribution
2015-12-10 10:36:08 ----ASH---- C:\swapfile.sys
2015-12-10 10:36:08 ----ASH---- C:\pagefile.sys
2015-12-10 10:36:06 ----SHD---- C:\System Volume Information

======List of files/folders modified in the last 1 month======

2015-12-15 20:16:36 ----D---- C:\WINDOWS\Temp
2015-12-15 20:15:10 ----D---- C:\WINDOWS\system32\sru
2015-12-15 20:14:50 ----D---- C:\WINDOWS\System32
2015-12-15 20:13:55 ----D---- C:\WINDOWS\Tasks
2015-12-15 20:13:55 ----D---- C:\WINDOWS\SysWOW64
2015-12-15 20:13:55 ----D---- C:\Windows
2015-12-15 17:36:22 ----RD---- C:\Program Files (x86)
2015-12-15 15:28:15 ----SD---- C:\ProgramData\Microsoft
2015-12-15 15:19:33 ----D---- C:\WINDOWS\system32\NDF
2015-12-15 14:34:25 ----D---- C:\WINDOWS\INF
2015-12-15 14:31:31 ----D---- C:\WINDOWS\system32\drivers
2015-12-15 14:31:30 ----D---- C:\WINDOWS\system32\DriverStore
2015-12-15 14:31:02 ----HD---- C:\ProgramData
2015-12-15 14:25:51 ----D---- C:\WINDOWS\Microsoft.NET
2015-12-15 12:51:59 ----D---- C:\WINDOWS\debug
2015-12-15 12:27:49 ----RD---- C:\Program Files
2015-12-15 09:47:16 ----D---- C:\WINDOWS\AppReadiness
2015-12-15 09:47:15 ----HD---- C:\Program Files\WindowsApps
2015-12-13 15:45:51 ----SHDC---- C:\WINDOWS\Installer
2015-12-13 13:40:42 ----D---- C:\WINDOWS\Logs
2015-12-13 12:19:48 ----D---- C:\WINDOWS\system32\Tasks
2015-12-13 12:17:38 ----D---- C:\Program Files (x86)\Common Files
2015-12-11 17:23:12 ----D---- C:\WINDOWS\system32\WDI
2015-12-11 17:21:14 ----D---- C:\WINDOWS\Setup
2015-12-11 15:05:09 ----D---- C:\WINDOWS\system32\config
2015-12-11 15:04:31 ----RD---- C:\WINDOWS\assembly
2015-12-11 14:39:54 ----D---- C:\WINDOWS\WinSxS
2015-12-11 08:38:32 ----D---- C:\WINDOWS\appcompat
2015-12-10 13:53:07 ----A---- C:\WINDOWS\win.ini
2015-12-10 13:49:44 ----RSD---- C:\WINDOWS\Fonts
2015-12-10 13:43:51 ----D---- C:\WINDOWS\CbsTemp
2015-12-10 13:43:13 ----D---- C:\Program Files\Common Files\microsoft shared
2015-12-10 13:39:34 ----D---- C:\WINDOWS\system32\restore
2015-12-10 13:34:48 ----RD---- C:\WINDOWS\DevicesFlow
2015-12-10 13:31:24 ----D---- C:\WINDOWS\system32\drivers\UMDF
2015-12-10 13:18:56 ----D---- C:\WINDOWS\rescache
2015-12-10 13:18:10 ----RD---- C:\WINDOWS\PrintDialog
2015-12-10 13:18:09 ----RD---- C:\WINDOWS\MiracastView
2015-12-10 13:17:55 ----RD---- C:\WINDOWS\ImmersiveControlPanel
2015-12-10 13:17:14 ----D---- C:\Program Files\Windows NT
2015-12-10 13:17:06 ----D---- C:\WINDOWS\system32\WinBioDatabase
2015-12-10 13:16:33 ----D---- C:\WINDOWS\Registration
2015-12-10 13:16:21 ----D---- C:\WINDOWS\system32\wbem
2015-12-10 13:15:55 ----D---- C:\WINDOWS\system32\LogFiles
2015-12-10 13:13:23 ----D---- C:\WINDOWS\system32\drivers\etc
2015-12-10 13:12:37 ----D---- C:\WINDOWS\system32\catroot2
2015-12-10 13:11:19 ----D---- C:\WINDOWS\SYSWOW64\drivers
2015-12-10 13:11:19 ----D---- C:\WINDOWS\system32\CodeIntegrity
2015-12-10 13:11:19 ----D---- C:\WINDOWS\ShellNew
2015-12-10 13:10:01 ----D---- C:\WINDOWS\system32\spool
2015-12-10 13:10:00 ----D---- C:\WINDOWS\system32\en-US
2015-12-10 13:09:54 ----D---- C:\WINDOWS\system32\CatRoot
2015-12-10 13:09:53 ----RD---- C:\WINDOWS\PurchaseDialog
2015-12-10 13:09:50 ----RD---- C:\Users
2015-12-10 13:09:49 ----D---- C:\ProgramData\USOPrivate
2015-12-10 13:09:49 ----D---- C:\ProgramData\SoftwareDistribution
2015-12-10 13:09:45 ----D---- C:\Program Files (x86)\Microsoft.NET
2015-12-10 13:09:26 ----D---- C:\WINDOWS\system32\Recovery
2015-12-10 13:08:16 ----D---- C:\WINDOWS\system32\Sysprep
2015-12-10 13:06:34 ----D---- C:\WINDOWS\Help
2015-12-10 13:04:08 ----D---- C:\WINDOWS\ServiceProfiles
2015-12-10 13:00:34 ----D---- C:\WINDOWS\SYSWOW64\migration
2015-12-10 13:00:34 ----D---- C:\WINDOWS\SYSWOW64\Dism
2015-12-10 13:00:34 ----D---- C:\WINDOWS\SYSWOW64\cs-CZ
2015-12-10 13:00:34 ----D---- C:\WINDOWS\system32\SystemResetPlatform
2015-12-10 13:00:34 ----D---- C:\WINDOWS\system32\oobe
2015-12-10 13:00:34 ----D---- C:\WINDOWS\system32\migration
2015-12-10 13:00:34 ----D---- C:\WINDOWS\system32\Dism
2015-12-10 13:00:34 ----D---- C:\WINDOWS\system32\cs-CZ
2015-12-10 13:00:34 ----D---- C:\WINDOWS\system32\appraiser
2015-12-10 13:00:34 ----D---- C:\WINDOWS\Provisioning
2015-12-10 13:00:34 ----D---- C:\WINDOWS\AppPatch
2015-12-10 13:00:34 ----D---- C:\Program Files\Internet Explorer
2015-12-10 13:00:34 ----D---- C:\Program Files (x86)\Internet Explorer
2015-12-10 12:57:31 ----D---- C:\WINDOWS\SYSWOW64\MUI
2015-12-10 12:57:31 ----D---- C:\WINDOWS\system32\MUI
2015-12-10 12:47:55 ----HD---- C:\$WINDOWS.~BT
2015-12-10 11:49:27 ----SHD---- C:\$Recycle.Bin
2015-12-01 01:33:29 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 iaStorA;iaStorA; C:\WINDOWS\System32\drivers\iaStorA.sys [2015-12-10 644968]
R1 FileCrypt;@%systemroot%\system32\drivers\filecrypt.sys,-100; C:\WINDOWS\system32\drivers\filecrypt.sys [2015-10-30 87040]
R1 GpuEnergyDrv;@%SystemRoot%\system32\drivers\gpuenergydrv.sys,-100; C:\WINDOWS\System32\drivers\gpuenergydrv.sys [2015-10-30 8192]
R1 HWiNFO32;HWiNFO32/64 Kernel Driver; \??\C:\Windows\SysWOW64\drivers\HWiNFO64A.SYS [2015-12-10 26528]
R1 mbamchameleon;mbamchameleon; \??\C:\WINDOWS\system32\drivers\mbamchameleon.sys [2015-10-05 109272]
R2 MMCSS;@%systemroot%\system32\drivers\mmcss.sys,-100; C:\WINDOWS\system32\drivers\mmcss.sys [2015-10-30 47616]
R2 storqosflt;@%SystemRoot%\System32\drivers\storqosflt.sys,-101; C:\WINDOWS\system32\drivers\storqosflt.sys [2015-10-30 78848]
R3 AmUStor;@oem5.inf,%AmUStor.SvcDesc%;AM USB Stroage Driver; C:\WINDOWS\system32\drivers\AmUStor.SYS [2015-12-10 92312]
R3 L1C;@oem9.inf,%L1C.Service.DispName%;NDIS Miniport Driver for Qualcomm Atheros AR81xx PCI-E Ethernet Controller; C:\WINDOWS\System32\drivers\L1C63x64.sys [2015-12-10 130248]
R3 MBAMProtector;MBAMProtector; \??\C:\WINDOWS\system32\drivers\mbam.sys [2015-10-05 25816]
R3 MEIx64;@oem15.inf,%TEE_SvcDesc%;Intel(R) Management Engine Interface ; C:\WINDOWS\System32\drivers\TeeDriverW8x64.sys [2015-12-10 185088]
R3 NVHDA;@oem7.inf,%NVHDA.SvcDesc%;Service for NVIDIA High Definition Audio Driver; C:\WINDOWS\system32\drivers\nvhda64v.sys [2015-11-25 205456]
R3 nvlddmkm;nvlddmkm; C:\WINDOWS\system32\DRIVERS\nvlddmkm.sys [2015-11-26 11228488]
R3 NvStreamKms;NvStreamKms; \??\C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [2015-11-25 19760]
R3 nvvad_WaveExtensible;@oem2.inf,%nvvad_WaveExtensible.SvcDesc%;NVIDIA Virtual Audio Device (Wave Extensible) (WDM); C:\WINDOWS\system32\drivers\nvvad64v.sys [2015-11-25 50472]
R3 STHDA;@%SystemRoot%\system32\stlang64.dll,-10322; C:\WINDOWS\system32\DRIVERS\stwrt64.sys [2015-12-10 561672]
S0 LSI_SAS2i;LSI_SAS2i; C:\WINDOWS\System32\drivers\lsi_sas2i.sys [2015-10-30 104800]
S0 LSI_SAS3i;LSI_SAS3i; C:\WINDOWS\System32\drivers\lsi_sas3i.sys [2015-10-30 99168]
S0 percsas2i;percsas2i; C:\WINDOWS\System32\drivers\percsas2i.sys [2015-10-30 58208]
S0 percsas3i;percsas3i; C:\WINDOWS\System32\drivers\percsas3i.sys [2015-10-30 58720]
S0 storufs;@storufs.inf,%UfsServiceDesc%;Microsoft Universal Flash Storage (UFS) Driver; C:\WINDOWS\System32\drivers\storufs.sys [2015-10-30 34144]
S3 athur;@oem6.inf,%ATHR.Service.DispName%;Qualcomm Atheros AR9271 Wireless Network Adapter Service; C:\WINDOWS\System32\drivers\athuw8x.sys [2013-06-02 2919936]
S3 bcmfn;@bcmfn.inf,%bcmfn.SVCDESC%;bcmfn Service; C:\WINDOWS\System32\drivers\bcmfn.sys [2015-10-30 9728]
S3 buttonconverter;@buttonconverter.inf,%btnconv.SvcDesc%;Service for Portable Device Control devices; C:\WINDOWS\System32\drivers\buttonconverter.sys [2015-10-30 37376]
S3 CapImg;@capimg.inf,%CapImgHid_Service%;HID driver for CapImg touch screen; C:\WINDOWS\System32\drivers\capimg.sys [2015-12-10 117248]
S3 genericusbfn;@genericusbfn.inf,%genericusbfn.ServiceName%;Generic USB Function Class; C:\WINDOWS\System32\drivers\genericusbfn.sys [2015-10-30 20992]
S3 hidinterrupt;@hidinterrupt.inf,%HID_Interrupt.SvcDesc%;Common Driver for HID Buttons implemented with interrupts; C:\WINDOWS\System32\drivers\hidinterrupt.sys [2015-10-30 50016]
S3 iai2c;@iai2c.inf,%iai2c.SVCDESC%;Intel(R) Serial IO I2C Host Controller; C:\WINDOWS\System32\drivers\iai2c.sys [2015-10-30 81408]
S3 iaLPSS2i_I2C;@iaLPSS2i_I2C_SKL.inf,%iaLPSS2i_I2C.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [2015-10-30 165888]
S3 ibbus;@mlx4_bus.inf,%Ibbus.ServiceDesc%;Mellanox InfiniBand Bus/AL (Filter Driver); C:\WINDOWS\System32\drivers\ibbus.sys [2015-10-30 424800]
S3 IoQos;@%SystemRoot%\system32\drivers\ioqos.sys,-100; C:\WINDOWS\system32\drivers\ioqos.sys [2015-10-30 26624]
S3 MBAMSwissArmy;MBAMSwissArmy; \??\C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys [2015-12-15 192216]
S3 MBAMWebAccessControl;MBAMWebAccessControl; \??\C:\WINDOWS\system32\drivers\mwac.sys [2015-10-05 64216]
S3 mlx4_bus;@mlx4_bus.inf,%MLX4BUS.ServiceDesc%;Mellanox ConnectX Bus Enumerator; C:\WINDOWS\System32\drivers\mlx4_bus.sys [2015-10-30 705376]
S3 ndfltr;@mlx4_bus.inf,%ndfltr.ServiceDesc%;NetworkDirect Service; C:\WINDOWS\System32\drivers\ndfltr.sys [2015-10-30 76128]
S3 ReFSv1;ReFSv1; C:\WINDOWS\system32\drivers\ReFSv1.sys [2015-10-30 930656]
S3 Revoflt;Revoflt; C:\WINDOWS\system32\DRIVERS\revoflt.sys [2009-12-30 31800]
S3 UcmCx0101;USB Connector Manager KMDF Class Extension; C:\WINDOWS\System32\Drivers\UcmCx.sys [2015-10-30 61952]
S3 UcmUcsi;@UcmUcsi.inf,%UcmUcsi.ServiceName%;USB Connector Manager UCSI Client; C:\WINDOWS\System32\drivers\UcmUcsi.sys [2015-10-30 46592]
S3 UdeCx;USB Device Emulation Support Library; C:\WINDOWS\system32\drivers\udecx.sys [2015-10-30 45056]
S3 Ufx01000;USB Function Class Extension; C:\WINDOWS\system32\drivers\ufx01000.sys [2015-10-30 254816]
S3 UfxChipidea;@ufxchipidea.inf,%UfxChipidea.ServiceName%;USB Chipidea Controller; C:\WINDOWS\System32\drivers\UfxChipidea.sys [2015-10-30 94048]
S3 ufxsynopsys;@ufxsynopsys.inf,%ufxsynopsys.ServiceName%;USB Synopsys Controller; C:\WINDOWS\System32\drivers\ufxsynopsys.sys [2015-10-30 131424]
S3 UrsCx01000;USB Role-Switch Support Library; C:\WINDOWS\system32\drivers\urscx01000.sys [2015-10-30 57696]
S3 UrsChipidea;@urschipidea.inf,%UrsChipidea.ServiceName%;Chipidea USB Role-Switch Driver; C:\WINDOWS\System32\drivers\urschipidea.sys [2015-10-30 28512]
S3 UrsSynopsys;@urssynopsys.inf,%UrsSynopsys.ServiceName%;Synopsys USB Role-Switch Driver; C:\WINDOWS\System32\drivers\urssynopsys.sys [2015-10-30 27488]
S3 usbser;@usbser.inf,%UsbSerial.DriverDesc%;Microsoft USB Serial Driver; C:\WINDOWS\System32\drivers\usbser.sys [2015-10-30 67072]
S3 vhf;@%SystemRoot%\system32\drivers\vhf.sys,-100; C:\WINDOWS\System32\drivers\vhf.sys [2015-10-30 31744]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2015-10-28 82128]
R2 CoreMessagingRegistrar;@%SystemRoot%\system32\coremessaging.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 DiagTrack;@%SystemRoot%\system32\diagtrack.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
R2 DoSvc;@%systemroot%\system32\dosvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 GfExperienceService;NVIDIA GeForce Experience Service; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [2015-11-25 1156400]
R2 NvNetworkService;NVIDIA Network Service; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [2015-11-25 1872688]
R2 NvStreamSvc;NVIDIA Streamer Service; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [2015-11-25 5915440]
R2 nvsvc;NVIDIA Display Driver Service; C:\WINDOWS\system32\nvvsvc.exe [2015-11-24 938616]
R2 OneSyncSvc_75071;Hostitel synchronizace_75071; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 STacSV;@%SystemRoot%\system32\stlang64.dll,-10122; C:\Program Files\IDT\WDM\STacSV64.exe [2015-12-10 350216]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2015-11-24 417584]
R2 tiledatamodelsvc;@%SystemRoot%\system32\tileobjserver.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 UserManager;@%systemroot%\system32\usermgr.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R3 NvStreamNetworkSvc;NVIDIA Streamer Network Service; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe [2015-11-25 8133424]
R3 PimIndexMaintenanceSvc_75071;Data kontaktů_75071; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R3 StateRepository;@%SystemRoot%\system32\windows.staterepository.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R3 UnistoreSvc_75071;Úložiště uživatelských dat_75071; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
R3 UserDataSvc_75071;Přístup k uživatelským datům_75071; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-12-10 144200]
S2 MapsBroker;@%SystemRoot%\System32\moshost.dll,-100; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S2 MBAMService;MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [2015-10-05 1135416]
S2 OneSyncSvc;@%SystemRoot%\system32\APHostRes.dll,-10002; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2015-07-09 327296]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-12-10 269504]
S3 AJRouter;@%SystemRoot%\system32\AJRouter.dll,-2; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 ClipSVC;@%SystemRoot%\system32\ClipSVC.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 DcpSvc;@%SystemRoot%\system32\dcpsvc.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 DevQueryBroker;@%SystemRoot%\system32\DevQueryBroker.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 diagnosticshub.standardcollector.service;@%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000; C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe [2015-10-30 31744]
S3 DmEnrollmentSvc;@%systemroot%\system32\Windows.Internal.Management.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 dmwappushservice;@%SystemRoot%\system32\dmwappushsvc.dll,-200; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 DsSvc;@%SystemRoot%\system32\dssvc.dll,-10003; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 embeddedmode;@%SystemRoot%\system32\embeddedmodesvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 EntAppSvc;@EnterpriseAppMgmtSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2015-10-23 43696]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-12-10 144200]
S3 icssvc;@%SystemRoot%\System32\tetheringservice.dll,-4097; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 LicenseManager;@%SystemRoot%\system32\licensemanagersvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 MessagingService;@%SystemRoot%\system32\MessagingService.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_75071;Služba zasílání zpráv_75071; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 Microsoft SharePoint Workspace Audit Service;Microsoft SharePoint Workspace Audit Service; C:\Program Files (x86)\Microsoft Office\Office14\GROOVE.EXE [2013-12-19 30814400]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2015-10-30 147624]
S3 NetSetupSvc;@%SystemRoot%\system32\NetSetupSvc.dll,-3; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 NgcCtnrSvc;@%SystemRoot%\System32\NgcCtnrSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 NgcSvc;@%SystemRoot%\System32\ngcsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352]
S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]
S3 PhoneSvc;@%SystemRoot%\system32\PhoneserviceRes.dll,-10000; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-15001; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 RetailDemo;@%SystemRoot%\System32\RDXService.dll,-256; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 SensorDataService;@%SystemRoot%\system32\SensorDataService.exe,-101; C:\WINDOWS\System32\SensorDataService.exe [2015-10-30 1297408]
S3 SensorService;@%SystemRoot%\System32\sensorservice.dll,-1000; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 SmsRouter;@%SystemRoot%\System32\SmsRouterSvc.dll,-10001; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 TieringEngineService;@%SystemRoot%\system32\TieringEngineService.exe,-702; C:\WINDOWS\system32\TieringEngineService.exe [2015-10-30 290304]
S3 UnistoreSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-10003; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 UserDataSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-14001; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 UsoSvc;@%systemroot%\system32\usocore.dll,-102; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S4 CDPSvc;@%SystemRoot%\system32\cdpsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S4 MBAMScheduler;MBAMScheduler; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [2015-10-05 1513784]
S4 tzautoupdate;@%SystemRoot%\system32\tzautoupdate.dll,-200; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119673
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o kontrolu logu

#6 Příspěvek od Rudy »

Smazáno. Znovu spusťte OTM a klikněte na >CleanUp!<. OTM po sobě uklidí. Nakonec restartujte PC. Nastala nějaká změna?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

JiriHrabcuk
Návštěvník
Návštěvník
Příspěvky: 33
Registrován: 11 kvě 2006 19:44

Re: Prosím o kontrolu logu

#7 Příspěvek od JiriHrabcuk »

Nastala nějaká změna?
Vyskouším, pak napíšu.

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119673
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o kontrolu logu

#8 Příspěvek od Rudy »

OK.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

JiriHrabcuk
Návštěvník
Návštěvník
Příspěvky: 33
Registrován: 11 kvě 2006 19:44

Re: Prosím o kontrolu logu

#9 Příspěvek od JiriHrabcuk »

Nic se nezměnilo, spíš zhoršilo ! Zmizela nápověda pro USB, nejde levým myš. otevřít Start, při kliknutí na soubor nebo složku to zobrazí 2x, na hlavní liště levé myš. na levé straně mimo Startu nereaguje na pravé straně to jde.


PS. 09.20. hod 2015
Provedl jsem obnovení systému k 11.12. Aktualizace: Microsoft Visual C++ 2008 Redistributable (x64)
Microsoft Visual C++ 2008 Redistributable (x86)
Microsoft Visual C++ 2012 Redistributable (x64)
Microsoft Visual C++ 2012 Redistributable (x86)

Vyskouším a pak dám vědět.


PS. 14.26.hod 2015
Zakázal jsem zatím aktualizovat tyto ovladače a vypadá to, že se systém začal chovat opět korektně, vše jde zatím jak má.

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119673
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o kontrolu logu

#10 Příspěvek od Rudy »

Njn. Desítky se takto nekorektně chovají při spuštětní čistících utilit. Nevíme proč, lepší však nemáme. Snad se to časem vylepší. Pokud už je vše v pořádku, je to všechno z mé strany.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Odpovědět