Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Kontrola logu, přehřívání pevného disku a využití na 100%.

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Odpovědět
Zpráva
Autor
Harmony
Návštěvník
Návštěvník
Příspěvky: 154
Registrován: 24 lis 2014 16:29

Kontrola logu, přehřívání pevného disku a využití na 100%.

#1 Příspěvek od Harmony »

Logfile of random's system information tool 1.10 (written by random/random)
Run by Kuchar at 2016-02-14 09:10:25
Microsoft Windows 8.1
System drive C: has 859 GB (95%) free of 905 GB
Total RAM: 3962 MB (44% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 09:10:47, on 14/02/2016
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.18123)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\Lenovo\YouCam\YCMMirage.exe
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Program Files (x86)\USB Camera2\VM332STI.EXE
C:\Program Files (x86)\Lenovo\YouCam\YouCamTray.exe
C:\Program Files (x86)\Lenovo\PowerDVD10\PDVD10Serv.exe
C:\Program Files\AVAST Software\Avast\avastui.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\WINDOWS\SysWOW64\RunDll32.exe
C:\Program Files\trend micro\Kuchar.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://lenovo13.msn.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://lenovo13.msn.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_73\bin\ssv.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_73\bin\jp2ssv.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
O4 - HKLM\..\Run: [332BigDog] C:\Program Files (x86)\USB Camera2\VM332STI.EXE
O4 - HKLM\..\Run: [IAStorIcon] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe "C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe" 60
O4 - HKLM\..\Run: [Dolby Home Theater v4] "C:\Program Files (x86)\Dolby Home Theater v4\pcee4.exe" -autostart
O4 - HKLM\..\Run: [YouCam Mirage] "C:\Program Files (x86)\Lenovo\YouCam\YCMMirage.exe"
O4 - HKLM\..\Run: [YouCam Tray] "C:\Program Files (x86)\Lenovo\YouCam\YouCamTray.exe" /s
O4 - HKLM\..\Run: [UpdateP2GShortCut] "C:\Program Files (x86)\Lenovo\Power2Go\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\Lenovo\Power2Go" UpdateWithCreateOnce "SOFTWARE\CyberLink\Power2Go\5.0"
O4 - HKLM\..\Run: [RemoteControl10] "C:\Program Files (x86)\Lenovo\PowerDVD10\PDVD10Serv.exe"
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [WindowsDriverScan86] C:\Program Files (x86)\Adobe Arkalis\Arkalis86.lnk
O4 - HKLM\..\Run: [WindowsDriverScan64] C:\Program Files (x86)\Adobe Arkalis\Arkalis.lnk
O4 - HKLM\..\Run: [SDTray] "C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKCU\..\Run: [SpybotPostWindows10UpgradeReInstall] "C:\Program Files\Common Files\AV\Spybot - Search and Destroy\Test.exe"
O4 - Global Startup: Bluetooth.lnk = ?
O9 - Extra button: Skype Click to Call settings - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O20 - AppInit_DLLs: C:\WINDOWS\SysWOW64\nvinit.dll
O20 - Winlogon Notify: SDWinLogon - SDWinLogon.dll (file missing)
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: @oem32.inf,%BlueBcmBtRSupport.SVCNAME%;Bluetooth Driver Management Service (BcmBtRSupport) - Unknown owner - C:\WINDOWS\system32\BtwRSupportService.exe (file missing)
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\Lenovo\Bluetooth Software\btwdins.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel(R) Corporation - C:\Program Files\Intel\WiFi\bin\EvtEng.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Update Service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) - Unknown owner - C:\WINDOWS\system32\igfxCUIService.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: Wireless PAN DHCP Server (MyWiFiDHCPDNS) - Unknown owner - C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\WINDOWS\system32\nvvsvc.exe (file missing)
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel(R) Corporation - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Zero Configuration Service (ZeroConfigService) - Intel® Corporation - C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe

--
End of file - 10748 bytes

======Listing Processes======






wininit.exe
winlogon.exe

C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
"dwm.exe"
"C:\WINDOWS\system32\nvvsvc.exe"
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\WINDOWS\system32\nvvsvc.exe -session -first
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\system32\igfxCUIService.exe
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k NetworkService
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files\Lenovo\Bluetooth Software\btwdins.exe"
"C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe" /service
"C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe" /service
C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
C:\WINDOWS\System32\svchost.exe -k utcsvc
"C:\Program Files\Intel\WiFi\bin\EvtEng.exe"
dashost.exe {8d597963-6e9b-4094-9d2da7cd54bb4abc}
"C:\Program Files\Intel\iCLS Client\HeciServer.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe"
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-d283df73-584a-4c08-b5cb-8a14a440e987 -SystemEventPortName:HostProcess-13ada7d0-1646-4f71-a595-633e8d5b7f24 -IoCancelEventPortName:HostProcess-f63268de-7341-4bb4-8358-4b79e30bc9c4 -NonStateChangingEventPortName:HostProcess-c8b62be7-efb8-455c-9aaf-622aa06a0888 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:c3129981-50de-4812-8041-c3ea344e69d0 -DeviceGroupId:WudfDefaultDevicePool
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
C:\WINDOWS\System32\msdtc.exe
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
C:\WINDOWS\system32\DllHost.exe /Processid:{48DA6741-1BF0-4A44-8325-293086C79077}
C:\WINDOWS\system32\WLANExt.exe 793143993024
\??\C:\WINDOWS\system32\conhost.exe 0x4

C:\WINDOWS\system32\SearchIndexer.exe /Embedding
"\Program Files\Synaptics\SynTP\SynTPEnh.exe"
taskeng.exe {96099068-D2DD-4568-B795-BC947EEF5CF4}
taskhostex.exe
C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
C:\WINDOWS\Explorer.EXE
igfxEM.exe
igfxTray.exe
igfxHK.exe
"C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE"

"C:\Program Files (x86)\Lenovo\YouCam\YCMMirage.exe"
"C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /FORPCEE4
"C:\Program Files\Synaptics\SynTP\SynLenovoGestureMgr.exe" /m
"C:\Program Files\Lenovo\Onekey Theater\OnekeyStudio.exe"
"C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe"
"C:\Program Files (x86)\Lenovo\Energy Management\utility.exe"
"C:\Program Files\Lenovo\Bluetooth Software\BTTray.exe"
"C:\Program Files (x86)\USB Camera2\VM332STI.EXE"
"C:\Program Files (x86)\Dolby Home Theater v4\pcee4.exe" -autostart
"C:\Program Files (x86)\Lenovo\YouCam\YouCamTray.exe" /s
"C:\Program Files (x86)\Lenovo\PowerDVD10\PDVD10Serv.exe"
"C:\Program Files\AVAST Software\Avast\avastui.exe" /nogui
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
"C:\Program Files\CCleaner\CCleaner.exe" /MONITOR /uac
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe"
C:\WINDOWS\servicing\TrustedInstaller.exe
C:\WINDOWS\winsxs\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.3.9600.17709_none_fa7932f59afc2e40\TiWorker.exe -Embedding
"C:\WINDOWS\SysWOW64\RunDll32.exe" "C:\Program Files\Lenovo\Bluetooth Software\SysWOW64\BtMmHook.dll",SetAndWaitBtMmHook
taskhost.exe
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe3_ Global\UsGthrCtrlFltPipeMssGthrPipe3 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"

"C:\WINDOWS\system32\lpkinstall.exe" 96b66775-4725-48fb-9fa2-f3f1ec8683f7
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="3740.0.543712088\849148569" --supports-dual-gpus=false --gpu-driver-bug-workarounds=2,24,52 --gpu-vendor-id=0x8086 --gpu-device-id=0x0166 --gpu-driver-vendor="Intel Corporation" --gpu-driver-version=10.18.10.4276 --ignored=" --type=renderer " /prefetch:822062411
"C:\WINDOWS\system32\taskmgr.exe" /4
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=en-US --force-fieldtrials=AffiliationBasedMatching/EnabledThroughFieldTrial/AppBannerTriggering/Aggressive/AsyncSetAsDefault/Disabled/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_5/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/1DaySingleProfile/*ExtensionActionRedesign/Default/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/*IntelligentSessionRestore/Enabled2/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Postperiod_AnswersInSuggest_A4/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*PasswordManagerSettingsMigration/Disable/*QUIC/EnabledDelayTcpRace/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Disabled/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/SlimmingPaint/EnableSlimmingPaint/SpdyEnableDependencies/Control/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/default/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/*VarationsServiceControl/Interval_30min/WebRTC-LocalIPPermissionCheck/Default/WebRTC-PeerConnectionDTLS1.2/Enabled/ --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="3740.2.508777835\964106460" --font-cache-shared-handle=2596 /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=en-US --force-fieldtrials=AffiliationBasedMatching/EnabledThroughFieldTrial/AppBannerTriggering/Aggressive/AsyncSetAsDefault/Disabled/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_5/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/1DaySingleProfile/*ExtensionActionRedesign/Default/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/*IntelligentSessionRestore/Enabled2/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Postperiod_AnswersInSuggest_A4/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*PasswordManagerSettingsMigration/Disable/*QUIC/EnabledDelayTcpRace/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Disabled/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/SlimmingPaint/EnableSlimmingPaint/*SpdyEnableDependencies/Control/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/default/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/*VarationsServiceControl/Interval_30min/WebRTC-LocalIPPermissionCheck/Default/WebRTC-PeerConnectionDTLS1.2/Enabled/ --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="3740.4.1602080215\2100935623" --font-cache-shared-handle=4624 /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=en-US --force-fieldtrials=AffiliationBasedMatching/EnabledThroughFieldTrial/AppBannerTriggering/Aggressive/AsyncSetAsDefault/Disabled/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_5/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/1DaySingleProfile/*ExtensionActionRedesign/Default/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/*IntelligentSessionRestore/Enabled2/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Postperiod_AnswersInSuggest_A4/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*PasswordManagerSettingsMigration/Disable/*QUIC/EnabledDelayTcpRace/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Disabled/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/SlimmingPaint/EnableSlimmingPaint/*SpdyEnableDependencies/Control/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/default/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/*VarationsServiceControl/Interval_30min/WebRTC-LocalIPPermissionCheck/Default/WebRTC-PeerConnectionDTLS1.2/Enabled/ --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="3740.5.557816128\307964653" --font-cache-shared-handle=4080 /prefetch:673131151
C:\WINDOWS\system32\BtwRSupportService.exe
C:\WINDOWS\system32\vssvc.exe
C:\WINDOWS\System32\svchost.exe -k swprv
"C:\Program Files\Lenovo\Bluetooth Software\BtStackServer.exe" -Embedding
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 588 592 600 65536 596
wmiadap.exe /R /T
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\system32\srtasks.exe ExecuteScopeRestorePoint /WaitForRestorePoint:2
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\WINDOWS\system32\wuauclt.exe" /RunHandlerComServer
"C:\Users\Kuchar\Downloads\RSITx64.exe"
C:\WINDOWS\System32\svchost.exe -k WerSvcGroup

======Scheduled tasks folder======

C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\WINDOWS\tasks\Synaptics TouchPad Enhancements.job - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2015-10-24 655480]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2015-12-31 256456]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Click to Call for Internet Explorer - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2016-01-08 2134656]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_73\bin\ssv.dll [2016-02-06 460384]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2015-10-24 559624]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2015-12-31 194504]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Click to Call for Internet Explorer - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2016-01-08 1725056]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_73\bin\jp2ssv.dll [2016-02-06 172640]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2015-12-31 256456]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2015-12-31 194504]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"NvBackend"=C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2015-02-23 1793736]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2012-09-14 12921488]
"RtHDVBg_Dolby"=C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2012-09-14 1214608]
"IgfxTray"=C:\windows\system32\igfxtray.exe [2015-08-27 395168]
"HotKeysCmds"=C:\windows\system32\hkcmd.exe []
"Persistence"=C:\windows\system32\igfxpers.exe []
"SynLenovoGestureMgr"=C:\Program Files\Synaptics\SynTP\SynLenovoGestureMgr.exe [2012-09-20 656896]
"OnekeyStudio"=C:\Program Files\Lenovo\Onekey Theater\OnekeyStudio.exe [2012-08-10 4196432]
"Energy Management"=C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe [2012-12-01 17080376]
"EnergyUtility"=C:\Program Files (x86)\Lenovo\Energy Management\Utility.exe [2012-12-01 191544]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2012-09-17 2874168]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2015-09-16 8461224]
"SpybotPostWindows10UpgradeReInstall"=C:\Program Files\Common Files\AV\Spybot - Search and Destroy\Test.exe [2015-07-29 1011200]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"332BigDog"=C:\Program Files (x86)\USB Camera2\VM332STI.EXE [2012-03-20 548864]
"IAStorIcon"=C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe [2012-08-23 56128]
"Dolby Home Theater v4"=C:\Program Files (x86)\Dolby Home Theater v4\pcee4.exe [2012-07-26 508656]
"YouCam Mirage"=C:\Program Files (x86)\Lenovo\YouCam\YCMMirage.exe [2012-07-27 136488]
"YouCam Tray"=C:\Program Files (x86)\Lenovo\YouCam\YouCamTray.exe [2012-07-27 167024]
"UpdateP2GShortCut"=C:\Program Files (x86)\Lenovo\Power2Go\MUITransfer\MUIStartMenu.exe [2012-04-19 217088]
"RemoteControl10"=C:\Program Files (x86)\Lenovo\PowerDVD10\PDVD10Serv.exe [2012-03-29 91432]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2015-12-31 6133520]
"WindowsDriverScan86"=C:\Program Files (x86)\Adobe Arkalis\Arkalis86.lnk [2014-08-10 1501]
"WindowsDriverScan64"=C:\Program Files (x86)\Adobe Arkalis\Arkalis.lnk [2014-08-10 1419]
"SDTray"=C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe []
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2016-01-30 594992]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Bluetooth.lnk - C:\Program Files\Lenovo\Bluetooth Software\BTTray.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\windows\system32\nvinitx.dll"

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"SoftwareSASGeneration"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe"="C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe:*:Enabled:Spybot - Search & Destroy tray access"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe"="C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe:*:Enabled:Spybot-S&D 2 Scanner Service"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe"="C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe:*:Enabled:Spybot-S&D 2 Updater"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe"="C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe:*:Enabled:Spybot-S&D 2 Background update service"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"VIDC.YUY2"=msyuv.dll
"vidc.i420"=iyuv_32.dll
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"VIDC.YVYU"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"vidc.msvc"=msvidc32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2016-02-14 12:52:34 ----SHD---- C:\Recovery
2016-02-14 12:52:22 ----DC---- C:\WINDOWS\Panther
2016-02-14 12:51:49 ----D---- C:\Windows.old
2016-02-14 12:50:31 ----A---- C:\WINDOWS\system32\fhcpl.dll
2016-02-14 12:50:18 ----A---- C:\WINDOWS\SYSWOW64\rdvidcrl.dll
2016-02-14 12:50:18 ----A---- C:\WINDOWS\SYSWOW64\mstscax.dll
2016-02-14 12:50:18 ----A---- C:\WINDOWS\system32\rdvidcrl.dll
2016-02-14 12:50:18 ----A---- C:\WINDOWS\system32\mstscax.dll
2016-02-14 12:50:06 ----A---- C:\WINDOWS\SYSWOW64\d2d1.dll
2016-02-14 12:50:06 ----A---- C:\WINDOWS\system32\d2d1.dll
2016-02-14 12:49:59 ----A---- C:\WINDOWS\system32\SettingsHandlers.dll
2016-02-14 12:49:37 ----A---- C:\WINDOWS\SYSWOW64\WSDApi.dll
2016-02-14 12:49:37 ----A---- C:\WINDOWS\SYSWOW64\WinSCard.dll
2016-02-14 12:49:37 ----A---- C:\WINDOWS\SYSWOW64\vsstrace.dll
2016-02-14 12:49:37 ----A---- C:\WINDOWS\SYSWOW64\vssapi.dll
2016-02-14 12:49:37 ----A---- C:\WINDOWS\SYSWOW64\rasser.dll
2016-02-14 12:49:37 ----A---- C:\WINDOWS\SYSWOW64\rasmxs.dll
2016-02-14 12:49:37 ----A---- C:\WINDOWS\SYSWOW64\rasdiag.dll
2016-02-14 12:49:37 ----A---- C:\WINDOWS\SYSWOW64\rascfg.dll
2016-02-14 12:49:37 ----A---- C:\WINDOWS\SYSWOW64\rasapi32.dll
2016-02-14 12:49:37 ----A---- C:\WINDOWS\SYSWOW64\QSVRMGMT.DLL
2016-02-14 12:49:37 ----A---- C:\WINDOWS\SYSWOW64\QSHVHOST.DLL
2016-02-14 12:49:37 ----A---- C:\WINDOWS\SYSWOW64\mfplat.dll
2016-02-14 12:49:37 ----A---- C:\WINDOWS\SYSWOW64\mfmp4srcsnk.dll
2016-02-14 12:49:37 ----A---- C:\WINDOWS\SYSWOW64\MFMediaEngine.dll
2016-02-14 12:49:37 ----A---- C:\WINDOWS\SYSWOW64\eventcls.dll
2016-02-14 12:49:37 ----A---- C:\WINDOWS\SYSWOW64\dnsapi.dll
2016-02-14 12:49:37 ----A---- C:\WINDOWS\SYSWOW64\DevicePairing.dll
2016-02-14 12:49:37 ----A---- C:\WINDOWS\SYSWOW64\AppxAllUserStore.dll
2016-02-14 12:49:37 ----A---- C:\WINDOWS\system32\WSDMon.dll
2016-02-14 12:49:37 ----A---- C:\WINDOWS\system32\WSDApi.dll
2016-02-14 12:49:37 ----A---- C:\WINDOWS\system32\WinSCard.dll
2016-02-14 12:49:37 ----A---- C:\WINDOWS\system32\VSSVC.exe
2016-02-14 12:49:37 ----A---- C:\WINDOWS\system32\vsstrace.dll
2016-02-14 12:49:37 ----A---- C:\WINDOWS\system32\vssapi.dll
2016-02-14 12:49:37 ----A---- C:\WINDOWS\system32\vpnike.dll
2016-02-14 12:49:37 ----A---- C:\WINDOWS\system32\SyncEngine.dll
2016-02-14 12:49:37 ----A---- C:\WINDOWS\system32\spoolsv.exe
2016-02-14 12:49:37 ----A---- C:\WINDOWS\system32\SkyDriveTelemetry.dll
2016-02-14 12:49:37 ----A---- C:\WINDOWS\system32\SkyDrive.exe
2016-02-14 12:49:37 ----A---- C:\WINDOWS\system32\rasser.dll
2016-02-14 12:49:37 ----A---- C:\WINDOWS\system32\rasmxs.dll
2016-02-14 12:49:37 ----A---- C:\WINDOWS\system32\rasdiag.dll
2016-02-14 12:49:37 ----A---- C:\WINDOWS\system32\rascfg.dll
2016-02-14 12:49:37 ----A---- C:\WINDOWS\system32\rasapi32.dll
2016-02-14 12:49:37 ----A---- C:\WINDOWS\system32\QSVRMGMT.DLL
2016-02-14 12:49:37 ----A---- C:\WINDOWS\system32\QSHVHOST.DLL
2016-02-14 12:49:37 ----A---- C:\WINDOWS\system32\mfplat.dll
2016-02-14 12:49:37 ----A---- C:\WINDOWS\system32\mfmp4srcsnk.dll
2016-02-14 12:49:37 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll
2016-02-14 12:49:37 ----A---- C:\WINDOWS\system32\eventcls.dll
2016-02-14 12:49:37 ----A---- C:\WINDOWS\system32\drivers\wanarp.sys
2016-02-14 12:49:37 ----A---- C:\WINDOWS\system32\drivers\rasl2tp.sys
2016-02-14 12:49:37 ----A---- C:\WINDOWS\system32\drivers\ndproxy.sys
2016-02-14 12:49:37 ----A---- C:\WINDOWS\system32\drivers\ndistapi.sys
2016-02-14 12:49:37 ----A---- C:\WINDOWS\system32\drivers\dam.sys
2016-02-14 12:49:37 ----A---- C:\WINDOWS\system32\drivers\agilevpn.sys
2016-02-14 12:49:37 ----A---- C:\WINDOWS\system32\DevicePairing.dll
2016-02-14 12:49:37 ----A---- C:\WINDOWS\system32\AppxAllUserStore.dll
2016-02-14 12:49:37 ----A---- C:\WINDOWS\splwow64.exe
2016-02-14 12:49:35 ----A---- C:\WINDOWS\system32\drivers\vhdmp.sys
2016-02-14 12:49:35 ----A---- C:\WINDOWS\system32\drivers\pdc.sys
2016-02-14 12:49:35 ----A---- C:\WINDOWS\system32\drivers\netio.sys
2016-02-14 12:49:35 ----A---- C:\WINDOWS\system32\drivers\intelpep.sys
2016-02-14 12:49:35 ----A---- C:\WINDOWS\system32\dnsrslvr.dll
2016-02-14 12:49:35 ----A---- C:\WINDOWS\system32\dnsapi.dll
2016-02-14 12:48:01 ----D---- C:\WINDOWS\SYSWOW64\drivers\sk-SK
2016-02-14 12:48:01 ----D---- C:\WINDOWS\system32\sk
2016-02-14 12:48:01 ----D---- C:\WINDOWS\system32\drivers\sk-SK
2016-02-14 12:48:01 ----D---- C:\WINDOWS\sk-SK
2016-02-14 12:41:13 ----A---- C:\WINDOWS\SYSWOW64\dbghelp.dll
2016-02-14 12:41:13 ----A---- C:\WINDOWS\SYSWOW64\dbgeng.dll
2016-02-14 12:41:13 ----A---- C:\WINDOWS\system32\dbghelp.dll
2016-02-14 12:41:13 ----A---- C:\WINDOWS\system32\dbgeng.dll
2016-02-14 12:40:59 ----A---- C:\WINDOWS\SYSWOW64\WMVXENCD.DLL
2016-02-14 12:40:59 ----A---- C:\WINDOWS\SYSWOW64\WMVSENCD.DLL
2016-02-14 12:40:59 ----A---- C:\WINDOWS\SYSWOW64\WMVSDECD.DLL
2016-02-14 12:40:59 ----A---- C:\WINDOWS\SYSWOW64\WMVENCOD.DLL
2016-02-14 12:40:59 ----A---- C:\WINDOWS\SYSWOW64\WMVDECOD.DLL
2016-02-14 12:40:59 ----A---- C:\WINDOWS\SYSWOW64\WMSPDMOE.DLL
2016-02-14 12:40:59 ----A---- C:\WINDOWS\SYSWOW64\WMSPDMOD.DLL
2016-02-14 12:40:59 ----A---- C:\WINDOWS\SYSWOW64\WMADMOE.DLL
2016-02-14 12:40:59 ----A---- C:\WINDOWS\SYSWOW64\WMADMOD.DLL
2016-02-14 12:40:59 ----A---- C:\WINDOWS\SYSWOW64\VIDRESZR.DLL
2016-02-14 12:40:59 ----A---- C:\WINDOWS\SYSWOW64\RESAMPLEDMO.DLL
2016-02-14 12:40:59 ----A---- C:\WINDOWS\SYSWOW64\quartz.dll
2016-02-14 12:40:59 ----A---- C:\WINDOWS\SYSWOW64\qdvd.dll
2016-02-14 12:40:59 ----A---- C:\WINDOWS\SYSWOW64\msmpeg2adec.dll
2016-02-14 12:40:59 ----A---- C:\WINDOWS\SYSWOW64\MPG4DECD.DLL
2016-02-14 12:40:59 ----A---- C:\WINDOWS\SYSWOW64\MP4SDECD.DLL
2016-02-14 12:40:59 ----A---- C:\WINDOWS\SYSWOW64\MP43DECD.DLL
2016-02-14 12:40:59 ----A---- C:\WINDOWS\SYSWOW64\MP3DMOD.DLL
2016-02-14 12:40:59 ----A---- C:\WINDOWS\SYSWOW64\MFWMAAEC.DLL
2016-02-14 12:40:59 ----A---- C:\WINDOWS\SYSWOW64\mfvdsp.dll
2016-02-14 12:40:59 ----A---- C:\WINDOWS\SYSWOW64\mfsvr.dll
2016-02-14 12:40:59 ----A---- C:\WINDOWS\SYSWOW64\mfps.dll
2016-02-14 12:40:59 ----A---- C:\WINDOWS\SYSWOW64\mfnetsrc.dll
2016-02-14 12:40:59 ----A---- C:\WINDOWS\SYSWOW64\mfnetcore.dll
2016-02-14 12:40:59 ----A---- C:\WINDOWS\SYSWOW64\mfcore.dll
2016-02-14 12:40:59 ----A---- C:\WINDOWS\SYSWOW64\evr.dll
2016-02-14 12:40:59 ----A---- C:\WINDOWS\SYSWOW64\devenum.dll
2016-02-14 12:40:59 ----A---- C:\WINDOWS\SYSWOW64\COLORCNV.DLL
2016-02-14 12:40:59 ----A---- C:\WINDOWS\system32\WMVXENCD.DLL
2016-02-14 12:40:59 ----A---- C:\WINDOWS\system32\WMVSENCD.DLL
2016-02-14 12:40:59 ----A---- C:\WINDOWS\system32\WMVSDECD.DLL
2016-02-14 12:40:59 ----A---- C:\WINDOWS\system32\WMVENCOD.DLL
2016-02-14 12:40:59 ----A---- C:\WINDOWS\system32\WMVDECOD.DLL
2016-02-14 12:40:59 ----A---- C:\WINDOWS\system32\WMSPDMOE.DLL
2016-02-14 12:40:59 ----A---- C:\WINDOWS\system32\WMSPDMOD.DLL
2016-02-14 12:40:59 ----A---- C:\WINDOWS\system32\WMALFXGFXDSP.dll
2016-02-14 12:40:59 ----A---- C:\WINDOWS\system32\WMADMOE.DLL
2016-02-14 12:40:59 ----A---- C:\WINDOWS\system32\WMADMOD.DLL
2016-02-14 12:40:59 ----A---- C:\WINDOWS\system32\VIDRESZR.DLL
2016-02-14 12:40:59 ----A---- C:\WINDOWS\system32\SysFxUI.dll
2016-02-14 12:40:59 ----A---- C:\WINDOWS\system32\RESAMPLEDMO.DLL
2016-02-14 12:40:59 ----A---- C:\WINDOWS\system32\quartz.dll
2016-02-14 12:40:59 ----A---- C:\WINDOWS\system32\qdvd.dll
2016-02-14 12:40:59 ----A---- C:\WINDOWS\system32\msmpeg2adec.dll
2016-02-14 12:40:59 ----A---- C:\WINDOWS\system32\MPG4DECD.DLL
2016-02-14 12:40:59 ----A---- C:\WINDOWS\system32\MP4SDECD.DLL
2016-02-14 12:40:59 ----A---- C:\WINDOWS\system32\MP43DECD.DLL
2016-02-14 12:40:59 ----A---- C:\WINDOWS\system32\MP3DMOD.DLL
2016-02-14 12:40:59 ----A---- C:\WINDOWS\system32\MFWMAAEC.DLL
2016-02-14 12:40:59 ----A---- C:\WINDOWS\system32\mfvdsp.dll
2016-02-14 12:40:59 ----A---- C:\WINDOWS\system32\mfsvr.dll
2016-02-14 12:40:59 ----A---- C:\WINDOWS\system32\mfps.dll
2016-02-14 12:40:59 ----A---- C:\WINDOWS\system32\mfnetsrc.dll
2016-02-14 12:40:59 ----A---- C:\WINDOWS\system32\mfnetcore.dll
2016-02-14 12:40:59 ----A---- C:\WINDOWS\system32\mfcore.dll
2016-02-14 12:40:59 ----A---- C:\WINDOWS\system32\evr.dll
2016-02-14 12:40:59 ----A---- C:\WINDOWS\system32\devenum.dll
2016-02-14 12:40:59 ----A---- C:\WINDOWS\system32\COLORCNV.DLL
2016-02-14 12:40:41 ----A---- C:\WINDOWS\SYSWOW64\PhotoMetadataHandler.dll
2016-02-14 12:40:41 ----A---- C:\WINDOWS\system32\PhotoMetadataHandler.dll
2016-02-14 12:40:36 ----A---- C:\WINDOWS\SYSWOW64\notepad.exe
2016-02-14 12:40:36 ----A---- C:\WINDOWS\system32\notepad.exe
2016-02-14 12:40:36 ----A---- C:\WINDOWS\notepad.exe
2016-02-14 12:40:31 ----A---- C:\WINDOWS\system32\drivers\udfs.sys
2016-02-14 12:40:22 ----A---- C:\WINDOWS\SYSWOW64\authz.dll
2016-02-14 12:40:22 ----A---- C:\WINDOWS\system32\authz.dll
2016-02-14 12:40:17 ----A---- C:\WINDOWS\SYSWOW64\MrmCoreR.dll
2016-02-14 12:40:17 ----A---- C:\WINDOWS\system32\MrmCoreR.dll
2016-02-14 12:40:03 ----A---- C:\WINDOWS\system32\SystemSettingsDatabase.dll
2016-02-14 12:40:03 ----A---- C:\WINDOWS\system32\SystemSettingsAdminFlowUI.dll
2016-02-14 12:40:03 ----A---- C:\WINDOWS\system32\SystemSettingsAdminFlows.exe
2016-02-14 12:40:03 ----A---- C:\WINDOWS\system32\SystemSettings.Handlers.dll
2016-02-14 12:40:03 ----A---- C:\WINDOWS\system32\MDMAgent.exe
2016-02-14 12:39:51 ----A---- C:\WINDOWS\SYSWOW64\msiexec.exe
2016-02-14 12:39:51 ----A---- C:\WINDOWS\SYSWOW64\msi.dll
2016-02-14 12:39:51 ----A---- C:\WINDOWS\system32\msiexec.exe
2016-02-14 12:39:51 ----A---- C:\WINDOWS\system32\msi.dll
2016-02-14 12:39:45 ----A---- C:\WINDOWS\SYSWOW64\WindowsCodecs.dll
2016-02-14 12:39:45 ----A---- C:\WINDOWS\system32\WindowsCodecs.dll
2016-02-14 12:39:39 ----A---- C:\WINDOWS\SYSWOW64\oleaut32.dll
2016-02-14 12:39:39 ----A---- C:\WINDOWS\system32\oleaut32.dll
2016-02-14 12:39:27 ----A---- C:\WINDOWS\system32\fveapi.dll
2016-02-14 12:39:27 ----A---- C:\WINDOWS\system32\bdesvc.dll
2016-02-14 12:39:14 ----A---- C:\WINDOWS\system32\drivers\sermouse.sys
2016-02-14 12:39:14 ----A---- C:\WINDOWS\system32\drivers\mouhid.sys
2016-02-14 12:39:14 ----A---- C:\WINDOWS\system32\drivers\mouclass.sys
2016-02-14 12:39:14 ----A---- C:\WINDOWS\system32\drivers\kbdhid.sys
2016-02-14 12:39:14 ----A---- C:\WINDOWS\system32\drivers\kbdclass.sys
2016-02-14 12:39:14 ----A---- C:\WINDOWS\system32\drivers\i8042prt.sys
2016-02-14 12:39:05 ----A---- C:\WINDOWS\SYSWOW64\UIAutomationCore.dll
2016-02-14 12:39:05 ----A---- C:\WINDOWS\system32\UIAutomationCore.dll
2016-02-14 12:38:47 ----A---- C:\WINDOWS\SYSWOW64\gdi32.dll
2016-02-14 12:38:47 ----A---- C:\WINDOWS\system32\gdi32.dll
2016-02-14 12:38:42 ----A---- C:\WINDOWS\SYSWOW64\mtxoci.dll
2016-02-14 12:38:42 ----A---- C:\WINDOWS\SYSWOW64\msorcl32.dll
2016-02-14 12:38:42 ----A---- C:\WINDOWS\SYSWOW64\EncDec.dll
2016-02-14 12:38:42 ----A---- C:\WINDOWS\SYSWOW64\CPFilters.dll
2016-02-14 12:38:42 ----A---- C:\WINDOWS\SYSWOW64\cfgbkend.dll
2016-02-14 12:38:42 ----A---- C:\WINDOWS\system32\mtxoci.dll
2016-02-14 12:38:42 ----A---- C:\WINDOWS\system32\EncDec.dll
2016-02-14 12:38:42 ----A---- C:\WINDOWS\system32\CPFilters.dll
2016-02-14 12:38:42 ----A---- C:\WINDOWS\system32\cfgbkend.dll
2016-02-14 12:38:27 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2016-02-14 12:38:27 ----A---- C:\WINDOWS\system32\shell32.dll
2016-02-14 12:38:20 ----A---- C:\WINDOWS\system32\WiFiDisplay.dll
2016-02-14 12:38:13 ----A---- C:\WINDOWS\SYSWOW64\PresentationCFFRasterizerNative_v0300.dll
2016-02-14 12:38:13 ----A---- C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2016-02-14 12:37:56 ----A---- C:\WINDOWS\system32\drivers\bthhfenum.sys
2016-02-14 12:37:48 ----A---- C:\WINDOWS\SYSWOW64\WSShared.dll
2016-02-14 12:37:48 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2016-02-14 12:37:48 ----A---- C:\WINDOWS\system32\WSShared.dll
2016-02-14 12:37:48 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2016-02-14 12:37:34 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.dll
2016-02-14 12:37:34 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.dll
2016-02-14 12:37:27 ----A---- C:\WINDOWS\system32\nlasvc.dll
2016-02-14 12:37:27 ----A---- C:\WINDOWS\system32\ncsi.dll
2016-02-14 12:37:22 ----A---- C:\WINDOWS\system32\LockScreenContentServer.exe
2016-02-14 12:37:13 ----A---- C:\WINDOWS\SYSWOW64\crypt32.dll
2016-02-14 12:37:13 ----A---- C:\WINDOWS\system32\crypt32.dll
2016-02-14 12:37:09 ----A---- C:\WINDOWS\SYSWOW64\eapphost.dll
2016-02-14 12:37:09 ----A---- C:\WINDOWS\SYSWOW64\eappgnui.dll
2016-02-14 12:37:09 ----A---- C:\WINDOWS\SYSWOW64\eappcfg.dll
2016-02-14 12:37:09 ----A---- C:\WINDOWS\SYSWOW64\eapp3hst.dll
2016-02-14 12:37:09 ----A---- C:\WINDOWS\system32\eapphost.dll
2016-02-14 12:37:09 ----A---- C:\WINDOWS\system32\eappgnui.dll
2016-02-14 12:37:09 ----A---- C:\WINDOWS\system32\eappcfg.dll
2016-02-14 12:37:09 ----A---- C:\WINDOWS\system32\eapp3hst.dll
2016-02-14 12:37:04 ----A---- C:\WINDOWS\SYSWOW64\nshwfp.dll
2016-02-14 12:37:04 ----A---- C:\WINDOWS\SYSWOW64\FWPUCLNT.DLL
2016-02-14 12:37:04 ----A---- C:\WINDOWS\system32\nshwfp.dll
2016-02-14 12:37:04 ----A---- C:\WINDOWS\system32\IKEEXT.DLL
2016-02-14 12:37:04 ----A---- C:\WINDOWS\system32\FWPUCLNT.DLL
2016-02-14 12:37:04 ----A---- C:\WINDOWS\system32\drivers\wfplwfs.sys
2016-02-14 12:37:04 ----A---- C:\WINDOWS\system32\BFE.DLL
2016-02-14 12:36:55 ----A---- C:\WINDOWS\SYSWOW64\tdh.dll
2016-02-14 12:36:55 ----A---- C:\WINDOWS\system32\UtcResources.dll
2016-02-14 12:36:55 ----A---- C:\WINDOWS\system32\tdh.dll
2016-02-14 12:36:55 ----A---- C:\WINDOWS\system32\diagtrack.dll
2016-02-14 12:36:30 ----A---- C:\WINDOWS\system32\rdpudd.dll
2016-02-14 12:36:30 ----A---- C:\WINDOWS\system32\rdpcorets.dll
2016-02-14 12:36:12 ----A---- C:\WINDOWS\SYSWOW64\comctl32.dll
2016-02-14 12:36:12 ----A---- C:\WINDOWS\system32\comctl32.dll
2016-02-14 12:36:07 ----A---- C:\WINDOWS\SYSWOW64\WMPhoto.dll
2016-02-14 12:36:07 ----A---- C:\WINDOWS\system32\WMPhoto.dll
2016-02-14 12:36:02 ----A---- C:\WINDOWS\SYSWOW64\ole32.dll
2016-02-14 12:36:02 ----A---- C:\WINDOWS\system32\ole32.dll
2016-02-14 12:35:58 ----A---- C:\WINDOWS\SYSWOW64\clfsw32.dll
2016-02-14 12:35:58 ----A---- C:\WINDOWS\system32\drivers\clfs.sys
2016-02-14 12:35:58 ----A---- C:\WINDOWS\system32\clfsw32.dll
2016-02-14 12:35:52 ----A---- C:\WINDOWS\SYSWOW64\tracerpt.exe
2016-02-14 12:35:52 ----A---- C:\WINDOWS\SYSWOW64\sechost.dll
2016-02-14 12:35:52 ----A---- C:\WINDOWS\system32\tracerpt.exe
2016-02-14 12:35:52 ----A---- C:\WINDOWS\system32\sechost.dll
2016-02-14 12:35:44 ----A---- C:\WINDOWS\SYSWOW64\authui.dll
2016-02-14 12:35:44 ----A---- C:\WINDOWS\system32\authui.dll
2016-02-14 12:35:39 ----A---- C:\WINDOWS\system32\drivers\usb8023.sys
2016-02-14 12:35:27 ----A---- C:\WINDOWS\system32\csrsrv.dll
2016-02-14 12:35:27 ----A---- C:\WINDOWS\system32\basesrv.dll
2016-02-14 12:35:21 ----A---- C:\WINDOWS\SYSWOW64\WinSync.dll
2016-02-14 12:35:21 ----A---- C:\WINDOWS\system32\WinSync.dll
2016-02-14 12:35:16 ----A---- C:\WINDOWS\system32\drivers\sdbus.sys
2016-02-14 12:35:16 ----A---- C:\WINDOWS\system32\drivers\dumpsd.sys
2016-02-14 12:35:12 ----A---- C:\WINDOWS\SYSWOW64\msctf.dll
2016-02-14 12:35:12 ----A---- C:\WINDOWS\system32\msctf.dll
2016-02-14 12:35:09 ----A---- C:\WINDOWS\system32\drivers\tcpip.sys
2016-02-14 12:35:09 ----A---- C:\WINDOWS\system32\drivers\FWPKCLNT.SYS
2016-02-14 12:35:01 ----A---- C:\WINDOWS\system32\drivers\bthpan.sys
2016-02-14 12:34:56 ----A---- C:\WINDOWS\system32\drivers\ahcache.sys
2016-02-14 12:34:49 ----A---- C:\WINDOWS\SYSWOW64\msvcr120_clr0400.dll
2016-02-14 12:34:49 ----A---- C:\WINDOWS\SYSWOW64\msvcp120_clr0400.dll
2016-02-14 12:34:49 ----A---- C:\WINDOWS\system32\msvcr120_clr0400.dll
2016-02-14 12:34:49 ----A---- C:\WINDOWS\system32\msvcp120_clr0400.dll
2016-02-14 12:34:30 ----A---- C:\WINDOWS\system32\TSWbPrxy.exe
2016-02-14 12:34:21 ----A---- C:\WINDOWS\SYSWOW64\comsvcs.dll
2016-02-14 12:34:21 ----A---- C:\WINDOWS\SYSWOW64\catsrvut.dll
2016-02-14 12:34:21 ----A---- C:\WINDOWS\system32\comsvcs.dll
2016-02-14 12:34:21 ----A---- C:\WINDOWS\system32\catsrvut.dll
2016-02-14 12:34:13 ----A---- C:\WINDOWS\system32\winlogon.exe
2016-02-14 12:34:13 ----A---- C:\WINDOWS\system32\wininit.exe
2016-02-14 12:34:03 ----A---- C:\WINDOWS\system32\drivers\rfcomm.sys
2016-02-14 12:34:03 ----A---- C:\WINDOWS\system32\drivers\hidbth.sys
2016-02-14 12:34:03 ----A---- C:\WINDOWS\system32\drivers\bthport.sys
2016-02-14 12:33:19 ----A---- C:\WINDOWS\SYSWOW64\wpdshext.dll
2016-02-14 12:33:19 ----A---- C:\WINDOWS\system32\wpdshext.dll
2016-02-14 12:33:14 ----A---- C:\WINDOWS\SYSWOW64\mfc42u.dll
2016-02-14 12:33:14 ----A---- C:\WINDOWS\SYSWOW64\mfc42.dll
2016-02-14 12:33:14 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_47.dll
2016-02-14 12:33:14 ----A---- C:\WINDOWS\system32\mfc42u.dll
2016-02-14 12:33:14 ----A---- C:\WINDOWS\system32\mfc42.dll
2016-02-14 12:33:14 ----A---- C:\WINDOWS\system32\D3DCompiler_47.dll
2016-02-14 12:33:08 ----A---- C:\WINDOWS\SYSWOW64\Windows.Data.Pdf.dll
2016-02-14 12:33:08 ----A---- C:\WINDOWS\SYSWOW64\glcndFilter.dll
2016-02-14 12:33:08 ----A---- C:\WINDOWS\system32\Windows.Data.Pdf.dll
2016-02-14 12:33:08 ----A---- C:\WINDOWS\system32\glcndFilter.dll
2016-02-14 12:32:58 ----A---- C:\WINDOWS\SYSWOW64\qedit.dll
2016-02-14 12:32:58 ----A---- C:\WINDOWS\system32\qedit.dll
2016-02-14 12:32:40 ----A---- C:\WINDOWS\system32\drivers\tpm.sys
2016-02-14 12:32:37 ----A---- C:\WINDOWS\system32\NcdAutoSetup.dll
2016-02-14 12:32:33 ----A---- C:\WINDOWS\system32\ubpm.dll
2016-02-14 12:32:26 ----A---- C:\WINDOWS\system32\lsm.dll
2016-02-14 12:32:20 ----A---- C:\WINDOWS\system32\drivers\USBXHCI.SYS
2016-02-14 12:32:13 ----A---- C:\WINDOWS\system32\wevtsvc.dll
2016-02-14 12:32:09 ----A---- C:\WINDOWS\SYSWOW64\rgb9rast.dll
2016-02-14 12:31:55 ----A---- C:\WINDOWS\SYSWOW64\advapi32.dll
2016-02-14 12:31:55 ----A---- C:\WINDOWS\system32\advapi32.dll
2016-02-14 12:31:50 ----A---- C:\WINDOWS\SYSWOW64\msv1_0.dll
2016-02-14 12:31:50 ----A---- C:\WINDOWS\SYSWOW64\certcli.dll
2016-02-14 12:31:50 ----A---- C:\WINDOWS\system32\msv1_0.dll
2016-02-14 12:31:50 ----A---- C:\WINDOWS\system32\lsasrv.dll
2016-02-14 12:31:50 ----A---- C:\WINDOWS\system32\drivers\mrxsmb20.sys
2016-02-14 12:31:50 ----A---- C:\WINDOWS\system32\drivers\mrxsmb.sys
2016-02-14 12:31:50 ----A---- C:\WINDOWS\system32\drivers\ksecpkg.sys
2016-02-14 12:31:50 ----A---- C:\WINDOWS\system32\drivers\cng.sys
2016-02-14 12:31:50 ----A---- C:\WINDOWS\system32\dpapisrv.dll
2016-02-14 12:31:50 ----A---- C:\WINDOWS\system32\certcli.dll
2016-02-14 12:31:33 ----A---- C:\WINDOWS\SYSWOW64\rpcrt4.dll
2016-02-14 12:31:33 ----A---- C:\WINDOWS\system32\rpcrt4.dll
2016-02-14 12:31:18 ----A---- C:\WINDOWS\system32\apphelp.dll
2016-02-14 12:31:11 ----A---- C:\WINDOWS\SYSWOW64\StorageContextHandler.dll
2016-02-14 12:31:11 ----A---- C:\WINDOWS\system32\StorageContextHandler.dll
2016-02-14 12:31:06 ----A---- C:\WINDOWS\SYSWOW64\kerberos.dll
2016-02-14 12:31:06 ----A---- C:\WINDOWS\system32\kerberos.dll
2016-02-14 12:31:02 ----A---- C:\WINDOWS\SYSWOW64\DeviceSetupStatusProvider.dll
2016-02-14 12:31:02 ----A---- C:\WINDOWS\system32\DeviceSetupStatusProvider.dll
2016-02-14 12:30:52 ----A---- C:\WINDOWS\SYSWOW64\puiobj.dll
2016-02-14 12:30:52 ----A---- C:\WINDOWS\system32\win32spl.dll
2016-02-14 12:30:52 ----A---- C:\WINDOWS\system32\puiobj.dll
2016-02-14 12:30:52 ----A---- C:\WINDOWS\system32\localspl.dll
2016-02-14 12:30:52 ----A---- C:\WINDOWS\system32\compstui.dll
2016-02-14 12:30:44 ----A---- C:\WINDOWS\SYSWOW64\atmlib.dll
2016-02-14 12:30:44 ----A---- C:\WINDOWS\SYSWOW64\atmfd.dll
2016-02-14 12:30:44 ----A---- C:\WINDOWS\system32\atmlib.dll
2016-02-14 12:30:44 ----A---- C:\WINDOWS\system32\atmfd.dll
2016-02-14 12:30:30 ----A---- C:\WINDOWS\SYSWOW64\WinTypes.dll
2016-02-14 12:30:30 ----A---- C:\WINDOWS\SYSWOW64\wincorlib.dll
2016-02-14 12:30:30 ----A---- C:\WINDOWS\SYSWOW64\ntvdm64.dll
2016-02-14 12:30:30 ----A---- C:\WINDOWS\SYSWOW64\ntdll.dll
2016-02-14 12:30:30 ----A---- C:\WINDOWS\SYSWOW64\KernelBase.dll
2016-02-14 12:30:30 ----A---- C:\WINDOWS\SYSWOW64\combase.dll
2016-02-14 12:30:30 ----A---- C:\WINDOWS\system32\WinTypes.dll
2016-02-14 12:30:30 ----A---- C:\WINDOWS\system32\winresume.exe
2016-02-14 12:30:30 ----A---- C:\WINDOWS\system32\winload.exe
2016-02-14 12:30:30 ----A---- C:\WINDOWS\system32\ntvdm64.dll
2016-02-14 12:30:30 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2016-02-14 12:30:30 ----A---- C:\WINDOWS\system32\ntdll.dll
2016-02-14 12:30:30 ----A---- C:\WINDOWS\system32\microsoft-windows-system-events.dll
2016-02-14 12:30:30 ----A---- C:\WINDOWS\system32\KernelBase.dll
2016-02-14 12:30:30 ----A---- C:\WINDOWS\system32\combase.dll
2016-02-14 12:30:13 ----A---- C:\WINDOWS\system32\drivers\usbuhci.sys
2016-02-14 12:30:13 ----A---- C:\WINDOWS\system32\drivers\usbport.sys
2016-02-14 12:30:13 ----A---- C:\WINDOWS\system32\drivers\usbohci.sys
2016-02-14 12:30:13 ----A---- C:\WINDOWS\system32\drivers\USBHUB3.SYS
2016-02-14 12:30:13 ----A---- C:\WINDOWS\system32\drivers\usbhub.sys
2016-02-14 12:30:13 ----A---- C:\WINDOWS\system32\drivers\usbehci.sys
2016-02-14 12:30:13 ----A---- C:\WINDOWS\system32\drivers\usbd.sys
2016-02-14 12:30:03 ----A---- C:\WINDOWS\SYSWOW64\ExplorerFrame.dll
2016-02-14 12:30:03 ----A---- C:\WINDOWS\system32\ExplorerFrame.dll
2016-02-14 12:29:46 ----A---- C:\WINDOWS\system32\services.exe
2016-02-14 12:29:39 ----A---- C:\WINDOWS\SYSWOW64\wuwebv.dll
2016-02-14 12:29:39 ----A---- C:\WINDOWS\SYSWOW64\wups.dll
2016-02-14 12:29:39 ----A---- C:\WINDOWS\SYSWOW64\wudriver.dll
2016-02-14 12:29:39 ----A---- C:\WINDOWS\SYSWOW64\wuapp.exe
2016-02-14 12:29:39 ----A---- C:\WINDOWS\SYSWOW64\wuapi.dll
2016-02-14 12:29:39 ----A---- C:\WINDOWS\system32\wuwebv.dll
2016-02-14 12:29:39 ----A---- C:\WINDOWS\system32\WUSettingsProvider.dll
2016-02-14 12:29:39 ----A---- C:\WINDOWS\system32\wups2.dll
2016-02-14 12:29:39 ----A---- C:\WINDOWS\system32\wups.dll
2016-02-14 12:29:39 ----A---- C:\WINDOWS\system32\wudriver.dll
2016-02-14 12:29:39 ----A---- C:\WINDOWS\system32\wucltux.dll
2016-02-14 12:29:39 ----A---- C:\WINDOWS\system32\wuaueng.dll
2016-02-14 12:29:39 ----A---- C:\WINDOWS\system32\wuauclt.exe
2016-02-14 12:29:39 ----A---- C:\WINDOWS\system32\wuapp.exe
2016-02-14 12:29:39 ----A---- C:\WINDOWS\system32\wuapi.dll
2016-02-14 12:29:39 ----A---- C:\WINDOWS\system32\WinSetupUI.dll
2016-02-14 12:29:25 ----A---- C:\WINDOWS\SYSWOW64\netcfgx.dll
2016-02-14 12:29:25 ----A---- C:\WINDOWS\system32\netcfgx.dll
2016-02-14 12:29:25 ----A---- C:\WINDOWS\system32\drivers\ndis.sys
2016-02-14 12:29:04 ----A---- C:\WINDOWS\SYSWOW64\SRH.dll
2016-02-14 12:29:04 ----A---- C:\WINDOWS\system32\SRH.dll
2016-02-14 12:28:38 ----A---- C:\WINDOWS\SYSWOW64\winshfhc.dll
2016-02-14 12:28:38 ----A---- C:\WINDOWS\system32\winshfhc.dll
2016-02-14 12:28:38 ----A---- C:\WINDOWS\system32\drivers\WdNisDrv.sys
2016-02-14 12:28:38 ----A---- C:\WINDOWS\system32\drivers\WdFilter.sys
2016-02-14 12:28:38 ----A---- C:\WINDOWS\system32\drivers\WdBoot.sys
2016-02-14 12:28:24 ----A---- C:\WINDOWS\SYSWOW64\taskeng.exe
2016-02-14 12:28:24 ----A---- C:\WINDOWS\SYSWOW64\schtasks.exe
2016-02-14 12:28:24 ----A---- C:\WINDOWS\system32\taskeng.exe
2016-02-14 12:28:24 ----A---- C:\WINDOWS\system32\schtasks.exe
2016-02-14 12:28:24 ----A---- C:\WINDOWS\system32\schedsvc.dll
2016-02-14 12:28:20 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Input.Inking.dll
2016-02-14 12:28:20 ----A---- C:\WINDOWS\system32\Windows.UI.Input.Inking.dll
2016-02-14 12:28:17 ----A---- C:\WINDOWS\SYSWOW64\calc.exe
2016-02-14 12:28:17 ----A---- C:\WINDOWS\system32\calc.exe
2016-02-14 12:28:04 ----A---- C:\WINDOWS\SYSWOW64\WebClnt.dll
2016-02-14 12:28:04 ----A---- C:\WINDOWS\SYSWOW64\davclnt.dll
2016-02-14 12:28:04 ----A---- C:\WINDOWS\system32\WebClnt.dll
2016-02-14 12:28:04 ----A---- C:\WINDOWS\system32\davclnt.dll
2016-02-14 12:27:57 ----A---- C:\WINDOWS\system32\wuaext.dll
2016-02-14 12:27:57 ----A---- C:\WINDOWS\system32\wu.upgrade.ps.dll
2016-02-14 12:27:57 ----A---- C:\WINDOWS\system32\storewuauth.dll
2016-02-14 12:27:45 ----A---- C:\WINDOWS\SYSWOW64\msxml6.dll
2016-02-14 12:27:45 ----A---- C:\WINDOWS\SYSWOW64\msxml3.dll
2016-02-14 12:27:45 ----A---- C:\WINDOWS\system32\msxml6.dll
2016-02-14 12:27:45 ----A---- C:\WINDOWS\system32\msxml3.dll
2016-02-14 12:27:37 ----A---- C:\WINDOWS\system32\AuthHost.exe
2016-02-14 12:27:33 ----A---- C:\WINDOWS\system32\win32k.sys
2016-02-14 12:27:30 ----A---- C:\WINDOWS\SYSWOW64\pku2u.dll
2016-02-14 12:27:30 ----A---- C:\WINDOWS\system32\pku2u.dll
2016-02-14 12:27:24 ----A---- C:\WINDOWS\SYSWOW64\wow32.dll
2016-02-14 12:27:24 ----A---- C:\WINDOWS\SYSWOW64\user.exe
2016-02-14 12:27:24 ----A---- C:\WINDOWS\SYSWOW64\setup16.exe
2016-02-14 12:27:24 ----A---- C:\WINDOWS\SYSWOW64\instnm.exe
2016-02-14 12:27:24 ----A---- C:\WINDOWS\system32\wow64cpu.dll
2016-02-14 12:27:24 ----A---- C:\WINDOWS\system32\wow64.dll
2016-02-14 12:27:24 ----A---- C:\WINDOWS\system32\sysmain.dll
2016-02-14 12:27:24 ----A---- C:\WINDOWS\system32\drivers\mountmgr.sys
2016-02-14 12:26:56 ----A---- C:\WINDOWS\SYSWOW64\InkEd.dll
2016-02-14 12:26:56 ----A---- C:\WINDOWS\system32\InkEd.dll
2016-02-14 12:26:49 ----A---- C:\WINDOWS\SYSWOW64\SHCore.dll
2016-02-14 12:26:49 ----A---- C:\WINDOWS\system32\SHCore.dll
2016-02-14 12:26:36 ----A---- C:\WINDOWS\system32\drivers\tunnel.sys
2016-02-14 12:25:31 ----A---- C:\WINDOWS\system32\drivers\rmcast.sys
2016-02-14 12:25:21 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2016-02-14 12:25:21 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2016-02-14 12:25:21 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2016-02-14 12:25:21 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2016-02-14 12:25:21 ----A---- C:\WINDOWS\system32\urlmon.dll
2016-02-14 12:25:21 ----A---- C:\WINDOWS\system32\mshtml.dll
2016-02-14 12:25:21 ----A---- C:\WINDOWS\system32\iertutil.dll
2016-02-14 12:25:21 ----A---- C:\WINDOWS\system32\ieframe.dll
2016-02-14 12:24:48 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2016-02-14 12:24:48 ----A---- C:\WINDOWS\SYSWOW64\webcheck.dll
2016-02-14 12:24:48 ----A---- C:\WINDOWS\SYSWOW64\vbscript.dll
2016-02-14 12:24:48 ----A---- C:\WINDOWS\SYSWOW64\msrating.dll
2016-02-14 12:24:48 ----A---- C:\WINDOWS\SYSWOW64\mshtmled.dll
2016-02-14 12:24:48 ----A---- C:\WINDOWS\SYSWOW64\MshtmlDac.dll
2016-02-14 12:24:48 ----A---- C:\WINDOWS\SYSWOW64\msfeeds.dll
2016-02-14 12:24:48 ----A---- C:\WINDOWS\SYSWOW64\jscript9diag.dll
2016-02-14 12:24:48 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2016-02-14 12:24:48 ----A---- C:\WINDOWS\SYSWOW64\jscript.dll
2016-02-14 12:24:48 ----A---- C:\WINDOWS\SYSWOW64\inetcomm.dll
2016-02-14 12:24:48 ----A---- C:\WINDOWS\SYSWOW64\ieui.dll
2016-02-14 12:24:48 ----A---- C:\WINDOWS\SYSWOW64\iepeers.dll
2016-02-14 12:24:48 ----A---- C:\WINDOWS\SYSWOW64\iedkcs32.dll
2016-02-14 12:24:48 ----A---- C:\WINDOWS\SYSWOW64\ieapfltr.dll
2016-02-14 12:24:48 ----A---- C:\WINDOWS\SYSWOW64\hlink.dll
2016-02-14 12:24:48 ----A---- C:\WINDOWS\SYSWOW64\dxtrans.dll
2016-02-14 12:24:48 ----A---- C:\WINDOWS\SYSWOW64\dxtmsft.dll
2016-02-14 12:24:48 ----A---- C:\WINDOWS\SYSWOW64\actxprxy.dll
2016-02-14 12:24:48 ----A---- C:\WINDOWS\system32\wininet.dll
2016-02-14 12:24:48 ----A---- C:\WINDOWS\system32\webcheck.dll
2016-02-14 12:24:48 ----A---- C:\WINDOWS\system32\vbscript.dll
2016-02-14 12:24:48 ----A---- C:\WINDOWS\system32\msrating.dll
2016-02-14 12:24:48 ----A---- C:\WINDOWS\system32\mshtmled.dll
2016-02-14 12:24:48 ----A---- C:\WINDOWS\system32\MshtmlDac.dll
2016-02-14 12:24:48 ----A---- C:\WINDOWS\system32\msfeeds.dll
2016-02-14 12:24:48 ----A---- C:\WINDOWS\system32\jscript9diag.dll
2016-02-14 12:24:48 ----A---- C:\WINDOWS\system32\jscript9.dll
2016-02-14 12:24:48 ----A---- C:\WINDOWS\system32\jscript.dll
2016-02-14 12:24:48 ----A---- C:\WINDOWS\system32\inseng.dll
2016-02-14 12:24:48 ----A---- C:\WINDOWS\system32\inetcomm.dll
2016-02-14 12:24:48 ----A---- C:\WINDOWS\system32\ieui.dll
2016-02-14 12:24:48 ----A---- C:\WINDOWS\system32\iepeers.dll
2016-02-14 12:24:48 ----A---- C:\WINDOWS\system32\iedkcs32.dll
2016-02-14 12:24:48 ----A---- C:\WINDOWS\system32\ieapfltr.dll
2016-02-14 12:24:48 ----A---- C:\WINDOWS\system32\ie4uinit.exe
2016-02-14 12:24:48 ----A---- C:\WINDOWS\system32\hlink.dll
2016-02-14 12:24:48 ----A---- C:\WINDOWS\system32\dxtrans.dll
2016-02-14 12:24:48 ----A---- C:\WINDOWS\system32\dxtmsft.dll
2016-02-14 12:24:48 ----A---- C:\WINDOWS\system32\actxprxy.dll
2016-02-14 12:23:54 ----A---- C:\WINDOWS\SYSWOW64\dwmcore.dll
2016-02-14 12:23:54 ----A---- C:\WINDOWS\system32\dwmcore.dll
2016-02-14 12:23:50 ----A---- C:\WINDOWS\system32\drivers\mrxdav.sys
2016-02-14 12:23:45 ----A---- C:\WINDOWS\SYSWOW64\scesrv.dll
2016-02-14 12:23:45 ----A---- C:\WINDOWS\system32\scesrv.dll
2016-02-14 12:23:42 ----A---- C:\WINDOWS\SYSWOW64\atlthunk.dll
2016-02-14 12:23:40 ----A---- C:\WINDOWS\system32\profsvc.dll
2016-02-14 12:23:34 ----A---- C:\WINDOWS\SYSWOW64\ucrtbase.dll
2016-02-14 12:23:34 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-utility-l1-1-0.dll
2016-02-14 12:23:34 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-time-l1-1-0.dll
2016-02-14 12:23:34 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-string-l1-1-0.dll
2016-02-14 12:23:34 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-stdio-l1-1-0.dll
2016-02-14 12:23:34 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-runtime-l1-1-0.dll
2016-02-14 12:23:34 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-process-l1-1-0.dll
2016-02-14 12:23:34 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-private-l1-1-0.dll
2016-02-14 12:23:34 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-multibyte-l1-1-0.dll
2016-02-14 12:23:34 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-math-l1-1-0.dll
2016-02-14 12:23:34 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-locale-l1-1-0.dll
2016-02-14 12:23:34 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-heap-l1-1-0.dll
2016-02-14 12:23:34 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-filesystem-l1-1-0.dll
2016-02-14 12:23:34 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-environment-l1-1-0.dll
2016-02-14 12:23:34 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-convert-l1-1-0.dll
2016-02-14 12:23:34 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-conio-l1-1-0.dll
2016-02-14 12:23:34 ----A---- C:\WINDOWS\system32\ucrtbase.dll
2016-02-14 12:23:34 ----A---- C:\WINDOWS\system32\api-ms-win-crt-utility-l1-1-0.dll
2016-02-14 12:23:34 ----A---- C:\WINDOWS\system32\api-ms-win-crt-time-l1-1-0.dll
2016-02-14 12:23:34 ----A---- C:\WINDOWS\system32\api-ms-win-crt-string-l1-1-0.dll
2016-02-14 12:23:34 ----A---- C:\WINDOWS\system32\api-ms-win-crt-stdio-l1-1-0.dll
2016-02-14 12:23:34 ----A---- C:\WINDOWS\system32\api-ms-win-crt-runtime-l1-1-0.dll
2016-02-14 12:23:34 ----A---- C:\WINDOWS\system32\api-ms-win-crt-process-l1-1-0.dll
2016-02-14 12:23:34 ----A---- C:\WINDOWS\system32\api-ms-win-crt-private-l1-1-0.dll
2016-02-14 12:23:34 ----A---- C:\WINDOWS\system32\api-ms-win-crt-multibyte-l1-1-0.dll
2016-02-14 12:23:34 ----A---- C:\WINDOWS\system32\api-ms-win-crt-math-l1-1-0.dll
2016-02-14 12:23:34 ----A---- C:\WINDOWS\system32\api-ms-win-crt-locale-l1-1-0.dll
2016-02-14 12:23:34 ----A---- C:\WINDOWS\system32\api-ms-win-crt-heap-l1-1-0.dll
2016-02-14 12:23:34 ----A---- C:\WINDOWS\system32\api-ms-win-crt-filesystem-l1-1-0.dll
2016-02-14 12:23:34 ----A---- C:\WINDOWS\system32\api-ms-win-crt-environment-l1-1-0.dll
2016-02-14 12:23:34 ----A---- C:\WINDOWS\system32\api-ms-win-crt-convert-l1-1-0.dll
2016-02-14 12:23:34 ----A---- C:\WINDOWS\system32\api-ms-win-crt-conio-l1-1-0.dll
2016-02-14 12:23:19 ----A---- C:\WINDOWS\SYSWOW64\tquery.dll
2016-02-14 12:23:19 ----A---- C:\WINDOWS\SYSWOW64\SearchProtocolHost.exe
2016-02-14 12:23:19 ----A---- C:\WINDOWS\SYSWOW64\SearchIndexer.exe
2016-02-14 12:23:19 ----A---- C:\WINDOWS\SYSWOW64\mssvp.dll
2016-02-14 12:23:19 ----A---- C:\WINDOWS\SYSWOW64\mssrch.dll
2016-02-14 12:23:19 ----A---- C:\WINDOWS\SYSWOW64\mssph.dll
2016-02-14 12:23:19 ----A---- C:\WINDOWS\system32\tquery.dll
2016-02-14 12:23:19 ----A---- C:\WINDOWS\system32\SearchProtocolHost.exe
2016-02-14 12:23:19 ----A---- C:\WINDOWS\system32\SearchIndexer.exe
2016-02-14 12:23:19 ----A---- C:\WINDOWS\system32\mssvp.dll
2016-02-14 12:23:19 ----A---- C:\WINDOWS\system32\mssrch.dll
2016-02-14 12:23:19 ----A---- C:\WINDOWS\system32\mssphtb.dll
2016-02-14 12:23:19 ----A---- C:\WINDOWS\system32\mssph.dll
2016-02-14 12:21:52 ----A---- C:\WINDOWS\SYSWOW64\explorer.exe
2016-02-14 12:21:52 ----A---- C:\WINDOWS\explorer.exe
2016-02-14 12:21:50 ----A---- C:\WINDOWS\system32\consent.exe
2016-02-14 12:21:48 ----A---- C:\WINDOWS\SYSWOW64\untfs.dll
2016-02-14 12:21:48 ----A---- C:\WINDOWS\system32\untfs.dll
2016-02-14 12:21:43 ----A---- C:\WINDOWS\SYSWOW64\user32.dll
2016-02-14 12:21:43 ----A---- C:\WINDOWS\SYSWOW64\GdiPlus.dll
2016-02-14 12:21:43 ----A---- C:\WINDOWS\SYSWOW64\DWrite.dll
2016-02-14 12:21:43 ----A---- C:\WINDOWS\system32\user32.dll
2016-02-14 12:21:43 ----A---- C:\WINDOWS\system32\GdiPlus.dll
2016-02-14 12:21:43 ----A---- C:\WINDOWS\system32\FntCache.dll
2016-02-14 12:21:43 ----A---- C:\WINDOWS\system32\DWrite.dll
2016-02-14 12:21:32 ----A---- C:\WINDOWS\SYSWOW64\schannel.dll
2016-02-14 12:21:32 ----A---- C:\WINDOWS\SYSWOW64\ncryptsslp.dll
2016-02-14 12:21:32 ----A---- C:\WINDOWS\SYSWOW64\ncrypt.dll
2016-02-14 12:21:32 ----A---- C:\WINDOWS\SYSWOW64\bcryptprimitives.dll
2016-02-14 12:21:32 ----A---- C:\WINDOWS\system32\schannel.dll
2016-02-14 12:21:32 ----A---- C:\WINDOWS\system32\ncryptsslp.dll
2016-02-14 12:21:32 ----A---- C:\WINDOWS\system32\ncrypt.dll
2016-02-14 12:21:32 ----A---- C:\WINDOWS\system32\drivers\mrxsmb10.sys
2016-02-14 12:21:32 ----A---- C:\WINDOWS\system32\bcryptprimitives.dll
2016-02-14 12:21:20 ----A---- C:\WINDOWS\system32\drivers\tdx.sys
2016-02-14 12:21:20 ----A---- C:\WINDOWS\system32\drivers\afd.sys
2016-02-14 12:21:18 ----A---- C:\WINDOWS\SYSWOW64\GeofenceMonitorService.dll
2016-02-14 12:21:18 ----A---- C:\WINDOWS\system32\GeofenceMonitorService.dll
2016-02-14 12:21:14 ----A---- C:\WINDOWS\SYSWOW64\poqexec.exe
2016-02-14 12:21:14 ----A---- C:\WINDOWS\system32\poqexec.exe
2016-02-14 12:21:07 ----A---- C:\WINDOWS\SYSWOW64\rastapi.dll
2016-02-14 12:21:07 ----A---- C:\WINDOWS\system32\rastapi.dll
2016-02-14 12:21:03 ----A---- C:\WINDOWS\SYSWOW64\PCPKsp.dll
2016-02-14 12:21:03 ----A---- C:\WINDOWS\system32\PCPKsp.dll
2016-02-14 12:20:59 ----A---- C:\WINDOWS\system32\drivers\http.sys
2016-02-14 12:20:41 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Immersive.dll
2016-02-14 12:20:41 ----A---- C:\WINDOWS\SYSWOW64\shacct.dll
2016-02-14 12:20:41 ----A---- C:\WINDOWS\SYSWOW64\SettingSync.dll
2016-02-14 12:20:41 ----A---- C:\WINDOWS\system32\Windows.UI.Immersive.dll
2016-02-14 12:20:41 ----A---- C:\WINDOWS\system32\shacct.dll
2016-02-14 12:20:41 ----A---- C:\WINDOWS\system32\SettingSync.dll
2016-02-14 12:20:37 ----A---- C:\WINDOWS\SYSWOW64\msftedit.dll
2016-02-14 12:20:37 ----A---- C:\WINDOWS\system32\msftedit.dll
2016-02-14 12:20:35 ----A---- C:\WINDOWS\SYSWOW64\photowiz.dll
2016-02-14 12:20:35 ----A---- C:\WINDOWS\system32\photowiz.dll
2016-02-14 12:20:19 ----A---- C:\WINDOWS\SYSWOW64\appidapi.dll
2016-02-14 12:20:19 ----A---- C:\WINDOWS\system32\appidsvc.dll
2016-02-14 12:20:19 ----A---- C:\WINDOWS\system32\appidapi.dll
2016-02-14 12:20:16 ----A---- C:\WINDOWS\SYSWOW64\WerFaultSecure.exe
2016-02-14 12:20:16 ----A---- C:\WINDOWS\SYSWOW64\wer.dll
2016-02-14 12:20:16 ----A---- C:\WINDOWS\SYSWOW64\Faultrep.dll
2016-02-14 12:20:16 ----A---- C:\WINDOWS\system32\WerFaultSecure.exe
2016-02-14 12:20:16 ----A---- C:\WINDOWS\system32\werdiagcontroller.dll
2016-02-14 12:20:16 ----A---- C:\WINDOWS\system32\wer.dll
2016-02-14 12:20:16 ----A---- C:\WINDOWS\system32\Faultrep.dll
2016-02-14 12:20:16 ----A---- C:\WINDOWS\system32\EncDump.dll
2016-02-14 12:20:16 ----A---- C:\WINDOWS\system32\ci.dll
2016-02-14 12:20:16 ----A---- C:\WINDOWS\system32\audiosrv.dll
2016-02-14 12:20:16 ----A---- C:\WINDOWS\system32\AudioEndpointBuilder.dll
2016-02-14 12:17:34 ----D---- C:\Program Files (x86)\Reference Assemblies
2016-02-14 12:17:34 ----D---- C:\Program Files (x86)\MSBuild
2016-02-14 12:17:33 ----D---- C:\Program Files\Reference Assemblies
2016-02-14 12:17:33 ----D---- C:\Program Files\MSBuild
2016-02-14 12:16:49 ----A---- C:\WINDOWS\SYSWOW64\TsWpfWrp.exe
2016-02-14 12:16:48 ----A---- C:\WINDOWS\SYSWOW64\PresentationNative_v0300.dll
2016-02-14 12:16:47 ----A---- C:\WINDOWS\system32\TsWpfWrp.exe
2016-02-14 12:16:45 ----A---- C:\WINDOWS\system32\PresentationNative_v0300.dll
2016-02-14 12:16:29 ----A---- C:\WINDOWS\SYSWOW64\sdbinst.exe
2016-02-14 12:16:29 ----A---- C:\WINDOWS\system32\sdbinst.exe
2016-02-14 09:10:26 ----D---- C:\Program Files\trend micro
2016-02-14 09:10:25 ----D---- C:\rsit
2016-02-14 09:08:47 ----D---- C:\WINDOWS\LastGood
2016-02-14 08:59:47 ----D---- C:\Users\Kuchar\AppData\Roaming\Identities
2016-02-14 08:59:26 ----A---- C:\WINDOWS\system32\{F33C3B9B-72AF-418A-B3FD-560646F7CDA2}.bat
2016-02-14 04:29:40 ----A---- C:\WINDOWS\system32\emptyregdb.dat
2016-02-14 04:08:58 ----SD---- C:\Users\Kuchar\AppData\Roaming\Microsoft
2016-02-14 03:59:30 ----D---- C:\Program Files (x86)\USB Camera2
2016-02-14 03:59:19 ----D---- C:\Program Files\Realtek
2016-02-14 03:59:18 ----D---- C:\WINDOWS\SYSWOW64\RTCOM
2016-02-14 03:59:06 ----A---- C:\WINDOWS\SYSWOW64\oemdspif.dll
2016-02-14 03:59:06 ----A---- C:\WINDOWS\system32\nvvsvc.exe
2016-02-14 03:59:06 ----A---- C:\WINDOWS\system32\nvsvcr.dll
2016-02-14 03:59:06 ----A---- C:\WINDOWS\system32\nvsvc64.dll
2016-02-14 03:59:06 ----A---- C:\WINDOWS\system32\nvshext.dll
2016-02-14 03:59:06 ----A---- C:\WINDOWS\system32\nvmctray.dll
2016-02-14 03:59:06 ----A---- C:\WINDOWS\system32\nvcpl.dll
2016-02-14 03:59:06 ----A---- C:\WINDOWS\system32\nv3dappshextr.dll
2016-02-14 03:59:06 ----A---- C:\WINDOWS\system32\nv3dappshext.dll
2016-02-14 03:58:30 ----D---- C:\ProgramData\NVIDIA Corporation
2016-02-14 03:58:20 ----D---- C:\Program Files\NVIDIA Corporation
2016-02-14 03:58:20 ----D---- C:\Program Files (x86)\NVIDIA Corporation
2016-02-14 03:57:55 ----D---- C:\Program Files\Synaptics
2016-02-14 03:57:45 ----D---- C:\Program Files (x86)\Intel
2016-02-14 03:57:43 ----A---- C:\WINDOWS\SYSWOW64\OpenCL.DLL
2016-02-14 03:57:43 ----A---- C:\WINDOWS\system32\OpenCL.DLL
2016-02-14 03:55:11 ----D---- C:\WINDOWS\Prefetch
2016-02-14 00:27:44 ----D---- C:\Program Files\Speccy
2016-02-13 16:19:49 ----A---- C:\WINDOWS\system32\CompatTelRunner.exe
2016-01-25 03:26:33 ----D---- C:\Users\Kuchar\AppData\Roaming\BrawlhallaAir
2016-01-18 03:12:51 ----D---- C:\Users\Kuchar\AppData\Roaming\WinRAR
2016-01-18 03:12:36 ----D---- C:\Program Files\WinRAR
2016-01-16 22:23:54 ----A---- C:\WINDOWS\wininit.ini
2016-01-16 22:16:49 ----D---- C:\Users\Kuchar\AppData\Roaming\Opera Software
2016-01-16 22:08:47 ----D---- C:\ProgramData\Spybot - Search & Destroy

======List of files/folders modified in the last 1 month======

2016-02-14 12:50:43 ----RD---- C:\WINDOWS\ImmersiveControlPanel
2016-02-14 12:49:55 ----D---- C:\WINDOWS\SYSWOW64\setup
2016-02-14 12:49:55 ----D---- C:\WINDOWS\system32\setup
2016-02-14 12:48:01 ----D---- C:\WINDOWS\WinStore
2016-02-14 12:48:01 ----D---- C:\WINDOWS\SYSWOW64\wbem
2016-02-14 12:48:01 ----D---- C:\WINDOWS\SYSWOW64\slmgr
2016-02-14 12:48:01 ----D---- C:\WINDOWS\SYSWOW64\oobe
2016-02-14 12:48:01 ----D---- C:\WINDOWS\system32\slmgr
2016-02-14 12:48:01 ----D---- C:\WINDOWS\system32\migwiz
2016-02-14 12:48:01 ----D---- C:\WINDOWS\servicing
2016-02-14 12:48:01 ----D---- C:\WINDOWS\PolicyDefinitions
2016-02-14 12:48:01 ----D---- C:\Program Files\Windows Photo Viewer
2016-02-14 12:48:01 ----D---- C:\Program Files\Windows Mail
2016-02-14 12:48:01 ----D---- C:\Program Files\Windows Journal
2016-02-14 12:48:01 ----D---- C:\Program Files\Windows Defender
2016-02-14 12:48:01 ----D---- C:\Program Files\Internet Explorer
2016-02-14 12:48:01 ----D---- C:\Program Files\Common Files\System
2016-02-14 12:48:01 ----D---- C:\Program Files (x86)\Windows Photo Viewer
2016-02-14 12:48:01 ----D---- C:\Program Files (x86)\Windows Mail
2016-02-14 12:48:01 ----D---- C:\Program Files (x86)\Windows Defender
2016-02-14 12:48:01 ----D---- C:\Program Files (x86)\Internet Explorer
2016-02-14 12:48:00 ----D---- C:\WINDOWS\system32\wbem
2016-02-14 12:48:00 ----D---- C:\WINDOWS\system32\SystemResetPlatform
2016-02-14 12:48:00 ----D---- C:\WINDOWS\FileManager
2016-02-14 12:39:31 ----D---- C:\WINDOWS\system32\Boot
2016-02-14 12:38:32 ----RD---- C:\WINDOWS\ToastData
2016-02-14 12:34:01 ----RSD---- C:\WINDOWS\Fonts
2016-02-14 12:31:20 ----D---- C:\WINDOWS\apppatch
2016-02-14 12:30:52 ----A---- C:\WINDOWS\SYSWOW64\PrintConfig.dll
2016-02-14 12:27:27 ----D---- C:\WINDOWS\system32\drivers\en-US
2016-02-14 12:23:49 ----D---- C:\WINDOWS\system32\CodeIntegrity
2016-02-14 12:20:18 ----D---- C:\WINDOWS\system32\AdvancedInstallers
2016-02-14 09:10:26 ----RD---- C:\Program Files
2016-02-14 09:10:22 ----D---- C:\WINDOWS\CbsTemp
2016-02-14 09:10:08 ----SHD---- C:\System Volume Information
2016-02-14 09:08:58 ----D---- C:\WINDOWS\system32\restore
2016-02-14 09:08:54 ----D---- C:\WINDOWS\Temp
2016-02-14 09:08:48 ----RD---- C:\WINDOWS\System32
2016-02-14 09:08:47 ----D---- C:\WINDOWS\system32\drivers
2016-02-14 09:08:47 ----D---- C:\Windows
2016-02-14 09:08:46 ----D---- C:\WINDOWS\Inf
2016-02-14 09:08:40 ----D---- C:\WINDOWS\system32\DriverStore
2016-02-14 09:06:02 ----HD---- C:\Program Files\WindowsApps
2016-02-14 09:06:01 ----D---- C:\WINDOWS\AppReadiness
2016-02-14 09:04:27 ----HD---- C:\$Windows.~BT
2016-02-14 09:03:30 ----D---- C:\WINDOWS\system32\config
2016-02-14 09:00:52 ----SHD---- C:\$Recycle.Bin
2016-02-14 09:00:00 ----D---- C:\WINDOWS\system32\sru
2016-02-14 08:59:06 ----D---- C:\WINDOWS\SoftwareDistribution
2016-02-14 08:56:33 ----D---- C:\WINDOWS\system32\wdi
2016-02-14 04:30:35 ----D---- C:\WINDOWS\debug
2016-02-14 04:30:13 ----D---- C:\WINDOWS\Registration
2016-02-14 04:30:03 ----D---- C:\WINDOWS\system32\Tasks
2016-02-14 04:29:49 ----D---- C:\WINDOWS\system32\LogFiles
2016-02-14 04:29:48 ----HD---- C:\WINDOWS\system32\GroupPolicyUsers
2016-02-14 04:27:49 ----D---- C:\WINDOWS\system32\catroot2
2016-02-14 04:27:38 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2016-02-14 04:27:10 ----D---- C:\WINDOWS\SysWOW64
2016-02-14 04:27:10 ----A---- C:\WINDOWS\SYSWOW64\PerfStringBackup.INI
2016-02-14 04:26:49 ----RSD---- C:\WINDOWS\Media
2016-02-14 04:25:50 ----A---- C:\WINDOWS\SYSWOW64\log.txt
2016-02-14 04:20:26 ----D---- C:\WINDOWS\SYSWOW64\NV
2016-02-14 04:20:26 ----D---- C:\WINDOWS\system32\NV
2016-02-14 04:15:46 ----HD---- C:\WINDOWS\Installer
2016-02-14 04:15:46 ----D---- C:\WINDOWS\SYSWOW64\drivers
2016-02-14 04:15:46 ----D---- C:\WINDOWS\SYSWOW64\Atheros_L1e
2016-02-14 04:15:46 ----D---- C:\WINDOWS\system32\Sysprep
2016-02-14 04:15:46 ----D---- C:\WINDOWS\system32\AutoUpdateLicense
2016-02-14 04:15:45 ----D---- C:\WINDOWS\Tasks
2016-02-14 04:15:41 ----D---- C:\WINDOWS\WinSxS
2016-02-14 04:12:56 ----D---- C:\WINDOWS\system32\drivers\UMDF
2016-02-14 04:12:54 ----D---- C:\WINDOWS\SYSWOW64\WCN
2016-02-14 04:12:54 ----D---- C:\WINDOWS\SYSWOW64\sysprep
2016-02-14 04:12:54 ----D---- C:\WINDOWS\SYSWOW64\SMI
2016-02-14 04:12:54 ----D---- C:\WINDOWS\SYSWOW64\sk-SK
2016-02-14 04:12:54 ----D---- C:\WINDOWS\SYSWOW64\SDA
2016-02-14 04:12:53 ----D---- C:\WINDOWS\SYSWOW64\MUI
2016-02-14 04:12:53 ----D---- C:\WINDOWS\SYSWOW64\migwiz
2016-02-14 04:12:53 ----D---- C:\WINDOWS\SYSWOW64\LogFiles
2016-02-14 04:12:52 ----D---- C:\WINDOWS\SYSWOW64\IME
2016-02-14 04:12:52 ----D---- C:\WINDOWS\SYSWOW64\en-US
2016-02-14 04:12:52 ----D---- C:\WINDOWS\SYSWOW64\drivers\UMDF
2016-02-14 04:12:52 ----D---- C:\WINDOWS\SYSWOW64\catroot
2016-02-14 04:12:50 ----HD---- C:\WINDOWS\system32\WLANProfiles
2016-02-14 04:12:49 ----D---- C:\WINDOWS\system32\WCN
2016-02-14 04:12:49 ----D---- C:\WINDOWS\system32\spool
2016-02-14 04:12:46 ----D---- C:\WINDOWS\system32\sk-SK
2016-02-14 04:12:46 ----D---- C:\WINDOWS\system32\oobe
2016-02-14 04:12:46 ----D---- C:\WINDOWS\system32\NDF
2016-02-14 04:12:46 ----D---- C:\WINDOWS\system32\MUI
2016-02-14 04:12:46 ----D---- C:\WINDOWS\system32\MRT
2016-02-14 04:12:45 ----D---- C:\WINDOWS\system32\IME
2016-02-14 04:12:45 ----D---- C:\WINDOWS\system32\en-US
2016-02-14 04:11:40 ----D---- C:\WINDOWS\Migration
2016-02-14 04:11:39 ----D---- C:\WINDOWS\Microsoft.NET
2016-02-14 04:11:37 ----D---- C:\WINDOWS\Help
2016-02-14 04:11:37 ----D---- C:\WINDOWS\DigitalLocker
2016-02-14 04:11:36 ----RD---- C:\WINDOWS\assembly
2016-02-14 04:11:35 ----SD---- C:\ProgramData\Microsoft
2016-02-14 04:11:35 ----RD---- C:\Users
2016-02-14 04:11:35 ----HD---- C:\ProgramData
2016-02-14 04:11:35 ----D---- C:\ProgramData\PRICache
2016-02-14 04:11:32 ----SHD---- C:\Program Files (x86)\Windows Sidebar
2016-02-14 04:11:32 ----RD---- C:\Program Files (x86)
2016-02-14 04:11:32 ----D---- C:\Program Files (x86)\Windows Media Player
2016-02-14 04:11:29 ----D---- C:\Program Files (x86)\Common Files
2016-02-14 04:11:26 ----SHD---- C:\Program Files\Windows Sidebar
2016-02-14 04:11:26 ----D---- C:\Program Files\Windows Media Player
2016-02-14 04:11:25 ----D---- C:\Program Files\Common Files\microsoft shared
2016-02-14 04:11:24 ----D---- C:\Program Files\Common Files
2016-02-14 04:10:18 ----D---- C:\WINDOWS\system32\Recovery
2016-02-14 04:06:15 ----D---- C:\WINDOWS\Logs
2016-02-14 03:59:30 ----D---- C:\WINDOWS\twain_32
2016-02-14 03:59:30 ----D---- C:\WINDOWS\System
2016-02-14 03:57:50 ----D---- C:\WINDOWS\system32\catroot
2016-02-14 02:17:37 ----D---- C:\WINDOWS\AUInstallAgent
2016-02-14 00:33:54 ----A---- C:\WINDOWS\system32\MRT.exe
2016-02-13 22:56:24 ----D---- C:\Program Files (x86)\Steam
2016-02-13 22:17:22 ----D---- C:\Users\Kuchar\AppData\Roaming\TS3Client
2016-02-07 23:54:29 ----D---- C:\Users\Kuchar\AppData\Roaming\.minecraft
2016-02-06 06:55:35 ----D---- C:\ProgramData\Oracle
2016-02-06 06:26:15 ----D---- C:\Program Files (x86)\Java
2016-02-06 06:23:33 ----A---- C:\WINDOWS\SYSWOW64\WindowsAccessBridge-32.dll
2016-01-23 22:04:19 ----D---- C:\ProgramData\McAfee
2016-01-23 22:04:19 ----D---- C:\Program Files (x86)\McAfee
2016-01-23 22:04:10 ----D---- C:\Program Files\Common Files\mcafee
2016-01-23 22:01:15 ----HD---- C:\WINDOWS\ELAMBKUP
2016-01-17 21:12:28 ----RD---- C:\Program Files (x86)\Skype
2016-01-16 23:13:25 ----D---- C:\Program Files (x86)\Google
2016-01-16 22:10:59 ----D---- C:\Program Files\Common Files\AV
2016-01-16 21:27:12 ----D---- C:\Users\Kuchar\AppData\Roaming\Skype
2016-01-16 21:20:00 ----D---- C:\ProgramData\Skype

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 aswRvrt;avast! Revert; C:\WINDOWS\system32\drivers\aswRvrt.sys [2015-10-24 65224]
R0 aswVmm;avast! VM Monitor; C:\WINDOWS\system32\drivers\aswVmm.sys [2015-10-24 274808]
R0 iaStorA;iaStorA; C:\WINDOWS\System32\drivers\iaStorA.sys [2012-08-16 645952]
R0 LHDmgr;LHDmgr; C:\WINDOWS\System32\DRIVERS\LhdX64.sys [2012-12-01 39008]
R0 nvpciflt;nvpciflt; C:\WINDOWS\system32\DRIVERS\nvpciflt.sys [2015-02-23 31560]
R1 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr2.sys [2015-10-24 93528]
R1 aswSnx;aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [2015-12-31 1059656]
R1 aswSP;aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [2015-12-31 449992]
R1 vwififlt;@%SystemRoot%\System32\drivers\vwififlt.sys,-259; C:\WINDOWS\system32\DRIVERS\vwififlt.sys [2013-08-22 71680]
R2 aswHwid;avast! HardwareID; C:\WINDOWS\system32\drivers\aswHwid.sys [2015-10-24 28656]
R2 aswMonFlt;aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [2015-10-24 90968]
R2 aswStm;aswStm; C:\WINDOWS\system32\drivers\aswStm.sys [2015-10-24 153744]
R3 ACPIVPC;@oem17.inf,%ACPIVPC.SvcDesc%;Lenovo Virtual Power Controller Driver; C:\WINDOWS\System32\drivers\AcpiVpc.sys [2012-12-01 33560]
R3 bcbtums;@oem32.inf,%BCBTUMS.SvcDesc%;Bluetooth RAM Firmware Download USB Filter; C:\WINDOWS\system32\drivers\bcbtums.sys [2013-09-04 170712]
R3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Bluetooth Enumerator Service; C:\WINDOWS\system32\DRIVERS\BthEnum.sys [2014-11-21 53248]
R3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Bluetooth Low Energy Driver; C:\WINDOWS\system32\DRIVERS\BthLEEnum.sys [2014-11-21 226304]
R3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Bluetooth Device (Personal Area Network); C:\WINDOWS\system32\DRIVERS\bthpan.sys [2016-02-14 118272]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Bluetooth Radio USB Driver; C:\WINDOWS\System32\Drivers\BTHUSB.sys [2014-11-21 81920]
R3 btwampfl;@oem32.inf,%btwampfl.ServiceName%;btwampfl; C:\WINDOWS\system32\DRIVERS\btwampfl.sys [2013-09-04 166104]
R3 igfx;igfx; C:\WINDOWS\system32\DRIVERS\igdkmd64.sys [2015-08-27 3797424]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RTKVHD64.sys [2012-09-14 4083600]
R3 IntcDAud;@oem31.inf,%IntcDAud.SvcDesc%;Intel(R) Display Audio; C:\WINDOWS\system32\DRIVERS\IntcDAud.sys [2015-08-21 463112]
R3 iwdbus;@oem14.inf,%iwdbus.SVCDESC%;IWD Bus Enumerator; C:\WINDOWS\System32\drivers\iwdbus.sys [2015-07-20 38976]
R3 JMCR;JMCR; C:\WINDOWS\System32\drivers\jmcr.sys [2012-06-22 174176]
R3 L1C;@netl1c63x64.inf,%L1C.Service.DispName%;NDIS Miniport Driver for Qualcomm Atheros AR81xx PCI-E Ethernet Controller; C:\WINDOWS\system32\DRIVERS\L1C63x64.sys [2013-06-18 129224]
R3 MEIx64;@oem23.inf,%HECI_SvcDesc%;Intel(R) Management Engine Interface ; C:\WINDOWS\System32\drivers\HECIx64.sys [2012-07-03 62784]
R3 NETwNe64;@netwew00.inf,___ %NIC_Service_DispName_WIN8_64%;___ Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows 8 - 64 Bit; C:\WINDOWS\system32\DRIVERS\NETwew00.sys [2013-07-08 3344352]
R3 nvlddmkm;nvlddmkm; C:\WINDOWS\system32\DRIVERS\nvlddmkm.sys [2015-02-23 13045960]
R3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Bluetooth Device (RFCOMM Protocol TDI); C:\WINDOWS\system32\DRIVERS\rfcomm.sys [2016-02-14 167424]
R3 SmbDrvI;SmbDrvI; C:\WINDOWS\system32\DRIVERS\Smb_driver_Intel.sys [2012-09-17 43832]
R3 SynTP;@oem9.inf,%SynTP.SvcDesc%;Synaptics TouchPad Driver; C:\WINDOWS\system32\DRIVERS\SynTP.sys [2012-09-17 457528]
R3 usb3Hub;@oem15.inf,%usb3Hub.SVCDESC%;USB-IF USB 3.0 Hub; C:\WINDOWS\System32\drivers\usb3Hub.sys [2012-10-10 47072]
R3 vm332avs;@oem2.inf,%USBCamera.DeviceDesc2%;Lenovo Camera2; C:\WINDOWS\System32\Drivers\vm332avs.sys [2012-08-25 981112]
R3 vwifimp;@%SystemRoot%\System32\drivers\vwifimp.sys,-261; C:\WINDOWS\system32\DRIVERS\vwifimp.sys [2013-08-22 36864]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Bluetooth Port Driver; C:\WINDOWS\System32\Drivers\BTHport.sys [2016-02-14 1201664]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 avast! Antivirus;Avast Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2015-10-24 146600]
R2 BcmBtRSupport;@oem32.inf,%BlueBcmBtRSupport.SVCNAME%;Bluetooth Driver Management Service; C:\WINDOWS\system32\BtwRSupportService.exe [2012-10-01 2227992]
R2 btwdins;Bluetooth Service; C:\Program Files\Lenovo\Bluetooth Software\btwdins.exe [2012-10-22 957816]
R2 c2cautoupdatesvc;Skype Click to Call Updater; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [2016-01-08 1433216]
R2 c2cpnrsvc;Skype Click to Call PNR Service; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [2016-01-08 1773696]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\WINDOWS\System32\svchost.exe [2014-11-21 38792]
R2 EvtEng;Intel(R) PROSet/Wireless Event Log; C:\Program Files\Intel\WiFi\bin\EvtEng.exe [2012-07-18 627504]
R2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology; C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2012-08-16 7168]
R2 igfxCUIService1.0.0.0;Intel(R) HD Graphics Control Panel Service; C:\WINDOWS\system32\igfxCUIService.exe [2015-08-27 330136]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [2012-04-20 635104]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2012-06-25 166720]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2012-07-17 277824]
R2 nvsvc;NVIDIA Display Driver Service; C:\WINDOWS\system32\nvvsvc.exe [2015-02-04 934216]
R2 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [2012-10-02 1258856]
R2 RegSrvc;Intel(R) PROSet/Wireless Registry Service; C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe [2012-07-18 149296]
R2 UNS;Intel(R) Management and Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2012-07-17 365376]
R3 cphs;Intel(R) Content Protection HECI Service; C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe [2015-08-27 291744]
R3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2013-08-03 43696]
S2 gupdate;Google Update Service (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-10-23 144200]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2015-07-09 327296]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\WINDOWS\System32\svchost.exe [2014-11-21 38792]
S3 gupdatem;Google Update Service (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-10-23 144200]
S3 gusvc;Google Software Updater; C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe [2015-10-24 194032]
S3 MyWiFiDHCPDNS;Wireless PAN DHCP Server; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [2012-07-18 272176]
S3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2016-02-04 835152]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119673
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Kontrola logu, přehřívání pevného disku a využití na 100

#2 Příspěvek od Rudy »

Zdravím!
Spusťte tuto utilitu:
Stáhněte AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
Uložte na plochu
Ukončete všechny programy
Klikněte nejprve na >Scan< a pak na >Clean<.
Proběhne skenováni a pak se objeví log, který sem vložte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Harmony
Návštěvník
Návštěvník
Příspěvky: 154
Registrován: 24 lis 2014 16:29

Re: Kontrola logu, přehřívání pevného disku a využití na 100

#3 Příspěvek od Harmony »

Tohle se objevilo, když jsem klikl na cleaning. https://ctrlv.cz/9TJ9

# AdwCleaner v5.033 - Logfile created 14/02/2016 at 12:49:49
# Updated 07/02/2016 by Xplode
# Database : 2016-02-07.2 [Server]
# Operating system : Windows 8.1 (x64)
# Username : Kuchar - IDEAHL-PC
# Running from : C:\Users\Kuchar\Desktop\adwcleaner_5.033.exe
# Option : Cleaning
# Support : http://toolslib.net/forum

***** [ Services ] *****


***** [ Folders ] *****

[-] Folder Deleted : C:\Program Files (x86)\Amazon\ABB

***** [ Files ] *****


***** [ DLLs ] *****


***** [ Shortcuts ] *****


***** [ Scheduled tasks ] *****


***** [ Registry ] *****

[-] Key Deleted : HKCU\Software\Pokki

***** [ Web browsers ] *****


*************************

:: "Tracing" keys removed
:: Winsock settings cleared

########## EOF - C:\AdwCleaner\AdwCleaner[C1].txt - [753 bytes] ##########

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119673
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Kontrola logu, přehřívání pevného disku a využití na 100

#4 Příspěvek od Rudy »

Dejte nový log RSIT.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Harmony
Návštěvník
Návštěvník
Příspěvky: 154
Registrován: 24 lis 2014 16:29

Re: Kontrola logu, přehřívání pevného disku a využití na 100

#5 Příspěvek od Harmony »

Logfile of random's system information tool 1.10 (written by random/random)
Run by Kuchar at 2016-02-14 17:53:42
Microsoft Windows 8.1
System drive C: has 857 GB (95%) free of 905 GB
Total RAM: 3962 MB (39% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 5:53:47 PM, on 2/14/2016
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.18123)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Program Files (x86)\USB Camera2\VM332STI.EXE
C:\Program Files\AVAST Software\Avast\avastui.exe
C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Program Files (x86)\Steam\Steam.exe
C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe
C:\Program Files (x86)\Steam\GameOverlayUI.exe
C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
C:\Program Files\trend micro\Kuchar.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://lenovo13.msn.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://lenovo13.msn.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O4 - HKLM\..\Run: [332BigDog] C:\Program Files (x86)\USB Camera2\VM332STI.EXE
O4 - HKLM\..\Run: [IAStorIcon] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe "C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe" 60
O4 - HKLM\..\Run: [Dolby Home Theater v4] "C:\Program Files (x86)\Dolby Home Theater v4\pcee4.exe" -autostart
O4 - HKLM\..\Run: [WindowsDriverScan86] C:\Program Files (x86)\Adobe Arkalis\Arkalis86.lnk
O4 - HKLM\..\Run: [WindowsDriverScan64] C:\Program Files (x86)\Adobe Arkalis\Arkalis.lnk
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKCU\..\Run: [SpybotPostWindows10UpgradeReInstall] "C:\Program Files\Common Files\AV\Spybot - Search and Destroy\Test.exe"
O4 - Global Startup: Bluetooth.lnk = ?
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O20 - AppInit_DLLs: C:\WINDOWS\SysWOW64\nvinit.dll
O20 - Winlogon Notify: SDWinLogon - SDWinLogon.dll (file missing)
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: @oem32.inf,%BlueBcmBtRSupport.SVCNAME%;Bluetooth Driver Management Service (BcmBtRSupport) - Unknown owner - C:\WINDOWS\system32\BtwRSupportService.exe (file missing)
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel(R) Corporation - C:\Program Files\Intel\WiFi\bin\EvtEng.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: NVIDIA GeForce Experience Service (GfExperienceService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) - Unknown owner - C:\WINDOWS\system32\igfxCUIService.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: Wireless PAN DHCP Server (MyWiFiDHCPDNS) - Unknown owner - C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Streamer Network Service (NvStreamNetworkSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\WINDOWS\system32\nvvsvc.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel(R) Corporation - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Zero Configuration Service (ZeroConfigService) - Intel® Corporation - C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe

--
End of file - 9082 bytes

======Listing Processes======





wininit.exe

winlogon.exe

C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
"dwm.exe"
"C:\WINDOWS\system32\nvvsvc.exe"
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\WINDOWS\system32\nvvsvc.exe -session -first
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\system32\igfxCUIService.exe
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k NetworkService
C:\WINDOWS\system32\WLANExt.exe 616945513744
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
\??\C:\WINDOWS\system32\conhost.exe 0x4
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
C:\WINDOWS\System32\svchost.exe -k utcsvc
dashost.exe {b2140a8c-dbe5-44eb-941aa0102830f6c5}
"C:\Program Files\Intel\WiFi\bin\EvtEng.exe"
"C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe"
"C:\Program Files\Intel\iCLS Client\HeciServer.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe"
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe"
"C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe"
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-c36fcf67-e66a-44af-a278-f949315e11ff -SystemEventPortName:HostProcess-d05a3f98-3f29-488b-9587-2b18e2faac0b -IoCancelEventPortName:HostProcess-a71a4891-e497-4b60-ad65-ea4738fe2571 -NonStateChangingEventPortName:HostProcess-e421fb60-d3ce-4da0-852b-ecf92476cdc3 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:5c87cb7d-7653-425e-8823-89a0f0c5b34d -DeviceGroupId:WudfDefaultDevicePool
taskhostex.exe
C:\WINDOWS\Explorer.EXE
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe"
ClassicStartMenu.exe -startup
C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe" serviceapp
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1"
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /FORPCEE4
"C:\Program Files\Realtek\Audio\HDA\FMAPP.exe"
"C:\Windows\System32\igfxTray.exe"
"C:\WINDOWS\system32\igfxEM.exe" -Embedding
"C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe"
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\Lenovo\Energy Management\utility.exe"
C:\WINDOWS\system32\wbem\wmiprvse.exe
igfxHK.exe
"C:\Program Files (x86)\USB Camera2\VM332STI.EXE"
"C:\Program Files\AVAST Software\Avast\avastui.exe" /nogui
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe"
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
C:\WINDOWS\system32\DllHost.exe /Processid:{478B41E6-3257-4519-BDA8-E971F9843849}
"C:\Program Files\CCleaner\CCleaner64.exe" /monitor

"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="5776.0.1736951204\925471599" --supports-dual-gpus=false --gpu-driver-bug-workarounds=2,24,52 --gpu-vendor-id=0x8086 --gpu-device-id=0x0166 --gpu-driver-vendor="Intel Corporation" --gpu-driver-version=10.18.10.4276 --ignored=" --type=renderer " /prefetch:822062411
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --disable-databases --lang=cs --force-fieldtrials=AffiliationBasedMatching/EnabledThroughFieldTrial/AppBannerTriggering/Aggressive/AsyncSetAsDefault/Disabled/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_5/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/1DaySingleProfile/*ExtensionActionRedesign/Default/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/*IntelligentSessionRestore/Enabled2/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Postperiod_AnswersInSuggest_A4/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*PasswordManagerSettingsMigration/Disable/*QUIC/EnabledCWNDBootstrap/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Disabled/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/SlimmingPaint/EnableSlimmingPaint/*SpdyEnableDependencies/Control/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/default/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/*VarationsServiceControl/Interval_30min/WebRTC-LocalIPPermissionCheck/Default/WebRTC-PeerConnectionDTLS1.2/Enabled/ --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="5776.3.2065846801\884759330" --font-cache-shared-handle=3932 /prefetch:673131151
taskeng.exe {B16187A5-72C0-4383-B2B3-236BA5717CF1}
"C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /ua /installsource scheduler
"C:\Program Files (x86)\Steam\Steam.exe"
"C:\Program Files (x86)\Steam\bin\steamwebhelper.exe" -cachedir="C:\Users\Kuchar\AppData\Local\Steam\htmlcache" -steampid=1516 -buildid=1454620878 -steamid="0" --disable-gpu-compositing --disable-gpu --process-per-tab --enable-system-flash --disable-spell-checking --enable-widevine-cdm --enable-direct-write
"C:\Program Files (x86)\Common Files\Steam\SteamService.exe" /RunAsService
"C:\Program Files (x86)\Steam\bin\steamwebhelper.exe" --type=renderer --disable-gpu-compositing --enable-pinch --lang=en-US --lang=en-US --log-file="C:\Program Files (x86)\Steam\bin\debug.log" --product-version="Valve Steam Client" --disable-spell-checking --enable-system-flash --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --disable-gpu-compositing --channel="3064.0.768151511\312219005" --font-cache-shared-handle=1304 /prefetch:673131151
"C:\Program Files (x86)\Steam\bin\steamwebhelper.exe" --type=renderer --disable-gpu-compositing --enable-pinch --lang=en-US --lang=en-US --log-file="C:\Program Files (x86)\Steam\bin\debug.log" --product-version="Valve Steam Client" --disable-spell-checking --enable-system-flash --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --disable-gpu-compositing --channel="3064.2.1395143142\579236667" --font-cache-shared-handle=1680 /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=ppapi --channel="5776.14.682063032\1239757098" --ppapi-flash-args --lang=cs --device-scale-factor=1 --font-cache-shared-handle=5332 --ignored=" --type=renderer " /prefetch:-632637702
"C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe" -steam +clientport 27030 +mat_queue_mode 2 -high -nojoy -threads 4 -nod3d9ex +exec autoexec -freq 60 -processheap
C:\Program Files (x86)\Steam\GameOverlayUI.exe -pid 32 -manuallyclearframes 0
"C:\Program Files (x86)\Steam\bin\steamwebhelper.exe" --type=renderer --disable-gpu-compositing --enable-pinch --lang=en-US --lang=en-US --log-file="C:\Program Files (x86)\Steam\bin\debug.log" --product-version="Valve Steam Client" --disable-spell-checking --enable-system-flash --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --disable-gpu-compositing --channel="3064.19.331014820\1967881662" --font-cache-shared-handle=3860 /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --disable-databases --lang=cs --force-fieldtrials=AffiliationBasedMatching/EnabledThroughFieldTrial/AppBannerTriggering/Aggressive/AsyncSetAsDefault/Disabled/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_5/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/1DaySingleProfile/*ExtensionActionRedesign/Default/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/*IntelligentSessionRestore/Enabled2/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Postperiod_AnswersInSuggest_A4/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*PasswordManagerSettingsMigration/Disable/*QUIC/EnabledCWNDBootstrap/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Disabled/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/*SafeBrowsingUpdateFrequency/Default/SlimmingPaint/EnableSlimmingPaint/*SpdyEnableDependencies/Control/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/default/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/*VarationsServiceControl/Interval_30min/WebRTC-LocalIPPermissionCheck/Default/WebRTC-PeerConnectionDTLS1.2/Enabled/ --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="5776.17.1292063021\559134712" --font-cache-shared-handle=5832 /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --disable-databases --lang=cs --force-fieldtrials=AffiliationBasedMatching/EnabledThroughFieldTrial/AppBannerTriggering/Aggressive/AsyncSetAsDefault/Disabled/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_5/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/1DaySingleProfile/*ExtensionActionRedesign/Default/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/*IntelligentSessionRestore/Enabled2/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Postperiod_AnswersInSuggest_A4/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*PasswordManagerSettingsMigration/Disable/*QUIC/EnabledCWNDBootstrap/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/Disabled/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/*SafeBrowsingUpdateFrequency/Default/SlimmingPaint/EnableSlimmingPaint/*SpdyEnableDependencies/Control/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group3/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/default/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/*VarationsServiceControl/Interval_30min/WebRTC-LocalIPPermissionCheck/Default/WebRTC-PeerConnectionDTLS1.2/Enabled/ --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=2 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="5776.18.972927\1358320511" --font-cache-shared-handle=5396 /prefetch:673131151
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe11_ Global\UsGthrCtrlFltPipeMssGthrPipe11 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 584 588 596 65536 592
"C:\Users\Kuchar\Downloads\RSITx64.exe"

======Scheduled tasks folder======

C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2016-02-14 901600]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2016-02-14 678656]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"NvBackend"=C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2016-01-23 2787264]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2012-09-14 12921488]
"RtHDVBg_Dolby"=C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2012-09-14 1214608]
"IgfxTray"=C:\windows\system32\igfxtray.exe [2015-08-27 395168]
"OnekeyStudio"=C:\Program Files\Lenovo\Onekey Theater\OnekeyStudio.exe [2012-08-10 4196432]
"Energy Management"=C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe [2012-12-01 17080376]
"EnergyUtility"=C:\Program Files (x86)\Lenovo\Energy Management\Utility.exe [2012-12-01 191544]
"Classic Start Menu"=C:\Program Files\Classic Shell\ClassicStartMenu.exe [2015-11-12 161728]
"ShadowPlay"=C:\WINDOWS\system32\nvspcap64.dll [2016-01-23 1859936]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2015-09-16 8461224]
"SpybotPostWindows10UpgradeReInstall"=C:\Program Files\Common Files\AV\Spybot - Search and Destroy\Test.exe [2015-07-29 1011200]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"332BigDog"=C:\Program Files (x86)\USB Camera2\VM332STI.EXE [2012-03-20 548864]
"IAStorIcon"=C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe [2012-08-23 56128]
"Dolby Home Theater v4"=C:\Program Files (x86)\Dolby Home Theater v4\pcee4.exe [2012-07-26 508656]
"WindowsDriverScan86"=C:\Program Files (x86)\Adobe Arkalis\Arkalis86.lnk [2014-08-10 1501]
"WindowsDriverScan64"=C:\Program Files (x86)\Adobe Arkalis\Arkalis.lnk [2014-08-10 1419]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2016-02-14 7139768]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Bluetooth.lnk - C:\Program Files\Lenovo\Bluetooth Software\BTTray.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\windows\system32\nvinitx.dll,C:\WINDOWS\system32\nvinitx.dll"

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"SoftwareSASGeneration"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe"="C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe:*:Enabled:Spybot - Search & Destroy tray access"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe"="C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe:*:Enabled:Spybot-S&D 2 Scanner Service"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe"="C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe:*:Enabled:Spybot-S&D 2 Updater"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe"="C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe:*:Enabled:Spybot-S&D 2 Background update service"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"VIDC.YUY2"=msyuv.dll
"vidc.i420"=iyuv_32.dll
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"VIDC.YVYU"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"vidc.msvc"=msvidc32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2016-02-14 13:19:20 ----D---- C:\WINDOWS\pss
2016-02-14 12:52:34 ----SHD---- C:\Recovery
2016-02-14 12:52:22 ----DC---- C:\WINDOWS\Panther
2016-02-14 12:51:49 ----D---- C:\Windows.old
2016-02-14 12:50:31 ----A---- C:\WINDOWS\system32\fhcpl.dll
2016-02-14 12:50:18 ----A---- C:\WINDOWS\SYSWOW64\rdvidcrl.dll
2016-02-14 12:50:18 ----A---- C:\WINDOWS\SYSWOW64\mstscax.dll
2016-02-14 12:50:18 ----A---- C:\WINDOWS\system32\rdvidcrl.dll
2016-02-14 12:50:18 ----A---- C:\WINDOWS\system32\mstscax.dll
2016-02-14 12:50:06 ----A---- C:\WINDOWS\SYSWOW64\d2d1.dll
2016-02-14 12:50:06 ----A---- C:\WINDOWS\system32\d2d1.dll
2016-02-14 12:49:59 ----A---- C:\WINDOWS\system32\SettingsHandlers.dll
2016-02-14 12:49:37 ----A---- C:\WINDOWS\SYSWOW64\WSDApi.dll
2016-02-14 12:49:37 ----A---- C:\WINDOWS\SYSWOW64\WinSCard.dll
2016-02-14 12:49:37 ----A---- C:\WINDOWS\SYSWOW64\vsstrace.dll
2016-02-14 12:49:37 ----A---- C:\WINDOWS\SYSWOW64\vssapi.dll
2016-02-14 12:49:37 ----A---- C:\WINDOWS\SYSWOW64\rasser.dll
2016-02-14 12:49:37 ----A---- C:\WINDOWS\SYSWOW64\rasmxs.dll
2016-02-14 12:49:37 ----A---- C:\WINDOWS\SYSWOW64\rasdiag.dll
2016-02-14 12:49:37 ----A---- C:\WINDOWS\SYSWOW64\rascfg.dll
2016-02-14 12:49:37 ----A---- C:\WINDOWS\SYSWOW64\rasapi32.dll
2016-02-14 12:49:37 ----A---- C:\WINDOWS\SYSWOW64\QSVRMGMT.DLL
2016-02-14 12:49:37 ----A---- C:\WINDOWS\SYSWOW64\QSHVHOST.DLL
2016-02-14 12:49:37 ----A---- C:\WINDOWS\SYSWOW64\mfplat.dll
2016-02-14 12:49:37 ----A---- C:\WINDOWS\SYSWOW64\mfmp4srcsnk.dll
2016-02-14 12:49:37 ----A---- C:\WINDOWS\SYSWOW64\MFMediaEngine.dll
2016-02-14 12:49:37 ----A---- C:\WINDOWS\SYSWOW64\eventcls.dll
2016-02-14 12:49:37 ----A---- C:\WINDOWS\SYSWOW64\dnsapi.dll
2016-02-14 12:49:37 ----A---- C:\WINDOWS\SYSWOW64\DevicePairing.dll
2016-02-14 12:49:37 ----A---- C:\WINDOWS\SYSWOW64\AppxAllUserStore.dll
2016-02-14 12:49:37 ----A---- C:\WINDOWS\system32\WSDMon.dll
2016-02-14 12:49:37 ----A---- C:\WINDOWS\system32\WSDApi.dll
2016-02-14 12:49:37 ----A---- C:\WINDOWS\system32\WinSCard.dll
2016-02-14 12:49:37 ----A---- C:\WINDOWS\system32\VSSVC.exe
2016-02-14 12:49:37 ----A---- C:\WINDOWS\system32\vsstrace.dll
2016-02-14 12:49:37 ----A---- C:\WINDOWS\system32\vssapi.dll
2016-02-14 12:49:37 ----A---- C:\WINDOWS\system32\vpnike.dll
2016-02-14 12:49:37 ----A---- C:\WINDOWS\system32\SyncEngine.dll
2016-02-14 12:49:37 ----A---- C:\WINDOWS\system32\spoolsv.exe
2016-02-14 12:49:37 ----A---- C:\WINDOWS\system32\SkyDriveTelemetry.dll
2016-02-14 12:49:37 ----A---- C:\WINDOWS\system32\SkyDrive.exe
2016-02-14 12:49:37 ----A---- C:\WINDOWS\system32\rasser.dll
2016-02-14 12:49:37 ----A---- C:\WINDOWS\system32\rasmxs.dll
2016-02-14 12:49:37 ----A---- C:\WINDOWS\system32\rasdiag.dll
2016-02-14 12:49:37 ----A---- C:\WINDOWS\system32\rascfg.dll
2016-02-14 12:49:37 ----A---- C:\WINDOWS\system32\rasapi32.dll
2016-02-14 12:49:37 ----A---- C:\WINDOWS\system32\QSVRMGMT.DLL
2016-02-14 12:49:37 ----A---- C:\WINDOWS\system32\QSHVHOST.DLL
2016-02-14 12:49:37 ----A---- C:\WINDOWS\system32\mfplat.dll
2016-02-14 12:49:37 ----A---- C:\WINDOWS\system32\mfmp4srcsnk.dll
2016-02-14 12:49:37 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll
2016-02-14 12:49:37 ----A---- C:\WINDOWS\system32\eventcls.dll
2016-02-14 12:49:37 ----A---- C:\WINDOWS\system32\drivers\wanarp.sys
2016-02-14 12:49:37 ----A---- C:\WINDOWS\system32\drivers\rasl2tp.sys
2016-02-14 12:49:37 ----A---- C:\WINDOWS\system32\drivers\ndproxy.sys
2016-02-14 12:49:37 ----A---- C:\WINDOWS\system32\drivers\ndistapi.sys
2016-02-14 12:49:37 ----A---- C:\WINDOWS\system32\drivers\dam.sys
2016-02-14 12:49:37 ----A---- C:\WINDOWS\system32\drivers\agilevpn.sys
2016-02-14 12:49:37 ----A---- C:\WINDOWS\system32\DevicePairing.dll
2016-02-14 12:49:37 ----A---- C:\WINDOWS\system32\AppxAllUserStore.dll
2016-02-14 12:49:37 ----A---- C:\WINDOWS\splwow64.exe
2016-02-14 12:49:35 ----A---- C:\WINDOWS\system32\drivers\vhdmp.sys
2016-02-14 12:49:35 ----A---- C:\WINDOWS\system32\drivers\pdc.sys
2016-02-14 12:49:35 ----A---- C:\WINDOWS\system32\drivers\netio.sys
2016-02-14 12:49:35 ----A---- C:\WINDOWS\system32\drivers\intelpep.sys
2016-02-14 12:49:35 ----A---- C:\WINDOWS\system32\dnsrslvr.dll
2016-02-14 12:49:35 ----A---- C:\WINDOWS\system32\dnsapi.dll
2016-02-14 12:48:01 ----D---- C:\WINDOWS\SYSWOW64\drivers\sk-SK
2016-02-14 12:48:01 ----D---- C:\WINDOWS\system32\sk
2016-02-14 12:48:01 ----D---- C:\WINDOWS\system32\drivers\sk-SK
2016-02-14 12:48:01 ----D---- C:\WINDOWS\sk-SK
2016-02-14 12:41:13 ----A---- C:\WINDOWS\SYSWOW64\dbghelp.dll
2016-02-14 12:41:13 ----A---- C:\WINDOWS\SYSWOW64\dbgeng.dll
2016-02-14 12:41:13 ----A---- C:\WINDOWS\system32\dbghelp.dll
2016-02-14 12:41:13 ----A---- C:\WINDOWS\system32\dbgeng.dll
2016-02-14 12:40:59 ----A---- C:\WINDOWS\SYSWOW64\WMVXENCD.DLL
2016-02-14 12:40:59 ----A---- C:\WINDOWS\SYSWOW64\WMVSENCD.DLL
2016-02-14 12:40:59 ----A---- C:\WINDOWS\SYSWOW64\WMVSDECD.DLL
2016-02-14 12:40:59 ----A---- C:\WINDOWS\SYSWOW64\WMVENCOD.DLL
2016-02-14 12:40:59 ----A---- C:\WINDOWS\SYSWOW64\WMVDECOD.DLL
2016-02-14 12:40:59 ----A---- C:\WINDOWS\SYSWOW64\WMSPDMOE.DLL
2016-02-14 12:40:59 ----A---- C:\WINDOWS\SYSWOW64\WMSPDMOD.DLL
2016-02-14 12:40:59 ----A---- C:\WINDOWS\SYSWOW64\WMADMOE.DLL
2016-02-14 12:40:59 ----A---- C:\WINDOWS\SYSWOW64\WMADMOD.DLL
2016-02-14 12:40:59 ----A---- C:\WINDOWS\SYSWOW64\VIDRESZR.DLL
2016-02-14 12:40:59 ----A---- C:\WINDOWS\SYSWOW64\RESAMPLEDMO.DLL
2016-02-14 12:40:59 ----A---- C:\WINDOWS\SYSWOW64\quartz.dll
2016-02-14 12:40:59 ----A---- C:\WINDOWS\SYSWOW64\qdvd.dll
2016-02-14 12:40:59 ----A---- C:\WINDOWS\SYSWOW64\msmpeg2adec.dll
2016-02-14 12:40:59 ----A---- C:\WINDOWS\SYSWOW64\MPG4DECD.DLL
2016-02-14 12:40:59 ----A---- C:\WINDOWS\SYSWOW64\MP4SDECD.DLL
2016-02-14 12:40:59 ----A---- C:\WINDOWS\SYSWOW64\MP43DECD.DLL
2016-02-14 12:40:59 ----A---- C:\WINDOWS\SYSWOW64\MP3DMOD.DLL
2016-02-14 12:40:59 ----A---- C:\WINDOWS\SYSWOW64\MFWMAAEC.DLL
2016-02-14 12:40:59 ----A---- C:\WINDOWS\SYSWOW64\mfvdsp.dll
2016-02-14 12:40:59 ----A---- C:\WINDOWS\SYSWOW64\mfsvr.dll
2016-02-14 12:40:59 ----A---- C:\WINDOWS\SYSWOW64\mfps.dll
2016-02-14 12:40:59 ----A---- C:\WINDOWS\SYSWOW64\mfnetsrc.dll
2016-02-14 12:40:59 ----A---- C:\WINDOWS\SYSWOW64\mfnetcore.dll
2016-02-14 12:40:59 ----A---- C:\WINDOWS\SYSWOW64\mfcore.dll
2016-02-14 12:40:59 ----A---- C:\WINDOWS\SYSWOW64\evr.dll
2016-02-14 12:40:59 ----A---- C:\WINDOWS\SYSWOW64\devenum.dll
2016-02-14 12:40:59 ----A---- C:\WINDOWS\SYSWOW64\COLORCNV.DLL
2016-02-14 12:40:59 ----A---- C:\WINDOWS\system32\WMVXENCD.DLL
2016-02-14 12:40:59 ----A---- C:\WINDOWS\system32\WMVSENCD.DLL
2016-02-14 12:40:59 ----A---- C:\WINDOWS\system32\WMVSDECD.DLL
2016-02-14 12:40:59 ----A---- C:\WINDOWS\system32\WMVENCOD.DLL
2016-02-14 12:40:59 ----A---- C:\WINDOWS\system32\WMVDECOD.DLL
2016-02-14 12:40:59 ----A---- C:\WINDOWS\system32\WMSPDMOE.DLL
2016-02-14 12:40:59 ----A---- C:\WINDOWS\system32\WMSPDMOD.DLL
2016-02-14 12:40:59 ----A---- C:\WINDOWS\system32\WMALFXGFXDSP.dll
2016-02-14 12:40:59 ----A---- C:\WINDOWS\system32\WMADMOE.DLL
2016-02-14 12:40:59 ----A---- C:\WINDOWS\system32\WMADMOD.DLL
2016-02-14 12:40:59 ----A---- C:\WINDOWS\system32\VIDRESZR.DLL
2016-02-14 12:40:59 ----A---- C:\WINDOWS\system32\SysFxUI.dll
2016-02-14 12:40:59 ----A---- C:\WINDOWS\system32\RESAMPLEDMO.DLL
2016-02-14 12:40:59 ----A---- C:\WINDOWS\system32\quartz.dll
2016-02-14 12:40:59 ----A---- C:\WINDOWS\system32\qdvd.dll
2016-02-14 12:40:59 ----A---- C:\WINDOWS\system32\msmpeg2adec.dll
2016-02-14 12:40:59 ----A---- C:\WINDOWS\system32\MPG4DECD.DLL
2016-02-14 12:40:59 ----A---- C:\WINDOWS\system32\MP4SDECD.DLL
2016-02-14 12:40:59 ----A---- C:\WINDOWS\system32\MP43DECD.DLL
2016-02-14 12:40:59 ----A---- C:\WINDOWS\system32\MP3DMOD.DLL
2016-02-14 12:40:59 ----A---- C:\WINDOWS\system32\MFWMAAEC.DLL
2016-02-14 12:40:59 ----A---- C:\WINDOWS\system32\mfvdsp.dll
2016-02-14 12:40:59 ----A---- C:\WINDOWS\system32\mfsvr.dll
2016-02-14 12:40:59 ----A---- C:\WINDOWS\system32\mfps.dll
2016-02-14 12:40:59 ----A---- C:\WINDOWS\system32\mfnetsrc.dll
2016-02-14 12:40:59 ----A---- C:\WINDOWS\system32\mfnetcore.dll
2016-02-14 12:40:59 ----A---- C:\WINDOWS\system32\mfcore.dll
2016-02-14 12:40:59 ----A---- C:\WINDOWS\system32\evr.dll
2016-02-14 12:40:59 ----A---- C:\WINDOWS\system32\devenum.dll
2016-02-14 12:40:59 ----A---- C:\WINDOWS\system32\COLORCNV.DLL
2016-02-14 12:40:41 ----A---- C:\WINDOWS\SYSWOW64\PhotoMetadataHandler.dll
2016-02-14 12:40:41 ----A---- C:\WINDOWS\system32\PhotoMetadataHandler.dll
2016-02-14 12:40:36 ----A---- C:\WINDOWS\SYSWOW64\notepad.exe
2016-02-14 12:40:36 ----A---- C:\WINDOWS\system32\notepad.exe
2016-02-14 12:40:36 ----A---- C:\WINDOWS\notepad.exe
2016-02-14 12:40:31 ----A---- C:\WINDOWS\system32\drivers\udfs.sys
2016-02-14 12:40:22 ----A---- C:\WINDOWS\SYSWOW64\authz.dll
2016-02-14 12:40:22 ----A---- C:\WINDOWS\system32\authz.dll
2016-02-14 12:40:17 ----A---- C:\WINDOWS\SYSWOW64\MrmCoreR.dll
2016-02-14 12:40:17 ----A---- C:\WINDOWS\system32\MrmCoreR.dll
2016-02-14 12:40:03 ----A---- C:\WINDOWS\system32\SystemSettingsDatabase.dll
2016-02-14 12:40:03 ----A---- C:\WINDOWS\system32\SystemSettingsAdminFlowUI.dll
2016-02-14 12:40:03 ----A---- C:\WINDOWS\system32\SystemSettingsAdminFlows.exe
2016-02-14 12:40:03 ----A---- C:\WINDOWS\system32\SystemSettings.Handlers.dll
2016-02-14 12:40:03 ----A---- C:\WINDOWS\system32\MDMAgent.exe
2016-02-14 12:39:51 ----A---- C:\WINDOWS\SYSWOW64\msiexec.exe
2016-02-14 12:39:51 ----A---- C:\WINDOWS\SYSWOW64\msi.dll
2016-02-14 12:39:51 ----A---- C:\WINDOWS\system32\msiexec.exe
2016-02-14 12:39:51 ----A---- C:\WINDOWS\system32\msi.dll
2016-02-14 12:39:45 ----A---- C:\WINDOWS\SYSWOW64\WindowsCodecs.dll
2016-02-14 12:39:45 ----A---- C:\WINDOWS\system32\WindowsCodecs.dll
2016-02-14 12:39:39 ----A---- C:\WINDOWS\SYSWOW64\oleaut32.dll
2016-02-14 12:39:39 ----A---- C:\WINDOWS\system32\oleaut32.dll
2016-02-14 12:39:27 ----A---- C:\WINDOWS\system32\fveapi.dll
2016-02-14 12:39:27 ----A---- C:\WINDOWS\system32\bdesvc.dll
2016-02-14 12:39:25 ----D---- C:\WINDOWS\SYSWOW64\NV
2016-02-14 12:39:25 ----D---- C:\WINDOWS\system32\NV
2016-02-14 12:39:14 ----A---- C:\WINDOWS\system32\drivers\sermouse.sys
2016-02-14 12:39:14 ----A---- C:\WINDOWS\system32\drivers\mouhid.sys
2016-02-14 12:39:14 ----A---- C:\WINDOWS\system32\drivers\mouclass.sys
2016-02-14 12:39:14 ----A---- C:\WINDOWS\system32\drivers\kbdhid.sys
2016-02-14 12:39:14 ----A---- C:\WINDOWS\system32\drivers\kbdclass.sys
2016-02-14 12:39:14 ----A---- C:\WINDOWS\system32\drivers\i8042prt.sys
2016-02-14 12:39:05 ----A---- C:\WINDOWS\SYSWOW64\UIAutomationCore.dll
2016-02-14 12:39:05 ----A---- C:\WINDOWS\system32\UIAutomationCore.dll
2016-02-14 12:38:47 ----A---- C:\WINDOWS\SYSWOW64\gdi32.dll
2016-02-14 12:38:47 ----A---- C:\WINDOWS\system32\gdi32.dll
2016-02-14 12:38:42 ----A---- C:\WINDOWS\SYSWOW64\mtxoci.dll
2016-02-14 12:38:42 ----A---- C:\WINDOWS\SYSWOW64\msorcl32.dll
2016-02-14 12:38:42 ----A---- C:\WINDOWS\SYSWOW64\EncDec.dll
2016-02-14 12:38:42 ----A---- C:\WINDOWS\SYSWOW64\CPFilters.dll
2016-02-14 12:38:42 ----A---- C:\WINDOWS\SYSWOW64\cfgbkend.dll
2016-02-14 12:38:42 ----A---- C:\WINDOWS\system32\mtxoci.dll
2016-02-14 12:38:42 ----A---- C:\WINDOWS\system32\EncDec.dll
2016-02-14 12:38:42 ----A---- C:\WINDOWS\system32\CPFilters.dll
2016-02-14 12:38:42 ----A---- C:\WINDOWS\system32\cfgbkend.dll
2016-02-14 12:38:27 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2016-02-14 12:38:27 ----A---- C:\WINDOWS\system32\shell32.dll
2016-02-14 12:38:20 ----A---- C:\WINDOWS\system32\WiFiDisplay.dll
2016-02-14 12:38:13 ----A---- C:\WINDOWS\SYSWOW64\PresentationCFFRasterizerNative_v0300.dll
2016-02-14 12:38:13 ----A---- C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2016-02-14 12:37:56 ----A---- C:\WINDOWS\system32\drivers\bthhfenum.sys
2016-02-14 12:37:48 ----A---- C:\WINDOWS\SYSWOW64\WSShared.dll
2016-02-14 12:37:48 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2016-02-14 12:37:48 ----A---- C:\WINDOWS\system32\WSShared.dll
2016-02-14 12:37:48 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2016-02-14 12:37:34 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.dll
2016-02-14 12:37:34 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.dll
2016-02-14 12:37:27 ----A---- C:\WINDOWS\system32\nlasvc.dll
2016-02-14 12:37:27 ----A---- C:\WINDOWS\system32\ncsi.dll
2016-02-14 12:37:22 ----A---- C:\WINDOWS\system32\LockScreenContentServer.exe
2016-02-14 12:37:13 ----A---- C:\WINDOWS\SYSWOW64\crypt32.dll
2016-02-14 12:37:13 ----A---- C:\WINDOWS\system32\crypt32.dll
2016-02-14 12:37:09 ----A---- C:\WINDOWS\SYSWOW64\eapphost.dll
2016-02-14 12:37:09 ----A---- C:\WINDOWS\SYSWOW64\eappgnui.dll
2016-02-14 12:37:09 ----A---- C:\WINDOWS\SYSWOW64\eappcfg.dll
2016-02-14 12:37:09 ----A---- C:\WINDOWS\SYSWOW64\eapp3hst.dll
2016-02-14 12:37:09 ----A---- C:\WINDOWS\system32\eapphost.dll
2016-02-14 12:37:09 ----A---- C:\WINDOWS\system32\eappgnui.dll
2016-02-14 12:37:09 ----A---- C:\WINDOWS\system32\eappcfg.dll
2016-02-14 12:37:09 ----A---- C:\WINDOWS\system32\eapp3hst.dll
2016-02-14 12:37:04 ----A---- C:\WINDOWS\SYSWOW64\nshwfp.dll
2016-02-14 12:37:04 ----A---- C:\WINDOWS\SYSWOW64\FWPUCLNT.DLL
2016-02-14 12:37:04 ----A---- C:\WINDOWS\system32\nshwfp.dll
2016-02-14 12:37:04 ----A---- C:\WINDOWS\system32\IKEEXT.DLL
2016-02-14 12:37:04 ----A---- C:\WINDOWS\system32\FWPUCLNT.DLL
2016-02-14 12:37:04 ----A---- C:\WINDOWS\system32\drivers\wfplwfs.sys
2016-02-14 12:37:04 ----A---- C:\WINDOWS\system32\BFE.DLL
2016-02-14 12:36:55 ----A---- C:\WINDOWS\SYSWOW64\tdh.dll
2016-02-14 12:36:55 ----A---- C:\WINDOWS\system32\UtcResources.dll
2016-02-14 12:36:55 ----A---- C:\WINDOWS\system32\tdh.dll
2016-02-14 12:36:55 ----A---- C:\WINDOWS\system32\diagtrack.dll
2016-02-14 12:36:30 ----A---- C:\WINDOWS\system32\rdpudd.dll
2016-02-14 12:36:30 ----A---- C:\WINDOWS\system32\rdpcorets.dll
2016-02-14 12:36:12 ----A---- C:\WINDOWS\SYSWOW64\comctl32.dll
2016-02-14 12:36:12 ----A---- C:\WINDOWS\system32\comctl32.dll
2016-02-14 12:36:07 ----A---- C:\WINDOWS\SYSWOW64\WMPhoto.dll
2016-02-14 12:36:07 ----A---- C:\WINDOWS\system32\WMPhoto.dll
2016-02-14 12:36:02 ----A---- C:\WINDOWS\SYSWOW64\ole32.dll
2016-02-14 12:36:02 ----A---- C:\WINDOWS\system32\ole32.dll
2016-02-14 12:35:58 ----A---- C:\WINDOWS\SYSWOW64\clfsw32.dll
2016-02-14 12:35:58 ----A---- C:\WINDOWS\system32\drivers\clfs.sys
2016-02-14 12:35:58 ----A---- C:\WINDOWS\system32\clfsw32.dll
2016-02-14 12:35:52 ----A---- C:\WINDOWS\SYSWOW64\tracerpt.exe
2016-02-14 12:35:52 ----A---- C:\WINDOWS\SYSWOW64\sechost.dll
2016-02-14 12:35:52 ----A---- C:\WINDOWS\system32\tracerpt.exe
2016-02-14 12:35:52 ----A---- C:\WINDOWS\system32\sechost.dll
2016-02-14 12:35:44 ----A---- C:\WINDOWS\SYSWOW64\authui.dll
2016-02-14 12:35:44 ----A---- C:\WINDOWS\system32\authui.dll
2016-02-14 12:35:39 ----A---- C:\WINDOWS\system32\drivers\usb8023.sys
2016-02-14 12:35:27 ----A---- C:\WINDOWS\system32\csrsrv.dll
2016-02-14 12:35:27 ----A---- C:\WINDOWS\system32\basesrv.dll
2016-02-14 12:35:21 ----A---- C:\WINDOWS\SYSWOW64\WinSync.dll
2016-02-14 12:35:21 ----A---- C:\WINDOWS\system32\WinSync.dll
2016-02-14 12:35:16 ----A---- C:\WINDOWS\system32\drivers\sdbus.sys
2016-02-14 12:35:16 ----A---- C:\WINDOWS\system32\drivers\dumpsd.sys
2016-02-14 12:35:12 ----A---- C:\WINDOWS\SYSWOW64\msctf.dll
2016-02-14 12:35:12 ----A---- C:\WINDOWS\system32\msctf.dll
2016-02-14 12:35:09 ----A---- C:\WINDOWS\system32\drivers\tcpip.sys
2016-02-14 12:35:09 ----A---- C:\WINDOWS\system32\drivers\FWPKCLNT.SYS
2016-02-14 12:35:01 ----A---- C:\WINDOWS\system32\drivers\bthpan.sys
2016-02-14 12:34:56 ----A---- C:\WINDOWS\system32\drivers\ahcache.sys
2016-02-14 12:34:49 ----A---- C:\WINDOWS\SYSWOW64\msvcr120_clr0400.dll
2016-02-14 12:34:49 ----A---- C:\WINDOWS\SYSWOW64\msvcp120_clr0400.dll
2016-02-14 12:34:49 ----A---- C:\WINDOWS\system32\msvcr120_clr0400.dll
2016-02-14 12:34:49 ----A---- C:\WINDOWS\system32\msvcp120_clr0400.dll
2016-02-14 12:34:30 ----A---- C:\WINDOWS\system32\TSWbPrxy.exe
2016-02-14 12:34:21 ----A---- C:\WINDOWS\SYSWOW64\comsvcs.dll
2016-02-14 12:34:21 ----A---- C:\WINDOWS\SYSWOW64\catsrvut.dll
2016-02-14 12:34:21 ----A---- C:\WINDOWS\system32\comsvcs.dll
2016-02-14 12:34:21 ----A---- C:\WINDOWS\system32\catsrvut.dll
2016-02-14 12:34:13 ----A---- C:\WINDOWS\system32\winlogon.exe
2016-02-14 12:34:13 ----A---- C:\WINDOWS\system32\wininit.exe
2016-02-14 12:34:10 ----A---- C:\WINDOWS\SYSWOW64\nvwgf2um.dll
2016-02-14 12:34:10 ----A---- C:\WINDOWS\SYSWOW64\nvumdshim.dll
2016-02-14 12:34:10 ----A---- C:\WINDOWS\SYSWOW64\nvopencl.dll
2016-02-14 12:34:10 ----A---- C:\WINDOWS\SYSWOW64\nvoglv32.dll
2016-02-14 12:34:10 ----A---- C:\WINDOWS\SYSWOW64\nvoglshim32.dll
2016-02-14 12:34:10 ----A---- C:\WINDOWS\SYSWOW64\nvinit.dll
2016-02-14 12:34:10 ----A---- C:\WINDOWS\SYSWOW64\NvIFROpenGL.dll
2016-02-14 12:34:10 ----A---- C:\WINDOWS\SYSWOW64\NvIFR.dll
2016-02-14 12:34:10 ----A---- C:\WINDOWS\system32\nvwgf2umx.dll
2016-02-14 12:34:10 ----A---- C:\WINDOWS\system32\nvumdshimx.dll
2016-02-14 12:34:10 ----A---- C:\WINDOWS\system32\nvopencl.dll
2016-02-14 12:34:10 ----A---- C:\WINDOWS\system32\nvoglv64.dll
2016-02-14 12:34:10 ----A---- C:\WINDOWS\system32\nvoglshim64.dll
2016-02-14 12:34:10 ----A---- C:\WINDOWS\system32\nvinitx.dll
2016-02-14 12:34:10 ----A---- C:\WINDOWS\system32\NvIFROpenGL.dll
2016-02-14 12:34:10 ----A---- C:\WINDOWS\system32\NvIFR64.dll
2016-02-14 12:34:10 ----A---- C:\WINDOWS\system32\drivers\nvpciflt.sys
2016-02-14 12:34:10 ----A---- C:\WINDOWS\system32\drivers\nvlddmkm.sys
2016-02-14 12:34:09 ----A---- C:\WINDOWS\SYSWOW64\NvFBC.dll
2016-02-14 12:34:09 ----A---- C:\WINDOWS\SYSWOW64\nvEncodeAPI.dll
2016-02-14 12:34:09 ----A---- C:\WINDOWS\SYSWOW64\nvd3dum.dll
2016-02-14 12:34:09 ----A---- C:\WINDOWS\SYSWOW64\nvcuvid.dll
2016-02-14 12:34:09 ----A---- C:\WINDOWS\SYSWOW64\nvcuda.dll
2016-02-14 12:34:09 ----A---- C:\WINDOWS\SYSWOW64\nvcompiler.dll
2016-02-14 12:34:09 ----A---- C:\WINDOWS\SYSWOW64\nvapi.dll
2016-02-14 12:34:09 ----A---- C:\WINDOWS\system32\NvFBC64.dll
2016-02-14 12:34:09 ----A---- C:\WINDOWS\system32\nvEncodeAPI64.dll
2016-02-14 12:34:09 ----A---- C:\WINDOWS\system32\nvd3dumx.dll
2016-02-14 12:34:09 ----A---- C:\WINDOWS\system32\nvcuvid.dll
2016-02-14 12:34:09 ----A---- C:\WINDOWS\system32\nvcuda.dll
2016-02-14 12:34:09 ----A---- C:\WINDOWS\system32\nvcompiler.dll
2016-02-14 12:34:09 ----A---- C:\WINDOWS\system32\nvapi64.dll
2016-02-14 12:34:03 ----A---- C:\WINDOWS\system32\drivers\rfcomm.sys
2016-02-14 12:34:03 ----A---- C:\WINDOWS\system32\drivers\hidbth.sys
2016-02-14 12:34:03 ----A---- C:\WINDOWS\system32\drivers\bthport.sys
2016-02-14 12:33:19 ----A---- C:\WINDOWS\SYSWOW64\wpdshext.dll
2016-02-14 12:33:19 ----A---- C:\WINDOWS\system32\wpdshext.dll
2016-02-14 12:33:14 ----A---- C:\WINDOWS\SYSWOW64\mfc42u.dll
2016-02-14 12:33:14 ----A---- C:\WINDOWS\SYSWOW64\mfc42.dll
2016-02-14 12:33:14 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_47.dll
2016-02-14 12:33:14 ----A---- C:\WINDOWS\system32\mfc42u.dll
2016-02-14 12:33:14 ----A---- C:\WINDOWS\system32\mfc42.dll
2016-02-14 12:33:14 ----A---- C:\WINDOWS\system32\D3DCompiler_47.dll
2016-02-14 12:33:08 ----A---- C:\WINDOWS\SYSWOW64\Windows.Data.Pdf.dll
2016-02-14 12:33:08 ----A---- C:\WINDOWS\SYSWOW64\glcndFilter.dll
2016-02-14 12:33:08 ----A---- C:\WINDOWS\system32\Windows.Data.Pdf.dll
2016-02-14 12:33:08 ----A---- C:\WINDOWS\system32\glcndFilter.dll
2016-02-14 12:32:58 ----A---- C:\WINDOWS\SYSWOW64\qedit.dll
2016-02-14 12:32:58 ----A---- C:\WINDOWS\system32\qedit.dll
2016-02-14 12:32:40 ----A---- C:\WINDOWS\system32\drivers\tpm.sys
2016-02-14 12:32:37 ----A---- C:\WINDOWS\system32\NcdAutoSetup.dll
2016-02-14 12:32:33 ----A---- C:\WINDOWS\system32\ubpm.dll
2016-02-14 12:32:26 ----A---- C:\WINDOWS\system32\lsm.dll
2016-02-14 12:32:20 ----A---- C:\WINDOWS\system32\drivers\USBXHCI.SYS
2016-02-14 12:32:13 ----A---- C:\WINDOWS\system32\wevtsvc.dll
2016-02-14 12:32:09 ----A---- C:\WINDOWS\SYSWOW64\rgb9rast.dll
2016-02-14 12:31:55 ----A---- C:\WINDOWS\SYSWOW64\advapi32.dll
2016-02-14 12:31:55 ----A---- C:\WINDOWS\system32\advapi32.dll
2016-02-14 12:31:50 ----A---- C:\WINDOWS\SYSWOW64\msv1_0.dll
2016-02-14 12:31:50 ----A---- C:\WINDOWS\SYSWOW64\certcli.dll
2016-02-14 12:31:50 ----A---- C:\WINDOWS\system32\msv1_0.dll
2016-02-14 12:31:50 ----A---- C:\WINDOWS\system32\lsasrv.dll
2016-02-14 12:31:50 ----A---- C:\WINDOWS\system32\drivers\mrxsmb20.sys
2016-02-14 12:31:50 ----A---- C:\WINDOWS\system32\drivers\mrxsmb.sys
2016-02-14 12:31:50 ----A---- C:\WINDOWS\system32\drivers\ksecpkg.sys
2016-02-14 12:31:50 ----A---- C:\WINDOWS\system32\drivers\cng.sys
2016-02-14 12:31:50 ----A---- C:\WINDOWS\system32\dpapisrv.dll
2016-02-14 12:31:50 ----A---- C:\WINDOWS\system32\certcli.dll
2016-02-14 12:31:33 ----A---- C:\WINDOWS\SYSWOW64\rpcrt4.dll
2016-02-14 12:31:33 ----A---- C:\WINDOWS\system32\rpcrt4.dll
2016-02-14 12:31:18 ----A---- C:\WINDOWS\system32\apphelp.dll
2016-02-14 12:31:11 ----A---- C:\WINDOWS\SYSWOW64\StorageContextHandler.dll
2016-02-14 12:31:11 ----A---- C:\WINDOWS\system32\StorageContextHandler.dll
2016-02-14 12:31:06 ----A---- C:\WINDOWS\SYSWOW64\kerberos.dll
2016-02-14 12:31:06 ----A---- C:\WINDOWS\system32\kerberos.dll
2016-02-14 12:31:02 ----A---- C:\WINDOWS\SYSWOW64\DeviceSetupStatusProvider.dll
2016-02-14 12:31:02 ----A---- C:\WINDOWS\system32\DeviceSetupStatusProvider.dll
2016-02-14 12:30:52 ----A---- C:\WINDOWS\SYSWOW64\puiobj.dll
2016-02-14 12:30:52 ----A---- C:\WINDOWS\system32\win32spl.dll
2016-02-14 12:30:52 ----A---- C:\WINDOWS\system32\puiobj.dll
2016-02-14 12:30:52 ----A---- C:\WINDOWS\system32\localspl.dll
2016-02-14 12:30:52 ----A---- C:\WINDOWS\system32\compstui.dll
2016-02-14 12:30:44 ----A---- C:\WINDOWS\SYSWOW64\atmlib.dll
2016-02-14 12:30:44 ----A---- C:\WINDOWS\SYSWOW64\atmfd.dll
2016-02-14 12:30:44 ----A---- C:\WINDOWS\system32\atmlib.dll
2016-02-14 12:30:44 ----A---- C:\WINDOWS\system32\atmfd.dll
2016-02-14 12:30:30 ----A---- C:\WINDOWS\SYSWOW64\WinTypes.dll
2016-02-14 12:30:30 ----A---- C:\WINDOWS\SYSWOW64\wincorlib.dll
2016-02-14 12:30:30 ----A---- C:\WINDOWS\SYSWOW64\ntvdm64.dll
2016-02-14 12:30:30 ----A---- C:\WINDOWS\SYSWOW64\ntdll.dll
2016-02-14 12:30:30 ----A---- C:\WINDOWS\SYSWOW64\KernelBase.dll
2016-02-14 12:30:30 ----A---- C:\WINDOWS\SYSWOW64\combase.dll
2016-02-14 12:30:30 ----A---- C:\WINDOWS\system32\WinTypes.dll
2016-02-14 12:30:30 ----A---- C:\WINDOWS\system32\winresume.exe
2016-02-14 12:30:30 ----A---- C:\WINDOWS\system32\winload.exe
2016-02-14 12:30:30 ----A---- C:\WINDOWS\system32\ntvdm64.dll
2016-02-14 12:30:30 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2016-02-14 12:30:30 ----A---- C:\WINDOWS\system32\ntdll.dll
2016-02-14 12:30:30 ----A---- C:\WINDOWS\system32\microsoft-windows-system-events.dll
2016-02-14 12:30:30 ----A---- C:\WINDOWS\system32\KernelBase.dll
2016-02-14 12:30:30 ----A---- C:\WINDOWS\system32\combase.dll
2016-02-14 12:30:13 ----A---- C:\WINDOWS\system32\drivers\usbuhci.sys
2016-02-14 12:30:13 ----A---- C:\WINDOWS\system32\drivers\usbport.sys
2016-02-14 12:30:13 ----A---- C:\WINDOWS\system32\drivers\usbohci.sys
2016-02-14 12:30:13 ----A---- C:\WINDOWS\system32\drivers\USBHUB3.SYS
2016-02-14 12:30:13 ----A---- C:\WINDOWS\system32\drivers\usbhub.sys
2016-02-14 12:30:13 ----A---- C:\WINDOWS\system32\drivers\usbehci.sys
2016-02-14 12:30:13 ----A---- C:\WINDOWS\system32\drivers\usbd.sys
2016-02-14 12:30:03 ----A---- C:\WINDOWS\SYSWOW64\ExplorerFrame.dll
2016-02-14 12:30:03 ----A---- C:\WINDOWS\system32\ExplorerFrame.dll
2016-02-14 12:29:46 ----A---- C:\WINDOWS\system32\services.exe
2016-02-14 12:29:39 ----A---- C:\WINDOWS\SYSWOW64\wuwebv.dll
2016-02-14 12:29:39 ----A---- C:\WINDOWS\SYSWOW64\wups.dll
2016-02-14 12:29:39 ----A---- C:\WINDOWS\SYSWOW64\wudriver.dll
2016-02-14 12:29:39 ----A---- C:\WINDOWS\SYSWOW64\wuapp.exe
2016-02-14 12:29:39 ----A---- C:\WINDOWS\SYSWOW64\wuapi.dll
2016-02-14 12:29:39 ----A---- C:\WINDOWS\system32\wuwebv.dll
2016-02-14 12:29:39 ----A---- C:\WINDOWS\system32\WUSettingsProvider.dll
2016-02-14 12:29:39 ----A---- C:\WINDOWS\system32\wups2.dll
2016-02-14 12:29:39 ----A---- C:\WINDOWS\system32\wups.dll
2016-02-14 12:29:39 ----A---- C:\WINDOWS\system32\wudriver.dll
2016-02-14 12:29:39 ----A---- C:\WINDOWS\system32\wucltux.dll
2016-02-14 12:29:39 ----A---- C:\WINDOWS\system32\wuaueng.dll
2016-02-14 12:29:39 ----A---- C:\WINDOWS\system32\wuauclt.exe
2016-02-14 12:29:39 ----A---- C:\WINDOWS\system32\wuapp.exe
2016-02-14 12:29:39 ----A---- C:\WINDOWS\system32\wuapi.dll
2016-02-14 12:29:39 ----A---- C:\WINDOWS\system32\WinSetupUI.dll
2016-02-14 12:29:25 ----A---- C:\WINDOWS\SYSWOW64\netcfgx.dll
2016-02-14 12:29:25 ----A---- C:\WINDOWS\system32\netcfgx.dll
2016-02-14 12:29:25 ----A---- C:\WINDOWS\system32\drivers\ndis.sys
2016-02-14 12:29:04 ----A---- C:\WINDOWS\SYSWOW64\SRH.dll
2016-02-14 12:29:04 ----A---- C:\WINDOWS\system32\SRH.dll
2016-02-14 12:28:38 ----A---- C:\WINDOWS\SYSWOW64\winshfhc.dll
2016-02-14 12:28:38 ----A---- C:\WINDOWS\system32\winshfhc.dll
2016-02-14 12:28:38 ----A---- C:\WINDOWS\system32\drivers\WdNisDrv.sys
2016-02-14 12:28:38 ----A---- C:\WINDOWS\system32\drivers\WdFilter.sys
2016-02-14 12:28:38 ----A---- C:\WINDOWS\system32\drivers\WdBoot.sys
2016-02-14 12:28:24 ----A---- C:\WINDOWS\SYSWOW64\taskeng.exe
2016-02-14 12:28:24 ----A---- C:\WINDOWS\SYSWOW64\schtasks.exe
2016-02-14 12:28:24 ----A---- C:\WINDOWS\system32\taskeng.exe
2016-02-14 12:28:24 ----A---- C:\WINDOWS\system32\schtasks.exe
2016-02-14 12:28:24 ----A---- C:\WINDOWS\system32\schedsvc.dll
2016-02-14 12:28:20 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Input.Inking.dll
2016-02-14 12:28:20 ----A---- C:\WINDOWS\system32\Windows.UI.Input.Inking.dll
2016-02-14 12:28:17 ----A---- C:\WINDOWS\SYSWOW64\calc.exe
2016-02-14 12:28:17 ----A---- C:\WINDOWS\system32\calc.exe
2016-02-14 12:28:04 ----A---- C:\WINDOWS\SYSWOW64\WebClnt.dll
2016-02-14 12:28:04 ----A---- C:\WINDOWS\SYSWOW64\davclnt.dll
2016-02-14 12:28:04 ----A---- C:\WINDOWS\system32\WebClnt.dll
2016-02-14 12:28:04 ----A---- C:\WINDOWS\system32\davclnt.dll
2016-02-14 12:27:57 ----A---- C:\WINDOWS\system32\wuaext.dll
2016-02-14 12:27:57 ----A---- C:\WINDOWS\system32\wu.upgrade.ps.dll
2016-02-14 12:27:57 ----A---- C:\WINDOWS\system32\storewuauth.dll
2016-02-14 12:27:45 ----A---- C:\WINDOWS\SYSWOW64\msxml6.dll
2016-02-14 12:27:45 ----A---- C:\WINDOWS\SYSWOW64\msxml3.dll
2016-02-14 12:27:45 ----A---- C:\WINDOWS\system32\msxml6.dll
2016-02-14 12:27:45 ----A---- C:\WINDOWS\system32\msxml3.dll
2016-02-14 12:27:37 ----A---- C:\WINDOWS\system32\AuthHost.exe
2016-02-14 12:27:33 ----A---- C:\WINDOWS\system32\win32k.sys
2016-02-14 12:27:30 ----A---- C:\WINDOWS\SYSWOW64\pku2u.dll
2016-02-14 12:27:30 ----A---- C:\WINDOWS\system32\pku2u.dll
2016-02-14 12:27:24 ----A---- C:\WINDOWS\SYSWOW64\wow32.dll
2016-02-14 12:27:24 ----A---- C:\WINDOWS\SYSWOW64\user.exe
2016-02-14 12:27:24 ----A---- C:\WINDOWS\SYSWOW64\setup16.exe
2016-02-14 12:27:24 ----A---- C:\WINDOWS\SYSWOW64\instnm.exe
2016-02-14 12:27:24 ----A---- C:\WINDOWS\system32\wow64cpu.dll
2016-02-14 12:27:24 ----A---- C:\WINDOWS\system32\wow64.dll
2016-02-14 12:27:24 ----A---- C:\WINDOWS\system32\sysmain.dll
2016-02-14 12:27:24 ----A---- C:\WINDOWS\system32\drivers\mountmgr.sys
2016-02-14 12:26:56 ----A---- C:\WINDOWS\SYSWOW64\InkEd.dll
2016-02-14 12:26:56 ----A---- C:\WINDOWS\system32\InkEd.dll
2016-02-14 12:26:49 ----A---- C:\WINDOWS\SYSWOW64\SHCore.dll
2016-02-14 12:26:49 ----A---- C:\WINDOWS\system32\SHCore.dll
2016-02-14 12:26:36 ----A---- C:\WINDOWS\system32\drivers\tunnel.sys
2016-02-14 12:25:31 ----A---- C:\WINDOWS\system32\drivers\rmcast.sys
2016-02-14 12:25:21 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2016-02-14 12:25:21 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2016-02-14 12:25:21 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2016-02-14 12:25:21 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2016-02-14 12:25:21 ----A---- C:\WINDOWS\system32\urlmon.dll
2016-02-14 12:25:21 ----A---- C:\WINDOWS\system32\mshtml.dll
2016-02-14 12:25:21 ----A---- C:\WINDOWS\system32\iertutil.dll
2016-02-14 12:25:21 ----A---- C:\WINDOWS\system32\ieframe.dll
2016-02-14 12:24:48 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2016-02-14 12:24:48 ----A---- C:\WINDOWS\SYSWOW64\webcheck.dll
2016-02-14 12:24:48 ----A---- C:\WINDOWS\SYSWOW64\vbscript.dll
2016-02-14 12:24:48 ----A---- C:\WINDOWS\SYSWOW64\msrating.dll
2016-02-14 12:24:48 ----A---- C:\WINDOWS\SYSWOW64\mshtmled.dll
2016-02-14 12:24:48 ----A---- C:\WINDOWS\SYSWOW64\MshtmlDac.dll
2016-02-14 12:24:48 ----A---- C:\WINDOWS\SYSWOW64\msfeeds.dll
2016-02-14 12:24:48 ----A---- C:\WINDOWS\SYSWOW64\jscript9diag.dll
2016-02-14 12:24:48 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2016-02-14 12:24:48 ----A---- C:\WINDOWS\SYSWOW64\jscript.dll
2016-02-14 12:24:48 ----A---- C:\WINDOWS\SYSWOW64\inetcomm.dll
2016-02-14 12:24:48 ----A---- C:\WINDOWS\SYSWOW64\ieui.dll
2016-02-14 12:24:48 ----A---- C:\WINDOWS\SYSWOW64\iepeers.dll
2016-02-14 12:24:48 ----A---- C:\WINDOWS\SYSWOW64\iedkcs32.dll
2016-02-14 12:24:48 ----A---- C:\WINDOWS\SYSWOW64\ieapfltr.dll
2016-02-14 12:24:48 ----A---- C:\WINDOWS\SYSWOW64\hlink.dll
2016-02-14 12:24:48 ----A---- C:\WINDOWS\SYSWOW64\dxtrans.dll
2016-02-14 12:24:48 ----A---- C:\WINDOWS\SYSWOW64\dxtmsft.dll
2016-02-14 12:24:48 ----A---- C:\WINDOWS\SYSWOW64\actxprxy.dll
2016-02-14 12:24:48 ----A---- C:\WINDOWS\system32\wininet.dll
2016-02-14 12:24:48 ----A---- C:\WINDOWS\system32\webcheck.dll
2016-02-14 12:24:48 ----A---- C:\WINDOWS\system32\vbscript.dll
2016-02-14 12:24:48 ----A---- C:\WINDOWS\system32\msrating.dll
2016-02-14 12:24:48 ----A---- C:\WINDOWS\system32\mshtmled.dll
2016-02-14 12:24:48 ----A---- C:\WINDOWS\system32\MshtmlDac.dll
2016-02-14 12:24:48 ----A---- C:\WINDOWS\system32\msfeeds.dll
2016-02-14 12:24:48 ----A---- C:\WINDOWS\system32\jscript9diag.dll
2016-02-14 12:24:48 ----A---- C:\WINDOWS\system32\jscript9.dll
2016-02-14 12:24:48 ----A---- C:\WINDOWS\system32\jscript.dll
2016-02-14 12:24:48 ----A---- C:\WINDOWS\system32\inseng.dll
2016-02-14 12:24:48 ----A---- C:\WINDOWS\system32\inetcomm.dll
2016-02-14 12:24:48 ----A---- C:\WINDOWS\system32\ieui.dll
2016-02-14 12:24:48 ----A---- C:\WINDOWS\system32\iepeers.dll
2016-02-14 12:24:48 ----A---- C:\WINDOWS\system32\iedkcs32.dll
2016-02-14 12:24:48 ----A---- C:\WINDOWS\system32\ieapfltr.dll
2016-02-14 12:24:48 ----A---- C:\WINDOWS\system32\ie4uinit.exe
2016-02-14 12:24:48 ----A---- C:\WINDOWS\system32\hlink.dll
2016-02-14 12:24:48 ----A---- C:\WINDOWS\system32\dxtrans.dll
2016-02-14 12:24:48 ----A---- C:\WINDOWS\system32\dxtmsft.dll
2016-02-14 12:24:48 ----A---- C:\WINDOWS\system32\actxprxy.dll
2016-02-14 12:23:54 ----A---- C:\WINDOWS\SYSWOW64\dwmcore.dll
2016-02-14 12:23:54 ----A---- C:\WINDOWS\system32\dwmcore.dll
2016-02-14 12:23:50 ----A---- C:\WINDOWS\system32\drivers\mrxdav.sys
2016-02-14 12:23:45 ----A---- C:\WINDOWS\SYSWOW64\scesrv.dll
2016-02-14 12:23:45 ----A---- C:\WINDOWS\system32\scesrv.dll
2016-02-14 12:23:42 ----A---- C:\WINDOWS\SYSWOW64\atlthunk.dll
2016-02-14 12:23:40 ----A---- C:\WINDOWS\system32\profsvc.dll
2016-02-14 12:23:34 ----A---- C:\WINDOWS\SYSWOW64\ucrtbase.dll
2016-02-14 12:23:34 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-utility-l1-1-0.dll
2016-02-14 12:23:34 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-time-l1-1-0.dll
2016-02-14 12:23:34 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-string-l1-1-0.dll
2016-02-14 12:23:34 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-stdio-l1-1-0.dll
2016-02-14 12:23:34 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-runtime-l1-1-0.dll
2016-02-14 12:23:34 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-process-l1-1-0.dll
2016-02-14 12:23:34 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-private-l1-1-0.dll
2016-02-14 12:23:34 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-multibyte-l1-1-0.dll
2016-02-14 12:23:34 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-math-l1-1-0.dll
2016-02-14 12:23:34 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-locale-l1-1-0.dll
2016-02-14 12:23:34 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-heap-l1-1-0.dll
2016-02-14 12:23:34 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-filesystem-l1-1-0.dll
2016-02-14 12:23:34 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-environment-l1-1-0.dll
2016-02-14 12:23:34 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-convert-l1-1-0.dll
2016-02-14 12:23:34 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-conio-l1-1-0.dll
2016-02-14 12:23:34 ----A---- C:\WINDOWS\system32\ucrtbase.dll
2016-02-14 12:23:34 ----A---- C:\WINDOWS\system32\api-ms-win-crt-utility-l1-1-0.dll
2016-02-14 12:23:34 ----A---- C:\WINDOWS\system32\api-ms-win-crt-time-l1-1-0.dll
2016-02-14 12:23:34 ----A---- C:\WINDOWS\system32\api-ms-win-crt-string-l1-1-0.dll
2016-02-14 12:23:34 ----A---- C:\WINDOWS\system32\api-ms-win-crt-stdio-l1-1-0.dll
2016-02-14 12:23:34 ----A---- C:\WINDOWS\system32\api-ms-win-crt-runtime-l1-1-0.dll
2016-02-14 12:23:34 ----A---- C:\WINDOWS\system32\api-ms-win-crt-process-l1-1-0.dll
2016-02-14 12:23:34 ----A---- C:\WINDOWS\system32\api-ms-win-crt-private-l1-1-0.dll
2016-02-14 12:23:34 ----A---- C:\WINDOWS\system32\api-ms-win-crt-multibyte-l1-1-0.dll
2016-02-14 12:23:34 ----A---- C:\WINDOWS\system32\api-ms-win-crt-math-l1-1-0.dll
2016-02-14 12:23:34 ----A---- C:\WINDOWS\system32\api-ms-win-crt-locale-l1-1-0.dll
2016-02-14 12:23:34 ----A---- C:\WINDOWS\system32\api-ms-win-crt-heap-l1-1-0.dll
2016-02-14 12:23:34 ----A---- C:\WINDOWS\system32\api-ms-win-crt-filesystem-l1-1-0.dll
2016-02-14 12:23:34 ----A---- C:\WINDOWS\system32\api-ms-win-crt-environment-l1-1-0.dll
2016-02-14 12:23:34 ----A---- C:\WINDOWS\system32\api-ms-win-crt-convert-l1-1-0.dll
2016-02-14 12:23:34 ----A---- C:\WINDOWS\system32\api-ms-win-crt-conio-l1-1-0.dll
2016-02-14 12:23:19 ----A---- C:\WINDOWS\SYSWOW64\tquery.dll
2016-02-14 12:23:19 ----A---- C:\WINDOWS\SYSWOW64\SearchProtocolHost.exe
2016-02-14 12:23:19 ----A---- C:\WINDOWS\SYSWOW64\SearchIndexer.exe
2016-02-14 12:23:19 ----A---- C:\WINDOWS\SYSWOW64\mssvp.dll
2016-02-14 12:23:19 ----A---- C:\WINDOWS\SYSWOW64\mssrch.dll
2016-02-14 12:23:19 ----A---- C:\WINDOWS\SYSWOW64\mssph.dll
2016-02-14 12:23:19 ----A---- C:\WINDOWS\system32\tquery.dll
2016-02-14 12:23:19 ----A---- C:\WINDOWS\system32\SearchProtocolHost.exe
2016-02-14 12:23:19 ----A---- C:\WINDOWS\system32\SearchIndexer.exe
2016-02-14 12:23:19 ----A---- C:\WINDOWS\system32\mssvp.dll
2016-02-14 12:23:19 ----A---- C:\WINDOWS\system32\mssrch.dll
2016-02-14 12:23:19 ----A---- C:\WINDOWS\system32\mssphtb.dll
2016-02-14 12:23:19 ----A---- C:\WINDOWS\system32\mssph.dll
2016-02-14 12:21:52 ----A---- C:\WINDOWS\SYSWOW64\explorer.exe
2016-02-14 12:21:52 ----A---- C:\WINDOWS\explorer.exe
2016-02-14 12:21:50 ----A---- C:\WINDOWS\system32\consent.exe
2016-02-14 12:21:48 ----A---- C:\WINDOWS\SYSWOW64\untfs.dll
2016-02-14 12:21:48 ----A---- C:\WINDOWS\system32\untfs.dll
2016-02-14 12:21:43 ----A---- C:\WINDOWS\SYSWOW64\user32.dll
2016-02-14 12:21:43 ----A---- C:\WINDOWS\SYSWOW64\GdiPlus.dll
2016-02-14 12:21:43 ----A---- C:\WINDOWS\SYSWOW64\DWrite.dll
2016-02-14 12:21:43 ----A---- C:\WINDOWS\system32\user32.dll
2016-02-14 12:21:43 ----A---- C:\WINDOWS\system32\GdiPlus.dll
2016-02-14 12:21:43 ----A---- C:\WINDOWS\system32\FntCache.dll
2016-02-14 12:21:43 ----A---- C:\WINDOWS\system32\DWrite.dll
2016-02-14 12:21:32 ----A---- C:\WINDOWS\SYSWOW64\schannel.dll
2016-02-14 12:21:32 ----A---- C:\WINDOWS\SYSWOW64\ncryptsslp.dll
2016-02-14 12:21:32 ----A---- C:\WINDOWS\SYSWOW64\ncrypt.dll
2016-02-14 12:21:32 ----A---- C:\WINDOWS\SYSWOW64\bcryptprimitives.dll
2016-02-14 12:21:32 ----A---- C:\WINDOWS\system32\schannel.dll
2016-02-14 12:21:32 ----A---- C:\WINDOWS\system32\ncryptsslp.dll
2016-02-14 12:21:32 ----A---- C:\WINDOWS\system32\ncrypt.dll
2016-02-14 12:21:32 ----A---- C:\WINDOWS\system32\drivers\mrxsmb10.sys
2016-02-14 12:21:32 ----A---- C:\WINDOWS\system32\bcryptprimitives.dll
2016-02-14 12:21:20 ----A---- C:\WINDOWS\system32\drivers\tdx.sys
2016-02-14 12:21:20 ----A---- C:\WINDOWS\system32\drivers\afd.sys
2016-02-14 12:21:18 ----A---- C:\WINDOWS\SYSWOW64\GeofenceMonitorService.dll
2016-02-14 12:21:18 ----A---- C:\WINDOWS\system32\GeofenceMonitorService.dll
2016-02-14 12:21:14 ----A---- C:\WINDOWS\SYSWOW64\poqexec.exe
2016-02-14 12:21:14 ----A---- C:\WINDOWS\system32\poqexec.exe
2016-02-14 12:21:07 ----A---- C:\WINDOWS\SYSWOW64\rastapi.dll
2016-02-14 12:21:07 ----A---- C:\WINDOWS\system32\rastapi.dll
2016-02-14 12:21:03 ----A---- C:\WINDOWS\SYSWOW64\PCPKsp.dll
2016-02-14 12:21:03 ----A---- C:\WINDOWS\system32\PCPKsp.dll
2016-02-14 12:20:59 ----A---- C:\WINDOWS\system32\drivers\http.sys
2016-02-14 12:20:41 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Immersive.dll
2016-02-14 12:20:41 ----A---- C:\WINDOWS\SYSWOW64\shacct.dll
2016-02-14 12:20:41 ----A---- C:\WINDOWS\SYSWOW64\SettingSync.dll
2016-02-14 12:20:41 ----A---- C:\WINDOWS\system32\Windows.UI.Immersive.dll
2016-02-14 12:20:41 ----A---- C:\WINDOWS\system32\shacct.dll
2016-02-14 12:20:41 ----A---- C:\WINDOWS\system32\SettingSync.dll
2016-02-14 12:20:37 ----A---- C:\WINDOWS\SYSWOW64\msftedit.dll
2016-02-14 12:20:37 ----A---- C:\WINDOWS\system32\msftedit.dll
2016-02-14 12:20:35 ----A---- C:\WINDOWS\SYSWOW64\photowiz.dll
2016-02-14 12:20:35 ----A---- C:\WINDOWS\system32\photowiz.dll
2016-02-14 12:20:19 ----A---- C:\WINDOWS\SYSWOW64\appidapi.dll
2016-02-14 12:20:19 ----A---- C:\WINDOWS\system32\appidsvc.dll
2016-02-14 12:20:19 ----A---- C:\WINDOWS\system32\appidapi.dll
2016-02-14 12:20:16 ----A---- C:\WINDOWS\SYSWOW64\WerFaultSecure.exe
2016-02-14 12:20:16 ----A---- C:\WINDOWS\SYSWOW64\wer.dll
2016-02-14 12:20:16 ----A---- C:\WINDOWS\SYSWOW64\Faultrep.dll
2016-02-14 12:20:16 ----A---- C:\WINDOWS\system32\WerFaultSecure.exe
2016-02-14 12:20:16 ----A---- C:\WINDOWS\system32\werdiagcontroller.dll
2016-02-14 12:20:16 ----A---- C:\WINDOWS\system32\wer.dll
2016-02-14 12:20:16 ----A---- C:\WINDOWS\system32\Faultrep.dll
2016-02-14 12:20:16 ----A---- C:\WINDOWS\system32\EncDump.dll
2016-02-14 12:20:16 ----A---- C:\WINDOWS\system32\ci.dll
2016-02-14 12:20:16 ----A---- C:\WINDOWS\system32\audiosrv.dll
2016-02-14 12:20:16 ----A---- C:\WINDOWS\system32\AudioEndpointBuilder.dll
2016-02-14 12:19:32 ----D---- C:\WINDOWS\LastGood
2016-02-14 12:17:34 ----D---- C:\Program Files (x86)\Reference Assemblies
2016-02-14 12:17:34 ----D---- C:\Program Files (x86)\MSBuild
2016-02-14 12:17:33 ----D---- C:\Program Files\Reference Assemblies
2016-02-14 12:17:33 ----D---- C:\Program Files\MSBuild
2016-02-14 12:16:49 ----A---- C:\WINDOWS\SYSWOW64\TsWpfWrp.exe
2016-02-14 12:16:48 ----A---- C:\WINDOWS\SYSWOW64\PresentationNative_v0300.dll
2016-02-14 12:16:47 ----A---- C:\WINDOWS\system32\TsWpfWrp.exe
2016-02-14 12:16:45 ----A---- C:\WINDOWS\system32\PresentationNative_v0300.dll
2016-02-14 12:16:29 ----A---- C:\WINDOWS\SYSWOW64\sdbinst.exe
2016-02-14 12:16:29 ----A---- C:\WINDOWS\system32\sdbinst.exe
2016-02-14 12:08:36 ----D---- C:\Program Files (x86)\Java
2016-02-14 11:43:17 ----A---- C:\WINDOWS\system32\aswBoot.exe
2016-02-14 11:42:08 ----D---- C:\Users\Kuchar\AppData\Roaming\AVAST Software
2016-02-14 11:41:44 ----A---- C:\WINDOWS\system32\drivers\aswVmm.sys
2016-02-14 11:41:44 ----A---- C:\WINDOWS\system32\drivers\aswStm.sys
2016-02-14 11:41:44 ----A---- C:\WINDOWS\system32\drivers\aswSP.sys
2016-02-14 11:41:44 ----A---- C:\WINDOWS\system32\drivers\aswSnx.sys
2016-02-14 11:41:44 ----A---- C:\WINDOWS\system32\drivers\aswRvrt.sys
2016-02-14 11:41:44 ----A---- C:\WINDOWS\system32\drivers\aswRdr2.sys
2016-02-14 11:41:44 ----A---- C:\WINDOWS\system32\drivers\aswMonFlt.sys
2016-02-14 11:41:44 ----A---- C:\WINDOWS\system32\drivers\aswHwid.sys
2016-02-14 11:41:28 ----A---- C:\WINDOWS\avastSS.scr
2016-02-14 11:40:27 ----D---- C:\Program Files\AVAST Software
2016-02-14 11:28:20 ----SD---- C:\WINDOWS\SYSWOW64\Microsoft
2016-02-14 11:20:59 ----A---- C:\WINDOWS\system32\NvRtmpStreamer64.dll
2016-02-14 11:20:58 ----A---- C:\WINDOWS\system32\nvspbridge64.dll
2016-02-14 11:20:57 ----A---- C:\WINDOWS\system32\nvspcap64.dll
2016-02-14 11:20:54 ----A---- C:\WINDOWS\SYSWOW64\nvspcap.dll
2016-02-14 11:20:54 ----A---- C:\WINDOWS\SYSWOW64\nvspbridge.dll
2016-02-14 11:17:35 ----D---- C:\WINDOWS\LastGood.Tmp
2016-02-14 11:16:04 ----D---- C:\ProgramData\Package Cache
2016-02-14 11:15:23 ----A---- C:\WINDOWS\system32\drivers\nvvad64v.sys
2016-02-14 11:15:22 ----A---- C:\WINDOWS\system32\nvaudcap64v.dll
2016-02-14 11:15:21 ----A---- C:\WINDOWS\SYSWOW64\nvaudcap32v.dll
2016-02-14 11:15:18 ----A---- C:\WINDOWS\system32\nvdispgenco6436175.dll
2016-02-14 11:15:18 ----A---- C:\WINDOWS\system32\nvdispco6436175.dll
2016-02-14 11:03:44 ----D---- C:\Program Files (x86)\VideoLAN
2016-02-14 10:29:09 ----D---- C:\Users\Kuchar\AppData\Roaming\ClassicShell
2016-02-14 10:27:55 ----D---- C:\Program Files\Classic Shell
2016-02-14 09:49:32 ----A---- C:\WINDOWS\system32\perfi005.dat
2016-02-14 09:49:32 ----A---- C:\WINDOWS\system32\perfh005.dat
2016-02-14 09:49:32 ----A---- C:\WINDOWS\system32\perfd005.dat
2016-02-14 09:49:32 ----A---- C:\WINDOWS\system32\perfc005.dat
2016-02-14 09:48:28 ----D---- C:\WINDOWS\SYSWOW64\cs
2016-02-14 09:48:26 ----D---- C:\WINDOWS\SYSWOW64\XPSViewer
2016-02-14 09:48:26 ----D---- C:\WINDOWS\SYSWOW64\drivers\cs-CZ
2016-02-14 09:48:26 ----D---- C:\WINDOWS\system32\cs
2016-02-14 09:48:26 ----D---- C:\WINDOWS\cs-CZ
2016-02-14 09:48:21 ----D---- C:\WINDOWS\system32\drivers\cs-CZ
2016-02-14 09:29:26 ----A---- C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2016-02-14 09:10:26 ----D---- C:\Program Files\trend micro
2016-02-14 09:10:25 ----D---- C:\rsit
2016-02-14 08:59:47 ----D---- C:\Users\Kuchar\AppData\Roaming\Identities
2016-02-14 08:59:26 ----A---- C:\WINDOWS\system32\{F33C3B9B-72AF-418A-B3FD-560646F7CDA2}.bat
2016-02-14 04:29:40 ----A---- C:\WINDOWS\system32\emptyregdb.dat
2016-02-14 04:08:58 ----SD---- C:\Users\Kuchar\AppData\Roaming\Microsoft
2016-02-14 03:59:30 ----D---- C:\Program Files (x86)\USB Camera2
2016-02-14 03:59:19 ----D---- C:\Program Files\Realtek
2016-02-14 03:59:18 ----D---- C:\WINDOWS\SYSWOW64\RTCOM
2016-02-14 03:59:06 ----A---- C:\WINDOWS\SYSWOW64\oemdspif.dll
2016-02-14 03:59:06 ----A---- C:\WINDOWS\system32\nvvsvc.exe
2016-02-14 03:59:06 ----A---- C:\WINDOWS\system32\nvsvcr.dll
2016-02-14 03:59:06 ----A---- C:\WINDOWS\system32\nvsvc64.dll
2016-02-14 03:59:06 ----A---- C:\WINDOWS\system32\nvshext.dll
2016-02-14 03:59:06 ----A---- C:\WINDOWS\system32\nvmctray.dll
2016-02-14 03:59:06 ----A---- C:\WINDOWS\system32\nvcpl.dll
2016-02-14 03:59:06 ----A---- C:\WINDOWS\system32\nv3dappshextr.dll
2016-02-14 03:59:06 ----A---- C:\WINDOWS\system32\nv3dappshext.dll
2016-02-14 03:58:30 ----D---- C:\ProgramData\NVIDIA Corporation
2016-02-14 03:58:20 ----D---- C:\Program Files\NVIDIA Corporation
2016-02-14 03:58:20 ----D---- C:\Program Files (x86)\NVIDIA Corporation
2016-02-14 03:57:45 ----D---- C:\Program Files (x86)\Intel
2016-02-14 03:57:43 ----A---- C:\WINDOWS\SYSWOW64\OpenCL.DLL
2016-02-14 03:57:43 ----A---- C:\WINDOWS\system32\OpenCL.DLL
2016-02-14 03:55:11 ----D---- C:\WINDOWS\Prefetch
2016-02-14 00:27:44 ----D---- C:\Program Files\Speccy
2016-02-13 16:19:49 ----A---- C:\WINDOWS\system32\CompatTelRunner.exe
2016-01-25 03:26:33 ----D---- C:\Users\Kuchar\AppData\Roaming\BrawlhallaAir
2016-01-18 03:12:51 ----D---- C:\Users\Kuchar\AppData\Roaming\WinRAR
2016-01-18 03:12:36 ----D---- C:\Program Files\WinRAR
2016-01-16 22:23:54 ----A---- C:\WINDOWS\wininit.ini
2016-01-16 22:16:49 ----D---- C:\Users\Kuchar\AppData\Roaming\Opera Software
2016-01-16 22:08:47 ----D---- C:\ProgramData\Spybot - Search & Destroy

======List of files/folders modified in the last 1 month======

2016-02-14 17:52:02 ----D---- C:\Program Files (x86)\Steam
2016-02-14 17:32:17 ----D---- C:\WINDOWS\Microsoft.NET
2016-02-14 17:00:01 ----D---- C:\WINDOWS\system32\sru
2016-02-14 13:45:18 ----D---- C:\WINDOWS\Temp
2016-02-14 13:45:18 ----D---- C:\WINDOWS\Inf
2016-02-14 13:45:18 ----D---- C:\WINDOWS\debug
2016-02-14 13:45:18 ----D---- C:\Windows
2016-02-14 13:39:30 ----A---- C:\WINDOWS\SYSWOW64\log.txt
2016-02-14 12:49:55 ----D---- C:\WINDOWS\SYSWOW64\setup
2016-02-14 12:49:55 ----D---- C:\WINDOWS\system32\setup
2016-02-14 12:49:49 ----D---- C:\Program Files (x86)\Amazon
2016-02-14 12:39:25 ----D---- C:\WINDOWS\SysWOW64
2016-02-14 12:39:25 ----D---- C:\WINDOWS\System32
2016-02-14 12:39:19 ----D---- C:\ProgramData\NVIDIA
2016-02-14 12:38:32 ----RD---- C:\WINDOWS\ToastData
2016-02-14 12:37:39 ----D---- C:\WINDOWS\system32\DriverStore
2016-02-14 12:36:11 ----D---- C:\WINDOWS\system32\drivers
2016-02-14 12:35:56 ----HD---- C:\ProgramData
2016-02-14 12:34:01 ----RSD---- C:\WINDOWS\Fonts
2016-02-14 12:30:52 ----A---- C:\WINDOWS\SYSWOW64\PrintConfig.dll
2016-02-14 12:27:27 ----D---- C:\WINDOWS\system32\drivers\en-US
2016-02-14 12:23:49 ----D---- C:\WINDOWS\system32\CodeIntegrity
2016-02-14 12:23:40 ----SHD---- C:\WINDOWS\Installer
2016-02-14 12:23:39 ----D---- C:\Program Files (x86)\Common Files
2016-02-14 12:20:18 ----D---- C:\WINDOWS\system32\AdvancedInstallers
2016-02-14 12:08:36 ----RD---- C:\Program Files (x86)
2016-02-14 11:54:45 ----RD---- C:\Program Files
2016-02-14 11:46:05 ----D---- C:\Program Files\Lenovo
2016-02-14 11:43:36 ----D---- C:\WINDOWS\system32\Tasks
2016-02-14 11:41:40 ----D---- C:\WINDOWS\WinSxS
2016-02-14 11:40:20 ----D---- C:\ProgramData\AVAST Software
2016-02-14 11:35:21 ----D---- C:\Program Files\Google
2016-02-14 11:35:21 ----D---- C:\Program Files (x86)\Google
2016-02-14 11:25:21 ----D---- C:\WINDOWS\system32\config
2016-02-14 11:15:50 ----RD---- C:\Users
2016-02-14 11:07:10 ----D---- C:\Users\Kuchar\AppData\Roaming\Skype
2016-02-14 10:51:58 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2016-02-14 10:42:31 ----D---- C:\Program Files (x86)\Lenovo
2016-02-14 10:35:50 ----SHD---- C:\System Volume Information
2016-02-14 10:33:08 ----D---- C:\WINDOWS\Tasks
2016-02-14 10:10:20 ----RD---- C:\Program Files (x86)\Skype
2016-02-14 09:52:01 ----D---- C:\WINDOWS\system32\AutoUpdateLicense
2016-02-14 09:49:44 ----D---- C:\WINDOWS\CbsTemp
2016-02-14 09:48:34 ----D---- C:\WINDOWS\WinStore
2016-02-14 09:48:34 ----D---- C:\WINDOWS\servicing
2016-02-14 09:48:34 ----D---- C:\Program Files\Windows Photo Viewer
2016-02-14 09:48:34 ----D---- C:\Program Files\Windows Media Player
2016-02-14 09:48:34 ----D---- C:\Program Files\Windows Mail
2016-02-14 09:48:34 ----D---- C:\Program Files\Windows Journal
2016-02-14 09:48:34 ----D---- C:\Program Files\Windows Defender
2016-02-14 09:48:34 ----D---- C:\Program Files\Internet Explorer
2016-02-14 09:48:34 ----D---- C:\Program Files\Common Files\System
2016-02-14 09:48:34 ----D---- C:\Program Files (x86)\Windows Photo Viewer
2016-02-14 09:48:34 ----D---- C:\Program Files (x86)\Windows Media Player
2016-02-14 09:48:34 ----D---- C:\Program Files (x86)\Windows Mail
2016-02-14 09:48:34 ----D---- C:\Program Files (x86)\Windows Defender
2016-02-14 09:48:34 ----D---- C:\Program Files (x86)\Internet Explorer
2016-02-14 09:48:28 ----D---- C:\WINDOWS\SYSWOW64\winrm
2016-02-14 09:48:28 ----D---- C:\WINDOWS\SYSWOW64\slmgr
2016-02-14 09:48:28 ----D---- C:\WINDOWS\SYSWOW64\oobe
2016-02-14 09:48:28 ----D---- C:\WINDOWS\SYSWOW64\migration
2016-02-14 09:48:28 ----D---- C:\WINDOWS\SYSWOW64\cs-CZ
2016-02-14 09:48:26 ----RD---- C:\WINDOWS\ImmersiveControlPanel
2016-02-14 09:48:26 ----D---- C:\WINDOWS\SYSWOW64\WCN
2016-02-14 09:48:26 ----D---- C:\WINDOWS\SYSWOW64\wbem
2016-02-14 09:48:26 ----D---- C:\WINDOWS\SYSWOW64\Printing_Admin_Scripts
2016-02-14 09:48:26 ----D---- C:\WINDOWS\SYSWOW64\MUI
2016-02-14 09:48:26 ----D---- C:\WINDOWS\SYSWOW64\drivers
2016-02-14 09:48:26 ----D---- C:\WINDOWS\SYSWOW64\Dism
2016-02-14 09:48:26 ----D---- C:\WINDOWS\SYSWOW64\Com
2016-02-14 09:48:26 ----D---- C:\WINDOWS\system32\winrm
2016-02-14 09:48:26 ----D---- C:\WINDOWS\system32\Sysprep
2016-02-14 09:48:26 ----D---- C:\WINDOWS\system32\slmgr
2016-02-14 09:48:26 ----D---- C:\WINDOWS\system32\oobe
2016-02-14 09:48:26 ----D---- C:\WINDOWS\system32\migwiz
2016-02-14 09:48:26 ----D---- C:\WINDOWS\system32\migration
2016-02-14 09:48:26 ----D---- C:\WINDOWS\system32\cs-CZ
2016-02-14 09:48:26 ----D---- C:\WINDOWS\system32\Boot
2016-02-14 09:48:26 ----D---- C:\WINDOWS\PolicyDefinitions
2016-02-14 09:48:26 ----D---- C:\WINDOWS\IME
2016-02-14 09:48:21 ----D---- C:\WINDOWS\system32\WCN
2016-02-14 09:48:21 ----D---- C:\WINDOWS\system32\MUI
2016-02-14 09:48:21 ----D---- C:\WINDOWS\system32\drivers\UMDF
2016-02-14 09:48:21 ----D---- C:\WINDOWS\system32\Dism
2016-02-14 09:48:18 ----D---- C:\WINDOWS\system32\wbem
2016-02-14 09:48:18 ----D---- C:\WINDOWS\system32\SystemResetPlatform
2016-02-14 09:48:18 ----D---- C:\WINDOWS\system32\Printing_Admin_Scripts
2016-02-14 09:48:18 ----D---- C:\WINDOWS\system32\Com
2016-02-14 09:48:17 ----D---- C:\WINDOWS\Help
2016-02-14 09:48:17 ----D---- C:\WINDOWS\FileManager
2016-02-14 09:48:17 ----D---- C:\WINDOWS\apppatch
2016-02-14 09:32:02 ----D---- C:\WINDOWS\Logs
2016-02-14 09:29:13 ----D---- C:\WINDOWS\system32\wdi
2016-02-14 09:23:45 ----D---- C:\WINDOWS\system32\catroot2
2016-02-14 09:12:18 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2016-02-14 09:11:12 ----D---- C:\WINDOWS\AppReadiness
2016-02-14 09:08:58 ----D---- C:\WINDOWS\system32\restore
2016-02-14 09:06:02 ----HD---- C:\Program Files\WindowsApps
2016-02-14 09:04:27 ----HD---- C:\$Windows.~BT
2016-02-14 09:00:52 ----SHD---- C:\$Recycle.Bin
2016-02-14 08:59:06 ----D---- C:\WINDOWS\SoftwareDistribution
2016-02-14 04:30:13 ----D---- C:\WINDOWS\Registration
2016-02-14 04:29:49 ----D---- C:\WINDOWS\system32\LogFiles
2016-02-14 04:29:48 ----HD---- C:\WINDOWS\system32\GroupPolicyUsers
2016-02-14 04:27:10 ----A---- C:\WINDOWS\SYSWOW64\PerfStringBackup.INI
2016-02-14 04:26:49 ----RSD---- C:\WINDOWS\Media
2016-02-14 04:15:46 ----D---- C:\WINDOWS\SYSWOW64\Atheros_L1e
2016-02-14 04:12:54 ----D---- C:\WINDOWS\SYSWOW64\sysprep
2016-02-14 04:12:54 ----D---- C:\WINDOWS\SYSWOW64\SMI
2016-02-14 04:12:54 ----D---- C:\WINDOWS\SYSWOW64\sk-SK
2016-02-14 04:12:54 ----D---- C:\WINDOWS\SYSWOW64\SDA
2016-02-14 04:12:53 ----D---- C:\WINDOWS\SYSWOW64\migwiz
2016-02-14 04:12:53 ----D---- C:\WINDOWS\SYSWOW64\LogFiles
2016-02-14 04:12:52 ----D---- C:\WINDOWS\SYSWOW64\IME
2016-02-14 04:12:52 ----D---- C:\WINDOWS\SYSWOW64\en-US
2016-02-14 04:12:52 ----D---- C:\WINDOWS\SYSWOW64\drivers\UMDF
2016-02-14 04:12:52 ----D---- C:\WINDOWS\SYSWOW64\catroot
2016-02-14 04:12:50 ----HD---- C:\WINDOWS\system32\WLANProfiles
2016-02-14 04:12:49 ----D---- C:\WINDOWS\system32\spool
2016-02-14 04:12:46 ----D---- C:\WINDOWS\system32\sk-SK
2016-02-14 04:12:46 ----D---- C:\WINDOWS\system32\NDF
2016-02-14 04:12:46 ----D---- C:\WINDOWS\system32\MRT
2016-02-14 04:12:45 ----D---- C:\WINDOWS\system32\IME
2016-02-14 04:12:45 ----D---- C:\WINDOWS\system32\en-US
2016-02-14 04:11:40 ----D---- C:\WINDOWS\Migration
2016-02-14 04:11:37 ----D---- C:\WINDOWS\DigitalLocker
2016-02-14 04:11:36 ----RD---- C:\WINDOWS\assembly
2016-02-14 04:11:35 ----SD---- C:\ProgramData\Microsoft
2016-02-14 04:11:35 ----D---- C:\ProgramData\PRICache
2016-02-14 04:11:32 ----SHD---- C:\Program Files (x86)\Windows Sidebar
2016-02-14 04:11:25 ----D---- C:\Program Files\Common Files\microsoft shared
2016-02-14 04:11:24 ----D---- C:\Program Files\Common Files
2016-02-14 04:10:18 ----D---- C:\WINDOWS\system32\Recovery
2016-02-14 03:59:30 ----D---- C:\WINDOWS\twain_32
2016-02-14 03:59:30 ----D---- C:\WINDOWS\System
2016-02-14 03:57:50 ----D---- C:\WINDOWS\system32\catroot
2016-02-14 02:17:37 ----D---- C:\WINDOWS\AUInstallAgent
2016-02-14 00:33:54 ----A---- C:\WINDOWS\system32\MRT.exe
2016-02-13 22:17:22 ----D---- C:\Users\Kuchar\AppData\Roaming\TS3Client
2016-02-07 23:54:29 ----D---- C:\Users\Kuchar\AppData\Roaming\.minecraft
2016-02-06 06:55:35 ----D---- C:\ProgramData\Oracle
2016-01-23 22:04:19 ----D---- C:\ProgramData\McAfee
2016-01-23 22:04:19 ----D---- C:\Program Files (x86)\McAfee
2016-01-23 22:04:10 ----D---- C:\Program Files\Common Files\mcafee
2016-01-23 22:01:15 ----HD---- C:\WINDOWS\ELAMBKUP
2016-01-16 22:10:59 ----D---- C:\Program Files\Common Files\AV
2016-01-16 21:20:00 ----D---- C:\ProgramData\Skype

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 aswRvrt;avast! Revert; C:\WINDOWS\system32\drivers\aswRvrt.sys [2016-02-14 74544]
R0 aswVmm;avast! VM Monitor; C:\WINDOWS\system32\drivers\aswVmm.sys [2016-02-14 287016]
R0 iaStorA;iaStorA; C:\WINDOWS\System32\drivers\iaStorA.sys [2012-08-16 645952]
R0 LHDmgr;LHDmgr; C:\WINDOWS\System32\DRIVERS\LhdX64.sys [2012-12-01 39008]
R0 nvpciflt;nvpciflt; C:\WINDOWS\system32\DRIVERS\nvpciflt.sys [2016-01-23 38336]
R1 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr2.sys [2016-02-14 103064]
R1 aswSnx;aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [2016-02-14 1065720]
R1 aswSP;aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [2016-02-14 463744]
R1 vwififlt;@%SystemRoot%\System32\drivers\vwififlt.sys,-259; C:\WINDOWS\system32\DRIVERS\vwififlt.sys [2013-08-22 71680]
R2 aswHwid;avast! HardwareID; C:\WINDOWS\system32\drivers\aswHwid.sys [2016-02-14 37656]
R2 aswMonFlt;aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [2016-02-14 107792]
R2 aswStm;aswStm; C:\WINDOWS\system32\drivers\aswStm.sys [2016-02-14 165344]
R3 ACPIVPC;@oem17.inf,%ACPIVPC.SvcDesc%;Lenovo Virtual Power Controller Driver; C:\WINDOWS\System32\drivers\AcpiVpc.sys [2012-12-01 33560]
R3 bcbtums;@oem32.inf,%BCBTUMS.SvcDesc%;Bluetooth RAM Firmware Download USB Filter; C:\WINDOWS\system32\drivers\bcbtums.sys [2013-09-04 170712]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Bluetooth Radio USB Driver; C:\WINDOWS\System32\Drivers\BTHUSB.sys [2014-11-21 81920]
R3 igfx;igfx; C:\WINDOWS\system32\DRIVERS\igdkmd64.sys [2015-08-27 3797424]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RTKVHD64.sys [2012-09-14 4083600]
R3 IntcDAud;@oem31.inf,%IntcDAud.SvcDesc%;Intel(R) Display Audio; C:\WINDOWS\system32\DRIVERS\IntcDAud.sys [2015-08-21 463112]
R3 iwdbus;@oem14.inf,%iwdbus.SVCDESC%;IWD Bus Enumerator; C:\WINDOWS\System32\drivers\iwdbus.sys [2015-07-20 38976]
R3 JMCR;JMCR; C:\WINDOWS\System32\drivers\jmcr.sys [2012-06-22 174176]
R3 L1C;@netl1c63x64.inf,%L1C.Service.DispName%;NDIS Miniport Driver for Qualcomm Atheros AR81xx PCI-E Ethernet Controller; C:\WINDOWS\system32\DRIVERS\L1C63x64.sys [2013-06-18 129224]
R3 MEIx64;@oem23.inf,%HECI_SvcDesc%;Intel(R) Management Engine Interface ; C:\WINDOWS\System32\drivers\HECIx64.sys [2012-07-03 62784]
R3 NETwNe64;@netwew00.inf,___ %NIC_Service_DispName_WIN8_64%;___ Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows 8 - 64 Bit; C:\WINDOWS\system32\DRIVERS\NETwew00.sys [2013-07-08 3344352]
R3 nvlddmkm;nvlddmkm; C:\WINDOWS\system32\DRIVERS\nvlddmkm.sys [2016-01-23 12379072]
R3 NvStreamKms;NvStreamKms; \??\C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [2016-01-23 26560]
R3 nvvad_WaveExtensible;@oem9.inf,%nvvad_WaveExtensible.SvcDesc%;NVIDIA Virtual Audio Device (Wave Extensible) (WDM); C:\WINDOWS\system32\drivers\nvvad64v.sys [2015-12-18 47760]
R3 usb3Hub;@oem15.inf,%usb3Hub.SVCDESC%;USB-IF USB 3.0 Hub; C:\WINDOWS\System32\drivers\usb3Hub.sys [2012-10-10 47072]
R3 vm332avs;@oem2.inf,%USBCamera.DeviceDesc2%;Lenovo Camera2; C:\WINDOWS\System32\Drivers\vm332avs.sys [2012-08-25 981112]
R3 vwifimp;@%SystemRoot%\System32\drivers\vwifimp.sys,-261; C:\WINDOWS\system32\DRIVERS\vwifimp.sys [2013-08-22 36864]
S3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Bluetooth Enumerator Service; C:\WINDOWS\system32\DRIVERS\BthEnum.sys [2014-11-21 53248]
S3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Bluetooth Low Energy Driver; C:\WINDOWS\system32\DRIVERS\BthLEEnum.sys [2014-11-21 226304]
S3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Bluetooth Device (Personal Area Network); C:\WINDOWS\system32\DRIVERS\bthpan.sys [2016-02-14 118272]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Bluetooth Port Driver; C:\WINDOWS\System32\Drivers\BTHport.sys [2016-02-14 1201664]
S3 btwampfl;@oem32.inf,%btwampfl.ServiceName%;btwampfl; C:\WINDOWS\system32\DRIVERS\btwampfl.sys []
S3 btwaudio;@oem3.inf,%btaudio.SvcDesc%;Bluetooth Audio Device Service; C:\WINDOWS\system32\drivers\btwaudio.sys []
S3 btwavdt;@oem3.inf,%btwavdt.SvcDesc%;Bluetooth AVDT; C:\WINDOWS\System32\drivers\btwavdt.sys []
S3 btwl2cap;@oem6.inf,%btwl2cap.SVCDESC%;Bluetooth L2CAP Service; C:\WINDOWS\system32\DRIVERS\btwl2cap.sys []
S3 btwrchid;btwrchid; C:\WINDOWS\System32\drivers\btwrchid.sys []
S3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Bluetooth Device (RFCOMM Protocol TDI); C:\WINDOWS\system32\DRIVERS\rfcomm.sys [2016-02-14 167424]
S3 SmbDrvI;SmbDrvI; C:\WINDOWS\system32\DRIVERS\Smb_driver_Intel.sys []

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 avast! Antivirus;Avast Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2016-02-14 237096]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\WINDOWS\System32\svchost.exe [2014-11-21 38792]
R2 EvtEng;Intel(R) PROSet/Wireless Event Log; C:\Program Files\Intel\WiFi\bin\EvtEng.exe [2012-07-18 627504]
R2 GfExperienceService;NVIDIA GeForce Experience Service; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [2016-01-23 1163200]
R2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology; C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2012-08-16 7168]
R2 igfxCUIService1.0.0.0;Intel(R) HD Graphics Control Panel Service; C:\WINDOWS\system32\igfxCUIService.exe [2015-08-27 330136]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [2012-04-20 635104]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2012-06-25 166720]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2012-07-17 277824]
R2 NvNetworkService;NVIDIA Network Service; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [2016-01-23 1879488]
R2 NvStreamSvc;NVIDIA Streamer Service; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [2016-01-23 4812736]
R2 nvsvc;NVIDIA Display Driver Service; C:\WINDOWS\system32\nvvsvc.exe [2016-01-23 1263040]
R2 RegSrvc;Intel(R) PROSet/Wireless Registry Service; C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe [2012-07-18 149296]
R2 UNS;Intel(R) Management and Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2012-07-17 365376]
R3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2013-08-03 43696]
R3 NvStreamNetworkSvc;NVIDIA Streamer Network Service; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe [2016-01-23 6308288]
R3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2016-02-04 835152]
S2 BcmBtRSupport;@oem32.inf,%BlueBcmBtRSupport.SVCNAME%;Bluetooth Driver Management Service; C:\WINDOWS\system32\BtwRSupportService.exe [2013-09-04 2252504]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\WINDOWS\System32\svchost.exe [2014-11-21 38792]
S3 cphs;Intel(R) Content Protection HECI Service; C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe [2015-08-27 291744]
S3 MyWiFiDHCPDNS;Wireless PAN DHCP Server; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [2012-07-18 272176]
S4 gupdate;Google Update Service (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-10-23 144200]
S4 gupdatem;Google Update Service (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-10-23 144200]
S4 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2015-07-09 327296]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119673
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Kontrola logu, přehřívání pevného disku a využití na 100

#6 Příspěvek od Rudy »

Stáhněte OTM: http://oldtimer.geekstogo.com/OTM.exe a uložte na plochu. Spusťte a do levého okna zkopírujte:
:files
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job

:commands
[Purity]
[Emptytemp]
[Emptyflash]
a klikněte na >MoveIt!<. Před skenem vypněte antivir a po něm restartujte PC. Dejte nový log RSIT.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Odpovědět